Do not make NtSecureConnectPort fail: for now direct the call to NtConnectPort.
[reactos.git] / reactos / ntoskrnl / lpc / connect.c
index fe525e3..9a35d70 100644 (file)
@@ -1,4 +1,4 @@
-/* $Id: connect.c,v 1.1 2000/06/04 17:27:39 ea Exp $
+/* $Id: connect.c,v 1.23 2004/01/22 21:56:48 ea Exp $
  * 
  * COPYRIGHT:       See COPYING in the top level directory
  * PROJECT:         ReactOS kernel
 
 /* INCLUDES *****************************************************************/
 
-#include <ddk/ntddk.h>
+#define NTOS_MODE_KERNEL
+#include <ntos.h>
 #include <internal/ob.h>
-#include <string.h>
-#include <internal/string.h>
 #include <internal/port.h>
 #include <internal/dbg.h>
+#include <internal/pool.h>
+#include <internal/safe.h>
+#include <internal/mm.h>
 
 #define NDEBUG
 #include <internal/debug.h>
 
+/* GLOBALS *******************************************************************/
+
+#define TAG_LPC_CONNECT_MESSAGE   TAG('L', 'P', 'C', 'C')
+
+/* FUNCTIONS *****************************************************************/
+
+NTSTATUS STDCALL
+EiConnectPort(IN PEPORT* ConnectedPort,
+             IN PEPORT NamedPort,
+             IN PSECTION_OBJECT Section,
+             IN LARGE_INTEGER SectionOffset,
+             IN ULONG ViewSize,
+             OUT PVOID* ClientSendViewBase,
+             OUT PVOID* ServerSendViewBase,
+             OUT PULONG ReceiveViewSize,
+             OUT PVOID* ReceiveViewBase,
+             OUT PULONG MaximumMessageSize,
+             IN OUT PVOID ConnectData,
+             IN OUT PULONG ConnectDataLength)
+{
+  PEPORT_CONNECT_REQUEST_MESSAGE RequestMessage;
+  ULONG RequestConnectDataLength;
+  PEPORT OurPort;
+  PQUEUEDMESSAGE Reply;
+  PEPORT_CONNECT_REPLY_MESSAGE CReply;
+  NTSTATUS Status;
+  KIRQL oldIrql;
+
+  if (ConnectDataLength == NULL)
+    {
+      RequestConnectDataLength = 0;
+    }
+  else
+    {
+      RequestConnectDataLength = *ConnectDataLength;
+    }
+
+  /*
+   * Create a port to represent our side of the connection
+   */
+  Status = ObCreateObject (KernelMode,
+                          ExPortType,
+                          NULL,
+                          KernelMode,
+                          NULL,
+                          sizeof(EPORT),
+                          0,
+                          0,
+                          (PVOID*)&OurPort);
+  if (!NT_SUCCESS(Status))
+    {
+      return (Status);
+    }
+  NiInitializePort(OurPort);
+
+  /*
+   * Allocate a request message.
+   */
+  RequestMessage = ExAllocatePool(NonPagedPool, 
+                                 sizeof(EPORT_CONNECT_REQUEST_MESSAGE) + 
+                                 RequestConnectDataLength);
+  if (RequestMessage == NULL)
+    {
+      ObDereferenceObject(OurPort);
+      return(STATUS_NO_MEMORY);
+    }
+
+  /*
+   * Initialize the request message.
