1b7579f77SDag-Erling Smørgrav /*
25469a995SCy Schubert * smallapp/unbound-host.c - replacement for host that supports validation.
3b7579f77SDag-Erling Smørgrav *
4b7579f77SDag-Erling Smørgrav * Copyright (c) 2007, NLnet Labs. All rights reserved.
5b7579f77SDag-Erling Smørgrav *
6b7579f77SDag-Erling Smørgrav * This software is open source.
7b7579f77SDag-Erling Smørgrav *
8b7579f77SDag-Erling Smørgrav * Redistribution and use in source and binary forms, with or without
9b7579f77SDag-Erling Smørgrav * modification, are permitted provided that the following conditions
10b7579f77SDag-Erling Smørgrav * are met:
11b7579f77SDag-Erling Smørgrav *
12b7579f77SDag-Erling Smørgrav * Redistributions of source code must retain the above copyright notice,
13b7579f77SDag-Erling Smørgrav * this list of conditions and the following disclaimer.
14b7579f77SDag-Erling Smørgrav *
15b7579f77SDag-Erling Smørgrav * Redistributions in binary form must reproduce the above copyright notice,
16b7579f77SDag-Erling Smørgrav * this list of conditions and the following disclaimer in the documentation
17b7579f77SDag-Erling Smørgrav * and/or other materials provided with the distribution.
18b7579f77SDag-Erling Smørgrav *
19b7579f77SDag-Erling Smørgrav * Neither the name of the NLNET LABS nor the names of its contributors may
20b7579f77SDag-Erling Smørgrav * be used to endorse or promote products derived from this software without
21b7579f77SDag-Erling Smørgrav * specific prior written permission.
22b7579f77SDag-Erling Smørgrav *
23b7579f77SDag-Erling Smørgrav * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS
2417d15b25SDag-Erling Smørgrav * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT
2517d15b25SDag-Erling Smørgrav * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR
2617d15b25SDag-Erling Smørgrav * A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT
2717d15b25SDag-Erling Smørgrav * HOLDER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
2817d15b25SDag-Erling Smørgrav * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED
2917d15b25SDag-Erling Smørgrav * TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR
3017d15b25SDag-Erling Smørgrav * PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF
3117d15b25SDag-Erling Smørgrav * LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING
3217d15b25SDag-Erling Smørgrav * NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS
3317d15b25SDag-Erling Smørgrav * SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
34b7579f77SDag-Erling Smørgrav */
35b7579f77SDag-Erling Smørgrav
36b7579f77SDag-Erling Smørgrav /**
37b7579f77SDag-Erling Smørgrav * \file
38b7579f77SDag-Erling Smørgrav *
39b7579f77SDag-Erling Smørgrav * This file performs functionality like 'host', and also supports validation.
40b7579f77SDag-Erling Smørgrav * It uses the libunbound library.
41b7579f77SDag-Erling Smørgrav */
42b7579f77SDag-Erling Smørgrav
43b7579f77SDag-Erling Smørgrav #include "config.h"
44b7579f77SDag-Erling Smørgrav #ifdef HAVE_GETOPT_H
45b7579f77SDag-Erling Smørgrav #include <getopt.h>
46b7579f77SDag-Erling Smørgrav #endif
47b7579f77SDag-Erling Smørgrav /* remove alloc checks, not in this part of the code */
48b7579f77SDag-Erling Smørgrav #ifdef UNBOUND_ALLOC_STATS
49b7579f77SDag-Erling Smørgrav #undef malloc
50b7579f77SDag-Erling Smørgrav #undef calloc
51b7579f77SDag-Erling Smørgrav #undef free
52b7579f77SDag-Erling Smørgrav #undef realloc
53*46d2f618SCy Schubert #undef reallocarray
54*46d2f618SCy Schubert #undef strdup
55b7579f77SDag-Erling Smørgrav #endif
56b7579f77SDag-Erling Smørgrav #ifdef UNBOUND_ALLOC_LITE
57b7579f77SDag-Erling Smørgrav #undef malloc
58b7579f77SDag-Erling Smørgrav #undef calloc
59b7579f77SDag-Erling Smørgrav #undef free
60b7579f77SDag-Erling Smørgrav #undef realloc
61b7579f77SDag-Erling Smørgrav #undef strdup
