xref: /freebsd/sbin/dhclient/dhclient.c (revision cb003dd91847ffa2e788edb9b3790ae2e1e11d34)
147c08596SBrooks Davis /*	$OpenBSD: dhclient.c,v 1.63 2005/02/06 17:10:13 krw Exp $	*/
247c08596SBrooks Davis 
347c08596SBrooks Davis /*
447c08596SBrooks Davis  * Copyright 2004 Henning Brauer <henning@openbsd.org>
547c08596SBrooks Davis  * Copyright (c) 1995, 1996, 1997, 1998, 1999
647c08596SBrooks Davis  * The Internet Software Consortium.    All rights reserved.
747c08596SBrooks Davis  *
847c08596SBrooks Davis  * Redistribution and use in source and binary forms, with or without
947c08596SBrooks Davis  * modification, are permitted provided that the following conditions
1047c08596SBrooks Davis  * are met:
1147c08596SBrooks Davis  *
1247c08596SBrooks Davis  * 1. Redistributions of source code must retain the above copyright
1347c08596SBrooks Davis  *    notice, this list of conditions and the following disclaimer.
1447c08596SBrooks Davis  * 2. Redistributions in binary form must reproduce the above copyright
1547c08596SBrooks Davis  *    notice, this list of conditions and the following disclaimer in the
1647c08596SBrooks Davis  *    documentation and/or other materials provided with the distribution.
1747c08596SBrooks Davis  * 3. Neither the name of The Internet Software Consortium nor the names
1847c08596SBrooks Davis  *    of its contributors may be used to endorse or promote products derived
1947c08596SBrooks Davis  *    from this software without specific prior written permission.
2047c08596SBrooks Davis  *
2147c08596SBrooks Davis  * THIS SOFTWARE IS PROVIDED BY THE INTERNET SOFTWARE CONSORTIUM AND
2247c08596SBrooks Davis  * CONTRIBUTORS ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES,
2347c08596SBrooks Davis  * INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF
2447c08596SBrooks Davis  * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
2547c08596SBrooks Davis  * DISCLAIMED.  IN NO EVENT SHALL THE INTERNET SOFTWARE CONSORTIUM OR
2647c08596SBrooks Davis  * CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL,
2747c08596SBrooks Davis  * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT
2847c08596SBrooks Davis  * LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF
2947c08596SBrooks Davis  * USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND
3047c08596SBrooks Davis  * ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
3147c08596SBrooks Davis  * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT
3247c08596SBrooks Davis  * OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
3347c08596SBrooks Davis  * SUCH DAMAGE.
3447c08596SBrooks Davis  *
3547c08596SBrooks Davis  * This software has been written for the Internet Software Consortium
3647c08596SBrooks Davis  * by Ted Lemon <mellon@fugue.com> in cooperation with Vixie
3747c08596SBrooks Davis  * Enterprises.  To learn more about the Internet Software Consortium,
3847c08596SBrooks Davis  * see ``http://www.vix.com/isc''.  To learn more about Vixie
3947c08596SBrooks Davis  * Enterprises, see ``http://www.vix.com''.
4047c08596SBrooks Davis  *
4147c08596SBrooks Davis  * This client was substantially modified and enhanced by Elliot Poger
4247c08596SBrooks Davis  * for use on Linux while he was working on the MosquitoNet project at
4347c08596SBrooks Davis  * Stanford.
4447c08596SBrooks Davis  *
4547c08596SBrooks Davis  * The current version owes much to Elliot's Linux enhancements, but
4647c08596SBrooks Davis  * was substantially reorganized and partially rewritten by Ted Lemon
4747c08596SBrooks Davis  * so as to use the same networking framework that the Internet Software
4847c08596SBrooks Davis  * Consortium DHCP server uses.   Much system-specific configuration code
4947c08596SBrooks Davis  * was moved into a shell script so that as support for more operating
5047c08596SBrooks Davis  * systems is added, it will not be necessary to port and maintain
5147c08596SBrooks Davis  * system-specific configuration code to these operating systems - instead,
5247c08596SBrooks Davis  * the shell script can invoke the native tools to accomplish the same
5347c08596SBrooks Davis  * purpose.
5447c08596SBrooks Davis  */
5547c08596SBrooks Davis 
568794fdbbSBrooks Davis #include <sys/cdefs.h>
578794fdbbSBrooks Davis __FBSDID("$FreeBSD$");
588794fdbbSBrooks Davis 
5947c08596SBrooks Davis #include "dhcpd.h"
6047c08596SBrooks Davis #include "privsep.h"
6147c08596SBrooks Davis 
62b881b8beSRobert Watson #include <sys/capsicum.h>
63387016a5SConrad Meyer #include <sys/endian.h>
64de2c882fSPawel Jakub Dawidek 
652b19b6fcSBrooks Davis #include <net80211/ieee80211_freebsd.h>
662b19b6fcSBrooks Davis 
672b19b6fcSBrooks Davis #ifndef _PATH_VAREMPTY
682b19b6fcSBrooks Davis #define	_PATH_VAREMPTY	"/var/empty"
692b19b6fcSBrooks Davis #endif
702b19b6fcSBrooks Davis 
7147c08596SBrooks Davis #define	PERIOD 0x2e
7247c08596SBrooks Davis #define	hyphenchar(c) ((c) == 0x2d)
7347c08596SBrooks Davis #define	bslashchar(c) ((c) == 0x5c)
7447c08596SBrooks Davis #define	periodchar(c) ((c) == PERIOD)
7547c08596SBrooks Davis #define	asterchar(c) ((c) == 0x2a)
7647c08596SBrooks Davis #define	alphachar(c) (((c) >= 0x41 && (c) <= 0x5a) || \
7747c08596SBrooks Davis 	    ((c) >= 0x61 && (c) <= 0x7a))
7847c08596SBrooks Davis #define	digitchar(c) ((c) >= 0x30 && (c) <= 0x39)
79f954ec0bSBrooks Davis #define	whitechar(c) ((c) == ' ' || (c) == '\t')
8047c08596SBrooks Davis 
8147c08596SBrooks Davis #define	borderchar(c) (alphachar(c) || digitchar(c))
8247c08596SBrooks Davis #define	middlechar(c) (borderchar(c) || hyphenchar(c))
8347c08596SBrooks Davis #define	domainchar(c) ((c) > 0x20 && (c) < 0x7f)
8447c08596SBrooks Davis 
8547c08596SBrooks Davis #define	CLIENT_PATH "PATH=/usr/bin:/usr/sbin:/bin:/sbin"
8647c08596SBrooks Davis 
87*cb003dd9SMariusz Zaborski cap_channel_t *capsyslog;
88*cb003dd9SMariusz Zaborski 
8947c08596SBrooks Davis time_t cur_time;
9047c08596SBrooks Davis time_t default_lease_time = 43200; /* 12 hours... */
9147c08596SBrooks Davis 
9247c08596SBrooks Davis char *path_dhclient_conf = _PATH_DHCLIENT_CONF;
9347c08596SBrooks Davis char *path_dhclient_db = NULL;
9447c08596SBrooks Davis 
9547c08596SBrooks Davis int log_perror = 1;
9647c08596SBrooks Davis int privfd;
9747c08596SBrooks Davis int nullfd = -1;
9847c08596SBrooks Davis 
990bbe8306SPawel Jakub Dawidek char hostname[_POSIX_HOST_NAME_MAX + 1];
1000bbe8306SPawel Jakub Dawidek 
10147c08596SBrooks Davis struct iaddr iaddr_broadcast = { 4, { 255, 255, 255, 255 } };
102ba019ae5SPawel Jakub Dawidek struct in_addr inaddr_any, inaddr_broadcast;
10347c08596SBrooks Davis 
10423f39c90SDag-Erling Smørgrav char *path_dhclient_pidfile;
10523f39c90SDag-Erling Smørgrav struct pidfh *pidfile;
10623f39c90SDag-Erling Smørgrav 
10747c08596SBrooks Davis /*
10847c08596SBrooks Davis  * ASSERT_STATE() does nothing now; it used to be
10947c08596SBrooks Davis  * assert (state_is == state_shouldbe).
11047c08596SBrooks Davis  */
11147c08596SBrooks Davis #define ASSERT_STATE(state_is, state_shouldbe) {}
11247c08596SBrooks Davis 
113223c44aeSNick Hibma /*
114223c44aeSNick Hibma  * We need to check that the expiry, renewal and rebind times are not beyond
115223c44aeSNick Hibma  * the end of time (~2038 when a 32-bit time_t is being used).
116223c44aeSNick Hibma  */
117223c44aeSNick Hibma #define TIME_MAX        ((((time_t) 1 << (sizeof(time_t) * CHAR_BIT - 2)) - 1) * 2 + 1)
11847c08596SBrooks Davis 
11947c08596SBrooks Davis int		log_priority;
12047c08596SBrooks Davis int		no_daemon;
12147c08596SBrooks Davis int		unknown_ok = 1;
12247c08596SBrooks Davis int		routefd;
12347c08596SBrooks Davis 
12447c08596SBrooks Davis struct interface_info	*ifi;
12547c08596SBrooks Davis 
12647c08596SBrooks Davis int		 findproto(char *, int);
12747c08596SBrooks Davis struct sockaddr	*get_ifa(char *, int);
12847c08596SBrooks Davis void		 routehandler(struct protocol *);
12947c08596SBrooks Davis void		 usage(void);
13047c08596SBrooks Davis int		 check_option(struct client_lease *l, int option);
1312fcc7370SEd Maste int		 check_classless_option(unsigned char *data, int len);
13247c08596SBrooks Davis int		 ipv4addrs(char * buf);
13347c08596SBrooks Davis int		 res_hnok(const char *dn);
134f954ec0bSBrooks Davis int		 check_search(const char *srch);
13547c08596SBrooks Davis char		*option_as_string(unsigned int code, unsigned char *data, int len);
13647c08596SBrooks Davis int		 fork_privchld(int, int);
13747c08596SBrooks Davis 
13847c08596SBrooks Davis #define	ROUNDUP(a) \
13947c08596SBrooks Davis 	    ((a) > 0 ? (1 + (((a) - 1) | (sizeof(long) - 1))) : sizeof(long))
14047c08596SBrooks Davis #define	ADVANCE(x, n) (x += ROUNDUP((n)->sa_len))
14147c08596SBrooks Davis 
142387016a5SConrad Meyer /* Minimum MTU is 68 as per RFC791, p. 24 */
143387016a5SConrad Meyer #define MIN_MTU 68
144387016a5SConrad Meyer 
1456964abefSBrian Somers static time_t	scripttime;
14647c08596SBrooks Davis 
14747c08596SBrooks Davis int
14847c08596SBrooks Davis findproto(char *cp, int n)
14947c08596SBrooks Davis {
15047c08596SBrooks Davis 	struct sockaddr *sa;
15147c08596SBrooks Davis 	int i;
15247c08596SBrooks Davis 
15347c08596SBrooks Davis 	if (n == 0)
15447c08596SBrooks Davis 		return -1;
15547c08596SBrooks Davis 	for (i = 1; i; i <<= 1) {
15647c08596SBrooks Davis 		if (i & n) {
15747c08596SBrooks Davis 			sa = (struct sockaddr *)cp;
15847c08596SBrooks Davis 			switch (i) {
15947c08596SBrooks Davis 			case RTA_IFA:
16047c08596SBrooks Davis 			case RTA_DST:
16147c08596SBrooks Davis 			case RTA_GATEWAY:
16247c08596SBrooks Davis 			case RTA_NETMASK:
16347c08596SBrooks Davis 				if (sa->sa_family == AF_INET)
16447c08596SBrooks Davis 					return AF_INET;
16547c08596SBrooks Davis 				if (sa->sa_family == AF_INET6)
16647c08596SBrooks Davis 					return AF_INET6;
16747c08596SBrooks Davis 				break;
16847c08596SBrooks Davis 			case RTA_IFP:
16947c08596SBrooks Davis 				break;
17047c08596SBrooks Davis 			}
17147c08596SBrooks Davis 			ADVANCE(cp, sa);
17247c08596SBrooks Davis 		}
17347c08596SBrooks Davis 	}
17447c08596SBrooks Davis 	return (-1);
17547c08596SBrooks Davis }
17647c08596SBrooks Davis 
17747c08596SBrooks Davis struct sockaddr *
17847c08596SBrooks Davis get_ifa(char *cp, int n)
17947c08596SBrooks Davis {
18047c08596SBrooks Davis 	struct sockaddr *sa;
18147c08596SBrooks Davis 	int i;
18247c08596SBrooks Davis 
18347c08596SBrooks Davis 	if (n == 0)
18447c08596SBrooks Davis 		return (NULL);
18547c08596SBrooks Davis 	for (i = 1; i; i <<= 1)
18647c08596SBrooks Davis 		if (i & n) {
18747c08596SBrooks Davis 			sa = (struct sockaddr *)cp;
18847c08596SBrooks Davis 			if (i == RTA_IFA)
18947c08596SBrooks Davis 				return (sa);
19047c08596SBrooks Davis 			ADVANCE(cp, sa);
19147c08596SBrooks Davis 		}
19247c08596SBrooks Davis 
19347c08596SBrooks Davis 	return (NULL);
19447c08596SBrooks Davis }
19561063e47SSam Leffler 
19647c08596SBrooks Davis struct iaddr defaddr = { 4 };
19761063e47SSam Leffler uint8_t curbssid[6];
19861063e47SSam Leffler 
19961063e47SSam Leffler static void
20061063e47SSam Leffler disassoc(void *arg)
20161063e47SSam Leffler {
20261063e47SSam Leffler 	struct interface_info *ifi = arg;
20361063e47SSam Leffler 
20461063e47SSam Leffler 	/*
20561063e47SSam Leffler 	 * Clear existing state.
20661063e47SSam Leffler 	 */
20761063e47SSam Leffler 	if (ifi->client->active != NULL) {
20861063e47SSam Leffler 		script_init("EXPIRE", NULL);
20961063e47SSam Leffler 		script_write_params("old_",
21061063e47SSam Leffler 		    ifi->client->active);
21161063e47SSam Leffler 		if (ifi->client->alias)
21261063e47SSam Leffler 			script_write_params("alias_",
21361063e47SSam Leffler 				ifi->client->alias);
21461063e47SSam Leffler 		script_go();
21561063e47SSam Leffler 	}
21661063e47SSam Leffler 	ifi->client->state = S_INIT;
21761063e47SSam Leffler }
21847c08596SBrooks Davis 
21947c08596SBrooks Davis /* ARGSUSED */
22047c08596SBrooks Davis void
22147c08596SBrooks Davis routehandler(struct protocol *p)
22247c08596SBrooks Davis {
2236964abefSBrian Somers 	char msg[2048], *addr;
22447c08596SBrooks Davis 	struct rt_msghdr *rtm;
22547c08596SBrooks Davis 	struct if_msghdr *ifm;
22647c08596SBrooks Davis 	struct ifa_msghdr *ifam;
22747c08596SBrooks Davis 	struct if_announcemsghdr *ifan;
22861063e47SSam Leffler 	struct ieee80211_join_event *jev;
22947c08596SBrooks Davis 	struct client_lease *l;
23047c08596SBrooks Davis 	time_t t = time(NULL);
23147c08596SBrooks Davis 	struct sockaddr *sa;
23247c08596SBrooks Davis 	struct iaddr a;
23347c08596SBrooks Davis 	ssize_t n;
2340a26f858SJohn Baldwin 	int linkstat;
23547c08596SBrooks Davis 
23647c08596SBrooks Davis 	n = read(routefd, &msg, sizeof(msg));
23747c08596SBrooks Davis 	rtm = (struct rt_msghdr *)msg;
23847c08596SBrooks Davis 	if (n < sizeof(rtm->rtm_msglen) || n < rtm->rtm_msglen ||
23947c08596SBrooks Davis 	    rtm->rtm_version != RTM_VERSION)
24047c08596SBrooks Davis 		return;
24147c08596SBrooks Davis 
24247c08596SBrooks Davis 	switch (rtm->rtm_type) {
24347c08596SBrooks Davis 	case RTM_NEWADDR:
244dfad96eaSBrooks Davis 	case RTM_DELADDR:
24547c08596SBrooks Davis 		ifam = (struct ifa_msghdr *)rtm;
246dfad96eaSBrooks Davis 
24747c08596SBrooks Davis 		if (ifam->ifam_index != ifi->index)
24847c08596SBrooks Davis 			break;
24947c08596SBrooks Davis 		if (findproto((char *)(ifam + 1), ifam->ifam_addrs) != AF_INET)
25047c08596SBrooks Davis 			break;
251dfad96eaSBrooks Davis 		if (scripttime == 0 || t < scripttime + 10)
252dfad96eaSBrooks Davis 			break;
253dfad96eaSBrooks Davis 
25447c08596SBrooks Davis 		sa = get_ifa((char *)(ifam + 1), ifam->ifam_addrs);
25547c08596SBrooks Davis 		if (sa == NULL)
2566964abefSBrian Somers 			break;
25747c08596SBrooks Davis 
25847c08596SBrooks Davis 		if ((a.len = sizeof(struct in_addr)) > sizeof(a.iabuf))
25947c08596SBrooks Davis 			error("king bula sez: len mismatch");
26047c08596SBrooks Davis 		memcpy(a.iabuf, &((struct sockaddr_in *)sa)->sin_addr, a.len);
26147c08596SBrooks Davis 		if (addr_eq(a, defaddr))
26247c08596SBrooks Davis 			break;
26347c08596SBrooks Davis 
26447c08596SBrooks Davis 		for (l = ifi->client->active; l != NULL; l = l->next)
26547c08596SBrooks Davis 			if (addr_eq(a, l->address))
26647c08596SBrooks Davis 				break;
26747c08596SBrooks Davis 
2686964abefSBrian Somers 		if (l == NULL)	/* added/deleted addr is not the one we set */
26947c08596SBrooks Davis 			break;
2706964abefSBrian Somers 
2716964abefSBrian Somers 		addr = inet_ntoa(((struct sockaddr_in *)sa)->sin_addr);
2726964abefSBrian Somers 		if (rtm->rtm_type == RTM_NEWADDR)  {
2736964abefSBrian Somers 			/*
2746964abefSBrian Somers 			 * XXX: If someone other than us adds our address,
2756964abefSBrian Somers 			 * should we assume they are taking over from us,
2766964abefSBrian Somers 			 * delete the lease record, and exit without modifying
2776964abefSBrian Somers 			 * the interface?
2786964abefSBrian Somers 			 */
2796964abefSBrian Somers 			warning("My address (%s) was re-added", addr);
2806964abefSBrian Somers 		} else {
2816964abefSBrian Somers 			warning("My address (%s) was deleted, dhclient exiting",
2826964abefSBrian Somers 			    addr);
28347c08596SBrooks Davis 			goto die;
2846964abefSBrian Somers 		}
2856964abefSBrian Somers 		break;
28647c08596SBrooks Davis 	case RTM_IFINFO:
28747c08596SBrooks Davis 		ifm = (struct if_msghdr *)rtm;
28847c08596SBrooks Davis 		if (ifm->ifm_index != ifi->index)
28947c08596SBrooks Davis 			break;
2906964abefSBrian Somers 		if ((rtm->rtm_flags & RTF_UP) == 0) {
2916964abefSBrian Somers 			warning("Interface %s is down, dhclient exiting",
2926964abefSBrian Somers 			    ifi->name);
29347c08596SBrooks Davis 			goto die;
2946964abefSBrian Somers 		}
2950a26f858SJohn Baldwin 		linkstat = interface_link_status(ifi->name);
2960a26f858SJohn Baldwin 		if (linkstat != ifi->linkstat) {
2970a26f858SJohn Baldwin 			debug("%s link state %s -> %s", ifi->name,
2980a26f858SJohn Baldwin 			    ifi->linkstat ? "up" : "down",
2990a26f858SJohn Baldwin 			    linkstat ? "up" : "down");
3000a26f858SJohn Baldwin 			ifi->linkstat = linkstat;
3010a26f858SJohn Baldwin 			if (linkstat)
3020a26f858SJohn Baldwin 				state_reboot(ifi);
30383f745b8SJohn Baldwin 		}
30447c08596SBrooks Davis 		break;
30547c08596SBrooks Davis 	case RTM_IFANNOUNCE:
30647c08596SBrooks Davis 		ifan = (struct if_announcemsghdr *)rtm;
30747c08596SBrooks Davis 		if (ifan->ifan_what == IFAN_DEPARTURE &&
3086964abefSBrian Somers 		    ifan->ifan_index == ifi->index) {
3096964abefSBrian Somers 			warning("Interface %s is gone, dhclient exiting",
3106964abefSBrian Somers 			    ifi->name);
31147c08596SBrooks Davis 			goto die;
3126964abefSBrian Somers 		}
31347c08596SBrooks Davis 		break;
3142b19b6fcSBrooks Davis 	case RTM_IEEE80211:
3152b19b6fcSBrooks Davis 		ifan = (struct if_announcemsghdr *)rtm;
3162b19b6fcSBrooks Davis 		if (ifan->ifan_index != ifi->index)
3172b19b6fcSBrooks Davis 			break;
3182b19b6fcSBrooks Davis 		switch (ifan->ifan_what) {
3192b19b6fcSBrooks Davis 		case RTM_IEEE80211_ASSOC:
320b35f2511SSam Leffler 		case RTM_IEEE80211_REASSOC:
3212b19b6fcSBrooks Davis 			/*
32261063e47SSam Leffler 			 * Use assoc/reassoc event to kick state machine
32361063e47SSam Leffler 			 * in case we roam.  Otherwise fall back to the
32461063e47SSam Leffler 			 * normal state machine just like a wired network.
