[BACK]Return to sftp-client.c CVS log [TXT][DIR] Up to [local] / src / usr.bin / ssh

Annotation of src/usr.bin/ssh/sftp-client.c, Revision 1.78

1.78    ! chl         1: /* $OpenBSD: sftp-client.c,v 1.77 2007/09/16 00:55:52 djm Exp $ */
1.1       djm         2: /*
1.46      djm         3:  * Copyright (c) 2001-2004 Damien Miller <djm@openbsd.org>
1.1       djm         4:  *
1.46      djm         5:  * Permission to use, copy, modify, and distribute this software for any
                      6:  * purpose with or without fee is hereby granted, provided that the above
                      7:  * copyright notice and this permission notice appear in all copies.
1.1       djm         8:  *
1.46      djm         9:  * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
                     10:  * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
                     11:  * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
                     12:  * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
                     13:  * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
                     14:  * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
                     15:  * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
1.1       djm        16:  */
                     17:
                     18: /* XXX: memleaks */
                     19: /* XXX: signed vs unsigned */
1.23      djm        20: /* XXX: remove all logging, only return status codes */
1.1       djm        21: /* XXX: copy between two remote sites */
                     22:
1.74      deraadt    23: #include <sys/types.h>
1.21      djm        24: #include <sys/queue.h>
1.60      stevesk    25: #include <sys/stat.h>
1.71      stevesk    26: #include <sys/time.h>
1.72      stevesk    27: #include <sys/param.h>
1.74      deraadt    28: #include <sys/uio.h>
1.66      stevesk    29:
1.67      stevesk    30: #include <errno.h>
1.66      stevesk    31: #include <fcntl.h>
1.70      stevesk    32: #include <signal.h>
1.73      stevesk    33: #include <stdio.h>
1.69      stevesk    34: #include <string.h>
1.68      stevesk    35: #include <unistd.h>
1.74      deraadt    36: #include <stdarg.h>
1.1       djm        37:
1.74      deraadt    38: #include "xmalloc.h"
1.1       djm        39: #include "buffer.h"
                     40: #include "log.h"
                     41: #include "atomicio.h"
1.39      fgsch      42: #include "progressmeter.h"
1.64      djm        43: #include "misc.h"
1.1       djm        44:
                     45: #include "sftp.h"
                     46: #include "sftp-common.h"
                     47: #include "sftp-client.h"
                     48:
1.49      djm        49: extern volatile sig_atomic_t interrupted;
1.39      fgsch      50: extern int showprogress;
                     51:
1.59      david      52: /* Minimum amount of data to read at a time */
1.21      djm        53: #define MIN_READ_SIZE  512
                     54:
1.23      djm        55: struct sftp_conn {
                     56:        int fd_in;
                     57:        int fd_out;
                     58:        u_int transfer_buflen;
                     59:        u_int num_requests;
                     60:        u_int version;
                     61:        u_int msg_id;
                     62: };
1.4       djm        63:
1.17      itojun     64: static void
1.1       djm        65: send_msg(int fd, Buffer *m)
                     66: {
1.40      djm        67:        u_char mlen[4];
1.65      djm        68:        struct iovec iov[2];
1.40      djm        69:
1.58      djm        70:        if (buffer_len(m) > SFTP_MAX_MSG_LENGTH)
1.40      djm        71:                fatal("Outbound message too long %u", buffer_len(m));
                     72:
                     73:        /* Send length first */
1.64      djm        74:        put_u32(mlen, buffer_len(m));
1.65      djm        75:        iov[0].iov_base = mlen;
                     76:        iov[0].iov_len = sizeof(mlen);
                     77:        iov[1].iov_base = buffer_ptr(m);
                     78:        iov[1].iov_len = buffer_len(m);
1.74      deraadt    79:
1.65      djm        80:        if (atomiciov(writev, fd, iov, 2) != buffer_len(m) + sizeof(mlen))
1.1       djm        81:                fatal("Couldn't send packet: %s", strerror(errno));
                     82:
1.40      djm        83:        buffer_clear(m);
1.1       djm        84: }
                     85:
1.17      itojun     86: static void
1.1       djm        87: get_msg(int fd, Buffer *m)
                     88: {
1.40      djm        89:        u_int msg_len;
1.1       djm        90:
1.40      djm        91:        buffer_append_space(m, 4);
1.54      avsm       92:        if (atomicio(read, fd, buffer_ptr(m), 4) != 4) {
                     93:                if (errno == EPIPE)
                     94:                        fatal("Connection closed");
                     95:                else
                     96:                        fatal("Couldn't read packet: %s", strerror(errno));
                     97:        }
1.1       djm        98:
1.40      djm        99:        msg_len = buffer_get_int(m);
1.58      djm       100:        if (msg_len > SFTP_MAX_MSG_LENGTH)
1.33      deraadt   101:                fatal("Received message too long %u", msg_len);
1.1       djm       102:
1.40      djm       103:        buffer_append_space(m, msg_len);
1.54      avsm      104:        if (atomicio(read, fd, buffer_ptr(m), msg_len) != msg_len) {
                    105:                if (errno == EPIPE)
                    106:                        fatal("Connection closed");
                    107:                else
                    108:                        fatal("Read packet: %s", strerror(errno));
                    109:        }
1.1       djm       110: }
                    111:
1.17      itojun    112: static void
1.1       djm       113: send_string_request(int fd, u_int id, u_int code, char *s,
                    114:     u_int len)
                    115: {
                    116:        Buffer msg;
                    117:
                    118:        buffer_init(&msg);
                    119:        buffer_put_char(&msg, code);
                    120:        buffer_put_int(&msg, id);
                    121:        buffer_put_string(&msg, s, len);
                    122:        send_msg(fd, &msg);
1.33      deraadt   123:        debug3("Sent message fd %d T:%u I:%u", fd, code, id);
1.1       djm       124:        buffer_free(&msg);
                    125: }
                    126:
1.17      itojun    127: static void
1.1       djm       128: send_string_attrs_request(int fd, u_int id, u_int code, char *s,
                    129:     u_int len, Attrib *a)
                    130: {
                    131:        Buffer msg;
                    132:
                    133:        buffer_init(&msg);
                    134:        buffer_put_char(&msg, code);
                    135:        buffer_put_int(&msg, id);
                    136:        buffer_put_string(&msg, s, len);
                    137:        encode_attrib(&msg, a);
                    138:        send_msg(fd, &msg);
1.33      deraadt   139:        debug3("Sent message fd %d T:%u I:%u", fd, code, id);
1.1       djm       140:        buffer_free(&msg);
                    141: }
                    142:
1.17      itojun    143: static u_int
1.33      deraadt   144: get_status(int fd, u_int expected_id)
1.1       djm       145: {
                    146:        Buffer msg;
                    147:        u_int type, id, status;
                    148:
                    149:        buffer_init(&msg);
                    150:        get_msg(fd, &msg);
                    151:        type = buffer_get_char(&msg);
                    152:        id = buffer_get_int(&msg);
                    153:
                    154:        if (id != expected_id)
1.33      deraadt   155:                fatal("ID mismatch (%u != %u)", id, expected_id);
1.1       djm       156:        if (type != SSH2_FXP_STATUS)
1.33      deraadt   157:                fatal("Expected SSH2_FXP_STATUS(%u) packet, got %u",
1.1       djm       158:                    SSH2_FXP_STATUS, type);
                    159:
