Change the default for hosts_noproxy_tls to unset, enabling continued-TLS deliveries...
[exim.git] / src / src / globals.c
... / ...
CommitLineData
1/*************************************************
2* Exim - an Internet mail transport agent *
3*************************************************/
4
5/* Copyright (c) University of Cambridge 1995 - 2018 */
6/* See the file NOTICE for conditions of use and distribution. */
7
8/* All the global variables are defined together in this one module, so
9that they are easy to find. */
10
11#include "exim.h"
12
13
14/* Generic options for auths, all of which live inside auth_instance
15data blocks and hence have the opt_public flag set. */
16
17optionlist optionlist_auths[] = {
18 { "client_condition", opt_stringptr | opt_public,
19 (void *)(offsetof(auth_instance, client_condition)) },
20 { "client_set_id", opt_stringptr | opt_public,
21 (void *)(offsetof(auth_instance, set_client_id)) },
22 { "driver", opt_stringptr | opt_public,
23 (void *)(offsetof(auth_instance, driver_name)) },
24 { "public_name", opt_stringptr | opt_public,
25 (void *)(offsetof(auth_instance, public_name)) },
26 { "server_advertise_condition", opt_stringptr | opt_public,
27 (void *)(offsetof(auth_instance, advertise_condition))},
28 { "server_condition", opt_stringptr | opt_public,
29 (void *)(offsetof(auth_instance, server_condition)) },
30 { "server_debug_print", opt_stringptr | opt_public,
31 (void *)(offsetof(auth_instance, server_debug_string)) },
32 { "server_mail_auth_condition", opt_stringptr | opt_public,
33 (void *)(offsetof(auth_instance, mail_auth_condition)) },
34 { "server_set_id", opt_stringptr | opt_public,
35 (void *)(offsetof(auth_instance, set_id)) }
36};
37
38int optionlist_auths_size = nelem(optionlist_auths);
39
40/* An empty host aliases list. */
41
42uschar *no_aliases = NULL;
43
44
45/* For comments on these variables, see globals.h. I'm too idle to
46duplicate them here... */
47
48#ifdef EXIM_PERL
49uschar *opt_perl_startup = NULL;
50BOOL opt_perl_at_start = FALSE;
51BOOL opt_perl_started = FALSE;
52BOOL opt_perl_taintmode = FALSE;
53#endif
54
55#ifdef EXPAND_DLFUNC
56tree_node *dlobj_anchor = NULL;
57#endif
58
59#ifdef LOOKUP_IBASE
60uschar *ibase_servers = NULL;
61#endif
62
63#ifdef LOOKUP_LDAP
64uschar *eldap_ca_cert_dir = NULL;
65uschar *eldap_ca_cert_file = NULL;
66uschar *eldap_cert_file = NULL;
67uschar *eldap_cert_key = NULL;
68uschar *eldap_cipher_suite = NULL;
69uschar *eldap_default_servers = NULL;
70uschar *eldap_require_cert = NULL;
71int eldap_version = -1;
72BOOL eldap_start_tls = FALSE;
73#endif
74
75#ifdef LOOKUP_MYSQL
76uschar *mysql_servers = NULL;
77#endif
78
79#ifdef LOOKUP_ORACLE
80uschar *oracle_servers = NULL;
81#endif
82
83#ifdef LOOKUP_PGSQL
84uschar *pgsql_servers = NULL;
85#endif
86
87#ifdef LOOKUP_REDIS
88uschar *redis_servers = NULL;
89#endif
90
91#ifdef LOOKUP_SQLITE
92int sqlite_lock_timeout = 5;
93#endif
94
95#ifdef SUPPORT_MOVE_FROZEN_MESSAGES
96BOOL move_frozen_messages = FALSE;
97#endif
98
99/* These variables are outside the #ifdef because it keeps the code less
100cluttered in several places (e.g. during logging) if we can always refer to
101them. Also, the tls_ variables are now always visible. Note that these are
102only used for smtp connections, not for service-daemon access. */
103
104tls_support tls_in = {
105 .active = {.sock = -1}
106 /* all other elements zero */
107};
108tls_support tls_out = {
109 .active = {.sock = -1},
110 /* all other elements zero */
111};
112
113uschar *dsn_envid = NULL;
114int dsn_ret = 0;
115const pcre *regex_DSN = NULL;
116uschar *dsn_advertise_hosts = NULL;
117
118#ifdef SUPPORT_TLS
119BOOL gnutls_compat_mode = FALSE;
120BOOL gnutls_allow_auto_pkcs11 = FALSE;
121uschar *openssl_options = NULL;
122const pcre *regex_STARTTLS = NULL;
123uschar *tls_advertise_hosts = US"*";
124uschar *tls_certificate = NULL;
125uschar *tls_crl = NULL;
126/* This default matches NSS DH_MAX_P_BITS value at current time (2012), because
127that's the interop problem which has been observed: GnuTLS suggesting a higher
128bit-count as "NORMAL" (2432) and Thunderbird dropping connection. */
129int tls_dh_max_bits = 2236;
130uschar *tls_dhparam = NULL;
131uschar *tls_eccurve = US"auto";
132# ifndef DISABLE_OCSP
133uschar *tls_ocsp_file = NULL;
134# endif
135uschar *tls_privatekey = NULL;
136BOOL tls_remember_esmtp = FALSE;
137uschar *tls_require_ciphers = NULL;
138# ifdef EXPERIMENTAL_TLS_RESUME
139uschar *tls_resumption_hosts = NULL;
140# endif
141uschar *tls_try_verify_hosts = NULL;
142uschar *tls_verify_certificates= US"system";
143uschar *tls_verify_hosts = NULL;
144#else /*!SUPPORT_TLS*/
145uschar *tls_advertise_hosts = NULL;
146#endif
147
148#ifndef DISABLE_PRDR
149/* Per Recipient Data Response variables */
150BOOL prdr_enable = FALSE;
151BOOL prdr_requested = FALSE;
152const pcre *regex_PRDR = NULL;
153#endif
154
155#ifdef SUPPORT_I18N
156const pcre *regex_UTF8 = NULL;
157#endif
158
159/* Input-reading functions for messages, so we can use special ones for
160incoming TCP/IP. The defaults use stdin. We never need these for any
161stand-alone tests. */
162
163#if !defined(STAND_ALONE) && !defined(MACRO_PREDEF)
164int (*lwr_receive_getc)(unsigned) = stdin_getc;
165uschar * (*lwr_receive_getbuf)(unsigned *) = NULL;
166int (*lwr_receive_ungetc)(int) = stdin_ungetc;
167int (*receive_getc)(unsigned) = stdin_getc;
168uschar * (*receive_getbuf)(unsigned *) = NULL;
169void (*receive_get_cache)(void)= NULL;
170int (*receive_ungetc)(int) = stdin_ungetc;
171int (*receive_feof)(void) = stdin_feof;
172int (*receive_ferror)(void) = stdin_ferror;
173BOOL (*receive_smtp_buffered)(void) = NULL; /* Only used for SMTP */
174#endif
175
176
177/* List of per-address expansion variables for clearing and saving/restoring
178when verifying one address while routing/verifying another. We have to have
179the size explicit, because it is referenced from more than one module. */
180
181const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT] = {
182 CUSS &deliver_address_data,
183 CUSS &deliver_domain,
184 CUSS &deliver_domain_data,
185 CUSS &deliver_domain_orig,
186 CUSS &deliver_domain_parent,
187 CUSS &deliver_localpart,
188 CUSS &deliver_localpart_data,
189 CUSS &deliver_localpart_orig,
190 CUSS &deliver_localpart_parent,
191 CUSS &deliver_localpart_prefix,
192 CUSS &deliver_localpart_suffix,
193 CUSS (uschar **)(&deliver_recipients),
194 CUSS &deliver_host,
195 CUSS &deliver_home,
196 CUSS &address_file,
197 CUSS &address_pipe,
198 CUSS &self_hostname,
199 NULL };
200
201int address_expansions_count = sizeof(address_expansions)/sizeof(uschar **);
202
203/******************************************************************************/
204/* General global variables. Boolean flags are done as a group
205so that only one bit each is needed, packed, for all those we never
206need to take a pointer - and only a char for the rest.
