7e50867b2ecf502859c0191f92df82ef6534e9d3
[exim.git] / src / src / globals.c
1 /*************************************************
2 *     Exim - an Internet mail transport agent    *
3 *************************************************/
4
5 /* Copyright (c) University of Cambridge 1995 - 2018 */
6 /* Copyright (c) The Exim Maintainers 2020 - 2021 */
7 /* See the file NOTICE for conditions of use and distribution. */
8
9 /* All the global variables are defined together in this one module, so
10 that they are easy to find. */
11
12 #include "exim.h"
13
14
15 /* Generic options for auths, all of which live inside auth_instance
16 data blocks and hence have the opt_public flag set. */
17
18 optionlist optionlist_auths[] = {
19   { "client_condition", opt_stringptr | opt_public,
20                  OPT_OFF(auth_instance, client_condition) },
21   { "client_set_id", opt_stringptr | opt_public,
22                  OPT_OFF(auth_instance, set_client_id) },
23   { "driver",        opt_stringptr | opt_public,
24                  OPT_OFF(auth_instance, driver_name) },
25   { "public_name",   opt_stringptr | opt_public,
26                  OPT_OFF(auth_instance, public_name) },
27   { "server_advertise_condition", opt_stringptr | opt_public,
28                  OPT_OFF(auth_instance, advertise_condition)},
29   { "server_condition", opt_stringptr | opt_public,
30                  OPT_OFF(auth_instance, server_condition) },
31   { "server_debug_print", opt_stringptr | opt_public,
32                  OPT_OFF(auth_instance, server_debug_string) },
33   { "server_mail_auth_condition", opt_stringptr | opt_public,
34                  OPT_OFF(auth_instance, mail_auth_condition) },
35   { "server_set_id", opt_stringptr | opt_public,
36                  OPT_OFF(auth_instance, set_id) }
37 };
38
39 int     optionlist_auths_size = nelem(optionlist_auths);
40
41 /* An empty host aliases list. */
42
43 uschar *no_aliases             = NULL;
44
45
46 /* For comments on these variables, see globals.h. I'm too idle to
47 duplicate them here... */
48
49 #ifdef EXIM_PERL
50 uschar *opt_perl_startup       = NULL;
51 BOOL    opt_perl_at_start      = FALSE;
52 BOOL    opt_perl_started       = FALSE;
53 BOOL    opt_perl_taintmode     = FALSE;
54 #endif
55
56 #ifdef EXPAND_DLFUNC
57 tree_node *dlobj_anchor        = NULL;
58 #endif
59
60 #ifdef LOOKUP_IBASE
61 uschar *ibase_servers          = NULL;
62 #endif
63
64 #ifdef LOOKUP_LDAP
65 uschar *eldap_ca_cert_dir      = NULL;
66 uschar *eldap_ca_cert_file     = NULL;
67 uschar *eldap_cert_file        = NULL;
68 uschar *eldap_cert_key         = NULL;
69 uschar *eldap_cipher_suite     = NULL;
70 uschar *eldap_default_servers  = NULL;
71 uschar *eldap_require_cert     = NULL;
72 int     eldap_version          = -1;
73 BOOL    eldap_start_tls        = FALSE;
74 #endif
75
76 #ifdef LOOKUP_MYSQL
77 uschar *mysql_servers          = NULL;
78 #endif
79
80 #ifdef LOOKUP_ORACLE
81 uschar *oracle_servers         = NULL;
82 #endif
83
84 #ifdef LOOKUP_PGSQL
85 uschar *pgsql_servers          = NULL;
86 #endif
87
88 #ifdef LOOKUP_REDIS
89 uschar *redis_servers          = NULL;
90 #endif
91
92 #ifdef LOOKUP_SQLITE
93 uschar *sqlite_dbfile          = NULL;
94 int     sqlite_lock_timeout    = 5;
95 #endif
96
97 #ifdef SUPPORT_MOVE_FROZEN_MESSAGES
98 BOOL    move_frozen_messages   = FALSE;
99 #endif
100
101 #ifdef ALLOW_INSECURE_TAINTED_DATA
102 BOOL    allow_insecure_tainted_data = FALSE;
103 #endif
104
105 /* These variables are outside the #ifdef because it keeps the code less
106 cluttered in several places (e.g. during logging) if we can always refer to
107 them. Also, the tls_ variables are now always visible.  Note that these are
108 only used for smtp connections, not for service-daemon access. */
109
110 tls_support tls_in = {
111  .active =              {.sock = -1}
112  /* all other elements zero */
113 };
114 tls_support tls_out = {
115  .active =              {.sock = -1},
116  /* all other elements zero */
117 };
118
119 uschar *dsn_envid              = NULL;
120 int     dsn_ret                = 0;
121 const pcre2_code  *regex_DSN         = NULL;
122 uschar *dsn_advertise_hosts    = NULL;
123
124 #ifndef DISABLE_TLS
125 BOOL    gnutls_compat_mode     = FALSE;
126 BOOL    gnutls_allow_auto_pkcs11 = FALSE;
127 uschar *hosts_require_alpn     = NULL;
128 uschar *openssl_options        = NULL;
129 const pcre2_code *regex_STARTTLS     = NULL;
130 uschar *tls_advertise_hosts    = US"*";
131 uschar *tls_alpn               = US"smtp:esmtp";
132 uschar *tls_certificate        = NULL;
133 uschar *tls_crl                = NULL;
134 /* This default matches NSS DH_MAX_P_BITS value at current time (2012), because
135 that's the interop problem which has been observed: GnuTLS suggesting a higher
136 bit-count as "NORMAL" (2432) and Thunderbird dropping connection. */
137 int     tls_dh_max_bits        = 2236;
138 uschar *tls_dhparam            = NULL;
139 uschar *tls_eccurve            = US"auto";
140 # ifndef DISABLE_OCSP
141 uschar *tls_ocsp_file          = NULL;
142 # endif
143 uschar *tls_privatekey         = NULL;
144 BOOL    tls_remember_esmtp     = FALSE;
145 uschar *tls_require_ciphers    = NULL;
146 # ifndef DISABLE_TLS_RESUME
147 uschar *tls_resumption_hosts   = NULL;
148 # endif
149 uschar *tls_try_verify_hosts   = NULL;
150 uschar *tls_verify_certificates= US"system";
151 uschar *tls_verify_hosts       = NULL;
152 int     tls_watch_fd           = -1;
153 time_t  tls_watch_trigger_time = (time_t)0;
154 #else   /*DISABLE_TLS*/
155 uschar *tls_advertise_hosts    = NULL;
156 #endif
157
158 #ifndef DISABLE_PRDR
159 /* Per Recipient Data Response variables */
160 BOOL    prdr_enable            = FALSE;
161 BOOL    prdr_requested         = FALSE;
162 const pcre2_code *regex_PRDR         = NULL;
163 #endif
164
165 #ifdef SUPPORT_I18N
166 const pcre2_code *regex_UTF8         = NULL;
167 #endif
168
169 /* Input-reading functions for messages, so we can use special ones for
170 incoming TCP/IP. The defaults use stdin. We never need these for any
171 stand-alone tests. */
172
173 #if !defined(STAND_ALONE) && !defined(MACRO_PREDEF)
174 int     (*lwr_receive_getc)(unsigned)   = stdin_getc;
175 uschar * (*lwr_receive_getbuf)(unsigned *) = NULL;
176 int     (*lwr_receive_ungetc)(int)      = stdin_ungetc;
177 BOOL    (*lwr_receive_hasc)(void)       = stdin_hasc;
178
179 int     (*receive_getc)(unsigned)       = stdin_getc;
180 uschar * (*receive_getbuf)(unsigned *)  = NULL;
181 void    (*receive_get_cache)(unsigned)  = NULL;
182 BOOL    (*receive_hasc)(void)           = stdin_hasc;
183 int     (*receive_ungetc)(int)          = stdin_ungetc;
184 int     (*receive_feof)(void)           = stdin_feof;
185 int     (*receive_ferror)(void)         = stdin_ferror;
186 #endif
187
188
189 /* List of per-address expansion variables for clearing and saving/restoring
190 when verifying one address while routing/verifying another. We have to have
191 the size explicit, because it is referenced from more than one module. */
192
193 const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT] = {
194   CUSS &deliver_address_data,
195   CUSS &deliver_domain,
196   CUSS &deliver_domain_data,
197   CUSS &deliver_domain_orig,
198   CUSS &deliver_domain_parent,
199   CUSS &deliver_localpart,
200   CUSS &deliver_localpart_data,
201   CUSS &deliver_localpart_orig,
202   CUSS &deliver_localpart_parent,
203   CUSS &deliver_localpart_prefix,
204   CUSS &deliver_localpart_suffix,
205   CUSS (uschar **)(&deliver_recipients),
206   CUSS &deliver_host,
207   CUSS &deliver_home,
208   CUSS &address_file,
209   CUSS &address_pipe,
210   CUSS &self_hostname,
211   NULL };
212
213 int address_expansions_count = sizeof(address_expansions)/sizeof(uschar **);
214
215 /******************************************************************************/
216 /* General global variables.  Boolean flags are done as a group
217 so that only one bit each is needed, packed, for all those we never
218 need to take a pointer - and only a char for the rest.
