2 * Copyright (C) 2004, 2005, 2007-2009, 2011, 2012 Internet Systems Consortium, Inc. ("ISC")
3 * Copyright (C) 2000-2003 Internet Software Consortium.
5 * Permission to use, copy, modify, and/or distribute this software for any
6 * purpose with or without fee is hereby granted, provided that the above
7 * copyright notice and this permission notice appear in all copies.
9 * THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES WITH
10 * REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
11 * AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR ANY SPECIAL, DIRECT,
12 * INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
13 * LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE
14 * OR OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
15 * PERFORMANCE OF THIS SOFTWARE.
26 #include <isc/buffer.h>
29 #include <isc/string.h>
35 #include <dns/rdataclass.h>
36 #include <dns/rdatalist.h>
37 #include <dns/rdataset.h>
38 #include <dns/rdatastruct.h>
39 #include <dns/rdatatype.h>
40 #include <dns/result.h>
44 if (result != ISC_R_SUCCESS) goto failure; \
47 #define DIFF_COMMON_LOGARGS \
48 dns_lctx, DNS_LOGCATEGORY_GENERAL, DNS_LOGMODULE_DIFF
50 static dns_rdatatype_t
51 rdata_covers(dns_rdata_t *rdata) {
52 return (rdata->type == dns_rdatatype_rrsig ?
53 dns_rdata_covers(rdata) : 0);
57 dns_difftuple_create(isc_mem_t *mctx,
58 dns_diffop_t op, dns_name_t *name, dns_ttl_t ttl,
59 dns_rdata_t *rdata, dns_difftuple_t **tp)
65 REQUIRE(tp != NULL && *tp == NULL);
68 * Create a new tuple. The variable-size wire-format name data and
69 * rdata immediately follow the dns_difftuple_t structure
72 size = sizeof(*t) + name->length + rdata->length;
73 t = isc_mem_allocate(mctx, size);
75 return (ISC_R_NOMEMORY);
79 datap = (unsigned char *)(t + 1);
81 memcpy(datap, name->ndata, name->length);
82 dns_name_init(&t->name, NULL);
83 dns_name_clone(name, &t->name);
84 t->name.ndata = datap;
85 datap += name->length;
89 memcpy(datap, rdata->data, rdata->length);
90 dns_rdata_init(&t->rdata);
91 dns_rdata_clone(rdata, &t->rdata);
92 t->rdata.data = datap;
93 datap += rdata->length;
95 ISC_LINK_INIT(&t->rdata, link);
96 ISC_LINK_INIT(t, link);
97 t->magic = DNS_DIFFTUPLE_MAGIC;
99 INSIST(datap == (unsigned char *)t + size);
102 return (ISC_R_SUCCESS);
106 dns_difftuple_free(dns_difftuple_t **tp) {
107 dns_difftuple_t *t = *tp;
108 REQUIRE(DNS_DIFFTUPLE_VALID(t));
109 dns_name_invalidate(&t->name);
111 isc_mem_free(t->mctx, t);
116 dns_difftuple_copy(dns_difftuple_t *orig, dns_difftuple_t **copyp) {
117 return (dns_difftuple_create(orig->mctx, orig->op, &orig->name,
118 orig->ttl, &orig->rdata, copyp));
122 dns_diff_init(isc_mem_t *mctx, dns_diff_t *diff) {
125 ISC_LIST_INIT(diff->tuples);
126 diff->magic = DNS_DIFF_MAGIC;
130 dns_diff_clear(dns_diff_t *diff) {
132 REQUIRE(DNS_DIFF_VALID(diff));
133 while ((t = ISC_LIST_HEAD(diff->tuples)) != NULL) {
134 ISC_LIST_UNLINK(diff->tuples, t, link);
135 dns_difftuple_free(&t);
137 ENSURE(ISC_LIST_EMPTY(diff->tuples));
141 dns_diff_append(dns_diff_t *diff, dns_difftuple_t **tuplep)
143 ISC_LIST_APPEND(diff->tuples, *tuplep, link);
147 /* XXX this is O(N) */
150 dns_diff_appendminimal(dns_diff_t *diff, dns_difftuple_t **tuplep)
152 dns_difftuple_t *ot, *next_ot;
154 REQUIRE(DNS_DIFF_VALID(diff));
155 REQUIRE(DNS_DIFFTUPLE_VALID(*tuplep));
158 * Look for an existing tuple with the same owner name,
159 * rdata, and TTL. If we are doing an addition and find a
160 * deletion or vice versa, remove both the old and the
161 * new tuple since they cancel each other out (assuming
162 * that we never delete nonexistent data or add existing
165 * If we find an old update of the same kind as
166 * the one we are doing, there must be a programming
167 * error. We report it but try to continue anyway.
