DKIM: dkim_verify_min_keysizes option
[exim.git] / src / src / globals.c
1 /*************************************************
2 *     Exim - an Internet mail transport agent    *
3 *************************************************/
4
5 /* Copyright (c) University of Cambridge 1995 - 2018 */
6 /* See the file NOTICE for conditions of use and distribution. */
7
8 /* All the global variables are defined together in this one module, so
9 that they are easy to find. */
10
11 #include "exim.h"
12
13
14 /* Generic options for auths, all of which live inside auth_instance
15 data blocks and hence have the opt_public flag set. */
16
17 optionlist optionlist_auths[] = {
18   { "client_condition", opt_stringptr | opt_public,
19                  OPT_OFF(auth_instance, client_condition) },
20   { "client_set_id", opt_stringptr | opt_public,
21                  OPT_OFF(auth_instance, set_client_id) },
22   { "driver",        opt_stringptr | opt_public,
23                  OPT_OFF(auth_instance, driver_name) },
24   { "public_name",   opt_stringptr | opt_public,
25                  OPT_OFF(auth_instance, public_name) },
26   { "server_advertise_condition", opt_stringptr | opt_public,
27                  OPT_OFF(auth_instance, advertise_condition)},
28   { "server_condition", opt_stringptr | opt_public,
29                  OPT_OFF(auth_instance, server_condition) },
30   { "server_debug_print", opt_stringptr | opt_public,
31                  OPT_OFF(auth_instance, server_debug_string) },
32   { "server_mail_auth_condition", opt_stringptr | opt_public,
33                  OPT_OFF(auth_instance, mail_auth_condition) },
34   { "server_set_id", opt_stringptr | opt_public,
35                  OPT_OFF(auth_instance, set_id) }
36 };
37
38 int     optionlist_auths_size = nelem(optionlist_auths);
39
40 /* An empty host aliases list. */
41
42 uschar *no_aliases             = NULL;
43
44
45 /* For comments on these variables, see globals.h. I'm too idle to
46 duplicate them here... */
47
48 #ifdef EXIM_PERL
49 uschar *opt_perl_startup       = NULL;
50 BOOL    opt_perl_at_start      = FALSE;
51 BOOL    opt_perl_started       = FALSE;
52 BOOL    opt_perl_taintmode     = FALSE;
53 #endif
54
55 #ifdef EXPAND_DLFUNC
56 tree_node *dlobj_anchor        = NULL;
57 #endif
58
59 #ifdef LOOKUP_IBASE
60 uschar *ibase_servers          = NULL;
61 #endif
62
63 #ifdef LOOKUP_LDAP
64 uschar *eldap_ca_cert_dir      = NULL;
65 uschar *eldap_ca_cert_file     = NULL;
66 uschar *eldap_cert_file        = NULL;
67 uschar *eldap_cert_key         = NULL;
68 uschar *eldap_cipher_suite     = NULL;
69 uschar *eldap_default_servers  = NULL;
70 uschar *eldap_require_cert     = NULL;
71 int     eldap_version          = -1;
72 BOOL    eldap_start_tls        = FALSE;
73 #endif
74
75 #ifdef LOOKUP_MYSQL
76 uschar *mysql_servers          = NULL;
77 #endif
78
79 #ifdef LOOKUP_ORACLE
80 uschar *oracle_servers         = NULL;
81 #endif
82
83 #ifdef LOOKUP_PGSQL
84 uschar *pgsql_servers          = NULL;
85 #endif
86
87 #ifdef LOOKUP_REDIS
88 uschar *redis_servers          = NULL;
89 #endif
90
91 #ifdef LOOKUP_SQLITE
92 uschar *sqlite_dbfile          = NULL;
93 int     sqlite_lock_timeout    = 5;
94 #endif
95
96 #ifdef SUPPORT_MOVE_FROZEN_MESSAGES
97 BOOL    move_frozen_messages   = FALSE;
98 #endif
99
100 /* These variables are outside the #ifdef because it keeps the code less
101 cluttered in several places (e.g. during logging) if we can always refer to
102 them. Also, the tls_ variables are now always visible.  Note that these are
103 only used for smtp connections, not for service-daemon access. */
104
105 tls_support tls_in = {
106  .active =              {.sock = -1}
107  /* all other elements zero */
108 };
109 tls_support tls_out = {
110  .active =              {.sock = -1},
111  /* all other elements zero */
112 };
113
114 uschar *dsn_envid              = NULL;
115 int     dsn_ret                = 0;
116 const pcre  *regex_DSN         = NULL;
117 uschar *dsn_advertise_hosts    = NULL;
118
119 #ifndef DISABLE_TLS
120 BOOL    gnutls_compat_mode     = FALSE;
121 BOOL    gnutls_allow_auto_pkcs11 = FALSE;
122 uschar *openssl_options        = NULL;
123 const pcre *regex_STARTTLS     = NULL;
124 uschar *tls_advertise_hosts    = US"*";
125 uschar *tls_certificate        = NULL;
126 uschar *tls_crl                = NULL;
127 /* This default matches NSS DH_MAX_P_BITS value at current time (2012), because
128 that's the interop problem which has been observed: GnuTLS suggesting a higher
129 bit-count as "NORMAL" (2432) and Thunderbird dropping connection. */
130 int     tls_dh_max_bits        = 2236;
131 uschar *tls_dhparam            = NULL;
132 uschar *tls_eccurve            = US"auto";
133 # ifndef DISABLE_OCSP
134 uschar *tls_ocsp_file          = NULL;
135 # endif
136 uschar *tls_privatekey         = NULL;
137 BOOL    tls_remember_esmtp     = FALSE;
138 uschar *tls_require_ciphers    = NULL;
139 # ifdef EXPERIMENTAL_TLS_RESUME
140 uschar *tls_resumption_hosts   = NULL;
141 # endif
142 uschar *tls_try_verify_hosts   = NULL;
143 uschar *tls_verify_certificates= US"system";
144 uschar *tls_verify_hosts       = NULL;
145 #else   /*DISABLE_TLS*/
146 uschar *tls_advertise_hosts    = NULL;
147 #endif
148
149 #ifndef DISABLE_PRDR
150 /* Per Recipient Data Response variables */
151 BOOL    prdr_enable            = FALSE;
152 BOOL    prdr_requested         = FALSE;
153 const pcre *regex_PRDR         = NULL;
154 #endif
155
156 #ifdef SUPPORT_I18N
157 const pcre *regex_UTF8         = NULL;
158 #endif
159
160 /* Input-reading functions for messages, so we can use special ones for
161 incoming TCP/IP. The defaults use stdin. We never need these for any
162 stand-alone tests. */
163
164 #if !defined(STAND_ALONE) && !defined(MACRO_PREDEF)
165 int (*lwr_receive_getc)(unsigned) = stdin_getc;
166 uschar * (*lwr_receive_getbuf)(unsigned *) = NULL;
167 int (*lwr_receive_ungetc)(int) = stdin_ungetc;
168 int (*receive_getc)(unsigned)  = stdin_getc;
169 uschar * (*receive_getbuf)(unsigned *)  = NULL;
170 void (*receive_get_cache)(void)= NULL;
171 int (*receive_ungetc)(int)     = stdin_ungetc;
172 int (*receive_feof)(void)      = stdin_feof;
173 int (*receive_ferror)(void)    = stdin_ferror;
174 BOOL (*receive_smtp_buffered)(void) = NULL;   /* Only used for SMTP */
175 #endif
176
177
178 /* List of per-address expansion variables for clearing and saving/restoring
179 when verifying one address while routing/verifying another. We have to have
180 the size explicit, because it is referenced from more than one module. */
181
182 const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT] = {
183   CUSS &deliver_address_data,
184   CUSS &deliver_domain,
185   CUSS &deliver_domain_data,
186   CUSS &deliver_domain_orig,
187   CUSS &deliver_domain_parent,
188   CUSS &deliver_localpart,
189   CUSS &deliver_localpart_data,
190   CUSS &deliver_localpart_orig,
191   CUSS &deliver_localpart_parent,
192   CUSS &deliver_localpart_prefix,
193   CUSS &deliver_localpart_suffix,
194   CUSS (uschar **)(&deliver_recipients),
195   CUSS &deliver_host,
196   CUSS &deliver_home,
197   CUSS &address_file,
198   CUSS &address_pipe,
199   CUSS &self_hostname,
200   NULL };
201
202 int address_expansions_count = sizeof(address_expansions)/sizeof(uschar **);
203
204 /******************************************************************************/
205 /* General global variables.  Boolean flags are done as a group
206 so that only one bit each is needed, packed, for all those we never
207 need to take a pointer - and only a char for the rest.