219 This means a struct, unfortunately since it clutters the sourcecode. */
220
221 struct global_flags f =
222 {
223         .acl_temp_details       = FALSE,
224         .active_local_from_check = FALSE,
225         .active_local_sender_retain = FALSE,
226         .address_test_mode      = FALSE,
227         .admin_user             = FALSE,
228         .allow_auth_unadvertised= FALSE,
229         .allow_unqualified_recipient = TRUE,    /* For local messages */
230         .allow_unqualified_sender = TRUE,       /* Reset for SMTP */
231         .authentication_local   = FALSE,
232
233         .background_daemon      = TRUE,
234         .bdat_readers_wanted    = FALSE,
235
236         .chunking_offered       = FALSE,
237         .config_changed         = FALSE,
238         .continue_more          = FALSE,
239
240         .daemon_listen          = FALSE,
241         .debug_daemon           = FALSE,
242         .deliver_firsttime      = FALSE,
243         .deliver_force          = FALSE,
244         .deliver_freeze         = FALSE,
245         .deliver_force_thaw     = FALSE,
246         .deliver_manual_thaw    = FALSE,
247         .deliver_selectstring_regex = FALSE,
248         .deliver_selectstring_sender_regex = FALSE,
249         .disable_callout_flush  = FALSE,
250         .disable_delay_flush    = FALSE,
251         .disable_logging        = FALSE,
252 #ifndef DISABLE_DKIM
253         .dkim_disable_verify      = FALSE,
254         .dkim_init_done           = FALSE,
255 #endif
256 #ifdef SUPPORT_DMARC
257         .dmarc_has_been_checked  = FALSE,
258         .dmarc_disable_verify    = FALSE,
259         .dmarc_enable_forensic   = FALSE,
260 #endif
261         .dont_deliver           = FALSE,
262         .dot_ends               = TRUE,
263
264         .enable_dollar_recipients = FALSE,
265         .expand_string_forcedfail = FALSE,
266
267         .filter_running         = FALSE,
268
269         .header_rewritten       = FALSE,
270         .helo_verified          = FALSE,
271         .helo_verify_failed     = FALSE,
272         .host_checking_callout  = FALSE,
273         .host_find_failed_syntax= FALSE,
274
275         .inetd_wait_mode        = FALSE,
276         .is_inetd               = FALSE,
277
278         .local_error_message    = FALSE,
279         .log_testing_mode       = FALSE,
280
281 #ifdef WITH_CONTENT_SCAN
282         .no_mbox_unspool        = FALSE,
283 #endif
284         .no_multiline_responses = FALSE,
285
286         .parse_allow_group      = FALSE,
287         .parse_found_group      = FALSE,
288         .pipelining_enable      = TRUE,
289 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
290         .proxy_session_failed   = FALSE,
291 #endif
292
293         .queue_2stage           = FALSE,
294         .queue_only_policy      = FALSE,
295         .queue_run_first_delivery = FALSE,
296         .queue_run_force        = FALSE,
297         .queue_run_local        = FALSE,
298         .queue_running          = FALSE,
299         .queue_smtp             = FALSE,
300
301         .really_exim            = TRUE,
302         .receive_call_bombout   = FALSE,
303         .recipients_discarded   = FALSE,
304         .running_in_test_harness = FALSE,
305
306         .search_find_defer      = FALSE,
307         .sender_address_forced  = FALSE,
308         .sender_host_notsocket  = FALSE,
309         .sender_host_unknown    = FALSE,
310         .sender_local           = FALSE,
311         .sender_name_forced     = FALSE,
312         .sender_set_untrusted   = FALSE,
313         .smtp_authenticated     = FALSE,
314 #ifndef DISABLE_PIPE_CONNECT
315         .smtp_in_early_pipe_advertised = FALSE,
316         .smtp_in_early_pipe_no_auth = FALSE,
317         .smtp_in_early_pipe_used = FALSE,
318 #endif
319         .smtp_in_pipelining_advertised = FALSE,
320         .smtp_in_pipelining_used = FALSE,
321         .smtp_in_quit           = FALSE,
322         .spool_file_wireformat  = FALSE,
323         .submission_mode        = FALSE,
324         .suppress_local_fixups  = FALSE,
325         .suppress_local_fixups_default = FALSE,
326         .synchronous_delivery   = FALSE,
327         .system_filtering       = FALSE,
328
329         .taint_check_slow       = FALSE,
330         .testsuite_delays       = TRUE,
331         .tcp_fastopen_ok        = FALSE,
332         .tcp_in_fastopen        = FALSE,
333         .tcp_in_fastopen_data   = FALSE,
334         .tcp_in_fastopen_logged = FALSE,
335         .tcp_out_fastopen_logged= FALSE,
336         .timestamps_utc         = FALSE,
337         .transport_filter_timed_out = FALSE,
338         .trusted_caller         = FALSE,
339         .trusted_config         = TRUE,
340 };
341
342 /******************************************************************************/
343 /* These are the flags which are either variables or mainsection options,
344 so an address is needed for access, or are exported to local_scan. */
345
346 BOOL    accept_8bitmime        = TRUE; /* deliberately not RFC compliant */
347 BOOL    allow_domain_literals  = FALSE;
348 BOOL    allow_mx_to_ip         = FALSE;
349 BOOL    allow_utf8_domains     = FALSE;
350 BOOL    authentication_failed  = FALSE;
351
352 BOOL    bounce_return_body     = TRUE;
353 BOOL    bounce_return_message  = TRUE;
354 BOOL    check_rfc2047_length   = TRUE;
355 BOOL    commandline_checks_require_admin = FALSE;
356
357 #ifdef EXPERIMENTAL_DCC
358 BOOL    dcc_direct_add_header  = FALSE;
359 #endif
360 BOOL    debug_store            = FALSE;
361 BOOL    delivery_date_remove   = TRUE;
362 BOOL    deliver_drop_privilege = FALSE;
363 #ifdef ENABLE_DISABLE_FSYNC
364 BOOL    disable_fsync          = FALSE;
365 #endif
366 BOOL    disable_ipv6           = FALSE;
367 BOOL    dns_csa_use_reverse    = TRUE;
368 BOOL    drop_cr                = FALSE;         /* No longer used */
369
370 BOOL    envelope_to_remove     = TRUE;
371 BOOL    exim_gid_set           = TRUE;          /* This gid is always set */
372 BOOL    exim_uid_set           = TRUE;          /* This uid is always set */
373 BOOL    extract_addresses_remove_arguments = TRUE;
374
375 BOOL    host_checking          = FALSE;
376 BOOL    host_lookup_deferred   = FALSE;
377 BOOL    host_lookup_failed     = FALSE;
378 BOOL    ignore_fromline_local  = FALSE;
379
380 BOOL    local_from_check       = TRUE;
381 BOOL    local_sender_retain    = FALSE;
382 BOOL    log_timezone           = FALSE;
383 BOOL    message_body_newlines  = FALSE;
384 BOOL    message_logs           = TRUE;
385 #ifdef SUPPORT_I18N
386 BOOL    message_smtputf8       = FALSE;
387 #endif
388 BOOL    mua_wrapper            = FALSE;
389
390 BOOL    preserve_message_logs  = FALSE;
391 BOOL    print_topbitchars      = FALSE;
392 BOOL    prod_requires_admin    = TRUE;
393 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
394 BOOL    proxy_session          = FALSE;
395 #endif
396
397 #ifndef DISABLE_QUEUE_RAMP
398 BOOL    queue_fast_ramp         = FALSE;
399 #endif
400 BOOL    queue_list_requires_admin = TRUE;
401 BOOL    queue_only             = FALSE;
402 BOOL    queue_only_load_latch  = TRUE;
403 BOOL    queue_only_override    = TRUE;
404 BOOL    queue_run_in_order     = FALSE;
405 BOOL    recipients_max_reject  = FALSE;
406 BOOL    return_path_remove     = TRUE;
407
408 BOOL    smtp_batched_input     = FALSE;
409 BOOL    sender_helo_dnssec     = FALSE;
410 BOOL    sender_host_dnssec     = FALSE;
411 BOOL    smtp_accept_keepalive  = TRUE;
412 BOOL    smtp_check_spool_space = TRUE;
413 BOOL    smtp_enforce_sync      = TRUE;
414 BOOL    smtp_etrn_serialize    = TRUE;
415 BOOL    smtp_input             = FALSE;
416 BOOL    smtp_return_error_details = FALSE;
417 #ifdef SUPPORT_SPF
418 BOOL    spf_result_guessed     = FALSE;
419 #endif
420 BOOL    split_spool_directory  = FALSE;
421 BOOL    spool_wireformat       = FALSE;
422 BOOL    strict_acl_vars        = FALSE;
423 BOOL    strip_excess_angle_brackets = FALSE;
424 BOOL    strip_trailing_dot     = FALSE;
