1dea673e9SRodney W. Grimes /* 2dea673e9SRodney W. Grimes * Copyright (c) 1983, 1991, 1993, 1994 3dea673e9SRodney W. Grimes * The Regents of the University of California. All rights reserved. 4dea673e9SRodney W. Grimes * 5dea673e9SRodney W. Grimes * Redistribution and use in source and binary forms, with or without 6dea673e9SRodney W. Grimes * modification, are permitted provided that the following conditions 7dea673e9SRodney W. Grimes * are met: 8dea673e9SRodney W. Grimes * 1. Redistributions of source code must retain the above copyright 9dea673e9SRodney W. Grimes * notice, this list of conditions and the following disclaimer. 10dea673e9SRodney W. Grimes * 2. Redistributions in binary form must reproduce the above copyright 11dea673e9SRodney W. Grimes * notice, this list of conditions and the following disclaimer in the 12dea673e9SRodney W. Grimes * documentation and/or other materials provided with the distribution. 13dea673e9SRodney W. Grimes * 3. All advertising materials mentioning features or use of this software 14dea673e9SRodney W. Grimes * must display the following acknowledgement: 15dea673e9SRodney W. Grimes * This product includes software developed by the University of 16dea673e9SRodney W. Grimes * California, Berkeley and its contributors. 17dea673e9SRodney W. Grimes * 4. Neither the name of the University nor the names of its contributors 18dea673e9SRodney W. Grimes * may be used to endorse or promote products derived from this software 19dea673e9SRodney W. Grimes * without specific prior written permission. 20dea673e9SRodney W. Grimes * 21dea673e9SRodney W. Grimes * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND 22dea673e9SRodney W. Grimes * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 23dea673e9SRodney W. Grimes * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 24dea673e9SRodney W. Grimes * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE 25dea673e9SRodney W. Grimes * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 26dea673e9SRodney W. Grimes * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 27dea673e9SRodney W. Grimes * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 28dea673e9SRodney W. Grimes * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 29dea673e9SRodney W. Grimes * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 30dea673e9SRodney W. Grimes * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 31dea673e9SRodney W. Grimes * SUCH DAMAGE. 32dea673e9SRodney W. Grimes */ 33dea673e9SRodney W. Grimes 34dea673e9SRodney W. Grimes #ifndef lint 35c1a2e93eSPhilippe Charnier static const char copyright[] = 36dea673e9SRodney W. Grimes "@(#) Copyright (c) 1983, 1991, 1993, 1994\n\ 37dea673e9SRodney W. Grimes The Regents of the University of California. All rights reserved.\n"; 38dea673e9SRodney W. Grimes #endif /* not lint */ 39dea673e9SRodney W. Grimes 40dea673e9SRodney W. Grimes #ifndef lint 41c1a2e93eSPhilippe Charnier #if 0 42c1a2e93eSPhilippe Charnier static char sccsid[] = "@(#)from: inetd.c 8.4 (Berkeley) 4/13/94"; 43c1a2e93eSPhilippe Charnier #endif 44c1a2e93eSPhilippe Charnier static const char rcsid[] = 456134dbe0SSheldon Hearn "$Id: inetd.c,v 1.61 1999/07/15 17:01:43 green Exp $"; 46dea673e9SRodney W. Grimes #endif /* not lint */ 47dea673e9SRodney W. Grimes 48dea673e9SRodney W. Grimes /* 49dea673e9SRodney W. Grimes * Inetd - Internet super-server 50dea673e9SRodney W. Grimes * 51dea673e9SRodney W. Grimes * This program invokes all internet services as needed. Connection-oriented 52dea673e9SRodney W. Grimes * services are invoked each time a connection is made, by creating a process. 53dea673e9SRodney W. Grimes * This process is passed the connection as file descriptor 0 and is expected 54dea673e9SRodney W. Grimes * to do a getpeername to find out the source host and port. 55dea673e9SRodney W. Grimes * 56dea673e9SRodney W. Grimes * Datagram oriented services are invoked when a datagram 57dea673e9SRodney W. Grimes * arrives; a process is created and passed a pending message 58dea673e9SRodney W. Grimes * on file descriptor 0. Datagram servers may either connect 59dea673e9SRodney W. Grimes * to their peer, freeing up the original socket for inetd 60dea673e9SRodney W. Grimes * to receive further messages on, or ``take over the socket'', 61dea673e9SRodney W. Grimes * processing all arriving datagrams and, eventually, timing 62dea673e9SRodney W. Grimes * out. The first type of server is said to be ``multi-threaded''; 63dea673e9SRodney W. Grimes * the second type of server ``single-threaded''. 64dea673e9SRodney W. Grimes * 65dea673e9SRodney W. Grimes * Inetd uses a configuration file which is read at startup 66dea673e9SRodney W. Grimes * and, possibly, at some later time in response to a hangup signal. 67dea673e9SRodney W. Grimes * The configuration file is ``free format'' with fields given in the 68dea673e9SRodney W. Grimes * order shown below. Continuation lines for an entry must being with 69dea673e9SRodney W. Grimes * a space or tab. All fields must be present in each entry. 70dea673e9SRodney W. Grimes * 71dea673e9SRodney W. Grimes * service name must be in /etc/services or must 72dea673e9SRodney W. Grimes * name a tcpmux service 73dea673e9SRodney W. Grimes * socket type stream/dgram/raw/rdm/seqpacket 74dea673e9SRodney W. Grimes * protocol must be in /etc/protocols 75dea673e9SRodney W. Grimes * wait/nowait single-threaded/multi-threaded 76dea673e9SRodney W. Grimes * user user to run daemon as 77dea673e9SRodney W. Grimes * server program full path name 78dea673e9SRodney W. Grimes * server program arguments maximum of MAXARGS (20) 79dea673e9SRodney W. Grimes * 80dea673e9SRodney W. Grimes * TCP services without official port numbers are handled with the 81dea673e9SRodney W. Grimes * RFC1078-based tcpmux internal service. Tcpmux listens on port 1 for 82dea673e9SRodney W. Grimes * requests. When a connection is made from a foreign host, the service 83dea673e9SRodney W. Grimes * requested is passed to tcpmux, which looks it up in the servtab list 84dea673e9SRodney W. Grimes * and returns the proper entry for the service. Tcpmux returns a 85dea673e9SRodney W. Grimes * negative reply if the service doesn't exist, otherwise the invoked 86dea673e9SRodney W. Grimes * server is expected to return the positive reply if the service type in 87dea673e9SRodney W. Grimes * inetd.conf file has the prefix "tcpmux/". If the service type has the 88dea673e9SRodney W. Grimes * prefix "tcpmux/+", tcpmux will return the positive reply for the 89dea673e9SRodney W. Grimes * process; this is for compatibility with older server code, and also 90dea673e9SRodney W. Grimes * allows you to invoke programs that use stdin/stdout without putting any 91dea673e9SRodney W. Grimes * special server code in them. Services that use tcpmux are "nowait" 92dea673e9SRodney W. Grimes * because they do not have a well-known port and hence cannot listen 93dea673e9SRodney W. Grimes * for new requests. 94dea673e9SRodney W. Grimes * 9555b91f3aSGeoff Rehmet * For RPC services 9655b91f3aSGeoff Rehmet * service name/version must be in /etc/rpc 9755b91f3aSGeoff Rehmet * socket type stream/dgram/raw/rdm/seqpacket 9855b91f3aSGeoff Rehmet * protocol must be in /etc/protocols 9955b91f3aSGeoff Rehmet * wait/nowait single-threaded/multi-threaded 10055b91f3aSGeoff Rehmet * user user to run daemon as 10155b91f3aSGeoff Rehmet * server program full path name 10255b91f3aSGeoff Rehmet * server program arguments maximum of MAXARGS 10355b91f3aSGeoff Rehmet * 104dea673e9SRodney W. Grimes * Comment lines are indicated by a `#' in column 1. 105dea673e9SRodney W. Grimes */ 106dea673e9SRodney W. Grimes #include <sys/param.h> 107dea673e9SRodney W. Grimes #include <sys/stat.h> 108dea673e9SRodney W. Grimes #include <sys/ioctl.h> 109dea673e9SRodney W. Grimes #include <sys/socket.h> 110dea673e9SRodney W. Grimes #include <sys/wait.h> 111dea673e9SRodney W. Grimes #include <sys/time.h> 112dea673e9SRodney W. Grimes #include <sys/resource.h> 113d33eb4c8SBrian Feldman #include <sys/sysctl.h> 114d33eb4c8SBrian Feldman #include <sys/ucred.h> 115dea673e9SRodney W. Grimes 116dea673e9SRodney W. Grimes #include <netinet/in.h> 117c6c38f1dSGuido van Rooij #include <netinet/tcp.h> 118dea673e9SRodney W. Grimes #include <arpa/inet.h> 11955b91f3aSGeoff Rehmet #include <rpc/rpc.h> 1206467602bSJulian Elischer #include <rpc/pmap_clnt.h> 121dea673e9SRodney W. Grimes 122d33eb4c8SBrian Feldman #include <ctype.h> 123dea673e9SRodney W. Grimes #include <errno.h> 124c1a2e93eSPhilippe Charnier #include <err.h> 125dea673e9SRodney W. Grimes #include <fcntl.h> 126b34683caSAndrey A. Chernov #include <grp.h> 127dea673e9SRodney W. Grimes #include <netdb.h> 128dea673e9SRodney W. Grimes #include <pwd.h> 129dea673e9SRodney W. Grimes #include <signal.h> 130dea673e9SRodney W. Grimes #include <stdio.h> 131dea673e9SRodney W. Grimes #include <stdlib.h> 132dea673e9SRodney W. Grimes #include <string.h> 133dea673e9SRodney W. Grimes #include <syslog.h> 13454f5ebedSSheldon Hearn #include <tcpd.h> 135dea673e9SRodney W. Grimes #include <unistd.h> 136c1283020SPeter Wemm #include <libutil.h> 1376467602bSJulian Elischer #include <sysexits.h> 138dea673e9SRodney W. Grimes 1399980037eSMark Murray #ifndef LIBWRAP_ALLOW_FACILITY 1409980037eSMark Murray # define LIBWRAP_ALLOW_FACILITY LOG_AUTH 1419980037eSMark Murray #endif 1429980037eSMark Murray #ifndef LIBWRAP_ALLOW_SEVERITY 1439980037eSMark Murray # define LIBWRAP_ALLOW_SEVERITY LOG_INFO 1449980037eSMark Murray #endif 1459980037eSMark Murray #ifndef LIBWRAP_DENY_FACILITY 1469980037eSMark Murray # define LIBWRAP_DENY_FACILITY LOG_AUTH 1479980037eSMark Murray #endif 1489980037eSMark Murray #ifndef LIBWRAP_DENY_SEVERITY 1499980037eSMark Murray # define LIBWRAP_DENY_SEVERITY LOG_WARNING 1509980037eSMark Murray #endif 1519980037eSMark Murray 152c48c2d6dSSheldon Hearn #define ISWRAP(sep) \ 15310d03f50SSheldon Hearn ( ((wrap_ex && !(sep)->se_bi) || (wrap_bi && (sep)->se_bi)) \ 154c48c2d6dSSheldon Hearn && ( ((sep)->se_accept && (sep)->se_socktype == SOCK_STREAM) \ 155c48c2d6dSSheldon Hearn || (sep)->se_socktype == SOCK_DGRAM)) 156c48c2d6dSSheldon Hearn 157fbc2342cSPeter Wemm #ifdef LOGIN_CAP 158fbc2342cSPeter Wemm #include <login_cap.h> 159186a5319SAndrey A. Chernov 160186a5319SAndrey A. Chernov /* see init.c */ 161186a5319SAndrey A. Chernov #define RESOURCE_RC "daemon" 162186a5319SAndrey A. Chernov 163fbc2342cSPeter Wemm #endif 164fbc2342cSPeter Wemm 165dea673e9SRodney W. Grimes #include "pathnames.h" 166dea673e9SRodney W. Grimes 167ffb7094eSPaul Traina #ifndef MAXCHILD 168ffb7094eSPaul Traina #define MAXCHILD -1 /* maximum number of this service 169ffb7094eSPaul Traina < 0 = no limit */ 170ffb7094eSPaul Traina #endif 171ffb7094eSPaul Traina 172ffb7094eSPaul Traina #ifndef MAXCPM 173ffb7094eSPaul Traina #define MAXCPM -1 /* rate limit invocations from a 174ffb7094eSPaul Traina single remote address, 175ffb7094eSPaul Traina < 0 = no limit */ 176ffb7094eSPaul Traina #endif 177ffb7094eSPaul Traina 178bee39b42SGeoff Rehmet #define TOOMANY 256 /* don't start more than TOOMANY */ 179dea673e9SRodney W. Grimes #define CNT_INTVL 60 /* servers in CNT_INTVL sec. */ 180dea673e9SRodney W. Grimes #define RETRYTIME (60*10) /* retry after bind or server fail */ 1810661be0bSJulian Elischer #define MAX_MAXCHLD 32767 /* max allowable max children */ 182dea673e9SRodney W. Grimes 183dea673e9SRodney W. Grimes #define SIGBLOCK (sigmask(SIGCHLD)|sigmask(SIGHUP)|sigmask(SIGALRM)) 184dea673e9SRodney W. Grimes 18554f5ebedSSheldon Hearn int allow_severity; 18654f5ebedSSheldon Hearn int deny_severity; 18710d03f50SSheldon Hearn int wrap_ex = 0; 18854f5ebedSSheldon Hearn int wrap_bi = 0; 189dea673e9SRodney W. Grimes int debug = 0; 190bee39b42SGeoff Rehmet int log = 0; 191dea673e9SRodney W. Grimes int nsock, maxsock; 192dea673e9SRodney W. Grimes fd_set allsock; 193dea673e9SRodney W. Grimes int options; 194dea673e9SRodney W. Grimes int timingout; 195dea673e9SRodney W. Grimes int toomany = TOOMANY; 1967aad1732SSheldon Hearn int maxchild = MAXCHILD; 1977aad1732SSheldon Hearn int maxcpm = MAXCPM; 198dea673e9SRodney W. Grimes struct servent *sp; 19955b91f3aSGeoff Rehmet struct rpcent *rpc; 2007356460fSJulian Elischer struct in_addr bind_address; 201e20e25dbSDag-Erling Smørgrav int signalpipe[2]; 202dea673e9SRodney W. Grimes 203dea673e9SRodney W. Grimes struct servtab { 204dea673e9SRodney W. Grimes char *se_service; /* name of service */ 205dea673e9SRodney W. Grimes int se_socktype; /* type of socket to use */ 206dea673e9SRodney W. Grimes char *se_proto; /* protocol used */ 2073e2e58f1SDima Ruban int se_maxchild; /* max number of children */ 2083e2e58f1SDima Ruban int se_maxcpm; /* max connects per IP per minute */ 2093e2e58f1SDima Ruban int se_numchild; /* current number of children */ 2100661be0bSJulian Elischer pid_t *se_pids; /* array of child pids */ 211dea673e9SRodney W. Grimes char *se_user; /* user name to run as */ 212b34683caSAndrey A. Chernov char *se_group; /* group name to run as */ 213186a5319SAndrey A. Chernov #ifdef LOGIN_CAP 214186a5319SAndrey A. Chernov char *se_class; /* login class name to run with */ 215186a5319SAndrey A. Chernov #endif 216dea673e9SRodney W. Grimes struct biltin *se_bi; /* if built-in, description */ 217dea673e9SRodney W. Grimes char *se_server; /* server program */ 218d06590a5SMark Murray char *se_server_name; /* server program without path */ 219dea673e9SRodney W. Grimes #define MAXARGV 20 220dea673e9SRodney W. Grimes char *se_argv[MAXARGV+1]; /* program arguments */ 221dea673e9SRodney W. Grimes int se_fd; /* open descriptor */ 222dea673e9SRodney W. Grimes struct sockaddr_in se_ctrladdr;/* bound address */ 2230661be0bSJulian Elischer u_char se_type; /* type: normal, mux, or mux+ */ 2240661be0bSJulian Elischer u_char se_checked; /* looked at during merge */ 2250661be0bSJulian Elischer u_char se_accept; /* i.e., wait/nowait mode */ 2260661be0bSJulian Elischer u_char se_rpc; /* ==1 if RPC service */ 