6fae1582f430d4af2eaef4460e8e99ceef8eef50
[exim.git] / src / src / globals.c
1 /*************************************************
2 *     Exim - an Internet mail transport agent    *
3 *************************************************/
4
5 /* Copyright (c) The Exim Maintainers 2020 - 2024 */
6 /* Copyright (c) University of Cambridge 1995 - 2018 */
7 /* See the file NOTICE for conditions of use and distribution. */
8 /* SPDX-License-Identifier: GPL-2.0-or-later */
9
10 /* All the global variables are defined together in this one module, so
11 that they are easy to find. */
12
13 #include "exim.h"
14
15
16 /* Generic options for auths, all of which live inside auth_instance
17 data blocks and hence have the opt_public flag set. */
18
19 optionlist optionlist_auths[] = {
20   { "client_condition", opt_stringptr | opt_public,
21                  OPT_OFF(auth_instance, client_condition) },
22   { "client_set_id", opt_stringptr | opt_public,
23                  OPT_OFF(auth_instance, set_client_id) },
24   { "driver",        opt_stringptr | opt_public,
25                  OPT_OFF(auth_instance, drinst.driver_name) },
26   { "public_name",   opt_stringptr | opt_public,
27                  OPT_OFF(auth_instance, public_name) },
28   { "server_advertise_condition", opt_stringptr | opt_public,
29                  OPT_OFF(auth_instance, advertise_condition)},
30   { "server_condition", opt_stringptr | opt_public,
31                  OPT_OFF(auth_instance, server_condition) },
32   { "server_debug_print", opt_stringptr | opt_public,
33                  OPT_OFF(auth_instance, server_debug_string) },
34   { "server_mail_auth_condition", opt_stringptr | opt_public,
35                  OPT_OFF(auth_instance, mail_auth_condition) },
36   { "server_set_id", opt_stringptr | opt_public,
37                  OPT_OFF(auth_instance, set_id) }
38 };
39
40 int     optionlist_auths_size = nelem(optionlist_auths);
41
42 /* An empty host aliases list. */
43
44 uschar *no_aliases             = NULL;
45
46
47 /* For comments on these variables, see globals.h. I'm too idle to
48 duplicate them here... */
49
50 #ifdef EXIM_PERL
51 uschar *opt_perl_startup       = NULL;
52 BOOL    opt_perl_at_start      = FALSE;
53 BOOL    opt_perl_started       = FALSE;
54 BOOL    opt_perl_taintmode     = FALSE;
55 #endif
56
57 #ifdef EXPAND_DLFUNC
58 tree_node *dlobj_anchor        = NULL;
59 #endif
60
61 #ifdef LOOKUP_IBASE
62 uschar *ibase_servers          = NULL;
63 #endif
64
65 #ifdef LOOKUP_LDAP
66 uschar *eldap_ca_cert_dir      = NULL;
67 uschar *eldap_ca_cert_file     = NULL;
68 uschar *eldap_cert_file        = NULL;
69 uschar *eldap_cert_key         = NULL;
70 uschar *eldap_cipher_suite     = NULL;
71 uschar *eldap_default_servers  = NULL;
72 uschar *eldap_require_cert     = NULL;
73 int     eldap_version          = -1;
74 BOOL    eldap_start_tls        = FALSE;
75 #endif
76
77 #ifdef LOOKUP_MYSQL
78 uschar *mysql_servers          = NULL;
79 #endif
80
81 #ifdef LOOKUP_ORACLE
82 uschar *oracle_servers         = NULL;
83 #endif
84
85 #ifdef LOOKUP_PGSQL
86 uschar *pgsql_servers          = NULL;
87 #endif
88
89 #ifdef LOOKUP_REDIS
90 uschar *redis_servers          = NULL;
91 #endif
92
93 #ifdef LOOKUP_SQLITE
94 uschar *sqlite_dbfile          = NULL;
95 int     sqlite_lock_timeout    = 5;
96 #endif
97
98 #ifdef SUPPORT_MOVE_FROZEN_MESSAGES
99 BOOL    move_frozen_messages   = FALSE;
100 #endif
101
102 /* These variables are outside the #ifdef because it keeps the code less
103 cluttered in several places (e.g. during logging) if we can always refer to
104 them. Also, the tls_ variables are now always visible.  Note that these are
105 only used for smtp connections, not for service-daemon access. */
106
107 tls_support tls_in = {
108  .active =              {.sock = -1}
109  /* all other elements zero */
110 };
111 tls_support tls_out = {
112  .active =              {.sock = -1},
113  /* all other elements zero */
114 };
115
116 uschar *dsn_envid              = NULL;
117 int     dsn_ret                = 0;
118 const pcre2_code  *regex_DSN         = NULL;
119 uschar *dsn_advertise_hosts    = NULL;
120
121 #ifndef DISABLE_TLS
122 BOOL    gnutls_compat_mode     = FALSE;
123 BOOL    gnutls_allow_auto_pkcs11 = FALSE;
124 uschar *hosts_require_alpn     = NULL;
125 uschar *openssl_options        = NULL;
126 const pcre2_code *regex_STARTTLS     = NULL;
127 uschar *tls_advertise_hosts    = US"*";
128 uschar *tls_alpn               = US"smtp:esmtp";
129 uschar *tls_certificate        = NULL;
130 uschar *tls_crl                = NULL;
131 /* This default matches NSS DH_MAX_P_BITS value at current time (2012), because
132 that's the interop problem which has been observed: GnuTLS suggesting a higher
133 bit-count as "NORMAL" (2432) and Thunderbird dropping connection. */
134 int     tls_dh_max_bits        = 2236;
135 uschar *tls_dhparam            = NULL;
136 uschar *tls_eccurve            = US"auto";
137 # ifndef DISABLE_OCSP
138 uschar *tls_ocsp_file          = NULL;
139 # endif
140 uschar *tls_privatekey         = NULL;
141 BOOL    tls_remember_esmtp     = FALSE;
142 uschar *tls_require_ciphers    = NULL;
143 # ifndef DISABLE_TLS_RESUME
144 uschar *tls_resumption_hosts   = NULL;
145 # endif
146 uschar *tls_try_verify_hosts   = NULL;
147 uschar *tls_verify_certificates= US"system";
148 uschar *tls_verify_hosts       = NULL;
149 int     tls_watch_fd           = -1;
150 time_t  tls_watch_trigger_time = (time_t)0;
151 #else   /*DISABLE_TLS*/
152 uschar *tls_advertise_hosts    = NULL;
153 #endif
154
155 #ifndef DISABLE_PRDR
156 /* Per Recipient Data Response variables */
157 BOOL    prdr_enable            = FALSE;
158 BOOL    prdr_requested         = FALSE;
159 const pcre2_code *regex_PRDR         = NULL;
160 #endif
161
162 #ifdef SUPPORT_I18N
163 const pcre2_code *regex_UTF8         = NULL;
164 #endif
165
166 /* Input-reading functions for messages, so we can use special ones for
167 incoming TCP/IP. The defaults use stdin. We never need these for any
168 stand-alone tests. */
169
170 #if !defined(STAND_ALONE) && !defined(MACRO_PREDEF)
171 int     (*lwr_receive_getc)(unsigned)   = stdin_getc;
172 uschar * (*lwr_receive_getbuf)(unsigned *) = NULL;
173 int     (*lwr_receive_ungetc)(int)      = stdin_ungetc;
174 BOOL    (*lwr_receive_hasc)(void)       = stdin_hasc;
175
176 int     (*receive_getc)(unsigned)       = stdin_getc;
177 uschar * (*receive_getbuf)(unsigned *)  = NULL;
178 void    (*receive_get_cache)(unsigned)  = NULL;
179 BOOL    (*receive_hasc)(void)           = stdin_hasc;
180 int     (*receive_ungetc)(int)          = stdin_ungetc;
181 int     (*receive_feof)(void)           = stdin_feof;
182 int     (*receive_ferror)(void)         = stdin_ferror;
183 #endif
184
185
186 /* List of per-address expansion variables for clearing and saving/restoring
187 when verifying one address while routing/verifying another. We have to have
188 the size explicit, because it is referenced from more than one module. */
189
190 const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT] = {
191   CUSS &deliver_address_data,
192   CUSS &deliver_domain,
193   CUSS &deliver_domain_data,
194   CUSS &deliver_domain_orig,
195   CUSS &deliver_domain_parent,
196   CUSS &deliver_localpart,
197   CUSS &deliver_localpart_data,
198   CUSS &deliver_localpart_orig,
199   CUSS &deliver_localpart_parent,
200   CUSS &deliver_localpart_prefix,
201   CUSS &deliver_localpart_suffix,
202   CUSS (uschar **)(&deliver_recipients),
203   CUSS &deliver_host,
204   CUSS &deliver_home,
205   CUSS &address_file,
206   CUSS &address_pipe,
207   CUSS &self_hostname,
208   NULL };
209
210 int address_expansions_count = sizeof(address_expansions)/sizeof(uschar **);
211
212 /******************************************************************************/
213 /* General global variables.  Boolean flags are done as a group
214 so that only one bit each is needed, packed, for all those we never
215 need to take a pointer - and only a char for the rest.