+   */
+  RequestMessage->MessageHeader.DataSize = 
+    sizeof(EPORT_CONNECT_REQUEST_MESSAGE) + RequestConnectDataLength -
+    sizeof(LPC_MESSAGE);
+  RequestMessage->MessageHeader.MessageSize = 
+    sizeof(EPORT_CONNECT_REQUEST_MESSAGE) + RequestConnectDataLength;
+  DPRINT("RequestMessageSize %d\n",
+        RequestMessage->MessageHeader.MessageSize);
+  RequestMessage->MessageHeader.SectionSize = 0;
+  RequestMessage->ConnectingProcess = PsGetCurrentProcess();
+  ObReferenceObjectByPointer(RequestMessage->ConnectingProcess,
+                            PROCESS_VM_OPERATION,
+                            NULL,
+                            KernelMode);
+  RequestMessage->SendSectionObject = (struct _SECTION_OBJECT*)Section;
+  RequestMessage->SendSectionOffset = SectionOffset;
+  RequestMessage->SendViewSize = ViewSize;
+  RequestMessage->ConnectDataLength = RequestConnectDataLength;
+  if (RequestConnectDataLength > 0)
+    {
+      memcpy(RequestMessage->ConnectData, ConnectData,
+            RequestConnectDataLength);
+    }
+  
+  /*
+   * Queue the message to the named port
+   */
+  EiReplyOrRequestPort(NamedPort,
+                      &RequestMessage->MessageHeader,
+                      LPC_CONNECTION_REQUEST,
+                      OurPort);
+  KeReleaseSemaphore(&NamedPort->Semaphore, IO_NO_INCREMENT, 1, FALSE);
+  ExFreePool(RequestMessage);
+  
+  /*
+   * Wait for them to accept our connection
+   */
+  KeWaitForSingleObject(&OurPort->Semaphore,
+                       UserRequest,
+                       UserMode,
+                       FALSE,
+                       NULL);
+
+  /* 
+   * Dequeue the response
+   */
+  KeAcquireSpinLock (&OurPort->Lock, &oldIrql);
+  Reply = EiDequeueMessagePort (OurPort);
+  KeReleaseSpinLock (&OurPort->Lock, oldIrql);
+  CReply = (PEPORT_CONNECT_REPLY_MESSAGE)&Reply->Message;
+
+  /*
+   * Do some initial cleanup.
+   */
+  ObDereferenceObject(PsGetCurrentProcess());
+
+  /*
+   * Check for connection refusal.
+   */
+  if (CReply->MessageHeader.MessageType == LPC_CONNECTION_REFUSED)
+    {
+      ObDereferenceObject(OurPort);
+      ExFreePool(Reply);
+      /*
+       * FIXME: Check what NT does here. Giving the user data back on
+       * connect failure sounds reasonable; it probably wouldn't break
+       * anything anyway.
+       */
+      if (ConnectDataLength != NULL)
+       {
+         *ConnectDataLength = CReply->ConnectDataLength;
+         memcpy(ConnectData, CReply->ConnectData, CReply->ConnectDataLength);
+       }
+      return(STATUS_PORT_CONNECTION_REFUSED);
+    }
+
+  /*
+   * Otherwise we are connected. Copy data back to the client.
+   */
+  *ServerSendViewBase = CReply->SendServerViewBase;
+  *ReceiveViewSize = CReply->ReceiveClientViewSize;
+  *ReceiveViewBase = CReply->ReceiveClientViewBase;
+  *MaximumMessageSize = CReply->MaximumMessageSize;
+  if (ConnectDataLength != NULL)
+    {
+      *ConnectDataLength = CReply->ConnectDataLength;
+      memcpy(ConnectData, CReply->ConnectData, CReply->ConnectDataLength);
+    }
+
+  /*
+   * Create our view of the send section object.
+   */
+  if (Section != NULL)
+    {
+      *ClientSendViewBase = 0;
+      Status = MmMapViewOfSection(Section,
+                                 PsGetCurrentProcess(),
+                                 ClientSendViewBase,
+                                 0,
+                                 ViewSize,
+                                 &SectionOffset,
+                                 &ViewSize,
+                                 ViewUnmap,
+                                 0 /* MEM_TOP_DOWN? */,
+                                 PAGE_READWRITE);
+      if (!NT_SUCCESS(Status))
+       {
+         /* FIXME: Cleanup here. */
+         return(Status);
+       }
+    }
+
+  /*
+   * Do the final initialization of our port.
+   */
+  OurPort->State = EPORT_CONNECTED_CLIENT;
+
+  /*
+   * Cleanup.
