3
#define IRP_MJ_CREATE 0x00
4
#define IRP_MJ_CLOSE 0x02
5
#define IRP_MJ_READ 0x03
6
#define IRP_MJ_WRITE 0x04
7
#define IRP_MJ_DEVICE_CONTROL 0x0e
9
extern char hostname[16];
10
extern DEVICE_FNS serial_fns;
11
extern DEVICE_FNS printer_fns;
13
static VCHANNEL *rdpdr_channel;
16
rdpdr_send_connect(void)
18
uint8 magic[4] = "rDCC";
21
s = channel_init(rdpdr_channel, 12);
22
out_uint8a(s, magic, 4);
23
out_uint16_le(s, 1); /* unknown */
25
out_uint32_be(s, 0x815ed39d); /* IP address (use 127.0.0.1) 0x815ed39d */
27
channel_send(s, rdpdr_channel);
33
uint8 magic[4] = "rDNC";
34
uint32 hostlen = (strlen(hostname) + 1) * 2;
37
s = channel_init(rdpdr_channel, 16 + hostlen);
38
out_uint8a(s, magic, 4);
39
out_uint16_le(s, 0x63); /* unknown */
40
out_uint16_le(s, 0x72);
42
out_uint32_le(s, hostlen);
43
rdp_out_unistr(s, hostname, hostlen - 2);
45
channel_send(s, rdpdr_channel);
49
rdpdr_send_available(void)
51
uint8 magic[4] = "rDAD";
52
char *driver = "Digital turbo PrintServer 20"; /* Fairly generic PostScript driver */
53
char *printer = "PostScript";
54
uint32 driverlen = (strlen(driver) + 1) * 2;
55
uint32 printerlen = (strlen(printer) + 1) * 2;
58
s = channel_init(rdpdr_channel, 8 + 20);
59
out_uint8a(s, magic, 4);
60
out_uint32_le(s, 1); /* Number of devices */
63
out_uint32_le(s, 0x1); /* Device type 0x1 - serial */
64
out_uint32_le(s, 0); /* Handle */
65
out_uint8p(s, "COM2", 4);
66
out_uint8s(s, 4); /* Pad to 8 */
70
out_uint32_le(s, 0x2); /* Device type 0x2 - parallel */
72
out_uint8p(s, "LPT2", 4);
77
out_uint32_le(s, 0x4); /* Device type 0x4 - printer */
79
out_uint8p(s, "PRN1", 4);
81
out_uint32_le(s, 24 + driverlen + printerlen); /* length of extra info */
82
out_uint32_le(s, 2); /* unknown */
83
out_uint8s(s, 8); /* unknown */
84
out_uint32_le(s, driverlen); /* length of driver name */
85
out_uint32_le(s, printerlen); /* length of printer name */
86
out_uint32(s, 0); /* unknown */
87
rdp_out_unistr(s, driver, driverlen - 2);
88
rdp_out_unistr(s, printer, printerlen - 2);
91
out_uint32_le(s, 0x8); /* Device type 0x8 - disk */
93
out_uint8p(s, "Z:", 2);
98
out_uint32_le(s, 0x20); /* Device type 0x20 - smart card */
100
out_uint8p(s, "SCARD", 5);
106
channel_send(s, rdpdr_channel);
110
rdpdr_send_completion(uint32 device, uint32 id, uint32 status, uint32 result, uint8 * buffer,
113
uint8 magic[4] = "rDCI";
116
s = channel_init(rdpdr_channel, 20 + length);
117
out_uint8a(s, magic, 4);
118
out_uint32_le(s, device);
119
out_uint32_le(s, id);
120
out_uint32_le(s, status);
121
out_uint32_le(s, result);
122
out_uint8p(s, buffer, length);
124
hexdump(s->channel_hdr + 8, s->end - s->channel_hdr - 8);
125
channel_send(s, rdpdr_channel);
129
rdpdr_process_irp(STREAM s)
131
uint32 device, file, id, major, minor;
132
NTSTATUS status = STATUS_INVALID_DEVICE_REQUEST;
133
uint32 result = 0, length, request, bytes_in, bytes_out;
135
uint32 buffer_len = 1;
139
in_uint32_le(s, device);
140
in_uint32_le(s, file);
142
in_uint32_le(s, major);
143
in_uint32_le(s, minor);
145
memset(buffer, 0, sizeof(buffer));
147
/* FIXME: this should probably be a more dynamic mapping */
155
error("IRP for bad device %ld\n", device);
163
status = fns->create(&result);
168
status = fns->close(file);
174
if (length > sizeof(buffer))
175
length = sizeof(buffer);
176
status = fns->read(file, buffer, length, &result);
183
status = fns->write(file, s->p, length, &result);
186
case IRP_MJ_DEVICE_CONTROL:
187
if (fns->device_control)
189
in_uint32_le(s, bytes_out);
190
in_uint32_le(s, bytes_in);
191
in_uint32_le(s, request);
193
out.data = out.p = buffer;
194
out.size = sizeof(buffer);
195
status = fns->device_control(file, request, s, &out);
196
result = buffer_len = out.p - out.data;
201
unimpl("IRP major=0x%x minor=0x%x\n", major, minor);
205
rdpdr_send_completion(device, id, status, result, buffer, buffer_len);
209
rdpdr_process(STREAM s)
214
printf("rdpdr_process\n");
215
hexdump(s->p, s->end - s->p);
216
in_uint8p(s, magic, 4);
218
if ((magic[0] == 'r') && (magic[1] == 'D'))
220
if ((magic[2] == 'R') && (magic[3] == 'I'))
222
rdpdr_process_irp(s);
225
if ((magic[2] == 'n') && (magic[3] == 'I'))
227
rdpdr_send_connect();
229
rdpdr_send_available();
232
else if ((magic[2] == 'C') && (magic[3] == 'C'))
234
/* connect from server */
237
else if ((magic[2] == 'r') && (magic[3] == 'd'))
239
/* connect to a specific resource */
240
in_uint32(s, handle);
241
printf("Server connected to resource %d\n", handle);
245
unimpl("RDPDR packet type %c%c%c%c\n", magic[0], magic[1], magic[2], magic[3]);
252
channel_register("rdpdr", CHANNEL_OPTION_INITIALIZED | CHANNEL_OPTION_COMPRESS_RDP,
254
return (rdpdr_channel != NULL);