Blame


1 d93ecf7d 2022-12-14 stsp /*
2 d93ecf7d 2022-12-14 stsp * Copyright (c) 2022 Stefan Sperling <stsp@openbsd.org>
3 d93ecf7d 2022-12-14 stsp *
4 d93ecf7d 2022-12-14 stsp * Permission to use, copy, modify, and distribute this software for any
5 d93ecf7d 2022-12-14 stsp * purpose with or without fee is hereby granted, provided that the above
6 d93ecf7d 2022-12-14 stsp * copyright notice and this permission notice appear in all copies.
7 d93ecf7d 2022-12-14 stsp *
8 d93ecf7d 2022-12-14 stsp * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
9 d93ecf7d 2022-12-14 stsp * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
10 d93ecf7d 2022-12-14 stsp * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
11 d93ecf7d 2022-12-14 stsp * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
12 d93ecf7d 2022-12-14 stsp * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
13 d93ecf7d 2022-12-14 stsp * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
14 d93ecf7d 2022-12-14 stsp * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
15 d93ecf7d 2022-12-14 stsp */
16 d93ecf7d 2022-12-14 stsp
17 d93ecf7d 2022-12-14 stsp #include <sys/types.h>
18 d93ecf7d 2022-12-14 stsp #include <sys/queue.h>
19 d93ecf7d 2022-12-14 stsp #include <sys/socket.h>
20 d93ecf7d 2022-12-14 stsp #include <sys/uio.h>
21 d93ecf7d 2022-12-14 stsp
22 d93ecf7d 2022-12-14 stsp #include <errno.h>
23 d93ecf7d 2022-12-14 stsp #include <event.h>
24 d93ecf7d 2022-12-14 stsp #include <siphash.h>
25 d93ecf7d 2022-12-14 stsp #include <stdint.h>
26 d93ecf7d 2022-12-14 stsp #include <stdio.h>
27 d93ecf7d 2022-12-14 stsp #include <stdlib.h>
28 d93ecf7d 2022-12-14 stsp #include <string.h>
29 d93ecf7d 2022-12-14 stsp #include <imsg.h>
30 d93ecf7d 2022-12-14 stsp #include <limits.h>
31 d93ecf7d 2022-12-14 stsp #include <sha1.h>
32 5822e79e 2023-02-23 op #include <sha2.h>
33 d93ecf7d 2022-12-14 stsp #include <signal.h>
34 d93ecf7d 2022-12-14 stsp #include <unistd.h>
35 d93ecf7d 2022-12-14 stsp
36 d93ecf7d 2022-12-14 stsp #include "got_error.h"
37 1b1a386d 2024-07-09 op #include "got_object.h"
38 9afa3de2 2023-04-04 stsp #include "got_path.h"
39 d93ecf7d 2022-12-14 stsp
40 d93ecf7d 2022-12-14 stsp #include "gotd.h"
41 d93ecf7d 2022-12-14 stsp #include "log.h"
42 d93ecf7d 2022-12-14 stsp #include "listen.h"
43 d93ecf7d 2022-12-14 stsp
44 d93ecf7d 2022-12-14 stsp #ifndef nitems
45 d93ecf7d 2022-12-14 stsp #define nitems(_a) (sizeof((_a)) / sizeof((_a)[0]))
46 d93ecf7d 2022-12-14 stsp #endif
47 d93ecf7d 2022-12-14 stsp
48 d93ecf7d 2022-12-14 stsp struct gotd_listen_client {
49 d93ecf7d 2022-12-14 stsp STAILQ_ENTRY(gotd_listen_client) entry;
50 d93ecf7d 2022-12-14 stsp uint32_t id;
51 d93ecf7d 2022-12-14 stsp int fd;
52 7a0564e3 2022-12-30 stsp uid_t euid;
53 d93ecf7d 2022-12-14 stsp };
54 d93ecf7d 2022-12-14 stsp STAILQ_HEAD(gotd_listen_clients, gotd_listen_client);
55 d93ecf7d 2022-12-14 stsp
56 d93ecf7d 2022-12-14 stsp static struct gotd_listen_clients gotd_listen_clients[GOTD_CLIENT_TABLE_SIZE];
57 d93ecf7d 2022-12-14 stsp static SIPHASH_KEY clients_hash_key;
58 d93ecf7d 2022-12-14 stsp static volatile int listen_client_cnt;
