18fae3551SRodney W. Grimes /*- 28a16b7a1SPedro F. Giffuni * SPDX-License-Identifier: BSD-3-Clause 38a16b7a1SPedro F. Giffuni * 48fae3551SRodney W. Grimes * Copyright (c) 1991, 1993 58fae3551SRodney W. Grimes * The Regents of the University of California. All rights reserved. 68fae3551SRodney W. Grimes * 78fae3551SRodney W. Grimes * This code is derived from software contributed to Berkeley by 88fae3551SRodney W. Grimes * Donn Seeley at Berkeley Software Design, Inc. 98fae3551SRodney W. Grimes * 108fae3551SRodney W. Grimes * Redistribution and use in source and binary forms, with or without 118fae3551SRodney W. Grimes * modification, are permitted provided that the following conditions 128fae3551SRodney W. Grimes * are met: 138fae3551SRodney W. Grimes * 1. Redistributions of source code must retain the above copyright 148fae3551SRodney W. Grimes * notice, this list of conditions and the following disclaimer. 158fae3551SRodney W. Grimes * 2. Redistributions in binary form must reproduce the above copyright 168fae3551SRodney W. Grimes * notice, this list of conditions and the following disclaimer in the 178fae3551SRodney W. Grimes * documentation and/or other materials provided with the distribution. 18fbbd9655SWarner Losh * 3. Neither the name of the University nor the names of its contributors 198fae3551SRodney W. Grimes * may be used to endorse or promote products derived from this software 208fae3551SRodney W. Grimes * without specific prior written permission. 218fae3551SRodney W. Grimes * 228fae3551SRodney W. Grimes * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND 238fae3551SRodney W. Grimes * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 248fae3551SRodney W. Grimes * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 258fae3551SRodney W. Grimes * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE 268fae3551SRodney W. Grimes * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 278fae3551SRodney W. Grimes * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 288fae3551SRodney W. Grimes * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 298fae3551SRodney W. Grimes * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 308fae3551SRodney W. Grimes * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 318fae3551SRodney W. Grimes * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 328fae3551SRodney W. Grimes * SUCH DAMAGE. 338fae3551SRodney W. Grimes */ 348fae3551SRodney W. Grimes 358fae3551SRodney W. Grimes #ifndef lint 365df42cf4SPhilippe Charnier static const char copyright[] = 378fae3551SRodney W. Grimes "@(#) Copyright (c) 1991, 1993\n\ 388fae3551SRodney W. Grimes The Regents of the University of California. All rights reserved.\n"; 398fae3551SRodney W. Grimes #endif /* not lint */ 408fae3551SRodney W. Grimes 418fae3551SRodney W. Grimes #ifndef lint 425df42cf4SPhilippe Charnier #if 0 438fae3551SRodney W. Grimes static char sccsid[] = "@(#)init.c 8.1 (Berkeley) 7/15/93"; 445df42cf4SPhilippe Charnier #endif 455df42cf4SPhilippe Charnier static const char rcsid[] = 467f3dea24SPeter Wemm "$FreeBSD$"; 478fae3551SRodney W. Grimes #endif /* not lint */ 488fae3551SRodney W. Grimes 498fae3551SRodney W. Grimes #include <sys/param.h> 508889c700SDavid Nugent #include <sys/ioctl.h> 513f5ac575SEdward Tomasz Napierala #include <sys/mman.h> 5257622f22SPoul-Henning Kamp #include <sys/mount.h> 538fae3551SRodney W. Grimes #include <sys/sysctl.h> 548fae3551SRodney W. Grimes #include <sys/wait.h> 5586bf62dcSDavid Nugent #include <sys/stat.h> 561f083b1eSMaxime Henrion #include <sys/uio.h> 578fae3551SRodney W. Grimes 588fae3551SRodney W. Grimes #include <db.h> 598fae3551SRodney W. Grimes #include <errno.h> 608fae3551SRodney W. Grimes #include <fcntl.h> 611a7bec91SWarner Losh #include <kenv.h> 62423b6a39SAndrey A. Chernov #include <libutil.h> 631a37aa56SDavid E. O'Brien #include <paths.h> 648fae3551SRodney W. Grimes #include <signal.h> 658fae3551SRodney W. Grimes #include <stdio.h> 668fae3551SRodney W. Grimes #include <stdlib.h> 678fae3551SRodney W. Grimes #include <string.h> 688fae3551SRodney W. Grimes #include <syslog.h> 698fae3551SRodney W. Grimes #include <time.h> 708fae3551SRodney W. Grimes #include <ttyent.h> 718fae3551SRodney W. Grimes #include <unistd.h> 72e460cfd3SNate Williams #include <sys/reboot.h> 73c5842835SPhilippe Charnier #include <err.h> 748fae3551SRodney W. Grimes 758fae3551SRodney W. Grimes #include <stdarg.h> 768fae3551SRodney W. Grimes 778fae3551SRodney W. Grimes #ifdef SECURE 788fae3551SRodney W. Grimes #include <pwd.h> 798fae3551SRodney W. Grimes #endif 808fae3551SRodney W. Grimes 811ef60eb1SDavid Nugent #ifdef LOGIN_CAP 821ef60eb1SDavid Nugent #include <login_cap.h> 831ef60eb1SDavid Nugent #endif 841ef60eb1SDavid Nugent 853f5ac575SEdward Tomasz Napierala #include "mntopts.h" 868fae3551SRodney W. Grimes #include "pathnames.h" 878fae3551SRodney W. Grimes 888fae3551SRodney W. Grimes /* 898fae3551SRodney W. Grimes * Sleep times; used to prevent thrashing. 908fae3551SRodney W. Grimes */ 918fae3551SRodney W. Grimes #define GETTY_SPACING 5 /* N secs minimum getty spacing */ 928fae3551SRodney W. Grimes #define GETTY_SLEEP 30 /* sleep N secs after spacing problem */ 93b5df27e2SAndrey A. Chernov #define GETTY_NSPACE 3 /* max. spacing count to bring reaction */ 948fae3551SRodney W. Grimes #define WINDOW_WAIT 3 /* wait N secs after starting window */ 958fae3551SRodney W. Grimes #define STALL_TIMEOUT 30 /* wait N secs after warning */ 968fae3551SRodney W. Grimes #define DEATH_WATCH 10 /* wait N secs for procs to die */ 975df42cf4SPhilippe Charnier #define DEATH_SCRIPT 120 /* wait for 2min for /etc/rc.shutdown */ 98e82d5545SDavid Nugent #define RESOURCE_RC "daemon" 99e82d5545SDavid Nugent #define RESOURCE_WINDOW "default" 100e82d5545SDavid Nugent #define RESOURCE_GETTY "default" 1018fae3551SRodney W. Grimes 10245cfb1dcSXin LI static void handle(sig_t, ...); 10345cfb1dcSXin LI static void delset(sigset_t *, ...); 1048fae3551SRodney W. Grimes 10545cfb1dcSXin LI static void stall(const char *, ...) __printflike(1, 2); 10645cfb1dcSXin LI static void warning(const char *, ...) __printflike(1, 2); 10745cfb1dcSXin LI static void emergency(const char *, ...) __printflike(1, 2); 10845cfb1dcSXin LI static void disaster(int); 1093f5ac575SEdward Tomasz Napierala static void revoke_ttys(void); 11045cfb1dcSXin LI static int runshutdown(void); 111ab03e6d5SXin LI static char *strk(char *); 1128fae3551SRodney W. Grimes 1138fae3551SRodney W. Grimes /* 1148fae3551SRodney W. Grimes * We really need a recursive typedef... 1158fae3551SRodney W. Grimes * The following at least guarantees that the return type of (*state_t)() 1168fae3551SRodney W. Grimes * is sufficiently wide to hold a function pointer. 1178fae3551SRodney W. Grimes */ 11873bf18edSWarner Losh typedef long (*state_func_t)(void); 11973bf18edSWarner Losh typedef state_func_t (*state_t)(void); 1208fae3551SRodney W. Grimes 12145cfb1dcSXin LI static state_func_t single_user(void); 12245cfb1dcSXin LI static state_func_t runcom(void); 12345cfb1dcSXin LI static state_func_t read_ttys(void); 12445cfb1dcSXin LI static state_func_t multi_user(void); 12545cfb1dcSXin LI static state_func_t clean_ttys(void); 12645cfb1dcSXin LI static state_func_t catatonia(void); 12745cfb1dcSXin LI static state_func_t death(void); 128acf0ab06SJilles Tjoelker static state_func_t death_single(void); 1293f5ac575SEdward Tomasz Napierala static state_func_t reroot(void); 1303f5ac575SEdward Tomasz Napierala static state_func_t reroot_phase_two(void); 1318fae3551SRodney W. Grimes 13245cfb1dcSXin LI static state_func_t run_script(const char *); 1331a7bec91SWarner Losh 1341efe3c6bSEd Schouten static enum { AUTOBOOT, FASTBOOT } runcom_mode = AUTOBOOT; 13577103ea3SPoul-Henning Kamp #define FALSE 0 13677103ea3SPoul-Henning Kamp #define TRUE 1 13777103ea3SPoul-Henning Kamp 1381efe3c6bSEd Schouten static int Reboot = FALSE; 1391efe3c6bSEd Schouten static int howto = RB_AUTOBOOT; 1408fae3551SRodney W. Grimes 1411efe3c6bSEd Schouten static int devfs; 142377b6d1eSEdward Tomasz Napierala static char *init_path_argv0; 14357622f22SPoul-Henning Kamp 14445cfb1dcSXin LI static void transition(state_t); 14545cfb1dcSXin LI static state_t requested_transition; 146acf0ab06SJilles Tjoelker static state_t current_state = death_single; 1478fae3551SRodney W. Grimes 148f3c4a698SEdward Tomasz Napierala static void execute_script(char *argv[]); 1494c2c7b2cSEd Schouten static void open_console(void); 15045cfb1dcSXin LI static const char *get_shell(void); 151335fe94fSEdward Tomasz Napierala static void replace_init(char *path); 15245cfb1dcSXin LI static void write_stderr(const char *message); 1538fae3551SRodney W. Grimes 1548fae3551SRodney W. Grimes typedef struct init_session { 1558fae3551SRodney W. Grimes pid_t se_process; /* controlling process */ 1568fae3551SRodney W. Grimes time_t se_started; /* used to avoid thrashing */ 1578fae3551SRodney W. Grimes int se_flags; /* status of session */ 1588fae3551SRodney W. Grimes #define SE_SHUTDOWN 0x1 /* session won't be restarted */ 159b0b670eeSAlfred Perlstein #define SE_PRESENT 0x2 /* session is in /etc/ttys */ 1601cde387cSEdward Tomasz Napierala #define SE_IFEXISTS 0x4 /* session defined as "onifexists" */ 1611cde387cSEdward Tomasz Napierala #define SE_IFCONSOLE 0x8 /* session defined as "onifconsole" */ 162b5df27e2SAndrey A. Chernov int se_nspace; /* spacing count */ 1638fae3551SRodney W. Grimes char *se_device; /* filename of port */ 1648fae3551SRodney W. Grimes char *se_getty; /* what to run on that port */ 165b5df27e2SAndrey A. Chernov char *se_getty_argv_space; /* pre-parsed argument array space */ 1668fae3551SRodney W. Grimes char **se_getty_argv; /* pre-parsed argument array */ 1678fae3551SRodney W. Grimes char *se_window; /* window system (started only once) */ 168b5df27e2SAndrey A. Chernov char *se_window_argv_space; /* pre-parsed argument array space */ 1698fae3551SRodney W. Grimes char **se_window_argv; /* pre-parsed argument array */ 170b5df27e2SAndrey A. Chernov char *se_type; /* default terminal type */ 1718fae3551SRodney W. Grimes struct init_session *se_prev; 1728fae3551SRodney W. Grimes struct init_session *se_next; 1738fae3551SRodney W. Grimes } session_t; 1748fae3551SRodney W. Grimes 17545cfb1dcSXin LI static void free_session(session_t *); 1760b57dd6bSJilles Tjoelker static session_t *new_session(session_t *, struct ttyent *); 17745cfb1dcSXin LI static session_t *sessions; 1788fae3551SRodney W. Grimes 17945cfb1dcSXin LI static char **construct_argv(char *); 18045cfb1dcSXin LI static void start_window_system(session_t *); 18145cfb1dcSXin LI static void collect_child(pid_t); 18245cfb1dcSXin LI static pid_t start_getty(session_t *); 18345cfb1dcSXin LI static void transition_handler(int); 18445cfb1dcSXin LI static void alrm_handler(int); 18545cfb1dcSXin LI static void setsecuritylevel(int); 18645cfb1dcSXin LI static int getsecuritylevel(void); 18745cfb1dcSXin LI static int setupargv(session_t *, struct ttyent *); 188e82d5545SDavid Nugent #ifdef LOGIN_CAP 18945cfb1dcSXin LI static void setprocresources(const char *); 190e82d5545SDavid Nugent #endif 19145cfb1dcSXin LI static int clang; 1928fae3551SRodney W. Grimes 19345cfb1dcSXin LI static int start_session_db(void); 19445cfb1dcSXin LI static void add_session(session_t *); 19545cfb1dcSXin LI static void del_session(session_t *); 19645cfb1dcSXin LI static session_t *find_session(pid_t); 19745cfb1dcSXin LI static DB *session_db; 1988fae3551SRodney W. Grimes 1998fae3551SRodney W. Grimes /* 2008fae3551SRodney W. Grimes * The mother of all processes. 