Experimental_XCLIENT. Bug 2702
[exim.git] / src / src / globals.c
1 /*************************************************
2 *     Exim - an Internet mail transport agent    *
3 *************************************************/
4
5 /* Copyright (c) The Exim Maintainers 2020 - 2022 */
6 /* Copyright (c) University of Cambridge 1995 - 2018 */
7 /* See the file NOTICE for conditions of use and distribution. */
8 /* SPDX-License-Identifier: GPL-2.0-or-later */
9
10 /* All the global variables are defined together in this one module, so
11 that they are easy to find. */
12
13 #include "exim.h"
14
15
16 /* Generic options for auths, all of which live inside auth_instance
17 data blocks and hence have the opt_public flag set. */
18
19 optionlist optionlist_auths[] = {
20   { "client_condition", opt_stringptr | opt_public,
21                  OPT_OFF(auth_instance, client_condition) },
22   { "client_set_id", opt_stringptr | opt_public,
23                  OPT_OFF(auth_instance, set_client_id) },
24   { "driver",        opt_stringptr | opt_public,
25                  OPT_OFF(auth_instance, driver_name) },
26   { "public_name",   opt_stringptr | opt_public,
27                  OPT_OFF(auth_instance, public_name) },
28   { "server_advertise_condition", opt_stringptr | opt_public,
29                  OPT_OFF(auth_instance, advertise_condition)},
30   { "server_condition", opt_stringptr | opt_public,
31                  OPT_OFF(auth_instance, server_condition) },
32   { "server_debug_print", opt_stringptr | opt_public,
33                  OPT_OFF(auth_instance, server_debug_string) },
34   { "server_mail_auth_condition", opt_stringptr | opt_public,
35                  OPT_OFF(auth_instance, mail_auth_condition) },
36   { "server_set_id", opt_stringptr | opt_public,
37                  OPT_OFF(auth_instance, set_id) }
38 };
39
40 int     optionlist_auths_size = nelem(optionlist_auths);
41
42 /* An empty host aliases list. */
43
44 uschar *no_aliases             = NULL;
45
46
47 /* For comments on these variables, see globals.h. I'm too idle to
48 duplicate them here... */
49
50 #ifdef EXIM_PERL
51 uschar *opt_perl_startup       = NULL;
52 BOOL    opt_perl_at_start      = FALSE;
53 BOOL    opt_perl_started       = FALSE;
54 BOOL    opt_perl_taintmode     = FALSE;
55 #endif
56
57 #ifdef EXPAND_DLFUNC
58 tree_node *dlobj_anchor        = NULL;
59 #endif
60
61 #ifdef LOOKUP_IBASE
62 uschar *ibase_servers          = NULL;
63 #endif
64
65 #ifdef LOOKUP_LDAP
66 uschar *eldap_ca_cert_dir      = NULL;
67 uschar *eldap_ca_cert_file     = NULL;
68 uschar *eldap_cert_file        = NULL;
69 uschar *eldap_cert_key         = NULL;
70 uschar *eldap_cipher_suite     = NULL;
71 uschar *eldap_default_servers  = NULL;
72 uschar *eldap_require_cert     = NULL;
73 int     eldap_version          = -1;
74 BOOL    eldap_start_tls        = FALSE;
75 #endif
76
77 #ifdef LOOKUP_MYSQL
78 uschar *mysql_servers          = NULL;
79 #endif
80
81 #ifdef LOOKUP_ORACLE
82 uschar *oracle_servers         = NULL;
83 #endif
84
85 #ifdef LOOKUP_PGSQL
86 uschar *pgsql_servers          = NULL;
87 #endif
88
89 #ifdef LOOKUP_REDIS
90 uschar *redis_servers          = NULL;
91 #endif
92
93 #ifdef LOOKUP_SQLITE
94 uschar *sqlite_dbfile          = NULL;
95 int     sqlite_lock_timeout    = 5;
96 #endif
97
98 #ifdef SUPPORT_MOVE_FROZEN_MESSAGES
99 BOOL    move_frozen_messages   = FALSE;
100 #endif
101
102 /* These variables are outside the #ifdef because it keeps the code less
103 cluttered in several places (e.g. during logging) if we can always refer to
104 them. Also, the tls_ variables are now always visible.  Note that these are
105 only used for smtp connections, not for service-daemon access. */
106
107 tls_support tls_in = {
108  .active =              {.sock = -1}
109  /* all other elements zero */
110 };
111 tls_support tls_out = {
112  .active =              {.sock = -1},
113  /* all other elements zero */
114 };
115
116 uschar *dsn_envid              = NULL;
117 int     dsn_ret                = 0;
118 const pcre2_code  *regex_DSN         = NULL;
119 uschar *dsn_advertise_hosts    = NULL;
120
121 #ifndef DISABLE_TLS
122 BOOL    gnutls_compat_mode     = FALSE;
123 BOOL    gnutls_allow_auto_pkcs11 = FALSE;
124 uschar *hosts_require_alpn     = NULL;
125 uschar *openssl_options        = NULL;
126 const pcre2_code *regex_STARTTLS     = NULL;
127 uschar *tls_advertise_hosts    = US"*";
128 uschar *tls_alpn               = US"smtp:esmtp";
129 uschar *tls_certificate        = NULL;
130 uschar *tls_crl                = NULL;
131 /* This default matches NSS DH_MAX_P_BITS value at current time (2012), because
132 that's the interop problem which has been observed: GnuTLS suggesting a higher
133 bit-count as "NORMAL" (2432) and Thunderbird dropping connection. */
134 int     tls_dh_max_bits        = 2236;
135 uschar *tls_dhparam            = NULL;
136 uschar *tls_eccurve            = US"auto";
137 # ifndef DISABLE_OCSP
138 uschar *tls_ocsp_file          = NULL;
139 # endif
140 uschar *tls_privatekey         = NULL;
141 BOOL    tls_remember_esmtp     = FALSE;
142 uschar *tls_require_ciphers    = NULL;
143 # ifndef DISABLE_TLS_RESUME
144 uschar *tls_resumption_hosts   = NULL;
145 # endif
146 uschar *tls_try_verify_hosts   = NULL;
147 uschar *tls_verify_certificates= US"system";
148 uschar *tls_verify_hosts       = NULL;
149 int     tls_watch_fd           = -1;
150 time_t  tls_watch_trigger_time = (time_t)0;
151 #else   /*DISABLE_TLS*/
152 uschar *tls_advertise_hosts    = NULL;
153 #endif
154
155 #ifndef DISABLE_PRDR
156 /* Per Recipient Data Response variables */
157 BOOL    prdr_enable            = FALSE;
158 BOOL    prdr_requested         = FALSE;
159 const pcre2_code *regex_PRDR         = NULL;
160 #endif
161
162 #ifdef SUPPORT_I18N
163 const pcre2_code *regex_UTF8         = NULL;
164 #endif
165
166 /* Input-reading functions for messages, so we can use special ones for
167 incoming TCP/IP. The defaults use stdin. We never need these for any
168 stand-alone tests. */
169
170 #if !defined(STAND_ALONE) && !defined(MACRO_PREDEF)
171 int     (*lwr_receive_getc)(unsigned)   = stdin_getc;
172 uschar * (*lwr_receive_getbuf)(unsigned *) = NULL;
173 int     (*lwr_receive_ungetc)(int)      = stdin_ungetc;
174 BOOL    (*lwr_receive_hasc)(void)       = stdin_hasc;
175
176 int     (*receive_getc)(unsigned)       = stdin_getc;
177 uschar * (*receive_getbuf)(unsigned *)  = NULL;
178 void    (*receive_get_cache)(unsigned)  = NULL;
179 BOOL    (*receive_hasc)(void)           = stdin_hasc;
180 int     (*receive_ungetc)(int)          = stdin_ungetc;
181 int     (*receive_feof)(void)           = stdin_feof;
182 int     (*receive_ferror)(void)         = stdin_ferror;
183 #endif
184
185
186 /* List of per-address expansion variables for clearing and saving/restoring
187 when verifying one address while routing/verifying another. We have to have
188 the size explicit, because it is referenced from more than one module. */
189
190 const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT] = {
191   CUSS &deliver_address_data,
192   CUSS &deliver_domain,
193   CUSS &deliver_domain_data,
194   CUSS &deliver_domain_orig,
195   CUSS &deliver_domain_parent,
196   CUSS &deliver_localpart,
197   CUSS &deliver_localpart_data,
198   CUSS &deliver_localpart_orig,
199   CUSS &deliver_localpart_parent,
200   CUSS &deliver_localpart_prefix,
201   CUSS &deliver_localpart_suffix,
202   CUSS (uschar **)(&deliver_recipients),
203   CUSS &deliver_host,
204   CUSS &deliver_home,
205   CUSS &address_file,
206   CUSS &address_pipe,
207   CUSS &self_hostname,
208   NULL };
209
210 int address_expansions_count = sizeof(address_expansions)/sizeof(uschar **);
211
212 /******************************************************************************/
213 /* General global variables.  Boolean flags are done as a group
214 so that only one bit each is needed, packed, for all those we never
215 need to take a pointer - and only a char for the rest.
