17c478bd9Sstevel@tonic-gate /* 27c478bd9Sstevel@tonic-gate * CDDL HEADER START 37c478bd9Sstevel@tonic-gate * 47c478bd9Sstevel@tonic-gate * The contents of this file are subject to the terms of the 5ffbafc53Scomay * Common Development and Distribution License (the "License"). 6ffbafc53Scomay * You may not use this file except in compliance with the License. 77c478bd9Sstevel@tonic-gate * 87c478bd9Sstevel@tonic-gate * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 97c478bd9Sstevel@tonic-gate * or http://www.opensolaris.org/os/licensing. 107c478bd9Sstevel@tonic-gate * See the License for the specific language governing permissions 117c478bd9Sstevel@tonic-gate * and limitations under the License. 127c478bd9Sstevel@tonic-gate * 137c478bd9Sstevel@tonic-gate * When distributing Covered Code, include this CDDL HEADER in each 147c478bd9Sstevel@tonic-gate * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 157c478bd9Sstevel@tonic-gate * If applicable, add the following below this CDDL HEADER, with the 167c478bd9Sstevel@tonic-gate * fields enclosed by brackets "[]" replaced with your own identifying 177c478bd9Sstevel@tonic-gate * information: Portions Copyright [yyyy] [name of copyright owner] 187c478bd9Sstevel@tonic-gate * 197c478bd9Sstevel@tonic-gate * CDDL HEADER END 207c478bd9Sstevel@tonic-gate */ 21ffbafc53Scomay 227c478bd9Sstevel@tonic-gate /* 23ffbafc53Scomay * Copyright 2006 Sun Microsystems, Inc. All rights reserved. 247c478bd9Sstevel@tonic-gate * Use is subject to license terms. 257c478bd9Sstevel@tonic-gate */ 267c478bd9Sstevel@tonic-gate 277c478bd9Sstevel@tonic-gate #pragma ident "%Z%%M% %I% %E% SMI" 287c478bd9Sstevel@tonic-gate 297c478bd9Sstevel@tonic-gate /* 307c478bd9Sstevel@tonic-gate * Console support for zones requires a significant infrastructure. The 317c478bd9Sstevel@tonic-gate * core pieces are contained in this file, but other portions of note 327c478bd9Sstevel@tonic-gate * are in the zlogin(1M) command, the zcons(7D) driver, and in the 337c478bd9Sstevel@tonic-gate * devfsadm(1M) misc_link generator. 347c478bd9Sstevel@tonic-gate * 357c478bd9Sstevel@tonic-gate * Care is taken to make the console behave in an "intuitive" fashion for 367c478bd9Sstevel@tonic-gate * administrators. Essentially, we try as much as possible to mimic the 377c478bd9Sstevel@tonic-gate * experience of using a system via a tip line and system controller. 387c478bd9Sstevel@tonic-gate * 397c478bd9Sstevel@tonic-gate * The zone console architecture looks like this: 407c478bd9Sstevel@tonic-gate * 417c478bd9Sstevel@tonic-gate * Global Zone | Non-Global Zone 427c478bd9Sstevel@tonic-gate * .--------------. | 437c478bd9Sstevel@tonic-gate * .-----------. | zoneadmd -z | | .--------. .---------. 447c478bd9Sstevel@tonic-gate * | zlogin -C | | myzone | | | ttymon | | syslogd | 457c478bd9Sstevel@tonic-gate * `-----------' `--------------' | `--------' `---------' 467c478bd9Sstevel@tonic-gate * | | | | | | | 477c478bd9Sstevel@tonic-gate * User | | | | | V V 487c478bd9Sstevel@tonic-gate * - - - - - - - - -|- - - -|- - - -|-|- - - - - - -|- - /dev/zconsole - - - 497c478bd9Sstevel@tonic-gate * Kernel V V | | | 507c478bd9Sstevel@tonic-gate * [AF_UNIX Socket] | `--------. .-------------' 517c478bd9Sstevel@tonic-gate * | | | 527c478bd9Sstevel@tonic-gate * | V V 537c478bd9Sstevel@tonic-gate * | +-----------+ 547c478bd9Sstevel@tonic-gate * | | ldterm, | 557c478bd9Sstevel@tonic-gate * | | etc. | 567c478bd9Sstevel@tonic-gate * | +-----------+ 577c478bd9Sstevel@tonic-gate * | +-[Anchor]--+ 587c478bd9Sstevel@tonic-gate * | | ptem | 597c478bd9Sstevel@tonic-gate * V +-----------+ 607c478bd9Sstevel@tonic-gate * +---master---+---slave---+ 617c478bd9Sstevel@tonic-gate * | | 627c478bd9Sstevel@tonic-gate * | zcons driver | 637c478bd9Sstevel@tonic-gate * | zonename="myzone" | 647c478bd9Sstevel@tonic-gate * +------------------------+ 657c478bd9Sstevel@tonic-gate * 667c478bd9Sstevel@tonic-gate * There are basically three major tasks which the console subsystem in 677c478bd9Sstevel@tonic-gate * zoneadmd accomplishes: 687c478bd9Sstevel@tonic-gate * 697c478bd9Sstevel@tonic-gate * - Setup and teardown of zcons driver instances. One zcons instance 707c478bd9Sstevel@tonic-gate * is maintained per zone; we take advantage of the libdevice APIs 717c478bd9Sstevel@tonic-gate * to online new instances of zcons as needed. Care is taken to 727c478bd9Sstevel@tonic-gate * prune and manage these appropriately; see init_console_dev() and 737c478bd9Sstevel@tonic-gate * destroy_console_dev(). The end result is the creation of the 747c478bd9Sstevel@tonic-gate * zcons(7D) instance and an open file descriptor to the master side. 757c478bd9Sstevel@tonic-gate * zcons instances are associated with zones via their zonename device 767c478bd9Sstevel@tonic-gate * property. This the console instance to persist across reboots, 777c478bd9Sstevel@tonic-gate * and while the zone is halted. 787c478bd9Sstevel@tonic-gate * 797c478bd9Sstevel@tonic-gate * - Initialization of the slave side of the console. This is 807c478bd9Sstevel@tonic-gate * accomplished by pushing various STREAMS modules onto the console. 817c478bd9Sstevel@tonic-gate * The ptem(7M) module gets special treatment, and is anchored into 827c478bd9Sstevel@tonic-gate * place using the I_ANCHOR facility. This is so that the zcons driver 837c478bd9Sstevel@tonic-gate * always has terminal semantics, as would a real hardware terminal. 847c478bd9Sstevel@tonic-gate * This means that ttymon(1M) works unmodified; at boot time, ttymon 857c478bd9Sstevel@tonic-gate * will do its own plumbing of the console stream, and will even 867c478bd9Sstevel@tonic-gate * I_POP modules off. Hence the anchor, which assures that ptem will 877c478bd9Sstevel@tonic-gate * never be I_POP'd. 887c478bd9Sstevel@tonic-gate * 897c478bd9Sstevel@tonic-gate * - Acting as a server for 'zlogin -C' instances. When zlogin -C is 907c478bd9Sstevel@tonic-gate * run, zlogin connects to zoneadmd via unix domain socket. zoneadmd 917c478bd9Sstevel@tonic-gate * functions as a two-way proxy for console I/O, relaying user input 927c478bd9Sstevel@tonic-gate * to the master side of the console, and relaying output from the 937c478bd9Sstevel@tonic-gate * zone to the user. 947c478bd9Sstevel@tonic-gate */ 957c478bd9Sstevel@tonic-gate 967c478bd9Sstevel@tonic-gate #include <sys/types.h> 977c478bd9Sstevel@tonic-gate #include <sys/socket.h> 987c478bd9Sstevel@tonic-gate #include <sys/stat.h> 997c478bd9Sstevel@tonic-gate #include <sys/termios.h> 1007c478bd9Sstevel@tonic-gate #include <sys/zcons.h> 1017c478bd9Sstevel@tonic-gate 1027c478bd9Sstevel@tonic-gate #include <assert.h> 1037c478bd9Sstevel@tonic-gate #include <ctype.h> 1047c478bd9Sstevel@tonic-gate #include <errno.h> 1057c478bd9Sstevel@tonic-gate #include <fcntl.h> 1067c478bd9Sstevel@tonic-gate #include <stdarg.h> 1077c478bd9Sstevel@tonic-gate #include <stdio.h> 1087c478bd9Sstevel@tonic-gate #include <stdlib.h> 1097c478bd9Sstevel@tonic-gate #include <strings.h> 1107c478bd9Sstevel@tonic-gate #include <stropts.h> 1117c478bd9Sstevel@tonic-gate #include <thread.h> 1127c478bd9Sstevel@tonic-gate #include <ucred.h> 1137c478bd9Sstevel@tonic-gate #include <unistd.h> 