2018fae3551SRodney W. Grimes */ 2028fae3551SRodney W. Grimes int 20373bf18edSWarner Losh main(int argc, char *argv[]) 2048fae3551SRodney W. Grimes { 2051a7bec91SWarner Losh state_t initial_transition = runcom; 2061a7bec91SWarner Losh char kenv_value[PATH_MAX]; 2073f5ac575SEdward Tomasz Napierala int c, error; 2088fae3551SRodney W. Grimes struct sigaction sa; 2098fae3551SRodney W. Grimes sigset_t mask; 2108fae3551SRodney W. Grimes 2118fae3551SRodney W. Grimes /* Dispose of random users. */ 212c5842835SPhilippe Charnier if (getuid() != 0) 213c5842835SPhilippe Charnier errx(1, "%s", strerror(EPERM)); 2148fae3551SRodney W. Grimes 2158fae3551SRodney W. Grimes /* System V users like to reexec init. */ 2161681d659SRuslan Ermilov if (getpid() != 1) { 2171681d659SRuslan Ermilov #ifdef COMPAT_SYSV_INIT 2181681d659SRuslan Ermilov /* So give them what they want */ 2191681d659SRuslan Ermilov if (argc > 1) { 2201681d659SRuslan Ermilov if (strlen(argv[1]) == 1) { 2213d438ad6SDavid E. O'Brien char runlevel = *argv[1]; 2223d438ad6SDavid E. O'Brien int sig; 2238fae3551SRodney W. Grimes 2241681d659SRuslan Ermilov switch (runlevel) { 2251681d659SRuslan Ermilov case '0': /* halt + poweroff */ 2261681d659SRuslan Ermilov sig = SIGUSR2; 2271681d659SRuslan Ermilov break; 2281681d659SRuslan Ermilov case '1': /* single-user */ 2291681d659SRuslan Ermilov sig = SIGTERM; 2301681d659SRuslan Ermilov break; 2311681d659SRuslan Ermilov case '6': /* reboot */ 2321681d659SRuslan Ermilov sig = SIGINT; 2331681d659SRuslan Ermilov break; 2341681d659SRuslan Ermilov case 'c': /* block further logins */ 2351681d659SRuslan Ermilov sig = SIGTSTP; 2361681d659SRuslan Ermilov break; 2371681d659SRuslan Ermilov case 'q': /* rescan /etc/ttys */ 2381681d659SRuslan Ermilov sig = SIGHUP; 2391681d659SRuslan Ermilov break; 2403f5ac575SEdward Tomasz Napierala case 'r': /* remount root */ 2413f5ac575SEdward Tomasz Napierala sig = SIGEMT; 2423f5ac575SEdward Tomasz Napierala break; 2431681d659SRuslan Ermilov default: 2441681d659SRuslan Ermilov goto invalid; 2451681d659SRuslan Ermilov } 2461681d659SRuslan Ermilov kill(1, sig); 2471681d659SRuslan Ermilov _exit(0); 2481681d659SRuslan Ermilov } else 2491681d659SRuslan Ermilov invalid: 2501681d659SRuslan Ermilov errx(1, "invalid run-level ``%s''", argv[1]); 2511681d659SRuslan Ermilov } else 2521681d659SRuslan Ermilov #endif 2531681d659SRuslan Ermilov errx(1, "already running"); 2541681d659SRuslan Ermilov } 255377b6d1eSEdward Tomasz Napierala 256377b6d1eSEdward Tomasz Napierala init_path_argv0 = strdup(argv[0]); 257377b6d1eSEdward Tomasz Napierala if (init_path_argv0 == NULL) 258377b6d1eSEdward Tomasz Napierala err(1, "strdup"); 259377b6d1eSEdward Tomasz Napierala 2608fae3551SRodney W. Grimes /* 2618fae3551SRodney W. Grimes * Note that this does NOT open a file... 2628fae3551SRodney W. Grimes * Does 'init' deserve its own facility number? 2638fae3551SRodney W. Grimes */ 26406224a94SNeel Natu openlog("init", LOG_CONS, LOG_AUTH); 2658fae3551SRodney W. Grimes 2668fae3551SRodney W. Grimes /* 2678fae3551SRodney W. Grimes * Create an initial session. 2688fae3551SRodney W. Grimes */ 2693f5ac575SEdward Tomasz Napierala if (setsid() < 0 && (errno != EPERM || getsid(0) != 1)) 2708fae3551SRodney W. Grimes warning("initial setsid() failed: %m"); 2718fae3551SRodney W. Grimes 2728fae3551SRodney W. Grimes /* 2738fae3551SRodney W. Grimes * Establish an initial user so that programs running 2748fae3551SRodney W. Grimes * single user do not freak out and die (like passwd). 2758fae3551SRodney W. Grimes */ 2768fae3551SRodney W. Grimes if (setlogin("root") < 0) 2778fae3551SRodney W. Grimes warning("setlogin() failed: %m"); 2788fae3551SRodney W. Grimes 2798fae3551SRodney W. Grimes /* 2808fae3551SRodney W. Grimes * This code assumes that we always get arguments through flags, 2818fae3551SRodney W. Grimes * never through bits set in some random machine register. 2828fae3551SRodney W. Grimes */ 2833f5ac575SEdward Tomasz Napierala while ((c = getopt(argc, argv, "dsfr")) != -1) 2848fae3551SRodney W. Grimes switch (c) { 28557622f22SPoul-Henning Kamp case 'd': 28657622f22SPoul-Henning Kamp devfs = 1; 28757622f22SPoul-Henning Kamp break; 2888fae3551SRodney W. Grimes case 's': 2891a7bec91SWarner Losh initial_transition = single_user; 2908fae3551SRodney W. Grimes break; 2918fae3551SRodney W. Grimes case 'f': 2928fae3551SRodney W. Grimes runcom_mode = FASTBOOT; 2938fae3551SRodney W. Grimes break; 2943f5ac575SEdward Tomasz Napierala case 'r': 2953f5ac575SEdward Tomasz Napierala initial_transition = reroot_phase_two; 2963f5ac575SEdward Tomasz Napierala break; 2978fae3551SRodney W. Grimes default: 2988fae3551SRodney W. Grimes warning("unrecognized flag '-%c'", c); 2998fae3551SRodney W. Grimes break; 3008fae3551SRodney W. Grimes } 3018fae3551SRodney W. Grimes 3028fae3551SRodney W. Grimes if (optind != argc) 3038fae3551SRodney W. Grimes warning("ignoring excess arguments"); 3048fae3551SRodney W. Grimes 3051a7bec91SWarner Losh /* 3061a7bec91SWarner Losh * We catch or block signals rather than ignore them, 3071a7bec91SWarner Losh * so that they get reset on exec. 3081a7bec91SWarner Losh */ 309a449e81eSBrooks Davis handle(disaster, SIGABRT, SIGFPE, SIGILL, SIGSEGV, SIGBUS, SIGSYS, 310a449e81eSBrooks Davis SIGXCPU, SIGXFSZ, 0); 3113f5ac575SEdward Tomasz Napierala handle(transition_handler, SIGHUP, SIGINT, SIGEMT, SIGTERM, SIGTSTP, 31235c1d16eSWarner Losh SIGUSR1, SIGUSR2, SIGWINCH, 0); 3131a7bec91SWarner Losh handle(alrm_handler, SIGALRM, 0); 3141a7bec91SWarner Losh sigfillset(&mask); 3151a7bec91SWarner Losh delset(&mask, SIGABRT, SIGFPE, SIGILL, SIGSEGV, SIGBUS, SIGSYS, 3163f5ac575SEdward Tomasz Napierala SIGXCPU, SIGXFSZ, SIGHUP, SIGINT, SIGEMT, SIGTERM, SIGTSTP, 31735c1d16eSWarner Losh SIGALRM, SIGUSR1, SIGUSR2, SIGWINCH, 0); 318d1b1fe3aSEdward Tomasz Napierala sigprocmask(SIG_SETMASK, &mask, NULL); 3191a7bec91SWarner Losh sigemptyset(&sa.sa_mask); 3201a7bec91SWarner Losh sa.sa_flags = 0; 3211a7bec91SWarner Losh sa.sa_handler = SIG_IGN; 322d1b1fe3aSEdward Tomasz Napierala sigaction(SIGTTIN, &sa, NULL); 323d1b1fe3aSEdward Tomasz Napierala sigaction(SIGTTOU, &sa, NULL); 3241a7bec91SWarner Losh 3251a7bec91SWarner Losh /* 3261a7bec91SWarner Losh * Paranoia. 3271a7bec91SWarner Losh */ 3281a7bec91SWarner Losh close(0); 3291a7bec91SWarner Losh close(1); 3301a7bec91SWarner Losh close(2); 3311a7bec91SWarner Losh 332335fe94fSEdward Tomasz Napierala if (kenv(KENV_GET, "init_exec", kenv_value, sizeof(kenv_value)) > 0) { 333335fe94fSEdward Tomasz Napierala replace_init(kenv_value); 334335fe94fSEdward Tomasz Napierala _exit(0); /* reboot */ 335335fe94fSEdward Tomasz Napierala } 336335fe94fSEdward Tomasz Napierala 3371a7bec91SWarner Losh if (kenv(KENV_GET, "init_script", kenv_value, sizeof(kenv_value)) > 0) { 3381a7bec91SWarner Losh state_func_t next_transition; 3391a7bec91SWarner Losh 3402ef6931aSMarcelo Araujo if ((next_transition = run_script(kenv_value)) != NULL) 3411a7bec91SWarner Losh initial_transition = (state_t) next_transition; 3421a7bec91SWarner Losh } 3431a7bec91SWarner Losh 3441a7bec91SWarner Losh if (kenv(KENV_GET, "init_chroot", kenv_value, sizeof(kenv_value)) > 0) { 3451a7bec91SWarner Losh if (chdir(kenv_value) != 0 || chroot(".") != 0) 3461a7bec91SWarner Losh warning("Can't chroot to %s: %m", kenv_value); 3471a7bec91SWarner Losh } 3481a7bec91SWarner Losh 3491a7bec91SWarner Losh /* 3501a7bec91SWarner Losh * Additional check if devfs needs to be mounted: 3511a7bec91SWarner Losh * If "/" and "/dev" have the same device number, 3521a7bec91SWarner Losh * then it hasn't been mounted yet. 3531a7bec91SWarner Losh */ 3541a7bec91SWarner Losh if (!devfs) { 3551a7bec91SWarner Losh struct stat stst; 3561a7bec91SWarner Losh dev_t root_devno; 3571a7bec91SWarner Losh 3581a7bec91SWarner Losh stat("/", &stst); 3591a7bec91SWarner Losh root_devno = stst.st_dev; 3601a7bec91SWarner Losh if (stat("/dev", &stst) != 0) 3611a7bec91SWarner Losh warning("Can't stat /dev: %m"); 3621a7bec91SWarner Losh else if (stst.st_dev == root_devno) 3631a7bec91SWarner Losh devfs++; 3641a7bec91SWarner Losh } 3651a7bec91SWarner Losh 36657622f22SPoul-Henning Kamp if (devfs) { 3671f083b1eSMaxime Henrion struct iovec iov[4]; 368421b0201SPoul-Henning Kamp char *s; 369421b0201SPoul-Henning Kamp int i; 370421b0201SPoul-Henning Kamp 371ab03e6d5SXin LI char _fstype[] = "fstype"; 372ab03e6d5SXin LI char _devfs[] = "devfs"; 373ab03e6d5SXin LI char _fspath[] = "fspath"; 374ab03e6d5SXin LI char _path_dev[]= _PATH_DEV; 375ab03e6d5SXin LI 376ab03e6d5SXin LI iov[0].iov_base = _fstype; 377ab03e6d5SXin LI iov[0].iov_len = sizeof(_fstype); 378ab03e6d5SXin LI iov[1].iov_base = _devfs; 379ab03e6d5SXin LI iov[1].iov_len = sizeof(_devfs); 380ab03e6d5SXin LI iov[2].iov_base = _fspath; 381ab03e6d5SXin LI iov[2].iov_len = sizeof(_fspath); 382421b0201SPoul-Henning Kamp /* 383421b0201SPoul-Henning Kamp * Try to avoid the trailing slash in _PATH_DEV. 384421b0201SPoul-Henning Kamp * Be *very* defensive. 385421b0201SPoul-Henning Kamp */ 386421b0201SPoul-Henning Kamp s = strdup(_PATH_DEV); 387421b0201SPoul-Henning Kamp if (s != NULL) { 388421b0201SPoul-Henning Kamp i = strlen(s); 389421b0201SPoul-Henning Kamp if (i > 0 && s[i - 1] == '/') 390421b0201SPoul-Henning Kamp s[i - 1] = '\0'; 3911f083b1eSMaxime Henrion iov[3].iov_base = s; 3921f083b1eSMaxime Henrion iov[3].iov_len = strlen(s) + 1; 393421b0201SPoul-Henning Kamp } else { 394ab03e6d5SXin LI iov[3].iov_base = _path_dev; 395ab03e6d5SXin LI iov[3].iov_len = sizeof(_path_dev); 39657622f22SPoul-Henning Kamp } 3971f083b1eSMaxime Henrion nmount(iov, 4, 0); 3981f083b1eSMaxime Henrion if (s != NULL) 3991f083b1eSMaxime Henrion free(s); 400421b0201SPoul-Henning Kamp } 40157622f22SPoul-Henning Kamp 4023f5ac575SEdward Tomasz Napierala if (initial_transition != reroot_phase_two) { 4033f5ac575SEdward Tomasz Napierala /* 4043f5ac575SEdward Tomasz Napierala * Unmount reroot leftovers. This runs after init(8) 4053f5ac575SEdward Tomasz Napierala * gets reexecuted after reroot_phase_two() is done. 4063f5ac575SEdward Tomasz Napierala */ 4073f5ac575SEdward Tomasz Napierala error = unmount(_PATH_REROOT, MNT_FORCE); 4083f5ac575SEdward Tomasz Napierala if (error != 0 && errno != EINVAL) 4093f5ac575SEdward Tomasz Napierala warning("Cannot unmount %s: %m", _PATH_REROOT); 4103f5ac575SEdward Tomasz Napierala } 4113f5ac575SEdward Tomasz Napierala 4128fae3551SRodney W. Grimes /* 4138fae3551SRodney W. Grimes * Start the state machine. 4148fae3551SRodney W. Grimes */ 4151a7bec91SWarner Losh transition(initial_transition); 4168fae3551SRodney W. Grimes 4178fae3551SRodney W. Grimes /* 4188fae3551SRodney W. Grimes * Should never reach here. 4198fae3551SRodney W. Grimes */ 4208fae3551SRodney W. Grimes return 1; 4218fae3551SRodney W. Grimes } 4228fae3551SRodney W. Grimes 4238fae3551SRodney W. Grimes /* 4248fae3551SRodney W. Grimes * Associate a function with a signal handler. 4258fae3551SRodney W. Grimes */ 42645cfb1dcSXin LI static void 4278fae3551SRodney W. Grimes handle(sig_t handler, ...) 4288fae3551SRodney W. Grimes { 4298fae3551SRodney W. Grimes int sig; 4308fae3551SRodney W. Grimes struct sigaction sa; 43139034633SJames Raynard sigset_t mask_everything; 4328fae3551SRodney W. Grimes va_list ap; 4338fae3551SRodney W. Grimes va_start(ap, handler); 4348fae3551SRodney W. Grimes 4358fae3551SRodney W. Grimes sa.sa_handler = handler; 4368fae3551SRodney W. Grimes sigfillset(&mask_everything); 4378fae3551SRodney W. Grimes 43830e8350cSBruce Evans while ((sig = va_arg(ap, int)) != 0) { 4398fae3551SRodney W. Grimes sa.sa_mask = mask_everything; 4408fae3551SRodney W. Grimes /* XXX SA_RESTART? */ 4418fae3551SRodney W. Grimes sa.sa_flags = sig == SIGCHLD ? SA_NOCLDSTOP : 0; 442d1b1fe3aSEdward Tomasz Napierala sigaction(sig, &sa, NULL); 4438fae3551SRodney W. Grimes } 4448fae3551SRodney W. Grimes va_end(ap); 4458fae3551SRodney W. Grimes } 4468fae3551SRodney W. Grimes 4478fae3551SRodney W. Grimes /* 4488fae3551SRodney W. Grimes * Delete a set of signals from a mask. 4498fae3551SRodney W. Grimes */ 45045cfb1dcSXin LI static void 4518fae3551SRodney W. Grimes delset(sigset_t *maskp, ...) 4528fae3551SRodney W. Grimes { 4538fae3551SRodney W. Grimes int sig; 4548fae3551SRodney W. Grimes va_list ap; 4558fae3551SRodney W. Grimes va_start(ap, maskp); 4568fae3551SRodney W. Grimes 45730e8350cSBruce Evans while ((sig = va_arg(ap, int)) != 0) 4588fae3551SRodney W. Grimes sigdelset(maskp, sig); 4598fae3551SRodney W. Grimes va_end(ap); 4608fae3551SRodney W. Grimes } 4618fae3551SRodney W. Grimes 4628fae3551SRodney W. Grimes /* 4638fae3551SRodney W. Grimes * Log a message and sleep for a while (to give someone an opportunity 4648fae3551SRodney W. Grimes * to read it and to save log or hardcopy output if the problem is chronic). 4658fae3551SRodney W. Grimes * NB: should send a message to the session logger to avoid blocking. 4668fae3551SRodney W. Grimes */ 46745cfb1dcSXin LI static void 4685979df34SKris Kennaway stall(const char *message, ...) 4698fae3551SRodney W. Grimes { 4708fae3551SRodney W. Grimes va_list ap; 4718fae3551SRodney W. Grimes va_start(ap, message); 4728fae3551SRodney W. Grimes 4738fae3551SRodney W. Grimes vsyslog(LOG_ALERT, message, ap); 4748fae3551SRodney W. Grimes va_end(ap); 4758fae3551SRodney W. Grimes sleep(STALL_TIMEOUT); 4768fae3551SRodney W. Grimes } 4778fae3551SRodney W. Grimes 4788fae3551SRodney W. Grimes /* 4798fae3551SRodney W. Grimes * Like stall(), but doesn't sleep. 4808fae3551SRodney W. Grimes * If cpp had variadic macros, the two functions could be #defines for another. 4818fae3551SRodney W. Grimes * NB: should send a message to the session logger to avoid blocking. 4828fae3551SRodney W. Grimes */ 48345cfb1dcSXin LI static void 4845979df34SKris Kennaway warning(const char *message, ...) 4858fae3551SRodney W. Grimes { 4868fae3551SRodney W. Grimes va_list ap; 4878fae3551SRodney W. Grimes va_start(ap, message); 4888fae3551SRodney W. Grimes 4898fae3551SRodney W. Grimes vsyslog(LOG_ALERT, message, ap); 4908fae3551SRodney W. Grimes va_end(ap); 4918fae3551SRodney W. Grimes } 4928fae3551SRodney W. Grimes 4938fae3551SRodney W. Grimes /* 4948fae3551SRodney W. Grimes * Log an emergency message. 