62b7579f77SDag-Erling Smørgrav #define unbound_lite_wrapstr(s) s
63b7579f77SDag-Erling Smørgrav #endif
64b7579f77SDag-Erling Smørgrav #include "libunbound/unbound.h"
6509a3aaf3SDag-Erling Smørgrav #include "sldns/rrdef.h"
6609a3aaf3SDag-Erling Smørgrav #include "sldns/wire2str.h"
678ed2b524SDag-Erling Smørgrav #ifdef HAVE_NSS
688ed2b524SDag-Erling Smørgrav /* nss3 */
698ed2b524SDag-Erling Smørgrav #include "nss.h"
708ed2b524SDag-Erling Smørgrav #endif
713bd4df0aSDag-Erling Smørgrav #ifdef HAVE_SSL
723bd4df0aSDag-Erling Smørgrav #ifdef HAVE_OPENSSL_SSL_H
733bd4df0aSDag-Erling Smørgrav #include <openssl/ssl.h>
743bd4df0aSDag-Erling Smørgrav #endif
753bd4df0aSDag-Erling Smørgrav #ifdef HAVE_OPENSSL_ERR_H
763bd4df0aSDag-Erling Smørgrav #include <openssl/err.h>
773bd4df0aSDag-Erling Smørgrav #endif
783bd4df0aSDag-Erling Smørgrav #endif /* HAVE_SSL */
79b7579f77SDag-Erling Smørgrav
80b7579f77SDag-Erling Smørgrav /** verbosity for unbound-host app */
81b7579f77SDag-Erling Smørgrav static int verb = 0;
82b7579f77SDag-Erling Smørgrav
83b7579f77SDag-Erling Smørgrav /** Give unbound-host usage, and exit (1). */
84b7579f77SDag-Erling Smørgrav static void
usage(void)85b5663de9SDag-Erling Smørgrav usage(void)
86b7579f77SDag-Erling Smørgrav {
874c75e3aaSDag-Erling Smørgrav printf("Usage: unbound-host [-C configfile] [-vdhr46] [-c class] [-t type]\n");
884c75e3aaSDag-Erling Smørgrav printf(" [-y key] [-f keyfile] [-F namedkeyfile] hostname\n");
89b7579f77SDag-Erling Smørgrav printf(" Queries the DNS for information.\n");
90b7579f77SDag-Erling Smørgrav printf(" The hostname is looked up for IP4, IP6 and mail.\n");
91b7579f77SDag-Erling Smørgrav printf(" If an ip-address is given a reverse lookup is done.\n");
92b7579f77SDag-Erling Smørgrav printf(" Use the -v option to see DNSSEC security information.\n");
93b7579f77SDag-Erling Smørgrav printf(" -t type what type to look for.\n");
94b7579f77SDag-Erling Smørgrav printf(" -c class what class to look for, if not class IN.\n");
95b7579f77SDag-Erling Smørgrav printf(" -y 'keystring' specify trust anchor, DS or DNSKEY, like\n");
96b7579f77SDag-Erling Smørgrav printf(" -y 'example.com DS 31560 5 1 1CFED8478...'\n");
97ff825849SDag-Erling Smørgrav printf(" -D DNSSEC enable with default root anchor\n");
98ff825849SDag-Erling Smørgrav printf(" from %s\n", ROOT_ANCHOR_FILE);
99b7579f77SDag-Erling Smørgrav printf(" -f keyfile read trust anchors from file, with lines as -y.\n");
100b7579f77SDag-Erling Smørgrav printf(" -F keyfile read named.conf-style trust anchors.\n");
101b7579f77SDag-Erling Smørgrav printf(" -C config use the specified unbound.conf (none read by default)\n");
1024c75e3aaSDag-Erling Smørgrav printf(" pass as first argument if you want to override some\n");
1034c75e3aaSDag-Erling Smørgrav printf(" options with further arguments\n");
104b7579f77SDag-Erling Smørgrav printf(" -r read forwarder information from /etc/resolv.conf\n");
105b5663de9SDag-Erling Smørgrav printf(" breaks validation if the forwarder does not do DNSSEC.\n");
106b7579f77SDag-Erling Smørgrav printf(" -v be more verbose, shows nodata and security.\n");
107b7579f77SDag-Erling Smørgrav printf(" -d debug, traces the action, -d -d shows more.\n");
108b7579f77SDag-Erling Smørgrav printf(" -4 use ipv4 network, avoid ipv6.\n");
109b7579f77SDag-Erling Smørgrav printf(" -6 use ipv6 network, avoid ipv4.\n");
110b7579f77SDag-Erling Smørgrav printf(" -h show this usage help.\n");
111b7579f77SDag-Erling Smørgrav printf("Version %s\n", PACKAGE_VERSION);
112b7579f77SDag-Erling Smørgrav printf("BSD licensed, see LICENSE in source package for details.\n");
113b7579f77SDag-Erling Smørgrav printf("Report bugs to %s\n", PACKAGE_BUGREPORT);
114b7579f77SDag-Erling Smørgrav exit(1);
115b7579f77SDag-Erling Smørgrav }
116b7579f77SDag-Erling Smørgrav
117b7579f77SDag-Erling Smørgrav /** determine if str is ip4 and put into reverse lookup format */
