18fae3551SRodney W. Grimes /*- 28a16b7a1SPedro F. Giffuni * SPDX-License-Identifier: BSD-3-Clause 38a16b7a1SPedro F. Giffuni * 48fae3551SRodney W. Grimes * Copyright (c) 1991, 1993 58fae3551SRodney W. Grimes * The Regents of the University of California. All rights reserved. 68fae3551SRodney W. Grimes * 78fae3551SRodney W. Grimes * This code is derived from software contributed to Berkeley by 88fae3551SRodney W. Grimes * Donn Seeley at Berkeley Software Design, Inc. 98fae3551SRodney W. Grimes * 108fae3551SRodney W. Grimes * Redistribution and use in source and binary forms, with or without 118fae3551SRodney W. Grimes * modification, are permitted provided that the following conditions 128fae3551SRodney W. Grimes * are met: 138fae3551SRodney W. Grimes * 1. Redistributions of source code must retain the above copyright 148fae3551SRodney W. Grimes * notice, this list of conditions and the following disclaimer. 158fae3551SRodney W. Grimes * 2. Redistributions in binary form must reproduce the above copyright 168fae3551SRodney W. Grimes * notice, this list of conditions and the following disclaimer in the 178fae3551SRodney W. Grimes * documentation and/or other materials provided with the distribution. 18fbbd9655SWarner Losh * 3. Neither the name of the University nor the names of its contributors 198fae3551SRodney W. Grimes * may be used to endorse or promote products derived from this software 208fae3551SRodney W. Grimes * without specific prior written permission. 218fae3551SRodney W. Grimes * 228fae3551SRodney W. Grimes * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND 238fae3551SRodney W. Grimes * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 248fae3551SRodney W. Grimes * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 258fae3551SRodney W. Grimes * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE 268fae3551SRodney W. Grimes * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 278fae3551SRodney W. Grimes * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 288fae3551SRodney W. Grimes * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 298fae3551SRodney W. Grimes * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 308fae3551SRodney W. Grimes * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 318fae3551SRodney W. Grimes * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 328fae3551SRodney W. Grimes * SUCH DAMAGE. 338fae3551SRodney W. Grimes */ 348fae3551SRodney W. Grimes 358fae3551SRodney W. Grimes #ifndef lint 365df42cf4SPhilippe Charnier static const char copyright[] = 378fae3551SRodney W. Grimes "@(#) Copyright (c) 1991, 1993\n\ 388fae3551SRodney W. Grimes The Regents of the University of California. All rights reserved.\n"; 398fae3551SRodney W. Grimes #endif /* not lint */ 408fae3551SRodney W. Grimes 418fae3551SRodney W. Grimes #ifndef lint 425df42cf4SPhilippe Charnier #if 0 438fae3551SRodney W. Grimes static char sccsid[] = "@(#)init.c 8.1 (Berkeley) 7/15/93"; 445df42cf4SPhilippe Charnier #endif 455df42cf4SPhilippe Charnier static const char rcsid[] = 467f3dea24SPeter Wemm "$FreeBSD$"; 478fae3551SRodney W. Grimes #endif /* not lint */ 488fae3551SRodney W. Grimes 498fae3551SRodney W. Grimes #include <sys/param.h> 507b0a665dSMitchell Horne #include <sys/boottrace.h> 518889c700SDavid Nugent #include <sys/ioctl.h> 523f5ac575SEdward Tomasz Napierala #include <sys/mman.h> 5357622f22SPoul-Henning Kamp #include <sys/mount.h> 547b0a665dSMitchell Horne #include <sys/reboot.h> 5586bf62dcSDavid Nugent #include <sys/stat.h> 567b0a665dSMitchell Horne #include <sys/sysctl.h> 571f083b1eSMaxime Henrion #include <sys/uio.h> 587b0a665dSMitchell Horne #include <sys/wait.h> 598fae3551SRodney W. Grimes 608fae3551SRodney W. Grimes #include <db.h> 617b0a665dSMitchell Horne #include <err.h> 628fae3551SRodney W. Grimes #include <errno.h> 638fae3551SRodney W. Grimes #include <fcntl.h> 641a7bec91SWarner Losh #include <kenv.h> 65423b6a39SAndrey A. Chernov #include <libutil.h> 661a37aa56SDavid E. O'Brien #include <paths.h> 678fae3551SRodney W. Grimes #include <signal.h> 687b0a665dSMitchell Horne #include <stdarg.h> 697b0a665dSMitchell Horne #include <stdbool.h> 708fae3551SRodney W. Grimes #include <stdio.h> 718fae3551SRodney W. Grimes #include <stdlib.h> 728fae3551SRodney W. Grimes #include <string.h> 738fae3551SRodney W. Grimes #include <syslog.h> 748fae3551SRodney W. Grimes #include <time.h> 758fae3551SRodney W. Grimes #include <ttyent.h> 768fae3551SRodney W. Grimes #include <unistd.h> 778fae3551SRodney W. Grimes 788fae3551SRodney W. Grimes #ifdef SECURE 798fae3551SRodney W. Grimes #include <pwd.h> 808fae3551SRodney W. Grimes #endif 818fae3551SRodney W. Grimes 821ef60eb1SDavid Nugent #ifdef LOGIN_CAP 831ef60eb1SDavid Nugent #include <login_cap.h> 841ef60eb1SDavid Nugent #endif 851ef60eb1SDavid Nugent 863f5ac575SEdward Tomasz Napierala #include "mntopts.h" 878fae3551SRodney W. Grimes #include "pathnames.h" 888fae3551SRodney W. Grimes 898fae3551SRodney W. Grimes /* 908fae3551SRodney W. Grimes * Sleep times; used to prevent thrashing. 918fae3551SRodney W. Grimes */ 928fae3551SRodney W. Grimes #define GETTY_SPACING 5 /* N secs minimum getty spacing */ 938fae3551SRodney W. Grimes #define GETTY_SLEEP 30 /* sleep N secs after spacing problem */ 94b5df27e2SAndrey A. Chernov #define GETTY_NSPACE 3 /* max. spacing count to bring reaction */ 958fae3551SRodney W. Grimes #define WINDOW_WAIT 3 /* wait N secs after starting window */ 968fae3551SRodney W. Grimes #define STALL_TIMEOUT 30 /* wait N secs after warning */ 978fae3551SRodney W. Grimes #define DEATH_WATCH 10 /* wait N secs for procs to die */ 985df42cf4SPhilippe Charnier #define DEATH_SCRIPT 120 /* wait for 2min for /etc/rc.shutdown */ 99e82d5545SDavid Nugent #define RESOURCE_RC "daemon" 100e82d5545SDavid Nugent #define RESOURCE_WINDOW "default" 101e82d5545SDavid Nugent #define RESOURCE_GETTY "default" 1028fae3551SRodney W. Grimes 10345cfb1dcSXin LI static void handle(sig_t, ...); 10445cfb1dcSXin LI static void delset(sigset_t *, ...); 1058fae3551SRodney W. Grimes 10645cfb1dcSXin LI static void stall(const char *, ...) __printflike(1, 2); 10745cfb1dcSXin LI static void warning(const char *, ...) __printflike(1, 2); 10845cfb1dcSXin LI static void emergency(const char *, ...) __printflike(1, 2); 10945cfb1dcSXin LI static void disaster(int); 1103f5ac575SEdward Tomasz Napierala static void revoke_ttys(void); 11145cfb1dcSXin LI static int runshutdown(void); 112ab03e6d5SXin LI static char *strk(char *); 1134d159769SKyle Evans static void runfinal(void); 1148fae3551SRodney W. Grimes 1158fae3551SRodney W. Grimes /* 1168fae3551SRodney W. Grimes * We really need a recursive typedef... 1178fae3551SRodney W. Grimes * The following at least guarantees that the return type of (*state_t)() 1188fae3551SRodney W. Grimes * is sufficiently wide to hold a function pointer. 1198fae3551SRodney W. Grimes */ 12073bf18edSWarner Losh typedef long (*state_func_t)(void); 12173bf18edSWarner Losh typedef state_func_t (*state_t)(void); 1228fae3551SRodney W. Grimes 12345cfb1dcSXin LI static state_func_t single_user(void); 12445cfb1dcSXin LI static state_func_t runcom(void); 12545cfb1dcSXin LI static state_func_t read_ttys(void); 12645cfb1dcSXin LI static state_func_t multi_user(void); 12745cfb1dcSXin LI static state_func_t clean_ttys(void); 12845cfb1dcSXin LI static state_func_t catatonia(void); 12945cfb1dcSXin LI static state_func_t death(void); 130acf0ab06SJilles Tjoelker static state_func_t death_single(void); 1313f5ac575SEdward Tomasz Napierala static state_func_t reroot(void); 1323f5ac575SEdward Tomasz Napierala static state_func_t reroot_phase_two(void); 1338fae3551SRodney W. Grimes 13445cfb1dcSXin LI static state_func_t run_script(const char *); 1351a7bec91SWarner Losh 1361efe3c6bSEd Schouten static enum { AUTOBOOT, FASTBOOT } runcom_mode = AUTOBOOT; 13777103ea3SPoul-Henning Kamp 138de08b516SMitchell Horne static bool Reboot = false; 1391efe3c6bSEd Schouten static int howto = RB_AUTOBOOT; 1408fae3551SRodney W. Grimes 141de08b516SMitchell Horne static bool devfs = false; 142377b6d1eSEdward Tomasz Napierala static char *init_path_argv0; 14357622f22SPoul-Henning Kamp 14445cfb1dcSXin LI static void transition(state_t); 14545cfb1dcSXin LI static state_t requested_transition; 146acf0ab06SJilles Tjoelker static state_t current_state = death_single; 1478fae3551SRodney W. Grimes 148f3c4a698SEdward Tomasz Napierala static void execute_script(char *argv[]); 1494c2c7b2cSEd Schouten static void open_console(void); 15045cfb1dcSXin LI static const char *get_shell(void); 151335fe94fSEdward Tomasz Napierala static void replace_init(char *path); 15245cfb1dcSXin LI static void write_stderr(const char *message); 1538fae3551SRodney W. Grimes 1548fae3551SRodney W. Grimes typedef struct init_session { 1558fae3551SRodney W. Grimes pid_t se_process; /* controlling process */ 1568fae3551SRodney W. Grimes time_t se_started; /* used to avoid thrashing */ 1578fae3551SRodney W. Grimes int se_flags; /* status of session */ 1588fae3551SRodney W. Grimes #define SE_SHUTDOWN 0x1 /* session won't be restarted */ 159b0b670eeSAlfred Perlstein #define SE_PRESENT 0x2 /* session is in /etc/ttys */ 1601cde387cSEdward Tomasz Napierala #define SE_IFEXISTS 0x4 /* session defined as "onifexists" */ 1611cde387cSEdward Tomasz Napierala #define SE_IFCONSOLE 0x8 /* session defined as "onifconsole" */ 162b5df27e2SAndrey A. Chernov int se_nspace; /* spacing count */ 1638fae3551SRodney W. Grimes char *se_device; /* filename of port */ 1648fae3551SRodney W. Grimes char *se_getty; /* what to run on that port */ 165b5df27e2SAndrey A. Chernov char *se_getty_argv_space; /* pre-parsed argument array space */ 1668fae3551SRodney W. Grimes char **se_getty_argv; /* pre-parsed argument array */ 1678fae3551SRodney W. Grimes char *se_window; /* window system (started only once) */ 168b5df27e2SAndrey A. Chernov char *se_window_argv_space; /* pre-parsed argument array space */ 1698fae3551SRodney W. Grimes char **se_window_argv; /* pre-parsed argument array */ 170b5df27e2SAndrey A. Chernov char *se_type; /* default terminal type */ 1718fae3551SRodney W. Grimes struct init_session *se_prev; 1728fae3551SRodney W. Grimes struct init_session *se_next; 1738fae3551SRodney W. Grimes } session_t; 1748fae3551SRodney W. Grimes 17545cfb1dcSXin LI static void free_session(session_t *); 1760b57dd6bSJilles Tjoelker static session_t *new_session(session_t *, struct ttyent *); 17745cfb1dcSXin LI static session_t *sessions; 1788fae3551SRodney W. Grimes 17945cfb1dcSXin LI static char **construct_argv(char *); 18045cfb1dcSXin LI static void start_window_system(session_t *); 18145cfb1dcSXin LI static void collect_child(pid_t); 18245cfb1dcSXin LI static pid_t start_getty(session_t *); 18345cfb1dcSXin LI static void transition_handler(int); 18445cfb1dcSXin LI static void alrm_handler(int); 18545cfb1dcSXin LI static void setsecuritylevel(int); 18645cfb1dcSXin LI static int getsecuritylevel(void); 18745cfb1dcSXin LI static int setupargv(session_t *, struct ttyent *); 188e82d5545SDavid Nugent #ifdef LOGIN_CAP 18945cfb1dcSXin LI static void setprocresources(const char *); 190e82d5545SDavid Nugent #endif 191de08b516SMitchell Horne static bool clang; 1928fae3551SRodney W. Grimes 19345cfb1dcSXin LI static int start_session_db(void); 19445cfb1dcSXin LI static void add_session(session_t *); 19545cfb1dcSXin LI static void del_session(session_t *); 19645cfb1dcSXin LI static session_t *find_session(pid_t); 19745cfb1dcSXin LI static DB *session_db; 1988fae3551SRodney W. Grimes 1998fae3551SRodney W. Grimes /* 2008fae3551SRodney W. Grimes * The mother of all processes. 2018fae3551SRodney W. Grimes */ 2028fae3551SRodney W. Grimes int 20373bf18edSWarner Losh main(int argc, char *argv[]) 2048fae3551SRodney W. Grimes { 2051a7bec91SWarner Losh state_t initial_transition = runcom; 2061a7bec91SWarner Losh char kenv_value[PATH_MAX]; 2073f5ac575SEdward Tomasz Napierala int c, error; 2088fae3551SRodney W. Grimes struct sigaction sa; 2098fae3551SRodney W. Grimes sigset_t mask; 2108fae3551SRodney W. Grimes 2118fae3551SRodney W. Grimes /* Dispose of random users. */ 212c5842835SPhilippe Charnier if (getuid() != 0) 213c5842835SPhilippe Charnier errx(1, "%s", strerror(EPERM)); 2148fae3551SRodney W. Grimes 2157b0a665dSMitchell Horne BOOTTRACE("init(8) starting..."); 2167b0a665dSMitchell Horne 2178fae3551SRodney W. Grimes /* System V users like to reexec init. */ 2181681d659SRuslan Ermilov if (getpid() != 1) { 2191681d659SRuslan Ermilov #ifdef COMPAT_SYSV_INIT 2201681d659SRuslan Ermilov /* So give them what they want */ 2211681d659SRuslan Ermilov if (argc > 1) { 2221681d659SRuslan Ermilov if (strlen(argv[1]) == 1) { 2233d438ad6SDavid E. O'Brien char runlevel = *argv[1]; 2243d438ad6SDavid E. O'Brien int sig; 2258fae3551SRodney W. Grimes 2261681d659SRuslan Ermilov switch (runlevel) { 2271681d659SRuslan Ermilov case '0': /* halt + poweroff */ 2281681d659SRuslan Ermilov sig = SIGUSR2; 2291681d659SRuslan Ermilov break; 2301681d659SRuslan Ermilov case '1': /* single-user */ 2311681d659SRuslan Ermilov sig = SIGTERM; 2321681d659SRuslan Ermilov break; 2331681d659SRuslan Ermilov case '6': /* reboot */ 2341681d659SRuslan Ermilov sig = SIGINT; 2351681d659SRuslan Ermilov break; 2361681d659SRuslan Ermilov case 'c': /* block further logins */ 2371681d659SRuslan Ermilov sig = SIGTSTP; 2381681d659SRuslan Ermilov break; 2391681d659SRuslan Ermilov case 'q': /* rescan /etc/ttys */ 2401681d659SRuslan Ermilov sig = SIGHUP; 2411681d659SRuslan Ermilov break; 2423f5ac575SEdward Tomasz Napierala case 'r': /* remount root */ 2433f5ac575SEdward Tomasz Napierala sig = SIGEMT; 2443f5ac575SEdward Tomasz Napierala break; 2451681d659SRuslan Ermilov default: 2461681d659SRuslan Ermilov goto invalid; 2471681d659SRuslan Ermilov } 2481681d659SRuslan Ermilov kill(1, sig); 2491681d659SRuslan Ermilov _exit(0); 2501681d659SRuslan Ermilov } else 2511681d659SRuslan Ermilov invalid: 2521681d659SRuslan Ermilov errx(1, "invalid run-level ``%s''", argv[1]); 2531681d659SRuslan Ermilov } else 2541681d659SRuslan Ermilov #endif 2551681d659SRuslan Ermilov errx(1, "already running"); 2561681d659SRuslan Ermilov } 257377b6d1eSEdward Tomasz Napierala 258377b6d1eSEdward Tomasz Napierala init_path_argv0 = strdup(argv[0]); 259377b6d1eSEdward Tomasz Napierala if (init_path_argv0 == NULL) 260377b6d1eSEdward Tomasz Napierala err(1, "strdup"); 261377b6d1eSEdward Tomasz Napierala 2628fae3551SRodney W. Grimes /* 2638fae3551SRodney W. Grimes * Note that this does NOT open a file... 2648fae3551SRodney W. Grimes * Does 'init' deserve its own facility number? 