TLS: support multiple certificate files in server. Bug 2092
[exim.git] / src / src / globals.c
CommitLineData
059ec3d9
PH
1/*************************************************
2* Exim - an Internet mail transport agent *
3*************************************************/
4
d4e5e70b 5/* Copyright (c) University of Cambridge 1995 - 2017 */
059ec3d9
PH
6/* See the file NOTICE for conditions of use and distribution. */
7
8/* All the global variables are defined together in this one module, so
9that they are easy to find. */
10
11#include "exim.h"
12
13
059ec3d9
PH
14/* Generic options for auths, all of which live inside auth_instance
15data blocks and hence have the opt_public flag set. */
16
17optionlist optionlist_auths[] = {
6c512171
PH
18 { "client_condition", opt_stringptr | opt_public,
19 (void *)(offsetof(auth_instance, client_condition)) },
6f123593
JH
20 { "client_set_id", opt_stringptr | opt_public,
21 (void *)(offsetof(auth_instance, set_client_id)) },
059ec3d9
PH
22 { "driver", opt_stringptr | opt_public,
23 (void *)(offsetof(auth_instance, driver_name)) },
24 { "public_name", opt_stringptr | opt_public,
25 (void *)(offsetof(auth_instance, public_name)) },
26 { "server_advertise_condition", opt_stringptr | opt_public,
27 (void *)(offsetof(auth_instance, advertise_condition))},
16ff981e
PH
28 { "server_condition", opt_stringptr | opt_public,
29 (void *)(offsetof(auth_instance, server_condition)) },
059ec3d9
PH
30 { "server_debug_print", opt_stringptr | opt_public,
31 (void *)(offsetof(auth_instance, server_debug_string)) },
32 { "server_mail_auth_condition", opt_stringptr | opt_public,
33 (void *)(offsetof(auth_instance, mail_auth_condition)) },
34 { "server_set_id", opt_stringptr | opt_public,
35 (void *)(offsetof(auth_instance, set_id)) }
36};
37
c0b9d3e8 38int optionlist_auths_size = nelem(optionlist_auths);
059ec3d9
PH
39
40/* An empty host aliases list. */
41
42uschar *no_aliases = NULL;
43
44
45/* For comments on these variables, see globals.h. I'm too idle to
46duplicate them here... */
47
48#ifdef EXIM_PERL
49uschar *opt_perl_startup = NULL;
50BOOL opt_perl_at_start = FALSE;
51BOOL opt_perl_started = FALSE;
2f680c0c 52BOOL opt_perl_taintmode = FALSE;
059ec3d9
PH
53#endif
54
1a46a8c5
PH
55#ifdef EXPAND_DLFUNC
56tree_node *dlobj_anchor = NULL;
57#endif
58
059ec3d9
PH
59#ifdef LOOKUP_IBASE
60uschar *ibase_servers = NULL;
61#endif
62
63#ifdef LOOKUP_LDAP
bc19a55b
PP
64uschar *eldap_ca_cert_dir = NULL;
65uschar *eldap_ca_cert_file = NULL;
66uschar *eldap_cert_file = NULL;
67uschar *eldap_cert_key = NULL;
68uschar *eldap_cipher_suite = NULL;
059ec3d9 69uschar *eldap_default_servers = NULL;
bc19a55b 70uschar *eldap_require_cert = NULL;
059ec3d9 71int eldap_version = -1;
bc19a55b 72BOOL eldap_start_tls = FALSE;
059ec3d9
PH
73#endif
74
75#ifdef LOOKUP_MYSQL
76uschar *mysql_servers = NULL;
77#endif
78
79#ifdef LOOKUP_ORACLE
80uschar *oracle_servers = NULL;
81#endif
82
83#ifdef LOOKUP_PGSQL
84uschar *pgsql_servers = NULL;
85#endif
86
de78e2d5 87#ifdef LOOKUP_REDIS
9bdd29ad
TL
88uschar *redis_servers = NULL;
89#endif
90
31480e42
PH
91#ifdef LOOKUP_SQLITE
92int sqlite_lock_timeout = 5;
93#endif
94
059ec3d9
PH
95#ifdef SUPPORT_MOVE_FROZEN_MESSAGES
96BOOL move_frozen_messages = FALSE;
97#endif
98
99/* These variables are outside the #ifdef because it keeps the code less
100cluttered in several places (e.g. during logging) if we can always refer to
101them. Also, the tls_ variables are now always visible. */
102
817d9f57 103tls_support tls_in = {
f2ed27cf
JH
104 .active = -1,
105 .bits = 0,
106 .certificate_verified = FALSE,
85098ee7 107#ifdef EXPERIMENTAL_DANE
f2ed27cf
JH
108 .dane_verified = FALSE,
109 .tlsa_usage = 0,
85098ee7 110#endif
f2ed27cf
JH
111 .cipher = NULL,
112 .on_connect = FALSE,
113 .on_connect_ports = NULL,
114 .ourcert = NULL,
115 .peercert = NULL,
116 .peerdn = NULL,
117 .sni = NULL,
118 .ocsp = OCSP_NOT_REQ
817d9f57
JH
119};
120tls_support tls_out = {
f2ed27cf
JH
121 .active = -1,
122 .bits = 0,
123 .certificate_verified = FALSE,
85098ee7 124#ifdef EXPERIMENTAL_DANE
f2ed27cf
JH
125 .dane_verified = FALSE,
126 .tlsa_usage = 0,
85098ee7 127#endif
f2ed27cf
JH
128 .cipher = NULL,
129 .on_connect = FALSE,
130 .on_connect_ports = NULL,
131 .ourcert = NULL,
132 .peercert = NULL,
133 .peerdn = NULL,
134 .sni = NULL,
135 .ocsp = OCSP_NOT_REQ
817d9f57
JH
136};
137
6c1c3d1d
WB
138uschar *dsn_envid = NULL;
139int dsn_ret = 0;
140const pcre *regex_DSN = NULL;
6c1c3d1d 141uschar *dsn_advertise_hosts = NULL;
059ec3d9
PH
142
143#ifdef SUPPORT_TLS
e6060e2c 144BOOL gnutls_compat_mode = FALSE;
2519e60d 145BOOL gnutls_allow_auto_pkcs11 = FALSE;
77bb000f 146uschar *openssl_options = NULL;
059ec3d9 147const pcre *regex_STARTTLS = NULL;
23f3dc67 148uschar *tls_advertise_hosts = US"*";
059ec3d9
PH
149uschar *tls_certificate = NULL;
150uschar *tls_crl = NULL;
3375e053
PP
151/* This default matches NSS DH_MAX_P_BITS value at current time (2012), because
152that's the interop problem which has been observed: GnuTLS suggesting a higher
153bit-count as "NORMAL" (2432) and Thunderbird dropping connection. */
154int tls_dh_max_bits = 2236;
059ec3d9 155uschar *tls_dhparam = NULL;
8e53a4fc 156uschar *tls_eccurve = US"auto";
23f3dc67 157# ifndef DISABLE_OCSP
3f7eeb86 158uschar *tls_ocsp_file = NULL;
23f3dc67 159# endif
059ec3d9
PH
160uschar *tls_privatekey = NULL;
161BOOL tls_remember_esmtp = FALSE;
162uschar *tls_require_ciphers = NULL;
163uschar *tls_try_verify_hosts = NULL;
0e0f3f56 164uschar *tls_verify_certificates= US"system";
059ec3d9 165uschar *tls_verify_hosts = NULL;
23f3dc67
JH
166#else /*!SUPPORT_TLS*/
167uschar *tls_advertise_hosts = NULL;
059ec3d9
PH
168#endif
169
8ccd00b1 170#ifndef DISABLE_PRDR
fd98a5c6
JH
171/* Per Recipient Data Response variables */
172BOOL prdr_enable = FALSE;
173BOOL prdr_requested = FALSE;
174const pcre *regex_PRDR = NULL;
175#endif
059ec3d9 176
8c5d388a 177#ifdef SUPPORT_I18N
7ade712c
JH
178const pcre *regex_UTF8 = NULL;
179#endif
180
059ec3d9
PH
181/* Input-reading functions for messages, so we can use special ones for
182incoming TCP/IP. The defaults use stdin. We never need these for any
183stand-alone tests. */
184
d185889f 185#if !defined(STAND_ALONE) && !defined(MACRO_PREDEF)
bd8fbe36 186int (*lwr_receive_getc)(unsigned) = stdin_getc;
0d81dabc 187uschar * (*lwr_receive_getbuf)(unsigned *) = NULL;
7e3ce68e 188int (*lwr_receive_ungetc)(int) = stdin_ungetc;
bd8fbe36 189int (*receive_getc)(unsigned) = stdin_getc;
0d81dabc 190uschar * (*receive_getbuf)(unsigned *) = NULL;
584e96c6 191void (*receive_get_cache)(void)= NULL;
059ec3d9
PH
192int (*receive_ungetc)(int) = stdin_ungetc;
193int (*receive_feof)(void) = stdin_feof;
194int (*receive_ferror)(void) = stdin_ferror;
58eb016e 195BOOL (*receive_smtp_buffered)(void) = NULL; /* Only used for SMTP */
059ec3d9
PH
196#endif
197
198