1147c478bd9Sstevel@tonic-gate #include <zone.h> 1157c478bd9Sstevel@tonic-gate 1167c478bd9Sstevel@tonic-gate #include <libdevinfo.h> 1177c478bd9Sstevel@tonic-gate #include <libdevice.h> 1187c478bd9Sstevel@tonic-gate #include <libzonecfg.h> 1197c478bd9Sstevel@tonic-gate 1207c478bd9Sstevel@tonic-gate #include <syslog.h> 1217c478bd9Sstevel@tonic-gate 1227c478bd9Sstevel@tonic-gate #include "zoneadmd.h" 1237c478bd9Sstevel@tonic-gate 1247c478bd9Sstevel@tonic-gate #define ZCONSNEX_DEVTREEPATH "/pseudo/zconsnex@1" 1257c478bd9Sstevel@tonic-gate #define ZCONSNEX_FILEPATH "/devices/pseudo/zconsnex@1" 1267c478bd9Sstevel@tonic-gate 1277c478bd9Sstevel@tonic-gate #define CONSOLE_SOCKPATH ZONES_TMPDIR "/%s.console_sock" 1287c478bd9Sstevel@tonic-gate 1297c478bd9Sstevel@tonic-gate static int slavefd = -1; /* slave side of console */ 1307c478bd9Sstevel@tonic-gate static int serverfd = -1; /* console server unix domain socket fd */ 131*3f2f09c1Sdp char boot_args[BOOTARGS_MAX]; 132*3f2f09c1Sdp char bad_boot_arg[BOOTARGS_MAX]; 1337c478bd9Sstevel@tonic-gate 1347c478bd9Sstevel@tonic-gate static struct termios base_termios = { /* from init.c */ 1357c478bd9Sstevel@tonic-gate BRKINT|ICRNL|IXON|IMAXBEL, /* iflag */ 1367c478bd9Sstevel@tonic-gate OPOST|ONLCR|TAB3, /* oflag */ 1377c478bd9Sstevel@tonic-gate CS8|CREAD|B9600, /* cflag */ 1387c478bd9Sstevel@tonic-gate ISIG|ICANON|ECHO|ECHOE|ECHOK|ECHOCTL|ECHOKE|IEXTEN, /* lflag */ 1397c478bd9Sstevel@tonic-gate CINTR, CQUIT, CERASE, CKILL, CEOF, 0, 0, 0, 1407c478bd9Sstevel@tonic-gate 0, 0, 0, 0, 0, 0, 0, 0, 1417c478bd9Sstevel@tonic-gate 0, 0, 0 1427c478bd9Sstevel@tonic-gate }; 1437c478bd9Sstevel@tonic-gate 1447c478bd9Sstevel@tonic-gate /* 1457c478bd9Sstevel@tonic-gate * The eventstream is a simple one-directional flow of messages from the 1467c478bd9Sstevel@tonic-gate * door server to the console subsystem, implemented with a pipe. 1477c478bd9Sstevel@tonic-gate * It is used to wake up the console poller when it needs to take action, 1487c478bd9Sstevel@tonic-gate * message the user, die off, etc. 1497c478bd9Sstevel@tonic-gate */ 1507c478bd9Sstevel@tonic-gate static int eventstream[2]; 1517c478bd9Sstevel@tonic-gate 152*3f2f09c1Sdp 153*3f2f09c1Sdp 1547c478bd9Sstevel@tonic-gate int 1557c478bd9Sstevel@tonic-gate eventstream_init() 1567c478bd9Sstevel@tonic-gate { 1577c478bd9Sstevel@tonic-gate if (pipe(eventstream) == -1) 1587c478bd9Sstevel@tonic-gate return (-1); 1597c478bd9Sstevel@tonic-gate return (0); 1607c478bd9Sstevel@tonic-gate } 1617c478bd9Sstevel@tonic-gate 1627c478bd9Sstevel@tonic-gate void 1637c478bd9Sstevel@tonic-gate eventstream_write(zone_evt_t evt) 1647c478bd9Sstevel@tonic-gate { 1657c478bd9Sstevel@tonic-gate (void) write(eventstream[0], &evt, sizeof (evt)); 1667c478bd9Sstevel@tonic-gate } 1677c478bd9Sstevel@tonic-gate 1687c478bd9Sstevel@tonic-gate static zone_evt_t 1697c478bd9Sstevel@tonic-gate eventstream_read(void) 1707c478bd9Sstevel@tonic-gate { 1717c478bd9Sstevel@tonic-gate zone_evt_t evt = Z_EVT_NULL; 1727c478bd9Sstevel@tonic-gate 1737c478bd9Sstevel@tonic-gate (void) read(eventstream[1], &evt, sizeof (evt)); 1747c478bd9Sstevel@tonic-gate return (evt); 1757c478bd9Sstevel@tonic-gate } 1767c478bd9Sstevel@tonic-gate 1777c478bd9Sstevel@tonic-gate /* 1787c478bd9Sstevel@tonic-gate * count_console_devs() and its helper count_cb() do a walk of the 1797c478bd9Sstevel@tonic-gate * subtree of the device tree where zone console nodes are represented. 1807c478bd9Sstevel@tonic-gate * The goal is to count zone console instances already setup for a zone 1817c478bd9Sstevel@tonic-gate * with the given name. More than 1 is anomolous, and our caller will 1827c478bd9Sstevel@tonic-gate * have to deal with that if we find that's the case. 1837c478bd9Sstevel@tonic-gate * 1847c478bd9Sstevel@tonic-gate * Note: this algorithm is a linear search of nodes in the zconsnex subtree 1857c478bd9Sstevel@tonic-gate * of the device tree, and could be a scalability problem, but I don't see 1867c478bd9Sstevel@tonic-gate * how to avoid it. 1877c478bd9Sstevel@tonic-gate */ 1887c478bd9Sstevel@tonic-gate 1897c478bd9Sstevel@tonic-gate /* 1907c478bd9Sstevel@tonic-gate * cb_data is shared by count_cb and destroy_cb for simplicity. 1917c478bd9Sstevel@tonic-gate */ 1927c478bd9Sstevel@tonic-gate struct cb_data { 1937c478bd9Sstevel@tonic-gate zlog_t *zlogp; 1947c478bd9Sstevel@tonic-gate int found; 1957c478bd9Sstevel@tonic-gate int killed; 1967c478bd9Sstevel@tonic-gate }; 1977c478bd9Sstevel@tonic-gate 1987c478bd9Sstevel@tonic-gate static int 1997c478bd9Sstevel@tonic-gate count_cb(di_node_t node, void *arg) 2007c478bd9Sstevel@tonic-gate { 2017c478bd9Sstevel@tonic-gate struct cb_data *cb = (struct cb_data *)arg; 2027c478bd9Sstevel@tonic-gate char *prop_data; 2037c478bd9Sstevel@tonic-gate 2047c478bd9Sstevel@tonic-gate if (di_prop_lookup_strings(DDI_DEV_T_ANY, node, "zonename", 2057c478bd9Sstevel@tonic-gate &prop_data) != -1) { 2067c478bd9Sstevel@tonic-gate assert(prop_data != NULL); 2077c478bd9Sstevel@tonic-gate if (strcmp(prop_data, zone_name) == 0) { 2087c478bd9Sstevel@tonic-gate cb->found++; 2097c478bd9Sstevel@tonic-gate return (DI_WALK_CONTINUE); 2107c478bd9Sstevel@tonic-gate } 2117c478bd9Sstevel@tonic-gate } 2127c478bd9Sstevel@tonic-gate return (DI_WALK_CONTINUE); 2137c478bd9Sstevel@tonic-gate } 2147c478bd9Sstevel@tonic-gate 2157c478bd9Sstevel@tonic-gate static int 2167c478bd9Sstevel@tonic-gate count_console_devs(zlog_t *zlogp) 2177c478bd9Sstevel@tonic-gate { 2187c478bd9Sstevel@tonic-gate di_node_t root; 2197c478bd9Sstevel@tonic-gate struct cb_data cb; 2207c478bd9Sstevel@tonic-gate 2217c478bd9Sstevel@tonic-gate bzero(&cb, sizeof (cb)); 2227c478bd9Sstevel@tonic-gate cb.zlogp = zlogp; 2237c478bd9Sstevel@tonic-gate 2247c478bd9Sstevel@tonic-gate if ((root = di_init(ZCONSNEX_DEVTREEPATH, DINFOCPYALL)) == 2257c478bd9Sstevel@tonic-gate DI_NODE_NIL) { 2267c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "%s failed", "di_init"); 2277c478bd9Sstevel@tonic-gate return (-1); 2287c478bd9Sstevel@tonic-gate } 2297c478bd9Sstevel@tonic-gate 2307c478bd9Sstevel@tonic-gate (void) di_walk_node(root, DI_WALK_CLDFIRST, (void *)&cb, count_cb); 2317c478bd9Sstevel@tonic-gate di_fini(root); 2327c478bd9Sstevel@tonic-gate return (cb.found); 2337c478bd9Sstevel@tonic-gate } 2347c478bd9Sstevel@tonic-gate 2357c478bd9Sstevel@tonic-gate /* 2367c478bd9Sstevel@tonic-gate * destroy_console_devs() and its helper destroy_cb() tears down any console 2377c478bd9Sstevel@tonic-gate * instances associated with this zone. If things went very wrong, we 2387c478bd9Sstevel@tonic-gate * might have more than one console instance hanging around. This routine 2397c478bd9Sstevel@tonic-gate * hunts down and tries to remove all of them. Of course, if the console 2407c478bd9Sstevel@tonic-gate * is open, the instance will not detach, which is a potential issue. 