147c08596SBrooks Davis /* $OpenBSD: dhclient.c,v 1.63 2005/02/06 17:10:13 krw Exp $ */ 247c08596SBrooks Davis 38a16b7a1SPedro F. Giffuni /*- 48a16b7a1SPedro F. Giffuni * SPDX-License-Identifier: BSD-3-Clause 58a16b7a1SPedro F. Giffuni * 647c08596SBrooks Davis * Copyright 2004 Henning Brauer <henning@openbsd.org> 747c08596SBrooks Davis * Copyright (c) 1995, 1996, 1997, 1998, 1999 847c08596SBrooks Davis * The Internet Software Consortium. All rights reserved. 947c08596SBrooks Davis * 1047c08596SBrooks Davis * Redistribution and use in source and binary forms, with or without 1147c08596SBrooks Davis * modification, are permitted provided that the following conditions 1247c08596SBrooks Davis * are met: 1347c08596SBrooks Davis * 1447c08596SBrooks Davis * 1. Redistributions of source code must retain the above copyright 1547c08596SBrooks Davis * notice, this list of conditions and the following disclaimer. 1647c08596SBrooks Davis * 2. Redistributions in binary form must reproduce the above copyright 1747c08596SBrooks Davis * notice, this list of conditions and the following disclaimer in the 1847c08596SBrooks Davis * documentation and/or other materials provided with the distribution. 1947c08596SBrooks Davis * 3. Neither the name of The Internet Software Consortium nor the names 2047c08596SBrooks Davis * of its contributors may be used to endorse or promote products derived 2147c08596SBrooks Davis * from this software without specific prior written permission. 2247c08596SBrooks Davis * 2347c08596SBrooks Davis * THIS SOFTWARE IS PROVIDED BY THE INTERNET SOFTWARE CONSORTIUM AND 2447c08596SBrooks Davis * CONTRIBUTORS ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, 2547c08596SBrooks Davis * INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF 2647c08596SBrooks Davis * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE 2747c08596SBrooks Davis * DISCLAIMED. IN NO EVENT SHALL THE INTERNET SOFTWARE CONSORTIUM OR 2847c08596SBrooks Davis * CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, 2947c08596SBrooks Davis * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT 3047c08596SBrooks Davis * LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF 3147c08596SBrooks Davis * USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND 3247c08596SBrooks Davis * ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, 3347c08596SBrooks Davis * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT 3447c08596SBrooks Davis * OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 3547c08596SBrooks Davis * SUCH DAMAGE. 3647c08596SBrooks Davis * 3747c08596SBrooks Davis * This software has been written for the Internet Software Consortium 3847c08596SBrooks Davis * by Ted Lemon <mellon@fugue.com> in cooperation with Vixie 3947c08596SBrooks Davis * Enterprises. To learn more about the Internet Software Consortium, 4047c08596SBrooks Davis * see ``http://www.vix.com/isc''. To learn more about Vixie 4147c08596SBrooks Davis * Enterprises, see ``http://www.vix.com''. 4247c08596SBrooks Davis * 4347c08596SBrooks Davis * This client was substantially modified and enhanced by Elliot Poger 4447c08596SBrooks Davis * for use on Linux while he was working on the MosquitoNet project at 4547c08596SBrooks Davis * Stanford. 4647c08596SBrooks Davis * 4747c08596SBrooks Davis * The current version owes much to Elliot's Linux enhancements, but 4847c08596SBrooks Davis * was substantially reorganized and partially rewritten by Ted Lemon 4947c08596SBrooks Davis * so as to use the same networking framework that the Internet Software 5047c08596SBrooks Davis * Consortium DHCP server uses. Much system-specific configuration code 5147c08596SBrooks Davis * was moved into a shell script so that as support for more operating 5247c08596SBrooks Davis * systems is added, it will not be necessary to port and maintain 5347c08596SBrooks Davis * system-specific configuration code to these operating systems - instead, 5447c08596SBrooks Davis * the shell script can invoke the native tools to accomplish the same 5547c08596SBrooks Davis * purpose. 5647c08596SBrooks Davis */ 5747c08596SBrooks Davis 588794fdbbSBrooks Davis #include <sys/cdefs.h> 5947c08596SBrooks Davis #include "dhcpd.h" 6047c08596SBrooks Davis #include "privsep.h" 6147c08596SBrooks Davis 62b881b8beSRobert Watson #include <sys/capsicum.h> 63387016a5SConrad Meyer #include <sys/endian.h> 64de2c882fSPawel Jakub Dawidek 657672a014SMariusz Zaborski #include <capsicum_helpers.h> 6671c6c44dSEitan Adler #include <libgen.h> 677672a014SMariusz Zaborski 682b19b6fcSBrooks Davis #include <net80211/ieee80211_freebsd.h> 692b19b6fcSBrooks Davis 7071c6c44dSEitan Adler 712b19b6fcSBrooks Davis #ifndef _PATH_VAREMPTY 722b19b6fcSBrooks Davis #define _PATH_VAREMPTY "/var/empty" 732b19b6fcSBrooks Davis #endif 742b19b6fcSBrooks Davis 7547c08596SBrooks Davis #define PERIOD 0x2e 7647c08596SBrooks Davis #define hyphenchar(c) ((c) == 0x2d) 7747c08596SBrooks Davis #define bslashchar(c) ((c) == 0x5c) 7847c08596SBrooks Davis #define periodchar(c) ((c) == PERIOD) 7947c08596SBrooks Davis #define asterchar(c) ((c) == 0x2a) 8047c08596SBrooks Davis #define alphachar(c) (((c) >= 0x41 && (c) <= 0x5a) || \ 8147c08596SBrooks Davis ((c) >= 0x61 && (c) <= 0x7a)) 8247c08596SBrooks Davis #define digitchar(c) ((c) >= 0x30 && (c) <= 0x39) 83f954ec0bSBrooks Davis #define whitechar(c) ((c) == ' ' || (c) == '\t') 8447c08596SBrooks Davis 8547c08596SBrooks Davis #define borderchar(c) (alphachar(c) || digitchar(c)) 8647c08596SBrooks Davis #define middlechar(c) (borderchar(c) || hyphenchar(c)) 8747c08596SBrooks Davis #define domainchar(c) ((c) > 0x20 && (c) < 0x7f) 8847c08596SBrooks Davis 8947c08596SBrooks Davis #define