208 This means a struct, unfortunately since it clutters the sourcecode. */
209
210 struct global_flags f =
211 {
212         .acl_temp_details       = FALSE,
213         .active_local_from_check = FALSE,
214         .active_local_sender_retain = FALSE,
215         .address_test_mode      = FALSE,
216         .admin_user             = FALSE,
217         .allow_auth_unadvertised= FALSE,
218         .allow_unqualified_recipient = TRUE,    /* For local messages */
219         .allow_unqualified_sender = TRUE,       /* Reset for SMTP */
220         .authentication_local   = FALSE,
221
222         .background_daemon      = TRUE,
223
224         .chunking_offered       = FALSE,
225         .config_changed         = FALSE,
226         .continue_more          = FALSE,
227
228         .daemon_listen          = FALSE,
229         .debug_daemon           = FALSE,
230         .deliver_firsttime      = FALSE,
231         .deliver_force          = FALSE,
232         .deliver_freeze         = FALSE,
233         .deliver_force_thaw     = FALSE,
234         .deliver_manual_thaw    = FALSE,
235         .deliver_selectstring_regex = FALSE,
236         .deliver_selectstring_sender_regex = FALSE,
237         .disable_callout_flush  = FALSE,
238         .disable_delay_flush    = FALSE,
239         .disable_logging        = FALSE,
240 #ifndef DISABLE_DKIM
241         .dkim_disable_verify      = FALSE,
242         .dkim_init_done           = FALSE,
243 #endif
244 #ifdef SUPPORT_DMARC
245         .dmarc_has_been_checked  = FALSE,
246         .dmarc_disable_verify    = FALSE,
247         .dmarc_enable_forensic   = FALSE,
248 #endif
249         .dont_deliver           = FALSE,
250         .dot_ends               = TRUE,
251
252         .enable_dollar_recipients = FALSE,
253         .expand_string_forcedfail = FALSE,
254
255         .filter_running         = FALSE,
256
257         .header_rewritten       = FALSE,
258         .helo_verified          = FALSE,
259         .helo_verify_failed     = FALSE,
260         .host_checking_callout  = FALSE,
261         .host_find_failed_syntax= FALSE,
262
263         .inetd_wait_mode        = FALSE,
264         .is_inetd               = FALSE,
265
266         .local_error_message    = FALSE,
267         .log_testing_mode       = FALSE,
268
269 #ifdef WITH_CONTENT_SCAN
270         .no_mbox_unspool        = FALSE,
271 #endif
272         .no_multiline_responses = FALSE,
273
274         .parse_allow_group      = FALSE,
275         .parse_found_group      = FALSE,
276         .pipelining_enable      = TRUE,
277 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
278         .proxy_session_failed   = FALSE,
279 #endif
280
281         .queue_2stage           = FALSE,
282         .queue_only_policy      = FALSE,
283         .queue_run_first_delivery = FALSE,
284         .queue_run_force        = FALSE,
285         .queue_run_local        = FALSE,
286         .queue_running          = FALSE,
287         .queue_smtp             = FALSE,
288
289         .really_exim            = TRUE,
290         .receive_call_bombout   = FALSE,
291         .recipients_discarded   = FALSE,
292         .running_in_test_harness = FALSE,
293
294         .search_find_defer      = FALSE,
295         .sender_address_forced  = FALSE,
296         .sender_host_notsocket  = FALSE,
297         .sender_host_unknown    = FALSE,
298         .sender_local           = FALSE,
299         .sender_name_forced     = FALSE,
300         .sender_set_untrusted   = FALSE,
301         .smtp_authenticated     = FALSE,
302 #ifndef DISABLE_PIPE_CONNECT
303         .smtp_in_early_pipe_advertised = FALSE,
304         .smtp_in_early_pipe_no_auth = FALSE,
305         .smtp_in_early_pipe_used = FALSE,
306 #endif
307         .smtp_in_pipelining_advertised = FALSE,
308         .smtp_in_pipelining_used = FALSE,
309         .spool_file_wireformat  = FALSE,
310         .submission_mode        = FALSE,
311         .suppress_local_fixups  = FALSE,
312         .suppress_local_fixups_default = FALSE,
313         .synchronous_delivery   = FALSE,
314         .system_filtering       = FALSE,
315
316         .taint_check_slow       = FALSE,
317         .testsuite_delays       = TRUE,
318         .tcp_fastopen_ok        = FALSE,
319         .tcp_in_fastopen        = FALSE,
320         .tcp_in_fastopen_data   = FALSE,
321         .tcp_in_fastopen_logged = FALSE,
322         .tcp_out_fastopen_logged= FALSE,
323         .timestamps_utc         = FALSE,
324         .transport_filter_timed_out = FALSE,
325         .trusted_caller         = FALSE,
326         .trusted_config         = TRUE,
327 };
328
329 /******************************************************************************/
330 /* These are the flags which are either variables or mainsection options,
331 so an address is needed for access, or are exported to local_scan. */
332
333 BOOL    accept_8bitmime        = TRUE; /* deliberately not RFC compliant */
334 BOOL    allow_domain_literals  = FALSE;
335 BOOL    allow_mx_to_ip         = FALSE;
336 BOOL    allow_utf8_domains     = FALSE;
337 BOOL    authentication_failed  = FALSE;
338
339 BOOL    bounce_return_body     = TRUE;
340 BOOL    bounce_return_message  = TRUE;
341 BOOL    check_rfc2047_length   = TRUE;
342 BOOL    commandline_checks_require_admin = FALSE;
343
344 #ifdef EXPERIMENTAL_DCC
345 BOOL    dcc_direct_add_header  = FALSE;
346 #endif
347 BOOL    debug_store            = FALSE;
348 BOOL    delivery_date_remove   = TRUE;
349 BOOL    deliver_drop_privilege = FALSE;
350 #ifdef ENABLE_DISABLE_FSYNC
351 BOOL    disable_fsync          = FALSE;
352 #endif
353 BOOL    disable_ipv6           = FALSE;
354 BOOL    dns_csa_use_reverse    = TRUE;
355 BOOL    drop_cr                = FALSE;         /* No longer used */
356
357 BOOL    envelope_to_remove     = TRUE;
358 BOOL    exim_gid_set           = TRUE;          /* This gid is always set */
359 BOOL    exim_uid_set           = TRUE;          /* This uid is always set */
360 BOOL    extract_addresses_remove_arguments = TRUE;
361
362 BOOL    host_checking          = FALSE;
363 BOOL    host_lookup_deferred   = FALSE;
364 BOOL    host_lookup_failed     = FALSE;
365 BOOL    ignore_fromline_local  = FALSE;
366
367 BOOL    local_from_check       = TRUE;
368 BOOL    local_sender_retain    = FALSE;
369 BOOL    log_timezone           = FALSE;
370 BOOL    message_body_newlines  = FALSE;
371 BOOL    message_logs           = TRUE;
372 #ifdef SUPPORT_I18N
373 BOOL    message_smtputf8       = FALSE;
374 #endif
375 BOOL    mua_wrapper            = FALSE;
376
377 BOOL    preserve_message_logs  = FALSE;
378 BOOL    print_topbitchars      = FALSE;
379 BOOL    prod_requires_admin    = TRUE;
380 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
381 BOOL    proxy_session          = FALSE;
382 #endif
383
384 #ifdef EXPERIMENTAL_QUEUE_RAMP
385 BOOL    queue_fast_ramp         = FALSE;
386 #endif
387 BOOL    queue_list_requires_admin = TRUE;
388 BOOL    queue_only             = FALSE;
389 BOOL    queue_only_load_latch  = TRUE;
390 BOOL    queue_only_override    = TRUE;
391 BOOL    queue_run_in_order     = FALSE;
392 BOOL    recipients_max_reject  = FALSE;
393 BOOL    return_path_remove     = TRUE;
394
395 BOOL    smtp_batched_input     = FALSE;
396 BOOL    sender_helo_dnssec     = FALSE;
397 BOOL    sender_host_dnssec     = FALSE;
398 BOOL    smtp_accept_keepalive  = TRUE;
399 BOOL    smtp_check_spool_space = TRUE;
400 BOOL    smtp_enforce_sync      = TRUE;
401 BOOL    smtp_etrn_serialize    = TRUE;
402 BOOL    smtp_input             = FALSE;
403 BOOL    smtp_return_error_details = FALSE;
404 #ifdef SUPPORT_SPF
405 BOOL    spf_result_guessed     = FALSE;
406 #endif
407 BOOL    split_spool_directory  = FALSE;
408 BOOL    spool_wireformat       = FALSE;
409 #ifdef EXPERIMENTAL_SRS
410 BOOL    srs_usehash            = TRUE;
411 BOOL    srs_usetimestamp       = TRUE;
412 #endif
413 BOOL    strict_acl_vars        = FALSE;
414 BOOL    strip_excess_angle_brackets = FALSE;
415 BOOL    strip_trailing_dot     = FALSE;
416 BOOL    syslog_duplication     = TRUE;
417 BOOL    syslog_pid             = TRUE;
418 BOOL    syslog_timestamp       = TRUE;
419 BOOL    system_filter_gid_set  = FALSE;
420 BOOL    system_filter_uid_set  = FALSE;
421
422 BOOL    tcp_nodelay            = TRUE;
423 BOOL    write_rejectlog        = TRUE;
424
425 /******************************************************************************/