+   */
+  ExFreePool(Reply);
+  *ConnectedPort = OurPort;
+  return(STATUS_SUCCESS);
+}
 
 /**********************************************************************
  * NAME                                                        EXPORTED
  * 
  * RETURN VALUE
  * 
+ * @unimplemented
  */
-NTSTATUS
-STDCALL
-NtConnectPort (
-       PHANDLE                         ConnectedPort,
-       PUNICODE_STRING                 PortName,
-       PSECURITY_QUALITY_OF_SERVICE    Qos,
-       PLPC_SECTION_WRITE              WriteMap,
-       PLPC_SECTION_READ               ReadMap,
-       PULONG                          MaxMessageSize,
-       PVOID                           ConnectInfo,
-       PULONG                          UserConnectInfoLength
-       )
+NTSTATUS STDCALL
+NtConnectPort (PHANDLE                         UnsafeConnectedPortHandle,
+              PUNICODE_STRING                  PortName,
+              PSECURITY_QUALITY_OF_SERVICE     Qos,
+              PLPC_SECTION_WRITE               UnsafeWriteMap,
+              PLPC_SECTION_READ                UnsafeReadMap,
+              PULONG                           UnsafeMaximumMessageSize,
+              PVOID                            UnsafeConnectData,
+              PULONG                           UnsafeConnectDataLength)
 {
-       NTSTATUS        Status;
-       PEPORT          NamedPort;
-       PEPORT          OurPort;
-       HANDLE          OurPortHandle;
-       PLPC_MESSAGE    Request;
-       PQUEUEDMESSAGE  Reply;
-       ULONG           ConnectInfoLength;
-       KIRQL           oldIrql;
-   
-       DPRINT("PortName %x\n", PortName);
-       DPRINT("NtConnectPort(PortName %S)\n", PortName->Buffer);
-   
-       /*
-        * Copy in user parameters
-        */
-       memcpy (
-               & ConnectInfoLength, 
-               UserConnectInfoLength, 
-               sizeof (*UserConnectInfoLength)
-               );
-       /*
-        * Get access to the port
-        */
-       Status = ObReferenceObjectByName (
-                       PortName,
-                       0,
-                       NULL,
-                       PORT_ALL_ACCESS,  /* DesiredAccess */
-                       ExPortType,
-                       UserMode,
-                       NULL,
-                       (PVOID *) & NamedPort
-                       );
-       if (!NT_SUCCESS(Status))
+  HANDLE ConnectedPortHandle;
+  LPC_SECTION_WRITE WriteMap;
+  LPC_SECTION_READ ReadMap;
+  ULONG MaximumMessageSize;
+  PVOID ConnectData;
+  ULONG ConnectDataLength;
+  PSECTION_OBJECT SectionObject;
+  LARGE_INTEGER SectionOffset;
+  PEPORT ConnectedPort;
+  NTSTATUS Status;
+  PEPORT NamedPort;
+  
+  /*
+   * Copy in write map and partially validate.
+   */
+  if (UnsafeWriteMap != NULL)
+    {
+      Status = MmCopyFromCaller(&WriteMap,
+                               UnsafeWriteMap,
+                               sizeof(LPC_SECTION_WRITE));
+      if (!NT_SUCCESS(Status))
        {
-               DPRINT("Failed to reference named port (status %x)\n", Status);
-               return (Status);
+         return(Status);
        }
-       /*
-        * Create a port to represent our side of the connection
-        */
-       OurPort = ObCreateObject (
-                       & OurPortHandle,
-                       PORT_ALL_ACCESS,
-                       NULL,
-                       ExPortType
-                       );
-       NiInitializePort(OurPort);
-       /*
-        * Create a request message
-        */
-       DPRINT("Creating request message\n");
-   
-       Request = ExAllocatePool (
-                       NonPagedPool,
-                       (sizeof (LPC_MESSAGE) + ConnectInfoLength)
-                       );
-   
-       Request->DataSize = ConnectInfoLength;
-       Request->MessageSize = sizeof(LPC_MESSAGE) + ConnectInfoLength;
-       Request->SharedSectionSize = 0;
-       if (    (ConnectInfo != NULL)
-               && (ConnectInfoLength > 0)
-               )
+      if (WriteMap.Length != sizeof(LPC_SECTION_WRITE))
        {
-               memcpy (
-                       (PVOID) (Request + 1),
-                       ConnectInfo,
-                       ConnectInfoLength
-                       );
+         return(STATUS_INVALID_PARAMETER_4);
        }
-       /*
-        * Queue the message to the named port
-        */
-       DPRINT("Queuing message\n");
-   
-       EiReplyOrRequestPort (
-               NamedPort,
-               Request,
-               LPC_CONNECTION_REQUEST,
-               OurPort
-               );
-       KeSetEvent (
-               & NamedPort->Event,
-               IO_NO_INCREMENT,
-               FALSE
-               );
-   
-       DPRINT("Waiting for connection completion\n");
-   
-       /*
-        * Wait for them to accept our connection
-        */
-       KeWaitForSingleObject (
-               & OurPort->Event,
-               UserRequest,
-               UserMode,
-               FALSE,
-               NULL
-               );
-
-       DPRINT("Received connection completion\n");
-       KeAcquireSpinLock (
-               & OurPort->Lock,
-               & oldIrql
-               );
-       Reply = EiDequeueMessagePort (OurPort);
-       KeReleaseSpinLock (
-               & OurPort->Lock,
-               oldIrql
-               );
-       memcpy (
-               ConnectInfo, 
-               Reply->MessageData,
-               Reply->Message.DataSize
-               );
-       *UserConnectInfoLength = Reply->Message.DataSize;
-   
-       if (Reply->Message.MessageType == LPC_CONNECTION_REFUSED)
+      SectionOffset.QuadPart = WriteMap.SectionOffset;
+    }
+  else
+    {
+      WriteMap.SectionHandle = INVALID_HANDLE_VALUE;
+    }
+
+  /*
+   * Handle connection data.