199/* List of per-address expansion variables for clearing and saving/restoring
200when verifying one address while routing/verifying another. We have to have
201the size explicit, because it is referenced from more than one module. */
202
55414b25
JH
203const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT] = {
204 CUSS &deliver_address_data,
205 CUSS &deliver_domain,
206 CUSS &deliver_domain_data,
207 CUSS &deliver_domain_orig,
208 CUSS &deliver_domain_parent,
209 CUSS &deliver_localpart,
210 CUSS &deliver_localpart_data,
211 CUSS &deliver_localpart_orig,
212 CUSS &deliver_localpart_parent,
213 CUSS &deliver_localpart_prefix,
214 CUSS &deliver_localpart_suffix,
215 CUSS (uschar **)(&deliver_recipients),
216 CUSS &deliver_host,
217 CUSS &deliver_home,
218 CUSS &address_file,
219 CUSS &address_pipe,
220 CUSS &self_hostname,
059ec3d9
PH
221 NULL };
222
223int address_expansions_count = sizeof(address_expansions)/sizeof(uschar **);
224
225/* General global variables */
226
71fafd95 227header_line *acl_added_headers = NULL;
059ec3d9 228tree_node *acl_anchor = NULL;
525239c1
JH
229uschar *acl_arg[9] = {NULL, NULL, NULL, NULL, NULL,
230 NULL, NULL, NULL, NULL};
231int acl_narg = 0;
8f128379 232
e1d04f48
JH
233int acl_level = 0;
234
059ec3d9 235uschar *acl_not_smtp = NULL;
54cdb463
PH
236#ifdef WITH_CONTENT_SCAN
237uschar *acl_not_smtp_mime = NULL;
238#endif
45b91596 239uschar *acl_not_smtp_start = NULL;
e7568d51 240uschar *acl_removed_headers = NULL;
059ec3d9
PH
241uschar *acl_smtp_auth = NULL;
242uschar *acl_smtp_connect = NULL;
243uschar *acl_smtp_data = NULL;
8ccd00b1 244#ifndef DISABLE_PRDR
ad07e9ad 245uschar *acl_smtp_data_prdr = US"accept";
fd98a5c6 246#endif
80a47a2c
TK
247#ifndef DISABLE_DKIM
248uschar *acl_smtp_dkim = NULL;
249#endif
059ec3d9
PH
250uschar *acl_smtp_etrn = NULL;
251uschar *acl_smtp_expn = NULL;
252uschar *acl_smtp_helo = NULL;
253uschar *acl_smtp_mail = NULL;
254uschar *acl_smtp_mailauth = NULL;
8523533c
TK
255#ifdef WITH_CONTENT_SCAN
256uschar *acl_smtp_mime = NULL;
257#endif
8f128379 258uschar *acl_smtp_notquit = NULL;
059ec3d9
PH
259uschar *acl_smtp_predata = NULL;
260uschar *acl_smtp_quit = NULL;
261uschar *acl_smtp_rcpt = NULL;
262uschar *acl_smtp_starttls = NULL;
263uschar *acl_smtp_vrfy = NULL;
8f128379 264
059ec3d9 265BOOL acl_temp_details = FALSE;
38a0a95f
PH
266tree_node *acl_var_c = NULL;
267tree_node *acl_var_m = NULL;
059ec3d9 268uschar *acl_verify_message = NULL;
059ec3d9
PH
269string_item *acl_warn_logged = NULL;
270
271/* Names of SMTP places for use in ACL error messages, and corresponding SMTP
272error codes - keep in step with definitions of ACL_WHERE_xxxx in macros.h. */
273
274uschar *acl_wherenames[] = { US"RCPT",
275 US"MAIL",
276 US"PREDATA",
8523533c 277 US"MIME",
80a47a2c 278 US"DKIM",
059ec3d9 279 US"DATA",
8ccd00b1 280#ifndef DISABLE_PRDR
fd98a5c6
JH
281 US"PRDR",
282#endif
059ec3d9
PH
283 US"non-SMTP",
284 US"AUTH",
285 US"connection",
286 US"ETRN",
287 US"EXPN",
288 US"EHLO or HELO",
289 US"MAILAUTH",
45b91596 290 US"non-SMTP-start",
8f128379 291 US"NOTQUIT",
059ec3d9
PH
292 US"QUIT",
293 US"STARTTLS",
723c72e6 294 US"VRFY",
faa05a93
JH
295 US"delivery",
296 US"unknown"
059ec3d9
PH
297 };
298
a5bd321b
PH
299uschar *acl_wherecodes[] = { US"550", /* RCPT */
300 US"550", /* MAIL */
301 US"550", /* PREDATA */
302 US"550", /* MIME */
80a47a2c 303 US"550", /* DKIM */
a5bd321b 304 US"550", /* DATA */
8ccd00b1 305#ifndef DISABLE_PRDR
fd98a5c6
JH
306 US"550", /* RCPT PRDR */
307#endif
a5bd321b
PH
308 US"0", /* not SMTP; not relevant */
309 US"503", /* AUTH */
310 US"550", /* connect */
311 US"458", /* ETRN */
312 US"550", /* EXPN */
313 US"550", /* HELO/EHLO */
314 US"0", /* MAILAUTH; not relevant */
315 US"0", /* not SMTP; not relevant */
8f128379 316 US"0", /* NOTQUIT; not relevant */
a5bd321b
PH
317 US"0", /* QUIT; not relevant */
318 US"550", /* STARTTLS */
723c72e6 319 US"252", /* VRFY */
faa05a93 320 US"0", /* delivery; not relevant */
723c72e6 321 US"0" /* unknown; not relevant */
059ec3d9 322 };
8e669ac1 323
69358f02
PH
324BOOL active_local_from_check = FALSE;
325BOOL active_local_sender_retain = FALSE;
9cbad13b 326BOOL accept_8bitmime = TRUE; /* deliberately not RFC compliant */
bc3c7bb7 327uschar *add_environment = NULL;
059ec3d9
PH
328address_item *addr_duplicate = NULL;
329
330address_item address_defaults = {
f2ed27cf
JH
331 .next = NULL,
332 .parent = NULL,
333 .first = NULL,
334 .dupof = NULL,
335 .start_router = NULL,
336 .router = NULL,
337 .transport = NULL,
338 .host_list = NULL,
339 .host_used = NULL,
340 .fallback_hosts = NULL,
341 .reply = NULL,
342 .retries = NULL,
343 .address = NULL,
344 .unique = NULL,
345 .cc_local_part = NULL,
346 .lc_local_part = NULL,
347 .local_part = NULL,
348 .prefix = NULL,
349 .suffix = NULL,
350 .domain = NULL,
351 .address_retry_key = NULL,
352 .domain_retry_key = NULL,
353 .current_dir = NULL,
354 .home_dir = NULL,
355 .message = NULL,
356 .user_message = NULL,
357 .onetime_parent = NULL,
358 .pipe_expandn = NULL,
359 .return_filename = NULL,
360 .self_hostname = NULL,
361 .shadow_message = NULL,
895fbaf2 362#ifdef SUPPORT_TLS
f2ed27cf
JH
363 .cipher = NULL,
364 .ourcert = NULL,
365 .peercert = NULL,
366 .peerdn = NULL,
367 .ocsp = OCSP_NOT_REQ,
895fbaf2
JH
368#endif
369#ifdef EXPERIMENTAL_DSN_INFO
f2ed27cf
JH
370 .smtp_greeting = NULL,
371 .helo_response = NULL,
895fbaf2 372#endif
f2ed27cf
JH
373 .authenticator = NULL,
374 .auth_id = NULL,
375 .auth_sndr = NULL,
376 .dsn_orcpt = NULL,
377 .dsn_flags = 0,
378 .dsn_aware = 0,
379 .uid = (uid_t)(-1),
380 .gid = (gid_t)(-1),
7eb0e5d2 381 .flags = { 0 },
f2ed27cf
JH
382 .domain_cache = { 0 }, /* domain_cache - any larger array should be zeroed */
383 .localpart_cache = { 0 }, /* localpart_cache - ditto */
384 .mode = -1,
385 .more_errno = 0,
386 .delivery_usec = 0,
387 .basic_errno = ERRNO_UNKNOWNERROR,
388 .child_count = 0,
389 .return_file = -1,
390 .special_action = SPECIAL_NONE,
391 .transport_return = DEFER,
392 .prop = { /* fields that are propagated to children */
393 .address_data = NULL,
394 .domain_data = NULL,
395 .localpart_data = NULL,
396 .errors_address = NULL,
397 .extra_headers = NULL,
398 .remove_headers = NULL,
384152a6 399#ifdef EXPERIMENTAL_SRS
f2ed27cf 400 .srs_sender = NULL,
7ade712c 401#endif
a5853d7c 402 .ignore_error = FALSE,
8c5d388a 403#ifdef SUPPORT_I18N
f2ed27cf
JH
404 .utf8_msg = FALSE,
405 .utf8_downcvt = FALSE,
406 .utf8_downcvt_maybe = FALSE
384152a6 407#endif
059ec3d9
PH
408 }
409};
410
411uschar *address_file = NULL;
412uschar *address_pipe = NULL;
413BOOL address_test_mode = FALSE;
414tree_node *addresslist_anchor = NULL;
415int addresslist_count = 0;
416gid_t *admin_groups = NULL;
417BOOL admin_user = FALSE;
c46782ef 418BOOL allow_auth_unadvertised= FALSE;
059ec3d9
PH
419BOOL allow_domain_literals = FALSE;
420BOOL allow_mx_to_ip = FALSE;
421BOOL allow_unqualified_recipient = TRUE; /* For local messages */
