7af345465cdfd511df52b59da543bbba0f30f259
[exim.git] / src / src / globals.c
1 /*************************************************
2 *     Exim - an Internet mail transport agent    *
3 *************************************************/
4
5 /* Copyright (c) The Exim Maintainers 2020 - 2022 */
6 /* Copyright (c) University of Cambridge 1995 - 2018 */
7 /* See the file NOTICE for conditions of use and distribution. */
8 /* SPDX-License-Identifier: GPL-2.0-or-later */
9
10 /* All the global variables are defined together in this one module, so
11 that they are easy to find. */
12
13 #include "exim.h"
14
15
16 /* Generic options for auths, all of which live inside auth_instance
17 data blocks and hence have the opt_public flag set. */
18
19 optionlist optionlist_auths[] = {
20   { "client_condition", opt_stringptr | opt_public,
21                  OPT_OFF(auth_instance, client_condition) },
22   { "client_set_id", opt_stringptr | opt_public,
23                  OPT_OFF(auth_instance, set_client_id) },
24   { "driver",        opt_stringptr | opt_public,
25                  OPT_OFF(auth_instance, driver_name) },
26   { "public_name",   opt_stringptr | opt_public,
27                  OPT_OFF(auth_instance, public_name) },
28   { "server_advertise_condition", opt_stringptr | opt_public,
29                  OPT_OFF(auth_instance, advertise_condition)},
30   { "server_condition", opt_stringptr | opt_public,
31                  OPT_OFF(auth_instance, server_condition) },
32   { "server_debug_print", opt_stringptr | opt_public,
33                  OPT_OFF(auth_instance, server_debug_string) },
34   { "server_mail_auth_condition", opt_stringptr | opt_public,
35                  OPT_OFF(auth_instance, mail_auth_condition) },
36   { "server_set_id", opt_stringptr | opt_public,
37                  OPT_OFF(auth_instance, set_id) }
38 };
39
40 int     optionlist_auths_size = nelem(optionlist_auths);
41
42 /* An empty host aliases list. */
43
44 uschar *no_aliases             = NULL;
45
46
47 /* For comments on these variables, see globals.h. I'm too idle to
48 duplicate them here... */
49
50 #ifdef EXIM_PERL
51 uschar *opt_perl_startup       = NULL;
52 BOOL    opt_perl_at_start      = FALSE;
53 BOOL    opt_perl_started       = FALSE;
54 BOOL    opt_perl_taintmode     = FALSE;
55 #endif
56
57 #ifdef EXPAND_DLFUNC
58 tree_node *dlobj_anchor        = NULL;
59 #endif
60
61 #ifdef LOOKUP_IBASE
62 uschar *ibase_servers          = NULL;
63 #endif
64
65 #ifdef LOOKUP_LDAP
66 uschar *eldap_ca_cert_dir      = NULL;
67 uschar *eldap_ca_cert_file     = NULL;
68 uschar *eldap_cert_file        = NULL;
69 uschar *eldap_cert_key         = NULL;
70 uschar *eldap_cipher_suite     = NULL;
71 uschar *eldap_default_servers  = NULL;
72 uschar *eldap_require_cert     = NULL;
73 int     eldap_version          = -1;
74 BOOL    eldap_start_tls        = FALSE;
75 #endif
76
77 #ifdef LOOKUP_MYSQL
78 uschar *mysql_servers          = NULL;
79 #endif
80
81 #ifdef LOOKUP_ORACLE
82 uschar *oracle_servers         = NULL;
83 #endif
84
85 #ifdef LOOKUP_PGSQL
86 uschar *pgsql_servers          = NULL;
87 #endif
88
89 #ifdef LOOKUP_REDIS
90 uschar *redis_servers          = NULL;
91 #endif
92
93 #ifdef LOOKUP_SQLITE
94 uschar *sqlite_dbfile          = NULL;
95 int     sqlite_lock_timeout    = 5;
96 #endif
97
98 #ifdef SUPPORT_MOVE_FROZEN_MESSAGES
99 BOOL    move_frozen_messages   = FALSE;
100 #endif
101
102 /* These variables are outside the #ifdef because it keeps the code less
103 cluttered in several places (e.g. during logging) if we can always refer to
104 them. Also, the tls_ variables are now always visible.  Note that these are
105 only used for smtp connections, not for service-daemon access. */
106
107 tls_support tls_in = {
108  .active =              {.sock = -1}
109  /* all other elements zero */
110 };
111 tls_support tls_out = {
112  .active =              {.sock = -1},
113  /* all other elements zero */
114 };
115
116 uschar *dsn_envid              = NULL;
117 int     dsn_ret                = 0;
118 const pcre2_code  *regex_DSN         = NULL;
119 uschar *dsn_advertise_hosts    = NULL;
120
121 #ifndef DISABLE_TLS
122 BOOL    gnutls_compat_mode     = FALSE;
123 BOOL    gnutls_allow_auto_pkcs11 = FALSE;
124 uschar *hosts_require_alpn     = NULL;
125 uschar *openssl_options        = NULL;
126 const pcre2_code *regex_STARTTLS     = NULL;
127 uschar *tls_advertise_hosts    = US"*";
128 uschar *tls_alpn               = US"smtp:esmtp";
129 uschar *tls_certificate        = NULL;
130 uschar *tls_crl                = NULL;
131 /* This default matches NSS DH_MAX_P_BITS value at current time (2012), because
132 that's the interop problem which has been observed: GnuTLS suggesting a higher
133 bit-count as "NORMAL" (2432) and Thunderbird dropping connection. */
134 int     tls_dh_max_bits        = 2236;
135 uschar *tls_dhparam            = NULL;
136 uschar *tls_eccurve            = US"auto";
137 # ifndef DISABLE_OCSP
138 uschar *tls_ocsp_file          = NULL;
139 # endif
140 uschar *tls_privatekey         = NULL;
141 BOOL    tls_remember_esmtp     = FALSE;
142 uschar *tls_require_ciphers    = NULL;
143 # ifndef DISABLE_TLS_RESUME
144 uschar *tls_resumption_hosts   = NULL;
145 # endif
146 uschar *tls_try_verify_hosts   = NULL;
147 uschar *tls_verify_certificates= US"system";
148 uschar *tls_verify_hosts       = NULL;
149 int     tls_watch_fd           = -1;
150 time_t  tls_watch_trigger_time = (time_t)0;
151 #else   /*DISABLE_TLS*/
152 uschar *tls_advertise_hosts    = NULL;
153 #endif
154
155 #ifndef DISABLE_PRDR
156 /* Per Recipient Data Response variables */
157 BOOL    prdr_enable            = FALSE;
158 BOOL    prdr_requested         = FALSE;
159 const pcre2_code *regex_PRDR         = NULL;
160 #endif
161
162 #ifdef SUPPORT_I18N
163 const pcre2_code *regex_UTF8         = NULL;
164 #endif
165
166 /* Input-reading functions for messages, so we can use special ones for
167 incoming TCP/IP. The defaults use stdin. We never need these for any
168 stand-alone tests. */
169
170 #if !defined(STAND_ALONE) && !defined(MACRO_PREDEF)
171 int     (*lwr_receive_getc)(unsigned)   = stdin_getc;
172 uschar * (*lwr_receive_getbuf)(unsigned *) = NULL;
173 int     (*lwr_receive_ungetc)(int)      = stdin_ungetc;
174 BOOL    (*lwr_receive_hasc)(void)       = stdin_hasc;
175
176 int     (*receive_getc)(unsigned)       = stdin_getc;
177 uschar * (*receive_getbuf)(unsigned *)  = NULL;
178 void    (*receive_get_cache)(unsigned)  = NULL;
179 BOOL    (*receive_hasc)(void)           = stdin_hasc;
180 int     (*receive_ungetc)(int)          = stdin_ungetc;
181 int     (*receive_feof)(void)           = stdin_feof;
182 int     (*receive_ferror)(void)         = stdin_ferror;
183 #endif
184
185
186 /* List of per-address expansion variables for clearing and saving/restoring
187 when verifying one address while routing/verifying another. We have to have
188 the size explicit, because it is referenced from more than one module. */
189
190 const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT] = {
191   CUSS &deliver_address_data,
192   CUSS &deliver_domain,
193   CUSS &deliver_domain_data,
194   CUSS &deliver_domain_orig,
195   CUSS &deliver_domain_parent,
196   CUSS &deliver_localpart,
197   CUSS &deliver_localpart_data,
198   CUSS &deliver_localpart_orig,
199   CUSS &deliver_localpart_parent,
200   CUSS &deliver_localpart_prefix,
201   CUSS &deliver_localpart_suffix,
202   CUSS (uschar **)(&deliver_recipients),
203   CUSS &deliver_host,
204   CUSS &deliver_home,
205   CUSS &address_file,
206   CUSS &address_pipe,
207   CUSS &self_hostname,
208   NULL };
209
210 int address_expansions_count = sizeof(address_expansions)/sizeof(uschar **);
211
212 /******************************************************************************/
213 /* General global variables.  Boolean flags are done as a group
214 so that only one bit each is needed, packed, for all those we never
215 need to take a pointer - and only a char for the rest.