216 This means a struct, unfortunately since it clutters the sourcecode. */
217
218 struct global_flags f =
219 {
220         .acl_temp_details       = FALSE,
221         .active_local_from_check = FALSE,
222         .active_local_sender_retain = FALSE,
223         .address_test_mode      = FALSE,
224         .admin_user             = FALSE,
225         .allow_auth_unadvertised= FALSE,
226         .allow_unqualified_recipient = TRUE,    /* For local messages */
227         .allow_unqualified_sender = TRUE,       /* Reset for SMTP */
228         .authentication_local   = FALSE,
229
230         .background_daemon      = TRUE,
231         .bdat_readers_wanted    = FALSE,
232
233         .chunking_offered       = FALSE,
234         .config_changed         = FALSE,
235         .continue_more          = FALSE,
236
237         .daemon_listen          = FALSE,
238         .daemon_scion           = FALSE,
239         .debug_daemon           = FALSE,
240         .deliver_firsttime      = FALSE,
241         .deliver_force          = FALSE,
242         .deliver_freeze         = FALSE,
243         .deliver_force_thaw     = FALSE,
244         .deliver_manual_thaw    = FALSE,
245         .deliver_selectstring_regex = FALSE,
246         .deliver_selectstring_sender_regex = FALSE,
247         .disable_callout_flush  = FALSE,
248         .disable_delay_flush    = FALSE,
249         .disable_logging        = FALSE,
250 #ifndef DISABLE_DKIM
251         .dkim_disable_verify      = FALSE,
252         .dkim_init_done           = FALSE,
253 #endif
254 #ifdef SUPPORT_DMARC
255         .dmarc_has_been_checked  = FALSE,
256         .dmarc_disable_verify    = FALSE,
257         .dmarc_enable_forensic   = FALSE,
258 #endif
259         .dont_deliver           = FALSE,
260         .dot_ends               = TRUE,
261
262         .enable_dollar_recipients = FALSE,
263         .expand_string_forcedfail = FALSE,
264
265         .filter_running         = FALSE,
266
267         .header_rewritten       = FALSE,
268         .helo_verified          = FALSE,
269         .helo_verify_failed     = FALSE,
270         .host_checking_callout  = FALSE,
271         .host_find_failed_syntax= FALSE,
272
273         .inetd_wait_mode        = FALSE,
274         .is_inetd               = FALSE,
275
276         .local_error_message    = FALSE,
277         .log_testing_mode       = FALSE,
278
279 #ifdef WITH_CONTENT_SCAN
280         .no_mbox_unspool        = FALSE,
281 #endif
282         .no_multiline_responses = FALSE,
283         .notifier_socket_en     = TRUE,
284
285         .parse_allow_group      = FALSE,
286         .parse_found_group      = FALSE,
287         .pipelining_enable      = TRUE,
288 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
289         .proxy_session_failed   = FALSE,
290 #endif
291
292         .queue_2stage           = FALSE,
293         .queue_only_policy      = FALSE,
294         .queue_run_local        = FALSE,
295         .queue_running          = FALSE,
296         .queue_smtp             = FALSE,
297
298         .really_exim            = TRUE,
299         .receive_call_bombout   = FALSE,
300         .recipients_discarded   = FALSE,
301         .running_in_test_harness = FALSE,
302
303         .search_find_defer      = FALSE,
304         .sender_address_forced  = FALSE,
305         .sender_host_notsocket  = FALSE,
306         .sender_host_unknown    = FALSE,
307         .sender_local           = FALSE,
308         .sender_name_forced     = FALSE,
309         .sender_set_untrusted   = FALSE,
310         .smtp_authenticated     = FALSE,
311 #ifndef DISABLE_PIPE_CONNECT
312         .smtp_in_early_pipe_advertised = FALSE,
313         .smtp_in_early_pipe_no_auth = FALSE,
314         .smtp_in_early_pipe_used = FALSE,
315 #endif
316         .smtp_in_pipelining_advertised = FALSE,
317         .smtp_in_pipelining_used = FALSE,
318         .smtp_in_quit           = FALSE,
319         .spool_file_wireformat  = FALSE,
320         .submission_mode        = FALSE,
321         .suppress_local_fixups  = FALSE,
322         .suppress_local_fixups_default = FALSE,
323         .synchronous_delivery   = FALSE,
324         .system_filtering       = FALSE,
325
326         .taint_check_slow       = FALSE,
327         .testsuite_delays       = TRUE,
328         .tcp_fastopen_ok        = FALSE,
329         .tcp_in_fastopen        = FALSE,
330         .tcp_in_fastopen_data   = FALSE,
331         .tcp_in_fastopen_logged = FALSE,
332         .tcp_out_fastopen_logged= FALSE,
333         .timestamps_utc         = FALSE,
334         .transport_filter_timed_out = FALSE,
335         .trusted_caller         = FALSE,
336         .trusted_config         = TRUE,
337 };
338
339 /******************************************************************************/
340 /* These are the flags which are either variables or mainsection options,
341 so an address is needed for access, or are exported to local_scan. */
342
343 BOOL    accept_8bitmime        = TRUE; /* deliberately not RFC compliant */
344 BOOL    allow_domain_literals  = FALSE;
345 BOOL    allow_mx_to_ip         = FALSE;
346 BOOL    allow_utf8_domains     = FALSE;
347 BOOL    authentication_failed  = FALSE;
348
349 BOOL    bounce_return_body     = TRUE;
350 BOOL    bounce_return_message  = TRUE;
351 BOOL    check_rfc2047_length   = TRUE;
352 BOOL    commandline_checks_require_admin = FALSE;
353
354 #ifdef EXPERIMENTAL_DCC
355 BOOL    dcc_direct_add_header  = FALSE;
356 #endif
357 BOOL    debug_store            = FALSE;
358 BOOL    delivery_date_remove   = TRUE;
359 BOOL    deliver_drop_privilege = FALSE;
360 #ifdef ENABLE_DISABLE_FSYNC
361 BOOL    disable_fsync          = FALSE;
362 #endif
363 BOOL    disable_ipv6           = FALSE;
364 BOOL    dns_csa_use_reverse    = TRUE;
365 BOOL    drop_cr                = FALSE;         /* No longer used */
366
367 BOOL    envelope_to_remove     = TRUE;
368 BOOL    exim_gid_set           = TRUE;          /* This gid is always set */
369 BOOL    exim_uid_set           = TRUE;          /* This uid is always set */
370 BOOL    extract_addresses_remove_arguments = TRUE;
371
372 BOOL    host_checking          = FALSE;
373 BOOL    host_lookup_deferred   = FALSE;
374 BOOL    host_lookup_failed     = FALSE;
375 BOOL    ignore_fromline_local  = FALSE;
376
377 BOOL    local_from_check       = TRUE;
378 BOOL    local_sender_retain    = FALSE;
379 BOOL    log_timezone           = FALSE;
380 BOOL    message_body_newlines  = FALSE;
381 BOOL    message_logs           = TRUE;
382 #ifdef SUPPORT_I18N
383 BOOL    message_smtputf8       = FALSE;
384 #endif
385 BOOL    mua_wrapper            = FALSE;
386
387 BOOL    preserve_message_logs  = FALSE;
388 BOOL    print_topbitchars      = FALSE;
389 BOOL    prod_requires_admin    = TRUE;
390 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS) || defined(EXPERIMENTAL_XCLIENT)
391 BOOL    proxy_session          = FALSE;
392 #endif
393
394 #ifndef DISABLE_QUEUE_RAMP
395 BOOL    queue_fast_ramp         = TRUE;
396 #endif
397 BOOL    queue_list_requires_admin = TRUE;
398 BOOL    queue_only             = FALSE;
399 BOOL    queue_only_load_latch  = TRUE;
400 BOOL    queue_only_override    = TRUE;
401 BOOL    queue_run_in_order     = FALSE;
402 BOOL    recipients_max_reject  = FALSE;
403 BOOL    return_path_remove     = TRUE;
404
405 BOOL    smtp_batched_input     = FALSE;
406 BOOL    sender_helo_dnssec     = FALSE;
407 BOOL    sender_host_dnssec     = FALSE;
408 BOOL    smtp_accept_keepalive  = TRUE;
409 BOOL    smtp_check_spool_space = TRUE;
410 BOOL    smtp_enforce_sync      = TRUE;
411 BOOL    smtp_etrn_serialize    = TRUE;
412 BOOL    smtp_input             = FALSE;
