]> code.citadel.org Git - citadel.git/blob - citadel/user_ops.c
Fixed stuff I broke.
[citadel.git] / citadel / user_ops.c
1 /* needed to properly enable crypt() stuff on some systems */
2 #define _XOPEN_SOURCE
3 /* needed for str[n]casecmp() on some systems if the above is defined */
4 #define _XOPEN_SOURCE_EXTENDED
5 /* needed to enable threads on some systems if the above are defined */
6 #define _POSIX_C_SOURCE 199506L
7
8 #include <stdlib.h>
9 #include <unistd.h>
10 #include <stdio.h>
11 #include <fcntl.h>
12 #include <signal.h>
13 #include <pwd.h>
14 #include <sys/types.h>
15 #include <sys/time.h>
16 #include <string.h>
17 #include <syslog.h>
18 #include <limits.h>
19 #include <pthread.h>
20 #include "citadel.h"
21 #include "server.h"
22 #include "database.h"
23 #include "user_ops.h"
24 #include "sysdep_decls.h"
25 #include "support.h"
26 #include "room_ops.h"
27 #include "logging.h"
28 #include "file_ops.h"
29 #include "control.h"
30 #include "msgbase.h"
31 #include "config.h"
32 #include "dynloader.h"
33 #include "sysdep.h"
34
35
36 /*
37  * getuser()  -  retrieve named user into supplied buffer.
38  *               returns 0 on success
39  */
40 int getuser(struct usersupp *usbuf, char name[]) {
41
42         char lowercase_name[32];
43         int a;
44         struct cdbdata *cdbus;
45
46         bzero(usbuf, sizeof(struct usersupp));
47         for (a=0; a<=strlen(name); ++a) {
48                 lowercase_name[a] = tolower(name[a]);
49                 }
50
51         cdbus = cdb_fetch(CDB_USERSUPP, lowercase_name, strlen(lowercase_name));
52         if (cdbus == NULL) {
53                 return(1);      /* user not found */
54                 }
55
56         memcpy(usbuf, cdbus->ptr,
57                 ( (cdbus->len > sizeof(struct usersupp)) ?
58                 sizeof(struct usersupp) : cdbus->len) );
59         cdb_free(cdbus);
60         return(0);
61         }
62
63
64 /*
65  * lgetuser()  -  same as getuser() but locks the record
66  */
67 int lgetuser(struct usersupp *usbuf, char *name)
68 {
69         int retcode;
70
71         retcode = getuser(usbuf,name);
72         if (retcode == 0) {
73                 begin_critical_section(S_USERSUPP);
74                 }
75         return(retcode);
76         }
77
78
79 /*
80  * putuser()  -  write user buffer into the correct place on disk
81  */
82 void putuser(struct usersupp *usbuf, char *name)
83 {
84         char lowercase_name[32];
85         int a;
86
87         for (a=0; a<=strlen(name); ++a) {
88                 lowercase_name[a] = tolower(name[a]);
89                 }
90
91         cdb_store(CDB_USERSUPP,
92                 lowercase_name, strlen(lowercase_name),
93                 usbuf, sizeof(struct usersupp));
94
95         }
96
97
98 /*
99  * lputuser()  -  same as putuser() but locks the record
100  */
101 void lputuser(struct usersupp *usbuf, char *name) {
102         putuser(usbuf,name);
103         end_critical_section(S_USERSUPP);
104         }
105
106
107 /*
108  * Define a relationship between a user and a room
109  */
110 void CtdlSetRelationship(struct visit *newvisit,
111                         struct usersupp *rel_user,
112                         struct quickroom *rel_room) {
113
114         struct cdbdata *cdbvisit;
115         struct visit *visits;
116         int num_visits;
117         int a;
118         int replaced = 0;
119
120         cdbvisit = cdb_fetch(CDB_VISIT, &rel_user->usernum, sizeof(long));
121         if (cdbvisit != NULL) {
122                 num_visits = cdbvisit->len / sizeof(struct visit);
123                 visits = (struct visit *)
124                         malloc(num_visits * sizeof(struct visit));
125                 memcpy(visits, cdbvisit->ptr,
126                         (num_visits * sizeof(struct visit)));
127                 cdb_free(cdbvisit);
128                 }
129         else {
130                 num_visits = 0;
131                 visits = NULL;
132                 }
133
134         /* Replace an existing relationship if possible */
135         if (num_visits > 0) for (a=0; a<num_visits; ++a) {
136                 if ( (!strcasecmp(visits[a].v_roomname, rel_room->QRname))
137                    && (visits[a].v_generation == rel_room->QRgen) ) {
138                         memcpy(&visits[a], newvisit, sizeof(struct visit));
139                         replaced = 1;
140                         }
141                 }
142
143         /* Otherwise, define a new one */
144         if (replaced == 0) {
145                 ++num_visits;
146                 visits = realloc(visits, 
147                         (num_visits * sizeof(struct visit)));
148                 memcpy(&visits[num_visits-1], newvisit, sizeof(struct visit));
149                 }
150
151         /* Now write the relationship back to disk */
152         cdb_store(CDB_VISIT,
153                 &rel_user->usernum, sizeof(long),
154                 visits,
155                 (num_visits * sizeof(struct visit)));
156         free(visits);
157         }
158
159 /*
160  * Locate a relationship between a user and a room
161  */
162 void CtdlGetRelationship(struct visit *vbuf,
163                         struct usersupp *rel_user,
164                         struct quickroom *rel_room) {
165
166         struct cdbdata *cdbvisit;
167         struct visit *visits;
168         int num_visits;
169         int a;
170
171         bzero(vbuf, sizeof(struct visit));
172         strcpy(vbuf->v_roomname, rel_room->QRname);
173         vbuf->v_generation = rel_room->QRgen;
174
175         cdbvisit = cdb_fetch(CDB_VISIT, &rel_user->usernum, sizeof(long));
176         if (cdbvisit != NULL) {
177                 if ((num_visits = cdbvisit->len / sizeof(struct visit)) == 0) {
178                         cdb_free(cdbvisit);
179                         return;
180                 }
181                 visits = (struct visit *)
182                         malloc(num_visits * sizeof(struct visit));
183                 memcpy(visits, cdbvisit->ptr,
184                         (num_visits * sizeof(struct visit)));
185                 cdb_free(cdbvisit);
186                 }
187         else return;
188
189         for (a=0; a<num_visits; ++a) {
190         
191                 if ( (!strcasecmp(visits[a].v_roomname, rel_room->QRname))
192                    && (visits[a].v_generation == rel_room->QRgen) ) {
193                         memcpy(vbuf, &visits[a], sizeof(struct visit));
194                         }
195                 }
196         
197         free(visits);
198         }
199
200
201 void MailboxName(char *buf, struct usersupp *who, char *prefix) {
202         sprintf(buf, "%010ld.%s", who->usernum, prefix);
203         }
204
205         
206 /*
207  * Is the user currently logged in an Aide?
