SECURITY: default recipients_max to 50,000
[exim.git] / src / src / globals.c
1 /*************************************************
2 *     Exim - an Internet mail transport agent    *
3 *************************************************/
4
5 /* Copyright (c) University of Cambridge 1995 - 2018 */
6 /* Copyright (c) The Exim Maintainers 2020 */
7 /* See the file NOTICE for conditions of use and distribution. */
8
9 /* All the global variables are defined together in this one module, so
10 that they are easy to find. */
11
12 #include "exim.h"
13
14
15 /* Generic options for auths, all of which live inside auth_instance
16 data blocks and hence have the opt_public flag set. */
17
18 optionlist optionlist_auths[] = {
19   { "client_condition", opt_stringptr | opt_public,
20                  OPT_OFF(auth_instance, client_condition) },
21   { "client_set_id", opt_stringptr | opt_public,
22                  OPT_OFF(auth_instance, set_client_id) },
23   { "driver",        opt_stringptr | opt_public,
24                  OPT_OFF(auth_instance, driver_name) },
25   { "public_name",   opt_stringptr | opt_public,
26                  OPT_OFF(auth_instance, public_name) },
27   { "server_advertise_condition", opt_stringptr | opt_public,
28                  OPT_OFF(auth_instance, advertise_condition)},
29   { "server_condition", opt_stringptr | opt_public,
30                  OPT_OFF(auth_instance, server_condition) },
31   { "server_debug_print", opt_stringptr | opt_public,
32                  OPT_OFF(auth_instance, server_debug_string) },
33   { "server_mail_auth_condition", opt_stringptr | opt_public,
34                  OPT_OFF(auth_instance, mail_auth_condition) },
35   { "server_set_id", opt_stringptr | opt_public,
36                  OPT_OFF(auth_instance, set_id) }
37 };
38
39 int     optionlist_auths_size = nelem(optionlist_auths);
40
41 /* An empty host aliases list. */
42
43 uschar *no_aliases             = NULL;
44
45
46 /* For comments on these variables, see globals.h. I'm too idle to
47 duplicate them here... */
48
49 #ifdef EXIM_PERL
50 uschar *opt_perl_startup       = NULL;
51 BOOL    opt_perl_at_start      = FALSE;
52 BOOL    opt_perl_started       = FALSE;
53 BOOL    opt_perl_taintmode     = FALSE;
54 #endif
55
56 #ifdef EXPAND_DLFUNC
57 tree_node *dlobj_anchor        = NULL;
58 #endif
59
60 #ifdef LOOKUP_IBASE
61 uschar *ibase_servers          = NULL;
62 #endif
63
64 #ifdef LOOKUP_LDAP
65 uschar *eldap_ca_cert_dir      = NULL;
66 uschar *eldap_ca_cert_file     = NULL;
67 uschar *eldap_cert_file        = NULL;
68 uschar *eldap_cert_key         = NULL;
69 uschar *eldap_cipher_suite     = NULL;
70 uschar *eldap_default_servers  = NULL;
71 uschar *eldap_require_cert     = NULL;
72 int     eldap_version          = -1;
73 BOOL    eldap_start_tls        = FALSE;
74 #endif
75
76 #ifdef LOOKUP_MYSQL
77 uschar *mysql_servers          = NULL;
78 #endif
79
80 #ifdef LOOKUP_ORACLE
81 uschar *oracle_servers         = NULL;
82 #endif
83
84 #ifdef LOOKUP_PGSQL
85 uschar *pgsql_servers          = NULL;
86 #endif
87
88 #ifdef LOOKUP_REDIS
89 uschar *redis_servers          = NULL;
90 #endif
91
92 #ifdef LOOKUP_SQLITE
93 uschar *sqlite_dbfile          = NULL;
94 int     sqlite_lock_timeout    = 5;
95 #endif
96
97 #ifdef SUPPORT_MOVE_FROZEN_MESSAGES
98 BOOL    move_frozen_messages   = FALSE;
99 #endif
100
101 /* These variables are outside the #ifdef because it keeps the code less
102 cluttered in several places (e.g. during logging) if we can always refer to
103 them. Also, the tls_ variables are now always visible.  Note that these are
104 only used for smtp connections, not for service-daemon access. */
105
106 tls_support tls_in = {
107  .active =              {.sock = -1}
108  /* all other elements zero */
109 };
110 tls_support tls_out = {
111  .active =              {.sock = -1},
112  /* all other elements zero */
113 };
114
115 uschar *dsn_envid              = NULL;
116 int     dsn_ret                = 0;
117 const pcre  *regex_DSN         = NULL;
118 uschar *dsn_advertise_hosts    = NULL;
119
120 #ifndef DISABLE_TLS
121 BOOL    gnutls_compat_mode     = FALSE;
122 BOOL    gnutls_allow_auto_pkcs11 = FALSE;
123 uschar *openssl_options        = NULL;
124 const pcre *regex_STARTTLS     = NULL;
125 uschar *tls_advertise_hosts    = US"*";
126 uschar *tls_certificate        = NULL;
127 uschar *tls_crl                = NULL;
128 /* This default matches NSS DH_MAX_P_BITS value at current time (2012), because
129 that's the interop problem which has been observed: GnuTLS suggesting a higher
130 bit-count as "NORMAL" (2432) and Thunderbird dropping connection. */
131 int     tls_dh_max_bits        = 2236;
132 uschar *tls_dhparam            = NULL;
133 uschar *tls_eccurve            = US"auto";
134 # ifndef DISABLE_OCSP
135 uschar *tls_ocsp_file          = NULL;
136 # endif
137 uschar *tls_privatekey         = NULL;
138 BOOL    tls_remember_esmtp     = FALSE;
139 uschar *tls_require_ciphers    = NULL;
140 # ifndef DISABLE_TLS_RESUME
141 uschar *tls_resumption_hosts   = NULL;
142 # endif
143 uschar *tls_try_verify_hosts   = NULL;
144 #if defined(SUPPORT_SYSDEFAULT_CABUNDLE) || !defined(USE_GNUTLS)
145 uschar *tls_verify_certificates= US"system";
146 #else
147 uschar *tls_verify_certificates= NULL;
148 #endif
149 uschar *tls_verify_hosts       = NULL;
150 int     tls_watch_fd           = -1;
151 time_t  tls_watch_trigger_time = (time_t)0;
152 #else   /*DISABLE_TLS*/
153 uschar *tls_advertise_hosts    = NULL;
154 #endif
155
156 #ifndef DISABLE_PRDR
157 /* Per Recipient Data Response variables */
158 BOOL    prdr_enable            = FALSE;
159 BOOL    prdr_requested         = FALSE;
160 const pcre *regex_PRDR         = NULL;
161 #endif
162
163 #ifdef SUPPORT_I18N
164 const pcre *regex_UTF8         = NULL;
165 #endif
166
167 /* Input-reading functions for messages, so we can use special ones for
168 incoming TCP/IP. The defaults use stdin. We never need these for any
169 stand-alone tests. */
170
171 #if !defined(STAND_ALONE) && !defined(MACRO_PREDEF)
172 int (*lwr_receive_getc)(unsigned) = stdin_getc;
173 uschar * (*lwr_receive_getbuf)(unsigned *) = NULL;
174 int (*lwr_receive_ungetc)(int) = stdin_ungetc;
175 int (*receive_getc)(unsigned)  = stdin_getc;
176 uschar * (*receive_getbuf)(unsigned *)  = NULL;
177 void (*receive_get_cache)(void)= NULL;
178 int (*receive_ungetc)(int)     = stdin_ungetc;
179 int (*receive_feof)(void)      = stdin_feof;
180 int (*receive_ferror)(void)    = stdin_ferror;
181 BOOL (*receive_smtp_buffered)(void) = NULL;   /* Only used for SMTP */
182 #endif
183
184
185 /* List of per-address expansion variables for clearing and saving/restoring
186 when verifying one address while routing/verifying another. We have to have
187 the size explicit, because it is referenced from more than one module. */
188
189 const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT] = {
190   CUSS &deliver_address_data,
191   CUSS &deliver_domain,
192   CUSS &deliver_domain_data,
193   CUSS &deliver_domain_orig,
194   CUSS &deliver_domain_parent,
195   CUSS &deliver_localpart,
196   CUSS &deliver_localpart_data,
197   CUSS &deliver_localpart_orig,
198   CUSS &deliver_localpart_parent,
199   CUSS &deliver_localpart_prefix,
200   CUSS &deliver_localpart_suffix,
201   CUSS (uschar **)(&deliver_recipients),
202   CUSS &deliver_host,
203   CUSS &deliver_home,
204   CUSS &address_file,
205   CUSS &address_pipe,
206   CUSS &self_hostname,
207   NULL };
208
209 int address_expansions_count = sizeof(address_expansions)/sizeof(uschar **);
210
211 /******************************************************************************/
212 /* General global variables.  Boolean flags are done as a group
213 so that only one bit each is needed, packed, for all those we never
214 need to take a pointer - and only a char for the rest.
