host0 state
[PerlMail.git] / perlmail-accept
1 #! /usr/bin/perl
2
3 #       $Id$
4 # Copyright (C) 2002-2003 Jan Kratochvil <project-PerlMail@jankratochvil.net>
5
6 # This program is free software; you can redistribute it and/or modify
7 # it under the terms of the GNU General Public License as published by
8 # the Free Software Foundation; either version 2 of the License, or
9 # (at your option) any later version.
10
11 # This program is distributed in the hope that it will be useful,
12 # but WITHOUT ANY WARRANTY; without even the implied warranty of
13 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
14 # GNU General Public License for more details.
15
16 # You should have received a copy of the GNU General Public License
17 # along with this program; if not, write to the Free Software
18 # Foundation, Inc., 59 Temple Place, Suite 330, Boston, MA  02111-1307  USA
19
20
21 use vars qw($VERSION);
22 $VERSION=do { my @r=(q$Revision$=~/\d+/g); sprintf "%d.".("%03d"x$#r),@r; };
23 use strict;
24 use warnings;
25
26
27 INIT {
28         require Sys::Syslog;
29         Sys::Syslog::openlog("perlmail","pid","mail");
30         my @syslogging_stack;
31         sub syslogging_on_save
32         {
33                 push @syslogging_stack,$SIG{"__WARN__"},$SIG{"__DIE__" };
34                 $SIG{"__WARN__"}=sub { Sys::Syslog::syslog("warning","WARN: %s",$_[0]); };      # disabled: print STDERR $_[0];
35                 $SIG{"__DIE__" }=sub { Sys::Syslog::syslog("crit"   ,"DIE: %s" ,$_[0]); };
36         }
37         syslogging_on_save();
38         sub syslogging_restore
39         {
40                 $SIG{"__DIE__" }=pop @syslogging_stack;
41                 $SIG{"__WARN__"}=pop @syslogging_stack;
42         }
43         }
44
45
46 use File::Basename;
47 BEGIN {
48         use lib $ENV{"PERLMAIL_BASEDIR"} || File::Basename::dirname($0);
49
50         # FIXME:
51         use lib "/home/lace/lib/perl5/site_perl/5.10.0";
52         use lib "/home/lace/lib64/perl5/site_perl/5.10.0/x86_64-linux-thread-multi";
53
54         use PerlMail::Config;
55         use PerlMail::Lib;
56         }
57
58 use Mail::Audit qw(MAPS);
59 require IO::Handle;
60 use Carp qw(cluck confess);
61 use POSIX qw(WIFEXITED WEXITSTATUS WIFSIGNALED WTERMSIG WIFSTOPPED WSTOPSIG);
62 require POSIX;  # for ceil
63 use User::Utmp;
64 use Getopt::Long;
65 require Mail::Address;
66 require MIME::Words;
67 require Cz::Cstocs;
68 require HTML::Entities;
69 require MIME::Head;
70 require Lingua::EN::Squeeze;
71 require Mail::Mailer;
72 require HTTP::Cookies;
73 require HTTP::Request;
74 require LWP::UserAgent;
75 use URI::Escape 'uri_escape';
76 require WWW::SMS;
77 #require Authen::SASL;  # Sanity check for &Net::SMTP::auth
78 use MIME::Base64;
79 use IPC::Open3;
80 use POSIX ":sys_wait_h";
81
82
83 our($Message,@AuditStored,$DoBell,$Dry);
84 my %alternates_host;    # from @alternates_host
85 my %dnsbl_whitelist;    # from @dnsbl_whitelist
86
87 # from RedHat "procmail-3.22-5"
88 # /i should be only $procmailFROM_DAEMON but how it can hurt to /i all?
