xref: /freebsd/sbin/dhclient/dhclient.c (revision 43d19e6a4c42ade0f276ceca18a09e2e3829fce4)
147c08596SBrooks Davis /*	$OpenBSD: dhclient.c,v 1.63 2005/02/06 17:10:13 krw Exp $	*/
247c08596SBrooks Davis 
38a16b7a1SPedro F. Giffuni /*-
48a16b7a1SPedro F. Giffuni  * SPDX-License-Identifier: BSD-3-Clause
58a16b7a1SPedro F. Giffuni  *
647c08596SBrooks Davis  * Copyright 2004 Henning Brauer <henning@openbsd.org>
747c08596SBrooks Davis  * Copyright (c) 1995, 1996, 1997, 1998, 1999
847c08596SBrooks Davis  * The Internet Software Consortium.    All rights reserved.
947c08596SBrooks Davis  *
1047c08596SBrooks Davis  * Redistribution and use in source and binary forms, with or without
1147c08596SBrooks Davis  * modification, are permitted provided that the following conditions
1247c08596SBrooks Davis  * are met:
1347c08596SBrooks Davis  *
1447c08596SBrooks Davis  * 1. Redistributions of source code must retain the above copyright
1547c08596SBrooks Davis  *    notice, this list of conditions and the following disclaimer.
1647c08596SBrooks Davis  * 2. Redistributions in binary form must reproduce the above copyright
1747c08596SBrooks Davis  *    notice, this list of conditions and the following disclaimer in the
1847c08596SBrooks Davis  *    documentation and/or other materials provided with the distribution.
1947c08596SBrooks Davis  * 3. Neither the name of The Internet Software Consortium nor the names
2047c08596SBrooks Davis  *    of its contributors may be used to endorse or promote products derived
2147c08596SBrooks Davis  *    from this software without specific prior written permission.
2247c08596SBrooks Davis  *
2347c08596SBrooks Davis  * THIS SOFTWARE IS PROVIDED BY THE INTERNET SOFTWARE CONSORTIUM AND
2447c08596SBrooks Davis  * CONTRIBUTORS ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES,
2547c08596SBrooks Davis  * INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF
2647c08596SBrooks Davis  * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
2747c08596SBrooks Davis  * DISCLAIMED.  IN NO EVENT SHALL THE INTERNET SOFTWARE CONSORTIUM OR
2847c08596SBrooks Davis  * CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
2947c08596SBrooks Davis  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
3047c08596SBrooks Davis  * LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF
3147c08596SBrooks Davis  * USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND
3247c08596SBrooks Davis  * ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
3347c08596SBrooks Davis  * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT
3447c08596SBrooks Davis  * OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
3547c08596SBrooks Davis  * SUCH DAMAGE.
3647c08596SBrooks Davis  *
3747c08596SBrooks Davis  * This software has been written for the Internet Software Consortium
3847c08596SBrooks Davis  * by Ted Lemon <mellon@fugue.com> in cooperation with Vixie
3947c08596SBrooks Davis  * Enterprises.  To learn more about the Internet Software Consortium,
4047c08596SBrooks Davis  * see ``http://www.vix.com/isc''.  To learn more about Vixie
4147c08596SBrooks Davis  * Enterprises, see ``http://www.vix.com''.
4247c08596SBrooks Davis  *
4347c08596SBrooks Davis  * This client was substantially modified and enhanced by Elliot Poger
4447c08596SBrooks Davis  * for use on Linux while he was working on the MosquitoNet project at
4547c08596SBrooks Davis  * Stanford.
4647c08596SBrooks Davis  *
4747c08596SBrooks Davis  * The current version owes much to Elliot's Linux enhancements, but
4847c08596SBrooks Davis  * was substantially reorganized and partially rewritten by Ted Lemon
4947c08596SBrooks Davis  * so as to use the same networking framework that the Internet Software
5047c08596SBrooks Davis  * Consortium DHCP server uses.   Much system-specific configuration code
5147c08596SBrooks Davis  * was moved into a shell script so that as support for more operating
5247c08596SBrooks Davis  * systems is added, it will not be necessary to port and maintain
5347c08596SBrooks Davis  * system-specific configuration code to these operating systems - instead,
5447c08596SBrooks Davis  * the shell script can invoke the native tools to accomplish the same
5547c08596SBrooks Davis  * purpose.
5647c08596SBrooks Davis  */
5747c08596SBrooks Davis 
588794fdbbSBrooks Davis #include <sys/cdefs.h>
5947c08596SBrooks Davis #include "dhcpd.h"
6047c08596SBrooks Davis #include "privsep.h"
6147c08596SBrooks Davis 
62b881b8beSRobert Watson #include <sys/capsicum.h>
63387016a5SConrad Meyer #include <sys/endian.h>
64de2c882fSPawel Jakub Dawidek 
657672a014SMariusz Zaborski #include <capsicum_helpers.h>
6671c6c44dSEitan Adler #include <libgen.h>
677672a014SMariusz Zaborski 
682b19b6fcSBrooks Davis #include <net80211/ieee80211_freebsd.h>
692b19b6fcSBrooks Davis 
7071c6c44dSEitan Adler 
712b19b6fcSBrooks Davis #ifndef _PATH_VAREMPTY
722b19b6fcSBrooks Davis #define	_PATH_VAREMPTY	"/var/empty"
732b19b6fcSBrooks Davis #endif
742b19b6fcSBrooks Davis 
7547c08596SBrooks Davis #define	PERIOD 0x2e
7647c08596SBrooks Davis #define	hyphenchar(c) ((c) == 0x2d)
7747c08596SBrooks Davis #define	bslashchar(c) ((c) == 0x5c)
7847c08596SBrooks Davis #define	periodchar(c) ((c) == PERIOD)
7947c08596SBrooks Davis #define	asterchar(c) ((c) == 0x2a)
8047c08596SBrooks Davis #define	alphachar(c) (((c) >= 0x41 && (c) <= 0x5a) || \
8147c08596SBrooks Davis 	    ((c) >= 0x61 && (c) <= 0x7a))
8247c08596SBrooks Davis #define	digitchar(c) ((c) >= 0x30 && (c) <= 0x39)
83f954ec0bSBrooks Davis #define	whitechar(c) ((c) == ' ' || (c) == '\t')
8447c08596SBrooks Davis 
8547c08596SBrooks Davis #define	borderchar(c) (alphachar(c) || digitchar(c))
8647c08596SBrooks Davis #define	middlechar(c) (borderchar(c) || hyphenchar(c))
8747c08596SBrooks Davis #define	domainchar(c) ((c) > 0x20 && (c) < 0x7f)
8847c08596SBrooks Davis 
8947c08596SBrooks Davis #define	CLIENT_PATH "PATH=/usr/bin:/usr/sbin:/bin:/sbin"
9047c08596SBrooks Davis 
91cb003dd9SMariusz Zaborski cap_channel_t *capsyslog;
92cb003dd9SMariusz Zaborski 
93*43d19e6aSColin Percival time_t cur_time;	/* Seconds since epoch. */
94*43d19e6aSColin Percival struct timespec time_now;	/* CLOCK_MONOTONIC. */
9571c6c44dSEitan Adler static time_t default_lease_time = 43200; /* 12 hours... */
9647c08596SBrooks Davis 
9779a1d195SAlan Somers const char *path_dhclient_conf = _PATH_DHCLIENT_CONF;
9847c08596SBrooks Davis char *path_dhclient_db = NULL;
9947c08596SBrooks Davis 
10047c08596SBrooks Davis int log_perror = 1;
10171c6c44dSEitan Adler static int privfd;
10271c6c44dSEitan Adler static int nullfd = -1;
10347c08596SBrooks Davis 
10471c6c44dSEitan Adler static char hostname[_POSIX_HOST_NAME_MAX + 1];
1050bbe8306SPawel Jakub Dawidek 
10671c6c44dSEitan Adler static struct iaddr iaddr_broadcast = { 4, { 255, 255, 255, 255 } };
10771c6c44dSEitan Adler static struct in_addr inaddr_any, inaddr_broadcast;
10847c08596SBrooks Davis 
10971c6c44dSEitan Adler static char *path_dhclient_pidfile;
11023f39c90SDag-Erling Smørgrav struct pidfh *pidfile;
11123f39c90SDag-Erling Smørgrav 
11247c08596SBrooks Davis /*
11347c08596SBrooks Davis  * ASSERT_STATE() does nothing now; it used to be
11447c08596SBrooks Davis  * assert (state_is == state_shouldbe).
11547c08596SBrooks Davis  */
11647c08596SBrooks Davis #define ASSERT_STATE(state_is, state_shouldbe) {}
11747c08596SBrooks Davis 
118223c44aeSNick Hibma /*
119223c44aeSNick Hibma  * We need to check that the expiry, renewal and rebind times are not beyond
120223c44aeSNick Hibma  * the end of time (~2038 when a 32-bit time_t is being used).
121223c44aeSNick Hibma  */
122223c44aeSNick Hibma #define TIME_MAX        ((((time_t) 1 << (sizeof(time_t) * CHAR_BIT - 2)) - 1) * 2 + 1)
12347c08596SBrooks Davis 
124b51569adSIsaac Cilia Attard static struct timespec arp_timeout = { .tv_sec = 0, .tv_nsec = 250 * 1000 * 1000 };
12576e0ffd9SIsaac Cilia Attard static const struct timespec zero_timespec = { .tv_sec = 0, .tv_nsec = 0 };
12647c08596SBrooks Davis int		log_priority;
12771c6c44dSEitan Adler static int		no_daemon;
12871c6c44dSEitan Adler static int		unknown_ok = 1;
12971c6c44dSEitan Adler static int		routefd;
13047c08596SBrooks Davis 
13147c08596SBrooks Davis struct interface_info	*ifi;
13247c08596SBrooks Davis 
13347c08596SBrooks Davis int		 findproto(char *, int);
13447c08596SBrooks Davis struct sockaddr	*get_ifa(char *, int);
13547c08596SBrooks Davis void		 routehandler(struct protocol *);
13647c08596SBrooks Davis void		 usage(void);
13747c08596SBrooks Davis int		 check_option(struct client_lease *l, int option);
1382fcc7370SEd Maste int		 check_classless_option(unsigned char *data, int len);
13979a1d195SAlan Somers int		 ipv4addrs(const char * buf);
14047c08596SBrooks Davis int		 res_hnok(const char *dn);
141f954ec0bSBrooks Davis int		 check_search(const char *srch);
14279a1d195SAlan Somers const char	*option_as_string(unsigned int code, unsigned char *data, int len);
14347c08596SBrooks Davis int		 fork_privchld(int, int);
14447c08596SBrooks Davis 
14547c08596SBrooks Davis #define	ROUNDUP(a) \
14647c08596SBrooks Davis 	    ((a) > 0 ? (1 + (((a) - 1) | (sizeof(long) - 1))) : sizeof(long))
14747c08596SBrooks Davis #define	ADVANCE(x, n) (x += ROUNDUP((n)->sa_len))
14847c08596SBrooks Davis 
149387016a5SConrad Meyer /* Minimum MTU is 68 as per RFC791, p. 24 */
150387016a5SConrad Meyer #define MIN_MTU 68
151387016a5SConrad Meyer 
1526964abefSBrian Somers static time_t	scripttime;
15347c08596SBrooks Davis 
15447c08596SBrooks Davis int
findproto(char * cp,int n)15547c08596SBrooks Davis findproto(char *cp, int n)
15647c08596SBrooks Davis {
15747c08596SBrooks Davis 	struct sockaddr *sa;
1585f28c51dSAlan Somers 	unsigned i;
15947c08596SBrooks Davis 
16047c08596SBrooks Davis 	if (n == 0)
16147c08596SBrooks Davis 		return -1;
16247c08596SBrooks Davis 	for (i = 1; i; i <<= 1) {
16347c08596SBrooks Davis 		if (i & n) {
16447c08596SBrooks Davis 			sa = (struct sockaddr *)cp;
16547c08596SBrooks Davis 			switch (i) {
16647c08596SBrooks Davis 			case RTA_IFA:
16747c08596SBrooks Davis 			case RTA_DST:
16847c08596SBrooks Davis 			case RTA_GATEWAY:
16947c08596SBrooks Davis 			case RTA_NETMASK:
17047c08596SBrooks Davis 				if (sa->sa_family == AF_INET)
17147c08596SBrooks Davis 					return AF_INET;
17247c08596SBrooks Davis 				if (sa->sa_family == AF_INET6)
17347c08596SBrooks Davis 					return AF_INET6;
17447c08596SBrooks Davis 				break;
17547c08596SBrooks Davis 			case RTA_IFP:
17647c08596SBrooks Davis 				break;
17747c08596SBrooks Davis 			}
17847c08596SBrooks Davis 			ADVANCE(cp, sa);
17947c08596SBrooks Davis 		}
18047c08596SBrooks Davis 	}
18147c08596SBrooks Davis 	return (-1);
18247c08596SBrooks Davis }
18347c08596SBrooks Davis 
18447c08596SBrooks Davis struct sockaddr *
get_ifa(char * cp,int n)18547c08596SBrooks Davis get_ifa(char *cp, int n)
18647c08596SBrooks Davis {
18747c08596SBrooks Davis 	struct sockaddr *sa;
1885f28c51dSAlan Somers 	unsigned i;
18947c08596SBrooks Davis 
19047c08596SBrooks Davis 	if (n == 0)
19147c08596SBrooks Davis 		return (NULL);
19247c08596SBrooks Davis 	for (i = 1; i; i <<= 1)
19347c08596SBrooks Davis 		if (i & n) {
19447c08596SBrooks Davis 			sa = (struct sockaddr *)cp;
19547c08596SBrooks Davis 			if (i == RTA_IFA)
19647c08596SBrooks Davis 				return (sa);
19747c08596SBrooks Davis 			ADVANCE(cp, sa);
19847c08596SBrooks Davis 		}
19947c08596SBrooks Davis 
20047c08596SBrooks Davis 	return (NULL);
20147c08596SBrooks Davis }
20261063e47SSam Leffler 
20371c6c44dSEitan Adler static struct iaddr defaddr = { .len = 4 };
20471c6c44dSEitan Adler static uint8_t curbssid[6];
20561063e47SSam Leffler 
20661063e47SSam Leffler static void
disassoc(void * arg)20761063e47SSam Leffler disassoc(void *arg)
20861063e47SSam Leffler {
20979a1d195SAlan Somers 	struct interface_info *_ifi = arg;
21061063e47SSam Leffler 
21161063e47SSam Leffler 	/*
21261063e47SSam Leffler 	 * Clear existing state.
21361063e47SSam Leffler 	 */
21479a1d195SAlan Somers 	if (_ifi->client->active != NULL) {
21561063e47SSam Leffler 		script_init("EXPIRE", NULL);
21661063e47SSam Leffler 		script_write_params("old_",
21779a1d195SAlan Somers 		    _ifi->client->active);
21879a1d195SAlan Somers 		if (_ifi->client->alias)
21961063e47SSam Leffler 			script_write_params("alias_",
22079a1d195SAlan Somers 				_ifi->client->alias);
22161063e47SSam Leffler 		script_go();
22261063e47SSam Leffler 	}
22379a1d195SAlan Somers 	_ifi->client->state = S_INIT;
22461063e47SSam Leffler }
22547c08596SBrooks Davis 
22647c08596SBrooks Davis void
routehandler(struct protocol * p __unused)22779a1d195SAlan Somers routehandler(struct protocol *p __unused)
22847c08596SBrooks Davis {
2296964abefSBrian Somers 	char msg[2048], *addr;
23047c08596SBrooks Davis 	struct rt_msghdr *rtm;
23147c08596SBrooks Davis 	struct if_msghdr *ifm;
23247c08596SBrooks Davis 	struct ifa_msghdr *ifam;
23347c08596SBrooks Davis 	struct if_announcemsghdr *ifan;
23461063e47SSam Leffler 	struct ieee80211_join_event *jev;
23547c08596SBrooks Davis 	struct client_lease *l;
23647c08596SBrooks Davis 	time_t t = time(NULL);
23779a1d195SAlan Somers 	struct sockaddr_in *sa;
23847c08596SBrooks Davis 	struct iaddr a;
23947c08596SBrooks Davis 	ssize_t n;
2400a26f858SJohn Baldwin 	int linkstat;
24147c08596SBrooks Davis 
24247c08596SBrooks Davis 	n = read(routefd, &msg, sizeof(msg));
24347c08596SBrooks Davis 	rtm = (struct rt_msghdr *)msg;
244afe6f835SAlan Somers 	if (n < (ssize_t)sizeof(rtm->rtm_msglen) ||
245afe6f835SAlan Somers 	    n < (ssize_t)rtm->rtm_msglen ||
24647c08596SBrooks Davis 	    rtm->rtm_version != RTM_VERSION)
24747c08596SBrooks Davis 		return;
24847c08596SBrooks Davis 
24947c08596SBrooks Davis 	switch (rtm->rtm_type) {
25047c08596SBrooks Davis 	case RTM_NEWADDR:
251dfad96eaSBrooks Davis 	case RTM_DELADDR:
25247c08596SBrooks Davis 		ifam = (struct ifa_msghdr *)rtm;
253dfad96eaSBrooks Davis 
25447c08596SBrooks Davis 		if (ifam->ifam_index != ifi->index)
25547c08596SBrooks Davis 			break;
25647c08596SBrooks Davis 		if (findproto((char *)(ifam + 1), ifam->ifam_addrs) != AF_INET)
25747c08596SBrooks Davis 			break;
258dfad96eaSBrooks Davis 		if (scripttime == 0 || t < scripttime + 10)
259dfad96eaSBrooks Davis 			break;
260dfad96eaSBrooks Davis 
26179a1d195SAlan Somers 		sa = (struct sockaddr_in*)get_ifa((char *)(ifam + 1), ifam->ifam_addrs);
26247c08596SBrooks Davis 		if (sa == NULL)
2636964abefSBrian Somers 			break;
26447c08596SBrooks Davis 
26547c08596SBrooks Davis 		if ((a.len = sizeof(struct in_addr)) > sizeof(a.iabuf))
26647c08596SBrooks Davis 			error("king bula sez: len mismatch");
26779a1d195SAlan Somers 		memcpy(a.iabuf, &sa->sin_addr, a.len);
26847c08596SBrooks Davis 		if (addr_eq(a, defaddr))
26947c08596SBrooks Davis 			break;
27047c08596SBrooks Davis 
27147c08596SBrooks Davis 		for (l = ifi->client->active; l != NULL; l = l->next)
27247c08596SBrooks Davis 			if (addr_eq(a, l->address))
27347c08596SBrooks Davis 				break;
27447c08596SBrooks Davis 
2756964abefSBrian Somers 		if (l == NULL)	/* added/deleted addr is not the one we set */
27647c08596SBrooks Davis 			break;
2776964abefSBrian Somers 
27879a1d195SAlan Somers 		addr = inet_ntoa(sa->sin_addr);
2796964abefSBrian Somers 		if (rtm->rtm_type == RTM_NEWADDR)  {
2806964abefSBrian Somers 			/*
2816964abefSBrian Somers 			 * XXX: If someone other than us adds our address,
2826964abefSBrian Somers 			 * should we assume they are taking over from us,
2836964abefSBrian Somers 			 * delete the lease record, and exit without modifying
2846964abefSBrian Somers 			 * the interface?
2856964abefSBrian Somers 			 */
2866964abefSBrian Somers 			warning("My address (%s) was re-added", addr);
2876964abefSBrian Somers 		} else {
2886964abefSBrian Somers 			warning("My address (%s) was deleted, dhclient exiting",
2896964abefSBrian Somers 			    addr);
29047c08596SBrooks Davis 			goto die;
2916964abefSBrian Somers 		}
2926964abefSBrian Somers 		break;
29347c08596SBrooks Davis 	case RTM_IFINFO:
29447c08596SBrooks Davis 		ifm = (struct if_msghdr *)rtm;
29547c08596SBrooks Davis 		if (ifm->ifm_index != ifi->index)
29647c08596SBrooks Davis 			break;
2976964abefSBrian Somers 		if ((rtm->rtm_flags & RTF_UP) == 0) {
2986964abefSBrian Somers 			warning("Interface %s is down, dhclient exiting",
2996964abefSBrian Somers 			    ifi->name);
30047c08596SBrooks Davis 			goto die;
3016964abefSBrian Somers 		}
3020a26f858SJohn Baldwin 		linkstat = interface_link_status(ifi->name);
3030a26f858SJohn Baldwin 		if (linkstat != ifi->linkstat) {
3040a26f858SJohn Baldwin 			debug("%s link state %s -> %s", ifi->name,
3050a26f858SJohn Baldwin 			    ifi->linkstat ? "up" : "down",
3060a26f858SJohn Baldwin 			    linkstat ? "up" : "down");
3070a26f858SJohn Baldwin 			ifi->linkstat = linkstat;
3080a26f858SJohn Baldwin 			if (linkstat)
3090a26f858SJohn Baldwin 				state_reboot(ifi);
31083f745b8SJohn Baldwin 		}
31147c08596SBrooks Davis 		break;
31247c08596SBrooks Davis 	case RTM_IFANNOUNCE:
31347c08596SBrooks Davis 		ifan = (struct if_announcemsghdr *)rtm;
31447c08596SBrooks Davis 		if (ifan->ifan_what == IFAN_DEPARTURE &&
3156964abefSBrian Somers 		    ifan->ifan_index == ifi->index) {
3166964abefSBrian Somers 			warning("Interface %s is gone, dhclient exiting",
3176964abefSBrian Somers 			    ifi->name);
31847c08596SBrooks Davis 			goto die;
3196964abefSBrian Somers 		}
32047c08596SBrooks Davis 		break;
3212b19b6fcSBrooks Davis 	case RTM_IEEE80211:
3222b19b6fcSBrooks Davis 		ifan = (struct if_announcemsghdr *)rtm;
3232b19b6fcSBrooks Davis 		if (ifan->ifan_index != ifi->index)
3242b19b6fcSBrooks Davis 			break;
3252b19b6fcSBrooks Davis 		switch (ifan->ifan_what) {
3262b19b6fcSBrooks Davis 		case RTM_IEEE80211_ASSOC:
327b35f2511SSam Leffler 		case RTM_IEEE80211_REASSOC:
3282b19b6fcSBrooks Davis 			/*
32961063e47SSam Leffler 			 * Use assoc/reassoc event to kick state machine
33061063e47SSam Leffler 			 * in case we roam.  Otherwise fall back to the
33161063e47SSam Leffler 			 * normal state machine just like a wired network.