                    160:        status = buffer_get_int(&msg);
                    161:        buffer_free(&msg);
                    162:
1.33      deraadt   163:        debug3("SSH2_FXP_STATUS %u", status);
1.1       djm       164:
                    165:        return(status);
                    166: }
                    167:
1.17      itojun    168: static char *
1.1       djm       169: get_handle(int fd, u_int expected_id, u_int *len)
                    170: {
                    171:        Buffer msg;
                    172:        u_int type, id;
                    173:        char *handle;
                    174:
                    175:        buffer_init(&msg);
                    176:        get_msg(fd, &msg);
                    177:        type = buffer_get_char(&msg);
                    178:        id = buffer_get_int(&msg);
                    179:
                    180:        if (id != expected_id)
1.33      deraadt   181:                fatal("ID mismatch (%u != %u)", id, expected_id);
1.1       djm       182:        if (type == SSH2_FXP_STATUS) {
                    183:                int status = buffer_get_int(&msg);
                    184:
                    185:                error("Couldn't get handle: %s", fx2txt(status));
1.52      markus    186:                buffer_free(&msg);
1.1       djm       187:                return(NULL);
                    188:        } else if (type != SSH2_FXP_HANDLE)
1.33      deraadt   189:                fatal("Expected SSH2_FXP_HANDLE(%u) packet, got %u",
1.1       djm       190:                    SSH2_FXP_HANDLE, type);
                    191:
                    192:        handle = buffer_get_string(&msg, len);
                    193:        buffer_free(&msg);
                    194:
                    195:        return(handle);
                    196: }
                    197:
1.17      itojun    198: static Attrib *
1.14      djm       199: get_decode_stat(int fd, u_int expected_id, int quiet)
1.1       djm       200: {
                    201:        Buffer msg;
                    202:        u_int type, id;
                    203:        Attrib *a;
                    204:
                    205:        buffer_init(&msg);
                    206:        get_msg(fd, &msg);
                    207:
                    208:        type = buffer_get_char(&msg);
                    209:        id = buffer_get_int(&msg);
                    210:
1.33      deraadt   211:        debug3("Received stat reply T:%u I:%u", type, id);
1.1       djm       212:        if (id != expected_id)
1.33      deraadt   213:                fatal("ID mismatch (%u != %u)", id, expected_id);
1.1       djm       214:        if (type == SSH2_FXP_STATUS) {
                    215:                int status = buffer_get_int(&msg);
                    216:
1.14      djm       217:                if (quiet)
                    218:                        debug("Couldn't stat remote file: %s", fx2txt(status));
                    219:                else
                    220:                        error("Couldn't stat remote file: %s", fx2txt(status));
1.52      markus    221:                buffer_free(&msg);
1.1       djm       222:                return(NULL);
                    223:        } else if (type != SSH2_FXP_ATTRS) {
1.33      deraadt   224:                fatal("Expected SSH2_FXP_ATTRS(%u) packet, got %u",
1.1       djm       225:                    SSH2_FXP_ATTRS, type);
                    226:        }
                    227:        a = decode_attrib(&msg);
                    228:        buffer_free(&msg);
                    229:
                    230:        return(a);
                    231: }
                    232:
1.23      djm       233: struct sftp_conn *
                    234: do_init(int fd_in, int fd_out, u_int transfer_buflen, u_int num_requests)
1.1       djm       235: {
1.33      deraadt   236:        u_int type;
                    237:        int version;
1.1       djm       238:        Buffer msg;
1.23      djm       239:        struct sftp_conn *ret;
1.1       djm       240:
                    241:        buffer_init(&msg);
                    242:        buffer_put_char(&msg, SSH2_FXP_INIT);
                    243:        buffer_put_int(&msg, SSH2_FILEXFER_VERSION);
                    244:        send_msg(fd_out, &msg);
                    245:
                    246:        buffer_clear(&msg);
                    247:
                    248:        get_msg(fd_in, &msg);
                    249:
1.3       stevesk   250:        /* Expecting a VERSION reply */
1.1       djm       251:        if ((type = buffer_get_char(&msg)) != SSH2_FXP_VERSION) {
1.33      deraadt   252:                error("Invalid packet back from SSH2_FXP_INIT (type %u)",
1.1       djm       253:                    type);
                    254:                buffer_free(&msg);
1.23      djm       255:                return(NULL);
1.1       djm       256:        }
                    257:        version = buffer_get_int(&msg);
                    258:
                    259:        debug2("Remote version: %d", version);
                    260:
                    261:        /* Check for extensions */
                    262:        while (buffer_len(&msg) > 0) {
                    263:                char *name = buffer_get_string(&msg, NULL);
                    264:                char *value = buffer_get_string(&msg, NULL);
                    265:
                    266:                debug2("Init extension: \"%s\"", name);
                    267:                xfree(name);
                    268:                xfree(value);
                    269:        }
                    270:
                    271:        buffer_free(&msg);
1.11      djm       272:
1.23      djm       273:        ret = xmalloc(sizeof(*ret));
                    274:        ret->fd_in = fd_in;
                    275:        ret->fd_out = fd_out;
                    276:        ret->transfer_buflen = transfer_buflen;
                    277:        ret->num_requests = num_requests;
                    278:        ret->version = version;
                    279:        ret->msg_id = 1;
                    280:
                    281:        /* Some filexfer v.0 servers don't support large packets */
                    282:        if (version == 0)
1.29      markus    283:                ret->transfer_buflen = MIN(ret->transfer_buflen, 20480);
1.23      djm       284:
                    285:        return(ret);
                    286: }
                    287:
                    288: u_int
                    289: sftp_proto_version(struct sftp_conn *conn)
                    290: {
                    291:        return(conn->version);
1.1       djm       292: }
                    293:
                    294: int
1.23      djm       295: do_close(struct sftp_conn *conn, char *handle, u_int handle_len)
1.1       djm       296: {
                    297:        u_int id, status;
                    298:        Buffer msg;
                    299:
                    300:        buffer_init(&msg);
                    301:
1.23      djm       302:        id = conn->msg_id++;
1.1       djm       303:        buffer_put_char(&msg, SSH2_FXP_CLOSE);
                    304:        buffer_put_int(&msg, id);
                    305:        buffer_put_string(&msg, handle, handle_len);
1.23      djm       306:        send_msg(conn->fd_out, &msg);
1.33      deraadt   307:        debug3("Sent message SSH2_FXP_CLOSE I:%u", id);
1.1       djm       308:
1.23      djm       309:        status = get_status(conn->fd_in, id);
1.1       djm       310:        if (status != SSH2_FX_OK)
                    311:                error("Couldn't close file: %s", fx2txt(status));
                    312:
                    313:        buffer_free(&msg);
                    314:
                    315:        return(status);
                    316: }
                    317:
1.12      djm       318:
1.17      itojun    319: static int
1.23      djm       320: do_lsreaddir(struct sftp_conn *conn, char *path, int printflag,
1.12      djm       321:     SFTP_DIRENT ***dir)
1.1       djm       322: {
                    323:        Buffer msg;
1.55      djm       324:        u_int count, type, id, handle_len, i, expected_id, ents = 0;