22755b91f3aSGeoff Rehmet int se_rpc_prog; /* RPC program number */ 22855b91f3aSGeoff Rehmet u_int se_rpc_lowvers; /* RPC low version */ 22955b91f3aSGeoff Rehmet u_int se_rpc_highvers; /* RPC high version */ 230dea673e9SRodney W. Grimes int se_count; /* number started since se_time */ 231dea673e9SRodney W. Grimes struct timeval se_time; /* start of se_count */ 232dea673e9SRodney W. Grimes struct servtab *se_next; 233dea673e9SRodney W. Grimes } *servtab; 234dea673e9SRodney W. Grimes 235dea673e9SRodney W. Grimes #define NORM_TYPE 0 236dea673e9SRodney W. Grimes #define MUX_TYPE 1 237dea673e9SRodney W. Grimes #define MUXPLUS_TYPE 2 238c6c38f1dSGuido van Rooij #define TTCP_TYPE 3 239dea673e9SRodney W. Grimes #define ISMUX(sep) (((sep)->se_type == MUX_TYPE) || \ 240dea673e9SRodney W. Grimes ((sep)->se_type == MUXPLUS_TYPE)) 241dea673e9SRodney W. Grimes #define ISMUXPLUS(sep) ((sep)->se_type == MUXPLUS_TYPE) 242c6c38f1dSGuido van Rooij #define ISTTCP(sep) ((sep)->se_type == TTCP_TYPE) 243dea673e9SRodney W. Grimes 244dea673e9SRodney W. Grimes 245dea673e9SRodney W. Grimes void chargen_dg __P((int, struct servtab *)); 246dea673e9SRodney W. Grimes void chargen_stream __P((int, struct servtab *)); 247dea673e9SRodney W. Grimes void close_sep __P((struct servtab *)); 248e20e25dbSDag-Erling Smørgrav void flag_signal __P((char)); 249e20e25dbSDag-Erling Smørgrav void flag_config __P((int)); 250e20e25dbSDag-Erling Smørgrav void config __P((void)); 251dea673e9SRodney W. Grimes void daytime_dg __P((int, struct servtab *)); 252dea673e9SRodney W. Grimes void daytime_stream __P((int, struct servtab *)); 253dea673e9SRodney W. Grimes void discard_dg __P((int, struct servtab *)); 254dea673e9SRodney W. Grimes void discard_stream __P((int, struct servtab *)); 255dea673e9SRodney W. Grimes void echo_dg __P((int, struct servtab *)); 256dea673e9SRodney W. Grimes void echo_stream __P((int, struct servtab *)); 257dea673e9SRodney W. Grimes void endconfig __P((void)); 258dea673e9SRodney W. Grimes struct servtab *enter __P((struct servtab *)); 259dea673e9SRodney W. Grimes void freeconfig __P((struct servtab *)); 260dea673e9SRodney W. Grimes struct servtab *getconfigent __P((void)); 261d33eb4c8SBrian Feldman void iderror __P((int, int, FILE *, int)); 2623c97a31cSPoul-Henning Kamp void ident_stream __P((int, struct servtab *)); 263dea673e9SRodney W. Grimes void machtime_dg __P((int, struct servtab *)); 264dea673e9SRodney W. Grimes void machtime_stream __P((int, struct servtab *)); 265eb0fde47SSheldon Hearn int matchservent __P((char *, char *, char *)); 266dea673e9SRodney W. Grimes char *newstr __P((char *)); 267dea673e9SRodney W. Grimes char *nextline __P((FILE *)); 268dea673e9SRodney W. Grimes void print_service __P((char *, struct servtab *)); 2690661be0bSJulian Elischer void addchild __P((struct servtab *, int)); 270e20e25dbSDag-Erling Smørgrav void flag_reapchild __P((int)); 271e20e25dbSDag-Erling Smørgrav void reapchild __P((void)); 2720661be0bSJulian Elischer void enable __P((struct servtab *)); 2730661be0bSJulian Elischer void disable __P((struct servtab *)); 274e20e25dbSDag-Erling Smørgrav void flag_retry __P((int)); 275e20e25dbSDag-Erling Smørgrav void retry __P((void)); 276dea673e9SRodney W. Grimes int setconfig __P((void)); 277dea673e9SRodney W. Grimes void setup __P((struct servtab *)); 278dea673e9SRodney W. Grimes char *sskip __P((char **)); 279dea673e9SRodney W. Grimes char *skip __P((char **)); 280dea673e9SRodney W. Grimes struct servtab *tcpmux __P((int)); 2813e2e58f1SDima Ruban int cpmip __P((struct servtab *, int)); 28249906707SSheldon Hearn void inetd_setproctitle __P((char *, int)); 283dea673e9SRodney W. Grimes 28455b91f3aSGeoff Rehmet void unregisterrpc __P((register struct servtab *sep)); 28555b91f3aSGeoff Rehmet 286dea673e9SRodney W. Grimes struct biltin { 287dea673e9SRodney W. Grimes char *bi_service; /* internally provided service name */ 288dea673e9SRodney W. Grimes int bi_socktype; /* type of socket supported */ 289dea673e9SRodney W. Grimes short bi_fork; /* 1 if should fork before call */ 2907aad1732SSheldon Hearn int bi_maxchild; /* max number of children (-1=default) */ 291dea673e9SRodney W. Grimes void (*bi_fn)(); /* function which performs it */ 292dea673e9SRodney W. Grimes } biltins[] = { 293dea673e9SRodney W. Grimes /* Echo received data */ 2947aad1732SSheldon Hearn { "echo", SOCK_STREAM, 1, -1, echo_stream }, 2957aad1732SSheldon Hearn { "echo", SOCK_DGRAM, 0, 1, echo_dg }, 296dea673e9SRodney W. Grimes 297dea673e9SRodney W. Grimes /* Internet /dev/null */ 2987aad1732SSheldon Hearn { "discard", SOCK_STREAM, 1, -1, discard_stream }, 2997aad1732SSheldon Hearn { "discard", SOCK_DGRAM, 0, 1, discard_dg }, 300dea673e9SRodney W. Grimes 3019980037eSMark Murray /* Return 32 bit time since 1970 */ 3027aad1732SSheldon Hearn { "time", SOCK_STREAM, 0, -1, machtime_stream }, 3037aad1732SSheldon Hearn { "time", SOCK_DGRAM, 0, 1, machtime_dg }, 304dea673e9SRodney W. Grimes 305dea673e9SRodney W. Grimes /* Return human-readable time */ 3067aad1732SSheldon Hearn { "daytime", SOCK_STREAM, 0, -1, daytime_stream }, 3077aad1732SSheldon Hearn { "daytime", SOCK_DGRAM, 0, 1, daytime_dg }, 308dea673e9SRodney W. Grimes 309dea673e9SRodney W. Grimes /* Familiar character generator */ 3107aad1732SSheldon Hearn { "chargen", SOCK_STREAM, 1, -1, chargen_stream }, 3117aad1732SSheldon Hearn { "chargen", SOCK_DGRAM, 0, 1, chargen_dg }, 312dea673e9SRodney W. Grimes 3137aad1732SSheldon Hearn { "tcpmux", SOCK_STREAM, 1, -1, (void (*)())tcpmux }, 314dea673e9SRodney W. Grimes 315eb0fde47SSheldon Hearn { "auth", SOCK_STREAM, 1, -1, ident_stream }, 3163c97a31cSPoul-Henning Kamp 317dea673e9SRodney W. Grimes { NULL } 318dea673e9SRodney W. Grimes }; 319dea673e9SRodney W. Grimes 320dea673e9SRodney W. Grimes #define NUMINT (sizeof(intab) / sizeof(struct inent)) 321dea673e9SRodney W. Grimes char *CONFIG = _PATH_INETDCONF; 3227356460fSJulian Elischer char *pid_file = _PATH_INETDPID; 323c1283020SPeter Wemm 324c1283020SPeter Wemm #ifdef OLD_SETPROCTITLE 325dea673e9SRodney W. Grimes char **Argv; 326dea673e9SRodney W. Grimes char *LastArg; 327c1283020SPeter Wemm #endif 328dea673e9SRodney W. Grimes 329dea673e9SRodney W. Grimes int 330ffb7094eSPaul Traina getvalue(arg, value, whine) 331ffb7094eSPaul Traina char *arg, *whine; 332ffb7094eSPaul Traina int *value; 333ffb7094eSPaul Traina { 334ffb7094eSPaul Traina int tmp; 335ffb7094eSPaul Traina char *p; 336ffb7094eSPaul Traina 337ffb7094eSPaul Traina tmp = strtol(arg, &p, 0); 338ffb7094eSPaul Traina if (tmp < 1 || *p) { 339ffb7094eSPaul Traina syslog(LOG_ERR, whine, arg); 340ffb7094eSPaul Traina return 1; /* failure */ 341ffb7094eSPaul Traina } 342ffb7094eSPaul Traina *value = tmp; 343ffb7094eSPaul Traina return 0; /* success */ 344ffb7094eSPaul Traina } 345ffb7094eSPaul Traina 346ffb7094eSPaul Traina int 347dea673e9SRodney W. Grimes main(argc, argv, envp) 348dea673e9SRodney W. Grimes int argc; 349dea673e9SRodney W. Grimes char *argv[], *envp[]; 350dea673e9SRodney W. Grimes { 351dea673e9SRodney W. Grimes struct servtab *sep; 352dea673e9SRodney W. Grimes struct passwd *pwd; 353b34683caSAndrey A. Chernov struct group *grp; 354e523d5aeSGuido van Rooij struct sigaction sa, sapipe; 355dea673e9SRodney W. Grimes int tmpint, ch, dofork; 356dea673e9SRodney W. Grimes pid_t pid; 357dea673e9SRodney W. Grimes char buf[50]; 358fbc2342cSPeter Wemm #ifdef LOGIN_CAP 359fbc2342cSPeter Wemm login_cap_t *lc = NULL; 360fbc2342cSPeter Wemm #endif 3619980037eSMark Murray struct request_info req; 3629980037eSMark Murray int denied; 3639980037eSMark Murray char *service = NULL; 364c48c2d6dSSheldon Hearn char *pnm; 3651181cf3cSSheldon Hearn struct sockaddr_in peer; 3661181cf3cSSheldon Hearn int i; 367dea673e9SRodney W. Grimes 368c1283020SPeter Wemm 369c1283020SPeter Wemm #ifdef OLD_SETPROCTITLE 370dea673e9SRodney W. Grimes Argv = argv; 371dea673e9SRodney W. Grimes if (envp == 0 || *envp == 0) 372dea673e9SRodney W. Grimes envp = argv; 373dea673e9SRodney W. Grimes while (*envp) 374dea673e9SRodney W. Grimes envp++; 375dea673e9SRodney W. Grimes LastArg = envp[-1] + strlen(envp[-1]); 376c1283020SPeter Wemm #endif 377dea673e9SRodney W. Grimes 378dea673e9SRodney W. Grimes openlog("inetd", LOG_PID | LOG_NOWAIT, LOG_DAEMON); 379dea673e9SRodney W. Grimes 3807356460fSJulian Elischer bind_address.s_addr = htonl(INADDR_ANY); 38110d03f50SSheldon Hearn while ((ch = getopt(argc, argv, "dlwWR:a:c:C:p:")) != -1) 382dea673e9SRodney W. Grimes switch(ch) { 383dea673e9SRodney W. Grimes case 'd': 384dea673e9SRodney W. Grimes debug = 1; 385dea673e9SRodney W. Grimes options |= SO_DEBUG; 386dea673e9SRodney W. Grimes break; 387bee39b42SGeoff Rehmet case 'l': 388bee39b42SGeoff Rehmet log = 1; 389bee39b42SGeoff Rehmet break; 390ffb7094eSPaul Traina case 'R': 391ffb7094eSPaul Traina getvalue(optarg, &toomany, 392ffb7094eSPaul Traina "-R %s: bad value for service invocation rate"); 393dea673e9SRodney W. Grimes break; 394ffb7094eSPaul Traina case 'c': 395ffb7094eSPaul Traina getvalue(optarg, &maxchild, 396ffb7094eSPaul Traina "-c %s: bad value for maximum children"); 397ffb7094eSPaul Traina break; 398ffb7094eSPaul Traina case 'C': 399ffb7094eSPaul Traina getvalue(optarg, &maxcpm, 400ffb7094eSPaul Traina "-C %s: bad value for maximum children/minute"); 401ffb7094eSPaul Traina break; 4027356460fSJulian Elischer case 'a': 4037356460fSJulian Elischer if (!inet_aton(optarg, &bind_address)) { 4047356460fSJulian Elischer syslog(LOG_ERR, 4057356460fSJulian Elischer "-a %s: invalid IP address", optarg); 4066467602bSJulian Elischer exit(EX_USAGE); 4077356460fSJulian Elischer } 4087356460fSJulian Elischer break; 4097356460fSJulian Elischer case 'p': 4107356460fSJulian Elischer pid_file = optarg; 4117356460fSJulian Elischer break; 41254f5ebedSSheldon Hearn case 'w': 41310d03f50SSheldon Hearn wrap_ex++; 41410d03f50SSheldon Hearn break; 41510d03f50SSheldon Hearn case 'W': 41654f5ebedSSheldon Hearn wrap_bi++; 41754f5ebedSSheldon Hearn break; 418dea673e9SRodney W. Grimes case '?': 419dea673e9SRodney W. Grimes default: 420dea673e9SRodney W. Grimes syslog(LOG_ERR, 42110d03f50SSheldon Hearn "usage: inetd [-dlwW] [-a address] [-R rate]" 422ffb7094eSPaul Traina " [-c maximum] [-C rate]" 4237356460fSJulian Elischer " [-p pidfile] [conf-file]"); 4246467602bSJulian Elischer exit(EX_USAGE); 425dea673e9SRodney W. Grimes } 426dea673e9SRodney W. Grimes argc -= optind; 427dea673e9SRodney W. Grimes argv += optind; 428dea673e9SRodney W. Grimes 429dea673e9SRodney W. Grimes if (argc > 0) 430dea673e9SRodney W. Grimes CONFIG = argv[0]; 431dea673e9SRodney W. Grimes if (debug == 0) { 4329fe96cbbSGarrett Wollman FILE *fp; 43384c60f0dSPeter Wemm if (daemon(0, 0) < 0) { 43484c60f0dSPeter Wemm syslog(LOG_WARNING, "daemon(0,0) failed: %m"); 43584c60f0dSPeter Wemm } 43684c60f0dSPeter Wemm /* 43784c60f0dSPeter Wemm * In case somebody has started inetd manually, we need to 43884c60f0dSPeter Wemm * clear the logname, so that old servers run as root do not 43984c60f0dSPeter Wemm * get the user's logname.. 44084c60f0dSPeter Wemm */ 44184c60f0dSPeter Wemm if (setlogin("") < 0) { 44284c60f0dSPeter Wemm syslog(LOG_WARNING, "cannot clear logname: %m"); 44384c60f0dSPeter Wemm /* no big deal if it fails.. */ 44484c60f0dSPeter Wemm } 4459fe96cbbSGarrett Wollman pid = getpid(); 4467356460fSJulian Elischer fp = fopen(pid_file, "w"); 4479fe96cbbSGarrett Wollman if (fp) { 4489fe96cbbSGarrett Wollman fprintf(fp, "%ld\n", (long)pid); 4499fe96cbbSGarrett Wollman fclose(fp); 4509fe96cbbSGarrett Wollman } else { 4517356460fSJulian Elischer syslog(LOG_WARNING, "%s: %m", pid_file); 4529fe96cbbSGarrett Wollman } 453dea673e9SRodney W. Grimes } 45465434143SBruce Evans sa.sa_flags = 0; 45565434143SBruce Evans sigemptyset(&sa.sa_mask); 45665434143SBruce Evans sigaddset(&sa.sa_mask, SIGALRM); 45765434143SBruce Evans sigaddset(&sa.sa_mask, SIGCHLD); 45865434143SBruce Evans sigaddset(&sa.sa_mask, SIGHUP); 459e20e25dbSDag-Erling Smørgrav sa.sa_handler = flag_retry; 460e523d5aeSGuido van Rooij sigaction(SIGALRM, &sa, (struct sigaction *)0); 461e20e25dbSDag-Erling Smørgrav config(); 462e20e25dbSDag-Erling Smørgrav sa.sa_handler = flag_config; 463e523d5aeSGuido van Rooij sigaction(SIGHUP, &sa, (struct sigaction *)0); 464e20e25dbSDag-Erling Smørgrav sa.sa_handler = flag_reapchild; 465e523d5aeSGuido van Rooij sigaction(SIGCHLD, &sa, (struct sigaction *)0); 466e523d5aeSGuido van Rooij sa.sa_handler = SIG_IGN; 46765434143SBruce Evans sigaction(SIGPIPE, &sa, &sapipe); 468dea673e9SRodney W. Grimes 469dea673e9SRodney W. Grimes { 470dea673e9SRodney W. Grimes /* space for daemons to overwrite environment for ps */ 471dea673e9SRodney W. Grimes #define DUMMYSIZE 100 472dea673e9SRodney W. Grimes char dummy[DUMMYSIZE]; 473dea673e9SRodney W. Grimes 4749e375707SAlexander Langer (void)memset(dummy, 'x', DUMMYSIZE - 1); 475dea673e9SRodney W. Grimes dummy[DUMMYSIZE - 1] = '\0'; 476dea673e9SRodney W. Grimes (void)setenv("inetd_dummy", dummy, 1); 477dea673e9SRodney W. Grimes } 478dea673e9SRodney W. Grimes 47987cef388SDag-Erling Smørgrav if (pipe(signalpipe) != 0) { 480e20e25dbSDag-Erling Smørgrav syslog(LOG_ERR, "pipe: %%m"); 481e20e25dbSDag-Erling Smørgrav exit(EX_OSERR); 482e20e25dbSDag-Erling Smørgrav } 483e20e25dbSDag-Erling Smørgrav FD_SET(signalpipe[0], &allsock); 484b180b6deSDag-Erling Smørgrav nsock++; 485b180b6deSDag-Erling Smørgrav if (signalpipe[0] > maxsock) 486b180b6deSDag-Erling Smørgrav maxsock = signalpipe[0]; 4875177c293SMatthew Dillon 488dea673e9SRodney W. Grimes for (;;) { 489dea673e9SRodney W. Grimes int n, ctrl; 490dea673e9SRodney W. Grimes fd_set readable; 491dea673e9SRodney W. Grimes 492dea673e9SRodney W. Grimes if (nsock == 0) { 493b180b6deSDag-Erling Smørgrav syslog(LOG_ERR, "%s: nsock=0", __FUNCTION__); 494b180b6deSDag-Erling Smørgrav exit(EX_SOFTWARE); 495e20e25dbSDag-Erling Smørgrav } 496dea673e9SRodney W. Grimes readable = allsock; 497e20e25dbSDag-Erling Smørgrav if ((n = select(maxsock + 1, &readable, (fd_set *)0, 498e20e25dbSDag-Erling