4958fae3551SRodney W. Grimes * NB: should send a message to the session logger to avoid blocking. 4968fae3551SRodney W. Grimes */ 49745cfb1dcSXin LI static void 4985979df34SKris Kennaway emergency(const char *message, ...) 4998fae3551SRodney W. Grimes { 5008fae3551SRodney W. Grimes va_list ap; 5018fae3551SRodney W. Grimes va_start(ap, message); 5028fae3551SRodney W. Grimes 5038fae3551SRodney W. Grimes vsyslog(LOG_EMERG, message, ap); 5048fae3551SRodney W. Grimes va_end(ap); 5058fae3551SRodney W. Grimes } 5068fae3551SRodney W. Grimes 5078fae3551SRodney W. Grimes /* 5088fae3551SRodney W. Grimes * Catch an unexpected signal. 5098fae3551SRodney W. Grimes */ 51045cfb1dcSXin LI static void 51173bf18edSWarner Losh disaster(int sig) 5128fae3551SRodney W. Grimes { 513091abe40SDavid E. O'Brien 5148fae3551SRodney W. Grimes emergency("fatal signal: %s", 5158889c700SDavid Nugent (unsigned)sig < NSIG ? sys_siglist[sig] : "unknown signal"); 5168fae3551SRodney W. Grimes 5178fae3551SRodney W. Grimes sleep(STALL_TIMEOUT); 5188fae3551SRodney W. Grimes _exit(sig); /* reboot */ 5198fae3551SRodney W. Grimes } 5208fae3551SRodney W. Grimes 5218fae3551SRodney W. Grimes /* 5228fae3551SRodney W. Grimes * Get the security level of the kernel. 5238fae3551SRodney W. Grimes */ 52445cfb1dcSXin LI static int 52573bf18edSWarner Losh getsecuritylevel(void) 5268fae3551SRodney W. Grimes { 5278fae3551SRodney W. Grimes #ifdef KERN_SECURELVL 5288fae3551SRodney W. Grimes int name[2], curlevel; 5298fae3551SRodney W. Grimes size_t len; 5308fae3551SRodney W. Grimes 5318fae3551SRodney W. Grimes name[0] = CTL_KERN; 5328fae3551SRodney W. Grimes name[1] = KERN_SECURELVL; 5338fae3551SRodney W. Grimes len = sizeof curlevel; 5348fae3551SRodney W. Grimes if (sysctl(name, 2, &curlevel, &len, NULL, 0) == -1) { 535*804b4afbSXin LI emergency("cannot get kernel security level: %m"); 5368fae3551SRodney W. Grimes return (-1); 5378fae3551SRodney W. Grimes } 5388fae3551SRodney W. Grimes return (curlevel); 5398fae3551SRodney W. Grimes #else 5408fae3551SRodney W. Grimes return (-1); 5418fae3551SRodney W. Grimes #endif 5428fae3551SRodney W. Grimes } 5438fae3551SRodney W. Grimes 5448fae3551SRodney W. Grimes /* 5458fae3551SRodney W. Grimes * Set the security level of the kernel. 5468fae3551SRodney W. Grimes */ 54745cfb1dcSXin LI static void 54873bf18edSWarner Losh setsecuritylevel(int newlevel) 5498fae3551SRodney W. Grimes { 5508fae3551SRodney W. Grimes #ifdef KERN_SECURELVL 5518fae3551SRodney W. Grimes int name[2], curlevel; 5528fae3551SRodney W. Grimes 5538fae3551SRodney W. Grimes curlevel = getsecuritylevel(); 5548fae3551SRodney W. Grimes if (newlevel == curlevel) 5558fae3551SRodney W. Grimes return; 5568fae3551SRodney W. Grimes name[0] = CTL_KERN; 5578fae3551SRodney W. Grimes name[1] = KERN_SECURELVL; 5588fae3551SRodney W. Grimes if (sysctl(name, 2, NULL, NULL, &newlevel, sizeof newlevel) == -1) { 5598fae3551SRodney W. Grimes emergency( 560*804b4afbSXin LI "cannot change kernel security level from %d to %d: %m", 561*804b4afbSXin LI curlevel, newlevel); 5628fae3551SRodney W. Grimes return; 5638fae3551SRodney W. Grimes } 5648fae3551SRodney W. Grimes #ifdef SECURE 5658fae3551SRodney W. Grimes warning("kernel security level changed from %d to %d", 5668fae3551SRodney W. Grimes curlevel, newlevel); 5678fae3551SRodney W. Grimes #endif 5688fae3551SRodney W. Grimes #endif 5698fae3551SRodney W. Grimes } 5708fae3551SRodney W. Grimes 5718fae3551SRodney W. Grimes /* 5728fae3551SRodney W. Grimes * Change states in the finite state machine. 5738fae3551SRodney W. Grimes * The initial state is passed as an argument. 5748fae3551SRodney W. Grimes */ 57545cfb1dcSXin LI static void 57673bf18edSWarner Losh transition(state_t s) 5778fae3551SRodney W. Grimes { 578091abe40SDavid E. O'Brien 579acf0ab06SJilles Tjoelker current_state = s; 5808fae3551SRodney W. Grimes for (;;) 581acf0ab06SJilles Tjoelker current_state = (state_t) (*current_state)(); 5828fae3551SRodney W. Grimes } 5838fae3551SRodney W. Grimes 5848fae3551SRodney W. Grimes /* 5858fae3551SRodney W. Grimes * Start a session and allocate a controlling terminal. 5868fae3551SRodney W. Grimes * Only called by children of init after forking. 5878fae3551SRodney W. Grimes */ 58845cfb1dcSXin LI static void 5894c2c7b2cSEd Schouten open_console(void) 5908fae3551SRodney W. Grimes { 5918fae3551SRodney W. Grimes int fd; 5928fae3551SRodney W. Grimes 5936ee5808bSEd Schouten /* 5946ee5808bSEd Schouten * Try to open /dev/console. Open the device with O_NONBLOCK to 5956ee5808bSEd Schouten * prevent potential blocking on a carrier. 5966ee5808bSEd Schouten */ 5974c2c7b2cSEd Schouten revoke(_PATH_CONSOLE); 5984c2c7b2cSEd Schouten if ((fd = open(_PATH_CONSOLE, O_RDWR | O_NONBLOCK)) != -1) { 5996ee5808bSEd Schouten (void)fcntl(fd, F_SETFL, fcntl(fd, F_GETFL) & ~O_NONBLOCK); 6004c2c7b2cSEd Schouten if (login_tty(fd) == 0) 6014c2c7b2cSEd Schouten return; 6024c2c7b2cSEd Schouten close(fd); 6034c2c7b2cSEd Schouten } 6044c2c7b2cSEd Schouten 6054c2c7b2cSEd Schouten /* No luck. Log output to file if possible. */ 6064c2c7b2cSEd Schouten if ((fd = open(_PATH_DEVNULL, O_RDWR)) == -1) { 6074c2c7b2cSEd Schouten stall("cannot open null device."); 6088fae3551SRodney W. Grimes _exit(1); 6098fae3551SRodney W. Grimes } 6104c2c7b2cSEd Schouten if (fd != STDIN_FILENO) { 6114c2c7b2cSEd Schouten dup2(fd, STDIN_FILENO); 6124c2c7b2cSEd Schouten close(fd); 6138fae3551SRodney W. Grimes } 6144c2c7b2cSEd Schouten fd = open(_PATH_INITLOG, O_WRONLY | O_APPEND | O_CREAT, 0644); 6154c2c7b2cSEd Schouten if (fd == -1) 6164c2c7b2cSEd Schouten dup2(STDIN_FILENO, STDOUT_FILENO); 6174c2c7b2cSEd Schouten else if (fd != STDOUT_FILENO) { 6184c2c7b2cSEd Schouten dup2(fd, STDOUT_FILENO); 6194c2c7b2cSEd Schouten close(fd); 6204c2c7b2cSEd Schouten } 6214c2c7b2cSEd Schouten dup2(STDOUT_FILENO, STDERR_FILENO); 6228fae3551SRodney W. Grimes } 6238fae3551SRodney W. Grimes 62445cfb1dcSXin LI static const char * 6251a7bec91SWarner Losh get_shell(void) 6261a7bec91SWarner Losh { 6271a7bec91SWarner Losh static char kenv_value[PATH_MAX]; 6281a7bec91SWarner Losh 6291a7bec91SWarner Losh if (kenv(KENV_GET, "init_shell", kenv_value, sizeof(kenv_value)) > 0) 6301a7bec91SWarner Losh return kenv_value; 6311a7bec91SWarner Losh else 6321a7bec91SWarner Losh return _PATH_BSHELL; 6331a7bec91SWarner Losh } 6341a7bec91SWarner Losh 63545cfb1dcSXin LI static void 6361a7bec91SWarner Losh write_stderr(const char *message) 6371a7bec91SWarner Losh { 638091abe40SDavid E. O'Brien 6391a7bec91SWarner Losh write(STDERR_FILENO, message, strlen(message)); 6401a7bec91SWarner Losh } 6411a7bec91SWarner Losh 6423f5ac575SEdward Tomasz Napierala static int 6433f5ac575SEdward Tomasz Napierala read_file(const char *path, void **bufp, size_t *bufsizep) 6443f5ac575SEdward Tomasz Napierala { 6453f5ac575SEdward Tomasz Napierala struct stat sb; 6463f5ac575SEdward Tomasz Napierala size_t bufsize; 6473f5ac575SEdward Tomasz Napierala void *buf; 6483f5ac575SEdward Tomasz Napierala ssize_t nbytes; 6493f5ac575SEdward Tomasz Napierala int error, fd; 6503f5ac575SEdward Tomasz Napierala 6513f5ac575SEdward Tomasz Napierala fd = open(path, O_RDONLY); 6523f5ac575SEdward Tomasz Napierala if (fd < 0) { 653*804b4afbSXin LI emergency("%s: %m", path); 6543f5ac575SEdward Tomasz Napierala return (-1); 6553f5ac575SEdward Tomasz Napierala } 6563f5ac575SEdward Tomasz Napierala 6573f5ac575SEdward Tomasz Napierala error = fstat(fd, &sb); 6583f5ac575SEdward Tomasz Napierala if (error != 0) { 659*804b4afbSXin LI emergency("fstat: %m"); 660b9124fc3SEdward Tomasz Napierala close(fd); 6613f5ac575SEdward Tomasz Napierala return (error); 6623f5ac575SEdward Tomasz Napierala } 6633f5ac575SEdward Tomasz Napierala 6643f5ac575SEdward Tomasz Napierala bufsize = sb.st_size; 6653f5ac575SEdward Tomasz Napierala buf = malloc(bufsize); 6663f5ac575SEdward Tomasz Napierala if (buf == NULL) { 667*804b4afbSXin LI emergency("malloc: %m"); 668b9124fc3SEdward Tomasz Napierala close(fd); 6693f5ac575SEdward Tomasz Napierala return (error); 6703f5ac575SEdward Tomasz Napierala } 6713f5ac575SEdward Tomasz Napierala 6723f5ac575SEdward Tomasz Napierala nbytes = read(fd, buf, bufsize); 6733f5ac575SEdward Tomasz Napierala if (nbytes != (ssize_t)bufsize) { 674*804b4afbSXin LI emergency("read: %m"); 675b9124fc3SEdward Tomasz Napierala close(fd); 6763f5ac575SEdward Tomasz Napierala free(buf); 6773f5ac575SEdward Tomasz Napierala return (error); 6783f5ac575SEdward Tomasz Napierala } 6793f5ac575SEdward Tomasz Napierala 6803f5ac575SEdward Tomasz Napierala error = close(fd); 6813f5ac575SEdward Tomasz Napierala if (error != 0) { 682*804b4afbSXin LI emergency("close: %m"); 6833f5ac575SEdward Tomasz Napierala free(buf); 6843f5ac575SEdward Tomasz Napierala return (error); 6853f5ac575SEdward Tomasz Napierala } 6863f5ac575SEdward Tomasz Napierala 6873f5ac575SEdward Tomasz Napierala *bufp = buf; 6883f5ac575SEdward Tomasz Napierala *bufsizep = bufsize; 6893f5ac575SEdward Tomasz Napierala 6903f5ac575SEdward Tomasz Napierala return (0); 6913f5ac575SEdward Tomasz Napierala } 6923f5ac575SEdward Tomasz Napierala 6933f5ac575SEdward Tomasz Napierala static int 694b9124fc3SEdward Tomasz Napierala create_file(const char *path, const void *buf, size_t bufsize) 6953f5ac575SEdward Tomasz Napierala { 6963f5ac575SEdward Tomasz Napierala ssize_t nbytes; 6973f5ac575SEdward Tomasz Napierala int error, fd; 6983f5ac575SEdward Tomasz Napierala 6993f5ac575SEdward Tomasz Napierala fd = open(path, O_WRONLY | O_CREAT | O_EXCL, 0700); 7003f5ac575SEdward Tomasz Napierala if (fd < 0) { 701*804b4afbSXin LI emergency("%s: %m", path); 7023f5ac575SEdward Tomasz Napierala return (-1); 7033f5ac575SEdward Tomasz Napierala } 7043f5ac575SEdward Tomasz Napierala 7053f5ac575SEdward Tomasz Napierala nbytes = write(fd, buf, bufsize); 7063f5ac575SEdward Tomasz Napierala if (nbytes != (ssize_t)bufsize) { 707*804b4afbSXin LI emergency("write: %m"); 708b9124fc3SEdward Tomasz Napierala close(fd); 7093f5ac575SEdward Tomasz Napierala return (-1); 7103f5ac575SEdward Tomasz Napierala } 7113f5ac575SEdward Tomasz Napierala 7123f5ac575SEdward Tomasz Napierala error = close(fd); 7133f5ac575SEdward Tomasz Napierala if (error != 0) { 714*804b4afbSXin LI emergency("close: %m"); 7153f5ac575SEdward Tomasz Napierala return (-1); 7163f5ac575SEdward Tomasz Napierala } 7173f5ac575SEdward Tomasz Napierala 7183f5ac575SEdward Tomasz Napierala return (0); 7193f5ac575SEdward Tomasz Napierala } 7203f5ac575SEdward Tomasz Napierala 7213f5ac575SEdward Tomasz Napierala static int 7223f5ac575SEdward Tomasz Napierala mount_tmpfs(const char *fspath) 7233f5ac575SEdward Tomasz Napierala { 7243f5ac575SEdward Tomasz Napierala struct iovec *iov; 7253f5ac575SEdward Tomasz Napierala char errmsg[255]; 7263f5ac575SEdward Tomasz Napierala int error, iovlen; 7273f5ac575SEdward Tomasz Napierala 7283f5ac575SEdward Tomasz Napierala iov = NULL; 7293f5ac575SEdward Tomasz Napierala iovlen = 0; 7303f5ac575SEdward Tomasz Napierala memset(errmsg, 0, sizeof(errmsg)); 7313f5ac575SEdward Tomasz Napierala build_iovec(&iov, &iovlen, "fstype", 7323f5ac575SEdward Tomasz Napierala __DECONST(void *, "tmpfs"), (size_t)-1); 7333f5ac575SEdward Tomasz Napierala build_iovec(&iov, &iovlen, "fspath", 7343f5ac575SEdward Tomasz Napierala __DECONST(void *, fspath), (size_t)-1); 7353f5ac575SEdward Tomasz Napierala build_iovec(&iov, &iovlen, "errmsg", 7363f5ac575SEdward Tomasz Napierala errmsg, sizeof(errmsg)); 7373f5ac575SEdward Tomasz Napierala 7383f5ac575SEdward Tomasz Napierala error = nmount(iov, iovlen, 0); 7393f5ac575SEdward Tomasz Napierala if (error != 0) { 7403f5ac575SEdward Tomasz Napierala if (*errmsg != '\0') { 741*804b4afbSXin LI emergency("cannot mount tmpfs on %s: %s: %m", 742*804b4afbSXin LI fspath, errmsg); 7433f5ac575SEdward Tomasz Napierala } else { 744*804b4afbSXin LI emergency("cannot mount tmpfs on %s: %m", 745*804b4afbSXin LI fspath); 7463f5ac575SEdward Tomasz Napierala } 7473f5ac575SEdward Tomasz Napierala return (error); 7483f5ac575SEdward Tomasz Napierala } 7493f5ac575SEdward Tomasz Napierala return (0); 7503f5ac575SEdward Tomasz Napierala } 7513f5ac575SEdward Tomasz Napierala 7523f5ac575SEdward Tomasz Napierala static state_func_t 7533f5ac575SEdward Tomasz Napierala reroot(void) 7543f5ac575SEdward Tomasz Napierala { 7553f5ac575SEdward Tomasz Napierala void *buf; 756377b6d1eSEdward Tomasz Napierala size_t bufsize; 757377b6d1eSEdward Tomasz Napierala int error; 7583f5ac575SEdward Tomasz Napierala 759b9124fc3SEdward Tomasz Napierala buf = NULL; 760b9124fc3SEdward Tomasz Napierala bufsize = 0; 761b9124fc3SEdward Tomasz Napierala 7623f5ac575SEdward Tomasz Napierala revoke_ttys(); 7633f5ac575SEdward Tomasz Napierala runshutdown(); 7643f5ac575SEdward Tomasz Napierala 7653f5ac575SEdward Tomasz Napierala /* 7663f5ac575SEdward Tomasz Napierala * Make sure nobody can interfere with our scheme. 