413 BOOL    smtp_return_error_details = FALSE;
414 BOOL    split_spool_directory  = FALSE;
415 BOOL    spool_wireformat       = FALSE;
416 BOOL    strict_acl_vars        = FALSE;
417 BOOL    strip_excess_angle_brackets = FALSE;
418 BOOL    strip_trailing_dot     = FALSE;
419 BOOL    syslog_duplication     = TRUE;
420 BOOL    syslog_pid             = TRUE;
421 BOOL    syslog_timestamp       = TRUE;
422 BOOL    system_filter_gid_set  = FALSE;
423 BOOL    system_filter_uid_set  = FALSE;
424
425 BOOL    tcp_nodelay            = TRUE;
426 BOOL    write_rejectlog        = TRUE;
427
428 /******************************************************************************/
429
430 header_line *acl_added_headers = NULL;
431 tree_node *acl_anchor          = NULL;
432 uschar *acl_arg[9]             = {NULL, NULL, NULL, NULL, NULL,
433                                   NULL, NULL, NULL, NULL};
434 int     acl_narg               = 0;
435
436 int     acl_level              = 0;
437
438 uschar *acl_not_smtp           = NULL;
439 #ifdef WITH_CONTENT_SCAN
440 uschar *acl_not_smtp_mime      = NULL;
441 #endif
442 uschar *acl_not_smtp_start     = NULL;
443 uschar *acl_removed_headers    = NULL;
444 uschar *acl_smtp_auth          = NULL;
445 uschar *acl_smtp_connect       = NULL;
446 uschar *acl_smtp_data          = NULL;
447 #ifndef DISABLE_PRDR
448 uschar *acl_smtp_data_prdr     = US"accept";
449 #endif
450 #ifndef DISABLE_DKIM
451 uschar *acl_smtp_dkim          = NULL;
452 #endif
453 uschar *acl_smtp_etrn          = NULL;
454 uschar *acl_smtp_expn          = NULL;
455 uschar *acl_smtp_helo          = NULL;
456 uschar *acl_smtp_mail          = NULL;
457 uschar *acl_smtp_mailauth      = NULL;
458 #ifdef WITH_CONTENT_SCAN
459 uschar *acl_smtp_mime          = NULL;
460 #endif
461 uschar *acl_smtp_notquit       = NULL;
462 uschar *acl_smtp_predata       = NULL;
463 uschar *acl_smtp_quit          = NULL;
464 uschar *acl_smtp_rcpt          = NULL;
465 uschar *acl_smtp_starttls      = NULL;
466 uschar *acl_smtp_vrfy          = NULL;
467 #ifndef DISABLE_WELLKNOWN
468 uschar *acl_smtp_wellknown     = NULL;
469 #endif
470
471 tree_node *acl_var_c           = NULL;
472 tree_node *acl_var_m           = NULL;
473 uschar *acl_verify_message     = NULL;
474 string_item *acl_warn_logged   = NULL;
475
476 /* Names of SMTP places for use in ACL error messages, and corresponding SMTP
477 error codes (only those used) */
478
479 uschar *acl_wherenames[]       = { [ACL_WHERE_RCPT] =           US"RCPT",
480                                    [ACL_WHERE_MAIL] =           US"MAIL",
481                                    [ACL_WHERE_PREDATA] =        US"PREDATA",
482                                    [ACL_WHERE_MIME] =           US"MIME",
483                                    [ACL_WHERE_DKIM] =           US"DKIM",
484                                    [ACL_WHERE_DATA] =           US"DATA",
485 #ifndef DISABLE_PRDR
486                                    [ACL_WHERE_PRDR] =           US"PRDR",
487 #endif
488                                    [ACL_WHERE_NOTSMTP] =        US"non-SMTP",
489                                    [ACL_WHERE_AUTH] =           US"AUTH",
490                                    [ACL_WHERE_CONNECT] =        US"connection",
491                                    [ACL_WHERE_ETRN] =           US"ETRN",
492                                    [ACL_WHERE_EXPN] =           US"EXPN",
493                                    [ACL_WHERE_HELO] =           US"EHLO or HELO",
494                                    [ACL_WHERE_MAILAUTH] =       US"MAILAUTH",
495                                    [ACL_WHERE_NOTSMTP_START] =  US"non-SMTP-start",
496                                    [ACL_WHERE_NOTQUIT] =        US"NOTQUIT",
497                                    [ACL_WHERE_QUIT] =           US"QUIT",
498                                    [ACL_WHERE_STARTTLS] =       US"STARTTLS",
499                                    [ACL_WHERE_VRFY] =           US"VRFY",
500 #ifndef DISABLE_WELLKNOWN
501                                    [ACL_WHERE_WELLKNOWN] =      US"WELLKNOWN",
502 #endif
503                                    [ACL_WHERE_DELIVERY] =       US"delivery",
504                                    [ACL_WHERE_UNKNOWN] =        US"unknown"
505                                  };
506
507 uschar *acl_wherecodes[]       = { [ACL_WHERE_RCPT] =   US"550",
508                                    [ACL_WHERE_MAIL] =   US"550",
509                                    [ACL_WHERE_PREDATA] = US"550",
510                                    [ACL_WHERE_MIME] =   US"550",
511                                    [ACL_WHERE_DKIM] =   US"550",
512                                    [ACL_WHERE_DATA] =   US"550",
513 #ifndef DISABLE_PRDR
514                                    [ACL_WHERE_PRDR] =   US"550",
515 #endif
516                                    [ACL_WHERE_AUTH] =   US"503",
517                                    [ACL_WHERE_CONNECT] = US"550",
518                                    [ACL_WHERE_ETRN] =   US"458",
519                                    [ACL_WHERE_EXPN] =   US"550",
520                                    [ACL_WHERE_HELO] =   US"550",
521                                    [ACL_WHERE_STARTTLS] = US"550",
522 #ifndef DISABLE_WELLKNOWN
523                                    [ACL_WHERE_WELLKNOWN] =US"550",
524 #endif
525                                    [ACL_WHERE_VRFY] =   US"252",
526                                  };
527
528 uschar *add_environment        = NULL;
529 address_item  *addr_duplicate  = NULL;
530
531 address_item address_defaults = {
532   .next =               NULL,
533   .parent =             NULL,
534   .first =              NULL,
535   .dupof =              NULL,
536   .start_router =       NULL,
537   .router =             NULL,
538   .transport =          NULL,
539   .host_list =          NULL,
540   .host_used =          NULL,
541   .fallback_hosts =     NULL,
542   .reply =              NULL,
543   .retries =            NULL,
544   .address =            NULL,
545   .unique =             NULL,
546   .cc_local_part =      NULL,
547   .lc_local_part =      NULL,
548   .local_part =         NULL,
549   .prefix =             NULL,
550   .prefix_v =           NULL,
551   .suffix =             NULL,
552   .suffix_v =           NULL,
553   .domain =             NULL,
554   .address_retry_key =  NULL,
555   .domain_retry_key =   NULL,
556   .current_dir =        NULL,
557   .home_dir =           NULL,
558   .message =            NULL,
559   .user_message =       NULL,
560   .onetime_parent =     NULL,
561   .pipe_expandn =       NULL,
562   .return_filename =    NULL,
563   .self_hostname =      NULL,
564   .shadow_message =     NULL,
565 #ifndef DISABLE_TLS
566   .cipher =             NULL,
567   .ourcert =            NULL,
568   .peercert =           NULL,
569   .peerdn =             NULL,
570   .ocsp =               OCSP_NOT_REQ,
571 #endif
572 #ifdef EXPERIMENTAL_DSN_INFO
573   .smtp_greeting =      NULL,
574   .helo_response =      NULL,
575 #endif
576   .authenticator =      NULL,
577   .auth_id =            NULL,
578   .auth_sndr =          NULL,
579   .dsn_orcpt =          NULL,
580   .dsn_flags =          0,
581   .dsn_aware =          0,
582   .uid =                (uid_t)(-1),
583   .gid =                (gid_t)(-1),
584   .flags =              { 0 },
585   .domain_cache =       { 0 },                /* domain_cache - any larger array should be zeroed */
586   .localpart_cache =    { 0 },                /* localpart_cache - ditto */
587   .mode =               -1,
588   .more_errno =         0,
589   .delivery_time =      {.tv_sec = 0, .tv_usec = 0},
