2 This file is part of GNUnet.
3 (C) 2009 Christian Grothoff (and other contributing authors)
5 GNUnet is free software; you can redistribute it and/or modify
6 it under the terms of the GNU General Public License as published
7 by the Free Software Foundation; either version 2, or (at your
8 option) any later version.
10 GNUnet is distributed in the hope that it will be useful, but
11 WITHOUT ANY WARRANTY; without even the implied warranty of
12 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
13 General Public License for more details.
15 You should have received a copy of the GNU General Public License
16 along with GNUnet; see the file COPYING. If not, write to the
17 Free Software Foundation, Inc., 59 Temple Place - Suite 330,
18 Boston, MA 02111-1307, USA.
22 * @file util/service.c
23 * @brief functions related to starting services
24 * @author Christian Grothoff
27 #include "gnunet_common.h"
28 #include "gnunet_configuration_lib.h"
29 #include "gnunet_crypto_lib.h"
30 #include "gnunet_directories.h"
31 #include "gnunet_disk_lib.h"
32 #include "gnunet_getopt_lib.h"
33 #include "gnunet_os_lib.h"
34 #include "gnunet_protocols.h"
35 #include "gnunet_server_lib.h"
36 #include "gnunet_service_lib.h"
38 /* ******************* access control ******************** */
41 * @brief IPV4 network in CIDR notation.
45 struct in_addr network;
46 struct in_addr netmask;
50 * @brief network in CIDR notation for IPV6.
54 struct in6_addr network;
55 struct in6_addr netmask;
60 * Parse a network specification. The argument specifies
61 * a list of networks. The format is
62 * <tt>[network/netmask;]*</tt> (no whitespace, must be terminated
63 * with a semicolon). The network must be given in dotted-decimal
64 * notation. The netmask can be given in CIDR notation (/16) or
65 * in dotted-decimal (/255.255.0.0).
67 * @param routeList a string specifying the forbidden networks
68 * @return the converted list, NULL if the synatx is flawed
70 static struct IPv4NetworkSet *
71 parse_ipv4_specification (const char *routeList)
79 unsigned int temps[8];
81 struct IPv4NetworkSet *result;
83 if (routeList == NULL)
85 len = strlen (routeList);
89 for (i = 0; i < len; i++)
90 if (routeList[i] == ';')
92 result = GNUNET_malloc (sizeof (struct IPv4NetworkSet) * (count + 1));
94 memset (result, 0, sizeof (struct IPv4NetworkSet) * (count + 1));
99 cnt = sscanf (&routeList[pos],
100 "%u.%u.%u.%u/%u.%u.%u.%u;",
104 &temps[3], &temps[4], &temps[5], &temps[6], &temps[7]);
107 for (j = 0; j < 8; j++)
110 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
111 _("Invalid format for IP: `%s'\n"),
113 GNUNET_free (result);
116 result[i].network.s_addr
118 htonl ((temps[0] << 24) + (temps[1] << 16) + (temps[2] << 8) +
120 result[i].netmask.s_addr =
121 htonl ((temps[4] << 24) + (temps[5] << 16) + (temps[6] << 8) +
123 while (routeList[pos] != ';')
129 /* try second notation */
130 cnt = sscanf (&routeList[pos],
132 &temps[0], &temps[1], &temps[2], &temps[3], &slash);
135 for (j = 0; j < 4; j++)
138 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
139 _("Invalid format for IP: `%s'\n"),
141 GNUNET_free (result);
144 result[i].network.s_addr
146 htonl ((temps[0] << 24) + (temps[1] << 16) + (temps[2] << 8) +
148 if ((slash <= 32) && (slash >= 0))
150 result[i].netmask.s_addr = 0;
153 result[i].netmask.s_addr
154 = (result[i].netmask.s_addr >> 1) + 0x80000000;
157 result[i].netmask.s_addr = htonl (result[i].netmask.s_addr);
158 while (routeList[pos] != ';')
166 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
168 ("Invalid network notation ('/%d' is not legal in IPv4 CIDR)."),
170 GNUNET_free (result);
171 return NULL; /* error */
174 /* try third notation */
176 cnt = sscanf (&routeList[pos],
178 &temps[0], &temps[1], &temps[2], &temps[3]);
181 for (j = 0; j < 4; j++)
184 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
185 _("Invalid format for IP: `%s'\n"),
187 GNUNET_free (result);
190 result[i].network.s_addr
192 htonl ((temps[0] << 24) + (temps[1] << 16) + (temps[2] << 8) +
194 result[i].netmask.s_addr = 0;
197 result[i].netmask.s_addr
198 = (result[i].netmask.s_addr >> 1) + 0x80000000;
201 result[i].netmask.s_addr = htonl (result[i].netmask.s_addr);
202 while (routeList[pos] != ';')
208 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
209 _("Invalid format for IP: `%s'\n"), &routeList[pos]);
210 GNUNET_free (result);
211 return NULL; /* error */
213 if (pos < strlen (routeList))
215 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
216 _("Invalid format for IP: `%s'\n"), &routeList[pos]);
217 GNUNET_free (result);
218 return NULL; /* oops */
220 return result; /* ok */
225 * Parse a network specification. The argument specifies
226 * a list of networks. The format is
227 * <tt>[network/netmask;]*</tt> (no whitespace, must be terminated
228 * with a semicolon). The network must be given in colon-hex
229 * notation. The netmask must be given in CIDR notation (/16) or
230 * can be omitted to specify a single host.
