1 /*************************************************
2 * Exim - an Internet mail transport agent *
3 *************************************************/
5 /* Copyright (c) The Exim Maintainers 2020 - 2024 */
6 /* Copyright (c) University of Cambridge 1995 - 2018 */
7 /* See the file NOTICE for conditions of use and distribution. */
8 /* SPDX-License-Identifier: GPL-2.0-or-later */
10 /* Almost all the global variables are defined together in this one header, so
11 that they are easy to find. However, those that are visible during the
12 compilation of the local_scan() function are defined separately in the
13 local_scan.h header file. */
15 /* First put any specials that are required for some operating systems. */
21 /* We need to be careful about width of int and atomicity in signal handlers,
22 especially with the rise of 64-bit systems breaking older assumptions. But
23 sig_atomic_t comes from signal.h so can't go into mytypes.h without including
24 signal support in local_scan, which seems precipitous. */
25 typedef volatile sig_atomic_t SIGNAL_BOOL;
27 /* Now things that are present only when configured. */
30 extern uschar *opt_perl_startup; /* Startup code for Perl interpreter */
31 extern BOOL opt_perl_at_start; /* Start Perl interpreter at start */
32 extern BOOL opt_perl_started; /* Set once interpreter started */
33 extern BOOL opt_perl_taintmode; /* Enable taint mode in Perl */
37 extern tree_node *dlobj_anchor; /* Tree of dynamically-loaded objects */
41 extern uschar *ibase_servers;
45 extern uschar *eldap_ca_cert_dir; /* Directory with CA certificates */
46 extern uschar *eldap_ca_cert_file; /* CA certificate file */
47 extern uschar *eldap_cert_file; /* Certificate file */
48 extern uschar *eldap_cert_key; /* Certificate key file */
49 extern uschar *eldap_cipher_suite; /* Allowed cipher suite */
50 extern uschar *eldap_default_servers; /* List of default servers */
51 extern uschar *eldap_require_cert; /* Peer certificate checking strategy */
52 extern BOOL eldap_start_tls; /* Use STARTTLS */
53 extern int eldap_version; /* LDAP version */
57 extern uschar *mysql_servers; /* List of servers and connect info */
61 extern uschar *oracle_servers; /* List of servers and connect info */
65 extern uschar *pgsql_servers; /* List of servers and connect info */
69 extern uschar *redis_servers; /* List of servers and connect info */
73 extern uschar *sqlite_dbfile; /* Filname for database */
74 extern int sqlite_lock_timeout; /* Internal lock waiting timeout */
77 #ifdef SUPPORT_MOVE_FROZEN_MESSAGES
78 extern BOOL move_frozen_messages; /* Get them out of the normal directory */
81 /* These variables are outside the #ifdef because it keeps the code less
82 cluttered in several places (e.g. during logging) if we can always refer to
83 them. Also, the tls_ variables are now always visible. */
86 client_conn_ctx active; /* fd/socket when in a TLS session, and ptr to TLS context */
87 int bits; /* bits used in TLS session */
88 BOOL certificate_verified; /* Client certificate verified */
90 BOOL dane_verified; /* ... via DANE */
91 int tlsa_usage; /* TLSA record(s) usage */
93 uschar *cipher; /* Cipher used */
94 const uschar *cipher_stdname; /* Cipher used, RFC version */
95 const uschar *ver; /* TLS version */
97 BOOL on_connect; /* For older MTAs that don't STARTTLS */
98 uschar *on_connect_ports; /* Ports always tls-on-connect */
99 void *ourcert; /* Certificate we presented, binary */
100 void *peercert; /* Certificate of peer, binary */
101 uschar *peerdn; /* DN from peer */
102 uschar *sni; /* Server Name Indication */
103 uschar *channelbinding; /* b64'd data identifying channel, for authenticators */
105 OCSP_NOT_REQ=0, /* not requested */
106 OCSP_NOT_RESP, /* no response to request */
107 OCSP_VFY_NOT_TRIED, /* response not verified */
108 OCSP_FAILED, /* verify failed */
109 OCSP_VFIED /* verified */
110 } ocsp; /* Stapled OCSP status */
111 #ifndef DISABLE_TLS_RESUME
112 hctx resume_hctx; /* session lookup key accumulation */
113 const uschar * resume_index; /* session lookup key */
115 unsigned resumption; /* Session resumption */
116 BOOL host_resumable:1;
117 BOOL ticket_received:1;
119 BOOL verify_override:1; /* certificate_verified only due to tls_try_verify_hosts */
120 BOOL ext_master_secret:1; /* extended-master-secret was used */
121 BOOL channelbind_exporter:1; /* channelbinding is EXPORTER not UNIQUE */
123 extern tls_support tls_in;
124 extern tls_support tls_out;
127 extern BOOL gnutls_compat_mode; /* Less security, more compatibility */
128 extern BOOL gnutls_allow_auto_pkcs11; /* Let GnuTLS autoload PKCS11 modules */
129 extern uschar *hosts_require_alpn; /* Mandatory ALPN successful nogitiation */
130 extern uschar *openssl_options; /* OpenSSL compatibility options */
131 extern const pcre2_code *regex_STARTTLS; /* For recognizing STARTTLS settings */
132 extern uschar *tls_alpn; /* ALPN names acceptable */
133 extern uschar *tls_certificate; /* Certificate file */
134 extern uschar *tls_crl; /* CRL File */
135 extern int tls_dh_max_bits; /* don't accept higher lib suggestions */
136 extern uschar *tls_dhparam; /* DH param file */
137 extern uschar *tls_eccurve; /* EC curve */
138 # ifndef DISABLE_OCSP
139 extern uschar *tls_ocsp_file; /* OCSP stapling proof file */
141 extern uschar *tls_privatekey; /* Private key file */
142 extern BOOL tls_remember_esmtp; /* For YAEB */
143 extern uschar *tls_require_ciphers; /* So some can be avoided */
144 # ifndef DISABLE_TLS_RESUME
145 extern uschar *tls_resumption_hosts; /* TLS session resumption */
147 extern uschar *tls_try_verify_hosts; /* Optional client verification */
148 extern uschar *tls_verify_certificates;/* Path for certificates to check */
149 extern uschar *tls_verify_hosts; /* Mandatory client verification */
150 extern int tls_watch_fd; /* for inotify of creds files */
151 extern time_t tls_watch_trigger_time; /* non-0: triggered */
153 extern uschar *tls_advertise_hosts; /* host for which TLS is advertised */
155 extern uschar *dsn_envid; /* DSN envid string */
156 extern int dsn_ret; /* DSN ret type*/
157 extern const pcre2_code *regex_DSN; /* For recognizing DSN settings */
158 extern uschar *dsn_advertise_hosts; /* host for which TLS is advertised */
160 /* Input-reading functions for messages, so we can use special ones for
163 extern int (*lwr_receive_getc)(unsigned);
164 extern uschar * (*lwr_receive_getbuf)(unsigned *);
165 extern BOOL (*lwr_receive_hasc)(void);
166 extern int (*lwr_receive_ungetc)(int);
168 extern int (*receive_getc)(unsigned);
169 extern uschar * (*receive_getbuf)(unsigned *);
170 extern BOOL (*receive_hasc)(void);
171 extern void (*receive_get_cache)(unsigned);
172 extern int (*receive_ungetc)(int);
173 extern int (*receive_feof)(void);
174 extern int (*receive_ferror)(void);
177 /* For clearing, saving, restoring address expansion variables. We have to have
178 the size of this vector set explicitly, because it is referenced from more than
181 extern const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT];
183 /* Flags for which we don't need an address ever so can use a bitfield */
185 extern struct global_flags {
186 BOOL acl_temp_details :1; /* TRUE to give details for 4xx error */
187 BOOL active_local_from_check :1; /* For adding Sender: (switchable) */
188 BOOL active_local_sender_retain :1; /* For keeping Sender: (switchable) */
189 BOOL address_test_mode :1; /* True for -bt */
190 BOOL admin_user :1; /* True if caller can do admin */
191 BOOL allow_auth_unadvertised :1; /* As it says */
192 BOOL allow_unqualified_recipient :1; /* For local messages */ /* As it says */
193 BOOL allow_unqualified_sender :1; /* Reset for SMTP */ /* Ditto */
194 BOOL authentication_local :1; /* TRUE if non-smtp (implicit authentication) */
196 BOOL background_daemon :1; /* Set FALSE to keep in foreground */
197 BOOL bdat_readers_wanted :1; /* BDAT-handling to be pushed on readfunc stack */
199 BOOL chunking_offered :1;
200 BOOL config_changed :1; /* True if -C used */
