147c08596SBrooks Davis /* $OpenBSD: dhclient.c,v 1.63 2005/02/06 17:10:13 krw Exp $ */ 247c08596SBrooks Davis 38a16b7a1SPedro F. Giffuni /*- 48a16b7a1SPedro F. Giffuni * SPDX-License-Identifier: BSD-3-Clause 58a16b7a1SPedro F. Giffuni * 647c08596SBrooks Davis * Copyright 2004 Henning Brauer <henning@openbsd.org> 747c08596SBrooks Davis * Copyright (c) 1995, 1996, 1997, 1998, 1999 847c08596SBrooks Davis * The Internet Software Consortium. All rights reserved. 947c08596SBrooks Davis * 1047c08596SBrooks Davis * Redistribution and use in source and binary forms, with or without 1147c08596SBrooks Davis * modification, are permitted provided that the following conditions 1247c08596SBrooks Davis * are met: 1347c08596SBrooks Davis * 1447c08596SBrooks Davis * 1. Redistributions of source code must retain the above copyright 1547c08596SBrooks Davis * notice, this list of conditions and the following disclaimer. 1647c08596SBrooks Davis * 2. Redistributions in binary form must reproduce the above copyright 1747c08596SBrooks Davis * notice, this list of conditions and the following disclaimer in the 1847c08596SBrooks Davis * documentation and/or other materials provided with the distribution. 1947c08596SBrooks Davis * 3. Neither the name of The Internet Software Consortium nor the names 2047c08596SBrooks Davis * of its contributors may be used to endorse or promote products derived 2147c08596SBrooks Davis * from this software without specific prior written permission. 2247c08596SBrooks Davis * 2347c08596SBrooks Davis * THIS SOFTWARE IS PROVIDED BY THE INTERNET SOFTWARE CONSORTIUM AND 2447c08596SBrooks Davis * CONTRIBUTORS ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, 2547c08596SBrooks Davis * INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF 2647c08596SBrooks Davis * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE 2747c08596SBrooks Davis * DISCLAIMED. IN NO EVENT SHALL THE INTERNET SOFTWARE CONSORTIUM OR 2847c08596SBrooks Davis * CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, 2947c08596SBrooks Davis * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT 3047c08596SBrooks Davis * LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF 3147c08596SBrooks Davis * USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND 3247c08596SBrooks Davis * ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, 3347c08596SBrooks Davis * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT 3447c08596SBrooks Davis * OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 3547c08596SBrooks Davis * SUCH DAMAGE. 3647c08596SBrooks Davis * 3747c08596SBrooks Davis * This software has been written for the Internet Software Consortium 3847c08596SBrooks Davis * by Ted Lemon <mellon@fugue.com> in cooperation with Vixie 3947c08596SBrooks Davis * Enterprises. To learn more about the Internet Software Consortium, 4047c08596SBrooks Davis * see ``http://www.vix.com/isc''. To learn more about Vixie 4147c08596SBrooks Davis * Enterprises, see ``http://www.vix.com''. 4247c08596SBrooks Davis * 4347c08596SBrooks Davis * This client was substantially modified and enhanced by Elliot Poger 4447c08596SBrooks Davis * for use on Linux while he was working on the MosquitoNet project at 4547c08596SBrooks Davis * Stanford. 4647c08596SBrooks Davis * 4747c08596SBrooks Davis * The current version owes much to Elliot's Linux enhancements, but 4847c08596SBrooks Davis * was substantially reorganized and partially rewritten by Ted Lemon 4947c08596SBrooks Davis * so as to use the same networking framework that the Internet Software 5047c08596SBrooks Davis * Consortium DHCP server uses. Much system-specific configuration code 5147c08596SBrooks Davis * was moved into a shell script so that as support for more operating 5247c08596SBrooks Davis * systems is added, it will not be necessary to port and maintain 5347c08596SBrooks Davis * system-specific configuration code to these operating systems - instead, 5447c08596SBrooks Davis * the shell script can invoke the native tools to accomplish the same 5547c08596SBrooks Davis * purpose. 5647c08596SBrooks Davis */ 5747c08596SBrooks Davis 588794fdbbSBrooks Davis #include <sys/cdefs.h> 598794fdbbSBrooks Davis __FBSDID("$FreeBSD$"); 608794fdbbSBrooks Davis 6147c08596SBrooks Davis #include "dhcpd.h" 6247c08596SBrooks Davis #include "privsep.h" 6347c08596SBrooks Davis 64b881b8beSRobert Watson #include <sys/capsicum.h> 65387016a5SConrad Meyer #include <sys/endian.h> 66de2c882fSPawel Jakub Dawidek 677672a014SMariusz Zaborski #include <capsicum_helpers.h> 6871c6c44dSEitan Adler #include <libgen.h> 697672a014SMariusz Zaborski 702b19b6fcSBrooks Davis #include <net80211/ieee80211_freebsd.h> 712b19b6fcSBrooks Davis 7271c6c44dSEitan Adler 732b19b6fcSBrooks Davis #ifndef _PATH_VAREMPTY 742b19b6fcSBrooks Davis #define _PATH_VAREMPTY "/var/empty" 752b19b6fcSBrooks Davis #endif 762b19b6fcSBrooks Davis 7747c08596SBrooks Davis #define PERIOD 0x2e 7847c08596SBrooks Davis #define hyphenchar(c) ((c) == 0x2d) 7947c08596SBrooks Davis #define bslashchar(c) ((c) == 0x5c) 8047c08596SBrooks Davis #define periodchar(c) ((c) == PERIOD) 8147c08596SBrooks Davis #define asterchar(c) ((c) == 0x2a) 8247c08596SBrooks Davis #define alphachar(c) (((c) >= 0x41 && (c) <= 0x5a) || \ 8347c08596SBrooks Davis ((c) >= 0x61 && (c) <= 0x7a)) 8447c08596SBrooks Davis #define digitchar(c) ((c) >= 0x30 && (c) <= 0x39) 85f954ec0bSBrooks Davis #define whitechar(c) ((c) == ' ' || (c) == '\t') 8647c08596SBrooks Davis 8747c08596SBrooks Davis #define borderchar(c) (alphachar(c) || digitchar(c)) 8847c08596SBrooks Davis #define middlechar(c) (borderchar(c) || hyphenchar(c)) 8947c08596SBrooks Davis #define domainchar(c) ((c) > 0x20 && (c) < 0x7f) 9047c08596SBrooks Davis 9147c08596SBrooks Davis #define CLIENT_PATH "PATH=/usr/bin:/usr/sbin:/bin:/sbin" 9247c08596SBrooks Davis 93cb003dd9SMariusz Zaborski cap_channel_t *capsyslog; 94cb003dd9SMariusz Zaborski 9547c08596SBrooks Davis time_t cur_time; 9671c6c44dSEitan Adler static time_t default_lease_time = 43200; /* 12 hours... */ 9747c08596SBrooks Davis 9879a1d195SAlan Somers const char *path_dhclient_conf = _PATH_DHCLIENT_CONF; 9947c08596SBrooks Davis char *path_dhclient_db = NULL; 10047c08596SBrooks Davis 10147c08596SBrooks Davis int log_perror = 1; 10271c6c44dSEitan Adler static int privfd; 10371c6c44dSEitan Adler static int nullfd = -1; 10447c08596SBrooks Davis 10571c6c44dSEitan Adler static char hostname[_POSIX_HOST_NAME_MAX + 1]; 1060bbe8306SPawel Jakub Dawidek 10771c6c44dSEitan Adler static struct iaddr iaddr_broadcast = { 4, { 255, 255, 255, 255 } }; 10871c6c44dSEitan Adler static struct in_addr inaddr_any, inaddr_broadcast; 10947c08596SBrooks Davis 11071c6c44dSEitan Adler static char *path_dhclient_pidfile; 11123f39c90SDag-Erling Smørgrav struct pidfh *pidfile; 11223f39c90SDag-Erling Smørgrav 11347c08596SBrooks Davis /* 11447c08596SBrooks Davis * ASSERT_STATE() does nothing now; it used to be 11547c08596SBrooks Davis * assert (state_is == state_shouldbe). 11647c08596SBrooks Davis */ 11747c08596SBrooks Davis #define ASSERT_STATE(state_is, state_shouldbe) {} 11847c08596SBrooks Davis 119223c44aeSNick Hibma /* 120223c44aeSNick Hibma * We need to check that the expiry, renewal and rebind times are not beyond 121223c44aeSNick Hibma * the end of time (~2038 when a 32-bit time_t is being used). 122223c44aeSNick Hibma */ 123223c44aeSNick Hibma #define TIME_MAX ((((time_t) 1 << (sizeof(time_t) * CHAR_BIT - 2)) - 1) * 2 + 1) 12447c08596SBrooks Davis 12547c08596SBrooks Davis int log_priority; 12671c6c44dSEitan Adler static int no_daemon; 12771c6c44dSEitan Adler static int unknown_ok = 1; 12871c6c44dSEitan Adler static int routefd; 12947c08596SBrooks Davis 13047c08596SBrooks Davis struct interface_info *ifi; 13147c08596SBrooks Davis 13247c08596SBrooks Davis int findproto(char *, int); 13347c08596SBrooks Davis struct sockaddr *get_ifa(char *, int); 13447c08596SBrooks Davis void routehandler(struct protocol *); 13547c08596SBrooks Davis void usage(void); 13647c08596SBrooks Davis int check_option(struct client_lease *l, int option); 1372fcc7370SEd Maste int check_classless_option(unsigned char *data, int len); 13879a1d195SAlan Somers int ipv4addrs(const char * buf); 13947c08596SBrooks Davis int res_hnok(const char *dn); 140f954ec0bSBrooks Davis int check_search(const char *srch); 14179a1d195SAlan Somers const char *option_as_string(unsigned int code, unsigned char *data, int len); 14247c08596SBrooks Davis int fork_privchld(int, int); 14347c08596SBrooks Davis 14447c08596SBrooks Davis #define ROUNDUP(a) \ 14547c08596SBrooks Davis ((a) > 0 ? (1 + (((a) - 1) | (sizeof(long) - 1))) : sizeof(long)) 14647c08596SBrooks Davis #define ADVANCE(x, n) (x += ROUNDUP((n)->sa_len)) 14747c08596SBrooks Davis 148387016a5SConrad Meyer /* Minimum MTU is 68 as per RFC791, p. 24 */ 149387016a5SConrad Meyer #define MIN_MTU 68 150387016a5SConrad Meyer 1516964abefSBrian Somers static time_t scripttime; 15247c08596SBrooks Davis 15347c08596SBrooks Davis int 15447c08596SBrooks Davis findproto(char *cp, int n) 15547c08596SBrooks Davis { 15647c08596SBrooks Davis struct sockaddr *sa; 1575f28c51dSAlan Somers unsigned i; 15847c08596SBrooks Davis 15947c08596SBrooks Davis if (n == 0) 16047c08596SBrooks Davis return -1; 16147c08596SBrooks Davis for (i = 1; i; i <<= 1) { 16247c08596SBrooks Davis if (i & n) { 16347c08596SBrooks Davis sa = (struct sockaddr *)cp; 16447c08596SBrooks Davis switch (i) { 16547c08596SBrooks Davis case RTA_IFA: 16647c08596SBrooks Davis case RTA_DST: 16747c08596SBrooks Davis case RTA_GATEWAY: 16847c08596SBrooks Davis case RTA_NETMASK: 16947c08596SBrooks Davis if (sa->sa_family == AF_INET) 17047c08596SBrooks Davis return AF_INET; 17147c08596SBrooks Davis if (sa->sa_family == AF_INET6) 17247c08596SBrooks Davis return AF_INET6; 17347c08596SBrooks Davis break; 17447c08596SBrooks Davis case RTA_IFP: 17547c08596SBrooks Davis break; 17647c08596SBrooks Davis } 17747c08596SBrooks Davis ADVANCE(cp, sa); 17847c08596SBrooks Davis } 17947c08596SBrooks Davis } 18047c08596SBrooks Davis return (-1); 18147c08596SBrooks Davis } 18247c08596SBrooks Davis 18347c08596SBrooks Davis struct sockaddr * 18447c08596SBrooks Davis get_ifa(char *cp, int n) 18547c08596SBrooks Davis { 18647c08596SBrooks Davis struct sockaddr *sa; 1875f28c51dSAlan Somers unsigned i; 18847c08596SBrooks Davis 18947c08596SBrooks Davis if (n == 0) 19047c08596SBrooks Davis return (NULL); 19147c08596SBrooks Davis for (i = 1; i; i <<= 1) 19247c08596SBrooks Davis if (i & n) { 19347c08596SBrooks Davis sa = (struct sockaddr *)cp; 19447c08596SBrooks Davis if (i == RTA_IFA) 19547c08596SBrooks Davis return (sa); 19647c08596SBrooks Davis ADVANCE(cp, sa); 19747c08596SBrooks Davis } 19847c08596SBrooks Davis 19947c08596SBrooks Davis return (NULL); 20047c08596SBrooks Davis } 20161063e47SSam Leffler 20271c6c44dSEitan Adler static struct iaddr defaddr = { .len = 4 }; 20371c6c44dSEitan Adler static uint8_t curbssid[6]; 20461063e47SSam Leffler 20561063e47SSam Leffler static void 20661063e47SSam Leffler disassoc(void *arg) 20761063e47SSam Leffler { 20879a1d195SAlan Somers struct interface_info *_ifi = arg; 20961063e47SSam Leffler 21061063e47SSam Leffler /* 21161063e47SSam Leffler * Clear existing state. 21261063e47SSam Leffler */ 21379a1d195SAlan Somers if (_ifi->client->active != NULL) { 21461063e47SSam Leffler script_init("EXPIRE", NULL); 21561063e47SSam Leffler script_write_params("old_", 21679a1d195SAlan Somers _ifi->client->active); 21779a1d195SAlan Somers if (_ifi->client->alias) 21861063e47SSam Leffler script_write_params("alias_", 21979a1d195SAlan Somers _ifi->client->alias); 22061063e47SSam Leffler script_go(); 22161063e47SSam Leffler } 22279a1d195SAlan Somers _ifi->client->state = S_INIT; 22361063e47SSam Leffler } 22447c08596SBrooks Davis 22547c08596SBrooks Davis void 22679a1d195SAlan Somers routehandler(struct protocol *p __unused) 22747c08596SBrooks Davis { 2286964abefSBrian Somers char msg[2048], *addr; 22947c08596SBrooks Davis struct rt_msghdr *rtm; 23047c08596SBrooks Davis struct if_msghdr *ifm; 23147c08596SBrooks Davis struct ifa_msghdr *ifam; 23247c08596SBrooks Davis struct if_announcemsghdr *ifan; 23361063e47SSam Leffler struct ieee80211_join_event *jev; 23447c08596SBrooks Davis struct client_lease *l; 23547c08596SBrooks Davis time_t t = time(NULL); 23679a1d195SAlan Somers struct sockaddr_in *sa; 23747c08596SBrooks Davis struct iaddr a; 23847c08596SBrooks Davis ssize_t n; 2390a26f858SJohn Baldwin int linkstat; 24047c08596SBrooks Davis 24147c08596SBrooks Davis n = read(routefd, &msg, sizeof(msg)); 24247c08596SBrooks Davis rtm = (struct rt_msghdr *)msg; 243afe6f835SAlan Somers if (n < (ssize_t)sizeof(rtm->rtm_msglen) || 244afe6f835SAlan Somers n < (ssize_t)rtm->rtm_msglen || 24547c08596SBrooks Davis rtm->rtm_version != RTM_VERSION) 24647c08596SBrooks Davis return; 24747c08596SBrooks Davis 24847c08596SBrooks Davis switch (rtm->rtm_type) { 24947c08596SBrooks Davis case RTM_NEWADDR: 250dfad96eaSBrooks Davis case RTM_DELADDR: 25147c08596SBrooks Davis ifam = (struct ifa_msghdr *)rtm; 252dfad96eaSBrooks Davis 25347c08596SBrooks Davis if (ifam->ifam_index != ifi->index) 25447c08596SBrooks Davis break; 25547c08596SBrooks Davis if (findproto((char *)(ifam + 1), ifam->ifam_addrs) != AF_INET) 25647c08596SBrooks Davis break; 257dfad96eaSBrooks Davis if (scripttime == 0 || t < scripttime + 10) 258dfad96eaSBrooks Davis break; 259dfad96eaSBrooks Davis 26079a1d195SAlan Somers sa = (struct sockaddr_in*)get_ifa((char *)(ifam + 1), ifam->ifam_addrs); 26147c08596SBrooks Davis if (sa == NULL) 2626964abefSBrian Somers break; 26347c08596SBrooks Davis 26447c08596SBrooks Davis if ((a.len = sizeof(struct in_addr)) > sizeof(a.iabuf)) 26547c08596SBrooks Davis error("king bula sez: len mismatch"); 26679a1d195SAlan Somers memcpy(a.iabuf, &sa->sin_addr, a.len); 26747c08596SBrooks Davis if (addr_eq(a, defaddr)) 26847c08596SBrooks Davis break; 26947c08596SBrooks Davis 27047c08596SBrooks Davis for (l = ifi->client->active; l != NULL; l = l->next) 27147c08596SBrooks Davis if (addr_eq(a, l->address)) 27247c08596SBrooks Davis break; 27347c08596SBrooks Davis 2746964abefSBrian Somers if (l == NULL) /* added/deleted addr is not the one we set */ 27547c08596SBrooks Davis break; 2766964abefSBrian Somers 27779a1d195SAlan Somers addr = inet_ntoa(sa->sin_addr); 2786964abefSBrian Somers if (rtm->rtm_type == RTM_NEWADDR) { 2796964abefSBrian Somers /* 2806964abefSBrian Somers * XXX: If someone other than us adds our address, 2816964abefSBrian Somers * should we assume they are taking over from us, 2826964abefSBrian Somers * delete the lease record, and exit without modifying 2836964abefSBrian Somers * the interface? 2846964abefSBrian Somers */ 2856964abefSBrian Somers warning("My address (%s) was re-added", addr); 2866964abefSBrian Somers } else { 2876964abefSBrian Somers warning("My address (%s) was deleted, dhclient exiting", 2886964abefSBrian Somers addr); 28947c08596SBrooks Davis goto die; 2906964abefSBrian Somers } 2916964abefSBrian Somers break; 29247c08596SBrooks Davis case RTM_IFINFO: 29347c08596SBrooks Davis ifm = (struct if_msghdr *)rtm; 29447c08596SBrooks Davis if (ifm->ifm_index != ifi->index) 29547c08596SBrooks Davis break; 2966964abefSBrian Somers if ((rtm->rtm_flags & RTF_UP) == 0) { 2976964abefSBrian Somers warning("Interface %s is down, dhclient exiting", 2986964abefSBrian Somers ifi->name); 29947c08596SBrooks Davis goto die; 3006964abefSBrian Somers } 3010a26f858SJohn Baldwin linkstat = interface_link_status(ifi->name); 3020a26f858SJohn Baldwin if (linkstat != ifi->linkstat) { 3030a26f858SJohn Baldwin debug("%s link state %s -> %s", ifi->name, 3040a26f858SJohn Baldwin ifi->linkstat ? "up" : "down", 3050a26f858SJohn Baldwin linkstat ? "up" : "down"); 3060a26f858SJohn Baldwin ifi->linkstat = linkstat; 3070a26f858SJohn Baldwin if (linkstat) 3080a26f858SJohn Baldwin state_reboot(ifi); 30983f745b8SJohn Baldwin } 31047c08596SBrooks Davis break; 31147c08596SBrooks Davis case RTM_IFANNOUNCE: 31247c08596SBrooks Davis ifan = (struct if_announcemsghdr *)rtm; 31347c08596SBrooks Davis if (ifan->ifan_what == IFAN_DEPARTURE && 3146964abefSBrian Somers ifan->ifan_index == ifi->index) { 3156964abefSBrian Somers warning("Interface %s is gone, dhclient exiting", 3166964abefSBrian Somers ifi->name); 31747c08596SBrooks Davis goto die; 3186964abefSBrian Somers } 31947c08596SBrooks Davis break; 3202b19b6fcSBrooks Davis case RTM_IEEE80211: 3212b19b6fcSBrooks Davis ifan = (struct if_announcemsghdr *)rtm; 3222b19b6fcSBrooks Davis if (ifan->ifan_index != ifi->index) 3232b19b6fcSBrooks Davis break; 3242b19b6fcSBrooks Davis switch (ifan->ifan_what) { 3252b19b6fcSBrooks Davis case RTM_IEEE80211_ASSOC: 326b35f2511SSam Leffler case RTM_IEEE80211_REASSOC: 3272b19b6fcSBrooks Davis /* 32861063e47SSam Leffler * Use assoc/reassoc event to kick state machine 32961063e47SSam Leffler * in case we roam. Otherwise fall back to the 33061063e47SSam Leffler * normal state machine just like a wired network. 