169 for (ot = ISC_LIST_HEAD(diff->tuples); ot != NULL;
172 next_ot = ISC_LIST_NEXT(ot, link);
173 if (dns_name_equal(&ot->name, &(*tuplep)->name) &&
174 dns_rdata_compare(&ot->rdata, &(*tuplep)->rdata) == 0 &&
175 ot->ttl == (*tuplep)->ttl)
177 ISC_LIST_UNLINK(diff->tuples, ot, link);
178 if ((*tuplep)->op == ot->op) {
179 UNEXPECTED_ERROR(__FILE__, __LINE__,
180 "unexpected non-minimal diff");
182 dns_difftuple_free(tuplep);
184 dns_difftuple_free(&ot);
189 if (*tuplep != NULL) {
190 ISC_LIST_APPEND(diff->tuples, *tuplep, link);
194 ENSURE(*tuplep == NULL);
198 setresign(dns_rdataset_t *modified, isc_uint32_t delta) {
199 dns_rdata_t rdata = DNS_RDATA_INIT;
200 dns_rdata_rrsig_t sig;
204 result = dns_rdataset_first(modified);
205 INSIST(result == ISC_R_SUCCESS);
206 dns_rdataset_current(modified, &rdata);
207 (void)dns_rdata_tostruct(&rdata, &sig, NULL);
208 if ((rdata.flags & DNS_RDATA_OFFLINE) != 0)
211 when = sig.timeexpire - delta;
212 dns_rdata_reset(&rdata);
214 result = dns_rdataset_next(modified);
215 while (result == ISC_R_SUCCESS) {
216 dns_rdataset_current(modified, &rdata);
217 (void)dns_rdata_tostruct(&rdata, &sig, NULL);
218 if ((rdata.flags & DNS_RDATA_OFFLINE) != 0) {
221 if (when == 0 || sig.timeexpire - delta < when)
222 when = sig.timeexpire - delta;
224 dns_rdata_reset(&rdata);
225 result = dns_rdataset_next(modified);
227 INSIST(result == ISC_R_NOMORE);
232 diff_apply(dns_diff_t *diff, dns_db_t *db, dns_dbversion_t *ver,
236 dns_dbnode_t *node = NULL;
238 char namebuf[DNS_NAME_FORMATSIZE];
239 char typebuf[DNS_RDATATYPE_FORMATSIZE];
240 char classbuf[DNS_RDATACLASS_FORMATSIZE];
242 REQUIRE(DNS_DIFF_VALID(diff));
243 REQUIRE(DNS_DB_VALID(db));
245 t = ISC_LIST_HEAD(diff->tuples);
249 INSIST(node == NULL);
253 * We create the node if it does not exist.
254 * This will cause an empty node to be created if the diff
255 * contains a deletion of an RR at a nonexistent name,
256 * but such diffs should never be created in the first
260 while (t != NULL && dns_name_equal(&t->name, name)) {
261 dns_rdatatype_t type, covers;
265 dns_rdataset_t ardataset;
266 dns_rdataset_t *modified = NULL;
269 type = t->rdata.type;
270 covers = rdata_covers(&t->rdata);
273 * Collect a contiguous set of updates with
274 * the same operation (add/delete) and RR type
275 * into a single rdatalist so that the
276 * database rrset merging/subtraction code
277 * can work more efficiently than if each
278 * RR were merged into / subtracted from
279 * the database separately.
281 * This is done by linking rdata structures from the
282 * diff into "rdatalist". This uses the rdata link
283 * field, not the diff link field, so the structure
284 * of the diff itself is not affected.
289 rdl.rdclass = t->rdata.rdclass;
291 ISC_LIST_INIT(rdl.rdata);
292 ISC_LINK_INIT(&rdl, link);
295 if (type != dns_rdatatype_nsec3 &&
296 covers != dns_rdatatype_nsec3)
297 CHECK(dns_db_findnode(db, name, ISC_TRUE,
300 CHECK(dns_db_findnsec3node(db, name, ISC_TRUE,
304 dns_name_equal(&t->name, name) &&
306 t->rdata.type == type &&
307 rdata_covers(&t->rdata) == covers)
309 dns_name_format(name, namebuf, sizeof(namebuf));
310 dns_rdatatype_format(t->rdata.type, typebuf,
312 dns_rdataclass_format(t->rdata.rdclass,
315 if (t->ttl != rdl.ttl && warn)
316 isc_log_write(DIFF_COMMON_LOGARGS,
318 "'%s/%s/%s': TTL differs in "
319 "rdataset, adjusting "
321 namebuf, typebuf, classbuf,
322 (unsigned long) t->ttl,
323 (unsigned long) rdl.ttl);
324 ISC_LIST_APPEND(rdl.rdata, &t->rdata, link);
325 t = ISC_LIST_NEXT(t, link);
329 * Convert the rdatalist into a rdataset.