59 d93ecf7d 2022-12-14 stsp static int inflight;
60 d93ecf7d 2022-12-14 stsp
61 7a0564e3 2022-12-30 stsp struct gotd_uid_connection_counter {
62 7a0564e3 2022-12-30 stsp STAILQ_ENTRY(gotd_uid_connection_counter) entry;
63 7a0564e3 2022-12-30 stsp uid_t euid;
64 7a0564e3 2022-12-30 stsp int nconnections;
65 7a0564e3 2022-12-30 stsp };
66 7a0564e3 2022-12-30 stsp STAILQ_HEAD(gotd_client_uids, gotd_uid_connection_counter);
67 7a0564e3 2022-12-30 stsp static struct gotd_client_uids gotd_client_uids[GOTD_CLIENT_TABLE_SIZE];
68 7a0564e3 2022-12-30 stsp static SIPHASH_KEY uid_hash_key;
69 7a0564e3 2022-12-30 stsp
70 d93ecf7d 2022-12-14 stsp static struct {
71 d93ecf7d 2022-12-14 stsp pid_t pid;
72 d93ecf7d 2022-12-14 stsp const char *title;
73 d93ecf7d 2022-12-14 stsp int fd;
74 d93ecf7d 2022-12-14 stsp struct gotd_imsgev iev;
75 d93ecf7d 2022-12-14 stsp struct gotd_imsgev pause;
76 40b85cca 2023-01-03 stsp struct gotd_uid_connection_limit *connection_limits;
77 40b85cca 2023-01-03 stsp size_t nconnection_limits;
78 d93ecf7d 2022-12-14 stsp } gotd_listen;
79 d93ecf7d 2022-12-14 stsp
80 d93ecf7d 2022-12-14 stsp static int inflight;
81 d93ecf7d 2022-12-14 stsp
82 d93ecf7d 2022-12-14 stsp static void listen_shutdown(void);
83 d93ecf7d 2022-12-14 stsp
84 d93ecf7d 2022-12-14 stsp static void
85 d93ecf7d 2022-12-14 stsp listen_sighdlr(int sig, short event, void *arg)
86 d93ecf7d 2022-12-14 stsp {
87 d93ecf7d 2022-12-14 stsp /*
88 d93ecf7d 2022-12-14 stsp * Normal signal handler rules don't apply because libevent
89 d93ecf7d 2022-12-14 stsp * decouples for us.
90 d93ecf7d 2022-12-14 stsp */
91 d93ecf7d 2022-12-14 stsp
92 d93ecf7d 2022-12-14 stsp switch (sig) {
93 d93ecf7d 2022-12-14 stsp case SIGHUP:
94 d93ecf7d 2022-12-14 stsp break;
95 d93ecf7d 2022-12-14 stsp case SIGUSR1:
96 d93ecf7d 2022-12-14 stsp break;
97 d93ecf7d 2022-12-14 stsp case SIGTERM:
98 d93ecf7d 2022-12-14 stsp case SIGINT:
99 d93ecf7d 2022-12-14 stsp listen_shutdown();
100 d93ecf7d 2022-12-14 stsp /* NOTREACHED */
101 d93ecf7d 2022-12-14 stsp break;
102 d93ecf7d 2022-12-14 stsp default:
103 d93ecf7d 2022-12-14 stsp fatalx("unexpected signal");
104 d93ecf7d 2022-12-14 stsp }
105 d93ecf7d 2022-12-14 stsp }
106 d93ecf7d 2022-12-14 stsp
107 d93ecf7d 2022-12-14 stsp static uint64_t
108 d93ecf7d 2022-12-14 stsp client_hash(uint32_t client_id)
109 d93ecf7d 2022-12-14 stsp {
110 d93ecf7d 2022-12-14 stsp return SipHash24(&clients_hash_key, &client_id, sizeof(client_id));
111 d93ecf7d 2022-12-14 stsp }
112 d93ecf7d 2022-12-14 stsp
113 d93ecf7d 2022-12-14 stsp static void
114 d93ecf7d 2022-12-14 stsp add_client(struct gotd_listen_client *client)
115 d93ecf7d 2022-12-14 stsp {
116 d93ecf7d 2022-12-14 stsp uint64_t slot = client_hash(client->id) % nitems(gotd_listen_clients);
117 d93ecf7d 2022-12-14 stsp STAILQ_INSERT_HEAD(&gotd_listen_clients[slot], client, entry);
118 d93ecf7d 2022-12-14 stsp listen_client_cnt++;
119 d93ecf7d 2022-12-14 stsp }
120 d93ecf7d 2022-12-14 stsp
121 d93ecf7d 2022-12-14 stsp static struct gotd_listen_client *
122 d93ecf7d 2022-12-14 stsp find_client(uint32_t client_id)
123 d93ecf7d 2022-12-14 stsp {
