30d5eb02919e69efe3f3d82622fa708acbb6e86b
[exim.git] / src / src / globals.c
1 /*************************************************
2 *     Exim - an Internet mail transport agent    *
3 *************************************************/
4
5 /* Copyright (c) University of Cambridge 1995 - 2017 */
6 /* See the file NOTICE for conditions of use and distribution. */
7
8 /* All the global variables are defined together in this one module, so
9 that they are easy to find. */
10
11 #include "exim.h"
12
13
14 /* Generic options for auths, all of which live inside auth_instance
15 data blocks and hence have the opt_public flag set. */
16
17 optionlist optionlist_auths[] = {
18   { "client_condition", opt_stringptr | opt_public,
19                  (void *)(offsetof(auth_instance, client_condition)) },
20   { "client_set_id", opt_stringptr | opt_public,
21                  (void *)(offsetof(auth_instance, set_client_id)) },
22   { "driver",        opt_stringptr | opt_public,
23                  (void *)(offsetof(auth_instance, driver_name)) },
24   { "public_name",   opt_stringptr | opt_public,
25                  (void *)(offsetof(auth_instance, public_name)) },
26   { "server_advertise_condition", opt_stringptr | opt_public,
27                  (void *)(offsetof(auth_instance, advertise_condition))},
28   { "server_condition", opt_stringptr | opt_public,
29                  (void *)(offsetof(auth_instance, server_condition)) },
30   { "server_debug_print", opt_stringptr | opt_public,
31                  (void *)(offsetof(auth_instance, server_debug_string)) },
32   { "server_mail_auth_condition", opt_stringptr | opt_public,
33                  (void *)(offsetof(auth_instance, mail_auth_condition)) },
34   { "server_set_id", opt_stringptr | opt_public,
35                  (void *)(offsetof(auth_instance, set_id)) }
36 };
37
38 int     optionlist_auths_size = nelem(optionlist_auths);
39
40 /* An empty host aliases list. */
41
42 uschar *no_aliases             = NULL;
43
44
45 /* For comments on these variables, see globals.h. I'm too idle to
46 duplicate them here... */
47
48 #ifdef EXIM_PERL
49 uschar *opt_perl_startup       = NULL;
50 BOOL    opt_perl_at_start      = FALSE;
51 BOOL    opt_perl_started       = FALSE;
52 BOOL    opt_perl_taintmode     = FALSE;
53 #endif
54
55 #ifdef EXPAND_DLFUNC
56 tree_node *dlobj_anchor        = NULL;
57 #endif
58
59 #ifdef LOOKUP_IBASE
60 uschar *ibase_servers          = NULL;
61 #endif
62
63 #ifdef LOOKUP_LDAP
64 uschar *eldap_ca_cert_dir      = NULL;
65 uschar *eldap_ca_cert_file     = NULL;
66 uschar *eldap_cert_file        = NULL;
67 uschar *eldap_cert_key         = NULL;
68 uschar *eldap_cipher_suite     = NULL;
69 uschar *eldap_default_servers  = NULL;
70 uschar *eldap_require_cert     = NULL;
71 int     eldap_version          = -1;
72 BOOL    eldap_start_tls        = FALSE;
73 #endif
74
75 #ifdef LOOKUP_MYSQL
76 uschar *mysql_servers          = NULL;
77 #endif
78
79 #ifdef LOOKUP_ORACLE
80 uschar *oracle_servers         = NULL;
81 #endif
82
83 #ifdef LOOKUP_PGSQL
84 uschar *pgsql_servers          = NULL;
85 #endif
86
87 #ifdef LOOKUP_REDIS
88 uschar *redis_servers          = NULL;
89 #endif
90
91 #ifdef LOOKUP_SQLITE
92 int     sqlite_lock_timeout    = 5;
93 #endif
94
95 #ifdef SUPPORT_MOVE_FROZEN_MESSAGES
96 BOOL    move_frozen_messages   = FALSE;
97 #endif
98
99 /* These variables are outside the #ifdef because it keeps the code less
100 cluttered in several places (e.g. during logging) if we can always refer to
101 them. Also, the tls_ variables are now always visible. */
102
103 tls_support tls_in = {
104  .active =              -1,
105  .bits =                0,
106  .certificate_verified = FALSE,
107 #ifdef EXPERIMENTAL_DANE
108  .dane_verified =       FALSE,
109  .tlsa_usage =          0,
110 #endif
111  .cipher =              NULL,
112  .on_connect =          FALSE,
113  .on_connect_ports =    NULL,
114  .ourcert =             NULL,
115  .peercert =            NULL,
116  .peerdn =              NULL,
117  .sni =                 NULL,
118  .ocsp =                OCSP_NOT_REQ
119 };
120 tls_support tls_out = {
121  .active =              -1,
122  .bits =                0,
123  .certificate_verified = FALSE,
124 #ifdef EXPERIMENTAL_DANE
125  .dane_verified =       FALSE,
126  .tlsa_usage =          0,
127 #endif
128  .cipher =              NULL,
129  .on_connect =          FALSE,
130  .on_connect_ports =    NULL,
131  .ourcert =             NULL,
132  .peercert =            NULL,
133  .peerdn =              NULL,
134  .sni =                 NULL,
135  .ocsp =                OCSP_NOT_REQ
136 };
137
138 uschar *dsn_envid              = NULL;
139 int     dsn_ret                = 0;
140 const pcre  *regex_DSN         = NULL;
141 uschar *dsn_advertise_hosts    = NULL;
142
143 #ifdef SUPPORT_TLS
144 BOOL    gnutls_compat_mode     = FALSE;
145 BOOL    gnutls_allow_auto_pkcs11 = FALSE;
146 uschar *openssl_options        = NULL;
147 const pcre *regex_STARTTLS     = NULL;
148 uschar *tls_advertise_hosts    = US"*";
149 uschar *tls_certificate        = NULL;
150 uschar *tls_crl                = NULL;
151 /* This default matches NSS DH_MAX_P_BITS value at current time (2012), because
152 that's the interop problem which has been observed: GnuTLS suggesting a higher
153 bit-count as "NORMAL" (2432) and Thunderbird dropping connection. */
154 int     tls_dh_max_bits        = 2236;
155 uschar *tls_dhparam            = NULL;
156 uschar *tls_eccurve            = US"auto";
157 # ifndef DISABLE_OCSP
158 uschar *tls_ocsp_file          = NULL;
159 # endif
160 uschar *tls_privatekey         = NULL;
161 BOOL    tls_remember_esmtp     = FALSE;
162 uschar *tls_require_ciphers    = NULL;
163 uschar *tls_try_verify_hosts   = NULL;
164 uschar *tls_verify_certificates= US"system";
165 uschar *tls_verify_hosts       = NULL;
166 #else   /*!SUPPORT_TLS*/
167 uschar *tls_advertise_hosts    = NULL;
168 #endif
169
170 #ifndef DISABLE_PRDR
171 /* Per Recipient Data Response variables */
172 BOOL    prdr_enable            = FALSE;
173 BOOL    prdr_requested         = FALSE;
174 const pcre *regex_PRDR         = NULL;
175 #endif
176
177 #ifdef SUPPORT_I18N
178 const pcre *regex_UTF8         = NULL;
179 #endif
180
181 /* Input-reading functions for messages, so we can use special ones for
182 incoming TCP/IP. The defaults use stdin. We never need these for any
183 stand-alone tests. */
184
185 #if !defined(STAND_ALONE) && !defined(MACRO_PREDEF)
186 int (*lwr_receive_getc)(unsigned) = stdin_getc;
187 uschar * (*lwr_receive_getbuf)(unsigned *) = NULL;
188 int (*lwr_receive_ungetc)(int) = stdin_ungetc;
189 int (*receive_getc)(unsigned)  = stdin_getc;
190 uschar * (*receive_getbuf)(unsigned *)  = NULL;
191 void (*receive_get_cache)(void)= NULL;
192 int (*receive_ungetc)(int)     = stdin_ungetc;
193 int (*receive_feof)(void)      = stdin_feof;
194 int (*receive_ferror)(void)    = stdin_ferror;
195 BOOL (*receive_smtp_buffered)(void) = NULL;   /* Only used for SMTP */
196 #endif
197
198
199 /* List of per-address expansion variables for clearing and saving/restoring
200 when verifying one address while routing/verifying another. We have to have
201 the size explicit, because it is referenced from more than one module. */
202
203 const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT] = {
204   CUSS &deliver_address_data,
205   CUSS &deliver_domain,
206   CUSS &deliver_domain_data,
207   CUSS &deliver_domain_orig,
208   CUSS &deliver_domain_parent,
209   CUSS &deliver_localpart,
210   CUSS &deliver_localpart_data,
211   CUSS &deliver_localpart_orig,
212   CUSS &deliver_localpart_parent,
213   CUSS &deliver_localpart_prefix,
214   CUSS &deliver_localpart_suffix,
215   CUSS (uschar **)(&deliver_recipients),
216   CUSS &deliver_host,
217   CUSS &deliver_home,
218   CUSS &address_file,
219   CUSS &address_pipe,
220   CUSS &self_hostname,
221   NULL };
222
223 int address_expansions_count = sizeof(address_expansions)/sizeof(uschar **);
224
225 /* General global variables */
226
227 header_line *acl_added_headers = NULL;
228 tree_node *acl_anchor          = NULL;
229 uschar *acl_arg[9]             = {NULL, NULL, NULL, NULL, NULL,
230                                   NULL, NULL, NULL, NULL};
