1 /* delete.c - bdb backend delete routine */
2 /* $OpenLDAP$ */
3 /* This work is part of OpenLDAP Software <http://www.openldap.org/>.
4 *
5 * Copyright 2000-2021 The OpenLDAP Foundation.
6 * All rights reserved.
7 *
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted only as authorized by the OpenLDAP
10 * Public License.
11 *
12 * A copy of this license is available in the file LICENSE in the
13 * top-level directory of the distribution or, alternatively, at
14 * <http://www.OpenLDAP.org/license.html>.
15 */
16
17 #include "portable.h"
18
19 #include <stdio.h>
20 #include <ac/string.h>
21
22 #include "lutil.h"
23 #include "back-bdb.h"
24
25 int
bdb_delete(Operation * op,SlapReply * rs)26 bdb_delete( Operation *op, SlapReply *rs )
27 {
28 struct bdb_info *bdb = (struct bdb_info *) op->o_bd->be_private;
29 Entry *matched = NULL;
30 struct berval pdn = {0, NULL};
31 Entry *e = NULL;
32 Entry *p = NULL;
33 EntryInfo *ei = NULL, *eip = NULL;
34 int manageDSAit = get_manageDSAit( op );
35 AttributeDescription *children = slap_schema.si_ad_children;
36 AttributeDescription *entry = slap_schema.si_ad_entry;
37 DB_TXN *ltid = NULL, *lt2;
38 struct bdb_op_info opinfo = {{{ 0 }}};
39 ID eid;
40
41 DB_LOCK lock, plock;
42
43 int num_retries = 0;
44
45 int rc;
46
47 LDAPControl **preread_ctrl = NULL;
48 LDAPControl *ctrls[SLAP_MAX_RESPONSE_CONTROLS];
49 int num_ctrls = 0;
50
51 int parent_is_glue = 0;
52 int parent_is_leaf = 0;
53
54 #ifdef LDAP_X_TXN
55 int settle = 0;
56 #endif
57
58 Debug( LDAP_DEBUG_ARGS, "==> " LDAP_XSTRING(bdb_delete) ": %s\n",
59 op->o_req_dn.bv_val, 0, 0 );
60
61 #ifdef LDAP_X_TXN
62 if( op->o_txnSpec ) {
63 /* acquire connection lock */
64 ldap_pvt_thread_mutex_lock( &op->o_conn->c_mutex );
65 if( op->o_conn->c_txn == CONN_TXN_INACTIVE ) {
66 rs->sr_text = "invalid transaction identifier";
67 rs->sr_err = LDAP_X_TXN_ID_INVALID;
68 goto txnReturn;
69 } else if( op->o_conn->c_txn == CONN_TXN_SETTLE ) {
70 settle=1;
71 goto txnReturn;
72 }
73
74 if( op->o_conn->c_txn_backend == NULL ) {
75 op->o_conn->c_txn_backend = op->o_bd;
76
77 } else if( op->o_conn->c_txn_backend != op->o_bd ) {
78 rs->sr_text = "transaction cannot span multiple database contexts";
79 rs->sr_err = LDAP_AFFECTS_MULTIPLE_DSAS;
80 goto txnReturn;
81 }
82
83 /* insert operation into transaction */
84
85 rs->sr_text = "transaction specified";
86 rs->sr_err = LDAP_X_TXN_SPECIFY_OKAY;
87
88 txnReturn:
89 /* release connection lock */
90 ldap_pvt_thread_mutex_unlock( &op->o_conn->c_mutex );
91
92 if( !settle ) {
93 send_ldap_result( op, rs );
94 return rs->sr_err;
95 }
96 }
97 #endif
98
99 ctrls[num_ctrls] = 0;
100
101 /* allocate CSN */
102 if ( BER_BVISNULL( &op->o_csn ) ) {
103 struct berval csn;
104 char csnbuf[LDAP_PVT_CSNSTR_BUFSIZE];
105