CLIENT_PATH "PATH=/usr/bin:/usr/sbin:/bin:/sbin" 9047c08596SBrooks Davis 91cb003dd9SMariusz Zaborski cap_channel_t *capsyslog; 92cb003dd9SMariusz Zaborski 9347c08596SBrooks Davis time_t cur_time; 9476e0ffd9SIsaac Cilia Attard struct timespec time_now; 9571c6c44dSEitan Adler static time_t default_lease_time = 43200; /* 12 hours... */ 9647c08596SBrooks Davis 9779a1d195SAlan Somers const char *path_dhclient_conf = _PATH_DHCLIENT_CONF; 9847c08596SBrooks Davis char *path_dhclient_db = NULL; 9947c08596SBrooks Davis 10047c08596SBrooks Davis int log_perror = 1; 10171c6c44dSEitan Adler static int privfd; 10271c6c44dSEitan Adler static int nullfd = -1; 10347c08596SBrooks Davis 10471c6c44dSEitan Adler static char hostname[_POSIX_HOST_NAME_MAX + 1]; 1050bbe8306SPawel Jakub Dawidek 10671c6c44dSEitan Adler static struct iaddr iaddr_broadcast = { 4, { 255, 255, 255, 255 } }; 10771c6c44dSEitan Adler static struct in_addr inaddr_any, inaddr_broadcast; 10847c08596SBrooks Davis 10971c6c44dSEitan Adler static char *path_dhclient_pidfile; 11023f39c90SDag-Erling Smørgrav struct pidfh *pidfile; 11123f39c90SDag-Erling Smørgrav 11247c08596SBrooks Davis /* 11347c08596SBrooks Davis * ASSERT_STATE() does nothing now; it used to be 11447c08596SBrooks Davis * assert (state_is == state_shouldbe). 11547c08596SBrooks Davis */ 11647c08596SBrooks Davis #define ASSERT_STATE(state_is, state_shouldbe) {} 11747c08596SBrooks Davis 118223c44aeSNick Hibma /* 119223c44aeSNick Hibma * We need to check that the expiry, renewal and rebind times are not beyond 120223c44aeSNick Hibma * the end of time (~2038 when a 32-bit time_t is being used). 121223c44aeSNick Hibma */ 122223c44aeSNick Hibma #define TIME_MAX ((((time_t) 1 << (sizeof(time_t) * CHAR_BIT - 2)) - 1) * 2 + 1) 12347c08596SBrooks Davis 124b51569adSIsaac Cilia Attard static struct timespec arp_timeout = { .tv_sec = 0, .tv_nsec = 250 * 1000 * 1000 }; 12576e0ffd9SIsaac Cilia Attard static const struct timespec zero_timespec = { .tv_sec = 0, .tv_nsec = 0 }; 12647c08596SBrooks Davis int log_priority; 12771c6c44dSEitan Adler static int no_daemon; 12871c6c44dSEitan Adler static int unknown_ok = 1; 12971c6c44dSEitan Adler static int routefd; 13047c08596SBrooks Davis 13147c08596SBrooks Davis struct interface_info *ifi; 13247c08596SBrooks Davis 13347c08596SBrooks Davis int findproto(char *, int); 13447c08596SBrooks Davis struct sockaddr *get_ifa(char *, int); 13547c08596SBrooks Davis void routehandler(struct protocol *); 13647c08596SBrooks Davis void usage(void); 13747c08596SBrooks Davis int check_option(struct client_lease *l, int option); 1382fcc7370SEd Maste int check_classless_option(unsigned char *data, int len); 13979a1d195SAlan Somers int ipv4addrs(const char * buf); 14047c08596SBrooks Davis int res_hnok(const char *dn); 141f954ec0bSBrooks Davis int check_search(const char *srch); 14279a1d195SAlan Somers const char *option_as_string(unsigned int code, unsigned char *data, int len); 14347c08596SBrooks Davis int fork_privchld(int, int); 14447c08596SBrooks Davis 14547c08596SBrooks Davis #define ROUNDUP(a) \ 14647c08596SBrooks Davis ((a) > 0 ? (1 + (((a) - 1) | (sizeof(long) - 1))) : sizeof(long)) 14747c08596SBrooks Davis #define ADVANCE(x, n) (x += ROUNDUP((n)->sa_len)) 14847c08596SBrooks Davis 149387016a5SConrad Meyer /* Minimum MTU is 68 as per RFC791, p. 24 */ 150387016a5SConrad Meyer #define MIN_MTU 68 151387016a5SConrad Meyer 1526964abefSBrian Somers static time_t scripttime; 15347c08596SBrooks Davis 15447c08596SBrooks Davis int 15547c08596SBrooks Davis findproto(char *cp, int n) 15647c08596SBrooks Davis { 15747c08596SBrooks Davis struct sockaddr *sa; 1585f28c51dSAlan Somers unsigned i; 15947c08596SBrooks Davis 16047c08596SBrooks Davis if (n == 0) 16147c08596SBrooks Davis return -1; 16247c08596SBrooks Davis for (i = 1; i; i <<= 1) { 16347c08596SBrooks Davis if (i & n) { 16447c08596SBrooks Davis sa = (struct sockaddr *)cp; 16547c08596SBrooks Davis switch (i) { 16647c08596SBrooks Davis case RTA_IFA: 16747c08596SBrooks Davis case RTA_DST: 16847c08596SBrooks Davis case RTA_GATEWAY: 16947c08596SBrooks Davis case RTA_NETMASK: 17047c08596SBrooks Davis if (sa->sa_family == AF_INET) 17147c08596SBrooks Davis return AF_INET; 17247c08596SBrooks Davis if (sa->sa_family == AF_INET6) 17347c08596SBrooks Davis return AF_INET6; 17447c08596SBrooks Davis break; 17547c08596SBrooks Davis case RTA_IFP: 17647c08596SBrooks Davis break; 17747c08596SBrooks Davis } 17847c08596SBrooks Davis ADVANCE(cp, sa); 17947c08596SBrooks Davis } 18047c08596SBrooks Davis } 18147c08596SBrooks Davis return (-1); 18247c08596SBrooks Davis } 18347c08596SBrooks Davis 18447c08596SBrooks Davis struct sockaddr * 18547c08596SBrooks Davis get_ifa(char *cp, int n) 18647c08596SBrooks Davis { 18747c08596SBrooks Davis struct sockaddr *sa; 1885f28c51dSAlan Somers unsigned i; 18947c08596SBrooks Davis 19047c08596SBrooks Davis if (n == 0) 19147c08596SBrooks Davis return (NULL); 19247c08596SBrooks Davis for (i = 1; i; i <<= 1) 19347c08596SBrooks Davis if (i & n) { 19447c08596SBrooks Davis sa = (struct sockaddr *)cp; 19547c08596SBrooks Davis if (i == RTA_IFA) 19647c08596SBrooks Davis return (sa); 19747c08596SBrooks Davis ADVANCE(cp, sa); 19847c08596SBrooks Davis } 19947c08596SBrooks Davis 20047c08596SBrooks Davis return (NULL); 20147c08596SBrooks Davis } 20261063e47SSam Leffler 20371c6c44dSEitan Adler static struct iaddr defaddr = { .len = 4 }; 20471c6c44dSEitan Adler static uint8_t curbssid[6]; 20561063e47SSam Leffler 20661063e47SSam Leffler static void 20761063e47SSam Leffler disassoc(void *arg) 20861063e47SSam Leffler { 20979a1d195SAlan Somers struct interface_info *_ifi = arg; 21061063e47SSam Leffler 21161063e47SSam Leffler /* 21261063e47SSam Leffler * Clear existing state. 