Check query strings of query-style lookups for quoting. Bug 2850
[exim.git] / src / src / globals.c
1 /*************************************************
2 *     Exim - an Internet mail transport agent    *
3 *************************************************/
4
5 /* Copyright (c) University of Cambridge 1995 - 2018 */
6 /* Copyright (c) The Exim Maintainers 2020 - 2021 */
7 /* See the file NOTICE for conditions of use and distribution. */
8
9 /* All the global variables are defined together in this one module, so
10 that they are easy to find. */
11
12 #include "exim.h"
13
14
15 /* Generic options for auths, all of which live inside auth_instance
16 data blocks and hence have the opt_public flag set. */
17
18 optionlist optionlist_auths[] = {
19   { "client_condition", opt_stringptr | opt_public,
20                  OPT_OFF(auth_instance, client_condition) },
21   { "client_set_id", opt_stringptr | opt_public,
22                  OPT_OFF(auth_instance, set_client_id) },
23   { "driver",        opt_stringptr | opt_public,
24                  OPT_OFF(auth_instance, driver_name) },
25   { "public_name",   opt_stringptr | opt_public,
26                  OPT_OFF(auth_instance, public_name) },
27   { "server_advertise_condition", opt_stringptr | opt_public,
28                  OPT_OFF(auth_instance, advertise_condition)},
29   { "server_condition", opt_stringptr | opt_public,
30                  OPT_OFF(auth_instance, server_condition) },
31   { "server_debug_print", opt_stringptr | opt_public,
32                  OPT_OFF(auth_instance, server_debug_string) },
33   { "server_mail_auth_condition", opt_stringptr | opt_public,
34                  OPT_OFF(auth_instance, mail_auth_condition) },
35   { "server_set_id", opt_stringptr | opt_public,
36                  OPT_OFF(auth_instance, set_id) }
37 };
38
39 int     optionlist_auths_size = nelem(optionlist_auths);
40
41 /* An empty host aliases list. */
42
43 uschar *no_aliases             = NULL;
44
45
46 /* For comments on these variables, see globals.h. I'm too idle to
47 duplicate them here... */
48
49 #ifdef EXIM_PERL
50 uschar *opt_perl_startup       = NULL;
51 BOOL    opt_perl_at_start      = FALSE;
52 BOOL    opt_perl_started       = FALSE;
53 BOOL    opt_perl_taintmode     = FALSE;
54 #endif
55
56 #ifdef EXPAND_DLFUNC
57 tree_node *dlobj_anchor        = NULL;
58 #endif
59
60 #ifdef LOOKUP_IBASE
61 uschar *ibase_servers          = NULL;
62 #endif
63
64 #ifdef LOOKUP_LDAP
65 uschar *eldap_ca_cert_dir      = NULL;
66 uschar *eldap_ca_cert_file     = NULL;
67 uschar *eldap_cert_file        = NULL;
68 uschar *eldap_cert_key         = NULL;
69 uschar *eldap_cipher_suite     = NULL;
70 uschar *eldap_default_servers  = NULL;
71 uschar *eldap_require_cert     = NULL;
72 int     eldap_version          = -1;
73 BOOL    eldap_start_tls        = FALSE;
74 #endif
75
76 #ifdef LOOKUP_MYSQL
77 uschar *mysql_servers          = NULL;
78 #endif
79
80 #ifdef LOOKUP_ORACLE
81 uschar *oracle_servers         = NULL;
82 #endif
83
84 #ifdef LOOKUP_PGSQL
85 uschar *pgsql_servers          = NULL;
86 #endif
87
88 #ifdef LOOKUP_REDIS
89 uschar *redis_servers          = NULL;
90 #endif
91
92 #ifdef LOOKUP_SQLITE
93 uschar *sqlite_dbfile          = NULL;
94 int     sqlite_lock_timeout    = 5;
95 #endif
96
97 #ifdef SUPPORT_MOVE_FROZEN_MESSAGES
98 BOOL    move_frozen_messages   = FALSE;
99 #endif
100
101 /* These variables are outside the #ifdef because it keeps the code less
102 cluttered in several places (e.g. during logging) if we can always refer to
103 them. Also, the tls_ variables are now always visible.  Note that these are
104 only used for smtp connections, not for service-daemon access. */
105
106 tls_support tls_in = {
107  .active =              {.sock = -1}
108  /* all other elements zero */
109 };
110 tls_support tls_out = {
111  .active =              {.sock = -1},
112  /* all other elements zero */
113 };
114
115 uschar *dsn_envid              = NULL;
116 int     dsn_ret                = 0;
117 const pcre2_code  *regex_DSN         = NULL;
118 uschar *dsn_advertise_hosts    = NULL;
119
120 #ifndef DISABLE_TLS
121 BOOL    gnutls_compat_mode     = FALSE;
122 BOOL    gnutls_allow_auto_pkcs11 = FALSE;
123 uschar *hosts_require_alpn     = NULL;
124 uschar *openssl_options        = NULL;
125 const pcre2_code *regex_STARTTLS     = NULL;
126 uschar *tls_advertise_hosts    = US"*";
127 uschar *tls_alpn               = US"smtp:esmtp";
128 uschar *tls_certificate        = NULL;
129 uschar *tls_crl                = NULL;
130 /* This default matches NSS DH_MAX_P_BITS value at current time (2012), because
131 that's the interop problem which has been observed: GnuTLS suggesting a higher
132 bit-count as "NORMAL" (2432) and Thunderbird dropping connection. */
133 int     tls_dh_max_bits        = 2236;
134 uschar *tls_dhparam            = NULL;
135 uschar *tls_eccurve            = US"auto";
136 # ifndef DISABLE_OCSP
137 uschar *tls_ocsp_file          = NULL;
138 # endif
139 uschar *tls_privatekey         = NULL;
140 BOOL    tls_remember_esmtp     = FALSE;
141 uschar *tls_require_ciphers    = NULL;
142 # ifndef DISABLE_TLS_RESUME
143 uschar *tls_resumption_hosts   = NULL;
144 # endif
145 uschar *tls_try_verify_hosts   = NULL;
146 uschar *tls_verify_certificates= US"system";
147 uschar *tls_verify_hosts       = NULL;
148 int     tls_watch_fd           = -1;
149 time_t  tls_watch_trigger_time = (time_t)0;
150 #else   /*DISABLE_TLS*/
151 uschar *tls_advertise_hosts    = NULL;
152 #endif
153
154 #ifndef DISABLE_PRDR
155 /* Per Recipient Data Response variables */
156 BOOL    prdr_enable            = FALSE;
157 BOOL    prdr_requested         = FALSE;
158 const pcre2_code *regex_PRDR         = NULL;
159 #endif
160
161 #ifdef SUPPORT_I18N
162 const pcre2_code *regex_UTF8         = NULL;
163 #endif
164
165 /* Input-reading functions for messages, so we can use special ones for
166 incoming TCP/IP. The defaults use stdin. We never need these for any
167 stand-alone tests. */
168
169 #if !defined(STAND_ALONE) && !defined(MACRO_PREDEF)
170 int     (*lwr_receive_getc)(unsigned)   = stdin_getc;
171 uschar * (*lwr_receive_getbuf)(unsigned *) = NULL;
172 int     (*lwr_receive_ungetc)(int)      = stdin_ungetc;
173 BOOL    (*lwr_receive_hasc)(void)       = stdin_hasc;
174
175 int     (*receive_getc)(unsigned)       = stdin_getc;
176 uschar * (*receive_getbuf)(unsigned *)  = NULL;
177 void    (*receive_get_cache)(unsigned)  = NULL;
178 BOOL    (*receive_hasc)(void)           = stdin_hasc;
179 int     (*receive_ungetc)(int)          = stdin_ungetc;
180 int     (*receive_feof)(void)           = stdin_feof;
181 int     (*receive_ferror)(void)         = stdin_ferror;
182 #endif
183
184
185 /* List of per-address expansion variables for clearing and saving/restoring
186 when verifying one address while routing/verifying another. We have to have
187 the size explicit, because it is referenced from more than one module. */
188
189 const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT] = {
190   CUSS &deliver_address_data,
191   CUSS &deliver_domain,
192   CUSS &deliver_domain_data,
193   CUSS &deliver_domain_orig,
194   CUSS &deliver_domain_parent,
195   CUSS &deliver_localpart,
196   CUSS &deliver_localpart_data,
197   CUSS &deliver_localpart_orig,
198   CUSS &deliver_localpart_parent,
199   CUSS &deliver_localpart_prefix,
200   CUSS &deliver_localpart_suffix,
201   CUSS (uschar **)(&deliver_recipients),
202   CUSS &deliver_host,
203   CUSS &deliver_home,
204   CUSS &address_file,
205   CUSS &address_pipe,
206   CUSS &self_hostname,
207   NULL };
208
209 int address_expansions_count = sizeof(address_expansions)/sizeof(uschar **);
210
211 /******************************************************************************/
212 /* General global variables.  Boolean flags are done as a group
213 so that only one bit each is needed, packed, for all those we never
214 need to take a pointer - and only a char for the rest.