201 BOOL continue_more :1; /* Flag more addresses waiting */
203 BOOL daemon_listen :1; /* True if listening required */
204 BOOL daemon_scion :1; /* Ancestor proc is daemon, and not re-exec'd */
205 BOOL debug_daemon :1; /* Debug the daemon process only */
206 BOOL deliver_firsttime :1; /* True for first delivery attempt */
207 BOOL deliver_force :1; /* TRUE if delivery was forced */
208 BOOL deliver_freeze :1; /* TRUE if delivery is frozen */
209 BOOL deliver_force_thaw :1; /* TRUE to force thaw in queue run */
210 BOOL deliver_manual_thaw :1; /* TRUE if manually thawed */
211 BOOL deliver_selectstring_regex :1; /* String is regex */
212 BOOL deliver_selectstring_sender_regex :1; /* String is regex */
213 BOOL disable_callout_flush :1; /* Don't flush before callouts */
214 BOOL disable_delay_flush :1; /* Don't flush before "delay" in ACL */
215 BOOL disable_logging :1; /* Disables log writing when TRUE */
217 BOOL dkim_disable_verify :1; /* Set via ACL control statement. When set, DKIM verification is disabled for the current message */
218 BOOL dkim_init_done :1; /* lazy-init status */
221 BOOL dmarc_has_been_checked :1; /* Global variable to check if test has been called yet */
222 BOOL dmarc_disable_verify :1; /* Set via ACL control statement. When set, DMARC verification is disabled for the current message */
223 BOOL dmarc_enable_forensic :1; /* Set via ACL control statement. When set, DMARC forensic reports are enabled for the current message */
225 BOOL dont_deliver :1; /* TRUE for -N option */
226 BOOL dot_ends :1; /* TRUE if "." ends non-SMTP input */
228 BOOL enable_dollar_recipients :1; /* Make $recipients available */
229 BOOL expand_string_forcedfail :1; /* TRUE if failure was "expected" */
231 BOOL filter_running :1; /* TRUE while running a filter */
233 BOOL header_rewritten :1; /* TRUE if header changed by router */
234 BOOL helo_verified :1; /* True if HELO verified */
235 BOOL helo_verify_failed :1; /* True if attempt failed */
236 BOOL host_checking_callout :1; /* TRUE if real callout wanted */
237 BOOL host_find_failed_syntax :1; /* DNS syntax check failure */
239 BOOL inetd_wait_mode :1; /* Whether running in inetd wait mode */
240 BOOL is_inetd :1; /* True for inetd calls */
242 BOOL local_error_message :1; /* True if handling one of these */
243 BOOL log_testing_mode :1; /* TRUE in various testing modes */
245 #ifdef WITH_CONTENT_SCAN
246 BOOL no_mbox_unspool :1; /* don't unlink files in /scan directory */
248 BOOL no_multiline_responses :1; /* For broken clients */
249 BOOL notifier_socket_en :1; /* Permit create of notifier socket */
251 BOOL parse_allow_group :1; /* Allow group syntax */
252 BOOL parse_found_group :1; /* In the middle of a group */
253 BOOL pipelining_enable :1; /* As it says */
254 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
255 BOOL proxy_session_failed :1; /* TRUE if required proxy negotiation failed */
258 BOOL queue_2stage :1; /* Run queue in 2-stage manner */
259 BOOL queue_only_policy :1; /* ACL or local_scan wants queue_only */
260 BOOL queue_run_local :1; /* Local deliveries only in queue run */
261 BOOL queue_running :1; /* TRUE for queue running process and */
262 BOOL queue_smtp :1; /* Disable all immediate SMTP (-odqs)*/
264 BOOL really_exim :1; /* FALSE in utilities */
265 BOOL receive_call_bombout :1; /* Flag for crashing log */
266 BOOL recipients_discarded :1; /* By an ACL */
267 BOOL running_in_test_harness :1; /*TRUE when running_status is patched */
269 BOOL search_find_defer :1; /* Set TRUE if lookup deferred */
270 BOOL sender_address_forced :1; /* Set by -f */
271 BOOL sender_host_notsocket :1; /* Set for -bs and -bS */
272 BOOL sender_host_unknown :1; /* TRUE for -bs and -bS except inetd */
273 BOOL sender_local :1; /* TRUE for local senders */
274 BOOL sender_name_forced :1; /* Set by -F */
275 BOOL sender_set_untrusted :1; /* Sender set by untrusted caller */
276 BOOL smtp_authenticated :1; /* Sending client has authenticated */
277 #ifndef DISABLE_PIPE_CONNECT
278 BOOL smtp_in_early_pipe_advertised :1; /* server advertised PIPECONNECT */
279 BOOL smtp_in_early_pipe_no_auth :1; /* too many authenticator names */
280 BOOL smtp_in_early_pipe_used :1; /* client did send early data */
282 BOOL smtp_in_pipelining_advertised :1; /* server advertised PIPELINING */
283 BOOL smtp_in_pipelining_used :1; /* server noted client using PIPELINING */
284 BOOL smtp_in_quit :1; /* server noted QUIT command */
285 BOOL spool_file_wireformat :1; /* current -D file has CRLF rather than NL */
286 BOOL submission_mode :1; /* Can be forced from ACL */
287 BOOL suppress_local_fixups :1; /* Can be forced from ACL */
288 BOOL suppress_local_fixups_default :1; /* former is reset to this; override with -G */
289 BOOL synchronous_delivery :1; /* TRUE if -odi is set */
290 BOOL system_filtering :1; /* TRUE when running system filter */
292 BOOL taint_check_slow :1; /* malloc/mmap are not returning distinct ranges */
293 BOOL testsuite_delays :1; /* interprocess sequencing delays, under testsuite */
294 BOOL tcp_fastopen_ok :1; /* appears to be supported by kernel */
295 BOOL tcp_in_fastopen :1; /* conn usefully used fastopen */
296 BOOL tcp_in_fastopen_data :1; /* fastopen carried data */
297 BOOL tcp_in_fastopen_logged :1; /* one-time logging */
298 BOOL tcp_out_fastopen_logged :1; /* one-time logging */
299 BOOL timestamps_utc :1; /* Use UTC for all times */
300 BOOL transport_filter_timed_out :1; /* True if it did */
301 BOOL trusted_caller :1; /* Caller is trusted */
302 BOOL trusted_config :1; /* Configuration file is trusted */
306 /* General global variables */
308 extern BOOL accept_8bitmime; /* Allow *BITMIME incoming */
309 extern uschar *add_environment; /* List of environment variables to add */
310 extern header_line *acl_added_headers; /* Headers added by an ACL */
311 extern tree_node *acl_anchor; /* Tree of named ACLs */
312 extern uschar *acl_arg[9]; /* Argument to ACL call */
313 extern int acl_narg; /* Number of arguments to ACL call */
314 extern int acl_level; /* Nesting depth and debug indent */
315 extern uschar *acl_not_smtp; /* ACL run for non-SMTP messages */
316 #ifdef WITH_CONTENT_SCAN
317 extern uschar *acl_not_smtp_mime; /* For MIME parts of ditto */
319 extern uschar *acl_not_smtp_start; /* ACL run at the beginning of a non-SMTP session */
320 extern uschar *acl_removed_headers; /* Headers deleted by an ACL */
321 extern uschar *acl_smtp_auth; /* ACL run for AUTH */
322 extern uschar *acl_smtp_connect; /* ACL run on SMTP connection */
323 extern uschar *acl_smtp_data; /* ACL run after DATA received */
325 extern uschar *acl_smtp_data_prdr; /* ACL run after DATA received if in PRDR mode*/
326 extern const pcre2_code *regex_PRDR; /* For recognizing PRDR settings */
329 extern uschar *acl_smtp_dkim; /* ACL run for DKIM signatures / domains */
331 extern uschar *acl_smtp_etrn; /* ACL run for ETRN */
332 extern uschar *acl_smtp_expn; /* ACL run for EXPN */
333 extern uschar *acl_smtp_helo; /* ACL run for HELO/EHLO */
334 extern uschar *acl_smtp_mail; /* ACL run for MAIL */
335 extern uschar *acl_smtp_mailauth; /* ACL run for MAIL AUTH */
336 #ifdef WITH_CONTENT_SCAN
337 extern uschar *acl_smtp_mime; /* ACL run after DATA, before acl_smtp_data, for each MIME part */
339 extern uschar *acl_smtp_notquit; /* ACL run for disconnects */
340 extern uschar *acl_smtp_predata; /* ACL run for DATA command */
341 extern uschar *acl_smtp_quit; /* ACL run for QUIT */
342 extern uschar *acl_smtp_rcpt; /* ACL run for RCPT */
343 extern uschar *acl_smtp_starttls; /* ACL run for STARTTLS */
344 extern uschar *acl_smtp_vrfy; /* ACL run for VRFY */
345 #ifndef DISABLE_WELLKNOWN
346 extern uschar *acl_smtp_wellknown; /* ACL run for WELLKNOWN */
348 extern tree_node *acl_var_c; /* ACL connection variables */
349 extern tree_node *acl_var_m; /* ACL message variables */
350 extern uschar *acl_verify_message; /* User message for verify failure */
351 extern string_item *acl_warn_logged; /* Logged lines */
352 extern uschar *acl_wherecodes[]; /* Response codes for ACL fails */
