Commit | Line | Data |
---|---|---|
8523533c TK |
1 | /************************************************* |
2 | * Exim - an Internet mail transport agent * | |
3 | *************************************************/ | |
4 | ||
80fea873 JH |
5 | /* Copyright (c) Tom Kistner <tom@duncanthrax.net> 2003 - 2015 |
6 | * License: GPL | |
9242a7e8 | 7 | * Copyright (c) The Exim Maintainers 2017 |
80fea873 | 8 | */ |
8523533c TK |
9 | |
10 | /* Code for calling spamassassin's spamd. Called from acl.c. */ | |
11 | ||
12 | #include "exim.h" | |
13 | #ifdef WITH_CONTENT_SCAN | |
14 | #include "spam.h" | |
15 | ||
16 | uschar spam_score_buffer[16]; | |
17 | uschar spam_score_int_buffer[16]; | |
18 | uschar spam_bar_buffer[128]; | |
c5f280e2 | 19 | uschar spam_action_buffer[32]; |
8523533c TK |
20 | uschar spam_report_buffer[32600]; |
21 | uschar prev_user_name[128] = ""; | |
22 | int spam_ok = 0; | |
23 | int spam_rc = 0; | |
f7274286 | 24 | uschar *prev_spamd_address_work = NULL; |
8523533c | 25 | |
fd4d8871 | 26 | static const uschar * loglabel = US"spam acl condition:"; |
8523533c | 27 | |
23763898 | 28 | |
fd4d8871 R |
29 | static int |
30 | spamd_param_init(spamd_address_container *spamd) | |
31 | { | |
dc7b3d36 | 32 | /* default spamd server weight, time and priority value */ |
e718bd62 | 33 | spamd->is_rspamd = FALSE; |
fd4d8871 | 34 | spamd->is_failed = FALSE; |
8a512ed5 JH |
35 | spamd->weight = SPAMD_WEIGHT; |
36 | spamd->timeout = SPAMD_TIMEOUT; | |
37 | spamd->retry = 0; | |
dc7b3d36 | 38 | spamd->priority = 1; |
fd4d8871 R |
39 | return 0; |
40 | } | |
8523533c | 41 | |
8523533c | 42 | |
fd4d8871 | 43 | static int |
fc362fc5 | 44 | spamd_param(const uschar * param, spamd_address_container * spamd) |
fd4d8871 R |
45 | { |
46 | static int timesinceday = -1; | |
23763898 | 47 | const uschar * s; |
8a512ed5 | 48 | const uschar * name; |
fd4d8871 | 49 | |
fd4d8871 R |
50 | /*XXX more clever parsing could discard embedded spaces? */ |
51 | ||
fc362fc5 | 52 | if (sscanf(CCS param, "pri=%u", &spamd->priority)) |
dc7b3d36 JH |
53 | return 0; /* OK */ |
54 | ||
fc362fc5 | 55 | if (sscanf(CCS param, "weight=%u", &spamd->weight)) |
fd4d8871 R |
56 | { |
57 | if (spamd->weight == 0) /* this server disabled: skip it */ | |
58 | return 1; | |
59 | return 0; /* OK */ | |
60 | } | |
61 | ||
23763898 | 62 | if (Ustrncmp(param, "time=", 5) == 0) |
fd4d8871 R |
63 | { |
64 | unsigned int start_h = 0, start_m = 0, start_s = 0; | |
65 | unsigned int end_h = 24, end_m = 0, end_s = 0; | |
66 | unsigned int time_start, time_end; | |
23763898 | 67 | const uschar * end_string; |
fd4d8871 | 68 | |
8a512ed5 | 69 | name = US"time"; |
23763898 JH |
70 | s = param+5; |
71 | if ((end_string = Ustrchr(s, '-'))) | |
ddcf2b5f | 72 | { |
23763898 JH |
73 | end_string++; |
74 | if ( sscanf(CS end_string, "%u.%u.%u", &end_h, &end_m, &end_s) == 0 | |
75 | || sscanf(CS s, "%u.%u.%u", &start_h, &start_m, &start_s) == 0 | |
76 | ) | |
8a512ed5 | 77 | goto badval; |
f7274286 | 78 | } |
f7274286 | 79 | else |
8a512ed5 | 80 | goto badval; |
8523533c | 81 | |
fd4d8871 | 82 | if (timesinceday < 0) |