3312b19b6fcSBrooks Davis */ 33261063e47SSam Leffler jev = (struct ieee80211_join_event *) &ifan[1]; 33361063e47SSam Leffler if (memcmp(curbssid, jev->iev_addr, 6)) { 33461063e47SSam Leffler disassoc(ifi); 33561063e47SSam Leffler state_reboot(ifi); 33659eac186SBrooks Davis } 33761063e47SSam Leffler memcpy(curbssid, jev->iev_addr, 6); 3382b19b6fcSBrooks Davis break; 3392b19b6fcSBrooks Davis } 3402b19b6fcSBrooks Davis break; 34147c08596SBrooks Davis default: 34247c08596SBrooks Davis break; 34347c08596SBrooks Davis } 34447c08596SBrooks Davis return; 34547c08596SBrooks Davis 34647c08596SBrooks Davis die: 34747c08596SBrooks Davis script_init("FAIL", NULL); 34847c08596SBrooks Davis if (ifi->client->alias) 34947c08596SBrooks Davis script_write_params("alias_", ifi->client->alias); 35047c08596SBrooks Davis script_go(); 35123f39c90SDag-Erling Smørgrav if (pidfile != NULL) 35223f39c90SDag-Erling Smørgrav pidfile_remove(pidfile); 35347c08596SBrooks Davis exit(1); 35447c08596SBrooks Davis } 35547c08596SBrooks Davis 356cb003dd9SMariusz Zaborski static void 357cb003dd9SMariusz Zaborski init_casper(void) 358cb003dd9SMariusz Zaborski { 359cb003dd9SMariusz Zaborski cap_channel_t *casper; 360cb003dd9SMariusz Zaborski 361cb003dd9SMariusz Zaborski casper = cap_init(); 362cb003dd9SMariusz Zaborski if (casper == NULL) 363cb003dd9SMariusz Zaborski error("unable to start casper"); 364cb003dd9SMariusz Zaborski 365cb003dd9SMariusz Zaborski capsyslog = cap_service_open(casper, "system.syslog"); 366cb003dd9SMariusz Zaborski cap_close(casper); 367cb003dd9SMariusz Zaborski if (capsyslog == NULL) 368cb003dd9SMariusz Zaborski error("unable to open system.syslog service"); 369cb003dd9SMariusz Zaborski } 370cb003dd9SMariusz Zaborski 37147c08596SBrooks Davis int 37247c08596SBrooks Davis main(int argc, char *argv[]) 37347c08596SBrooks Davis { 374976e1003SMark Johnston u_int capmode; 37547c08596SBrooks Davis int ch, fd, quiet = 0, i = 0; 37647c08596SBrooks Davis int pipe_fd[2]; 3772b19b6fcSBrooks Davis int immediate_daemon = 0; 37847c08596SBrooks Davis struct passwd *pw; 37923f39c90SDag-Erling Smørgrav pid_t otherpid; 3807008be5bSPawel Jakub Dawidek cap_rights_t rights; 38147c08596SBrooks Davis 382cb003dd9SMariusz Zaborski init_casper(); 383cb003dd9SMariusz Zaborski 38447c08596SBrooks Davis /* Initially, log errors to stderr as well as to syslogd. */ 385b537db69SEitan Adler cap_openlog(capsyslog, getprogname(), LOG_PID | LOG_NDELAY, DHCPD_LOG_FACILITY); 386cb003dd9SMariusz Zaborski cap_setlogmask(capsyslog, LOG_UPTO(LOG_DEBUG)); 38747c08596SBrooks Davis 38823f39c90SDag-Erling Smørgrav while ((ch = getopt(argc, argv, "bc:dl:p:qu")) != -1) 38947c08596SBrooks Davis switch (ch) { 3902b19b6fcSBrooks Davis case 'b': 3912b19b6fcSBrooks Davis immediate_daemon = 1; 3922b19b6fcSBrooks Davis break; 39347c08596SBrooks Davis case 'c': 39447c08596SBrooks Davis path_dhclient_conf = optarg; 39547c08596SBrooks Davis break; 39647c08596SBrooks Davis case 'd': 39747c08596SBrooks Davis no_daemon = 1; 39847c08596SBrooks Davis break; 39947c08596SBrooks Davis case 'l': 40047c08596SBrooks Davis path_dhclient_db = optarg; 40147c08596SBrooks Davis break; 40223f39c90SDag-Erling Smørgrav case 'p': 40323f39c90SDag-Erling Smørgrav path_dhclient_pidfile = optarg; 40423f39c90SDag-Erling Smørgrav break; 40547c08596SBrooks Davis case 'q': 40647c08596SBrooks Davis quiet = 1; 40747c08596SBrooks Davis break; 40847c08596SBrooks Davis case 'u': 40947c08596SBrooks Davis unknown_ok = 0; 41047c08596SBrooks Davis break; 41147c08596SBrooks Davis default: 41247c08596SBrooks Davis usage(); 41347c08596SBrooks Davis } 41447c08596SBrooks Davis 41547c08596SBrooks Davis argc -= optind; 41647c08596SBrooks Davis argv += optind; 41747c08596SBrooks Davis 41847c08596SBrooks Davis if (argc != 1) 41947c08596SBrooks Davis usage(); 42047c08596SBrooks Davis 42123f39c90SDag-Erling Smørgrav if (path_dhclient_pidfile == NULL) { 42223f39c90SDag-Erling Smørgrav asprintf(&path_dhclient_pidfile, 423976e1003SMark Johnston "%s/dhclient/dhclient.%s.pid", _PATH_VARRUN, *argv); 42423f39c90SDag-Erling Smørgrav if (path_dhclient_pidfile == NULL) 42523f39c90SDag-Erling Smørgrav error("asprintf"); 42623f39c90SDag-Erling Smørgrav } 42707561ab4SEitan Adler pidfile = pidfile_open(path_dhclient_pidfile, 0644, &otherpid); 42823f39c90SDag-Erling Smørgrav if (pidfile == NULL) { 42923f39c90SDag-Erling Smørgrav if (errno == EEXIST) 43023f39c90SDag-Erling Smørgrav error("dhclient already running, pid: %d.", otherpid); 43123f39c90SDag-Erling Smørgrav if (errno == EAGAIN) 43223f39c90SDag-Erling Smørgrav error("dhclient already running."); 43323f39c90SDag-Erling Smørgrav warning("Cannot open or create pidfile: %m"); 43423f39c90SDag-Erling Smørgrav } 43523f39c90SDag-Erling Smørgrav 43647c08596SBrooks Davis if ((ifi = calloc(1, sizeof(struct interface_info))) == NULL) 43747c08596SBrooks Davis error("calloc"); 43847c08596SBrooks Davis if (strlcpy(ifi->name, argv[0], IFNAMSIZ) >= IFNAMSIZ) 43947c08596SBrooks Davis error("Interface name too long"); 44047c08596SBrooks Davis if (path_dhclient_db == NULL && asprintf(&path_dhclient_db, "%s.%s", 44147c08596SBrooks Davis _PATH_DHCLIENT_DB, ifi->name) == -1) 44247c08596SBrooks Davis error("asprintf"); 44347c08596SBrooks Davis 44447c08596SBrooks Davis if (quiet) 44547c08596SBrooks Davis log_perror = 0; 44647c08596SBrooks Davis 44747c08596SBrooks Davis tzset(); 44847c08596SBrooks Davis time(&cur_time); 44947c08596SBrooks Davis 450ba019ae5SPawel Jakub Dawidek inaddr_broadcast.s_addr = INADDR_BROADCAST; 45147c08596SBrooks Davis inaddr_any.s_addr = INADDR_ANY; 45247c08596SBrooks Davis 45347c08596SBrooks Davis read_client_conf(); 45447c08596SBrooks Davis 45523f39c90SDag-Erling Smørgrav /* The next bit is potentially very time-consuming, so write out 45623f39c90SDag-Erling Smørgrav the pidfile right away. We will write it out again with the 45723f39c90SDag-Erling Smørgrav correct pid after daemonizing. */ 45823f39c90SDag-Erling Smørgrav if (pidfile != NULL) 45923f39c90SDag-Erling Smørgrav pidfile_write(pidfile); 46023f39c90SDag-Erling Smørgrav 46147c08596SBrooks Davis if (!interface_link_status(ifi->name)) { 46247c08596SBrooks Davis fprintf(stderr, "%s: no link ...", ifi->name); 46347c08596SBrooks Davis fflush(stderr); 46447c08596SBrooks Davis sleep(1); 46547c08596SBrooks Davis while (!interface_link_status(ifi->name)) { 46647c08596SBrooks Davis fprintf(stderr, "."); 46747c08596SBrooks Davis fflush(stderr); 46847c08596SBrooks Davis if (++i > 10) { 46947c08596SBrooks Davis fprintf(stderr, " giving up\n"); 47047c08596SBrooks Davis exit(1); 47147c08596SBrooks Davis } 47247c08596SBrooks Davis sleep(1); 47347c08596SBrooks Davis } 47447c08596SBrooks Davis fprintf(stderr, " got link\n"); 47547c08596SBrooks Davis } 4760a26f858SJohn Baldwin ifi->linkstat = 1; 47747c08596SBrooks Davis 47847c08596SBrooks Davis if ((nullfd = open(_PATH_DEVNULL, O_RDWR, 0)) == -1) 47947c08596SBrooks Davis error("cannot open %s: %m", _PATH_DEVNULL); 48047c08596SBrooks Davis 48147c08596SBrooks Davis if ((pw = getpwnam("_dhcp")) == NULL) { 48247c08596SBrooks Davis warning("no such user: _dhcp, falling back to \"nobody\""); 48347c08596SBrooks Davis if ((pw = getpwnam("nobody")) == NULL) 48447c08596SBrooks Davis error("no such user: nobody"); 48547c08596SBrooks Davis } 48647c08596SBrooks Davis 4870bbe8306SPawel Jakub Dawidek /* 4880bbe8306SPawel Jakub Dawidek * Obtain hostname before entering capability mode - it won't be 4890bbe8306SPawel Jakub Dawidek * possible then, as reading kern.hostname is not permitted. 4900bbe8306SPawel Jakub Dawidek */ 4910bbe8306SPawel Jakub Dawidek if (gethostname(hostname, sizeof(hostname)) < 0) 4920bbe8306SPawel Jakub Dawidek hostname[0] = '\0'; 4930bbe8306SPawel Jakub Dawidek 494374a8a32SPawel Jakub Dawidek priv_script_init("PREINIT", NULL); 495374a8a32SPawel Jakub Dawidek if (ifi->client->alias) 496374a8a32SPawel Jakub Dawidek priv_script_write_params("alias_", ifi->client->alias); 497374a8a32SPawel Jakub Dawidek priv_script_go(); 498374a8a32SPawel Jakub Dawidek 499235eb530SPawel Jakub Dawidek /* set up the interface */ 500235eb530SPawel Jakub Dawidek discover_interfaces(ifi); 501235eb530SPawel Jakub Dawidek 50247c08596SBrooks Davis if (pipe(pipe_fd) == -1) 50347c08596SBrooks Davis error("pipe"); 50447c08596SBrooks Davis 50547c08596SBrooks Davis fork_privchld(pipe_fd[0], pipe_fd[1]); 50647c08596SBrooks Davis 507235eb530SPawel Jakub Dawidek close(ifi->ufdesc); 508235eb530SPawel Jakub Dawidek ifi->ufdesc = -1; 509235eb530SPawel Jakub Dawidek close(ifi->wfdesc); 510235eb530SPawel Jakub Dawidek ifi->wfdesc = -1; 511235eb530SPawel Jakub Dawidek 51247c08596SBrooks Davis close(pipe_fd[0]); 51347c08596SBrooks Davis privfd = pipe_fd[1]; 5147008be5bSPawel Jakub Dawidek cap_rights_init(&rights, CAP_READ, CAP_WRITE); 515377421dfSMariusz Zaborski if (caph_rights_limit(privfd, &rights) < 0) 516de2c882fSPawel Jakub Dawidek error("can't limit private descriptor: %m"); 51747c08596SBrooks Davis 51847c08596SBrooks Davis if ((fd = open(path_dhclient_db, O_RDONLY|O_EXLOCK|O_CREAT, 0)) == -1) 51947c08596SBrooks Davis error("can't open and lock %s: %m", path_dhclient_db); 52047c08596SBrooks Davis read_client_leases(); 52147c08596SBrooks Davis rewrite_client_leases(); 52247c08596SBrooks Davis close(fd); 52347c08596SBrooks Davis 52447c08596SBrooks Davis if ((routefd = socket(PF_ROUTE, SOCK_RAW, 0)) != -1) 52547c08596SBrooks Davis add_protocol("AF_ROUTE", routefd, routehandler, ifi); 526e374cef5SPawel Jakub Dawidek if (shutdown(routefd, SHUT_WR) < 0) 527e374cef5SPawel Jakub Dawidek error("can't shutdown route socket: %m"); 528bb7a82acSChristian Brueffer cap_rights_init(&rights, CAP_EVENT, CAP_READ); 529377421dfSMariusz Zaborski if (caph_rights_limit(routefd, &rights) < 0) 530f73ac8b9SPawel Jakub Dawidek error("can't limit route socket: %m"); 53147c08596SBrooks Davis 53247c08596SBrooks Davis endpwent(); 53347c08596SBrooks Davis 53447c08596SBrooks Davis setproctitle("%s", ifi->name); 53547c08596SBrooks Davis 53617cfcf1dSMark Johnston /* setgroups(2) is not permitted in capability mode. */ 53717cfcf1dSMark Johnston if (setgroups(1, &pw->pw_gid) != 0) 53817cfcf1dSMark Johnston error("can't restrict groups: %m"); 53917cfcf1dSMark Johnston 5407672a014SMariusz Zaborski if (caph_enter_casper() < 0) 5418da93e68SPawel Jakub Dawidek error("can't enter capability mode: %m"); 5428da93e68SPawel Jakub Dawidek 543976e1003SMark Johnston /* 54417cfcf1dSMark Johnston * If we are not in capability mode (i.e., Capsicum or libcasper is 54517cfcf1dSMark Johnston * disabled), try to restrict filesystem access. This will fail if 54617cfcf1dSMark Johnston * kern.chroot_allow_open_directories is 0 or the process is jailed. 547976e1003SMark Johnston */ 548976e1003SMark Johnston if (cap_getmode(&capmode) < 0 || capmode == 0) { 549976e1003SMark Johnston if (chroot(_PATH_VAREMPTY) == -1) 550976e1003SMark Johnston error("chroot"); 551976e1003SMark Johnston if (chdir("/") == -1) 552976e1003SMark Johnston error("chdir(\"/\")"); 553976e1003SMark Johnston } 554976e1003SMark Johnston 55517cfcf1dSMark Johnston if (setegid(pw->pw_gid) || setgid(pw->pw_gid) || 55617cfcf1dSMark Johnston seteuid(pw->pw_uid) || setuid(pw->pw_uid)) 55717cfcf1dSMark Johnston error("can't drop privileges: %m"); 55817cfcf1dSMark Johnston 5592b19b6fcSBrooks Davis if (immediate_daemon) 5602b19b6fcSBrooks Davis go_daemon(); 5612b19b6fcSBrooks Davis 56247c08596SBrooks Davis ifi->client->state = S_INIT; 56347c08596SBrooks Davis state_reboot(ifi); 56447c08596SBrooks Davis 56547c08596SBrooks Davis bootp_packet_handler = do_packet; 56647c08596SBrooks Davis 56747c08596SBrooks Davis dispatch(); 56847c08596SBrooks Davis 56947c08596SBrooks Davis /* not reached */ 57047c08596SBrooks Davis return (0); 57147c08596SBrooks Davis } 57247c08596SBrooks Davis 57347c08596SBrooks Davis void 57447c08596SBrooks Davis usage(void) 57547c08596SBrooks Davis { 57647c08596SBrooks Davis 577b537db69SEitan Adler fprintf(stderr, "usage: %s [-bdqu] ", getprogname()); 57847c08596SBrooks Davis fprintf(stderr, "[-c conffile] [-l leasefile] interface\n"); 57947c08596SBrooks Davis exit(1); 58047c08596SBrooks Davis } 58147c08596SBrooks Davis 58247c08596SBrooks Davis /* 58347c08596SBrooks Davis * Individual States: 58447c08596SBrooks Davis * 58547c08596SBrooks Davis * Each routine is called from the dhclient_state_machine() in one of 58647c08596SBrooks Davis * these conditions: 58747c08596SBrooks Davis * -> entering INIT state 58847c08596SBrooks Davis * -> recvpacket_flag == 0: timeout in this state 58947c08596SBrooks Davis * -> otherwise: received a packet in this state 59047c08596SBrooks Davis * 59147c08596SBrooks Davis * Return conditions as handled by dhclient_state_machine(): 59247c08596SBrooks Davis * Returns 1, sendpacket_flag = 1: send packet, reset timer. 59347c08596SBrooks Davis * Returns 1, sendpacket_flag = 0: just reset the timer (wait for a milestone). 59447c08596SBrooks Davis * Returns 0: finish the nap which was interrupted for no good reason. 59547c08596SBrooks Davis * 59647c08596SBrooks Davis * Several per-interface variables are used to keep track of the process: 59747c08596SBrooks Davis * active_lease: the lease that is being used on the interface 59847c08596SBrooks Davis * (null pointer if not configured yet). 59947c08596SBrooks Davis * offered_leases: leases corresponding to DHCPOFFER messages that have 60047c08596SBrooks Davis * been sent to us by DHCP servers. 60147c08596SBrooks Davis * acked_leases: leases corresponding to DHCPACK messages that have been 60247c08596SBrooks Davis * sent to us by DHCP servers. 60347c08596SBrooks Davis * sendpacket: DHCP packet we're trying to send. 60447c08596SBrooks Davis * destination: IP address to send sendpacket to 60547c08596SBrooks Davis * In addition, there are several relevant per-lease variables. 60647c08596SBrooks Davis * T1_expiry, T2_expiry, lease_expiry: lease milestones 60747c08596SBrooks Davis * In the active lease, these control the process of renewing the lease; 60847c08596SBrooks Davis * In leases on the acked_leases list, this simply determines when we 60947c08596SBrooks Davis * can no longer legitimately use the lease. 61047c08596SBrooks Davis */ 61147c08596SBrooks Davis 61247c08596SBrooks Davis void 61347c08596SBrooks Davis state_reboot(void *ipp) 61447c08596SBrooks Davis { 61547c08596SBrooks Davis struct interface_info *ip = ipp; 61647c08596SBrooks Davis 61747c08596SBrooks Davis /* If we don't remember an active lease, go straight to INIT. */ 61847c08596SBrooks Davis if (!ip->client->active || ip->client->active->is_bootp) { 61947c08596SBrooks Davis state_init(ip); 62047c08596SBrooks Davis return; 62147c08596SBrooks Davis } 62247c08596SBrooks Davis 62347c08596SBrooks Davis /* We are in the rebooting state. */ 62447c08596SBrooks Davis ip->client->state = S_REBOOTING; 62547c08596SBrooks Davis 62647c08596SBrooks Davis /* make_request doesn't initialize xid because it normally comes 62747c08596SBrooks Davis from the DHCPDISCOVER, but we haven't sent a DHCPDISCOVER, 62847c08596SBrooks Davis so pick an xid now. */ 62947c08596SBrooks Davis ip->client->xid = arc4random(); 63047c08596SBrooks Davis 63147c08596SBrooks Davis /* Make a DHCPREQUEST packet, and set appropriate per-interface 63247c08596SBrooks Davis flags. */ 63347c08596SBrooks Davis make_request(ip, ip->client->active); 63447c08596SBrooks Davis ip->client->destination = iaddr_broadcast; 63547c08596SBrooks Davis ip->client->first_sending = cur_time; 63647c08596SBrooks Davis ip->client->interval = ip->client->config->initial_interval; 63747c08596SBrooks Davis 63847c08596SBrooks Davis /* Zap the medium list... */ 63947c08596SBrooks Davis ip->client->medium = NULL; 64047c08596SBrooks Davis 64147c08596SBrooks Davis /* Send out the first DHCPREQUEST packet. */ 64247c08596SBrooks Davis send_request(ip); 64347c08596SBrooks Davis } 64447c08596SBrooks Davis 64547c08596SBrooks Davis /* 64647c08596SBrooks Davis * Called when a lease has completely expired and we've 64747c08596SBrooks Davis * been unable to renew it. 64847c08596SBrooks Davis */ 64947c08596SBrooks Davis void 65047c08596SBrooks Davis state_init(void *ipp) 65147c08596SBrooks Davis { 65247c08596SBrooks Davis struct interface_info *ip = ipp; 65347c08596SBrooks Davis 65447c08596SBrooks Davis ASSERT_STATE(state, S_INIT); 65547c08596SBrooks Davis 65647c08596SBrooks Davis /* Make a DHCPDISCOVER packet, and set appropriate per-interface 65747c08596SBrooks Davis flags. */ 65847c08596SBrooks Davis make_discover(ip, ip->client->active); 65947c08596SBrooks Davis ip->client->xid = ip->client->packet.xid; 66047c08596SBrooks Davis ip->client->destination = iaddr_broadcast; 66147c08596SBrooks Davis ip->client->state = S_SELECTING; 66247c08596SBrooks Davis ip->client->first_sending = cur_time; 66347c08596SBrooks Davis ip->client->interval = ip->client->config->initial_interval; 66447c08596SBrooks Davis 66547c08596SBrooks Davis /* Add an immediate timeout to cause the first DHCPDISCOVER packet 66647c08596SBrooks Davis to go out. */ 66747c08596SBrooks Davis send_discover(ip); 66847c08596SBrooks Davis } 66947c08596SBrooks Davis 67047c08596SBrooks Davis /* 67147c08596SBrooks Davis * state_selecting is called when one or more DHCPOFFER packets 67247c08596SBrooks Davis * have been received and a configurable period of time has passed. 