1 /*- 2 * Copyright (c) 1982, 1986, 1989, 1993 3 * The Regents of the University of California. All rights reserved. 4 * 5 * This code is derived from software contributed to Berkeley by 6 * Mike Karels at Berkeley Software Design, Inc. 7 * 8 * Quite extensively rewritten by Poul-Henning Kamp of the FreeBSD 9 * project, to make these variables more userfriendly. 10 * 11 * Redistribution and use in source and binary forms, with or without 12 * modification, are permitted provided that the following conditions 13 * are met: 14 * 1. Redistributions of source code must retain the above copyright 15 * notice, this list of conditions and the following disclaimer. 16 * 2. Redistributions in binary form must reproduce the above copyright 17 * notice, this list of conditions and the following disclaimer in the 18 * documentation and/or other materials provided with the distribution. 19 * 4. Neither the name of the University nor the names of its contributors 20 * may be used to endorse or promote products derived from this software 21 * without specific prior written permission. 22 * 23 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND 24 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 25 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 26 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE 27 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 28 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 29 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 30 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 31 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 32 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 33 * SUCH DAMAGE. 34 * 35 * @(#)kern_sysctl.c 8.4 (Berkeley) 4/14/94 36 */ 37 38 #include <sys/cdefs.h> 39 __FBSDID("$FreeBSD$"); 40 41 #include "opt_posix.h" 42 #include "opt_config.h" 43 44 #include <sys/param.h> 45 #include <sys/kernel.h> 46 #include <sys/sbuf.h> 47 #include <sys/systm.h> 48 #include <sys/sysctl.h> 49 #include <sys/proc.h> 50 #include <sys/lock.h> 51 #include <sys/mutex.h> 52 #include <sys/jail.h> 53 #include <sys/smp.h> 54 #include <sys/unistd.h> 55 56 SYSCTL_NODE(, 0, sysctl, CTLFLAG_RW, 0, 57 "Sysctl internal magic"); 58 SYSCTL_NODE(, CTL_KERN, kern, CTLFLAG_RW, 0, 59 "High kernel, proc, limits &c"); 60 SYSCTL_NODE(, CTL_VM, vm, CTLFLAG_RW, 0, 61 "Virtual memory"); 62 SYSCTL_NODE(, CTL_VFS, vfs, CTLFLAG_RW, 0, 63 "File system"); 64 SYSCTL_NODE(, CTL_NET, net, CTLFLAG_RW, 0, 65 "Network, (see socket.h)"); 66 SYSCTL_NODE(, CTL_DEBUG, debug, CTLFLAG_RW, 0, 67 "Debugging"); 68 SYSCTL_NODE(_debug, OID_AUTO, sizeof, CTLFLAG_RW, 0, 69 "Sizeof various things"); 70 SYSCTL_NODE(, CTL_HW, hw, CTLFLAG_RW, 0, 71 "hardware"); 72 SYSCTL_NODE(, CTL_MACHDEP, machdep, CTLFLAG_RW, 0, 73 "machine dependent"); 74 SYSCTL_NODE(, CTL_USER, user, CTLFLAG_RW, 0, 75 "user-level"); 76 SYSCTL_NODE(, CTL_P1003_1B, p1003_1b, CTLFLAG_RW, 0, 77 "p1003_1b, (see