208  */
209 int is_aide(void) {
210         if (CC->usersupp.axlevel >= 6) return(1);
211         else return(0);
212         }
213
214
215 /*
216  * Is the user currently logged in an Aide *or* the room aide for this room?
217  */
218 int is_room_aide(void) {
219         if ( (CC->usersupp.axlevel >= 6)
220            || (CC->quickroom.QRroomaide == CC->usersupp.usernum) ) {
221                 return(1);
222                 }
223         else {
224                 return(0);
225                 }
226         }
227
228 /*
229  * getuserbynumber()  -  get user by number
230  *                       returns 0 if user was found
231  */
232 int getuserbynumber(struct usersupp *usbuf, long int number)
233 {
234         struct cdbdata *cdbus;
235
236         cdb_rewind(CDB_USERSUPP);
237
238         while(cdbus = cdb_next_item(CDB_USERSUPP), cdbus != NULL) {
239                 bzero(usbuf, sizeof(struct usersupp));
240                 memcpy(usbuf, cdbus->ptr,
241                         ( (cdbus->len > sizeof(struct usersupp)) ?
242                         sizeof(struct usersupp) : cdbus->len) );
243                 cdb_free(cdbus);
244                 if (usbuf->usernum == number) {
245                         return(0);
246                         }
247                 }
248         return(-1);
249         }
250
251
252 /*
253  * USER cmd
254  */
255 void cmd_user(char *cmdbuf)
256 {
257         char username[256];
258         char autoname[256];
259         int found_user = 0;
260         struct passwd *p;
261         int a;
262
263         extract(username,cmdbuf,0);
264         username[25] = 0;
265         strproc(username);
266
267         if ((CC->logged_in)) {
268                 cprintf("%d Already logged in.\n",ERROR);
269                 return;
270                 }
271
272         found_user = getuser(&CC->usersupp,username);
273         if (found_user != 0) {
274                 p = (struct passwd *)getpwnam(username);
275                 if (p!=NULL) {
276                         strcpy(autoname,p->pw_gecos);
277                         for (a=0; a<strlen(autoname); ++a)
278                                 if (autoname[a]==',') autoname[a]=0;
279                         found_user = getuser(&CC->usersupp,autoname);
280                         }
281                 }
282         if (found_user == 0) {
283                 if (((CC->nologin)) && (CC->usersupp.axlevel < 6)) {
284                         cprintf("%d %s: Too many users are already online (maximum is %d)\n",
285                         ERROR+MAX_SESSIONS_EXCEEDED,
286                         config.c_nodename,config.c_maxsessions);
287                         }
288                 else {
289                         strcpy(CC->curr_user,CC->usersupp.fullname);
290                         cprintf("%d Password required for %s\n",
291                                 MORE_DATA,CC->curr_user);
292                         }
293                 }
294         else {
295                 cprintf("%d %s not found.\n",ERROR,username);
296                 }
297         }
298
299
300
301 /*
302  * session startup code which is common to both cmd_pass() and cmd_newu()
303  */
304 void session_startup(void) {
305         syslog(LOG_NOTICE,"user <%s> logged in",CC->curr_user);
306
307         lgetuser(&CC->usersupp,CC->curr_user);
308         ++(CC->usersupp.timescalled);
309         CC->fake_username[0] = '\0';
310         CC->fake_postname[0] = '\0';
311         CC->fake_hostname[0] = '\0';
312         CC->fake_roomname[0] = '\0';
313         CC->last_pager[0] = '\0';
314         time(&CC->usersupp.lastcall);
315
316         /* If this user's name is the name of the system administrator
317          * (as specified in setup), automatically assign access level 6.