590   .basic_errno =        ERRNO_UNKNOWNERROR,
591   .child_count =        0,
592   .return_file =        -1,
593   .special_action =     SPECIAL_NONE,
594   .transport_return =   DEFER,
595   .prop = {                                     /* fields that are propagated to children */
596     .address_data =     NULL,
597     .domain_data =      NULL,
598     .localpart_data =   NULL,
599     .errors_address =   NULL,
600     .extra_headers =    NULL,
601     .remove_headers =   NULL,
602     .variables =        NULL,
603     .ignore_error =     FALSE,
604 #ifdef SUPPORT_I18N
605     .utf8_msg =         FALSE,
606     .utf8_downcvt =     FALSE,
607     .utf8_downcvt_maybe = FALSE
608 #endif
609   }
610 };
611
612 const uschar *address_file           = NULL;
613 const uschar *address_pipe           = NULL;
614 tree_node *addresslist_anchor  = NULL;
615 int     addresslist_count      = 0;
616 gid_t  *admin_groups           = NULL;
617
618 #ifdef EXPERIMENTAL_ARC
619 struct arc_set *arc_received    = NULL;
620 int     arc_received_instance   = 0;
621 int     arc_oldest_pass         = 0;
622 const uschar *arc_state         = NULL;
623 const uschar *arc_state_reason  = NULL;
624 #endif
625
626 uschar *authenticated_fail_id  = NULL;
627 uschar *authenticated_id       = NULL;
628 uschar *authenticated_sender   = NULL;
629 auth_instance  *auths          = NULL;
630 uschar *auth_advertise_hosts   = US"*";
631 auth_instance auth_defaults    = {
632     .drinst = {
633       .next =           NULL,
634       .name =           NULL,
635       .info =           NULL,
636       .options_block =  NULL,
637       .driver_name =    NULL,
638     },
639     .advertise_condition = NULL,
640     .client_condition = NULL,
641     .public_name =      NULL,
642     .set_id =           NULL,
643     .set_client_id =    NULL,
644     .mail_auth_condition = NULL,
645     .server_debug_string = NULL,
646     .server_condition = NULL,
647     .client =           FALSE,
648     .server =           FALSE,
649     .advertised =       FALSE
650 };
651
652 uschar *auth_defer_msg         = US"reason not recorded";
653 uschar *auth_defer_user_msg    = US"";
654 const uschar *auth_vars[AUTH_VARS];
655 uschar *authenticator_name     = NULL;
656 int     auto_thaw              = 0;
657 #ifdef WITH_CONTENT_SCAN
658 int     av_failed              = FALSE; /* boolean but accessed as vtype_int*/
659 uschar *av_scanner             = US"sophie:/var/run/sophie";  /* AV scanner */
660 #endif
661
662 #if BASE_62 == 62
663 uschar *base62_chars=
664     US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz";
665 #else
666 uschar *base62_chars= US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ";
667 #endif
668
669 uschar *bi_command             = NULL;
670 uschar *big_buffer             = NULL;
671 int     big_buffer_size        = BIG_BUFFER_SIZE;
672 #ifdef EXPERIMENTAL_BRIGHTMAIL
673 uschar *bmi_alt_location       = NULL;
674 uschar *bmi_base64_tracker_verdict = NULL;
675 uschar *bmi_base64_verdict     = NULL;
676 uschar *bmi_config_file        = US"/opt/brightmail/etc/brightmail.cfg";
677 int     bmi_deliver            = 1;
678 int     bmi_run                = 0;
679 uschar *bmi_verdicts           = NULL;
680 #endif
681 int     bsmtp_transaction_linecount = 0;
682 int     body_8bitmime          = 0;
683 int     body_linecount         = 0;
684 int     body_zerocount         = 0;
685 uschar *bounce_message_file    = NULL;
686 uschar *bounce_message_text    = NULL;
687 const uschar *bounce_recipient = NULL;
688 int     bounce_return_linesize_limit = 998;
689 int     bounce_return_size_limit = 100*1024;
690 uschar *bounce_sender_authentication = NULL;
691
692 uschar *callout_address        = NULL;
693 int     callout_cache_domain_positive_expire = 7*24*60*60;
694 int     callout_cache_domain_negative_expire = 3*60*60;
695 int     callout_cache_positive_expire = 24*60*60;
696 int     callout_cache_negative_expire = 2*60*60;
697 uschar *callout_random_local_part = US"$primary_hostname-$tod_epoch-testing";
698 uschar *check_dns_names_pattern= US"(?i)^(?>(?(1)\\.|())[^\\W](?>[a-z0-9/_-]*[^\\W])?)+(\\.?)$";
699 int     check_log_inodes       = 100;
700 int_eximarith_t check_log_space = 10*1024;      /* 10K Kbyte == 10MB */
701 int     check_spool_inodes     = 100;
702 int_eximarith_t check_spool_space = 10*1024;    /* 10K Kbyte == 10MB */
703
704 uschar *chunking_advertise_hosts = US"*";
705 unsigned chunking_datasize     = 0;
706 unsigned chunking_data_left    = 0;
707 chunking_state_t chunking_state= CHUNKING_NOT_OFFERED;
708 const pcre2_code *regex_CHUNKING     = NULL;
709
710 #ifndef DISABLE_ESMTP_LIMITS
711 const pcre2_code *regex_LIMITS        = NULL;
712 #endif
713
714 uschar *client_authenticator   = NULL;
715 uschar *client_authenticated_id = NULL;
716 uschar *client_authenticated_sender = NULL;
717 #ifndef DISABLE_CLIENT_CMD_LOG
718 gstring *client_cmd_log        = NULL;
719 #endif
720 int     clmacro_count          = 0;
721 uschar *clmacros[MAX_CLMACROS];
722 FILE   *config_file            = NULL;
723 const uschar *config_filename  = NULL;
724 int     config_lineno          = 0;
725 #ifdef CONFIGURE_GROUP
726 gid_t   config_gid             = CONFIGURE_GROUP;
727 #else
728 gid_t   config_gid             = 0;
729 #endif
730 const uschar * config_main_filelist = US CONFIGURE_FILE
731                          "\0<-----------Space to patch configure_filename->";
732 uschar *config_main_filename   = NULL;
733 uschar *config_main_directory  = NULL;
734
735 #ifdef CONFIGURE_OWNER
736 uid_t   config_uid             = CONFIGURE_OWNER;
737 #else
738 uid_t   config_uid             = 0;
739 #endif
740
741 const uschar *connection_id    = NULL;
742 int     connection_max_messages= -1;
743 unsigned continue_flags        = 0;
744 #ifndef DISABLE_ESMTP_LIMITS
745 unsigned continue_limit_mail   = 0;
746 unsigned continue_limit_rcpt   = 0;
747 unsigned continue_limit_rcptdom= 0;
748 int     continue_fd            = -1;
749 uschar *continue_proxy_cipher  = NULL;
750 BOOL    continue_proxy_dane    = FALSE;
751 uschar *continue_proxy_sni     = NULL;
752 const uschar *continue_hostname      = NULL;
753 const uschar *continue_host_address  = NULL;
754 uschar  continue_next_id[MESSAGE_ID_LENGTH +1] = {[0]='\0'};
755 int     continue_sequence      = 1;
756 const uschar *continue_transport = NULL;
757 #ifndef COMPILE_UTILITY
758 open_db *continue_retry_db     = NULL;
759 open_db *continue_wait_db      = NULL;
760 #endif
761 #endif
762
763 uschar *csa_status             = NULL;
764 cut_t   cutthrough = {
765   .callout_hold_only =  FALSE,                          /* verify-only: normal delivery */
766   .delivery =           FALSE,                          /* when to attempt */
767   .defer_pass =         FALSE,                          /* on defer: spool locally */
768   .is_tls =             FALSE,                          /* not a TLS conn yet */
769   .cctx =               {.sock = -1},                   /* open connection */
770   .nrcpt =              0,                              /* number of addresses */
771 };
772
773 int     daemon_notifier_fd     = -1;
774 uschar *daemon_smtp_port       = US"smtp";
775 int     daemon_startup_retries = 9;
776 int     daemon_startup_sleep   = 30;
777
778 #ifdef EXPERIMENTAL_DCC
779 uschar *dcc_header             = NULL;
780 uschar *dcc_result             = NULL;
781 uschar *dccifd_address         = US"/usr/local/dcc/var/dccifd";
782 uschar *dccifd_options         = US"header";
783 #endif
784
785 int     debug_fd               = -1;
786 FILE   *debug_file             = NULL;
787 int     debug_notall[]         = {
788   Di_memory,