p1003_1b.h)"); 78 79 SYSCTL_NODE(, OID_AUTO, compat, CTLFLAG_RW, 0, 80 "Compatibility code"); 81 SYSCTL_NODE(, OID_AUTO, security, CTLFLAG_RW, 0, 82 "Security"); 83 #ifdef REGRESSION 84 SYSCTL_NODE(, OID_AUTO, regression, CTLFLAG_RW, 0, 85 "Regression test MIB"); 86 #endif 87 88 SYSCTL_STRING(_kern, OID_AUTO, ident, CTLFLAG_RD, 89 kern_ident, 0, "Kernel identifier"); 90 91 SYSCTL_STRING(_kern, KERN_OSRELEASE, osrelease, CTLFLAG_RD, 92 osrelease, 0, "Operating system release"); 93 94 SYSCTL_INT(_kern, KERN_OSREV, osrevision, CTLFLAG_RD, 95 0, BSD, "Operating system revision"); 96 97 SYSCTL_STRING(_kern, KERN_VERSION, version, CTLFLAG_RD, 98 version, 0, "Kernel version"); 99 100 SYSCTL_STRING(_kern, KERN_OSTYPE, ostype, CTLFLAG_RD, 101 ostype, 0, "Operating system type"); 102 103 /* 104 * NOTICE: The *userland* release date is available in 105 * /usr/include/osreldate.h 106 */ 107 SYSCTL_INT(_kern, KERN_OSRELDATE, osreldate, CTLFLAG_RD, 108 &osreldate, 0, "Kernel release date"); 109 110 SYSCTL_INT(_kern, KERN_MAXPROC, maxproc, CTLFLAG_RDTUN, 111 &maxproc, 0, "Maximum number of processes"); 112 113 SYSCTL_INT(_kern, KERN_MAXPROCPERUID, maxprocperuid, CTLFLAG_RW, 114 &maxprocperuid, 0, "Maximum processes allowed per userid"); 115 116 SYSCTL_INT(_kern, OID_AUTO, maxusers, CTLFLAG_RDTUN, 117 &maxusers, 0, "Hint for kernel tuning"); 118 119 SYSCTL_INT(_kern, KERN_ARGMAX, argmax, CTLFLAG_RD, 120 0, ARG_MAX, "Maximum bytes of argument to execve(2)"); 121 122 SYSCTL_INT(_kern, KERN_POSIX1, posix1version, CTLFLAG_RD, 123 0, _POSIX_VERSION, "Version of POSIX attempting to comply to"); 124 125 SYSCTL_INT(_kern, KERN_NGROUPS, ngroups, CTLFLAG_RD, 126 0, NGROUPS_MAX, "Maximum number of groups a user can belong to"); 127 128 SYSCTL_INT(_kern, KERN_JOB_CONTROL, job_control, CTLFLAG_RD, 129 0, 1, "Whether job control is available"); 130 131 #ifdef _POSIX_SAVED_IDS 132 SYSCTL_INT(_kern, KERN_SAVED_IDS, saved_ids, CTLFLAG_RD, 133 0, 1, "Whether saved set-group/user ID is available"); 134 #else 135 SYSCTL_INT(_kern, KERN_SAVED_IDS, saved_ids, CTLFLAG_RD, 136 0, 0, "Whether saved set-group/user ID is available"); 137 #endif 138 139 char kernelname[MAXPATHLEN] = "/kernel"; /* XXX bloat */ 140 141 SYSCTL_STRING(_kern, KERN_BOOTFILE, bootfile, CTLFLAG_RW, 142 kernelname, sizeof kernelname, "Name of kernel file booted"); 143 144 SYSCTL_INT(_hw, HW_NCPU, ncpu, CTLFLAG_RD, 145 &mp_ncpus, 0, "Number of active CPUs"); 146 147 SYSCTL_INT(_hw, HW_BYTEORDER, byteorder, CTLFLAG_RD, 148 0, BYTE_ORDER, "System byte order"); 149 150 SYSCTL_INT(_hw, HW_PAGESIZE, pagesize, CTLFLAG_RD, 151 0, PAGE_SIZE, "System memory page size"); 152 153 static int 154 sysctl_kern_arnd(SYSCTL_HANDLER_ARGS) 155 { 156 u_long val; 157 158 arc4rand(&val, sizeof(val), 0); 159 return (sysctl_handle_long(oidp, &val, 0, req)); 160 } 161 162 SYSCTL_PROC(_kern, KERN_ARND, arandom, CTLFLAG_RD, 163 0, 0, sysctl_kern_arnd, "L", "arc4rand"); 164 165 