ddcf2b5f | 83 | { |
fd4d8871 R |
84 | time_t now = time(NULL); |
85 | struct tm *tmp = localtime(&now); | |
86 | timesinceday = tmp->tm_hour*3600 + tmp->tm_min*60 + tmp->tm_sec; | |
87 | } | |
8e669ac1 | 88 | |
fd4d8871 R |
89 | time_start = start_h*3600 + start_m*60 + start_s; |
90 | time_end = end_h*3600 + end_m*60 + end_s; | |
8e669ac1 | 91 | |
fd4d8871 R |
92 | if (timesinceday < time_start || timesinceday >= time_end) |
93 | return 1; /* skip spamd server */ | |
c5f280e2 | 94 | |
fd4d8871 R |
95 | return 0; /* OK */ |
96 | } | |
8e669ac1 | 97 | |
fd4d8871 R |
98 | if (Ustrcmp(param, "variant=rspamd") == 0) |
99 | { | |
100 | spamd->is_rspamd = TRUE; | |
101 | return 0; | |
102 | } | |
8e669ac1 | 103 | |
23763898 JH |
104 | if (Ustrncmp(param, "tmo=", 4) == 0) |
105 | { | |
106 | int sec = readconf_readtime((s = param+4), '\0', FALSE); | |
8a512ed5 | 107 | name = US"timeout"; |
23763898 | 108 | if (sec < 0) |
8a512ed5 JH |
109 | goto badval; |
110 | spamd->timeout = sec; | |
111 | return 0; | |
112 | } | |
113 | ||
114 | if (Ustrncmp(param, "retry=", 6) == 0) | |
115 | { | |
116 | int sec = readconf_readtime((s = param+6), '\0', FALSE); | |
117 | name = US"retry"; | |
118 | if (sec < 0) | |
119 | goto badval; | |
120 | spamd->retry = sec; | |
23763898 JH |
121 | return 0; |
122 | } | |
123 | ||
fd4d8871 R |
124 | log_write(0, LOG_MAIN, "%s warning - invalid spamd parameter: '%s'", |
125 | loglabel, param); | |
126 | return -1; /* syntax error */ | |
8a512ed5 JH |
127 | |
128 | badval: | |
129 | log_write(0, LOG_MAIN, | |
130 | "%s warning - invalid spamd %s value: '%s'", loglabel, name, s); | |
131 | return -1; /* syntax error */ | |
fd4d8871 | 132 | } |
8523533c | 133 | |
8523533c | 134 | |
fd4d8871 | 135 | static int |
dc7b3d36 | 136 | spamd_get_server(spamd_address_container ** spamds, int num_servers) |
fd4d8871 R |
137 | { |
138 | unsigned int i; | |
dc7b3d36 JH |
139 | spamd_address_container * sd; |
140 | long rnd, weights; | |
141 | unsigned pri; | |
142 | static BOOL srandomed = FALSE; | |
fd4d8871 | 143 | |
806c3df9 | 144 | /* speedup, if we have only 1 server */ |
dc7b3d36 JH |
145 | if (num_servers == 1) |
146 | return (spamds[0]->is_failed ? -1 : 0); | |
8e669ac1 | 147 | |
dc7b3d36 JH |
148 | /* init ranmod */ |
149 | if (!srandomed) | |
150 | { | |
151 | struct timeval tv; | |
152 | gettimeofday(&tv, NULL); | |
153 | srandom((unsigned int)(tv.tv_usec/1000)); | |
154 | srandomed = TRUE; | |
155 | } | |
8e669ac1 | 156 | |
dc7b3d36 JH |
157 | /* scan for highest pri */ |
158 | for (pri = 0, i = 0; i < num_servers; i++) | |
159 | { | |
160 | sd = spamds[i]; | |
161 | if (!sd->is_failed && sd->priority > pri) pri = sd->priority; | |
fd4d8871 | 162 | } |
8e669ac1 | 163 | |
dc7b3d36 JH |
164 | /* get sum of weights */ |
165 | for (weights = 0, i = 0; i < num_servers; i++) | |
166 | { | |
167 | sd = spamds[i]; | |
168 | if (!sd->is_failed && sd->priority == pri) weights += sd->weight; | |
169 | } | |
170 | if (weights == 0) /* all servers failed */ | |
171 | return -1; | |
8e669ac1 | 172 | |
dc7b3d36 JH |