216 This means a struct, unfortunately since it clutters the sourcecode. */
217
218 struct global_flags f =
219 {
220         .acl_temp_details       = FALSE,
221         .active_local_from_check = FALSE,
222         .active_local_sender_retain = FALSE,
223         .address_test_mode      = FALSE,
224         .admin_user             = FALSE,
225         .allow_auth_unadvertised= FALSE,
226         .allow_unqualified_recipient = TRUE,    /* For local messages */
227         .allow_unqualified_sender = TRUE,       /* Reset for SMTP */
228         .authentication_local   = FALSE,
229
230         .background_daemon      = TRUE,
231         .bdat_readers_wanted    = FALSE,
232
233         .chunking_offered       = FALSE,
234         .config_changed         = FALSE,
235         .continue_more          = FALSE,
236
237         .daemon_listen          = FALSE,
238         .daemon_scion           = FALSE,
239         .debug_daemon           = FALSE,
240         .deliver_firsttime      = FALSE,
241         .deliver_force          = FALSE,
242         .deliver_freeze         = FALSE,
243         .deliver_force_thaw     = FALSE,
244         .deliver_manual_thaw    = FALSE,
245         .deliver_selectstring_regex = FALSE,
246         .deliver_selectstring_sender_regex = FALSE,
247         .disable_callout_flush  = FALSE,
248         .disable_delay_flush    = FALSE,
249         .disable_logging        = FALSE,
250 #ifndef DISABLE_DKIM
251         .dkim_disable_verify      = FALSE,
252         .dkim_init_done           = FALSE,
253 #endif
254 #ifdef SUPPORT_DMARC
255         .dmarc_has_been_checked  = FALSE,
256         .dmarc_disable_verify    = FALSE,
257         .dmarc_enable_forensic   = FALSE,
258 #endif
259         .dont_deliver           = FALSE,
260         .dot_ends               = TRUE,
261
262         .enable_dollar_recipients = FALSE,
263         .expand_string_forcedfail = FALSE,
264
265         .filter_running         = FALSE,
266
267         .header_rewritten       = FALSE,
268         .helo_verified          = FALSE,
269         .helo_verify_failed     = FALSE,
270         .host_checking_callout  = FALSE,
271         .host_find_failed_syntax= FALSE,
272
273         .inetd_wait_mode        = FALSE,
274         .is_inetd               = FALSE,
275
276         .local_error_message    = FALSE,
277         .log_testing_mode       = FALSE,
278
279 #ifdef WITH_CONTENT_SCAN
280         .no_mbox_unspool        = FALSE,
281 #endif
282         .no_multiline_responses = FALSE,
283         .notifier_socket_en     = TRUE,
284
285         .parse_allow_group      = FALSE,
286         .parse_found_group      = FALSE,
287         .pipelining_enable      = TRUE,
288 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
289         .proxy_session_failed   = FALSE,
290 #endif
291
292         .queue_2stage           = FALSE,
293         .queue_only_policy      = FALSE,
294         .queue_run_first_delivery = FALSE,
295         .queue_run_force        = FALSE,
296         .queue_run_local        = FALSE,
297         .queue_running          = FALSE,
298         .queue_smtp             = FALSE,
299
300         .really_exim            = TRUE,
301         .receive_call_bombout   = FALSE,
302         .recipients_discarded   = FALSE,
303         .running_in_test_harness = FALSE,
304
305         .search_find_defer      = FALSE,
306         .sender_address_forced  = FALSE,
307         .sender_host_notsocket  = FALSE,
308         .sender_host_unknown    = FALSE,
309         .sender_local           = FALSE,
310         .sender_name_forced     = FALSE,
311         .sender_set_untrusted   = FALSE,
312         .smtp_authenticated     = FALSE,
313 #ifndef DISABLE_PIPE_CONNECT
314         .smtp_in_early_pipe_advertised = FALSE,
315         .smtp_in_early_pipe_no_auth = FALSE,
316         .smtp_in_early_pipe_used = FALSE,
317 #endif
318         .smtp_in_pipelining_advertised = FALSE,
319         .smtp_in_pipelining_used = FALSE,
320         .smtp_in_quit           = FALSE,
321         .spool_file_wireformat  = FALSE,
322         .submission_mode        = FALSE,
323         .suppress_local_fixups  = FALSE,
324         .suppress_local_fixups_default = FALSE,
325         .synchronous_delivery   = FALSE,
326         .system_filtering       = FALSE,
327
328         .taint_check_slow       = FALSE,
329         .testsuite_delays       = TRUE,
330         .tcp_fastopen_ok        = FALSE,
331         .tcp_in_fastopen        = FALSE,
332         .tcp_in_fastopen_data   = FALSE,
333         .tcp_in_fastopen_logged = FALSE,
334         .tcp_out_fastopen_logged= FALSE,
335         .timestamps_utc         = FALSE,
336         .transport_filter_timed_out = FALSE,
337         .trusted_caller         = FALSE,
338         .trusted_config         = TRUE,
339 };
340
341 /******************************************************************************/
342 /* These are the flags which are either variables or mainsection options,
343 so an address is needed for access, or are exported to local_scan. */
344
345 BOOL    accept_8bitmime        = TRUE; /* deliberately not RFC compliant */
346 BOOL    allow_domain_literals  = FALSE;
347 BOOL    allow_mx_to_ip         = FALSE;
348 BOOL    allow_utf8_domains     = FALSE;
349 BOOL    authentication_failed  = FALSE;
350
351 BOOL    bounce_return_body     = TRUE;
352 BOOL    bounce_return_message  = TRUE;
353 BOOL    check_rfc2047_length   = TRUE;
354 BOOL    commandline_checks_require_admin = FALSE;
355
356 #ifdef EXPERIMENTAL_DCC
357 BOOL    dcc_direct_add_header  = FALSE;
358 #endif
359 BOOL    debug_store            = FALSE;
360 BOOL    delivery_date_remove   = TRUE;
361 BOOL    deliver_drop_privilege = FALSE;
362 #ifdef ENABLE_DISABLE_FSYNC
363 BOOL    disable_fsync          = FALSE;
364 #endif
365 BOOL    disable_ipv6           = FALSE;
366 BOOL    dns_csa_use_reverse    = TRUE;
367 BOOL    drop_cr                = FALSE;         /* No longer used */
368
369 BOOL    envelope_to_remove     = TRUE;
370 BOOL    exim_gid_set           = TRUE;          /* This gid is always set */
371 BOOL    exim_uid_set           = TRUE;          /* This uid is always set */
372 BOOL    extract_addresses_remove_arguments = TRUE;
373
374 BOOL    host_checking          = FALSE;
375 BOOL    host_lookup_deferred   = FALSE;
376 BOOL    host_lookup_failed     = FALSE;
377 BOOL    ignore_fromline_local  = FALSE;
378
379 BOOL    local_from_check       = TRUE;
380 BOOL    local_sender_retain    = FALSE;
381 BOOL    log_timezone           = FALSE;
382 BOOL    message_body_newlines  = FALSE;
383 BOOL    message_logs           = TRUE;
384 #ifdef SUPPORT_I18N
385 BOOL    message_smtputf8       = FALSE;
386 #endif
387 BOOL    mua_wrapper            = FALSE;
388
389 BOOL    preserve_message_logs  = FALSE;
390 BOOL    print_topbitchars      = FALSE;
391 BOOL    prod_requires_admin    = TRUE;
392 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
393 BOOL    proxy_session          = FALSE;
394 #endif
395
396 #ifndef DISABLE_QUEUE_RAMP
397 BOOL    queue_fast_ramp         = TRUE;
398 #endif
399 BOOL    queue_list_requires_admin = TRUE;
400 BOOL    queue_only             = FALSE;
401 BOOL    queue_only_load_latch  = TRUE;
402 BOOL    queue_only_override    = TRUE;
403 BOOL    queue_run_in_order     = FALSE;
404 BOOL    recipients_max_reject  = FALSE;
405 BOOL    return_path_remove     = TRUE;
406
407 BOOL    smtp_batched_input     = FALSE;
408 BOOL    sender_helo_dnssec     = FALSE;
409 BOOL    sender_host_dnssec     = FALSE;
410 BOOL    smtp_accept_keepalive  = TRUE;
411 BOOL    smtp_check_spool_space = TRUE;
412 BOOL    smtp_enforce_sync      = TRUE;
413 BOOL    smtp_etrn_serialize    = TRUE;
414 BOOL    smtp_input             = FALSE;
415 BOOL    smtp_return_error_details = FALSE;
416 #ifdef SUPPORT_SPF
417 BOOL    spf_result_guessed     = FALSE;
418 #endif
419 BOOL    split_spool_directory  = FALSE;
420 BOOL    spool_wireformat       = FALSE;
421 BOOL    strict_acl_vars        = FALSE;
422 BOOL    strip_excess_angle_brackets = FALSE;
423 BOOL    strip_trailing_dot     = FALSE;
424 BOOL    syslog_duplication     = TRUE;