static int 166 sysctl_hw_physmem(SYSCTL_HANDLER_ARGS) 167 { 168 u_long val; 169 170 val = ctob(physmem); 171 return (sysctl_handle_long(oidp, &val, 0, req)); 172 } 173 174 SYSCTL_PROC(_hw, HW_PHYSMEM, physmem, CTLTYPE_ULONG | CTLFLAG_RD, 175 0, 0, sysctl_hw_physmem, "LU", ""); 176 177 static int 178 sysctl_hw_realmem(SYSCTL_HANDLER_ARGS) 179 { 180 u_long val; 181 val = ctob(realmem); 182 return (sysctl_handle_long(oidp, &val, 0, req)); 183 } 184 SYSCTL_PROC(_hw, HW_REALMEM, realmem, CTLTYPE_ULONG | CTLFLAG_RD, 185 0, 0, sysctl_hw_realmem, "LU", ""); 186 static int 187 sysctl_hw_usermem(SYSCTL_HANDLER_ARGS) 188 { 189 u_long val; 190 191 val = ctob(physmem - cnt.v_wire_count); 192 return (sysctl_handle_long(oidp, &val, 0, req)); 193 } 194 195 SYSCTL_PROC(_hw, HW_USERMEM, usermem, CTLTYPE_ULONG | CTLFLAG_RD, 196 0, 0, sysctl_hw_usermem, "LU", ""); 197 198 SYSCTL_ULONG(_hw, OID_AUTO, availpages, CTLFLAG_RD, &physmem, 0, ""); 199 200 static char machine_arch[] = MACHINE_ARCH; 201 SYSCTL_STRING(_hw, HW_MACHINE_ARCH, machine_arch, CTLFLAG_RD, 202 machine_arch, 0, "System architecture"); 203 204 char hostname[MAXHOSTNAMELEN]; 205 206 static int 207 sysctl_hostname(SYSCTL_HANDLER_ARGS) 208 { 209 struct prison *pr; 210 char tmphostname[MAXHOSTNAMELEN]; 211 int error; 212 213 pr = req->td->td_ucred->cr_prison; 214 if (pr != NULL) { 215 if (!jail_set_hostname_allowed && req->newptr) 216 return (EPERM); 217 /* 218 * Process is in jail, so make a local copy of jail 219 * hostname to get/set so we don't have to hold the jail 220 * mutex during the sysctl copyin/copyout activities. 221 */ 222 mtx_lock(&pr->pr_mtx); 223 bcopy(pr->pr_host, tmphostname, MAXHOSTNAMELEN); 224 mtx_unlock(&pr->pr_mtx); 225 226 error = sysctl_handle_string(oidp, tmphostname, 227 sizeof pr->pr_host, req); 228 229 if (req->newptr != NULL && error == 0) { 230 /* 231 * Copy the locally set hostname to the jail, if 232 * appropriate. 233 */ 234 mtx_lock(&pr->pr_mtx); 235 bcopy(tmphostname, pr->pr_host, MAXHOSTNAMELEN); 236 mtx_unlock(&pr->pr_mtx); 237 } 238 } else 239 error = sysctl_handle_string(oidp, 240 hostname, sizeof hostname, req); 241 return (error); 242 } 243 244 SYSCTL_PROC(_kern, KERN_HOSTNAME, hostname, 245 CTLTYPE_STRING|CTLFLAG_RW|CTLFLAG_PRISON, 246 0, 0, sysctl_hostname, "A", "Hostname"); 247 248 static int regression_securelevel_nonmonotonic = 0; 249 250 #ifdef REGRESSION 251 SYSCTL_INT(_regression, OID_AUTO, securelevel_nonmonotonic, CTLFLAG_RW, 252 ®ression_securelevel_nonmonotonic, 0, "securelevel may be lowered"); 253 #endif 254 255 int securelevel = -1; 256 static struct mtx securelevel_mtx; 257 258 MTX_SYSINIT(securelevel_lock, &securelevel_mtx, "securelevel mutex lock", 259 MTX_DEF); 260 261 static int 262 sysctl_kern_securelvl(SYSCTL_HANDLER_ARGS) 263 { 264 struct prison *pr; 265 int error, level; 266 267 pr = req->td->td_ucred->cr_prison; 268 269 /* 270 * If the process is in jail, return the maximum of the global and 271 * local levels; otherwise, return the global level. Perform a 272 * lockless read since the securelevel is an integer. 