Support REQUIRETLS
[exim.git] / src / src / globals.c
1 /*************************************************
2 * Exim - an Internet mail transport agent *
3 *************************************************/
4
5 /* Copyright (c) University of Cambridge 1995 - 2018 */
6 /* See the file NOTICE for conditions of use and distribution. */
7
8 /* All the global variables are defined together in this one module, so
9 that they are easy to find. */
10
11 #include "exim.h"
12
13
14 /* Generic options for auths, all of which live inside auth_instance
15 data blocks and hence have the opt_public flag set. */
16
17 optionlist optionlist_auths[] = {
18 { "client_condition", opt_stringptr | opt_public,
19 (void *)(offsetof(auth_instance, client_condition)) },
20 { "client_set_id", opt_stringptr | opt_public,
21 (void *)(offsetof(auth_instance, set_client_id)) },
22 { "driver", opt_stringptr | opt_public,
23 (void *)(offsetof(auth_instance, driver_name)) },
24 { "public_name", opt_stringptr | opt_public,
25 (void *)(offsetof(auth_instance, public_name)) },
26 { "server_advertise_condition", opt_stringptr | opt_public,
27 (void *)(offsetof(auth_instance, advertise_condition))},
28 { "server_condition", opt_stringptr | opt_public,
29 (void *)(offsetof(auth_instance, server_condition)) },
30 { "server_debug_print", opt_stringptr | opt_public,
31 (void *)(offsetof(auth_instance, server_debug_string)) },
32 { "server_mail_auth_condition", opt_stringptr | opt_public,
33 (void *)(offsetof(auth_instance, mail_auth_condition)) },
34 { "server_set_id", opt_stringptr | opt_public,
35 (void *)(offsetof(auth_instance, set_id)) }
36 };
37
38 int optionlist_auths_size = nelem(optionlist_auths);
39
40 /* An empty host aliases list. */
41
42 uschar *no_aliases = NULL;
43
44
45 /* For comments on these variables, see globals.h. I'm too idle to
46 duplicate them here... */
47
48 #ifdef EXIM_PERL
49 uschar *opt_perl_startup = NULL;
50 BOOL opt_perl_at_start = FALSE;
51 BOOL opt_perl_started = FALSE;
52 BOOL opt_perl_taintmode = FALSE;
53 #endif
54
55 #ifdef EXPAND_DLFUNC
56 tree_node *dlobj_anchor = NULL;
57 #endif
58
59 #ifdef LOOKUP_IBASE
60 uschar *ibase_servers = NULL;
61 #endif
62
63 #ifdef LOOKUP_LDAP
64 uschar *eldap_ca_cert_dir = NULL;
65 uschar *eldap_ca_cert_file = NULL;
66 uschar *eldap_cert_file = NULL;
67 uschar *eldap_cert_key = NULL;
68 uschar *eldap_cipher_suite = NULL;
69 uschar *eldap_default_servers = NULL;
70 uschar *eldap_require_cert = NULL;
71 int eldap_version = -1;
72 BOOL eldap_start_tls = FALSE;
73 #endif
74
75 #ifdef LOOKUP_MYSQL
76 uschar *mysql_servers = NULL;
77 #endif
78
79 #ifdef LOOKUP_ORACLE
80 uschar *oracle_servers = NULL;
81 #endif
82
83 #ifdef LOOKUP_PGSQL
84 uschar *pgsql_servers = NULL;
85 #endif
86
87 #ifdef LOOKUP_REDIS
88 uschar *redis_servers = NULL;
89 #endif
90
91 #ifdef LOOKUP_SQLITE
92 int sqlite_lock_timeout = 5;
93 #endif
94
95 #ifdef SUPPORT_MOVE_FROZEN_MESSAGES
96 BOOL move_frozen_messages = FALSE;
97 #endif
98
99 /* These variables are outside the #ifdef because it keeps the code less
100 cluttered in several places (e.g. during logging) if we can always refer to
101 them. Also, the tls_ variables are now always visible. Note that these are
102 only used for smtp connections, not for service-daemon access. */
103
104 tls_support tls_in = {
105 .active = {.sock = -1},
106 .bits = 0,
107 .certificate_verified = FALSE,
108 #ifdef SUPPORT_DANE
109 .dane_verified = FALSE,
110 .tlsa_usage = 0,
111 #endif
112 .cipher = NULL,
113 .on_connect = FALSE,
114 .on_connect_ports = NULL,
115 .ourcert = NULL,
116 .peercert = NULL,
117 .peerdn = NULL,
118 .sni = NULL,
119 .ocsp = OCSP_NOT_REQ
120 };
121 tls_support tls_out = {
122 .active = {.sock = -1},
123 .bits = 0,
124 .certificate_verified = FALSE,
125 #ifdef SUPPORT_DANE
126 .dane_verified = FALSE,
127 .tlsa_usage = 0,
128 #endif
129 .cipher = NULL,
130 .on_connect = FALSE,
131 .on_connect_ports = NULL,
132 .ourcert = NULL,
133 .peercert = NULL,
134 .peerdn = NULL,
135 .sni = NULL,
136 .ocsp = OCSP_NOT_REQ
137 };
138
139 uschar *dsn_envid = NULL;
140 int dsn_ret = 0;
141 const pcre *regex_DSN = NULL;
142 uschar *dsn_advertise_hosts = NULL;
143
144 #ifdef SUPPORT_TLS
145 BOOL gnutls_compat_mode = FALSE;
146 BOOL gnutls_allow_auto_pkcs11 = FALSE;
147 uschar *openssl_options = NULL;
148 const pcre *regex_STARTTLS = NULL;
149 uschar *tls_advertise_hosts = US"*";
150 uschar *tls_certificate = NULL;
151 uschar *tls_crl = NULL;
152 /* This default matches NSS DH_MAX_P_BITS value at current time (2012), because
153 that's the interop problem which has been observed: GnuTLS suggesting a higher
154 bit-count as "NORMAL" (2432) and Thunderbird dropping connection. */
155 int tls_dh_max_bits = 2236;
156 uschar *tls_dhparam = NULL;
157 uschar *tls_eccurve = US"auto";
158 # ifndef DISABLE_OCSP
159 uschar *tls_ocsp_file = NULL;
160 # endif
161 uschar *tls_privatekey = NULL;
162 BOOL tls_remember_esmtp = FALSE;
163 uschar *tls_require_ciphers = NULL;
164 # ifdef EXPERIMENTAL_REQUIRETLS
165 uschar tls_requiretls = 0; /* REQUIRETLS_MSG etc. bit #defines */
166 uschar *tls_advertise_requiretls = US"*";
167 const pcre *regex_REQUIRETLS = NULL;
168 # endif
169 uschar *tls_try_verify_hosts = NULL;
170 uschar *tls_verify_certificates= US"system";
171 uschar *tls_verify_hosts = NULL;
172 #else /*!SUPPORT_TLS*/
173 uschar *tls_advertise_hosts = NULL;
174 #endif
175
176 #ifndef DISABLE_PRDR
177 /* Per Recipient Data Response variables */
178 BOOL prdr_enable = FALSE;
179 BOOL prdr_requested = FALSE;
180 const pcre *regex_PRDR = NULL;
181 #endif
182
183 #ifdef SUPPORT_I18N
184 const pcre *regex_UTF8 = NULL;
185 #endif
186
187 /* Input-reading functions for messages, so we can use special ones for
188 incoming TCP/IP. The defaults use stdin. We never need these for any
189 stand-alone tests. */
190
191 #if !defined(STAND_ALONE) && !defined(MACRO_PREDEF)
192 int (*lwr_receive_getc)(unsigned) = stdin_getc;
193 uschar * (*lwr_receive_getbuf)(unsigned *) = NULL;
194 int (*lwr_receive_ungetc)(int) = stdin_ungetc;
195 int (*receive_getc)(unsigned) = stdin_getc;
196 uschar * (*receive_getbuf)(unsigned *) = NULL;
197 void (*receive_get_cache)(void)= NULL;
198 int (*receive_ungetc)(int) = stdin_ungetc;
199 int (*receive_feof)(void) = stdin_feof;
200 int (*receive_ferror)(void) = stdin_ferror;
201 BOOL (*receive_smtp_buffered)(void) = NULL; /* Only used for SMTP */
202 #endif
203
204
205 /* List of per-address expansion variables for clearing and saving/restoring
206 when verifying one address while routing/verifying another. We have to have
207 the size explicit, because it is referenced from more than one module. */
208
209 const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT] = {
210 CUSS &deliver_address_data,
211 CUSS &deliver_domain,
212 CUSS &deliver_domain_data,