422BOOL allow_unqualified_sender = TRUE; /* Reset for SMTP */
423BOOL allow_utf8_domains = FALSE;
2d07a215 424uschar *authenticated_fail_id = NULL;
059ec3d9
PH
425uschar *authenticated_id = NULL;
426uschar *authenticated_sender = NULL;
427BOOL authentication_failed = FALSE;
428auth_instance *auths = NULL;
429uschar *auth_advertise_hosts = US"*";
430auth_instance auth_defaults = {
f2ed27cf
JH
431 .next = NULL,
432 .name = NULL,
433 .info = NULL,
434 .options_block = NULL,
435 .driver_name = NULL,
436 .advertise_condition = NULL,
437 .client_condition = NULL,
438 .public_name = NULL,
439 .set_id = NULL,
440 .set_client_id = NULL,
441 .mail_auth_condition = NULL,
442 .server_debug_string = NULL,
443 .server_condition = NULL,
444 .client = FALSE,
445 .server = FALSE,
446 .advertised = FALSE
059ec3d9
PH
447};
448
449uschar *auth_defer_msg = US"reason not recorded";
450uschar *auth_defer_user_msg = US"";
f78eb7c6 451uschar *auth_vars[AUTH_VARS];
059ec3d9 452int auto_thaw = 0;
8523533c 453#ifdef WITH_CONTENT_SCAN
9e949f00 454BOOL av_failed = FALSE;
8523533c
TK
455uschar *av_scanner = US"sophie:/var/run/sophie"; /* AV scanner */
456#endif
059ec3d9
PH
457
458BOOL background_daemon = TRUE;
9a799bc0
PH
459
460#if BASE_62 == 62
059ec3d9
PH
461uschar *base62_chars=
462 US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz";
9a799bc0
PH
463#else
464uschar *base62_chars= US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ";
465#endif
466
059ec3d9
PH
467uschar *bi_command = NULL;
468uschar *big_buffer = NULL;
469int big_buffer_size = BIG_BUFFER_SIZE;
8523533c
TK
470#ifdef EXPERIMENTAL_BRIGHTMAIL
471uschar *bmi_alt_location = NULL;
472uschar *bmi_base64_tracker_verdict = NULL;
473uschar *bmi_base64_verdict = NULL;
474uschar *bmi_config_file = US"/opt/brightmail/etc/brightmail.cfg";
475int bmi_deliver = 1;
476int bmi_run = 0;
477uschar *bmi_verdicts = NULL;
478#endif
32b8ce41 479int bsmtp_transaction_linecount = 0;
939c3e34 480int body_8bitmime = 0;
059ec3d9
PH
481int body_linecount = 0;
482int body_zerocount = 0;
483uschar *bounce_message_file = NULL;
484uschar *bounce_message_text = NULL;
485uschar *bounce_recipient = NULL;
486BOOL bounce_return_body = TRUE;
62b7cd08 487int bounce_return_linesize_limit = 998;
059ec3d9
PH
488BOOL bounce_return_message = TRUE;
489int bounce_return_size_limit = 100*1024;
490uschar *bounce_sender_authentication = NULL;
32b8ce41 491uschar *builtin_macros_create_trigger = NULL;
059ec3d9 492
055e2cb4 493uschar *callout_address = NULL;
059ec3d9
PH
494int callout_cache_domain_positive_expire = 7*24*60*60;
495int callout_cache_domain_negative_expire = 3*60*60;
496int callout_cache_positive_expire = 24*60*60;
497int callout_cache_negative_expire = 2*60*60;
498uschar *callout_random_local_part = US"$primary_hostname-$tod_epoch-testing";
80a47a2c 499uschar *check_dns_names_pattern= US"(?i)^(?>(?(1)\\.|())[^\\W](?>[a-z0-9/_-]*[^\\W])?)+(\\.?)$";
ddf1b11a
JH
500int check_log_inodes = 100;
501int check_log_space = 10*1024; /* 10K Kbyte == 10MB */
a0d6ba8a 502BOOL check_rfc2047_length = TRUE;
ddf1b11a
JH
503int check_spool_inodes = 100;
504int check_spool_space = 10*1024; /* 10K Kbyte == 10MB */
18481de3 505
aa368db3 506uschar *chunking_advertise_hosts = US"*";
18481de3 507unsigned chunking_datasize = 0;
7e3ce68e
JH
508unsigned chunking_data_left = 0;
509BOOL chunking_offered = FALSE;
18481de3 510chunking_state_t chunking_state= CHUNKING_NOT_OFFERED;
f98442df 511const pcre *regex_CHUNKING = NULL;
18481de3 512
aa368db3
JH
513uschar *client_authenticator = NULL;
514uschar *client_authenticated_id = NULL;
515uschar *client_authenticated_sender = NULL;
059ec3d9
PH
516int clmacro_count = 0;
517uschar *clmacros[MAX_CLMACROS];
f33875c3 518BOOL commandline_checks_require_admin = FALSE;
059ec3d9
PH
519BOOL config_changed = FALSE;
520FILE *config_file = NULL;
18d6b513 521const uschar *config_filename = NULL;
059ec3d9 522int config_lineno = 0;
35edf2ff
PH
523#ifdef CONFIGURE_GROUP
524gid_t config_gid = CONFIGURE_GROUP;
19bfe9e7
HSHR
525#else
526gid_t config_gid = 0;
35edf2ff 527#endif
059ec3d9
PH
528uschar *config_main_filelist = US CONFIGURE_FILE
529 "\0<-----------Space to patch configure_filename->";
530uschar *config_main_filename = NULL;
98b8312f 531uschar *config_main_directory = NULL;
059ec3d9
PH
532
533#ifdef CONFIGURE_OWNER
534uid_t config_uid = CONFIGURE_OWNER;
19bfe9e7
HSHR
535#else
536uid_t config_uid = 0;
059ec3d9
PH
537#endif
538
539int connection_max_messages= -1;
5013d912 540uschar *continue_proxy_cipher = NULL;
059ec3d9
PH
541uschar *continue_hostname = NULL;
542uschar *continue_host_address = NULL;
543BOOL continue_more = FALSE;
544int continue_sequence = 1;
545uschar *continue_transport = NULL;
546
e5a9dba6 547uschar *csa_status = NULL;
5032d1cf 548cut_t cutthrough = {
f2ed27cf
JH
549 .callout_hold_only = FALSE, /* verify-only: normal delivery */
550 .delivery = FALSE, /* when to attempt */
551 .defer_pass = FALSE, /* on defer: spool locally */
552 .is_tls = FALSE, /* not a TLS conn yet */
553 .fd = -1, /* open connection */
554 .nrcpt = 0, /* number of addresses */
5032d1cf 555};
e5a9dba6 556
059ec3d9
PH
557BOOL daemon_listen = FALSE;
558uschar *daemon_smtp_port = US"smtp";
4aee0225
PH
559int daemon_startup_retries = 9;
560int daemon_startup_sleep = 30;
6a8f9482
TK
561
562#ifdef EXPERIMENTAL_DCC
563BOOL dcc_direct_add_header = FALSE;
564uschar *dcc_header = NULL;
565uschar *dcc_result = NULL;
566uschar *dccifd_address = US"/usr/local/dcc/var/dccifd";
567uschar *dccifd_options = US"header";
568#endif
569
3d235903 570BOOL debug_daemon = FALSE;
059ec3d9
PH
571int debug_fd = -1;
572FILE *debug_file = NULL;
6c6d6e48
TF
573int debug_notall[] = {
574 Di_memory,
575 -1
059ec3d9 576};
6c6d6e48
TF
577bit_table debug_options[] = { /* must be in alphabetical order */
578 BIT_TABLE(D, acl),
579 BIT_TABLE(D, all),
580 BIT_TABLE(D, auth),
581 BIT_TABLE(D, deliver),
582 BIT_TABLE(D, dns),
583 BIT_TABLE(D, dnsbl),
584 BIT_TABLE(D, exec),
585 BIT_TABLE(D, expand),
586 BIT_TABLE(D, filter),
587 BIT_TABLE(D, hints_lookup),
588 BIT_TABLE(D, host_lookup),
589 BIT_TABLE(D, ident),
590 BIT_TABLE(D, interface),
591 BIT_TABLE(D, lists),
592 BIT_TABLE(D, load),
593 BIT_TABLE(D, local_scan),
594 BIT_TABLE(D, lookup),
595 BIT_TABLE(D, memory),
596 BIT_TABLE(D, pid),
597 BIT_TABLE(D, process_info),
598 BIT_TABLE(D, queue_run),
599 BIT_TABLE(D, receive),
600 BIT_TABLE(D, resolver),
601 BIT_TABLE(D, retry),
602 BIT_TABLE(D, rewrite),
603 BIT_TABLE(D, route),
604 BIT_TABLE(D, timestamp),
605 BIT_TABLE(D, tls),
606 BIT_TABLE(D, transport),
607 BIT_TABLE(D, uid),
608 BIT_TABLE(D, verify),
609};
610int debug_options_count = nelem(debug_options);
611
059ec3d9 612unsigned int debug_selector = 0;
64073d9c 613BOOL debug_store = FALSE;
059ec3d9 614int delay_warning[DELAY_WARNING_SIZE] = { DELAY_WARNING_SIZE, 1, 24*60*60 };
5dff5817
PH