207This means a struct, unfortunately since it clutters the sourcecode. */
208
209struct global_flags f =
210{
211 .acl_temp_details = FALSE,
212 .active_local_from_check = FALSE,
213 .active_local_sender_retain = FALSE,
214 .address_test_mode = FALSE,
215 .admin_user = FALSE,
216 .allow_auth_unadvertised= FALSE,
217 .allow_unqualified_recipient = TRUE, /* For local messages */
218 .allow_unqualified_sender = TRUE, /* Reset for SMTP */
219 .authentication_local = FALSE,
220
221 .background_daemon = TRUE,
222
223 .chunking_offered = FALSE,
224 .config_changed = FALSE,
225 .continue_more = FALSE,
226
227 .daemon_listen = FALSE,
228 .debug_daemon = FALSE,
229 .deliver_firsttime = FALSE,
230 .deliver_force = FALSE,
231 .deliver_freeze = FALSE,
232 .deliver_force_thaw = FALSE,
233 .deliver_manual_thaw = FALSE,
234 .deliver_selectstring_regex = FALSE,
235 .deliver_selectstring_sender_regex = FALSE,
236 .disable_callout_flush = FALSE,
237 .disable_delay_flush = FALSE,
238 .disable_logging = FALSE,
239#ifndef DISABLE_DKIM
240 .dkim_disable_verify = FALSE,
241#endif
242#ifdef EXPERIMENTAL_DMARC
243 .dmarc_has_been_checked = FALSE,
244 .dmarc_disable_verify = FALSE,
245 .dmarc_enable_forensic = FALSE,
246#endif
247 .dont_deliver = FALSE,
248 .dot_ends = TRUE,
249
250 .enable_dollar_recipients = FALSE,
251 .expand_string_forcedfail = FALSE,
252
253 .filter_running = FALSE,
254
255 .header_rewritten = FALSE,
256 .helo_verified = FALSE,
257 .helo_verify_failed = FALSE,
258 .host_checking_callout = FALSE,
259 .host_find_failed_syntax= FALSE,
260
261 .inetd_wait_mode = FALSE,
262 .is_inetd = FALSE,
263
264 .local_error_message = FALSE,
265 .log_testing_mode = FALSE,
266
267#ifdef WITH_CONTENT_SCAN
268 .no_mbox_unspool = FALSE,
269#endif
270 .no_multiline_responses = FALSE,
271
272 .parse_allow_group = FALSE,
273 .parse_found_group = FALSE,
274 .pipelining_enable = TRUE,
275#if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
276 .proxy_session_failed = FALSE,
277#endif
278
279 .queue_2stage = FALSE,
280 .queue_only_policy = FALSE,
281 .queue_run_first_delivery = FALSE,
282 .queue_run_force = FALSE,
283 .queue_run_local = FALSE,
284 .queue_running = FALSE,
285 .queue_smtp = FALSE,
286
287 .really_exim = TRUE,
288 .receive_call_bombout = FALSE,
289 .recipients_discarded = FALSE,
290 .running_in_test_harness = FALSE,
291
292 .search_find_defer = FALSE,
293 .sender_address_forced = FALSE,
294 .sender_host_notsocket = FALSE,
295 .sender_host_unknown = FALSE,
296 .sender_local = FALSE,
297 .sender_name_forced = FALSE,
298 .sender_set_untrusted = FALSE,
299 .smtp_authenticated = FALSE,
300#ifdef EXPERIMENTAL_PIPE_CONNECT
301 .smtp_in_early_pipe_advertised = FALSE,
302 .smtp_in_early_pipe_no_auth = FALSE,
303 .smtp_in_early_pipe_used = FALSE,
304#endif
305 .smtp_in_pipelining_advertised = FALSE,
306 .smtp_in_pipelining_used = FALSE,
307 .spool_file_wireformat = FALSE,
308 .submission_mode = FALSE,
309 .suppress_local_fixups = FALSE,
310 .suppress_local_fixups_default = FALSE,
311 .synchronous_delivery = FALSE,
312 .system_filtering = FALSE,
313
314 .tcp_fastopen_ok = FALSE,
315 .tcp_in_fastopen = FALSE,
316 .tcp_in_fastopen_data = FALSE,
317 .tcp_in_fastopen_logged = FALSE,
318 .tcp_out_fastopen_logged= FALSE,
319 .timestamps_utc = FALSE,
320 .transport_filter_timed_out = FALSE,
321 .trusted_caller = FALSE,
322 .trusted_config = TRUE,
323};
324
325/******************************************************************************/
326/* These are the flags which are either variables or mainsection options,
327so an address is needed for access, or are exported to local_scan. */
328
329BOOL accept_8bitmime = TRUE; /* deliberately not RFC compliant */
330BOOL allow_domain_literals = FALSE;
331BOOL allow_mx_to_ip = FALSE;
332BOOL allow_utf8_domains = FALSE;
333BOOL authentication_failed = FALSE;
334
335BOOL bounce_return_body = TRUE;
336BOOL bounce_return_message = TRUE;
337BOOL check_rfc2047_length = TRUE;
338BOOL commandline_checks_require_admin = FALSE;
339
340#ifdef EXPERIMENTAL_DCC
341BOOL dcc_direct_add_header = FALSE;
342#endif
343BOOL debug_store = FALSE;
344BOOL delivery_date_remove = TRUE;
345BOOL deliver_drop_privilege = FALSE;
346#ifdef ENABLE_DISABLE_FSYNC
347BOOL disable_fsync = FALSE;
348#endif
349BOOL disable_ipv6 = FALSE;
350BOOL dns_csa_use_reverse = TRUE;
351BOOL drop_cr = FALSE; /* No longer used */
352
353BOOL envelope_to_remove = TRUE;
354BOOL exim_gid_set = TRUE; /* This gid is always set */
355BOOL exim_uid_set = TRUE; /* This uid is always set */
356BOOL extract_addresses_remove_arguments = TRUE;
357
358BOOL host_checking = FALSE;
359BOOL host_lookup_deferred = FALSE;
360BOOL host_lookup_failed = FALSE;
361BOOL ignore_fromline_local = FALSE;
362
363BOOL local_from_check = TRUE;
364BOOL local_sender_retain = FALSE;
365BOOL log_timezone = FALSE;
366BOOL message_body_newlines = FALSE;
367BOOL message_logs = TRUE;
368#ifdef SUPPORT_I18N
369BOOL message_smtputf8 = FALSE;
370#endif
371BOOL mua_wrapper = FALSE;
372
373BOOL preserve_message_logs = FALSE;
374BOOL print_topbitchars = FALSE;
375BOOL prod_requires_admin = TRUE;
376#if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
377BOOL proxy_session = FALSE;
378#endif
379
380BOOL queue_list_requires_admin = TRUE;
381BOOL queue_only = FALSE;
382BOOL queue_only_load_latch = TRUE;
383BOOL queue_only_override = TRUE;
384BOOL queue_run_in_order = FALSE;
385BOOL recipients_max_reject = FALSE;
386BOOL return_path_remove = TRUE;
387
388BOOL smtp_batched_input = FALSE;
389BOOL sender_helo_dnssec = FALSE;
390BOOL sender_host_dnssec = FALSE;
391BOOL smtp_accept_keepalive = TRUE;
392BOOL smtp_check_spool_space = TRUE;
393BOOL smtp_enforce_sync = TRUE;
394BOOL smtp_etrn_serialize = TRUE;
395BOOL smtp_input = FALSE;
396BOOL smtp_return_error_details = FALSE;
397#ifdef SUPPORT_SPF
398BOOL spf_result_guessed = FALSE;
399#endif
400BOOL split_spool_directory = FALSE;
401BOOL spool_wireformat = FALSE;
402#ifdef EXPERIMENTAL_SRS
403BOOL srs_usehash = TRUE;
404BOOL srs_usetimestamp = TRUE;
405#endif
406BOOL strict_acl_vars = FALSE;
407BOOL strip_excess_angle_brackets = FALSE;
408BOOL strip_trailing_dot = FALSE;
409BOOL syslog_duplication = TRUE;
410BOOL syslog_pid = TRUE;
411BOOL syslog_timestamp = TRUE;
412BOOL system_filter_gid_set = FALSE;
413BOOL system_filter_uid_set = FALSE;
414
415BOOL tcp_nodelay = TRUE;
416BOOL write_rejectlog = TRUE;
417
418/******************************************************************************/