118b7579f77SDag-Erling Smørgrav static int
isip4(const char * nm,char ** res)119b7579f77SDag-Erling Smørgrav isip4(const char* nm, char** res)
120b7579f77SDag-Erling Smørgrav {
121b7579f77SDag-Erling Smørgrav struct in_addr addr;
122b7579f77SDag-Erling Smørgrav /* ddd.ddd.ddd.ddd.in-addr.arpa. is less than 32 */
123b7579f77SDag-Erling Smørgrav char buf[32];
124b7579f77SDag-Erling Smørgrav if(inet_pton(AF_INET, nm, &addr) <= 0) {
125b7579f77SDag-Erling Smørgrav return 0;
126b7579f77SDag-Erling Smørgrav }
127b7579f77SDag-Erling Smørgrav snprintf(buf, sizeof(buf), "%u.%u.%u.%u.in-addr.arpa",
128b7579f77SDag-Erling Smørgrav (unsigned)((uint8_t*)&addr)[3], (unsigned)((uint8_t*)&addr)[2],
129b7579f77SDag-Erling Smørgrav (unsigned)((uint8_t*)&addr)[1], (unsigned)((uint8_t*)&addr)[0]);
130b7579f77SDag-Erling Smørgrav *res = strdup(buf);
131b7579f77SDag-Erling Smørgrav return 1;
132b7579f77SDag-Erling Smørgrav }
133b7579f77SDag-Erling Smørgrav
134b7579f77SDag-Erling Smørgrav /** determine if str is ip6 and put into reverse lookup format */
135b7579f77SDag-Erling Smørgrav static int
isip6(const char * nm,char ** res)136b7579f77SDag-Erling Smørgrav isip6(const char* nm, char** res)
137b7579f77SDag-Erling Smørgrav {
138b7579f77SDag-Erling Smørgrav struct in6_addr addr;
139b7579f77SDag-Erling Smørgrav /* [nibble.]{32}.ip6.arpa. is less than 128 */
140b7579f77SDag-Erling Smørgrav const char* hex = "0123456789abcdef";
141b7579f77SDag-Erling Smørgrav char buf[128];
142b7579f77SDag-Erling Smørgrav char *p;
143b7579f77SDag-Erling Smørgrav int i;
144b7579f77SDag-Erling Smørgrav if(inet_pton(AF_INET6, nm, &addr) <= 0) {
145b7579f77SDag-Erling Smørgrav return 0;
146b7579f77SDag-Erling Smørgrav }
147b7579f77SDag-Erling Smørgrav p = buf;
148b7579f77SDag-Erling Smørgrav for(i=15; i>=0; i--) {
149b7579f77SDag-Erling Smørgrav uint8_t b = ((uint8_t*)&addr)[i];
150b7579f77SDag-Erling Smørgrav *p++ = hex[ (b&0x0f) ];
151b7579f77SDag-Erling Smørgrav *p++ = '.';
152b7579f77SDag-Erling Smørgrav *p++ = hex[ (b&0xf0) >> 4 ];
153b7579f77SDag-Erling Smørgrav *p++ = '.';
154b7579f77SDag-Erling Smørgrav }
155b7579f77SDag-Erling Smørgrav snprintf(buf+16*4, sizeof(buf)-16*4, "ip6.arpa");
156b7579f77SDag-Erling Smørgrav *res = strdup(buf);
157b7579f77SDag-Erling Smørgrav if(!*res) {
158b7579f77SDag-Erling Smørgrav fprintf(stderr, "error: out of memory\n");
159b7579f77SDag-Erling Smørgrav exit(1);
160b7579f77SDag-Erling Smørgrav }
161b7579f77SDag-Erling Smørgrav return 1;
162b7579f77SDag-Erling Smørgrav }
163b7579f77SDag-Erling Smørgrav
164b7579f77SDag-Erling Smørgrav /** massage input name */
165b7579f77SDag-Erling Smørgrav static char*
massage_qname(const char * nm,int * reverse)166b7579f77SDag-Erling Smørgrav massage_qname(const char* nm, int* reverse)
167b7579f77SDag-Erling Smørgrav {
168b7579f77SDag-Erling Smørgrav /* recognise IP4 and IP6, create reverse addresses if needed */
169b7579f77SDag-Erling Smørgrav char* res;
170b7579f77SDag-Erling Smørgrav if(isip4(nm, &res)) {
171b7579f77SDag-Erling Smørgrav *reverse = 1;
172b7579f77SDag-Erling Smørgrav } else if(isip6(nm, &res)) {
173b7579f77SDag-Erling Smørgrav *reverse = 1;
174b7579f77SDag-Erling Smørgrav } else {
175b7579f77SDag-Erling Smørgrav res = strdup(nm);
176b7579f77SDag-Erling Smørgrav }
177b7579f77SDag-Erling Smørgrav if(!res) {
178b7579f77SDag-Erling Smørgrav fprintf(stderr, "error: out of memory\n");
179b7579f77SDag-Erling Smørgrav exit(1);
180b7579f77SDag-Erling Smørgrav }
181b7579f77SDag-Erling Smørgrav return res;
182b7579f77SDag-Erling Smørgrav }
183b7579f77SDag-Erling Smørgrav
184b7579f77SDag-Erling Smørgrav /** massage input type */
185b7579f77SDag-Erling Smørgrav static int
massage_type(const char * t,int reverse,int * multi)186b7579f77SDag-Erling Smørgrav massage_type(const char* t, int reverse, int* multi)
187b7579f77SDag-Erling Smørgrav {