232 * @param routeListX a string specifying the forbidden networks
233 * @return the converted list, NULL if the synatx is flawed
235 static struct IPv6NetworkSet *
236 parse_ipv6_specification (const char *routeListX)
246 struct IPv6NetworkSet *result;
251 if (routeListX == NULL)
253 len = strlen (routeListX);
256 routeList = GNUNET_strdup (routeListX);
258 for (i = 0; i < len; i++)
259 if (routeList[i] == ';')
261 if (routeList[len - 1] != ';')
263 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
265 ("Invalid network notation (does not end with ';': `%s')\n"),
267 GNUNET_free (routeList);
271 result = GNUNET_malloc (sizeof (struct IPv6NetworkSet) * (count + 1));
272 memset (result, 0, sizeof (struct IPv6NetworkSet) * (count + 1));
278 while (routeList[pos] != ';')
281 while ((slash >= start) && (routeList[slash] != '/'))
285 memset (&result[i].netmask, 0xFF, sizeof (struct in6_addr));
290 routeList[pos] = '\0';
291 ret = inet_pton (AF_INET6,
292 &routeList[slash + 1], &result[i].netmask);
296 if ((1 != SSCANF (&routeList[slash + 1],
297 "%u", &bits)) || (bits >= 128))
300 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
301 _("Wrong format `%s' for netmask\n"),
302 &routeList[slash + 1]);
306 GNUNET_log_strerror (GNUNET_ERROR_TYPE_ERROR,
309 GNUNET_free (result);
310 GNUNET_free (routeList);
316 result[i].netmask.s6_addr[off++] = 0xFF;
321 result[i].netmask.s6_addr[off]
322 = (result[i].netmask.s6_addr[off] >> 1) + 0x80;
327 routeList[slash] = '\0';
328 ret = inet_pton (AF_INET6, &routeList[start], &result[i].network);
332 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
333 _("Wrong format `%s' for network\n"),
334 &routeList[slash + 1]);
336 GNUNET_log (GNUNET_ERROR_TYPE_ERROR, "inet_pton");
337 GNUNET_free (result);
338 GNUNET_free (routeList);
344 GNUNET_free (routeList);
350 * Check if the given IP address is in the list of IP addresses.
352 * @param list a list of networks
353 * @param add the IP to check (in network byte order)
354 * @return GNUNET_NO if the IP is not in the list, GNUNET_YES if it it is
357 check_ipv4_listed (const struct IPv4NetworkSet *list,
358 const struct in_addr *add)
366 while ((list[i].network.s_addr != 0) || (list[i].netmask.s_addr != 0))
368 if ((add->s_addr & list[i].netmask.s_addr) ==
369 (list[i].network.s_addr & list[i].netmask.s_addr))
377 * Check if the given IP address is in the list of IP addresses.
379 * @param list a list of networks
380 * @param ip the IP to check (in network byte order)
381 * @return GNUNET_NO if the IP is not in the list, GNUNET_YES if it it is
384 check_ipv6_listed (const struct IPv6NetworkSet *list,
385 const struct in6_addr *ip)
389 struct in6_addr zero;
394 memset (&zero, 0, sizeof (struct in6_addr));
397 while (memcmp (&zero, &list[i].network, sizeof (struct in6_addr)) != 0)
399 for (j = 0; j < sizeof (struct in6_addr) / sizeof (int); j++)
400 if (((((int *) ip)[j] & ((int *) &list[i].netmask)[j])) !=
401 (((int *) &list[i].network)[j] & ((int *) &list[i].netmask)[j]))
412 /* ****************** service struct ****************** */
416 * Context for "service_task".
418 struct GNUNET_SERVICE_Context
423 const struct GNUNET_CONFIGURATION_Handle *cfg;
426 * Handle for the server.
428 struct GNUNET_SERVER_Handle *server;
431 * Scheduler for the server.
433 struct GNUNET_SCHEDULER_Handle *sched;
436 * Address to bind to.
438 struct sockaddr *addr;
441 * Name of our service.
443 const char *serviceName;
446 * Main service-specific task to run.
448 GNUNET_SERVICE_Main task;
456 * IPv4 addresses that are not allowed to connect.
458 struct IPv4NetworkSet *v4_denied;
461 * IPv6 addresses that are not allowed to connect.
463 struct IPv6NetworkSet *v6_denied;
466 * IPv4 addresses that are allowed to connect (if not
467 * set, all are allowed).
469 struct IPv4NetworkSet *v4_allowed;
472 * IPv6 addresses that are allowed to connect (if not
473 * set, all are allowed).