215 This means a struct, unfortunately since it clutters the sourcecode. */
216
217 struct global_flags f =
218 {
219         .acl_temp_details       = FALSE,
220         .active_local_from_check = FALSE,
221         .active_local_sender_retain = FALSE,
222         .address_test_mode      = FALSE,
223         .admin_user             = FALSE,
224         .allow_auth_unadvertised= FALSE,
225         .allow_unqualified_recipient = TRUE,    /* For local messages */
226         .allow_unqualified_sender = TRUE,       /* Reset for SMTP */
227         .authentication_local   = FALSE,
228
229         .background_daemon      = TRUE,
230
231         .chunking_offered       = FALSE,
232         .config_changed         = FALSE,
233         .continue_more          = FALSE,
234
235         .daemon_listen          = FALSE,
236         .debug_daemon           = FALSE,
237         .deliver_firsttime      = FALSE,
238         .deliver_force          = FALSE,
239         .deliver_freeze         = FALSE,
240         .deliver_force_thaw     = FALSE,
241         .deliver_manual_thaw    = FALSE,
242         .deliver_selectstring_regex = FALSE,
243         .deliver_selectstring_sender_regex = FALSE,
244         .disable_callout_flush  = FALSE,
245         .disable_delay_flush    = FALSE,
246         .disable_logging        = FALSE,
247 #ifndef DISABLE_DKIM
248         .dkim_disable_verify      = FALSE,
249         .dkim_init_done           = FALSE,
250 #endif
251 #ifdef SUPPORT_DMARC
252         .dmarc_has_been_checked  = FALSE,
253         .dmarc_disable_verify    = FALSE,
254         .dmarc_enable_forensic   = FALSE,
255 #endif
256         .dont_deliver           = FALSE,
257         .dot_ends               = TRUE,
258
259         .enable_dollar_recipients = FALSE,
260         .expand_string_forcedfail = FALSE,
261
262         .filter_running         = FALSE,
263
264         .header_rewritten       = FALSE,
265         .helo_verified          = FALSE,
266         .helo_verify_failed     = FALSE,
267         .host_checking_callout  = FALSE,
268         .host_find_failed_syntax= FALSE,
269
270         .inetd_wait_mode        = FALSE,
271         .is_inetd               = FALSE,
272
273         .local_error_message    = FALSE,
274         .log_testing_mode       = FALSE,
275
276 #ifdef WITH_CONTENT_SCAN
277         .no_mbox_unspool        = FALSE,
278 #endif
279         .no_multiline_responses = FALSE,
280
281         .parse_allow_group      = FALSE,
282         .parse_found_group      = FALSE,
283         .pipelining_enable      = TRUE,
284 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
285         .proxy_session_failed   = FALSE,
286 #endif
287
288         .queue_2stage           = FALSE,
289         .queue_only_policy      = FALSE,
290         .queue_run_first_delivery = FALSE,
291         .queue_run_force        = FALSE,
292         .queue_run_local        = FALSE,
293         .queue_running          = FALSE,
294         .queue_smtp             = FALSE,
295
296         .really_exim            = TRUE,
297         .receive_call_bombout   = FALSE,
298         .recipients_discarded   = FALSE,
299         .running_in_test_harness = FALSE,
300
301         .search_find_defer      = FALSE,
302         .sender_address_forced  = FALSE,
303         .sender_host_notsocket  = FALSE,
304         .sender_host_unknown    = FALSE,
305         .sender_local           = FALSE,
306         .sender_name_forced     = FALSE,
307         .sender_set_untrusted   = FALSE,
308         .smtp_authenticated     = FALSE,
309 #ifndef DISABLE_PIPE_CONNECT
310         .smtp_in_early_pipe_advertised = FALSE,
311         .smtp_in_early_pipe_no_auth = FALSE,
312         .smtp_in_early_pipe_used = FALSE,
313 #endif
314         .smtp_in_pipelining_advertised = FALSE,
315         .smtp_in_pipelining_used = FALSE,
316         .smtp_in_quit           = FALSE,
317         .spool_file_wireformat  = FALSE,
318         .submission_mode        = FALSE,
319         .suppress_local_fixups  = FALSE,
320         .suppress_local_fixups_default = FALSE,
321         .synchronous_delivery   = FALSE,
322         .system_filtering       = FALSE,
323
324         .taint_check_slow       = FALSE,
325         .testsuite_delays       = TRUE,
326         .tcp_fastopen_ok        = FALSE,
327         .tcp_in_fastopen        = FALSE,
328         .tcp_in_fastopen_data   = FALSE,
329         .tcp_in_fastopen_logged = FALSE,
330         .tcp_out_fastopen_logged= FALSE,
331         .timestamps_utc         = FALSE,
332         .transport_filter_timed_out = FALSE,
333         .trusted_caller         = FALSE,
334         .trusted_config         = TRUE,
335 };
336
337 /******************************************************************************/
338 /* These are the flags which are either variables or mainsection options,
339 so an address is needed for access, or are exported to local_scan. */
340
341 BOOL    accept_8bitmime        = TRUE; /* deliberately not RFC compliant */
342 BOOL    allow_domain_literals  = FALSE;
343 BOOL    allow_mx_to_ip         = FALSE;
344 BOOL    allow_utf8_domains     = FALSE;
345 BOOL    authentication_failed  = FALSE;
346
347 BOOL    bounce_return_body     = TRUE;
348 BOOL    bounce_return_message  = TRUE;
349 BOOL    check_rfc2047_length   = TRUE;
350 BOOL    commandline_checks_require_admin = FALSE;
351
352 #ifdef EXPERIMENTAL_DCC
353 BOOL    dcc_direct_add_header  = FALSE;
354 #endif
355 BOOL    debug_store            = FALSE;
356 BOOL    delivery_date_remove   = TRUE;
357 BOOL    deliver_drop_privilege = FALSE;
358 #ifdef ENABLE_DISABLE_FSYNC
359 BOOL    disable_fsync          = FALSE;
360 #endif
361 BOOL    disable_ipv6           = FALSE;
362 BOOL    dns_csa_use_reverse    = TRUE;
363 BOOL    drop_cr                = FALSE;         /* No longer used */
364
365 BOOL    envelope_to_remove     = TRUE;
366 BOOL    exim_gid_set           = TRUE;          /* This gid is always set */
367 BOOL    exim_uid_set           = TRUE;          /* This uid is always set */
368 BOOL    extract_addresses_remove_arguments = TRUE;
369
370 BOOL    host_checking          = FALSE;
371 BOOL    host_lookup_deferred   = FALSE;
372 BOOL    host_lookup_failed     = FALSE;
373 BOOL    ignore_fromline_local  = FALSE;
374
375 BOOL    local_from_check       = TRUE;
376 BOOL    local_sender_retain    = FALSE;
377 BOOL    log_timezone           = FALSE;
378 BOOL    message_body_newlines  = FALSE;
379 BOOL    message_logs           = TRUE;
380 #ifdef SUPPORT_I18N
381 BOOL    message_smtputf8       = FALSE;
382 #endif
383 BOOL    mua_wrapper            = FALSE;
384
385 BOOL    preserve_message_logs  = FALSE;
386 BOOL    print_topbitchars      = FALSE;
387 BOOL    prod_requires_admin    = TRUE;
388 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
389 BOOL    proxy_session          = FALSE;
390 #endif
391
392 #ifndef DISABLE_QUEUE_RAMP
393 BOOL    queue_fast_ramp         = FALSE;
394 #endif
395 BOOL    queue_list_requires_admin = TRUE;
396 BOOL    queue_only             = FALSE;
397 BOOL    queue_only_load_latch  = TRUE;
398 BOOL    queue_only_override    = TRUE;
399 BOOL    queue_run_in_order     = FALSE;
400 BOOL    recipients_max_reject  = FALSE;
401 BOOL    return_path_remove     = TRUE;
402
403 BOOL    smtp_batched_input     = FALSE;
404 BOOL    sender_helo_dnssec     = FALSE;
405 BOOL    sender_host_dnssec     = FALSE;
406 BOOL    smtp_accept_keepalive  = TRUE;
407 BOOL    smtp_check_spool_space = TRUE;
408 BOOL    smtp_enforce_sync      = TRUE;
409 BOOL    smtp_etrn_serialize    = TRUE;
410 BOOL    smtp_input             = FALSE;
411 BOOL    smtp_return_error_details = FALSE;
412 #ifdef SUPPORT_SPF
413 BOOL    spf_result_guessed     = FALSE;
414 #endif
415 BOOL    split_spool_directory  = FALSE;
416 BOOL    spool_wireformat       = FALSE;
417 #ifdef EXPERIMENTAL_SRS_ALT
418 BOOL    srs_usehash            = TRUE;
419 BOOL    srs_usetimestamp       = TRUE;
420 #endif