2658fae3551SRodney W. Grimes */ 26606224a94SNeel Natu openlog("init", LOG_CONS, LOG_AUTH); 2678fae3551SRodney W. Grimes 2688fae3551SRodney W. Grimes /* 2698fae3551SRodney W. Grimes * Create an initial session. 2708fae3551SRodney W. Grimes */ 2713f5ac575SEdward Tomasz Napierala if (setsid() < 0 && (errno != EPERM || getsid(0) != 1)) 2728fae3551SRodney W. Grimes warning("initial setsid() failed: %m"); 2738fae3551SRodney W. Grimes 2748fae3551SRodney W. Grimes /* 2758fae3551SRodney W. Grimes * Establish an initial user so that programs running 2768fae3551SRodney W. Grimes * single user do not freak out and die (like passwd). 2778fae3551SRodney W. Grimes */ 2788fae3551SRodney W. Grimes if (setlogin("root") < 0) 2798fae3551SRodney W. Grimes warning("setlogin() failed: %m"); 2808fae3551SRodney W. Grimes 2818fae3551SRodney W. Grimes /* 2828fae3551SRodney W. Grimes * This code assumes that we always get arguments through flags, 2838fae3551SRodney W. Grimes * never through bits set in some random machine register. 2848fae3551SRodney W. Grimes */ 2853f5ac575SEdward Tomasz Napierala while ((c = getopt(argc, argv, "dsfr")) != -1) 2868fae3551SRodney W. Grimes switch (c) { 28757622f22SPoul-Henning Kamp case 'd': 288de08b516SMitchell Horne devfs = true; 28957622f22SPoul-Henning Kamp break; 2908fae3551SRodney W. Grimes case 's': 2911a7bec91SWarner Losh initial_transition = single_user; 2928fae3551SRodney W. Grimes break; 2938fae3551SRodney W. Grimes case 'f': 2948fae3551SRodney W. Grimes runcom_mode = FASTBOOT; 2958fae3551SRodney W. Grimes break; 2963f5ac575SEdward Tomasz Napierala case 'r': 2973f5ac575SEdward Tomasz Napierala initial_transition = reroot_phase_two; 2983f5ac575SEdward Tomasz Napierala break; 2998fae3551SRodney W. Grimes default: 3008fae3551SRodney W. Grimes warning("unrecognized flag '-%c'", c); 3018fae3551SRodney W. Grimes break; 3028fae3551SRodney W. Grimes } 3038fae3551SRodney W. Grimes 3048fae3551SRodney W. Grimes if (optind != argc) 3058fae3551SRodney W. Grimes warning("ignoring excess arguments"); 3068fae3551SRodney W. Grimes 3071a7bec91SWarner Losh /* 3081a7bec91SWarner Losh * We catch or block signals rather than ignore them, 3091a7bec91SWarner Losh * so that they get reset on exec. 3101a7bec91SWarner Losh */ 311a449e81eSBrooks Davis handle(disaster, SIGABRT, SIGFPE, SIGILL, SIGSEGV, SIGBUS, SIGSYS, 312a449e81eSBrooks Davis SIGXCPU, SIGXFSZ, 0); 3133f5ac575SEdward Tomasz Napierala handle(transition_handler, SIGHUP, SIGINT, SIGEMT, SIGTERM, SIGTSTP, 31435c1d16eSWarner Losh SIGUSR1, SIGUSR2, SIGWINCH, 0); 3151a7bec91SWarner Losh handle(alrm_handler, SIGALRM, 0); 3161a7bec91SWarner Losh sigfillset(&mask); 3171a7bec91SWarner Losh delset(&mask, SIGABRT, SIGFPE, SIGILL, SIGSEGV, SIGBUS, SIGSYS, 3183f5ac575SEdward Tomasz Napierala SIGXCPU, SIGXFSZ, SIGHUP, SIGINT, SIGEMT, SIGTERM, SIGTSTP, 31935c1d16eSWarner Losh SIGALRM, SIGUSR1, SIGUSR2, SIGWINCH, 0); 320d1b1fe3aSEdward Tomasz Napierala sigprocmask(SIG_SETMASK, &mask, NULL); 3211a7bec91SWarner Losh sigemptyset(&sa.sa_mask); 3221a7bec91SWarner Losh sa.sa_flags = 0; 3231a7bec91SWarner Losh sa.sa_handler = SIG_IGN; 324d1b1fe3aSEdward Tomasz Napierala sigaction(SIGTTIN, &sa, NULL); 325d1b1fe3aSEdward Tomasz Napierala sigaction(SIGTTOU, &sa, NULL); 3261a7bec91SWarner Losh 3271a7bec91SWarner Losh /* 3281a7bec91SWarner Losh * Paranoia. 3291a7bec91SWarner Losh */ 3301a7bec91SWarner Losh close(0); 3311a7bec91SWarner Losh close(1); 3321a7bec91SWarner Losh close(2); 3331a7bec91SWarner Losh 334335fe94fSEdward Tomasz Napierala if (kenv(KENV_GET, "init_exec", kenv_value, sizeof(kenv_value)) > 0) { 335335fe94fSEdward Tomasz Napierala replace_init(kenv_value); 336335fe94fSEdward Tomasz Napierala _exit(0); /* reboot */ 337335fe94fSEdward Tomasz Napierala } 338335fe94fSEdward Tomasz Napierala 3391a7bec91SWarner Losh if (kenv(KENV_GET, "init_script", kenv_value, sizeof(kenv_value)) > 0) { 3401a7bec91SWarner Losh state_func_t next_transition; 3411a7bec91SWarner Losh 3422ef6931aSMarcelo Araujo if ((next_transition = run_script(kenv_value)) != NULL) 3431a7bec91SWarner Losh initial_transition = (state_t) next_transition; 3441a7bec91SWarner Losh } 3451a7bec91SWarner Losh 3461a7bec91SWarner Losh if (kenv(KENV_GET, "init_chroot", kenv_value, sizeof(kenv_value)) > 0) { 3471a7bec91SWarner Losh if (chdir(kenv_value) != 0 || chroot(".") != 0) 3481a7bec91SWarner Losh warning("Can't chroot to %s: %m", kenv_value); 3491a7bec91SWarner Losh } 3501a7bec91SWarner Losh 3511a7bec91SWarner Losh /* 3521a7bec91SWarner Losh * Additional check if devfs needs to be mounted: 3531a7bec91SWarner Losh * If "/" and "/dev" have the same device number, 3541a7bec91SWarner Losh * then it hasn't been mounted yet. 3551a7bec91SWarner Losh */ 3561a7bec91SWarner Losh if (!devfs) { 3571a7bec91SWarner Losh struct stat stst; 3581a7bec91SWarner Losh dev_t root_devno; 3591a7bec91SWarner Losh 3601a7bec91SWarner Losh stat("/", &stst); 3611a7bec91SWarner Losh root_devno = stst.st_dev; 3621a7bec91SWarner Losh if (stat("/dev", &stst) != 0) 3631a7bec91SWarner Losh warning("Can't stat /dev: %m"); 3641a7bec91SWarner Losh else if (stst.st_dev == root_devno) 365de08b516SMitchell Horne devfs = true; 3661a7bec91SWarner Losh } 3671a7bec91SWarner Losh 36857622f22SPoul-Henning Kamp if (devfs) { 3691f083b1eSMaxime Henrion struct iovec iov[4]; 370421b0201SPoul-Henning Kamp char *s; 371421b0201SPoul-Henning Kamp int i; 372421b0201SPoul-Henning Kamp 373ab03e6d5SXin LI char _fstype[] = "fstype"; 374ab03e6d5SXin LI char _devfs[] = "devfs"; 375ab03e6d5SXin LI char _fspath[] = "fspath"; 376ab03e6d5SXin LI char _path_dev[]= _PATH_DEV; 377ab03e6d5SXin LI 378ab03e6d5SXin LI iov[0].iov_base = _fstype; 379ab03e6d5SXin LI iov[0].iov_len = sizeof(_fstype); 380ab03e6d5SXin LI iov[1].iov_base = _devfs; 381ab03e6d5SXin LI iov[1].iov_len = sizeof(_devfs); 382ab03e6d5SXin LI iov[2].iov_base = _fspath; 383ab03e6d5SXin LI iov[2].iov_len = sizeof(_fspath); 384421b0201SPoul-Henning Kamp /* 385421b0201SPoul-Henning Kamp * Try to avoid the trailing slash in _PATH_DEV. 386421b0201SPoul-Henning Kamp * Be *very* defensive. 387421b0201SPoul-Henning Kamp */ 388421b0201SPoul-Henning Kamp s = strdup(_PATH_DEV); 389421b0201SPoul-Henning Kamp if (s != NULL) { 390421b0201SPoul-Henning Kamp i = strlen(s); 391421b0201SPoul-Henning Kamp if (i > 0 && s[i - 1] == '/') 392421b0201SPoul-Henning Kamp s[i - 1] = '\0'; 3931f083b1eSMaxime Henrion iov[3].iov_base = s; 3941f083b1eSMaxime Henrion iov[3].iov_len = strlen(s) + 1; 395421b0201SPoul-Henning Kamp } else { 396ab03e6d5SXin LI iov[3].iov_base = _path_dev; 397ab03e6d5SXin LI iov[3].iov_len = sizeof(_path_dev); 39857622f22SPoul-Henning Kamp } 3991f083b1eSMaxime Henrion nmount(iov, 4, 0); 4001f083b1eSMaxime Henrion if (s != NULL) 4011f083b1eSMaxime Henrion free(s); 402421b0201SPoul-Henning Kamp } 40357622f22SPoul-Henning Kamp 4043f5ac575SEdward Tomasz Napierala if (initial_transition != reroot_phase_two) { 4053f5ac575SEdward Tomasz Napierala /* 4063f5ac575SEdward Tomasz Napierala * Unmount reroot leftovers. This runs after init(8) 4073f5ac575SEdward Tomasz Napierala * gets reexecuted after reroot_phase_two() is done. 4083f5ac575SEdward Tomasz Napierala */ 4093f5ac575SEdward Tomasz Napierala error = unmount(_PATH_REROOT, MNT_FORCE); 4103f5ac575SEdward Tomasz Napierala if (error != 0 && errno != EINVAL) 4113f5ac575SEdward Tomasz Napierala warning("Cannot unmount %s: %m", _PATH_REROOT); 4123f5ac575SEdward Tomasz Napierala } 4133f5ac575SEdward Tomasz Napierala 4148fae3551SRodney W. Grimes /* 4158fae3551SRodney W. Grimes * Start the state machine. 4168fae3551SRodney W. Grimes */ 4171a7bec91SWarner Losh transition(initial_transition); 4188fae3551SRodney W. Grimes 4198fae3551SRodney W. Grimes /* 4208fae3551SRodney W. Grimes * Should never reach here. 4218fae3551SRodney W. Grimes */ 4228fae3551SRodney W. Grimes return 1; 4238fae3551SRodney W. Grimes } 4248fae3551SRodney W. Grimes 4258fae3551SRodney W. Grimes /* 4268fae3551SRodney W. Grimes * Associate a function with a signal handler. 4278fae3551SRodney W. Grimes */ 42845cfb1dcSXin LI static void 4298fae3551SRodney W. Grimes handle(sig_t handler, ...) 4308fae3551SRodney W. Grimes { 4318fae3551SRodney W. Grimes int sig; 4328fae3551SRodney W. Grimes struct sigaction sa; 43339034633SJames Raynard sigset_t mask_everything; 4348fae3551SRodney W. Grimes va_list ap; 4358fae3551SRodney W. Grimes va_start(ap, handler); 4368fae3551SRodney W. Grimes 4378fae3551SRodney W. Grimes sa.sa_handler = handler; 4388fae3551SRodney W. Grimes sigfillset(&mask_everything); 4398fae3551SRodney W. Grimes 44030e8350cSBruce Evans while ((sig = va_arg(ap, int)) != 0) { 4418fae3551SRodney W. Grimes sa.sa_mask = mask_everything; 4428fae3551SRodney W. Grimes /* XXX SA_RESTART? */ 4438fae3551SRodney W. Grimes sa.sa_flags = sig == SIGCHLD ? SA_NOCLDSTOP : 0; 444d1b1fe3aSEdward Tomasz Napierala sigaction(sig, &sa, NULL); 4458fae3551SRodney W. Grimes } 4468fae3551SRodney W. Grimes va_end(ap); 4478fae3551SRodney W. Grimes } 4488fae3551SRodney W. Grimes 4498fae3551SRodney W. Grimes /* 4508fae3551SRodney W. Grimes * Delete a set of signals from a mask. 4518fae3551SRodney W. Grimes */ 45245cfb1dcSXin LI static void 4538fae3551SRodney W. Grimes delset(sigset_t *maskp, ...) 4548fae3551SRodney W. Grimes { 4558fae3551SRodney W. Grimes int sig; 4568fae3551SRodney W. Grimes va_list ap; 4578fae3551SRodney W. Grimes va_start(ap, maskp); 4588fae3551SRodney W. Grimes 45930e8350cSBruce Evans while ((sig = va_arg(ap, int)) != 0) 4608fae3551SRodney W. Grimes sigdelset(maskp, sig); 4618fae3551SRodney W. Grimes va_end(ap); 4628fae3551SRodney W. Grimes } 4638fae3551SRodney W. Grimes 4648fae3551SRodney W. Grimes /* 4658fae3551SRodney W. Grimes * Log a message and sleep for a while (to give someone an opportunity 4668fae3551SRodney W. Grimes * to read it and to save log or hardcopy output if the problem is chronic). 4678fae3551SRodney W. Grimes * NB: should send a message to the session logger to avoid blocking. 4688fae3551SRodney W. Grimes */ 46945cfb1dcSXin LI static void 4705979df34SKris Kennaway stall(const char *message, ...) 4718fae3551SRodney W. Grimes { 4728fae3551SRodney W. Grimes va_list ap; 4738fae3551SRodney W. Grimes va_start(ap, message); 4748fae3551SRodney W. Grimes 4758fae3551SRodney W. Grimes vsyslog(LOG_ALERT, message, ap); 4768fae3551SRodney W. Grimes va_end(ap); 4778fae3551SRodney W. Grimes sleep(STALL_TIMEOUT); 4788fae3551SRodney W. Grimes } 4798fae3551SRodney W. Grimes 4808fae3551SRodney W. Grimes /* 4818fae3551SRodney W. Grimes * Like stall(), but doesn't sleep. 4828fae3551SRodney W. Grimes * If cpp had variadic macros, the two functions could be #defines for another. 4838fae3551SRodney W. Grimes * NB: should send a message to the session logger to avoid blocking. 4848fae3551SRodney W. Grimes */ 48545cfb1dcSXin LI static void 4865979df34SKris Kennaway warning(const char *message, ...) 4878fae3551SRodney W. Grimes { 4888fae3551SRodney W. Grimes va_list ap; 4898fae3551SRodney W. Grimes va_start(ap, message); 4908fae3551SRodney W. Grimes 4918fae3551SRodney W. Grimes vsyslog(LOG_ALERT, message, ap); 4928fae3551SRodney W. Grimes va_end(ap); 4938fae3551SRodney W. Grimes } 4948fae3551SRodney W. Grimes 4958fae3551SRodney W. Grimes /* 4968fae3551SRodney W. Grimes * Log an emergency message. 4978fae3551SRodney W. Grimes * NB: should send a message to the session logger to avoid blocking. 4988fae3551SRodney W. Grimes */ 49945cfb1dcSXin LI static void 5005979df34SKris Kennaway emergency(const char *message, ...) 5018fae3551SRodney W. Grimes { 5028fae3551SRodney W. Grimes va_list ap; 5038fae3551SRodney W. Grimes va_start(ap, message); 5048fae3551SRodney W. Grimes 5058fae3551SRodney W. Grimes vsyslog(LOG_EMERG, message, ap); 5068fae3551SRodney W. Grimes va_end(ap); 5078fae3551SRodney W. Grimes } 5088fae3551SRodney W. Grimes 5098fae3551SRodney W. Grimes /* 5108fae3551SRodney W. Grimes * Catch an unexpected signal. 5118fae3551SRodney W. Grimes */ 51245cfb1dcSXin LI static void 51373bf18edSWarner Losh disaster(int sig) 5148fae3551SRodney W. Grimes { 515091abe40SDavid E. O'Brien 5168fae3551SRodney W. Grimes emergency("fatal signal: %s", 5178889c700SDavid Nugent (unsigned)sig < NSIG ? sys_siglist[sig] : "unknown signal"); 5188fae3551SRodney W. Grimes 5198fae3551SRodney W. Grimes sleep(STALL_TIMEOUT); 5208fae3551SRodney W. Grimes _exit(sig); /* reboot */ 5218fae3551SRodney W. Grimes } 5228fae3551SRodney W. Grimes 5238fae3551SRodney W. Grimes /* 5248fae3551SRodney W. Grimes * Get the security level of the kernel. 