353 extern uschar *acl_wherenames[]; /* Names for messages */
354 extern address_item *addr_duplicate; /* Duplicate address list */
355 extern address_item address_defaults; /* Default data for address item */
356 extern const uschar *address_file; /* Name of file when delivering to one */
357 extern const uschar *address_pipe; /* Pipe command when delivering to one */
358 extern tree_node *addresslist_anchor; /* Tree of defined address lists */
359 extern int addresslist_count; /* Number defined */
360 extern gid_t *admin_groups; /* List of admin groups */
361 extern BOOL allow_domain_literals; /* As it says */
362 extern BOOL allow_mx_to_ip; /* Allow MX records to -> ip address */
363 #ifdef EXPERIMENTAL_ARC
364 extern struct arc_set *arc_received; /* highest ARC instance evaluation struct */
365 extern int arc_received_instance; /* highest ARC instance number in headers */
366 extern int arc_oldest_pass; /* lowest passing instance number in headers */
367 extern const uschar *arc_state; /* verification state */
368 extern const uschar *arc_state_reason;
370 extern BOOL allow_utf8_domains; /* For experimenting */
371 extern uschar *authenticated_fail_id; /* ID that failed authentication */
372 extern uschar *authenticated_id; /* ID that was authenticated */
373 extern uschar *authenticated_sender; /* From AUTH on MAIL */
374 extern BOOL authentication_failed; /* TRUE if AUTH was tried and failed */
375 extern uschar *authenticator_name; /* for debug and error messages */
376 extern uschar *auth_advertise_hosts; /* Only advertise to these */
377 extern auth_info auths_available[]; /* Vector of available auth mechanisms */
378 extern auth_instance *auths; /* Chain of instantiated auths */
379 extern auth_instance auth_defaults; /* Default values */
380 extern uschar *auth_defer_msg; /* Error message for log */
381 extern uschar *auth_defer_user_msg; /* Error message for user */
382 extern const uschar *auth_vars[]; /* $authn variables */
383 extern int auto_thaw; /* Auto-thaw interval */
384 #ifdef WITH_CONTENT_SCAN
385 extern int av_failed; /* TRUE if the AV process failed */
386 extern uschar *av_scanner; /* AntiVirus scanner to use for the malware condition */
389 extern uschar *base62_chars; /* Table of base-62 characters */
390 extern uschar *bi_command; /* Command for -bi option */
391 extern uschar *big_buffer; /* Used for various temp things */
392 extern int big_buffer_size; /* Current size (can expand) */
393 #ifdef EXPERIMENTAL_BRIGHTMAIL
394 extern uschar *bmi_alt_location; /* expansion variable that contains the alternate location for the rcpt (available during routing) */
395 extern uschar *bmi_base64_tracker_verdict; /* expansion variable with base-64 encoded OLD verdict string (available during routing) */
396 extern uschar *bmi_base64_verdict; /* expansion variable with base-64 encoded verdict string (available during routing) */
397 extern uschar *bmi_config_file; /* Brightmail config file */
398 extern int bmi_deliver; /* Flag that determines if the message should be delivered to the rcpt (available during routing) */
399 extern int bmi_run; /* Flag that determines if message should be run through Brightmail server */
400 extern uschar *bmi_verdicts; /* BASE64-encoded verdicts with recipient lists */
402 extern int bsmtp_transaction_linecount; /* Start of last transaction */
403 extern int body_8bitmime; /* sender declared BODY= ; 7=7BIT, 8=8BITMIME */
404 extern uschar *bounce_message_file; /* Template file */
405 extern uschar *bounce_message_text; /* One-liner */
406 extern const uschar *bounce_recipient; /* When writing an errmsg */
407 extern BOOL bounce_return_body; /* Include body in returned message */
408 extern int bounce_return_linesize_limit; /* Max line length in return */
409 extern BOOL bounce_return_message; /* Include message in bounce */
410 extern int bounce_return_size_limit; /* Max amount to return */
411 extern uschar *bounce_sender_authentication; /* AUTH address for bounces */
413 extern uschar *callout_address; /* Address used for a malware/spamd/verify etc. callout */
414 extern int callout_cache_domain_positive_expire; /* Time for positive domain callout cache records to expire */
415 extern int callout_cache_domain_negative_expire; /* Time for negative domain callout cache records to expire */
416 extern int callout_cache_positive_expire; /* Time for positive callout cache records to expire */
417 extern int callout_cache_negative_expire; /* Time for negative callout cache records to expire */
418 extern uschar *callout_random_local_part; /* Local part to be used to check if server called will accept any local part */
419 extern uschar *check_dns_names_pattern;/* Regex for syntax check */
420 extern int check_log_inodes; /* Minimum for message acceptance */
421 extern int_eximarith_t check_log_space; /* Minimum for message acceptance */
422 extern BOOL check_rfc2047_length; /* Check RFC 2047 encoded string length */
423 extern int check_spool_inodes; /* Minimum for message acceptance */
424 extern int_eximarith_t check_spool_space; /* Minimum for message acceptance */
425 extern uschar *chunking_advertise_hosts; /* RFC 3030 CHUNKING */
426 extern unsigned chunking_datasize;
427 extern unsigned chunking_data_left;
428 extern chunking_state_t chunking_state;
429 extern uschar *client_authenticator; /* Authenticator name used for smtp delivery */
430 extern uschar *client_authenticated_id; /* "login" name used for SMTP AUTH */
431 extern uschar *client_authenticated_sender; /* AUTH option to SMTP MAIL FROM (not yet used) */
432 #ifndef DISABLE_CLIENT_CMD_LOG
433 extern gstring *client_cmd_log; /* debug log of client cmds & responses */
435 extern int clmacro_count; /* Number of command line macros */
436 extern uschar *clmacros[]; /* Copy of them, for re-exec */
437 extern BOOL commandline_checks_require_admin; /* belt and braces for insecure setups */
438 extern const uschar *connection_id; /* connection cookie for log */
439 extern int connection_max_messages;/* Max down one SMTP connection */
440 extern FILE *config_file; /* Configuration file */
441 extern const uschar *config_filename; /* Configuration file name */
442 extern gid_t config_gid; /* Additional group owner */
443 extern int config_lineno; /* Line number */
444 extern const uschar *config_main_filelist; /* List of possible config files */
445 extern uschar *config_main_filename; /* File name actually used */
446 extern uschar *config_main_directory; /* Directory where the main config file was found */
447 extern uid_t config_uid; /* Additional owner */
448 extern unsigned continue_flags; /* TLS-related info for connection */
449 #ifndef DISABLE_ESMTP_LIMITS
450 extern unsigned continue_limit_mail; /* Peer advertised limit */
451 extern unsigned continue_limit_rcpt;
452 extern unsigned continue_limit_rcptdom;
454 extern int continue_fd; /* Connection for continuation */
455 extern uschar *continue_proxy_cipher; /* TLS cipher for proxied continued delivery */
456 extern BOOL continue_proxy_dane; /* proxied conn is DANE */
457 extern uschar *continue_proxy_sni; /* proxied conn SNI */
458 extern const uschar *continue_hostname; /* Host for continued delivery */
459 extern const uschar *continue_host_address; /* IP address for ditto */
460 extern uschar continue_next_id[]; /* Next message_id from hintsdb */
461 extern int continue_sequence; /* Sequence num for continued delivery */
462 extern const uschar *continue_transport; /* Transport for continued delivery */
463 #ifndef COMPILE_UTILITY
464 extern open_db *continue_retry_db; /* Hintsdb for retries */
465 extern open_db *continue_wait_db; /* Hintsdb for wait-transport */
469 extern uschar *csa_status; /* Client SMTP Authorization result */
472 unsigned callout_hold_only:1; /* Conn is only for verify callout */
473 unsigned delivery:1; /* When to attempt */
474 unsigned defer_pass:1; /* Pass 4xx to caller rather than spooling */
475 unsigned is_tls:1; /* Conn has TLS active */
476 client_conn_ctx cctx; /* Open connection */