173 | for (rnd = random() % weights, i = 0; i < num_servers; i++) |
174 | { | |
175 | sd = spamds[i]; | |
176 | if (!sd->is_failed && sd->priority == pri) | |
177 | if ((rnd -= sd->weight) <= 0) | |
fd4d8871 | 178 | return i; |
dc7b3d36 | 179 | } |
29cfeb94 | 180 | |
fd4d8871 R |
181 | log_write(0, LOG_MAIN|LOG_PANIC, |
182 | "%s unknown error (memory/cpu corruption?)", loglabel); | |
183 | return -1; | |
184 | } | |
29cfeb94 | 185 | |
29cfeb94 | 186 | |
fd4d8871 | 187 | int |
55414b25 | 188 | spam(const uschar **listptr) |
fd4d8871 R |
189 | { |
190 | int sep = 0; | |
55414b25 | 191 | const uschar *list = *listptr; |
fd4d8871 R |
192 | uschar *user_name; |
193 | uschar user_name_buffer[128]; | |
194 | unsigned long mbox_size; | |
195 | FILE *mbox_file; | |
196 | int spamd_sock = -1; | |
197 | uschar spamd_buffer[32600]; | |
198 | int i, j, offset, result; | |
fd4d8871 R |
199 | uschar spamd_version[8]; |
200 | uschar spamd_short_result[8]; | |
201 | uschar spamd_score_char; | |
202 | double spamd_threshold, spamd_score, spamd_reject_score; | |
203 | int spamd_report_offset; | |
204 | uschar *p,*q; | |
205 | int override = 0; | |
206 | time_t start; | |
207 | size_t read, wrote; | |
fd4d8871 R |
208 | #ifndef NO_POLL_H |
209 | struct pollfd pollfd; | |
210 | #else /* Patch posted by Erik ? for OS X */ | |
211 | struct timeval select_tv; /* and applied by PH */ | |
212 | fd_set select_fd; | |
213 | #endif | |
214 | uschar *spamd_address_work; | |
8a512ed5 | 215 | spamd_address_container * sd; |
fd4d8871 R |
216 | |
217 | /* stop compiler warning */ | |
218 | result = 0; | |
219 | ||
220 | /* find the username from the option list */ | |
221 | if ((user_name = string_nextinlist(&list, &sep, | |
222 | user_name_buffer, | |
223 | sizeof(user_name_buffer))) == NULL) | |
224 | { | |
225 | /* no username given, this means no scanning should be done */ | |
226 | return FAIL; | |
227 | } | |
228 | ||
229 | /* if username is "0" or "false", do not scan */ | |
230 | if ( (Ustrcmp(user_name,"0") == 0) || | |
231 | (strcmpic(user_name,US"false") == 0) ) | |
232 | return FAIL; | |
233 | ||
234 | /* if there is an additional option, check if it is "true" */ | |
235 | if (strcmpic(list,US"true") == 0) | |
236 | /* in that case, always return true later */ | |
237 | override = 1; | |
238 | ||
239 | /* expand spamd_address if needed */ | |
240 | if (*spamd_address == '$') | |
241 | { | |
242 | spamd_address_work = expand_string(spamd_address); | |
243 | if (spamd_address_work == NULL) | |
244 | { | |
245 | log_write(0, LOG_MAIN|LOG_PANIC, | |
246 | "%s spamd_address starts with $, but expansion failed: %s", | |
247 | loglabel, expand_string_message); | |
248 | return DEFER; | |
29cfeb94 | 249 | } |
fd4d8871 R |
250 | } |
251 | else | |
252 | spamd_address_work = spamd_address; | |
253 | ||
e1d04f48 | 254 | DEBUG(D_acl) debug_printf_indent("spamd: addrlist '%s'\n", spamd_address_work); |
fd4d8871 R |
255 | |
256 | /* check if previous spamd_address was expanded and has changed. dump cached results if so */ | |
257 | if ( spam_ok | |
258 | && prev_spamd_address_work != NULL | |