89 our $procmailTO_        =qr'^((Original-)?(Resent-)?(To|Cc|Bcc)|(X-Envelope|Apparently(-Resent)?)-To):(.*[^-a-zA-Z0-9_.])?'mio;
90 our $procmailTO         =qr'^((Original-)?(Resent-)?(To|Cc|Bcc)|(X-Envelope|Apparently(-Resent)?)-To):(.*[^a-zA-Z])?'mio;
91 our $procmailFROM_DAEMON=qr'^(Mailing-List:|Precedence:.*(junk|bulk|list)|To: Multiple recipients of |(((Resent-)?(From|Sender)|X-Envelope-From):|>?From )([^>]*[^(.%@a-z0-9])?(Post(ma?(st(e?r)?|n)|office)|(send)?Mail(er)?|daemon|m(mdf|ajordomo)|n?uucp|LIST(SERV|proc)|NETSERV|o(wner|ps)|r(e(quest|sponse)|oot)|b(ounce|bs\.smtp)|echo|mirror|s(erv(ices?|er)|mtp(error)?|ystem)|A(dmin(istrator)?|MMGR|utoanswer))(([^).!:a-z0-9][-_a-z0-9]*)?[%@>        ][^<)]*(\(.*\).*)?)?$([^>]|$))'mio;
92 $procmailFROM_MAILER=qr'^(((Resent-)?(From|Sender)|X-Envelope-From):|>?From )[^>]*\b(Post(ma(st(er)?|n)|office)|(send)?Mail(er)?|daemon|mmdf|n?uucp|ops|r(esponse|oot)|(bbs\.)?smtp(error)?|s(erv(ices?|er)|ystem)|A(dmin(istrator)?|MMGR))(([^).!:a-z0-9][-_a-z0-9]*)?[%@>      ][^<)]*(\(.*\).*)?)?$([^>]|$)'mio;
93 # perl-5.8.0 does not cope w/original FROM_MAILER on the third '?' character
94 # Thus we did '([^>]*[^(.%@a-z0-9])?' -> '[^>]*\b', I hope it is somehow similiar
95 # original FROM_MAILER  =qr'^(((Resent-)?(From|Sender)|X-Envelope-From):|>?From )([^>]*[^(.%@a-z0-9])?(Post(ma(st(er)?|n)|office)|(send)?Mail(er)?|daemon|mmdf|n?uucp|ops|r(esponse|oot)|(bbs\.)?smtp(error)?|s(erv(ices?|er)|ystem)|A(dmin(istrator)?|MMGR))(([^).!:a-z0-9][-_a-z0-9]*)?[%@>    ][^<)]*(\(.*\).*)?)?$([^>]|$)'mio;
96
97 my $opt_mode;
98 my $opt_smstest;        # 1 or $smscount
99 my $opt_idle;
100 my $opt_single;
101
102
103 sub process;
104
105 sub stdin
106 {
107         syslogging_restore();   # This is more a debugging session
108         local $/="\n";
109         my $message="";
110         local $_;
111         while (<>) {
112                 die "Invalid 'From ' line: $_" if $message eq "" && !/^From /;
113                 if (!$opt_single && /^From / && $message) {
114                         process $message;
115                         $message="";
116                         }
117                 $message.=$_;
118                 }
119         process $message if $message;
120         exit 0;
121 }
122
123 # FIXME: separate 'perlmail'-transfer together with perlmail-submit away
124 sub inetd
125 {
126         die "Excessive arguments" if @ARGV;
127
128         IO::Handle::autoflush STDOUT 1;
129
130         while (1) {
131                 local $/="\n";
132                 my $length=<STDIN>;
133                 confess "Unexpected EOF" if !defined $length;
134                 confess "Missing EOL" if $length!~s/\n$//s;
135                 exit 0 if $length eq "BYE";
136                 confess "Unrecognized length: $length" if $length!~/^\d+$/;
137                 my $message;
138                 local $_;
139                 $length==($_=read STDIN,$message,$length) or confess "Got $_ out of required $length bytes";
140                 $length==length $message or confess "False read return ".length($message)." instead of $length";
141                 {
142                         # Do not: local *STDOUT;        # FIXME: fd's inherited by spawned processes are not closed this way!
143                         #         local *STDERR;        # FIXME: fd's inherited by spawned processes are not closed this way!
144                         # as IPC::Open3 and IPC::Open2 will not redirect the output
145                         # and send it to the original socket instead!