1.1       djm       325:        char *handle;
                    326:
1.23      djm       327:        id = conn->msg_id++;
1.1       djm       328:
                    329:        buffer_init(&msg);
                    330:        buffer_put_char(&msg, SSH2_FXP_OPENDIR);
                    331:        buffer_put_int(&msg, id);
                    332:        buffer_put_cstring(&msg, path);
1.23      djm       333:        send_msg(conn->fd_out, &msg);
1.1       djm       334:
                    335:        buffer_clear(&msg);
                    336:
1.23      djm       337:        handle = get_handle(conn->fd_in, id, &handle_len);
1.1       djm       338:        if (handle == NULL)
                    339:                return(-1);
                    340:
1.12      djm       341:        if (dir) {
                    342:                ents = 0;
                    343:                *dir = xmalloc(sizeof(**dir));
                    344:                (*dir)[0] = NULL;
                    345:        }
                    346:
1.49      djm       347:        for (; !interrupted;) {
1.23      djm       348:                id = expected_id = conn->msg_id++;
1.1       djm       349:
1.33      deraadt   350:                debug3("Sending SSH2_FXP_READDIR I:%u", id);
1.1       djm       351:
                    352:                buffer_clear(&msg);
                    353:                buffer_put_char(&msg, SSH2_FXP_READDIR);
                    354:                buffer_put_int(&msg, id);
                    355:                buffer_put_string(&msg, handle, handle_len);
1.23      djm       356:                send_msg(conn->fd_out, &msg);
1.1       djm       357:
                    358:                buffer_clear(&msg);
                    359:
1.23      djm       360:                get_msg(conn->fd_in, &msg);
1.1       djm       361:
                    362:                type = buffer_get_char(&msg);
                    363:                id = buffer_get_int(&msg);
                    364:
1.33      deraadt   365:                debug3("Received reply T:%u I:%u", type, id);
1.1       djm       366:
                    367:                if (id != expected_id)
1.33      deraadt   368:                        fatal("ID mismatch (%u != %u)", id, expected_id);
1.1       djm       369:
                    370:                if (type == SSH2_FXP_STATUS) {
                    371:                        int status = buffer_get_int(&msg);
                    372:
                    373:                        debug3("Received SSH2_FXP_STATUS %d", status);
                    374:
                    375:                        if (status == SSH2_FX_EOF) {
                    376:                                break;
                    377:                        } else {
                    378:                                error("Couldn't read directory: %s",
                    379:                                    fx2txt(status));
1.23      djm       380:                                do_close(conn, handle, handle_len);
1.42      markus    381:                                xfree(handle);
1.9       djm       382:                                return(status);
1.1       djm       383:                        }
                    384:                } else if (type != SSH2_FXP_NAME)
1.33      deraadt   385:                        fatal("Expected SSH2_FXP_NAME(%u) packet, got %u",
1.1       djm       386:                            SSH2_FXP_NAME, type);
                    387:
                    388:                count = buffer_get_int(&msg);
1.7       markus    389:                if (count == 0)
                    390:                        break;
1.8       stevesk   391:                debug3("Received %d SSH2_FXP_NAME responses", count);
1.19      deraadt   392:                for (i = 0; i < count; i++) {
1.1       djm       393:                        char *filename, *longname;
                    394:                        Attrib *a;
                    395:
                    396:                        filename = buffer_get_string(&msg, NULL);
                    397:                        longname = buffer_get_string(&msg, NULL);
                    398:                        a = decode_attrib(&msg);
                    399:
1.12      djm       400:                        if (printflag)
                    401:                                printf("%s\n", longname);
                    402:
                    403:                        if (dir) {
1.62      djm       404:                                *dir = xrealloc(*dir, ents + 2, sizeof(**dir));
1.12      djm       405:                                (*dir)[ents] = xmalloc(sizeof(***dir));
                    406:                                (*dir)[ents]->filename = xstrdup(filename);
                    407:                                (*dir)[ents]->longname = xstrdup(longname);
                    408:                                memcpy(&(*dir)[ents]->a, a, sizeof(*a));
                    409:                                (*dir)[++ents] = NULL;
                    410:                        }
1.1       djm       411:
                    412:                        xfree(filename);
                    413:                        xfree(longname);
                    414:                }
                    415:        }
                    416:
                    417:        buffer_free(&msg);
1.23      djm       418:        do_close(conn, handle, handle_len);
1.1       djm       419:        xfree(handle);
                    420:
1.49      djm       421:        /* Don't return partial matches on interrupt */
                    422:        if (interrupted && dir != NULL && *dir != NULL) {
                    423:                free_sftp_dirents(*dir);
                    424:                *dir = xmalloc(sizeof(**dir));
                    425:                **dir = NULL;
                    426:        }
                    427:
1.1       djm       428:        return(0);
1.12      djm       429: }
                    430:
                    431: int
1.23      djm       432: do_readdir(struct sftp_conn *conn, char *path, SFTP_DIRENT ***dir)
1.12      djm       433: {
1.23      djm       434:        return(do_lsreaddir(conn, path, 0, dir));
1.12      djm       435: }
                    436:
                    437: void free_sftp_dirents(SFTP_DIRENT **s)
                    438: {
                    439:        int i;
1.19      deraadt   440:
                    441:        for (i = 0; s[i]; i++) {
1.12      djm       442:                xfree(s[i]->filename);
                    443:                xfree(s[i]->longname);
                    444:                xfree(s[i]);
                    445:        }
                    446:        xfree(s);
                    447: }
                    448:
                    449: int
1.23      djm       450: do_rm(struct sftp_conn *conn, char *path)
1.1       djm       451: {
                    452:        u_int status, id;
                    453:
                    454:        debug2("Sending SSH2_FXP_REMOVE \"%s\"", path);
                    455:
1.23      djm       456:        id = conn->msg_id++;
1.28      markus    457:        send_string_request(conn->fd_out, id, SSH2_FXP_REMOVE, path,
1.23      djm       458:            strlen(path));
                    459:        status = get_status(conn->fd_in, id);
1.1       djm       460:        if (status != SSH2_FX_OK)
                    461:                error("Couldn't delete file: %s", fx2txt(status));
                    462:        return(status);
                    463: }
                    464:
                    465: int
1.23      djm       466: do_mkdir(struct sftp_conn *conn, char *path, Attrib *a)
1.1       djm       467: {
                    468:        u_int status, id;
                    469:
1.23      djm       470:        id = conn->msg_id++;
                    471:        send_string_attrs_request(conn->fd_out, id, SSH2_FXP_MKDIR, path,
1.1       djm       472:            strlen(path), a);
                    473:
1.23      djm       474:        status = get_status(conn->fd_in, id);
1.1       djm       475:        if (status != SSH2_FX_OK)
                    476:                error("Couldn't create directory: %s", fx2txt(status));