318          */
319         if (!strcasecmp(CC->usersupp.fullname, config.c_sysadm)) {
320                 CC->usersupp.axlevel = 6;
321                 }
322
323         lputuser(&CC->usersupp,CC->curr_user);
324
325         /* Run any cleanup routines registered by loadable modules */
326         PerformSessionHooks(EVT_LOGIN);
327
328         cprintf("%d %s|%d|%d|%d|%u|%ld\n",OK,CC->usersupp.fullname,CC->usersupp.axlevel,
329                 CC->usersupp.timescalled,CC->usersupp.posted,CC->usersupp.flags,
330                 CC->usersupp.usernum);
331         usergoto(BASEROOM,0);           /* Enter the lobby */   
332         rec_log(CL_LOGIN,CC->curr_user);
333         }
334
335
336 /* 
337  * misc things to be taken care of when a user is logged out
338  */
339 void logout(struct CitContext *who)
340 {
341         who->logged_in = 0;
342         if (who->download_fp != NULL) {
343                 fclose(who->download_fp);
344                 who->download_fp = NULL;
345                 }
346         if (who->upload_fp != NULL) {
347                 abort_upl(who);
348                 }
349
350         /* Do modular stuff... */
351         PerformSessionHooks(EVT_LOGOUT);
352         }
353
354
355 void cmd_pass(char *buf)
356 {
357         char password[256];
358         int code;
359         struct passwd *p;
360
361         extract(password,buf,0);
362
363         if ((CC->logged_in)) {
364                 cprintf("%d Already logged in.\n",ERROR);
365                 return;
366                 }
367         if (!strcmp(CC->curr_user,"")) {
368                 cprintf("%d You must send a name with USER first.\n",ERROR);
369                 return;
370                 }
371         if (getuser(&CC->usersupp,CC->curr_user)) {
372                 cprintf("%d Can't find user record!\n",ERROR+INTERNAL_ERROR);
373                 return;
374                 }
375
376         code = (-1);
377         if (CC->usersupp.USuid == BBSUID) {
378                 strproc(password);
379                 strproc(CC->usersupp.password);
380                 code = strcasecmp(CC->usersupp.password,password);
381                 }
382         else {
383                 p = (struct passwd *)getpwuid(CC->usersupp.USuid);
384 #ifdef ENABLE_AUTOLOGIN
385                 if (p!=NULL) {
386                         if (!strcmp(p->pw_passwd,
387                            (char *)crypt(password,p->pw_passwd))) {
388                                 code = 0;
389                                 lgetuser(&CC->usersupp, CC->curr_user);
390                                 strcpy(CC->usersupp.password, password);
391                                 lputuser(&CC->usersupp, CC->curr_user);
392                                 }
393                         }
394 #endif
395                 }
396
397         if (!code) {
398                 (CC->logged_in) = 1;
399                 session_startup();
400                 }
401         else {
402                 cprintf("%d Wrong password.\n",ERROR);
403                 rec_log(CL_BADPW,CC->curr_user);
404                 }
405         }
406
407
408 /*
409  * Delete a user record *and* all of its related resources.
410  */
411 int purge_user(char *pname) {
412         char filename[64];
413         char mailboxname[ROOMNAMELEN];
414         struct usersupp usbuf;
415         struct quickroom qrbuf;
416
417         if (getuser(&usbuf, pname) != 0) {
418                 lprintf(5, "Cannot purge user <%s> - not found\n", pname);
419                 return(ERROR+NO_SUCH_USER);
420                 }
421
422         /* FIX   Don't delete a user who is currently logged in. */
423
424         /* Perform any purge functions registered by server extensions */
425         PerformUserHooks(usbuf.fullname, usbuf.usernum, EVT_PURGEUSER);
426
427         /* delete any existing user/room relationships */
428         cdb_delete(CDB_VISIT, &usbuf.usernum, sizeof(long));
429
430         /* Delete the user's mailbox and its contents */
431         MailboxName(mailboxname, &usbuf, MAILROOM);
432         if (getroom(&qrbuf, mailboxname)==0) {
433                 delete_room(&qrbuf);
434                 }
435
436         /* delete the userlog entry */
437         cdb_delete(CDB_USERSUPP, pname, strlen(pname));
438
439         /* remove the user's bio file */        
440         sprintf(filename, "./bio/%ld", usbuf.usernum);
441         unlink(filename);
442
443         /* remove the user's picture */
444         sprintf(filename, "./userpics/%ld.gif", usbuf.usernum);
445         unlink(filename);
446
447         return(0);
448         }
449
450
451 /*
452  * create_user()  -  back end processing to create a new user
453  */
454 int create_user(char *newusername)
455 {
456         struct usersupp usbuf;
457         int a;
458         struct passwd *p = NULL;
459         char username[64];
460         char mailboxname[ROOMNAMELEN];
461
462         strcpy(username, newusername);
463         strproc(username);
464
465 #ifdef ENABLE_AUTOLOGIN
466         p = (struct passwd *)getpwnam(username);
467 #endif
468         if (p != NULL) {
469                 strcpy(username, p->pw_gecos);
470                 for (a=0; a<strlen(username); ++a) {
471                         if (username[a] == ',') username[a] = 0;
472                         }
473                 CC->usersupp.USuid = p->pw_uid;
474                 }
475         else {
476                 CC->usersupp.USuid = BBSUID;
477                 }
478
479         if (!getuser(&usbuf,username)) {