425 BOOL    syslog_pid             = TRUE;
426 BOOL    syslog_timestamp       = TRUE;
427 BOOL    system_filter_gid_set  = FALSE;
428 BOOL    system_filter_uid_set  = FALSE;
429
430 BOOL    tcp_nodelay            = TRUE;
431 BOOL    write_rejectlog        = TRUE;
432
433 /******************************************************************************/
434
435 header_line *acl_added_headers = NULL;
436 tree_node *acl_anchor          = NULL;
437 uschar *acl_arg[9]             = {NULL, NULL, NULL, NULL, NULL,
438                                   NULL, NULL, NULL, NULL};
439 int     acl_narg               = 0;
440
441 int     acl_level              = 0;
442
443 uschar *acl_not_smtp           = NULL;
444 #ifdef WITH_CONTENT_SCAN
445 uschar *acl_not_smtp_mime      = NULL;
446 #endif
447 uschar *acl_not_smtp_start     = NULL;
448 uschar *acl_removed_headers    = NULL;
449 uschar *acl_smtp_auth          = NULL;
450 uschar *acl_smtp_connect       = NULL;
451 uschar *acl_smtp_data          = NULL;
452 #ifndef DISABLE_PRDR
453 uschar *acl_smtp_data_prdr     = US"accept";
454 #endif
455 #ifndef DISABLE_DKIM
456 uschar *acl_smtp_dkim          = NULL;
457 #endif
458 uschar *acl_smtp_etrn          = NULL;
459 uschar *acl_smtp_expn          = NULL;
460 uschar *acl_smtp_helo          = NULL;
461 uschar *acl_smtp_mail          = NULL;
462 uschar *acl_smtp_mailauth      = NULL;
463 #ifdef WITH_CONTENT_SCAN
464 uschar *acl_smtp_mime          = NULL;
465 #endif
466 uschar *acl_smtp_notquit       = NULL;
467 uschar *acl_smtp_predata       = NULL;
468 uschar *acl_smtp_quit          = NULL;
469 uschar *acl_smtp_rcpt          = NULL;
470 uschar *acl_smtp_starttls      = NULL;
471 uschar *acl_smtp_vrfy          = NULL;
472
473 tree_node *acl_var_c           = NULL;
474 tree_node *acl_var_m           = NULL;
475 uschar *acl_verify_message     = NULL;
476 string_item *acl_warn_logged   = NULL;
477
478 /* Names of SMTP places for use in ACL error messages, and corresponding SMTP
479 error codes - keep in step with definitions of ACL_WHERE_xxxx in macros.h. */
480
481 uschar *acl_wherenames[]       = { US"RCPT",
482                                    US"MAIL",
483                                    US"PREDATA",
484                                    US"MIME",
485                                    US"DKIM",
486                                    US"DATA",
487 #ifndef DISABLE_PRDR
488                                    US"PRDR",
489 #endif
490                                    US"non-SMTP",
491                                    US"AUTH",
492                                    US"connection",
493                                    US"ETRN",
494                                    US"EXPN",
495                                    US"EHLO or HELO",
496                                    US"MAILAUTH",
497                                    US"non-SMTP-start",
498                                    US"NOTQUIT",
499                                    US"QUIT",
500                                    US"STARTTLS",
501                                    US"VRFY",
502                                    US"delivery",
503                                    US"unknown"
504                                  };
505
506 uschar *acl_wherecodes[]       = { US"550",     /* RCPT */
507                                    US"550",     /* MAIL */
508                                    US"550",     /* PREDATA */
509                                    US"550",     /* MIME */
510                                    US"550",     /* DKIM */
511                                    US"550",     /* DATA */
512 #ifndef DISABLE_PRDR
513                                    US"550",    /* RCPT PRDR */
514 #endif
515                                    US"0",       /* not SMTP; not relevant */
516                                    US"503",     /* AUTH */
517                                    US"550",     /* connect */
518                                    US"458",     /* ETRN */
519                                    US"550",     /* EXPN */
520                                    US"550",     /* HELO/EHLO */
521                                    US"0",       /* MAILAUTH; not relevant */
522                                    US"0",       /* not SMTP; not relevant */
523                                    US"0",       /* NOTQUIT; not relevant */
524                                    US"0",       /* QUIT; not relevant */
525                                    US"550",     /* STARTTLS */
526                                    US"252",     /* VRFY */
527                                    US"0",       /* delivery; not relevant */
528                                    US"0"        /* unknown; not relevant */
529                                  };
530
531 uschar *add_environment        = NULL;
532 address_item  *addr_duplicate  = NULL;
533
534 address_item address_defaults = {
535   .next =               NULL,
536   .parent =             NULL,
537   .first =              NULL,
538   .dupof =              NULL,
539   .start_router =       NULL,
540   .router =             NULL,
541   .transport =          NULL,
542   .host_list =          NULL,
543   .host_used =          NULL,
544   .fallback_hosts =     NULL,
545   .reply =              NULL,
546   .retries =            NULL,
547   .address =            NULL,
548   .unique =             NULL,
549   .cc_local_part =      NULL,
550   .lc_local_part =      NULL,
551   .local_part =         NULL,
552   .prefix =             NULL,
553   .prefix_v =           NULL,
554   .suffix =             NULL,
555   .suffix_v =           NULL,
556   .domain =             NULL,
557   .address_retry_key =  NULL,
558   .domain_retry_key =   NULL,
559   .current_dir =        NULL,
560   .home_dir =           NULL,
561   .message =            NULL,
562   .user_message =       NULL,
563   .onetime_parent =     NULL,
564   .pipe_expandn =       NULL,
565   .return_filename =    NULL,
566   .self_hostname =      NULL,
567   .shadow_message =     NULL,
568 #ifndef DISABLE_TLS
569   .cipher =             NULL,
570   .ourcert =            NULL,
571   .peercert =           NULL,
572   .peerdn =             NULL,
573   .ocsp =               OCSP_NOT_REQ,
574 #endif
575 #ifdef EXPERIMENTAL_DSN_INFO
576   .smtp_greeting =      NULL,
577   .helo_response =      NULL,
578 #endif
579   .authenticator =      NULL,
580   .auth_id =            NULL,
581   .auth_sndr =          NULL,
582   .dsn_orcpt =          NULL,
583   .dsn_flags =          0,
584   .dsn_aware =          0,
585   .uid =                (uid_t)(-1),
586   .gid =                (gid_t)(-1),
587   .flags =              { 0 },
588   .domain_cache =       { 0 },                /* domain_cache - any larger array should be zeroed */
589   .localpart_cache =    { 0 },                /* localpart_cache - ditto */
590   .mode =               -1,
591   .more_errno =         0,
592   .delivery_time =      {.tv_sec = 0, .tv_usec = 0},
593   .basic_errno =        ERRNO_UNKNOWNERROR,
594   .child_count =        0,
595   .return_file =        -1,
596   .special_action =     SPECIAL_NONE,
597   .transport_return =   DEFER,
598   .prop = {                                     /* fields that are propagated to children */
599     .address_data =     NULL,
600     .domain_data =      NULL,
601     .localpart_data =   NULL,
602     .errors_address =   NULL,
603     .extra_headers =    NULL,
604     .remove_headers =   NULL,
605     .variables =        NULL,
606     .ignore_error =     FALSE,
607 #ifdef SUPPORT_I18N
608     .utf8_msg =         FALSE,
609     .utf8_downcvt =     FALSE,
610     .utf8_downcvt_maybe = FALSE
611 #endif
612   }
613 };
614
615 uschar *address_file           = NULL;
616 uschar *address_pipe           = NULL;
617 tree_node *addresslist_anchor  = NULL;
618 int     addresslist_count      = 0;
619 gid_t  *admin_groups           = NULL;
620
621 #ifdef EXPERIMENTAL_ARC
622 struct arc_set *arc_received    = NULL;
623 int     arc_received_instance   = 0;
624 int     arc_oldest_pass         = 0;
625 const uschar *arc_state         = NULL;