231 int     acl_narg               = 0;
232
233 int     acl_level              = 0;
234
235 uschar *acl_not_smtp           = NULL;
236 #ifdef WITH_CONTENT_SCAN
237 uschar *acl_not_smtp_mime      = NULL;
238 #endif
239 uschar *acl_not_smtp_start     = NULL;
240 uschar *acl_removed_headers    = NULL;
241 uschar *acl_smtp_auth          = NULL;
242 uschar *acl_smtp_connect       = NULL;
243 uschar *acl_smtp_data          = NULL;
244 #ifndef DISABLE_PRDR
245 uschar *acl_smtp_data_prdr     = US"accept";
246 #endif
247 #ifndef DISABLE_DKIM
248 uschar *acl_smtp_dkim          = NULL;
249 #endif
250 uschar *acl_smtp_etrn          = NULL;
251 uschar *acl_smtp_expn          = NULL;
252 uschar *acl_smtp_helo          = NULL;
253 uschar *acl_smtp_mail          = NULL;
254 uschar *acl_smtp_mailauth      = NULL;
255 #ifdef WITH_CONTENT_SCAN
256 uschar *acl_smtp_mime          = NULL;
257 #endif
258 uschar *acl_smtp_notquit       = NULL;
259 uschar *acl_smtp_predata       = NULL;
260 uschar *acl_smtp_quit          = NULL;
261 uschar *acl_smtp_rcpt          = NULL;
262 uschar *acl_smtp_starttls      = NULL;
263 uschar *acl_smtp_vrfy          = NULL;
264
265 BOOL    acl_temp_details       = FALSE;
266 tree_node *acl_var_c           = NULL;
267 tree_node *acl_var_m           = NULL;
268 uschar *acl_verify_message     = NULL;
269 string_item *acl_warn_logged   = NULL;
270
271 /* Names of SMTP places for use in ACL error messages, and corresponding SMTP
272 error codes - keep in step with definitions of ACL_WHERE_xxxx in macros.h. */
273
274 uschar *acl_wherenames[]       = { US"RCPT",
275                                    US"MAIL",
276                                    US"PREDATA",
277                                    US"MIME",
278                                    US"DKIM",
279                                    US"DATA",
280 #ifndef DISABLE_PRDR
281                                    US"PRDR",
282 #endif
283                                    US"non-SMTP",
284                                    US"AUTH",
285                                    US"connection",
286                                    US"ETRN",
287                                    US"EXPN",
288                                    US"EHLO or HELO",
289                                    US"MAILAUTH",
290                                    US"non-SMTP-start",
291                                    US"NOTQUIT",
292                                    US"QUIT",
293                                    US"STARTTLS",
294                                    US"VRFY",
295                                    US"delivery",
296                                    US"unknown"
297                                  };
298
299 uschar *acl_wherecodes[]       = { US"550",     /* RCPT */
300                                    US"550",     /* MAIL */
301                                    US"550",     /* PREDATA */
302                                    US"550",     /* MIME */
303                                    US"550",     /* DKIM */
304                                    US"550",     /* DATA */
305 #ifndef DISABLE_PRDR
306                                    US"550",    /* RCPT PRDR */
307 #endif
308                                    US"0",       /* not SMTP; not relevant */
309                                    US"503",     /* AUTH */
310                                    US"550",     /* connect */
311                                    US"458",     /* ETRN */
312                                    US"550",     /* EXPN */
313                                    US"550",     /* HELO/EHLO */
314                                    US"0",       /* MAILAUTH; not relevant */
315                                    US"0",       /* not SMTP; not relevant */
316                                    US"0",       /* NOTQUIT; not relevant */
317                                    US"0",       /* QUIT; not relevant */
318                                    US"550",     /* STARTTLS */
319                                    US"252",     /* VRFY */
320                                    US"0",       /* delivery; not relevant */
321                                    US"0"        /* unknown; not relevant */
322                                  };
323
324 BOOL    active_local_from_check = FALSE;
325 BOOL    active_local_sender_retain = FALSE;
326 BOOL    accept_8bitmime        = TRUE; /* deliberately not RFC compliant */
327 uschar *add_environment        = NULL;
328 address_item  *addr_duplicate  = NULL;
329
330 address_item address_defaults = {
331   .next =               NULL,
332   .parent =             NULL,
333   .first =              NULL,
334   .dupof =              NULL,
335   .start_router =       NULL,
336   .router =             NULL,
337   .transport =          NULL,
338   .host_list =          NULL,
339   .host_used =          NULL,
340   .fallback_hosts =     NULL,
341   .reply =              NULL,
342   .retries =            NULL,
343   .address =            NULL,
344   .unique =             NULL,
345   .cc_local_part =      NULL,
346   .lc_local_part =      NULL,
347   .local_part =         NULL,
348   .prefix =             NULL,
349   .suffix =             NULL,
350   .domain =             NULL,
351   .address_retry_key =  NULL,
352   .domain_retry_key =   NULL,
353   .current_dir =        NULL,
354   .home_dir =           NULL,
355   .message =            NULL,
356   .user_message =       NULL,
357   .onetime_parent =     NULL,
358   .pipe_expandn =       NULL,
359   .return_filename =    NULL,
360   .self_hostname =      NULL,
361   .shadow_message =     NULL,
362 #ifdef SUPPORT_TLS
363   .cipher =             NULL,
364   .ourcert =            NULL,
365   .peercert =           NULL,
366   .peerdn =             NULL,
367   .ocsp =               OCSP_NOT_REQ,
368 #endif
369 #ifdef EXPERIMENTAL_DSN_INFO
370   .smtp_greeting =      NULL,
371   .helo_response =      NULL,
372 #endif
373   .authenticator =      NULL,
374   .auth_id =            NULL,
375   .auth_sndr =          NULL,
376   .dsn_orcpt =          NULL,
377   .dsn_flags =          0,
378   .dsn_aware =          0,
379   .uid =                (uid_t)(-1),
380   .gid =                (gid_t)(-1),
381   .flags =              { 0 },
382   .domain_cache =       { 0 },                /* domain_cache - any larger array should be zeroed */
383   .localpart_cache =    { 0 },                /* localpart_cache - ditto */
384   .mode =               -1,
385   .more_errno =         0,
386   .delivery_usec =      0,
387   .basic_errno =        ERRNO_UNKNOWNERROR,
388   .child_count =        0,
389   .return_file =        -1,
390   .special_action =     SPECIAL_NONE,
391   .transport_return =   DEFER,
392   .prop = {                                     /* fields that are propagated to children */
393     .address_data =     NULL,
394     .domain_data =      NULL,
395     .localpart_data =   NULL,
396     .errors_address =   NULL,
397     .extra_headers =    NULL,
398     .remove_headers =   NULL,
399 #ifdef EXPERIMENTAL_SRS
400     .srs_sender =       NULL,
401 #endif
402     .ignore_error =     FALSE,
403 #ifdef SUPPORT_I18N
404     .utf8_msg =         FALSE,
405     .utf8_downcvt =     FALSE,
406     .utf8_downcvt_maybe = FALSE
407 #endif
408   }
409 };
410
411 uschar *address_file           = NULL;
412 uschar *address_pipe           = NULL;
413 BOOL    address_test_mode      = FALSE;
414 tree_node *addresslist_anchor  = NULL;
415 int     addresslist_count      = 0;
416 gid_t  *admin_groups           = NULL;
417 BOOL    admin_user             = FALSE;
418 BOOL    allow_auth_unadvertised= FALSE;
419 BOOL    allow_domain_literals  = FALSE;
420 BOOL    allow_mx_to_ip         = FALSE;
421 BOOL    allow_unqualified_recipient = TRUE;    /* For local messages */
422 BOOL    allow_unqualified_sender = TRUE;       /* Reset for SMTP */
423 BOOL    allow_utf8_domains     = FALSE;
424 uschar *authenticated_fail_id  = NULL;
425 uschar *authenticated_id       = NULL;
426 uschar *authenticated_sender   = NULL;
427 BOOL    authentication_failed  = FALSE;
428 auth_instance  *auths          = NULL;
429 uschar *auth_advertise_hosts   = US"*";
430 auth_instance auth_defaults    = {
431     .next =             NULL,