425 BOOL    syslog_duplication     = TRUE;
426 BOOL    syslog_pid             = TRUE;
427 BOOL    syslog_timestamp       = TRUE;
428 BOOL    system_filter_gid_set  = FALSE;
429 BOOL    system_filter_uid_set  = FALSE;
430
431 BOOL    tcp_nodelay            = TRUE;
432 BOOL    write_rejectlog        = TRUE;
433
434 /******************************************************************************/
435
436 header_line *acl_added_headers = NULL;
437 tree_node *acl_anchor          = NULL;
438 uschar *acl_arg[9]             = {NULL, NULL, NULL, NULL, NULL,
439                                   NULL, NULL, NULL, NULL};
440 int     acl_narg               = 0;
441
442 int     acl_level              = 0;
443
444 uschar *acl_not_smtp           = NULL;
445 #ifdef WITH_CONTENT_SCAN
446 uschar *acl_not_smtp_mime      = NULL;
447 #endif
448 uschar *acl_not_smtp_start     = NULL;
449 uschar *acl_removed_headers    = NULL;
450 uschar *acl_smtp_auth          = NULL;
451 uschar *acl_smtp_connect       = NULL;
452 uschar *acl_smtp_data          = NULL;
453 #ifndef DISABLE_PRDR
454 uschar *acl_smtp_data_prdr     = US"accept";
455 #endif
456 #ifndef DISABLE_DKIM
457 uschar *acl_smtp_dkim          = NULL;
458 #endif
459 uschar *acl_smtp_etrn          = NULL;
460 uschar *acl_smtp_expn          = NULL;
461 uschar *acl_smtp_helo          = NULL;
462 uschar *acl_smtp_mail          = NULL;
463 uschar *acl_smtp_mailauth      = NULL;
464 #ifdef WITH_CONTENT_SCAN
465 uschar *acl_smtp_mime          = NULL;
466 #endif
467 uschar *acl_smtp_notquit       = NULL;
468 uschar *acl_smtp_predata       = NULL;
469 uschar *acl_smtp_quit          = NULL;
470 uschar *acl_smtp_rcpt          = NULL;
471 uschar *acl_smtp_starttls      = NULL;
472 uschar *acl_smtp_vrfy          = NULL;
473
474 tree_node *acl_var_c           = NULL;
475 tree_node *acl_var_m           = NULL;
476 uschar *acl_verify_message     = NULL;
477 string_item *acl_warn_logged   = NULL;
478
479 /* Names of SMTP places for use in ACL error messages, and corresponding SMTP
480 error codes - keep in step with definitions of ACL_WHERE_xxxx in macros.h. */
481
482 uschar *acl_wherenames[]       = { US"RCPT",
483                                    US"MAIL",
484                                    US"PREDATA",
485                                    US"MIME",
486                                    US"DKIM",
487                                    US"DATA",
488 #ifndef DISABLE_PRDR
489                                    US"PRDR",
490 #endif
491                                    US"non-SMTP",
492                                    US"AUTH",
493                                    US"connection",
494                                    US"ETRN",
495                                    US"EXPN",
496                                    US"EHLO or HELO",
497                                    US"MAILAUTH",
498                                    US"non-SMTP-start",
499                                    US"NOTQUIT",
500                                    US"QUIT",
501                                    US"STARTTLS",
502                                    US"VRFY",
503                                    US"delivery",
504                                    US"unknown"
505                                  };
506
507 uschar *acl_wherecodes[]       = { US"550",     /* RCPT */
508                                    US"550",     /* MAIL */
509                                    US"550",     /* PREDATA */
510                                    US"550",     /* MIME */
511                                    US"550",     /* DKIM */
512                                    US"550",     /* DATA */
513 #ifndef DISABLE_PRDR
514                                    US"550",    /* RCPT PRDR */
515 #endif
516                                    US"0",       /* not SMTP; not relevant */
517                                    US"503",     /* AUTH */
518                                    US"550",     /* connect */
519                                    US"458",     /* ETRN */
520                                    US"550",     /* EXPN */
521                                    US"550",     /* HELO/EHLO */
522                                    US"0",       /* MAILAUTH; not relevant */
523                                    US"0",       /* not SMTP; not relevant */
524                                    US"0",       /* NOTQUIT; not relevant */
525                                    US"0",       /* QUIT; not relevant */
526                                    US"550",     /* STARTTLS */
527                                    US"252",     /* VRFY */
528                                    US"0",       /* delivery; not relevant */
529                                    US"0"        /* unknown; not relevant */
530                                  };
531
532 uschar *add_environment        = NULL;
533 address_item  *addr_duplicate  = NULL;
534
535 address_item address_defaults = {
536   .next =               NULL,
537   .parent =             NULL,
538   .first =              NULL,
539   .dupof =              NULL,
540   .start_router =       NULL,
541   .router =             NULL,
542   .transport =          NULL,
543   .host_list =          NULL,
544   .host_used =          NULL,
545   .fallback_hosts =     NULL,
546   .reply =              NULL,
547   .retries =            NULL,
548   .address =            NULL,
549   .unique =             NULL,
550   .cc_local_part =      NULL,
551   .lc_local_part =      NULL,
552   .local_part =         NULL,
553   .prefix =             NULL,
554   .prefix_v =           NULL,
555   .suffix =             NULL,
556   .suffix_v =           NULL,
557   .domain =             NULL,
558   .address_retry_key =  NULL,
559   .domain_retry_key =   NULL,
560   .current_dir =        NULL,
561   .home_dir =           NULL,
562   .message =            NULL,
563   .user_message =       NULL,
564   .onetime_parent =     NULL,
565   .pipe_expandn =       NULL,
566   .return_filename =    NULL,
567   .self_hostname =      NULL,
568   .shadow_message =     NULL,
569 #ifndef DISABLE_TLS
570   .cipher =             NULL,
571   .ourcert =            NULL,
572   .peercert =           NULL,
573   .peerdn =             NULL,
574   .ocsp =               OCSP_NOT_REQ,
575 #endif
576 #ifdef EXPERIMENTAL_DSN_INFO
577   .smtp_greeting =      NULL,
578   .helo_response =      NULL,
579 #endif
580   .authenticator =      NULL,
581   .auth_id =            NULL,
582   .auth_sndr =          NULL,
583   .dsn_orcpt =          NULL,
584   .dsn_flags =          0,
585   .dsn_aware =          0,
586   .uid =                (uid_t)(-1),
587   .gid =                (gid_t)(-1),
588   .flags =              { 0 },
589   .domain_cache =       { 0 },                /* domain_cache - any larger array should be zeroed */
590   .localpart_cache =    { 0 },                /* localpart_cache - ditto */
591   .mode =               -1,
592   .more_errno =         0,
593   .delivery_time =      {.tv_sec = 0, .tv_usec = 0},
594   .basic_errno =        ERRNO_UNKNOWNERROR,
595   .child_count =        0,
596   .return_file =        -1,
597   .special_action =     SPECIAL_NONE,
598   .transport_return =   DEFER,
599   .prop = {                                     /* fields that are propagated to children */
600     .address_data =     NULL,
601     .domain_data =      NULL,
602     .localpart_data =   NULL,
603     .errors_address =   NULL,
604     .extra_headers =    NULL,
605     .remove_headers =   NULL,
606     .variables =        NULL,
607     .ignore_error =     FALSE,
608 #ifdef SUPPORT_I18N
609     .utf8_msg =         FALSE,
610     .utf8_downcvt =     FALSE,
611     .utf8_downcvt_maybe = FALSE
612 #endif
613   }
614 };
615
616 uschar *address_file           = NULL;
617 uschar *address_pipe           = NULL;
618 tree_node *addresslist_anchor  = NULL;
619 int     addresslist_count      = 0;
620 gid_t  *admin_groups           = NULL;
621
622 #ifdef EXPERIMENTAL_ARC
623 struct arc_set *arc_received    = NULL;