216 This means a struct, unfortunately since it clutters the sourcecode. */
217
218 struct global_flags f =
219 {
220         .acl_temp_details       = FALSE,
221         .active_local_from_check = FALSE,
222         .active_local_sender_retain = FALSE,
223         .address_test_mode      = FALSE,
224         .admin_user             = FALSE,
225         .allow_auth_unadvertised= FALSE,
226         .allow_unqualified_recipient = TRUE,    /* For local messages */
227         .allow_unqualified_sender = TRUE,       /* Reset for SMTP */
228         .authentication_local   = FALSE,
229
230         .background_daemon      = TRUE,
231         .bdat_readers_wanted    = FALSE,
232
233         .chunking_offered       = FALSE,
234         .config_changed         = FALSE,
235         .continue_more          = FALSE,
236
237         .daemon_listen          = FALSE,
238         .daemon_scion           = FALSE,
239         .debug_daemon           = FALSE,
240         .deliver_firsttime      = FALSE,
241         .deliver_force          = FALSE,
242         .deliver_freeze         = FALSE,
243         .deliver_force_thaw     = FALSE,
244         .deliver_manual_thaw    = FALSE,
245         .deliver_selectstring_regex = FALSE,
246         .deliver_selectstring_sender_regex = FALSE,
247         .disable_callout_flush  = FALSE,
248         .disable_delay_flush    = FALSE,
249         .disable_logging        = FALSE,
250 #ifndef DISABLE_DKIM
251         .dkim_disable_verify      = FALSE,
252         .dkim_init_done           = FALSE,
253 #endif
254 #ifdef SUPPORT_DMARC
255         .dmarc_has_been_checked  = FALSE,
256         .dmarc_disable_verify    = FALSE,
257         .dmarc_enable_forensic   = FALSE,
258 #endif
259         .dont_deliver           = FALSE,
260         .dot_ends               = TRUE,
261
262         .enable_dollar_recipients = FALSE,
263         .expand_string_forcedfail = FALSE,
264
265         .filter_running         = FALSE,
266
267         .header_rewritten       = FALSE,
268         .helo_verified          = FALSE,
269         .helo_verify_failed     = FALSE,
270         .host_checking_callout  = FALSE,
271         .host_find_failed_syntax= FALSE,
272
273         .inetd_wait_mode        = FALSE,
274         .is_inetd               = FALSE,
275
276         .local_error_message    = FALSE,
277         .log_testing_mode       = FALSE,
278
279 #ifdef WITH_CONTENT_SCAN
280         .no_mbox_unspool        = FALSE,
281 #endif
282         .no_multiline_responses = FALSE,
283         .notifier_socket_en     = TRUE,
284
285         .parse_allow_group      = FALSE,
286         .parse_found_group      = FALSE,
287         .pipelining_enable      = TRUE,
288 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
289         .proxy_session_failed   = FALSE,
290 #endif
291
292         .queue_2stage           = FALSE,
293         .queue_only_policy      = FALSE,
294         .queue_run_local        = FALSE,
295         .queue_running          = FALSE,
296         .queue_smtp             = FALSE,
297
298         .really_exim            = TRUE,
299         .receive_call_bombout   = FALSE,
300         .recipients_discarded   = FALSE,
301         .running_in_test_harness = FALSE,
302
303         .search_find_defer      = FALSE,
304         .sender_address_forced  = FALSE,
305         .sender_host_notsocket  = FALSE,
306         .sender_host_unknown    = FALSE,
307         .sender_local           = FALSE,
308         .sender_name_forced     = FALSE,
309         .sender_set_untrusted   = FALSE,
310         .smtp_authenticated     = FALSE,
311 #ifndef DISABLE_PIPE_CONNECT
312         .smtp_in_early_pipe_advertised = FALSE,
313         .smtp_in_early_pipe_no_auth = FALSE,
314         .smtp_in_early_pipe_used = FALSE,
315 #endif
316         .smtp_in_pipelining_advertised = FALSE,
317         .smtp_in_pipelining_used = FALSE,
318         .smtp_in_quit           = FALSE,
319         .spool_file_wireformat  = FALSE,
320         .submission_mode        = FALSE,
321         .suppress_local_fixups  = FALSE,
322         .suppress_local_fixups_default = FALSE,
323         .synchronous_delivery   = FALSE,
324         .system_filtering       = FALSE,
325
326         .taint_check_slow       = FALSE,
327         .testsuite_delays       = TRUE,
328         .tcp_fastopen_ok        = FALSE,
329         .tcp_in_fastopen        = FALSE,
330         .tcp_in_fastopen_data   = FALSE,
331         .tcp_in_fastopen_logged = FALSE,
332         .tcp_out_fastopen_logged= FALSE,
333         .timestamps_utc         = FALSE,
334         .transport_filter_timed_out = FALSE,
335         .trusted_caller         = FALSE,
336         .trusted_config         = TRUE,
337 };
338
339 /******************************************************************************/
340 /* These are the flags which are either variables or mainsection options,
341 so an address is needed for access, or are exported to local_scan. */
342
343 BOOL    accept_8bitmime        = TRUE; /* deliberately not RFC compliant */
344 BOOL    allow_domain_literals  = FALSE;
345 BOOL    allow_mx_to_ip         = FALSE;
346 BOOL    allow_utf8_domains     = FALSE;
347 BOOL    authentication_failed  = FALSE;
348
349 BOOL    bounce_return_body     = TRUE;
350 BOOL    bounce_return_message  = TRUE;
351 BOOL    check_rfc2047_length   = TRUE;
352 BOOL    commandline_checks_require_admin = FALSE;
353
354 #ifdef EXPERIMENTAL_DCC
355 BOOL    dcc_direct_add_header  = FALSE;
356 #endif
357 BOOL    debug_store            = FALSE;
358 BOOL    delivery_date_remove   = TRUE;
359 BOOL    deliver_drop_privilege = FALSE;
360 #ifdef ENABLE_DISABLE_FSYNC
361 BOOL    disable_fsync          = FALSE;
362 #endif
363 BOOL    disable_ipv6           = FALSE;
364 BOOL    dns_csa_use_reverse    = TRUE;
365 BOOL    drop_cr                = FALSE;         /* No longer used */
366
367 BOOL    envelope_to_remove     = TRUE;
368 BOOL    exim_gid_set           = TRUE;          /* This gid is always set */
369 BOOL    exim_uid_set           = TRUE;          /* This uid is always set */
370 BOOL    extract_addresses_remove_arguments = TRUE;
371
372 BOOL    host_checking          = FALSE;
373 BOOL    host_lookup_deferred   = FALSE;
374 BOOL    host_lookup_failed     = FALSE;
375 BOOL    ignore_fromline_local  = FALSE;
376
377 BOOL    local_from_check       = TRUE;
378 BOOL    local_sender_retain    = FALSE;
379 BOOL    log_timezone           = FALSE;
380 BOOL    message_body_newlines  = FALSE;
381 BOOL    message_logs           = TRUE;
382 #ifdef SUPPORT_I18N
383 BOOL    message_smtputf8       = FALSE;
384 #endif
385 BOOL    mua_wrapper            = FALSE;
386
387 BOOL    preserve_message_logs  = FALSE;
388 BOOL    print_topbitchars      = FALSE;
389 BOOL    prod_requires_admin    = TRUE;
390 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS) || defined(EXPERIMETAL_XCLIENT)
391 BOOL    proxy_session          = FALSE;
392 #endif
393
394 #ifndef DISABLE_QUEUE_RAMP
395 BOOL    queue_fast_ramp         = TRUE;
396 #endif
397 BOOL    queue_list_requires_admin = TRUE;
398 BOOL    queue_only             = FALSE;
399 BOOL    queue_only_load_latch  = TRUE;
400 BOOL    queue_only_override    = TRUE;
401 BOOL    queue_run_in_order     = FALSE;
402 BOOL    recipients_max_reject  = FALSE;
403 BOOL    return_path_remove     = TRUE;
404
405 BOOL    smtp_batched_input     = FALSE;
406 BOOL    sender_helo_dnssec     = FALSE;
407 BOOL    sender_host_dnssec     = FALSE;
408 BOOL    smtp_accept_keepalive  = TRUE;
409 BOOL    smtp_check_spool_space = TRUE;
410 BOOL    smtp_enforce_sync      = TRUE;
411 BOOL    smtp_etrn_serialize    = TRUE;
412 BOOL    smtp_input             = FALSE;
413 BOOL    smtp_return_error_details = FALSE;
414 #ifdef SUPPORT_SPF
415 BOOL    spf_result_guessed     = FALSE;
416 #endif
417 BOOL    split_spool_directory  = FALSE;
418 BOOL    spool_wireformat       = FALSE;
419 BOOL    strict_acl_vars        = FALSE;
420 BOOL    strip_excess_angle_brackets = FALSE;
421 BOOL    strip_trailing_dot     = FALSE;
422 BOOL    syslog_duplication     = TRUE;
423 BOOL    syslog_pid             = TRUE;
424 BOOL    syslog_timestamp       = TRUE;