146                         local $DoBell=0;
147                         process $message;
148                         if ($DoBell) {
149                                 bell() or warn "Unable to BELL";
150                                 }
151                         }
152                 print STDOUT "1";
153                 }
154         die "NOTREACHED";
155 }
156
157 sub bell
158 {
159         local *BELL;
160         open BELL,">/dev/tty11" or return 0;
161         print BELL "\x07";
162         close BELL or return 0;
163         return 1;
164 }
165
166 sub useridle
167 {
168         return 0 if ! -e "$HOME/away";
169         my %valid_users=map(($_=>1),@ValidUsers);
170         my($idlebest,$linebest);
171         for my $utmp (User::Utmp::getut(),{ "ut_line"=>"psaux" }) {
172                 local $_;
173                 next if defined($_=$utmp->{"ut_type"}) && $_!=User::Utmp::USER_PROCESS();
174                 next if defined($_=$utmp->{"ut_user"}) && !$valid_users{$_};
175                 my $line="/dev/".$utmp->{"ut_line"};
176                 my $atime=(stat $line)[8];
177                 my $what="user \"".($utmp->{"ut_user"} || "<local>")."\", line \"$line\"";
178                 warn "Unable to stat $what" and next if !$atime;
179                 my $idle=time()-$atime;
180                 warn "atime in future for $what" and next if $idle<0;
181                 next if $idle>$IdleMax;
182                 next if defined $idlebest && $idlebest<=$idle;
183                 $idlebest=$idle;
184                 $linebest=$line;
185                 }
186         return !wantarray() ? $idlebest : ($idlebest,$linebest);
187 }
188
189 # return only the very (recursive) first part
190 sub body_first
191 {
192         return $Audit if !$Audit->is_mime();
193         my $first=$Audit;
194         local $_;
195         $first=$_ while $_=$first->parts(0);
196         return $first;
197 }
198
199 sub is_multipart
200 {
201         return 0 if !$Audit->is_mime();
202         return $Audit->is_multipart();
203 }
204
205 sub mimehead
206 {
207 my($part)=@_;
208
209         return $Audit->is_mime() ? $part->head()
210                         : MIME::Head->new([ split "\n",$Audit->head()->as_string() ])
211                         ;
212 }
213
214 sub mimebody
215 {
216 my($part)=@_;
217
218         # be vary cautious here as most of $part methods will encode it!
219         return join "",@{$Audit->body()} if !$Audit->is_mime();
220         my $bodyhandle=$part->bodyhandle();
221         # If MIME is corrupted we don't get bodyhandle() for this part
222         # It may occur when "boundary" is specified by header but no such boundary is found in the body
223         return $bodyhandle->as_string() if $bodyhandle;
224         warn "MIME corrupted, adapting";
225         return $part->body_as_string();
226 }
227
228 sub mime_type
229 {
230 my($part)=@_;
231
232         return $Audit->is_mime() ? $part->effective_type() : mimehead($part)->mime_type();
233 }
234
235 sub body_simple
236 {
237         my $first=body_first();
238         my $r=mimebody($first);
239         my $mime_type=mime_type($first);
240            if ($mime_type eq "text/html") {
241                 # HTML::FormatText just does a useless text layouts
242                 # PerlIO::via::StripHTML probably needs PerlIO input (?)
243                 $r=~s/<[^>]*>//gs;
244                 $r=HTML::Entities::decode($r);
245                 # FIXME: detect charset from <meta> tag: "Content-type: text/html; charset=<???>"
246                 }
247         elsif ($mime_type eq "application/pgp-encrypted"
248                && (my $filename=mimehead($first)->mime_attr("Content-Disposition.filename"))
249                ) {
250                 # first part contains just "Version: 1" as of GnuPG v1.0.4 (GNU/Linux)
251                 $r="pgp($filename)";
252                 }
253         if ((my $charset=mimehead($first)->mime_attr("Content-Type.charset"))) {
254                 my $cstocs=Cz::Cstocs->new($charset,"ascii");
255                 $r=&$cstocs($r) if $cstocs;     # charset may be unknown
256                 }
257         return $r;
258 }
259
260 sub parts_linear
261 {
262 my($part)=@_;
263
264         return $Audit if !$part && !$Audit->is_mime();
265         $part||=$Audit;
266         # don't use '!$part->parts()' as even 0-parts-multiparts are still multiparts
267         return $part if $part->bodyhandle();
268         return map { (parts_linear($_)); } $part->parts();
269 }
270
271 sub smsbuild
272 {
273 my($smsi,$smscount)=@_;
274
275         return "$smsi/$smscount:" if $smscount>1;
276         return "";
277 }
278
279 sub smslens
280 {
281 my($ignorenewmail,$smscount,%args)=@_;
282
283         return map({
284                         my $l=160;
285                         if (!$ignorenewmail) {  # send by mail
286                                 $l-=length("Z emailu FIXME SMSmailError: ");
287                                 $l-=length(smsbuild($_,$smscount));
288                                 }
289                         else {  # send by web
290                                 $l-=6;  # 154 is the max length before split; why?