419
420header_line *acl_added_headers = NULL;
421tree_node *acl_anchor = NULL;
422uschar *acl_arg[9] = {NULL, NULL, NULL, NULL, NULL,
423 NULL, NULL, NULL, NULL};
424int acl_narg = 0;
425
426int acl_level = 0;
427
428uschar *acl_not_smtp = NULL;
429#ifdef WITH_CONTENT_SCAN
430uschar *acl_not_smtp_mime = NULL;
431#endif
432uschar *acl_not_smtp_start = NULL;
433uschar *acl_removed_headers = NULL;
434uschar *acl_smtp_auth = NULL;
435uschar *acl_smtp_connect = NULL;
436uschar *acl_smtp_data = NULL;
437#ifndef DISABLE_PRDR
438uschar *acl_smtp_data_prdr = US"accept";
439#endif
440#ifndef DISABLE_DKIM
441uschar *acl_smtp_dkim = NULL;
442#endif
443uschar *acl_smtp_etrn = NULL;
444uschar *acl_smtp_expn = NULL;
445uschar *acl_smtp_helo = NULL;
446uschar *acl_smtp_mail = NULL;
447uschar *acl_smtp_mailauth = NULL;
448#ifdef WITH_CONTENT_SCAN
449uschar *acl_smtp_mime = NULL;
450#endif
451uschar *acl_smtp_notquit = NULL;
452uschar *acl_smtp_predata = NULL;
453uschar *acl_smtp_quit = NULL;
454uschar *acl_smtp_rcpt = NULL;
455uschar *acl_smtp_starttls = NULL;
456uschar *acl_smtp_vrfy = NULL;
457
458tree_node *acl_var_c = NULL;
459tree_node *acl_var_m = NULL;
460uschar *acl_verify_message = NULL;
461string_item *acl_warn_logged = NULL;
462
463/* Names of SMTP places for use in ACL error messages, and corresponding SMTP
464error codes - keep in step with definitions of ACL_WHERE_xxxx in macros.h. */
465
466uschar *acl_wherenames[] = { US"RCPT",
467 US"MAIL",
468 US"PREDATA",
469 US"MIME",
470 US"DKIM",
471 US"DATA",
472#ifndef DISABLE_PRDR
473 US"PRDR",
474#endif
475 US"non-SMTP",
476 US"AUTH",
477 US"connection",
478 US"ETRN",
479 US"EXPN",
480 US"EHLO or HELO",
481 US"MAILAUTH",
482 US"non-SMTP-start",
483 US"NOTQUIT",
484 US"QUIT",
485 US"STARTTLS",
486 US"VRFY",
487 US"delivery",
488 US"unknown"
489 };
490
491uschar *acl_wherecodes[] = { US"550", /* RCPT */
492 US"550", /* MAIL */
493 US"550", /* PREDATA */
494 US"550", /* MIME */
495 US"550", /* DKIM */
496 US"550", /* DATA */
497#ifndef DISABLE_PRDR
498 US"550", /* RCPT PRDR */
499#endif
500 US"0", /* not SMTP; not relevant */
501 US"503", /* AUTH */
502 US"550", /* connect */
503 US"458", /* ETRN */
504 US"550", /* EXPN */
505 US"550", /* HELO/EHLO */
506 US"0", /* MAILAUTH; not relevant */
507 US"0", /* not SMTP; not relevant */
508 US"0", /* NOTQUIT; not relevant */
509 US"0", /* QUIT; not relevant */
510 US"550", /* STARTTLS */
511 US"252", /* VRFY */
512 US"0", /* delivery; not relevant */
513 US"0" /* unknown; not relevant */
514 };
515
516uschar *add_environment = NULL;
517address_item *addr_duplicate = NULL;
518
519address_item address_defaults = {
520 .next = NULL,
521 .parent = NULL,
522 .first = NULL,
523 .dupof = NULL,
524 .start_router = NULL,
525 .router = NULL,
526 .transport = NULL,
527 .host_list = NULL,
528 .host_used = NULL,
529 .fallback_hosts = NULL,
530 .reply = NULL,
531 .retries = NULL,
532 .address = NULL,
533 .unique = NULL,
534 .cc_local_part = NULL,
535 .lc_local_part = NULL,
536 .local_part = NULL,
537 .prefix = NULL,
538 .suffix = NULL,
539 .domain = NULL,
540 .address_retry_key = NULL,
541 .domain_retry_key = NULL,
542 .current_dir = NULL,
543 .home_dir = NULL,
544 .message = NULL,
545 .user_message = NULL,
546 .onetime_parent = NULL,
547 .pipe_expandn = NULL,
548 .return_filename = NULL,
549 .self_hostname = NULL,
550 .shadow_message = NULL,
551#ifdef SUPPORT_TLS
552 .cipher = NULL,
553 .ourcert = NULL,
554 .peercert = NULL,
555 .peerdn = NULL,
556 .ocsp = OCSP_NOT_REQ,
557#endif
558#ifdef EXPERIMENTAL_DSN_INFO
559 .smtp_greeting = NULL,
560 .helo_response = NULL,
561#endif
562 .authenticator = NULL,
563 .auth_id = NULL,
564 .auth_sndr = NULL,
565 .dsn_orcpt = NULL,
566 .dsn_flags = 0,
567 .dsn_aware = 0,
568 .uid = (uid_t)(-1),
569 .gid = (gid_t)(-1),
570 .flags = { 0 },
571 .domain_cache = { 0 }, /* domain_cache - any larger array should be zeroed */
572 .localpart_cache = { 0 }, /* localpart_cache - ditto */
573 .mode = -1,
574 .more_errno = 0,
575 .delivery_usec = 0,
576 .basic_errno = ERRNO_UNKNOWNERROR,
577 .child_count = 0,
578 .return_file = -1,
579 .special_action = SPECIAL_NONE,
580 .transport_return = DEFER,
581 .prop = { /* fields that are propagated to children */
582 .address_data = NULL,
583 .domain_data = NULL,
584 .localpart_data = NULL,
585 .errors_address = NULL,
586 .extra_headers = NULL,
587 .remove_headers = NULL,
588#ifdef EXPERIMENTAL_SRS
589 .srs_sender = NULL,
590#endif
591 .ignore_error = FALSE,
592#ifdef SUPPORT_I18N
593 .utf8_msg = FALSE,
594 .utf8_downcvt = FALSE,
595 .utf8_downcvt_maybe = FALSE
596#endif
597 }
598};
599
600uschar *address_file = NULL;
601uschar *address_pipe = NULL;
602tree_node *addresslist_anchor = NULL;
603int addresslist_count = 0;
604gid_t *admin_groups = NULL;
605
606#ifdef EXPERIMENTAL_ARC
607struct arc_set *arc_received = NULL;
608int arc_received_instance = 0;
609int arc_oldest_pass = 0;
610const uschar *arc_state = NULL;
611const uschar *arc_state_reason = NULL;
612#endif
613
614uschar *authenticated_fail_id = NULL;
615uschar *authenticated_id = NULL;
616uschar *authenticated_sender = NULL;
617auth_instance *auths = NULL;
618uschar *auth_advertise_hosts = US"*";
619auth_instance auth_defaults = {
620 .next = NULL,
621 .name = NULL,
622 .info = NULL,
623 .options_block = NULL,
624 .driver_name = NULL,
625 .advertise_condition = NULL,
626 .client_condition = NULL,
627 .public_name = NULL,
628 .set_id = NULL,
629 .set_client_id = NULL,
630 .mail_auth_condition = NULL,
631 .server_debug_string = NULL,
632 .server_condition = NULL,
633 .client = FALSE,
634 .server = FALSE,
635 .advertised = FALSE
636};
637
638uschar *auth_defer_msg = US"reason not recorded";
639uschar *auth_defer_user_msg = US"";
640uschar *auth_vars[AUTH_VARS];
641int auto_thaw = 0;
642#ifdef WITH_CONTENT_SCAN
643int av_failed = FALSE; /* boolean but accessed as vtype_int*/
644uschar *av_scanner = US"sophie:/var/run/sophie"; /* AV scanner */
645#endif
646
647#if BASE_62 == 62
648uschar *base62_chars=
649 US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz";
650#else
651uschar *base62_chars= US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ";
652#endif
653
654uschar *bi_command = NULL;
655uschar *big_buffer = NULL;
656int big_buffer_size = BIG_BUFFER_SIZE;
657#ifdef EXPERIMENTAL_BRIGHTMAIL
658uschar *bmi_alt_location = NULL;
659uschar *bmi_base64_tracker_verdict = NULL;
660uschar *bmi_base64_verdict = NULL;
661uschar *bmi_config_file = US"/opt/brightmail/etc/brightmail.cfg";
