2 Copyright (C) Andrew Tridgell 1995-1999
4 This software may be distributed either under the terms of the
5 BSD-style license that accompanies tcpdump or the GNU GPL version 2
13 static const char rcsid
[] =
14 "@(#) $Header: /tcpdump/master/tcpdump/smbutil.c,v 1.11 2000-09-28 06:43:09 guy Exp $";
17 #include <sys/param.h>
19 #include <sys/types.h>
20 #include <sys/socket.h>
23 #include <netinet/in.h>
31 #include "interface.h"
34 extern uchar
*startbuf
;
36 /*******************************************************************
37 interpret a 32 bit dos packed date/time to some parameters
38 ********************************************************************/
39 static void interpret_dos_date(uint32 date
,int *year
,int *month
,int *day
,int *hour
,int *minute
,int *second
)
43 p0
=date
&0xFF; p1
=((date
&0xFF00)>>8)&0xFF;
44 p2
=((date
&0xFF0000)>>16)&0xFF; p3
=((date
&0xFF000000)>>24)&0xFF;
46 *second
= 2*(p0
& 0x1F);
47 *minute
= ((p0
>>5)&0xFF) + ((p1
&0x7)<<3);
50 *month
= ((p2
>>5)&0xFF) + ((p3
&0x1)<<3) - 1;
51 *year
= ((p3
>>1)&0xFF) + 80;
54 /*******************************************************************
55 create a unix date from a dos date
56 ********************************************************************/
57 static time_t make_unix_date(const void *date_ptr
)
62 dos_date
= IVAL(date_ptr
,0);
64 if (dos_date
== 0) return(0);
66 interpret_dos_date(dos_date
,&t
.tm_year
,&t
.tm_mon
,
67 &t
.tm_mday
,&t
.tm_hour
,&t
.tm_min
,&t
.tm_sec
);
75 /*******************************************************************
76 create a unix date from a dos date
77 ********************************************************************/
78 static time_t make_unix_date2(const void *date_ptr
)
83 x2
= ((x
&0xFFFF)<<16) | ((x
&0xFFFF0000)>>16);
86 return(make_unix_date((void *)&x
));
89 /****************************************************************************
90 interpret an 8 byte "filetime" structure to a time_t
91 It's originally in "100ns units since jan 1st 1601"
92 ****************************************************************************/
93 static time_t interpret_long_date(const char *p
)
98 /* this gives us seconds since jan 1st 1601 (approx) */
99 d
= (IVAL(p
,4)*256.0 + CVAL(p
,3)) * (1.0e-7 * (1<<24));
101 /* now adjust by 369 years to make the secs since 1970 */
102 d
-= 369.0*365.25*24*60*60;
104 /* and a fudge factor as we got it wrong by a few days */
105 d
+= (3*24*60*60 + 6*60*60 + 2);
116 /****************************************************************************
117 interpret the weird netbios "name". Return the name type
118 ****************************************************************************/
119 static int name_interpret(char *in
,char *out
)
122 int len
= (*in
++) / 2;
126 if (len
> 30 || len
<1) return(0);
130 if (in
[0] < 'A' || in
[0] > 'P' || in
[1] < 'A' || in
[1] > 'P') {
134 *out
= ((in
[0]-'A')<<4) + (in
[1]-'A');
144 /****************************************************************************
145 find a pointer to a netbios name
146 ****************************************************************************/
147 static char *name_ptr(char *buf
,int ofs
)
149 unsigned char c
= *(unsigned char *)(buf
+ofs
);
151 if ((c
& 0xC0) == 0xC0)
153 uint16 l
= RSVAL(buf
, ofs
) & 0x3FFF;
160 /****************************************************************************
161 extract a netbios name from a buf
162 ****************************************************************************/
163 static int name_extract(char *buf
,int ofs
,char *name
)
165 char *p
= name_ptr(buf
,ofs
);