215 This means a struct, unfortunately since it clutters the sourcecode. */
216
217 struct global_flags f =
218 {
219         .acl_temp_details       = FALSE,
220         .active_local_from_check = FALSE,
221         .active_local_sender_retain = FALSE,
222         .address_test_mode      = FALSE,
223         .admin_user             = FALSE,
224         .allow_auth_unadvertised= FALSE,
225         .allow_unqualified_recipient = TRUE,    /* For local messages */
226         .allow_unqualified_sender = TRUE,       /* Reset for SMTP */
227         .authentication_local   = FALSE,
228
229         .background_daemon      = TRUE,
230         .bdat_readers_wanted    = FALSE,
231
232         .chunking_offered       = FALSE,
233         .config_changed         = FALSE,
234         .continue_more          = FALSE,
235
236         .daemon_listen          = FALSE,
237         .debug_daemon           = FALSE,
238         .deliver_firsttime      = FALSE,
239         .deliver_force          = FALSE,
240         .deliver_freeze         = FALSE,
241         .deliver_force_thaw     = FALSE,
242         .deliver_manual_thaw    = FALSE,
243         .deliver_selectstring_regex = FALSE,
244         .deliver_selectstring_sender_regex = FALSE,
245         .disable_callout_flush  = FALSE,
246         .disable_delay_flush    = FALSE,
247         .disable_logging        = FALSE,
248 #ifndef DISABLE_DKIM
249         .dkim_disable_verify      = FALSE,
250         .dkim_init_done           = FALSE,
251 #endif
252 #ifdef SUPPORT_DMARC
253         .dmarc_has_been_checked  = FALSE,
254         .dmarc_disable_verify    = FALSE,
255         .dmarc_enable_forensic   = FALSE,
256 #endif
257         .dont_deliver           = FALSE,
258         .dot_ends               = TRUE,
259
260         .enable_dollar_recipients = FALSE,
261         .expand_string_forcedfail = FALSE,
262
263         .filter_running         = FALSE,
264
265         .header_rewritten       = FALSE,
266         .helo_verified          = FALSE,
267         .helo_verify_failed     = FALSE,
268         .host_checking_callout  = FALSE,
269         .host_find_failed_syntax= FALSE,
270
271         .inetd_wait_mode        = FALSE,
272         .is_inetd               = FALSE,
273
274         .local_error_message    = FALSE,
275         .log_testing_mode       = FALSE,
276
277 #ifdef WITH_CONTENT_SCAN
278         .no_mbox_unspool        = FALSE,
279 #endif
280         .no_multiline_responses = FALSE,
281
282         .parse_allow_group      = FALSE,
283         .parse_found_group      = FALSE,
284         .pipelining_enable      = TRUE,
285 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
286         .proxy_session_failed   = FALSE,
287 #endif
288
289         .queue_2stage           = FALSE,
290         .queue_only_policy      = FALSE,
291         .queue_run_first_delivery = FALSE,
292         .queue_run_force        = FALSE,
293         .queue_run_local        = FALSE,
294         .queue_running          = FALSE,
295         .queue_smtp             = FALSE,
296
297         .really_exim            = TRUE,
298         .receive_call_bombout   = FALSE,
299         .recipients_discarded   = FALSE,
300         .running_in_test_harness = FALSE,
301
302         .search_find_defer      = FALSE,
303         .sender_address_forced  = FALSE,
304         .sender_host_notsocket  = FALSE,
305         .sender_host_unknown    = FALSE,
306         .sender_local           = FALSE,
307         .sender_name_forced     = FALSE,
308         .sender_set_untrusted   = FALSE,
309         .smtp_authenticated     = FALSE,
310 #ifndef DISABLE_PIPE_CONNECT
311         .smtp_in_early_pipe_advertised = FALSE,
312         .smtp_in_early_pipe_no_auth = FALSE,
313         .smtp_in_early_pipe_used = FALSE,
314 #endif
315         .smtp_in_pipelining_advertised = FALSE,
316         .smtp_in_pipelining_used = FALSE,
317         .smtp_in_quit           = FALSE,
318         .spool_file_wireformat  = FALSE,
319         .submission_mode        = FALSE,
320         .suppress_local_fixups  = FALSE,
321         .suppress_local_fixups_default = FALSE,
322         .synchronous_delivery   = FALSE,
323         .system_filtering       = FALSE,
324
325         .taint_check_slow       = FALSE,
326         .testsuite_delays       = TRUE,
327         .tcp_fastopen_ok        = FALSE,
328         .tcp_in_fastopen        = FALSE,
329         .tcp_in_fastopen_data   = FALSE,
330         .tcp_in_fastopen_logged = FALSE,
331         .tcp_out_fastopen_logged= FALSE,
332         .timestamps_utc         = FALSE,
333         .transport_filter_timed_out = FALSE,
334         .trusted_caller         = FALSE,
335         .trusted_config         = TRUE,
336 };
337
338 /******************************************************************************/
339 /* These are the flags which are either variables or mainsection options,
340 so an address is needed for access, or are exported to local_scan. */
341
342 BOOL    accept_8bitmime        = TRUE; /* deliberately not RFC compliant */
343 BOOL    allow_domain_literals  = FALSE;
344 BOOL    allow_mx_to_ip         = FALSE;
345 BOOL    allow_utf8_domains     = FALSE;
346 BOOL    authentication_failed  = FALSE;
347
348 BOOL    bounce_return_body     = TRUE;
349 BOOL    bounce_return_message  = TRUE;
350 BOOL    check_rfc2047_length   = TRUE;
351 BOOL    commandline_checks_require_admin = FALSE;
352
353 #ifdef EXPERIMENTAL_DCC
354 BOOL    dcc_direct_add_header  = FALSE;
355 #endif
356 BOOL    debug_store            = FALSE;
357 BOOL    delivery_date_remove   = TRUE;
358 BOOL    deliver_drop_privilege = FALSE;
359 #ifdef ENABLE_DISABLE_FSYNC
360 BOOL    disable_fsync          = FALSE;
361 #endif
362 BOOL    disable_ipv6           = FALSE;
363 BOOL    dns_csa_use_reverse    = TRUE;
364 BOOL    drop_cr                = FALSE;         /* No longer used */
365
366 BOOL    envelope_to_remove     = TRUE;
367 BOOL    exim_gid_set           = TRUE;          /* This gid is always set */
368 BOOL    exim_uid_set           = TRUE;          /* This uid is always set */
369 BOOL    extract_addresses_remove_arguments = TRUE;
370
371 BOOL    host_checking          = FALSE;
372 BOOL    host_lookup_deferred   = FALSE;
373 BOOL    host_lookup_failed     = FALSE;
374 BOOL    ignore_fromline_local  = FALSE;
375
376 BOOL    local_from_check       = TRUE;
377 BOOL    local_sender_retain    = FALSE;
378 BOOL    log_timezone           = FALSE;
379 BOOL    message_body_newlines  = FALSE;
380 BOOL    message_logs           = TRUE;
381 #ifdef SUPPORT_I18N
382 BOOL    message_smtputf8       = FALSE;
383 #endif
384 BOOL    mua_wrapper            = FALSE;
385
386 BOOL    preserve_message_logs  = FALSE;
387 BOOL    print_topbitchars      = FALSE;
388 BOOL    prod_requires_admin    = TRUE;
389 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
390 BOOL    proxy_session          = FALSE;
391 #endif
392
393 #ifndef DISABLE_QUEUE_RAMP
394 BOOL    queue_fast_ramp         = FALSE;
395 #endif
396 BOOL    queue_list_requires_admin = TRUE;
397 BOOL    queue_only             = FALSE;
398 BOOL    queue_only_load_latch  = TRUE;
399 BOOL    queue_only_override    = TRUE;
400 BOOL    queue_run_in_order     = FALSE;
401 BOOL    recipients_max_reject  = FALSE;
402 BOOL    return_path_remove     = TRUE;
403
404 BOOL    smtp_batched_input     = FALSE;
405 BOOL    sender_helo_dnssec     = FALSE;
406 BOOL    sender_host_dnssec     = FALSE;
407 BOOL    smtp_accept_keepalive  = TRUE;
408 BOOL    smtp_check_spool_space = TRUE;
409 BOOL    smtp_enforce_sync      = TRUE;
410 BOOL    smtp_etrn_serialize    = TRUE;
411 BOOL    smtp_input             = FALSE;
412 BOOL    smtp_return_error_details = FALSE;
413 #ifdef SUPPORT_SPF
414 BOOL    spf_result_guessed     = FALSE;
415 #endif
416 BOOL    split_spool_directory  = FALSE;
417 BOOL    spool_wireformat       = FALSE;
418 BOOL    strict_acl_vars        = FALSE;
419 BOOL    strip_excess_angle_brackets = FALSE;
420 BOOL    strip_trailing_dot     = FALSE;