624 int     arc_received_instance   = 0;
625 int     arc_oldest_pass         = 0;
626 const uschar *arc_state         = NULL;
627 const uschar *arc_state_reason  = NULL;
628 #endif
629
630 uschar *authenticated_fail_id  = NULL;
631 uschar *authenticated_id       = NULL;
632 uschar *authenticated_sender   = NULL;
633 auth_instance  *auths          = NULL;
634 uschar *auth_advertise_hosts   = US"*";
635 auth_instance auth_defaults    = {
636     .next =             NULL,
637     .name =             NULL,
638     .info =             NULL,
639     .options_block =    NULL,
640     .driver_name =      NULL,
641     .advertise_condition = NULL,
642     .client_condition = NULL,
643     .public_name =      NULL,
644     .set_id =           NULL,
645     .set_client_id =    NULL,
646     .mail_auth_condition = NULL,
647     .server_debug_string = NULL,
648     .server_condition = NULL,
649     .client =           FALSE,
650     .server =           FALSE,
651     .advertised =       FALSE
652 };
653
654 uschar *auth_defer_msg         = US"reason not recorded";
655 uschar *auth_defer_user_msg    = US"";
656 const uschar *auth_vars[AUTH_VARS];
657 int     auto_thaw              = 0;
658 #ifdef WITH_CONTENT_SCAN
659 int     av_failed              = FALSE; /* boolean but accessed as vtype_int*/
660 uschar *av_scanner             = US"sophie:/var/run/sophie";  /* AV scanner */
661 #endif
662
663 #if BASE_62 == 62
664 uschar *base62_chars=
665     US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz";
666 #else
667 uschar *base62_chars= US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ";
668 #endif
669
670 uschar *bi_command             = NULL;
671 uschar *big_buffer             = NULL;
672 int     big_buffer_size        = BIG_BUFFER_SIZE;
673 #ifdef EXPERIMENTAL_BRIGHTMAIL
674 uschar *bmi_alt_location       = NULL;
675 uschar *bmi_base64_tracker_verdict = NULL;
676 uschar *bmi_base64_verdict     = NULL;
677 uschar *bmi_config_file        = US"/opt/brightmail/etc/brightmail.cfg";
678 int     bmi_deliver            = 1;
679 int     bmi_run                = 0;
680 uschar *bmi_verdicts           = NULL;
681 #endif
682 int     bsmtp_transaction_linecount = 0;
683 int     body_8bitmime          = 0;
684 int     body_linecount         = 0;
685 int     body_zerocount         = 0;
686 uschar *bounce_message_file    = NULL;
687 uschar *bounce_message_text    = NULL;
688 uschar *bounce_recipient       = NULL;
689 int     bounce_return_linesize_limit = 998;
690 int     bounce_return_size_limit = 100*1024;
691 uschar *bounce_sender_authentication = NULL;
692
693 uschar *callout_address        = NULL;
694 int     callout_cache_domain_positive_expire = 7*24*60*60;
695 int     callout_cache_domain_negative_expire = 3*60*60;
696 int     callout_cache_positive_expire = 24*60*60;
697 int     callout_cache_negative_expire = 2*60*60;
698 uschar *callout_random_local_part = US"$primary_hostname-$tod_epoch-testing";
699 uschar *check_dns_names_pattern= US"(?i)^(?>(?(1)\\.|())[^\\W](?>[a-z0-9/_-]*[^\\W])?)+(\\.?)$";
700 int     check_log_inodes       = 100;
701 int_eximarith_t check_log_space = 10*1024;      /* 10K Kbyte == 10MB */
702 int     check_spool_inodes     = 100;
703 int_eximarith_t check_spool_space = 10*1024;    /* 10K Kbyte == 10MB */
704
705 uschar *chunking_advertise_hosts = US"*";
706 unsigned chunking_datasize     = 0;
707 unsigned chunking_data_left    = 0;
708 chunking_state_t chunking_state= CHUNKING_NOT_OFFERED;
709 const pcre2_code *regex_CHUNKING     = NULL;
710
711 #ifdef EXPERIMENTAL_ESMTP_LIMITS
712 const pcre2_code *regex_LIMITS        = NULL;
713 #endif
714
715 uschar *client_authenticator   = NULL;
716 uschar *client_authenticated_id = NULL;
717 uschar *client_authenticated_sender = NULL;
718 int     clmacro_count          = 0;
719 uschar *clmacros[MAX_CLMACROS];
720 FILE   *config_file            = NULL;
721 const uschar *config_filename  = NULL;
722 int     config_lineno          = 0;
723 #ifdef CONFIGURE_GROUP
724 gid_t   config_gid             = CONFIGURE_GROUP;
725 #else
726 gid_t   config_gid             = 0;
727 #endif
728 uschar *config_main_filelist   = US CONFIGURE_FILE
729                          "\0<-----------Space to patch configure_filename->";
730 uschar *config_main_filename   = NULL;
731 uschar *config_main_directory  = NULL;
732
733 #ifdef CONFIGURE_OWNER
734 uid_t   config_uid             = CONFIGURE_OWNER;
735 #else
736 uid_t   config_uid             = 0;
737 #endif
738
739 int     connection_max_messages= -1;
740 uschar *continue_proxy_cipher  = NULL;
741 BOOL    continue_proxy_dane    = FALSE;
742 uschar *continue_proxy_sni     = NULL;
743 uschar *continue_hostname      = NULL;
744 uschar *continue_host_address  = NULL;
745 int     continue_sequence      = 1;
746 uschar *continue_transport     = NULL;
747 #ifdef EXPERIMENTAL_ESMTP_LIMITS
748 unsigned continue_limit_mail   = 0;
749 unsigned continue_limit_rcpt   = 0;
750 unsigned continue_limit_rcptdom= 0;
751 #endif
752
753 uschar *csa_status             = NULL;
754 cut_t   cutthrough = {
755   .callout_hold_only =  FALSE,                          /* verify-only: normal delivery */
756   .delivery =           FALSE,                          /* when to attempt */
757   .defer_pass =         FALSE,                          /* on defer: spool locally */
758   .is_tls =             FALSE,                          /* not a TLS conn yet */
759   .cctx =               {.sock = -1},                   /* open connection */
760   .nrcpt =              0,                              /* number of addresses */
761 };
762
763 int     daemon_notifier_fd     = -1;
764 uschar *daemon_smtp_port       = US"smtp";
765 int     daemon_startup_retries = 9;
766 int     daemon_startup_sleep   = 30;
767
768 #ifdef EXPERIMENTAL_DCC
769 uschar *dcc_header             = NULL;
770 uschar *dcc_result             = NULL;
771 uschar *dccifd_address         = US"/usr/local/dcc/var/dccifd";
772 uschar *dccifd_options         = US"header";
773 #endif
774
775 int     debug_fd               = -1;
776 FILE   *debug_file             = NULL;
777 int     debug_notall[]         = {
778   Di_memory,
779   Di_noutf8,
780   -1
781 };
782 bit_table debug_options[]      = { /* must be in alphabetical order and use
783                                  only the enum values from macro.h */
784   BIT_TABLE(D, acl),
785   BIT_TABLE(D, all),
786   BIT_TABLE(D, auth),
787   BIT_TABLE(D, deliver),
788   BIT_TABLE(D, dns),
789   BIT_TABLE(D, dnsbl),
790   BIT_TABLE(D, exec),
791   BIT_TABLE(D, expand),
792   BIT_TABLE(D, filter),
793   BIT_TABLE(D, hints_lookup),
794   BIT_TABLE(D, host_lookup),
795   BIT_TABLE(D, ident),
796   BIT_TABLE(D, interface),
797   BIT_TABLE(D, lists),
798   BIT_TABLE(D, load),
799   BIT_TABLE(D, local_scan),
800   BIT_TABLE(D, lookup),
801   BIT_TABLE(D, memory),
802   BIT_TABLE(D, noutf8),
803   BIT_TABLE(D, pid),
804   BIT_TABLE(D, process_info),
805   BIT_TABLE(D, queue_run),
806   BIT_TABLE(D, receive),
807   BIT_TABLE(D, resolver),
808   BIT_TABLE(D, retry),
809   BIT_TABLE(D, rewrite),
810   BIT_TABLE(D, route),
811   BIT_TABLE(D, timestamp),
812   BIT_TABLE(D, tls),
813   BIT_TABLE(D, transport),
814   BIT_TABLE(D, uid),
815   BIT_TABLE(D, verify),
816 };
817 int     debug_options_count    = nelem(debug_options);
818 unsigned debug_pretrigger_bsize= 0;
819 uschar * debug_pretrigger_buf  = NULL;
820 unsigned int debug_selector    = 0;
821
822 int     delay_warning[DELAY_WARNING_SIZE] = { DELAY_WARNING_SIZE, 1, 24*60*60 };
823 uschar *delay_warning_condition=
824   US"${if or {"
825             "{ !eq{$h_list-id:$h_list-post:$h_list-subscribe:}{} }"
826             "{ match{$h_precedence:}{(?i)bulk|list|junk} }"
827             "{ match{$h_auto-submitted:}{(?i)auto-generated|auto-replied} }"
828             "} {no}{yes}}";
829 uschar *deliver_address_data   = NULL;
830 int     deliver_datafile       = -1;
831 const uschar *deliver_domain   = NULL;
832 uschar *deliver_domain_data    = NULL;
833 const uschar *deliver_domain_orig = NULL;