426
427 header_line *acl_added_headers = NULL;
428 tree_node *acl_anchor          = NULL;
429 uschar *acl_arg[9]             = {NULL, NULL, NULL, NULL, NULL,
430                                   NULL, NULL, NULL, NULL};
431 int     acl_narg               = 0;
432
433 int     acl_level              = 0;
434
435 uschar *acl_not_smtp           = NULL;
436 #ifdef WITH_CONTENT_SCAN
437 uschar *acl_not_smtp_mime      = NULL;
438 #endif
439 uschar *acl_not_smtp_start     = NULL;
440 uschar *acl_removed_headers    = NULL;
441 uschar *acl_smtp_auth          = NULL;
442 uschar *acl_smtp_connect       = NULL;
443 uschar *acl_smtp_data          = NULL;
444 #ifndef DISABLE_PRDR
445 uschar *acl_smtp_data_prdr     = US"accept";
446 #endif
447 #ifndef DISABLE_DKIM
448 uschar *acl_smtp_dkim          = NULL;
449 #endif
450 uschar *acl_smtp_etrn          = NULL;
451 uschar *acl_smtp_expn          = NULL;
452 uschar *acl_smtp_helo          = NULL;
453 uschar *acl_smtp_mail          = NULL;
454 uschar *acl_smtp_mailauth      = NULL;
455 #ifdef WITH_CONTENT_SCAN
456 uschar *acl_smtp_mime          = NULL;
457 #endif
458 uschar *acl_smtp_notquit       = NULL;
459 uschar *acl_smtp_predata       = NULL;
460 uschar *acl_smtp_quit          = NULL;
461 uschar *acl_smtp_rcpt          = NULL;
462 uschar *acl_smtp_starttls      = NULL;
463 uschar *acl_smtp_vrfy          = NULL;
464
465 tree_node *acl_var_c           = NULL;
466 tree_node *acl_var_m           = NULL;
467 uschar *acl_verify_message     = NULL;
468 string_item *acl_warn_logged   = NULL;
469
470 /* Names of SMTP places for use in ACL error messages, and corresponding SMTP
471 error codes - keep in step with definitions of ACL_WHERE_xxxx in macros.h. */
472
473 uschar *acl_wherenames[]       = { US"RCPT",
474                                    US"MAIL",
475                                    US"PREDATA",
476                                    US"MIME",
477                                    US"DKIM",
478                                    US"DATA",
479 #ifndef DISABLE_PRDR
480                                    US"PRDR",
481 #endif
482                                    US"non-SMTP",
483                                    US"AUTH",
484                                    US"connection",
485                                    US"ETRN",
486                                    US"EXPN",
487                                    US"EHLO or HELO",
488                                    US"MAILAUTH",
489                                    US"non-SMTP-start",
490                                    US"NOTQUIT",
491                                    US"QUIT",
492                                    US"STARTTLS",
493                                    US"VRFY",
494                                    US"delivery",
495                                    US"unknown"
496                                  };
497
498 uschar *acl_wherecodes[]       = { US"550",     /* RCPT */
499                                    US"550",     /* MAIL */
500                                    US"550",     /* PREDATA */
501                                    US"550",     /* MIME */
502                                    US"550",     /* DKIM */
503                                    US"550",     /* DATA */
504 #ifndef DISABLE_PRDR
505                                    US"550",    /* RCPT PRDR */
506 #endif
507                                    US"0",       /* not SMTP; not relevant */
508                                    US"503",     /* AUTH */
509                                    US"550",     /* connect */
510                                    US"458",     /* ETRN */
511                                    US"550",     /* EXPN */
512                                    US"550",     /* HELO/EHLO */
513                                    US"0",       /* MAILAUTH; not relevant */
514                                    US"0",       /* not SMTP; not relevant */
515                                    US"0",       /* NOTQUIT; not relevant */
516                                    US"0",       /* QUIT; not relevant */
517                                    US"550",     /* STARTTLS */
518                                    US"252",     /* VRFY */
519                                    US"0",       /* delivery; not relevant */
520                                    US"0"        /* unknown; not relevant */
521                                  };
522
523 uschar *add_environment        = NULL;
524 address_item  *addr_duplicate  = NULL;
525
526 address_item address_defaults = {
527   .next =               NULL,
528   .parent =             NULL,
529   .first =              NULL,
530   .dupof =              NULL,
531   .start_router =       NULL,
532   .router =             NULL,
533   .transport =          NULL,
534   .host_list =          NULL,
535   .host_used =          NULL,
536   .fallback_hosts =     NULL,
537   .reply =              NULL,
538   .retries =            NULL,
539   .address =            NULL,
540   .unique =             NULL,
541   .cc_local_part =      NULL,
542   .lc_local_part =      NULL,
543   .local_part =         NULL,
544   .prefix =             NULL,
545   .prefix_v =           NULL,
546   .suffix =             NULL,
547   .suffix_v =           NULL,
548   .domain =             NULL,
549   .address_retry_key =  NULL,
550   .domain_retry_key =   NULL,
551   .current_dir =        NULL,
552   .home_dir =           NULL,
553   .message =            NULL,
554   .user_message =       NULL,
555   .onetime_parent =     NULL,
556   .pipe_expandn =       NULL,
557   .return_filename =    NULL,
558   .self_hostname =      NULL,
559   .shadow_message =     NULL,
560 #ifndef DISABLE_TLS
561   .cipher =             NULL,
562   .ourcert =            NULL,
563   .peercert =           NULL,
564   .peerdn =             NULL,
565   .ocsp =               OCSP_NOT_REQ,
566 #endif
567 #ifdef EXPERIMENTAL_DSN_INFO
568   .smtp_greeting =      NULL,
569   .helo_response =      NULL,
570 #endif
571   .authenticator =      NULL,
572   .auth_id =            NULL,
573   .auth_sndr =          NULL,
574   .dsn_orcpt =          NULL,
575   .dsn_flags =          0,
576   .dsn_aware =          0,
577   .uid =                (uid_t)(-1),
578   .gid =                (gid_t)(-1),
579   .flags =              { 0 },
580   .domain_cache =       { 0 },                /* domain_cache - any larger array should be zeroed */
581   .localpart_cache =    { 0 },                /* localpart_cache - ditto */
582   .mode =               -1,
583   .more_errno =         0,
584   .delivery_time =      {.tv_sec = 0, .tv_usec = 0},
585   .basic_errno =        ERRNO_UNKNOWNERROR,
586   .child_count =        0,
587   .return_file =        -1,
588   .special_action =     SPECIAL_NONE,
589   .transport_return =   DEFER,
590   .prop = {                                     /* fields that are propagated to children */
591     .address_data =     NULL,
592     .domain_data =      NULL,
593     .localpart_data =   NULL,
594     .errors_address =   NULL,
595     .extra_headers =    NULL,
596     .remove_headers =   NULL,
597     .variables =        NULL,
598 #ifdef EXPERIMENTAL_SRS
599     .srs_sender =       NULL,
600 #endif
601     .ignore_error =     FALSE,
602 #ifdef SUPPORT_I18N
603     .utf8_msg =         FALSE,
604     .utf8_downcvt =     FALSE,
605     .utf8_downcvt_maybe = FALSE
606 #endif
607   }
608 };
609
610 uschar *address_file           = NULL;
611 uschar *address_pipe           = NULL;
612 tree_node *addresslist_anchor  = NULL;
613 int     addresslist_count      = 0;
614 gid_t  *admin_groups           = NULL;
615
616 #ifdef EXPERIMENTAL_ARC
617 struct arc_set *arc_received    = NULL;
618 int     arc_received_instance   = 0;
619 int     arc_oldest_pass         = 0;
620 const uschar *arc_state         = NULL;
621 const uschar *arc_state_reason  = NULL;
622 #endif
623
624 uschar *authenticated_fail_id  = NULL;
625 uschar *authenticated_id       = NULL;
626 uschar *authenticated_sender   = NULL;
627 auth_instance  *auths          = NULL;
628 uschar *auth_advertise_hosts   = US"*";
629 auth_instance auth_defaults    = {
630     .next =             NULL,
631     .name =             NULL,
632     .info =             NULL,
633     .options_block =    NULL,
634     .driver_name =      NULL,
635     .advertise_condition = NULL,
636     .client_condition = NULL,
