Blame


1 d93ecf7d 2022-12-14 stsp /*
2 d93ecf7d 2022-12-14 stsp * Copyright (c) 2022 Stefan Sperling <stsp@openbsd.org>
3 d93ecf7d 2022-12-14 stsp *
4 d93ecf7d 2022-12-14 stsp * Permission to use, copy, modify, and distribute this software for any
5 d93ecf7d 2022-12-14 stsp * purpose with or without fee is hereby granted, provided that the above
6 d93ecf7d 2022-12-14 stsp * copyright notice and this permission notice appear in all copies.
7 d93ecf7d 2022-12-14 stsp *
8 d93ecf7d 2022-12-14 stsp * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
9 d93ecf7d 2022-12-14 stsp * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
10 d93ecf7d 2022-12-14 stsp * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
11 d93ecf7d 2022-12-14 stsp * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
12 d93ecf7d 2022-12-14 stsp * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
13 d93ecf7d 2022-12-14 stsp * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
14 d93ecf7d 2022-12-14 stsp * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
15 d93ecf7d 2022-12-14 stsp */
16 d93ecf7d 2022-12-14 stsp
17 d93ecf7d 2022-12-14 stsp #include <sys/types.h>
18 d93ecf7d 2022-12-14 stsp #include <sys/queue.h>
19 d93ecf7d 2022-12-14 stsp #include <sys/socket.h>
20 d93ecf7d 2022-12-14 stsp #include <sys/uio.h>
21 d93ecf7d 2022-12-14 stsp
22 d93ecf7d 2022-12-14 stsp #include <errno.h>
23 d93ecf7d 2022-12-14 stsp #include <event.h>
24 d93ecf7d 2022-12-14 stsp #include <siphash.h>
25 d93ecf7d 2022-12-14 stsp #include <stdint.h>
26 d93ecf7d 2022-12-14 stsp #include <stdio.h>
27 d93ecf7d 2022-12-14 stsp #include <stdlib.h>
28 d93ecf7d 2022-12-14 stsp #include <string.h>
29 d93ecf7d 2022-12-14 stsp #include <imsg.h>
30 d93ecf7d 2022-12-14 stsp #include <limits.h>
31 d93ecf7d 2022-12-14 stsp #include <sha1.h>
32 5822e79e 2023-02-23 op #include <sha2.h>
33 d93ecf7d 2022-12-14 stsp #include <signal.h>
34 d93ecf7d 2022-12-14 stsp #include <unistd.h>
35 d93ecf7d 2022-12-14 stsp
36 d93ecf7d 2022-12-14 stsp #include "got_error.h"
37 9afa3de2 2023-04-04 stsp #include "got_path.h"
38 d93ecf7d 2022-12-14 stsp
39 d93ecf7d 2022-12-14 stsp #include "gotd.h"
40 d93ecf7d 2022-12-14 stsp #include "log.h"
41 d93ecf7d 2022-12-14 stsp #include "listen.h"
42 d93ecf7d 2022-12-14 stsp
43 d93ecf7d 2022-12-14 stsp #ifndef nitems
44 d93ecf7d 2022-12-14 stsp #define nitems(_a) (sizeof((_a)) / sizeof((_a)[0]))
45 d93ecf7d 2022-12-14 stsp #endif
46 d93ecf7d 2022-12-14 stsp
47 d93ecf7d 2022-12-14 stsp struct gotd_listen_client {
48 d93ecf7d 2022-12-14 stsp STAILQ_ENTRY(gotd_listen_client) entry;
49 d93ecf7d 2022-12-14 stsp uint32_t id;
50 d93ecf7d 2022-12-14 stsp int fd;
51 7a0564e3 2022-12-30 stsp uid_t euid;
52 d93ecf7d 2022-12-14 stsp };
53 d93ecf7d 2022-12-14 stsp STAILQ_HEAD(gotd_listen_clients, gotd_listen_client);
54 d93ecf7d 2022-12-14 stsp
55 d93ecf7d 2022-12-14 stsp static struct gotd_listen_clients gotd_listen_clients[GOTD_CLIENT_TABLE_SIZE];
56 d93ecf7d 2022-12-14 stsp static SIPHASH_KEY clients_hash_key;
57 d93ecf7d 2022-12-14 stsp static volatile int listen_client_cnt;
58 d93ecf7d 2022-12-14 stsp static int inflight;