834 const uschar *deliver_domain_parent = NULL;
835 time_t  deliver_frozen_at      = 0;
836 uschar *deliver_home           = NULL;
837 const uschar *deliver_host     = NULL;
838 const uschar *deliver_host_address = NULL;
839 int     deliver_host_port      = 0;
840 uschar *deliver_in_buffer      = NULL;
841 ino_t   deliver_inode          = 0;
842 uschar *deliver_localpart      = NULL;
843 uschar *deliver_localpart_data = NULL;
844 uschar *deliver_localpart_orig = NULL;
845 uschar *deliver_localpart_parent = NULL;
846 uschar *deliver_localpart_prefix = NULL;
847 uschar *deliver_localpart_prefix_v = NULL;
848 uschar *deliver_localpart_suffix = NULL;
849 uschar *deliver_localpart_suffix_v = NULL;
850 uschar *deliver_out_buffer     = NULL;
851 int     deliver_queue_load_max = -1;
852 address_item  *deliver_recipients = NULL;
853 uschar *deliver_selectstring   = NULL;
854 uschar *deliver_selectstring_sender = NULL;
855
856 #ifndef DISABLE_DKIM
857 unsigned dkim_collect_input      = 0;
858 uschar *dkim_cur_signer          = NULL;
859 int     dkim_key_length          = 0;
860 void   *dkim_signatures          = NULL;
861 uschar *dkim_signers             = NULL;
862 uschar *dkim_signing_domain      = NULL;
863 uschar *dkim_signing_selector    = NULL;
864 uschar *dkim_verify_hashes       = US"sha256:sha512";
865 uschar *dkim_verify_keytypes     = US"ed25519:rsa";
866 uschar *dkim_verify_min_keysizes = US"rsa=1024 ed25519=250";
867 BOOL    dkim_verify_minimal      = FALSE;
868 uschar *dkim_verify_overall      = NULL;
869 uschar *dkim_verify_signers      = US"$dkim_signers";
870 uschar *dkim_verify_status       = NULL;
871 uschar *dkim_verify_reason       = NULL;
872 #endif
873 #ifdef SUPPORT_DMARC
874 uschar *dmarc_domain_policy     = NULL;
875 uschar *dmarc_forensic_sender   = NULL;
876 uschar *dmarc_history_file      = NULL;
877 uschar *dmarc_status            = NULL;
878 uschar *dmarc_status_text       = NULL;
879 uschar *dmarc_tld_file          = NULL;
880 uschar *dmarc_used_domain       = NULL;
881 #endif
882
883 uschar *dns_again_means_nonexist = NULL;
884 int     dns_csa_search_limit   = 5;
885 int     dns_cname_loops        = 1;
886 #ifdef SUPPORT_DANE
887 int     dns_dane_ok            = -1;
888 #endif
889 uschar *dns_ipv4_lookup        = NULL;
890 int     dns_retrans            = 0;
891 int     dns_retry              = 0;
892 int     dns_dnssec_ok          = -1; /* <0 = not coerced */
893 uschar *dns_trust_aa           = NULL;
894 int     dns_use_edns0          = -1; /* <0 = not coerced */
895 uschar *dnslist_domain         = NULL;
896 uschar *dnslist_matched        = NULL;
897 uschar *dnslist_text           = NULL;
898 uschar *dnslist_value          = NULL;
899 tree_node *domainlist_anchor   = NULL;
900 int     domainlist_count       = 0;
901 uschar *dsn_from               = US DEFAULT_DSN_FROM;
902 unsigned int dtrigger_selector = 0;
903
904 int     errno_quota            = ERRNO_QUOTA;
905 uschar *errors_copy            = NULL;
906 int     error_handling         = ERRORS_SENDER;
907 uschar *errors_reply_to        = NULL;
908 int     errors_sender_rc       = EXIT_FAILURE;
909 #ifndef DISABLE_EVENT
910 uschar *event_action             = NULL;        /* expansion for delivery events */
911 uschar *event_data               = NULL;        /* auxiliary data variable for event */
912 int     event_defer_errno        = 0;
913 const uschar *event_name         = NULL;        /* event name variable */
914 #endif
915
916
917 gid_t   exim_gid               = EXIM_GID;
918 uschar *exim_path              = US BIN_DIRECTORY "/exim"
919                         "\0<---------------Space to patch exim_path->";
920 uid_t   exim_uid               = EXIM_UID;
921 int     expand_level           = 0;             /* Nesting depth, indent for debug */
922 int     expand_forbid          = 0;
923 int     expand_nlength[EXPAND_MAXN+1];
924 int     expand_nmax            = -1;
925 const uschar *expand_nstring[EXPAND_MAXN+1];
926 uschar *expand_string_message;
927 uschar *extra_local_interfaces = NULL;
928
929 int     fake_response          = OK;
930 uschar *fake_response_text     = US"Your message has been rejected but is "
931                                    "being kept for evaluation.\nIf it was a "
932                                    "legitimate message, it may still be "
933                                    "delivered to the target recipient(s).";
934 int     filter_n[FILTER_VARIABLE_COUNT];
935 int     filter_sn[FILTER_VARIABLE_COUNT];
936 int     filter_test            = FTEST_NONE;
937 uschar *filter_test_sfile      = NULL;
938 uschar *filter_test_ufile      = NULL;
939 uschar *filter_thisaddress     = NULL;
940 int     finduser_retries       = 0;
941 uid_t   fixed_never_users[]    = { FIXED_NEVER_USERS };
942 uschar *freeze_tell            = NULL;
943 uschar *freeze_tell_config     = NULL;
944 uschar *fudged_queue_times     = US"";
945
946 uschar *gecos_name             = NULL;
947 uschar *gecos_pattern          = NULL;
948 rewrite_rule  *global_rewrite_rules = NULL;
949
950 volatile sig_atomic_t had_command_timeout = 0;
951 volatile sig_atomic_t had_command_sigterm = 0;
952 volatile sig_atomic_t had_data_timeout    = 0;
953 volatile sig_atomic_t had_data_sigint     = 0;
954 const uschar *headers_charset  = US HEADERS_CHARSET;
955 int     header_insert_maxlen   = 64 * 1024;
956 header_line  *header_last      = NULL;
957 header_line  *header_list      = NULL;
958 int     header_maxsize         = HEADER_MAXSIZE;
959 int     header_line_maxsize    = 0;
960
961 header_name header_names[] = {
962   /* name               len     allow_resent    htype */
963   { US"bcc",            3,      TRUE,           htype_bcc },
964   { US"cc",             2,      TRUE,           htype_cc },
965   { US"date",           4,      TRUE,           htype_date },
966   { US"delivery-date", 13,      FALSE,          htype_delivery_date },
967   { US"envelope-to",   11,      FALSE,          htype_envelope_to },
968   { US"from",           4,      TRUE,           htype_from },
969   { US"message-id",    10,      TRUE,           htype_id },
970   { US"received",       8,      FALSE,          htype_received },
971   { US"reply-to",       8,      FALSE,          htype_reply_to },
972   { US"return-path",   11,      FALSE,          htype_return_path },
973   { US"sender",         6,      TRUE,           htype_sender },
974   { US"subject",        7,      FALSE,          htype_subject },
975   { US"to",             2,      TRUE,           htype_to }
976 };
977
978 int header_names_size          = nelem(header_names);
979
980 uschar *helo_accept_junk_hosts = NULL;
981 uschar *helo_allow_chars       = US"";
982 uschar *helo_lookup_domains    = US"@ : @[]";
983 uschar *helo_try_verify_hosts  = NULL;
984 uschar *helo_verify_hosts      = NULL;
985 const uschar *hex_digits       = CUS"0123456789abcdef";
986 uschar *hold_domains           = NULL;
987 uschar *host_data              = NULL;
988 uschar *host_lookup            = NULL;
989 uschar *host_lookup_order      = US"bydns:byaddr";
990 uschar *host_lookup_msg        = US"";
991 int     host_number            = 0;
992 uschar *host_number_string     = NULL;
993 uschar *host_reject_connection = NULL;
994 tree_node *hostlist_anchor     = NULL;
995 int     hostlist_count         = 0;
996 uschar *hosts_treat_as_local   = NULL;
997 uschar *hosts_require_helo     = US"*";
998 uschar *hosts_connection_nolog = NULL;
999
1000 int     ignore_bounce_errors_after = 10*7*24*60*60;  /* 10 weeks */
1001 uschar *ignore_fromline_hosts  = NULL;
1002 int     inetd_wait_timeout     = -1;
1003 uschar *initial_cwd            = NULL;
1004 uschar *interface_address      = NULL;
1005 int     interface_port         = -1;
1006 uschar *iterate_item           = NULL;
1007
1008 int     journal_fd             = -1;
1009
1010 uschar *keep_environment       = NULL;
1011
1012 int     keep_malformed         = 4*24*60*60;    /* 4 days */
1013
1014 uschar *eldap_dn               = NULL;