425 BOOL    system_filter_gid_set  = FALSE;
426 BOOL    system_filter_uid_set  = FALSE;
427
428 BOOL    tcp_nodelay            = TRUE;
429 BOOL    write_rejectlog        = TRUE;
430
431 /******************************************************************************/
432
433 header_line *acl_added_headers = NULL;
434 tree_node *acl_anchor          = NULL;
435 uschar *acl_arg[9]             = {NULL, NULL, NULL, NULL, NULL,
436                                   NULL, NULL, NULL, NULL};
437 int     acl_narg               = 0;
438
439 int     acl_level              = 0;
440
441 uschar *acl_not_smtp           = NULL;
442 #ifdef WITH_CONTENT_SCAN
443 uschar *acl_not_smtp_mime      = NULL;
444 #endif
445 uschar *acl_not_smtp_start     = NULL;
446 uschar *acl_removed_headers    = NULL;
447 uschar *acl_smtp_auth          = NULL;
448 uschar *acl_smtp_connect       = NULL;
449 uschar *acl_smtp_data          = NULL;
450 #ifndef DISABLE_PRDR
451 uschar *acl_smtp_data_prdr     = US"accept";
452 #endif
453 #ifndef DISABLE_DKIM
454 uschar *acl_smtp_dkim          = NULL;
455 #endif
456 uschar *acl_smtp_etrn          = NULL;
457 uschar *acl_smtp_expn          = NULL;
458 uschar *acl_smtp_helo          = NULL;
459 uschar *acl_smtp_mail          = NULL;
460 uschar *acl_smtp_mailauth      = NULL;
461 #ifdef WITH_CONTENT_SCAN
462 uschar *acl_smtp_mime          = NULL;
463 #endif
464 uschar *acl_smtp_notquit       = NULL;
465 uschar *acl_smtp_predata       = NULL;
466 uschar *acl_smtp_quit          = NULL;
467 uschar *acl_smtp_rcpt          = NULL;
468 uschar *acl_smtp_starttls      = NULL;
469 uschar *acl_smtp_vrfy          = NULL;
470
471 tree_node *acl_var_c           = NULL;
472 tree_node *acl_var_m           = NULL;
473 uschar *acl_verify_message     = NULL;
474 string_item *acl_warn_logged   = NULL;
475
476 /* Names of SMTP places for use in ACL error messages, and corresponding SMTP
477 error codes - keep in step with definitions of ACL_WHERE_xxxx in macros.h. */
478
479 uschar *acl_wherenames[]       = { US"RCPT",
480                                    US"MAIL",
481                                    US"PREDATA",
482                                    US"MIME",
483                                    US"DKIM",
484                                    US"DATA",
485 #ifndef DISABLE_PRDR
486                                    US"PRDR",
487 #endif
488                                    US"non-SMTP",
489                                    US"AUTH",
490                                    US"connection",
491                                    US"ETRN",
492                                    US"EXPN",
493                                    US"EHLO or HELO",
494                                    US"MAILAUTH",
495                                    US"non-SMTP-start",
496                                    US"NOTQUIT",
497                                    US"QUIT",
498                                    US"STARTTLS",
499                                    US"VRFY",
500                                    US"delivery",
501                                    US"unknown"
502                                  };
503
504 uschar *acl_wherecodes[]       = { US"550",     /* RCPT */
505                                    US"550",     /* MAIL */
506                                    US"550",     /* PREDATA */
507                                    US"550",     /* MIME */
508                                    US"550",     /* DKIM */
509                                    US"550",     /* DATA */
510 #ifndef DISABLE_PRDR
511                                    US"550",    /* RCPT PRDR */
512 #endif
513                                    US"0",       /* not SMTP; not relevant */
514                                    US"503",     /* AUTH */
515                                    US"550",     /* connect */
516                                    US"458",     /* ETRN */
517                                    US"550",     /* EXPN */
518                                    US"550",     /* HELO/EHLO */
519                                    US"0",       /* MAILAUTH; not relevant */
520                                    US"0",       /* not SMTP; not relevant */
521                                    US"0",       /* NOTQUIT; not relevant */
522                                    US"0",       /* QUIT; not relevant */
523                                    US"550",     /* STARTTLS */
524                                    US"252",     /* VRFY */
525                                    US"0",       /* delivery; not relevant */
526                                    US"0"        /* unknown; not relevant */
527                                  };
528
529 uschar *add_environment        = NULL;
530 address_item  *addr_duplicate  = NULL;
531
532 address_item address_defaults = {
533   .next =               NULL,
534   .parent =             NULL,
535   .first =              NULL,
536   .dupof =              NULL,
537   .start_router =       NULL,
538   .router =             NULL,
539   .transport =          NULL,
540   .host_list =          NULL,
541   .host_used =          NULL,
542   .fallback_hosts =     NULL,
543   .reply =              NULL,
544   .retries =            NULL,
545   .address =            NULL,
546   .unique =             NULL,
547   .cc_local_part =      NULL,
548   .lc_local_part =      NULL,
549   .local_part =         NULL,
550   .prefix =             NULL,
551   .prefix_v =           NULL,
552   .suffix =             NULL,
553   .suffix_v =           NULL,
554   .domain =             NULL,
555   .address_retry_key =  NULL,
556   .domain_retry_key =   NULL,
557   .current_dir =        NULL,
558   .home_dir =           NULL,
559   .message =            NULL,
560   .user_message =       NULL,
561   .onetime_parent =     NULL,
562   .pipe_expandn =       NULL,
563   .return_filename =    NULL,
564   .self_hostname =      NULL,
565   .shadow_message =     NULL,
566 #ifndef DISABLE_TLS
567   .cipher =             NULL,
568   .ourcert =            NULL,
569   .peercert =           NULL,
570   .peerdn =             NULL,
571   .ocsp =               OCSP_NOT_REQ,
572 #endif
573 #ifdef EXPERIMENTAL_DSN_INFO
574   .smtp_greeting =      NULL,
575   .helo_response =      NULL,
576 #endif
577   .authenticator =      NULL,
578   .auth_id =            NULL,
579   .auth_sndr =          NULL,
580   .dsn_orcpt =          NULL,
581   .dsn_flags =          0,
582   .dsn_aware =          0,
583   .uid =                (uid_t)(-1),
584   .gid =                (gid_t)(-1),
585   .flags =              { 0 },
586   .domain_cache =       { 0 },                /* domain_cache - any larger array should be zeroed */
587   .localpart_cache =    { 0 },                /* localpart_cache - ditto */
588   .mode =               -1,
589   .more_errno =         0,
590   .delivery_time =      {.tv_sec = 0, .tv_usec = 0},
591   .basic_errno =        ERRNO_UNKNOWNERROR,
592   .child_count =        0,
593   .return_file =        -1,
594   .special_action =     SPECIAL_NONE,
595   .transport_return =   DEFER,
596   .prop = {                                     /* fields that are propagated to children */
597     .address_data =     NULL,
598     .domain_data =      NULL,
599     .localpart_data =   NULL,
600     .errors_address =   NULL,
601     .extra_headers =    NULL,
602     .remove_headers =   NULL,
603     .variables =        NULL,
604     .ignore_error =     FALSE,
605 #ifdef SUPPORT_I18N
606     .utf8_msg =         FALSE,
607     .utf8_downcvt =     FALSE,
608     .utf8_downcvt_maybe = FALSE
609 #endif
610   }
611 };
612
613 uschar *address_file           = NULL;
614 uschar *address_pipe           = NULL;
615 tree_node *addresslist_anchor  = NULL;
616 int     addresslist_count      = 0;
617 gid_t  *admin_groups           = NULL;
618
619 #ifdef EXPERIMENTAL_ARC
620 struct arc_set *arc_received    = NULL;
621 int     arc_received_instance   = 0;
622 int     arc_oldest_pass         = 0;
623 const uschar *arc_state         = NULL;
624 const uschar *arc_state_reason  = NULL;
625 #endif
626
627 uschar *authenticated_fail_id  = NULL;