59 d93ecf7d 2022-12-14 stsp
60 7a0564e3 2022-12-30 stsp struct gotd_uid_connection_counter {
61 7a0564e3 2022-12-30 stsp STAILQ_ENTRY(gotd_uid_connection_counter) entry;
62 7a0564e3 2022-12-30 stsp uid_t euid;
63 7a0564e3 2022-12-30 stsp int nconnections;
64 7a0564e3 2022-12-30 stsp };
65 7a0564e3 2022-12-30 stsp STAILQ_HEAD(gotd_client_uids, gotd_uid_connection_counter);
66 7a0564e3 2022-12-30 stsp static struct gotd_client_uids gotd_client_uids[GOTD_CLIENT_TABLE_SIZE];
67 7a0564e3 2022-12-30 stsp static SIPHASH_KEY uid_hash_key;
68 7a0564e3 2022-12-30 stsp
69 d93ecf7d 2022-12-14 stsp static struct {
70 d93ecf7d 2022-12-14 stsp pid_t pid;
71 d93ecf7d 2022-12-14 stsp const char *title;
72 d93ecf7d 2022-12-14 stsp int fd;
73 d93ecf7d 2022-12-14 stsp struct gotd_imsgev iev;
74 d93ecf7d 2022-12-14 stsp struct gotd_imsgev pause;
75 40b85cca 2023-01-03 stsp struct gotd_uid_connection_limit *connection_limits;
76 40b85cca 2023-01-03 stsp size_t nconnection_limits;
77 d93ecf7d 2022-12-14 stsp } gotd_listen;
78 d93ecf7d 2022-12-14 stsp
79 d93ecf7d 2022-12-14 stsp static int inflight;
80 d93ecf7d 2022-12-14 stsp
81 d93ecf7d 2022-12-14 stsp static void listen_shutdown(void);
82 d93ecf7d 2022-12-14 stsp
83 d93ecf7d 2022-12-14 stsp static void
84 d93ecf7d 2022-12-14 stsp listen_sighdlr(int sig, short event, void *arg)
85 d93ecf7d 2022-12-14 stsp {
86 d93ecf7d 2022-12-14 stsp /*
87 d93ecf7d 2022-12-14 stsp * Normal signal handler rules don't apply because libevent
88 d93ecf7d 2022-12-14 stsp * decouples for us.
89 d93ecf7d 2022-12-14 stsp */
90 d93ecf7d 2022-12-14 stsp
91 d93ecf7d 2022-12-14 stsp switch (sig) {
92 d93ecf7d 2022-12-14 stsp case SIGHUP:
93 d93ecf7d 2022-12-14 stsp break;
94 d93ecf7d 2022-12-14 stsp case SIGUSR1:
95 d93ecf7d 2022-12-14 stsp break;
96 d93ecf7d 2022-12-14 stsp case SIGTERM:
97 d93ecf7d 2022-12-14 stsp case SIGINT:
98 d93ecf7d 2022-12-14 stsp listen_shutdown();
99 d93ecf7d 2022-12-14 stsp /* NOTREACHED */
100 d93ecf7d 2022-12-14 stsp break;
101 d93ecf7d 2022-12-14 stsp default:
102 d93ecf7d 2022-12-14 stsp fatalx("unexpected signal");
103 d93ecf7d 2022-12-14 stsp }
104 d93ecf7d 2022-12-14 stsp }
105 d93ecf7d 2022-12-14 stsp
106 d93ecf7d 2022-12-14 stsp static uint64_t
107 d93ecf7d 2022-12-14 stsp client_hash(uint32_t client_id)
108 d93ecf7d 2022-12-14 stsp {
109 d93ecf7d 2022-12-14 stsp return SipHash24(&clients_hash_key, &client_id, sizeof(client_id));
110 d93ecf7d 2022-12-14 stsp }
111 d93ecf7d 2022-12-14 stsp
112 d93ecf7d 2022-12-14 stsp static void
113 d93ecf7d 2022-12-14 stsp add_client(struct gotd_listen_client *client)
114 d93ecf7d 2022-12-14 stsp {
115 d93ecf7d 2022-12-14 stsp uint64_t slot = client_hash(client->id) % nitems(gotd_listen_clients);
116 d93ecf7d 2022-12-14 stsp STAILQ_INSERT_HEAD(&gotd_listen_clients[slot], client, entry);
117 d93ecf7d 2022-12-14 stsp listen_client_cnt++;
118 d93ecf7d 2022-12-14 stsp }
119 d93ecf7d 2022-12-14 stsp
120 d93ecf7d 2022-12-14 stsp static struct gotd_listen_client *
121 d93ecf7d 2022-12-14 stsp find_client(uint32_t client_id)
122 d93ecf7d 2022-12-14 stsp {
123 d93ecf7d 2022-12-14 stsp uint64_t slot;