Smørgrav (fd_set *)0, (struct timeval *)0)) <= 0) { 499e20e25dbSDag-Erling Smørgrav if (n < 0 && errno != EINTR) { 500dea673e9SRodney W. Grimes syslog(LOG_WARNING, "select: %m"); 501dea673e9SRodney W. Grimes sleep(1); 50283eea896SWarner Losh } 503dea673e9SRodney W. Grimes continue; 504dea673e9SRodney W. Grimes } 505e20e25dbSDag-Erling Smørgrav /* handle any queued signal flags */ 50687cef388SDag-Erling Smørgrav if (FD_ISSET(signalpipe[0], &readable)) { 507e20e25dbSDag-Erling Smørgrav int n; 50887cef388SDag-Erling Smørgrav if (ioctl(signalpipe[0], FIONREAD, &n) != 0) { 50987cef388SDag-Erling Smørgrav syslog(LOG_ERR, "ioctl: %m"); 51087cef388SDag-Erling Smørgrav exit(EX_OSERR); 51187cef388SDag-Erling Smørgrav } 51287cef388SDag-Erling Smørgrav while (--n >= 0) { 513e20e25dbSDag-Erling Smørgrav char c; 51487cef388SDag-Erling Smørgrav if (read(signalpipe[0], &c, 1) != 1) { 515e20e25dbSDag-Erling Smørgrav syslog(LOG_ERR, "read: %m"); 516e20e25dbSDag-Erling Smørgrav exit(EX_OSERR); 517e20e25dbSDag-Erling Smørgrav } 51887cef388SDag-Erling Smørgrav if (debug) 51987cef388SDag-Erling Smørgrav warnx("Handling signal flag %c", c); 52087cef388SDag-Erling Smørgrav switch(c) { 52187cef388SDag-Erling Smørgrav case 'A': /* sigalrm */ 52287cef388SDag-Erling Smørgrav retry(); 52387cef388SDag-Erling Smørgrav break; 52487cef388SDag-Erling Smørgrav case 'C': /* sigchld */ 52587cef388SDag-Erling Smørgrav reapchild(); 52687cef388SDag-Erling Smørgrav break; 52787cef388SDag-Erling Smørgrav case 'H': /* sighup */ 52887cef388SDag-Erling Smørgrav config(); 52987cef388SDag-Erling Smørgrav break; 530e20e25dbSDag-Erling Smørgrav } 531e20e25dbSDag-Erling Smørgrav } 532e20e25dbSDag-Erling Smørgrav } 533dea673e9SRodney W. Grimes for (sep = servtab; n && sep; sep = sep->se_next) 534dea673e9SRodney W. Grimes if (sep->se_fd != -1 && FD_ISSET(sep->se_fd, &readable)) { 535dea673e9SRodney W. Grimes n--; 536dea673e9SRodney W. Grimes if (debug) 537c1a2e93eSPhilippe Charnier warnx("someone wants %s", sep->se_service); 5380661be0bSJulian Elischer if (sep->se_accept && sep->se_socktype == SOCK_STREAM) { 539dea673e9SRodney W. Grimes ctrl = accept(sep->se_fd, (struct sockaddr *)0, 540dea673e9SRodney W. Grimes (int *)0); 541dea673e9SRodney W. Grimes if (debug) 542c1a2e93eSPhilippe Charnier warnx("accept, ctrl %d", ctrl); 543dea673e9SRodney W. Grimes if (ctrl < 0) { 544dea673e9SRodney W. Grimes if (errno != EINTR) 545dea673e9SRodney W. Grimes syslog(LOG_WARNING, 546dea673e9SRodney W. Grimes "accept (for %s): %m", 547d4676e5aSPoul-Henning Kamp sep->se_service); 54802c589d9SPoul-Henning Kamp if (sep->se_accept && 54902c589d9SPoul-Henning Kamp sep->se_socktype == SOCK_STREAM) 55002c589d9SPoul-Henning Kamp close(ctrl); 551dea673e9SRodney W. Grimes continue; 552dea673e9SRodney W. Grimes } 5533e2e58f1SDima Ruban if (cpmip(sep, ctrl) < 0) { 5543e2e58f1SDima Ruban close(ctrl); 5553e2e58f1SDima Ruban continue; 5563e2e58f1SDima Ruban } 557c48c2d6dSSheldon Hearn } else 558c48c2d6dSSheldon Hearn ctrl = sep->se_fd; 559c48c2d6dSSheldon Hearn if (log && !ISWRAP(sep)) { 560c48c2d6dSSheldon Hearn pnm = "unknown"; 561bee39b42SGeoff Rehmet i = sizeof peer; 562bee39b42SGeoff Rehmet if (getpeername(ctrl, (struct sockaddr *) 563bee39b42SGeoff Rehmet &peer, &i)) { 564c48c2d6dSSheldon Hearn i = sizeof peer; 565c48c2d6dSSheldon Hearn if (recvfrom(ctrl, buf, sizeof(buf), 566c48c2d6dSSheldon Hearn MSG_PEEK, 567c48c2d6dSSheldon Hearn (struct sockaddr *)&peer, &i) >= 0) 568c48c2d6dSSheldon Hearn pnm = inet_ntoa(peer.sin_addr); 569bee39b42SGeoff Rehmet } 570c48c2d6dSSheldon Hearn else 571c48c2d6dSSheldon Hearn pnm = inet_ntoa(peer.sin_addr); 572c48c2d6dSSheldon Hearn syslog(LOG_INFO,"%s from %s", sep->se_service, pnm); 573bee39b42SGeoff Rehmet } 574e20e25dbSDag-Erling Smørgrav (void) sigblock(SIGBLOCK); 575dea673e9SRodney W. Grimes pid = 0; 5761181cf3cSSheldon Hearn /* 5776134dbe0SSheldon Hearn * Fork for all external services, builtins which need to 5786134dbe0SSheldon Hearn * fork and anything we're wrapping (as wrapping might 5796134dbe0SSheldon Hearn * block or use hosts_options(5) twist). 5801181cf3cSSheldon Hearn */ 581c48c2d6dSSheldon Hearn dofork = !sep->se_bi || sep->se_bi->bi_fork || ISWRAP(sep); 582dea673e9SRodney W. Grimes if (dofork) { 583dea673e9SRodney W. Grimes if (sep->se_count++ == 0) 584a07f318fSAndrey A. Chernov (void)gettimeofday(&sep->se_time, (struct timezone *)NULL); 585dea673e9SRodney W. Grimes else if (sep->se_count >= toomany) { 586dea673e9SRodney W. Grimes struct timeval now; 587dea673e9SRodney W. Grimes 588a07f318fSAndrey A. Chernov (void)gettimeofday(&now, (struct timezone *)NULL); 589dea673e9SRodney W. Grimes if (now.tv_sec - sep->se_time.tv_sec > 590dea673e9SRodney W. Grimes CNT_INTVL) { 591dea673e9SRodney W. Grimes sep->se_time = now; 592dea673e9SRodney W. Grimes sep->se_count = 1; 593dea673e9SRodney W. Grimes } else { 594dea673e9SRodney W. Grimes syslog(LOG_ERR, 595dea673e9SRodney W. Grimes "%s/%s server failing (looping), service terminated", 596dea673e9SRodney W. Grimes sep->se_service, sep->se_proto); 597dea673e9SRodney W. Grimes close_sep(sep); 598e20e25dbSDag-Erling Smørgrav sigsetmask(0L); 599dea673e9SRodney W. Grimes if (!timingout) { 600dea673e9SRodney W. Grimes timingout = 1; 601dea673e9SRodney W. Grimes alarm(RETRYTIME); 602dea673e9SRodney W. Grimes } 603dea673e9SRodney W. Grimes continue; 604dea673e9SRodney W. Grimes } 605dea673e9SRodney W. Grimes } 606dea673e9SRodney W. Grimes pid = fork(); 607dea673e9SRodney W. Grimes } 608dea673e9SRodney W. Grimes if (pid < 0) { 609dea673e9SRodney W. Grimes syslog(LOG_ERR, "fork: %m"); 6100661be0bSJulian Elischer if (sep->se_accept && 611dea673e9SRodney W. Grimes sep->se_socktype == SOCK_STREAM) 612dea673e9SRodney W. Grimes close(ctrl); 613e20e25dbSDag-Erling Smørgrav sigsetmask(0L); 614dea673e9SRodney W. Grimes sleep(1); 615dea673e9SRodney W. Grimes continue; 616dea673e9SRodney W. Grimes } 6170661be0bSJulian Elischer if (pid) 6180661be0bSJulian Elischer addchild(sep, pid); 619e20e25dbSDag-Erling Smørgrav sigsetmask(0L); 620dea673e9SRodney W. Grimes if (pid == 0) { 621dea673e9SRodney W. Grimes if (dofork) { 622dea673e9SRodney W. Grimes if (debug) 623c1a2e93eSPhilippe Charnier warnx("+ closing from %d", maxsock); 624dea673e9SRodney W. Grimes for (tmpint = maxsock; tmpint > 2; tmpint--) 625dea673e9SRodney W. Grimes if (tmpint != ctrl) 6266467602bSJulian Elischer (void) close(tmpint); 627dea673e9SRodney W. Grimes } 62834b32a7cSGuido van Rooij /* 62934b32a7cSGuido van Rooij * Call tcpmux to find the real service to exec. 63034b32a7cSGuido van Rooij */ 63134b32a7cSGuido van Rooij if (sep->se_bi && 63234b32a7cSGuido van Rooij sep->se_bi->bi_fn == (void (*)()) tcpmux) { 63334b32a7cSGuido van Rooij sep = tcpmux(ctrl); 63434b32a7cSGuido van Rooij if (sep == NULL) { 63534b32a7cSGuido van Rooij close(ctrl); 63634b32a7cSGuido van Rooij _exit(0); 63734b32a7cSGuido van Rooij } 63834b32a7cSGuido van Rooij } 639c48c2d6dSSheldon Hearn if (ISWRAP(sep)) { 64049906707SSheldon Hearn inetd_setproctitle("wrapping", ctrl); 6411181cf3cSSheldon Hearn service = sep->se_server_name ? 6421181cf3cSSheldon Hearn sep->se_server_name : sep->se_service; 6431181cf3cSSheldon Hearn request_init(&req, RQ_DAEMON, service, RQ_FILE, ctrl, NULL); 6449980037eSMark Murray fromhost(&req); 6451181cf3cSSheldon Hearn deny_severity = LIBWRAP_DENY_FACILITY|LIBWRAP_DENY_SEVERITY; 6461181cf3cSSheldon Hearn allow_severity = LIBWRAP_ALLOW_FACILITY|LIBWRAP_ALLOW_SEVERITY; 6479980037eSMark Murray denied = !hosts_access(&req); 6489980037eSMark Murray if (denied) { 6499980037eSMark Murray syslog(deny_severity, 6509980037eSMark Murray "refused connection from %.500s, service %s (%s)", 6519980037eSMark Murray eval_client(&req), service, sep->se_proto); 652c48c2d6dSSheldon Hearn if (sep->se_socktype != SOCK_STREAM) 653c48c2d6dSSheldon Hearn recv(ctrl, buf, sizeof (buf), 0); 654c48c2d6dSSheldon Hearn if (dofork) 655c48c2d6dSSheldon Hearn _exit(0); 6569980037eSMark Murray } 6579980037eSMark Murray if (log) { 6589980037eSMark Murray syslog(allow_severity, 6599980037eSMark Murray "connection from %.500s, service %s (%s)", 6609980037eSMark Murray eval_client(&req), service, sep->se_proto); 6619980037eSMark Murray } 6629980037eSMark Murray } 6636467602bSJulian Elischer if (sep->se_bi) { 664dea673e9SRodney W. Grimes (*sep->se_bi->bi_fn)(ctrl, sep); 6656467602bSJulian Elischer } else { 666dea673e9SRodney W. Grimes if (debug) 667c1a2e93eSPhilippe Charnier warnx("%d execl %s", 668dea673e9SRodney W. Grimes getpid(), sep->se_server); 669dea673e9SRodney W. Grimes dup2(ctrl, 0); 670dea673e9SRodney W. Grimes close(ctrl); 671dea673e9SRodney W. Grimes dup2(0, 1); 672dea673e9SRodney W. Grimes dup2(0, 2); 673dea673e9SRodney W. Grimes if ((pwd = getpwnam(sep->se_user)) == NULL) { 674dea673e9SRodney W. Grimes syslog(LOG_ERR, 675dea673e9SRodney W. Grimes "%s/%s: %s: No such user", 676dea673e9SRodney W. Grimes sep->se_service, sep->se_proto, 677dea673e9SRodney W. Grimes sep->se_user); 678dea673e9SRodney W. Grimes if (sep->se_socktype != SOCK_STREAM) 679dea673e9SRodney W. Grimes recv(0, buf, sizeof (buf), 0); 6806467602bSJulian Elischer _exit(EX_NOUSER); 681dea673e9SRodney W. Grimes } 682b34683caSAndrey A. Chernov grp = NULL; 683b34683caSAndrey A. Chernov if ( sep->se_group != NULL 684b34683caSAndrey A. Chernov && (grp = getgrnam(sep->se_group)) == NULL 685b34683caSAndrey A. Chernov ) { 686b34683caSAndrey A. Chernov syslog(LOG_ERR, 687b34683caSAndrey A. Chernov "%s/%s: %s: No such group", 688b34683caSAndrey A. Chernov sep->se_service, sep->se_proto, 689b34683caSAndrey A. Chernov sep->se_group); 690b34683caSAndrey A. Chernov if (sep->se_socktype != SOCK_STREAM) 691b34683caSAndrey A. Chernov recv(0, buf, sizeof (buf), 0); 692b34683caSAndrey A. Chernov _exit(EX_NOUSER); 693b34683caSAndrey A. Chernov } 694b34683caSAndrey A. Chernov if (grp != NULL) 695b34683caSAndrey A. Chernov pwd->pw_gid = grp->gr_gid; 696fbc2342cSPeter Wemm #ifdef LOGIN_CAP 697186a5319SAndrey A. Chernov if ((lc = login_getclass(sep->se_class)) == NULL) { 698186a5319SAndrey A. Chernov /* error syslogged by getclass */ 699186a5319SAndrey A. Chernov syslog(LOG_ERR, 700186a5319SAndrey A. Chernov "%s/%s: %s: login class error", 70119ce9446SAndrey A. Chernov sep->se_service, sep->se_proto, 70219ce9446SAndrey A. Chernov sep->se_class); 703186a5319SAndrey A. Chernov if (sep->se_socktype != SOCK_STREAM) 704186a5319SAndrey A. Chernov recv(0, buf, sizeof (buf), 0); 705186a5319SAndrey A. Chernov _exit(EX_NOUSER); 706186a5319SAndrey A. Chernov } 707fbc2342cSPeter Wemm #endif 70884c60f0dSPeter Wemm if (setsid() < 0) { 70984c60f0dSPeter Wemm syslog(LOG_ERR, 71084c60f0dSPeter Wemm "%s: can't setsid(): %m", 71184c60f0dSPeter Wemm sep->se_service); 7126467602bSJulian Elischer /* _exit(EX_OSERR); not fatal yet */ 71384c60f0dSPeter Wemm } 714fbc2342cSPeter Wemm #ifdef LOGIN_CAP 715fbc2342cSPeter Wemm if (setusercontext(lc, pwd, pwd->pw_uid, 716fbc2342cSPeter Wemm LOGIN_SETALL) != 0) { 717fbc2342cSPeter Wemm syslog(LOG_ERR, 718fbc2342cSPeter Wemm "%s: can't setusercontext(..%s..): %m", 719fbc2342cSPeter Wemm sep->se_service, sep->se_user); 720fbc2342cSPeter Wemm _exit(EX_OSERR); 721fbc2342cSPeter Wemm } 722fbc2342cSPeter Wemm #else 723dea673e9SRodney W. Grimes if (pwd->pw_uid) { 72484c60f0dSPeter Wemm if (setlogin(sep->se_user) < 0) { 72584c60f0dSPeter Wemm syslog(LOG_ERR, 72684c60f0dSPeter Wemm "%s: can't setlogin(%s): %m", 72784c60f0dSPeter Wemm sep->se_service, sep->se_user); 7286467602bSJulian Elischer /* _exit(EX_OSERR); not yet */ 72984c60f0dSPeter Wemm } 730dea673e9SRodney W. Grimes if (setgid(pwd->pw_gid) < 0) { 731dea673e9SRodney W. Grimes syslog(LOG_ERR, 732dea673e9SRodney W. Grimes "%s: can't set gid %d: %m", 733dea673e9SRodney W. Grimes sep->se_service, pwd->pw_gid); 7346467602bSJulian Elischer _exit(EX_OSERR); 735dea673e9SRodney W. Grimes } 736dea673e9SRodney W. Grimes (void) initgroups(pwd->pw_name, 737dea673e9SRodney W. Grimes pwd->pw_gid); 738dea673e9SRodney W. Grimes if (setuid(pwd->pw_uid) < 0) { 739dea673e9SRodney W. Grimes syslog(LOG_ERR, 740dea673e9SRodney W. Grimes "%s: can't set uid %d: %m", 741dea673e9SRodney W. Grimes sep->se_service, pwd->pw_uid); 7426467602bSJulian Elischer _exit(EX_OSERR); 743dea673e9SRodney W. Grimes } 744dea673e9SRodney W. Grimes } 745fbc2342cSPeter Wemm #endif 74665434143SBruce Evans sigaction(SIGPIPE, &sapipe, 747e523d5aeSGuido van Rooij (struct sigaction *)0); 748dea673e9SRodney W. Grimes execv(sep->se_server, sep->se_argv); 749dea673e9SRodney W. Grimes syslog(LOG_ERR, 750dea673e9SRodney W. Grimes "cannot execute %s: %m", sep->se_server); 7519980037eSMark Murray if (sep->se_socktype != SOCK_STREAM) 7529980037eSMark Murray recv(0, buf, sizeof (buf), 0); 753dea673e9SRodney W. Grimes } 7541181cf3cSSheldon Hearn if (dofork) 7551181cf3cSSheldon Hearn _exit(0); 756dea673e9SRodney W. Grimes } 7570661be0bSJulian Elischer if (sep->se_accept && sep->se_socktype == SOCK_STREAM) 758dea673e9SRodney W. Grimes close(ctrl); 759dea673e9SRodney W. Grimes } 760dea673e9SRodney W. Grimes } 761dea673e9SRodney W. Grimes } 762dea673e9SRodney W. Grimes 7630661be0bSJulian Elischer /* 764e20e25dbSDag-Erling Smørgrav * Add a signal flag to the signal flag queue for later handling 765e20e25dbSDag-Erling Smørgrav */ 766e20e25dbSDag-Erling Smørgrav 767e20e25dbSDag-Erling Smørgrav void flag_signal(c) 768e20e25dbSDag-Erling Smørgrav char c; 769e20e25dbSDag-Erling Smørgrav { 77087cef388SDag-Erling Smørgrav if (write(signalpipe[1], &c, 1) != 1) { 771e20e25dbSDag-Erling Smørgrav syslog(LOG_ERR, "write: %m"); 772e20e25dbSDag-Erling Smørgrav exit(EX_OSERR); 773e20e25dbSDag-Erling Smørgrav } 774e20e25dbSDag-Erling Smørgrav } 775e20e25dbSDag-Erling Smørgrav 776e20e25dbSDag-Erling Smørgrav /* 7770661be0bSJulian Elischer * Record a new child pid for this service. If we've reached the 7780661be0bSJulian Elischer * limit on children, then stop accepting incoming requests. 