628 uschar *authenticated_id       = NULL;
629 uschar *authenticated_sender   = NULL;
630 auth_instance  *auths          = NULL;
631 uschar *auth_advertise_hosts   = US"*";
632 auth_instance auth_defaults    = {
633     .next =             NULL,
634     .name =             NULL,
635     .info =             NULL,
636     .options_block =    NULL,
637     .driver_name =      NULL,
638     .advertise_condition = NULL,
639     .client_condition = NULL,
640     .public_name =      NULL,
641     .set_id =           NULL,
642     .set_client_id =    NULL,
643     .mail_auth_condition = NULL,
644     .server_debug_string = NULL,
645     .server_condition = NULL,
646     .client =           FALSE,
647     .server =           FALSE,
648     .advertised =       FALSE
649 };
650
651 uschar *auth_defer_msg         = US"reason not recorded";
652 uschar *auth_defer_user_msg    = US"";
653 const uschar *auth_vars[AUTH_VARS];
654 uschar *authenticator_name     = NULL;
655 int     auto_thaw              = 0;
656 #ifdef WITH_CONTENT_SCAN
657 int     av_failed              = FALSE; /* boolean but accessed as vtype_int*/
658 uschar *av_scanner             = US"sophie:/var/run/sophie";  /* AV scanner */
659 #endif
660
661 #if BASE_62 == 62
662 uschar *base62_chars=
663     US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz";
664 #else
665 uschar *base62_chars= US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ";
666 #endif
667
668 uschar *bi_command             = NULL;
669 uschar *big_buffer             = NULL;
670 int     big_buffer_size        = BIG_BUFFER_SIZE;
671 #ifdef EXPERIMENTAL_BRIGHTMAIL
672 uschar *bmi_alt_location       = NULL;
673 uschar *bmi_base64_tracker_verdict = NULL;
674 uschar *bmi_base64_verdict     = NULL;
675 uschar *bmi_config_file        = US"/opt/brightmail/etc/brightmail.cfg";
676 int     bmi_deliver            = 1;
677 int     bmi_run                = 0;
678 uschar *bmi_verdicts           = NULL;
679 #endif
680 int     bsmtp_transaction_linecount = 0;
681 int     body_8bitmime          = 0;
682 int     body_linecount         = 0;
683 int     body_zerocount         = 0;
684 uschar *bounce_message_file    = NULL;
685 uschar *bounce_message_text    = NULL;
686 uschar *bounce_recipient       = NULL;
687 int     bounce_return_linesize_limit = 998;
688 int     bounce_return_size_limit = 100*1024;
689 uschar *bounce_sender_authentication = NULL;
690
691 uschar *callout_address        = NULL;
692 int     callout_cache_domain_positive_expire = 7*24*60*60;
693 int     callout_cache_domain_negative_expire = 3*60*60;
694 int     callout_cache_positive_expire = 24*60*60;
695 int     callout_cache_negative_expire = 2*60*60;
696 uschar *callout_random_local_part = US"$primary_hostname-$tod_epoch-testing";
697 uschar *check_dns_names_pattern= US"(?i)^(?>(?(1)\\.|())[^\\W](?>[a-z0-9/_-]*[^\\W])?)+(\\.?)$";
698 int     check_log_inodes       = 100;
699 int_eximarith_t check_log_space = 10*1024;      /* 10K Kbyte == 10MB */
700 int     check_spool_inodes     = 100;
701 int_eximarith_t check_spool_space = 10*1024;    /* 10K Kbyte == 10MB */
702
703 uschar *chunking_advertise_hosts = US"*";
704 unsigned chunking_datasize     = 0;
705 unsigned chunking_data_left    = 0;
706 chunking_state_t chunking_state= CHUNKING_NOT_OFFERED;
707 const pcre2_code *regex_CHUNKING     = NULL;
708
709 #ifdef EXPERIMENTAL_ESMTP_LIMITS
710 const pcre2_code *regex_LIMITS        = NULL;
711 #endif
712
713 uschar *client_authenticator   = NULL;
714 uschar *client_authenticated_id = NULL;
715 uschar *client_authenticated_sender = NULL;
716 #ifndef DISABLE_CLIENT_CMD_LOG
717 gstring *client_cmd_log        = NULL;
718 #endif
719 int     clmacro_count          = 0;
720 uschar *clmacros[MAX_CLMACROS];
721 FILE   *config_file            = NULL;
722 const uschar *config_filename  = NULL;
723 int     config_lineno          = 0;
724 #ifdef CONFIGURE_GROUP
725 gid_t   config_gid             = CONFIGURE_GROUP;
726 #else
727 gid_t   config_gid             = 0;
728 #endif
729 uschar *config_main_filelist   = US CONFIGURE_FILE
730                          "\0<-----------Space to patch configure_filename->";
731 uschar *config_main_filename   = NULL;
732 uschar *config_main_directory  = NULL;
733
734 #ifdef CONFIGURE_OWNER
735 uid_t   config_uid             = CONFIGURE_OWNER;
736 #else
737 uid_t   config_uid             = 0;
738 #endif
739
740 int     connection_max_messages= -1;
741 uschar *continue_proxy_cipher  = NULL;
742 BOOL    continue_proxy_dane    = FALSE;
743 uschar *continue_proxy_sni     = NULL;
744 uschar *continue_hostname      = NULL;
745 uschar *continue_host_address  = NULL;
746 int     continue_sequence      = 1;
747 uschar *continue_transport     = NULL;
748 #ifdef EXPERIMENTAL_ESMTP_LIMITS
749 unsigned continue_limit_mail   = 0;
750 unsigned continue_limit_rcpt   = 0;
751 unsigned continue_limit_rcptdom= 0;
752 #endif
753
754 uschar *csa_status             = NULL;
755 cut_t   cutthrough = {
756   .callout_hold_only =  FALSE,                          /* verify-only: normal delivery */
757   .delivery =           FALSE,                          /* when to attempt */
758   .defer_pass =         FALSE,                          /* on defer: spool locally */
759   .is_tls =             FALSE,                          /* not a TLS conn yet */
760   .cctx =               {.sock = -1},                   /* open connection */
761   .nrcpt =              0,                              /* number of addresses */
762 };
763
764 int     daemon_notifier_fd     = -1;
765 uschar *daemon_smtp_port       = US"smtp";
766 int     daemon_startup_retries = 9;
767 int     daemon_startup_sleep   = 30;
768
769 #ifdef EXPERIMENTAL_DCC
770 uschar *dcc_header             = NULL;
771 uschar *dcc_result             = NULL;
772 uschar *dccifd_address         = US"/usr/local/dcc/var/dccifd";
773 uschar *dccifd_options         = US"header";
774 #endif
775
776 int     debug_fd               = -1;
777 FILE   *debug_file             = NULL;
778 int     debug_notall[]         = {
779   Di_memory,
780   Di_noutf8,
781   -1
782 };
783 bit_table debug_options[]      = { /* must be in alphabetical order and use
784                                  only the enum values from macro.h */
785   BIT_TABLE(D, acl),
786   BIT_TABLE(D, all),
787   BIT_TABLE(D, auth),
788   BIT_TABLE(D, deliver),
789   BIT_TABLE(D, dns),
790   BIT_TABLE(D, dnsbl),
791   BIT_TABLE(D, exec),
792   BIT_TABLE(D, expand),
793   BIT_TABLE(D, filter),
794   BIT_TABLE(D, hints_lookup),
795   BIT_TABLE(D, host_lookup),
796   BIT_TABLE(D, ident),
797   BIT_TABLE(D, interface),
798   BIT_TABLE(D, lists),
799   BIT_TABLE(D, load),
800   BIT_TABLE(D, local_scan),
801   BIT_TABLE(D, lookup),
802   BIT_TABLE(D, memory),
803   BIT_TABLE(D, noutf8),
804   BIT_TABLE(D, pid),
805   BIT_TABLE(D, process_info),
806   BIT_TABLE(D, queue_run),
807   BIT_TABLE(D, receive),
808   BIT_TABLE(D, resolver),
809   BIT_TABLE(D, retry),
810   BIT_TABLE(D, rewrite),
811   BIT_TABLE(D, route),
812   BIT_TABLE(D, timestamp),
813   BIT_TABLE(D, tls),
814   BIT_TABLE(D, transport),
815   BIT_TABLE(D, uid),
816   BIT_TABLE(D, verify),
817 };
818 int      debug_options_count    = nelem(debug_options);
819 uschar   debuglog_name[LOG_NAME_SIZE] = {0};
820 unsigned debug_pretrigger_bsize = 0;
821 uschar * debug_pretrigger_buf   = NULL;
822 unsigned int debug_selector     = 0;
823
824 int     delay_warning[DELAY_WARNING_SIZE] = { DELAY_WARNING_SIZE, 1, 24*60*60 };
825 uschar *delay_warning_condition=
826   US"${if or {"
827             "{ !eq{$h_list-id:$h_list-post:$h_list-subscribe:}{} }"
828             "{ match{$h_precedence:}{(?i)bulk|list|junk} }"
829             "{ match{$h_auto-submitted:}{(?i)auto-generated|auto-replied} }"
830             "} {no}{yes}}";
831 uschar *deliver_address_data   = NULL;
832 int     deliver_datafile       = -1;
833 const uschar *deliver_domain   = NULL;
834 uschar *deliver_domain_data    = NULL;
835 const uschar *deliver_domain_orig = NULL;
836 const uschar *deliver_domain_parent = NULL;
837 time_t  deliver_frozen_at      = 0;
838 uschar *deliver_home           = NULL;