273 */ 274 if (pr != NULL) 275 level = imax(securelevel, pr->pr_securelevel); 276 else 277 level = securelevel; 278 error = sysctl_handle_int(oidp, &level, 0, req); 279 if (error || !req->newptr) 280 return (error); 281 /* 282 * Permit update only if the new securelevel exceeds the 283 * global level, and local level if any. 284 */ 285 if (pr != NULL) { 286 mtx_lock(&pr->pr_mtx); 287 if (!regression_securelevel_nonmonotonic && 288 (level < imax(securelevel, pr->pr_securelevel))) { 289 mtx_unlock(&pr->pr_mtx); 290 return (EPERM); 291 } 292 pr->pr_securelevel = level; 293 mtx_unlock(&pr->pr_mtx); 294 } else { 295 mtx_lock(&securelevel_mtx); 296 if (!regression_securelevel_nonmonotonic && 297 (level < securelevel)) { 298 mtx_unlock(&securelevel_mtx); 299 return (EPERM); 300 } 301 securelevel = level; 302 mtx_unlock(&securelevel_mtx); 303 } 304 return (error); 305 } 306 307 SYSCTL_PROC(_kern, KERN_SECURELVL, securelevel, 308 CTLTYPE_INT|CTLFLAG_RW|CTLFLAG_PRISON, 0, 0, sysctl_kern_securelvl, 309 "I", "Current secure level"); 310 311 #ifdef INCLUDE_CONFIG_FILE 312 /* Actual kernel configuration options. */ 313 extern char kernconfstring[]; 314 315 static int 316 sysctl_kern_config(SYSCTL_HANDLER_ARGS) 317 { 318 return (sysctl_handle_string(oidp, kernconfstring, 319 strlen(kernconfstring), req)); 320 } 321 322 SYSCTL_PROC(_kern, OID_AUTO, conftxt, CTLTYPE_STRING|CTLFLAG_RW, 323 0, 0, sysctl_kern_config, "", "Kernel configuration file"); 324 #endif 325 326 char domainname[MAXHOSTNAMELEN]; 327 SYSCTL_STRING(_kern, KERN_NISDOMAINNAME, domainname, CTLFLAG_RW, 328 &domainname, sizeof(domainname), "Name of the current YP/NIS domain"); 329 330 u_long hostid; 331 SYSCTL_ULONG(_kern, KERN_HOSTID, hostid, CTLFLAG_RW, &hostid, 0, "Host ID"); 332 char hostuuid[64] = "00000000-0000-0000-0000-000000000000"; 333 SYSCTL_STRING(_kern, KERN_HOSTUUID, hostuuid, CTLFLAG_RW, hostuuid, 334 sizeof(hostuuid), "Host UUID"); 335 336 SYSCTL_NODE(_kern, OID_AUTO, features, CTLFLAG_RD, 0, "Kernel Features"); 337 338 /* 339 * This is really cheating. These actually live in the libc, something 340 * which I'm not quite sure is a good idea anyway, but in order for 341 * getnext and friends to actually work, we define dummies here. 342 */ 343 SYSCTL_STRING(_user, USER_CS_PATH, cs_path, CTLFLAG_RD, 344 "", 0, "PATH that finds all the standard utilities"); 345 SYSCTL_INT(_user, USER_BC_BASE_MAX, bc_base_max, CTLFLAG_RD, 346 0, 0, "Max ibase/obase values in bc(1)"); 347 SYSCTL_INT(_user, USER_BC_DIM_MAX, bc_dim_max, CTLFLAG_RD, 348 0, 0, "Max array size in bc(1)"); 349 SYSCTL_INT(_user, USER_BC_SCALE_MAX, bc_scale_max, CTLFLAG_RD, 350 0, 0, "Max scale value in bc(1)"); 351 SYSCTL_INT(_user, USER_BC_STRING_MAX, bc_string_max, CTLFLAG_RD, 352 0, 0, "Max string length in bc(1)"); 353 