67347c08596SBrooks Davis */ 67447c08596SBrooks Davis void 67547c08596SBrooks Davis state_selecting(void *ipp) 67647c08596SBrooks Davis { 67747c08596SBrooks Davis struct interface_info *ip = ipp; 67847c08596SBrooks Davis struct client_lease *lp, *next, *picked; 67947c08596SBrooks Davis 68047c08596SBrooks Davis ASSERT_STATE(state, S_SELECTING); 68147c08596SBrooks Davis 68247c08596SBrooks Davis /* Cancel state_selecting and send_discover timeouts, since either 68347c08596SBrooks Davis one could have got us here. */ 68447c08596SBrooks Davis cancel_timeout(state_selecting, ip); 68547c08596SBrooks Davis cancel_timeout(send_discover, ip); 68647c08596SBrooks Davis 68747c08596SBrooks Davis /* We have received one or more DHCPOFFER packets. Currently, 68847c08596SBrooks Davis the only criterion by which we judge leases is whether or 68947c08596SBrooks Davis not we get a response when we arp for them. */ 69047c08596SBrooks Davis picked = NULL; 69147c08596SBrooks Davis for (lp = ip->client->offered_leases; lp; lp = next) { 69247c08596SBrooks Davis next = lp->next; 69347c08596SBrooks Davis 69447c08596SBrooks Davis /* Check to see if we got an ARPREPLY for the address 69547c08596SBrooks Davis in this particular lease. */ 69647c08596SBrooks Davis if (!picked) { 69747c08596SBrooks Davis script_init("ARPCHECK", lp->medium); 69847c08596SBrooks Davis script_write_params("check_", lp); 69947c08596SBrooks Davis 70047c08596SBrooks Davis /* If the ARPCHECK code detects another 70147c08596SBrooks Davis machine using the offered address, it exits 70247c08596SBrooks Davis nonzero. We need to send a DHCPDECLINE and 70347c08596SBrooks Davis toss the lease. */ 70447c08596SBrooks Davis if (script_go()) { 70547c08596SBrooks Davis make_decline(ip, lp); 70647c08596SBrooks Davis send_decline(ip); 70747c08596SBrooks Davis goto freeit; 70847c08596SBrooks Davis } 70947c08596SBrooks Davis picked = lp; 71047c08596SBrooks Davis picked->next = NULL; 71147c08596SBrooks Davis } else { 71247c08596SBrooks Davis freeit: 71347c08596SBrooks Davis free_client_lease(lp); 71447c08596SBrooks Davis } 71547c08596SBrooks Davis } 71647c08596SBrooks Davis ip->client->offered_leases = NULL; 71747c08596SBrooks Davis 71847c08596SBrooks Davis /* If we just tossed all the leases we were offered, go back 71947c08596SBrooks Davis to square one. */ 72047c08596SBrooks Davis if (!picked) { 72147c08596SBrooks Davis ip->client->state = S_INIT; 72247c08596SBrooks Davis state_init(ip); 72347c08596SBrooks Davis return; 72447c08596SBrooks Davis } 72547c08596SBrooks Davis 72647c08596SBrooks Davis /* If it was a BOOTREPLY, we can just take the address right now. */ 72747c08596SBrooks Davis if (!picked->options[DHO_DHCP_MESSAGE_TYPE].len) { 72847c08596SBrooks Davis ip->client->new = picked; 72947c08596SBrooks Davis 73047c08596SBrooks Davis /* Make up some lease expiry times 73147c08596SBrooks Davis XXX these should be configurable. */ 73247c08596SBrooks Davis ip->client->new->expiry = cur_time + 12000; 73347c08596SBrooks Davis ip->client->new->renewal += cur_time + 8000; 73447c08596SBrooks Davis ip->client->new->rebind += cur_time + 10000; 73547c08596SBrooks Davis 73647c08596SBrooks Davis ip->client->state = S_REQUESTING; 73747c08596SBrooks Davis 73847c08596SBrooks Davis /* Bind to the address we received. */ 73947c08596SBrooks Davis bind_lease(ip); 74047c08596SBrooks Davis return; 74147c08596SBrooks Davis } 74247c08596SBrooks Davis 74347c08596SBrooks Davis /* Go to the REQUESTING state. */ 74447c08596SBrooks Davis ip->client->destination = iaddr_broadcast; 74547c08596SBrooks Davis ip->client->state = S_REQUESTING; 74647c08596SBrooks Davis ip->client->first_sending = cur_time; 74747c08596SBrooks Davis ip->client->interval = ip->client->config->initial_interval; 74847c08596SBrooks Davis 74947c08596SBrooks Davis /* Make a DHCPREQUEST packet from the lease we picked. */ 75047c08596SBrooks Davis make_request(ip, picked); 75147c08596SBrooks Davis ip->client->xid = ip->client->packet.xid; 75247c08596SBrooks Davis 75347c08596SBrooks Davis /* Toss the lease we picked - we'll get it back in a DHCPACK. */ 75447c08596SBrooks Davis free_client_lease(picked); 75547c08596SBrooks Davis 75647c08596SBrooks Davis /* Add an immediate timeout to send the first DHCPREQUEST packet. */ 75747c08596SBrooks Davis send_request(ip); 75847c08596SBrooks Davis } 75947c08596SBrooks Davis 76047c08596SBrooks Davis /* state_requesting is called when we receive a DHCPACK message after 76147c08596SBrooks Davis having sent out one or more DHCPREQUEST packets. */ 76247c08596SBrooks Davis 76347c08596SBrooks Davis void 76447c08596SBrooks Davis dhcpack(struct packet *packet) 76547c08596SBrooks Davis { 76647c08596SBrooks Davis struct interface_info *ip = packet->interface; 76747c08596SBrooks Davis struct client_lease *lease; 76847c08596SBrooks Davis 76947c08596SBrooks Davis /* If we're not receptive to an offer right now, or if the offer 77047c08596SBrooks Davis has an unrecognizable transaction id, then just drop it. */ 77147c08596SBrooks Davis if (packet->interface->client->xid != packet->raw->xid || 77247c08596SBrooks Davis (packet->interface->hw_address.hlen != packet->raw->hlen) || 77347c08596SBrooks Davis (memcmp(packet->interface->hw_address.haddr, 77447c08596SBrooks Davis packet->raw->chaddr, packet->raw->hlen))) 77547c08596SBrooks Davis return; 77647c08596SBrooks Davis 77747c08596SBrooks Davis if (ip->client->state != S_REBOOTING && 77847c08596SBrooks Davis ip->client->state != S_REQUESTING && 77947c08596SBrooks Davis ip->client->state != S_RENEWING && 78047c08596SBrooks Davis ip->client->state != S_REBINDING) 78147c08596SBrooks Davis return; 78247c08596SBrooks Davis 78347c08596SBrooks Davis note("DHCPACK from %s", piaddr(packet->client_addr)); 78447c08596SBrooks Davis 78547c08596SBrooks Davis lease = packet_to_lease(packet); 78647c08596SBrooks Davis if (!lease) { 78747c08596SBrooks Davis note("packet_to_lease failed."); 78847c08596SBrooks Davis return; 78947c08596SBrooks Davis } 79047c08596SBrooks Davis 79147c08596SBrooks Davis ip->client->new = lease; 79247c08596SBrooks Davis 79347c08596SBrooks Davis /* Stop resending DHCPREQUEST. */ 79447c08596SBrooks Davis cancel_timeout(send_request, ip); 79547c08596SBrooks Davis 79647c08596SBrooks Davis /* Figure out the lease time. */ 7971fb4382cSNick Hibma if (ip->client->config->default_actions[DHO_DHCP_LEASE_TIME] == 7981fb4382cSNick Hibma ACTION_SUPERSEDE) 7991fb4382cSNick Hibma ip->client->new->expiry = getULong( 8001fb4382cSNick Hibma ip->client->config->defaults[DHO_DHCP_LEASE_TIME].data); 8011fb4382cSNick Hibma else if (ip->client->new->options[DHO_DHCP_LEASE_TIME].data) 80247c08596SBrooks Davis ip->client->new->expiry = getULong( 80347c08596SBrooks Davis ip->client->new->options[DHO_DHCP_LEASE_TIME].data); 80447c08596SBrooks Davis else 80547c08596SBrooks Davis ip->client->new->expiry = default_lease_time; 80647c08596SBrooks Davis /* A number that looks negative here is really just very large, 807223c44aeSNick Hibma because the lease expiry offset is unsigned. Also make sure that 808223c44aeSNick Hibma the addition of cur_time below does not overflow (a 32 bit) time_t. */ 809223c44aeSNick Hibma if (ip->client->new->expiry < 0 || 810223c44aeSNick Hibma ip->client->new->expiry > TIME_MAX - cur_time) 811223c44aeSNick Hibma ip->client->new->expiry = TIME_MAX - cur_time; 81247c08596SBrooks Davis /* XXX should be fixed by resetting the client state */ 81347c08596SBrooks Davis if (ip->client->new->expiry < 60) 81447c08596SBrooks Davis ip->client->new->expiry = 60; 81547c08596SBrooks Davis 816c13fa60cSNick Hibma /* Unless overridden in the config, take the server-provided renewal 817223c44aeSNick Hibma * time if there is one. Otherwise figure it out according to the spec. 818c13fa60cSNick Hibma * Also make sure the renewal time does not exceed the expiry time. 819c13fa60cSNick Hibma */ 820c13fa60cSNick Hibma if (ip->client->config->default_actions[DHO_DHCP_RENEWAL_TIME] == 821c13fa60cSNick Hibma ACTION_SUPERSEDE) 822c13fa60cSNick Hibma ip->client->new->renewal = getULong( 823c13fa60cSNick Hibma ip->client->config->defaults[DHO_DHCP_RENEWAL_TIME].data); 824c13fa60cSNick Hibma else if (ip->client->new->options[DHO_DHCP_RENEWAL_TIME].len) 82547c08596SBrooks Davis ip->client->new->renewal = getULong( 82647c08596SBrooks Davis ip->client->new->options[DHO_DHCP_RENEWAL_TIME].data); 82747c08596SBrooks Davis else 82847c08596SBrooks Davis ip->client->new->renewal = ip->client->new->expiry / 2; 829223c44aeSNick Hibma if (ip->client->new->renewal < 0 || 830223c44aeSNick Hibma ip->client->new->renewal > ip->client->new->expiry / 2) 831c13fa60cSNick Hibma ip->client->new->renewal = ip->client->new->expiry / 2; 83247c08596SBrooks Davis 83347c08596SBrooks Davis /* Same deal with the rebind time. */ 834c13fa60cSNick Hibma if (ip->client->config->default_actions[DHO_DHCP_REBINDING_TIME] == 835c13fa60cSNick Hibma ACTION_SUPERSEDE) 836c13fa60cSNick Hibma ip->client->new->rebind = getULong( 837c13fa60cSNick Hibma ip->client->config->defaults[DHO_DHCP_REBINDING_TIME].data); 838c13fa60cSNick Hibma else if (ip->client->new->options[DHO_DHCP_REBINDING_TIME].len) 83947c08596SBrooks Davis ip->client->new->rebind = getULong( 84047c08596SBrooks Davis ip->client->new->options[DHO_DHCP_REBINDING_TIME].data); 84147c08596SBrooks Davis else 842223c44aeSNick Hibma ip->client->new->rebind = ip->client->new->renewal / 4 * 7; 843223c44aeSNick Hibma if (ip->client->new->rebind < 0 || 844223c44aeSNick Hibma ip->client->new->rebind > ip->client->new->renewal / 4 * 7) 845223c44aeSNick Hibma ip->client->new->rebind = ip->client->new->renewal / 4 * 7; 84647c08596SBrooks Davis 847223c44aeSNick Hibma /* Convert the time offsets into seconds-since-the-epoch */ 84847c08596SBrooks Davis ip->client->new->expiry += cur_time; 84947c08596SBrooks Davis ip->client->new->renewal += cur_time; 85047c08596SBrooks Davis ip->client->new->rebind += cur_time; 85147c08596SBrooks Davis 85247c08596SBrooks Davis bind_lease(ip); 85347c08596SBrooks Davis } 85447c08596SBrooks Davis 85547c08596SBrooks Davis void 85647c08596SBrooks Davis bind_lease(struct interface_info *ip) 85747c08596SBrooks Davis { 858387016a5SConrad Meyer struct option_data *opt; 859387016a5SConrad Meyer 86047c08596SBrooks Davis /* Remember the medium. */ 86147c08596SBrooks Davis ip->client->new->medium = ip->client->medium; 86247c08596SBrooks Davis 863387016a5SConrad Meyer opt = &ip->client->new->options[DHO_INTERFACE_MTU]; 864387016a5SConrad Meyer if (opt->len == sizeof(u_int16_t)) { 865f93497feSConrad Meyer u_int16_t mtu = 0; 866221e5d2dSMaxim Sobolev u_int16_t old_mtu = 0; 867f93497feSConrad Meyer bool supersede = (ip->client->config->default_actions[DHO_INTERFACE_MTU] == 868f93497feSConrad Meyer ACTION_SUPERSEDE); 869f93497feSConrad Meyer 870f93497feSConrad Meyer if (supersede) 871f93497feSConrad Meyer mtu = getUShort(ip->client->config->defaults[DHO_INTERFACE_MTU].data); 872387016a5SConrad Meyer else 873f93497feSConrad Meyer mtu = be16dec(opt->data); 874f93497feSConrad Meyer 875221e5d2dSMaxim Sobolev if (ip->client->active) { 876221e5d2dSMaxim Sobolev opt = &ip->client->active->options[DHO_INTERFACE_MTU]; 877221e5d2dSMaxim Sobolev if (opt->len == sizeof(u_int16_t)) { 878221e5d2dSMaxim Sobolev old_mtu = be16dec(opt->data); 879221e5d2dSMaxim Sobolev } 880221e5d2dSMaxim Sobolev } 881221e5d2dSMaxim Sobolev 882f93497feSConrad Meyer if (mtu < MIN_MTU) { 883f93497feSConrad Meyer /* Treat 0 like a user intentionally doesn't want to change MTU and, 884f93497feSConrad Meyer * therefore, warning is not needed */ 885f93497feSConrad Meyer if (!supersede || mtu != 0) 886f93497feSConrad Meyer warning("mtu size %u < %d: ignored", (unsigned)mtu, MIN_MTU); 887221e5d2dSMaxim Sobolev } else if (ip->client->state != S_RENEWING || mtu != old_mtu) { 888387016a5SConrad Meyer interface_set_mtu_unpriv(privfd, mtu); 889387016a5SConrad Meyer } 890f93497feSConrad Meyer } 891387016a5SConrad Meyer 89247c08596SBrooks Davis /* Write out the new lease. */ 89347c08596SBrooks Davis write_client_lease(ip, ip->client->new, 0); 89447c08596SBrooks Davis 89547c08596SBrooks Davis /* Run the client script with the new parameters. */ 89647c08596SBrooks Davis script_init((ip->client->state == S_REQUESTING ? "BOUND" : 89747c08596SBrooks Davis (ip->client->state == S_RENEWING ? "RENEW" : 89847c08596SBrooks Davis (ip->client->state == S_REBOOTING ? "REBOOT" : "REBIND"))), 89947c08596SBrooks Davis ip->client->new->medium); 90047c08596SBrooks Davis if (ip->client->active && ip->client->state != S_REBOOTING) 90147c08596SBrooks Davis script_write_params("old_", ip->client->active); 90247c08596SBrooks Davis script_write_params("new_", ip->client->new); 90347c08596SBrooks Davis if (ip->client->alias) 90447c08596SBrooks Davis script_write_params("alias_", ip->client->alias); 90547c08596SBrooks Davis script_go(); 90647c08596SBrooks Davis 90747c08596SBrooks Davis /* Replace the old active lease with the new one. */ 90847c08596SBrooks Davis if (ip->client->active) 90947c08596SBrooks Davis free_client_lease(ip->client->active); 91047c08596SBrooks Davis ip->client->active = ip->client->new; 91147c08596SBrooks Davis ip->client->new = NULL; 91247c08596SBrooks Davis 91347c08596SBrooks Davis /* Set up a timeout to start the renewal process. */ 91447c08596SBrooks Davis add_timeout(ip->client->active->renewal, state_bound, ip); 91547c08596SBrooks Davis 91647c08596SBrooks Davis note("bound to %s -- renewal in %d seconds.", 91747c08596SBrooks Davis piaddr(ip->client->active->address), 9189c13d9cdSBrooks Davis (int)(ip->client->active->renewal - cur_time)); 91947c08596SBrooks Davis ip->client->state = S_BOUND; 92047c08596SBrooks Davis reinitialize_interfaces(); 92147c08596SBrooks Davis go_daemon(); 92247c08596SBrooks Davis } 92347c08596SBrooks Davis 92447c08596SBrooks Davis /* 92547c08596SBrooks Davis * state_bound is called when we've successfully bound to a particular 92647c08596SBrooks Davis * lease, but the renewal time on that lease has expired. We are 92747c08596SBrooks Davis * expected to unicast a DHCPREQUEST to the server that gave us our 92847c08596SBrooks Davis * original lease. 92947c08596SBrooks Davis */ 93047c08596SBrooks Davis void 93147c08596SBrooks Davis state_bound(void *ipp) 93247c08596SBrooks Davis { 93347c08596SBrooks Davis struct interface_info *ip = ipp; 93447c08596SBrooks Davis 93547c08596SBrooks Davis ASSERT_STATE(state, S_BOUND); 93647c08596SBrooks Davis 93747c08596SBrooks Davis /* T1 has expired. */ 93847c08596SBrooks Davis make_request(ip, ip->client->active); 93947c08596SBrooks Davis ip->client->xid = ip->client->packet.xid; 94047c08596SBrooks Davis 94147c08596SBrooks Davis if (ip->client->active->options[DHO_DHCP_SERVER_IDENTIFIER].len == 4) { 94247c08596SBrooks Davis memcpy(ip->client->destination.iabuf, ip->client->active-> 94347c08596SBrooks Davis options[DHO_DHCP_SERVER_IDENTIFIER].data, 4); 94447c08596SBrooks Davis ip->client->destination.len = 4; 94547c08596SBrooks Davis } else 94647c08596SBrooks Davis ip->client->destination = iaddr_broadcast; 94747c08596SBrooks Davis 94847c08596SBrooks Davis ip->client->first_sending = cur_time; 94947c08596SBrooks Davis ip->client->interval = ip->client->config->initial_interval; 95047c08596SBrooks Davis ip->client->state = S_RENEWING; 95147c08596SBrooks Davis 95247c08596SBrooks Davis /* Send the first packet immediately. */ 95347c08596SBrooks Davis send_request(ip); 95447c08596SBrooks Davis } 95547c08596SBrooks Davis 95647c08596SBrooks Davis void 95747c08596SBrooks Davis bootp(struct packet *packet) 95847c08596SBrooks Davis { 95947c08596SBrooks Davis struct iaddrlist *ap; 96047c08596SBrooks Davis 96147c08596SBrooks Davis if (packet->raw->op != BOOTREPLY) 96247c08596SBrooks Davis return; 96347c08596SBrooks Davis 96447c08596SBrooks Davis /* If there's a reject list, make sure this packet's sender isn't 96547c08596SBrooks Davis on it. */ 96647c08596SBrooks Davis for (ap = packet->interface->client->config->reject_list; 96747c08596SBrooks Davis ap; ap = ap->next) { 96847c08596SBrooks Davis if (addr_eq(packet->client_addr, ap->addr)) { 96947c08596SBrooks Davis note("BOOTREPLY from %s rejected.", piaddr(ap->addr)); 97047c08596SBrooks Davis return; 97147c08596SBrooks Davis } 97247c08596SBrooks Davis } 97347c08596SBrooks Davis dhcpoffer(packet); 97447c08596SBrooks Davis } 97547c08596SBrooks Davis 97647c08596SBrooks Davis void 97747c08596SBrooks Davis dhcp(struct packet *packet) 97847c08596SBrooks Davis { 97947c08596SBrooks Davis struct iaddrlist *ap; 98047c08596SBrooks Davis void (*handler)(struct packet *); 98179a1d195SAlan Somers const char *type; 98247c08596SBrooks Davis 98347c08596SBrooks Davis switch (packet->packet_type) { 98447c08596SBrooks Davis case DHCPOFFER: 98547c08596SBrooks Davis handler = dhcpoffer; 98647c08596SBrooks Davis type = "DHCPOFFER"; 98747c08596SBrooks Davis break; 98847c08596SBrooks Davis case DHCPNAK: 98947c08596SBrooks Davis handler = dhcpnak; 99047c08596SBrooks Davis type = "DHCPNACK"; 99147c08596SBrooks Davis break; 99247c08596SBrooks Davis case DHCPACK: 99347c08596SBrooks Davis handler = dhcpack; 99447c08596SBrooks Davis type = "DHCPACK"; 99547c08596SBrooks Davis break; 99647c08596SBrooks Davis default: 99747c08596SBrooks Davis return; 99847c08596SBrooks Davis } 99947c08596SBrooks Davis 100047c08596SBrooks Davis /* If there's a reject list, make sure this packet's sender isn't 100147c08596SBrooks Davis on it. */ 100247c08596SBrooks Davis for (ap = packet->interface->client->config->reject_list; 100347c08596SBrooks Davis ap; ap = ap->next) { 100447c08596SBrooks Davis if (addr_eq(packet->client_addr, ap->addr)) { 100547c08596SBrooks Davis note("%s from %s rejected.", type, piaddr(ap->addr)); 100647c08596SBrooks Davis return; 100747c08596SBrooks Davis } 100847c08596SBrooks Davis } 100947c08596SBrooks Davis (*handler)(packet); 101047c08596SBrooks Davis } 101147c08596SBrooks Davis 101247c08596SBrooks Davis void 101347c08596SBrooks Davis dhcpoffer(struct packet *packet) 101447c08596SBrooks Davis { 101547c08596SBrooks Davis struct interface_info *ip = packet->interface; 101647c08596SBrooks Davis struct client_lease *lease, *lp; 101747c08596SBrooks Davis int i; 101847c08596SBrooks Davis int arp_timeout_needed, stop_selecting; 101979a1d195SAlan Somers const char *name = packet->options[DHO_DHCP_MESSAGE_TYPE].len ? 