475 struct IPv6NetworkSet *v6_allowed;
478 * My (default) message handlers. Adjusted copy
481 struct GNUNET_SERVER_MessageHandler *my_handlers;
484 * Idle timeout for server.
486 struct GNUNET_TIME_Relative timeout;
489 * Maximum buffer size for the server.
494 * Overall success/failure of the service start.
499 * If we are daemonizing, this FD is set to the
500 * pipe to the parent. Send '.' if we started
501 * ok, '!' if not. -1 if we are not daemonizing.
503 int ready_confirm_fd;
506 * Do we close connections if we receive messages
507 * for which we have no handler?
512 * Can clients ask us to initiate a shutdown?
524 /* ****************** message handlers ****************** */
527 write_test (void *cls, size_t size, void *buf)
529 struct GNUNET_SERVER_Client *client = cls;
530 struct GNUNET_MessageHeader *msg;
532 if (size < sizeof (struct GNUNET_MessageHeader))
534 GNUNET_SERVER_receive_done (client, GNUNET_SYSERR);
535 return 0; /* client disconnected */
537 msg = (struct GNUNET_MessageHeader *) buf;
538 msg->type = htons (GNUNET_MESSAGE_TYPE_TEST);
539 msg->size = htons (sizeof (struct GNUNET_MessageHeader));
540 GNUNET_SERVER_receive_done (client, GNUNET_OK);
541 return sizeof (struct GNUNET_MessageHeader);
545 * Handler for TEST message.
547 * @param cls closure (refers to service)
548 * @param client identification of the client
549 * @param message the actual message
552 handle_test (void *cls,
553 struct GNUNET_SERVER_Client *client,
554 const struct GNUNET_MessageHeader *message)
556 /* simply bounce message back to acknowledge */
557 if (NULL == GNUNET_SERVER_notify_transmit_ready (client,
559 GNUNET_MessageHeader),
560 GNUNET_TIME_UNIT_FOREVER_REL,
561 &write_test, client))
562 GNUNET_SERVER_receive_done (client, GNUNET_SYSERR);
567 * Handler for SHUTDOWN message.
569 * @param cls closure (refers to service)
570 * @param client identification of the client
571 * @param message the actual message
574 handle_shutdown (void *cls,
575 struct GNUNET_SERVER_Client *client,
576 const struct GNUNET_MessageHeader *message)
578 struct GNUNET_SERVICE_Context *service = cls;
579 if (!service->allow_shutdown)
581 GNUNET_log (GNUNET_ERROR_TYPE_WARNING,
583 ("Received shutdown request, but configured to ignore!\n"));
584 GNUNET_SERVER_receive_done (client, GNUNET_SYSERR);
587 GNUNET_log (GNUNET_ERROR_TYPE_INFO,
588 _("Initiating shutdown as requested by client.\n"));
589 GNUNET_assert (service->sched != NULL);
590 GNUNET_SCHEDULER_shutdown (service->sched);
591 GNUNET_SERVER_receive_done (client, GNUNET_OK);
596 * Default handlers for all services. Will be copied and the
597 * "callback_cls" fields will be replaced with the specific service
600 static const struct GNUNET_SERVER_MessageHandler defhandlers[] = {
601 {&handle_test, NULL, GNUNET_MESSAGE_TYPE_TEST,
602 sizeof (struct GNUNET_MessageHeader)},
603 {&handle_shutdown, NULL, GNUNET_MESSAGE_TYPE_SHUTDOWN,
604 sizeof (struct GNUNET_MessageHeader)},
610 /* ****************** service core routines ************** */
614 * Check if access to the service is allowed from the given address.
617 check_access (void *cls, const struct sockaddr *addr, socklen_t addrlen)
619 struct GNUNET_SERVICE_Context *sctx = cls;
620 const struct sockaddr_in *i4;
621 const struct sockaddr_in6 *i6;
624 switch (addr->sa_family)
627 GNUNET_assert (addrlen == sizeof (struct sockaddr_in));
628 i4 = (const struct sockaddr_in *) addr;
629 ret = ((sctx->v4_allowed == NULL) ||
630 (check_ipv4_listed (sctx->v4_allowed,
632 && ((sctx->v4_denied == NULL) ||
633 (!check_ipv4_listed (sctx->v4_denied, &i4->sin_addr)));
636 GNUNET_assert (addrlen == sizeof (struct sockaddr_in6));
637 i6 = (const struct sockaddr_in6 *) addr;
638 ret = ((sctx->v6_allowed == NULL) ||
639 (check_ipv6_listed (sctx->v6_allowed,
641 && ((sctx->v6_denied == NULL) ||
642 (!check_ipv6_listed (sctx->v6_denied, &i6->sin6_addr)));
645 GNUNET_log (GNUNET_ERROR_TYPE_WARNING,
646 _("Unknown address family %d\n"), addr->sa_family);
647 return GNUNET_SYSERR;
649 if (ret != GNUNET_OK)
651 GNUNET_log (GNUNET_ERROR_TYPE_WARNING,
652 _("Access from `%s' denied to service `%s'\n"),
653 GNUNET_a2s (addr, addrlen), sctx->serviceName);
660 * Get the name of the file where we will
661 * write the PID of the service.