2417c478bd9Sstevel@tonic-gate */ 2427c478bd9Sstevel@tonic-gate static int 2437c478bd9Sstevel@tonic-gate destroy_cb(di_node_t node, void *arg) 2447c478bd9Sstevel@tonic-gate { 2457c478bd9Sstevel@tonic-gate struct cb_data *cb = (struct cb_data *)arg; 2467c478bd9Sstevel@tonic-gate char *prop_data; 2477c478bd9Sstevel@tonic-gate char *tmp; 2487c478bd9Sstevel@tonic-gate char devpath[MAXPATHLEN]; 2497c478bd9Sstevel@tonic-gate devctl_hdl_t hdl; 2507c478bd9Sstevel@tonic-gate 2517c478bd9Sstevel@tonic-gate if (di_prop_lookup_strings(DDI_DEV_T_ANY, node, "zonename", 2527c478bd9Sstevel@tonic-gate &prop_data) == -1) 2537c478bd9Sstevel@tonic-gate return (DI_WALK_CONTINUE); 2547c478bd9Sstevel@tonic-gate 2557c478bd9Sstevel@tonic-gate assert(prop_data != NULL); 2567c478bd9Sstevel@tonic-gate if (strcmp(prop_data, zone_name) != 0) { 2577c478bd9Sstevel@tonic-gate /* this is the console for a different zone */ 2587c478bd9Sstevel@tonic-gate return (DI_WALK_CONTINUE); 2597c478bd9Sstevel@tonic-gate } 2607c478bd9Sstevel@tonic-gate 2617c478bd9Sstevel@tonic-gate cb->found++; 2627c478bd9Sstevel@tonic-gate tmp = di_devfs_path(node); 2637c478bd9Sstevel@tonic-gate (void) snprintf(devpath, sizeof (devpath), "/devices/%s", tmp); 2647c478bd9Sstevel@tonic-gate di_devfs_path_free(tmp); 2657c478bd9Sstevel@tonic-gate 2667c478bd9Sstevel@tonic-gate if ((hdl = devctl_device_acquire(devpath, 0)) == NULL) { 2677c478bd9Sstevel@tonic-gate zerror(cb->zlogp, B_TRUE, "WARNING: console %s found, " 2687c478bd9Sstevel@tonic-gate "but it could not be controlled.", devpath); 2697c478bd9Sstevel@tonic-gate return (DI_WALK_CONTINUE); 2707c478bd9Sstevel@tonic-gate } 2717c478bd9Sstevel@tonic-gate if (devctl_device_remove(hdl) == 0) { 2727c478bd9Sstevel@tonic-gate cb->killed++; 2737c478bd9Sstevel@tonic-gate } else { 2747c478bd9Sstevel@tonic-gate zerror(cb->zlogp, B_TRUE, "WARNING: console %s found, " 2757c478bd9Sstevel@tonic-gate "but it could not be removed.", devpath); 2767c478bd9Sstevel@tonic-gate } 2777c478bd9Sstevel@tonic-gate devctl_release(hdl); 2787c478bd9Sstevel@tonic-gate return (DI_WALK_CONTINUE); 2797c478bd9Sstevel@tonic-gate } 2807c478bd9Sstevel@tonic-gate 2817c478bd9Sstevel@tonic-gate static int 2827c478bd9Sstevel@tonic-gate destroy_console_devs(zlog_t *zlogp) 2837c478bd9Sstevel@tonic-gate { 2847c478bd9Sstevel@tonic-gate di_node_t root; 2857c478bd9Sstevel@tonic-gate struct cb_data cb; 2867c478bd9Sstevel@tonic-gate 2877c478bd9Sstevel@tonic-gate bzero(&cb, sizeof (cb)); 2887c478bd9Sstevel@tonic-gate cb.zlogp = zlogp; 2897c478bd9Sstevel@tonic-gate 2907c478bd9Sstevel@tonic-gate if ((root = di_init(ZCONSNEX_DEVTREEPATH, DINFOCPYALL)) == 2917c478bd9Sstevel@tonic-gate DI_NODE_NIL) { 2927c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "%s failed", "di_init"); 2937c478bd9Sstevel@tonic-gate return (-1); 2947c478bd9Sstevel@tonic-gate } 2957c478bd9Sstevel@tonic-gate 2967c478bd9Sstevel@tonic-gate (void) di_walk_node(root, DI_WALK_CLDFIRST, (void *)&cb, destroy_cb); 2977c478bd9Sstevel@tonic-gate if (cb.found > 1) { 2987c478bd9Sstevel@tonic-gate zerror(zlogp, B_FALSE, "WARNING: multiple zone console " 2997c478bd9Sstevel@tonic-gate "instances detected for zone '%s'; %d of %d " 3007c478bd9Sstevel@tonic-gate "successfully removed.", 3017c478bd9Sstevel@tonic-gate zone_name, cb.killed, cb.found); 3027c478bd9Sstevel@tonic-gate } 3037c478bd9Sstevel@tonic-gate 3047c478bd9Sstevel@tonic-gate di_fini(root); 3057c478bd9Sstevel@tonic-gate return (0); 3067c478bd9Sstevel@tonic-gate } 3077c478bd9Sstevel@tonic-gate 3087c478bd9Sstevel@tonic-gate /* 3097c478bd9Sstevel@tonic-gate * init_console_dev() drives the device-tree configuration of the zone 3107c478bd9Sstevel@tonic-gate * console device. The general strategy is to use the libdevice (devctl) 3117c478bd9Sstevel@tonic-gate * interfaces to instantiate a new zone console node. We do a lot of 3127c478bd9Sstevel@tonic-gate * sanity checking, and are careful to reuse a console if one exists. 3137c478bd9Sstevel@tonic-gate * 3147c478bd9Sstevel@tonic-gate * Once the device is in the device tree, we kick devfsadm via di_init_devs() 3157c478bd9Sstevel@tonic-gate * to ensure that the appropriate symlinks (to the master and slave console 3167c478bd9Sstevel@tonic-gate * devices) are placed in /dev in the global zone. 3177c478bd9Sstevel@tonic-gate */ 3187c478bd9Sstevel@tonic-gate static int 3197c478bd9Sstevel@tonic-gate init_console_dev(zlog_t *zlogp) 3207c478bd9Sstevel@tonic-gate { 3217c478bd9Sstevel@tonic-gate devctl_hdl_t bus_hdl = NULL, dev_hdl = NULL; 3227c478bd9Sstevel@tonic-gate devctl_ddef_t ddef_hdl = NULL; 3237c478bd9Sstevel@tonic-gate di_devlink_handle_t dl = NULL; 3247c478bd9Sstevel@tonic-gate int rv = -1, ndevs; 3257c478bd9Sstevel@tonic-gate 3267c478bd9Sstevel@tonic-gate /* 3277c478bd9Sstevel@tonic-gate * Don't re-setup console if it is working and ready already; just 3287c478bd9Sstevel@tonic-gate * skip ahead to making devlinks, which we do for sanity's sake. 3297c478bd9Sstevel@tonic-gate */ 3307c478bd9Sstevel@tonic-gate ndevs = count_console_devs(zlogp); 3317c478bd9Sstevel@tonic-gate if (ndevs == 1) { 3327c478bd9Sstevel@tonic-gate goto devlinks; 3337c478bd9Sstevel@tonic-gate } else if (ndevs > 1 || ndevs == -1) { 3347c478bd9Sstevel@tonic-gate /* 3357c478bd9Sstevel@tonic-gate * For now, this seems like a reasonable but harsh punishment. 3367c478bd9Sstevel@tonic-gate * If needed, we could try to get clever and delete all but 3377c478bd9Sstevel@tonic-gate * the console which is pointed at by the current symlink. 3387c478bd9Sstevel@tonic-gate */ 3397c478bd9Sstevel@tonic-gate if (destroy_console_devs(zlogp) == -1) { 3407c478bd9Sstevel@tonic-gate goto error; 3417c478bd9Sstevel@tonic-gate } 3427c478bd9Sstevel@tonic-gate } 3437c478bd9Sstevel@tonic-gate 3447c478bd9Sstevel@tonic-gate /* 3457c478bd9Sstevel@tonic-gate * Time to make the consoles! 3467c478bd9Sstevel@tonic-gate */ 3477c478bd9Sstevel@tonic-gate if ((bus_hdl = devctl_bus_acquire(ZCONSNEX_FILEPATH, 0)) == NULL) { 3487c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "%s failed", "devctl_bus_acquire"); 3497c478bd9Sstevel@tonic-gate goto error; 3507c478bd9Sstevel@tonic-gate } 3517c478bd9Sstevel@tonic-gate if ((ddef_hdl = devctl_ddef_alloc("zcons", 0)) == NULL) { 3527c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to allocate ddef handle"); 3537c478bd9Sstevel@tonic-gate goto error; 3547c478bd9Sstevel@tonic-gate } 3557c478bd9Sstevel@tonic-gate /* 3567c478bd9Sstevel@tonic-gate * Set three properties on this node; the first is the name of the 3577c478bd9Sstevel@tonic-gate * zone; the second is a flag which lets pseudo know that it is 3587c478bd9Sstevel@tonic-gate * OK to automatically allocate an instance # for this device; 3597c478bd9Sstevel@tonic-gate * the third tells the device framework not to auto-detach this 3607c478bd9Sstevel@tonic-gate * node-- we need the node to still be there when we ask devfsadmd 3617c478bd9Sstevel@tonic-gate * to make links, and when we need to open it. 3627c478bd9Sstevel@tonic-gate */ 3637c478bd9Sstevel@tonic-gate if (devctl_ddef_string(ddef_hdl, "zonename", zone_name) == -1) { 3647c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to create zonename property"); 3657c478bd9Sstevel@tonic-gate goto error; 3667c478bd9Sstevel@tonic-gate } 3677c478bd9Sstevel@tonic-gate if (devctl_ddef_int(ddef_hdl, "auto-assign-instance", 1) == -1) { 3687c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to create auto-assign-instance " 3697c478bd9Sstevel@tonic-gate "property"); 3707c478bd9Sstevel@tonic-gate goto error; 