626 const uschar *arc_state_reason  = NULL;
627 #endif
628
629 uschar *authenticated_fail_id  = NULL;
630 uschar *authenticated_id       = NULL;
631 uschar *authenticated_sender   = NULL;
632 auth_instance  *auths          = NULL;
633 uschar *auth_advertise_hosts   = US"*";
634 auth_instance auth_defaults    = {
635     .next =             NULL,
636     .name =             NULL,
637     .info =             NULL,
638     .options_block =    NULL,
639     .driver_name =      NULL,
640     .advertise_condition = NULL,
641     .client_condition = NULL,
642     .public_name =      NULL,
643     .set_id =           NULL,
644     .set_client_id =    NULL,
645     .mail_auth_condition = NULL,
646     .server_debug_string = NULL,
647     .server_condition = NULL,
648     .client =           FALSE,
649     .server =           FALSE,
650     .advertised =       FALSE
651 };
652
653 uschar *auth_defer_msg         = US"reason not recorded";
654 uschar *auth_defer_user_msg    = US"";
655 const uschar *auth_vars[AUTH_VARS];
656 uschar *authenticator_name     = NULL;
657 int     auto_thaw              = 0;
658 #ifdef WITH_CONTENT_SCAN
659 int     av_failed              = FALSE; /* boolean but accessed as vtype_int*/
660 uschar *av_scanner             = US"sophie:/var/run/sophie";  /* AV scanner */
661 #endif
662
663 #if BASE_62 == 62
664 uschar *base62_chars=
665     US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz";
666 #else
667 uschar *base62_chars= US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ";
668 #endif
669
670 uschar *bi_command             = NULL;
671 uschar *big_buffer             = NULL;
672 int     big_buffer_size        = BIG_BUFFER_SIZE;
673 #ifdef EXPERIMENTAL_BRIGHTMAIL
674 uschar *bmi_alt_location       = NULL;
675 uschar *bmi_base64_tracker_verdict = NULL;
676 uschar *bmi_base64_verdict     = NULL;
677 uschar *bmi_config_file        = US"/opt/brightmail/etc/brightmail.cfg";
678 int     bmi_deliver            = 1;
679 int     bmi_run                = 0;
680 uschar *bmi_verdicts           = NULL;
681 #endif
682 int     bsmtp_transaction_linecount = 0;
683 int     body_8bitmime          = 0;
684 int     body_linecount         = 0;
685 int     body_zerocount         = 0;
686 uschar *bounce_message_file    = NULL;
687 uschar *bounce_message_text    = NULL;
688 uschar *bounce_recipient       = NULL;
689 int     bounce_return_linesize_limit = 998;
690 int     bounce_return_size_limit = 100*1024;
691 uschar *bounce_sender_authentication = NULL;
692
693 uschar *callout_address        = NULL;
694 int     callout_cache_domain_positive_expire = 7*24*60*60;
695 int     callout_cache_domain_negative_expire = 3*60*60;
696 int     callout_cache_positive_expire = 24*60*60;
697 int     callout_cache_negative_expire = 2*60*60;
698 uschar *callout_random_local_part = US"$primary_hostname-$tod_epoch-testing";
699 uschar *check_dns_names_pattern= US"(?i)^(?>(?(1)\\.|())[^\\W](?>[a-z0-9/_-]*[^\\W])?)+(\\.?)$";
700 int     check_log_inodes       = 100;
701 int_eximarith_t check_log_space = 10*1024;      /* 10K Kbyte == 10MB */
702 int     check_spool_inodes     = 100;
703 int_eximarith_t check_spool_space = 10*1024;    /* 10K Kbyte == 10MB */
704
705 uschar *chunking_advertise_hosts = US"*";
706 unsigned chunking_datasize     = 0;
707 unsigned chunking_data_left    = 0;
708 chunking_state_t chunking_state= CHUNKING_NOT_OFFERED;
709 const pcre2_code *regex_CHUNKING     = NULL;
710
711 #ifdef EXPERIMENTAL_ESMTP_LIMITS
712 const pcre2_code *regex_LIMITS        = NULL;
713 #endif
714
715 uschar *client_authenticator   = NULL;
716 uschar *client_authenticated_id = NULL;
717 uschar *client_authenticated_sender = NULL;
718 #ifndef DISABLE_CLIENT_CMD_LOG
719 gstring *client_cmd_log        = NULL;
720 #endif
721 int     clmacro_count          = 0;
722 uschar *clmacros[MAX_CLMACROS];
723 FILE   *config_file            = NULL;
724 const uschar *config_filename  = NULL;
725 int     config_lineno          = 0;
726 #ifdef CONFIGURE_GROUP
727 gid_t   config_gid             = CONFIGURE_GROUP;
728 #else
729 gid_t   config_gid             = 0;
730 #endif
731 uschar *config_main_filelist   = US CONFIGURE_FILE
732                          "\0<-----------Space to patch configure_filename->";
733 uschar *config_main_filename   = NULL;
734 uschar *config_main_directory  = NULL;
735
736 #ifdef CONFIGURE_OWNER
737 uid_t   config_uid             = CONFIGURE_OWNER;
738 #else
739 uid_t   config_uid             = 0;
740 #endif
741
742 int     connection_max_messages= -1;
743 uschar *continue_proxy_cipher  = NULL;
744 BOOL    continue_proxy_dane    = FALSE;
745 uschar *continue_proxy_sni     = NULL;
746 uschar *continue_hostname      = NULL;
747 uschar *continue_host_address  = NULL;
748 int     continue_sequence      = 1;
749 uschar *continue_transport     = NULL;
750 #ifdef EXPERIMENTAL_ESMTP_LIMITS
751 unsigned continue_limit_mail   = 0;
752 unsigned continue_limit_rcpt   = 0;
753 unsigned continue_limit_rcptdom= 0;
754 #endif
755
756 uschar *csa_status             = NULL;
757 cut_t   cutthrough = {
758   .callout_hold_only =  FALSE,                          /* verify-only: normal delivery */
759   .delivery =           FALSE,                          /* when to attempt */
760   .defer_pass =         FALSE,                          /* on defer: spool locally */
761   .is_tls =             FALSE,                          /* not a TLS conn yet */
762   .cctx =               {.sock = -1},                   /* open connection */
763   .nrcpt =              0,                              /* number of addresses */
764 };
765
766 int     daemon_notifier_fd     = -1;
767 uschar *daemon_smtp_port       = US"smtp";
768 int     daemon_startup_retries = 9;
769 int     daemon_startup_sleep   = 30;
770
771 #ifdef EXPERIMENTAL_DCC
772 uschar *dcc_header             = NULL;
773 uschar *dcc_result             = NULL;
774 uschar *dccifd_address         = US"/usr/local/dcc/var/dccifd";
775 uschar *dccifd_options         = US"header";
776 #endif
777
778 int     debug_fd               = -1;
779 FILE   *debug_file             = NULL;
780 int     debug_notall[]         = {
781   Di_memory,
782   Di_noutf8,
783   -1
784 };
785 bit_table debug_options[]      = { /* must be in alphabetical order and use
786                                  only the enum values from macro.h */
787   BIT_TABLE(D, acl),
788   BIT_TABLE(D, all),
789   BIT_TABLE(D, auth),
790   BIT_TABLE(D, deliver),
791   BIT_TABLE(D, dns),
792   BIT_TABLE(D, dnsbl),
793   BIT_TABLE(D, exec),
794   BIT_TABLE(D, expand),
795   BIT_TABLE(D, filter),
796   BIT_TABLE(D, hints_lookup),
797   BIT_TABLE(D, host_lookup),
798   BIT_TABLE(D, ident),
799   BIT_TABLE(D, interface),
800   BIT_TABLE(D, lists),
801   BIT_TABLE(D, load),
802   BIT_TABLE(D, local_scan),
803   BIT_TABLE(D, lookup),
804   BIT_TABLE(D, memory),
805   BIT_TABLE(D, noutf8),
806   BIT_TABLE(D, pid),
807   BIT_TABLE(D, process_info),
808   BIT_TABLE(D, queue_run),
809   BIT_TABLE(D, receive),
810   BIT_TABLE(D, resolver),
811   BIT_TABLE(D, retry),
812   BIT_TABLE(D, rewrite),
813   BIT_TABLE(D, route),
814   BIT_TABLE(D, timestamp),
815   BIT_TABLE(D, tls),
816   BIT_TABLE(D, transport),
817   BIT_TABLE(D, uid),
818   BIT_TABLE(D, verify),
819 };
820 int      debug_options_count    = nelem(debug_options);
821 uschar   debuglog_name[LOG_NAME_SIZE] = {0};
822 unsigned debug_pretrigger_bsize = 0;
823 uschar * debug_pretrigger_buf   = NULL;
824 unsigned int debug_selector     = 0;
825
826 int     delay_warning[DELAY_WARNING_SIZE] = { DELAY_WARNING_SIZE, 1, 24*60*60 };
827 uschar *delay_warning_condition=
828   US"${if or {"
829             "{ !eq{$h_list-id:$h_list-post:$h_list-subscribe:}{} }"
830             "{ match{$h_precedence:}{(?i)bulk|list|junk} }"
831             "{ match{$h_auto-submitted:}{(?i)auto-generated|auto-replied} }"
832             "} {no}{yes}}";
833 uschar *deliver_address_data   = NULL;
834 int     deliver_datafile       = -1;
835 const uschar *deliver_domain   = NULL;
836 uschar *deliver_domain_data    = NULL;
837 const uschar *deliver_domain_orig = NULL;