21361063e47SSam Leffler */ 21479a1d195SAlan Somers if (_ifi->client->active != NULL) { 21561063e47SSam Leffler script_init("EXPIRE", NULL); 21661063e47SSam Leffler script_write_params("old_", 21779a1d195SAlan Somers _ifi->client->active); 21879a1d195SAlan Somers if (_ifi->client->alias) 21961063e47SSam Leffler script_write_params("alias_", 22079a1d195SAlan Somers _ifi->client->alias); 22161063e47SSam Leffler script_go(); 22261063e47SSam Leffler } 22379a1d195SAlan Somers _ifi->client->state = S_INIT; 22461063e47SSam Leffler } 22547c08596SBrooks Davis 22647c08596SBrooks Davis void 22779a1d195SAlan Somers routehandler(struct protocol *p __unused) 22847c08596SBrooks Davis { 2296964abefSBrian Somers char msg[2048], *addr; 23047c08596SBrooks Davis struct rt_msghdr *rtm; 23147c08596SBrooks Davis struct if_msghdr *ifm; 23247c08596SBrooks Davis struct ifa_msghdr *ifam; 23347c08596SBrooks Davis struct if_announcemsghdr *ifan; 23461063e47SSam Leffler struct ieee80211_join_event *jev; 23547c08596SBrooks Davis struct client_lease *l; 23647c08596SBrooks Davis time_t t = time(NULL); 23779a1d195SAlan Somers struct sockaddr_in *sa; 23847c08596SBrooks Davis struct iaddr a; 23947c08596SBrooks Davis ssize_t n; 2400a26f858SJohn Baldwin int linkstat; 24147c08596SBrooks Davis 24247c08596SBrooks Davis n = read(routefd, &msg, sizeof(msg)); 24347c08596SBrooks Davis rtm = (struct rt_msghdr *)msg; 244afe6f835SAlan Somers if (n < (ssize_t)sizeof(rtm->rtm_msglen) || 245afe6f835SAlan Somers n < (ssize_t)rtm->rtm_msglen || 24647c08596SBrooks Davis rtm->rtm_version != RTM_VERSION) 24747c08596SBrooks Davis return; 24847c08596SBrooks Davis 24947c08596SBrooks Davis switch (rtm->rtm_type) { 25047c08596SBrooks Davis case RTM_NEWADDR: 251dfad96eaSBrooks Davis case RTM_DELADDR: 25247c08596SBrooks Davis ifam = (struct ifa_msghdr *)rtm; 253dfad96eaSBrooks Davis 25447c08596SBrooks Davis if (ifam->ifam_index != ifi->index) 25547c08596SBrooks Davis break; 25647c08596SBrooks Davis if (findproto((char *)(ifam + 1), ifam->ifam_addrs) != AF_INET) 25747c08596SBrooks Davis break; 258dfad96eaSBrooks Davis if (scripttime == 0 || t < scripttime + 10) 259dfad96eaSBrooks Davis break; 260dfad96eaSBrooks Davis 26179a1d195SAlan Somers sa = (struct sockaddr_in*)get_ifa((char *)(ifam + 1), ifam->ifam_addrs); 26247c08596SBrooks Davis if (sa == NULL) 2636964abefSBrian Somers break; 26447c08596SBrooks Davis 26547c08596SBrooks Davis if ((a.len = sizeof(struct in_addr)) > sizeof(a.iabuf)) 26647c08596SBrooks Davis error("king bula sez: len mismatch"); 26779a1d195SAlan Somers memcpy(a.iabuf, &sa->sin_addr, a.len); 26847c08596SBrooks Davis if (addr_eq(a, defaddr)) 26947c08596SBrooks Davis break; 27047c08596SBrooks Davis 27147c08596SBrooks Davis for (l = ifi->client->active; l != NULL; l = l->next) 27247c08596SBrooks Davis if (addr_eq(a, l->address)) 27347c08596SBrooks Davis break; 27447c08596SBrooks Davis 2756964abefSBrian Somers if (l == NULL) /* added/deleted addr is not the one we set */ 27647c08596SBrooks Davis break; 2776964abefSBrian Somers 27879a1d195SAlan Somers addr = inet_ntoa(sa->sin_addr); 2796964abefSBrian Somers if (rtm->rtm_type == RTM_NEWADDR) { 2806964abefSBrian Somers /* 2816964abefSBrian Somers * XXX: If someone other than us adds our address, 2826964abefSBrian Somers * should we assume they are taking over from us, 2836964abefSBrian Somers * delete the lease record, and exit without modifying 2846964abefSBrian Somers * the interface? 2856964abefSBrian Somers */ 2866964abefSBrian Somers warning("My address (%s) was re-added", addr); 2876964abefSBrian Somers } else { 2886964abefSBrian Somers warning("My address (%s) was deleted, dhclient exiting", 2896964abefSBrian Somers addr); 29047c08596SBrooks Davis goto die; 2916964abefSBrian Somers } 2926964abefSBrian Somers break; 29347c08596SBrooks Davis case RTM_IFINFO: 29447c08596SBrooks Davis ifm = (struct if_msghdr *)rtm; 29547c08596SBrooks Davis if (ifm->ifm_index != ifi->index) 29647c08596SBrooks Davis break; 2976964abefSBrian Somers if ((rtm->rtm_flags & RTF_UP) == 0) { 2986964abefSBrian Somers warning("Interface %s is down, dhclient exiting", 2996964abefSBrian Somers ifi->name); 30047c08596SBrooks Davis goto die; 3016964abefSBrian Somers } 3020a26f858SJohn Baldwin linkstat = interface_link_status(ifi->name); 3030a26f858SJohn Baldwin if (linkstat != ifi->linkstat) { 3040a26f858SJohn Baldwin debug("%s link state %s -> %s", ifi->name, 3050a26f858SJohn Baldwin ifi->linkstat ? "up" : "down", 3060a26f858SJohn Baldwin linkstat ? "up" : "down"); 3070a26f858SJohn Baldwin ifi->linkstat = linkstat; 3080a26f858SJohn Baldwin if (linkstat) 3090a26f858SJohn Baldwin state_reboot(ifi); 31083f745b8SJohn Baldwin } 31147c08596SBrooks Davis break; 31247c08596SBrooks Davis case RTM_IFANNOUNCE: 31347c08596SBrooks Davis ifan = (struct if_announcemsghdr *)rtm; 31447c08596SBrooks Davis if (ifan->ifan_what == IFAN_DEPARTURE && 3156964abefSBrian Somers ifan->ifan_index == ifi->index) { 3166964abefSBrian Somers warning("Interface %s is gone, dhclient exiting", 3176964abefSBrian Somers ifi->name); 31847c08596SBrooks Davis goto die; 3196964abefSBrian Somers } 32047c08596SBrooks Davis break; 3212b19b6fcSBrooks Davis case RTM_IEEE80211: 3222b19b6fcSBrooks Davis ifan = (struct if_announcemsghdr *)rtm; 3232b19b6fcSBrooks Davis if (ifan->ifan_index != ifi->index) 3242b19b6fcSBrooks Davis break; 3252b19b6fcSBrooks Davis switch (ifan->ifan_what) { 3262b19b6fcSBrooks Davis case RTM_IEEE80211_ASSOC: 327b35f2511SSam Leffler case RTM_IEEE80211_REASSOC: 3282b19b6fcSBrooks Davis /* 32961063e47SSam Leffler * Use assoc/reassoc event to kick state machine 33061063e47SSam Leffler * in case we roam. Otherwise fall back to the 33161063e47SSam Leffler * normal state machine just like a wired network. 