7790661be0bSJulian Elischer */ 7800661be0bSJulian Elischer 7810661be0bSJulian Elischer void 7820661be0bSJulian Elischer addchild(struct servtab *sep, pid_t pid) 7830661be0bSJulian Elischer { 7840661be0bSJulian Elischer #ifdef SANITY_CHECK 7850661be0bSJulian Elischer if (sep->se_numchild >= sep->se_maxchild) { 7860661be0bSJulian Elischer syslog(LOG_ERR, "%s: %d >= %d", 7870661be0bSJulian Elischer __FUNCTION__, sep->se_numchild, sep->se_maxchild); 7880661be0bSJulian Elischer exit(EX_SOFTWARE); 7890661be0bSJulian Elischer } 7900661be0bSJulian Elischer #endif 7910661be0bSJulian Elischer if (sep->se_maxchild == 0) 7920661be0bSJulian Elischer return; 7930661be0bSJulian Elischer sep->se_pids[sep->se_numchild++] = pid; 7940661be0bSJulian Elischer if (sep->se_numchild == sep->se_maxchild) 7950661be0bSJulian Elischer disable(sep); 7960661be0bSJulian Elischer } 7970661be0bSJulian Elischer 7980661be0bSJulian Elischer /* 7990661be0bSJulian Elischer * Some child process has exited. See if it's on somebody's list. 8000661be0bSJulian Elischer */ 8010661be0bSJulian Elischer 802dea673e9SRodney W. Grimes void 803e20e25dbSDag-Erling Smørgrav flag_reapchild(signo) 804dea673e9SRodney W. Grimes int signo; 805dea673e9SRodney W. Grimes { 806e20e25dbSDag-Erling Smørgrav flag_signal('C'); 807e20e25dbSDag-Erling Smørgrav } 808e20e25dbSDag-Erling Smørgrav 809e20e25dbSDag-Erling Smørgrav void 810e20e25dbSDag-Erling Smørgrav reapchild() 811e20e25dbSDag-Erling Smørgrav { 8120661be0bSJulian Elischer int k, status; 813dea673e9SRodney W. Grimes pid_t pid; 814dea673e9SRodney W. Grimes struct servtab *sep; 815dea673e9SRodney W. Grimes 816dea673e9SRodney W. Grimes for (;;) { 817dea673e9SRodney W. Grimes pid = wait3(&status, WNOHANG, (struct rusage *)0); 818dea673e9SRodney W. Grimes if (pid <= 0) 819dea673e9SRodney W. Grimes break; 820dea673e9SRodney W. Grimes if (debug) 821c1a2e93eSPhilippe Charnier warnx("%d reaped, status %#x", pid, status); 8220661be0bSJulian Elischer for (sep = servtab; sep; sep = sep->se_next) { 8230661be0bSJulian Elischer for (k = 0; k < sep->se_numchild; k++) 8240661be0bSJulian Elischer if (sep->se_pids[k] == pid) 8250661be0bSJulian Elischer break; 8260661be0bSJulian Elischer if (k == sep->se_numchild) 8270661be0bSJulian Elischer continue; 8280661be0bSJulian Elischer if (sep->se_numchild == sep->se_maxchild) 8290661be0bSJulian Elischer enable(sep); 8300661be0bSJulian Elischer sep->se_pids[k] = sep->se_pids[--sep->se_numchild]; 831dea673e9SRodney W. Grimes if (status) 832dea673e9SRodney W. Grimes syslog(LOG_WARNING, 8330661be0bSJulian Elischer "%s[%d]: exit status 0x%x", 8340661be0bSJulian Elischer sep->se_server, pid, status); 8350661be0bSJulian Elischer break; 836dea673e9SRodney W. Grimes } 837dea673e9SRodney W. Grimes } 838dea673e9SRodney W. Grimes } 839dea673e9SRodney W. Grimes 840dea673e9SRodney W. Grimes void 841e20e25dbSDag-Erling Smørgrav flag_config(signo) 842dea673e9SRodney W. Grimes int signo; 843dea673e9SRodney W. Grimes { 844e20e25dbSDag-Erling Smørgrav flag_signal('H'); 845e20e25dbSDag-Erling Smørgrav } 846e20e25dbSDag-Erling Smørgrav 847e20e25dbSDag-Erling Smørgrav void config() 848e20e25dbSDag-Erling Smørgrav { 8490661be0bSJulian Elischer struct servtab *sep, *new, **sepp; 850e20e25dbSDag-Erling Smørgrav long omask; 851dea673e9SRodney W. Grimes 852dea673e9SRodney W. Grimes if (!setconfig()) { 853dea673e9SRodney W. Grimes syslog(LOG_ERR, "%s: %m", CONFIG); 854dea673e9SRodney W. Grimes return; 855dea673e9SRodney W. Grimes } 856dea673e9SRodney W. Grimes for (sep = servtab; sep; sep = sep->se_next) 857dea673e9SRodney W. Grimes sep->se_checked = 0; 8580661be0bSJulian Elischer while ((new = getconfigent())) { 859b34683caSAndrey A. Chernov if (getpwnam(new->se_user) == NULL) { 860dea673e9SRodney W. Grimes syslog(LOG_ERR, 861dea673e9SRodney W. Grimes "%s/%s: No such user '%s', service ignored", 8620661be0bSJulian Elischer new->se_service, new->se_proto, new->se_user); 863dea673e9SRodney W. Grimes continue; 864dea673e9SRodney W. Grimes } 865b34683caSAndrey A. Chernov if (new->se_group && getgrnam(new->se_group) == NULL) { 866b34683caSAndrey A. Chernov syslog(LOG_ERR, 867b34683caSAndrey A. Chernov "%s/%s: No such group '%s', service ignored", 868b34683caSAndrey A. Chernov new->se_service, new->se_proto, new->se_group); 869b34683caSAndrey A. Chernov continue; 870b34683caSAndrey A. Chernov } 871186a5319SAndrey A. Chernov #ifdef LOGIN_CAP 872186a5319SAndrey A. Chernov if (login_getclass(new->se_class) == NULL) { 873186a5319SAndrey A. Chernov /* error syslogged by getclass */ 874186a5319SAndrey A. Chernov syslog(LOG_ERR, 87519ce9446SAndrey A. Chernov "%s/%s: %s: login class error, service ignored", 87619ce9446SAndrey A. Chernov new->se_service, new->se_proto, new->se_class); 877186a5319SAndrey A. Chernov continue; 878186a5319SAndrey A. Chernov } 879186a5319SAndrey A. Chernov #endif 880dea673e9SRodney W. Grimes for (sep = servtab; sep; sep = sep->se_next) 8810661be0bSJulian Elischer if (strcmp(sep->se_service, new->se_service) == 0 && 8820661be0bSJulian Elischer strcmp(sep->se_proto, new->se_proto) == 0) 883dea673e9SRodney W. Grimes break; 884dea673e9SRodney W. Grimes if (sep != 0) { 885dea673e9SRodney W. Grimes int i; 886dea673e9SRodney W. Grimes 8870661be0bSJulian Elischer #define SWAP(a, b) { typeof(a) c = a; a = b; b = c; } 888e20e25dbSDag-Erling Smørgrav omask = sigblock(SIGBLOCK); 8890661be0bSJulian Elischer /* copy over outstanding child pids */ 8900661be0bSJulian Elischer if (sep->se_maxchild && new->se_maxchild) { 8910661be0bSJulian Elischer new->se_numchild = sep->se_numchild; 8920661be0bSJulian Elischer if (new->se_numchild > new->se_maxchild) 8930661be0bSJulian Elischer new->se_numchild = new->se_maxchild; 8940661be0bSJulian Elischer memcpy(new->se_pids, sep->se_pids, 8950661be0bSJulian Elischer new->se_numchild * sizeof(*new->se_pids)); 8960661be0bSJulian Elischer } 8970661be0bSJulian Elischer SWAP(sep->se_pids, new->se_pids); 8980661be0bSJulian Elischer sep->se_maxchild = new->se_maxchild; 8990661be0bSJulian Elischer sep->se_numchild = new->se_numchild; 9003e2e58f1SDima Ruban sep->se_maxcpm = new->se_maxcpm; 9010661be0bSJulian Elischer /* might need to turn on or off service now */ 9020661be0bSJulian Elischer if (sep->se_fd >= 0) { 9030661be0bSJulian Elischer if (sep->se_maxchild 9040661be0bSJulian Elischer && sep->se_numchild == sep->se_maxchild) { 9050661be0bSJulian Elischer if (FD_ISSET(sep->se_fd, &allsock)) 9060661be0bSJulian Elischer disable(sep); 9070661be0bSJulian Elischer } else { 9080661be0bSJulian Elischer if (!FD_ISSET(sep->se_fd, &allsock)) 9090661be0bSJulian Elischer enable(sep); 9100661be0bSJulian Elischer } 9110661be0bSJulian Elischer } 9120661be0bSJulian Elischer sep->se_accept = new->se_accept; 9130661be0bSJulian Elischer SWAP(sep->se_user, new->se_user); 914b34683caSAndrey A. Chernov SWAP(sep->se_group, new->se_group); 915186a5319SAndrey A. Chernov #ifdef LOGIN_CAP 916186a5319SAndrey A. Chernov SWAP(sep->se_class, new->se_class); 917186a5319SAndrey A. Chernov #endif 9180661be0bSJulian Elischer SWAP(sep->se_server, new->se_server); 9191181cf3cSSheldon Hearn SWAP(sep->se_server_name, new->se_server_name); 920dea673e9SRodney W. Grimes for (i = 0; i < MAXARGV; i++) 9210661be0bSJulian Elischer SWAP(sep->se_argv[i], new->se_argv[i]); 922e20e25dbSDag-Erling Smørgrav sigsetmask(omask); 9230661be0bSJulian Elischer freeconfig(new); 924dea673e9SRodney W. Grimes if (debug) 925dea673e9SRodney W. Grimes print_service("REDO", sep); 926dea673e9SRodney W. Grimes } else { 9270661be0bSJulian Elischer sep = enter(new); 928dea673e9SRodney W. Grimes if (debug) 929dea673e9SRodney W. Grimes print_service("ADD ", sep); 930dea673e9SRodney W. Grimes } 931dea673e9SRodney W. Grimes sep->se_checked = 1; 932dea673e9SRodney W. Grimes if (ISMUX(sep)) { 933dea673e9SRodney W. Grimes sep->se_fd = -1; 934dea673e9SRodney W. Grimes continue; 935dea673e9SRodney W. Grimes } 93655b91f3aSGeoff Rehmet if (!sep->se_rpc) { 937dea673e9SRodney W. Grimes sp = getservbyname(sep->se_service, sep->se_proto); 938dea673e9SRodney W. Grimes if (sp == 0) { 939dea673e9SRodney W. Grimes syslog(LOG_ERR, "%s/%s: unknown service", 940dea673e9SRodney W. Grimes sep->se_service, sep->se_proto); 941dea673e9SRodney W. Grimes sep->se_checked = 0; 942dea673e9SRodney W. Grimes continue; 943dea673e9SRodney W. Grimes } 944dea673e9SRodney W. Grimes if (sp->s_port != sep->se_ctrladdr.sin_port) { 945dea673e9SRodney W. Grimes sep->se_ctrladdr.sin_family = AF_INET; 946fb425165SJulian Elischer sep->se_ctrladdr.sin_addr = bind_address; 947dea673e9SRodney W. Grimes sep->se_ctrladdr.sin_port = sp->s_port; 948dea673e9SRodney W. Grimes if (sep->se_fd >= 0) 949dea673e9SRodney W. Grimes close_sep(sep); 950dea673e9SRodney W. Grimes } 95155b91f3aSGeoff Rehmet } else { 95255b91f3aSGeoff Rehmet rpc = getrpcbyname(sep->se_service); 95355b91f3aSGeoff Rehmet if (rpc == 0) { 95455b91f3aSGeoff Rehmet syslog(LOG_ERR, "%s/%s unknown RPC service.", 95555b91f3aSGeoff Rehmet sep->se_service, sep->se_proto); 95655b91f3aSGeoff Rehmet if (sep->se_fd != -1) 95755b91f3aSGeoff Rehmet (void) close(sep->se_fd); 95855b91f3aSGeoff Rehmet sep->se_fd = -1; 95955b91f3aSGeoff Rehmet continue; 96055b91f3aSGeoff Rehmet } 96155b91f3aSGeoff Rehmet if (rpc->r_number != sep->se_rpc_prog) { 96255b91f3aSGeoff Rehmet if (sep->se_rpc_prog) 96355b91f3aSGeoff Rehmet unregisterrpc(sep); 96455b91f3aSGeoff Rehmet sep->se_rpc_prog = rpc->r_number; 96555b91f3aSGeoff Rehmet if (sep->se_fd != -1) 96655b91f3aSGeoff Rehmet (void) close(sep->se_fd); 96755b91f3aSGeoff Rehmet sep->se_fd = -1; 96855b91f3aSGeoff Rehmet } 96955b91f3aSGeoff Rehmet } 970dea673e9SRodney W. Grimes if (sep->se_fd == -1) 971dea673e9SRodney W. Grimes setup(sep); 972dea673e9SRodney W. Grimes } 973dea673e9SRodney W. Grimes endconfig(); 974dea673e9SRodney W. Grimes /* 975dea673e9SRodney W. Grimes * Purge anything not looked at above. 976dea673e9SRodney W. Grimes */ 977e20e25dbSDag-Erling Smørgrav omask = sigblock(SIGBLOCK); 978dea673e9SRodney W. Grimes sepp = &servtab; 9796467602bSJulian Elischer while ((sep = *sepp)) { 980dea673e9SRodney W. Grimes if (sep->se_checked) { 981dea673e9SRodney W. Grimes sepp = &sep->se_next; 982dea673e9SRodney W. Grimes continue; 983dea673e9SRodney W. Grimes } 984dea673e9SRodney W. Grimes *sepp = sep->se_next; 985dea673e9SRodney W. Grimes if (sep->se_fd >= 0) 986dea673e9SRodney W. Grimes close_sep(sep); 987dea673e9SRodney W. Grimes if (debug) 988dea673e9SRodney W. Grimes print_service("FREE", sep); 98955b91f3aSGeoff Rehmet if (sep->se_rpc && sep->se_rpc_prog > 0) 99055b91f3aSGeoff Rehmet unregisterrpc(sep); 991dea673e9SRodney W. Grimes freeconfig(sep); 992dea673e9SRodney W. Grimes free((char *)sep); 993dea673e9SRodney W. Grimes } 994e20e25dbSDag-Erling Smørgrav (void) sigsetmask(omask); 995dea673e9SRodney W. Grimes } 996dea673e9SRodney W. Grimes 997dea673e9SRodney W. Grimes void 99855b91f3aSGeoff Rehmet unregisterrpc(sep) 99955b91f3aSGeoff Rehmet struct servtab *sep; 100055b91f3aSGeoff Rehmet { 100155b91f3aSGeoff Rehmet int i; 100255b91f3aSGeoff Rehmet struct servtab *sepp; 1003e20e25dbSDag-Erling Smørgrav long omask; 100455b91f3aSGeoff Rehmet 1005e20e25dbSDag-Erling Smørgrav omask = sigblock(SIGBLOCK); 100655b91f3aSGeoff Rehmet for (sepp = servtab; sepp; sepp = sepp->se_next) { 100755b91f3aSGeoff Rehmet if (sepp == sep) 100855b91f3aSGeoff Rehmet continue; 100955b91f3aSGeoff Rehmet if (sep->se_checked == 0 || 101055b91f3aSGeoff Rehmet !sepp->se_rpc || 101155b91f3aSGeoff Rehmet sep->se_rpc_prog != sepp->se_rpc_prog) 101255b91f3aSGeoff Rehmet continue; 101355b91f3aSGeoff Rehmet return; 101455b91f3aSGeoff Rehmet } 101555b91f3aSGeoff Rehmet if (debug) 101655b91f3aSGeoff Rehmet print_service("UNREG", sep); 101755b91f3aSGeoff Rehmet for (i = sep->se_rpc_lowvers; i <= sep->se_rpc_highvers; i++) 101855b91f3aSGeoff Rehmet pmap_unset(sep->se_rpc_prog, i); 101955b91f3aSGeoff Rehmet if (sep->se_fd != -1) 102055b91f3aSGeoff Rehmet (void) close(sep->se_fd); 102155b91f3aSGeoff Rehmet sep->se_fd = -1; 1022e20e25dbSDag-Erling Smørgrav (void) sigsetmask(omask); 102355b91f3aSGeoff Rehmet } 102455b91f3aSGeoff Rehmet 102555b91f3aSGeoff Rehmet void 1026e20e25dbSDag-Erling Smørgrav flag_retry(signo) 1027dea673e9SRodney W. Grimes int signo; 1028dea673e9SRodney W. Grimes { 1029e20e25dbSDag-Erling Smørgrav flag_signal('A'); 1030e20e25dbSDag-Erling Smørgrav } 1031e20e25dbSDag-Erling Smørgrav 1032e20e25dbSDag-Erling Smørgrav void 1033e20e25dbSDag-Erling Smørgrav retry() 1034e20e25dbSDag-Erling Smørgrav { 1035dea673e9SRodney W. Grimes struct servtab *sep; 1036dea673e9SRodney W. Grimes 1037dea673e9SRodney W. Grimes timingout = 0; 1038dea673e9SRodney W. Grimes for (sep = servtab; sep; sep = sep->se_next) 10396467602bSJulian Elischer if (sep->se_fd == -1 && !ISMUX(sep)) 1040dea673e9SRodney W. Grimes setup(sep); 1041dea673e9SRodney W. Grimes } 1042dea673e9SRodney W. Grimes 1043dea673e9SRodney W. Grimes void 1044dea673e9SRodney W. Grimes setup(sep) 1045dea673e9SRodney W. Grimes struct servtab *sep; 1046dea673e9SRodney W. Grimes { 1047dea673e9SRodney W. Grimes int on = 1; 1048dea673e9SRodney W. Grimes 1049dea673e9SRodney W. Grimes if ((sep->se_fd = socket(AF_INET, sep->se_socktype, 0)) < 0) { 1050dea673e9SRodney W. Grimes if (debug) 1051c1a2e93eSPhilippe Charnier warn("socket failed on %s/%s", 1052c1a2e93eSPhilippe Charnier sep->se_service, sep->se_proto); 1053dea673e9SRodney W. Grimes syslog(LOG_ERR, "%s/%s: socket: %m", 1054dea673e9SRodney W. Grimes sep->se_service, sep->se_proto); 1055dea673e9SRodney W. Grimes return; 1056dea673e9SRodney W. Grimes } 1057dea673e9SRodney W. Grimes #define turnon(fd, opt) \ 1058dea673e9SRodney W. Grimes setsockopt(fd, SOL_SOCKET, opt, (char *)&on, sizeof (on)) 1059dea673e9SRodney W. Grimes if (strcmp(sep->se_proto, "tcp") == 0 && (options & SO_DEBUG) && 1060dea673e9SRodney W. Grimes turnon(sep->se_fd, SO_DEBUG) < 0) 1061dea673e9SRodney W. Grimes syslog(LOG_ERR, "setsockopt (SO_DEBUG): %m"); 1062dea673e9SRodney W. Grimes if (turnon(sep->se_fd, SO_REUSEADDR) < 0) 1063dea673e9SRodney W. Grimes syslog(LOG_ERR, "setsockopt (SO_REUSEADDR): %m"); 1064aeb83a46SGarrett Wollman #ifdef SO_PRIVSTATE 1065e50d7759SGarrett Wollman if (turnon(sep->se_fd, SO_PRIVSTATE) < 0) 1066e50d7759SGarrett Wollman syslog(LOG_ERR, "setsockopt (SO_PRIVSTATE): %m"); 1067aeb83a46SGarrett Wollman #endif 1068dea673e9SRodney W. Grimes #undef turnon 1069c6c38f1dSGuido van Rooij if (sep->se_type == TTCP_TYPE) 1070c6c38f1dSGuido van Rooij if (setsockopt(sep->se_fd, IPPROTO_TCP, TCP_NOPUSH, 1071c6c38f1dSGuido van Rooij (char *)&on, sizeof (on)) < 0) 1072c6c38f1dSGuido van Rooij syslog(LOG_ERR, "setsockopt (TCP_NOPUSH): %m"); 1073dea673e9SRodney W. Grimes if (bind(sep->se_fd, (struct sockaddr *)&sep->se_ctrladdr, 1074dea673e9SRodney W. Grimes sizeof (sep->se_ctrladdr)) < 0) { 1075dea673e9SRodney W. Grimes if (debug) 1076c1a2e93eSPhilippe Charnier warn("bind failed on %s/%s", 1077c1a2e93eSPhilippe Charnier sep->se_service, sep->se_proto); 1078dea673e9SRodney W. Grimes syslog(LOG_ERR, "%s/%s: bind: %m", 1079dea673e9SRodney W. Grimes sep->se_service, sep->se_proto); 1080dea673e9SRodney W. Grimes (void) close(sep->se_fd); 1081dea673e9SRodney W. Grimes sep->se_fd = -1; 1082dea673e9SRodney W. Grimes if (!timingout) { 1083dea673e9SRodney W. Grimes timingout = 1; 1084dea673e9SRodney W. Grimes alarm(RETRYTIME); 1085dea673e9SRodney W. Grimes } 1086dea673e9SRodney W. Grimes return; 1087dea673e9SRodney W. Grimes } 108855b91f3aSGeoff Rehmet if (sep->se_rpc) { 108955b91f3aSGeoff Rehmet int i, len = sizeof(struct sockaddr); 109055b91f3aSGeoff Rehmet 109155b91f3aSGeoff Rehmet if (getsockname(sep->se_fd, 109255b91f3aSGeoff Rehmet (struct sockaddr*)&sep->se_ctrladdr, &len) < 0){ 109355b91f3aSGeoff Rehmet syslog(LOG_ERR, "%s/%s: getsockname: %m", 109455b91f3aSGeoff Rehmet sep->se_service, sep->se_proto); 109555b91f3aSGeoff Rehmet (void) close(sep->se_fd); 109655b91f3aSGeoff Rehmet sep->se_fd = -1; 109755b91f3aSGeoff Rehmet return; 109855b91f3aSGeoff Rehmet } 109955b91f3aSGeoff Rehmet if (debug) 110055b91f3aSGeoff Rehmet print_service("REG ", sep); 110155b91f3aSGeoff Rehmet for (i = sep->se_rpc_lowvers; i <= sep->se_rpc_highvers; i++) { 110255b91f3aSGeoff Rehmet pmap_unset(sep->se_rpc_prog, i); 110355b91f3aSGeoff Rehmet pmap_set(sep->se_rpc_prog, i, 110455b91f3aSGeoff Rehmet (sep->se_socktype == SOCK_DGRAM) 110555b91f3aSGeoff Rehmet ? IPPROTO_UDP : IPPROTO_TCP, 110655b91f3aSGeoff Rehmet ntohs(sep->se_ctrladdr.sin_port)); 110755b91f3aSGeoff Rehmet } 110855b91f3aSGeoff Rehmet 110955b91f3aSGeoff Rehmet } 1110dea673e9SRodney W. Grimes if (sep->se_socktype == SOCK_STREAM) 1111e2894535SDavid Greenman listen(sep->se_fd, 64); 11120661be0bSJulian Elischer enable(sep); 1113dea673e9SRodney W. Grimes if (debug) { 1114c1a2e93eSPhilippe Charnier warnx("registered %s on %d", 1115dea673e9SRodney W. Grimes sep->se_server, sep->se_fd); 1116dea673e9SRodney W. Grimes } 1117dea673e9SRodney W. Grimes } 1118dea673e9SRodney W. Grimes 1119dea673e9SRodney W. Grimes /* 1120dea673e9SRodney W. Grimes * Finish with a service and its socket. 1121dea673e9SRodney W. Grimes */ 1122dea673e9SRodney W. Grimes void 1123dea673e9SRodney W. Grimes close_sep(sep) 1124dea673e9SRodney W. Grimes struct servtab *sep; 1125dea673e9SRodney W. Grimes { 1126dea673e9SRodney W. Grimes if (sep->se_fd >= 0) { 11270661be0bSJulian Elischer if (FD_ISSET(sep->se_fd, &allsock)) 11280661be0bSJulian Elischer disable(sep); 1129dea673e9SRodney W. Grimes (void) close(sep->se_fd); 1130dea673e9SRodney W. Grimes sep->se_fd = -1; 1131dea673e9SRodney W. Grimes } 1132dea673e9SRodney W. Grimes sep->se_count = 0; 11330661be0bSJulian Elischer sep->se_numchild = 0; /* forget about any existing children */ 1134dea673e9SRodney W. Grimes } 1135dea673e9SRodney W. Grimes 1136eb0fde47SSheldon Hearn int 1137eb0fde47SSheldon Hearn matchservent(name1, name2, proto) 1138eb0fde47SSheldon Hearn char *name1, *name2, *proto; 1139eb0fde47SSheldon Hearn { 1140eb0fde47SSheldon Hearn char **alias; 1141eb0fde47SSheldon Hearn struct servent *se; 1142eb0fde47SSheldon Hearn 1143eb0fde47SSheldon Hearn if ((se = getservbyname(name1, proto)) != NULL) { 1144eb0fde47SSheldon Hearn if (strcmp(name2, se->s_name) == 0) 1145eb0fde47SSheldon Hearn return(1); 1146eb0fde47SSheldon Hearn for (alias = se->s_aliases; *alias; alias++) 1147eb0fde47SSheldon Hearn if (strcmp(name2, *alias) == 0) 1148eb0fde47SSheldon Hearn return(1); 1149eb0fde47SSheldon Hearn } 1150eb0fde47SSheldon Hearn return(0); 1151eb0fde47SSheldon Hearn } 1152eb0fde47SSheldon Hearn 1153dea673e9SRodney W. Grimes struct servtab * 1154dea673e9SRodney W. Grimes enter(cp) 1155dea673e9SRodney W. Grimes struct servtab *cp; 1156dea673e9SRodney W. Grimes { 1157dea673e9SRodney W. Grimes struct servtab *sep; 1158e20e25dbSDag-Erling Smørgrav long omask; 1159dea673e9SRodney W. Grimes 1160dea673e9SRodney W. Grimes sep = (struct servtab *)malloc(sizeof (*sep)); 1161dea673e9SRodney W. Grimes if (sep == (struct servtab *)0) { 1162dea673e9SRodney W. Grimes syslog(LOG_ERR, "Out of memory."); 11636467602bSJulian Elischer exit(EX_OSERR); 1164dea673e9SRodney W. Grimes } 1165dea673e9SRodney W. Grimes *sep = *cp; 1166dea673e9SRodney W. Grimes sep->se_fd = -1; 1167e20e25dbSDag-Erling Smørgrav omask = sigblock(SIGBLOCK); 1168dea673e9SRodney W. Grimes sep->se_next = servtab; 1169dea673e9SRodney W. Grimes servtab = sep; 1170e20e25dbSDag-Erling Smørgrav sigsetmask(omask); 1171dea673e9SRodney W. Grimes return (sep); 1172dea673e9SRodney W. Grimes } 1173dea673e9SRodney W. Grimes 11740661be0bSJulian Elischer void 11750661be0bSJulian Elischer enable(struct servtab *sep) 11760661be0bSJulian Elischer { 11770661be0bSJulian Elischer if (debug) 1178c1a2e93eSPhilippe Charnier warnx( 11790661be0bSJulian Elischer "enabling %s, fd %d", sep->se_service, sep->se_fd); 11800661be0bSJulian Elischer #ifdef SANITY_CHECK 11810661be0bSJulian Elischer if (sep->se_fd < 0) { 11820661be0bSJulian Elischer syslog(LOG_ERR, 11830661be0bSJulian Elischer "%s: %s: bad fd", __FUNCTION__, sep->se_service); 11840661be0bSJulian Elischer exit(EX_SOFTWARE); 11850661be0bSJulian Elischer } 11860661be0bSJulian Elischer if (ISMUX(sep)) { 11870661be0bSJulian Elischer syslog(LOG_ERR, 11880661be0bSJulian Elischer "%s: %s: is mux", __FUNCTION__, sep->se_service); 11890661be0bSJulian Elischer exit(EX_SOFTWARE); 11900661be0bSJulian Elischer } 11910661be0bSJulian Elischer if (FD_ISSET(sep->se_fd, &allsock)) { 11920661be0bSJulian Elischer syslog(LOG_ERR, 11930661be0bSJulian Elischer "%s: %s: not off", __FUNCTION__, sep->se_service); 11940661be0bSJulian Elischer exit(EX_SOFTWARE); 11950661be0bSJulian Elischer } 11960661be0bSJulian Elischer #endif 11970661be0bSJulian Elischer FD_SET(sep->se_fd, &allsock); 11980661be0bSJulian Elischer nsock++; 11990661be0bSJulian Elischer if (sep->se_fd > maxsock) 12000661be0bSJulian Elischer maxsock = sep->se_fd; 12010661be0bSJulian Elischer } 12020661be0bSJulian Elischer 12030661be0bSJulian Elischer void 12040661be0bSJulian Elischer disable(struct servtab *sep) 12050661be0bSJulian Elischer { 12060661be0bSJulian Elischer if (debug) 1207c1a2e93eSPhilippe Charnier warnx( 12080661be0bSJulian Elischer "disabling %s, fd %d", sep->se_service, sep->se_fd); 12090661be0bSJulian Elischer #ifdef SANITY_CHECK 12100661be0bSJulian Elischer if (sep->se_fd < 0) { 12110661be0bSJulian Elischer syslog(LOG_ERR, 12120661be0bSJulian Elischer "%s: %s: bad fd", __FUNCTION__, sep->se_service); 12130661be0bSJulian Elischer exit(EX_SOFTWARE); 12140661be0bSJulian Elischer } 12150661be0bSJulian Elischer if (ISMUX(sep)) { 12160661be0bSJulian Elischer syslog(LOG_ERR, 12170661be0bSJulian Elischer "%s: %s: is mux", __FUNCTION__, sep->se_service); 12180661be0bSJulian Elischer exit(EX_SOFTWARE); 12190661be0bSJulian Elischer } 12200661be0bSJulian Elischer if (!FD_ISSET(sep->se_fd, &allsock)) { 12210661be0bSJulian Elischer syslog(LOG_ERR, 12220661be0bSJulian Elischer "%s: %s: not on", __FUNCTION__, sep->se_service); 12230661be0bSJulian Elischer exit(EX_SOFTWARE); 12240661be0bSJulian Elischer } 12250661be0bSJulian Elischer if (nsock == 0) { 12260661be0bSJulian Elischer syslog(LOG_ERR, "%s: nsock=0", __FUNCTION__); 12270661be0bSJulian Elischer exit(EX_SOFTWARE); 12280661be0bSJulian Elischer } 12290661be0bSJulian Elischer #endif 12300661be0bSJulian Elischer FD_CLR(sep->se_fd, &allsock); 12310661be0bSJulian Elischer nsock--; 12320661be0bSJulian Elischer if (sep->se_fd == maxsock) 12330661be0bSJulian Elischer maxsock--; 12340661be0bSJulian Elischer } 12350661be0bSJulian Elischer 1236dea673e9SRodney W. Grimes FILE *fconfig = NULL; 1237dea673e9SRodney W. Grimes struct servtab serv; 1238dea673e9SRodney W. Grimes char line[LINE_MAX]; 1239dea673e9SRodney W. Grimes 1240dea673e9SRodney W. Grimes int 1241dea673e9SRodney W. Grimes setconfig() 1242dea673e9SRodney W. Grimes { 1243dea673e9SRodney W. Grimes 1244dea673e9SRodney W. Grimes if (fconfig != NULL) { 1245dea673e9SRodney W. Grimes fseek(fconfig, 0L, SEEK_SET); 1246dea673e9SRodney W. Grimes return (1); 1247dea673e9SRodney W. Grimes } 1248dea673e9SRodney W. Grimes fconfig = fopen(CONFIG, "r"); 1249dea673e9SRodney W. Grimes return (fconfig != NULL); 1250dea673e9SRodney W. Grimes } 1251dea673e9SRodney W. Grimes 1252dea673e9SRodney W. Grimes void 1253dea673e9SRodney W. Grimes endconfig() 1254dea673e9SRodney W. Grimes { 1255dea673e9SRodney W. Grimes if (fconfig) { 1256dea673e9SRodney W. Grimes (void) fclose(fconfig); 1257dea673e9SRodney W. Grimes fconfig = NULL; 1258dea673e9SRodney W. Grimes } 1259dea673e9SRodney W. Grimes } 1260dea673e9SRodney W. Grimes 1261dea673e9SRodney W. Grimes struct servtab * 1262dea673e9SRodney W. Grimes getconfigent() 1263dea673e9SRodney W. Grimes { 1264dea673e9SRodney W. Grimes struct servtab *sep = &serv; 1265dea673e9SRodney W. Grimes int argc; 12660661be0bSJulian Elischer char *cp, *arg, *s; 126755b91f3aSGeoff Rehmet char *versp; 1268dea673e9SRodney W. Grimes static char TCPMUX_TOKEN[] = "tcpmux/"; 1269dea673e9SRodney W. Grimes #define MUX_LEN (sizeof(TCPMUX_TOKEN)-1) 1270dea673e9SRodney W. Grimes 1271dea673e9SRodney W. Grimes more: 1272dea673e9SRodney W. Grimes while ((cp = nextline(fconfig)) && (*cp == '#' || *cp == '\0')) 1273dea673e9SRodney W. Grimes ; 1274dea673e9SRodney W. Grimes if (cp == NULL) 1275dea673e9SRodney W. Grimes return ((struct servtab *)0); 1276dea673e9SRodney W. Grimes /* 1277dea673e9SRodney W. Grimes * clear the static buffer, since some fields (se_ctrladdr, 1278dea673e9SRodney W. Grimes * for example) don't get initialized here. 1279dea673e9SRodney W. Grimes */ 1280dea673e9SRodney W. Grimes memset((caddr_t)sep, 0, sizeof *sep); 1281dea673e9SRodney W. Grimes arg = skip(&cp); 1282dea673e9SRodney W. Grimes if (cp == NULL) { 1283dea673e9SRodney W. Grimes /* got an empty line containing just blanks/tabs. */ 1284dea673e9SRodney W. Grimes goto more; 1285dea673e9SRodney W. Grimes } 1286dea673e9SRodney W. Grimes if (strncmp(arg, TCPMUX_TOKEN, MUX_LEN) == 0) { 1287dea673e9SRodney W. Grimes char *c = arg + MUX_LEN; 1288dea673e9SRodney W. Grimes if (*c == '+') { 1289dea673e9SRodney W. Grimes sep->se_type = MUXPLUS_TYPE; 1290dea673e9SRodney W. Grimes c++; 1291dea673e9SRodney W. Grimes } else 1292dea673e9SRodney W. Grimes sep->se_type = MUX_TYPE; 1293dea673e9SRodney W. Grimes sep->se_service = newstr(c); 1294dea673e9SRodney W. Grimes } else { 1295dea673e9SRodney W. Grimes sep->se_service = newstr(arg); 1296dea673e9SRodney W. Grimes sep->se_type = NORM_TYPE; 1297dea673e9SRodney W. Grimes } 1298dea673e9SRodney W. Grimes arg = sskip(&cp); 1299dea673e9SRodney W. Grimes if (strcmp(arg, "stream") == 0) 1300dea673e9SRodney W. Grimes sep->se_socktype = SOCK_STREAM; 1301dea673e9SRodney W. Grimes else if (strcmp(arg, "dgram") == 0) 1302dea673e9SRodney W. Grimes sep->se_socktype = SOCK_DGRAM; 1303dea673e9SRodney W. Grimes else if (strcmp(arg, "rdm") == 0) 1304dea673e9SRodney W. Grimes sep->se_socktype = SOCK_RDM; 1305dea673e9SRodney W. Grimes else if (strcmp(arg, "seqpacket") == 0) 1306dea673e9SRodney W. Grimes sep->se_socktype = SOCK_SEQPACKET; 1307dea673e9SRodney W. Grimes else if (strcmp(arg, "raw") == 0) 1308dea673e9SRodney W. Grimes sep->se_socktype = SOCK_RAW; 1309dea673e9SRodney W. Grimes else 1310dea673e9SRodney W. Grimes sep->se_socktype = -1; 1311c6c38f1dSGuido van Rooij 1312c6c38f1dSGuido van Rooij arg = sskip(&cp); 1313c6c38f1dSGuido van Rooij if (strcmp(arg, "tcp/ttcp") == 0) { 1314c6c38f1dSGuido van Rooij sep->se_type = TTCP_TYPE; 1315c6c38f1dSGuido van Rooij sep->se_proto = newstr("tcp"); 1316c6c38f1dSGuido van Rooij } else { 1317c6c38f1dSGuido van Rooij sep->se_proto = newstr(arg); 1318c6c38f1dSGuido van Rooij } 131955b91f3aSGeoff Rehmet if (strncmp(sep->se_proto, "rpc/", 4) == 0) { 1320d4788da6SJoerg Wunsch memmove(sep->se_proto, sep->se_proto + 4, 1321d4788da6SJoerg Wunsch strlen(sep->se_proto) + 1 - 4); 132255b91f3aSGeoff Rehmet sep->se_rpc = 1; 132355b91f3aSGeoff Rehmet sep->se_rpc_prog = sep->se_rpc_lowvers = 132455b91f3aSGeoff Rehmet sep->se_rpc_lowvers = 0; 132555b91f3aSGeoff Rehmet sep->se_ctrladdr.sin_family = AF_INET; 132655b91f3aSGeoff Rehmet sep->se_ctrladdr.sin_port = 0; 13277356460fSJulian Elischer sep->se_ctrladdr.sin_addr = bind_address; 132855b91f3aSGeoff Rehmet if ((versp = rindex(sep->se_service, '/'))) { 132955b91f3aSGeoff Rehmet *versp++ = '\0'; 133055b91f3aSGeoff Rehmet switch (sscanf(versp, "%d-%d", 133155b91f3aSGeoff Rehmet &sep->se_rpc_lowvers, 133255b91f3aSGeoff Rehmet &sep->se_rpc_highvers)) { 133355b91f3aSGeoff Rehmet case 2: 133455b91f3aSGeoff Rehmet break; 133555b91f3aSGeoff Rehmet case 1: 133655b91f3aSGeoff Rehmet sep->se_rpc_highvers = 133755b91f3aSGeoff Rehmet sep->se_rpc_lowvers; 133855b91f3aSGeoff Rehmet break; 133955b91f3aSGeoff Rehmet default: 134055b91f3aSGeoff Rehmet syslog(LOG_ERR, 134155b91f3aSGeoff Rehmet "bad RPC version specifier; %s\n", 134255b91f3aSGeoff Rehmet sep->se_service); 134355b91f3aSGeoff Rehmet freeconfig(sep); 134455b91f3aSGeoff Rehmet goto more; 134555b91f3aSGeoff