789   Di_noutf8,
790   -1
791 };
792 bit_table debug_options[]      = { /* must be in alphabetical order and use
793                                  only the enum values from macro.h */
794   BIT_TABLE(D, acl),
795   BIT_TABLE(D, all),
796   BIT_TABLE(D, auth),
797   BIT_TABLE(D, deliver),
798   BIT_TABLE(D, dns),
799   BIT_TABLE(D, dnsbl),
800   BIT_TABLE(D, exec),
801   BIT_TABLE(D, expand),
802   BIT_TABLE(D, filter),
803   BIT_TABLE(D, hints_lookup),
804   BIT_TABLE(D, host_lookup),
805   BIT_TABLE(D, ident),
806   BIT_TABLE(D, interface),
807   BIT_TABLE(D, lists),
808   BIT_TABLE(D, load),
809   BIT_TABLE(D, local_scan),
810   BIT_TABLE(D, lookup),
811   BIT_TABLE(D, memory),
812   BIT_TABLE(D, noutf8),
813   BIT_TABLE(D, pid),
814   BIT_TABLE(D, process_info),
815   BIT_TABLE(D, queue_run),
816   BIT_TABLE(D, receive),
817   BIT_TABLE(D, resolver),
818   BIT_TABLE(D, retry),
819   BIT_TABLE(D, rewrite),
820   BIT_TABLE(D, route),
821   BIT_TABLE(D, timestamp),
822   BIT_TABLE(D, tls),
823   BIT_TABLE(D, transport),
824   BIT_TABLE(D, uid),
825   BIT_TABLE(D, verify),
826 };
827 int      debug_options_count    = nelem(debug_options);
828 uschar   debuglog_name[LOG_NAME_SIZE] = {0};
829 unsigned debug_pretrigger_bsize = 0;
830 uschar * debug_pretrigger_buf   = NULL;
831 unsigned int debug_selector     = 0;
832
833 int     delay_warning[DELAY_WARNING_SIZE] = { DELAY_WARNING_SIZE, 1, 24*60*60 };
834 uschar *delay_warning_condition=
835   US"${if or {"
836             "{ !eq{$h_list-id:$h_list-post:$h_list-subscribe:}{} }"
837             "{ match{$h_precedence:}{(?i)bulk|list|junk} }"
838             "{ match{$h_auto-submitted:}{(?i)auto-generated|auto-replied} }"
839             "} {no}{yes}}";
840 uschar *deliver_address_data   = NULL;
841 int     deliver_datafile       = -1;
842 const uschar *deliver_domain   = NULL;
843 uschar *deliver_domain_data    = NULL;
844 const uschar *deliver_domain_orig = NULL;
845 const uschar *deliver_domain_parent = NULL;
846 time_t  deliver_frozen_at      = 0;
847 uschar *deliver_home           = NULL;
848 const uschar *deliver_host     = NULL;
849 const uschar *deliver_host_address = NULL;
850 int     deliver_host_port      = 0;
851 uschar *deliver_in_buffer      = NULL;
852 ino_t   deliver_inode          = 0;
853 const uschar *deliver_localpart= NULL;
854 uschar *deliver_localpart_data = NULL;
855 const uschar *deliver_localpart_orig = NULL;
856 const uschar *deliver_localpart_parent = NULL;
857 const uschar *deliver_localpart_prefix = NULL;
858 const uschar *deliver_localpart_prefix_v = NULL;
859 const uschar *deliver_localpart_suffix = NULL;
860 const uschar *deliver_localpart_suffix_v = NULL;
861 uschar *deliver_out_buffer     = NULL;
862 int     deliver_queue_load_max = -1;
863 address_item  *deliver_recipients = NULL;
864 uschar *deliver_selectstring   = NULL;
865 uschar *deliver_selectstring_sender = NULL;
866
867 uschar *dns_again_means_nonexist = NULL;
868 int     dns_csa_search_limit   = 5;
869 int     dns_cname_loops        = 1;
870 #ifdef SUPPORT_DANE
871 int     dns_dane_ok            = -1;
872 #endif
873 uschar *dns_ipv4_lookup        = NULL;
874 int     dns_retrans            = 0;
875 int     dns_retry              = 0;
876 int     dns_dnssec_ok          = -1; /* <0 = not coerced */
877 uschar *dns_trust_aa           = NULL;
878 int     dns_use_edns0          = -1; /* <0 = not coerced */
879 uschar *dnslist_domain         = NULL;
880 uschar *dnslist_matched        = NULL;
881 uschar *dnslist_text           = NULL;
882 uschar *dnslist_value          = NULL;
883 tree_node *domainlist_anchor   = NULL;
884 int     domainlist_count       = 0;
885 const uschar *driver_srcfile   = NULL;
886 int     driver_srcline         = 0;
887 uschar *dsn_from               = US DEFAULT_DSN_FROM;
888 unsigned int dtrigger_selector = 0;
889
890 int     errno_quota            = ERRNO_QUOTA;
891 uschar *errors_copy            = NULL;
892 int     error_handling         = ERRORS_SENDER;
893 uschar *errors_reply_to        = NULL;
894 int     errors_sender_rc       = EXIT_FAILURE;
895 #ifndef DISABLE_EVENT
896 uschar *event_action           = NULL;  /* expansion for delivery events */
897 const uschar *event_data       = NULL;  /* auxiliary data variable for event */
898 int     event_defer_errno      = 0;
899 const uschar *event_name       = NULL;  /* event name variable */
900 #endif
901
902
903 gid_t   exim_gid               = EXIM_GID;
904 uschar *exim_path              = US BIN_DIRECTORY "/exim"
905                         "\0<---------------Space to patch exim_path->";
906 uid_t   exim_uid               = EXIM_UID;
907 int     expand_level           = 0;             /* Nesting depth, indent for debug */
908 int     expand_forbid          = 0;
909 int     expand_nlength[EXPAND_MAXN+1];
910 int     expand_nmax            = -1;
911 const uschar *expand_nstring[EXPAND_MAXN+1];
912 uschar *expand_string_message;
913 uschar *extra_local_interfaces = NULL;
914
915 int     fake_response          = OK;
916 uschar *fake_response_text     = US"Your message has been rejected but is "
917                                    "being kept for evaluation.\nIf it was a "
918                                    "legitimate message, it may still be "
919                                    "delivered to the target recipient(s).";
920 int     filter_n[FILTER_VARIABLE_COUNT];
921 int     filter_sn[FILTER_VARIABLE_COUNT];
922 int     filter_test            = FTEST_NONE;
923 const uschar * filter_test_sfile = NULL;
924 const uschar * filter_test_ufile = NULL;
925 uschar *filter_thisaddress     = NULL;
926 int     finduser_retries       = 0;
927 uid_t   fixed_never_users[]    = { FIXED_NEVER_USERS };
928 uschar *freeze_tell            = NULL;
929 uschar *freeze_tell_config     = NULL;
930 uschar *fudged_queue_times     = US"";
931
932 uschar *gecos_name             = NULL;
933 uschar *gecos_pattern          = NULL;
934 rewrite_rule  *global_rewrite_rules = NULL;
935
936 volatile sig_atomic_t had_command_timeout = 0;
937 volatile sig_atomic_t had_command_sigterm = 0;
938 volatile sig_atomic_t had_data_timeout    = 0;
939 volatile sig_atomic_t had_data_sigint     = 0;
940 const uschar *headers_charset  = US HEADERS_CHARSET;
941 int     header_insert_maxlen   = 64 * 1024;
942 header_line  *header_last      = NULL;
943 header_line  *header_list      = NULL;
944 int     header_maxsize         = HEADER_MAXSIZE;
945 int     header_line_maxsize    = 0;
946
947 header_name header_names[] = {
948   /* name               len     allow_resent    htype */
949   { US"bcc",            3,      TRUE,           htype_bcc },
950   { US"cc",             2,      TRUE,           htype_cc },
951   { US"date",           4,      TRUE,           htype_date },
952   { US"delivery-date", 13,      FALSE,          htype_delivery_date },
953   { US"envelope-to",   11,      FALSE,          htype_envelope_to },
954   { US"from",           4,      TRUE,           htype_from },
955   { US"message-id",    10,      TRUE,           htype_id },
956   { US"received",       8,      FALSE,          htype_received },
957   { US"reply-to",       8,      FALSE,          htype_reply_to },
958   { US"return-path",   11,      FALSE,          htype_return_path },
959   { US"sender",         6,      TRUE,           htype_sender },
960   { US"subject",        7,      FALSE,          htype_subject },
961   { US"to",             2,      TRUE,           htype_to }
962 };
963
964 int header_names_size          = nelem(header_names);
965
966 uschar *helo_accept_junk_hosts = NULL;
967 uschar *helo_allow_chars       = US"";
968 uschar *helo_lookup_domains    = US"@ : @[]";