838 const uschar *deliver_domain_parent = NULL;
839 time_t  deliver_frozen_at      = 0;
840 uschar *deliver_home           = NULL;
841 const uschar *deliver_host     = NULL;
842 const uschar *deliver_host_address = NULL;
843 int     deliver_host_port      = 0;
844 uschar *deliver_in_buffer      = NULL;
845 ino_t   deliver_inode          = 0;
846 uschar *deliver_localpart      = NULL;
847 uschar *deliver_localpart_data = NULL;
848 uschar *deliver_localpart_orig = NULL;
849 uschar *deliver_localpart_parent = NULL;
850 uschar *deliver_localpart_prefix = NULL;
851 uschar *deliver_localpart_prefix_v = NULL;
852 uschar *deliver_localpart_suffix = NULL;
853 uschar *deliver_localpart_suffix_v = NULL;
854 uschar *deliver_out_buffer     = NULL;
855 int     deliver_queue_load_max = -1;
856 address_item  *deliver_recipients = NULL;
857 uschar *deliver_selectstring   = NULL;
858 uschar *deliver_selectstring_sender = NULL;
859
860 #ifndef DISABLE_DKIM
861 unsigned dkim_collect_input      = 0;
862 uschar *dkim_cur_signer          = NULL;
863 int     dkim_key_length          = 0;
864 void   *dkim_signatures          = NULL;
865 uschar *dkim_signers             = NULL;
866 uschar *dkim_signing_domain      = NULL;
867 uschar *dkim_signing_selector    = NULL;
868 uschar *dkim_verify_hashes       = US"sha256:sha512";
869 uschar *dkim_verify_keytypes     = US"ed25519:rsa";
870 uschar *dkim_verify_min_keysizes = US"rsa=1024 ed25519=250";
871 BOOL    dkim_verify_minimal      = FALSE;
872 uschar *dkim_verify_overall      = NULL;
873 uschar *dkim_verify_signers      = US"$dkim_signers";
874 uschar *dkim_verify_status       = NULL;
875 uschar *dkim_verify_reason       = NULL;
876 #endif
877 #ifdef SUPPORT_DMARC
878 uschar *dmarc_domain_policy     = NULL;
879 uschar *dmarc_forensic_sender   = NULL;
880 uschar *dmarc_history_file      = NULL;
881 uschar *dmarc_status            = NULL;
882 uschar *dmarc_status_text       = NULL;
883 uschar *dmarc_tld_file          = NULL;
884 uschar *dmarc_used_domain       = NULL;
885 #endif
886
887 uschar *dns_again_means_nonexist = NULL;
888 int     dns_csa_search_limit   = 5;
889 int     dns_cname_loops        = 1;
890 #ifdef SUPPORT_DANE
891 int     dns_dane_ok            = -1;
892 #endif
893 uschar *dns_ipv4_lookup        = NULL;
894 int     dns_retrans            = 0;
895 int     dns_retry              = 0;
896 int     dns_dnssec_ok          = -1; /* <0 = not coerced */
897 uschar *dns_trust_aa           = NULL;
898 int     dns_use_edns0          = -1; /* <0 = not coerced */
899 uschar *dnslist_domain         = NULL;
900 uschar *dnslist_matched        = NULL;
901 uschar *dnslist_text           = NULL;
902 uschar *dnslist_value          = NULL;
903 tree_node *domainlist_anchor   = NULL;
904 int     domainlist_count       = 0;
905 const uschar *driver_srcfile   = NULL;
906 int     driver_srcline         = 0;
907 uschar *dsn_from               = US DEFAULT_DSN_FROM;
908 unsigned int dtrigger_selector = 0;
909
910 int     errno_quota            = ERRNO_QUOTA;
911 uschar *errors_copy            = NULL;
912 int     error_handling         = ERRORS_SENDER;
913 uschar *errors_reply_to        = NULL;
914 int     errors_sender_rc       = EXIT_FAILURE;
915 #ifndef DISABLE_EVENT
916 uschar *event_action             = NULL;        /* expansion for delivery events */
917 uschar *event_data               = NULL;        /* auxiliary data variable for event */
918 int     event_defer_errno        = 0;
919 const uschar *event_name         = NULL;        /* event name variable */
920 #endif
921
922
923 gid_t   exim_gid               = EXIM_GID;
924 uschar *exim_path              = US BIN_DIRECTORY "/exim"
925                         "\0<---------------Space to patch exim_path->";
926 uid_t   exim_uid               = EXIM_UID;
927 int     expand_level           = 0;             /* Nesting depth, indent for debug */
928 int     expand_forbid          = 0;
929 int     expand_nlength[EXPAND_MAXN+1];
930 int     expand_nmax            = -1;
931 const uschar *expand_nstring[EXPAND_MAXN+1];
932 uschar *expand_string_message;
933 uschar *extra_local_interfaces = NULL;
934
935 int     fake_response          = OK;
936 uschar *fake_response_text     = US"Your message has been rejected but is "
937                                    "being kept for evaluation.\nIf it was a "
938                                    "legitimate message, it may still be "
939                                    "delivered to the target recipient(s).";
940 int     filter_n[FILTER_VARIABLE_COUNT];
941 int     filter_sn[FILTER_VARIABLE_COUNT];
942 int     filter_test            = FTEST_NONE;
943 uschar *filter_test_sfile      = NULL;
944 uschar *filter_test_ufile      = NULL;
945 uschar *filter_thisaddress     = NULL;
946 int     finduser_retries       = 0;
947 uid_t   fixed_never_users[]    = { FIXED_NEVER_USERS };
948 uschar *freeze_tell            = NULL;
949 uschar *freeze_tell_config     = NULL;
950 uschar *fudged_queue_times     = US"";
951
952 uschar *gecos_name             = NULL;
953 uschar *gecos_pattern          = NULL;
954 rewrite_rule  *global_rewrite_rules = NULL;
955
956 volatile sig_atomic_t had_command_timeout = 0;
957 volatile sig_atomic_t had_command_sigterm = 0;
958 volatile sig_atomic_t had_data_timeout    = 0;
959 volatile sig_atomic_t had_data_sigint     = 0;
960 const uschar *headers_charset  = US HEADERS_CHARSET;
961 int     header_insert_maxlen   = 64 * 1024;
962 header_line  *header_last      = NULL;
963 header_line  *header_list      = NULL;
964 int     header_maxsize         = HEADER_MAXSIZE;
965 int     header_line_maxsize    = 0;
966
967 header_name header_names[] = {
968   /* name               len     allow_resent    htype */
969   { US"bcc",            3,      TRUE,           htype_bcc },
970   { US"cc",             2,      TRUE,           htype_cc },
971   { US"date",           4,      TRUE,           htype_date },
972   { US"delivery-date", 13,      FALSE,          htype_delivery_date },
973   { US"envelope-to",   11,      FALSE,          htype_envelope_to },
974   { US"from",           4,      TRUE,           htype_from },
975   { US"message-id",    10,      TRUE,           htype_id },
976   { US"received",       8,      FALSE,          htype_received },
977   { US"reply-to",       8,      FALSE,          htype_reply_to },
978   { US"return-path",   11,      FALSE,          htype_return_path },
979   { US"sender",         6,      TRUE,           htype_sender },
980   { US"subject",        7,      FALSE,          htype_subject },
981   { US"to",             2,      TRUE,           htype_to }
982 };
983
984 int header_names_size          = nelem(header_names);
985
986 uschar *helo_accept_junk_hosts = NULL;
987 uschar *helo_allow_chars       = US"";
988 uschar *helo_lookup_domains    = US"@ : @[]";
989 uschar *helo_try_verify_hosts  = NULL;
990 uschar *helo_verify_hosts      = NULL;
991 const uschar *hex_digits       = CUS"0123456789abcdef";
992 uschar *hold_domains           = NULL;
993 uschar *host_data              = NULL;
994 uschar *host_lookup            = NULL;
995 uschar *host_lookup_order      = US"bydns:byaddr";
996 uschar *host_lookup_msg        = US"";
997 int     host_number            = 0;
998 uschar *host_number_string     = NULL;
999 uschar *host_reject_connection = NULL;
1000 tree_node *hostlist_anchor     = NULL;
1001 int     hostlist_count         = 0;
1002 uschar *hosts_treat_as_local   = NULL;
1003 uschar *hosts_require_helo     = US"*";
1004 uschar *hosts_connection_nolog = NULL;
1005
1006 int     ignore_bounce_errors_after = 10*7*24*60*60;  /* 10 weeks */
1007 uschar *ignore_fromline_hosts  = NULL;
1008 int     inetd_wait_timeout     = -1;
1009 uschar *initial_cwd            = NULL;
1010 uschar *interface_address      = NULL;
1011 int     interface_port         = -1;
1012 uschar *iterate_item           = NULL;
1013
1014 int     journal_fd             = -1;
1015
1016 uschar *keep_environment       = NULL;
1017
1018 int     keep_malformed         = 4*24*60*60;    /* 4 days */
1019
1020 uschar *eldap_dn               = NULL;
1021 const uschar *letter_digit_hyphen_dot =