5258fae3551SRodney W. Grimes */ 52645cfb1dcSXin LI static int 52773bf18edSWarner Losh getsecuritylevel(void) 5288fae3551SRodney W. Grimes { 5298fae3551SRodney W. Grimes #ifdef KERN_SECURELVL 5308fae3551SRodney W. Grimes int name[2], curlevel; 5318fae3551SRodney W. Grimes size_t len; 5328fae3551SRodney W. Grimes 5338fae3551SRodney W. Grimes name[0] = CTL_KERN; 5348fae3551SRodney W. Grimes name[1] = KERN_SECURELVL; 5358fae3551SRodney W. Grimes len = sizeof curlevel; 5368fae3551SRodney W. Grimes if (sysctl(name, 2, &curlevel, &len, NULL, 0) == -1) { 537804b4afbSXin LI emergency("cannot get kernel security level: %m"); 5388fae3551SRodney W. Grimes return (-1); 5398fae3551SRodney W. Grimes } 5408fae3551SRodney W. Grimes return (curlevel); 5418fae3551SRodney W. Grimes #else 5428fae3551SRodney W. Grimes return (-1); 5438fae3551SRodney W. Grimes #endif 5448fae3551SRodney W. Grimes } 5458fae3551SRodney W. Grimes 5468fae3551SRodney W. Grimes /* 5478fae3551SRodney W. Grimes * Set the security level of the kernel. 5488fae3551SRodney W. Grimes */ 54945cfb1dcSXin LI static void 55073bf18edSWarner Losh setsecuritylevel(int newlevel) 5518fae3551SRodney W. Grimes { 5528fae3551SRodney W. Grimes #ifdef KERN_SECURELVL 5538fae3551SRodney W. Grimes int name[2], curlevel; 5548fae3551SRodney W. Grimes 5558fae3551SRodney W. Grimes curlevel = getsecuritylevel(); 5568fae3551SRodney W. Grimes if (newlevel == curlevel) 5578fae3551SRodney W. Grimes return; 5588fae3551SRodney W. Grimes name[0] = CTL_KERN; 5598fae3551SRodney W. Grimes name[1] = KERN_SECURELVL; 5608fae3551SRodney W. Grimes if (sysctl(name, 2, NULL, NULL, &newlevel, sizeof newlevel) == -1) { 5618fae3551SRodney W. Grimes emergency( 562804b4afbSXin LI "cannot change kernel security level from %d to %d: %m", 563804b4afbSXin LI curlevel, newlevel); 5648fae3551SRodney W. Grimes return; 5658fae3551SRodney W. Grimes } 5668fae3551SRodney W. Grimes #ifdef SECURE 5678fae3551SRodney W. Grimes warning("kernel security level changed from %d to %d", 5688fae3551SRodney W. Grimes curlevel, newlevel); 5698fae3551SRodney W. Grimes #endif 5708fae3551SRodney W. Grimes #endif 5718fae3551SRodney W. Grimes } 5728fae3551SRodney W. Grimes 5738fae3551SRodney W. Grimes /* 5748fae3551SRodney W. Grimes * Change states in the finite state machine. 5758fae3551SRodney W. Grimes * The initial state is passed as an argument. 5768fae3551SRodney W. Grimes */ 57745cfb1dcSXin LI static void 57873bf18edSWarner Losh transition(state_t s) 5798fae3551SRodney W. Grimes { 580091abe40SDavid E. O'Brien 581acf0ab06SJilles Tjoelker current_state = s; 5828fae3551SRodney W. Grimes for (;;) 583acf0ab06SJilles Tjoelker current_state = (state_t) (*current_state)(); 5848fae3551SRodney W. Grimes } 5858fae3551SRodney W. Grimes 5868fae3551SRodney W. Grimes /* 5878fae3551SRodney W. Grimes * Start a session and allocate a controlling terminal. 5888fae3551SRodney W. Grimes * Only called by children of init after forking. 5898fae3551SRodney W. Grimes */ 59045cfb1dcSXin LI static void 5914c2c7b2cSEd Schouten open_console(void) 5928fae3551SRodney W. Grimes { 5938fae3551SRodney W. Grimes int fd; 5948fae3551SRodney W. Grimes 5956ee5808bSEd Schouten /* 5966ee5808bSEd Schouten * Try to open /dev/console. Open the device with O_NONBLOCK to 5976ee5808bSEd Schouten * prevent potential blocking on a carrier. 5986ee5808bSEd Schouten */ 5994c2c7b2cSEd Schouten revoke(_PATH_CONSOLE); 6004c2c7b2cSEd Schouten if ((fd = open(_PATH_CONSOLE, O_RDWR | O_NONBLOCK)) != -1) { 6016ee5808bSEd Schouten (void)fcntl(fd, F_SETFL, fcntl(fd, F_GETFL) & ~O_NONBLOCK); 6024c2c7b2cSEd Schouten if (login_tty(fd) == 0) 6034c2c7b2cSEd Schouten return; 6044c2c7b2cSEd Schouten close(fd); 6054c2c7b2cSEd Schouten } 6064c2c7b2cSEd Schouten 6074c2c7b2cSEd Schouten /* No luck. Log output to file if possible. */ 6084c2c7b2cSEd Schouten if ((fd = open(_PATH_DEVNULL, O_RDWR)) == -1) { 6094c2c7b2cSEd Schouten stall("cannot open null device."); 6108fae3551SRodney W. Grimes _exit(1); 6118fae3551SRodney W. Grimes } 6124c2c7b2cSEd Schouten if (fd != STDIN_FILENO) { 6134c2c7b2cSEd Schouten dup2(fd, STDIN_FILENO); 6144c2c7b2cSEd Schouten close(fd); 6158fae3551SRodney W. Grimes } 6164c2c7b2cSEd Schouten fd = open(_PATH_INITLOG, O_WRONLY | O_APPEND | O_CREAT, 0644); 6174c2c7b2cSEd Schouten if (fd == -1) 6184c2c7b2cSEd Schouten dup2(STDIN_FILENO, STDOUT_FILENO); 6194c2c7b2cSEd Schouten else if (fd != STDOUT_FILENO) { 6204c2c7b2cSEd Schouten dup2(fd, STDOUT_FILENO); 6214c2c7b2cSEd Schouten close(fd); 6224c2c7b2cSEd Schouten } 6234c2c7b2cSEd Schouten dup2(STDOUT_FILENO, STDERR_FILENO); 6248fae3551SRodney W. Grimes } 6258fae3551SRodney W. Grimes 62645cfb1dcSXin LI static const char * 6271a7bec91SWarner Losh get_shell(void) 6281a7bec91SWarner Losh { 6291a7bec91SWarner Losh static char kenv_value[PATH_MAX]; 6301a7bec91SWarner Losh 6311a7bec91SWarner Losh if (kenv(KENV_GET, "init_shell", kenv_value, sizeof(kenv_value)) > 0) 6321a7bec91SWarner Losh return kenv_value; 6331a7bec91SWarner Losh else 6341a7bec91SWarner Losh return _PATH_BSHELL; 6351a7bec91SWarner Losh } 6361a7bec91SWarner Losh 63745cfb1dcSXin LI static void 6381a7bec91SWarner Losh write_stderr(const char *message) 6391a7bec91SWarner Losh { 640091abe40SDavid E. O'Brien 6411a7bec91SWarner Losh write(STDERR_FILENO, message, strlen(message)); 6421a7bec91SWarner Losh } 6431a7bec91SWarner Losh 6443f5ac575SEdward Tomasz Napierala static int 6453f5ac575SEdward Tomasz Napierala read_file(const char *path, void **bufp, size_t *bufsizep) 6463f5ac575SEdward Tomasz Napierala { 6473f5ac575SEdward Tomasz Napierala struct stat sb; 6483f5ac575SEdward Tomasz Napierala size_t bufsize; 6493f5ac575SEdward Tomasz Napierala void *buf; 6503f5ac575SEdward Tomasz Napierala ssize_t nbytes; 6513f5ac575SEdward Tomasz Napierala int error, fd; 6523f5ac575SEdward Tomasz Napierala 6533f5ac575SEdward Tomasz Napierala fd = open(path, O_RDONLY); 6543f5ac575SEdward Tomasz Napierala if (fd < 0) { 655804b4afbSXin LI emergency("%s: %m", path); 6563f5ac575SEdward Tomasz Napierala return (-1); 6573f5ac575SEdward Tomasz Napierala } 6583f5ac575SEdward Tomasz Napierala 6593f5ac575SEdward Tomasz Napierala error = fstat(fd, &sb); 6603f5ac575SEdward Tomasz Napierala if (error != 0) { 661804b4afbSXin LI emergency("fstat: %m"); 662b9124fc3SEdward Tomasz Napierala close(fd); 6633f5ac575SEdward Tomasz Napierala return (error); 6643f5ac575SEdward Tomasz Napierala } 6653f5ac575SEdward Tomasz Napierala 6663f5ac575SEdward Tomasz Napierala bufsize = sb.st_size; 6673f5ac575SEdward Tomasz Napierala buf = malloc(bufsize); 6683f5ac575SEdward Tomasz Napierala if (buf == NULL) { 669804b4afbSXin LI emergency("malloc: %m"); 670b9124fc3SEdward Tomasz Napierala close(fd); 6713f5ac575SEdward Tomasz Napierala return (error); 6723f5ac575SEdward Tomasz Napierala } 6733f5ac575SEdward Tomasz Napierala 6743f5ac575SEdward Tomasz Napierala nbytes = read(fd, buf, bufsize); 6753f5ac575SEdward Tomasz Napierala if (nbytes != (ssize_t)bufsize) { 676804b4afbSXin LI emergency("read: %m"); 677b9124fc3SEdward Tomasz Napierala close(fd); 6783f5ac575SEdward Tomasz Napierala free(buf); 6793f5ac575SEdward Tomasz Napierala return (error); 6803f5ac575SEdward Tomasz Napierala } 6813f5ac575SEdward Tomasz Napierala 6823f5ac575SEdward Tomasz Napierala error = close(fd); 6833f5ac575SEdward Tomasz Napierala if (error != 0) { 684804b4afbSXin LI emergency("close: %m"); 6853f5ac575SEdward Tomasz Napierala free(buf); 6863f5ac575SEdward Tomasz Napierala return (error); 6873f5ac575SEdward Tomasz Napierala } 6883f5ac575SEdward Tomasz Napierala 6893f5ac575SEdward Tomasz Napierala *bufp = buf; 6903f5ac575SEdward Tomasz Napierala *bufsizep = bufsize; 6913f5ac575SEdward Tomasz Napierala 6923f5ac575SEdward Tomasz Napierala return (0); 6933f5ac575SEdward Tomasz Napierala } 6943f5ac575SEdward Tomasz Napierala 6953f5ac575SEdward Tomasz Napierala static int 696b9124fc3SEdward Tomasz Napierala create_file(const char *path, const void *buf, size_t bufsize) 6973f5ac575SEdward Tomasz Napierala { 6983f5ac575SEdward Tomasz Napierala ssize_t nbytes; 6993f5ac575SEdward Tomasz Napierala int error, fd; 7003f5ac575SEdward Tomasz Napierala 7013f5ac575SEdward Tomasz Napierala fd = open(path, O_WRONLY | O_CREAT | O_EXCL, 0700); 7023f5ac575SEdward Tomasz Napierala if (fd < 0) { 703804b4afbSXin LI emergency("%s: %m", path); 7043f5ac575SEdward Tomasz Napierala return (-1); 7053f5ac575SEdward Tomasz Napierala } 7063f5ac575SEdward Tomasz Napierala 7073f5ac575SEdward Tomasz Napierala nbytes = write(fd, buf, bufsize); 7083f5ac575SEdward Tomasz Napierala if (nbytes != (ssize_t)bufsize) { 709804b4afbSXin LI emergency("write: %m"); 710b9124fc3SEdward Tomasz Napierala close(fd); 7113f5ac575SEdward Tomasz Napierala return (-1); 7123f5ac575SEdward Tomasz Napierala } 7133f5ac575SEdward Tomasz Napierala 7143f5ac575SEdward Tomasz Napierala error = close(fd); 7153f5ac575SEdward Tomasz Napierala if (error != 0) { 716804b4afbSXin LI emergency("close: %m"); 7173f5ac575SEdward Tomasz Napierala return (-1); 7183f5ac575SEdward Tomasz Napierala } 7193f5ac575SEdward Tomasz Napierala 7203f5ac575SEdward Tomasz Napierala return (0); 7213f5ac575SEdward Tomasz Napierala } 7223f5ac575SEdward Tomasz Napierala 7233f5ac575SEdward Tomasz Napierala static int 7243f5ac575SEdward Tomasz Napierala mount_tmpfs(const char *fspath) 7253f5ac575SEdward Tomasz Napierala { 7263f5ac575SEdward Tomasz Napierala struct iovec *iov; 7273f5ac575SEdward Tomasz Napierala char errmsg[255]; 7283f5ac575SEdward Tomasz Napierala int error, iovlen; 7293f5ac575SEdward Tomasz Napierala 7303f5ac575SEdward Tomasz Napierala iov = NULL; 7313f5ac575SEdward Tomasz Napierala iovlen = 0; 7323f5ac575SEdward Tomasz Napierala memset(errmsg, 0, sizeof(errmsg)); 7333f5ac575SEdward Tomasz Napierala build_iovec(&iov, &iovlen, "fstype", 7343f5ac575SEdward Tomasz Napierala __DECONST(void *, "tmpfs"), (size_t)-1); 7353f5ac575SEdward Tomasz Napierala build_iovec(&iov, &iovlen, "fspath", 7363f5ac575SEdward Tomasz Napierala __DECONST(void *, fspath), (size_t)-1); 7373f5ac575SEdward Tomasz Napierala build_iovec(&iov, &iovlen, "errmsg", 7383f5ac575SEdward Tomasz Napierala errmsg, sizeof(errmsg)); 7393f5ac575SEdward Tomasz Napierala 7403f5ac575SEdward Tomasz Napierala error = nmount(iov, iovlen, 0); 7413f5ac575SEdward Tomasz Napierala if (error != 0) { 7423f5ac575SEdward Tomasz Napierala if (*errmsg != '\0') { 743804b4afbSXin LI emergency("cannot mount tmpfs on %s: %s: %m", 744804b4afbSXin LI fspath, errmsg); 7453f5ac575SEdward Tomasz Napierala } else { 746804b4afbSXin LI emergency("cannot mount tmpfs on %s: %m", 747804b4afbSXin LI fspath); 7483f5ac575SEdward Tomasz Napierala } 7493f5ac575SEdward Tomasz Napierala return (error); 7503f5ac575SEdward Tomasz Napierala } 7513f5ac575SEdward Tomasz Napierala return (0); 7523f5ac575SEdward Tomasz Napierala } 7533f5ac575SEdward Tomasz Napierala 7543f5ac575SEdward Tomasz Napierala static state_func_t 7553f5ac575SEdward Tomasz Napierala reroot(void) 7563f5ac575SEdward Tomasz Napierala { 7573f5ac575SEdward Tomasz Napierala void *buf; 758377b6d1eSEdward Tomasz Napierala size_t bufsize; 759377b6d1eSEdward Tomasz Napierala int error; 7603f5ac575SEdward Tomasz Napierala 761b9124fc3SEdward Tomasz Napierala buf = NULL; 762b9124fc3SEdward Tomasz Napierala bufsize = 0; 763b9124fc3SEdward Tomasz Napierala 7643f5ac575SEdward Tomasz Napierala revoke_ttys(); 7653f5ac575SEdward Tomasz Napierala runshutdown(); 7663f5ac575SEdward Tomasz Napierala 7673f5ac575SEdward Tomasz Napierala /* 7683f5ac575SEdward Tomasz Napierala * Make sure nobody can interfere with our scheme. 769126ba219SEdward Tomasz Napierala * Ignore ESRCH, which can apparently happen when 770126ba219SEdward Tomasz Napierala * there are no processes to kill. 7713f5ac575SEdward Tomasz Napierala */ 7723f5ac575SEdward Tomasz Napierala error = kill(-1, SIGKILL); 773126ba219SEdward Tomasz Napierala if (error != 0 && errno != ESRCH) { 774804b4afbSXin LI emergency("kill(2) failed: %m"); 7753f5ac575SEdward Tomasz Napierala goto out; 7763f5ac575SEdward Tomasz Napierala } 7773f5ac575SEdward Tomasz Napierala 7783f5ac575SEdward Tomasz Napierala /* 7793f5ac575SEdward Tomasz Napierala * Copy the init binary into tmpfs, so that we can unmount 7803f5ac575SEdward Tomasz Napierala * the old rootfs without committing suicide. 7813f5ac575SEdward Tomasz Napierala */ 782377b6d1eSEdward Tomasz Napierala error = read_file(init_path_argv0, &buf, &bufsize); 7833f5ac575SEdward Tomasz Napierala if (error != 0) 7843f5ac575SEdward Tomasz Napierala goto out; 7853f5ac575SEdward Tomasz Napierala error = mount_tmpfs(_PATH_REROOT); 7863f5ac575SEdward Tomasz Napierala if (error != 0) 7873f5ac575SEdward Tomasz Napierala goto out; 7883f5ac575SEdward Tomasz Napierala error = create_file(_PATH_REROOT_INIT, buf, bufsize); 7893f5ac575SEdward Tomasz Napierala if (error != 0) 7903f5ac575SEdward Tomasz Napierala goto out; 7913f5ac575SEdward Tomasz Napierala 7923f5ac575SEdward Tomasz Napierala /* 7933f5ac575SEdward Tomasz Napierala * Execute the temporary init. 7943f5ac575SEdward Tomasz Napierala */ 7953f5ac575SEdward Tomasz Napierala execl(_PATH_REROOT_INIT, _PATH_REROOT_INIT, "-r", NULL); 796804b4afbSXin LI emergency("cannot exec %s: %m", _PATH_REROOT_INIT); 7973f5ac575SEdward Tomasz Napierala 7983f5ac575SEdward Tomasz Napierala out: 7993f5ac575SEdward Tomasz Napierala emergency("reroot failed; going to single user mode"); 800b9124fc3SEdward Tomasz Napierala free(buf); 8013f5ac575SEdward Tomasz Napierala return (state_func_t) single_user; 8023f5ac575SEdward Tomasz Napierala } 8033f5ac575SEdward Tomasz Napierala 8043f5ac575SEdward Tomasz Napierala static state_func_t 8053f5ac575SEdward Tomasz Napierala reroot_phase_two(void) 8063f5ac575SEdward Tomasz Napierala { 8073f5ac575SEdward Tomasz Napierala char init_path[PATH_MAX], *path, *path_component; 8083f5ac575SEdward Tomasz Napierala size_t init_path_len; 8093f5ac575SEdward Tomasz Napierala int nbytes, error; 8103f5ac575SEdward Tomasz Napierala 8113f5ac575SEdward Tomasz Napierala /* 8123f5ac575SEdward Tomasz Napierala * Ask the kernel to mount the new rootfs. 