664 get_pid_file_name (struct GNUNET_SERVICE_Context *sctx)
670 GNUNET_CONFIGURATION_get_value_filename (sctx->cfg,
679 * Parse an IPv4 access control list.
682 process_acl4 (struct IPv4NetworkSet **ret,
683 struct GNUNET_SERVICE_Context *sctx, const char *option)
687 if (!GNUNET_CONFIGURATION_have_value (sctx->cfg, sctx->serviceName, option))
689 GNUNET_break (GNUNET_OK ==
690 GNUNET_CONFIGURATION_get_value_string (sctx->cfg,
693 if (NULL == (*ret = parse_ipv4_specification (opt)))
695 GNUNET_log (GNUNET_ERROR_TYPE_WARNING,
697 ("Could not parse IPv4 network specification `%s' for `%s:%s'\n"),
698 opt, sctx->serviceName, option);
700 return GNUNET_SYSERR;
708 * Parse an IPv4 access control list.
711 process_acl6 (struct IPv6NetworkSet **ret,
712 struct GNUNET_SERVICE_Context *sctx, const char *option)
715 if (!GNUNET_CONFIGURATION_have_value (sctx->cfg, sctx->serviceName, option))
717 GNUNET_break (GNUNET_OK ==
718 GNUNET_CONFIGURATION_get_value_string (sctx->cfg,
721 if (NULL == (*ret = parse_ipv6_specification (opt)))
723 GNUNET_log (GNUNET_ERROR_TYPE_WARNING,
725 ("Could not parse IPv6 network specification `%s' for `%s:%s'\n"),
726 opt, sctx->serviceName, option);
728 return GNUNET_SYSERR;
736 * Setup addr, addrlen, maxbuf, idle_timeout
737 * based on configuration!
739 * Configuration must specify a "PORT". It may
741 * - TIMEOUT (after how many ms does an inactive service timeout);
742 * - MAXBUF (maximum incoming message size supported)
743 * - DISABLEV6 (disable support for IPv6, otherwise we use dual-stack)
744 * - ALLOW_SHUTDOWN (allow clients to shutdown this service)
745 * - BINDTO (hostname or IP address to bind to, otherwise we take everything)
746 * - ACCEPT_FROM (only allow connections from specified IPv4 subnets)
747 * - ACCEPT_FROM6 (only allow connections from specified IPv6 subnets)
748 * - REJECT_FROM (disallow allow connections from specified IPv4 subnets)
749 * - REJECT_FROM6 (disallow allow connections from specified IPv6 subnets)
751 * @return GNUNET_OK if configuration succeeded
754 setup_service (struct GNUNET_SERVICE_Context *sctx)
756 unsigned long long maxbuf;
757 struct GNUNET_TIME_Relative idleout;
759 unsigned long long port;
761 struct addrinfo hints;
762 struct addrinfo *res;
763 struct addrinfo *pos;
766 struct GNUNET_NETWORK_Handle *desc;
768 if (GNUNET_CONFIGURATION_have_value (sctx->cfg,
769 sctx->serviceName, "TIMEOUT"))
772 GNUNET_CONFIGURATION_get_value_time (sctx->cfg,
774 "TIMEOUT", &idleout))
775 return GNUNET_SYSERR;
777 sctx->timeout = idleout;
780 sctx->timeout = GNUNET_TIME_UNIT_FOREVER_REL;
781 if (GNUNET_CONFIGURATION_have_value (sctx->cfg,
782 sctx->serviceName, "MAXBUF"))
785 GNUNET_CONFIGURATION_get_value_number (sctx->cfg,
788 return GNUNET_SYSERR;
791 maxbuf = GNUNET_SERVER_MAX_MESSAGE_SIZE;
792 if (GNUNET_CONFIGURATION_have_value (sctx->cfg,
793 sctx->serviceName, "DISABLEV6"))
796 (disablev6 = GNUNET_CONFIGURATION_get_value_yesno (sctx->cfg,
800 return GNUNET_SYSERR;
803 disablev6 = GNUNET_NO;
804 if (GNUNET_CONFIGURATION_have_value (sctx->cfg,
805 sctx->serviceName, "ALLOW_SHUTDOWN"))
808 (sctx->allow_shutdown =
809 GNUNET_CONFIGURATION_get_value_yesno (sctx->cfg, sctx->serviceName,
811 return GNUNET_SYSERR;
814 sctx->allow_shutdown = GNUNET_NO;
818 /* probe IPv6 support */
819 desc = GNUNET_NETWORK_socket_create (PF_INET6, SOCK_STREAM, 0);
822 if ((errno == ENOBUFS) ||
823 (errno == ENOMEM) || (errno == ENFILE) || (errno == EACCES))
825 GNUNET_log_strerror (GNUNET_ERROR_TYPE_ERROR, "socket");
826 return GNUNET_SYSERR;
828 GNUNET_log (GNUNET_ERROR_TYPE_INFO,
830 ("Disabling IPv6 support for service `%s', failed to create IPv6 socket: %s\n"),
831 sctx->serviceName, STRERROR (errno));
832 disablev6 = GNUNET_YES;