637     .public_name =      NULL,
638     .set_id =           NULL,
639     .set_client_id =    NULL,
640     .mail_auth_condition = NULL,
641     .server_debug_string = NULL,
642     .server_condition = NULL,
643     .client =           FALSE,
644     .server =           FALSE,
645     .advertised =       FALSE
646 };
647
648 uschar *auth_defer_msg         = US"reason not recorded";
649 uschar *auth_defer_user_msg    = US"";
650 uschar *auth_vars[AUTH_VARS];
651 int     auto_thaw              = 0;
652 #ifdef WITH_CONTENT_SCAN
653 int     av_failed              = FALSE; /* boolean but accessed as vtype_int*/
654 uschar *av_scanner             = US"sophie:/var/run/sophie";  /* AV scanner */
655 #endif
656
657 #if BASE_62 == 62
658 uschar *base62_chars=
659     US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz";
660 #else
661 uschar *base62_chars= US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ";
662 #endif
663
664 uschar *bi_command             = NULL;
665 uschar *big_buffer             = NULL;
666 int     big_buffer_size        = BIG_BUFFER_SIZE;
667 #ifdef EXPERIMENTAL_BRIGHTMAIL
668 uschar *bmi_alt_location       = NULL;
669 uschar *bmi_base64_tracker_verdict = NULL;
670 uschar *bmi_base64_verdict     = NULL;
671 uschar *bmi_config_file        = US"/opt/brightmail/etc/brightmail.cfg";
672 int     bmi_deliver            = 1;
673 int     bmi_run                = 0;
674 uschar *bmi_verdicts           = NULL;
675 #endif
676 int     bsmtp_transaction_linecount = 0;
677 int     body_8bitmime          = 0;
678 int     body_linecount         = 0;
679 int     body_zerocount         = 0;
680 uschar *bounce_message_file    = NULL;
681 uschar *bounce_message_text    = NULL;
682 uschar *bounce_recipient       = NULL;
683 int     bounce_return_linesize_limit = 998;
684 int     bounce_return_size_limit = 100*1024;
685 uschar *bounce_sender_authentication = NULL;
686
687 uschar *callout_address        = NULL;
688 int     callout_cache_domain_positive_expire = 7*24*60*60;
689 int     callout_cache_domain_negative_expire = 3*60*60;
690 int     callout_cache_positive_expire = 24*60*60;
691 int     callout_cache_negative_expire = 2*60*60;
692 uschar *callout_random_local_part = US"$primary_hostname-$tod_epoch-testing";
693 uschar *check_dns_names_pattern= US"(?i)^(?>(?(1)\\.|())[^\\W](?>[a-z0-9/_-]*[^\\W])?)+(\\.?)$";
694 int     check_log_inodes       = 100;
695 int_eximarith_t check_log_space = 10*1024;      /* 10K Kbyte == 10MB */
696 int     check_spool_inodes     = 100;
697 int_eximarith_t check_spool_space = 10*1024;    /* 10K Kbyte == 10MB */
698
699 uschar *chunking_advertise_hosts = US"*";
700 unsigned chunking_datasize     = 0;
701 unsigned chunking_data_left    = 0;
702 chunking_state_t chunking_state= CHUNKING_NOT_OFFERED;
703 const pcre *regex_CHUNKING     = NULL;
704
705 uschar *client_authenticator   = NULL;
706 uschar *client_authenticated_id = NULL;
707 uschar *client_authenticated_sender = NULL;
708 int     clmacro_count          = 0;
709 uschar *clmacros[MAX_CLMACROS];
710 FILE   *config_file            = NULL;
711 const uschar *config_filename  = NULL;
712 int     config_lineno          = 0;
713 #ifdef CONFIGURE_GROUP
714 gid_t   config_gid             = CONFIGURE_GROUP;
715 #else
716 gid_t   config_gid             = 0;
717 #endif
718 uschar *config_main_filelist   = US CONFIGURE_FILE
719                          "\0<-----------Space to patch configure_filename->";
720 uschar *config_main_filename   = NULL;
721 uschar *config_main_directory  = NULL;
722
723 #ifdef CONFIGURE_OWNER
724 uid_t   config_uid             = CONFIGURE_OWNER;
725 #else
726 uid_t   config_uid             = 0;
727 #endif
728
729 int     connection_max_messages= -1;
730 uschar *continue_proxy_cipher  = NULL;
731 uschar *continue_hostname      = NULL;
732 uschar *continue_host_address  = NULL;
733 int     continue_sequence      = 1;
734 uschar *continue_transport     = NULL;
735
736 uschar *csa_status             = NULL;
737 cut_t   cutthrough = {
738   .callout_hold_only =  FALSE,                          /* verify-only: normal delivery */
739   .delivery =           FALSE,                          /* when to attempt */
740   .defer_pass =         FALSE,                          /* on defer: spool locally */
741   .is_tls =             FALSE,                          /* not a TLS conn yet */
742   .cctx =               {.sock = -1},                   /* open connection */
743   .nrcpt =              0,                              /* number of addresses */
744 };
745
746 int     daemon_notifier_fd     = -1;
747 uschar *daemon_smtp_port       = US"smtp";
748 int     daemon_startup_retries = 9;
749 int     daemon_startup_sleep   = 30;
750
751 #ifdef EXPERIMENTAL_DCC
752 uschar *dcc_header             = NULL;
753 uschar *dcc_result             = NULL;
754 uschar *dccifd_address         = US"/usr/local/dcc/var/dccifd";
755 uschar *dccifd_options         = US"header";
756 #endif
757
758 int     debug_fd               = -1;
759 FILE   *debug_file             = NULL;
760 int     debug_notall[]         = {
761   Di_memory,
762   Di_noutf8,
763   -1
764 };
765 bit_table debug_options[]      = { /* must be in alphabetical order and use
766                                  only the enum values from macro.h */
767   BIT_TABLE(D, acl),
768   BIT_TABLE(D, all),
769   BIT_TABLE(D, auth),
770   BIT_TABLE(D, deliver),
771   BIT_TABLE(D, dns),
772   BIT_TABLE(D, dnsbl),
773   BIT_TABLE(D, exec),
774   BIT_TABLE(D, expand),
775   BIT_TABLE(D, filter),
776   BIT_TABLE(D, hints_lookup),
777   BIT_TABLE(D, host_lookup),
778   BIT_TABLE(D, ident),
779   BIT_TABLE(D, interface),
780   BIT_TABLE(D, lists),
781   BIT_TABLE(D, load),
782   BIT_TABLE(D, local_scan),
783   BIT_TABLE(D, lookup),
784   BIT_TABLE(D, memory),
785   BIT_TABLE(D, noutf8),
786   BIT_TABLE(D, pid),
787   BIT_TABLE(D, process_info),
788   BIT_TABLE(D, queue_run),
789   BIT_TABLE(D, receive),
790   BIT_TABLE(D, resolver),
791   BIT_TABLE(D, retry),
792   BIT_TABLE(D, rewrite),
793   BIT_TABLE(D, route),
794   BIT_TABLE(D, timestamp),
795   BIT_TABLE(D, tls),
796   BIT_TABLE(D, transport),
797   BIT_TABLE(D, uid),
798   BIT_TABLE(D, verify),
799 };
800 int     debug_options_count    = nelem(debug_options);
801
802 unsigned int debug_selector    = 0;
803 int     delay_warning[DELAY_WARNING_SIZE] = { DELAY_WARNING_SIZE, 1, 24*60*60 };
804 uschar *delay_warning_condition=
805   US"${if or {"
806             "{ !eq{$h_list-id:$h_list-post:$h_list-subscribe:}{} }"
807             "{ match{$h_precedence:}{(?i)bulk|list|junk} }"
808             "{ match{$h_auto-submitted:}{(?i)auto-generated|auto-replied} }"
809             "} {no}{yes}}";
810 uschar *deliver_address_data   = NULL;
811 int     deliver_datafile       = -1;
812 const uschar *deliver_domain   = NULL;
813 uschar *deliver_domain_data    = NULL;
814 const uschar *deliver_domain_orig = NULL;
815 const uschar *deliver_domain_parent = NULL;
816 time_t  deliver_frozen_at      = 0;
817 uschar *deliver_home           = NULL;
818 const uschar *deliver_host     = NULL;
819 const uschar *deliver_host_address = NULL;
820 int     deliver_host_port      = 0;
821 uschar *deliver_in_buffer      = NULL;
822 ino_t   deliver_inode          = 0;
823 uschar *deliver_localpart      = NULL;
824 uschar *deliver_localpart_data = NULL;
825 uschar *deliver_localpart_orig = NULL;
826 uschar *deliver_localpart_parent = NULL;
827 uschar *deliver_localpart_prefix = NULL;
828 uschar *deliver_localpart_prefix_v = NULL;
829 uschar *deliver_localpart_suffix = NULL;
830 uschar *deliver_localpart_suffix_v = NULL;
831 uschar *deliver_localpart_verified = NULL;
832 uschar *deliver_out_buffer     = NULL;
833 int     deliver_queue_load_max = -1;
834 address_item  *deliver_recipients = NULL;
835 uschar *deliver_selectstring   = NULL;
836 uschar *deliver_selectstring_sender = NULL;
837
838 #ifndef DISABLE_DKIM
839 unsigned dkim_collect_input      = 0;
840 uschar *dkim_cur_signer          = NULL;
841 int     dkim_key_length          = 0;
842 void   *dkim_signatures          = NULL;
843 uschar *dkim_signers             = NULL;
844 uschar *dkim_signing_domain      = NULL;
845 uschar *dkim_signing_selector    = NULL;
846 uschar *dkim_verify_hashes       = US"sha256:sha512";
847 uschar *dkim_verify_keytypes     = US"ed25519:rsa";
848 uschar *dkim_verify_min_keysizes = US"rsa=1024 ed25519=250";