3322b19b6fcSBrooks Davis 			 */
33361063e47SSam Leffler 			jev = (struct ieee80211_join_event *) &ifan[1];
33461063e47SSam Leffler 			if (memcmp(curbssid, jev->iev_addr, 6)) {
33561063e47SSam Leffler 				disassoc(ifi);
33661063e47SSam Leffler 				state_reboot(ifi);
33759eac186SBrooks Davis 			}
33861063e47SSam Leffler 			memcpy(curbssid, jev->iev_addr, 6);
3392b19b6fcSBrooks Davis 			break;
3402b19b6fcSBrooks Davis 		}
3412b19b6fcSBrooks Davis 		break;
34247c08596SBrooks Davis 	default:
34347c08596SBrooks Davis 		break;
34447c08596SBrooks Davis 	}
34547c08596SBrooks Davis 	return;
34647c08596SBrooks Davis 
34747c08596SBrooks Davis die:
34847c08596SBrooks Davis 	script_init("FAIL", NULL);
34947c08596SBrooks Davis 	if (ifi->client->alias)
35047c08596SBrooks Davis 		script_write_params("alias_", ifi->client->alias);
35147c08596SBrooks Davis 	script_go();
35223f39c90SDag-Erling Smørgrav 	if (pidfile != NULL)
35323f39c90SDag-Erling Smørgrav 		pidfile_remove(pidfile);
35447c08596SBrooks Davis 	exit(1);
35547c08596SBrooks Davis }
35647c08596SBrooks Davis 
357cb003dd9SMariusz Zaborski static void
init_casper(void)358cb003dd9SMariusz Zaborski init_casper(void)
359cb003dd9SMariusz Zaborski {
360cb003dd9SMariusz Zaborski 	cap_channel_t		*casper;
361cb003dd9SMariusz Zaborski 
362cb003dd9SMariusz Zaborski 	casper = cap_init();
363cb003dd9SMariusz Zaborski 	if (casper == NULL)
364cb003dd9SMariusz Zaborski 		error("unable to start casper");
365cb003dd9SMariusz Zaborski 
366cb003dd9SMariusz Zaborski 	capsyslog = cap_service_open(casper, "system.syslog");
367cb003dd9SMariusz Zaborski 	cap_close(casper);
368cb003dd9SMariusz Zaborski 	if (capsyslog == NULL)
369cb003dd9SMariusz Zaborski 		error("unable to open system.syslog service");
370cb003dd9SMariusz Zaborski }
371cb003dd9SMariusz Zaborski 
37247c08596SBrooks Davis int
main(int argc,char * argv[])37347c08596SBrooks Davis main(int argc, char *argv[])
37447c08596SBrooks Davis {
375976e1003SMark Johnston 	u_int			 capmode;
37647c08596SBrooks Davis 	int			 ch, fd, quiet = 0, i = 0;
37747c08596SBrooks Davis 	int			 pipe_fd[2];
3782b19b6fcSBrooks Davis 	int			 immediate_daemon = 0;
37947c08596SBrooks Davis 	struct passwd		*pw;
38023f39c90SDag-Erling Smørgrav 	pid_t			 otherpid;
3817008be5bSPawel Jakub Dawidek 	cap_rights_t		 rights;
38247c08596SBrooks Davis 
383cb003dd9SMariusz Zaborski 	init_casper();
384cb003dd9SMariusz Zaborski 
38547c08596SBrooks Davis 	/* Initially, log errors to stderr as well as to syslogd. */
386b537db69SEitan Adler 	cap_openlog(capsyslog, getprogname(), LOG_PID | LOG_NDELAY, DHCPD_LOG_FACILITY);
387cb003dd9SMariusz Zaborski 	cap_setlogmask(capsyslog, LOG_UPTO(LOG_DEBUG));
38847c08596SBrooks Davis 
389b51569adSIsaac Cilia Attard 	while ((ch = getopt(argc, argv, "bc:dl:np:qu")) != -1)
39047c08596SBrooks Davis 		switch (ch) {
3912b19b6fcSBrooks Davis 		case 'b':
3922b19b6fcSBrooks Davis 			immediate_daemon = 1;
3932b19b6fcSBrooks Davis 			break;
39447c08596SBrooks Davis 		case 'c':
39547c08596SBrooks Davis 			path_dhclient_conf = optarg;
39647c08596SBrooks Davis 			break;
39747c08596SBrooks Davis 		case 'd':
39847c08596SBrooks Davis 			no_daemon = 1;
39947c08596SBrooks Davis 			break;
40047c08596SBrooks Davis 		case 'l':
40147c08596SBrooks Davis 			path_dhclient_db = optarg;
40247c08596SBrooks Davis 			break;
403b51569adSIsaac Cilia Attard 		case 'n':
404b51569adSIsaac Cilia Attard 			arp_timeout = zero_timespec;
405b51569adSIsaac Cilia Attard 			break;
40623f39c90SDag-Erling Smørgrav 		case 'p':
40723f39c90SDag-Erling Smørgrav 			path_dhclient_pidfile = optarg;
40823f39c90SDag-Erling Smørgrav 			break;
40947c08596SBrooks Davis 		case 'q':
41047c08596SBrooks Davis 			quiet = 1;
41147c08596SBrooks Davis 			break;
41247c08596SBrooks Davis 		case 'u':
41347c08596SBrooks Davis 			unknown_ok = 0;
41447c08596SBrooks Davis 			break;
41547c08596SBrooks Davis 		default:
41647c08596SBrooks Davis 			usage();
41747c08596SBrooks Davis 		}
41847c08596SBrooks Davis 
41947c08596SBrooks Davis 	argc -= optind;
42047c08596SBrooks Davis 	argv += optind;
42147c08596SBrooks Davis 
42247c08596SBrooks Davis 	if (argc != 1)
42347c08596SBrooks Davis 		usage();
42447c08596SBrooks Davis 
42523f39c90SDag-Erling Smørgrav 	if (path_dhclient_pidfile == NULL) {
42623f39c90SDag-Erling Smørgrav 		asprintf(&path_dhclient_pidfile,
427976e1003SMark Johnston 		    "%s/dhclient/dhclient.%s.pid", _PATH_VARRUN, *argv);
42823f39c90SDag-Erling Smørgrav 		if (path_dhclient_pidfile == NULL)
42923f39c90SDag-Erling Smørgrav 			error("asprintf");
43023f39c90SDag-Erling Smørgrav 	}
43107561ab4SEitan Adler 	pidfile = pidfile_open(path_dhclient_pidfile, 0644, &otherpid);
43223f39c90SDag-Erling Smørgrav 	if (pidfile == NULL) {
43323f39c90SDag-Erling Smørgrav 		if (errno == EEXIST)
43423f39c90SDag-Erling Smørgrav 			error("dhclient already running, pid: %d.", otherpid);
43523f39c90SDag-Erling Smørgrav 		if (errno == EAGAIN)
43623f39c90SDag-Erling Smørgrav 			error("dhclient already running.");
43723f39c90SDag-Erling Smørgrav 		warning("Cannot open or create pidfile: %m");
43823f39c90SDag-Erling Smørgrav 	}
43923f39c90SDag-Erling Smørgrav 
44047c08596SBrooks Davis 	if ((ifi = calloc(1, sizeof(struct interface_info))) == NULL)
44147c08596SBrooks Davis 		error("calloc");
44247c08596SBrooks Davis 	if (strlcpy(ifi->name, argv[0], IFNAMSIZ) >= IFNAMSIZ)
44347c08596SBrooks Davis 		error("Interface name too long");
44447c08596SBrooks Davis 	if (path_dhclient_db == NULL && asprintf(&path_dhclient_db, "%s.%s",
44547c08596SBrooks Davis 	    _PATH_DHCLIENT_DB, ifi->name) == -1)
44647c08596SBrooks Davis 		error("asprintf");
44747c08596SBrooks Davis 
44847c08596SBrooks Davis 	if (quiet)
44947c08596SBrooks Davis 		log_perror = 0;
45047c08596SBrooks Davis 
45147c08596SBrooks Davis 	tzset();
452f0a38976SIsaac Cilia Attard 	clock_gettime(CLOCK_MONOTONIC, &time_now);
453*43d19e6aSColin Percival 	cur_time = time(NULL);
45447c08596SBrooks Davis 
455ba019ae5SPawel Jakub Dawidek 	inaddr_broadcast.s_addr = INADDR_BROADCAST;
45647c08596SBrooks Davis 	inaddr_any.s_addr = INADDR_ANY;
45747c08596SBrooks Davis 
45847c08596SBrooks Davis 	read_client_conf();
45947c08596SBrooks Davis 
46023f39c90SDag-Erling Smørgrav 	/* The next bit is potentially very time-consuming, so write out
46123f39c90SDag-Erling Smørgrav 	   the pidfile right away.  We will write it out again with the
46223f39c90SDag-Erling Smørgrav 	   correct pid after daemonizing. */
46323f39c90SDag-Erling Smørgrav 	if (pidfile != NULL)
46423f39c90SDag-Erling Smørgrav 		pidfile_write(pidfile);
46523f39c90SDag-Erling Smørgrav 
46647c08596SBrooks Davis 	if (!interface_link_status(ifi->name)) {
46747c08596SBrooks Davis 		fprintf(stderr, "%s: no link ...", ifi->name);
46847c08596SBrooks Davis 		fflush(stderr);
46947c08596SBrooks Davis 		sleep(1);
47047c08596SBrooks Davis 		while (!interface_link_status(ifi->name)) {
47147c08596SBrooks Davis 			fprintf(stderr, ".");
47247c08596SBrooks Davis 			fflush(stderr);
47347c08596SBrooks Davis 			if (++i > 10) {
47447c08596SBrooks Davis 				fprintf(stderr, " giving up\n");
47547c08596SBrooks Davis 				exit(1);
47647c08596SBrooks Davis 			}
47747c08596SBrooks Davis 			sleep(1);
47847c08596SBrooks Davis 		}
47947c08596SBrooks Davis 		fprintf(stderr, " got link\n");
48047c08596SBrooks Davis 	}
4810a26f858SJohn Baldwin 	ifi->linkstat = 1;
48247c08596SBrooks Davis 
48347c08596SBrooks Davis 	if ((nullfd = open(_PATH_DEVNULL, O_RDWR, 0)) == -1)
48447c08596SBrooks Davis 		error("cannot open %s: %m", _PATH_DEVNULL);
48547c08596SBrooks Davis 
48647c08596SBrooks Davis 	if ((pw = getpwnam("_dhcp")) == NULL) {
48747c08596SBrooks Davis 		warning("no such user: _dhcp, falling back to \"nobody\"");
48847c08596SBrooks Davis 		if ((pw = getpwnam("nobody")) == NULL)
48947c08596SBrooks Davis 			error("no such user: nobody");
49047c08596SBrooks Davis 	}
49147c08596SBrooks Davis 
4920bbe8306SPawel Jakub Dawidek 	/*
4930bbe8306SPawel Jakub Dawidek 	 * Obtain hostname before entering capability mode - it won't be
4940bbe8306SPawel Jakub Dawidek 	 * possible then, as reading kern.hostname is not permitted.
4950bbe8306SPawel Jakub Dawidek 	 */
4960bbe8306SPawel Jakub Dawidek 	if (gethostname(hostname, sizeof(hostname)) < 0)
4970bbe8306SPawel Jakub Dawidek 		hostname[0] = '\0';
4980bbe8306SPawel Jakub Dawidek 
499374a8a32SPawel Jakub Dawidek 	priv_script_init("PREINIT", NULL);
500374a8a32SPawel Jakub Dawidek 	if (ifi->client->alias)
501374a8a32SPawel Jakub Dawidek 		priv_script_write_params("alias_", ifi->client->alias);
502374a8a32SPawel Jakub Dawidek 	priv_script_go();
503374a8a32SPawel Jakub Dawidek 
504235eb530SPawel Jakub Dawidek 	/* set up the interface */
505235eb530SPawel Jakub Dawidek 	discover_interfaces(ifi);
506235eb530SPawel Jakub Dawidek 
50747c08596SBrooks Davis 	if (pipe(pipe_fd) == -1)
50847c08596SBrooks Davis 		error("pipe");
50947c08596SBrooks Davis 
51047c08596SBrooks Davis 	fork_privchld(pipe_fd[0], pipe_fd[1]);
51147c08596SBrooks Davis 
512235eb530SPawel Jakub Dawidek 	close(ifi->ufdesc);
513235eb530SPawel Jakub Dawidek 	ifi->ufdesc = -1;
514235eb530SPawel Jakub Dawidek 	close(ifi->wfdesc);
515235eb530SPawel Jakub Dawidek 	ifi->wfdesc = -1;
516235eb530SPawel Jakub Dawidek 
51747c08596SBrooks Davis 	close(pipe_fd[0]);
51847c08596SBrooks Davis 	privfd = pipe_fd[1];
5197008be5bSPawel Jakub Dawidek 	cap_rights_init(&rights, CAP_READ, CAP_WRITE);
520377421dfSMariusz Zaborski 	if (caph_rights_limit(privfd, &rights) < 0)
521de2c882fSPawel Jakub Dawidek 		error("can't limit private descriptor: %m");
52247c08596SBrooks Davis 
52347c08596SBrooks Davis 	if ((fd = open(path_dhclient_db, O_RDONLY|O_EXLOCK|O_CREAT, 0)) == -1)
52447c08596SBrooks Davis 		error("can't open and lock %s: %m", path_dhclient_db);
52547c08596SBrooks Davis 	read_client_leases();
52647c08596SBrooks Davis 	rewrite_client_leases();
52747c08596SBrooks Davis 	close(fd);
52847c08596SBrooks Davis 
52947c08596SBrooks Davis 	if ((routefd = socket(PF_ROUTE, SOCK_RAW, 0)) != -1)
53047c08596SBrooks Davis 		add_protocol("AF_ROUTE", routefd, routehandler, ifi);
531e374cef5SPawel Jakub Dawidek 	if (shutdown(routefd, SHUT_WR) < 0)
532e374cef5SPawel Jakub Dawidek 		error("can't shutdown route socket: %m");
533bb7a82acSChristian Brueffer 	cap_rights_init(&rights, CAP_EVENT, CAP_READ);
534377421dfSMariusz Zaborski 	if (caph_rights_limit(routefd, &rights) < 0)
535f73ac8b9SPawel Jakub Dawidek 		error("can't limit route socket: %m");
53647c08596SBrooks Davis 
53747c08596SBrooks Davis 	endpwent();
53847c08596SBrooks Davis 
53947c08596SBrooks Davis 	setproctitle("%s", ifi->name);
54047c08596SBrooks Davis 
54117cfcf1dSMark Johnston 	/* setgroups(2) is not permitted in capability mode. */
54217cfcf1dSMark Johnston 	if (setgroups(1, &pw->pw_gid) != 0)
54317cfcf1dSMark Johnston 		error("can't restrict groups: %m");
54417cfcf1dSMark Johnston 
5457672a014SMariusz Zaborski 	if (caph_enter_casper() < 0)
5468da93e68SPawel Jakub Dawidek 		error("can't enter capability mode: %m");
5478da93e68SPawel Jakub Dawidek 
548976e1003SMark Johnston 	/*
54917cfcf1dSMark Johnston 	 * If we are not in capability mode (i.e., Capsicum or libcasper is
55017cfcf1dSMark Johnston 	 * disabled), try to restrict filesystem access.  This will fail if
55117cfcf1dSMark Johnston 	 * kern.chroot_allow_open_directories is 0 or the process is jailed.
552976e1003SMark Johnston 	 */
553976e1003SMark Johnston 	if (cap_getmode(&capmode) < 0 || capmode == 0) {
554976e1003SMark Johnston 		if (chroot(_PATH_VAREMPTY) == -1)
555976e1003SMark Johnston 			error("chroot");
556976e1003SMark Johnston 		if (chdir("/") == -1)
557976e1003SMark Johnston 			error("chdir(\"/\")");
558976e1003SMark Johnston 	}
559976e1003SMark Johnston 
56017cfcf1dSMark Johnston 	if (setegid(pw->pw_gid) || setgid(pw->pw_gid) ||
56117cfcf1dSMark Johnston 	    seteuid(pw->pw_uid) || setuid(pw->pw_uid))
56217cfcf1dSMark Johnston 		error("can't drop privileges: %m");
56317cfcf1dSMark Johnston 
5642b19b6fcSBrooks Davis 	if (immediate_daemon)
5652b19b6fcSBrooks Davis 		go_daemon();
5662b19b6fcSBrooks Davis 
56747c08596SBrooks Davis 	ifi->client->state = S_INIT;
56847c08596SBrooks Davis 	state_reboot(ifi);
56947c08596SBrooks Davis 
57047c08596SBrooks Davis 	bootp_packet_handler = do_packet;
57147c08596SBrooks Davis 
57247c08596SBrooks Davis 	dispatch();
57347c08596SBrooks Davis 
57447c08596SBrooks Davis 	/* not reached */
57547c08596SBrooks Davis 	return (0);
57647c08596SBrooks Davis }
57747c08596SBrooks Davis 
57847c08596SBrooks Davis void
usage(void)57947c08596SBrooks Davis usage(void)
58047c08596SBrooks Davis {
58147c08596SBrooks Davis 
582b51569adSIsaac Cilia Attard 	fprintf(stderr, "usage: %s [-bdnqu] ", getprogname());
58347c08596SBrooks Davis 	fprintf(stderr, "[-c conffile] [-l leasefile] interface\n");
58447c08596SBrooks Davis 	exit(1);
58547c08596SBrooks Davis }
58647c08596SBrooks Davis 
58747c08596SBrooks Davis /*
58847c08596SBrooks Davis  * Individual States:
58947c08596SBrooks Davis  *
59047c08596SBrooks Davis  * Each routine is called from the dhclient_state_machine() in one of
59147c08596SBrooks Davis  * these conditions:
59247c08596SBrooks Davis  * -> entering INIT state
59347c08596SBrooks Davis  * -> recvpacket_flag == 0: timeout in this state
59447c08596SBrooks Davis  * -> otherwise: received a packet in this state
59547c08596SBrooks Davis  *
59647c08596SBrooks Davis  * Return conditions as handled by dhclient_state_machine():
59747c08596SBrooks Davis  * Returns 1, sendpacket_flag = 1: send packet, reset timer.
59847c08596SBrooks Davis  * Returns 1, sendpacket_flag = 0: just reset the timer (wait for a milestone).
59947c08596SBrooks Davis  * Returns 0: finish the nap which was interrupted for no good reason.
60047c08596SBrooks Davis  *
60147c08596SBrooks Davis  * Several per-interface variables are used to keep track of the process:
60247c08596SBrooks Davis  *   active_lease: the lease that is being used on the interface
60347c08596SBrooks Davis  *                 (null pointer if not configured yet).
60447c08596SBrooks Davis  *   offered_leases: leases corresponding to DHCPOFFER messages that have
60547c08596SBrooks Davis  *                   been sent to us by DHCP servers.
60647c08596SBrooks Davis  *   acked_leases: leases corresponding to DHCPACK messages that have been
60747c08596SBrooks Davis  *                 sent to us by DHCP servers.
60847c08596SBrooks Davis  *   sendpacket: DHCP packet we're trying to send.
60947c08596SBrooks Davis  *   destination: IP address to send sendpacket to
61047c08596SBrooks Davis  * In addition, there are several relevant per-lease variables.
61147c08596SBrooks Davis  *   T1_expiry, T2_expiry, lease_expiry: lease milestones
61247c08596SBrooks Davis  * In the active lease, these control the process of renewing the lease;
61347c08596SBrooks Davis  * In leases on the acked_leases list, this simply determines when we
61447c08596SBrooks Davis  * can no longer legitimately use the lease.
61547c08596SBrooks Davis  */
61647c08596SBrooks Davis 
61747c08596SBrooks Davis void
state_reboot(void * ipp)61847c08596SBrooks Davis state_reboot(void *ipp)
61947c08596SBrooks Davis {
62047c08596SBrooks Davis 	struct interface_info *ip = ipp;
62147c08596SBrooks Davis 
62247c08596SBrooks Davis 	/* If we don't remember an active lease, go straight to INIT. */
62347c08596SBrooks Davis 	if (!ip->client->active || ip->client->active->is_bootp) {
62447c08596SBrooks Davis 		state_init(ip);
62547c08596SBrooks Davis 		return;
62647c08596SBrooks Davis 	}
62747c08596SBrooks Davis 
62847c08596SBrooks Davis 	/* We are in the rebooting state. */
62947c08596SBrooks Davis 	ip->client->state = S_REBOOTING;
63047c08596SBrooks Davis 
63147c08596SBrooks Davis 	/* make_request doesn't initialize xid because it normally comes
63247c08596SBrooks Davis 	   from the DHCPDISCOVER, but we haven't sent a DHCPDISCOVER,
63347c08596SBrooks Davis 	   so pick an xid now. */
63447c08596SBrooks Davis 	ip->client->xid = arc4random();
63547c08596SBrooks Davis 
63647c08596SBrooks Davis 	/* Make a DHCPREQUEST packet, and set appropriate per-interface
63747c08596SBrooks Davis 	   flags. */
63847c08596SBrooks Davis 	make_request(ip, ip->client->active);
63947c08596SBrooks Davis 	ip->client->destination = iaddr_broadcast;
64047c08596SBrooks Davis 	ip->client->first_sending = cur_time;
64147c08596SBrooks Davis 	ip->client->interval = ip->client->config->initial_interval;
64247c08596SBrooks Davis 
64347c08596SBrooks Davis 	/* Zap the medium list... */
64447c08596SBrooks Davis 	ip->client->medium = NULL;
64547c08596SBrooks Davis 
64647c08596SBrooks Davis 	/* Send out the first DHCPREQUEST packet. */
64747c08596SBrooks Davis 	send_request(ip);
64847c08596SBrooks Davis }
64947c08596SBrooks Davis 
65047c08596SBrooks Davis /*
65147c08596SBrooks Davis  * Called when a lease has completely expired and we've
65247c08596SBrooks Davis  * been unable to renew it.
65347c08596SBrooks Davis  */
65447c08596SBrooks Davis void
state_init(void * ipp)65547c08596SBrooks Davis state_init(void *ipp)
65647c08596SBrooks Davis {
65747c08596SBrooks Davis 	struct interface_info *ip = ipp;
65847c08596SBrooks Davis 
65947c08596SBrooks Davis 	ASSERT_STATE(state, S_INIT);
66047c08596SBrooks Davis 
66147c08596SBrooks Davis 	/* Make a DHCPDISCOVER packet, and set appropriate per-interface
66247c08596SBrooks Davis 	   flags. */
66347c08596SBrooks Davis 	make_discover(ip, ip->client->active);
66447c08596SBrooks Davis 	ip->client->xid = ip->client->packet.xid;
66547c08596SBrooks Davis 	ip->client->destination = iaddr_broadcast;
66647c08596SBrooks Davis 	ip->client->state = S_SELECTING;
66747c08596SBrooks Davis 	ip->client->first_sending = cur_time;
66847c08596SBrooks Davis 	ip->client->interval = ip->client->config->initial_interval;
66947c08596SBrooks Davis 
67047c08596SBrooks Davis 	/* Add an immediate timeout to cause the first DHCPDISCOVER packet
67147c08596SBrooks Davis 	   to go out. */
67247c08596SBrooks Davis 	send_discover(ip);
67347c08596SBrooks Davis }
67447c08596SBrooks Davis 
67547c08596SBrooks Davis /*
67647c08596SBrooks Davis  * state_selecting is called when one or more DHCPOFFER packets
67747c08596SBrooks Davis  * have been received and a configurable period of time has passed.