259 | && Ustrcmp(prev_spamd_address_work, spamd_address_work) != 0 | |
260 | ) | |
261 | spam_ok = 0; | |
262 | ||
263 | /* if we scanned for this username last time, just return */ | |
264 | if (spam_ok && Ustrcmp(prev_user_name, user_name) == 0) | |
265 | return override ? OK : spam_rc; | |
266 | ||
267 | /* make sure the eml mbox file is spooled up */ | |
328c5688 | 268 | |
040721f2 | 269 | if (!(mbox_file = spool_mbox(&mbox_size, NULL, NULL))) |
328c5688 | 270 | { /* error while spooling */ |
fd4d8871 R |
271 | log_write(0, LOG_MAIN|LOG_PANIC, |
272 | "%s error while creating mbox spool file", loglabel); | |
273 | return DEFER; | |
274 | } | |
275 | ||
276 | start = time(NULL); | |
277 | ||
278 | { | |
279 | int num_servers = 0; | |
280 | int current_server; | |
dc7b3d36 JH |
281 | uschar * address; |
282 | const uschar * spamd_address_list_ptr = spamd_address_work; | |
fd4d8871 | 283 | spamd_address_container * spamd_address_vector[32]; |
fd4d8871 R |
284 | |
285 | /* Check how many spamd servers we have | |
286 | and register their addresses */ | |
dc7b3d36 | 287 | sep = 0; /* default colon-sep */ |
040721f2 | 288 | while ((address = string_nextinlist(&spamd_address_list_ptr, &sep, NULL, 0))) |
ddcf2b5f | 289 | { |
55414b25 | 290 | const uschar * sublist; |
fd4d8871 R |
291 | int sublist_sep = -(int)' '; /* default space-sep */ |
292 | unsigned args; | |
293 | uschar * s; | |
fd4d8871 | 294 | |
e1d04f48 | 295 | DEBUG(D_acl) debug_printf_indent("spamd: addr entry '%s'\n", address); |
2aad5761 | 296 | sd = (spamd_address_container *)store_get(sizeof(spamd_address_container)); |
fd4d8871 | 297 | |
2aad5761 | 298 | for (sublist = address, args = 0, spamd_param_init(sd); |
755762fd | 299 | (s = string_nextinlist(&sublist, &sublist_sep, NULL, 0)); |
fd4d8871 R |
300 | args++ |
301 | ) | |
ddcf2b5f | 302 | { |
e1d04f48 | 303 | DEBUG(D_acl) debug_printf_indent("spamd: addr parm '%s'\n", s); |
fd4d8871 R |
304 | switch (args) |
305 | { | |
2aad5761 | 306 | case 0: sd->hostspec = s; |
fd4d8871 R |
307 | if (*s == '/') args++; /* local; no port */ |
308 | break; | |
2aad5761 JH |
309 | case 1: sd->hostspec = string_sprintf("%s %s", sd->hostspec, s); |
310 | break; | |
311 | default: spamd_param(s, sd); | |
312 | break; | |
fd4d8871 | 313 | } |
ddcf2b5f | 314 | } |
fd4d8871 | 315 | if (args < 2) |
c5f280e2 | 316 | { |
fd4d8871 R |
317 | log_write(0, LOG_MAIN, |
318 | "%s warning - invalid spamd address: '%s'", loglabel, address); | |
319 | continue; | |
c5f280e2 | 320 | } |
8523533c | 321 | |
2aad5761 | 322 | spamd_address_vector[num_servers] = sd; |
fd4d8871 R |
323 | if (++num_servers > 31) |
324 | break; | |
8523533c TK |
325 | } |
326 | ||
fd4d8871 R |
327 | /* check if we have at least one server */ |
328 | if (!num_servers) | |
ddcf2b5f | 329 | { |
0f501486 | 330 | log_write(0, LOG_MAIN|LOG_PANIC, |
fd4d8871 R |
331 | "%s no useable spamd server addresses in spamd_address configuration option.", |
332 | loglabel); | |
8acbb134 | 333 | goto defer; |
ddcf2b5f | 334 | } |
0f501486 | 335 | |
8a512ed5 JH |
336 | current_server = spamd_get_server(spamd_address_vector, num_servers); |