213 CUSS &deliver_domain_orig,
214 CUSS &deliver_domain_parent,
215 CUSS &deliver_localpart,
216 CUSS &deliver_localpart_data,
217 CUSS &deliver_localpart_orig,
218 CUSS &deliver_localpart_parent,
219 CUSS &deliver_localpart_prefix,
220 CUSS &deliver_localpart_suffix,
221 CUSS (uschar **)(&deliver_recipients),
222 CUSS &deliver_host,
223 CUSS &deliver_home,
224 CUSS &address_file,
225 CUSS &address_pipe,
226 CUSS &self_hostname,
227 NULL };
228
229 int address_expansions_count = sizeof(address_expansions)/sizeof(uschar **);
230
231 /* General global variables */
232
233 header_line *acl_added_headers = NULL;
234 tree_node *acl_anchor = NULL;
235 uschar *acl_arg[9] = {NULL, NULL, NULL, NULL, NULL,
236 NULL, NULL, NULL, NULL};
237 int acl_narg = 0;
238
239 int acl_level = 0;
240
241 uschar *acl_not_smtp = NULL;
242 #ifdef WITH_CONTENT_SCAN
243 uschar *acl_not_smtp_mime = NULL;
244 #endif
245 uschar *acl_not_smtp_start = NULL;
246 uschar *acl_removed_headers = NULL;
247 uschar *acl_smtp_auth = NULL;
248 uschar *acl_smtp_connect = NULL;
249 uschar *acl_smtp_data = NULL;
250 #ifndef DISABLE_PRDR
251 uschar *acl_smtp_data_prdr = US"accept";
252 #endif
253 #ifndef DISABLE_DKIM
254 uschar *acl_smtp_dkim = NULL;
255 #endif
256 uschar *acl_smtp_etrn = NULL;
257 uschar *acl_smtp_expn = NULL;
258 uschar *acl_smtp_helo = NULL;
259 uschar *acl_smtp_mail = NULL;
260 uschar *acl_smtp_mailauth = NULL;
261 #ifdef WITH_CONTENT_SCAN
262 uschar *acl_smtp_mime = NULL;
263 #endif
264 uschar *acl_smtp_notquit = NULL;
265 uschar *acl_smtp_predata = NULL;
266 uschar *acl_smtp_quit = NULL;
267 uschar *acl_smtp_rcpt = NULL;
268 uschar *acl_smtp_starttls = NULL;
269 uschar *acl_smtp_vrfy = NULL;
270
271 BOOL acl_temp_details = FALSE;
272 tree_node *acl_var_c = NULL;
273 tree_node *acl_var_m = NULL;
274 uschar *acl_verify_message = NULL;
275 string_item *acl_warn_logged = NULL;
276
277 /* Names of SMTP places for use in ACL error messages, and corresponding SMTP
278 error codes - keep in step with definitions of ACL_WHERE_xxxx in macros.h. */
279
280 uschar *acl_wherenames[] = { US"RCPT",
281 US"MAIL",
282 US"PREDATA",
283 US"MIME",
284 US"DKIM",
285 US"DATA",
286 #ifndef DISABLE_PRDR
287 US"PRDR",
288 #endif
289 US"non-SMTP",
290 US"AUTH",
291 US"connection",
292 US"ETRN",
293 US"EXPN",
294 US"EHLO or HELO",
295 US"MAILAUTH",
296 US"non-SMTP-start",
297 US"NOTQUIT",
298 US"QUIT",
299 US"STARTTLS",
300 US"VRFY",
301 US"delivery",
302 US"unknown"
303 };
304
305 uschar *acl_wherecodes[] = { US"550", /* RCPT */
306 US"550", /* MAIL */
307 US"550", /* PREDATA */
308 US"550", /* MIME */
309 US"550", /* DKIM */
310 US"550", /* DATA */
311 #ifndef DISABLE_PRDR
312 US"550", /* RCPT PRDR */
313 #endif
314 US"0", /* not SMTP; not relevant */
315 US"503", /* AUTH */
316 US"550", /* connect */
317 US"458", /* ETRN */
318 US"550", /* EXPN */
319 US"550", /* HELO/EHLO */
320 US"0", /* MAILAUTH; not relevant */
321 US"0", /* not SMTP; not relevant */
322 US"0", /* NOTQUIT; not relevant */
323 US"0", /* QUIT; not relevant */
324 US"550", /* STARTTLS */
325 US"252", /* VRFY */
326 US"0", /* delivery; not relevant */
327 US"0" /* unknown; not relevant */
328 };
329
330 BOOL active_local_from_check = FALSE;
331 BOOL active_local_sender_retain = FALSE;
332 BOOL accept_8bitmime = TRUE; /* deliberately not RFC compliant */
333 uschar *add_environment = NULL;
334 address_item *addr_duplicate = NULL;
335
336 address_item address_defaults = {
337 .next = NULL,
338 .parent = NULL,
339 .first = NULL,
340 .dupof = NULL,
341 .start_router = NULL,
342 .router = NULL,
343 .transport = NULL,
344 .host_list = NULL,
345 .host_used = NULL,
346 .fallback_hosts = NULL,
347 .reply = NULL,
348 .retries = NULL,
349 .address = NULL,
350 .unique = NULL,
351 .cc_local_part = NULL,
352 .lc_local_part = NULL,
353 .local_part = NULL,
354 .prefix = NULL,
355 .suffix = NULL,
356 .domain = NULL,
357 .address_retry_key = NULL,
358 .domain_retry_key = NULL,
359 .current_dir = NULL,
360 .home_dir = NULL,
361 .message = NULL,
362 .user_message = NULL,
363 .onetime_parent = NULL,
364 .pipe_expandn = NULL,
365 .return_filename = NULL,
366 .self_hostname = NULL,
367 .shadow_message = NULL,
368 #ifdef SUPPORT_TLS
369 .cipher = NULL,
370 .ourcert = NULL,
371 .peercert = NULL,
372 .peerdn = NULL,
373 .ocsp = OCSP_NOT_REQ,
374 #endif
375 #ifdef EXPERIMENTAL_DSN_INFO
376 .smtp_greeting = NULL,
377 .helo_response = NULL,
378 #endif
379 .authenticator = NULL,
380 .auth_id = NULL,
381 .auth_sndr = NULL,
382 .dsn_orcpt = NULL,
383 .dsn_flags = 0,
384 .dsn_aware = 0,
385 .uid = (uid_t)(-1),
386 .gid = (gid_t)(-1),
387 .flags = { 0 },
388 .domain_cache = { 0 }, /* domain_cache - any larger array should be zeroed */
389 .localpart_cache = { 0 }, /* localpart_cache - ditto */
390 .mode = -1,
391 .more_errno = 0,
392 .delivery_usec = 0,
393 .basic_errno = ERRNO_UNKNOWNERROR,
394 .child_count = 0,
395 .return_file = -1,
396 .special_action = SPECIAL_NONE,
397 .transport_return = DEFER,
398 .prop = { /* fields that are propagated to children */
399 .address_data = NULL,
400 .domain_data = NULL,
401 .localpart_data = NULL,
402 .errors_address = NULL,
403 .extra_headers = NULL,
404 .remove_headers = NULL,
405 #ifdef EXPERIMENTAL_SRS
406 .srs_sender = NULL,
407 #endif
408 .ignore_error = FALSE,
409 #ifdef SUPPORT_I18N
410 .utf8_msg = FALSE,
411 .utf8_downcvt = FALSE,
412 .utf8_downcvt_maybe = FALSE
413 #endif
414 }
415 };
416
417 uschar *address_file = NULL;
418 uschar *address_pipe = NULL;
419 BOOL address_test_mode = FALSE;
420 tree_node *addresslist_anchor = NULL;
421 int addresslist_count = 0;
422 gid_t *admin_groups = NULL;
423 BOOL admin_user = FALSE;
424 BOOL allow_auth_unadvertised= FALSE;
425 BOOL allow_domain_literals = FALSE;
426 BOOL allow_mx_to_ip = FALSE;
427 BOOL allow_unqualified_recipient = TRUE; /* For local messages */
428 BOOL allow_unqualified_sender = TRUE; /* Reset for SMTP */
429 BOOL allow_utf8_domains = FALSE;
430
431 #ifdef EXPERIMENTAL_ARC
432 struct arc_set *arc_received = NULL;
433 int arc_received_instance = 0;
434 int arc_oldest_pass = 0;
435 const uschar *arc_state = NULL;
436 const uschar *arc_state_reason = NULL;
437 #endif
438
439 uschar *authenticated_fail_id = NULL;
440 uschar *authenticated_id = NULL;
441 uschar *authenticated_sender = NULL;
442 BOOL authentication_failed = FALSE;
443 BOOL authentication_local = FALSE;
444 auth_instance *auths = NULL;
445 uschar *auth_advertise_hosts = US"*";
446 auth_instance auth_defaults = {
447 .next = NULL,
448 .name = NULL,
449 .info = NULL,
450 .options_block = NULL,
451 .driver_name = NULL,
452 .advertise_condition = NULL,
453 .client_condition = NULL,
454 .public_name = NULL,
455 .set_id = NULL,
456 .set_client_id = NULL,
457 .mail_auth_condition = NULL,
458 .server_debug_string = NULL,
459 .server_condition = NULL,