124 d93ecf7d 2022-12-14 stsp struct gotd_listen_client *c;
125 d93ecf7d 2022-12-14 stsp
126 d93ecf7d 2022-12-14 stsp slot = client_hash(client_id) % nitems(gotd_listen_clients);
127 d93ecf7d 2022-12-14 stsp STAILQ_FOREACH(c, &gotd_listen_clients[slot], entry) {
128 d93ecf7d 2022-12-14 stsp if (c->id == client_id)
129 d93ecf7d 2022-12-14 stsp return c;
130 d93ecf7d 2022-12-14 stsp }
131 d93ecf7d 2022-12-14 stsp
132 d93ecf7d 2022-12-14 stsp return NULL;
133 d93ecf7d 2022-12-14 stsp }
134 d93ecf7d 2022-12-14 stsp
135 d93ecf7d 2022-12-14 stsp static uint32_t
136 d93ecf7d 2022-12-14 stsp get_client_id(void)
137 d93ecf7d 2022-12-14 stsp {
138 d93ecf7d 2022-12-14 stsp int duplicate = 0;
139 d93ecf7d 2022-12-14 stsp uint32_t id;
140 d93ecf7d 2022-12-14 stsp
141 d93ecf7d 2022-12-14 stsp do {
142 d93ecf7d 2022-12-14 stsp id = arc4random();
143 d93ecf7d 2022-12-14 stsp duplicate = (find_client(id) != NULL);
144 d93ecf7d 2022-12-14 stsp } while (duplicate || id == 0);
145 d93ecf7d 2022-12-14 stsp
146 d93ecf7d 2022-12-14 stsp return id;
147 7a0564e3 2022-12-30 stsp }
148 7a0564e3 2022-12-30 stsp
149 7a0564e3 2022-12-30 stsp static uint64_t
150 7a0564e3 2022-12-30 stsp uid_hash(uid_t euid)
151 7a0564e3 2022-12-30 stsp {
152 7a0564e3 2022-12-30 stsp return SipHash24(&uid_hash_key, &euid, sizeof(euid));
153 7a0564e3 2022-12-30 stsp }
154 7a0564e3 2022-12-30 stsp
155 7a0564e3 2022-12-30 stsp static void
156 7a0564e3 2022-12-30 stsp add_uid_connection_counter(struct gotd_uid_connection_counter *counter)
157 7a0564e3 2022-12-30 stsp {
158 7a0564e3 2022-12-30 stsp uint64_t slot = uid_hash(counter->euid) % nitems(gotd_client_uids);
159 7a0564e3 2022-12-30 stsp STAILQ_INSERT_HEAD(&gotd_client_uids[slot], counter, entry);
160 7a0564e3 2022-12-30 stsp }
161 7a0564e3 2022-12-30 stsp
162 7a0564e3 2022-12-30 stsp static void
163 7a0564e3 2022-12-30 stsp remove_uid_connection_counter(struct gotd_uid_connection_counter *counter)
164 7a0564e3 2022-12-30 stsp {
165 7a0564e3 2022-12-30 stsp uint64_t slot = uid_hash(counter->euid) % nitems(gotd_client_uids);
166 7a0564e3 2022-12-30 stsp STAILQ_REMOVE(&gotd_client_uids[slot], counter,
167 7a0564e3 2022-12-30 stsp gotd_uid_connection_counter, entry);
168 7a0564e3 2022-12-30 stsp }
169 7a0564e3 2022-12-30 stsp
170 7a0564e3 2022-12-30 stsp static struct gotd_uid_connection_counter *
171 7a0564e3 2022-12-30 stsp find_uid_connection_counter(uid_t euid)
172 7a0564e3 2022-12-30 stsp {
173 7a0564e3 2022-12-30 stsp uint64_t slot;
174 7a0564e3 2022-12-30 stsp struct gotd_uid_connection_counter *c;
175 7a0564e3 2022-12-30 stsp
176 7a0564e3 2022-12-30 stsp slot = uid_hash(euid) % nitems(gotd_client_uids);
177 7a0564e3 2022-12-30 stsp STAILQ_FOREACH(c, &gotd_client_uids[slot], entry) {
178 7a0564e3 2022-12-30 stsp if (c->euid == euid)
179 7a0564e3 2022-12-30 stsp return c;
180 7a0564e3 2022-12-30 stsp }
181 7a0564e3 2022-12-30 stsp
182 7a0564e3 2022-12-30 stsp return NULL;
183 d93ecf7d 2022-12-14 stsp }
184 d93ecf7d 2022-12-14 stsp
185 d93ecf7d 2022-12-14 stsp static const struct got_error *
186 d93ecf7d 2022-12-14 stsp disconnect(struct gotd_listen_client *client)