477 int nrcpt; /* Count of addresses */
478 uschar * transport; /* Name of transport */
479 uschar * interface; /* (address of) */
480 uschar * snd_ip; /* sending_ip_address */
481 int snd_port; /* sending_port */
482 unsigned peer_options; /* smtp_peer_options */
483 host_item host; /* Host used */
484 address_item addr; /* (Chain of) addresses */
486 extern cut_t cutthrough; /* Deliver-concurrently */
488 extern int daemon_notifier_fd; /* Unix socket for notifications */
489 extern uschar *daemon_smtp_port; /* Can be a list of ports */
490 extern int daemon_startup_retries; /* Number of times to retry */
491 extern int daemon_startup_sleep; /* Sleep between retries */
493 #ifdef EXPERIMENTAL_DCC
494 extern BOOL dcc_direct_add_header; /* directly add header */
495 extern uschar *dcc_header; /* dcc header */
496 extern uschar *dcc_result; /* dcc result */
497 extern uschar *dccifd_address; /* address of the dccifd daemon */
498 extern uschar *dccifd_options; /* options for the dccifd daemon */
501 extern int debug_fd; /* The fd for debug_file */
502 extern FILE *debug_file; /* Where to write debugging info */
503 extern int debug_notall[]; /* Debug options excluded from +all */
504 extern bit_table debug_options[]; /* Table of debug options */
505 extern int debug_options_count; /* Size of table */
506 extern unsigned debug_pretrigger_bsize;
507 extern uschar *debug_pretrigger_buf; /* circular buffer for precapture */
508 extern BOOL debug_store; /* Do extra checks on store_reset */
509 extern uschar debuglog_name[LOG_NAME_SIZE]; /* ACL-init debug */
511 extern int delay_warning[]; /* Times between warnings */
512 extern uschar *delay_warning_condition; /* Condition string for warnings */
513 extern BOOL delivery_date_remove; /* Remove delivery-date headers */
515 extern uschar *deliver_address_data; /* Arbitrary data for an address */
516 extern int deliver_datafile; /* FD for data part of message */
517 extern const uschar *deliver_domain; /* The local domain for delivery */
518 extern uschar *deliver_domain_data; /* From domain lookup */
519 extern const uschar *deliver_domain_orig; /* The original local domain for delivery */
520 extern const uschar *deliver_domain_parent; /* The parent domain for delivery */
521 extern BOOL deliver_drop_privilege; /* TRUE for unprivileged delivery */
522 extern time_t deliver_frozen_at; /* Time of freezing */
523 extern uschar *deliver_home; /* Home directory for pipes */
524 extern const uschar *deliver_host; /* (First) host for routed local deliveries */
525 /* Remote host for filter */
526 extern const uschar *deliver_host_address; /* Address for remote delivery filter */
527 extern int deliver_host_port; /* Address for remote delivery filter */
528 extern uschar *deliver_in_buffer; /* Buffer for copying file */
529 extern ino_t deliver_inode; /* Inode for appendfile */
530 extern const uschar *deliver_localpart;/* The local part for delivery */
531 extern uschar *deliver_localpart_data; /* From local part lookup (de-tainted) */
532 extern const uschar *deliver_localpart_orig; /* The original local part for delivery */
533 extern const uschar *deliver_localpart_parent; /* The parent local part for delivery */
534 extern const uschar *deliver_localpart_prefix; /* The stripped prefix, if any */
535 extern const uschar *deliver_localpart_prefix_v; /* The stripped-prefix variable portion, if any */
536 extern const uschar *deliver_localpart_suffix; /* The stripped suffix, if any */
537 extern const uschar *deliver_localpart_suffix_v; /* The stripped-suffix variable portion, if any */
538 extern uschar *deliver_out_buffer; /* Buffer for copying file */
539 extern int deliver_queue_load_max; /* Different value for queue running */
540 extern address_item *deliver_recipients; /* Current set of addresses */
541 extern uschar *deliver_selectstring; /* For selecting by recipient */
542 extern uschar *deliver_selectstring_sender; /* For selecting by sender */
543 #ifdef ENABLE_DISABLE_FSYNC
544 extern BOOL disable_fsync; /* Not for normal use */
546 extern BOOL disable_ipv6; /* Don't do any IPv6 things */
549 extern unsigned dkim_collect_input; /* Runtime count of dkim signtures; tracks whether SMTP input is fed to DKIM validation */
550 extern uschar *dkim_cur_signer; /* Expansion variable, holds the current "signer" domain or identity during a acl_smtp_dkim run */
551 extern int dkim_key_length; /* Expansion variable, length of signing key in bits */
552 extern void *dkim_signatures; /* Actually a (pdkim_signature *) but most files do not need to know */
553 extern uschar *dkim_signers; /* Expansion variable, holds colon-separated list of domains and identities that have signed a message */
554 extern gstring *dkim_signing_record; /* domains+selectors used */
555 extern uschar *dkim_signing_domain; /* Expansion variable, domain used for signing a message. */
556 extern uschar *dkim_signing_selector; /* Expansion variable, selector used for signing a message. */
557 extern uschar *dkim_verify_hashes; /* Preference order for signatures */
558 extern uschar *dkim_verify_keytypes; /* Preference order for signatures */
559 extern uschar *dkim_verify_min_keysizes; /* list of minimum key sizes, keyed by algo */
560 extern BOOL dkim_verify_minimal; /* Shortcircuit signature verification */
561 extern uschar *dkim_verify_overall; /* First successful domain verified, or null */
562 extern uschar *dkim_verify_signers; /* Colon-separated list of domains for each of which we call the DKIM ACL */
563 extern uschar *dkim_verify_status; /* result for this signature */
564 extern uschar *dkim_verify_reason; /* result for this signature */
567 extern uschar *dmarc_domain_policy; /* Expansion for declared policy of used domain */
568 extern uschar *dmarc_forensic_sender; /* Set sender address for forensic reports */
569 extern uschar *dmarc_history_file; /* Expansion variable, file to store dmarc results */
570 extern uschar *dmarc_status; /* Expansion variable, one word value */
571 extern uschar *dmarc_status_text; /* Expansion variable, human readable value */
572 extern uschar *dmarc_tld_file; /* Mozilla TLDs text file */
573 extern uschar *dmarc_used_domain; /* Expansion variable, domain libopendmarc chose for DMARC policy lookup */
576 extern uschar *dns_again_means_nonexist; /* Domains that are badly set up */
577 extern int dns_csa_search_limit; /* How deep to search for CSA SRV records */
578 extern BOOL dns_csa_use_reverse; /* Check CSA in reverse DNS? (non-standard) */
579 extern int dns_cname_loops; /* Follow CNAMEs returned by resolver to this depth */
580 extern uschar *dns_ipv4_lookup; /* For these domains, don't look for AAAA (or A6) */
582 extern int dns_dane_ok; /* Ok to use DANE when checking TLS authenticity */
584 extern int dns_retrans; /* Retransmission time setting */
585 extern int dns_retry; /* Number of retries */
586 extern int dns_dnssec_ok; /* When constructing DNS query, set DO flag */
587 extern const uschar * dns_rc_names[]; /* Mostly for debug output */
588 extern uschar *dns_trust_aa; /* DNSSEC trust AA as AD */
589 extern int dns_use_edns0; /* Coerce EDNS0 support on/off in resolver. */
590 extern uschar *dnslist_domain; /* DNS (black) list domain */
591 extern uschar *dnslist_matched; /* DNS (black) list matched key */
592 extern uschar *dnslist_text; /* DNS (black) list text message */
593 extern uschar *dnslist_value; /* DNS (black) list IP address */
594 extern tree_node *domainlist_anchor; /* Tree of defined domain lists */
595 extern int domainlist_count; /* Number defined */
597 /* This option is now a no-opt, retained for compatibility */
598 extern BOOL drop_cr; /* For broken local MUAs */
599 extern const uschar *driver_srcfile; /* For debug & errors */
600 extern int driver_srcline; /* For debug & errors */
602 extern unsigned int dtrigger_selector; /* when to start debug */
604 extern uschar *dsn_from; /* From: string for DSNs */
606 extern BOOL envelope_to_remove; /* Remove envelope_to_headers */