188b7579f77SDag-Erling Smørgrav if(t) {
18917d15b25SDag-Erling Smørgrav int r = sldns_get_rr_type_by_name(t);
190b7579f77SDag-Erling Smørgrav if(r == 0 && strcasecmp(t, "TYPE0") != 0 &&
191b7579f77SDag-Erling Smørgrav strcmp(t, "") != 0) {
192b7579f77SDag-Erling Smørgrav fprintf(stderr, "error unknown type %s\n", t);
193b7579f77SDag-Erling Smørgrav exit(1);
194b7579f77SDag-Erling Smørgrav }
195b7579f77SDag-Erling Smørgrav return r;
196b7579f77SDag-Erling Smørgrav }
197b7579f77SDag-Erling Smørgrav if(!t && reverse)
198b7579f77SDag-Erling Smørgrav return LDNS_RR_TYPE_PTR;
199b7579f77SDag-Erling Smørgrav *multi = 1;
200b7579f77SDag-Erling Smørgrav return LDNS_RR_TYPE_A;
201b7579f77SDag-Erling Smørgrav }
202b7579f77SDag-Erling Smørgrav
203b7579f77SDag-Erling Smørgrav /** massage input class */
204b7579f77SDag-Erling Smørgrav static int
massage_class(const char * c)205b7579f77SDag-Erling Smørgrav massage_class(const char* c)
206b7579f77SDag-Erling Smørgrav {
207b7579f77SDag-Erling Smørgrav if(c) {
20817d15b25SDag-Erling Smørgrav int r = sldns_get_rr_class_by_name(c);
209b7579f77SDag-Erling Smørgrav if(r == 0 && strcasecmp(c, "CLASS0") != 0 &&
210b7579f77SDag-Erling Smørgrav strcmp(c, "") != 0) {
211b7579f77SDag-Erling Smørgrav fprintf(stderr, "error unknown class %s\n", c);
212b7579f77SDag-Erling Smørgrav exit(1);
213b7579f77SDag-Erling Smørgrav }
214b7579f77SDag-Erling Smørgrav return r;
215b7579f77SDag-Erling Smørgrav }
216b7579f77SDag-Erling Smørgrav return LDNS_RR_CLASS_IN;
217b7579f77SDag-Erling Smørgrav }
218b7579f77SDag-Erling Smørgrav
219b7579f77SDag-Erling Smørgrav /** nice security status string */
220b7579f77SDag-Erling Smørgrav static const char*
secure_str(struct ub_result * result)221b7579f77SDag-Erling Smørgrav secure_str(struct ub_result* result)
222b7579f77SDag-Erling Smørgrav {
2238a384985SDag-Erling Smørgrav if(result->rcode != 0 && result->rcode != 3) return "(error)";
224b7579f77SDag-Erling Smørgrav if(result->secure) return "(secure)";
225b7579f77SDag-Erling Smørgrav if(result->bogus) return "(BOGUS (security failure))";
226b7579f77SDag-Erling Smørgrav return "(insecure)";
227b7579f77SDag-Erling Smørgrav }
228b7579f77SDag-Erling Smørgrav
229b7579f77SDag-Erling Smørgrav /** nice string for type */
230b7579f77SDag-Erling Smørgrav static void
pretty_type(char * s,size_t len,int t)231b7579f77SDag-Erling Smørgrav pretty_type(char* s, size_t len, int t)
232b7579f77SDag-Erling Smørgrav {
23317d15b25SDag-Erling Smørgrav char d[16];
23417d15b25SDag-Erling Smørgrav sldns_wire2str_type_buf((uint16_t)t, d, sizeof(d));
235b7579f77SDag-Erling Smørgrav snprintf(s, len, "%s", d);
236b7579f77SDag-Erling Smørgrav }
237b7579f77SDag-Erling Smørgrav
238b7579f77SDag-Erling Smørgrav /** nice string for class */
239b7579f77SDag-Erling Smørgrav static void
pretty_class(char * s,size_t len,int c)240b7579f77SDag-Erling Smørgrav pretty_class(char* s, size_t len, int c)
241b7579f77SDag-Erling Smørgrav {
24217d15b25SDag-Erling Smørgrav char d[16];
24317d15b25SDag-Erling Smørgrav sldns_wire2str_class_buf((uint16_t)c, d, sizeof(d));
244b7579f77SDag-Erling Smørgrav snprintf(s, len, "%s", d);
245b7579f77SDag-Erling Smørgrav }
246b7579f77SDag-Erling Smørgrav
247b7579f77SDag-Erling Smørgrav /** nice string for rcode */
248b7579f77SDag-Erling Smørgrav static void
pretty_rcode(char * s,size_t len,int r)249b7579f77SDag-Erling Smørgrav pretty_rcode(char* s, size_t len, int r)
250b7579f77SDag-Erling Smørgrav {
25117d15b25SDag-Erling Smørgrav char d[16];
25217d15b25SDag-Erling Smørgrav sldns_wire2str_rcode_buf(r, d, sizeof(d));
25317d15b25SDag-Erling Smørgrav snprintf(s, len, "%s", d);
254b7579f77SDag-Erling Smørgrav }
255b7579f77SDag-Erling Smørgrav
256b7579f77SDag-Erling Smørgrav /** convert and print rdata */
257b7579f77SDag-Erling Smørgrav static void