Rehmet } 134655b91f3aSGeoff Rehmet } 134755b91f3aSGeoff Rehmet else { 134855b91f3aSGeoff Rehmet sep->se_rpc_lowvers = 134955b91f3aSGeoff Rehmet sep->se_rpc_highvers = 1; 135055b91f3aSGeoff Rehmet } 135155b91f3aSGeoff Rehmet } 1352dea673e9SRodney W. Grimes arg = sskip(&cp); 13530661be0bSJulian Elischer if (!strncmp(arg, "wait", 4)) 13540661be0bSJulian Elischer sep->se_accept = 0; 13550661be0bSJulian Elischer else if (!strncmp(arg, "nowait", 6)) 13560661be0bSJulian Elischer sep->se_accept = 1; 13570661be0bSJulian Elischer else { 13580661be0bSJulian Elischer syslog(LOG_ERR, 13590661be0bSJulian Elischer "%s: bad wait/nowait for service %s", 13600661be0bSJulian Elischer CONFIG, sep->se_service); 13610661be0bSJulian Elischer goto more; 13620661be0bSJulian Elischer } 13637aad1732SSheldon Hearn sep->se_maxchild = -1; 13647aad1732SSheldon Hearn sep->se_maxcpm = -1; 13650661be0bSJulian Elischer if ((s = strchr(arg, '/')) != NULL) { 13660661be0bSJulian Elischer char *eptr; 13670661be0bSJulian Elischer u_long val; 13680661be0bSJulian Elischer 13690661be0bSJulian Elischer val = strtoul(s + 1, &eptr, 10); 13703e2e58f1SDima Ruban if (eptr == s + 1 || val > MAX_MAXCHLD) { 13710661be0bSJulian Elischer syslog(LOG_ERR, 13720661be0bSJulian Elischer "%s: bad max-child for service %s", 13730661be0bSJulian Elischer CONFIG, sep->se_service); 13740661be0bSJulian Elischer goto more; 13750661be0bSJulian Elischer } 13767aad1732SSheldon Hearn if (debug) 13777aad1732SSheldon Hearn if (!sep->se_accept && val != 1) 13787aad1732SSheldon Hearn warnx("maxchild=%lu for wait service %s" 13797aad1732SSheldon Hearn " not recommended", val, sep->se_service); 13800661be0bSJulian Elischer sep->se_maxchild = val; 13813e2e58f1SDima Ruban if (*eptr == '/') 13823e2e58f1SDima Ruban sep->se_maxcpm = strtol(eptr + 1, &eptr, 10); 13833e2e58f1SDima Ruban /* 13843e2e58f1SDima Ruban * explicitly do not check for \0 for future expansion / 13853e2e58f1SDima Ruban * backwards compatibility 13863e2e58f1SDima Ruban */ 13870661be0bSJulian Elischer } 1388dea673e9SRodney W. Grimes if (ISMUX(sep)) { 1389dea673e9SRodney W. Grimes /* 13900661be0bSJulian Elischer * Silently enforce "nowait" mode for TCPMUX services 13910661be0bSJulian Elischer * since they don't have an assigned port to listen on. 1392dea673e9SRodney W. Grimes */ 13930661be0bSJulian Elischer sep->se_accept = 1; 1394dea673e9SRodney W. Grimes if (strcmp(sep->se_proto, "tcp")) { 1395dea673e9SRodney W. Grimes syslog(LOG_ERR, 1396dea673e9SRodney W. Grimes "%s: bad protocol for tcpmux service %s", 1397dea673e9SRodney W. Grimes CONFIG, sep->se_service); 1398dea673e9SRodney W. Grimes goto more; 1399dea673e9SRodney W. Grimes } 1400dea673e9SRodney W. Grimes if (sep->se_socktype != SOCK_STREAM) { 1401dea673e9SRodney W. Grimes syslog(LOG_ERR, 1402dea673e9SRodney W. Grimes "%s: bad socket type for tcpmux service %s", 1403dea673e9SRodney W. Grimes CONFIG, sep->se_service); 1404dea673e9SRodney W. Grimes goto more; 1405dea673e9SRodney W. Grimes } 1406dea673e9SRodney W. Grimes } 1407dea673e9SRodney W. Grimes sep->se_user = newstr(sskip(&cp)); 1408186a5319SAndrey A. Chernov #ifdef LOGIN_CAP 1409186a5319SAndrey A. Chernov if ((s = strrchr(sep->se_user, '/')) != NULL) { 1410186a5319SAndrey A. Chernov *s = '\0'; 1411186a5319SAndrey A. Chernov sep->se_class = newstr(s + 1); 1412186a5319SAndrey A. Chernov } else 1413186a5319SAndrey A. Chernov sep->se_class = newstr(RESOURCE_RC); 1414186a5319SAndrey A. Chernov #endif 1415b34683caSAndrey A. Chernov if ((s = strrchr(sep->se_user, ':')) != NULL) { 1416b34683caSAndrey A. Chernov *s = '\0'; 1417b34683caSAndrey A. Chernov sep->se_group = newstr(s + 1); 1418b34683caSAndrey A. Chernov } else 1419b34683caSAndrey A. Chernov sep->se_group = NULL; 1420dea673e9SRodney W. Grimes sep->se_server = newstr(sskip(&cp)); 1421d06590a5SMark Murray if ((sep->se_server_name = rindex(sep->se_server, '/'))) 1422d06590a5SMark Murray sep->se_server_name++; 1423dea673e9SRodney W. Grimes if (strcmp(sep->se_server, "internal") == 0) { 1424dea673e9SRodney W. Grimes struct biltin *bi; 1425dea673e9SRodney W. Grimes 1426dea673e9SRodney W. Grimes for (bi = biltins; bi->bi_service; bi++) 1427eb0fde47SSheldon Hearn if ((bi->bi_socktype == sep->se_socktype && 1428eb0fde47SSheldon Hearn strcmp(bi->bi_service, sep->se_service) == 0) || 1429eb0fde47SSheldon Hearn matchservent(bi->bi_service, sep->se_service, 1430eb0fde47SSheldon Hearn sep->se_proto)) 1431dea673e9SRodney W. Grimes break; 1432dea673e9SRodney W. Grimes if (bi->bi_service == 0) { 1433dea673e9SRodney W. Grimes syslog(LOG_ERR, "internal service %s unknown", 1434dea673e9SRodney W. Grimes sep->se_service); 1435dea673e9SRodney W. Grimes goto more; 1436dea673e9SRodney W. Grimes } 14370661be0bSJulian Elischer sep->se_accept = 1; /* force accept mode for built-ins */ 1438dea673e9SRodney W. Grimes sep->se_bi = bi; 1439dea673e9SRodney W. Grimes } else 1440dea673e9SRodney W. Grimes sep->se_bi = NULL; 14417aad1732SSheldon Hearn if (sep->se_maxcpm < 0) 14427aad1732SSheldon Hearn sep->se_maxcpm = maxcpm; 1443d06590a5SMark Murray if (sep->se_maxchild < 0) { /* apply default max-children */ 14447aad1732SSheldon Hearn if (sep->se_bi && sep->se_bi->bi_maxchild >= 0) 14450661be0bSJulian Elischer sep->se_maxchild = sep->se_bi->bi_maxchild; 14467aad1732SSheldon Hearn else if (sep->se_accept) 14477aad1732SSheldon Hearn sep->se_maxchild = maxchild > 0 ? maxchild : 0; 14480661be0bSJulian Elischer else 14497aad1732SSheldon Hearn sep->se_maxchild = 1; 1450d06590a5SMark Murray } 14510661be0bSJulian Elischer if (sep->se_maxchild) { 14520661be0bSJulian Elischer sep->se_pids = malloc(sep->se_maxchild * sizeof(*sep->se_pids)); 14530661be0bSJulian Elischer if (sep->se_pids == NULL) { 14540661be0bSJulian Elischer syslog(LOG_ERR, "Out of memory."); 14550661be0bSJulian Elischer exit(EX_OSERR); 14560661be0bSJulian Elischer } 14570661be0bSJulian Elischer } 1458dea673e9SRodney W. Grimes argc = 0; 1459dea673e9SRodney W. Grimes for (arg = skip(&cp); cp; arg = skip(&cp)) 14600661be0bSJulian Elischer if (argc < MAXARGV) { 1461dea673e9SRodney W. Grimes sep->se_argv[argc++] = newstr(arg); 14620661be0bSJulian Elischer } else { 14630661be0bSJulian Elischer syslog(LOG_ERR, 14640661be0bSJulian Elischer "%s: too many arguments for service %s", 14650661be0bSJulian Elischer CONFIG, sep->se_service); 14660661be0bSJulian Elischer goto more; 14670661be0bSJulian Elischer } 1468dea673e9SRodney W. Grimes while (argc <= MAXARGV) 1469dea673e9SRodney W. Grimes sep->se_argv[argc++] = NULL; 1470dea673e9SRodney W. Grimes return (sep); 1471dea673e9SRodney W. Grimes } 1472dea673e9SRodney W. Grimes 1473dea673e9SRodney W. Grimes void 1474dea673e9SRodney W. Grimes freeconfig(cp) 1475dea673e9SRodney W. Grimes struct servtab *cp; 1476dea673e9SRodney W. Grimes { 1477dea673e9SRodney W. Grimes int i; 1478dea673e9SRodney W. Grimes 1479dea673e9SRodney W. Grimes if (cp->se_service) 1480dea673e9SRodney W. Grimes free(cp->se_service); 1481dea673e9SRodney W. Grimes if (cp->se_proto) 1482dea673e9SRodney W. Grimes free(cp->se_proto); 1483dea673e9SRodney W. Grimes if (cp->se_user) 1484dea673e9SRodney W. Grimes free(cp->se_user); 1485b34683caSAndrey A. Chernov if (cp->se_group) 1486b34683caSAndrey A. Chernov free(cp->se_group); 1487186a5319SAndrey A. Chernov #ifdef LOGIN_CAP 1488186a5319SAndrey A. Chernov if (cp->se_class) 1489186a5319SAndrey A. Chernov free(cp->se_class); 1490186a5319SAndrey A. Chernov #endif 1491dea673e9SRodney W. Grimes if (cp->se_server) 1492dea673e9SRodney W. Grimes free(cp->se_server); 14930661be0bSJulian Elischer if (cp->se_pids) 14940661be0bSJulian Elischer free(cp->se_pids); 1495dea673e9SRodney W. Grimes for (i = 0; i < MAXARGV; i++) 1496dea673e9SRodney W. Grimes if (cp->se_argv[i]) 1497dea673e9SRodney W. Grimes free(cp->se_argv[i]); 1498dea673e9SRodney W. Grimes } 1499dea673e9SRodney W. Grimes 1500dea673e9SRodney W. Grimes 1501dea673e9SRodney W. Grimes /* 1502dea673e9SRodney W. Grimes * Safe skip - if skip returns null, log a syntax error in the 1503dea673e9SRodney W. Grimes * configuration file and exit. 1504dea673e9SRodney W. Grimes */ 1505dea673e9SRodney W. Grimes char * 1506dea673e9SRodney W. Grimes sskip(cpp) 1507dea673e9SRodney W. Grimes char **cpp; 1508dea673e9SRodney W. Grimes { 1509dea673e9SRodney W. Grimes char *cp; 1510dea673e9SRodney W. Grimes 1511dea673e9SRodney W. Grimes cp = skip(cpp); 1512dea673e9SRodney W. Grimes if (cp == NULL) { 1513dea673e9SRodney W. Grimes syslog(LOG_ERR, "%s: syntax error", CONFIG); 15146467602bSJulian Elischer exit(EX_DATAERR); 1515dea673e9SRodney W. Grimes } 1516dea673e9SRodney W. Grimes return (cp); 1517dea673e9SRodney W. Grimes } 1518dea673e9SRodney W. Grimes 1519dea673e9SRodney W. Grimes char * 1520dea673e9SRodney W. Grimes skip(cpp) 1521dea673e9SRodney W. Grimes char **cpp; 1522dea673e9SRodney W. Grimes { 1523dea673e9SRodney W. Grimes char *cp = *cpp; 1524dea673e9SRodney W. Grimes char *start; 152532b505b2SAdam David char quote = '\0'; 1526dea673e9SRodney W. Grimes 1527dea673e9SRodney W. Grimes again: 1528dea673e9SRodney W. Grimes while (*cp == ' ' || *cp == '\t') 1529dea673e9SRodney W. Grimes cp++; 1530dea673e9SRodney W. Grimes if (*cp == '\0') { 1531dea673e9SRodney W. Grimes int c; 1532dea673e9SRodney W. Grimes 1533dea673e9SRodney W. Grimes c = getc(fconfig); 1534dea673e9SRodney W. Grimes (void) ungetc(c, fconfig); 1535dea673e9SRodney W. Grimes if (c == ' ' || c == '\t') 15366467602bSJulian Elischer if ((cp = nextline(fconfig))) 1537dea673e9SRodney W. Grimes goto again; 1538dea673e9SRodney W. Grimes *cpp = (char *)0; 1539dea673e9SRodney W. Grimes return ((char *)0); 1540dea673e9SRodney W. Grimes } 154132b505b2SAdam David if (*cp == '"' || *cp == '\'') 154232b505b2SAdam David quote = *cp++; 1543dea673e9SRodney W. Grimes start = cp; 154432b505b2SAdam David if (quote) 154532b505b2SAdam David while (*cp && *cp != quote) 154632b505b2SAdam David cp++; 154732b505b2SAdam David else 1548dea673e9SRodney W. Grimes while (*cp && *cp != ' ' && *cp != '\t') 1549dea673e9SRodney W. Grimes cp++; 1550dea673e9SRodney W. Grimes if (*cp != '\0') 1551dea673e9SRodney W. Grimes *cp++ = '\0'; 1552dea673e9SRodney W. Grimes *cpp = cp; 1553dea673e9SRodney W. Grimes return (start); 1554dea673e9SRodney W. Grimes } 1555dea673e9SRodney W. Grimes 1556dea673e9SRodney W. Grimes char * 1557dea673e9SRodney W. Grimes nextline(fd) 1558dea673e9SRodney W. Grimes FILE *fd; 1559dea673e9SRodney W. Grimes { 1560dea673e9SRodney W. Grimes char *cp; 1561dea673e9SRodney W. Grimes 1562dea673e9SRodney W. Grimes if (fgets(line, sizeof (line), fd) == NULL) 1563dea673e9SRodney W. Grimes return ((char *)0); 1564dea673e9SRodney W. Grimes cp = strchr(line, '\n'); 1565dea673e9SRodney W. Grimes if (cp) 1566dea673e9SRodney W. Grimes *cp = '\0'; 1567dea673e9SRodney W. Grimes return (line); 1568dea673e9SRodney W. Grimes } 1569dea673e9SRodney W. Grimes 1570dea673e9SRodney W. Grimes char * 1571dea673e9SRodney W. Grimes newstr(cp) 1572dea673e9SRodney W. Grimes char *cp; 1573dea673e9SRodney W. Grimes { 15746467602bSJulian Elischer if ((cp = strdup(cp ? cp : ""))) 1575dea673e9SRodney W. Grimes return (cp); 1576dea673e9SRodney W. Grimes syslog(LOG_ERR, "strdup: %m"); 15776467602bSJulian Elischer exit(EX_OSERR); 1578dea673e9SRodney W. Grimes } 1579dea673e9SRodney W. Grimes 1580c1283020SPeter Wemm #ifdef OLD_SETPROCTITLE 1581dea673e9SRodney W. Grimes void 1582c1283020SPeter Wemm inetd_setproctitle(a, s) 1583dea673e9SRodney W. Grimes char *a; 1584dea673e9SRodney W. Grimes int s; 1585dea673e9SRodney W. Grimes { 1586dea673e9SRodney W. Grimes int size; 1587dea673e9SRodney W. Grimes char *cp; 1588dea673e9SRodney W. Grimes struct sockaddr_in sin; 1589dea673e9SRodney W. Grimes char buf[80]; 1590dea673e9SRodney W. Grimes 1591dea673e9SRodney W. Grimes cp = Argv[0]; 1592dea673e9SRodney W. Grimes size = sizeof(sin); 1593dea673e9SRodney W. Grimes if (getpeername(s, (struct sockaddr *)&sin, &size) == 0) 1594dea673e9SRodney W. Grimes (void) sprintf(buf, "-%s [%s]", a, inet_ntoa(sin.sin_addr)); 1595dea673e9SRodney W. Grimes else 1596dea673e9SRodney W. Grimes (void) sprintf(buf, "-%s", a); 1597dea673e9SRodney W. Grimes strncpy(cp, buf, LastArg - cp); 1598dea673e9SRodney W. Grimes cp += strlen(cp); 1599dea673e9SRodney W. Grimes while (cp < LastArg) 1600dea673e9SRodney W. Grimes *cp++ = ' '; 1601dea673e9SRodney W. Grimes } 1602c1283020SPeter Wemm #else 1603c1283020SPeter Wemm void 1604c1283020SPeter Wemm inetd_setproctitle(a, s) 1605c1283020SPeter Wemm char *a; 1606c1283020SPeter Wemm int s; 1607c1283020SPeter Wemm { 1608c1283020SPeter Wemm int size; 1609c1283020SPeter Wemm struct sockaddr_in sin; 1610c1283020SPeter Wemm char buf[80]; 1611c1283020SPeter Wemm 1612c1283020SPeter Wemm size = sizeof(sin); 1613c1283020SPeter Wemm if (getpeername(s, (struct sockaddr *)&sin, &size) == 0) 1614c1283020SPeter Wemm (void) sprintf(buf, "%s [%s]", a, inet_ntoa(sin.sin_addr)); 1615c1283020SPeter Wemm else 1616c1283020SPeter Wemm (void) sprintf(buf, "%s", a); 1617c1283020SPeter Wemm setproctitle("%s", buf); 1618c1283020SPeter Wemm } 1619c1283020SPeter Wemm #endif 1620c1283020SPeter Wemm 1621dea673e9SRodney W. Grimes 1622dea673e9SRodney W. Grimes /* 1623dea673e9SRodney W. Grimes * Internet services provided internally by inetd: 1624dea673e9SRodney W. Grimes */ 1625dea673e9SRodney W. Grimes #define BUFSIZE 8192 1626dea673e9SRodney W. Grimes 1627d33eb4c8SBrian Feldman /* ARGSUSED */ 1628d33eb4c8SBrian Feldman void 1629d33eb4c8SBrian Feldman iderror(lport, fport, fp, er) 1630d33eb4c8SBrian Feldman int lport, fport, er; 1631d33eb4c8SBrian Feldman FILE *fp; 1632d33eb4c8SBrian Feldman { 1633d33eb4c8SBrian Feldman fprintf(fp, "%d , %d : ERROR : %s\r\n", lport, fport, 1634d33eb4c8SBrian Feldman er == -1 ? "HIDDEN-USER" : er ? strerror(er) : "UNKNOWN-ERROR"); 1635d33eb4c8SBrian Feldman fflush(fp); 1636d33eb4c8SBrian Feldman fclose(fp); 1637d33eb4c8SBrian Feldman 1638d33eb4c8SBrian Feldman exit(0); 1639d33eb4c8SBrian Feldman } 16403c97a31cSPoul-Henning