331 dns_rdataset_init(&rds);
332 CHECK(dns_rdatalist_tordataset(&rdl, &rds));
333 if (rds.type == dns_rdatatype_rrsig)
335 case DNS_DIFFOP_ADDRESIGN:
336 case DNS_DIFFOP_DELRESIGN:
337 modified = &ardataset;
338 dns_rdataset_init(modified);
343 rds.trust = dns_trust_ultimate;
346 * Merge the rdataset into the database.
350 case DNS_DIFFOP_ADDRESIGN:
351 result = dns_db_addrdataset(db, node, ver,
359 case DNS_DIFFOP_DELRESIGN:
360 result = dns_db_subtractrdataset(db, node, ver,
369 if (result == ISC_R_SUCCESS) {
370 if (modified != NULL) {
371 isc_stdtime_t resign;
372 resign = setresign(modified,
374 dns_db_setsigningtime(db, modified,
376 if (diff->resign == 0 &&
377 (op == DNS_DIFFOP_ADDRESIGN ||
378 op == DNS_DIFFOP_DELRESIGN))
386 } else if (result == DNS_R_UNCHANGED) {
388 * This will not happen when executing a
389 * dynamic update, because that code will
390 * generate strictly minimal diffs.
391 * It may happen when receiving an IXFR
392 * from a server that is not as careful.
393 * Issue a warning and continue.
396 char classbuf[DNS_RDATATYPE_FORMATSIZE];
397 char namebuf[DNS_NAME_FORMATSIZE];
399 dns_name_format(dns_db_origin(db),
402 dns_rdataclass_format(dns_db_class(db),
405 isc_log_write(DIFF_COMMON_LOGARGS,
407 "%s/%s: dns_diff_apply: "
408 "update with no effect",
411 } else if (result == DNS_R_NXRRSET) {
416 if (modified != NULL &&
417 dns_rdataset_isassociated(modified))
418 dns_rdataset_disassociate(modified);
421 dns_db_detachnode(db, &node);
422 if (modified != NULL &&
423 dns_rdataset_isassociated(modified))
424 dns_rdataset_disassociate(modified);
427 return (ISC_R_SUCCESS);
431 dns_db_detachnode(db, &node);
436 dns_diff_apply(dns_diff_t *diff, dns_db_t *db, dns_dbversion_t *ver) {
437 return (diff_apply(diff, db, ver, ISC_TRUE));
441 dns_diff_applysilently(dns_diff_t *diff, dns_db_t *db, dns_dbversion_t *ver) {
442 return (diff_apply(diff, db, ver, ISC_FALSE));
445 /* XXX this duplicates lots of code in diff_apply(). */
448 dns_diff_load(dns_diff_t *diff, dns_addrdatasetfunc_t addfunc,
454 REQUIRE(DNS_DIFF_VALID(diff));
456 t = ISC_LIST_HEAD(diff->tuples);
461 while (t != NULL && dns_name_equal(&t->name, name)) {
462 dns_rdatatype_t type, covers;
468 type = t->rdata.type;
469 covers = rdata_covers(&t->rdata);
473 rdl.rdclass = t->rdata.rdclass;
475 ISC_LIST_INIT(rdl.rdata);
476 ISC_LINK_INIT(&rdl, link);
478 while (t != NULL && dns_name_equal(&t->name, name) &&
479 t->op == op && t->rdata.type == type &&
480 rdata_covers(&t->rdata) == covers)
482 ISC_LIST_APPEND(rdl.rdata, &t->rdata, link);
483 t = ISC_LIST_NEXT(t, link);
487 * Convert the rdatalist into a rdataset.
489 dns_rdataset_init(&rds);
490 CHECK(dns_rdatalist_tordataset(&rdl, &rds));
491 rds.trust = dns_trust_ultimate;
493 INSIST(op == DNS_DIFFOP_ADD);
494 result = (*addfunc)(add_private, name, &rds);
495 if (result == DNS_R_UNCHANGED) {
496 isc_log_write(DIFF_COMMON_LOGARGS,
499 "update with no effect");
500 } else if (result == ISC_R_SUCCESS ||
501 result == DNS_R_NXRRSET) {
510 result = ISC_R_SUCCESS;
516 * XXX uses qsort(); a merge sort would be more natural for lists,
517 * and perhaps safer wrt thread stack overflow.