969 uschar *helo_try_verify_hosts  = NULL;
970 uschar *helo_verify_hosts      = NULL;
971 const uschar *hex_digits       = CUS"0123456789abcdef";
972 uschar *hold_domains           = NULL;
973 uschar *host_data              = NULL;
974 uschar *host_lookup            = NULL;
975 uschar *host_lookup_order      = US"bydns:byaddr";
976 uschar *host_lookup_msg        = US"";
977 int     host_number            = 0;
978 uschar *host_number_string     = NULL;
979 uschar *host_reject_connection = NULL;
980 uschar *hosts_connection_nolog = NULL;
981 #ifdef SUPPORT_PROXY
982 uschar *hosts_proxy            = NULL;
983 #endif
984 uschar *hosts_treat_as_local   = NULL;
985 uschar *hosts_require_helo     = US"*";
986 #ifdef EXPERIMENTAL_XCLIENT
987 uschar *hosts_xclient          = NULL;
988 #endif
989 tree_node *hostlist_anchor     = NULL;
990 int     hostlist_count         = 0;
991
992
993 int     ignore_bounce_errors_after = 10*7*24*60*60;  /* 10 weeks */
994 uschar *ignore_fromline_hosts  = NULL;
995 int     inetd_wait_timeout     = -1;
996 uschar *initial_cwd            = NULL;
997 uschar *interface_address      = NULL;
998 int     interface_port         = -1;
999 uschar *iterate_item           = NULL;
1000
1001 int     journal_fd             = -1;
1002
1003 uschar *keep_environment       = NULL;
1004
1005 int     keep_malformed         = 4*24*60*60;    /* 4 days */
1006
1007 uschar *eldap_dn               = NULL;
1008 const uschar *letter_digit_hyphen_dot =
1009     US"abcdefghijklmnopqrstuvwxyz"
1010       ".-0123456789"
1011       "ABCDEFGHIJKLMNOPQRSTUVWXYZ";
1012 #ifndef DISABLE_ESMTP_LIMITS
1013 uschar *limits_advertise_hosts = US"*";
1014 #endif
1015 int     load_average           = -2;
1016 uschar *local_from_prefix      = NULL;
1017 uschar *local_from_suffix      = NULL;
1018
1019 #if HAVE_IPV6
1020 uschar *local_interfaces       = US"<; ::0 ; 0.0.0.0";
1021 #else
1022 uschar *local_interfaces       = US"0.0.0.0";
1023 #endif
1024
1025 #ifdef HAVE_LOCAL_SCAN
1026 uschar *local_scan_data        = NULL;
1027 int     local_scan_timeout     = 5*60;
1028 #endif
1029 gid_t   local_user_gid         = (gid_t)(-1);
1030 uid_t   local_user_uid         = (uid_t)(-1);
1031
1032 tree_node *localpartlist_anchor= NULL;
1033 int     localpartlist_count    = 0;
1034 uschar *log_buffer             = NULL;
1035
1036 int     log_default[]          = { /* for initializing log_selector */
1037   Li_acl_warn_skipped,
1038   Li_connection_reject,
1039   Li_delay_delivery,
1040   Li_dkim,
1041   Li_dnslist_defer,
1042   Li_etrn,
1043   Li_host_lookup_failed,
1044   Li_lost_incoming_connection,
1045   Li_outgoing_interface, /* see d_log_interface in deliver.c */
1046   Li_msg_id,
1047   Li_queue_run,
1048   Li_queue_time_exclusive,
1049   Li_rejected_header,
1050   Li_retry_defer,
1051   Li_sender_verify_fail,
1052   Li_size_reject,
1053   Li_skip_delivery,
1054   Li_smtp_confirmation,
1055   Li_tls_certificate_verified,
1056   Li_tls_cipher,
1057   -1
1058 };
1059
1060 uschar *log_file_path          = US LOG_FILE_PATH
1061                            "\0<--------------Space to patch log_file_path->";
1062
1063 int     log_notall[]           = {
1064   -1
1065 };
1066 bit_table log_options[]        = { /* must be in alphabetical order,
1067                                 with definitions from enum logbit. */
1068   BIT_TABLE(L, 8bitmime),
1069   BIT_TABLE(L, acl_warn_skipped),
1070   BIT_TABLE(L, address_rewrite),
1071   BIT_TABLE(L, all),
1072   BIT_TABLE(L, all_parents),
1073   BIT_TABLE(L, arguments),
1074   BIT_TABLE(L, connection_id),
1075   BIT_TABLE(L, connection_reject),
1076   BIT_TABLE(L, delay_delivery),
1077   BIT_TABLE(L, deliver_time),
1078   BIT_TABLE(L, delivery_size),
1079 #ifndef DISABLE_DKIM
1080   BIT_TABLE(L, dkim),
1081   BIT_TABLE(L, dkim_verbose),
1082 #endif
1083   BIT_TABLE(L, dnslist_defer),
1084   BIT_TABLE(L, dnssec),
1085   BIT_TABLE(L, etrn),
1086   BIT_TABLE(L, host_lookup_failed),
1087   BIT_TABLE(L, ident_timeout),
1088   BIT_TABLE(L, incoming_interface),
1089   BIT_TABLE(L, incoming_port),
1090   BIT_TABLE(L, lost_incoming_connection),
1091   BIT_TABLE(L, millisec),
1092   BIT_TABLE(L, msg_id),
1093   BIT_TABLE(L, msg_id_created),
1094   BIT_TABLE(L, outgoing_interface),
1095   BIT_TABLE(L, outgoing_port),
1096   BIT_TABLE(L, pid),
1097   BIT_TABLE(L, pipelining),
1098   BIT_TABLE(L, protocol_detail),
1099 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1100   BIT_TABLE(L, proxy),
1101 #endif
1102   BIT_TABLE(L, queue_run),
1103   BIT_TABLE(L, queue_time),
1104   BIT_TABLE(L, queue_time_exclusive),
1105   BIT_TABLE(L, queue_time_overall),
1106   BIT_TABLE(L, receive_time),
1107   BIT_TABLE(L, received_recipients),
1108   BIT_TABLE(L, received_sender),
1109   BIT_TABLE(L, rejected_header),
1110   { US"rejected_headers", Li_rejected_header },
1111   BIT_TABLE(L, retry_defer),
1112   BIT_TABLE(L, return_path_on_delivery),
1113   BIT_TABLE(L, sender_on_delivery),
1114   BIT_TABLE(L, sender_verify_fail),
1115   BIT_TABLE(L, size_reject),
1116   BIT_TABLE(L, skip_delivery),
1117   BIT_TABLE(L, smtp_confirmation),
1118   BIT_TABLE(L, smtp_connection),
1119   BIT_TABLE(L, smtp_incomplete_transaction),
1120   BIT_TABLE(L, smtp_mailauth),
1121   BIT_TABLE(L, smtp_no_mail),
1122   BIT_TABLE(L, smtp_protocol_error),
1123   BIT_TABLE(L, smtp_syntax_error),
1124   BIT_TABLE(L, subject),
1125   BIT_TABLE(L, tls_certificate_verified),
1126   BIT_TABLE(L, tls_cipher),
1127   BIT_TABLE(L, tls_peerdn),
1128   BIT_TABLE(L, tls_resumption),
1129   BIT_TABLE(L, tls_sni),
1130   BIT_TABLE(L, unknown_in_list),
1131 };
1132 int     log_options_count      = nelem(log_options);
1133
1134 int     log_reject_target      = 0;
1135 unsigned int log_selector[log_selector_size]; /* initialized in main() */
1136 uschar *log_selector_string    = NULL;
1137 FILE   *log_stderr             = NULL;
1138 uschar *login_sender_address   = NULL;
1139 uschar *lookup_dnssec_authenticated = NULL;
1140 int     lookup_open_max        = 25;
1141 uschar *lookup_value           = NULL;
1142
1143 macro_item *macros_user        = NULL;
1144 uschar *mailstore_basename     = NULL;
1145 #ifdef WITH_CONTENT_SCAN
1146 uschar *malware_name           = NULL;  /* Virus Name */
1147 #endif
1148 int     max_received_linelength= 0;
1149 int     max_username_length    = 0;
1150 int     message_age            = 0;
1151 uschar *message_body           = NULL;
1152 uschar *message_body_end       = NULL;
1153 int     message_body_size      = 0;
1154 int     message_body_visible   = 500;
1155 int     message_ended          = END_NOTSTARTED;
1156 uschar *message_headers        = NULL;
1157 uschar *message_id;
1158 uschar *message_id_domain      = NULL;
1159 uschar *message_id_text        = NULL;
1160 uschar  message_id_option[MESSAGE_ID_LENGTH + 3];
1161 uschar *message_id_external;
1162 int     message_linecount      = 0;
1163 int     message_size           = 0;
1164 uschar *message_size_limit     = US"50M";
1165 #ifdef SUPPORT_I18N
1166 int     message_utf8_downconvert = 0;   /* -1 ifneeded; 0 never; 1 always */
1167 #endif
1168 uschar  message_subdir[2]      = { 0, 0 };
1169 const uschar *message_reference= NULL;
1170
1171 /* MIME ACL expandables */
1172 #ifdef WITH_CONTENT_SCAN
1173 int     mime_anomaly_level     = 0;
1174 const uschar *mime_anomaly_text      = NULL;
1175 uschar *mime_boundary          = NULL;
1176 uschar *mime_charset           = NULL;
1177 uschar *mime_content_description = NULL;
1178 uschar *mime_content_disposition = NULL;
1179 uschar *mime_content_id        = NULL;
1180 unsigned int mime_content_size = 0;
1181 uschar *mime_content_transfer_encoding = NULL;