+   */
+  if (UnsafeConnectData == NULL)
+    {
+      ConnectDataLength = 0;
+      ConnectData = NULL;
+    }
+  else
+    {
+      if (ExGetPreviousMode() == KernelMode)
        {
-               ObDereferenceObject (NamedPort);
-               ObDereferenceObject (OurPort);
-               ZwClose (OurPortHandle);
-               ExFreePool (Request);
-               ExFreePool (Reply);
-               return (STATUS_UNSUCCESSFUL);
+         ConnectDataLength = *UnsafeConnectDataLength;
+         ConnectData = UnsafeConnectData;
        }
-   
-       OurPort->State = EPORT_CONNECTED_CLIENT;
-       *ConnectedPort = OurPortHandle;   
-       ExFreePool (Reply);
-       ExFreePool (Request);
-   
-       DPRINT("Exited successfully\n");
-   
-       return (STATUS_SUCCESS);
+      else
+       {
+         Status = MmCopyFromCaller(&ConnectDataLength,
+                                   UnsafeConnectDataLength,
+                                   sizeof(ULONG));
+         if (!NT_SUCCESS(Status))
+           {
+             return(Status);
+           }
+         ConnectData = ExAllocatePool(NonPagedPool, ConnectDataLength);
+         if (ConnectData == NULL && ConnectDataLength != 0)
+           {
+             return(STATUS_NO_MEMORY);
+           }
+         Status = MmCopyFromCaller(ConnectData,
+                                   UnsafeConnectData,
+                                   ConnectDataLength);
+         if (!NT_SUCCESS(Status))
+           {
+             ExFreePool(ConnectData);
+             return(Status);
+           }
+       }
+    }
+
+  /*
+   * Reference the named port.
+   */
+  Status = ObReferenceObjectByName (PortName,
+                                    0,
+                                    NULL,
+                                    PORT_ALL_ACCESS,  /* DesiredAccess */
+                                    ExPortType,
+                                    UserMode,
+                                    NULL,
+                                    (PVOID*)&NamedPort);
+  if (!NT_SUCCESS(Status))
+    {
+      if (KeGetPreviousMode() != KernelMode)
+       {
+         ExFreePool(ConnectData);
+       }
+      return(Status);
+    }
+
+  /*
+   * Reference the send section object.
+   */
+  if (WriteMap.SectionHandle != INVALID_HANDLE_VALUE)
+    {
+      Status = ObReferenceObjectByHandle(WriteMap.SectionHandle,
+                                        SECTION_MAP_READ | SECTION_MAP_WRITE,
+                                        MmSectionObjectType,
+                                        UserMode,
+                                        (PVOID*)&SectionObject,
+                                        NULL);
+      if (!NT_SUCCESS(Status))
+       {
+         ObDereferenceObject(NamedPort);
+         if (KeGetPreviousMode() != KernelMode)
+           {
+             ExFreePool(ConnectData);
+           }
+         return(Status);
+       }
+    }
+  else
+    {
+      SectionObject = NULL;
+    }
+
+  /*
+   * Do the connection establishment.