615uschar *delay_warning_condition=
616 US"${if or {"
e85a7ad5 617 "{ !eq{$h_list-id:$h_list-post:$h_list-subscribe:}{} }"
5dff5817
PH
618 "{ match{$h_precedence:}{(?i)bulk|list|junk} }"
619 "{ match{$h_auto-submitted:}{(?i)auto-generated|auto-replied} }"
620 "} {no}{yes}}";
059ec3d9
PH
621BOOL delivery_date_remove = TRUE;
622uschar *deliver_address_data = NULL;
623int deliver_datafile = -1;
55414b25 624const uschar *deliver_domain = NULL;
059ec3d9 625uschar *deliver_domain_data = NULL;
55414b25
JH
626const uschar *deliver_domain_orig = NULL;
627const uschar *deliver_domain_parent = NULL;
059ec3d9
PH
628BOOL deliver_drop_privilege = FALSE;
629BOOL deliver_firsttime = FALSE;
630BOOL deliver_force = FALSE;
631BOOL deliver_freeze = FALSE;
19050083 632time_t deliver_frozen_at = 0;
059ec3d9 633uschar *deliver_home = NULL;
55414b25
JH
634const uschar *deliver_host = NULL;
635const uschar *deliver_host_address = NULL;
a7538db1 636int deliver_host_port = 0;
059ec3d9
PH
637uschar *deliver_in_buffer = NULL;
638ino_t deliver_inode = 0;
639uschar *deliver_localpart = NULL;
640uschar *deliver_localpart_data = NULL;
641uschar *deliver_localpart_orig = NULL;
642uschar *deliver_localpart_parent = NULL;
643uschar *deliver_localpart_prefix = NULL;
644uschar *deliver_localpart_suffix = NULL;
645BOOL deliver_force_thaw = FALSE;
646BOOL deliver_manual_thaw = FALSE;
647uschar *deliver_out_buffer = NULL;
648int deliver_queue_load_max = -1;
649address_item *deliver_recipients = NULL;
650uschar *deliver_selectstring = NULL;
651BOOL deliver_selectstring_regex = FALSE;
652uschar *deliver_selectstring_sender = NULL;
653BOOL deliver_selectstring_sender_regex = FALSE;
4c590bd1 654BOOL disable_callout_flush = FALSE;
047bdd8c 655BOOL disable_delay_flush = FALSE;
54fc8428
PH
656#ifdef ENABLE_DISABLE_FSYNC
657BOOL disable_fsync = FALSE;
658#endif
7e66e54d 659BOOL disable_ipv6 = FALSE;
059ec3d9
PH
660BOOL disable_logging = FALSE;
661
80a47a2c 662#ifndef DISABLE_DKIM
abe1010c 663BOOL dkim_collect_input = FALSE;
2df588c9 664uschar *dkim_cur_signer = NULL;
abe1010c
JH
665BOOL dkim_disable_verify = FALSE;
666int dkim_key_length = 0;
9e5d6b55 667uschar *dkim_signers = NULL;
f7572e5a
TK
668uschar *dkim_signing_domain = NULL;
669uschar *dkim_signing_selector = NULL;
9e5d6b55 670uschar *dkim_verify_signers = US"$dkim_signers";
f7572e5a 671#endif
4840604e 672#ifdef EXPERIMENTAL_DMARC
4a8ce2d8 673BOOL dmarc_has_been_checked = FALSE;
4840604e 674uschar *dmarc_ar_header = NULL;
8c8b8274 675uschar *dmarc_domain_policy = NULL;
4840604e
TL
676uschar *dmarc_forensic_sender = NULL;
677uschar *dmarc_history_file = NULL;
678uschar *dmarc_status = NULL;
679uschar *dmarc_status_text = NULL;
680uschar *dmarc_tld_file = NULL;
681uschar *dmarc_used_domain = NULL;
682BOOL dmarc_disable_verify = FALSE;
683BOOL dmarc_enable_forensic = FALSE;
684#endif
f7572e5a 685
059ec3d9 686uschar *dns_again_means_nonexist = NULL;
e5a9dba6
PH
687int dns_csa_search_limit = 5;
688BOOL dns_csa_use_reverse = TRUE;
e682570f
TL
689#ifdef EXPERIMENTAL_DANE
690int dns_dane_ok = -1;
691#endif
059ec3d9
PH
692uschar *dns_ipv4_lookup = NULL;
693int dns_retrans = 0;
694int dns_retry = 0;
0fbd9bff 695int dns_dnssec_ok = -1; /* <0 = not coerced */
9820a77f 696uschar *dns_trust_aa = NULL;
e97d1f08 697int dns_use_edns0 = -1; /* <0 = not coerced */
059ec3d9 698uschar *dnslist_domain = NULL;
93655c46 699uschar *dnslist_matched = NULL;
059ec3d9
PH
700uschar *dnslist_text = NULL;
701uschar *dnslist_value = NULL;
702tree_node *domainlist_anchor = NULL;
703int domainlist_count = 0;
704BOOL dont_deliver = FALSE;
705BOOL dot_ends = TRUE;
706BOOL drop_cr = FALSE; /* No longer used */
0e22dfd1 707uschar *dsn_from = US DEFAULT_DSN_FROM;
059ec3d9
PH
708
709BOOL enable_dollar_recipients = FALSE;
710BOOL envelope_to_remove = TRUE;
711int errno_quota = ERRNO_QUOTA;
712uschar *errors_copy = NULL;
713int error_handling = ERRORS_SENDER;
714uschar *errors_reply_to = NULL;
715int errors_sender_rc = EXIT_FAILURE;
0cbf2b82 716#ifndef DISABLE_EVENT
723fe533 717uschar *event_action = NULL; /* expansion for delivery events */
4c04137d 718uschar *event_data = NULL; /* auxiliary data variable for event */
723fe533 719int event_defer_errno = 0;
55414b25 720const uschar *event_name = NULL; /* event name variable */
723fe533
JH
721#endif
722
059ec3d9
PH
723
724gid_t exim_gid = EXIM_GID;
725BOOL exim_gid_set = TRUE; /* This gid is always set */
726uschar *exim_path = US BIN_DIRECTORY "/exim"
727 "\0<---------------Space to patch exim_path->";
728uid_t exim_uid = EXIM_UID;
729BOOL exim_uid_set = TRUE; /* This uid is always set */
e1d04f48 730int expand_level = 0; /* Nesting depth, indent for debug */
059ec3d9
PH
731int expand_forbid = 0;
732int expand_nlength[EXPAND_MAXN+1];
733int expand_nmax = -1;
734uschar *expand_nstring[EXPAND_MAXN+1];
735BOOL expand_string_forcedfail = FALSE;
736uschar *expand_string_message;
737BOOL extract_addresses_remove_arguments = TRUE;
738uschar *extra_local_interfaces = NULL;
739
29aba418 740int fake_response = OK;
0e22dfd1
PH
741uschar *fake_response_text = US"Your message has been rejected but is "
742 "being kept for evaluation.\nIf it was a "
743 "legitimate message, it may still be "
744 "delivered to the target recipient(s).";
059ec3d9
PH
745int filter_n[FILTER_VARIABLE_COUNT];
746BOOL filter_running = FALSE;
747int filter_sn[FILTER_VARIABLE_COUNT];
f05da2e8
PH
748int filter_test = FTEST_NONE;
749uschar *filter_test_sfile = NULL;
750uschar *filter_test_ufile = NULL;
059ec3d9
PH
751uschar *filter_thisaddress = NULL;
752int finduser_retries = 0;
753uid_t fixed_never_users[] = { FIXED_NEVER_USERS };
754uschar *freeze_tell = NULL;
6a3f1455 755uschar *freeze_tell_config = NULL;
059ec3d9
PH
756uschar *fudged_queue_times = US"";
757
758uschar *gecos_name = NULL;
759uschar *gecos_pattern = NULL;
760rewrite_rule *global_rewrite_rules = NULL;
761
762uschar *headers_charset = US HEADERS_CHARSET;
763int header_insert_maxlen = 64 * 1024;
764header_line *header_last = NULL;
765header_line *header_list = NULL;
766int header_maxsize = HEADER_MAXSIZE;
767int header_line_maxsize = 0;
768
769header_name header_names[] = {
f2ed27cf
JH
770 /* name len allow_resent htype */
771 { US"bcc", 3, TRUE, htype_bcc },
772 { US"cc", 2, TRUE, htype_cc },
773 { US"date", 4, TRUE, htype_date },
774 { US"delivery-date", 13, FALSE, htype_delivery_date },
775 { US"envelope-to", 11, FALSE, htype_envelope_to },
776 { US"from", 4, TRUE, htype_from },
777 { US"message-id", 10, TRUE, htype_id },
778 { US"received", 8, FALSE, htype_received },
779 { US"reply-to", 8, FALSE, htype_reply_to },
780 { US"return-path", 11, FALSE, htype_return_path },
781 { US"sender", 6, TRUE, htype_sender },
782 { US"subject", 7, FALSE, htype_subject },
783 { US"to", 2, TRUE, htype_to }
059ec3d9
PH
784};
785
786int header_names_size = sizeof(header_names)/sizeof(header_name);
787