67847c08596SBrooks Davis  */
67947c08596SBrooks Davis void
state_selecting(void * ipp)68047c08596SBrooks Davis state_selecting(void *ipp)
68147c08596SBrooks Davis {
68247c08596SBrooks Davis 	struct interface_info *ip = ipp;
68347c08596SBrooks Davis 	struct client_lease *lp, *next, *picked;
68447c08596SBrooks Davis 
68547c08596SBrooks Davis 	ASSERT_STATE(state, S_SELECTING);
68647c08596SBrooks Davis 
68747c08596SBrooks Davis 	/* Cancel state_selecting and send_discover timeouts, since either
68847c08596SBrooks Davis 	   one could have got us here. */
68947c08596SBrooks Davis 	cancel_timeout(state_selecting, ip);
69047c08596SBrooks Davis 	cancel_timeout(send_discover, ip);
69147c08596SBrooks Davis 
69247c08596SBrooks Davis 	/* We have received one or more DHCPOFFER packets.   Currently,
69347c08596SBrooks Davis 	   the only criterion by which we judge leases is whether or
69447c08596SBrooks Davis 	   not we get a response when we arp for them. */
69547c08596SBrooks Davis 	picked = NULL;
69647c08596SBrooks Davis 	for (lp = ip->client->offered_leases; lp; lp = next) {
69747c08596SBrooks Davis 		next = lp->next;
69847c08596SBrooks Davis 
69947c08596SBrooks Davis 		/* Check to see if we got an ARPREPLY for the address
70047c08596SBrooks Davis 		   in this particular lease. */
70147c08596SBrooks Davis 		if (!picked) {
70247c08596SBrooks Davis 			script_init("ARPCHECK", lp->medium);
70347c08596SBrooks Davis 			script_write_params("check_", lp);
70447c08596SBrooks Davis 
70547c08596SBrooks Davis 			/* If the ARPCHECK code detects another
70647c08596SBrooks Davis 			   machine using the offered address, it exits
70747c08596SBrooks Davis 			   nonzero.  We need to send a DHCPDECLINE and
70847c08596SBrooks Davis 			   toss the lease. */
70947c08596SBrooks Davis 			if (script_go()) {
71047c08596SBrooks Davis 				make_decline(ip, lp);
71147c08596SBrooks Davis 				send_decline(ip);
71247c08596SBrooks Davis 				goto freeit;
71347c08596SBrooks Davis 			}
71447c08596SBrooks Davis 			picked = lp;
71547c08596SBrooks Davis 			picked->next = NULL;
71647c08596SBrooks Davis 		} else {
71747c08596SBrooks Davis freeit:
71847c08596SBrooks Davis 			free_client_lease(lp);
71947c08596SBrooks Davis 		}
72047c08596SBrooks Davis 	}
72147c08596SBrooks Davis 	ip->client->offered_leases = NULL;
72247c08596SBrooks Davis 
72347c08596SBrooks Davis 	/* If we just tossed all the leases we were offered, go back
72447c08596SBrooks Davis 	   to square one. */
72547c08596SBrooks Davis 	if (!picked) {
72647c08596SBrooks Davis 		ip->client->state = S_INIT;
72747c08596SBrooks Davis 		state_init(ip);
72847c08596SBrooks Davis 		return;
72947c08596SBrooks Davis 	}
73047c08596SBrooks Davis 
73147c08596SBrooks Davis 	/* If it was a BOOTREPLY, we can just take the address right now. */
73247c08596SBrooks Davis 	if (!picked->options[DHO_DHCP_MESSAGE_TYPE].len) {
73347c08596SBrooks Davis 		ip->client->new = picked;
73447c08596SBrooks Davis 
73547c08596SBrooks Davis 		/* Make up some lease expiry times
73647c08596SBrooks Davis 		   XXX these should be configurable. */
73747c08596SBrooks Davis 		ip->client->new->expiry = cur_time + 12000;
73847c08596SBrooks Davis 		ip->client->new->renewal += cur_time + 8000;
73947c08596SBrooks Davis 		ip->client->new->rebind += cur_time + 10000;
74047c08596SBrooks Davis 
74147c08596SBrooks Davis 		ip->client->state = S_REQUESTING;
74247c08596SBrooks Davis 
74347c08596SBrooks Davis 		/* Bind to the address we received. */
74447c08596SBrooks Davis 		bind_lease(ip);
74547c08596SBrooks Davis 		return;
74647c08596SBrooks Davis 	}
74747c08596SBrooks Davis 
74847c08596SBrooks Davis 	/* Go to the REQUESTING state. */
74947c08596SBrooks Davis 	ip->client->destination = iaddr_broadcast;
75047c08596SBrooks Davis 	ip->client->state = S_REQUESTING;
75147c08596SBrooks Davis 	ip->client->first_sending = cur_time;
75247c08596SBrooks Davis 	ip->client->interval = ip->client->config->initial_interval;
75347c08596SBrooks Davis 
75447c08596SBrooks Davis 	/* Make a DHCPREQUEST packet from the lease we picked. */
75547c08596SBrooks Davis 	make_request(ip, picked);
75647c08596SBrooks Davis 	ip->client->xid = ip->client->packet.xid;
75747c08596SBrooks Davis 
75847c08596SBrooks Davis 	/* Toss the lease we picked - we'll get it back in a DHCPACK. */
75947c08596SBrooks Davis 	free_client_lease(picked);
76047c08596SBrooks Davis 
76147c08596SBrooks Davis 	/* Add an immediate timeout to send the first DHCPREQUEST packet. */
76247c08596SBrooks Davis 	send_request(ip);
76347c08596SBrooks Davis }
76447c08596SBrooks Davis 
76547c08596SBrooks Davis /* state_requesting is called when we receive a DHCPACK message after
76647c08596SBrooks Davis    having sent out one or more DHCPREQUEST packets. */
76747c08596SBrooks Davis 
76847c08596SBrooks Davis void
dhcpack(struct packet * packet)76947c08596SBrooks Davis dhcpack(struct packet *packet)
77047c08596SBrooks Davis {
77147c08596SBrooks Davis 	struct interface_info *ip = packet->interface;
77247c08596SBrooks Davis 	struct client_lease *lease;
77347c08596SBrooks Davis 
77447c08596SBrooks Davis 	/* If we're not receptive to an offer right now, or if the offer
77547c08596SBrooks Davis 	   has an unrecognizable transaction id, then just drop it. */
77647c08596SBrooks Davis 	if (packet->interface->client->xid != packet->raw->xid ||
77747c08596SBrooks Davis 	    (packet->interface->hw_address.hlen != packet->raw->hlen) ||
77847c08596SBrooks Davis 	    (memcmp(packet->interface->hw_address.haddr,
77947c08596SBrooks Davis 	    packet->raw->chaddr, packet->raw->hlen)))
78047c08596SBrooks Davis 		return;
78147c08596SBrooks Davis 
78247c08596SBrooks Davis 	if (ip->client->state != S_REBOOTING &&
78347c08596SBrooks Davis 	    ip->client->state != S_REQUESTING &&
78447c08596SBrooks Davis 	    ip->client->state != S_RENEWING &&
78547c08596SBrooks Davis 	    ip->client->state != S_REBINDING)
78647c08596SBrooks Davis 		return;
78747c08596SBrooks Davis 
78847c08596SBrooks Davis 	note("DHCPACK from %s", piaddr(packet->client_addr));
78947c08596SBrooks Davis 
79047c08596SBrooks Davis 	lease = packet_to_lease(packet);
79147c08596SBrooks Davis 	if (!lease) {
79247c08596SBrooks Davis 		note("packet_to_lease failed.");
79347c08596SBrooks Davis 		return;
79447c08596SBrooks Davis 	}
79547c08596SBrooks Davis 
79647c08596SBrooks Davis 	ip->client->new = lease;
79747c08596SBrooks Davis 
79847c08596SBrooks Davis 	/* Stop resending DHCPREQUEST. */
79947c08596SBrooks Davis 	cancel_timeout(send_request, ip);
80047c08596SBrooks Davis 
80147c08596SBrooks Davis 	/* Figure out the lease time. */
8021fb4382cSNick Hibma         if (ip->client->config->default_actions[DHO_DHCP_LEASE_TIME] ==
8031fb4382cSNick Hibma             ACTION_SUPERSEDE)
8041fb4382cSNick Hibma 		ip->client->new->expiry = getULong(
8051fb4382cSNick Hibma 		    ip->client->config->defaults[DHO_DHCP_LEASE_TIME].data);
8063492caf5SHans Petter Selasky         else if (ip->client->new->options[DHO_DHCP_LEASE_TIME].len >= 4)
80747c08596SBrooks Davis 		ip->client->new->expiry = getULong(
80847c08596SBrooks Davis 		    ip->client->new->options[DHO_DHCP_LEASE_TIME].data);
80947c08596SBrooks Davis 	else
81047c08596SBrooks Davis 		ip->client->new->expiry = default_lease_time;
81147c08596SBrooks Davis 	/* A number that looks negative here is really just very large,
812223c44aeSNick Hibma 	   because the lease expiry offset is unsigned. Also make sure that
813223c44aeSNick Hibma            the addition of cur_time below does not overflow (a 32 bit) time_t. */
814223c44aeSNick Hibma 	if (ip->client->new->expiry < 0 ||
815223c44aeSNick Hibma             ip->client->new->expiry > TIME_MAX - cur_time)
816223c44aeSNick Hibma 		ip->client->new->expiry = TIME_MAX - cur_time;
81747c08596SBrooks Davis 	/* XXX should be fixed by resetting the client state */
81847c08596SBrooks Davis 	if (ip->client->new->expiry < 60)
81947c08596SBrooks Davis 		ip->client->new->expiry = 60;
82047c08596SBrooks Davis 
821c13fa60cSNick Hibma         /* Unless overridden in the config, take the server-provided renewal
822223c44aeSNick Hibma          * time if there is one. Otherwise figure it out according to the spec.
823c13fa60cSNick Hibma          * Also make sure the renewal time does not exceed the expiry time.
824c13fa60cSNick Hibma          */
825c13fa60cSNick Hibma         if (ip->client->config->default_actions[DHO_DHCP_RENEWAL_TIME] ==
826c13fa60cSNick Hibma             ACTION_SUPERSEDE)
827c13fa60cSNick Hibma 		ip->client->new->renewal = getULong(
828c13fa60cSNick Hibma 		    ip->client->config->defaults[DHO_DHCP_RENEWAL_TIME].data);
8293492caf5SHans Petter Selasky         else if (ip->client->new->options[DHO_DHCP_RENEWAL_TIME].len >= 4)
83047c08596SBrooks Davis 		ip->client->new->renewal = getULong(
83147c08596SBrooks Davis 		    ip->client->new->options[DHO_DHCP_RENEWAL_TIME].data);
83247c08596SBrooks Davis 	else
83347c08596SBrooks Davis 		ip->client->new->renewal = ip->client->new->expiry / 2;
834223c44aeSNick Hibma         if (ip->client->new->renewal < 0 ||
835223c44aeSNick Hibma             ip->client->new->renewal > ip->client->new->expiry / 2)
836c13fa60cSNick Hibma                 ip->client->new->renewal = ip->client->new->expiry / 2;
83747c08596SBrooks Davis 
83847c08596SBrooks Davis 	/* Same deal with the rebind time. */
839c13fa60cSNick Hibma         if (ip->client->config->default_actions[DHO_DHCP_REBINDING_TIME] ==
840c13fa60cSNick Hibma             ACTION_SUPERSEDE)
841c13fa60cSNick Hibma 		ip->client->new->rebind = getULong(
842c13fa60cSNick Hibma 		    ip->client->config->defaults[DHO_DHCP_REBINDING_TIME].data);
8433492caf5SHans Petter Selasky         else if (ip->client->new->options[DHO_DHCP_REBINDING_TIME].len >= 4)
84447c08596SBrooks Davis 		ip->client->new->rebind = getULong(
84547c08596SBrooks Davis 		    ip->client->new->options[DHO_DHCP_REBINDING_TIME].data);
84647c08596SBrooks Davis 	else
847223c44aeSNick Hibma 		ip->client->new->rebind = ip->client->new->renewal / 4 * 7;
848223c44aeSNick Hibma 	if (ip->client->new->rebind < 0 ||
849223c44aeSNick Hibma             ip->client->new->rebind > ip->client->new->renewal / 4 * 7)
850223c44aeSNick Hibma                 ip->client->new->rebind = ip->client->new->renewal / 4 * 7;
85147c08596SBrooks Davis 
852223c44aeSNick Hibma         /* Convert the time offsets into seconds-since-the-epoch */
85347c08596SBrooks Davis         ip->client->new->expiry += cur_time;
85447c08596SBrooks Davis         ip->client->new->renewal += cur_time;
85547c08596SBrooks Davis         ip->client->new->rebind += cur_time;
85647c08596SBrooks Davis 
85747c08596SBrooks Davis 	bind_lease(ip);
85847c08596SBrooks Davis }
85947c08596SBrooks Davis 
86047c08596SBrooks Davis void
bind_lease(struct interface_info * ip)86147c08596SBrooks Davis bind_lease(struct interface_info *ip)
86247c08596SBrooks Davis {
863387016a5SConrad Meyer 	struct option_data *opt;
864387016a5SConrad Meyer 
86547c08596SBrooks Davis 	/* Remember the medium. */
86647c08596SBrooks Davis 	ip->client->new->medium = ip->client->medium;
86747c08596SBrooks Davis 
868387016a5SConrad Meyer 	opt = &ip->client->new->options[DHO_INTERFACE_MTU];
869387016a5SConrad Meyer 	if (opt->len == sizeof(u_int16_t)) {
870f93497feSConrad Meyer 		u_int16_t mtu = 0;
871221e5d2dSMaxim Sobolev 		u_int16_t old_mtu = 0;
872f93497feSConrad Meyer 		bool supersede = (ip->client->config->default_actions[DHO_INTERFACE_MTU] ==
873f93497feSConrad Meyer 			ACTION_SUPERSEDE);
874f93497feSConrad Meyer 
875f93497feSConrad Meyer 		if (supersede)
876f93497feSConrad Meyer 			mtu = getUShort(ip->client->config->defaults[DHO_INTERFACE_MTU].data);
877387016a5SConrad Meyer 		else
878f93497feSConrad Meyer 			mtu = be16dec(opt->data);
879f93497feSConrad Meyer 
880221e5d2dSMaxim Sobolev 		if (ip->client->active) {
881221e5d2dSMaxim Sobolev 			opt = &ip->client->active->options[DHO_INTERFACE_MTU];
882221e5d2dSMaxim Sobolev 			if (opt->len == sizeof(u_int16_t)) {
883221e5d2dSMaxim Sobolev 				old_mtu = be16dec(opt->data);
884221e5d2dSMaxim Sobolev 			}
885221e5d2dSMaxim Sobolev 		}
886221e5d2dSMaxim Sobolev 
887f93497feSConrad Meyer 		if (mtu < MIN_MTU) {
888f93497feSConrad Meyer 			/* Treat 0 like a user intentionally doesn't want to change MTU and,
889f93497feSConrad Meyer 			 * therefore, warning is not needed */
890f93497feSConrad Meyer 			if (!supersede || mtu != 0)
891f93497feSConrad Meyer 				warning("mtu size %u < %d: ignored", (unsigned)mtu, MIN_MTU);
892221e5d2dSMaxim Sobolev 		} else if (ip->client->state != S_RENEWING || mtu != old_mtu) {
893387016a5SConrad Meyer 			interface_set_mtu_unpriv(privfd, mtu);
894387016a5SConrad Meyer 		}
895f93497feSConrad Meyer 	}
896387016a5SConrad Meyer 
89747c08596SBrooks Davis 	/* Write out the new lease. */
89847c08596SBrooks Davis 	write_client_lease(ip, ip->client->new, 0);
89947c08596SBrooks Davis 
90047c08596SBrooks Davis 	/* Run the client script with the new parameters. */
90147c08596SBrooks Davis 	script_init((ip->client->state == S_REQUESTING ? "BOUND" :
90247c08596SBrooks Davis 	    (ip->client->state == S_RENEWING ? "RENEW" :
90347c08596SBrooks Davis 	    (ip->client->state == S_REBOOTING ? "REBOOT" : "REBIND"))),
90447c08596SBrooks Davis 	    ip->client->new->medium);
90547c08596SBrooks Davis 	if (ip->client->active && ip->client->state != S_REBOOTING)
90647c08596SBrooks Davis 		script_write_params("old_", ip->client->active);
90747c08596SBrooks Davis 	script_write_params("new_", ip->client->new);
90847c08596SBrooks Davis 	if (ip->client->alias)
90947c08596SBrooks Davis 		script_write_params("alias_", ip->client->alias);
91047c08596SBrooks Davis 	script_go();
91147c08596SBrooks Davis 
91247c08596SBrooks Davis 	/* Replace the old active lease with the new one. */
91347c08596SBrooks Davis 	if (ip->client->active)
91447c08596SBrooks Davis 		free_client_lease(ip->client->active);
91547c08596SBrooks Davis 	ip->client->active = ip->client->new;
91647c08596SBrooks Davis 	ip->client->new = NULL;
91747c08596SBrooks Davis 
91847c08596SBrooks Davis 	/* Set up a timeout to start the renewal process. */
91947c08596SBrooks Davis 	add_timeout(ip->client->active->renewal, state_bound, ip);
92047c08596SBrooks Davis 
92147c08596SBrooks Davis 	note("bound to %s -- renewal in %d seconds.",
92247c08596SBrooks Davis 	    piaddr(ip->client->active->address),
9239c13d9cdSBrooks Davis 	    (int)(ip->client->active->renewal - cur_time));
92447c08596SBrooks Davis 	ip->client->state = S_BOUND;
92547c08596SBrooks Davis 	reinitialize_interfaces();
92647c08596SBrooks Davis 	go_daemon();
92747c08596SBrooks Davis }
92847c08596SBrooks Davis 
92947c08596SBrooks Davis /*
93047c08596SBrooks Davis  * state_bound is called when we've successfully bound to a particular
93147c08596SBrooks Davis  * lease, but the renewal time on that lease has expired.   We are
93247c08596SBrooks Davis  * expected to unicast a DHCPREQUEST to the server that gave us our
93347c08596SBrooks Davis  * original lease.
93447c08596SBrooks Davis  */
93547c08596SBrooks Davis void
state_bound(void * ipp)93647c08596SBrooks Davis state_bound(void *ipp)
93747c08596SBrooks Davis {
93847c08596SBrooks Davis 	struct interface_info *ip = ipp;
9390a539a0fSFabian Kurtz 	u_int8_t *dp = NULL;
9400a539a0fSFabian Kurtz 	int len;
94147c08596SBrooks Davis 
94247c08596SBrooks Davis 	ASSERT_STATE(state, S_BOUND);
94347c08596SBrooks Davis 
94447c08596SBrooks Davis 	/* T1 has expired. */
94547c08596SBrooks Davis 	make_request(ip, ip->client->active);
94647c08596SBrooks Davis 	ip->client->xid = ip->client->packet.xid;
94747c08596SBrooks Davis 
9480a539a0fSFabian Kurtz 	if (ip->client->config->default_actions[DHO_DHCP_SERVER_IDENTIFIER] ==
9490a539a0fSFabian Kurtz 	    ACTION_SUPERSEDE) {
9500a539a0fSFabian Kurtz 		dp = ip->client->config->defaults[DHO_DHCP_SERVER_IDENTIFIER].data;
9510a539a0fSFabian Kurtz 		len = ip->client->config->defaults[DHO_DHCP_SERVER_IDENTIFIER].len;
9520a539a0fSFabian Kurtz 	} else {
9530a539a0fSFabian Kurtz 		dp = ip->client->active->options[DHO_DHCP_SERVER_IDENTIFIER].data;
9540a539a0fSFabian Kurtz 		len = ip->client->active->options[DHO_DHCP_SERVER_IDENTIFIER].len;
9550a539a0fSFabian Kurtz 	}
9560a539a0fSFabian Kurtz 	if (len == 4) {
9570a539a0fSFabian Kurtz 		memcpy(ip->client->destination.iabuf, dp, len);
9580a539a0fSFabian Kurtz 		ip->client->destination.len = len;
95947c08596SBrooks Davis 	} else
96047c08596SBrooks Davis 		ip->client->destination = iaddr_broadcast;
96147c08596SBrooks Davis 
96247c08596SBrooks Davis 	ip->client->first_sending = cur_time;
96347c08596SBrooks Davis 	ip->client->interval = ip->client->config->initial_interval;
96447c08596SBrooks Davis 	ip->client->state = S_RENEWING;
96547c08596SBrooks Davis 
96647c08596SBrooks Davis 	/* Send the first packet immediately. */
96747c08596SBrooks Davis 	send_request(ip);
96847c08596SBrooks Davis }
96947c08596SBrooks Davis 
97047c08596SBrooks Davis void
bootp(struct packet * packet)97147c08596SBrooks Davis bootp(struct packet *packet)
97247c08596SBrooks Davis {
97347c08596SBrooks Davis 	struct iaddrlist *ap;
97447c08596SBrooks Davis 
97547c08596SBrooks Davis 	if (packet->raw->op != BOOTREPLY)
97647c08596SBrooks Davis 		return;
97747c08596SBrooks Davis 
97847c08596SBrooks Davis 	/* If there's a reject list, make sure this packet's sender isn't
97947c08596SBrooks Davis 	   on it. */
98047c08596SBrooks Davis 	for (ap = packet->interface->client->config->reject_list;
98147c08596SBrooks Davis 	    ap; ap = ap->next) {
98247c08596SBrooks Davis 		if (addr_eq(packet->client_addr, ap->addr)) {
98347c08596SBrooks Davis 			note("BOOTREPLY from %s rejected.", piaddr(ap->addr));
98447c08596SBrooks Davis 			return;
98547c08596SBrooks Davis 		}
98647c08596SBrooks Davis 	}
98747c08596SBrooks Davis 	dhcpoffer(packet);
98847c08596SBrooks Davis }
98947c08596SBrooks Davis 
99047c08596SBrooks Davis void
dhcp(struct packet * packet)99147c08596SBrooks Davis dhcp(struct packet *packet)
99247c08596SBrooks Davis {
99347c08596SBrooks Davis 	struct iaddrlist *ap;
99447c08596SBrooks Davis 	void (*handler)(struct packet *);
99579a1d195SAlan Somers 	const char *type;
99647c08596SBrooks Davis 
99747c08596SBrooks Davis 	switch (packet->packet_type) {
99847c08596SBrooks Davis 	case DHCPOFFER:
99947c08596SBrooks Davis 		handler = dhcpoffer;
100047c08596SBrooks Davis 		type = "DHCPOFFER";
100147c08596SBrooks Davis 		break;
100247c08596SBrooks Davis 	case DHCPNAK:
100347c08596SBrooks Davis 		handler = dhcpnak;
100447c08596SBrooks Davis 		type = "DHCPNACK";
100547c08596SBrooks Davis 		break;
100647c08596SBrooks Davis 	case DHCPACK:
100747c08596SBrooks Davis 		handler = dhcpack;
100847c08596SBrooks Davis 		type = "DHCPACK";
100947c08596SBrooks Davis 		break;
101047c08596SBrooks Davis 	default:
101147c08596SBrooks Davis 		return;
101247c08596SBrooks Davis 	}
101347c08596SBrooks Davis 
101447c08596SBrooks Davis 	/* If there's a reject list, make sure this packet's sender isn't
101547c08596SBrooks Davis 	   on it. */
101647c08596SBrooks Davis 	for (ap = packet->interface->client->config->reject_list;
101747c08596SBrooks Davis 	    ap; ap = ap->next) {
101847c08596SBrooks Davis 		if (addr_eq(packet->client_addr, ap->addr)) {
101947c08596SBrooks Davis 			note("%s from %s rejected.", type, piaddr(ap->addr));
102047c08596SBrooks Davis 			return;
102147c08596SBrooks Davis 		}
102247c08596SBrooks Davis 	}
102347c08596SBrooks Davis 	(*handler)(packet);
102447c08596SBrooks Davis }
102547c08596SBrooks Davis 
102647c08596SBrooks Davis void
dhcpoffer(struct packet * packet)102747c08596SBrooks Davis dhcpoffer(struct packet *packet)
102847c08596SBrooks Davis {
102947c08596SBrooks Davis 	struct interface_info *ip = packet->interface;
103047c08596SBrooks Davis 	struct client_lease *lease, *lp;
103147c08596SBrooks Davis 	int i;
103276e0ffd9SIsaac Cilia Attard 	struct timespec arp_timeout_needed;
1033*43d19e6aSColin Percival 	time_t stop_selecting;
1034*43d19e6aSColin Percival 	struct timespec stop_time;
103579a1d195SAlan Somers 	const char *name = packet->options[DHO_DHCP_MESSAGE_TYPE].len ?