106 csn.bv_val = csnbuf;
107 csn.bv_len = sizeof(csnbuf);
108 slap_get_csn( op, &csn, 1 );
109 }
110
111 if( 0 ) {
112 retry: /* transaction retry */
113 if( e != NULL ) {
114 bdb_unlocked_cache_return_entry_w(&bdb->bi_cache, e);
115 e = NULL;
116 }
117 if( p != NULL ) {
118 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, p);
119 p = NULL;
120 }
121 Debug( LDAP_DEBUG_TRACE,
122 "==> " LDAP_XSTRING(bdb_delete) ": retrying...\n",
123 0, 0, 0 );
124 rs->sr_err = TXN_ABORT( ltid );
125 ltid = NULL;
126 LDAP_SLIST_REMOVE( &op->o_extra, &opinfo.boi_oe, OpExtra, oe_next );
127 opinfo.boi_oe.oe_key = NULL;
128 op->o_do_not_cache = opinfo.boi_acl_cache;
129 if( rs->sr_err != 0 ) {
130 rs->sr_err = LDAP_OTHER;
131 rs->sr_text = "internal error";
132 goto return_results;
133 }
134 if ( op->o_abandon ) {
135 rs->sr_err = SLAPD_ABANDON;
136 goto return_results;
137 }
138 parent_is_glue = 0;
139 parent_is_leaf = 0;
140 bdb_trans_backoff( ++num_retries );
141 }
142
143 /* begin transaction */
144 rs->sr_err = TXN_BEGIN( bdb->bi_dbenv, NULL, <id,
145 bdb->bi_db_opflags );
146 Debug( LDAP_DEBUG_TRACE, LDAP_XSTRING(bdb_delete) ": txn1 id: %x\n",
147 ltid->id(ltid), 0, 0 );
148 rs->sr_text = NULL;
149 if( rs->sr_err != 0 ) {
150 Debug( LDAP_DEBUG_TRACE,
151 LDAP_XSTRING(bdb_delete) ": txn_begin failed: "
152 "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
153 rs->sr_err = LDAP_OTHER;
154 rs->sr_text = "internal error";
155 goto return_results;
156 }
157
158 opinfo.boi_oe.oe_key = bdb;
159 opinfo.boi_txn = ltid;
160 opinfo.boi_err = 0;
161 opinfo.boi_acl_cache = op->o_do_not_cache;
162 LDAP_SLIST_INSERT_HEAD( &op->o_extra, &opinfo.boi_oe, oe_next );
163
164 if ( !be_issuffix( op->o_bd, &op->o_req_ndn ) ) {
165 dnParent( &op->o_req_ndn, &pdn );
166 }
167
168 /* get entry */
169 rs->sr_err = bdb_dn2entry( op, ltid, &op->o_req_ndn, &ei, 1,
170 &lock );
171
172 switch( rs->sr_err ) {
173 case 0:
174 case DB_NOTFOUND:
175 break;
176 case DB_LOCK_DEADLOCK:
177 case DB_LOCK_NOTGRANTED:
178 goto retry;
179 case LDAP_BUSY:
180 rs->sr_text = "ldap server busy";
181 goto return_results;
182 default:
183 rs->sr_err = LDAP_OTHER;
184 rs->sr_text = "internal error";
185 goto return_results;
186 }
187
188 if ( rs->sr_err == 0 ) {
189 e = ei->bei_e;
190 eip = ei->bei_parent;
191 } else {
192 matched = ei->bei_e;
193 }
194
195 /* FIXME : dn2entry() should return non-glue entry */
196 if ( e == NULL || ( !manageDSAit && is_entry_glue( e ))) {
197 Debug( LDAP_DEBUG_ARGS,
198 "<=- " LDAP_XSTRING(bdb_delete) ": no such object %s\n",
199 op->o_req_dn.bv_val, 0, 0);
200
201 if ( matched != NULL ) {
202 rs->sr_matched = ch_strdup( matched->e_dn );
203 rs->sr_ref = is_entry_referral( matched )
204 ? get_entry_referrals( op, matched )
205 : NULL;