421 BOOL    strict_acl_vars        = FALSE;
422 BOOL    strip_excess_angle_brackets = FALSE;
423 BOOL    strip_trailing_dot     = FALSE;
424 BOOL    syslog_duplication     = TRUE;
425 BOOL    syslog_pid             = TRUE;
426 BOOL    syslog_timestamp       = TRUE;
427 BOOL    system_filter_gid_set  = FALSE;
428 BOOL    system_filter_uid_set  = FALSE;
429
430 BOOL    tcp_nodelay            = TRUE;
431 BOOL    write_rejectlog        = TRUE;
432
433 /******************************************************************************/
434
435 header_line *acl_added_headers = NULL;
436 tree_node *acl_anchor          = NULL;
437 uschar *acl_arg[9]             = {NULL, NULL, NULL, NULL, NULL,
438                                   NULL, NULL, NULL, NULL};
439 int     acl_narg               = 0;
440
441 int     acl_level              = 0;
442
443 uschar *acl_not_smtp           = NULL;
444 #ifdef WITH_CONTENT_SCAN
445 uschar *acl_not_smtp_mime      = NULL;
446 #endif
447 uschar *acl_not_smtp_start     = NULL;
448 uschar *acl_removed_headers    = NULL;
449 uschar *acl_smtp_auth          = NULL;
450 uschar *acl_smtp_connect       = NULL;
451 uschar *acl_smtp_data          = NULL;
452 #ifndef DISABLE_PRDR
453 uschar *acl_smtp_data_prdr     = US"accept";
454 #endif
455 #ifndef DISABLE_DKIM
456 uschar *acl_smtp_dkim          = NULL;
457 #endif
458 uschar *acl_smtp_etrn          = NULL;
459 uschar *acl_smtp_expn          = NULL;
460 uschar *acl_smtp_helo          = NULL;
461 uschar *acl_smtp_mail          = NULL;
462 uschar *acl_smtp_mailauth      = NULL;
463 #ifdef WITH_CONTENT_SCAN
464 uschar *acl_smtp_mime          = NULL;
465 #endif
466 uschar *acl_smtp_notquit       = NULL;
467 uschar *acl_smtp_predata       = NULL;
468 uschar *acl_smtp_quit          = NULL;
469 uschar *acl_smtp_rcpt          = NULL;
470 uschar *acl_smtp_starttls      = NULL;
471 uschar *acl_smtp_vrfy          = NULL;
472
473 tree_node *acl_var_c           = NULL;
474 tree_node *acl_var_m           = NULL;
475 uschar *acl_verify_message     = NULL;
476 string_item *acl_warn_logged   = NULL;
477
478 /* Names of SMTP places for use in ACL error messages, and corresponding SMTP
479 error codes - keep in step with definitions of ACL_WHERE_xxxx in macros.h. */
480
481 uschar *acl_wherenames[]       = { US"RCPT",
482                                    US"MAIL",
483                                    US"PREDATA",
484                                    US"MIME",
485                                    US"DKIM",
486                                    US"DATA",
487 #ifndef DISABLE_PRDR
488                                    US"PRDR",
489 #endif
490                                    US"non-SMTP",
491                                    US"AUTH",
492                                    US"connection",
493                                    US"ETRN",
494                                    US"EXPN",
495                                    US"EHLO or HELO",
496                                    US"MAILAUTH",
497                                    US"non-SMTP-start",
498                                    US"NOTQUIT",
499                                    US"QUIT",
500                                    US"STARTTLS",
501                                    US"VRFY",
502                                    US"delivery",
503                                    US"unknown"
504                                  };
505
506 uschar *acl_wherecodes[]       = { US"550",     /* RCPT */
507                                    US"550",     /* MAIL */
508                                    US"550",     /* PREDATA */
509                                    US"550",     /* MIME */
510                                    US"550",     /* DKIM */
511                                    US"550",     /* DATA */
512 #ifndef DISABLE_PRDR
513                                    US"550",    /* RCPT PRDR */
514 #endif
515                                    US"0",       /* not SMTP; not relevant */
516                                    US"503",     /* AUTH */
517                                    US"550",     /* connect */
518                                    US"458",     /* ETRN */
519                                    US"550",     /* EXPN */
520                                    US"550",     /* HELO/EHLO */
521                                    US"0",       /* MAILAUTH; not relevant */
522                                    US"0",       /* not SMTP; not relevant */
523                                    US"0",       /* NOTQUIT; not relevant */
524                                    US"0",       /* QUIT; not relevant */
525                                    US"550",     /* STARTTLS */
526                                    US"252",     /* VRFY */
527                                    US"0",       /* delivery; not relevant */
528                                    US"0"        /* unknown; not relevant */
529                                  };
530
531 uschar *add_environment        = NULL;
532 address_item  *addr_duplicate  = NULL;
533
534 address_item address_defaults = {
535   .next =               NULL,
536   .parent =             NULL,
537   .first =              NULL,
538   .dupof =              NULL,
539   .start_router =       NULL,
540   .router =             NULL,
541   .transport =          NULL,
542   .host_list =          NULL,
543   .host_used =          NULL,
544   .fallback_hosts =     NULL,
545   .reply =              NULL,
546   .retries =            NULL,
547   .address =            NULL,
548   .unique =             NULL,
549   .cc_local_part =      NULL,
550   .lc_local_part =      NULL,
551   .local_part =         NULL,
552   .prefix =             NULL,
553   .prefix_v =           NULL,
554   .suffix =             NULL,
555   .suffix_v =           NULL,
556   .domain =             NULL,
557   .address_retry_key =  NULL,
558   .domain_retry_key =   NULL,
559   .current_dir =        NULL,
560   .home_dir =           NULL,
561   .message =            NULL,
562   .user_message =       NULL,
563   .onetime_parent =     NULL,
564   .pipe_expandn =       NULL,
565   .return_filename =    NULL,
566   .self_hostname =      NULL,
567   .shadow_message =     NULL,
568 #ifndef DISABLE_TLS
569   .cipher =             NULL,
570   .ourcert =            NULL,
571   .peercert =           NULL,
572   .peerdn =             NULL,
573   .ocsp =               OCSP_NOT_REQ,
574 #endif
575 #ifdef EXPERIMENTAL_DSN_INFO
576   .smtp_greeting =      NULL,
577   .helo_response =      NULL,
578 #endif
579   .authenticator =      NULL,
580   .auth_id =            NULL,
581   .auth_sndr =          NULL,
582   .dsn_orcpt =          NULL,
583   .dsn_flags =          0,
584   .dsn_aware =          0,
585   .uid =                (uid_t)(-1),
586   .gid =                (gid_t)(-1),
587   .flags =              { 0 },
588   .domain_cache =       { 0 },                /* domain_cache - any larger array should be zeroed */
589   .localpart_cache =    { 0 },                /* localpart_cache - ditto */
590   .mode =               -1,
591   .more_errno =         0,
592   .delivery_time =      {.tv_sec = 0, .tv_usec = 0},
593   .basic_errno =        ERRNO_UNKNOWNERROR,
594   .child_count =        0,
595   .return_file =        -1,
596   .special_action =     SPECIAL_NONE,
597   .transport_return =   DEFER,
598   .prop = {                                     /* fields that are propagated to children */
599     .address_data =     NULL,
600     .domain_data =      NULL,
601     .localpart_data =   NULL,
602     .errors_address =   NULL,
603     .extra_headers =    NULL,
604     .remove_headers =   NULL,
605     .variables =        NULL,
606 #ifdef EXPERIMENTAL_SRS_ALT
607     .srs_sender =       NULL,
608 #endif
609     .ignore_error =     FALSE,
610 #ifdef SUPPORT_I18N
611     .utf8_msg =         FALSE,
612     .utf8_downcvt =     FALSE,
613     .utf8_downcvt_maybe = FALSE
614 #endif
615   }
616 };
617
618 uschar *address_file           = NULL;