3322b19b6fcSBrooks Davis */ 33361063e47SSam Leffler jev = (struct ieee80211_join_event *) &ifan[1]; 33461063e47SSam Leffler if (memcmp(curbssid, jev->iev_addr, 6)) { 33561063e47SSam Leffler disassoc(ifi); 33661063e47SSam Leffler state_reboot(ifi); 33759eac186SBrooks Davis } 33861063e47SSam Leffler memcpy(curbssid, jev->iev_addr, 6); 3392b19b6fcSBrooks Davis break; 3402b19b6fcSBrooks Davis } 3412b19b6fcSBrooks Davis break; 34247c08596SBrooks Davis default: 34347c08596SBrooks Davis break; 34447c08596SBrooks Davis } 34547c08596SBrooks Davis return; 34647c08596SBrooks Davis 34747c08596SBrooks Davis die: 34847c08596SBrooks Davis script_init("FAIL", NULL); 34947c08596SBrooks Davis if (ifi->client->alias) 35047c08596SBrooks Davis script_write_params("alias_", ifi->client->alias); 35147c08596SBrooks Davis script_go(); 35223f39c90SDag-Erling Smørgrav if (pidfile != NULL) 35323f39c90SDag-Erling Smørgrav pidfile_remove(pidfile); 35447c08596SBrooks Davis exit(1); 35547c08596SBrooks Davis } 35647c08596SBrooks Davis 357cb003dd9SMariusz Zaborski static void 358cb003dd9SMariusz Zaborski init_casper(void) 359cb003dd9SMariusz Zaborski { 360cb003dd9SMariusz Zaborski cap_channel_t *casper; 361cb003dd9SMariusz Zaborski 362cb003dd9SMariusz Zaborski casper = cap_init(); 363cb003dd9SMariusz Zaborski if (casper == NULL) 364cb003dd9SMariusz Zaborski error("unable to start casper"); 365cb003dd9SMariusz Zaborski 366cb003dd9SMariusz Zaborski capsyslog = cap_service_open(casper, "system.syslog"); 367cb003dd9SMariusz Zaborski cap_close(casper); 368cb003dd9SMariusz Zaborski if (capsyslog == NULL) 369cb003dd9SMariusz Zaborski error("unable to open system.syslog service"); 370cb003dd9SMariusz Zaborski } 371cb003dd9SMariusz Zaborski 37247c08596SBrooks Davis int 37347c08596SBrooks Davis main(int argc, char *argv[]) 37447c08596SBrooks Davis { 375976e1003SMark Johnston u_int capmode; 37647c08596SBrooks Davis int ch, fd, quiet = 0, i = 0; 37747c08596SBrooks Davis int pipe_fd[2]; 3782b19b6fcSBrooks Davis int immediate_daemon = 0; 37947c08596SBrooks Davis struct passwd *pw; 38023f39c90SDag-Erling Smørgrav pid_t otherpid; 3817008be5bSPawel Jakub Dawidek cap_rights_t rights; 38247c08596SBrooks Davis 383cb003dd9SMariusz Zaborski init_casper(); 384cb003dd9SMariusz Zaborski 38547c08596SBrooks Davis /* Initially, log errors to stderr as well as to syslogd. */ 386b537db69SEitan Adler cap_openlog(capsyslog, getprogname(), LOG_PID | LOG_NDELAY, DHCPD_LOG_FACILITY); 387cb003dd9SMariusz Zaborski cap_setlogmask(capsyslog, LOG_UPTO(LOG_DEBUG)); 38847c08596SBrooks Davis 389b51569adSIsaac Cilia Attard while ((ch = getopt(argc, argv, "bc:dl:np:qu")) != -1) 39047c08596SBrooks Davis switch (ch) { 3912b19b6fcSBrooks Davis case 'b': 3922b19b6fcSBrooks Davis immediate_daemon = 1; 3932b19b6fcSBrooks Davis break; 39447c08596SBrooks Davis case 'c': 39547c08596SBrooks Davis path_dhclient_conf = optarg; 39647c08596SBrooks Davis break; 39747c08596SBrooks Davis case 'd': 39847c08596SBrooks Davis no_daemon = 1; 39947c08596SBrooks Davis break; 40047c08596SBrooks Davis case 'l': 40147c08596SBrooks Davis path_dhclient_db = optarg; 40247c08596SBrooks Davis break; 403b51569adSIsaac Cilia Attard case 'n': 404b51569adSIsaac Cilia Attard arp_timeout = zero_timespec; 405b51569adSIsaac Cilia Attard break; 40623f39c90SDag-Erling Smørgrav case 'p': 40723f39c90SDag-Erling Smørgrav path_dhclient_pidfile = optarg; 40823f39c90SDag-Erling Smørgrav break; 40947c08596SBrooks Davis case 'q': 41047c08596SBrooks Davis quiet = 1; 41147c08596SBrooks Davis break; 41247c08596SBrooks Davis case 'u': 41347c08596SBrooks Davis unknown_ok = 0; 41447c08596SBrooks Davis break; 41547c08596SBrooks Davis default: 41647c08596SBrooks Davis usage(); 41747c08596SBrooks Davis } 41847c08596SBrooks Davis 41947c08596SBrooks Davis argc -= optind; 42047c08596SBrooks Davis argv += optind; 42147c08596SBrooks Davis 42247c08596SBrooks Davis if (argc != 1) 42347c08596SBrooks Davis usage(); 42447c08596SBrooks Davis 42523f39c90SDag-Erling Smørgrav if (path_dhclient_pidfile == NULL) { 42623f39c90SDag-Erling Smørgrav asprintf(&path_dhclient_pidfile, 427976e1003SMark Johnston "%s/dhclient/dhclient.%s.pid", _PATH_VARRUN, *argv); 42823f39c90SDag-Erling Smørgrav if (path_dhclient_pidfile == NULL) 42923f39c90SDag-Erling Smørgrav error("asprintf"); 43023f39c90SDag-Erling Smørgrav } 43107561ab4SEitan Adler pidfile = pidfile_open(path_dhclient_pidfile, 0644, &otherpid); 43223f39c90SDag-Erling Smørgrav if (pidfile == NULL) { 43323f39c90SDag-Erling Smørgrav if (errno == EEXIST) 43423f39c90SDag-Erling Smørgrav error("dhclient already running, pid: %d.", otherpid); 43523f39c90SDag-Erling Smørgrav if (errno == EAGAIN) 43623f39c90SDag-Erling Smørgrav error("dhclient already running."); 43723f39c90SDag-Erling Smørgrav warning("Cannot open or create pidfile: %m"); 43823f39c90SDag-Erling Smørgrav } 43923f39c90SDag-Erling Smørgrav 44047c08596SBrooks Davis if ((ifi = calloc(1, sizeof(struct interface_info))) == NULL) 44147c08596SBrooks Davis error("calloc"); 44247c08596SBrooks Davis if (strlcpy(ifi->name, argv[0], IFNAMSIZ) >= IFNAMSIZ) 44347c08596SBrooks Davis error("Interface name too long"); 44447c08596SBrooks Davis if (path_dhclient_db == NULL && asprintf(&path_dhclient_db, "%s.