836 GNUNET_break (GNUNET_OK == GNUNET_NETWORK_socket_close (desc));
842 if (GNUNET_CONFIGURATION_have_value (sctx->cfg,
843 sctx->serviceName, "TOLERANT"))
846 (tolerant = GNUNET_CONFIGURATION_get_value_yesno (sctx->cfg,
849 return GNUNET_SYSERR;
852 tolerant = GNUNET_NO;
853 sctx->require_found = tolerant ? GNUNET_NO : GNUNET_YES;
857 GNUNET_CONFIGURATION_get_value_number (sctx->cfg,
860 &port)) || (port > 65535))
862 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
864 ("Require valid port number for service `%s' in configuration!\n"),
866 return GNUNET_SYSERR;
868 if (GNUNET_CONFIGURATION_have_value (sctx->cfg,
869 sctx->serviceName, "BINDTO"))
871 GNUNET_break (GNUNET_OK ==
872 GNUNET_CONFIGURATION_get_value_string (sctx->cfg,
880 if (hostname != NULL)
882 memset (&hints, 0, sizeof (struct addrinfo));
884 hints.ai_family = AF_INET;
885 if ((0 != (ret = getaddrinfo (hostname,
886 NULL, &hints, &res))) || (res == NULL))
888 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
889 _("Failed to resolve `%s': %s\n"),
890 hostname, gai_strerror (ret));
891 GNUNET_free (hostname);
892 return GNUNET_SYSERR;
895 while ((NULL != pos) &&
897 (pos->ai_family != AF_INET)) ||
898 ((pos->ai_family != AF_INET) && (pos->ai_family != AF_INET6))))
902 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
903 _("Failed to find %saddress for `%s'.\n"),
904 disablev6 ? "IPv4 " : "", hostname);
906 GNUNET_free (hostname);
907 return GNUNET_SYSERR;
909 GNUNET_free (hostname);
910 if (pos->ai_family == AF_INET)
912 GNUNET_assert (pos->ai_addrlen == sizeof (struct sockaddr_in));
913 sctx->addrlen = pos->ai_addrlen;
914 sctx->addr = GNUNET_malloc (sctx->addrlen);
915 memcpy (sctx->addr, res->ai_addr, sctx->addrlen);
916 ((struct sockaddr_in *) sctx->addr)->sin_port = htons (port);
917 GNUNET_log (GNUNET_ERROR_TYPE_INFO,
919 ("Configured to bind to %s address; %s connections to this service will fail!\n"),
924 GNUNET_assert (pos->ai_family == AF_INET6);
925 GNUNET_assert (pos->ai_addrlen == sizeof (struct sockaddr_in6));
926 sctx->addrlen = pos->ai_addrlen;
927 sctx->addr = GNUNET_malloc (sctx->addrlen);
928 memcpy (sctx->addr, res->ai_addr, sctx->addrlen);
929 GNUNET_log (GNUNET_ERROR_TYPE_INFO,
931 ("Configured to bind to %s address; %s connections to this service will fail!\n"),
933 ((struct sockaddr_in6 *) sctx->addr)->sin6_port = htons (port);
939 /* will bind against everything, just set port */
943 sctx->addrlen = sizeof (struct sockaddr_in);
944 sctx->addr = GNUNET_malloc (sctx->addrlen);
945 #if HAVE_SOCKADDR_IN_SIN_LEN
946 ((struct sockaddr_in *) sctx->addr)->sin_len = sctx->addrlen;
948 ((struct sockaddr_in *) sctx->addr)->sin_family = AF_INET;
949 ((struct sockaddr_in *) sctx->addr)->sin_port = htons (port);
950 GNUNET_log (GNUNET_ERROR_TYPE_INFO,
952 ("Configured to bind to %s address; %s connections to this service will fail!\n"),
958 sctx->addrlen = sizeof (struct sockaddr_in6);
959 sctx->addr = GNUNET_malloc (sctx->addrlen);
960 #if HAVE_SOCKADDR_IN_SIN_LEN
961 ((struct sockaddr_in6 *) sctx->addr)->sin6_len = sctx->addrlen;
963 ((struct sockaddr_in6 *) sctx->addr)->sin6_family = AF_INET6;
964 ((struct sockaddr_in6 *) sctx->addr)->sin6_port = htons (port);
967 sctx->maxbuf = (size_t) maxbuf;
968 if (sctx->maxbuf != maxbuf)
970 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
972 ("Value in configuration for `%s' and service `%s' too large!\n"),
973 "MAXBUF", sctx->serviceName);
974 return GNUNET_SYSERR;
979 process_acl4 (&sctx->v4_denied,
983 process_acl4 (&sctx->v4_allowed,
987 process_acl6 (&sctx->v6_denied,
990 (GNUNET_OK != process_acl6 (&sctx->v6_allowed, sctx, "ACCEPT_FROM6")))
991 return GNUNET_SYSERR;
997 * Get the name of the user that'll be used
998 * to provide the service.
