1 /*************************************************
2 * Exim - an Internet mail transport agent *
3 *************************************************/
5 /* Copyright (c) University of Cambridge 1995 - 2018 */
6 /* Copyright (c) The Exim Maintainers 2020 */
7 /* See the file NOTICE for conditions of use and distribution. */
9 /* Almost all the global variables are defined together in this one header, so
10 that they are easy to find. However, those that are visible during the
11 compilation of the local_scan() function are defined separately in the
12 local_scan.h header file. */
14 /* First put any specials that are required for some operating systems. */
20 /* We need to be careful about width of int and atomicity in signal handlers,
21 especially with the rise of 64-bit systems breaking older assumptions. But
22 sig_atomic_t comes from signal.h so can't go into mytypes.h without including
23 signal support in local_scan, which seems precipitous. */
24 typedef volatile sig_atomic_t SIGNAL_BOOL;
26 /* Now things that are present only when configured. */
29 extern uschar *opt_perl_startup; /* Startup code for Perl interpreter */
30 extern BOOL opt_perl_at_start; /* Start Perl interpreter at start */
31 extern BOOL opt_perl_started; /* Set once interpreter started */
32 extern BOOL opt_perl_taintmode; /* Enable taint mode in Perl */
36 extern tree_node *dlobj_anchor; /* Tree of dynamically-loaded objects */
40 extern uschar *ibase_servers;
44 extern uschar *eldap_ca_cert_dir; /* Directory with CA certificates */
45 extern uschar *eldap_ca_cert_file; /* CA certificate file */
46 extern uschar *eldap_cert_file; /* Certificate file */
47 extern uschar *eldap_cert_key; /* Certificate key file */
48 extern uschar *eldap_cipher_suite; /* Allowed cipher suite */
49 extern uschar *eldap_default_servers; /* List of default servers */
50 extern uschar *eldap_require_cert; /* Peer certificate checking strategy */
51 extern BOOL eldap_start_tls; /* Use STARTTLS */
52 extern int eldap_version; /* LDAP version */
56 extern uschar *mysql_servers; /* List of servers and connect info */
60 extern uschar *oracle_servers; /* List of servers and connect info */
64 extern uschar *pgsql_servers; /* List of servers and connect info */
68 extern uschar *redis_servers; /* List of servers and connect info */
72 extern uschar *sqlite_dbfile; /* Filname for database */
73 extern int sqlite_lock_timeout; /* Internal lock waiting timeout */
76 #ifdef SUPPORT_MOVE_FROZEN_MESSAGES
77 extern BOOL move_frozen_messages; /* Get them out of the normal directory */
80 #ifdef ALLOW_INSECURE_TAINTED_DATA
81 extern BOOL allow_insecure_tainted_data;
84 /* These variables are outside the #ifdef because it keeps the code less
85 cluttered in several places (e.g. during logging) if we can always refer to
86 them. Also, the tls_ variables are now always visible. */
89 client_conn_ctx active; /* fd/socket when in a TLS session, and ptr to TLS context */
90 int bits; /* bits used in TLS session */
91 BOOL certificate_verified; /* Client certificate verified */
93 BOOL dane_verified; /* ... via DANE */
94 int tlsa_usage; /* TLSA record(s) usage */
96 uschar *cipher; /* Cipher used */
97 const uschar *cipher_stdname; /* Cipher used, RFC version */
98 const uschar *ver; /* TLS version */
100 BOOL on_connect; /* For older MTAs that don't STARTTLS */
101 uschar *on_connect_ports; /* Ports always tls-on-connect */
102 void *ourcert; /* Certificate we presented, binary */
103 void *peercert; /* Certificate of peer, binary */
104 uschar *peerdn; /* DN from peer */
105 uschar *sni; /* Server Name Indication */
106 uschar *channelbinding; /* b64'd data identifying channel, for authenticators */
108 OCSP_NOT_REQ=0, /* not requested */
109 OCSP_NOT_RESP, /* no response to request */
110 OCSP_VFY_NOT_TRIED, /* response not verified */
111 OCSP_FAILED, /* verify failed */
112 OCSP_VFIED /* verified */
113 } ocsp; /* Stapled OCSP status */
114 #ifndef DISABLE_TLS_RESUME
115 unsigned resumption; /* Session resumption */
116 BOOL host_resumable:1;
117 BOOL ticket_received:1;
119 BOOL verify_override:1; /* certificate_verified only due to tls_try_verify_hosts */
120 BOOL ext_master_secret:1; /* extended-master-secret was used */
122 extern tls_support tls_in;
123 extern tls_support tls_out;
126 extern BOOL gnutls_compat_mode; /* Less security, more compatibility */
127 extern BOOL gnutls_allow_auto_pkcs11; /* Let GnuTLS autoload PKCS11 modules */
128 extern uschar *openssl_options; /* OpenSSL compatibility options */
129 extern const pcre *regex_STARTTLS; /* For recognizing STARTTLS settings */
130 extern uschar *tls_certificate; /* Certificate file */
131 extern uschar *tls_crl; /* CRL File */
132 extern int tls_dh_max_bits; /* don't accept higher lib suggestions */
133 extern uschar *tls_dhparam; /* DH param file */
134 extern uschar *tls_eccurve; /* EC curve */
135 # ifndef DISABLE_OCSP
136 extern uschar *tls_ocsp_file; /* OCSP stapling proof file */
138 extern uschar *tls_privatekey; /* Private key file */
139 extern BOOL tls_remember_esmtp; /* For YAEB */
140 extern uschar *tls_require_ciphers; /* So some can be avoided */
141 # ifndef DISABLE_TLS_RESUME
142 extern uschar *tls_resumption_hosts; /* TLS session resumption */
144 extern uschar *tls_try_verify_hosts; /* Optional client verification */
145 extern uschar *tls_verify_certificates;/* Path for certificates to check */
146 extern uschar *tls_verify_hosts; /* Mandatory client verification */
147 extern int tls_watch_fd; /* for inotify of creds files */
148 extern time_t tls_watch_trigger_time; /* non-0: triggered */
150 extern uschar *tls_advertise_hosts; /* host for which TLS is advertised */
152 extern uschar *dsn_envid; /* DSN envid string */
153 extern int dsn_ret; /* DSN ret type*/
154 extern const pcre *regex_DSN; /* For recognizing DSN settings */
155 extern uschar *dsn_advertise_hosts; /* host for which TLS is advertised */
157 /* Input-reading functions for messages, so we can use special ones for
160 extern int (*lwr_receive_getc)(unsigned);
161 extern uschar * (*lwr_receive_getbuf)(unsigned *);
162 extern int (*lwr_receive_ungetc)(int);
163 extern int (*receive_getc)(unsigned);
164 extern uschar * (*receive_getbuf)(unsigned *);
165 extern void (*receive_get_cache)(void);
166 extern int (*receive_ungetc)(int);
167 extern int (*receive_feof)(void);
168 extern int (*receive_ferror)(void);
169 extern BOOL (*receive_smtp_buffered)(void);
172 /* For clearing, saving, restoring address expansion variables. We have to have
173 the size of this vector set explicitly, because it is referenced from more than
176 extern const uschar **address_expansions[ADDRESS_EXPANSIONS_COUNT];
178 /* Flags for which we don't need an address ever so can use a bitfield */
180 extern struct global_flags {
181 BOOL acl_temp_details :1; /* TRUE to give details for 4xx error */
182 BOOL active_local_from_check :1; /* For adding Sender: (switchable) */
183 BOOL active_local_sender_retain :1; /* For keeping Sender: (switchable) */
184 BOOL address_test_mode :1; /* True for -bt */
185 BOOL admin_user :1; /* True if caller can do admin */
186 BOOL allow_auth_unadvertised :1; /* As it says */
187 BOOL allow_unqualified_recipient :1; /* For local messages */ /* As it says */
188 BOOL allow_unqualified_sender :1; /* Reset for SMTP */ /* Ditto */
189 BOOL authentication_local :1; /* TRUE if non-smtp (implicit authentication) */
191 BOOL background_daemon :1; /* Set FALSE to keep in foreground */
193 BOOL chunking_offered :1;
194 BOOL config_changed :1; /* True if -C used */
195 BOOL continue_more :1; /* Flag more addresses waiting */
197 BOOL daemon_listen :1; /* True if listening required */
