xref: /freebsd/sbin/dhclient/dhclient.c (revision 387016a57624e225ee841b674035c8cf40dc7c97)
147c08596SBrooks Davis /*	$OpenBSD: dhclient.c,v 1.63 2005/02/06 17:10:13 krw Exp $	*/
247c08596SBrooks Davis 
347c08596SBrooks Davis /*
447c08596SBrooks Davis  * Copyright 2004 Henning Brauer <henning@openbsd.org>
547c08596SBrooks Davis  * Copyright (c) 1995, 1996, 1997, 1998, 1999
647c08596SBrooks Davis  * The Internet Software Consortium.    All rights reserved.
747c08596SBrooks Davis  *
847c08596SBrooks Davis  * Redistribution and use in source and binary forms, with or without
947c08596SBrooks Davis  * modification, are permitted provided that the following conditions
1047c08596SBrooks Davis  * are met:
1147c08596SBrooks Davis  *
1247c08596SBrooks Davis  * 1. Redistributions of source code must retain the above copyright
1347c08596SBrooks Davis  *    notice, this list of conditions and the following disclaimer.
1447c08596SBrooks Davis  * 2. Redistributions in binary form must reproduce the above copyright
1547c08596SBrooks Davis  *    notice, this list of conditions and the following disclaimer in the
1647c08596SBrooks Davis  *    documentation and/or other materials provided with the distribution.
1747c08596SBrooks Davis  * 3. Neither the name of The Internet Software Consortium nor the names
1847c08596SBrooks Davis  *    of its contributors may be used to endorse or promote products derived
1947c08596SBrooks Davis  *    from this software without specific prior written permission.
2047c08596SBrooks Davis  *
2147c08596SBrooks Davis  * THIS SOFTWARE IS PROVIDED BY THE INTERNET SOFTWARE CONSORTIUM AND
2247c08596SBrooks Davis  * CONTRIBUTORS ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES,
2347c08596SBrooks Davis  * INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF
2447c08596SBrooks Davis  * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
2547c08596SBrooks Davis  * DISCLAIMED.  IN NO EVENT SHALL THE INTERNET SOFTWARE CONSORTIUM OR
2647c08596SBrooks Davis  * CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
2747c08596SBrooks Davis  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
2847c08596SBrooks Davis  * LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF
2947c08596SBrooks Davis  * USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND
3047c08596SBrooks Davis  * ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
3147c08596SBrooks Davis  * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT
3247c08596SBrooks Davis  * OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
3347c08596SBrooks Davis  * SUCH DAMAGE.
3447c08596SBrooks Davis  *
3547c08596SBrooks Davis  * This software has been written for the Internet Software Consortium
3647c08596SBrooks Davis  * by Ted Lemon <mellon@fugue.com> in cooperation with Vixie
3747c08596SBrooks Davis  * Enterprises.  To learn more about the Internet Software Consortium,
3847c08596SBrooks Davis  * see ``http://www.vix.com/isc''.  To learn more about Vixie
3947c08596SBrooks Davis  * Enterprises, see ``http://www.vix.com''.
4047c08596SBrooks Davis  *
4147c08596SBrooks Davis  * This client was substantially modified and enhanced by Elliot Poger
4247c08596SBrooks Davis  * for use on Linux while he was working on the MosquitoNet project at
4347c08596SBrooks Davis  * Stanford.
4447c08596SBrooks Davis  *
4547c08596SBrooks Davis  * The current version owes much to Elliot's Linux enhancements, but
4647c08596SBrooks Davis  * was substantially reorganized and partially rewritten by Ted Lemon
4747c08596SBrooks Davis  * so as to use the same networking framework that the Internet Software
4847c08596SBrooks Davis  * Consortium DHCP server uses.   Much system-specific configuration code
4947c08596SBrooks Davis  * was moved into a shell script so that as support for more operating
5047c08596SBrooks Davis  * systems is added, it will not be necessary to port and maintain
5147c08596SBrooks Davis  * system-specific configuration code to these operating systems - instead,
5247c08596SBrooks Davis  * the shell script can invoke the native tools to accomplish the same
5347c08596SBrooks Davis  * purpose.
5447c08596SBrooks Davis  */
5547c08596SBrooks Davis 
568794fdbbSBrooks Davis #include <sys/cdefs.h>
578794fdbbSBrooks Davis __FBSDID("$FreeBSD$");
588794fdbbSBrooks Davis 
5947c08596SBrooks Davis #include "dhcpd.h"
6047c08596SBrooks Davis #include "privsep.h"
6147c08596SBrooks Davis 
62b881b8beSRobert Watson #include <sys/capsicum.h>
63*387016a5SConrad Meyer #include <sys/endian.h>
64de2c882fSPawel Jakub Dawidek 
652b19b6fcSBrooks Davis #include <net80211/ieee80211_freebsd.h>
662b19b6fcSBrooks Davis 
672b19b6fcSBrooks Davis #ifndef _PATH_VAREMPTY
682b19b6fcSBrooks Davis #define	_PATH_VAREMPTY	"/var/empty"
692b19b6fcSBrooks Davis #endif
702b19b6fcSBrooks Davis 
7147c08596SBrooks Davis #define	PERIOD 0x2e
7247c08596SBrooks Davis #define	hyphenchar(c) ((c) == 0x2d)
7347c08596SBrooks Davis #define	bslashchar(c) ((c) == 0x5c)
7447c08596SBrooks Davis #define	periodchar(c) ((c) == PERIOD)
7547c08596SBrooks Davis #define	asterchar(c) ((c) == 0x2a)
7647c08596SBrooks Davis #define	alphachar(c) (((c) >= 0x41 && (c) <= 0x5a) || \
7747c08596SBrooks Davis 	    ((c) >= 0x61 && (c) <= 0x7a))
7847c08596SBrooks Davis #define	digitchar(c) ((c) >= 0x30 && (c) <= 0x39)
79f954ec0bSBrooks Davis #define	whitechar(c) ((c) == ' ' || (c) == '\t')
8047c08596SBrooks Davis 
8147c08596SBrooks Davis #define	borderchar(c) (alphachar(c) || digitchar(c))
8247c08596SBrooks Davis #define	middlechar(c) (borderchar(c) || hyphenchar(c))
8347c08596SBrooks Davis #define	domainchar(c) ((c) > 0x20 && (c) < 0x7f)
8447c08596SBrooks Davis 
8547c08596SBrooks Davis #define	CLIENT_PATH "PATH=/usr/bin:/usr/sbin:/bin:/sbin"
8647c08596SBrooks Davis 
8747c08596SBrooks Davis time_t cur_time;
8847c08596SBrooks Davis time_t default_lease_time = 43200; /* 12 hours... */
8947c08596SBrooks Davis 
9047c08596SBrooks Davis char *path_dhclient_conf = _PATH_DHCLIENT_CONF;
9147c08596SBrooks Davis char *path_dhclient_db = NULL;
9247c08596SBrooks Davis 
9347c08596SBrooks Davis int log_perror = 1;
9447c08596SBrooks Davis int privfd;
9547c08596SBrooks Davis int nullfd = -1;
9647c08596SBrooks Davis 
970bbe8306SPawel Jakub Dawidek char hostname[_POSIX_HOST_NAME_MAX + 1];
980bbe8306SPawel Jakub Dawidek 
9947c08596SBrooks Davis struct iaddr iaddr_broadcast = { 4, { 255, 255, 255, 255 } };
100ba019ae5SPawel Jakub Dawidek struct in_addr inaddr_any, inaddr_broadcast;
10147c08596SBrooks Davis 
10223f39c90SDag-Erling Smørgrav char *path_dhclient_pidfile;
10323f39c90SDag-Erling Smørgrav struct pidfh *pidfile;
10423f39c90SDag-Erling Smørgrav 
10547c08596SBrooks Davis /*
10647c08596SBrooks Davis  * ASSERT_STATE() does nothing now; it used to be
10747c08596SBrooks Davis  * assert (state_is == state_shouldbe).
10847c08596SBrooks Davis  */
10947c08596SBrooks Davis #define ASSERT_STATE(state_is, state_shouldbe) {}
11047c08596SBrooks Davis 
11147c08596SBrooks Davis #define TIME_MAX 2147483647
11247c08596SBrooks Davis 
11347c08596SBrooks Davis int		log_priority;
11447c08596SBrooks Davis int		no_daemon;
11547c08596SBrooks Davis int		unknown_ok = 1;
11647c08596SBrooks Davis int		routefd;
11747c08596SBrooks Davis 
11847c08596SBrooks Davis struct interface_info	*ifi;
11947c08596SBrooks Davis 
12047c08596SBrooks Davis int		 findproto(char *, int);
12147c08596SBrooks Davis struct sockaddr	*get_ifa(char *, int);
12247c08596SBrooks Davis void		 routehandler(struct protocol *);
12347c08596SBrooks Davis void		 usage(void);
12447c08596SBrooks Davis int		 check_option(struct client_lease *l, int option);
1252fcc7370SEd Maste int		 check_classless_option(unsigned char *data, int len);
12647c08596SBrooks Davis int		 ipv4addrs(char * buf);
12747c08596SBrooks Davis int		 res_hnok(const char *dn);
128f954ec0bSBrooks Davis int		 check_search(const char *srch);
12947c08596SBrooks Davis char		*option_as_string(unsigned int code, unsigned char *data, int len);
13047c08596SBrooks Davis int		 fork_privchld(int, int);
13147c08596SBrooks Davis 
13247c08596SBrooks Davis #define	ROUNDUP(a) \
13347c08596SBrooks Davis 	    ((a) > 0 ? (1 + (((a) - 1) | (sizeof(long) - 1))) : sizeof(long))
13447c08596SBrooks Davis #define	ADVANCE(x, n) (x += ROUNDUP((n)->sa_len))
13547c08596SBrooks Davis 
136*387016a5SConrad Meyer /* Minimum MTU is 68 as per RFC791, p. 24 */
137*387016a5SConrad Meyer #define MIN_MTU 68
138*387016a5SConrad Meyer 
1396964abefSBrian Somers static time_t	scripttime;
14047c08596SBrooks Davis 
14147c08596SBrooks Davis int
14247c08596SBrooks Davis findproto(char *cp, int n)
14347c08596SBrooks Davis {
14447c08596SBrooks Davis 	struct sockaddr *sa;
14547c08596SBrooks Davis 	int i;
14647c08596SBrooks Davis 
14747c08596SBrooks Davis 	if (n == 0)
14847c08596SBrooks Davis 		return -1;
14947c08596SBrooks Davis 	for (i = 1; i; i <<= 1) {
15047c08596SBrooks Davis 		if (i & n) {
15147c08596SBrooks Davis 			sa = (struct sockaddr *)cp;
15247c08596SBrooks Davis 			switch (i) {
15347c08596SBrooks Davis 			case RTA_IFA:
15447c08596SBrooks Davis 			case RTA_DST:
15547c08596SBrooks Davis 			case RTA_GATEWAY:
15647c08596SBrooks Davis 			case RTA_NETMASK:
15747c08596SBrooks Davis 				if (sa->sa_family == AF_INET)
15847c08596SBrooks Davis 					return AF_INET;
15947c08596SBrooks Davis 				if (sa->sa_family == AF_INET6)
16047c08596SBrooks Davis 					return AF_INET6;
16147c08596SBrooks Davis 				break;
16247c08596SBrooks Davis 			case RTA_IFP:
16347c08596SBrooks Davis 				break;
16447c08596SBrooks Davis 			}
16547c08596SBrooks Davis 			ADVANCE(cp, sa);
16647c08596SBrooks Davis 		}
16747c08596SBrooks Davis 	}
16847c08596SBrooks Davis 	return (-1);
16947c08596SBrooks Davis }
17047c08596SBrooks Davis 
17147c08596SBrooks Davis struct sockaddr *
17247c08596SBrooks Davis get_ifa(char *cp, int n)
17347c08596SBrooks Davis {
17447c08596SBrooks Davis 	struct sockaddr *sa;
17547c08596SBrooks Davis 	int i;
17647c08596SBrooks Davis 
17747c08596SBrooks Davis 	if (n == 0)
17847c08596SBrooks Davis 		return (NULL);
17947c08596SBrooks Davis 	for (i = 1; i; i <<= 1)
18047c08596SBrooks Davis 		if (i & n) {
18147c08596SBrooks Davis 			sa = (struct sockaddr *)cp;
18247c08596SBrooks Davis 			if (i == RTA_IFA)
18347c08596SBrooks Davis 				return (sa);
18447c08596SBrooks Davis 			ADVANCE(cp, sa);
18547c08596SBrooks Davis 		}
18647c08596SBrooks Davis 
18747c08596SBrooks Davis 	return (NULL);
18847c08596SBrooks Davis }
18961063e47SSam Leffler 
19047c08596SBrooks Davis struct iaddr defaddr = { 4 };
19161063e47SSam Leffler uint8_t curbssid[6];
19261063e47SSam Leffler 
19361063e47SSam Leffler static void
19461063e47SSam Leffler disassoc(void *arg)
19561063e47SSam Leffler {
19661063e47SSam Leffler 	struct interface_info *ifi = arg;
19761063e47SSam Leffler 
19861063e47SSam Leffler 	/*
19961063e47SSam Leffler 	 * Clear existing state.
20061063e47SSam Leffler 	 */
20161063e47SSam Leffler 	if (ifi->client->active != NULL) {
20261063e47SSam Leffler 		script_init("EXPIRE", NULL);
20361063e47SSam Leffler 		script_write_params("old_",
20461063e47SSam Leffler 		    ifi->client->active);
20561063e47SSam Leffler 		if (ifi->client->alias)
20661063e47SSam Leffler 			script_write_params("alias_",
20761063e47SSam Leffler 				ifi->client->alias);
20861063e47SSam Leffler 		script_go();
20961063e47SSam Leffler 	}
21061063e47SSam Leffler 	ifi->client->state = S_INIT;
21161063e47SSam Leffler }
21247c08596SBrooks Davis 
21347c08596SBrooks Davis /* ARGSUSED */
21447c08596SBrooks Davis void
21547c08596SBrooks Davis routehandler(struct protocol *p)
21647c08596SBrooks Davis {
2176964abefSBrian Somers 	char msg[2048], *addr;
21847c08596SBrooks Davis 	struct rt_msghdr *rtm;
21947c08596SBrooks Davis 	struct if_msghdr *ifm;
22047c08596SBrooks Davis 	struct ifa_msghdr *ifam;
22147c08596SBrooks Davis 	struct if_announcemsghdr *ifan;
22261063e47SSam Leffler 	struct ieee80211_join_event *jev;
22347c08596SBrooks Davis 	struct client_lease *l;
22447c08596SBrooks Davis 	time_t t = time(NULL);
22547c08596SBrooks Davis 	struct sockaddr *sa;
22647c08596SBrooks Davis 	struct iaddr a;
22747c08596SBrooks Davis 	ssize_t n;
2280a26f858SJohn Baldwin 	int linkstat;
22947c08596SBrooks Davis 
23047c08596SBrooks Davis 	n = read(routefd, &msg, sizeof(msg));
23147c08596SBrooks Davis 	rtm = (struct rt_msghdr *)msg;
23247c08596SBrooks Davis 	if (n < sizeof(rtm->rtm_msglen) || n < rtm->rtm_msglen ||
23347c08596SBrooks Davis 	    rtm->rtm_version != RTM_VERSION)
23447c08596SBrooks Davis 		return;
23547c08596SBrooks Davis 
23647c08596SBrooks Davis 	switch (rtm->rtm_type) {
23747c08596SBrooks Davis 	case RTM_NEWADDR:
238dfad96eaSBrooks Davis 	case RTM_DELADDR:
23947c08596SBrooks Davis 		ifam = (struct ifa_msghdr *)rtm;
240dfad96eaSBrooks Davis 
24147c08596SBrooks Davis 		if (ifam->ifam_index != ifi->index)
24247c08596SBrooks Davis 			break;
24347c08596SBrooks Davis 		if (findproto((char *)(ifam + 1), ifam->ifam_addrs) != AF_INET)
24447c08596SBrooks Davis 			break;
245dfad96eaSBrooks Davis 		if (scripttime == 0 || t < scripttime + 10)
246dfad96eaSBrooks Davis 			break;
247dfad96eaSBrooks Davis 
24847c08596SBrooks Davis 		sa = get_ifa((char *)(ifam + 1), ifam->ifam_addrs);
24947c08596SBrooks Davis 		if (sa == NULL)
2506964abefSBrian Somers 			break;
25147c08596SBrooks Davis 
25247c08596SBrooks Davis 		if ((a.len = sizeof(struct in_addr)) > sizeof(a.iabuf))
25347c08596SBrooks Davis 			error("king bula sez: len mismatch");
25447c08596SBrooks Davis 		memcpy(a.iabuf, &((struct sockaddr_in *)sa)->sin_addr, a.len);
25547c08596SBrooks Davis 		if (addr_eq(a, defaddr))
25647c08596SBrooks Davis 			break;
25747c08596SBrooks Davis 
25847c08596SBrooks Davis 		for (l = ifi->client->active; l != NULL; l = l->next)
25947c08596SBrooks Davis 			if (addr_eq(a, l->address))
26047c08596SBrooks Davis 				break;
26147c08596SBrooks Davis 
2626964abefSBrian Somers 		if (l == NULL)	/* added/deleted addr is not the one we set */
26347c08596SBrooks Davis 			break;
2646964abefSBrian Somers 
2656964abefSBrian Somers 		addr = inet_ntoa(((struct sockaddr_in *)sa)->sin_addr);
2666964abefSBrian Somers 		if (rtm->rtm_type == RTM_NEWADDR)  {
2676964abefSBrian Somers 			/*
2686964abefSBrian Somers 			 * XXX: If someone other than us adds our address,
2696964abefSBrian Somers 			 * should we assume they are taking over from us,
2706964abefSBrian Somers 			 * delete the lease record, and exit without modifying
2716964abefSBrian Somers 			 * the interface?
2726964abefSBrian Somers 			 */
2736964abefSBrian Somers 			warning("My address (%s) was re-added", addr);
2746964abefSBrian Somers 		} else {
2756964abefSBrian Somers 			warning("My address (%s) was deleted, dhclient exiting",
2766964abefSBrian Somers 			    addr);
27747c08596SBrooks Davis 			goto die;
2786964abefSBrian Somers 		}
2796964abefSBrian Somers 		break;
28047c08596SBrooks Davis 	case RTM_IFINFO:
28147c08596SBrooks Davis 		ifm = (struct if_msghdr *)rtm;
28247c08596SBrooks Davis 		if (ifm->ifm_index != ifi->index)
28347c08596SBrooks Davis 			break;
2846964abefSBrian Somers 		if ((rtm->rtm_flags & RTF_UP) == 0) {
2856964abefSBrian Somers 			warning("Interface %s is down, dhclient exiting",
2866964abefSBrian Somers 			    ifi->name);
28747c08596SBrooks Davis 			goto die;
2886964abefSBrian Somers 		}
2890a26f858SJohn Baldwin 		linkstat = interface_link_status(ifi->name);
2900a26f858SJohn Baldwin 		if (linkstat != ifi->linkstat) {
2910a26f858SJohn Baldwin 			debug("%s link state %s -> %s", ifi->name,
2920a26f858SJohn Baldwin 			    ifi->linkstat ? "up" : "down",
2930a26f858SJohn Baldwin 			    linkstat ? "up" : "down");
2940a26f858SJohn Baldwin 			ifi->linkstat = linkstat;
2950a26f858SJohn Baldwin 			if (linkstat)
2960a26f858SJohn Baldwin 				state_reboot(ifi);
29783f745b8SJohn Baldwin 		}
29847c08596SBrooks Davis 		break;
29947c08596SBrooks Davis 	case RTM_IFANNOUNCE:
30047c08596SBrooks Davis 		ifan = (struct if_announcemsghdr *)rtm;
30147c08596SBrooks Davis 		if (ifan->ifan_what == IFAN_DEPARTURE &&
3026964abefSBrian Somers 		    ifan->ifan_index == ifi->index) {
3036964abefSBrian Somers 			warning("Interface %s is gone, dhclient exiting",
3046964abefSBrian Somers 			    ifi->name);
30547c08596SBrooks Davis 			goto die;
3066964abefSBrian Somers 		}
30747c08596SBrooks Davis 		break;
3082b19b6fcSBrooks Davis 	case RTM_IEEE80211:
3092b19b6fcSBrooks Davis 		ifan = (struct if_announcemsghdr *)rtm;
3102b19b6fcSBrooks Davis 		if (ifan->ifan_index != ifi->index)
3112b19b6fcSBrooks Davis 			break;
3122b19b6fcSBrooks Davis 		switch (ifan->ifan_what) {
3132b19b6fcSBrooks Davis 		case RTM_IEEE80211_ASSOC:
314b35f2511SSam Leffler 		case RTM_IEEE80211_REASSOC:
3152b19b6fcSBrooks Davis 			/*
31661063e47SSam Leffler 			 * Use assoc/reassoc event to kick state machine
31761063e47SSam Leffler 			 * in case we roam.  Otherwise fall back to the
31861063e47SSam Leffler 			 * normal state machine just like a wired network.