662int bmi_deliver = 1;
663int bmi_run = 0;
664uschar *bmi_verdicts = NULL;
665#endif
666int bsmtp_transaction_linecount = 0;
667int body_8bitmime = 0;
668int body_linecount = 0;
669int body_zerocount = 0;
670uschar *bounce_message_file = NULL;
671uschar *bounce_message_text = NULL;
672uschar *bounce_recipient = NULL;
673int bounce_return_linesize_limit = 998;
674int bounce_return_size_limit = 100*1024;
675uschar *bounce_sender_authentication = NULL;
676
677uschar *callout_address = NULL;
678int callout_cache_domain_positive_expire = 7*24*60*60;
679int callout_cache_domain_negative_expire = 3*60*60;
680int callout_cache_positive_expire = 24*60*60;
681int callout_cache_negative_expire = 2*60*60;
682uschar *callout_random_local_part = US"$primary_hostname-$tod_epoch-testing";
683uschar *check_dns_names_pattern= US"(?i)^(?>(?(1)\\.|())[^\\W](?>[a-z0-9/_-]*[^\\W])?)+(\\.?)$";
684int check_log_inodes = 100;
685int_eximarith_t check_log_space = 10*1024; /* 10K Kbyte == 10MB */
686int check_spool_inodes = 100;
687int_eximarith_t check_spool_space = 10*1024; /* 10K Kbyte == 10MB */
688
689uschar *chunking_advertise_hosts = US"*";
690unsigned chunking_datasize = 0;
691unsigned chunking_data_left = 0;
692chunking_state_t chunking_state= CHUNKING_NOT_OFFERED;
693const pcre *regex_CHUNKING = NULL;
694
695uschar *client_authenticator = NULL;
696uschar *client_authenticated_id = NULL;
697uschar *client_authenticated_sender = NULL;
698int clmacro_count = 0;
699uschar *clmacros[MAX_CLMACROS];
700FILE *config_file = NULL;
701const uschar *config_filename = NULL;
702int config_lineno = 0;
703#ifdef CONFIGURE_GROUP
704gid_t config_gid = CONFIGURE_GROUP;
705#else
706gid_t config_gid = 0;
707#endif
708uschar *config_main_filelist = US CONFIGURE_FILE
709 "\0<-----------Space to patch configure_filename->";
710uschar *config_main_filename = NULL;
711uschar *config_main_directory = NULL;
712
713#ifdef CONFIGURE_OWNER
714uid_t config_uid = CONFIGURE_OWNER;
715#else
716uid_t config_uid = 0;
717#endif
718
719int connection_max_messages= -1;
720uschar *continue_proxy_cipher = NULL;
721uschar *continue_hostname = NULL;
722uschar *continue_host_address = NULL;
723int continue_sequence = 1;
724uschar *continue_transport = NULL;
725
726uschar *csa_status = NULL;
727cut_t cutthrough = {
728 .callout_hold_only = FALSE, /* verify-only: normal delivery */
729 .delivery = FALSE, /* when to attempt */
730 .defer_pass = FALSE, /* on defer: spool locally */
731 .is_tls = FALSE, /* not a TLS conn yet */
732 .cctx = {.sock = -1}, /* open connection */
733 .nrcpt = 0, /* number of addresses */
734};
735
736uschar *daemon_smtp_port = US"smtp";
737int daemon_startup_retries = 9;
738int daemon_startup_sleep = 30;
739
740#ifdef EXPERIMENTAL_DCC
741uschar *dcc_header = NULL;
742uschar *dcc_result = NULL;
743uschar *dccifd_address = US"/usr/local/dcc/var/dccifd";
744uschar *dccifd_options = US"header";
745#endif
746
747int debug_fd = -1;
748FILE *debug_file = NULL;
749int debug_notall[] = {
750 Di_memory,
751 Di_noutf8,
752 -1
753};
754bit_table debug_options[] = { /* must be in alphabetical order and use
755 only the enum values from macro.h */
756 BIT_TABLE(D, acl),
757 BIT_TABLE(D, all),
758 BIT_TABLE(D, auth),
759 BIT_TABLE(D, deliver),
760 BIT_TABLE(D, dns),
761 BIT_TABLE(D, dnsbl),
762 BIT_TABLE(D, exec),
763 BIT_TABLE(D, expand),
764 BIT_TABLE(D, filter),
765 BIT_TABLE(D, hints_lookup),
766 BIT_TABLE(D, host_lookup),
767 BIT_TABLE(D, ident),
768 BIT_TABLE(D, interface),
769 BIT_TABLE(D, lists),
770 BIT_TABLE(D, load),
771 BIT_TABLE(D, local_scan),
772 BIT_TABLE(D, lookup),
773 BIT_TABLE(D, memory),
774 BIT_TABLE(D, noutf8),
775 BIT_TABLE(D, pid),
776 BIT_TABLE(D, process_info),
777 BIT_TABLE(D, queue_run),
778 BIT_TABLE(D, receive),
779 BIT_TABLE(D, resolver),
780 BIT_TABLE(D, retry),
781 BIT_TABLE(D, rewrite),
782 BIT_TABLE(D, route),
783 BIT_TABLE(D, timestamp),
784 BIT_TABLE(D, tls),
785 BIT_TABLE(D, transport),
786 BIT_TABLE(D, uid),
787 BIT_TABLE(D, verify),
788};
789int debug_options_count = nelem(debug_options);
790
791unsigned int debug_selector = 0;
792int delay_warning[DELAY_WARNING_SIZE] = { DELAY_WARNING_SIZE, 1, 24*60*60 };
793uschar *delay_warning_condition=
794 US"${if or {"
795 "{ !eq{$h_list-id:$h_list-post:$h_list-subscribe:}{} }"
796 "{ match{$h_precedence:}{(?i)bulk|list|junk} }"
797 "{ match{$h_auto-submitted:}{(?i)auto-generated|auto-replied} }"
798 "} {no}{yes}}";
799uschar *deliver_address_data = NULL;
800int deliver_datafile = -1;
801const uschar *deliver_domain = NULL;
802uschar *deliver_domain_data = NULL;
803const uschar *deliver_domain_orig = NULL;
804const uschar *deliver_domain_parent = NULL;
805time_t deliver_frozen_at = 0;
806uschar *deliver_home = NULL;
807const uschar *deliver_host = NULL;
808const uschar *deliver_host_address = NULL;
809int deliver_host_port = 0;
810uschar *deliver_in_buffer = NULL;
811ino_t deliver_inode = 0;
812uschar *deliver_localpart = NULL;
813uschar *deliver_localpart_data = NULL;
814uschar *deliver_localpart_orig = NULL;
815uschar *deliver_localpart_parent = NULL;
816uschar *deliver_localpart_prefix = NULL;
817uschar *deliver_localpart_suffix = NULL;
818uschar *deliver_out_buffer = NULL;
819int deliver_queue_load_max = -1;
820address_item *deliver_recipients = NULL;
821uschar *deliver_selectstring = NULL;
822uschar *deliver_selectstring_sender = NULL;
823
824#ifndef DISABLE_DKIM
825unsigned dkim_collect_input = 0;
826uschar *dkim_cur_signer = NULL;
827int dkim_key_length = 0;
828void *dkim_signatures = NULL;
829uschar *dkim_signers = NULL;
830uschar *dkim_signing_domain = NULL;
831uschar *dkim_signing_selector = NULL;
832uschar *dkim_verify_overall = NULL;
833uschar *dkim_verify_signers = US"$dkim_signers";
834uschar *dkim_verify_status = NULL;
835uschar *dkim_verify_reason = NULL;
836#endif
837#ifdef EXPERIMENTAL_DMARC
838uschar *dmarc_domain_policy = NULL;
839uschar *dmarc_forensic_sender = NULL;
840uschar *dmarc_history_file = NULL;
841uschar *dmarc_status = NULL;
842uschar *dmarc_status_text = NULL;
843uschar *dmarc_tld_file = US DMARC_TLD_FILE;
844uschar *dmarc_used_domain = NULL;
845#endif
846
847uschar *dns_again_means_nonexist = NULL;
848int dns_csa_search_limit = 5;
849int dns_cname_loops = 1;
850#ifdef SUPPORT_DANE
851int dns_dane_ok = -1;
852#endif
853uschar *dns_ipv4_lookup = NULL;
854int dns_retrans = 0;
855int dns_retry = 0;
856int dns_dnssec_ok = -1; /* <0 = not coerced */
857uschar *dns_trust_aa = NULL;