124 d93ecf7d 2022-12-14 stsp uint64_t slot;
125 d93ecf7d 2022-12-14 stsp struct gotd_listen_client *c;
126 d93ecf7d 2022-12-14 stsp
127 d93ecf7d 2022-12-14 stsp slot = client_hash(client_id) % nitems(gotd_listen_clients);
128 d93ecf7d 2022-12-14 stsp STAILQ_FOREACH(c, &gotd_listen_clients[slot], entry) {
129 d93ecf7d 2022-12-14 stsp if (c->id == client_id)
130 d93ecf7d 2022-12-14 stsp return c;
131 d93ecf7d 2022-12-14 stsp }
132 d93ecf7d 2022-12-14 stsp
133 d93ecf7d 2022-12-14 stsp return NULL;
134 d93ecf7d 2022-12-14 stsp }
135 d93ecf7d 2022-12-14 stsp
136 d93ecf7d 2022-12-14 stsp static uint32_t
137 d93ecf7d 2022-12-14 stsp get_client_id(void)
138 d93ecf7d 2022-12-14 stsp {
139 d93ecf7d 2022-12-14 stsp int duplicate = 0;
140 d93ecf7d 2022-12-14 stsp uint32_t id;
141 d93ecf7d 2022-12-14 stsp
142 d93ecf7d 2022-12-14 stsp do {
143 d93ecf7d 2022-12-14 stsp id = arc4random();
144 d93ecf7d 2022-12-14 stsp duplicate = (find_client(id) != NULL);
145 d93ecf7d 2022-12-14 stsp } while (duplicate || id == 0);
146 d93ecf7d 2022-12-14 stsp
147 d93ecf7d 2022-12-14 stsp return id;
148 7a0564e3 2022-12-30 stsp }
149 7a0564e3 2022-12-30 stsp
150 7a0564e3 2022-12-30 stsp static uint64_t
151 7a0564e3 2022-12-30 stsp uid_hash(uid_t euid)
152 7a0564e3 2022-12-30 stsp {
153 7a0564e3 2022-12-30 stsp return SipHash24(&uid_hash_key, &euid, sizeof(euid));
154 7a0564e3 2022-12-30 stsp }
155 7a0564e3 2022-12-30 stsp
156 7a0564e3 2022-12-30 stsp static void
157 7a0564e3 2022-12-30 stsp add_uid_connection_counter(struct gotd_uid_connection_counter *counter)
158 7a0564e3 2022-12-30 stsp {
159 7a0564e3 2022-12-30 stsp uint64_t slot = uid_hash(counter->euid) % nitems(gotd_client_uids);
160 7a0564e3 2022-12-30 stsp STAILQ_INSERT_HEAD(&gotd_client_uids[slot], counter, entry);
161 7a0564e3 2022-12-30 stsp }
162 7a0564e3 2022-12-30 stsp
163 7a0564e3 2022-12-30 stsp static void
164 7a0564e3 2022-12-30 stsp remove_uid_connection_counter(struct gotd_uid_connection_counter *counter)
165 7a0564e3 2022-12-30 stsp {
166 7a0564e3 2022-12-30 stsp uint64_t slot = uid_hash(counter->euid) % nitems(gotd_client_uids);
167 7a0564e3 2022-12-30 stsp STAILQ_REMOVE(&gotd_client_uids[slot], counter,
168 7a0564e3 2022-12-30 stsp gotd_uid_connection_counter, entry);
169 7a0564e3 2022-12-30 stsp }
170 7a0564e3 2022-12-30 stsp
171 7a0564e3 2022-12-30 stsp static struct gotd_uid_connection_counter *
172 7a0564e3 2022-12-30 stsp find_uid_connection_counter(uid_t euid)
173 7a0564e3 2022-12-30 stsp {
174 7a0564e3 2022-12-30 stsp uint64_t slot;
175 7a0564e3 2022-12-30 stsp struct gotd_uid_connection_counter *c;
176 7a0564e3 2022-12-30 stsp
177 7a0564e3 2022-12-30 stsp slot = uid_hash(euid) % nitems(gotd_client_uids);
178 7a0564e3 2022-12-30 stsp STAILQ_FOREACH(c, &gotd_client_uids[slot], entry) {
179 7a0564e3 2022-12-30 stsp if (c->euid == euid)
180 7a0564e3 2022-12-30 stsp return c;
181 7a0564e3 2022-12-30 stsp }
182 7a0564e3 2022-12-30 stsp
183 7a0564e3 2022-12-30 stsp return NULL;
184 d93ecf7d 2022-12-14 stsp }
185 d93ecf7d 2022-12-14 stsp
186 d93ecf7d 2022-12-14 stsp static const struct got_error *