788BOOL header_rewritten = FALSE;
789uschar *helo_accept_junk_hosts = NULL;
790uschar *helo_allow_chars = US"";
791uschar *helo_lookup_domains = US"@ : @[]";
792uschar *helo_try_verify_hosts = NULL;
793BOOL helo_verified = FALSE;
d7b47fd0 794BOOL helo_verify_failed = FALSE;
059ec3d9 795uschar *helo_verify_hosts = NULL;
1ba28e2b 796const uschar *hex_digits = CUS"0123456789abcdef";
059ec3d9
PH
797uschar *hold_domains = NULL;
798BOOL host_checking = FALSE;
799BOOL host_checking_callout = FALSE;
800uschar *host_data = NULL;
801BOOL host_find_failed_syntax= FALSE;
802uschar *host_lookup = NULL;
b08b24c8 803BOOL host_lookup_deferred = FALSE;
059ec3d9
PH
804BOOL host_lookup_failed = FALSE;
805uschar *host_lookup_order = US"bydns:byaddr";
806uschar *host_lookup_msg = US"";
807int host_number = 0;
808uschar *host_number_string = NULL;
809uschar *host_reject_connection = NULL;
810tree_node *hostlist_anchor = NULL;
811int hostlist_count = 0;
812uschar *hosts_treat_as_local = NULL;
813uschar *hosts_connection_nolog = NULL;
814
815int ignore_bounce_errors_after = 10*7*24*60*60; /* 10 weeks */
816BOOL ignore_fromline_local = FALSE;
817uschar *ignore_fromline_hosts = NULL;
9ee44efb
PP
818BOOL inetd_wait_mode = FALSE;
819int inetd_wait_timeout = -1;
3615fa9a 820uschar *initial_cwd = NULL;
059ec3d9
PH
821uschar *interface_address = NULL;
822int interface_port = -1;
823BOOL is_inetd = FALSE;
0ce9abe6 824uschar *iterate_item = NULL;
059ec3d9
PH
825
826int journal_fd = -1;
827
bc3c7bb7
HSHR
828uschar *keep_environment = NULL;
829
059ec3d9
PH
830int keep_malformed = 4*24*60*60; /* 4 days */
831
832uschar *eldap_dn = NULL;
833int load_average = -2;
834BOOL local_error_message = FALSE;
835BOOL local_from_check = TRUE;
836uschar *local_from_prefix = NULL;
837uschar *local_from_suffix = NULL;
838
839#if HAVE_IPV6
840uschar *local_interfaces = US"<; ::0 ; 0.0.0.0";
841#else
842uschar *local_interfaces = US"0.0.0.0";
843#endif
844
845uschar *local_scan_data = NULL;
846int local_scan_timeout = 5*60;
847BOOL local_sender_retain = FALSE;
848gid_t local_user_gid = (gid_t)(-1);
849uid_t local_user_uid = (uid_t)(-1);
850
851tree_node *localpartlist_anchor= NULL;
852int localpartlist_count = 0;
853uschar *log_buffer = NULL;
6c6d6e48
TF
854
855int log_default[] = { /* for initializing log_selector */
856 Li_acl_warn_skipped,
857 Li_connection_reject,
858 Li_delay_delivery,
859 Li_dnslist_defer,
860 Li_etrn,
861 Li_host_lookup_failed,
862 Li_lost_incoming_connection,
ac881e27 863 Li_outgoing_interface, /* see d_log_interface in deliver.c */
6c6d6e48
TF
864 Li_queue_run,
865 Li_rejected_header,
866 Li_retry_defer,
867 Li_sender_verify_fail,
868 Li_size_reject,
869 Li_skip_delivery,
870 Li_smtp_confirmation,
871 Li_tls_certificate_verified,
872 Li_tls_cipher,
873 -1
874};
875
059ec3d9
PH
876uschar *log_file_path = US LOG_FILE_PATH
877 "\0<--------------Space to patch log_file_path->";
878
6c6d6e48
TF
879int log_notall[] = {
880 -1
881};
882bit_table log_options[] = { /* must be in alphabetical order */
883 BIT_TABLE(L, 8bitmime),
884 BIT_TABLE(L, acl_warn_skipped),
885 BIT_TABLE(L, address_rewrite),
886 BIT_TABLE(L, all),
887 BIT_TABLE(L, all_parents),
888 BIT_TABLE(L, arguments),
889 BIT_TABLE(L, connection_reject),
890 BIT_TABLE(L, delay_delivery),
891 BIT_TABLE(L, deliver_time),
892 BIT_TABLE(L, delivery_size),
893 BIT_TABLE(L, dnslist_defer),
fc16abb4 894 BIT_TABLE(L, dnssec),
6c6d6e48
TF
895 BIT_TABLE(L, etrn),
896 BIT_TABLE(L, host_lookup_failed),
897 BIT_TABLE(L, ident_timeout),
898 BIT_TABLE(L, incoming_interface),
899 BIT_TABLE(L, incoming_port),
900 BIT_TABLE(L, lost_incoming_connection),
571b2715 901 BIT_TABLE(L, millisec),
ac881e27 902 BIT_TABLE(L, outgoing_interface),
6c6d6e48
TF
903 BIT_TABLE(L, outgoing_port),
904 BIT_TABLE(L, pid),
e6d2a989 905#if defined(SUPPORT_PROXY) || defined (SUPPORT_SOCKS)
6c6d6e48
TF
906 BIT_TABLE(L, proxy),
907#endif
908 BIT_TABLE(L, queue_run),
909 BIT_TABLE(L, queue_time),
910 BIT_TABLE(L, queue_time_overall),
911 BIT_TABLE(L, received_recipients),
912 BIT_TABLE(L, received_sender),
913 BIT_TABLE(L, rejected_header),
914 { US"rejected_headers", Li_rejected_header },
915 BIT_TABLE(L, retry_defer),
916 BIT_TABLE(L, return_path_on_delivery),
917 BIT_TABLE(L, sender_on_delivery),
918 BIT_TABLE(L, sender_verify_fail),
919 BIT_TABLE(L, size_reject),
920 BIT_TABLE(L, skip_delivery),
921 BIT_TABLE(L, smtp_confirmation),
922 BIT_TABLE(L, smtp_connection),
923 BIT_TABLE(L, smtp_incomplete_transaction),
924 BIT_TABLE(L, smtp_mailauth),
925 BIT_TABLE(L, smtp_no_mail),
926 BIT_TABLE(L, smtp_protocol_error),
927 BIT_TABLE(L, smtp_syntax_error),
928 BIT_TABLE(L, subject),
929 BIT_TABLE(L, tls_certificate_verified),
930 BIT_TABLE(L, tls_cipher),
931 BIT_TABLE(L, tls_peerdn),
932 BIT_TABLE(L, tls_sni),
933 BIT_TABLE(L, unknown_in_list),
059ec3d9 934};
6c6d6e48 935int log_options_count = nelem(log_options);
059ec3d9 936
6ea85e9a 937int log_reject_target = 0;
6c6d6e48 938unsigned int log_selector[log_selector_size]; /* initialized in main() */
059ec3d9
PH
939uschar *log_selector_string = NULL;
940FILE *log_stderr = NULL;
941BOOL log_testing_mode = FALSE;
942BOOL log_timezone = FALSE;
943uschar *login_sender_address = NULL;
4e0983dc 944uschar *lookup_dnssec_authenticated = NULL;
059ec3d9
PH
945int lookup_open_max = 25;
946uschar *lookup_value = NULL;
947
059ec3d9 948uschar *mailstore_basename = NULL;
8523533c
TK
949#ifdef WITH_CONTENT_SCAN
950uschar *malware_name = NULL; /* Virus Name */
951#endif
d677b2f2 952int max_received_linelength= 0;
059ec3d9
PH
953int max_username_length = 0;
954int message_age = 0;
955uschar *message_body = NULL;
956uschar *message_body_end = NULL;
ddea74fa 957BOOL message_body_newlines = FALSE;
059ec3d9
PH
958int message_body_size = 0;
959int message_body_visible = 500;
960int message_ended = END_NOTSTARTED;
961uschar *message_headers = NULL;
962uschar *message_id;
963uschar *message_id_domain = NULL;
964uschar *message_id_text = NULL;
965struct timeval message_id_tv = { 0, 0 };
966uschar message_id_option[MESSAGE_ID_LENGTH + 3];
967uschar *message_id_external;
968int message_linecount = 0;
969BOOL message_logs = TRUE;
970int message_size = 0;
971uschar *message_size_limit = US"50M";
8c5d388a 972#ifdef SUPPORT_I18N
eb02f5df 973BOOL message_smtputf8 = FALSE;
3c8b3577 974int message_utf8_downconvert = 0; /* -1 ifneeded; 0 never; 1 always */
eb02f5df 975#endif
059ec3d9
PH
976uschar message_subdir[2] = { 0, 0 };
977uschar *message_reference = NULL;
8523533c
TK
978
979/* MIME ACL expandables */
980#ifdef WITH_CONTENT_SCAN
f7b63901 981int mime_anomaly_level = 0;
1ba28e2b 982const uschar *mime_anomaly_text = NULL;
8523533c
TK
983uschar *mime_boundary = NULL;
984uschar *mime_charset = NULL;
985uschar *mime_content_description = NULL;
986uschar *mime_content_disposition = NULL;
987uschar *mime_content_id = NULL;
988unsigned int mime_content_size = 0;