198 BOOL debug_daemon :1; /* Debug the daemon process only */
199 BOOL deliver_firsttime :1; /* True for first delivery attempt */
200 BOOL deliver_force :1; /* TRUE if delivery was forced */
201 BOOL deliver_freeze :1; /* TRUE if delivery is frozen */
202 BOOL deliver_force_thaw :1; /* TRUE to force thaw in queue run */
203 BOOL deliver_manual_thaw :1; /* TRUE if manually thawed */
204 BOOL deliver_selectstring_regex :1; /* String is regex */
205 BOOL deliver_selectstring_sender_regex :1; /* String is regex */
206 BOOL disable_callout_flush :1; /* Don't flush before callouts */
207 BOOL disable_delay_flush :1; /* Don't flush before "delay" in ACL */
208 BOOL disable_logging :1; /* Disables log writing when TRUE */
210 BOOL dkim_disable_verify :1; /* Set via ACL control statement. When set, DKIM verification is disabled for the current message */
211 BOOL dkim_init_done :1; /* lazy-init status */
214 BOOL dmarc_has_been_checked :1; /* Global variable to check if test has been called yet */
215 BOOL dmarc_disable_verify :1; /* Set via ACL control statement. When set, DMARC verification is disabled for the current message */
216 BOOL dmarc_enable_forensic :1; /* Set via ACL control statement. When set, DMARC forensic reports are enabled for the current message */
218 BOOL dont_deliver :1; /* TRUE for -N option */
219 BOOL dot_ends :1; /* TRUE if "." ends non-SMTP input */
221 BOOL enable_dollar_recipients :1; /* Make $recipients available */
222 BOOL expand_string_forcedfail :1; /* TRUE if failure was "expected" */
224 BOOL filter_running :1; /* TRUE while running a filter */
226 BOOL header_rewritten :1; /* TRUE if header changed by router */
227 BOOL helo_verified :1; /* True if HELO verified */
228 BOOL helo_verify_failed :1; /* True if attempt failed */
229 BOOL host_checking_callout :1; /* TRUE if real callout wanted */
230 BOOL host_find_failed_syntax :1; /* DNS syntax check failure */
232 BOOL inetd_wait_mode :1; /* Whether running in inetd wait mode */
233 BOOL is_inetd :1; /* True for inetd calls */
235 BOOL local_error_message :1; /* True if handling one of these */
236 BOOL log_testing_mode :1; /* TRUE in various testing modes */
238 #ifdef WITH_CONTENT_SCAN
239 BOOL no_mbox_unspool :1; /* don't unlink files in /scan directory */
241 BOOL no_multiline_responses :1; /* For broken clients */
243 BOOL parse_allow_group :1; /* Allow group syntax */
244 BOOL parse_found_group :1; /* In the middle of a group */
245 BOOL pipelining_enable :1; /* As it says */
246 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
247 BOOL proxy_session_failed :1; /* TRUE if required proxy negotiation failed */
250 BOOL queue_2stage :1; /* Run queue in 2-stage manner */
251 BOOL queue_only_policy :1; /* ACL or local_scan wants queue_only */
252 BOOL queue_run_first_delivery :1; /* If TRUE, first deliveries only */
253 BOOL queue_run_force :1; /* TRUE to force during queue run */
254 BOOL queue_run_local :1; /* Local deliveries only in queue run */
255 BOOL queue_running :1; /* TRUE for queue running process and */
256 BOOL queue_smtp :1; /* Disable all immediate SMTP (-odqs)*/
258 BOOL really_exim :1; /* FALSE in utilities */
259 BOOL receive_call_bombout :1; /* Flag for crashing log */
260 BOOL recipients_discarded :1; /* By an ACL */
261 BOOL running_in_test_harness :1; /*TRUE when running_status is patched */
263 BOOL search_find_defer :1; /* Set TRUE if lookup deferred */
264 BOOL sender_address_forced :1; /* Set by -f */
265 BOOL sender_host_notsocket :1; /* Set for -bs and -bS */
266 BOOL sender_host_unknown :1; /* TRUE for -bs and -bS except inetd */
267 BOOL sender_local :1; /* TRUE for local senders */
268 BOOL sender_name_forced :1; /* Set by -F */
269 BOOL sender_set_untrusted :1; /* Sender set by untrusted caller */
270 BOOL smtp_authenticated :1; /* Sending client has authenticated */
271 #ifndef DISABLE_PIPE_CONNECT
272 BOOL smtp_in_early_pipe_advertised :1; /* server advertised PIPE_CONNECT */
273 BOOL smtp_in_early_pipe_no_auth :1; /* too many authenticator names */
274 BOOL smtp_in_early_pipe_used :1; /* client did send early data */
276 BOOL smtp_in_pipelining_advertised :1; /* server advertised PIPELINING */
277 BOOL smtp_in_pipelining_used :1; /* server noted client using PIPELINING */
278 BOOL smtp_in_quit :1; /* server noted QUIT command */
279 BOOL spool_file_wireformat :1; /* current -D file has CRLF rather than NL */
280 BOOL submission_mode :1; /* Can be forced from ACL */
281 BOOL suppress_local_fixups :1; /* Can be forced from ACL */
282 BOOL suppress_local_fixups_default :1; /* former is reset to this; override with -G */
283 BOOL synchronous_delivery :1; /* TRUE if -odi is set */
284 BOOL system_filtering :1; /* TRUE when running system filter */
286 BOOL taint_check_slow :1; /* malloc/mmap are not returning distinct ranges */
287 BOOL testsuite_delays :1; /* interprocess sequencing delays, under testsuite */
288 BOOL tcp_fastopen_ok :1; /* appears to be supported by kernel */
289 BOOL tcp_in_fastopen :1; /* conn usefully used fastopen */
290 BOOL tcp_in_fastopen_data :1; /* fastopen carried data */
291 BOOL tcp_in_fastopen_logged :1; /* one-time logging */
292 BOOL tcp_out_fastopen_logged :1; /* one-time logging */
293 BOOL timestamps_utc :1; /* Use UTC for all times */
294 BOOL transport_filter_timed_out :1; /* True if it did */
295 BOOL trusted_caller :1; /* Caller is trusted */
296 BOOL trusted_config :1; /* Configuration file is trusted */
300 /* General global variables */
302 extern BOOL accept_8bitmime; /* Allow *BITMIME incoming */
303 extern uschar *add_environment; /* List of environment variables to add */
304 extern header_line *acl_added_headers; /* Headers added by an ACL */
305 extern tree_node *acl_anchor; /* Tree of named ACLs */
306 extern uschar *acl_arg[9]; /* Argument to ACL call */
307 extern int acl_narg; /* Number of arguments to ACL call */
308 extern int acl_level; /* Nesting depth and debug indent */
309 extern uschar *acl_not_smtp; /* ACL run for non-SMTP messages */
310 #ifdef WITH_CONTENT_SCAN
311 extern uschar *acl_not_smtp_mime; /* For MIME parts of ditto */
313 extern uschar *acl_not_smtp_start; /* ACL run at the beginning of a non-SMTP session */
314 extern uschar *acl_removed_headers; /* Headers deleted by an ACL */
315 extern uschar *acl_smtp_auth; /* ACL run for AUTH */
316 extern uschar *acl_smtp_connect; /* ACL run on SMTP connection */
317 extern uschar *acl_smtp_data; /* ACL run after DATA received */
319 extern uschar *acl_smtp_data_prdr; /* ACL run after DATA received if in PRDR mode*/
320 const extern pcre *regex_PRDR; /* For recognizing PRDR settings */
323 extern uschar *acl_smtp_dkim; /* ACL run for DKIM signatures / domains */
325 extern uschar *acl_smtp_etrn; /* ACL run for ETRN */
326 extern uschar *acl_smtp_expn; /* ACL run for EXPN */
327 extern uschar *acl_smtp_helo; /* ACL run for HELO/EHLO */
328 extern uschar *acl_smtp_mail; /* ACL run for MAIL */
329 extern uschar *acl_smtp_mailauth; /* ACL run for MAIL AUTH */
330 #ifdef WITH_CONTENT_SCAN
331 extern uschar *acl_smtp_mime; /* ACL run after DATA, before acl_smtp_data, for each MIME part */
333 extern uschar *acl_smtp_notquit; /* ACL run for disconnects */
334 extern uschar *acl_smtp_predata; /* ACL run for DATA command */
335 extern uschar *acl_smtp_quit; /* ACL run for QUIT */
336 extern uschar *acl_smtp_rcpt; /* ACL run for RCPT */
337 extern uschar *acl_smtp_starttls; /* ACL run for STARTTLS */
338 extern uschar *acl_smtp_vrfy; /* ACL run for VRFY */
339 extern tree_node *acl_var_c; /* ACL connection variables */
340 extern tree_node *acl_var_m; /* ACL message variables */
341 extern uschar *acl_verify_message; /* User message for verify failure */