1022     US"abcdefghijklmnopqrstuvwxyz"
1023       ".-0123456789"
1024       "ABCDEFGHIJKLMNOPQRSTUVWXYZ";
1025 #ifdef EXPERIMENTAL_ESMTP_LIMITS
1026 uschar *limits_advertise_hosts = US"*";
1027 #endif
1028 int     load_average           = -2;
1029 uschar *local_from_prefix      = NULL;
1030 uschar *local_from_suffix      = NULL;
1031
1032 #if HAVE_IPV6
1033 uschar *local_interfaces       = US"<; ::0 ; 0.0.0.0";
1034 #else
1035 uschar *local_interfaces       = US"0.0.0.0";
1036 #endif
1037
1038 #ifdef HAVE_LOCAL_SCAN
1039 uschar *local_scan_data        = NULL;
1040 int     local_scan_timeout     = 5*60;
1041 #endif
1042 gid_t   local_user_gid         = (gid_t)(-1);
1043 uid_t   local_user_uid         = (uid_t)(-1);
1044
1045 tree_node *localpartlist_anchor= NULL;
1046 int     localpartlist_count    = 0;
1047 uschar *log_buffer             = NULL;
1048
1049 int     log_default[]          = { /* for initializing log_selector */
1050   Li_acl_warn_skipped,
1051   Li_connection_reject,
1052   Li_delay_delivery,
1053   Li_dkim,
1054   Li_dnslist_defer,
1055   Li_etrn,
1056   Li_host_lookup_failed,
1057   Li_lost_incoming_connection,
1058   Li_outgoing_interface, /* see d_log_interface in deliver.c */
1059   Li_msg_id,
1060   Li_queue_run,
1061   Li_queue_time_exclusive,
1062   Li_rejected_header,
1063   Li_retry_defer,
1064   Li_sender_verify_fail,
1065   Li_size_reject,
1066   Li_skip_delivery,
1067   Li_smtp_confirmation,
1068   Li_tls_certificate_verified,
1069   Li_tls_cipher,
1070   -1
1071 };
1072
1073 uschar *log_file_path          = US LOG_FILE_PATH
1074                            "\0<--------------Space to patch log_file_path->";
1075
1076 int     log_notall[]           = {
1077   -1
1078 };
1079 bit_table log_options[]        = { /* must be in alphabetical order,
1080                                 with definitions from enum logbit. */
1081   BIT_TABLE(L, 8bitmime),
1082   BIT_TABLE(L, acl_warn_skipped),
1083   BIT_TABLE(L, address_rewrite),
1084   BIT_TABLE(L, all),
1085   BIT_TABLE(L, all_parents),
1086   BIT_TABLE(L, arguments),
1087   BIT_TABLE(L, connection_reject),
1088   BIT_TABLE(L, delay_delivery),
1089   BIT_TABLE(L, deliver_time),
1090   BIT_TABLE(L, delivery_size),
1091 #ifndef DISABLE_DKIM
1092   BIT_TABLE(L, dkim),
1093   BIT_TABLE(L, dkim_verbose),
1094 #endif
1095   BIT_TABLE(L, dnslist_defer),
1096   BIT_TABLE(L, dnssec),
1097   BIT_TABLE(L, etrn),
1098   BIT_TABLE(L, host_lookup_failed),
1099   BIT_TABLE(L, ident_timeout),
1100   BIT_TABLE(L, incoming_interface),
1101   BIT_TABLE(L, incoming_port),
1102   BIT_TABLE(L, lost_incoming_connection),
1103   BIT_TABLE(L, millisec),
1104   BIT_TABLE(L, msg_id),
1105   BIT_TABLE(L, msg_id_created),
1106   BIT_TABLE(L, outgoing_interface),
1107   BIT_TABLE(L, outgoing_port),
1108   BIT_TABLE(L, pid),
1109   BIT_TABLE(L, pipelining),
1110   BIT_TABLE(L, protocol_detail),
1111 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1112   BIT_TABLE(L, proxy),
1113 #endif
1114   BIT_TABLE(L, queue_run),
1115   BIT_TABLE(L, queue_time),
1116   BIT_TABLE(L, queue_time_exclusive),
1117   BIT_TABLE(L, queue_time_overall),
1118   BIT_TABLE(L, receive_time),
1119   BIT_TABLE(L, received_recipients),
1120   BIT_TABLE(L, received_sender),
1121   BIT_TABLE(L, rejected_header),
1122   { US"rejected_headers", Li_rejected_header },
1123   BIT_TABLE(L, retry_defer),
1124   BIT_TABLE(L, return_path_on_delivery),
1125   BIT_TABLE(L, sender_on_delivery),
1126   BIT_TABLE(L, sender_verify_fail),
1127   BIT_TABLE(L, size_reject),
1128   BIT_TABLE(L, skip_delivery),
1129   BIT_TABLE(L, smtp_confirmation),
1130   BIT_TABLE(L, smtp_connection),
1131   BIT_TABLE(L, smtp_incomplete_transaction),
1132   BIT_TABLE(L, smtp_mailauth),
1133   BIT_TABLE(L, smtp_no_mail),
1134   BIT_TABLE(L, smtp_protocol_error),
1135   BIT_TABLE(L, smtp_syntax_error),
1136   BIT_TABLE(L, subject),
1137   BIT_TABLE(L, tls_certificate_verified),
1138   BIT_TABLE(L, tls_cipher),
1139   BIT_TABLE(L, tls_peerdn),
1140   BIT_TABLE(L, tls_resumption),
1141   BIT_TABLE(L, tls_sni),
1142   BIT_TABLE(L, unknown_in_list),
1143 };
1144 int     log_options_count      = nelem(log_options);
1145
1146 int     log_reject_target      = 0;
1147 unsigned int log_selector[log_selector_size]; /* initialized in main() */
1148 uschar *log_selector_string    = NULL;
1149 FILE   *log_stderr             = NULL;
1150 uschar *login_sender_address   = NULL;
1151 uschar *lookup_dnssec_authenticated = NULL;
1152 int     lookup_open_max        = 25;
1153 uschar *lookup_value           = NULL;
1154
1155 macro_item *macros_user        = NULL;
1156 uschar *mailstore_basename     = NULL;
1157 #ifdef WITH_CONTENT_SCAN
1158 uschar *malware_name           = NULL;  /* Virus Name */
1159 #endif
1160 int     max_received_linelength= 0;
1161 int     max_username_length    = 0;
1162 int     message_age            = 0;
1163 uschar *message_body           = NULL;
1164 uschar *message_body_end       = NULL;
1165 int     message_body_size      = 0;
1166 int     message_body_visible   = 500;
1167 int     message_ended          = END_NOTSTARTED;
1168 uschar *message_headers        = NULL;
1169 uschar *message_id;
1170 uschar *message_id_domain      = NULL;
1171 uschar *message_id_text        = NULL;
1172 uschar  message_id_option[MESSAGE_ID_LENGTH + 3];
1173 uschar *message_id_external;
1174 int     message_linecount      = 0;
1175 int     message_size           = 0;
1176 uschar *message_size_limit     = US"50M";
1177 #ifdef SUPPORT_I18N
1178 int     message_utf8_downconvert = 0;   /* -1 ifneeded; 0 never; 1 always */
1179 #endif
1180 uschar  message_subdir[2]      = { 0, 0 };
1181 uschar *message_reference      = NULL;
1182
1183 /* MIME ACL expandables */
1184 #ifdef WITH_CONTENT_SCAN
1185 int     mime_anomaly_level     = 0;
1186 const uschar *mime_anomaly_text      = NULL;
1187 uschar *mime_boundary          = NULL;
1188 uschar *mime_charset           = NULL;
1189 uschar *mime_content_description = NULL;
1190 uschar *mime_content_disposition = NULL;
1191 uschar *mime_content_id        = NULL;
1192 unsigned int mime_content_size = 0;
1193 uschar *mime_content_transfer_encoding = NULL;
1194 uschar *mime_content_type      = NULL;
1195 uschar *mime_decoded_filename  = NULL;
1196 uschar *mime_filename          = NULL;
1197 int     mime_is_multipart      = 0;
1198 int     mime_is_coverletter    = 0;
1199 int     mime_is_rfc822         = 0;
1200 int     mime_part_count        = -1;
1201 #endif
1202
1203 uid_t  *never_users            = NULL;
1204 uschar *notifier_socket        = US"$spool_directory/" NOTIFIER_SOCKET_NAME ;
1205
1206 const int on                   = 1;     /* for setsockopt */
1207 const int off                  = 0;
1208
1209 uid_t   original_euid;
1210 gid_t   originator_gid;
1211 uschar *originator_login       = NULL;
1212 uschar *originator_name        = NULL;
1213 uid_t   originator_uid;
1214 uschar *override_local_interfaces = NULL;
1215 uschar *override_pid_file_path = NULL;
1216
1217 BOOL    panic_coredump         = FALSE;
1218 pcre2_general_context * pcre_gen_ctx = NULL;
1219 pcre2_compile_context * pcre_gen_cmp_ctx = NULL;
1220 pcre2_match_context * pcre_gen_mtc_ctx = NULL;
1221 pcre2_general_context * pcre_mlc_ctx = NULL;
1222 pcre2_compile_context * pcre_mlc_cmp_ctx = NULL;
1223
1224 uschar *percent_hack_domains   = NULL;
1225 uschar *pid_file_path          = US PID_FILE_PATH
1226                            "\0<--------------Space to patch pid_file_path->";
1227 #ifndef DISABLE_PIPE_CONNECT
1228 uschar *pipe_connect_advertise_hosts = US"*";
1229 #endif
1230 uschar *pipelining_advertise_hosts = US"*";
1231 uschar *primary_hostname       = NULL;
1232 uschar *process_info;
1233 int     process_info_len       = 0;
1234 uschar *process_log_path       = NULL;
1235 const uschar *process_purpose  = US"fresh-exec";
1236
1237 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1238 uschar *hosts_proxy            = NULL;
1239 uschar *proxy_external_address = NULL;
1240 int     proxy_external_port    = 0;
1241 uschar *proxy_local_address    = NULL;