187 d93ecf7d 2022-12-14 stsp {
188 7a0564e3 2022-12-30 stsp struct gotd_uid_connection_counter *counter;
189 d93ecf7d 2022-12-14 stsp uint64_t slot;
190 d93ecf7d 2022-12-14 stsp int client_fd;
191 d93ecf7d 2022-12-14 stsp
192 d93ecf7d 2022-12-14 stsp log_debug("client on fd %d disconnecting", client->fd);
193 d93ecf7d 2022-12-14 stsp
194 d93ecf7d 2022-12-14 stsp slot = client_hash(client->id) % nitems(gotd_listen_clients);
195 d93ecf7d 2022-12-14 stsp STAILQ_REMOVE(&gotd_listen_clients[slot], client,
196 d93ecf7d 2022-12-14 stsp gotd_listen_client, entry);
197 7a0564e3 2022-12-30 stsp
198 7a0564e3 2022-12-30 stsp counter = find_uid_connection_counter(client->euid);
199 7a0564e3 2022-12-30 stsp if (counter) {
200 7a0564e3 2022-12-30 stsp if (counter->nconnections > 0)
201 7a0564e3 2022-12-30 stsp counter->nconnections--;
202 7a0564e3 2022-12-30 stsp if (counter->nconnections == 0) {
203 7a0564e3 2022-12-30 stsp remove_uid_connection_counter(counter);
204 7a0564e3 2022-12-30 stsp free(counter);
205 7a0564e3 2022-12-30 stsp }
206 7a0564e3 2022-12-30 stsp }
207 7a0564e3 2022-12-30 stsp
208 d93ecf7d 2022-12-14 stsp client_fd = client->fd;
209 d93ecf7d 2022-12-14 stsp free(client);
210 d93ecf7d 2022-12-14 stsp inflight--;
211 d93ecf7d 2022-12-14 stsp listen_client_cnt--;
212 d93ecf7d 2022-12-14 stsp if (close(client_fd) == -1)
213 d93ecf7d 2022-12-14 stsp return got_error_from_errno("close");
214 d93ecf7d 2022-12-14 stsp
215 d93ecf7d 2022-12-14 stsp return NULL;
216 d93ecf7d 2022-12-14 stsp }
217 d93ecf7d 2022-12-14 stsp
218 d93ecf7d 2022-12-14 stsp static int
219 d93ecf7d 2022-12-14 stsp accept_reserve(int fd, struct sockaddr *addr, socklen_t *addrlen,
220 d93ecf7d 2022-12-14 stsp int reserve, volatile int *counter)
221 d93ecf7d 2022-12-14 stsp {
222 d93ecf7d 2022-12-14 stsp int ret;
223 d93ecf7d 2022-12-14 stsp
224 d93ecf7d 2022-12-14 stsp if (getdtablecount() + reserve +
225 d93ecf7d 2022-12-14 stsp ((*counter + 1) * GOTD_FD_NEEDED) >= getdtablesize()) {
226 d93ecf7d 2022-12-14 stsp log_debug("inflight fds exceeded");
227 d93ecf7d 2022-12-14 stsp errno = EMFILE;
228 d93ecf7d 2022-12-14 stsp return -1;
229 d93ecf7d 2022-12-14 stsp }
230 d93ecf7d 2022-12-14 stsp
231 d93ecf7d 2022-12-14 stsp if ((ret = accept4(fd, addr, addrlen,
232 d93ecf7d 2022-12-14 stsp SOCK_NONBLOCK | SOCK_CLOEXEC)) > -1) {
233 d93ecf7d 2022-12-14 stsp (*counter)++;
234 d93ecf7d 2022-12-14 stsp }
235 d93ecf7d 2022-12-14 stsp
236 d93ecf7d 2022-12-14 stsp return ret;
237 d93ecf7d 2022-12-14 stsp }
238 d93ecf7d 2022-12-14 stsp
239 d93ecf7d 2022-12-14 stsp static void
240 d93ecf7d 2022-12-14 stsp gotd_accept_paused(int fd, short event, void *arg)
241 d93ecf7d 2022-12-14 stsp {
242 d93ecf7d 2022-12-14 stsp event_add(&gotd_listen.iev.ev, NULL);
243 d93ecf7d 2022-12-14 stsp }
244 d93ecf7d 2022-12-14 stsp
245 d93ecf7d 2022-12-14 stsp static void
246 d93ecf7d 2022-12-14 stsp gotd_accept(int fd, short event, void *arg)
247 d93ecf7d 2022-12-14 stsp {
248 d93ecf7d 2022-12-14 stsp struct gotd_imsgev *iev = arg;
249 d93ecf7d 2022-12-14 stsp struct sockaddr_storage ss;