3717c478bd9Sstevel@tonic-gate } 3727c478bd9Sstevel@tonic-gate if (devctl_ddef_int(ddef_hdl, "ddi-no-autodetach", 1) == -1) { 3737c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to create ddi-no-auto-detach " 3747c478bd9Sstevel@tonic-gate "property"); 3757c478bd9Sstevel@tonic-gate goto error; 3767c478bd9Sstevel@tonic-gate } 3777c478bd9Sstevel@tonic-gate if (devctl_bus_dev_create(bus_hdl, ddef_hdl, 0, &dev_hdl) == -1) { 3787c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to create console node"); 3797c478bd9Sstevel@tonic-gate goto error; 3807c478bd9Sstevel@tonic-gate } 3817c478bd9Sstevel@tonic-gate 3827c478bd9Sstevel@tonic-gate devlinks: 3837c478bd9Sstevel@tonic-gate if ((dl = di_devlink_init("zcons", DI_MAKE_LINK)) != NULL) { 3847c478bd9Sstevel@tonic-gate (void) di_devlink_fini(&dl); 3857c478bd9Sstevel@tonic-gate } else { 3867c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to create devlinks"); 3877c478bd9Sstevel@tonic-gate goto error; 3887c478bd9Sstevel@tonic-gate } 3897c478bd9Sstevel@tonic-gate 3907c478bd9Sstevel@tonic-gate rv = 0; 3917c478bd9Sstevel@tonic-gate error: 3927c478bd9Sstevel@tonic-gate if (ddef_hdl) 3937c478bd9Sstevel@tonic-gate devctl_ddef_free(ddef_hdl); 3947c478bd9Sstevel@tonic-gate if (bus_hdl) 3957c478bd9Sstevel@tonic-gate devctl_release(bus_hdl); 3967c478bd9Sstevel@tonic-gate if (dev_hdl) 3977c478bd9Sstevel@tonic-gate devctl_release(dev_hdl); 3987c478bd9Sstevel@tonic-gate return (rv); 3997c478bd9Sstevel@tonic-gate } 4007c478bd9Sstevel@tonic-gate 4017c478bd9Sstevel@tonic-gate /* 4027c478bd9Sstevel@tonic-gate * prep_console_slave() takes care of setting up the console slave device 4037c478bd9Sstevel@tonic-gate * (the side that the zone will eventually open). It is a helper for 4047c478bd9Sstevel@tonic-gate * init_console_slave(). 4057c478bd9Sstevel@tonic-gate * 4067c478bd9Sstevel@tonic-gate * We have to mknod and setup the console device; then the slave side is 4077c478bd9Sstevel@tonic-gate * opened, and the appropriate STREAMS modules are pushed on. A wrinkle is that 4087c478bd9Sstevel@tonic-gate * 'ptem' must be anchored in place (see streamio(7i) since we always want the 4097c478bd9Sstevel@tonic-gate * console to have terminal semantics. 4107c478bd9Sstevel@tonic-gate */ 4117c478bd9Sstevel@tonic-gate static int 4127c478bd9Sstevel@tonic-gate prep_console_slave(zlog_t *zlogp, char *zonepath) 4137c478bd9Sstevel@tonic-gate { 4147c478bd9Sstevel@tonic-gate char slavename[MAXPATHLEN]; 4157c478bd9Sstevel@tonic-gate char zoneslavename[MAXPATHLEN]; 4167c478bd9Sstevel@tonic-gate struct stat st; 4177c478bd9Sstevel@tonic-gate 4187c478bd9Sstevel@tonic-gate assert(slavefd == -1); 4197c478bd9Sstevel@tonic-gate 4207c478bd9Sstevel@tonic-gate (void) snprintf(slavename, sizeof (slavename), 4217c478bd9Sstevel@tonic-gate "/dev/zcons/%s/%s", zone_name, ZCONS_SLAVE_NAME); 4227c478bd9Sstevel@tonic-gate 4237c478bd9Sstevel@tonic-gate (void) snprintf(zoneslavename, sizeof (zoneslavename), 4247c478bd9Sstevel@tonic-gate "%s/dev/zconsole", zonepath); 4257c478bd9Sstevel@tonic-gate 4267c478bd9Sstevel@tonic-gate /* 4277c478bd9Sstevel@tonic-gate * We mknod the zone console in $zonepath/dev/; someday it would 4287c478bd9Sstevel@tonic-gate * be nice to not have to manually mknod this stuff-- if possible, 4297c478bd9Sstevel@tonic-gate * we could move this into devfsadm. 4307c478bd9Sstevel@tonic-gate */ 4317c478bd9Sstevel@tonic-gate if (stat(slavename, &st) == -1) { 4327c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to stat %s", slavename); 4337c478bd9Sstevel@tonic-gate goto error; 4347c478bd9Sstevel@tonic-gate } 4357c478bd9Sstevel@tonic-gate (void) unlink(zoneslavename); 4367c478bd9Sstevel@tonic-gate if (mknod(zoneslavename, st.st_mode, st.st_rdev) == -1) { 4377c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to mknod %s", zoneslavename); 4387c478bd9Sstevel@tonic-gate goto error; 4397c478bd9Sstevel@tonic-gate } 4407c478bd9Sstevel@tonic-gate (void) chown(zoneslavename, st.st_uid, st.st_gid); 4417c478bd9Sstevel@tonic-gate if ((slavefd = open(zoneslavename, O_RDWR | O_NOCTTY)) < 0) { 4427c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to open %s", zoneslavename); 4437c478bd9Sstevel@tonic-gate return (-1); 4447c478bd9Sstevel@tonic-gate } 4457c478bd9Sstevel@tonic-gate 4467c478bd9Sstevel@tonic-gate /* 4477c478bd9Sstevel@tonic-gate * Just to make sure the whole stream is pristine. 4487c478bd9Sstevel@tonic-gate */ 4497c478bd9Sstevel@tonic-gate (void) ioctl(slavefd, I_FLUSH, FLUSHRW); 4507c478bd9Sstevel@tonic-gate 4517c478bd9Sstevel@tonic-gate /* 4527c478bd9Sstevel@tonic-gate * Push hardware emulation (ptem) module; we would rather not, but 4537c478bd9Sstevel@tonic-gate * are forced to push ldterm and ttcompat here. Ultimately ttymon 4547c478bd9Sstevel@tonic-gate * will pop them off, so we ANCHOR only ptem. 4557c478bd9Sstevel@tonic-gate * 4567c478bd9Sstevel@tonic-gate * We need to use __I_PUSH_NOCTTY instead of I_PUSH here, otherwise 4577c478bd9Sstevel@tonic-gate * we'll end up having the slave device as *our* controling terminal. 4587c478bd9Sstevel@tonic-gate */ 4597c478bd9Sstevel@tonic-gate if (ioctl(slavefd, __I_PUSH_NOCTTY, "ptem") == -1) { 4607c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to push ptem module"); 4617c478bd9Sstevel@tonic-gate goto error; 4627c478bd9Sstevel@tonic-gate } 4637c478bd9Sstevel@tonic-gate 4647c478bd9Sstevel@tonic-gate /* 4657c478bd9Sstevel@tonic-gate * Anchor the stream to prevent malicious or accidental I_POP of ptem. 4667c478bd9Sstevel@tonic-gate */ 4677c478bd9Sstevel@tonic-gate if (ioctl(slavefd, I_ANCHOR) == -1) { 4687c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to set stream anchor"); 4697c478bd9Sstevel@tonic-gate goto error; 4707c478bd9Sstevel@tonic-gate } 4717c478bd9Sstevel@tonic-gate 4727c478bd9Sstevel@tonic-gate if (ioctl(slavefd, __I_PUSH_NOCTTY, "ldterm") == -1) { 4737c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to push ldterm module"); 4747c478bd9Sstevel@tonic-gate goto error; 4757c478bd9Sstevel@tonic-gate } 4767c478bd9Sstevel@tonic-gate if (ioctl(slavefd, __I_PUSH_NOCTTY, "ttcompat") == -1) { 4777c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to push ttcompat module"); 4787c478bd9Sstevel@tonic-gate goto error; 4797c478bd9Sstevel@tonic-gate } 4807c478bd9Sstevel@tonic-gate 4817c478bd9Sstevel@tonic-gate /* 4827c478bd9Sstevel@tonic-gate * Setup default terminal settings 4837c478bd9Sstevel@tonic-gate */ 4847c478bd9Sstevel@tonic-gate if (tcsetattr(slavefd, TCSAFLUSH, &base_termios) == -1) { 4857c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to set base terminal settings"); 4867c478bd9Sstevel@tonic-gate goto error; 4877c478bd9Sstevel@tonic-gate } 4887c478bd9Sstevel@tonic-gate 4897c478bd9Sstevel@tonic-gate return (0); 4907c478bd9Sstevel@tonic-gate error: 4917c478bd9Sstevel@tonic-gate (void) close(slavefd); 4927c478bd9Sstevel@tonic-gate slavefd = -1; 4937c478bd9Sstevel@tonic-gate return (-1); 4947c478bd9Sstevel@tonic-gate } 4957c478bd9Sstevel@tonic-gate 4967c478bd9Sstevel@tonic-gate /* 4977c478bd9Sstevel@tonic-gate * init_console_slave() sets up the console slave device; the device node 4987c478bd9Sstevel@tonic-gate * itself has already been set up in the device tree; the primary job 4997c478bd9Sstevel@tonic-gate * here is to do some STREAMS plumbing (via prep_console_slave()) and then 5007c478bd9Sstevel@tonic-gate * to establish some symlinks. Eventually we should move that functionality 5017c478bd9Sstevel@tonic-gate * into devfsadm. 