8133f5ac575SEdward Tomasz Napierala */ 8143f5ac575SEdward Tomasz Napierala error = reboot(RB_REROOT); 8153f5ac575SEdward Tomasz Napierala if (error != 0) { 816804b4afbSXin LI emergency("RB_REBOOT failed: %m"); 8173f5ac575SEdward Tomasz Napierala goto out; 8183f5ac575SEdward Tomasz Napierala } 8193f5ac575SEdward Tomasz Napierala 8203f5ac575SEdward Tomasz Napierala /* 8213f5ac575SEdward Tomasz Napierala * Figure out where the destination init(8) binary is. Note that 8223f5ac575SEdward Tomasz Napierala * the path could be different than what we've started with. Use 8233f5ac575SEdward Tomasz Napierala * the value from kenv, if set, or the one from sysctl otherwise. 8243f5ac575SEdward Tomasz Napierala * The latter defaults to a hardcoded value, but can be overridden 8253f5ac575SEdward Tomasz Napierala * by a build time option. 8263f5ac575SEdward Tomasz Napierala */ 8273f5ac575SEdward Tomasz Napierala nbytes = kenv(KENV_GET, "init_path", init_path, sizeof(init_path)); 8283f5ac575SEdward Tomasz Napierala if (nbytes <= 0) { 8293f5ac575SEdward Tomasz Napierala init_path_len = sizeof(init_path); 8303f5ac575SEdward Tomasz Napierala error = sysctlbyname("kern.init_path", 8313f5ac575SEdward Tomasz Napierala init_path, &init_path_len, NULL, 0); 8323f5ac575SEdward Tomasz Napierala if (error != 0) { 833804b4afbSXin LI emergency("failed to retrieve kern.init_path: %m"); 8343f5ac575SEdward Tomasz Napierala goto out; 8353f5ac575SEdward Tomasz Napierala } 8363f5ac575SEdward Tomasz Napierala } 8373f5ac575SEdward Tomasz Napierala 8383f5ac575SEdward Tomasz Napierala /* 8393f5ac575SEdward Tomasz Napierala * Repeat the init search logic from sys/kern/init_path.c 8403f5ac575SEdward Tomasz Napierala */ 8413f5ac575SEdward Tomasz Napierala path_component = init_path; 8423f5ac575SEdward Tomasz Napierala while ((path = strsep(&path_component, ":")) != NULL) { 8433f5ac575SEdward Tomasz Napierala /* 8443f5ac575SEdward Tomasz Napierala * Execute init(8) from the new rootfs. 8453f5ac575SEdward Tomasz Napierala */ 8463f5ac575SEdward Tomasz Napierala execl(path, path, NULL); 8473f5ac575SEdward Tomasz Napierala } 848804b4afbSXin LI emergency("cannot exec init from %s: %m", init_path); 8493f5ac575SEdward Tomasz Napierala 8503f5ac575SEdward Tomasz Napierala out: 8513f5ac575SEdward Tomasz Napierala emergency("reroot failed; going to single user mode"); 8523f5ac575SEdward Tomasz Napierala return (state_func_t) single_user; 8533f5ac575SEdward Tomasz Napierala } 8543f5ac575SEdward Tomasz Napierala 8558fae3551SRodney W. Grimes /* 8568fae3551SRodney W. Grimes * Bring the system up single user. 8578fae3551SRodney W. Grimes */ 85845cfb1dcSXin LI static state_func_t 85973bf18edSWarner Losh single_user(void) 8608fae3551SRodney W. Grimes { 8618fae3551SRodney W. Grimes pid_t pid, wpid; 8628fae3551SRodney W. Grimes int status; 8638fae3551SRodney W. Grimes sigset_t mask; 8641a7bec91SWarner Losh const char *shell; 8658fae3551SRodney W. Grimes char *argv[2]; 8668402d33aSKonstantin Belousov struct timeval tv, tn; 8678fae3551SRodney W. Grimes #ifdef SECURE 8688fae3551SRodney W. Grimes struct ttyent *typ; 8698fae3551SRodney W. Grimes struct passwd *pp; 8708fae3551SRodney W. Grimes static const char banner[] = 8718fae3551SRodney W. Grimes "Enter root password, or ^D to go multi-user\n"; 8728fae3551SRodney W. Grimes char *clear, *password; 8738fae3551SRodney W. Grimes #endif 87463322c28SPoul-Henning Kamp #ifdef DEBUGSHELL 87563322c28SPoul-Henning Kamp char altshell[128]; 87663322c28SPoul-Henning Kamp #endif 8778fae3551SRodney W. Grimes 878db8ad19dSJordan K. Hubbard if (Reboot) { 879a0a549c7SRuslan Ermilov /* Instead of going single user, let's reboot the machine */ 8807b0a665dSMitchell Horne BOOTTRACE("shutting down the system"); 881e460cfd3SNate Williams sync(); 8824d159769SKyle Evans /* Run scripts after all processes have been terminated. */ 8834d159769SKyle Evans runfinal(); 884e10037dfSKonstantin Belousov if (reboot(howto) == -1) { 885804b4afbSXin LI emergency("reboot(%#x) failed, %m", howto); 886e10037dfSKonstantin Belousov _exit(1); /* panic and reboot */ 887e10037dfSKonstantin Belousov } 888e10037dfSKonstantin Belousov warning("reboot(%#x) returned", howto); 889e10037dfSKonstantin Belousov _exit(0); /* panic as well */ 890e460cfd3SNate Williams } 891e460cfd3SNate Williams 8927b0a665dSMitchell Horne BOOTTRACE("going to single user mode"); 8931a7bec91SWarner Losh shell = get_shell(); 8941a7bec91SWarner Losh 8958fae3551SRodney W. Grimes if ((pid = fork()) == 0) { 8968fae3551SRodney W. Grimes /* 8978fae3551SRodney W. Grimes * Start the single user session. 8988fae3551SRodney W. Grimes */ 8994c2c7b2cSEd Schouten open_console(); 9008fae3551SRodney W. Grimes 9018fae3551SRodney W. Grimes #ifdef SECURE 9028fae3551SRodney W. Grimes /* 9038fae3551SRodney W. Grimes * Check the root password. 9048fae3551SRodney W. Grimes * We don't care if the console is 'on' by default; 9058fae3551SRodney W. Grimes * it's the only tty that can be 'off' and 'secure'. 9068fae3551SRodney W. Grimes */ 9078fae3551SRodney W. Grimes typ = getttynam("console"); 9088fae3551SRodney W. Grimes pp = getpwnam("root"); 909a69497d7SMatthew Dillon if (typ && (typ->ty_status & TTY_SECURE) == 0 && 910a69497d7SMatthew Dillon pp && *pp->pw_passwd) { 9111a7bec91SWarner Losh write_stderr(banner); 9128fae3551SRodney W. Grimes for (;;) { 9138fae3551SRodney W. Grimes clear = getpass("Password:"); 9142ef6931aSMarcelo Araujo if (clear == NULL || *clear == '\0') 9158fae3551SRodney W. Grimes _exit(0); 9168fae3551SRodney W. Grimes password = crypt(clear, pp->pw_passwd); 917852f70b2SKyle Evans explicit_bzero(clear, _PASSWORD_LEN); 9182c9a33f5SConrad Meyer if (password != NULL && 91929dcf726SKevin Lo strcmp(password, pp->pw_passwd) == 0) 9208fae3551SRodney W. Grimes break; 9218fae3551SRodney W. Grimes warning("single-user login failed\n"); 9228fae3551SRodney W. Grimes } 9238fae3551SRodney W. Grimes } 9248fae3551SRodney W. Grimes endttyent(); 9258fae3551SRodney W. Grimes endpwent(); 9268fae3551SRodney W. Grimes #endif /* SECURE */ 9278fae3551SRodney W. Grimes 9288fae3551SRodney W. Grimes #ifdef DEBUGSHELL 9298fae3551SRodney W. Grimes { 93063322c28SPoul-Henning Kamp char *cp = altshell; 9318fae3551SRodney W. Grimes int num; 9328fae3551SRodney W. Grimes 9331a7bec91SWarner Losh #define SHREQUEST "Enter full pathname of shell or RETURN for " 9341a7bec91SWarner Losh write_stderr(SHREQUEST); 9351a7bec91SWarner Losh write_stderr(shell); 9361a7bec91SWarner Losh write_stderr(": "); 9378fae3551SRodney W. Grimes while ((num = read(STDIN_FILENO, cp, 1)) != -1 && 9388fae3551SRodney W. Grimes num != 0 && *cp != '\n' && cp < &altshell[127]) 9398fae3551SRodney W. Grimes cp++; 9408fae3551SRodney W. Grimes *cp = '\0'; 9418fae3551SRodney W. Grimes if (altshell[0] != '\0') 9428fae3551SRodney W. Grimes shell = altshell; 9438fae3551SRodney W. Grimes } 9448fae3551SRodney W. Grimes #endif /* DEBUGSHELL */ 9458fae3551SRodney W. Grimes 9468fae3551SRodney W. Grimes /* 9478fae3551SRodney W. Grimes * Unblock signals. 9488fae3551SRodney W. Grimes * We catch all the interesting ones, 9498fae3551SRodney W. Grimes * and those are reset to SIG_DFL on exec. 9508fae3551SRodney W. Grimes */ 9518fae3551SRodney W. Grimes sigemptyset(&mask); 952d1b1fe3aSEdward Tomasz Napierala sigprocmask(SIG_SETMASK, &mask, NULL); 9538fae3551SRodney W. Grimes 9548fae3551SRodney W. Grimes /* 9558fae3551SRodney W. Grimes * Fire off a shell. 9568fae3551SRodney W. Grimes * If the default one doesn't work, try the Bourne shell. 9578fae3551SRodney W. Grimes */ 958ab03e6d5SXin LI 959ab03e6d5SXin LI char name[] = "-sh"; 960ab03e6d5SXin LI 961ab03e6d5SXin LI argv[0] = name; 962be03cfddSEdward Tomasz Napierala argv[1] = NULL; 9638fae3551SRodney W. Grimes execv(shell, argv); 9648fae3551SRodney W. Grimes emergency("can't exec %s for single user: %m", shell); 9658fae3551SRodney W. Grimes execv(_PATH_BSHELL, argv); 9668fae3551SRodney W. Grimes emergency("can't exec %s for single user: %m", _PATH_BSHELL); 9678fae3551SRodney W. Grimes sleep(STALL_TIMEOUT); 9688fae3551SRodney W. Grimes _exit(1); 9698fae3551SRodney W. Grimes } 9708fae3551SRodney W. Grimes 9718fae3551SRodney W. Grimes if (pid == -1) { 9728fae3551SRodney W. Grimes /* 9738fae3551SRodney W. Grimes * We are seriously hosed. Do our best. 9748fae3551SRodney W. Grimes */ 9758fae3551SRodney W. Grimes emergency("can't fork single-user shell, trying again"); 9768fae3551SRodney W. Grimes while (waitpid(-1, (int *) 0, WNOHANG) > 0) 9778fae3551SRodney W. Grimes continue; 9788fae3551SRodney W. Grimes return (state_func_t) single_user; 9798fae3551SRodney W. Grimes } 9808fae3551SRodney W. Grimes 9818fae3551SRodney W. Grimes requested_transition = 0; 9828fae3551SRodney W. Grimes do { 9838fae3551SRodney W. Grimes if ((wpid = waitpid(-1, &status, WUNTRACED)) != -1) 9848fae3551SRodney W. Grimes collect_child(wpid); 9858fae3551SRodney W. Grimes if (wpid == -1) { 9868fae3551SRodney W. Grimes if (errno == EINTR) 9878fae3551SRodney W. Grimes continue; 9888fae3551SRodney W. Grimes warning("wait for single-user shell failed: %m; restarting"); 9898fae3551SRodney W. Grimes return (state_func_t) single_user; 9908fae3551SRodney W. Grimes } 9918fae3551SRodney W. Grimes if (wpid == pid && WIFSTOPPED(status)) { 9928fae3551SRodney W. Grimes warning("init: shell stopped, restarting\n"); 9938fae3551SRodney W. Grimes kill(pid, SIGCONT); 9948fae3551SRodney W. Grimes wpid = -1; 9958fae3551SRodney W. Grimes } 9968fae3551SRodney W. Grimes } while (wpid != pid && !requested_transition); 9978fae3551SRodney W. Grimes 9988fae3551SRodney W. Grimes if (requested_transition) 9998fae3551SRodney W. Grimes return (state_func_t) requested_transition; 10008fae3551SRodney W. Grimes 10018fae3551SRodney W. Grimes if (!WIFEXITED(status)) { 10028fae3551SRodney W. Grimes if (WTERMSIG(status) == SIGKILL) { 10038fae3551SRodney W. Grimes /* 10048fae3551SRodney W. Grimes * reboot(8) killed shell? 10058fae3551SRodney W. Grimes */ 10068fae3551SRodney W. Grimes warning("single user shell terminated."); 10078402d33aSKonstantin Belousov gettimeofday(&tv, NULL); 10088402d33aSKonstantin Belousov tn = tv; 10098402d33aSKonstantin Belousov tv.tv_sec += STALL_TIMEOUT; 10108402d33aSKonstantin Belousov while (tv.tv_sec > tn.tv_sec || (tv.tv_sec == 10118402d33aSKonstantin Belousov tn.tv_sec && tv.tv_usec > tn.tv_usec)) { 10128402d33aSKonstantin Belousov sleep(1); 10138402d33aSKonstantin Belousov gettimeofday(&tn, NULL); 10148402d33aSKonstantin Belousov } 10158fae3551SRodney W. Grimes _exit(0); 10168fae3551SRodney W. Grimes } else { 10178fae3551SRodney W. Grimes warning("single user shell terminated, restarting"); 10188fae3551SRodney W. Grimes return (state_func_t) single_user; 10198fae3551SRodney W. Grimes } 10208fae3551SRodney W. Grimes } 10218fae3551SRodney W. Grimes 10228fae3551SRodney W. Grimes runcom_mode = FASTBOOT; 10238fae3551SRodney W. Grimes return (state_func_t) runcom; 10248fae3551SRodney W. Grimes } 10258fae3551SRodney W. Grimes 10268fae3551SRodney W. Grimes /* 10278fae3551SRodney W. Grimes * Run the system startup script. 10288fae3551SRodney W. Grimes */ 102945cfb1dcSXin LI static state_func_t 103073bf18edSWarner Losh runcom(void) 10318fae3551SRodney W. Grimes { 10321a7bec91SWarner Losh state_func_t next_transition; 10331a7bec91SWarner Losh 10347b0a665dSMitchell Horne BOOTTRACE("/etc/rc starting..."); 10352ef6931aSMarcelo Araujo if ((next_transition = run_script(_PATH_RUNCOM)) != NULL) 10361a7bec91SWarner Losh return next_transition; 10377b0a665dSMitchell Horne BOOTTRACE("/etc/rc finished"); 10381a7bec91SWarner Losh 10391a7bec91SWarner Losh runcom_mode = AUTOBOOT; /* the default */ 10401a7bec91SWarner Losh return (state_func_t) read_ttys; 10411a7bec91SWarner Losh } 10421a7bec91SWarner Losh 1043f3c4a698SEdward Tomasz Napierala static void 1044f3c4a698SEdward Tomasz Napierala execute_script(char *argv[]) 1045f3c4a698SEdward Tomasz Napierala { 1046f3c4a698SEdward Tomasz Napierala struct sigaction sa; 1047f3c4a698SEdward Tomasz Napierala const char *shell, *script; 1048f3c4a698SEdward Tomasz Napierala int error; 1049f3c4a698SEdward Tomasz Napierala 1050f3c4a698SEdward Tomasz Napierala bzero(&sa, sizeof(sa)); 1051f3c4a698SEdward Tomasz Napierala sigemptyset(&sa.sa_mask); 1052f3c4a698SEdward Tomasz Napierala sa.sa_handler = SIG_IGN; 1053f3c4a698SEdward Tomasz Napierala sigaction(SIGTSTP, &sa, NULL); 1054f3c4a698SEdward Tomasz Napierala sigaction(SIGHUP, &sa, NULL); 1055f3c4a698SEdward Tomasz Napierala 1056f3c4a698SEdward Tomasz Napierala open_console(); 1057f3c4a698SEdward Tomasz Napierala 1058f3c4a698SEdward Tomasz Napierala sigprocmask(SIG_SETMASK, &sa.sa_mask, NULL); 1059f3c4a698SEdward Tomasz Napierala #ifdef LOGIN_CAP 1060f3c4a698SEdward Tomasz Napierala setprocresources(RESOURCE_RC); 1061f3c4a698SEdward Tomasz Napierala #endif 1062f3c4a698SEdward Tomasz Napierala 1063f3c4a698SEdward Tomasz Napierala /* 1064f3c4a698SEdward Tomasz Napierala * Try to directly execute the script first. If it 1065f3c4a698SEdward Tomasz Napierala * fails, try the old method of passing the script path 1066f3c4a698SEdward Tomasz Napierala * to sh(1). Don't complain if it fails because of 1067f3c4a698SEdward Tomasz Napierala * the missing execute bit. 1068f3c4a698SEdward Tomasz Napierala */ 1069f3c4a698SEdward Tomasz Napierala script = argv[1]; 1070f3c4a698SEdward Tomasz Napierala error = access(script, X_OK); 1071f3c4a698SEdward Tomasz Napierala if (error == 0) { 1072f3c4a698SEdward Tomasz Napierala execv(script, argv + 1); 107398b1cf29SEd Maste warning("can't directly exec %s: %m", script); 1074f3c4a698SEdward Tomasz Napierala } else if (errno != EACCES) { 1075f3c4a698SEdward Tomasz Napierala warning("can't access %s: %m", script); 1076f3c4a698SEdward Tomasz Napierala } 1077f3c4a698SEdward Tomasz Napierala 1078f3c4a698SEdward Tomasz Napierala shell = get_shell(); 1079f3c4a698SEdward Tomasz Napierala execv(shell, argv); 1080f3c4a698SEdward Tomasz Napierala stall("can't exec %s for %s: %m", shell, script); 1081f3c4a698SEdward Tomasz Napierala } 1082f3c4a698SEdward Tomasz Napierala 10831a7bec91SWarner Losh /* 1084335fe94fSEdward Tomasz Napierala * Execute binary, replacing init(8) as PID 1. 