480                 return(ERROR+ALREADY_EXISTS);
481                 }
482
483         strcpy(CC->curr_user,username);
484         strcpy(CC->usersupp.fullname,username);
485         strcpy(CC->usersupp.password,"");
486         (CC->logged_in) = 1;
487
488         /* These are the default flags on new accounts */
489         CC->usersupp.flags =
490                 US_NEEDVALID|US_LASTOLD|US_DISAPPEAR|US_PAGINATOR|US_FLOORS;
491
492         CC->usersupp.timescalled = 0;
493         CC->usersupp.posted = 0;
494         CC->usersupp.axlevel = config.c_initax;
495         CC->usersupp.USscreenwidth = 80;
496         CC->usersupp.USscreenheight = 24;
497         time(&CC->usersupp.lastcall);
498         strcpy(CC->usersupp.USname, "");
499         strcpy(CC->usersupp.USaddr, "");
500         strcpy(CC->usersupp.UScity, "");
501         strcpy(CC->usersupp.USstate, "");
502         strcpy(CC->usersupp.USzip, "");
503         strcpy(CC->usersupp.USphone, "");
504
505         /* fetch a new user number */
506         CC->usersupp.usernum = get_new_user_number();
507
508         if (CC->usersupp.usernum == 1L) {
509                 CC->usersupp.axlevel = 6;
510                 }
511
512         /* add user to userlog */
513         putuser(&CC->usersupp,CC->curr_user);
514         if (getuser(&CC->usersupp,CC->curr_user)) {
515                 return(ERROR+INTERNAL_ERROR);
516                 }
517
518         /* give the user a private mailbox */
519         MailboxName(mailboxname, &CC->usersupp, MAILROOM);
520         create_room(mailboxname, 4, "", 0);
521
522         rec_log(CL_NEWUSER,CC->curr_user);
523         return(0);
524         }
525
526
527
528
529 /*
530  * cmd_newu()  -  create a new user account
531  */
532 void cmd_newu(char *cmdbuf)
533 {
534         int a;
535         char username[256];
536
537         if ((CC->logged_in)) {
538                 cprintf("%d Already logged in.\n",ERROR);
539                 return;
540                 }
541
542         if ((CC->nologin)) {
543                 cprintf("%d %s: Too many users are already online (maximum is %d)\n",
544                 ERROR+MAX_SESSIONS_EXCEEDED,
545                 config.c_nodename,config.c_maxsessions);
546                 }
547
548         extract(username,cmdbuf,0);
549         username[25] = 0;
550         strproc(username);
551
552         if (strlen(username)==0) {
553                 cprintf("%d You must supply a user name.\n",ERROR);
554                 return;
555                 }
556
557         a = create_user(username);
558         if ((!strcasecmp(username, "bbs")) ||
559             (!strcasecmp(username, "new")) ||
560             (!strcasecmp(username, ".")))
561         {
562            cprintf("%d '%s' is an invalid login name.\n", ERROR);
563            return;
564         }
565         if (a==ERROR+ALREADY_EXISTS) {
566                 cprintf("%d '%s' already exists.\n",
567                         ERROR+ALREADY_EXISTS,username);
568                 return;
569                 }
570         else if (a==ERROR+INTERNAL_ERROR) {
571                 cprintf("%d Internal error - user record disappeared?\n",
572                         ERROR+INTERNAL_ERROR);
573                 return;
574                 }
575         else if (a==0) {
576                 session_startup();
577                 }
578         else {
579                 cprintf("%d unknown error\n",ERROR);
580                 }
581         rec_log(CL_NEWUSER,CC->curr_user);
582         }
583
584
585
586 /*
587  * set password
588  */
589 void cmd_setp(char *new_pw)
590 {
591         if (!(CC->logged_in)) {
592                 cprintf("%d Not logged in.\n",ERROR+NOT_LOGGED_IN);
593                 return;
594                 }
595         if (CC->usersupp.USuid != BBSUID) {
596                 cprintf("%d Not allowed.  Use the 'passwd' command.\n",ERROR);
597                 return;
598                 }
599         strproc(new_pw);
600         if (strlen(new_pw)==0) {
601                 cprintf("%d Password unchanged.\n",OK);
602                 return;
603                 }
604         lgetuser(&CC->usersupp,CC->curr_user);
605         strcpy(CC->usersupp.password,new_pw);
606         lputuser(&CC->usersupp,CC->curr_user);
607         cprintf("%d Password changed.\n",OK);
608         rec_log(CL_PWCHANGE,CC->curr_user);
609         PerformSessionHooks(EVT_SETPASS);
610         }
611
612 /*
613  * get user parameters
614  */
615 void cmd_getu(void) {
616         if (!(CC->logged_in)) {
617                 cprintf("%d Not logged in.\n",ERROR+NOT_LOGGED_IN);
618                 return;
619                 }
620         getuser(&CC->usersupp,CC->curr_user);
621         cprintf("%d %d|%d|%d\n",
622                 OK,
623                 CC->usersupp.USscreenwidth,
624                 CC->usersupp.USscreenheight,
625                 (CC->usersupp.flags & US_USER_SET)
626                 );
627         }
628
629 /*
630  * set user parameters
631  */
632 void cmd_setu(char *new_parms)
633 {
634
635         if (num_parms(new_parms)!=3) {
636                 cprintf("%d Usage error.\n",ERROR);
637                 return;
638                 }       
639         if (!(CC->logged_in)) {
640                 cprintf("%d Not logged in.\n",ERROR+NOT_LOGGED_IN);
641                 return;
642                 }
643         lgetuser(&CC->usersupp,CC->curr_user);
644         CC->usersupp.USscreenwidth = extract_int(new_parms,0);
645         CC->usersupp.USscreenheight = extract_int(new_parms,1);