167 return(name_interpret(p
,name
));
171 /****************************************************************************
172 return the total storage length of a mangled name
173 ****************************************************************************/
174 static int name_len(const unsigned char *s
)
177 unsigned char c
= *(unsigned char *)s
;
178 if ((c
& 0xC0) == 0xC0)
180 while (*s
) s
+= (*s
)+1;
181 return(PTR_DIFF(s
,s0
)+1);
184 static void print_asc(const unsigned char *buf
,int len
)
188 printf("%c",isprint(buf
[i
])?buf
[i
]:'.');
191 static char *name_type_str(int name_type
)
193 static char *f
= NULL
;
195 case 0: f
= "Workstation"; break;
196 case 0x03: f
= "Client?"; break;
197 case 0x20: f
= "Server"; break;
198 case 0x1d: f
= "Master Browser"; break;
199 case 0x1b: f
= "Domain Controller"; break;
200 case 0x1e: f
= "Browser Server"; break;
201 default: f
= "Unknown"; break;
206 void print_data(const unsigned char *buf
, int len
)
212 printf("%02X ",(int)buf
[i
]);
214 if (i
%8 == 0) printf(" ");
216 print_asc(&buf
[i
-16],8); printf(" ");
217 print_asc(&buf
[i
-8],8); printf("\n");
218 if (i
<len
) printf("[%03X] ",i
);
226 if (n
>8) printf(" ");
227 while (n
--) printf(" ");
230 print_asc(&buf
[i
-(i
%16)],n
); printf(" ");
232 if (n
>0) print_asc(&buf
[i
-n
],n
);
238 static void write_bits(unsigned int val
,char *fmt
)
243 while ((p
=strchr(fmt
,'|'))) {
244 int l
= PTR_DIFF(p
,fmt
);
245 if (l
&& (val
& (1<<i
)))
246 printf("%.*s ",l
,fmt
);
252 /* convert a unicode string */
253 static const char *unistr(const char *s
, int *len
)
255 static char buf
[1000];
257 static int use_unicode
= -1;
259 if (use_unicode
== -1) {
260 char *p
= getenv("USE_UNICODE");
261 if (p
&& (atoi(p
) == 1))
267 /* maybe it isn't unicode - a cheap trick */
268 if (!use_unicode
|| (s
[0] && s
[1])) {
275 if (s
[0] == 0 && s
[1] != 0) {
280 while (l
< (sizeof(buf
)-1) && s
[0] && s
[1] == 0) {
290 static const uchar
*fdata1(const uchar
*buf
, const char *fmt
, const uchar
*maxbuf
)
293 char *attrib_fmt
= "READONLY|HIDDEN|SYSTEM|VOLUME|DIR|ARCHIVE|";
296 while (*fmt
&& buf
<maxbuf
) {
299 write_bits(CVAL(buf
,0),attrib_fmt
);
304 write_bits(SVAL(buf
,0),attrib_fmt
);
311 char *p
= strchr(++fmt
,'}');
312 int l
= PTR_DIFF(p
,fmt
);
313 strncpy(bitfmt
,fmt
,l
);
316 write_bits(CVAL(buf
,0),bitfmt
);
326 while (isdigit(*fmt
)) fmt
++;
335 unsigned int x
= reverse
?RIVAL(buf
,0):IVAL(buf
,0);
336 printf("%d (0x%x)",x
, x
);
343 unsigned int x1
= reverse
?RIVAL(buf
,0):IVAL(buf
,0);
344 unsigned int x2
= reverse
?RIVAL(buf
,4):IVAL(buf
,4);
346 printf("0x%08x:%08x",x2
, x1
);
348 printf("%d (0x%08x%08x)",x1
, x2
, x1
);
356 unsigned int x
= reverse
?RSVAL(buf
,0):SVAL(buf
,0);
357 printf("%d (0x%x)",x
, x
);
364 unsigned int x
= reverse
?RIVAL(buf
,0):IVAL(buf
,0);
372 unsigned int x
= reverse
?RSVAL(buf
,0):SVAL(buf
,0);
380 unsigned int x
= CVAL(buf
,0);
388 unsigned int x
= CVAL(buf
,0);
389 printf("%d (0x%x)",x
, x
);
396 printf("%.*s",(int)PTR_DIFF(maxbuf
,buf
),unistr(buf
, &len
));
403 if (*buf
!= 4 && *buf
!= 2)
404 printf("Error! ASCIIZ buffer of type %d (safety=%d)\n",
405 *buf
,(int)PTR_DIFF(maxbuf
,buf
));
406 printf("%.*s",(int)PTR_DIFF(maxbuf
,buf
+1),unistr(buf
+1, &len
));
414 printf("%-*.*s",l
,l
,buf
);
416 fmt
++; while (isdigit(*fmt
)) fmt
++;
422 while (l
--) printf("%02x",*buf
++);
423 fmt
++; while (isdigit(*fmt
)) fmt
++;
433 name_type
= name_extract(startbuf
,PTR_DIFF(buf
,startbuf
),nbuf
);
434 buf
+= name_len(buf
);
435 printf("%-15.15s NameType=0x%02X (%s)",
436 nbuf
,name_type
,name_type_str(name_type
));