839 const uschar *deliver_host     = NULL;
840 const uschar *deliver_host_address = NULL;
841 int     deliver_host_port      = 0;
842 uschar *deliver_in_buffer      = NULL;
843 ino_t   deliver_inode          = 0;
844 uschar *deliver_localpart      = NULL;
845 uschar *deliver_localpart_data = NULL;
846 uschar *deliver_localpart_orig = NULL;
847 uschar *deliver_localpart_parent = NULL;
848 uschar *deliver_localpart_prefix = NULL;
849 uschar *deliver_localpart_prefix_v = NULL;
850 uschar *deliver_localpart_suffix = NULL;
851 uschar *deliver_localpart_suffix_v = NULL;
852 uschar *deliver_out_buffer     = NULL;
853 int     deliver_queue_load_max = -1;
854 address_item  *deliver_recipients = NULL;
855 uschar *deliver_selectstring   = NULL;
856 uschar *deliver_selectstring_sender = NULL;
857
858 #ifndef DISABLE_DKIM
859 unsigned dkim_collect_input      = 0;
860 uschar *dkim_cur_signer          = NULL;
861 int     dkim_key_length          = 0;
862 void   *dkim_signatures          = NULL;
863 uschar *dkim_signers             = NULL;
864 uschar *dkim_signing_domain      = NULL;
865 uschar *dkim_signing_selector    = NULL;
866 uschar *dkim_verify_hashes       = US"sha256:sha512";
867 uschar *dkim_verify_keytypes     = US"ed25519:rsa";
868 uschar *dkim_verify_min_keysizes = US"rsa=1024 ed25519=250";
869 BOOL    dkim_verify_minimal      = FALSE;
870 uschar *dkim_verify_overall      = NULL;
871 uschar *dkim_verify_signers      = US"$dkim_signers";
872 uschar *dkim_verify_status       = NULL;
873 uschar *dkim_verify_reason       = NULL;
874 #endif
875 #ifdef SUPPORT_DMARC
876 uschar *dmarc_domain_policy     = NULL;
877 uschar *dmarc_forensic_sender   = NULL;
878 uschar *dmarc_history_file      = NULL;
879 uschar *dmarc_status            = NULL;
880 uschar *dmarc_status_text       = NULL;
881 uschar *dmarc_tld_file          = NULL;
882 uschar *dmarc_used_domain       = NULL;
883 #endif
884
885 uschar *dns_again_means_nonexist = NULL;
886 int     dns_csa_search_limit   = 5;
887 int     dns_cname_loops        = 1;
888 #ifdef SUPPORT_DANE
889 int     dns_dane_ok            = -1;
890 #endif
891 uschar *dns_ipv4_lookup        = NULL;
892 int     dns_retrans            = 0;
893 int     dns_retry              = 0;
894 int     dns_dnssec_ok          = -1; /* <0 = not coerced */
895 uschar *dns_trust_aa           = NULL;
896 int     dns_use_edns0          = -1; /* <0 = not coerced */
897 uschar *dnslist_domain         = NULL;
898 uschar *dnslist_matched        = NULL;
899 uschar *dnslist_text           = NULL;
900 uschar *dnslist_value          = NULL;
901 tree_node *domainlist_anchor   = NULL;
902 int     domainlist_count       = 0;
903 const uschar *driver_srcfile   = NULL;
904 int     driver_srcline         = 0;
905 uschar *dsn_from               = US DEFAULT_DSN_FROM;
906 unsigned int dtrigger_selector = 0;
907
908 int     errno_quota            = ERRNO_QUOTA;
909 uschar *errors_copy            = NULL;
910 int     error_handling         = ERRORS_SENDER;
911 uschar *errors_reply_to        = NULL;
912 int     errors_sender_rc       = EXIT_FAILURE;
913 #ifndef DISABLE_EVENT
914 uschar *event_action             = NULL;        /* expansion for delivery events */
915 uschar *event_data               = NULL;        /* auxiliary data variable for event */
916 int     event_defer_errno        = 0;
917 const uschar *event_name         = NULL;        /* event name variable */
918 #endif
919
920
921 gid_t   exim_gid               = EXIM_GID;
922 uschar *exim_path              = US BIN_DIRECTORY "/exim"
923                         "\0<---------------Space to patch exim_path->";
924 uid_t   exim_uid               = EXIM_UID;
925 int     expand_level           = 0;             /* Nesting depth, indent for debug */
926 int     expand_forbid          = 0;
927 int     expand_nlength[EXPAND_MAXN+1];
928 int     expand_nmax            = -1;
929 const uschar *expand_nstring[EXPAND_MAXN+1];
930 uschar *expand_string_message;
931 uschar *extra_local_interfaces = NULL;
932
933 int     fake_response          = OK;
934 uschar *fake_response_text     = US"Your message has been rejected but is "
935                                    "being kept for evaluation.\nIf it was a "
936                                    "legitimate message, it may still be "
937                                    "delivered to the target recipient(s).";
938 int     filter_n[FILTER_VARIABLE_COUNT];
939 int     filter_sn[FILTER_VARIABLE_COUNT];
940 int     filter_test            = FTEST_NONE;
941 uschar *filter_test_sfile      = NULL;
942 uschar *filter_test_ufile      = NULL;
943 uschar *filter_thisaddress     = NULL;
944 int     finduser_retries       = 0;
945 uid_t   fixed_never_users[]    = { FIXED_NEVER_USERS };
946 uschar *freeze_tell            = NULL;
947 uschar *freeze_tell_config     = NULL;
948 uschar *fudged_queue_times     = US"";
949
950 uschar *gecos_name             = NULL;
951 uschar *gecos_pattern          = NULL;
952 rewrite_rule  *global_rewrite_rules = NULL;
953
954 volatile sig_atomic_t had_command_timeout = 0;
955 volatile sig_atomic_t had_command_sigterm = 0;
956 volatile sig_atomic_t had_data_timeout    = 0;
957 volatile sig_atomic_t had_data_sigint     = 0;
958 const uschar *headers_charset  = US HEADERS_CHARSET;
959 int     header_insert_maxlen   = 64 * 1024;
960 header_line  *header_last      = NULL;
961 header_line  *header_list      = NULL;
962 int     header_maxsize         = HEADER_MAXSIZE;
963 int     header_line_maxsize    = 0;
964
965 header_name header_names[] = {
966   /* name               len     allow_resent    htype */
967   { US"bcc",            3,      TRUE,           htype_bcc },
968   { US"cc",             2,      TRUE,           htype_cc },
969   { US"date",           4,      TRUE,           htype_date },
970   { US"delivery-date", 13,      FALSE,          htype_delivery_date },
971   { US"envelope-to",   11,      FALSE,          htype_envelope_to },
972   { US"from",           4,      TRUE,           htype_from },
973   { US"message-id",    10,      TRUE,           htype_id },
974   { US"received",       8,      FALSE,          htype_received },
975   { US"reply-to",       8,      FALSE,          htype_reply_to },
976   { US"return-path",   11,      FALSE,          htype_return_path },
977   { US"sender",         6,      TRUE,           htype_sender },
978   { US"subject",        7,      FALSE,          htype_subject },
979   { US"to",             2,      TRUE,           htype_to }
980 };
981
982 int header_names_size          = nelem(header_names);
983
984 uschar *helo_accept_junk_hosts = NULL;
985 uschar *helo_allow_chars       = US"";
986 uschar *helo_lookup_domains    = US"@ : @[]";
987 uschar *helo_try_verify_hosts  = NULL;
988 uschar *helo_verify_hosts      = NULL;
989 const uschar *hex_digits       = CUS"0123456789abcdef";
990 uschar *hold_domains           = NULL;
991 uschar *host_data              = NULL;
992 uschar *host_lookup            = NULL;
993 uschar *host_lookup_order      = US"bydns:byaddr";
994 uschar *host_lookup_msg        = US"";
995 int     host_number            = 0;
996 uschar *host_number_string     = NULL;
997 uschar *host_reject_connection = NULL;
998 uschar *hosts_connection_nolog = NULL;
999 #ifdef SUPPORT_PROXY
1000 uschar *hosts_proxy            = NULL;
1001 #endif
1002 uschar *hosts_treat_as_local   = NULL;
1003 uschar *hosts_require_helo     = US"*";
1004 #ifdef EXPERIMENTAL_XCLIENT
1005 uschar *hosts_xclient          = NULL;
1006 #endif
1007 tree_node *hostlist_anchor     = NULL;
1008 int     hostlist_count         = 0;
1009
1010
1011 int     ignore_bounce_errors_after = 10*7*24*60*60;  /* 10 weeks */
1012 uschar *ignore_fromline_hosts  = NULL;
1013 int     inetd_wait_timeout     = -1;
1014 uschar *initial_cwd            = NULL;
1015 uschar *interface_address      = NULL;
1016 int     interface_port         = -1;
1017 uschar *iterate_item           = NULL;
1018
1019 int     journal_fd             = -1;
1020
1021 uschar *keep_environment       = NULL;
1022
1023 int     keep_malformed         = 4*24*60*60;    /* 4 days */
1024
1025 uschar *eldap_dn               = NULL;