3252b19b6fcSBrooks Davis 			 */
32661063e47SSam Leffler 			jev = (struct ieee80211_join_event *) &ifan[1];
32761063e47SSam Leffler 			if (memcmp(curbssid, jev->iev_addr, 6)) {
32861063e47SSam Leffler 				disassoc(ifi);
32961063e47SSam Leffler 				state_reboot(ifi);
33059eac186SBrooks Davis 			}
33161063e47SSam Leffler 			memcpy(curbssid, jev->iev_addr, 6);
3322b19b6fcSBrooks Davis 			break;
3332b19b6fcSBrooks Davis 		}
3342b19b6fcSBrooks Davis 		break;
33547c08596SBrooks Davis 	default:
33647c08596SBrooks Davis 		break;
33747c08596SBrooks Davis 	}
33847c08596SBrooks Davis 	return;
33947c08596SBrooks Davis 
34047c08596SBrooks Davis die:
34147c08596SBrooks Davis 	script_init("FAIL", NULL);
34247c08596SBrooks Davis 	if (ifi->client->alias)
34347c08596SBrooks Davis 		script_write_params("alias_", ifi->client->alias);
34447c08596SBrooks Davis 	script_go();
34523f39c90SDag-Erling Smørgrav 	if (pidfile != NULL)
34623f39c90SDag-Erling Smørgrav 		pidfile_remove(pidfile);
34747c08596SBrooks Davis 	exit(1);
34847c08596SBrooks Davis }
34947c08596SBrooks Davis 
350*cb003dd9SMariusz Zaborski static void
351*cb003dd9SMariusz Zaborski init_casper(void)
352*cb003dd9SMariusz Zaborski {
353*cb003dd9SMariusz Zaborski 	cap_channel_t		*casper;
354*cb003dd9SMariusz Zaborski 
355*cb003dd9SMariusz Zaborski 	casper = cap_init();
356*cb003dd9SMariusz Zaborski 	if (casper == NULL)
357*cb003dd9SMariusz Zaborski 		error("unable to start casper");
358*cb003dd9SMariusz Zaborski 
359*cb003dd9SMariusz Zaborski 	capsyslog = cap_service_open(casper, "system.syslog");
360*cb003dd9SMariusz Zaborski 	cap_close(casper);
361*cb003dd9SMariusz Zaborski 	if (capsyslog == NULL)
362*cb003dd9SMariusz Zaborski 		error("unable to open system.syslog service");
363*cb003dd9SMariusz Zaborski }
364*cb003dd9SMariusz Zaborski 
36547c08596SBrooks Davis int
36647c08596SBrooks Davis main(int argc, char *argv[])
36747c08596SBrooks Davis {
36847c08596SBrooks Davis 	extern char		*__progname;
36947c08596SBrooks Davis 	int			 ch, fd, quiet = 0, i = 0;
37047c08596SBrooks Davis 	int			 pipe_fd[2];
3712b19b6fcSBrooks Davis 	int			 immediate_daemon = 0;
37247c08596SBrooks Davis 	struct passwd		*pw;
37323f39c90SDag-Erling Smørgrav 	pid_t			 otherpid;
3747008be5bSPawel Jakub Dawidek 	cap_rights_t		 rights;
37547c08596SBrooks Davis 
376*cb003dd9SMariusz Zaborski 	init_casper();
377*cb003dd9SMariusz Zaborski 
37847c08596SBrooks Davis 	/* Initially, log errors to stderr as well as to syslogd. */
379*cb003dd9SMariusz Zaborski 	cap_openlog(capsyslog, __progname, LOG_PID | LOG_NDELAY, DHCPD_LOG_FACILITY);
380*cb003dd9SMariusz Zaborski 	cap_setlogmask(capsyslog, LOG_UPTO(LOG_DEBUG));
38147c08596SBrooks Davis 
38223f39c90SDag-Erling Smørgrav 	while ((ch = getopt(argc, argv, "bc:dl:p:qu")) != -1)
38347c08596SBrooks Davis 		switch (ch) {
3842b19b6fcSBrooks Davis 		case 'b':
3852b19b6fcSBrooks Davis 			immediate_daemon = 1;
3862b19b6fcSBrooks Davis 			break;
38747c08596SBrooks Davis 		case 'c':
38847c08596SBrooks Davis 			path_dhclient_conf = optarg;
38947c08596SBrooks Davis 			break;
39047c08596SBrooks Davis 		case 'd':
39147c08596SBrooks Davis 			no_daemon = 1;
39247c08596SBrooks Davis 			break;
39347c08596SBrooks Davis 		case 'l':
39447c08596SBrooks Davis 			path_dhclient_db = optarg;
39547c08596SBrooks Davis 			break;
39623f39c90SDag-Erling Smørgrav 		case 'p':
39723f39c90SDag-Erling Smørgrav 			path_dhclient_pidfile = optarg;
39823f39c90SDag-Erling Smørgrav 			break;
39947c08596SBrooks Davis 		case 'q':
40047c08596SBrooks Davis 			quiet = 1;
40147c08596SBrooks Davis 			break;
40247c08596SBrooks Davis 		case 'u':
40347c08596SBrooks Davis 			unknown_ok = 0;
40447c08596SBrooks Davis 			break;
40547c08596SBrooks Davis 		default:
40647c08596SBrooks Davis 			usage();
40747c08596SBrooks Davis 		}
40847c08596SBrooks Davis 
40947c08596SBrooks Davis 	argc -= optind;
41047c08596SBrooks Davis 	argv += optind;
41147c08596SBrooks Davis 
41247c08596SBrooks Davis 	if (argc != 1)
41347c08596SBrooks Davis 		usage();
41447c08596SBrooks Davis 
41523f39c90SDag-Erling Smørgrav 	if (path_dhclient_pidfile == NULL) {
41623f39c90SDag-Erling Smørgrav 		asprintf(&path_dhclient_pidfile,
41723f39c90SDag-Erling Smørgrav 		    "%sdhclient.%s.pid", _PATH_VARRUN, *argv);
41823f39c90SDag-Erling Smørgrav 		if (path_dhclient_pidfile == NULL)
41923f39c90SDag-Erling Smørgrav 			error("asprintf");
42023f39c90SDag-Erling Smørgrav 	}
42107561ab4SEitan Adler 	pidfile = pidfile_open(path_dhclient_pidfile, 0644, &otherpid);
42223f39c90SDag-Erling Smørgrav 	if (pidfile == NULL) {
42323f39c90SDag-Erling Smørgrav 		if (errno == EEXIST)
42423f39c90SDag-Erling Smørgrav 			error("dhclient already running, pid: %d.", otherpid);
42523f39c90SDag-Erling Smørgrav 		if (errno == EAGAIN)
42623f39c90SDag-Erling Smørgrav 			error("dhclient already running.");
42723f39c90SDag-Erling Smørgrav 		warning("Cannot open or create pidfile: %m");
42823f39c90SDag-Erling Smørgrav 	}
42923f39c90SDag-Erling Smørgrav 
43047c08596SBrooks Davis 	if ((ifi = calloc(1, sizeof(struct interface_info))) == NULL)
43147c08596SBrooks Davis 		error("calloc");
43247c08596SBrooks Davis 	if (strlcpy(ifi->name, argv[0], IFNAMSIZ) >= IFNAMSIZ)
43347c08596SBrooks Davis 		error("Interface name too long");
43447c08596SBrooks Davis 	if (path_dhclient_db == NULL && asprintf(&path_dhclient_db, "%s.%s",
43547c08596SBrooks Davis 	    _PATH_DHCLIENT_DB, ifi->name) == -1)
43647c08596SBrooks Davis 		error("asprintf");
43747c08596SBrooks Davis 
43847c08596SBrooks Davis 	if (quiet)
43947c08596SBrooks Davis 		log_perror = 0;
44047c08596SBrooks Davis 
44147c08596SBrooks Davis 	tzset();
44247c08596SBrooks Davis 	time(&cur_time);
44347c08596SBrooks Davis 
444ba019ae5SPawel Jakub Dawidek 	inaddr_broadcast.s_addr = INADDR_BROADCAST;
44547c08596SBrooks Davis 	inaddr_any.s_addr = INADDR_ANY;
44647c08596SBrooks Davis 
44747c08596SBrooks Davis 	read_client_conf();
44847c08596SBrooks Davis 
44923f39c90SDag-Erling Smørgrav 	/* The next bit is potentially very time-consuming, so write out
45023f39c90SDag-Erling Smørgrav 	   the pidfile right away.  We will write it out again with the
45123f39c90SDag-Erling Smørgrav 	   correct pid after daemonizing. */
45223f39c90SDag-Erling Smørgrav 	if (pidfile != NULL)
45323f39c90SDag-Erling Smørgrav 		pidfile_write(pidfile);
45423f39c90SDag-Erling Smørgrav 
45547c08596SBrooks Davis 	if (!interface_link_status(ifi->name)) {
45647c08596SBrooks Davis 		fprintf(stderr, "%s: no link ...", ifi->name);
45747c08596SBrooks Davis 		fflush(stderr);
45847c08596SBrooks Davis 		sleep(1);
45947c08596SBrooks Davis 		while (!interface_link_status(ifi->name)) {
46047c08596SBrooks Davis 			fprintf(stderr, ".");
46147c08596SBrooks Davis 			fflush(stderr);
46247c08596SBrooks Davis 			if (++i > 10) {
46347c08596SBrooks Davis 				fprintf(stderr, " giving up\n");
46447c08596SBrooks Davis 				exit(1);
46547c08596SBrooks Davis 			}
46647c08596SBrooks Davis 			sleep(1);
46747c08596SBrooks Davis 		}
46847c08596SBrooks Davis 		fprintf(stderr, " got link\n");
46947c08596SBrooks Davis 	}
4700a26f858SJohn Baldwin 	ifi->linkstat = 1;
47147c08596SBrooks Davis 
47247c08596SBrooks Davis 	if ((nullfd = open(_PATH_DEVNULL, O_RDWR, 0)) == -1)
47347c08596SBrooks Davis 		error("cannot open %s: %m", _PATH_DEVNULL);
47447c08596SBrooks Davis 
47547c08596SBrooks Davis 	if ((pw = getpwnam("_dhcp")) == NULL) {
47647c08596SBrooks Davis 		warning("no such user: _dhcp, falling back to \"nobody\"");
47747c08596SBrooks Davis 		if ((pw = getpwnam("nobody")) == NULL)
47847c08596SBrooks Davis 			error("no such user: nobody");
47947c08596SBrooks Davis 	}
48047c08596SBrooks Davis 
4810bbe8306SPawel Jakub Dawidek 	/*
4820bbe8306SPawel Jakub Dawidek 	 * Obtain hostname before entering capability mode - it won't be
4830bbe8306SPawel Jakub Dawidek 	 * possible then, as reading kern.hostname is not permitted.
4840bbe8306SPawel Jakub Dawidek 	 */
4850bbe8306SPawel Jakub Dawidek 	if (gethostname(hostname, sizeof(hostname)) < 0)
4860bbe8306SPawel Jakub Dawidek 		hostname[0] = '\0';
4870bbe8306SPawel Jakub Dawidek 
488374a8a32SPawel Jakub Dawidek 	priv_script_init("PREINIT", NULL);
489374a8a32SPawel Jakub Dawidek 	if (ifi->client->alias)
490374a8a32SPawel Jakub Dawidek 		priv_script_write_params("alias_", ifi->client->alias);
491374a8a32SPawel Jakub Dawidek 	priv_script_go();
492374a8a32SPawel Jakub Dawidek 
493235eb530SPawel Jakub Dawidek 	/* set up the interface */
494235eb530SPawel Jakub Dawidek 	discover_interfaces(ifi);
495235eb530SPawel Jakub Dawidek 
49647c08596SBrooks Davis 	if (pipe(pipe_fd) == -1)
49747c08596SBrooks Davis 		error("pipe");
49847c08596SBrooks Davis 
49947c08596SBrooks Davis 	fork_privchld(pipe_fd[0], pipe_fd[1]);
50047c08596SBrooks Davis 
501235eb530SPawel Jakub Dawidek 	close(ifi->ufdesc);
502235eb530SPawel Jakub Dawidek 	ifi->ufdesc = -1;
503235eb530SPawel Jakub Dawidek 	close(ifi->wfdesc);
504235eb530SPawel Jakub Dawidek 	ifi->wfdesc = -1;
505235eb530SPawel Jakub Dawidek 
50647c08596SBrooks Davis 	close(pipe_fd[0]);
50747c08596SBrooks Davis 	privfd = pipe_fd[1];
5087008be5bSPawel Jakub Dawidek 	cap_rights_init(&rights, CAP_READ, CAP_WRITE);
5097008be5bSPawel Jakub Dawidek 	if (cap_rights_limit(privfd, &rights) < 0 && errno != ENOSYS)
510de2c882fSPawel Jakub Dawidek 		error("can't limit private descriptor: %m");
51147c08596SBrooks Davis 
51247c08596SBrooks Davis 	if ((fd = open(path_dhclient_db, O_RDONLY|O_EXLOCK|O_CREAT, 0)) == -1)
51347c08596SBrooks Davis 		error("can't open and lock %s: %m", path_dhclient_db);
51447c08596SBrooks Davis 	read_client_leases();
51547c08596SBrooks Davis 	rewrite_client_leases();
51647c08596SBrooks Davis 	close(fd);
51747c08596SBrooks Davis 
51847c08596SBrooks Davis 	if ((routefd = socket(PF_ROUTE, SOCK_RAW, 0)) != -1)
51947c08596SBrooks Davis 		add_protocol("AF_ROUTE", routefd, routehandler, ifi);
520e374cef5SPawel Jakub Dawidek 	if (shutdown(routefd, SHUT_WR) < 0)
521e374cef5SPawel Jakub Dawidek 		error("can't shutdown route socket: %m");
522bb7a82acSChristian Brueffer 	cap_rights_init(&rights, CAP_EVENT, CAP_READ);
5237008be5bSPawel Jakub Dawidek 	if (cap_rights_limit(routefd, &rights) < 0 && errno != ENOSYS)
524f73ac8b9SPawel Jakub Dawidek 		error("can't limit route socket: %m");
52547c08596SBrooks Davis 
52647c08596SBrooks Davis 	if (chroot(_PATH_VAREMPTY) == -1)
52747c08596SBrooks Davis 		error("chroot");
52847c08596SBrooks Davis 	if (chdir("/") == -1)
52947c08596SBrooks Davis 		error("chdir(\"/\")");
53047c08596SBrooks Davis 
53147c08596SBrooks Davis 	if (setgroups(1, &pw->pw_gid) ||
53247c08596SBrooks Davis 	    setegid(pw->pw_gid) || setgid(pw->pw_gid) ||
53347c08596SBrooks Davis 	    seteuid(pw->pw_uid) || setuid(pw->pw_uid))
53447c08596SBrooks Davis 		error("can't drop privileges: %m");
53547c08596SBrooks Davis 
53647c08596SBrooks Davis 	endpwent();
53747c08596SBrooks Davis 
53847c08596SBrooks Davis 	setproctitle("%s", ifi->name);
53947c08596SBrooks Davis 
540*cb003dd9SMariusz Zaborski 	if (CASPER_SUPPORT && cap_enter() < 0 && errno != ENOSYS)
5418da93e68SPawel Jakub Dawidek 		error("can't enter capability mode: %m");
5428da93e68SPawel Jakub Dawidek 
5432b19b6fcSBrooks Davis 	if (immediate_daemon)
5442b19b6fcSBrooks Davis 		go_daemon();
5452b19b6fcSBrooks Davis 
54647c08596SBrooks Davis 	ifi->client->state = S_INIT;
54747c08596SBrooks Davis 	state_reboot(ifi);
54847c08596SBrooks Davis 
54947c08596SBrooks Davis 	bootp_packet_handler = do_packet;
55047c08596SBrooks Davis 
55147c08596SBrooks Davis 	dispatch();
55247c08596SBrooks Davis 
55347c08596SBrooks Davis 	/* not reached */
55447c08596SBrooks Davis 	return (0);
55547c08596SBrooks Davis }
55647c08596SBrooks Davis 
55747c08596SBrooks Davis void
55847c08596SBrooks Davis usage(void)
55947c08596SBrooks Davis {
56047c08596SBrooks Davis 	extern char	*__progname;
56147c08596SBrooks Davis 
5623dd3357aSBrian Somers 	fprintf(stderr, "usage: %s [-bdqu] ", __progname);
56347c08596SBrooks Davis 	fprintf(stderr, "[-c conffile] [-l leasefile] interface\n");
56447c08596SBrooks Davis 	exit(1);
56547c08596SBrooks Davis }
56647c08596SBrooks Davis 
56747c08596SBrooks Davis /*
56847c08596SBrooks Davis  * Individual States:
56947c08596SBrooks Davis  *
57047c08596SBrooks Davis  * Each routine is called from the dhclient_state_machine() in one of
57147c08596SBrooks Davis  * these conditions:
57247c08596SBrooks Davis  * -> entering INIT state
57347c08596SBrooks Davis  * -> recvpacket_flag == 0: timeout in this state
57447c08596SBrooks Davis  * -> otherwise: received a packet in this state
57547c08596SBrooks Davis  *
57647c08596SBrooks Davis  * Return conditions as handled by dhclient_state_machine():
57747c08596SBrooks Davis  * Returns 1, sendpacket_flag = 1: send packet, reset timer.
57847c08596SBrooks Davis  * Returns 1, sendpacket_flag = 0: just reset the timer (wait for a milestone).
57947c08596SBrooks Davis  * Returns 0: finish the nap which was interrupted for no good reason.
58047c08596SBrooks Davis  *
58147c08596SBrooks Davis  * Several per-interface variables are used to keep track of the process:
58247c08596SBrooks Davis  *   active_lease: the lease that is being used on the interface
58347c08596SBrooks Davis  *                 (null pointer if not configured yet).
58447c08596SBrooks Davis  *   offered_leases: leases corresponding to DHCPOFFER messages that have
58547c08596SBrooks Davis  *                   been sent to us by DHCP servers.
58647c08596SBrooks Davis  *   acked_leases: leases corresponding to DHCPACK messages that have been
58747c08596SBrooks Davis  *                 sent to us by DHCP servers.
58847c08596SBrooks Davis  *   sendpacket: DHCP packet we're trying to send.
58947c08596SBrooks Davis  *   destination: IP address to send sendpacket to
59047c08596SBrooks Davis  * In addition, there are several relevant per-lease variables.
59147c08596SBrooks Davis  *   T1_expiry, T2_expiry, lease_expiry: lease milestones
59247c08596SBrooks Davis  * In the active lease, these control the process of renewing the lease;
59347c08596SBrooks Davis  * In leases on the acked_leases list, this simply determines when we
59447c08596SBrooks Davis  * can no longer legitimately use the lease.
59547c08596SBrooks Davis  */
59647c08596SBrooks Davis 
59747c08596SBrooks Davis void
59847c08596SBrooks Davis state_reboot(void *ipp)
59947c08596SBrooks Davis {
60047c08596SBrooks Davis 	struct interface_info *ip = ipp;
60147c08596SBrooks Davis 
60247c08596SBrooks Davis 	/* If we don't remember an active lease, go straight to INIT. */
60347c08596SBrooks Davis 	if (!ip->client->active || ip->client->active->is_bootp) {
60447c08596SBrooks Davis 		state_init(ip);
60547c08596SBrooks Davis 		return;
60647c08596SBrooks Davis 	}
60747c08596SBrooks Davis 
60847c08596SBrooks Davis 	/* We are in the rebooting state. */
60947c08596SBrooks Davis 	ip->client->state = S_REBOOTING;
61047c08596SBrooks Davis 
61147c08596SBrooks Davis 	/* make_request doesn't initialize xid because it normally comes
61247c08596SBrooks Davis 	   from the DHCPDISCOVER, but we haven't sent a DHCPDISCOVER,
61347c08596SBrooks Davis 	   so pick an xid now. */
61447c08596SBrooks Davis 	ip->client->xid = arc4random();
61547c08596SBrooks Davis 
61647c08596SBrooks Davis 	/* Make a DHCPREQUEST packet, and set appropriate per-interface
61747c08596SBrooks Davis 	   flags. */
61847c08596SBrooks Davis 	make_request(ip, ip->client->active);
61947c08596SBrooks Davis 	ip->client->destination = iaddr_broadcast;
62047c08596SBrooks Davis 	ip->client->first_sending = cur_time;
62147c08596SBrooks Davis 	ip->client->interval = ip->client->config->initial_interval;
62247c08596SBrooks Davis 
62347c08596SBrooks Davis 	/* Zap the medium list... */
62447c08596SBrooks Davis 	ip->client->medium = NULL;
62547c08596SBrooks Davis 
62647c08596SBrooks Davis 	/* Send out the first DHCPREQUEST packet. */
62747c08596SBrooks Davis 	send_request(ip);
62847c08596SBrooks Davis }
62947c08596SBrooks Davis 
63047c08596SBrooks Davis /*
63147c08596SBrooks Davis  * Called when a lease has completely expired and we've
63247c08596SBrooks Davis  * been unable to renew it.
63347c08596SBrooks Davis  */
63447c08596SBrooks Davis void
63547c08596SBrooks Davis state_init(void *ipp)
63647c08596SBrooks Davis {
63747c08596SBrooks Davis 	struct interface_info *ip = ipp;
63847c08596SBrooks Davis 
63947c08596SBrooks Davis 	ASSERT_STATE(state, S_INIT);
64047c08596SBrooks Davis 
64147c08596SBrooks Davis 	/* Make a DHCPDISCOVER packet, and set appropriate per-interface
64247c08596SBrooks Davis 	   flags. */
64347c08596SBrooks Davis 	make_discover(ip, ip->client->active);
64447c08596SBrooks Davis 	ip->client->xid = ip->client->packet.xid;
64547c08596SBrooks Davis 	ip->client->destination = iaddr_broadcast;
64647c08596SBrooks Davis 	ip->client->state = S_SELECTING;
64747c08596SBrooks Davis 	ip->client->first_sending = cur_time;
64847c08596SBrooks Davis 	ip->client->interval = ip->client->config->initial_interval;
64947c08596SBrooks Davis 
65047c08596SBrooks Davis 	/* Add an immediate timeout to cause the first DHCPDISCOVER packet
65147c08596SBrooks Davis 	   to go out. */
65247c08596SBrooks Davis 	send_discover(ip);
65347c08596SBrooks Davis }
65447c08596SBrooks Davis 
65547c08596SBrooks Davis /*
65647c08596SBrooks Davis  * state_selecting is called when one or more DHCPOFFER packets
65747c08596SBrooks Davis  * have been received and a configurable period of time has passed.