+   */
+  Status = EiConnectPort(&ConnectedPort,
+                        NamedPort,
+                        SectionObject,
+                        SectionOffset,
+                        WriteMap.ViewSize,
+                        &WriteMap.ViewBase,
+                        &WriteMap.TargetViewBase,
+                        &ReadMap.ViewSize,
+                        &ReadMap.ViewBase,
+                        &MaximumMessageSize,
+                        ConnectData,
+                        &ConnectDataLength);
+  if (!NT_SUCCESS(Status))
+    {
+      /* FIXME: Again, check what NT does here. */
+      if (UnsafeConnectDataLength != NULL)
+       {
+         if (ExGetPreviousMode() != KernelMode)
+           {
+             MmCopyToCaller(UnsafeConnectData,
+                            ConnectData,
+                            ConnectDataLength);
+             ExFreePool(ConnectData);
+           }
+         MmCopyToCaller(UnsafeConnectDataLength,
+                        &ConnectDataLength,
+                        sizeof(ULONG));
+       }
+      return(Status);
+    }
+
+  /*
+   * Do some initial cleanup.
+   */
+  if (SectionObject != NULL)
+    {
+      ObDereferenceObject(SectionObject);
+      SectionObject = NULL;
+    }
+  ObDereferenceObject(NamedPort);
+  NamedPort = NULL;
+  
+  /*
+   * Copy the data back to the caller.
+   */
+  if (ExGetPreviousMode() != KernelMode)
+    {
+      if (UnsafeConnectDataLength != NULL)
+       {
+         if (ExGetPreviousMode() != KernelMode)
+           {
+             Status = MmCopyToCaller(UnsafeConnectData,
+                                     ConnectData,
+                                     ConnectDataLength);
+             ExFreePool(ConnectData);
+             if (!NT_SUCCESS(Status))
+               {
+                 return(Status);
+               }
+           }
+         Status = MmCopyToCaller(UnsafeConnectDataLength,
+                                 &ConnectDataLength,
+                                 sizeof(ULONG));
+         if (!NT_SUCCESS(Status))
+           {
+             return(Status);
+           }
+       }
+    }
+  Status = ObInsertObject(ConnectedPort,
+                         NULL,
+                         PORT_ALL_ACCESS,
+                         0,
+                         NULL,
+                         &ConnectedPortHandle);
+  if (!NT_SUCCESS(Status))
+    {
+      return(Status);
+    }
+  Status = MmCopyToCaller(UnsafeConnectedPortHandle,
+                         &ConnectedPortHandle,
+                         sizeof(HANDLE));
+  if (!NT_SUCCESS(Status))
+    {
+      return(Status);
+    }
+  if (UnsafeWriteMap != NULL)
+    {
+      Status = MmCopyToCaller(UnsafeWriteMap,
+                             &WriteMap,
+                             sizeof(LPC_SECTION_WRITE));
+      if (!NT_SUCCESS(Status))
+       {
+         return(Status);
+       }
+    }
+  if (UnsafeReadMap != NULL)
+    {
+      Status = MmCopyToCaller(UnsafeReadMap,
+                             &ReadMap,
+                             sizeof(LPC_SECTION_READ));
+      if (!NT_SUCCESS(Status))
+       {
+         return(Status);
+       }
+    }
+  if (UnsafeMaximumMessageSize != NULL)
+    {
+      Status = MmCopyToCaller(UnsafeMaximumMessageSize,
+                             &MaximumMessageSize,
+                             sizeof(ULONG));
+      if (!NT_SUCCESS(Status))
+       {
+         return(Status);
+       }
+    }
+
+  /*
+   * All done.