646         CC->usersupp.flags = CC->usersupp.flags & (~US_USER_SET);
647         CC->usersupp.flags = CC->usersupp.flags | 
648                 (extract_int(new_parms,2) & US_USER_SET);
649         lputuser(&CC->usersupp,CC->curr_user);
650         cprintf("%d Ok\n",OK);
651         }
652
653 /*
654  * set last read pointer
655  */
656 void cmd_slrp(char *new_ptr)
657 {
658         long newlr;
659         struct visit vbuf;
660
661         if (!(CC->logged_in)) {
662                 cprintf("%d Not logged in.\n",ERROR+NOT_LOGGED_IN);
663                 return;
664                 }
665
666         if (!strncasecmp(new_ptr,"highest",7)) {
667                 newlr = CC->quickroom.QRhighest;
668                 }
669         else {
670                 newlr = atol(new_ptr);
671                 }
672
673         lgetuser(&CC->usersupp, CC->curr_user);
674
675         CtdlGetRelationship(&vbuf, &CC->usersupp, &CC->quickroom);
676         vbuf.v_lastseen = newlr;
677         CtdlSetRelationship(&vbuf, &CC->usersupp, &CC->quickroom);
678
679         lputuser(&CC->usersupp, CC->curr_user);
680         cprintf("%d %ld\n",OK,newlr);
681         }
682
683
684 /*
685  * INVT and KICK commands
686  */
687 void cmd_invt_kick(char *iuser, int op)
688                         /* user name */
689         {               /* 1 = invite, 0 = kick out */
690         struct usersupp USscratch;
691         char bbb[256];
692         struct visit vbuf;
693
694         if (!(CC->logged_in)) {
695                 cprintf("%d Not logged in.\n",ERROR+NOT_LOGGED_IN);
696                 return;
697                 }
698
699         if (is_room_aide()==0) {
700                 cprintf("%d Higher access required.\n",
701                         ERROR+HIGHER_ACCESS_REQUIRED);
702                 return;
703                 }
704
705         if (lgetuser(&USscratch,iuser)!=0) {
706                 cprintf("%d No such user.\n",ERROR);
707                 return;
708                 }
709
710         CtdlGetRelationship(&vbuf, &USscratch, &CC->quickroom);
711
712         if (op==1) {
713                 vbuf.v_flags = vbuf.v_flags & ~V_FORGET & ~V_LOCKOUT;
714                 vbuf.v_flags = vbuf.v_flags | V_ACCESS;
715                 }
716
717         if (op==0) {
718                 vbuf.v_flags = vbuf.v_flags & ~V_ACCESS;
719                 vbuf.v_flags = vbuf.v_flags | V_FORGET | V_LOCKOUT;
720                 }
721
722         CtdlSetRelationship(&vbuf, &USscratch, &CC->quickroom);
723
724         lputuser(&USscratch,iuser);
725
726         /* post a message in Aide> saying what we just did */
727         sprintf(bbb,"%s %s %s> by %s",
728                 iuser,
729                 ((op == 1) ? "invited to" : "kicked out of"),
730                 CC->quickroom.QRname,
731                 CC->usersupp.fullname);
732         aide_message(bbb);
733
734         cprintf("%d %s %s %s.\n",
735                 OK, iuser,
736                 ((op == 1) ? "invited to" : "kicked out of"),
737                 CC->quickroom.QRname);
738         return;
739         }
740
741
742 /*
743  * forget (Zap) the current room
744  */
745 void cmd_forg(void) {
746         struct visit vbuf;
747
748         if (!(CC->logged_in)) {
749                 cprintf("%d Not logged in.\n",ERROR+NOT_LOGGED_IN);
750                 return;
751                 }
752
753         if (is_aide()) {
754                 cprintf("%d Aides cannot forget rooms.\n",ERROR);
755                 return;
756                 }
757
758         lgetuser(&CC->usersupp,CC->curr_user);
759         CtdlGetRelationship(&vbuf, &CC->usersupp, &CC->quickroom);
760
761         vbuf.v_flags = vbuf.v_flags | V_FORGET;
762
763         CtdlSetRelationship(&vbuf, &CC->usersupp, &CC->quickroom);
764         lputuser(&CC->usersupp,CC->curr_user);
765         cprintf("%d Ok\n",OK);
766         usergoto(BASEROOM, 0);
767         }
768
769 /*
770  * Get Next Unregistered User
771  */
772 void cmd_gnur(void) {
773         struct cdbdata *cdbus;
774         struct usersupp usbuf;
775
776         if (!(CC->logged_in)) {
777                 cprintf("%d Not logged in.\n",ERROR+NOT_LOGGED_IN);
778                 return;
779                 }
780
781         if (CC->usersupp.axlevel < 6) {
782                 cprintf("%d Higher access required.\n",
783                         ERROR+HIGHER_ACCESS_REQUIRED);
784                 return;
785                 }
786
787         if ((CitControl.MMflags&MM_VALID)==0) {
788                 cprintf("%d There are no unvalidated users.\n",OK);
789                 return;
790                 }
791
792         /* There are unvalidated users.  Traverse the usersupp database,
793          * and return the first user we find that needs validation.
794          */
795         cdb_rewind(CDB_USERSUPP);
796         while (cdbus = cdb_next_item(CDB_USERSUPP), cdbus != NULL) {
797                 bzero(&usbuf, sizeof(struct usersupp));
798                 memcpy(&usbuf, cdbus->ptr,
799                         ( (cdbus->len > sizeof(struct usersupp)) ?
800                         sizeof(struct usersupp) : cdbus->len) );
801                 cdb_free(cdbus);
802                 if ((usbuf.flags & US_NEEDVALID)
803                    &&(usbuf.axlevel > 0)) {
804                         cprintf("%d %s\n",MORE_DATA,usbuf.fullname);
805                         return;
806                         }
807                 } 
808
809         /* If we get to this point, there are no more unvalidated users.
810          * Therefore we clear the "users need validation" flag.