432     .name =             NULL,
433     .info =             NULL,
434     .options_block =    NULL,
435     .driver_name =      NULL,
436     .advertise_condition = NULL,
437     .client_condition = NULL,
438     .public_name =      NULL,
439     .set_id =           NULL,
440     .set_client_id =    NULL,
441     .mail_auth_condition = NULL,
442     .server_debug_string = NULL,
443     .server_condition = NULL,
444     .client =           FALSE,
445     .server =           FALSE,
446     .advertised =       FALSE
447 };
448
449 uschar *auth_defer_msg         = US"reason not recorded";
450 uschar *auth_defer_user_msg    = US"";
451 uschar *auth_vars[AUTH_VARS];
452 int     auto_thaw              = 0;
453 #ifdef WITH_CONTENT_SCAN
454 BOOL    av_failed              = FALSE;
455 uschar *av_scanner             = US"sophie:/var/run/sophie";  /* AV scanner */
456 #endif
457
458 BOOL    background_daemon      = TRUE;
459
460 #if BASE_62 == 62
461 uschar *base62_chars=
462     US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz";
463 #else
464 uschar *base62_chars= US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ";
465 #endif
466
467 uschar *bi_command             = NULL;
468 uschar *big_buffer             = NULL;
469 int     big_buffer_size        = BIG_BUFFER_SIZE;
470 #ifdef EXPERIMENTAL_BRIGHTMAIL
471 uschar *bmi_alt_location       = NULL;
472 uschar *bmi_base64_tracker_verdict = NULL;
473 uschar *bmi_base64_verdict     = NULL;
474 uschar *bmi_config_file        = US"/opt/brightmail/etc/brightmail.cfg";
475 int     bmi_deliver            = 1;
476 int     bmi_run                = 0;
477 uschar *bmi_verdicts           = NULL;
478 #endif
479 int     bsmtp_transaction_linecount = 0;
480 int     body_8bitmime          = 0;
481 int     body_linecount         = 0;
482 int     body_zerocount         = 0;
483 uschar *bounce_message_file    = NULL;
484 uschar *bounce_message_text    = NULL;
485 uschar *bounce_recipient       = NULL;
486 BOOL    bounce_return_body     = TRUE;
487 int     bounce_return_linesize_limit = 998;
488 BOOL    bounce_return_message  = TRUE;
489 int     bounce_return_size_limit = 100*1024;
490 uschar *bounce_sender_authentication = NULL;
491
492 uschar *callout_address        = NULL;
493 int     callout_cache_domain_positive_expire = 7*24*60*60;
494 int     callout_cache_domain_negative_expire = 3*60*60;
495 int     callout_cache_positive_expire = 24*60*60;
496 int     callout_cache_negative_expire = 2*60*60;
497 uschar *callout_random_local_part = US"$primary_hostname-$tod_epoch-testing";
498 uschar *check_dns_names_pattern= US"(?i)^(?>(?(1)\\.|())[^\\W](?>[a-z0-9/_-]*[^\\W])?)+(\\.?)$";
499 int     check_log_inodes       = 100;
500 int     check_log_space        = 10*1024;       /* 10K Kbyte == 10MB */
501 BOOL    check_rfc2047_length   = TRUE;
502 int     check_spool_inodes     = 100;
503 int     check_spool_space      = 10*1024;       /* 10K Kbyte == 10MB */
504
505 uschar *chunking_advertise_hosts = US"*";
506 unsigned chunking_datasize     = 0;
507 unsigned chunking_data_left    = 0;
508 BOOL    chunking_offered       = FALSE;
509 chunking_state_t chunking_state= CHUNKING_NOT_OFFERED;
510 const pcre *regex_CHUNKING     = NULL;
511
512 uschar *client_authenticator   = NULL;
513 uschar *client_authenticated_id = NULL;
514 uschar *client_authenticated_sender = NULL;
515 int     clmacro_count          = 0;
516 uschar *clmacros[MAX_CLMACROS];
517 BOOL    commandline_checks_require_admin = FALSE;
518 BOOL    config_changed         = FALSE;
519 FILE   *config_file            = NULL;
520 const uschar *config_filename  = NULL;
521 int     config_lineno          = 0;
522 #ifdef CONFIGURE_GROUP
523 gid_t   config_gid             = CONFIGURE_GROUP;
524 #else
525 gid_t   config_gid             = 0;
526 #endif
527 uschar *config_main_filelist   = US CONFIGURE_FILE
528                          "\0<-----------Space to patch configure_filename->";
529 uschar *config_main_filename   = NULL;
530 uschar *config_main_directory  = NULL;
531
532 #ifdef CONFIGURE_OWNER
533 uid_t   config_uid             = CONFIGURE_OWNER;
534 #else
535 uid_t   config_uid             = 0;
536 #endif
537
538 int     connection_max_messages= -1;
539 uschar *continue_proxy_cipher  = NULL;
540 uschar *continue_hostname      = NULL;
541 uschar *continue_host_address  = NULL;
542 BOOL    continue_more          = FALSE;
543 int     continue_sequence      = 1;
544 uschar *continue_transport     = NULL;
545
546 uschar *csa_status             = NULL;
547 cut_t   cutthrough = {
548   .callout_hold_only =  FALSE,                          /* verify-only: normal delivery */
549   .delivery =           FALSE,                          /* when to attempt */
550   .defer_pass =         FALSE,                          /* on defer: spool locally */
551   .is_tls =             FALSE,                          /* not a TLS conn yet */
552   .fd =                 -1,                             /* open connection */
553   .nrcpt =              0,                              /* number of addresses */
554 };
555
556 BOOL    daemon_listen          = FALSE;
557 uschar *daemon_smtp_port       = US"smtp";
558 int     daemon_startup_retries = 9;
559 int     daemon_startup_sleep   = 30;
560
561 #ifdef EXPERIMENTAL_DCC
562 BOOL    dcc_direct_add_header  = FALSE;
563 uschar *dcc_header             = NULL;
564 uschar *dcc_result             = NULL;
565 uschar *dccifd_address         = US"/usr/local/dcc/var/dccifd";
566 uschar *dccifd_options         = US"header";
567 #endif
568
569 BOOL    debug_daemon           = FALSE;
570 int     debug_fd               = -1;
571 FILE   *debug_file             = NULL;
572 int     debug_notall[]         = {
573   Di_memory,
574   -1
575 };
576 bit_table debug_options[]      = { /* must be in alphabetical order */
577   BIT_TABLE(D, acl),
578   BIT_TABLE(D, all),
579   BIT_TABLE(D, auth),
580   BIT_TABLE(D, deliver),
581   BIT_TABLE(D, dns),
582   BIT_TABLE(D, dnsbl),
583   BIT_TABLE(D, exec),
584   BIT_TABLE(D, expand),
585   BIT_TABLE(D, filter),
586   BIT_TABLE(D, hints_lookup),
587   BIT_TABLE(D, host_lookup),
588   BIT_TABLE(D, ident),
589   BIT_TABLE(D, interface),
590   BIT_TABLE(D, lists),
591   BIT_TABLE(D, load),
592   BIT_TABLE(D, local_scan),
593   BIT_TABLE(D, lookup),
594   BIT_TABLE(D, memory),
595   BIT_TABLE(D, pid),
596   BIT_TABLE(D, process_info),
597   BIT_TABLE(D, queue_run),
598   BIT_TABLE(D, receive),
599   BIT_TABLE(D, resolver),
600   BIT_TABLE(D, retry),
601   BIT_TABLE(D, rewrite),
602   BIT_TABLE(D, route),
603   BIT_TABLE(D, timestamp),
604   BIT_TABLE(D, tls),
605   BIT_TABLE(D, transport),
606   BIT_TABLE(D, uid),
607   BIT_TABLE(D, verify),
608 };
609 int     debug_options_count    = nelem(debug_options);
610
611 unsigned int debug_selector    = 0;
612 BOOL    debug_store            = FALSE;
613 int     delay_warning[DELAY_WARNING_SIZE] = { DELAY_WARNING_SIZE, 1, 24*60*60 };
614 uschar *delay_warning_condition=
615   US"${if or {"
616             "{ !eq{$h_list-id:$h_list-post:$h_list-subscribe:}{} }"
617             "{ match{$h_precedence:}{(?i)bulk|list|junk} }"
618             "{ match{$h_auto-submitted:}{(?i)auto-generated|auto-replied} }"
619             "} {no}{yes}}";
620 BOOL    delivery_date_remove   = TRUE;
621 uschar *deliver_address_data   = NULL;
622 int     deliver_datafile       = -1;
623 const uschar *deliver_domain   = NULL;
624 uschar *deliver_domain_data    = NULL;
625 const uschar *deliver_domain_orig = NULL;
626 const uschar *deliver_domain_parent = NULL;
627 BOOL    deliver_drop_privilege = FALSE;
628 BOOL    deliver_firsttime      = FALSE;
629 BOOL    deliver_force          = FALSE;
630 BOOL    deliver_freeze         = FALSE;
631 time_t  deliver_frozen_at      = 0;
632 uschar *deliver_home           = NULL;
633 const uschar *deliver_host     = NULL;
634 const uschar *deliver_host_address = NULL;
635 int     deliver_host_port      = 0;
636 uschar *deliver_in_buffer      = NULL;
637 ino_t   deliver_inode          = 0;
638 uschar *deliver_localpart      = NULL;
639 uschar *deliver_localpart_data = NULL;
640 uschar *deliver_localpart_orig = NULL;
641 uschar *deliver_localpart_parent = NULL;
642 uschar *deliver_localpart_prefix = NULL;