619 uschar *address_pipe           = NULL;
620 tree_node *addresslist_anchor  = NULL;
621 int     addresslist_count      = 0;
622 gid_t  *admin_groups           = NULL;
623
624 #ifdef EXPERIMENTAL_ARC
625 struct arc_set *arc_received    = NULL;
626 int     arc_received_instance   = 0;
627 int     arc_oldest_pass         = 0;
628 const uschar *arc_state         = NULL;
629 const uschar *arc_state_reason  = NULL;
630 #endif
631
632 uschar *authenticated_fail_id  = NULL;
633 uschar *authenticated_id       = NULL;
634 uschar *authenticated_sender   = NULL;
635 auth_instance  *auths          = NULL;
636 uschar *auth_advertise_hosts   = US"*";
637 auth_instance auth_defaults    = {
638     .next =             NULL,
639     .name =             NULL,
640     .info =             NULL,
641     .options_block =    NULL,
642     .driver_name =      NULL,
643     .advertise_condition = NULL,
644     .client_condition = NULL,
645     .public_name =      NULL,
646     .set_id =           NULL,
647     .set_client_id =    NULL,
648     .mail_auth_condition = NULL,
649     .server_debug_string = NULL,
650     .server_condition = NULL,
651     .client =           FALSE,
652     .server =           FALSE,
653     .advertised =       FALSE
654 };
655
656 uschar *auth_defer_msg         = US"reason not recorded";
657 uschar *auth_defer_user_msg    = US"";
658 uschar *auth_vars[AUTH_VARS];
659 int     auto_thaw              = 0;
660 #ifdef WITH_CONTENT_SCAN
661 int     av_failed              = FALSE; /* boolean but accessed as vtype_int*/
662 uschar *av_scanner             = US"sophie:/var/run/sophie";  /* AV scanner */
663 #endif
664
665 #if BASE_62 == 62
666 uschar *base62_chars=
667     US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz";
668 #else
669 uschar *base62_chars= US"0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZ";
670 #endif
671
672 uschar *bi_command             = NULL;
673 uschar *big_buffer             = NULL;
674 int     big_buffer_size        = BIG_BUFFER_SIZE;
675 #ifdef EXPERIMENTAL_BRIGHTMAIL
676 uschar *bmi_alt_location       = NULL;
677 uschar *bmi_base64_tracker_verdict = NULL;
678 uschar *bmi_base64_verdict     = NULL;
679 uschar *bmi_config_file        = US"/opt/brightmail/etc/brightmail.cfg";
680 int     bmi_deliver            = 1;
681 int     bmi_run                = 0;
682 uschar *bmi_verdicts           = NULL;
683 #endif
684 int     bsmtp_transaction_linecount = 0;
685 int     body_8bitmime          = 0;
686 int     body_linecount         = 0;
687 int     body_zerocount         = 0;
688 uschar *bounce_message_file    = NULL;
689 uschar *bounce_message_text    = NULL;
690 uschar *bounce_recipient       = NULL;
691 int     bounce_return_linesize_limit = 998;
692 int     bounce_return_size_limit = 100*1024;
693 uschar *bounce_sender_authentication = NULL;
694
695 uschar *callout_address        = NULL;
696 int     callout_cache_domain_positive_expire = 7*24*60*60;
697 int     callout_cache_domain_negative_expire = 3*60*60;
698 int     callout_cache_positive_expire = 24*60*60;
699 int     callout_cache_negative_expire = 2*60*60;
700 uschar *callout_random_local_part = US"$primary_hostname-$tod_epoch-testing";
701 uschar *check_dns_names_pattern= US"(?i)^(?>(?(1)\\.|())[^\\W](?>[a-z0-9/_-]*[^\\W])?)+(\\.?)$";
702 int     check_log_inodes       = 100;
703 int_eximarith_t check_log_space = 10*1024;      /* 10K Kbyte == 10MB */
704 int     check_spool_inodes     = 100;
705 int_eximarith_t check_spool_space = 10*1024;    /* 10K Kbyte == 10MB */
706
707 uschar *chunking_advertise_hosts = US"*";
708 unsigned chunking_datasize     = 0;
709 unsigned chunking_data_left    = 0;
710 chunking_state_t chunking_state= CHUNKING_NOT_OFFERED;
711 const pcre *regex_CHUNKING     = NULL;
712
713 #ifdef EXPERIMENTAL_ESMTP_LIMITS
714 const pcre *regex_LIMITS        = NULL;
715 #endif
716
717 uschar *client_authenticator   = NULL;
718 uschar *client_authenticated_id = NULL;
719 uschar *client_authenticated_sender = NULL;
720 int     clmacro_count          = 0;
721 uschar *clmacros[MAX_CLMACROS];
722 FILE   *config_file            = NULL;
723 const uschar *config_filename  = NULL;
724 int     config_lineno          = 0;
725 #ifdef CONFIGURE_GROUP
726 gid_t   config_gid             = CONFIGURE_GROUP;
727 #else
728 gid_t   config_gid             = 0;
729 #endif
730 uschar *config_main_filelist   = US CONFIGURE_FILE
731                          "\0<-----------Space to patch configure_filename->";
732 uschar *config_main_filename   = NULL;
733 uschar *config_main_directory  = NULL;
734
735 #ifdef CONFIGURE_OWNER
736 uid_t   config_uid             = CONFIGURE_OWNER;
737 #else
738 uid_t   config_uid             = 0;
739 #endif
740
741 int     connection_max_messages= -1;
742 uschar *continue_proxy_cipher  = NULL;
743 BOOL    continue_proxy_dane    = FALSE;
744 uschar *continue_proxy_sni     = NULL;
745 uschar *continue_hostname      = NULL;
746 uschar *continue_host_address  = NULL;
747 int     continue_sequence      = 1;
748 uschar *continue_transport     = NULL;
749 #ifdef EXPERIMENTAL_ESMTP_LIMITS
750 unsigned continue_limit_mail   = 0;
751 unsigned continue_limit_rcpt   = 0;
752 unsigned continue_limit_rcptdom= 0;
753 #endif
754
755 uschar *csa_status             = NULL;
756 cut_t   cutthrough = {
757   .callout_hold_only =  FALSE,                          /* verify-only: normal delivery */
758   .delivery =           FALSE,                          /* when to attempt */
759   .defer_pass =         FALSE,                          /* on defer: spool locally */
760   .is_tls =             FALSE,                          /* not a TLS conn yet */
761   .cctx =               {.sock = -1},                   /* open connection */
762   .nrcpt =              0,                              /* number of addresses */
763 };
764
765 int     daemon_notifier_fd     = -1;
766 uschar *daemon_smtp_port       = US"smtp";
767 int     daemon_startup_retries = 9;
768 int     daemon_startup_sleep   = 30;
769
770 #ifdef EXPERIMENTAL_DCC
771 uschar *dcc_header             = NULL;
772 uschar *dcc_result             = NULL;
773 uschar *dccifd_address         = US"/usr/local/dcc/var/dccifd";
774 uschar *dccifd_options         = US"header";
775 #endif
776
777 int     debug_fd               = -1;
778 FILE   *debug_file             = NULL;
779 int     debug_notall[]         = {
780   Di_memory,
781   Di_noutf8,
782   -1
783 };
784 bit_table debug_options[]      = { /* must be in alphabetical order and use
785                                  only the enum values from macro.h */
786   BIT_TABLE(D, acl),
787   BIT_TABLE(D, all),
788   BIT_TABLE(D, auth),
789   BIT_TABLE(D, deliver),
790   BIT_TABLE(D, dns),
791   BIT_TABLE(D, dnsbl),
792   BIT_TABLE(D, exec),
793   BIT_TABLE(D, expand),
794   BIT_TABLE(D, filter),
795   BIT_TABLE(D, hints_lookup),
796   BIT_TABLE(D, host_lookup),
797   BIT_TABLE(D, ident),
798   BIT_TABLE(D, interface),
799   BIT_TABLE(D, lists),
800   BIT_TABLE(D, load),
801   BIT_TABLE(D, local_scan),
802   BIT_TABLE(D, lookup),
803   BIT_TABLE(D, memory),
804   BIT_TABLE(D, noutf8),
805   BIT_TABLE(D, pid),
806   BIT_TABLE(D, process_info),
807   BIT_TABLE(D, queue_run),
808   BIT_TABLE(D, receive),
809   BIT_TABLE(D, resolver),
810   BIT_TABLE(D, retry),
811   BIT_TABLE(D, rewrite),
812   BIT_TABLE(D, route),
813   BIT_TABLE(D, timestamp),
814   BIT_TABLE(D, tls),
815   BIT_TABLE(D, transport),
816   BIT_TABLE(D, uid),
817   BIT_TABLE(D, verify),
818 };
819 int     debug_options_count    = nelem(debug_options);
820
821 unsigned int debug_selector    = 0;
822 int     delay_warning[DELAY_WARNING_SIZE] = { DELAY_WARNING_SIZE, 1, 24*60*60 };
823 uschar *delay_warning_condition=
824   US"${if or {"
825             "{ !eq{$h_list-id:$h_list-post:$h_list-subscribe:}{} }"
826             "{ match{$h_precedence:}{(?i)bulk|list|junk} }"
827             "{ match{$h_auto-submitted:}{(?i)auto-generated|auto-replied} }"