460 .client = FALSE,
461 .server = FALSE,
462 .advertised = FALSE
463 };
464
465 uschar *auth_defer_msg = US"reason not recorded";
466 uschar *auth_defer_user_msg = US"";
467 uschar *auth_vars[AUTH_VARS];
468 int auto_thaw = 0;
469 #ifdef WITH_CONTENT_SCAN
470 BOOL av_failed = FALSE;
471 uschar *av_scanner = US"sophie:/var/run/sophie"; /* AV scanner */
472 #endif
473
474 BOOL background_daemon = TRUE;
475
476 #if BASE_62 == 62
477 uschar *base62_chars=
478 US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz";
479 #else
480 uschar *base62_chars= US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ";
481 #endif
482
483 uschar *bi_command = NULL;
484 uschar *big_buffer = NULL;
485 int big_buffer_size = BIG_BUFFER_SIZE;
486 #ifdef EXPERIMENTAL_BRIGHTMAIL
487 uschar *bmi_alt_location = NULL;
488 uschar *bmi_base64_tracker_verdict = NULL;
489 uschar *bmi_base64_verdict = NULL;
490 uschar *bmi_config_file = US"/opt/brightmail/etc/brightmail.cfg";
491 int bmi_deliver = 1;
492 int bmi_run = 0;
493 uschar *bmi_verdicts = NULL;
494 #endif
495 int bsmtp_transaction_linecount = 0;
496 int body_8bitmime = 0;
497 int body_linecount = 0;
498 int body_zerocount = 0;
499 uschar *bounce_message_file = NULL;
500 uschar *bounce_message_text = NULL;
501 uschar *bounce_recipient = NULL;
502 BOOL bounce_return_body = TRUE;
503 int bounce_return_linesize_limit = 998;
504 BOOL bounce_return_message = TRUE;
505 int bounce_return_size_limit = 100*1024;
506 uschar *bounce_sender_authentication = NULL;
507
508 uschar *callout_address = NULL;
509 int callout_cache_domain_positive_expire = 7*24*60*60;
510 int callout_cache_domain_negative_expire = 3*60*60;
511 int callout_cache_positive_expire = 24*60*60;
512 int callout_cache_negative_expire = 2*60*60;
513 uschar *callout_random_local_part = US"$primary_hostname-$tod_epoch-testing";
514 uschar *check_dns_names_pattern= US"(?i)^(?>(?(1)\\.|())[^\\W](?>[a-z0-9/_-]*[^\\W])?)+(\\.?)$";
515 int check_log_inodes = 100;
516 int check_log_space = 10*1024; /* 10K Kbyte == 10MB */
517 BOOL check_rfc2047_length = TRUE;
518 int check_spool_inodes = 100;
519 int check_spool_space = 10*1024; /* 10K Kbyte == 10MB */
520
521 uschar *chunking_advertise_hosts = US"*";
522 unsigned chunking_datasize = 0;
523 unsigned chunking_data_left = 0;
524 BOOL chunking_offered = FALSE;
525 chunking_state_t chunking_state= CHUNKING_NOT_OFFERED;
526 const pcre *regex_CHUNKING = NULL;
527
528 uschar *client_authenticator = NULL;
529 uschar *client_authenticated_id = NULL;
530 uschar *client_authenticated_sender = NULL;
531 int clmacro_count = 0;
532 uschar *clmacros[MAX_CLMACROS];
533 BOOL commandline_checks_require_admin = FALSE;
534 BOOL config_changed = FALSE;
535 FILE *config_file = NULL;
536 const uschar *config_filename = NULL;
537 int config_lineno = 0;
538 #ifdef CONFIGURE_GROUP
539 gid_t config_gid = CONFIGURE_GROUP;
540 #else
541 gid_t config_gid = 0;
542 #endif
543 uschar *config_main_filelist = US CONFIGURE_FILE
544 "\0<-----------Space to patch configure_filename->";
545 uschar *config_main_filename = NULL;
546 uschar *config_main_directory = NULL;
547
548 #ifdef CONFIGURE_OWNER
549 uid_t config_uid = CONFIGURE_OWNER;
550 #else
551 uid_t config_uid = 0;
552 #endif
553
554 int connection_max_messages= -1;
555 uschar *continue_proxy_cipher = NULL;
556 uschar *continue_hostname = NULL;
557 uschar *continue_host_address = NULL;
558 BOOL continue_more = FALSE;
559 int continue_sequence = 1;
560 uschar *continue_transport = NULL;
561
562 uschar *csa_status = NULL;
563 cut_t cutthrough = {
564 .callout_hold_only = FALSE, /* verify-only: normal delivery */
565 .delivery = FALSE, /* when to attempt */
566 .defer_pass = FALSE, /* on defer: spool locally */
567 .is_tls = FALSE, /* not a TLS conn yet */
568 .cctx = {.sock = -1}, /* open connection */
569 .nrcpt = 0, /* number of addresses */
570 };
571
572 BOOL daemon_listen = FALSE;
573 uschar *daemon_smtp_port = US"smtp";
574 int daemon_startup_retries = 9;
575 int daemon_startup_sleep = 30;
576
577 #ifdef EXPERIMENTAL_DCC
578 BOOL dcc_direct_add_header = FALSE;
579 uschar *dcc_header = NULL;
580 uschar *dcc_result = NULL;
581 uschar *dccifd_address = US"/usr/local/dcc/var/dccifd";
582 uschar *dccifd_options = US"header";
583 #endif
584
585 BOOL debug_daemon = FALSE;
586 int debug_fd = -1;
587 FILE *debug_file = NULL;
588 int debug_notall[] = {
589 Di_memory,
590 -1
591 };
592 bit_table debug_options[] = { /* must be in alphabetical order */
593 BIT_TABLE(D, acl),
594 BIT_TABLE(D, all),
595 BIT_TABLE(D, auth),
596 BIT_TABLE(D, deliver),
597 BIT_TABLE(D, dns),
598 BIT_TABLE(D, dnsbl),
599 BIT_TABLE(D, exec),
600 BIT_TABLE(D, expand),
601 BIT_TABLE(D, filter),
602 BIT_TABLE(D, hints_lookup),
603 BIT_TABLE(D, host_lookup),
604 BIT_TABLE(D, ident),
605 BIT_TABLE(D, interface),
606 BIT_TABLE(D, lists),
607 BIT_TABLE(D, load),
608 BIT_TABLE(D, local_scan),
609 BIT_TABLE(D, lookup),
610 BIT_TABLE(D, memory),
611 BIT_TABLE(D, pid),
612 BIT_TABLE(D, process_info),
613 BIT_TABLE(D, queue_run),
614 BIT_TABLE(D, receive),
615 BIT_TABLE(D, resolver),
616 BIT_TABLE(D, retry),
617 BIT_TABLE(D, rewrite),
618 BIT_TABLE(D, route),
619 BIT_TABLE(D, timestamp),
620 BIT_TABLE(D, tls),
621 BIT_TABLE(D, transport),
622 BIT_TABLE(D, uid),
623 BIT_TABLE(D, verify),
624 };
625 int debug_options_count = nelem(debug_options);
626
627 unsigned int debug_selector = 0;
628 BOOL debug_store = FALSE;
629 int delay_warning[DELAY_WARNING_SIZE] = { DELAY_WARNING_SIZE, 1, 24*60*60 };
630 uschar *delay_warning_condition=
631 US"${if or {"
632 "{ !eq{$h_list-id:$h_list-post:$h_list-subscribe:}{} }"
633 "{ match{$h_precedence:}{(?i)bulk|list|junk} }"
634 "{ match{$h_auto-submitted:}{(?i)auto-generated|auto-replied} }"
635 "} {no}{yes}}";
636 BOOL delivery_date_remove = TRUE;
637 uschar *deliver_address_data = NULL;
638 int deliver_datafile = -1;
639 const uschar *deliver_domain = NULL;
640 uschar *deliver_domain_data = NULL;
641 const uschar *deliver_domain_orig = NULL;
642 const uschar *deliver_domain_parent = NULL;
643 BOOL deliver_drop_privilege = FALSE;
644 BOOL deliver_firsttime = FALSE;
645 BOOL deliver_force = FALSE;
646 BOOL deliver_freeze = FALSE;
647 time_t deliver_frozen_at = 0;
648 uschar *deliver_home = NULL;
649 const uschar *deliver_host = NULL;
650 const uschar *deliver_host_address = NULL;
651 int deliver_host_port = 0;
652 uschar *deliver_in_buffer = NULL;
653 ino_t deliver_inode = 0;
654 uschar *deliver_localpart = NULL;
655 uschar *deliver_localpart_data = NULL;
656 uschar *deliver_localpart_orig = NULL;
657 uschar *deliver_localpart_parent = NULL;
658 uschar *deliver_localpart_prefix = NULL;
659 uschar *deliver_localpart_suffix = NULL;
660 BOOL deliver_force_thaw = FALSE;
661 BOOL deliver_manual_thaw = FALSE;
662 uschar *deliver_out_buffer = NULL;
663 int deliver_queue_load_max = -1;