421 BOOL    syslog_duplication     = TRUE;
422 BOOL    syslog_pid             = TRUE;
423 BOOL    syslog_timestamp       = TRUE;
424 BOOL    system_filter_gid_set  = FALSE;
425 BOOL    system_filter_uid_set  = FALSE;
426
427 BOOL    tcp_nodelay            = TRUE;
428 BOOL    write_rejectlog        = TRUE;
429
430 /******************************************************************************/
431
432 header_line *acl_added_headers = NULL;
433 tree_node *acl_anchor          = NULL;
434 uschar *acl_arg[9]             = {NULL, NULL, NULL, NULL, NULL,
435                                   NULL, NULL, NULL, NULL};
436 int     acl_narg               = 0;
437
438 int     acl_level              = 0;
439
440 uschar *acl_not_smtp           = NULL;
441 #ifdef WITH_CONTENT_SCAN
442 uschar *acl_not_smtp_mime      = NULL;
443 #endif
444 uschar *acl_not_smtp_start     = NULL;
445 uschar *acl_removed_headers    = NULL;
446 uschar *acl_smtp_auth          = NULL;
447 uschar *acl_smtp_connect       = NULL;
448 uschar *acl_smtp_data          = NULL;
449 #ifndef DISABLE_PRDR
450 uschar *acl_smtp_data_prdr     = US"accept";
451 #endif
452 #ifndef DISABLE_DKIM
453 uschar *acl_smtp_dkim          = NULL;
454 #endif
455 uschar *acl_smtp_etrn          = NULL;
456 uschar *acl_smtp_expn          = NULL;
457 uschar *acl_smtp_helo          = NULL;
458 uschar *acl_smtp_mail          = NULL;
459 uschar *acl_smtp_mailauth      = NULL;
460 #ifdef WITH_CONTENT_SCAN
461 uschar *acl_smtp_mime          = NULL;
462 #endif
463 uschar *acl_smtp_notquit       = NULL;
464 uschar *acl_smtp_predata       = NULL;
465 uschar *acl_smtp_quit          = NULL;
466 uschar *acl_smtp_rcpt          = NULL;
467 uschar *acl_smtp_starttls      = NULL;
468 uschar *acl_smtp_vrfy          = NULL;
469
470 tree_node *acl_var_c           = NULL;
471 tree_node *acl_var_m           = NULL;
472 uschar *acl_verify_message     = NULL;
473 string_item *acl_warn_logged   = NULL;
474
475 /* Names of SMTP places for use in ACL error messages, and corresponding SMTP
476 error codes - keep in step with definitions of ACL_WHERE_xxxx in macros.h. */
477
478 uschar *acl_wherenames[]       = { US"RCPT",
479                                    US"MAIL",
480                                    US"PREDATA",
481                                    US"MIME",
482                                    US"DKIM",
483                                    US"DATA",
484 #ifndef DISABLE_PRDR
485                                    US"PRDR",
486 #endif
487                                    US"non-SMTP",
488                                    US"AUTH",
489                                    US"connection",
490                                    US"ETRN",
491                                    US"EXPN",
492                                    US"EHLO or HELO",
493                                    US"MAILAUTH",
494                                    US"non-SMTP-start",
495                                    US"NOTQUIT",
496                                    US"QUIT",
497                                    US"STARTTLS",
498                                    US"VRFY",
499                                    US"delivery",
500                                    US"unknown"
501                                  };
502
503 uschar *acl_wherecodes[]       = { US"550",     /* RCPT */
504                                    US"550",     /* MAIL */
505                                    US"550",     /* PREDATA */
506                                    US"550",     /* MIME */
507                                    US"550",     /* DKIM */
508                                    US"550",     /* DATA */
509 #ifndef DISABLE_PRDR
510                                    US"550",    /* RCPT PRDR */
511 #endif
512                                    US"0",       /* not SMTP; not relevant */
513                                    US"503",     /* AUTH */
514                                    US"550",     /* connect */
515                                    US"458",     /* ETRN */
516                                    US"550",     /* EXPN */
517                                    US"550",     /* HELO/EHLO */
518                                    US"0",       /* MAILAUTH; not relevant */
519                                    US"0",       /* not SMTP; not relevant */
520                                    US"0",       /* NOTQUIT; not relevant */
521                                    US"0",       /* QUIT; not relevant */
522                                    US"550",     /* STARTTLS */
523                                    US"252",     /* VRFY */
524                                    US"0",       /* delivery; not relevant */
525                                    US"0"        /* unknown; not relevant */
526                                  };
527
528 uschar *add_environment        = NULL;
529 address_item  *addr_duplicate  = NULL;
530
531 address_item address_defaults = {
532   .next =               NULL,
533   .parent =             NULL,
534   .first =              NULL,
535   .dupof =              NULL,
536   .start_router =       NULL,
537   .router =             NULL,
538   .transport =          NULL,
539   .host_list =          NULL,
540   .host_used =          NULL,
541   .fallback_hosts =     NULL,
542   .reply =              NULL,
543   .retries =            NULL,
544   .address =            NULL,
545   .unique =             NULL,
546   .cc_local_part =      NULL,
547   .lc_local_part =      NULL,
548   .local_part =         NULL,
549   .prefix =             NULL,
550   .prefix_v =           NULL,
551   .suffix =             NULL,
552   .suffix_v =           NULL,
553   .domain =             NULL,
554   .address_retry_key =  NULL,
555   .domain_retry_key =   NULL,
556   .current_dir =        NULL,
557   .home_dir =           NULL,
558   .message =            NULL,
559   .user_message =       NULL,
560   .onetime_parent =     NULL,
561   .pipe_expandn =       NULL,
562   .return_filename =    NULL,
563   .self_hostname =      NULL,
564   .shadow_message =     NULL,
565 #ifndef DISABLE_TLS
566   .cipher =             NULL,
567   .ourcert =            NULL,
568   .peercert =           NULL,
569   .peerdn =             NULL,
570   .ocsp =               OCSP_NOT_REQ,
571 #endif
572 #ifdef EXPERIMENTAL_DSN_INFO
573   .smtp_greeting =      NULL,
574   .helo_response =      NULL,
575 #endif
576   .authenticator =      NULL,
577   .auth_id =            NULL,
578   .auth_sndr =          NULL,
579   .dsn_orcpt =          NULL,
580   .dsn_flags =          0,
581   .dsn_aware =          0,
582   .uid =                (uid_t)(-1),
583   .gid =                (gid_t)(-1),
584   .flags =              { 0 },
585   .domain_cache =       { 0 },                /* domain_cache - any larger array should be zeroed */
586   .localpart_cache =    { 0 },                /* localpart_cache - ditto */
587   .mode =               -1,
588   .more_errno =         0,
589   .delivery_time =      {.tv_sec = 0, .tv_usec = 0},
590   .basic_errno =        ERRNO_UNKNOWNERROR,
591   .child_count =        0,
592   .return_file =        -1,
593   .special_action =     SPECIAL_NONE,
594   .transport_return =   DEFER,
595   .prop = {                                     /* fields that are propagated to children */
596     .address_data =     NULL,
597     .domain_data =      NULL,
598     .localpart_data =   NULL,
599     .errors_address =   NULL,
600     .extra_headers =    NULL,
601     .remove_headers =   NULL,
602     .variables =        NULL,
603     .ignore_error =     FALSE,
604 #ifdef SUPPORT_I18N
605     .utf8_msg =         FALSE,
606     .utf8_downcvt =     FALSE,
607     .utf8_downcvt_maybe = FALSE
608 #endif
609   }
610 };
611
612 uschar *address_file           = NULL;
613 uschar *address_pipe           = NULL;
614 tree_node *addresslist_anchor  = NULL;
615 int     addresslist_count      = 0;
616 gid_t  *admin_groups           = NULL;
617
618 #ifdef EXPERIMENTAL_ARC
619 struct arc_set *arc_received    = NULL;