65847c08596SBrooks Davis  */
65947c08596SBrooks Davis void
66047c08596SBrooks Davis state_selecting(void *ipp)
66147c08596SBrooks Davis {
66247c08596SBrooks Davis 	struct interface_info *ip = ipp;
66347c08596SBrooks Davis 	struct client_lease *lp, *next, *picked;
66447c08596SBrooks Davis 
66547c08596SBrooks Davis 	ASSERT_STATE(state, S_SELECTING);
66647c08596SBrooks Davis 
66747c08596SBrooks Davis 	/* Cancel state_selecting and send_discover timeouts, since either
66847c08596SBrooks Davis 	   one could have got us here. */
66947c08596SBrooks Davis 	cancel_timeout(state_selecting, ip);
67047c08596SBrooks Davis 	cancel_timeout(send_discover, ip);
67147c08596SBrooks Davis 
67247c08596SBrooks Davis 	/* We have received one or more DHCPOFFER packets.   Currently,
67347c08596SBrooks Davis 	   the only criterion by which we judge leases is whether or
67447c08596SBrooks Davis 	   not we get a response when we arp for them. */
67547c08596SBrooks Davis 	picked = NULL;
67647c08596SBrooks Davis 	for (lp = ip->client->offered_leases; lp; lp = next) {
67747c08596SBrooks Davis 		next = lp->next;
67847c08596SBrooks Davis 
67947c08596SBrooks Davis 		/* Check to see if we got an ARPREPLY for the address
68047c08596SBrooks Davis 		   in this particular lease. */
68147c08596SBrooks Davis 		if (!picked) {
68247c08596SBrooks Davis 			script_init("ARPCHECK", lp->medium);
68347c08596SBrooks Davis 			script_write_params("check_", lp);
68447c08596SBrooks Davis 
68547c08596SBrooks Davis 			/* If the ARPCHECK code detects another
68647c08596SBrooks Davis 			   machine using the offered address, it exits
68747c08596SBrooks Davis 			   nonzero.  We need to send a DHCPDECLINE and
68847c08596SBrooks Davis 			   toss the lease. */
68947c08596SBrooks Davis 			if (script_go()) {
69047c08596SBrooks Davis 				make_decline(ip, lp);
69147c08596SBrooks Davis 				send_decline(ip);
69247c08596SBrooks Davis 				goto freeit;
69347c08596SBrooks Davis 			}
69447c08596SBrooks Davis 			picked = lp;
69547c08596SBrooks Davis 			picked->next = NULL;
69647c08596SBrooks Davis 		} else {
69747c08596SBrooks Davis freeit:
69847c08596SBrooks Davis 			free_client_lease(lp);
69947c08596SBrooks Davis 		}
70047c08596SBrooks Davis 	}
70147c08596SBrooks Davis 	ip->client->offered_leases = NULL;
70247c08596SBrooks Davis 
70347c08596SBrooks Davis 	/* If we just tossed all the leases we were offered, go back
70447c08596SBrooks Davis 	   to square one. */
70547c08596SBrooks Davis 	if (!picked) {
70647c08596SBrooks Davis 		ip->client->state = S_INIT;
70747c08596SBrooks Davis 		state_init(ip);
70847c08596SBrooks Davis 		return;
70947c08596SBrooks Davis 	}
71047c08596SBrooks Davis 
71147c08596SBrooks Davis 	/* If it was a BOOTREPLY, we can just take the address right now. */
71247c08596SBrooks Davis 	if (!picked->options[DHO_DHCP_MESSAGE_TYPE].len) {
71347c08596SBrooks Davis 		ip->client->new = picked;
71447c08596SBrooks Davis 
71547c08596SBrooks Davis 		/* Make up some lease expiry times
71647c08596SBrooks Davis 		   XXX these should be configurable. */
71747c08596SBrooks Davis 		ip->client->new->expiry = cur_time + 12000;
71847c08596SBrooks Davis 		ip->client->new->renewal += cur_time + 8000;
71947c08596SBrooks Davis 		ip->client->new->rebind += cur_time + 10000;
72047c08596SBrooks Davis 
72147c08596SBrooks Davis 		ip->client->state = S_REQUESTING;
72247c08596SBrooks Davis 
72347c08596SBrooks Davis 		/* Bind to the address we received. */
72447c08596SBrooks Davis 		bind_lease(ip);
72547c08596SBrooks Davis 		return;
72647c08596SBrooks Davis 	}
72747c08596SBrooks Davis 
72847c08596SBrooks Davis 	/* Go to the REQUESTING state. */
72947c08596SBrooks Davis 	ip->client->destination = iaddr_broadcast;
73047c08596SBrooks Davis 	ip->client->state = S_REQUESTING;
73147c08596SBrooks Davis 	ip->client->first_sending = cur_time;
73247c08596SBrooks Davis 	ip->client->interval = ip->client->config->initial_interval;
73347c08596SBrooks Davis 
73447c08596SBrooks Davis 	/* Make a DHCPREQUEST packet from the lease we picked. */
73547c08596SBrooks Davis 	make_request(ip, picked);
73647c08596SBrooks Davis 	ip->client->xid = ip->client->packet.xid;
73747c08596SBrooks Davis 
73847c08596SBrooks Davis 	/* Toss the lease we picked - we'll get it back in a DHCPACK. */
73947c08596SBrooks Davis 	free_client_lease(picked);
74047c08596SBrooks Davis 
74147c08596SBrooks Davis 	/* Add an immediate timeout to send the first DHCPREQUEST packet. */
74247c08596SBrooks Davis 	send_request(ip);
74347c08596SBrooks Davis }
74447c08596SBrooks Davis 
74547c08596SBrooks Davis /* state_requesting is called when we receive a DHCPACK message after
74647c08596SBrooks Davis    having sent out one or more DHCPREQUEST packets. */
74747c08596SBrooks Davis 
74847c08596SBrooks Davis void
74947c08596SBrooks Davis dhcpack(struct packet *packet)
75047c08596SBrooks Davis {
75147c08596SBrooks Davis 	struct interface_info *ip = packet->interface;
75247c08596SBrooks Davis 	struct client_lease *lease;
75347c08596SBrooks Davis 
75447c08596SBrooks Davis 	/* If we're not receptive to an offer right now, or if the offer
75547c08596SBrooks Davis 	   has an unrecognizable transaction id, then just drop it. */
75647c08596SBrooks Davis 	if (packet->interface->client->xid != packet->raw->xid ||
75747c08596SBrooks Davis 	    (packet->interface->hw_address.hlen != packet->raw->hlen) ||
75847c08596SBrooks Davis 	    (memcmp(packet->interface->hw_address.haddr,
75947c08596SBrooks Davis 	    packet->raw->chaddr, packet->raw->hlen)))
76047c08596SBrooks Davis 		return;
76147c08596SBrooks Davis 
76247c08596SBrooks Davis 	if (ip->client->state != S_REBOOTING &&
76347c08596SBrooks Davis 	    ip->client->state != S_REQUESTING &&
76447c08596SBrooks Davis 	    ip->client->state != S_RENEWING &&
76547c08596SBrooks Davis 	    ip->client->state != S_REBINDING)
76647c08596SBrooks Davis 		return;
76747c08596SBrooks Davis 
76847c08596SBrooks Davis 	note("DHCPACK from %s", piaddr(packet->client_addr));
76947c08596SBrooks Davis 
77047c08596SBrooks Davis 	lease = packet_to_lease(packet);
77147c08596SBrooks Davis 	if (!lease) {
77247c08596SBrooks Davis 		note("packet_to_lease failed.");
77347c08596SBrooks Davis 		return;
77447c08596SBrooks Davis 	}
77547c08596SBrooks Davis 
77647c08596SBrooks Davis 	ip->client->new = lease;
77747c08596SBrooks Davis 
77847c08596SBrooks Davis 	/* Stop resending DHCPREQUEST. */
77947c08596SBrooks Davis 	cancel_timeout(send_request, ip);
78047c08596SBrooks Davis 
78147c08596SBrooks Davis 	/* Figure out the lease time. */
7821fb4382cSNick Hibma         if (ip->client->config->default_actions[DHO_DHCP_LEASE_TIME] ==
7831fb4382cSNick Hibma             ACTION_SUPERSEDE)
7841fb4382cSNick Hibma 		ip->client->new->expiry = getULong(
7851fb4382cSNick Hibma 		    ip->client->config->defaults[DHO_DHCP_LEASE_TIME].data);
7861fb4382cSNick Hibma         else if (ip->client->new->options[DHO_DHCP_LEASE_TIME].data)
78747c08596SBrooks Davis 		ip->client->new->expiry = getULong(
78847c08596SBrooks Davis 		    ip->client->new->options[DHO_DHCP_LEASE_TIME].data);
78947c08596SBrooks Davis 	else
79047c08596SBrooks Davis 		ip->client->new->expiry = default_lease_time;
79147c08596SBrooks Davis 	/* A number that looks negative here is really just very large,
792223c44aeSNick Hibma 	   because the lease expiry offset is unsigned. Also make sure that
793223c44aeSNick Hibma            the addition of cur_time below does not overflow (a 32 bit) time_t. */
794223c44aeSNick Hibma 	if (ip->client->new->expiry < 0 ||
795223c44aeSNick Hibma             ip->client->new->expiry > TIME_MAX - cur_time)
796223c44aeSNick Hibma 		ip->client->new->expiry = TIME_MAX - cur_time;
79747c08596SBrooks Davis 	/* XXX should be fixed by resetting the client state */
79847c08596SBrooks Davis 	if (ip->client->new->expiry < 60)
79947c08596SBrooks Davis 		ip->client->new->expiry = 60;
80047c08596SBrooks Davis 
801c13fa60cSNick Hibma         /* Unless overridden in the config, take the server-provided renewal
802223c44aeSNick Hibma          * time if there is one. Otherwise figure it out according to the spec.
803c13fa60cSNick Hibma          * Also make sure the renewal time does not exceed the expiry time.
804c13fa60cSNick Hibma          */
805c13fa60cSNick Hibma         if (ip->client->config->default_actions[DHO_DHCP_RENEWAL_TIME] ==
806c13fa60cSNick Hibma             ACTION_SUPERSEDE)
807c13fa60cSNick Hibma 		ip->client->new->renewal = getULong(
808c13fa60cSNick Hibma 		    ip->client->config->defaults[DHO_DHCP_RENEWAL_TIME].data);
809c13fa60cSNick Hibma         else if (ip->client->new->options[DHO_DHCP_RENEWAL_TIME].len)
81047c08596SBrooks Davis 		ip->client->new->renewal = getULong(
81147c08596SBrooks Davis 		    ip->client->new->options[DHO_DHCP_RENEWAL_TIME].data);
81247c08596SBrooks Davis 	else
81347c08596SBrooks Davis 		ip->client->new->renewal = ip->client->new->expiry / 2;
814223c44aeSNick Hibma         if (ip->client->new->renewal < 0 ||
815223c44aeSNick Hibma             ip->client->new->renewal > ip->client->new->expiry / 2)
816c13fa60cSNick Hibma                 ip->client->new->renewal = ip->client->new->expiry / 2;
81747c08596SBrooks Davis 
81847c08596SBrooks Davis 	/* Same deal with the rebind time. */
819c13fa60cSNick Hibma         if (ip->client->config->default_actions[DHO_DHCP_REBINDING_TIME] ==
820c13fa60cSNick Hibma             ACTION_SUPERSEDE)
821c13fa60cSNick Hibma 		ip->client->new->rebind = getULong(
822c13fa60cSNick Hibma 		    ip->client->config->defaults[DHO_DHCP_REBINDING_TIME].data);
823c13fa60cSNick Hibma         else if (ip->client->new->options[DHO_DHCP_REBINDING_TIME].len)
82447c08596SBrooks Davis 		ip->client->new->rebind = getULong(
82547c08596SBrooks Davis 		    ip->client->new->options[DHO_DHCP_REBINDING_TIME].data);
82647c08596SBrooks Davis 	else
827223c44aeSNick Hibma 		ip->client->new->rebind = ip->client->new->renewal / 4 * 7;
828223c44aeSNick Hibma 	if (ip->client->new->rebind < 0 ||
829223c44aeSNick Hibma             ip->client->new->rebind > ip->client->new->renewal / 4 * 7)
830223c44aeSNick Hibma                 ip->client->new->rebind = ip->client->new->renewal / 4 * 7;
83147c08596SBrooks Davis 
832223c44aeSNick Hibma         /* Convert the time offsets into seconds-since-the-epoch */
83347c08596SBrooks Davis         ip->client->new->expiry += cur_time;
83447c08596SBrooks Davis         ip->client->new->renewal += cur_time;
83547c08596SBrooks Davis         ip->client->new->rebind += cur_time;
83647c08596SBrooks Davis 
83747c08596SBrooks Davis 	bind_lease(ip);
83847c08596SBrooks Davis }
83947c08596SBrooks Davis 
84047c08596SBrooks Davis void
84147c08596SBrooks Davis bind_lease(struct interface_info *ip)
84247c08596SBrooks Davis {
843387016a5SConrad Meyer 	struct option_data *opt;
844387016a5SConrad Meyer 
84547c08596SBrooks Davis 	/* Remember the medium. */
84647c08596SBrooks Davis 	ip->client->new->medium = ip->client->medium;
84747c08596SBrooks Davis 
848387016a5SConrad Meyer 	opt = &ip->client->new->options[DHO_INTERFACE_MTU];
849387016a5SConrad Meyer 	if (opt->len == sizeof(u_int16_t)) {
850387016a5SConrad Meyer 		u_int16_t mtu = be16dec(opt->data);
851387016a5SConrad Meyer 		if (mtu < MIN_MTU)
852387016a5SConrad Meyer 			warning("mtu size %u < %d: ignored", (unsigned)mtu, MIN_MTU);
853387016a5SConrad Meyer 		else
854387016a5SConrad Meyer 			interface_set_mtu_unpriv(privfd, mtu);
855387016a5SConrad Meyer 	}
856387016a5SConrad Meyer 
85747c08596SBrooks Davis 	/* Write out the new lease. */
85847c08596SBrooks Davis 	write_client_lease(ip, ip->client->new, 0);
85947c08596SBrooks Davis 
86047c08596SBrooks Davis 	/* Run the client script with the new parameters. */
86147c08596SBrooks Davis 	script_init((ip->client->state == S_REQUESTING ? "BOUND" :
86247c08596SBrooks Davis 	    (ip->client->state == S_RENEWING ? "RENEW" :
86347c08596SBrooks Davis 	    (ip->client->state == S_REBOOTING ? "REBOOT" : "REBIND"))),
86447c08596SBrooks Davis 	    ip->client->new->medium);
86547c08596SBrooks Davis 	if (ip->client->active && ip->client->state != S_REBOOTING)
86647c08596SBrooks Davis 		script_write_params("old_", ip->client->active);
86747c08596SBrooks Davis 	script_write_params("new_", ip->client->new);
86847c08596SBrooks Davis 	if (ip->client->alias)
86947c08596SBrooks Davis 		script_write_params("alias_", ip->client->alias);
87047c08596SBrooks Davis 	script_go();
87147c08596SBrooks Davis 
87247c08596SBrooks Davis 	/* Replace the old active lease with the new one. */
87347c08596SBrooks Davis 	if (ip->client->active)
87447c08596SBrooks Davis 		free_client_lease(ip->client->active);
87547c08596SBrooks Davis 	ip->client->active = ip->client->new;
87647c08596SBrooks Davis 	ip->client->new = NULL;
87747c08596SBrooks Davis 
87847c08596SBrooks Davis 	/* Set up a timeout to start the renewal process. */
87947c08596SBrooks Davis 	add_timeout(ip->client->active->renewal, state_bound, ip);
88047c08596SBrooks Davis 
88147c08596SBrooks Davis 	note("bound to %s -- renewal in %d seconds.",
88247c08596SBrooks Davis 	    piaddr(ip->client->active->address),
8839c13d9cdSBrooks Davis 	    (int)(ip->client->active->renewal - cur_time));
88447c08596SBrooks Davis 	ip->client->state = S_BOUND;
88547c08596SBrooks Davis 	reinitialize_interfaces();
88647c08596SBrooks Davis 	go_daemon();
88747c08596SBrooks Davis }
88847c08596SBrooks Davis 
88947c08596SBrooks Davis /*
89047c08596SBrooks Davis  * state_bound is called when we've successfully bound to a particular
89147c08596SBrooks Davis  * lease, but the renewal time on that lease has expired.   We are
89247c08596SBrooks Davis  * expected to unicast a DHCPREQUEST to the server that gave us our
89347c08596SBrooks Davis  * original lease.
89447c08596SBrooks Davis  */
89547c08596SBrooks Davis void
89647c08596SBrooks Davis state_bound(void *ipp)
89747c08596SBrooks Davis {
89847c08596SBrooks Davis 	struct interface_info *ip = ipp;
89947c08596SBrooks Davis 
90047c08596SBrooks Davis 	ASSERT_STATE(state, S_BOUND);
90147c08596SBrooks Davis 
90247c08596SBrooks Davis 	/* T1 has expired. */
90347c08596SBrooks Davis 	make_request(ip, ip->client->active);
90447c08596SBrooks Davis 	ip->client->xid = ip->client->packet.xid;
90547c08596SBrooks Davis 
90647c08596SBrooks Davis 	if (ip->client->active->options[DHO_DHCP_SERVER_IDENTIFIER].len == 4) {
90747c08596SBrooks Davis 		memcpy(ip->client->destination.iabuf, ip->client->active->
90847c08596SBrooks Davis 		    options[DHO_DHCP_SERVER_IDENTIFIER].data, 4);
90947c08596SBrooks Davis 		ip->client->destination.len = 4;
91047c08596SBrooks Davis 	} else
91147c08596SBrooks Davis 		ip->client->destination = iaddr_broadcast;
91247c08596SBrooks Davis 
91347c08596SBrooks Davis 	ip->client->first_sending = cur_time;
91447c08596SBrooks Davis 	ip->client->interval = ip->client->config->initial_interval;
91547c08596SBrooks Davis 	ip->client->state = S_RENEWING;
91647c08596SBrooks Davis 
91747c08596SBrooks Davis 	/* Send the first packet immediately. */
91847c08596SBrooks Davis 	send_request(ip);
91947c08596SBrooks Davis }
92047c08596SBrooks Davis 
92147c08596SBrooks Davis void
92247c08596SBrooks Davis bootp(struct packet *packet)
92347c08596SBrooks Davis {
92447c08596SBrooks Davis 	struct iaddrlist *ap;
92547c08596SBrooks Davis 
92647c08596SBrooks Davis 	if (packet->raw->op != BOOTREPLY)
92747c08596SBrooks Davis 		return;
92847c08596SBrooks Davis 
92947c08596SBrooks Davis 	/* If there's a reject list, make sure this packet's sender isn't
93047c08596SBrooks Davis 	   on it. */
93147c08596SBrooks Davis 	for (ap = packet->interface->client->config->reject_list;
93247c08596SBrooks Davis 	    ap; ap = ap->next) {
93347c08596SBrooks Davis 		if (addr_eq(packet->client_addr, ap->addr)) {
93447c08596SBrooks Davis 			note("BOOTREPLY from %s rejected.", piaddr(ap->addr));
93547c08596SBrooks Davis 			return;
93647c08596SBrooks Davis 		}
93747c08596SBrooks Davis 	}
93847c08596SBrooks Davis 	dhcpoffer(packet);
93947c08596SBrooks Davis }
94047c08596SBrooks Davis 
94147c08596SBrooks Davis void
94247c08596SBrooks Davis dhcp(struct packet *packet)
94347c08596SBrooks Davis {
94447c08596SBrooks Davis 	struct iaddrlist *ap;
94547c08596SBrooks Davis 	void (*handler)(struct packet *);
94647c08596SBrooks Davis 	char *type;
94747c08596SBrooks Davis 
94847c08596SBrooks Davis 	switch (packet->packet_type) {
94947c08596SBrooks Davis 	case DHCPOFFER:
95047c08596SBrooks Davis 		handler = dhcpoffer;
95147c08596SBrooks Davis 		type = "DHCPOFFER";
95247c08596SBrooks Davis 		break;
95347c08596SBrooks Davis 	case DHCPNAK:
95447c08596SBrooks Davis 		handler = dhcpnak;
95547c08596SBrooks Davis 		type = "DHCPNACK";
95647c08596SBrooks Davis 		break;
95747c08596SBrooks Davis 	case DHCPACK:
95847c08596SBrooks Davis 		handler = dhcpack;
95947c08596SBrooks Davis 		type = "DHCPACK";
96047c08596SBrooks Davis 		break;
96147c08596SBrooks Davis 	default:
96247c08596SBrooks Davis 		return;
96347c08596SBrooks Davis 	}
96447c08596SBrooks Davis 
96547c08596SBrooks Davis 	/* If there's a reject list, make sure this packet's sender isn't
96647c08596SBrooks Davis 	   on it. */
96747c08596SBrooks Davis 	for (ap = packet->interface->client->config->reject_list;
96847c08596SBrooks Davis 	    ap; ap = ap->next) {
96947c08596SBrooks Davis 		if (addr_eq(packet->client_addr, ap->addr)) {
97047c08596SBrooks Davis 			note("%s from %s rejected.", type, piaddr(ap->addr));
97147c08596SBrooks Davis 			return;
97247c08596SBrooks Davis 		}
97347c08596SBrooks Davis 	}
97447c08596SBrooks Davis 	(*handler)(packet);
97547c08596SBrooks Davis }
97647c08596SBrooks Davis 
97747c08596SBrooks Davis void
97847c08596SBrooks Davis dhcpoffer(struct packet *packet)
97947c08596SBrooks Davis {
98047c08596SBrooks Davis 	struct interface_info *ip = packet->interface;
98147c08596SBrooks Davis 	struct client_lease *lease, *lp;
98247c08596SBrooks Davis 	int i;
98347c08596SBrooks Davis 	int arp_timeout_needed, stop_selecting;
98447c08596SBrooks Davis 	char *name = packet->options[DHO_DHCP_MESSAGE_TYPE].len ?