989uschar *mime_content_transfer_encoding = NULL;
990uschar *mime_content_type = NULL;
991uschar *mime_decoded_filename = NULL;
992uschar *mime_filename = NULL;
993int mime_is_multipart = 0;
994int mime_is_coverletter = 0;
995int mime_is_rfc822 = 0;
996int mime_part_count = -1;
997#endif
998
059ec3d9
PH
999BOOL mua_wrapper = FALSE;
1000
1001uid_t *never_users = NULL;
8523533c
TK
1002#ifdef WITH_CONTENT_SCAN
1003BOOL no_mbox_unspool = FALSE;
1004#endif
059ec3d9
PH
1005BOOL no_multiline_responses = FALSE;
1006
fb05276a
JH
1007const int on = 1; /* for setsockopt */
1008const int off = 0;
1009
059ec3d9
PH
1010uid_t original_euid;
1011gid_t originator_gid;
1012uschar *originator_login = NULL;
1013uschar *originator_name = NULL;
1014uid_t originator_uid;
1015uschar *override_local_interfaces = NULL;
1016uschar *override_pid_file_path = NULL;
1017
1018BOOL parse_allow_group = FALSE;
1019BOOL parse_found_group = FALSE;
1020uschar *percent_hack_domains = NULL;
1021uschar *pid_file_path = US PID_FILE_PATH
1022 "\0<--------------Space to patch pid_file_path->";
cf8b11a5 1023BOOL pipelining_enable = TRUE;
059ec3d9
PH
1024uschar *pipelining_advertise_hosts = US"*";
1025BOOL preserve_message_logs = FALSE;
1026uschar *primary_hostname = NULL;
1027BOOL print_topbitchars = FALSE;
1028uschar process_info[PROCESS_INFO_SIZE];
921b12ca 1029int process_info_len = 0;
059ec3d9
PH
1030uschar *process_log_path = NULL;
1031BOOL prod_requires_admin = TRUE;
a3c86431 1032
e6d2a989 1033#if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
cee5f132 1034uschar *hosts_proxy = US"";
e6d2a989
JH
1035uschar *proxy_external_address = US"";
1036int proxy_external_port = 0;
1037uschar *proxy_local_address = US"";
1038int proxy_local_port = 0;
a3c86431
TL
1039BOOL proxy_session = FALSE;
1040BOOL proxy_session_failed = FALSE;
1041#endif
1042
fffda43a
TK
1043uschar *prvscheck_address = NULL;
1044uschar *prvscheck_keynum = NULL;
1045uschar *prvscheck_result = NULL;
1046
059ec3d9 1047
55414b25 1048const uschar *qualify_domain_recipient = NULL;
059ec3d9
PH
1049uschar *qualify_domain_sender = NULL;
1050BOOL queue_2stage = FALSE;
1051uschar *queue_domains = NULL;
1052int queue_interval = -1;
1053BOOL queue_list_requires_admin = TRUE;
a2da3176 1054uschar *queue_name = US"";
059ec3d9
PH
1055BOOL queue_only = FALSE;
1056uschar *queue_only_file = NULL;
1057int queue_only_load = -1;
8669f003 1058BOOL queue_only_load_latch = TRUE;
059ec3d9
PH
1059BOOL queue_only_override = TRUE;
1060BOOL queue_only_policy = FALSE;
1061BOOL queue_run_first_delivery = FALSE;
1062BOOL queue_run_force = FALSE;
1063BOOL queue_run_in_order = FALSE;
1064BOOL queue_run_local = FALSE;
0cd5fd23 1065uschar *queue_run_max = US"5";
059ec3d9
PH
1066pid_t queue_run_pid = (pid_t)0;
1067int queue_run_pipe = -1;
1068BOOL queue_running = FALSE;
1069BOOL queue_smtp = FALSE;
1070uschar *queue_smtp_domains = NULL;
1071
1072unsigned int random_seed = 0;
fe0dab11 1073tree_node *ratelimiters_cmd = NULL;
870f6ba8
TF
1074tree_node *ratelimiters_conn = NULL;
1075tree_node *ratelimiters_mail = NULL;
059ec3d9
PH
1076uschar *raw_active_hostname = NULL;
1077uschar *raw_sender = NULL;
1078uschar **raw_recipients = NULL;
1079int raw_recipients_count = 0;
1080
1081int rcpt_count = 0;
1082int rcpt_fail_count = 0;
1083int rcpt_defer_count = 0;
1084gid_t real_gid;
1085uid_t real_uid;
1086BOOL really_exim = TRUE;
1087BOOL receive_call_bombout = FALSE;
1088int receive_linecount = 0;
1089int receive_messagecount = 0;
1090int receive_timeout = 0;
1091int received_count = 0;
1092uschar *received_for = NULL;
1093
1094/* This is the default text for Received headers generated by Exim. The
1095date will be automatically added on the end. */
1096
1097uschar *received_header_text = US
1098 "Received: "
1099 "${if def:sender_rcvhost {from $sender_rcvhost\n\t}"
1e70f85b 1100 "{${if def:sender_ident {from ${quote_local_part:$sender_ident} }}"
059ec3d9
PH
1101 "${if def:sender_helo_name {(helo=$sender_helo_name)\n\t}}}}"
1102 "by $primary_hostname "
1103 "${if def:received_protocol {with $received_protocol}} "
1104 #ifdef SUPPORT_TLS
1105 "${if def:tls_cipher {($tls_cipher)\n\t}}"
1106 #endif
1107 "(Exim $version_number)\n\t"
3e46c1aa 1108 "${if def:sender_address {(envelope-from <$sender_address>)\n\t}}"
1ab52c69 1109 "id $message_exim_id"
059ec3d9
PH
1110 "${if def:received_for {\n\tfor $received_for}}"
1111 "\0<---------------Space to patch received_header_text->";
1112
1113int received_headers_max = 30;
1114uschar *received_protocol = NULL;
32dfdf8b 1115struct timeval received_time = { 0, 0 };
059ec3d9
PH
1116uschar *recipient_data = NULL;
1117uschar *recipient_unqualified_hosts = NULL;
2c7db3f5 1118uschar *recipient_verify_failure = NULL;
059ec3d9
PH
1119int recipients_count = 0;
1120BOOL recipients_discarded = FALSE;
1121recipient_item *recipients_list = NULL;
1122int recipients_list_max = 0;
1123int recipients_max = 0;
1124BOOL recipients_max_reject = FALSE;
1125const pcre *regex_AUTH = NULL;
1126const pcre *regex_check_dns_names = NULL;
1127const pcre *regex_From = NULL;
f1513293 1128const pcre *regex_IGNOREQUOTA = NULL;
059ec3d9
PH
1129const pcre *regex_PIPELINING = NULL;
1130const pcre *regex_SIZE = NULL;
1131const pcre *regex_ismsgid = NULL;
f38917cc
JH
1132const pcre *regex_smtp_code = NULL;
1133uschar *regex_vars[REGEX_VARS];
a7cbbf50
PP
1134#ifdef WHITELIST_D_MACROS
1135const pcre *regex_whitelisted_macro = NULL;
1136#endif
8523533c
TK
1137#ifdef WITH_CONTENT_SCAN
1138uschar *regex_match_string = NULL;
1139#endif
059ec3d9
PH
1140int remote_delivery_count = 0;
1141int remote_max_parallel = 2;
1142uschar *remote_sort_domains = NULL;
1143int retry_data_expire = 7*24*60*60;
1144int retry_interval_max = 24*60*60;
1145int retry_maximum_timeout = 0; /* set from retry config */
1146retry_config *retries = NULL;
1147uschar *return_path = NULL;
1148BOOL return_path_remove = TRUE;
1149int rewrite_existflags = 0;
f926e272
JH
1150uschar *rfc1413_hosts = US"@[]";
1151int rfc1413_query_timeout = 0;
059ec3d9 1152/* BOOL rfc821_domains = FALSE; <<< on the way out */
c1d94452 1153uid_t root_gid = ROOT_GID;
059ec3d9
PH
1154uid_t root_uid = ROOT_UID;
1155
1156router_instance *routers = NULL;
1157router_instance router_defaults = {
f2ed27cf
JH
1158 .next = NULL,
1159 .name = NULL,
1160 .info = NULL,
1161 .options_block = NULL,
1162 .driver_name = NULL,
059ec3d9 1163
f2ed27cf 1164 .address_data = NULL,
8523533c 1165#ifdef EXPERIMENTAL_BRIGHTMAIL
f2ed27cf 1166 .bmi_rule = NULL,
8e669ac1 1167#endif
f2ed27cf
JH
1168 .cannot_route_message = NULL,
1169 .condition = NULL,
1170 .current_directory = NULL,
1171 .debug_string = NULL,
1172 .domains = NULL,
1173 .errors_to = NULL,
1174 .expand_gid = NULL,
1175 .expand_uid = NULL,
1176 .expand_more = NULL,
1177 .expand_unseen = NULL,
1178 .extra_headers = NULL,
1179 .fallback_hosts = NULL,
1180 .home_directory = NULL,