3192b19b6fcSBrooks Davis 			 */
32061063e47SSam Leffler 			jev = (struct ieee80211_join_event *) &ifan[1];
32161063e47SSam Leffler 			if (memcmp(curbssid, jev->iev_addr, 6)) {
32261063e47SSam Leffler 				disassoc(ifi);
32361063e47SSam Leffler 				state_reboot(ifi);
32459eac186SBrooks Davis 			}
32561063e47SSam Leffler 			memcpy(curbssid, jev->iev_addr, 6);
3262b19b6fcSBrooks Davis 			break;
3272b19b6fcSBrooks Davis 		}
3282b19b6fcSBrooks Davis 		break;
32947c08596SBrooks Davis 	default:
33047c08596SBrooks Davis 		break;
33147c08596SBrooks Davis 	}
33247c08596SBrooks Davis 	return;
33347c08596SBrooks Davis 
33447c08596SBrooks Davis die:
33547c08596SBrooks Davis 	script_init("FAIL", NULL);
33647c08596SBrooks Davis 	if (ifi->client->alias)
33747c08596SBrooks Davis 		script_write_params("alias_", ifi->client->alias);
33847c08596SBrooks Davis 	script_go();
33923f39c90SDag-Erling Smørgrav 	if (pidfile != NULL)
34023f39c90SDag-Erling Smørgrav 		pidfile_remove(pidfile);
34147c08596SBrooks Davis 	exit(1);
34247c08596SBrooks Davis }
34347c08596SBrooks Davis 
34447c08596SBrooks Davis int
34547c08596SBrooks Davis main(int argc, char *argv[])
34647c08596SBrooks Davis {
34747c08596SBrooks Davis 	extern char		*__progname;
34847c08596SBrooks Davis 	int			 ch, fd, quiet = 0, i = 0;
34947c08596SBrooks Davis 	int			 pipe_fd[2];
3502b19b6fcSBrooks Davis 	int			 immediate_daemon = 0;
35147c08596SBrooks Davis 	struct passwd		*pw;
35223f39c90SDag-Erling Smørgrav 	pid_t			 otherpid;
3537008be5bSPawel Jakub Dawidek 	cap_rights_t		 rights;
35447c08596SBrooks Davis 
35547c08596SBrooks Davis 	/* Initially, log errors to stderr as well as to syslogd. */
35647c08596SBrooks Davis 	openlog(__progname, LOG_PID | LOG_NDELAY, DHCPD_LOG_FACILITY);
357043f1935SSam Leffler 	setlogmask(LOG_UPTO(LOG_DEBUG));
35847c08596SBrooks Davis 
35923f39c90SDag-Erling Smørgrav 	while ((ch = getopt(argc, argv, "bc:dl:p:qu")) != -1)
36047c08596SBrooks Davis 		switch (ch) {
3612b19b6fcSBrooks Davis 		case 'b':
3622b19b6fcSBrooks Davis 			immediate_daemon = 1;
3632b19b6fcSBrooks Davis 			break;
36447c08596SBrooks Davis 		case 'c':
36547c08596SBrooks Davis 			path_dhclient_conf = optarg;
36647c08596SBrooks Davis 			break;
36747c08596SBrooks Davis 		case 'd':
36847c08596SBrooks Davis 			no_daemon = 1;
36947c08596SBrooks Davis 			break;
37047c08596SBrooks Davis 		case 'l':
37147c08596SBrooks Davis 			path_dhclient_db = optarg;
37247c08596SBrooks Davis 			break;
37323f39c90SDag-Erling Smørgrav 		case 'p':
37423f39c90SDag-Erling Smørgrav 			path_dhclient_pidfile = optarg;
37523f39c90SDag-Erling Smørgrav 			break;
37647c08596SBrooks Davis 		case 'q':
37747c08596SBrooks Davis 			quiet = 1;
37847c08596SBrooks Davis 			break;
37947c08596SBrooks Davis 		case 'u':
38047c08596SBrooks Davis 			unknown_ok = 0;
38147c08596SBrooks Davis 			break;
38247c08596SBrooks Davis 		default:
38347c08596SBrooks Davis 			usage();
38447c08596SBrooks Davis 		}
38547c08596SBrooks Davis 
38647c08596SBrooks Davis 	argc -= optind;
38747c08596SBrooks Davis 	argv += optind;
38847c08596SBrooks Davis 
38947c08596SBrooks Davis 	if (argc != 1)
39047c08596SBrooks Davis 		usage();
39147c08596SBrooks Davis 
39223f39c90SDag-Erling Smørgrav 	if (path_dhclient_pidfile == NULL) {
39323f39c90SDag-Erling Smørgrav 		asprintf(&path_dhclient_pidfile,
39423f39c90SDag-Erling Smørgrav 		    "%sdhclient.%s.pid", _PATH_VARRUN, *argv);
39523f39c90SDag-Erling Smørgrav 		if (path_dhclient_pidfile == NULL)
39623f39c90SDag-Erling Smørgrav 			error("asprintf");
39723f39c90SDag-Erling Smørgrav 	}
39807561ab4SEitan Adler 	pidfile = pidfile_open(path_dhclient_pidfile, 0644, &otherpid);
39923f39c90SDag-Erling Smørgrav 	if (pidfile == NULL) {
40023f39c90SDag-Erling Smørgrav 		if (errno == EEXIST)
40123f39c90SDag-Erling Smørgrav 			error("dhclient already running, pid: %d.", otherpid);
40223f39c90SDag-Erling Smørgrav 		if (errno == EAGAIN)
40323f39c90SDag-Erling Smørgrav 			error("dhclient already running.");
40423f39c90SDag-Erling Smørgrav 		warning("Cannot open or create pidfile: %m");
40523f39c90SDag-Erling Smørgrav 	}
40623f39c90SDag-Erling Smørgrav 
40747c08596SBrooks Davis 	if ((ifi = calloc(1, sizeof(struct interface_info))) == NULL)
40847c08596SBrooks Davis 		error("calloc");
40947c08596SBrooks Davis 	if (strlcpy(ifi->name, argv[0], IFNAMSIZ) >= IFNAMSIZ)
41047c08596SBrooks Davis 		error("Interface name too long");
41147c08596SBrooks Davis 	if (path_dhclient_db == NULL && asprintf(&path_dhclient_db, "%s.%s",
41247c08596SBrooks Davis 	    _PATH_DHCLIENT_DB, ifi->name) == -1)
41347c08596SBrooks Davis 		error("asprintf");
41447c08596SBrooks Davis 
41547c08596SBrooks Davis 	if (quiet)
41647c08596SBrooks Davis 		log_perror = 0;
41747c08596SBrooks Davis 
41847c08596SBrooks Davis 	tzset();
41947c08596SBrooks Davis 	time(&cur_time);
42047c08596SBrooks Davis 
421ba019ae5SPawel Jakub Dawidek 	inaddr_broadcast.s_addr = INADDR_BROADCAST;
42247c08596SBrooks Davis 	inaddr_any.s_addr = INADDR_ANY;
42347c08596SBrooks Davis 
42447c08596SBrooks Davis 	read_client_conf();
42547c08596SBrooks Davis 
42623f39c90SDag-Erling Smørgrav 	/* The next bit is potentially very time-consuming, so write out
42723f39c90SDag-Erling Smørgrav 	   the pidfile right away.  We will write it out again with the
42823f39c90SDag-Erling Smørgrav 	   correct pid after daemonizing. */
42923f39c90SDag-Erling Smørgrav 	if (pidfile != NULL)
43023f39c90SDag-Erling Smørgrav 		pidfile_write(pidfile);
43123f39c90SDag-Erling Smørgrav 
43247c08596SBrooks Davis 	if (!interface_link_status(ifi->name)) {
43347c08596SBrooks Davis 		fprintf(stderr, "%s: no link ...", ifi->name);
43447c08596SBrooks Davis 		fflush(stderr);
43547c08596SBrooks Davis 		sleep(1);
43647c08596SBrooks Davis 		while (!interface_link_status(ifi->name)) {
43747c08596SBrooks Davis 			fprintf(stderr, ".");
43847c08596SBrooks Davis 			fflush(stderr);
43947c08596SBrooks Davis 			if (++i > 10) {
44047c08596SBrooks Davis 				fprintf(stderr, " giving up\n");
44147c08596SBrooks Davis 				exit(1);
44247c08596SBrooks Davis 			}
44347c08596SBrooks Davis 			sleep(1);
44447c08596SBrooks Davis 		}
44547c08596SBrooks Davis 		fprintf(stderr, " got link\n");
44647c08596SBrooks Davis 	}
4470a26f858SJohn Baldwin 	ifi->linkstat = 1;
44847c08596SBrooks Davis 
44947c08596SBrooks Davis 	if ((nullfd = open(_PATH_DEVNULL, O_RDWR, 0)) == -1)
45047c08596SBrooks Davis 		error("cannot open %s: %m", _PATH_DEVNULL);
45147c08596SBrooks Davis 
45247c08596SBrooks Davis 	if ((pw = getpwnam("_dhcp")) == NULL) {
45347c08596SBrooks Davis 		warning("no such user: _dhcp, falling back to \"nobody\"");
45447c08596SBrooks Davis 		if ((pw = getpwnam("nobody")) == NULL)
45547c08596SBrooks Davis 			error("no such user: nobody");
45647c08596SBrooks Davis 	}
45747c08596SBrooks Davis 
4580bbe8306SPawel Jakub Dawidek 	/*
4590bbe8306SPawel Jakub Dawidek 	 * Obtain hostname before entering capability mode - it won't be
4600bbe8306SPawel Jakub Dawidek 	 * possible then, as reading kern.hostname is not permitted.
4610bbe8306SPawel Jakub Dawidek 	 */
4620bbe8306SPawel Jakub Dawidek 	if (gethostname(hostname, sizeof(hostname)) < 0)
4630bbe8306SPawel Jakub Dawidek 		hostname[0] = '\0';
4640bbe8306SPawel Jakub Dawidek 
465374a8a32SPawel Jakub Dawidek 	priv_script_init("PREINIT", NULL);
466374a8a32SPawel Jakub Dawidek 	if (ifi->client->alias)
467374a8a32SPawel Jakub Dawidek 		priv_script_write_params("alias_", ifi->client->alias);
468374a8a32SPawel Jakub Dawidek 	priv_script_go();
469374a8a32SPawel Jakub Dawidek 
470235eb530SPawel Jakub Dawidek 	/* set up the interface */
471235eb530SPawel Jakub Dawidek 	discover_interfaces(ifi);
472235eb530SPawel Jakub Dawidek 
47347c08596SBrooks Davis 	if (pipe(pipe_fd) == -1)
47447c08596SBrooks Davis 		error("pipe");
47547c08596SBrooks Davis 
47647c08596SBrooks Davis 	fork_privchld(pipe_fd[0], pipe_fd[1]);
47747c08596SBrooks Davis 
478235eb530SPawel Jakub Dawidek 	close(ifi->ufdesc);
479235eb530SPawel Jakub Dawidek 	ifi->ufdesc = -1;
480235eb530SPawel Jakub Dawidek 	close(ifi->wfdesc);
481235eb530SPawel Jakub Dawidek 	ifi->wfdesc = -1;
482235eb530SPawel Jakub Dawidek 
48347c08596SBrooks Davis 	close(pipe_fd[0]);
48447c08596SBrooks Davis 	privfd = pipe_fd[1];
4857008be5bSPawel Jakub Dawidek 	cap_rights_init(&rights, CAP_READ, CAP_WRITE);
4867008be5bSPawel Jakub Dawidek 	if (cap_rights_limit(privfd, &rights) < 0 && errno != ENOSYS)
487de2c882fSPawel Jakub Dawidek 		error("can't limit private descriptor: %m");
48847c08596SBrooks Davis 
48947c08596SBrooks Davis 	if ((fd = open(path_dhclient_db, O_RDONLY|O_EXLOCK|O_CREAT, 0)) == -1)
49047c08596SBrooks Davis 		error("can't open and lock %s: %m", path_dhclient_db);
49147c08596SBrooks Davis 	read_client_leases();
49247c08596SBrooks Davis 	rewrite_client_leases();
49347c08596SBrooks Davis 	close(fd);
49447c08596SBrooks Davis 
49547c08596SBrooks Davis 	if ((routefd = socket(PF_ROUTE, SOCK_RAW, 0)) != -1)
49647c08596SBrooks Davis 		add_protocol("AF_ROUTE", routefd, routehandler, ifi);
497e374cef5SPawel Jakub Dawidek 	if (shutdown(routefd, SHUT_WR) < 0)
498e374cef5SPawel Jakub Dawidek 		error("can't shutdown route socket: %m");
499bb7a82acSChristian Brueffer 	cap_rights_init(&rights, CAP_EVENT, CAP_READ);
5007008be5bSPawel Jakub Dawidek 	if (cap_rights_limit(routefd, &rights) < 0 && errno != ENOSYS)
501f73ac8b9SPawel Jakub Dawidek 		error("can't limit route socket: %m");
50247c08596SBrooks Davis 
50347c08596SBrooks Davis 	if (chroot(_PATH_VAREMPTY) == -1)
50447c08596SBrooks Davis 		error("chroot");
50547c08596SBrooks Davis 	if (chdir("/") == -1)
50647c08596SBrooks Davis 		error("chdir(\"/\")");
50747c08596SBrooks Davis 
50847c08596SBrooks Davis 	if (setgroups(1, &pw->pw_gid) ||
50947c08596SBrooks Davis 	    setegid(pw->pw_gid) || setgid(pw->pw_gid) ||
51047c08596SBrooks Davis 	    seteuid(pw->pw_uid) || setuid(pw->pw_uid))
51147c08596SBrooks Davis 		error("can't drop privileges: %m");
51247c08596SBrooks Davis 
51347c08596SBrooks Davis 	endpwent();
51447c08596SBrooks Davis 
51547c08596SBrooks Davis 	setproctitle("%s", ifi->name);
51647c08596SBrooks Davis 
5178da93e68SPawel Jakub Dawidek 	if (cap_enter() < 0 && errno != ENOSYS)
5188da93e68SPawel Jakub Dawidek 		error("can't enter capability mode: %m");
5198da93e68SPawel Jakub Dawidek 
5202b19b6fcSBrooks Davis 	if (immediate_daemon)
5212b19b6fcSBrooks Davis 		go_daemon();
5222b19b6fcSBrooks Davis 
52347c08596SBrooks Davis 	ifi->client->state = S_INIT;
52447c08596SBrooks Davis 	state_reboot(ifi);
52547c08596SBrooks Davis 
52647c08596SBrooks Davis 	bootp_packet_handler = do_packet;
52747c08596SBrooks Davis 
52847c08596SBrooks Davis 	dispatch();
52947c08596SBrooks Davis 
53047c08596SBrooks Davis 	/* not reached */
53147c08596SBrooks Davis 	return (0);
53247c08596SBrooks Davis }
53347c08596SBrooks Davis 
53447c08596SBrooks Davis void
53547c08596SBrooks Davis usage(void)
53647c08596SBrooks Davis {
53747c08596SBrooks Davis 	extern char	*__progname;
53847c08596SBrooks Davis 
5393dd3357aSBrian Somers 	fprintf(stderr, "usage: %s [-bdqu] ", __progname);
54047c08596SBrooks Davis 	fprintf(stderr, "[-c conffile] [-l leasefile] interface\n");
54147c08596SBrooks Davis 	exit(1);
54247c08596SBrooks Davis }
54347c08596SBrooks Davis 
54447c08596SBrooks Davis /*
54547c08596SBrooks Davis  * Individual States:
54647c08596SBrooks Davis  *
54747c08596SBrooks Davis  * Each routine is called from the dhclient_state_machine() in one of
54847c08596SBrooks Davis  * these conditions:
54947c08596SBrooks Davis  * -> entering INIT state
55047c08596SBrooks Davis  * -> recvpacket_flag == 0: timeout in this state
55147c08596SBrooks Davis  * -> otherwise: received a packet in this state
55247c08596SBrooks Davis  *
55347c08596SBrooks Davis  * Return conditions as handled by dhclient_state_machine():
55447c08596SBrooks Davis  * Returns 1, sendpacket_flag = 1: send packet, reset timer.
55547c08596SBrooks Davis  * Returns 1, sendpacket_flag = 0: just reset the timer (wait for a milestone).
55647c08596SBrooks Davis  * Returns 0: finish the nap which was interrupted for no good reason.
55747c08596SBrooks Davis  *
55847c08596SBrooks Davis  * Several per-interface variables are used to keep track of the process:
55947c08596SBrooks Davis  *   active_lease: the lease that is being used on the interface
56047c08596SBrooks Davis  *                 (null pointer if not configured yet).
56147c08596SBrooks Davis  *   offered_leases: leases corresponding to DHCPOFFER messages that have
56247c08596SBrooks Davis  *                   been sent to us by DHCP servers.
56347c08596SBrooks Davis  *   acked_leases: leases corresponding to DHCPACK messages that have been
56447c08596SBrooks Davis  *                 sent to us by DHCP servers.
56547c08596SBrooks Davis  *   sendpacket: DHCP packet we're trying to send.
56647c08596SBrooks Davis  *   destination: IP address to send sendpacket to
56747c08596SBrooks Davis  * In addition, there are several relevant per-lease variables.
56847c08596SBrooks Davis  *   T1_expiry, T2_expiry, lease_expiry: lease milestones
56947c08596SBrooks Davis  * In the active lease, these control the process of renewing the lease;
57047c08596SBrooks Davis  * In leases on the acked_leases list, this simply determines when we
57147c08596SBrooks Davis  * can no longer legitimately use the lease.
57247c08596SBrooks Davis  */
57347c08596SBrooks Davis 
57447c08596SBrooks Davis void
57547c08596SBrooks Davis state_reboot(void *ipp)
57647c08596SBrooks Davis {
57747c08596SBrooks Davis 	struct interface_info *ip = ipp;
57847c08596SBrooks Davis 
57947c08596SBrooks Davis 	/* If we don't remember an active lease, go straight to INIT. */
58047c08596SBrooks Davis 	if (!ip->client->active || ip->client->active->is_bootp) {
58147c08596SBrooks Davis 		state_init(ip);
58247c08596SBrooks Davis 		return;
58347c08596SBrooks Davis 	}
58447c08596SBrooks Davis 
58547c08596SBrooks Davis 	/* We are in the rebooting state. */
58647c08596SBrooks Davis 	ip->client->state = S_REBOOTING;
58747c08596SBrooks Davis 
58847c08596SBrooks Davis 	/* make_request doesn't initialize xid because it normally comes
58947c08596SBrooks Davis 	   from the DHCPDISCOVER, but we haven't sent a DHCPDISCOVER,
59047c08596SBrooks Davis 	   so pick an xid now. */
59147c08596SBrooks Davis 	ip->client->xid = arc4random();
59247c08596SBrooks Davis 
59347c08596SBrooks Davis 	/* Make a DHCPREQUEST packet, and set appropriate per-interface
59447c08596SBrooks Davis 	   flags. */
59547c08596SBrooks Davis 	make_request(ip, ip->client->active);
59647c08596SBrooks Davis 	ip->client->destination = iaddr_broadcast;
59747c08596SBrooks Davis 	ip->client->first_sending = cur_time;
59847c08596SBrooks Davis 	ip->client->interval = ip->client->config->initial_interval;
59947c08596SBrooks Davis 
60047c08596SBrooks Davis 	/* Zap the medium list... */
60147c08596SBrooks Davis 	ip->client->medium = NULL;
60247c08596SBrooks Davis 
60347c08596SBrooks Davis 	/* Send out the first DHCPREQUEST packet. */
60447c08596SBrooks Davis 	send_request(ip);
60547c08596SBrooks Davis }
60647c08596SBrooks Davis 
60747c08596SBrooks Davis /*
60847c08596SBrooks Davis  * Called when a lease has completely expired and we've
60947c08596SBrooks Davis  * been unable to renew it.
61047c08596SBrooks Davis  */
61147c08596SBrooks Davis void
61247c08596SBrooks Davis state_init(void *ipp)
61347c08596SBrooks Davis {
61447c08596SBrooks Davis 	struct interface_info *ip = ipp;
61547c08596SBrooks Davis 
61647c08596SBrooks Davis 	ASSERT_STATE(state, S_INIT);
61747c08596SBrooks Davis 
61847c08596SBrooks Davis 	/* Make a DHCPDISCOVER packet, and set appropriate per-interface
61947c08596SBrooks Davis 	   flags. */
62047c08596SBrooks Davis 	make_discover(ip, ip->client->active);
62147c08596SBrooks Davis 	ip->client->xid = ip->client->packet.xid;
62247c08596SBrooks Davis 	ip->client->destination = iaddr_broadcast;
62347c08596SBrooks Davis 	ip->client->state = S_SELECTING;
62447c08596SBrooks Davis 	ip->client->first_sending = cur_time;
62547c08596SBrooks Davis 	ip->client->interval = ip->client->config->initial_interval;
62647c08596SBrooks Davis 
62747c08596SBrooks Davis 	/* Add an immediate timeout to cause the first DHCPDISCOVER packet
62847c08596SBrooks Davis 	   to go out. */
62947c08596SBrooks Davis 	send_discover(ip);
63047c08596SBrooks Davis }
63147c08596SBrooks Davis 
63247c08596SBrooks Davis /*
63347c08596SBrooks Davis  * state_selecting is called when one or more DHCPOFFER packets
63447c08596SBrooks Davis  * have been received and a configurable period of time has passed.