342 extern string_item *acl_warn_logged; /* Logged lines */
343 extern uschar *acl_wherecodes[]; /* Response codes for ACL fails */
344 extern uschar *acl_wherenames[]; /* Names for messages */
345 extern address_item *addr_duplicate; /* Duplicate address list */
346 extern address_item address_defaults; /* Default data for address item */
347 extern uschar *address_file; /* Name of file when delivering to one */
348 extern uschar *address_pipe; /* Pipe command when delivering to one */
349 extern tree_node *addresslist_anchor; /* Tree of defined address lists */
350 extern int addresslist_count; /* Number defined */
351 extern gid_t *admin_groups; /* List of admin groups */
352 extern BOOL allow_domain_literals; /* As it says */
353 extern BOOL allow_mx_to_ip; /* Allow MX records to -> ip address */
354 #ifdef EXPERIMENTAL_ARC
355 extern struct arc_set *arc_received; /* highest ARC instance evaluation struct */
356 extern int arc_received_instance; /* highest ARC instance number in headers */
357 extern int arc_oldest_pass; /* lowest passing instance number in headers */
358 extern const uschar *arc_state; /* verification state */
359 extern const uschar *arc_state_reason;
361 extern BOOL allow_utf8_domains; /* For experimenting */
362 extern uschar *authenticated_fail_id; /* ID that failed authentication */
363 extern uschar *authenticated_id; /* ID that was authenticated */
364 extern uschar *authenticated_sender; /* From AUTH on MAIL */
365 extern BOOL authentication_failed; /* TRUE if AUTH was tried and failed */
366 extern uschar *auth_advertise_hosts; /* Only advertise to these */
367 extern auth_info auths_available[]; /* Vector of available auth mechanisms */
368 extern auth_instance *auths; /* Chain of instantiated auths */
369 extern auth_instance auth_defaults; /* Default values */
370 extern uschar *auth_defer_msg; /* Error message for log */
371 extern uschar *auth_defer_user_msg; /* Error message for user */
372 extern uschar *auth_vars[]; /* $authn variables */
373 extern int auto_thaw; /* Auto-thaw interval */
374 #ifdef WITH_CONTENT_SCAN
375 extern int av_failed; /* TRUE if the AV process failed */
376 extern uschar *av_scanner; /* AntiVirus scanner to use for the malware condition */
379 extern uschar *base62_chars; /* Table of base-62 characters */
380 extern uschar *bi_command; /* Command for -bi option */
381 extern uschar *big_buffer; /* Used for various temp things */
382 extern int big_buffer_size; /* Current size (can expand) */
383 #ifdef EXPERIMENTAL_BRIGHTMAIL
384 extern uschar *bmi_alt_location; /* expansion variable that contains the alternate location for the rcpt (available during routing) */
385 extern uschar *bmi_base64_tracker_verdict; /* expansion variable with base-64 encoded OLD verdict string (available during routing) */
386 extern uschar *bmi_base64_verdict; /* expansion variable with base-64 encoded verdict string (available during routing) */
387 extern uschar *bmi_config_file; /* Brightmail config file */
388 extern int bmi_deliver; /* Flag that determines if the message should be delivered to the rcpt (available during routing) */
389 extern int bmi_run; /* Flag that determines if message should be run through Brightmail server */
390 extern uschar *bmi_verdicts; /* BASE64-encoded verdicts with recipient lists */
392 extern int bsmtp_transaction_linecount; /* Start of last transaction */
393 extern int body_8bitmime; /* sender declared BODY= ; 7=7BIT, 8=8BITMIME */
394 extern uschar *bounce_message_file; /* Template file */
395 extern uschar *bounce_message_text; /* One-liner */
396 extern uschar *bounce_recipient; /* When writing an errmsg */
397 extern BOOL bounce_return_body; /* Include body in returned message */
398 extern int bounce_return_linesize_limit; /* Max line length in return */
399 extern BOOL bounce_return_message; /* Include message in bounce */
400 extern int bounce_return_size_limit; /* Max amount to return */
401 extern uschar *bounce_sender_authentication; /* AUTH address for bounces */
403 extern uschar *callout_address; /* Address used for a malware/spamd/verify etc. callout */
404 extern int callout_cache_domain_positive_expire; /* Time for positive domain callout cache records to expire */
405 extern int callout_cache_domain_negative_expire; /* Time for negative domain callout cache records to expire */
406 extern int callout_cache_positive_expire; /* Time for positive callout cache records to expire */
407 extern int callout_cache_negative_expire; /* Time for negative callout cache records to expire */
408 extern uschar *callout_random_local_part; /* Local part to be used to check if server called will accept any local part */
409 extern uschar *check_dns_names_pattern;/* Regex for syntax check */
410 extern int check_log_inodes; /* Minimum for message acceptance */
411 extern int_eximarith_t check_log_space; /* Minimum for message acceptance */
412 extern BOOL check_rfc2047_length; /* Check RFC 2047 encoded string length */
413 extern int check_spool_inodes; /* Minimum for message acceptance */
414 extern int_eximarith_t check_spool_space; /* Minimum for message acceptance */
415 extern uschar *chunking_advertise_hosts; /* RFC 3030 CHUNKING */
416 extern unsigned chunking_datasize;
417 extern unsigned chunking_data_left;
418 extern chunking_state_t chunking_state;
419 extern uschar *client_authenticator; /* Authenticator name used for smtp delivery */
420 extern uschar *client_authenticated_id; /* "login" name used for SMTP AUTH */
421 extern uschar *client_authenticated_sender; /* AUTH option to SMTP MAIL FROM (not yet used) */
422 extern int clmacro_count; /* Number of command line macros */
423 extern uschar *clmacros[]; /* Copy of them, for re-exec */
424 extern BOOL commandline_checks_require_admin; /* belt and braces for insecure setups */
425 extern int connection_max_messages;/* Max down one SMTP connection */
426 extern FILE *config_file; /* Configuration file */
427 extern const uschar *config_filename; /* Configuration file name */
428 extern gid_t config_gid; /* Additional group owner */
429 extern int config_lineno; /* Line number */
430 extern uschar *config_main_filelist; /* List of possible config files */
431 extern uschar *config_main_filename; /* File name actually used */
432 extern uschar *config_main_directory; /* Directory where the main config file was found */
433 extern uid_t config_uid; /* Additional owner */
434 extern uschar *continue_proxy_cipher; /* TLS cipher for proxied continued delivery */
435 extern BOOL continue_proxy_dane; /* proxied conn is DANE */
436 extern uschar *continue_proxy_sni; /* proxied conn SNI */
437 extern uschar *continue_hostname; /* Host for continued delivery */
438 extern uschar *continue_host_address; /* IP address for ditto */
439 extern int continue_sequence; /* Sequence num for continued delivery */
440 extern uschar *continue_transport; /* Transport for continued delivery */
442 extern uschar *csa_status; /* Client SMTP Authorization result */
445 unsigned callout_hold_only:1; /* Conn is only for verify callout */
446 unsigned delivery:1; /* When to attempt */
447 unsigned defer_pass:1; /* Pass 4xx to caller rather than spooling */
448 unsigned is_tls:1; /* Conn has TLS active */
449 client_conn_ctx cctx; /* Open connection */
450 int nrcpt; /* Count of addresses */
451 uschar * transport; /* Name of transport */
452 uschar * interface; /* (address of) */
453 uschar * snd_ip; /* sending_ip_address */
454 int snd_port; /* sending_port */
455 unsigned peer_options; /* smtp_peer_options */
456 host_item host; /* Host used */
457 address_item addr; /* (Chain of) addresses */