102047c08596SBrooks Davis "DHCPOFFER" : "BOOTREPLY"; 102147c08596SBrooks Davis 102247c08596SBrooks Davis /* If we're not receptive to an offer right now, or if the offer 102347c08596SBrooks Davis has an unrecognizable transaction id, then just drop it. */ 102447c08596SBrooks Davis if (ip->client->state != S_SELECTING || 102547c08596SBrooks Davis packet->interface->client->xid != packet->raw->xid || 102647c08596SBrooks Davis (packet->interface->hw_address.hlen != packet->raw->hlen) || 102747c08596SBrooks Davis (memcmp(packet->interface->hw_address.haddr, 102847c08596SBrooks Davis packet->raw->chaddr, packet->raw->hlen))) 102947c08596SBrooks Davis return; 103047c08596SBrooks Davis 103147c08596SBrooks Davis note("%s from %s", name, piaddr(packet->client_addr)); 103247c08596SBrooks Davis 103347c08596SBrooks Davis 103447c08596SBrooks Davis /* If this lease doesn't supply the minimum required parameters, 103547c08596SBrooks Davis blow it off. */ 103647c08596SBrooks Davis for (i = 0; ip->client->config->required_options[i]; i++) { 103747c08596SBrooks Davis if (!packet->options[ip->client->config-> 103847c08596SBrooks Davis required_options[i]].len) { 103947c08596SBrooks Davis note("%s isn't satisfactory.", name); 104047c08596SBrooks Davis return; 104147c08596SBrooks Davis } 104247c08596SBrooks Davis } 104347c08596SBrooks Davis 104447c08596SBrooks Davis /* If we've already seen this lease, don't record it again. */ 104547c08596SBrooks Davis for (lease = ip->client->offered_leases; 104647c08596SBrooks Davis lease; lease = lease->next) { 104747c08596SBrooks Davis if (lease->address.len == sizeof(packet->raw->yiaddr) && 104847c08596SBrooks Davis !memcmp(lease->address.iabuf, 104947c08596SBrooks Davis &packet->raw->yiaddr, lease->address.len)) { 105047c08596SBrooks Davis debug("%s already seen.", name); 105147c08596SBrooks Davis return; 105247c08596SBrooks Davis } 105347c08596SBrooks Davis } 105447c08596SBrooks Davis 105547c08596SBrooks Davis lease = packet_to_lease(packet); 105647c08596SBrooks Davis if (!lease) { 105747c08596SBrooks Davis note("packet_to_lease failed."); 105847c08596SBrooks Davis return; 105947c08596SBrooks Davis } 106047c08596SBrooks Davis 106147c08596SBrooks Davis /* If this lease was acquired through a BOOTREPLY, record that 106247c08596SBrooks Davis fact. */ 106347c08596SBrooks Davis if (!packet->options[DHO_DHCP_MESSAGE_TYPE].len) 106447c08596SBrooks Davis lease->is_bootp = 1; 106547c08596SBrooks Davis 106647c08596SBrooks Davis /* Record the medium under which this lease was offered. */ 106747c08596SBrooks Davis lease->medium = ip->client->medium; 106847c08596SBrooks Davis 106947c08596SBrooks Davis /* Send out an ARP Request for the offered IP address. */ 107047c08596SBrooks Davis script_init("ARPSEND", lease->medium); 107147c08596SBrooks Davis script_write_params("check_", lease); 107247c08596SBrooks Davis /* If the script can't send an ARP request without waiting, 107347c08596SBrooks Davis we'll be waiting when we do the ARPCHECK, so don't wait now. */ 107447c08596SBrooks Davis if (script_go()) 107547c08596SBrooks Davis arp_timeout_needed = 0; 107647c08596SBrooks Davis else 107747c08596SBrooks Davis arp_timeout_needed = 2; 107847c08596SBrooks Davis 107947c08596SBrooks Davis /* Figure out when we're supposed to stop selecting. */ 108047c08596SBrooks Davis stop_selecting = 108147c08596SBrooks Davis ip->client->first_sending + ip->client->config->select_interval; 108247c08596SBrooks Davis 108347c08596SBrooks Davis /* If this is the lease we asked for, put it at the head of the 108447c08596SBrooks Davis list, and don't mess with the arp request timeout. */ 108547c08596SBrooks Davis if (lease->address.len == ip->client->requested_address.len && 108647c08596SBrooks Davis !memcmp(lease->address.iabuf, 108747c08596SBrooks Davis ip->client->requested_address.iabuf, 108847c08596SBrooks Davis ip->client->requested_address.len)) { 108947c08596SBrooks Davis lease->next = ip->client->offered_leases; 109047c08596SBrooks Davis ip->client->offered_leases = lease; 109147c08596SBrooks Davis } else { 109247c08596SBrooks Davis /* If we already have an offer, and arping for this 109347c08596SBrooks Davis offer would take us past the selection timeout, 109447c08596SBrooks Davis then don't extend the timeout - just hope for the 109547c08596SBrooks Davis best. */ 109647c08596SBrooks Davis if (ip->client->offered_leases && 109747c08596SBrooks Davis (cur_time + arp_timeout_needed) > stop_selecting) 109847c08596SBrooks Davis arp_timeout_needed = 0; 109947c08596SBrooks Davis 110047c08596SBrooks Davis /* Put the lease at the end of the list. */ 110147c08596SBrooks Davis lease->next = NULL; 110247c08596SBrooks Davis if (!ip->client->offered_leases) 110347c08596SBrooks Davis ip->client->offered_leases = lease; 110447c08596SBrooks Davis else { 110547c08596SBrooks Davis for (lp = ip->client->offered_leases; lp->next; 110647c08596SBrooks Davis lp = lp->next) 110747c08596SBrooks Davis ; /* nothing */ 110847c08596SBrooks Davis lp->next = lease; 110947c08596SBrooks Davis } 111047c08596SBrooks Davis } 111147c08596SBrooks Davis 111247c08596SBrooks Davis /* If we're supposed to stop selecting before we've had time 111347c08596SBrooks Davis to wait for the ARPREPLY, add some delay to wait for 111447c08596SBrooks Davis the ARPREPLY. */ 111547c08596SBrooks Davis if (stop_selecting - cur_time < arp_timeout_needed) 111647c08596SBrooks Davis stop_selecting = cur_time + arp_timeout_needed; 111747c08596SBrooks Davis 111847c08596SBrooks Davis /* If the selecting interval has expired, go immediately to 111947c08596SBrooks Davis state_selecting(). Otherwise, time out into 112047c08596SBrooks Davis state_selecting at the select interval. */ 112147c08596SBrooks Davis if (stop_selecting <= 0) 112247c08596SBrooks Davis state_selecting(ip); 112347c08596SBrooks Davis else { 112447c08596SBrooks Davis add_timeout(stop_selecting, state_selecting, ip); 112547c08596SBrooks Davis cancel_timeout(send_discover, ip); 112647c08596SBrooks Davis } 112747c08596SBrooks Davis } 112847c08596SBrooks Davis 112947c08596SBrooks Davis /* Allocate a client_lease structure and initialize it from the parameters 113047c08596SBrooks Davis in the specified packet. */ 113147c08596SBrooks Davis 113247c08596SBrooks Davis struct client_lease * 113347c08596SBrooks Davis packet_to_lease(struct packet *packet) 113447c08596SBrooks Davis { 113547c08596SBrooks Davis struct client_lease *lease; 113647c08596SBrooks Davis int i; 113747c08596SBrooks Davis 113847c08596SBrooks Davis lease = malloc(sizeof(struct client_lease)); 113947c08596SBrooks Davis 114047c08596SBrooks Davis if (!lease) { 114147c08596SBrooks Davis warning("dhcpoffer: no memory to record lease."); 114247c08596SBrooks Davis return (NULL); 114347c08596SBrooks Davis } 114447c08596SBrooks Davis 114547c08596SBrooks Davis memset(lease, 0, sizeof(*lease)); 114647c08596SBrooks Davis 114747c08596SBrooks Davis /* Copy the lease options. */ 114847c08596SBrooks Davis for (i = 0; i < 256; i++) { 114947c08596SBrooks Davis if (packet->options[i].len) { 115047c08596SBrooks Davis lease->options[i].data = 115147c08596SBrooks Davis malloc(packet->options[i].len + 1); 115247c08596SBrooks Davis if (!lease->options[i].data) { 115347c08596SBrooks Davis warning("dhcpoffer: no memory for option %d", i); 115447c08596SBrooks Davis free_client_lease(lease); 115547c08596SBrooks Davis return (NULL); 115647c08596SBrooks Davis } else { 115747c08596SBrooks Davis memcpy(lease->options[i].data, 115847c08596SBrooks Davis packet->options[i].data, 115947c08596SBrooks Davis packet->options[i].len); 116047c08596SBrooks Davis lease->options[i].len = 116147c08596SBrooks Davis packet->options[i].len; 116247c08596SBrooks Davis lease->options[i].data[lease->options[i].len] = 116347c08596SBrooks Davis 0; 116447c08596SBrooks Davis } 116547c08596SBrooks Davis if (!check_option(lease,i)) { 116647c08596SBrooks Davis /* ignore a bogus lease offer */ 116747c08596SBrooks Davis warning("Invalid lease option - ignoring offer"); 116847c08596SBrooks Davis free_client_lease(lease); 116947c08596SBrooks Davis return (NULL); 117047c08596SBrooks Davis } 117147c08596SBrooks Davis } 117247c08596SBrooks Davis } 117347c08596SBrooks Davis 117447c08596SBrooks Davis lease->address.len = sizeof(packet->raw->yiaddr); 117547c08596SBrooks Davis memcpy(lease->address.iabuf, &packet->raw->yiaddr, lease->address.len); 117647c08596SBrooks Davis 1177d32438c3SBruce M Simpson lease->nextserver.len = sizeof(packet->raw->siaddr); 1178d32438c3SBruce M Simpson memcpy(lease->nextserver.iabuf, &packet->raw->siaddr, lease->nextserver.len); 1179d32438c3SBruce M Simpson 1180acccb9aaSBrooks Davis /* If the server name was filled out, copy it. 1181acccb9aaSBrooks Davis Do not attempt to validate the server name as a host name. 1182acccb9aaSBrooks Davis RFC 2131 merely states that sname is NUL-terminated (which do 1183acccb9aaSBrooks Davis do not assume) and that it is the server's host name. Since 1184acccb9aaSBrooks Davis the ISC client and server allow arbitrary characters, we do 1185acccb9aaSBrooks Davis as well. */ 118647c08596SBrooks Davis if ((!packet->options[DHO_DHCP_OPTION_OVERLOAD].len || 118747c08596SBrooks Davis !(packet->options[DHO_DHCP_OPTION_OVERLOAD].data[0] & 2)) && 118847c08596SBrooks Davis packet->raw->sname[0]) { 118947c08596SBrooks Davis lease->server_name = malloc(DHCP_SNAME_LEN + 1); 119047c08596SBrooks Davis if (!lease->server_name) { 119147c08596SBrooks Davis warning("dhcpoffer: no memory for server name."); 119247c08596SBrooks Davis free_client_lease(lease); 119347c08596SBrooks Davis return (NULL); 119447c08596SBrooks Davis } 119547c08596SBrooks Davis memcpy(lease->server_name, packet->raw->sname, DHCP_SNAME_LEN); 119647c08596SBrooks Davis lease->server_name[DHCP_SNAME_LEN]='\0'; 119747c08596SBrooks Davis } 119847c08596SBrooks Davis 119947c08596SBrooks Davis /* Ditto for the filename. */ 120047c08596SBrooks Davis if ((!packet->options[DHO_DHCP_OPTION_OVERLOAD].len || 120147c08596SBrooks Davis !(packet->options[DHO_DHCP_OPTION_OVERLOAD].data[0] & 1)) && 120247c08596SBrooks Davis packet->raw->file[0]) { 120347c08596SBrooks Davis /* Don't count on the NUL terminator. */ 120447c08596SBrooks Davis lease->filename = malloc(DHCP_FILE_LEN + 1); 120547c08596SBrooks Davis if (!lease->filename) { 120647c08596SBrooks Davis warning("dhcpoffer: no memory for filename."); 120747c08596SBrooks Davis free_client_lease(lease); 120847c08596SBrooks Davis return (NULL); 120947c08596SBrooks Davis } 121047c08596SBrooks Davis memcpy(lease->filename, packet->raw->file, DHCP_FILE_LEN); 121147c08596SBrooks Davis lease->filename[DHCP_FILE_LEN]='\0'; 121247c08596SBrooks Davis } 121347c08596SBrooks Davis return lease; 121447c08596SBrooks Davis } 121547c08596SBrooks Davis 121647c08596SBrooks Davis void 121747c08596SBrooks Davis dhcpnak(struct packet *packet) 121847c08596SBrooks Davis { 121947c08596SBrooks Davis struct interface_info *ip = packet->interface; 122047c08596SBrooks Davis 122147c08596SBrooks Davis /* If we're not receptive to an offer right now, or if the offer 122247c08596SBrooks Davis has an unrecognizable transaction id, then just drop it. */ 122347c08596SBrooks Davis if (packet->interface->client->xid != packet->raw->xid || 122447c08596SBrooks Davis (packet->interface->hw_address.hlen != packet->raw->hlen) || 122547c08596SBrooks Davis (memcmp(packet->interface->hw_address.haddr, 122647c08596SBrooks Davis packet->raw->chaddr, packet->raw->hlen))) 122747c08596SBrooks Davis return; 122847c08596SBrooks Davis 122947c08596SBrooks Davis if (ip->client->state != S_REBOOTING && 123047c08596SBrooks Davis ip->client->state != S_REQUESTING && 123147c08596SBrooks Davis ip->client->state != S_RENEWING && 123247c08596SBrooks Davis ip->client->state != S_REBINDING) 123347c08596SBrooks Davis return; 123447c08596SBrooks Davis 123547c08596SBrooks Davis note("DHCPNAK from %s", piaddr(packet->client_addr)); 123647c08596SBrooks Davis 123747c08596SBrooks Davis if (!ip->client->active) { 123847c08596SBrooks Davis note("DHCPNAK with no active lease.\n"); 123947c08596SBrooks Davis return; 124047c08596SBrooks Davis } 124147c08596SBrooks Davis 124247c08596SBrooks Davis free_client_lease(ip->client->active); 124347c08596SBrooks Davis ip->client->active = NULL; 124447c08596SBrooks Davis 124547c08596SBrooks Davis /* Stop sending DHCPREQUEST packets... */ 124647c08596SBrooks Davis cancel_timeout(send_request, ip); 124747c08596SBrooks Davis 124847c08596SBrooks Davis ip->client->state = S_INIT; 124947c08596SBrooks Davis state_init(ip); 125047c08596SBrooks Davis } 125147c08596SBrooks Davis 125247c08596SBrooks Davis /* Send out a DHCPDISCOVER packet, and set a timeout to send out another 125347c08596SBrooks Davis one after the right interval has expired. If we don't get an offer by 125447c08596SBrooks Davis the time we reach the panic interval, call the panic function. */ 125547c08596SBrooks Davis 125647c08596SBrooks Davis void 125747c08596SBrooks Davis send_discover(void *ipp) 125847c08596SBrooks Davis { 125947c08596SBrooks Davis struct interface_info *ip = ipp; 126047c08596SBrooks Davis int interval, increase = 1; 126147c08596SBrooks Davis 126247c08596SBrooks Davis /* Figure out how long it's been since we started transmitting. */ 126347c08596SBrooks Davis interval = cur_time - ip->client->first_sending; 126447c08596SBrooks Davis 126547c08596SBrooks Davis /* If we're past the panic timeout, call the script and tell it 126647c08596SBrooks Davis we haven't found anything for this interface yet. */ 126747c08596SBrooks Davis if (interval > ip->client->config->timeout) { 126847c08596SBrooks Davis state_panic(ip); 126947c08596SBrooks Davis return; 127047c08596SBrooks Davis } 127147c08596SBrooks Davis 127247c08596SBrooks Davis /* If we're selecting media, try the whole list before doing 127347c08596SBrooks Davis the exponential backoff, but if we've already received an 127447c08596SBrooks Davis offer, stop looping, because we obviously have it right. */ 127547c08596SBrooks Davis if (!ip->client->offered_leases && 127647c08596SBrooks Davis ip->client->config->media) { 127747c08596SBrooks Davis int fail = 0; 127847c08596SBrooks Davis again: 127947c08596SBrooks Davis if (ip->client->medium) { 128047c08596SBrooks Davis ip->client->medium = ip->client->medium->next; 128147c08596SBrooks Davis increase = 0; 128247c08596SBrooks Davis } 128347c08596SBrooks Davis if (!ip->client->medium) { 128447c08596SBrooks Davis if (fail) 128547c08596SBrooks Davis error("No valid media types for %s!", ip->name); 128647c08596SBrooks Davis ip->client->medium = ip->client->config->media; 128747c08596SBrooks Davis increase = 1; 128847c08596SBrooks Davis } 128947c08596SBrooks Davis 129047c08596SBrooks Davis note("Trying medium \"%s\" %d", ip->client->medium->string, 129147c08596SBrooks Davis increase); 129247c08596SBrooks Davis script_init("MEDIUM", ip->client->medium); 129347c08596SBrooks Davis if (script_go()) 129447c08596SBrooks Davis goto again; 129547c08596SBrooks Davis } 129647c08596SBrooks Davis 129747c08596SBrooks Davis /* 129847c08596SBrooks Davis * If we're supposed to increase the interval, do so. If it's 129947c08596SBrooks Davis * currently zero (i.e., we haven't sent any packets yet), set 130047c08596SBrooks Davis * it to one; otherwise, add to it a random number between zero 130147c08596SBrooks Davis * and two times itself. On average, this means that it will 130247c08596SBrooks Davis * double with every transmission. 130347c08596SBrooks Davis */ 130447c08596SBrooks Davis if (increase) { 130547c08596SBrooks Davis if (!ip->client->interval) 130647c08596SBrooks Davis ip->client->interval = 130747c08596SBrooks Davis ip->client->config->initial_interval; 130847c08596SBrooks Davis else { 130947c08596SBrooks Davis ip->client->interval += (arc4random() >> 2) % 131047c08596SBrooks Davis (2 * ip->client->interval); 131147c08596SBrooks Davis } 131247c08596SBrooks Davis 131347c08596SBrooks Davis /* Don't backoff past cutoff. */ 131447c08596SBrooks Davis if (ip->client->interval > 131547c08596SBrooks Davis ip->client->config->backoff_cutoff) 131647c08596SBrooks Davis ip->client->interval = 131747c08596SBrooks Davis ((ip->client->config->backoff_cutoff / 2) 131847c08596SBrooks Davis + ((arc4random() >> 2) % 131947c08596SBrooks Davis ip->client->config->backoff_cutoff)); 132047c08596SBrooks Davis } else if (!ip->client->interval) 132147c08596SBrooks Davis ip->client->interval = 132247c08596SBrooks Davis ip->client->config->initial_interval; 132347c08596SBrooks Davis 132447c08596SBrooks Davis /* If the backoff would take us to the panic timeout, just use that 132547c08596SBrooks Davis as the interval. */ 132647c08596SBrooks Davis if (cur_time + ip->client->interval > 132747c08596SBrooks Davis ip->client->first_sending + ip->client->config->timeout) 132847c08596SBrooks Davis ip->client->interval = 132947c08596SBrooks Davis (ip->client->first_sending + 133047c08596SBrooks Davis ip->client->config->timeout) - cur_time + 1; 133147c08596SBrooks Davis 133247c08596SBrooks Davis /* Record the number of seconds since we started sending. */ 133347c08596SBrooks Davis if (interval < 65536) 133447c08596SBrooks Davis ip->client->packet.secs = htons(interval); 133547c08596SBrooks Davis else 133647c08596SBrooks Davis ip->client->packet.secs = htons(65535); 133747c08596SBrooks Davis ip->client->secs = ip->client->packet.secs; 133847c08596SBrooks Davis 133947c08596SBrooks Davis note("DHCPDISCOVER on %s to %s port %d interval %d", 1340ba019ae5SPawel Jakub Dawidek ip->name, inet_ntoa(inaddr_broadcast), REMOTE_PORT, 13419c13d9cdSBrooks Davis (int)ip->client->interval); 134247c08596SBrooks Davis 134347c08596SBrooks Davis /* Send out a packet. */ 1344235eb530SPawel Jakub Dawidek send_packet_unpriv(privfd, &ip->client->packet, 1345235eb530SPawel Jakub Dawidek ip->client->packet_length, inaddr_any, inaddr_broadcast); 134647c08596SBrooks Davis 134747c08596SBrooks Davis add_timeout(cur_time + ip->client->interval, send_discover, ip); 134847c08596SBrooks Davis } 134947c08596SBrooks Davis 135047c08596SBrooks Davis /* 135147c08596SBrooks Davis * state_panic gets called if we haven't received any offers in a preset 135247c08596SBrooks Davis * amount of time. When this happens, we try to use existing leases 135347c08596SBrooks Davis * that haven't yet expired, and failing that, we call the client script 135447c08596SBrooks Davis * and hope it can do something. 135547c08596SBrooks Davis */ 135647c08596SBrooks Davis void 135747c08596SBrooks Davis state_panic(void *ipp) 135847c08596SBrooks Davis { 135947c08596SBrooks Davis struct interface_info *ip = ipp; 136047c08596SBrooks Davis struct client_lease *loop = ip->client->active; 136147c08596SBrooks Davis struct client_lease *lp; 136247c08596SBrooks Davis 136347c08596SBrooks Davis note("No DHCPOFFERS received."); 136447c08596SBrooks Davis 136547c08596SBrooks Davis /* We may not have an active lease, but we may have some 136647c08596SBrooks Davis predefined leases that we can try. */ 136747c08596SBrooks Davis if (!ip->client->active && ip->client->leases) 136847c08596SBrooks Davis goto activate_next; 136947c08596SBrooks Davis 137047c08596SBrooks Davis /* Run through the list of leases and see if one can be used. */ 137147c08596SBrooks Davis while (ip->client->active) { 137247c08596SBrooks Davis if (ip->client->active->expiry > cur_time) { 137347c08596SBrooks Davis note("Trying recorded lease %s", 137447c08596SBrooks Davis piaddr(ip->client->active->address)); 137547c08596SBrooks Davis /* Run the client script with the existing 137647c08596SBrooks Davis parameters. */ 137747c08596SBrooks Davis script_init("TIMEOUT", 137847c08596SBrooks Davis ip->client->active->medium); 137947c08596SBrooks Davis script_write_params("new_", ip->client->active); 138047c08596SBrooks Davis if (ip->client->alias) 138147c08596SBrooks Davis script_write_params("alias_", 138247c08596SBrooks Davis ip->client->alias); 138347c08596SBrooks Davis 138447c08596SBrooks Davis /* If the old lease is still good and doesn't 138547c08596SBrooks Davis yet need renewal, go into BOUND state and 138647c08596SBrooks Davis timeout at the renewal time. */ 138747c08596SBrooks Davis if (!script_go()) { 138847c08596SBrooks Davis if (cur_time < 138947c08596SBrooks Davis ip->client->active->renewal) { 139047c08596SBrooks Davis ip->client->state = S_BOUND; 139147c08596SBrooks Davis note("bound: renewal in %d seconds.", 13929c13d9cdSBrooks Davis (int)(ip->client->active->renewal - 13939c13d9cdSBrooks Davis cur_time)); 139447c08596SBrooks Davis add_timeout( 139547c08596SBrooks Davis ip->client->active->renewal, 139647c08596SBrooks Davis state_bound, ip); 139747c08596SBrooks Davis } else { 139847c08596SBrooks Davis ip->client->state = S_BOUND; 139947c08596SBrooks Davis note("bound: immediate renewal."); 140047c08596SBrooks Davis state_bound(ip); 140147c08596SBrooks Davis } 140247c08596SBrooks Davis reinitialize_interfaces(); 140347c08596SBrooks Davis go_daemon(); 140447c08596SBrooks Davis return; 140547c08596SBrooks Davis } 140647c08596SBrooks Davis } 140747c08596SBrooks Davis 140847c08596SBrooks Davis /* If there are no other leases, give up. */ 140947c08596SBrooks Davis if (!ip->client->leases) { 141047c08596SBrooks Davis ip->client->leases = ip->client->active; 141147c08596SBrooks Davis ip->client->active = NULL; 141247c08596SBrooks Davis break; 141347c08596SBrooks Davis } 141447c08596SBrooks Davis 141547c08596SBrooks Davis activate_next: 141647c08596SBrooks Davis /* Otherwise, put the active lease at the end of the 141747c08596SBrooks Davis lease list, and try another lease.. */ 141847c08596SBrooks Davis for (lp = ip->client->leases; lp->next; lp = lp->next) 141947c08596SBrooks Davis ; 142047c08596SBrooks Davis lp->next = ip->client->active; 142147c08596SBrooks Davis if (lp->next) 142247c08596SBrooks Davis lp->next->next = NULL; 142347c08596SBrooks Davis ip->client->active = ip->client->leases; 142447c08596SBrooks Davis ip->client->leases = ip->client->leases->next; 142547c08596SBrooks Davis 142647c08596SBrooks Davis /* If we already tried this lease, we've exhausted the 142747c08596SBrooks Davis set of leases, so we might as well give up for 142847c08596SBrooks Davis now. */ 142947c08596SBrooks Davis if (ip->client->active == loop) 143047c08596SBrooks Davis break; 143147c08596SBrooks Davis else if (!loop) 143247c08596SBrooks Davis loop = ip->client->active; 143347c08596SBrooks Davis } 143447c08596SBrooks Davis 143547c08596SBrooks Davis /* No leases were available, or what was available didn't work, so 143647c08596SBrooks Davis tell the shell script that we failed to allocate an address, 143747c08596SBrooks Davis and try again later. */ 143847c08596SBrooks Davis note("No working leases in persistent database - sleeping.