103647c08596SBrooks Davis 	    "DHCPOFFER" : "BOOTREPLY";
103747c08596SBrooks Davis 
1038*43d19e6aSColin Percival 	clock_gettime(CLOCK_MONOTONIC, &time_now);
1039*43d19e6aSColin Percival 
104047c08596SBrooks Davis 	/* If we're not receptive to an offer right now, or if the offer
104147c08596SBrooks Davis 	   has an unrecognizable transaction id, then just drop it. */
104247c08596SBrooks Davis 	if (ip->client->state != S_SELECTING ||
104347c08596SBrooks Davis 	    packet->interface->client->xid != packet->raw->xid ||
104447c08596SBrooks Davis 	    (packet->interface->hw_address.hlen != packet->raw->hlen) ||
104547c08596SBrooks Davis 	    (memcmp(packet->interface->hw_address.haddr,
104647c08596SBrooks Davis 	    packet->raw->chaddr, packet->raw->hlen)))
104747c08596SBrooks Davis 		return;
104847c08596SBrooks Davis 
104947c08596SBrooks Davis 	note("%s from %s", name, piaddr(packet->client_addr));
105047c08596SBrooks Davis 
105147c08596SBrooks Davis 	/* If this lease doesn't supply the minimum required parameters,
105247c08596SBrooks Davis 	   blow it off. */
105347c08596SBrooks Davis 	for (i = 0; ip->client->config->required_options[i]; i++) {
105447c08596SBrooks Davis 		if (!packet->options[ip->client->config->
105547c08596SBrooks Davis 		    required_options[i]].len) {
105647c08596SBrooks Davis 			note("%s isn't satisfactory.", name);
105747c08596SBrooks Davis 			return;
105847c08596SBrooks Davis 		}
105947c08596SBrooks Davis 	}
106047c08596SBrooks Davis 
106147c08596SBrooks Davis 	/* If we've already seen this lease, don't record it again. */
106247c08596SBrooks Davis 	for (lease = ip->client->offered_leases;
106347c08596SBrooks Davis 	    lease; lease = lease->next) {
106447c08596SBrooks Davis 		if (lease->address.len == sizeof(packet->raw->yiaddr) &&
106547c08596SBrooks Davis 		    !memcmp(lease->address.iabuf,
106647c08596SBrooks Davis 		    &packet->raw->yiaddr, lease->address.len)) {
106747c08596SBrooks Davis 			debug("%s already seen.", name);
106847c08596SBrooks Davis 			return;
106947c08596SBrooks Davis 		}
107047c08596SBrooks Davis 	}
107147c08596SBrooks Davis 
107247c08596SBrooks Davis 	lease = packet_to_lease(packet);
107347c08596SBrooks Davis 	if (!lease) {
107447c08596SBrooks Davis 		note("packet_to_lease failed.");
107547c08596SBrooks Davis 		return;
107647c08596SBrooks Davis 	}
107747c08596SBrooks Davis 
107847c08596SBrooks Davis 	/* If this lease was acquired through a BOOTREPLY, record that
107947c08596SBrooks Davis 	   fact. */
108047c08596SBrooks Davis 	if (!packet->options[DHO_DHCP_MESSAGE_TYPE].len)
108147c08596SBrooks Davis 		lease->is_bootp = 1;
108247c08596SBrooks Davis 
108347c08596SBrooks Davis 	/* Record the medium under which this lease was offered. */
108447c08596SBrooks Davis 	lease->medium = ip->client->medium;
108547c08596SBrooks Davis 
108647c08596SBrooks Davis 	/* Send out an ARP Request for the offered IP address. */
108747c08596SBrooks Davis 	script_init("ARPSEND", lease->medium);
108847c08596SBrooks Davis 	script_write_params("check_", lease);
108947c08596SBrooks Davis 	/* If the script can't send an ARP request without waiting,
109047c08596SBrooks Davis 	   we'll be waiting when we do the ARPCHECK, so don't wait now. */
109147c08596SBrooks Davis 	if (script_go())
109276e0ffd9SIsaac Cilia Attard 		arp_timeout_needed = zero_timespec;
109376e0ffd9SIsaac Cilia Attard 
109447c08596SBrooks Davis 	else
109576e0ffd9SIsaac Cilia Attard 		arp_timeout_needed = arp_timeout;
109647c08596SBrooks Davis 
109747c08596SBrooks Davis 	/* Figure out when we're supposed to stop selecting. */
1098*43d19e6aSColin Percival 	stop_selecting =
109947c08596SBrooks Davis 	    ip->client->first_sending + ip->client->config->select_interval;
110047c08596SBrooks Davis 
110147c08596SBrooks Davis 	/* If this is the lease we asked for, put it at the head of the
110247c08596SBrooks Davis 	   list, and don't mess with the arp request timeout. */
110347c08596SBrooks Davis 	if (lease->address.len == ip->client->requested_address.len &&
110447c08596SBrooks Davis 	    !memcmp(lease->address.iabuf,
110547c08596SBrooks Davis 	    ip->client->requested_address.iabuf,
110647c08596SBrooks Davis 	    ip->client->requested_address.len)) {
110747c08596SBrooks Davis 		lease->next = ip->client->offered_leases;
110847c08596SBrooks Davis 		ip->client->offered_leases = lease;
110947c08596SBrooks Davis 	} else {
111047c08596SBrooks Davis 		/* If we already have an offer, and arping for this
111147c08596SBrooks Davis 		   offer would take us past the selection timeout,
111247c08596SBrooks Davis 		   then don't extend the timeout - just hope for the
111347c08596SBrooks Davis 		   best. */
111476e0ffd9SIsaac Cilia Attard 
111576e0ffd9SIsaac Cilia Attard 		struct timespec interm_struct;
111676e0ffd9SIsaac Cilia Attard 		timespecadd(&time_now, &arp_timeout_needed, &interm_struct);
111776e0ffd9SIsaac Cilia Attard 
111847c08596SBrooks Davis 		if (ip->client->offered_leases &&
1119*43d19e6aSColin Percival 		    interm_struct.tv_sec >= stop_selecting)
112076e0ffd9SIsaac Cilia Attard 			arp_timeout_needed = zero_timespec;
112147c08596SBrooks Davis 
112247c08596SBrooks Davis 		/* Put the lease at the end of the list. */
112347c08596SBrooks Davis 		lease->next = NULL;
112447c08596SBrooks Davis 		if (!ip->client->offered_leases)
112547c08596SBrooks Davis 			ip->client->offered_leases = lease;
112647c08596SBrooks Davis 		else {
112747c08596SBrooks Davis 			for (lp = ip->client->offered_leases; lp->next;
112847c08596SBrooks Davis 			    lp = lp->next)
112947c08596SBrooks Davis 				;	/* nothing */
113047c08596SBrooks Davis 			lp->next = lease;
113147c08596SBrooks Davis 		}
113247c08596SBrooks Davis 	}
113347c08596SBrooks Davis 
1134*43d19e6aSColin Percival 	/*
1135*43d19e6aSColin Percival 	 * Wait until stop_selecting seconds past the epoch, or until
1136*43d19e6aSColin Percival 	 * arp_timeout_needed past now, whichever is longer.  Note that
1137*43d19e6aSColin Percival 	 * the first case only occurs if select-timeout is set to nonzero
1138*43d19e6aSColin Percival 	 * in dhclient.conf.
1139*43d19e6aSColin Percival 	 */
1140*43d19e6aSColin Percival 	struct timespec time_left =
1141*43d19e6aSColin Percival 	    {.tv_sec = stop_selecting - cur_time, .tv_nsec = 0};
114276e0ffd9SIsaac Cilia Attard 	if (timespeccmp(&time_left, &arp_timeout_needed, <)) {
1143*43d19e6aSColin Percival 		timespecadd(&time_now, &arp_timeout_needed, &stop_time);
1144*43d19e6aSColin Percival 	} else {
1145*43d19e6aSColin Percival 		timespecadd(&time_now, &time_left, &stop_time);
114676e0ffd9SIsaac Cilia Attard 	}
1147*43d19e6aSColin Percival 	add_timeout_timespec(stop_time, state_selecting, ip);
114847c08596SBrooks Davis 	cancel_timeout(send_discover, ip);
114947c08596SBrooks Davis }
115047c08596SBrooks Davis 
115147c08596SBrooks Davis /* Allocate a client_lease structure and initialize it from the parameters
115247c08596SBrooks Davis    in the specified packet. */
115347c08596SBrooks Davis 
115447c08596SBrooks Davis struct client_lease *
packet_to_lease(struct packet * packet)115547c08596SBrooks Davis packet_to_lease(struct packet *packet)
115647c08596SBrooks Davis {
1157461ccb55SRob Norris 	struct interface_info *ip = packet->interface;
115847c08596SBrooks Davis 	struct client_lease *lease;
1159461ccb55SRob Norris 	int i, j;
116047c08596SBrooks Davis 
116147c08596SBrooks Davis 	lease = malloc(sizeof(struct client_lease));
116247c08596SBrooks Davis 
116347c08596SBrooks Davis 	if (!lease) {
116447c08596SBrooks Davis 		warning("dhcpoffer: no memory to record lease.");
116547c08596SBrooks Davis 		return (NULL);
116647c08596SBrooks Davis 	}
116747c08596SBrooks Davis 
116847c08596SBrooks Davis 	memset(lease, 0, sizeof(*lease));
116947c08596SBrooks Davis 
117047c08596SBrooks Davis 	/* Copy the lease options. */
117147c08596SBrooks Davis 	for (i = 0; i < 256; i++) {
117247c08596SBrooks Davis 		if (packet->options[i].len) {
1173461ccb55SRob Norris 			int ignored = 0;
1174461ccb55SRob Norris 			for (j = 0; ip->client->config->ignored_options[j]; j++)
1175461ccb55SRob Norris 				if (i ==
1176461ccb55SRob Norris 				    ip->client->config->ignored_options[j]) {
1177461ccb55SRob Norris 					ignored = 1;
1178461ccb55SRob Norris 					break;
1179461ccb55SRob Norris 				}
1180461ccb55SRob Norris 			if (ignored)
1181461ccb55SRob Norris 			    continue;
118247c08596SBrooks Davis 			lease->options[i].data =
118347c08596SBrooks Davis 			    malloc(packet->options[i].len + 1);
118447c08596SBrooks Davis 			if (!lease->options[i].data) {
118547c08596SBrooks Davis 				warning("dhcpoffer: no memory for option %d", i);
118647c08596SBrooks Davis 				free_client_lease(lease);
118747c08596SBrooks Davis 				return (NULL);
118847c08596SBrooks Davis 			} else {
118947c08596SBrooks Davis 				memcpy(lease->options[i].data,
119047c08596SBrooks Davis 				    packet->options[i].data,
119147c08596SBrooks Davis 				    packet->options[i].len);
119247c08596SBrooks Davis 				lease->options[i].len =
119347c08596SBrooks Davis 				    packet->options[i].len;
119447c08596SBrooks Davis 				lease->options[i].data[lease->options[i].len] =
119547c08596SBrooks Davis 				    0;
119647c08596SBrooks Davis 			}
119747c08596SBrooks Davis 			if (!check_option(lease,i)) {
119847c08596SBrooks Davis 				/* ignore a bogus lease offer */
119947c08596SBrooks Davis 				warning("Invalid lease option - ignoring offer");
120047c08596SBrooks Davis 				free_client_lease(lease);
120147c08596SBrooks Davis 				return (NULL);
120247c08596SBrooks Davis 			}
120347c08596SBrooks Davis 		}
120447c08596SBrooks Davis 	}
120547c08596SBrooks Davis 
120647c08596SBrooks Davis 	lease->address.len = sizeof(packet->raw->yiaddr);
120747c08596SBrooks Davis 	memcpy(lease->address.iabuf, &packet->raw->yiaddr, lease->address.len);
120847c08596SBrooks Davis 
1209d32438c3SBruce M Simpson 	lease->nextserver.len = sizeof(packet->raw->siaddr);
1210d32438c3SBruce M Simpson 	memcpy(lease->nextserver.iabuf, &packet->raw->siaddr, lease->nextserver.len);
1211d32438c3SBruce M Simpson 
1212acccb9aaSBrooks Davis 	/* If the server name was filled out, copy it.
1213acccb9aaSBrooks Davis 	   Do not attempt to validate the server name as a host name.
1214acccb9aaSBrooks Davis 	   RFC 2131 merely states that sname is NUL-terminated (which do
1215acccb9aaSBrooks Davis 	   do not assume) and that it is the server's host name.  Since
1216acccb9aaSBrooks Davis 	   the ISC client and server allow arbitrary characters, we do
1217acccb9aaSBrooks Davis 	   as well. */
121847c08596SBrooks Davis 	if ((!packet->options[DHO_DHCP_OPTION_OVERLOAD].len ||
121947c08596SBrooks Davis 	    !(packet->options[DHO_DHCP_OPTION_OVERLOAD].data[0] & 2)) &&
122047c08596SBrooks Davis 	    packet->raw->sname[0]) {
122147c08596SBrooks Davis 		lease->server_name = malloc(DHCP_SNAME_LEN + 1);
122247c08596SBrooks Davis 		if (!lease->server_name) {
122347c08596SBrooks Davis 			warning("dhcpoffer: no memory for server name.");
122447c08596SBrooks Davis 			free_client_lease(lease);
122547c08596SBrooks Davis 			return (NULL);
122647c08596SBrooks Davis 		}
122747c08596SBrooks Davis 		memcpy(lease->server_name, packet->raw->sname, DHCP_SNAME_LEN);
122847c08596SBrooks Davis 		lease->server_name[DHCP_SNAME_LEN]='\0';
122947c08596SBrooks Davis 	}
123047c08596SBrooks Davis 
123147c08596SBrooks Davis 	/* Ditto for the filename. */
123247c08596SBrooks Davis 	if ((!packet->options[DHO_DHCP_OPTION_OVERLOAD].len ||
123347c08596SBrooks Davis 	    !(packet->options[DHO_DHCP_OPTION_OVERLOAD].data[0] & 1)) &&
123447c08596SBrooks Davis 	    packet->raw->file[0]) {
123547c08596SBrooks Davis 		/* Don't count on the NUL terminator. */
123647c08596SBrooks Davis 		lease->filename = malloc(DHCP_FILE_LEN + 1);
123747c08596SBrooks Davis 		if (!lease->filename) {
123847c08596SBrooks Davis 			warning("dhcpoffer: no memory for filename.");
123947c08596SBrooks Davis 			free_client_lease(lease);
124047c08596SBrooks Davis 			return (NULL);
124147c08596SBrooks Davis 		}
124247c08596SBrooks Davis 		memcpy(lease->filename, packet->raw->file, DHCP_FILE_LEN);
124347c08596SBrooks Davis 		lease->filename[DHCP_FILE_LEN]='\0';
124447c08596SBrooks Davis 	}
124547c08596SBrooks Davis 	return lease;
124647c08596SBrooks Davis }
124747c08596SBrooks Davis 
124847c08596SBrooks Davis void
dhcpnak(struct packet * packet)124947c08596SBrooks Davis dhcpnak(struct packet *packet)
125047c08596SBrooks Davis {
125147c08596SBrooks Davis 	struct interface_info *ip = packet->interface;
125247c08596SBrooks Davis 
125347c08596SBrooks Davis 	/* If we're not receptive to an offer right now, or if the offer
125447c08596SBrooks Davis 	   has an unrecognizable transaction id, then just drop it. */
125547c08596SBrooks Davis 	if (packet->interface->client->xid != packet->raw->xid ||
125647c08596SBrooks Davis 	    (packet->interface->hw_address.hlen != packet->raw->hlen) ||
125747c08596SBrooks Davis 	    (memcmp(packet->interface->hw_address.haddr,
125847c08596SBrooks Davis 	    packet->raw->chaddr, packet->raw->hlen)))
125947c08596SBrooks Davis 		return;
126047c08596SBrooks Davis 
126147c08596SBrooks Davis 	if (ip->client->state != S_REBOOTING &&
126247c08596SBrooks Davis 	    ip->client->state != S_REQUESTING &&
126347c08596SBrooks Davis 	    ip->client->state != S_RENEWING &&
126447c08596SBrooks Davis 	    ip->client->state != S_REBINDING)
126547c08596SBrooks Davis 		return;
126647c08596SBrooks Davis 
126747c08596SBrooks Davis 	note("DHCPNAK from %s", piaddr(packet->client_addr));
126847c08596SBrooks Davis 
126947c08596SBrooks Davis 	if (!ip->client->active) {
127047c08596SBrooks Davis 		note("DHCPNAK with no active lease.\n");
127147c08596SBrooks Davis 		return;
127247c08596SBrooks Davis 	}
127347c08596SBrooks Davis 
127447c08596SBrooks Davis 	free_client_lease(ip->client->active);
127547c08596SBrooks Davis 	ip->client->active = NULL;
127647c08596SBrooks Davis 
127747c08596SBrooks Davis 	/* Stop sending DHCPREQUEST packets... */
127847c08596SBrooks Davis 	cancel_timeout(send_request, ip);
127947c08596SBrooks Davis 
128047c08596SBrooks Davis 	ip->client->state = S_INIT;
128147c08596SBrooks Davis 	state_init(ip);
128247c08596SBrooks Davis }
128347c08596SBrooks Davis 
128447c08596SBrooks Davis /* Send out a DHCPDISCOVER packet, and set a timeout to send out another
128547c08596SBrooks Davis    one after the right interval has expired.  If we don't get an offer by
128647c08596SBrooks Davis    the time we reach the panic interval, call the panic function. */
128747c08596SBrooks Davis 
128847c08596SBrooks Davis void
send_discover(void * ipp)128947c08596SBrooks Davis send_discover(void *ipp)
129047c08596SBrooks Davis {
129147c08596SBrooks Davis 	struct interface_info *ip = ipp;
129247c08596SBrooks Davis 	int interval, increase = 1;
129347c08596SBrooks Davis 
129447c08596SBrooks Davis 	/* Figure out how long it's been since we started transmitting. */
129547c08596SBrooks Davis 	interval = cur_time - ip->client->first_sending;
129647c08596SBrooks Davis 
129747c08596SBrooks Davis 	/* If we're past the panic timeout, call the script and tell it
129847c08596SBrooks Davis 	   we haven't found anything for this interface yet. */
129947c08596SBrooks Davis 	if (interval > ip->client->config->timeout) {
130047c08596SBrooks Davis 		state_panic(ip);
130147c08596SBrooks Davis 		return;
130247c08596SBrooks Davis 	}
130347c08596SBrooks Davis 
130447c08596SBrooks Davis 	/* If we're selecting media, try the whole list before doing
130547c08596SBrooks Davis 	   the exponential backoff, but if we've already received an
130647c08596SBrooks Davis 	   offer, stop looping, because we obviously have it right. */
130747c08596SBrooks Davis 	if (!ip->client->offered_leases &&
130847c08596SBrooks Davis 	    ip->client->config->media) {
130947c08596SBrooks Davis 		int fail = 0;
131047c08596SBrooks Davis again:
131147c08596SBrooks Davis 		if (ip->client->medium) {
131247c08596SBrooks Davis 			ip->client->medium = ip->client->medium->next;
131347c08596SBrooks Davis 			increase = 0;
131447c08596SBrooks Davis 		}
131547c08596SBrooks Davis 		if (!ip->client->medium) {
131647c08596SBrooks Davis 			if (fail)
131747c08596SBrooks Davis 				error("No valid media types for %s!", ip->name);
131847c08596SBrooks Davis 			ip->client->medium = ip->client->config->media;
131947c08596SBrooks Davis 			increase = 1;
132047c08596SBrooks Davis 		}
132147c08596SBrooks Davis 
132247c08596SBrooks Davis 		note("Trying medium \"%s\" %d", ip->client->medium->string,
132347c08596SBrooks Davis 		    increase);
132447c08596SBrooks Davis 		script_init("MEDIUM", ip->client->medium);
132547c08596SBrooks Davis 		if (script_go())
132647c08596SBrooks Davis 			goto again;
132747c08596SBrooks Davis 	}
132847c08596SBrooks Davis 
132947c08596SBrooks Davis 	/*
133047c08596SBrooks Davis 	 * If we're supposed to increase the interval, do so.  If it's
133147c08596SBrooks Davis 	 * currently zero (i.e., we haven't sent any packets yet), set
133247c08596SBrooks Davis 	 * it to one; otherwise, add to it a random number between zero
133347c08596SBrooks Davis 	 * and two times itself.  On average, this means that it will
133447c08596SBrooks Davis 	 * double with every transmission.
133547c08596SBrooks Davis 	 */
133647c08596SBrooks Davis 	if (increase) {
133747c08596SBrooks Davis 		if (!ip->client->interval)
133847c08596SBrooks Davis 			ip->client->interval =
133947c08596SBrooks Davis 			    ip->client->config->initial_interval;
134047c08596SBrooks Davis 		else {
134147c08596SBrooks Davis 			ip->client->interval += (arc4random() >> 2) %
134247c08596SBrooks Davis 			    (2 * ip->client->interval);
134347c08596SBrooks Davis 		}
134447c08596SBrooks Davis 
134547c08596SBrooks Davis 		/* Don't backoff past cutoff. */
134647c08596SBrooks Davis 		if (ip->client->interval >
134747c08596SBrooks Davis 		    ip->client->config->backoff_cutoff)
134847c08596SBrooks Davis 			ip->client->interval =
134947c08596SBrooks Davis 				((ip->client->config->backoff_cutoff / 2)
135047c08596SBrooks Davis 				 + ((arc4random() >> 2) %
135147c08596SBrooks Davis 				    ip->client->config->backoff_cutoff));
135247c08596SBrooks Davis 	} else if (!ip->client->interval)
135347c08596SBrooks Davis 		ip->client->interval =
135447c08596SBrooks Davis 			ip->client->config->initial_interval;
135547c08596SBrooks Davis 
135647c08596SBrooks Davis 	/* If the backoff would take us to the panic timeout, just use that
135747c08596SBrooks Davis 	   as the interval. */
135847c08596SBrooks Davis 	if (cur_time + ip->client->interval >
135947c08596SBrooks Davis 	    ip->client->first_sending + ip->client->config->timeout)
136047c08596SBrooks Davis 		ip->client->interval =
136147c08596SBrooks Davis 			(ip->client->first_sending +
136247c08596SBrooks Davis 			 ip->client->config->timeout) - cur_time + 1;
136347c08596SBrooks Davis 
136447c08596SBrooks Davis 	/* Record the number of seconds since we started sending. */
136547c08596SBrooks Davis 	if (interval < 65536)
136647c08596SBrooks Davis 		ip->client->packet.secs = htons(interval);
136747c08596SBrooks Davis 	else
136847c08596SBrooks Davis 		ip->client->packet.secs = htons(65535);
136947c08596SBrooks Davis 	ip->client->secs = ip->client->packet.secs;
137047c08596SBrooks Davis 
137147c08596SBrooks Davis 	note("DHCPDISCOVER on %s to %s port %d interval %d",
1372ba019ae5SPawel Jakub Dawidek 	    ip->name, inet_ntoa(inaddr_broadcast), REMOTE_PORT,
13739c13d9cdSBrooks Davis 	    (int)ip->client->interval);
137447c08596SBrooks Davis 
137547c08596SBrooks Davis 	/* Send out a packet. */
1376235eb530SPawel Jakub Dawidek 	send_packet_unpriv(privfd, &ip->client->packet,
1377235eb530SPawel Jakub Dawidek 	    ip->client->packet_length, inaddr_any, inaddr_broadcast);
137847c08596SBrooks Davis 
137947c08596SBrooks Davis 	add_timeout(cur_time + ip->client->interval, send_discover, ip);
138047c08596SBrooks Davis }
138147c08596SBrooks Davis 
138247c08596SBrooks Davis /*
138347c08596SBrooks Davis  * state_panic gets called if we haven't received any offers in a preset
138447c08596SBrooks Davis  * amount of time.   When this happens, we try to use existing leases
138547c08596SBrooks Davis  * that haven't yet expired, and failing that, we call the client script
138647c08596SBrooks Davis  * and hope it can do something.