811          */
812
813         begin_critical_section(S_CONTROL);
814         get_control();
815         CitControl.MMflags = CitControl.MMflags&(~MM_VALID);
816         put_control();
817         end_critical_section(S_CONTROL);
818         cprintf("%d *** End of registration.\n",OK);
819
820
821         }
822
823
824 /*
825  * get registration info for a user
826  */
827 void cmd_greg(char *who)
828 {
829         struct usersupp usbuf;
830         int a,b;
831         char pbuf[32];
832
833         if (!(CC->logged_in)) {
834                 cprintf("%d Not logged in.\n",ERROR+NOT_LOGGED_IN);
835                 return;
836                 }
837
838         if (!strcasecmp(who,"_SELF_")) strcpy(who,CC->curr_user);
839
840         if ((CC->usersupp.axlevel < 6) && (strcasecmp(who,CC->curr_user))) {
841                 cprintf("%d Higher access required.\n",
842                         ERROR+HIGHER_ACCESS_REQUIRED);
843                 return;
844                 }
845
846         if (getuser(&usbuf,who) != 0) {
847                 cprintf("%d '%s' not found.\n",ERROR+NO_SUCH_USER,who);
848                 return;
849                 }
850
851         cprintf("%d %s\n",LISTING_FOLLOWS,usbuf.fullname);
852         cprintf("%ld\n",usbuf.usernum);
853         cprintf("%s\n",usbuf.password);
854         cprintf("%s\n",usbuf.USname);
855         cprintf("%s\n",usbuf.USaddr);
856         cprintf("%s\n%s\n%s\n",
857                 usbuf.UScity,usbuf.USstate,usbuf.USzip);
858         strcpy(pbuf,usbuf.USphone);
859         usbuf.USphone[0]=0;
860         for (a=0; a<strlen(pbuf); ++a) {
861                 if ((pbuf[a]>='0')&&(pbuf[a]<='9')) {
862                         b=strlen(usbuf.USphone);
863                         usbuf.USphone[b]=pbuf[a];
864                         usbuf.USphone[b+1]=0;
865                         }
866                 }
867         while(strlen(usbuf.USphone)<10) {
868                 strcpy(pbuf,usbuf.USphone);
869                 strcpy(usbuf.USphone," ");
870                 strcat(usbuf.USphone,pbuf);
871                 }
872
873         cprintf("(%c%c%c) %c%c%c-%c%c%c%c\n",
874                 usbuf.USphone[0],usbuf.USphone[1],
875                 usbuf.USphone[2],usbuf.USphone[3],
876                 usbuf.USphone[4],usbuf.USphone[5],
877                 usbuf.USphone[6],usbuf.USphone[7],
878                 usbuf.USphone[8],usbuf.USphone[9]);
879
880         cprintf("%d\n",usbuf.axlevel);
881         cprintf("%s\n",usbuf.USemail);
882         cprintf("000\n");
883         }
884
885 /*
886  * validate a user
887  */
888 void cmd_vali(char *v_args)
889 {
890         char user[256];
891         int newax;
892         struct usersupp userbuf;
893
894         extract(user,v_args,0);
895         newax = extract_int(v_args,1);
896
897         if (!(CC->logged_in)) {
898                 cprintf("%d Not logged in.\n",ERROR+NOT_LOGGED_IN);
899                 return;
900                 }
901
902         if (CC->usersupp.axlevel < 6) {
903                 cprintf("%d Higher access required.\n",
904                         ERROR+HIGHER_ACCESS_REQUIRED);
905                 return;
906                 }
907
908         if (lgetuser(&userbuf,user)!=0) {
909                 cprintf("%d '%s' not found.\n",ERROR+NO_SUCH_USER,user);
910                 return;
911                 }
912
913         userbuf.axlevel = newax;
914         userbuf.flags = (userbuf.flags & ~US_NEEDVALID);
915
916         lputuser(&userbuf,user);
917
918         /* If the access level was set to zero, delete the user */
919         if (newax == 0) {
920                 if (purge_user(user)==0) {
921                         cprintf("%d %s Deleted.\n", OK, userbuf.fullname);
922                         return;
923                         }
924                 }
925
926         cprintf("%d ok\n",OK);
927         }
928
929
930
931 /* 
932  *  Traverse the user file...
933  */
934 void ForEachUser(void (*CallBack)(struct usersupp *EachUser)) {
935         struct usersupp usbuf;
936         struct cdbdata *cdbus;
937
938         cdb_rewind(CDB_USERSUPP);
939
940         while(cdbus = cdb_next_item(CDB_USERSUPP), cdbus != NULL) {
941                 bzero(&usbuf, sizeof(struct usersupp));
942                 memcpy(&usbuf, cdbus->ptr,
943                         ( (cdbus->len > sizeof(struct usersupp)) ?