Kamp 16413c97a31cSPoul-Henning Kamp /* ARGSUSED */ 16423c97a31cSPoul-Henning Kamp void 16433c97a31cSPoul-Henning Kamp ident_stream(s, sep) /* Ident service */ 16443c97a31cSPoul-Henning Kamp int s; 16453c97a31cSPoul-Henning Kamp struct servtab *sep; 16463c97a31cSPoul-Henning Kamp { 1647d33eb4c8SBrian Feldman struct sockaddr_in sin[2]; 1648d33eb4c8SBrian Feldman struct ucred uc; 1649d33eb4c8SBrian Feldman struct passwd *pw; 1650d33eb4c8SBrian Feldman FILE *fp; 1651b81a43e2SBrian Feldman char buf[BUFSIZE], *cp, **av; 1652b81a43e2SBrian Feldman int len, c, rflag = 0, fflag = 0, argc = 0; 1653d33eb4c8SBrian Feldman u_short lport, fport; 16543c97a31cSPoul-Henning Kamp 16553c97a31cSPoul-Henning Kamp inetd_setproctitle(sep->se_service, s); 1656b81a43e2SBrian Feldman optind = 1; 1657b81a43e2SBrian Feldman optreset = 1; 1658b81a43e2SBrian Feldman for (av = sep->se_argv; *av; av++) 1659b81a43e2SBrian Feldman argc++; 1660b81a43e2SBrian Feldman if (argc) { 1661b81a43e2SBrian Feldman while ((c = getopt(argc, sep->se_argv, "fr")) != -1) 1662b81a43e2SBrian Feldman switch (c) { 1663b81a43e2SBrian Feldman case 'f': 1664b81a43e2SBrian Feldman fflag = 1; 1665b81a43e2SBrian Feldman break; 1666b81a43e2SBrian Feldman case 'r': 1667b81a43e2SBrian Feldman rflag = 1; 1668b81a43e2SBrian Feldman break; 1669b81a43e2SBrian Feldman default: 1670b81a43e2SBrian Feldman break; 1671b81a43e2SBrian Feldman } 1672b81a43e2SBrian Feldman } 1673d33eb4c8SBrian Feldman fp = fdopen(s, "r+"); 1674d33eb4c8SBrian Feldman len = sizeof(sin[0]); 1675d33eb4c8SBrian Feldman if (getsockname(s, (struct sockaddr *)&sin[0], &len) == -1) 1676d33eb4c8SBrian Feldman iderror(0, 0, fp, errno); 1677d33eb4c8SBrian Feldman len = sizeof(sin[1]); 1678d33eb4c8SBrian Feldman if (getpeername(s, (struct sockaddr *)&sin[1], &len) == -1) 1679d33eb4c8SBrian Feldman iderror(0, 0, fp, errno); 1680d33eb4c8SBrian Feldman errno = 0; 1681d33eb4c8SBrian Feldman if (fgets(buf, sizeof(buf), fp) == NULL) 1682d33eb4c8SBrian Feldman iderror(0, 0, fp, errno); 1683d33eb4c8SBrian Feldman buf[BUFSIZE - 1] = '\0'; 1684d33eb4c8SBrian Feldman strtok(buf, "\r\n"); 1685d33eb4c8SBrian Feldman cp = strtok(buf, ","); 1686d33eb4c8SBrian Feldman if (cp == NULL || sscanf(cp, "%hu", &lport) != 1) 1687d33eb4c8SBrian Feldman iderror(0, 0, fp, 0); 1688d33eb4c8SBrian Feldman cp = strtok(NULL, ","); 1689d33eb4c8SBrian Feldman if (cp == NULL || sscanf(cp, "%hu", &fport) != 1) 1690d33eb4c8SBrian Feldman iderror(0, 0, fp, 0); 1691b81a43e2SBrian Feldman if (!rflag) 1692d33eb4c8SBrian Feldman iderror(lport, fport, fp, -1); 1693d33eb4c8SBrian Feldman sin[0].sin_port = htons(lport); 1694d33eb4c8SBrian Feldman sin[1].sin_port = htons(fport); 1695d33eb4c8SBrian Feldman len = sizeof(uc); 1696d33eb4c8SBrian Feldman if (sysctlbyname("net.inet.tcp.getcred", &uc, &len, sin, 1697d33eb4c8SBrian Feldman sizeof(sin)) == -1) 1698d33eb4c8SBrian Feldman iderror(lport, fport, fp, errno); 1699d33eb4c8SBrian Feldman pw = getpwuid(uc.cr_uid); 1700d33eb4c8SBrian Feldman if (pw == NULL) 1701d33eb4c8SBrian Feldman iderror(lport, fport, fp, errno); 1702b81a43e2SBrian Feldman if (fflag) { 1703b81a43e2SBrian Feldman FILE *fakeid = NULL; 1704b81a43e2SBrian Feldman char fakeid_path[PATH_MAX]; 1705b81a43e2SBrian Feldman struct stat sb; 1706d33eb4c8SBrian Feldman seteuid(pw->pw_uid); 1707d33eb4c8SBrian Feldman setegid(pw->pw_gid); 1708b81a43e2SBrian Feldman snprintf(fakeid_path, sizeof(fakeid_path), "%s/.fakeid", 1709b81a43e2SBrian Feldman pw->pw_dir); 1710d33eb4c8SBrian Feldman if ((fakeid = fopen(fakeid_path, "r")) != NULL && 1711d33eb4c8SBrian Feldman fstat(fileno(fakeid), &sb) != -1 && S_ISREG(sb.st_mode)) { 1712d33eb4c8SBrian Feldman buf[sizeof(buf) - 1] = '\0'; 1713d33eb4c8SBrian Feldman if (fgets(buf, sizeof(buf), fakeid) == NULL) { 1714d33eb4c8SBrian Feldman cp = pw->pw_name; 1715b81a43e2SBrian Feldman fclose(fakeid); 1716d33eb4c8SBrian Feldman goto printit; 17173c97a31cSPoul-Henning Kamp } 1718b81a43e2SBrian Feldman fclose(fakeid); 1719d33eb4c8SBrian Feldman strtok(buf, "\r\n"); 1720d33eb4c8SBrian Feldman if (strlen(buf) > 16) 1721d33eb4c8SBrian Feldman buf[16] = '\0'; 1722d33eb4c8SBrian Feldman cp = buf; 1723d33eb4c8SBrian Feldman while (isspace(*cp)) 1724d33eb4c8SBrian Feldman cp++; 1725d33eb4c8SBrian Feldman strtok(cp, " \t"); 1726d33eb4c8SBrian Feldman if (!*cp || getpwnam(cp)) 1727d33eb4c8SBrian Feldman cp = getpwuid(uc.cr_uid)->pw_name; 1728d33eb4c8SBrian Feldman } else 1729d33eb4c8SBrian Feldman cp = pw->pw_name; 1730b81a43e2SBrian Feldman } else 1731b81a43e2SBrian Feldman cp = pw->pw_name; 1732d33eb4c8SBrian Feldman printit: 1733d33eb4c8SBrian Feldman fprintf(fp, "%d , %d : USERID : FreeBSD :%s\r\n", lport, fport, 1734d33eb4c8SBrian Feldman cp); 1735d33eb4c8SBrian Feldman fflush(fp); 1736d33eb4c8SBrian Feldman fclose(fp); 1737d33eb4c8SBrian Feldman 17383c97a31cSPoul-Henning Kamp exit(0); 17393c97a31cSPoul-Henning Kamp } 1740d33eb4c8SBrian Feldman 1741dea673e9SRodney W. Grimes /* ARGSUSED */ 1742dea673e9SRodney W. Grimes void 1743dea673e9SRodney W. Grimes echo_stream(s, sep) /* Echo service -- echo data back */ 1744dea673e9SRodney W. Grimes int s; 1745dea673e9SRodney W. Grimes struct servtab *sep; 1746dea673e9SRodney W. Grimes { 1747dea673e9SRodney W. Grimes char buffer[BUFSIZE]; 1748dea673e9SRodney W. Grimes int i; 1749dea673e9SRodney W. Grimes 1750c1283020SPeter Wemm inetd_setproctitle(sep->se_service, s); 1751dea673e9SRodney W. Grimes while ((i = read(s, buffer, sizeof(buffer))) > 0 && 1752dea673e9SRodney W. Grimes write(s, buffer, i) > 0) 1753dea673e9SRodney W. Grimes ; 1754dea673e9SRodney W. Grimes exit(0); 1755dea673e9SRodney W. Grimes } 1756dea673e9SRodney W. Grimes 175771704f34SGarrett Wollman int check_loop(sin, sep) 175871704f34SGarrett Wollman struct sockaddr_in *sin; 175971704f34SGarrett Wollman struct servtab *sep; 176071704f34SGarrett Wollman { 176171704f34SGarrett Wollman struct servtab *se2; 176271704f34SGarrett Wollman 176371704f34SGarrett Wollman for (se2 = servtab; se2; se2 = se2->se_next) { 176471704f34SGarrett Wollman if (!se2->se_bi || se2->se_socktype != SOCK_DGRAM) 176571704f34SGarrett Wollman continue; 176671704f34SGarrett Wollman 176771704f34SGarrett Wollman if (sin->sin_port == se2->se_ctrladdr.sin_port) { 176871704f34SGarrett Wollman syslog(LOG_WARNING, 176971704f34SGarrett Wollman "%s/%s:%s/%s loop request REFUSED from %s", 177071704f34SGarrett Wollman sep->se_service, sep->se_proto, 177171704f34SGarrett Wollman se2->se_service, se2->se_proto, 177271704f34SGarrett Wollman inet_ntoa(sin->sin_addr)); 177371704f34SGarrett Wollman return 1; 177471704f34SGarrett Wollman } 177571704f34SGarrett Wollman } 177671704f34SGarrett Wollman return 0; 177771704f34SGarrett Wollman } 177871704f34SGarrett Wollman 1779dea673e9SRodney W. Grimes /* ARGSUSED */ 1780dea673e9SRodney W. Grimes void 1781dea673e9SRodney W. Grimes echo_dg(s, sep) /* Echo service -- echo data back */ 1782dea673e9SRodney W. Grimes int s; 1783dea673e9SRodney W. Grimes struct servtab *sep; 1784dea673e9SRodney W. Grimes { 1785dea673e9SRodney W. Grimes char buffer[BUFSIZE]; 1786dea673e9SRodney W. Grimes int i, size; 178771704f34SGarrett Wollman struct sockaddr_in sin; 1788dea673e9SRodney W. Grimes 178971704f34SGarrett Wollman size = sizeof(sin); 179071704f34SGarrett Wollman if ((i = recvfrom(s, buffer, sizeof(buffer), 0, 179171704f34SGarrett Wollman (struct sockaddr *)&sin, &size)) < 0) 1792dea673e9SRodney W. Grimes return; 179371704f34SGarrett Wollman 179471704f34SGarrett Wollman if (check_loop(&sin, sep)) 179571704f34SGarrett Wollman return; 179671704f34SGarrett Wollman 179771704f34SGarrett Wollman (void) sendto(s, buffer, i, 0, (struct sockaddr *)&sin, 179871704f34SGarrett Wollman sizeof(sin)); 1799dea673e9SRodney W. Grimes } 1800dea673e9SRodney W. Grimes 1801dea673e9SRodney W. Grimes /* ARGSUSED */ 1802dea673e9SRodney W. Grimes void 1803dea673e9SRodney W. Grimes discard_stream(s, sep) /* Discard service -- ignore data */ 1804dea673e9SRodney W. Grimes int s; 1805dea673e9SRodney W. Grimes struct servtab *sep; 1806dea673e9SRodney W. Grimes { 1807dea673e9SRodney W. Grimes int ret; 1808dea673e9SRodney W. Grimes char buffer[BUFSIZE]; 1809dea673e9SRodney W. Grimes 1810c1283020SPeter Wemm inetd_setproctitle(sep->se_service, s); 1811dea673e9SRodney W. Grimes while (1) { 1812dea673e9SRodney W. Grimes while ((ret = read(s, buffer, sizeof(buffer))) > 0) 1813dea673e9SRodney W. Grimes ; 1814dea673e9SRodney W. Grimes if (ret == 0 || errno != EINTR) 1815dea673e9SRodney W. Grimes break; 1816dea673e9SRodney W. Grimes } 1817dea673e9SRodney W. Grimes exit(0); 1818dea673e9SRodney W. Grimes } 1819dea673e9SRodney W. Grimes 1820dea673e9SRodney W. Grimes /* ARGSUSED */ 1821dea673e9SRodney W. Grimes void 1822dea673e9SRodney W. Grimes discard_dg(s, sep) /* Discard service -- ignore data */ 1823dea673e9SRodney W. Grimes int s; 1824dea673e9SRodney W. Grimes struct servtab *sep; 1825dea673e9SRodney W. Grimes { 1826dea673e9SRodney W. Grimes char buffer[BUFSIZE]; 1827dea673e9SRodney W. Grimes 1828dea673e9SRodney W. Grimes (void) read(s, buffer, sizeof(buffer)); 1829dea673e9SRodney W. Grimes } 1830dea673e9SRodney W. Grimes 1831dea673e9SRodney W. Grimes #include <ctype.h> 1832dea673e9SRodney W. Grimes #define LINESIZ 72 1833dea673e9SRodney W. Grimes char ring[128]; 1834dea673e9SRodney W. Grimes char *endring; 1835dea673e9SRodney W. Grimes 1836dea673e9SRodney W. Grimes void 1837dea673e9SRodney W. Grimes initring() 1838dea673e9SRodney W. Grimes { 1839dea673e9SRodney W. Grimes int i; 1840dea673e9SRodney W. Grimes 1841dea673e9SRodney W. Grimes endring = ring; 1842dea673e9SRodney W. Grimes 1843dea673e9SRodney W. Grimes for (i = 0; i <= 128; ++i) 1844dea673e9SRodney W. Grimes if (isprint(i)) 1845dea673e9SRodney W. Grimes *endring++ = i; 1846dea673e9SRodney W. Grimes } 1847dea673e9SRodney W. Grimes 1848dea673e9SRodney W. Grimes /* ARGSUSED */ 1849dea673e9SRodney W. Grimes void 1850dea673e9SRodney W. Grimes chargen_stream(s, sep) /* Character generator */ 1851dea673e9SRodney W. Grimes int s; 1852dea673e9SRodney W. Grimes struct servtab *sep; 1853dea673e9SRodney W. Grimes { 1854dea673e9SRodney W. Grimes int len; 1855dea673e9SRodney W. Grimes char *rs, text[LINESIZ+2]; 1856dea673e9SRodney W. Grimes 1857c1283020SPeter Wemm inetd_setproctitle(sep->se_service, s); 1858dea673e9SRodney W. Grimes 1859dea673e9SRodney W. Grimes if (!endring) { 1860dea673e9SRodney W. Grimes initring(); 1861dea673e9SRodney W. Grimes rs = ring; 1862dea673e9SRodney W. Grimes } 1863dea673e9SRodney W. Grimes 1864dea673e9SRodney W. Grimes text[LINESIZ] = '\r'; 1865dea673e9SRodney W. Grimes text[LINESIZ + 1] = '\n'; 1866dea673e9SRodney W. Grimes for (rs = ring;;) { 1867dea673e9SRodney W. Grimes if ((len = endring - rs) >= LINESIZ) 1868dea673e9SRodney W. Grimes memmove(text, rs, LINESIZ); 1869dea673e9SRodney W. Grimes else { 1870dea673e9SRodney W. Grimes memmove(text, rs, len); 1871dea673e9SRodney W. Grimes memmove(text + len, ring, LINESIZ - len); 1872dea673e9SRodney W. Grimes } 1873dea673e9SRodney W. Grimes if (++rs == endring) 1874dea673e9SRodney W. Grimes rs = ring; 1875dea673e9SRodney W. Grimes if (write(s, text, sizeof(text)) != sizeof(text)) 1876dea673e9SRodney W. Grimes break; 1877dea673e9SRodney W. Grimes } 1878dea673e9SRodney W. Grimes exit(0); 1879dea673e9SRodney W. Grimes } 1880dea673e9SRodney W. Grimes 1881dea673e9SRodney W. Grimes /* ARGSUSED */ 1882dea673e9SRodney W. Grimes void 1883dea673e9SRodney W. Grimes chargen_dg(s, sep) /* Character generator */ 1884dea673e9SRodney W. Grimes int s; 1885dea673e9SRodney W. Grimes struct servtab *sep; 1886dea673e9SRodney W. Grimes { 188771704f34SGarrett Wollman struct sockaddr_in sin; 1888dea673e9SRodney W. Grimes static char *rs; 1889dea673e9SRodney W. Grimes int len, size; 1890dea673e9SRodney W. Grimes char text[LINESIZ+2]; 1891dea673e9SRodney W. Grimes 1892dea673e9SRodney W. Grimes if (endring == 0) { 1893dea673e9SRodney W. Grimes initring(); 1894dea673e9SRodney W. Grimes rs = ring; 1895dea673e9SRodney W. Grimes } 1896dea673e9SRodney W. Grimes 189771704f34SGarrett Wollman size = sizeof(sin); 189871704f34SGarrett Wollman if (recvfrom(s, text, sizeof(text), 0, 189971704f34SGarrett Wollman (struct sockaddr *)&sin, &size) < 0) 190071704f34SGarrett Wollman return; 190171704f34SGarrett Wollman 190271704f34SGarrett Wollman if (check_loop(&sin, sep)) 1903dea673e9SRodney W. Grimes return; 1904dea673e9SRodney W. Grimes 1905dea673e9SRodney W. Grimes if ((len = endring - rs) >= LINESIZ) 1906dea673e9SRodney W. Grimes memmove(text, rs, LINESIZ); 1907dea673e9SRodney W. Grimes else { 1908dea673e9SRodney W. Grimes memmove(text, rs, len); 1909dea673e9SRodney W. Grimes memmove(text + len, ring, LINESIZ - len); 1910dea673e9SRodney W. Grimes } 1911dea673e9SRodney W. Grimes if (++rs == endring) 1912dea673e9SRodney W. Grimes rs = ring; 1913dea673e9SRodney W. Grimes text[LINESIZ] = '\r'; 1914dea673e9SRodney W. Grimes text[LINESIZ + 1] = '\n'; 191571704f34SGarrett Wollman (void) sendto(s, text, sizeof(text), 0, 191671704f34SGarrett Wollman (struct sockaddr *)&sin, sizeof(sin)); 1917dea673e9SRodney W. Grimes } 1918dea673e9SRodney W. Grimes 1919dea673e9SRodney W. Grimes /* 1920dea673e9SRodney W. Grimes * Return a machine readable date and time, in the form of the 1921dea673e9SRodney W. Grimes * number of seconds since midnight, Jan 1, 1900. Since gettimeofday 1922dea673e9SRodney W. Grimes * returns the number of seconds since midnight, Jan 1, 1970, 1923dea673e9SRodney W. Grimes * we must add 2208988800 seconds to this figure to make up for 1924dea673e9SRodney W. Grimes * some seventy years Bell Labs was asleep. 