459 extern cut_t cutthrough; /* Deliver-concurrently */
461 extern int daemon_notifier_fd; /* Unix socket for notifications */
462 extern uschar *daemon_smtp_port; /* Can be a list of ports */
463 extern int daemon_startup_retries; /* Number of times to retry */
464 extern int daemon_startup_sleep; /* Sleep between retries */
466 #ifdef EXPERIMENTAL_DCC
467 extern BOOL dcc_direct_add_header; /* directly add header */
468 extern uschar *dcc_header; /* dcc header */
469 extern uschar *dcc_result; /* dcc result */
470 extern uschar *dccifd_address; /* address of the dccifd daemon */
471 extern uschar *dccifd_options; /* options for the dccifd daemon */
474 extern int debug_fd; /* The fd for debug_file */
475 extern FILE *debug_file; /* Where to write debugging info */
476 extern int debug_notall[]; /* Debug options excluded from +all */
477 extern bit_table debug_options[]; /* Table of debug options */
478 extern int debug_options_count; /* Size of table */
479 extern BOOL debug_store; /* Do extra checks on store_reset */
480 extern int delay_warning[]; /* Times between warnings */
481 extern uschar *delay_warning_condition; /* Condition string for warnings */
482 extern BOOL delivery_date_remove; /* Remove delivery-date headers */
484 extern uschar *deliver_address_data; /* Arbitrary data for an address */
485 extern int deliver_datafile; /* FD for data part of message */
486 extern const uschar *deliver_domain; /* The local domain for delivery */
487 extern uschar *deliver_domain_data; /* From domain lookup */
488 extern const uschar *deliver_domain_orig; /* The original local domain for delivery */
489 extern const uschar *deliver_domain_parent; /* The parent domain for delivery */
490 extern BOOL deliver_drop_privilege; /* TRUE for unprivileged delivery */
491 extern time_t deliver_frozen_at; /* Time of freezing */
492 extern uschar *deliver_home; /* Home directory for pipes */
493 extern const uschar *deliver_host; /* (First) host for routed local deliveries */
494 /* Remote host for filter */
495 extern const uschar *deliver_host_address; /* Address for remote delivery filter */
496 extern int deliver_host_port; /* Address for remote delivery filter */
497 extern uschar *deliver_in_buffer; /* Buffer for copying file */
498 extern ino_t deliver_inode; /* Inode for appendfile */
499 extern uschar *deliver_localpart; /* The local part for delivery */
500 extern uschar *deliver_localpart_data; /* From local part lookup (de-tainted) */
501 extern uschar *deliver_localpart_orig; /* The original local part for delivery */
502 extern uschar *deliver_localpart_parent; /* The parent local part for delivery */
503 extern uschar *deliver_localpart_prefix; /* The stripped prefix, if any */
504 extern uschar *deliver_localpart_prefix_v; /* The stripped-prefix variable portion, if any */
505 extern uschar *deliver_localpart_suffix; /* The stripped suffix, if any */
506 extern uschar *deliver_localpart_suffix_v; /* The stripped-suffix variable portion, if any */
507 extern uschar *deliver_out_buffer; /* Buffer for copying file */
508 extern int deliver_queue_load_max; /* Different value for queue running */
509 extern address_item *deliver_recipients; /* Current set of addresses */
510 extern uschar *deliver_selectstring; /* For selecting by recipient */
511 extern uschar *deliver_selectstring_sender; /* For selecting by sender */
512 #ifdef ENABLE_DISABLE_FSYNC
513 extern BOOL disable_fsync; /* Not for normal use */
515 extern BOOL disable_ipv6; /* Don't do any IPv6 things */
518 extern unsigned dkim_collect_input; /* Runtime count of dkim signtures; tracks whether SMTP input is fed to DKIM validation */
519 extern uschar *dkim_cur_signer; /* Expansion variable, holds the current "signer" domain or identity during a acl_smtp_dkim run */
520 extern int dkim_key_length; /* Expansion variable, length of signing key in bits */
521 extern void *dkim_signatures; /* Actually a (pdkim_signature *) but most files do not need to know */
522 extern uschar *dkim_signers; /* Expansion variable, holds colon-separated list of domains and identities that have signed a message */
523 extern uschar *dkim_signing_domain; /* Expansion variable, domain used for signing a message. */
524 extern uschar *dkim_signing_selector; /* Expansion variable, selector used for signing a message. */
525 extern uschar *dkim_verify_hashes; /* Preference order for signatures */
526 extern uschar *dkim_verify_keytypes; /* Preference order for signatures */
527 extern uschar *dkim_verify_min_keysizes; /* list of minimum key sizes, keyed by algo */
528 extern BOOL dkim_verify_minimal; /* Shortcircuit signture verification */
529 extern uschar *dkim_verify_overall; /* First successful domain verified, or null */
530 extern uschar *dkim_verify_signers; /* Colon-separated list of domains for each of which we call the DKIM ACL */
531 extern uschar *dkim_verify_status; /* result for this signature */
532 extern uschar *dkim_verify_reason; /* result for this signature */
535 extern uschar *dmarc_domain_policy; /* Expansion for declared policy of used domain */
536 extern uschar *dmarc_forensic_sender; /* Set sender address for forensic reports */
537 extern uschar *dmarc_history_file; /* Expansion variable, file to store dmarc results */
538 extern uschar *dmarc_status; /* Expansion variable, one word value */
539 extern uschar *dmarc_status_text; /* Expansion variable, human readable value */
540 extern uschar *dmarc_tld_file; /* Mozilla TLDs text file */
541 extern uschar *dmarc_used_domain; /* Expansion variable, domain libopendmarc chose for DMARC policy lookup */
544 extern uschar *dns_again_means_nonexist; /* Domains that are badly set up */
545 extern int dns_csa_search_limit; /* How deep to search for CSA SRV records */
546 extern BOOL dns_csa_use_reverse; /* Check CSA in reverse DNS? (non-standard) */
547 extern int dns_cname_loops; /* Follow CNAMEs returned by resolver to this depth */
548 extern uschar *dns_ipv4_lookup; /* For these domains, don't look for AAAA (or A6) */
550 extern int dns_dane_ok; /* Ok to use DANE when checking TLS authenticity */
552 extern int dns_retrans; /* Retransmission time setting */
553 extern int dns_retry; /* Number of retries */
554 extern int dns_dnssec_ok; /* When constructing DNS query, set DO flag */
555 extern const uschar * dns_rc_names[]; /* Mostly for debug output */
556 extern uschar *dns_trust_aa; /* DNSSEC trust AA as AD */
557 extern int dns_use_edns0; /* Coerce EDNS0 support on/off in resolver. */
558 extern uschar *dnslist_domain; /* DNS (black) list domain */
559 extern uschar *dnslist_matched; /* DNS (black) list matched key */
560 extern uschar *dnslist_text; /* DNS (black) list text message */
561 extern uschar *dnslist_value; /* DNS (black) list IP address */
562 extern tree_node *domainlist_anchor; /* Tree of defined domain lists */
563 extern int domainlist_count; /* Number defined */
565 /* This option is now a no-opt, retained for compatibility */
566 extern BOOL drop_cr; /* For broken local MUAs */
568 extern uschar *dsn_from; /* From: string for DSNs */
570 extern BOOL envelope_to_remove; /* Remove envelope_to_headers */
571 extern int errno_quota; /* Quota errno in this OS */
572 extern int error_handling; /* Error handling style */
573 extern uschar *errors_copy; /* For taking copies of errors */
574 extern uschar *errors_reply_to; /* Reply-to for error messages */
575 extern int errors_sender_rc; /* Return after message to sender*/
577 #ifndef DISABLE_EVENT
578 extern uschar *event_action; /* expansion for delivery events */
579 extern uschar *event_data; /* event data */
580 extern int event_defer_errno; /* error number set when a remote delivery is deferred with a host error */