250 d93ecf7d 2022-12-14 stsp struct timeval backoff;
251 d93ecf7d 2022-12-14 stsp socklen_t len;
252 d93ecf7d 2022-12-14 stsp int s = -1;
253 d93ecf7d 2022-12-14 stsp struct gotd_listen_client *client = NULL;
254 7a0564e3 2022-12-30 stsp struct gotd_uid_connection_counter *counter = NULL;
255 d93ecf7d 2022-12-14 stsp struct gotd_imsg_connect iconn;
256 365cf0f3 2022-12-29 stsp uid_t euid;
257 365cf0f3 2022-12-29 stsp gid_t egid;
258 d93ecf7d 2022-12-14 stsp
259 d93ecf7d 2022-12-14 stsp backoff.tv_sec = 1;
260 d93ecf7d 2022-12-14 stsp backoff.tv_usec = 0;
261 d93ecf7d 2022-12-14 stsp
262 d93ecf7d 2022-12-14 stsp if (event_add(&gotd_listen.iev.ev, NULL) == -1) {
263 d93ecf7d 2022-12-14 stsp log_warn("event_add");
264 d93ecf7d 2022-12-14 stsp return;
265 d93ecf7d 2022-12-14 stsp }
266 d93ecf7d 2022-12-14 stsp if (event & EV_TIMEOUT)
267 d93ecf7d 2022-12-14 stsp return;
268 d93ecf7d 2022-12-14 stsp
269 d93ecf7d 2022-12-14 stsp len = sizeof(ss);
270 d93ecf7d 2022-12-14 stsp
271 d93ecf7d 2022-12-14 stsp /* Other backoff conditions apart from EMFILE/ENFILE? */
272 d93ecf7d 2022-12-14 stsp s = accept_reserve(fd, (struct sockaddr *)&ss, &len, GOTD_FD_RESERVE,
273 d93ecf7d 2022-12-14 stsp &inflight);
274 d93ecf7d 2022-12-14 stsp if (s == -1) {
275 d93ecf7d 2022-12-14 stsp switch (errno) {
276 d93ecf7d 2022-12-14 stsp case EINTR:
277 d93ecf7d 2022-12-14 stsp case EWOULDBLOCK:
278 d93ecf7d 2022-12-14 stsp case ECONNABORTED:
279 d93ecf7d 2022-12-14 stsp return;
280 d93ecf7d 2022-12-14 stsp case EMFILE:
281 d93ecf7d 2022-12-14 stsp case ENFILE:
282 d93ecf7d 2022-12-14 stsp event_del(&gotd_listen.iev.ev);
283 d93ecf7d 2022-12-14 stsp evtimer_add(&gotd_listen.pause.ev, &backoff);
284 d93ecf7d 2022-12-14 stsp return;
285 d93ecf7d 2022-12-14 stsp default:
286 d93ecf7d 2022-12-14 stsp log_warn("accept");
287 d93ecf7d 2022-12-14 stsp return;
288 d93ecf7d 2022-12-14 stsp }
289 d93ecf7d 2022-12-14 stsp }
290 d93ecf7d 2022-12-14 stsp
291 d93ecf7d 2022-12-14 stsp if (listen_client_cnt >= GOTD_MAXCLIENTS)
292 365cf0f3 2022-12-29 stsp goto err;
293 365cf0f3 2022-12-29 stsp
294 365cf0f3 2022-12-29 stsp if (getpeereid(s, &euid, &egid) == -1) {
295 365cf0f3 2022-12-29 stsp log_warn("getpeerid");
296 d93ecf7d 2022-12-14 stsp goto err;
297 365cf0f3 2022-12-29 stsp }
298 d93ecf7d 2022-12-14 stsp
299 7a0564e3 2022-12-30 stsp counter = find_uid_connection_counter(euid);
300 7a0564e3 2022-12-30 stsp if (counter == NULL) {
301 7a0564e3 2022-12-30 stsp counter = calloc(1, sizeof(*counter));
302 7a0564e3 2022-12-30 stsp if (counter == NULL) {
303 7a0564e3 2022-12-30 stsp log_warn("%s: calloc", __func__);
304 7a0564e3 2022-12-30 stsp goto err;
305 7a0564e3 2022-12-30 stsp }
306 7a0564e3 2022-12-30 stsp counter->euid = euid;
307 7a0564e3 2022-12-30 stsp counter->nconnections = 1;
308 7a0564e3 2022-12-30 stsp add_uid_connection_counter(counter);
309 7a0564e3 2022-12-30 stsp } else {
310 40b85cca 2023-01-03 stsp int max_connections = GOTD_MAX_CONN_PER_UID;
311 40b85cca 2023-01-03 stsp struct gotd_uid_connection_limit *limit;
312 40b85cca 2023-01-03 stsp
313 40b85cca 2023-01-03 stsp limit = gotd_find_uid_connection_limit(