664 address_item *deliver_recipients = NULL;
665 uschar *deliver_selectstring = NULL;
666 BOOL deliver_selectstring_regex = FALSE;
667 uschar *deliver_selectstring_sender = NULL;
668 BOOL deliver_selectstring_sender_regex = FALSE;
669 BOOL disable_callout_flush = FALSE;
670 BOOL disable_delay_flush = FALSE;
671 #ifdef ENABLE_DISABLE_FSYNC
672 BOOL disable_fsync = FALSE;
673 #endif
674 BOOL disable_ipv6 = FALSE;
675 BOOL disable_logging = FALSE;
676
677 #ifndef DISABLE_DKIM
678 unsigned dkim_collect_input = 0;
679 uschar *dkim_cur_signer = NULL;
680 BOOL dkim_disable_verify = FALSE;
681 int dkim_key_length = 0;
682 void *dkim_signatures = NULL;
683 uschar *dkim_signers = NULL;
684 uschar *dkim_signing_domain = NULL;
685 uschar *dkim_signing_selector = NULL;
686 uschar *dkim_verify_overall = NULL;
687 uschar *dkim_verify_signers = US"$dkim_signers";
688 uschar *dkim_verify_status = NULL;
689 uschar *dkim_verify_reason = NULL;
690 #endif
691 #ifdef EXPERIMENTAL_DMARC
692 BOOL dmarc_has_been_checked = FALSE;
693 uschar *dmarc_domain_policy = NULL;
694 uschar *dmarc_forensic_sender = NULL;
695 uschar *dmarc_history_file = NULL;
696 uschar *dmarc_status = NULL;
697 uschar *dmarc_status_text = NULL;
698 uschar *dmarc_tld_file = NULL;
699 uschar *dmarc_used_domain = NULL;
700 BOOL dmarc_disable_verify = FALSE;
701 BOOL dmarc_enable_forensic = FALSE;
702 #endif
703
704 uschar *dns_again_means_nonexist = NULL;
705 int dns_csa_search_limit = 5;
706 BOOL dns_csa_use_reverse = TRUE;
707 int dns_cname_loops = 1;
708 #ifdef SUPPORT_DANE
709 int dns_dane_ok = -1;
710 #endif
711 uschar *dns_ipv4_lookup = NULL;
712 int dns_retrans = 0;
713 int dns_retry = 0;
714 int dns_dnssec_ok = -1; /* <0 = not coerced */
715 uschar *dns_trust_aa = NULL;
716 int dns_use_edns0 = -1; /* <0 = not coerced */
717 uschar *dnslist_domain = NULL;
718 uschar *dnslist_matched = NULL;
719 uschar *dnslist_text = NULL;
720 uschar *dnslist_value = NULL;
721 tree_node *domainlist_anchor = NULL;
722 int domainlist_count = 0;
723 BOOL dont_deliver = FALSE;
724 BOOL dot_ends = TRUE;
725 BOOL drop_cr = FALSE; /* No longer used */
726 uschar *dsn_from = US DEFAULT_DSN_FROM;
727
728 BOOL enable_dollar_recipients = FALSE;
729 BOOL envelope_to_remove = TRUE;
730 int errno_quota = ERRNO_QUOTA;
731 uschar *errors_copy = NULL;
732 int error_handling = ERRORS_SENDER;
733 uschar *errors_reply_to = NULL;
734 int errors_sender_rc = EXIT_FAILURE;
735 #ifndef DISABLE_EVENT
736 uschar *event_action = NULL; /* expansion for delivery events */
737 uschar *event_data = NULL; /* auxiliary data variable for event */
738 int event_defer_errno = 0;
739 const uschar *event_name = NULL; /* event name variable */
740 #endif
741
742
743 gid_t exim_gid = EXIM_GID;
744 BOOL exim_gid_set = TRUE; /* This gid is always set */
745 uschar *exim_path = US BIN_DIRECTORY "/exim"
746 "\0<---------------Space to patch exim_path->";
747 uid_t exim_uid = EXIM_UID;
748 BOOL exim_uid_set = TRUE; /* This uid is always set */
749 int expand_level = 0; /* Nesting depth, indent for debug */
750 int expand_forbid = 0;
751 int expand_nlength[EXPAND_MAXN+1];
752 int expand_nmax = -1;
753 uschar *expand_nstring[EXPAND_MAXN+1];
754 BOOL expand_string_forcedfail = FALSE;
755 uschar *expand_string_message;
756 BOOL extract_addresses_remove_arguments = TRUE;
757 uschar *extra_local_interfaces = NULL;
758
759 int fake_response = OK;
760 uschar *fake_response_text = US"Your message has been rejected but is "
761 "being kept for evaluation.\nIf it was a "
762 "legitimate message, it may still be "
763 "delivered to the target recipient(s).";
764 int filter_n[FILTER_VARIABLE_COUNT];
765 BOOL filter_running = FALSE;
766 int filter_sn[FILTER_VARIABLE_COUNT];
767 int filter_test = FTEST_NONE;
768 uschar *filter_test_sfile = NULL;
769 uschar *filter_test_ufile = NULL;
770 uschar *filter_thisaddress = NULL;
771 int finduser_retries = 0;
772 uid_t fixed_never_users[] = { FIXED_NEVER_USERS };
773 uschar *freeze_tell = NULL;
774 uschar *freeze_tell_config = NULL;
775 uschar *fudged_queue_times = US"";
776
777 uschar *gecos_name = NULL;
778 uschar *gecos_pattern = NULL;
779 rewrite_rule *global_rewrite_rules = NULL;
780
781 volatile sig_atomic_t had_command_timeout = 0;
782 volatile sig_atomic_t had_command_sigterm = 0;
783 volatile sig_atomic_t had_data_timeout = 0;
784 volatile sig_atomic_t had_data_sigint = 0;
785 uschar *headers_charset = US HEADERS_CHARSET;
786 int header_insert_maxlen = 64 * 1024;
787 header_line *header_last = NULL;
788 header_line *header_list = NULL;
789 int header_maxsize = HEADER_MAXSIZE;
790 int header_line_maxsize = 0;
791
792 header_name header_names[] = {
793 /* name len allow_resent htype */
794 { US"bcc", 3, TRUE, htype_bcc },
795 { US"cc", 2, TRUE, htype_cc },
796 { US"date", 4, TRUE, htype_date },
797 { US"delivery-date", 13, FALSE, htype_delivery_date },
798 { US"envelope-to", 11, FALSE, htype_envelope_to },
799 { US"from", 4, TRUE, htype_from },
800 { US"message-id", 10, TRUE, htype_id },
801 { US"received", 8, FALSE, htype_received },
802 { US"reply-to", 8, FALSE, htype_reply_to },
803 { US"return-path", 11, FALSE, htype_return_path },
804 { US"sender", 6, TRUE, htype_sender },
805 { US"subject", 7, FALSE, htype_subject },
806 { US"to", 2, TRUE, htype_to }
807 };
808
809 int header_names_size = nelem(header_names);
810
811 BOOL header_rewritten = FALSE;
812 uschar *helo_accept_junk_hosts = NULL;
813 uschar *helo_allow_chars = US"";
814 uschar *helo_lookup_domains = US"@ : @[]";
815 uschar *helo_try_verify_hosts = NULL;
816 BOOL helo_verified = FALSE;
817 BOOL helo_verify_failed = FALSE;
818 uschar *helo_verify_hosts = NULL;
819 const uschar *hex_digits = CUS"0123456789abcdef";
820 uschar *hold_domains = NULL;
821 BOOL host_checking = FALSE;
822 BOOL host_checking_callout = FALSE;
823 uschar *host_data = NULL;
824 BOOL host_find_failed_syntax= FALSE;
825 uschar *host_lookup = NULL;
826 BOOL host_lookup_deferred = FALSE;
827 BOOL host_lookup_failed = FALSE;
828 uschar *host_lookup_order = US"bydns:byaddr";
829 uschar *host_lookup_msg = US"";
830 int host_number = 0;
831 uschar *host_number_string = NULL;
832 uschar *host_reject_connection = NULL;
833 tree_node *hostlist_anchor = NULL;
834 int hostlist_count = 0;
835 uschar *hosts_treat_as_local = NULL;
836 uschar *hosts_connection_nolog = NULL;
837
838 int ignore_bounce_errors_after = 10*7*24*60*60; /* 10 weeks */
839 BOOL ignore_fromline_local = FALSE;
840 uschar *ignore_fromline_hosts = NULL;
841 BOOL inetd_wait_mode = FALSE;
842 int inetd_wait_timeout = -1;
843 uschar *initial_cwd = NULL;
844 uschar *interface_address = NULL;
845 int interface_port = -1;
846 BOOL is_inetd = FALSE;
847 uschar *iterate_item = NULL;
848
849 int journal_fd = -1;
850
851 uschar *keep_environment = NULL;
852
853 int keep_malformed = 4*24*60*60; /* 4 days */