206 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, matched);
207 matched = NULL;
208
209 } else {
210 rs->sr_ref = referral_rewrite( default_referral, NULL,
211 &op->o_req_dn, LDAP_SCOPE_DEFAULT );
212 }
213
214 rs->sr_err = LDAP_REFERRAL;
215 rs->sr_flags = REP_MATCHED_MUSTBEFREED | REP_REF_MUSTBEFREED;
216 goto return_results;
217 }
218
219 rc = bdb_cache_find_id( op, ltid, eip->bei_id, &eip, 0, &plock );
220 switch( rc ) {
221 case DB_LOCK_DEADLOCK:
222 case DB_LOCK_NOTGRANTED:
223 goto retry;
224 case 0:
225 case DB_NOTFOUND:
226 break;
227 default:
228 rs->sr_err = LDAP_OTHER;
229 rs->sr_text = "internal error";
230 goto return_results;
231 }
232 if ( eip ) p = eip->bei_e;
233
234 if ( pdn.bv_len != 0 ) {
235 if( p == NULL || !bvmatch( &pdn, &p->e_nname )) {
236 Debug( LDAP_DEBUG_TRACE,
237 "<=- " LDAP_XSTRING(bdb_delete) ": parent "
238 "does not exist\n", 0, 0, 0 );
239 rs->sr_err = LDAP_OTHER;
240 rs->sr_text = "could not locate parent of entry";
241 goto return_results;
242 }
243
244 /* check parent for "children" acl */
245 rs->sr_err = access_allowed( op, p,
246 children, NULL, ACL_WDEL, NULL );
247
248 if ( !rs->sr_err ) {
249 switch( opinfo.boi_err ) {
250 case DB_LOCK_DEADLOCK:
251 case DB_LOCK_NOTGRANTED:
252 goto retry;
253 }
254
255 Debug( LDAP_DEBUG_TRACE,
256 "<=- " LDAP_XSTRING(bdb_delete) ": no write "
257 "access to parent\n", 0, 0, 0 );
258 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
259 rs->sr_text = "no write access to parent";
260 goto return_results;
261 }
262
263 } else {
264 /* no parent, must be root to delete */
265 if( ! be_isroot( op ) ) {
266 if ( be_issuffix( op->o_bd, (struct berval *)&slap_empty_bv )
267 || be_shadow_update( op ) ) {
268 p = (Entry *)&slap_entry_root;
269
270 /* check parent for "children" acl */
271 rs->sr_err = access_allowed( op, p,
272 children, NULL, ACL_WDEL, NULL );
273
274 p = NULL;
275
276 if ( !rs->sr_err ) {
277 switch( opinfo.boi_err ) {
278 case DB_LOCK_DEADLOCK:
279 case DB_LOCK_NOTGRANTED:
280 goto retry;
281 }
282
283 Debug( LDAP_DEBUG_TRACE,
284 "<=- " LDAP_XSTRING(bdb_delete)
285 ": no access to parent\n",
286 0, 0, 0 );
287 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
288 rs->sr_text = "no write access to parent";
289 goto return_results;
290 }
291
292 } else {
293 Debug( LDAP_DEBUG_TRACE,
294 "<=- " LDAP_XSTRING(bdb_delete)
295 ": no parent and not root\n", 0, 0, 0 );
296 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
297 goto return_results;
298 }
299 }
300 }
301
302 if ( get_assert( op ) &&
303 ( test_filter( op, e, get_assertion( op )) != LDAP_COMPARE_TRUE ))
304 {
305 rs->sr_err = LDAP_ASSERTION_FAILED;
306 goto return_results;
307 }
308
309 rs->sr_err = access_allowed( op, e,
310 entry, NULL, ACL_WDEL, NULL );
311
312 if ( !rs->sr_err ) {