581 extern const uschar *event_name; /* event classification */
584 extern gid_t exim_gid; /* To be used with exim_uid */
585 extern BOOL exim_gid_set; /* TRUE if exim_gid set */
586 extern uschar *exim_path; /* Path to exec exim */
587 extern const uschar *exim_sieve_extension_list[]; /* list of sieve extensions */
588 extern uid_t exim_uid; /* Non-root uid for exim */
589 extern BOOL exim_uid_set; /* TRUE if exim_uid set */
590 extern int expand_level; /* Nesting depth; indent for debug */
591 extern int expand_forbid; /* RDO flags for forbidding things */
592 extern int expand_nlength[]; /* Lengths of numbered strings */
593 extern int expand_nmax; /* Max numerical value */
594 extern uschar *expand_nstring[]; /* Numbered strings */
595 extern BOOL extract_addresses_remove_arguments; /* Controls -t behaviour */
596 extern uschar *extra_local_interfaces; /* Local, non-listen interfaces */
598 extern int fake_response; /* Fake FAIL or DEFER response to data */
599 extern uschar *fake_response_text; /* User defined message for the above. Default is in globals.c. */
600 extern int filter_n[FILTER_VARIABLE_COUNT]; /* filter variables */
601 extern int filter_sn[FILTER_VARIABLE_COUNT]; /* variables set by system filter */
602 extern int filter_test; /* Filter test type */
603 extern uschar *filter_test_sfile; /* System filter test file */
604 extern uschar *filter_test_ufile; /* User filter test file */
605 extern uschar *filter_thisaddress; /* For address looping */
606 extern int finduser_retries; /* Retry count for getpwnam() */
607 extern uid_t fixed_never_users[]; /* Can't be overridden */
608 extern uschar *freeze_tell; /* Message on (some) freezings */
609 extern uschar *freeze_tell_config; /* The configured setting */
610 extern uschar *fudged_queue_times; /* For use in test harness */
612 extern uschar *gecos_name; /* To be expanded when pattern matches */
613 extern uschar *gecos_pattern; /* Pattern to match */
614 extern rewrite_rule *global_rewrite_rules; /* Chain of rewriting rules */
616 extern volatile sig_atomic_t had_command_timeout; /* Alarm sighandler called */
617 extern volatile sig_atomic_t had_command_sigterm; /* TERM sighandler called */
618 extern volatile sig_atomic_t had_data_timeout; /* Alarm sighandler called */
619 extern volatile sig_atomic_t had_data_sigint; /* TERM/INT sighandler called */
620 extern int header_insert_maxlen; /* Max for inserting headers */
621 extern int header_maxsize; /* Max total length for header */
622 extern int header_line_maxsize; /* Max for an individual line */
623 extern header_name header_names[]; /* Table of header names */
624 extern int header_names_size; /* Number of entries */
625 extern uschar *helo_accept_junk_hosts; /* Allowed to use junk arg */
626 extern uschar *helo_allow_chars; /* Rogue chars to allow in HELO/EHLO */
627 extern uschar *helo_lookup_domains; /* If these given, lookup host name */
628 extern uschar *helo_try_verify_hosts; /* Soft check HELO argument for these */
629 extern uschar *helo_verify_hosts; /* Hard check HELO argument for these */
630 extern const uschar *hex_digits; /* Used in several places */
631 extern uschar *hold_domains; /* Hold up deliveries to these */
632 extern uschar *host_data; /* Obtained from lookup in ACL */
633 extern uschar *host_lookup; /* For which IP addresses are always looked up */
634 extern BOOL host_lookup_deferred; /* TRUE if lookup deferred */
635 extern BOOL host_lookup_failed; /* TRUE if lookup failed */
636 extern uschar *host_lookup_order; /* Order of host lookup types */
637 extern uschar *host_lookup_msg; /* Text for why it failed */
638 extern int host_number; /* For sharing spools */
639 extern uschar *host_number_string; /* For expanding */
640 extern uschar *host_reject_connection; /* Reject these hosts */
641 extern tree_node *hostlist_anchor; /* Tree of defined host lists */
642 extern int hostlist_count; /* Number defined */
643 extern uschar *hosts_connection_nolog; /* Limits the logging option */
644 extern uschar *hosts_treat_as_local; /* For routing */
646 extern int ignore_bounce_errors_after; /* Keep them for this time. */
647 extern BOOL ignore_fromline_local; /* Local SMTP ignore fromline */
648 extern uschar *ignore_fromline_hosts; /* Hosts permitted to send "From " */
649 extern int inetd_wait_timeout; /* Timeout for inetd wait mode */
650 extern uschar *initial_cwd; /* The directory we where in at startup */
651 extern uschar *iterate_item; /* Item from iterate list */
653 extern int journal_fd; /* Fd for journal file */
655 extern uschar *keep_environment; /* Whitelist for environment variables */
656 extern int keep_malformed; /* Time to keep malformed messages */
658 extern uschar *eldap_dn; /* Where LDAP DNs are left */
659 extern int load_average; /* Most recently read load average */
660 extern BOOL local_from_check; /* For adding Sender: (global value) */
661 extern uschar *local_from_prefix; /* Permitted prefixes */
662 extern uschar *local_from_suffix; /* Permitted suffixes */
663 extern uschar *local_interfaces; /* For forcing specific interfaces */
664 #ifdef HAVE_LOCAL_SCAN
665 extern uschar *local_scan_data; /* Text returned by local_scan() */
666 extern optionlist local_scan_options[];/* Option list for local_scan() */
667 extern int local_scan_options_count; /* Size of the list */
668 extern int local_scan_timeout; /* Timeout for local_scan() */
670 extern BOOL local_sender_retain; /* Retain Sender: (with no From: check) */
671 extern gid_t local_user_gid; /* As it says; may be set in routers */
672 extern uid_t local_user_uid; /* As it says; may be set in routers */
673 extern tree_node *localpartlist_anchor;/* Tree of defined localpart lists */
674 extern int localpartlist_count; /* Number defined */
675 extern uschar *log_buffer; /* For constructing log entries */
676 extern int log_default[]; /* Initialization list for log_selector */
677 extern uschar *log_file_path; /* If unset, use default */
678 extern int log_notall[]; /* Log options excluded from +all */
679 extern bit_table log_options[]; /* Table of options */
680 extern int log_options_count; /* Size of table */
681 extern int log_reject_target; /* Target log for ACL rejections */
682 extern unsigned int log_selector[]; /* Bit map of logging options */
683 extern uschar *log_selector_string; /* As supplied in the config */
684 extern FILE *log_stderr; /* Copy of stderr for log use, or NULL */
685 extern BOOL log_timezone; /* TRUE to include the timezone in log lines */
686 extern uschar *login_sender_address; /* The actual sender address */
687 extern lookup_info **lookup_list; /* Array of pointers to available lookups */
688 extern int lookup_list_count; /* Number of entries in the list */
689 extern uschar *lookup_dnssec_authenticated; /* AD status of dns lookup */
690 extern int lookup_open_max; /* Max lookup files to cache */
691 extern uschar *lookup_value; /* Value looked up from file */
693 extern macro_item *macros; /* Configuration macros */
694 extern macro_item *macros_user; /* Non-builtin configuration macros */
695 extern macro_item *mlast; /* Last item in macro list */
696 extern uschar *mailstore_basename; /* For mailstore deliveries */
697 #ifdef WITH_CONTENT_SCAN
698 extern uschar *malware_name; /* Name of virus or malware ("W32/Klez-H") */
700 extern int max_received_linelength;/* What it says */
701 extern int max_username_length; /* For systems with broken getpwnam() */
702 extern int message_age; /* In seconds */
703 extern uschar *message_body; /* Start of message body for filter */
704 extern uschar *message_body_end; /* End of message body for filter */