854
855 uschar *eldap_dn = NULL;
856 int load_average = -2;
857 BOOL local_error_message = FALSE;
858 BOOL local_from_check = TRUE;
859 uschar *local_from_prefix = NULL;
860 uschar *local_from_suffix = NULL;
861
862 #if HAVE_IPV6
863 uschar *local_interfaces = US"<; ::0 ; 0.0.0.0";
864 #else
865 uschar *local_interfaces = US"0.0.0.0";
866 #endif
867
868 #ifdef HAVE_LOCAL_SCAN
869 uschar *local_scan_data = NULL;
870 int local_scan_timeout = 5*60;
871 #endif
872 BOOL local_sender_retain = FALSE;
873 gid_t local_user_gid = (gid_t)(-1);
874 uid_t local_user_uid = (uid_t)(-1);
875
876 tree_node *localpartlist_anchor= NULL;
877 int localpartlist_count = 0;
878 uschar *log_buffer = NULL;
879
880 int log_default[] = { /* for initializing log_selector */
881 Li_acl_warn_skipped,
882 Li_connection_reject,
883 Li_delay_delivery,
884 Li_dkim,
885 Li_dnslist_defer,
886 Li_etrn,
887 Li_host_lookup_failed,
888 Li_lost_incoming_connection,
889 Li_outgoing_interface, /* see d_log_interface in deliver.c */
890 Li_queue_run,
891 Li_rejected_header,
892 Li_retry_defer,
893 Li_sender_verify_fail,
894 Li_size_reject,
895 Li_skip_delivery,
896 Li_smtp_confirmation,
897 Li_tls_certificate_verified,
898 Li_tls_cipher,
899 -1
900 };
901
902 uschar *log_file_path = US LOG_FILE_PATH
903 "\0<--------------Space to patch log_file_path->";
904
905 int log_notall[] = {
906 -1
907 };
908 bit_table log_options[] = { /* must be in alphabetical order */
909 BIT_TABLE(L, 8bitmime),
910 BIT_TABLE(L, acl_warn_skipped),
911 BIT_TABLE(L, address_rewrite),
912 BIT_TABLE(L, all),
913 BIT_TABLE(L, all_parents),
914 BIT_TABLE(L, arguments),
915 BIT_TABLE(L, connection_reject),
916 BIT_TABLE(L, delay_delivery),
917 BIT_TABLE(L, deliver_time),
918 BIT_TABLE(L, delivery_size),
919 #ifndef DISABLE_DKIM
920 BIT_TABLE(L, dkim),
921 BIT_TABLE(L, dkim_verbose),
922 #endif
923 BIT_TABLE(L, dnslist_defer),
924 BIT_TABLE(L, dnssec),
925 BIT_TABLE(L, etrn),
926 BIT_TABLE(L, host_lookup_failed),
927 BIT_TABLE(L, ident_timeout),
928 BIT_TABLE(L, incoming_interface),
929 BIT_TABLE(L, incoming_port),
930 BIT_TABLE(L, lost_incoming_connection),
931 BIT_TABLE(L, millisec),
932 BIT_TABLE(L, outgoing_interface),
933 BIT_TABLE(L, outgoing_port),
934 BIT_TABLE(L, pid),
935 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
936 BIT_TABLE(L, proxy),
937 #endif
938 BIT_TABLE(L, queue_run),
939 BIT_TABLE(L, queue_time),
940 BIT_TABLE(L, queue_time_overall),
941 BIT_TABLE(L, receive_time),
942 BIT_TABLE(L, received_recipients),
943 BIT_TABLE(L, received_sender),
944 BIT_TABLE(L, rejected_header),
945 { US"rejected_headers", Li_rejected_header },
946 BIT_TABLE(L, retry_defer),
947 BIT_TABLE(L, return_path_on_delivery),
948 BIT_TABLE(L, sender_on_delivery),
949 BIT_TABLE(L, sender_verify_fail),
950 BIT_TABLE(L, size_reject),
951 BIT_TABLE(L, skip_delivery),
952 BIT_TABLE(L, smtp_confirmation),
953 BIT_TABLE(L, smtp_connection),
954 BIT_TABLE(L, smtp_incomplete_transaction),
955 BIT_TABLE(L, smtp_mailauth),
956 BIT_TABLE(L, smtp_no_mail),
957 BIT_TABLE(L, smtp_protocol_error),
958 BIT_TABLE(L, smtp_syntax_error),
959 BIT_TABLE(L, subject),
960 BIT_TABLE(L, tls_certificate_verified),
961 BIT_TABLE(L, tls_cipher),
962 BIT_TABLE(L, tls_peerdn),
963 BIT_TABLE(L, tls_sni),
964 BIT_TABLE(L, unknown_in_list),
965 };
966 int log_options_count = nelem(log_options);
967
968 int log_reject_target = 0;
969 unsigned int log_selector[log_selector_size]; /* initialized in main() */
970 uschar *log_selector_string = NULL;
971 FILE *log_stderr = NULL;
972 BOOL log_testing_mode = FALSE;
973 BOOL log_timezone = FALSE;
974 uschar *login_sender_address = NULL;
975 uschar *lookup_dnssec_authenticated = NULL;
976 int lookup_open_max = 25;
977 uschar *lookup_value = NULL;
978
979 macro_item *macros_user = NULL;
980 uschar *mailstore_basename = NULL;
981 #ifdef WITH_CONTENT_SCAN
982 uschar *malware_name = NULL; /* Virus Name */
983 #endif
984 int max_received_linelength= 0;
985 int max_username_length = 0;
986 int message_age = 0;
987 uschar *message_body = NULL;
988 uschar *message_body_end = NULL;
989 BOOL message_body_newlines = FALSE;
990 int message_body_size = 0;
991 int message_body_visible = 500;
992 int message_ended = END_NOTSTARTED;
993 uschar *message_headers = NULL;
994 uschar *message_id;
995 uschar *message_id_domain = NULL;
996 uschar *message_id_text = NULL;
997 struct timeval message_id_tv = { 0, 0 };
998 uschar message_id_option[MESSAGE_ID_LENGTH + 3];
999 uschar *message_id_external;
1000 int message_linecount = 0;
1001 BOOL message_logs = TRUE;
1002 int message_size = 0;
1003 uschar *message_size_limit = US"50M";
1004 #ifdef SUPPORT_I18N
1005 BOOL message_smtputf8 = FALSE;
1006 int message_utf8_downconvert = 0; /* -1 ifneeded; 0 never; 1 always */
1007 #endif
1008 uschar message_subdir[2] = { 0, 0 };
1009 uschar *message_reference = NULL;
1010
1011 /* MIME ACL expandables */
1012 #ifdef WITH_CONTENT_SCAN
1013 int mime_anomaly_level = 0;
1014 const uschar *mime_anomaly_text = NULL;
1015 uschar *mime_boundary = NULL;
1016 uschar *mime_charset = NULL;
1017 uschar *mime_content_description = NULL;
1018 uschar *mime_content_disposition = NULL;
1019 uschar *mime_content_id = NULL;
1020 unsigned int mime_content_size = 0;
1021 uschar *mime_content_transfer_encoding = NULL;
1022 uschar *mime_content_type = NULL;
1023 uschar *mime_decoded_filename = NULL;
1024 uschar *mime_filename = NULL;
1025 int mime_is_multipart = 0;
1026 int mime_is_coverletter = 0;
1027 int mime_is_rfc822 = 0;
1028 int mime_part_count = -1;
1029 #endif
1030
1031 BOOL mua_wrapper = FALSE;
1032
1033 uid_t *never_users = NULL;
1034 #ifdef WITH_CONTENT_SCAN
1035 BOOL no_mbox_unspool = FALSE;
1036 #endif
1037 BOOL no_multiline_responses = FALSE;
1038
1039 const int on = 1; /* for setsockopt */
1040 const int off = 0;
1041
1042 uid_t original_euid;
1043 gid_t originator_gid;
1044 uschar *originator_login = NULL;
1045 uschar *originator_name = NULL;
1046 uid_t originator_uid;
1047 uschar *override_local_interfaces = NULL;
1048 uschar *override_pid_file_path = NULL;
1049
1050 BOOL parse_allow_group = FALSE;
1051 BOOL parse_found_group = FALSE;
1052 uschar *percent_hack_domains = NULL;
1053 uschar *pid_file_path = US PID_FILE_PATH
1054 "\0<--------------Space to patch pid_file_path->";
1055 BOOL pipelining_enable = TRUE;
1056 uschar *pipelining_advertise_hosts = US"*";
1057 BOOL preserve_message_logs = FALSE;
1058 uschar *primary_hostname = NULL;
1059 BOOL print_topbitchars = FALSE;
1060 uschar process_info[PROCESS_INFO_SIZE];
1061 int process_info_len = 0;
1062 uschar *process_log_path = NULL;
1063 BOOL prod_requires_admin = TRUE;
1064
1065 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1066 uschar *hosts_proxy = US"";
1067 uschar *proxy_external_address = US"";
1068 int proxy_external_port = 0;