138747c08596SBrooks Davis  */
138847c08596SBrooks Davis void
state_panic(void * ipp)138947c08596SBrooks Davis state_panic(void *ipp)
139047c08596SBrooks Davis {
139147c08596SBrooks Davis 	struct interface_info *ip = ipp;
139247c08596SBrooks Davis 	struct client_lease *loop = ip->client->active;
139347c08596SBrooks Davis 	struct client_lease *lp;
139447c08596SBrooks Davis 
139547c08596SBrooks Davis 	note("No DHCPOFFERS received.");
139647c08596SBrooks Davis 
139747c08596SBrooks Davis 	/* We may not have an active lease, but we may have some
139847c08596SBrooks Davis 	   predefined leases that we can try. */
139947c08596SBrooks Davis 	if (!ip->client->active && ip->client->leases)
140047c08596SBrooks Davis 		goto activate_next;
140147c08596SBrooks Davis 
140247c08596SBrooks Davis 	/* Run through the list of leases and see if one can be used. */
140347c08596SBrooks Davis 	while (ip->client->active) {
140447c08596SBrooks Davis 		if (ip->client->active->expiry > cur_time) {
140547c08596SBrooks Davis 			note("Trying recorded lease %s",
140647c08596SBrooks Davis 			    piaddr(ip->client->active->address));
140747c08596SBrooks Davis 			/* Run the client script with the existing
140847c08596SBrooks Davis 			   parameters. */
140947c08596SBrooks Davis 			script_init("TIMEOUT",
141047c08596SBrooks Davis 			    ip->client->active->medium);
141147c08596SBrooks Davis 			script_write_params("new_", ip->client->active);
141247c08596SBrooks Davis 			if (ip->client->alias)
141347c08596SBrooks Davis 				script_write_params("alias_",
141447c08596SBrooks Davis 				    ip->client->alias);
141547c08596SBrooks Davis 
141647c08596SBrooks Davis 			/* If the old lease is still good and doesn't
141747c08596SBrooks Davis 			   yet need renewal, go into BOUND state and
141847c08596SBrooks Davis 			   timeout at the renewal time. */
141947c08596SBrooks Davis 			if (!script_go()) {
142047c08596SBrooks Davis 				if (cur_time <
142147c08596SBrooks Davis 				    ip->client->active->renewal) {
142247c08596SBrooks Davis 					ip->client->state = S_BOUND;
142347c08596SBrooks Davis 					note("bound: renewal in %d seconds.",
14249c13d9cdSBrooks Davis 					    (int)(ip->client->active->renewal -
14259c13d9cdSBrooks Davis 					    cur_time));
142647c08596SBrooks Davis 					add_timeout(
142747c08596SBrooks Davis 					    ip->client->active->renewal,
142847c08596SBrooks Davis 					    state_bound, ip);
142947c08596SBrooks Davis 				} else {
143047c08596SBrooks Davis 					ip->client->state = S_BOUND;
143147c08596SBrooks Davis 					note("bound: immediate renewal.");
143247c08596SBrooks Davis 					state_bound(ip);
143347c08596SBrooks Davis 				}
143447c08596SBrooks Davis 				reinitialize_interfaces();
143547c08596SBrooks Davis 				go_daemon();
143647c08596SBrooks Davis 				return;
143747c08596SBrooks Davis 			}
143847c08596SBrooks Davis 		}
143947c08596SBrooks Davis 
144047c08596SBrooks Davis 		/* If there are no other leases, give up. */
144147c08596SBrooks Davis 		if (!ip->client->leases) {
144247c08596SBrooks Davis 			ip->client->leases = ip->client->active;
144347c08596SBrooks Davis 			ip->client->active = NULL;
144447c08596SBrooks Davis 			break;
144547c08596SBrooks Davis 		}
144647c08596SBrooks Davis 
144747c08596SBrooks Davis activate_next:
144847c08596SBrooks Davis 		/* Otherwise, put the active lease at the end of the
144947c08596SBrooks Davis 		   lease list, and try another lease.. */
145047c08596SBrooks Davis 		for (lp = ip->client->leases; lp->next; lp = lp->next)
145147c08596SBrooks Davis 			;
145247c08596SBrooks Davis 		lp->next = ip->client->active;
145347c08596SBrooks Davis 		if (lp->next)
145447c08596SBrooks Davis 			lp->next->next = NULL;
145547c08596SBrooks Davis 		ip->client->active = ip->client->leases;
145647c08596SBrooks Davis 		ip->client->leases = ip->client->leases->next;
145747c08596SBrooks Davis 
145847c08596SBrooks Davis 		/* If we already tried this lease, we've exhausted the
145947c08596SBrooks Davis 		   set of leases, so we might as well give up for
146047c08596SBrooks Davis 		   now. */
146147c08596SBrooks Davis 		if (ip->client->active == loop)
146247c08596SBrooks Davis 			break;
146347c08596SBrooks Davis 		else if (!loop)
146447c08596SBrooks Davis 			loop = ip->client->active;
146547c08596SBrooks Davis 	}
146647c08596SBrooks Davis 
146747c08596SBrooks Davis 	/* No leases were available, or what was available didn't work, so
146847c08596SBrooks Davis 	   tell the shell script that we failed to allocate an address,
146947c08596SBrooks Davis 	   and try again later. */
147047c08596SBrooks Davis 	note("No working leases in persistent database - sleeping.\n");
147147c08596SBrooks Davis 	script_init("FAIL", NULL);
147247c08596SBrooks Davis 	if (ip->client->alias)
147347c08596SBrooks Davis 		script_write_params("alias_", ip->client->alias);
147447c08596SBrooks Davis 	script_go();
147547c08596SBrooks Davis 	ip->client->state = S_INIT;
147647c08596SBrooks Davis 	add_timeout(cur_time + ip->client->config->retry_interval, state_init,
147747c08596SBrooks Davis 	    ip);
147847c08596SBrooks Davis 	go_daemon();
147947c08596SBrooks Davis }
148047c08596SBrooks Davis 
148147c08596SBrooks Davis void
send_request(void * ipp)148247c08596SBrooks Davis send_request(void *ipp)
148347c08596SBrooks Davis {
148447c08596SBrooks Davis 	struct interface_info *ip = ipp;
1485ba019ae5SPawel Jakub Dawidek 	struct in_addr from, to;
148647c08596SBrooks Davis 	int interval;
148747c08596SBrooks Davis 
148847c08596SBrooks Davis 	/* Figure out how long it's been since we started transmitting. */
148947c08596SBrooks Davis 	interval = cur_time - ip->client->first_sending;
149047c08596SBrooks Davis 
149147c08596SBrooks Davis 	/* If we're in the INIT-REBOOT or REQUESTING state and we're
149247c08596SBrooks Davis 	   past the reboot timeout, go to INIT and see if we can
149347c08596SBrooks Davis 	   DISCOVER an address... */
149447c08596SBrooks Davis 	/* XXX In the INIT-REBOOT state, if we don't get an ACK, it
149547c08596SBrooks Davis 	   means either that we're on a network with no DHCP server,
149647c08596SBrooks Davis 	   or that our server is down.  In the latter case, assuming
149747c08596SBrooks Davis 	   that there is a backup DHCP server, DHCPDISCOVER will get
149847c08596SBrooks Davis 	   us a new address, but we could also have successfully
149947c08596SBrooks Davis 	   reused our old address.  In the former case, we're hosed
150047c08596SBrooks Davis 	   anyway.  This is not a win-prone situation. */
150147c08596SBrooks Davis 	if ((ip->client->state == S_REBOOTING ||
150247c08596SBrooks Davis 	    ip->client->state == S_REQUESTING) &&
150347c08596SBrooks Davis 	    interval > ip->client->config->reboot_timeout) {
150447c08596SBrooks Davis cancel:
150547c08596SBrooks Davis 		ip->client->state = S_INIT;
150647c08596SBrooks Davis 		cancel_timeout(send_request, ip);
150747c08596SBrooks Davis 		state_init(ip);
150847c08596SBrooks Davis 		return;
150947c08596SBrooks Davis 	}
151047c08596SBrooks Davis 
151147c08596SBrooks Davis 	/* If we're in the reboot state, make sure the media is set up
151247c08596SBrooks Davis 	   correctly. */
151347c08596SBrooks Davis 	if (ip->client->state == S_REBOOTING &&
151447c08596SBrooks Davis 	    !ip->client->medium &&
151547c08596SBrooks Davis 	    ip->client->active->medium ) {
151647c08596SBrooks Davis 		script_init("MEDIUM", ip->client->active->medium);
151747c08596SBrooks Davis 
151847c08596SBrooks Davis 		/* If the medium we chose won't fly, go to INIT state. */
151947c08596SBrooks Davis 		if (script_go())
152047c08596SBrooks Davis 			goto cancel;
152147c08596SBrooks Davis 
152247c08596SBrooks Davis 		/* Record the medium. */
152347c08596SBrooks Davis 		ip->client->medium = ip->client->active->medium;
152447c08596SBrooks Davis 	}
152547c08596SBrooks Davis 
152647c08596SBrooks Davis 	/* If the lease has expired, relinquish the address and go back
152747c08596SBrooks Davis 	   to the INIT state. */
152847c08596SBrooks Davis 	if (ip->client->state != S_REQUESTING &&
152947c08596SBrooks Davis 	    cur_time > ip->client->active->expiry) {
153047c08596SBrooks Davis 		/* Run the client script with the new parameters. */
153147c08596SBrooks Davis 		script_init("EXPIRE", NULL);
153247c08596SBrooks Davis 		script_write_params("old_", ip->client->active);
153347c08596SBrooks Davis 		if (ip->client->alias)
153447c08596SBrooks Davis 			script_write_params("alias_", ip->client->alias);
153547c08596SBrooks Davis 		script_go();
153647c08596SBrooks Davis 
153747c08596SBrooks Davis 		/* Now do a preinit on the interface so that we can
153847c08596SBrooks Davis 		   discover a new address. */
153947c08596SBrooks Davis 		script_init("PREINIT", NULL);
154047c08596SBrooks Davis 		if (ip->client->alias)
154147c08596SBrooks Davis 			script_write_params("alias_", ip->client->alias);
154247c08596SBrooks Davis 		script_go();
154347c08596SBrooks Davis 
154447c08596SBrooks Davis 		ip->client->state = S_INIT;
154547c08596SBrooks Davis 		state_init(ip);
154647c08596SBrooks Davis 		return;
154747c08596SBrooks Davis 	}
154847c08596SBrooks Davis 
154947c08596SBrooks Davis 	/* Do the exponential backoff... */
155047c08596SBrooks Davis 	if (!ip->client->interval)
155147c08596SBrooks Davis 		ip->client->interval = ip->client->config->initial_interval;
155247c08596SBrooks Davis 	else
155347c08596SBrooks Davis 		ip->client->interval += ((arc4random() >> 2) %
155447c08596SBrooks Davis 		    (2 * ip->client->interval));
155547c08596SBrooks Davis 
155647c08596SBrooks Davis 	/* Don't backoff past cutoff. */
155747c08596SBrooks Davis 	if (ip->client->interval >
155847c08596SBrooks Davis 	    ip->client->config->backoff_cutoff)
155947c08596SBrooks Davis 		ip->client->interval =
156047c08596SBrooks Davis 		    ((ip->client->config->backoff_cutoff / 2) +
156147c08596SBrooks Davis 		    ((arc4random() >> 2) % ip->client->interval));
156247c08596SBrooks Davis 
156347c08596SBrooks Davis 	/* If the backoff would take us to the expiry time, just set the
156447c08596SBrooks Davis 	   timeout to the expiry time. */
156547c08596SBrooks Davis 	if (ip->client->state != S_REQUESTING &&
156647c08596SBrooks Davis 	    cur_time + ip->client->interval >
156747c08596SBrooks Davis 	    ip->client->active->expiry)
156847c08596SBrooks Davis 		ip->client->interval =
156947c08596SBrooks Davis 		    ip->client->active->expiry - cur_time + 1;
157047c08596SBrooks Davis 
157147c08596SBrooks Davis 	/* If the lease T2 time has elapsed, or if we're not yet bound,
157247c08596SBrooks Davis 	   broadcast the DHCPREQUEST rather than unicasting. */
157347c08596SBrooks Davis 	if (ip->client->state == S_REQUESTING ||
157447c08596SBrooks Davis 	    ip->client->state == S_REBOOTING ||
157547c08596SBrooks Davis 	    cur_time > ip->client->active->rebind)
1576ba019ae5SPawel Jakub Dawidek 		to.s_addr = INADDR_BROADCAST;
157747c08596SBrooks Davis 	else
1578ba019ae5SPawel Jakub Dawidek 		memcpy(&to.s_addr, ip->client->destination.iabuf,
1579ba019ae5SPawel Jakub Dawidek 		    sizeof(to.s_addr));
158047c08596SBrooks Davis 
15813acf1760SDavid Bright 	if (ip->client->state != S_REQUESTING &&
15823acf1760SDavid Bright 	    ip->client->state != S_REBOOTING)
158347c08596SBrooks Davis 		memcpy(&from, ip->client->active->address.iabuf,
158447c08596SBrooks Davis 		    sizeof(from));
158547c08596SBrooks Davis 	else
158647c08596SBrooks Davis 		from.s_addr = INADDR_ANY;
158747c08596SBrooks Davis 
158847c08596SBrooks Davis 	/* Record the number of seconds since we started sending. */
158947c08596SBrooks Davis 	if (ip->client->state == S_REQUESTING)
159047c08596SBrooks Davis 		ip->client->packet.secs = ip->client->secs;
159147c08596SBrooks Davis 	else {
159247c08596SBrooks Davis 		if (interval < 65536)
159347c08596SBrooks Davis 			ip->client->packet.secs = htons(interval);
159447c08596SBrooks Davis 		else
159547c08596SBrooks Davis 			ip->client->packet.secs = htons(65535);
159647c08596SBrooks Davis 	}
159747c08596SBrooks Davis 
1598ba019ae5SPawel Jakub Dawidek 	note("DHCPREQUEST on %s to %s port %d", ip->name, inet_ntoa(to),
1599ba019ae5SPawel Jakub Dawidek 	    REMOTE_PORT);
160047c08596SBrooks Davis 
160147c08596SBrooks Davis 	/* Send out a packet. */
1602235eb530SPawel Jakub Dawidek 	send_packet_unpriv(privfd, &ip->client->packet,
1603235eb530SPawel Jakub Dawidek 	    ip->client->packet_length, from, to);
160447c08596SBrooks Davis 
160547c08596SBrooks Davis 	add_timeout(cur_time + ip->client->interval, send_request, ip);
160647c08596SBrooks Davis }
160747c08596SBrooks Davis 
160847c08596SBrooks Davis void
send_decline(void * ipp)160947c08596SBrooks Davis send_decline(void *ipp)
161047c08596SBrooks Davis {
161147c08596SBrooks Davis 	struct interface_info *ip = ipp;
161247c08596SBrooks Davis 
161347c08596SBrooks Davis 	note("DHCPDECLINE on %s to %s port %d", ip->name,
1614ba019ae5SPawel Jakub Dawidek 	    inet_ntoa(inaddr_broadcast), REMOTE_PORT);
161547c08596SBrooks Davis 
161647c08596SBrooks Davis 	/* Send out a packet. */
1617235eb530SPawel Jakub Dawidek 	send_packet_unpriv(privfd, &ip->client->packet,
1618235eb530SPawel Jakub Dawidek 	    ip->client->packet_length, inaddr_any, inaddr_broadcast);
161947c08596SBrooks Davis }
162047c08596SBrooks Davis 
162147c08596SBrooks Davis void
make_discover(struct interface_info * ip,struct client_lease * lease)162247c08596SBrooks Davis make_discover(struct interface_info *ip, struct client_lease *lease)
162347c08596SBrooks Davis {
162447c08596SBrooks Davis 	unsigned char discover = DHCPDISCOVER;
162547c08596SBrooks Davis 	struct tree_cache *options[256];
162647c08596SBrooks Davis 	struct tree_cache option_elements[256];
162747c08596SBrooks Davis 	int i;
162847c08596SBrooks Davis 
162947c08596SBrooks Davis 	memset(option_elements, 0, sizeof(option_elements));
163047c08596SBrooks Davis 	memset(options, 0, sizeof(options));
163147c08596SBrooks Davis 	memset(&ip->client->packet, 0, sizeof(ip->client->packet));
163247c08596SBrooks Davis 
163347c08596SBrooks Davis 	/* Set DHCP_MESSAGE_TYPE to DHCPDISCOVER */
163447c08596SBrooks Davis 	i = DHO_DHCP_MESSAGE_TYPE;
163547c08596SBrooks Davis 	options[i] = &option_elements[i];
163647c08596SBrooks Davis 	options[i]->value = &discover;
163747c08596SBrooks Davis 	options[i]->len = sizeof(discover);
163847c08596SBrooks Davis 	options[i]->buf_size = sizeof(discover);
163947c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
164047c08596SBrooks Davis 
164147c08596SBrooks Davis 	/* Request the options we want */
164247c08596SBrooks Davis 	i  = DHO_DHCP_PARAMETER_REQUEST_LIST;
164347c08596SBrooks Davis 	options[i] = &option_elements[i];
164447c08596SBrooks Davis 	options[i]->value = ip->client->config->requested_options;
164547c08596SBrooks Davis 	options[i]->len = ip->client->config->requested_option_count;
164647c08596SBrooks Davis 	options[i]->buf_size =
164747c08596SBrooks Davis 		ip->client->config->requested_option_count;
164847c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
164947c08596SBrooks Davis 
165047c08596SBrooks Davis 	/* If we had an address, try to get it again. */
165147c08596SBrooks Davis 	if (lease) {
165247c08596SBrooks Davis 		ip->client->requested_address = lease->address;
165347c08596SBrooks Davis 		i = DHO_DHCP_REQUESTED_ADDRESS;
165447c08596SBrooks Davis 		options[i] = &option_elements[i];
165547c08596SBrooks Davis 		options[i]->value = lease->address.iabuf;
165647c08596SBrooks Davis 		options[i]->len = lease->address.len;
165747c08596SBrooks Davis 		options[i]->buf_size = lease->address.len;
165847c08596SBrooks Davis 		options[i]->timeout = 0xFFFFFFFF;
165947c08596SBrooks Davis 	} else
166047c08596SBrooks Davis 		ip->client->requested_address.len = 0;
166147c08596SBrooks Davis 
166247c08596SBrooks Davis 	/* Send any options requested in the config file. */
166347c08596SBrooks Davis 	for (i = 0; i < 256; i++)
166447c08596SBrooks Davis 		if (!options[i] &&
166547c08596SBrooks Davis 		    ip->client->config->send_options[i].data) {
166647c08596SBrooks Davis 			options[i] = &option_elements[i];
166747c08596SBrooks Davis 			options[i]->value =
166847c08596SBrooks Davis 			    ip->client->config->send_options[i].data;
166947c08596SBrooks Davis 			options[i]->len =
167047c08596SBrooks Davis 			    ip->client->config->send_options[i].len;
167147c08596SBrooks Davis 			options[i]->buf_size =
167247c08596SBrooks Davis 			    ip->client->config->send_options[i].len;
167347c08596SBrooks Davis 			options[i]->timeout = 0xFFFFFFFF;
167447c08596SBrooks Davis 		}
167547c08596SBrooks Davis 
1676fcab8addSBrooks Davis 	/* send host name if not set via config file. */
1677fcab8addSBrooks Davis 	if (!options[DHO_HOST_NAME]) {
16780bbe8306SPawel Jakub Dawidek 		if (hostname[0] != '\0') {
1679fcab8addSBrooks Davis 			size_t len;
1680fcab8addSBrooks Davis 			char* posDot = strchr(hostname, '.');
1681fcab8addSBrooks Davis 			if (posDot != NULL)
1682fcab8addSBrooks Davis 				len = posDot - hostname;
1683fcab8addSBrooks Davis 			else
1684fcab8addSBrooks Davis 				len = strlen(hostname);
1685fcab8addSBrooks Davis 			options[DHO_HOST_NAME] = &option_elements[DHO_HOST_NAME];
1686fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->value = hostname;
1687fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->len = len;
1688fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->buf_size = len;
1689fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->timeout = 0xFFFFFFFF;
1690fcab8addSBrooks Davis 		}
1691fcab8addSBrooks Davis 	}
1692fcab8addSBrooks Davis 
1693fcab8addSBrooks Davis 	/* set unique client identifier */
1694fb0eab09SConrad Meyer 	char client_ident[sizeof(ip->hw_address.haddr) + 1];
1695fcab8addSBrooks Davis 	if (!options[DHO_DHCP_CLIENT_IDENTIFIER]) {
16964441bd73SConrad Meyer 		int hwlen = (ip->hw_address.hlen < sizeof(client_ident)-1) ?
16974441bd73SConrad Meyer 				ip->hw_address.hlen : sizeof(client_ident)-1;
16984441bd73SConrad Meyer 		client_ident[0] = ip->hw_address.htype;
16994441bd73SConrad Meyer 		memcpy(&client_ident[1], ip->hw_address.haddr, hwlen);
1700fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER] = &option_elements[DHO_DHCP_CLIENT_IDENTIFIER];
17014441bd73SConrad Meyer 		options[DHO_DHCP_CLIENT_IDENTIFIER]->value = client_ident;
17024441bd73SConrad Meyer 		options[DHO_DHCP_CLIENT_IDENTIFIER]->len = hwlen+1;
17034441bd73SConrad Meyer 		options[DHO_DHCP_CLIENT_IDENTIFIER]->buf_size = hwlen+1;
1704fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->timeout = 0xFFFFFFFF;
1705fcab8addSBrooks Davis 	}
1706fcab8addSBrooks Davis 
170747c08596SBrooks Davis 	/* Set up the option buffer... */
170847c08596SBrooks Davis 	ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0,
170947c08596SBrooks Davis 	    options, 0, 0, 0, NULL, 0);
171047c08596SBrooks Davis 	if (ip->client->packet_length < BOOTP_MIN_LEN)
171147c08596SBrooks Davis 		ip->client->packet_length = BOOTP_MIN_LEN;
171247c08596SBrooks Davis 
171347c08596SBrooks Davis 	ip->client->packet.op = BOOTREQUEST;
171447c08596SBrooks Davis 	ip->client->packet.htype = ip->hw_address.htype;
171547c08596SBrooks Davis 	ip->client->packet.hlen = ip->hw_address.hlen;
171647c08596SBrooks Davis 	ip->client->packet.hops = 0;
171747c08596SBrooks Davis 	ip->client->packet.xid = arc4random();
171847c08596SBrooks Davis 	ip->client->packet.secs = 0; /* filled in by send_discover. */
171947c08596SBrooks Davis 	ip->client->packet.flags = 0;
172047c08596SBrooks Davis 
172147c08596SBrooks Davis 	memset(&(ip->client->packet.ciaddr),
172247c08596SBrooks Davis 	    0, sizeof(ip->client->packet.ciaddr));
172347c08596SBrooks Davis 	memset(&(ip->client->packet.yiaddr),
172447c08596SBrooks Davis 	    0, sizeof(ip->client->packet.yiaddr));
172547c08596SBrooks Davis 	memset(&(ip->client->packet.siaddr),
172647c08596SBrooks Davis 	    0, sizeof(ip->client->packet.siaddr));
172747c08596SBrooks Davis 	memset(&(ip->client->packet.giaddr),
172847c08596SBrooks Davis 	    0, sizeof(ip->client->packet.giaddr));
17294441bd73SConrad Meyer 	memcpy(ip->client->packet.chaddr,
17304441bd73SConrad Meyer 	    ip->hw_address.haddr, ip->hw_address.hlen);
173147c08596SBrooks Davis }
173247c08596SBrooks Davis 
173347c08596SBrooks Davis 
173447c08596SBrooks Davis void
make_request(struct interface_info * ip,struct client_lease * lease)173547c08596SBrooks Davis make_request(struct interface_info *ip, struct client_lease * lease)
173647c08596SBrooks Davis {
173747c08596SBrooks Davis 	unsigned char request = DHCPREQUEST;
173847c08596SBrooks Davis 	struct tree_cache *options[256];
173947c08596SBrooks Davis 	struct tree_cache option_elements[256];
174047c08596SBrooks Davis 	int i;
174147c08596SBrooks Davis 
174247c08596SBrooks Davis 	memset(options, 0, sizeof(options));
174347c08596SBrooks Davis 	memset(&ip->client->packet, 0, sizeof(ip->client->packet));
174447c08596SBrooks Davis 
174547c08596SBrooks Davis 	/* Set DHCP_MESSAGE_TYPE to DHCPREQUEST */
174647c08596SBrooks Davis 	i = DHO_DHCP_MESSAGE_TYPE;
174747c08596SBrooks Davis 	options[i] = &option_elements[i];
174847c08596SBrooks Davis 	options[i]->value = &request;
174947c08596SBrooks Davis 	options[i]->len = sizeof(request);
175047c08596SBrooks Davis 	options[i]->buf_size = sizeof(request);
175147c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
175247c08596SBrooks Davis 
175347c08596SBrooks Davis 	/* Request the options we want */
175447c08596SBrooks Davis 	i = DHO_DHCP_PARAMETER_REQUEST_LIST;
175547c08596SBrooks Davis 	options[i] = &option_elements[i];
175647c08596SBrooks Davis 	options[i]->value = ip->client->config->requested_options;
175747c08596SBrooks Davis 	options[i]->len = ip->client->config->requested_option_count;
175847c08596SBrooks Davis 	options[i]->buf_size =
175947c08596SBrooks Davis 		ip->client->config->requested_option_count;
176047c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
176147c08596SBrooks Davis 
176247c08596SBrooks Davis 	/* If we are requesting an address that hasn't yet been assigned
176347c08596SBrooks Davis 	   to us, use the DHCP Requested Address option. */
176447c08596SBrooks Davis 	if (ip->client->state == S_REQUESTING) {
176547c08596SBrooks Davis 		/* Send back the server identifier... */
176647c08596SBrooks Davis 		i = DHO_DHCP_SERVER_IDENTIFIER;
176747c08596SBrooks Davis 		options[i] = &option_elements[i];
176847c08596SBrooks Davis 		options[i]->value = lease->options[i].data;
176947c08596SBrooks Davis 		options[i]->len = lease->options[i].len;
177047c08596SBrooks Davis 		options[i]->buf_size = lease->options[i].len;
177147c08596SBrooks Davis 		options[i]->timeout = 0xFFFFFFFF;
177247c08596SBrooks Davis 	}
177347c08596SBrooks Davis 	if (ip->client->state == S_REQUESTING ||
177447c08596SBrooks Davis 	    ip->client->state == S_REBOOTING) {
177547c08596SBrooks Davis 		ip->client->requested_address = lease->address;
177647c08596SBrooks Davis 		i = DHO_DHCP_REQUESTED_ADDRESS;
177747c08596SBrooks Davis 		options[i] = &option_elements[i];
177847c08596SBrooks Davis 		options[i]->value = lease->address.iabuf;
177947c08596SBrooks Davis 		options[i]->len = lease->address.len;
178047c08596SBrooks Davis 		options[i]->buf_size = lease->address.len;
178147c08596SBrooks Davis 		options[i]->timeout = 0xFFFFFFFF;
178247c08596SBrooks Davis 	} else
178347c08596SBrooks Davis 		ip->client->requested_address.len = 0;
178447c08596SBrooks Davis 
178547c08596SBrooks Davis 	/* Send any options requested in the config file. */
178647c08596SBrooks Davis 	for (i = 0; i < 256; i++)
178747c08596SBrooks Davis 		if (!options[i] &&
178847c08596SBrooks Davis 		    ip->client->config->send_options[i].data) {
178947c08596SBrooks Davis 			options[i] = &option_elements[i];
179047c08596SBrooks Davis 			options[i]->value =
179147c08596SBrooks Davis 			    ip->client->config->send_options[i].data;
179247c08596SBrooks Davis 			options[i]->len =
179347c08596SBrooks Davis 			    ip->client->config->send_options[i].len;
179447c08596SBrooks Davis 			options[i]->buf_size =
179547c08596SBrooks Davis 			    ip->client->config->send_options[i].len;
179647c08596SBrooks Davis 			options[i]->timeout = 0xFFFFFFFF;
179747c08596SBrooks Davis 		}
179847c08596SBrooks Davis 
1799fcab8addSBrooks Davis 	/* send host name if not set via config file. */
1800fcab8addSBrooks Davis 	if (!options[DHO_HOST_NAME]) {
18010bbe8306SPawel Jakub Dawidek 		if (hostname[0] != '\0') {
1802fcab8addSBrooks Davis 			size_t len;
1803fcab8addSBrooks Davis 			char* posDot = strchr(hostname, '.');
1804fcab8addSBrooks Davis 			if (posDot != NULL)
1805fcab8addSBrooks Davis 				len = posDot - hostname;
1806fcab8addSBrooks Davis 			else
1807fcab8addSBrooks Davis 				len = strlen(hostname);
1808fcab8addSBrooks Davis 			options[DHO_HOST_NAME] = &option_elements[DHO_HOST_NAME];
1809fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->value = hostname;
1810fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->len = len;
1811fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->buf_size = len;
1812fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->timeout = 0xFFFFFFFF;
1813fcab8addSBrooks Davis 		}
1814fcab8addSBrooks Davis 	}
1815fcab8addSBrooks Davis 
1816fcab8addSBrooks Davis 	/* set unique client identifier */
181774aed808SConrad Meyer 	char client_ident[sizeof(ip->hw_address.haddr) + 1];
1818fcab8addSBrooks Davis 	if (!options[DHO_DHCP_CLIENT_IDENTIFIER]) {
1819fcab8addSBrooks Davis 		int hwlen = (ip->hw_address.hlen < sizeof(client_ident)-1) ?