705 extern BOOL message_body_newlines; /* FALSE => remove newlines */
706 extern int message_body_size; /* Sic */
707 extern int message_body_visible; /* Amount visible in message_body */
708 extern int message_ended; /* State of message reading and how ended */
709 extern uschar *message_headers; /* When built */
710 extern uschar message_id_option[]; /* -E<message-id> for use as option */
711 extern uschar *message_id_external; /* External form of following */
712 extern uschar *message_id_domain; /* Expanded to form domain-part of message_id */
713 extern uschar *message_id_text; /* Expanded to form message_id */
714 extern struct timeval message_id_tv; /* Time used to create last message_id */
715 extern int message_linecount; /* As it says */
716 extern BOOL message_logs; /* TRUE to write message logs */
717 extern int message_size; /* Size of message */
718 extern uschar *message_size_limit; /* As it says */
720 extern BOOL message_smtputf8; /* Internationalized mail handling */
721 extern int message_utf8_downconvert; /* convert from utf8 */
722 const extern pcre *regex_UTF8; /* For recognizing SMTPUTF8 settings */
724 extern uschar message_subdir[]; /* Subdirectory for messages */
725 extern uschar *message_reference; /* Reference for error messages */
727 /* MIME ACL expandables */
728 #ifdef WITH_CONTENT_SCAN
729 extern int mime_anomaly_level;
730 extern const uschar *mime_anomaly_text;
731 extern uschar *mime_boundary;
732 extern uschar *mime_charset;
733 extern uschar *mime_content_description;
734 extern uschar *mime_content_disposition;
735 extern uschar *mime_content_id;
736 extern unsigned int mime_content_size;
737 extern uschar *mime_content_transfer_encoding;
738 extern uschar *mime_content_type;
739 extern uschar *mime_decoded_filename;
740 extern uschar *mime_filename;
741 extern int mime_is_multipart;
742 extern int mime_is_coverletter;
743 extern int mime_is_rfc822;
744 extern int mime_part_count;
747 extern BOOL mua_wrapper; /* TRUE when Exim is wrapping an MUA */
749 extern uid_t *never_users; /* List of uids never to be used */
750 extern uschar *notifier_socket; /* Name for daemon notifier unix-socket */
752 extern const int on; /* For setsockopt */
753 extern const int off;
755 extern optionlist optionlist_auths[]; /* These option lists are made */
756 extern int optionlist_auths_size; /* global so that readconf can */
757 extern optionlist optionlist_routers[]; /* see them for printing out */
758 extern int optionlist_routers_size; /* the options. */
759 extern optionlist optionlist_transports[];
760 extern int optionlist_transports_size;
762 extern uid_t original_euid; /* Original effective uid */
763 extern gid_t originator_gid; /* Gid of whoever wrote spool file */
764 extern uschar *originator_login; /* Login of same */
765 extern uschar *originator_name; /* Full name of same */
766 extern uid_t originator_uid; /* Uid of ditto */
767 extern uschar *override_local_interfaces; /* Value of -oX argument */
768 extern uschar *override_pid_file_path; /* Value of -oP argument */
770 extern uschar *percent_hack_domains; /* Local domains for which '% operates */
771 extern uschar *pid_file_path; /* For writing daemon pids */
772 #ifndef DISABLE_PIPE_CONNECT
773 extern uschar *pipe_connect_advertise_hosts; /* for banner/EHLO pipelining */
775 extern uschar *pipelining_advertise_hosts; /* As it says */
777 extern BOOL prdr_enable; /* As it says */
778 extern BOOL prdr_requested; /* Connecting mail server wants PRDR */
780 extern BOOL preserve_message_logs; /* Save msglog files */
781 extern uschar *primary_hostname; /* Primary name of this computer */
782 extern BOOL print_topbitchars; /* Topbit chars are printing chars */
783 extern uschar *process_info; /* For SIGUSR1 output */
784 extern int process_info_len;
785 extern uschar *process_log_path; /* Alternate path */
786 extern const uschar *process_purpose; /* for debug output */
787 extern BOOL prod_requires_admin; /* TRUE if prodding requires admin */
789 #if defined(SUPPORT_PROXY) || defined(SUPPORT_SOCKS)
790 extern uschar *hosts_proxy; /* Hostlist which (require) use proxy protocol */
791 extern uschar *proxy_external_address; /* IP of remote interface of proxy */
792 extern int proxy_external_port; /* Port on remote interface of proxy */
793 extern uschar *proxy_local_address; /* IP of local interface of proxy */
794 extern int proxy_local_port; /* Port on local interface of proxy */
795 extern int proxy_protocol_timeout; /* Timeout for proxy negotiation */
796 extern BOOL proxy_session; /* TRUE if receiving mail from valid proxy */
799 extern uschar *prvscheck_address; /* Set during prvscheck expansion item */
800 extern uschar *prvscheck_keynum; /* Set during prvscheck expansion item */
801 extern uschar *prvscheck_result; /* Set during prvscheck expansion item */
803 extern const uschar *qualify_domain_recipient; /* Domain to qualify recipients with */
804 extern uschar *qualify_domain_sender; /* Domain to qualify senders with */
805 extern uschar *queue_domains; /* Queue these domains */
806 #ifndef DISABLE_QUEUE_RAMP
807 extern BOOL queue_fast_ramp; /* 2-phase queue-run overlap */
809 extern BOOL queue_list_requires_admin; /* TRUE if -bp requires admin */
810 /* immediate children */
811 extern pid_t queue_run_pid; /* PID of the queue running process or 0 */
812 extern int queue_run_pipe; /* Pipe for synchronizing */
813 extern int queue_interval; /* Queue running interval */
814 extern uschar *queue_name; /* Name of queue, if nondefault spooling */
815 extern uschar *queue_name_dest; /* Destination queue, for moving messages */
816 extern BOOL queue_only; /* TRUE to disable immediate delivery */
817 extern int queue_only_load; /* Max load before auto-queue */
818 extern BOOL queue_only_load_latch; /* Latch queue_only_load TRUE */
819 extern uschar *queue_only_file; /* Queue if file exists/not-exists */
820 extern BOOL queue_only_override; /* Allow override from command line */
821 extern BOOL queue_run_in_order; /* As opposed to random */
822 extern uschar *queue_run_max; /* Max queue runners */
823 extern unsigned queue_size; /* items in queue */
824 extern time_t queue_size_next; /* next time to evaluate queue_size */
825 extern uschar *queue_smtp_domains; /* Ditto, for these domains */
827 extern unsigned int random_seed; /* Seed for random numbers */
828 extern tree_node *ratelimiters_cmd; /* Results of command ratelimit checks */
829 extern tree_node *ratelimiters_conn; /* Results of connection ratelimit checks */
830 extern tree_node *ratelimiters_mail; /* Results of per-mail ratelimit checks */
831 extern uschar *raw_active_hostname; /* Pre-expansion */
832 extern uschar *raw_sender; /* Before rewriting */
833 extern uschar **raw_recipients; /* Before rewriting */
834 extern int raw_recipients_count;
835 extern const uschar * rc_names[]; /* Mostly for debug output */
836 extern int rcpt_count; /* Count of RCPT commands in a message */
837 extern int rcpt_fail_count; /* Those that got 5xx */
838 extern int rcpt_defer_count; /* Those that got 4xx */
839 extern gid_t real_gid; /* Real gid */
840 extern uid_t real_uid; /* Real user running program */
841 extern int receive_linecount; /* Mainly for BSMTP errors */
842 extern int receive_messagecount; /* Mainly for BSMTP errors */
843 extern int receive_timeout; /* For non-SMTP acceptance */
844 extern int received_count; /* Count of Received: headers */
845 extern uschar *received_for; /* For "for" field */
846 extern uschar *received_header_text; /* Definition of Received: header */
847 extern int received_headers_max; /* Max count of Received: headers */
848 extern struct timeval received_time; /* Time the message was received */