314 40b85cca 2023-01-03 stsp gotd_listen.connection_limits,
315 40b85cca 2023-01-03 stsp gotd_listen.nconnection_limits, euid);
316 40b85cca 2023-01-03 stsp if (limit)
317 40b85cca 2023-01-03 stsp max_connections = limit->max_connections;
318 40b85cca 2023-01-03 stsp
319 40b85cca 2023-01-03 stsp if (counter->nconnections >= max_connections) {
320 7a0564e3 2022-12-30 stsp log_warnx("maximum connections exceeded for uid %d",
321 7a0564e3 2022-12-30 stsp euid);
322 7a0564e3 2022-12-30 stsp goto err;
323 7a0564e3 2022-12-30 stsp }
324 7a0564e3 2022-12-30 stsp counter->nconnections++;
325 7a0564e3 2022-12-30 stsp }
326 7a0564e3 2022-12-30 stsp
327 d93ecf7d 2022-12-14 stsp client = calloc(1, sizeof(*client));
328 d93ecf7d 2022-12-14 stsp if (client == NULL) {
329 d93ecf7d 2022-12-14 stsp log_warn("%s: calloc", __func__);
330 d93ecf7d 2022-12-14 stsp goto err;
331 d93ecf7d 2022-12-14 stsp }
332 d93ecf7d 2022-12-14 stsp client->id = get_client_id();
333 d93ecf7d 2022-12-14 stsp client->fd = s;
334 7a0564e3 2022-12-30 stsp client->euid = euid;
335 d93ecf7d 2022-12-14 stsp s = -1;
336 d93ecf7d 2022-12-14 stsp add_client(client);
337 365cf0f3 2022-12-29 stsp log_debug("%s: new client connected on fd %d uid %d gid %d", __func__,
338 365cf0f3 2022-12-29 stsp client->fd, euid, egid);
339 d93ecf7d 2022-12-14 stsp
340 d93ecf7d 2022-12-14 stsp memset(&iconn, 0, sizeof(iconn));
341 d93ecf7d 2022-12-14 stsp iconn.client_id = client->id;
342 365cf0f3 2022-12-29 stsp iconn.euid = euid;
343 365cf0f3 2022-12-29 stsp iconn.egid = egid;
344 d93ecf7d 2022-12-14 stsp s = dup(client->fd);
345 d93ecf7d 2022-12-14 stsp if (s == -1) {
346 d93ecf7d 2022-12-14 stsp log_warn("%s: dup", __func__);
347 d93ecf7d 2022-12-14 stsp goto err;
348 d93ecf7d 2022-12-14 stsp }
349 d93ecf7d 2022-12-14 stsp if (gotd_imsg_compose_event(iev, GOTD_IMSG_CONNECT, PROC_LISTEN, s,
350 d93ecf7d 2022-12-14 stsp &iconn, sizeof(iconn)) == -1) {
351 d93ecf7d 2022-12-14 stsp log_warn("imsg compose CONNECT");
352 d93ecf7d 2022-12-14 stsp goto err;
353 d93ecf7d 2022-12-14 stsp }
354 d93ecf7d 2022-12-14 stsp
355 d93ecf7d 2022-12-14 stsp return;
356 d93ecf7d 2022-12-14 stsp err:
357 d93ecf7d 2022-12-14 stsp inflight--;
358 d93ecf7d 2022-12-14 stsp if (client)
359 d93ecf7d 2022-12-14 stsp disconnect(client);
360 d93ecf7d 2022-12-14 stsp if (s != -1)
361 d93ecf7d 2022-12-14 stsp close(s);
362 d93ecf7d 2022-12-14 stsp }
363 d93ecf7d 2022-12-14 stsp
364 d93ecf7d 2022-12-14 stsp static const struct got_error *
365 d93ecf7d 2022-12-14 stsp recv_disconnect(struct imsg *imsg)
366 d93ecf7d 2022-12-14 stsp {
367 d93ecf7d 2022-12-14 stsp struct gotd_imsg_disconnect idisconnect;
368 d93ecf7d 2022-12-14 stsp size_t datalen;
369 d93ecf7d 2022-12-14 stsp struct gotd_listen_client *client = NULL;
370 d93ecf7d 2022-12-14 stsp
371 d93ecf7d 2022-12-14 stsp datalen = imsg->hdr.len - IMSG_HEADER_SIZE;
372 d93ecf7d 2022-12-14 stsp if (datalen != sizeof(idisconnect))
373 d93ecf7d 2022-12-14 stsp return got_error(GOT_ERR_PRIVSEP_LEN);
374 d93ecf7d 2022-12-14 stsp memcpy(&idisconnect, imsg->data, sizeof(idisconnect));
375 d93ecf7d 2022-12-14 stsp