1182 uschar *mime_content_type      = NULL;
1183 uschar *mime_decoded_filename  = NULL;
1184 uschar *mime_filename          = NULL;
1185 int     mime_is_multipart      = 0;
1186 int     mime_is_coverletter    = 0;
1187 int     mime_is_rfc822         = 0;
1188 int     mime_part_count        = -1;
1189 #endif
1190
1191 uid_t  *never_users            = NULL;
1192 uschar *notifier_socket        = US"$spool_directory/" NOTIFIER_SOCKET_NAME ;
1193
1194 const int on                   = 1;     /* for setsockopt */
1195 const int off                  = 0;
1196
1197 uid_t   original_euid;
1198 gid_t   originator_gid;
1199 uschar *originator_login       = NULL;
1200 uschar *originator_name        = NULL;
1201 uid_t   originator_uid;
1202 uschar *override_local_interfaces = NULL;
1203 const uschar *override_pid_file_path = NULL;
1204
1205 BOOL    panic_coredump         = FALSE;
1206 pcre2_general_context * pcre_gen_ctx = NULL;
1207 pcre2_compile_context * pcre_gen_cmp_ctx = NULL;
1208 pcre2_match_context * pcre_gen_mtc_ctx = NULL;
1209 pcre2_general_context * pcre_mlc_ctx = NULL;
1210 pcre2_compile_context * pcre_mlc_cmp_ctx = NULL;
1211
1212 uschar *percent_hack_domains   = NULL;
1213 const uschar *pid_file_path    = US PID_FILE_PATH
1214                            "\0<--------------Space to patch pid_file_path->";
1215 #ifndef DISABLE_PIPE_CONNECT
1216 uschar *pipe_connect_advertise_hosts = US"*";
1217 #endif
1218 uschar *pipelining_advertise_hosts = US"*";
1219 uschar *primary_hostname       = NULL;
1220 uschar *process_info;
1221 int     process_info_len       = 0;
1222 uschar *process_log_path       = NULL;
1223 const uschar *process_purpose  = US"fresh-exec";
1224
1225 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS) || defined(EXPERIMENTAL_XCLIENT)
1226 uschar *proxy_external_address = NULL;
1227 int     proxy_external_port    = 0;
1228 uschar *proxy_local_address    = NULL;
1229 int     proxy_local_port       = 0;
1230 int     proxy_protocol_timeout = 3;
1231 #endif
1232
1233 uschar *prvscheck_address      = NULL;
1234 uschar *prvscheck_keynum       = NULL;
1235 uschar *prvscheck_result       = NULL;
1236
1237
1238 qrunner *qrunners              = NULL;
1239
1240 const uschar *qualify_domain_recipient = NULL;
1241 uschar *qualify_domain_sender  = NULL;
1242 uschar *queue_domains          = NULL;
1243 int     queue_interval         = -1;
1244 uschar *queue_name             = US"";
1245 uschar *queue_name_dest        = NULL;
1246 uschar *queue_only_file        = NULL;
1247 int     queue_only_load        = -1;
1248 uschar *queue_run_max          = US"5";
1249 pid_t   queue_run_pid          = (pid_t)0;
1250 int     queue_run_pipe         = -1;
1251 unsigned queue_size            = 0;
1252 time_t  queue_size_next        = 0;
1253 uschar *queue_smtp_domains     = NULL;
1254
1255 uint32_t random_seed           = 0;
1256 tree_node *ratelimiters_cmd    = NULL;
1257 tree_node *ratelimiters_conn   = NULL;
1258 tree_node *ratelimiters_mail   = NULL;
1259 uschar *raw_active_hostname    = NULL;
1260 const uschar *raw_sender       = NULL;
1261 const uschar **raw_recipients  = NULL;
1262 int     raw_recipients_count   = 0;
1263
1264 int     rcpt_count             = 0;
1265 int     rcpt_fail_count        = 0;
1266 int     rcpt_defer_count       = 0;
1267 gid_t   real_gid;
1268 uid_t   real_uid;
1269 int     receive_linecount      = 0;
1270 int     receive_messagecount   = 0;
1271 int     receive_timeout        = 0;
1272 int     received_count         = 0;
1273 const uschar *received_for     = NULL;
1274
1275 /*  This is the default text for Received headers generated by Exim. The
1276 date  will be automatically added on the end. */
1277
1278 uschar *received_header_text   = US
1279      "Received: "
1280      "${if def:sender_rcvhost {from $sender_rcvhost\n\t}"
1281        "{${if def:sender_ident {from ${quote_local_part:$sender_ident} }}"
1282          "${if def:sender_helo_name {(helo=$sender_helo_name)\n\t}}}}"
1283      "by $primary_hostname "
1284      "${if def:received_protocol {with $received_protocol }}"
1285 #ifndef DISABLE_TLS
1286      "${if def:tls_in_ver        { ($tls_in_ver)}}"
1287      "${if def:tls_in_cipher_std { tls $tls_in_cipher_std\n\t}}"
1288 #endif
1289      "(Exim $version_number)\n\t"
1290      "${if def:sender_address {(envelope-from <$sender_address>)\n\t}}"
1291      "id $message_exim_id"
1292      "${if def:received_for {\n\tfor $received_for}}"
1293      "\0<---------------Space to patch received_header_text->";
1294
1295 int     received_headers_max   = 30;
1296 uschar *received_protocol      = NULL;
1297 struct timeval received_time   = { 0, 0 };
1298 struct timeval received_time_complete = { 0, 0 };
1299 uschar *recipient_data         = NULL;
1300 uschar *recipient_unqualified_hosts = NULL;
1301 uschar *recipient_verify_failure = NULL;
1302 int     recipients_count       = 0;
1303 recipient_item  *recipients_list = NULL;
1304 int     recipients_list_max    = 0;
1305 uschar *recipients_max         = US"50000";
1306 int     recipients_max_expanded= 0;
1307 const pcre2_code *regex_AUTH         = NULL;
1308 const pcre2_code *regex_check_dns_names = NULL;
1309 const pcre2_code *regex_From         = NULL;
1310 const pcre2_code *regex_IGNOREQUOTA  = NULL;
1311 const pcre2_code *regex_PIPELINING   = NULL;
1312 const pcre2_code *regex_SIZE         = NULL;
1313 #ifndef DISABLE_PIPE_CONNECT
1314 const pcre2_code *regex_EARLY_PIPE   = NULL;
1315 #endif
1316 int    regex_cachesize               = 0;
1317 const pcre2_code *regex_ismsgid      = NULL;
1318 const pcre2_code *regex_smtp_code    = NULL;
1319 const uschar *regex_vars[REGEX_VARS] = { NULL };
1320 #ifdef WHITELIST_D_MACROS
1321 const pcre2_code *regex_whitelisted_macro = NULL;
1322 #endif
1323 #ifdef WITH_CONTENT_SCAN
1324 uschar *regex_match_string     = NULL;
1325 #endif
1326 int     remote_delivery_count  = 0;
1327 int     remote_max_parallel    = 4;
1328 uschar *remote_sort_domains    = NULL;
1329 int     retry_data_expire      = 7*24*60*60;
1330 int     retry_interval_max     = 24*60*60;
1331 int     retry_maximum_timeout  = 0;        /* set from retry config */
1332 retry_config  *retries         = NULL;
1333 const uschar *return_path            = NULL;
1334 int     rewrite_existflags     = 0;
1335 uschar *rfc1413_hosts          = US"@[]";
1336 int     rfc1413_query_timeout  = 0;
1337 uid_t   root_gid               = ROOT_GID;
1338 uid_t   root_uid               = ROOT_UID;
1339
1340 router_instance  *routers  = NULL;
1341
1342 /* All elements not mentioned will be 0/NULL/FALSE */
1343 router_instance  router_defaults = {
1344     .self =                     US"freeze",
1345
1346     .address_test =             TRUE,
1347     .expn =                     TRUE,
1348     .log_as_local =             TRUE_UNSET,
1349     .more =                     TRUE,
1350     .repeat_use =               TRUE,
1351     .retry_use_local_part =     TRUE_UNSET,
1352     .verify_recipient =         TRUE,
1353     .verify_sender =            TRUE,
1354
1355     .self_code =                self_freeze,
1356     .uid =                      (uid_t)(-1),
1357     .gid =                      (gid_t)(-1),
1358
1359     .dnssec =                   { .request= US"*", .require=NULL },
1360 };
1361
1362 const uschar *router_name      = NULL;
1363 tree_node *router_var          = NULL;
1364
1365 ip_address_item *running_interfaces = NULL;
1366
1367 /* This is a weird one. The following string gets patched in the binary by the
1368 script that sets up a copy of Exim for running in the test harness. It seems
1369 that compilers are now clever, and share constant strings if they can.