SYSCTL_INT(_user, USER_COLL_WEIGHTS_MAX, coll_weights_max, CTLFLAG_RD, 354 0, 0, "Maximum number of weights assigned to an LC_COLLATE locale entry"); 355 SYSCTL_INT(_user, USER_EXPR_NEST_MAX, expr_nest_max, CTLFLAG_RD, 0, 0, ""); 356 SYSCTL_INT(_user, USER_LINE_MAX, line_max, CTLFLAG_RD, 357 0, 0, "Max length (bytes) of a text-processing utility's input line"); 358 SYSCTL_INT(_user, USER_RE_DUP_MAX, re_dup_max, CTLFLAG_RD, 359 0, 0, "Maximum number of repeats of a regexp permitted"); 360 SYSCTL_INT(_user, USER_POSIX2_VERSION, posix2_version, CTLFLAG_RD, 361 0, 0, 362 "The version of POSIX 1003.2 with which the system attempts to comply"); 363 SYSCTL_INT(_user, USER_POSIX2_C_BIND, posix2_c_bind, CTLFLAG_RD, 364 0, 0, "Whether C development supports the C bindings option"); 365 SYSCTL_INT(_user, USER_POSIX2_C_DEV, posix2_c_dev, CTLFLAG_RD, 366 0, 0, "Whether system supports the C development utilities option"); 367 SYSCTL_INT(_user, USER_POSIX2_CHAR_TERM, posix2_char_term, CTLFLAG_RD, 368 0, 0, ""); 369 SYSCTL_INT(_user, USER_POSIX2_FORT_DEV, posix2_fort_dev, CTLFLAG_RD, 370 0, 0, "Whether system supports FORTRAN development utilities"); 371 SYSCTL_INT(_user, USER_POSIX2_FORT_RUN, posix2_fort_run, CTLFLAG_RD, 372 0, 0, "Whether system supports FORTRAN runtime utilities"); 373 SYSCTL_INT(_user, USER_POSIX2_LOCALEDEF, posix2_localedef, CTLFLAG_RD, 374 0, 0, "Whether system supports creation of locales"); 375 SYSCTL_INT(_user, USER_POSIX2_SW_DEV, posix2_sw_dev, CTLFLAG_RD, 376 0, 0, "Whether system supports software development utilities"); 377 SYSCTL_INT(_user, USER_POSIX2_UPE, posix2_upe, CTLFLAG_RD, 378 0, 0, "Whether system supports the user portability utilities"); 379 SYSCTL_INT(_user, USER_STREAM_MAX, stream_max, CTLFLAG_RD, 380 0, 0, "Min Maximum number of streams a process may have open at one time"); 381 SYSCTL_INT(_user, USER_TZNAME_MAX, tzname_max, CTLFLAG_RD, 382 0, 0, "Min Maximum number of types supported for timezone names"); 383 384 #include <sys/vnode.h> 385 SYSCTL_INT(_debug_sizeof, OID_AUTO, vnode, CTLFLAG_RD, 386 0, sizeof(struct vnode), "sizeof(struct vnode)"); 387 388 SYSCTL_INT(_debug_sizeof, OID_AUTO, proc, CTLFLAG_RD, 389 0, sizeof(struct proc), "sizeof(struct proc)"); 390 391 #include <sys/bio.h> 392 #include <sys/buf.h> 393 SYSCTL_INT(_debug_sizeof, OID_AUTO, bio, CTLFLAG_RD, 394 0, sizeof(struct bio), "sizeof(struct bio)"); 395 SYSCTL_INT(_debug_sizeof, OID_AUTO, buf, CTLFLAG_RD, 396 0, sizeof(struct buf), "sizeof(struct buf)"); 397 398 #include <sys/user.h> 399 SYSCTL_INT(_debug_sizeof, OID_AUTO, kinfo_proc, CTLFLAG_RD, 400 0, sizeof(struct kinfo_proc), "sizeof(struct kinfo_proc)"); 401 402 /* XXX compatibility, remove for 6.0 */ 403 #include <sys/imgact.h> 404 #include <sys/imgact_elf.h> 405 SYSCTL_INT(_kern, OID_AUTO, fallback_elf_brand, CTLFLAG_RW, 406 &__elfN(fallback_brand), sizeof(__elfN(fallback_brand)), 407 "compatibility for kern.fallback_elf_brand"); 408