643 uschar *deliver_localpart_suffix = NULL;
644 BOOL    deliver_force_thaw     = FALSE;
645 BOOL    deliver_manual_thaw    = FALSE;
646 uschar *deliver_out_buffer     = NULL;
647 int     deliver_queue_load_max = -1;
648 address_item  *deliver_recipients = NULL;
649 uschar *deliver_selectstring   = NULL;
650 BOOL    deliver_selectstring_regex = FALSE;
651 uschar *deliver_selectstring_sender = NULL;
652 BOOL    deliver_selectstring_sender_regex = FALSE;
653 BOOL    disable_callout_flush  = FALSE;
654 BOOL    disable_delay_flush    = FALSE;
655 #ifdef ENABLE_DISABLE_FSYNC
656 BOOL    disable_fsync          = FALSE;
657 #endif
658 BOOL    disable_ipv6           = FALSE;
659 BOOL    disable_logging        = FALSE;
660
661 #ifndef DISABLE_DKIM
662 BOOL    dkim_collect_input       = FALSE;
663 uschar *dkim_cur_signer          = NULL;
664 BOOL    dkim_disable_verify      = FALSE;
665 int     dkim_key_length          = 0;
666 uschar *dkim_signers             = NULL;
667 uschar *dkim_signing_domain      = NULL;
668 uschar *dkim_signing_selector    = NULL;
669 uschar *dkim_verify_overall      = NULL;
670 uschar *dkim_verify_signers      = US"$dkim_signers";
671 uschar *dkim_verify_status       = NULL;
672 uschar *dkim_verify_reason       = NULL;
673 #endif
674 #ifdef EXPERIMENTAL_DMARC
675 BOOL    dmarc_has_been_checked  = FALSE;
676 uschar *dmarc_ar_header         = NULL;
677 uschar *dmarc_domain_policy     = NULL;
678 uschar *dmarc_forensic_sender   = NULL;
679 uschar *dmarc_history_file      = NULL;
680 uschar *dmarc_status            = NULL;
681 uschar *dmarc_status_text       = NULL;
682 uschar *dmarc_tld_file          = NULL;
683 uschar *dmarc_used_domain       = NULL;
684 BOOL    dmarc_disable_verify    = FALSE;
685 BOOL    dmarc_enable_forensic   = FALSE;
686 #endif
687
688 uschar *dns_again_means_nonexist = NULL;
689 int     dns_csa_search_limit   = 5;
690 BOOL    dns_csa_use_reverse    = TRUE;
691 #ifdef EXPERIMENTAL_DANE
692 int     dns_dane_ok            = -1;
693 #endif
694 uschar *dns_ipv4_lookup        = NULL;
695 int     dns_retrans            = 0;
696 int     dns_retry              = 0;
697 int     dns_dnssec_ok          = -1; /* <0 = not coerced */
698 uschar *dns_trust_aa           = NULL;
699 int     dns_use_edns0          = -1; /* <0 = not coerced */
700 uschar *dnslist_domain         = NULL;
701 uschar *dnslist_matched        = NULL;
702 uschar *dnslist_text           = NULL;
703 uschar *dnslist_value          = NULL;
704 tree_node *domainlist_anchor   = NULL;
705 int     domainlist_count       = 0;
706 BOOL    dont_deliver           = FALSE;
707 BOOL    dot_ends               = TRUE;
708 BOOL    drop_cr                = FALSE;         /* No longer used */
709 uschar *dsn_from               = US DEFAULT_DSN_FROM;
710
711 BOOL    enable_dollar_recipients = FALSE;
712 BOOL    envelope_to_remove     = TRUE;
713 int     errno_quota            = ERRNO_QUOTA;
714 uschar *errors_copy            = NULL;
715 int     error_handling         = ERRORS_SENDER;
716 uschar *errors_reply_to        = NULL;
717 int     errors_sender_rc       = EXIT_FAILURE;
718 #ifndef DISABLE_EVENT
719 uschar *event_action             = NULL;        /* expansion for delivery events */
720 uschar *event_data               = NULL;        /* auxiliary data variable for event */
721 int     event_defer_errno        = 0;
722 const uschar *event_name         = NULL;        /* event name variable */
723 #endif
724
725
726 gid_t   exim_gid               = EXIM_GID;
727 BOOL    exim_gid_set           = TRUE;          /* This gid is always set */
728 uschar *exim_path              = US BIN_DIRECTORY "/exim"
729                         "\0<---------------Space to patch exim_path->";
730 uid_t   exim_uid               = EXIM_UID;
731 BOOL    exim_uid_set           = TRUE;          /* This uid is always set */
732 int     expand_level           = 0;             /* Nesting depth, indent for debug */
733 int     expand_forbid          = 0;
734 int     expand_nlength[EXPAND_MAXN+1];
735 int     expand_nmax            = -1;
736 uschar *expand_nstring[EXPAND_MAXN+1];
737 BOOL    expand_string_forcedfail = FALSE;
738 uschar *expand_string_message;
739 BOOL    extract_addresses_remove_arguments = TRUE;
740 uschar *extra_local_interfaces = NULL;
741
742 int     fake_response          = OK;
743 uschar *fake_response_text     = US"Your message has been rejected but is "
744                                    "being kept for evaluation.\nIf it was a "
745                                    "legitimate message, it may still be "
746                                    "delivered to the target recipient(s).";
747 int     filter_n[FILTER_VARIABLE_COUNT];
748 BOOL    filter_running         = FALSE;
749 int     filter_sn[FILTER_VARIABLE_COUNT];
750 int     filter_test            = FTEST_NONE;
751 uschar *filter_test_sfile      = NULL;
752 uschar *filter_test_ufile      = NULL;
753 uschar *filter_thisaddress     = NULL;
754 int     finduser_retries       = 0;
755 uid_t   fixed_never_users[]    = { FIXED_NEVER_USERS };
756 uschar *freeze_tell            = NULL;
757 uschar *freeze_tell_config     = NULL;
758 uschar *fudged_queue_times     = US"";
759
760 uschar *gecos_name             = NULL;
761 uschar *gecos_pattern          = NULL;
762 rewrite_rule  *global_rewrite_rules = NULL;
763
764 uschar *headers_charset        = US HEADERS_CHARSET;
765 int     header_insert_maxlen   = 64 * 1024;
766 header_line  *header_last      = NULL;
767 header_line  *header_list      = NULL;
768 int     header_maxsize         = HEADER_MAXSIZE;
769 int     header_line_maxsize    = 0;
770
771 header_name header_names[] = {
772   /* name               len     allow_resent    htype */
773   { US"bcc",            3,      TRUE,           htype_bcc },
774   { US"cc",             2,      TRUE,           htype_cc },
775   { US"date",           4,      TRUE,           htype_date },
776   { US"delivery-date", 13,      FALSE,          htype_delivery_date },
777   { US"envelope-to",   11,      FALSE,          htype_envelope_to },
778   { US"from",           4,      TRUE,           htype_from },
779   { US"message-id",    10,      TRUE,           htype_id },
780   { US"received",       8,      FALSE,          htype_received },
781   { US"reply-to",       8,      FALSE,          htype_reply_to },
782   { US"return-path",   11,      FALSE,          htype_return_path },
783   { US"sender",         6,      TRUE,           htype_sender },
784   { US"subject",        7,      FALSE,          htype_subject },
785   { US"to",             2,      TRUE,           htype_to }
786 };
787
788 int header_names_size          = sizeof(header_names)/sizeof(header_name);
789
790 BOOL    header_rewritten       = FALSE;
791 uschar *helo_accept_junk_hosts = NULL;
792 uschar *helo_allow_chars       = US"";
793 uschar *helo_lookup_domains    = US"@ : @[]";
794 uschar *helo_try_verify_hosts  = NULL;
795 BOOL    helo_verified          = FALSE;
796 BOOL    helo_verify_failed     = FALSE;
797 uschar *helo_verify_hosts      = NULL;
798 const uschar *hex_digits       = CUS"0123456789abcdef";
799 uschar *hold_domains           = NULL;
800 BOOL    host_checking          = FALSE;
801 BOOL    host_checking_callout  = FALSE;
802 uschar *host_data              = NULL;
803 BOOL    host_find_failed_syntax= FALSE;
804 uschar *host_lookup            = NULL;
805 BOOL    host_lookup_deferred   = FALSE;
806 BOOL    host_lookup_failed     = FALSE;
807 uschar *host_lookup_order      = US"bydns:byaddr";
808 uschar *host_lookup_msg        = US"";
809 int     host_number            = 0;
810 uschar *host_number_string     = NULL;
811 uschar *host_reject_connection = NULL;
812 tree_node *hostlist_anchor     = NULL;
813 int     hostlist_count         = 0;
814 uschar *hosts_treat_as_local   = NULL;
815 uschar *hosts_connection_nolog = NULL;
816
817 int     ignore_bounce_errors_after = 10*7*24*60*60;  /* 10 weeks */
818 BOOL    ignore_fromline_local  = FALSE;
819 uschar *ignore_fromline_hosts  = NULL;
820 BOOL    inetd_wait_mode        = FALSE;
821 int     inetd_wait_timeout     = -1;
822 uschar *initial_cwd            = NULL;
823 uschar *interface_address      = NULL;
824 int     interface_port         = -1;
825 BOOL    is_inetd               = FALSE;