                    477:
                    478:        return(status);
                    479: }
                    480:
                    481: int
1.23      djm       482: do_rmdir(struct sftp_conn *conn, char *path)
1.1       djm       483: {
                    484:        u_int status, id;
                    485:
1.23      djm       486:        id = conn->msg_id++;
                    487:        send_string_request(conn->fd_out, id, SSH2_FXP_RMDIR, path,
                    488:            strlen(path));
1.1       djm       489:
1.23      djm       490:        status = get_status(conn->fd_in, id);
1.1       djm       491:        if (status != SSH2_FX_OK)
                    492:                error("Couldn't remove directory: %s", fx2txt(status));
                    493:
                    494:        return(status);
                    495: }
                    496:
                    497: Attrib *
1.23      djm       498: do_stat(struct sftp_conn *conn, char *path, int quiet)
1.1       djm       499: {
                    500:        u_int id;
                    501:
1.23      djm       502:        id = conn->msg_id++;
                    503:
1.28      markus    504:        send_string_request(conn->fd_out, id,
                    505:            conn->version == 0 ? SSH2_FXP_STAT_VERSION_0 : SSH2_FXP_STAT,
1.23      djm       506:            path, strlen(path));
                    507:
                    508:        return(get_decode_stat(conn->fd_in, id, quiet));
1.1       djm       509: }
                    510:
                    511: Attrib *
1.23      djm       512: do_lstat(struct sftp_conn *conn, char *path, int quiet)
1.1       djm       513: {
                    514:        u_int id;
                    515:
1.23      djm       516:        if (conn->version == 0) {
                    517:                if (quiet)
                    518:                        debug("Server version does not support lstat operation");
                    519:                else
1.43      itojun    520:                        logit("Server version does not support lstat operation");
1.30      markus    521:                return(do_stat(conn, path, quiet));
1.23      djm       522:        }
                    523:
                    524:        id = conn->msg_id++;
                    525:        send_string_request(conn->fd_out, id, SSH2_FXP_LSTAT, path,
                    526:            strlen(path));
                    527:
                    528:        return(get_decode_stat(conn->fd_in, id, quiet));
1.1       djm       529: }
                    530:
1.78    ! chl       531: #ifdef notyet
1.1       djm       532: Attrib *
1.23      djm       533: do_fstat(struct sftp_conn *conn, char *handle, u_int handle_len, int quiet)
1.1       djm       534: {
                    535:        u_int id;
                    536:
1.23      djm       537:        id = conn->msg_id++;
                    538:        send_string_request(conn->fd_out, id, SSH2_FXP_FSTAT, handle,
                    539:            handle_len);
                    540:
                    541:        return(get_decode_stat(conn->fd_in, id, quiet));
1.1       djm       542: }
1.78    ! chl       543: #endif
1.1       djm       544:
                    545: int
1.23      djm       546: do_setstat(struct sftp_conn *conn, char *path, Attrib *a)
1.1       djm       547: {
                    548:        u_int status, id;
                    549:
1.23      djm       550:        id = conn->msg_id++;
                    551:        send_string_attrs_request(conn->fd_out, id, SSH2_FXP_SETSTAT, path,
1.1       djm       552:            strlen(path), a);
                    553:
1.23      djm       554:        status = get_status(conn->fd_in, id);
1.1       djm       555:        if (status != SSH2_FX_OK)
                    556:                error("Couldn't setstat on \"%s\": %s", path,
                    557:                    fx2txt(status));
                    558:
                    559:        return(status);
                    560: }
                    561:
                    562: int
1.23      djm       563: do_fsetstat(struct sftp_conn *conn, char *handle, u_int handle_len,
1.1       djm       564:     Attrib *a)
                    565: {
                    566:        u_int status, id;
                    567:
1.23      djm       568:        id = conn->msg_id++;
                    569:        send_string_attrs_request(conn->fd_out, id, SSH2_FXP_FSETSTAT, handle,
1.1       djm       570:            handle_len, a);
                    571:
1.23      djm       572:        status = get_status(conn->fd_in, id);
1.1       djm       573:        if (status != SSH2_FX_OK)
                    574:                error("Couldn't fsetstat: %s", fx2txt(status));
                    575:
                    576:        return(status);
                    577: }
                    578:
                    579: char *
1.23      djm       580: do_realpath(struct sftp_conn *conn, char *path)
1.1       djm       581: {
                    582:        Buffer msg;
                    583:        u_int type, expected_id, count, id;
                    584:        char *filename, *longname;
                    585:        Attrib *a;
                    586:
1.23      djm       587:        expected_id = id = conn->msg_id++;
                    588:        send_string_request(conn->fd_out, id, SSH2_FXP_REALPATH, path,
                    589:            strlen(path));
1.1       djm       590:
                    591:        buffer_init(&msg);
                    592:
1.23      djm       593:        get_msg(conn->fd_in, &msg);
1.1       djm       594:        type = buffer_get_char(&msg);
                    595:        id = buffer_get_int(&msg);
                    596:
                    597:        if (id != expected_id)
1.33      deraadt   598:                fatal("ID mismatch (%u != %u)", id, expected_id);
1.1       djm       599:
                    600:        if (type == SSH2_FXP_STATUS) {
                    601:                u_int status = buffer_get_int(&msg);
                    602:
                    603:                error("Couldn't canonicalise: %s", fx2txt(status));
                    604:                return(NULL);
                    605:        } else if (type != SSH2_FXP_NAME)
1.33      deraadt   606:                fatal("Expected SSH2_FXP_NAME(%u) packet, got %u",
1.1       djm       607:                    SSH2_FXP_NAME, type);
                    608:
                    609:        count = buffer_get_int(&msg);
                    610:        if (count != 1)
                    611:                fatal("Got multiple names (%d) from SSH_FXP_REALPATH", count);
                    612:
                    613:        filename = buffer_get_string(&msg, NULL);
                    614:        longname = buffer_get_string(&msg, NULL);
                    615:        a = decode_attrib(&msg);
                    616:
                    617:        debug3("SSH_FXP_REALPATH %s -> %s", path, filename);
                    618:
                    619:        xfree(longname);
                    620:
                    621:        buffer_free(&msg);
                    622:
                    623:        return(filename);
                    624: }
                    625:
                    626: int
1.23      djm       627: do_rename(struct sftp_conn *conn, char *oldpath, char *newpath)
1.1       djm       628: {
                    629:        Buffer msg;
                    630:        u_int status, id;
                    631:
                    632:        buffer_init(&msg);
                    633:
                    634:        /* Send rename request */
1.23      djm       635:        id = conn->msg_id++;
1.1       djm       636:        buffer_put_char(&msg, SSH2_FXP_RENAME);
                    637:        buffer_put_int(&msg, id);
                    638:        buffer_put_cstring(&msg, oldpath);
                    639:        buffer_put_cstring(&msg, newpath);
1.23      djm       640:        send_msg(conn->fd_out, &msg);
1.1       djm       641:        debug3("Sent message SSH2_FXP_RENAME \"%s\" -> \"%s\"", oldpath,
                    642:            newpath);
                    643:        buffer_free(&msg);