607 extern int errno_quota; /* Quota errno in this OS */
608 extern int error_handling; /* Error handling style */
609 extern uschar *errors_copy; /* For taking copies of errors */
610 extern uschar *errors_reply_to; /* Reply-to for error messages */
611 extern int errors_sender_rc; /* Return after message to sender*/
613 #ifndef DISABLE_EVENT
614 extern uschar *event_action; /* expansion for delivery events */
615 extern const uschar *event_data; /* event data */
616 extern int event_defer_errno; /* error number set when a remote delivery is deferred with a host error */
617 extern const uschar *event_name; /* event classification */
620 extern gid_t exim_gid; /* To be used with exim_uid */
621 extern BOOL exim_gid_set; /* TRUE if exim_gid set */
622 extern uschar *exim_path; /* Path to exec exim */
623 extern const uschar *exim_sieve_extension_list[]; /* list of sieve extensions */
624 extern uid_t exim_uid; /* Non-root uid for exim */
625 extern BOOL exim_uid_set; /* TRUE if exim_uid set */
626 extern int expand_level; /* Nesting depth; indent for debug */
627 extern int expand_forbid; /* RDO flags for forbidding things */
628 extern int expand_nlength[]; /* Lengths of numbered strings */
629 extern int expand_nmax; /* Max numerical value */
630 extern const uschar *expand_nstring[]; /* Numbered strings */
631 extern BOOL extract_addresses_remove_arguments; /* Controls -t behaviour */
632 extern uschar *extra_local_interfaces; /* Local, non-listen interfaces */
634 extern int fake_response; /* Fake FAIL or DEFER response to data */
635 extern uschar *fake_response_text; /* User defined message for the above. Default is in globals.c. */
636 extern int filter_n[FILTER_VARIABLE_COUNT]; /* filter variables */
637 extern int filter_sn[FILTER_VARIABLE_COUNT]; /* variables set by system filter */
638 extern int filter_test; /* Filter test type */
639 extern const uschar *filter_test_sfile;/* System filter test file */
640 extern const uschar *filter_test_ufile;/* User filter test file */
641 extern uschar *filter_thisaddress; /* For address looping */
642 extern int finduser_retries; /* Retry count for getpwnam() */
643 extern uid_t fixed_never_users[]; /* Can't be overridden */
644 extern uschar *freeze_tell; /* Message on (some) freezings */
645 extern uschar *freeze_tell_config; /* The configured setting */
646 extern uschar *fudged_queue_times; /* For use in test harness */
648 extern uschar *gecos_name; /* To be expanded when pattern matches */
649 extern uschar *gecos_pattern; /* Pattern to match */
650 extern rewrite_rule *global_rewrite_rules; /* Chain of rewriting rules */
652 extern volatile sig_atomic_t had_command_timeout; /* Alarm sighandler called */
653 extern volatile sig_atomic_t had_command_sigterm; /* TERM sighandler called */
654 extern volatile sig_atomic_t had_data_timeout; /* Alarm sighandler called */
655 extern volatile sig_atomic_t had_data_sigint; /* TERM/INT sighandler called */
656 extern int header_insert_maxlen; /* Max for inserting headers */
657 extern int header_maxsize; /* Max total length for header */
658 extern int header_line_maxsize; /* Max for an individual line */
659 extern header_name header_names[]; /* Table of header names */
660 extern int header_names_size; /* Number of entries */
661 extern uschar *helo_accept_junk_hosts; /* Allowed to use junk arg */
662 extern uschar *helo_allow_chars; /* Rogue chars to allow in HELO/EHLO */
663 extern uschar *helo_lookup_domains; /* If these given, lookup host name */
664 extern uschar *helo_try_verify_hosts; /* Soft check HELO argument for these */
665 extern uschar *helo_verify_hosts; /* Hard check HELO argument for these */
666 extern const uschar *hex_digits; /* Used in several places */
667 extern uschar *hold_domains; /* Hold up deliveries to these */
668 extern uschar *host_data; /* Obtained from lookup in ACL */
669 extern uschar *host_lookup; /* For which IP addresses are always looked up */
670 extern BOOL host_lookup_deferred; /* TRUE if lookup deferred */
671 extern BOOL host_lookup_failed; /* TRUE if lookup failed */
672 extern uschar *host_lookup_order; /* Order of host lookup types */
673 extern uschar *host_lookup_msg; /* Text for why it failed */
674 extern int host_number; /* For sharing spools */
675 extern uschar *host_number_string; /* For expanding */
676 extern uschar *host_reject_connection; /* Reject these hosts */
677 extern uschar *hosts_connection_nolog; /* Limits the logging option */
678 extern uschar *hosts_require_helo; /* check for HELO/EHLO before MAIL */
679 extern uschar *hosts_treat_as_local; /* For routing */
680 #ifdef EXPERIMENTAL_XCLIENT
681 extern uschar *hosts_xclient; /* Allow XCLIENT command for specified hosts */
683 extern tree_node *hostlist_anchor; /* Tree of defined host lists */
684 extern int hostlist_count; /* Number defined */
687 extern int ignore_bounce_errors_after; /* Keep them for this time. */
688 extern BOOL ignore_fromline_local; /* Local SMTP ignore fromline */
689 extern uschar *ignore_fromline_hosts; /* Hosts permitted to send "From " */
690 extern int inetd_wait_timeout; /* Timeout for inetd wait mode */
691 extern uschar *initial_cwd; /* The directory we where in at startup */
692 extern uschar *iterate_item; /* Item from iterate list */
694 extern int journal_fd; /* Fd for journal file */
696 extern uschar *keep_environment; /* Whitelist for environment variables */
697 extern int keep_malformed; /* Time to keep malformed messages */
699 extern uschar *eldap_dn; /* Where LDAP DNs are left */
700 extern const uschar *letter_digit_hyphen_dot; /* Legitimate DNS host name chars */
701 #ifndef DISABLE_ESMTP_LIMITS
702 extern uschar *limits_advertise_hosts; /* for banner/EHLO pipelining */
704 extern int load_average; /* Most recently read load average */
705 extern BOOL local_from_check; /* For adding Sender: (global value) */
706 extern uschar *local_from_prefix; /* Permitted prefixes */
707 extern uschar *local_from_suffix; /* Permitted suffixes */
708 extern uschar *local_interfaces; /* For forcing specific interfaces */
709 #ifdef HAVE_LOCAL_SCAN
710 extern uschar *local_scan_data; /* Text returned by local_scan() */
711 extern optionlist local_scan_options[];/* Option list for local_scan() */
712 extern int local_scan_options_count; /* Size of the list */
713 extern int local_scan_timeout; /* Timeout for local_scan() */
715 extern BOOL local_sender_retain; /* Retain Sender: (with no From: check) */
716 extern gid_t local_user_gid; /* As it says; may be set in routers */
717 extern uid_t local_user_uid; /* As it says; may be set in routers */
718 extern tree_node *localpartlist_anchor;/* Tree of defined localpart lists */
719 extern int localpartlist_count; /* Number defined */
720 extern uschar *log_buffer; /* For constructing log entries */
721 extern int log_default[]; /* Initialization list for log_selector */
722 extern uschar *log_file_path; /* If unset, use default */
723 extern int log_notall[]; /* Log options excluded from +all */
724 extern bit_table log_options[]; /* Table of options */
725 extern int log_options_count; /* Size of table */
726 extern int log_reject_target; /* Target log for ACL rejections */
727 extern unsigned int log_selector[]; /* Bit map of logging options */
728 extern uschar *log_selector_string; /* As supplied in the config */
729 extern FILE *log_stderr; /* Copy of stderr for log use, or NULL */
730 extern BOOL log_timezone; /* TRUE to include the timezone in log lines */
731 extern uschar *login_sender_address; /* The actual sender address */
732 extern lookup_info **lookup_list; /* Array of pointers to available lookups */
733 extern int lookup_list_count; /* Number of entries in the list */
734 extern uschar *lookup_dnssec_authenticated; /* AD status of dns lookup */
735 extern int lookup_open_max; /* Max lookup files to cache */
736 extern uschar *lookup_value; /* Value looked up from file */
738 extern macro_item *macros; /* Configuration macros */
739 extern macro_item *macros_user; /* Non-builtin configuration macros */