print_rd(int t,char * data,size_t len)258b7579f77SDag-Erling Smørgrav print_rd(int t, char* data, size_t len)
259b7579f77SDag-Erling Smørgrav {
26017d15b25SDag-Erling Smørgrav char s[65535];
26117d15b25SDag-Erling Smørgrav sldns_wire2str_rdata_buf((uint8_t*)data, len, s, sizeof(s), (uint16_t)t);
26217d15b25SDag-Erling Smørgrav printf(" %s", s);
263b7579f77SDag-Erling Smørgrav }
264b7579f77SDag-Erling Smørgrav
265b7579f77SDag-Erling Smørgrav /** pretty line of RR data for results */
266b7579f77SDag-Erling Smørgrav static void
pretty_rdata(char * q,char * cstr,char * tstr,int t,const char * sec,char * data,size_t len)267b7579f77SDag-Erling Smørgrav pretty_rdata(char* q, char* cstr, char* tstr, int t, const char* sec,
268b7579f77SDag-Erling Smørgrav char* data, size_t len)
269b7579f77SDag-Erling Smørgrav {
270b7579f77SDag-Erling Smørgrav printf("%s", q);
271b7579f77SDag-Erling Smørgrav if(strcmp(cstr, "IN") != 0)
272b7579f77SDag-Erling Smørgrav printf(" in class %s", cstr);
273b7579f77SDag-Erling Smørgrav if(t == LDNS_RR_TYPE_A)
274b7579f77SDag-Erling Smørgrav printf(" has address");
275b7579f77SDag-Erling Smørgrav else if(t == LDNS_RR_TYPE_AAAA)
276b7579f77SDag-Erling Smørgrav printf(" has IPv6 address");
277b7579f77SDag-Erling Smørgrav else if(t == LDNS_RR_TYPE_MX)
278b7579f77SDag-Erling Smørgrav printf(" mail is handled by");
279b7579f77SDag-Erling Smørgrav else if(t == LDNS_RR_TYPE_PTR)
280b7579f77SDag-Erling Smørgrav printf(" domain name pointer");
281b7579f77SDag-Erling Smørgrav else printf(" has %s record", tstr);
282b7579f77SDag-Erling Smørgrav print_rd(t, data, len);
283b7579f77SDag-Erling Smørgrav if(verb > 0)
284b7579f77SDag-Erling Smørgrav printf(" %s", sec);
285b7579f77SDag-Erling Smørgrav printf("\n");
286b7579f77SDag-Erling Smørgrav }
287b7579f77SDag-Erling Smørgrav
288b7579f77SDag-Erling Smørgrav /** pretty line of output for results */
289b7579f77SDag-Erling Smørgrav static void
pretty_output(char * q,int t,int c,struct ub_result * result,int docname)290b7579f77SDag-Erling Smørgrav pretty_output(char* q, int t, int c, struct ub_result* result, int docname)
291b7579f77SDag-Erling Smørgrav {
292b7579f77SDag-Erling Smørgrav int i;
293b7579f77SDag-Erling Smørgrav const char *secstatus = secure_str(result);
294b7579f77SDag-Erling Smørgrav char tstr[16];
295b7579f77SDag-Erling Smørgrav char cstr[16];
296b7579f77SDag-Erling Smørgrav char rcodestr[16];
297b7579f77SDag-Erling Smørgrav pretty_type(tstr, 16, t);
298b7579f77SDag-Erling Smørgrav pretty_class(cstr, 16, c);
299b7579f77SDag-Erling Smørgrav pretty_rcode(rcodestr, 16, result->rcode);
300b7579f77SDag-Erling Smørgrav
301b7579f77SDag-Erling Smørgrav if(!result->havedata && result->rcode) {
302b7579f77SDag-Erling Smørgrav printf("Host %s not found: %d(%s).",
303b7579f77SDag-Erling Smørgrav q, result->rcode, rcodestr);
304b7579f77SDag-Erling Smørgrav if(verb > 0)
305b7579f77SDag-Erling Smørgrav printf(" %s", secstatus);
306b7579f77SDag-Erling Smørgrav printf("\n");
307b7579f77SDag-Erling Smørgrav if(result->bogus && result->why_bogus)
308b7579f77SDag-Erling Smørgrav printf("%s\n", result->why_bogus);
309b7579f77SDag-Erling Smørgrav return;
310b7579f77SDag-Erling Smørgrav }
311b7579f77SDag-Erling Smørgrav if(docname && result->canonname &&
312b7579f77SDag-Erling Smørgrav result->canonname != result->qname) {
313b7579f77SDag-Erling Smørgrav printf("%s is an alias for %s", result->qname,
314b7579f77SDag-Erling Smørgrav result->canonname);
315b7579f77SDag-Erling Smørgrav if(verb > 0)
316b7579f77SDag-Erling Smørgrav printf(" %s", secstatus);
317b7579f77SDag-Erling Smørgrav printf("\n");
318b7579f77SDag-Erling Smørgrav }
319b7579f77SDag-Erling Smørgrav /* remove trailing . from long canonnames for nicer output */
320b7579f77SDag-Erling Smørgrav if(result->canonname && strlen(result->canonname) > 1 &&
321b7579f77SDag-Erling Smørgrav result->canonname[strlen(result->canonname)-1] == '.')