1085335fe94fSEdward Tomasz Napierala */ 1086335fe94fSEdward Tomasz Napierala static void 1087335fe94fSEdward Tomasz Napierala replace_init(char *path) 1088335fe94fSEdward Tomasz Napierala { 1089335fe94fSEdward Tomasz Napierala char *argv[3]; 1090335fe94fSEdward Tomasz Napierala char sh[] = "sh"; 1091335fe94fSEdward Tomasz Napierala 1092335fe94fSEdward Tomasz Napierala argv[0] = sh; 1093335fe94fSEdward Tomasz Napierala argv[1] = path; 1094335fe94fSEdward Tomasz Napierala argv[2] = NULL; 1095335fe94fSEdward Tomasz Napierala 1096335fe94fSEdward Tomasz Napierala execute_script(argv); 1097335fe94fSEdward Tomasz Napierala } 1098335fe94fSEdward Tomasz Napierala 1099335fe94fSEdward Tomasz Napierala /* 11001a7bec91SWarner Losh * Run a shell script. 11011a7bec91SWarner Losh * Returns 0 on success, otherwise the next transition to enter: 11021a7bec91SWarner Losh * - single_user if fork/execv/waitpid failed, or if the script 11031a7bec91SWarner Losh * terminated with a signal or exit code != 0. 1104acf0ab06SJilles Tjoelker * - death_single if a SIGTERM was delivered to init(8). 11051a7bec91SWarner Losh */ 110645cfb1dcSXin LI static state_func_t 11071a7bec91SWarner Losh run_script(const char *script) 11081a7bec91SWarner Losh { 11098fae3551SRodney W. Grimes pid_t pid, wpid; 1110f3c4a698SEdward Tomasz Napierala int status; 11118fae3551SRodney W. Grimes char *argv[4]; 11121a7bec91SWarner Losh const char *shell; 11138fae3551SRodney W. Grimes 11141a7bec91SWarner Losh shell = get_shell(); 11151a7bec91SWarner Losh 11168fae3551SRodney W. Grimes if ((pid = fork()) == 0) { 11178fae3551SRodney W. Grimes 1118ab03e6d5SXin LI char _sh[] = "sh"; 1119ab03e6d5SXin LI char _autoboot[] = "autoboot"; 1120ab03e6d5SXin LI 1121ab03e6d5SXin LI argv[0] = _sh; 11221a7bec91SWarner Losh argv[1] = __DECONST(char *, script); 1123ab03e6d5SXin LI argv[2] = runcom_mode == AUTOBOOT ? _autoboot : 0; 1124be03cfddSEdward Tomasz Napierala argv[3] = NULL; 11258fae3551SRodney W. Grimes 1126f3c4a698SEdward Tomasz Napierala execute_script(argv); 1127f3c4a698SEdward Tomasz Napierala sleep(STALL_TIMEOUT); 11288fae3551SRodney W. Grimes _exit(1); /* force single user mode */ 11298fae3551SRodney W. Grimes } 11308fae3551SRodney W. Grimes 11318fae3551SRodney W. Grimes if (pid == -1) { 11321a7bec91SWarner Losh emergency("can't fork for %s on %s: %m", shell, script); 11338fae3551SRodney W. Grimes while (waitpid(-1, (int *) 0, WNOHANG) > 0) 11348fae3551SRodney W. Grimes continue; 11358fae3551SRodney W. Grimes sleep(STALL_TIMEOUT); 11368fae3551SRodney W. Grimes return (state_func_t) single_user; 11378fae3551SRodney W. Grimes } 11388fae3551SRodney W. Grimes 11398fae3551SRodney W. Grimes /* 11408fae3551SRodney W. Grimes * Copied from single_user(). This is a bit paranoid. 11418fae3551SRodney W. Grimes */ 11426e8ff8b7SDag-Erling Smørgrav requested_transition = 0; 11438fae3551SRodney W. Grimes do { 11448fae3551SRodney W. Grimes if ((wpid = waitpid(-1, &status, WUNTRACED)) != -1) 11458fae3551SRodney W. Grimes collect_child(wpid); 11463f5ac575SEdward Tomasz Napierala if (requested_transition == death_single || 11473f5ac575SEdward Tomasz Napierala requested_transition == reroot) 11483f5ac575SEdward Tomasz Napierala return (state_func_t) requested_transition; 1149*203f2c14SCorvin Köhne if (wpid == -1) { 11508fae3551SRodney W. Grimes if (errno == EINTR) 11518fae3551SRodney W. Grimes continue; 11521a7bec91SWarner Losh warning("wait for %s on %s failed: %m; going to " 11531a7bec91SWarner Losh "single user mode", shell, script); 11548fae3551SRodney W. Grimes return (state_func_t) single_user; 11558fae3551SRodney W. Grimes } 11568fae3551SRodney W. Grimes if (wpid == pid && WIFSTOPPED(status)) { 11578fae3551SRodney W. Grimes warning("init: %s on %s stopped, restarting\n", 11581a7bec91SWarner Losh shell, script); 11598fae3551SRodney W. Grimes kill(pid, SIGCONT); 11608fae3551SRodney W. Grimes wpid = -1; 11618fae3551SRodney W. Grimes } 11628fae3551SRodney W. Grimes } while (wpid != pid); 11638fae3551SRodney W. Grimes 11648fae3551SRodney W. Grimes if (WIFSIGNALED(status) && WTERMSIG(status) == SIGTERM && 11658fae3551SRodney W. Grimes requested_transition == catatonia) { 11668fae3551SRodney W. Grimes /* /etc/rc executed /sbin/reboot; wait for the end quietly */ 11678fae3551SRodney W. Grimes sigset_t s; 11688fae3551SRodney W. Grimes 11698fae3551SRodney W. Grimes sigfillset(&s); 11708fae3551SRodney W. Grimes for (;;) 11718fae3551SRodney W. Grimes sigsuspend(&s); 11728fae3551SRodney W. Grimes } 11738fae3551SRodney W. Grimes 11748fae3551SRodney W. Grimes if (!WIFEXITED(status)) { 11751a7bec91SWarner Losh warning("%s on %s terminated abnormally, going to single " 11761a7bec91SWarner Losh "user mode", shell, script); 11778fae3551SRodney W. Grimes return (state_func_t) single_user; 11788fae3551SRodney W. Grimes } 11798fae3551SRodney W. Grimes 11808fae3551SRodney W. Grimes if (WEXITSTATUS(status)) 11818fae3551SRodney W. Grimes return (state_func_t) single_user; 11828fae3551SRodney W. Grimes 11831a7bec91SWarner Losh return (state_func_t) 0; 11848fae3551SRodney W. Grimes } 11858fae3551SRodney W. Grimes 11868fae3551SRodney W. Grimes /* 11878fae3551SRodney W. Grimes * Open the session database. 11888fae3551SRodney W. Grimes * 11898fae3551SRodney W. Grimes * NB: We could pass in the size here; is it necessary? 11908fae3551SRodney W. Grimes */ 119145cfb1dcSXin LI static int 119273bf18edSWarner Losh start_session_db(void) 11938fae3551SRodney W. Grimes { 11948fae3551SRodney W. Grimes if (session_db && (*session_db->close)(session_db)) 1195804b4afbSXin LI emergency("session database close: %m"); 119614adaa14SMarcelo Araujo if ((session_db = dbopen(NULL, O_RDWR, 0, DB_HASH, NULL)) == NULL) { 1197804b4afbSXin LI emergency("session database open: %m"); 11988fae3551SRodney W. Grimes return (1); 11998fae3551SRodney W. Grimes } 12008fae3551SRodney W. Grimes return (0); 12018fae3551SRodney W. Grimes 12028fae3551SRodney W. Grimes } 12038fae3551SRodney W. Grimes 12048fae3551SRodney W. Grimes /* 12058fae3551SRodney W. Grimes * Add a new login session. 12068fae3551SRodney W. Grimes */ 120745cfb1dcSXin LI static void 120873bf18edSWarner Losh add_session(session_t *sp) 12098fae3551SRodney W. Grimes { 12108fae3551SRodney W. Grimes DBT key; 12118fae3551SRodney W. Grimes DBT data; 12128fae3551SRodney W. Grimes 12138fae3551SRodney W. Grimes key.data = &sp->se_process; 12148fae3551SRodney W. Grimes key.size = sizeof sp->se_process; 12158fae3551SRodney W. Grimes data.data = &sp; 12168fae3551SRodney W. Grimes data.size = sizeof sp; 12178fae3551SRodney W. Grimes 12188fae3551SRodney W. Grimes if ((*session_db->put)(session_db, &key, &data, 0)) 1219804b4afbSXin LI emergency("insert %d: %m", sp->se_process); 12208fae3551SRodney W. Grimes } 12218fae3551SRodney W. Grimes 12228fae3551SRodney W. Grimes /* 12238fae3551SRodney W. Grimes * Delete an old login session. 12248fae3551SRodney W. Grimes */ 122545cfb1dcSXin LI static void 122673bf18edSWarner Losh del_session(session_t *sp) 12278fae3551SRodney W. Grimes { 12288fae3551SRodney W. Grimes DBT key; 12298fae3551SRodney W. Grimes 12308fae3551SRodney W. Grimes key.data = &sp->se_process; 12318fae3551SRodney W. Grimes key.size = sizeof sp->se_process; 12328fae3551SRodney W. Grimes 12338fae3551SRodney W. Grimes if ((*session_db->del)(session_db, &key, 0)) 1234804b4afbSXin LI emergency("delete %d: %m", sp->se_process); 12358fae3551SRodney W. Grimes } 12368fae3551SRodney W. Grimes 12378fae3551SRodney W. Grimes /* 12388fae3551SRodney W. Grimes * Look up a login session by pid. 12398fae3551SRodney W. Grimes */ 124045cfb1dcSXin LI static session_t * 12418fae3551SRodney W. Grimes find_session(pid_t pid) 12428fae3551SRodney W. Grimes { 12438fae3551SRodney W. Grimes DBT key; 12448fae3551SRodney W. Grimes DBT data; 12458fae3551SRodney W. Grimes session_t *ret; 12468fae3551SRodney W. Grimes 12478fae3551SRodney W. Grimes key.data = &pid; 12488fae3551SRodney W. Grimes key.size = sizeof pid; 12498fae3551SRodney W. Grimes if ((*session_db->get)(session_db, &key, &data, 0) != 0) 12508fae3551SRodney W. Grimes return 0; 12518fae3551SRodney W. Grimes bcopy(data.data, (char *)&ret, sizeof(ret)); 12528fae3551SRodney W. Grimes return ret; 12538fae3551SRodney W. Grimes } 12548fae3551SRodney W. Grimes 12558fae3551SRodney W. Grimes /* 12568fae3551SRodney W. Grimes * Construct an argument vector from a command line. 12578fae3551SRodney W. Grimes */ 125845cfb1dcSXin LI static char ** 125973bf18edSWarner Losh construct_argv(char *command) 12608fae3551SRodney W. Grimes { 12613d438ad6SDavid E. O'Brien int argc = 0; 12623d438ad6SDavid E. O'Brien char **argv = (char **) malloc(((strlen(command) + 1) / 2 + 1) 12638fae3551SRodney W. Grimes * sizeof (char *)); 12648fae3551SRodney W. Grimes 12652ef6931aSMarcelo Araujo if ((argv[argc++] = strk(command)) == NULL) { 12666be40c95SRuslan Ermilov free(argv); 12676be40c95SRuslan Ermilov return (NULL); 12686be40c95SRuslan Ermilov } 12698889c700SDavid Nugent while ((argv[argc++] = strk((char *) 0)) != NULL) 12708fae3551SRodney W. Grimes continue; 12718fae3551SRodney W. Grimes return argv; 12728fae3551SRodney W. Grimes } 12738fae3551SRodney W. Grimes 12748fae3551SRodney W. Grimes /* 12758fae3551SRodney W. Grimes * Deallocate a session descriptor. 12768fae3551SRodney W. Grimes */ 127745cfb1dcSXin LI static void 127873bf18edSWarner Losh free_session(session_t *sp) 12798fae3551SRodney W. Grimes { 12808fae3551SRodney W. Grimes free(sp->se_device); 12818fae3551SRodney W. Grimes if (sp->se_getty) { 12828fae3551SRodney W. Grimes free(sp->se_getty); 1283b5df27e2SAndrey A. Chernov free(sp->se_getty_argv_space); 12848fae3551SRodney W. Grimes free(sp->se_getty_argv); 12858fae3551SRodney W. Grimes } 12868fae3551SRodney W. Grimes if (sp->se_window) { 12878fae3551SRodney W. Grimes free(sp->se_window); 1288b5df27e2SAndrey A. Chernov free(sp->se_window_argv_space); 12898fae3551SRodney W. Grimes free(sp->se_window_argv); 12908fae3551SRodney W. Grimes } 1291b5df27e2SAndrey A. Chernov if (sp->se_type) 1292b5df27e2SAndrey A. Chernov free(sp->se_type); 12938fae3551SRodney W. Grimes free(sp); 12948fae3551SRodney W. Grimes } 12958fae3551SRodney W. Grimes 12968fae3551SRodney W. Grimes /* 12978fae3551SRodney W. Grimes * Allocate a new session descriptor. 1298b0b670eeSAlfred Perlstein * Mark it SE_PRESENT. 12998fae3551SRodney W. Grimes */ 130045cfb1dcSXin LI static session_t * 13010b57dd6bSJilles Tjoelker new_session(session_t *sprev, struct ttyent *typ) 13028fae3551SRodney W. Grimes { 13033d438ad6SDavid E. O'Brien session_t *sp; 13048fae3551SRodney W. Grimes 13058fae3551SRodney W. Grimes if ((typ->ty_status & TTY_ON) == 0 || 13068fae3551SRodney W. Grimes typ->ty_name == 0 || 13078fae3551SRodney W. Grimes typ->ty_getty == 0) 13088fae3551SRodney W. Grimes return 0; 13098fae3551SRodney W. Grimes 13101054bb1eSAndrey A. Chernov sp = (session_t *) calloc(1, sizeof (session_t)); 13118fae3551SRodney W. Grimes 1312b0b670eeSAlfred Perlstein sp->se_flags |= SE_PRESENT; 13138fae3551SRodney W. Grimes 13141cde387cSEdward Tomasz Napierala if ((typ->ty_status & TTY_IFEXISTS) != 0) 13151cde387cSEdward Tomasz Napierala sp->se_flags |= SE_IFEXISTS; 13161cde387cSEdward Tomasz Napierala 13171cde387cSEdward Tomasz Napierala if ((typ->ty_status & TTY_IFCONSOLE) != 0) 13181cde387cSEdward Tomasz Napierala sp->se_flags |= SE_IFCONSOLE; 13191cde387cSEdward Tomasz Napierala 132095595f99SXin LI if (asprintf(&sp->se_device, "%s%s", _PATH_DEV, typ->ty_name) < 0) 132195595f99SXin LI err(1, "asprintf"); 13228fae3551SRodney W. Grimes 13238fae3551SRodney W. Grimes if (setupargv(sp, typ) == 0) { 13248fae3551SRodney W. Grimes free_session(sp); 13258fae3551SRodney W. Grimes return (0); 13268fae3551SRodney W. Grimes } 13278fae3551SRodney W. Grimes 13288fae3551SRodney W. Grimes sp->se_next = 0; 132914adaa14SMarcelo Araujo if (sprev == NULL) { 13308fae3551SRodney W. Grimes sessions = sp; 13318fae3551SRodney W. Grimes sp->se_prev = 0; 13328fae3551SRodney W. Grimes } else { 13338fae3551SRodney W. Grimes sprev->se_next = sp; 13348fae3551SRodney W. Grimes sp->se_prev = sprev; 13358fae3551SRodney W. Grimes } 13368fae3551SRodney W. Grimes 13378fae3551SRodney W. Grimes return sp; 13388fae3551SRodney W. Grimes } 13398fae3551SRodney W. Grimes 13408fae3551SRodney W. Grimes /* 13418fae3551SRodney W. Grimes * Calculate getty and if useful window argv vectors. 