1026 const uschar *letter_digit_hyphen_dot =
1027     US"abcdefghijklmnopqrstuvwxyz"
1028       ".-0123456789"
1029       "ABCDEFGHIJKLMNOPQRSTUVWXYZ";
1030 #ifdef EXPERIMENTAL_ESMTP_LIMITS
1031 uschar *limits_advertise_hosts = US"*";
1032 #endif
1033 int     load_average           = -2;
1034 uschar *local_from_prefix      = NULL;
1035 uschar *local_from_suffix      = NULL;
1036
1037 #if HAVE_IPV6
1038 uschar *local_interfaces       = US"<; ::0 ; 0.0.0.0";
1039 #else
1040 uschar *local_interfaces       = US"0.0.0.0";
1041 #endif
1042
1043 #ifdef HAVE_LOCAL_SCAN
1044 uschar *local_scan_data        = NULL;
1045 int     local_scan_timeout     = 5*60;
1046 #endif
1047 gid_t   local_user_gid         = (gid_t)(-1);
1048 uid_t   local_user_uid         = (uid_t)(-1);
1049
1050 tree_node *localpartlist_anchor= NULL;
1051 int     localpartlist_count    = 0;
1052 uschar *log_buffer             = NULL;
1053
1054 int     log_default[]          = { /* for initializing log_selector */
1055   Li_acl_warn_skipped,
1056   Li_connection_reject,
1057   Li_delay_delivery,
1058   Li_dkim,
1059   Li_dnslist_defer,
1060   Li_etrn,
1061   Li_host_lookup_failed,
1062   Li_lost_incoming_connection,
1063   Li_outgoing_interface, /* see d_log_interface in deliver.c */
1064   Li_msg_id,
1065   Li_queue_run,
1066   Li_queue_time_exclusive,
1067   Li_rejected_header,
1068   Li_retry_defer,
1069   Li_sender_verify_fail,
1070   Li_size_reject,
1071   Li_skip_delivery,
1072   Li_smtp_confirmation,
1073   Li_tls_certificate_verified,
1074   Li_tls_cipher,
1075   -1
1076 };
1077
1078 uschar *log_file_path          = US LOG_FILE_PATH
1079                            "\0<--------------Space to patch log_file_path->";
1080
1081 int     log_notall[]           = {
1082   -1
1083 };
1084 bit_table log_options[]        = { /* must be in alphabetical order,
1085                                 with definitions from enum logbit. */
1086   BIT_TABLE(L, 8bitmime),
1087   BIT_TABLE(L, acl_warn_skipped),
1088   BIT_TABLE(L, address_rewrite),
1089   BIT_TABLE(L, all),
1090   BIT_TABLE(L, all_parents),
1091   BIT_TABLE(L, arguments),
1092   BIT_TABLE(L, connection_reject),
1093   BIT_TABLE(L, delay_delivery),
1094   BIT_TABLE(L, deliver_time),
1095   BIT_TABLE(L, delivery_size),
1096 #ifndef DISABLE_DKIM
1097   BIT_TABLE(L, dkim),
1098   BIT_TABLE(L, dkim_verbose),
1099 #endif
1100   BIT_TABLE(L, dnslist_defer),
1101   BIT_TABLE(L, dnssec),
1102   BIT_TABLE(L, etrn),
1103   BIT_TABLE(L, host_lookup_failed),
1104   BIT_TABLE(L, ident_timeout),
1105   BIT_TABLE(L, incoming_interface),
1106   BIT_TABLE(L, incoming_port),
1107   BIT_TABLE(L, lost_incoming_connection),
1108   BIT_TABLE(L, millisec),
1109   BIT_TABLE(L, msg_id),
1110   BIT_TABLE(L, msg_id_created),
1111   BIT_TABLE(L, outgoing_interface),
1112   BIT_TABLE(L, outgoing_port),
1113   BIT_TABLE(L, pid),
1114   BIT_TABLE(L, pipelining),
1115   BIT_TABLE(L, protocol_detail),
1116 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1117   BIT_TABLE(L, proxy),
1118 #endif
1119   BIT_TABLE(L, queue_run),
1120   BIT_TABLE(L, queue_time),
1121   BIT_TABLE(L, queue_time_exclusive),
1122   BIT_TABLE(L, queue_time_overall),
1123   BIT_TABLE(L, receive_time),
1124   BIT_TABLE(L, received_recipients),
1125   BIT_TABLE(L, received_sender),
1126   BIT_TABLE(L, rejected_header),
1127   { US"rejected_headers", Li_rejected_header },
1128   BIT_TABLE(L, retry_defer),
1129   BIT_TABLE(L, return_path_on_delivery),
1130   BIT_TABLE(L, sender_on_delivery),
1131   BIT_TABLE(L, sender_verify_fail),
1132   BIT_TABLE(L, size_reject),
1133   BIT_TABLE(L, skip_delivery),
1134   BIT_TABLE(L, smtp_confirmation),
1135   BIT_TABLE(L, smtp_connection),
1136   BIT_TABLE(L, smtp_incomplete_transaction),
1137   BIT_TABLE(L, smtp_mailauth),
1138   BIT_TABLE(L, smtp_no_mail),
1139   BIT_TABLE(L, smtp_protocol_error),
1140   BIT_TABLE(L, smtp_syntax_error),
1141   BIT_TABLE(L, subject),
1142   BIT_TABLE(L, tls_certificate_verified),
1143   BIT_TABLE(L, tls_cipher),
1144   BIT_TABLE(L, tls_peerdn),
1145   BIT_TABLE(L, tls_resumption),
1146   BIT_TABLE(L, tls_sni),
1147   BIT_TABLE(L, unknown_in_list),
1148 };
1149 int     log_options_count      = nelem(log_options);
1150
1151 int     log_reject_target      = 0;
1152 unsigned int log_selector[log_selector_size]; /* initialized in main() */
1153 uschar *log_selector_string    = NULL;
1154 FILE   *log_stderr             = NULL;
1155 uschar *login_sender_address   = NULL;
1156 uschar *lookup_dnssec_authenticated = NULL;
1157 int     lookup_open_max        = 25;
1158 uschar *lookup_value           = NULL;
1159
1160 macro_item *macros_user        = NULL;
1161 uschar *mailstore_basename     = NULL;
1162 #ifdef WITH_CONTENT_SCAN
1163 uschar *malware_name           = NULL;  /* Virus Name */
1164 #endif
1165 int     max_received_linelength= 0;
1166 int     max_username_length    = 0;
1167 int     message_age            = 0;
1168 uschar *message_body           = NULL;
1169 uschar *message_body_end       = NULL;
1170 int     message_body_size      = 0;
1171 int     message_body_visible   = 500;
1172 int     message_ended          = END_NOTSTARTED;
1173 uschar *message_headers        = NULL;
1174 uschar *message_id;
1175 uschar *message_id_domain      = NULL;
1176 uschar *message_id_text        = NULL;
1177 uschar  message_id_option[MESSAGE_ID_LENGTH + 3];
1178 uschar *message_id_external;
1179 int     message_linecount      = 0;
1180 int     message_size           = 0;
1181 uschar *message_size_limit     = US"50M";
1182 #ifdef SUPPORT_I18N
1183 int     message_utf8_downconvert = 0;   /* -1 ifneeded; 0 never; 1 always */
1184 #endif
1185 uschar  message_subdir[2]      = { 0, 0 };
1186 uschar *message_reference      = NULL;
1187
1188 /* MIME ACL expandables */
1189 #ifdef WITH_CONTENT_SCAN
1190 int     mime_anomaly_level     = 0;
1191 const uschar *mime_anomaly_text      = NULL;
1192 uschar *mime_boundary          = NULL;
1193 uschar *mime_charset           = NULL;
1194 uschar *mime_content_description = NULL;
1195 uschar *mime_content_disposition = NULL;
1196 uschar *mime_content_id        = NULL;
1197 unsigned int mime_content_size = 0;
1198 uschar *mime_content_transfer_encoding = NULL;
1199 uschar *mime_content_type      = NULL;
1200 uschar *mime_decoded_filename  = NULL;
1201 uschar *mime_filename          = NULL;
1202 int     mime_is_multipart      = 0;
1203 int     mime_is_coverletter    = 0;
1204 int     mime_is_rfc822         = 0;
1205 int     mime_part_count        = -1;
1206 #endif
1207
1208 uid_t  *never_users            = NULL;
1209 uschar *notifier_socket        = US"$spool_directory/" NOTIFIER_SOCKET_NAME ;
1210
1211 const int on                   = 1;     /* for setsockopt */
1212 const int off                  = 0;
1213
1214 uid_t   original_euid;
1215 gid_t   originator_gid;
1216 uschar *originator_login       = NULL;
1217 uschar *originator_name        = NULL;
1218 uid_t   originator_uid;
1219 uschar *override_local_interfaces = NULL;
1220 uschar *override_pid_file_path = NULL;
1221
1222 BOOL    panic_coredump         = FALSE;
1223 pcre2_general_context * pcre_gen_ctx = NULL;
1224 pcre2_compile_context * pcre_gen_cmp_ctx = NULL;
1225 pcre2_match_context * pcre_gen_mtc_ctx = NULL;
1226 pcre2_general_context * pcre_mlc_ctx = NULL;
1227 pcre2_compile_context * pcre_mlc_cmp_ctx = NULL;
1228
1229 uschar *percent_hack_domains   = NULL;
1230 uschar *pid_file_path          = US PID_FILE_PATH
1231                            "\0<--------------Space to patch pid_file_path->";
1232 #ifndef DISABLE_PIPE_CONNECT
1233 uschar *pipe_connect_advertise_hosts = US"*";
1234 #endif
1235 uschar *pipelining_advertise_hosts = US"*";
1236 uschar *primary_hostname       = NULL;
1237 uschar *process_info;
1238 int     process_info_len       = 0;
1239 uschar *process_log_path       = NULL;
1240 const uschar *process_purpose  = US"fresh-exec";
1241
1242 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS) || defined(EXPERIMENTAL_XCLIENT)
1243 uschar *proxy_external_address = NULL;
1244 int     proxy_external_port    = 0;
1245 uschar *proxy_local_address    = NULL;
1246 int     proxy_local_port       = 0;