63547c08596SBrooks Davis  */
63647c08596SBrooks Davis void
63747c08596SBrooks Davis state_selecting(void *ipp)
63847c08596SBrooks Davis {
63947c08596SBrooks Davis 	struct interface_info *ip = ipp;
64047c08596SBrooks Davis 	struct client_lease *lp, *next, *picked;
64147c08596SBrooks Davis 
64247c08596SBrooks Davis 	ASSERT_STATE(state, S_SELECTING);
64347c08596SBrooks Davis 
64447c08596SBrooks Davis 	/* Cancel state_selecting and send_discover timeouts, since either
64547c08596SBrooks Davis 	   one could have got us here. */
64647c08596SBrooks Davis 	cancel_timeout(state_selecting, ip);
64747c08596SBrooks Davis 	cancel_timeout(send_discover, ip);
64847c08596SBrooks Davis 
64947c08596SBrooks Davis 	/* We have received one or more DHCPOFFER packets.   Currently,
65047c08596SBrooks Davis 	   the only criterion by which we judge leases is whether or
65147c08596SBrooks Davis 	   not we get a response when we arp for them. */
65247c08596SBrooks Davis 	picked = NULL;
65347c08596SBrooks Davis 	for (lp = ip->client->offered_leases; lp; lp = next) {
65447c08596SBrooks Davis 		next = lp->next;
65547c08596SBrooks Davis 
65647c08596SBrooks Davis 		/* Check to see if we got an ARPREPLY for the address
65747c08596SBrooks Davis 		   in this particular lease. */
65847c08596SBrooks Davis 		if (!picked) {
65947c08596SBrooks Davis 			script_init("ARPCHECK", lp->medium);
66047c08596SBrooks Davis 			script_write_params("check_", lp);
66147c08596SBrooks Davis 
66247c08596SBrooks Davis 			/* If the ARPCHECK code detects another
66347c08596SBrooks Davis 			   machine using the offered address, it exits
66447c08596SBrooks Davis 			   nonzero.  We need to send a DHCPDECLINE and
66547c08596SBrooks Davis 			   toss the lease. */
66647c08596SBrooks Davis 			if (script_go()) {
66747c08596SBrooks Davis 				make_decline(ip, lp);
66847c08596SBrooks Davis 				send_decline(ip);
66947c08596SBrooks Davis 				goto freeit;
67047c08596SBrooks Davis 			}
67147c08596SBrooks Davis 			picked = lp;
67247c08596SBrooks Davis 			picked->next = NULL;
67347c08596SBrooks Davis 		} else {
67447c08596SBrooks Davis freeit:
67547c08596SBrooks Davis 			free_client_lease(lp);
67647c08596SBrooks Davis 		}
67747c08596SBrooks Davis 	}
67847c08596SBrooks Davis 	ip->client->offered_leases = NULL;
67947c08596SBrooks Davis 
68047c08596SBrooks Davis 	/* If we just tossed all the leases we were offered, go back
68147c08596SBrooks Davis 	   to square one. */
68247c08596SBrooks Davis 	if (!picked) {
68347c08596SBrooks Davis 		ip->client->state = S_INIT;
68447c08596SBrooks Davis 		state_init(ip);
68547c08596SBrooks Davis 		return;
68647c08596SBrooks Davis 	}
68747c08596SBrooks Davis 
68847c08596SBrooks Davis 	/* If it was a BOOTREPLY, we can just take the address right now. */
68947c08596SBrooks Davis 	if (!picked->options[DHO_DHCP_MESSAGE_TYPE].len) {
69047c08596SBrooks Davis 		ip->client->new = picked;
69147c08596SBrooks Davis 
69247c08596SBrooks Davis 		/* Make up some lease expiry times
69347c08596SBrooks Davis 		   XXX these should be configurable. */
69447c08596SBrooks Davis 		ip->client->new->expiry = cur_time + 12000;
69547c08596SBrooks Davis 		ip->client->new->renewal += cur_time + 8000;
69647c08596SBrooks Davis 		ip->client->new->rebind += cur_time + 10000;
69747c08596SBrooks Davis 
69847c08596SBrooks Davis 		ip->client->state = S_REQUESTING;
69947c08596SBrooks Davis 
70047c08596SBrooks Davis 		/* Bind to the address we received. */
70147c08596SBrooks Davis 		bind_lease(ip);
70247c08596SBrooks Davis 		return;
70347c08596SBrooks Davis 	}
70447c08596SBrooks Davis 
70547c08596SBrooks Davis 	/* Go to the REQUESTING state. */
70647c08596SBrooks Davis 	ip->client->destination = iaddr_broadcast;
70747c08596SBrooks Davis 	ip->client->state = S_REQUESTING;
70847c08596SBrooks Davis 	ip->client->first_sending = cur_time;
70947c08596SBrooks Davis 	ip->client->interval = ip->client->config->initial_interval;
71047c08596SBrooks Davis 
71147c08596SBrooks Davis 	/* Make a DHCPREQUEST packet from the lease we picked. */
71247c08596SBrooks Davis 	make_request(ip, picked);
71347c08596SBrooks Davis 	ip->client->xid = ip->client->packet.xid;
71447c08596SBrooks Davis 
71547c08596SBrooks Davis 	/* Toss the lease we picked - we'll get it back in a DHCPACK. */
71647c08596SBrooks Davis 	free_client_lease(picked);
71747c08596SBrooks Davis 
71847c08596SBrooks Davis 	/* Add an immediate timeout to send the first DHCPREQUEST packet. */
71947c08596SBrooks Davis 	send_request(ip);
72047c08596SBrooks Davis }
72147c08596SBrooks Davis 
72247c08596SBrooks Davis /* state_requesting is called when we receive a DHCPACK message after
72347c08596SBrooks Davis    having sent out one or more DHCPREQUEST packets. */
72447c08596SBrooks Davis 
72547c08596SBrooks Davis void
72647c08596SBrooks Davis dhcpack(struct packet *packet)
72747c08596SBrooks Davis {
72847c08596SBrooks Davis 	struct interface_info *ip = packet->interface;
72947c08596SBrooks Davis 	struct client_lease *lease;
73047c08596SBrooks Davis 
73147c08596SBrooks Davis 	/* If we're not receptive to an offer right now, or if the offer
73247c08596SBrooks Davis 	   has an unrecognizable transaction id, then just drop it. */
73347c08596SBrooks Davis 	if (packet->interface->client->xid != packet->raw->xid ||
73447c08596SBrooks Davis 	    (packet->interface->hw_address.hlen != packet->raw->hlen) ||
73547c08596SBrooks Davis 	    (memcmp(packet->interface->hw_address.haddr,
73647c08596SBrooks Davis 	    packet->raw->chaddr, packet->raw->hlen)))
73747c08596SBrooks Davis 		return;
73847c08596SBrooks Davis 
73947c08596SBrooks Davis 	if (ip->client->state != S_REBOOTING &&
74047c08596SBrooks Davis 	    ip->client->state != S_REQUESTING &&
74147c08596SBrooks Davis 	    ip->client->state != S_RENEWING &&
74247c08596SBrooks Davis 	    ip->client->state != S_REBINDING)
74347c08596SBrooks Davis 		return;
74447c08596SBrooks Davis 
74547c08596SBrooks Davis 	note("DHCPACK from %s", piaddr(packet->client_addr));
74647c08596SBrooks Davis 
74747c08596SBrooks Davis 	lease = packet_to_lease(packet);
74847c08596SBrooks Davis 	if (!lease) {
74947c08596SBrooks Davis 		note("packet_to_lease failed.");
75047c08596SBrooks Davis 		return;
75147c08596SBrooks Davis 	}
75247c08596SBrooks Davis 
75347c08596SBrooks Davis 	ip->client->new = lease;
75447c08596SBrooks Davis 
75547c08596SBrooks Davis 	/* Stop resending DHCPREQUEST. */
75647c08596SBrooks Davis 	cancel_timeout(send_request, ip);
75747c08596SBrooks Davis 
75847c08596SBrooks Davis 	/* Figure out the lease time. */
75947c08596SBrooks Davis 	if (ip->client->new->options[DHO_DHCP_LEASE_TIME].data)
76047c08596SBrooks Davis 		ip->client->new->expiry = getULong(
76147c08596SBrooks Davis 		    ip->client->new->options[DHO_DHCP_LEASE_TIME].data);
76247c08596SBrooks Davis 	else
76347c08596SBrooks Davis 		ip->client->new->expiry = default_lease_time;
76447c08596SBrooks Davis 	/* A number that looks negative here is really just very large,
76547c08596SBrooks Davis 	   because the lease expiry offset is unsigned. */
76647c08596SBrooks Davis 	if (ip->client->new->expiry < 0)
76747c08596SBrooks Davis 		ip->client->new->expiry = TIME_MAX;
76847c08596SBrooks Davis 	/* XXX should be fixed by resetting the client state */
76947c08596SBrooks Davis 	if (ip->client->new->expiry < 60)
77047c08596SBrooks Davis 		ip->client->new->expiry = 60;
77147c08596SBrooks Davis 
77247c08596SBrooks Davis 	/* Take the server-provided renewal time if there is one;
77347c08596SBrooks Davis 	   otherwise figure it out according to the spec. */
77447c08596SBrooks Davis 	if (ip->client->new->options[DHO_DHCP_RENEWAL_TIME].len)
77547c08596SBrooks Davis 		ip->client->new->renewal = getULong(
77647c08596SBrooks Davis 		    ip->client->new->options[DHO_DHCP_RENEWAL_TIME].data);
77747c08596SBrooks Davis 	else
77847c08596SBrooks Davis 		ip->client->new->renewal = ip->client->new->expiry / 2;
77947c08596SBrooks Davis 
78047c08596SBrooks Davis 	/* Same deal with the rebind time. */
78147c08596SBrooks Davis 	if (ip->client->new->options[DHO_DHCP_REBINDING_TIME].len)
78247c08596SBrooks Davis 		ip->client->new->rebind = getULong(
78347c08596SBrooks Davis 		    ip->client->new->options[DHO_DHCP_REBINDING_TIME].data);
78447c08596SBrooks Davis 	else
78547c08596SBrooks Davis 		ip->client->new->rebind = ip->client->new->renewal +
78647c08596SBrooks Davis 		    ip->client->new->renewal / 2 + ip->client->new->renewal / 4;
78747c08596SBrooks Davis 
78847c08596SBrooks Davis 	ip->client->new->expiry += cur_time;
78947c08596SBrooks Davis 	/* Lease lengths can never be negative. */
79047c08596SBrooks Davis 	if (ip->client->new->expiry < cur_time)
79147c08596SBrooks Davis 		ip->client->new->expiry = TIME_MAX;
79247c08596SBrooks Davis 	ip->client->new->renewal += cur_time;
79347c08596SBrooks Davis 	if (ip->client->new->renewal < cur_time)
79447c08596SBrooks Davis 		ip->client->new->renewal = TIME_MAX;
79547c08596SBrooks Davis 	ip->client->new->rebind += cur_time;
79647c08596SBrooks Davis 	if (ip->client->new->rebind < cur_time)
79747c08596SBrooks Davis 		ip->client->new->rebind = TIME_MAX;
79847c08596SBrooks Davis 
79947c08596SBrooks Davis 	bind_lease(ip);
80047c08596SBrooks Davis }
80147c08596SBrooks Davis 
80247c08596SBrooks Davis void
80347c08596SBrooks Davis bind_lease(struct interface_info *ip)
80447c08596SBrooks Davis {
805*387016a5SConrad Meyer 	struct option_data *opt;
806*387016a5SConrad Meyer 
80747c08596SBrooks Davis 	/* Remember the medium. */
80847c08596SBrooks Davis 	ip->client->new->medium = ip->client->medium;
80947c08596SBrooks Davis 
810*387016a5SConrad Meyer 	opt = &ip->client->new->options[DHO_INTERFACE_MTU];
811*387016a5SConrad Meyer 	if (opt->len == sizeof(u_int16_t)) {
812*387016a5SConrad Meyer 		u_int16_t mtu = be16dec(opt->data);
813*387016a5SConrad Meyer 		if (mtu < MIN_MTU)
814*387016a5SConrad Meyer 			warning("mtu size %u < %d: ignored", (unsigned)mtu, MIN_MTU);
815*387016a5SConrad Meyer 		else
816*387016a5SConrad Meyer 			interface_set_mtu_unpriv(privfd, mtu);
817*387016a5SConrad Meyer 	}
818*387016a5SConrad Meyer 
81947c08596SBrooks Davis 	/* Write out the new lease. */
82047c08596SBrooks Davis 	write_client_lease(ip, ip->client->new, 0);
82147c08596SBrooks Davis 
82247c08596SBrooks Davis 	/* Run the client script with the new parameters. */
82347c08596SBrooks Davis 	script_init((ip->client->state == S_REQUESTING ? "BOUND" :
82447c08596SBrooks Davis 	    (ip->client->state == S_RENEWING ? "RENEW" :
82547c08596SBrooks Davis 	    (ip->client->state == S_REBOOTING ? "REBOOT" : "REBIND"))),
82647c08596SBrooks Davis 	    ip->client->new->medium);
82747c08596SBrooks Davis 	if (ip->client->active && ip->client->state != S_REBOOTING)
82847c08596SBrooks Davis 		script_write_params("old_", ip->client->active);
82947c08596SBrooks Davis 	script_write_params("new_", ip->client->new);
83047c08596SBrooks Davis 	if (ip->client->alias)
83147c08596SBrooks Davis 		script_write_params("alias_", ip->client->alias);
83247c08596SBrooks Davis 	script_go();
83347c08596SBrooks Davis 
83447c08596SBrooks Davis 	/* Replace the old active lease with the new one. */
83547c08596SBrooks Davis 	if (ip->client->active)
83647c08596SBrooks Davis 		free_client_lease(ip->client->active);
83747c08596SBrooks Davis 	ip->client->active = ip->client->new;
83847c08596SBrooks Davis 	ip->client->new = NULL;
83947c08596SBrooks Davis 
84047c08596SBrooks Davis 	/* Set up a timeout to start the renewal process. */
84147c08596SBrooks Davis 	add_timeout(ip->client->active->renewal, state_bound, ip);
84247c08596SBrooks Davis 
84347c08596SBrooks Davis 	note("bound to %s -- renewal in %d seconds.",
84447c08596SBrooks Davis 	    piaddr(ip->client->active->address),
8459c13d9cdSBrooks Davis 	    (int)(ip->client->active->renewal - cur_time));
84647c08596SBrooks Davis 	ip->client->state = S_BOUND;
84747c08596SBrooks Davis 	reinitialize_interfaces();
84847c08596SBrooks Davis 	go_daemon();
84947c08596SBrooks Davis }
85047c08596SBrooks Davis 
85147c08596SBrooks Davis /*
85247c08596SBrooks Davis  * state_bound is called when we've successfully bound to a particular
85347c08596SBrooks Davis  * lease, but the renewal time on that lease has expired.   We are
85447c08596SBrooks Davis  * expected to unicast a DHCPREQUEST to the server that gave us our
85547c08596SBrooks Davis  * original lease.
85647c08596SBrooks Davis  */
85747c08596SBrooks Davis void
85847c08596SBrooks Davis state_bound(void *ipp)
85947c08596SBrooks Davis {
86047c08596SBrooks Davis 	struct interface_info *ip = ipp;
86147c08596SBrooks Davis 
86247c08596SBrooks Davis 	ASSERT_STATE(state, S_BOUND);
86347c08596SBrooks Davis 
86447c08596SBrooks Davis 	/* T1 has expired. */
86547c08596SBrooks Davis 	make_request(ip, ip->client->active);
86647c08596SBrooks Davis 	ip->client->xid = ip->client->packet.xid;
86747c08596SBrooks Davis 
86847c08596SBrooks Davis 	if (ip->client->active->options[DHO_DHCP_SERVER_IDENTIFIER].len == 4) {
86947c08596SBrooks Davis 		memcpy(ip->client->destination.iabuf, ip->client->active->
87047c08596SBrooks Davis 		    options[DHO_DHCP_SERVER_IDENTIFIER].data, 4);
87147c08596SBrooks Davis 		ip->client->destination.len = 4;
87247c08596SBrooks Davis 	} else
87347c08596SBrooks Davis 		ip->client->destination = iaddr_broadcast;
87447c08596SBrooks Davis 
87547c08596SBrooks Davis 	ip->client->first_sending = cur_time;
87647c08596SBrooks Davis 	ip->client->interval = ip->client->config->initial_interval;
87747c08596SBrooks Davis 	ip->client->state = S_RENEWING;
87847c08596SBrooks Davis 
87947c08596SBrooks Davis 	/* Send the first packet immediately. */
88047c08596SBrooks Davis 	send_request(ip);
88147c08596SBrooks Davis }
88247c08596SBrooks Davis 
88347c08596SBrooks Davis void
88447c08596SBrooks Davis bootp(struct packet *packet)
88547c08596SBrooks Davis {
88647c08596SBrooks Davis 	struct iaddrlist *ap;
88747c08596SBrooks Davis 
88847c08596SBrooks Davis 	if (packet->raw->op != BOOTREPLY)
88947c08596SBrooks Davis 		return;
89047c08596SBrooks Davis 
89147c08596SBrooks Davis 	/* If there's a reject list, make sure this packet's sender isn't
89247c08596SBrooks Davis 	   on it. */
89347c08596SBrooks Davis 	for (ap = packet->interface->client->config->reject_list;
89447c08596SBrooks Davis 	    ap; ap = ap->next) {
89547c08596SBrooks Davis 		if (addr_eq(packet->client_addr, ap->addr)) {
89647c08596SBrooks Davis 			note("BOOTREPLY from %s rejected.", piaddr(ap->addr));
89747c08596SBrooks Davis 			return;
89847c08596SBrooks Davis 		}
89947c08596SBrooks Davis 	}
90047c08596SBrooks Davis 	dhcpoffer(packet);
90147c08596SBrooks Davis }
90247c08596SBrooks Davis 
90347c08596SBrooks Davis void
90447c08596SBrooks Davis dhcp(struct packet *packet)
90547c08596SBrooks Davis {
90647c08596SBrooks Davis 	struct iaddrlist *ap;
90747c08596SBrooks Davis 	void (*handler)(struct packet *);
90847c08596SBrooks Davis 	char *type;
90947c08596SBrooks Davis 
91047c08596SBrooks Davis 	switch (packet->packet_type) {
91147c08596SBrooks Davis 	case DHCPOFFER:
91247c08596SBrooks Davis 		handler = dhcpoffer;
91347c08596SBrooks Davis 		type = "DHCPOFFER";
91447c08596SBrooks Davis 		break;
91547c08596SBrooks Davis 	case DHCPNAK:
91647c08596SBrooks Davis 		handler = dhcpnak;
91747c08596SBrooks Davis 		type = "DHCPNACK";
91847c08596SBrooks Davis 		break;
91947c08596SBrooks Davis 	case DHCPACK:
92047c08596SBrooks Davis 		handler = dhcpack;
92147c08596SBrooks Davis 		type = "DHCPACK";
92247c08596SBrooks Davis 		break;
92347c08596SBrooks Davis 	default:
92447c08596SBrooks Davis 		return;
92547c08596SBrooks Davis 	}
92647c08596SBrooks Davis 
92747c08596SBrooks Davis 	/* If there's a reject list, make sure this packet's sender isn't
92847c08596SBrooks Davis 	   on it. */
92947c08596SBrooks Davis 	for (ap = packet->interface->client->config->reject_list;
93047c08596SBrooks Davis 	    ap; ap = ap->next) {
93147c08596SBrooks Davis 		if (addr_eq(packet->client_addr, ap->addr)) {
93247c08596SBrooks Davis 			note("%s from %s rejected.", type, piaddr(ap->addr));
93347c08596SBrooks Davis 			return;
93447c08596SBrooks Davis 		}
93547c08596SBrooks Davis 	}
93647c08596SBrooks Davis 	(*handler)(packet);
93747c08596SBrooks Davis }
93847c08596SBrooks Davis 
93947c08596SBrooks Davis void
94047c08596SBrooks Davis dhcpoffer(struct packet *packet)
94147c08596SBrooks Davis {
94247c08596SBrooks Davis 	struct interface_info *ip = packet->interface;
94347c08596SBrooks Davis 	struct client_lease *lease, *lp;
94447c08596SBrooks Davis 	int i;
94547c08596SBrooks Davis 	int arp_timeout_needed, stop_selecting;
94647c08596SBrooks Davis 	char *name = packet->options[DHO_DHCP_MESSAGE_TYPE].len ?
94747c08596SBrooks Davis 	    "DHCPOFFER" : "BOOTREPLY";
94847c08596SBrooks Davis 
94947c08596SBrooks Davis 	/* If we're not receptive to an offer right now, or if the offer
95047c08596SBrooks Davis 	   has an unrecognizable transaction id, then just drop it. */
95147c08596SBrooks Davis 	if (ip->client->state != S_SELECTING ||
95247c08596SBrooks Davis 	    packet->interface->client->xid != packet->raw->xid ||
95347c08596SBrooks Davis 	    (packet->interface->hw_address.hlen != packet->raw->hlen) ||
95447c08596SBrooks Davis 	    (memcmp(packet->interface->hw_address.haddr,
95547c08596SBrooks Davis 	    packet->raw->chaddr, packet->raw->hlen)))
95647c08596SBrooks Davis 		return;
95747c08596SBrooks Davis 
95847c08596SBrooks Davis 	note("%s from %s", name, piaddr(packet->client_addr));
95947c08596SBrooks Davis 
96047c08596SBrooks Davis 
96147c08596SBrooks Davis 	/* If this lease doesn't supply the minimum required parameters,
96247c08596SBrooks Davis 	   blow it off. */
96347c08596SBrooks Davis 	for (i = 0; ip->client->config->required_options[i]; i++) {
96447c08596SBrooks Davis 		if (!packet->options[ip->client->config->
96547c08596SBrooks Davis 		    required_options[i]].len) {
96647c08596SBrooks Davis 			note("%s isn't satisfactory.", name);
96747c08596SBrooks Davis 			return;
96847c08596SBrooks Davis 		}
96947c08596SBrooks Davis 	}
97047c08596SBrooks Davis 
97147c08596SBrooks Davis 	/* If we've already seen this lease, don't record it again. */
97247c08596SBrooks Davis 	for (lease = ip->client->offered_leases;
97347c08596SBrooks Davis 	    lease; lease = lease->next) {
97447c08596SBrooks Davis 		if (lease->address.len == sizeof(packet->raw->yiaddr) &&
97547c08596SBrooks Davis 		    !memcmp(lease->address.iabuf,
97647c08596SBrooks Davis 		    &packet->raw->yiaddr, lease->address.len)) {
97747c08596SBrooks Davis 			debug("%s already seen.", name);
97847c08596SBrooks Davis 			return;
97947c08596SBrooks Davis 		}
98047c08596SBrooks Davis 	}
98147c08596SBrooks Davis 
98247c08596SBrooks Davis 	lease = packet_to_lease(packet);
98347c08596SBrooks Davis 	if (!lease) {
98447c08596SBrooks Davis 		note("packet_to_lease failed.");
98547c08596SBrooks Davis 		return;
98647c08596SBrooks Davis 	}
98747c08596SBrooks Davis 
98847c08596SBrooks Davis 	/* If this lease was acquired through a BOOTREPLY, record that
98947c08596SBrooks Davis 	   fact. */
99047c08596SBrooks Davis 	if (!packet->options[DHO_DHCP_MESSAGE_TYPE].len)
99147c08596SBrooks Davis 		lease->is_bootp = 1;
99247c08596SBrooks Davis 
99347c08596SBrooks Davis 	/* Record the medium under which this lease was offered. */
99447c08596SBrooks Davis 	lease->medium = ip->client->medium;
99547c08596SBrooks Davis 
99647c08596SBrooks Davis 	/* Send out an ARP Request for the offered IP address. */
99747c08596SBrooks Davis 	script_init("ARPSEND", lease->medium);
99847c08596SBrooks Davis 	script_write_params("check_", lease);
99947c08596SBrooks Davis 	/* If the script can't send an ARP request without waiting,
100047c08596SBrooks Davis 	   we'll be waiting when we do the ARPCHECK, so don't wait now. */
100147c08596SBrooks Davis 	if (script_go())
100247c08596SBrooks Davis 		arp_timeout_needed = 0;
100347c08596SBrooks Davis 	else
100447c08596SBrooks Davis 		arp_timeout_needed = 2;
100547c08596SBrooks Davis 
100647c08596SBrooks Davis 	/* Figure out when we're supposed to stop selecting. */
100747c08596SBrooks Davis 	stop_selecting =
100847c08596SBrooks Davis 	    ip->client->first_sending + ip->client->config->select_interval;
100947c08596SBrooks Davis 
101047c08596SBrooks Davis 	/* If this is the lease we asked for, put it at the head of the
101147c08596SBrooks Davis 	   list, and don't mess with the arp request timeout. */
101247c08596SBrooks Davis 	if (lease->address.len == ip->client->requested_address.len &&
101347c08596SBrooks Davis 	    !memcmp(lease->address.iabuf,
101447c08596SBrooks Davis 	    ip->client->requested_address.iabuf,
101547c08596SBrooks Davis 	    ip->client->requested_address.len)) {
101647c08596SBrooks Davis 		lease->next = ip->client->offered_leases;
101747c08596SBrooks Davis 		ip->client->offered_leases = lease;
101847c08596SBrooks Davis 	} else {
101947c08596SBrooks Davis 		/* If we already have an offer, and arping for this
102047c08596SBrooks Davis 		   offer would take us past the selection timeout,
102147c08596SBrooks Davis 		   then don't extend the timeout - just hope for the
102247c08596SBrooks Davis 		   best. */
102347c08596SBrooks Davis 		if (ip->client->offered_leases &&
102447c08596SBrooks Davis 		    (cur_time + arp_timeout_needed) > stop_selecting)
102547c08596SBrooks Davis 			arp_timeout_needed = 0;
102647c08596SBrooks Davis 
102747c08596SBrooks Davis 		/* Put the lease at the end of the list. */
102847c08596SBrooks Davis 		lease->next = NULL;
102947c08596SBrooks Davis 		if (!ip->client->offered_leases)
103047c08596SBrooks Davis 			ip->client->offered_leases = lease;
103147c08596SBrooks Davis 		else {
103247c08596SBrooks Davis 			for (lp = ip->client->offered_leases; lp->next;
103347c08596SBrooks Davis 			    lp = lp->next)
103447c08596SBrooks Davis 				;	/* nothing */
103547c08596SBrooks Davis 			lp->next = lease;
103647c08596SBrooks Davis 		}
103747c08596SBrooks Davis 	}
103847c08596SBrooks Davis 
103947c08596SBrooks Davis 	/* If we're supposed to stop selecting before we've had time
104047c08596SBrooks Davis 	   to wait for the ARPREPLY, add some delay to wait for
104147c08596SBrooks Davis 	   the ARPREPLY. */
104247c08596SBrooks Davis 	if (stop_selecting - cur_time < arp_timeout_needed)
104347c08596SBrooks Davis 		stop_selecting = cur_time + arp_timeout_needed;
104447c08596SBrooks Davis 
104547c08596SBrooks Davis 	/* If the selecting interval has expired, go immediately to
104647c08596SBrooks Davis 	   state_selecting().  Otherwise, time out into
104747c08596SBrooks Davis 	   state_selecting at the select interval. */
104847c08596SBrooks Davis 	if (stop_selecting <= 0)
104947c08596SBrooks Davis 		state_selecting(ip);
105047c08596SBrooks Davis 	else {
105147c08596SBrooks Davis 		add_timeout(stop_selecting, state_selecting, ip);
105247c08596SBrooks Davis 		cancel_timeout(send_discover, ip);
105347c08596SBrooks Davis 	}
105447c08596SBrooks Davis }
105547c08596SBrooks Davis 
105647c08596SBrooks Davis /* Allocate a client_lease structure and initialize it from the parameters
105747c08596SBrooks Davis    in the specified packet. */
105847c08596SBrooks Davis 
105947c08596SBrooks Davis struct client_lease *
106047c08596SBrooks Davis packet_to_lease(struct packet *packet)
106147c08596SBrooks Davis {
106247c08596SBrooks Davis 	struct client_lease *lease;
106347c08596SBrooks Davis 	int i;
106447c08596SBrooks Davis 
106547c08596SBrooks Davis 	lease = malloc(sizeof(struct client_lease));
106647c08596SBrooks Davis 
106747c08596SBrooks Davis 	if (!lease) {
106847c08596SBrooks Davis 		warning("dhcpoffer: no memory to record lease.");
106947c08596SBrooks Davis 		return (NULL);
107047c08596SBrooks Davis 	}
107147c08596SBrooks Davis 
107247c08596SBrooks Davis 	memset(lease, 0, sizeof(*lease));
107347c08596SBrooks Davis 
107447c08596SBrooks Davis 	/* Copy the lease options. */
107547c08596SBrooks Davis 	for (i = 0; i < 256; i++) {
107647c08596SBrooks Davis 		if (packet->options[i].len) {
107747c08596SBrooks Davis 			lease->options[i].data =
107847c08596SBrooks Davis 			    malloc(packet->options[i].len + 1);
107947c08596SBrooks Davis 			if (!lease->options[i].data) {
108047c08596SBrooks Davis 				warning("dhcpoffer: no memory for option %d", i);
108147c08596SBrooks Davis 				free_client_lease(lease);
108247c08596SBrooks Davis 				return (NULL);
108347c08596SBrooks Davis 			} else {
108447c08596SBrooks Davis 				memcpy(lease->options[i].data,
108547c08596SBrooks Davis 				    packet->options[i].data,
108647c08596SBrooks Davis 				    packet->options[i].len);
108747c08596SBrooks Davis 				lease->options[i].len =
108847c08596SBrooks Davis 				    packet->options[i].len;
108947c08596SBrooks Davis 				lease->options[i].data[lease->options[i].len] =
109047c08596SBrooks Davis 				    0;
109147c08596SBrooks Davis 			}
109247c08596SBrooks Davis 			if (!check_option(lease,i)) {
109347c08596SBrooks Davis 				/* ignore a bogus lease offer */
109447c08596SBrooks Davis 				warning("Invalid lease option - ignoring offer");
109547c08596SBrooks Davis 				free_client_lease(lease);
109647c08596SBrooks Davis 				return (NULL);
109747c08596SBrooks Davis 			}
109847c08596SBrooks Davis 		}
109947c08596SBrooks Davis 	}
110047c08596SBrooks Davis 
110147c08596SBrooks Davis 	lease->address.len = sizeof(packet->raw->yiaddr);
110247c08596SBrooks Davis 	memcpy(lease->address.iabuf, &packet->raw->yiaddr, lease->address.len);
110347c08596SBrooks Davis 
1104d32438c3SBruce M Simpson 	lease->nextserver.len = sizeof(packet->raw->siaddr);
1105d32438c3SBruce M Simpson 	memcpy(lease->nextserver.iabuf, &packet->raw->siaddr, lease->nextserver.len);
1106d32438c3SBruce M Simpson 
1107acccb9aaSBrooks Davis 	/* If the server name was filled out, copy it.