620 int     arc_received_instance   = 0;
621 int     arc_oldest_pass         = 0;
622 const uschar *arc_state         = NULL;
623 const uschar *arc_state_reason  = NULL;
624 #endif
625
626 uschar *authenticated_fail_id  = NULL;
627 uschar *authenticated_id       = NULL;
628 uschar *authenticated_sender   = NULL;
629 auth_instance  *auths          = NULL;
630 uschar *auth_advertise_hosts   = US"*";
631 auth_instance auth_defaults    = {
632     .next =             NULL,
633     .name =             NULL,
634     .info =             NULL,
635     .options_block =    NULL,
636     .driver_name =      NULL,
637     .advertise_condition = NULL,
638     .client_condition = NULL,
639     .public_name =      NULL,
640     .set_id =           NULL,
641     .set_client_id =    NULL,
642     .mail_auth_condition = NULL,
643     .server_debug_string = NULL,
644     .server_condition = NULL,
645     .client =           FALSE,
646     .server =           FALSE,
647     .advertised =       FALSE
648 };
649
650 uschar *auth_defer_msg         = US"reason not recorded";
651 uschar *auth_defer_user_msg    = US"";
652 const uschar *auth_vars[AUTH_VARS];
653 uschar *authenticator_name     = NULL;
654 int     auto_thaw              = 0;
655 #ifdef WITH_CONTENT_SCAN
656 int     av_failed              = FALSE; /* boolean but accessed as vtype_int*/
657 uschar *av_scanner             = US"sophie:/var/run/sophie";  /* AV scanner */
658 #endif
659
660 #if BASE_62 == 62
661 uschar *base62_chars=
662     US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz";
663 #else
664 uschar *base62_chars= US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ";
665 #endif
666
667 uschar *bi_command             = NULL;
668 uschar *big_buffer             = NULL;
669 int     big_buffer_size        = BIG_BUFFER_SIZE;
670 #ifdef EXPERIMENTAL_BRIGHTMAIL
671 uschar *bmi_alt_location       = NULL;
672 uschar *bmi_base64_tracker_verdict = NULL;
673 uschar *bmi_base64_verdict     = NULL;
674 uschar *bmi_config_file        = US"/opt/brightmail/etc/brightmail.cfg";
675 int     bmi_deliver            = 1;
676 int     bmi_run                = 0;
677 uschar *bmi_verdicts           = NULL;
678 #endif
679 int     bsmtp_transaction_linecount = 0;
680 int     body_8bitmime          = 0;
681 int     body_linecount         = 0;
682 int     body_zerocount         = 0;
683 uschar *bounce_message_file    = NULL;
684 uschar *bounce_message_text    = NULL;
685 uschar *bounce_recipient       = NULL;
686 int     bounce_return_linesize_limit = 998;
687 int     bounce_return_size_limit = 100*1024;
688 uschar *bounce_sender_authentication = NULL;
689
690 uschar *callout_address        = NULL;
691 int     callout_cache_domain_positive_expire = 7*24*60*60;
692 int     callout_cache_domain_negative_expire = 3*60*60;
693 int     callout_cache_positive_expire = 24*60*60;
694 int     callout_cache_negative_expire = 2*60*60;
695 uschar *callout_random_local_part = US"$primary_hostname-$tod_epoch-testing";
696 uschar *check_dns_names_pattern= US"(?i)^(?>(?(1)\\.|())[^\\W](?>[a-z0-9/_-]*[^\\W])?)+(\\.?)$";
697 int     check_log_inodes       = 100;
698 int_eximarith_t check_log_space = 10*1024;      /* 10K Kbyte == 10MB */
699 int     check_spool_inodes     = 100;
700 int_eximarith_t check_spool_space = 10*1024;    /* 10K Kbyte == 10MB */
701
702 uschar *chunking_advertise_hosts = US"*";
703 unsigned chunking_datasize     = 0;
704 unsigned chunking_data_left    = 0;
705 chunking_state_t chunking_state= CHUNKING_NOT_OFFERED;
706 const pcre2_code *regex_CHUNKING     = NULL;
707
708 #ifdef EXPERIMENTAL_ESMTP_LIMITS
709 const pcre2_code *regex_LIMITS        = NULL;
710 #endif
711
712 uschar *client_authenticator   = NULL;
713 uschar *client_authenticated_id = NULL;
714 uschar *client_authenticated_sender = NULL;
715 int     clmacro_count          = 0;
716 uschar *clmacros[MAX_CLMACROS];
717 FILE   *config_file            = NULL;
718 const uschar *config_filename  = NULL;
719 int     config_lineno          = 0;
720 #ifdef CONFIGURE_GROUP
721 gid_t   config_gid             = CONFIGURE_GROUP;
722 #else
723 gid_t   config_gid             = 0;
724 #endif
725 uschar *config_main_filelist   = US CONFIGURE_FILE
726                          "\0<-----------Space to patch configure_filename->";
727 uschar *config_main_filename   = NULL;
728 uschar *config_main_directory  = NULL;
729
730 #ifdef CONFIGURE_OWNER
731 uid_t   config_uid             = CONFIGURE_OWNER;
732 #else
733 uid_t   config_uid             = 0;
734 #endif
735
736 int     connection_max_messages= -1;
737 uschar *continue_proxy_cipher  = NULL;
738 BOOL    continue_proxy_dane    = FALSE;
739 uschar *continue_proxy_sni     = NULL;
740 uschar *continue_hostname      = NULL;
741 uschar *continue_host_address  = NULL;
742 int     continue_sequence      = 1;
743 uschar *continue_transport     = NULL;
744 #ifdef EXPERIMENTAL_ESMTP_LIMITS
745 unsigned continue_limit_mail   = 0;
746 unsigned continue_limit_rcpt   = 0;
747 unsigned continue_limit_rcptdom= 0;
748 #endif
749
750 uschar *csa_status             = NULL;
751 cut_t   cutthrough = {
752   .callout_hold_only =  FALSE,                          /* verify-only: normal delivery */
753   .delivery =           FALSE,                          /* when to attempt */
754   .defer_pass =         FALSE,                          /* on defer: spool locally */
755   .is_tls =             FALSE,                          /* not a TLS conn yet */
756   .cctx =               {.sock = -1},                   /* open connection */
757   .nrcpt =              0,                              /* number of addresses */
758 };
759
760 int     daemon_notifier_fd     = -1;
761 uschar *daemon_smtp_port       = US"smtp";
762 int     daemon_startup_retries = 9;
763 int     daemon_startup_sleep   = 30;
764
765 #ifdef EXPERIMENTAL_DCC
766 uschar *dcc_header             = NULL;
767 uschar *dcc_result             = NULL;
768 uschar *dccifd_address         = US"/usr/local/dcc/var/dccifd";
769 uschar *dccifd_options         = US"header";
770 #endif
771
772 int     debug_fd               = -1;
773 FILE   *debug_file             = NULL;
774 int     debug_notall[]         = {
775   Di_memory,
776   Di_noutf8,
777   -1
778 };
779 bit_table debug_options[]      = { /* must be in alphabetical order and use
780                                  only the enum values from macro.h */
781   BIT_TABLE(D, acl),
782   BIT_TABLE(D, all),
783   BIT_TABLE(D, auth),
784   BIT_TABLE(D, deliver),
785   BIT_TABLE(D, dns),
786   BIT_TABLE(D, dnsbl),
787   BIT_TABLE(D, exec),
788   BIT_TABLE(D, expand),
789   BIT_TABLE(D, filter),
790   BIT_TABLE(D, hints_lookup),
791   BIT_TABLE(D, host_lookup),
792   BIT_TABLE(D, ident),
793   BIT_TABLE(D, interface),
794   BIT_TABLE(D, lists),
795   BIT_TABLE(D, load),
796   BIT_TABLE(D, local_scan),
797   BIT_TABLE(D, lookup),
798   BIT_TABLE(D, memory),
799   BIT_TABLE(D, noutf8),
800   BIT_TABLE(D, pid),
801   BIT_TABLE(D, process_info),
802   BIT_TABLE(D, queue_run),
803   BIT_TABLE(D, receive),
804   BIT_TABLE(D, resolver),
805   BIT_TABLE(D, retry),
806   BIT_TABLE(D, rewrite),
807   BIT_TABLE(D, route),
808   BIT_TABLE(D, timestamp),
809   BIT_TABLE(D, tls),
810   BIT_TABLE(D, transport),
811   BIT_TABLE(D, uid),
812   BIT_TABLE(D, verify),
813 };
814 int     debug_options_count    = nelem(debug_options);
815 unsigned debug_pretrigger_bsize= 0;
816 uschar * debug_pretrigger_buf  = NULL;
817 unsigned int debug_selector    = 0;
818
819 int     delay_warning[DELAY_WARNING_SIZE] = { DELAY_WARNING_SIZE, 1, 24*60*60 };
820 uschar *delay_warning_condition=
821   US"${if or {"
822             "{ !eq{$h_list-id:$h_list-post:$h_list-subscribe:}{} }"
823             "{ match{$h_precedence:}{(?i)bulk|list|junk} }"
824             "{ match{$h_auto-submitted:}{(?i)auto-generated|auto-replied} }"
825             "} {no}{yes}}";
826 uschar *deliver_address_data   = NULL;
827 int     deliver_datafile       = -1;
828 const uschar *deliver_domain   = NULL;
829 uschar *deliver_domain_data    = NULL;