322b7579f77SDag-Erling Smørgrav result->canonname[strlen(result->canonname)-1] = 0;
323b7579f77SDag-Erling Smørgrav if(!result->havedata) {
324b7579f77SDag-Erling Smørgrav if(verb > 0) {
325b7579f77SDag-Erling Smørgrav printf("%s", result->canonname?result->canonname:q);
326b7579f77SDag-Erling Smørgrav if(strcmp(cstr, "IN") != 0)
327b7579f77SDag-Erling Smørgrav printf(" in class %s", cstr);
328b7579f77SDag-Erling Smørgrav if(t == LDNS_RR_TYPE_A)
329b7579f77SDag-Erling Smørgrav printf(" has no address");
330b7579f77SDag-Erling Smørgrav else if(t == LDNS_RR_TYPE_AAAA)
331b7579f77SDag-Erling Smørgrav printf(" has no IPv6 address");
332b7579f77SDag-Erling Smørgrav else if(t == LDNS_RR_TYPE_PTR)
333b7579f77SDag-Erling Smørgrav printf(" has no domain name ptr");
334b7579f77SDag-Erling Smørgrav else if(t == LDNS_RR_TYPE_MX)
335b7579f77SDag-Erling Smørgrav printf(" has no mail handler record");
336b7579f77SDag-Erling Smørgrav else if(t == LDNS_RR_TYPE_ANY) {
33717d15b25SDag-Erling Smørgrav char* s = sldns_wire2str_pkt(
33817d15b25SDag-Erling Smørgrav result->answer_packet,
33917d15b25SDag-Erling Smørgrav (size_t)result->answer_len);
34017d15b25SDag-Erling Smørgrav if(!s) {
34117d15b25SDag-Erling Smørgrav fprintf(stderr, "alloc failure\n");
342b7579f77SDag-Erling Smørgrav exit(1);
343b7579f77SDag-Erling Smørgrav }
34417d15b25SDag-Erling Smørgrav printf("%s\n", s);
3454c75e3aaSDag-Erling Smørgrav free(s);
346b7579f77SDag-Erling Smørgrav } else printf(" has no %s record", tstr);
347b7579f77SDag-Erling Smørgrav printf(" %s\n", secstatus);
348b7579f77SDag-Erling Smørgrav }
349b7579f77SDag-Erling Smørgrav /* else: emptiness to indicate no data */
350b7579f77SDag-Erling Smørgrav if(result->bogus && result->why_bogus)
351b7579f77SDag-Erling Smørgrav printf("%s\n", result->why_bogus);
352b7579f77SDag-Erling Smørgrav return;
353b7579f77SDag-Erling Smørgrav }
354b7579f77SDag-Erling Smørgrav i=0;
355b7579f77SDag-Erling Smørgrav while(result->data[i])
356b7579f77SDag-Erling Smørgrav {
357b7579f77SDag-Erling Smørgrav pretty_rdata(
358b7579f77SDag-Erling Smørgrav result->canonname?result->canonname:q,
359b7579f77SDag-Erling Smørgrav cstr, tstr, t, secstatus, result->data[i],
360b7579f77SDag-Erling Smørgrav (size_t)result->len[i]);
361b7579f77SDag-Erling Smørgrav i++;
362b7579f77SDag-Erling Smørgrav }
363b7579f77SDag-Erling Smørgrav if(result->bogus && result->why_bogus)
364b7579f77SDag-Erling Smørgrav printf("%s\n", result->why_bogus);
365b7579f77SDag-Erling Smørgrav }
366b7579f77SDag-Erling Smørgrav
367b7579f77SDag-Erling Smørgrav /** perform a lookup and printout return if domain existed */
368b7579f77SDag-Erling Smørgrav static int
dnslook(struct ub_ctx * ctx,char * q,int t,int c,int docname)369b7579f77SDag-Erling Smørgrav dnslook(struct ub_ctx* ctx, char* q, int t, int c, int docname)
370b7579f77SDag-Erling Smørgrav {
371b7579f77SDag-Erling Smørgrav int ret;
372b7579f77SDag-Erling Smørgrav struct ub_result* result;
373b7579f77SDag-Erling Smørgrav
374b7579f77SDag-Erling Smørgrav ret = ub_resolve(ctx, q, t, c, &result);
375b7579f77SDag-Erling Smørgrav if(ret != 0) {
376b7579f77SDag-Erling Smørgrav fprintf(stderr, "resolve error: %s\n", ub_strerror(ret));
377b7579f77SDag-Erling Smørgrav exit(1);
378b7579f77SDag-Erling Smørgrav }
379b7579f77SDag-Erling Smørgrav pretty_output(q, t, c, result, docname);
380b7579f77SDag-Erling Smørgrav ret = result->nxdomain;
381b7579f77SDag-Erling Smørgrav ub_resolve_free(result);
382b7579f77SDag-Erling Smørgrav return ret;
383b7579f77SDag-Erling Smørgrav }
384b7579f77SDag-Erling Smørgrav
385b7579f77SDag-Erling Smørgrav /** perform host lookup */
386b7579f77SDag-Erling Smørgrav static void
lookup(struct ub_ctx * ctx,const char * nm,const char * qt,const char * qc)387b7579f77SDag-Erling Smørgrav lookup(struct ub_ctx* ctx, const char* nm, const char* qt, const char* qc)
388b7579f77SDag-Erling Smørgrav {
389b7579f77SDag-Erling Smørgrav /* massage input into a query name, type and class */
390b7579f77SDag-Erling Smørgrav int multi = 0; /* no type, so do A, AAAA, MX */