1015 #ifdef EXPERIMENTAL_ESMTP_LIMITS
1016 uschar *limits_advertise_hosts = US"*";
1017 #endif
1018 int     load_average           = -2;
1019 uschar *local_from_prefix      = NULL;
1020 uschar *local_from_suffix      = NULL;
1021
1022 #if HAVE_IPV6
1023 uschar *local_interfaces       = US"<; ::0 ; 0.0.0.0";
1024 #else
1025 uschar *local_interfaces       = US"0.0.0.0";
1026 #endif
1027
1028 #ifdef HAVE_LOCAL_SCAN
1029 uschar *local_scan_data        = NULL;
1030 int     local_scan_timeout     = 5*60;
1031 #endif
1032 gid_t   local_user_gid         = (gid_t)(-1);
1033 uid_t   local_user_uid         = (uid_t)(-1);
1034
1035 tree_node *localpartlist_anchor= NULL;
1036 int     localpartlist_count    = 0;
1037 uschar *log_buffer             = NULL;
1038
1039 int     log_default[]          = { /* for initializing log_selector */
1040   Li_acl_warn_skipped,
1041   Li_connection_reject,
1042   Li_delay_delivery,
1043   Li_dkim,
1044   Li_dnslist_defer,
1045   Li_etrn,
1046   Li_host_lookup_failed,
1047   Li_lost_incoming_connection,
1048   Li_outgoing_interface, /* see d_log_interface in deliver.c */
1049   Li_msg_id,
1050   Li_queue_run,
1051   Li_queue_time_exclusive,
1052   Li_rejected_header,
1053   Li_retry_defer,
1054   Li_sender_verify_fail,
1055   Li_size_reject,
1056   Li_skip_delivery,
1057   Li_smtp_confirmation,
1058 #ifdef ALLOW_INSECURE_TAINTED_DATA
1059   Li_tainted,
1060 #endif
1061   Li_tls_certificate_verified,
1062   Li_tls_cipher,
1063   -1
1064 };
1065
1066 uschar *log_file_path          = US LOG_FILE_PATH
1067                            "\0<--------------Space to patch log_file_path->";
1068
1069 int     log_notall[]           = {
1070   -1
1071 };
1072 bit_table log_options[]        = { /* must be in alphabetical order,
1073                                 with definitions from enum logbit. */
1074   BIT_TABLE(L, 8bitmime),
1075   BIT_TABLE(L, acl_warn_skipped),
1076   BIT_TABLE(L, address_rewrite),
1077   BIT_TABLE(L, all),
1078   BIT_TABLE(L, all_parents),
1079   BIT_TABLE(L, arguments),
1080   BIT_TABLE(L, connection_reject),
1081   BIT_TABLE(L, delay_delivery),
1082   BIT_TABLE(L, deliver_time),
1083   BIT_TABLE(L, delivery_size),
1084 #ifndef DISABLE_DKIM
1085   BIT_TABLE(L, dkim),
1086   BIT_TABLE(L, dkim_verbose),
1087 #endif
1088   BIT_TABLE(L, dnslist_defer),
1089   BIT_TABLE(L, dnssec),
1090   BIT_TABLE(L, etrn),
1091   BIT_TABLE(L, host_lookup_failed),
1092   BIT_TABLE(L, ident_timeout),
1093   BIT_TABLE(L, incoming_interface),
1094   BIT_TABLE(L, incoming_port),
1095   BIT_TABLE(L, lost_incoming_connection),
1096   BIT_TABLE(L, millisec),
1097   BIT_TABLE(L, msg_id),
1098   BIT_TABLE(L, msg_id_created),
1099   BIT_TABLE(L, outgoing_interface),
1100   BIT_TABLE(L, outgoing_port),
1101   BIT_TABLE(L, pid),
1102   BIT_TABLE(L, pipelining),
1103   BIT_TABLE(L, protocol_detail),
1104 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1105   BIT_TABLE(L, proxy),
1106 #endif
1107   BIT_TABLE(L, queue_run),
1108   BIT_TABLE(L, queue_time),
1109   BIT_TABLE(L, queue_time_exclusive),
1110   BIT_TABLE(L, queue_time_overall),
1111   BIT_TABLE(L, receive_time),
1112   BIT_TABLE(L, received_recipients),
1113   BIT_TABLE(L, received_sender),
1114   BIT_TABLE(L, rejected_header),
1115   { US"rejected_headers", Li_rejected_header },
1116   BIT_TABLE(L, retry_defer),
1117   BIT_TABLE(L, return_path_on_delivery),
1118   BIT_TABLE(L, sender_on_delivery),
1119   BIT_TABLE(L, sender_verify_fail),
1120   BIT_TABLE(L, size_reject),
1121   BIT_TABLE(L, skip_delivery),
1122   BIT_TABLE(L, smtp_confirmation),
1123   BIT_TABLE(L, smtp_connection),
1124   BIT_TABLE(L, smtp_incomplete_transaction),
1125   BIT_TABLE(L, smtp_mailauth),
1126   BIT_TABLE(L, smtp_no_mail),
1127   BIT_TABLE(L, smtp_protocol_error),
1128   BIT_TABLE(L, smtp_syntax_error),
1129   BIT_TABLE(L, subject),
1130 #ifdef ALLOW_INSECURE_TAINTED_DATA
1131   BIT_TABLE(L, tainted),
1132 #endif
1133   BIT_TABLE(L, tls_certificate_verified),
1134   BIT_TABLE(L, tls_cipher),
1135   BIT_TABLE(L, tls_peerdn),
1136   BIT_TABLE(L, tls_resumption),
1137   BIT_TABLE(L, tls_sni),
1138   BIT_TABLE(L, unknown_in_list),
1139 };
1140 int     log_options_count      = nelem(log_options);
1141
1142 int     log_reject_target      = 0;
1143 unsigned int log_selector[log_selector_size]; /* initialized in main() */
1144 uschar *log_selector_string    = NULL;
1145 FILE   *log_stderr             = NULL;
1146 uschar *login_sender_address   = NULL;
1147 uschar *lookup_dnssec_authenticated = NULL;
1148 int     lookup_open_max        = 25;
1149 uschar *lookup_value           = NULL;
1150
1151 macro_item *macros_user        = NULL;
1152 uschar *mailstore_basename     = NULL;
1153 #ifdef WITH_CONTENT_SCAN
1154 uschar *malware_name           = NULL;  /* Virus Name */
1155 #endif
1156 int     max_received_linelength= 0;
1157 int     max_username_length    = 0;
1158 int     message_age            = 0;
1159 uschar *message_body           = NULL;
1160 uschar *message_body_end       = NULL;
1161 int     message_body_size      = 0;
1162 int     message_body_visible   = 500;
1163 int     message_ended          = END_NOTSTARTED;
1164 uschar *message_headers        = NULL;
1165 uschar *message_id;
1166 uschar *message_id_domain      = NULL;
1167 uschar *message_id_text        = NULL;
1168 uschar  message_id_option[MESSAGE_ID_LENGTH + 3];
1169 uschar *message_id_external;
1170 int     message_linecount      = 0;
1171 int     message_size           = 0;
1172 uschar *message_size_limit     = US"50M";
1173 #ifdef SUPPORT_I18N
1174 int     message_utf8_downconvert = 0;   /* -1 ifneeded; 0 never; 1 always */
1175 #endif
1176 uschar  message_subdir[2]      = { 0, 0 };
1177 uschar *message_reference      = NULL;
1178
1179 /* MIME ACL expandables */
1180 #ifdef WITH_CONTENT_SCAN
1181 int     mime_anomaly_level     = 0;
1182 const uschar *mime_anomaly_text      = NULL;
1183 uschar *mime_boundary          = NULL;
1184 uschar *mime_charset           = NULL;
1185 uschar *mime_content_description = NULL;
1186 uschar *mime_content_disposition = NULL;
1187 uschar *mime_content_id        = NULL;
1188 unsigned int mime_content_size = 0;
1189 uschar *mime_content_transfer_encoding = NULL;
1190 uschar *mime_content_type      = NULL;
1191 uschar *mime_decoded_filename  = NULL;
1192 uschar *mime_filename          = NULL;
1193 int     mime_is_multipart      = 0;
1194 int     mime_is_coverletter    = 0;
1195 int     mime_is_rfc822         = 0;
1196 int     mime_part_count        = -1;
1197 #endif
1198
1199 uid_t  *never_users            = NULL;
1200 uschar *notifier_socket        = US"$spool_directory/" NOTIFIER_SOCKET_NAME ;
1201
1202 const int on                   = 1;     /* for setsockopt */
1203 const int off                  = 0;
1204
1205 uid_t   original_euid;
1206 gid_t   originator_gid;
1207 uschar *originator_login       = NULL;
1208 uschar *originator_name        = NULL;
1209 uid_t   originator_uid;
1210 uschar *override_local_interfaces = NULL;
1211 uschar *override_pid_file_path = NULL;
1212
1213 pcre2_general_context * pcre_gen_ctx = NULL;
1214 pcre2_compile_context * pcre_cmp_ctx = NULL;
1215 pcre2_match_context * pcre_mtc_ctx = NULL;
1216
1217 uschar *percent_hack_domains   = NULL;
1218 uschar *pid_file_path          = US PID_FILE_PATH
1219                            "\0<--------------Space to patch pid_file_path->";
1220 #ifndef DISABLE_PIPE_CONNECT
1221 uschar *pipe_connect_advertise_hosts = US"*";
1222 #endif
1223 uschar *pipelining_advertise_hosts = US"*";
1224 uschar *primary_hostname       = NULL;
1225 uschar *process_info;
1226 int     process_info_len       = 0;
1227 uschar *process_log_path       = NULL;
1228 const uschar *process_purpose  = US"fresh-exec";
1229
1230 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1231 uschar *hosts_proxy            = NULL;
1232 uschar *proxy_external_address = NULL;
1233 int     proxy_external_port    = 0;
1234 uschar *proxy_local_address    = NULL;
1235 int     proxy_local_port       = 0;