826 uschar *iterate_item           = NULL;
827
828 int     journal_fd             = -1;
829
830 uschar *keep_environment       = NULL;
831
832 int     keep_malformed         = 4*24*60*60;    /* 4 days */
833
834 uschar *eldap_dn               = NULL;
835 int     load_average           = -2;
836 BOOL    local_error_message    = FALSE;
837 BOOL    local_from_check       = TRUE;
838 uschar *local_from_prefix      = NULL;
839 uschar *local_from_suffix      = NULL;
840
841 #if HAVE_IPV6
842 uschar *local_interfaces       = US"<; ::0 ; 0.0.0.0";
843 #else
844 uschar *local_interfaces       = US"0.0.0.0";
845 #endif
846
847 uschar *local_scan_data        = NULL;
848 int     local_scan_timeout     = 5*60;
849 BOOL    local_sender_retain    = FALSE;
850 gid_t   local_user_gid         = (gid_t)(-1);
851 uid_t   local_user_uid         = (uid_t)(-1);
852
853 tree_node *localpartlist_anchor= NULL;
854 int     localpartlist_count    = 0;
855 uschar *log_buffer             = NULL;
856
857 int     log_default[]          = { /* for initializing log_selector */
858   Li_acl_warn_skipped,
859   Li_connection_reject,
860   Li_delay_delivery,
861   Li_dkim,
862   Li_dnslist_defer,
863   Li_etrn,
864   Li_host_lookup_failed,
865   Li_lost_incoming_connection,
866   Li_outgoing_interface, /* see d_log_interface in deliver.c */
867   Li_queue_run,
868   Li_rejected_header,
869   Li_retry_defer,
870   Li_sender_verify_fail,
871   Li_size_reject,
872   Li_skip_delivery,
873   Li_smtp_confirmation,
874   Li_tls_certificate_verified,
875   Li_tls_cipher,
876   -1
877 };
878
879 uschar *log_file_path          = US LOG_FILE_PATH
880                            "\0<--------------Space to patch log_file_path->";
881
882 int     log_notall[]           = {
883   -1
884 };
885 bit_table log_options[]        = { /* must be in alphabetical order */
886   BIT_TABLE(L, 8bitmime),
887   BIT_TABLE(L, acl_warn_skipped),
888   BIT_TABLE(L, address_rewrite),
889   BIT_TABLE(L, all),
890   BIT_TABLE(L, all_parents),
891   BIT_TABLE(L, arguments),
892   BIT_TABLE(L, connection_reject),
893   BIT_TABLE(L, delay_delivery),
894   BIT_TABLE(L, deliver_time),
895   BIT_TABLE(L, delivery_size),
896 #ifndef DISABLE_DKIM
897   BIT_TABLE(L, dkim),
898   BIT_TABLE(L, dkim_verbose),
899 #endif
900   BIT_TABLE(L, dnslist_defer),
901   BIT_TABLE(L, dnssec),
902   BIT_TABLE(L, etrn),
903   BIT_TABLE(L, host_lookup_failed),
904   BIT_TABLE(L, ident_timeout),
905   BIT_TABLE(L, incoming_interface),
906   BIT_TABLE(L, incoming_port),
907   BIT_TABLE(L, lost_incoming_connection),
908   BIT_TABLE(L, millisec),
909   BIT_TABLE(L, outgoing_interface),
910   BIT_TABLE(L, outgoing_port),
911   BIT_TABLE(L, pid),
912 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
913   BIT_TABLE(L, proxy),
914 #endif
915   BIT_TABLE(L, queue_run),
916   BIT_TABLE(L, queue_time),
917   BIT_TABLE(L, queue_time_overall),
918   BIT_TABLE(L, receive_time),
919   BIT_TABLE(L, received_recipients),
920   BIT_TABLE(L, received_sender),
921   BIT_TABLE(L, rejected_header),
922   { US"rejected_headers", Li_rejected_header },
923   BIT_TABLE(L, retry_defer),
924   BIT_TABLE(L, return_path_on_delivery),
925   BIT_TABLE(L, sender_on_delivery),
926   BIT_TABLE(L, sender_verify_fail),
927   BIT_TABLE(L, size_reject),
928   BIT_TABLE(L, skip_delivery),
929   BIT_TABLE(L, smtp_confirmation),
930   BIT_TABLE(L, smtp_connection),
931   BIT_TABLE(L, smtp_incomplete_transaction),
932   BIT_TABLE(L, smtp_mailauth),
933   BIT_TABLE(L, smtp_no_mail),
934   BIT_TABLE(L, smtp_protocol_error),
935   BIT_TABLE(L, smtp_syntax_error),
936   BIT_TABLE(L, subject),
937   BIT_TABLE(L, tls_certificate_verified),
938   BIT_TABLE(L, tls_cipher),
939   BIT_TABLE(L, tls_peerdn),
940   BIT_TABLE(L, tls_sni),
941   BIT_TABLE(L, unknown_in_list),
942 };
943 int     log_options_count      = nelem(log_options);
944
945 int     log_reject_target      = 0;
946 unsigned int log_selector[log_selector_size]; /* initialized in main() */
947 uschar *log_selector_string    = NULL;
948 FILE   *log_stderr             = NULL;
949 BOOL    log_testing_mode       = FALSE;
950 BOOL    log_timezone           = FALSE;
951 uschar *login_sender_address   = NULL;
952 uschar *lookup_dnssec_authenticated = NULL;
953 int     lookup_open_max        = 25;
954 uschar *lookup_value           = NULL;
955
956 uschar *mailstore_basename     = NULL;
957 #ifdef WITH_CONTENT_SCAN
958 uschar *malware_name           = NULL;  /* Virus Name */
959 #endif
960 int     max_received_linelength= 0;
961 int     max_username_length    = 0;
962 int     message_age            = 0;
963 uschar *message_body           = NULL;
964 uschar *message_body_end       = NULL;
965 BOOL    message_body_newlines  = FALSE;
966 int     message_body_size      = 0;
967 int     message_body_visible   = 500;
968 int     message_ended          = END_NOTSTARTED;
969 uschar *message_headers        = NULL;
970 uschar *message_id;
971 uschar *message_id_domain      = NULL;
972 uschar *message_id_text        = NULL;
973 struct timeval message_id_tv   = { 0, 0 };
974 uschar  message_id_option[MESSAGE_ID_LENGTH + 3];
975 uschar *message_id_external;
976 int     message_linecount      = 0;
977 BOOL    message_logs           = TRUE;
978 int     message_size           = 0;
979 uschar *message_size_limit     = US"50M";
980 #ifdef SUPPORT_I18N
981 BOOL    message_smtputf8       = FALSE;
982 int     message_utf8_downconvert = 0;   /* -1 ifneeded; 0 never; 1 always */
983 #endif
984 uschar  message_subdir[2]      = { 0, 0 };
985 uschar *message_reference      = NULL;
986
987 /* MIME ACL expandables */
988 #ifdef WITH_CONTENT_SCAN
989 int     mime_anomaly_level     = 0;
990 const uschar *mime_anomaly_text      = NULL;
991 uschar *mime_boundary          = NULL;
992 uschar *mime_charset           = NULL;
993 uschar *mime_content_description = NULL;
994 uschar *mime_content_disposition = NULL;
995 uschar *mime_content_id        = NULL;
996 unsigned int mime_content_size = 0;
997 uschar *mime_content_transfer_encoding = NULL;
998 uschar *mime_content_type      = NULL;
999 uschar *mime_decoded_filename  = NULL;
1000 uschar *mime_filename          = NULL;
1001 int     mime_is_multipart      = 0;
1002 int     mime_is_coverletter    = 0;
1003 int     mime_is_rfc822         = 0;
1004 int     mime_part_count        = -1;
1005 #endif
1006
1007 BOOL    mua_wrapper            = FALSE;
1008
1009 uid_t  *never_users            = NULL;
1010 #ifdef WITH_CONTENT_SCAN
1011 BOOL    no_mbox_unspool        = FALSE;
1012 #endif
1013 BOOL    no_multiline_responses = FALSE;
1014
1015 const int on                   = 1;     /* for setsockopt */
1016 const int off                  = 0;
1017
1018 uid_t   original_euid;
1019 gid_t   originator_gid;
1020 uschar *originator_login       = NULL;
1021 uschar *originator_name        = NULL;
1022 uid_t   originator_uid;
1023 uschar *override_local_interfaces = NULL;
1024 uschar *override_pid_file_path = NULL;
1025
1026 BOOL    parse_allow_group      = FALSE;
1027 BOOL    parse_found_group      = FALSE;
1028 uschar *percent_hack_domains   = NULL;
1029 uschar *pid_file_path          = US PID_FILE_PATH
1030                            "\0<--------------Space to patch pid_file_path->";
1031 BOOL    pipelining_enable      = TRUE;
1032 uschar *pipelining_advertise_hosts = US"*";
1033 BOOL    preserve_message_logs  = FALSE;
1034 uschar *primary_hostname       = NULL;
1035 BOOL    print_topbitchars      = FALSE;
1036 uschar  process_info[PROCESS_INFO_SIZE];
1037 int     process_info_len       = 0;
1038 uschar *process_log_path       = NULL;
1039 BOOL    prod_requires_admin    = TRUE;
1040
1041 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1042 uschar *hosts_proxy            = US"";
1043 uschar *proxy_external_address = US"";
1044 int     proxy_external_port    = 0;
1045 uschar *proxy_local_address    = US"";
1046 int     proxy_local_port       = 0;
1047 BOOL    proxy_session          = FALSE;
1048 BOOL    proxy_session_failed   = FALSE;
1049 #endif
1050
1051 uschar *prvscheck_address      = NULL;
1052 uschar *prvscheck_keynum       = NULL;
1053 uschar *prvscheck_result       = NULL;
1054
1055
1056 const uschar *qualify_domain_recipient = NULL;