520 dns_diff_sort(dns_diff_t *diff, dns_diff_compare_func *compare) {
521 unsigned int length = 0;
525 REQUIRE(DNS_DIFF_VALID(diff));
527 for (p = ISC_LIST_HEAD(diff->tuples);
529 p = ISC_LIST_NEXT(p, link))
532 return (ISC_R_SUCCESS);
533 v = isc_mem_get(diff->mctx, length * sizeof(dns_difftuple_t *));
535 return (ISC_R_NOMEMORY);
536 for (i = 0; i < length; i++) {
537 p = ISC_LIST_HEAD(diff->tuples);
539 ISC_LIST_UNLINK(diff->tuples, p, link);
541 INSIST(ISC_LIST_HEAD(diff->tuples) == NULL);
542 qsort(v, length, sizeof(v[0]), compare);
543 for (i = 0; i < length; i++) {
544 ISC_LIST_APPEND(diff->tuples, v[i], link);
546 isc_mem_put(diff->mctx, v, length * sizeof(dns_difftuple_t *));
547 return (ISC_R_SUCCESS);
552 * Create an rdataset containing the single RR of the given
553 * tuple. The caller must allocate the rdata, rdataset and
554 * an rdatalist structure for it to refer to.
558 diff_tuple_tordataset(dns_difftuple_t *t, dns_rdata_t *rdata,
559 dns_rdatalist_t *rdl, dns_rdataset_t *rds)
561 REQUIRE(DNS_DIFFTUPLE_VALID(t));
562 REQUIRE(rdl != NULL);
563 REQUIRE(rds != NULL);
565 rdl->type = t->rdata.type;
566 rdl->rdclass = t->rdata.rdclass;
568 ISC_LIST_INIT(rdl->rdata);
569 ISC_LINK_INIT(rdl, link);
570 dns_rdataset_init(rds);
571 ISC_LINK_INIT(rdata, link);
572 dns_rdata_clone(&t->rdata, rdata);
573 ISC_LIST_APPEND(rdl->rdata, rdata, link);
574 return (dns_rdatalist_tordataset(rdl, rds));
578 dns_diff_print(dns_diff_t *diff, FILE *file) {
582 unsigned int size = 2048;
583 const char *op = NULL;
585 REQUIRE(DNS_DIFF_VALID(diff));
587 mem = isc_mem_get(diff->mctx, size);
589 return (ISC_R_NOMEMORY);
591 for (t = ISC_LIST_HEAD(diff->tuples); t != NULL;
592 t = ISC_LIST_NEXT(t, link))
599 dns_rdata_t rd = DNS_RDATA_INIT;
601 result = diff_tuple_tordataset(t, &rd, &rdl, &rds);
602 if (result != ISC_R_SUCCESS) {
603 UNEXPECTED_ERROR(__FILE__, __LINE__,
604 "diff_tuple_tordataset failed: %s",
605 dns_result_totext(result));
606 result = ISC_R_UNEXPECTED;
610 isc_buffer_init(&buf, mem, size);
611 result = dns_rdataset_totext(&rds, &t->name,
612 ISC_FALSE, ISC_FALSE, &buf);
614 if (result == ISC_R_NOSPACE) {
615 isc_mem_put(diff->mctx, mem, size);
617 mem = isc_mem_get(diff->mctx, size);
619 result = ISC_R_NOMEMORY;
625 if (result != ISC_R_SUCCESS)
628 * Get rid of final newline.
630 INSIST(buf.used >= 1 &&
631 ((char *) buf.base)[buf.used-1] == '\n');
634 isc_buffer_usedregion(&buf, &r);
636 case DNS_DIFFOP_EXISTS: op = "exists"; break;
637 case DNS_DIFFOP_ADD: op = "add"; break;
638 case DNS_DIFFOP_DEL: op = "del"; break;
639 case DNS_DIFFOP_ADDRESIGN: op = "add re-sign"; break;
640 case DNS_DIFFOP_DELRESIGN: op = "del re-sign"; break;
643 fprintf(file, "%s %.*s\n", op, (int) r.length,
646 isc_log_write(DIFF_COMMON_LOGARGS, ISC_LOG_DEBUG(7),
647 "%s %.*s", op, (int) r.length,
650 result = ISC_R_SUCCESS;
653 isc_mem_put(diff->mctx, mem, size);