944                         sizeof(struct usersupp) : cdbus->len) );
945                 cdb_free(cdbus);
946                 (*CallBack)(&usbuf);
947                 }
948         }
949
950
951 /*
952  * List one user (this works with cmd_list)
953  */
954 void ListThisUser(struct usersupp *usbuf) {
955         if (usbuf->axlevel > 0) {
956                 if ((CC->usersupp.axlevel>=6)
957                    ||((usbuf->flags&US_UNLISTED)==0)
958                    ||((CC->internal_pgm))) {
959                         cprintf("%s|%d|%ld|%ld|%d|%d|",
960                                 usbuf->fullname,
961                                 usbuf->axlevel,
962                                 usbuf->usernum,
963                                 usbuf->lastcall,
964                                 usbuf->timescalled,
965                                 usbuf->posted);
966                         if (CC->usersupp.axlevel >= 6)
967                                 cprintf("%s",usbuf->password);
968                         cprintf("\n");
969                         }
970                 }
971         }
972
973 /* 
974  *  List users
975  */
976 void cmd_list(void) {
977         cprintf("%d \n",LISTING_FOLLOWS);
978         ForEachUser(ListThisUser);
979         cprintf("000\n");
980         }
981
982
983 /*
984  * enter registration info
985  */
986 void cmd_regi(void) {
987         int a,b,c;
988         char buf[256];
989
990         char tmpname[256];
991         char tmpaddr[256];
992         char tmpcity[256];
993         char tmpstate[256];
994         char tmpzip[256];
995         char tmpphone[256];
996         char tmpemail[256];
997
998         if (!(CC->logged_in)) {
999                 cprintf("%d Not logged in.\n",ERROR+NOT_LOGGED_IN);
1000                 return;
1001                 }
1002
1003         strcpy(tmpname,"");
1004         strcpy(tmpaddr,"");
1005         strcpy(tmpcity,"");
1006         strcpy(tmpstate,"");
1007         strcpy(tmpzip,"");
1008         strcpy(tmpphone,"");
1009         strcpy(tmpemail,"");
1010
1011         cprintf("%d Send registration...\n",SEND_LISTING);
1012         a=0;
1013         while (client_gets(buf), strcmp(buf,"000")) {
1014                 if (a==0) strcpy(tmpname,buf);
1015                 if (a==1) strcpy(tmpaddr,buf);
1016                 if (a==2) strcpy(tmpcity,buf);
1017                 if (a==3) strcpy(tmpstate,buf);
1018                 if (a==4) {
1019                         for (c=0; c<strlen(buf); ++c) {
1020                                 if ((buf[c]>='0')&&(buf[c]<='9')) {
1021                                         b=strlen(tmpzip);
1022                                         tmpzip[b]=buf[c];
1023                                         tmpzip[b+1]=0;
1024                                         }
1025                                 }
1026                         }
1027                 if (a==5) {
1028                         for (c=0; c<strlen(buf); ++c) {
1029                                 if ((buf[c]>='0')&&(buf[c]<='9')) {
1030                                         b=strlen(tmpphone);
1031                                         tmpphone[b]=buf[c];
1032                                         tmpphone[b+1]=0;
1033                                         }
1034                                 }
1035                         }
1036                 if (a==6) strncpy(tmpemail,buf,31);
1037                 ++a;
1038                 }
1039
1040         tmpname[29]=0;
1041         tmpaddr[24]=0;
1042         tmpcity[14]=0;
1043         tmpstate[2]=0;
1044         tmpzip[9]=0;
1045         tmpphone[10]=0;
1046         tmpemail[31]=0;
1047
1048         lgetuser(&CC->usersupp,CC->curr_user);
1049         strcpy(CC->usersupp.USname,tmpname);
1050         strcpy(CC->usersupp.USaddr,tmpaddr);
1051         strcpy(CC->usersupp.UScity,tmpcity);
1052         strcpy(CC->usersupp.USstate,tmpstate);
1053         strcpy(CC->usersupp.USzip,tmpzip);
1054         strcpy(CC->usersupp.USphone,tmpphone);
1055         strcpy(CC->usersupp.USemail,tmpemail);
1056         CC->usersupp.flags=(CC->usersupp.flags|US_REGIS|US_NEEDVALID);
1057         lputuser(&CC->usersupp,CC->curr_user);
1058
1059         /* set global flag calling for validation */
1060         begin_critical_section(S_CONTROL);
1061         get_control();
1062         CitControl.MMflags = CitControl.MMflags | MM_VALID ;
1063         put_control();
1064         end_critical_section(S_CONTROL);
1065         cprintf("%d *** End of registration.\n",OK);
1066         }
1067
1068
1069 /*
1070  * assorted info we need to check at login
1071  */
1072 void cmd_chek(void) {
1073         int mail = 0;
1074         int regis = 0;
1075         int vali = 0;
1076         
1077         if (!(CC->logged_in)) {
1078                 cprintf("%d Not logged in.\n",ERROR+NOT_LOGGED_IN);
1079                 return;
1080                 }
1081
1082         getuser(&CC->usersupp,CC->curr_user); /* no lock is needed here */
1083         if ((REGISCALL!=0)&&((CC->usersupp.flags&US_REGIS)==0)) regis = 1;
1084
1085         if (CC->usersupp.axlevel >= 6) {
1086                 get_control();
1087                 if (CitControl.MMflags&MM_VALID) vali = 1;
1088                 }
1089
1090
1091         /* check for mail */
1092         mail = NewMailCount();
1093
1094         cprintf("%d %d|%d|%d\n",OK,mail,regis,vali);
1095         }
1096
1097
1098 /*
1099  * check to see if a user exists
1100  */
1101 void cmd_qusr(char *who)
1102 {
1103         struct usersupp usbuf;
1104
1105         if (getuser(&usbuf,who) == 0) {