1057 uschar *qualify_domain_sender  = NULL;
1058 BOOL    queue_2stage           = FALSE;
1059 uschar *queue_domains          = NULL;
1060 int     queue_interval         = -1;
1061 BOOL    queue_list_requires_admin = TRUE;
1062 uschar *queue_name             = US"";
1063 BOOL    queue_only             = FALSE;
1064 uschar *queue_only_file        = NULL;
1065 int     queue_only_load        = -1;
1066 BOOL    queue_only_load_latch  = TRUE;
1067 BOOL    queue_only_override    = TRUE;
1068 BOOL    queue_only_policy      = FALSE;
1069 BOOL    queue_run_first_delivery = FALSE;
1070 BOOL    queue_run_force        = FALSE;
1071 BOOL    queue_run_in_order     = FALSE;
1072 BOOL    queue_run_local        = FALSE;
1073 uschar *queue_run_max          = US"5";
1074 pid_t   queue_run_pid          = (pid_t)0;
1075 int     queue_run_pipe         = -1;
1076 BOOL    queue_running          = FALSE;
1077 BOOL    queue_smtp             = FALSE;
1078 uschar *queue_smtp_domains     = NULL;
1079
1080 unsigned int random_seed       = 0;
1081 tree_node *ratelimiters_cmd    = NULL;
1082 tree_node *ratelimiters_conn   = NULL;
1083 tree_node *ratelimiters_mail   = NULL;
1084 uschar *raw_active_hostname    = NULL;
1085 uschar *raw_sender             = NULL;
1086 uschar **raw_recipients        = NULL;
1087 int     raw_recipients_count   = 0;
1088
1089 int     rcpt_count             = 0;
1090 int     rcpt_fail_count        = 0;
1091 int     rcpt_defer_count       = 0;
1092 gid_t   real_gid;
1093 uid_t   real_uid;
1094 BOOL    really_exim            = TRUE;
1095 BOOL    receive_call_bombout   = FALSE;
1096 int     receive_linecount      = 0;
1097 int     receive_messagecount   = 0;
1098 int     receive_timeout        = 0;
1099 int     received_count         = 0;
1100 uschar *received_for           = NULL;
1101
1102 /*  This is the default text for Received headers generated by Exim. The
1103 date  will be automatically added on the end. */
1104
1105 uschar *received_header_text   = US
1106      "Received: "
1107      "${if def:sender_rcvhost {from $sender_rcvhost\n\t}"
1108      "{${if def:sender_ident {from ${quote_local_part:$sender_ident} }}"
1109      "${if def:sender_helo_name {(helo=$sender_helo_name)\n\t}}}}"
1110      "by $primary_hostname "
1111      "${if def:received_protocol {with $received_protocol}} "
1112      #ifdef SUPPORT_TLS
1113      "${if def:tls_cipher {($tls_cipher)\n\t}}"
1114      #endif
1115      "(Exim $version_number)\n\t"
1116      "${if def:sender_address {(envelope-from <$sender_address>)\n\t}}"
1117      "id $message_exim_id"
1118      "${if def:received_for {\n\tfor $received_for}}"
1119      "\0<---------------Space to patch received_header_text->";
1120
1121 int     received_headers_max   = 30;
1122 uschar *received_protocol      = NULL;
1123 struct timeval received_time   = { 0, 0 };
1124 struct timeval received_time_taken = { 0, 0 };
1125 uschar *recipient_data         = NULL;
1126 uschar *recipient_unqualified_hosts = NULL;
1127 uschar *recipient_verify_failure = NULL;
1128 int     recipients_count       = 0;
1129 BOOL    recipients_discarded   = FALSE;
1130 recipient_item  *recipients_list = NULL;
1131 int     recipients_list_max    = 0;
1132 int     recipients_max         = 0;
1133 BOOL    recipients_max_reject  = FALSE;
1134 const pcre *regex_AUTH         = NULL;
1135 const pcre *regex_check_dns_names = NULL;
1136 const pcre *regex_From         = NULL;
1137 const pcre *regex_IGNOREQUOTA  = NULL;
1138 const pcre *regex_PIPELINING   = NULL;
1139 const pcre *regex_SIZE         = NULL;
1140 const pcre *regex_ismsgid      = NULL;
1141 const pcre *regex_smtp_code    = NULL;
1142 uschar *regex_vars[REGEX_VARS];
1143 #ifdef WHITELIST_D_MACROS
1144 const pcre *regex_whitelisted_macro = NULL;
1145 #endif
1146 #ifdef WITH_CONTENT_SCAN
1147 uschar *regex_match_string     = NULL;
1148 #endif
1149 int     remote_delivery_count  = 0;
1150 int     remote_max_parallel    = 2;
1151 uschar *remote_sort_domains    = NULL;
1152 int     retry_data_expire      = 7*24*60*60;
1153 int     retry_interval_max     = 24*60*60;
1154 int     retry_maximum_timeout  = 0;        /* set from retry config */
1155 retry_config  *retries         = NULL;
1156 uschar *return_path            = NULL;
1157 BOOL    return_path_remove     = TRUE;
1158 int     rewrite_existflags     = 0;
1159 uschar *rfc1413_hosts          = US"@[]";
1160 int     rfc1413_query_timeout  = 0;
1161 /* BOOL    rfc821_domains         = FALSE;  <<< on the way out */
1162 uid_t   root_gid               = ROOT_GID;
1163 uid_t   root_uid               = ROOT_UID;
1164
1165 router_instance  *routers  = NULL;
1166 router_instance  router_defaults = {
1167     .next =                     NULL,
1168     .name =                     NULL,
1169     .info =                     NULL,
1170     .options_block =            NULL,
1171     .driver_name =              NULL,
1172
1173     .address_data =             NULL,
1174 #ifdef EXPERIMENTAL_BRIGHTMAIL
1175     .bmi_rule =                 NULL,
1176 #endif
1177     .cannot_route_message =     NULL,
1178     .condition =                NULL,
1179     .current_directory =        NULL,
1180     .debug_string =             NULL,
1181     .domains =                  NULL,
1182     .errors_to =                NULL,
1183     .expand_gid =               NULL,
1184     .expand_uid =               NULL,
1185     .expand_more =              NULL,
1186     .expand_unseen =            NULL,
1187     .extra_headers =            NULL,
1188     .fallback_hosts =           NULL,
1189     .home_directory =           NULL,
1190     .ignore_target_hosts =      NULL,
1191     .local_parts =              NULL,
1192     .pass_router_name =         NULL,
1193     .prefix =                   NULL,
1194     .redirect_router_name =     NULL,
1195     .remove_headers =           NULL,
1196     .require_files =            NULL,
1197     .router_home_directory =    NULL,
1198     .self =                     US"freeze",
1199     .senders =                  NULL,
1200     .suffix =                   NULL,
1201     .translate_ip_address =     NULL,
1202     .transport_name =           NULL,
1203
1204     .address_test =             TRUE,
1205 #ifdef EXPERIMENTAL_BRIGHTMAIL
1206     .bmi_deliver_alternate =    FALSE,
1207     .bmi_deliver_default =      FALSE,
1208     .bmi_dont_deliver =         FALSE,
1209 #endif
1210     .expn =                     TRUE,
1211     .caseful_local_part =       FALSE,
1212     .check_local_user =         FALSE,
1213     .disable_logging =          FALSE,
1214     .fail_verify_recipient =    FALSE,
1215     .fail_verify_sender =       FALSE,
1216     .gid_set =                  FALSE,
1217     .initgroups =               FALSE,
1218     .log_as_local =             TRUE_UNSET,
1219     .more =                     TRUE,
1220     .pass_on_timeout =          FALSE,
1221     .prefix_optional =          FALSE,
1222     .repeat_use =               TRUE,
1223     .retry_use_local_part =     TRUE_UNSET,
1224     .same_domain_copy_routing = FALSE,
1225     .self_rewrite =             FALSE,
1226     .suffix_optional =          FALSE,
1227     .verify_only =              FALSE,
1228     .verify_recipient =         TRUE,
1229     .verify_sender =            TRUE,
1230     .uid_set =                  FALSE,
1231     .unseen =                   FALSE,
1232     .dsn_lasthop =              FALSE,
1233
1234     .self_code =                self_freeze,
1235     .uid =                      (uid_t)(-1),
1236     .gid =                      (gid_t)(-1),
1237
1238     .fallback_hostlist =        NULL,
1239     .transport =                NULL,
1240     .pass_router =              NULL,
1241     .redirect_router =          NULL,
1242
1243     .dnssec =                   { NULL, NULL },            /* dnssec_domains {require,request} */
1244 };
1245
1246 uschar *router_name            = NULL;
1247
1248 ip_address_item *running_interfaces = NULL;
1249 BOOL    running_in_test_harness = FALSE;
1250
1251 /* This is a weird one. The following string gets patched in the binary by the
1252 script that sets up a copy of Exim for running in the test harness. It seems
1253 that compilers are now clever, and share constant strings if they can.