1108acccb9aaSBrooks Davis 	   Do not attempt to validate the server name as a host name.
1109acccb9aaSBrooks Davis 	   RFC 2131 merely states that sname is NUL-terminated (which do
1110acccb9aaSBrooks Davis 	   do not assume) and that it is the server's host name.  Since
1111acccb9aaSBrooks Davis 	   the ISC client and server allow arbitrary characters, we do
1112acccb9aaSBrooks Davis 	   as well. */
111347c08596SBrooks Davis 	if ((!packet->options[DHO_DHCP_OPTION_OVERLOAD].len ||
111447c08596SBrooks Davis 	    !(packet->options[DHO_DHCP_OPTION_OVERLOAD].data[0] & 2)) &&
111547c08596SBrooks Davis 	    packet->raw->sname[0]) {
111647c08596SBrooks Davis 		lease->server_name = malloc(DHCP_SNAME_LEN + 1);
111747c08596SBrooks Davis 		if (!lease->server_name) {
111847c08596SBrooks Davis 			warning("dhcpoffer: no memory for server name.");
111947c08596SBrooks Davis 			free_client_lease(lease);
112047c08596SBrooks Davis 			return (NULL);
112147c08596SBrooks Davis 		}
112247c08596SBrooks Davis 		memcpy(lease->server_name, packet->raw->sname, DHCP_SNAME_LEN);
112347c08596SBrooks Davis 		lease->server_name[DHCP_SNAME_LEN]='\0';
112447c08596SBrooks Davis 	}
112547c08596SBrooks Davis 
112647c08596SBrooks Davis 	/* Ditto for the filename. */
112747c08596SBrooks Davis 	if ((!packet->options[DHO_DHCP_OPTION_OVERLOAD].len ||
112847c08596SBrooks Davis 	    !(packet->options[DHO_DHCP_OPTION_OVERLOAD].data[0] & 1)) &&
112947c08596SBrooks Davis 	    packet->raw->file[0]) {
113047c08596SBrooks Davis 		/* Don't count on the NUL terminator. */
113147c08596SBrooks Davis 		lease->filename = malloc(DHCP_FILE_LEN + 1);
113247c08596SBrooks Davis 		if (!lease->filename) {
113347c08596SBrooks Davis 			warning("dhcpoffer: no memory for filename.");
113447c08596SBrooks Davis 			free_client_lease(lease);
113547c08596SBrooks Davis 			return (NULL);
113647c08596SBrooks Davis 		}
113747c08596SBrooks Davis 		memcpy(lease->filename, packet->raw->file, DHCP_FILE_LEN);
113847c08596SBrooks Davis 		lease->filename[DHCP_FILE_LEN]='\0';
113947c08596SBrooks Davis 	}
114047c08596SBrooks Davis 	return lease;
114147c08596SBrooks Davis }
114247c08596SBrooks Davis 
114347c08596SBrooks Davis void
114447c08596SBrooks Davis dhcpnak(struct packet *packet)
114547c08596SBrooks Davis {
114647c08596SBrooks Davis 	struct interface_info *ip = packet->interface;
114747c08596SBrooks Davis 
114847c08596SBrooks Davis 	/* If we're not receptive to an offer right now, or if the offer
114947c08596SBrooks Davis 	   has an unrecognizable transaction id, then just drop it. */
115047c08596SBrooks Davis 	if (packet->interface->client->xid != packet->raw->xid ||
115147c08596SBrooks Davis 	    (packet->interface->hw_address.hlen != packet->raw->hlen) ||
115247c08596SBrooks Davis 	    (memcmp(packet->interface->hw_address.haddr,
115347c08596SBrooks Davis 	    packet->raw->chaddr, packet->raw->hlen)))
115447c08596SBrooks Davis 		return;
115547c08596SBrooks Davis 
115647c08596SBrooks Davis 	if (ip->client->state != S_REBOOTING &&
115747c08596SBrooks Davis 	    ip->client->state != S_REQUESTING &&
115847c08596SBrooks Davis 	    ip->client->state != S_RENEWING &&
115947c08596SBrooks Davis 	    ip->client->state != S_REBINDING)
116047c08596SBrooks Davis 		return;
116147c08596SBrooks Davis 
116247c08596SBrooks Davis 	note("DHCPNAK from %s", piaddr(packet->client_addr));
116347c08596SBrooks Davis 
116447c08596SBrooks Davis 	if (!ip->client->active) {
116547c08596SBrooks Davis 		note("DHCPNAK with no active lease.\n");
116647c08596SBrooks Davis 		return;
116747c08596SBrooks Davis 	}
116847c08596SBrooks Davis 
116947c08596SBrooks Davis 	free_client_lease(ip->client->active);
117047c08596SBrooks Davis 	ip->client->active = NULL;
117147c08596SBrooks Davis 
117247c08596SBrooks Davis 	/* Stop sending DHCPREQUEST packets... */
117347c08596SBrooks Davis 	cancel_timeout(send_request, ip);
117447c08596SBrooks Davis 
117547c08596SBrooks Davis 	ip->client->state = S_INIT;
117647c08596SBrooks Davis 	state_init(ip);
117747c08596SBrooks Davis }
117847c08596SBrooks Davis 
117947c08596SBrooks Davis /* Send out a DHCPDISCOVER packet, and set a timeout to send out another
118047c08596SBrooks Davis    one after the right interval has expired.  If we don't get an offer by
118147c08596SBrooks Davis    the time we reach the panic interval, call the panic function. */
118247c08596SBrooks Davis 
118347c08596SBrooks Davis void
118447c08596SBrooks Davis send_discover(void *ipp)
118547c08596SBrooks Davis {
118647c08596SBrooks Davis 	struct interface_info *ip = ipp;
118747c08596SBrooks Davis 	int interval, increase = 1;
118847c08596SBrooks Davis 
118947c08596SBrooks Davis 	/* Figure out how long it's been since we started transmitting. */
119047c08596SBrooks Davis 	interval = cur_time - ip->client->first_sending;
119147c08596SBrooks Davis 
119247c08596SBrooks Davis 	/* If we're past the panic timeout, call the script and tell it
119347c08596SBrooks Davis 	   we haven't found anything for this interface yet. */
119447c08596SBrooks Davis 	if (interval > ip->client->config->timeout) {
119547c08596SBrooks Davis 		state_panic(ip);
119647c08596SBrooks Davis 		return;
119747c08596SBrooks Davis 	}
119847c08596SBrooks Davis 
119947c08596SBrooks Davis 	/* If we're selecting media, try the whole list before doing
120047c08596SBrooks Davis 	   the exponential backoff, but if we've already received an
120147c08596SBrooks Davis 	   offer, stop looping, because we obviously have it right. */
120247c08596SBrooks Davis 	if (!ip->client->offered_leases &&
120347c08596SBrooks Davis 	    ip->client->config->media) {
120447c08596SBrooks Davis 		int fail = 0;
120547c08596SBrooks Davis again:
120647c08596SBrooks Davis 		if (ip->client->medium) {
120747c08596SBrooks Davis 			ip->client->medium = ip->client->medium->next;
120847c08596SBrooks Davis 			increase = 0;
120947c08596SBrooks Davis 		}
121047c08596SBrooks Davis 		if (!ip->client->medium) {
121147c08596SBrooks Davis 			if (fail)
121247c08596SBrooks Davis 				error("No valid media types for %s!", ip->name);
121347c08596SBrooks Davis 			ip->client->medium = ip->client->config->media;
121447c08596SBrooks Davis 			increase = 1;
121547c08596SBrooks Davis 		}
121647c08596SBrooks Davis 
121747c08596SBrooks Davis 		note("Trying medium \"%s\" %d", ip->client->medium->string,
121847c08596SBrooks Davis 		    increase);
121947c08596SBrooks Davis 		script_init("MEDIUM", ip->client->medium);
122047c08596SBrooks Davis 		if (script_go())
122147c08596SBrooks Davis 			goto again;
122247c08596SBrooks Davis 	}
122347c08596SBrooks Davis 
122447c08596SBrooks Davis 	/*
122547c08596SBrooks Davis 	 * If we're supposed to increase the interval, do so.  If it's
122647c08596SBrooks Davis 	 * currently zero (i.e., we haven't sent any packets yet), set
122747c08596SBrooks Davis 	 * it to one; otherwise, add to it a random number between zero
122847c08596SBrooks Davis 	 * and two times itself.  On average, this means that it will
122947c08596SBrooks Davis 	 * double with every transmission.
123047c08596SBrooks Davis 	 */
123147c08596SBrooks Davis 	if (increase) {
123247c08596SBrooks Davis 		if (!ip->client->interval)
123347c08596SBrooks Davis 			ip->client->interval =
123447c08596SBrooks Davis 			    ip->client->config->initial_interval;
123547c08596SBrooks Davis 		else {
123647c08596SBrooks Davis 			ip->client->interval += (arc4random() >> 2) %
123747c08596SBrooks Davis 			    (2 * ip->client->interval);
123847c08596SBrooks Davis 		}
123947c08596SBrooks Davis 
124047c08596SBrooks Davis 		/* Don't backoff past cutoff. */
124147c08596SBrooks Davis 		if (ip->client->interval >
124247c08596SBrooks Davis 		    ip->client->config->backoff_cutoff)
124347c08596SBrooks Davis 			ip->client->interval =
124447c08596SBrooks Davis 				((ip->client->config->backoff_cutoff / 2)
124547c08596SBrooks Davis 				 + ((arc4random() >> 2) %
124647c08596SBrooks Davis 				    ip->client->config->backoff_cutoff));
124747c08596SBrooks Davis 	} else if (!ip->client->interval)
124847c08596SBrooks Davis 		ip->client->interval =
124947c08596SBrooks Davis 			ip->client->config->initial_interval;
125047c08596SBrooks Davis 
125147c08596SBrooks Davis 	/* If the backoff would take us to the panic timeout, just use that
125247c08596SBrooks Davis 	   as the interval. */
125347c08596SBrooks Davis 	if (cur_time + ip->client->interval >
125447c08596SBrooks Davis 	    ip->client->first_sending + ip->client->config->timeout)
125547c08596SBrooks Davis 		ip->client->interval =
125647c08596SBrooks Davis 			(ip->client->first_sending +
125747c08596SBrooks Davis 			 ip->client->config->timeout) - cur_time + 1;
125847c08596SBrooks Davis 
125947c08596SBrooks Davis 	/* Record the number of seconds since we started sending. */
126047c08596SBrooks Davis 	if (interval < 65536)
126147c08596SBrooks Davis 		ip->client->packet.secs = htons(interval);
126247c08596SBrooks Davis 	else
126347c08596SBrooks Davis 		ip->client->packet.secs = htons(65535);
126447c08596SBrooks Davis 	ip->client->secs = ip->client->packet.secs;
126547c08596SBrooks Davis 
126647c08596SBrooks Davis 	note("DHCPDISCOVER on %s to %s port %d interval %d",
1267ba019ae5SPawel Jakub Dawidek 	    ip->name, inet_ntoa(inaddr_broadcast), REMOTE_PORT,
12689c13d9cdSBrooks Davis 	    (int)ip->client->interval);
126947c08596SBrooks Davis 
127047c08596SBrooks Davis 	/* Send out a packet. */
1271235eb530SPawel Jakub Dawidek 	send_packet_unpriv(privfd, &ip->client->packet,
1272235eb530SPawel Jakub Dawidek 	    ip->client->packet_length, inaddr_any, inaddr_broadcast);
127347c08596SBrooks Davis 
127447c08596SBrooks Davis 	add_timeout(cur_time + ip->client->interval, send_discover, ip);
127547c08596SBrooks Davis }
127647c08596SBrooks Davis 
127747c08596SBrooks Davis /*
127847c08596SBrooks Davis  * state_panic gets called if we haven't received any offers in a preset
127947c08596SBrooks Davis  * amount of time.   When this happens, we try to use existing leases
128047c08596SBrooks Davis  * that haven't yet expired, and failing that, we call the client script
128147c08596SBrooks Davis  * and hope it can do something.
128247c08596SBrooks Davis  */
128347c08596SBrooks Davis void
128447c08596SBrooks Davis state_panic(void *ipp)
128547c08596SBrooks Davis {
128647c08596SBrooks Davis 	struct interface_info *ip = ipp;
128747c08596SBrooks Davis 	struct client_lease *loop = ip->client->active;
128847c08596SBrooks Davis 	struct client_lease *lp;
128947c08596SBrooks Davis 
129047c08596SBrooks Davis 	note("No DHCPOFFERS received.");
129147c08596SBrooks Davis 
129247c08596SBrooks Davis 	/* We may not have an active lease, but we may have some
129347c08596SBrooks Davis 	   predefined leases that we can try. */
129447c08596SBrooks Davis 	if (!ip->client->active && ip->client->leases)
129547c08596SBrooks Davis 		goto activate_next;
129647c08596SBrooks Davis 
129747c08596SBrooks Davis 	/* Run through the list of leases and see if one can be used. */
129847c08596SBrooks Davis 	while (ip->client->active) {
129947c08596SBrooks Davis 		if (ip->client->active->expiry > cur_time) {
130047c08596SBrooks Davis 			note("Trying recorded lease %s",
130147c08596SBrooks Davis 			    piaddr(ip->client->active->address));
130247c08596SBrooks Davis 			/* Run the client script with the existing
130347c08596SBrooks Davis 			   parameters. */
130447c08596SBrooks Davis 			script_init("TIMEOUT",
130547c08596SBrooks Davis 			    ip->client->active->medium);
130647c08596SBrooks Davis 			script_write_params("new_", ip->client->active);
130747c08596SBrooks Davis 			if (ip->client->alias)
130847c08596SBrooks Davis 				script_write_params("alias_",
130947c08596SBrooks Davis 				    ip->client->alias);
131047c08596SBrooks Davis 
131147c08596SBrooks Davis 			/* If the old lease is still good and doesn't
131247c08596SBrooks Davis 			   yet need renewal, go into BOUND state and
131347c08596SBrooks Davis 			   timeout at the renewal time. */
131447c08596SBrooks Davis 			if (!script_go()) {
131547c08596SBrooks Davis 				if (cur_time <
131647c08596SBrooks Davis 				    ip->client->active->renewal) {
131747c08596SBrooks Davis 					ip->client->state = S_BOUND;
131847c08596SBrooks Davis 					note("bound: renewal in %d seconds.",
13199c13d9cdSBrooks Davis 					    (int)(ip->client->active->renewal -
13209c13d9cdSBrooks Davis 					    cur_time));
132147c08596SBrooks Davis 					add_timeout(
132247c08596SBrooks Davis 					    ip->client->active->renewal,
132347c08596SBrooks Davis 					    state_bound, ip);
132447c08596SBrooks Davis 				} else {
132547c08596SBrooks Davis 					ip->client->state = S_BOUND;
132647c08596SBrooks Davis 					note("bound: immediate renewal.");
132747c08596SBrooks Davis 					state_bound(ip);
132847c08596SBrooks Davis 				}
132947c08596SBrooks Davis 				reinitialize_interfaces();
133047c08596SBrooks Davis 				go_daemon();
133147c08596SBrooks Davis 				return;
133247c08596SBrooks Davis 			}
133347c08596SBrooks Davis 		}
133447c08596SBrooks Davis 
133547c08596SBrooks Davis 		/* If there are no other leases, give up. */
133647c08596SBrooks Davis 		if (!ip->client->leases) {
133747c08596SBrooks Davis 			ip->client->leases = ip->client->active;
133847c08596SBrooks Davis 			ip->client->active = NULL;
133947c08596SBrooks Davis 			break;
134047c08596SBrooks Davis 		}
134147c08596SBrooks Davis 
134247c08596SBrooks Davis activate_next:
134347c08596SBrooks Davis 		/* Otherwise, put the active lease at the end of the
134447c08596SBrooks Davis 		   lease list, and try another lease.. */
134547c08596SBrooks Davis 		for (lp = ip->client->leases; lp->next; lp = lp->next)
134647c08596SBrooks Davis 			;
134747c08596SBrooks Davis 		lp->next = ip->client->active;
134847c08596SBrooks Davis 		if (lp->next)
134947c08596SBrooks Davis 			lp->next->next = NULL;
135047c08596SBrooks Davis 		ip->client->active = ip->client->leases;
135147c08596SBrooks Davis 		ip->client->leases = ip->client->leases->next;
135247c08596SBrooks Davis 
135347c08596SBrooks Davis 		/* If we already tried this lease, we've exhausted the
135447c08596SBrooks Davis 		   set of leases, so we might as well give up for
135547c08596SBrooks Davis 		   now. */
135647c08596SBrooks Davis 		if (ip->client->active == loop)
135747c08596SBrooks Davis 			break;
135847c08596SBrooks Davis 		else if (!loop)
135947c08596SBrooks Davis 			loop = ip->client->active;
136047c08596SBrooks Davis 	}
136147c08596SBrooks Davis 
136247c08596SBrooks Davis 	/* No leases were available, or what was available didn't work, so
136347c08596SBrooks Davis 	   tell the shell script that we failed to allocate an address,
136447c08596SBrooks Davis 	   and try again later. */
136547c08596SBrooks Davis 	note("No working leases in persistent database - sleeping.\n");
136647c08596SBrooks Davis 	script_init("FAIL", NULL);
136747c08596SBrooks Davis 	if (ip->client->alias)
136847c08596SBrooks Davis 		script_write_params("alias_", ip->client->alias);
136947c08596SBrooks Davis 	script_go();
137047c08596SBrooks Davis 	ip->client->state = S_INIT;
137147c08596SBrooks Davis 	add_timeout(cur_time + ip->client->config->retry_interval, state_init,
137247c08596SBrooks Davis 	    ip);
137347c08596SBrooks Davis 	go_daemon();
137447c08596SBrooks Davis }
137547c08596SBrooks Davis 
137647c08596SBrooks Davis void
137747c08596SBrooks Davis send_request(void *ipp)
137847c08596SBrooks Davis {
137947c08596SBrooks Davis 	struct interface_info *ip = ipp;
1380ba019ae5SPawel Jakub Dawidek 	struct in_addr from, to;
138147c08596SBrooks Davis 	int interval;
138247c08596SBrooks Davis 
138347c08596SBrooks Davis 	/* Figure out how long it's been since we started transmitting. */
138447c08596SBrooks Davis 	interval = cur_time - ip->client->first_sending;
138547c08596SBrooks Davis 
138647c08596SBrooks Davis 	/* If we're in the INIT-REBOOT or REQUESTING state and we're
138747c08596SBrooks Davis 	   past the reboot timeout, go to INIT and see if we can
138847c08596SBrooks Davis 	   DISCOVER an address... */
138947c08596SBrooks Davis 	/* XXX In the INIT-REBOOT state, if we don't get an ACK, it
139047c08596SBrooks Davis 	   means either that we're on a network with no DHCP server,
139147c08596SBrooks Davis 	   or that our server is down.  In the latter case, assuming
139247c08596SBrooks Davis 	   that there is a backup DHCP server, DHCPDISCOVER will get
139347c08596SBrooks Davis 	   us a new address, but we could also have successfully
139447c08596SBrooks Davis 	   reused our old address.  In the former case, we're hosed
139547c08596SBrooks Davis 	   anyway.  This is not a win-prone situation. */
139647c08596SBrooks Davis 	if ((ip->client->state == S_REBOOTING ||
139747c08596SBrooks Davis 	    ip->client->state == S_REQUESTING) &&
139847c08596SBrooks Davis 	    interval > ip->client->config->reboot_timeout) {
139947c08596SBrooks Davis cancel:
140047c08596SBrooks Davis 		ip->client->state = S_INIT;
140147c08596SBrooks Davis 		cancel_timeout(send_request, ip);
140247c08596SBrooks Davis 		state_init(ip);
140347c08596SBrooks Davis 		return;
140447c08596SBrooks Davis 	}
140547c08596SBrooks Davis 
140647c08596SBrooks Davis 	/* If we're in the reboot state, make sure the media is set up
140747c08596SBrooks Davis 	   correctly. */
140847c08596SBrooks Davis 	if (ip->client->state == S_REBOOTING &&
140947c08596SBrooks Davis 	    !ip->client->medium &&
141047c08596SBrooks Davis 	    ip->client->active->medium ) {
141147c08596SBrooks Davis 		script_init("MEDIUM", ip->client->active->medium);
141247c08596SBrooks Davis 
141347c08596SBrooks Davis 		/* If the medium we chose won't fly, go to INIT state. */
141447c08596SBrooks Davis 		if (script_go())