313 switch( opinfo.boi_err ) {
314 case DB_LOCK_DEADLOCK:
315 case DB_LOCK_NOTGRANTED:
316 goto retry;
317 }
318
319 Debug( LDAP_DEBUG_TRACE,
320 "<=- " LDAP_XSTRING(bdb_delete) ": no write access "
321 "to entry\n", 0, 0, 0 );
322 rs->sr_err = LDAP_INSUFFICIENT_ACCESS;
323 rs->sr_text = "no write access to entry";
324 goto return_results;
325 }
326
327 if ( !manageDSAit && is_entry_referral( e ) ) {
328 /* entry is a referral, don't allow delete */
329 rs->sr_ref = get_entry_referrals( op, e );
330
331 Debug( LDAP_DEBUG_TRACE,
332 LDAP_XSTRING(bdb_delete) ": entry is referral\n",
333 0, 0, 0 );
334
335 rs->sr_err = LDAP_REFERRAL;
336 rs->sr_matched = ch_strdup( e->e_name.bv_val );
337 rs->sr_flags = REP_MATCHED_MUSTBEFREED | REP_REF_MUSTBEFREED;
338 goto return_results;
339 }
340
341 /* pre-read */
342 if( op->o_preread ) {
343 if( preread_ctrl == NULL ) {
344 preread_ctrl = &ctrls[num_ctrls++];
345 ctrls[num_ctrls] = NULL;
346 }
347 if( slap_read_controls( op, rs, e,
348 &slap_pre_read_bv, preread_ctrl ) )
349 {
350 Debug( LDAP_DEBUG_TRACE,
351 "<=- " LDAP_XSTRING(bdb_delete) ": pre-read "
352 "failed!\n", 0, 0, 0 );
353 if ( op->o_preread & SLAP_CONTROL_CRITICAL ) {
354 /* FIXME: is it correct to abort
355 * operation if control fails? */
356 goto return_results;
357 }
358 }
359 }
360
361 /* nested transaction */
362 rs->sr_err = TXN_BEGIN( bdb->bi_dbenv, ltid, <2,
363 bdb->bi_db_opflags );
364 rs->sr_text = NULL;
365 if( rs->sr_err != 0 ) {
366 Debug( LDAP_DEBUG_TRACE,
367 LDAP_XSTRING(bdb_delete) ": txn_begin(2) failed: "
368 "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
369 rs->sr_err = LDAP_OTHER;
370 rs->sr_text = "internal error";
371 goto return_results;
372 }
373 Debug( LDAP_DEBUG_TRACE, LDAP_XSTRING(bdb_delete) ": txn2 id: %x\n",
374 lt2->id(lt2), 0, 0 );
375
376 BDB_LOG_PRINTF( bdb->bi_dbenv, lt2, "slapd Starting delete %s(%d)",
377 e->e_nname.bv_val, e->e_id );
378
379 /* Can't do it if we have kids */
380 rs->sr_err = bdb_cache_children( op, lt2, e );
381 if( rs->sr_err != DB_NOTFOUND ) {
382 switch( rs->sr_err ) {
383 case DB_LOCK_DEADLOCK:
384 case DB_LOCK_NOTGRANTED:
385 goto retry;
386 case 0:
387 Debug(LDAP_DEBUG_ARGS,
388 "<=- " LDAP_XSTRING(bdb_delete)
389 ": non-leaf %s\n",
390 op->o_req_dn.bv_val, 0, 0);
391 rs->sr_err = LDAP_NOT_ALLOWED_ON_NONLEAF;
392 rs->sr_text = "subordinate objects must be deleted first";
393 break;
394 default:
395 Debug(LDAP_DEBUG_ARGS,
396 "<=- " LDAP_XSTRING(bdb_delete)
397 ": has_children failed: %s (%d)\n",
398 db_strerror(rs->sr_err), rs->sr_err, 0 );
399 rs->sr_err = LDAP_OTHER;
400 rs->sr_text = "internal error";
401 }
402 goto return_results;
403 }
404
405 /* delete from dn2id */
406 rs->sr_err = bdb_dn2id_delete( op, lt2, eip, e );
407 if ( rs->sr_err != 0 ) {