1242 int     proxy_local_port       = 0;
1243 int     proxy_protocol_timeout = 3;
1244 #endif
1245
1246 uschar *prvscheck_address      = NULL;
1247 uschar *prvscheck_keynum       = NULL;
1248 uschar *prvscheck_result       = NULL;
1249
1250
1251 const uschar *qualify_domain_recipient = NULL;
1252 uschar *qualify_domain_sender  = NULL;
1253 uschar *queue_domains          = NULL;
1254 int     queue_interval         = -1;
1255 uschar *queue_name             = US"";
1256 uschar *queue_name_dest        = NULL;
1257 uschar *queue_only_file        = NULL;
1258 int     queue_only_load        = -1;
1259 uschar *queue_run_max          = US"5";
1260 pid_t   queue_run_pid          = (pid_t)0;
1261 int     queue_run_pipe         = -1;
1262 unsigned queue_size            = 0;
1263 time_t  queue_size_next        = 0;
1264 uschar *queue_smtp_domains     = NULL;
1265
1266 uint32_t random_seed           = 0;
1267 tree_node *ratelimiters_cmd    = NULL;
1268 tree_node *ratelimiters_conn   = NULL;
1269 tree_node *ratelimiters_mail   = NULL;
1270 uschar *raw_active_hostname    = NULL;
1271 uschar *raw_sender             = NULL;
1272 uschar **raw_recipients        = NULL;
1273 int     raw_recipients_count   = 0;
1274
1275 int     rcpt_count             = 0;
1276 int     rcpt_fail_count        = 0;
1277 int     rcpt_defer_count       = 0;
1278 gid_t   real_gid;
1279 uid_t   real_uid;
1280 int     receive_linecount      = 0;
1281 int     receive_messagecount   = 0;
1282 int     receive_timeout        = 0;
1283 int     received_count         = 0;
1284 uschar *received_for           = NULL;
1285
1286 /*  This is the default text for Received headers generated by Exim. The
1287 date  will be automatically added on the end. */
1288
1289 uschar *received_header_text   = US
1290      "Received: "
1291      "${if def:sender_rcvhost {from $sender_rcvhost\n\t}"
1292        "{${if def:sender_ident {from ${quote_local_part:$sender_ident} }}"
1293          "${if def:sender_helo_name {(helo=$sender_helo_name)\n\t}}}}"
1294      "by $primary_hostname "
1295      "${if def:received_protocol {with $received_protocol }}"
1296 #ifndef DISABLE_TLS
1297      "${if def:tls_in_ver        { ($tls_in_ver)}}"
1298      "${if def:tls_in_cipher_std { tls $tls_in_cipher_std\n\t}}"
1299 #endif
1300      "(Exim $version_number)\n\t"
1301      "${if def:sender_address {(envelope-from <$sender_address>)\n\t}}"
1302      "id $message_exim_id"
1303      "${if def:received_for {\n\tfor $received_for}}"
1304      "\0<---------------Space to patch received_header_text->";
1305
1306 int     received_headers_max   = 30;
1307 uschar *received_protocol      = NULL;
1308 struct timeval received_time   = { 0, 0 };
1309 struct timeval received_time_complete = { 0, 0 };
1310 uschar *recipient_data         = NULL;
1311 uschar *recipient_unqualified_hosts = NULL;
1312 uschar *recipient_verify_failure = NULL;
1313 int     recipients_count       = 0;
1314 recipient_item  *recipients_list = NULL;
1315 int     recipients_list_max    = 0;
1316 int     recipients_max         = 50000;
1317 const pcre2_code *regex_AUTH         = NULL;
1318 const pcre2_code *regex_check_dns_names = NULL;
1319 const pcre2_code *regex_From         = NULL;
1320 const pcre2_code *regex_IGNOREQUOTA  = NULL;
1321 const pcre2_code *regex_PIPELINING   = NULL;
1322 const pcre2_code *regex_SIZE         = NULL;
1323 #ifndef DISABLE_PIPE_CONNECT
1324 const pcre2_code *regex_EARLY_PIPE   = NULL;
1325 #endif
1326 int    regex_cachesize               = 0;
1327 const pcre2_code *regex_ismsgid      = NULL;
1328 const pcre2_code *regex_smtp_code    = NULL;
1329 const uschar *regex_vars[REGEX_VARS] = { 0 };;
1330 #ifdef WHITELIST_D_MACROS
1331 const pcre2_code *regex_whitelisted_macro = NULL;
1332 #endif
1333 #ifdef WITH_CONTENT_SCAN
1334 uschar *regex_match_string     = NULL;
1335 #endif
1336 int     remote_delivery_count  = 0;
1337 int     remote_max_parallel    = 4;
1338 uschar *remote_sort_domains    = NULL;
1339 int     retry_data_expire      = 7*24*60*60;
1340 int     retry_interval_max     = 24*60*60;
1341 int     retry_maximum_timeout  = 0;        /* set from retry config */
1342 retry_config  *retries         = NULL;
1343 uschar *return_path            = NULL;
1344 int     rewrite_existflags     = 0;
1345 uschar *rfc1413_hosts          = US"@[]";
1346 int     rfc1413_query_timeout  = 0;
1347 uid_t   root_gid               = ROOT_GID;
1348 uid_t   root_uid               = ROOT_UID;
1349
1350 router_instance  *routers  = NULL;
1351 router_instance  router_defaults = {
1352     .next =                     NULL,
1353     .name =                     NULL,
1354     .info =                     NULL,
1355     .options_block =            NULL,
1356     .driver_name =              NULL,
1357
1358     .address_data =             NULL,
1359 #ifdef EXPERIMENTAL_BRIGHTMAIL
1360     .bmi_rule =                 NULL,
1361 #endif
1362     .cannot_route_message =     NULL,
1363     .condition =                NULL,
1364     .current_directory =        NULL,
1365     .debug_string =             NULL,
1366     .domains =                  NULL,
1367     .errors_to =                NULL,
1368     .expand_gid =               NULL,
1369     .expand_uid =               NULL,
1370     .expand_more =              NULL,
1371     .expand_unseen =            NULL,
1372     .extra_headers =            NULL,
1373     .fallback_hosts =           NULL,
1374     .home_directory =           NULL,
1375     .ignore_target_hosts =      NULL,
1376     .local_parts =              NULL,
1377     .pass_router_name =         NULL,
1378     .prefix =                   NULL,
1379     .redirect_router_name =     NULL,
1380     .remove_headers =           NULL,
1381     .require_files =            NULL,
1382     .router_home_directory =    NULL,
1383     .self =                     US"freeze",
1384     .senders =                  NULL,
1385     .suffix =                   NULL,
1386     .translate_ip_address =     NULL,
1387     .transport_name =           NULL,
1388
1389     .address_test =             TRUE,
1390 #ifdef EXPERIMENTAL_BRIGHTMAIL
1391     .bmi_deliver_alternate =    FALSE,
1392     .bmi_deliver_default =      FALSE,
1393     .bmi_dont_deliver =         FALSE,
1394 #endif
1395     .expn =                     TRUE,
1396     .caseful_local_part =       FALSE,
1397     .check_local_user =         FALSE,
1398     .disable_logging =          FALSE,
1399     .fail_verify_recipient =    FALSE,
1400     .fail_verify_sender =       FALSE,
1401     .gid_set =                  FALSE,
1402     .initgroups =               FALSE,
1403     .log_as_local =             TRUE_UNSET,
1404     .more =                     TRUE,
1405     .pass_on_timeout =          FALSE,
1406     .prefix_optional =          FALSE,
1407     .repeat_use =               TRUE,
1408     .retry_use_local_part =     TRUE_UNSET,
1409     .same_domain_copy_routing = FALSE,
1410     .self_rewrite =             FALSE,
1411     .set =                      NULL,
1412     .suffix_optional =          FALSE,
1413     .verify_only =              FALSE,
1414     .verify_recipient =         TRUE,
1415     .verify_sender =            TRUE,
1416     .uid_set =                  FALSE,
1417     .unseen =                   FALSE,
1418     .dsn_lasthop =              FALSE,
1419
1420     .self_code =                self_freeze,
1421     .uid =                      (uid_t)(-1),
1422     .gid =                      (gid_t)(-1),
1423
1424     .fallback_hostlist =        NULL,
1425     .transport =                NULL,
1426     .pass_router =              NULL,
1427     .redirect_router =          NULL,
1428
1429     .dnssec =                   { .request= US"*", .require=NULL },
1430 };
1431
1432 uschar *router_name            = NULL;
1433 tree_node *router_var          = NULL;
1434
1435 ip_address_item *running_interfaces = NULL;
1436
1437 /* This is a weird one. The following string gets patched in the binary by the
1438 script that sets up a copy of Exim for running in the test harness. It seems
1439 that compilers are now clever, and share constant strings if they can.