830 const uschar *deliver_domain_orig = NULL;
831 const uschar *deliver_domain_parent = NULL;
832 time_t  deliver_frozen_at      = 0;
833 uschar *deliver_home           = NULL;
834 const uschar *deliver_host     = NULL;
835 const uschar *deliver_host_address = NULL;
836 int     deliver_host_port      = 0;
837 uschar *deliver_in_buffer      = NULL;
838 ino_t   deliver_inode          = 0;
839 uschar *deliver_localpart      = NULL;
840 uschar *deliver_localpart_data = NULL;
841 uschar *deliver_localpart_orig = NULL;
842 uschar *deliver_localpart_parent = NULL;
843 uschar *deliver_localpart_prefix = NULL;
844 uschar *deliver_localpart_prefix_v = NULL;
845 uschar *deliver_localpart_suffix = NULL;
846 uschar *deliver_localpart_suffix_v = NULL;
847 uschar *deliver_out_buffer     = NULL;
848 int     deliver_queue_load_max = -1;
849 address_item  *deliver_recipients = NULL;
850 uschar *deliver_selectstring   = NULL;
851 uschar *deliver_selectstring_sender = NULL;
852
853 #ifndef DISABLE_DKIM
854 unsigned dkim_collect_input      = 0;
855 uschar *dkim_cur_signer          = NULL;
856 int     dkim_key_length          = 0;
857 void   *dkim_signatures          = NULL;
858 uschar *dkim_signers             = NULL;
859 uschar *dkim_signing_domain      = NULL;
860 uschar *dkim_signing_selector    = NULL;
861 uschar *dkim_verify_hashes       = US"sha256:sha512";
862 uschar *dkim_verify_keytypes     = US"ed25519:rsa";
863 uschar *dkim_verify_min_keysizes = US"rsa=1024 ed25519=250";
864 BOOL    dkim_verify_minimal      = FALSE;
865 uschar *dkim_verify_overall      = NULL;
866 uschar *dkim_verify_signers      = US"$dkim_signers";
867 uschar *dkim_verify_status       = NULL;
868 uschar *dkim_verify_reason       = NULL;
869 #endif
870 #ifdef SUPPORT_DMARC
871 uschar *dmarc_domain_policy     = NULL;
872 uschar *dmarc_forensic_sender   = NULL;
873 uschar *dmarc_history_file      = NULL;
874 uschar *dmarc_status            = NULL;
875 uschar *dmarc_status_text       = NULL;
876 uschar *dmarc_tld_file          = NULL;
877 uschar *dmarc_used_domain       = NULL;
878 #endif
879
880 uschar *dns_again_means_nonexist = NULL;
881 int     dns_csa_search_limit   = 5;
882 int     dns_cname_loops        = 1;
883 #ifdef SUPPORT_DANE
884 int     dns_dane_ok            = -1;
885 #endif
886 uschar *dns_ipv4_lookup        = NULL;
887 int     dns_retrans            = 0;
888 int     dns_retry              = 0;
889 int     dns_dnssec_ok          = -1; /* <0 = not coerced */
890 uschar *dns_trust_aa           = NULL;
891 int     dns_use_edns0          = -1; /* <0 = not coerced */
892 uschar *dnslist_domain         = NULL;
893 uschar *dnslist_matched        = NULL;
894 uschar *dnslist_text           = NULL;
895 uschar *dnslist_value          = NULL;
896 tree_node *domainlist_anchor   = NULL;
897 int     domainlist_count       = 0;
898 const uschar *driver_srcfile   = NULL;
899 int     driver_srcline         = 0;
900 uschar *dsn_from               = US DEFAULT_DSN_FROM;
901 unsigned int dtrigger_selector = 0;
902
903 int     errno_quota            = ERRNO_QUOTA;
904 uschar *errors_copy            = NULL;
905 int     error_handling         = ERRORS_SENDER;
906 uschar *errors_reply_to        = NULL;
907 int     errors_sender_rc       = EXIT_FAILURE;
908 #ifndef DISABLE_EVENT
909 uschar *event_action             = NULL;        /* expansion for delivery events */
910 uschar *event_data               = NULL;        /* auxiliary data variable for event */
911 int     event_defer_errno        = 0;
912 const uschar *event_name         = NULL;        /* event name variable */
913 #endif
914
915
916 gid_t   exim_gid               = EXIM_GID;
917 uschar *exim_path              = US BIN_DIRECTORY "/exim"
918                         "\0<---------------Space to patch exim_path->";
919 uid_t   exim_uid               = EXIM_UID;
920 int     expand_level           = 0;             /* Nesting depth, indent for debug */
921 int     expand_forbid          = 0;
922 int     expand_nlength[EXPAND_MAXN+1];
923 int     expand_nmax            = -1;
924 const uschar *expand_nstring[EXPAND_MAXN+1];
925 uschar *expand_string_message;
926 uschar *extra_local_interfaces = NULL;
927
928 int     fake_response          = OK;
929 uschar *fake_response_text     = US"Your message has been rejected but is "
930                                    "being kept for evaluation.\nIf it was a "
931                                    "legitimate message, it may still be "
932                                    "delivered to the target recipient(s).";
933 int     filter_n[FILTER_VARIABLE_COUNT];
934 int     filter_sn[FILTER_VARIABLE_COUNT];
935 int     filter_test            = FTEST_NONE;
936 uschar *filter_test_sfile      = NULL;
937 uschar *filter_test_ufile      = NULL;
938 uschar *filter_thisaddress     = NULL;
939 int     finduser_retries       = 0;
940 uid_t   fixed_never_users[]    = { FIXED_NEVER_USERS };
941 uschar *freeze_tell            = NULL;
942 uschar *freeze_tell_config     = NULL;
943 uschar *fudged_queue_times     = US"";
944
945 uschar *gecos_name             = NULL;
946 uschar *gecos_pattern          = NULL;
947 rewrite_rule  *global_rewrite_rules = NULL;
948
949 volatile sig_atomic_t had_command_timeout = 0;
950 volatile sig_atomic_t had_command_sigterm = 0;
951 volatile sig_atomic_t had_data_timeout    = 0;
952 volatile sig_atomic_t had_data_sigint     = 0;
953 const uschar *headers_charset  = US HEADERS_CHARSET;
954 int     header_insert_maxlen   = 64 * 1024;
955 header_line  *header_last      = NULL;
956 header_line  *header_list      = NULL;
957 int     header_maxsize         = HEADER_MAXSIZE;
958 int     header_line_maxsize    = 0;
959
960 header_name header_names[] = {
961   /* name               len     allow_resent    htype */
962   { US"bcc",            3,      TRUE,           htype_bcc },
963   { US"cc",             2,      TRUE,           htype_cc },
964   { US"date",           4,      TRUE,           htype_date },
965   { US"delivery-date", 13,      FALSE,          htype_delivery_date },
966   { US"envelope-to",   11,      FALSE,          htype_envelope_to },
967   { US"from",           4,      TRUE,           htype_from },
968   { US"message-id",    10,      TRUE,           htype_id },
969   { US"received",       8,      FALSE,          htype_received },
970   { US"reply-to",       8,      FALSE,          htype_reply_to },
971   { US"return-path",   11,      FALSE,          htype_return_path },
972   { US"sender",         6,      TRUE,           htype_sender },
973   { US"subject",        7,      FALSE,          htype_subject },
974   { US"to",             2,      TRUE,           htype_to }
975 };
976
977 int header_names_size          = nelem(header_names);
978
979 uschar *helo_accept_junk_hosts = NULL;
980 uschar *helo_allow_chars       = US"";
981 uschar *helo_lookup_domains    = US"@ : @[]";
982 uschar *helo_try_verify_hosts  = NULL;
983 uschar *helo_verify_hosts      = NULL;
984 const uschar *hex_digits       = CUS"0123456789abcdef";
985 uschar *hold_domains           = NULL;
986 uschar *host_data              = NULL;
987 uschar *host_lookup            = NULL;
988 uschar *host_lookup_order      = US"bydns:byaddr";
989 uschar *host_lookup_msg        = US"";
990 int     host_number            = 0;
991 uschar *host_number_string     = NULL;
992 uschar *host_reject_connection = NULL;
993 tree_node *hostlist_anchor     = NULL;
994 int     hostlist_count         = 0;
995 uschar *hosts_treat_as_local   = NULL;
996 uschar *hosts_require_helo     = US"*";
997 uschar *hosts_connection_nolog = NULL;
998
999 int     ignore_bounce_errors_after = 10*7*24*60*60;  /* 10 weeks */
1000 uschar *ignore_fromline_hosts  = NULL;
1001 int     inetd_wait_timeout     = -1;
1002 uschar *initial_cwd            = NULL;
1003 uschar *interface_address      = NULL;
1004 int     interface_port         = -1;
1005 uschar *iterate_item           = NULL;
1006
1007 int     journal_fd             = -1;
1008
1009 uschar *keep_environment       = NULL;