858int dns_use_edns0 = -1; /* <0 = not coerced */
859uschar *dnslist_domain = NULL;
860uschar *dnslist_matched = NULL;
861uschar *dnslist_text = NULL;
862uschar *dnslist_value = NULL;
863tree_node *domainlist_anchor = NULL;
864int domainlist_count = 0;
865uschar *dsn_from = US DEFAULT_DSN_FROM;
866
867int errno_quota = ERRNO_QUOTA;
868uschar *errors_copy = NULL;
869int error_handling = ERRORS_SENDER;
870uschar *errors_reply_to = NULL;
871int errors_sender_rc = EXIT_FAILURE;
872#ifndef DISABLE_EVENT
873uschar *event_action = NULL; /* expansion for delivery events */
874uschar *event_data = NULL; /* auxiliary data variable for event */
875int event_defer_errno = 0;
876const uschar *event_name = NULL; /* event name variable */
877#endif
878
879
880gid_t exim_gid = EXIM_GID;
881uschar *exim_path = US BIN_DIRECTORY "/exim"
882 "\0<---------------Space to patch exim_path->";
883uid_t exim_uid = EXIM_UID;
884int expand_level = 0; /* Nesting depth, indent for debug */
885int expand_forbid = 0;
886int expand_nlength[EXPAND_MAXN+1];
887int expand_nmax = -1;
888uschar *expand_nstring[EXPAND_MAXN+1];
889uschar *expand_string_message;
890uschar *extra_local_interfaces = NULL;
891
892int fake_response = OK;
893uschar *fake_response_text = US"Your message has been rejected but is "
894 "being kept for evaluation.\nIf it was a "
895 "legitimate message, it may still be "
896 "delivered to the target recipient(s).";
897int filter_n[FILTER_VARIABLE_COUNT];
898int filter_sn[FILTER_VARIABLE_COUNT];
899int filter_test = FTEST_NONE;
900uschar *filter_test_sfile = NULL;
901uschar *filter_test_ufile = NULL;
902uschar *filter_thisaddress = NULL;
903int finduser_retries = 0;
904uid_t fixed_never_users[] = { FIXED_NEVER_USERS };
905uschar *freeze_tell = NULL;
906uschar *freeze_tell_config = NULL;
907uschar *fudged_queue_times = US"";
908
909uschar *gecos_name = NULL;
910uschar *gecos_pattern = NULL;
911rewrite_rule *global_rewrite_rules = NULL;
912
913volatile sig_atomic_t had_command_timeout = 0;
914volatile sig_atomic_t had_command_sigterm = 0;
915volatile sig_atomic_t had_data_timeout = 0;
916volatile sig_atomic_t had_data_sigint = 0;
917uschar *headers_charset = US HEADERS_CHARSET;
918int header_insert_maxlen = 64 * 1024;
919header_line *header_last = NULL;
920header_line *header_list = NULL;
921int header_maxsize = HEADER_MAXSIZE;
922int header_line_maxsize = 0;
923
924header_name header_names[] = {
925 /* name len allow_resent htype */
926 { US"bcc", 3, TRUE, htype_bcc },
927 { US"cc", 2, TRUE, htype_cc },
928 { US"date", 4, TRUE, htype_date },
929 { US"delivery-date", 13, FALSE, htype_delivery_date },
930 { US"envelope-to", 11, FALSE, htype_envelope_to },
931 { US"from", 4, TRUE, htype_from },
932 { US"message-id", 10, TRUE, htype_id },
933 { US"received", 8, FALSE, htype_received },
934 { US"reply-to", 8, FALSE, htype_reply_to },
935 { US"return-path", 11, FALSE, htype_return_path },
936 { US"sender", 6, TRUE, htype_sender },
937 { US"subject", 7, FALSE, htype_subject },
938 { US"to", 2, TRUE, htype_to }
939};
940
941int header_names_size = nelem(header_names);
942
943uschar *helo_accept_junk_hosts = NULL;
944uschar *helo_allow_chars = US"";
945uschar *helo_lookup_domains = US"@ : @[]";
946uschar *helo_try_verify_hosts = NULL;
947uschar *helo_verify_hosts = NULL;
948const uschar *hex_digits = CUS"0123456789abcdef";
949uschar *hold_domains = NULL;
950uschar *host_data = NULL;
951uschar *host_lookup = NULL;
952uschar *host_lookup_order = US"bydns:byaddr";
953uschar *host_lookup_msg = US"";
954int host_number = 0;
955uschar *host_number_string = NULL;
956uschar *host_reject_connection = NULL;
957tree_node *hostlist_anchor = NULL;
958int hostlist_count = 0;
959uschar *hosts_treat_as_local = NULL;
960uschar *hosts_connection_nolog = NULL;
961
962int ignore_bounce_errors_after = 10*7*24*60*60; /* 10 weeks */
963uschar *ignore_fromline_hosts = NULL;
964int inetd_wait_timeout = -1;
965uschar *initial_cwd = NULL;
966uschar *interface_address = NULL;
967int interface_port = -1;
968uschar *iterate_item = NULL;
969
970int journal_fd = -1;
971
972uschar *keep_environment = NULL;
973
974int keep_malformed = 4*24*60*60; /* 4 days */
975
976uschar *eldap_dn = NULL;
977int load_average = -2;
978uschar *local_from_prefix = NULL;
979uschar *local_from_suffix = NULL;
980
981#if HAVE_IPV6
982uschar *local_interfaces = US"<; ::0 ; 0.0.0.0";
983#else
984uschar *local_interfaces = US"0.0.0.0";
985#endif
986
987#ifdef HAVE_LOCAL_SCAN
988uschar *local_scan_data = NULL;
989int local_scan_timeout = 5*60;
990#endif
991gid_t local_user_gid = (gid_t)(-1);
992uid_t local_user_uid = (uid_t)(-1);
993
994tree_node *localpartlist_anchor= NULL;
995int localpartlist_count = 0;
996uschar *log_buffer = NULL;
997
998int log_default[] = { /* for initializing log_selector */
999 Li_acl_warn_skipped,
1000 Li_connection_reject,
1001 Li_delay_delivery,
1002 Li_dkim,
1003 Li_dnslist_defer,
1004 Li_etrn,
1005 Li_host_lookup_failed,
1006 Li_lost_incoming_connection,
1007 Li_outgoing_interface, /* see d_log_interface in deliver.c */
1008 Li_msg_id,
1009 Li_queue_run,
1010 Li_rejected_header,
1011 Li_retry_defer,
1012 Li_sender_verify_fail,
1013 Li_size_reject,
1014 Li_skip_delivery,
1015 Li_smtp_confirmation,
1016 Li_tls_certificate_verified,
1017 Li_tls_cipher,
1018 -1
1019};
1020
1021uschar *log_file_path = US LOG_FILE_PATH
1022 "\0<--------------Space to patch log_file_path->";
1023
1024int log_notall[] = {
1025 -1
1026};
1027bit_table log_options[] = { /* must be in alphabetical order,
1028 with definitions from enum logbit. */
1029 BIT_TABLE(L, 8bitmime),
1030 BIT_TABLE(L, acl_warn_skipped),
1031 BIT_TABLE(L, address_rewrite),
1032 BIT_TABLE(L, all),
1033 BIT_TABLE(L, all_parents),
1034 BIT_TABLE(L, arguments),
1035 BIT_TABLE(L, connection_reject),
1036 BIT_TABLE(L, delay_delivery),
1037 BIT_TABLE(L, deliver_time),
1038 BIT_TABLE(L, delivery_size),
1039#ifndef DISABLE_DKIM
1040 BIT_TABLE(L, dkim),
1041 BIT_TABLE(L, dkim_verbose),
1042#endif
1043 BIT_TABLE(L, dnslist_defer),
1044 BIT_TABLE(L, dnssec),
1045 BIT_TABLE(L, etrn),
1046 BIT_TABLE(L, host_lookup_failed),
1047 BIT_TABLE(L, ident_timeout),
1048 BIT_TABLE(L, incoming_interface),
1049 BIT_TABLE(L, incoming_port),
1050 BIT_TABLE(L, lost_incoming_connection),
1051 BIT_TABLE(L, millisec),
1052 BIT_TABLE(L, msg_id),
1053 BIT_TABLE(L, msg_id_created),
1054 BIT_TABLE(L, outgoing_interface),
1055 BIT_TABLE(L, outgoing_port),
1056 BIT_TABLE(L, pid),
1057 BIT_TABLE(L, pipelining),