1069 uschar *proxy_local_address = US"";
1070 int proxy_local_port = 0;
1071 BOOL proxy_session = FALSE;
1072 BOOL proxy_session_failed = FALSE;
1073 #endif
1074
1075 uschar *prvscheck_address = NULL;
1076 uschar *prvscheck_keynum = NULL;
1077 uschar *prvscheck_result = NULL;
1078
1079
1080 const uschar *qualify_domain_recipient = NULL;
1081 uschar *qualify_domain_sender = NULL;
1082 BOOL queue_2stage = FALSE;
1083 uschar *queue_domains = NULL;
1084 int queue_interval = -1;
1085 BOOL queue_list_requires_admin = TRUE;
1086 uschar *queue_name = US"";
1087 BOOL queue_only = FALSE;
1088 uschar *queue_only_file = NULL;
1089 int queue_only_load = -1;
1090 BOOL queue_only_load_latch = TRUE;
1091 BOOL queue_only_override = TRUE;
1092 BOOL queue_only_policy = FALSE;
1093 BOOL queue_run_first_delivery = FALSE;
1094 BOOL queue_run_force = FALSE;
1095 BOOL queue_run_in_order = FALSE;
1096 BOOL queue_run_local = FALSE;
1097 uschar *queue_run_max = US"5";
1098 pid_t queue_run_pid = (pid_t)0;
1099 int queue_run_pipe = -1;
1100 BOOL queue_running = FALSE;
1101 BOOL queue_smtp = FALSE;
1102 uschar *queue_smtp_domains = NULL;
1103
1104 unsigned int random_seed = 0;
1105 tree_node *ratelimiters_cmd = NULL;
1106 tree_node *ratelimiters_conn = NULL;
1107 tree_node *ratelimiters_mail = NULL;
1108 uschar *raw_active_hostname = NULL;
1109 uschar *raw_sender = NULL;
1110 uschar **raw_recipients = NULL;
1111 int raw_recipients_count = 0;
1112
1113 int rcpt_count = 0;
1114 int rcpt_fail_count = 0;
1115 int rcpt_defer_count = 0;
1116 gid_t real_gid;
1117 uid_t real_uid;
1118 BOOL really_exim = TRUE;
1119 BOOL receive_call_bombout = FALSE;
1120 int receive_linecount = 0;
1121 int receive_messagecount = 0;
1122 int receive_timeout = 0;
1123 int received_count = 0;
1124 uschar *received_for = NULL;
1125
1126 /* This is the default text for Received headers generated by Exim. The
1127 date will be automatically added on the end. */
1128
1129 uschar *received_header_text = US
1130 "Received: "
1131 "${if def:sender_rcvhost {from $sender_rcvhost\n\t}"
1132 "{${if def:sender_ident {from ${quote_local_part:$sender_ident} }}"
1133 "${if def:sender_helo_name {(helo=$sender_helo_name)\n\t}}}}"
1134 "by $primary_hostname "
1135 "${if def:received_protocol {with $received_protocol}} "
1136 #ifdef SUPPORT_TLS
1137 "${if def:tls_cipher {($tls_cipher)\n\t}}"
1138 #endif
1139 "(Exim $version_number)\n\t"
1140 "${if def:sender_address {(envelope-from <$sender_address>)\n\t}}"
1141 "id $message_exim_id"
1142 "${if def:received_for {\n\tfor $received_for}}"
1143 "\0<---------------Space to patch received_header_text->";
1144
1145 int received_headers_max = 30;
1146 uschar *received_protocol = NULL;
1147 struct timeval received_time = { 0, 0 };
1148 struct timeval received_time_taken = { 0, 0 };
1149 uschar *recipient_data = NULL;
1150 uschar *recipient_unqualified_hosts = NULL;
1151 uschar *recipient_verify_failure = NULL;
1152 int recipients_count = 0;
1153 BOOL recipients_discarded = FALSE;
1154 recipient_item *recipients_list = NULL;
1155 int recipients_list_max = 0;
1156 int recipients_max = 0;
1157 BOOL recipients_max_reject = FALSE;
1158 const pcre *regex_AUTH = NULL;
1159 const pcre *regex_check_dns_names = NULL;
1160 const pcre *regex_From = NULL;
1161 const pcre *regex_IGNOREQUOTA = NULL;
1162 const pcre *regex_PIPELINING = NULL;
1163 const pcre *regex_SIZE = NULL;
1164 const pcre *regex_ismsgid = NULL;
1165 const pcre *regex_smtp_code = NULL;
1166 uschar *regex_vars[REGEX_VARS];
1167 #ifdef WHITELIST_D_MACROS
1168 const pcre *regex_whitelisted_macro = NULL;
1169 #endif
1170 #ifdef WITH_CONTENT_SCAN
1171 uschar *regex_match_string = NULL;
1172 #endif
1173 int remote_delivery_count = 0;
1174 int remote_max_parallel = 2;
1175 uschar *remote_sort_domains = NULL;
1176 int retry_data_expire = 7*24*60*60;
1177 int retry_interval_max = 24*60*60;
1178 int retry_maximum_timeout = 0; /* set from retry config */
1179 retry_config *retries = NULL;
1180 uschar *return_path = NULL;
1181 BOOL return_path_remove = TRUE;
1182 int rewrite_existflags = 0;
1183 uschar *rfc1413_hosts = US"@[]";
1184 int rfc1413_query_timeout = 0;
1185 /* BOOL rfc821_domains = FALSE; <<< on the way out */
1186 uid_t root_gid = ROOT_GID;
1187 uid_t root_uid = ROOT_UID;
1188
1189 router_instance *routers = NULL;
1190 router_instance router_defaults = {
1191 .next = NULL,
1192 .name = NULL,
1193 .info = NULL,
1194 .options_block = NULL,
1195 .driver_name = NULL,
1196
1197 .address_data = NULL,
1198 #ifdef EXPERIMENTAL_BRIGHTMAIL
1199 .bmi_rule = NULL,
1200 #endif
1201 .cannot_route_message = NULL,
1202 .condition = NULL,
1203 .current_directory = NULL,
1204 .debug_string = NULL,
1205 .domains = NULL,
1206 .errors_to = NULL,
1207 .expand_gid = NULL,
1208 .expand_uid = NULL,
1209 .expand_more = NULL,
1210 .expand_unseen = NULL,
1211 .extra_headers = NULL,
1212 .fallback_hosts = NULL,
1213 .home_directory = NULL,
1214 .ignore_target_hosts = NULL,
1215 .local_parts = NULL,
1216 .pass_router_name = NULL,
1217 .prefix = NULL,
1218 .redirect_router_name = NULL,
1219 .remove_headers = NULL,
1220 .require_files = NULL,
1221 .router_home_directory = NULL,
1222 .self = US"freeze",
1223 .senders = NULL,
1224 .suffix = NULL,
1225 .translate_ip_address = NULL,
1226 .transport_name = NULL,
1227
1228 .address_test = TRUE,
1229 #ifdef EXPERIMENTAL_BRIGHTMAIL
1230 .bmi_deliver_alternate = FALSE,
1231 .bmi_deliver_default = FALSE,
1232 .bmi_dont_deliver = FALSE,
1233 #endif
1234 .expn = TRUE,
1235 .caseful_local_part = FALSE,
1236 .check_local_user = FALSE,
1237 .disable_logging = FALSE,
1238 .fail_verify_recipient = FALSE,
1239 .fail_verify_sender = FALSE,
1240 .gid_set = FALSE,
1241 .initgroups = FALSE,
1242 .log_as_local = TRUE_UNSET,
1243 .more = TRUE,
1244 .pass_on_timeout = FALSE,
1245 .prefix_optional = FALSE,
1246 .repeat_use = TRUE,
1247 .retry_use_local_part = TRUE_UNSET,
1248 .same_domain_copy_routing = FALSE,
1249 .self_rewrite = FALSE,
1250 .suffix_optional = FALSE,
1251 .verify_only = FALSE,
1252 .verify_recipient = TRUE,
1253 .verify_sender = TRUE,
1254 .uid_set = FALSE,
1255 .unseen = FALSE,
1256 .dsn_lasthop = FALSE,
1257
1258 .self_code = self_freeze,
1259 .uid = (uid_t)(-1),
1260 .gid = (gid_t)(-1),
1261
1262 .fallback_hostlist = NULL,
1263 .transport = NULL,
1264 .pass_router = NULL,
1265 .redirect_router = NULL,
1266
1267 .dnssec = { NULL, NULL }, /* dnssec_domains {require,request} */
1268 };
1269
1270 uschar *router_name = NULL;
1271
1272 ip_address_item *running_interfaces = NULL;
1273 BOOL running_in_test_harness = FALSE;
1274
1275 /* This is a weird one. The following string gets patched in the binary by the
1276 script that sets up a copy of Exim for running in the test harness. It seems
1277 that compilers are now clever, and share constant strings if they can.