1010
1011 int     keep_malformed         = 4*24*60*60;    /* 4 days */
1012
1013 uschar *eldap_dn               = NULL;
1014 #ifdef EXPERIMENTAL_ESMTP_LIMITS
1015 uschar *limits_advertise_hosts = US"*";
1016 #endif
1017 int     load_average           = -2;
1018 uschar *local_from_prefix      = NULL;
1019 uschar *local_from_suffix      = NULL;
1020
1021 #if HAVE_IPV6
1022 uschar *local_interfaces       = US"<; ::0 ; 0.0.0.0";
1023 #else
1024 uschar *local_interfaces       = US"0.0.0.0";
1025 #endif
1026
1027 #ifdef HAVE_LOCAL_SCAN
1028 uschar *local_scan_data        = NULL;
1029 int     local_scan_timeout     = 5*60;
1030 #endif
1031 gid_t   local_user_gid         = (gid_t)(-1);
1032 uid_t   local_user_uid         = (uid_t)(-1);
1033
1034 tree_node *localpartlist_anchor= NULL;
1035 int     localpartlist_count    = 0;
1036 uschar *log_buffer             = NULL;
1037
1038 int     log_default[]          = { /* for initializing log_selector */
1039   Li_acl_warn_skipped,
1040   Li_connection_reject,
1041   Li_delay_delivery,
1042   Li_dkim,
1043   Li_dnslist_defer,
1044   Li_etrn,
1045   Li_host_lookup_failed,
1046   Li_lost_incoming_connection,
1047   Li_outgoing_interface, /* see d_log_interface in deliver.c */
1048   Li_msg_id,
1049   Li_queue_run,
1050   Li_queue_time_exclusive,
1051   Li_rejected_header,
1052   Li_retry_defer,
1053   Li_sender_verify_fail,
1054   Li_size_reject,
1055   Li_skip_delivery,
1056   Li_smtp_confirmation,
1057   Li_tls_certificate_verified,
1058   Li_tls_cipher,
1059   -1
1060 };
1061
1062 uschar *log_file_path          = US LOG_FILE_PATH
1063                            "\0<--------------Space to patch log_file_path->";
1064
1065 int     log_notall[]           = {
1066   -1
1067 };
1068 bit_table log_options[]        = { /* must be in alphabetical order,
1069                                 with definitions from enum logbit. */
1070   BIT_TABLE(L, 8bitmime),
1071   BIT_TABLE(L, acl_warn_skipped),
1072   BIT_TABLE(L, address_rewrite),
1073   BIT_TABLE(L, all),
1074   BIT_TABLE(L, all_parents),
1075   BIT_TABLE(L, arguments),
1076   BIT_TABLE(L, connection_reject),
1077   BIT_TABLE(L, delay_delivery),
1078   BIT_TABLE(L, deliver_time),
1079   BIT_TABLE(L, delivery_size),
1080 #ifndef DISABLE_DKIM
1081   BIT_TABLE(L, dkim),
1082   BIT_TABLE(L, dkim_verbose),
1083 #endif
1084   BIT_TABLE(L, dnslist_defer),
1085   BIT_TABLE(L, dnssec),
1086   BIT_TABLE(L, etrn),
1087   BIT_TABLE(L, host_lookup_failed),
1088   BIT_TABLE(L, ident_timeout),
1089   BIT_TABLE(L, incoming_interface),
1090   BIT_TABLE(L, incoming_port),
1091   BIT_TABLE(L, lost_incoming_connection),
1092   BIT_TABLE(L, millisec),
1093   BIT_TABLE(L, msg_id),
1094   BIT_TABLE(L, msg_id_created),
1095   BIT_TABLE(L, outgoing_interface),
1096   BIT_TABLE(L, outgoing_port),
1097   BIT_TABLE(L, pid),
1098   BIT_TABLE(L, pipelining),
1099   BIT_TABLE(L, protocol_detail),
1100 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1101   BIT_TABLE(L, proxy),
1102 #endif
1103   BIT_TABLE(L, queue_run),
1104   BIT_TABLE(L, queue_time),
1105   BIT_TABLE(L, queue_time_exclusive),
1106   BIT_TABLE(L, queue_time_overall),
1107   BIT_TABLE(L, receive_time),
1108   BIT_TABLE(L, received_recipients),
1109   BIT_TABLE(L, received_sender),
1110   BIT_TABLE(L, rejected_header),
1111   { US"rejected_headers", Li_rejected_header },
1112   BIT_TABLE(L, retry_defer),
1113   BIT_TABLE(L, return_path_on_delivery),
1114   BIT_TABLE(L, sender_on_delivery),
1115   BIT_TABLE(L, sender_verify_fail),
1116   BIT_TABLE(L, size_reject),
1117   BIT_TABLE(L, skip_delivery),
1118   BIT_TABLE(L, smtp_confirmation),
1119   BIT_TABLE(L, smtp_connection),
1120   BIT_TABLE(L, smtp_incomplete_transaction),
1121   BIT_TABLE(L, smtp_mailauth),
1122   BIT_TABLE(L, smtp_no_mail),
1123   BIT_TABLE(L, smtp_protocol_error),
1124   BIT_TABLE(L, smtp_syntax_error),
1125   BIT_TABLE(L, subject),
1126   BIT_TABLE(L, tls_certificate_verified),
1127   BIT_TABLE(L, tls_cipher),
1128   BIT_TABLE(L, tls_peerdn),
1129   BIT_TABLE(L, tls_resumption),
1130   BIT_TABLE(L, tls_sni),
1131   BIT_TABLE(L, unknown_in_list),
1132 };
1133 int     log_options_count      = nelem(log_options);
1134
1135 int     log_reject_target      = 0;
1136 unsigned int log_selector[log_selector_size]; /* initialized in main() */
1137 uschar *log_selector_string    = NULL;
1138 FILE   *log_stderr             = NULL;
1139 uschar *login_sender_address   = NULL;
1140 uschar *lookup_dnssec_authenticated = NULL;
1141 int     lookup_open_max        = 25;
1142 uschar *lookup_value           = NULL;
1143
1144 macro_item *macros_user        = NULL;
1145 uschar *mailstore_basename     = NULL;
1146 #ifdef WITH_CONTENT_SCAN
1147 uschar *malware_name           = NULL;  /* Virus Name */
1148 #endif
1149 int     max_received_linelength= 0;
1150 int     max_username_length    = 0;
1151 int     message_age            = 0;
1152 uschar *message_body           = NULL;
1153 uschar *message_body_end       = NULL;
1154 int     message_body_size      = 0;
1155 int     message_body_visible   = 500;
1156 int     message_ended          = END_NOTSTARTED;
1157 uschar *message_headers        = NULL;
1158 uschar *message_id;
1159 uschar *message_id_domain      = NULL;
1160 uschar *message_id_text        = NULL;
1161 uschar  message_id_option[MESSAGE_ID_LENGTH + 3];
1162 uschar *message_id_external;
1163 int     message_linecount      = 0;
1164 int     message_size           = 0;
1165 uschar *message_size_limit     = US"50M";
1166 #ifdef SUPPORT_I18N
1167 int     message_utf8_downconvert = 0;   /* -1 ifneeded; 0 never; 1 always */
1168 #endif
1169 uschar  message_subdir[2]      = { 0, 0 };
1170 uschar *message_reference      = NULL;
1171
1172 /* MIME ACL expandables */
1173 #ifdef WITH_CONTENT_SCAN
1174 int     mime_anomaly_level     = 0;
1175 const uschar *mime_anomaly_text      = NULL;
1176 uschar *mime_boundary          = NULL;
1177 uschar *mime_charset           = NULL;
1178 uschar *mime_content_description = NULL;
1179 uschar *mime_content_disposition = NULL;
1180 uschar *mime_content_id        = NULL;
1181 unsigned int mime_content_size = 0;
1182 uschar *mime_content_transfer_encoding = NULL;
1183 uschar *mime_content_type      = NULL;
1184 uschar *mime_decoded_filename  = NULL;
1185 uschar *mime_filename          = NULL;
1186 int     mime_is_multipart      = 0;
1187 int     mime_is_coverletter    = 0;
1188 int     mime_is_rfc822         = 0;
1189 int     mime_part_count        = -1;
1190 #endif
1191
1192 uid_t  *never_users            = NULL;
1193 uschar *notifier_socket        = US"$spool_directory/" NOTIFIER_SOCKET_NAME ;
1194
1195 const int on                   = 1;     /* for setsockopt */
1196 const int off                  = 0;
1197
1198 uid_t   original_euid;
1199 gid_t   originator_gid;
1200 uschar *originator_login       = NULL;
1201 uschar *originator_name        = NULL;
1202 uid_t   originator_uid;
1203 uschar *override_local_interfaces = NULL;
1204 uschar *override_pid_file_path = NULL;
1205
1206 pcre2_general_context * pcre_gen_ctx = NULL;
1207 pcre2_compile_context * pcre_cmp_ctx = NULL;
1208 pcre2_match_context * pcre_mtc_ctx = NULL;
1209
1210 uschar *percent_hack_domains   = NULL;
1211 uschar *pid_file_path          = US PID_FILE_PATH
1212                            "\0<--------------Space to patch pid_file_path->";
1213 #ifndef DISABLE_PIPE_CONNECT
1214 uschar *pipe_connect_advertise_hosts = US"*";
1215 #endif
1216 uschar *pipelining_advertise_hosts = US"*";
1217 uschar *primary_hostname       = NULL;
1218 uschar *process_info;
1219 int     process_info_len       = 0;
1220 uschar *process_log_path       = NULL;
1221 const uschar *process_purpose  = US"fresh-exec";
1222
1223 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1224 uschar *hosts_proxy            = NULL;
1225 uschar *proxy_external_address = NULL;
1226 int     proxy_external_port    = 0;
1227 uschar *proxy_local_address    = NULL;
1228 int     proxy_local_port       = 0;