98547c08596SBrooks Davis 	    "DHCPOFFER" : "BOOTREPLY";
98647c08596SBrooks Davis 
98747c08596SBrooks Davis 	/* If we're not receptive to an offer right now, or if the offer
98847c08596SBrooks Davis 	   has an unrecognizable transaction id, then just drop it. */
98947c08596SBrooks Davis 	if (ip->client->state != S_SELECTING ||
99047c08596SBrooks Davis 	    packet->interface->client->xid != packet->raw->xid ||
99147c08596SBrooks Davis 	    (packet->interface->hw_address.hlen != packet->raw->hlen) ||
99247c08596SBrooks Davis 	    (memcmp(packet->interface->hw_address.haddr,
99347c08596SBrooks Davis 	    packet->raw->chaddr, packet->raw->hlen)))
99447c08596SBrooks Davis 		return;
99547c08596SBrooks Davis 
99647c08596SBrooks Davis 	note("%s from %s", name, piaddr(packet->client_addr));
99747c08596SBrooks Davis 
99847c08596SBrooks Davis 
99947c08596SBrooks Davis 	/* If this lease doesn't supply the minimum required parameters,
100047c08596SBrooks Davis 	   blow it off. */
100147c08596SBrooks Davis 	for (i = 0; ip->client->config->required_options[i]; i++) {
100247c08596SBrooks Davis 		if (!packet->options[ip->client->config->
100347c08596SBrooks Davis 		    required_options[i]].len) {
100447c08596SBrooks Davis 			note("%s isn't satisfactory.", name);
100547c08596SBrooks Davis 			return;
100647c08596SBrooks Davis 		}
100747c08596SBrooks Davis 	}
100847c08596SBrooks Davis 
100947c08596SBrooks Davis 	/* If we've already seen this lease, don't record it again. */
101047c08596SBrooks Davis 	for (lease = ip->client->offered_leases;
101147c08596SBrooks Davis 	    lease; lease = lease->next) {
101247c08596SBrooks Davis 		if (lease->address.len == sizeof(packet->raw->yiaddr) &&
101347c08596SBrooks Davis 		    !memcmp(lease->address.iabuf,
101447c08596SBrooks Davis 		    &packet->raw->yiaddr, lease->address.len)) {
101547c08596SBrooks Davis 			debug("%s already seen.", name);
101647c08596SBrooks Davis 			return;
101747c08596SBrooks Davis 		}
101847c08596SBrooks Davis 	}
101947c08596SBrooks Davis 
102047c08596SBrooks Davis 	lease = packet_to_lease(packet);
102147c08596SBrooks Davis 	if (!lease) {
102247c08596SBrooks Davis 		note("packet_to_lease failed.");
102347c08596SBrooks Davis 		return;
102447c08596SBrooks Davis 	}
102547c08596SBrooks Davis 
102647c08596SBrooks Davis 	/* If this lease was acquired through a BOOTREPLY, record that
102747c08596SBrooks Davis 	   fact. */
102847c08596SBrooks Davis 	if (!packet->options[DHO_DHCP_MESSAGE_TYPE].len)
102947c08596SBrooks Davis 		lease->is_bootp = 1;
103047c08596SBrooks Davis 
103147c08596SBrooks Davis 	/* Record the medium under which this lease was offered. */
103247c08596SBrooks Davis 	lease->medium = ip->client->medium;
103347c08596SBrooks Davis 
103447c08596SBrooks Davis 	/* Send out an ARP Request for the offered IP address. */
103547c08596SBrooks Davis 	script_init("ARPSEND", lease->medium);
103647c08596SBrooks Davis 	script_write_params("check_", lease);
103747c08596SBrooks Davis 	/* If the script can't send an ARP request without waiting,
103847c08596SBrooks Davis 	   we'll be waiting when we do the ARPCHECK, so don't wait now. */
103947c08596SBrooks Davis 	if (script_go())
104047c08596SBrooks Davis 		arp_timeout_needed = 0;
104147c08596SBrooks Davis 	else
104247c08596SBrooks Davis 		arp_timeout_needed = 2;
104347c08596SBrooks Davis 
104447c08596SBrooks Davis 	/* Figure out when we're supposed to stop selecting. */
104547c08596SBrooks Davis 	stop_selecting =
104647c08596SBrooks Davis 	    ip->client->first_sending + ip->client->config->select_interval;
104747c08596SBrooks Davis 
104847c08596SBrooks Davis 	/* If this is the lease we asked for, put it at the head of the
104947c08596SBrooks Davis 	   list, and don't mess with the arp request timeout. */
105047c08596SBrooks Davis 	if (lease->address.len == ip->client->requested_address.len &&
105147c08596SBrooks Davis 	    !memcmp(lease->address.iabuf,
105247c08596SBrooks Davis 	    ip->client->requested_address.iabuf,
105347c08596SBrooks Davis 	    ip->client->requested_address.len)) {
105447c08596SBrooks Davis 		lease->next = ip->client->offered_leases;
105547c08596SBrooks Davis 		ip->client->offered_leases = lease;
105647c08596SBrooks Davis 	} else {
105747c08596SBrooks Davis 		/* If we already have an offer, and arping for this
105847c08596SBrooks Davis 		   offer would take us past the selection timeout,
105947c08596SBrooks Davis 		   then don't extend the timeout - just hope for the
106047c08596SBrooks Davis 		   best. */
106147c08596SBrooks Davis 		if (ip->client->offered_leases &&
106247c08596SBrooks Davis 		    (cur_time + arp_timeout_needed) > stop_selecting)
106347c08596SBrooks Davis 			arp_timeout_needed = 0;
106447c08596SBrooks Davis 
106547c08596SBrooks Davis 		/* Put the lease at the end of the list. */
106647c08596SBrooks Davis 		lease->next = NULL;
106747c08596SBrooks Davis 		if (!ip->client->offered_leases)
106847c08596SBrooks Davis 			ip->client->offered_leases = lease;
106947c08596SBrooks Davis 		else {
107047c08596SBrooks Davis 			for (lp = ip->client->offered_leases; lp->next;
107147c08596SBrooks Davis 			    lp = lp->next)
107247c08596SBrooks Davis 				;	/* nothing */
107347c08596SBrooks Davis 			lp->next = lease;
107447c08596SBrooks Davis 		}
107547c08596SBrooks Davis 	}
107647c08596SBrooks Davis 
107747c08596SBrooks Davis 	/* If we're supposed to stop selecting before we've had time
107847c08596SBrooks Davis 	   to wait for the ARPREPLY, add some delay to wait for
107947c08596SBrooks Davis 	   the ARPREPLY. */
108047c08596SBrooks Davis 	if (stop_selecting - cur_time < arp_timeout_needed)
108147c08596SBrooks Davis 		stop_selecting = cur_time + arp_timeout_needed;
108247c08596SBrooks Davis 
108347c08596SBrooks Davis 	/* If the selecting interval has expired, go immediately to
108447c08596SBrooks Davis 	   state_selecting().  Otherwise, time out into
108547c08596SBrooks Davis 	   state_selecting at the select interval. */
108647c08596SBrooks Davis 	if (stop_selecting <= 0)
108747c08596SBrooks Davis 		state_selecting(ip);
108847c08596SBrooks Davis 	else {
108947c08596SBrooks Davis 		add_timeout(stop_selecting, state_selecting, ip);
109047c08596SBrooks Davis 		cancel_timeout(send_discover, ip);
109147c08596SBrooks Davis 	}
109247c08596SBrooks Davis }
109347c08596SBrooks Davis 
109447c08596SBrooks Davis /* Allocate a client_lease structure and initialize it from the parameters
109547c08596SBrooks Davis    in the specified packet. */
109647c08596SBrooks Davis 
109747c08596SBrooks Davis struct client_lease *
109847c08596SBrooks Davis packet_to_lease(struct packet *packet)
109947c08596SBrooks Davis {
110047c08596SBrooks Davis 	struct client_lease *lease;
110147c08596SBrooks Davis 	int i;
110247c08596SBrooks Davis 
110347c08596SBrooks Davis 	lease = malloc(sizeof(struct client_lease));
110447c08596SBrooks Davis 
110547c08596SBrooks Davis 	if (!lease) {
110647c08596SBrooks Davis 		warning("dhcpoffer: no memory to record lease.");
110747c08596SBrooks Davis 		return (NULL);
110847c08596SBrooks Davis 	}
110947c08596SBrooks Davis 
111047c08596SBrooks Davis 	memset(lease, 0, sizeof(*lease));
111147c08596SBrooks Davis 
111247c08596SBrooks Davis 	/* Copy the lease options. */
111347c08596SBrooks Davis 	for (i = 0; i < 256; i++) {
111447c08596SBrooks Davis 		if (packet->options[i].len) {
111547c08596SBrooks Davis 			lease->options[i].data =
111647c08596SBrooks Davis 			    malloc(packet->options[i].len + 1);
111747c08596SBrooks Davis 			if (!lease->options[i].data) {
111847c08596SBrooks Davis 				warning("dhcpoffer: no memory for option %d", i);
111947c08596SBrooks Davis 				free_client_lease(lease);
112047c08596SBrooks Davis 				return (NULL);
112147c08596SBrooks Davis 			} else {
112247c08596SBrooks Davis 				memcpy(lease->options[i].data,
112347c08596SBrooks Davis 				    packet->options[i].data,
112447c08596SBrooks Davis 				    packet->options[i].len);
112547c08596SBrooks Davis 				lease->options[i].len =
112647c08596SBrooks Davis 				    packet->options[i].len;
112747c08596SBrooks Davis 				lease->options[i].data[lease->options[i].len] =
112847c08596SBrooks Davis 				    0;
112947c08596SBrooks Davis 			}
113047c08596SBrooks Davis 			if (!check_option(lease,i)) {
113147c08596SBrooks Davis 				/* ignore a bogus lease offer */
113247c08596SBrooks Davis 				warning("Invalid lease option - ignoring offer");
113347c08596SBrooks Davis 				free_client_lease(lease);
113447c08596SBrooks Davis 				return (NULL);
113547c08596SBrooks Davis 			}
113647c08596SBrooks Davis 		}
113747c08596SBrooks Davis 	}
113847c08596SBrooks Davis 
113947c08596SBrooks Davis 	lease->address.len = sizeof(packet->raw->yiaddr);
114047c08596SBrooks Davis 	memcpy(lease->address.iabuf, &packet->raw->yiaddr, lease->address.len);
114147c08596SBrooks Davis 
1142d32438c3SBruce M Simpson 	lease->nextserver.len = sizeof(packet->raw->siaddr);
1143d32438c3SBruce M Simpson 	memcpy(lease->nextserver.iabuf, &packet->raw->siaddr, lease->nextserver.len);
1144d32438c3SBruce M Simpson 
1145acccb9aaSBrooks Davis 	/* If the server name was filled out, copy it.
1146acccb9aaSBrooks Davis 	   Do not attempt to validate the server name as a host name.
1147acccb9aaSBrooks Davis 	   RFC 2131 merely states that sname is NUL-terminated (which do
1148acccb9aaSBrooks Davis 	   do not assume) and that it is the server's host name.  Since
1149acccb9aaSBrooks Davis 	   the ISC client and server allow arbitrary characters, we do
1150acccb9aaSBrooks Davis 	   as well. */
115147c08596SBrooks Davis 	if ((!packet->options[DHO_DHCP_OPTION_OVERLOAD].len ||
115247c08596SBrooks Davis 	    !(packet->options[DHO_DHCP_OPTION_OVERLOAD].data[0] & 2)) &&
115347c08596SBrooks Davis 	    packet->raw->sname[0]) {
115447c08596SBrooks Davis 		lease->server_name = malloc(DHCP_SNAME_LEN + 1);
115547c08596SBrooks Davis 		if (!lease->server_name) {
115647c08596SBrooks Davis 			warning("dhcpoffer: no memory for server name.");
115747c08596SBrooks Davis 			free_client_lease(lease);
115847c08596SBrooks Davis 			return (NULL);
115947c08596SBrooks Davis 		}
116047c08596SBrooks Davis 		memcpy(lease->server_name, packet->raw->sname, DHCP_SNAME_LEN);
116147c08596SBrooks Davis 		lease->server_name[DHCP_SNAME_LEN]='\0';
116247c08596SBrooks Davis 	}
116347c08596SBrooks Davis 
116447c08596SBrooks Davis 	/* Ditto for the filename. */
116547c08596SBrooks Davis 	if ((!packet->options[DHO_DHCP_OPTION_OVERLOAD].len ||
116647c08596SBrooks Davis 	    !(packet->options[DHO_DHCP_OPTION_OVERLOAD].data[0] & 1)) &&
116747c08596SBrooks Davis 	    packet->raw->file[0]) {
116847c08596SBrooks Davis 		/* Don't count on the NUL terminator. */
116947c08596SBrooks Davis 		lease->filename = malloc(DHCP_FILE_LEN + 1);
117047c08596SBrooks Davis 		if (!lease->filename) {
117147c08596SBrooks Davis 			warning("dhcpoffer: no memory for filename.");
117247c08596SBrooks Davis 			free_client_lease(lease);
117347c08596SBrooks Davis 			return (NULL);
117447c08596SBrooks Davis 		}
117547c08596SBrooks Davis 		memcpy(lease->filename, packet->raw->file, DHCP_FILE_LEN);
117647c08596SBrooks Davis 		lease->filename[DHCP_FILE_LEN]='\0';
117747c08596SBrooks Davis 	}
117847c08596SBrooks Davis 	return lease;
117947c08596SBrooks Davis }
118047c08596SBrooks Davis 
118147c08596SBrooks Davis void
118247c08596SBrooks Davis dhcpnak(struct packet *packet)
118347c08596SBrooks Davis {
118447c08596SBrooks Davis 	struct interface_info *ip = packet->interface;
118547c08596SBrooks Davis 
118647c08596SBrooks Davis 	/* If we're not receptive to an offer right now, or if the offer
118747c08596SBrooks Davis 	   has an unrecognizable transaction id, then just drop it. */
118847c08596SBrooks Davis 	if (packet->interface->client->xid != packet->raw->xid ||
118947c08596SBrooks Davis 	    (packet->interface->hw_address.hlen != packet->raw->hlen) ||
119047c08596SBrooks Davis 	    (memcmp(packet->interface->hw_address.haddr,
119147c08596SBrooks Davis 	    packet->raw->chaddr, packet->raw->hlen)))
119247c08596SBrooks Davis 		return;
119347c08596SBrooks Davis 
119447c08596SBrooks Davis 	if (ip->client->state != S_REBOOTING &&
119547c08596SBrooks Davis 	    ip->client->state != S_REQUESTING &&
119647c08596SBrooks Davis 	    ip->client->state != S_RENEWING &&
119747c08596SBrooks Davis 	    ip->client->state != S_REBINDING)
119847c08596SBrooks Davis 		return;
119947c08596SBrooks Davis 
120047c08596SBrooks Davis 	note("DHCPNAK from %s", piaddr(packet->client_addr));
120147c08596SBrooks Davis 
120247c08596SBrooks Davis 	if (!ip->client->active) {
120347c08596SBrooks Davis 		note("DHCPNAK with no active lease.\n");
120447c08596SBrooks Davis 		return;
120547c08596SBrooks Davis 	}
120647c08596SBrooks Davis 
120747c08596SBrooks Davis 	free_client_lease(ip->client->active);
120847c08596SBrooks Davis 	ip->client->active = NULL;
120947c08596SBrooks Davis 
121047c08596SBrooks Davis 	/* Stop sending DHCPREQUEST packets... */
121147c08596SBrooks Davis 	cancel_timeout(send_request, ip);
121247c08596SBrooks Davis 
121347c08596SBrooks Davis 	ip->client->state = S_INIT;
121447c08596SBrooks Davis 	state_init(ip);
121547c08596SBrooks Davis }
121647c08596SBrooks Davis 
121747c08596SBrooks Davis /* Send out a DHCPDISCOVER packet, and set a timeout to send out another
121847c08596SBrooks Davis    one after the right interval has expired.  If we don't get an offer by
121947c08596SBrooks Davis    the time we reach the panic interval, call the panic function. */
122047c08596SBrooks Davis 
122147c08596SBrooks Davis void
122247c08596SBrooks Davis send_discover(void *ipp)
122347c08596SBrooks Davis {
122447c08596SBrooks Davis 	struct interface_info *ip = ipp;
122547c08596SBrooks Davis 	int interval, increase = 1;
122647c08596SBrooks Davis 
122747c08596SBrooks Davis 	/* Figure out how long it's been since we started transmitting. */
122847c08596SBrooks Davis 	interval = cur_time - ip->client->first_sending;
122947c08596SBrooks Davis 
123047c08596SBrooks Davis 	/* If we're past the panic timeout, call the script and tell it
123147c08596SBrooks Davis 	   we haven't found anything for this interface yet. */
123247c08596SBrooks Davis 	if (interval > ip->client->config->timeout) {
123347c08596SBrooks Davis 		state_panic(ip);
123447c08596SBrooks Davis 		return;
123547c08596SBrooks Davis 	}
123647c08596SBrooks Davis 
123747c08596SBrooks Davis 	/* If we're selecting media, try the whole list before doing
123847c08596SBrooks Davis 	   the exponential backoff, but if we've already received an
123947c08596SBrooks Davis 	   offer, stop looping, because we obviously have it right. */
124047c08596SBrooks Davis 	if (!ip->client->offered_leases &&
124147c08596SBrooks Davis 	    ip->client->config->media) {
124247c08596SBrooks Davis 		int fail = 0;
124347c08596SBrooks Davis again:
124447c08596SBrooks Davis 		if (ip->client->medium) {
124547c08596SBrooks Davis 			ip->client->medium = ip->client->medium->next;
124647c08596SBrooks Davis 			increase = 0;
124747c08596SBrooks Davis 		}
124847c08596SBrooks Davis 		if (!ip->client->medium) {
124947c08596SBrooks Davis 			if (fail)
125047c08596SBrooks Davis 				error("No valid media types for %s!", ip->name);
125147c08596SBrooks Davis 			ip->client->medium = ip->client->config->media;
125247c08596SBrooks Davis 			increase = 1;
125347c08596SBrooks Davis 		}
125447c08596SBrooks Davis 
125547c08596SBrooks Davis 		note("Trying medium \"%s\" %d", ip->client->medium->string,
125647c08596SBrooks Davis 		    increase);
125747c08596SBrooks Davis 		script_init("MEDIUM", ip->client->medium);
125847c08596SBrooks Davis 		if (script_go())
125947c08596SBrooks Davis 			goto again;
126047c08596SBrooks Davis 	}
126147c08596SBrooks Davis 
126247c08596SBrooks Davis 	/*
126347c08596SBrooks Davis 	 * If we're supposed to increase the interval, do so.  If it's
126447c08596SBrooks Davis 	 * currently zero (i.e., we haven't sent any packets yet), set
126547c08596SBrooks Davis 	 * it to one; otherwise, add to it a random number between zero
126647c08596SBrooks Davis 	 * and two times itself.  On average, this means that it will
126747c08596SBrooks Davis 	 * double with every transmission.
126847c08596SBrooks Davis 	 */
126947c08596SBrooks Davis 	if (increase) {
127047c08596SBrooks Davis 		if (!ip->client->interval)
127147c08596SBrooks Davis 			ip->client->interval =
127247c08596SBrooks Davis 			    ip->client->config->initial_interval;
127347c08596SBrooks Davis 		else {
127447c08596SBrooks Davis 			ip->client->interval += (arc4random() >> 2) %
127547c08596SBrooks Davis 			    (2 * ip->client->interval);
127647c08596SBrooks Davis 		}
127747c08596SBrooks Davis 
127847c08596SBrooks Davis 		/* Don't backoff past cutoff. */
127947c08596SBrooks Davis 		if (ip->client->interval >
128047c08596SBrooks Davis 		    ip->client->config->backoff_cutoff)
128147c08596SBrooks Davis 			ip->client->interval =
128247c08596SBrooks Davis 				((ip->client->config->backoff_cutoff / 2)
128347c08596SBrooks Davis 				 + ((arc4random() >> 2) %
128447c08596SBrooks Davis 				    ip->client->config->backoff_cutoff));
128547c08596SBrooks Davis 	} else if (!ip->client->interval)
128647c08596SBrooks Davis 		ip->client->interval =
128747c08596SBrooks Davis 			ip->client->config->initial_interval;
128847c08596SBrooks Davis 
128947c08596SBrooks Davis 	/* If the backoff would take us to the panic timeout, just use that
129047c08596SBrooks Davis 	   as the interval. */
129147c08596SBrooks Davis 	if (cur_time + ip->client->interval >
129247c08596SBrooks Davis 	    ip->client->first_sending + ip->client->config->timeout)
129347c08596SBrooks Davis 		ip->client->interval =
129447c08596SBrooks Davis 			(ip->client->first_sending +
129547c08596SBrooks Davis 			 ip->client->config->timeout) - cur_time + 1;
129647c08596SBrooks Davis 
129747c08596SBrooks Davis 	/* Record the number of seconds since we started sending. */
129847c08596SBrooks Davis 	if (interval < 65536)
129947c08596SBrooks Davis 		ip->client->packet.secs = htons(interval);
130047c08596SBrooks Davis 	else
130147c08596SBrooks Davis 		ip->client->packet.secs = htons(65535);
130247c08596SBrooks Davis 	ip->client->secs = ip->client->packet.secs;
130347c08596SBrooks Davis 
130447c08596SBrooks Davis 	note("DHCPDISCOVER on %s to %s port %d interval %d",
1305ba019ae5SPawel Jakub Dawidek 	    ip->name, inet_ntoa(inaddr_broadcast), REMOTE_PORT,
13069c13d9cdSBrooks Davis 	    (int)ip->client->interval);
130747c08596SBrooks Davis 
130847c08596SBrooks Davis 	/* Send out a packet. */
1309235eb530SPawel Jakub Dawidek 	send_packet_unpriv(privfd, &ip->client->packet,
1310235eb530SPawel Jakub Dawidek 	    ip->client->packet_length, inaddr_any, inaddr_broadcast);
131147c08596SBrooks Davis 
131247c08596SBrooks Davis 	add_timeout(cur_time + ip->client->interval, send_discover, ip);
131347c08596SBrooks Davis }
131447c08596SBrooks Davis 
131547c08596SBrooks Davis /*
131647c08596SBrooks Davis  * state_panic gets called if we haven't received any offers in a preset
131747c08596SBrooks Davis  * amount of time.   When this happens, we try to use existing leases
131847c08596SBrooks Davis  * that haven't yet expired, and failing that, we call the client script
131947c08596SBrooks Davis  * and hope it can do something.