1440 Elsewhere in Exim the string "<" is used. The compiler optimization seems to
1441 make use of the end of this string in order to save space. So the patching then
1442 wrecks this. We defeat this optimization by adding some additional characters
1443 onto the end of the string. */
1444
1445 uschar *running_status         = US">>>running<<<" "\0EXTRA";
1446
1447 int     runrc                  = 0;
1448
1449 uschar *search_error_message   = NULL;
1450 uschar *self_hostname          = NULL;
1451 uschar *sender_address         = NULL;
1452 unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32];
1453 uschar *sender_address_data    = NULL;
1454 uschar *sender_address_unrewritten = NULL;
1455 uschar *sender_data            = NULL;
1456 unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32];
1457 uschar *sender_fullhost        = NULL;
1458 uschar *sender_helo_name       = NULL;
1459 uschar **sender_host_aliases   = &no_aliases;
1460 uschar *sender_host_address    = NULL;
1461 uschar *sender_host_authenticated = NULL;
1462 uschar *sender_host_auth_pubname  = NULL;
1463 unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32];
1464 uschar *sender_host_name       = NULL;
1465 int     sender_host_port       = 0;
1466 uschar *sender_ident           = NULL;
1467 uschar *sender_rate            = NULL;
1468 uschar *sender_rate_limit      = NULL;
1469 uschar *sender_rate_period     = NULL;
1470 uschar *sender_rcvhost         = NULL;
1471 uschar *sender_unqualified_hosts = NULL;
1472 uschar *sender_verify_failure = NULL;
1473 address_item *sender_verified_list  = NULL;
1474 address_item *sender_verified_failed = NULL;
1475 int     sender_verified_rc     = -1;
1476 uschar *sending_ip_address     = NULL;
1477 int     sending_port           = -1;
1478 SIGNAL_BOOL sigalrm_seen       = FALSE;
1479 const uschar *sigalarm_setter  = NULL;
1480 uschar **sighup_argv           = NULL;
1481 int     slow_lookup_log        = 0;     /* millisecs, zero disables */
1482 int     smtp_accept_count      = 0;
1483 int     smtp_accept_max        = 20;
1484 int     smtp_accept_max_nonmail= 10;
1485 uschar *smtp_accept_max_nonmail_hosts = US"*";
1486 uschar *smtp_accept_max_per_connection = US"1000";
1487 uschar *smtp_accept_max_per_host = NULL;
1488 int     smtp_accept_queue      = 0;
1489 int     smtp_accept_queue_per_connection = 10;
1490 int     smtp_accept_reserve    = 0;
1491 uschar *smtp_active_hostname   = NULL;
1492 int     smtp_backlog_monitor   = 0;
1493 uschar *smtp_banner            = US"$smtp_active_hostname ESMTP "
1494                              "Exim $version_number $tod_full"
1495                              "\0<---------------Space to patch smtp_banner->";
1496 int     smtp_ch_index          = 0;
1497 uschar *smtp_cmd_argument      = NULL;
1498 uschar *smtp_cmd_buffer        = NULL;
1499 struct timeval smtp_connection_start  = {0,0};
1500 uschar  smtp_connection_had[SMTP_HBUFF_SIZE];
1501 int     smtp_connect_backlog   = 20;
1502 double  smtp_delay_mail        = 0.0;
1503 double  smtp_delay_rcpt        = 0.0;
1504 FILE   *smtp_in                = NULL;
1505 int     smtp_listen_backlog    = 0;
1506 int     smtp_load_reserve      = -1;
1507 int     smtp_mailcmd_count     = 0;
1508 int     smtp_mailcmd_max       = -1;
1509 FILE   *smtp_out               = NULL;
1510 uschar *smtp_etrn_command      = NULL;
1511 int     smtp_max_synprot_errors= 3;
1512 int     smtp_max_unknown_commands = 3;
1513 uschar *smtp_notquit_reason    = NULL;
1514 unsigned smtp_peer_options     = 0;
1515 unsigned smtp_peer_options_wrap= 0;
1516 uschar *smtp_ratelimit_hosts   = NULL;
1517 uschar *smtp_ratelimit_mail    = NULL;
1518 uschar *smtp_ratelimit_rcpt    = NULL;
1519 uschar *smtp_read_error        = US"";
1520 int     smtp_receive_timeout   = 5*60;
1521 uschar *smtp_receive_timeout_s = NULL;
1522 uschar *smtp_reserve_hosts     = NULL;
1523 int     smtp_rlm_base          = 0;
1524 double  smtp_rlm_factor        = 0.0;
1525 int     smtp_rlm_limit         = 0;
1526 int     smtp_rlm_threshold     = INT_MAX;
1527 int     smtp_rlr_base          = 0;
1528 double  smtp_rlr_factor        = 0.0;
1529 int     smtp_rlr_limit         = 0;
1530 int     smtp_rlr_threshold     = INT_MAX;
1531 #ifdef SUPPORT_I18N
1532 uschar *smtputf8_advertise_hosts = US"*";       /* overridden under test-harness */
1533 #endif
1534
1535 #ifdef WITH_CONTENT_SCAN
1536 uschar *spamd_address          = US"127.0.0.1 783";
1537 uschar *spam_bar               = NULL;
1538 uschar *spam_report            = NULL;
1539 uschar *spam_action            = NULL;
1540 uschar *spam_score             = NULL;
1541 uschar *spam_score_int         = NULL;
1542 #endif
1543 #ifdef SUPPORT_SPF
1544 uschar *spf_guess              = US"v=spf1 a/24 mx/24 ptr ?all";
1545 uschar *spf_header_comment     = NULL;
1546 uschar *spf_received           = NULL;
1547 uschar *spf_result             = NULL;
1548 uschar *spf_smtp_comment       = NULL;
1549 uschar *spf_smtp_comment_template
1550                     /* Used to be: "Please%_see%_http://www.open-spf.org/Why?id=%{S}&ip=%{C}&receiver=%{R}" */
1551                                = US"Please%_see%_http://www.open-spf.org/Why";
1552
1553 #endif
1554
1555 FILE   *spool_data_file        = NULL;
1556 uschar *spool_directory        = US SPOOL_DIRECTORY
1557                            "\0<--------------Space to patch spool_directory->";
1558 #ifdef SUPPORT_SRS
1559 uschar *srs_recipient          = NULL;
1560 #endif
1561 int     string_datestamp_offset= -1;
1562 int     string_datestamp_length= 0;
1563 int     string_datestamp_type  = -1;
1564 const uschar *submission_domain = NULL;
1565 const uschar *submission_name  = NULL;
1566 int     syslog_facility        = LOG_MAIL;
1567 uschar *syslog_processname     = US"exim";
1568 uschar *system_filter          = NULL;
1569
1570 uschar *system_filter_directory_transport = NULL;
1571 uschar *system_filter_file_transport = NULL;
1572 uschar *system_filter_pipe_transport = NULL;
1573 uschar *system_filter_reply_transport = NULL;
1574
1575 gid_t   system_filter_gid      = 0;
1576 uid_t   system_filter_uid      = (uid_t)-1;
1577
1578 blob    tcp_fastopen_nodata    = { .data = NULL, .len = 0 };
1579 tfo_state_t tcp_out_fastopen   = TFO_NOT_USED;
1580 #ifdef USE_TCP_WRAPPERS
1581 uschar *tcp_wrappers_daemon_name = US TCP_WRAPPERS_DAEMON_NAME;
1582 #endif
1583 int     test_harness_load_avg  = 0;
1584 int     thismessage_size_limit = 0;
1585 int     timeout_frozen_after   = 0;
1586 #ifdef MEASURE_TIMING
1587 struct timeval timestamp_startup;
1588 #endif
1589
1590 transport_instance  *transports = NULL;
1591
1592 transport_instance  transport_defaults = {
1593     /* All non-mentioned elements zero/NULL/FALSE */
1594     .batch_max =                1,
1595     .multi_domain =             TRUE,
1596     .max_addresses =            US"100",
1597     .connection_max_messages =  500,
1598     .uid =                      (uid_t)(-1),
1599     .gid =                      (gid_t)(-1),
1600     .filter_timeout =           300,
1601     .retry_use_local_part =     TRUE_UNSET,     /* retry_use_local_part: BOOL, but set neither
1602                                                  1 nor 0 so can detect unset */
1603 };
1604
1605 int     transport_count;
1606 uschar *transport_name          = NULL;
1607 int     transport_newlines;
1608 const uschar **transport_filter_argv  = NULL;
1609 int     transport_filter_timeout;
1610 int     transport_write_timeout= 0;
1611
1612 tree_node  *tree_dns_fails     = NULL;
1613 tree_node  *tree_duplicates    = NULL;
1614 tree_node  *tree_nonrecipients = NULL;
1615 tree_node  *tree_unusable      = NULL;
1616
1617 gid_t  *trusted_groups         = NULL;
1618 uid_t  *trusted_users          = NULL;
1619 uschar *timezone_string        = US TIMEZONE_DEFAULT;
1620
1621 uschar *unknown_login          = NULL;
1622 uschar *unknown_username       = NULL;
1623 uschar *untrusted_set_sender   = NULL;
1624
1625 /*  A regex for matching a "From_" line in an incoming message, in the form
1626
1627     From ph10 Fri Jan  5 12:35 GMT 1996
1628
1629 which  the "mail" commands send to the MTA (undocumented, of course), or in
1630 the  form
1631
1632     From ph10 Fri, 7 Jan 97 14:00:00 GMT
1633
1634 which  is apparently used by some UUCPs, despite it not being in RFC 976.
1635 Because  of variations in time formats, just match up to the minutes. That
1636 should  be sufficient. Examples have been seen of time fields like 12:1:03,
1637 so  just require one digit for hours and minutes. The weekday is also absent
1638 in  some forms. */
1639
1640 uschar *uucp_from_pattern      = US
1641    "^From\\s+(\\S+)\\s+(?:[a-zA-Z]{3},?\\s+)?"    /* Common start */
1642    "(?:"                                          /* Non-extracting bracket */
1643    "[a-zA-Z]{3}\\s+\\d?\\d|"                      /* First form */
1644    "\\d?\\d\\s+[a-zA-Z]{3}\\s+\\d\\d(?:\\d\\d)?"  /* Second form */
1645    ")"                                            /* End alternation */
1646    "\\s+\\d\\d?:\\d\\d?";                         /* Start of time */
1647
1648 uschar *uucp_from_sender       = US"$1";
1649
1650 uschar *verify_mode            = NULL;
1651 uschar *version_copyright      =
1652  US"Copyright (c) University of Cambridge, 1995 - 2018\n"
1653    "(c) The Exim Maintainers and contributors in ACKNOWLEDGMENTS file, 2007 - 2022";
1654 uschar *version_date           = US"?";
1655 uschar *version_cnumber        = US"????";
1656 uschar *version_string         = US"?";
1657
1658 uschar *warn_message_file      = NULL;
1659 int     warning_count          = 0;
1660 uschar *warnmsg_delay          = NULL;
1661 uschar *warnmsg_recipients     = NULL;
1662
1663
1664 /*  End of globals.c */