740 extern macro_item *mlast; /* Last item in macro list */
741 extern uschar *mailstore_basename; /* For mailstore deliveries */
742 #ifdef WITH_CONTENT_SCAN
743 extern uschar *malware_name; /* Name of virus or malware ("W32/Klez-H") */
745 extern int max_received_linelength;/* What it says */
746 extern int max_username_length; /* For systems with broken getpwnam() */
747 extern int message_age; /* In seconds */
748 extern uschar *message_body; /* Start of message body for filter */
749 extern uschar *message_body_end; /* End of message body for filter */
750 extern BOOL message_body_newlines; /* FALSE => remove newlines */
751 extern int message_body_size; /* Sic */
752 extern int message_body_visible; /* Amount visible in message_body */
753 extern int message_ended; /* State of message reading and how ended */
754 extern uschar *message_headers; /* When built */
755 extern uschar message_id_option[]; /* -E<message-id> for use as option */
756 extern uschar *message_id_external; /* External form of following */
757 extern uschar *message_id_domain; /* Expanded to form domain-part of message_id */
758 extern uschar *message_id_text; /* Expanded to form message_id */
759 extern int message_linecount; /* As it says */
760 extern BOOL message_logs; /* TRUE to write message logs */
761 extern int message_size; /* Size of message */
762 extern uschar *message_size_limit; /* As it says */
764 extern BOOL message_smtputf8; /* Internationalized mail handling */
765 extern int message_utf8_downconvert; /* convert from utf8 */
766 extern const pcre2_code *regex_UTF8; /* For recognizing SMTPUTF8 settings */
768 extern uschar message_subdir[]; /* Subdirectory for messages */
769 extern const uschar *message_reference;/* Reference for error messages */
771 /* MIME ACL expandables */
772 #ifdef WITH_CONTENT_SCAN
773 extern int mime_anomaly_level;
774 extern const uschar *mime_anomaly_text;
775 extern uschar *mime_boundary;
776 extern uschar *mime_charset;
777 extern uschar *mime_content_description;
778 extern uschar *mime_content_disposition;
779 extern uschar *mime_content_id;
780 extern unsigned int mime_content_size;
781 extern uschar *mime_content_transfer_encoding;
782 extern uschar *mime_content_type;
783 extern uschar *mime_decoded_filename;
784 extern uschar *mime_filename;
785 extern int mime_is_multipart;
786 extern int mime_is_coverletter;
787 extern int mime_is_rfc822;
788 extern int mime_part_count;
791 extern BOOL mua_wrapper; /* TRUE when Exim is wrapping an MUA */
793 extern uid_t *never_users; /* List of uids never to be used */
794 extern uschar *notifier_socket; /* Name for daemon notifier unix-socket */
796 extern const int on; /* For setsockopt */
797 extern const int off;
799 extern optionlist optionlist_auths[]; /* These option lists are made */
800 extern int optionlist_auths_size; /* global so that readconf can */
801 extern optionlist optionlist_routers[]; /* see them for printing out */
802 extern int optionlist_routers_size; /* the options. */
803 extern optionlist optionlist_transports[];
804 extern int optionlist_transports_size;
806 extern uid_t original_euid; /* Original effective uid */
807 extern gid_t originator_gid; /* Gid of whoever wrote spool file */
808 extern uschar *originator_login; /* Login of same */
809 extern uschar *originator_name; /* Full name of same */
810 extern uid_t originator_uid; /* Uid of ditto */
811 extern uschar *override_local_interfaces; /* Value of -oX argument */
812 extern const uschar *override_pid_file_path; /* Value of -oP argument */
814 extern BOOL panic_coredump; /* SEGV rather than exit, on LOG_PANIC_DIE */
815 extern pcre2_general_context * pcre_gen_ctx; /* pcre memory management */
816 extern pcre2_compile_context * pcre_gen_cmp_ctx;
817 extern pcre2_match_context * pcre_gen_mtc_ctx;
818 extern pcre2_general_context * pcre_mlc_ctx;
819 extern pcre2_compile_context * pcre_mlc_cmp_ctx;
821 extern uschar *percent_hack_domains; /* Local domains for which '% operates */
822 extern const uschar *pid_file_path; /* For writing daemon pids */
823 #ifndef DISABLE_PIPE_CONNECT
824 extern uschar *pipe_connect_advertise_hosts; /* for banner/EHLO pipelining */
826 extern uschar *pipelining_advertise_hosts; /* As it says */
828 extern BOOL prdr_enable; /* As it says */
829 extern BOOL prdr_requested; /* Connecting mail server wants PRDR */
831 extern BOOL preserve_message_logs; /* Save msglog files */
832 extern uschar *primary_hostname; /* Primary name of this computer */
833 extern BOOL print_topbitchars; /* Topbit chars are printing chars */
834 extern uschar *process_info; /* For SIGUSR1 output */
835 extern int process_info_len;
836 extern uschar *process_log_path; /* Alternate path */
837 extern const uschar *process_purpose; /* for debug output */
838 extern BOOL prod_requires_admin; /* TRUE if prodding requires admin */
840 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS) || defined(EXPERIMENTAL_XCLIENT)
841 extern uschar *hosts_proxy; /* Hostlist which (require) use proxy protocol */
842 extern uschar *proxy_external_address; /* IP of remote interface of proxy */
843 extern int proxy_external_port; /* Port on remote interface of proxy */
844 extern uschar *proxy_local_address; /* IP of local interface of proxy */
845 extern int proxy_local_port; /* Port on local interface of proxy */
846 extern int proxy_protocol_timeout; /* Timeout for proxy negotiation */
847 extern BOOL proxy_session; /* TRUE if receiving mail from valid proxy
848 or sending via one */
851 extern uschar *prvscheck_address; /* Set during prvscheck expansion item */
852 extern uschar *prvscheck_keynum; /* Set during prvscheck expansion item */
853 extern uschar *prvscheck_result; /* Set during prvscheck expansion item */
855 extern qrunner *qrunners; /* tracking data for queues */
857 extern const uschar *qualify_domain_recipient; /* Domain to qualify recipients with */
858 extern uschar *qualify_domain_sender; /* Domain to qualify senders with */
859 extern uschar *queue_domains; /* Queue these domains */
860 #ifndef DISABLE_QUEUE_RAMP
861 extern BOOL queue_fast_ramp; /* 2-phase queue-run overlap */
863 extern BOOL queue_list_requires_admin; /* TRUE if -bp requires admin */
864 /* immediate children */
865 extern pid_t queue_run_pid; /* PID of the queue running process or 0 */
866 extern int queue_run_pipe; /* Pipe for synchronizing */
867 extern int queue_interval; /* Queue running interval */
868 extern uschar *queue_name; /* Name of queue, if nondefault spooling */
869 extern uschar *queue_name_dest; /* Destination queue, for moving messages */
870 extern BOOL queue_only; /* TRUE to disable immediate delivery */
871 extern int queue_only_load; /* Max load before auto-queue */
872 extern BOOL queue_only_load_latch; /* Latch queue_only_load TRUE */
873 extern uschar *queue_only_file; /* Queue if file exists/not-exists */
874 extern BOOL queue_only_override; /* Allow override from command line */
875 extern BOOL queue_run_in_order; /* As opposed to random */
876 extern uschar *queue_run_max; /* Max queue runners */
877 extern unsigned queue_size; /* items in queue */
878 extern time_t queue_size_next; /* next time to evaluate queue_size */
879 extern uschar *queue_smtp_domains; /* Ditto, for these domains */
881 extern unsigned int random_seed; /* Seed for random numbers */
882 extern tree_node *ratelimiters_cmd; /* Results of command ratelimit checks */
883 extern tree_node *ratelimiters_conn; /* Results of connection ratelimit checks */
884 extern tree_node *ratelimiters_mail; /* Results of per-mail ratelimit checks */
885 extern uschar *raw_active_hostname; /* Pre-expansion */
886 extern const uschar *raw_sender; /* Before rewriting */
887 extern const uschar **raw_recipients; /* Before rewriting */
888 extern int raw_recipients_count;
889 extern const uschar * rc_names[]; /* Mostly for debug output */
890 extern int rcpt_count; /* Count of RCPT commands in a message */
891 extern int rcpt_fail_count; /* Those that got 5xx */