132047c08596SBrooks Davis  */
132147c08596SBrooks Davis void
132247c08596SBrooks Davis state_panic(void *ipp)
132347c08596SBrooks Davis {
132447c08596SBrooks Davis 	struct interface_info *ip = ipp;
132547c08596SBrooks Davis 	struct client_lease *loop = ip->client->active;
132647c08596SBrooks Davis 	struct client_lease *lp;
132747c08596SBrooks Davis 
132847c08596SBrooks Davis 	note("No DHCPOFFERS received.");
132947c08596SBrooks Davis 
133047c08596SBrooks Davis 	/* We may not have an active lease, but we may have some
133147c08596SBrooks Davis 	   predefined leases that we can try. */
133247c08596SBrooks Davis 	if (!ip->client->active && ip->client->leases)
133347c08596SBrooks Davis 		goto activate_next;
133447c08596SBrooks Davis 
133547c08596SBrooks Davis 	/* Run through the list of leases and see if one can be used. */
133647c08596SBrooks Davis 	while (ip->client->active) {
133747c08596SBrooks Davis 		if (ip->client->active->expiry > cur_time) {
133847c08596SBrooks Davis 			note("Trying recorded lease %s",
133947c08596SBrooks Davis 			    piaddr(ip->client->active->address));
134047c08596SBrooks Davis 			/* Run the client script with the existing
134147c08596SBrooks Davis 			   parameters. */
134247c08596SBrooks Davis 			script_init("TIMEOUT",
134347c08596SBrooks Davis 			    ip->client->active->medium);
134447c08596SBrooks Davis 			script_write_params("new_", ip->client->active);
134547c08596SBrooks Davis 			if (ip->client->alias)
134647c08596SBrooks Davis 				script_write_params("alias_",
134747c08596SBrooks Davis 				    ip->client->alias);
134847c08596SBrooks Davis 
134947c08596SBrooks Davis 			/* If the old lease is still good and doesn't
135047c08596SBrooks Davis 			   yet need renewal, go into BOUND state and
135147c08596SBrooks Davis 			   timeout at the renewal time. */
135247c08596SBrooks Davis 			if (!script_go()) {
135347c08596SBrooks Davis 				if (cur_time <
135447c08596SBrooks Davis 				    ip->client->active->renewal) {
135547c08596SBrooks Davis 					ip->client->state = S_BOUND;
135647c08596SBrooks Davis 					note("bound: renewal in %d seconds.",
13579c13d9cdSBrooks Davis 					    (int)(ip->client->active->renewal -
13589c13d9cdSBrooks Davis 					    cur_time));
135947c08596SBrooks Davis 					add_timeout(
136047c08596SBrooks Davis 					    ip->client->active->renewal,
136147c08596SBrooks Davis 					    state_bound, ip);
136247c08596SBrooks Davis 				} else {
136347c08596SBrooks Davis 					ip->client->state = S_BOUND;
136447c08596SBrooks Davis 					note("bound: immediate renewal.");
136547c08596SBrooks Davis 					state_bound(ip);
136647c08596SBrooks Davis 				}
136747c08596SBrooks Davis 				reinitialize_interfaces();
136847c08596SBrooks Davis 				go_daemon();
136947c08596SBrooks Davis 				return;
137047c08596SBrooks Davis 			}
137147c08596SBrooks Davis 		}
137247c08596SBrooks Davis 
137347c08596SBrooks Davis 		/* If there are no other leases, give up. */
137447c08596SBrooks Davis 		if (!ip->client->leases) {
137547c08596SBrooks Davis 			ip->client->leases = ip->client->active;
137647c08596SBrooks Davis 			ip->client->active = NULL;
137747c08596SBrooks Davis 			break;
137847c08596SBrooks Davis 		}
137947c08596SBrooks Davis 
138047c08596SBrooks Davis activate_next:
138147c08596SBrooks Davis 		/* Otherwise, put the active lease at the end of the
138247c08596SBrooks Davis 		   lease list, and try another lease.. */
138347c08596SBrooks Davis 		for (lp = ip->client->leases; lp->next; lp = lp->next)
138447c08596SBrooks Davis 			;
138547c08596SBrooks Davis 		lp->next = ip->client->active;
138647c08596SBrooks Davis 		if (lp->next)
138747c08596SBrooks Davis 			lp->next->next = NULL;
138847c08596SBrooks Davis 		ip->client->active = ip->client->leases;
138947c08596SBrooks Davis 		ip->client->leases = ip->client->leases->next;
139047c08596SBrooks Davis 
139147c08596SBrooks Davis 		/* If we already tried this lease, we've exhausted the
139247c08596SBrooks Davis 		   set of leases, so we might as well give up for
139347c08596SBrooks Davis 		   now. */
139447c08596SBrooks Davis 		if (ip->client->active == loop)
139547c08596SBrooks Davis 			break;
139647c08596SBrooks Davis 		else if (!loop)
139747c08596SBrooks Davis 			loop = ip->client->active;
139847c08596SBrooks Davis 	}
139947c08596SBrooks Davis 
140047c08596SBrooks Davis 	/* No leases were available, or what was available didn't work, so
140147c08596SBrooks Davis 	   tell the shell script that we failed to allocate an address,
140247c08596SBrooks Davis 	   and try again later. */
140347c08596SBrooks Davis 	note("No working leases in persistent database - sleeping.\n");
140447c08596SBrooks Davis 	script_init("FAIL", NULL);
140547c08596SBrooks Davis 	if (ip->client->alias)
140647c08596SBrooks Davis 		script_write_params("alias_", ip->client->alias);
140747c08596SBrooks Davis 	script_go();
140847c08596SBrooks Davis 	ip->client->state = S_INIT;
140947c08596SBrooks Davis 	add_timeout(cur_time + ip->client->config->retry_interval, state_init,
141047c08596SBrooks Davis 	    ip);
141147c08596SBrooks Davis 	go_daemon();
141247c08596SBrooks Davis }
141347c08596SBrooks Davis 
141447c08596SBrooks Davis void
141547c08596SBrooks Davis send_request(void *ipp)
141647c08596SBrooks Davis {
141747c08596SBrooks Davis 	struct interface_info *ip = ipp;
1418ba019ae5SPawel Jakub Dawidek 	struct in_addr from, to;
141947c08596SBrooks Davis 	int interval;
142047c08596SBrooks Davis 
142147c08596SBrooks Davis 	/* Figure out how long it's been since we started transmitting. */
142247c08596SBrooks Davis 	interval = cur_time - ip->client->first_sending;
142347c08596SBrooks Davis 
142447c08596SBrooks Davis 	/* If we're in the INIT-REBOOT or REQUESTING state and we're
142547c08596SBrooks Davis 	   past the reboot timeout, go to INIT and see if we can
142647c08596SBrooks Davis 	   DISCOVER an address... */
142747c08596SBrooks Davis 	/* XXX In the INIT-REBOOT state, if we don't get an ACK, it
142847c08596SBrooks Davis 	   means either that we're on a network with no DHCP server,
142947c08596SBrooks Davis 	   or that our server is down.  In the latter case, assuming
143047c08596SBrooks Davis 	   that there is a backup DHCP server, DHCPDISCOVER will get
143147c08596SBrooks Davis 	   us a new address, but we could also have successfully
143247c08596SBrooks Davis 	   reused our old address.  In the former case, we're hosed
143347c08596SBrooks Davis 	   anyway.  This is not a win-prone situation. */
143447c08596SBrooks Davis 	if ((ip->client->state == S_REBOOTING ||
143547c08596SBrooks Davis 	    ip->client->state == S_REQUESTING) &&
143647c08596SBrooks Davis 	    interval > ip->client->config->reboot_timeout) {
143747c08596SBrooks Davis cancel:
143847c08596SBrooks Davis 		ip->client->state = S_INIT;
143947c08596SBrooks Davis 		cancel_timeout(send_request, ip);
144047c08596SBrooks Davis 		state_init(ip);
144147c08596SBrooks Davis 		return;
144247c08596SBrooks Davis 	}
144347c08596SBrooks Davis 
144447c08596SBrooks Davis 	/* If we're in the reboot state, make sure the media is set up
144547c08596SBrooks Davis 	   correctly. */
144647c08596SBrooks Davis 	if (ip->client->state == S_REBOOTING &&
144747c08596SBrooks Davis 	    !ip->client->medium &&
144847c08596SBrooks Davis 	    ip->client->active->medium ) {
144947c08596SBrooks Davis 		script_init("MEDIUM", ip->client->active->medium);
145047c08596SBrooks Davis 
145147c08596SBrooks Davis 		/* If the medium we chose won't fly, go to INIT state. */
145247c08596SBrooks Davis 		if (script_go())
145347c08596SBrooks Davis 			goto cancel;
145447c08596SBrooks Davis 
145547c08596SBrooks Davis 		/* Record the medium. */
145647c08596SBrooks Davis 		ip->client->medium = ip->client->active->medium;
145747c08596SBrooks Davis 	}
145847c08596SBrooks Davis 
145947c08596SBrooks Davis 	/* If the lease has expired, relinquish the address and go back
146047c08596SBrooks Davis 	   to the INIT state. */
146147c08596SBrooks Davis 	if (ip->client->state != S_REQUESTING &&
146247c08596SBrooks Davis 	    cur_time > ip->client->active->expiry) {
146347c08596SBrooks Davis 		/* Run the client script with the new parameters. */
146447c08596SBrooks Davis 		script_init("EXPIRE", NULL);
146547c08596SBrooks Davis 		script_write_params("old_", ip->client->active);
146647c08596SBrooks Davis 		if (ip->client->alias)
146747c08596SBrooks Davis 			script_write_params("alias_", ip->client->alias);
146847c08596SBrooks Davis 		script_go();
146947c08596SBrooks Davis 
147047c08596SBrooks Davis 		/* Now do a preinit on the interface so that we can
147147c08596SBrooks Davis 		   discover a new address. */
147247c08596SBrooks Davis 		script_init("PREINIT", NULL);
147347c08596SBrooks Davis 		if (ip->client->alias)
147447c08596SBrooks Davis 			script_write_params("alias_", ip->client->alias);
147547c08596SBrooks Davis 		script_go();
147647c08596SBrooks Davis 
147747c08596SBrooks Davis 		ip->client->state = S_INIT;
147847c08596SBrooks Davis 		state_init(ip);
147947c08596SBrooks Davis 		return;
148047c08596SBrooks Davis 	}
148147c08596SBrooks Davis 
148247c08596SBrooks Davis 	/* Do the exponential backoff... */
148347c08596SBrooks Davis 	if (!ip->client->interval)
148447c08596SBrooks Davis 		ip->client->interval = ip->client->config->initial_interval;
148547c08596SBrooks Davis 	else
148647c08596SBrooks Davis 		ip->client->interval += ((arc4random() >> 2) %
148747c08596SBrooks Davis 		    (2 * ip->client->interval));
148847c08596SBrooks Davis 
148947c08596SBrooks Davis 	/* Don't backoff past cutoff. */
149047c08596SBrooks Davis 	if (ip->client->interval >
149147c08596SBrooks Davis 	    ip->client->config->backoff_cutoff)
149247c08596SBrooks Davis 		ip->client->interval =
149347c08596SBrooks Davis 		    ((ip->client->config->backoff_cutoff / 2) +
149447c08596SBrooks Davis 		    ((arc4random() >> 2) % ip->client->interval));
149547c08596SBrooks Davis 
149647c08596SBrooks Davis 	/* If the backoff would take us to the expiry time, just set the
149747c08596SBrooks Davis 	   timeout to the expiry time. */
149847c08596SBrooks Davis 	if (ip->client->state != S_REQUESTING &&
149947c08596SBrooks Davis 	    cur_time + ip->client->interval >
150047c08596SBrooks Davis 	    ip->client->active->expiry)
150147c08596SBrooks Davis 		ip->client->interval =
150247c08596SBrooks Davis 		    ip->client->active->expiry - cur_time + 1;
150347c08596SBrooks Davis 
150447c08596SBrooks Davis 	/* If the lease T2 time has elapsed, or if we're not yet bound,
150547c08596SBrooks Davis 	   broadcast the DHCPREQUEST rather than unicasting. */
150647c08596SBrooks Davis 	if (ip->client->state == S_REQUESTING ||
150747c08596SBrooks Davis 	    ip->client->state == S_REBOOTING ||
150847c08596SBrooks Davis 	    cur_time > ip->client->active->rebind)
1509ba019ae5SPawel Jakub Dawidek 		to.s_addr = INADDR_BROADCAST;
151047c08596SBrooks Davis 	else
1511ba019ae5SPawel Jakub Dawidek 		memcpy(&to.s_addr, ip->client->destination.iabuf,
1512ba019ae5SPawel Jakub Dawidek 		    sizeof(to.s_addr));
151347c08596SBrooks Davis 
151447c08596SBrooks Davis 	if (ip->client->state != S_REQUESTING)
151547c08596SBrooks Davis 		memcpy(&from, ip->client->active->address.iabuf,
151647c08596SBrooks Davis 		    sizeof(from));
151747c08596SBrooks Davis 	else
151847c08596SBrooks Davis 		from.s_addr = INADDR_ANY;
151947c08596SBrooks Davis 
152047c08596SBrooks Davis 	/* Record the number of seconds since we started sending. */
152147c08596SBrooks Davis 	if (ip->client->state == S_REQUESTING)
152247c08596SBrooks Davis 		ip->client->packet.secs = ip->client->secs;
152347c08596SBrooks Davis 	else {
152447c08596SBrooks Davis 		if (interval < 65536)
152547c08596SBrooks Davis 			ip->client->packet.secs = htons(interval);
152647c08596SBrooks Davis 		else
152747c08596SBrooks Davis 			ip->client->packet.secs = htons(65535);
152847c08596SBrooks Davis 	}
152947c08596SBrooks Davis 
1530ba019ae5SPawel Jakub Dawidek 	note("DHCPREQUEST on %s to %s port %d", ip->name, inet_ntoa(to),
1531ba019ae5SPawel Jakub Dawidek 	    REMOTE_PORT);
153247c08596SBrooks Davis 
153347c08596SBrooks Davis 	/* Send out a packet. */
1534235eb530SPawel Jakub Dawidek 	send_packet_unpriv(privfd, &ip->client->packet,
1535235eb530SPawel Jakub Dawidek 	    ip->client->packet_length, from, to);
153647c08596SBrooks Davis 
153747c08596SBrooks Davis 	add_timeout(cur_time + ip->client->interval, send_request, ip);
153847c08596SBrooks Davis }
153947c08596SBrooks Davis 
154047c08596SBrooks Davis void
154147c08596SBrooks Davis send_decline(void *ipp)
154247c08596SBrooks Davis {
154347c08596SBrooks Davis 	struct interface_info *ip = ipp;
154447c08596SBrooks Davis 
154547c08596SBrooks Davis 	note("DHCPDECLINE on %s to %s port %d", ip->name,
1546ba019ae5SPawel Jakub Dawidek 	    inet_ntoa(inaddr_broadcast), REMOTE_PORT);
154747c08596SBrooks Davis 
154847c08596SBrooks Davis 	/* Send out a packet. */
1549235eb530SPawel Jakub Dawidek 	send_packet_unpriv(privfd, &ip->client->packet,
1550235eb530SPawel Jakub Dawidek 	    ip->client->packet_length, inaddr_any, inaddr_broadcast);
155147c08596SBrooks Davis }
155247c08596SBrooks Davis 
155347c08596SBrooks Davis void
155447c08596SBrooks Davis make_discover(struct interface_info *ip, struct client_lease *lease)
155547c08596SBrooks Davis {
155647c08596SBrooks Davis 	unsigned char discover = DHCPDISCOVER;
155747c08596SBrooks Davis 	struct tree_cache *options[256];
155847c08596SBrooks Davis 	struct tree_cache option_elements[256];
155947c08596SBrooks Davis 	int i;
156047c08596SBrooks Davis 
156147c08596SBrooks Davis 	memset(option_elements, 0, sizeof(option_elements));
156247c08596SBrooks Davis 	memset(options, 0, sizeof(options));
156347c08596SBrooks Davis 	memset(&ip->client->packet, 0, sizeof(ip->client->packet));
156447c08596SBrooks Davis 
156547c08596SBrooks Davis 	/* Set DHCP_MESSAGE_TYPE to DHCPDISCOVER */
156647c08596SBrooks Davis 	i = DHO_DHCP_MESSAGE_TYPE;
156747c08596SBrooks Davis 	options[i] = &option_elements[i];
156847c08596SBrooks Davis 	options[i]->value = &discover;
156947c08596SBrooks Davis 	options[i]->len = sizeof(discover);
157047c08596SBrooks Davis 	options[i]->buf_size = sizeof(discover);
157147c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
157247c08596SBrooks Davis 
157347c08596SBrooks Davis 	/* Request the options we want */
157447c08596SBrooks Davis 	i  = DHO_DHCP_PARAMETER_REQUEST_LIST;
157547c08596SBrooks Davis 	options[i] = &option_elements[i];
157647c08596SBrooks Davis 	options[i]->value = ip->client->config->requested_options;
157747c08596SBrooks Davis 	options[i]->len = ip->client->config->requested_option_count;
157847c08596SBrooks Davis 	options[i]->buf_size =
157947c08596SBrooks Davis 		ip->client->config->requested_option_count;
158047c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
158147c08596SBrooks Davis 
158247c08596SBrooks Davis 	/* If we had an address, try to get it again. */
158347c08596SBrooks Davis 	if (lease) {
158447c08596SBrooks Davis 		ip->client->requested_address = lease->address;
158547c08596SBrooks Davis 		i = DHO_DHCP_REQUESTED_ADDRESS;
158647c08596SBrooks Davis 		options[i] = &option_elements[i];
158747c08596SBrooks Davis 		options[i]->value = lease->address.iabuf;
158847c08596SBrooks Davis 		options[i]->len = lease->address.len;
158947c08596SBrooks Davis 		options[i]->buf_size = lease->address.len;
159047c08596SBrooks Davis 		options[i]->timeout = 0xFFFFFFFF;
159147c08596SBrooks Davis 	} else
159247c08596SBrooks Davis 		ip->client->requested_address.len = 0;
159347c08596SBrooks Davis 
159447c08596SBrooks Davis 	/* Send any options requested in the config file. */
159547c08596SBrooks Davis 	for (i = 0; i < 256; i++)
159647c08596SBrooks Davis 		if (!options[i] &&
159747c08596SBrooks Davis 		    ip->client->config->send_options[i].data) {
159847c08596SBrooks Davis 			options[i] = &option_elements[i];
159947c08596SBrooks Davis 			options[i]->value =
160047c08596SBrooks Davis 			    ip->client->config->send_options[i].data;
160147c08596SBrooks Davis 			options[i]->len =
160247c08596SBrooks Davis 			    ip->client->config->send_options[i].len;
160347c08596SBrooks Davis 			options[i]->buf_size =
160447c08596SBrooks Davis 			    ip->client->config->send_options[i].len;
160547c08596SBrooks Davis 			options[i]->timeout = 0xFFFFFFFF;
160647c08596SBrooks Davis 		}
160747c08596SBrooks Davis 
1608fcab8addSBrooks Davis 	/* send host name if not set via config file. */
1609fcab8addSBrooks Davis 	if (!options[DHO_HOST_NAME]) {
16100bbe8306SPawel Jakub Dawidek 		if (hostname[0] != '\0') {
1611fcab8addSBrooks Davis 			size_t len;
1612fcab8addSBrooks Davis 			char* posDot = strchr(hostname, '.');
1613fcab8addSBrooks Davis 			if (posDot != NULL)
1614fcab8addSBrooks Davis 				len = posDot - hostname;
1615fcab8addSBrooks Davis 			else
1616fcab8addSBrooks Davis 				len = strlen(hostname);
1617fcab8addSBrooks Davis 			options[DHO_HOST_NAME] = &option_elements[DHO_HOST_NAME];
1618fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->value = hostname;
1619fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->len = len;
1620fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->buf_size = len;
1621fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->timeout = 0xFFFFFFFF;
1622fcab8addSBrooks Davis 		}
1623fcab8addSBrooks Davis 	}
1624fcab8addSBrooks Davis 
1625fcab8addSBrooks Davis 	/* set unique client identifier */
1626fb0eab09SConrad Meyer 	char client_ident[sizeof(ip->hw_address.haddr) + 1];
1627fcab8addSBrooks Davis 	if (!options[DHO_DHCP_CLIENT_IDENTIFIER]) {
16284441bd73SConrad Meyer 		int hwlen = (ip->hw_address.hlen < sizeof(client_ident)-1) ?
16294441bd73SConrad Meyer 				ip->hw_address.hlen : sizeof(client_ident)-1;
16304441bd73SConrad Meyer 		client_ident[0] = ip->hw_address.htype;
16314441bd73SConrad Meyer 		memcpy(&client_ident[1], ip->hw_address.haddr, hwlen);
1632fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER] = &option_elements[DHO_DHCP_CLIENT_IDENTIFIER];
16334441bd73SConrad Meyer 		options[DHO_DHCP_CLIENT_IDENTIFIER]->value = client_ident;
16344441bd73SConrad Meyer 		options[DHO_DHCP_CLIENT_IDENTIFIER]->len = hwlen+1;
16354441bd73SConrad Meyer 		options[DHO_DHCP_CLIENT_IDENTIFIER]->buf_size = hwlen+1;
1636fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->timeout = 0xFFFFFFFF;
1637fcab8addSBrooks Davis 	}
1638fcab8addSBrooks Davis 
163947c08596SBrooks Davis 	/* Set up the option buffer... */
164047c08596SBrooks Davis 	ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0,
164147c08596SBrooks Davis 	    options, 0, 0, 0, NULL, 0);
164247c08596SBrooks Davis 	if (ip->client->packet_length < BOOTP_MIN_LEN)
164347c08596SBrooks Davis 		ip->client->packet_length = BOOTP_MIN_LEN;
164447c08596SBrooks Davis 
164547c08596SBrooks Davis 	ip->client->packet.op = BOOTREQUEST;
164647c08596SBrooks Davis 	ip->client->packet.htype = ip->hw_address.htype;
164747c08596SBrooks Davis 	ip->client->packet.hlen = ip->hw_address.hlen;
164847c08596SBrooks Davis 	ip->client->packet.hops = 0;
164947c08596SBrooks Davis 	ip->client->packet.xid = arc4random();
165047c08596SBrooks Davis 	ip->client->packet.secs = 0; /* filled in by send_discover. */
165147c08596SBrooks Davis 	ip->client->packet.flags = 0;
165247c08596SBrooks Davis 
165347c08596SBrooks Davis 	memset(&(ip->client->packet.ciaddr),
165447c08596SBrooks Davis 	    0, sizeof(ip->client->packet.ciaddr));
165547c08596SBrooks Davis 	memset(&(ip->client->packet.yiaddr),
165647c08596SBrooks Davis 	    0, sizeof(ip->client->packet.yiaddr));
165747c08596SBrooks Davis 	memset(&(ip->client->packet.siaddr),
165847c08596SBrooks Davis 	    0, sizeof(ip->client->packet.siaddr));
165947c08596SBrooks Davis 	memset(&(ip->client->packet.giaddr),
166047c08596SBrooks Davis 	    0, sizeof(ip->client->packet.giaddr));
16614441bd73SConrad Meyer 	memcpy(ip->client->packet.chaddr,
16624441bd73SConrad Meyer 	    ip->hw_address.haddr, ip->hw_address.hlen);
166347c08596SBrooks Davis }
166447c08596SBrooks Davis 
166547c08596SBrooks Davis 
166647c08596SBrooks Davis void
166747c08596SBrooks Davis make_request(struct interface_info *ip, struct client_lease * lease)
166847c08596SBrooks Davis {
166947c08596SBrooks Davis 	unsigned char request = DHCPREQUEST;
167047c08596SBrooks Davis 	struct tree_cache *options[256];
167147c08596SBrooks Davis 	struct tree_cache option_elements[256];
167247c08596SBrooks Davis 	int i;
167347c08596SBrooks Davis 
167447c08596SBrooks Davis 	memset(options, 0, sizeof(options));
167547c08596SBrooks Davis 	memset(&ip->client->packet, 0, sizeof(ip->client->packet));
167647c08596SBrooks Davis 
167747c08596SBrooks Davis 	/* Set DHCP_MESSAGE_TYPE to DHCPREQUEST */
167847c08596SBrooks Davis 	i = DHO_DHCP_MESSAGE_TYPE;
167947c08596SBrooks Davis 	options[i] = &option_elements[i];
168047c08596SBrooks Davis 	options[i]->value = &request;
168147c08596SBrooks Davis 	options[i]->len = sizeof(request);
168247c08596SBrooks Davis 	options[i]->buf_size = sizeof(request);
168347c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
168447c08596SBrooks Davis 
168547c08596SBrooks Davis 	/* Request the options we want */
168647c08596SBrooks Davis 	i = DHO_DHCP_PARAMETER_REQUEST_LIST;
168747c08596SBrooks Davis 	options[i] = &option_elements[i];
168847c08596SBrooks Davis 	options[i]->value = ip->client->config->requested_options;
168947c08596SBrooks Davis 	options[i]->len = ip->client->config->requested_option_count;
169047c08596SBrooks Davis 	options[i]->buf_size =
169147c08596SBrooks Davis 		ip->client->config->requested_option_count;
169247c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
169347c08596SBrooks Davis 
169447c08596SBrooks Davis 	/* If we are requesting an address that hasn't yet been assigned
169547c08596SBrooks Davis 	   to us, use the DHCP Requested Address option. */
169647c08596SBrooks Davis 	if (ip->client->state == S_REQUESTING) {
169747c08596SBrooks Davis 		/* Send back the server identifier... */
169847c08596SBrooks Davis 		i = DHO_DHCP_SERVER_IDENTIFIER;
169947c08596SBrooks Davis 		options[i] = &option_elements[i];
170047c08596SBrooks Davis 		options[i]->value = lease->options[i].data;
170147c08596SBrooks Davis 		options[i]->len = lease->options[i].len;
170247c08596SBrooks Davis 		options[i]->buf_size = lease->options[i].len;
170347c08596SBrooks Davis 		options[i]->timeout = 0xFFFFFFFF;
170447c08596SBrooks Davis 	}
170547c08596SBrooks Davis 	if (ip->client->state == S_REQUESTING ||
170647c08596SBrooks Davis 	    ip->client->state == S_REBOOTING) {
170747c08596SBrooks Davis 		ip->client->requested_address = lease->address;
170847c08596SBrooks Davis 		i = DHO_DHCP_REQUESTED_ADDRESS;
170947c08596SBrooks Davis 		options[i] = &option_elements[i];
171047c08596SBrooks Davis 		options[i]->value = lease->address.iabuf;
171147c08596SBrooks Davis 		options[i]->len = lease->address.len;
171247c08596SBrooks Davis 		options[i]->buf_size = lease->address.len;
171347c08596SBrooks Davis 		options[i]->timeout = 0xFFFFFFFF;
171447c08596SBrooks Davis 	} else
171547c08596SBrooks Davis 		ip->client->requested_address.len = 0;
171647c08596SBrooks Davis 
171747c08596SBrooks Davis 	/* Send any options requested in the config file. */
171847c08596SBrooks Davis 	for (i = 0; i < 256; i++)
171947c08596SBrooks Davis 		if (!options[i] &&
172047c08596SBrooks Davis 		    ip->client->config->send_options[i].data) {
172147c08596SBrooks Davis 			options[i] = &option_elements[i];
172247c08596SBrooks Davis 			options[i]->value =
172347c08596SBrooks Davis 			    ip->client->config->send_options[i].data;
172447c08596SBrooks Davis 			options[i]->len =
172547c08596SBrooks Davis 			    ip->client->config->send_options[i].len;
172647c08596SBrooks Davis 			options[i]->buf_size =
172747c08596SBrooks Davis 			    ip->client->config->send_options[i].len;
172847c08596SBrooks Davis 			options[i]->timeout = 0xFFFFFFFF;
172947c08596SBrooks Davis 		}
173047c08596SBrooks Davis 
1731fcab8addSBrooks Davis 	/* send host name if not set via config file. */
1732fcab8addSBrooks Davis 	if (!options[DHO_HOST_NAME]) {
17330bbe8306SPawel Jakub Dawidek 		if (hostname[0] != '\0') {
1734fcab8addSBrooks Davis 			size_t len;
1735fcab8addSBrooks Davis 			char* posDot = strchr(hostname, '.');
1736fcab8addSBrooks Davis 			if (posDot != NULL)
1737fcab8addSBrooks Davis 				len = posDot - hostname;
1738fcab8addSBrooks Davis 			else
1739fcab8addSBrooks Davis 				len = strlen(hostname);
1740fcab8addSBrooks Davis 			options[DHO_HOST_NAME] = &option_elements[DHO_HOST_NAME];
1741fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->value = hostname;
1742fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->len = len;
1743fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->buf_size = len;
1744fcab8addSBrooks Davis 			options[DHO_HOST_NAME]->timeout = 0xFFFFFFFF;
1745fcab8addSBrooks Davis 		}
1746fcab8addSBrooks Davis 	}
1747fcab8addSBrooks Davis 
1748fcab8addSBrooks Davis 	/* set unique client identifier */
1749fcab8addSBrooks Davis 	char client_ident[sizeof(struct hardware)];
1750fcab8addSBrooks Davis 	if (!options[DHO_DHCP_CLIENT_IDENTIFIER]) {
1751fcab8addSBrooks Davis 		int hwlen = (ip->hw_address.hlen < sizeof(client_ident)-1) ?