337 | sd = spamd_address_vector[current_server]; | |
338 | for(;;) | |
ddcf2b5f | 339 | { |
2aad5761 | 340 | uschar * errstr; |
8523533c | 341 | |
e1d04f48 | 342 | DEBUG(D_acl) debug_printf_indent("spamd: trying server %s\n", sd->hostspec); |
fd4d8871 | 343 | |
8a512ed5 JH |
344 | for (;;) |
345 | { | |
4a5cbaff | 346 | /*XXX could potentially use TFO early-data here */ |
8a512ed5 JH |
347 | if ( (spamd_sock = ip_streamsocket(sd->hostspec, &errstr, 5)) >= 0 |
348 | || sd->retry <= 0 | |
349 | ) | |
350 | break; | |
e1d04f48 | 351 | DEBUG(D_acl) debug_printf_indent("spamd: server %s: retry conn\n", sd->hostspec); |
8a512ed5 JH |
352 | while (sd->retry > 0) sd->retry = sleep(sd->retry); |
353 | } | |
354 | if (spamd_sock >= 0) | |
2aad5761 | 355 | break; |
25257489 | 356 | |
2aad5761 JH |
357 | log_write(0, LOG_MAIN, "%s spamd: %s", loglabel, errstr); |
358 | sd->is_failed = TRUE; | |
25257489 | 359 | |
2aad5761 JH |
360 | current_server = spamd_get_server(spamd_address_vector, num_servers); |
361 | if (current_server < 0) | |
fd4d8871 | 362 | { |
8a512ed5 | 363 | log_write(0, LOG_MAIN|LOG_PANIC, "%s all spamd servers failed", loglabel); |
2aad5761 | 364 | goto defer; |
fd4d8871 | 365 | } |
8a512ed5 | 366 | sd = spamd_address_vector[current_server]; |
ddcf2b5f | 367 | } |
fd4d8871 | 368 | } |
8523533c | 369 | |
fd4d8871 R |
370 | (void)fcntl(spamd_sock, F_SETFL, O_NONBLOCK); |
371 | /* now we are connected to spamd on spamd_sock */ | |
8a512ed5 | 372 | if (sd->is_rspamd) |
5df83864 | 373 | { |
acec9514 | 374 | gstring * req_str; |
5df83864 JH |
375 | const uschar * s; |
376 | ||
acec9514 | 377 | req_str = string_append(NULL, 8, |
5df83864 JH |
378 | "CHECK RSPAMC/1.3\r\nContent-length: ", string_sprintf("%lu\r\n", mbox_size), |
379 | "Queue-Id: ", message_id, | |
380 | "\r\nFrom: <", sender_address, | |
381 | ">\r\nRecipient-Number: ", string_sprintf("%d\r\n", recipients_count)); | |
382 | ||
fd4d8871 | 383 | for (i = 0; i < recipients_count; i ++) |
acec9514 | 384 | req_str = string_append(req_str, 3, |
5df83864 JH |
385 | "Rcpt: <", recipients_list[i].address, ">\r\n"); |
386 | if ((s = expand_string(US"$sender_helo_name")) && *s) | |
acec9514 | 387 | req_str = string_append(req_str, 3, "Helo: ", s, "\r\n"); |
5df83864 | 388 | if ((s = expand_string(US"$sender_host_name")) && *s) |
acec9514 | 389 | req_str = string_append(req_str, 3, "Hostname: ", s, "\r\n"); |
5df83864 | 390 | if (sender_host_address) |
acec9514 | 391 | req_str = string_append(req_str, 3, "IP: ", sender_host_address, "\r\n"); |
5df83864 | 392 | if ((s = expand_string(US"$authenticated_id")) && *s) |
acec9514 | 393 | req_str = string_append(req_str, 3, "User: ", s, "\r\n"); |
27fd1318 | 394 | req_str = string_catn(req_str, US"\r\n", 2); |
acec9514 | 395 | wrote = send(spamd_sock, req_str->s, req_str->ptr, 0); |
fd4d8871 | 396 | } |
6c54be64 | 397 | else |
fd4d8871 R |
398 | { /* spamassassin variant */ |
399 | (void)string_format(spamd_buffer, | |
400 | sizeof(spamd_buffer), | |
401 | "REPORT SPAMC/1.2\r\nUser: %s\r\nContent-length: %ld\r\n\r\n", | |
402 | user_name, | |