141547c08596SBrooks Davis 			goto cancel;
141647c08596SBrooks Davis 
141747c08596SBrooks Davis 		/* Record the medium. */
141847c08596SBrooks Davis 		ip->client->medium = ip->client->active->medium;
141947c08596SBrooks Davis 	}
142047c08596SBrooks Davis 
142147c08596SBrooks Davis 	/* If the lease has expired, relinquish the address and go back
142247c08596SBrooks Davis 	   to the INIT state. */
142347c08596SBrooks Davis 	if (ip->client->state != S_REQUESTING &&
142447c08596SBrooks Davis 	    cur_time > ip->client->active->expiry) {
142547c08596SBrooks Davis 		/* Run the client script with the new parameters. */
142647c08596SBrooks Davis 		script_init("EXPIRE", NULL);
142747c08596SBrooks Davis 		script_write_params("old_", ip->client->active);
142847c08596SBrooks Davis 		if (ip->client->alias)
142947c08596SBrooks Davis 			script_write_params("alias_", ip->client->alias);
143047c08596SBrooks Davis 		script_go();
143147c08596SBrooks Davis 
143247c08596SBrooks Davis 		/* Now do a preinit on the interface so that we can
143347c08596SBrooks Davis 		   discover a new address. */
143447c08596SBrooks Davis 		script_init("PREINIT", NULL);
143547c08596SBrooks Davis 		if (ip->client->alias)
143647c08596SBrooks Davis 			script_write_params("alias_", ip->client->alias);
143747c08596SBrooks Davis 		script_go();
143847c08596SBrooks Davis 
143947c08596SBrooks Davis 		ip->client->state = S_INIT;
144047c08596SBrooks Davis 		state_init(ip);
144147c08596SBrooks Davis 		return;
144247c08596SBrooks Davis 	}
144347c08596SBrooks Davis 
144447c08596SBrooks Davis 	/* Do the exponential backoff... */
144547c08596SBrooks Davis 	if (!ip->client->interval)
144647c08596SBrooks Davis 		ip->client->interval = ip->client->config->initial_interval;
144747c08596SBrooks Davis 	else
144847c08596SBrooks Davis 		ip->client->interval += ((arc4random() >> 2) %
144947c08596SBrooks Davis 		    (2 * ip->client->interval));
145047c08596SBrooks Davis 
145147c08596SBrooks Davis 	/* Don't backoff past cutoff. */
145247c08596SBrooks Davis 	if (ip->client->interval >
145347c08596SBrooks Davis 	    ip->client->config->backoff_cutoff)
145447c08596SBrooks Davis 		ip->client->interval =
145547c08596SBrooks Davis 		    ((ip->client->config->backoff_cutoff / 2) +
145647c08596SBrooks Davis 		    ((arc4random() >> 2) % ip->client->interval));
145747c08596SBrooks Davis 
145847c08596SBrooks Davis 	/* If the backoff would take us to the expiry time, just set the
145947c08596SBrooks Davis 	   timeout to the expiry time. */
146047c08596SBrooks Davis 	if (ip->client->state != S_REQUESTING &&
146147c08596SBrooks Davis 	    cur_time + ip->client->interval >
146247c08596SBrooks Davis 	    ip->client->active->expiry)
146347c08596SBrooks Davis 		ip->client->interval =
146447c08596SBrooks Davis 		    ip->client->active->expiry - cur_time + 1;
146547c08596SBrooks Davis 
146647c08596SBrooks Davis 	/* If the lease T2 time has elapsed, or if we're not yet bound,
146747c08596SBrooks Davis 	   broadcast the DHCPREQUEST rather than unicasting. */
146847c08596SBrooks Davis 	if (ip->client->state == S_REQUESTING ||
146947c08596SBrooks Davis 	    ip->client->state == S_REBOOTING ||
147047c08596SBrooks Davis 	    cur_time > ip->client->active->rebind)
1471ba019ae5SPawel Jakub Dawidek 		to.s_addr = INADDR_BROADCAST;
147247c08596SBrooks Davis 	else
1473ba019ae5SPawel Jakub Dawidek 		memcpy(&to.s_addr, ip->client->destination.iabuf,
1474ba019ae5SPawel Jakub Dawidek 		    sizeof(to.s_addr));
147547c08596SBrooks Davis 
147647c08596SBrooks Davis 	if (ip->client->state != S_REQUESTING)
147747c08596SBrooks Davis 		memcpy(&from, ip->client->active->address.iabuf,
147847c08596SBrooks Davis 		    sizeof(from));
147947c08596SBrooks Davis 	else
148047c08596SBrooks Davis 		from.s_addr = INADDR_ANY;
148147c08596SBrooks Davis 
148247c08596SBrooks Davis 	/* Record the number of seconds since we started sending. */
148347c08596SBrooks Davis 	if (ip->client->state == S_REQUESTING)
148447c08596SBrooks Davis 		ip->client->packet.secs = ip->client->secs;
148547c08596SBrooks Davis 	else {
148647c08596SBrooks Davis 		if (interval < 65536)
148747c08596SBrooks Davis 			ip->client->packet.secs = htons(interval);
148847c08596SBrooks Davis 		else
148947c08596SBrooks Davis 			ip->client->packet.secs = htons(65535);
149047c08596SBrooks Davis 	}
149147c08596SBrooks Davis 
1492ba019ae5SPawel Jakub Dawidek 	note("DHCPREQUEST on %s to %s port %d", ip->name, inet_ntoa(to),
1493ba019ae5SPawel Jakub Dawidek 	    REMOTE_PORT);
149447c08596SBrooks Davis 
149547c08596SBrooks Davis 	/* Send out a packet. */
1496235eb530SPawel Jakub Dawidek 	send_packet_unpriv(privfd, &ip->client->packet,
1497235eb530SPawel Jakub Dawidek 	    ip->client->packet_length, from, to);
149847c08596SBrooks Davis 
149947c08596SBrooks Davis 	add_timeout(cur_time + ip->client->interval, send_request, ip);
150047c08596SBrooks Davis }
150147c08596SBrooks Davis 
150247c08596SBrooks Davis void
150347c08596SBrooks Davis send_decline(void *ipp)
150447c08596SBrooks Davis {
150547c08596SBrooks Davis 	struct interface_info *ip = ipp;
150647c08596SBrooks Davis 
150747c08596SBrooks Davis 	note("DHCPDECLINE on %s to %s port %d", ip->name,
1508ba019ae5SPawel Jakub Dawidek 	    inet_ntoa(inaddr_broadcast), REMOTE_PORT);
150947c08596SBrooks Davis 
151047c08596SBrooks Davis 	/* Send out a packet. */
1511235eb530SPawel Jakub Dawidek 	send_packet_unpriv(privfd, &ip->client->packet,
1512235eb530SPawel Jakub Dawidek 	    ip->client->packet_length, inaddr_any, inaddr_broadcast);
151347c08596SBrooks Davis }
151447c08596SBrooks Davis 
151547c08596SBrooks Davis void
151647c08596SBrooks Davis make_discover(struct interface_info *ip, struct client_lease *lease)
151747c08596SBrooks Davis {
151847c08596SBrooks Davis 	unsigned char discover = DHCPDISCOVER;
151947c08596SBrooks Davis 	struct tree_cache *options[256];
152047c08596SBrooks Davis 	struct tree_cache option_elements[256];
152147c08596SBrooks Davis 	int i;
152247c08596SBrooks Davis 
152347c08596SBrooks Davis 	memset(option_elements, 0, sizeof(option_elements));
152447c08596SBrooks Davis 	memset(options, 0, sizeof(options));
152547c08596SBrooks Davis 	memset(&ip->client->packet, 0, sizeof(ip->client->packet));
152647c08596SBrooks Davis 
152747c08596SBrooks Davis 	/* Set DHCP_MESSAGE_TYPE to DHCPDISCOVER */
152847c08596SBrooks Davis 	i = DHO_DHCP_MESSAGE_TYPE;
152947c08596SBrooks Davis 	options[i] = &option_elements[i];
153047c08596SBrooks Davis 	options[i]->value = &discover;
153147c08596SBrooks Davis 	options[i]->len = sizeof(discover);
153247c08596SBrooks Davis 	options[i]->buf_size = sizeof(discover);
153347c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
153447c08596SBrooks Davis 
153547c08596SBrooks Davis 	/* Request the options we want */
153647c08596SBrooks Davis 	i  = DHO_DHCP_PARAMETER_REQUEST_LIST;
153747c08596SBrooks Davis 	options[i] = &option_elements[i];
153847c08596SBrooks Davis 	options[i]->value = ip->client->config->requested_options;
153947c08596SBrooks Davis 	options[i]->len = ip->client->config->requested_option_count;
154047c08596SBrooks Davis 	options[i]->buf_size =
154147c08596SBrooks Davis 		ip->client->config->requested_option_count;
154247c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
154347c08596SBrooks Davis 
154447c08596SBrooks Davis 	/* If we had an address, try to get it again. */
154547c08596SBrooks Davis 	if (lease) {
154647c08596SBrooks Davis 		ip->client->requested_address = lease->address;
154747c08596SBrooks Davis 		i = DHO_DHCP_REQUESTED_ADDRESS;
154847c08596SBrooks Davis 		options[i] = &option_elements[i];
154947c08596SBrooks Davis 		options[i]->value = lease->address.iabuf;
155047c08596SBrooks Davis 		options[i]->len = lease->address.len;
155147c08596SBrooks Davis 		options[i]->buf_size = lease->address.len;
155247c08596SBrooks Davis 		options[i]->timeout = 0xFFFFFFFF;
155347c08596SBrooks Davis 	} else
155447c08596SBrooks Davis 		ip->client->requested_address.len = 0;
155547c08596SBrooks Davis 
155647c08596SBrooks Davis 	/* Send any options requested in the config file. */
155747c08596SBrooks Davis 	for (i = 0; i < 256; i++)
155847c08596SBrooks Davis 		if (!options[i] &&
155947c08596SBrooks Davis 		    ip->client->config->send_options[i].data) {
156047c08596SBrooks Davis 			options[i] = &option_elements[i];
156147c08596SBrooks Davis 			options[i]->value =
156247c08596SBrooks Davis 			    ip->client->config->send_options[i].data;
156347c08596SBrooks Davis 			options[i]->len =
156447c08596SBrooks Davis 			    ip->client->config->send_options[i].len;
156547c08596SBrooks Davis 			options[i]->buf_size =
156647c08596SBrooks Davis 			    ip->client->config->send_options[i].len;
156747c08596SBrooks Davis 			options[i]->timeout = 0xFFFFFFFF;
156847c08596SBrooks Davis 		}
156947c08596SBrooks Davis 
1570fcab8addSBrooks Davis 	/* send host name if not set via config file. */
1571fcab8addSBrooks Davis 	if (!options[DHO_HOST_NAME]) {
15720bbe8306SPawel Jakub Dawidek 		if (hostname[0] != '\0') {
1573fcab8addSBrooks Davis 			size_t len;
1574fcab8addSBrooks Davis 			char* posDot = strchr(hostname, '.');
1575fcab8addSBrooks Davis 			if (posDot != NULL)
1576fcab8addSBrooks Davis 				len = posDot - hostname;
1577fcab8addSBrooks Davis 			else
1578fcab8addSBrooks Davis 				len = strlen(hostname);
1579fcab8addSBrooks Davis 			options[DHO_HOST_NAME] = &option_elements[DHO_HOST_NAME];
1580fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->value = hostname;
1581fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->len = len;
1582fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->buf_size = len;
1583fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->timeout = 0xFFFFFFFF;
1584fcab8addSBrooks Davis 		}
1585fcab8addSBrooks Davis 	}
1586fcab8addSBrooks Davis 
1587fcab8addSBrooks Davis 	/* set unique client identifier */
1588fb0eab09SConrad Meyer 	char client_ident[sizeof(ip->hw_address.haddr) + 1];
1589fcab8addSBrooks Davis 	if (!options[DHO_DHCP_CLIENT_IDENTIFIER]) {
15904441bd73SConrad Meyer 		int hwlen = (ip->hw_address.hlen < sizeof(client_ident)-1) ?
15914441bd73SConrad Meyer 				ip->hw_address.hlen : sizeof(client_ident)-1;
15924441bd73SConrad Meyer 		client_ident[0] = ip->hw_address.htype;
15934441bd73SConrad Meyer 		memcpy(&client_ident[1], ip->hw_address.haddr, hwlen);
1594fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER] = &option_elements[DHO_DHCP_CLIENT_IDENTIFIER];
15954441bd73SConrad Meyer 		options[DHO_DHCP_CLIENT_IDENTIFIER]->value = client_ident;
15964441bd73SConrad Meyer 		options[DHO_DHCP_CLIENT_IDENTIFIER]->len = hwlen+1;
15974441bd73SConrad Meyer 		options[DHO_DHCP_CLIENT_IDENTIFIER]->buf_size = hwlen+1;
1598fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->timeout = 0xFFFFFFFF;
1599fcab8addSBrooks Davis 	}
1600fcab8addSBrooks Davis 
160147c08596SBrooks Davis 	/* Set up the option buffer... */
160247c08596SBrooks Davis 	ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0,
160347c08596SBrooks Davis 	    options, 0, 0, 0, NULL, 0);
160447c08596SBrooks Davis 	if (ip->client->packet_length < BOOTP_MIN_LEN)
160547c08596SBrooks Davis 		ip->client->packet_length = BOOTP_MIN_LEN;
160647c08596SBrooks Davis 
160747c08596SBrooks Davis 	ip->client->packet.op = BOOTREQUEST;
160847c08596SBrooks Davis 	ip->client->packet.htype = ip->hw_address.htype;
160947c08596SBrooks Davis 	ip->client->packet.hlen = ip->hw_address.hlen;
161047c08596SBrooks Davis 	ip->client->packet.hops = 0;
161147c08596SBrooks Davis 	ip->client->packet.xid = arc4random();
161247c08596SBrooks Davis 	ip->client->packet.secs = 0; /* filled in by send_discover. */
161347c08596SBrooks Davis 	ip->client->packet.flags = 0;
161447c08596SBrooks Davis 
161547c08596SBrooks Davis 	memset(&(ip->client->packet.ciaddr),
161647c08596SBrooks Davis 	    0, sizeof(ip->client->packet.ciaddr));
161747c08596SBrooks Davis 	memset(&(ip->client->packet.yiaddr),
161847c08596SBrooks Davis 	    0, sizeof(ip->client->packet.yiaddr));
161947c08596SBrooks Davis 	memset(&(ip->client->packet.siaddr),
162047c08596SBrooks Davis 	    0, sizeof(ip->client->packet.siaddr));
162147c08596SBrooks Davis 	memset(&(ip->client->packet.giaddr),
162247c08596SBrooks Davis 	    0, sizeof(ip->client->packet.giaddr));
16234441bd73SConrad Meyer 	memcpy(ip->client->packet.chaddr,
16244441bd73SConrad Meyer 	    ip->hw_address.haddr, ip->hw_address.hlen);
162547c08596SBrooks Davis }
162647c08596SBrooks Davis 
162747c08596SBrooks Davis 
162847c08596SBrooks Davis void
162947c08596SBrooks Davis make_request(struct interface_info *ip, struct client_lease * lease)
163047c08596SBrooks Davis {
163147c08596SBrooks Davis 	unsigned char request = DHCPREQUEST;
163247c08596SBrooks Davis 	struct tree_cache *options[256];
163347c08596SBrooks Davis 	struct tree_cache option_elements[256];
163447c08596SBrooks Davis 	int i;
163547c08596SBrooks Davis 
163647c08596SBrooks Davis 	memset(options, 0, sizeof(options));
163747c08596SBrooks Davis 	memset(&ip->client->packet, 0, sizeof(ip->client->packet));
163847c08596SBrooks Davis 
163947c08596SBrooks Davis 	/* Set DHCP_MESSAGE_TYPE to DHCPREQUEST */
164047c08596SBrooks Davis 	i = DHO_DHCP_MESSAGE_TYPE;
164147c08596SBrooks Davis 	options[i] = &option_elements[i];
164247c08596SBrooks Davis 	options[i]->value = &request;
164347c08596SBrooks Davis 	options[i]->len = sizeof(request);
164447c08596SBrooks Davis 	options[i]->buf_size = sizeof(request);
164547c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
164647c08596SBrooks Davis 
164747c08596SBrooks Davis 	/* Request the options we want */
164847c08596SBrooks Davis 	i = DHO_DHCP_PARAMETER_REQUEST_LIST;
164947c08596SBrooks Davis 	options[i] = &option_elements[i];
165047c08596SBrooks Davis 	options[i]->value = ip->client->config->requested_options;
165147c08596SBrooks Davis 	options[i]->len = ip->client->config->requested_option_count;
165247c08596SBrooks Davis 	options[i]->buf_size =
165347c08596SBrooks Davis 		ip->client->config->requested_option_count;
165447c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
165547c08596SBrooks Davis 
165647c08596SBrooks Davis 	/* If we are requesting an address that hasn't yet been assigned
165747c08596SBrooks Davis 	   to us, use the DHCP Requested Address option. */
165847c08596SBrooks Davis 	if (ip->client->state == S_REQUESTING) {
165947c08596SBrooks Davis 		/* Send back the server identifier... */
166047c08596SBrooks Davis 		i = DHO_DHCP_SERVER_IDENTIFIER;
166147c08596SBrooks Davis 		options[i] = &option_elements[i];
166247c08596SBrooks Davis 		options[i]->value = lease->options[i].data;
166347c08596SBrooks Davis 		options[i]->len = lease->options[i].len;
166447c08596SBrooks Davis 		options[i]->buf_size = lease->options[i].len;
166547c08596SBrooks Davis 		options[i]->timeout = 0xFFFFFFFF;
166647c08596SBrooks Davis 	}
166747c08596SBrooks Davis 	if (ip->client->state == S_REQUESTING ||
166847c08596SBrooks Davis 	    ip->client->state == S_REBOOTING) {
166947c08596SBrooks Davis 		ip->client->requested_address = lease->address;
167047c08596SBrooks Davis 		i = DHO_DHCP_REQUESTED_ADDRESS;
167147c08596SBrooks Davis 		options[i] = &option_elements[i];
167247c08596SBrooks Davis 		options[i]->value = lease->address.iabuf;
167347c08596SBrooks Davis 		options[i]->len = lease->address.len;
167447c08596SBrooks Davis 		options[i]->buf_size = lease->address.len;
167547c08596SBrooks Davis 		options[i]->timeout = 0xFFFFFFFF;
167647c08596SBrooks Davis 	} else
167747c08596SBrooks Davis 		ip->client->requested_address.len = 0;
167847c08596SBrooks Davis 
167947c08596SBrooks Davis 	/* Send any options requested in the config file. */
168047c08596SBrooks Davis 	for (i = 0; i < 256; i++)
168147c08596SBrooks Davis 		if (!options[i] &&
168247c08596SBrooks Davis 		    ip->client->config->send_options[i].data) {
168347c08596SBrooks Davis 			options[i] = &option_elements[i];
168447c08596SBrooks Davis 			options[i]->value =
168547c08596SBrooks Davis 			    ip->client->config->send_options[i].data;
168647c08596SBrooks Davis 			options[i]->len =
168747c08596SBrooks Davis 			    ip->client->config->send_options[i].len;
168847c08596SBrooks Davis 			options[i]->buf_size =
168947c08596SBrooks Davis 			    ip->client->config->send_options[i].len;
169047c08596SBrooks Davis 			options[i]->timeout = 0xFFFFFFFF;
169147c08596SBrooks Davis 		}
169247c08596SBrooks Davis 
1693fcab8addSBrooks Davis 	/* send host name if not set via config file. */
1694fcab8addSBrooks Davis 	if (!options[DHO_HOST_NAME]) {
16950bbe8306SPawel Jakub Dawidek 		if (hostname[0] != '\0') {
1696fcab8addSBrooks Davis 			size_t len;
1697fcab8addSBrooks Davis 			char* posDot = strchr(hostname, '.');
1698fcab8addSBrooks Davis 			if (posDot != NULL)
1699fcab8addSBrooks Davis 				len = posDot - hostname;
1700fcab8addSBrooks Davis 			else
1701fcab8addSBrooks Davis 				len = strlen(hostname);
1702fcab8addSBrooks Davis 			options[DHO_HOST_NAME] = &option_elements[DHO_HOST_NAME];
1703fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->value = hostname;
1704fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->len = len;
1705fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->buf_size = len;
1706fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->timeout = 0xFFFFFFFF;
1707fcab8addSBrooks Davis 		}
1708fcab8addSBrooks Davis 	}
1709fcab8addSBrooks Davis 
1710fcab8addSBrooks Davis 	/* set unique client identifier */
1711fcab8addSBrooks Davis 	char client_ident[sizeof(struct hardware)];
1712fcab8addSBrooks Davis 	if (!options[DHO_DHCP_CLIENT_IDENTIFIER]) {
1713fcab8addSBrooks Davis 		int hwlen = (ip->hw_address.hlen < sizeof(client_ident)-1) ?