187 d93ecf7d 2022-12-14 stsp disconnect(struct gotd_listen_client *client)
188 d93ecf7d 2022-12-14 stsp {
189 7a0564e3 2022-12-30 stsp struct gotd_uid_connection_counter *counter;
190 d93ecf7d 2022-12-14 stsp uint64_t slot;
191 d93ecf7d 2022-12-14 stsp int client_fd;
192 d93ecf7d 2022-12-14 stsp
193 d93ecf7d 2022-12-14 stsp log_debug("client on fd %d disconnecting", client->fd);
194 d93ecf7d 2022-12-14 stsp
195 d93ecf7d 2022-12-14 stsp slot = client_hash(client->id) % nitems(gotd_listen_clients);
196 d93ecf7d 2022-12-14 stsp STAILQ_REMOVE(&gotd_listen_clients[slot], client,
197 d93ecf7d 2022-12-14 stsp gotd_listen_client, entry);
198 7a0564e3 2022-12-30 stsp
199 7a0564e3 2022-12-30 stsp counter = find_uid_connection_counter(client->euid);
200 7a0564e3 2022-12-30 stsp if (counter) {
201 7a0564e3 2022-12-30 stsp if (counter->nconnections > 0)
202 7a0564e3 2022-12-30 stsp counter->nconnections--;
203 7a0564e3 2022-12-30 stsp if (counter->nconnections == 0) {
204 7a0564e3 2022-12-30 stsp remove_uid_connection_counter(counter);
205 7a0564e3 2022-12-30 stsp free(counter);
206 7a0564e3 2022-12-30 stsp }
207 7a0564e3 2022-12-30 stsp }
208 7a0564e3 2022-12-30 stsp
209 d93ecf7d 2022-12-14 stsp client_fd = client->fd;
210 d93ecf7d 2022-12-14 stsp free(client);
211 d93ecf7d 2022-12-14 stsp inflight--;
212 d93ecf7d 2022-12-14 stsp listen_client_cnt--;
213 d93ecf7d 2022-12-14 stsp if (close(client_fd) == -1)
214 d93ecf7d 2022-12-14 stsp return got_error_from_errno("close");
215 d93ecf7d 2022-12-14 stsp
216 d93ecf7d 2022-12-14 stsp return NULL;
217 d93ecf7d 2022-12-14 stsp }
218 d93ecf7d 2022-12-14 stsp
219 d93ecf7d 2022-12-14 stsp static int
220 d93ecf7d 2022-12-14 stsp accept_reserve(int fd, struct sockaddr *addr, socklen_t *addrlen,
221 d93ecf7d 2022-12-14 stsp int reserve, volatile int *counter)
222 d93ecf7d 2022-12-14 stsp {
223 d93ecf7d 2022-12-14 stsp int ret;
224 d93ecf7d 2022-12-14 stsp
225 d93ecf7d 2022-12-14 stsp if (getdtablecount() + reserve +
226 d93ecf7d 2022-12-14 stsp ((*counter + 1) * GOTD_FD_NEEDED) >= getdtablesize()) {
227 d93ecf7d 2022-12-14 stsp log_debug("inflight fds exceeded");
228 d93ecf7d 2022-12-14 stsp errno = EMFILE;
229 d93ecf7d 2022-12-14 stsp return -1;
230 d93ecf7d 2022-12-14 stsp }
231 d93ecf7d 2022-12-14 stsp
232 d93ecf7d 2022-12-14 stsp if ((ret = accept4(fd, addr, addrlen,
233 d93ecf7d 2022-12-14 stsp SOCK_NONBLOCK | SOCK_CLOEXEC)) > -1) {
234 d93ecf7d 2022-12-14 stsp (*counter)++;
235 d93ecf7d 2022-12-14 stsp }
236 d93ecf7d 2022-12-14 stsp
237 d93ecf7d 2022-12-14 stsp return ret;
238 d93ecf7d 2022-12-14 stsp }
239 d93ecf7d 2022-12-14 stsp
240 d93ecf7d 2022-12-14 stsp static void
241 d93ecf7d 2022-12-14 stsp gotd_accept_paused(int fd, short event, void *arg)
242 d93ecf7d 2022-12-14 stsp {
243 d93ecf7d 2022-12-14 stsp event_add(&gotd_listen.iev.ev, NULL);
244 d93ecf7d 2022-12-14 stsp }
245 d93ecf7d 2022-12-14 stsp
246 d93ecf7d 2022-12-14 stsp static void
247 d93ecf7d 2022-12-14 stsp gotd_accept(int fd, short event, void *arg)
248 d93ecf7d 2022-12-14 stsp {
249 d93ecf7d 2022-12-14 stsp struct gotd_imsgev *iev = arg;
250 d93ecf7d 2022-12-14 stsp struct sockaddr_storage ss;