849 BOOL    dkim_verify_minimal      = FALSE;
850 uschar *dkim_verify_overall      = NULL;
851 uschar *dkim_verify_signers      = US"$dkim_signers";
852 uschar *dkim_verify_status       = NULL;
853 uschar *dkim_verify_reason       = NULL;
854 #endif
855 #ifdef SUPPORT_DMARC
856 uschar *dmarc_domain_policy     = NULL;
857 uschar *dmarc_forensic_sender   = NULL;
858 uschar *dmarc_history_file      = NULL;
859 uschar *dmarc_status            = NULL;
860 uschar *dmarc_status_text       = NULL;
861 uschar *dmarc_tld_file          = NULL;
862 uschar *dmarc_used_domain       = NULL;
863 #endif
864
865 uschar *dns_again_means_nonexist = NULL;
866 int     dns_csa_search_limit   = 5;
867 int     dns_cname_loops        = 1;
868 #ifdef SUPPORT_DANE
869 int     dns_dane_ok            = -1;
870 #endif
871 uschar *dns_ipv4_lookup        = NULL;
872 int     dns_retrans            = 0;
873 int     dns_retry              = 0;
874 int     dns_dnssec_ok          = -1; /* <0 = not coerced */
875 uschar *dns_trust_aa           = NULL;
876 int     dns_use_edns0          = -1; /* <0 = not coerced */
877 uschar *dnslist_domain         = NULL;
878 uschar *dnslist_matched        = NULL;
879 uschar *dnslist_text           = NULL;
880 uschar *dnslist_value          = NULL;
881 tree_node *domainlist_anchor   = NULL;
882 int     domainlist_count       = 0;
883 uschar *dsn_from               = US DEFAULT_DSN_FROM;
884
885 int     errno_quota            = ERRNO_QUOTA;
886 uschar *errors_copy            = NULL;
887 int     error_handling         = ERRORS_SENDER;
888 uschar *errors_reply_to        = NULL;
889 int     errors_sender_rc       = EXIT_FAILURE;
890 #ifndef DISABLE_EVENT
891 uschar *event_action             = NULL;        /* expansion for delivery events */
892 uschar *event_data               = NULL;        /* auxiliary data variable for event */
893 int     event_defer_errno        = 0;
894 const uschar *event_name         = NULL;        /* event name variable */
895 #endif
896
897
898 gid_t   exim_gid               = EXIM_GID;
899 uschar *exim_path              = US BIN_DIRECTORY "/exim"
900                         "\0<---------------Space to patch exim_path->";
901 uid_t   exim_uid               = EXIM_UID;
902 int     expand_level           = 0;             /* Nesting depth, indent for debug */
903 int     expand_forbid          = 0;
904 int     expand_nlength[EXPAND_MAXN+1];
905 int     expand_nmax            = -1;
906 uschar *expand_nstring[EXPAND_MAXN+1];
907 uschar *expand_string_message;
908 uschar *extra_local_interfaces = NULL;
909
910 int     fake_response          = OK;
911 uschar *fake_response_text     = US"Your message has been rejected but is "
912                                    "being kept for evaluation.\nIf it was a "
913                                    "legitimate message, it may still be "
914                                    "delivered to the target recipient(s).";
915 int     filter_n[FILTER_VARIABLE_COUNT];
916 int     filter_sn[FILTER_VARIABLE_COUNT];
917 int     filter_test            = FTEST_NONE;
918 uschar *filter_test_sfile      = NULL;
919 uschar *filter_test_ufile      = NULL;
920 uschar *filter_thisaddress     = NULL;
921 int     finduser_retries       = 0;
922 uid_t   fixed_never_users[]    = { FIXED_NEVER_USERS };
923 uschar *freeze_tell            = NULL;
924 uschar *freeze_tell_config     = NULL;
925 uschar *fudged_queue_times     = US"";
926
927 uschar *gecos_name             = NULL;
928 uschar *gecos_pattern          = NULL;
929 rewrite_rule  *global_rewrite_rules = NULL;
930
931 volatile sig_atomic_t had_command_timeout = 0;
932 volatile sig_atomic_t had_command_sigterm = 0;
933 volatile sig_atomic_t had_data_timeout    = 0;
934 volatile sig_atomic_t had_data_sigint     = 0;
935 uschar *headers_charset        = US HEADERS_CHARSET;
936 int     header_insert_maxlen   = 64 * 1024;
937 header_line  *header_last      = NULL;
938 header_line  *header_list      = NULL;
939 int     header_maxsize         = HEADER_MAXSIZE;
940 int     header_line_maxsize    = 0;
941
942 header_name header_names[] = {
943   /* name               len     allow_resent    htype */
944   { US"bcc",            3,      TRUE,           htype_bcc },
945   { US"cc",             2,      TRUE,           htype_cc },
946   { US"date",           4,      TRUE,           htype_date },
947   { US"delivery-date", 13,      FALSE,          htype_delivery_date },
948   { US"envelope-to",   11,      FALSE,          htype_envelope_to },
949   { US"from",           4,      TRUE,           htype_from },
950   { US"message-id",    10,      TRUE,           htype_id },
951   { US"received",       8,      FALSE,          htype_received },
952   { US"reply-to",       8,      FALSE,          htype_reply_to },
953   { US"return-path",   11,      FALSE,          htype_return_path },
954   { US"sender",         6,      TRUE,           htype_sender },
955   { US"subject",        7,      FALSE,          htype_subject },
956   { US"to",             2,      TRUE,           htype_to }
957 };
958
959 int header_names_size          = nelem(header_names);
960
961 uschar *helo_accept_junk_hosts = NULL;
962 uschar *helo_allow_chars       = US"";
963 uschar *helo_lookup_domains    = US"@ : @[]";
964 uschar *helo_try_verify_hosts  = NULL;
965 uschar *helo_verify_hosts      = NULL;
966 const uschar *hex_digits       = CUS"0123456789abcdef";
967 uschar *hold_domains           = NULL;
968 uschar *host_data              = NULL;
969 uschar *host_lookup            = NULL;
970 uschar *host_lookup_order      = US"bydns:byaddr";
971 uschar *host_lookup_msg        = US"";
972 int     host_number            = 0;
973 uschar *host_number_string     = NULL;
974 uschar *host_reject_connection = NULL;
975 tree_node *hostlist_anchor     = NULL;
976 int     hostlist_count         = 0;
977 uschar *hosts_treat_as_local   = NULL;
978 uschar *hosts_connection_nolog = NULL;
979
980 int     ignore_bounce_errors_after = 10*7*24*60*60;  /* 10 weeks */
981 uschar *ignore_fromline_hosts  = NULL;
982 int     inetd_wait_timeout     = -1;
983 uschar *initial_cwd            = NULL;
984 uschar *interface_address      = NULL;
985 int     interface_port         = -1;
986 uschar *iterate_item           = NULL;
987
988 int     journal_fd             = -1;
989
990 uschar *keep_environment       = NULL;
991
992 int     keep_malformed         = 4*24*60*60;    /* 4 days */
993
994 uschar *eldap_dn               = NULL;
995 int     load_average           = -2;
996 uschar *local_from_prefix      = NULL;
997 uschar *local_from_suffix      = NULL;
998
999 #if HAVE_IPV6
1000 uschar *local_interfaces       = US"<; ::0 ; 0.0.0.0";
1001 #else
1002 uschar *local_interfaces       = US"0.0.0.0";
1003 #endif
1004
1005 #ifdef HAVE_LOCAL_SCAN
1006 uschar *local_scan_data        = NULL;
1007 int     local_scan_timeout     = 5*60;
1008 #endif
1009 gid_t   local_user_gid         = (gid_t)(-1);
1010 uid_t   local_user_uid         = (uid_t)(-1);
1011
1012 tree_node *localpartlist_anchor= NULL;
1013 int     localpartlist_count    = 0;
1014 uschar *log_buffer             = NULL;
1015
1016 int     log_default[]          = { /* for initializing log_selector */
1017   Li_acl_warn_skipped,
1018   Li_connection_reject,
1019   Li_delay_delivery,
1020   Li_dkim,
1021   Li_dnslist_defer,
1022   Li_etrn,
1023   Li_host_lookup_failed,
1024   Li_lost_incoming_connection,
1025   Li_outgoing_interface, /* see d_log_interface in deliver.c */
1026   Li_msg_id,
1027   Li_queue_run,
1028   Li_rejected_header,
1029   Li_retry_defer,
1030   Li_sender_verify_fail,
1031   Li_size_reject,
1032   Li_skip_delivery,
1033   Li_smtp_confirmation,
1034   Li_tls_certificate_verified,
1035   Li_tls_cipher,
1036   -1
1037 };
1038
1039 uschar *log_file_path          = US LOG_FILE_PATH
1040                            "\0<--------------Space to patch log_file_path->";
1041
1042 int     log_notall[]           = {
1043   -1
1044 };
1045 bit_table log_options[]        = { /* must be in alphabetical order,
1046                                 with definitions from enum logbit. */
1047   BIT_TABLE(L, 8bitmime),
1048   BIT_TABLE(L, acl_warn_skipped),
1049   BIT_TABLE(L, address_rewrite),
1050   BIT_TABLE(L, all),
1051   BIT_TABLE(L, all_parents),
1052   BIT_TABLE(L, arguments),
1053   BIT_TABLE(L, connection_reject),
1054   BIT_TABLE(L, delay_delivery),
1055   BIT_TABLE(L, deliver_time),