767126ba219SEdward Tomasz Napierala * Ignore ESRCH, which can apparently happen when 768126ba219SEdward Tomasz Napierala * there are no processes to kill. 7693f5ac575SEdward Tomasz Napierala */ 7703f5ac575SEdward Tomasz Napierala error = kill(-1, SIGKILL); 771126ba219SEdward Tomasz Napierala if (error != 0 && errno != ESRCH) { 772*804b4afbSXin LI emergency("kill(2) failed: %m"); 7733f5ac575SEdward Tomasz Napierala goto out; 7743f5ac575SEdward Tomasz Napierala } 7753f5ac575SEdward Tomasz Napierala 7763f5ac575SEdward Tomasz Napierala /* 7773f5ac575SEdward Tomasz Napierala * Copy the init binary into tmpfs, so that we can unmount 7783f5ac575SEdward Tomasz Napierala * the old rootfs without committing suicide. 7793f5ac575SEdward Tomasz Napierala */ 780377b6d1eSEdward Tomasz Napierala error = read_file(init_path_argv0, &buf, &bufsize); 7813f5ac575SEdward Tomasz Napierala if (error != 0) 7823f5ac575SEdward Tomasz Napierala goto out; 7833f5ac575SEdward Tomasz Napierala error = mount_tmpfs(_PATH_REROOT); 7843f5ac575SEdward Tomasz Napierala if (error != 0) 7853f5ac575SEdward Tomasz Napierala goto out; 7863f5ac575SEdward Tomasz Napierala error = create_file(_PATH_REROOT_INIT, buf, bufsize); 7873f5ac575SEdward Tomasz Napierala if (error != 0) 7883f5ac575SEdward Tomasz Napierala goto out; 7893f5ac575SEdward Tomasz Napierala 7903f5ac575SEdward Tomasz Napierala /* 7913f5ac575SEdward Tomasz Napierala * Execute the temporary init. 7923f5ac575SEdward Tomasz Napierala */ 7933f5ac575SEdward Tomasz Napierala execl(_PATH_REROOT_INIT, _PATH_REROOT_INIT, "-r", NULL); 794*804b4afbSXin LI emergency("cannot exec %s: %m", _PATH_REROOT_INIT); 7953f5ac575SEdward Tomasz Napierala 7963f5ac575SEdward Tomasz Napierala out: 7973f5ac575SEdward Tomasz Napierala emergency("reroot failed; going to single user mode"); 798b9124fc3SEdward Tomasz Napierala free(buf); 7993f5ac575SEdward Tomasz Napierala return (state_func_t) single_user; 8003f5ac575SEdward Tomasz Napierala } 8013f5ac575SEdward Tomasz Napierala 8023f5ac575SEdward Tomasz Napierala static state_func_t 8033f5ac575SEdward Tomasz Napierala reroot_phase_two(void) 8043f5ac575SEdward Tomasz Napierala { 8053f5ac575SEdward Tomasz Napierala char init_path[PATH_MAX], *path, *path_component; 8063f5ac575SEdward Tomasz Napierala size_t init_path_len; 8073f5ac575SEdward Tomasz Napierala int nbytes, error; 8083f5ac575SEdward Tomasz Napierala 8093f5ac575SEdward Tomasz Napierala /* 8103f5ac575SEdward Tomasz Napierala * Ask the kernel to mount the new rootfs. 8113f5ac575SEdward Tomasz Napierala */ 8123f5ac575SEdward Tomasz Napierala error = reboot(RB_REROOT); 8133f5ac575SEdward Tomasz Napierala if (error != 0) { 814*804b4afbSXin LI emergency("RB_REBOOT failed: %m"); 8153f5ac575SEdward Tomasz Napierala goto out; 8163f5ac575SEdward Tomasz Napierala } 8173f5ac575SEdward Tomasz Napierala 8183f5ac575SEdward Tomasz Napierala /* 8193f5ac575SEdward Tomasz Napierala * Figure out where the destination init(8) binary is. Note that 8203f5ac575SEdward Tomasz Napierala * the path could be different than what we've started with. Use 8213f5ac575SEdward Tomasz Napierala * the value from kenv, if set, or the one from sysctl otherwise. 8223f5ac575SEdward Tomasz Napierala * The latter defaults to a hardcoded value, but can be overridden 8233f5ac575SEdward Tomasz Napierala * by a build time option. 8243f5ac575SEdward Tomasz Napierala */ 8253f5ac575SEdward Tomasz Napierala nbytes = kenv(KENV_GET, "init_path", init_path, sizeof(init_path)); 8263f5ac575SEdward Tomasz Napierala if (nbytes <= 0) { 8273f5ac575SEdward Tomasz Napierala init_path_len = sizeof(init_path); 8283f5ac575SEdward Tomasz Napierala error = sysctlbyname("kern.init_path", 8293f5ac575SEdward Tomasz Napierala init_path, &init_path_len, NULL, 0); 8303f5ac575SEdward Tomasz Napierala if (error != 0) { 831*804b4afbSXin LI emergency("failed to retrieve kern.init_path: %m"); 8323f5ac575SEdward Tomasz Napierala goto out; 8333f5ac575SEdward Tomasz Napierala } 8343f5ac575SEdward Tomasz Napierala } 8353f5ac575SEdward Tomasz Napierala 8363f5ac575SEdward Tomasz Napierala /* 8373f5ac575SEdward Tomasz Napierala * Repeat the init search logic from sys/kern/init_path.c 8383f5ac575SEdward Tomasz Napierala */ 8393f5ac575SEdward Tomasz Napierala path_component = init_path; 8403f5ac575SEdward Tomasz Napierala while ((path = strsep(&path_component, ":")) != NULL) { 8413f5ac575SEdward Tomasz Napierala /* 8423f5ac575SEdward Tomasz Napierala * Execute init(8) from the new rootfs. 8433f5ac575SEdward Tomasz Napierala */ 8443f5ac575SEdward Tomasz Napierala execl(path, path, NULL); 8453f5ac575SEdward Tomasz Napierala } 846*804b4afbSXin LI emergency("cannot exec init from %s: %m", init_path); 8473f5ac575SEdward Tomasz Napierala 8483f5ac575SEdward Tomasz Napierala out: 8493f5ac575SEdward Tomasz Napierala emergency("reroot failed; going to single user mode"); 8503f5ac575SEdward Tomasz Napierala return (state_func_t) single_user; 8513f5ac575SEdward Tomasz Napierala } 8523f5ac575SEdward Tomasz Napierala 8538fae3551SRodney W. Grimes /* 8548fae3551SRodney W. Grimes * Bring the system up single user. 8558fae3551SRodney W. Grimes */ 85645cfb1dcSXin LI static state_func_t 85773bf18edSWarner Losh single_user(void) 8588fae3551SRodney W. Grimes { 8598fae3551SRodney W. Grimes pid_t pid, wpid; 8608fae3551SRodney W. Grimes int status; 8618fae3551SRodney W. Grimes sigset_t mask; 8621a7bec91SWarner Losh const char *shell; 8638fae3551SRodney W. Grimes char *argv[2]; 8648402d33aSKonstantin Belousov struct timeval tv, tn; 8658fae3551SRodney W. Grimes #ifdef SECURE 8668fae3551SRodney W. Grimes struct ttyent *typ; 8678fae3551SRodney W. Grimes struct passwd *pp; 8688fae3551SRodney W. Grimes static const char banner[] = 8698fae3551SRodney W. Grimes "Enter root password, or ^D to go multi-user\n"; 8708fae3551SRodney W. Grimes char *clear, *password; 8718fae3551SRodney W. Grimes #endif 87263322c28SPoul-Henning Kamp #ifdef DEBUGSHELL 87363322c28SPoul-Henning Kamp char altshell[128]; 87463322c28SPoul-Henning Kamp #endif 8758fae3551SRodney W. Grimes 876db8ad19dSJordan K. Hubbard if (Reboot) { 877a0a549c7SRuslan Ermilov /* Instead of going single user, let's reboot the machine */ 878e460cfd3SNate Williams sync(); 879e10037dfSKonstantin Belousov if (reboot(howto) == -1) { 880*804b4afbSXin LI emergency("reboot(%#x) failed, %m", howto); 881e10037dfSKonstantin Belousov _exit(1); /* panic and reboot */ 882e10037dfSKonstantin Belousov } 883e10037dfSKonstantin Belousov warning("reboot(%#x) returned", howto); 884e10037dfSKonstantin Belousov _exit(0); /* panic as well */ 885e460cfd3SNate Williams } 886e460cfd3SNate Williams 8871a7bec91SWarner Losh shell = get_shell(); 8881a7bec91SWarner Losh 8898fae3551SRodney W. Grimes if ((pid = fork()) == 0) { 8908fae3551SRodney W. Grimes /* 8918fae3551SRodney W. Grimes * Start the single user session. 8928fae3551SRodney W. Grimes */ 8934c2c7b2cSEd Schouten open_console(); 8948fae3551SRodney W. Grimes 8958fae3551SRodney W. Grimes #ifdef SECURE 8968fae3551SRodney W. Grimes /* 8978fae3551SRodney W. Grimes * Check the root password. 8988fae3551SRodney W. Grimes * We don't care if the console is 'on' by default; 8998fae3551SRodney W. Grimes * it's the only tty that can be 'off' and 'secure'. 9008fae3551SRodney W. Grimes */ 9018fae3551SRodney W. Grimes typ = getttynam("console"); 9028fae3551SRodney W. Grimes pp = getpwnam("root"); 903a69497d7SMatthew Dillon if (typ && (typ->ty_status & TTY_SECURE) == 0 && 904a69497d7SMatthew Dillon pp && *pp->pw_passwd) { 9051a7bec91SWarner Losh write_stderr(banner); 9068fae3551SRodney W. Grimes for (;;) { 9078fae3551SRodney W. Grimes clear = getpass("Password:"); 9082ef6931aSMarcelo Araujo if (clear == NULL || *clear == '\0') 9098fae3551SRodney W. Grimes _exit(0); 9108fae3551SRodney W. Grimes password = crypt(clear, pp->pw_passwd); 9118fae3551SRodney W. Grimes bzero(clear, _PASSWORD_LEN); 9122c9a33f5SConrad Meyer if (password != NULL && 91329dcf726SKevin Lo strcmp(password, pp->pw_passwd) == 0) 9148fae3551SRodney W. Grimes break; 9158fae3551SRodney W. Grimes warning("single-user login failed\n"); 9168fae3551SRodney W. Grimes } 9178fae3551SRodney W. Grimes } 9188fae3551SRodney W. Grimes endttyent(); 9198fae3551SRodney W. Grimes endpwent(); 9208fae3551SRodney W. Grimes #endif /* SECURE */ 9218fae3551SRodney W. Grimes 9228fae3551SRodney W. Grimes #ifdef DEBUGSHELL 9238fae3551SRodney W. Grimes { 92463322c28SPoul-Henning Kamp char *cp = altshell; 9258fae3551SRodney W. Grimes int num; 9268fae3551SRodney W. Grimes 9271a7bec91SWarner Losh #define SHREQUEST "Enter full pathname of shell or RETURN for " 9281a7bec91SWarner Losh write_stderr(SHREQUEST); 9291a7bec91SWarner Losh write_stderr(shell); 9301a7bec91SWarner Losh write_stderr(": "); 9318fae3551SRodney W. Grimes while ((num = read(STDIN_FILENO, cp, 1)) != -1 && 9328fae3551SRodney W. Grimes num != 0 && *cp != '\n' && cp < &altshell[127]) 9338fae3551SRodney W. Grimes cp++; 9348fae3551SRodney W. Grimes *cp = '\0'; 9358fae3551SRodney W. Grimes if (altshell[0] != '\0') 9368fae3551SRodney W. Grimes shell = altshell; 9378fae3551SRodney W. Grimes } 9388fae3551SRodney W. Grimes #endif /* DEBUGSHELL */ 9398fae3551SRodney W. Grimes 9408fae3551SRodney W. Grimes /* 9418fae3551SRodney W. Grimes * Unblock signals. 9428fae3551SRodney W. Grimes * We catch all the interesting ones, 9438fae3551SRodney W. Grimes * and those are reset to SIG_DFL on exec. 9448fae3551SRodney W. Grimes */ 9458fae3551SRodney W. Grimes sigemptyset(&mask); 946d1b1fe3aSEdward Tomasz Napierala sigprocmask(SIG_SETMASK, &mask, NULL); 9478fae3551SRodney W. Grimes 9488fae3551SRodney W. Grimes /* 9498fae3551SRodney W. Grimes * Fire off a shell. 9508fae3551SRodney W. Grimes * If the default one doesn't work, try the Bourne shell. 9518fae3551SRodney W. Grimes */ 952ab03e6d5SXin LI 953ab03e6d5SXin LI char name[] = "-sh"; 954ab03e6d5SXin LI 955ab03e6d5SXin LI argv[0] = name; 956be03cfddSEdward Tomasz Napierala argv[1] = NULL; 9578fae3551SRodney W. Grimes execv(shell, argv); 9588fae3551SRodney W. Grimes emergency("can't exec %s for single user: %m", shell); 9598fae3551SRodney W. Grimes execv(_PATH_BSHELL, argv); 9608fae3551SRodney W. Grimes emergency("can't exec %s for single user: %m", _PATH_BSHELL); 9618fae3551SRodney W. Grimes sleep(STALL_TIMEOUT); 9628fae3551SRodney W. Grimes _exit(1); 9638fae3551SRodney W. Grimes } 9648fae3551SRodney W. Grimes 9658fae3551SRodney W. Grimes if (pid == -1) { 9668fae3551SRodney W. Grimes /* 9678fae3551SRodney W. Grimes * We are seriously hosed. Do our best. 9688fae3551SRodney W. Grimes */ 9698fae3551SRodney W. Grimes emergency("can't fork single-user shell, trying again"); 9708fae3551SRodney W. Grimes while (waitpid(-1, (int *) 0, WNOHANG) > 0) 9718fae3551SRodney W. Grimes continue; 9728fae3551SRodney W. Grimes return (state_func_t) single_user; 9738fae3551SRodney W. Grimes } 9748fae3551SRodney W. Grimes 9758fae3551SRodney W. Grimes requested_transition = 0; 9768fae3551SRodney W. Grimes do { 9778fae3551SRodney W. Grimes if ((wpid = waitpid(-1, &status, WUNTRACED)) != -1) 9788fae3551SRodney W. Grimes collect_child(wpid); 9798fae3551SRodney W. Grimes if (wpid == -1) { 9808fae3551SRodney W. Grimes if (errno == EINTR) 9818fae3551SRodney W. Grimes continue; 9828fae3551SRodney W. Grimes warning("wait for single-user shell failed: %m; restarting"); 9838fae3551SRodney W. Grimes return (state_func_t) single_user; 9848fae3551SRodney W. Grimes } 9858fae3551SRodney W. Grimes if (wpid == pid && WIFSTOPPED(status)) { 9868fae3551SRodney W. Grimes warning("init: shell stopped, restarting\n"); 9878fae3551SRodney W. Grimes kill(pid, SIGCONT); 9888fae3551SRodney W. Grimes wpid = -1; 9898fae3551SRodney W. Grimes } 9908fae3551SRodney W. Grimes } while (wpid != pid && !requested_transition); 9918fae3551SRodney W. Grimes 9928fae3551SRodney W. Grimes if (requested_transition) 9938fae3551SRodney W. Grimes return (state_func_t) requested_transition; 9948fae3551SRodney W. Grimes 9958fae3551SRodney W. Grimes if (!WIFEXITED(status)) { 9968fae3551SRodney W. Grimes if (WTERMSIG(status) == SIGKILL) { 9978fae3551SRodney W. Grimes /* 9988fae3551SRodney W. Grimes * reboot(8) killed shell? 