828             "} {no}{yes}}";
829 uschar *deliver_address_data   = NULL;
830 int     deliver_datafile       = -1;
831 const uschar *deliver_domain   = NULL;
832 uschar *deliver_domain_data    = NULL;
833 const uschar *deliver_domain_orig = NULL;
834 const uschar *deliver_domain_parent = NULL;
835 time_t  deliver_frozen_at      = 0;
836 uschar *deliver_home           = NULL;
837 const uschar *deliver_host     = NULL;
838 const uschar *deliver_host_address = NULL;
839 int     deliver_host_port      = 0;
840 uschar *deliver_in_buffer      = NULL;
841 ino_t   deliver_inode          = 0;
842 uschar *deliver_localpart      = NULL;
843 uschar *deliver_localpart_data = NULL;
844 uschar *deliver_localpart_orig = NULL;
845 uschar *deliver_localpart_parent = NULL;
846 uschar *deliver_localpart_prefix = NULL;
847 uschar *deliver_localpart_prefix_v = NULL;
848 uschar *deliver_localpart_suffix = NULL;
849 uschar *deliver_localpart_suffix_v = NULL;
850 uschar *deliver_out_buffer     = NULL;
851 int     deliver_queue_load_max = -1;
852 address_item  *deliver_recipients = NULL;
853 uschar *deliver_selectstring   = NULL;
854 uschar *deliver_selectstring_sender = NULL;
855
856 #ifndef DISABLE_DKIM
857 unsigned dkim_collect_input      = 0;
858 uschar *dkim_cur_signer          = NULL;
859 int     dkim_key_length          = 0;
860 void   *dkim_signatures          = NULL;
861 uschar *dkim_signers             = NULL;
862 uschar *dkim_signing_domain      = NULL;
863 uschar *dkim_signing_selector    = NULL;
864 uschar *dkim_verify_hashes       = US"sha256:sha512";
865 uschar *dkim_verify_keytypes     = US"ed25519:rsa";
866 uschar *dkim_verify_min_keysizes = US"rsa=1024 ed25519=250";
867 BOOL    dkim_verify_minimal      = FALSE;
868 uschar *dkim_verify_overall      = NULL;
869 uschar *dkim_verify_signers      = US"$dkim_signers";
870 uschar *dkim_verify_status       = NULL;
871 uschar *dkim_verify_reason       = NULL;
872 #endif
873 #ifdef SUPPORT_DMARC
874 uschar *dmarc_domain_policy     = NULL;
875 uschar *dmarc_forensic_sender   = NULL;
876 uschar *dmarc_history_file      = NULL;
877 uschar *dmarc_status            = NULL;
878 uschar *dmarc_status_text       = NULL;
879 uschar *dmarc_tld_file          = NULL;
880 uschar *dmarc_used_domain       = NULL;
881 #endif
882
883 uschar *dns_again_means_nonexist = NULL;
884 int     dns_csa_search_limit   = 5;
885 int     dns_cname_loops        = 1;
886 #ifdef SUPPORT_DANE
887 int     dns_dane_ok            = -1;
888 #endif
889 uschar *dns_ipv4_lookup        = NULL;
890 int     dns_retrans            = 0;
891 int     dns_retry              = 0;
892 int     dns_dnssec_ok          = -1; /* <0 = not coerced */
893 uschar *dns_trust_aa           = NULL;
894 int     dns_use_edns0          = -1; /* <0 = not coerced */
895 uschar *dnslist_domain         = NULL;
896 uschar *dnslist_matched        = NULL;
897 uschar *dnslist_text           = NULL;
898 uschar *dnslist_value          = NULL;
899 tree_node *domainlist_anchor   = NULL;
900 int     domainlist_count       = 0;
901 uschar *dsn_from               = US DEFAULT_DSN_FROM;
902
903 int     errno_quota            = ERRNO_QUOTA;
904 uschar *errors_copy            = NULL;
905 int     error_handling         = ERRORS_SENDER;
906 uschar *errors_reply_to        = NULL;
907 int     errors_sender_rc       = EXIT_FAILURE;
908 #ifndef DISABLE_EVENT
909 uschar *event_action             = NULL;        /* expansion for delivery events */
910 uschar *event_data               = NULL;        /* auxiliary data variable for event */
911 int     event_defer_errno        = 0;
912 const uschar *event_name         = NULL;        /* event name variable */
913 #endif
914
915
916 gid_t   exim_gid               = EXIM_GID;
917 uschar *exim_path              = US BIN_DIRECTORY "/exim"
918                         "\0<---------------Space to patch exim_path->";
919 uid_t   exim_uid               = EXIM_UID;
920 int     expand_level           = 0;             /* Nesting depth, indent for debug */
921 int     expand_forbid          = 0;
922 int     expand_nlength[EXPAND_MAXN+1];
923 int     expand_nmax            = -1;
924 uschar *expand_nstring[EXPAND_MAXN+1];
925 uschar *expand_string_message;
926 uschar *extra_local_interfaces = NULL;
927
928 int     fake_response          = OK;
929 uschar *fake_response_text     = US"Your message has been rejected but is "
930                                    "being kept for evaluation.\nIf it was a "
931                                    "legitimate message, it may still be "
932                                    "delivered to the target recipient(s).";
933 int     filter_n[FILTER_VARIABLE_COUNT];
934 int     filter_sn[FILTER_VARIABLE_COUNT];
935 int     filter_test            = FTEST_NONE;
936 uschar *filter_test_sfile      = NULL;
937 uschar *filter_test_ufile      = NULL;
938 uschar *filter_thisaddress     = NULL;
939 int     finduser_retries       = 0;
940 uid_t   fixed_never_users[]    = { FIXED_NEVER_USERS };
941 uschar *freeze_tell            = NULL;
942 uschar *freeze_tell_config     = NULL;
943 uschar *fudged_queue_times     = US"";
944
945 uschar *gecos_name             = NULL;
946 uschar *gecos_pattern          = NULL;
947 rewrite_rule  *global_rewrite_rules = NULL;
948
949 volatile sig_atomic_t had_command_timeout = 0;
950 volatile sig_atomic_t had_command_sigterm = 0;
951 volatile sig_atomic_t had_data_timeout    = 0;
952 volatile sig_atomic_t had_data_sigint     = 0;
953 uschar *headers_charset        = US HEADERS_CHARSET;
954 int     header_insert_maxlen   = 64 * 1024;
955 header_line  *header_last      = NULL;
956 header_line  *header_list      = NULL;
957 int     header_maxsize         = HEADER_MAXSIZE;
958 int     header_line_maxsize    = 0;
959
960 header_name header_names[] = {
961   /* name               len     allow_resent    htype */
962   { US"bcc",            3,      TRUE,           htype_bcc },
963   { US"cc",             2,      TRUE,           htype_cc },
964   { US"date",           4,      TRUE,           htype_date },
965   { US"delivery-date", 13,      FALSE,          htype_delivery_date },
966   { US"envelope-to",   11,      FALSE,          htype_envelope_to },
967   { US"from",           4,      TRUE,           htype_from },
968   { US"message-id",    10,      TRUE,           htype_id },
969   { US"received",       8,      FALSE,          htype_received },
970   { US"reply-to",       8,      FALSE,          htype_reply_to },
971   { US"return-path",   11,      FALSE,          htype_return_path },
972   { US"sender",         6,      TRUE,           htype_sender },
973   { US"subject",        7,      FALSE,          htype_subject },
974   { US"to",             2,      TRUE,           htype_to }
975 };
976
977 int header_names_size          = nelem(header_names);
978
979 uschar *helo_accept_junk_hosts = NULL;
980 uschar *helo_allow_chars       = US"";
981 uschar *helo_lookup_domains    = US"@ : @[]";
982 uschar *helo_try_verify_hosts  = NULL;
983 uschar *helo_verify_hosts      = NULL;
984 const uschar *hex_digits       = CUS"0123456789abcdef";
985 uschar *hold_domains           = NULL;
986 uschar *host_data              = NULL;
987 uschar *host_lookup            = NULL;
988 uschar *host_lookup_order      = US"bydns:byaddr";
989 uschar *host_lookup_msg        = US"";
990 int     host_number            = 0;
991 uschar *host_number_string     = NULL;
992 uschar *host_reject_connection = NULL;
993 tree_node *hostlist_anchor     = NULL;
994 int     hostlist_count         = 0;
995 uschar *hosts_treat_as_local   = NULL;
996 uschar *hosts_connection_nolog = NULL;
997
998 int     ignore_bounce_errors_after = 10*7*24*60*60;  /* 10 weeks */
999 uschar *ignore_fromline_hosts  = NULL;
1000 int     inetd_wait_timeout     = -1;
1001 uschar *initial_cwd            = NULL;
1002 uschar *interface_address      = NULL;
1003 int     interface_port         = -1;
1004 uschar *iterate_item           = NULL;
1005