251 d93ecf7d 2022-12-14 stsp struct timeval backoff;
252 d93ecf7d 2022-12-14 stsp socklen_t len;
253 d93ecf7d 2022-12-14 stsp int s = -1;
254 d93ecf7d 2022-12-14 stsp struct gotd_listen_client *client = NULL;
255 7a0564e3 2022-12-30 stsp struct gotd_uid_connection_counter *counter = NULL;
256 d93ecf7d 2022-12-14 stsp struct gotd_imsg_connect iconn;
257 365cf0f3 2022-12-29 stsp uid_t euid;
258 365cf0f3 2022-12-29 stsp gid_t egid;
259 d93ecf7d 2022-12-14 stsp
260 d93ecf7d 2022-12-14 stsp backoff.tv_sec = 1;
261 d93ecf7d 2022-12-14 stsp backoff.tv_usec = 0;
262 d93ecf7d 2022-12-14 stsp
263 d93ecf7d 2022-12-14 stsp if (event_add(&gotd_listen.iev.ev, NULL) == -1) {
264 d93ecf7d 2022-12-14 stsp log_warn("event_add");
265 d93ecf7d 2022-12-14 stsp return;
266 d93ecf7d 2022-12-14 stsp }
267 d93ecf7d 2022-12-14 stsp if (event & EV_TIMEOUT)
268 d93ecf7d 2022-12-14 stsp return;
269 d93ecf7d 2022-12-14 stsp
270 d93ecf7d 2022-12-14 stsp len = sizeof(ss);
271 d93ecf7d 2022-12-14 stsp
272 d93ecf7d 2022-12-14 stsp /* Other backoff conditions apart from EMFILE/ENFILE? */
273 d93ecf7d 2022-12-14 stsp s = accept_reserve(fd, (struct sockaddr *)&ss, &len, GOTD_FD_RESERVE,
274 d93ecf7d 2022-12-14 stsp &inflight);
275 d93ecf7d 2022-12-14 stsp if (s == -1) {
276 d93ecf7d 2022-12-14 stsp switch (errno) {
277 d93ecf7d 2022-12-14 stsp case EINTR:
278 d93ecf7d 2022-12-14 stsp case EWOULDBLOCK:
279 d93ecf7d 2022-12-14 stsp case ECONNABORTED:
280 d93ecf7d 2022-12-14 stsp return;
281 d93ecf7d 2022-12-14 stsp case EMFILE:
282 d93ecf7d 2022-12-14 stsp case ENFILE:
283 d93ecf7d 2022-12-14 stsp event_del(&gotd_listen.iev.ev);
284 d93ecf7d 2022-12-14 stsp evtimer_add(&gotd_listen.pause.ev, &backoff);
285 d93ecf7d 2022-12-14 stsp return;
286 d93ecf7d 2022-12-14 stsp default:
287 d93ecf7d 2022-12-14 stsp log_warn("accept");
288 d93ecf7d 2022-12-14 stsp return;
289 d93ecf7d 2022-12-14 stsp }
290 d93ecf7d 2022-12-14 stsp }
291 d93ecf7d 2022-12-14 stsp
292 d93ecf7d 2022-12-14 stsp if (listen_client_cnt >= GOTD_MAXCLIENTS)
293 365cf0f3 2022-12-29 stsp goto err;
294 365cf0f3 2022-12-29 stsp
295 365cf0f3 2022-12-29 stsp if (getpeereid(s, &euid, &egid) == -1) {
296 365cf0f3 2022-12-29 stsp log_warn("getpeerid");
297 d93ecf7d 2022-12-14 stsp goto err;
298 365cf0f3 2022-12-29 stsp }
299 d93ecf7d 2022-12-14 stsp
300 7a0564e3 2022-12-30 stsp counter = find_uid_connection_counter(euid);
301 7a0564e3 2022-12-30 stsp if (counter == NULL) {
302 7a0564e3 2022-12-30 stsp counter = calloc(1, sizeof(*counter));
303 7a0564e3 2022-12-30 stsp if (counter == NULL) {
304 7a0564e3 2022-12-30 stsp log_warn("%s: calloc", __func__);
305 7a0564e3 2022-12-30 stsp goto err;
306 7a0564e3 2022-12-30 stsp }
307 7a0564e3 2022-12-30 stsp counter->euid = euid;
308 7a0564e3 2022-12-30 stsp counter->nconnections = 1;
309 7a0564e3 2022-12-30 stsp add_uid_connection_counter(counter);
310 7a0564e3 2022-12-30 stsp } else {
311 40b85cca 2023-01-03 stsp int max_connections = GOTD_MAX_CONN_PER_UID;
312 40b85cca 2023-01-03 stsp struct gotd_uid_connection_limit *limit;
313 40b85cca 2023-01-03 stsp
314 40b85cca 2023-01-03 stsp limit = gotd_find_uid_connection_limit(