1236 int     proxy_protocol_timeout = 3;
1237 #endif
1238
1239 uschar *prvscheck_address      = NULL;
1240 uschar *prvscheck_keynum       = NULL;
1241 uschar *prvscheck_result       = NULL;
1242
1243
1244 const uschar *qualify_domain_recipient = NULL;
1245 uschar *qualify_domain_sender  = NULL;
1246 uschar *queue_domains          = NULL;
1247 int     queue_interval         = -1;
1248 uschar *queue_name             = US"";
1249 uschar *queue_name_dest        = NULL;
1250 uschar *queue_only_file        = NULL;
1251 int     queue_only_load        = -1;
1252 uschar *queue_run_max          = US"5";
1253 pid_t   queue_run_pid          = (pid_t)0;
1254 int     queue_run_pipe         = -1;
1255 unsigned queue_size            = 0;
1256 time_t  queue_size_next        = 0;
1257 uschar *queue_smtp_domains     = NULL;
1258
1259 uint32_t random_seed           = 0;
1260 tree_node *ratelimiters_cmd    = NULL;
1261 tree_node *ratelimiters_conn   = NULL;
1262 tree_node *ratelimiters_mail   = NULL;
1263 uschar *raw_active_hostname    = NULL;
1264 uschar *raw_sender             = NULL;
1265 uschar **raw_recipients        = NULL;
1266 int     raw_recipients_count   = 0;
1267
1268 int     rcpt_count             = 0;
1269 int     rcpt_fail_count        = 0;
1270 int     rcpt_defer_count       = 0;
1271 gid_t   real_gid;
1272 uid_t   real_uid;
1273 int     receive_linecount      = 0;
1274 int     receive_messagecount   = 0;
1275 int     receive_timeout        = 0;
1276 int     received_count         = 0;
1277 uschar *received_for           = NULL;
1278
1279 /*  This is the default text for Received headers generated by Exim. The
1280 date  will be automatically added on the end. */
1281
1282 uschar *received_header_text   = US
1283      "Received: "
1284      "${if def:sender_rcvhost {from $sender_rcvhost\n\t}"
1285        "{${if def:sender_ident {from ${quote_local_part:$sender_ident} }}"
1286          "${if def:sender_helo_name {(helo=$sender_helo_name)\n\t}}}}"
1287      "by $primary_hostname "
1288      "${if def:received_protocol {with $received_protocol }}"
1289 #ifndef DISABLE_TLS
1290      "${if def:tls_in_ver        { ($tls_in_ver)}}"
1291      "${if def:tls_in_cipher_std { tls $tls_in_cipher_std\n\t}}"
1292 #endif
1293      "(Exim $version_number)\n\t"
1294      "${if def:sender_address {(envelope-from <$sender_address>)\n\t}}"
1295      "id $message_exim_id"
1296      "${if def:received_for {\n\tfor $received_for}}"
1297      "\0<---------------Space to patch received_header_text->";
1298
1299 int     received_headers_max   = 30;
1300 uschar *received_protocol      = NULL;
1301 struct timeval received_time   = { 0, 0 };
1302 struct timeval received_time_complete = { 0, 0 };
1303 uschar *recipient_data         = NULL;
1304 uschar *recipient_unqualified_hosts = NULL;
1305 uschar *recipient_verify_failure = NULL;
1306 int     recipients_count       = 0;
1307 recipient_item  *recipients_list = NULL;
1308 int     recipients_list_max    = 0;
1309 int     recipients_max         = 50000;
1310 const pcre2_code *regex_AUTH         = NULL;
1311 const pcre2_code *regex_check_dns_names = NULL;
1312 const pcre2_code *regex_From         = NULL;
1313 const pcre2_code *regex_IGNOREQUOTA  = NULL;
1314 const pcre2_code *regex_PIPELINING   = NULL;
1315 const pcre2_code *regex_SIZE         = NULL;
1316 #ifndef DISABLE_PIPE_CONNECT
1317 const pcre2_code *regex_EARLY_PIPE   = NULL;
1318 #endif
1319 const pcre2_code *regex_ismsgid      = NULL;
1320 const pcre2_code *regex_smtp_code    = NULL;
1321 const uschar *regex_vars[REGEX_VARS];
1322 #ifdef WHITELIST_D_MACROS
1323 const pcre2_code *regex_whitelisted_macro = NULL;
1324 #endif
1325 #ifdef WITH_CONTENT_SCAN
1326 uschar *regex_match_string     = NULL;
1327 #endif
1328 int     remote_delivery_count  = 0;
1329 int     remote_max_parallel    = 2;
1330 uschar *remote_sort_domains    = NULL;
1331 int     retry_data_expire      = 7*24*60*60;
1332 int     retry_interval_max     = 24*60*60;
1333 int     retry_maximum_timeout  = 0;        /* set from retry config */
1334 retry_config  *retries         = NULL;
1335 uschar *return_path            = NULL;
1336 int     rewrite_existflags     = 0;
1337 uschar *rfc1413_hosts          = US"@[]";
1338 int     rfc1413_query_timeout  = 0;
1339 uid_t   root_gid               = ROOT_GID;
1340 uid_t   root_uid               = ROOT_UID;
1341
1342 router_instance  *routers  = NULL;
1343 router_instance  router_defaults = {
1344     .next =                     NULL,
1345     .name =                     NULL,
1346     .info =                     NULL,
1347     .options_block =            NULL,
1348     .driver_name =              NULL,
1349
1350     .address_data =             NULL,
1351 #ifdef EXPERIMENTAL_BRIGHTMAIL
1352     .bmi_rule =                 NULL,
1353 #endif
1354     .cannot_route_message =     NULL,
1355     .condition =                NULL,
1356     .current_directory =        NULL,
1357     .debug_string =             NULL,
1358     .domains =                  NULL,
1359     .errors_to =                NULL,
1360     .expand_gid =               NULL,
1361     .expand_uid =               NULL,
1362     .expand_more =              NULL,
1363     .expand_unseen =            NULL,
1364     .extra_headers =            NULL,
1365     .fallback_hosts =           NULL,
1366     .home_directory =           NULL,
1367     .ignore_target_hosts =      NULL,
1368     .local_parts =              NULL,
1369     .pass_router_name =         NULL,
1370     .prefix =                   NULL,
1371     .redirect_router_name =     NULL,
1372     .remove_headers =           NULL,
1373     .require_files =            NULL,
1374     .router_home_directory =    NULL,
1375     .self =                     US"freeze",
1376     .senders =                  NULL,
1377     .suffix =                   NULL,
1378     .translate_ip_address =     NULL,
1379     .transport_name =           NULL,
1380
1381     .address_test =             TRUE,
1382 #ifdef EXPERIMENTAL_BRIGHTMAIL
1383     .bmi_deliver_alternate =    FALSE,
1384     .bmi_deliver_default =      FALSE,
1385     .bmi_dont_deliver =         FALSE,
1386 #endif
1387     .expn =                     TRUE,
1388     .caseful_local_part =       FALSE,
1389     .check_local_user =         FALSE,
1390     .disable_logging =          FALSE,
1391     .fail_verify_recipient =    FALSE,
1392     .fail_verify_sender =       FALSE,
1393     .gid_set =                  FALSE,
1394     .initgroups =               FALSE,
1395     .log_as_local =             TRUE_UNSET,
1396     .more =                     TRUE,
1397     .pass_on_timeout =          FALSE,
1398     .prefix_optional =          FALSE,
1399     .repeat_use =               TRUE,
1400     .retry_use_local_part =     TRUE_UNSET,
1401     .same_domain_copy_routing = FALSE,
1402     .self_rewrite =             FALSE,
1403     .set =                      NULL,
1404     .suffix_optional =          FALSE,
1405     .verify_only =              FALSE,
1406     .verify_recipient =         TRUE,
1407     .verify_sender =            TRUE,
1408     .uid_set =                  FALSE,
1409     .unseen =                   FALSE,
1410     .dsn_lasthop =              FALSE,
1411
1412     .self_code =                self_freeze,
1413     .uid =                      (uid_t)(-1),
1414     .gid =                      (gid_t)(-1),
1415
1416     .fallback_hostlist =        NULL,
1417     .transport =                NULL,
1418     .pass_router =              NULL,
1419     .redirect_router =          NULL,
1420
1421     .dnssec =                   { .request= US"*", .require=NULL },
1422 };
1423
1424 uschar *router_name            = NULL;
1425 tree_node *router_var          = NULL;
1426
1427 ip_address_item *running_interfaces = NULL;
1428
1429 /* This is a weird one. The following string gets patched in the binary by the
1430 script that sets up a copy of Exim for running in the test harness. It seems
1431 that compilers are now clever, and share constant strings if they can.