1752fcab8addSBrooks Davis 				ip->hw_address.hlen : sizeof(client_ident)-1;
1753fcab8addSBrooks Davis 		client_ident[0] = ip->hw_address.htype;
1754fcab8addSBrooks Davis 		memcpy(&client_ident[1], ip->hw_address.haddr, hwlen);
1755fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER] = &option_elements[DHO_DHCP_CLIENT_IDENTIFIER];
1756fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->value = client_ident;
1757fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->len = hwlen+1;
1758fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->buf_size = hwlen+1;
1759fcab8addSBrooks Davis 		options[DHO_DHCP_CLIENT_IDENTIFIER]->timeout = 0xFFFFFFFF;
1760fcab8addSBrooks Davis 	}
1761fcab8addSBrooks Davis 
176247c08596SBrooks Davis 	/* Set up the option buffer... */
176347c08596SBrooks Davis 	ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0,
176447c08596SBrooks Davis 	    options, 0, 0, 0, NULL, 0);
176547c08596SBrooks Davis 	if (ip->client->packet_length < BOOTP_MIN_LEN)
176647c08596SBrooks Davis 		ip->client->packet_length = BOOTP_MIN_LEN;
176747c08596SBrooks Davis 
176847c08596SBrooks Davis 	ip->client->packet.op = BOOTREQUEST;
176947c08596SBrooks Davis 	ip->client->packet.htype = ip->hw_address.htype;
177047c08596SBrooks Davis 	ip->client->packet.hlen = ip->hw_address.hlen;
177147c08596SBrooks Davis 	ip->client->packet.hops = 0;
177247c08596SBrooks Davis 	ip->client->packet.xid = ip->client->xid;
177347c08596SBrooks Davis 	ip->client->packet.secs = 0; /* Filled in by send_request. */
177447c08596SBrooks Davis 
177547c08596SBrooks Davis 	/* If we own the address we're requesting, put it in ciaddr;
177647c08596SBrooks Davis 	   otherwise set ciaddr to zero. */
177747c08596SBrooks Davis 	if (ip->client->state == S_BOUND ||
177847c08596SBrooks Davis 	    ip->client->state == S_RENEWING ||
177947c08596SBrooks Davis 	    ip->client->state == S_REBINDING) {
178047c08596SBrooks Davis 		memcpy(&ip->client->packet.ciaddr,
178147c08596SBrooks Davis 		    lease->address.iabuf, lease->address.len);
178247c08596SBrooks Davis 		ip->client->packet.flags = 0;
178347c08596SBrooks Davis 	} else {
178447c08596SBrooks Davis 		memset(&ip->client->packet.ciaddr, 0,
178547c08596SBrooks Davis 		    sizeof(ip->client->packet.ciaddr));
178647c08596SBrooks Davis 		ip->client->packet.flags = 0;
178747c08596SBrooks Davis 	}
178847c08596SBrooks Davis 
178947c08596SBrooks Davis 	memset(&ip->client->packet.yiaddr, 0,
179047c08596SBrooks Davis 	    sizeof(ip->client->packet.yiaddr));
179147c08596SBrooks Davis 	memset(&ip->client->packet.siaddr, 0,
179247c08596SBrooks Davis 	    sizeof(ip->client->packet.siaddr));
179347c08596SBrooks Davis 	memset(&ip->client->packet.giaddr, 0,
179447c08596SBrooks Davis 	    sizeof(ip->client->packet.giaddr));
179547c08596SBrooks Davis 	memcpy(ip->client->packet.chaddr,
179647c08596SBrooks Davis 	    ip->hw_address.haddr, ip->hw_address.hlen);
179747c08596SBrooks Davis }
179847c08596SBrooks Davis 
179947c08596SBrooks Davis void
180047c08596SBrooks Davis make_decline(struct interface_info *ip, struct client_lease *lease)
180147c08596SBrooks Davis {
180247c08596SBrooks Davis 	struct tree_cache *options[256], message_type_tree;
180347c08596SBrooks Davis 	struct tree_cache requested_address_tree;
180447c08596SBrooks Davis 	struct tree_cache server_id_tree, client_id_tree;
180547c08596SBrooks Davis 	unsigned char decline = DHCPDECLINE;
180647c08596SBrooks Davis 	int i;
180747c08596SBrooks Davis 
180847c08596SBrooks Davis 	memset(options, 0, sizeof(options));
180947c08596SBrooks Davis 	memset(&ip->client->packet, 0, sizeof(ip->client->packet));
181047c08596SBrooks Davis 
181147c08596SBrooks Davis 	/* Set DHCP_MESSAGE_TYPE to DHCPDECLINE */
181247c08596SBrooks Davis 	i = DHO_DHCP_MESSAGE_TYPE;
181347c08596SBrooks Davis 	options[i] = &message_type_tree;
181447c08596SBrooks Davis 	options[i]->value = &decline;
181547c08596SBrooks Davis 	options[i]->len = sizeof(decline);
181647c08596SBrooks Davis 	options[i]->buf_size = sizeof(decline);
181747c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
181847c08596SBrooks Davis 
181947c08596SBrooks Davis 	/* Send back the server identifier... */
182047c08596SBrooks Davis 	i = DHO_DHCP_SERVER_IDENTIFIER;
182147c08596SBrooks Davis 	options[i] = &server_id_tree;
182247c08596SBrooks Davis 	options[i]->value = lease->options[i].data;
182347c08596SBrooks Davis 	options[i]->len = lease->options[i].len;
182447c08596SBrooks Davis 	options[i]->buf_size = lease->options[i].len;
182547c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
182647c08596SBrooks Davis 
182747c08596SBrooks Davis 	/* Send back the address we're declining. */
182847c08596SBrooks Davis 	i = DHO_DHCP_REQUESTED_ADDRESS;
182947c08596SBrooks Davis 	options[i] = &requested_address_tree;
183047c08596SBrooks Davis 	options[i]->value = lease->address.iabuf;
183147c08596SBrooks Davis 	options[i]->len = lease->address.len;
183247c08596SBrooks Davis 	options[i]->buf_size = lease->address.len;
183347c08596SBrooks Davis 	options[i]->timeout = 0xFFFFFFFF;
183447c08596SBrooks Davis 
183547c08596SBrooks Davis 	/* Send the uid if the user supplied one. */
183647c08596SBrooks Davis 	i = DHO_DHCP_CLIENT_IDENTIFIER;
183747c08596SBrooks Davis 	if (ip->client->config->send_options[i].len) {
183847c08596SBrooks Davis 		options[i] = &client_id_tree;
183947c08596SBrooks Davis 		options[i]->value = ip->client->config->send_options[i].data;
184047c08596SBrooks Davis 		options[i]->len = ip->client->config->send_options[i].len;
184147c08596SBrooks Davis 		options[i]->buf_size = ip->client->config->send_options[i].len;
184247c08596SBrooks Davis 		options[i]->timeout = 0xFFFFFFFF;
184347c08596SBrooks Davis 	}
184447c08596SBrooks Davis 
184547c08596SBrooks Davis 
184647c08596SBrooks Davis 	/* Set up the option buffer... */
184747c08596SBrooks Davis 	ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0,
184847c08596SBrooks Davis 	    options, 0, 0, 0, NULL, 0);
184947c08596SBrooks Davis 	if (ip->client->packet_length < BOOTP_MIN_LEN)
185047c08596SBrooks Davis 		ip->client->packet_length = BOOTP_MIN_LEN;
185147c08596SBrooks Davis 
185247c08596SBrooks Davis 	ip->client->packet.op = BOOTREQUEST;
185347c08596SBrooks Davis 	ip->client->packet.htype = ip->hw_address.htype;
185447c08596SBrooks Davis 	ip->client->packet.hlen = ip->hw_address.hlen;
185547c08596SBrooks Davis 	ip->client->packet.hops = 0;
185647c08596SBrooks Davis 	ip->client->packet.xid = ip->client->xid;
185747c08596SBrooks Davis 	ip->client->packet.secs = 0; /* Filled in by send_request. */
185847c08596SBrooks Davis 	ip->client->packet.flags = 0;
185947c08596SBrooks Davis 
186047c08596SBrooks Davis 	/* ciaddr must always be zero. */
186147c08596SBrooks Davis 	memset(&ip->client->packet.ciaddr, 0,
186247c08596SBrooks Davis 	    sizeof(ip->client->packet.ciaddr));
186347c08596SBrooks Davis 	memset(&ip->client->packet.yiaddr, 0,
186447c08596SBrooks Davis 	    sizeof(ip->client->packet.yiaddr));
186547c08596SBrooks Davis 	memset(&ip->client->packet.siaddr, 0,
186647c08596SBrooks Davis 	    sizeof(ip->client->packet.siaddr));
186747c08596SBrooks Davis 	memset(&ip->client->packet.giaddr, 0,
186847c08596SBrooks Davis 	    sizeof(ip->client->packet.giaddr));
186947c08596SBrooks Davis 	memcpy(ip->client->packet.chaddr,
187047c08596SBrooks Davis 	    ip->hw_address.haddr, ip->hw_address.hlen);
187147c08596SBrooks Davis }
187247c08596SBrooks Davis 
187347c08596SBrooks Davis void
187447c08596SBrooks Davis free_client_lease(struct client_lease *lease)
187547c08596SBrooks Davis {
187647c08596SBrooks Davis 	int i;
187747c08596SBrooks Davis 
187847c08596SBrooks Davis 	if (lease->server_name)
187947c08596SBrooks Davis 		free(lease->server_name);
188047c08596SBrooks Davis 	if (lease->filename)
188147c08596SBrooks Davis 		free(lease->filename);
188247c08596SBrooks Davis 	for (i = 0; i < 256; i++) {
188347c08596SBrooks Davis 		if (lease->options[i].len)
188447c08596SBrooks Davis 			free(lease->options[i].data);
188547c08596SBrooks Davis 	}
188647c08596SBrooks Davis 	free(lease);
188747c08596SBrooks Davis }
188847c08596SBrooks Davis 
188947c08596SBrooks Davis FILE *leaseFile;
189047c08596SBrooks Davis 
189147c08596SBrooks Davis void
189247c08596SBrooks Davis rewrite_client_leases(void)
189347c08596SBrooks Davis {
189447c08596SBrooks Davis 	struct client_lease *lp;
18957008be5bSPawel Jakub Dawidek 	cap_rights_t rights;
189647c08596SBrooks Davis 
189747c08596SBrooks Davis 	if (!leaseFile) {
189847c08596SBrooks Davis 		leaseFile = fopen(path_dhclient_db, "w");
189947c08596SBrooks Davis 		if (!leaseFile)
190047c08596SBrooks Davis 			error("can't create %s: %m", path_dhclient_db);
190119342eeeSPatrick Kelsey 		cap_rights_init(&rights, CAP_FCNTL, CAP_FSTAT, CAP_FSYNC,
190219342eeeSPatrick Kelsey 		    CAP_FTRUNCATE, CAP_SEEK, CAP_WRITE);
19037008be5bSPawel Jakub Dawidek 		if (cap_rights_limit(fileno(leaseFile), &rights) < 0 &&
1904fe5c7163SPawel Jakub Dawidek 		    errno != ENOSYS) {
1905fe5c7163SPawel Jakub Dawidek 			error("can't limit lease descriptor: %m");
1906fe5c7163SPawel Jakub Dawidek 		}
190719342eeeSPatrick Kelsey 		if (cap_fcntls_limit(fileno(leaseFile), CAP_FCNTL_GETFL) < 0 &&
190819342eeeSPatrick Kelsey 		    errno != ENOSYS) {
190919342eeeSPatrick Kelsey 			error("can't limit lease descriptor fcntls: %m");
191019342eeeSPatrick Kelsey 		}
191147c08596SBrooks Davis 	} else {
191247c08596SBrooks Davis 		fflush(leaseFile);
191347c08596SBrooks Davis 		rewind(leaseFile);
191447c08596SBrooks Davis 	}
191547c08596SBrooks Davis 
191647c08596SBrooks Davis 	for (lp = ifi->client->leases; lp; lp = lp->next)
191747c08596SBrooks Davis 		write_client_lease(ifi, lp, 1);
191847c08596SBrooks Davis 	if (ifi->client->active)
191947c08596SBrooks Davis 		write_client_lease(ifi, ifi->client->active, 1);
192047c08596SBrooks Davis 
192147c08596SBrooks Davis 	fflush(leaseFile);
192247c08596SBrooks Davis 	ftruncate(fileno(leaseFile), ftello(leaseFile));
192347c08596SBrooks Davis 	fsync(fileno(leaseFile));
192447c08596SBrooks Davis }
192547c08596SBrooks Davis 
192647c08596SBrooks Davis void
192747c08596SBrooks Davis write_client_lease(struct interface_info *ip, struct client_lease *lease,
192847c08596SBrooks Davis     int rewrite)
192947c08596SBrooks Davis {
193047c08596SBrooks Davis 	static int leases_written;
193147c08596SBrooks Davis 	struct tm *t;
193247c08596SBrooks Davis 	int i;
193347c08596SBrooks Davis 
193447c08596SBrooks Davis 	if (!rewrite) {
193547c08596SBrooks Davis 		if (leases_written++ > 20) {
193647c08596SBrooks Davis 			rewrite_client_leases();
193747c08596SBrooks Davis 			leases_written = 0;
193847c08596SBrooks Davis 		}
193947c08596SBrooks Davis 	}
194047c08596SBrooks Davis 
194147c08596SBrooks Davis 	/* If the lease came from the config file, we don't need to stash
194247c08596SBrooks Davis 	   a copy in the lease database. */
194347c08596SBrooks Davis 	if (lease->is_static)
194447c08596SBrooks Davis 		return;
194547c08596SBrooks Davis 
194647c08596SBrooks Davis 	if (!leaseFile) {	/* XXX */
194747c08596SBrooks Davis 		leaseFile = fopen(path_dhclient_db, "w");
194847c08596SBrooks Davis 		if (!leaseFile)
194947c08596SBrooks Davis 			error("can't create %s: %m", path_dhclient_db);
195047c08596SBrooks Davis 	}
195147c08596SBrooks Davis 
195247c08596SBrooks Davis 	fprintf(leaseFile, "lease {\n");
195347c08596SBrooks Davis 	if (lease->is_bootp)
195447c08596SBrooks Davis 		fprintf(leaseFile, "  bootp;\n");
195547c08596SBrooks Davis 	fprintf(leaseFile, "  interface \"%s\";\n", ip->name);
195647c08596SBrooks Davis 	fprintf(leaseFile, "  fixed-address %s;\n", piaddr(lease->address));
1957d32438c3SBruce M Simpson 	if (lease->nextserver.len == sizeof(inaddr_any) &&
1958d32438c3SBruce M Simpson 	    0 != memcmp(lease->nextserver.iabuf, &inaddr_any,
1959d32438c3SBruce M Simpson 	    sizeof(inaddr_any)))
1960d32438c3SBruce M Simpson 		fprintf(leaseFile, "  next-server %s;\n",
1961d32438c3SBruce M Simpson 		    piaddr(lease->nextserver));
196247c08596SBrooks Davis 	if (lease->filename)
196347c08596SBrooks Davis 		fprintf(leaseFile, "  filename \"%s\";\n", lease->filename);
196447c08596SBrooks Davis 	if (lease->server_name)
196547c08596SBrooks Davis 		fprintf(leaseFile, "  server-name \"%s\";\n",
196647c08596SBrooks Davis 		    lease->server_name);
196747c08596SBrooks Davis 	if (lease->medium)
196847c08596SBrooks Davis 		fprintf(leaseFile, "  medium \"%s\";\n", lease->medium->string);
196947c08596SBrooks Davis 	for (i = 0; i < 256; i++)
197047c08596SBrooks Davis 		if (lease->options[i].len)
197147c08596SBrooks Davis 			fprintf(leaseFile, "  option %s %s;\n",
197247c08596SBrooks Davis 			    dhcp_options[i].name,
197347c08596SBrooks Davis 			    pretty_print_option(i, lease->options[i].data,
197447c08596SBrooks Davis 			    lease->options[i].len, 1, 1));
197547c08596SBrooks Davis 
197647c08596SBrooks Davis 	t = gmtime(&lease->renewal);
197747c08596SBrooks Davis 	fprintf(leaseFile, "  renew %d %d/%d/%d %02d:%02d:%02d;\n",
197847c08596SBrooks Davis 	    t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday,
197947c08596SBrooks Davis 	    t->tm_hour, t->tm_min, t->tm_sec);
198047c08596SBrooks Davis 	t = gmtime(&lease->rebind);
198147c08596SBrooks Davis 	fprintf(leaseFile, "  rebind %d %d/%d/%d %02d:%02d:%02d;\n",
198247c08596SBrooks Davis 	    t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday,
198347c08596SBrooks Davis 	    t->tm_hour, t->tm_min, t->tm_sec);
198447c08596SBrooks Davis 	t = gmtime(&lease->expiry);
198547c08596SBrooks Davis 	fprintf(leaseFile, "  expire %d %d/%d/%d %02d:%02d:%02d;\n",
198647c08596SBrooks Davis 	    t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday,
198747c08596SBrooks Davis 	    t->tm_hour, t->tm_min, t->tm_sec);
198847c08596SBrooks Davis 	fprintf(leaseFile, "}\n");
198947c08596SBrooks Davis 	fflush(leaseFile);
199047c08596SBrooks Davis }
199147c08596SBrooks Davis 
199247c08596SBrooks Davis void
199347c08596SBrooks Davis script_init(char *reason, struct string_list *medium)
199447c08596SBrooks Davis {
199547c08596SBrooks Davis 	size_t		 len, mediumlen = 0;
199647c08596SBrooks Davis 	struct imsg_hdr	 hdr;
199747c08596SBrooks Davis 	struct buf	*buf;
199847c08596SBrooks Davis 	int		 errs;
199947c08596SBrooks Davis 
200047c08596SBrooks Davis 	if (medium != NULL && medium->string != NULL)
200147c08596SBrooks Davis 		mediumlen = strlen(medium->string);
200247c08596SBrooks Davis 
200347c08596SBrooks Davis 	hdr.code = IMSG_SCRIPT_INIT;
200447c08596SBrooks Davis 	hdr.len = sizeof(struct imsg_hdr) +
200547c08596SBrooks Davis 	    sizeof(size_t) + mediumlen +
200647c08596SBrooks Davis 	    sizeof(size_t) + strlen(reason);
200747c08596SBrooks Davis 
200847c08596SBrooks Davis 	if ((buf = buf_open(hdr.len)) == NULL)
200947c08596SBrooks Davis 		error("buf_open: %m");
201047c08596SBrooks Davis 
201147c08596SBrooks Davis 	errs = 0;
201247c08596SBrooks Davis 	errs += buf_add(buf, &hdr, sizeof(hdr));
201347c08596SBrooks Davis 	errs += buf_add(buf, &mediumlen, sizeof(mediumlen));
201447c08596SBrooks Davis 	if (mediumlen > 0)
201547c08596SBrooks Davis 		errs += buf_add(buf, medium->string, mediumlen);
201647c08596SBrooks Davis 	len = strlen(reason);
201747c08596SBrooks Davis 	errs += buf_add(buf, &len, sizeof(len));
201847c08596SBrooks Davis 	errs += buf_add(buf, reason, len);
201947c08596SBrooks Davis 
202047c08596SBrooks Davis 	if (errs)
202147c08596SBrooks Davis 		error("buf_add: %m");
202247c08596SBrooks Davis 
202347c08596SBrooks Davis 	if (buf_close(privfd, buf) == -1)
202447c08596SBrooks Davis 		error("buf_close: %m");
202547c08596SBrooks Davis }
202647c08596SBrooks Davis 
202747c08596SBrooks Davis void
202847c08596SBrooks Davis priv_script_init(char *reason, char *medium)
202947c08596SBrooks Davis {
203047c08596SBrooks Davis 	struct interface_info *ip = ifi;
203147c08596SBrooks Davis 
203247c08596SBrooks Davis 	if (ip) {
203347c08596SBrooks Davis 		ip->client->scriptEnvsize = 100;
203447c08596SBrooks Davis 		if (ip->client->scriptEnv == NULL)
203547c08596SBrooks Davis 			ip->client->scriptEnv =
203647c08596SBrooks Davis 			    malloc(ip->client->scriptEnvsize * sizeof(char *));
203747c08596SBrooks Davis 		if (ip->client->scriptEnv == NULL)
203847c08596SBrooks Davis 			error("script_init: no memory for environment");
203947c08596SBrooks Davis 
204047c08596SBrooks Davis 		ip->client->scriptEnv[0] = strdup(CLIENT_PATH);
204147c08596SBrooks Davis 		if (ip->client->scriptEnv[0] == NULL)
204247c08596SBrooks Davis 			error("script_init: no memory for environment");
204347c08596SBrooks Davis 
204447c08596SBrooks Davis 		ip->client->scriptEnv[1] = NULL;
204547c08596SBrooks Davis 
204647c08596SBrooks Davis 		script_set_env(ip->client, "", "interface", ip->name);
204747c08596SBrooks Davis 
204847c08596SBrooks Davis 		if (medium)
204947c08596SBrooks Davis 			script_set_env(ip->client, "", "medium", medium);
205047c08596SBrooks Davis 
205147c08596SBrooks Davis 		script_set_env(ip->client, "", "reason", reason);
205247c08596SBrooks Davis 	}
205347c08596SBrooks Davis }
205447c08596SBrooks Davis 
205547c08596SBrooks Davis void
205647c08596SBrooks Davis priv_script_write_params(char *prefix, struct client_lease *lease)
205747c08596SBrooks Davis {
205847c08596SBrooks Davis 	struct interface_info *ip = ifi;
205940767e22SBrooks Davis 	u_int8_t dbuf[1500], *dp = NULL;
206040767e22SBrooks Davis 	int i, len;
206147c08596SBrooks Davis 	char tbuf[128];
206247c08596SBrooks Davis 
206347c08596SBrooks Davis 	script_set_env(ip->client, prefix, "ip_address",
206447c08596SBrooks Davis 	    piaddr(lease->address));
206547c08596SBrooks Davis 
206640767e22SBrooks Davis 	if (ip->client->config->default_actions[DHO_SUBNET_MASK] ==
206740767e22SBrooks Davis 	    ACTION_SUPERSEDE) {
206840767e22SBrooks Davis 		dp = ip->client->config->defaults[DHO_SUBNET_MASK].data;
206940767e22SBrooks Davis 		len = ip->client->config->defaults[DHO_SUBNET_MASK].len;
207040767e22SBrooks Davis 	} else {
207140767e22SBrooks Davis 		dp = lease->options[DHO_SUBNET_MASK].data;
207240767e22SBrooks Davis 		len = lease->options[DHO_SUBNET_MASK].len;
207340767e22SBrooks Davis 	}
207440767e22SBrooks Davis 	if (len && (len < sizeof(lease->address.iabuf))) {
207547c08596SBrooks Davis 		struct iaddr netmask, subnet, broadcast;
207647c08596SBrooks Davis 
207740767e22SBrooks Davis 		memcpy(netmask.iabuf, dp, len);
207840767e22SBrooks Davis 		netmask.len = len;
207947c08596SBrooks Davis 		subnet = subnet_number(lease->address, netmask);
208047c08596SBrooks Davis 		if (subnet.len) {
208147c08596SBrooks Davis 			script_set_env(ip->client, prefix, "network_number",
208247c08596SBrooks Davis 			    piaddr(subnet));
208347c08596SBrooks Davis 			if (!lease->options[DHO_BROADCAST_ADDRESS].len) {
208447c08596SBrooks Davis 				broadcast = broadcast_addr(subnet, netmask);
208547c08596SBrooks Davis 				if (broadcast.len)
208647c08596SBrooks Davis 					script_set_env(ip->client, prefix,
208747c08596SBrooks Davis 					    "broadcast_address",
208847c08596SBrooks Davis 					    piaddr(broadcast));
208947c08596SBrooks Davis 			}
209047c08596SBrooks Davis 		}
209147c08596SBrooks Davis 	}
209247c08596SBrooks Davis 
209347c08596SBrooks Davis 	if (lease->filename)
209447c08596SBrooks Davis 		script_set_env(ip->client, prefix, "filename", lease->filename);
209547c08596SBrooks Davis 	if (lease->server_name)
209647c08596SBrooks Davis 		script_set_env(ip->client, prefix, "server_name",
209747c08596SBrooks Davis 		    lease->server_name);
209847c08596SBrooks Davis 	for (i = 0; i < 256; i++) {
209940767e22SBrooks Davis 		len = 0;
210047c08596SBrooks Davis 
210147c08596SBrooks Davis 		if (ip->client->config->defaults[i].len) {
210247c08596SBrooks Davis 			if (lease->options[i].len) {
210347c08596SBrooks Davis 				switch (
210447c08596SBrooks Davis 				    ip->client->config->default_actions[i]) {
210547c08596SBrooks Davis 				case ACTION_DEFAULT:
210647c08596SBrooks Davis 					dp = lease->options[i].data;
210747c08596SBrooks Davis 					len = lease->options[i].len;
210847c08596SBrooks Davis 					break;
210947c08596SBrooks Davis 				case ACTION_SUPERSEDE:
211047c08596SBrooks Davis supersede:
211147c08596SBrooks Davis 					dp = ip->client->
211247c08596SBrooks Davis 						config->defaults[i].data;
211347c08596SBrooks Davis 					len = ip->client->
211447c08596SBrooks Davis 						config->defaults[i].len;
211547c08596SBrooks Davis 					break;
211647c08596SBrooks Davis 				case ACTION_PREPEND:
211747c08596SBrooks Davis 					len = ip->client->
211847c08596SBrooks Davis 					    config->defaults[i].len +
211947c08596SBrooks Davis 					    lease->options[i].len;
2120043bcc8dSBrian Somers 					if (len >= sizeof(dbuf)) {
212147c08596SBrooks Davis 						warning("no space to %s %s",
212247c08596SBrooks Davis 						    "prepend option",
212347c08596SBrooks Davis 						    dhcp_options[i].name);
212447c08596SBrooks Davis 						goto supersede;
212547c08596SBrooks Davis 					}
212647c08596SBrooks Davis 					dp = dbuf;
212747c08596SBrooks Davis 					memcpy(dp,
212847c08596SBrooks Davis 						ip->client->
212947c08596SBrooks Davis 						config->defaults[i].data,
213047c08596SBrooks Davis 						ip->client->
213147c08596SBrooks Davis 						config->defaults[i].len);
213247c08596SBrooks Davis 					memcpy(dp + ip->client->
213347c08596SBrooks Davis 						config->defaults[i].len,
213447c08596SBrooks Davis 						lease->options[i].data,
213547c08596SBrooks Davis 						lease->options[i].len);
213647c08596SBrooks Davis 					dp[len] = '\0';
213747c08596SBrooks Davis 					break;
213847c08596SBrooks Davis 				case ACTION_APPEND:
2139043bcc8dSBrian Somers 					/*
2140043bcc8dSBrian Somers 					 * When we append, we assume that we're
2141043bcc8dSBrian Somers 					 * appending to text.  Some MS servers
2142043bcc8dSBrian Somers 					 * include a NUL byte at the end of
2143043bcc8dSBrian Somers 					 * the search string provided.