892 extern int rcpt_defer_count; /* Those that got 4xx */
893 extern gid_t real_gid; /* Real gid */
894 extern uid_t real_uid; /* Real user running program */
895 extern int receive_linecount; /* Mainly for BSMTP errors */
896 extern int receive_messagecount; /* Mainly for BSMTP errors */
897 extern int receive_timeout; /* For non-SMTP acceptance */
898 extern int received_count; /* Count of Received: headers */
899 extern const uschar *received_for; /* For "for" field */
900 extern uschar *received_header_text; /* Definition of Received: header */
901 extern int received_headers_max; /* Max count of Received: headers */
902 extern struct timeval received_time; /* Time the message started to be received */
903 extern struct timeval received_time_complete; /* Time the message completed reception */
904 extern uschar *recipient_data; /* lookup data for recipients */
905 extern uschar *recipient_unqualified_hosts; /* Permitted unqualified recipients */
906 extern uschar *recipient_verify_failure; /* What went wrong */
907 extern int recipients_list_max; /* Maximum number fitting in list */
908 extern uschar *recipients_max; /* Max permitted */
909 extern int recipients_max_expanded;
910 extern BOOL recipients_max_reject; /* If TRUE, reject whole message */
911 extern const pcre2_code *regex_AUTH; /* For recognizing AUTH settings */
912 extern const pcre2_code *regex_check_dns_names; /* For DNS name checking */
913 extern const pcre2_code *regex_From; /* For recognizing "From_" lines */
914 extern const pcre2_code *regex_CHUNKING; /* For recognizing CHUNKING (RFC 3030) */
915 extern const pcre2_code *regex_IGNOREQUOTA; /* For recognizing IGNOREQUOTA (LMTP) */
916 #ifndef DISABLE_ESMTP_LIMITS
917 extern const pcre2_code *regex_LIMITS; /* For recognizing LIMITS */
919 extern const pcre2_code *regex_PIPELINING; /* For recognizing PIPELINING */
920 extern const pcre2_code *regex_SIZE; /* For recognizing SIZE settings */
921 #ifndef DISABLE_PIPE_CONNECT
922 extern const pcre2_code *regex_EARLY_PIPE; /* For recognizing PIPE_CONNCT */
924 extern int regex_cachesize; /* number of entries */
925 extern const pcre2_code *regex_ismsgid; /* Compiled r.e. for message ID */
926 extern const pcre2_code *regex_smtp_code; /* For recognizing SMTP codes */
927 #ifdef WHITELIST_D_MACROS
928 extern const pcre2_code *regex_whitelisted_macro; /* For -D macro values */
930 #ifdef WITH_CONTENT_SCAN
931 extern uschar *regex_match_string; /* regex that matched a line (regex ACL condition) */
932 extern const uschar *regex_vars[];
934 extern int remote_delivery_count; /* Number of remote addresses */
935 extern int remote_max_parallel; /* Maximum parallel delivery */
936 extern uschar *remote_sort_domains; /* Remote domain sorting order */
937 extern retry_config *retries; /* Chain of retry config information */
938 extern int retry_data_expire; /* When to expire retry data */
939 extern int retry_interval_max; /* Absolute maximum */
940 extern int retry_maximum_timeout; /* The maximum timeout */
941 extern const uschar *return_path; /* Return path for a message */
942 extern BOOL return_path_remove; /* Remove return-path headers */
943 extern int rewrite_existflags; /* Indicate which headers have rewrites */
944 extern uschar *rfc1413_hosts; /* RFC hosts */
945 extern int rfc1413_query_timeout; /* Timeout on RFC 1413 calls */
946 /* extern BOOL rfc821_domains; */ /* If set, syntax is 821, not 822 => being abolished */
947 extern uid_t root_gid; /* The gid for root */
948 extern uid_t root_uid; /* The uid for root */
949 extern router_info routers_available[];/* Vector of available routers */
950 extern router_instance *routers; /* Chain of instantiated routers */
951 extern router_instance router_defaults;/* Default values */
952 extern const uschar *router_name; /* Name of router last started */
953 extern tree_node *router_var; /* Variables set by router */
954 extern ip_address_item *running_interfaces; /* Host's running interfaces */
955 extern uschar *running_status; /* Flag string for testing */
956 extern int runrc; /* rc from ${run} */
958 extern uschar *search_error_message; /* Details of lookup problem */
959 extern uschar *self_hostname; /* Self host after routing->directors */
960 extern unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32]; /* Cache bits for sender */
961 extern uschar *sender_address_data; /* address_data from sender verify */
962 extern const uschar *sender_address_unrewritten; /* Set if rewritten by verify */
963 extern uschar *sender_data; /* lookup result for senders */
964 extern unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32]; /* Cache bits for sender domain */
965 extern uschar *sender_fullhost; /* Sender host name + address */
966 extern BOOL sender_helo_dnssec; /* True if HELO verify used DNS and was DNSSEC */
967 extern uschar *sender_helo_name; /* Host name from HELO/EHLO */
968 extern uschar **sender_host_aliases; /* Points to list of alias names */
969 extern uschar *sender_host_auth_pubname; /* Public-name of authentication method */
970 extern unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32]; /* Cache bits for incoming host */
971 extern BOOL sender_host_dnssec; /* true if sender_host_name verified in DNSSEC */
972 extern uschar *sender_ident; /* Sender identity via RFC 1413 */
973 extern uschar *sender_rate; /* Sender rate computed by ACL */
974 extern uschar *sender_rate_limit; /* Configured rate limit */
975 extern uschar *sender_rate_period; /* Configured smoothing period */
976 extern uschar *sender_rcvhost; /* Host data for Received: */
977 extern uschar *sender_unqualified_hosts; /* Permitted unqualified senders */
978 extern uschar *sender_verify_failure; /* What went wrong */
979 extern address_item *sender_verified_list; /* Saved chain of sender verifies */
980 extern address_item *sender_verified_failed; /* The one that caused denial */
981 extern uschar *sending_ip_address; /* Address of outgoing (SMTP) interface */
982 extern int sending_port; /* Port of outgoing interface */
983 extern SIGNAL_BOOL sigalrm_seen; /* Flag for sigalrm_handler */
984 extern const uschar *sigalarm_setter; /* For debug, set to callpoint of alarm() */
985 extern const uschar **sighup_argv; /* Args for re-execing after SIGHUP */
986 extern int slow_lookup_log; /* Log DNS lookups taking longer than N millisecs */
987 extern int smtp_accept_count; /* Count of connections */
988 extern BOOL smtp_accept_keepalive; /* Set keepalive on incoming */
989 extern int smtp_accept_max; /* Max SMTP connections */
990 extern int smtp_accept_max_nonmail;/* Max non-mail commands in one con */
991 extern uschar *smtp_accept_max_nonmail_hosts; /* Limit non-mail cmds from these hosts */
992 extern uschar *smtp_accept_max_per_connection; /* Max msgs per connection */
993 extern uschar *smtp_accept_max_per_host; /* Max SMTP cons from one IP addr */
994 extern int smtp_accept_queue; /* Queue after so many connections */
995 extern int smtp_accept_queue_per_connection; /* Queue after so many msgs */
996 extern int smtp_accept_reserve; /* Reserve these SMTP connections */
997 extern uschar *smtp_active_hostname; /* Hostname for this message */
998 extern int smtp_backlog_monitor; /* listen backlog level to log */
999 extern uschar *smtp_banner; /* Banner string (to be expanded) */
1000 extern BOOL smtp_check_spool_space; /* TRUE to check SMTP SIZE value */
1001 extern int smtp_ch_index; /* Index in smtp_connection_had */
1002 extern uschar *smtp_cmd_argument; /* For all SMTP commands */
1003 extern uschar *smtp_cmd_buffer; /* SMTP command buffer */
1004 extern struct timeval smtp_connection_start; /* Start time of SMTP connection */
1005 extern uschar smtp_connection_had[]; /* Recent SMTP commands */
1006 extern int smtp_connect_backlog; /* Max backlog permitted */
1007 extern double smtp_delay_mail; /* Current MAIL delay */
1008 extern double smtp_delay_rcpt; /* Current RCPT delay */
1009 extern BOOL smtp_enforce_sync; /* Enforce sync rules */
1010 extern uschar *smtp_etrn_command; /* Command to run */