1432 Elsewhere in Exim the string "<" is used. The compiler optimization seems to
1433 make use of the end of this string in order to save space. So the patching then
1434 wrecks this. We defeat this optimization by adding some additional characters
1435 onto the end of the string. */
1436
1437 uschar *running_status         = US">>>running<<<" "\0EXTRA";
1438
1439 int     runrc                  = 0;
1440
1441 uschar *search_error_message   = NULL;
1442 uschar *self_hostname          = NULL;
1443 uschar *sender_address         = NULL;
1444 unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32];
1445 uschar *sender_address_data    = NULL;
1446 uschar *sender_address_unrewritten = NULL;
1447 uschar *sender_data            = NULL;
1448 unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32];
1449 uschar *sender_fullhost        = NULL;
1450 uschar *sender_helo_name       = NULL;
1451 uschar **sender_host_aliases   = &no_aliases;
1452 uschar *sender_host_address    = NULL;
1453 uschar *sender_host_authenticated = NULL;
1454 uschar *sender_host_auth_pubname  = NULL;
1455 unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32];
1456 uschar *sender_host_name       = NULL;
1457 int     sender_host_port       = 0;
1458 uschar *sender_ident           = NULL;
1459 uschar *sender_rate            = NULL;
1460 uschar *sender_rate_limit      = NULL;
1461 uschar *sender_rate_period     = NULL;
1462 uschar *sender_rcvhost         = NULL;
1463 uschar *sender_unqualified_hosts = NULL;
1464 uschar *sender_verify_failure = NULL;
1465 address_item *sender_verified_list  = NULL;
1466 address_item *sender_verified_failed = NULL;
1467 int     sender_verified_rc     = -1;
1468 uschar *sending_ip_address     = NULL;
1469 int     sending_port           = -1;
1470 SIGNAL_BOOL sigalrm_seen       = FALSE;
1471 const uschar *sigalarm_setter  = NULL;
1472 uschar **sighup_argv           = NULL;
1473 int     slow_lookup_log        = 0;     /* millisecs, zero disables */
1474 int     smtp_accept_count      = 0;
1475 int     smtp_accept_max        = 20;
1476 int     smtp_accept_max_nonmail= 10;
1477 uschar *smtp_accept_max_nonmail_hosts = US"*";
1478 uschar *smtp_accept_max_per_connection = US"1000";
1479 uschar *smtp_accept_max_per_host = NULL;
1480 int     smtp_accept_queue      = 0;
1481 int     smtp_accept_queue_per_connection = 10;
1482 int     smtp_accept_reserve    = 0;
1483 uschar *smtp_active_hostname   = NULL;
1484 int     smtp_backlog_monitor   = 0;
1485 uschar *smtp_banner            = US"$smtp_active_hostname ESMTP "
1486                              "Exim $version_number $tod_full"
1487                              "\0<---------------Space to patch smtp_banner->";
1488 int     smtp_ch_index          = 0;
1489 uschar *smtp_cmd_argument      = NULL;
1490 uschar *smtp_cmd_buffer        = NULL;
1491 struct timeval smtp_connection_start  = {0,0};
1492 uschar  smtp_connection_had[SMTP_HBUFF_SIZE];
1493 int     smtp_connect_backlog   = 20;
1494 double  smtp_delay_mail        = 0.0;
1495 double  smtp_delay_rcpt        = 0.0;
1496 FILE   *smtp_in                = NULL;
1497 int     smtp_listen_backlog    = 0;
1498 int     smtp_load_reserve      = -1;
1499 int     smtp_mailcmd_count     = 0;
1500 int     smtp_mailcmd_max       = -1;
1501 FILE   *smtp_out               = NULL;
1502 uschar *smtp_etrn_command      = NULL;
1503 int     smtp_max_synprot_errors= 3;
1504 int     smtp_max_unknown_commands = 3;
1505 uschar *smtp_notquit_reason    = NULL;
1506 unsigned smtp_peer_options     = 0;
1507 unsigned smtp_peer_options_wrap= 0;
1508 uschar *smtp_ratelimit_hosts   = NULL;
1509 uschar *smtp_ratelimit_mail    = NULL;
1510 uschar *smtp_ratelimit_rcpt    = NULL;
1511 uschar *smtp_read_error        = US"";
1512 int     smtp_receive_timeout   = 5*60;
1513 uschar *smtp_receive_timeout_s = NULL;
1514 uschar *smtp_reserve_hosts     = NULL;
1515 int     smtp_rlm_base          = 0;
1516 double  smtp_rlm_factor        = 0.0;
1517 int     smtp_rlm_limit         = 0;
1518 int     smtp_rlm_threshold     = INT_MAX;
1519 int     smtp_rlr_base          = 0;
1520 double  smtp_rlr_factor        = 0.0;
1521 int     smtp_rlr_limit         = 0;
1522 int     smtp_rlr_threshold     = INT_MAX;
1523 #ifdef SUPPORT_I18N
1524 uschar *smtputf8_advertise_hosts = US"*";       /* overridden under test-harness */
1525 #endif
1526
1527 #ifdef WITH_CONTENT_SCAN
1528 uschar *spamd_address          = US"127.0.0.1 783";
1529 uschar *spam_bar               = NULL;
1530 uschar *spam_report            = NULL;
1531 uschar *spam_action            = NULL;
1532 uschar *spam_score             = NULL;
1533 uschar *spam_score_int         = NULL;
1534 #endif
1535 #ifdef SUPPORT_SPF
1536 uschar *spf_guess              = US"v=spf1 a/24 mx/24 ptr ?all";
1537 uschar *spf_header_comment     = NULL;
1538 uschar *spf_received           = NULL;
1539 uschar *spf_result             = NULL;
1540 uschar *spf_smtp_comment       = NULL;
1541 uschar *spf_smtp_comment_template
1542                     /* Used to be: "Please%_see%_http://www.open-spf.org/Why?id=%{S}&ip=%{C}&receiver=%{R}" */
1543                                = US"Please%_see%_http://www.open-spf.org/Why";
1544
1545 #endif
1546
1547 FILE   *spool_data_file        = NULL;
1548 uschar *spool_directory        = US SPOOL_DIRECTORY
1549                            "\0<--------------Space to patch spool_directory->";
1550 #ifdef SUPPORT_SRS
1551 uschar *srs_recipient          = NULL;
1552 #endif
1553 int     string_datestamp_offset= -1;
1554 int     string_datestamp_length= 0;
1555 int     string_datestamp_type  = -1;
1556 const uschar *submission_domain = NULL;
1557 const uschar *submission_name  = NULL;
1558 int     syslog_facility        = LOG_MAIL;
1559 uschar *syslog_processname     = US"exim";
1560 uschar *system_filter          = NULL;
1561
1562 uschar *system_filter_directory_transport = NULL;
1563 uschar *system_filter_file_transport = NULL;
1564 uschar *system_filter_pipe_transport = NULL;
1565 uschar *system_filter_reply_transport = NULL;
1566
1567 gid_t   system_filter_gid      = 0;
1568 uid_t   system_filter_uid      = (uid_t)-1;
1569
1570 blob    tcp_fastopen_nodata    = { .data = NULL, .len = 0 };
1571 tfo_state_t tcp_out_fastopen   = TFO_NOT_USED;
1572 #ifdef USE_TCP_WRAPPERS
1573 uschar *tcp_wrappers_daemon_name = US TCP_WRAPPERS_DAEMON_NAME;
1574 #endif
1575 int     test_harness_load_avg  = 0;
1576 int     thismessage_size_limit = 0;
1577 int     timeout_frozen_after   = 0;
1578 #ifdef MEASURE_TIMING
1579 struct timeval timestamp_startup;
1580 #endif
1581
1582 transport_instance  *transports = NULL;
1583
1584 transport_instance  transport_defaults = {
1585     /* All non-mentioned elements zero/NULL/FALSE */
1586     .batch_max =                1,
1587     .multi_domain =             TRUE,
1588     .max_addresses =            100,
1589     .connection_max_messages =  500,
1590     .uid =                      (uid_t)(-1),
1591     .gid =                      (gid_t)(-1),
1592     .filter_timeout =           300,
1593     .retry_use_local_part =     TRUE_UNSET,     /* retry_use_local_part: BOOL, but set neither
1594                                                  1 nor 0 so can detect unset */
1595 };
1596
1597 int     transport_count;
1598 uschar *transport_name          = NULL;
1599 int     transport_newlines;
1600 const uschar **transport_filter_argv  = NULL;
1601 int     transport_filter_timeout;
1602 int     transport_write_timeout= 0;
1603
1604 tree_node  *tree_dns_fails     = NULL;
1605 tree_node  *tree_duplicates    = NULL;
1606 tree_node  *tree_nonrecipients = NULL;
1607 tree_node  *tree_unusable      = NULL;
1608
1609 gid_t  *trusted_groups         = NULL;
1610 uid_t  *trusted_users          = NULL;
1611 uschar *timezone_string        = US TIMEZONE_DEFAULT;
1612
1613 uschar *unknown_login          = NULL;
1614 uschar *unknown_username       = NULL;
1615 uschar *untrusted_set_sender   = NULL;
1616
1617 /*  A regex for matching a "From_" line in an incoming message, in the form
1618
1619     From ph10 Fri Jan  5 12:35 GMT 1996
1620
1621 which  the "mail" commands send to the MTA (undocumented, of course), or in
1622 the  form
1623
1624     From ph10 Fri, 7 Jan 97 14:00:00 GMT
1625
1626 which  is apparently used by some UUCPs, despite it not being in RFC 976.
1627 Because  of variations in time formats, just match up to the minutes. That
1628 should  be sufficient. Examples have been seen of time fields like 12:1:03,
1629 so  just require one digit for hours and minutes. The weekday is also absent
1630 in  some forms. */
1631
1632 uschar *uucp_from_pattern      = US
1633    "^From\\s+(\\S+)\\s+(?:[a-zA-Z]{3},?\\s+)?"    /* Common start */
1634    "(?:"                                          /* Non-extracting bracket */
1635    "[a-zA-Z]{3}\\s+\\d?\\d|"                      /* First form */
1636    "\\d?\\d\\s+[a-zA-Z]{3}\\s+\\d\\d(?:\\d\\d)?"  /* Second form */
1637    ")"                                            /* End alternation */
1638    "\\s+\\d\\d?:\\d\\d?";                         /* Start of time */
1639
1640 uschar *uucp_from_sender       = US"$1";
1641
1642 uschar *verify_mode            = NULL;
1643 uschar *version_copyright      =
1644  US"Copyright (c) University of Cambridge, 1995 - 2018\n"
1645    "(c) The Exim Maintainers and contributors in ACKNOWLEDGMENTS file, 2007 - 2020";
1646 uschar *version_date           = US"?";
1647 uschar *version_cnumber        = US"????";
1648 uschar *version_string         = US"?";
1649
1650 uschar *warn_message_file      = NULL;
1651 int     warning_count          = 0;
1652 uschar *warnmsg_delay          = NULL;
1653 uschar *warnmsg_recipients     = NULL;
1654
1655
1656 /*  End of globals.c */