9998fae3551SRodney W. Grimes */ 10008fae3551SRodney W. Grimes warning("single user shell terminated."); 10018402d33aSKonstantin Belousov gettimeofday(&tv, NULL); 10028402d33aSKonstantin Belousov tn = tv; 10038402d33aSKonstantin Belousov tv.tv_sec += STALL_TIMEOUT; 10048402d33aSKonstantin Belousov while (tv.tv_sec > tn.tv_sec || (tv.tv_sec == 10058402d33aSKonstantin Belousov tn.tv_sec && tv.tv_usec > tn.tv_usec)) { 10068402d33aSKonstantin Belousov sleep(1); 10078402d33aSKonstantin Belousov gettimeofday(&tn, NULL); 10088402d33aSKonstantin Belousov } 10098fae3551SRodney W. Grimes _exit(0); 10108fae3551SRodney W. Grimes } else { 10118fae3551SRodney W. Grimes warning("single user shell terminated, restarting"); 10128fae3551SRodney W. Grimes return (state_func_t) single_user; 10138fae3551SRodney W. Grimes } 10148fae3551SRodney W. Grimes } 10158fae3551SRodney W. Grimes 10168fae3551SRodney W. Grimes runcom_mode = FASTBOOT; 10178fae3551SRodney W. Grimes return (state_func_t) runcom; 10188fae3551SRodney W. Grimes } 10198fae3551SRodney W. Grimes 10208fae3551SRodney W. Grimes /* 10218fae3551SRodney W. Grimes * Run the system startup script. 10228fae3551SRodney W. Grimes */ 102345cfb1dcSXin LI static state_func_t 102473bf18edSWarner Losh runcom(void) 10258fae3551SRodney W. Grimes { 10261a7bec91SWarner Losh state_func_t next_transition; 10271a7bec91SWarner Losh 10282ef6931aSMarcelo Araujo if ((next_transition = run_script(_PATH_RUNCOM)) != NULL) 10291a7bec91SWarner Losh return next_transition; 10301a7bec91SWarner Losh 10311a7bec91SWarner Losh runcom_mode = AUTOBOOT; /* the default */ 10321a7bec91SWarner Losh return (state_func_t) read_ttys; 10331a7bec91SWarner Losh } 10341a7bec91SWarner Losh 1035f3c4a698SEdward Tomasz Napierala static void 1036f3c4a698SEdward Tomasz Napierala execute_script(char *argv[]) 1037f3c4a698SEdward Tomasz Napierala { 1038f3c4a698SEdward Tomasz Napierala struct sigaction sa; 1039f3c4a698SEdward Tomasz Napierala const char *shell, *script; 1040f3c4a698SEdward Tomasz Napierala int error; 1041f3c4a698SEdward Tomasz Napierala 1042f3c4a698SEdward Tomasz Napierala bzero(&sa, sizeof(sa)); 1043f3c4a698SEdward Tomasz Napierala sigemptyset(&sa.sa_mask); 1044f3c4a698SEdward Tomasz Napierala sa.sa_handler = SIG_IGN; 1045f3c4a698SEdward Tomasz Napierala sigaction(SIGTSTP, &sa, NULL); 1046f3c4a698SEdward Tomasz Napierala sigaction(SIGHUP, &sa, NULL); 1047f3c4a698SEdward Tomasz Napierala 1048f3c4a698SEdward Tomasz Napierala open_console(); 1049f3c4a698SEdward Tomasz Napierala 1050f3c4a698SEdward Tomasz Napierala sigprocmask(SIG_SETMASK, &sa.sa_mask, NULL); 1051f3c4a698SEdward Tomasz Napierala #ifdef LOGIN_CAP 1052f3c4a698SEdward Tomasz Napierala setprocresources(RESOURCE_RC); 1053f3c4a698SEdward Tomasz Napierala #endif 1054f3c4a698SEdward Tomasz Napierala 1055f3c4a698SEdward Tomasz Napierala /* 1056f3c4a698SEdward Tomasz Napierala * Try to directly execute the script first. If it 1057f3c4a698SEdward Tomasz Napierala * fails, try the old method of passing the script path 1058f3c4a698SEdward Tomasz Napierala * to sh(1). Don't complain if it fails because of 1059f3c4a698SEdward Tomasz Napierala * the missing execute bit. 1060f3c4a698SEdward Tomasz Napierala */ 1061f3c4a698SEdward Tomasz Napierala script = argv[1]; 1062f3c4a698SEdward Tomasz Napierala error = access(script, X_OK); 1063f3c4a698SEdward Tomasz Napierala if (error == 0) { 1064f3c4a698SEdward Tomasz Napierala execv(script, argv + 1); 106598b1cf29SEd Maste warning("can't directly exec %s: %m", script); 1066f3c4a698SEdward Tomasz Napierala } else if (errno != EACCES) { 1067f3c4a698SEdward Tomasz Napierala warning("can't access %s: %m", script); 1068f3c4a698SEdward Tomasz Napierala } 1069f3c4a698SEdward Tomasz Napierala 1070f3c4a698SEdward Tomasz Napierala shell = get_shell(); 1071f3c4a698SEdward Tomasz Napierala execv(shell, argv); 1072f3c4a698SEdward Tomasz Napierala stall("can't exec %s for %s: %m", shell, script); 1073f3c4a698SEdward Tomasz Napierala } 1074f3c4a698SEdward Tomasz Napierala 10751a7bec91SWarner Losh /* 1076335fe94fSEdward Tomasz Napierala * Execute binary, replacing init(8) as PID 1. 1077335fe94fSEdward Tomasz Napierala */ 1078335fe94fSEdward Tomasz Napierala static void 1079335fe94fSEdward Tomasz Napierala replace_init(char *path) 1080335fe94fSEdward Tomasz Napierala { 1081335fe94fSEdward Tomasz Napierala char *argv[3]; 1082335fe94fSEdward Tomasz Napierala char sh[] = "sh"; 1083335fe94fSEdward Tomasz Napierala 1084335fe94fSEdward Tomasz Napierala argv[0] = sh; 1085335fe94fSEdward Tomasz Napierala argv[1] = path; 1086335fe94fSEdward Tomasz Napierala argv[2] = NULL; 1087335fe94fSEdward Tomasz Napierala 1088335fe94fSEdward Tomasz Napierala execute_script(argv); 1089335fe94fSEdward Tomasz Napierala } 1090335fe94fSEdward Tomasz Napierala 1091335fe94fSEdward Tomasz Napierala /* 10921a7bec91SWarner Losh * Run a shell script. 10931a7bec91SWarner Losh * Returns 0 on success, otherwise the next transition to enter: 10941a7bec91SWarner Losh * - single_user if fork/execv/waitpid failed, or if the script 10951a7bec91SWarner Losh * terminated with a signal or exit code != 0. 1096acf0ab06SJilles Tjoelker * - death_single if a SIGTERM was delivered to init(8). 10971a7bec91SWarner Losh */ 109845cfb1dcSXin LI static state_func_t 10991a7bec91SWarner Losh run_script(const char *script) 11001a7bec91SWarner Losh { 11018fae3551SRodney W. Grimes pid_t pid, wpid; 1102f3c4a698SEdward Tomasz Napierala int status; 11038fae3551SRodney W. Grimes char *argv[4]; 11041a7bec91SWarner Losh const char *shell; 11058fae3551SRodney W. Grimes 11061a7bec91SWarner Losh shell = get_shell(); 11071a7bec91SWarner Losh 11088fae3551SRodney W. Grimes if ((pid = fork()) == 0) { 11098fae3551SRodney W. Grimes 1110ab03e6d5SXin LI char _sh[] = "sh"; 1111ab03e6d5SXin LI char _autoboot[] = "autoboot"; 1112ab03e6d5SXin LI 1113ab03e6d5SXin LI argv[0] = _sh; 11141a7bec91SWarner Losh argv[1] = __DECONST(char *, script); 1115ab03e6d5SXin LI argv[2] = runcom_mode == AUTOBOOT ? _autoboot : 0; 1116be03cfddSEdward Tomasz Napierala argv[3] = NULL; 11178fae3551SRodney W. Grimes 1118f3c4a698SEdward Tomasz Napierala execute_script(argv); 1119f3c4a698SEdward Tomasz Napierala sleep(STALL_TIMEOUT); 11208fae3551SRodney W. Grimes _exit(1); /* force single user mode */ 11218fae3551SRodney W. Grimes } 11228fae3551SRodney W. Grimes 11238fae3551SRodney W. Grimes if (pid == -1) { 11241a7bec91SWarner Losh emergency("can't fork for %s on %s: %m", shell, script); 11258fae3551SRodney W. Grimes while (waitpid(-1, (int *) 0, WNOHANG) > 0) 11268fae3551SRodney W. Grimes continue; 11278fae3551SRodney W. Grimes sleep(STALL_TIMEOUT); 11288fae3551SRodney W. Grimes return (state_func_t) single_user; 11298fae3551SRodney W. Grimes } 11308fae3551SRodney W. Grimes 11318fae3551SRodney W. Grimes /* 11328fae3551SRodney W. Grimes * Copied from single_user(). This is a bit paranoid. 11338fae3551SRodney W. Grimes */ 11346e8ff8b7SDag-Erling Smørgrav requested_transition = 0; 11358fae3551SRodney W. Grimes do { 11368fae3551SRodney W. Grimes if ((wpid = waitpid(-1, &status, WUNTRACED)) != -1) 11378fae3551SRodney W. Grimes collect_child(wpid); 11388fae3551SRodney W. Grimes if (wpid == -1) { 11393f5ac575SEdward Tomasz Napierala if (requested_transition == death_single || 11403f5ac575SEdward Tomasz Napierala requested_transition == reroot) 11413f5ac575SEdward Tomasz Napierala return (state_func_t) requested_transition; 11428fae3551SRodney W. Grimes if (errno == EINTR) 11438fae3551SRodney W. Grimes continue; 11441a7bec91SWarner Losh warning("wait for %s on %s failed: %m; going to " 11451a7bec91SWarner Losh "single user mode", shell, script); 11468fae3551SRodney W. Grimes return (state_func_t) single_user; 11478fae3551SRodney W. Grimes } 11488fae3551SRodney W. Grimes if (wpid == pid && WIFSTOPPED(status)) { 11498fae3551SRodney W. Grimes warning("init: %s on %s stopped, restarting\n", 11501a7bec91SWarner Losh shell, script); 11518fae3551SRodney W. Grimes kill(pid, SIGCONT); 11528fae3551SRodney W. Grimes wpid = -1; 11538fae3551SRodney W. Grimes } 11548fae3551SRodney W. Grimes } while (wpid != pid); 11558fae3551SRodney W. Grimes 11568fae3551SRodney W. Grimes if (WIFSIGNALED(status) && WTERMSIG(status) == SIGTERM && 11578fae3551SRodney W. Grimes requested_transition == catatonia) { 11588fae3551SRodney W. Grimes /* /etc/rc executed /sbin/reboot; wait for the end quietly */ 11598fae3551SRodney W. Grimes sigset_t s; 11608fae3551SRodney W. Grimes 11618fae3551SRodney W. Grimes sigfillset(&s); 11628fae3551SRodney W. Grimes for (;;) 11638fae3551SRodney W. Grimes sigsuspend(&s); 11648fae3551SRodney W. Grimes } 11658fae3551SRodney W. Grimes 11668fae3551SRodney W. Grimes if (!WIFEXITED(status)) { 11671a7bec91SWarner Losh warning("%s on %s terminated abnormally, going to single " 11681a7bec91SWarner Losh "user mode", shell, script); 11698fae3551SRodney W. Grimes return (state_func_t) single_user; 11708fae3551SRodney W. Grimes } 11718fae3551SRodney W. Grimes 11728fae3551SRodney W. Grimes if (WEXITSTATUS(status)) 11738fae3551SRodney W. Grimes return (state_func_t) single_user; 11748fae3551SRodney W. Grimes 11751a7bec91SWarner Losh return (state_func_t) 0; 11768fae3551SRodney W. Grimes } 11778fae3551SRodney W. Grimes 11788fae3551SRodney W. Grimes /* 11798fae3551SRodney W. Grimes * Open the session database. 11808fae3551SRodney W. Grimes * 11818fae3551SRodney W. Grimes * NB: We could pass in the size here; is it necessary? 11828fae3551SRodney W. Grimes */ 118345cfb1dcSXin LI static int 118473bf18edSWarner Losh start_session_db(void) 11858fae3551SRodney W. Grimes { 11868fae3551SRodney W. Grimes if (session_db && (*session_db->close)(session_db)) 1187*804b4afbSXin LI emergency("session database close: %m"); 118814adaa14SMarcelo Araujo if ((session_db = dbopen(NULL, O_RDWR, 0, DB_HASH, NULL)) == NULL) { 1189*804b4afbSXin LI emergency("session database open: %m"); 11908fae3551SRodney W. Grimes return (1); 11918fae3551SRodney W. Grimes } 11928fae3551SRodney W. Grimes return (0); 11938fae3551SRodney W. Grimes 11948fae3551SRodney W. Grimes } 11958fae3551SRodney W. Grimes 11968fae3551SRodney W. Grimes /* 11978fae3551SRodney W. Grimes * Add a new login session. 11988fae3551SRodney W. Grimes */ 119945cfb1dcSXin LI static void 120073bf18edSWarner Losh add_session(session_t *sp) 12018fae3551SRodney W. Grimes { 12028fae3551SRodney W. Grimes DBT key; 12038fae3551SRodney W. Grimes DBT data; 12048fae3551SRodney W. Grimes 12058fae3551SRodney W. Grimes key.data = &sp->se_process; 12068fae3551SRodney W. Grimes key.size = sizeof sp->se_process; 12078fae3551SRodney W. Grimes data.data = &sp; 12088fae3551SRodney W. Grimes data.size = sizeof sp; 12098fae3551SRodney W. Grimes 12108fae3551SRodney W. Grimes if ((*session_db->put)(session_db, &key, &data, 0)) 1211*804b4afbSXin LI emergency("insert %d: %m", sp->se_process); 12128fae3551SRodney W. Grimes } 12138fae3551SRodney W. Grimes 12148fae3551SRodney W. Grimes /* 12158fae3551SRodney W. Grimes * Delete an old login session. 12168fae3551SRodney W. Grimes */ 121745cfb1dcSXin LI static void 121873bf18edSWarner Losh del_session(session_t *sp) 12198fae3551SRodney W. Grimes { 12208fae3551SRodney W. Grimes DBT key; 12218fae3551SRodney W. Grimes 12228fae3551SRodney W. Grimes key.data = &sp->se_process; 12238fae3551SRodney W. Grimes key.size = sizeof sp->se_process; 12248fae3551SRodney W. Grimes 12258fae3551SRodney W. Grimes if ((*session_db->del)(session_db, &key, 0)) 1226*804b4afbSXin LI emergency("delete %d: %m", sp->se_process); 12278fae3551SRodney W. Grimes } 12288fae3551SRodney W. Grimes 12298fae3551SRodney W. Grimes /* 12308fae3551SRodney W. Grimes * Look up a login session by pid. 12318fae3551SRodney W. Grimes */ 123245cfb1dcSXin LI static session_t * 12338fae3551SRodney W. Grimes find_session(pid_t pid) 12348fae3551SRodney W. Grimes { 12358fae3551SRodney W. Grimes DBT key; 12368fae3551SRodney W. Grimes DBT data; 12378fae3551SRodney W. Grimes session_t *ret; 12388fae3551SRodney W. Grimes 12398fae3551SRodney W. Grimes key.data = &pid; 12408fae3551SRodney W. Grimes key.size = sizeof pid; 12418fae3551SRodney W. Grimes if ((*session_db->get)(session_db, &key, &data, 0) != 0) 12428fae3551SRodney W. Grimes return 0; 12438fae3551SRodney W. Grimes bcopy(data.data, (char *)&ret, sizeof(ret)); 12448fae3551SRodney W. Grimes return ret; 12458fae3551SRodney W. Grimes } 12468fae3551SRodney W. Grimes 12478fae3551SRodney W. Grimes /* 12488fae3551SRodney W. Grimes * Construct an argument vector from a command line. 12498fae3551SRodney W. Grimes */ 125045cfb1dcSXin LI static char ** 125173bf18edSWarner Losh construct_argv(char *command) 12528fae3551SRodney W. Grimes { 12533d438ad6SDavid E. O'Brien int argc = 0; 12543d438ad6SDavid E. O'Brien char **argv = (char **) malloc(((strlen(command) + 1) / 2 + 1) 12558fae3551SRodney W. Grimes * sizeof (char *)); 12568fae3551SRodney W. Grimes 12572ef6931aSMarcelo Araujo if ((argv[argc++] = strk(command)) == NULL) { 12586be40c95SRuslan Ermilov free(argv); 12596be40c95SRuslan Ermilov return (NULL); 12606be40c95SRuslan Ermilov } 12618889c700SDavid Nugent while ((argv[argc++] = strk((char *) 0)) != NULL) 12628fae3551SRodney W. Grimes continue; 12638fae3551SRodney W. Grimes return argv; 12648fae3551SRodney W. Grimes } 12658fae3551SRodney W. Grimes 12668fae3551SRodney W. Grimes /* 12678fae3551SRodney W. Grimes * Deallocate a session descriptor. 