5027c478bd9Sstevel@tonic-gate */ 5037c478bd9Sstevel@tonic-gate int 5047c478bd9Sstevel@tonic-gate init_console_slave(zlog_t *zlogp) 5057c478bd9Sstevel@tonic-gate { 5067c478bd9Sstevel@tonic-gate char zonepath[MAXPATHLEN]; 5077c478bd9Sstevel@tonic-gate 5087c478bd9Sstevel@tonic-gate if (slavefd != -1) 5097c478bd9Sstevel@tonic-gate return (0); 5107c478bd9Sstevel@tonic-gate 5117c478bd9Sstevel@tonic-gate if (zone_get_zonepath(zone_name, zonepath, sizeof (zonepath)) != Z_OK) { 5127c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "unable to determine zone root"); 5137c478bd9Sstevel@tonic-gate return (-1); 5147c478bd9Sstevel@tonic-gate } 5157c478bd9Sstevel@tonic-gate 5167c478bd9Sstevel@tonic-gate if (prep_console_slave(zlogp, zonepath) == -1) { 5177c478bd9Sstevel@tonic-gate zerror(zlogp, B_FALSE, "could not prep console slave"); 5187c478bd9Sstevel@tonic-gate return (-1); 5197c478bd9Sstevel@tonic-gate } 5207c478bd9Sstevel@tonic-gate 5217c478bd9Sstevel@tonic-gate return (0); 5227c478bd9Sstevel@tonic-gate } 5237c478bd9Sstevel@tonic-gate 5247c478bd9Sstevel@tonic-gate void 5257c478bd9Sstevel@tonic-gate destroy_console_slave(void) 5267c478bd9Sstevel@tonic-gate { 5277c478bd9Sstevel@tonic-gate (void) close(slavefd); 5287c478bd9Sstevel@tonic-gate slavefd = -1; 5297c478bd9Sstevel@tonic-gate } 5307c478bd9Sstevel@tonic-gate 5317c478bd9Sstevel@tonic-gate /* 5327c478bd9Sstevel@tonic-gate * Restore initial terminal attributes to the zone console. 5337c478bd9Sstevel@tonic-gate */ 5347c478bd9Sstevel@tonic-gate void 5357c478bd9Sstevel@tonic-gate reset_slave_terminal(zlog_t *zlogp) 5367c478bd9Sstevel@tonic-gate { 5377c478bd9Sstevel@tonic-gate assert(slavefd != -1); 5387c478bd9Sstevel@tonic-gate 5397c478bd9Sstevel@tonic-gate /* Probably not fatal, so we drive on if it fails */ 5407c478bd9Sstevel@tonic-gate if (tcsetattr(slavefd, TCSAFLUSH, &base_termios) == -1) { 5417c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "WARNING: failed to set terminal " 5427c478bd9Sstevel@tonic-gate "settings."); 5437c478bd9Sstevel@tonic-gate } 5447c478bd9Sstevel@tonic-gate } 5457c478bd9Sstevel@tonic-gate 5467c478bd9Sstevel@tonic-gate static int 5477c478bd9Sstevel@tonic-gate init_console_sock(zlog_t *zlogp) 5487c478bd9Sstevel@tonic-gate { 5497c478bd9Sstevel@tonic-gate int servfd; 5507c478bd9Sstevel@tonic-gate struct sockaddr_un servaddr; 5517c478bd9Sstevel@tonic-gate 5527c478bd9Sstevel@tonic-gate bzero(&servaddr, sizeof (servaddr)); 5537c478bd9Sstevel@tonic-gate servaddr.sun_family = AF_UNIX; 5547c478bd9Sstevel@tonic-gate (void) snprintf(servaddr.sun_path, sizeof (servaddr.sun_path), 5557c478bd9Sstevel@tonic-gate CONSOLE_SOCKPATH, zone_name); 5567c478bd9Sstevel@tonic-gate 5577c478bd9Sstevel@tonic-gate if ((servfd = socket(AF_UNIX, SOCK_STREAM, 0)) == -1) { 5587c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "console setup: could not create socket"); 5597c478bd9Sstevel@tonic-gate return (-1); 5607c478bd9Sstevel@tonic-gate } 5617c478bd9Sstevel@tonic-gate (void) unlink(servaddr.sun_path); 5627c478bd9Sstevel@tonic-gate 5637c478bd9Sstevel@tonic-gate if (bind(servfd, (struct sockaddr *)&servaddr, 5647c478bd9Sstevel@tonic-gate sizeof (servaddr)) == -1) { 5657c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, 5667c478bd9Sstevel@tonic-gate "console setup: could not bind to socket"); 5677c478bd9Sstevel@tonic-gate goto out; 5687c478bd9Sstevel@tonic-gate } 5697c478bd9Sstevel@tonic-gate 5707c478bd9Sstevel@tonic-gate if (listen(servfd, 4) == -1) { 5717c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, 5727c478bd9Sstevel@tonic-gate "console setup: could not listen on socket"); 5737c478bd9Sstevel@tonic-gate goto out; 5747c478bd9Sstevel@tonic-gate } 5757c478bd9Sstevel@tonic-gate return (servfd); 5767c478bd9Sstevel@tonic-gate 5777c478bd9Sstevel@tonic-gate out: 5787c478bd9Sstevel@tonic-gate (void) unlink(servaddr.sun_path); 5797c478bd9Sstevel@tonic-gate (void) close(servfd); 5807c478bd9Sstevel@tonic-gate return (-1); 5817c478bd9Sstevel@tonic-gate } 5827c478bd9Sstevel@tonic-gate 5837c478bd9Sstevel@tonic-gate static void 5847c478bd9Sstevel@tonic-gate destroy_console_sock(int servfd) 5857c478bd9Sstevel@tonic-gate { 5867c478bd9Sstevel@tonic-gate char path[MAXPATHLEN]; 5877c478bd9Sstevel@tonic-gate 5887c478bd9Sstevel@tonic-gate (void) snprintf(path, sizeof (path), CONSOLE_SOCKPATH, zone_name); 5897c478bd9Sstevel@tonic-gate (void) unlink(path); 5907c478bd9Sstevel@tonic-gate (void) shutdown(servfd, SHUT_RDWR); 5917c478bd9Sstevel@tonic-gate (void) close(servfd); 5927c478bd9Sstevel@tonic-gate } 5937c478bd9Sstevel@tonic-gate 5947c478bd9Sstevel@tonic-gate /* 5957c478bd9Sstevel@tonic-gate * Read the "ident" string from the client's descriptor; this routine also 5967c478bd9Sstevel@tonic-gate * tolerates being called with pid=NULL, for times when you want to "eat" 5977c478bd9Sstevel@tonic-gate * the ident string from a client without saving it. 5987c478bd9Sstevel@tonic-gate */ 5997c478bd9Sstevel@tonic-gate static int 6007c478bd9Sstevel@tonic-gate get_client_ident(int clifd, pid_t *pid, char *locale, size_t locale_len) 6017c478bd9Sstevel@tonic-gate { 6027c478bd9Sstevel@tonic-gate char buf[BUFSIZ], *bufp; 6037c478bd9Sstevel@tonic-gate size_t buflen = sizeof (buf); 6047c478bd9Sstevel@tonic-gate char c = '\0'; 6057c478bd9Sstevel@tonic-gate int i = 0, r; 6067c478bd9Sstevel@tonic-gate 6077c478bd9Sstevel@tonic-gate /* "eat up the ident string" case, for simplicity */ 6087c478bd9Sstevel@tonic-gate if (pid == NULL) { 6097c478bd9Sstevel@tonic-gate assert(locale == NULL && locale_len == 0); 6107c478bd9Sstevel@tonic-gate while (read(clifd, &c, 1) == 1) { 6117c478bd9Sstevel@tonic-gate if (c == '\n') 6127c478bd9Sstevel@tonic-gate return (0); 6137c478bd9Sstevel@tonic-gate } 6147c478bd9Sstevel@tonic-gate } 6157c478bd9Sstevel@tonic-gate 6167c478bd9Sstevel@tonic-gate bzero(buf, sizeof (buf)); 6177c478bd9Sstevel@tonic-gate while ((buflen > 1) && (r = read(clifd, &c, 1)) == 1) { 6187c478bd9Sstevel@tonic-gate buflen--; 6197c478bd9Sstevel@tonic-gate if (c == '\n') 6207c478bd9Sstevel@tonic-gate break; 6217c478bd9Sstevel@tonic-gate 6227c478bd9Sstevel@tonic-gate buf[i] = c; 6237c478bd9Sstevel@tonic-gate i++; 6247c478bd9Sstevel@tonic-gate } 6257c478bd9Sstevel@tonic-gate if (r == -1) 6267c478bd9Sstevel@tonic-gate return (-1); 6277c478bd9Sstevel@tonic-gate 6287c478bd9Sstevel@tonic-gate /* 6297c478bd9Sstevel@tonic-gate * We've filled the buffer, but still haven't seen \n. Keep eating 6307c478bd9Sstevel@tonic-gate * until we find it; we don't expect this to happen, but this is 6317c478bd9Sstevel@tonic-gate * defensive. 