1006 int     journal_fd             = -1;
1007
1008 uschar *keep_environment       = NULL;
1009
1010 int     keep_malformed         = 4*24*60*60;    /* 4 days */
1011
1012 uschar *eldap_dn               = NULL;
1013 #ifdef EXPERIMENTAL_ESMTP_LIMITS
1014 uschar *limits_advertise_hosts = US"*";
1015 #endif
1016 int     load_average           = -2;
1017 uschar *local_from_prefix      = NULL;
1018 uschar *local_from_suffix      = NULL;
1019
1020 #if HAVE_IPV6
1021 uschar *local_interfaces       = US"<; ::0 ; 0.0.0.0";
1022 #else
1023 uschar *local_interfaces       = US"0.0.0.0";
1024 #endif
1025
1026 #ifdef HAVE_LOCAL_SCAN
1027 uschar *local_scan_data        = NULL;
1028 int     local_scan_timeout     = 5*60;
1029 #endif
1030 gid_t   local_user_gid         = (gid_t)(-1);
1031 uid_t   local_user_uid         = (uid_t)(-1);
1032
1033 tree_node *localpartlist_anchor= NULL;
1034 int     localpartlist_count    = 0;
1035 uschar *log_buffer             = NULL;
1036
1037 int     log_default[]          = { /* for initializing log_selector */
1038   Li_acl_warn_skipped,
1039   Li_connection_reject,
1040   Li_delay_delivery,
1041   Li_dkim,
1042   Li_dnslist_defer,
1043   Li_etrn,
1044   Li_host_lookup_failed,
1045   Li_lost_incoming_connection,
1046   Li_outgoing_interface, /* see d_log_interface in deliver.c */
1047   Li_msg_id,
1048   Li_queue_run,
1049   Li_queue_time_exclusive,
1050   Li_rejected_header,
1051   Li_retry_defer,
1052   Li_sender_verify_fail,
1053   Li_size_reject,
1054   Li_skip_delivery,
1055   Li_smtp_confirmation,
1056   Li_tls_certificate_verified,
1057   Li_tls_cipher,
1058   -1
1059 };
1060
1061 uschar *log_file_path          = US LOG_FILE_PATH
1062                            "\0<--------------Space to patch log_file_path->";
1063
1064 int     log_notall[]           = {
1065   -1
1066 };
1067 bit_table log_options[]        = { /* must be in alphabetical order,
1068                                 with definitions from enum logbit. */
1069   BIT_TABLE(L, 8bitmime),
1070   BIT_TABLE(L, acl_warn_skipped),
1071   BIT_TABLE(L, address_rewrite),
1072   BIT_TABLE(L, all),
1073   BIT_TABLE(L, all_parents),
1074   BIT_TABLE(L, arguments),
1075   BIT_TABLE(L, connection_reject),
1076   BIT_TABLE(L, delay_delivery),
1077   BIT_TABLE(L, deliver_time),
1078   BIT_TABLE(L, delivery_size),
1079 #ifndef DISABLE_DKIM
1080   BIT_TABLE(L, dkim),
1081   BIT_TABLE(L, dkim_verbose),
1082 #endif
1083   BIT_TABLE(L, dnslist_defer),
1084   BIT_TABLE(L, dnssec),
1085   BIT_TABLE(L, etrn),
1086   BIT_TABLE(L, host_lookup_failed),
1087   BIT_TABLE(L, ident_timeout),
1088   BIT_TABLE(L, incoming_interface),
1089   BIT_TABLE(L, incoming_port),
1090   BIT_TABLE(L, lost_incoming_connection),
1091   BIT_TABLE(L, millisec),
1092   BIT_TABLE(L, msg_id),
1093   BIT_TABLE(L, msg_id_created),
1094   BIT_TABLE(L, outgoing_interface),
1095   BIT_TABLE(L, outgoing_port),
1096   BIT_TABLE(L, pid),
1097   BIT_TABLE(L, pipelining),
1098   BIT_TABLE(L, protocol_detail),
1099 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1100   BIT_TABLE(L, proxy),
1101 #endif
1102   BIT_TABLE(L, queue_run),
1103   BIT_TABLE(L, queue_time),
1104   BIT_TABLE(L, queue_time_exclusive),
1105   BIT_TABLE(L, queue_time_overall),
1106   BIT_TABLE(L, receive_time),
1107   BIT_TABLE(L, received_recipients),
1108   BIT_TABLE(L, received_sender),
1109   BIT_TABLE(L, rejected_header),
1110   { US"rejected_headers", Li_rejected_header },
1111   BIT_TABLE(L, retry_defer),
1112   BIT_TABLE(L, return_path_on_delivery),
1113   BIT_TABLE(L, sender_on_delivery),
1114   BIT_TABLE(L, sender_verify_fail),
1115   BIT_TABLE(L, size_reject),
1116   BIT_TABLE(L, skip_delivery),
1117   BIT_TABLE(L, smtp_confirmation),
1118   BIT_TABLE(L, smtp_connection),
1119   BIT_TABLE(L, smtp_incomplete_transaction),
1120   BIT_TABLE(L, smtp_mailauth),
1121   BIT_TABLE(L, smtp_no_mail),
1122   BIT_TABLE(L, smtp_protocol_error),
1123   BIT_TABLE(L, smtp_syntax_error),
1124   BIT_TABLE(L, subject),
1125   BIT_TABLE(L, tls_certificate_verified),
1126   BIT_TABLE(L, tls_cipher),
1127   BIT_TABLE(L, tls_peerdn),
1128   BIT_TABLE(L, tls_resumption),
1129   BIT_TABLE(L, tls_sni),
1130   BIT_TABLE(L, unknown_in_list),
1131 };
1132 int     log_options_count      = nelem(log_options);
1133
1134 int     log_reject_target      = 0;
1135 unsigned int log_selector[log_selector_size]; /* initialized in main() */
1136 uschar *log_selector_string    = NULL;
1137 FILE   *log_stderr             = NULL;
1138 uschar *login_sender_address   = NULL;
1139 uschar *lookup_dnssec_authenticated = NULL;
1140 int     lookup_open_max        = 25;
1141 uschar *lookup_value           = NULL;
1142
1143 macro_item *macros_user        = NULL;
1144 uschar *mailstore_basename     = NULL;
1145 #ifdef WITH_CONTENT_SCAN
1146 uschar *malware_name           = NULL;  /* Virus Name */
1147 #endif
1148 int     max_received_linelength= 0;
1149 int     max_username_length    = 0;
1150 int     message_age            = 0;
1151 uschar *message_body           = NULL;
1152 uschar *message_body_end       = NULL;
1153 int     message_body_size      = 0;
1154 int     message_body_visible   = 500;
1155 int     message_ended          = END_NOTSTARTED;
1156 uschar *message_headers        = NULL;
1157 uschar *message_id;
1158 uschar *message_id_domain      = NULL;
1159 uschar *message_id_text        = NULL;
1160 struct timeval message_id_tv   = { 0, 0 };
1161 uschar  message_id_option[MESSAGE_ID_LENGTH + 3];
1162 uschar *message_id_external;
1163 int     message_linecount      = 0;
1164 int     message_size           = 0;
1165 uschar *message_size_limit     = US"50M";
1166 #ifdef SUPPORT_I18N
1167 int     message_utf8_downconvert = 0;   /* -1 ifneeded; 0 never; 1 always */
1168 #endif
1169 uschar  message_subdir[2]      = { 0, 0 };
1170 uschar *message_reference      = NULL;
1171
1172 /* MIME ACL expandables */
1173 #ifdef WITH_CONTENT_SCAN
1174 int     mime_anomaly_level     = 0;
1175 const uschar *mime_anomaly_text      = NULL;
1176 uschar *mime_boundary          = NULL;
1177 uschar *mime_charset           = NULL;
1178 uschar *mime_content_description = NULL;
1179 uschar *mime_content_disposition = NULL;
1180 uschar *mime_content_id        = NULL;
1181 unsigned int mime_content_size = 0;
1182 uschar *mime_content_transfer_encoding = NULL;
1183 uschar *mime_content_type      = NULL;
1184 uschar *mime_decoded_filename  = NULL;
1185 uschar *mime_filename          = NULL;
1186 int     mime_is_multipart      = 0;
1187 int     mime_is_coverletter    = 0;
1188 int     mime_is_rfc822         = 0;
1189 int     mime_part_count        = -1;
1190 #endif
1191
1192 uid_t  *never_users            = NULL;
1193 uschar *notifier_socket        = US"$spool_directory/" NOTIFIER_SOCKET_NAME ;
1194
1195 const int on                   = 1;     /* for setsockopt */
1196 const int off                  = 0;
1197
1198 uid_t   original_euid;
1199 gid_t   originator_gid;
1200 uschar *originator_login       = NULL;
1201 uschar *originator_name        = NULL;
1202 uid_t   originator_uid;
1203 uschar *override_local_interfaces = NULL;
1204 uschar *override_pid_file_path = NULL;
1205
1206 uschar *percent_hack_domains   = NULL;
1207 uschar *pid_file_path          = US PID_FILE_PATH
1208                            "\0<--------------Space to patch pid_file_path->";
1209 #ifndef DISABLE_PIPE_CONNECT
1210 uschar *pipe_connect_advertise_hosts = US"*";
1211 #endif
1212 uschar *pipelining_advertise_hosts = US"*";
1213 uschar *primary_hostname       = NULL;
1214 uschar *process_info;
1215 int     process_info_len       = 0;
1216 uschar *process_log_path       = NULL;
1217 const uschar *process_purpose  = US"fresh-exec";
1218
1219 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
1220 uschar *hosts_proxy            = NULL;
1221 uschar *proxy_external_address = NULL;
1222 int     proxy_external_port    = 0;
1223 uschar *proxy_local_address    = NULL;
1224 int     proxy_local_port       = 0;