291                                 }
292                         $l;
293                         } (0..$smscount-1));
294 }
295
296 sub smssend_web
297 {
298 my($squeezed,$smscount,@lens)=@_;
299
300         $smscount=POSIX::ceil($smscount/5);
301         for my $smsi (0..$smscount-1) {
302                 my $len=$lens[$smsi];
303                 $squeezed=~/^.{0,$len}/s;
304                 my $frag=$&;
305                 $squeezed=$';
306                 return 0 if 3!=@SMSwebRcpt;
307                 local *F;
308                 open F,"$HOME/priv/WWW-SMS-$SMSwebRcpt_username.pwd" or return 0;
309                 my $pwd=<F>;
310                 chomp $pwd;
311                 close F;
312                 my $sms=WWW::SMS->new(@SMSwebRcpt,$frag,"username"=>$SMSwebRcpt_username,"passwd"=>$pwd);
313                 for ($sms->gateways("sorted"=>"reliability")) {
314                         last if $sms->send($_);
315                         Sys::Syslog::syslog("warning","Web SMS send failed: %s",$WWW::SMS::Error);
316                         my $void=$WWW::SMS::Error;      # Prevent: Name "WWW::SMS::Error" used only once
317                         }
318                 }
319         return 1;
320 }
321
322 sub smssend_mail
323 {
324 my($squeezed,$smscount,@lens)=@_;
325
326         return 0;
327 }
328
329 sub smssend
330 {
331 my($ignorenewmail,$smscount,%args)=@_;
332
333         my $text=PerlMail::Config::audit_sms(
334                         "subject"=>unmime($Audit->subject()),
335                         "from"=>[ Mail::Address->parse(unmime($Audit->from())) ],
336                         "body"=>substr(body_simple(),0,$MaxBodySMS*(1+0.25*$smscount)),
337                         %args);
338         my $texthead="";
339         ($texthead,$text)=@$text if ref $text;
340         do { print "$texthead\n$text\n"; return; } if $opt_smstest;
341         my @lens=smslens($ignorenewmail,$smscount,%args);
342         my $maxlen=0;
343         $maxlen+=$_ for (@lens);
344         my $squeezed;
345         for my $squeeze (@sms_squeezes) {
346                 local $_;
347                  Lingua::EN::Squeeze::SqueezeControl($_)    if defined ($_=$squeeze->{"SqueezeControl"});
348                 $Lingua::EN::Squeeze::SQZ_OPTIMIZE_LEVEL or 1;  # prevent: Name "$_" used only once: possible typo
349                 $Lingua::EN::Squeeze::SQZ_OPTIMIZE_LEVEL=$_ if defined ($_=$squeeze->{"SQZ_OPTIMIZE_LEVEL"});
350                 $squeezed=Lingua::EN::Squeeze::SqueezeText($text);
351                 chomp $squeezed;
352                 last if $maxlen>=length($texthead.$squeezed);
353                 }
354         $squeezed=substr $texthead.$squeezed,0,$maxlen; # strip if we passed thru last for() above
355         my $recalclen=0;
356         for ($smscount=0;$recalclen<length $squeezed;$smscount++) {
357                 $recalclen+=$lens[$smscount];
358                 }
359         my $func=($ignorenewmail ? \&smssend_web : \&smssend_mail);
360         &$func($squeezed,$smscount,@lens);
361 }
362
363 sub smssend_tryall
364 {
365 my($ignorenewmail,@args)=@_;
366
367         return if !$opt_smstest && !$opt_idle && defined useridle();
368         local $_;
369         return $_ if                     $_=smssend(1,@args);   # web
370         return $_ if !$ignorenewmail && ($_=smssend(0,@args));  # mail
371         warn "Unable to SMSsend the mail";
372         return 0;
373 }
374
375 sub cut
376 {
377         local $_=$_[0];
378         return "<???>" if !defined($_) || /^\s*$/s;
379         s/^\s*//s;
380         s/\s*$//s;
381         return $_ if length($_)<128;
382         return substr($_,0,128)."...";
383 }
384
385 our $profile_eval_depth=0;
386 # ($name || @$name)
387 sub profile_eval
388 {
389 my($name)=@_;
390
391         die "Nesting profile: $name" if 0x10<=(local $profile_eval_depth=$profile_eval_depth+1);
392         return @$name if ref $name;
393         if (!exists $audit_profile{$name}) {
394                 cluck "Profile not found: $name";
395                 return "did";
396         }
397         my @this=@{$audit_profile{$name}};
398         return (profile_eval($'),@this[1..$#this]) if $this[0] && $this[0]=~/^=/;
399         return @this;
400 }
401
402 sub address_show
403 {
404 my($text)=@_;
405
406         return join(",",map({ $_->name() or $_->address(); } Mail::Address->parse($text)));
407 }
408
409 sub unmime
410 {
411 my($text)=@_;
412
413         return join "",map({
414                         my $cstocs;
415                         for (${$_}[1],"iso-8859-2") {