1247 int     proxy_protocol_timeout = 3;
1248 #endif
1249
1250 uschar *prvscheck_address      = NULL;
1251 uschar *prvscheck_keynum       = NULL;
1252 uschar *prvscheck_result       = NULL;
1253
1254
1255 qrunner *qrunners              = NULL;
1256
1257 const uschar *qualify_domain_recipient = NULL;
1258 uschar *qualify_domain_sender  = NULL;
1259 uschar *queue_domains          = NULL;
1260 int     queue_interval         = -1;
1261 uschar *queue_name             = US"";
1262 uschar *queue_name_dest        = NULL;
1263 uschar *queue_only_file        = NULL;
1264 int     queue_only_load        = -1;
1265 uschar *queue_run_max          = US"5";
1266 pid_t   queue_run_pid          = (pid_t)0;
1267 int     queue_run_pipe         = -1;
1268 unsigned queue_size            = 0;
1269 time_t  queue_size_next        = 0;
1270 uschar *queue_smtp_domains     = NULL;
1271
1272 uint32_t random_seed           = 0;
1273 tree_node *ratelimiters_cmd    = NULL;
1274 tree_node *ratelimiters_conn   = NULL;
1275 tree_node *ratelimiters_mail   = NULL;
1276 uschar *raw_active_hostname    = NULL;
1277 uschar *raw_sender             = NULL;
1278 uschar **raw_recipients        = NULL;
1279 int     raw_recipients_count   = 0;
1280
1281 int     rcpt_count             = 0;
1282 int     rcpt_fail_count        = 0;
1283 int     rcpt_defer_count       = 0;
1284 gid_t   real_gid;
1285 uid_t   real_uid;
1286 int     receive_linecount      = 0;
1287 int     receive_messagecount   = 0;
1288 int     receive_timeout        = 0;
1289 int     received_count         = 0;
1290 uschar *received_for           = NULL;
1291
1292 /*  This is the default text for Received headers generated by Exim. The
1293 date  will be automatically added on the end. */
1294
1295 uschar *received_header_text   = US
1296      "Received: "
1297      "${if def:sender_rcvhost {from $sender_rcvhost\n\t}"
1298        "{${if def:sender_ident {from ${quote_local_part:$sender_ident} }}"
1299          "${if def:sender_helo_name {(helo=$sender_helo_name)\n\t}}}}"
1300      "by $primary_hostname "
1301      "${if def:received_protocol {with $received_protocol }}"
1302 #ifndef DISABLE_TLS
1303      "${if def:tls_in_ver        { ($tls_in_ver)}}"
1304      "${if def:tls_in_cipher_std { tls $tls_in_cipher_std\n\t}}"
1305 #endif
1306      "(Exim $version_number)\n\t"
1307      "${if def:sender_address {(envelope-from <$sender_address>)\n\t}}"
1308      "id $message_exim_id"
1309      "${if def:received_for {\n\tfor $received_for}}"
1310      "\0<---------------Space to patch received_header_text->";
1311
1312 int     received_headers_max   = 30;
1313 uschar *received_protocol      = NULL;
1314 struct timeval received_time   = { 0, 0 };
1315 struct timeval received_time_complete = { 0, 0 };
1316 uschar *recipient_data         = NULL;
1317 uschar *recipient_unqualified_hosts = NULL;
1318 uschar *recipient_verify_failure = NULL;
1319 int     recipients_count       = 0;
1320 recipient_item  *recipients_list = NULL;
1321 int     recipients_list_max    = 0;
1322 int     recipients_max         = 50000;
1323 const pcre2_code *regex_AUTH         = NULL;
1324 const pcre2_code *regex_check_dns_names = NULL;
1325 const pcre2_code *regex_From         = NULL;
1326 const pcre2_code *regex_IGNOREQUOTA  = NULL;
1327 const pcre2_code *regex_PIPELINING   = NULL;
1328 const pcre2_code *regex_SIZE         = NULL;
1329 #ifndef DISABLE_PIPE_CONNECT
1330 const pcre2_code *regex_EARLY_PIPE   = NULL;
1331 #endif
1332 int    regex_cachesize               = 0;
1333 const pcre2_code *regex_ismsgid      = NULL;
1334 const pcre2_code *regex_smtp_code    = NULL;
1335 const uschar *regex_vars[REGEX_VARS] = { NULL };
1336 #ifdef WHITELIST_D_MACROS
1337 const pcre2_code *regex_whitelisted_macro = NULL;
1338 #endif
1339 #ifdef WITH_CONTENT_SCAN
1340 uschar *regex_match_string     = NULL;
1341 #endif
1342 int     remote_delivery_count  = 0;
1343 int     remote_max_parallel    = 4;
1344 uschar *remote_sort_domains    = NULL;
1345 int     retry_data_expire      = 7*24*60*60;
1346 int     retry_interval_max     = 24*60*60;
1347 int     retry_maximum_timeout  = 0;        /* set from retry config */
1348 retry_config  *retries         = NULL;
1349 uschar *return_path            = NULL;
1350 int     rewrite_existflags     = 0;
1351 uschar *rfc1413_hosts          = US"@[]";
1352 int     rfc1413_query_timeout  = 0;
1353 uid_t   root_gid               = ROOT_GID;
1354 uid_t   root_uid               = ROOT_UID;
1355
1356 router_instance  *routers  = NULL;
1357 router_instance  router_defaults = {
1358     .next =                     NULL,
1359     .name =                     NULL,
1360     .info =                     NULL,
1361     .options_block =            NULL,
1362     .driver_name =              NULL,
1363
1364     .address_data =             NULL,
1365 #ifdef EXPERIMENTAL_BRIGHTMAIL
1366     .bmi_rule =                 NULL,
1367 #endif
1368     .cannot_route_message =     NULL,
1369     .condition =                NULL,
1370     .current_directory =        NULL,
1371     .debug_string =             NULL,
1372     .domains =                  NULL,
1373     .errors_to =                NULL,
1374     .expand_gid =               NULL,
1375     .expand_uid =               NULL,
1376     .expand_more =              NULL,
1377     .expand_unseen =            NULL,
1378     .extra_headers =            NULL,
1379     .fallback_hosts =           NULL,
1380     .home_directory =           NULL,
1381     .ignore_target_hosts =      NULL,
1382     .local_parts =              NULL,
1383     .pass_router_name =         NULL,
1384     .prefix =                   NULL,
1385     .redirect_router_name =     NULL,
1386     .remove_headers =           NULL,
1387     .require_files =            NULL,
1388     .router_home_directory =    NULL,
1389     .self =                     US"freeze",
1390     .senders =                  NULL,
1391     .suffix =                   NULL,
1392     .translate_ip_address =     NULL,
1393     .transport_name =           NULL,
1394
1395     .address_test =             TRUE,
1396 #ifdef EXPERIMENTAL_BRIGHTMAIL
1397     .bmi_deliver_alternate =    FALSE,
1398     .bmi_deliver_default =      FALSE,
1399     .bmi_dont_deliver =         FALSE,
1400 #endif
1401     .expn =                     TRUE,
1402     .caseful_local_part =       FALSE,
1403     .check_local_user =         FALSE,
1404     .disable_logging =          FALSE,
1405     .fail_verify_recipient =    FALSE,
1406     .fail_verify_sender =       FALSE,
1407     .gid_set =                  FALSE,
1408     .initgroups =               FALSE,
1409     .log_as_local =             TRUE_UNSET,
1410     .more =                     TRUE,
1411     .pass_on_timeout =          FALSE,
1412     .prefix_optional =          FALSE,
1413     .repeat_use =               TRUE,
1414     .retry_use_local_part =     TRUE_UNSET,
1415     .same_domain_copy_routing = FALSE,
1416     .self_rewrite =             FALSE,
1417     .set =                      NULL,
1418     .suffix_optional =          FALSE,
1419     .verify_only =              FALSE,
1420     .verify_recipient =         TRUE,
1421     .verify_sender =            TRUE,
1422     .uid_set =                  FALSE,
1423     .unseen =                   FALSE,
1424     .dsn_lasthop =              FALSE,
1425
1426     .self_code =                self_freeze,
1427     .uid =                      (uid_t)(-1),
1428     .gid =                      (gid_t)(-1),
1429
1430     .fallback_hostlist =        NULL,
1431     .transport =                NULL,
1432     .pass_router =              NULL,
1433     .redirect_router =          NULL,
1434
1435     .dnssec =                   { .request= US"*", .require=NULL },
1436 };
1437
1438 uschar *router_name            = NULL;
1439 tree_node *router_var          = NULL;
1440
1441 ip_address_item *running_interfaces = NULL;
1442
1443 /* This is a weird one. The following string gets patched in the binary by the
1444 script that sets up a copy of Exim for running in the test harness. It seems
1445 that compilers are now clever, and share constant strings if they can.