1011 extern BOOL smtp_etrn_serialize; /* Only one at once */
1012 extern FILE *smtp_in; /* Incoming SMTP input file */
1013 extern int smtp_listen_backlog; /* Current listener socket backlog, if monitored */
1014 extern int smtp_load_reserve; /* Only from reserved if load > this */
1015 extern int smtp_mailcmd_count; /* Count of MAIL commands */
1016 extern int smtp_mailcmd_max; /* Limit for MAIL commands */
1017 extern int smtp_max_synprot_errors;/* Max syntax/protocol errors */
1018 extern int smtp_max_unknown_commands; /* As it says */
1019 extern uschar *smtp_names[]; /* decode for command codes */
1020 extern uschar *smtp_notquit_reason; /* Global for disconnect reason */
1021 extern FILE *smtp_out; /* Incoming SMTP output file */
1022 extern uschar *smtp_ratelimit_hosts; /* Rate limit these hosts */
1023 extern uschar *smtp_ratelimit_mail; /* Parameters for MAIL limiting */
1024 extern uschar *smtp_ratelimit_rcpt; /* Parameters for RCPT limiting */
1025 extern uschar *smtp_read_error; /* Message for SMTP input error */
1026 extern int smtp_receive_timeout; /* Applies to each received line */
1027 extern uschar *smtp_receive_timeout_s; /* ... expandable version */
1028 extern uschar *smtp_reserve_hosts; /* Hosts for reserved slots */
1029 extern BOOL smtp_return_error_details; /* TRUE to return full info */
1030 extern int smtp_rlm_base; /* Base interval for MAIL rate limit */
1031 extern double smtp_rlm_factor; /* Factor for MAIL rate limit */
1032 extern int smtp_rlm_limit; /* Max delay */
1033 extern int smtp_rlm_threshold; /* Threshold for RCPT rate limit */
1034 extern int smtp_rlr_base; /* Base interval for RCPT rate limit */
1035 extern double smtp_rlr_factor; /* Factor for RCPT rate limit */
1036 extern int smtp_rlr_limit; /* Max delay */
1037 extern int smtp_rlr_threshold; /* Threshold for RCPT rate limit */
1038 extern unsigned smtp_peer_options; /* Global flags for passed connections */
1039 extern unsigned smtp_peer_options_wrap; /* stacked version hidden by TLS */
1041 extern uschar *smtputf8_advertise_hosts; /* ingress control */
1044 #ifdef WITH_CONTENT_SCAN
1045 extern uschar *spamd_address; /* address for the spamassassin daemon */
1046 extern uschar *spam_bar; /* the spam "bar" (textual representation of spam_score) */
1047 extern uschar *spam_report; /* the spamd report (multiline) */
1048 extern uschar *spam_action; /* the spamd recommended-action */
1049 extern uschar *spam_score; /* the spam score (float) */
1050 extern uschar *spam_score_int; /* spam_score * 10 (int) */
1053 extern uschar *spf_guess; /* spf best-guess record */
1054 extern uschar *spf_header_comment; /* spf header comment */
1055 extern uschar *spf_received; /* Received-SPF: header */
1056 extern uschar *spf_result; /* spf result in string form */
1057 extern BOOL spf_result_guessed; /* spf result is of best-guess operation */
1058 extern uschar *spf_smtp_comment; /* spf comment to include in SMTP reply */
1059 extern uschar *spf_smtp_comment_template;
1060 /* template to construct the spf comment by libspf2 */
1062 extern BOOL split_spool_directory; /* TRUE to use multiple subdirs */
1063 extern FILE *spool_data_file; /* handle for -D file */
1064 extern uschar *spool_directory; /* Name of spool directory */
1065 extern BOOL spool_wireformat; /* can write wireformat -D files */
1067 extern uschar *srs_recipient; /* SRS recipient */
1069 extern BOOL strict_acl_vars; /* ACL variables have to be set before being used */
1070 extern int string_datestamp_offset;/* After insertion by string_format */
1071 extern int string_datestamp_length;/* After insertion by string_format */
1072 extern int string_datestamp_type; /* After insertion by string_format */
1073 extern BOOL strip_excess_angle_brackets; /* Surrounding route-addrs */
1074 extern BOOL strip_trailing_dot; /* Remove dots at ends of domains */
1075 extern const uschar *submission_domain;/* Domain for submission mode */
1076 extern const uschar *submission_name; /* User name set from ACL */
1077 extern BOOL syslog_duplication; /* FALSE => no duplicate logging */
1078 extern int syslog_facility; /* As defined by Syslog.h */
1079 extern BOOL syslog_pid; /* TRUE if PID on syslogs */
1080 extern const uschar *syslog_processname; /* 'ident' param to openlog() */
1081 extern BOOL syslog_timestamp; /* TRUE if time on syslogs */
1082 extern uschar *system_filter; /* Name of system filter file */
1084 extern uschar *system_filter_directory_transport; /* Transports for the */
1085 extern uschar *system_filter_file_transport; /* system filter */
1086 extern uschar *system_filter_pipe_transport;
1087 extern uschar *system_filter_reply_transport;
1089 extern gid_t system_filter_gid; /* Gid for running system filter */
1090 extern BOOL system_filter_gid_set; /* TRUE if gid set */
1091 extern uid_t system_filter_uid; /* Uid for running system filter */
1092 extern BOOL system_filter_uid_set; /* TRUE if uid set */
1094 extern blob tcp_fastopen_nodata; /* for zero-data TFO connect requests */
1095 extern BOOL tcp_nodelay; /* Controls TCP_NODELAY on daemon */
1096 extern tfo_state_t tcp_out_fastopen; /* TCP fast open */
1097 #ifdef USE_TCP_WRAPPERS
1098 extern uschar *tcp_wrappers_daemon_name; /* tcpwrappers daemon lookup name */
1100 extern int test_harness_load_avg; /* For use when testing */
1101 extern int thismessage_size_limit; /* Limit for this message */
1102 extern int timeout_frozen_after; /* Max time to keep frozen messages */
1103 #ifdef MEASURE_TIMING
1104 extern struct timeval timestamp_startup; /* For development measurements */
1107 extern const uschar *transport_name; /* Name of transport last started */
1108 extern int transport_count; /* Count of bytes transported */
1109 extern int transport_newlines; /* Accurate count of number of newline chars transported */
1110 extern const uschar **transport_filter_argv; /* For on-the-fly filtering */
1111 extern int transport_filter_timeout; /* Timeout for same */
1113 extern transport_info transports_available[]; /* Vector of available transports */
1114 extern transport_instance *transports; /* Chain of instantiated transports */
1115 extern transport_instance transport_defaults; /* Default values */
1117 extern int transport_write_timeout;/* Set to time out individual writes */
1119 extern tree_node *tree_dns_fails; /* Tree of DNS lookup failures */
1120 extern tree_node *tree_duplicates; /* Tree of duplicate addresses */
1121 extern tree_node *tree_nonrecipients; /* Tree of nonrecipient addresses */
1122 extern tree_node *tree_unusable; /* Tree of unusable addresses */
1124 extern gid_t *trusted_groups; /* List of trusted groups */
1125 extern uid_t *trusted_users; /* List of trusted users */
1126 extern uschar *timezone_string; /* Required timezone setting */
1128 extern uschar *unknown_login; /* To use when login id unknown */
1129 extern uschar *unknown_username; /* Ditto */
1130 extern uschar *untrusted_set_sender; /* Let untrusted users set these senders */
1131 extern uschar *uucp_from_pattern; /* For recognizing "From " lines */
1132 extern uschar *uucp_from_sender; /* For building the sender */
1134 extern uschar *warn_message_file; /* Template for warning messages */
1135 extern const uschar *warnmsg_delay; /* String form of delay time */
1136 extern const uschar *warnmsg_recipients; /* Recipients of warning message */
1137 extern BOOL write_rejectlog; /* Control of reject logging */
1139 extern uschar *verify_mode; /* Running a router in verify mode */
1140 extern uschar *version_copyright; /* Copyright notice */
1141 extern uschar *version_date; /* Date of compilation */
1142 extern uschar *version_cnumber; /* Compile number */
1143 extern uschar *version_string; /* Version string */
1145 extern int warning_count; /* Delay warnings sent for this msg */
1147 #ifndef DISABLE_WELLKNOWN
1148 extern uschar *wellknown_advertise_hosts;/* Allow WELLKNOWN command for specified hosts */
1149 extern uschar *wellknown_response; /* SMTP response for WELLKNOWN verb */
1152 /* End of globals.h */