391b7579f77SDag-Erling Smørgrav int reverse = 0; /* we are doing a reverse lookup */
392b7579f77SDag-Erling Smørgrav char* realq = massage_qname(nm, &reverse);
393b7579f77SDag-Erling Smørgrav int t = massage_type(qt, reverse, &multi);
394b7579f77SDag-Erling Smørgrav int c = massage_class(qc);
395b7579f77SDag-Erling Smørgrav
396b7579f77SDag-Erling Smørgrav /* perform the query */
397b7579f77SDag-Erling Smørgrav if(multi) {
398b7579f77SDag-Erling Smørgrav if(!dnslook(ctx, realq, LDNS_RR_TYPE_A, c, 1)) {
399b7579f77SDag-Erling Smørgrav /* domain exists, lookup more */
400b7579f77SDag-Erling Smørgrav (void)dnslook(ctx, realq, LDNS_RR_TYPE_AAAA, c, 0);
401b7579f77SDag-Erling Smørgrav (void)dnslook(ctx, realq, LDNS_RR_TYPE_MX, c, 0);
402b7579f77SDag-Erling Smørgrav }
403b7579f77SDag-Erling Smørgrav } else {
404b7579f77SDag-Erling Smørgrav (void)dnslook(ctx, realq, t, c, 1);
405b7579f77SDag-Erling Smørgrav }
406b7579f77SDag-Erling Smørgrav ub_ctx_delete(ctx);
407b7579f77SDag-Erling Smørgrav free(realq);
408b7579f77SDag-Erling Smørgrav }
409b7579f77SDag-Erling Smørgrav
410b7579f77SDag-Erling Smørgrav /** print error if any */
411b7579f77SDag-Erling Smørgrav static void
check_ub_res(int r)412b7579f77SDag-Erling Smørgrav check_ub_res(int r)
413b7579f77SDag-Erling Smørgrav {
414b7579f77SDag-Erling Smørgrav if(r != 0) {
415b7579f77SDag-Erling Smørgrav fprintf(stderr, "error: %s\n", ub_strerror(r));
416b7579f77SDag-Erling Smørgrav exit(1);
417b7579f77SDag-Erling Smørgrav }
418b7579f77SDag-Erling Smørgrav }
419b7579f77SDag-Erling Smørgrav
420b7579f77SDag-Erling Smørgrav /** getopt global, in case header files fail to declare it. */
421b7579f77SDag-Erling Smørgrav extern int optind;
422b7579f77SDag-Erling Smørgrav /** getopt global, in case header files fail to declare it. */
423b7579f77SDag-Erling Smørgrav extern char* optarg;
424b7579f77SDag-Erling Smørgrav
425ff825849SDag-Erling Smørgrav /** Main routine for unbound-host */
main(int argc,char * argv[])426b7579f77SDag-Erling Smørgrav int main(int argc, char* argv[])
427b7579f77SDag-Erling Smørgrav {
428b7579f77SDag-Erling Smørgrav int c;
429b7579f77SDag-Erling Smørgrav char* qclass = NULL;
430b7579f77SDag-Erling Smørgrav char* qtype = NULL;
4310eefd307SCy Schubert char* use_syslog = NULL;
432b7579f77SDag-Erling Smørgrav struct ub_ctx* ctx = NULL;
433b7579f77SDag-Erling Smørgrav int debuglevel = 0;
434b7579f77SDag-Erling Smørgrav
435b7579f77SDag-Erling Smørgrav ctx = ub_ctx_create();
436b7579f77SDag-Erling Smørgrav if(!ctx) {
437b7579f77SDag-Erling Smørgrav fprintf(stderr, "error: out of memory\n");
438b7579f77SDag-Erling Smørgrav exit(1);
439b7579f77SDag-Erling Smørgrav }
440ff825849SDag-Erling Smørgrav /* no need to fetch additional targets, we only do few lookups */
441ff825849SDag-Erling Smørgrav check_ub_res(ub_ctx_set_option(ctx, "target-fetch-policy:", "0 0 0 0 0"));
442b7579f77SDag-Erling Smørgrav
443b7579f77SDag-Erling Smørgrav /* parse the options */
444ff825849SDag-Erling Smørgrav while( (c=getopt(argc, argv, "46DF:c:df:hrt:vy:C:")) != -1) {
445b7579f77SDag-Erling Smørgrav switch(c) {
446b7579f77SDag-Erling Smørgrav case '4':
447b7579f77SDag-Erling Smørgrav check_ub_res(ub_ctx_set_option(ctx, "do-ip6:", "no"));
448b7579f77SDag-Erling Smørgrav break;
449b7579f77SDag-Erling Smørgrav case '6':
450b7579f77SDag-Erling Smørgrav check_ub_res(ub_ctx_set_option(ctx, "do-ip4:", "no"));
451b7579f77SDag-Erling Smørgrav break;
452b7579f77SDag-Erling Smørgrav case 'c':
453b7579f77SDag-Erling Smørgrav qclass = optarg;
454b7579f77SDag-Erling Smørgrav break;
455b7579f77SDag-Erling Smørgrav case 'C':
456b7579f77SDag-Erling Smørgrav check_ub_res(ub_ctx_config(ctx, optarg));
457b7579f77SDag-Erling Smørgrav break;
458ff825849SDag-Erling Smørgrav case 'D':
459ff825849SDag-Erling Smørgrav check_ub_res(ub_ctx_add_ta_file(ctx, ROOT_ANCHOR_FILE));
460ff825849SDag-Erling Smørgrav break;
461b7579f77SDag-Erling Smørgrav case 'd':
462b7579f77SDag-Erling Smørgrav debuglevel++;
463b7579f77SDag-Erling Smørgrav if(debuglevel < 2)
464b7579f77SDag-Erling Smørgrav debuglevel = 2; /* at least VERB_DETAIL */