1058#if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1059 BIT_TABLE(L, proxy),
1060#endif
1061 BIT_TABLE(L, queue_run),
1062 BIT_TABLE(L, queue_time),
1063 BIT_TABLE(L, queue_time_overall),
1064 BIT_TABLE(L, receive_time),
1065 BIT_TABLE(L, received_recipients),
1066 BIT_TABLE(L, received_sender),
1067 BIT_TABLE(L, rejected_header),
1068 { US"rejected_headers", Li_rejected_header },
1069 BIT_TABLE(L, retry_defer),
1070 BIT_TABLE(L, return_path_on_delivery),
1071 BIT_TABLE(L, sender_on_delivery),
1072 BIT_TABLE(L, sender_verify_fail),
1073 BIT_TABLE(L, size_reject),
1074 BIT_TABLE(L, skip_delivery),
1075 BIT_TABLE(L, smtp_confirmation),
1076 BIT_TABLE(L, smtp_connection),
1077 BIT_TABLE(L, smtp_incomplete_transaction),
1078 BIT_TABLE(L, smtp_mailauth),
1079 BIT_TABLE(L, smtp_no_mail),
1080 BIT_TABLE(L, smtp_protocol_error),
1081 BIT_TABLE(L, smtp_syntax_error),
1082 BIT_TABLE(L, subject),
1083 BIT_TABLE(L, tls_certificate_verified),
1084 BIT_TABLE(L, tls_cipher),
1085 BIT_TABLE(L, tls_peerdn),
1086 BIT_TABLE(L, tls_resumption),
1087 BIT_TABLE(L, tls_sni),
1088 BIT_TABLE(L, unknown_in_list),
1089};
1090int log_options_count = nelem(log_options);
1091
1092int log_reject_target = 0;
1093unsigned int log_selector[log_selector_size]; /* initialized in main() */
1094uschar *log_selector_string = NULL;
1095FILE *log_stderr = NULL;
1096uschar *login_sender_address = NULL;
1097uschar *lookup_dnssec_authenticated = NULL;
1098int lookup_open_max = 25;
1099uschar *lookup_value = NULL;
1100
1101macro_item *macros_user = NULL;
1102uschar *mailstore_basename = NULL;
1103#ifdef WITH_CONTENT_SCAN
1104uschar *malware_name = NULL; /* Virus Name */
1105#endif
1106int max_received_linelength= 0;
1107int max_username_length = 0;
1108int message_age = 0;
1109uschar *message_body = NULL;
1110uschar *message_body_end = NULL;
1111int message_body_size = 0;
1112int message_body_visible = 500;
1113int message_ended = END_NOTSTARTED;
1114uschar *message_headers = NULL;
1115uschar *message_id;
1116uschar *message_id_domain = NULL;
1117uschar *message_id_text = NULL;
1118struct timeval message_id_tv = { 0, 0 };
1119uschar message_id_option[MESSAGE_ID_LENGTH + 3];
1120uschar *message_id_external;
1121int message_linecount = 0;
1122int message_size = 0;
1123uschar *message_size_limit = US"50M";
1124#ifdef SUPPORT_I18N
1125int message_utf8_downconvert = 0; /* -1 ifneeded; 0 never; 1 always */
1126#endif
1127uschar message_subdir[2] = { 0, 0 };
1128uschar *message_reference = NULL;
1129
1130/* MIME ACL expandables */
1131#ifdef WITH_CONTENT_SCAN
1132int mime_anomaly_level = 0;
1133const uschar *mime_anomaly_text = NULL;
1134uschar *mime_boundary = NULL;
1135uschar *mime_charset = NULL;
1136uschar *mime_content_description = NULL;
1137uschar *mime_content_disposition = NULL;
1138uschar *mime_content_id = NULL;
1139unsigned int mime_content_size = 0;
1140uschar *mime_content_transfer_encoding = NULL;
1141uschar *mime_content_type = NULL;
1142uschar *mime_decoded_filename = NULL;
1143uschar *mime_filename = NULL;
1144int mime_is_multipart = 0;
1145int mime_is_coverletter = 0;
1146int mime_is_rfc822 = 0;
1147int mime_part_count = -1;
1148#endif
1149
1150uid_t *never_users = NULL;
1151
1152const int on = 1; /* for setsockopt */
1153const int off = 0;
1154
1155uid_t original_euid;
1156gid_t originator_gid;
1157uschar *originator_login = NULL;
1158uschar *originator_name = NULL;
1159uid_t originator_uid;
1160uschar *override_local_interfaces = NULL;
1161uschar *override_pid_file_path = NULL;
1162
1163uschar *percent_hack_domains = NULL;
1164uschar *pid_file_path = US PID_FILE_PATH
1165 "\0<--------------Space to patch pid_file_path->";
1166#ifdef EXPERIMENTAL_PIPE_CONNECT
1167uschar *pipe_connect_advertise_hosts = US"*";
1168#endif
1169uschar *pipelining_advertise_hosts = US"*";
1170uschar *primary_hostname = NULL;
1171uschar process_info[PROCESS_INFO_SIZE];
1172int process_info_len = 0;
1173uschar *process_log_path = NULL;
1174
1175#if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1176uschar *hosts_proxy = NULL;
1177uschar *proxy_external_address = NULL;
1178int proxy_external_port = 0;
1179uschar *proxy_local_address = NULL;
1180int proxy_local_port = 0;
1181#endif
1182
1183uschar *prvscheck_address = NULL;
1184uschar *prvscheck_keynum = NULL;
1185uschar *prvscheck_result = NULL;
1186
1187
1188const uschar *qualify_domain_recipient = NULL;
1189uschar *qualify_domain_sender = NULL;
1190uschar *queue_domains = NULL;
1191int queue_interval = -1;
1192uschar *queue_name = US"";
1193uschar *queue_only_file = NULL;
1194int queue_only_load = -1;
1195uschar *queue_run_max = US"5";
1196pid_t queue_run_pid = (pid_t)0;
1197int queue_run_pipe = -1;
1198uschar *queue_smtp_domains = NULL;
1199
1200uint32_t random_seed = 0;
1201tree_node *ratelimiters_cmd = NULL;
1202tree_node *ratelimiters_conn = NULL;
1203tree_node *ratelimiters_mail = NULL;
1204uschar *raw_active_hostname = NULL;
1205uschar *raw_sender = NULL;
1206uschar **raw_recipients = NULL;
1207int raw_recipients_count = 0;
1208
1209int rcpt_count = 0;
1210int rcpt_fail_count = 0;
1211int rcpt_defer_count = 0;
1212gid_t real_gid;
1213uid_t real_uid;
1214int receive_linecount = 0;
1215int receive_messagecount = 0;
1216int receive_timeout = 0;
1217int received_count = 0;
1218uschar *received_for = NULL;
1219
1220/* This is the default text for Received headers generated by Exim. The
1221date will be automatically added on the end. */
1222
1223uschar *received_header_text = US
1224 "Received: "
1225 "${if def:sender_rcvhost {from $sender_rcvhost\n\t}"
1226 "{${if def:sender_ident {from ${quote_local_part:$sender_ident} }}"
1227 "${if def:sender_helo_name {(helo=$sender_helo_name)\n\t}}}}"
1228 "by $primary_hostname "
1229 "${if def:received_protocol {with $received_protocol }}"
1230#ifdef SUPPORT_TLS
1231 "${if def:tls_in_cipher_std { tls $tls_in_cipher_std\n\t}}"
1232#endif
1233 "(Exim $version_number)\n\t"
1234 "${if def:sender_address {(envelope-from <$sender_address>)\n\t}}"
1235 "id $message_exim_id"
1236 "${if def:received_for {\n\tfor $received_for}}"
1237 "\0<---------------Space to patch received_header_text->";
1238
1239int received_headers_max = 30;
1240uschar *received_protocol = NULL;
1241struct timeval received_time = { 0, 0 };
1242struct timeval received_time_taken = { 0, 0 };
1243uschar *recipient_data = NULL;
1244uschar *recipient_unqualified_hosts = NULL;
1245uschar *recipient_verify_failure = NULL;
1246int recipients_count = 0;