849 extern struct timeval received_time_taken; /* Interval the message took to be received */
850 extern uschar *recipient_data; /* lookup data for recipients */
851 extern uschar *recipient_unqualified_hosts; /* Permitted unqualified recipients */
852 extern uschar *recipient_verify_failure; /* What went wrong */
853 extern int recipients_list_max; /* Maximum number fitting in list */
854 extern int recipients_max; /* Max permitted */
855 extern BOOL recipients_max_reject; /* If TRUE, reject whole message */
856 extern const pcre *regex_AUTH; /* For recognizing AUTH settings */
857 extern const pcre *regex_check_dns_names; /* For DNS name checking */
858 extern const pcre *regex_From; /* For recognizing "From_" lines */
859 extern const pcre *regex_CHUNKING; /* For recognizing CHUNKING (RFC 3030) */
860 extern const pcre *regex_IGNOREQUOTA; /* For recognizing IGNOREQUOTA (LMTP) */
861 extern const pcre *regex_PIPELINING; /* For recognizing PIPELINING */
862 extern const pcre *regex_SIZE; /* For recognizing SIZE settings */
863 #ifndef DISABLE_PIPE_CONNECT
864 extern const pcre *regex_EARLY_PIPE; /* For recognizing PIPE_CONNCT */
866 extern const pcre *regex_ismsgid; /* Compiled r.e. for message it */
867 extern const pcre *regex_smtp_code; /* For recognizing SMTP codes */
868 extern uschar *regex_vars[]; /* $regexN variables */
869 #ifdef WHITELIST_D_MACROS
870 extern const pcre *regex_whitelisted_macro; /* For -D macro values */
872 #ifdef WITH_CONTENT_SCAN
873 extern uschar *regex_match_string; /* regex that matched a line (regex ACL condition) */
875 extern int remote_delivery_count; /* Number of remote addresses */
876 extern int remote_max_parallel; /* Maximum parallel delivery */
877 extern uschar *remote_sort_domains; /* Remote domain sorting order */
878 extern retry_config *retries; /* Chain of retry config information */
879 extern int retry_data_expire; /* When to expire retry data */
880 extern int retry_interval_max; /* Absolute maximum */
881 extern int retry_maximum_timeout; /* The maximum timeout */
882 extern uschar *return_path; /* Return path for a message */
883 extern BOOL return_path_remove; /* Remove return-path headers */
884 extern int rewrite_existflags; /* Indicate which headers have rewrites */
885 extern uschar *rfc1413_hosts; /* RFC hosts */
886 extern int rfc1413_query_timeout; /* Timeout on RFC 1413 calls */
887 /* extern BOOL rfc821_domains; */ /* If set, syntax is 821, not 822 => being abolished */
888 extern uid_t root_gid; /* The gid for root */
889 extern uid_t root_uid; /* The uid for root */
890 extern router_info routers_available[];/* Vector of available routers */
891 extern router_instance *routers; /* Chain of instantiated routers */
892 extern router_instance router_defaults;/* Default values */
893 extern uschar *router_name; /* Name of router last started */
894 extern tree_node *router_var; /* Variables set by router */
895 extern ip_address_item *running_interfaces; /* Host's running interfaces */
896 extern uschar *running_status; /* Flag string for testing */
897 extern int runrc; /* rc from ${run} */
899 extern uschar *search_error_message; /* Details of lookup problem */
900 extern uschar *self_hostname; /* Self host after routing->directors */
901 extern unsigned int sender_address_cache[(MAX_NAMED_LIST * 2)/32]; /* Cache bits for sender */
902 extern uschar *sender_address_data; /* address_data from sender verify */
903 extern uschar *sender_address_unrewritten; /* Set if rewritten by verify */
904 extern uschar *sender_data; /* lookup result for senders */
905 extern unsigned int sender_domain_cache[(MAX_NAMED_LIST * 2)/32]; /* Cache bits for sender domain */
906 extern uschar *sender_fullhost; /* Sender host name + address */
907 extern BOOL sender_helo_dnssec; /* True if HELO verify used DNS and was DNSSEC */
908 extern uschar *sender_helo_name; /* Host name from HELO/EHLO */
909 extern uschar **sender_host_aliases; /* Points to list of alias names */
910 extern uschar *sender_host_auth_pubname; /* Public-name of authentication method */
911 extern unsigned int sender_host_cache[(MAX_NAMED_LIST * 2)/32]; /* Cache bits for incoming host */
912 extern BOOL sender_host_dnssec; /* true if sender_host_name verified in DNSSEC */
913 extern uschar *sender_ident; /* Sender identity via RFC 1413 */
914 extern uschar *sender_rate; /* Sender rate computed by ACL */
915 extern uschar *sender_rate_limit; /* Configured rate limit */
916 extern uschar *sender_rate_period; /* Configured smoothing period */
917 extern uschar *sender_rcvhost; /* Host data for Received: */
918 extern uschar *sender_unqualified_hosts; /* Permitted unqualified senders */
919 extern uschar *sender_verify_failure; /* What went wrong */
920 extern address_item *sender_verified_list; /* Saved chain of sender verifies */
921 extern address_item *sender_verified_failed; /* The one that caused denial */
922 extern uschar *sending_ip_address; /* Address of outgoing (SMTP) interface */
923 extern int sending_port; /* Port of outgoing interface */
924 extern SIGNAL_BOOL sigalrm_seen; /* Flag for sigalrm_handler */
925 extern const uschar *sigalarm_setter; /* For debug, set to callpoint of alarm() */
926 extern uschar **sighup_argv; /* Args for re-execing after SIGHUP */
927 extern int slow_lookup_log; /* Log DNS lookups taking longer than N millisecs */
928 extern int smtp_accept_count; /* Count of connections */
929 extern BOOL smtp_accept_keepalive; /* Set keepalive on incoming */
930 extern int smtp_accept_max; /* Max SMTP connections */
931 extern int smtp_accept_max_nonmail;/* Max non-mail commands in one con */
932 extern uschar *smtp_accept_max_nonmail_hosts; /* Limit non-mail cmds from these hosts */
933 extern uschar *smtp_accept_max_per_connection; /* Max msgs per connection */
934 extern uschar *smtp_accept_max_per_host; /* Max SMTP cons from one IP addr */
935 extern int smtp_accept_queue; /* Queue after so many connections */
936 extern int smtp_accept_queue_per_connection; /* Queue after so many msgs */
937 extern int smtp_accept_reserve; /* Reserve these SMTP connections */
938 extern uschar *smtp_active_hostname; /* Hostname for this message */
939 extern uschar *smtp_banner; /* Banner string (to be expanded) */
940 extern BOOL smtp_check_spool_space; /* TRUE to check SMTP SIZE value */
941 extern int smtp_ch_index; /* Index in smtp_connection_had */
942 extern uschar *smtp_cmd_argument; /* For all SMTP commands */
943 extern uschar *smtp_cmd_buffer; /* SMTP command buffer */
944 extern struct timeval smtp_connection_start; /* Start time of SMTP connection */
945 extern uschar smtp_connection_had[]; /* Recent SMTP commands */
946 extern int smtp_connect_backlog; /* Max backlog permitted */
947 extern double smtp_delay_mail; /* Current MAIL delay */
948 extern double smtp_delay_rcpt; /* Current RCPT delay */
949 extern BOOL smtp_enforce_sync; /* Enforce sync rules */
950 extern uschar *smtp_etrn_command; /* Command to run */
951 extern BOOL smtp_etrn_serialize; /* Only one at once */
952 extern FILE *smtp_in; /* Incoming SMTP input file */
953 extern int smtp_load_reserve; /* Only from reserved if load > this */
954 extern int smtp_mailcmd_count; /* Count of MAIL commands */
955 extern int smtp_max_synprot_errors;/* Max syntax/protocol errors */
956 extern int smtp_max_unknown_commands; /* As it says */
957 extern uschar *smtp_names[]; /* decode for command codes */
958 extern uschar *smtp_notquit_reason; /* Global for disconnect reason */
959 extern FILE *smtp_out; /* Incoming SMTP output file */
960 extern uschar *smtp_ratelimit_hosts; /* Rate limit these hosts */
961 extern uschar *smtp_ratelimit_mail; /* Parameters for MAIL limiting */