12688fae3551SRodney W. Grimes */ 126945cfb1dcSXin LI static void 127073bf18edSWarner Losh free_session(session_t *sp) 12718fae3551SRodney W. Grimes { 12728fae3551SRodney W. Grimes free(sp->se_device); 12738fae3551SRodney W. Grimes if (sp->se_getty) { 12748fae3551SRodney W. Grimes free(sp->se_getty); 1275b5df27e2SAndrey A. Chernov free(sp->se_getty_argv_space); 12768fae3551SRodney W. Grimes free(sp->se_getty_argv); 12778fae3551SRodney W. Grimes } 12788fae3551SRodney W. Grimes if (sp->se_window) { 12798fae3551SRodney W. Grimes free(sp->se_window); 1280b5df27e2SAndrey A. Chernov free(sp->se_window_argv_space); 12818fae3551SRodney W. Grimes free(sp->se_window_argv); 12828fae3551SRodney W. Grimes } 1283b5df27e2SAndrey A. Chernov if (sp->se_type) 1284b5df27e2SAndrey A. Chernov free(sp->se_type); 12858fae3551SRodney W. Grimes free(sp); 12868fae3551SRodney W. Grimes } 12878fae3551SRodney W. Grimes 12888fae3551SRodney W. Grimes /* 12898fae3551SRodney W. Grimes * Allocate a new session descriptor. 1290b0b670eeSAlfred Perlstein * Mark it SE_PRESENT. 12918fae3551SRodney W. Grimes */ 129245cfb1dcSXin LI static session_t * 12930b57dd6bSJilles Tjoelker new_session(session_t *sprev, struct ttyent *typ) 12948fae3551SRodney W. Grimes { 12953d438ad6SDavid E. O'Brien session_t *sp; 12968fae3551SRodney W. Grimes 12978fae3551SRodney W. Grimes if ((typ->ty_status & TTY_ON) == 0 || 12988fae3551SRodney W. Grimes typ->ty_name == 0 || 12998fae3551SRodney W. Grimes typ->ty_getty == 0) 13008fae3551SRodney W. Grimes return 0; 13018fae3551SRodney W. Grimes 13021054bb1eSAndrey A. Chernov sp = (session_t *) calloc(1, sizeof (session_t)); 13038fae3551SRodney W. Grimes 1304b0b670eeSAlfred Perlstein sp->se_flags |= SE_PRESENT; 13058fae3551SRodney W. Grimes 13061cde387cSEdward Tomasz Napierala if ((typ->ty_status & TTY_IFEXISTS) != 0) 13071cde387cSEdward Tomasz Napierala sp->se_flags |= SE_IFEXISTS; 13081cde387cSEdward Tomasz Napierala 13091cde387cSEdward Tomasz Napierala if ((typ->ty_status & TTY_IFCONSOLE) != 0) 13101cde387cSEdward Tomasz Napierala sp->se_flags |= SE_IFCONSOLE; 13111cde387cSEdward Tomasz Napierala 131295595f99SXin LI if (asprintf(&sp->se_device, "%s%s", _PATH_DEV, typ->ty_name) < 0) 131395595f99SXin LI err(1, "asprintf"); 13148fae3551SRodney W. Grimes 13158fae3551SRodney W. Grimes if (setupargv(sp, typ) == 0) { 13168fae3551SRodney W. Grimes free_session(sp); 13178fae3551SRodney W. Grimes return (0); 13188fae3551SRodney W. Grimes } 13198fae3551SRodney W. Grimes 13208fae3551SRodney W. Grimes sp->se_next = 0; 132114adaa14SMarcelo Araujo if (sprev == NULL) { 13228fae3551SRodney W. Grimes sessions = sp; 13238fae3551SRodney W. Grimes sp->se_prev = 0; 13248fae3551SRodney W. Grimes } else { 13258fae3551SRodney W. Grimes sprev->se_next = sp; 13268fae3551SRodney W. Grimes sp->se_prev = sprev; 13278fae3551SRodney W. Grimes } 13288fae3551SRodney W. Grimes 13298fae3551SRodney W. Grimes return sp; 13308fae3551SRodney W. Grimes } 13318fae3551SRodney W. Grimes 13328fae3551SRodney W. Grimes /* 13338fae3551SRodney W. Grimes * Calculate getty and if useful window argv vectors. 13348fae3551SRodney W. Grimes */ 133545cfb1dcSXin LI static int 133673bf18edSWarner Losh setupargv(session_t *sp, struct ttyent *typ) 13378fae3551SRodney W. Grimes { 13388fae3551SRodney W. Grimes 13398fae3551SRodney W. Grimes if (sp->se_getty) { 13408fae3551SRodney W. Grimes free(sp->se_getty); 1341b5df27e2SAndrey A. Chernov free(sp->se_getty_argv_space); 13428fae3551SRodney W. Grimes free(sp->se_getty_argv); 13438fae3551SRodney W. Grimes } 134495595f99SXin LI if (asprintf(&sp->se_getty, "%s %s", typ->ty_getty, typ->ty_name) < 0) 134595595f99SXin LI err(1, "asprintf"); 1346b5df27e2SAndrey A. Chernov sp->se_getty_argv_space = strdup(sp->se_getty); 1347b5df27e2SAndrey A. Chernov sp->se_getty_argv = construct_argv(sp->se_getty_argv_space); 134814adaa14SMarcelo Araujo if (sp->se_getty_argv == NULL) { 13498fae3551SRodney W. Grimes warning("can't parse getty for port %s", sp->se_device); 13508fae3551SRodney W. Grimes free(sp->se_getty); 1351b5df27e2SAndrey A. Chernov free(sp->se_getty_argv_space); 1352b5df27e2SAndrey A. Chernov sp->se_getty = sp->se_getty_argv_space = 0; 13538fae3551SRodney W. Grimes return (0); 13548fae3551SRodney W. Grimes } 1355b5df27e2SAndrey A. Chernov if (sp->se_window) { 13568fae3551SRodney W. Grimes free(sp->se_window); 1357b5df27e2SAndrey A. Chernov free(sp->se_window_argv_space); 1358b5df27e2SAndrey A. Chernov free(sp->se_window_argv); 1359b5df27e2SAndrey A. Chernov } 1360b5df27e2SAndrey A. Chernov sp->se_window = sp->se_window_argv_space = 0; 1361b5df27e2SAndrey A. Chernov sp->se_window_argv = 0; 1362b5df27e2SAndrey A. Chernov if (typ->ty_window) { 13638fae3551SRodney W. Grimes sp->se_window = strdup(typ->ty_window); 1364b5df27e2SAndrey A. Chernov sp->se_window_argv_space = strdup(sp->se_window); 1365b5df27e2SAndrey A. Chernov sp->se_window_argv = construct_argv(sp->se_window_argv_space); 136614adaa14SMarcelo Araujo if (sp->se_window_argv == NULL) { 13678fae3551SRodney W. Grimes warning("can't parse window for port %s", 13688fae3551SRodney W. Grimes sp->se_device); 1369b5df27e2SAndrey A. Chernov free(sp->se_window_argv_space); 13708fae3551SRodney W. Grimes free(sp->se_window); 1371b5df27e2SAndrey A. Chernov sp->se_window = sp->se_window_argv_space = 0; 13728fae3551SRodney W. Grimes return (0); 13738fae3551SRodney W. Grimes } 13748fae3551SRodney W. Grimes } 1375b5df27e2SAndrey A. Chernov if (sp->se_type) 1376b5df27e2SAndrey A. Chernov free(sp->se_type); 1377b5df27e2SAndrey A. Chernov sp->se_type = typ->ty_type ? strdup(typ->ty_type) : 0; 13788fae3551SRodney W. Grimes return (1); 13798fae3551SRodney W. Grimes } 13808fae3551SRodney W. Grimes 13818fae3551SRodney W. Grimes /* 13828fae3551SRodney W. Grimes * Walk the list of ttys and create sessions for each active line. 13838fae3551SRodney W. Grimes */ 138445cfb1dcSXin LI static state_func_t 138573bf18edSWarner Losh read_ttys(void) 13868fae3551SRodney W. Grimes { 13873d438ad6SDavid E. O'Brien session_t *sp, *snext; 13883d438ad6SDavid E. O'Brien struct ttyent *typ; 13898fae3551SRodney W. Grimes 13908fae3551SRodney W. Grimes /* 13918fae3551SRodney W. Grimes * Destroy any previous session state. 13928fae3551SRodney W. Grimes * There shouldn't be any, but just in case... 13938fae3551SRodney W. Grimes */ 13948fae3551SRodney W. Grimes for (sp = sessions; sp; sp = snext) { 13958fae3551SRodney W. Grimes snext = sp->se_next; 13968fae3551SRodney W. Grimes free_session(sp); 13978fae3551SRodney W. Grimes } 13988fae3551SRodney W. Grimes sessions = 0; 13998fae3551SRodney W. Grimes if (start_session_db()) 14008fae3551SRodney W. Grimes return (state_func_t) single_user; 14018fae3551SRodney W. Grimes 14028fae3551SRodney W. Grimes /* 14038fae3551SRodney W. Grimes * Allocate a session entry for each active port. 14048fae3551SRodney W. Grimes * Note that sp starts at 0. 14058fae3551SRodney W. Grimes */ 14068889c700SDavid Nugent while ((typ = getttyent()) != NULL) 14070b57dd6bSJilles Tjoelker if ((snext = new_session(sp, typ)) != NULL) 14088fae3551SRodney W. Grimes sp = snext; 14098fae3551SRodney W. Grimes 14108fae3551SRodney W. Grimes endttyent(); 14118fae3551SRodney W. Grimes 14128fae3551SRodney W. Grimes return (state_func_t) multi_user; 14138fae3551SRodney W. Grimes } 14148fae3551SRodney W. Grimes 14158fae3551SRodney W. Grimes /* 14168fae3551SRodney W. Grimes * Start a window system running. 14178fae3551SRodney W. Grimes */ 141845cfb1dcSXin LI static void 141973bf18edSWarner Losh start_window_system(session_t *sp) 14208fae3551SRodney W. Grimes { 14218fae3551SRodney W. Grimes pid_t pid; 14228fae3551SRodney W. Grimes sigset_t mask; 1423b5df27e2SAndrey A. Chernov char term[64], *env[2]; 14245010c3b6SKonstantin Belousov int status; 14258fae3551SRodney W. Grimes 14268fae3551SRodney W. Grimes if ((pid = fork()) == -1) { 14278fae3551SRodney W. Grimes emergency("can't fork for window system on port %s: %m", 14288fae3551SRodney W. Grimes sp->se_device); 14298fae3551SRodney W. Grimes /* hope that getty fails and we can try again */ 14308fae3551SRodney W. Grimes return; 14318fae3551SRodney W. Grimes } 1432091abe40SDavid E. O'Brien if (pid) { 14335010c3b6SKonstantin Belousov waitpid(-1, &status, 0); 14348fae3551SRodney W. Grimes return; 14355010c3b6SKonstantin Belousov } 14365010c3b6SKonstantin Belousov 14375010c3b6SKonstantin Belousov /* reparent window process to the init to not make a zombie on exit */ 14385010c3b6SKonstantin Belousov if ((pid = fork()) == -1) { 14395010c3b6SKonstantin Belousov emergency("can't fork for window system on port %s: %m", 14405010c3b6SKonstantin Belousov sp->se_device); 14415010c3b6SKonstantin Belousov _exit(1); 14425010c3b6SKonstantin Belousov } 14435010c3b6SKonstantin Belousov if (pid) 14445010c3b6SKonstantin Belousov _exit(0); 14458fae3551SRodney W. Grimes 14468fae3551SRodney W. Grimes sigemptyset(&mask); 1447d1b1fe3aSEdward Tomasz Napierala sigprocmask(SIG_SETMASK, &mask, NULL); 14488fae3551SRodney W. Grimes 14498fae3551SRodney W. Grimes if (setsid() < 0) 14508fae3551SRodney W. Grimes emergency("setsid failed (window) %m"); 14518fae3551SRodney W. Grimes 14521ef60eb1SDavid Nugent #ifdef LOGIN_CAP 14531ef60eb1SDavid Nugent setprocresources(RESOURCE_WINDOW); 14541ef60eb1SDavid Nugent #endif 1455b5df27e2SAndrey A. Chernov if (sp->se_type) { 1456b5df27e2SAndrey A. Chernov /* Don't use malloc after fork */ 1457b5df27e2SAndrey A. Chernov strcpy(term, "TERM="); 145895595f99SXin LI strlcat(term, sp->se_type, sizeof(term)); 1459b5df27e2SAndrey A. Chernov env[0] = term; 1460be03cfddSEdward Tomasz Napierala env[1] = NULL; 1461b5df27e2SAndrey A. Chernov } 1462b5df27e2SAndrey A. Chernov else 1463be03cfddSEdward Tomasz Napierala env[0] = NULL; 1464b5df27e2SAndrey A. Chernov execve(sp->se_window_argv[0], sp->se_window_argv, env); 14658fae3551SRodney W. Grimes stall("can't exec window system '%s' for port %s: %m", 14668fae3551SRodney W. Grimes sp->se_window_argv[0], sp->se_device); 14678fae3551SRodney W. Grimes _exit(1); 14688fae3551SRodney W. Grimes } 14698fae3551SRodney W. Grimes 14708fae3551SRodney W. Grimes /* 14718fae3551SRodney W. Grimes * Start a login session running. 14728fae3551SRodney W. Grimes */ 147345cfb1dcSXin LI static pid_t 147473bf18edSWarner Losh start_getty(session_t *sp) 14758fae3551SRodney W. Grimes { 14768fae3551SRodney W. Grimes pid_t pid; 14778fae3551SRodney W. Grimes sigset_t mask; 14788fae3551SRodney W. Grimes time_t current_time = time((time_t *) 0); 1479228d7ef2SAndrey A. Chernov int too_quick = 0; 1480b5df27e2SAndrey A. Chernov char term[64], *env[2]; 14818fae3551SRodney W. Grimes 1482bb2e87c4SMike Pritchard if (current_time >= sp->se_started && 1483228d7ef2SAndrey A. Chernov current_time - sp->se_started < GETTY_SPACING) { 1484228d7ef2SAndrey A. Chernov if (++sp->se_nspace > GETTY_NSPACE) { 1485228d7ef2SAndrey A. Chernov sp->se_nspace = 0; 1486228d7ef2SAndrey A. Chernov too_quick = 1; 1487228d7ef2SAndrey A. Chernov } 1488228d7ef2SAndrey A. Chernov } else 1489228d7ef2SAndrey A. Chernov sp->se_nspace = 0; 1490228d7ef2SAndrey A. Chernov 14918fae3551SRodney W. Grimes /* 14928fae3551SRodney W. Grimes * fork(), not vfork() -- we can't afford to block. 14938fae3551SRodney W. Grimes */ 14948fae3551SRodney W. Grimes if ((pid = fork()) == -1) { 14958fae3551SRodney W. Grimes emergency("can't fork for getty on port %s: %m", sp->se_device); 14968fae3551SRodney W. Grimes return -1; 14978fae3551SRodney W. Grimes } 14988fae3551SRodney W. Grimes 14998fae3551SRodney W. Grimes if (pid) 15008fae3551SRodney W. Grimes return pid; 15018fae3551SRodney W. Grimes 1502228d7ef2SAndrey A. Chernov if (too_quick) { 1503b5df27e2SAndrey A. Chernov warning("getty repeating too quickly on port %s, sleeping %d secs", 1504b5df27e2SAndrey A. Chernov sp->se_device, GETTY_SLEEP); 15058fae3551SRodney W. Grimes sleep((unsigned) GETTY_SLEEP); 15068fae3551SRodney W. Grimes } 15078fae3551SRodney W. Grimes 15088fae3551SRodney W. Grimes if (sp->se_window) { 15098fae3551SRodney W. Grimes start_window_system(sp); 15108fae3551SRodney W. Grimes sleep(WINDOW_WAIT); 15118fae3551SRodney W. Grimes } 15128fae3551SRodney W. Grimes 15138fae3551SRodney W. Grimes sigemptyset(&mask); 1514d1b1fe3aSEdward Tomasz Napierala sigprocmask(SIG_SETMASK, &mask, NULL); 15158fae3551SRodney W. Grimes 15161ef60eb1SDavid Nugent #ifdef LOGIN_CAP 15171ef60eb1SDavid Nugent setprocresources(RESOURCE_GETTY); 15181ef60eb1SDavid Nugent #endif 1519b5df27e2SAndrey A. Chernov if (sp->se_type) { 1520b5df27e2SAndrey A. Chernov /* Don't use malloc after fork */ 1521b5df27e2SAndrey A. Chernov strcpy(term, "TERM="); 152295595f99SXin LI strlcat(term, sp->se_type, sizeof(term)); 1523b5df27e2SAndrey A. Chernov env[0] = term; 1524be03cfddSEdward Tomasz Napierala env[1] = NULL; 1525091abe40SDavid E. O'Brien } else 1526be03cfddSEdward Tomasz Napierala env[0] = NULL; 1527b5df27e2SAndrey A. Chernov execve(sp->se_getty_argv[0], sp->se_getty_argv, env); 15288fae3551SRodney W. Grimes stall("can't exec getty '%s' for port %s: %m", 15298fae3551SRodney W. Grimes sp->se_getty_argv[0], sp->se_device); 15308fae3551SRodney W. Grimes _exit(1); 15318fae3551SRodney W. Grimes } 15328fae3551SRodney W. Grimes 15338fae3551SRodney W. Grimes /* 15341cde387cSEdward Tomasz Napierala * Return 1 if the session is defined as "onifexists" 15351cde387cSEdward Tomasz Napierala * or "onifconsole" and the device node does not exist. 