1254 Elsewhere in Exim the string "<" is used. The compiler optimization seems to
1255 make use of the end of this string in order to save space. So the patching then
1256 wrecks this. We defeat this optimization by adding some additional characters
1257 onto the end of the string. */
1258
1259 uschar *running_status         = US">>>running<<<" "\0EXTRA";
1260
1261 int     runrc                  = 0;
1262
1263 uschar *search_error_message   = NULL;
1264 BOOL    search_find_defer      = FALSE;
1265 uschar *self_hostname          = NULL;
1266 uschar *sender_address         = NULL;
1267 unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32];
1268 uschar *sender_address_data    = NULL;
1269 BOOL    sender_address_forced  = FALSE;
1270 uschar *sender_address_unrewritten = NULL;
1271 uschar *sender_data            = NULL;
1272 unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32];
1273 uschar *sender_fullhost        = NULL;
1274 BOOL    sender_helo_dnssec     = FALSE;
1275 uschar *sender_helo_name       = NULL;
1276 uschar **sender_host_aliases   = &no_aliases;
1277 uschar *sender_host_address    = NULL;
1278 uschar *sender_host_authenticated = NULL;
1279 unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32];
1280 BOOL    sender_host_dnssec     = FALSE;
1281 uschar *sender_host_name       = NULL;
1282 int     sender_host_port       = 0;
1283 BOOL    sender_host_notsocket  = FALSE;
1284 BOOL    sender_host_unknown    = FALSE;
1285 uschar *sender_ident           = NULL;
1286 BOOL    sender_local           = FALSE;
1287 BOOL    sender_name_forced     = FALSE;
1288 uschar *sender_rate            = NULL;
1289 uschar *sender_rate_limit      = NULL;
1290 uschar *sender_rate_period     = NULL;
1291 uschar *sender_rcvhost         = NULL;
1292 BOOL    sender_set_untrusted   = FALSE;
1293 uschar *sender_unqualified_hosts = NULL;
1294 uschar *sender_verify_failure = NULL;
1295 address_item *sender_verified_list  = NULL;
1296 address_item *sender_verified_failed = NULL;
1297 int     sender_verified_rc     = -1;
1298 BOOL    sender_verified_responded = FALSE;
1299 uschar *sending_ip_address     = NULL;
1300 int     sending_port           = -1;
1301 SIGNAL_BOOL sigalrm_seen       = FALSE;
1302 uschar **sighup_argv           = NULL;
1303 int     slow_lookup_log        = 0;     /* millisecs, zero disables */
1304 int     smtp_accept_count      = 0;
1305 BOOL    smtp_accept_keepalive  = TRUE;
1306 int     smtp_accept_max        = 20;
1307 int     smtp_accept_max_nonmail= 10;
1308 uschar *smtp_accept_max_nonmail_hosts = US"*";
1309 int     smtp_accept_max_per_connection = 1000;
1310 uschar *smtp_accept_max_per_host = NULL;
1311 int     smtp_accept_queue      = 0;
1312 int     smtp_accept_queue_per_connection = 10;
1313 int     smtp_accept_reserve    = 0;
1314 uschar *smtp_active_hostname   = NULL;
1315 BOOL    smtp_authenticated     = FALSE;
1316 uschar *smtp_banner            = US"$smtp_active_hostname ESMTP "
1317                              "Exim $version_number $tod_full"
1318                              "\0<---------------Space to patch smtp_banner->";
1319 BOOL    smtp_batched_input     = FALSE;
1320 BOOL    smtp_check_spool_space = TRUE;
1321 int     smtp_ch_index          = 0;
1322 uschar *smtp_cmd_argument      = NULL;
1323 uschar *smtp_cmd_buffer        = NULL;
1324 struct timeval smtp_connection_start  = {0,0};
1325 uschar  smtp_connection_had[SMTP_HBUFF_SIZE];
1326 int     smtp_connect_backlog   = 20;
1327 double  smtp_delay_mail        = 0.0;
1328 double  smtp_delay_rcpt        = 0.0;
1329 BOOL    smtp_enforce_sync      = TRUE;
1330 FILE   *smtp_in                = NULL;
1331 BOOL    smtp_input             = FALSE;
1332 int     smtp_load_reserve      = -1;
1333 int     smtp_mailcmd_count     = 0;
1334 FILE   *smtp_out               = NULL;
1335 uschar *smtp_etrn_command      = NULL;
1336 BOOL    smtp_etrn_serialize    = TRUE;
1337 int     smtp_max_synprot_errors= 3;
1338 int     smtp_max_unknown_commands = 3;
1339 uschar *smtp_notquit_reason    = NULL;
1340 uschar *smtp_ratelimit_hosts   = NULL;
1341 uschar *smtp_ratelimit_mail    = NULL;
1342 uschar *smtp_ratelimit_rcpt    = NULL;
1343 uschar *smtp_read_error        = US"";
1344 int     smtp_receive_timeout   = 5*60;
1345 uschar *smtp_receive_timeout_s = NULL;
1346 uschar *smtp_reserve_hosts     = NULL;
1347 BOOL    smtp_return_error_details = FALSE;
1348 int     smtp_rlm_base          = 0;
1349 double  smtp_rlm_factor        = 0.0;
1350 int     smtp_rlm_limit         = 0;
1351 int     smtp_rlm_threshold     = INT_MAX;
1352 int     smtp_rlr_base          = 0;
1353 double  smtp_rlr_factor        = 0.0;
1354 int     smtp_rlr_limit         = 0;
1355 int     smtp_rlr_threshold     = INT_MAX;
1356 unsigned smtp_peer_options     = 0;
1357 unsigned smtp_peer_options_wrap= 0;
1358 #ifdef SUPPORT_I18N
1359 uschar *smtputf8_advertise_hosts = US"*";       /* overridden under test-harness */
1360 #endif
1361
1362 #ifdef WITH_CONTENT_SCAN
1363 uschar *spamd_address          = US"127.0.0.1 783";
1364 uschar *spam_bar               = NULL;
1365 uschar *spam_report            = NULL;
1366 uschar *spam_action            = NULL;
1367 uschar *spam_score             = NULL;
1368 uschar *spam_score_int         = NULL;
1369 #endif
1370 #ifdef SUPPORT_SPF
1371 uschar *spf_guess              = US"v=spf1 a/24 mx/24 ptr ?all";
1372 uschar *spf_header_comment     = NULL;
1373 uschar *spf_received           = NULL;
1374 uschar *spf_result             = NULL;
1375 uschar *spf_smtp_comment       = NULL;
1376 #endif
1377
1378 BOOL    split_spool_directory  = FALSE;
1379 uschar *spool_directory        = US SPOOL_DIRECTORY
1380                            "\0<--------------Space to patch spool_directory->";
1381 BOOL    spool_file_wireformat  = FALSE;
1382 BOOL    spool_wireformat       = FALSE;
1383 #ifdef EXPERIMENTAL_SRS
1384 uschar *srs_config             = NULL;
1385 uschar *srs_db_address         = NULL;
1386 uschar *srs_db_key             = NULL;
1387 int     srs_hashlength         = 6;
1388 int     srs_hashmin            = -1;
1389 int     srs_maxage             = 31;
1390 uschar *srs_orig_recipient     = NULL;
1391 uschar *srs_orig_sender        = NULL;
1392 uschar *srs_recipient          = NULL;
1393 uschar *srs_secrets            = NULL;
1394 uschar *srs_status             = NULL;
1395 BOOL    srs_usehash            = TRUE;
1396 BOOL    srs_usetimestamp       = TRUE;
1397 #endif
1398 BOOL    strict_acl_vars        = FALSE;
1399 int     string_datestamp_offset= -1;
1400 int     string_datestamp_length= 0;
1401 int     string_datestamp_type  = -1;
1402 BOOL    strip_excess_angle_brackets = FALSE;
1403 BOOL    strip_trailing_dot     = FALSE;
1404 uschar *submission_domain      = NULL;