%s", 44547c08596SBrooks Davis _PATH_DHCLIENT_DB, ifi->name) == -1) 44647c08596SBrooks Davis error("asprintf"); 44747c08596SBrooks Davis 44847c08596SBrooks Davis if (quiet) 44947c08596SBrooks Davis log_perror = 0; 45047c08596SBrooks Davis 45147c08596SBrooks Davis tzset(); 452f0a38976SIsaac Cilia Attard clock_gettime(CLOCK_MONOTONIC, &time_now); 453f0a38976SIsaac Cilia Attard cur_time = time_now.tv_sec; 45447c08596SBrooks Davis 455ba019ae5SPawel Jakub Dawidek inaddr_broadcast.s_addr = INADDR_BROADCAST; 45647c08596SBrooks Davis inaddr_any.s_addr = INADDR_ANY; 45747c08596SBrooks Davis 45847c08596SBrooks Davis read_client_conf(); 45947c08596SBrooks Davis 46023f39c90SDag-Erling Smørgrav /* The next bit is potentially very time-consuming, so write out 46123f39c90SDag-Erling Smørgrav the pidfile right away. We will write it out again with the 46223f39c90SDag-Erling Smørgrav correct pid after daemonizing. */ 46323f39c90SDag-Erling Smørgrav if (pidfile != NULL) 46423f39c90SDag-Erling Smørgrav pidfile_write(pidfile); 46523f39c90SDag-Erling Smørgrav 46647c08596SBrooks Davis if (!interface_link_status(ifi->name)) { 46747c08596SBrooks Davis fprintf(stderr, "%s: no link ...", ifi->name); 46847c08596SBrooks Davis fflush(stderr); 46947c08596SBrooks Davis sleep(1); 47047c08596SBrooks Davis while (!interface_link_status(ifi->name)) { 47147c08596SBrooks Davis fprintf(stderr, "."); 47247c08596SBrooks Davis fflush(stderr); 47347c08596SBrooks Davis if (++i > 10) { 47447c08596SBrooks Davis fprintf(stderr, " giving up\n"); 47547c08596SBrooks Davis exit(1); 47647c08596SBrooks Davis } 47747c08596SBrooks Davis sleep(1); 47847c08596SBrooks Davis } 47947c08596SBrooks Davis fprintf(stderr, " got link\n"); 48047c08596SBrooks Davis } 4810a26f858SJohn Baldwin ifi->linkstat = 1; 48247c08596SBrooks Davis 48347c08596SBrooks Davis if ((nullfd = open(_PATH_DEVNULL, O_RDWR, 0)) == -1) 48447c08596SBrooks Davis error("cannot open %s: %m", _PATH_DEVNULL); 48547c08596SBrooks Davis 48647c08596SBrooks Davis if ((pw = getpwnam("_dhcp")) == NULL) { 48747c08596SBrooks Davis warning("no such user: _dhcp, falling back to \"nobody\""); 48847c08596SBrooks Davis if ((pw = getpwnam("nobody")) == NULL) 48947c08596SBrooks Davis error("no such user: nobody"); 49047c08596SBrooks Davis } 49147c08596SBrooks Davis 4920bbe8306SPawel Jakub Dawidek /* 4930bbe8306SPawel Jakub Dawidek * Obtain hostname before entering capability mode - it won't be 4940bbe8306SPawel Jakub Dawidek * possible then, as reading kern.hostname is not permitted. 4950bbe8306SPawel Jakub Dawidek */ 4960bbe8306SPawel Jakub Dawidek if (gethostname(hostname, sizeof(hostname)) < 0) 4970bbe8306SPawel Jakub Dawidek hostname[0] = '\0'; 4980bbe8306SPawel Jakub Dawidek 499374a8a32SPawel Jakub Dawidek priv_script_init("PREINIT", NULL); 500374a8a32SPawel Jakub Dawidek if (ifi->client->alias) 501374a8a32SPawel Jakub Dawidek priv_script_write_params("alias_", ifi->client->alias); 502374a8a32SPawel Jakub Dawidek priv_script_go(); 503374a8a32SPawel Jakub Dawidek 504235eb530SPawel Jakub Dawidek /* set up the interface */ 505235eb530SPawel Jakub Dawidek discover_interfaces(ifi); 506235eb530SPawel Jakub Dawidek 50747c08596SBrooks Davis if (pipe(pipe_fd) == -1) 50847c08596SBrooks Davis error("pipe"); 50947c08596SBrooks Davis 51047c08596SBrooks Davis fork_privchld(pipe_fd[0], pipe_fd[1]); 51147c08596SBrooks Davis 512235eb530SPawel Jakub Dawidek close(ifi->ufdesc); 513235eb530SPawel Jakub Dawidek ifi->ufdesc = -1; 514235eb530SPawel Jakub Dawidek close(ifi->wfdesc); 515235eb530SPawel Jakub Dawidek ifi->wfdesc = -1; 516235eb530SPawel Jakub Dawidek 51747c08596SBrooks Davis close(pipe_fd[0]); 51847c08596SBrooks Davis privfd = pipe_fd[1]; 5197008be5bSPawel Jakub Dawidek cap_rights_init(&rights, CAP_READ, CAP_WRITE); 520377421dfSMariusz Zaborski if (caph_rights_limit(privfd, &rights) < 0) 521de2c882fSPawel Jakub Dawidek error("can't limit private descriptor: %m"); 52247c08596SBrooks Davis 52347c08596SBrooks Davis if ((fd = open(path_dhclient_db, O_RDONLY|O_EXLOCK|O_CREAT, 0)) == -1) 52447c08596SBrooks Davis error("can't open and lock %s: %m", path_dhclient_db); 52547c08596SBrooks Davis read_client_leases(); 52647c08596SBrooks Davis rewrite_client_leases(); 52747c08596SBrooks Davis close(fd); 52847c08596SBrooks Davis 52947c08596SBrooks Davis if ((routefd = socket(PF_ROUTE, SOCK_RAW, 0)) != -1) 53047c08596SBrooks Davis add_protocol("AF_ROUTE", routefd, routehandler, ifi); 531e374cef5SPawel Jakub Dawidek if (shutdown(routefd, SHUT_WR) < 0) 532e374cef5SPawel Jakub Dawidek error("can't shutdown route socket: %m"); 533bb7a82acSChristian Brueffer cap_rights_init(&rights, CAP_EVENT, CAP_READ); 534377421dfSMariusz Zaborski if (caph_rights_limit(routefd, &rights) < 0) 535f73ac8b9SPawel Jakub Dawidek error("can't limit route socket: %m"); 53647c08596SBrooks Davis 53747c08596SBrooks Davis endpwent(); 53847c08596SBrooks Davis 53947c08596SBrooks Davis setproctitle("%s", ifi->name); 54047c08596SBrooks Davis 54117cfcf1dSMark Johnston /* setgroups(2) is not permitted in capability mode. */ 54217cfcf1dSMark Johnston if (setgroups(1, &pw->pw_gid) != 0) 54317cfcf1dSMark Johnston error("can't restrict groups: %m"); 54417cfcf1dSMark Johnston 5457672a014SMariusz Zaborski if (caph_enter_casper() < 0) 5468da93e68SPawel Jakub Dawidek error("can't enter capability mode: %m"); 5478da93e68SPawel Jakub Dawidek 548976e1003SMark Johnston /* 54917cfcf1dSMark Johnston * If we are not in capability mode (i.e., Capsicum or libcasper is 55017cfcf1dSMark Johnston * disabled), try to restrict filesystem access. This will fail if 55117cfcf1dSMark Johnston * kern.chroot_allow_open_directories is 0 or the process is jailed. 