13428fae3551SRodney W. Grimes */ 134345cfb1dcSXin LI static int 134473bf18edSWarner Losh setupargv(session_t *sp, struct ttyent *typ) 13458fae3551SRodney W. Grimes { 13468fae3551SRodney W. Grimes 13478fae3551SRodney W. Grimes if (sp->se_getty) { 13488fae3551SRodney W. Grimes free(sp->se_getty); 1349b5df27e2SAndrey A. Chernov free(sp->se_getty_argv_space); 13508fae3551SRodney W. Grimes free(sp->se_getty_argv); 13518fae3551SRodney W. Grimes } 135295595f99SXin LI if (asprintf(&sp->se_getty, "%s %s", typ->ty_getty, typ->ty_name) < 0) 135395595f99SXin LI err(1, "asprintf"); 1354b5df27e2SAndrey A. Chernov sp->se_getty_argv_space = strdup(sp->se_getty); 1355b5df27e2SAndrey A. Chernov sp->se_getty_argv = construct_argv(sp->se_getty_argv_space); 135614adaa14SMarcelo Araujo if (sp->se_getty_argv == NULL) { 13578fae3551SRodney W. Grimes warning("can't parse getty for port %s", sp->se_device); 13588fae3551SRodney W. Grimes free(sp->se_getty); 1359b5df27e2SAndrey A. Chernov free(sp->se_getty_argv_space); 1360b5df27e2SAndrey A. Chernov sp->se_getty = sp->se_getty_argv_space = 0; 13618fae3551SRodney W. Grimes return (0); 13628fae3551SRodney W. Grimes } 1363b5df27e2SAndrey A. Chernov if (sp->se_window) { 13648fae3551SRodney W. Grimes free(sp->se_window); 1365b5df27e2SAndrey A. Chernov free(sp->se_window_argv_space); 1366b5df27e2SAndrey A. Chernov free(sp->se_window_argv); 1367b5df27e2SAndrey A. Chernov } 1368b5df27e2SAndrey A. Chernov sp->se_window = sp->se_window_argv_space = 0; 1369b5df27e2SAndrey A. Chernov sp->se_window_argv = 0; 1370b5df27e2SAndrey A. Chernov if (typ->ty_window) { 13718fae3551SRodney W. Grimes sp->se_window = strdup(typ->ty_window); 1372b5df27e2SAndrey A. Chernov sp->se_window_argv_space = strdup(sp->se_window); 1373b5df27e2SAndrey A. Chernov sp->se_window_argv = construct_argv(sp->se_window_argv_space); 137414adaa14SMarcelo Araujo if (sp->se_window_argv == NULL) { 13758fae3551SRodney W. Grimes warning("can't parse window for port %s", 13768fae3551SRodney W. Grimes sp->se_device); 1377b5df27e2SAndrey A. Chernov free(sp->se_window_argv_space); 13788fae3551SRodney W. Grimes free(sp->se_window); 1379b5df27e2SAndrey A. Chernov sp->se_window = sp->se_window_argv_space = 0; 13808fae3551SRodney W. Grimes return (0); 13818fae3551SRodney W. Grimes } 13828fae3551SRodney W. Grimes } 1383b5df27e2SAndrey A. Chernov if (sp->se_type) 1384b5df27e2SAndrey A. Chernov free(sp->se_type); 1385b5df27e2SAndrey A. Chernov sp->se_type = typ->ty_type ? strdup(typ->ty_type) : 0; 13868fae3551SRodney W. Grimes return (1); 13878fae3551SRodney W. Grimes } 13888fae3551SRodney W. Grimes 13898fae3551SRodney W. Grimes /* 13908fae3551SRodney W. Grimes * Walk the list of ttys and create sessions for each active line. 13918fae3551SRodney W. Grimes */ 139245cfb1dcSXin LI static state_func_t 139373bf18edSWarner Losh read_ttys(void) 13948fae3551SRodney W. Grimes { 13953d438ad6SDavid E. O'Brien session_t *sp, *snext; 13963d438ad6SDavid E. O'Brien struct ttyent *typ; 13978fae3551SRodney W. Grimes 13988fae3551SRodney W. Grimes /* 13998fae3551SRodney W. Grimes * Destroy any previous session state. 14008fae3551SRodney W. Grimes * There shouldn't be any, but just in case... 14018fae3551SRodney W. Grimes */ 14028fae3551SRodney W. Grimes for (sp = sessions; sp; sp = snext) { 14038fae3551SRodney W. Grimes snext = sp->se_next; 14048fae3551SRodney W. Grimes free_session(sp); 14058fae3551SRodney W. Grimes } 14068fae3551SRodney W. Grimes sessions = 0; 14078fae3551SRodney W. Grimes if (start_session_db()) 14088fae3551SRodney W. Grimes return (state_func_t) single_user; 14098fae3551SRodney W. Grimes 14108fae3551SRodney W. Grimes /* 14118fae3551SRodney W. Grimes * Allocate a session entry for each active port. 14128fae3551SRodney W. Grimes * Note that sp starts at 0. 14138fae3551SRodney W. Grimes */ 14148889c700SDavid Nugent while ((typ = getttyent()) != NULL) 14150b57dd6bSJilles Tjoelker if ((snext = new_session(sp, typ)) != NULL) 14168fae3551SRodney W. Grimes sp = snext; 14178fae3551SRodney W. Grimes 14188fae3551SRodney W. Grimes endttyent(); 14198fae3551SRodney W. Grimes 14208fae3551SRodney W. Grimes return (state_func_t) multi_user; 14218fae3551SRodney W. Grimes } 14228fae3551SRodney W. Grimes 14238fae3551SRodney W. Grimes /* 14248fae3551SRodney W. Grimes * Start a window system running. 14258fae3551SRodney W. Grimes */ 142645cfb1dcSXin LI static void 142773bf18edSWarner Losh start_window_system(session_t *sp) 14288fae3551SRodney W. Grimes { 14298fae3551SRodney W. Grimes pid_t pid; 14308fae3551SRodney W. Grimes sigset_t mask; 1431b5df27e2SAndrey A. Chernov char term[64], *env[2]; 14325010c3b6SKonstantin Belousov int status; 14338fae3551SRodney W. Grimes 14348fae3551SRodney W. Grimes if ((pid = fork()) == -1) { 14358fae3551SRodney W. Grimes emergency("can't fork for window system on port %s: %m", 14368fae3551SRodney W. Grimes sp->se_device); 14378fae3551SRodney W. Grimes /* hope that getty fails and we can try again */ 14388fae3551SRodney W. Grimes return; 14398fae3551SRodney W. Grimes } 1440091abe40SDavid E. O'Brien if (pid) { 14415010c3b6SKonstantin Belousov waitpid(-1, &status, 0); 14428fae3551SRodney W. Grimes return; 14435010c3b6SKonstantin Belousov } 14445010c3b6SKonstantin Belousov 14455010c3b6SKonstantin Belousov /* reparent window process to the init to not make a zombie on exit */ 14465010c3b6SKonstantin Belousov if ((pid = fork()) == -1) { 14475010c3b6SKonstantin Belousov emergency("can't fork for window system on port %s: %m", 14485010c3b6SKonstantin Belousov sp->se_device); 14495010c3b6SKonstantin Belousov _exit(1); 14505010c3b6SKonstantin Belousov } 14515010c3b6SKonstantin Belousov if (pid) 14525010c3b6SKonstantin Belousov _exit(0); 14538fae3551SRodney W. Grimes 14548fae3551SRodney W. Grimes sigemptyset(&mask); 1455d1b1fe3aSEdward Tomasz Napierala sigprocmask(SIG_SETMASK, &mask, NULL); 14568fae3551SRodney W. Grimes 14578fae3551SRodney W. Grimes if (setsid() < 0) 14588fae3551SRodney W. Grimes emergency("setsid failed (window) %m"); 14598fae3551SRodney W. Grimes 14601ef60eb1SDavid Nugent #ifdef LOGIN_CAP 14611ef60eb1SDavid Nugent setprocresources(RESOURCE_WINDOW); 14621ef60eb1SDavid Nugent #endif 1463b5df27e2SAndrey A. Chernov if (sp->se_type) { 1464b5df27e2SAndrey A. Chernov /* Don't use malloc after fork */ 1465b5df27e2SAndrey A. Chernov strcpy(term, "TERM="); 146695595f99SXin LI strlcat(term, sp->se_type, sizeof(term)); 1467b5df27e2SAndrey A. Chernov env[0] = term; 1468be03cfddSEdward Tomasz Napierala env[1] = NULL; 1469b5df27e2SAndrey A. Chernov } 1470b5df27e2SAndrey A. Chernov else 1471be03cfddSEdward Tomasz Napierala env[0] = NULL; 1472b5df27e2SAndrey A. Chernov execve(sp->se_window_argv[0], sp->se_window_argv, env); 14738fae3551SRodney W. Grimes stall("can't exec window system '%s' for port %s: %m", 14748fae3551SRodney W. Grimes sp->se_window_argv[0], sp->se_device); 14758fae3551SRodney W. Grimes _exit(1); 14768fae3551SRodney W. Grimes } 14778fae3551SRodney W. Grimes 14788fae3551SRodney W. Grimes /* 14798fae3551SRodney W. Grimes * Start a login session running. 14808fae3551SRodney W. Grimes */ 148145cfb1dcSXin LI static pid_t 148273bf18edSWarner Losh start_getty(session_t *sp) 14838fae3551SRodney W. Grimes { 14848fae3551SRodney W. Grimes pid_t pid; 14858fae3551SRodney W. Grimes sigset_t mask; 14868fae3551SRodney W. Grimes time_t current_time = time((time_t *) 0); 1487228d7ef2SAndrey A. Chernov int too_quick = 0; 1488b5df27e2SAndrey A. Chernov char term[64], *env[2]; 14898fae3551SRodney W. Grimes 1490bb2e87c4SMike Pritchard if (current_time >= sp->se_started && 1491228d7ef2SAndrey A. Chernov current_time - sp->se_started < GETTY_SPACING) { 1492228d7ef2SAndrey A. Chernov if (++sp->se_nspace > GETTY_NSPACE) { 1493228d7ef2SAndrey A. Chernov sp->se_nspace = 0; 1494228d7ef2SAndrey A. Chernov too_quick = 1; 1495228d7ef2SAndrey A. Chernov } 1496228d7ef2SAndrey A. Chernov } else 1497228d7ef2SAndrey A. Chernov sp->se_nspace = 0; 1498228d7ef2SAndrey A. Chernov 14998fae3551SRodney W. Grimes /* 15008fae3551SRodney W. Grimes * fork(), not vfork() -- we can't afford to block. 15018fae3551SRodney W. Grimes */ 15028fae3551SRodney W. Grimes if ((pid = fork()) == -1) { 15038fae3551SRodney W. Grimes emergency("can't fork for getty on port %s: %m", sp->se_device); 15048fae3551SRodney W. Grimes return -1; 15058fae3551SRodney W. Grimes } 15068fae3551SRodney W. Grimes 15078fae3551SRodney W. Grimes if (pid) 15088fae3551SRodney W. Grimes return pid; 15098fae3551SRodney W. Grimes 1510228d7ef2SAndrey A. Chernov if (too_quick) { 1511b5df27e2SAndrey A. Chernov warning("getty repeating too quickly on port %s, sleeping %d secs", 1512b5df27e2SAndrey A. Chernov sp->se_device, GETTY_SLEEP); 15138fae3551SRodney W. Grimes sleep((unsigned) GETTY_SLEEP); 15148fae3551SRodney W. Grimes } 15158fae3551SRodney W. Grimes 15168fae3551SRodney W. Grimes if (sp->se_window) { 15178fae3551SRodney W. Grimes start_window_system(sp); 15188fae3551SRodney W. Grimes sleep(WINDOW_WAIT); 15198fae3551SRodney W. Grimes } 15208fae3551SRodney W. Grimes 15218fae3551SRodney W. Grimes sigemptyset(&mask); 1522d1b1fe3aSEdward Tomasz Napierala sigprocmask(SIG_SETMASK, &mask, NULL); 15238fae3551SRodney W. Grimes 15241ef60eb1SDavid Nugent #ifdef LOGIN_CAP 15251ef60eb1SDavid Nugent setprocresources(RESOURCE_GETTY); 15261ef60eb1SDavid Nugent #endif 1527b5df27e2SAndrey A. Chernov if (sp->se_type) { 1528b5df27e2SAndrey A. Chernov /* Don't use malloc after fork */ 1529b5df27e2SAndrey A. Chernov strcpy(term, "TERM="); 153095595f99SXin LI strlcat(term, sp->se_type, sizeof(term)); 1531b5df27e2SAndrey A. Chernov env[0] = term; 1532be03cfddSEdward Tomasz Napierala env[1] = NULL; 1533091abe40SDavid E. O'Brien } else 1534be03cfddSEdward Tomasz Napierala env[0] = NULL; 1535b5df27e2SAndrey A. Chernov execve(sp->se_getty_argv[0], sp->se_getty_argv, env); 15368fae3551SRodney W. Grimes stall("can't exec getty '%s' for port %s: %m", 15378fae3551SRodney W. Grimes sp->se_getty_argv[0], sp->se_device); 15388fae3551SRodney W. Grimes _exit(1); 15398fae3551SRodney W. Grimes } 15408fae3551SRodney W. Grimes 15418fae3551SRodney W. Grimes /* 15421cde387cSEdward Tomasz Napierala * Return 1 if the session is defined as "onifexists" 15431cde387cSEdward Tomasz Napierala * or "onifconsole" and the device node does not exist. 15441cde387cSEdward Tomasz Napierala */ 15451cde387cSEdward Tomasz Napierala static int 15461cde387cSEdward Tomasz Napierala session_has_no_tty(session_t *sp) 15471cde387cSEdward Tomasz Napierala { 15481cde387cSEdward Tomasz Napierala int fd; 15491cde387cSEdward Tomasz Napierala 15501cde387cSEdward Tomasz Napierala if ((sp->se_flags & SE_IFEXISTS) == 0 && 15511cde387cSEdward Tomasz Napierala (sp->se_flags & SE_IFCONSOLE) == 0) 15521cde387cSEdward Tomasz Napierala return (0); 15531cde387cSEdward Tomasz Napierala 15541cde387cSEdward Tomasz Napierala fd = open(sp->se_device, O_RDONLY | O_NONBLOCK, 0); 15551cde387cSEdward Tomasz Napierala if (fd < 0) { 15561cde387cSEdward Tomasz Napierala if (errno == ENOENT) 15571cde387cSEdward Tomasz Napierala return (1); 15581cde387cSEdward Tomasz Napierala return (0); 15591cde387cSEdward Tomasz Napierala } 15601cde387cSEdward Tomasz Napierala 15611cde387cSEdward Tomasz Napierala close(fd); 15621cde387cSEdward Tomasz Napierala return (0); 15631cde387cSEdward Tomasz Napierala } 15641cde387cSEdward Tomasz Napierala 15651cde387cSEdward Tomasz Napierala /* 15668fae3551SRodney W. Grimes * Collect exit status for a child. 15678fae3551SRodney W. Grimes * If an exiting login, start a new login running. 