1181 .ignore_target_hosts = NULL,
1182 .local_parts = NULL,
1183 .pass_router_name = NULL,
1184 .prefix = NULL,
1185 .redirect_router_name = NULL,
1186 .remove_headers = NULL,
1187 .require_files = NULL,
1188 .router_home_directory = NULL,
1189 .self = US"freeze",
1190 .senders = NULL,
1191 .suffix = NULL,
1192 .translate_ip_address = NULL,
1193 .transport_name = NULL,
1194
1195 .address_test = TRUE,
8523533c 1196#ifdef EXPERIMENTAL_BRIGHTMAIL
f2ed27cf
JH
1197 .bmi_deliver_alternate = FALSE,
1198 .bmi_deliver_default = FALSE,
1199 .bmi_dont_deliver = FALSE,
8523533c 1200#endif
f2ed27cf
JH
1201 .expn = TRUE,
1202 .caseful_local_part = FALSE,
1203 .check_local_user = FALSE,
1204 .disable_logging = FALSE,
1205 .fail_verify_recipient = FALSE,
1206 .fail_verify_sender = FALSE,
1207 .gid_set = FALSE,
1208 .initgroups = FALSE,
1209 .log_as_local = TRUE_UNSET,
1210 .more = TRUE,
1211 .pass_on_timeout = FALSE,
1212 .prefix_optional = FALSE,
1213 .repeat_use = TRUE,
1214 .retry_use_local_part = TRUE_UNSET,
1215 .same_domain_copy_routing = FALSE,
1216 .self_rewrite = FALSE,
1217 .suffix_optional = FALSE,
1218 .verify_only = FALSE,
1219 .verify_recipient = TRUE,
1220 .verify_sender = TRUE,
1221 .uid_set = FALSE,
1222 .unseen = FALSE,
1223 .dsn_lasthop = FALSE,
1224
1225 .self_code = self_freeze,
1226 .uid = (uid_t)(-1),
1227 .gid = (gid_t)(-1),
1228
1229 .fallback_hostlist = NULL,
1230 .transport = NULL,
1231 .pass_router = NULL,
1232 .redirect_router = NULL,
1233
1234 .dnssec = { NULL, NULL }, /* dnssec_domains {require,request} */
059ec3d9
PH
1235};
1236
181d9bf8
JH
1237uschar *router_name = NULL;
1238
059ec3d9
PH
1239ip_address_item *running_interfaces = NULL;
1240BOOL running_in_test_harness = FALSE;
1241
1242/* This is a weird one. The following string gets patched in the binary by the
1243script that sets up a copy of Exim for running in the test harness. It seems
1244that compilers are now clever, and share constant strings if they can.
1245Elsewhere in Exim the string "<" is used. The compiler optimization seems to
1246make use of the end of this string in order to save space. So the patching then
8669f003 1247wrecks this. We defeat this optimization by adding some additional characters
059ec3d9
PH
1248onto the end of the string. */
1249
1250uschar *running_status = US">>>running<<<" "\0EXTRA";
1251
1252int runrc = 0;
1253
1254uschar *search_error_message = NULL;
1255BOOL search_find_defer = FALSE;
1256uschar *self_hostname = NULL;
1257uschar *sender_address = NULL;
1258unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32];
2a3eea10 1259uschar *sender_address_data = NULL;
059ec3d9
PH
1260BOOL sender_address_forced = FALSE;
1261uschar *sender_address_unrewritten = NULL;
1262uschar *sender_data = NULL;
1263unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32];
1264uschar *sender_fullhost = NULL;
1705dd20 1265BOOL sender_helo_dnssec = FALSE;
059ec3d9
PH
1266uschar *sender_helo_name = NULL;
1267uschar **sender_host_aliases = &no_aliases;
1268uschar *sender_host_address = NULL;
1269uschar *sender_host_authenticated = NULL;
1270unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32];
1f4a55da 1271BOOL sender_host_dnssec = FALSE;
059ec3d9
PH
1272uschar *sender_host_name = NULL;
1273int sender_host_port = 0;
1274BOOL sender_host_notsocket = FALSE;
1275BOOL sender_host_unknown = FALSE;
1276uschar *sender_ident = NULL;
1277BOOL sender_local = FALSE;
2fe1a124 1278BOOL sender_name_forced = FALSE;
870f6ba8
TF
1279uschar *sender_rate = NULL;
1280uschar *sender_rate_limit = NULL;
1281uschar *sender_rate_period = NULL;
059ec3d9
PH
1282uschar *sender_rcvhost = NULL;
1283BOOL sender_set_untrusted = FALSE;
1284uschar *sender_unqualified_hosts = NULL;
2c7db3f5 1285uschar *sender_verify_failure = NULL;
059ec3d9
PH
1286address_item *sender_verified_list = NULL;
1287address_item *sender_verified_failed = NULL;
1288int sender_verified_rc = -1;
1289BOOL sender_verified_responded = FALSE;
41c7c167
PH
1290uschar *sending_ip_address = NULL;
1291int sending_port = -1;
cd59ab18 1292SIGNAL_BOOL sigalrm_seen = FALSE;
059ec3d9 1293uschar **sighup_argv = NULL;
846430d9 1294int slow_lookup_log = 0; /* millisecs, zero disables */
059ec3d9
PH
1295int smtp_accept_count = 0;
1296BOOL smtp_accept_keepalive = TRUE;
1297int smtp_accept_max = 20;
1298int smtp_accept_max_nonmail= 10;
1299uschar *smtp_accept_max_nonmail_hosts = US"*";
1300int smtp_accept_max_per_connection = 1000;
1301uschar *smtp_accept_max_per_host = NULL;
1302int smtp_accept_queue = 0;
1303int smtp_accept_queue_per_connection = 10;
1304int smtp_accept_reserve = 0;
1305uschar *smtp_active_hostname = NULL;
1306BOOL smtp_authenticated = FALSE;
1f5b4c3d 1307uschar *smtp_banner = US"$smtp_active_hostname ESMTP "
059ec3d9
PH
1308 "Exim $version_number $tod_full"
1309 "\0<---------------Space to patch smtp_banner->";
1310BOOL smtp_batched_input = FALSE;
1311BOOL smtp_check_spool_space = TRUE;
b4ed4da0 1312int smtp_ch_index = 0;
3ee512ff
PH
1313uschar *smtp_cmd_argument = NULL;
1314uschar *smtp_cmd_buffer = NULL;
0f1a8658 1315struct timeval smtp_connection_start = {0,0};
b4ed4da0 1316uschar smtp_connection_had[SMTP_HBUFF_SIZE];
059ec3d9
PH
1317int smtp_connect_backlog = 20;
1318double smtp_delay_mail = 0.0;
1319double smtp_delay_rcpt = 0.0;
1320BOOL smtp_enforce_sync = TRUE;
1321FILE *smtp_in = NULL;
1322BOOL smtp_input = FALSE;
1323int smtp_load_reserve = -1;
1324int smtp_mailcmd_count = 0;
1325FILE *smtp_out = NULL;
1326uschar *smtp_etrn_command = NULL;
1327BOOL smtp_etrn_serialize = TRUE;
1328int smtp_max_synprot_errors= 3;
1329int smtp_max_unknown_commands = 3;
8f128379 1330uschar *smtp_notquit_reason = NULL;
059ec3d9
PH
1331uschar *smtp_ratelimit_hosts = NULL;
1332uschar *smtp_ratelimit_mail = NULL;
1333uschar *smtp_ratelimit_rcpt = NULL;
1334uschar *smtp_read_error = US"";
1335int smtp_receive_timeout = 5*60;
1ad6489e 1336uschar *smtp_receive_timeout_s = NULL;
059ec3d9
PH
1337uschar *smtp_reserve_hosts = NULL;
1338BOOL smtp_return_error_details = FALSE;
1339int smtp_rlm_base = 0;
1340double smtp_rlm_factor = 0.0;
1341int smtp_rlm_limit = 0;
1342int smtp_rlm_threshold = INT_MAX;
1343int smtp_rlr_base = 0;
1344double smtp_rlr_factor = 0.0;
1345int smtp_rlr_limit = 0;
1346int smtp_rlr_threshold = INT_MAX;
2d14f397
JH
1347unsigned smtp_peer_options = 0;
1348unsigned smtp_peer_options_wrap= 0;
8c5d388a 1349#ifdef SUPPORT_I18N
9d4319df 1350uschar *smtputf8_advertise_hosts = US"*"; /* overridden under test-harness */
3d1451ea 1351#endif
8523533c
TK
1352
1353#ifdef WITH_CONTENT_SCAN
1354uschar *spamd_address = US"127.0.0.1 783";
1355uschar *spam_bar = NULL;
1356uschar *spam_report = NULL;
c5f280e2 1357uschar *spam_action = NULL;
8523533c
TK
1358uschar *spam_score = NULL;
1359uschar *spam_score_int = NULL;
1360#endif
1361#ifdef EXPERIMENTAL_SPF
65a7d8c3 1362uschar *spf_guess = US"v=spf1 a/24 mx/24 ptr ?all";