6327c478bd9Sstevel@tonic-gate */ 6337c478bd9Sstevel@tonic-gate if (c != '\n') { 6347c478bd9Sstevel@tonic-gate while ((r = read(clifd, &c, sizeof (c))) > 0) 6357c478bd9Sstevel@tonic-gate if (c == '\n') 6367c478bd9Sstevel@tonic-gate break; 6377c478bd9Sstevel@tonic-gate } 6387c478bd9Sstevel@tonic-gate 6397c478bd9Sstevel@tonic-gate /* 6407c478bd9Sstevel@tonic-gate * Parse buffer for message of the form: IDENT <pid> <locale> 6417c478bd9Sstevel@tonic-gate */ 6427c478bd9Sstevel@tonic-gate bufp = buf; 6437c478bd9Sstevel@tonic-gate if (strncmp(bufp, "IDENT ", 6) != 0) 6447c478bd9Sstevel@tonic-gate return (-1); 6457c478bd9Sstevel@tonic-gate bufp += 6; 6467c478bd9Sstevel@tonic-gate errno = 0; 6477c478bd9Sstevel@tonic-gate *pid = strtoll(bufp, &bufp, 10); 6487c478bd9Sstevel@tonic-gate if (errno != 0) 6497c478bd9Sstevel@tonic-gate return (-1); 6507c478bd9Sstevel@tonic-gate 6517c478bd9Sstevel@tonic-gate while (*bufp != '\0' && isspace(*bufp)) 6527c478bd9Sstevel@tonic-gate bufp++; 6537c478bd9Sstevel@tonic-gate (void) strlcpy(locale, bufp, locale_len); 6547c478bd9Sstevel@tonic-gate 6557c478bd9Sstevel@tonic-gate return (0); 6567c478bd9Sstevel@tonic-gate } 6577c478bd9Sstevel@tonic-gate 6587c478bd9Sstevel@tonic-gate static int 6597c478bd9Sstevel@tonic-gate accept_client(int servfd, pid_t *pid, char *locale, size_t locale_len) 6607c478bd9Sstevel@tonic-gate { 6617c478bd9Sstevel@tonic-gate int connfd; 6627c478bd9Sstevel@tonic-gate struct sockaddr_un cliaddr; 6637c478bd9Sstevel@tonic-gate socklen_t clilen; 6647c478bd9Sstevel@tonic-gate 6657c478bd9Sstevel@tonic-gate clilen = sizeof (cliaddr); 6667c478bd9Sstevel@tonic-gate connfd = accept(servfd, (struct sockaddr *)&cliaddr, &clilen); 6677c478bd9Sstevel@tonic-gate if (connfd == -1) 6687c478bd9Sstevel@tonic-gate return (-1); 6697c478bd9Sstevel@tonic-gate if (get_client_ident(connfd, pid, locale, locale_len) == -1) { 6707c478bd9Sstevel@tonic-gate (void) shutdown(connfd, SHUT_RDWR); 6717c478bd9Sstevel@tonic-gate (void) close(connfd); 6727c478bd9Sstevel@tonic-gate return (-1); 6737c478bd9Sstevel@tonic-gate } 6747c478bd9Sstevel@tonic-gate (void) write(connfd, "OK\n", 3); 6757c478bd9Sstevel@tonic-gate return (connfd); 6767c478bd9Sstevel@tonic-gate } 6777c478bd9Sstevel@tonic-gate 6787c478bd9Sstevel@tonic-gate static void 6797c478bd9Sstevel@tonic-gate reject_client(int servfd, pid_t clientpid) 6807c478bd9Sstevel@tonic-gate { 6817c478bd9Sstevel@tonic-gate int connfd; 6827c478bd9Sstevel@tonic-gate struct sockaddr_un cliaddr; 6837c478bd9Sstevel@tonic-gate socklen_t clilen; 6847c478bd9Sstevel@tonic-gate char nak[MAXPATHLEN]; 6857c478bd9Sstevel@tonic-gate 6867c478bd9Sstevel@tonic-gate clilen = sizeof (cliaddr); 6877c478bd9Sstevel@tonic-gate connfd = accept(servfd, (struct sockaddr *)&cliaddr, &clilen); 6887c478bd9Sstevel@tonic-gate 6897c478bd9Sstevel@tonic-gate /* 6907c478bd9Sstevel@tonic-gate * After hear its ident string, tell client to get lost. 6917c478bd9Sstevel@tonic-gate */ 6927c478bd9Sstevel@tonic-gate if (get_client_ident(connfd, NULL, NULL, 0) == 0) { 6937c478bd9Sstevel@tonic-gate (void) snprintf(nak, sizeof (nak), "%lu\n", 6947c478bd9Sstevel@tonic-gate clientpid); 6957c478bd9Sstevel@tonic-gate (void) write(connfd, nak, strlen(nak)); 6967c478bd9Sstevel@tonic-gate } 6977c478bd9Sstevel@tonic-gate (void) shutdown(connfd, SHUT_RDWR); 6987c478bd9Sstevel@tonic-gate (void) close(connfd); 6997c478bd9Sstevel@tonic-gate } 7007c478bd9Sstevel@tonic-gate 7017c478bd9Sstevel@tonic-gate static void 7027c478bd9Sstevel@tonic-gate event_message(int clifd, char *clilocale, zone_evt_t evt) 7037c478bd9Sstevel@tonic-gate { 704*3f2f09c1Sdp char *str, *lstr = NULL; 705*3f2f09c1Sdp char lmsg[BUFSIZ]; 706*3f2f09c1Sdp char outbuf[BUFSIZ]; 7077c478bd9Sstevel@tonic-gate 7087c478bd9Sstevel@tonic-gate if (clifd == -1) 7097c478bd9Sstevel@tonic-gate return; 7107c478bd9Sstevel@tonic-gate 7117c478bd9Sstevel@tonic-gate switch (evt) { 7127c478bd9Sstevel@tonic-gate case Z_EVT_ZONE_BOOTING: 713*3f2f09c1Sdp if (*boot_args == '\0') { 714*3f2f09c1Sdp str = "NOTICE: Zone booting up"; 715*3f2f09c1Sdp break; 716*3f2f09c1Sdp } 717*3f2f09c1Sdp /*LINTED*/ 718*3f2f09c1Sdp (void) snprintf(lmsg, sizeof (lmsg), localize_msg(clilocale, 719*3f2f09c1Sdp "NOTICE: Zone booting up with arguments: %s"), boot_args); 720*3f2f09c1Sdp lstr = lmsg; 7217c478bd9Sstevel@tonic-gate break; 7227c478bd9Sstevel@tonic-gate case Z_EVT_ZONE_READIED: 723*3f2f09c1Sdp str = "NOTICE: Zone readied"; 7247c478bd9Sstevel@tonic-gate break; 7257c478bd9Sstevel@tonic-gate case Z_EVT_ZONE_HALTED: 726*3f2f09c1Sdp str = "NOTICE: Zone halted"; 7277c478bd9Sstevel@tonic-gate break; 7287c478bd9Sstevel@tonic-gate case Z_EVT_ZONE_REBOOTING: 729*3f2f09c1Sdp if (*boot_args == '\0') { 730*3f2f09c1Sdp str = "NOTICE: Zone rebooting"; 731*3f2f09c1Sdp break; 732*3f2f09c1Sdp } 733*3f2f09c1Sdp /*LINTED*/ 734*3f2f09c1Sdp (void) snprintf(lmsg, sizeof (lmsg), localize_msg(clilocale, 735*3f2f09c1Sdp "NOTICE: Zone rebooting with arguments: %s"), boot_args); 736*3f2f09c1Sdp lstr = lmsg; 7377c478bd9Sstevel@tonic-gate break; 7387c478bd9Sstevel@tonic-gate case Z_EVT_ZONE_UNINSTALLING: 739*3f2f09c1Sdp str = "NOTICE: Zone is being uninstalled. Disconnecting..."; 7407c478bd9Sstevel@tonic-gate break; 741ffbafc53Scomay case Z_EVT_ZONE_BOOTFAILED: 742*3f2f09c1Sdp str = "NOTICE: Zone boot failed"; 743*3f2f09c1Sdp break; 744*3f2f09c1Sdp case Z_EVT_ZONE_BADARGS: 745*3f2f09c1Sdp /*LINTED*/ 746*3f2f09c1Sdp (void) snprintf(lmsg, sizeof (lmsg), 747*3f2f09c1Sdp localize_msg(clilocale, 748*3f2f09c1Sdp "WARNING: Ignoring invalid boot arguments: %s"), 749*3f2f09c1Sdp bad_boot_arg); 750*3f2f09c1Sdp lstr = lmsg; 751ffbafc53Scomay break; 7527c478bd9Sstevel@tonic-gate default: 7537c478bd9Sstevel@tonic-gate return; 7547c478bd9Sstevel@tonic-gate } 755*3f2f09c1Sdp 756*3f2f09c1Sdp if (lstr == NULL) 757*3f2f09c1Sdp lstr = localize_msg(clilocale, str); 758*3f2f09c1Sdp (void) snprintf(outbuf, sizeof (outbuf), "\r\n[%s]\r\n", lstr); 759*3f2f09c1Sdp (void) write(clifd, outbuf, strlen(outbuf)); 7607c478bd9Sstevel@tonic-gate } 7617c478bd9Sstevel@tonic-gate 7627c478bd9Sstevel@tonic-gate /* 7637c478bd9Sstevel@tonic-gate * Check to see if the client at the other end of the socket is still 7647c478bd9Sstevel@tonic-gate * alive; we know it is not if it throws EPIPE at us when we try to write 7657c478bd9Sstevel@tonic-gate * an otherwise harmless 0-length message to it. 7667c478bd9Sstevel@tonic-gate */ 7677c478bd9Sstevel@tonic-gate static int 7687c478bd9Sstevel@tonic-gate test_client(int clifd) 7697c478bd9Sstevel@tonic-gate { 7707c478bd9Sstevel@tonic-gate if ((write(clifd, "", 0) == -1) && errno == EPIPE) 7717c478bd9Sstevel@tonic-gate return (-1); 7727c478bd9Sstevel@tonic-gate return (0); 7737c478bd9Sstevel@tonic-gate } 7747c478bd9Sstevel@tonic-gate 7757c478bd9Sstevel@tonic-gate /* 7767c478bd9Sstevel@tonic-gate * This routine drives the console I/O loop. It polls for input from the 7777c478bd9Sstevel@tonic-gate * master side of the console (output to the console), and from the client 7787c478bd9Sstevel@tonic-gate * (input from the console user). Additionally, it polls on the server fd, 7797c478bd9Sstevel@tonic-gate * and disconnects any clients that might try to hook up with the zone while 7807c478bd9Sstevel@tonic-gate * the console is in use. 7817c478bd9Sstevel@tonic-gate * 7827c478bd9Sstevel@tonic-gate * When the client first calls us up, it is expected to send a line giving 7837c478bd9Sstevel@tonic-gate * its "identity"; this consists of the string 'IDENT <pid> <locale>'. 