\n"); 143947c08596SBrooks Davis script_init("FAIL", NULL); 144047c08596SBrooks Davis if (ip->client->alias) 144147c08596SBrooks Davis script_write_params("alias_", ip->client->alias); 144247c08596SBrooks Davis script_go(); 144347c08596SBrooks Davis ip->client->state = S_INIT; 144447c08596SBrooks Davis add_timeout(cur_time + ip->client->config->retry_interval, state_init, 144547c08596SBrooks Davis ip); 144647c08596SBrooks Davis go_daemon(); 144747c08596SBrooks Davis } 144847c08596SBrooks Davis 144947c08596SBrooks Davis void 145047c08596SBrooks Davis send_request(void *ipp) 145147c08596SBrooks Davis { 145247c08596SBrooks Davis struct interface_info *ip = ipp; 1453ba019ae5SPawel Jakub Dawidek struct in_addr from, to; 145447c08596SBrooks Davis int interval; 145547c08596SBrooks Davis 145647c08596SBrooks Davis /* Figure out how long it's been since we started transmitting. */ 145747c08596SBrooks Davis interval = cur_time - ip->client->first_sending; 145847c08596SBrooks Davis 145947c08596SBrooks Davis /* If we're in the INIT-REBOOT or REQUESTING state and we're 146047c08596SBrooks Davis past the reboot timeout, go to INIT and see if we can 146147c08596SBrooks Davis DISCOVER an address... */ 146247c08596SBrooks Davis /* XXX In the INIT-REBOOT state, if we don't get an ACK, it 146347c08596SBrooks Davis means either that we're on a network with no DHCP server, 146447c08596SBrooks Davis or that our server is down. In the latter case, assuming 146547c08596SBrooks Davis that there is a backup DHCP server, DHCPDISCOVER will get 146647c08596SBrooks Davis us a new address, but we could also have successfully 146747c08596SBrooks Davis reused our old address. In the former case, we're hosed 146847c08596SBrooks Davis anyway. This is not a win-prone situation. */ 146947c08596SBrooks Davis if ((ip->client->state == S_REBOOTING || 147047c08596SBrooks Davis ip->client->state == S_REQUESTING) && 147147c08596SBrooks Davis interval > ip->client->config->reboot_timeout) { 147247c08596SBrooks Davis cancel: 147347c08596SBrooks Davis ip->client->state = S_INIT; 147447c08596SBrooks Davis cancel_timeout(send_request, ip); 147547c08596SBrooks Davis state_init(ip); 147647c08596SBrooks Davis return; 147747c08596SBrooks Davis } 147847c08596SBrooks Davis 147947c08596SBrooks Davis /* If we're in the reboot state, make sure the media is set up 148047c08596SBrooks Davis correctly. */ 148147c08596SBrooks Davis if (ip->client->state == S_REBOOTING && 148247c08596SBrooks Davis !ip->client->medium && 148347c08596SBrooks Davis ip->client->active->medium ) { 148447c08596SBrooks Davis script_init("MEDIUM", ip->client->active->medium); 148547c08596SBrooks Davis 148647c08596SBrooks Davis /* If the medium we chose won't fly, go to INIT state. */ 148747c08596SBrooks Davis if (script_go()) 148847c08596SBrooks Davis goto cancel; 148947c08596SBrooks Davis 149047c08596SBrooks Davis /* Record the medium. */ 149147c08596SBrooks Davis ip->client->medium = ip->client->active->medium; 149247c08596SBrooks Davis } 149347c08596SBrooks Davis 149447c08596SBrooks Davis /* If the lease has expired, relinquish the address and go back 149547c08596SBrooks Davis to the INIT state. */ 149647c08596SBrooks Davis if (ip->client->state != S_REQUESTING && 149747c08596SBrooks Davis cur_time > ip->client->active->expiry) { 149847c08596SBrooks Davis /* Run the client script with the new parameters. */ 149947c08596SBrooks Davis script_init("EXPIRE", NULL); 150047c08596SBrooks Davis script_write_params("old_", ip->client->active); 150147c08596SBrooks Davis if (ip->client->alias) 150247c08596SBrooks Davis script_write_params("alias_", ip->client->alias); 150347c08596SBrooks Davis script_go(); 150447c08596SBrooks Davis 150547c08596SBrooks Davis /* Now do a preinit on the interface so that we can 150647c08596SBrooks Davis discover a new address. */ 150747c08596SBrooks Davis script_init("PREINIT", NULL); 150847c08596SBrooks Davis if (ip->client->alias) 150947c08596SBrooks Davis script_write_params("alias_", ip->client->alias); 151047c08596SBrooks Davis script_go(); 151147c08596SBrooks Davis 151247c08596SBrooks Davis ip->client->state = S_INIT; 151347c08596SBrooks Davis state_init(ip); 151447c08596SBrooks Davis return; 151547c08596SBrooks Davis } 151647c08596SBrooks Davis 151747c08596SBrooks Davis /* Do the exponential backoff... */ 151847c08596SBrooks Davis if (!ip->client->interval) 151947c08596SBrooks Davis ip->client->interval = ip->client->config->initial_interval; 152047c08596SBrooks Davis else 152147c08596SBrooks Davis ip->client->interval += ((arc4random() >> 2) % 152247c08596SBrooks Davis (2 * ip->client->interval)); 152347c08596SBrooks Davis 152447c08596SBrooks Davis /* Don't backoff past cutoff. */ 152547c08596SBrooks Davis if (ip->client->interval > 152647c08596SBrooks Davis ip->client->config->backoff_cutoff) 152747c08596SBrooks Davis ip->client->interval = 152847c08596SBrooks Davis ((ip->client->config->backoff_cutoff / 2) + 152947c08596SBrooks Davis ((arc4random() >> 2) % ip->client->interval)); 153047c08596SBrooks Davis 153147c08596SBrooks Davis /* If the backoff would take us to the expiry time, just set the 153247c08596SBrooks Davis timeout to the expiry time. */ 153347c08596SBrooks Davis if (ip->client->state != S_REQUESTING && 153447c08596SBrooks Davis cur_time + ip->client->interval > 153547c08596SBrooks Davis ip->client->active->expiry) 153647c08596SBrooks Davis ip->client->interval = 153747c08596SBrooks Davis ip->client->active->expiry - cur_time + 1; 153847c08596SBrooks Davis 153947c08596SBrooks Davis /* If the lease T2 time has elapsed, or if we're not yet bound, 154047c08596SBrooks Davis broadcast the DHCPREQUEST rather than unicasting. */ 154147c08596SBrooks Davis if (ip->client->state == S_REQUESTING || 154247c08596SBrooks Davis ip->client->state == S_REBOOTING || 154347c08596SBrooks Davis cur_time > ip->client->active->rebind) 1544ba019ae5SPawel Jakub Dawidek to.s_addr = INADDR_BROADCAST; 154547c08596SBrooks Davis else 1546ba019ae5SPawel Jakub Dawidek memcpy(&to.s_addr, ip->client->destination.iabuf, 1547ba019ae5SPawel Jakub Dawidek sizeof(to.s_addr)); 154847c08596SBrooks Davis 15493acf1760SDavid Bright if (ip->client->state != S_REQUESTING && 15503acf1760SDavid Bright ip->client->state != S_REBOOTING) 155147c08596SBrooks Davis memcpy(&from, ip->client->active->address.iabuf, 155247c08596SBrooks Davis sizeof(from)); 155347c08596SBrooks Davis else 155447c08596SBrooks Davis from.s_addr = INADDR_ANY; 155547c08596SBrooks Davis 155647c08596SBrooks Davis /* Record the number of seconds since we started sending. */ 155747c08596SBrooks Davis if (ip->client->state == S_REQUESTING) 155847c08596SBrooks Davis ip->client->packet.secs = ip->client->secs; 155947c08596SBrooks Davis else { 156047c08596SBrooks Davis if (interval < 65536) 156147c08596SBrooks Davis ip->client->packet.secs = htons(interval); 156247c08596SBrooks Davis else 156347c08596SBrooks Davis ip->client->packet.secs = htons(65535); 156447c08596SBrooks Davis } 156547c08596SBrooks Davis 1566ba019ae5SPawel Jakub Dawidek note("DHCPREQUEST on %s to %s port %d", ip->name, inet_ntoa(to), 1567ba019ae5SPawel Jakub Dawidek REMOTE_PORT); 156847c08596SBrooks Davis 156947c08596SBrooks Davis /* Send out a packet. */ 1570235eb530SPawel Jakub Dawidek send_packet_unpriv(privfd, &ip->client->packet, 1571235eb530SPawel Jakub Dawidek ip->client->packet_length, from, to); 157247c08596SBrooks Davis 157347c08596SBrooks Davis add_timeout(cur_time + ip->client->interval, send_request, ip); 157447c08596SBrooks Davis } 157547c08596SBrooks Davis 157647c08596SBrooks Davis void 157747c08596SBrooks Davis send_decline(void *ipp) 157847c08596SBrooks Davis { 157947c08596SBrooks Davis struct interface_info *ip = ipp; 158047c08596SBrooks Davis 158147c08596SBrooks Davis note("DHCPDECLINE on %s to %s port %d", ip->name, 1582ba019ae5SPawel Jakub Dawidek inet_ntoa(inaddr_broadcast), REMOTE_PORT); 158347c08596SBrooks Davis 158447c08596SBrooks Davis /* Send out a packet. */ 1585235eb530SPawel Jakub Dawidek send_packet_unpriv(privfd, &ip->client->packet, 1586235eb530SPawel Jakub Dawidek ip->client->packet_length, inaddr_any, inaddr_broadcast); 158747c08596SBrooks Davis } 158847c08596SBrooks Davis 158947c08596SBrooks Davis void 159047c08596SBrooks Davis make_discover(struct interface_info *ip, struct client_lease *lease) 159147c08596SBrooks Davis { 159247c08596SBrooks Davis unsigned char discover = DHCPDISCOVER; 159347c08596SBrooks Davis struct tree_cache *options[256]; 159447c08596SBrooks Davis struct tree_cache option_elements[256]; 159547c08596SBrooks Davis int i; 159647c08596SBrooks Davis 159747c08596SBrooks Davis memset(option_elements, 0, sizeof(option_elements)); 159847c08596SBrooks Davis memset(options, 0, sizeof(options)); 159947c08596SBrooks Davis memset(&ip->client->packet, 0, sizeof(ip->client->packet)); 160047c08596SBrooks Davis 160147c08596SBrooks Davis /* Set DHCP_MESSAGE_TYPE to DHCPDISCOVER */ 160247c08596SBrooks Davis i = DHO_DHCP_MESSAGE_TYPE; 160347c08596SBrooks Davis options[i] = &option_elements[i]; 160447c08596SBrooks Davis options[i]->value = &discover; 160547c08596SBrooks Davis options[i]->len = sizeof(discover); 160647c08596SBrooks Davis options[i]->buf_size = sizeof(discover); 160747c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 160847c08596SBrooks Davis 160947c08596SBrooks Davis /* Request the options we want */ 161047c08596SBrooks Davis i = DHO_DHCP_PARAMETER_REQUEST_LIST; 161147c08596SBrooks Davis options[i] = &option_elements[i]; 161247c08596SBrooks Davis options[i]->value = ip->client->config->requested_options; 161347c08596SBrooks Davis options[i]->len = ip->client->config->requested_option_count; 161447c08596SBrooks Davis options[i]->buf_size = 161547c08596SBrooks Davis ip->client->config->requested_option_count; 161647c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 161747c08596SBrooks Davis 161847c08596SBrooks Davis /* If we had an address, try to get it again. */ 161947c08596SBrooks Davis if (lease) { 162047c08596SBrooks Davis ip->client->requested_address = lease->address; 162147c08596SBrooks Davis i = DHO_DHCP_REQUESTED_ADDRESS; 162247c08596SBrooks Davis options[i] = &option_elements[i]; 162347c08596SBrooks Davis options[i]->value = lease->address.iabuf; 162447c08596SBrooks Davis options[i]->len = lease->address.len; 162547c08596SBrooks Davis options[i]->buf_size = lease->address.len; 162647c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 162747c08596SBrooks Davis } else 162847c08596SBrooks Davis ip->client->requested_address.len = 0; 162947c08596SBrooks Davis 163047c08596SBrooks Davis /* Send any options requested in the config file. */ 163147c08596SBrooks Davis for (i = 0; i < 256; i++) 163247c08596SBrooks Davis if (!options[i] && 163347c08596SBrooks Davis ip->client->config->send_options[i].data) { 163447c08596SBrooks Davis options[i] = &option_elements[i]; 163547c08596SBrooks Davis options[i]->value = 163647c08596SBrooks Davis ip->client->config->send_options[i].data; 163747c08596SBrooks Davis options[i]->len = 163847c08596SBrooks Davis ip->client->config->send_options[i].len; 163947c08596SBrooks Davis options[i]->buf_size = 164047c08596SBrooks Davis ip->client->config->send_options[i].len; 164147c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 164247c08596SBrooks Davis } 164347c08596SBrooks Davis 1644fcab8addSBrooks Davis /* send host name if not set via config file. */ 1645fcab8addSBrooks Davis if (!options[DHO_HOST_NAME]) { 16460bbe8306SPawel Jakub Dawidek if (hostname[0] != '\0') { 1647fcab8addSBrooks Davis size_t len; 1648fcab8addSBrooks Davis char* posDot = strchr(hostname, '.'); 1649fcab8addSBrooks Davis if (posDot != NULL) 1650fcab8addSBrooks Davis len = posDot - hostname; 1651fcab8addSBrooks Davis else 1652fcab8addSBrooks Davis len = strlen(hostname); 1653fcab8addSBrooks Davis options[DHO_HOST_NAME] = &option_elements[DHO_HOST_NAME]; 1654fcab8addSBrooks Davis options[DHO_HOST_NAME]->value = hostname; 1655fcab8addSBrooks Davis options[DHO_HOST_NAME]->len = len; 1656fcab8addSBrooks Davis options[DHO_HOST_NAME]->buf_size = len; 1657fcab8addSBrooks Davis options[DHO_HOST_NAME]->timeout = 0xFFFFFFFF; 1658fcab8addSBrooks Davis } 1659fcab8addSBrooks Davis } 1660fcab8addSBrooks Davis 1661fcab8addSBrooks Davis /* set unique client identifier */ 1662fb0eab09SConrad Meyer char client_ident[sizeof(ip->hw_address.haddr) + 1]; 1663fcab8addSBrooks Davis if (!options[DHO_DHCP_CLIENT_IDENTIFIER]) { 16644441bd73SConrad Meyer int hwlen = (ip->hw_address.hlen < sizeof(client_ident)-1) ? 16654441bd73SConrad Meyer ip->hw_address.hlen : sizeof(client_ident)-1; 16664441bd73SConrad Meyer client_ident[0] = ip->hw_address.htype; 16674441bd73SConrad Meyer memcpy(&client_ident[1], ip->hw_address.haddr, hwlen); 1668fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER] = &option_elements[DHO_DHCP_CLIENT_IDENTIFIER]; 16694441bd73SConrad Meyer options[DHO_DHCP_CLIENT_IDENTIFIER]->value = client_ident; 16704441bd73SConrad Meyer options[DHO_DHCP_CLIENT_IDENTIFIER]->len = hwlen+1; 16714441bd73SConrad Meyer options[DHO_DHCP_CLIENT_IDENTIFIER]->buf_size = hwlen+1; 1672fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER]->timeout = 0xFFFFFFFF; 1673fcab8addSBrooks Davis } 1674fcab8addSBrooks Davis 167547c08596SBrooks Davis /* Set up the option buffer... */ 167647c08596SBrooks Davis ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0, 167747c08596SBrooks Davis options, 0, 0, 0, NULL, 0); 167847c08596SBrooks Davis if (ip->client->packet_length < BOOTP_MIN_LEN) 167947c08596SBrooks Davis ip->client->packet_length = BOOTP_MIN_LEN; 168047c08596SBrooks Davis 168147c08596SBrooks Davis ip->client->packet.op = BOOTREQUEST; 168247c08596SBrooks Davis ip->client->packet.htype = ip->hw_address.htype; 168347c08596SBrooks Davis ip->client->packet.hlen = ip->hw_address.hlen; 168447c08596SBrooks Davis ip->client->packet.hops = 0; 168547c08596SBrooks Davis ip->client->packet.xid = arc4random(); 168647c08596SBrooks Davis ip->client->packet.secs = 0; /* filled in by send_discover. */ 168747c08596SBrooks Davis ip->client->packet.flags = 0; 168847c08596SBrooks Davis 168947c08596SBrooks Davis memset(&(ip->client->packet.ciaddr), 169047c08596SBrooks Davis 0, sizeof(ip->client->packet.ciaddr)); 169147c08596SBrooks Davis memset(&(ip->client->packet.yiaddr), 169247c08596SBrooks Davis 0, sizeof(ip->client->packet.yiaddr)); 169347c08596SBrooks Davis memset(&(ip->client->packet.siaddr), 169447c08596SBrooks Davis 0, sizeof(ip->client->packet.siaddr)); 169547c08596SBrooks Davis memset(&(ip->client->packet.giaddr), 169647c08596SBrooks Davis 0, sizeof(ip->client->packet.giaddr)); 16974441bd73SConrad Meyer memcpy(ip->client->packet.chaddr, 16984441bd73SConrad Meyer ip->hw_address.haddr, ip->hw_address.hlen); 169947c08596SBrooks Davis } 170047c08596SBrooks Davis 170147c08596SBrooks Davis 170247c08596SBrooks Davis void 170347c08596SBrooks Davis make_request(struct interface_info *ip, struct client_lease * lease) 170447c08596SBrooks Davis { 170547c08596SBrooks Davis unsigned char request = DHCPREQUEST; 170647c08596SBrooks Davis struct tree_cache *options[256]; 170747c08596SBrooks Davis struct tree_cache option_elements[256]; 170847c08596SBrooks Davis int i; 170947c08596SBrooks Davis 171047c08596SBrooks Davis memset(options, 0, sizeof(options)); 171147c08596SBrooks Davis memset(&ip->client->packet, 0, sizeof(ip->client->packet)); 171247c08596SBrooks Davis 171347c08596SBrooks Davis /* Set DHCP_MESSAGE_TYPE to DHCPREQUEST */ 171447c08596SBrooks Davis i = DHO_DHCP_MESSAGE_TYPE; 171547c08596SBrooks Davis options[i] = &option_elements[i]; 171647c08596SBrooks Davis options[i]->value = &request; 171747c08596SBrooks Davis options[i]->len = sizeof(request); 171847c08596SBrooks Davis options[i]->buf_size = sizeof(request); 171947c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 172047c08596SBrooks Davis 172147c08596SBrooks Davis /* Request the options we want */ 172247c08596SBrooks Davis i = DHO_DHCP_PARAMETER_REQUEST_LIST; 172347c08596SBrooks Davis options[i] = &option_elements[i]; 172447c08596SBrooks Davis options[i]->value = ip->client->config->requested_options; 172547c08596SBrooks Davis options[i]->len = ip->client->config->requested_option_count; 172647c08596SBrooks Davis options[i]->buf_size = 172747c08596SBrooks Davis ip->client->config->requested_option_count; 172847c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 172947c08596SBrooks Davis 173047c08596SBrooks Davis /* If we are requesting an address that hasn't yet been assigned 173147c08596SBrooks Davis to us, use