1056   BIT_TABLE(L, delivery_size),
1057 #ifndef DISABLE_DKIM
1058   BIT_TABLE(L, dkim),
1059   BIT_TABLE(L, dkim_verbose),
1060 #endif
1061   BIT_TABLE(L, dnslist_defer),
1062   BIT_TABLE(L, dnssec),
1063   BIT_TABLE(L, etrn),
1064   BIT_TABLE(L, host_lookup_failed),
1065   BIT_TABLE(L, ident_timeout),
1066   BIT_TABLE(L, incoming_interface),
1067   BIT_TABLE(L, incoming_port),
1068   BIT_TABLE(L, lost_incoming_connection),
1069   BIT_TABLE(L, millisec),
1070   BIT_TABLE(L, msg_id),
1071   BIT_TABLE(L, msg_id_created),
1072   BIT_TABLE(L, outgoing_interface),
1073   BIT_TABLE(L, outgoing_port),
1074   BIT_TABLE(L, pid),
1075   BIT_TABLE(L, pipelining),
1076 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1077   BIT_TABLE(L, proxy),
1078 #endif
1079   BIT_TABLE(L, queue_run),
1080   BIT_TABLE(L, queue_time),
1081   BIT_TABLE(L, queue_time_overall),
1082   BIT_TABLE(L, receive_time),
1083   BIT_TABLE(L, received_recipients),
1084   BIT_TABLE(L, received_sender),
1085   BIT_TABLE(L, rejected_header),
1086   { US"rejected_headers", Li_rejected_header },
1087   BIT_TABLE(L, retry_defer),
1088   BIT_TABLE(L, return_path_on_delivery),
1089   BIT_TABLE(L, sender_on_delivery),
1090   BIT_TABLE(L, sender_verify_fail),
1091   BIT_TABLE(L, size_reject),
1092   BIT_TABLE(L, skip_delivery),
1093   BIT_TABLE(L, smtp_confirmation),
1094   BIT_TABLE(L, smtp_connection),
1095   BIT_TABLE(L, smtp_incomplete_transaction),
1096   BIT_TABLE(L, smtp_mailauth),
1097   BIT_TABLE(L, smtp_no_mail),
1098   BIT_TABLE(L, smtp_protocol_error),
1099   BIT_TABLE(L, smtp_syntax_error),
1100   BIT_TABLE(L, subject),
1101   BIT_TABLE(L, tls_certificate_verified),
1102   BIT_TABLE(L, tls_cipher),
1103   BIT_TABLE(L, tls_peerdn),
1104   BIT_TABLE(L, tls_resumption),
1105   BIT_TABLE(L, tls_sni),
1106   BIT_TABLE(L, unknown_in_list),
1107 };
1108 int     log_options_count      = nelem(log_options);
1109
1110 int     log_reject_target      = 0;
1111 unsigned int log_selector[log_selector_size]; /* initialized in main() */
1112 uschar *log_selector_string    = NULL;
1113 FILE   *log_stderr             = NULL;
1114 uschar *login_sender_address   = NULL;
1115 uschar *lookup_dnssec_authenticated = NULL;
1116 int     lookup_open_max        = 25;
1117 uschar *lookup_value           = NULL;
1118
1119 macro_item *macros_user        = NULL;
1120 uschar *mailstore_basename     = NULL;
1121 #ifdef WITH_CONTENT_SCAN
1122 uschar *malware_name           = NULL;  /* Virus Name */
1123 #endif
1124 int     max_received_linelength= 0;
1125 int     max_username_length    = 0;
1126 int     message_age            = 0;
1127 uschar *message_body           = NULL;
1128 uschar *message_body_end       = NULL;
1129 int     message_body_size      = 0;
1130 int     message_body_visible   = 500;
1131 int     message_ended          = END_NOTSTARTED;
1132 uschar *message_headers        = NULL;
1133 uschar *message_id;
1134 uschar *message_id_domain      = NULL;
1135 uschar *message_id_text        = NULL;
1136 struct timeval message_id_tv   = { 0, 0 };
1137 uschar  message_id_option[MESSAGE_ID_LENGTH + 3];
1138 uschar *message_id_external;
1139 int     message_linecount      = 0;
1140 int     message_size           = 0;
1141 uschar *message_size_limit     = US"50M";
1142 #ifdef SUPPORT_I18N
1143 int     message_utf8_downconvert = 0;   /* -1 ifneeded; 0 never; 1 always */
1144 #endif
1145 uschar  message_subdir[2]      = { 0, 0 };
1146 uschar *message_reference      = NULL;
1147
1148 /* MIME ACL expandables */
1149 #ifdef WITH_CONTENT_SCAN
1150 int     mime_anomaly_level     = 0;
1151 const uschar *mime_anomaly_text      = NULL;
1152 uschar *mime_boundary          = NULL;
1153 uschar *mime_charset           = NULL;
1154 uschar *mime_content_description = NULL;
1155 uschar *mime_content_disposition = NULL;
1156 uschar *mime_content_id        = NULL;
1157 unsigned int mime_content_size = 0;
1158 uschar *mime_content_transfer_encoding = NULL;
1159 uschar *mime_content_type      = NULL;
1160 uschar *mime_decoded_filename  = NULL;
1161 uschar *mime_filename          = NULL;
1162 int     mime_is_multipart      = 0;
1163 int     mime_is_coverletter    = 0;
1164 int     mime_is_rfc822         = 0;
1165 int     mime_part_count        = -1;
1166 #endif
1167
1168 uid_t  *never_users            = NULL;
1169 uschar *notifier_socket        = US"$spool_directory/" NOTIFIER_SOCKET_NAME ;
1170
1171 const int on                   = 1;     /* for setsockopt */
1172 const int off                  = 0;
1173
1174 uid_t   original_euid;
1175 gid_t   originator_gid;
1176 uschar *originator_login       = NULL;
1177 uschar *originator_name        = NULL;
1178 uid_t   originator_uid;
1179 uschar *override_local_interfaces = NULL;
1180 uschar *override_pid_file_path = NULL;
1181
1182 uschar *percent_hack_domains   = NULL;
1183 uschar *pid_file_path          = US PID_FILE_PATH
1184                            "\0<--------------Space to patch pid_file_path->";
1185 #ifndef DISABLE_PIPE_CONNECT
1186 uschar *pipe_connect_advertise_hosts = US"*";
1187 #endif
1188 uschar *pipelining_advertise_hosts = US"*";
1189 uschar *primary_hostname       = NULL;
1190 uschar *process_info;
1191 int     process_info_len       = 0;
1192 uschar *process_log_path       = NULL;
1193 const uschar *process_purpose  = US"fresh-exec";
1194
1195 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1196 uschar *hosts_proxy            = NULL;
1197 uschar *proxy_external_address = NULL;
1198 int     proxy_external_port    = 0;
1199 uschar *proxy_local_address    = NULL;
1200 int     proxy_local_port       = 0;
1201 #endif
1202
1203 uschar *prvscheck_address      = NULL;
1204 uschar *prvscheck_keynum       = NULL;
1205 uschar *prvscheck_result       = NULL;
1206
1207
1208 const uschar *qualify_domain_recipient = NULL;
1209 uschar *qualify_domain_sender  = NULL;
1210 uschar *queue_domains          = NULL;
1211 int     queue_interval         = -1;
1212 uschar *queue_name             = US"";
1213 uschar *queue_name_dest        = NULL;
1214 uschar *queue_only_file        = NULL;
1215 int     queue_only_load        = -1;
1216 uschar *queue_run_max          = US"5";
1217 pid_t   queue_run_pid          = (pid_t)0;
1218 int     queue_run_pipe         = -1;
1219 unsigned queue_size            = 0;
1220 time_t  queue_size_next        = 0;
1221 uschar *queue_smtp_domains     = NULL;
1222
1223 uint32_t random_seed           = 0;
1224 tree_node *ratelimiters_cmd    = NULL;
1225 tree_node *ratelimiters_conn   = NULL;
1226 tree_node *ratelimiters_mail   = NULL;
1227 uschar *raw_active_hostname    = NULL;
1228 uschar *raw_sender             = NULL;
1229 uschar **raw_recipients        = NULL;
1230 int     raw_recipients_count   = 0;
1231
1232 int     rcpt_count             = 0;
1233 int     rcpt_fail_count        = 0;
1234 int     rcpt_defer_count       = 0;
1235 gid_t   real_gid;
1236 uid_t   real_uid;
1237 int     receive_linecount      = 0;
1238 int     receive_messagecount   = 0;
1239 int     receive_timeout        = 0;
1240 int     received_count         = 0;
1241 uschar *received_for           = NULL;
1242
1243 /*  This is the default text for Received headers generated by Exim. The
1244 date  will be automatically added on the end. */
1245
1246 uschar *received_header_text   = US
1247      "Received: "
1248      "${if def:sender_rcvhost {from $sender_rcvhost\n\t}"
1249        "{${if def:sender_ident {from ${quote_local_part:$sender_ident} }}"
1250          "${if def:sender_helo_name {(helo=$sender_helo_name)\n\t}}}}"
1251      "by $primary_hostname "
1252      "${if def:received_protocol {with $received_protocol }}"
1253 #ifndef DISABLE_TLS
1254      "${if def:tls_in_ver        { ($tls_in_ver)}}"
1255      "${if def:tls_in_cipher_std { tls $tls_in_cipher_std\n\t}}"
1256 #endif
1257      "(Exim $version_number)\n\t"
1258      "${if def:sender_address {(envelope-from <$sender_address>)\n\t}}"
1259      "id $message_exim_id"
1260      "${if def:received_for {\n\tfor $received_for}}"
1261      "\0<---------------Space to patch received_header_text->";
1262
1263 int     received_headers_max   = 30;
1264 uschar *received_protocol      = NULL;
1265 struct timeval received_time   = { 0, 0 };
1266 struct timeval received_time_taken = { 0, 0 };
1267 uschar *recipient_data         = NULL;
1268 uschar *recipient_unqualified_hosts = NULL;
1269 uschar *recipient_verify_failure = NULL;
1270 int     recipients_count       = 0;