1820fcab8addSBrooks Davis 				ip->hw_address.hlen : sizeof(client_ident)-1;
1821fcab8addSBrooks Davis 		client_ident[0] = ip->hw_address.htype;
1822fcab8addSBrooks Davis 		memcpy(&client_ident[1], ip->hw_address.haddr, hwlen);
1823fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER] = &option_elements[DHO_DHCP_CLIENT_IDENTIFIER];
1824fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->value = client_ident;
1825fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->len = hwlen+1;
1826fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->buf_size = hwlen+1;
1827fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->timeout = 0xFFFFFFFF;
1828fcab8addSBrooks Davis 	}
1829fcab8addSBrooks Davis 
183047c08596SBrooks Davis 	/* Set up the option buffer... */
183147c08596SBrooks Davis 	ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0,
183247c08596SBrooks Davis 	    options, 0, 0, 0, NULL, 0);
183347c08596SBrooks Davis 	if (ip->client->packet_length < BOOTP_MIN_LEN)
183447c08596SBrooks Davis 		ip->client->packet_length = BOOTP_MIN_LEN;
183547c08596SBrooks Davis 
183647c08596SBrooks Davis 	ip->client->packet.op = BOOTREQUEST;
183747c08596SBrooks Davis 	ip->client->packet.htype = ip->hw_address.htype;
183847c08596SBrooks Davis 	ip->client->packet.hlen = ip->hw_address.hlen;
183947c08596SBrooks Davis 	ip->client->packet.hops = 0;
184047c08596SBrooks Davis 	ip->client->packet.xid = ip->client->xid;
184147c08596SBrooks Davis 	ip->client->packet.secs = 0; /* Filled in by send_request. */
184247c08596SBrooks Davis 
184347c08596SBrooks Davis 	/* If we own the address we're requesting, put it in ciaddr;
184447c08596SBrooks Davis 	   otherwise set ciaddr to zero. */
184547c08596SBrooks Davis 	if (ip->client->state == S_BOUND ||
184647c08596SBrooks Davis 	    ip->client->state == S_RENEWING ||
184747c08596SBrooks Davis 	    ip->client->state == S_REBINDING) {
184847c08596SBrooks Davis 		memcpy(&ip->client->packet.ciaddr,
184947c08596SBrooks Davis 		    lease->address.iabuf, lease->address.len);
185047c08596SBrooks Davis 		ip->client->packet.flags = 0;
185147c08596SBrooks Davis 	} else {
185247c08596SBrooks Davis 		memset(&ip->client->packet.ciaddr, 0,
185347c08596SBrooks Davis 		    sizeof(ip->client->packet.ciaddr));
185447c08596SBrooks Davis 		ip->client->packet.flags = 0;
185547c08596SBrooks Davis 	}
185647c08596SBrooks Davis 
185747c08596SBrooks Davis 	memset(&ip->client->packet.yiaddr, 0,
185847c08596SBrooks Davis 	    sizeof(ip->client->packet.yiaddr));
185947c08596SBrooks Davis 	memset(&ip->client->packet.siaddr, 0,
186047c08596SBrooks Davis 	    sizeof(ip->client->packet.siaddr));
186147c08596SBrooks Davis 	memset(&ip->client->packet.giaddr, 0,
186247c08596SBrooks Davis 	    sizeof(ip->client->packet.giaddr));
186347c08596SBrooks Davis 	memcpy(ip->client->packet.chaddr,
186447c08596SBrooks Davis 	    ip->hw_address.haddr, ip->hw_address.hlen);
186547c08596SBrooks Davis }
186647c08596SBrooks Davis 
186747c08596SBrooks Davis void
make_decline(struct interface_info * ip,struct client_lease * lease)186847c08596SBrooks Davis make_decline(struct interface_info *ip, struct client_lease *lease)
186947c08596SBrooks Davis {
187047c08596SBrooks Davis 	struct tree_cache *options[256], message_type_tree;
187147c08596SBrooks Davis 	struct tree_cache requested_address_tree;
187247c08596SBrooks Davis 	struct tree_cache server_id_tree, client_id_tree;
187347c08596SBrooks Davis 	unsigned char decline = DHCPDECLINE;
187447c08596SBrooks Davis 	int i;
187547c08596SBrooks Davis 
187647c08596SBrooks Davis 	memset(options, 0, sizeof(options));
187747c08596SBrooks Davis 	memset(&ip->client->packet, 0, sizeof(ip->client->packet));
187847c08596SBrooks Davis 
187947c08596SBrooks Davis 	/* Set DHCP_MESSAGE_TYPE to DHCPDECLINE */
188047c08596SBrooks Davis 	i = DHO_DHCP_MESSAGE_TYPE;
188147c08596SBrooks Davis 	options[i] = &message_type_tree;
188247c08596SBrooks Davis 	options[i]->value = &decline;
188347c08596SBrooks Davis 	options[i]->len = sizeof(decline);
188447c08596SBrooks Davis 	options[i]->buf_size = sizeof(decline);
188547c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
188647c08596SBrooks Davis 
188747c08596SBrooks Davis 	/* Send back the server identifier... */
188847c08596SBrooks Davis 	i = DHO_DHCP_SERVER_IDENTIFIER;
188947c08596SBrooks Davis 	options[i] = &server_id_tree;
189047c08596SBrooks Davis 	options[i]->value = lease->options[i].data;
189147c08596SBrooks Davis 	options[i]->len = lease->options[i].len;
189247c08596SBrooks Davis 	options[i]->buf_size = lease->options[i].len;
189347c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
189447c08596SBrooks Davis 
189547c08596SBrooks Davis 	/* Send back the address we're declining. */
189647c08596SBrooks Davis 	i = DHO_DHCP_REQUESTED_ADDRESS;
189747c08596SBrooks Davis 	options[i] = &requested_address_tree;
189847c08596SBrooks Davis 	options[i]->value = lease->address.iabuf;
189947c08596SBrooks Davis 	options[i]->len = lease->address.len;
190047c08596SBrooks Davis 	options[i]->buf_size = lease->address.len;
190147c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
190247c08596SBrooks Davis 
190347c08596SBrooks Davis 	/* Send the uid if the user supplied one. */
190447c08596SBrooks Davis 	i = DHO_DHCP_CLIENT_IDENTIFIER;
190547c08596SBrooks Davis 	if (ip->client->config->send_options[i].len) {
190647c08596SBrooks Davis 		options[i] = &client_id_tree;
190747c08596SBrooks Davis 		options[i]->value = ip->client->config->send_options[i].data;
190847c08596SBrooks Davis 		options[i]->len = ip->client->config->send_options[i].len;
190947c08596SBrooks Davis 		options[i]->buf_size = ip->client->config->send_options[i].len;
191047c08596SBrooks Davis 		options[i]->timeout = 0xFFFFFFFF;
191147c08596SBrooks Davis 	}
191247c08596SBrooks Davis 
191347c08596SBrooks Davis 
191447c08596SBrooks Davis 	/* Set up the option buffer... */
191547c08596SBrooks Davis 	ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0,
191647c08596SBrooks Davis 	    options, 0, 0, 0, NULL, 0);
191747c08596SBrooks Davis 	if (ip->client->packet_length < BOOTP_MIN_LEN)
191847c08596SBrooks Davis 		ip->client->packet_length = BOOTP_MIN_LEN;
191947c08596SBrooks Davis 
192047c08596SBrooks Davis 	ip->client->packet.op = BOOTREQUEST;
192147c08596SBrooks Davis 	ip->client->packet.htype = ip->hw_address.htype;
192247c08596SBrooks Davis 	ip->client->packet.hlen = ip->hw_address.hlen;
192347c08596SBrooks Davis 	ip->client->packet.hops = 0;
192447c08596SBrooks Davis 	ip->client->packet.xid = ip->client->xid;
192547c08596SBrooks Davis 	ip->client->packet.secs = 0; /* Filled in by send_request. */
192647c08596SBrooks Davis 	ip->client->packet.flags = 0;
192747c08596SBrooks Davis 
192847c08596SBrooks Davis 	/* ciaddr must always be zero. */
192947c08596SBrooks Davis 	memset(&ip->client->packet.ciaddr, 0,
193047c08596SBrooks Davis 	    sizeof(ip->client->packet.ciaddr));
193147c08596SBrooks Davis 	memset(&ip->client->packet.yiaddr, 0,
193247c08596SBrooks Davis 	    sizeof(ip->client->packet.yiaddr));
193347c08596SBrooks Davis 	memset(&ip->client->packet.siaddr, 0,
193447c08596SBrooks Davis 	    sizeof(ip->client->packet.siaddr));
193547c08596SBrooks Davis 	memset(&ip->client->packet.giaddr, 0,
193647c08596SBrooks Davis 	    sizeof(ip->client->packet.giaddr));
193747c08596SBrooks Davis 	memcpy(ip->client->packet.chaddr,
193847c08596SBrooks Davis 	    ip->hw_address.haddr, ip->hw_address.hlen);
193947c08596SBrooks Davis }
194047c08596SBrooks Davis 
194147c08596SBrooks Davis void
free_client_lease(struct client_lease * lease)194247c08596SBrooks Davis free_client_lease(struct client_lease *lease)
194347c08596SBrooks Davis {
194447c08596SBrooks Davis 	int i;
194547c08596SBrooks Davis 
194647c08596SBrooks Davis 	if (lease->server_name)
194747c08596SBrooks Davis 		free(lease->server_name);
194847c08596SBrooks Davis 	if (lease->filename)
194947c08596SBrooks Davis 		free(lease->filename);
195047c08596SBrooks Davis 	for (i = 0; i < 256; i++) {
195147c08596SBrooks Davis 		if (lease->options[i].len)
195247c08596SBrooks Davis 			free(lease->options[i].data);
195347c08596SBrooks Davis 	}
195447c08596SBrooks Davis 	free(lease);
195547c08596SBrooks Davis }
195647c08596SBrooks Davis 
195771c6c44dSEitan Adler static FILE *leaseFile;
195847c08596SBrooks Davis 
195947c08596SBrooks Davis void
rewrite_client_leases(void)196047c08596SBrooks Davis rewrite_client_leases(void)
196147c08596SBrooks Davis {
196247c08596SBrooks Davis 	struct client_lease *lp;
19637008be5bSPawel Jakub Dawidek 	cap_rights_t rights;
196447c08596SBrooks Davis 
196547c08596SBrooks Davis 	if (!leaseFile) {
196647c08596SBrooks Davis 		leaseFile = fopen(path_dhclient_db, "w");
196747c08596SBrooks Davis 		if (!leaseFile)
196847c08596SBrooks Davis 			error("can't create %s: %m", path_dhclient_db);
196919342eeeSPatrick Kelsey 		cap_rights_init(&rights, CAP_FCNTL, CAP_FSTAT, CAP_FSYNC,
197019342eeeSPatrick Kelsey 		    CAP_FTRUNCATE, CAP_SEEK, CAP_WRITE);
1971377421dfSMariusz Zaborski 		if (caph_rights_limit(fileno(leaseFile), &rights) < 0) {
1972fe5c7163SPawel Jakub Dawidek 			error("can't limit lease descriptor: %m");
1973fe5c7163SPawel Jakub Dawidek 		}
1974377421dfSMariusz Zaborski 		if (caph_fcntls_limit(fileno(leaseFile), CAP_FCNTL_GETFL) < 0) {
197519342eeeSPatrick Kelsey 			error("can't limit lease descriptor fcntls: %m");
197619342eeeSPatrick Kelsey 		}
197747c08596SBrooks Davis 	} else {
197847c08596SBrooks Davis 		fflush(leaseFile);
197947c08596SBrooks Davis 		rewind(leaseFile);
198047c08596SBrooks Davis 	}
198147c08596SBrooks Davis 
198247c08596SBrooks Davis 	for (lp = ifi->client->leases; lp; lp = lp->next)
198347c08596SBrooks Davis 		write_client_lease(ifi, lp, 1);
198447c08596SBrooks Davis 	if (ifi->client->active)
198547c08596SBrooks Davis 		write_client_lease(ifi, ifi->client->active, 1);
198647c08596SBrooks Davis 
198747c08596SBrooks Davis 	fflush(leaseFile);
198847c08596SBrooks Davis 	ftruncate(fileno(leaseFile), ftello(leaseFile));
198947c08596SBrooks Davis 	fsync(fileno(leaseFile));
199047c08596SBrooks Davis }
199147c08596SBrooks Davis 
199247c08596SBrooks Davis void
write_client_lease(struct interface_info * ip,struct client_lease * lease,int rewrite)199347c08596SBrooks Davis write_client_lease(struct interface_info *ip, struct client_lease *lease,
199447c08596SBrooks Davis     int rewrite)
199547c08596SBrooks Davis {
199647c08596SBrooks Davis 	static int leases_written;
199747c08596SBrooks Davis 	struct tm *t;
199847c08596SBrooks Davis 	int i;
199947c08596SBrooks Davis 
200047c08596SBrooks Davis 	if (!rewrite) {
200147c08596SBrooks Davis 		if (leases_written++ > 20) {
200247c08596SBrooks Davis 			rewrite_client_leases();
200347c08596SBrooks Davis 			leases_written = 0;
200447c08596SBrooks Davis 		}
200547c08596SBrooks Davis 	}
200647c08596SBrooks Davis 
200747c08596SBrooks Davis 	/* If the lease came from the config file, we don't need to stash
200847c08596SBrooks Davis 	   a copy in the lease database. */
200947c08596SBrooks Davis 	if (lease->is_static)
201047c08596SBrooks Davis 		return;
201147c08596SBrooks Davis 
201247c08596SBrooks Davis 	if (!leaseFile) {	/* XXX */
201347c08596SBrooks Davis 		leaseFile = fopen(path_dhclient_db, "w");
201447c08596SBrooks Davis 		if (!leaseFile)
201547c08596SBrooks Davis 			error("can't create %s: %m", path_dhclient_db);
201647c08596SBrooks Davis 	}
201747c08596SBrooks Davis 
201847c08596SBrooks Davis 	fprintf(leaseFile, "lease {\n");
201947c08596SBrooks Davis 	if (lease->is_bootp)
202047c08596SBrooks Davis 		fprintf(leaseFile, "  bootp;\n");
202147c08596SBrooks Davis 	fprintf(leaseFile, "  interface \"%s\";\n", ip->name);
202247c08596SBrooks Davis 	fprintf(leaseFile, "  fixed-address %s;\n", piaddr(lease->address));
2023d32438c3SBruce M Simpson 	if (lease->nextserver.len == sizeof(inaddr_any) &&
2024d32438c3SBruce M Simpson 	    0 != memcmp(lease->nextserver.iabuf, &inaddr_any,
2025d32438c3SBruce M Simpson 	    sizeof(inaddr_any)))
2026d32438c3SBruce M Simpson 		fprintf(leaseFile, "  next-server %s;\n",
2027d32438c3SBruce M Simpson 		    piaddr(lease->nextserver));
202847c08596SBrooks Davis 	if (lease->filename)
202947c08596SBrooks Davis 		fprintf(leaseFile, "  filename \"%s\";\n", lease->filename);
203047c08596SBrooks Davis 	if (lease->server_name)
203147c08596SBrooks Davis 		fprintf(leaseFile, "  server-name \"%s\";\n",
203247c08596SBrooks Davis 		    lease->server_name);
203347c08596SBrooks Davis 	if (lease->medium)
203447c08596SBrooks Davis 		fprintf(leaseFile, "  medium \"%s\";\n", lease->medium->string);
203547c08596SBrooks Davis 	for (i = 0; i < 256; i++)
203647c08596SBrooks Davis 		if (lease->options[i].len)
203747c08596SBrooks Davis 			fprintf(leaseFile, "  option %s %s;\n",
203847c08596SBrooks Davis 			    dhcp_options[i].name,
203947c08596SBrooks Davis 			    pretty_print_option(i, lease->options[i].data,
204047c08596SBrooks Davis 			    lease->options[i].len, 1, 1));
204147c08596SBrooks Davis 
204247c08596SBrooks Davis 	t = gmtime(&lease->renewal);
204347c08596SBrooks Davis 	fprintf(leaseFile, "  renew %d %d/%d/%d %02d:%02d:%02d;\n",
204447c08596SBrooks Davis 	    t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday,
204547c08596SBrooks Davis 	    t->tm_hour, t->tm_min, t->tm_sec);
204647c08596SBrooks Davis 	t = gmtime(&lease->rebind);
204747c08596SBrooks Davis 	fprintf(leaseFile, "  rebind %d %d/%d/%d %02d:%02d:%02d;\n",
204847c08596SBrooks Davis 	    t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday,
204947c08596SBrooks Davis 	    t->tm_hour, t->tm_min, t->tm_sec);
205047c08596SBrooks Davis 	t = gmtime(&lease->expiry);
205147c08596SBrooks Davis 	fprintf(leaseFile, "  expire %d %d/%d/%d %02d:%02d:%02d;\n",
205247c08596SBrooks Davis 	    t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday,
205347c08596SBrooks Davis 	    t->tm_hour, t->tm_min, t->tm_sec);
205447c08596SBrooks Davis 	fprintf(leaseFile, "}\n");
205547c08596SBrooks Davis 	fflush(leaseFile);
205647c08596SBrooks Davis }
205747c08596SBrooks Davis 
205847c08596SBrooks Davis void
script_init(const char * reason,struct string_list * medium)205979a1d195SAlan Somers script_init(const char *reason, struct string_list *medium)
206047c08596SBrooks Davis {
206147c08596SBrooks Davis 	size_t		 len, mediumlen = 0;
206247c08596SBrooks Davis 	struct imsg_hdr	 hdr;
206347c08596SBrooks Davis 	struct buf	*buf;
206447c08596SBrooks Davis 	int		 errs;
206547c08596SBrooks Davis 
206647c08596SBrooks Davis 	if (medium != NULL && medium->string != NULL)
206747c08596SBrooks Davis 		mediumlen = strlen(medium->string);
206847c08596SBrooks Davis 
206947c08596SBrooks Davis 	hdr.code = IMSG_SCRIPT_INIT;
207047c08596SBrooks Davis 	hdr.len = sizeof(struct imsg_hdr) +
207147c08596SBrooks Davis 	    sizeof(size_t) + mediumlen +
207247c08596SBrooks Davis 	    sizeof(size_t) + strlen(reason);
207347c08596SBrooks Davis 
207447c08596SBrooks Davis 	if ((buf = buf_open(hdr.len)) == NULL)
207547c08596SBrooks Davis 		error("buf_open: %m");
207647c08596SBrooks Davis 
207747c08596SBrooks Davis 	errs = 0;
207847c08596SBrooks Davis 	errs += buf_add(buf, &hdr, sizeof(hdr));
207947c08596SBrooks Davis 	errs += buf_add(buf, &mediumlen, sizeof(mediumlen));
208047c08596SBrooks Davis 	if (mediumlen > 0)
208147c08596SBrooks Davis 		errs += buf_add(buf, medium->string, mediumlen);
208247c08596SBrooks Davis 	len = strlen(reason);
208347c08596SBrooks Davis 	errs += buf_add(buf, &len, sizeof(len));
208447c08596SBrooks Davis 	errs += buf_add(buf, reason, len);
208547c08596SBrooks Davis 
208647c08596SBrooks Davis 	if (errs)
208747c08596SBrooks Davis 		error("buf_add: %m");
208847c08596SBrooks Davis 
208947c08596SBrooks Davis 	if (buf_close(privfd, buf) == -1)
209047c08596SBrooks Davis 		error("buf_close: %m");
209147c08596SBrooks Davis }
209247c08596SBrooks Davis 
209347c08596SBrooks Davis void
priv_script_init(const char * reason,char * medium)209479a1d195SAlan Somers priv_script_init(const char *reason, char *medium)
209547c08596SBrooks Davis {
209647c08596SBrooks Davis 	struct interface_info *ip = ifi;
209747c08596SBrooks Davis 
209847c08596SBrooks Davis 	if (ip) {
209947c08596SBrooks Davis 		ip->client->scriptEnvsize = 100;
210047c08596SBrooks Davis 		if (ip->client->scriptEnv == NULL)
210147c08596SBrooks Davis 			ip->client->scriptEnv =
210247c08596SBrooks Davis 			    malloc(ip->client->scriptEnvsize * sizeof(char *));
210347c08596SBrooks Davis 		if (ip->client->scriptEnv == NULL)
210447c08596SBrooks Davis 			error("script_init: no memory for environment");
210547c08596SBrooks Davis 
210647c08596SBrooks Davis 		ip->client->scriptEnv[0] = strdup(CLIENT_PATH);
210747c08596SBrooks Davis 		if (ip->client->scriptEnv[0] == NULL)
210847c08596SBrooks Davis 			error("script_init: no memory for environment");
210947c08596SBrooks Davis 
211047c08596SBrooks Davis 		ip->client->scriptEnv[1] = NULL;
211147c08596SBrooks Davis 
211247c08596SBrooks Davis 		script_set_env(ip->client, "", "interface", ip->name);
211347c08596SBrooks Davis 
211447c08596SBrooks Davis 		if (medium)
211547c08596SBrooks Davis 			script_set_env(ip->client, "", "medium", medium);
211647c08596SBrooks Davis 
211747c08596SBrooks Davis 		script_set_env(ip->client, "", "reason", reason);
211847c08596SBrooks Davis 	}
211947c08596SBrooks Davis }
212047c08596SBrooks Davis 
212147c08596SBrooks Davis void
priv_script_write_params(const char * prefix,struct client_lease * lease)212279a1d195SAlan Somers priv_script_write_params(const char *prefix, struct client_lease *lease)
212347c08596SBrooks Davis {
212447c08596SBrooks Davis 	struct interface_info *ip = ifi;
212540767e22SBrooks Davis 	u_int8_t dbuf[1500], *dp = NULL;
2126afe6f835SAlan Somers 	int i;
2127afe6f835SAlan Somers 	size_t len;
212847c08596SBrooks Davis 	char tbuf[128];
212947c08596SBrooks Davis 
213047c08596SBrooks Davis 	script_set_env(ip->client, prefix, "ip_address",
213147c08596SBrooks Davis 	    piaddr(lease->address));
213247c08596SBrooks Davis 
213340767e22SBrooks Davis 	if (ip->client->config->default_actions[DHO_SUBNET_MASK] ==
213440767e22SBrooks Davis 	    ACTION_SUPERSEDE) {
213540767e22SBrooks Davis 		dp = ip->client->config->defaults[DHO_SUBNET_MASK].data;
213640767e22SBrooks Davis 		len = ip->client->config->defaults[DHO_SUBNET_MASK].len;
213740767e22SBrooks Davis 	} else {
213840767e22SBrooks Davis 		dp = lease->options[DHO_SUBNET_MASK].data;
213940767e22SBrooks Davis 		len = lease->options[DHO_SUBNET_MASK].len;
214040767e22SBrooks Davis 	}
214140767e22SBrooks Davis 	if (len && (len < sizeof(lease->address.iabuf))) {
214247c08596SBrooks Davis 		struct iaddr netmask, subnet, broadcast;
214347c08596SBrooks Davis 
214440767e22SBrooks Davis 		memcpy(netmask.iabuf, dp, len);
214540767e22SBrooks Davis 		netmask.len = len;
214647c08596SBrooks Davis 		subnet = subnet_number(lease->address, netmask);
214747c08596SBrooks Davis 		if (subnet.len) {
214847c08596SBrooks Davis 			script_set_env(ip->client, prefix, "network_number",
214947c08596SBrooks Davis 			    piaddr(subnet));
215047c08596SBrooks Davis 			if (!lease->options[DHO_BROADCAST_ADDRESS].len) {
215147c08596SBrooks Davis 				broadcast = broadcast_addr(subnet, netmask);
215247c08596SBrooks Davis 				if (broadcast.len)
215347c08596SBrooks Davis 					script_set_env(ip->client, prefix,
215447c08596SBrooks Davis 					    "broadcast_address",
215547c08596SBrooks Davis 					    piaddr(broadcast));
215647c08596SBrooks Davis 			}
215747c08596SBrooks Davis 		}
215847c08596SBrooks Davis 	}
215947c08596SBrooks Davis 
216047c08596SBrooks Davis 	if (lease->filename)
216147c08596SBrooks Davis 		script_set_env(ip->client, prefix, "filename", lease->filename);
216247c08596SBrooks Davis 	if (lease->server_name)
216347c08596SBrooks Davis 		script_set_env(ip->client, prefix, "server_name",
216447c08596SBrooks Davis 		    lease->server_name);
216547c08596SBrooks Davis 	for (i = 0; i < 256; i++) {
216640767e22SBrooks Davis 		len = 0;
216747c08596SBrooks Davis 
216847c08596SBrooks Davis 		if (ip->client->config->defaults[i].len) {
216947c08596SBrooks Davis 			if (lease->options[i].len) {
217047c08596SBrooks Davis 				switch (
217147c08596SBrooks Davis 				    ip->client->config->default_actions[i]) {
217247c08596SBrooks Davis 				case ACTION_DEFAULT:
217347c08596SBrooks Davis 					dp = lease->options[i].data;
217447c08596SBrooks Davis 					len = lease->options[i].len;
217547c08596SBrooks Davis 					break;
217647c08596SBrooks Davis 				case ACTION_SUPERSEDE:
217747c08596SBrooks Davis supersede:
217847c08596SBrooks Davis 					dp = ip->client->
217947c08596SBrooks Davis 						config->defaults[i].data;
218047c08596SBrooks Davis 					len = ip->client->
218147c08596SBrooks Davis 						config->defaults[i].len;
218247c08596SBrooks Davis 					break;
218347c08596SBrooks Davis 				case ACTION_PREPEND:
218447c08596SBrooks Davis 					len = ip->client->
218547c08596SBrooks Davis 					    config->defaults[i].len +
218647c08596SBrooks Davis 					    lease->options[i].len;
2187043bcc8dSBrian Somers 					if (len >= sizeof(dbuf)) {
218847c08596SBrooks Davis 						warning("no space to %s %s",
218947c08596SBrooks Davis 						    "prepend option",
219047c08596SBrooks Davis 						    dhcp_options[i].name);
219147c08596SBrooks Davis 						goto supersede;
219247c08596SBrooks Davis 					}
219347c08596SBrooks Davis 					dp = dbuf;
219447c08596SBrooks Davis 					memcpy(dp,
219547c08596SBrooks Davis 						ip->client->
219647c08596SBrooks Davis 						config->defaults[i].data,
219747c08596SBrooks Davis 						ip->client->
219847c08596SBrooks Davis 						config->defaults[i].len);
219947c08596SBrooks Davis 					memcpy(dp + ip->client->
220047c08596SBrooks Davis 						config->defaults[i].len,
220147c08596SBrooks Davis 						lease->options[i].data,
220247c08596SBrooks Davis 						lease->options[i].len);
220347c08596SBrooks Davis 					dp[len] = '\0';
220447c08596SBrooks Davis 					break;
220547c08596SBrooks Davis 				case ACTION_APPEND:
2206043bcc8dSBrian Somers 					/*
2207043bcc8dSBrian Somers 					 * When we append, we assume that we're
2208043bcc8dSBrian Somers 					 * appending to text.  Some MS servers
2209043bcc8dSBrian Somers 					 * include a NUL byte at the end of
2210043bcc8dSBrian Somers 					 * the search string provided.