+   */
+
+  return(STATUS_SUCCESS);
 }
 
 
@@ -210,94 +513,290 @@ NtConnectPort (
  *     ReadMap
  *
  * RETURN VALUE
- *
  */
-EXPORTED
-NTSTATUS
-STDCALL
-NtAcceptConnectPort (
-       PHANDLE                 ServerPortHandle,
-       HANDLE                  NamedPortHandle,
-       PLPC_MESSAGE            LpcMessage,
-       BOOLEAN                 AcceptIt,
-       PLPC_SECTION_WRITE      WriteMap,
-       PLPC_SECTION_READ       ReadMap
-       )
+/*EXPORTED*/ NTSTATUS STDCALL
+NtAcceptConnectPort (PHANDLE                   ServerPortHandle,
+                    HANDLE                     NamedPortHandle,
+                    PLPC_MESSAGE               LpcMessage,
+                    BOOLEAN                    AcceptIt,
+                    PLPC_SECTION_WRITE WriteMap,
+                    PLPC_SECTION_READ  ReadMap)
 {
-       NTSTATUS        Status;
-       PEPORT          NamedPort;
-       PEPORT          OurPort = NULL;
-       PQUEUEDMESSAGE  ConnectionRequest;
-       KIRQL           oldIrql;
-   
-       Status = ObReferenceObjectByHandle (
-                       NamedPortHandle,
-                       PORT_ALL_ACCESS,
-                       ExPortType,
-                       UserMode,
-                       (PVOID *) & NamedPort,
-                       NULL
-                       );
-       if (!NT_SUCCESS(Status))
+  NTSTATUS     Status;
+  PEPORT               NamedPort;
+  PEPORT               OurPort = NULL;
+  PQUEUEDMESSAGE       ConnectionRequest;
+  KIRQL                oldIrql;
+  PEPORT_CONNECT_REQUEST_MESSAGE CRequest;
+  PEPORT_CONNECT_REPLY_MESSAGE CReply;
+  ULONG Size;
+
+  Size = sizeof(EPORT_CONNECT_REPLY_MESSAGE);
+  if (LpcMessage)
+  {
+     Size += LpcMessage->DataSize;
+  }
+
+  CReply = ExAllocatePool(NonPagedPool, Size);
+  if (CReply == NULL)
+    {
+      return(STATUS_NO_MEMORY);
+    }
+  
+  Status = ObReferenceObjectByHandle(NamedPortHandle,
+                                    PORT_ALL_ACCESS,
+                                    ExPortType,
+                                    UserMode,
+                                    (PVOID*)&NamedPort,
+                                    NULL);
+  if (!NT_SUCCESS(Status))
+    {
+      ExFreePool(CReply);
+      return (Status);
+    }
+
+  /*
+   * Create a port object for our side of the connection
+   */
+  if (AcceptIt)
+    {
+      Status = ObCreateObject(ExGetPreviousMode(),
+                             ExPortType,
+                             NULL,
+                             ExGetPreviousMode(),
+                             NULL,
+                             sizeof(EPORT),
+                             0,
+                             0,
+                             (PVOID*)&OurPort);
+      if (!NT_SUCCESS(Status))
+       {
+         ExFreePool(CReply);
+         ObDereferenceObject(NamedPort);
+         return(Status);
+       }
+
+      Status = ObInsertObject ((PVOID)OurPort,
+                              NULL,
+                              PORT_ALL_ACCESS,
+                              0,
+                              NULL,
+                              ServerPortHandle);
+      if (!NT_SUCCESS(Status))
        {
-               return (Status);
+         ObDereferenceObject(OurPort);
+         ExFreePool(CReply);
+         ObDereferenceObject(NamedPort);
+         return(Status);
        }
-       /*
-        * Create a port object for our side of the connection
-        */
-       if (AcceptIt == 1)
+
+      NiInitializePort(OurPort);
+    }
+
+  /*
+   * Dequeue the connection request
+   */
+  KeAcquireSpinLock(&NamedPort->Lock, &oldIrql);
+  ConnectionRequest = EiDequeueConnectMessagePort (NamedPort);
+  KeReleaseSpinLock(&NamedPort->Lock, oldIrql);
+  CRequest = (PEPORT_CONNECT_REQUEST_MESSAGE)(&ConnectionRequest->Message);
+  
+  /*
+   * Prepare the reply.