1247recipient_item *recipients_list = NULL;
1248int recipients_list_max = 0;
1249int recipients_max = 0;
1250const pcre *regex_AUTH = NULL;
1251const pcre *regex_check_dns_names = NULL;
1252const pcre *regex_From = NULL;
1253const pcre *regex_IGNOREQUOTA = NULL;
1254const pcre *regex_PIPELINING = NULL;
1255const pcre *regex_SIZE = NULL;
1256#ifdef EXPERIMENTAL_PIPE_CONNECT
1257const pcre *regex_EARLY_PIPE = NULL;
1258#endif
1259const pcre *regex_ismsgid = NULL;
1260const pcre *regex_smtp_code = NULL;
1261uschar *regex_vars[REGEX_VARS];
1262#ifdef WHITELIST_D_MACROS
1263const pcre *regex_whitelisted_macro = NULL;
1264#endif
1265#ifdef WITH_CONTENT_SCAN
1266uschar *regex_match_string = NULL;
1267#endif
1268int remote_delivery_count = 0;
1269int remote_max_parallel = 2;
1270uschar *remote_sort_domains = NULL;
1271int retry_data_expire = 7*24*60*60;
1272int retry_interval_max = 24*60*60;
1273int retry_maximum_timeout = 0; /* set from retry config */
1274retry_config *retries = NULL;
1275uschar *return_path = NULL;
1276int rewrite_existflags = 0;
1277uschar *rfc1413_hosts = US"@[]";
1278int rfc1413_query_timeout = 0;
1279uid_t root_gid = ROOT_GID;
1280uid_t root_uid = ROOT_UID;
1281
1282router_instance *routers = NULL;
1283router_instance router_defaults = {
1284 .next = NULL,
1285 .name = NULL,
1286 .info = NULL,
1287 .options_block = NULL,
1288 .driver_name = NULL,
1289
1290 .address_data = NULL,
1291#ifdef EXPERIMENTAL_BRIGHTMAIL
1292 .bmi_rule = NULL,
1293#endif
1294 .cannot_route_message = NULL,
1295 .condition = NULL,
1296 .current_directory = NULL,
1297 .debug_string = NULL,
1298 .domains = NULL,
1299 .errors_to = NULL,
1300 .expand_gid = NULL,
1301 .expand_uid = NULL,
1302 .expand_more = NULL,
1303 .expand_unseen = NULL,
1304 .extra_headers = NULL,
1305 .fallback_hosts = NULL,
1306 .home_directory = NULL,
1307 .ignore_target_hosts = NULL,
1308 .local_parts = NULL,
1309 .pass_router_name = NULL,
1310 .prefix = NULL,
1311 .redirect_router_name = NULL,
1312 .remove_headers = NULL,
1313 .require_files = NULL,
1314 .router_home_directory = NULL,
1315 .self = US"freeze",
1316 .senders = NULL,
1317 .suffix = NULL,
1318 .translate_ip_address = NULL,
1319 .transport_name = NULL,
1320
1321 .address_test = TRUE,
1322#ifdef EXPERIMENTAL_BRIGHTMAIL
1323 .bmi_deliver_alternate = FALSE,
1324 .bmi_deliver_default = FALSE,
1325 .bmi_dont_deliver = FALSE,
1326#endif
1327 .expn = TRUE,
1328 .caseful_local_part = FALSE,
1329 .check_local_user = FALSE,
1330 .disable_logging = FALSE,
1331 .fail_verify_recipient = FALSE,
1332 .fail_verify_sender = FALSE,
1333 .gid_set = FALSE,
1334 .initgroups = FALSE,
1335 .log_as_local = TRUE_UNSET,
1336 .more = TRUE,
1337 .pass_on_timeout = FALSE,
1338 .prefix_optional = FALSE,
1339 .repeat_use = TRUE,
1340 .retry_use_local_part = TRUE_UNSET,
1341 .same_domain_copy_routing = FALSE,
1342 .self_rewrite = FALSE,
1343 .suffix_optional = FALSE,
1344 .verify_only = FALSE,
1345 .verify_recipient = TRUE,
1346 .verify_sender = TRUE,
1347 .uid_set = FALSE,
1348 .unseen = FALSE,
1349 .dsn_lasthop = FALSE,
1350
1351 .self_code = self_freeze,
1352 .uid = (uid_t)(-1),
1353 .gid = (gid_t)(-1),
1354
1355 .fallback_hostlist = NULL,
1356 .transport = NULL,
1357 .pass_router = NULL,
1358 .redirect_router = NULL,
1359
1360 .dnssec = { NULL, NULL }, /* dnssec_domains {require,request} */
1361};
1362
1363uschar *router_name = NULL;
1364
1365ip_address_item *running_interfaces = NULL;
1366
1367/* This is a weird one. The following string gets patched in the binary by the
1368script that sets up a copy of Exim for running in the test harness. It seems
1369that compilers are now clever, and share constant strings if they can.
1370Elsewhere in Exim the string "<" is used. The compiler optimization seems to
1371make use of the end of this string in order to save space. So the patching then
1372wrecks this. We defeat this optimization by adding some additional characters
1373onto the end of the string. */
1374
1375uschar *running_status = US">>>running<<<" "\0EXTRA";
1376
1377int runrc = 0;
1378
1379uschar *search_error_message = NULL;
1380uschar *self_hostname = NULL;
1381uschar *sender_address = NULL;
1382unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32];
1383uschar *sender_address_data = NULL;
1384uschar *sender_address_unrewritten = NULL;
1385uschar *sender_data = NULL;
1386unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32];
1387uschar *sender_fullhost = NULL;
1388uschar *sender_helo_name = NULL;
1389uschar **sender_host_aliases = &no_aliases;
1390uschar *sender_host_address = NULL;
1391uschar *sender_host_authenticated = NULL;
1392uschar *sender_host_auth_pubname = NULL;
1393unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32];
1394uschar *sender_host_name = NULL;
1395int sender_host_port = 0;
1396uschar *sender_ident = NULL;
1397uschar *sender_rate = NULL;
1398uschar *sender_rate_limit = NULL;
1399uschar *sender_rate_period = NULL;
1400uschar *sender_rcvhost = NULL;
1401uschar *sender_unqualified_hosts = NULL;
1402uschar *sender_verify_failure = NULL;
1403address_item *sender_verified_list = NULL;
1404address_item *sender_verified_failed = NULL;
1405int sender_verified_rc = -1;
1406uschar *sending_ip_address = NULL;
1407int sending_port = -1;
1408SIGNAL_BOOL sigalrm_seen = FALSE;
1409const uschar *sigalarm_setter = NULL;
1410uschar **sighup_argv = NULL;
1411int slow_lookup_log = 0; /* millisecs, zero disables */
1412int smtp_accept_count = 0;
1413int smtp_accept_max = 20;
1414int smtp_accept_max_nonmail= 10;
1415uschar *smtp_accept_max_nonmail_hosts = US"*";
1416int smtp_accept_max_per_connection = 1000;
1417uschar *smtp_accept_max_per_host = NULL;
1418int smtp_accept_queue = 0;
1419int smtp_accept_queue_per_connection = 10;
1420int smtp_accept_reserve = 0;
1421uschar *smtp_active_hostname = NULL;
1422uschar *smtp_banner = US"$smtp_active_hostname ESMTP "
1423 "Exim $version_number $tod_full"
1424 "\0<---------------Space to patch smtp_banner->";
1425int smtp_ch_index = 0;
1426uschar *smtp_cmd_argument = NULL;
1427uschar *smtp_cmd_buffer = NULL;
1428struct timeval smtp_connection_start = {0,0};
1429uschar smtp_connection_had[SMTP_HBUFF_SIZE];
1430int smtp_connect_backlog = 20;
1431double smtp_delay_mail = 0.0;
1432double smtp_delay_rcpt = 0.0;
1433FILE *smtp_in = NULL;
1434int smtp_load_reserve = -1;
1435int smtp_mailcmd_count = 0;
1436FILE *smtp_out = NULL;
1437uschar *smtp_etrn_command = NULL;
1438int smtp_max_synprot_errors= 3;