1001 get_user_name (struct GNUNET_SERVICE_Context *sctx)
1007 GNUNET_CONFIGURATION_get_value_filename (sctx->cfg,
1018 write_pid_file (struct GNUNET_SERVICE_Context *sctx, pid_t pid)
1026 if (NULL == (pif = get_pid_file_name (sctx)))
1027 return GNUNET_OK; /* no file desired */
1028 user = get_user_name (sctx);
1029 rdir = GNUNET_strdup (pif);
1030 len = strlen (rdir);
1031 while ((len > 0) && (rdir[len] != DIR_SEPARATOR))
1034 if (0 != ACCESS (rdir, F_OK))
1036 /* we get to create a directory -- and claim it
1038 GNUNET_DISK_directory_create (rdir);
1039 if ((user != NULL) && (0 < strlen (user)))
1040 GNUNET_DISK_file_change_owner (rdir, user);
1042 if (0 != ACCESS (rdir, W_OK | X_OK))
1044 GNUNET_log_strerror_file (GNUNET_ERROR_TYPE_ERROR, "access", rdir);
1046 GNUNET_free_non_null (user);
1048 return GNUNET_SYSERR;
1051 pidfd = FOPEN (pif, "w");
1054 GNUNET_log_strerror_file (GNUNET_ERROR_TYPE_ERROR, "fopen", pif);
1056 GNUNET_free_non_null (user);
1057 return GNUNET_SYSERR;
1059 if (0 > FPRINTF (pidfd, "%u", pid))
1060 GNUNET_log_strerror_file (GNUNET_ERROR_TYPE_WARNING, "fprintf", pif);
1061 GNUNET_break (0 == fclose (pidfd));
1062 if ((user != NULL) && (0 < strlen (user)))
1063 GNUNET_DISK_file_change_owner (pif, user);
1064 GNUNET_free_non_null (user);
1071 * Initial task for the service.
1074 service_task (void *cls, const struct GNUNET_SCHEDULER_TaskContext *tc)
1076 struct GNUNET_SERVICE_Context *sctx = cls;
1079 sctx->sched = tc->sched;
1080 sctx->server = GNUNET_SERVER_create (tc->sched,
1086 sctx->timeout, sctx->require_found);
1087 if (sctx->server == NULL)
1089 GNUNET_log (GNUNET_ERROR_TYPE_INFO,
1090 _("Failed to start `%s' at `%s'\n"),
1091 sctx->serviceName, GNUNET_a2s (sctx->addr, sctx->addrlen));
1092 sctx->ret = GNUNET_SYSERR;
1095 sctx->my_handlers = GNUNET_malloc (sizeof (defhandlers));
1096 memcpy (sctx->my_handlers, defhandlers, sizeof (defhandlers));
1098 while ((sctx->my_handlers[i].callback != NULL))
1099 sctx->my_handlers[i++].callback_cls = sctx;
1100 GNUNET_SERVER_add_handlers (sctx->server, sctx->my_handlers);
1101 if (sctx->ready_confirm_fd != -1)
1103 GNUNET_break (1 == WRITE (sctx->ready_confirm_fd, ".", 1));
1104 GNUNET_break (0 == CLOSE (sctx->ready_confirm_fd));
1105 sctx->ready_confirm_fd = -1;
1106 write_pid_file (sctx, getpid ());
1108 GNUNET_log (GNUNET_ERROR_TYPE_INFO,
1109 _("Service `%s' runs at %s\n"),
1110 sctx->serviceName, GNUNET_a2s (sctx->addr, sctx->addrlen));
1111 sctx->task (sctx->task_cls, tc->sched, sctx->server, sctx->cfg);
1116 * Detach from terminal.