8523533c
TK
1363uschar *spf_header_comment = NULL;
1364uschar *spf_received = NULL;
1365uschar *spf_result = NULL;
1366uschar *spf_smtp_comment = NULL;
1367#endif
1368
059ec3d9
PH
1369BOOL split_spool_directory = FALSE;
1370uschar *spool_directory = US SPOOL_DIRECTORY
1371 "\0<--------------Space to patch spool_directory->";
328c5688
JH
1372BOOL spool_file_wireformat = FALSE;
1373BOOL spool_wireformat = FALSE;
8523533c
TK
1374#ifdef EXPERIMENTAL_SRS
1375uschar *srs_config = NULL;
1376uschar *srs_db_address = NULL;
1377uschar *srs_db_key = NULL;
384152a6
TK
1378int srs_hashlength = 6;
1379int srs_hashmin = -1;
1380int srs_maxage = 31;
8523533c
TK
1381uschar *srs_orig_recipient = NULL;
1382uschar *srs_orig_sender = NULL;
1383uschar *srs_recipient = NULL;
384152a6 1384uschar *srs_secrets = NULL;
8523533c 1385uschar *srs_status = NULL;
384152a6
TK
1386BOOL srs_usehash = TRUE;
1387BOOL srs_usetimestamp = TRUE;
8e669ac1 1388#endif
38a0a95f 1389BOOL strict_acl_vars = FALSE;
059ec3d9 1390int string_datestamp_offset= -1;
f1e5fef5
PP
1391int string_datestamp_length= 0;
1392int string_datestamp_type = -1;
059ec3d9
PH
1393BOOL strip_excess_angle_brackets = FALSE;
1394BOOL strip_trailing_dot = FALSE;
1395uschar *submission_domain = NULL;
1396BOOL submission_mode = FALSE;
2fe1a124 1397uschar *submission_name = NULL;
8800895a 1398BOOL suppress_local_fixups = FALSE;
f4ee74ac 1399BOOL suppress_local_fixups_default = FALSE;
059ec3d9
PH
1400BOOL synchronous_delivery = FALSE;
1401BOOL syslog_duplication = TRUE;
1402int syslog_facility = LOG_MAIL;
2333e06f 1403BOOL syslog_pid = TRUE;
059ec3d9
PH
1404uschar *syslog_processname = US"exim";
1405BOOL syslog_timestamp = TRUE;
1406uschar *system_filter = NULL;
1407
1408uschar *system_filter_directory_transport = NULL;
1409uschar *system_filter_file_transport = NULL;
1410uschar *system_filter_pipe_transport = NULL;
1411uschar *system_filter_reply_transport = NULL;
1412
1413gid_t system_filter_gid = 0;
1414BOOL system_filter_gid_set = FALSE;
79d4bc3d 1415uid_t system_filter_uid = (uid_t)-1;
059ec3d9
PH
1416BOOL system_filter_uid_set = FALSE;
1417BOOL system_filtering = FALSE;
1418
6af7e591 1419BOOL tcp_fastopen_ok = FALSE;
0ab63f3d 1420blob tcp_fastopen_nodata = { .data = NULL, .len = 0 };
a2673768
JH
1421BOOL tcp_in_fastopen = FALSE;
1422BOOL tcp_in_fastopen_logged = FALSE;
059ec3d9 1423BOOL tcp_nodelay = TRUE;
1ccd5f67 1424int tcp_out_fastopen = 0;
a2673768 1425BOOL tcp_out_fastopen_logged= FALSE;
5dc43717
JJ
1426#ifdef USE_TCP_WRAPPERS
1427uschar *tcp_wrappers_daemon_name = US TCP_WRAPPERS_DAEMON_NAME;
1428#endif
8669f003 1429int test_harness_load_avg = 0;
059ec3d9
PH
1430int thismessage_size_limit = 0;
1431int timeout_frozen_after = 0;
1432BOOL timestamps_utc = FALSE;
1433
1434transport_instance *transports = NULL;
1435
1436transport_instance transport_defaults = {
f2ed27cf
JH
1437 .next = NULL,
1438 .name = NULL,
1439 .info = NULL,
1440 .options_block = NULL,
1441 .driver_name = NULL,
1442 .setup = NULL,
1443 .batch_max = 1,
1444 .batch_id = NULL,
1445 .home_dir = NULL,
1446 .current_dir = NULL,
1447 .expand_multi_domain = NULL,
1448 .multi_domain = TRUE,
1449 .overrides_hosts = FALSE,
1450 .max_addresses = 100,
1451 .connection_max_messages = 500,
1452 .deliver_as_creator = FALSE,
1453 .disable_logging = FALSE,
1454 .initgroups = FALSE,
1455 .uid_set = FALSE,
1456 .gid_set = FALSE,
1457 .uid = (uid_t)(-1),
1458 .gid = (gid_t)(-1),
1459 .expand_uid = NULL,
1460 .expand_gid = NULL,
1461 .warn_message = NULL,
1462 .shadow = NULL,
1463 .shadow_condition = NULL,
1464 .filter_command = NULL,
1465 .add_headers = NULL,
1466 .remove_headers = NULL,
1467 .return_path = NULL,
1468 .debug_string = NULL,
1469 .max_parallel = NULL,
1470 .message_size_limit = NULL,
1471 .headers_rewrite = NULL,
1472 .rewrite_rules = NULL,
1473 .rewrite_existflags = 0,
1474 .filter_timeout = 300,
1475 .body_only = FALSE,
1476 .delivery_date_add = FALSE,
1477 .envelope_to_add = FALSE,
1478 .headers_only = FALSE,
1479 .rcpt_include_affixes = FALSE,
1480 .return_path_add = FALSE,
1481 .return_output = FALSE,
1482 .return_fail_output = FALSE,
1483 .log_output = FALSE,
1484 .log_fail_output = FALSE,
1485 .log_defer_output = FALSE,
1486 .retry_use_local_part = TRUE_UNSET, /* retry_use_local_part: BOOL, but set neither
1487 1 nor 0 so can detect unset */
0cbf2b82 1488#ifndef DISABLE_EVENT
f2ed27cf 1489 .event_action = NULL
533aaf91 1490#endif
059ec3d9
PH
1491};
1492
1493int transport_count;
181d9bf8 1494uschar *transport_name = NULL;
332f5cf3 1495int transport_newlines;
55414b25 1496const uschar **transport_filter_argv = NULL;
059ec3d9 1497int transport_filter_timeout;
2e2a30b4 1498BOOL transport_filter_timed_out = FALSE;
059ec3d9
PH
1499int transport_write_timeout= 0;
1500
1501tree_node *tree_dns_fails = NULL;
1502tree_node *tree_duplicates = NULL;
1503tree_node *tree_nonrecipients = NULL;
1504tree_node *tree_unusable = NULL;
1505
1506BOOL trusted_caller = FALSE;
e2f5dc15 1507BOOL trusted_config = TRUE;
059ec3d9
PH
1508gid_t *trusted_groups = NULL;
1509uid_t *trusted_users = NULL;
1510uschar *timezone_string = US TIMEZONE_DEFAULT;
1511
1512uschar *unknown_login = NULL;
1513uschar *unknown_username = NULL;
1514uschar *untrusted_set_sender = NULL;
1515
1516/* A regex for matching a "From_" line in an incoming message, in the form
1517
1518 From ph10 Fri Jan 5 12:35 GMT 1996
1519
1520which the "mail" commands send to the MTA (undocumented, of course), or in
1521the form
1522
1523 From ph10 Fri, 7 Jan 97 14:00:00 GMT
1524
1525which is apparently used by some UUCPs, despite it not being in RFC 976.
1526Because of variations in time formats, just match up to the minutes. That
1527should be sufficient. Examples have been seen of time fields like 12:1:03,
1528so just require one digit for hours and minutes. The weekday is also absent
1529in some forms. */
1530
1531uschar *uucp_from_pattern = US
1532 "^From\\s+(\\S+)\\s+(?:[a-zA-Z]{3},?\\s+)?" /* Common start */
1533 "(?:" /* Non-extracting bracket */
1534 "[a-zA-Z]{3}\\s+\\d?\\d|" /* First form */
1535 "\\d?\\d\\s+[a-zA-Z]{3}\\s+\\d\\d(?:\\d\\d)?" /* Second form */
1536 ")" /* End alternation */
1537 "\\s+\\d\\d?:\\d\\d?"; /* Start of time */
1538
1539uschar *uucp_from_sender = US"$1";
1540
aec45841 1541uschar *verify_mode = NULL;
f45100a3 1542uschar *version_copyright =
d4e5e70b
PP
1543 US"Copyright (c) University of Cambridge, 1995 - 2017\n"
1544 "(c) The Exim Maintainers and contributors in ACKNOWLEDGMENTS file, 2007 - 2017";
059ec3d9
PH
1545uschar *version_date = US"?";
1546uschar *version_cnumber = US"????";
1547uschar *version_string = US"?";
1548
aec45841 1549uschar *warn_message_file = NULL;
059ec3d9 1550int warning_count = 0;
aec45841
JH
1551uschar *warnmsg_delay = NULL;
1552uschar *warnmsg_recipients = NULL;
1553BOOL write_rejectlog = TRUE;
1554
059ec3d9
PH
1555
1556/* End of globals.c */