+   */
+  if (LpcMessage != NULL)
+    {
+      memcpy(&CReply->MessageHeader, LpcMessage, sizeof(LPC_MESSAGE));
+      memcpy(&CReply->ConnectData, (PVOID)(LpcMessage + 1), 
+            LpcMessage->DataSize);
+      CReply->MessageHeader.MessageSize =
+       sizeof(EPORT_CONNECT_REPLY_MESSAGE) + LpcMessage->DataSize;
+      CReply->MessageHeader.DataSize = CReply->MessageHeader.MessageSize -
+       sizeof(LPC_MESSAGE);
+      CReply->ConnectDataLength = LpcMessage->DataSize;
+    }
+  else
+    {
+      CReply->MessageHeader.MessageSize = sizeof(EPORT_CONNECT_REPLY_MESSAGE);
+      CReply->MessageHeader.DataSize = sizeof(EPORT_CONNECT_REPLY_MESSAGE) -
+       sizeof(LPC_MESSAGE);
+      CReply->ConnectDataLength = 0;
+    }
+  if (!AcceptIt)
+    {  
+      EiReplyOrRequestPort(ConnectionRequest->Sender,
+                          &CReply->MessageHeader,
+                          LPC_CONNECTION_REFUSED,
+                          NamedPort);
+      KeReleaseSemaphore(&ConnectionRequest->Sender->Semaphore,
+                        IO_NO_INCREMENT,
+                        1,
+                        FALSE);
+      ObDereferenceObject(ConnectionRequest->Sender);
+      ExFreePool(ConnectionRequest);   
+      ExFreePool(CReply);
+      ObDereferenceObject(NamedPort);
+      return (STATUS_SUCCESS);
+    }
+  
+  /*
+   * Prepare the connection.
+   */
+  if (WriteMap != NULL)
+    {
+      PSECTION_OBJECT SectionObject;
+      LARGE_INTEGER SectionOffset;
+
+      Status = ObReferenceObjectByHandle(WriteMap->SectionHandle,
+                                        SECTION_MAP_READ | SECTION_MAP_WRITE,
+                                        MmSectionObjectType,
+                                        UserMode,
+                                        (PVOID*)&SectionObject,
+                                        NULL);
+      if (!NT_SUCCESS(Status))
        {
-               OurPort = ObCreateObject (
-                               ServerPortHandle,
-                               PORT_ALL_ACCESS,
-                               NULL,
-                               ExPortType
-                               );
-               NiInitializePort(OurPort);
+         return(Status);
        }
-       /*
-        * Dequeue the connection request
-        */
-       KeAcquireSpinLock (& NamedPort->Lock, & oldIrql);
-       ConnectionRequest = EiDequeueConnectMessagePort (NamedPort);
-       KeReleaseSpinLock (& NamedPort->Lock, oldIrql);
-
-       if (AcceptIt != 1)
-       {       
-               EiReplyOrRequestPort (
-                       ConnectionRequest->Sender, 
-                       LpcMessage, 
-                       LPC_CONNECTION_REFUSED,
-                       NamedPort
-                       );
-               KeSetEvent (
-                       & ConnectionRequest->Sender->Event,
-                       IO_NO_INCREMENT,
-                       FALSE
-                       );
-               ObDereferenceObject (ConnectionRequest->Sender);
-               ExFreePool (ConnectionRequest); 
-               ObDereferenceObject (NamedPort);
-               return (STATUS_SUCCESS);
+
+      SectionOffset.QuadPart = WriteMap->SectionOffset;
+      WriteMap->TargetViewBase = 0;
+      CReply->ReceiveClientViewSize = WriteMap->ViewSize;
+      Status = MmMapViewOfSection(SectionObject,
+                                 CRequest->ConnectingProcess,
+                                 &WriteMap->TargetViewBase,
+                                 0,
+                                 CReply->ReceiveClientViewSize,
+                                 &SectionOffset,
+                                 &CReply->ReceiveClientViewSize,
+                                 ViewUnmap,
+                                 0 /* MEM_TOP_DOWN? */,
+                                 PAGE_READWRITE);
+      if (!NT_SUCCESS(Status))
+       {
+         return(Status);
+       }      
+
+      WriteMap->ViewBase = 0;
+      Status = MmMapViewOfSection(SectionObject,
+                                 PsGetCurrentProcess(),
+                                 &WriteMap->ViewBase,
+                                 0,
+                                 WriteMap->ViewSize,
+                                 &SectionOffset,
+                                 &WriteMap->ViewSize,
+                                 ViewUnmap,
+                                 0 /* MEM_TOP_DOWN? */,
+                                 PAGE_READWRITE);
+      if (!NT_SUCCESS(Status))
+       {
+         return(Status);
+       }      
+      
+      ObDereferenceObject(SectionObject);
+    }
+  if (ReadMap != NULL && CRequest->SendSectionObject != NULL)
+    {
+      LARGE_INTEGER SectionOffset;
+
+      SectionOffset = CRequest->SendSectionOffset;
+      ReadMap->ViewSize = CRequest->SendViewSize;
+      ReadMap->ViewBase = 0;
+      Status = MmMapViewOfSection(CRequest->SendSectionObject,
+                                 PsGetCurrentProcess(),
+                                 &ReadMap->ViewBase,
+                                 0,
+                                 CRequest->SendViewSize,
+                                 &SectionOffset,
+                                 &CRequest->SendViewSize,
+                                 ViewUnmap,
+                                 0 /* MEM_TOP_DOWN? */,
+                                 PAGE_READWRITE);
+      if (!NT_SUCCESS(Status))
+       {
+         return(Status);
        }
-       /*
-        * Connect the two ports
-        */
-       OurPort->OtherPort = ConnectionRequest->Sender;
-       OurPort->OtherPort->OtherPort = OurPort;
-       EiReplyOrRequestPort (
-               ConnectionRequest->Sender, 
-               LpcMessage, 
-               LPC_REPLY,
-               OurPort
-               );
-       ExFreePool (ConnectionRequest);
+    }
+
+  /*
+   * Finish the reply.