315 40b85cca 2023-01-03 stsp gotd_listen.connection_limits,
316 40b85cca 2023-01-03 stsp gotd_listen.nconnection_limits, euid);
317 40b85cca 2023-01-03 stsp if (limit)
318 40b85cca 2023-01-03 stsp max_connections = limit->max_connections;
319 40b85cca 2023-01-03 stsp
320 40b85cca 2023-01-03 stsp if (counter->nconnections >= max_connections) {
321 7a0564e3 2022-12-30 stsp log_warnx("maximum connections exceeded for uid %d",
322 7a0564e3 2022-12-30 stsp euid);
323 7a0564e3 2022-12-30 stsp goto err;
324 7a0564e3 2022-12-30 stsp }
325 7a0564e3 2022-12-30 stsp counter->nconnections++;
326 7a0564e3 2022-12-30 stsp }
327 7a0564e3 2022-12-30 stsp
328 d93ecf7d 2022-12-14 stsp client = calloc(1, sizeof(*client));
329 d93ecf7d 2022-12-14 stsp if (client == NULL) {
330 d93ecf7d 2022-12-14 stsp log_warn("%s: calloc", __func__);
331 d93ecf7d 2022-12-14 stsp goto err;
332 d93ecf7d 2022-12-14 stsp }
333 d93ecf7d 2022-12-14 stsp client->id = get_client_id();
334 d93ecf7d 2022-12-14 stsp client->fd = s;
335 7a0564e3 2022-12-30 stsp client->euid = euid;
336 d93ecf7d 2022-12-14 stsp s = -1;
337 d93ecf7d 2022-12-14 stsp add_client(client);
338 365cf0f3 2022-12-29 stsp log_debug("%s: new client connected on fd %d uid %d gid %d", __func__,
339 365cf0f3 2022-12-29 stsp client->fd, euid, egid);
340 d93ecf7d 2022-12-14 stsp
341 d93ecf7d 2022-12-14 stsp memset(&iconn, 0, sizeof(iconn));
342 d93ecf7d 2022-12-14 stsp iconn.client_id = client->id;
343 365cf0f3 2022-12-29 stsp iconn.euid = euid;
344 365cf0f3 2022-12-29 stsp iconn.egid = egid;
345 d93ecf7d 2022-12-14 stsp s = dup(client->fd);
346 d93ecf7d 2022-12-14 stsp if (s == -1) {
347 d93ecf7d 2022-12-14 stsp log_warn("%s: dup", __func__);
348 d93ecf7d 2022-12-14 stsp goto err;
349 d93ecf7d 2022-12-14 stsp }
350 d93ecf7d 2022-12-14 stsp if (gotd_imsg_compose_event(iev, GOTD_IMSG_CONNECT, PROC_LISTEN, s,
351 d93ecf7d 2022-12-14 stsp &iconn, sizeof(iconn)) == -1) {
352 d93ecf7d 2022-12-14 stsp log_warn("imsg compose CONNECT");
353 d93ecf7d 2022-12-14 stsp goto err;
354 d93ecf7d 2022-12-14 stsp }
355 d93ecf7d 2022-12-14 stsp
356 d93ecf7d 2022-12-14 stsp return;
357 d93ecf7d 2022-12-14 stsp err:
358 d93ecf7d 2022-12-14 stsp inflight--;
359 d93ecf7d 2022-12-14 stsp if (client)
360 d93ecf7d 2022-12-14 stsp disconnect(client);
361 d93ecf7d 2022-12-14 stsp if (s != -1)
362 d93ecf7d 2022-12-14 stsp close(s);
363 d93ecf7d 2022-12-14 stsp }
364 d93ecf7d 2022-12-14 stsp
365 d93ecf7d 2022-12-14 stsp static const struct got_error *
366 d93ecf7d 2022-12-14 stsp recv_disconnect(struct imsg *imsg)
367 d93ecf7d 2022-12-14 stsp {
368 d93ecf7d 2022-12-14 stsp struct gotd_imsg_disconnect idisconnect;
369 d93ecf7d 2022-12-14 stsp size_t datalen;
370 d93ecf7d 2022-12-14 stsp struct gotd_listen_client *client = NULL;
371 d93ecf7d 2022-12-14 stsp
372 d93ecf7d 2022-12-14 stsp datalen = imsg->hdr.len - IMSG_HEADER_SIZE;
373 d93ecf7d 2022-12-14 stsp if (datalen != sizeof(idisconnect))
374 d93ecf7d 2022-12-14 stsp return got_error(GOT_ERR_PRIVSEP_LEN);
375 d93ecf7d 2022-12-14 stsp memcpy(&idisconnect, imsg->data, sizeof(idisconnect));