552976e1003SMark Johnston */ 553976e1003SMark Johnston if (cap_getmode(&capmode) < 0 || capmode == 0) { 554976e1003SMark Johnston if (chroot(_PATH_VAREMPTY) == -1) 555976e1003SMark Johnston error("chroot"); 556976e1003SMark Johnston if (chdir("/") == -1) 557976e1003SMark Johnston error("chdir(\"/\")"); 558976e1003SMark Johnston } 559976e1003SMark Johnston 56017cfcf1dSMark Johnston if (setegid(pw->pw_gid) || setgid(pw->pw_gid) || 56117cfcf1dSMark Johnston seteuid(pw->pw_uid) || setuid(pw->pw_uid)) 56217cfcf1dSMark Johnston error("can't drop privileges: %m"); 56317cfcf1dSMark Johnston 5642b19b6fcSBrooks Davis if (immediate_daemon) 5652b19b6fcSBrooks Davis go_daemon(); 5662b19b6fcSBrooks Davis 56747c08596SBrooks Davis ifi->client->state = S_INIT; 56847c08596SBrooks Davis state_reboot(ifi); 56947c08596SBrooks Davis 57047c08596SBrooks Davis bootp_packet_handler = do_packet; 57147c08596SBrooks Davis 57247c08596SBrooks Davis dispatch(); 57347c08596SBrooks Davis 57447c08596SBrooks Davis /* not reached */ 57547c08596SBrooks Davis return (0); 57647c08596SBrooks Davis } 57747c08596SBrooks Davis 57847c08596SBrooks Davis void 57947c08596SBrooks Davis usage(void) 58047c08596SBrooks Davis { 58147c08596SBrooks Davis 582b51569adSIsaac Cilia Attard fprintf(stderr, "usage: %s [-bdnqu] ", getprogname()); 58347c08596SBrooks Davis fprintf(stderr, "[-c conffile] [-l leasefile] interface\n"); 58447c08596SBrooks Davis exit(1); 58547c08596SBrooks Davis } 58647c08596SBrooks Davis 58747c08596SBrooks Davis /* 58847c08596SBrooks Davis * Individual States: 58947c08596SBrooks Davis * 59047c08596SBrooks Davis * Each routine is called from the dhclient_state_machine() in one of 59147c08596SBrooks Davis * these conditions: 59247c08596SBrooks Davis * -> entering INIT state 59347c08596SBrooks Davis * -> recvpacket_flag == 0: timeout in this state 59447c08596SBrooks Davis * -> otherwise: received a packet in this state 59547c08596SBrooks Davis * 59647c08596SBrooks Davis * Return conditions as handled by dhclient_state_machine(): 59747c08596SBrooks Davis * Returns 1, sendpacket_flag = 1: send packet, reset timer. 59847c08596SBrooks Davis * Returns 1, sendpacket_flag = 0: just reset the timer (wait for a milestone). 59947c08596SBrooks Davis * Returns 0: finish the nap which was interrupted for no good reason. 60047c08596SBrooks Davis * 60147c08596SBrooks Davis * Several per-interface variables are used to keep track of the process: 60247c08596SBrooks Davis * active_lease: the lease that is being used on the interface 60347c08596SBrooks Davis * (null pointer if not configured yet). 60447c08596SBrooks Davis * offered_leases: leases corresponding to DHCPOFFER messages that have 60547c08596SBrooks Davis * been sent to us by DHCP servers. 60647c08596SBrooks Davis * acked_leases: leases corresponding to DHCPACK messages that have been 60747c08596SBrooks Davis * sent to us by DHCP servers. 60847c08596SBrooks Davis * sendpacket: DHCP packet we're trying to send. 60947c08596SBrooks Davis * destination: IP address to send sendpacket to 61047c08596SBrooks Davis * In addition, there are several relevant per-lease variables. 61147c08596SBrooks Davis * T1_expiry, T2_expiry, lease_expiry: lease milestones 61247c08596SBrooks Davis * In the active lease, these control the process of renewing the lease; 61347c08596SBrooks Davis * In leases on the acked_leases list, this simply determines when we 61447c08596SBrooks Davis * can no longer legitimately use the lease. 61547c08596SBrooks Davis */ 61647c08596SBrooks Davis 61747c08596SBrooks Davis void 61847c08596SBrooks Davis state_reboot(void *ipp) 61947c08596SBrooks Davis { 62047c08596SBrooks Davis struct interface_info *ip = ipp; 62147c08596SBrooks Davis 62247c08596SBrooks Davis /* If we don't remember an active lease, go straight to INIT. */ 62347c08596SBrooks Davis if (!ip->client->active || ip->client->active->is_bootp) { 62447c08596SBrooks Davis state_init(ip); 62547c08596SBrooks Davis return; 62647c08596SBrooks Davis } 62747c08596SBrooks Davis 62847c08596SBrooks Davis /* We are in the rebooting state. */ 62947c08596SBrooks Davis ip->client->state = S_REBOOTING; 63047c08596SBrooks Davis 63147c08596SBrooks Davis /* make_request doesn't initialize xid because it normally comes 63247c08596SBrooks Davis from the DHCPDISCOVER, but we haven't sent a DHCPDISCOVER, 63347c08596SBrooks Davis so pick an xid now. */ 63447c08596SBrooks Davis ip->client->xid = arc4random(); 63547c08596SBrooks Davis 63647c08596SBrooks Davis /* Make a DHCPREQUEST packet, and set appropriate per-interface 63747c08596SBrooks Davis flags. */ 63847c08596SBrooks Davis make_request(ip, ip->client->active); 63947c08596SBrooks Davis ip->client->destination = iaddr_broadcast; 64047c08596SBrooks Davis ip->client->first_sending = cur_time; 64147c08596SBrooks Davis ip->client->interval = ip->client->config->initial_interval; 64247c08596SBrooks Davis 64347c08596SBrooks Davis /* Zap the medium list... */ 64447c08596SBrooks Davis ip->client->medium = NULL; 64547c08596SBrooks Davis 64647c08596SBrooks Davis /* Send out the first DHCPREQUEST packet. */ 64747c08596SBrooks Davis send_request(ip); 64847c08596SBrooks Davis } 64947c08596SBrooks Davis 65047c08596SBrooks Davis /* 65147c08596SBrooks Davis * Called when a lease has completely expired and we've 65247c08596SBrooks Davis * been unable to renew it. 65347c08596SBrooks Davis */ 65447c08596SBrooks Davis void 65547c08596SBrooks Davis state_init(void *ipp) 65647c08596SBrooks Davis { 65747c08596SBrooks Davis struct interface_info *ip = ipp; 65847c08596SBrooks Davis 65947c08596SBrooks Davis ASSERT_STATE(state, S_INIT); 66047c08596SBrooks Davis 66147c08596SBrooks Davis /* Make a DHCPDISCOVER packet, and set appropriate per-interface 66247c08596SBrooks Davis flags. */ 66347c08596SBrooks Davis make_discover(ip, ip->client->active); 66447c08596SBrooks Davis ip->client->xid = ip->client->packet.xid; 66547c08596SBrooks Davis ip->client->destination = iaddr_broadcast; 66647c08596SBrooks Davis ip->client->state = S_SELECTING; 66747c08596SBrooks Davis ip->client->first_sending = cur_time; 66847c08596SBrooks Davis ip->client->interval = ip->client->config->initial_interval; 66947c08596SBrooks Davis 67047c08596SBrooks Davis /* Add an immediate timeout to cause the first DHCPDISCOVER packet 67147c08596SBrooks Davis to go out. */ 67247c08596SBrooks Davis send_discover(ip); 67347c08596SBrooks Davis } 67447c08596SBrooks Davis 67547c08596SBrooks Davis /* 67647c08596SBrooks Davis * state_selecting is called when one or more DHCPOFFER packets 67747c08596SBrooks Davis * have been received and a configurable period of time has passed. 