1119 detach_terminal (struct GNUNET_SERVICE_Context *sctx)
1126 if (0 != PIPE (filedes))
1128 GNUNET_log_strerror (GNUNET_ERROR_TYPE_ERROR, "pipe");
1129 return GNUNET_SYSERR;
1134 GNUNET_log_strerror (GNUNET_ERROR_TYPE_ERROR, "fork");
1135 return GNUNET_SYSERR;
1142 GNUNET_break (0 == CLOSE (filedes[1]));
1144 if (1 != READ (filedes[0], &c, sizeof (char)))
1145 GNUNET_log_strerror (GNUNET_ERROR_TYPE_WARNING, "read");
1152 GNUNET_log (GNUNET_ERROR_TYPE_INFO,
1153 _("Service process failed to initialize\n"));
1156 GNUNET_log (GNUNET_ERROR_TYPE_INFO,
1158 ("Service process could not initialize server function\n"));
1161 GNUNET_log (GNUNET_ERROR_TYPE_INFO,
1162 _("Service process failed to report status\n"));
1165 exit (1); /* child reported error */
1167 GNUNET_break (0 == CLOSE (0));
1168 GNUNET_break (0 == CLOSE (1));
1169 GNUNET_break (0 == CLOSE (filedes[0]));
1170 nullfd = OPEN ("/dev/null", O_RDWR | O_APPEND);
1172 return GNUNET_SYSERR;
1173 /* set stdin/stdout to /dev/null */
1174 if ((dup2 (nullfd, 0) < 0) || (dup2 (nullfd, 1) < 0))
1176 GNUNET_log_strerror (GNUNET_ERROR_TYPE_ERROR, "dup2");
1177 return GNUNET_SYSERR;
1179 /* Detach from controlling terminal */
1182 GNUNET_log_strerror (GNUNET_ERROR_TYPE_ERROR, "setsid");
1183 sctx->ready_confirm_fd = filedes[1];
1185 /* FIXME: we probably need to do something else
1186 elsewhere in order to fork the process itself... */
1197 set_user_id (struct GNUNET_SERVICE_Context *sctx)
1201 if (NULL == (user = get_user_name (sctx)))
1202 return GNUNET_OK; /* keep */
1207 pws = getpwnam (user);
1210 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
1211 _("Cannot obtain information about user `%s': %s\n"),
1212 user, errno == 0 ? _("No such user") : STRERROR (errno));
1214 return GNUNET_SYSERR;
1216 if ((0 != setgid (pws->pw_gid)) || (0 != setegid (pws->pw_gid)) ||
1218 (0 != initgroups (user, pws->pw_gid)) ||
1220 (0 != setuid (pws->pw_uid)) || (0 != seteuid (pws->pw_uid)))
1222 if ((0 != setregid (pws->pw_gid, pws->pw_gid)) ||
1223 (0 != setreuid (pws->pw_uid, pws->pw_uid)))
1225 GNUNET_log (GNUNET_ERROR_TYPE_ERROR,
1226 _("Cannot change user/group to `%s': %s\n"), user,
1229 return GNUNET_SYSERR;
1239 * Delete the PID file that was created by our parent.
1242 pid_file_delete (struct GNUNET_SERVICE_Context *sctx)
1244 char *pif = get_pid_file_name (sctx);
1246 return; /* no PID file */
1247 if (0 != UNLINK (pif))
1248 GNUNET_log_strerror_file (GNUNET_ERROR_TYPE_WARNING, "unlink", pif);
1253 * Run a standard GNUnet service startup sequence (initialize loggers
1254 * and configuration, parse options).
1256 * @param argc number of command line arguments
1257 * @param argv command line arguments
1258 * @param serviceName our service name
1259 * @param task main task of the service
1260 * @param task_cls closure for task
1261 * @param term termination task of the service
1262 * @param term_cls closure for term
1263 * @return GNUNET_SYSERR on error, GNUNET_OK
1264 * if we shutdown nicely
1267 GNUNET_SERVICE_run (int argc,
1269 const char *serviceName,
1270 GNUNET_SERVICE_Main task,
1271 void *task_cls, GNUNET_SERVICE_Term term, void *term_cls)
1277 struct GNUNET_SERVICE_Context sctx;
1278 struct GNUNET_CONFIGURATION_Handle *cfg;
1279 struct GNUNET_GETOPT_CommandLineOption service_options[] = {
1280 GNUNET_GETOPT_OPTION_CFG_FILE (&cfg_fn),
1281 {'d', "daemonize", NULL,
1282 gettext_noop ("do daemonize (detach from terminal)"), 0,
1283 GNUNET_GETOPT_set_one, &do_daemonize},
1284 GNUNET_GETOPT_OPTION_HELP (serviceName),
1285 GNUNET_GETOPT_OPTION_LOGLEVEL (&loglev),
1286 GNUNET_GETOPT_OPTION_LOGFILE (&logfile),
1287 GNUNET_GETOPT_OPTION_VERSION (PACKAGE_VERSION),
1288 GNUNET_GETOPT_OPTION_END
1292 loglev = GNUNET_strdup ("WARNING");
1293 cfg_fn = GNUNET_strdup (GNUNET_DEFAULT_DAEMON_CONFIG_FILE);
1294 memset (&sctx, 0, sizeof (sctx));
1295 sctx.ready_confirm_fd = -1;
1296 sctx.ret = GNUNET_OK;
1297 sctx.timeout = GNUNET_TIME_UNIT_FOREVER_REL;
1298 sctx.maxbuf = GNUNET_SERVER_MAX_MESSAGE_SIZE;
1300 sctx.serviceName = serviceName;
1301 sctx.cfg = cfg = GNUNET_CONFIGURATION_create ();
1302 /* setup subsystems */