2211043bcc8dSBrian Somers 					 */
221247c08596SBrooks Davis 					len = ip->client->
221347c08596SBrooks Davis 					    config->defaults[i].len +
221447c08596SBrooks Davis 					    lease->options[i].len;
2215043bcc8dSBrian Somers 					if (len >= sizeof(dbuf)) {
221647c08596SBrooks Davis 						warning("no space to %s %s",
221747c08596SBrooks Davis 						    "append option",
221847c08596SBrooks Davis 						    dhcp_options[i].name);
221947c08596SBrooks Davis 						goto supersede;
222047c08596SBrooks Davis 					}
2221043bcc8dSBrian Somers 					memcpy(dbuf,
222247c08596SBrooks Davis 						lease->options[i].data,
222347c08596SBrooks Davis 						lease->options[i].len);
2224043bcc8dSBrian Somers 					for (dp = dbuf + lease->options[i].len;
2225043bcc8dSBrian Somers 					    dp > dbuf; dp--, len--)
2226043bcc8dSBrian Somers 						if (dp[-1] != '\0')
2227043bcc8dSBrian Somers 							break;
2228043bcc8dSBrian Somers 					memcpy(dp,
222947c08596SBrooks Davis 						ip->client->
223047c08596SBrooks Davis 						config->defaults[i].data,
223147c08596SBrooks Davis 						ip->client->
223247c08596SBrooks Davis 						config->defaults[i].len);
2233043bcc8dSBrian Somers 					dp = dbuf;
223447c08596SBrooks Davis 					dp[len] = '\0';
223547c08596SBrooks Davis 				}
223647c08596SBrooks Davis 			} else {
223747c08596SBrooks Davis 				dp = ip->client->
223847c08596SBrooks Davis 					config->defaults[i].data;
223947c08596SBrooks Davis 				len = ip->client->
224047c08596SBrooks Davis 					config->defaults[i].len;
224147c08596SBrooks Davis 			}
224247c08596SBrooks Davis 		} else if (lease->options[i].len) {
224347c08596SBrooks Davis 			len = lease->options[i].len;
224447c08596SBrooks Davis 			dp = lease->options[i].data;
224547c08596SBrooks Davis 		} else {
224647c08596SBrooks Davis 			len = 0;
224747c08596SBrooks Davis 		}
224847c08596SBrooks Davis 		if (len) {
224947c08596SBrooks Davis 			char name[256];
225047c08596SBrooks Davis 
225147c08596SBrooks Davis 			if (dhcp_option_ev_name(name, sizeof(name),
225247c08596SBrooks Davis 			    &dhcp_options[i]))
225347c08596SBrooks Davis 				script_set_env(ip->client, prefix, name,
225447c08596SBrooks Davis 				    pretty_print_option(i, dp, len, 0, 0));
225547c08596SBrooks Davis 		}
225647c08596SBrooks Davis 	}
225747c08596SBrooks Davis 	snprintf(tbuf, sizeof(tbuf), "%d", (int)lease->expiry);
225847c08596SBrooks Davis 	script_set_env(ip->client, prefix, "expiry", tbuf);
225947c08596SBrooks Davis }
226047c08596SBrooks Davis 
226147c08596SBrooks Davis void
script_write_params(const char * prefix,struct client_lease * lease)226279a1d195SAlan Somers script_write_params(const char *prefix, struct client_lease *lease)
226347c08596SBrooks Davis {
226447c08596SBrooks Davis 	size_t		 fn_len = 0, sn_len = 0, pr_len = 0;
226547c08596SBrooks Davis 	struct imsg_hdr	 hdr;
226647c08596SBrooks Davis 	struct buf	*buf;
226747c08596SBrooks Davis 	int		 errs, i;
226847c08596SBrooks Davis 
226947c08596SBrooks Davis 	if (lease->filename != NULL)
227047c08596SBrooks Davis 		fn_len = strlen(lease->filename);
227147c08596SBrooks Davis 	if (lease->server_name != NULL)
227247c08596SBrooks Davis 		sn_len = strlen(lease->server_name);
227347c08596SBrooks Davis 	if (prefix != NULL)
227447c08596SBrooks Davis 		pr_len = strlen(prefix);
227547c08596SBrooks Davis 
227647c08596SBrooks Davis 	hdr.code = IMSG_SCRIPT_WRITE_PARAMS;
2277afe6f835SAlan Somers 	hdr.len = sizeof(hdr) + sizeof(*lease) +
2278afe6f835SAlan Somers 	    sizeof(fn_len) + fn_len + sizeof(sn_len) + sn_len +
2279afe6f835SAlan Somers 	    sizeof(pr_len) + pr_len;
228047c08596SBrooks Davis 
2281afe6f835SAlan Somers 	for (i = 0; i < 256; i++) {
2282afe6f835SAlan Somers 		hdr.len += sizeof(lease->options[i].len);
2283afe6f835SAlan Somers 		hdr.len += lease->options[i].len;
2284afe6f835SAlan Somers 	}
228547c08596SBrooks Davis 
228647c08596SBrooks Davis 	scripttime = time(NULL);
228747c08596SBrooks Davis 
228847c08596SBrooks Davis 	if ((buf = buf_open(hdr.len)) == NULL)
228947c08596SBrooks Davis 		error("buf_open: %m");
229047c08596SBrooks Davis 
229147c08596SBrooks Davis 	errs = 0;
229247c08596SBrooks Davis 	errs += buf_add(buf, &hdr, sizeof(hdr));
2293afe6f835SAlan Somers 	errs += buf_add(buf, lease, sizeof(*lease));
229447c08596SBrooks Davis 	errs += buf_add(buf, &fn_len, sizeof(fn_len));
229547c08596SBrooks Davis 	errs += buf_add(buf, lease->filename, fn_len);
229647c08596SBrooks Davis 	errs += buf_add(buf, &sn_len, sizeof(sn_len));
229747c08596SBrooks Davis 	errs += buf_add(buf, lease->server_name, sn_len);
229847c08596SBrooks Davis 	errs += buf_add(buf, &pr_len, sizeof(pr_len));
229947c08596SBrooks Davis 	errs += buf_add(buf, prefix, pr_len);
230047c08596SBrooks Davis 
230147c08596SBrooks Davis 	for (i = 0; i < 256; i++) {
230247c08596SBrooks Davis 		errs += buf_add(buf, &lease->options[i].len,
230347c08596SBrooks Davis 		    sizeof(lease->options[i].len));
230447c08596SBrooks Davis 		errs += buf_add(buf, lease->options[i].data,
230547c08596SBrooks Davis 		    lease->options[i].len);
230647c08596SBrooks Davis 	}
230747c08596SBrooks Davis 
230847c08596SBrooks Davis 	if (errs)
230947c08596SBrooks Davis 		error("buf_add: %m");
231047c08596SBrooks Davis 
231147c08596SBrooks Davis 	if (buf_close(privfd, buf) == -1)
231247c08596SBrooks Davis 		error("buf_close: %m");
231347c08596SBrooks Davis }
231447c08596SBrooks Davis 
231547c08596SBrooks Davis int
script_go(void)231647c08596SBrooks Davis script_go(void)
231747c08596SBrooks Davis {
231847c08596SBrooks Davis 	struct imsg_hdr	 hdr;
231947c08596SBrooks Davis 	struct buf	*buf;
232047c08596SBrooks Davis 	int		 ret;
232147c08596SBrooks Davis 
232247c08596SBrooks Davis 	hdr.code = IMSG_SCRIPT_GO;
232347c08596SBrooks Davis 	hdr.len = sizeof(struct imsg_hdr);
232447c08596SBrooks Davis 
232547c08596SBrooks Davis 	if ((buf = buf_open(hdr.len)) == NULL)
232647c08596SBrooks Davis 		error("buf_open: %m");
232747c08596SBrooks Davis 
232847c08596SBrooks Davis 	if (buf_add(buf, &hdr, sizeof(hdr)))
232947c08596SBrooks Davis 		error("buf_add: %m");
233047c08596SBrooks Davis 
233147c08596SBrooks Davis 	if (buf_close(privfd, buf) == -1)
233247c08596SBrooks Davis 		error("buf_close: %m");
233347c08596SBrooks Davis 
233447c08596SBrooks Davis 	bzero(&hdr, sizeof(hdr));
233547c08596SBrooks Davis 	buf_read(privfd, &hdr, sizeof(hdr));
233647c08596SBrooks Davis 	if (hdr.code != IMSG_SCRIPT_GO_RET)
233747c08596SBrooks Davis 		error("unexpected msg type %u", hdr.code);
233847c08596SBrooks Davis 	if (hdr.len != sizeof(hdr) + sizeof(int))
233947c08596SBrooks Davis 		error("received corrupted message");
234047c08596SBrooks Davis 	buf_read(privfd, &ret, sizeof(ret));
234147c08596SBrooks Davis 
23426964abefSBrian Somers 	scripttime = time(NULL);
23436964abefSBrian Somers 
234447c08596SBrooks Davis 	return (ret);
234547c08596SBrooks Davis }
234647c08596SBrooks Davis 
234747c08596SBrooks Davis int
priv_script_go(void)234847c08596SBrooks Davis priv_script_go(void)
234947c08596SBrooks Davis {
235047c08596SBrooks Davis 	char *scriptName, *argv[2], **envp, *epp[3], reason[] = "REASON=NBI";
235147c08596SBrooks Davis 	static char client_path[] = CLIENT_PATH;
235247c08596SBrooks Davis 	struct interface_info *ip = ifi;
235347c08596SBrooks Davis 	int pid, wpid, wstatus;
235447c08596SBrooks Davis 
235547c08596SBrooks Davis 	scripttime = time(NULL);
235647c08596SBrooks Davis 
235747c08596SBrooks Davis 	if (ip) {
235847c08596SBrooks Davis 		scriptName = ip->client->config->script_name;
235947c08596SBrooks Davis 		envp = ip->client->scriptEnv;
236047c08596SBrooks Davis 	} else {
236147c08596SBrooks Davis 		scriptName = top_level_config.script_name;
236247c08596SBrooks Davis 		epp[0] = reason;
236347c08596SBrooks Davis 		epp[1] = client_path;
236447c08596SBrooks Davis 		epp[2] = NULL;
236547c08596SBrooks Davis 		envp = epp;
236647c08596SBrooks Davis 	}
236747c08596SBrooks Davis 
236847c08596SBrooks Davis 	argv[0] = scriptName;
236947c08596SBrooks Davis 	argv[1] = NULL;
237047c08596SBrooks Davis 
237147c08596SBrooks Davis 	pid = fork();
237247c08596SBrooks Davis 	if (pid < 0) {
237347c08596SBrooks Davis 		error("fork: %m");
237447c08596SBrooks Davis 		wstatus = 0;
237547c08596SBrooks Davis 	} else if (pid) {
237647c08596SBrooks Davis 		do {
237747c08596SBrooks Davis 			wpid = wait(&wstatus);
237847c08596SBrooks Davis 		} while (wpid != pid && wpid > 0);
237947c08596SBrooks Davis 		if (wpid < 0) {
238047c08596SBrooks Davis 			error("wait: %m");
238147c08596SBrooks Davis 			wstatus = 0;
238247c08596SBrooks Davis 		}
238347c08596SBrooks Davis 	} else {
238447c08596SBrooks Davis 		execve(scriptName, argv, envp);
238547c08596SBrooks Davis 		error("execve (%s, ...): %m", scriptName);
238647c08596SBrooks Davis 	}
238747c08596SBrooks Davis 
238847c08596SBrooks Davis 	if (ip)
238947c08596SBrooks Davis 		script_flush_env(ip->client);
239047c08596SBrooks Davis 
23913b08e0fcSJilles Tjoelker 	return (WIFEXITED(wstatus) ?
23923b08e0fcSJilles Tjoelker 	    WEXITSTATUS(wstatus) : 128 + WTERMSIG(wstatus));
239347c08596SBrooks Davis }
239447c08596SBrooks Davis 
239547c08596SBrooks Davis void
script_set_env(struct client_state * client,const char * prefix,const char * name,const char * value)239647c08596SBrooks Davis script_set_env(struct client_state *client, const char *prefix,
239747c08596SBrooks Davis     const char *name, const char *value)
239847c08596SBrooks Davis {
2399afe6f835SAlan Somers 	int i, namelen;
2400afe6f835SAlan Somers 	size_t j;
240147c08596SBrooks Davis 
2402dd09ce39SSepherosa Ziehau 	/* No `` or $() command substitution allowed in environment values! */
2403dd09ce39SSepherosa Ziehau 	for (j=0; j < strlen(value); j++)
2404dd09ce39SSepherosa Ziehau 		switch (value[j]) {
2405dd09ce39SSepherosa Ziehau 		case '`':
2406dd09ce39SSepherosa Ziehau 		case '$':
2407dd09ce39SSepherosa Ziehau 			warning("illegal character (%c) in value '%s'",
2408dd09ce39SSepherosa Ziehau 			    value[j], value);
2409dd09ce39SSepherosa Ziehau 			/* Ignore this option */
2410dd09ce39SSepherosa Ziehau 			return;
2411dd09ce39SSepherosa Ziehau 		}
2412dd09ce39SSepherosa Ziehau 
241347c08596SBrooks Davis 	namelen = strlen(name);
241447c08596SBrooks Davis 
241547c08596SBrooks Davis 	for (i = 0; client->scriptEnv[i]; i++)
241647c08596SBrooks Davis 		if (strncmp(client->scriptEnv[i], name, namelen) == 0 &&
241747c08596SBrooks Davis 		    client->scriptEnv[i][namelen] == '=')
241847c08596SBrooks Davis 			break;
241947c08596SBrooks Davis 
242047c08596SBrooks Davis 	if (client->scriptEnv[i])
242147c08596SBrooks Davis 		/* Reuse the slot. */
242247c08596SBrooks Davis 		free(client->scriptEnv[i]);
242347c08596SBrooks Davis 	else {
242447c08596SBrooks Davis 		/* New variable.  Expand if necessary. */
242547c08596SBrooks Davis 		if (i >= client->scriptEnvsize - 1) {
242647c08596SBrooks Davis 			char **newscriptEnv;
242747c08596SBrooks Davis 			int newscriptEnvsize = client->scriptEnvsize + 50;
242847c08596SBrooks Davis 
242947c08596SBrooks Davis 			newscriptEnv = realloc(client->scriptEnv,
243047c08596SBrooks Davis 			    newscriptEnvsize);
243147c08596SBrooks Davis 			if (newscriptEnv == NULL) {
243247c08596SBrooks Davis 				free(client->scriptEnv);
243347c08596SBrooks Davis 				client->scriptEnv = NULL;
243447c08596SBrooks Davis 				client->scriptEnvsize = 0;
243547c08596SBrooks Davis 				error("script_set_env: no memory for variable");
243647c08596SBrooks Davis 			}
243747c08596SBrooks Davis 			client->scriptEnv = newscriptEnv;
243847c08596SBrooks Davis 			client->scriptEnvsize = newscriptEnvsize;
243947c08596SBrooks Davis 		}
244047c08596SBrooks Davis 		/* need to set the NULL pointer at end of array beyond
244147c08596SBrooks Davis 		   the new slot. */
244247c08596SBrooks Davis 		client->scriptEnv[i + 1] = NULL;
244347c08596SBrooks Davis 	}
244447c08596SBrooks Davis 	/* Allocate space and format the variable in the appropriate slot. */
244547c08596SBrooks Davis 	client->scriptEnv[i] = malloc(strlen(prefix) + strlen(name) + 1 +
244647c08596SBrooks Davis 	    strlen(value) + 1);
244747c08596SBrooks Davis 	if (client->scriptEnv[i] == NULL)
244847c08596SBrooks Davis 		error("script_set_env: no memory for variable assignment");
244947c08596SBrooks Davis 	snprintf(client->scriptEnv[i], strlen(prefix) + strlen(name) +
245047c08596SBrooks Davis 	    1 + strlen(value) + 1, "%s%s=%s", prefix, name, value);
245147c08596SBrooks Davis }
245247c08596SBrooks Davis 
245347c08596SBrooks Davis void
script_flush_env(struct client_state * client)245447c08596SBrooks Davis script_flush_env(struct client_state *client)
245547c08596SBrooks Davis {
245647c08596SBrooks Davis 	int i;
245747c08596SBrooks Davis 
245847c08596SBrooks Davis 	for (i = 0; client->scriptEnv[i]; i++) {
245947c08596SBrooks Davis 		free(client->scriptEnv[i]);
246047c08596SBrooks Davis 		client->scriptEnv[i] = NULL;
246147c08596SBrooks Davis 	}
246247c08596SBrooks Davis 	client->scriptEnvsize = 0;
246347c08596SBrooks Davis }
246447c08596SBrooks Davis 
246547c08596SBrooks Davis int
dhcp_option_ev_name(char * buf,size_t buflen,struct option * option)246647c08596SBrooks Davis dhcp_option_ev_name(char *buf, size_t buflen, struct option *option)
246747c08596SBrooks Davis {
2468afe6f835SAlan Somers 	size_t i;
246947c08596SBrooks Davis 
247047c08596SBrooks Davis 	for (i = 0; option->name[i]; i++) {
247147c08596SBrooks Davis 		if (i + 1 == buflen)
247247c08596SBrooks Davis 			return 0;
247347c08596SBrooks Davis 		if (option->name[i] == '-')
247447c08596SBrooks Davis 			buf[i] = '_';
247547c08596SBrooks Davis 		else
247647c08596SBrooks Davis 			buf[i] = option->name[i];
247747c08596SBrooks Davis 	}
247847c08596SBrooks Davis 
247947c08596SBrooks Davis 	buf[i] = 0;
248047c08596SBrooks Davis 	return 1;
248147c08596SBrooks Davis }
248247c08596SBrooks Davis 
248347c08596SBrooks Davis void
go_daemon(void)248447c08596SBrooks Davis go_daemon(void)
248547c08596SBrooks Davis {
248647c08596SBrooks Davis 	static int state = 0;
24877008be5bSPawel Jakub Dawidek 	cap_rights_t rights;
248847c08596SBrooks Davis 
248947c08596SBrooks Davis 	if (no_daemon || state)
249047c08596SBrooks Davis 		return;
249147c08596SBrooks Davis 
249247c08596SBrooks Davis 	state = 1;
249347c08596SBrooks Davis 
249447c08596SBrooks Davis 	/* Stop logging to stderr... */
249547c08596SBrooks Davis 	log_perror = 0;
249647c08596SBrooks Davis 
249731698405SMariusz Zaborski 	if (daemonfd(-1, nullfd) == -1)
249847c08596SBrooks Davis 		error("daemon");
249947c08596SBrooks Davis 
25007008be5bSPawel Jakub Dawidek 	cap_rights_init(&rights);
25017008be5bSPawel Jakub Dawidek 
2502377421dfSMariusz Zaborski 	if (pidfile != NULL) {
250323f39c90SDag-Erling Smørgrav 		pidfile_write(pidfile);
250423f39c90SDag-Erling Smørgrav 
2505377421dfSMariusz Zaborski 		if (caph_rights_limit(pidfile_fileno(pidfile), &rights) < 0)
2506377421dfSMariusz Zaborski 			error("can't limit pidfile descriptor: %m");
2507377421dfSMariusz Zaborski 	}
2508377421dfSMariusz Zaborski 
250947c08596SBrooks Davis 	if (nullfd != -1) {
251047c08596SBrooks Davis 		close(nullfd);
251147c08596SBrooks Davis 		nullfd = -1;
251247c08596SBrooks Davis 	}
2513a6f38228SPawel Jakub Dawidek 
2514377421dfSMariusz Zaborski 	if (caph_rights_limit(STDIN_FILENO, &rights) < 0)
2515a6f38228SPawel Jakub Dawidek 		error("can't limit stdin: %m");
25167008be5bSPawel Jakub Dawidek 	cap_rights_init(&rights, CAP_WRITE);
2517377421dfSMariusz Zaborski 	if (caph_rights_limit(STDOUT_FILENO, &rights) < 0)
2518a6f38228SPawel Jakub Dawidek 		error("can't limit stdout: %m");
2519377421dfSMariusz Zaborski 	if (caph_rights_limit(STDERR_FILENO, &rights) < 0)
2520a6f38228SPawel Jakub Dawidek 		error("can't limit stderr: %m");
252147c08596SBrooks Davis }
252247c08596SBrooks Davis 
252347c08596SBrooks Davis int
check_option(struct client_lease * l,int option)252447c08596SBrooks Davis check_option(struct client_lease *l, int option)
252547c08596SBrooks Davis {
252679a1d195SAlan Somers 	const char *opbuf;
252779a1d195SAlan Somers 	const char *sbuf;
252847c08596SBrooks Davis 
252947c08596SBrooks Davis 	/* we use this, since this is what gets passed to dhclient-script */
253047c08596SBrooks Davis 
253147c08596SBrooks Davis 	opbuf = pretty_print_option(option, l->options[option].data,
253247c08596SBrooks Davis 	    l->options[option].len, 0, 0);
253347c08596SBrooks Davis 
253447c08596SBrooks Davis 	sbuf = option_as_string(option, l->options[option].data,
253547c08596SBrooks Davis 	    l->options[option].len);
253647c08596SBrooks Davis 
253747c08596SBrooks Davis 	switch (option) {
253847c08596SBrooks Davis 	case DHO_SUBNET_MASK:
253947c08596SBrooks Davis 	case DHO_TIME_SERVERS:
254047c08596SBrooks Davis 	case DHO_NAME_SERVERS:
254147c08596SBrooks Davis 	case DHO_ROUTERS:
254247c08596SBrooks Davis 	case DHO_DOMAIN_NAME_SERVERS:
254347c08596SBrooks Davis 	case DHO_LOG_SERVERS:
254447c08596SBrooks Davis 	case DHO_COOKIE_SERVERS:
254547c08596SBrooks Davis 	case DHO_LPR_SERVERS:
254647c08596SBrooks Davis 	case DHO_IMPRESS_SERVERS:
254747c08596SBrooks Davis 	case DHO_RESOURCE_LOCATION_SERVERS:
254847c08596SBrooks Davis 	case DHO_SWAP_SERVER:
254947c08596SBrooks Davis 	case DHO_BROADCAST_ADDRESS:
255047c08596SBrooks Davis 	case DHO_NIS_SERVERS:
255147c08596SBrooks Davis 	case DHO_NTP_SERVERS:
255247c08596SBrooks Davis 	case DHO_NETBIOS_NAME_SERVERS:
255347c08596SBrooks Davis 	case DHO_NETBIOS_DD_SERVER:
255447c08596SBrooks Davis 	case DHO_FONT_SERVERS:
255547c08596SBrooks Davis 	case DHO_DHCP_SERVER_IDENTIFIER:
255638e755fdSBrooks Davis 	case DHO_NISPLUS_SERVERS:
255738e755fdSBrooks Davis 	case DHO_MOBILE_IP_HOME_AGENT:
2558a36c0b6bSBrooks Davis 	case DHO_SMTP_SERVER:
2559a36c0b6bSBrooks Davis 	case DHO_POP_SERVER:
2560a36c0b6bSBrooks Davis 	case DHO_NNTP_SERVER:
2561a36c0b6bSBrooks Davis 	case DHO_WWW_SERVER:
2562a36c0b6bSBrooks Davis 	case DHO_FINGER_SERVER:
2563a36c0b6bSBrooks Davis 	case DHO_IRC_SERVER:
256438e755fdSBrooks Davis 	case DHO_STREETTALK_SERVER:
256538e755fdSBrooks Davis 	case DHO_STREETTALK_DA_SERVER:
256647c08596SBrooks Davis 		if (!ipv4addrs(opbuf)) {
256747c08596SBrooks Davis 			warning("Invalid IP address in option: %s", opbuf);
256847c08596SBrooks Davis 			return (0);
256947c08596SBrooks Davis 		}
257047c08596SBrooks Davis 		return (1)  ;
257147c08596SBrooks Davis 	case DHO_HOST_NAME:
257247c08596SBrooks Davis 	case DHO_NIS_DOMAIN:
257338e755fdSBrooks Davis 	case DHO_NISPLUS_DOMAIN:
257438e755fdSBrooks Davis 	case DHO_TFTP_SERVER_NAME:
257547c08596SBrooks Davis 		if (!res_hnok(sbuf)) {
257647c08596SBrooks Davis 			warning("Bogus Host Name option %d: %s (%s)", option,
257747c08596SBrooks Davis 			    sbuf, opbuf);
257882dbbc41SBrooks Davis 			l->options[option].len = 0;
257982dbbc41SBrooks Davis 			free(l->options[option].data);
258047c08596SBrooks Davis 		}
258147c08596SBrooks Davis 		return (1);
2582b388f1cbSBrooks Davis 	case DHO_DOMAIN_NAME:
2583409139f0SJean-Sébastien Pédron 	case DHO_DOMAIN_SEARCH:
2584f954ec0bSBrooks Davis 		if (!res_hnok(sbuf)) {
2585f954ec0bSBrooks Davis 			if (!check_search(sbuf)) {
2586f954ec0bSBrooks Davis 				warning("Bogus domain search list %d: %s (%s)",
2587f954ec0bSBrooks Davis 				    option, sbuf, opbuf);
258882dbbc41SBrooks Davis 				l->options[option].len = 0;
258982dbbc41SBrooks Davis 				free(l->options[option].data);
2590f954ec0bSBrooks Davis 			}
2591f954ec0bSBrooks Davis 		}
2592f954ec0bSBrooks Davis 		return (1);
259347c08596SBrooks Davis 	case DHO_PAD:
259447c08596SBrooks Davis 	case DHO_TIME_OFFSET:
259547c08596SBrooks Davis 	case DHO_BOOT_SIZE:
259647c08596SBrooks Davis 	case DHO_MERIT_DUMP:
259747c08596SBrooks Davis 	case DHO_ROOT_PATH:
259847c08596SBrooks Davis 	case DHO_EXTENSIONS_PATH:
259947c08596SBrooks Davis 	case DHO_IP_FORWARDING:
260047c08596SBrooks Davis 	case DHO_NON_LOCAL_SOURCE_ROUTING:
260147c08596SBrooks Davis 	case DHO_POLICY_FILTER:
260247c08596SBrooks Davis 	case DHO_MAX_DGRAM_REASSEMBLY:
260347c08596SBrooks Davis 	case DHO_DEFAULT_IP_TTL:
260447c08596SBrooks Davis 	case DHO_PATH_MTU_AGING_TIMEOUT:
260547c08596SBrooks Davis 	case DHO_PATH_MTU_PLATEAU_TABLE:
260647c08596SBrooks Davis 	case DHO_INTERFACE_MTU:
260747c08596SBrooks Davis 	case DHO_ALL_SUBNETS_LOCAL:
260847c08596SBrooks Davis 	case DHO_PERFORM_MASK_DISCOVERY:
260947c08596SBrooks Davis 	case DHO_MASK_SUPPLIER:
261047c08596SBrooks Davis 	case DHO_ROUTER_DISCOVERY:
261147c08596SBrooks Davis 	case DHO_ROUTER_SOLICITATION_ADDRESS:
261247c08596SBrooks Davis 	case DHO_STATIC_ROUTES:
261347c08596SBrooks Davis 	case DHO_TRAILER_ENCAPSULATION:
261447c08596SBrooks Davis 	case DHO_ARP_CACHE_TIMEOUT:
261547c08596SBrooks Davis 	case DHO_IEEE802_3_ENCAPSULATION:
261647c08596SBrooks Davis 	case DHO_DEFAULT_TCP_TTL:
261747c08596SBrooks Davis 	case DHO_TCP_KEEPALIVE_INTERVAL:
261847c08596SBrooks Davis 	case DHO_TCP_KEEPALIVE_GARBAGE:
261947c08596SBrooks Davis 	case DHO_VENDOR_ENCAPSULATED_OPTIONS:
262047c08596SBrooks Davis 	case DHO_NETBIOS_NODE_TYPE:
262147c08596SBrooks Davis 	case DHO_NETBIOS_SCOPE:
262247c08596SBrooks Davis 	case DHO_X_DISPLAY_MANAGER:
262347c08596SBrooks Davis 	case DHO_DHCP_REQUESTED_ADDRESS:
262447c08596SBrooks Davis 	case DHO_DHCP_LEASE_TIME:
262547c08596SBrooks Davis 	case DHO_DHCP_OPTION_OVERLOAD:
262647c08596SBrooks Davis 	case DHO_DHCP_MESSAGE_TYPE:
262747c08596SBrooks Davis 	case DHO_DHCP_PARAMETER_REQUEST_LIST:
262847c08596SBrooks Davis 	case DHO_DHCP_MESSAGE:
262947c08596SBrooks Davis 	case DHO_DHCP_MAX_MESSAGE_SIZE:
263047c08596SBrooks Davis 	case DHO_DHCP_RENEWAL_TIME:
263147c08596SBrooks Davis 	case DHO_DHCP_REBINDING_TIME:
263247c08596SBrooks Davis 	case DHO_DHCP_CLASS_IDENTIFIER:
263347c08596SBrooks Davis 	case DHO_DHCP_CLIENT_IDENTIFIER:
263438e755fdSBrooks Davis 	case DHO_BOOTFILE_NAME:
263547c08596SBrooks Davis 	case DHO_DHCP_USER_CLASS_ID:
2636130cfcf3SDave Cottlehuber 	case DHO_URL:
2637ac6dc5cdSYuichiro NAITO 	case DHO_SIP_SERVERS:
263838c63b52SMichael Osipov 	case DHO_V_I_VENDOR_CLASS:
263938c63b52SMichael Osipov 	case DHO_V_I_VENDOR_OPTS:
264047c08596SBrooks Davis 	case DHO_END:
264147c08596SBrooks Davis 		return (1);
26422fcc7370SEd Maste 	case DHO_CLASSLESS_ROUTES:
26432fcc7370SEd Maste 		return (check_classless_option(l->options[option].data,
26442fcc7370SEd Maste 		    l->options[option].len));
264547c08596SBrooks Davis 	default:
264647c08596SBrooks Davis 		warning("unknown dhcp option value 0x%x", option);
264747c08596SBrooks Davis 		return (unknown_ok);
264847c08596SBrooks Davis 	}
264947c08596SBrooks Davis }
265047c08596SBrooks Davis 
26512fcc7370SEd Maste /* RFC 3442 The Classless Static Routes option checks */
26522fcc7370SEd Maste int
check_classless_option(unsigned char * data,int len)26532fcc7370SEd Maste check_classless_option(unsigned char *data, int len)
26542fcc7370SEd Maste {
26552fcc7370SEd Maste 	int i = 0;
26562fcc7370SEd Maste 	unsigned char width;
26572fcc7370SEd Maste 	in_addr_t addr, mask;
26582fcc7370SEd Maste 
26592fcc7370SEd Maste 	if (len < 5) {
26602fcc7370SEd Maste 		warning("Too small length: %d", len);
26612fcc7370SEd Maste 		return (0);
26622fcc7370SEd Maste 	}
26632fcc7370SEd Maste 	while(i < len) {
26642fcc7370SEd Maste 		width = data[i++];
26652fcc7370SEd Maste 		if (width == 0) {
26662fcc7370SEd Maste 			i += 4;
26672fcc7370SEd Maste 			continue;
26682fcc7370SEd Maste 		} else if (width < 9) {
26692fcc7370SEd Maste 			addr =  (in_addr_t)(data[i]	<< 24);
26702fcc7370SEd Maste 			i += 1;
26712fcc7370SEd Maste 		} else if (width < 17) {
26722fcc7370SEd Maste 			addr =  (in_addr_t)(data[i]	<< 24) +
26732fcc7370SEd Maste 				(in_addr_t)(data[i + 1]	<< 16);
26742fcc7370SEd Maste 			i += 2;
26752fcc7370SEd Maste 		} else if (width < 25) {
26762fcc7370SEd Maste 			addr =  (in_addr_t)(data[i]	<< 24) +
26772fcc7370SEd Maste 				(in_addr_t)(data[i + 1]	<< 16) +
26782fcc7370SEd Maste 				(in_addr_t)(data[i + 2]	<< 8);
26792fcc7370SEd Maste 			i += 3;
26802fcc7370SEd Maste 		} else if (width < 33) {
26812fcc7370SEd Maste 			addr =  (in_addr_t)(data[i]	<< 24) +
26822fcc7370SEd Maste 				(in_addr_t)(data[i + 1]	<< 16) +
26832fcc7370SEd Maste 				(in_addr_t)(data[i + 2]	<< 8)  +
26842fcc7370SEd Maste 				data[i + 3];
26852fcc7370SEd Maste 			i += 4;
26862fcc7370SEd Maste 		} else {
26872fcc7370SEd Maste 			warning("Incorrect subnet width: %d", width);
26882fcc7370SEd Maste 			return (0);
26892fcc7370SEd Maste 		}
26902fcc7370SEd Maste 		mask = (in_addr_t)(~0) << (32 - width);
26912fcc7370SEd Maste 		addr = ntohl(addr);
26922fcc7370SEd Maste 		mask = ntohl(mask);
26932fcc7370SEd Maste 
26942fcc7370SEd Maste 		/*
26952fcc7370SEd Maste 		 * From RFC 3442:
26962fcc7370SEd Maste 		 * ... After deriving a subnet number and subnet mask
26972fcc7370SEd Maste 		 * from each destination descriptor, the DHCP client
26982fcc7370SEd Maste 		 * MUST zero any bits in the subnet number where the
26992fcc7370SEd Maste 		 * corresponding bit in the mask is zero...
27002fcc7370SEd Maste 		 */
27012fcc7370SEd Maste 		if ((addr & mask) != addr) {
27022fcc7370SEd Maste 			addr &= mask;
27032fcc7370SEd Maste 			data[i - 1] = (unsigned char)(
27042fcc7370SEd Maste 				(addr >> (((32 - width)/8)*8)) & 0xFF);
27052fcc7370SEd Maste 		}
27062fcc7370SEd Maste 		i += 4;
27072fcc7370SEd Maste 	}
27082fcc7370SEd Maste 	if (i > len) {
27092fcc7370SEd Maste 		warning("Incorrect data length: %d (must be %d)", len, i);
27102fcc7370SEd Maste 		return (0);
27112fcc7370SEd Maste 	}
27122fcc7370SEd Maste 	return (1);
27132fcc7370SEd Maste }
27142fcc7370SEd Maste 
271547c08596SBrooks Davis int
res_hnok(const char * dn)271647c08596SBrooks Davis res_hnok(const char *dn)
271747c08596SBrooks Davis {
271847c08596SBrooks Davis 	int pch = PERIOD, ch = *dn++;
271947c08596SBrooks Davis 
272047c08596SBrooks Davis 	while (ch != '\0') {
272147c08596SBrooks Davis 		int nch = *dn++;
272247c08596SBrooks Davis 
272347c08596SBrooks Davis 		if (periodchar(ch)) {
272447c08596SBrooks Davis 			;
272547c08596SBrooks Davis 		} else if (periodchar(pch)) {
272647c08596SBrooks Davis 			if (!borderchar(ch))
272747c08596SBrooks Davis 				return (0);
272847c08596SBrooks Davis 		} else if (periodchar(nch) || nch == '\0') {
272947c08596SBrooks Davis 			if (!borderchar(ch))
273047c08596SBrooks Davis 				return (0);
273147c08596SBrooks Davis 		} else {
273247c08596SBrooks Davis 			if (!middlechar(ch))
273347c08596SBrooks Davis 				return (0);
273447c08596SBrooks Davis 		}
273547c08596SBrooks Davis 		pch = ch, ch = nch;
273647c08596SBrooks Davis 	}
273747c08596SBrooks Davis 	return (1);
273847c08596SBrooks Davis }
273947c08596SBrooks Davis 
2740f954ec0bSBrooks Davis int
check_search(const char * srch)2741f954ec0bSBrooks Davis check_search(const char *srch)
2742f954ec0bSBrooks Davis {
2743f954ec0bSBrooks Davis         int pch = PERIOD, ch = *srch++;
2744f954ec0bSBrooks Davis 	int domains = 1;
2745f954ec0bSBrooks Davis 
2746f954ec0bSBrooks Davis 	/* 256 char limit re resolv.conf(5) */
2747f954ec0bSBrooks Davis 	if (strlen(srch) > 256)
2748f954ec0bSBrooks Davis 		return (0);
2749f954ec0bSBrooks Davis 
2750f954ec0bSBrooks Davis 	while (whitechar(ch))
2751f954ec0bSBrooks Davis 		ch = *srch++;
2752f954ec0bSBrooks Davis 
2753f954ec0bSBrooks Davis         while (ch != '\0') {
2754f954ec0bSBrooks Davis                 int nch = *srch++;
2755f954ec0bSBrooks Davis 
2756f954ec0bSBrooks Davis                 if (periodchar(ch) || whitechar(ch)) {
2757f954ec0bSBrooks Davis                         ;
2758f954ec0bSBrooks Davis                 } else if (periodchar(pch)) {
2759f954ec0bSBrooks Davis                         if (!borderchar(ch))
2760f954ec0bSBrooks Davis                                 return (0);
2761f954ec0bSBrooks Davis                 } else if (periodchar(nch) || nch == '\0') {
2762f954ec0bSBrooks Davis                         if (!borderchar(ch))
2763f954ec0bSBrooks Davis                                 return (0);
2764f954ec0bSBrooks Davis                 } else {
2765f954ec0bSBrooks Davis                         if (!middlechar(ch))
2766f954ec0bSBrooks Davis                                 return (0);
2767f954ec0bSBrooks Davis                 }
2768f954ec0bSBrooks Davis 		if (!whitechar(ch)) {
2769f954ec0bSBrooks Davis 			pch = ch;
2770f954ec0bSBrooks Davis 		} else {
2771f954ec0bSBrooks Davis 			while (whitechar(nch)) {
2772f954ec0bSBrooks Davis 				nch = *srch++;
2773f954ec0bSBrooks Davis 			}
2774f954ec0bSBrooks Davis 			if (nch != '\0')
2775f954ec0bSBrooks Davis 				domains++;
2776f954ec0bSBrooks Davis 			pch = PERIOD;
2777f954ec0bSBrooks Davis 		}
2778f954ec0bSBrooks Davis 		ch = nch;
2779f954ec0bSBrooks Davis         }
2780f954ec0bSBrooks Davis 	/* 6 domain limit re resolv.conf(5) */
2781f954ec0bSBrooks Davis 	if (domains > 6)
2782f954ec0bSBrooks Davis 		return (0);
2783f954ec0bSBrooks Davis         return (1);
2784f954ec0bSBrooks Davis }
2785f954ec0bSBrooks Davis 
278647c08596SBrooks Davis /* Does buf consist only of dotted decimal ipv4 addrs?
278747c08596SBrooks Davis  * return how many if so,
278847c08596SBrooks Davis  * otherwise, return 0
278947c08596SBrooks Davis  */
279047c08596SBrooks Davis int
ipv4addrs(const char * buf)279179a1d195SAlan Somers ipv4addrs(const char * buf)
279247c08596SBrooks Davis {
279347c08596SBrooks Davis 	struct in_addr jnk;
279447c08596SBrooks Davis 	int count = 0;
279547c08596SBrooks Davis 
279647c08596SBrooks Davis 	while (inet_aton(buf, &jnk) == 1){
279747c08596SBrooks Davis 		count++;
279847c08596SBrooks Davis 		while (periodchar(*buf) || digitchar(*buf))
279947c08596SBrooks Davis 			buf++;
280047c08596SBrooks Davis 		if (*buf == '\0')
280147c08596SBrooks Davis 			return (count);
280247c08596SBrooks Davis 		while (*buf ==  ' ')
280347c08596SBrooks Davis 			buf++;
280447c08596SBrooks Davis 	}
280547c08596SBrooks Davis 	return (0);
280647c08596SBrooks Davis }
280747c08596SBrooks Davis 
280847c08596SBrooks Davis 
280979a1d195SAlan Somers const char *
option_as_string(unsigned int code,unsigned char * data,int len)281047c08596SBrooks Davis option_as_string(unsigned int code, unsigned char *data, int len)
281147c08596SBrooks Davis {
281247c08596SBrooks Davis 	static char optbuf[32768]; /* XXX */
281347c08596SBrooks Davis 	char *op = optbuf;
281447c08596SBrooks Davis 	int opleft = sizeof(optbuf);
281547c08596SBrooks Davis 	unsigned char *dp = data;
281647c08596SBrooks Davis 
281747c08596SBrooks Davis 	if (code > 255)
281847c08596SBrooks Davis 		error("option_as_string: bad code %d", code);
281947c08596SBrooks Davis 
282047c08596SBrooks Davis 	for (; dp < data + len; dp++) {
282147c08596SBrooks Davis 		if (!isascii(*dp) || !isprint(*dp)) {
282247c08596SBrooks Davis 			if (dp + 1 != data + len || *dp != 0) {
282347c08596SBrooks Davis 				snprintf(op, opleft, "\\%03o", *dp);
282447c08596SBrooks Davis 				op += 4;
282547c08596SBrooks Davis 				opleft -= 4;
282647c08596SBrooks Davis 			}
282747c08596SBrooks Davis 		} else if (*dp == '"' || *dp == '\'' || *dp == '$' ||
282847c08596SBrooks Davis 		    *dp == '`' || *dp == '\\') {
282947c08596SBrooks Davis 			*op++ = '\\';
283047c08596SBrooks Davis 			*op++ = *dp;
283147c08596SBrooks Davis 			opleft -= 2;
283247c08596SBrooks Davis 		} else {
283347c08596SBrooks Davis 			*op++ = *dp;
283447c08596SBrooks Davis 			opleft--;
283547c08596SBrooks Davis 		}
283647c08596SBrooks Davis 	}
283747c08596SBrooks Davis 	if (opleft < 1)
283847c08596SBrooks Davis 		goto toobig;
283947c08596SBrooks Davis 	*op = 0;
284047c08596SBrooks Davis 	return optbuf;
284147c08596SBrooks Davis toobig:
284247c08596SBrooks Davis 	warning("dhcp option too large");
284347c08596SBrooks Davis 	return "<error>";
284447c08596SBrooks Davis }
284547c08596SBrooks Davis 
284647c08596SBrooks Davis int
fork_privchld(int fd,int fd2)284747c08596SBrooks Davis fork_privchld(int fd, int fd2)
284847c08596SBrooks Davis {
284947c08596SBrooks Davis 	struct pollfd pfd[1];
285047c08596SBrooks Davis 	int nfds;
285147c08596SBrooks Davis 
285247c08596SBrooks Davis 	switch (fork()) {
285347c08596SBrooks Davis 	case -1:
285447c08596SBrooks Davis 		error("cannot fork");
285547c08596SBrooks Davis 	case 0:
285647c08596SBrooks Davis 		break;
285747c08596SBrooks Davis 	default:
285847c08596SBrooks Davis 		return (0);
285947c08596SBrooks Davis 	}
286047c08596SBrooks Davis 
286147c08596SBrooks Davis 	setproctitle("%s [priv]", ifi->name);
286247c08596SBrooks Davis 
286370892546SEd Schouten 	setsid();
286447c08596SBrooks Davis 	dup2(nullfd, STDIN_FILENO);
286547c08596SBrooks Davis 	dup2(nullfd, STDOUT_FILENO);
286647c08596SBrooks Davis 	dup2(nullfd, STDERR_FILENO);
286747c08596SBrooks Davis 	close(nullfd);
286847c08596SBrooks Davis 	close(fd2);
2869235eb530SPawel Jakub Dawidek 	close(ifi->rfdesc);
2870235eb530SPawel Jakub Dawidek 	ifi->rfdesc = -1;
287147c08596SBrooks Davis 
287247c08596SBrooks Davis 	for (;;) {
287347c08596SBrooks Davis 		pfd[0].fd = fd;
287447c08596SBrooks Davis 		pfd[0].events = POLLIN;
287547c08596SBrooks Davis 		if ((nfds = poll(pfd, 1, INFTIM)) == -1)
287647c08596SBrooks Davis 			if (errno != EINTR)
287747c08596SBrooks Davis 				error("poll error");
287847c08596SBrooks Davis 
287947c08596SBrooks Davis 		if (nfds == 0 || !(pfd[0].revents & POLLIN))
288047c08596SBrooks Davis 			continue;
288147c08596SBrooks Davis 
2882235eb530SPawel Jakub Dawidek 		dispatch_imsg(ifi, fd);
288347c08596SBrooks Davis 	}
288447c08596SBrooks Davis }
2885