1370 Elsewhere in Exim the string "<" is used. The compiler optimization seems to
1371 make use of the end of this string in order to save space. So the patching then
1372 wrecks this. We defeat this optimization by adding some additional characters
1373 onto the end of the string. */
1374
1375 uschar *running_status         = US">>>running<<<" "\0EXTRA";
1376
1377 int     runrc                  = 0;
1378
1379 uschar *search_error_message   = NULL;
1380 uschar *self_hostname          = NULL;
1381 const uschar *sender_address   = NULL;
1382 unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32];
1383 uschar *sender_address_data    = NULL;
1384 const uschar *sender_address_unrewritten = NULL;
1385 uschar *sender_data            = NULL;
1386 unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32];
1387 uschar *sender_fullhost        = NULL;
1388 uschar *sender_helo_name       = NULL;
1389 uschar **sender_host_aliases   = &no_aliases;
1390 uschar *sender_host_address    = NULL;
1391 uschar *sender_host_authenticated = NULL;
1392 uschar *sender_host_auth_pubname  = NULL;
1393 unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32];
1394 uschar *sender_host_name       = NULL;
1395 int     sender_host_port       = 0;
1396 uschar *sender_ident           = NULL;
1397 uschar *sender_rate            = NULL;
1398 uschar *sender_rate_limit      = NULL;
1399 uschar *sender_rate_period     = NULL;
1400 uschar *sender_rcvhost         = NULL;
1401 uschar *sender_unqualified_hosts = NULL;
1402 uschar *sender_verify_failure = NULL;
1403 address_item *sender_verified_list  = NULL;
1404 address_item *sender_verified_failed = NULL;
1405 int     sender_verified_rc     = -1;
1406 uschar *sending_ip_address     = NULL;
1407 int     sending_port           = -1;
1408 SIGNAL_BOOL sigalrm_seen       = FALSE;
1409 const uschar *sigalarm_setter  = NULL;
1410 const uschar **sighup_argv     = NULL;
1411 int     slow_lookup_log        = 0;     /* millisecs, zero disables */
1412 int     smtp_accept_count      = 0;
1413 int     smtp_accept_max        = 20;
1414 int     smtp_accept_max_nonmail= 10;
1415 uschar *smtp_accept_max_nonmail_hosts = US"*";
1416 uschar *smtp_accept_max_per_connection = US"1000";
1417 uschar *smtp_accept_max_per_host = NULL;
1418 int     smtp_accept_queue      = 0;
1419 int     smtp_accept_queue_per_connection = 10;
1420 int     smtp_accept_reserve    = 0;
1421 uschar *smtp_active_hostname   = NULL;
1422 int     smtp_backlog_monitor   = 0;
1423 uschar *smtp_banner            = US"$smtp_active_hostname ESMTP "
1424                              "Exim $version_number $tod_full"
1425                              "\0<---------------Space to patch smtp_banner->";
1426 int     smtp_ch_index          = 0;
1427 uschar *smtp_cmd_argument      = NULL;
1428 uschar *smtp_cmd_buffer        = NULL;
1429 struct timeval smtp_connection_start  = {0,0};
1430 uschar  smtp_connection_had[SMTP_HBUFF_SIZE];
1431 int     smtp_connect_backlog   = 20;
1432 double  smtp_delay_mail        = 0.0;
1433 double  smtp_delay_rcpt        = 0.0;
1434 FILE   *smtp_in                = NULL;
1435 int     smtp_listen_backlog    = 0;
1436 int     smtp_load_reserve      = -1;
1437 int     smtp_mailcmd_count     = 0;
1438 int     smtp_mailcmd_max       = -1;
1439 FILE   *smtp_out               = NULL;
1440 uschar *smtp_etrn_command      = NULL;
1441 int     smtp_max_synprot_errors= 3;
1442 int     smtp_max_unknown_commands = 3;
1443 uschar *smtp_notquit_reason    = NULL;
1444 unsigned smtp_peer_options     = 0;
1445 unsigned smtp_peer_options_wrap= 0;
1446 uschar *smtp_ratelimit_hosts   = NULL;
1447 uschar *smtp_ratelimit_mail    = NULL;
1448 uschar *smtp_ratelimit_rcpt    = NULL;
1449 uschar *smtp_read_error        = US"";
1450 int     smtp_receive_timeout   = 5*60;
1451 uschar *smtp_receive_timeout_s = NULL;
1452 uschar *smtp_reserve_hosts     = NULL;
1453 int     smtp_rlm_base          = 0;
1454 double  smtp_rlm_factor        = 0.0;
1455 int     smtp_rlm_limit         = 0;
1456 int     smtp_rlm_threshold     = INT_MAX;
1457 int     smtp_rlr_base          = 0;
1458 double  smtp_rlr_factor        = 0.0;
1459 int     smtp_rlr_limit         = 0;
1460 int     smtp_rlr_threshold     = INT_MAX;
1461 #ifdef SUPPORT_I18N
1462 uschar *smtputf8_advertise_hosts = US"*";       /* overridden under test-harness */
1463 #endif
1464
1465 #ifdef WITH_CONTENT_SCAN
1466 uschar *spamd_address          = US"127.0.0.1 783";
1467 uschar *spam_bar               = NULL;
1468 uschar *spam_report            = NULL;
1469 uschar *spam_action            = NULL;
1470 uschar *spam_score             = NULL;
1471 uschar *spam_score_int         = NULL;
1472 #endif
1473
1474 FILE   *spool_data_file        = NULL;
1475 uschar *spool_directory        = US SPOOL_DIRECTORY
1476                            "\0<--------------Space to patch spool_directory->";
1477 #ifdef SUPPORT_SRS
1478 uschar *srs_recipient          = NULL;
1479 #endif
1480 int     string_datestamp_offset= -1;
1481 int     string_datestamp_length= 0;
1482 int     string_datestamp_type  = -1;
1483 const uschar *submission_domain = NULL;
1484 const uschar *submission_name  = NULL;
1485 int     syslog_facility        = LOG_MAIL;
1486 const uschar *syslog_processname= US"exim";
1487 uschar *system_filter          = NULL;
1488
1489 uschar *system_filter_directory_transport = NULL;
1490 uschar *system_filter_file_transport = NULL;
1491 uschar *system_filter_pipe_transport = NULL;
1492 uschar *system_filter_reply_transport = NULL;
1493
1494 gid_t   system_filter_gid      = 0;
1495 uid_t   system_filter_uid      = (uid_t)-1;
1496
1497 blob    tcp_fastopen_nodata    = { .data = NULL, .len = 0 };
1498 tfo_state_t tcp_out_fastopen   = TFO_NOT_USED;
1499 #ifdef USE_TCP_WRAPPERS
1500 uschar *tcp_wrappers_daemon_name = US TCP_WRAPPERS_DAEMON_NAME;
1501 #endif
1502 int     test_harness_load_avg  = 0;
1503 int     thismessage_size_limit = 0;
1504 int     timeout_frozen_after   = 0;
1505 #ifdef MEASURE_TIMING
1506 struct timeval timestamp_startup;
1507 #endif
1508
1509 transport_instance  *transports = NULL;
1510
1511 transport_instance  transport_defaults = {
1512     /* All non-mentioned elements zero/NULL/FALSE */
1513     .batch_max =                1,
1514     .multi_domain =             TRUE,
1515     .max_addresses =            US"100",
1516     .connection_max_messages =  500,
1517     .uid =                      (uid_t)(-1),
1518     .gid =                      (gid_t)(-1),
1519     .filter_timeout =           300,
1520     .retry_use_local_part =     TRUE_UNSET,     /* retry_use_local_part: BOOL, but set neither
1521                                                  1 nor 0 so can detect unset */
1522 };
1523
1524 int     transport_count;
1525 const uschar *transport_name          = NULL;
1526 int     transport_newlines;
1527 const uschar **transport_filter_argv  = NULL;
1528 int     transport_filter_timeout;
1529 int     transport_write_timeout= 0;
1530
1531 tree_node  *tree_dns_fails     = NULL;
1532 tree_node  *tree_duplicates    = NULL;
1533 tree_node  *tree_nonrecipients = NULL;
1534 tree_node  *tree_unusable      = NULL;
1535
1536 gid_t  *trusted_groups         = NULL;
1537 uid_t  *trusted_users          = NULL;
1538 uschar *timezone_string        = US TIMEZONE_DEFAULT;
1539
1540 uschar *unknown_login          = NULL;
1541 uschar *unknown_username       = NULL;
1542 uschar *untrusted_set_sender   = NULL;
1543
1544 /*  A regex for matching a "From_" line in an incoming message, in the form
1545
1546     From ph10 Fri Jan  5 12:35 GMT 1996
1547
1548 which  the "mail" commands send to the MTA (undocumented, of course), or in
1549 the  form
1550
1551     From ph10 Fri, 7 Jan 97 14:00:00 GMT
1552
1553 which  is apparently used by some UUCPs, despite it not being in RFC 976.
1554 Because  of variations in time formats, just match up to the minutes. That
1555 should  be sufficient. Examples have been seen of time fields like 12:1:03,
1556 so  just require one digit for hours and minutes. The weekday is also absent
1557 in  some forms. */
1558
1559 uschar *uucp_from_pattern      = US
1560    "^From\\s+(\\S+)\\s+(?:[a-zA-Z]{3},?\\s+)?"    /* Common start */
1561    "(?:"                                          /* Non-extracting bracket */
1562    "[a-zA-Z]{3}\\s+\\d?\\d|"                      /* First form */
1563    "\\d?\\d\\s+[a-zA-Z]{3}\\s+\\d\\d(?:\\d\\d)?"  /* Second form */
1564    ")"                                            /* End alternation */
1565    "\\s+\\d\\d?:\\d\\d?";                         /* Start of time */
1566
1567 uschar *uucp_from_sender       = US"$1";
1568
1569 uschar *verify_mode            = NULL;
1570 uschar *version_copyright      =
1571  US"Copyright (c) University of Cambridge, 1995 - 2018\n"
1572    "(c) The Exim Maintainers and contributors in ACKNOWLEDGMENTS file, 2007 - 2024";
1573 uschar *version_date           = US"?";
1574 uschar *version_cnumber        = US"????";
1575 uschar *version_string         = US"?";
1576
1577 uschar *warn_message_file      = NULL;
1578 int     warning_count          = 0;
1579 const uschar *warnmsg_delay    = NULL;
1580 const uschar *warnmsg_recipients = NULL;
1581
1582 #ifndef DISABLE_WELLKNOWN
1583 uschar *wellknown_advertise_hosts = NULL;
1584 uschar *wellknown_response     = NULL;
1585 #endif
1586
1587 /*  End of globals.c */
1588 /* vi: aw ai sw=2
1589 */