1446 Elsewhere in Exim the string "<" is used. The compiler optimization seems to
1447 make use of the end of this string in order to save space. So the patching then
1448 wrecks this. We defeat this optimization by adding some additional characters
1449 onto the end of the string. */
1450
1451 uschar *running_status         = US">>>running<<<" "\0EXTRA";
1452
1453 int     runrc                  = 0;
1454
1455 uschar *search_error_message   = NULL;
1456 uschar *self_hostname          = NULL;
1457 uschar *sender_address         = NULL;
1458 unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32];
1459 uschar *sender_address_data    = NULL;
1460 uschar *sender_address_unrewritten = NULL;
1461 uschar *sender_data            = NULL;
1462 unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32];
1463 uschar *sender_fullhost        = NULL;
1464 uschar *sender_helo_name       = NULL;
1465 uschar **sender_host_aliases   = &no_aliases;
1466 uschar *sender_host_address    = NULL;
1467 uschar *sender_host_authenticated = NULL;
1468 uschar *sender_host_auth_pubname  = NULL;
1469 unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32];
1470 uschar *sender_host_name       = NULL;
1471 int     sender_host_port       = 0;
1472 uschar *sender_ident           = NULL;
1473 uschar *sender_rate            = NULL;
1474 uschar *sender_rate_limit      = NULL;
1475 uschar *sender_rate_period     = NULL;
1476 uschar *sender_rcvhost         = NULL;
1477 uschar *sender_unqualified_hosts = NULL;
1478 uschar *sender_verify_failure = NULL;
1479 address_item *sender_verified_list  = NULL;
1480 address_item *sender_verified_failed = NULL;
1481 int     sender_verified_rc     = -1;
1482 uschar *sending_ip_address     = NULL;
1483 int     sending_port           = -1;
1484 SIGNAL_BOOL sigalrm_seen       = FALSE;
1485 const uschar *sigalarm_setter  = NULL;
1486 uschar **sighup_argv           = NULL;
1487 int     slow_lookup_log        = 0;     /* millisecs, zero disables */
1488 int     smtp_accept_count      = 0;
1489 int     smtp_accept_max        = 20;
1490 int     smtp_accept_max_nonmail= 10;
1491 uschar *smtp_accept_max_nonmail_hosts = US"*";
1492 uschar *smtp_accept_max_per_connection = US"1000";
1493 uschar *smtp_accept_max_per_host = NULL;
1494 int     smtp_accept_queue      = 0;
1495 int     smtp_accept_queue_per_connection = 10;
1496 int     smtp_accept_reserve    = 0;
1497 uschar *smtp_active_hostname   = NULL;
1498 int     smtp_backlog_monitor   = 0;
1499 uschar *smtp_banner            = US"$smtp_active_hostname ESMTP "
1500                              "Exim $version_number $tod_full"
1501                              "\0<---------------Space to patch smtp_banner->";
1502 int     smtp_ch_index          = 0;
1503 uschar *smtp_cmd_argument      = NULL;
1504 uschar *smtp_cmd_buffer        = NULL;
1505 struct timeval smtp_connection_start  = {0,0};
1506 uschar  smtp_connection_had[SMTP_HBUFF_SIZE];
1507 int     smtp_connect_backlog   = 20;
1508 double  smtp_delay_mail        = 0.0;
1509 double  smtp_delay_rcpt        = 0.0;
1510 FILE   *smtp_in                = NULL;
1511 int     smtp_listen_backlog    = 0;
1512 int     smtp_load_reserve      = -1;
1513 int     smtp_mailcmd_count     = 0;
1514 int     smtp_mailcmd_max       = -1;
1515 FILE   *smtp_out               = NULL;
1516 uschar *smtp_etrn_command      = NULL;
1517 int     smtp_max_synprot_errors= 3;
1518 int     smtp_max_unknown_commands = 3;
1519 uschar *smtp_notquit_reason    = NULL;
1520 unsigned smtp_peer_options     = 0;
1521 unsigned smtp_peer_options_wrap= 0;
1522 uschar *smtp_ratelimit_hosts   = NULL;
1523 uschar *smtp_ratelimit_mail    = NULL;
1524 uschar *smtp_ratelimit_rcpt    = NULL;
1525 uschar *smtp_read_error        = US"";
1526 int     smtp_receive_timeout   = 5*60;
1527 uschar *smtp_receive_timeout_s = NULL;
1528 uschar *smtp_reserve_hosts     = NULL;
1529 int     smtp_rlm_base          = 0;
1530 double  smtp_rlm_factor        = 0.0;
1531 int     smtp_rlm_limit         = 0;
1532 int     smtp_rlm_threshold     = INT_MAX;
1533 int     smtp_rlr_base          = 0;
1534 double  smtp_rlr_factor        = 0.0;
1535 int     smtp_rlr_limit         = 0;
1536 int     smtp_rlr_threshold     = INT_MAX;
1537 #ifdef SUPPORT_I18N
1538 uschar *smtputf8_advertise_hosts = US"*";       /* overridden under test-harness */
1539 #endif
1540
1541 #ifdef WITH_CONTENT_SCAN
1542 uschar *spamd_address          = US"127.0.0.1 783";
1543 uschar *spam_bar               = NULL;
1544 uschar *spam_report            = NULL;
1545 uschar *spam_action            = NULL;
1546 uschar *spam_score             = NULL;
1547 uschar *spam_score_int         = NULL;
1548 #endif
1549 #ifdef SUPPORT_SPF
1550 uschar *spf_guess              = US"v=spf1 a/24 mx/24 ptr ?all";
1551 uschar *spf_header_comment     = NULL;
1552 uschar *spf_received           = NULL;
1553 uschar *spf_result             = NULL;
1554 uschar *spf_smtp_comment       = NULL;
1555 uschar *spf_smtp_comment_template
1556                     /* Used to be: "Please%_see%_http://www.open-spf.org/Why?id=%{S}&ip=%{C}&receiver=%{R}" */
1557                                = US"Please%_see%_http://www.open-spf.org/Why";
1558
1559 #endif
1560
1561 FILE   *spool_data_file        = NULL;
1562 uschar *spool_directory        = US SPOOL_DIRECTORY
1563                            "\0<--------------Space to patch spool_directory->";
1564 #ifdef SUPPORT_SRS
1565 uschar *srs_recipient          = NULL;
1566 #endif
1567 int     string_datestamp_offset= -1;
1568 int     string_datestamp_length= 0;
1569 int     string_datestamp_type  = -1;
1570 const uschar *submission_domain = NULL;
1571 const uschar *submission_name  = NULL;
1572 int     syslog_facility        = LOG_MAIL;
1573 uschar *syslog_processname     = US"exim";
1574 uschar *system_filter          = NULL;
1575
1576 uschar *system_filter_directory_transport = NULL;
1577 uschar *system_filter_file_transport = NULL;
1578 uschar *system_filter_pipe_transport = NULL;
1579 uschar *system_filter_reply_transport = NULL;
1580
1581 gid_t   system_filter_gid      = 0;
1582 uid_t   system_filter_uid      = (uid_t)-1;
1583
1584 blob    tcp_fastopen_nodata    = { .data = NULL, .len = 0 };
1585 tfo_state_t tcp_out_fastopen   = TFO_NOT_USED;
1586 #ifdef USE_TCP_WRAPPERS
1587 uschar *tcp_wrappers_daemon_name = US TCP_WRAPPERS_DAEMON_NAME;
1588 #endif
1589 int     test_harness_load_avg  = 0;
1590 int     thismessage_size_limit = 0;
1591 int     timeout_frozen_after   = 0;
1592 #ifdef MEASURE_TIMING
1593 struct timeval timestamp_startup;
1594 #endif
1595
1596 transport_instance  *transports = NULL;
1597
1598 transport_instance  transport_defaults = {
1599     /* All non-mentioned elements zero/NULL/FALSE */
1600     .batch_max =                1,
1601     .multi_domain =             TRUE,
1602     .max_addresses =            US"100",
1603     .connection_max_messages =  500,
1604     .uid =                      (uid_t)(-1),
1605     .gid =                      (gid_t)(-1),
1606     .filter_timeout =           300,
1607     .retry_use_local_part =     TRUE_UNSET,     /* retry_use_local_part: BOOL, but set neither
1608                                                  1 nor 0 so can detect unset */
1609 };
1610
1611 int     transport_count;
1612 uschar *transport_name          = NULL;
1613 int     transport_newlines;
1614 const uschar **transport_filter_argv  = NULL;
1615 int     transport_filter_timeout;
1616 int     transport_write_timeout= 0;
1617
1618 tree_node  *tree_dns_fails     = NULL;
1619 tree_node  *tree_duplicates    = NULL;
1620 tree_node  *tree_nonrecipients = NULL;
1621 tree_node  *tree_unusable      = NULL;
1622
1623 gid_t  *trusted_groups         = NULL;
1624 uid_t  *trusted_users          = NULL;
1625 uschar *timezone_string        = US TIMEZONE_DEFAULT;
1626
1627 uschar *unknown_login          = NULL;
1628 uschar *unknown_username       = NULL;
1629 uschar *untrusted_set_sender   = NULL;
1630
1631 /*  A regex for matching a "From_" line in an incoming message, in the form
1632
1633     From ph10 Fri Jan  5 12:35 GMT 1996
1634
1635 which  the "mail" commands send to the MTA (undocumented, of course), or in
1636 the  form
1637
1638     From ph10 Fri, 7 Jan 97 14:00:00 GMT
1639
1640 which  is apparently used by some UUCPs, despite it not being in RFC 976.
1641 Because  of variations in time formats, just match up to the minutes. That
1642 should  be sufficient. Examples have been seen of time fields like 12:1:03,
1643 so  just require one digit for hours and minutes. The weekday is also absent
1644 in  some forms. */
1645
1646 uschar *uucp_from_pattern      = US
1647    "^From\\s+(\\S+)\\s+(?:[a-zA-Z]{3},?\\s+)?"    /* Common start */
1648    "(?:"                                          /* Non-extracting bracket */
1649    "[a-zA-Z]{3}\\s+\\d?\\d|"                      /* First form */
1650    "\\d?\\d\\s+[a-zA-Z]{3}\\s+\\d\\d(?:\\d\\d)?"  /* Second form */
1651    ")"                                            /* End alternation */
1652    "\\s+\\d\\d?:\\d\\d?";                         /* Start of time */
1653
1654 uschar *uucp_from_sender       = US"$1";
1655
1656 uschar *verify_mode            = NULL;
1657 uschar *version_copyright      =
1658  US"Copyright (c) University of Cambridge, 1995 - 2018\n"
1659    "(c) The Exim Maintainers and contributors in ACKNOWLEDGMENTS file, 2007 - 2022";
1660 uschar *version_date           = US"?";
1661 uschar *version_cnumber        = US"????";
1662 uschar *version_string         = US"?";
1663
1664 uschar *warn_message_file      = NULL;
1665 int     warning_count          = 0;
1666 const uschar *warnmsg_delay    = NULL;
1667 const uschar *warnmsg_recipients = NULL;
1668
1669 /*  End of globals.c */