962 extern uschar *smtp_ratelimit_rcpt; /* Parameters for RCPT limiting */
963 extern uschar *smtp_read_error; /* Message for SMTP input error */
964 extern int smtp_receive_timeout; /* Applies to each received line */
965 extern uschar *smtp_receive_timeout_s; /* ... expandable version */
966 extern uschar *smtp_reserve_hosts; /* Hosts for reserved slots */
967 extern BOOL smtp_return_error_details; /* TRUE to return full info */
968 extern int smtp_rlm_base; /* Base interval for MAIL rate limit */
969 extern double smtp_rlm_factor; /* Factor for MAIL rate limit */
970 extern int smtp_rlm_limit; /* Max delay */
971 extern int smtp_rlm_threshold; /* Threshold for RCPT rate limit */
972 extern int smtp_rlr_base; /* Base interval for RCPT rate limit */
973 extern double smtp_rlr_factor; /* Factor for RCPT rate limit */
974 extern int smtp_rlr_limit; /* Max delay */
975 extern int smtp_rlr_threshold; /* Threshold for RCPT rate limit */
976 extern unsigned smtp_peer_options; /* Global flags for passed connections */
977 extern unsigned smtp_peer_options_wrap; /* stacked version hidden by TLS */
979 extern uschar *smtputf8_advertise_hosts; /* ingress control */
982 #ifdef WITH_CONTENT_SCAN
983 extern uschar *spamd_address; /* address for the spamassassin daemon */
984 extern uschar *spam_bar; /* the spam "bar" (textual representation of spam_score) */
985 extern uschar *spam_report; /* the spamd report (multiline) */
986 extern uschar *spam_action; /* the spamd recommended-action */
987 extern uschar *spam_score; /* the spam score (float) */
988 extern uschar *spam_score_int; /* spam_score * 10 (int) */
991 extern uschar *spf_guess; /* spf best-guess record */
992 extern uschar *spf_header_comment; /* spf header comment */
993 extern uschar *spf_received; /* Received-SPF: header */
994 extern uschar *spf_result; /* spf result in string form */
995 extern BOOL spf_result_guessed; /* spf result is of best-guess operation */
996 extern uschar *spf_smtp_comment; /* spf comment to include in SMTP reply */
997 extern uschar *spf_smtp_comment_template;
998 /* template to construct the spf comment by libspf2 */
1000 extern BOOL split_spool_directory; /* TRUE to use multiple subdirs */
1001 extern FILE *spool_data_file; /* handle for -D file */
1002 extern uschar *spool_directory; /* Name of spool directory */
1003 extern BOOL spool_wireformat; /* can write wireformat -D files */
1004 #ifdef EXPERIMENTAL_SRS_ALT
1005 extern uschar *srs_config; /* SRS config secret:max age:hash length:use timestamp:use hash */
1006 extern uschar *srs_db_address; /* SRS db address */
1007 extern uschar *srs_db_key; /* SRS db key */
1008 extern int srs_hashlength; /* SRS hash length */
1009 extern int srs_hashmin; /* SRS minimum hash length */
1010 extern int srs_maxage; /* SRS max age */
1011 extern uschar *srs_orig_sender; /* SRS original sender */
1012 extern uschar *srs_orig_recipient; /* SRS original recipient */
1013 extern uschar *srs_recipient; /* SRS recipient */
1014 extern uschar *srs_secrets; /* SRS secrets list */
1015 extern uschar *srs_status; /* SRS staus */
1016 extern BOOL srs_usehash; /* SRS use hash flag */
1017 extern BOOL srs_usetimestamp; /* SRS use timestamp flag */
1020 extern uschar *srs_recipient; /* SRS recipient */
1022 extern BOOL strict_acl_vars; /* ACL variables have to be set before being used */
1023 extern int string_datestamp_offset;/* After insertion by string_format */
1024 extern int string_datestamp_length;/* After insertion by string_format */
1025 extern int string_datestamp_type; /* After insertion by string_format */
1026 extern BOOL strip_excess_angle_brackets; /* Surrounding route-addrs */
1027 extern BOOL strip_trailing_dot; /* Remove dots at ends of domains */
1028 extern const uschar *submission_domain;/* Domain for submission mode */
1029 extern const uschar *submission_name; /* User name set from ACL */
1030 extern BOOL syslog_duplication; /* FALSE => no duplicate logging */
1031 extern int syslog_facility; /* As defined by Syslog.h */
1032 extern BOOL syslog_pid; /* TRUE if PID on syslogs */
1033 extern uschar *syslog_processname; /* 'ident' param to openlog() */
1034 extern BOOL syslog_timestamp; /* TRUE if time on syslogs */
1035 extern uschar *system_filter; /* Name of system filter file */
1037 extern uschar *system_filter_directory_transport; /* Transports for the */
1038 extern uschar *system_filter_file_transport; /* system filter */
1039 extern uschar *system_filter_pipe_transport;
1040 extern uschar *system_filter_reply_transport;
1042 extern gid_t system_filter_gid; /* Gid for running system filter */
1043 extern BOOL system_filter_gid_set; /* TRUE if gid set */
1044 extern uid_t system_filter_uid; /* Uid for running system filter */
1045 extern BOOL system_filter_uid_set; /* TRUE if uid set */
1047 extern blob tcp_fastopen_nodata; /* for zero-data TFO connect requests */
1048 extern BOOL tcp_nodelay; /* Controls TCP_NODELAY on daemon */
1049 extern tfo_state_t tcp_out_fastopen; /* TCP fast open */
1050 #ifdef USE_TCP_WRAPPERS
1051 extern uschar *tcp_wrappers_daemon_name; /* tcpwrappers daemon lookup name */
1053 extern int test_harness_load_avg; /* For use when testing */
1054 extern int thismessage_size_limit; /* Limit for this message */
1055 extern int timeout_frozen_after; /* Max time to keep frozen messages */
1056 #ifdef MEASURE_TIMING
1057 extern struct timeval timestamp_startup; /* For development measurements */
1060 extern uschar *transport_name; /* Name of transport last started */
1061 extern int transport_count; /* Count of bytes transported */
1062 extern int transport_newlines; /* Accurate count of number of newline chars transported */
1063 extern const uschar **transport_filter_argv; /* For on-the-fly filtering */
1064 extern int transport_filter_timeout; /* Timeout for same */
1066 extern transport_info transports_available[]; /* Vector of available transports */
1067 extern transport_instance *transports; /* Chain of instantiated transports */
1068 extern transport_instance transport_defaults; /* Default values */
1070 extern int transport_write_timeout;/* Set to time out individual writes */
1072 extern tree_node *tree_dns_fails; /* Tree of DNS lookup failures */
1073 extern tree_node *tree_duplicates; /* Tree of duplicate addresses */
1074 extern tree_node *tree_nonrecipients; /* Tree of nonrecipient addresses */
1075 extern tree_node *tree_unusable; /* Tree of unusable addresses */
1077 extern gid_t *trusted_groups; /* List of trusted groups */
1078 extern uid_t *trusted_users; /* List of trusted users */
1079 extern uschar *timezone_string; /* Required timezone setting */
1081 extern uschar *unknown_login; /* To use when login id unknown */
1082 extern uschar *unknown_username; /* Ditto */
1083 extern uschar *untrusted_set_sender; /* Let untrusted users set these senders */
1084 extern uschar *uucp_from_pattern; /* For recognizing "From " lines */
1085 extern uschar *uucp_from_sender; /* For building the sender */
1087 extern uschar *warn_message_file; /* Template for warning messages */
1088 extern uschar *warnmsg_delay; /* String form of delay time */
1089 extern uschar *warnmsg_recipients; /* Recipients of warning message */
1090 extern BOOL write_rejectlog; /* Control of reject logging */
1092 extern uschar *verify_mode; /* Running a router in verify mode */
1093 extern uschar *version_copyright; /* Copyright notice */
1094 extern uschar *version_date; /* Date of compilation */
1095 extern uschar *version_cnumber; /* Compile number */
1096 extern uschar *version_string; /* Version string */
1098 extern int warning_count; /* Delay warnings sent for this msg */
1100 /* End of globals.h */