the DHCP Requested Address option. */ 173247c08596SBrooks Davis if (ip->client->state == S_REQUESTING) { 173347c08596SBrooks Davis /* Send back the server identifier... */ 173447c08596SBrooks Davis i = DHO_DHCP_SERVER_IDENTIFIER; 173547c08596SBrooks Davis options[i] = &option_elements[i]; 173647c08596SBrooks Davis options[i]->value = lease->options[i].data; 173747c08596SBrooks Davis options[i]->len = lease->options[i].len; 173847c08596SBrooks Davis options[i]->buf_size = lease->options[i].len; 173947c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 174047c08596SBrooks Davis } 174147c08596SBrooks Davis if (ip->client->state == S_REQUESTING || 174247c08596SBrooks Davis ip->client->state == S_REBOOTING) { 174347c08596SBrooks Davis ip->client->requested_address = lease->address; 174447c08596SBrooks Davis i = DHO_DHCP_REQUESTED_ADDRESS; 174547c08596SBrooks Davis options[i] = &option_elements[i]; 174647c08596SBrooks Davis options[i]->value = lease->address.iabuf; 174747c08596SBrooks Davis options[i]->len = lease->address.len; 174847c08596SBrooks Davis options[i]->buf_size = lease->address.len; 174947c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 175047c08596SBrooks Davis } else 175147c08596SBrooks Davis ip->client->requested_address.len = 0; 175247c08596SBrooks Davis 175347c08596SBrooks Davis /* Send any options requested in the config file. */ 175447c08596SBrooks Davis for (i = 0; i < 256; i++) 175547c08596SBrooks Davis if (!options[i] && 175647c08596SBrooks Davis ip->client->config->send_options[i].data) { 175747c08596SBrooks Davis options[i] = &option_elements[i]; 175847c08596SBrooks Davis options[i]->value = 175947c08596SBrooks Davis ip->client->config->send_options[i].data; 176047c08596SBrooks Davis options[i]->len = 176147c08596SBrooks Davis ip->client->config->send_options[i].len; 176247c08596SBrooks Davis options[i]->buf_size = 176347c08596SBrooks Davis ip->client->config->send_options[i].len; 176447c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 176547c08596SBrooks Davis } 176647c08596SBrooks Davis 1767fcab8addSBrooks Davis /* send host name if not set via config file. */ 1768fcab8addSBrooks Davis if (!options[DHO_HOST_NAME]) { 17690bbe8306SPawel Jakub Dawidek if (hostname[0] != '\0') { 1770fcab8addSBrooks Davis size_t len; 1771fcab8addSBrooks Davis char* posDot = strchr(hostname, '.'); 1772fcab8addSBrooks Davis if (posDot != NULL) 1773fcab8addSBrooks Davis len = posDot - hostname; 1774fcab8addSBrooks Davis else 1775fcab8addSBrooks Davis len = strlen(hostname); 1776fcab8addSBrooks Davis options[DHO_HOST_NAME] = &option_elements[DHO_HOST_NAME]; 1777fcab8addSBrooks Davis options[DHO_HOST_NAME]->value = hostname; 1778fcab8addSBrooks Davis options[DHO_HOST_NAME]->len = len; 1779fcab8addSBrooks Davis options[DHO_HOST_NAME]->buf_size = len; 1780fcab8addSBrooks Davis options[DHO_HOST_NAME]->timeout = 0xFFFFFFFF; 1781fcab8addSBrooks Davis } 1782fcab8addSBrooks Davis } 1783fcab8addSBrooks Davis 1784fcab8addSBrooks Davis /* set unique client identifier */ 1785*74aed808SConrad Meyer char client_ident[sizeof(ip->hw_address.haddr) + 1]; 1786fcab8addSBrooks Davis if (!options[DHO_DHCP_CLIENT_IDENTIFIER]) { 1787fcab8addSBrooks Davis int hwlen = (ip->hw_address.hlen < sizeof(client_ident)-1) ? 1788fcab8addSBrooks Davis ip->hw_address.hlen : sizeof(client_ident)-1; 1789fcab8addSBrooks Davis client_ident[0] = ip->hw_address.htype; 1790fcab8addSBrooks Davis memcpy(&client_ident[1], ip->hw_address.haddr, hwlen); 1791fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER] = &option_elements[DHO_DHCP_CLIENT_IDENTIFIER]; 1792fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER]->value = client_ident; 1793fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER]->len = hwlen+1; 1794fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER]->buf_size = hwlen+1; 1795fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER]->timeout = 0xFFFFFFFF; 1796fcab8addSBrooks Davis } 1797fcab8addSBrooks Davis 179847c08596SBrooks Davis /* Set up the option buffer... */ 179947c08596SBrooks Davis ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0, 180047c08596SBrooks Davis options, 0, 0, 0, NULL, 0); 180147c08596SBrooks Davis if (ip->client->packet_length < BOOTP_MIN_LEN) 180247c08596SBrooks Davis ip->client->packet_length = BOOTP_MIN_LEN; 180347c08596SBrooks Davis 180447c08596SBrooks Davis ip->client->packet.op = BOOTREQUEST; 180547c08596SBrooks Davis ip->client->packet.htype = ip->hw_address.htype; 180647c08596SBrooks Davis ip->client->packet.hlen = ip->hw_address.hlen; 180747c08596SBrooks Davis ip->client->packet.hops = 0; 180847c08596SBrooks Davis ip->client->packet.xid = ip->client->xid; 180947c08596SBrooks Davis ip->client->packet.secs = 0; /* Filled in by send_request. */ 181047c08596SBrooks Davis 181147c08596SBrooks Davis /* If we own the address we're requesting, put it in ciaddr; 181247c08596SBrooks Davis otherwise set ciaddr to zero. */ 181347c08596SBrooks Davis if (ip->client->state == S_BOUND || 181447c08596SBrooks Davis ip->client->state == S_RENEWING || 181547c08596SBrooks Davis ip->client->state == S_REBINDING) { 181647c08596SBrooks Davis memcpy(&ip->client->packet.ciaddr, 181747c08596SBrooks Davis lease->address.iabuf, lease->address.len); 181847c08596SBrooks Davis ip->client->packet.flags = 0; 181947c08596SBrooks Davis } else { 182047c08596SBrooks Davis memset(&ip->client->packet.ciaddr, 0, 182147c08596SBrooks Davis sizeof(ip->client->packet.ciaddr)); 182247c08596SBrooks Davis ip->client->packet.flags = 0; 182347c08596SBrooks Davis } 182447c08596SBrooks Davis 182547c08596SBrooks Davis memset(&ip->client->packet.yiaddr, 0, 182647c08596SBrooks Davis sizeof(ip->client->packet.yiaddr)); 182747c08596SBrooks Davis memset(&ip->client->packet.siaddr, 0, 182847c08596SBrooks Davis sizeof(ip->client->packet.siaddr)); 182947c08596SBrooks Davis memset(&ip->client->packet.giaddr, 0, 183047c08596SBrooks Davis sizeof(ip->client->packet.giaddr)); 183147c08596SBrooks Davis memcpy(ip->client->packet.chaddr, 183247c08596SBrooks Davis ip->hw_address.haddr, ip->hw_address.hlen); 183347c08596SBrooks Davis } 183447c08596SBrooks Davis 183547c08596SBrooks Davis void 183647c08596SBrooks Davis make_decline(struct interface_info *ip, struct client_lease *lease) 183747c08596SBrooks Davis { 183847c08596SBrooks Davis struct tree_cache *options[256], message_type_tree; 183947c08596SBrooks Davis struct tree_cache requested_address_tree; 184047c08596SBrooks Davis struct tree_cache server_id_tree, client_id_tree; 184147c08596SBrooks Davis unsigned char decline = DHCPDECLINE; 184247c08596SBrooks Davis int i; 184347c08596SBrooks Davis 184447c08596SBrooks Davis memset(options, 0, sizeof(options)); 184547c08596SBrooks Davis memset(&ip->client->packet, 0, sizeof(ip->client->packet)); 184647c08596SBrooks Davis 184747c08596SBrooks Davis /* Set DHCP_MESSAGE_TYPE to DHCPDECLINE */ 184847c08596SBrooks Davis i = DHO_DHCP_MESSAGE_TYPE; 184947c08596SBrooks Davis options[i] = &message_type_tree; 185047c08596SBrooks Davis options[i]->value = &decline; 185147c08596SBrooks Davis options[i]->len = sizeof(decline); 185247c08596SBrooks Davis options[i]->buf_size = sizeof(decline); 185347c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 185447c08596SBrooks Davis 185547c08596SBrooks Davis /* Send back the server identifier... */ 185647c08596SBrooks Davis i = DHO_DHCP_SERVER_IDENTIFIER; 185747c08596SBrooks Davis options[i] = &server_id_tree; 185847c08596SBrooks Davis options[i]->value = lease->options[i].data; 185947c08596SBrooks Davis options[i]->len = lease->options[i].len; 186047c08596SBrooks Davis options[i]->buf_size = lease->options[i].len; 186147c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 186247c08596SBrooks Davis 186347c08596SBrooks Davis /* Send back the address we're declining. */ 186447c08596SBrooks Davis i = DHO_DHCP_REQUESTED_ADDRESS; 186547c08596SBrooks Davis options[i] = &requested_address_tree; 186647c08596SBrooks Davis options[i]->value = lease->address.iabuf; 186747c08596SBrooks Davis options[i]->len = lease->address.len; 186847c08596SBrooks Davis options[i]->buf_size = lease->address.len; 186947c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 187047c08596SBrooks Davis 187147c08596SBrooks Davis /* Send the uid if the user supplied one. */ 187247c08596SBrooks Davis i = DHO_DHCP_CLIENT_IDENTIFIER; 187347c08596SBrooks Davis if (ip->client->config->send_options[i].len) { 187447c08596SBrooks Davis options[i] = &client_id_tree; 187547c08596SBrooks Davis options[i]->value = ip->client->config->send_options[i].data; 187647c08596SBrooks Davis options[i]->len = ip->client->config->send_options[i].len; 187747c08596SBrooks Davis options[i]->buf_size = ip->client->config->send_options[i].len; 187847c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 187947c08596SBrooks Davis } 188047c08596SBrooks Davis 188147c08596SBrooks Davis 188247c08596SBrooks Davis /* Set up the option buffer... */ 188347c08596SBrooks Davis ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0, 188447c08596SBrooks Davis options, 0, 0, 0, NULL, 0); 188547c08596SBrooks Davis if (ip->client->packet_length < BOOTP_MIN_LEN) 188647c08596SBrooks Davis ip->client->packet_length = BOOTP_MIN_LEN; 188747c08596SBrooks Davis 188847c08596SBrooks Davis ip->client->packet.op = BOOTREQUEST; 188947c08596SBrooks Davis ip->client->packet.htype = ip->hw_address.htype; 189047c08596SBrooks Davis ip->client->packet.hlen = ip->hw_address.hlen; 189147c08596SBrooks Davis ip->client->packet.hops = 0; 189247c08596SBrooks Davis ip->client->packet.xid = ip->client->xid; 189347c08596SBrooks Davis ip->client->packet.secs = 0; /* Filled in by send_request. */ 189447c08596SBrooks Davis ip->client->packet.flags = 0; 189547c08596SBrooks Davis 189647c08596SBrooks Davis /* ciaddr must always be zero. */ 189747c08596SBrooks Davis memset(&ip->client->packet.ciaddr, 0, 189847c08596SBrooks Davis sizeof(ip->client->packet.ciaddr)); 189947c08596SBrooks Davis memset(&ip->client->packet.yiaddr, 0, 190047c08596SBrooks Davis sizeof(ip->client->packet.yiaddr)); 190147c08596SBrooks Davis memset(&ip->client->packet.siaddr, 0, 190247c08596SBrooks Davis sizeof(ip->client->packet.siaddr)); 190347c08596SBrooks Davis memset(&ip->client->packet.giaddr, 0, 190447c08596SBrooks Davis sizeof(ip->client->packet.giaddr)); 190547c08596SBrooks Davis memcpy(ip->client->packet.chaddr, 190647c08596SBrooks Davis ip->hw_address.haddr, ip->hw_address.hlen); 190747c08596SBrooks Davis } 190847c08596SBrooks Davis 190947c08596SBrooks Davis void 191047c08596SBrooks Davis free_client_lease(struct client_lease *lease) 191147c08596SBrooks Davis { 191247c08596SBrooks Davis int i; 191347c08596SBrooks Davis 191447c08596SBrooks Davis if (lease->server_name) 191547c08596SBrooks Davis free(lease->server_name); 191647c08596SBrooks Davis if (lease->filename) 191747c08596SBrooks Davis free(lease->filename); 191847c08596SBrooks Davis for (i = 0; i < 256; i++) { 191947c08596SBrooks Davis if (lease->options[i].len) 192047c08596SBrooks Davis free(lease->options[i].data); 192147c08596SBrooks Davis } 192247c08596SBrooks Davis free(lease); 192347c08596SBrooks Davis } 192447c08596SBrooks Davis 192571c6c44dSEitan Adler static FILE *leaseFile; 192647c08596SBrooks Davis 192747c08596SBrooks Davis void 192847c08596SBrooks Davis rewrite_client_leases(void) 192947c08596SBrooks Davis { 193047c08596SBrooks Davis struct client_lease *lp; 19317008be5bSPawel Jakub Dawidek cap_rights_t rights; 193247c08596SBrooks Davis 193347c08596SBrooks Davis if (!leaseFile) { 193447c08596SBrooks Davis leaseFile = fopen(path_dhclient_db, "w"); 193547c08596SBrooks Davis if (!leaseFile) 193647c08596SBrooks Davis error("can't create %s: %m", path_dhclient_db); 193719342eeeSPatrick Kelsey cap_rights_init(&rights, CAP_FCNTL, CAP_FSTAT, CAP_FSYNC, 193819342eeeSPatrick Kelsey CAP_FTRUNCATE, CAP_SEEK, CAP_WRITE); 1939377421dfSMariusz Zaborski if (caph_rights_limit(fileno(leaseFile), &rights) < 0) { 1940fe5c7163SPawel Jakub Dawidek error("can't limit lease descriptor: %m"); 1941fe5c7163SPawel Jakub Dawidek } 1942377421dfSMariusz Zaborski if (caph_fcntls_limit(fileno(leaseFile), CAP_FCNTL_GETFL) < 0) { 194319342eeeSPatrick Kelsey error("can't limit lease descriptor fcntls: %m"); 194419342eeeSPatrick Kelsey } 194547c08596SBrooks Davis } else { 194647c08596SBrooks Davis fflush(leaseFile); 194747c08596SBrooks Davis rewind(leaseFile); 194847c08596SBrooks Davis } 194947c08596SBrooks Davis 195047c08596SBrooks Davis for (lp = ifi->client->leases; lp; lp = lp->next) 195147c08596SBrooks Davis write_client_lease(ifi, lp, 1); 195247c08596SBrooks Davis if (ifi->client->active) 195347c08596SBrooks Davis write_client_lease(ifi, ifi->client->active, 1); 195447c08596SBrooks Davis 195547c08596SBrooks Davis fflush(leaseFile); 195647c08596SBrooks Davis ftruncate(fileno(leaseFile), ftello(leaseFile)); 195747c08596SBrooks Davis fsync(fileno(leaseFile)); 195847c08596SBrooks Davis } 195947c08596SBrooks Davis 196047c08596SBrooks Davis void 196147c08596SBrooks Davis write_client_lease(struct interface_info *ip, struct client_lease *lease, 196247c08596SBrooks Davis int rewrite) 196347c08596SBrooks Davis { 196447c08596SBrooks Davis static int leases_written; 196547c08596SBrooks Davis struct tm *t; 196647c08596SBrooks Davis int i; 196747c08596SBrooks Davis 196847c08596SBrooks Davis if (!rewrite) { 196947c08596SBrooks Davis if (leases_written++ > 20) { 197047c08596SBrooks Davis rewrite_client_leases(); 197147c08596SBrooks Davis leases_written = 0; 197247c08596SBrooks Davis } 197347c08596SBrooks Davis } 197447c08596SBrooks Davis 197547c08596SBrooks Davis /* If the lease came from the config file, we don't need to stash 197647c08596SBrooks Davis a copy in the lease database. */ 197747c08596SBrooks Davis if (lease->is_static) 197847c08596SBrooks Davis return; 197947c08596SBrooks Davis 198047c08596SBrooks Davis if (!leaseFile) { /* XXX */ 198147c08596SBrooks Davis leaseFile = fopen(path_dhclient_db, "w"); 198247c08596SBrooks Davis if (!leaseFile) 198347c08596SBrooks Davis error("can't create %s: %m", path_dhclient_db); 198447c08596SBrooks Davis } 198547c08596SBrooks Davis 198647c08596SBrooks Davis fprintf(leaseFile, "lease {\n"); 198747c08596SBrooks Davis if (lease->is_bootp) 198847c08596SBrooks Davis fprintf(leaseFile, " bootp;\n"); 198947c08596SBrooks Davis fprintf(leaseFile, " interface \"%s\";\n", ip->name); 199047c08596SBrooks Davis fprintf(leaseFile, " fixed-address %s;\n", piaddr(lease->address)); 1991d32438c3SBruce M Simpson if (lease->nextserver.len == sizeof(inaddr_any) && 1992d32438c3SBruce M Simpson 0 != memcmp(lease->nextserver.iabuf, &inaddr_any, 1993d32438c3SBruce M Simpson sizeof(inaddr_any))) 1994d32438c3SBruce M Simpson fprintf(leaseFile, " next-server %s;\n", 1995d32438c3SBruce M Simpson piaddr(lease->nextserver)); 199647c08596SBrooks Davis if (lease->filename) 199747c08596SBrooks Davis fprintf(leaseFile, " filename \"%s\";\n", lease->filename); 199847c08596SBrooks Davis if (lease->server_name) 199947c08596SBrooks Davis fprintf(leaseFile, " server-name \"%s\";\n", 200047c08596SBrooks Davis lease->server_name); 200147c08596SBrooks Davis if (lease->medium) 200247c08596SBrooks Davis fprintf(leaseFile, " medium \"%s\";\n", lease->medium->string); 200347c08596SBrooks Davis for (i = 0; i < 256; i++) 200447c08596SBrooks Davis if (lease->options[i].len) 200547c08596SBrooks Davis fprintf(leaseFile, " option %s %s;\n", 200647c08596SBrooks Davis dhcp_options[i].name, 200747c08596SBrooks Davis pretty_print_option(i, lease->options[i].data, 200847c08596SBrooks Davis lease->options[i].len, 1, 1)); 200947c08596SBrooks Davis 201047c08596SBrooks Davis t = gmtime(&lease->renewal); 201147c08596SBrooks Davis fprintf(leaseFile, " renew %d %d/%d/%d %02d:%02d:%02d;\n", 201247c08596SBrooks Davis t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday, 201347c08596SBrooks Davis t->tm_hour, t->tm_min, t->tm_sec); 201447c08596SBrooks Davis t = gmtime(&lease->rebind); 201547c08596SBrooks Davis fprintf(leaseFile, " rebind %d %d/%d/%d %02d:%02d:%02d;\n", 201647c08596SBrooks Davis t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday, 201747c08596SBrooks Davis t->tm_hour, t->tm_min, t->tm_sec); 201847c08596SBrooks Davis t = gmtime(&lease->expiry); 201947c08596SBrooks Davis fprintf(leaseFile, " expire %d %d/%d/%d %02d:%02d:%02d;\n", 202047c08596SBrooks Davis t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday, 202147c08596SBrooks Davis t->tm_hour, t->tm_min, t->tm_sec); 202247c08596SBrooks Davis fprintf(leaseFile, "}\n"); 202347c08596SBrooks Davis fflush(leaseFile); 202447c08596SBrooks Davis } 202547c08596SBrooks Davis 202647c08596SBrooks Davis void 202779a1d195SAlan Somers script_init(const char *reason, struct string_list *medium) 202847c08596SBrooks Davis { 202947c08596SBrooks Davis size_t len, mediumlen = 0; 203047c08596SBrooks Davis struct imsg_hdr hdr; 203147c08596SBrooks Davis struct buf *buf; 203247c08596SBrooks Davis int errs; 203347c08596SBrooks Davis 203447c08596SBrooks Davis if (medium != NULL && medium->string != NULL) 203547c08596SBrooks Davis mediumlen = strlen(medium->string); 203647c08596SBrooks Davis 203747c08596SBrooks Davis hdr.code = IMSG_SCRIPT_INIT; 203847c08596SBrooks Davis hdr.len = sizeof(struct imsg_hdr) + 203947c08596SBrooks Davis sizeof(size_t) + mediumlen + 204047c08596SBrooks Davis sizeof(size_t) + strlen(reason); 204147c08596SBrooks Davis 204247c08596SBrooks Davis if ((buf = buf_open(hdr.len)) == NULL) 204347c08596SBrooks Davis error("buf_open: %m"); 204447c08596SBrooks Davis 204547c08596SBrooks Davis errs = 0; 204647c08596SBrooks Davis errs += buf_add(buf, &hdr, sizeof(hdr)); 204747c08596SBrooks Davis errs += buf_add(buf, &mediumlen, sizeof(mediumlen)); 204847c08596SBrooks Davis if (mediumlen > 0) 204947c08596SBrooks Davis errs += buf_add(buf, medium->string, mediumlen); 205047c08596SBrooks Davis len = strlen(reason); 205147c08596SBrooks Davis errs += buf_add(buf, &len, sizeof(len)); 205247c08596SBrooks Davis errs += buf_add(buf, reason, len); 205347c08596SBrooks Davis 205447c08596SBrooks Davis if (errs) 205547c08596SBrooks Davis error("buf_add: %m"); 205647c08596SBrooks Davis 205747c08596SBrooks Davis if (buf_close(privfd, buf) == -1) 205847c08596SBrooks Davis error("buf_close: %m"); 205947c08596SBrooks Davis } 206047c08596SBrooks Davis 206147c08596SBrooks Davis void 206279a1d195SAlan Somers priv_script_init(const