403 | mbox_size); | |
404 | /* send our request */ | |
405 | wrote = send(spamd_sock, spamd_buffer, Ustrlen(spamd_buffer), 0); | |
406 | } | |
6c54be64 | 407 | |
fd4d8871 R |
408 | if (wrote == -1) |
409 | { | |
410 | (void)close(spamd_sock); | |
411 | log_write(0, LOG_MAIN|LOG_PANIC, | |
0ea02355 | 412 | "%s spamd %s send failed: %s", loglabel, callout_address, strerror(errno)); |
8acbb134 | 413 | goto defer; |
fd4d8871 R |
414 | } |
415 | ||
416 | /* now send the file */ | |
4c04137d | 417 | /* spamd sometimes accepts connections but doesn't read data off |
fd4d8871 R |
418 | * the connection. We make the file descriptor non-blocking so |
419 | * that the write will only write sufficient data without blocking | |
4c04137d | 420 | * and we poll the descriptor to make sure that we can write without |
fd4d8871 | 421 | * blocking. Short writes are gracefully handled and if the whole |
4c04137d | 422 | * transaction takes too long it is aborted. |
fd4d8871 R |
423 | * Note: poll() is not supported in OSX 10.2 and is reported to be |
424 | * broken in more recent versions (up to 10.4). | |
425 | */ | |
426 | #ifndef NO_POLL_H | |
427 | pollfd.fd = spamd_sock; | |
428 | pollfd.events = POLLOUT; | |
429 | #endif | |
430 | (void)fcntl(spamd_sock, F_SETFL, O_NONBLOCK); | |
431 | do | |
432 | { | |
433 | read = fread(spamd_buffer,1,sizeof(spamd_buffer),mbox_file); | |
434 | if (read > 0) | |
ddcf2b5f | 435 | { |
fd4d8871 R |
436 | offset = 0; |
437 | again: | |
438 | #ifndef NO_POLL_H | |
439 | result = poll(&pollfd, 1, 1000); | |
8523533c | 440 | |
fd4d8871 R |
441 | /* Patch posted by Erik ? for OS X and applied by PH */ |
442 | #else | |
443 | select_tv.tv_sec = 1; | |
444 | select_tv.tv_usec = 0; | |
445 | FD_ZERO(&select_fd); | |
446 | FD_SET(spamd_sock, &select_fd); | |
447 | result = select(spamd_sock+1, NULL, &select_fd, NULL, &select_tv); | |
448 | #endif | |
449 | /* End Erik's patch */ | |
8523533c | 450 | |
fd4d8871 R |
451 | if (result == -1 && errno == EINTR) |
452 | goto again; | |
453 | else if (result < 1) | |
c5f280e2 | 454 | { |
fd4d8871 R |
455 | if (result == -1) |
456 | log_write(0, LOG_MAIN|LOG_PANIC, | |
0ea02355 | 457 | "%s %s on spamd %s socket", loglabel, callout_address, strerror(errno)); |
fd4d8871 R |
458 | else |
459 | { | |
8a512ed5 | 460 | if (time(NULL) - start < sd->timeout) |
fd4d8871 R |
461 | goto again; |
462 | log_write(0, LOG_MAIN|LOG_PANIC, | |
0ea02355 | 463 | "%s timed out writing spamd %s, socket", loglabel, callout_address); |
fd4d8871 R |
464 | } |
465 | (void)close(spamd_sock); | |
8acbb134 | 466 | goto defer; |
c5f280e2 | 467 | } |
8e669ac1 | 468 | |
fd4d8871 R |
469 | wrote = send(spamd_sock,spamd_buffer + offset,read - offset,0); |
470 | if (wrote == -1) | |
c5f280e2 | 471 | { |
fd4d8871 | 472 | log_write(0, LOG_MAIN|LOG_PANIC, |
0ea02355 | 473 | "%s %s on spamd %s socket", loglabel, callout_address, strerror(errno)); |
fd4d8871 | 474 | (void)close(spamd_sock); |
8acbb134 | 475 | goto defer; |
c5f280e2 | 476 | } |
fd4d8871 | 477 | if (offset + wrote != read) |
ddcf2b5f | 478 | { |
fd4d8871 R |