2144043bcc8dSBrian Somers 					 */
214547c08596SBrooks Davis 					len = ip->client->
214647c08596SBrooks Davis 					    config->defaults[i].len +
214747c08596SBrooks Davis 					    lease->options[i].len;
2148043bcc8dSBrian Somers 					if (len >= sizeof(dbuf)) {
214947c08596SBrooks Davis 						warning("no space to %s %s",
215047c08596SBrooks Davis 						    "append option",
215147c08596SBrooks Davis 						    dhcp_options[i].name);
215247c08596SBrooks Davis 						goto supersede;
215347c08596SBrooks Davis 					}
2154043bcc8dSBrian Somers 					memcpy(dbuf,
215547c08596SBrooks Davis 						lease->options[i].data,
215647c08596SBrooks Davis 						lease->options[i].len);
2157043bcc8dSBrian Somers 					for (dp = dbuf + lease->options[i].len;
2158043bcc8dSBrian Somers 					    dp > dbuf; dp--, len--)
2159043bcc8dSBrian Somers 						if (dp[-1] != '\0')
2160043bcc8dSBrian Somers 							break;
2161043bcc8dSBrian Somers 					memcpy(dp,
216247c08596SBrooks Davis 						ip->client->
216347c08596SBrooks Davis 						config->defaults[i].data,
216447c08596SBrooks Davis 						ip->client->
216547c08596SBrooks Davis 						config->defaults[i].len);
2166043bcc8dSBrian Somers 					dp = dbuf;
216747c08596SBrooks Davis 					dp[len] = '\0';
216847c08596SBrooks Davis 				}
216947c08596SBrooks Davis 			} else {
217047c08596SBrooks Davis 				dp = ip->client->
217147c08596SBrooks Davis 					config->defaults[i].data;
217247c08596SBrooks Davis 				len = ip->client->
217347c08596SBrooks Davis 					config->defaults[i].len;
217447c08596SBrooks Davis 			}
217547c08596SBrooks Davis 		} else if (lease->options[i].len) {
217647c08596SBrooks Davis 			len = lease->options[i].len;
217747c08596SBrooks Davis 			dp = lease->options[i].data;
217847c08596SBrooks Davis 		} else {
217947c08596SBrooks Davis 			len = 0;
218047c08596SBrooks Davis 		}
218147c08596SBrooks Davis 		if (len) {
218247c08596SBrooks Davis 			char name[256];
218347c08596SBrooks Davis 
218447c08596SBrooks Davis 			if (dhcp_option_ev_name(name, sizeof(name),
218547c08596SBrooks Davis 			    &dhcp_options[i]))
218647c08596SBrooks Davis 				script_set_env(ip->client, prefix, name,
218747c08596SBrooks Davis 				    pretty_print_option(i, dp, len, 0, 0));
218847c08596SBrooks Davis 		}
218947c08596SBrooks Davis 	}
219047c08596SBrooks Davis 	snprintf(tbuf, sizeof(tbuf), "%d", (int)lease->expiry);
219147c08596SBrooks Davis 	script_set_env(ip->client, prefix, "expiry", tbuf);
219247c08596SBrooks Davis }
219347c08596SBrooks Davis 
219447c08596SBrooks Davis void
219547c08596SBrooks Davis script_write_params(char *prefix, struct client_lease *lease)
219647c08596SBrooks Davis {
219747c08596SBrooks Davis 	size_t		 fn_len = 0, sn_len = 0, pr_len = 0;
219847c08596SBrooks Davis 	struct imsg_hdr	 hdr;
219947c08596SBrooks Davis 	struct buf	*buf;
220047c08596SBrooks Davis 	int		 errs, i;
220147c08596SBrooks Davis 
220247c08596SBrooks Davis 	if (lease->filename != NULL)
220347c08596SBrooks Davis 		fn_len = strlen(lease->filename);
220447c08596SBrooks Davis 	if (lease->server_name != NULL)
220547c08596SBrooks Davis 		sn_len = strlen(lease->server_name);
220647c08596SBrooks Davis 	if (prefix != NULL)
220747c08596SBrooks Davis 		pr_len = strlen(prefix);
220847c08596SBrooks Davis 
220947c08596SBrooks Davis 	hdr.code = IMSG_SCRIPT_WRITE_PARAMS;
221047c08596SBrooks Davis 	hdr.len = sizeof(hdr) + sizeof(struct client_lease) +
221147c08596SBrooks Davis 	    sizeof(size_t) + fn_len + sizeof(size_t) + sn_len +
221247c08596SBrooks Davis 	    sizeof(size_t) + pr_len;
221347c08596SBrooks Davis 
221447c08596SBrooks Davis 	for (i = 0; i < 256; i++)
221547c08596SBrooks Davis 		hdr.len += sizeof(int) + lease->options[i].len;
221647c08596SBrooks Davis 
221747c08596SBrooks Davis 	scripttime = time(NULL);
221847c08596SBrooks Davis 
221947c08596SBrooks Davis 	if ((buf = buf_open(hdr.len)) == NULL)
222047c08596SBrooks Davis 		error("buf_open: %m");
222147c08596SBrooks Davis 
222247c08596SBrooks Davis 	errs = 0;
222347c08596SBrooks Davis 	errs += buf_add(buf, &hdr, sizeof(hdr));
222447c08596SBrooks Davis 	errs += buf_add(buf, lease, sizeof(struct client_lease));
222547c08596SBrooks Davis 	errs += buf_add(buf, &fn_len, sizeof(fn_len));
222647c08596SBrooks Davis 	errs += buf_add(buf, lease->filename, fn_len);
222747c08596SBrooks Davis 	errs += buf_add(buf, &sn_len, sizeof(sn_len));
222847c08596SBrooks Davis 	errs += buf_add(buf, lease->server_name, sn_len);
222947c08596SBrooks Davis 	errs += buf_add(buf, &pr_len, sizeof(pr_len));
223047c08596SBrooks Davis 	errs += buf_add(buf, prefix, pr_len);
223147c08596SBrooks Davis 
223247c08596SBrooks Davis 	for (i = 0; i < 256; i++) {
223347c08596SBrooks Davis 		errs += buf_add(buf, &lease->options[i].len,
223447c08596SBrooks Davis 		    sizeof(lease->options[i].len));
223547c08596SBrooks Davis 		errs += buf_add(buf, lease->options[i].data,
223647c08596SBrooks Davis 		    lease->options[i].len);
223747c08596SBrooks Davis 	}
223847c08596SBrooks Davis 
223947c08596SBrooks Davis 	if (errs)
224047c08596SBrooks Davis 		error("buf_add: %m");
224147c08596SBrooks Davis 
224247c08596SBrooks Davis 	if (buf_close(privfd, buf) == -1)
224347c08596SBrooks Davis 		error("buf_close: %m");
224447c08596SBrooks Davis }
224547c08596SBrooks Davis 
224647c08596SBrooks Davis int
224747c08596SBrooks Davis script_go(void)
224847c08596SBrooks Davis {
224947c08596SBrooks Davis 	struct imsg_hdr	 hdr;
225047c08596SBrooks Davis 	struct buf	*buf;
225147c08596SBrooks Davis 	int		 ret;
225247c08596SBrooks Davis 
225347c08596SBrooks Davis 	hdr.code = IMSG_SCRIPT_GO;
225447c08596SBrooks Davis 	hdr.len = sizeof(struct imsg_hdr);
225547c08596SBrooks Davis 
225647c08596SBrooks Davis 	if ((buf = buf_open(hdr.len)) == NULL)
225747c08596SBrooks Davis 		error("buf_open: %m");
225847c08596SBrooks Davis 
225947c08596SBrooks Davis 	if (buf_add(buf, &hdr, sizeof(hdr)))
226047c08596SBrooks Davis 		error("buf_add: %m");
226147c08596SBrooks Davis 
226247c08596SBrooks Davis 	if (buf_close(privfd, buf) == -1)
226347c08596SBrooks Davis 		error("buf_close: %m");
226447c08596SBrooks Davis 
226547c08596SBrooks Davis 	bzero(&hdr, sizeof(hdr));
226647c08596SBrooks Davis 	buf_read(privfd, &hdr, sizeof(hdr));
226747c08596SBrooks Davis 	if (hdr.code != IMSG_SCRIPT_GO_RET)
226847c08596SBrooks Davis 		error("unexpected msg type %u", hdr.code);
226947c08596SBrooks Davis 	if (hdr.len != sizeof(hdr) + sizeof(int))
227047c08596SBrooks Davis 		error("received corrupted message");
227147c08596SBrooks Davis 	buf_read(privfd, &ret, sizeof(ret));
227247c08596SBrooks Davis 
22736964abefSBrian Somers 	scripttime = time(NULL);
22746964abefSBrian Somers 
227547c08596SBrooks Davis 	return (ret);
227647c08596SBrooks Davis }
227747c08596SBrooks Davis 
227847c08596SBrooks Davis int
227947c08596SBrooks Davis priv_script_go(void)
228047c08596SBrooks Davis {
228147c08596SBrooks Davis 	char *scriptName, *argv[2], **envp, *epp[3], reason[] = "REASON=NBI";
228247c08596SBrooks Davis 	static char client_path[] = CLIENT_PATH;
228347c08596SBrooks Davis 	struct interface_info *ip = ifi;
228447c08596SBrooks Davis 	int pid, wpid, wstatus;
228547c08596SBrooks Davis 
228647c08596SBrooks Davis 	scripttime = time(NULL);
228747c08596SBrooks Davis 
228847c08596SBrooks Davis 	if (ip) {
228947c08596SBrooks Davis 		scriptName = ip->client->config->script_name;
229047c08596SBrooks Davis 		envp = ip->client->scriptEnv;
229147c08596SBrooks Davis 	} else {
229247c08596SBrooks Davis 		scriptName = top_level_config.script_name;
229347c08596SBrooks Davis 		epp[0] = reason;
229447c08596SBrooks Davis 		epp[1] = client_path;
229547c08596SBrooks Davis 		epp[2] = NULL;
229647c08596SBrooks Davis 		envp = epp;
229747c08596SBrooks Davis 	}
229847c08596SBrooks Davis 
229947c08596SBrooks Davis 	argv[0] = scriptName;
230047c08596SBrooks Davis 	argv[1] = NULL;
230147c08596SBrooks Davis 
230247c08596SBrooks Davis 	pid = fork();
230347c08596SBrooks Davis 	if (pid < 0) {
230447c08596SBrooks Davis 		error("fork: %m");
230547c08596SBrooks Davis 		wstatus = 0;
230647c08596SBrooks Davis 	} else if (pid) {
230747c08596SBrooks Davis 		do {
230847c08596SBrooks Davis 			wpid = wait(&wstatus);
230947c08596SBrooks Davis 		} while (wpid != pid && wpid > 0);
231047c08596SBrooks Davis 		if (wpid < 0) {
231147c08596SBrooks Davis 			error("wait: %m");
231247c08596SBrooks Davis 			wstatus = 0;
231347c08596SBrooks Davis 		}
231447c08596SBrooks Davis 	} else {
231547c08596SBrooks Davis 		execve(scriptName, argv, envp);
231647c08596SBrooks Davis 		error("execve (%s, ...): %m", scriptName);
231747c08596SBrooks Davis 	}
231847c08596SBrooks Davis 
231947c08596SBrooks Davis 	if (ip)
232047c08596SBrooks Davis 		script_flush_env(ip->client);
232147c08596SBrooks Davis 
232247c08596SBrooks Davis 	return (wstatus & 0xff);
232347c08596SBrooks Davis }
232447c08596SBrooks Davis 
232547c08596SBrooks Davis void
232647c08596SBrooks Davis script_set_env(struct client_state *client, const char *prefix,
232747c08596SBrooks Davis     const char *name, const char *value)
232847c08596SBrooks Davis {
232947c08596SBrooks Davis 	int i, j, namelen;
233047c08596SBrooks Davis 
2331dd09ce39SSepherosa Ziehau 	/* No `` or $() command substitution allowed in environment values! */
2332dd09ce39SSepherosa Ziehau 	for (j=0; j < strlen(value); j++)
2333dd09ce39SSepherosa Ziehau 		switch (value[j]) {
2334dd09ce39SSepherosa Ziehau 		case '`':
2335dd09ce39SSepherosa Ziehau 		case '$':
2336dd09ce39SSepherosa Ziehau 			warning("illegal character (%c) in value '%s'",
2337dd09ce39SSepherosa Ziehau 			    value[j], value);
2338dd09ce39SSepherosa Ziehau 			/* Ignore this option */
2339dd09ce39SSepherosa Ziehau 			return;
2340dd09ce39SSepherosa Ziehau 		}
2341dd09ce39SSepherosa Ziehau 
234247c08596SBrooks Davis 	namelen = strlen(name);
234347c08596SBrooks Davis 
234447c08596SBrooks Davis 	for (i = 0; client->scriptEnv[i]; i++)
234547c08596SBrooks Davis 		if (strncmp(client->scriptEnv[i], name, namelen) == 0 &&
234647c08596SBrooks Davis 		    client->scriptEnv[i][namelen] == '=')
234747c08596SBrooks Davis 			break;
234847c08596SBrooks Davis 
234947c08596SBrooks Davis 	if (client->scriptEnv[i])
235047c08596SBrooks Davis 		/* Reuse the slot. */
235147c08596SBrooks Davis 		free(client->scriptEnv[i]);
235247c08596SBrooks Davis 	else {
235347c08596SBrooks Davis 		/* New variable.  Expand if necessary. */
235447c08596SBrooks Davis 		if (i >= client->scriptEnvsize - 1) {
235547c08596SBrooks Davis 			char **newscriptEnv;
235647c08596SBrooks Davis 			int newscriptEnvsize = client->scriptEnvsize + 50;
235747c08596SBrooks Davis 
235847c08596SBrooks Davis 			newscriptEnv = realloc(client->scriptEnv,
235947c08596SBrooks Davis 			    newscriptEnvsize);
236047c08596SBrooks Davis 			if (newscriptEnv == NULL) {
236147c08596SBrooks Davis 				free(client->scriptEnv);
236247c08596SBrooks Davis 				client->scriptEnv = NULL;
236347c08596SBrooks Davis 				client->scriptEnvsize = 0;
236447c08596SBrooks Davis 				error("script_set_env: no memory for variable");
236547c08596SBrooks Davis 			}
236647c08596SBrooks Davis 			client->scriptEnv = newscriptEnv;
236747c08596SBrooks Davis 			client->scriptEnvsize = newscriptEnvsize;
236847c08596SBrooks Davis 		}
236947c08596SBrooks Davis 		/* need to set the NULL pointer at end of array beyond
237047c08596SBrooks Davis 		   the new slot. */
237147c08596SBrooks Davis 		client->scriptEnv[i + 1] = NULL;
237247c08596SBrooks Davis 	}
237347c08596SBrooks Davis 	/* Allocate space and format the variable in the appropriate slot. */
237447c08596SBrooks Davis 	client->scriptEnv[i] = malloc(strlen(prefix) + strlen(name) + 1 +
237547c08596SBrooks Davis 	    strlen(value) + 1);
237647c08596SBrooks Davis 	if (client->scriptEnv[i] == NULL)
237747c08596SBrooks Davis 		error("script_set_env: no memory for variable assignment");
237847c08596SBrooks Davis 	snprintf(client->scriptEnv[i], strlen(prefix) + strlen(name) +
237947c08596SBrooks Davis 	    1 + strlen(value) + 1, "%s%s=%s", prefix, name, value);
238047c08596SBrooks Davis }
238147c08596SBrooks Davis 
238247c08596SBrooks Davis void
238347c08596SBrooks Davis script_flush_env(struct client_state *client)
238447c08596SBrooks Davis {
238547c08596SBrooks Davis 	int i;
238647c08596SBrooks Davis 
238747c08596SBrooks Davis 	for (i = 0; client->scriptEnv[i]; i++) {
238847c08596SBrooks Davis 		free(client->scriptEnv[i]);
238947c08596SBrooks Davis 		client->scriptEnv[i] = NULL;
239047c08596SBrooks Davis 	}
239147c08596SBrooks Davis 	client->scriptEnvsize = 0;
239247c08596SBrooks Davis }
239347c08596SBrooks Davis 
239447c08596SBrooks Davis int
239547c08596SBrooks Davis dhcp_option_ev_name(char *buf, size_t buflen, struct option *option)
239647c08596SBrooks Davis {
239747c08596SBrooks Davis 	int i;
239847c08596SBrooks Davis 
239947c08596SBrooks Davis 	for (i = 0; option->name[i]; i++) {
240047c08596SBrooks Davis 		if (i + 1 == buflen)
240147c08596SBrooks Davis 			return 0;
240247c08596SBrooks Davis 		if (option->name[i] == '-')
240347c08596SBrooks Davis 			buf[i] = '_';
240447c08596SBrooks Davis 		else
240547c08596SBrooks Davis 			buf[i] = option->name[i];
240647c08596SBrooks Davis 	}
240747c08596SBrooks Davis 
240847c08596SBrooks Davis 	buf[i] = 0;
240947c08596SBrooks Davis 	return 1;
241047c08596SBrooks Davis }
241147c08596SBrooks Davis 
241247c08596SBrooks Davis void
241347c08596SBrooks Davis go_daemon(void)
241447c08596SBrooks Davis {
241547c08596SBrooks Davis 	static int state = 0;
24167008be5bSPawel Jakub Dawidek 	cap_rights_t rights;
241747c08596SBrooks Davis 
241847c08596SBrooks Davis 	if (no_daemon || state)
241947c08596SBrooks Davis 		return;
242047c08596SBrooks Davis 
242147c08596SBrooks Davis 	state = 1;
242247c08596SBrooks Davis 
242347c08596SBrooks Davis 	/* Stop logging to stderr... */
242447c08596SBrooks Davis 	log_perror = 0;
242547c08596SBrooks Davis 
242647c08596SBrooks Davis 	if (daemon(1, 0) == -1)
242747c08596SBrooks Davis 		error("daemon");
242847c08596SBrooks Davis 
24297008be5bSPawel Jakub Dawidek 	cap_rights_init(&rights);
24307008be5bSPawel Jakub Dawidek 
24314c7a48b7SPawel Jakub Dawidek 	if (pidfile != NULL) {
243223f39c90SDag-Erling Smørgrav 		pidfile_write(pidfile);
24337008be5bSPawel Jakub Dawidek 		if (cap_rights_limit(pidfile_fileno(pidfile), &rights) < 0 &&
24344c7a48b7SPawel Jakub Dawidek 		    errno != ENOSYS) {
24354c7a48b7SPawel Jakub Dawidek 			error("can't limit pidfile descriptor: %m");
24364c7a48b7SPawel Jakub Dawidek 		}
24374c7a48b7SPawel Jakub Dawidek 	}
243823f39c90SDag-Erling Smørgrav 
243947c08596SBrooks Davis 	/* we are chrooted, daemon(3) fails to open /dev/null */
244047c08596SBrooks Davis 	if (nullfd != -1) {
244147c08596SBrooks Davis 		dup2(nullfd, STDIN_FILENO);
244247c08596SBrooks Davis 		dup2(nullfd, STDOUT_FILENO);
244347c08596SBrooks Davis 		dup2(nullfd, STDERR_FILENO);
244447c08596SBrooks Davis 		close(nullfd);
244547c08596SBrooks Davis 		nullfd = -1;
244647c08596SBrooks Davis 	}
2447a6f38228SPawel Jakub Dawidek 
24487008be5bSPawel Jakub Dawidek 	if (cap_rights_limit(STDIN_FILENO, &rights) < 0 && errno != ENOSYS)
2449a6f38228SPawel Jakub Dawidek 		error("can't limit stdin: %m");
24507008be5bSPawel Jakub Dawidek 	cap_rights_init(&rights, CAP_WRITE);
24517008be5bSPawel Jakub Dawidek 	if (cap_rights_limit(STDOUT_FILENO, &rights) < 0 && errno != ENOSYS)
2452a6f38228SPawel Jakub Dawidek 		error("can't limit stdout: %m");
24537008be5bSPawel Jakub Dawidek 	if (cap_rights_limit(STDERR_FILENO, &rights) < 0 && errno != ENOSYS)
2454a6f38228SPawel Jakub Dawidek 		error("can't limit stderr: %m");
245547c08596SBrooks Davis }
245647c08596SBrooks Davis 
245747c08596SBrooks Davis int
245847c08596SBrooks Davis check_option(struct client_lease *l, int option)
245947c08596SBrooks Davis {
246047c08596SBrooks Davis 	char *opbuf;
246147c08596SBrooks Davis 	char *sbuf;
246247c08596SBrooks Davis 
246347c08596SBrooks Davis 	/* we use this, since this is what gets passed to dhclient-script */
246447c08596SBrooks Davis 
246547c08596SBrooks Davis 	opbuf = pretty_print_option(option, l->options[option].data,
246647c08596SBrooks Davis 	    l->options[option].len, 0, 0);
246747c08596SBrooks Davis 
246847c08596SBrooks Davis 	sbuf = option_as_string(option, l->options[option].data,
246947c08596SBrooks Davis 	    l->options[option].len);
247047c08596SBrooks Davis 
247147c08596SBrooks Davis 	switch (option) {