char *reason, char *medium) 206347c08596SBrooks Davis { 206447c08596SBrooks Davis struct interface_info *ip = ifi; 206547c08596SBrooks Davis 206647c08596SBrooks Davis if (ip) { 206747c08596SBrooks Davis ip->client->scriptEnvsize = 100; 206847c08596SBrooks Davis if (ip->client->scriptEnv == NULL) 206947c08596SBrooks Davis ip->client->scriptEnv = 207047c08596SBrooks Davis malloc(ip->client->scriptEnvsize * sizeof(char *)); 207147c08596SBrooks Davis if (ip->client->scriptEnv == NULL) 207247c08596SBrooks Davis error("script_init: no memory for environment"); 207347c08596SBrooks Davis 207447c08596SBrooks Davis ip->client->scriptEnv[0] = strdup(CLIENT_PATH); 207547c08596SBrooks Davis if (ip->client->scriptEnv[0] == NULL) 207647c08596SBrooks Davis error("script_init: no memory for environment"); 207747c08596SBrooks Davis 207847c08596SBrooks Davis ip->client->scriptEnv[1] = NULL; 207947c08596SBrooks Davis 208047c08596SBrooks Davis script_set_env(ip->client, "", "interface", ip->name); 208147c08596SBrooks Davis 208247c08596SBrooks Davis if (medium) 208347c08596SBrooks Davis script_set_env(ip->client, "", "medium", medium); 208447c08596SBrooks Davis 208547c08596SBrooks Davis script_set_env(ip->client, "", "reason", reason); 208647c08596SBrooks Davis } 208747c08596SBrooks Davis } 208847c08596SBrooks Davis 208947c08596SBrooks Davis void 209079a1d195SAlan Somers priv_script_write_params(const char *prefix, struct client_lease *lease) 209147c08596SBrooks Davis { 209247c08596SBrooks Davis struct interface_info *ip = ifi; 209340767e22SBrooks Davis u_int8_t dbuf[1500], *dp = NULL; 2094afe6f835SAlan Somers int i; 2095afe6f835SAlan Somers size_t len; 209647c08596SBrooks Davis char tbuf[128]; 209747c08596SBrooks Davis 209847c08596SBrooks Davis script_set_env(ip->client, prefix, "ip_address", 209947c08596SBrooks Davis piaddr(lease->address)); 210047c08596SBrooks Davis 210140767e22SBrooks Davis if (ip->client->config->default_actions[DHO_SUBNET_MASK] == 210240767e22SBrooks Davis ACTION_SUPERSEDE) { 210340767e22SBrooks Davis dp = ip->client->config->defaults[DHO_SUBNET_MASK].data; 210440767e22SBrooks Davis len = ip->client->config->defaults[DHO_SUBNET_MASK].len; 210540767e22SBrooks Davis } else { 210640767e22SBrooks Davis dp = lease->options[DHO_SUBNET_MASK].data; 210740767e22SBrooks Davis len = lease->options[DHO_SUBNET_MASK].len; 210840767e22SBrooks Davis } 210940767e22SBrooks Davis if (len && (len < sizeof(lease->address.iabuf))) { 211047c08596SBrooks Davis struct iaddr netmask, subnet, broadcast; 211147c08596SBrooks Davis 211240767e22SBrooks Davis memcpy(netmask.iabuf, dp, len); 211340767e22SBrooks Davis netmask.len = len; 211447c08596SBrooks Davis subnet = subnet_number(lease->address, netmask); 211547c08596SBrooks Davis if (subnet.len) { 211647c08596SBrooks Davis script_set_env(ip->client, prefix, "network_number", 211747c08596SBrooks Davis piaddr(subnet)); 211847c08596SBrooks Davis if (!lease->options[DHO_BROADCAST_ADDRESS].len) { 211947c08596SBrooks Davis broadcast = broadcast_addr(subnet, netmask); 212047c08596SBrooks Davis if (broadcast.len) 212147c08596SBrooks Davis script_set_env(ip->client, prefix, 212247c08596SBrooks Davis "broadcast_address", 212347c08596SBrooks Davis piaddr(broadcast)); 212447c08596SBrooks Davis } 212547c08596SBrooks Davis } 212647c08596SBrooks Davis } 212747c08596SBrooks Davis 212847c08596SBrooks Davis if (lease->filename) 212947c08596SBrooks Davis script_set_env(ip->client, prefix, "filename", lease->filename); 213047c08596SBrooks Davis if (lease->server_name) 213147c08596SBrooks Davis script_set_env(ip->client, prefix, "server_name", 213247c08596SBrooks Davis lease->server_name); 213347c08596SBrooks Davis for (i = 0; i < 256; i++) { 213440767e22SBrooks Davis len = 0; 213547c08596SBrooks Davis 213647c08596SBrooks Davis if (ip->client->config->defaults[i].len) { 213747c08596SBrooks Davis if (lease->options[i].len) { 213847c08596SBrooks Davis switch ( 213947c08596SBrooks Davis ip->client->config->default_actions[i]) { 214047c08596SBrooks Davis case ACTION_DEFAULT: 214147c08596SBrooks Davis dp = lease->options[i].data; 214247c08596SBrooks Davis len = lease->options[i].len; 214347c08596SBrooks Davis break; 214447c08596SBrooks Davis case ACTION_SUPERSEDE: 214547c08596SBrooks Davis supersede: 214647c08596SBrooks Davis dp = ip->client-> 214747c08596SBrooks Davis config->defaults[i].data; 214847c08596SBrooks Davis len = ip->client-> 214947c08596SBrooks Davis config->defaults[i].len; 215047c08596SBrooks Davis break; 215147c08596SBrooks Davis case ACTION_PREPEND: 215247c08596SBrooks Davis len = ip->client-> 215347c08596SBrooks Davis config->defaults[i].len + 215447c08596SBrooks Davis lease->options[i].len; 2155043bcc8dSBrian Somers if (len >= sizeof(dbuf)) { 215647c08596SBrooks Davis warning("no space to %s %s", 215747c08596SBrooks Davis "prepend option", 215847c08596SBrooks Davis dhcp_options[i].name); 215947c08596SBrooks Davis goto supersede; 216047c08596SBrooks Davis } 216147c08596SBrooks Davis dp = dbuf; 216247c08596SBrooks Davis memcpy(dp, 216347c08596SBrooks Davis ip->client-> 216447c08596SBrooks Davis config->defaults[i].data, 216547c08596SBrooks Davis ip->client-> 216647c08596SBrooks Davis config->defaults[i].len); 216747c08596SBrooks Davis memcpy(dp + ip->client-> 216847c08596SBrooks Davis config->defaults[i].len, 216947c08596SBrooks Davis lease->options[i].data, 217047c08596SBrooks Davis lease->options[i].len); 217147c08596SBrooks Davis dp[len] = '\0'; 217247c08596SBrooks Davis break; 217347c08596SBrooks Davis case ACTION_APPEND: 2174043bcc8dSBrian Somers /* 2175043bcc8dSBrian Somers * When we append, we assume that we're 2176043bcc8dSBrian Somers * appending to text. Some MS servers 2177043bcc8dSBrian Somers * include a NUL byte at the end of 2178043bcc8dSBrian Somers * the search string provided. 2179043bcc8dSBrian Somers */ 218047c08596SBrooks Davis len = ip->client-> 218147c08596SBrooks Davis config->defaults[i].len + 218247c08596SBrooks Davis lease->options[i].len; 2183043bcc8dSBrian Somers if (len >= sizeof(dbuf)) { 218447c08596SBrooks Davis warning("no space to %s %s", 218547c08596SBrooks Davis "append option", 218647c08596SBrooks Davis dhcp_options[i].name); 218747c08596SBrooks Davis goto supersede; 218847c08596SBrooks Davis } 2189043bcc8dSBrian Somers memcpy(dbuf, 219047c08596SBrooks Davis lease->options[i].data, 219147c08596SBrooks Davis lease->options[i].len); 2192043bcc8dSBrian Somers for (dp = dbuf + lease->options[i].len; 2193043bcc8dSBrian Somers dp > dbuf; dp--, len--) 2194043bcc8dSBrian Somers if (dp[-1] != '\0') 2195043bcc8dSBrian Somers break; 2196043bcc8dSBrian Somers memcpy(dp, 219747c08596SBrooks Davis ip->client-> 219847c08596SBrooks Davis config->defaults[i].data, 219947c08596SBrooks Davis ip->client-> 220047c08596SBrooks Davis config->defaults[i].len); 2201043bcc8dSBrian Somers dp = dbuf; 220247c08596SBrooks Davis dp[len] = '\0'; 220347c08596SBrooks Davis } 220447c08596SBrooks Davis } else { 220547c08596SBrooks Davis dp = ip->client-> 220647c08596SBrooks Davis config->defaults[i].data; 220747c08596SBrooks Davis len = ip->client-> 220847c08596SBrooks Davis config->defaults[i].len; 220947c08596SBrooks Davis } 221047c08596SBrooks Davis } else if (lease->options[i].len) { 221147c08596SBrooks Davis len = lease->options[i].len; 221247c08596SBrooks Davis dp = lease->options[i].data; 221347c08596SBrooks Davis } else { 221447c08596SBrooks Davis len = 0; 221547c08596SBrooks Davis } 221647c08596SBrooks Davis if (len) { 221747c08596SBrooks Davis char name[256]; 221847c08596SBrooks Davis 221947c08596SBrooks Davis if (dhcp_option_ev_name(name, sizeof(name), 222047c08596SBrooks Davis &dhcp_options[i])) 222147c08596SBrooks Davis script_set_env(ip->client, prefix, name, 222247c08596SBrooks Davis pretty_print_option(i, dp, len, 0, 0)); 222347c08596SBrooks Davis } 222447c08596SBrooks Davis } 222547c08596SBrooks Davis snprintf(tbuf, sizeof(tbuf), "%d", (int)lease->expiry); 222647c08596SBrooks Davis script_set_env(ip->client, prefix, "expiry", tbuf); 222747c08596SBrooks Davis } 222847c08596SBrooks Davis 222947c08596SBrooks Davis void 223079a1d195SAlan Somers script_write_params(const char *prefix, struct client_lease *lease) 223147c08596SBrooks Davis { 223247c08596SBrooks Davis size_t fn_len = 0, sn_len = 0, pr_len = 0; 223347c08596SBrooks Davis struct imsg_hdr hdr; 223447c08596SBrooks Davis struct buf *buf; 223547c08596SBrooks Davis int errs, i; 223647c08596SBrooks Davis 223747c08596SBrooks Davis if (lease->filename != NULL) 223847c08596SBrooks Davis fn_len = strlen(lease->filename); 223947c08596SBrooks Davis if (lease->server_name != NULL) 224047c08596SBrooks Davis sn_len = strlen(lease->server_name); 224147c08596SBrooks Davis if (prefix != NULL) 224247c08596SBrooks Davis pr_len = strlen(prefix); 224347c08596SBrooks Davis 224447c08596SBrooks Davis hdr.code = IMSG_SCRIPT_WRITE_PARAMS; 2245afe6f835SAlan Somers hdr.len = sizeof(hdr) + sizeof(*lease) + 2246afe6f835SAlan Somers sizeof(fn_len) + fn_len + sizeof(sn_len) + sn_len + 2247afe6f835SAlan Somers sizeof(pr_len) + pr_len; 224847c08596SBrooks Davis 2249afe6f835SAlan Somers for (i = 0; i < 256; i++) { 2250afe6f835SAlan Somers hdr.len += sizeof(lease->options[i].len); 2251afe6f835SAlan Somers hdr.len += lease->options[i].len; 2252afe6f835SAlan Somers } 225347c08596SBrooks Davis 225447c08596SBrooks Davis scripttime = time(NULL); 225547c08596SBrooks Davis 225647c08596SBrooks Davis if ((buf = buf_open(hdr.len)) == NULL) 225747c08596SBrooks Davis error("buf_open: %m"); 225847c08596SBrooks Davis 225947c08596SBrooks Davis errs = 0; 226047c08596SBrooks Davis errs += buf_add(buf, &hdr, sizeof(hdr)); 2261afe6f835SAlan Somers errs += buf_add(buf, lease, sizeof(*lease)); 226247c08596SBrooks Davis errs += buf_add(buf, &fn_len, sizeof(fn_len)); 226347c08596SBrooks Davis errs += buf_add(buf, lease->filename, fn_len); 226447c08596SBrooks Davis errs += buf_add(buf, &sn_len, sizeof(sn_len)); 226547c08596SBrooks Davis errs += buf_add(buf, lease->server_name, sn_len); 226647c08596SBrooks Davis errs += buf_add(buf, &pr_len, sizeof(pr_len)); 226747c08596SBrooks Davis errs += buf_add(buf, prefix, pr_len); 226847c08596SBrooks Davis 226947c08596SBrooks Davis for (i = 0; i < 256; i++) { 227047c08596SBrooks Davis errs += buf_add(buf, &lease->options[i].len, 227147c08596SBrooks Davis sizeof(lease->options[i].len)); 227247c08596SBrooks Davis errs += buf_add(buf, lease->options[i].data, 227347c08596SBrooks Davis lease->options[i].len); 227447c08596SBrooks Davis } 227547c08596SBrooks Davis 227647c08596SBrooks Davis if (errs) 227747c08596SBrooks Davis error("buf_add: %m"); 227847c08596SBrooks Davis 227947c08596SBrooks Davis if (buf_close(privfd, buf) == -1) 228047c08596SBrooks Davis error("buf_close: %m"); 228147c08596SBrooks Davis } 228247c08596SBrooks Davis 228347c08596SBrooks Davis int 228447c08596SBrooks Davis script_go(void) 228547c08596SBrooks Davis { 228647c08596SBrooks Davis struct imsg_hdr hdr; 228747c08596SBrooks Davis struct buf *buf; 228847c08596SBrooks Davis int ret; 228947c08596SBrooks Davis 229047c08596SBrooks Davis hdr.code = IMSG_SCRIPT_GO; 229147c08596SBrooks Davis hdr.len = sizeof(struct imsg_hdr); 229247c08596SBrooks Davis 229347c08596SBrooks Davis if ((buf = buf_open(hdr.len)) == NULL) 229447c08596SBrooks Davis error("buf_open: %m"); 229547c08596SBrooks Davis 229647c08596SBrooks Davis if (buf_add(buf, &hdr, sizeof(hdr))) 229747c08596SBrooks Davis error("buf_add: %m"); 229847c08596SBrooks Davis 229947c08596SBrooks Davis if (buf_close(privfd, buf) == -1) 230047c08596SBrooks Davis error("buf_close: %m"); 230147c08596SBrooks Davis 230247c08596SBrooks Davis bzero(&hdr, sizeof(hdr)); 230347c08596SBrooks Davis buf_read(privfd, &hdr, sizeof(hdr)); 230447c08596SBrooks Davis if (hdr.code != IMSG_SCRIPT_GO_RET) 230547c08596SBrooks Davis error("unexpected msg type %u", hdr.code); 230647c08596SBrooks Davis if (hdr.len != sizeof(hdr) + sizeof(int)) 230747c08596SBrooks Davis error("received corrupted message"); 230847c08596SBrooks Davis buf_read(privfd, &ret, sizeof(ret)); 230947c08596SBrooks Davis 23106964abefSBrian Somers scripttime = time(NULL); 23116964abefSBrian Somers 231247c08596SBrooks Davis return (ret); 231347c08596SBrooks Davis } 231447c08596SBrooks Davis 231547c08596SBrooks Davis int 231647c08596SBrooks Davis priv_script_go(void) 231747c08596SBrooks Davis { 231847c08596SBrooks Davis char *scriptName, *argv[2], **envp, *epp[3], reason[] = "REASON=NBI"; 231947c08596SBrooks Davis static char client_path[] = CLIENT_PATH; 232047c08596SBrooks Davis struct interface_info *ip = ifi; 232147c08596SBrooks Davis int pid, wpid, wstatus; 232247c08596SBrooks Davis 232347c08596SBrooks Davis scripttime = time(NULL); 232447c08596SBrooks Davis 232547c08596SBrooks Davis if (ip) { 232647c08596SBrooks Davis scriptName = ip->client->config->script_name; 232747c08596SBrooks Davis envp = ip->client->scriptEnv; 232847c08596SBrooks Davis } else { 232947c08596SBrooks Davis scriptName = top_level_config.script_name; 233047c08596SBrooks Davis epp[0] = reason; 233147c08596SBrooks Davis epp[1] = client_path; 233247c08596SBrooks Davis epp[2] = NULL; 233347c08596SBrooks Davis envp = epp; 233447c08596SBrooks Davis } 233547c08596SBrooks Davis 233647c08596SBrooks Davis argv[0] = scriptName; 233747c08596SBrooks Davis argv[1] = NULL; 233847c08596SBrooks Davis 233947c08596SBrooks Davis pid = fork(); 234047c08596SBrooks Davis if (pid < 0) { 234147c08596SBrooks Davis error("fork: %m"); 234247c08596SBrooks Davis wstatus = 0; 234347c08596SBrooks Davis } else if (pid) { 234447c08596SBrooks Davis do { 234547c08596SBrooks Davis wpid = wait(&wstatus); 234647c08596SBrooks Davis } while (wpid != pid && wpid > 0); 234747c08596SBrooks Davis if (wpid < 0) { 234847c08596SBrooks Davis error("wait: %m"); 234947c08596SBrooks Davis wstatus = 0; 235047c08596SBrooks Davis } 235147c08596SBrooks Davis } else { 235247c08596SBrooks Davis execve(scriptName, argv, envp); 235347c08596SBrooks Davis error("execve (%s, ...): %m", scriptName); 235447c08596SBrooks Davis } 235547c08596SBrooks Davis 235647c08596SBrooks Davis if (ip) 235747c08596SBrooks Davis script_flush_env(ip->client); 235847c08596SBrooks Davis 23593b08e0fcSJilles Tjoelker return (WIFEXITED(wstatus) ? 23603b08e0fcSJilles Tjoelker WEXITSTATUS(wstatus) : 128 + WTERMSIG(wstatus)); 236147c08596SBrooks Davis } 236247c08596SBrooks Davis 236347c08596SBrooks Davis void 236447c08596SBrooks Davis script_set_env(struct client_state *client, const char *prefix, 236547c08596SBrooks Davis const char *name, const char *value) 236647c08596SBrooks Davis { 2367afe6f835SAlan Somers int i, namelen; 2368afe6f835SAlan Somers size_t j; 236947c08596SBrooks Davis 2370dd09ce39SSepherosa Ziehau /* No `` or $() command substitution allowed in environment values! */ 2371dd09ce39SSepherosa Ziehau for (j=0; j < strlen(value); j++) 2372dd09ce39SSepherosa Ziehau switch (value[j]) { 2373dd09ce39SSepherosa Ziehau case '`': 2374dd09ce39SSepherosa Ziehau case '$': 2375dd09ce39SSepherosa Ziehau warning("illegal character (%c) in value '%s'", 2376dd09ce39SSepherosa Ziehau value[j], value); 2377dd09ce39SSepherosa Ziehau /* Ignore this option */ 2378dd09ce39SSepherosa Ziehau return; 2379dd09ce39SSepherosa Ziehau } 2380dd09ce39SSepherosa Ziehau 238147c08596SBrooks Davis namelen = strlen(name); 238247c08596SBrooks Davis 238347c08596SBrooks Davis for (i = 0; client->scriptEnv[i]; i++) 238447c08596SBrooks Davis if (strncmp(client->scriptEnv[i], name, namelen) == 0 && 238547c08596SBrooks Davis client->scriptEnv[i][namelen] == '=') 238647c08596SBrooks Davis break; 238747c08596SBrooks Davis 238847c08596SBrooks Davis if (client->scriptEnv[i]) 238947c08596SBrooks Davis /* Reuse the slot. */ 239047c08596SBrooks Davis free(client->scriptEnv[i]); 239147c08596SBrooks Davis else { 239247c08596SBrooks Davis /* New variable. Expand if necessary. */ 239347c08596SBrooks Davis if (i >= client->scriptEnvsize - 1) { 239447c08596SBrooks Davis char **newscriptEnv; 239547c08596SBrooks Davis int newscriptEnvsize = client->scriptEnvsize + 50; 239647c08596SBrooks Davis 239747c08596SBrooks Davis newscriptEnv = realloc(client->scriptEnv, 239847c08596SBrooks Davis newscriptEnvsize); 239947c08596SBrooks Davis if (newscriptEnv == NULL) { 240047c08596SBrooks Davis free(client->scriptEnv); 240147c08596SBrooks Davis client->scriptEnv = NULL; 240247c08596SBrooks Davis client->scriptEnvsize = 0; 240347c08596SBrooks Davis error("script_set_env: no memory for variable"); 240447c08596SBrooks Davis } 240547c08596SBrooks Davis client->scriptEnv = newscriptEnv; 240647c08596SBrooks Davis client->scriptEnvsize = newscriptEnvsize; 240747c08596SBrooks Davis } 240847c08596SBrooks Davis /* need to set the NULL pointer at end of array beyond 240947c08596SBrooks Davis the new slot. */ 241047c08596SBrooks Davis client->scriptEnv[i + 1] = NULL; 241147c08596SBrooks Davis } 241247c08596SBrooks Davis /* Allocate space and format the variable in the appropriate slot. */ 241347c08596SBrooks Davis client->scriptEnv[i] = malloc(strlen(prefix) + strlen(name) + 1 + 241447c08596SBrooks Davis strlen(value) + 1); 241547c08596SBrooks Davis if (client->scriptEnv[i] == NULL) 241647c08596SBrooks Davis error("script_set_env: no memory for variable assignment"); 241747c08596SBrooks Davis snprintf(client->scriptEnv[i], strlen(prefix) + strlen(name) + 241847c08596SBrooks Davis 1 + strlen(value) + 1, "%s%s=%s", prefix, name, value); 241947c08596SBrooks Davis } 242047c08596SBrooks Davis 242147c08596SBrooks Davis void 242247c08596SBrooks Davis script_flush_env(struct client_state *client) 242347c08596SBrooks Davis { 242447c08596SBrooks Davis int i; 242547c08596SBrooks Davis 242647c08596SBrooks Davis for (i = 0; client->scriptEnv[i]; i++) { 242747c08596SBrooks Davis free(client->scriptEnv[i]); 242847c08596SBrooks Davis client->scriptEnv[i] = NULL; 242947c08596SBrooks Davis } 243047c08596SBrooks Davis client->scriptEnvsize = 0; 243147c08596SBrooks Davis } 243247c08596SBrooks Davis 243347c08596SBrooks Davis int 243447c08596SBrooks Davis dhcp_option_ev_name(char *buf, size_t buflen, struct option *option) 243547c08596SBrooks Davis { 2436afe6f835SAlan Somers size_t i; 243747c08596SBrooks Davis 243847c08596SBrooks Davis for (i = 0; option->name[i]; i++) { 243947c08596SBrooks Davis if (i + 1 == buflen) 244047c08596SBrooks Davis return 0; 244147c08596SBrooks Davis if (option->name[i] == '-') 