416                                 last if $_ && ($cstocs=Cz::Cstocs->new($_,"ascii"));
417                                 }
418                         &$cstocs(${$_}[0]);
419                         } MIME::Words::decode_mimewords($text));
420 }
421
422 # $folder: "$folder; comment"
423 # $profile as profile_eval($name)
424 sub store
425 {
426 my($folder,$profile,%args)=@_;
427
428         $profile=$store_profile if !$profile;
429         my %do=map({ (!/=/ ? ($_=>1) : ($`=>$')); } profile_eval($profile));
430         Sys::Syslog::syslog("info","%s%s%s: %s: %s",
431                                         (!$Dry ? "" : "--dry: "),
432                                         (!$store_ignore ? "" : "IGNORED[$store_ignore]: "),
433                                         map({ cut($_); } $folder,address_show(unmime($Audit->from())),unmime($Audit->subject())),
434                                         )
435                         if $do{"syslog"} || $Dry;
436         $folder=~s/;.*$//s;
437         $folder="$Mail/".$' if $folder=~/^=/;
438         push @AuditStored,$folder if $do{"did"};
439         return if $store_ignore || $Dry;
440         $DoBell++ if $do{"bell"};
441         write_message($folder) or die;
442         smssend_tryall $store_ignorenewmail,$do{"sms"},%args if $do{"sms"};
443 }
444
445 our $did_last=0;
446
447 # no &$funcref=>did smth in this block
448 # &$funcref,@funcargs
449 sub did
450 {
451 my($funcref,@funcargs)=@_;
452
453         return @AuditStored!=$did_last if !$funcref;
454         local $did_last=@AuditStored;
455         &$funcref(@funcargs);
456         return @AuditStored!=$did_last;
457 }
458
459 # Never use Mail::Audit->store() as it will reformat MIME bodies and possibly corrupt OpenPGP!
460 sub write_message
461 {
462 my($folder)=@_;
463
464         return 1 if $Dry;       # simulate OK
465         local *F;
466         open F,">>$folder" or do { warn "Append \"$folder\": $!"; return 0; };
467         {
468                 local $_;
469                 ($_=$Audit->_audit_get_lock(\*F,$folder)) and do { warn "Lock \"$folder\": $!"; last; };
470                 seek F,0,IO::Handle::SEEK_END or do { warn "Seek-end \"$folder\": $!"; last; };
471                 # FIXME: Check for '^From ' to not to rely on our network peer
472                 print F $Message or do { warn "Write to \"$folder\": $!"; last; };
473                 do { print F "\n"; warn "Missing trailing newline, fixed"; } if $Message!~/\n$/s;
474                 close F or do { warn "Close \"$folder\""; last; };
475                 return 1;       # OK
476                 }
477         warn "MAIL DROPPED for folder: $folder";
478         close F;
479         return 0;       # failed
480 }
481
482 sub process
483 {
484 my($message)=@_;
485
486         local $_=$_;
487         my $save_=$_;
488         $message=~s/(\n)(From )/$1>$2/sg;
489         local $Message=$message;
490         # Cannot call 'local' for our-imported variable:
491         my $Audit_save=$Audit;
492         $Audit=Mail::Audit->new(
493                         "emergency"=>"$Mail/emergency",
494                         "data"=>[map("$_\n",split("\n",$message))],
495                         "log"=>"$HOME/.perlmail.log",
496                         "loglevel"=>99,
497                         );
498         local @AuditStored=();
499         do { smssend 0,$opt_smstest; return; } if $opt_smstest;
500         write_message("$Mail/input") or die;
501         PerlMail::Config::audit();
502         warn 'Corrupted $_, repaired' if defined($save_)!=defined($_) || (defined($_) && $save_ ne $_);
503         # restore:
504         $Audit=$Audit_save;
505 }
506
507 # utility functions:
508
509 sub _spamchildcode
510 {
511 my($err,$isspam)=@_;
512
513         $err=$? if !defined $err;
514         return undef()    if !WIFEXITED($?);
515         return undef()    if  WIFSIGNALED($?);
516         return undef()    if  WIFSTOPPED($?);
517         return 0 if !WEXITSTATUS($?);
518         return $isspam||1 if 1==WEXITSTATUS($?);        # isspam
519         cluck "Possible FIXME or your system is broken (WEXITSTATUS==".WEXITSTATUS($?).")";
520         return 0;       # simulate as not spam
521 }
522
523 # return: true (error-message or "1") if is spam
524 sub spamassassin
525 {
526 my($cmd)=@_;
527
528         #$cmd||="nice spamassassin --exit-code 1 --mbox";
529         $cmd||="spamc -c -s 50000000";
530         # spamassassin has the specified exit code if IS spam, code 0 if NOT spam
531         # See &_spamchildcode for the code 1.