7847c478bd9Sstevel@tonic-gate * This is so that we can report that the console is busy along with 7857c478bd9Sstevel@tonic-gate * some diagnostics about who has it busy; the locale is used so that 7867c478bd9Sstevel@tonic-gate * asynchronous messages about zone state (like the NOTICE: zone halted 7877c478bd9Sstevel@tonic-gate * messages) can be output in the user's locale. 7887c478bd9Sstevel@tonic-gate */ 7897c478bd9Sstevel@tonic-gate static void 7907c478bd9Sstevel@tonic-gate do_console_io(zlog_t *zlogp, int consfd, int servfd) 7917c478bd9Sstevel@tonic-gate { 7927c478bd9Sstevel@tonic-gate struct pollfd pollfds[4]; 7937c478bd9Sstevel@tonic-gate char ibuf[BUFSIZ]; 7947c478bd9Sstevel@tonic-gate int cc, ret; 7957c478bd9Sstevel@tonic-gate int clifd = -1; 7967c478bd9Sstevel@tonic-gate int pollerr = 0; 7977c478bd9Sstevel@tonic-gate char clilocale[MAXPATHLEN]; 7987c478bd9Sstevel@tonic-gate pid_t clipid = 0; 7997c478bd9Sstevel@tonic-gate 8007c478bd9Sstevel@tonic-gate /* console side, watch for read events */ 8017c478bd9Sstevel@tonic-gate pollfds[0].fd = consfd; 8027c478bd9Sstevel@tonic-gate pollfds[0].events = POLLIN | POLLRDNORM | POLLRDBAND | 8037c478bd9Sstevel@tonic-gate POLLPRI | POLLERR | POLLHUP | POLLNVAL; 8047c478bd9Sstevel@tonic-gate 8057c478bd9Sstevel@tonic-gate /* client side, watch for read events */ 8067c478bd9Sstevel@tonic-gate pollfds[1].fd = clifd; 8077c478bd9Sstevel@tonic-gate pollfds[1].events = pollfds[0].events; 8087c478bd9Sstevel@tonic-gate 8097c478bd9Sstevel@tonic-gate /* the server socket; watch for events (new connections) */ 8107c478bd9Sstevel@tonic-gate pollfds[2].fd = servfd; 8117c478bd9Sstevel@tonic-gate pollfds[2].events = pollfds[0].events; 8127c478bd9Sstevel@tonic-gate 8137c478bd9Sstevel@tonic-gate /* the eventstram; watch for events (e.g.: zone halted) */ 8147c478bd9Sstevel@tonic-gate pollfds[3].fd = eventstream[1]; 8157c478bd9Sstevel@tonic-gate pollfds[3].events = pollfds[0].events; 8167c478bd9Sstevel@tonic-gate 8177c478bd9Sstevel@tonic-gate for (;;) { 8187c478bd9Sstevel@tonic-gate pollfds[0].revents = pollfds[1].revents = 0; 8197c478bd9Sstevel@tonic-gate pollfds[2].revents = pollfds[3].revents = 0; 8207c478bd9Sstevel@tonic-gate 8217c478bd9Sstevel@tonic-gate ret = poll(pollfds, 8227c478bd9Sstevel@tonic-gate sizeof (pollfds) / sizeof (struct pollfd), -1); 8237c478bd9Sstevel@tonic-gate if (ret == -1 && errno != EINTR) { 8247c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "poll failed"); 8257c478bd9Sstevel@tonic-gate /* we are hosed, close connection */ 8267c478bd9Sstevel@tonic-gate break; 8277c478bd9Sstevel@tonic-gate } 8287c478bd9Sstevel@tonic-gate 8297c478bd9Sstevel@tonic-gate /* event from console side */ 8307c478bd9Sstevel@tonic-gate if (pollfds[0].revents) { 8317c478bd9Sstevel@tonic-gate if (pollfds[0].revents & 8327c478bd9Sstevel@tonic-gate (POLLIN | POLLRDNORM | POLLRDBAND | POLLPRI)) { 8337c478bd9Sstevel@tonic-gate errno = 0; 8347c478bd9Sstevel@tonic-gate cc = read(consfd, ibuf, BUFSIZ); 8357c478bd9Sstevel@tonic-gate if (cc <= 0 && (errno != EINTR) && 8367c478bd9Sstevel@tonic-gate (errno != EAGAIN)) 8377c478bd9Sstevel@tonic-gate break; 8387c478bd9Sstevel@tonic-gate /* 8397c478bd9Sstevel@tonic-gate * Lose I/O if no one is listening 8407c478bd9Sstevel@tonic-gate */ 8417c478bd9Sstevel@tonic-gate if (clifd != -1 && cc > 0) 8427c478bd9Sstevel@tonic-gate (void) write(clifd, ibuf, cc); 8437c478bd9Sstevel@tonic-gate } else { 8447c478bd9Sstevel@tonic-gate pollerr = pollfds[0].revents; 8457c478bd9Sstevel@tonic-gate zerror(zlogp, B_FALSE, 8467c478bd9Sstevel@tonic-gate "closing connection with (console) " 8477c478bd9Sstevel@tonic-gate "pollerr %d\n", pollerr); 8487c478bd9Sstevel@tonic-gate break; 8497c478bd9Sstevel@tonic-gate } 8507c478bd9Sstevel@tonic-gate } 8517c478bd9Sstevel@tonic-gate 8527c478bd9Sstevel@tonic-gate /* event from client side */ 8537c478bd9Sstevel@tonic-gate if (pollfds[1].revents) { 8547c478bd9Sstevel@tonic-gate if (pollfds[1].revents & 8557c478bd9Sstevel@tonic-gate (POLLIN | POLLRDNORM | POLLRDBAND | POLLPRI)) { 8567c478bd9Sstevel@tonic-gate errno = 0; 8577c478bd9Sstevel@tonic-gate cc = read(clifd, ibuf, BUFSIZ); 8587c478bd9Sstevel@tonic-gate if (cc <= 0 && (errno != EINTR) && 8597c478bd9Sstevel@tonic-gate (errno != EAGAIN)) 8607c478bd9Sstevel@tonic-gate break; 8617c478bd9Sstevel@tonic-gate (void) write(consfd, ibuf, cc); 8627c478bd9Sstevel@tonic-gate } else { 8637c478bd9Sstevel@tonic-gate pollerr = pollfds[1].revents; 8647c478bd9Sstevel@tonic-gate zerror(zlogp, B_FALSE, 8657c478bd9Sstevel@tonic-gate "closing connection with (client) " 8667c478bd9Sstevel@tonic-gate "pollerr %d\n", pollerr); 8677c478bd9Sstevel@tonic-gate break; 8687c478bd9Sstevel@tonic-gate } 8697c478bd9Sstevel@tonic-gate } 8707c478bd9Sstevel@tonic-gate 8717c478bd9Sstevel@tonic-gate /* event from server socket */ 8727c478bd9Sstevel@tonic-gate if (pollfds[2].revents && 8737c478bd9Sstevel@tonic-gate (pollfds[2].revents & (POLLIN | POLLRDNORM))) { 8747c478bd9Sstevel@tonic-gate if (clifd != -1) { 8757c478bd9Sstevel@tonic-gate /* 8767c478bd9Sstevel@tonic-gate * Test the client to see if it is really 8777c478bd9Sstevel@tonic-gate * still alive. If it has died but we 8787c478bd9Sstevel@tonic-gate * haven't yet detected that, we might 8797c478bd9Sstevel@tonic-gate * deny a legitimate connect attempt. If it 8807c478bd9Sstevel@tonic-gate * is dead, we break out; once we tear down 8817c478bd9Sstevel@tonic-gate * the old connection, the new connection 8827c478bd9Sstevel@tonic-gate * will happen. 8837c478bd9Sstevel@tonic-gate */ 8847c478bd9Sstevel@tonic-gate if (test_client(clifd) == -1) { 8857c478bd9Sstevel@tonic-gate break; 8867c478bd9Sstevel@tonic-gate } 8877c478bd9Sstevel@tonic-gate /* we're already handling a client */ 8887c478bd9Sstevel@tonic-gate reject_client(servfd, clipid); 8897c478bd9Sstevel@tonic-gate 8907c478bd9Sstevel@tonic-gate 8917c478bd9Sstevel@tonic-gate } else if ((clifd = accept_client(servfd, &clipid, 8927c478bd9Sstevel@tonic-gate clilocale, sizeof (clilocale))) != -1) { 8937c478bd9Sstevel@tonic-gate pollfds[1].fd = clifd; 8947c478bd9Sstevel@tonic-gate 8957c478bd9Sstevel@tonic-gate } else { 8967c478bd9Sstevel@tonic-gate break; 8977c478bd9Sstevel@tonic-gate } 8987c478bd9Sstevel@tonic-gate } 8997c478bd9Sstevel@tonic-gate 9007c478bd9Sstevel@tonic-gate /* 9017c478bd9Sstevel@tonic-gate * Watch for events on the eventstream. This is how we get 9027c478bd9Sstevel@tonic-gate * notified of the zone halting, etc. It provides us a 9037c478bd9Sstevel@tonic-gate * "wakeup" from poll when important things happen, which 9047c478bd9Sstevel@tonic-gate * is good. 9057c478bd9Sstevel@tonic-gate */ 9067c478bd9Sstevel@tonic-gate if (pollfds[3].revents) { 9077c478bd9Sstevel@tonic-gate int evt = eventstream_read(); 9087c478bd9Sstevel@tonic-gate /* 9097c478bd9Sstevel@tonic-gate * After we drain out the event, if we aren't servicing 9107c478bd9Sstevel@tonic-gate * a console client, we hop back out to our caller, 9117c478bd9Sstevel@tonic-gate * which will check to see if it is time to shutdown 9127c478bd9Sstevel@tonic-gate * the daemon, or if we should take another console 9137c478bd9Sstevel@tonic-gate * service lap. 9147c478bd9Sstevel@tonic-gate */ 9157c478bd9Sstevel@tonic-gate if (clifd == -1) { 9167c478bd9Sstevel@tonic-gate break; 9177c478bd9Sstevel@tonic-gate } 9187c478bd9Sstevel@tonic-gate event_message(clifd, clilocale, evt); 9197c478bd9Sstevel@tonic-gate /* 9207c478bd9Sstevel@tonic-gate * Special handling for the message that the zone is 9217c478bd9Sstevel@tonic-gate * uninstalling; we boot the client, then break out 9227c478bd9Sstevel@tonic-gate * of this function. When we return to the 9237c478bd9Sstevel@tonic-gate * serve_console loop, we will see that the zone is 9247c478bd9Sstevel@tonic-gate * in a state < READY, and so zoneadmd will shutdown. 