408 Debug(LDAP_DEBUG_TRACE,
409 "<=- " LDAP_XSTRING(bdb_delete) ": dn2id failed: "
410 "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
411 switch( rs->sr_err ) {
412 case DB_LOCK_DEADLOCK:
413 case DB_LOCK_NOTGRANTED:
414 goto retry;
415 }
416 rs->sr_text = "DN index delete failed";
417 rs->sr_err = LDAP_OTHER;
418 goto return_results;
419 }
420
421 /* delete indices for old attributes */
422 rs->sr_err = bdb_index_entry_del( op, lt2, e );
423 if ( rs->sr_err != LDAP_SUCCESS ) {
424 Debug(LDAP_DEBUG_TRACE,
425 "<=- " LDAP_XSTRING(bdb_delete) ": index failed: "
426 "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
427 switch( rs->sr_err ) {
428 case DB_LOCK_DEADLOCK:
429 case DB_LOCK_NOTGRANTED:
430 goto retry;
431 }
432 rs->sr_text = "entry index delete failed";
433 rs->sr_err = LDAP_OTHER;
434 goto return_results;
435 }
436
437 /* fixup delete CSN */
438 if ( !SLAP_SHADOW( op->o_bd )) {
439 struct berval vals[2];
440
441 assert( !BER_BVISNULL( &op->o_csn ) );
442 vals[0] = op->o_csn;
443 BER_BVZERO( &vals[1] );
444 rs->sr_err = bdb_index_values( op, lt2, slap_schema.si_ad_entryCSN,
445 vals, 0, SLAP_INDEX_ADD_OP );
446 if ( rs->sr_err != LDAP_SUCCESS ) {
447 switch( rs->sr_err ) {
448 case DB_LOCK_DEADLOCK:
449 case DB_LOCK_NOTGRANTED:
450 goto retry;
451 }
452 rs->sr_text = "entryCSN index update failed";
453 rs->sr_err = LDAP_OTHER;
454 goto return_results;
455 }
456 }
457
458 /* delete from id2entry */
459 rs->sr_err = bdb_id2entry_delete( op->o_bd, lt2, e );
460 if ( rs->sr_err != 0 ) {
461 Debug( LDAP_DEBUG_TRACE,
462 "<=- " LDAP_XSTRING(bdb_delete) ": id2entry failed: "
463 "%s (%d)\n", db_strerror(rs->sr_err), rs->sr_err, 0 );
464 switch( rs->sr_err ) {
465 case DB_LOCK_DEADLOCK:
466 case DB_LOCK_NOTGRANTED:
467 goto retry;
468 }
469 rs->sr_text = "entry delete failed";
470 rs->sr_err = LDAP_OTHER;
471 goto return_results;
472 }
473
474 if ( pdn.bv_len != 0 ) {
475 parent_is_glue = is_entry_glue(p);
476 rs->sr_err = bdb_cache_children( op, lt2, p );
477 if ( rs->sr_err != DB_NOTFOUND ) {
478 switch( rs->sr_err ) {
479 case DB_LOCK_DEADLOCK:
480 case DB_LOCK_NOTGRANTED:
481 goto retry;
482 case 0:
483 break;
484 default:
485 Debug(LDAP_DEBUG_ARGS,
486 "<=- " LDAP_XSTRING(bdb_delete)
487 ": has_children failed: %s (%d)\n",
488 db_strerror(rs->sr_err), rs->sr_err, 0 );
489 rs->sr_err = LDAP_OTHER;
490 rs->sr_text = "internal error";
491 goto return_results;
492 }
493 parent_is_leaf = 1;
494 }
495 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, p);
496 p = NULL;
497 }
498
499 BDB_LOG_PRINTF( bdb->bi_dbenv, lt2, "slapd Commit1 delete %s(%d)",
500 e->e_nname.bv_val, e->e_id );
501
502 if ( TXN_COMMIT( lt2, 0 ) != 0 ) {
503 rs->sr_err = LDAP_OTHER;
504 rs->sr_text = "txn_commit(2) failed";
505 goto return_results;
506 }
507