1714fcab8addSBrooks Davis 				ip->hw_address.hlen : sizeof(client_ident)-1;
1715fcab8addSBrooks Davis 		client_ident[0] = ip->hw_address.htype;
1716fcab8addSBrooks Davis 		memcpy(&client_ident[1], ip->hw_address.haddr, hwlen);
1717fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER] = &option_elements[DHO_DHCP_CLIENT_IDENTIFIER];
1718fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->value = client_ident;
1719fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->len = hwlen+1;
1720fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->buf_size = hwlen+1;
1721fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->timeout = 0xFFFFFFFF;
1722fcab8addSBrooks Davis 	}
1723fcab8addSBrooks Davis 
172447c08596SBrooks Davis 	/* Set up the option buffer... */
172547c08596SBrooks Davis 	ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0,
172647c08596SBrooks Davis 	    options, 0, 0, 0, NULL, 0);
172747c08596SBrooks Davis 	if (ip->client->packet_length < BOOTP_MIN_LEN)
172847c08596SBrooks Davis 		ip->client->packet_length = BOOTP_MIN_LEN;
172947c08596SBrooks Davis 
173047c08596SBrooks Davis 	ip->client->packet.op = BOOTREQUEST;
173147c08596SBrooks Davis 	ip->client->packet.htype = ip->hw_address.htype;
173247c08596SBrooks Davis 	ip->client->packet.hlen = ip->hw_address.hlen;
173347c08596SBrooks Davis 	ip->client->packet.hops = 0;
173447c08596SBrooks Davis 	ip->client->packet.xid = ip->client->xid;
173547c08596SBrooks Davis 	ip->client->packet.secs = 0; /* Filled in by send_request. */
173647c08596SBrooks Davis 
173747c08596SBrooks Davis 	/* If we own the address we're requesting, put it in ciaddr;
173847c08596SBrooks Davis 	   otherwise set ciaddr to zero. */
173947c08596SBrooks Davis 	if (ip->client->state == S_BOUND ||
174047c08596SBrooks Davis 	    ip->client->state == S_RENEWING ||
174147c08596SBrooks Davis 	    ip->client->state == S_REBINDING) {
174247c08596SBrooks Davis 		memcpy(&ip->client->packet.ciaddr,
174347c08596SBrooks Davis 		    lease->address.iabuf, lease->address.len);
174447c08596SBrooks Davis 		ip->client->packet.flags = 0;
174547c08596SBrooks Davis 	} else {
174647c08596SBrooks Davis 		memset(&ip->client->packet.ciaddr, 0,
174747c08596SBrooks Davis 		    sizeof(ip->client->packet.ciaddr));
174847c08596SBrooks Davis 		ip->client->packet.flags = 0;
174947c08596SBrooks Davis 	}
175047c08596SBrooks Davis 
175147c08596SBrooks Davis 	memset(&ip->client->packet.yiaddr, 0,
175247c08596SBrooks Davis 	    sizeof(ip->client->packet.yiaddr));
175347c08596SBrooks Davis 	memset(&ip->client->packet.siaddr, 0,
175447c08596SBrooks Davis 	    sizeof(ip->client->packet.siaddr));
175547c08596SBrooks Davis 	memset(&ip->client->packet.giaddr, 0,
175647c08596SBrooks Davis 	    sizeof(ip->client->packet.giaddr));
175747c08596SBrooks Davis 	memcpy(ip->client->packet.chaddr,
175847c08596SBrooks Davis 	    ip->hw_address.haddr, ip->hw_address.hlen);
175947c08596SBrooks Davis }
176047c08596SBrooks Davis 
176147c08596SBrooks Davis void
176247c08596SBrooks Davis make_decline(struct interface_info *ip, struct client_lease *lease)
176347c08596SBrooks Davis {
176447c08596SBrooks Davis 	struct tree_cache *options[256], message_type_tree;
176547c08596SBrooks Davis 	struct tree_cache requested_address_tree;
176647c08596SBrooks Davis 	struct tree_cache server_id_tree, client_id_tree;
176747c08596SBrooks Davis 	unsigned char decline = DHCPDECLINE;
176847c08596SBrooks Davis 	int i;
176947c08596SBrooks Davis 
177047c08596SBrooks Davis 	memset(options, 0, sizeof(options));
177147c08596SBrooks Davis 	memset(&ip->client->packet, 0, sizeof(ip->client->packet));
177247c08596SBrooks Davis 
177347c08596SBrooks Davis 	/* Set DHCP_MESSAGE_TYPE to DHCPDECLINE */
177447c08596SBrooks Davis 	i = DHO_DHCP_MESSAGE_TYPE;
177547c08596SBrooks Davis 	options[i] = &message_type_tree;
177647c08596SBrooks Davis 	options[i]->value = &decline;
177747c08596SBrooks Davis 	options[i]->len = sizeof(decline);
177847c08596SBrooks Davis 	options[i]->buf_size = sizeof(decline);
177947c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
178047c08596SBrooks Davis 
178147c08596SBrooks Davis 	/* Send back the server identifier... */
178247c08596SBrooks Davis 	i = DHO_DHCP_SERVER_IDENTIFIER;
178347c08596SBrooks Davis 	options[i] = &server_id_tree;
178447c08596SBrooks Davis 	options[i]->value = lease->options[i].data;
178547c08596SBrooks Davis 	options[i]->len = lease->options[i].len;
178647c08596SBrooks Davis 	options[i]->buf_size = lease->options[i].len;
178747c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
178847c08596SBrooks Davis 
178947c08596SBrooks Davis 	/* Send back the address we're declining. */
179047c08596SBrooks Davis 	i = DHO_DHCP_REQUESTED_ADDRESS;
179147c08596SBrooks Davis 	options[i] = &requested_address_tree;
179247c08596SBrooks Davis 	options[i]->value = lease->address.iabuf;
179347c08596SBrooks Davis 	options[i]->len = lease->address.len;
179447c08596SBrooks Davis 	options[i]->buf_size = lease->address.len;
179547c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
179647c08596SBrooks Davis 
179747c08596SBrooks Davis 	/* Send the uid if the user supplied one. */
179847c08596SBrooks Davis 	i = DHO_DHCP_CLIENT_IDENTIFIER;
179947c08596SBrooks Davis 	if (ip->client->config->send_options[i].len) {
180047c08596SBrooks Davis 		options[i] = &client_id_tree;
180147c08596SBrooks Davis 		options[i]->value = ip->client->config->send_options[i].data;
180247c08596SBrooks Davis 		options[i]->len = ip->client->config->send_options[i].len;
180347c08596SBrooks Davis 		options[i]->buf_size = ip->client->config->send_options[i].len;
180447c08596SBrooks Davis 		options[i]->timeout = 0xFFFFFFFF;
180547c08596SBrooks Davis 	}
180647c08596SBrooks Davis 
180747c08596SBrooks Davis 
180847c08596SBrooks Davis 	/* Set up the option buffer... */
180947c08596SBrooks Davis 	ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0,
181047c08596SBrooks Davis 	    options, 0, 0, 0, NULL, 0);
181147c08596SBrooks Davis 	if (ip->client->packet_length < BOOTP_MIN_LEN)
181247c08596SBrooks Davis 		ip->client->packet_length = BOOTP_MIN_LEN;
181347c08596SBrooks Davis 
181447c08596SBrooks Davis 	ip->client->packet.op = BOOTREQUEST;
181547c08596SBrooks Davis 	ip->client->packet.htype = ip->hw_address.htype;
181647c08596SBrooks Davis 	ip->client->packet.hlen = ip->hw_address.hlen;
181747c08596SBrooks Davis 	ip->client->packet.hops = 0;
181847c08596SBrooks Davis 	ip->client->packet.xid = ip->client->xid;
181947c08596SBrooks Davis 	ip->client->packet.secs = 0; /* Filled in by send_request. */
182047c08596SBrooks Davis 	ip->client->packet.flags = 0;
182147c08596SBrooks Davis 
182247c08596SBrooks Davis 	/* ciaddr must always be zero. */
182347c08596SBrooks Davis 	memset(&ip->client->packet.ciaddr, 0,
182447c08596SBrooks Davis 	    sizeof(ip->client->packet.ciaddr));
182547c08596SBrooks Davis 	memset(&ip->client->packet.yiaddr, 0,
182647c08596SBrooks Davis 	    sizeof(ip->client->packet.yiaddr));
182747c08596SBrooks Davis 	memset(&ip->client->packet.siaddr, 0,
182847c08596SBrooks Davis 	    sizeof(ip->client->packet.siaddr));
182947c08596SBrooks Davis 	memset(&ip->client->packet.giaddr, 0,
183047c08596SBrooks Davis 	    sizeof(ip->client->packet.giaddr));
183147c08596SBrooks Davis 	memcpy(ip->client->packet.chaddr,
183247c08596SBrooks Davis 	    ip->hw_address.haddr, ip->hw_address.hlen);
183347c08596SBrooks Davis }
183447c08596SBrooks Davis 
183547c08596SBrooks Davis void
183647c08596SBrooks Davis free_client_lease(struct client_lease *lease)
183747c08596SBrooks Davis {
183847c08596SBrooks Davis 	int i;
183947c08596SBrooks Davis 
184047c08596SBrooks Davis 	if (lease->server_name)
184147c08596SBrooks Davis 		free(lease->server_name);
184247c08596SBrooks Davis 	if (lease->filename)
184347c08596SBrooks Davis 		free(lease->filename);
184447c08596SBrooks Davis 	for (i = 0; i < 256; i++) {
184547c08596SBrooks Davis 		if (lease->options[i].len)
184647c08596SBrooks Davis 			free(lease->options[i].data);
184747c08596SBrooks Davis 	}
184847c08596SBrooks Davis 	free(lease);
184947c08596SBrooks Davis }
185047c08596SBrooks Davis 
185147c08596SBrooks Davis FILE *leaseFile;
185247c08596SBrooks Davis 
185347c08596SBrooks Davis void
185447c08596SBrooks Davis rewrite_client_leases(void)
185547c08596SBrooks Davis {
185647c08596SBrooks Davis 	struct client_lease *lp;
18577008be5bSPawel Jakub Dawidek 	cap_rights_t rights;
185847c08596SBrooks Davis 
185947c08596SBrooks Davis 	if (!leaseFile) {
186047c08596SBrooks Davis 		leaseFile = fopen(path_dhclient_db, "w");
186147c08596SBrooks Davis 		if (!leaseFile)
186247c08596SBrooks Davis 			error("can't create %s: %m", path_dhclient_db);
186319342eeeSPatrick Kelsey 		cap_rights_init(&rights, CAP_FCNTL, CAP_FSTAT, CAP_FSYNC,
186419342eeeSPatrick Kelsey 		    CAP_FTRUNCATE, CAP_SEEK, CAP_WRITE);
18657008be5bSPawel Jakub Dawidek 		if (cap_rights_limit(fileno(leaseFile), &rights) < 0 &&
1866fe5c7163SPawel Jakub Dawidek 		    errno != ENOSYS) {
1867fe5c7163SPawel Jakub Dawidek 			error("can't limit lease descriptor: %m");
1868fe5c7163SPawel Jakub Dawidek 		}
186919342eeeSPatrick Kelsey 		if (cap_fcntls_limit(fileno(leaseFile), CAP_FCNTL_GETFL) < 0 &&
187019342eeeSPatrick Kelsey 		    errno != ENOSYS) {
187119342eeeSPatrick Kelsey 			error("can't limit lease descriptor fcntls: %m");
187219342eeeSPatrick Kelsey 		}
187347c08596SBrooks Davis 	} else {
187447c08596SBrooks Davis 		fflush(leaseFile);
187547c08596SBrooks Davis 		rewind(leaseFile);
187647c08596SBrooks Davis 	}
187747c08596SBrooks Davis 
187847c08596SBrooks Davis 	for (lp = ifi->client->leases; lp; lp = lp->next)
187947c08596SBrooks Davis 		write_client_lease(ifi, lp, 1);
188047c08596SBrooks Davis 	if (ifi->client->active)
188147c08596SBrooks Davis 		write_client_lease(ifi, ifi->client->active, 1);
188247c08596SBrooks Davis 
188347c08596SBrooks Davis 	fflush(leaseFile);
188447c08596SBrooks Davis 	ftruncate(fileno(leaseFile), ftello(leaseFile));
188547c08596SBrooks Davis 	fsync(fileno(leaseFile));
188647c08596SBrooks Davis }
188747c08596SBrooks Davis 
188847c08596SBrooks Davis void
188947c08596SBrooks Davis write_client_lease(struct interface_info *ip, struct client_lease *lease,
189047c08596SBrooks Davis     int rewrite)
189147c08596SBrooks Davis {
189247c08596SBrooks Davis 	static int leases_written;
189347c08596SBrooks Davis 	struct tm *t;
189447c08596SBrooks Davis 	int i;
189547c08596SBrooks Davis 
189647c08596SBrooks Davis 	if (!rewrite) {
189747c08596SBrooks Davis 		if (leases_written++ > 20) {
189847c08596SBrooks Davis 			rewrite_client_leases();
189947c08596SBrooks Davis 			leases_written = 0;
190047c08596SBrooks Davis 		}
190147c08596SBrooks Davis 	}
190247c08596SBrooks Davis 
190347c08596SBrooks Davis 	/* If the lease came from the config file, we don't need to stash
190447c08596SBrooks Davis 	   a copy in the lease database. */
190547c08596SBrooks Davis 	if (lease->is_static)
190647c08596SBrooks Davis 		return;
190747c08596SBrooks Davis 
190847c08596SBrooks Davis 	if (!leaseFile) {	/* XXX */
190947c08596SBrooks Davis 		leaseFile = fopen(path_dhclient_db, "w");
191047c08596SBrooks Davis 		if (!leaseFile)
191147c08596SBrooks Davis 			error("can't create %s: %m", path_dhclient_db);
191247c08596SBrooks Davis 	}
191347c08596SBrooks Davis 
191447c08596SBrooks Davis 	fprintf(leaseFile, "lease {\n");
191547c08596SBrooks Davis 	if (lease->is_bootp)
191647c08596SBrooks Davis 		fprintf(leaseFile, "  bootp;\n");
191747c08596SBrooks Davis 	fprintf(leaseFile, "  interface \"%s\";\n", ip->name);
191847c08596SBrooks Davis 	fprintf(leaseFile, "  fixed-address %s;\n", piaddr(lease->address));
1919d32438c3SBruce M Simpson 	if (lease->nextserver.len == sizeof(inaddr_any) &&
1920d32438c3SBruce M Simpson 	    0 != memcmp(lease->nextserver.iabuf, &inaddr_any,
1921d32438c3SBruce M Simpson 	    sizeof(inaddr_any)))
1922d32438c3SBruce M Simpson 		fprintf(leaseFile, "  next-server %s;\n",
1923d32438c3SBruce M Simpson 		    piaddr(lease->nextserver));
192447c08596SBrooks Davis 	if (lease->filename)
192547c08596SBrooks Davis 		fprintf(leaseFile, "  filename \"%s\";\n", lease->filename);
192647c08596SBrooks Davis 	if (lease->server_name)
192747c08596SBrooks Davis 		fprintf(leaseFile, "  server-name \"%s\";\n",
192847c08596SBrooks Davis 		    lease->server_name);
192947c08596SBrooks Davis 	if (lease->medium)
193047c08596SBrooks Davis 		fprintf(leaseFile, "  medium \"%s\";\n", lease->medium->string);
193147c08596SBrooks Davis 	for (i = 0; i < 256; i++)
193247c08596SBrooks Davis 		if (lease->options[i].len)
193347c08596SBrooks Davis 			fprintf(leaseFile, "  option %s %s;\n",
193447c08596SBrooks Davis 			    dhcp_options[i].name,
193547c08596SBrooks Davis 			    pretty_print_option(i, lease->options[i].data,
193647c08596SBrooks Davis 			    lease->options[i].len, 1, 1));
193747c08596SBrooks Davis 
193847c08596SBrooks Davis 	t = gmtime(&lease->renewal);
193947c08596SBrooks Davis 	fprintf(leaseFile, "  renew %d %d/%d/%d %02d:%02d:%02d;\n",
194047c08596SBrooks Davis 	    t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday,
194147c08596SBrooks Davis 	    t->tm_hour, t->tm_min, t->tm_sec);
194247c08596SBrooks Davis 	t = gmtime(&lease->rebind);
194347c08596SBrooks Davis 	fprintf(leaseFile, "  rebind %d %d/%d/%d %02d:%02d:%02d;\n",
194447c08596SBrooks Davis 	    t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday,
194547c08596SBrooks Davis 	    t->tm_hour, t->tm_min, t->tm_sec);
194647c08596SBrooks Davis 	t = gmtime(&lease->expiry);
194747c08596SBrooks Davis 	fprintf(leaseFile, "  expire %d %d/%d/%d %02d:%02d:%02d;\n",
194847c08596SBrooks Davis 	    t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday,
194947c08596SBrooks Davis 	    t->tm_hour, t->tm_min, t->tm_sec);
195047c08596SBrooks Davis 	fprintf(leaseFile, "}\n");
195147c08596SBrooks Davis 	fflush(leaseFile);
195247c08596SBrooks Davis }
195347c08596SBrooks Davis 
195447c08596SBrooks Davis void
195547c08596SBrooks Davis script_init(char *reason, struct string_list *medium)
195647c08596SBrooks Davis {
195747c08596SBrooks Davis 	size_t		 len, mediumlen = 0;
195847c08596SBrooks Davis 	struct imsg_hdr	 hdr;
195947c08596SBrooks Davis 	struct buf	*buf;
196047c08596SBrooks Davis 	int		 errs;
196147c08596SBrooks Davis 
196247c08596SBrooks Davis 	if (medium != NULL && medium->string != NULL)
196347c08596SBrooks Davis 		mediumlen = strlen(medium->string);
196447c08596SBrooks Davis 
196547c08596SBrooks Davis 	hdr.code = IMSG_SCRIPT_INIT;
196647c08596SBrooks Davis 	hdr.len = sizeof(struct imsg_hdr) +
196747c08596SBrooks Davis 	    sizeof(size_t) + mediumlen +
196847c08596SBrooks Davis 	    sizeof(size_t) + strlen(reason);
196947c08596SBrooks Davis 
197047c08596SBrooks Davis 	if ((buf = buf_open(hdr.len)) == NULL)
197147c08596SBrooks Davis 		error("buf_open: %m");
197247c08596SBrooks Davis 
197347c08596SBrooks Davis 	errs = 0;
197447c08596SBrooks Davis 	errs += buf_add(buf, &hdr, sizeof(hdr));
197547c08596SBrooks Davis 	errs += buf_add(buf, &mediumlen, sizeof(mediumlen));
197647c08596SBrooks Davis 	if (mediumlen > 0)
197747c08596SBrooks Davis 		errs += buf_add(buf, medium->string, mediumlen);
197847c08596SBrooks Davis 	len = strlen(reason);
197947c08596SBrooks Davis 	errs += buf_add(buf, &len, sizeof(len));
198047c08596SBrooks Davis 	errs += buf_add(buf, reason, len);
198147c08596SBrooks Davis 
198247c08596SBrooks Davis 	if (errs)
198347c08596SBrooks Davis 		error("buf_add: %m");
198447c08596SBrooks Davis 
198547c08596SBrooks Davis 	if (buf_close(privfd, buf) == -1)
198647c08596SBrooks Davis 		error("buf_close: %m");
198747c08596SBrooks Davis }
198847c08596SBrooks Davis 
198947c08596SBrooks Davis void
199047c08596SBrooks Davis priv_script_init(char *reason, char *medium)
199147c08596SBrooks Davis {
199247c08596SBrooks Davis 	struct interface_info *ip = ifi;
199347c08596SBrooks Davis 
199447c08596SBrooks Davis 	if (ip) {
199547c08596SBrooks Davis 		ip->client->scriptEnvsize = 100;
199647c08596SBrooks Davis 		if (ip->client->scriptEnv == NULL)
199747c08596SBrooks Davis 			ip->client->scriptEnv =
199847c08596SBrooks Davis 			    malloc(ip->client->scriptEnvsize * sizeof(char *));
199947c08596SBrooks Davis 		if (ip->client->scriptEnv == NULL)
200047c08596SBrooks Davis 			error("script_init: no memory for environment");
200147c08596SBrooks Davis 
200247c08596SBrooks Davis 		ip->client->scriptEnv[0] = strdup(CLIENT_PATH);
200347c08596SBrooks Davis 		if (ip->client->scriptEnv[0] == NULL)
200447c08596SBrooks Davis 			error("script_init: no memory for environment");
200547c08596SBrooks Davis 
200647c08596SBrooks Davis 		ip->client->scriptEnv[1] = NULL;
200747c08596SBrooks Davis 
200847c08596SBrooks Davis 		script_set_env(ip->client, "", "interface", ip->name);
200947c08596SBrooks Davis 
201047c08596SBrooks Davis 		if (medium)
201147c08596SBrooks Davis 			script_set_env(ip->client, "", "medium", medium);
201247c08596SBrooks Davis 
201347c08596SBrooks Davis 		script_set_env(ip->client, "", "reason", reason);
201447c08596SBrooks Davis 	}
201547c08596SBrooks Davis }
201647c08596SBrooks Davis 
201747c08596SBrooks Davis void
201847c08596SBrooks Davis priv_script_write_params(char *prefix, struct client_lease *lease)
201947c08596SBrooks Davis {
202047c08596SBrooks Davis 	struct interface_info *ip = ifi;
202140767e22SBrooks Davis 	u_int8_t dbuf[1500], *dp = NULL;
202240767e22SBrooks Davis 	int i, len;
202347c08596SBrooks Davis 	char tbuf[128];
202447c08596SBrooks Davis 
202547c08596SBrooks Davis 	script_set_env(ip->client, prefix, "ip_address",
202647c08596SBrooks Davis 	    piaddr(lease->address));
202747c08596SBrooks Davis 
202840767e22SBrooks Davis 	if (ip->client->config->default_actions[DHO_SUBNET_MASK] ==
202940767e22SBrooks Davis 	    ACTION_SUPERSEDE) {
203040767e22SBrooks Davis 		dp = ip->client->config->defaults[DHO_SUBNET_MASK].data;
203140767e22SBrooks Davis 		len = ip->client->config->defaults[DHO_SUBNET_MASK].len;
203240767e22SBrooks Davis 	} else {
203340767e22SBrooks Davis 		dp = lease->options[DHO_SUBNET_MASK].data;
203440767e22SBrooks Davis 		len = lease->options[DHO_SUBNET_MASK].len;
203540767e22SBrooks Davis 	}
203640767e22SBrooks Davis 	if (len && (len < sizeof(lease->address.iabuf))) {
203747c08596SBrooks Davis 		struct iaddr netmask, subnet, broadcast;
203847c08596SBrooks Davis 
203940767e22SBrooks Davis 		memcpy(netmask.iabuf, dp, len);
204040767e22SBrooks Davis 		netmask.len = len;
204147c08596SBrooks Davis 		subnet = subnet_number(lease->address, netmask);
204247c08596SBrooks Davis 		if (subnet.len) {
204347c08596SBrooks Davis 			script_set_env(ip->client, prefix, "network_number",
204447c08596SBrooks Davis 			    piaddr(subnet));
204547c08596SBrooks Davis 			if (!lease->options[DHO_BROADCAST_ADDRESS].len) {
204647c08596SBrooks Davis 				broadcast = broadcast_addr(subnet, netmask);
204747c08596SBrooks Davis 				if (broadcast.len)
204847c08596SBrooks Davis 					script_set_env(ip->client, prefix,
204947c08596SBrooks Davis 					    "broadcast_address",
205047c08596SBrooks Davis 					    piaddr(broadcast));
205147c08596SBrooks Davis 			}
205247c08596SBrooks Davis 		}
205347c08596SBrooks Davis 	}
205447c08596SBrooks Davis 
205547c08596SBrooks Davis 	if (lease->filename)
205647c08596SBrooks Davis 		script_set_env(ip->client, prefix, "filename", lease->filename);
205747c08596SBrooks Davis 	if (lease->server_name)
205847c08596SBrooks Davis 		script_set_env(ip->client, prefix, "server_name",
205947c08596SBrooks Davis 		    lease->server_name);
206047c08596SBrooks Davis 	for (i = 0; i < 256; i++) {
206140767e22SBrooks Davis 		len = 0;
206247c08596SBrooks Davis 
206347c08596SBrooks Davis 		if (ip->client->config->defaults[i].len) {
206447c08596SBrooks Davis 			if (lease->options[i].len) {
206547c08596SBrooks Davis 				switch (
206647c08596SBrooks Davis 				    ip->client->config->default_actions[i]) {
206747c08596SBrooks Davis 				case ACTION_DEFAULT:
206847c08596SBrooks Davis 					dp = lease->options[i].data;
206947c08596SBrooks Davis 					len = lease->options[i].len;
207047c08596SBrooks Davis 					break;
207147c08596SBrooks Davis 				case ACTION_SUPERSEDE:
207247c08596SBrooks Davis supersede:
207347c08596SBrooks Davis 					dp = ip->client->
207447c08596SBrooks Davis 						config->defaults[i].data;
207547c08596SBrooks Davis 					len = ip->client->
207647c08596SBrooks Davis 						config->defaults[i].len;
207747c08596SBrooks Davis 					break;
207847c08596SBrooks Davis 				case ACTION_PREPEND:
207947c08596SBrooks Davis 					len = ip->client->
208047c08596SBrooks Davis 					    config->defaults[i].len +
208147c08596SBrooks Davis 					    lease->options[i].len;
2082043bcc8dSBrian Somers 					if (len >= sizeof(dbuf)) {
208347c08596SBrooks Davis 						warning("no space to %s %s",
208447c08596SBrooks Davis 						    "prepend option",
208547c08596SBrooks Davis 						    dhcp_options[i].name);
208647c08596SBrooks Davis 						goto supersede;
208747c08596SBrooks Davis 					}
208847c08596SBrooks Davis 					dp = dbuf;
208947c08596SBrooks Davis 					memcpy(dp,
209047c08596SBrooks Davis 						ip->client->
209147c08596SBrooks Davis 						config->defaults[i].data,
209247c08596SBrooks Davis 						ip->client->
209347c08596SBrooks Davis 						config->defaults[i].len);
209447c08596SBrooks Davis 					memcpy(dp + ip->client->
209547c08596SBrooks Davis 						config->defaults[i].len,
209647c08596SBrooks Davis 						lease->options[i].data,
209747c08596SBrooks Davis 						lease->options[i].len);
209847c08596SBrooks Davis 					dp[len] = '\0';
209947c08596SBrooks Davis 					break;
210047c08596SBrooks Davis 				case ACTION_APPEND:
2101043bcc8dSBrian Somers 					/*
2102043bcc8dSBrian Somers 					 * When we append, we assume that we're
2103043bcc8dSBrian Somers 					 * appending to text.  Some MS servers
2104043bcc8dSBrian Somers 					 * include a NUL byte at the end of
2105043bcc8dSBrian Somers 					 * the search string provided.