1278 Elsewhere in Exim the string "<" is used. The compiler optimization seems to
1279 make use of the end of this string in order to save space. So the patching then
1280 wrecks this. We defeat this optimization by adding some additional characters
1281 onto the end of the string. */
1282
1283 uschar *running_status = US">>>running<<<" "\0EXTRA";
1284
1285 int runrc = 0;
1286
1287 uschar *search_error_message = NULL;
1288 BOOL search_find_defer = FALSE;
1289 uschar *self_hostname = NULL;
1290 uschar *sender_address = NULL;
1291 unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32];
1292 uschar *sender_address_data = NULL;
1293 BOOL sender_address_forced = FALSE;
1294 uschar *sender_address_unrewritten = NULL;
1295 uschar *sender_data = NULL;
1296 unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32];
1297 uschar *sender_fullhost = NULL;
1298 BOOL sender_helo_dnssec = FALSE;
1299 uschar *sender_helo_name = NULL;
1300 uschar **sender_host_aliases = &no_aliases;
1301 uschar *sender_host_address = NULL;
1302 uschar *sender_host_authenticated = NULL;
1303 uschar *sender_host_auth_pubname = NULL;
1304 unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32];
1305 BOOL sender_host_dnssec = FALSE;
1306 uschar *sender_host_name = NULL;
1307 int sender_host_port = 0;
1308 BOOL sender_host_notsocket = FALSE;
1309 BOOL sender_host_unknown = FALSE;
1310 uschar *sender_ident = NULL;
1311 BOOL sender_local = FALSE;
1312 BOOL sender_name_forced = FALSE;
1313 uschar *sender_rate = NULL;
1314 uschar *sender_rate_limit = NULL;
1315 uschar *sender_rate_period = NULL;
1316 uschar *sender_rcvhost = NULL;
1317 BOOL sender_set_untrusted = FALSE;
1318 uschar *sender_unqualified_hosts = NULL;
1319 uschar *sender_verify_failure = NULL;
1320 address_item *sender_verified_list = NULL;
1321 address_item *sender_verified_failed = NULL;
1322 int sender_verified_rc = -1;
1323 BOOL sender_verified_responded = FALSE;
1324 uschar *sending_ip_address = NULL;
1325 int sending_port = -1;
1326 SIGNAL_BOOL sigalrm_seen = FALSE;
1327 uschar **sighup_argv = NULL;
1328 int slow_lookup_log = 0; /* millisecs, zero disables */
1329 int smtp_accept_count = 0;
1330 BOOL smtp_accept_keepalive = TRUE;
1331 int smtp_accept_max = 20;
1332 int smtp_accept_max_nonmail= 10;
1333 uschar *smtp_accept_max_nonmail_hosts = US"*";
1334 int smtp_accept_max_per_connection = 1000;
1335 uschar *smtp_accept_max_per_host = NULL;
1336 int smtp_accept_queue = 0;
1337 int smtp_accept_queue_per_connection = 10;
1338 int smtp_accept_reserve = 0;
1339 uschar *smtp_active_hostname = NULL;
1340 BOOL smtp_authenticated = FALSE;
1341 uschar *smtp_banner = US"$smtp_active_hostname ESMTP "
1342 "Exim $version_number $tod_full"
1343 "\0<---------------Space to patch smtp_banner->";
1344 BOOL smtp_batched_input = FALSE;
1345 BOOL smtp_check_spool_space = TRUE;
1346 int smtp_ch_index = 0;
1347 uschar *smtp_cmd_argument = NULL;
1348 uschar *smtp_cmd_buffer = NULL;
1349 struct timeval smtp_connection_start = {0,0};
1350 uschar smtp_connection_had[SMTP_HBUFF_SIZE];
1351 int smtp_connect_backlog = 20;
1352 double smtp_delay_mail = 0.0;
1353 double smtp_delay_rcpt = 0.0;
1354 BOOL smtp_enforce_sync = TRUE;
1355 FILE *smtp_in = NULL;
1356 BOOL smtp_input = FALSE;
1357 int smtp_load_reserve = -1;
1358 int smtp_mailcmd_count = 0;
1359 FILE *smtp_out = NULL;
1360 uschar *smtp_etrn_command = NULL;
1361 BOOL smtp_etrn_serialize = TRUE;
1362 int smtp_max_synprot_errors= 3;
1363 int smtp_max_unknown_commands = 3;
1364 uschar *smtp_notquit_reason = NULL;
1365 uschar *smtp_ratelimit_hosts = NULL;
1366 uschar *smtp_ratelimit_mail = NULL;
1367 uschar *smtp_ratelimit_rcpt = NULL;
1368 uschar *smtp_read_error = US"";
1369 int smtp_receive_timeout = 5*60;
1370 uschar *smtp_receive_timeout_s = NULL;
1371 uschar *smtp_reserve_hosts = NULL;
1372 BOOL smtp_return_error_details = FALSE;
1373 int smtp_rlm_base = 0;
1374 double smtp_rlm_factor = 0.0;
1375 int smtp_rlm_limit = 0;
1376 int smtp_rlm_threshold = INT_MAX;
1377 int smtp_rlr_base = 0;
1378 double smtp_rlr_factor = 0.0;
1379 int smtp_rlr_limit = 0;
1380 int smtp_rlr_threshold = INT_MAX;
1381 unsigned smtp_peer_options = 0;
1382 unsigned smtp_peer_options_wrap= 0;
1383 #ifdef SUPPORT_I18N
1384 uschar *smtputf8_advertise_hosts = US"*"; /* overridden under test-harness */
1385 #endif
1386
1387 #ifdef WITH_CONTENT_SCAN
1388 uschar *spamd_address = US"127.0.0.1 783";
1389 uschar *spam_bar = NULL;
1390 uschar *spam_report = NULL;
1391 uschar *spam_action = NULL;
1392 uschar *spam_score = NULL;
1393 uschar *spam_score_int = NULL;
1394 #endif
1395 #ifdef SUPPORT_SPF
1396 uschar *spf_guess = US"v=spf1 a/24 mx/24 ptr ?all";
1397 uschar *spf_header_comment = NULL;
1398 uschar *spf_received = NULL;
1399 uschar *spf_result = NULL;
1400 BOOL spf_result_guessed = FALSE;
1401 uschar *spf_smtp_comment = NULL;
1402 #endif
1403
1404 BOOL split_spool_directory = FALSE;
1405 FILE *spool_data_file = NULL;
1406 uschar *spool_directory = US SPOOL_DIRECTORY
1407 "\0<--------------Space to patch spool_directory->";
1408 BOOL spool_file_wireformat = FALSE;
1409 BOOL spool_wireformat = FALSE;
1410 #ifdef EXPERIMENTAL_SRS
1411 uschar *srs_config = NULL;
1412 uschar *srs_db_address = NULL;
1413 uschar *srs_db_key = NULL;
1414 int srs_hashlength = 6;
1415 int srs_hashmin = -1;
1416 int srs_maxage = 31;
1417 uschar *srs_orig_recipient = NULL;
1418 uschar *srs_orig_sender = NULL;
1419 uschar *srs_recipient = NULL;
1420 uschar *srs_secrets = NULL;
1421 uschar *srs_status = NULL;
1422 BOOL srs_usehash = TRUE;
1423 BOOL srs_usetimestamp = TRUE;
1424 #endif