                    644:
1.23      djm       645:        status = get_status(conn->fd_in, id);
1.1       djm       646:        if (status != SSH2_FX_OK)
1.23      djm       647:                error("Couldn't rename file \"%s\" to \"%s\": %s", oldpath,
                    648:                    newpath, fx2txt(status));
1.1       djm       649:
                    650:        return(status);
1.11      djm       651: }
                    652:
                    653: int
1.23      djm       654: do_symlink(struct sftp_conn *conn, char *oldpath, char *newpath)
1.11      djm       655: {
                    656:        Buffer msg;
                    657:        u_int status, id;
                    658:
1.23      djm       659:        if (conn->version < 3) {
                    660:                error("This server does not support the symlink operation");
                    661:                return(SSH2_FX_OP_UNSUPPORTED);
                    662:        }
                    663:
1.11      djm       664:        buffer_init(&msg);
                    665:
1.48      djm       666:        /* Send symlink request */
1.23      djm       667:        id = conn->msg_id++;
1.11      djm       668:        buffer_put_char(&msg, SSH2_FXP_SYMLINK);
                    669:        buffer_put_int(&msg, id);
                    670:        buffer_put_cstring(&msg, oldpath);
                    671:        buffer_put_cstring(&msg, newpath);
1.23      djm       672:        send_msg(conn->fd_out, &msg);
1.11      djm       673:        debug3("Sent message SSH2_FXP_SYMLINK \"%s\" -> \"%s\"", oldpath,
                    674:            newpath);
                    675:        buffer_free(&msg);
                    676:
1.23      djm       677:        status = get_status(conn->fd_in, id);
1.11      djm       678:        if (status != SSH2_FX_OK)
1.36      markus    679:                error("Couldn't symlink file \"%s\" to \"%s\": %s", oldpath,
1.23      djm       680:                    newpath, fx2txt(status));
1.11      djm       681:
                    682:        return(status);
                    683: }
                    684:
1.78    ! chl       685: #ifdef notyet
1.11      djm       686: char *
1.23      djm       687: do_readlink(struct sftp_conn *conn, char *path)
1.11      djm       688: {
                    689:        Buffer msg;
                    690:        u_int type, expected_id, count, id;
                    691:        char *filename, *longname;
                    692:        Attrib *a;
                    693:
1.23      djm       694:        expected_id = id = conn->msg_id++;
                    695:        send_string_request(conn->fd_out, id, SSH2_FXP_READLINK, path,
                    696:            strlen(path));
1.11      djm       697:
                    698:        buffer_init(&msg);
                    699:
1.23      djm       700:        get_msg(conn->fd_in, &msg);
1.11      djm       701:        type = buffer_get_char(&msg);
                    702:        id = buffer_get_int(&msg);
                    703:
                    704:        if (id != expected_id)
1.33      deraadt   705:                fatal("ID mismatch (%u != %u)", id, expected_id);
1.11      djm       706:
                    707:        if (type == SSH2_FXP_STATUS) {
                    708:                u_int status = buffer_get_int(&msg);
                    709:
                    710:                error("Couldn't readlink: %s", fx2txt(status));
                    711:                return(NULL);
                    712:        } else if (type != SSH2_FXP_NAME)
1.33      deraadt   713:                fatal("Expected SSH2_FXP_NAME(%u) packet, got %u",
1.11      djm       714:                    SSH2_FXP_NAME, type);
                    715:
                    716:        count = buffer_get_int(&msg);
                    717:        if (count != 1)
                    718:                fatal("Got multiple names (%d) from SSH_FXP_READLINK", count);
                    719:
                    720:        filename = buffer_get_string(&msg, NULL);
                    721:        longname = buffer_get_string(&msg, NULL);
                    722:        a = decode_attrib(&msg);
                    723:
                    724:        debug3("SSH_FXP_READLINK %s -> %s", path, filename);
                    725:
                    726:        xfree(longname);
                    727:
                    728:        buffer_free(&msg);
                    729:
                    730:        return(filename);
1.1       djm       731: }
1.78    ! chl       732: #endif
1.1       djm       733:
1.21      djm       734: static void
                    735: send_read_request(int fd_out, u_int id, u_int64_t offset, u_int len,
                    736:     char *handle, u_int handle_len)
                    737: {
                    738:        Buffer msg;
1.28      markus    739:
1.21      djm       740:        buffer_init(&msg);
                    741:        buffer_clear(&msg);
                    742:        buffer_put_char(&msg, SSH2_FXP_READ);
                    743:        buffer_put_int(&msg, id);
                    744:        buffer_put_string(&msg, handle, handle_len);
                    745:        buffer_put_int64(&msg, offset);
                    746:        buffer_put_int(&msg, len);
                    747:        send_msg(fd_out, &msg);
                    748:        buffer_free(&msg);
1.28      markus    749: }
1.21      djm       750:
1.1       djm       751: int
1.23      djm       752: do_download(struct sftp_conn *conn, char *remote_path, char *local_path,
                    753:     int pflag)
1.1       djm       754: {
1.21      djm       755:        Attrib junk, *a;
                    756:        Buffer msg;
1.1       djm       757:        char *handle;
1.57      dtucker   758:        int local_fd, status = 0, write_error;
1.21      djm       759:        int read_error, write_errno;
                    760:        u_int64_t offset, size;
1.55      djm       761:        u_int handle_len, mode, type, id, buflen, num_req, max_req;
1.39      fgsch     762:        off_t progress_counter;
1.21      djm       763:        struct request {
                    764:                u_int id;
                    765:                u_int len;
                    766:                u_int64_t offset;
1.28      markus    767:                TAILQ_ENTRY(request) tq;
1.21      djm       768:        };
                    769:        TAILQ_HEAD(reqhead, request) requests;
                    770:        struct request *req;
                    771:
                    772:        TAILQ_INIT(&requests);
1.1       djm       773:
1.23      djm       774:        a = do_stat(conn, remote_path, 0);
1.1       djm       775:        if (a == NULL)
                    776:                return(-1);
                    777:
                    778:        /* XXX: should we preserve set[ug]id? */
                    779:        if (a->flags & SSH2_FILEXFER_ATTR_PERMISSIONS)
1.38      djm       780:                mode = a->perm & 0777;
1.1       djm       781:        else
                    782:                mode = 0666;
                    783:
1.14      djm       784:        if ((a->flags & SSH2_FILEXFER_ATTR_PERMISSIONS) &&
1.41      djm       785:            (!S_ISREG(a->perm))) {
                    786:                error("Cannot download non-regular file: %s", remote_path);
1.14      djm       787:                return(-1);
                    788:        }
                    789:
1.21      djm       790:        if (a->flags & SSH2_FILEXFER_ATTR_SIZE)
                    791:                size = a->size;
                    792:        else
                    793:                size = 0;
                    794:
1.23      djm       795:        buflen = conn->transfer_buflen;
1.1       djm       796:        buffer_init(&msg);
                    797:
                    798:        /* Send open request */
1.23      djm       799:        id = conn->msg_id++;
1.1       djm       800:        buffer_put_char(&msg, SSH2_FXP_OPEN);
                    801:        buffer_put_int(&msg, id);
                    802:        buffer_put_cstring(&msg, remote_path);
                    803:        buffer_put_int(&msg, SSH2_FXF_READ);