15688fae3551SRodney W. Grimes */ 156945cfb1dcSXin LI static void 15708fae3551SRodney W. Grimes collect_child(pid_t pid) 15718fae3551SRodney W. Grimes { 15723d438ad6SDavid E. O'Brien session_t *sp, *sprev, *snext; 15738fae3551SRodney W. Grimes 15748fae3551SRodney W. Grimes if (! sessions) 15758fae3551SRodney W. Grimes return; 15768fae3551SRodney W. Grimes 15778fae3551SRodney W. Grimes if (! (sp = find_session(pid))) 15788fae3551SRodney W. Grimes return; 15798fae3551SRodney W. Grimes 15808fae3551SRodney W. Grimes del_session(sp); 15818fae3551SRodney W. Grimes sp->se_process = 0; 15828fae3551SRodney W. Grimes 15831cde387cSEdward Tomasz Napierala if (sp->se_flags & SE_SHUTDOWN || 15841cde387cSEdward Tomasz Napierala session_has_no_tty(sp)) { 15858889c700SDavid Nugent if ((sprev = sp->se_prev) != NULL) 15868fae3551SRodney W. Grimes sprev->se_next = sp->se_next; 15878fae3551SRodney W. Grimes else 15888fae3551SRodney W. Grimes sessions = sp->se_next; 15898889c700SDavid Nugent if ((snext = sp->se_next) != NULL) 15908fae3551SRodney W. Grimes snext->se_prev = sp->se_prev; 15918fae3551SRodney W. Grimes free_session(sp); 15928fae3551SRodney W. Grimes return; 15938fae3551SRodney W. Grimes } 15948fae3551SRodney W. Grimes 15958fae3551SRodney W. Grimes if ((pid = start_getty(sp)) == -1) { 15968fae3551SRodney W. Grimes /* serious trouble */ 15978fae3551SRodney W. Grimes requested_transition = clean_ttys; 15988fae3551SRodney W. Grimes return; 15998fae3551SRodney W. Grimes } 16008fae3551SRodney W. Grimes 16018fae3551SRodney W. Grimes sp->se_process = pid; 16028fae3551SRodney W. Grimes sp->se_started = time((time_t *) 0); 16038fae3551SRodney W. Grimes add_session(sp); 16048fae3551SRodney W. Grimes } 16058fae3551SRodney W. Grimes 16067b0a665dSMitchell Horne static const char * 16077b0a665dSMitchell Horne get_current_state(void) 16087b0a665dSMitchell Horne { 16097b0a665dSMitchell Horne 16107b0a665dSMitchell Horne if (current_state == single_user) 16117b0a665dSMitchell Horne return ("single-user"); 16127b0a665dSMitchell Horne if (current_state == runcom) 16137b0a665dSMitchell Horne return ("runcom"); 16147b0a665dSMitchell Horne if (current_state == read_ttys) 16157b0a665dSMitchell Horne return ("read-ttys"); 16167b0a665dSMitchell Horne if (current_state == multi_user) 16177b0a665dSMitchell Horne return ("multi-user"); 16187b0a665dSMitchell Horne if (current_state == clean_ttys) 16197b0a665dSMitchell Horne return ("clean-ttys"); 16207b0a665dSMitchell Horne if (current_state == catatonia) 16217b0a665dSMitchell Horne return ("catatonia"); 16227b0a665dSMitchell Horne if (current_state == death) 16237b0a665dSMitchell Horne return ("death"); 16247b0a665dSMitchell Horne if (current_state == death_single) 16257b0a665dSMitchell Horne return ("death-single"); 16267b0a665dSMitchell Horne return ("unknown"); 16277b0a665dSMitchell Horne } 16287b0a665dSMitchell Horne 16297b0a665dSMitchell Horne static void 16307b0a665dSMitchell Horne boottrace_transition(int sig) 16317b0a665dSMitchell Horne { 16327b0a665dSMitchell Horne const char *action; 16337b0a665dSMitchell Horne 16347b0a665dSMitchell Horne switch (sig) { 16357b0a665dSMitchell Horne case SIGUSR2: 16367b0a665dSMitchell Horne action = "halt & poweroff"; 16377b0a665dSMitchell Horne break; 16387b0a665dSMitchell Horne case SIGUSR1: 16397b0a665dSMitchell Horne action = "halt"; 16407b0a665dSMitchell Horne break; 16417b0a665dSMitchell Horne case SIGINT: 16427b0a665dSMitchell Horne action = "reboot"; 16437b0a665dSMitchell Horne break; 16447b0a665dSMitchell Horne case SIGWINCH: 16457b0a665dSMitchell Horne action = "powercycle"; 16467b0a665dSMitchell Horne break; 16477b0a665dSMitchell Horne case SIGTERM: 16487b0a665dSMitchell Horne action = Reboot ? "reboot" : "single-user"; 16497b0a665dSMitchell Horne break; 16507b0a665dSMitchell Horne default: 16517b0a665dSMitchell Horne BOOTTRACE("signal %d from %s", sig, get_current_state()); 16527b0a665dSMitchell Horne return; 16537b0a665dSMitchell Horne } 16547b0a665dSMitchell Horne 16557b0a665dSMitchell Horne /* Trace the shutdown reason. */ 16567b0a665dSMitchell Horne SHUTTRACE("%s from %s", action, get_current_state()); 16577b0a665dSMitchell Horne } 16587b0a665dSMitchell Horne 16598fae3551SRodney W. Grimes /* 16608fae3551SRodney W. Grimes * Catch a signal and request a state transition. 16618fae3551SRodney W. Grimes */ 166245cfb1dcSXin LI static void 166373bf18edSWarner Losh transition_handler(int sig) 16648fae3551SRodney W. Grimes { 16658fae3551SRodney W. Grimes 16667b0a665dSMitchell Horne boottrace_transition(sig); 16678fae3551SRodney W. Grimes switch (sig) { 16688fae3551SRodney W. Grimes case SIGHUP: 1669acf0ab06SJilles Tjoelker if (current_state == read_ttys || current_state == multi_user || 1670acf0ab06SJilles Tjoelker current_state == clean_ttys || current_state == catatonia) 16718fae3551SRodney W. Grimes requested_transition = clean_ttys; 16728fae3551SRodney W. Grimes break; 1673a0a549c7SRuslan Ermilov case SIGUSR2: 167473c6e0c3SWarner Losh howto = RB_POWEROFF; 1675a0a549c7SRuslan Ermilov case SIGUSR1: 1676a0a549c7SRuslan Ermilov howto |= RB_HALT; 167773c6e0c3SWarner Losh case SIGWINCH: 1678e460cfd3SNate Williams case SIGINT: 167973c6e0c3SWarner Losh if (sig == SIGWINCH) 168073c6e0c3SWarner Losh howto |= RB_POWERCYCLE; 1681de08b516SMitchell Horne Reboot = true; 16828fae3551SRodney W. Grimes case SIGTERM: 1683acf0ab06SJilles Tjoelker if (current_state == read_ttys || current_state == multi_user || 1684acf0ab06SJilles Tjoelker current_state == clean_ttys || current_state == catatonia) 16858fae3551SRodney W. Grimes requested_transition = death; 1686acf0ab06SJilles Tjoelker else 1687acf0ab06SJilles Tjoelker requested_transition = death_single; 16888fae3551SRodney W. Grimes break; 16898fae3551SRodney W. Grimes case SIGTSTP: 1690acf0ab06SJilles Tjoelker if (current_state == runcom || current_state == read_ttys || 1691acf0ab06SJilles Tjoelker current_state == clean_ttys || 1692acf0ab06SJilles Tjoelker current_state == multi_user || current_state == catatonia) 16938fae3551SRodney W. Grimes requested_transition = catatonia; 16948fae3551SRodney W. Grimes break; 16953f5ac575SEdward Tomasz Napierala case SIGEMT: 16963f5ac575SEdward Tomasz Napierala requested_transition = reroot; 16973f5ac575SEdward Tomasz Napierala break; 16988fae3551SRodney W. Grimes default: 16998fae3551SRodney W. Grimes requested_transition = 0; 17008fae3551SRodney W. Grimes break; 17018fae3551SRodney W. Grimes } 17028fae3551SRodney W. Grimes } 17038fae3551SRodney W. Grimes 17048fae3551SRodney W. Grimes /* 17058fae3551SRodney W. Grimes * Take the system multiuser. 17068fae3551SRodney W. Grimes */ 170745cfb1dcSXin LI static state_func_t 170873bf18edSWarner Losh multi_user(void) 17098fae3551SRodney W. Grimes { 17107b0a665dSMitchell Horne static bool inmultiuser = false; 17118fae3551SRodney W. Grimes pid_t pid; 17123d438ad6SDavid E. O'Brien session_t *sp; 17138fae3551SRodney W. Grimes 17148fae3551SRodney W. Grimes requested_transition = 0; 17158fae3551SRodney W. Grimes 17168fae3551SRodney W. Grimes /* 17178fae3551SRodney W. Grimes * If the administrator has not set the security level to -1 17188fae3551SRodney W. Grimes * to indicate that the kernel should not run multiuser in secure 17198fae3551SRodney W. Grimes * mode, and the run script has not set a higher level of security 17208fae3551SRodney W. Grimes * than level 1, then put the kernel into secure mode. 17218fae3551SRodney W. Grimes */ 17228fae3551SRodney W. Grimes if (getsecuritylevel() == 0) 17238fae3551SRodney W. Grimes setsecuritylevel(1); 17248fae3551SRodney W. Grimes 17258fae3551SRodney W. Grimes for (sp = sessions; sp; sp = sp->se_next) { 17268fae3551SRodney W. Grimes if (sp->se_process) 17278fae3551SRodney W. Grimes continue; 17281cde387cSEdward Tomasz Napierala if (session_has_no_tty(sp)) 17291cde387cSEdward Tomasz Napierala continue; 17308fae3551SRodney W. Grimes if ((pid = start_getty(sp)) == -1) { 17318fae3551SRodney W. Grimes /* serious trouble */ 17328fae3551SRodney W. Grimes requested_transition = clean_ttys; 17338fae3551SRodney W. Grimes break; 17348fae3551SRodney W. Grimes } 17358fae3551SRodney W. Grimes sp->se_process = pid; 17368fae3551SRodney W. Grimes sp->se_started = time((time_t *) 0); 17378fae3551SRodney W. Grimes add_session(sp); 17388fae3551SRodney W. Grimes } 17398fae3551SRodney W. Grimes 17407b0a665dSMitchell Horne if (requested_transition == 0 && !inmultiuser) { 17417b0a665dSMitchell Horne inmultiuser = true; 17427b0a665dSMitchell Horne /* This marks the change from boot-time tracing to run-time. */ 17437b0a665dSMitchell Horne RUNTRACE("multi-user start"); 17447b0a665dSMitchell Horne } 17458fae3551SRodney W. Grimes while (!requested_transition) 17468fae3551SRodney W. Grimes if ((pid = waitpid(-1, (int *) 0, 0)) != -1) 17478fae3551SRodney W. Grimes collect_child(pid); 17488fae3551SRodney W. Grimes 17498fae3551SRodney W. Grimes return (state_func_t) requested_transition; 17508fae3551SRodney W. Grimes } 17518fae3551SRodney W. Grimes 17528fae3551SRodney W. Grimes /* 1753b0b670eeSAlfred Perlstein * This is an (n*2)+(n^2) algorithm. We hope it isn't run often... 17548fae3551SRodney W. Grimes */ 175545cfb1dcSXin LI static state_func_t 175673bf18edSWarner Losh clean_ttys(void) 17578fae3551SRodney W. Grimes { 17583d438ad6SDavid E. O'Brien session_t *sp, *sprev; 17593d438ad6SDavid E. O'Brien struct ttyent *typ; 17603d438ad6SDavid E. O'Brien int devlen; 1761b5df27e2SAndrey A. Chernov char *old_getty, *old_window, *old_type; 17628fae3551SRodney W. Grimes 1763b0b670eeSAlfred Perlstein /* 1764b0b670eeSAlfred Perlstein * mark all sessions for death, (!SE_PRESENT) 1765b0b670eeSAlfred Perlstein * as we find or create new ones they'll be marked as keepers, 1766b0b670eeSAlfred Perlstein * we'll later nuke all the ones not found in /etc/ttys 1767b0b670eeSAlfred Perlstein */ 1768b0b670eeSAlfred Perlstein for (sp = sessions; sp != NULL; sp = sp->se_next) 1769b0b670eeSAlfred Perlstein sp->se_flags &= ~SE_PRESENT; 1770b0b670eeSAlfred Perlstein 17718fae3551SRodney W. Grimes devlen = sizeof(_PATH_DEV) - 1; 17728889c700SDavid Nugent while ((typ = getttyent()) != NULL) { 17738fae3551SRodney W. Grimes for (sprev = 0, sp = sessions; sp; sprev = sp, sp = sp->se_next) 17748fae3551SRodney W. Grimes if (strcmp(typ->ty_name, sp->se_device + devlen) == 0) 17758fae3551SRodney W. Grimes break; 17768fae3551SRodney W. Grimes 17778fae3551SRodney W. Grimes if (sp) { 1778b0b670eeSAlfred Perlstein /* we want this one to live */ 1779b0b670eeSAlfred Perlstein sp->se_flags |= SE_PRESENT; 17808fae3551SRodney W. Grimes if ((typ->ty_status & TTY_ON) == 0 || 17818fae3551SRodney W. Grimes typ->ty_getty == 0) { 17828fae3551SRodney W. Grimes sp->se_flags |= SE_SHUTDOWN; 17838fae3551SRodney W. Grimes kill(sp->se_process, SIGHUP); 17848fae3551SRodney W. Grimes continue; 17858fae3551SRodney W. Grimes } 17868fae3551SRodney W. Grimes sp->se_flags &= ~SE_SHUTDOWN; 1787b5df27e2SAndrey A. Chernov old_getty = sp->se_getty ? strdup(sp->se_getty) : 0; 1788b5df27e2SAndrey A. Chernov old_window = sp->se_window ? strdup(sp->se_window) : 0; 1789b5df27e2SAndrey A. Chernov old_type = sp->se_type ? strdup(sp->se_type) : 0; 17908fae3551SRodney W. Grimes if (setupargv(sp, typ) == 0) { 17918fae3551SRodney W. Grimes warning("can't parse getty for port %s", 17928fae3551SRodney W. Grimes sp->se_device); 17938fae3551SRodney W. Grimes sp->se_flags |= SE_SHUTDOWN; 17948fae3551SRodney W. Grimes kill(sp->se_process, SIGHUP); 17958fae3551SRodney W. Grimes } 1796b5df27e2SAndrey A. Chernov else if ( !old_getty 17978889c700SDavid Nugent || (!old_type && sp->se_type) 17988889c700SDavid Nugent || (old_type && !sp->se_type) 17998889c700SDavid Nugent || (!old_window && sp->se_window) 18008889c700SDavid Nugent || (old_window && !sp->se_window) 18018889c700SDavid Nugent || (strcmp(old_getty, sp->se_getty) != 0) 18028889c700SDavid Nugent || (old_window && strcmp(old_window, sp->se_window) != 0) 18038889c700SDavid Nugent || (old_type && strcmp(old_type, sp->se_type) != 0) 1804b5df27e2SAndrey A. Chernov ) { 1805b5df27e2SAndrey A. Chernov /* Don't set SE_SHUTDOWN here */ 1806b5df27e2SAndrey A. Chernov sp->se_nspace = 0; 1807b5df27e2SAndrey A. Chernov sp->se_started = 0; 1808b5df27e2SAndrey A. Chernov kill(sp->se_process, SIGHUP); 1809b5df27e2SAndrey A. Chernov } 1810b5df27e2SAndrey A. Chernov if (old_getty) 1811b5df27e2SAndrey A. Chernov free(old_getty); 18122d887af5SMike Heffner if (old_window) 1813b5df27e2SAndrey A. Chernov free(old_window); 1814b5df27e2SAndrey A. Chernov if (old_type) 1815b5df27e2SAndrey A. Chernov free(old_type); 18168fae3551SRodney W. Grimes continue; 18178fae3551SRodney W. Grimes } 18188fae3551SRodney W. Grimes 18190b57dd6bSJilles Tjoelker new_session(sprev, typ); 18208fae3551SRodney W. Grimes } 18218fae3551SRodney W. Grimes 18228fae3551SRodney W. Grimes endttyent(); 18238fae3551SRodney W. Grimes 1824b0b670eeSAlfred Perlstein /* 1825b0b670eeSAlfred Perlstein * sweep through and kill all deleted sessions 1826b0b670eeSAlfred Perlstein * ones who's /etc/ttys line was deleted (SE_PRESENT unset) 1827b0b670eeSAlfred Perlstein */ 1828b0b670eeSAlfred Perlstein for (sp = sessions; sp != NULL; sp = sp->se_next) { 1829b0b670eeSAlfred Perlstein if ((sp->se_flags & SE_PRESENT) == 0) { 1830b0b670eeSAlfred Perlstein sp->se_flags |= SE_SHUTDOWN; 1831b0b670eeSAlfred Perlstein kill(sp->se_process, SIGHUP); 1832b0b670eeSAlfred Perlstein } 1833b0b670eeSAlfred Perlstein } 1834b0b670eeSAlfred Perlstein 18358fae3551SRodney W. Grimes return (state_func_t) multi_user; 18368fae3551SRodney W. Grimes } 18378fae3551SRodney W. Grimes 18388fae3551SRodney W. Grimes /* 18398fae3551SRodney W. Grimes * Block further logins. 18408fae3551SRodney W. Grimes */ 184145cfb1dcSXin LI static state_func_t 184273bf18edSWarner Losh catatonia(void) 18438fae3551SRodney W. Grimes { 18443d438ad6SDavid E. O'Brien session_t *sp; 18458fae3551SRodney W. Grimes 18468fae3551SRodney W. Grimes for (sp = sessions; sp; sp = sp->se_next) 18478fae3551SRodney W. Grimes sp->se_flags |= SE_SHUTDOWN; 18488fae3551SRodney W. Grimes 18498fae3551SRodney W. Grimes return (state_func_t) multi_user; 18508fae3551SRodney W. Grimes } 18518fae3551SRodney W. Grimes 18528fae3551SRodney W. Grimes /* 18538fae3551SRodney W. Grimes * Note SIGALRM. 18548fae3551SRodney W. Grimes */ 185545cfb1dcSXin LI static void 185673bf18edSWarner Losh alrm_handler(int sig) 18578fae3551SRodney W. Grimes { 1858091abe40SDavid E. O'Brien 18598889c700SDavid Nugent (void)sig; 1860de08b516SMitchell Horne clang = true; 18618fae3551SRodney W. Grimes } 18628fae3551SRodney W. Grimes 18638fae3551SRodney W. Grimes /* 18648fae3551SRodney W. Grimes * Bring the system down to single user. 18658fae3551SRodney W. Grimes */ 186645cfb1dcSXin LI static state_func_t 186773bf18edSWarner Losh death(void) 18688fae3551SRodney W. Grimes { 18692eb0015aSColin Percival int block, blocked; 18702eb0015aSColin Percival size_t len; 18712eb0015aSColin Percival 18722eb0015aSColin Percival /* Temporarily block suspend. */ 18732eb0015aSColin Percival len = sizeof(blocked); 18742eb0015aSColin Percival block = 1; 18752eb0015aSColin Percival if (sysctlbyname("kern.suspend_blocked", &blocked, &len, 18762eb0015aSColin Percival &block, sizeof(block)) == -1) 18772eb0015aSColin Percival blocked = 0; 18788fae3551SRodney W. Grimes 18794ae35b5dSEd Schouten /* 18804ae35b5dSEd Schouten * Also revoke the TTY here. Because runshutdown() may reopen 18814ae35b5dSEd Schouten * the TTY whose getty we're killing here, there is no guarantee 18824ae35b5dSEd Schouten * runshutdown() will perform the initial open() call, causing 18834ae35b5dSEd Schouten * the terminal attributes to be misconfigured. 