15361cde387cSEdward Tomasz Napierala */ 15371cde387cSEdward Tomasz Napierala static int 15381cde387cSEdward Tomasz Napierala session_has_no_tty(session_t *sp) 15391cde387cSEdward Tomasz Napierala { 15401cde387cSEdward Tomasz Napierala int fd; 15411cde387cSEdward Tomasz Napierala 15421cde387cSEdward Tomasz Napierala if ((sp->se_flags & SE_IFEXISTS) == 0 && 15431cde387cSEdward Tomasz Napierala (sp->se_flags & SE_IFCONSOLE) == 0) 15441cde387cSEdward Tomasz Napierala return (0); 15451cde387cSEdward Tomasz Napierala 15461cde387cSEdward Tomasz Napierala fd = open(sp->se_device, O_RDONLY | O_NONBLOCK, 0); 15471cde387cSEdward Tomasz Napierala if (fd < 0) { 15481cde387cSEdward Tomasz Napierala if (errno == ENOENT) 15491cde387cSEdward Tomasz Napierala return (1); 15501cde387cSEdward Tomasz Napierala return (0); 15511cde387cSEdward Tomasz Napierala } 15521cde387cSEdward Tomasz Napierala 15531cde387cSEdward Tomasz Napierala close(fd); 15541cde387cSEdward Tomasz Napierala return (0); 15551cde387cSEdward Tomasz Napierala } 15561cde387cSEdward Tomasz Napierala 15571cde387cSEdward Tomasz Napierala /* 15588fae3551SRodney W. Grimes * Collect exit status for a child. 15598fae3551SRodney W. Grimes * If an exiting login, start a new login running. 15608fae3551SRodney W. Grimes */ 156145cfb1dcSXin LI static void 15628fae3551SRodney W. Grimes collect_child(pid_t pid) 15638fae3551SRodney W. Grimes { 15643d438ad6SDavid E. O'Brien session_t *sp, *sprev, *snext; 15658fae3551SRodney W. Grimes 15668fae3551SRodney W. Grimes if (! sessions) 15678fae3551SRodney W. Grimes return; 15688fae3551SRodney W. Grimes 15698fae3551SRodney W. Grimes if (! (sp = find_session(pid))) 15708fae3551SRodney W. Grimes return; 15718fae3551SRodney W. Grimes 15728fae3551SRodney W. Grimes del_session(sp); 15738fae3551SRodney W. Grimes sp->se_process = 0; 15748fae3551SRodney W. Grimes 15751cde387cSEdward Tomasz Napierala if (sp->se_flags & SE_SHUTDOWN || 15761cde387cSEdward Tomasz Napierala session_has_no_tty(sp)) { 15778889c700SDavid Nugent if ((sprev = sp->se_prev) != NULL) 15788fae3551SRodney W. Grimes sprev->se_next = sp->se_next; 15798fae3551SRodney W. Grimes else 15808fae3551SRodney W. Grimes sessions = sp->se_next; 15818889c700SDavid Nugent if ((snext = sp->se_next) != NULL) 15828fae3551SRodney W. Grimes snext->se_prev = sp->se_prev; 15838fae3551SRodney W. Grimes free_session(sp); 15848fae3551SRodney W. Grimes return; 15858fae3551SRodney W. Grimes } 15868fae3551SRodney W. Grimes 15878fae3551SRodney W. Grimes if ((pid = start_getty(sp)) == -1) { 15888fae3551SRodney W. Grimes /* serious trouble */ 15898fae3551SRodney W. Grimes requested_transition = clean_ttys; 15908fae3551SRodney W. Grimes return; 15918fae3551SRodney W. Grimes } 15928fae3551SRodney W. Grimes 15938fae3551SRodney W. Grimes sp->se_process = pid; 15948fae3551SRodney W. Grimes sp->se_started = time((time_t *) 0); 15958fae3551SRodney W. Grimes add_session(sp); 15968fae3551SRodney W. Grimes } 15978fae3551SRodney W. Grimes 15988fae3551SRodney W. Grimes /* 15998fae3551SRodney W. Grimes * Catch a signal and request a state transition. 16008fae3551SRodney W. Grimes */ 160145cfb1dcSXin LI static void 160273bf18edSWarner Losh transition_handler(int sig) 16038fae3551SRodney W. Grimes { 16048fae3551SRodney W. Grimes 16058fae3551SRodney W. Grimes switch (sig) { 16068fae3551SRodney W. Grimes case SIGHUP: 1607acf0ab06SJilles Tjoelker if (current_state == read_ttys || current_state == multi_user || 1608acf0ab06SJilles Tjoelker current_state == clean_ttys || current_state == catatonia) 16098fae3551SRodney W. Grimes requested_transition = clean_ttys; 16108fae3551SRodney W. Grimes break; 1611a0a549c7SRuslan Ermilov case SIGUSR2: 161273c6e0c3SWarner Losh howto = RB_POWEROFF; 1613a0a549c7SRuslan Ermilov case SIGUSR1: 1614a0a549c7SRuslan Ermilov howto |= RB_HALT; 161573c6e0c3SWarner Losh case SIGWINCH: 1616e460cfd3SNate Williams case SIGINT: 161773c6e0c3SWarner Losh if (sig == SIGWINCH) 161873c6e0c3SWarner Losh howto |= RB_POWERCYCLE; 1619db8ad19dSJordan K. Hubbard Reboot = TRUE; 16208fae3551SRodney W. Grimes case SIGTERM: 1621acf0ab06SJilles Tjoelker if (current_state == read_ttys || current_state == multi_user || 1622acf0ab06SJilles Tjoelker current_state == clean_ttys || current_state == catatonia) 16238fae3551SRodney W. Grimes requested_transition = death; 1624acf0ab06SJilles Tjoelker else 1625acf0ab06SJilles Tjoelker requested_transition = death_single; 16268fae3551SRodney W. Grimes break; 16278fae3551SRodney W. Grimes case SIGTSTP: 1628acf0ab06SJilles Tjoelker if (current_state == runcom || current_state == read_ttys || 1629acf0ab06SJilles Tjoelker current_state == clean_ttys || 1630acf0ab06SJilles Tjoelker current_state == multi_user || current_state == catatonia) 16318fae3551SRodney W. Grimes requested_transition = catatonia; 16328fae3551SRodney W. Grimes break; 16333f5ac575SEdward Tomasz Napierala case SIGEMT: 16343f5ac575SEdward Tomasz Napierala requested_transition = reroot; 16353f5ac575SEdward Tomasz Napierala break; 16368fae3551SRodney W. Grimes default: 16378fae3551SRodney W. Grimes requested_transition = 0; 16388fae3551SRodney W. Grimes break; 16398fae3551SRodney W. Grimes } 16408fae3551SRodney W. Grimes } 16418fae3551SRodney W. Grimes 16428fae3551SRodney W. Grimes /* 16438fae3551SRodney W. Grimes * Take the system multiuser. 16448fae3551SRodney W. Grimes */ 164545cfb1dcSXin LI static state_func_t 164673bf18edSWarner Losh multi_user(void) 16478fae3551SRodney W. Grimes { 16488fae3551SRodney W. Grimes pid_t pid; 16493d438ad6SDavid E. O'Brien session_t *sp; 16508fae3551SRodney W. Grimes 16518fae3551SRodney W. Grimes requested_transition = 0; 16528fae3551SRodney W. Grimes 16538fae3551SRodney W. Grimes /* 16548fae3551SRodney W. Grimes * If the administrator has not set the security level to -1 16558fae3551SRodney W. Grimes * to indicate that the kernel should not run multiuser in secure 16568fae3551SRodney W. Grimes * mode, and the run script has not set a higher level of security 16578fae3551SRodney W. Grimes * than level 1, then put the kernel into secure mode. 16588fae3551SRodney W. Grimes */ 16598fae3551SRodney W. Grimes if (getsecuritylevel() == 0) 16608fae3551SRodney W. Grimes setsecuritylevel(1); 16618fae3551SRodney W. Grimes 16628fae3551SRodney W. Grimes for (sp = sessions; sp; sp = sp->se_next) { 16638fae3551SRodney W. Grimes if (sp->se_process) 16648fae3551SRodney W. Grimes continue; 16651cde387cSEdward Tomasz Napierala if (session_has_no_tty(sp)) 16661cde387cSEdward Tomasz Napierala continue; 16678fae3551SRodney W. Grimes if ((pid = start_getty(sp)) == -1) { 16688fae3551SRodney W. Grimes /* serious trouble */ 16698fae3551SRodney W. Grimes requested_transition = clean_ttys; 16708fae3551SRodney W. Grimes break; 16718fae3551SRodney W. Grimes } 16728fae3551SRodney W. Grimes sp->se_process = pid; 16738fae3551SRodney W. Grimes sp->se_started = time((time_t *) 0); 16748fae3551SRodney W. Grimes add_session(sp); 16758fae3551SRodney W. Grimes } 16768fae3551SRodney W. Grimes 16778fae3551SRodney W. Grimes while (!requested_transition) 16788fae3551SRodney W. Grimes if ((pid = waitpid(-1, (int *) 0, 0)) != -1) 16798fae3551SRodney W. Grimes collect_child(pid); 16808fae3551SRodney W. Grimes 16818fae3551SRodney W. Grimes return (state_func_t) requested_transition; 16828fae3551SRodney W. Grimes } 16838fae3551SRodney W. Grimes 16848fae3551SRodney W. Grimes /* 1685b0b670eeSAlfred Perlstein * This is an (n*2)+(n^2) algorithm. We hope it isn't run often... 16868fae3551SRodney W. Grimes */ 168745cfb1dcSXin LI static state_func_t 168873bf18edSWarner Losh clean_ttys(void) 16898fae3551SRodney W. Grimes { 16903d438ad6SDavid E. O'Brien session_t *sp, *sprev; 16913d438ad6SDavid E. O'Brien struct ttyent *typ; 16923d438ad6SDavid E. O'Brien int devlen; 1693b5df27e2SAndrey A. Chernov char *old_getty, *old_window, *old_type; 16948fae3551SRodney W. Grimes 1695b0b670eeSAlfred Perlstein /* 1696b0b670eeSAlfred Perlstein * mark all sessions for death, (!SE_PRESENT) 1697b0b670eeSAlfred Perlstein * as we find or create new ones they'll be marked as keepers, 1698b0b670eeSAlfred Perlstein * we'll later nuke all the ones not found in /etc/ttys 1699b0b670eeSAlfred Perlstein */ 1700b0b670eeSAlfred Perlstein for (sp = sessions; sp != NULL; sp = sp->se_next) 1701b0b670eeSAlfred Perlstein sp->se_flags &= ~SE_PRESENT; 1702b0b670eeSAlfred Perlstein 17038fae3551SRodney W. Grimes devlen = sizeof(_PATH_DEV) - 1; 17048889c700SDavid Nugent while ((typ = getttyent()) != NULL) { 17058fae3551SRodney W. Grimes for (sprev = 0, sp = sessions; sp; sprev = sp, sp = sp->se_next) 17068fae3551SRodney W. Grimes if (strcmp(typ->ty_name, sp->se_device + devlen) == 0) 17078fae3551SRodney W. Grimes break; 17088fae3551SRodney W. Grimes 17098fae3551SRodney W. Grimes if (sp) { 1710b0b670eeSAlfred Perlstein /* we want this one to live */ 1711b0b670eeSAlfred Perlstein sp->se_flags |= SE_PRESENT; 17128fae3551SRodney W. Grimes if ((typ->ty_status & TTY_ON) == 0 || 17138fae3551SRodney W. Grimes typ->ty_getty == 0) { 17148fae3551SRodney W. Grimes sp->se_flags |= SE_SHUTDOWN; 17158fae3551SRodney W. Grimes kill(sp->se_process, SIGHUP); 17168fae3551SRodney W. Grimes continue; 17178fae3551SRodney W. Grimes } 17188fae3551SRodney W. Grimes sp->se_flags &= ~SE_SHUTDOWN; 1719b5df27e2SAndrey A. Chernov old_getty = sp->se_getty ? strdup(sp->se_getty) : 0; 1720b5df27e2SAndrey A. Chernov old_window = sp->se_window ? strdup(sp->se_window) : 0; 1721b5df27e2SAndrey A. Chernov old_type = sp->se_type ? strdup(sp->se_type) : 0; 17228fae3551SRodney W. Grimes if (setupargv(sp, typ) == 0) { 17238fae3551SRodney W. Grimes warning("can't parse getty for port %s", 17248fae3551SRodney W. Grimes sp->se_device); 17258fae3551SRodney W. Grimes sp->se_flags |= SE_SHUTDOWN; 17268fae3551SRodney W. Grimes kill(sp->se_process, SIGHUP); 17278fae3551SRodney W. Grimes } 1728b5df27e2SAndrey A. Chernov else if ( !old_getty 17298889c700SDavid Nugent || (!old_type && sp->se_type) 17308889c700SDavid Nugent || (old_type && !sp->se_type) 17318889c700SDavid Nugent || (!old_window && sp->se_window) 17328889c700SDavid Nugent || (old_window && !sp->se_window) 17338889c700SDavid Nugent || (strcmp(old_getty, sp->se_getty) != 0) 17348889c700SDavid Nugent || (old_window && strcmp(old_window, sp->se_window) != 0) 17358889c700SDavid Nugent || (old_type && strcmp(old_type, sp->se_type) != 0) 1736b5df27e2SAndrey A. Chernov ) { 1737b5df27e2SAndrey A. Chernov /* Don't set SE_SHUTDOWN here */ 1738b5df27e2SAndrey A. Chernov sp->se_nspace = 0; 1739b5df27e2SAndrey A. Chernov sp->se_started = 0; 1740b5df27e2SAndrey A. Chernov kill(sp->se_process, SIGHUP); 1741b5df27e2SAndrey A. Chernov } 1742b5df27e2SAndrey A. Chernov if (old_getty) 1743b5df27e2SAndrey A. Chernov free(old_getty); 17442d887af5SMike Heffner if (old_window) 1745b5df27e2SAndrey A. Chernov free(old_window); 1746b5df27e2SAndrey A. Chernov if (old_type) 1747b5df27e2SAndrey A. Chernov free(old_type); 17488fae3551SRodney W. Grimes continue; 17498fae3551SRodney W. Grimes } 17508fae3551SRodney W. Grimes 17510b57dd6bSJilles Tjoelker new_session(sprev, typ); 17528fae3551SRodney W. Grimes } 17538fae3551SRodney W. Grimes 17548fae3551SRodney W. Grimes endttyent(); 17558fae3551SRodney W. Grimes 1756b0b670eeSAlfred Perlstein /* 1757b0b670eeSAlfred Perlstein * sweep through and kill all deleted sessions 1758b0b670eeSAlfred Perlstein * ones who's /etc/ttys line was deleted (SE_PRESENT unset) 1759b0b670eeSAlfred Perlstein */ 1760b0b670eeSAlfred Perlstein for (sp = sessions; sp != NULL; sp = sp->se_next) { 1761b0b670eeSAlfred Perlstein if ((sp->se_flags & SE_PRESENT) == 0) { 1762b0b670eeSAlfred Perlstein sp->se_flags |= SE_SHUTDOWN; 1763b0b670eeSAlfred Perlstein kill(sp->se_process, SIGHUP); 1764b0b670eeSAlfred Perlstein } 1765b0b670eeSAlfred Perlstein } 1766b0b670eeSAlfred Perlstein 17678fae3551SRodney W. Grimes return (state_func_t) multi_user; 17688fae3551SRodney W. Grimes } 17698fae3551SRodney W. Grimes 17708fae3551SRodney W. Grimes /* 17718fae3551SRodney W. Grimes * Block further logins. 