376 d93ecf7d 2022-12-14 stsp log_debug("client disconnecting");
377 d93ecf7d 2022-12-14 stsp
378 d93ecf7d 2022-12-14 stsp client = find_client(idisconnect.client_id);
379 d93ecf7d 2022-12-14 stsp if (client == NULL)
380 d93ecf7d 2022-12-14 stsp return got_error(GOT_ERR_CLIENT_ID);
381 d93ecf7d 2022-12-14 stsp
382 d93ecf7d 2022-12-14 stsp return disconnect(client);
383 d93ecf7d 2022-12-14 stsp }
384 d93ecf7d 2022-12-14 stsp
385 d93ecf7d 2022-12-14 stsp static void
386 d93ecf7d 2022-12-14 stsp listen_dispatch(int fd, short event, void *arg)
387 d93ecf7d 2022-12-14 stsp {
388 d93ecf7d 2022-12-14 stsp const struct got_error *err = NULL;
389 d93ecf7d 2022-12-14 stsp struct gotd_imsgev *iev = arg;
390 d93ecf7d 2022-12-14 stsp struct imsgbuf *ibuf = &iev->ibuf;
391 d93ecf7d 2022-12-14 stsp struct imsg imsg;
392 d93ecf7d 2022-12-14 stsp ssize_t n;
393 d93ecf7d 2022-12-14 stsp int shut = 0;
394 d93ecf7d 2022-12-14 stsp
395 d93ecf7d 2022-12-14 stsp if (event & EV_READ) {
396 d93ecf7d 2022-12-14 stsp if ((n = imsg_read(ibuf)) == -1 && errno != EAGAIN)
397 d93ecf7d 2022-12-14 stsp fatal("imsg_read error");
398 d93ecf7d 2022-12-14 stsp if (n == 0) /* Connection closed. */
399 d93ecf7d 2022-12-14 stsp shut = 1;
400 d93ecf7d 2022-12-14 stsp }
401 d93ecf7d 2022-12-14 stsp
402 d93ecf7d 2022-12-14 stsp if (event & EV_WRITE) {
403 d93ecf7d 2022-12-14 stsp n = msgbuf_write(&ibuf->w);
404 d93ecf7d 2022-12-14 stsp if (n == -1 && errno != EAGAIN)
405 d93ecf7d 2022-12-14 stsp fatal("msgbuf_write");
406 d93ecf7d 2022-12-14 stsp if (n == 0) /* Connection closed. */
407 d93ecf7d 2022-12-14 stsp shut = 1;
408 d93ecf7d 2022-12-14 stsp }
409 d93ecf7d 2022-12-14 stsp
410 d93ecf7d 2022-12-14 stsp for (;;) {
411 d93ecf7d 2022-12-14 stsp if ((n = imsg_get(ibuf, &imsg)) == -1)
412 d93ecf7d 2022-12-14 stsp fatal("%s: imsg_get", __func__);
413 d93ecf7d 2022-12-14 stsp if (n == 0) /* No more messages. */
414 d93ecf7d 2022-12-14 stsp break;
415 d93ecf7d 2022-12-14 stsp
416 d93ecf7d 2022-12-14 stsp switch (imsg.hdr.type) {
417 d93ecf7d 2022-12-14 stsp case GOTD_IMSG_DISCONNECT:
418 d93ecf7d 2022-12-14 stsp err = recv_disconnect(&imsg);
419 d93ecf7d 2022-12-14 stsp if (err)
420 2ec74a9e 2023-02-08 op log_warnx("disconnect: %s", err->msg);
421 d93ecf7d 2022-12-14 stsp break;
422 d93ecf7d 2022-12-14 stsp default:
423 2ec74a9e 2023-02-08 op log_debug("unexpected imsg %d", imsg.hdr.type);
424 d93ecf7d 2022-12-14 stsp break;
425 d93ecf7d 2022-12-14 stsp }
426 d93ecf7d 2022-12-14 stsp
427 d93ecf7d 2022-12-14 stsp imsg_free(&imsg);
428 d93ecf7d 2022-12-14 stsp }
429 d93ecf7d 2022-12-14 stsp
430 d93ecf7d 2022-12-14 stsp if (!shut) {
431 d93ecf7d 2022-12-14 stsp gotd_imsg_event_add(iev);
432 d93ecf7d 2022-12-14 stsp } else {
433 d93ecf7d 2022-12-14 stsp /* This pipe is dead. Remove its event handler */
434 d93ecf7d 2022-12-14 stsp event_del(&iev->ev);
435 d93ecf7d 2022-12-14 stsp event_loopexit(NULL);
436 d93ecf7d 2022-12-14 stsp }
437 d93ecf7d 2022-12-14 stsp }
438 d93ecf7d 2022-12-14 stsp
439 d93ecf7d 2022-12-14 stsp void
440 40b85cca 2023-01-03 stsp listen_main(const char *title, int gotd_socket,