532         local *CHILD;
533         local $SIG{"PIPE"}=sub { warn "spamassassin gave me SIGPIPE: broken pipe"; };
534         # prevent Razor2's: Can't call method "log" on unblessed reference at Razor2/Client/Agent.pm line 212.
535         local $ENV{"HOME"}=$HOME;
536         # 2>/dev/null to prevent error messages to corrupt inetd() output of perlmail-accept(1)
537         open CHILD,"|$cmd >/dev/null 2>/dev/null"
538                         or return 0;
539         print CHILD $Message;
540         close CHILD;
541         return _spamchildcode;
542 }
543
544 # NOTE: returns undef() if !wantarray and the first header is unrecognized
545 # Returns always HOST:IP pair(s).
546 sub Received_for
547 {
548         my @r=();
549         for my $hdr ($Audit->head->get("Received")) {
550                 my($for)=($hdr=~/\bfor\s+\<?(\S+)\>?\b/);
551                 return $for if !wantarray();
552                 push @r,$for if $for;
553                 my($from,$fromaddr)=($hdr=~/\bfrom\s+(?:(\S+)\b.*?)??\[((?:\d{1,3}\.){3}\d{1,3})\]/);
554                 $from=$fromaddr if !defined $from;
555                 push @r,"$from:$fromaddr" if $from;
556                 }
557         return @r;
558 }
559
560 # Extended Mail::Audit::MAPS
561 # $domain,$full,[$timeout]
562 # Returns false if valid, code if spam detected.
563 sub dnsbl
564 {
565 my($domain,$full,$timeout)=@_;
566
567         $timeout||=2;   # sec
568         $Mail::Audit::MAPS::host=$domain;
569         for my $host (Received_for()) {
570                 next if $host!~/^([^:@]*):/;
571                 my $ip=$';
572                 # $1 is DNS name, $ip is IP address
573                 next if $alternates_host{$1};   # leave only foreign hosts
574                 next if $dnsbl_whitelist{$ip};
575
576 #               FIXME: Faking
577 #               {
578 #                       package My::Audit::Faked;
579 #                       sub received { return @{$_[0]->{"received"}}; }
580 #                       }
581 #               my $self_faked=Mail::Audit->new();
582 #               $self_faked->{"received"}=["[$ip]"];
583 #               bless $self_faked,"My::Audit::Faked";
584 #               my $code=Mail::Audit::rblcheck($self_faked,$timeout);
585                 my $code=$Audit->rblcheck($timeout);
586
587                 next if !$code;
588                 # Some 0.0.0.0 etc. found for <linux-kernel@>, see: &Mail::Audit::MAPS::_checkit
589                 # Do not: $code!='1 Invalid IP address '
590                 # as it causes warn.
591                 return $code if $code ne '1 Invalid IP address ';
592                 return if !$full;
593                 }
594 }
595
596 # Returns true if IS virus; the message will contain the virus name
597 sub clamscan
598 {
599 my($cmd)=@_;
600
601         $cmd||='nice clamscan --no-summary -';
602         # clamscan has exit code 1 if IS virus , code 0 if NOT virus
603         # Do not use IPC::Open2 as it would try to use our STDERR which is not valid by: local *STDERR;
604         local(*WR,*RD,*ERR);
605         local $SIG{"PIPE"}=sub { warn "clamscan '$cmd' gave me SIGPIPE: broken pipe"; };
606         my $pid=open3(\*WR,\*RD,\*ERR,$cmd.' 2>&1')
607                         or do { cluck "IPC::Open3 $cmd: $!"; return 0; };
608         print WR $Message;
609         close WR or do { cluck "close WR of $cmd: $!"; return 0; };
610         my $status=do { local $/=undef(); <RD>; };
611         close RD or do { cluck "close RD of $cmd: $!"; return 0; };
612         # Do not: $status.=do { local $/=undef(); <ERR>; };
613         #         close ERR or do { cluck "close ERR of $cmd: $!"; return 0; };
614         # (FIXME) as it causes: Use of uninitialized value in <HANDLE>
615         # waitpid fills $? for: &_spamchildcode
616         local $SIG{"ALRM"}=sub { warn "Timeout $clamscan_waitpid_timeout sec waiting for child $cmd"; };
617         alarm $clamscan_waitpid_timeout;
618         # Do not: WNOHANG
619         # as it would not be enough for clamscan(1) even after all close-s above.