                    804:        attrib_clear(&junk); /* Send empty attributes */
                    805:        encode_attrib(&msg, &junk);
1.23      djm       806:        send_msg(conn->fd_out, &msg);
1.33      deraadt   807:        debug3("Sent message SSH2_FXP_OPEN I:%u P:%s", id, remote_path);
1.1       djm       808:
1.23      djm       809:        handle = get_handle(conn->fd_in, id, &handle_len);
1.1       djm       810:        if (handle == NULL) {
                    811:                buffer_free(&msg);
                    812:                return(-1);
                    813:        }
                    814:
1.45      djm       815:        local_fd = open(local_path, O_WRONLY | O_CREAT | O_TRUNC,
1.38      djm       816:            mode | S_IWRITE);
1.23      djm       817:        if (local_fd == -1) {
                    818:                error("Couldn't open local file \"%s\" for writing: %s",
                    819:                    local_path, strerror(errno));
1.24      markus    820:                buffer_free(&msg);
                    821:                xfree(handle);
1.23      djm       822:                return(-1);
                    823:        }
                    824:
1.1       djm       825:        /* Read from remote and write to local */
1.21      djm       826:        write_error = read_error = write_errno = num_req = offset = 0;
                    827:        max_req = 1;
1.39      fgsch     828:        progress_counter = 0;
                    829:
1.47      djm       830:        if (showprogress && size != 0)
                    831:                start_progress_meter(remote_path, size, &progress_counter);
1.39      fgsch     832:
1.21      djm       833:        while (num_req > 0 || max_req > 0) {
                    834:                char *data;
1.1       djm       835:                u_int len;
                    836:
1.49      djm       837:                /*
1.51      deraadt   838:                 * Simulate EOF on interrupt: stop sending new requests and
1.49      djm       839:                 * allow outstanding requests to drain gracefully
                    840:                 */
                    841:                if (interrupted) {
                    842:                        if (num_req == 0) /* If we haven't started yet... */
                    843:                                break;
                    844:                        max_req = 0;
                    845:                }
                    846:
1.21      djm       847:                /* Send some more requests */
                    848:                while (num_req < max_req) {
1.28      markus    849:                        debug3("Request range %llu -> %llu (%d/%d)",
1.25      itojun    850:                            (unsigned long long)offset,
                    851:                            (unsigned long long)offset + buflen - 1,
                    852:                            num_req, max_req);
1.21      djm       853:                        req = xmalloc(sizeof(*req));
1.23      djm       854:                        req->id = conn->msg_id++;
1.21      djm       855:                        req->len = buflen;
                    856:                        req->offset = offset;
                    857:                        offset += buflen;
                    858:                        num_req++;
                    859:                        TAILQ_INSERT_TAIL(&requests, req, tq);
1.28      markus    860:                        send_read_request(conn->fd_out, req->id, req->offset,
1.21      djm       861:                            req->len, handle, handle_len);
                    862:                }
1.1       djm       863:
                    864:                buffer_clear(&msg);
1.23      djm       865:                get_msg(conn->fd_in, &msg);
1.1       djm       866:                type = buffer_get_char(&msg);
                    867:                id = buffer_get_int(&msg);
1.33      deraadt   868:                debug3("Received reply T:%u I:%u R:%d", type, id, max_req);
1.21      djm       869:
                    870:                /* Find the request in our queue */
1.53      deraadt   871:                for (req = TAILQ_FIRST(&requests);
1.21      djm       872:                    req != NULL && req->id != id;
                    873:                    req = TAILQ_NEXT(req, tq))
                    874:                        ;
                    875:                if (req == NULL)
                    876:                        fatal("Unexpected reply %u", id);
                    877:
                    878:                switch (type) {
                    879:                case SSH2_FXP_STATUS:
1.5       djm       880:                        status = buffer_get_int(&msg);
1.21      djm       881:                        if (status != SSH2_FX_EOF)
                    882:                                read_error = 1;
                    883:                        max_req = 0;
                    884:                        TAILQ_REMOVE(&requests, req, tq);
                    885:                        xfree(req);
                    886:                        num_req--;
                    887:                        break;
                    888:                case SSH2_FXP_DATA:
                    889:                        data = buffer_get_string(&msg, &len);
1.26      itojun    890:                        debug3("Received data %llu -> %llu",
1.28      markus    891:                            (unsigned long long)req->offset,
1.26      itojun    892:                            (unsigned long long)req->offset + len - 1);
1.21      djm       893:                        if (len > req->len)
                    894:                                fatal("Received more data than asked for "
1.37      deraadt   895:                                    "%u > %u", len, req->len);
1.21      djm       896:                        if ((lseek(local_fd, req->offset, SEEK_SET) == -1 ||
1.44      deraadt   897:                            atomicio(vwrite, local_fd, data, len) != len) &&
1.21      djm       898:                            !write_error) {
                    899:                                write_errno = errno;
                    900:                                write_error = 1;
                    901:                                max_req = 0;
                    902:                        }
1.39      fgsch     903:                        progress_counter += len;
1.21      djm       904:                        xfree(data);
1.1       djm       905:
1.21      djm       906:                        if (len == req->len) {
                    907:                                TAILQ_REMOVE(&requests, req, tq);
                    908:                                xfree(req);
                    909:                                num_req--;
                    910:                        } else {
                    911:                                /* Resend the request for the missing data */
                    912:                                debug3("Short data block, re-requesting "
1.26      itojun    913:                                    "%llu -> %llu (%2d)",
1.28      markus    914:                                    (unsigned long long)req->offset + len,
1.27      itojun    915:                                    (unsigned long long)req->offset +
                    916:                                    req->len - 1, num_req);
1.23      djm       917:                                req->id = conn->msg_id++;
1.21      djm       918:                                req->len -= len;
                    919:                                req->offset += len;
1.28      markus    920:                                send_read_request(conn->fd_out, req->id,
1.23      djm       921:                                    req->offset, req->len, handle, handle_len);
1.21      djm       922:                                /* Reduce the request size */
                    923:                                if (len < buflen)
                    924:                                        buflen = MAX(MIN_READ_SIZE, len);
                    925:                        }
                    926:                        if (max_req > 0) { /* max_req = 0 iff EOF received */