1106                 cprintf("%d %s\n",OK,usbuf.fullname);
1107                 }
1108         else {
1109                 cprintf("%d No such user.\n",ERROR+NO_SUCH_USER);
1110                 }
1111         }
1112
1113
1114 /*
1115  * enter user bio
1116  */
1117 void cmd_ebio(void) {
1118         char buf[256];
1119         FILE *fp;
1120
1121         if (!(CC->logged_in)) {
1122                 cprintf("%d Not logged in.\n",ERROR+NOT_LOGGED_IN);
1123                 return;
1124                 }
1125
1126         sprintf(buf,"./bio/%ld",CC->usersupp.usernum);
1127         fp = fopen(buf,"w");
1128         if (fp == NULL) {
1129                 cprintf("%d Cannot create file\n",ERROR);
1130                 return;
1131                 }
1132         cprintf("%d  \n",SEND_LISTING);
1133         while(client_gets(buf), strcmp(buf,"000")) {
1134                 fprintf(fp,"%s\n",buf);
1135                 }
1136         fclose(fp);
1137         }
1138
1139 /*
1140  * read user bio
1141  */
1142 void cmd_rbio(char *cmdbuf)
1143 {
1144         struct usersupp ruser;
1145         char buf[256];
1146         FILE *fp;
1147
1148         extract(buf,cmdbuf,0);
1149         if (getuser(&ruser,buf)!=0) {
1150                 cprintf("%d No such user.\n",ERROR+NO_SUCH_USER);
1151                 return;
1152                 }
1153         sprintf(buf,"./bio/%ld",ruser.usernum);
1154         
1155         fp = fopen(buf,"r");
1156         if (fp == NULL) {
1157                 cprintf("%d %s has no bio on file.\n",
1158                         ERROR+FILE_NOT_FOUND,ruser.fullname);
1159                 return;
1160                 }
1161         cprintf("%d  \n",LISTING_FOLLOWS);
1162         while (fgets(buf,256,fp)!=NULL) cprintf("%s",buf);
1163         fclose(fp);
1164         cprintf("000\n");
1165         }
1166
1167 /*
1168  * list of users who have entered bios
1169  */
1170 void cmd_lbio(void) {
1171         char buf[256];
1172         FILE *ls;
1173         struct usersupp usbuf;
1174
1175         ls=popen("cd ./bio; ls","r");
1176         if (ls==NULL) {
1177                 cprintf("%d Cannot open listing.\n",ERROR+FILE_NOT_FOUND);
1178                 return;
1179                 }
1180
1181         cprintf("%d\n",LISTING_FOLLOWS);
1182         while (fgets(buf,255,ls)!=NULL)
1183                 if (getuserbynumber(&usbuf,atol(buf))==0)
1184                         cprintf("%s\n",usbuf.fullname);
1185         pclose(ls);
1186         cprintf("000\n");
1187         }
1188
1189
1190 /*
1191  * Administrative Get User Parameters
1192  */
1193 void cmd_agup(char *cmdbuf) {
1194         struct usersupp usbuf;
1195         char requested_user[256];
1196
1197         if ( (CC->internal_pgm==0)
1198            && ( (CC->logged_in == 0) || (is_aide()==0) ) ) {
1199                 cprintf("%d Higher access required.\n", 
1200                         ERROR + HIGHER_ACCESS_REQUIRED);
1201                 return;
1202                 }
1203
1204         extract(requested_user, cmdbuf, 0);
1205         if (getuser(&usbuf, requested_user) != 0) {
1206                 cprintf("%d No such user.\n", ERROR + NO_SUCH_USER);
1207                 return;
1208                 }
1209
1210         cprintf("%d %s|%s|%u|%d|%d|%d|%ld\n", 
1211                 OK,
1212                 usbuf.fullname,
1213                 usbuf.password,
1214                 usbuf.flags,
1215                 usbuf.timescalled,
1216                 usbuf.posted,
1217                 (int)usbuf.axlevel,
1218                 usbuf.usernum);
1219
1220         }
1221
1222
1223
1224 /*
1225  * Administrative Set User Parameters
1226  */
1227 void cmd_asup(char *cmdbuf) {
1228         struct usersupp usbuf;
1229         char requested_user[256];
1230         int np;
1231         int newax;
1232         
1233         if ( (CC->internal_pgm==0)
1234            && ( (CC->logged_in == 0) || (is_aide()==0) ) ) {
1235                 cprintf("%d Higher access required.\n", 
1236                         ERROR + HIGHER_ACCESS_REQUIRED);
1237                 return;
1238                 }
1239
1240         extract(requested_user, cmdbuf, 0);
1241         if (lgetuser(&usbuf, requested_user) != 0) {
1242                 cprintf("%d No such user.\n", ERROR + NO_SUCH_USER);
1243                 return;
1244                 }
1245
1246         np = num_parms(cmdbuf);
1247         if (np > 1) extract(usbuf.password, cmdbuf, 1);
1248         if (np > 2) usbuf.flags = extract_int(cmdbuf, 2);
1249         if (np > 3) usbuf.timescalled = extract_int(cmdbuf, 3);
1250         if (np > 4) usbuf.posted = extract_int(cmdbuf, 4);
1251         if (np > 5) {
1252                 newax = extract_int(cmdbuf, 5);
1253                 if ((newax >=0) && (newax <= 6)) {
1254                         usbuf.axlevel = extract_int(cmdbuf, 5);
1255                         }
1256                 }
1257
1258         lputuser(&usbuf, requested_user);
1259         if (usbuf.axlevel == 0) {
1260                 if (purge_user(requested_user)==0) {
1261                         cprintf("%d %s deleted.\n", OK, requested_user);
1262                         }
1263                 }
1264         cprintf("%d Ok\n", OK);
1265         }
1266
1267
1268 /*
1269  * Count the number of new mail messages the user has
1270  */
1271 int NewMailCount() {
1272         int num_newmsgs = 0;
1273         char mailboxname[32];
1274
1275         MailboxName(mailboxname, &CC->usersupp, MAILROOM);
1276
1277         /* FIX FIX FIX FIX FIX   This needs implementation */
1278
1279         return(num_newmsgs);
1280         }