9257c478bd9Sstevel@tonic-gate */ 9267c478bd9Sstevel@tonic-gate if (evt == Z_EVT_ZONE_UNINSTALLING) { 9277c478bd9Sstevel@tonic-gate break; 9287c478bd9Sstevel@tonic-gate } 9297c478bd9Sstevel@tonic-gate } 9307c478bd9Sstevel@tonic-gate 9317c478bd9Sstevel@tonic-gate } 9327c478bd9Sstevel@tonic-gate 9337c478bd9Sstevel@tonic-gate if (clifd != -1) { 9347c478bd9Sstevel@tonic-gate (void) shutdown(clifd, SHUT_RDWR); 9357c478bd9Sstevel@tonic-gate (void) close(clifd); 9367c478bd9Sstevel@tonic-gate } 9377c478bd9Sstevel@tonic-gate } 9387c478bd9Sstevel@tonic-gate 9397c478bd9Sstevel@tonic-gate int 9407c478bd9Sstevel@tonic-gate init_console(zlog_t *zlogp) 9417c478bd9Sstevel@tonic-gate { 9427c478bd9Sstevel@tonic-gate if (init_console_dev(zlogp) == -1) { 9437c478bd9Sstevel@tonic-gate zerror(zlogp, B_FALSE, 9447c478bd9Sstevel@tonic-gate "console setup: device initialization failed"); 9457c478bd9Sstevel@tonic-gate return (-1); 9467c478bd9Sstevel@tonic-gate } 9477c478bd9Sstevel@tonic-gate 9487c478bd9Sstevel@tonic-gate if ((serverfd = init_console_sock(zlogp)) == -1) { 9497c478bd9Sstevel@tonic-gate zerror(zlogp, B_FALSE, 9507c478bd9Sstevel@tonic-gate "console setup: socket initialization failed"); 9517c478bd9Sstevel@tonic-gate return (-1); 9527c478bd9Sstevel@tonic-gate } 9537c478bd9Sstevel@tonic-gate return (0); 9547c478bd9Sstevel@tonic-gate } 9557c478bd9Sstevel@tonic-gate 9567c478bd9Sstevel@tonic-gate /* 9577c478bd9Sstevel@tonic-gate * serve_console() is the master loop for driving console I/O. It is also the 9587c478bd9Sstevel@tonic-gate * routine which is ultimately responsible for "pulling the plug" on zoneadmd 9597c478bd9Sstevel@tonic-gate * when it realizes that the daemon should shut down. 9607c478bd9Sstevel@tonic-gate * 9617c478bd9Sstevel@tonic-gate * The rules for shutdown are: there must be no console client, and the zone 9627c478bd9Sstevel@tonic-gate * state must be < ready. However, we need to give things a chance to actually 9637c478bd9Sstevel@tonic-gate * get going when the daemon starts up-- otherwise the daemon would immediately 9647c478bd9Sstevel@tonic-gate * exit on startup if the zone was in the installed state, so we first drop 9657c478bd9Sstevel@tonic-gate * into the do_console_io() loop in order to give *something* a chance to 9667c478bd9Sstevel@tonic-gate * happen. 9677c478bd9Sstevel@tonic-gate */ 9687c478bd9Sstevel@tonic-gate void 9697c478bd9Sstevel@tonic-gate serve_console(zlog_t *zlogp) 9707c478bd9Sstevel@tonic-gate { 9717c478bd9Sstevel@tonic-gate int masterfd; 9727c478bd9Sstevel@tonic-gate zone_state_t zstate; 9737c478bd9Sstevel@tonic-gate char conspath[MAXPATHLEN]; 9747c478bd9Sstevel@tonic-gate 9757c478bd9Sstevel@tonic-gate (void) snprintf(conspath, sizeof (conspath), 9767c478bd9Sstevel@tonic-gate "/dev/zcons/%s/%s", zone_name, ZCONS_MASTER_NAME); 9777c478bd9Sstevel@tonic-gate 9787c478bd9Sstevel@tonic-gate for (;;) { 9797c478bd9Sstevel@tonic-gate masterfd = open(conspath, O_RDWR|O_NONBLOCK|O_NOCTTY); 9807c478bd9Sstevel@tonic-gate if (masterfd == -1) { 9817c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to open console master"); 9827c478bd9Sstevel@tonic-gate (void) mutex_lock(&lock); 9837c478bd9Sstevel@tonic-gate goto death; 9847c478bd9Sstevel@tonic-gate } 9857c478bd9Sstevel@tonic-gate 9867c478bd9Sstevel@tonic-gate /* 9877c478bd9Sstevel@tonic-gate * Setting RPROTDIS on the stream means that the control 9887c478bd9Sstevel@tonic-gate * portion of messages received (which we don't care about) 9897c478bd9Sstevel@tonic-gate * will be discarded by the stream head. If we allowed such 9907c478bd9Sstevel@tonic-gate * messages, we wouldn't be able to use read(2), as it fails 9917c478bd9Sstevel@tonic-gate * (EBADMSG) when a message with a control element is received. 9927c478bd9Sstevel@tonic-gate */ 9937c478bd9Sstevel@tonic-gate if (ioctl(masterfd, I_SRDOPT, RNORM|RPROTDIS) == -1) { 9947c478bd9Sstevel@tonic-gate zerror(zlogp, B_TRUE, "failed to set options on " 9957c478bd9Sstevel@tonic-gate "console master"); 9967c478bd9Sstevel@tonic-gate (void) mutex_lock(&lock); 9977c478bd9Sstevel@tonic-gate goto death; 9987c478bd9Sstevel@tonic-gate } 9997c478bd9Sstevel@tonic-gate 10007c478bd9Sstevel@tonic-gate do_console_io(zlogp, masterfd, serverfd); 10017c478bd9Sstevel@tonic-gate 10027c478bd9Sstevel@tonic-gate /* 10037c478bd9Sstevel@tonic-gate * We would prefer not to do this, but hostile zone processes 10047c478bd9Sstevel@tonic-gate * can cause the stream to become tainted, and reads will 10057c478bd9Sstevel@tonic-gate * fail. So, in case something has gone seriously ill, 10067c478bd9Sstevel@tonic-gate * we dismantle the stream and reopen the console when we 10077c478bd9Sstevel@tonic-gate * take another lap. 10087c478bd9Sstevel@tonic-gate */ 10097c478bd9Sstevel@tonic-gate (void) close(masterfd); 10107c478bd9Sstevel@tonic-gate 10117c478bd9Sstevel@tonic-gate (void) mutex_lock(&lock); 10127c478bd9Sstevel@tonic-gate /* 10137c478bd9Sstevel@tonic-gate * We need to set death_throes (see below) atomically with 10147c478bd9Sstevel@tonic-gate * respect to noticing that (a) we have no console client and 10157c478bd9Sstevel@tonic-gate * (b) the zone is not installed. Otherwise we could get a 10167c478bd9Sstevel@tonic-gate * request to boot during this time. Once we set death_throes, 10177c478bd9Sstevel@tonic-gate * any incoming door stuff will be turned away. 10187c478bd9Sstevel@tonic-gate */ 10197c478bd9Sstevel@tonic-gate if (zone_get_state(zone_name, &zstate) == Z_OK) { 10207c478bd9Sstevel@tonic-gate if (zstate < ZONE_STATE_READY) 10217c478bd9Sstevel@tonic-gate goto death; 10227c478bd9Sstevel@tonic-gate } else { 10237c478bd9Sstevel@tonic-gate zerror(zlogp, B_FALSE, 10247c478bd9Sstevel@tonic-gate "unable to determine state of zone"); 10257c478bd9Sstevel@tonic-gate goto death; 10267c478bd9Sstevel@tonic-gate } 10277c478bd9Sstevel@tonic-gate /* 10287c478bd9Sstevel@tonic-gate * Even if zone_get_state() fails, stay conservative, and 10297c478bd9Sstevel@tonic-gate * take another lap. 10307c478bd9Sstevel@tonic-gate */ 10317c478bd9Sstevel@tonic-gate (void) mutex_unlock(&lock); 10327c478bd9Sstevel@tonic-gate } 10337c478bd9Sstevel@tonic-gate 10347c478bd9Sstevel@tonic-gate death: 10357c478bd9Sstevel@tonic-gate assert(MUTEX_HELD(&lock)); 10367c478bd9Sstevel@tonic-gate in_death_throes = B_TRUE; 10377c478bd9Sstevel@tonic-gate (void) mutex_unlock(&lock); 10387c478bd9Sstevel@tonic-gate 10397c478bd9Sstevel@tonic-gate destroy_console_sock(serverfd); 10407c478bd9Sstevel@tonic-gate (void) destroy_console_devs(zlogp); 10417c478bd9Sstevel@tonic-gate } 1042