1303 if ((GNUNET_SYSERR ==
1304 GNUNET_GETOPT_run (serviceName,
1309 GNUNET_log_setup (serviceName, loglev, logfile)) ||
1311 GNUNET_CONFIGURATION_load (cfg, cfg_fn)) ||
1313 setup_service (&sctx)) ||
1314 ((do_daemonize == 1) &&
1315 (GNUNET_OK != detach_terminal (&sctx))) ||
1316 (GNUNET_OK != set_user_id (&sctx)))
1318 if (sctx.ready_confirm_fd != -1)
1320 if (1 != WRITE (sctx.ready_confirm_fd, "I", 1))
1321 GNUNET_log_strerror (GNUNET_ERROR_TYPE_WARNING, "write");
1322 GNUNET_break (0 == CLOSE (sctx.ready_confirm_fd));
1324 GNUNET_CONFIGURATION_destroy (cfg);
1325 GNUNET_free_non_null (sctx.addr);
1326 GNUNET_free_non_null (logfile);
1327 GNUNET_free (loglev);
1328 GNUNET_free (cfg_fn);
1329 GNUNET_free_non_null (sctx.v4_denied);
1330 GNUNET_free_non_null (sctx.v6_denied);
1331 GNUNET_free_non_null (sctx.v4_allowed);
1332 GNUNET_free_non_null (sctx.v6_allowed);
1333 return GNUNET_SYSERR;
1336 GNUNET_log (GNUNET_ERROR_TYPE_DEBUG,
1337 "Service `%s' runs with configuration from `%s'\n",
1338 serviceName, cfg_fn);
1340 /* actually run service */
1341 GNUNET_SCHEDULER_run (&service_task, &sctx);
1342 if (sctx.ready_confirm_fd != -1)
1344 if (1 != WRITE (sctx.ready_confirm_fd, "S", 1))
1345 GNUNET_log_strerror (GNUNET_ERROR_TYPE_WARNING, "write");
1346 GNUNET_break (0 == CLOSE (sctx.ready_confirm_fd));
1351 term (term_cls, sctx.cfg);
1352 if ((do_daemonize == 1) && (sctx.server != NULL))
1353 pid_file_delete (&sctx);
1354 if (sctx.server != NULL)
1355 GNUNET_SERVER_destroy (sctx.server);
1356 GNUNET_free_non_null (sctx.my_handlers);
1357 GNUNET_CONFIGURATION_destroy (cfg);
1358 GNUNET_free_non_null (sctx.addr);
1359 GNUNET_free_non_null (logfile);
1360 GNUNET_free (loglev);
1361 GNUNET_free (cfg_fn);
1362 GNUNET_free_non_null (sctx.v4_denied);
1363 GNUNET_free_non_null (sctx.v6_denied);
1364 GNUNET_free_non_null (sctx.v4_allowed);
1365 GNUNET_free_non_null (sctx.v6_allowed);
1371 * Run a service startup sequence within an existing
1372 * initialized system.
1374 * @param serviceName our service name
1375 * @param sched scheduler to use
1376 * @param cfg configuration to use
1377 * @return NULL on error, service handle
1379 struct GNUNET_SERVICE_Context *
1380 GNUNET_SERVICE_start (const char *serviceName,
1381 struct GNUNET_SCHEDULER_Handle *sched,
1382 const struct GNUNET_CONFIGURATION_Handle *cfg)
1385 struct GNUNET_SERVICE_Context *sctx;
1387 sctx = GNUNET_malloc (sizeof (struct GNUNET_SERVICE_Context));
1388 sctx->ready_confirm_fd = -1; /* no daemonizing */
1389 sctx->ret = GNUNET_OK;
1390 sctx->timeout = GNUNET_TIME_UNIT_FOREVER_REL;
1391 sctx->maxbuf = GNUNET_SERVER_MAX_MESSAGE_SIZE;
1392 sctx->serviceName = serviceName;
1394 sctx->sched = sched;
1396 /* setup subsystems */
1397 if ((GNUNET_OK != setup_service (sctx)) ||
1398 (NULL == (sctx->server = GNUNET_SERVER_create (sched,
1405 sctx->require_found))))
1407 GNUNET_SERVICE_stop (sctx);
1410 sctx->my_handlers = GNUNET_malloc (sizeof (defhandlers));
1411 memcpy (sctx->my_handlers, defhandlers, sizeof (defhandlers));
1413 while ((sctx->my_handlers[i].callback != NULL))
1414 sctx->my_handlers[i++].callback_cls = sctx;
1415 GNUNET_SERVER_add_handlers (sctx->server, sctx->my_handlers);
1422 * Obtain the server used by a service. Note that the server must NOT
1423 * be destroyed by the caller.
1425 * @param ctx the service context returned from the start function
1426 * @return handle to the server for this service, NULL if there is none
1428 struct GNUNET_SERVER_Handle *
1429 GNUNET_SERVICE_get_server (struct GNUNET_SERVICE_Context *ctx)
1436 * Stop a service that was started with "GNUNET_SERVICE_start".
1438 * @param sctx the service context returned from the start function
1441 GNUNET_SERVICE_stop (struct GNUNET_SERVICE_Context *sctx)
1443 if (NULL != sctx->server)
1444 GNUNET_SERVER_destroy (sctx->server);
1445 GNUNET_free_non_null (sctx->my_handlers);
1446 GNUNET_free_non_null (sctx->addr);
1447 GNUNET_free_non_null (sctx->v4_denied);
1448 GNUNET_free_non_null (sctx->v6_denied);
1449 GNUNET_free_non_null (sctx->v4_allowed);
1450 GNUNET_free_non_null (sctx->v6_allowed);
1455 /* end of service.c */