1229 int     proxy_protocol_timeout = 3;
1230 #endif
1231
1232 uschar *prvscheck_address      = NULL;
1233 uschar *prvscheck_keynum       = NULL;
1234 uschar *prvscheck_result       = NULL;
1235
1236
1237 const uschar *qualify_domain_recipient = NULL;
1238 uschar *qualify_domain_sender  = NULL;
1239 uschar *queue_domains          = NULL;
1240 int     queue_interval         = -1;
1241 uschar *queue_name             = US"";
1242 uschar *queue_name_dest        = NULL;
1243 uschar *queue_only_file        = NULL;
1244 int     queue_only_load        = -1;
1245 uschar *queue_run_max          = US"5";
1246 pid_t   queue_run_pid          = (pid_t)0;
1247 int     queue_run_pipe         = -1;
1248 unsigned queue_size            = 0;
1249 time_t  queue_size_next        = 0;
1250 uschar *queue_smtp_domains     = NULL;
1251
1252 uint32_t random_seed           = 0;
1253 tree_node *ratelimiters_cmd    = NULL;
1254 tree_node *ratelimiters_conn   = NULL;
1255 tree_node *ratelimiters_mail   = NULL;
1256 uschar *raw_active_hostname    = NULL;
1257 uschar *raw_sender             = NULL;
1258 uschar **raw_recipients        = NULL;
1259 int     raw_recipients_count   = 0;
1260
1261 int     rcpt_count             = 0;
1262 int     rcpt_fail_count        = 0;
1263 int     rcpt_defer_count       = 0;
1264 gid_t   real_gid;
1265 uid_t   real_uid;
1266 int     receive_linecount      = 0;
1267 int     receive_messagecount   = 0;
1268 int     receive_timeout        = 0;
1269 int     received_count         = 0;
1270 uschar *received_for           = NULL;
1271
1272 /*  This is the default text for Received headers generated by Exim. The
1273 date  will be automatically added on the end. */
1274
1275 uschar *received_header_text   = US
1276      "Received: "
1277      "${if def:sender_rcvhost {from $sender_rcvhost\n\t}"
1278        "{${if def:sender_ident {from ${quote_local_part:$sender_ident} }}"
1279          "${if def:sender_helo_name {(helo=$sender_helo_name)\n\t}}}}"
1280      "by $primary_hostname "
1281      "${if def:received_protocol {with $received_protocol }}"
1282 #ifndef DISABLE_TLS
1283      "${if def:tls_in_ver        { ($tls_in_ver)}}"
1284      "${if def:tls_in_cipher_std { tls $tls_in_cipher_std\n\t}}"
1285 #endif
1286      "(Exim $version_number)\n\t"
1287      "${if def:sender_address {(envelope-from <$sender_address>)\n\t}}"
1288      "id $message_exim_id"
1289      "${if def:received_for {\n\tfor $received_for}}"
1290      "\0<---------------Space to patch received_header_text->";
1291
1292 int     received_headers_max   = 30;
1293 uschar *received_protocol      = NULL;
1294 struct timeval received_time   = { 0, 0 };
1295 struct timeval received_time_complete = { 0, 0 };
1296 uschar *recipient_data         = NULL;
1297 uschar *recipient_unqualified_hosts = NULL;
1298 uschar *recipient_verify_failure = NULL;
1299 int     recipients_count       = 0;
1300 recipient_item  *recipients_list = NULL;
1301 int     recipients_list_max    = 0;
1302 int     recipients_max         = 50000;
1303 const pcre2_code *regex_AUTH         = NULL;
1304 const pcre2_code *regex_check_dns_names = NULL;
1305 const pcre2_code *regex_From         = NULL;
1306 const pcre2_code *regex_IGNOREQUOTA  = NULL;
1307 const pcre2_code *regex_PIPELINING   = NULL;
1308 const pcre2_code *regex_SIZE         = NULL;
1309 #ifndef DISABLE_PIPE_CONNECT
1310 const pcre2_code *regex_EARLY_PIPE   = NULL;
1311 #endif
1312 const pcre2_code *regex_ismsgid      = NULL;
1313 const pcre2_code *regex_smtp_code    = NULL;
1314 const uschar *regex_vars[REGEX_VARS];
1315 #ifdef WHITELIST_D_MACROS
1316 const pcre2_code *regex_whitelisted_macro = NULL;
1317 #endif
1318 #ifdef WITH_CONTENT_SCAN
1319 uschar *regex_match_string     = NULL;
1320 #endif
1321 int     remote_delivery_count  = 0;
1322 int     remote_max_parallel    = 2;
1323 uschar *remote_sort_domains    = NULL;
1324 int     retry_data_expire      = 7*24*60*60;
1325 int     retry_interval_max     = 24*60*60;
1326 int     retry_maximum_timeout  = 0;        /* set from retry config */
1327 retry_config  *retries         = NULL;
1328 uschar *return_path            = NULL;
1329 int     rewrite_existflags     = 0;
1330 uschar *rfc1413_hosts          = US"@[]";
1331 int     rfc1413_query_timeout  = 0;
1332 uid_t   root_gid               = ROOT_GID;
1333 uid_t   root_uid               = ROOT_UID;
1334
1335 router_instance  *routers  = NULL;
1336 router_instance  router_defaults = {
1337     .next =                     NULL,
1338     .name =                     NULL,
1339     .info =                     NULL,
1340     .options_block =            NULL,
1341     .driver_name =              NULL,
1342
1343     .address_data =             NULL,
1344 #ifdef EXPERIMENTAL_BRIGHTMAIL
1345     .bmi_rule =                 NULL,
1346 #endif
1347     .cannot_route_message =     NULL,
1348     .condition =                NULL,
1349     .current_directory =        NULL,
1350     .debug_string =             NULL,
1351     .domains =                  NULL,
1352     .errors_to =                NULL,
1353     .expand_gid =               NULL,
1354     .expand_uid =               NULL,
1355     .expand_more =              NULL,
1356     .expand_unseen =            NULL,
1357     .extra_headers =            NULL,
1358     .fallback_hosts =           NULL,
1359     .home_directory =           NULL,
1360     .ignore_target_hosts =      NULL,
1361     .local_parts =              NULL,
1362     .pass_router_name =         NULL,
1363     .prefix =                   NULL,
1364     .redirect_router_name =     NULL,
1365     .remove_headers =           NULL,
1366     .require_files =            NULL,
1367     .router_home_directory =    NULL,
1368     .self =                     US"freeze",
1369     .senders =                  NULL,
1370     .suffix =                   NULL,
1371     .translate_ip_address =     NULL,
1372     .transport_name =           NULL,
1373
1374     .address_test =             TRUE,
1375 #ifdef EXPERIMENTAL_BRIGHTMAIL
1376     .bmi_deliver_alternate =    FALSE,
1377     .bmi_deliver_default =      FALSE,
1378     .bmi_dont_deliver =         FALSE,
1379 #endif
1380     .expn =                     TRUE,
1381     .caseful_local_part =       FALSE,
1382     .check_local_user =         FALSE,
1383     .disable_logging =          FALSE,
1384     .fail_verify_recipient =    FALSE,
1385     .fail_verify_sender =       FALSE,
1386     .gid_set =                  FALSE,
1387     .initgroups =               FALSE,
1388     .log_as_local =             TRUE_UNSET,
1389     .more =                     TRUE,
1390     .pass_on_timeout =          FALSE,
1391     .prefix_optional =          FALSE,
1392     .repeat_use =               TRUE,
1393     .retry_use_local_part =     TRUE_UNSET,
1394     .same_domain_copy_routing = FALSE,
1395     .self_rewrite =             FALSE,
1396     .set =                      NULL,
1397     .suffix_optional =          FALSE,
1398     .verify_only =              FALSE,
1399     .verify_recipient =         TRUE,
1400     .verify_sender =            TRUE,
1401     .uid_set =                  FALSE,
1402     .unseen =                   FALSE,
1403     .dsn_lasthop =              FALSE,
1404
1405     .self_code =                self_freeze,
1406     .uid =                      (uid_t)(-1),
1407     .gid =                      (gid_t)(-1),
1408
1409     .fallback_hostlist =        NULL,
1410     .transport =                NULL,
1411     .pass_router =              NULL,
1412     .redirect_router =          NULL,
1413
1414     .dnssec =                   { .request= US"*", .require=NULL },
1415 };
1416
1417 uschar *router_name            = NULL;
1418 tree_node *router_var          = NULL;
1419
1420 ip_address_item *running_interfaces = NULL;
1421
1422 /* This is a weird one. The following string gets patched in the binary by the
1423 script that sets up a copy of Exim for running in the test harness. It seems
1424 that compilers are now clever, and share constant strings if they can.