244247c08596SBrooks Davis buf[i] = '_'; 244347c08596SBrooks Davis else 244447c08596SBrooks Davis buf[i] = option->name[i]; 244547c08596SBrooks Davis } 244647c08596SBrooks Davis 244747c08596SBrooks Davis buf[i] = 0; 244847c08596SBrooks Davis return 1; 244947c08596SBrooks Davis } 245047c08596SBrooks Davis 245147c08596SBrooks Davis void 245247c08596SBrooks Davis go_daemon(void) 245347c08596SBrooks Davis { 245447c08596SBrooks Davis static int state = 0; 24557008be5bSPawel Jakub Dawidek cap_rights_t rights; 245647c08596SBrooks Davis 245747c08596SBrooks Davis if (no_daemon || state) 245847c08596SBrooks Davis return; 245947c08596SBrooks Davis 246047c08596SBrooks Davis state = 1; 246147c08596SBrooks Davis 246247c08596SBrooks Davis /* Stop logging to stderr... */ 246347c08596SBrooks Davis log_perror = 0; 246447c08596SBrooks Davis 246531698405SMariusz Zaborski if (daemonfd(-1, nullfd) == -1) 246647c08596SBrooks Davis error("daemon"); 246747c08596SBrooks Davis 24687008be5bSPawel Jakub Dawidek cap_rights_init(&rights); 24697008be5bSPawel Jakub Dawidek 2470377421dfSMariusz Zaborski if (pidfile != NULL) { 247123f39c90SDag-Erling Smørgrav pidfile_write(pidfile); 247223f39c90SDag-Erling Smørgrav 2473377421dfSMariusz Zaborski if (caph_rights_limit(pidfile_fileno(pidfile), &rights) < 0) 2474377421dfSMariusz Zaborski error("can't limit pidfile descriptor: %m"); 2475377421dfSMariusz Zaborski } 2476377421dfSMariusz Zaborski 247747c08596SBrooks Davis if (nullfd != -1) { 247847c08596SBrooks Davis close(nullfd); 247947c08596SBrooks Davis nullfd = -1; 248047c08596SBrooks Davis } 2481a6f38228SPawel Jakub Dawidek 2482377421dfSMariusz Zaborski if (caph_rights_limit(STDIN_FILENO, &rights) < 0) 2483a6f38228SPawel Jakub Dawidek error("can't limit stdin: %m"); 24847008be5bSPawel Jakub Dawidek cap_rights_init(&rights, CAP_WRITE); 2485377421dfSMariusz Zaborski if (caph_rights_limit(STDOUT_FILENO, &rights) < 0) 2486a6f38228SPawel Jakub Dawidek error("can't limit stdout: %m"); 2487377421dfSMariusz Zaborski if (caph_rights_limit(STDERR_FILENO, &rights) < 0) 2488a6f38228SPawel Jakub Dawidek error("can't limit stderr: %m"); 248947c08596SBrooks Davis } 249047c08596SBrooks Davis 249147c08596SBrooks Davis int 249247c08596SBrooks Davis check_option(struct client_lease *l, int option) 249347c08596SBrooks Davis { 249479a1d195SAlan Somers const char *opbuf; 249579a1d195SAlan Somers const char *sbuf; 249647c08596SBrooks Davis 249747c08596SBrooks Davis /* we use this, since this is what gets passed to dhclient-script */ 249847c08596SBrooks Davis 249947c08596SBrooks Davis opbuf = pretty_print_option(option, l->options[option].data, 250047c08596SBrooks Davis l->options[option].len, 0, 0); 250147c08596SBrooks Davis 250247c08596SBrooks Davis sbuf = option_as_string(option, l->options[option].data, 250347c08596SBrooks Davis l->options[option].len); 250447c08596SBrooks Davis 250547c08596SBrooks Davis switch (option) { 250647c08596SBrooks Davis case DHO_SUBNET_MASK: 250747c08596SBrooks Davis case DHO_TIME_SERVERS: 250847c08596SBrooks Davis case DHO_NAME_SERVERS: 250947c08596SBrooks Davis case DHO_ROUTERS: 251047c08596SBrooks Davis case DHO_DOMAIN_NAME_SERVERS: 251147c08596SBrooks Davis case DHO_LOG_SERVERS: 251247c08596SBrooks Davis case DHO_COOKIE_SERVERS: 251347c08596SBrooks Davis case DHO_LPR_SERVERS: 251447c08596SBrooks Davis case DHO_IMPRESS_SERVERS: 251547c08596SBrooks Davis case DHO_RESOURCE_LOCATION_SERVERS: 251647c08596SBrooks Davis case DHO_SWAP_SERVER: 251747c08596SBrooks Davis case DHO_BROADCAST_ADDRESS: 251847c08596SBrooks Davis case DHO_NIS_SERVERS: 251947c08596SBrooks Davis case DHO_NTP_SERVERS: 252047c08596SBrooks Davis case DHO_NETBIOS_NAME_SERVERS: 252147c08596SBrooks Davis case DHO_NETBIOS_DD_SERVER: 252247c08596SBrooks Davis case DHO_FONT_SERVERS: 252347c08596SBrooks Davis case DHO_DHCP_SERVER_IDENTIFIER: 252438e755fdSBrooks Davis case DHO_NISPLUS_SERVERS: 252538e755fdSBrooks Davis case DHO_MOBILE_IP_HOME_AGENT: 2526a36c0b6bSBrooks Davis case DHO_SMTP_SERVER: 2527a36c0b6bSBrooks Davis case DHO_POP_SERVER: 2528a36c0b6bSBrooks Davis case DHO_NNTP_SERVER: 2529a36c0b6bSBrooks Davis case DHO_WWW_SERVER: 2530a36c0b6bSBrooks Davis case DHO_FINGER_SERVER: 2531a36c0b6bSBrooks Davis case DHO_IRC_SERVER: 253238e755fdSBrooks Davis case DHO_STREETTALK_SERVER: 253338e755fdSBrooks Davis case DHO_STREETTALK_DA_SERVER: 253447c08596SBrooks Davis if (!ipv4addrs(opbuf)) { 253547c08596SBrooks Davis warning("Invalid IP address in option: %s", opbuf); 253647c08596SBrooks Davis return (0); 253747c08596SBrooks Davis } 253847c08596SBrooks Davis return (1) ; 253947c08596SBrooks Davis case DHO_HOST_NAME: 254047c08596SBrooks Davis case DHO_NIS_DOMAIN: 254138e755fdSBrooks Davis case DHO_NISPLUS_DOMAIN: 254238e755fdSBrooks Davis case DHO_TFTP_SERVER_NAME: 254347c08596SBrooks Davis if (!res_hnok(sbuf)) { 254447c08596SBrooks Davis warning("Bogus Host Name option %d: %s (%s)", option, 254547c08596SBrooks Davis sbuf, opbuf); 254682dbbc41SBrooks Davis l->options[option].len = 0; 254782dbbc41SBrooks Davis free(l->options[option].data); 254847c08596SBrooks Davis } 254947c08596SBrooks Davis return (1); 2550b388f1cbSBrooks Davis case DHO_DOMAIN_NAME: 2551409139f0SJean-Sébastien Pédron case DHO_DOMAIN_SEARCH: 2552f954ec0bSBrooks Davis if (!res_hnok(sbuf)) { 2553f954ec0bSBrooks Davis if (!check_search(sbuf)) { 2554f954ec0bSBrooks Davis warning("Bogus domain search list %d: %s (%s)", 2555f954ec0bSBrooks Davis option, sbuf, opbuf); 255682dbbc41SBrooks Davis l->options[option].len = 0; 255782dbbc41SBrooks Davis free(l->options[option].data); 2558f954ec0bSBrooks Davis } 2559f954ec0bSBrooks Davis } 2560f954ec0bSBrooks Davis return (1); 256147c08596SBrooks Davis case DHO_PAD: 256247c08596SBrooks Davis case DHO_TIME_OFFSET: 256347c08596SBrooks Davis case DHO_BOOT_SIZE: 256447c08596SBrooks Davis case DHO_MERIT_DUMP: 256547c08596SBrooks Davis case DHO_ROOT_PATH: 256647c08596SBrooks Davis case DHO_EXTENSIONS_PATH: 256747c08596SBrooks Davis case DHO_IP_FORWARDING: 256847c08596SBrooks Davis case DHO_NON_LOCAL_SOURCE_ROUTING: 256947c08596SBrooks Davis case DHO_POLICY_FILTER: 257047c08596SBrooks Davis case DHO_MAX_DGRAM_REASSEMBLY: 257147c08596SBrooks Davis case DHO_DEFAULT_IP_TTL: 257247c08596SBrooks Davis case DHO_PATH_MTU_AGING_TIMEOUT: 257347c08596SBrooks Davis case DHO_PATH_MTU_PLATEAU_TABLE: 257447c08596SBrooks Davis case DHO_INTERFACE_MTU: 257547c08596SBrooks Davis case DHO_ALL_SUBNETS_LOCAL: 257647c08596SBrooks Davis case DHO_PERFORM_MASK_DISCOVERY: 257747c08596SBrooks Davis case DHO_MASK_SUPPLIER: 257847c08596SBrooks Davis case DHO_ROUTER_DISCOVERY: 257947c08596SBrooks Davis case DHO_ROUTER_SOLICITATION_ADDRESS: 258047c08596SBrooks Davis case DHO_STATIC_ROUTES: 258147c08596SBrooks Davis case DHO_TRAILER_ENCAPSULATION: 258247c08596SBrooks Davis case DHO_ARP_CACHE_TIMEOUT: 258347c08596SBrooks Davis case DHO_IEEE802_3_ENCAPSULATION: 258447c08596SBrooks Davis case DHO_DEFAULT_TCP_TTL: 258547c08596SBrooks Davis case DHO_TCP_KEEPALIVE_INTERVAL: 258647c08596SBrooks Davis case DHO_TCP_KEEPALIVE_GARBAGE: 258747c08596SBrooks Davis case DHO_VENDOR_ENCAPSULATED_OPTIONS: 258847c08596SBrooks Davis case DHO_NETBIOS_NODE_TYPE: 258947c08596SBrooks Davis case DHO_NETBIOS_SCOPE: 259047c08596SBrooks Davis case DHO_X_DISPLAY_MANAGER: 259147c08596SBrooks Davis case DHO_DHCP_REQUESTED_ADDRESS: 259247c08596SBrooks Davis case DHO_DHCP_LEASE_TIME: 259347c08596SBrooks Davis case DHO_DHCP_OPTION_OVERLOAD: 259447c08596SBrooks Davis case DHO_DHCP_MESSAGE_TYPE: 259547c08596SBrooks Davis case DHO_DHCP_PARAMETER_REQUEST_LIST: 259647c08596SBrooks Davis case DHO_DHCP_MESSAGE: 259747c08596SBrooks Davis case DHO_DHCP_MAX_MESSAGE_SIZE: 259847c08596SBrooks Davis case DHO_DHCP_RENEWAL_TIME: 259947c08596SBrooks Davis case DHO_DHCP_REBINDING_TIME: 260047c08596SBrooks Davis case DHO_DHCP_CLASS_IDENTIFIER: 260147c08596SBrooks Davis case DHO_DHCP_CLIENT_IDENTIFIER: 260238e755fdSBrooks Davis case DHO_BOOTFILE_NAME: 260347c08596SBrooks Davis case DHO_DHCP_USER_CLASS_ID: 2604130cfcf3SDave Cottlehuber case DHO_URL: 260547c08596SBrooks Davis case DHO_END: 260647c08596SBrooks Davis return (1); 26072fcc7370SEd Maste case DHO_CLASSLESS_ROUTES: 26082fcc7370SEd Maste return (check_classless_option(l->options[option].data, 26092fcc7370SEd Maste l->options[option].len)); 261047c08596SBrooks Davis default: 261147c08596SBrooks Davis warning("unknown dhcp option value 0x%x", option); 261247c08596SBrooks Davis return (unknown_ok); 261347c08596SBrooks Davis } 261447c08596SBrooks Davis } 261547c08596SBrooks Davis 26162fcc7370SEd Maste /* RFC 3442 The Classless Static Routes option checks */ 26172fcc7370SEd Maste int 26182fcc7370SEd Maste check_classless_option(unsigned char *data, int len) 26192fcc7370SEd Maste { 26202fcc7370SEd Maste int i = 0; 26212fcc7370SEd Maste unsigned char width; 26222fcc7370SEd Maste in_addr_t addr, mask; 26232fcc7370SEd Maste 26242fcc7370SEd Maste if (len < 5) { 26252fcc7370SEd Maste warning("Too small length: %d", len); 26262fcc7370SEd Maste return (0); 26272fcc7370SEd Maste } 26282fcc7370SEd Maste while(i < len) { 26292fcc7370SEd Maste width = data[i++]; 26302fcc7370SEd Maste if (width == 0) { 26312fcc7370SEd Maste i += 4; 26322fcc7370SEd Maste continue; 26332fcc7370SEd Maste } else if (width < 9) { 26342fcc7370SEd Maste addr = (in_addr_t)(data[i] << 24); 26352fcc7370SEd Maste i += 1; 26362fcc7370SEd Maste } else if (width < 17) { 26372fcc7370SEd Maste addr = (in_addr_t)(data[i] << 24) + 26382fcc7370SEd Maste (in_addr_t)(data[i + 1] << 16); 26392fcc7370SEd Maste i += 2; 26402fcc7370SEd Maste } else if (width < 25) { 26412fcc7370SEd Maste addr = (in_addr_t)(data[i] << 24) + 26422fcc7370SEd Maste (in_addr_t)(data[i + 1] << 16) + 26432fcc7370SEd Maste (in_addr_t)(data[i + 2] << 8); 26442fcc7370SEd Maste i += 3; 26452fcc7370SEd Maste } else if (width < 33) { 26462fcc7370SEd Maste addr = (in_addr_t)(data[i] << 24) + 26472fcc7370SEd Maste (in_addr_t)(data[i + 1] << 16) + 26482fcc7370SEd Maste (in_addr_t)(data[i + 2] << 8) + 26492fcc7370SEd Maste data[i + 3]; 26502fcc7370SEd Maste i += 4; 26512fcc7370SEd Maste } else { 26522fcc7370SEd Maste warning("Incorrect subnet width: %d", width); 26532fcc7370SEd Maste return (0); 26542fcc7370SEd Maste } 26552fcc7370SEd Maste mask = (in_addr_t)(~0) << (32 - width); 26562fcc7370SEd Maste addr = ntohl(addr); 26572fcc7370SEd Maste mask = ntohl(mask); 26582fcc7370SEd Maste 26592fcc7370SEd Maste /* 26602fcc7370SEd Maste * From RFC 3442: 26612fcc7370SEd Maste * ... After deriving a subnet number and subnet mask 26622fcc7370SEd Maste * from each destination descriptor, the DHCP client 26632fcc7370SEd Maste * MUST zero any bits in the subnet number where the 26642fcc7370SEd Maste * corresponding bit in the mask is zero... 26652fcc7370SEd Maste */ 26662fcc7370SEd Maste if ((addr & mask) != addr) { 26672fcc7370SEd Maste addr &= mask; 26682fcc7370SEd Maste data[i - 1] = (unsigned char)( 26692fcc7370SEd Maste (addr >> (((32 - width)/8)*8)) & 0xFF); 26702fcc7370SEd Maste } 26712fcc7370SEd Maste i += 4; 26722fcc7370SEd Maste } 26732fcc7370SEd Maste if (i > len) { 26742fcc7370SEd Maste warning("Incorrect data length: %d (must be %d)", len, i); 26752fcc7370SEd Maste return (0); 26762fcc7370SEd Maste } 26772fcc7370SEd Maste return (1); 26782fcc7370SEd Maste } 26792fcc7370SEd Maste 268047c08596SBrooks Davis int 268147c08596SBrooks Davis res_hnok(const char *dn) 268247c08596SBrooks Davis { 268347c08596SBrooks Davis int pch = PERIOD, ch = *dn++; 268447c08596SBrooks Davis 268547c08596SBrooks Davis while (ch != '\0') { 268647c08596SBrooks Davis int nch = *dn++; 268747c08596SBrooks Davis 268847c08596SBrooks Davis if (periodchar(ch)) { 268947c08596SBrooks Davis ; 269047c08596SBrooks Davis } else if (periodchar(pch)) { 269147c08596SBrooks Davis if (!borderchar(ch)) 269247c08596SBrooks Davis return (0); 269347c08596SBrooks Davis } else if (periodchar(nch) || nch == '\0') { 269447c08596SBrooks Davis if (!borderchar(ch)) 269547c08596SBrooks Davis return (0); 269647c08596SBrooks Davis } else { 269747c08596SBrooks Davis if (!middlechar(ch)) 269847c08596SBrooks Davis return (0); 269947c08596SBrooks Davis } 270047c08596SBrooks Davis pch = ch, ch = nch; 270147c08596SBrooks Davis } 270247c08596SBrooks Davis return (1); 270347c08596SBrooks Davis } 270447c08596SBrooks Davis 2705f954ec0bSBrooks Davis int 2706f954ec0bSBrooks Davis check_search(const char *srch) 2707f954ec0bSBrooks Davis { 2708f954ec0bSBrooks Davis int pch = PERIOD, ch = *srch++; 2709f954ec0bSBrooks Davis int domains = 1; 2710f954ec0bSBrooks Davis 2711f954ec0bSBrooks Davis /* 256 char limit re resolv.conf(5) */ 2712f954ec0bSBrooks Davis if (strlen(srch) > 256) 2713f954ec0bSBrooks Davis return (0); 2714f954ec0bSBrooks Davis 2715f954ec0bSBrooks Davis while (whitechar(ch)) 2716f954ec0bSBrooks Davis ch = *srch++; 2717f954ec0bSBrooks Davis 2718f954ec0bSBrooks Davis while (ch != '\0') { 2719f954ec0bSBrooks Davis int nch = *srch++; 2720f954ec0bSBrooks Davis 2721f954ec0bSBrooks Davis if (periodchar(ch) || whitechar(ch)) { 2722f954ec0bSBrooks Davis ; 2723f954ec0bSBrooks Davis } else if (periodchar(pch)) { 2724f954ec0bSBrooks Davis if (!borderchar(ch)) 2725f954ec0bSBrooks Davis return (0); 2726f954ec0bSBrooks Davis } else if (periodchar(nch) || nch == '\0') { 2727f954ec0bSBrooks Davis if (!borderchar(ch)) 2728f954ec0bSBrooks Davis return (0); 2729f954ec0bSBrooks Davis } else { 2730f954ec0bSBrooks Davis if (!middlechar(ch)) 2731f954ec0bSBrooks Davis return (0); 2732f954ec0bSBrooks Davis } 2733f954ec0bSBrooks Davis if (!whitechar(ch)) { 2734f954ec0bSBrooks Davis pch = ch; 2735f954ec0bSBrooks Davis } else { 2736f954ec0bSBrooks Davis while (whitechar(nch)) { 2737f954ec0bSBrooks Davis nch = *srch++; 2738f954ec0bSBrooks Davis } 2739f954ec0bSBrooks Davis if (nch != '\0') 2740f954ec0bSBrooks Davis domains++; 2741f954ec0bSBrooks Davis pch = PERIOD; 2742f954ec0bSBrooks Davis } 2743f954ec0bSBrooks Davis ch = nch; 2744f954ec0bSBrooks Davis } 2745f954ec0bSBrooks Davis /* 6 domain limit re resolv.conf(5) */ 2746f954ec0bSBrooks Davis if (domains > 6) 2747f954ec0bSBrooks Davis return (0); 2748f954ec0bSBrooks Davis return (1); 2749f954ec0bSBrooks Davis } 2750f954ec0bSBrooks Davis 275147c08596SBrooks Davis /* Does buf consist only of dotted decimal ipv4 addrs? 275247c08596SBrooks Davis * return how many if so, 275347c08596SBrooks Davis * otherwise, return 0 275447c08596SBrooks Davis */ 275547c08596SBrooks Davis int 275679a1d195SAlan Somers ipv4addrs(const char * buf) 275747c08596SBrooks Davis { 275847c08596SBrooks Davis struct in_addr jnk; 275947c08596SBrooks Davis int count = 0; 276047c08596SBrooks Davis 276147c08596SBrooks Davis while (inet_aton(buf, &jnk) == 1){ 276247c08596SBrooks Davis count++; 276347c08596SBrooks Davis while (periodchar(*buf) || digitchar(*buf)) 276447c08596SBrooks Davis buf++; 276547c08596SBrooks Davis if (*buf == '\0') 276647c08596SBrooks Davis return (count); 276747c08596SBrooks Davis while (*buf == ' ') 276847c08596SBrooks Davis buf++; 276947c08596SBrooks Davis } 277047c08596SBrooks Davis return (0); 277147c08596SBrooks Davis } 277247c08596SBrooks Davis 277347c08596SBrooks Davis 277479a1d195SAlan Somers const char * 277547c08596SBrooks Davis option_as_string(unsigned int code, unsigned char *data, int len) 277647c08596SBrooks Davis { 277747c08596SBrooks Davis static char optbuf[32768]; /* XXX */ 277847c08596SBrooks Davis char *op = optbuf; 277947c08596SBrooks Davis int opleft = sizeof(optbuf); 278047c08596SBrooks Davis unsigned char *dp = data; 278147c08596SBrooks Davis 278247c08596SBrooks Davis if (code > 255) 278347c08596SBrooks Davis error("option_as_string: bad code %d", code); 278447c08596SBrooks Davis 278547c08596SBrooks Davis for (; dp < data + len; dp++) { 278647c08596SBrooks Davis if (!isascii(*dp) || !isprint(*dp)) { 278747c08596SBrooks Davis if (dp + 1 != data + len || *dp != 0) { 278847c08596SBrooks Davis snprintf(op, opleft, "\\%03o", *dp); 278947c08596SBrooks Davis op += 4; 279047c08596SBrooks Davis opleft -= 4; 279147c08596SBrooks Davis } 279247c08596SBrooks Davis } else if (*dp == '"' || *dp == '\'' || *dp == '$' || 279347c08596SBrooks Davis *dp == '`' || *dp == '\\') { 279447c08596SBrooks Davis *op++ = '\\'; 279547c08596SBrooks Davis *op++ = *dp; 279647c08596SBrooks Davis opleft -= 2; 279747c08596SBrooks Davis } else { 279847c08596SBrooks Davis *op++ = *dp; 279947c08596SBrooks Davis opleft--; 280047c08596SBrooks Davis } 280147c08596SBrooks Davis } 280247c08596SBrooks Davis if (opleft < 1) 280347c08596SBrooks Davis goto toobig; 280447c08596SBrooks Davis *op = 0; 280547c08596SBrooks Davis return optbuf; 280647c08596SBrooks Davis toobig: 280747c08596SBrooks Davis warning("dhcp option too large"); 280847c08596SBrooks Davis return "<error>"; 280947c08596SBrooks Davis } 281047c08596SBrooks Davis 281147c08596SBrooks Davis int 281247c08596SBrooks Davis fork_privchld(int fd, int fd2) 281347c08596SBrooks Davis { 281447c08596SBrooks Davis struct pollfd pfd[1]; 281547c08596SBrooks Davis int nfds; 281647c08596SBrooks Davis 281747c08596SBrooks Davis switch (fork()) { 281847c08596SBrooks Davis case -1: 281947c08596SBrooks Davis error("cannot fork"); 282047c08596SBrooks Davis case 0: 282147c08596SBrooks Davis break; 282247c08596SBrooks Davis default: 282347c08596SBrooks Davis return (0); 282447c08596SBrooks Davis } 282547c08596SBrooks Davis 282647c08596SBrooks Davis setproctitle("%s [priv]", ifi->name); 282747c08596SBrooks Davis 282870892546SEd Schouten setsid(); 282947c08596SBrooks Davis dup2(nullfd, STDIN_FILENO); 283047c08596SBrooks Davis dup2(nullfd, STDOUT_FILENO); 283147c08596SBrooks Davis dup2(nullfd, STDERR_FILENO); 283247c08596SBrooks Davis close(nullfd); 283347c08596SBrooks Davis close(fd2); 2834235eb530SPawel Jakub Dawidek close(ifi->rfdesc); 2835235eb530SPawel Jakub Dawidek ifi->rfdesc = -1; 283647c08596SBrooks Davis 283747c08596SBrooks Davis for (;;) { 283847c08596SBrooks Davis pfd[0].fd = fd; 283947c08596SBrooks Davis pfd[0].events = POLLIN; 284047c08596SBrooks Davis if ((nfds = poll(pfd, 1, INFTIM)) == -1) 284147c08596SBrooks Davis if (errno != EINTR) 284247c08596SBrooks Davis error("poll error"); 284347c08596SBrooks Davis 284447c08596SBrooks Davis if (nfds == 0 || !(pfd[0].revents & POLLIN)) 284547c08596SBrooks Davis continue; 284647c08596SBrooks Davis 2847235eb530SPawel Jakub Dawidek dispatch_imsg(ifi, fd); 284847c08596SBrooks Davis } 284947c08596SBrooks Davis } 2850