                    927:                                if (size > 0 && offset > size) {
                    928:                                        /* Only one request at a time
                    929:                                         * after the expected EOF */
                    930:                                        debug3("Finish at %llu (%2d)",
1.26      itojun    931:                                            (unsigned long long)offset,
                    932:                                            num_req);
1.21      djm       933:                                        max_req = 1;
1.49      djm       934:                                } else if (max_req <= conn->num_requests) {
1.21      djm       935:                                        ++max_req;
                    936:                                }
1.1       djm       937:                        }
1.21      djm       938:                        break;
                    939:                default:
1.33      deraadt   940:                        fatal("Expected SSH2_FXP_DATA(%u) packet, got %u",
1.1       djm       941:                            SSH2_FXP_DATA, type);
                    942:                }
1.21      djm       943:        }
1.1       djm       944:
1.39      fgsch     945:        if (showprogress && size)
                    946:                stop_progress_meter();
                    947:
1.21      djm       948:        /* Sanity check */
                    949:        if (TAILQ_FIRST(&requests) != NULL)
                    950:                fatal("Transfer complete, but requests still in queue");
                    951:
                    952:        if (read_error) {
1.28      markus    953:                error("Couldn't read from remote file \"%s\" : %s",
1.21      djm       954:                    remote_path, fx2txt(status));
1.23      djm       955:                do_close(conn, handle, handle_len);
1.21      djm       956:        } else if (write_error) {
                    957:                error("Couldn't write to \"%s\": %s", local_path,
                    958:                    strerror(write_errno));
                    959:                status = -1;
1.23      djm       960:                do_close(conn, handle, handle_len);
1.21      djm       961:        } else {
1.23      djm       962:                status = do_close(conn, handle, handle_len);
1.21      djm       963:
                    964:                /* Override umask and utimes if asked */
                    965:                if (pflag && fchmod(local_fd, mode) == -1)
                    966:                        error("Couldn't set mode on \"%s\": %s", local_path,
1.37      deraadt   967:                            strerror(errno));
1.21      djm       968:                if (pflag && (a->flags & SSH2_FILEXFER_ATTR_ACMODTIME)) {
                    969:                        struct timeval tv[2];
                    970:                        tv[0].tv_sec = a->atime;
                    971:                        tv[1].tv_sec = a->mtime;
                    972:                        tv[0].tv_usec = tv[1].tv_usec = 0;
                    973:                        if (utimes(local_path, tv) == -1)
                    974:                                error("Can't set times on \"%s\": %s",
1.37      deraadt   975:                                    local_path, strerror(errno));
1.1       djm       976:                }
1.10      djm       977:        }
1.5       djm       978:        close(local_fd);
                    979:        buffer_free(&msg);
1.1       djm       980:        xfree(handle);
1.23      djm       981:
                    982:        return(status);
1.1       djm       983: }
                    984:
                    985: int
1.23      djm       986: do_upload(struct sftp_conn *conn, char *local_path, char *remote_path,
                    987:     int pflag)
1.1       djm       988: {
1.20      djm       989:        int local_fd, status;
1.22      djm       990:        u_int handle_len, id, type;
1.77      djm       991:        off_t offset;
1.20      djm       992:        char *handle, *data;
1.1       djm       993:        Buffer msg;
                    994:        struct stat sb;
                    995:        Attrib a;
1.21      djm       996:        u_int32_t startid;
                    997:        u_int32_t ackid;
1.22      djm       998:        struct outstanding_ack {
                    999:                u_int id;
                   1000:                u_int len;
1.77      djm      1001:                off_t offset;
1.28      markus   1002:                TAILQ_ENTRY(outstanding_ack) tq;
1.22      djm      1003:        };
                   1004:        TAILQ_HEAD(ackhead, outstanding_ack) acks;
1.50      pedro    1005:        struct outstanding_ack *ack = NULL;
1.22      djm      1006:
                   1007:        TAILQ_INIT(&acks);
1.1       djm      1008:
                   1009:        if ((local_fd = open(local_path, O_RDONLY, 0)) == -1) {
                   1010:                error("Couldn't open local file \"%s\" for reading: %s",
                   1011:                    local_path, strerror(errno));
                   1012:                return(-1);
                   1013:        }
                   1014:        if (fstat(local_fd, &sb) == -1) {
                   1015:                error("Couldn't fstat local file \"%s\": %s",
                   1016:                    local_path, strerror(errno));
1.41      djm      1017:                close(local_fd);
                   1018:                return(-1);
                   1019:        }
                   1020:        if (!S_ISREG(sb.st_mode)) {
                   1021:                error("%s is not a regular file", local_path);
1.1       djm      1022:                close(local_fd);
                   1023:                return(-1);
                   1024:        }
                   1025:        stat_to_attrib(&sb, &a);
                   1026:
                   1027:        a.flags &= ~SSH2_FILEXFER_ATTR_SIZE;
                   1028:        a.flags &= ~SSH2_FILEXFER_ATTR_UIDGID;
                   1029:        a.perm &= 0777;
                   1030:        if (!pflag)
                   1031:                a.flags &= ~SSH2_FILEXFER_ATTR_ACMODTIME;
                   1032:
                   1033:        buffer_init(&msg);
                   1034:
                   1035:        /* Send open request */
1.23      djm      1036:        id = conn->msg_id++;
1.1       djm      1037:        buffer_put_char(&msg, SSH2_FXP_OPEN);
                   1038:        buffer_put_int(&msg, id);
                   1039:        buffer_put_cstring(&msg, remote_path);
                   1040:        buffer_put_int(&msg, SSH2_FXF_WRITE|SSH2_FXF_CREAT|SSH2_FXF_TRUNC);
                   1041:        encode_attrib(&msg, &a);
1.23      djm      1042:        send_msg(conn->fd_out, &msg);
1.33      deraadt  1043:        debug3("Sent message SSH2_FXP_OPEN I:%u P:%s", id, remote_path);
1.1       djm      1044:
                   1045:        buffer_clear(&msg);
                   1046:
1.23      djm      1047:        handle = get_handle(conn->fd_in, id, &handle_len);
1.1       djm      1048:        if (handle == NULL) {
                   1049:                close(local_fd);
                   1050:                buffer_free(&msg);
                   1051:                return(-1);
                   1052:        }
                   1053:
1.21      djm      1054:        startid = ackid = id + 1;
1.23      djm      1055:        data = xmalloc(conn->transfer_buflen);
1.20      djm      1056:
1.1       djm      1057:        /* Read from local and write to remote */
                   1058:        offset = 0;
1.39      fgsch    1059:        if (showprogress)
                   1060:                start_progress_meter(local_path, sb.st_size, &offset);
                   1061:
1.19      deraadt  1062:        for (;;) {
1.1       djm      1063:                int len;
                   1064:
                   1065:                /*
1.51      deraadt  1066:                 * Can't use atomicio here because it returns 0 on EOF,
1.49      djm      1067:                 * thus losing the last block of the file.