479 | offset += wrote; |
480 | goto again; | |
ddcf2b5f JH |
481 | } |
482 | } | |
fd4d8871 R |
483 | } |
484 | while (!feof(mbox_file) && !ferror(mbox_file)); | |
8523533c | 485 | |
fd4d8871 R |
486 | if (ferror(mbox_file)) |
487 | { | |
488 | log_write(0, LOG_MAIN|LOG_PANIC, | |
489 | "%s error reading spool file: %s", loglabel, strerror(errno)); | |
490 | (void)close(spamd_sock); | |
8acbb134 | 491 | goto defer; |
fd4d8871 R |
492 | } |
493 | ||
494 | (void)fclose(mbox_file); | |
495 | ||
496 | /* we're done sending, close socket for writing */ | |
416a0be6 AL |
497 | if (!sd->is_rspamd) |
498 | shutdown(spamd_sock,SHUT_WR); | |
fd4d8871 R |
499 | |
500 | /* read spamd response using what's left of the timeout. */ | |
501 | memset(spamd_buffer, 0, sizeof(spamd_buffer)); | |
502 | offset = 0; | |
503 | while ((i = ip_recv(spamd_sock, | |
504 | spamd_buffer + offset, | |
505 | sizeof(spamd_buffer) - offset - 1, | |
77560253 | 506 | sd->timeout - time(NULL) + start)) > 0) |
fd4d8871 | 507 | offset += i; |
77560253 | 508 | spamd_buffer[offset] = '\0'; /* guard byte */ |
fd4d8871 R |
509 | |
510 | /* error handling */ | |
511 | if (i <= 0 && errno != 0) | |
512 | { | |
513 | log_write(0, LOG_MAIN|LOG_PANIC, | |
0ea02355 | 514 | "%s error reading from spamd %s, socket: %s", loglabel, callout_address, strerror(errno)); |
fd4d8871 R |
515 | (void)close(spamd_sock); |
516 | return DEFER; | |
517 | } | |
518 | ||
519 | /* reading done */ | |
520 | (void)close(spamd_sock); | |
521 | ||
8a512ed5 | 522 | if (sd->is_rspamd) |
fd4d8871 R |
523 | { /* rspamd variant of reply */ |
524 | int r; | |
77560253 | 525 | if ( (r = sscanf(CS spamd_buffer, |
fd4d8871 R |
526 | "RSPAMD/%7s 0 EX_OK\r\nMetric: default; %7s %lf / %lf / %lf\r\n%n", |
527 | spamd_version, spamd_short_result, &spamd_score, &spamd_threshold, | |
77560253 JH |
528 | &spamd_reject_score, &spamd_report_offset)) != 5 |
529 | || spamd_report_offset >= offset /* verify within buffer */ | |
530 | ) | |
fd4d8871 | 531 | { |
6c54be64 | 532 | log_write(0, LOG_MAIN|LOG_PANIC, |
0ea02355 | 533 | "%s cannot parse spamd %s, output: %d", loglabel, callout_address, r); |
6c54be64 | 534 | return DEFER; |
fd4d8871 R |
535 | } |
536 | /* now parse action */ | |
8523533c | 537 | p = &spamd_buffer[spamd_report_offset]; |
fd4d8871 R |
538 | |
539 | if (Ustrncmp(p, "Action: ", sizeof("Action: ") - 1) == 0) | |
ddcf2b5f | 540 | { |
fd4d8871 R |
541 | p += sizeof("Action: ") - 1; |
542 | q = &spam_action_buffer[0]; | |
543 | while (*p && *p != '\r' && (q - spam_action_buffer) < sizeof(spam_action_buffer) - 1) | |
544 | *q++ = *p++; | |
545 | *q = '\0'; | |
ddcf2b5f | 546 | } |
fd4d8871 R |
547 | } |
548 | else | |
549 | { /* spamassassin */ | |
550 | /* dig in the spamd output and put the report in a multiline header, | |
551 | if requested */ | |
552 | if (sscanf(CS spamd_buffer, | |
553 | "SPAMD/%7s 0 EX_OK\r\nContent-length: %*u\r\n\r\n%lf/%lf\r\n%n", | |
554 | spamd_version,&spamd_score,&spamd_threshold,&spamd_report_offset) != 3) | |
ddcf2b5f | 555 | { |
fd4d8871 R |
556 | /* try to fall back to pre-2.50 spamd output */ |