1271 recipient_item  *recipients_list = NULL;
1272 int     recipients_list_max    = 0;
1273 int     recipients_max         = 0;
1274 const pcre *regex_AUTH         = NULL;
1275 const pcre *regex_check_dns_names = NULL;
1276 const pcre *regex_From         = NULL;
1277 const pcre *regex_IGNOREQUOTA  = NULL;
1278 const pcre *regex_PIPELINING   = NULL;
1279 const pcre *regex_SIZE         = NULL;
1280 #ifndef DISABLE_PIPE_CONNECT
1281 const pcre *regex_EARLY_PIPE   = NULL;
1282 #endif
1283 const pcre *regex_ismsgid      = NULL;
1284 const pcre *regex_smtp_code    = NULL;
1285 uschar *regex_vars[REGEX_VARS];
1286 #ifdef WHITELIST_D_MACROS
1287 const pcre *regex_whitelisted_macro = NULL;
1288 #endif
1289 #ifdef WITH_CONTENT_SCAN
1290 uschar *regex_match_string     = NULL;
1291 #endif
1292 int     remote_delivery_count  = 0;
1293 int     remote_max_parallel    = 2;
1294 uschar *remote_sort_domains    = NULL;
1295 int     retry_data_expire      = 7*24*60*60;
1296 int     retry_interval_max     = 24*60*60;
1297 int     retry_maximum_timeout  = 0;        /* set from retry config */
1298 retry_config  *retries         = NULL;
1299 uschar *return_path            = NULL;
1300 int     rewrite_existflags     = 0;
1301 uschar *rfc1413_hosts          = US"@[]";
1302 int     rfc1413_query_timeout  = 0;
1303 uid_t   root_gid               = ROOT_GID;
1304 uid_t   root_uid               = ROOT_UID;
1305
1306 router_instance  *routers  = NULL;
1307 router_instance  router_defaults = {
1308     .next =                     NULL,
1309     .name =                     NULL,
1310     .info =                     NULL,
1311     .options_block =            NULL,
1312     .driver_name =              NULL,
1313
1314     .address_data =             NULL,
1315 #ifdef EXPERIMENTAL_BRIGHTMAIL
1316     .bmi_rule =                 NULL,
1317 #endif
1318     .cannot_route_message =     NULL,
1319     .condition =                NULL,
1320     .current_directory =        NULL,
1321     .debug_string =             NULL,
1322     .domains =                  NULL,
1323     .errors_to =                NULL,
1324     .expand_gid =               NULL,
1325     .expand_uid =               NULL,
1326     .expand_more =              NULL,
1327     .expand_unseen =            NULL,
1328     .extra_headers =            NULL,
1329     .fallback_hosts =           NULL,
1330     .home_directory =           NULL,
1331     .ignore_target_hosts =      NULL,
1332     .local_parts =              NULL,
1333     .pass_router_name =         NULL,
1334     .prefix =                   NULL,
1335     .redirect_router_name =     NULL,
1336     .remove_headers =           NULL,
1337     .require_files =            NULL,
1338     .router_home_directory =    NULL,
1339     .self =                     US"freeze",
1340     .senders =                  NULL,
1341     .suffix =                   NULL,
1342     .translate_ip_address =     NULL,
1343     .transport_name =           NULL,
1344
1345     .address_test =             TRUE,
1346 #ifdef EXPERIMENTAL_BRIGHTMAIL
1347     .bmi_deliver_alternate =    FALSE,
1348     .bmi_deliver_default =      FALSE,
1349     .bmi_dont_deliver =         FALSE,
1350 #endif
1351     .expn =                     TRUE,
1352     .caseful_local_part =       FALSE,
1353     .check_local_user =         FALSE,
1354     .disable_logging =          FALSE,
1355     .fail_verify_recipient =    FALSE,
1356     .fail_verify_sender =       FALSE,
1357     .gid_set =                  FALSE,
1358     .initgroups =               FALSE,
1359     .log_as_local =             TRUE_UNSET,
1360     .more =                     TRUE,
1361     .pass_on_timeout =          FALSE,
1362     .prefix_optional =          FALSE,
1363     .repeat_use =               TRUE,
1364     .retry_use_local_part =     TRUE_UNSET,
1365     .same_domain_copy_routing = FALSE,
1366     .self_rewrite =             FALSE,
1367     .set =                      NULL,
1368     .suffix_optional =          FALSE,
1369     .verify_only =              FALSE,
1370     .verify_recipient =         TRUE,
1371     .verify_sender =            TRUE,
1372     .uid_set =                  FALSE,
1373     .unseen =                   FALSE,
1374     .dsn_lasthop =              FALSE,
1375
1376     .self_code =                self_freeze,
1377     .uid =                      (uid_t)(-1),
1378     .gid =                      (gid_t)(-1),
1379
1380     .fallback_hostlist =        NULL,
1381     .transport =                NULL,
1382     .pass_router =              NULL,
1383     .redirect_router =          NULL,
1384
1385     .dnssec =                   { .request= US"*", .require=NULL },
1386 };
1387
1388 uschar *router_name            = NULL;
1389 tree_node *router_var          = NULL;
1390
1391 ip_address_item *running_interfaces = NULL;
1392
1393 /* This is a weird one. The following string gets patched in the binary by the
1394 script that sets up a copy of Exim for running in the test harness. It seems
1395 that compilers are now clever, and share constant strings if they can.
1396 Elsewhere in Exim the string "<" is used. The compiler optimization seems to
1397 make use of the end of this string in order to save space. So the patching then
1398 wrecks this. We defeat this optimization by adding some additional characters
1399 onto the end of the string. */
1400
1401 uschar *running_status         = US">>>running<<<" "\0EXTRA";
1402
1403 int     runrc                  = 0;
1404
1405 uschar *search_error_message   = NULL;
1406 uschar *self_hostname          = NULL;
1407 uschar *sender_address         = NULL;
1408 unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32];
1409 uschar *sender_address_data    = NULL;
1410 uschar *sender_address_unrewritten = NULL;
1411 uschar *sender_data            = NULL;
1412 unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32];
1413 uschar *sender_fullhost        = NULL;
1414 uschar *sender_helo_name       = NULL;
1415 uschar **sender_host_aliases   = &no_aliases;
1416 uschar *sender_host_address    = NULL;
1417 uschar *sender_host_authenticated = NULL;
1418 uschar *sender_host_auth_pubname  = NULL;
1419 unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32];
1420 uschar *sender_host_name       = NULL;
1421 int     sender_host_port       = 0;
1422 uschar *sender_ident           = NULL;
1423 uschar *sender_rate            = NULL;
1424 uschar *sender_rate_limit      = NULL;
1425 uschar *sender_rate_period     = NULL;
1426 uschar *sender_rcvhost         = NULL;
1427 uschar *sender_unqualified_hosts = NULL;
1428 uschar *sender_verify_failure = NULL;
1429 address_item *sender_verified_list  = NULL;
1430 address_item *sender_verified_failed = NULL;
1431 int     sender_verified_rc     = -1;
1432 uschar *sending_ip_address     = NULL;
1433 int     sending_port           = -1;
1434 SIGNAL_BOOL sigalrm_seen       = FALSE;
1435 const uschar *sigalarm_setter  = NULL;
1436 uschar **sighup_argv           = NULL;
1437 int     slow_lookup_log        = 0;     /* millisecs, zero disables */
1438 int     smtp_accept_count      = 0;
1439 int     smtp_accept_max        = 20;
1440 int     smtp_accept_max_nonmail= 10;
1441 uschar *smtp_accept_max_nonmail_hosts = US"*";
1442 int     smtp_accept_max_per_connection = 1000;
1443 uschar *smtp_accept_max_per_host = NULL;
1444 int     smtp_accept_queue      = 0;
1445 int     smtp_accept_queue_per_connection = 10;
1446 int     smtp_accept_reserve    = 0;
1447 uschar *smtp_active_hostname   = NULL;
1448 uschar *smtp_banner            = US"$smtp_active_hostname ESMTP "
1449                              "Exim $version_number $tod_full"
1450                              "\0<---------------Space to patch smtp_banner->";
1451 int     smtp_ch_index          = 0;
1452 uschar *smtp_cmd_argument      = NULL;
1453 uschar *smtp_cmd_buffer        = NULL;
1454 struct timeval smtp_connection_start  = {0,0};
1455 uschar  smtp_connection_had[SMTP_HBUFF_SIZE];
1456 int     smtp_connect_backlog   = 20;
1457 double  smtp_delay_mail        = 0.0;
1458 double  smtp_delay_rcpt        = 0.0;
1459 FILE   *smtp_in                = NULL;
1460 int     smtp_load_reserve      = -1;
1461 int     smtp_mailcmd_count     = 0;
1462 FILE   *smtp_out               = NULL;
1463 uschar *smtp_etrn_command      = NULL;
1464 int     smtp_max_synprot_errors= 3;
1465 int     smtp_max_unknown_commands = 3;