620         my $pidcheck=waitpid($pid,0);
621         alarm 0;
622         my $err=$?;
623         $pidcheck && $pidcheck==$pid
624                         or do { cluck "waitpid for $cmd returned $pidcheck!=$pid"; return 0; };
625         $status=~s/^stdin: //mg;
626         # Prevent: LibClamAV Warning: PGP encoded attachment not scanned
627         $status=~s/^.*\bwarning:.*\n//img;
628         $status=~s/\n$//;
629         return $status if $status ne "OK" && $status;
630         return _spamchildcode $err,$status;
631 }
632
633 sub muttrc_aliases
634 {
635         my %r=();
636         for (muttrc()) {
637                 next if !(my $key=(/^alias\s+(\S+)\s+/)[0]);
638                 for my $addrobj (Mail::Address->parse($')) {
639                         my $addr=$addrobj->address();
640                         my $ref=\$r{"\L$addr"};
641                         $$ref=$key if !$$ref;   # use always the first occurence to prefer nicks
642                         }
643                 }
644         return %r;
645 }
646
647 # FIXME: host may get multiple recipients and thus not showing "for <...>"
648 # FIXME: muttrc_get("from") is too strict
649 sub store_muttrc_alternates
650 {
651 my($prefix,$profile)=@_;
652
653         my $alternates=muttrc_get("alternates") or return;
654         my $alternatesre=qr/$alternates/si;
655         my $From=muttrc_get("from") or return;
656         my $Fromre=qr/^\Q$From\E$/si;
657         my $Fromobj=parseone $From or return;
658         warn "'From' \"$From\" not matched by 'alternates': $alternatesre"
659                         if $From!~/$alternates/si;
660         for my $for (reverse Received_for()) {
661                 $for=~s/:.*$//; # strip IP address here
662                 my $forobj=parseone $for;
663                 if ($forobj && $forobj->host()) {
664                         # it is 'for' our primary address
665                         next if lc($forobj->host()) eq lc($Fromobj->host());    # or 'return'? shouldn't matter
666                         }
667                 next if !$alternates_host{lc $for} && $for!~/$alternatesre/si;
668                 store "$prefix\L$for",($profile || []);
669                 return;
670                 }
671 }
672
673 # $header: ref CODE
674 # $header: !ref => $Audit->get($header)
675 # $maybeaddress: qr/regex/i
676 # $maybeaddress: "string"
677 # $maybeaddress: "<Regexp:regex>"       # hack :-(
678 # $maybeaddress: "<user@host>"
679 # $maybeaddress: "<user@>"
680 # $maybeaddress: "<@host>"
681 sub _headercore
682 {
683 my($re,$justone,$header,$maybeaddress)=@_;
684
685         if (ref $header) {
686                 $header=join(",",&$header());
687                 }
688         else {
689                 $header=$Audit->get($header);
690                 }
691         return 0 if !$header;
692         return $header=~/$maybeaddress/i if "Regexp" eq ref $maybeaddress;
693         return $header=~/$re/i if !defined(my $want=($maybeaddress=~/^\<(.*)\>$/)[0]);
694         my @parsed=Mail::Address->parse($header);
695         warn "'mailto:' forbidden in pattern: $want" if $want=~/^\Qmailto:\E/;
696         return 0 if $justone && 1!=@parsed;
697         return grep {
698                            if ($want=~/^Regexp:/)
699                                 { $_->address()=~/$'/i; }
700                         elsif ($want=~/\@$/)
701                                 { $_->user()   =~/^(?:\Qmailto:\E)?\Q$`\E/i; }
702                         elsif ($want=~/^\@/)
703                                 { $_->host()   =~/^\Q$'\E/i; }
704                         else
705                                 { $_->address()=~/^(?:\Qmailto:\E)?\Q$want\E/i; }
706                         } @parsed;
707 }
708
709 sub headerhas
710 {
711 my($header,$substr)=@_;
712
713         return _headercore(qr/\Q$substr\E/i,0,$header,$substr);