1.51      deraadt  1068:                 * Simulate an EOF on interrupt, allowing ACKs from the
1.49      djm      1069:                 * server to drain.
1.1       djm      1070:                 */
1.49      djm      1071:                if (interrupted)
                   1072:                        len = 0;
                   1073:                else do
1.23      djm      1074:                        len = read(local_fd, data, conn->transfer_buflen);
1.1       djm      1075:                while ((len == -1) && (errno == EINTR || errno == EAGAIN));
                   1076:
                   1077:                if (len == -1)
                   1078:                        fatal("Couldn't read from \"%s\": %s", local_path,
                   1079:                            strerror(errno));
1.21      djm      1080:
                   1081:                if (len != 0) {
1.22      djm      1082:                        ack = xmalloc(sizeof(*ack));
                   1083:                        ack->id = ++id;
                   1084:                        ack->offset = offset;
                   1085:                        ack->len = len;
                   1086:                        TAILQ_INSERT_TAIL(&acks, ack, tq);
                   1087:
1.21      djm      1088:                        buffer_clear(&msg);
                   1089:                        buffer_put_char(&msg, SSH2_FXP_WRITE);
1.22      djm      1090:                        buffer_put_int(&msg, ack->id);
1.21      djm      1091:                        buffer_put_string(&msg, handle, handle_len);
                   1092:                        buffer_put_int64(&msg, offset);
                   1093:                        buffer_put_string(&msg, data, len);
1.23      djm      1094:                        send_msg(conn->fd_out, &msg);
1.33      deraadt  1095:                        debug3("Sent message SSH2_FXP_WRITE I:%u O:%llu S:%u",
1.37      deraadt  1096:                            id, (unsigned long long)offset, len);
1.22      djm      1097:                } else if (TAILQ_FIRST(&acks) == NULL)
1.1       djm      1098:                        break;
                   1099:
1.22      djm      1100:                if (ack == NULL)
                   1101:                        fatal("Unexpected ACK %u", id);
                   1102:
1.28      markus   1103:                if (id == startid || len == 0 ||
1.23      djm      1104:                    id - ackid >= conn->num_requests) {
1.32      markus   1105:                        u_int r_id;
1.31      djm      1106:
1.22      djm      1107:                        buffer_clear(&msg);
1.23      djm      1108:                        get_msg(conn->fd_in, &msg);
1.22      djm      1109:                        type = buffer_get_char(&msg);
1.31      djm      1110:                        r_id = buffer_get_int(&msg);
1.22      djm      1111:
                   1112:                        if (type != SSH2_FXP_STATUS)
                   1113:                                fatal("Expected SSH2_FXP_STATUS(%d) packet, "
                   1114:                                    "got %d", SSH2_FXP_STATUS, type);
                   1115:
                   1116:                        status = buffer_get_int(&msg);
                   1117:                        debug3("SSH2_FXP_STATUS %d", status);
                   1118:
                   1119:                        /* Find the request in our queue */
1.53      deraadt  1120:                        for (ack = TAILQ_FIRST(&acks);
1.31      djm      1121:                            ack != NULL && ack->id != r_id;
1.22      djm      1122:                            ack = TAILQ_NEXT(ack, tq))
                   1123:                                ;
                   1124:                        if (ack == NULL)
1.33      deraadt  1125:                                fatal("Can't find request for ID %u", r_id);
1.22      djm      1126:                        TAILQ_REMOVE(&acks, ack, tq);
                   1127:
1.21      djm      1128:                        if (status != SSH2_FX_OK) {
                   1129:                                error("Couldn't write to remote file \"%s\": %s",
1.37      deraadt  1130:                                    remote_path, fx2txt(status));
1.75      djm      1131:                                if (showprogress)
                   1132:                                        stop_progress_meter();
1.23      djm      1133:                                do_close(conn, handle, handle_len);
1.21      djm      1134:                                close(local_fd);
1.42      markus   1135:                                xfree(data);
                   1136:                                xfree(ack);
1.76      djm      1137:                                status = -1;
1.21      djm      1138:                                goto done;
                   1139:                        }
1.77      djm      1140:                        debug3("In write loop, ack for %u %u bytes at %lld",
                   1141:                            ack->id, ack->len, (long long)ack->offset);
1.21      djm      1142:                        ++ackid;
1.34      deraadt  1143:                        xfree(ack);
1.1       djm      1144:                }
                   1145:                offset += len;
1.77      djm      1146:                if (offset < 0)
                   1147:                        fatal("%s: offset < 0", __func__);
1.1       djm      1148:        }
1.39      fgsch    1149:        if (showprogress)
                   1150:                stop_progress_meter();
1.20      djm      1151:        xfree(data);
1.1       djm      1152:
                   1153:        if (close(local_fd) == -1) {
                   1154:                error("Couldn't close local file \"%s\": %s", local_path,
                   1155:                    strerror(errno));
1.23      djm      1156:                do_close(conn, handle, handle_len);
1.5       djm      1157:                status = -1;
                   1158:                goto done;
1.1       djm      1159:        }
                   1160:
1.10      djm      1161:        /* Override umask and utimes if asked */
                   1162:        if (pflag)
1.23      djm      1163:                do_fsetstat(conn, handle, handle_len, &a);
1.10      djm      1164:
1.23      djm      1165:        status = do_close(conn, handle, handle_len);
1.5       djm      1166:
                   1167: done:
                   1168:        xfree(handle);
                   1169:        buffer_free(&msg);
1.23      djm      1170:        return(status);
1.1       djm      1171: }