247247c08596SBrooks Davis 	case DHO_SUBNET_MASK:
247347c08596SBrooks Davis 	case DHO_TIME_SERVERS:
247447c08596SBrooks Davis 	case DHO_NAME_SERVERS:
247547c08596SBrooks Davis 	case DHO_ROUTERS:
247647c08596SBrooks Davis 	case DHO_DOMAIN_NAME_SERVERS:
247747c08596SBrooks Davis 	case DHO_LOG_SERVERS:
247847c08596SBrooks Davis 	case DHO_COOKIE_SERVERS:
247947c08596SBrooks Davis 	case DHO_LPR_SERVERS:
248047c08596SBrooks Davis 	case DHO_IMPRESS_SERVERS:
248147c08596SBrooks Davis 	case DHO_RESOURCE_LOCATION_SERVERS:
248247c08596SBrooks Davis 	case DHO_SWAP_SERVER:
248347c08596SBrooks Davis 	case DHO_BROADCAST_ADDRESS:
248447c08596SBrooks Davis 	case DHO_NIS_SERVERS:
248547c08596SBrooks Davis 	case DHO_NTP_SERVERS:
248647c08596SBrooks Davis 	case DHO_NETBIOS_NAME_SERVERS:
248747c08596SBrooks Davis 	case DHO_NETBIOS_DD_SERVER:
248847c08596SBrooks Davis 	case DHO_FONT_SERVERS:
248947c08596SBrooks Davis 	case DHO_DHCP_SERVER_IDENTIFIER:
249038e755fdSBrooks Davis 	case DHO_NISPLUS_SERVERS:
249138e755fdSBrooks Davis 	case DHO_MOBILE_IP_HOME_AGENT:
2492a36c0b6bSBrooks Davis 	case DHO_SMTP_SERVER:
2493a36c0b6bSBrooks Davis 	case DHO_POP_SERVER:
2494a36c0b6bSBrooks Davis 	case DHO_NNTP_SERVER:
2495a36c0b6bSBrooks Davis 	case DHO_WWW_SERVER:
2496a36c0b6bSBrooks Davis 	case DHO_FINGER_SERVER:
2497a36c0b6bSBrooks Davis 	case DHO_IRC_SERVER:
249838e755fdSBrooks Davis 	case DHO_STREETTALK_SERVER:
249938e755fdSBrooks Davis 	case DHO_STREETTALK_DA_SERVER:
250047c08596SBrooks Davis 		if (!ipv4addrs(opbuf)) {
250147c08596SBrooks Davis 			warning("Invalid IP address in option: %s", opbuf);
250247c08596SBrooks Davis 			return (0);
250347c08596SBrooks Davis 		}
250447c08596SBrooks Davis 		return (1)  ;
250547c08596SBrooks Davis 	case DHO_HOST_NAME:
250647c08596SBrooks Davis 	case DHO_NIS_DOMAIN:
250738e755fdSBrooks Davis 	case DHO_NISPLUS_DOMAIN:
250838e755fdSBrooks Davis 	case DHO_TFTP_SERVER_NAME:
250947c08596SBrooks Davis 		if (!res_hnok(sbuf)) {
251047c08596SBrooks Davis 			warning("Bogus Host Name option %d: %s (%s)", option,
251147c08596SBrooks Davis 			    sbuf, opbuf);
251282dbbc41SBrooks Davis 			l->options[option].len = 0;
251382dbbc41SBrooks Davis 			free(l->options[option].data);
251447c08596SBrooks Davis 		}
251547c08596SBrooks Davis 		return (1);
2516b388f1cbSBrooks Davis 	case DHO_DOMAIN_NAME:
2517409139f0SJean-Sébastien Pédron 	case DHO_DOMAIN_SEARCH:
2518f954ec0bSBrooks Davis 		if (!res_hnok(sbuf)) {
2519f954ec0bSBrooks Davis 			if (!check_search(sbuf)) {
2520f954ec0bSBrooks Davis 				warning("Bogus domain search list %d: %s (%s)",
2521f954ec0bSBrooks Davis 				    option, sbuf, opbuf);
252282dbbc41SBrooks Davis 				l->options[option].len = 0;
252382dbbc41SBrooks Davis 				free(l->options[option].data);
2524f954ec0bSBrooks Davis 			}
2525f954ec0bSBrooks Davis 		}
2526f954ec0bSBrooks Davis 		return (1);
252747c08596SBrooks Davis 	case DHO_PAD:
252847c08596SBrooks Davis 	case DHO_TIME_OFFSET:
252947c08596SBrooks Davis 	case DHO_BOOT_SIZE:
253047c08596SBrooks Davis 	case DHO_MERIT_DUMP:
253147c08596SBrooks Davis 	case DHO_ROOT_PATH:
253247c08596SBrooks Davis 	case DHO_EXTENSIONS_PATH:
253347c08596SBrooks Davis 	case DHO_IP_FORWARDING:
253447c08596SBrooks Davis 	case DHO_NON_LOCAL_SOURCE_ROUTING:
253547c08596SBrooks Davis 	case DHO_POLICY_FILTER:
253647c08596SBrooks Davis 	case DHO_MAX_DGRAM_REASSEMBLY:
253747c08596SBrooks Davis 	case DHO_DEFAULT_IP_TTL:
253847c08596SBrooks Davis 	case DHO_PATH_MTU_AGING_TIMEOUT:
253947c08596SBrooks Davis 	case DHO_PATH_MTU_PLATEAU_TABLE:
254047c08596SBrooks Davis 	case DHO_INTERFACE_MTU:
254147c08596SBrooks Davis 	case DHO_ALL_SUBNETS_LOCAL:
254247c08596SBrooks Davis 	case DHO_PERFORM_MASK_DISCOVERY:
254347c08596SBrooks Davis 	case DHO_MASK_SUPPLIER:
254447c08596SBrooks Davis 	case DHO_ROUTER_DISCOVERY:
254547c08596SBrooks Davis 	case DHO_ROUTER_SOLICITATION_ADDRESS:
254647c08596SBrooks Davis 	case DHO_STATIC_ROUTES:
254747c08596SBrooks Davis 	case DHO_TRAILER_ENCAPSULATION:
254847c08596SBrooks Davis 	case DHO_ARP_CACHE_TIMEOUT:
254947c08596SBrooks Davis 	case DHO_IEEE802_3_ENCAPSULATION:
255047c08596SBrooks Davis 	case DHO_DEFAULT_TCP_TTL:
255147c08596SBrooks Davis 	case DHO_TCP_KEEPALIVE_INTERVAL:
255247c08596SBrooks Davis 	case DHO_TCP_KEEPALIVE_GARBAGE:
255347c08596SBrooks Davis 	case DHO_VENDOR_ENCAPSULATED_OPTIONS:
255447c08596SBrooks Davis 	case DHO_NETBIOS_NODE_TYPE:
255547c08596SBrooks Davis 	case DHO_NETBIOS_SCOPE:
255647c08596SBrooks Davis 	case DHO_X_DISPLAY_MANAGER:
255747c08596SBrooks Davis 	case DHO_DHCP_REQUESTED_ADDRESS:
255847c08596SBrooks Davis 	case DHO_DHCP_LEASE_TIME:
255947c08596SBrooks Davis 	case DHO_DHCP_OPTION_OVERLOAD:
256047c08596SBrooks Davis 	case DHO_DHCP_MESSAGE_TYPE:
256147c08596SBrooks Davis 	case DHO_DHCP_PARAMETER_REQUEST_LIST:
256247c08596SBrooks Davis 	case DHO_DHCP_MESSAGE:
256347c08596SBrooks Davis 	case DHO_DHCP_MAX_MESSAGE_SIZE:
256447c08596SBrooks Davis 	case DHO_DHCP_RENEWAL_TIME:
256547c08596SBrooks Davis 	case DHO_DHCP_REBINDING_TIME:
256647c08596SBrooks Davis 	case DHO_DHCP_CLASS_IDENTIFIER:
256747c08596SBrooks Davis 	case DHO_DHCP_CLIENT_IDENTIFIER:
256838e755fdSBrooks Davis 	case DHO_BOOTFILE_NAME:
256947c08596SBrooks Davis 	case DHO_DHCP_USER_CLASS_ID:
257047c08596SBrooks Davis 	case DHO_END:
257147c08596SBrooks Davis 		return (1);
25722fcc7370SEd Maste 	case DHO_CLASSLESS_ROUTES:
25732fcc7370SEd Maste 		return (check_classless_option(l->options[option].data,
25742fcc7370SEd Maste 		    l->options[option].len));
257547c08596SBrooks Davis 	default:
257647c08596SBrooks Davis 		warning("unknown dhcp option value 0x%x", option);
257747c08596SBrooks Davis 		return (unknown_ok);
257847c08596SBrooks Davis 	}
257947c08596SBrooks Davis }
258047c08596SBrooks Davis 
25812fcc7370SEd Maste /* RFC 3442 The Classless Static Routes option checks */
25822fcc7370SEd Maste int
25832fcc7370SEd Maste check_classless_option(unsigned char *data, int len)
25842fcc7370SEd Maste {
25852fcc7370SEd Maste 	int i = 0;
25862fcc7370SEd Maste 	unsigned char width;
25872fcc7370SEd Maste 	in_addr_t addr, mask;
25882fcc7370SEd Maste 
25892fcc7370SEd Maste 	if (len < 5) {
25902fcc7370SEd Maste 		warning("Too small length: %d", len);
25912fcc7370SEd Maste 		return (0);
25922fcc7370SEd Maste 	}
25932fcc7370SEd Maste 	while(i < len) {
25942fcc7370SEd Maste 		width = data[i++];
25952fcc7370SEd Maste 		if (width == 0) {
25962fcc7370SEd Maste 			i += 4;
25972fcc7370SEd Maste 			continue;
25982fcc7370SEd Maste 		} else if (width < 9) {
25992fcc7370SEd Maste 			addr =  (in_addr_t)(data[i]	<< 24);
26002fcc7370SEd Maste 			i += 1;
26012fcc7370SEd Maste 		} else if (width < 17) {
26022fcc7370SEd Maste 			addr =  (in_addr_t)(data[i]	<< 24) +
26032fcc7370SEd Maste 				(in_addr_t)(data[i + 1]	<< 16);
26042fcc7370SEd Maste 			i += 2;
26052fcc7370SEd Maste 		} else if (width < 25) {
26062fcc7370SEd Maste 			addr =  (in_addr_t)(data[i]	<< 24) +
26072fcc7370SEd Maste 				(in_addr_t)(data[i + 1]	<< 16) +
26082fcc7370SEd Maste 				(in_addr_t)(data[i + 2]	<< 8);
26092fcc7370SEd Maste 			i += 3;
26102fcc7370SEd Maste 		} else if (width < 33) {
26112fcc7370SEd Maste 			addr =  (in_addr_t)(data[i]	<< 24) +
26122fcc7370SEd Maste 				(in_addr_t)(data[i + 1]	<< 16) +
26132fcc7370SEd Maste 				(in_addr_t)(data[i + 2]	<< 8)  +
26142fcc7370SEd Maste 				data[i + 3];
26152fcc7370SEd Maste 			i += 4;
26162fcc7370SEd Maste 		} else {
26172fcc7370SEd Maste 			warning("Incorrect subnet width: %d", width);
26182fcc7370SEd Maste 			return (0);
26192fcc7370SEd Maste 		}
26202fcc7370SEd Maste 		mask = (in_addr_t)(~0) << (32 - width);
26212fcc7370SEd Maste 		addr = ntohl(addr);
26222fcc7370SEd Maste 		mask = ntohl(mask);
26232fcc7370SEd Maste 
26242fcc7370SEd Maste 		/*
26252fcc7370SEd Maste 		 * From RFC 3442:
26262fcc7370SEd Maste 		 * ... After deriving a subnet number and subnet mask
26272fcc7370SEd Maste 		 * from each destination descriptor, the DHCP client
26282fcc7370SEd Maste 		 * MUST zero any bits in the subnet number where the
26292fcc7370SEd Maste 		 * corresponding bit in the mask is zero...
26302fcc7370SEd Maste 		 */
26312fcc7370SEd Maste 		if ((addr & mask) != addr) {
26322fcc7370SEd Maste 			addr &= mask;
26332fcc7370SEd Maste 			data[i - 1] = (unsigned char)(
26342fcc7370SEd Maste 				(addr >> (((32 - width)/8)*8)) & 0xFF);
26352fcc7370SEd Maste 		}
26362fcc7370SEd Maste 		i += 4;
26372fcc7370SEd Maste 	}
26382fcc7370SEd Maste 	if (i > len) {
26392fcc7370SEd Maste 		warning("Incorrect data length: %d (must be %d)", len, i);
26402fcc7370SEd Maste 		return (0);
26412fcc7370SEd Maste 	}
26422fcc7370SEd Maste 	return (1);
26432fcc7370SEd Maste }
26442fcc7370SEd Maste 
264547c08596SBrooks Davis int
264647c08596SBrooks Davis res_hnok(const char *dn)
264747c08596SBrooks Davis {
264847c08596SBrooks Davis 	int pch = PERIOD, ch = *dn++;
264947c08596SBrooks Davis 
265047c08596SBrooks Davis 	while (ch != '\0') {
265147c08596SBrooks Davis 		int nch = *dn++;
265247c08596SBrooks Davis 
265347c08596SBrooks Davis 		if (periodchar(ch)) {
265447c08596SBrooks Davis 			;
265547c08596SBrooks Davis 		} else if (periodchar(pch)) {
265647c08596SBrooks Davis 			if (!borderchar(ch))
265747c08596SBrooks Davis 				return (0);
265847c08596SBrooks Davis 		} else if (periodchar(nch) || nch == '\0') {
265947c08596SBrooks Davis 			if (!borderchar(ch))
266047c08596SBrooks Davis 				return (0);
266147c08596SBrooks Davis 		} else {
266247c08596SBrooks Davis 			if (!middlechar(ch))
266347c08596SBrooks Davis 				return (0);
266447c08596SBrooks Davis 		}
266547c08596SBrooks Davis 		pch = ch, ch = nch;
266647c08596SBrooks Davis 	}
266747c08596SBrooks Davis 	return (1);
266847c08596SBrooks Davis }
266947c08596SBrooks Davis 
2670f954ec0bSBrooks Davis int
2671f954ec0bSBrooks Davis check_search(const char *srch)
2672f954ec0bSBrooks Davis {
2673f954ec0bSBrooks Davis         int pch = PERIOD, ch = *srch++;
2674f954ec0bSBrooks Davis 	int domains = 1;
2675f954ec0bSBrooks Davis 
2676f954ec0bSBrooks Davis 	/* 256 char limit re resolv.conf(5) */
2677f954ec0bSBrooks Davis 	if (strlen(srch) > 256)
2678f954ec0bSBrooks Davis 		return (0);
2679f954ec0bSBrooks Davis 
2680f954ec0bSBrooks Davis 	while (whitechar(ch))
2681f954ec0bSBrooks Davis 		ch = *srch++;
2682f954ec0bSBrooks Davis 
2683f954ec0bSBrooks Davis         while (ch != '\0') {
2684f954ec0bSBrooks Davis                 int nch = *srch++;
2685f954ec0bSBrooks Davis 
2686f954ec0bSBrooks Davis                 if (periodchar(ch) || whitechar(ch)) {
2687f954ec0bSBrooks Davis                         ;
2688f954ec0bSBrooks Davis                 } else if (periodchar(pch)) {
2689f954ec0bSBrooks Davis                         if (!borderchar(ch))
2690f954ec0bSBrooks Davis                                 return (0);
2691f954ec0bSBrooks Davis                 } else if (periodchar(nch) || nch == '\0') {
2692f954ec0bSBrooks Davis                         if (!borderchar(ch))
2693f954ec0bSBrooks Davis                                 return (0);
2694f954ec0bSBrooks Davis                 } else {
2695f954ec0bSBrooks Davis                         if (!middlechar(ch))
2696f954ec0bSBrooks Davis                                 return (0);
2697f954ec0bSBrooks Davis                 }
2698f954ec0bSBrooks Davis 		if (!whitechar(ch)) {
2699f954ec0bSBrooks Davis 			pch = ch;
2700f954ec0bSBrooks Davis 		} else {
2701f954ec0bSBrooks Davis 			while (whitechar(nch)) {
2702f954ec0bSBrooks Davis 				nch = *srch++;
2703f954ec0bSBrooks Davis 			}
2704f954ec0bSBrooks Davis 			if (nch != '\0')
2705f954ec0bSBrooks Davis 				domains++;
2706f954ec0bSBrooks Davis 			pch = PERIOD;
2707f954ec0bSBrooks Davis 		}
2708f954ec0bSBrooks Davis 		ch = nch;
2709f954ec0bSBrooks Davis         }
2710f954ec0bSBrooks Davis 	/* 6 domain limit re resolv.conf(5) */
2711f954ec0bSBrooks Davis 	if (domains > 6)
2712f954ec0bSBrooks Davis 		return (0);
2713f954ec0bSBrooks Davis         return (1);
2714f954ec0bSBrooks Davis }
2715f954ec0bSBrooks Davis 
271647c08596SBrooks Davis /* Does buf consist only of dotted decimal ipv4 addrs?
271747c08596SBrooks Davis  * return how many if so,
271847c08596SBrooks Davis  * otherwise, return 0
271947c08596SBrooks Davis  */
272047c08596SBrooks Davis int
272147c08596SBrooks Davis ipv4addrs(char * buf)
272247c08596SBrooks Davis {
272347c08596SBrooks Davis 	struct in_addr jnk;
272447c08596SBrooks Davis 	int count = 0;
272547c08596SBrooks Davis 
272647c08596SBrooks Davis 	while (inet_aton(buf, &jnk) == 1){
272747c08596SBrooks Davis 		count++;
272847c08596SBrooks Davis 		while (periodchar(*buf) || digitchar(*buf))
272947c08596SBrooks Davis 			buf++;
273047c08596SBrooks Davis 		if (*buf == '\0')
273147c08596SBrooks Davis 			return (count);
273247c08596SBrooks Davis 		while (*buf ==  ' ')
273347c08596SBrooks Davis 			buf++;
273447c08596SBrooks Davis 	}
273547c08596SBrooks Davis 	return (0);
273647c08596SBrooks Davis }
273747c08596SBrooks Davis 
273847c08596SBrooks Davis 
273947c08596SBrooks Davis char *
274047c08596SBrooks Davis option_as_string(unsigned int code, unsigned char *data, int len)
274147c08596SBrooks Davis {
274247c08596SBrooks Davis 	static char optbuf[32768]; /* XXX */
274347c08596SBrooks Davis 	char *op = optbuf;
274447c08596SBrooks Davis 	int opleft = sizeof(optbuf);
274547c08596SBrooks Davis 	unsigned char *dp = data;
274647c08596SBrooks Davis 
274747c08596SBrooks Davis 	if (code > 255)
274847c08596SBrooks Davis 		error("option_as_string: bad code %d", code);
274947c08596SBrooks Davis 
275047c08596SBrooks Davis 	for (; dp < data + len; dp++) {
275147c08596SBrooks Davis 		if (!isascii(*dp) || !isprint(*dp)) {
275247c08596SBrooks Davis 			if (dp + 1 != data + len || *dp != 0) {
275347c08596SBrooks Davis 				snprintf(op, opleft, "\\%03o", *dp);
275447c08596SBrooks Davis 				op += 4;
275547c08596SBrooks Davis 				opleft -= 4;
275647c08596SBrooks Davis 			}
275747c08596SBrooks Davis 		} else if (*dp == '"' || *dp == '\'' || *dp == '$' ||
275847c08596SBrooks Davis 		    *dp == '`' || *dp == '\\') {
275947c08596SBrooks Davis 			*op++ = '\\';
276047c08596SBrooks Davis 			*op++ = *dp;
276147c08596SBrooks Davis 			opleft -= 2;
276247c08596SBrooks Davis 		} else {
276347c08596SBrooks Davis 			*op++ = *dp;
276447c08596SBrooks Davis 			opleft--;
276547c08596SBrooks Davis 		}
276647c08596SBrooks Davis 	}
276747c08596SBrooks Davis 	if (opleft < 1)
276847c08596SBrooks Davis 		goto toobig;
276947c08596SBrooks Davis 	*op = 0;
277047c08596SBrooks Davis 	return optbuf;
277147c08596SBrooks Davis toobig:
277247c08596SBrooks Davis 	warning("dhcp option too large");
277347c08596SBrooks Davis 	return "<error>";
277447c08596SBrooks Davis }
277547c08596SBrooks Davis 
277647c08596SBrooks Davis int
277747c08596SBrooks Davis fork_privchld(int fd, int fd2)
277847c08596SBrooks Davis {
277947c08596SBrooks Davis 	struct pollfd pfd[1];
278047c08596SBrooks Davis 	int nfds;
278147c08596SBrooks Davis 
278247c08596SBrooks Davis 	switch (fork()) {
278347c08596SBrooks Davis 	case -1:
278447c08596SBrooks Davis 		error("cannot fork");
278547c08596SBrooks Davis 	case 0:
278647c08596SBrooks Davis 		break;
278747c08596SBrooks Davis 	default:
278847c08596SBrooks Davis 		return (0);
278947c08596SBrooks Davis 	}
279047c08596SBrooks Davis 
279147c08596SBrooks Davis 	setproctitle("%s [priv]", ifi->name);
279247c08596SBrooks Davis 
279370892546SEd Schouten 	setsid();
279447c08596SBrooks Davis 	dup2(nullfd, STDIN_FILENO);
279547c08596SBrooks Davis 	dup2(nullfd, STDOUT_FILENO);
279647c08596SBrooks Davis 	dup2(nullfd, STDERR_FILENO);
279747c08596SBrooks Davis 	close(nullfd);
279847c08596SBrooks Davis 	close(fd2);
2799235eb530SPawel Jakub Dawidek 	close(ifi->rfdesc);
2800235eb530SPawel Jakub Dawidek 	ifi->rfdesc = -1;
280147c08596SBrooks Davis 
280247c08596SBrooks Davis 	for (;;) {
280347c08596SBrooks Davis 		pfd[0].fd = fd;
280447c08596SBrooks Davis 		pfd[0].events = POLLIN;
280547c08596SBrooks Davis 		if ((nfds = poll(pfd, 1, INFTIM)) == -1)
280647c08596SBrooks Davis 			if (errno != EINTR)
280747c08596SBrooks Davis 				error("poll error");
280847c08596SBrooks Davis 
280947c08596SBrooks Davis 		if (nfds == 0 || !(pfd[0].revents & POLLIN))
281047c08596SBrooks Davis 			continue;
281147c08596SBrooks Davis 
2812235eb530SPawel Jakub Dawidek 		dispatch_imsg(ifi, fd);
281347c08596SBrooks Davis 	}
281447c08596SBrooks Davis }
2815