441 40b85cca 2023-01-03 stsp struct gotd_uid_connection_limit *connection_limits,
442 40b85cca 2023-01-03 stsp size_t nconnection_limits)
443 d93ecf7d 2022-12-14 stsp {
444 d93ecf7d 2022-12-14 stsp struct gotd_imsgev iev;
445 d93ecf7d 2022-12-14 stsp struct event evsigint, evsigterm, evsighup, evsigusr1;
446 c602198a 2022-12-30 stsp
447 c602198a 2022-12-30 stsp arc4random_buf(&clients_hash_key, sizeof(clients_hash_key));
448 7a0564e3 2022-12-30 stsp arc4random_buf(&uid_hash_key, sizeof(uid_hash_key));
449 d93ecf7d 2022-12-14 stsp
450 d93ecf7d 2022-12-14 stsp gotd_listen.title = title;
451 d93ecf7d 2022-12-14 stsp gotd_listen.pid = getpid();
452 d93ecf7d 2022-12-14 stsp gotd_listen.fd = gotd_socket;
453 40b85cca 2023-01-03 stsp gotd_listen.connection_limits = connection_limits;
454 40b85cca 2023-01-03 stsp gotd_listen.nconnection_limits = nconnection_limits;
455 d93ecf7d 2022-12-14 stsp
456 d93ecf7d 2022-12-14 stsp signal_set(&evsigint, SIGINT, listen_sighdlr, NULL);
457 d93ecf7d 2022-12-14 stsp signal_set(&evsigterm, SIGTERM, listen_sighdlr, NULL);
458 d93ecf7d 2022-12-14 stsp signal_set(&evsighup, SIGHUP, listen_sighdlr, NULL);
459 d93ecf7d 2022-12-14 stsp signal_set(&evsigusr1, SIGUSR1, listen_sighdlr, NULL);
460 d93ecf7d 2022-12-14 stsp signal(SIGPIPE, SIG_IGN);
461 d93ecf7d 2022-12-14 stsp
462 d93ecf7d 2022-12-14 stsp signal_add(&evsigint, NULL);
463 d93ecf7d 2022-12-14 stsp signal_add(&evsigterm, NULL);
464 d93ecf7d 2022-12-14 stsp signal_add(&evsighup, NULL);
465 d93ecf7d 2022-12-14 stsp signal_add(&evsigusr1, NULL);
466 d93ecf7d 2022-12-14 stsp
467 d93ecf7d 2022-12-14 stsp imsg_init(&iev.ibuf, GOTD_FILENO_MSG_PIPE);
468 d93ecf7d 2022-12-14 stsp iev.handler = listen_dispatch;
469 d93ecf7d 2022-12-14 stsp iev.events = EV_READ;
470 d93ecf7d 2022-12-14 stsp iev.handler_arg = NULL;
471 d93ecf7d 2022-12-14 stsp event_set(&iev.ev, iev.ibuf.fd, EV_READ, listen_dispatch, &iev);
472 d93ecf7d 2022-12-14 stsp if (event_add(&iev.ev, NULL) == -1)
473 d93ecf7d 2022-12-14 stsp fatalx("event add");
474 d93ecf7d 2022-12-14 stsp
475 d93ecf7d 2022-12-14 stsp event_set(&gotd_listen.iev.ev, gotd_listen.fd, EV_READ | EV_PERSIST,
476 d93ecf7d 2022-12-14 stsp gotd_accept, &iev);
477 d93ecf7d 2022-12-14 stsp if (event_add(&gotd_listen.iev.ev, NULL))
478 d93ecf7d 2022-12-14 stsp fatalx("event add");
479 d93ecf7d 2022-12-14 stsp evtimer_set(&gotd_listen.pause.ev, gotd_accept_paused, NULL);
480 d93ecf7d 2022-12-14 stsp
481 d93ecf7d 2022-12-14 stsp event_dispatch();
482 d93ecf7d 2022-12-14 stsp
483 d93ecf7d 2022-12-14 stsp listen_shutdown();
484 d93ecf7d 2022-12-14 stsp }
485 d93ecf7d 2022-12-14 stsp
486 d93ecf7d 2022-12-14 stsp static void
487 d93ecf7d 2022-12-14 stsp listen_shutdown(void)
488 d93ecf7d 2022-12-14 stsp {
489 e8d451cc 2024-03-22 stsp log_debug("%s: shutting down", gotd_listen.title);
490 d93ecf7d 2022-12-14 stsp
491 40b85cca 2023-01-03 stsp free(gotd_listen.connection_limits);
492 d93ecf7d 2022-12-14 stsp if (gotd_listen.fd != -1)
493 d93ecf7d 2022-12-14 stsp close(gotd_listen.fd);
494 d93ecf7d 2022-12-14 stsp
495 d93ecf7d 2022-12-14 stsp exit(0);
496 d93ecf7d 2022-12-14 stsp }