1439int smtp_max_unknown_commands = 3;
1440uschar *smtp_notquit_reason = NULL;
1441uschar *smtp_ratelimit_hosts = NULL;
1442uschar *smtp_ratelimit_mail = NULL;
1443uschar *smtp_ratelimit_rcpt = NULL;
1444uschar *smtp_read_error = US"";
1445int smtp_receive_timeout = 5*60;
1446uschar *smtp_receive_timeout_s = NULL;
1447uschar *smtp_reserve_hosts = NULL;
1448int smtp_rlm_base = 0;
1449double smtp_rlm_factor = 0.0;
1450int smtp_rlm_limit = 0;
1451int smtp_rlm_threshold = INT_MAX;
1452int smtp_rlr_base = 0;
1453double smtp_rlr_factor = 0.0;
1454int smtp_rlr_limit = 0;
1455int smtp_rlr_threshold = INT_MAX;
1456unsigned smtp_peer_options = 0;
1457unsigned smtp_peer_options_wrap= 0;
1458#ifdef SUPPORT_I18N
1459uschar *smtputf8_advertise_hosts = US"*"; /* overridden under test-harness */
1460#endif
1461
1462#ifdef WITH_CONTENT_SCAN
1463uschar *spamd_address = US"127.0.0.1 783";
1464uschar *spam_bar = NULL;
1465uschar *spam_report = NULL;
1466uschar *spam_action = NULL;
1467uschar *spam_score = NULL;
1468uschar *spam_score_int = NULL;
1469#endif
1470#ifdef SUPPORT_SPF
1471uschar *spf_guess = US"v=spf1 a/24 mx/24 ptr ?all";
1472uschar *spf_header_comment = NULL;
1473uschar *spf_received = NULL;
1474uschar *spf_result = NULL;
1475uschar *spf_smtp_comment = NULL;
1476#endif
1477
1478FILE *spool_data_file = NULL;
1479uschar *spool_directory = US SPOOL_DIRECTORY
1480 "\0<--------------Space to patch spool_directory->";
1481#ifdef EXPERIMENTAL_SRS
1482uschar *srs_config = NULL;
1483uschar *srs_db_address = NULL;
1484uschar *srs_db_key = NULL;
1485int srs_hashlength = 6;
1486int srs_hashmin = -1;
1487int srs_maxage = 31;
1488uschar *srs_orig_recipient = NULL;
1489uschar *srs_orig_sender = NULL;
1490uschar *srs_recipient = NULL;
1491uschar *srs_secrets = NULL;
1492uschar *srs_status = NULL;
1493#endif
1494int string_datestamp_offset= -1;
1495int string_datestamp_length= 0;
1496int string_datestamp_type = -1;
1497uschar *submission_domain = NULL;
1498uschar *submission_name = NULL;
1499int syslog_facility = LOG_MAIL;
1500uschar *syslog_processname = US"exim";
1501uschar *system_filter = NULL;
1502
1503uschar *system_filter_directory_transport = NULL;
1504uschar *system_filter_file_transport = NULL;
1505uschar *system_filter_pipe_transport = NULL;
1506uschar *system_filter_reply_transport = NULL;
1507
1508gid_t system_filter_gid = 0;
1509uid_t system_filter_uid = (uid_t)-1;
1510
1511blob tcp_fastopen_nodata = { .data = NULL, .len = 0 };
1512tfo_state_t tcp_out_fastopen = TFO_NOT_USED;
1513#ifdef USE_TCP_WRAPPERS
1514uschar *tcp_wrappers_daemon_name = US TCP_WRAPPERS_DAEMON_NAME;
1515#endif
1516int test_harness_load_avg = 0;
1517int thismessage_size_limit = 0;
1518int timeout_frozen_after = 0;
1519
1520transport_instance *transports = NULL;
1521
1522transport_instance transport_defaults = {
1523 .next = NULL,
1524 .name = NULL,
1525 .info = NULL,
1526 .options_block = NULL,
1527 .driver_name = NULL,
1528 .setup = NULL,
1529 .batch_max = 1,
1530 .batch_id = NULL,
1531 .home_dir = NULL,
1532 .current_dir = NULL,
1533 .expand_multi_domain = NULL,
1534 .multi_domain = TRUE,
1535 .overrides_hosts = FALSE,
1536 .max_addresses = 100,
1537 .connection_max_messages = 500,
1538 .deliver_as_creator = FALSE,
1539 .disable_logging = FALSE,
1540 .initgroups = FALSE,
1541 .uid_set = FALSE,
1542 .gid_set = FALSE,
1543 .uid = (uid_t)(-1),
1544 .gid = (gid_t)(-1),
1545 .expand_uid = NULL,
1546 .expand_gid = NULL,
1547 .warn_message = NULL,
1548 .shadow = NULL,
1549 .shadow_condition = NULL,
1550 .filter_command = NULL,
1551 .add_headers = NULL,
1552 .remove_headers = NULL,
1553 .return_path = NULL,
1554 .debug_string = NULL,
1555 .max_parallel = NULL,
1556 .message_size_limit = NULL,
1557 .headers_rewrite = NULL,
1558 .rewrite_rules = NULL,
1559 .rewrite_existflags = 0,
1560 .filter_timeout = 300,
1561 .body_only = FALSE,
1562 .delivery_date_add = FALSE,
1563 .envelope_to_add = FALSE,
1564 .headers_only = FALSE,
1565 .rcpt_include_affixes = FALSE,
1566 .return_path_add = FALSE,
1567 .return_output = FALSE,
1568 .return_fail_output = FALSE,
1569 .log_output = FALSE,
1570 .log_fail_output = FALSE,
1571 .log_defer_output = FALSE,
1572 .retry_use_local_part = TRUE_UNSET, /* retry_use_local_part: BOOL, but set neither
1573 1 nor 0 so can detect unset */
1574#ifndef DISABLE_EVENT
1575 .event_action = NULL
1576#endif
1577};
1578
1579int transport_count;
1580uschar *transport_name = NULL;
1581int transport_newlines;
1582const uschar **transport_filter_argv = NULL;
1583int transport_filter_timeout;
1584int transport_write_timeout= 0;
1585
1586tree_node *tree_dns_fails = NULL;
1587tree_node *tree_duplicates = NULL;
1588tree_node *tree_nonrecipients = NULL;
1589tree_node *tree_unusable = NULL;
1590
1591gid_t *trusted_groups = NULL;
1592uid_t *trusted_users = NULL;
1593uschar *timezone_string = US TIMEZONE_DEFAULT;
1594
1595uschar *unknown_login = NULL;
1596uschar *unknown_username = NULL;
1597uschar *untrusted_set_sender = NULL;
1598
1599/* A regex for matching a "From_" line in an incoming message, in the form
1600
1601 From ph10 Fri Jan 5 12:35 GMT 1996
1602
1603which the "mail" commands send to the MTA (undocumented, of course), or in
1604the form
1605
1606 From ph10 Fri, 7 Jan 97 14:00:00 GMT
1607
1608which is apparently used by some UUCPs, despite it not being in RFC 976.
1609Because of variations in time formats, just match up to the minutes. That
1610should be sufficient. Examples have been seen of time fields like 12:1:03,
1611so just require one digit for hours and minutes. The weekday is also absent
1612in some forms. */
1613
1614uschar *uucp_from_pattern = US
1615 "^From\\s+(\\S+)\\s+(?:[a-zA-Z]{3},?\\s+)?" /* Common start */
1616 "(?:" /* Non-extracting bracket */
1617 "[a-zA-Z]{3}\\s+\\d?\\d|" /* First form */
1618 "\\d?\\d\\s+[a-zA-Z]{3}\\s+\\d\\d(?:\\d\\d)?" /* Second form */
1619 ")" /* End alternation */
1620 "\\s+\\d\\d?:\\d\\d?"; /* Start of time */
1621
1622uschar *uucp_from_sender = US"$1";
1623
1624uschar *verify_mode = NULL;
1625uschar *version_copyright =
1626 US"Copyright (c) University of Cambridge, 1995 - 2018\n"
1627 "(c) The Exim Maintainers and contributors in ACKNOWLEDGMENTS file, 2007 - 2018";
1628uschar *version_date = US"?";
1629uschar *version_cnumber = US"????";
1630uschar *version_string = US"?";
1631
1632uschar *warn_message_file = NULL;
1633int warning_count = 0;
1634uschar *warnmsg_delay = NULL;
1635uschar *warnmsg_recipients = NULL;
1636
1637
1638/* End of globals.c */