1425 BOOL strict_acl_vars = FALSE;
1426 int string_datestamp_offset= -1;
1427 int string_datestamp_length= 0;
1428 int string_datestamp_type = -1;
1429 BOOL strip_excess_angle_brackets = FALSE;
1430 BOOL strip_trailing_dot = FALSE;
1431 uschar *submission_domain = NULL;
1432 BOOL submission_mode = FALSE;
1433 uschar *submission_name = NULL;
1434 BOOL suppress_local_fixups = FALSE;
1435 BOOL suppress_local_fixups_default = FALSE;
1436 BOOL synchronous_delivery = FALSE;
1437 BOOL syslog_duplication = TRUE;
1438 int syslog_facility = LOG_MAIL;
1439 BOOL syslog_pid = TRUE;
1440 uschar *syslog_processname = US"exim";
1441 BOOL syslog_timestamp = TRUE;
1442 uschar *system_filter = NULL;
1443
1444 uschar *system_filter_directory_transport = NULL;
1445 uschar *system_filter_file_transport = NULL;
1446 uschar *system_filter_pipe_transport = NULL;
1447 uschar *system_filter_reply_transport = NULL;
1448
1449 gid_t system_filter_gid = 0;
1450 BOOL system_filter_gid_set = FALSE;
1451 uid_t system_filter_uid = (uid_t)-1;
1452 BOOL system_filter_uid_set = FALSE;
1453 BOOL system_filtering = FALSE;
1454
1455 BOOL tcp_fastopen_ok = FALSE;
1456 blob tcp_fastopen_nodata = { .data = NULL, .len = 0 };
1457 BOOL tcp_in_fastopen = FALSE;
1458 BOOL tcp_in_fastopen_logged = FALSE;
1459 BOOL tcp_nodelay = TRUE;
1460 int tcp_out_fastopen = 0;
1461 BOOL tcp_out_fastopen_logged= FALSE;
1462 #ifdef USE_TCP_WRAPPERS
1463 uschar *tcp_wrappers_daemon_name = US TCP_WRAPPERS_DAEMON_NAME;
1464 #endif
1465 int test_harness_load_avg = 0;
1466 int thismessage_size_limit = 0;
1467 int timeout_frozen_after = 0;
1468 BOOL timestamps_utc = FALSE;
1469
1470 transport_instance *transports = NULL;
1471
1472 transport_instance transport_defaults = {
1473 .next = NULL,
1474 .name = NULL,
1475 .info = NULL,
1476 .options_block = NULL,
1477 .driver_name = NULL,
1478 .setup = NULL,
1479 .batch_max = 1,
1480 .batch_id = NULL,
1481 .home_dir = NULL,
1482 .current_dir = NULL,
1483 .expand_multi_domain = NULL,
1484 .multi_domain = TRUE,
1485 .overrides_hosts = FALSE,
1486 .max_addresses = 100,
1487 .connection_max_messages = 500,
1488 .deliver_as_creator = FALSE,
1489 .disable_logging = FALSE,
1490 .initgroups = FALSE,
1491 .uid_set = FALSE,
1492 .gid_set = FALSE,
1493 .uid = (uid_t)(-1),
1494 .gid = (gid_t)(-1),
1495 .expand_uid = NULL,
1496 .expand_gid = NULL,
1497 .warn_message = NULL,
1498 .shadow = NULL,
1499 .shadow_condition = NULL,
1500 .filter_command = NULL,
1501 .add_headers = NULL,
1502 .remove_headers = NULL,
1503 .return_path = NULL,
1504 .debug_string = NULL,
1505 .max_parallel = NULL,
1506 .message_size_limit = NULL,
1507 .headers_rewrite = NULL,
1508 .rewrite_rules = NULL,
1509 .rewrite_existflags = 0,
1510 .filter_timeout = 300,
1511 .body_only = FALSE,
1512 .delivery_date_add = FALSE,
1513 .envelope_to_add = FALSE,
1514 .headers_only = FALSE,
1515 .rcpt_include_affixes = FALSE,
1516 .return_path_add = FALSE,
1517 .return_output = FALSE,
1518 .return_fail_output = FALSE,
1519 .log_output = FALSE,
1520 .log_fail_output = FALSE,
1521 .log_defer_output = FALSE,
1522 .retry_use_local_part = TRUE_UNSET, /* retry_use_local_part: BOOL, but set neither
1523 1 nor 0 so can detect unset */
1524 #ifndef DISABLE_EVENT
1525 .event_action = NULL
1526 #endif
1527 };
1528
1529 int transport_count;
1530 uschar *transport_name = NULL;
1531 int transport_newlines;
1532 const uschar **transport_filter_argv = NULL;
1533 int transport_filter_timeout;
1534 BOOL transport_filter_timed_out = FALSE;
1535 int transport_write_timeout= 0;
1536
1537 tree_node *tree_dns_fails = NULL;
1538 tree_node *tree_duplicates = NULL;
1539 tree_node *tree_nonrecipients = NULL;
1540 tree_node *tree_unusable = NULL;
1541
1542 BOOL trusted_caller = FALSE;
1543 BOOL trusted_config = TRUE;
1544 gid_t *trusted_groups = NULL;
1545 uid_t *trusted_users = NULL;
1546 uschar *timezone_string = US TIMEZONE_DEFAULT;
1547
1548 uschar *unknown_login = NULL;
1549 uschar *unknown_username = NULL;
1550 uschar *untrusted_set_sender = NULL;
1551
1552 /* A regex for matching a "From_" line in an incoming message, in the form
1553
1554 From ph10 Fri Jan 5 12:35 GMT 1996
1555
1556 which the "mail" commands send to the MTA (undocumented, of course), or in
1557 the form
1558
1559 From ph10 Fri, 7 Jan 97 14:00:00 GMT
1560
1561 which is apparently used by some UUCPs, despite it not being in RFC 976.
1562 Because of variations in time formats, just match up to the minutes. That
1563 should be sufficient. Examples have been seen of time fields like 12:1:03,
1564 so just require one digit for hours and minutes. The weekday is also absent
1565 in some forms. */
1566
1567 uschar *uucp_from_pattern = US
1568 "^From\\s+(\\S+)\\s+(?:[a-zA-Z]{3},?\\s+)?" /* Common start */
1569 "(?:" /* Non-extracting bracket */
1570 "[a-zA-Z]{3}\\s+\\d?\\d|" /* First form */
1571 "\\d?\\d\\s+[a-zA-Z]{3}\\s+\\d\\d(?:\\d\\d)?" /* Second form */
1572 ")" /* End alternation */
1573 "\\s+\\d\\d?:\\d\\d?"; /* Start of time */
1574
1575 uschar *uucp_from_sender = US"$1";
1576
1577 uschar *verify_mode = NULL;
1578 uschar *version_copyright =
1579 US"Copyright (c) University of Cambridge, 1995 - 2018\n"
1580 "(c) The Exim Maintainers and contributors in ACKNOWLEDGMENTS file, 2007 - 2018";
1581 uschar *version_date = US"?";
1582 uschar *version_cnumber = US"????";
1583 uschar *version_string = US"?";
1584
1585 uschar *warn_message_file = NULL;
1586 int warning_count = 0;
1587 uschar *warnmsg_delay = NULL;
1588 uschar *warnmsg_recipients = NULL;
1589 BOOL write_rejectlog = TRUE;
1590
1591
1592 /* End of globals.c */