1466 uschar *smtp_notquit_reason    = NULL;
1467 uschar *smtp_ratelimit_hosts   = NULL;
1468 uschar *smtp_ratelimit_mail    = NULL;
1469 uschar *smtp_ratelimit_rcpt    = NULL;
1470 uschar *smtp_read_error        = US"";
1471 int     smtp_receive_timeout   = 5*60;
1472 uschar *smtp_receive_timeout_s = NULL;
1473 uschar *smtp_reserve_hosts     = NULL;
1474 int     smtp_rlm_base          = 0;
1475 double  smtp_rlm_factor        = 0.0;
1476 int     smtp_rlm_limit         = 0;
1477 int     smtp_rlm_threshold     = INT_MAX;
1478 int     smtp_rlr_base          = 0;
1479 double  smtp_rlr_factor        = 0.0;
1480 int     smtp_rlr_limit         = 0;
1481 int     smtp_rlr_threshold     = INT_MAX;
1482 unsigned smtp_peer_options     = 0;
1483 unsigned smtp_peer_options_wrap= 0;
1484 #ifdef SUPPORT_I18N
1485 uschar *smtputf8_advertise_hosts = US"*";       /* overridden under test-harness */
1486 #endif
1487
1488 #ifdef WITH_CONTENT_SCAN
1489 uschar *spamd_address          = US"127.0.0.1 783";
1490 uschar *spam_bar               = NULL;
1491 uschar *spam_report            = NULL;
1492 uschar *spam_action            = NULL;
1493 uschar *spam_score             = NULL;
1494 uschar *spam_score_int         = NULL;
1495 #endif
1496 #ifdef SUPPORT_SPF
1497 uschar *spf_guess              = US"v=spf1 a/24 mx/24 ptr ?all";
1498 uschar *spf_header_comment     = NULL;
1499 uschar *spf_received           = NULL;
1500 uschar *spf_result             = NULL;
1501 uschar *spf_smtp_comment       = NULL;
1502 #endif
1503
1504 FILE   *spool_data_file        = NULL;
1505 uschar *spool_directory        = US SPOOL_DIRECTORY
1506                            "\0<--------------Space to patch spool_directory->";
1507 #ifdef EXPERIMENTAL_SRS
1508 uschar *srs_config             = NULL;
1509 uschar *srs_db_address         = NULL;
1510 uschar *srs_db_key             = NULL;
1511 int     srs_hashlength         = 6;
1512 int     srs_hashmin            = -1;
1513 int     srs_maxage             = 31;
1514 uschar *srs_orig_recipient     = NULL;
1515 uschar *srs_orig_sender        = NULL;
1516 uschar *srs_recipient          = NULL;
1517 uschar *srs_secrets            = NULL;
1518 uschar *srs_status             = NULL;
1519 #endif
1520 #ifdef EXPERIMENTAL_SRS_NATIVE
1521 uschar *srs_recipient          = NULL;
1522 #endif
1523 int     string_datestamp_offset= -1;
1524 int     string_datestamp_length= 0;
1525 int     string_datestamp_type  = -1;
1526 uschar *submission_domain      = NULL;
1527 uschar *submission_name        = NULL;
1528 int     syslog_facility        = LOG_MAIL;
1529 uschar *syslog_processname     = US"exim";
1530 uschar *system_filter          = NULL;
1531
1532 uschar *system_filter_directory_transport = NULL;
1533 uschar *system_filter_file_transport = NULL;
1534 uschar *system_filter_pipe_transport = NULL;
1535 uschar *system_filter_reply_transport = NULL;
1536
1537 gid_t   system_filter_gid      = 0;
1538 uid_t   system_filter_uid      = (uid_t)-1;
1539
1540 blob    tcp_fastopen_nodata    = { .data = NULL, .len = 0 };
1541 tfo_state_t tcp_out_fastopen   = TFO_NOT_USED;
1542 #ifdef USE_TCP_WRAPPERS
1543 uschar *tcp_wrappers_daemon_name = US TCP_WRAPPERS_DAEMON_NAME;
1544 #endif
1545 int     test_harness_load_avg  = 0;
1546 int     thismessage_size_limit = 0;
1547 int     timeout_frozen_after   = 0;
1548 #ifdef MEASURE_TIMING
1549 struct timeval timestamp_startup;
1550 #endif
1551
1552 transport_instance  *transports = NULL;
1553
1554 transport_instance  transport_defaults = {
1555     .next =                     NULL,
1556     .name =                     NULL,
1557     .info =                     NULL,
1558     .options_block =            NULL,
1559     .driver_name =              NULL,
1560     .setup =                    NULL,
1561     .batch_max =                1,
1562     .batch_id =                 NULL,
1563     .home_dir =                 NULL,
1564     .current_dir =              NULL,
1565     .expand_multi_domain =      NULL,
1566     .multi_domain =             TRUE,
1567     .overrides_hosts =          FALSE,
1568     .max_addresses =            100,
1569     .connection_max_messages =  500,
1570     .deliver_as_creator =       FALSE,
1571     .disable_logging =          FALSE,
1572     .initgroups =               FALSE,
1573     .uid_set =                  FALSE,
1574     .gid_set =                  FALSE,
1575     .uid =                      (uid_t)(-1),
1576     .gid =                      (gid_t)(-1),
1577     .expand_uid =               NULL,
1578     .expand_gid =               NULL,
1579     .warn_message =             NULL,
1580     .shadow =                   NULL,
1581     .shadow_condition =         NULL,
1582     .filter_command =           NULL,
1583     .add_headers =              NULL,
1584     .remove_headers =           NULL,
1585     .return_path =              NULL,
1586     .debug_string =             NULL,
1587     .max_parallel =             NULL,
1588     .message_size_limit =       NULL,
1589     .headers_rewrite =          NULL,
1590     .rewrite_rules =            NULL,
1591     .rewrite_existflags =       0,
1592     .filter_timeout =           300,
1593     .body_only =                FALSE,
1594     .delivery_date_add =        FALSE,
1595     .envelope_to_add =          FALSE,
1596     .headers_only =             FALSE,
1597     .rcpt_include_affixes =     FALSE,
1598     .return_path_add =          FALSE,
1599     .return_output =            FALSE,
1600     .return_fail_output =       FALSE,
1601     .log_output =               FALSE,
1602     .log_fail_output =          FALSE,
1603     .log_defer_output =         FALSE,
1604     .retry_use_local_part =     TRUE_UNSET,     /* retry_use_local_part: BOOL, but set neither
1605                                                  1 nor 0 so can detect unset */
1606 #ifndef DISABLE_EVENT
1607    .event_action =              NULL
1608 #endif
1609 };
1610
1611 int     transport_count;
1612 uschar *transport_name          = NULL;
1613 int     transport_newlines;
1614 const uschar **transport_filter_argv  = NULL;
1615 int     transport_filter_timeout;
1616 int     transport_write_timeout= 0;
1617
1618 tree_node  *tree_dns_fails     = NULL;
1619 tree_node  *tree_duplicates    = NULL;
1620 tree_node  *tree_nonrecipients = NULL;
1621 tree_node  *tree_unusable      = NULL;
1622
1623 gid_t  *trusted_groups         = NULL;
1624 uid_t  *trusted_users          = NULL;
1625 uschar *timezone_string        = US TIMEZONE_DEFAULT;
1626
1627 uschar *unknown_login          = NULL;
1628 uschar *unknown_username       = NULL;
1629 uschar *untrusted_set_sender   = NULL;
1630
1631 /*  A regex for matching a "From_" line in an incoming message, in the form
1632
1633     From ph10 Fri Jan  5 12:35 GMT 1996
1634
1635 which  the "mail" commands send to the MTA (undocumented, of course), or in
1636 the  form
1637
1638     From ph10 Fri, 7 Jan 97 14:00:00 GMT
1639
1640 which  is apparently used by some UUCPs, despite it not being in RFC 976.
1641 Because  of variations in time formats, just match up to the minutes. That
1642 should  be sufficient. Examples have been seen of time fields like 12:1:03,
1643 so  just require one digit for hours and minutes. The weekday is also absent
1644 in  some forms. */
1645
1646 uschar *uucp_from_pattern      = US
1647    "^From\\s+(\\S+)\\s+(?:[a-zA-Z]{3},?\\s+)?"    /* Common start */
1648    "(?:"                                          /* Non-extracting bracket */
1649    "[a-zA-Z]{3}\\s+\\d?\\d|"                      /* First form */
1650    "\\d?\\d\\s+[a-zA-Z]{3}\\s+\\d\\d(?:\\d\\d)?"  /* Second form */
1651    ")"                                            /* End alternation */
1652    "\\s+\\d\\d?:\\d\\d?";                         /* Start of time */
1653
1654 uschar *uucp_from_sender       = US"$1";
1655
1656 uschar *verify_mode            = NULL;
1657 uschar *version_copyright      =
1658  US"Copyright (c) University of Cambridge, 1995 - 2018\n"
1659    "(c) The Exim Maintainers and contributors in ACKNOWLEDGMENTS file, 2007 - 2018";
1660 uschar *version_date           = US"?";
1661 uschar *version_cnumber        = US"????";
1662 uschar *version_string         = US"?";
1663
1664 uschar *warn_message_file      = NULL;
1665 int     warning_count          = 0;
1666 uschar *warnmsg_delay          = NULL;
1667 uschar *warnmsg_recipients     = NULL;
1668
1669
1670 /*  End of globals.c */