1225 int     proxy_protocol_timeout = 3;
1226 #endif
1227
1228 uschar *prvscheck_address      = NULL;
1229 uschar *prvscheck_keynum       = NULL;
1230 uschar *prvscheck_result       = NULL;
1231
1232
1233 const uschar *qualify_domain_recipient = NULL;
1234 uschar *qualify_domain_sender  = NULL;
1235 uschar *queue_domains          = NULL;
1236 int     queue_interval         = -1;
1237 uschar *queue_name             = US"";
1238 uschar *queue_name_dest        = NULL;
1239 uschar *queue_only_file        = NULL;
1240 int     queue_only_load        = -1;
1241 uschar *queue_run_max          = US"5";
1242 pid_t   queue_run_pid          = (pid_t)0;
1243 int     queue_run_pipe         = -1;
1244 unsigned queue_size            = 0;
1245 time_t  queue_size_next        = 0;
1246 uschar *queue_smtp_domains     = NULL;
1247
1248 uint32_t random_seed           = 0;
1249 tree_node *ratelimiters_cmd    = NULL;
1250 tree_node *ratelimiters_conn   = NULL;
1251 tree_node *ratelimiters_mail   = NULL;
1252 uschar *raw_active_hostname    = NULL;
1253 uschar *raw_sender             = NULL;
1254 uschar **raw_recipients        = NULL;
1255 int     raw_recipients_count   = 0;
1256
1257 int     rcpt_count             = 0;
1258 int     rcpt_fail_count        = 0;
1259 int     rcpt_defer_count       = 0;
1260 gid_t   real_gid;
1261 uid_t   real_uid;
1262 int     receive_linecount      = 0;
1263 int     receive_messagecount   = 0;
1264 int     receive_timeout        = 0;
1265 int     received_count         = 0;
1266 uschar *received_for           = NULL;
1267
1268 /*  This is the default text for Received headers generated by Exim. The
1269 date  will be automatically added on the end. */
1270
1271 uschar *received_header_text   = US
1272      "Received: "
1273      "${if def:sender_rcvhost {from $sender_rcvhost\n\t}"
1274        "{${if def:sender_ident {from ${quote_local_part:$sender_ident} }}"
1275          "${if def:sender_helo_name {(helo=$sender_helo_name)\n\t}}}}"
1276      "by $primary_hostname "
1277      "${if def:received_protocol {with $received_protocol }}"
1278 #ifndef DISABLE_TLS
1279      "${if def:tls_in_ver        { ($tls_in_ver)}}"
1280      "${if def:tls_in_cipher_std { tls $tls_in_cipher_std\n\t}}"
1281 #endif
1282      "(Exim $version_number)\n\t"
1283      "${if def:sender_address {(envelope-from <$sender_address>)\n\t}}"
1284      "id $message_exim_id"
1285      "${if def:received_for {\n\tfor $received_for}}"
1286      "\0<---------------Space to patch received_header_text->";
1287
1288 int     received_headers_max   = 30;
1289 uschar *received_protocol      = NULL;
1290 struct timeval received_time   = { 0, 0 };
1291 struct timeval received_time_complete = { 0, 0 };
1292 uschar *recipient_data         = NULL;
1293 uschar *recipient_unqualified_hosts = NULL;
1294 uschar *recipient_verify_failure = NULL;
1295 int     recipients_count       = 0;
1296 recipient_item  *recipients_list = NULL;
1297 int     recipients_list_max    = 0;
1298 int     recipients_max         = 50000;
1299 const pcre *regex_AUTH         = NULL;
1300 const pcre *regex_check_dns_names = NULL;
1301 const pcre *regex_From         = NULL;
1302 const pcre *regex_IGNOREQUOTA  = NULL;
1303 const pcre *regex_PIPELINING   = NULL;
1304 const pcre *regex_SIZE         = NULL;
1305 #ifndef DISABLE_PIPE_CONNECT
1306 const pcre *regex_EARLY_PIPE   = NULL;
1307 #endif
1308 const pcre *regex_ismsgid      = NULL;
1309 const pcre *regex_smtp_code    = NULL;
1310 uschar *regex_vars[REGEX_VARS];
1311 #ifdef WHITELIST_D_MACROS
1312 const pcre *regex_whitelisted_macro = NULL;
1313 #endif
1314 #ifdef WITH_CONTENT_SCAN
1315 uschar *regex_match_string     = NULL;
1316 #endif
1317 int     remote_delivery_count  = 0;
1318 int     remote_max_parallel    = 2;
1319 uschar *remote_sort_domains    = NULL;
1320 int     retry_data_expire      = 7*24*60*60;
1321 int     retry_interval_max     = 24*60*60;
1322 int     retry_maximum_timeout  = 0;        /* set from retry config */
1323 retry_config  *retries         = NULL;
1324 uschar *return_path            = NULL;
1325 int     rewrite_existflags     = 0;
1326 uschar *rfc1413_hosts          = US"@[]";
1327 int     rfc1413_query_timeout  = 0;
1328 uid_t   root_gid               = ROOT_GID;
1329 uid_t   root_uid               = ROOT_UID;
1330
1331 router_instance  *routers  = NULL;
1332 router_instance  router_defaults = {
1333     .next =                     NULL,
1334     .name =                     NULL,
1335     .info =                     NULL,
1336     .options_block =            NULL,
1337     .driver_name =              NULL,
1338
1339     .address_data =             NULL,
1340 #ifdef EXPERIMENTAL_BRIGHTMAIL
1341     .bmi_rule =                 NULL,
1342 #endif
1343     .cannot_route_message =     NULL,
1344     .condition =                NULL,
1345     .current_directory =        NULL,
1346     .debug_string =             NULL,
1347     .domains =                  NULL,
1348     .errors_to =                NULL,
1349     .expand_gid =               NULL,
1350     .expand_uid =               NULL,
1351     .expand_more =              NULL,
1352     .expand_unseen =            NULL,
1353     .extra_headers =            NULL,
1354     .fallback_hosts =           NULL,
1355     .home_directory =           NULL,
1356     .ignore_target_hosts =      NULL,
1357     .local_parts =              NULL,
1358     .pass_router_name =         NULL,
1359     .prefix =                   NULL,
1360     .redirect_router_name =     NULL,
1361     .remove_headers =           NULL,
1362     .require_files =            NULL,
1363     .router_home_directory =    NULL,
1364     .self =                     US"freeze",
1365     .senders =                  NULL,
1366     .suffix =                   NULL,
1367     .translate_ip_address =     NULL,
1368     .transport_name =           NULL,
1369
1370     .address_test =             TRUE,
1371 #ifdef EXPERIMENTAL_BRIGHTMAIL
1372     .bmi_deliver_alternate =    FALSE,
1373     .bmi_deliver_default =      FALSE,
1374     .bmi_dont_deliver =         FALSE,
1375 #endif
1376     .expn =                     TRUE,
1377     .caseful_local_part =       FALSE,
1378     .check_local_user =         FALSE,
1379     .disable_logging =          FALSE,
1380     .fail_verify_recipient =    FALSE,
1381     .fail_verify_sender =       FALSE,
1382     .gid_set =                  FALSE,
1383     .initgroups =               FALSE,
1384     .log_as_local =             TRUE_UNSET,
1385     .more =                     TRUE,
1386     .pass_on_timeout =          FALSE,
1387     .prefix_optional =          FALSE,
1388     .repeat_use =               TRUE,
1389     .retry_use_local_part =     TRUE_UNSET,
1390     .same_domain_copy_routing = FALSE,
1391     .self_rewrite =             FALSE,
1392     .set =                      NULL,
1393     .suffix_optional =          FALSE,
1394     .verify_only =              FALSE,
1395     .verify_recipient =         TRUE,
1396     .verify_sender =            TRUE,
1397     .uid_set =                  FALSE,
1398     .unseen =                   FALSE,
1399     .dsn_lasthop =              FALSE,
1400
1401     .self_code =                self_freeze,
1402     .uid =                      (uid_t)(-1),
1403     .gid =                      (gid_t)(-1),
1404
1405     .fallback_hostlist =        NULL,
1406     .transport =                NULL,
1407     .pass_router =              NULL,
1408     .redirect_router =          NULL,
1409
1410     .dnssec =                   { .request= US"*", .require=NULL },
1411 };
1412
1413 uschar *router_name            = NULL;
1414 tree_node *router_var          = NULL;
1415
1416 ip_address_item *running_interfaces = NULL;
1417
1418 /* This is a weird one. The following string gets patched in the binary by the
1419 script that sets up a copy of Exim for running in the test harness. It seems
1420 that compilers are now clever, and share constant strings if they can.