+   */
+  if (ReadMap != NULL)
+    {
+      CReply->SendServerViewBase = ReadMap->ViewBase;
+    }
+  else
+    {
+      CReply->SendServerViewBase = 0;
+    }
+  if (WriteMap != NULL)
+    {
+      CReply->ReceiveClientViewBase = WriteMap->TargetViewBase;
+    }
+  CReply->MaximumMessageSize = 0x148;
+
+
+  /*
+   * Connect the two ports
+   */
+  OurPort->OtherPort = ConnectionRequest->Sender;
+  OurPort->OtherPort->OtherPort = OurPort;
+  EiReplyOrRequestPort(ConnectionRequest->Sender,
+                      (PLPC_MESSAGE)CReply,
+                      LPC_REPLY,
+                      OurPort);
+  ExFreePool(ConnectionRequest);
+  ExFreePool(CReply);
    
-       ObDereferenceObject (OurPort);   
-       ObDereferenceObject (NamedPort);
-    
-       return (STATUS_SUCCESS);
+  ObDereferenceObject(OurPort);
+  ObDereferenceObject(NamedPort);
+  
+  return (STATUS_SUCCESS);
 }
 
+/**********************************************************************
+ * NAME                                                        EXPORTED
+ *     NtSecureConnectPort/9
+ *     
+ * DESCRIPTION
+ *     Connect to a named port and wait for the other side to 
+ *     accept the connection. Possibly verify that the server
+ *     matches the ServerSid (trusted server).
+ *     Present in w2k+.
+ *
+ * ARGUMENTS
+ *     ConnectedPort
+ *     PortName: fully qualified name in the Ob name space;
+ *     Qos
+ *     WriteMap
+ *     ServerSid
+ *     ReadMap
+ *     MaxMessageSize
+ *     ConnectInfo
+ *     UserConnectInfoLength
+ * 
+ * RETURN VALUE
+ */
+NTSTATUS STDCALL
+NtSecureConnectPort (OUT    PHANDLE                            ConnectedPort,
+                    IN     PUNICODE_STRING                     PortName,
+                    IN     PSECURITY_QUALITY_OF_SERVICE        Qos,
+                    IN OUT PLPC_SECTION_WRITE                  WriteMap                OPTIONAL,
+                    IN     PSID                                ServerSid               OPTIONAL,
+                    IN OUT PLPC_SECTION_READ                   ReadMap                 OPTIONAL,
+                    OUT    PULONG                              MaxMessageSize          OPTIONAL,
+                    IN OUT PVOID                               ConnectInfo             OPTIONAL,
+                    IN OUT PULONG                              UserConnectInfoLength   OPTIONAL)
+{
+  /* TODO: implement a new object type: SecurePort */
+  /* TODO: verify the process' SID that hosts the rendez-vous port equals ServerSid */
+  return NtConnectPort (ConnectedPort,
+                       PortName,
+                       Qos,
+                       WriteMap,
+                       ReadMap,
+                       MaxMessageSize,
+                       ConnectInfo,
+                       UserConnectInfoLength);
+}
 
 /* EOF */