2106043bcc8dSBrian Somers 					 */
210747c08596SBrooks Davis 					len = ip->client->
210847c08596SBrooks Davis 					    config->defaults[i].len +
210947c08596SBrooks Davis 					    lease->options[i].len;
2110043bcc8dSBrian Somers 					if (len >= sizeof(dbuf)) {
211147c08596SBrooks Davis 						warning("no space to %s %s",
211247c08596SBrooks Davis 						    "append option",
211347c08596SBrooks Davis 						    dhcp_options[i].name);
211447c08596SBrooks Davis 						goto supersede;
211547c08596SBrooks Davis 					}
2116043bcc8dSBrian Somers 					memcpy(dbuf,
211747c08596SBrooks Davis 						lease->options[i].data,
211847c08596SBrooks Davis 						lease->options[i].len);
2119043bcc8dSBrian Somers 					for (dp = dbuf + lease->options[i].len;
2120043bcc8dSBrian Somers 					    dp > dbuf; dp--, len--)
2121043bcc8dSBrian Somers 						if (dp[-1] != '\0')
2122043bcc8dSBrian Somers 							break;
2123043bcc8dSBrian Somers 					memcpy(dp,
212447c08596SBrooks Davis 						ip->client->
212547c08596SBrooks Davis 						config->defaults[i].data,
212647c08596SBrooks Davis 						ip->client->
212747c08596SBrooks Davis 						config->defaults[i].len);
2128043bcc8dSBrian Somers 					dp = dbuf;
212947c08596SBrooks Davis 					dp[len] = '\0';
213047c08596SBrooks Davis 				}
213147c08596SBrooks Davis 			} else {
213247c08596SBrooks Davis 				dp = ip->client->
213347c08596SBrooks Davis 					config->defaults[i].data;
213447c08596SBrooks Davis 				len = ip->client->
213547c08596SBrooks Davis 					config->defaults[i].len;
213647c08596SBrooks Davis 			}
213747c08596SBrooks Davis 		} else if (lease->options[i].len) {
213847c08596SBrooks Davis 			len = lease->options[i].len;
213947c08596SBrooks Davis 			dp = lease->options[i].data;
214047c08596SBrooks Davis 		} else {
214147c08596SBrooks Davis 			len = 0;
214247c08596SBrooks Davis 		}
214347c08596SBrooks Davis 		if (len) {
214447c08596SBrooks Davis 			char name[256];
214547c08596SBrooks Davis 
214647c08596SBrooks Davis 			if (dhcp_option_ev_name(name, sizeof(name),
214747c08596SBrooks Davis 			    &dhcp_options[i]))
214847c08596SBrooks Davis 				script_set_env(ip->client, prefix, name,
214947c08596SBrooks Davis 				    pretty_print_option(i, dp, len, 0, 0));
215047c08596SBrooks Davis 		}
215147c08596SBrooks Davis 	}
215247c08596SBrooks Davis 	snprintf(tbuf, sizeof(tbuf), "%d", (int)lease->expiry);
215347c08596SBrooks Davis 	script_set_env(ip->client, prefix, "expiry", tbuf);
215447c08596SBrooks Davis }
215547c08596SBrooks Davis 
215647c08596SBrooks Davis void
215747c08596SBrooks Davis script_write_params(char *prefix, struct client_lease *lease)
215847c08596SBrooks Davis {
215947c08596SBrooks Davis 	size_t		 fn_len = 0, sn_len = 0, pr_len = 0;
216047c08596SBrooks Davis 	struct imsg_hdr	 hdr;
216147c08596SBrooks Davis 	struct buf	*buf;
216247c08596SBrooks Davis 	int		 errs, i;
216347c08596SBrooks Davis 
216447c08596SBrooks Davis 	if (lease->filename != NULL)
216547c08596SBrooks Davis 		fn_len = strlen(lease->filename);
216647c08596SBrooks Davis 	if (lease->server_name != NULL)
216747c08596SBrooks Davis 		sn_len = strlen(lease->server_name);
216847c08596SBrooks Davis 	if (prefix != NULL)
216947c08596SBrooks Davis 		pr_len = strlen(prefix);
217047c08596SBrooks Davis 
217147c08596SBrooks Davis 	hdr.code = IMSG_SCRIPT_WRITE_PARAMS;
217247c08596SBrooks Davis 	hdr.len = sizeof(hdr) + sizeof(struct client_lease) +
217347c08596SBrooks Davis 	    sizeof(size_t) + fn_len + sizeof(size_t) + sn_len +
217447c08596SBrooks Davis 	    sizeof(size_t) + pr_len;
217547c08596SBrooks Davis 
217647c08596SBrooks Davis 	for (i = 0; i < 256; i++)
217747c08596SBrooks Davis 		hdr.len += sizeof(int) + lease->options[i].len;
217847c08596SBrooks Davis 
217947c08596SBrooks Davis 	scripttime = time(NULL);
218047c08596SBrooks Davis 
218147c08596SBrooks Davis 	if ((buf = buf_open(hdr.len)) == NULL)
218247c08596SBrooks Davis 		error("buf_open: %m");
218347c08596SBrooks Davis 
218447c08596SBrooks Davis 	errs = 0;
218547c08596SBrooks Davis 	errs += buf_add(buf, &hdr, sizeof(hdr));
218647c08596SBrooks Davis 	errs += buf_add(buf, lease, sizeof(struct client_lease));
218747c08596SBrooks Davis 	errs += buf_add(buf, &fn_len, sizeof(fn_len));
218847c08596SBrooks Davis 	errs += buf_add(buf, lease->filename, fn_len);
218947c08596SBrooks Davis 	errs += buf_add(buf, &sn_len, sizeof(sn_len));
219047c08596SBrooks Davis 	errs += buf_add(buf, lease->server_name, sn_len);
219147c08596SBrooks Davis 	errs += buf_add(buf, &pr_len, sizeof(pr_len));
219247c08596SBrooks Davis 	errs += buf_add(buf, prefix, pr_len);
219347c08596SBrooks Davis 
219447c08596SBrooks Davis 	for (i = 0; i < 256; i++) {
219547c08596SBrooks Davis 		errs += buf_add(buf, &lease->options[i].len,
219647c08596SBrooks Davis 		    sizeof(lease->options[i].len));
219747c08596SBrooks Davis 		errs += buf_add(buf, lease->options[i].data,
219847c08596SBrooks Davis 		    lease->options[i].len);
219947c08596SBrooks Davis 	}
220047c08596SBrooks Davis 
220147c08596SBrooks Davis 	if (errs)
220247c08596SBrooks Davis 		error("buf_add: %m");
220347c08596SBrooks Davis 
220447c08596SBrooks Davis 	if (buf_close(privfd, buf) == -1)
220547c08596SBrooks Davis 		error("buf_close: %m");
220647c08596SBrooks Davis }
220747c08596SBrooks Davis 
220847c08596SBrooks Davis int
220947c08596SBrooks Davis script_go(void)
221047c08596SBrooks Davis {
221147c08596SBrooks Davis 	struct imsg_hdr	 hdr;
221247c08596SBrooks Davis 	struct buf	*buf;
221347c08596SBrooks Davis 	int		 ret;
221447c08596SBrooks Davis 
221547c08596SBrooks Davis 	hdr.code = IMSG_SCRIPT_GO;
221647c08596SBrooks Davis 	hdr.len = sizeof(struct imsg_hdr);
221747c08596SBrooks Davis 
221847c08596SBrooks Davis 	if ((buf = buf_open(hdr.len)) == NULL)
221947c08596SBrooks Davis 		error("buf_open: %m");
222047c08596SBrooks Davis 
222147c08596SBrooks Davis 	if (buf_add(buf, &hdr, sizeof(hdr)))
222247c08596SBrooks Davis 		error("buf_add: %m");
222347c08596SBrooks Davis 
222447c08596SBrooks Davis 	if (buf_close(privfd, buf) == -1)
222547c08596SBrooks Davis 		error("buf_close: %m");
222647c08596SBrooks Davis 
222747c08596SBrooks Davis 	bzero(&hdr, sizeof(hdr));
222847c08596SBrooks Davis 	buf_read(privfd, &hdr, sizeof(hdr));
222947c08596SBrooks Davis 	if (hdr.code != IMSG_SCRIPT_GO_RET)
223047c08596SBrooks Davis 		error("unexpected msg type %u", hdr.code);
223147c08596SBrooks Davis 	if (hdr.len != sizeof(hdr) + sizeof(int))
223247c08596SBrooks Davis 		error("received corrupted message");
223347c08596SBrooks Davis 	buf_read(privfd, &ret, sizeof(ret));
223447c08596SBrooks Davis 
22356964abefSBrian Somers 	scripttime = time(NULL);
22366964abefSBrian Somers 
223747c08596SBrooks Davis 	return (ret);
223847c08596SBrooks Davis }
223947c08596SBrooks Davis 
224047c08596SBrooks Davis int
224147c08596SBrooks Davis priv_script_go(void)
224247c08596SBrooks Davis {
224347c08596SBrooks Davis 	char *scriptName, *argv[2], **envp, *epp[3], reason[] = "REASON=NBI";
224447c08596SBrooks Davis 	static char client_path[] = CLIENT_PATH;
224547c08596SBrooks Davis 	struct interface_info *ip = ifi;
224647c08596SBrooks Davis 	int pid, wpid, wstatus;
224747c08596SBrooks Davis 
224847c08596SBrooks Davis 	scripttime = time(NULL);
224947c08596SBrooks Davis 
225047c08596SBrooks Davis 	if (ip) {
225147c08596SBrooks Davis 		scriptName = ip->client->config->script_name;
225247c08596SBrooks Davis 		envp = ip->client->scriptEnv;
225347c08596SBrooks Davis 	} else {
225447c08596SBrooks Davis 		scriptName = top_level_config.script_name;
225547c08596SBrooks Davis 		epp[0] = reason;
225647c08596SBrooks Davis 		epp[1] = client_path;
225747c08596SBrooks Davis 		epp[2] = NULL;
225847c08596SBrooks Davis 		envp = epp;
225947c08596SBrooks Davis 	}
226047c08596SBrooks Davis 
226147c08596SBrooks Davis 	argv[0] = scriptName;
226247c08596SBrooks Davis 	argv[1] = NULL;
226347c08596SBrooks Davis 
226447c08596SBrooks Davis 	pid = fork();
226547c08596SBrooks Davis 	if (pid < 0) {
226647c08596SBrooks Davis 		error("fork: %m");
226747c08596SBrooks Davis 		wstatus = 0;
226847c08596SBrooks Davis 	} else if (pid) {
226947c08596SBrooks Davis 		do {
227047c08596SBrooks Davis 			wpid = wait(&wstatus);
227147c08596SBrooks Davis 		} while (wpid != pid && wpid > 0);
227247c08596SBrooks Davis 		if (wpid < 0) {
227347c08596SBrooks Davis 			error("wait: %m");
227447c08596SBrooks Davis 			wstatus = 0;
227547c08596SBrooks Davis 		}
227647c08596SBrooks Davis 	} else {
227747c08596SBrooks Davis 		execve(scriptName, argv, envp);
227847c08596SBrooks Davis 		error("execve (%s, ...): %m", scriptName);
227947c08596SBrooks Davis 	}
228047c08596SBrooks Davis 
228147c08596SBrooks Davis 	if (ip)
228247c08596SBrooks Davis 		script_flush_env(ip->client);
228347c08596SBrooks Davis 
228447c08596SBrooks Davis 	return (wstatus & 0xff);
228547c08596SBrooks Davis }
228647c08596SBrooks Davis 
228747c08596SBrooks Davis void
228847c08596SBrooks Davis script_set_env(struct client_state *client, const char *prefix,
228947c08596SBrooks Davis     const char *name, const char *value)
229047c08596SBrooks Davis {
229147c08596SBrooks Davis 	int i, j, namelen;
229247c08596SBrooks Davis 
2293dd09ce39SSepherosa Ziehau 	/* No `` or $() command substitution allowed in environment values! */
2294dd09ce39SSepherosa Ziehau 	for (j=0; j < strlen(value); j++)
2295dd09ce39SSepherosa Ziehau 		switch (value[j]) {
2296dd09ce39SSepherosa Ziehau 		case '`':
2297dd09ce39SSepherosa Ziehau 		case '$':
2298dd09ce39SSepherosa Ziehau 			warning("illegal character (%c) in value '%s'",
2299dd09ce39SSepherosa Ziehau 			    value[j], value);
2300dd09ce39SSepherosa Ziehau 			/* Ignore this option */
2301dd09ce39SSepherosa Ziehau 			return;
2302dd09ce39SSepherosa Ziehau 		}
2303dd09ce39SSepherosa Ziehau 
230447c08596SBrooks Davis 	namelen = strlen(name);
230547c08596SBrooks Davis 
230647c08596SBrooks Davis 	for (i = 0; client->scriptEnv[i]; i++)
230747c08596SBrooks Davis 		if (strncmp(client->scriptEnv[i], name, namelen) == 0 &&
230847c08596SBrooks Davis 		    client->scriptEnv[i][namelen] == '=')
230947c08596SBrooks Davis 			break;
231047c08596SBrooks Davis 
231147c08596SBrooks Davis 	if (client->scriptEnv[i])
231247c08596SBrooks Davis 		/* Reuse the slot. */
231347c08596SBrooks Davis 		free(client->scriptEnv[i]);
231447c08596SBrooks Davis 	else {
231547c08596SBrooks Davis 		/* New variable.  Expand if necessary. */
231647c08596SBrooks Davis 		if (i >= client->scriptEnvsize - 1) {
231747c08596SBrooks Davis 			char **newscriptEnv;
231847c08596SBrooks Davis 			int newscriptEnvsize = client->scriptEnvsize + 50;
231947c08596SBrooks Davis 
232047c08596SBrooks Davis 			newscriptEnv = realloc(client->scriptEnv,
232147c08596SBrooks Davis 			    newscriptEnvsize);
232247c08596SBrooks Davis 			if (newscriptEnv == NULL) {
232347c08596SBrooks Davis 				free(client->scriptEnv);
232447c08596SBrooks Davis 				client->scriptEnv = NULL;
232547c08596SBrooks Davis 				client->scriptEnvsize = 0;
232647c08596SBrooks Davis 				error("script_set_env: no memory for variable");
232747c08596SBrooks Davis 			}
232847c08596SBrooks Davis 			client->scriptEnv = newscriptEnv;
232947c08596SBrooks Davis 			client->scriptEnvsize = newscriptEnvsize;
233047c08596SBrooks Davis 		}
233147c08596SBrooks Davis 		/* need to set the NULL pointer at end of array beyond
233247c08596SBrooks Davis 		   the new slot. */
233347c08596SBrooks Davis 		client->scriptEnv[i + 1] = NULL;
233447c08596SBrooks Davis 	}
233547c08596SBrooks Davis 	/* Allocate space and format the variable in the appropriate slot. */
233647c08596SBrooks Davis 	client->scriptEnv[i] = malloc(strlen(prefix) + strlen(name) + 1 +
233747c08596SBrooks Davis 	    strlen(value) + 1);
233847c08596SBrooks Davis 	if (client->scriptEnv[i] == NULL)
233947c08596SBrooks Davis 		error("script_set_env: no memory for variable assignment");
234047c08596SBrooks Davis 	snprintf(client->scriptEnv[i], strlen(prefix) + strlen(name) +
234147c08596SBrooks Davis 	    1 + strlen(value) + 1, "%s%s=%s", prefix, name, value);
234247c08596SBrooks Davis }
234347c08596SBrooks Davis 
234447c08596SBrooks Davis void
234547c08596SBrooks Davis script_flush_env(struct client_state *client)
234647c08596SBrooks Davis {
234747c08596SBrooks Davis 	int i;
234847c08596SBrooks Davis 
234947c08596SBrooks Davis 	for (i = 0; client->scriptEnv[i]; i++) {
235047c08596SBrooks Davis 		free(client->scriptEnv[i]);
235147c08596SBrooks Davis 		client->scriptEnv[i] = NULL;
235247c08596SBrooks Davis 	}
235347c08596SBrooks Davis 	client->scriptEnvsize = 0;
235447c08596SBrooks Davis }
235547c08596SBrooks Davis 
235647c08596SBrooks Davis int
235747c08596SBrooks Davis dhcp_option_ev_name(char *buf, size_t buflen, struct option *option)
235847c08596SBrooks Davis {
235947c08596SBrooks Davis 	int i;
236047c08596SBrooks Davis 
236147c08596SBrooks Davis 	for (i = 0; option->name[i]; i++) {
236247c08596SBrooks Davis 		if (i + 1 == buflen)
236347c08596SBrooks Davis 			return 0;
236447c08596SBrooks Davis 		if (option->name[i] == '-')
236547c08596SBrooks Davis 			buf[i] = '_';
236647c08596SBrooks Davis 		else
236747c08596SBrooks Davis 			buf[i] = option->name[i];
236847c08596SBrooks Davis 	}
236947c08596SBrooks Davis 
237047c08596SBrooks Davis 	buf[i] = 0;
237147c08596SBrooks Davis 	return 1;
237247c08596SBrooks Davis }
237347c08596SBrooks Davis 
237447c08596SBrooks Davis void
237547c08596SBrooks Davis go_daemon(void)
237647c08596SBrooks Davis {
237747c08596SBrooks Davis 	static int state = 0;
23787008be5bSPawel Jakub Dawidek 	cap_rights_t rights;
237947c08596SBrooks Davis 
238047c08596SBrooks Davis 	if (no_daemon || state)
238147c08596SBrooks Davis 		return;
238247c08596SBrooks Davis 
238347c08596SBrooks Davis 	state = 1;
238447c08596SBrooks Davis 
238547c08596SBrooks Davis 	/* Stop logging to stderr... */
238647c08596SBrooks Davis 	log_perror = 0;
238747c08596SBrooks Davis 
238847c08596SBrooks Davis 	if (daemon(1, 0) == -1)
238947c08596SBrooks Davis 		error("daemon");
239047c08596SBrooks Davis 
23917008be5bSPawel Jakub Dawidek 	cap_rights_init(&rights);
23927008be5bSPawel Jakub Dawidek 
23934c7a48b7SPawel Jakub Dawidek 	if (pidfile != NULL) {
239423f39c90SDag-Erling Smørgrav 		pidfile_write(pidfile);
23957008be5bSPawel Jakub Dawidek 		if (cap_rights_limit(pidfile_fileno(pidfile), &rights) < 0 &&
23964c7a48b7SPawel Jakub Dawidek 		    errno != ENOSYS) {
23974c7a48b7SPawel Jakub Dawidek 			error("can't limit pidfile descriptor: %m");
23984c7a48b7SPawel Jakub Dawidek 		}
23994c7a48b7SPawel Jakub Dawidek 	}
240023f39c90SDag-Erling Smørgrav 
240147c08596SBrooks Davis 	/* we are chrooted, daemon(3) fails to open /dev/null */
240247c08596SBrooks Davis 	if (nullfd != -1) {
240347c08596SBrooks Davis 		dup2(nullfd, STDIN_FILENO);
240447c08596SBrooks Davis 		dup2(nullfd, STDOUT_FILENO);
240547c08596SBrooks Davis 		dup2(nullfd, STDERR_FILENO);
240647c08596SBrooks Davis 		close(nullfd);
240747c08596SBrooks Davis 		nullfd = -1;
240847c08596SBrooks Davis 	}
2409a6f38228SPawel Jakub Dawidek 
24107008be5bSPawel Jakub Dawidek 	if (cap_rights_limit(STDIN_FILENO, &rights) < 0 && errno != ENOSYS)
2411a6f38228SPawel Jakub Dawidek 		error("can't limit stdin: %m");
24127008be5bSPawel Jakub Dawidek 	cap_rights_init(&rights, CAP_WRITE);
24137008be5bSPawel Jakub Dawidek 	if (cap_rights_limit(STDOUT_FILENO, &rights) < 0 && errno != ENOSYS)
2414a6f38228SPawel Jakub Dawidek 		error("can't limit stdout: %m");
24157008be5bSPawel Jakub Dawidek 	if (cap_rights_limit(STDERR_FILENO, &rights) < 0 && errno != ENOSYS)
2416a6f38228SPawel Jakub Dawidek 		error("can't limit stderr: %m");
241747c08596SBrooks Davis }
241847c08596SBrooks Davis 
241947c08596SBrooks Davis int
242047c08596SBrooks Davis check_option(struct client_lease *l, int option)
242147c08596SBrooks Davis {
242247c08596SBrooks Davis 	char *opbuf;
242347c08596SBrooks Davis 	char *sbuf;
242447c08596SBrooks Davis 
242547c08596SBrooks Davis 	/* we use this, since this is what gets passed to dhclient-script */
242647c08596SBrooks Davis 
242747c08596SBrooks Davis 	opbuf = pretty_print_option(option, l->options[option].data,
242847c08596SBrooks Davis 	    l->options[option].len, 0, 0);
242947c08596SBrooks Davis 
243047c08596SBrooks Davis 	sbuf = option_as_string(option, l->options[option].data,
243147c08596SBrooks Davis 	    l->options[option].len);
243247c08596SBrooks Davis 
243347c08596SBrooks Davis 	switch (option) {