557 | if (sscanf(CS spamd_buffer, | |
558 | "SPAMD/%7s 0 EX_OK\r\nSpam: %*s ; %lf / %lf\r\n\r\n%n", | |
559 | spamd_version,&spamd_score,&spamd_threshold,&spamd_report_offset) != 3) | |
560 | { | |
561 | log_write(0, LOG_MAIN|LOG_PANIC, | |
0ea02355 | 562 | "%s cannot parse spamd %s output", loglabel, callout_address); |
fd4d8871 R |
563 | return DEFER; |
564 | } | |
ddcf2b5f | 565 | } |
fd4d8871 R |
566 | |
567 | Ustrcpy(spam_action_buffer, | |
568 | spamd_score >= spamd_threshold ? "reject" : "no action"); | |
569 | } | |
570 | ||
571 | /* Create report. Since this is a multiline string, | |
572 | we must hack it into shape first */ | |
573 | p = &spamd_buffer[spamd_report_offset]; | |
574 | q = spam_report_buffer; | |
575 | while (*p != '\0') | |
576 | { | |
577 | /* skip \r */ | |
578 | if (*p == '\r') | |
579 | { | |
580 | p++; | |
581 | continue; | |
582 | } | |
583 | *q++ = *p; | |
584 | if (*p++ == '\n') | |
585 | { | |
586 | /* add an extra space after the newline to ensure | |
587 | that it is treated as a header continuation line */ | |
588 | *q++ = ' '; | |
589 | } | |
590 | } | |
591 | /* NULL-terminate */ | |
592 | *q-- = '\0'; | |
593 | /* cut off trailing leftovers */ | |
594 | while (*q <= ' ') | |
595 | *q-- = '\0'; | |
596 | ||
597 | spam_report = spam_report_buffer; | |
598 | spam_action = spam_action_buffer; | |
599 | ||
600 | /* create spam bar */ | |
601 | spamd_score_char = spamd_score > 0 ? '+' : '-'; | |
602 | j = abs((int)(spamd_score)); | |
603 | i = 0; | |
604 | if (j != 0) | |
605 | while ((i < j) && (i <= MAX_SPAM_BAR_CHARS)) | |
606 | spam_bar_buffer[i++] = spamd_score_char; | |
607 | else | |
608 | { | |
609 | spam_bar_buffer[0] = '/'; | |
610 | i = 1; | |
611 | } | |
612 | spam_bar_buffer[i] = '\0'; | |
613 | spam_bar = spam_bar_buffer; | |
614 | ||
615 | /* create "float" spam score */ | |
616 | (void)string_format(spam_score_buffer, sizeof(spam_score_buffer), | |
617 | "%.1f", spamd_score); | |
618 | spam_score = spam_score_buffer; | |
619 | ||
620 | /* create "int" spam score */ | |
621 | j = (int)((spamd_score + 0.001)*10); | |
622 | (void)string_format(spam_score_int_buffer, sizeof(spam_score_int_buffer), | |
623 | "%d", j); | |
624 | spam_score_int = spam_score_int_buffer; | |
625 | ||
626 | /* compare threshold against score */ | |
627 | spam_rc = spamd_score >= spamd_threshold | |
628 | ? OK /* spam as determined by user's threshold */ | |
629 | : FAIL; /* not spam */ | |
630 | ||
631 | /* remember expanded spamd_address if needed */ | |
632 | if (spamd_address_work != spamd_address) | |
633 | prev_spamd_address_work = string_copy(spamd_address_work); | |
634 | ||
635 | /* remember user name and "been here" for it */ | |
636 | Ustrcpy(prev_user_name, user_name); | |
637 | spam_ok = 1; | |
638 | ||
639 | return override | |
640 | ? OK /* always return OK, no matter what the score */ | |
641 | : spam_rc; | |
8acbb134 JH |
642 | |
643 | defer: | |
644 | (void)fclose(mbox_file); | |
645 | return DEFER; | |
8523533c TK |
646 | } |
647 | ||
648 | #endif | |
2aad5761 JH |
649 | /* vi: aw ai sw=2 |
650 | */ |