508 eid = e->e_id;
509
510 #if 0 /* Do we want to reclaim deleted IDs? */
511 ldap_pvt_thread_mutex_lock( &bdb->bi_lastid_mutex );
512 if ( e->e_id == bdb->bi_lastid ) {
513 bdb_last_id( op->o_bd, ltid );
514 }
515 ldap_pvt_thread_mutex_unlock( &bdb->bi_lastid_mutex );
516 #endif
517
518 if( op->o_noop ) {
519 if ( ( rs->sr_err = TXN_ABORT( ltid ) ) != 0 ) {
520 rs->sr_text = "txn_abort (no-op) failed";
521 } else {
522 rs->sr_err = LDAP_X_NO_OPERATION;
523 ltid = NULL;
524 goto return_results;
525 }
526 } else {
527
528 BDB_LOG_PRINTF( bdb->bi_dbenv, ltid, "slapd Cache delete %s(%d)",
529 e->e_nname.bv_val, e->e_id );
530
531 rc = bdb_cache_delete( bdb, e, ltid, &lock );
532 switch( rc ) {
533 case DB_LOCK_DEADLOCK:
534 case DB_LOCK_NOTGRANTED:
535 goto retry;
536 }
537
538 rs->sr_err = TXN_COMMIT( ltid, 0 );
539 }
540 ltid = NULL;
541 LDAP_SLIST_REMOVE( &op->o_extra, &opinfo.boi_oe, OpExtra, oe_next );
542 opinfo.boi_oe.oe_key = NULL;
543
544 BDB_LOG_PRINTF( bdb->bi_dbenv, NULL, "slapd Committed delete %s(%d)",
545 e->e_nname.bv_val, e->e_id );
546
547 if( rs->sr_err != 0 ) {
548 Debug( LDAP_DEBUG_TRACE,
549 LDAP_XSTRING(bdb_delete) ": txn_%s failed: %s (%d)\n",
550 op->o_noop ? "abort (no-op)" : "commit",
551 db_strerror(rs->sr_err), rs->sr_err );
552 rs->sr_err = LDAP_OTHER;
553 rs->sr_text = "commit failed";
554
555 goto return_results;
556 }
557
558 Debug( LDAP_DEBUG_TRACE,
559 LDAP_XSTRING(bdb_delete) ": deleted%s id=%08lx dn=\"%s\"\n",
560 op->o_noop ? " (no-op)" : "",
561 eid, op->o_req_dn.bv_val );
562 rs->sr_err = LDAP_SUCCESS;
563 rs->sr_text = NULL;
564 if( num_ctrls ) rs->sr_ctrls = ctrls;
565
566 return_results:
567 if ( rs->sr_err == LDAP_SUCCESS && parent_is_glue && parent_is_leaf ) {
568 op->o_delete_glue_parent = 1;
569 }
570
571 if ( p )
572 bdb_unlocked_cache_return_entry_r(&bdb->bi_cache, p);
573
574 /* free entry */
575 if( e != NULL ) {
576 if ( rs->sr_err == LDAP_SUCCESS ) {
577 /* Free the EntryInfo and the Entry */
578 bdb_cache_entryinfo_lock( BEI(e) );
579 bdb_cache_delete_cleanup( &bdb->bi_cache, BEI(e) );
580 } else {
581 bdb_unlocked_cache_return_entry_w(&bdb->bi_cache, e);
582 }
583 }
584
585 if( ltid != NULL ) {
586 TXN_ABORT( ltid );
587 }
588 if ( opinfo.boi_oe.oe_key ) {
589 LDAP_SLIST_REMOVE( &op->o_extra, &opinfo.boi_oe, OpExtra, oe_next );
590 }
591
592 send_ldap_result( op, rs );
593 slap_graduate_commit_csn( op );
594
595 if( preread_ctrl != NULL && (*preread_ctrl) != NULL ) {
596 slap_sl_free( (*preread_ctrl)->ldctl_value.bv_val, op->o_tmpmemctx );
597 slap_sl_free( *preread_ctrl, op->o_tmpmemctx );
598 }
599
600 if( rs->sr_err == LDAP_SUCCESS && bdb->bi_txn_cp_kbyte ) {
601 TXN_CHECKPOINT( bdb->bi_dbenv,
602 bdb->bi_txn_cp_kbyte, bdb->bi_txn_cp_min, 0 );
603 }
604 return rs->sr_err;
605 }
606