714 }
715
716 sub headeris
717 {
718 my($header,$string)=@_;
719
720         cluck if !defined $string;
721         return _headercore(qr/\Q$string\E/i,1,$header,$string);
722 }
723
724 # $header,%$map
725 sub header_remap
726 {
727 my($header,$map)=@_;
728
729         my $text=$Audit->get($header);
730         my $orig=$text;
731         while (my($from,$to)=each(%$map)) {
732                 $text=~s/\b\Q$from\E\b/$to/gsi;
733                 }
734         return if $text eq $orig;
735         $Audit->put_header("X-PerlMail-header_remap-$header",$orig);
736         $Audit->replace_header($header,$text);
737 }
738
739 # LMTP engine:
740 use Net::Cmd qw(CMD_OK CMD_MORE);
741 {
742         package My::Net::SMTP::LMTP;
743         require Net::SMTP;
744         our @ISA=qw(Net::SMTP);
745         use Net::SMTP;
746         use Net::Cmd qw(CMD_OK);
747         use Carp qw(confess cluck);
748
749         # Do not: sub _HELO
750         # as it would not set {'net_smtp_esmtp'}
751         sub _EHLO { shift->command("LHLO", @_)->response()  == CMD_OK }
752
753         sub clucked
754         {
755         my($self,$func,@args)=@_;
756
757                 do { return $_ if defined $_; } for $self->$func(@args);
758                 cluck $func;
759                 return;
760         }
761 }
762
763
764 sub lmtp_deliver
765 {
766 my($admin_user,$admin_pwd,$user_from,$user_to)=@_;
767
768         my $lmtp=My::Net::SMTP::LMTP->clucked("new","localhost","Port"=>"lmtp",
769 #                       "Debug"=>1,
770                         ) or return;
771         bless $lmtp,"My::Net::SMTP::LMTP";
772 # Prevent:
773 # due to:
774 #       $lmtp->auth(Authen::SASL->new(
775 #                       "mechanism"=>"PLAIN",
776 #                       "callback"=>{
777 #                                       "user"=>$admin_user,
778 #                                       "pass"=>$admin_pwd,
779 #                                       # Prevent: "authname"=>$admin_user
780 #                                       # as it causes: DIE: Unknown callback: 'authname'. (user|auth|language|pass)
781 #                                       }));
782         # FIXME: Authentication hack:
783         $lmtp->command("AUTH PLAIN")->response()==CMD_MORE
784                         or do { cluck "auth announce"; return; };
785         $lmtp->clucked("command",encode_base64($user_from."\x00".$admin_user."\x00".$admin_pwd)) or return;
786         $lmtp->clucked("mail",$user_from) or return;
787         $lmtp->clucked("to",$user_to) or return;
788         $lmtp->clucked("data"); # Do not: or return;
789         # Prevent: 554 5.6.0 Message contains invalid header
790         (my $data=$Message)=~s/\AFrom .*\r?\n//;
791         $lmtp->clucked("datasend",$data) or return;
792         $lmtp->clucked("dataend") or return;
793         $lmtp->clucked("quit") or return;
794 }
795
796
797 # MAIN
798
799 $Getopt::Long::ignorecase=0;
800 die "GetOptions error" if !Getopt::Long::GetOptions(
801                   "inetd"    ,sub { $opt_mode=\&inetd; },
802                   "stdin"    ,sub { $opt_mode=\&stdin; },
803                   "single!"  ,\$opt_single,
804                   "dry"      ,\$Dry,
805                   "smstest:s",sub { $opt_mode=\&stdin; $opt_smstest=($_[1] || 1); },
806                   "idle!"    ,\$opt_idle,
807                   "idletest" ,sub { syslogging_restore(); print((defined($_=useridle()) ? $_ : "<undef>")."\n"); exit 0; },
808                   "muttrc"   ,sub { syslogging_restore(); print scalar muttrc(); exit 0; },
809                 );
810 # "Excessive arguments" checked in &inetd
811 die "Missing mode" if !$opt_mode;
812
813 %alternates_host=map((lc($_)=>1),@alternates_host);
814 %dnsbl_whitelist=map((   $_ =>1),@dnsbl_whitelist);
815
816 &$opt_mode();
817 die "NOTREACHED";