1925dea673e9SRodney W. Grimes */ 1926dea673e9SRodney W. Grimes 1927552b1dedSDaniel O'Callaghan unsigned long 1928dea673e9SRodney W. Grimes machtime() 1929dea673e9SRodney W. Grimes { 1930dea673e9SRodney W. Grimes struct timeval tv; 1931dea673e9SRodney W. Grimes 1932a07f318fSAndrey A. Chernov if (gettimeofday(&tv, (struct timezone *)NULL) < 0) { 1933dea673e9SRodney W. Grimes if (debug) 1934c1a2e93eSPhilippe Charnier warnx("unable to get time of day"); 1935dea673e9SRodney W. Grimes return (0L); 1936dea673e9SRodney W. Grimes } 1937dea673e9SRodney W. Grimes #define OFFSET ((u_long)25567 * 24*60*60) 1938dea673e9SRodney W. Grimes return (htonl((long)(tv.tv_sec + OFFSET))); 1939dea673e9SRodney W. Grimes #undef OFFSET 1940dea673e9SRodney W. Grimes } 1941dea673e9SRodney W. Grimes 1942dea673e9SRodney W. Grimes /* ARGSUSED */ 1943dea673e9SRodney W. Grimes void 1944dea673e9SRodney W. Grimes machtime_stream(s, sep) 1945dea673e9SRodney W. Grimes int s; 1946dea673e9SRodney W. Grimes struct servtab *sep; 1947dea673e9SRodney W. Grimes { 1948552b1dedSDaniel O'Callaghan unsigned long result; 1949dea673e9SRodney W. Grimes 1950dea673e9SRodney W. Grimes result = machtime(); 1951dea673e9SRodney W. Grimes (void) write(s, (char *) &result, sizeof(result)); 1952dea673e9SRodney W. Grimes } 1953dea673e9SRodney W. Grimes 1954dea673e9SRodney W. Grimes /* ARGSUSED */ 1955dea673e9SRodney W. Grimes void 1956dea673e9SRodney W. Grimes machtime_dg(s, sep) 1957dea673e9SRodney W. Grimes int s; 1958dea673e9SRodney W. Grimes struct servtab *sep; 1959dea673e9SRodney W. Grimes { 1960552b1dedSDaniel O'Callaghan unsigned long result; 196171704f34SGarrett Wollman struct sockaddr_in sin; 1962dea673e9SRodney W. Grimes int size; 1963dea673e9SRodney W. Grimes 196471704f34SGarrett Wollman size = sizeof(sin); 196571704f34SGarrett Wollman if (recvfrom(s, (char *)&result, sizeof(result), 0, 196671704f34SGarrett Wollman (struct sockaddr *)&sin, &size) < 0) 1967dea673e9SRodney W. Grimes return; 196871704f34SGarrett Wollman 196971704f34SGarrett Wollman if (check_loop(&sin, sep)) 197071704f34SGarrett Wollman return; 197171704f34SGarrett Wollman 1972dea673e9SRodney W. Grimes result = machtime(); 197371704f34SGarrett Wollman (void) sendto(s, (char *) &result, sizeof(result), 0, 197471704f34SGarrett Wollman (struct sockaddr *)&sin, sizeof(sin)); 1975dea673e9SRodney W. Grimes } 1976dea673e9SRodney W. Grimes 1977dea673e9SRodney W. Grimes /* ARGSUSED */ 1978dea673e9SRodney W. Grimes void 1979dea673e9SRodney W. Grimes daytime_stream(s, sep) /* Return human-readable time of day */ 1980dea673e9SRodney W. Grimes int s; 1981dea673e9SRodney W. Grimes struct servtab *sep; 1982dea673e9SRodney W. Grimes { 1983dea673e9SRodney W. Grimes char buffer[256]; 1984dea673e9SRodney W. Grimes time_t clock; 1985dea673e9SRodney W. Grimes 1986dea673e9SRodney W. Grimes clock = time((time_t *) 0); 1987dea673e9SRodney W. Grimes 1988dea673e9SRodney W. Grimes (void) sprintf(buffer, "%.24s\r\n", ctime(&clock)); 1989dea673e9SRodney W. Grimes (void) write(s, buffer, strlen(buffer)); 1990dea673e9SRodney W. Grimes } 1991dea673e9SRodney W. Grimes 1992dea673e9SRodney W. Grimes /* ARGSUSED */ 1993dea673e9SRodney W. Grimes void 1994dea673e9SRodney W. Grimes daytime_dg(s, sep) /* Return human-readable time of day */ 1995dea673e9SRodney W. Grimes int s; 1996dea673e9SRodney W. Grimes struct servtab *sep; 1997dea673e9SRodney W. Grimes { 1998dea673e9SRodney W. Grimes char buffer[256]; 1999dea673e9SRodney W. Grimes time_t clock; 200071704f34SGarrett Wollman struct sockaddr_in sin; 2001dea673e9SRodney W. Grimes int size; 2002dea673e9SRodney W. Grimes 2003dea673e9SRodney W. Grimes clock = time((time_t *) 0); 2004dea673e9SRodney W. Grimes 200571704f34SGarrett Wollman size = sizeof(sin); 200671704f34SGarrett Wollman if (recvfrom(s, buffer, sizeof(buffer), 0, 200771704f34SGarrett Wollman (struct sockaddr *)&sin, &size) < 0) 2008dea673e9SRodney W. Grimes return; 200971704f34SGarrett Wollman 201071704f34SGarrett Wollman if (check_loop(&sin, sep)) 201171704f34SGarrett Wollman return; 201271704f34SGarrett Wollman 2013dea673e9SRodney W. Grimes (void) sprintf(buffer, "%.24s\r\n", ctime(&clock)); 201471704f34SGarrett Wollman (void) sendto(s, buffer, strlen(buffer), 0, 201571704f34SGarrett Wollman (struct sockaddr *)&sin, sizeof(sin)); 2016dea673e9SRodney W. Grimes } 2017dea673e9SRodney W. Grimes 2018dea673e9SRodney W. Grimes /* 2019dea673e9SRodney W. Grimes * print_service: 2020dea673e9SRodney W. Grimes * Dump relevant information to stderr 2021dea673e9SRodney W. Grimes */ 2022dea673e9SRodney W. Grimes void 2023dea673e9SRodney W. Grimes print_service(action, sep) 2024dea673e9SRodney W. Grimes char *action; 2025dea673e9SRodney W. Grimes struct servtab *sep; 2026dea673e9SRodney W. Grimes { 2027dea673e9SRodney W. Grimes fprintf(stderr, 2028186a5319SAndrey A. Chernov #ifdef LOGIN_CAP 202944ab8b53SJohn Birrell "%s: %s proto=%s accept=%d max=%d user=%s group=%s class=%s builtin=%p server=%s\n", 2030186a5319SAndrey A. Chernov #else 203144ab8b53SJohn Birrell "%s: %s proto=%s accept=%d max=%d user=%s group=%s builtin=%p server=%s\n", 2032186a5319SAndrey A. Chernov #endif 2033dea673e9SRodney W. Grimes action, sep->se_service, sep->se_proto, 2034b34683caSAndrey A. Chernov sep->se_accept, sep->se_maxchild, sep->se_user, sep->se_group, 2035186a5319SAndrey A. Chernov #ifdef LOGIN_CAP 2036186a5319SAndrey A. Chernov sep->se_class, 2037186a5319SAndrey A. Chernov #endif 20384b82d708SJohn Birrell (void *) sep->se_bi, sep->se_server); 2039dea673e9SRodney W. Grimes } 2040dea673e9SRodney W. Grimes 2041dea673e9SRodney W. Grimes /* 2042dea673e9SRodney W. Grimes * Based on TCPMUX.C by Mark K. Lottor November 1988 2043dea673e9SRodney W. Grimes * sri-nic::ps:<mkl>tcpmux.c 2044dea673e9SRodney W. Grimes */ 2045dea673e9SRodney W. Grimes 2046dea673e9SRodney W. Grimes 2047dea673e9SRodney W. Grimes static int /* # of characters upto \r,\n or \0 */ 2048dea673e9SRodney W. Grimes getline(fd, buf, len) 2049dea673e9SRodney W. Grimes int fd; 2050dea673e9SRodney W. Grimes char *buf; 2051dea673e9SRodney W. Grimes int len; 2052dea673e9SRodney W. Grimes { 2053dea673e9SRodney W. Grimes int count = 0, n; 2054e523d5aeSGuido van Rooij struct sigaction sa; 2055dea673e9SRodney W. Grimes 205665434143SBruce Evans sa.sa_flags = 0; 205765434143SBruce Evans sigemptyset(&sa.sa_mask); 2058e523d5aeSGuido van Rooij sa.sa_handler = SIG_DFL; 2059e523d5aeSGuido van Rooij sigaction(SIGALRM, &sa, (struct sigaction *)0); 2060dea673e9SRodney W. Grimes do { 206134b32a7cSGuido van Rooij alarm(10); 2062dea673e9SRodney W. Grimes n = read(fd, buf, len-count); 206334b32a7cSGuido van Rooij alarm(0); 2064dea673e9SRodney W. Grimes if (n == 0) 2065e20e25dbSDag-Erling Smørgrav return (count); 2066e20e25dbSDag-Erling Smørgrav if (n < 0) 2067e20e25dbSDag-Erling Smørgrav return (-1); 2068dea673e9SRodney W. Grimes while (--n >= 0) { 2069e20e25dbSDag-Erling Smørgrav if (*buf == '\r' || *buf == '\n' || *buf == '\0') 2070e20e25dbSDag-Erling Smørgrav return (count); 2071dea673e9SRodney W. Grimes count++; 2072dea673e9SRodney W. Grimes buf++; 2073dea673e9SRodney W. Grimes } 2074e20e25dbSDag-Erling Smørgrav } while (count < len); 2075dea673e9SRodney W. Grimes return (count); 2076dea673e9SRodney W. Grimes } 2077dea673e9SRodney W. Grimes 2078dea673e9SRodney W. Grimes #define MAX_SERV_LEN (256+2) /* 2 bytes for \r\n */ 2079dea673e9SRodney W. Grimes 2080dea673e9SRodney W. Grimes #define strwrite(fd, buf) (void) write(fd, buf, sizeof(buf)-1) 2081dea673e9SRodney W. Grimes 2082dea673e9SRodney W. Grimes struct servtab * 2083dea673e9SRodney W. Grimes tcpmux(s) 2084dea673e9SRodney W. Grimes int s; 2085dea673e9SRodney W. Grimes { 2086dea673e9SRodney W. Grimes struct servtab *sep; 2087dea673e9SRodney W. Grimes char service[MAX_SERV_LEN+1]; 2088dea673e9SRodney W. Grimes int len; 2089dea673e9SRodney W. Grimes 2090dea673e9SRodney W. Grimes /* Get requested service name */ 2091dea673e9SRodney W. Grimes if ((len = getline(s, service, MAX_SERV_LEN)) < 0) { 2092dea673e9SRodney W. Grimes strwrite(s, "-Error reading service name\r\n"); 2093dea673e9SRodney W. Grimes return (NULL); 2094dea673e9SRodney W. Grimes } 2095dea673e9SRodney W. Grimes service[len] = '\0'; 2096dea673e9SRodney W. Grimes 2097dea673e9SRodney W. Grimes if (debug) 2098c1a2e93eSPhilippe Charnier warnx("tcpmux: someone wants %s", service); 2099dea673e9SRodney W. Grimes 2100dea673e9SRodney W. Grimes /* 2101dea673e9SRodney W. Grimes * Help is a required command, and lists available services, 2102dea673e9SRodney W. Grimes * one per line. 2103dea673e9SRodney W. Grimes */ 2104dea673e9SRodney W. Grimes if (!strcasecmp(service, "help")) { 2105dea673e9SRodney W. Grimes for (sep = servtab; sep; sep = sep->se_next) { 2106dea673e9SRodney W. Grimes if (!ISMUX(sep)) 2107dea673e9SRodney W. Grimes continue; 2108dea673e9SRodney W. Grimes (void)write(s,sep->se_service,strlen(sep->se_service)); 2109dea673e9SRodney W. Grimes strwrite(s, "\r\n"); 2110dea673e9SRodney W. Grimes } 2111dea673e9SRodney W. Grimes return (NULL); 2112dea673e9SRodney W. Grimes } 2113dea673e9SRodney W. Grimes 2114dea673e9SRodney W. Grimes /* Try matching a service in inetd.conf with the request */ 2115dea673e9SRodney W. Grimes for (sep = servtab; sep; sep = sep->se_next) { 2116dea673e9SRodney W. Grimes if (!ISMUX(sep)) 2117dea673e9SRodney W. Grimes continue; 2118dea673e9SRodney W. Grimes if (!strcasecmp(service, sep->se_service)) { 2119dea673e9SRodney W. Grimes if (ISMUXPLUS(sep)) { 2120dea673e9SRodney W. Grimes strwrite(s, "+Go\r\n"); 2121dea673e9SRodney W. Grimes } 2122dea673e9SRodney W. Grimes return (sep); 2123dea673e9SRodney W. Grimes } 2124dea673e9SRodney W. Grimes } 2125dea673e9SRodney W. Grimes strwrite(s, "-Service not available\r\n"); 2126dea673e9SRodney W. Grimes return (NULL); 2127dea673e9SRodney W. Grimes } 21283e2e58f1SDima Ruban 21293e2e58f1SDima Ruban #define CPMHSIZE 256 21303e2e58f1SDima Ruban #define CPMHMASK (CPMHSIZE-1) 21313e2e58f1SDima Ruban #define CHTGRAN 10 21323e2e58f1SDima Ruban #define CHTSIZE 6 21333e2e58f1SDima Ruban 21343e2e58f1SDima Ruban typedef struct CTime { 21353e2e58f1SDima Ruban unsigned long ct_Ticks; 21363e2e58f1SDima Ruban int ct_Count; 21373e2e58f1SDima Ruban } CTime; 21383e2e58f1SDima Ruban 21393e2e58f1SDima Ruban typedef struct CHash { 21403e2e58f1SDima Ruban struct in_addr ch_Addr; 21413e2e58f1SDima Ruban time_t ch_LTime; 21423e2e58f1SDima Ruban char *ch_Service; 21433e2e58f1SDima Ruban CTime ch_Times[CHTSIZE]; 21443e2e58f1SDima Ruban } CHash; 21453e2e58f1SDima Ruban 21463e2e58f1SDima Ruban CHash CHashAry[CPMHSIZE]; 21473e2e58f1SDima Ruban 21483e2e58f1SDima Ruban int 21493e2e58f1SDima Ruban cpmip(sep, ctrl) 21503e2e58f1SDima Ruban struct servtab *sep; 21513e2e58f1SDima Ruban int ctrl; 21523e2e58f1SDima Ruban { 21533e2e58f1SDima Ruban struct sockaddr_in rsin; 21543e2e58f1SDima Ruban int rsinLen = sizeof(rsin); 21553e2e58f1SDima Ruban int r = 0; 21563e2e58f1SDima Ruban 21573e2e58f1SDima Ruban /* 21583e2e58f1SDima Ruban * If getpeername() fails, just let it through (if logging is 21593e2e58f1SDima Ruban * enabled the condition is caught elsewhere) 21603e2e58f1SDima Ruban */ 21613e2e58f1SDima Ruban 21623e2e58f1SDima Ruban if (sep->se_maxcpm > 0 && 21633e2e58f1SDima Ruban getpeername(ctrl, (struct sockaddr *)&rsin, &rsinLen) == 0 ) { 21643e2e58f1SDima Ruban time_t t = time(NULL); 21653e2e58f1SDima Ruban int hv = 0xABC3D20F; 21663e2e58f1SDima Ruban int i; 21673e2e58f1SDima Ruban int cnt = 0; 21683e2e58f1SDima Ruban CHash *chBest = NULL; 21693e2e58f1SDima Ruban unsigned int ticks = t / CHTGRAN; 21703e2e58f1SDima Ruban 21713e2e58f1SDima Ruban { 21723e2e58f1SDima Ruban char *p; 21733e2e58f1SDima Ruban int i; 21743e2e58f1SDima Ruban 21753e2e58f1SDima Ruban for (i = 0, p = (char *)&rsin.sin_addr; 21763e2e58f1SDima Ruban i < sizeof(rsin.sin_addr); 21773e2e58f1SDima Ruban ++i, ++p) { 21783e2e58f1SDima Ruban hv = (hv << 5) ^ (hv >> 23) ^ *p; 21793e2e58f1SDima Ruban } 21803e2e58f1SDima Ruban hv = (hv ^ (hv >> 16)); 21813e2e58f1SDima Ruban } 21823e2e58f1SDima Ruban for (i = 0; i < 5; ++i) { 21833e2e58f1SDima Ruban CHash *ch = &CHashAry[(hv + i) & CPMHMASK]; 21843e2e58f1SDima Ruban 21853e2e58f1SDima Ruban if (rsin.sin_addr.s_addr == ch->ch_Addr.s_addr && 21863e2e58f1SDima Ruban ch->ch_Service && strcmp(sep->se_service, 21873e2e58f1SDima Ruban ch->ch_Service) == 0) { 21883e2e58f1SDima Ruban chBest = ch; 21893e2e58f1SDima Ruban break; 21903e2e58f1SDima Ruban } 21913e2e58f1SDima Ruban if (chBest == NULL || ch->ch_LTime == 0 || 21923e2e58f1SDima Ruban ch->ch_LTime < chBest->ch_LTime) { 21933e2e58f1SDima Ruban chBest = ch; 21943e2e58f1SDima Ruban } 21953e2e58f1SDima Ruban } 21963e2e58f1SDima Ruban if (rsin.sin_addr.s_addr != chBest->ch_Addr.s_addr || 21973e2e58f1SDima Ruban chBest->ch_Service == NULL || 21983e2e58f1SDima Ruban strcmp(sep->se_service, chBest->ch_Service) != 0) { 21993e2e58f1SDima Ruban chBest->ch_Addr = rsin.sin_addr; 22003e2e58f1SDima Ruban if (chBest->ch_Service) 22013e2e58f1SDima Ruban free(chBest->ch_Service); 22023e2e58f1SDima Ruban chBest->ch_Service = strdup(sep->se_service); 22033e2e58f1SDima Ruban bzero(chBest->ch_Times, sizeof(chBest->ch_Times)); 22043e2e58f1SDima Ruban } 22053e2e58f1SDima Ruban chBest->ch_LTime = t; 22063e2e58f1SDima Ruban { 22073e2e58f1SDima Ruban CTime *ct = &chBest->ch_Times[ticks % CHTSIZE]; 22083e2e58f1SDima Ruban if (ct->ct_Ticks != ticks) { 22093e2e58f1SDima Ruban ct->ct_Ticks = ticks; 22103e2e58f1SDima Ruban ct->ct_Count = 0; 22113e2e58f1SDima Ruban } 22123e2e58f1SDima Ruban ++ct->ct_Count; 22133e2e58f1SDima Ruban } 22143e2e58f1SDima Ruban for (i = 0; i < CHTSIZE; ++i) { 22153e2e58f1SDima Ruban CTime *ct = &chBest->ch_Times[i]; 22163e2e58f1SDima Ruban if (ct->ct_Ticks <= ticks && 22173e2e58f1SDima Ruban ct->ct_Ticks >= ticks - CHTSIZE) { 22183e2e58f1SDima Ruban cnt += ct->ct_Count; 22193e2e58f1SDima Ruban } 22203e2e58f1SDima Ruban } 22213e2e58f1SDima Ruban if (cnt * (CHTSIZE * CHTGRAN) / 60 > sep->se_maxcpm) { 22223e2e58f1SDima Ruban r = -1; 22233e2e58f1SDima Ruban syslog(LOG_ERR, 2224ffb7094eSPaul Traina "%s from %s exceeded counts/min (limit %d/min)", 2225ffb7094eSPaul Traina sep->se_service, inet_ntoa(rsin.sin_addr), 22263e2e58f1SDima Ruban sep->se_maxcpm); 22273e2e58f1SDima Ruban } 22283e2e58f1SDima Ruban } 22293e2e58f1SDima Ruban return(r); 22303e2e58f1SDima Ruban } 2231