1421 Elsewhere in Exim the string "<" is used. The compiler optimization seems to
1422 make use of the end of this string in order to save space. So the patching then
1423 wrecks this. We defeat this optimization by adding some additional characters
1424 onto the end of the string. */
1425
1426 uschar *running_status         = US">>>running<<<" "\0EXTRA";
1427
1428 int     runrc                  = 0;
1429
1430 uschar *search_error_message   = NULL;
1431 uschar *self_hostname          = NULL;
1432 uschar *sender_address         = NULL;
1433 unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32];
1434 uschar *sender_address_data    = NULL;
1435 uschar *sender_address_unrewritten = NULL;
1436 uschar *sender_data            = NULL;
1437 unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32];
1438 uschar *sender_fullhost        = NULL;
1439 uschar *sender_helo_name       = NULL;
1440 uschar **sender_host_aliases   = &no_aliases;
1441 uschar *sender_host_address    = NULL;
1442 uschar *sender_host_authenticated = NULL;
1443 uschar *sender_host_auth_pubname  = NULL;
1444 unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32];
1445 uschar *sender_host_name       = NULL;
1446 int     sender_host_port       = 0;
1447 uschar *sender_ident           = NULL;
1448 uschar *sender_rate            = NULL;
1449 uschar *sender_rate_limit      = NULL;
1450 uschar *sender_rate_period     = NULL;
1451 uschar *sender_rcvhost         = NULL;
1452 uschar *sender_unqualified_hosts = NULL;
1453 uschar *sender_verify_failure = NULL;
1454 address_item *sender_verified_list  = NULL;
1455 address_item *sender_verified_failed = NULL;
1456 int     sender_verified_rc     = -1;
1457 uschar *sending_ip_address     = NULL;
1458 int     sending_port           = -1;
1459 SIGNAL_BOOL sigalrm_seen       = FALSE;
1460 const uschar *sigalarm_setter  = NULL;
1461 uschar **sighup_argv           = NULL;
1462 int     slow_lookup_log        = 0;     /* millisecs, zero disables */
1463 int     smtp_accept_count      = 0;
1464 int     smtp_accept_max        = 20;
1465 int     smtp_accept_max_nonmail= 10;
1466 uschar *smtp_accept_max_nonmail_hosts = US"*";
1467 uschar *smtp_accept_max_per_connection = US"1000";
1468 uschar *smtp_accept_max_per_host = NULL;
1469 int     smtp_accept_queue      = 0;
1470 int     smtp_accept_queue_per_connection = 10;
1471 int     smtp_accept_reserve    = 0;
1472 uschar *smtp_active_hostname   = NULL;
1473 uschar *smtp_banner            = US"$smtp_active_hostname ESMTP "
1474                              "Exim $version_number $tod_full"
1475                              "\0<---------------Space to patch smtp_banner->";
1476 int     smtp_ch_index          = 0;
1477 uschar *smtp_cmd_argument      = NULL;
1478 uschar *smtp_cmd_buffer        = NULL;
1479 struct timeval smtp_connection_start  = {0,0};
1480 uschar  smtp_connection_had[SMTP_HBUFF_SIZE];
1481 int     smtp_connect_backlog   = 20;
1482 double  smtp_delay_mail        = 0.0;
1483 double  smtp_delay_rcpt        = 0.0;
1484 FILE   *smtp_in                = NULL;
1485 int     smtp_load_reserve      = -1;
1486 int     smtp_mailcmd_count     = 0;
1487 FILE   *smtp_out               = NULL;
1488 uschar *smtp_etrn_command      = NULL;
1489 int     smtp_max_synprot_errors= 3;
1490 int     smtp_max_unknown_commands = 3;
1491 uschar *smtp_notquit_reason    = NULL;
1492 unsigned smtp_peer_options     = 0;
1493 unsigned smtp_peer_options_wrap= 0;
1494 uschar *smtp_ratelimit_hosts   = NULL;
1495 uschar *smtp_ratelimit_mail    = NULL;
1496 uschar *smtp_ratelimit_rcpt    = NULL;
1497 uschar *smtp_read_error        = US"";
1498 int     smtp_receive_timeout   = 5*60;
1499 uschar *smtp_receive_timeout_s = NULL;
1500 uschar *smtp_reserve_hosts     = NULL;
1501 int     smtp_rlm_base          = 0;
1502 double  smtp_rlm_factor        = 0.0;
1503 int     smtp_rlm_limit         = 0;
1504 int     smtp_rlm_threshold     = INT_MAX;
1505 int     smtp_rlr_base          = 0;
1506 double  smtp_rlr_factor        = 0.0;
1507 int     smtp_rlr_limit         = 0;
1508 int     smtp_rlr_threshold     = INT_MAX;
1509 #ifdef SUPPORT_I18N
1510 uschar *smtputf8_advertise_hosts = US"*";       /* overridden under test-harness */
1511 #endif
1512
1513 #ifdef WITH_CONTENT_SCAN
1514 uschar *spamd_address          = US"127.0.0.1 783";
1515 uschar *spam_bar               = NULL;
1516 uschar *spam_report            = NULL;
1517 uschar *spam_action            = NULL;
1518 uschar *spam_score             = NULL;
1519 uschar *spam_score_int         = NULL;
1520 #endif
1521 #ifdef SUPPORT_SPF
1522 uschar *spf_guess              = US"v=spf1 a/24 mx/24 ptr ?all";
1523 uschar *spf_header_comment     = NULL;
1524 uschar *spf_received           = NULL;
1525 uschar *spf_result             = NULL;
1526 uschar *spf_smtp_comment       = NULL;
1527 uschar *spf_smtp_comment_template
1528                     /* Used to be: "Please%_see%_http://www.open-spf.org/Why?id=%{S}&ip=%{C}&receiver=%{R}" */
1529                                = US"Please%_see%_http://www.open-spf.org/Why";
1530
1531 #endif
1532
1533 FILE   *spool_data_file        = NULL;
1534 uschar *spool_directory        = US SPOOL_DIRECTORY
1535                            "\0<--------------Space to patch spool_directory->";
1536 #ifdef EXPERIMENTAL_SRS_ALT
1537 uschar *srs_config             = NULL;
1538 uschar *srs_db_address         = NULL;
1539 uschar *srs_db_key             = NULL;
1540 int     srs_hashlength         = 6;
1541 int     srs_hashmin            = -1;
1542 int     srs_maxage             = 31;
1543 uschar *srs_orig_recipient     = NULL;
1544 uschar *srs_orig_sender        = NULL;
1545 uschar *srs_recipient          = NULL;
1546 uschar *srs_secrets            = NULL;
1547 uschar *srs_status             = NULL;
1548 #endif
1549 #ifdef SUPPORT_SRS
1550 uschar *srs_recipient          = NULL;
1551 #endif
1552 int     string_datestamp_offset= -1;
1553 int     string_datestamp_length= 0;
1554 int     string_datestamp_type  = -1;
1555 const uschar *submission_domain = NULL;
1556 const uschar *submission_name  = NULL;
1557 int     syslog_facility        = LOG_MAIL;
1558 uschar *syslog_processname     = US"exim";
1559 uschar *system_filter          = NULL;
1560
1561 uschar *system_filter_directory_transport = NULL;
1562 uschar *system_filter_file_transport = NULL;
1563 uschar *system_filter_pipe_transport = NULL;
1564 uschar *system_filter_reply_transport = NULL;
1565
1566 gid_t   system_filter_gid      = 0;
1567 uid_t   system_filter_uid      = (uid_t)-1;
1568
1569 blob    tcp_fastopen_nodata    = { .data = NULL, .len = 0 };
1570 tfo_state_t tcp_out_fastopen   = TFO_NOT_USED;
1571 #ifdef USE_TCP_WRAPPERS
1572 uschar *tcp_wrappers_daemon_name = US TCP_WRAPPERS_DAEMON_NAME;
1573 #endif
1574 int     test_harness_load_avg  = 0;
1575 int     thismessage_size_limit = 0;
1576 int     timeout_frozen_after   = 0;
1577 #ifdef MEASURE_TIMING
1578 struct timeval timestamp_startup;
1579 #endif
1580
1581 transport_instance  *transports = NULL;
1582
1583 transport_instance  transport_defaults = {
1584     /* All non-mentioned elements zero/NULL/FALSE */
1585     .batch_max =                1,
1586     .multi_domain =             TRUE,
1587     .max_addresses =            100,
1588     .connection_max_messages =  500,
1589     .uid =                      (uid_t)(-1),
1590     .gid =                      (gid_t)(-1),
1591     .filter_timeout =           300,
1592     .retry_use_local_part =     TRUE_UNSET,     /* retry_use_local_part: BOOL, but set neither
1593                                                  1 nor 0 so can detect unset */
1594 };
1595
1596 int     transport_count;
1597 uschar *transport_name          = NULL;
1598 int     transport_newlines;
1599 const uschar **transport_filter_argv  = NULL;
1600 int     transport_filter_timeout;
1601 int     transport_write_timeout= 0;
1602
1603 tree_node  *tree_dns_fails     = NULL;
1604 tree_node  *tree_duplicates    = NULL;
1605 tree_node  *tree_nonrecipients = NULL;
1606 tree_node  *tree_unusable      = NULL;
1607
1608 gid_t  *trusted_groups         = NULL;
1609 uid_t  *trusted_users          = NULL;
1610 uschar *timezone_string        = US TIMEZONE_DEFAULT;
1611
1612 uschar *unknown_login          = NULL;
1613 uschar *unknown_username       = NULL;
1614 uschar *untrusted_set_sender   = NULL;
1615
1616 /*  A regex for matching a "From_" line in an incoming message, in the form
1617
1618     From ph10 Fri Jan  5 12:35 GMT 1996
1619
1620 which  the "mail" commands send to the MTA (undocumented, of course), or in
1621 the  form
1622
1623     From ph10 Fri, 7 Jan 97 14:00:00 GMT
1624
1625 which  is apparently used by some UUCPs, despite it not being in RFC 976.
1626 Because  of variations in time formats, just match up to the minutes. That
1627 should  be sufficient. Examples have been seen of time fields like 12:1:03,
1628 so  just require one digit for hours and minutes. The weekday is also absent
1629 in  some forms. */
1630
1631 uschar *uucp_from_pattern      = US
1632    "^From\\s+(\\S+)\\s+(?:[a-zA-Z]{3},?\\s+)?"    /* Common start */
1633    "(?:"                                          /* Non-extracting bracket */
1634    "[a-zA-Z]{3}\\s+\\d?\\d|"                      /* First form */
1635    "\\d?\\d\\s+[a-zA-Z]{3}\\s+\\d\\d(?:\\d\\d)?"  /* Second form */
1636    ")"                                            /* End alternation */
1637    "\\s+\\d\\d?:\\d\\d?";                         /* Start of time */
1638
1639 uschar *uucp_from_sender       = US"$1";
1640
1641 uschar *verify_mode            = NULL;
1642 uschar *version_copyright      =
1643  US"Copyright (c) University of Cambridge, 1995 - 2018\n"
1644    "(c) The Exim Maintainers and contributors in ACKNOWLEDGMENTS file, 2007 - 2020";
1645 uschar *version_date           = US"?";
1646 uschar *version_cnumber        = US"????";
1647 uschar *version_string         = US"?";
1648
1649 uschar *warn_message_file      = NULL;
1650 int     warning_count          = 0;
1651 uschar *warnmsg_delay          = NULL;
1652 uschar *warnmsg_recipients     = NULL;
1653
1654
1655 /*  End of globals.c */