440 printf("%-15.15s NameType=0x%02X (%s)",
441 buf
,name_type
,name_type_str(name_type
));
445 fmt
++; while (isdigit(*fmt
)) fmt
++;
452 switch (atoi(fmt
+1)) {
454 if (x
==0 || x
==-1 || x
==0xFFFFFFFF)
457 t
= make_unix_date(buf
);
461 if (x
==0 || x
==-1 || x
==0xFFFFFFFF)
464 t
= make_unix_date2(buf
);
468 t
= interpret_long_date(buf
);
472 printf("%s",t
?asctime(localtime(&t
)):"NULL\n");
473 fmt
++; while (isdigit(*fmt
)) fmt
++;
483 if (buf
>=maxbuf
&& *fmt
)
484 printf("END OF BUFFER\n");
489 const uchar
*fdata(const uchar
*buf
, const char *fmt
, const uchar
*maxbuf
)
499 while (buf
< maxbuf
) {
502 buf2
= fdata(buf
,fmt
,maxbuf
);
504 if (buf2
== buf
) return(buf
);
511 if (buf
>=maxbuf
) return(buf
);
526 if (buf
>=maxbuf
) return(buf
);
527 memset(s
, 0, sizeof(s
));
529 strncpy(s
,fmt
,p
-fmt
);
531 buf
= fdata1(buf
,s
,maxbuf
);
535 putchar(*fmt
); fmt
++;
540 if (!depth
&& buf
<maxbuf
) {
541 int len
= PTR_DIFF(maxbuf
,buf
);
542 printf("Data: (%d bytes)\n",len
);
556 /* Dos Error Messages */
557 static err_code_struct dos_msgs
[] = {
558 {"ERRbadfunc",1,"Invalid function."},
559 {"ERRbadfile",2,"File not found."},
560 {"ERRbadpath",3,"Directory invalid."},
561 {"ERRnofids",4,"No file descriptors available"},
562 {"ERRnoaccess",5,"Access denied."},
563 {"ERRbadfid",6,"Invalid file handle."},
564 {"ERRbadmcb",7,"Memory control blocks destroyed."},
565 {"ERRnomem",8,"Insufficient server memory to perform the requested function."},
566 {"ERRbadmem",9,"Invalid memory block address."},
567 {"ERRbadenv",10,"Invalid environment."},
568 {"ERRbadformat",11,"Invalid format."},
569 {"ERRbadaccess",12,"Invalid open mode."},
570 {"ERRbaddata",13,"Invalid data."},
571 {"ERR",14,"reserved."},
572 {"ERRbaddrive",15,"Invalid drive specified."},
573 {"ERRremcd",16,"A Delete Directory request attempted to remove the server's current directory."},
574 {"ERRdiffdevice",17,"Not same device."},
575 {"ERRnofiles",18,"A File Search command can find no more files matching the specified criteria."},
576 {"ERRbadshare",32,"The sharing mode specified for an Open conflicts with existing FIDs on the file."},
577 {"ERRlock",33,"A Lock request conflicted with an existing lock or specified an invalid mode, or an Unlock requested attempted to remove a lock held by another process."},
578 {"ERRfilexists",80,"The file named in a Create Directory, Make New File or Link request already exists."},
579 {"ERRbadpipe",230,"Pipe invalid."},
580 {"ERRpipebusy",231,"All instances of the requested pipe are busy."},
581 {"ERRpipeclosing",232,"Pipe close in progress."},
582 {"ERRnotconnected",233,"No process on other end of pipe."},
583 {"ERRmoredata",234,"There is more data to be returned."},
586 /* Server Error Messages */
587 err_code_struct server_msgs
[] = {
588 {"ERRerror",1,"Non-specific error code."},
589 {"ERRbadpw",2,"Bad password - name/password pair in a Tree Connect or Session Setup are invalid."},
590 {"ERRbadtype",3,"reserved."},
591 {"ERRaccess",4,"The requester does not have the necessary access rights within the specified context for the requested function. The context is defined by the TID or the UID."},
592 {"ERRinvnid",5,"The tree ID (TID) specified in a command was invalid."},
593 {"ERRinvnetname",6,"Invalid network name in tree connect."},
594 {"ERRinvdevice",7,"Invalid device - printer request made to non-printer connection or non-printer request made to printer connection."},
595 {"ERRqfull",49,"Print queue full (files) -- returned by open print file."},
596 {"ERRqtoobig",50,"Print queue full -- no space."},
597 {"ERRqeof",51,"EOF on print queue dump."},