465b7579f77SDag-Erling Smørgrav break;
466b7579f77SDag-Erling Smørgrav case 'r':
467b7579f77SDag-Erling Smørgrav check_ub_res(ub_ctx_resolvconf(ctx, "/etc/resolv.conf"));
468b7579f77SDag-Erling Smørgrav break;
469b7579f77SDag-Erling Smørgrav case 't':
470b7579f77SDag-Erling Smørgrav qtype = optarg;
471b7579f77SDag-Erling Smørgrav break;
472b7579f77SDag-Erling Smørgrav case 'v':
473b7579f77SDag-Erling Smørgrav verb++;
474b7579f77SDag-Erling Smørgrav break;
475b7579f77SDag-Erling Smørgrav case 'y':
476b7579f77SDag-Erling Smørgrav check_ub_res(ub_ctx_add_ta(ctx, optarg));
477b7579f77SDag-Erling Smørgrav break;
478b7579f77SDag-Erling Smørgrav case 'f':
479b7579f77SDag-Erling Smørgrav check_ub_res(ub_ctx_add_ta_file(ctx, optarg));
480b7579f77SDag-Erling Smørgrav break;
481b7579f77SDag-Erling Smørgrav case 'F':
482b7579f77SDag-Erling Smørgrav check_ub_res(ub_ctx_trustedkeys(ctx, optarg));
483b7579f77SDag-Erling Smørgrav break;
484b7579f77SDag-Erling Smørgrav case '?':
485b7579f77SDag-Erling Smørgrav case 'h':
486b7579f77SDag-Erling Smørgrav default:
4878f76bb7dSCy Schubert ub_ctx_delete(ctx);
488b7579f77SDag-Erling Smørgrav usage();
489b7579f77SDag-Erling Smørgrav }
490b7579f77SDag-Erling Smørgrav }
491b7579f77SDag-Erling Smørgrav if(debuglevel != 0) /* set after possible -C options */
492b7579f77SDag-Erling Smørgrav check_ub_res(ub_ctx_debuglevel(ctx, debuglevel));
4930eefd307SCy Schubert if(ub_ctx_get_option(ctx, "use-syslog", &use_syslog) == 0) {
4940eefd307SCy Schubert if(strcmp(use_syslog, "yes") == 0) /* disable use-syslog */
495b7579f77SDag-Erling Smørgrav check_ub_res(ub_ctx_set_option(ctx,
496b7579f77SDag-Erling Smørgrav "use-syslog:", "no"));
497*46d2f618SCy Schubert #ifdef UNBOUND_ALLOC_STATS
498*46d2f618SCy Schubert unbound_stat_free_log(use_syslog, __FILE__, __LINE__, __func__);
499*46d2f618SCy Schubert #else
5000eefd307SCy Schubert free(use_syslog);
501*46d2f618SCy Schubert #endif
502b7579f77SDag-Erling Smørgrav }
503b7579f77SDag-Erling Smørgrav argc -= optind;
504b7579f77SDag-Erling Smørgrav argv += optind;
5058f76bb7dSCy Schubert if(argc != 1) {
5068f76bb7dSCy Schubert ub_ctx_delete(ctx);
507b7579f77SDag-Erling Smørgrav usage();
5088f76bb7dSCy Schubert }
509b7579f77SDag-Erling Smørgrav
5103bd4df0aSDag-Erling Smørgrav #ifdef HAVE_SSL
5113bd4df0aSDag-Erling Smørgrav #ifdef HAVE_ERR_LOAD_CRYPTO_STRINGS
5123bd4df0aSDag-Erling Smørgrav ERR_load_crypto_strings();
5133bd4df0aSDag-Erling Smørgrav #endif
5143bd4df0aSDag-Erling Smørgrav #if OPENSSL_VERSION_NUMBER < 0x10100000 || !defined(HAVE_OPENSSL_INIT_SSL)
5153bd4df0aSDag-Erling Smørgrav ERR_load_SSL_strings();
5163bd4df0aSDag-Erling Smørgrav #endif
5173bd4df0aSDag-Erling Smørgrav #if OPENSSL_VERSION_NUMBER < 0x10100000 || !defined(HAVE_OPENSSL_INIT_CRYPTO)
5180eefd307SCy Schubert # ifndef S_SPLINT_S
5193bd4df0aSDag-Erling Smørgrav OpenSSL_add_all_algorithms();
5200eefd307SCy Schubert # endif
5213bd4df0aSDag-Erling Smørgrav #else
5223bd4df0aSDag-Erling Smørgrav OPENSSL_init_crypto(OPENSSL_INIT_ADD_ALL_CIPHERS
5233bd4df0aSDag-Erling Smørgrav | OPENSSL_INIT_ADD_ALL_DIGESTS
5243bd4df0aSDag-Erling Smørgrav | OPENSSL_INIT_LOAD_CRYPTO_STRINGS, NULL);
5253bd4df0aSDag-Erling Smørgrav #endif
5263bd4df0aSDag-Erling Smørgrav #if OPENSSL_VERSION_NUMBER < 0x10100000 || !defined(HAVE_OPENSSL_INIT_SSL)
5273bd4df0aSDag-Erling Smørgrav (void)SSL_library_init();
5283bd4df0aSDag-Erling Smørgrav #else
5293bd4df0aSDag-Erling Smørgrav (void)OPENSSL_init_ssl(OPENSSL_INIT_LOAD_SSL_STRINGS, NULL);
5303bd4df0aSDag-Erling Smørgrav #endif
5313bd4df0aSDag-Erling Smørgrav #endif /* HAVE_SSL */
5328ed2b524SDag-Erling Smørgrav #ifdef HAVE_NSS
5338ed2b524SDag-Erling Smørgrav if(NSS_NoDB_Init(".") != SECSuccess) {
5348ed2b524SDag-Erling Smørgrav fprintf(stderr, "could not init NSS\n");
5358ed2b524SDag-Erling Smørgrav return 1;
5368ed2b524SDag-Erling Smørgrav }
5378ed2b524SDag-Erling Smørgrav #endif
538b7579f77SDag-Erling Smørgrav lookup(ctx, argv[0], qtype, qclass);
539b7579f77SDag-Erling Smørgrav return 0;
540b7579f77SDag-Erling Smørgrav }
541