17728fae3551SRodney W. Grimes */ 177345cfb1dcSXin LI static state_func_t 177473bf18edSWarner Losh catatonia(void) 17758fae3551SRodney W. Grimes { 17763d438ad6SDavid E. O'Brien session_t *sp; 17778fae3551SRodney W. Grimes 17788fae3551SRodney W. Grimes for (sp = sessions; sp; sp = sp->se_next) 17798fae3551SRodney W. Grimes sp->se_flags |= SE_SHUTDOWN; 17808fae3551SRodney W. Grimes 17818fae3551SRodney W. Grimes return (state_func_t) multi_user; 17828fae3551SRodney W. Grimes } 17838fae3551SRodney W. Grimes 17848fae3551SRodney W. Grimes /* 17858fae3551SRodney W. Grimes * Note SIGALRM. 17868fae3551SRodney W. Grimes */ 178745cfb1dcSXin LI static void 178873bf18edSWarner Losh alrm_handler(int sig) 17898fae3551SRodney W. Grimes { 1790091abe40SDavid E. O'Brien 17918889c700SDavid Nugent (void)sig; 17928fae3551SRodney W. Grimes clang = 1; 17938fae3551SRodney W. Grimes } 17948fae3551SRodney W. Grimes 17958fae3551SRodney W. Grimes /* 17968fae3551SRodney W. Grimes * Bring the system down to single user. 17978fae3551SRodney W. Grimes */ 179845cfb1dcSXin LI static state_func_t 179973bf18edSWarner Losh death(void) 18008fae3551SRodney W. Grimes { 18012eb0015aSColin Percival int block, blocked; 18022eb0015aSColin Percival size_t len; 18032eb0015aSColin Percival 18042eb0015aSColin Percival /* Temporarily block suspend. */ 18052eb0015aSColin Percival len = sizeof(blocked); 18062eb0015aSColin Percival block = 1; 18072eb0015aSColin Percival if (sysctlbyname("kern.suspend_blocked", &blocked, &len, 18082eb0015aSColin Percival &block, sizeof(block)) == -1) 18092eb0015aSColin Percival blocked = 0; 18108fae3551SRodney W. Grimes 18114ae35b5dSEd Schouten /* 18124ae35b5dSEd Schouten * Also revoke the TTY here. Because runshutdown() may reopen 18134ae35b5dSEd Schouten * the TTY whose getty we're killing here, there is no guarantee 18144ae35b5dSEd Schouten * runshutdown() will perform the initial open() call, causing 18154ae35b5dSEd Schouten * the terminal attributes to be misconfigured. 18164ae35b5dSEd Schouten */ 18173f5ac575SEdward Tomasz Napierala revoke_ttys(); 18188fae3551SRodney W. Grimes 18198889c700SDavid Nugent /* Try to run the rc.shutdown script within a period of time */ 1820091abe40SDavid E. O'Brien runshutdown(); 18218889c700SDavid Nugent 18222eb0015aSColin Percival /* Unblock suspend if we blocked it. */ 18232eb0015aSColin Percival if (!blocked) 18242eb0015aSColin Percival sysctlbyname("kern.suspend_blocked", NULL, NULL, 18252eb0015aSColin Percival &blocked, sizeof(blocked)); 18262eb0015aSColin Percival 1827acf0ab06SJilles Tjoelker return (state_func_t) death_single; 1828acf0ab06SJilles Tjoelker } 1829acf0ab06SJilles Tjoelker 1830acf0ab06SJilles Tjoelker /* 1831acf0ab06SJilles Tjoelker * Do what is necessary to reinitialize single user mode or reboot 1832acf0ab06SJilles Tjoelker * from an incomplete state. 1833acf0ab06SJilles Tjoelker */ 1834acf0ab06SJilles Tjoelker static state_func_t 1835acf0ab06SJilles Tjoelker death_single(void) 1836acf0ab06SJilles Tjoelker { 1837acf0ab06SJilles Tjoelker int i; 1838acf0ab06SJilles Tjoelker pid_t pid; 1839acf0ab06SJilles Tjoelker static const int death_sigs[2] = { SIGTERM, SIGKILL }; 1840acf0ab06SJilles Tjoelker 1841acf0ab06SJilles Tjoelker revoke(_PATH_CONSOLE); 1842acf0ab06SJilles Tjoelker 1843c3d7c52eSAndrey A. Chernov for (i = 0; i < 2; ++i) { 18448fae3551SRodney W. Grimes if (kill(-1, death_sigs[i]) == -1 && errno == ESRCH) 18458fae3551SRodney W. Grimes return (state_func_t) single_user; 18468fae3551SRodney W. Grimes 18478fae3551SRodney W. Grimes clang = 0; 18488fae3551SRodney W. Grimes alarm(DEATH_WATCH); 18498fae3551SRodney W. Grimes do 18508fae3551SRodney W. Grimes if ((pid = waitpid(-1, (int *)0, 0)) != -1) 18518fae3551SRodney W. Grimes collect_child(pid); 18528fae3551SRodney W. Grimes while (clang == 0 && errno != ECHILD); 18538fae3551SRodney W. Grimes 18548fae3551SRodney W. Grimes if (errno == ECHILD) 18558fae3551SRodney W. Grimes return (state_func_t) single_user; 18568fae3551SRodney W. Grimes } 18578fae3551SRodney W. Grimes 18588fae3551SRodney W. Grimes warning("some processes would not die; ps axl advised"); 18598fae3551SRodney W. Grimes 18608fae3551SRodney W. Grimes return (state_func_t) single_user; 18618fae3551SRodney W. Grimes } 18628889c700SDavid Nugent 18633f5ac575SEdward Tomasz Napierala static void 18643f5ac575SEdward Tomasz Napierala revoke_ttys(void) 18653f5ac575SEdward Tomasz Napierala { 18663f5ac575SEdward Tomasz Napierala session_t *sp; 18673f5ac575SEdward Tomasz Napierala 18683f5ac575SEdward Tomasz Napierala for (sp = sessions; sp; sp = sp->se_next) { 18693f5ac575SEdward Tomasz Napierala sp->se_flags |= SE_SHUTDOWN; 18703f5ac575SEdward Tomasz Napierala kill(sp->se_process, SIGHUP); 18713f5ac575SEdward Tomasz Napierala revoke(sp->se_device); 18723f5ac575SEdward Tomasz Napierala } 18733f5ac575SEdward Tomasz Napierala } 18743f5ac575SEdward Tomasz Napierala 18758889c700SDavid Nugent /* 18768889c700SDavid Nugent * Run the system shutdown script. 18778889c700SDavid Nugent * 18788889c700SDavid Nugent * Exit codes: XXX I should document more 18798889c700SDavid Nugent * -2 shutdown script terminated abnormally 18808889c700SDavid Nugent * -1 fatal error - can't run script 18818889c700SDavid Nugent * 0 good. 18828889c700SDavid Nugent * >0 some error (exit code) 18838889c700SDavid Nugent */ 188445cfb1dcSXin LI static int 188573bf18edSWarner Losh runshutdown(void) 18868889c700SDavid Nugent { 18878889c700SDavid Nugent pid_t pid, wpid; 1888f3c4a698SEdward Tomasz Napierala int status; 18898889c700SDavid Nugent int shutdowntimeout; 18908889c700SDavid Nugent size_t len; 1891a69497d7SMatthew Dillon char *argv[4]; 189286bf62dcSDavid Nugent struct stat sb; 189386bf62dcSDavid Nugent 189486bf62dcSDavid Nugent /* 189586bf62dcSDavid Nugent * rc.shutdown is optional, so to prevent any unnecessary 189686bf62dcSDavid Nugent * complaints from the shell we simply don't run it if the 189786bf62dcSDavid Nugent * file does not exist. If the stat() here fails for other 189886bf62dcSDavid Nugent * reasons, we'll let the shell complain. 189986bf62dcSDavid Nugent */ 190086bf62dcSDavid Nugent if (stat(_PATH_RUNDOWN, &sb) == -1 && errno == ENOENT) 190186bf62dcSDavid Nugent return 0; 19028889c700SDavid Nugent 19038889c700SDavid Nugent if ((pid = fork()) == 0) { 1904ab03e6d5SXin LI char _sh[] = "sh"; 1905ab03e6d5SXin LI char _reboot[] = "reboot"; 1906ab03e6d5SXin LI char _single[] = "single"; 1907ab03e6d5SXin LI char _path_rundown[] = _PATH_RUNDOWN; 1908ab03e6d5SXin LI 1909ab03e6d5SXin LI argv[0] = _sh; 1910ab03e6d5SXin LI argv[1] = _path_rundown; 1911ab03e6d5SXin LI argv[2] = Reboot ? _reboot : _single; 1912be03cfddSEdward Tomasz Napierala argv[3] = NULL; 19138889c700SDavid Nugent 1914f3c4a698SEdward Tomasz Napierala execute_script(argv); 19158889c700SDavid Nugent _exit(1); /* force single user mode */ 19168889c700SDavid Nugent } 19178889c700SDavid Nugent 19188889c700SDavid Nugent if (pid == -1) { 1919f3c4a698SEdward Tomasz Napierala emergency("can't fork for %s: %m", _PATH_RUNDOWN); 19208889c700SDavid Nugent while (waitpid(-1, (int *) 0, WNOHANG) > 0) 19218889c700SDavid Nugent continue; 19228889c700SDavid Nugent sleep(STALL_TIMEOUT); 19238889c700SDavid Nugent return -1; 19248889c700SDavid Nugent } 19258889c700SDavid Nugent 19268889c700SDavid Nugent len = sizeof(shutdowntimeout); 1927091abe40SDavid E. O'Brien if (sysctlbyname("kern.init_shutdown_timeout", &shutdowntimeout, &len, 1928091abe40SDavid E. O'Brien NULL, 0) == -1 || shutdowntimeout < 2) 19298889c700SDavid Nugent shutdowntimeout = DEATH_SCRIPT; 19308889c700SDavid Nugent alarm(shutdowntimeout); 19318889c700SDavid Nugent clang = 0; 19328889c700SDavid Nugent /* 19338889c700SDavid Nugent * Copied from single_user(). This is a bit paranoid. 19348889c700SDavid Nugent * Use the same ALRM handler. 19358889c700SDavid Nugent */ 19368889c700SDavid Nugent do { 19378889c700SDavid Nugent if ((wpid = waitpid(-1, &status, WUNTRACED)) != -1) 19388889c700SDavid Nugent collect_child(wpid); 19398889c700SDavid Nugent if (clang == 1) { 19408889c700SDavid Nugent /* we were waiting for the sub-shell */ 19418889c700SDavid Nugent kill(wpid, SIGTERM); 1942f3c4a698SEdward Tomasz Napierala warning("timeout expired for %s: %m; going to " 1943f3c4a698SEdward Tomasz Napierala "single user mode", _PATH_RUNDOWN); 19448889c700SDavid Nugent return -1; 19458889c700SDavid Nugent } 19468889c700SDavid Nugent if (wpid == -1) { 19478889c700SDavid Nugent if (errno == EINTR) 19488889c700SDavid Nugent continue; 1949f3c4a698SEdward Tomasz Napierala warning("wait for %s failed: %m; going to " 1950f3c4a698SEdward Tomasz Napierala "single user mode", _PATH_RUNDOWN); 19518889c700SDavid Nugent return -1; 19528889c700SDavid Nugent } 19538889c700SDavid Nugent if (wpid == pid && WIFSTOPPED(status)) { 1954f3c4a698SEdward Tomasz Napierala warning("init: %s stopped, restarting\n", 1955f3c4a698SEdward Tomasz Napierala _PATH_RUNDOWN); 19568889c700SDavid Nugent kill(pid, SIGCONT); 19578889c700SDavid Nugent wpid = -1; 19588889c700SDavid Nugent } 19598889c700SDavid Nugent } while (wpid != pid && !clang); 19608889c700SDavid Nugent 19618889c700SDavid Nugent /* Turn off the alarm */ 19628889c700SDavid Nugent alarm(0); 19638889c700SDavid Nugent 19648889c700SDavid Nugent if (WIFSIGNALED(status) && WTERMSIG(status) == SIGTERM && 19658889c700SDavid Nugent requested_transition == catatonia) { 19668889c700SDavid Nugent /* 19678889c700SDavid Nugent * /etc/rc.shutdown executed /sbin/reboot; 19688889c700SDavid Nugent * wait for the end quietly 19698889c700SDavid Nugent */ 19708889c700SDavid Nugent sigset_t s; 19718889c700SDavid Nugent 19728889c700SDavid Nugent sigfillset(&s); 19738889c700SDavid Nugent for (;;) 19748889c700SDavid Nugent sigsuspend(&s); 19758889c700SDavid Nugent } 19768889c700SDavid Nugent 19778889c700SDavid Nugent if (!WIFEXITED(status)) { 1978f3c4a698SEdward Tomasz Napierala warning("%s terminated abnormally, going to " 1979f3c4a698SEdward Tomasz Napierala "single user mode", _PATH_RUNDOWN); 19808889c700SDavid Nugent return -2; 19818889c700SDavid Nugent } 19828889c700SDavid Nugent 19838889c700SDavid Nugent if ((status = WEXITSTATUS(status)) != 0) 19848889c700SDavid Nugent warning("%s returned status %d", _PATH_RUNDOWN, status); 19858889c700SDavid Nugent 19868889c700SDavid Nugent return status; 19878889c700SDavid Nugent } 19888889c700SDavid Nugent 1989ab03e6d5SXin LI static char * 199081ab7fb2SAndrey A. Chernov strk(char *p) 199181ab7fb2SAndrey A. Chernov { 199281ab7fb2SAndrey A. Chernov static char *t; 199381ab7fb2SAndrey A. Chernov char *q; 199481ab7fb2SAndrey A. Chernov int c; 199581ab7fb2SAndrey A. Chernov 199681ab7fb2SAndrey A. Chernov if (p) 199781ab7fb2SAndrey A. Chernov t = p; 199881ab7fb2SAndrey A. Chernov if (!t) 199981ab7fb2SAndrey A. Chernov return 0; 200081ab7fb2SAndrey A. Chernov 200181ab7fb2SAndrey A. Chernov c = *t; 200281ab7fb2SAndrey A. Chernov while (c == ' ' || c == '\t' ) 200381ab7fb2SAndrey A. Chernov c = *++t; 200481ab7fb2SAndrey A. Chernov if (!c) { 200581ab7fb2SAndrey A. Chernov t = 0; 200681ab7fb2SAndrey A. Chernov return 0; 200781ab7fb2SAndrey A. Chernov } 200881ab7fb2SAndrey A. Chernov q = t; 200981ab7fb2SAndrey A. Chernov if (c == '\'') { 201081ab7fb2SAndrey A. Chernov c = *++t; 201181ab7fb2SAndrey A. Chernov q = t; 201281ab7fb2SAndrey A. Chernov while (c && c != '\'') 201381ab7fb2SAndrey A. Chernov c = *++t; 201481ab7fb2SAndrey A. Chernov if (!c) /* unterminated string */ 201581ab7fb2SAndrey A. Chernov q = t = 0; 201681ab7fb2SAndrey A. Chernov else 201781ab7fb2SAndrey A. Chernov *t++ = 0; 201881ab7fb2SAndrey A. Chernov } else { 201981ab7fb2SAndrey A. Chernov while (c && c != ' ' && c != '\t' ) 202081ab7fb2SAndrey A. Chernov c = *++t; 202181ab7fb2SAndrey A. Chernov *t++ = 0; 202281ab7fb2SAndrey A. Chernov if (!c) 202381ab7fb2SAndrey A. Chernov t = 0; 202481ab7fb2SAndrey A. Chernov } 202581ab7fb2SAndrey A. Chernov return q; 202681ab7fb2SAndrey A. Chernov } 20271ef60eb1SDavid Nugent 20281ef60eb1SDavid Nugent #ifdef LOGIN_CAP 202945cfb1dcSXin LI static void 203073bf18edSWarner Losh setprocresources(const char *cname) 20311ef60eb1SDavid Nugent { 2032e82d5545SDavid Nugent login_cap_t *lc; 2033a2ee73bcSAndrey A. Chernov if ((lc = login_getclassbyname(cname, NULL)) != NULL) { 2034091abe40SDavid E. O'Brien setusercontext(lc, (struct passwd*)NULL, 0, 203521c1a93cSKyle Evans LOGIN_SETENV | 2036595ab563SJilles Tjoelker LOGIN_SETPRIORITY | LOGIN_SETRESOURCES | 2037595ab563SJilles Tjoelker LOGIN_SETLOGINCLASS | LOGIN_SETCPUMASK); 20381ef60eb1SDavid Nugent login_close(lc); 20391ef60eb1SDavid Nugent } 20401ef60eb1SDavid Nugent } 20411ef60eb1SDavid Nugent #endif 2042