598 {"ERRinvpfid",52,"Invalid print file FID."},
599 {"ERRsmbcmd",64,"The server did not recognize the command received."},
600 {"ERRsrverror",65,"The server encountered an internal error, e.g., system file unavailable."},
601 {"ERRfilespecs",67,"The file handle (FID) and pathname parameters contained an invalid combination of values."},
602 {"ERRreserved",68,"reserved."},
603 {"ERRbadpermits",69,"The access permissions specified for a file or directory are not a valid combination. The server cannot set the requested attribute."},
604 {"ERRreserved",70,"reserved."},
605 {"ERRsetattrmode",71,"The attribute mode in the Set File Attribute request is invalid."},
606 {"ERRpaused",81,"Server is paused."},
607 {"ERRmsgoff",82,"Not receiving messages."},
608 {"ERRnoroom",83,"No room to buffer message."},
609 {"ERRrmuns",87,"Too many remote user names."},
610 {"ERRtimeout",88,"Operation timed out."},
611 {"ERRnoresource",89,"No resources currently available for request."},
612 {"ERRtoomanyuids",90,"Too many UIDs active on this session."},
613 {"ERRbaduid",91,"The UID is not known as a valid ID on this session."},
614 {"ERRusempx",250,"Temp unable to support Raw, use MPX mode."},
615 {"ERRusestd",251,"Temp unable to support Raw, use standard read/write."},
616 {"ERRcontmpx",252,"Continue in MPX mode."},
617 {"ERRreserved",253,"reserved."},
618 {"ERRreserved",254,"reserved."},
619 {"ERRnosupport",0xFFFF,"Function not supported."},
622 /* Hard Error Messages */
623 err_code_struct hard_msgs
[] = {
624 {"ERRnowrite",19,"Attempt to write on write-protected diskette."},
625 {"ERRbadunit",20,"Unknown unit."},
626 {"ERRnotready",21,"Drive not ready."},
627 {"ERRbadcmd",22,"Unknown command."},
628 {"ERRdata",23,"Data error (CRC)."},
629 {"ERRbadreq",24,"Bad request structure length."},
630 {"ERRseek",25 ,"Seek error."},
631 {"ERRbadmedia",26,"Unknown media type."},
632 {"ERRbadsector",27,"Sector not found."},
633 {"ERRnopaper",28,"Printer out of paper."},
634 {"ERRwrite",29,"Write fault."},
635 {"ERRread",30,"Read fault."},
636 {"ERRgeneral",31,"General failure."},
637 {"ERRbadshare",32,"A open conflicts with an existing open."},
638 {"ERRlock",33,"A Lock request conflicted with an existing lock or specified an invalid mode, or an Unlock requested attempted to remove a lock held by another process."},
639 {"ERRwrongdisk",34,"The wrong disk was found in a drive."},
640 {"ERRFCBUnavail",35,"No FCBs are available to process request."},
641 {"ERRsharebufexc",36,"A sharing buffer has been exceeded."},
649 err_code_struct
*err_msgs
;
652 {0x01,"ERRDOS",dos_msgs
},
653 {0x02,"ERRSRV",server_msgs
},
654 {0x03,"ERRHRD",hard_msgs
},
655 {0x04,"ERRXOS",NULL
},
656 {0xE1,"ERRRMX1",NULL
},
657 {0xE2,"ERRRMX2",NULL
},
658 {0xE3,"ERRRMX3",NULL
},
659 {0xFF,"ERRCMD",NULL
},
663 /****************************************************************************
664 return a SMB error string from a SMB buffer
665 ****************************************************************************/
666 char *smb_errstr(int class,int num
)
668 static char ret
[128];
673 for (i
=0;err_classes
[i
].class;i
++)
674 if (err_classes
[i
].code
== class)
676 if (err_classes
[i
].err_msgs
)
678 err_code_struct
*err
= err_classes
[i
].err_msgs
;
679 for (j
=0;err
[j
].name
;j
++)
680 if (num
== err
[j
].code
)
682 snprintf(ret
,sizeof(ret
),"%s - %s (%s)",err_classes
[i
].class,
683 err
[j
].name
,err
[j
].message
);
688 snprintf(ret
,sizeof(ret
),"%s - %d",err_classes
[i
].class,num
);
692 snprintf(ret
,sizeof(ret
),"ERROR: Unknown error (%d,%d)",class,num
);