1425 Elsewhere in Exim the string "<" is used. The compiler optimization seems to
1426 make use of the end of this string in order to save space. So the patching then
1427 wrecks this. We defeat this optimization by adding some additional characters
1428 onto the end of the string. */
1429
1430 uschar *running_status         = US">>>running<<<" "\0EXTRA";
1431
1432 int     runrc                  = 0;
1433
1434 uschar *search_error_message   = NULL;
1435 uschar *self_hostname          = NULL;
1436 uschar *sender_address         = NULL;
1437 unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32];
1438 uschar *sender_address_data    = NULL;
1439 uschar *sender_address_unrewritten = NULL;
1440 uschar *sender_data            = NULL;
1441 unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32];
1442 uschar *sender_fullhost        = NULL;
1443 uschar *sender_helo_name       = NULL;
1444 uschar **sender_host_aliases   = &no_aliases;
1445 uschar *sender_host_address    = NULL;
1446 uschar *sender_host_authenticated = NULL;
1447 uschar *sender_host_auth_pubname  = NULL;
1448 unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32];
1449 uschar *sender_host_name       = NULL;
1450 int     sender_host_port       = 0;
1451 uschar *sender_ident           = NULL;
1452 uschar *sender_rate            = NULL;
1453 uschar *sender_rate_limit      = NULL;
1454 uschar *sender_rate_period     = NULL;
1455 uschar *sender_rcvhost         = NULL;
1456 uschar *sender_unqualified_hosts = NULL;
1457 uschar *sender_verify_failure = NULL;
1458 address_item *sender_verified_list  = NULL;
1459 address_item *sender_verified_failed = NULL;
1460 int     sender_verified_rc     = -1;
1461 uschar *sending_ip_address     = NULL;
1462 int     sending_port           = -1;
1463 SIGNAL_BOOL sigalrm_seen       = FALSE;
1464 const uschar *sigalarm_setter  = NULL;
1465 uschar **sighup_argv           = NULL;
1466 int     slow_lookup_log        = 0;     /* millisecs, zero disables */
1467 int     smtp_accept_count      = 0;
1468 int     smtp_accept_max        = 20;
1469 int     smtp_accept_max_nonmail= 10;
1470 uschar *smtp_accept_max_nonmail_hosts = US"*";
1471 uschar *smtp_accept_max_per_connection = US"1000";
1472 uschar *smtp_accept_max_per_host = NULL;
1473 int     smtp_accept_queue      = 0;
1474 int     smtp_accept_queue_per_connection = 10;
1475 int     smtp_accept_reserve    = 0;
1476 uschar *smtp_active_hostname   = NULL;
1477 int     smtp_backlog_monitor   = 0;
1478 uschar *smtp_banner            = US"$smtp_active_hostname ESMTP "
1479                              "Exim $version_number $tod_full"
1480                              "\0<---------------Space to patch smtp_banner->";
1481 int     smtp_ch_index          = 0;
1482 uschar *smtp_cmd_argument      = NULL;
1483 uschar *smtp_cmd_buffer        = NULL;
1484 struct timeval smtp_connection_start  = {0,0};
1485 uschar  smtp_connection_had[SMTP_HBUFF_SIZE];
1486 int     smtp_connect_backlog   = 20;
1487 double  smtp_delay_mail        = 0.0;
1488 double  smtp_delay_rcpt        = 0.0;
1489 FILE   *smtp_in                = NULL;
1490 int     smtp_listen_backlog    = 0;
1491 int     smtp_load_reserve      = -1;
1492 int     smtp_mailcmd_count     = 0;
1493 int     smtp_mailcmd_max       = -1;
1494 FILE   *smtp_out               = NULL;
1495 uschar *smtp_etrn_command      = NULL;
1496 int     smtp_max_synprot_errors= 3;
1497 int     smtp_max_unknown_commands = 3;
1498 uschar *smtp_notquit_reason    = NULL;
1499 unsigned smtp_peer_options     = 0;
1500 unsigned smtp_peer_options_wrap= 0;
1501 uschar *smtp_ratelimit_hosts   = NULL;
1502 uschar *smtp_ratelimit_mail    = NULL;
1503 uschar *smtp_ratelimit_rcpt    = NULL;
1504 uschar *smtp_read_error        = US"";
1505 int     smtp_receive_timeout   = 5*60;
1506 uschar *smtp_receive_timeout_s = NULL;
1507 uschar *smtp_reserve_hosts     = NULL;
1508 int     smtp_rlm_base          = 0;
1509 double  smtp_rlm_factor        = 0.0;
1510 int     smtp_rlm_limit         = 0;
1511 int     smtp_rlm_threshold     = INT_MAX;
1512 int     smtp_rlr_base          = 0;
1513 double  smtp_rlr_factor        = 0.0;
1514 int     smtp_rlr_limit         = 0;
1515 int     smtp_rlr_threshold     = INT_MAX;
1516 #ifdef SUPPORT_I18N
1517 uschar *smtputf8_advertise_hosts = US"*";       /* overridden under test-harness */
1518 #endif
1519
1520 #ifdef WITH_CONTENT_SCAN
1521 uschar *spamd_address          = US"127.0.0.1 783";
1522 uschar *spam_bar               = NULL;
1523 uschar *spam_report            = NULL;
1524 uschar *spam_action            = NULL;
1525 uschar *spam_score             = NULL;
1526 uschar *spam_score_int         = NULL;
1527 #endif
1528 #ifdef SUPPORT_SPF
1529 uschar *spf_guess              = US"v=spf1 a/24 mx/24 ptr ?all";
1530 uschar *spf_header_comment     = NULL;
1531 uschar *spf_received           = NULL;
1532 uschar *spf_result             = NULL;
1533 uschar *spf_smtp_comment       = NULL;
1534 uschar *spf_smtp_comment_template
1535                     /* Used to be: "Please%_see%_http://www.open-spf.org/Why?id=%{S}&ip=%{C}&receiver=%{R}" */
1536                                = US"Please%_see%_http://www.open-spf.org/Why";
1537
1538 #endif
1539
1540 FILE   *spool_data_file        = NULL;
1541 uschar *spool_directory        = US SPOOL_DIRECTORY
1542                            "\0<--------------Space to patch spool_directory->";
1543 #ifdef SUPPORT_SRS
1544 uschar *srs_recipient          = NULL;
1545 #endif
1546 int     string_datestamp_offset= -1;
1547 int     string_datestamp_length= 0;
1548 int     string_datestamp_type  = -1;
1549 const uschar *submission_domain = NULL;
1550 const uschar *submission_name  = NULL;
1551 int     syslog_facility        = LOG_MAIL;
1552 uschar *syslog_processname     = US"exim";
1553 uschar *system_filter          = NULL;
1554
1555 uschar *system_filter_directory_transport = NULL;
1556 uschar *system_filter_file_transport = NULL;
1557 uschar *system_filter_pipe_transport = NULL;
1558 uschar *system_filter_reply_transport = NULL;
1559
1560 gid_t   system_filter_gid      = 0;
1561 uid_t   system_filter_uid      = (uid_t)-1;
1562
1563 blob    tcp_fastopen_nodata    = { .data = NULL, .len = 0 };
1564 tfo_state_t tcp_out_fastopen   = TFO_NOT_USED;
1565 #ifdef USE_TCP_WRAPPERS
1566 uschar *tcp_wrappers_daemon_name = US TCP_WRAPPERS_DAEMON_NAME;
1567 #endif
1568 int     test_harness_load_avg  = 0;
1569 int     thismessage_size_limit = 0;
1570 int     timeout_frozen_after   = 0;
1571 #ifdef MEASURE_TIMING
1572 struct timeval timestamp_startup;
1573 #endif
1574
1575 transport_instance  *transports = NULL;
1576
1577 transport_instance  transport_defaults = {
1578     /* All non-mentioned elements zero/NULL/FALSE */
1579     .batch_max =                1,
1580     .multi_domain =             TRUE,
1581     .max_addresses =            100,
1582     .connection_max_messages =  500,
1583     .uid =                      (uid_t)(-1),
1584     .gid =                      (gid_t)(-1),
1585     .filter_timeout =           300,
1586     .retry_use_local_part =     TRUE_UNSET,     /* retry_use_local_part: BOOL, but set neither
1587                                                  1 nor 0 so can detect unset */
1588 };
1589
1590 int     transport_count;
1591 uschar *transport_name          = NULL;
1592 int     transport_newlines;
1593 const uschar **transport_filter_argv  = NULL;
1594 int     transport_filter_timeout;
1595 int     transport_write_timeout= 0;
1596
1597 tree_node  *tree_dns_fails     = NULL;
1598 tree_node  *tree_duplicates    = NULL;
1599 tree_node  *tree_nonrecipients = NULL;
1600 tree_node  *tree_unusable      = NULL;
1601
1602 gid_t  *trusted_groups         = NULL;
1603 uid_t  *trusted_users          = NULL;
1604 uschar *timezone_string        = US TIMEZONE_DEFAULT;
1605
1606 uschar *unknown_login          = NULL;
1607 uschar *unknown_username       = NULL;
1608 uschar *untrusted_set_sender   = NULL;
1609
1610 /*  A regex for matching a "From_" line in an incoming message, in the form
1611
1612     From ph10 Fri Jan  5 12:35 GMT 1996
1613
1614 which  the "mail" commands send to the MTA (undocumented, of course), or in
1615 the  form
1616
1617     From ph10 Fri, 7 Jan 97 14:00:00 GMT
1618
1619 which  is apparently used by some UUCPs, despite it not being in RFC 976.
1620 Because  of variations in time formats, just match up to the minutes. That
1621 should  be sufficient. Examples have been seen of time fields like 12:1:03,
1622 so  just require one digit for hours and minutes. The weekday is also absent
1623 in  some forms. */
1624
1625 uschar *uucp_from_pattern      = US
1626    "^From\\s+(\\S+)\\s+(?:[a-zA-Z]{3},?\\s+)?"    /* Common start */
1627    "(?:"                                          /* Non-extracting bracket */
1628    "[a-zA-Z]{3}\\s+\\d?\\d|"                      /* First form */
1629    "\\d?\\d\\s+[a-zA-Z]{3}\\s+\\d\\d(?:\\d\\d)?"  /* Second form */
1630    ")"                                            /* End alternation */
1631    "\\s+\\d\\d?:\\d\\d?";                         /* Start of time */
1632
1633 uschar *uucp_from_sender       = US"$1";
1634
1635 uschar *verify_mode            = NULL;
1636 uschar *version_copyright      =
1637  US"Copyright (c) University of Cambridge, 1995 - 2018\n"
1638    "(c) The Exim Maintainers and contributors in ACKNOWLEDGMENTS file, 2007 - 2020";
1639 uschar *version_date           = US"?";
1640 uschar *version_cnumber        = US"????";
1641 uschar *version_string         = US"?";
1642
1643 uschar *warn_message_file      = NULL;
1644 int     warning_count          = 0;
1645 uschar *warnmsg_delay          = NULL;
1646 uschar *warnmsg_recipients     = NULL;
1647
1648
1649 /*  End of globals.c */