18844ae35b5dSEd Schouten */ 18853f5ac575SEdward Tomasz Napierala revoke_ttys(); 18868fae3551SRodney W. Grimes 18878889c700SDavid Nugent /* Try to run the rc.shutdown script within a period of time */ 1888091abe40SDavid E. O'Brien runshutdown(); 18898889c700SDavid Nugent 18902eb0015aSColin Percival /* Unblock suspend if we blocked it. */ 18912eb0015aSColin Percival if (!blocked) 18922eb0015aSColin Percival sysctlbyname("kern.suspend_blocked", NULL, NULL, 18932eb0015aSColin Percival &blocked, sizeof(blocked)); 18942eb0015aSColin Percival 1895acf0ab06SJilles Tjoelker return (state_func_t) death_single; 1896acf0ab06SJilles Tjoelker } 1897acf0ab06SJilles Tjoelker 1898acf0ab06SJilles Tjoelker /* 1899acf0ab06SJilles Tjoelker * Do what is necessary to reinitialize single user mode or reboot 1900acf0ab06SJilles Tjoelker * from an incomplete state. 1901acf0ab06SJilles Tjoelker */ 1902acf0ab06SJilles Tjoelker static state_func_t 1903acf0ab06SJilles Tjoelker death_single(void) 1904acf0ab06SJilles Tjoelker { 1905acf0ab06SJilles Tjoelker int i; 1906acf0ab06SJilles Tjoelker pid_t pid; 1907acf0ab06SJilles Tjoelker static const int death_sigs[2] = { SIGTERM, SIGKILL }; 1908acf0ab06SJilles Tjoelker 1909acf0ab06SJilles Tjoelker revoke(_PATH_CONSOLE); 1910acf0ab06SJilles Tjoelker 19117b0a665dSMitchell Horne BOOTTRACE("start killing user processes"); 1912c3d7c52eSAndrey A. Chernov for (i = 0; i < 2; ++i) { 19138fae3551SRodney W. Grimes if (kill(-1, death_sigs[i]) == -1 && errno == ESRCH) 19148fae3551SRodney W. Grimes return (state_func_t) single_user; 19158fae3551SRodney W. Grimes 1916de08b516SMitchell Horne clang = false; 19178fae3551SRodney W. Grimes alarm(DEATH_WATCH); 19188fae3551SRodney W. Grimes do 19198fae3551SRodney W. Grimes if ((pid = waitpid(-1, (int *)0, 0)) != -1) 19208fae3551SRodney W. Grimes collect_child(pid); 1921de08b516SMitchell Horne while (!clang && errno != ECHILD); 19228fae3551SRodney W. Grimes 19238fae3551SRodney W. Grimes if (errno == ECHILD) 19248fae3551SRodney W. Grimes return (state_func_t) single_user; 19258fae3551SRodney W. Grimes } 19268fae3551SRodney W. Grimes 19278fae3551SRodney W. Grimes warning("some processes would not die; ps axl advised"); 19288fae3551SRodney W. Grimes 19298fae3551SRodney W. Grimes return (state_func_t) single_user; 19308fae3551SRodney W. Grimes } 19318889c700SDavid Nugent 19323f5ac575SEdward Tomasz Napierala static void 19333f5ac575SEdward Tomasz Napierala revoke_ttys(void) 19343f5ac575SEdward Tomasz Napierala { 19353f5ac575SEdward Tomasz Napierala session_t *sp; 19363f5ac575SEdward Tomasz Napierala 19373f5ac575SEdward Tomasz Napierala for (sp = sessions; sp; sp = sp->se_next) { 19383f5ac575SEdward Tomasz Napierala sp->se_flags |= SE_SHUTDOWN; 19393f5ac575SEdward Tomasz Napierala kill(sp->se_process, SIGHUP); 19403f5ac575SEdward Tomasz Napierala revoke(sp->se_device); 19413f5ac575SEdward Tomasz Napierala } 19423f5ac575SEdward Tomasz Napierala } 19433f5ac575SEdward Tomasz Napierala 19448889c700SDavid Nugent /* 19458889c700SDavid Nugent * Run the system shutdown script. 19468889c700SDavid Nugent * 19478889c700SDavid Nugent * Exit codes: XXX I should document more 19488889c700SDavid Nugent * -2 shutdown script terminated abnormally 19498889c700SDavid Nugent * -1 fatal error - can't run script 19508889c700SDavid Nugent * 0 good. 19518889c700SDavid Nugent * >0 some error (exit code) 19528889c700SDavid Nugent */ 195345cfb1dcSXin LI static int 195473bf18edSWarner Losh runshutdown(void) 19558889c700SDavid Nugent { 19568889c700SDavid Nugent pid_t pid, wpid; 1957f3c4a698SEdward Tomasz Napierala int status; 19588889c700SDavid Nugent int shutdowntimeout; 19598889c700SDavid Nugent size_t len; 1960a69497d7SMatthew Dillon char *argv[4]; 196186bf62dcSDavid Nugent struct stat sb; 196286bf62dcSDavid Nugent 19637b0a665dSMitchell Horne BOOTTRACE("init(8): start rc.shutdown"); 19647b0a665dSMitchell Horne 196586bf62dcSDavid Nugent /* 196686bf62dcSDavid Nugent * rc.shutdown is optional, so to prevent any unnecessary 196786bf62dcSDavid Nugent * complaints from the shell we simply don't run it if the 196886bf62dcSDavid Nugent * file does not exist. If the stat() here fails for other 196986bf62dcSDavid Nugent * reasons, we'll let the shell complain. 197086bf62dcSDavid Nugent */ 197186bf62dcSDavid Nugent if (stat(_PATH_RUNDOWN, &sb) == -1 && errno == ENOENT) 197286bf62dcSDavid Nugent return 0; 19738889c700SDavid Nugent 19748889c700SDavid Nugent if ((pid = fork()) == 0) { 1975ab03e6d5SXin LI char _sh[] = "sh"; 1976ab03e6d5SXin LI char _reboot[] = "reboot"; 1977ab03e6d5SXin LI char _single[] = "single"; 1978ab03e6d5SXin LI char _path_rundown[] = _PATH_RUNDOWN; 1979ab03e6d5SXin LI 1980ab03e6d5SXin LI argv[0] = _sh; 1981ab03e6d5SXin LI argv[1] = _path_rundown; 1982ab03e6d5SXin LI argv[2] = Reboot ? _reboot : _single; 1983be03cfddSEdward Tomasz Napierala argv[3] = NULL; 19848889c700SDavid Nugent 1985f3c4a698SEdward Tomasz Napierala execute_script(argv); 19868889c700SDavid Nugent _exit(1); /* force single user mode */ 19878889c700SDavid Nugent } 19888889c700SDavid Nugent 19898889c700SDavid Nugent if (pid == -1) { 1990f3c4a698SEdward Tomasz Napierala emergency("can't fork for %s: %m", _PATH_RUNDOWN); 19918889c700SDavid Nugent while (waitpid(-1, (int *) 0, WNOHANG) > 0) 19928889c700SDavid Nugent continue; 19938889c700SDavid Nugent sleep(STALL_TIMEOUT); 19948889c700SDavid Nugent return -1; 19958889c700SDavid Nugent } 19968889c700SDavid Nugent 19978889c700SDavid Nugent len = sizeof(shutdowntimeout); 1998091abe40SDavid E. O'Brien if (sysctlbyname("kern.init_shutdown_timeout", &shutdowntimeout, &len, 1999091abe40SDavid E. O'Brien NULL, 0) == -1 || shutdowntimeout < 2) 20008889c700SDavid Nugent shutdowntimeout = DEATH_SCRIPT; 20018889c700SDavid Nugent alarm(shutdowntimeout); 2002de08b516SMitchell Horne clang = false; 20038889c700SDavid Nugent /* 20048889c700SDavid Nugent * Copied from single_user(). This is a bit paranoid. 20058889c700SDavid Nugent * Use the same ALRM handler. 20068889c700SDavid Nugent */ 20078889c700SDavid Nugent do { 20088889c700SDavid Nugent if ((wpid = waitpid(-1, &status, WUNTRACED)) != -1) 20098889c700SDavid Nugent collect_child(wpid); 2010de08b516SMitchell Horne if (clang) { 20118889c700SDavid Nugent /* we were waiting for the sub-shell */ 20128889c700SDavid Nugent kill(wpid, SIGTERM); 2013f3c4a698SEdward Tomasz Napierala warning("timeout expired for %s: %m; going to " 2014f3c4a698SEdward Tomasz Napierala "single user mode", _PATH_RUNDOWN); 20157b0a665dSMitchell Horne BOOTTRACE("rc.shutdown's %d sec timeout expired", 20167b0a665dSMitchell Horne shutdowntimeout); 20178889c700SDavid Nugent return -1; 20188889c700SDavid Nugent } 20198889c700SDavid Nugent if (wpid == -1) { 20208889c700SDavid Nugent if (errno == EINTR) 20218889c700SDavid Nugent continue; 2022f3c4a698SEdward Tomasz Napierala warning("wait for %s failed: %m; going to " 2023f3c4a698SEdward Tomasz Napierala "single user mode", _PATH_RUNDOWN); 20248889c700SDavid Nugent return -1; 20258889c700SDavid Nugent } 20268889c700SDavid Nugent if (wpid == pid && WIFSTOPPED(status)) { 2027f3c4a698SEdward Tomasz Napierala warning("init: %s stopped, restarting\n", 2028f3c4a698SEdward Tomasz Napierala _PATH_RUNDOWN); 20298889c700SDavid Nugent kill(pid, SIGCONT); 20308889c700SDavid Nugent wpid = -1; 20318889c700SDavid Nugent } 20328889c700SDavid Nugent } while (wpid != pid && !clang); 20338889c700SDavid Nugent 20348889c700SDavid Nugent /* Turn off the alarm */ 20358889c700SDavid Nugent alarm(0); 20368889c700SDavid Nugent 20378889c700SDavid Nugent if (WIFSIGNALED(status) && WTERMSIG(status) == SIGTERM && 20388889c700SDavid Nugent requested_transition == catatonia) { 20398889c700SDavid Nugent /* 20408889c700SDavid Nugent * /etc/rc.shutdown executed /sbin/reboot; 20418889c700SDavid Nugent * wait for the end quietly 20428889c700SDavid Nugent */ 20438889c700SDavid Nugent sigset_t s; 20448889c700SDavid Nugent 20458889c700SDavid Nugent sigfillset(&s); 20468889c700SDavid Nugent for (;;) 20478889c700SDavid Nugent sigsuspend(&s); 20488889c700SDavid Nugent } 20498889c700SDavid Nugent 20508889c700SDavid Nugent if (!WIFEXITED(status)) { 2051f3c4a698SEdward Tomasz Napierala warning("%s terminated abnormally, going to " 2052f3c4a698SEdward Tomasz Napierala "single user mode", _PATH_RUNDOWN); 20538889c700SDavid Nugent return -2; 20548889c700SDavid Nugent } 20558889c700SDavid Nugent 20568889c700SDavid Nugent if ((status = WEXITSTATUS(status)) != 0) 20578889c700SDavid Nugent warning("%s returned status %d", _PATH_RUNDOWN, status); 20588889c700SDavid Nugent 20598889c700SDavid Nugent return status; 20608889c700SDavid Nugent } 20618889c700SDavid Nugent 2062ab03e6d5SXin LI static char * 206381ab7fb2SAndrey A. Chernov strk(char *p) 206481ab7fb2SAndrey A. Chernov { 206581ab7fb2SAndrey A. Chernov static char *t; 206681ab7fb2SAndrey A. Chernov char *q; 206781ab7fb2SAndrey A. Chernov int c; 206881ab7fb2SAndrey A. Chernov 206981ab7fb2SAndrey A. Chernov if (p) 207081ab7fb2SAndrey A. Chernov t = p; 207181ab7fb2SAndrey A. Chernov if (!t) 207281ab7fb2SAndrey A. Chernov return 0; 207381ab7fb2SAndrey A. Chernov 207481ab7fb2SAndrey A. Chernov c = *t; 207581ab7fb2SAndrey A. Chernov while (c == ' ' || c == '\t' ) 207681ab7fb2SAndrey A. Chernov c = *++t; 207781ab7fb2SAndrey A. Chernov if (!c) { 207881ab7fb2SAndrey A. Chernov t = 0; 207981ab7fb2SAndrey A. Chernov return 0; 208081ab7fb2SAndrey A. Chernov } 208181ab7fb2SAndrey A. Chernov q = t; 208281ab7fb2SAndrey A. Chernov if (c == '\'') { 208381ab7fb2SAndrey A. Chernov c = *++t; 208481ab7fb2SAndrey A. Chernov q = t; 208581ab7fb2SAndrey A. Chernov while (c && c != '\'') 208681ab7fb2SAndrey A. Chernov c = *++t; 208781ab7fb2SAndrey A. Chernov if (!c) /* unterminated string */ 208881ab7fb2SAndrey A. Chernov q = t = 0; 208981ab7fb2SAndrey A. Chernov else 209081ab7fb2SAndrey A. Chernov *t++ = 0; 209181ab7fb2SAndrey A. Chernov } else { 209281ab7fb2SAndrey A. Chernov while (c && c != ' ' && c != '\t' ) 209381ab7fb2SAndrey A. Chernov c = *++t; 209481ab7fb2SAndrey A. Chernov *t++ = 0; 209581ab7fb2SAndrey A. Chernov if (!c) 209681ab7fb2SAndrey A. Chernov t = 0; 209781ab7fb2SAndrey A. Chernov } 209881ab7fb2SAndrey A. Chernov return q; 209981ab7fb2SAndrey A. Chernov } 21001ef60eb1SDavid Nugent 21011ef60eb1SDavid Nugent #ifdef LOGIN_CAP 210245cfb1dcSXin LI static void 210373bf18edSWarner Losh setprocresources(const char *cname) 21041ef60eb1SDavid Nugent { 2105e82d5545SDavid Nugent login_cap_t *lc; 2106a2ee73bcSAndrey A. Chernov if ((lc = login_getclassbyname(cname, NULL)) != NULL) { 2107091abe40SDavid E. O'Brien setusercontext(lc, (struct passwd*)NULL, 0, 210821c1a93cSKyle Evans LOGIN_SETENV | 2109595ab563SJilles Tjoelker LOGIN_SETPRIORITY | LOGIN_SETRESOURCES | 2110595ab563SJilles Tjoelker LOGIN_SETLOGINCLASS | LOGIN_SETCPUMASK); 21111ef60eb1SDavid Nugent login_close(lc); 21121ef60eb1SDavid Nugent } 21131ef60eb1SDavid Nugent } 21141ef60eb1SDavid Nugent #endif 21154d159769SKyle Evans 21164d159769SKyle Evans /* 21174d159769SKyle Evans * Run /etc/rc.final to execute scripts after all user processes have been 21184d159769SKyle Evans * terminated. 21194d159769SKyle Evans */ 21204d159769SKyle Evans static void 21214d159769SKyle Evans runfinal(void) 21224d159769SKyle Evans { 21234d159769SKyle Evans struct stat sb; 21244d159769SKyle Evans pid_t other_pid, pid; 21254d159769SKyle Evans sigset_t mask; 21264d159769SKyle Evans 21274d159769SKyle Evans /* Avoid any surprises. */ 21284d159769SKyle Evans alarm(0); 21294d159769SKyle Evans 21304d159769SKyle Evans /* rc.final is optional. */ 21314d159769SKyle Evans if (stat(_PATH_RUNFINAL, &sb) == -1 && errno == ENOENT) 21324d159769SKyle Evans return; 21334d159769SKyle Evans if (access(_PATH_RUNFINAL, X_OK) != 0) { 21344d159769SKyle Evans warning("%s exists, but not executable", _PATH_RUNFINAL); 21354d159769SKyle Evans return; 21364d159769SKyle Evans } 21374d159769SKyle Evans 21384d159769SKyle Evans pid = fork(); 21394d159769SKyle Evans if (pid == 0) { 21404d159769SKyle Evans /* 21414d159769SKyle Evans * Reopen stdin/stdout/stderr so that scripts can write to 21424d159769SKyle Evans * console. 21434d159769SKyle Evans */ 21444d159769SKyle Evans close(0); 21454d159769SKyle Evans open(_PATH_DEVNULL, O_RDONLY); 21464d159769SKyle Evans close(1); 21474d159769SKyle Evans close(2); 21484d159769SKyle Evans open_console(); 21494d159769SKyle Evans dup2(1, 2); 21504d159769SKyle Evans sigemptyset(&mask); 21514d159769SKyle Evans sigprocmask(SIG_SETMASK, &mask, NULL); 21524d159769SKyle Evans signal(SIGCHLD, SIG_DFL); 21534d159769SKyle Evans execl(_PATH_RUNFINAL, _PATH_RUNFINAL, NULL); 21544d159769SKyle Evans perror("execl(" _PATH_RUNFINAL ") failed"); 21554d159769SKyle Evans exit(1); 21564d159769SKyle Evans } 21574d159769SKyle Evans 21584d159769SKyle Evans /* Wait for rc.final script to exit */ 21594d159769SKyle Evans while ((other_pid = waitpid(-1, NULL, 0)) != pid && other_pid > 0) { 21604d159769SKyle Evans continue; 21614d159769SKyle Evans } 21624d159769SKyle Evans } 2163