243447c08596SBrooks Davis 	case DHO_SUBNET_MASK:
243547c08596SBrooks Davis 	case DHO_TIME_SERVERS:
243647c08596SBrooks Davis 	case DHO_NAME_SERVERS:
243747c08596SBrooks Davis 	case DHO_ROUTERS:
243847c08596SBrooks Davis 	case DHO_DOMAIN_NAME_SERVERS:
243947c08596SBrooks Davis 	case DHO_LOG_SERVERS:
244047c08596SBrooks Davis 	case DHO_COOKIE_SERVERS:
244147c08596SBrooks Davis 	case DHO_LPR_SERVERS:
244247c08596SBrooks Davis 	case DHO_IMPRESS_SERVERS:
244347c08596SBrooks Davis 	case DHO_RESOURCE_LOCATION_SERVERS:
244447c08596SBrooks Davis 	case DHO_SWAP_SERVER:
244547c08596SBrooks Davis 	case DHO_BROADCAST_ADDRESS:
244647c08596SBrooks Davis 	case DHO_NIS_SERVERS:
244747c08596SBrooks Davis 	case DHO_NTP_SERVERS:
244847c08596SBrooks Davis 	case DHO_NETBIOS_NAME_SERVERS:
244947c08596SBrooks Davis 	case DHO_NETBIOS_DD_SERVER:
245047c08596SBrooks Davis 	case DHO_FONT_SERVERS:
245147c08596SBrooks Davis 	case DHO_DHCP_SERVER_IDENTIFIER:
245238e755fdSBrooks Davis 	case DHO_NISPLUS_SERVERS:
245338e755fdSBrooks Davis 	case DHO_MOBILE_IP_HOME_AGENT:
2454a36c0b6bSBrooks Davis 	case DHO_SMTP_SERVER:
2455a36c0b6bSBrooks Davis 	case DHO_POP_SERVER:
2456a36c0b6bSBrooks Davis 	case DHO_NNTP_SERVER:
2457a36c0b6bSBrooks Davis 	case DHO_WWW_SERVER:
2458a36c0b6bSBrooks Davis 	case DHO_FINGER_SERVER:
2459a36c0b6bSBrooks Davis 	case DHO_IRC_SERVER:
246038e755fdSBrooks Davis 	case DHO_STREETTALK_SERVER:
246138e755fdSBrooks Davis 	case DHO_STREETTALK_DA_SERVER:
246247c08596SBrooks Davis 		if (!ipv4addrs(opbuf)) {
246347c08596SBrooks Davis 			warning("Invalid IP address in option: %s", opbuf);
246447c08596SBrooks Davis 			return (0);
246547c08596SBrooks Davis 		}
246647c08596SBrooks Davis 		return (1)  ;
246747c08596SBrooks Davis 	case DHO_HOST_NAME:
246847c08596SBrooks Davis 	case DHO_NIS_DOMAIN:
246938e755fdSBrooks Davis 	case DHO_NISPLUS_DOMAIN:
247038e755fdSBrooks Davis 	case DHO_TFTP_SERVER_NAME:
247147c08596SBrooks Davis 		if (!res_hnok(sbuf)) {
247247c08596SBrooks Davis 			warning("Bogus Host Name option %d: %s (%s)", option,
247347c08596SBrooks Davis 			    sbuf, opbuf);
247482dbbc41SBrooks Davis 			l->options[option].len = 0;
247582dbbc41SBrooks Davis 			free(l->options[option].data);
247647c08596SBrooks Davis 		}
247747c08596SBrooks Davis 		return (1);
2478b388f1cbSBrooks Davis 	case DHO_DOMAIN_NAME:
2479409139f0SJean-Sébastien Pédron 	case DHO_DOMAIN_SEARCH:
2480f954ec0bSBrooks Davis 		if (!res_hnok(sbuf)) {
2481f954ec0bSBrooks Davis 			if (!check_search(sbuf)) {
2482f954ec0bSBrooks Davis 				warning("Bogus domain search list %d: %s (%s)",
2483f954ec0bSBrooks Davis 				    option, sbuf, opbuf);
248482dbbc41SBrooks Davis 				l->options[option].len = 0;
248582dbbc41SBrooks Davis 				free(l->options[option].data);
2486f954ec0bSBrooks Davis 			}
2487f954ec0bSBrooks Davis 		}
2488f954ec0bSBrooks Davis 		return (1);
248947c08596SBrooks Davis 	case DHO_PAD:
249047c08596SBrooks Davis 	case DHO_TIME_OFFSET:
249147c08596SBrooks Davis 	case DHO_BOOT_SIZE:
249247c08596SBrooks Davis 	case DHO_MERIT_DUMP:
249347c08596SBrooks Davis 	case DHO_ROOT_PATH:
249447c08596SBrooks Davis 	case DHO_EXTENSIONS_PATH:
249547c08596SBrooks Davis 	case DHO_IP_FORWARDING:
249647c08596SBrooks Davis 	case DHO_NON_LOCAL_SOURCE_ROUTING:
249747c08596SBrooks Davis 	case DHO_POLICY_FILTER:
249847c08596SBrooks Davis 	case DHO_MAX_DGRAM_REASSEMBLY:
249947c08596SBrooks Davis 	case DHO_DEFAULT_IP_TTL:
250047c08596SBrooks Davis 	case DHO_PATH_MTU_AGING_TIMEOUT:
250147c08596SBrooks Davis 	case DHO_PATH_MTU_PLATEAU_TABLE:
250247c08596SBrooks Davis 	case DHO_INTERFACE_MTU:
250347c08596SBrooks Davis 	case DHO_ALL_SUBNETS_LOCAL:
250447c08596SBrooks Davis 	case DHO_PERFORM_MASK_DISCOVERY:
250547c08596SBrooks Davis 	case DHO_MASK_SUPPLIER:
250647c08596SBrooks Davis 	case DHO_ROUTER_DISCOVERY:
250747c08596SBrooks Davis 	case DHO_ROUTER_SOLICITATION_ADDRESS:
250847c08596SBrooks Davis 	case DHO_STATIC_ROUTES:
250947c08596SBrooks Davis 	case DHO_TRAILER_ENCAPSULATION:
251047c08596SBrooks Davis 	case DHO_ARP_CACHE_TIMEOUT:
251147c08596SBrooks Davis 	case DHO_IEEE802_3_ENCAPSULATION:
251247c08596SBrooks Davis 	case DHO_DEFAULT_TCP_TTL:
251347c08596SBrooks Davis 	case DHO_TCP_KEEPALIVE_INTERVAL:
251447c08596SBrooks Davis 	case DHO_TCP_KEEPALIVE_GARBAGE:
251547c08596SBrooks Davis 	case DHO_VENDOR_ENCAPSULATED_OPTIONS:
251647c08596SBrooks Davis 	case DHO_NETBIOS_NODE_TYPE:
251747c08596SBrooks Davis 	case DHO_NETBIOS_SCOPE:
251847c08596SBrooks Davis 	case DHO_X_DISPLAY_MANAGER:
251947c08596SBrooks Davis 	case DHO_DHCP_REQUESTED_ADDRESS:
252047c08596SBrooks Davis 	case DHO_DHCP_LEASE_TIME:
252147c08596SBrooks Davis 	case DHO_DHCP_OPTION_OVERLOAD:
252247c08596SBrooks Davis 	case DHO_DHCP_MESSAGE_TYPE:
252347c08596SBrooks Davis 	case DHO_DHCP_PARAMETER_REQUEST_LIST:
252447c08596SBrooks Davis 	case DHO_DHCP_MESSAGE:
252547c08596SBrooks Davis 	case DHO_DHCP_MAX_MESSAGE_SIZE:
252647c08596SBrooks Davis 	case DHO_DHCP_RENEWAL_TIME:
252747c08596SBrooks Davis 	case DHO_DHCP_REBINDING_TIME:
252847c08596SBrooks Davis 	case DHO_DHCP_CLASS_IDENTIFIER:
252947c08596SBrooks Davis 	case DHO_DHCP_CLIENT_IDENTIFIER:
253038e755fdSBrooks Davis 	case DHO_BOOTFILE_NAME:
253147c08596SBrooks Davis 	case DHO_DHCP_USER_CLASS_ID:
253247c08596SBrooks Davis 	case DHO_END:
253347c08596SBrooks Davis 		return (1);
25342fcc7370SEd Maste 	case DHO_CLASSLESS_ROUTES:
25352fcc7370SEd Maste 		return (check_classless_option(l->options[option].data,
25362fcc7370SEd Maste 		    l->options[option].len));
253747c08596SBrooks Davis 	default:
253847c08596SBrooks Davis 		warning("unknown dhcp option value 0x%x", option);
253947c08596SBrooks Davis 		return (unknown_ok);
254047c08596SBrooks Davis 	}
254147c08596SBrooks Davis }
254247c08596SBrooks Davis 
25432fcc7370SEd Maste /* RFC 3442 The Classless Static Routes option checks */
25442fcc7370SEd Maste int
25452fcc7370SEd Maste check_classless_option(unsigned char *data, int len)
25462fcc7370SEd Maste {
25472fcc7370SEd Maste 	int i = 0;
25482fcc7370SEd Maste 	unsigned char width;
25492fcc7370SEd Maste 	in_addr_t addr, mask;
25502fcc7370SEd Maste 
25512fcc7370SEd Maste 	if (len < 5) {
25522fcc7370SEd Maste 		warning("Too small length: %d", len);
25532fcc7370SEd Maste 		return (0);
25542fcc7370SEd Maste 	}
25552fcc7370SEd Maste 	while(i < len) {
25562fcc7370SEd Maste 		width = data[i++];
25572fcc7370SEd Maste 		if (width == 0) {
25582fcc7370SEd Maste 			i += 4;
25592fcc7370SEd Maste 			continue;
25602fcc7370SEd Maste 		} else if (width < 9) {
25612fcc7370SEd Maste 			addr =  (in_addr_t)(data[i]	<< 24);
25622fcc7370SEd Maste 			i += 1;
25632fcc7370SEd Maste 		} else if (width < 17) {
25642fcc7370SEd Maste 			addr =  (in_addr_t)(data[i]	<< 24) +
25652fcc7370SEd Maste 				(in_addr_t)(data[i + 1]	<< 16);
25662fcc7370SEd Maste 			i += 2;
25672fcc7370SEd Maste 		} else if (width < 25) {
25682fcc7370SEd Maste 			addr =  (in_addr_t)(data[i]	<< 24) +
25692fcc7370SEd Maste 				(in_addr_t)(data[i + 1]	<< 16) +
25702fcc7370SEd Maste 				(in_addr_t)(data[i + 2]	<< 8);
25712fcc7370SEd Maste 			i += 3;
25722fcc7370SEd Maste 		} else if (width < 33) {
25732fcc7370SEd Maste 			addr =  (in_addr_t)(data[i]	<< 24) +
25742fcc7370SEd Maste 				(in_addr_t)(data[i + 1]	<< 16) +
25752fcc7370SEd Maste 				(in_addr_t)(data[i + 2]	<< 8)  +
25762fcc7370SEd Maste 				data[i + 3];
25772fcc7370SEd Maste 			i += 4;
25782fcc7370SEd Maste 		} else {
25792fcc7370SEd Maste 			warning("Incorrect subnet width: %d", width);
25802fcc7370SEd Maste 			return (0);
25812fcc7370SEd Maste 		}
25822fcc7370SEd Maste 		mask = (in_addr_t)(~0) << (32 - width);
25832fcc7370SEd Maste 		addr = ntohl(addr);
25842fcc7370SEd Maste 		mask = ntohl(mask);
25852fcc7370SEd Maste 
25862fcc7370SEd Maste 		/*
25872fcc7370SEd Maste 		 * From RFC 3442:
25882fcc7370SEd Maste 		 * ... After deriving a subnet number and subnet mask
25892fcc7370SEd Maste 		 * from each destination descriptor, the DHCP client
25902fcc7370SEd Maste 		 * MUST zero any bits in the subnet number where the
25912fcc7370SEd Maste 		 * corresponding bit in the mask is zero...
25922fcc7370SEd Maste 		 */
25932fcc7370SEd Maste 		if ((addr & mask) != addr) {
25942fcc7370SEd Maste 			addr &= mask;
25952fcc7370SEd Maste 			data[i - 1] = (unsigned char)(
25962fcc7370SEd Maste 				(addr >> (((32 - width)/8)*8)) & 0xFF);
25972fcc7370SEd Maste 		}
25982fcc7370SEd Maste 		i += 4;
25992fcc7370SEd Maste 	}
26002fcc7370SEd Maste 	if (i > len) {
26012fcc7370SEd Maste 		warning("Incorrect data length: %d (must be %d)", len, i);
26022fcc7370SEd Maste 		return (0);
26032fcc7370SEd Maste 	}
26042fcc7370SEd Maste 	return (1);
26052fcc7370SEd Maste }
26062fcc7370SEd Maste 
260747c08596SBrooks Davis int
260847c08596SBrooks Davis res_hnok(const char *dn)
260947c08596SBrooks Davis {
261047c08596SBrooks Davis 	int pch = PERIOD, ch = *dn++;
261147c08596SBrooks Davis 
261247c08596SBrooks Davis 	while (ch != '\0') {
261347c08596SBrooks Davis 		int nch = *dn++;
261447c08596SBrooks Davis 
261547c08596SBrooks Davis 		if (periodchar(ch)) {
261647c08596SBrooks Davis 			;
261747c08596SBrooks Davis 		} else if (periodchar(pch)) {
261847c08596SBrooks Davis 			if (!borderchar(ch))
261947c08596SBrooks Davis 				return (0);
262047c08596SBrooks Davis 		} else if (periodchar(nch) || nch == '\0') {
262147c08596SBrooks Davis 			if (!borderchar(ch))
262247c08596SBrooks Davis 				return (0);
262347c08596SBrooks Davis 		} else {
262447c08596SBrooks Davis 			if (!middlechar(ch))
262547c08596SBrooks Davis 				return (0);
262647c08596SBrooks Davis 		}
262747c08596SBrooks Davis 		pch = ch, ch = nch;
262847c08596SBrooks Davis 	}
262947c08596SBrooks Davis 	return (1);
263047c08596SBrooks Davis }
263147c08596SBrooks Davis 
2632f954ec0bSBrooks Davis int
2633f954ec0bSBrooks Davis check_search(const char *srch)
2634f954ec0bSBrooks Davis {
2635f954ec0bSBrooks Davis         int pch = PERIOD, ch = *srch++;
2636f954ec0bSBrooks Davis 	int domains = 1;
2637f954ec0bSBrooks Davis 
2638f954ec0bSBrooks Davis 	/* 256 char limit re resolv.conf(5) */
2639f954ec0bSBrooks Davis 	if (strlen(srch) > 256)
2640f954ec0bSBrooks Davis 		return (0);
2641f954ec0bSBrooks Davis 
2642f954ec0bSBrooks Davis 	while (whitechar(ch))
2643f954ec0bSBrooks Davis 		ch = *srch++;
2644f954ec0bSBrooks Davis 
2645f954ec0bSBrooks Davis         while (ch != '\0') {
2646f954ec0bSBrooks Davis                 int nch = *srch++;
2647f954ec0bSBrooks Davis 
2648f954ec0bSBrooks Davis                 if (periodchar(ch) || whitechar(ch)) {
2649f954ec0bSBrooks Davis                         ;
2650f954ec0bSBrooks Davis                 } else if (periodchar(pch)) {
2651f954ec0bSBrooks Davis                         if (!borderchar(ch))
2652f954ec0bSBrooks Davis                                 return (0);
2653f954ec0bSBrooks Davis                 } else if (periodchar(nch) || nch == '\0') {
2654f954ec0bSBrooks Davis                         if (!borderchar(ch))
2655f954ec0bSBrooks Davis                                 return (0);
2656f954ec0bSBrooks Davis                 } else {
2657f954ec0bSBrooks Davis                         if (!middlechar(ch))
2658f954ec0bSBrooks Davis                                 return (0);
2659f954ec0bSBrooks Davis                 }
2660f954ec0bSBrooks Davis 		if (!whitechar(ch)) {
2661f954ec0bSBrooks Davis 			pch = ch;
2662f954ec0bSBrooks Davis 		} else {
2663f954ec0bSBrooks Davis 			while (whitechar(nch)) {
2664f954ec0bSBrooks Davis 				nch = *srch++;
2665f954ec0bSBrooks Davis 			}
2666f954ec0bSBrooks Davis 			if (nch != '\0')
2667f954ec0bSBrooks Davis 				domains++;
2668f954ec0bSBrooks Davis 			pch = PERIOD;
2669f954ec0bSBrooks Davis 		}
2670f954ec0bSBrooks Davis 		ch = nch;
2671f954ec0bSBrooks Davis         }
2672f954ec0bSBrooks Davis 	/* 6 domain limit re resolv.conf(5) */
2673f954ec0bSBrooks Davis 	if (domains > 6)
2674f954ec0bSBrooks Davis 		return (0);
2675f954ec0bSBrooks Davis         return (1);
2676f954ec0bSBrooks Davis }
2677f954ec0bSBrooks Davis 
267847c08596SBrooks Davis /* Does buf consist only of dotted decimal ipv4 addrs?
267947c08596SBrooks Davis  * return how many if so,
268047c08596SBrooks Davis  * otherwise, return 0
268147c08596SBrooks Davis  */
268247c08596SBrooks Davis int
268347c08596SBrooks Davis ipv4addrs(char * buf)
268447c08596SBrooks Davis {
268547c08596SBrooks Davis 	struct in_addr jnk;
268647c08596SBrooks Davis 	int count = 0;
268747c08596SBrooks Davis 
268847c08596SBrooks Davis 	while (inet_aton(buf, &jnk) == 1){
268947c08596SBrooks Davis 		count++;
269047c08596SBrooks Davis 		while (periodchar(*buf) || digitchar(*buf))
269147c08596SBrooks Davis 			buf++;
269247c08596SBrooks Davis 		if (*buf == '\0')
269347c08596SBrooks Davis 			return (count);
269447c08596SBrooks Davis 		while (*buf ==  ' ')
269547c08596SBrooks Davis 			buf++;
269647c08596SBrooks Davis 	}
269747c08596SBrooks Davis 	return (0);
269847c08596SBrooks Davis }
269947c08596SBrooks Davis 
270047c08596SBrooks Davis 
270147c08596SBrooks Davis char *
270247c08596SBrooks Davis option_as_string(unsigned int code, unsigned char *data, int len)
270347c08596SBrooks Davis {
270447c08596SBrooks Davis 	static char optbuf[32768]; /* XXX */
270547c08596SBrooks Davis 	char *op = optbuf;
270647c08596SBrooks Davis 	int opleft = sizeof(optbuf);
270747c08596SBrooks Davis 	unsigned char *dp = data;
270847c08596SBrooks Davis 
270947c08596SBrooks Davis 	if (code > 255)
271047c08596SBrooks Davis 		error("option_as_string: bad code %d", code);
271147c08596SBrooks Davis 
271247c08596SBrooks Davis 	for (; dp < data + len; dp++) {
271347c08596SBrooks Davis 		if (!isascii(*dp) || !isprint(*dp)) {
271447c08596SBrooks Davis 			if (dp + 1 != data + len || *dp != 0) {
271547c08596SBrooks Davis 				snprintf(op, opleft, "\\%03o", *dp);
271647c08596SBrooks Davis 				op += 4;
271747c08596SBrooks Davis 				opleft -= 4;
271847c08596SBrooks Davis 			}
271947c08596SBrooks Davis 		} else if (*dp == '"' || *dp == '\'' || *dp == '$' ||
272047c08596SBrooks Davis 		    *dp == '`' || *dp == '\\') {
272147c08596SBrooks Davis 			*op++ = '\\';
272247c08596SBrooks Davis 			*op++ = *dp;
272347c08596SBrooks Davis 			opleft -= 2;
272447c08596SBrooks Davis 		} else {
272547c08596SBrooks Davis 			*op++ = *dp;
272647c08596SBrooks Davis 			opleft--;
272747c08596SBrooks Davis 		}
272847c08596SBrooks Davis 	}
272947c08596SBrooks Davis 	if (opleft < 1)
273047c08596SBrooks Davis 		goto toobig;
273147c08596SBrooks Davis 	*op = 0;
273247c08596SBrooks Davis 	return optbuf;
273347c08596SBrooks Davis toobig:
273447c08596SBrooks Davis 	warning("dhcp option too large");
273547c08596SBrooks Davis 	return "<error>";
273647c08596SBrooks Davis }
273747c08596SBrooks Davis 
273847c08596SBrooks Davis int
273947c08596SBrooks Davis fork_privchld(int fd, int fd2)
274047c08596SBrooks Davis {
274147c08596SBrooks Davis 	struct pollfd pfd[1];
274247c08596SBrooks Davis 	int nfds;
274347c08596SBrooks Davis 
274447c08596SBrooks Davis 	switch (fork()) {
274547c08596SBrooks Davis 	case -1:
274647c08596SBrooks Davis 		error("cannot fork");
274747c08596SBrooks Davis 	case 0:
274847c08596SBrooks Davis 		break;
274947c08596SBrooks Davis 	default:
275047c08596SBrooks Davis 		return (0);
275147c08596SBrooks Davis 	}
275247c08596SBrooks Davis 
275347c08596SBrooks Davis 	setproctitle("%s [priv]", ifi->name);
275447c08596SBrooks Davis 
275570892546SEd Schouten 	setsid();
275647c08596SBrooks Davis 	dup2(nullfd, STDIN_FILENO);
275747c08596SBrooks Davis 	dup2(nullfd, STDOUT_FILENO);
275847c08596SBrooks Davis 	dup2(nullfd, STDERR_FILENO);
275947c08596SBrooks Davis 	close(nullfd);
276047c08596SBrooks Davis 	close(fd2);
2761235eb530SPawel Jakub Dawidek 	close(ifi->rfdesc);
2762235eb530SPawel Jakub Dawidek 	ifi->rfdesc = -1;
276347c08596SBrooks Davis 
276447c08596SBrooks Davis 	for (;;) {
276547c08596SBrooks Davis 		pfd[0].fd = fd;
276647c08596SBrooks Davis 		pfd[0].events = POLLIN;
276747c08596SBrooks Davis 		if ((nfds = poll(pfd, 1, INFTIM)) == -1)
276847c08596SBrooks Davis 			if (errno != EINTR)
276947c08596SBrooks Davis 				error("poll error");
277047c08596SBrooks Davis 
277147c08596SBrooks Davis 		if (nfds == 0 || !(pfd[0].revents & POLLIN))
277247c08596SBrooks Davis 			continue;
277347c08596SBrooks Davis 
2774235eb530SPawel Jakub Dawidek 		dispatch_imsg(ifi, fd);
277547c08596SBrooks Davis 	}
277647c08596SBrooks Davis }
2777