376 d93ecf7d 2022-12-14 stsp
377 d93ecf7d 2022-12-14 stsp log_debug("client disconnecting");
378 d93ecf7d 2022-12-14 stsp
379 d93ecf7d 2022-12-14 stsp client = find_client(idisconnect.client_id);
380 d93ecf7d 2022-12-14 stsp if (client == NULL)
381 d93ecf7d 2022-12-14 stsp return got_error(GOT_ERR_CLIENT_ID);
382 d93ecf7d 2022-12-14 stsp
383 d93ecf7d 2022-12-14 stsp return disconnect(client);
384 d93ecf7d 2022-12-14 stsp }
385 d93ecf7d 2022-12-14 stsp
386 d93ecf7d 2022-12-14 stsp static void
387 d93ecf7d 2022-12-14 stsp listen_dispatch(int fd, short event, void *arg)
388 d93ecf7d 2022-12-14 stsp {
389 d93ecf7d 2022-12-14 stsp const struct got_error *err = NULL;
390 d93ecf7d 2022-12-14 stsp struct gotd_imsgev *iev = arg;
391 d93ecf7d 2022-12-14 stsp struct imsgbuf *ibuf = &iev->ibuf;
392 d93ecf7d 2022-12-14 stsp struct imsg imsg;
393 d93ecf7d 2022-12-14 stsp ssize_t n;
394 d93ecf7d 2022-12-14 stsp int shut = 0;
395 d93ecf7d 2022-12-14 stsp
396 d93ecf7d 2022-12-14 stsp if (event & EV_READ) {
397 d93ecf7d 2022-12-14 stsp if ((n = imsg_read(ibuf)) == -1 && errno != EAGAIN)
398 d93ecf7d 2022-12-14 stsp fatal("imsg_read error");
399 d93ecf7d 2022-12-14 stsp if (n == 0) /* Connection closed. */
400 d93ecf7d 2022-12-14 stsp shut = 1;
401 d93ecf7d 2022-12-14 stsp }
402 d93ecf7d 2022-12-14 stsp
403 d93ecf7d 2022-12-14 stsp if (event & EV_WRITE) {
404 d93ecf7d 2022-12-14 stsp n = msgbuf_write(&ibuf->w);
405 d93ecf7d 2022-12-14 stsp if (n == -1 && errno != EAGAIN)
406 d93ecf7d 2022-12-14 stsp fatal("msgbuf_write");
407 d93ecf7d 2022-12-14 stsp if (n == 0) /* Connection closed. */
408 d93ecf7d 2022-12-14 stsp shut = 1;
409 d93ecf7d 2022-12-14 stsp }
410 d93ecf7d 2022-12-14 stsp
411 d93ecf7d 2022-12-14 stsp for (;;) {
412 d93ecf7d 2022-12-14 stsp if ((n = imsg_get(ibuf, &imsg)) == -1)
413 d93ecf7d 2022-12-14 stsp fatal("%s: imsg_get", __func__);
414 d93ecf7d 2022-12-14 stsp if (n == 0) /* No more messages. */
415 d93ecf7d 2022-12-14 stsp break;
416 d93ecf7d 2022-12-14 stsp
417 d93ecf7d 2022-12-14 stsp switch (imsg.hdr.type) {
418 d93ecf7d 2022-12-14 stsp case GOTD_IMSG_DISCONNECT:
419 d93ecf7d 2022-12-14 stsp err = recv_disconnect(&imsg);
420 d93ecf7d 2022-12-14 stsp if (err)
421 2ec74a9e 2023-02-08 op log_warnx("disconnect: %s", err->msg);
422 d93ecf7d 2022-12-14 stsp break;
423 d93ecf7d 2022-12-14 stsp default:
424 2ec74a9e 2023-02-08 op log_debug("unexpected imsg %d", imsg.hdr.type);
425 d93ecf7d 2022-12-14 stsp break;
426 d93ecf7d 2022-12-14 stsp }
427 d93ecf7d 2022-12-14 stsp
428 d93ecf7d 2022-12-14 stsp imsg_free(&imsg);
429 d93ecf7d 2022-12-14 stsp }
430 d93ecf7d 2022-12-14 stsp
431 d93ecf7d 2022-12-14 stsp if (!shut) {
432 d93ecf7d 2022-12-14 stsp gotd_imsg_event_add(iev);
433 d93ecf7d 2022-12-14 stsp } else {
434 d93ecf7d 2022-12-14 stsp /* This pipe is dead. Remove its event handler */
435 d93ecf7d 2022-12-14 stsp event_del(&iev->ev);
436 d93ecf7d 2022-12-14 stsp event_loopexit(NULL);
437 d93ecf7d 2022-12-14 stsp }
438 d93ecf7d 2022-12-14 stsp }
439 d93ecf7d 2022-12-14 stsp
440 d93ecf7d 2022-12-14 stsp void
441 40b85cca 2023-01-03 stsp listen_main(const char *title, int gotd_socket,