1405 BOOL    submission_mode        = FALSE;
1406 uschar *submission_name        = NULL;
1407 BOOL    suppress_local_fixups  = FALSE;
1408 BOOL    suppress_local_fixups_default = FALSE;
1409 BOOL    synchronous_delivery   = FALSE;
1410 BOOL    syslog_duplication     = TRUE;
1411 int     syslog_facility        = LOG_MAIL;
1412 BOOL    syslog_pid             = TRUE;
1413 uschar *syslog_processname     = US"exim";
1414 BOOL    syslog_timestamp       = TRUE;
1415 uschar *system_filter          = NULL;
1416
1417 uschar *system_filter_directory_transport = NULL;
1418 uschar *system_filter_file_transport = NULL;
1419 uschar *system_filter_pipe_transport = NULL;
1420 uschar *system_filter_reply_transport = NULL;
1421
1422 gid_t   system_filter_gid      = 0;
1423 BOOL    system_filter_gid_set  = FALSE;
1424 uid_t   system_filter_uid      = (uid_t)-1;
1425 BOOL    system_filter_uid_set  = FALSE;
1426 BOOL    system_filtering       = FALSE;
1427
1428 BOOL    tcp_fastopen_ok        = FALSE;
1429 blob    tcp_fastopen_nodata    = { .data = NULL, .len = 0 };
1430 BOOL    tcp_in_fastopen        = FALSE;
1431 BOOL    tcp_in_fastopen_logged = FALSE;
1432 BOOL    tcp_nodelay            = TRUE;
1433 int     tcp_out_fastopen       = 0;
1434 BOOL    tcp_out_fastopen_logged= FALSE;
1435 #ifdef USE_TCP_WRAPPERS
1436 uschar *tcp_wrappers_daemon_name = US TCP_WRAPPERS_DAEMON_NAME;
1437 #endif
1438 int     test_harness_load_avg  = 0;
1439 int     thismessage_size_limit = 0;
1440 int     timeout_frozen_after   = 0;
1441 BOOL    timestamps_utc         = FALSE;
1442
1443 transport_instance  *transports = NULL;
1444
1445 transport_instance  transport_defaults = {
1446     .next =                     NULL,
1447     .name =                     NULL,
1448     .info =                     NULL,
1449     .options_block =            NULL,
1450     .driver_name =              NULL,
1451     .setup =                    NULL,
1452     .batch_max =                1,
1453     .batch_id =                 NULL,
1454     .home_dir =                 NULL,
1455     .current_dir =              NULL,
1456     .expand_multi_domain =      NULL,
1457     .multi_domain =             TRUE,
1458     .overrides_hosts =          FALSE,
1459     .max_addresses =            100,
1460     .connection_max_messages =  500,
1461     .deliver_as_creator =       FALSE,
1462     .disable_logging =          FALSE,
1463     .initgroups =               FALSE,
1464     .uid_set =                  FALSE,
1465     .gid_set =                  FALSE,
1466     .uid =                      (uid_t)(-1),
1467     .gid =                      (gid_t)(-1),
1468     .expand_uid =               NULL,
1469     .expand_gid =               NULL,
1470     .warn_message =             NULL,
1471     .shadow =                   NULL,
1472     .shadow_condition =         NULL,
1473     .filter_command =           NULL,
1474     .add_headers =              NULL,
1475     .remove_headers =           NULL,
1476     .return_path =              NULL,
1477     .debug_string =             NULL,
1478     .max_parallel =             NULL,
1479     .message_size_limit =       NULL,
1480     .headers_rewrite =          NULL,
1481     .rewrite_rules =            NULL,
1482     .rewrite_existflags =       0,
1483     .filter_timeout =           300,
1484     .body_only =                FALSE,
1485     .delivery_date_add =        FALSE,
1486     .envelope_to_add =          FALSE,
1487     .headers_only =             FALSE,
1488     .rcpt_include_affixes =     FALSE,
1489     .return_path_add =          FALSE,
1490     .return_output =            FALSE,
1491     .return_fail_output =       FALSE,
1492     .log_output =               FALSE,
1493     .log_fail_output =          FALSE,
1494     .log_defer_output =         FALSE,
1495     .retry_use_local_part =     TRUE_UNSET,     /* retry_use_local_part: BOOL, but set neither
1496                                                  1 nor 0 so can detect unset */
1497 #ifndef DISABLE_EVENT
1498    .event_action =              NULL
1499 #endif
1500 };
1501
1502 int     transport_count;
1503 uschar *transport_name          = NULL;
1504 int     transport_newlines;
1505 const uschar **transport_filter_argv  = NULL;
1506 int     transport_filter_timeout;
1507 BOOL    transport_filter_timed_out = FALSE;
1508 int     transport_write_timeout= 0;
1509
1510 tree_node  *tree_dns_fails     = NULL;
1511 tree_node  *tree_duplicates    = NULL;
1512 tree_node  *tree_nonrecipients = NULL;
1513 tree_node  *tree_unusable      = NULL;
1514
1515 BOOL    trusted_caller         = FALSE;
1516 BOOL    trusted_config         = TRUE;
1517 gid_t  *trusted_groups         = NULL;
1518 uid_t  *trusted_users          = NULL;
1519 uschar *timezone_string        = US TIMEZONE_DEFAULT;
1520
1521 uschar *unknown_login          = NULL;
1522 uschar *unknown_username       = NULL;
1523 uschar *untrusted_set_sender   = NULL;
1524
1525 /*  A regex for matching a "From_" line in an incoming message, in the form
1526
1527     From ph10 Fri Jan  5 12:35 GMT 1996
1528
1529 which  the "mail" commands send to the MTA (undocumented, of course), or in
1530 the  form
1531
1532     From ph10 Fri, 7 Jan 97 14:00:00 GMT
1533
1534 which  is apparently used by some UUCPs, despite it not being in RFC 976.
1535 Because  of variations in time formats, just match up to the minutes. That
1536 should  be sufficient. Examples have been seen of time fields like 12:1:03,
1537 so  just require one digit for hours and minutes. The weekday is also absent
1538 in  some forms. */
1539
1540 uschar *uucp_from_pattern      = US
1541    "^From\\s+(\\S+)\\s+(?:[a-zA-Z]{3},?\\s+)?"    /* Common start */
1542    "(?:"                                          /* Non-extracting bracket */
1543    "[a-zA-Z]{3}\\s+\\d?\\d|"                      /* First form */
1544    "\\d?\\d\\s+[a-zA-Z]{3}\\s+\\d\\d(?:\\d\\d)?"  /* Second form */
1545    ")"                                            /* End alternation */
1546    "\\s+\\d\\d?:\\d\\d?";                         /* Start of time */
1547
1548 uschar *uucp_from_sender       = US"$1";
1549
1550 uschar *verify_mode            = NULL;
1551 uschar *version_copyright      =
1552  US"Copyright (c) University of Cambridge, 1995 - 2017\n"
1553    "(c) The Exim Maintainers and contributors in ACKNOWLEDGMENTS file, 2007 - 2017";
1554 uschar *version_date           = US"?";
1555 uschar *version_cnumber        = US"????";
1556 uschar *version_string         = US"?";
1557
1558 uschar *warn_message_file      = NULL;
1559 int     warning_count          = 0;
1560 uschar *warnmsg_delay          = NULL;
1561 uschar *warnmsg_recipients     = NULL;
1562 BOOL    write_rejectlog        = TRUE;
1563
1564
1565 /*  End of globals.c */