442 40b85cca 2023-01-03 stsp struct gotd_uid_connection_limit *connection_limits,
443 40b85cca 2023-01-03 stsp size_t nconnection_limits)
444 d93ecf7d 2022-12-14 stsp {
445 d93ecf7d 2022-12-14 stsp struct gotd_imsgev iev;
446 d93ecf7d 2022-12-14 stsp struct event evsigint, evsigterm, evsighup, evsigusr1;
447 c602198a 2022-12-30 stsp
448 c602198a 2022-12-30 stsp arc4random_buf(&clients_hash_key, sizeof(clients_hash_key));
449 7a0564e3 2022-12-30 stsp arc4random_buf(&uid_hash_key, sizeof(uid_hash_key));
450 d93ecf7d 2022-12-14 stsp
451 d93ecf7d 2022-12-14 stsp gotd_listen.title = title;
452 d93ecf7d 2022-12-14 stsp gotd_listen.pid = getpid();
453 d93ecf7d 2022-12-14 stsp gotd_listen.fd = gotd_socket;
454 40b85cca 2023-01-03 stsp gotd_listen.connection_limits = connection_limits;
455 40b85cca 2023-01-03 stsp gotd_listen.nconnection_limits = nconnection_limits;
456 d93ecf7d 2022-12-14 stsp
457 d93ecf7d 2022-12-14 stsp signal_set(&evsigint, SIGINT, listen_sighdlr, NULL);
458 d93ecf7d 2022-12-14 stsp signal_set(&evsigterm, SIGTERM, listen_sighdlr, NULL);
459 d93ecf7d 2022-12-14 stsp signal_set(&evsighup, SIGHUP, listen_sighdlr, NULL);
460 d93ecf7d 2022-12-14 stsp signal_set(&evsigusr1, SIGUSR1, listen_sighdlr, NULL);
461 d93ecf7d 2022-12-14 stsp signal(SIGPIPE, SIG_IGN);
462 d93ecf7d 2022-12-14 stsp
463 d93ecf7d 2022-12-14 stsp signal_add(&evsigint, NULL);
464 d93ecf7d 2022-12-14 stsp signal_add(&evsigterm, NULL);
465 d93ecf7d 2022-12-14 stsp signal_add(&evsighup, NULL);
466 d93ecf7d 2022-12-14 stsp signal_add(&evsigusr1, NULL);
467 d93ecf7d 2022-12-14 stsp
468 d93ecf7d 2022-12-14 stsp imsg_init(&iev.ibuf, GOTD_FILENO_MSG_PIPE);
469 d93ecf7d 2022-12-14 stsp iev.handler = listen_dispatch;
470 d93ecf7d 2022-12-14 stsp iev.events = EV_READ;
471 d93ecf7d 2022-12-14 stsp iev.handler_arg = NULL;
472 d93ecf7d 2022-12-14 stsp event_set(&iev.ev, iev.ibuf.fd, EV_READ, listen_dispatch, &iev);
473 d93ecf7d 2022-12-14 stsp if (event_add(&iev.ev, NULL) == -1)
474 d93ecf7d 2022-12-14 stsp fatalx("event add");
475 d93ecf7d 2022-12-14 stsp
476 d93ecf7d 2022-12-14 stsp event_set(&gotd_listen.iev.ev, gotd_listen.fd, EV_READ | EV_PERSIST,
477 d93ecf7d 2022-12-14 stsp gotd_accept, &iev);
478 d93ecf7d 2022-12-14 stsp if (event_add(&gotd_listen.iev.ev, NULL))
479 d93ecf7d 2022-12-14 stsp fatalx("event add");
480 d93ecf7d 2022-12-14 stsp evtimer_set(&gotd_listen.pause.ev, gotd_accept_paused, NULL);
481 d93ecf7d 2022-12-14 stsp
482 d93ecf7d 2022-12-14 stsp event_dispatch();
483 d93ecf7d 2022-12-14 stsp
484 d93ecf7d 2022-12-14 stsp listen_shutdown();
485 d93ecf7d 2022-12-14 stsp }
486 d93ecf7d 2022-12-14 stsp
487 d93ecf7d 2022-12-14 stsp static void
488 d93ecf7d 2022-12-14 stsp listen_shutdown(void)
489 d93ecf7d 2022-12-14 stsp {
490 e8d451cc 2024-03-22 stsp log_debug("%s: shutting down", gotd_listen.title);
491 d93ecf7d 2022-12-14 stsp
492 40b85cca 2023-01-03 stsp free(gotd_listen.connection_limits);
493 d93ecf7d 2022-12-14 stsp if (gotd_listen.fd != -1)
494 d93ecf7d 2022-12-14 stsp close(gotd_listen.fd);
495 d93ecf7d 2022-12-14 stsp
496 d93ecf7d 2022-12-14 stsp exit(0);
497 d93ecf7d 2022-12-14 stsp }