67847c08596SBrooks Davis */ 67947c08596SBrooks Davis void 68047c08596SBrooks Davis state_selecting(void *ipp) 68147c08596SBrooks Davis { 68247c08596SBrooks Davis struct interface_info *ip = ipp; 68347c08596SBrooks Davis struct client_lease *lp, *next, *picked; 68447c08596SBrooks Davis 68547c08596SBrooks Davis ASSERT_STATE(state, S_SELECTING); 68647c08596SBrooks Davis 68747c08596SBrooks Davis /* Cancel state_selecting and send_discover timeouts, since either 68847c08596SBrooks Davis one could have got us here. */ 68947c08596SBrooks Davis cancel_timeout(state_selecting, ip); 69047c08596SBrooks Davis cancel_timeout(send_discover, ip); 69147c08596SBrooks Davis 69247c08596SBrooks Davis /* We have received one or more DHCPOFFER packets. Currently, 69347c08596SBrooks Davis the only criterion by which we judge leases is whether or 69447c08596SBrooks Davis not we get a response when we arp for them. */ 69547c08596SBrooks Davis picked = NULL; 69647c08596SBrooks Davis for (lp = ip->client->offered_leases; lp; lp = next) { 69747c08596SBrooks Davis next = lp->next; 69847c08596SBrooks Davis 69947c08596SBrooks Davis /* Check to see if we got an ARPREPLY for the address 70047c08596SBrooks Davis in this particular lease. */ 70147c08596SBrooks Davis if (!picked) { 70247c08596SBrooks Davis script_init("ARPCHECK", lp->medium); 70347c08596SBrooks Davis script_write_params("check_", lp); 70447c08596SBrooks Davis 70547c08596SBrooks Davis /* If the ARPCHECK code detects another 70647c08596SBrooks Davis machine using the offered address, it exits 70747c08596SBrooks Davis nonzero. We need to send a DHCPDECLINE and 70847c08596SBrooks Davis toss the lease. */ 70947c08596SBrooks Davis if (script_go()) { 71047c08596SBrooks Davis make_decline(ip, lp); 71147c08596SBrooks Davis send_decline(ip); 71247c08596SBrooks Davis goto freeit; 71347c08596SBrooks Davis } 71447c08596SBrooks Davis picked = lp; 71547c08596SBrooks Davis picked->next = NULL; 71647c08596SBrooks Davis } else { 71747c08596SBrooks Davis freeit: 71847c08596SBrooks Davis free_client_lease(lp); 71947c08596SBrooks Davis } 72047c08596SBrooks Davis } 72147c08596SBrooks Davis ip->client->offered_leases = NULL; 72247c08596SBrooks Davis 72347c08596SBrooks Davis /* If we just tossed all the leases we were offered, go back 72447c08596SBrooks Davis to square one. */ 72547c08596SBrooks Davis if (!picked) { 72647c08596SBrooks Davis ip->client->state = S_INIT; 72747c08596SBrooks Davis state_init(ip); 72847c08596SBrooks Davis return; 72947c08596SBrooks Davis } 73047c08596SBrooks Davis 73147c08596SBrooks Davis /* If it was a BOOTREPLY, we can just take the address right now. */ 73247c08596SBrooks Davis if (!picked->options[DHO_DHCP_MESSAGE_TYPE].len) { 73347c08596SBrooks Davis ip->client->new = picked; 73447c08596SBrooks Davis 73547c08596SBrooks Davis /* Make up some lease expiry times 73647c08596SBrooks Davis XXX these should be configurable. */ 73747c08596SBrooks Davis ip->client->new->expiry = cur_time + 12000; 73847c08596SBrooks Davis ip->client->new->renewal += cur_time + 8000; 73947c08596SBrooks Davis ip->client->new->rebind += cur_time + 10000; 74047c08596SBrooks Davis 74147c08596SBrooks Davis ip->client->state = S_REQUESTING; 74247c08596SBrooks Davis 74347c08596SBrooks Davis /* Bind to the address we received. */ 74447c08596SBrooks Davis bind_lease(ip); 74547c08596SBrooks Davis return; 74647c08596SBrooks Davis } 74747c08596SBrooks Davis 74847c08596SBrooks Davis /* Go to the REQUESTING state. */ 74947c08596SBrooks Davis ip->client->destination = iaddr_broadcast; 75047c08596SBrooks Davis ip->client->state = S_REQUESTING; 75147c08596SBrooks Davis ip->client->first_sending = cur_time; 75247c08596SBrooks Davis ip->client->interval = ip->client->config->initial_interval; 75347c08596SBrooks Davis 75447c08596SBrooks Davis /* Make a DHCPREQUEST packet from the lease we picked. */ 75547c08596SBrooks Davis make_request(ip, picked); 75647c08596SBrooks Davis ip->client->xid = ip->client->packet.xid; 75747c08596SBrooks Davis 75847c08596SBrooks Davis /* Toss the lease we picked - we'll get it back in a DHCPACK. */ 75947c08596SBrooks Davis free_client_lease(picked); 76047c08596SBrooks Davis 76147c08596SBrooks Davis /* Add an immediate timeout to send the first DHCPREQUEST packet. */ 76247c08596SBrooks Davis send_request(ip); 76347c08596SBrooks Davis } 76447c08596SBrooks Davis 76547c08596SBrooks Davis /* state_requesting is called when we receive a DHCPACK message after 76647c08596SBrooks Davis having sent out one or more DHCPREQUEST packets. */ 76747c08596SBrooks Davis 76847c08596SBrooks Davis void 76947c08596SBrooks Davis dhcpack(struct packet *packet) 77047c08596SBrooks Davis { 77147c08596SBrooks Davis struct interface_info *ip = packet->interface; 77247c08596SBrooks Davis struct client_lease *lease; 77347c08596SBrooks Davis 77447c08596SBrooks Davis /* If we're not receptive to an offer right now, or if the offer 77547c08596SBrooks Davis has an unrecognizable transaction id, then just drop it. */ 77647c08596SBrooks Davis if (packet->interface->client->xid != packet->raw->xid || 77747c08596SBrooks Davis (packet->interface->hw_address.hlen != packet->raw->hlen) || 77847c08596SBrooks Davis (memcmp(packet->interface->hw_address.haddr, 77947c08596SBrooks Davis packet->raw->chaddr, packet->raw->hlen))) 78047c08596SBrooks Davis return; 78147c08596SBrooks Davis 78247c08596SBrooks Davis if (ip->client->state != S_REBOOTING && 78347c08596SBrooks Davis ip->client->state != S_REQUESTING && 78447c08596SBrooks Davis ip->client->state != S_RENEWING && 78547c08596SBrooks Davis ip->client->state != S_REBINDING) 78647c08596SBrooks Davis return; 78747c08596SBrooks Davis 78847c08596SBrooks Davis note("DHCPACK from %s", piaddr(packet->client_addr)); 78947c08596SBrooks Davis 79047c08596SBrooks Davis lease = packet_to_lease(packet); 79147c08596SBrooks Davis if (!lease) { 79247c08596SBrooks Davis note("packet_to_lease failed."); 79347c08596SBrooks Davis return; 79447c08596SBrooks Davis } 79547c08596SBrooks Davis 79647c08596SBrooks Davis ip->client->new = lease; 79747c08596SBrooks Davis 79847c08596SBrooks Davis /* Stop resending DHCPREQUEST. */ 79947c08596SBrooks Davis cancel_timeout(send_request, ip); 80047c08596SBrooks Davis 80147c08596SBrooks Davis /* Figure out the lease time. */ 8021fb4382cSNick Hibma if (ip->client->config->default_actions[DHO_DHCP_LEASE_TIME] == 8031fb4382cSNick Hibma ACTION_SUPERSEDE) 8041fb4382cSNick Hibma ip->client->new->expiry = getULong( 8051fb4382cSNick Hibma ip->client->config->defaults[DHO_DHCP_LEASE_TIME].data); 8063492caf5SHans Petter Selasky else if (ip->client->new->options[DHO_DHCP_LEASE_TIME].len >= 4) 80747c08596SBrooks Davis ip->client->new->expiry = getULong( 80847c08596SBrooks Davis ip->client->new->options[DHO_DHCP_LEASE_TIME].data); 80947c08596SBrooks Davis else 81047c08596SBrooks Davis ip->client->new->expiry = default_lease_time; 81147c08596SBrooks Davis /* A number that looks negative here is really just very large, 812223c44aeSNick Hibma because the lease expiry offset is unsigned. Also make sure that 813223c44aeSNick Hibma the addition of cur_time below does not overflow (a 32 bit) time_t. */ 814223c44aeSNick Hibma if (ip->client->new->expiry < 0 || 815223c44aeSNick Hibma ip->client->new->expiry > TIME_MAX - cur_time) 816223c44aeSNick Hibma ip->client->new->expiry = TIME_MAX - cur_time; 81747c08596SBrooks Davis /* XXX should be fixed by resetting the client state */ 81847c08596SBrooks Davis if (ip->client->new->expiry < 60) 81947c08596SBrooks Davis ip->client->new->expiry = 60; 82047c08596SBrooks Davis 821c13fa60cSNick Hibma /* Unless overridden in the config, take the server-provided renewal 822223c44aeSNick Hibma * time if there is one. Otherwise figure it out according to the spec. 823c13fa60cSNick Hibma * Also make sure the renewal time does not exceed the expiry time. 824c13fa60cSNick Hibma */ 825c13fa60cSNick Hibma if (ip->client->config->default_actions[DHO_DHCP_RENEWAL_TIME] == 826c13fa60cSNick Hibma ACTION_SUPERSEDE) 827c13fa60cSNick Hibma ip->client->new->renewal = getULong( 828c13fa60cSNick Hibma ip->client->config->defaults[DHO_DHCP_RENEWAL_TIME].data); 8293492caf5SHans Petter Selasky else if (ip->client->new->options[DHO_DHCP_RENEWAL_TIME].len >= 4) 83047c08596SBrooks Davis ip->client->new->renewal = getULong( 83147c08596SBrooks Davis ip->client->new->options[DHO_DHCP_RENEWAL_TIME].data); 83247c08596SBrooks Davis else 83347c08596SBrooks Davis ip->client->new->renewal = ip->client->new->expiry / 2; 834223c44aeSNick Hibma if (ip->client->new->renewal < 0 || 835223c44aeSNick Hibma ip->client->new->renewal > ip->client->new->expiry / 2) 836c13fa60cSNick Hibma ip->client->new->renewal = ip->client->new->expiry / 2; 83747c08596SBrooks Davis 83847c08596SBrooks Davis /* Same deal with the rebind time. */ 839c13fa60cSNick Hibma if (ip->client->config->default_actions[DHO_DHCP_REBINDING_TIME] == 840c13fa60cSNick Hibma ACTION_SUPERSEDE) 841c13fa60cSNick Hibma ip->client->new->rebind = getULong( 842c13fa60cSNick Hibma ip->client->config->defaults[DHO_DHCP_REBINDING_TIME].data); 8433492caf5SHans Petter Selasky else if (ip->client->new->options[DHO_DHCP_REBINDING_TIME].len >= 4) 84447c08596SBrooks Davis ip->client->new->rebind = getULong( 84547c08596SBrooks Davis ip->client->new->options[DHO_DHCP_REBINDING_TIME].data); 84647c08596SBrooks Davis else 847223c44aeSNick Hibma ip->client->new->rebind = ip->client->new->renewal / 4 * 7; 848223c44aeSNick Hibma if (ip->client->new->rebind < 0 || 849223c44aeSNick Hibma ip->client->new->rebind > ip->client->new->renewal / 4 * 7) 850223c44aeSNick Hibma ip->client->new->rebind = ip->client->new->renewal / 4 * 7; 85147c08596SBrooks Davis 852223c44aeSNick Hibma /* Convert the time offsets into seconds-since-the-epoch */ 85347c08596SBrooks Davis ip->client->new->expiry += cur_time; 85447c08596SBrooks Davis ip->client->new->renewal += cur_time; 85547c08596SBrooks Davis ip->client->new->rebind += cur_time; 85647c08596SBrooks Davis 85747c08596SBrooks Davis bind_lease(ip); 85847c08596SBrooks Davis } 85947c08596SBrooks Davis 86047c08596SBrooks Davis void 86147c08596SBrooks Davis bind_lease(struct interface_info *ip) 86247c08596SBrooks Davis { 863387016a5SConrad Meyer struct option_data *opt; 864387016a5SConrad Meyer 86547c08596SBrooks Davis /* Remember the medium. */ 86647c08596SBrooks Davis ip->client->new->medium = ip->client->medium; 86747c08596SBrooks Davis 868387016a5SConrad Meyer opt = &ip->client->new->options[DHO_INTERFACE_MTU]; 869387016a5SConrad Meyer if (opt->len == sizeof(u_int16_t)) { 870f93497feSConrad Meyer u_int16_t mtu = 0; 871221e5d2dSMaxim Sobolev u_int16_t old_mtu = 0; 872f93497feSConrad Meyer bool supersede = (ip->client->config->default_actions[DHO_INTERFACE_MTU] == 873f93497feSConrad Meyer ACTION_SUPERSEDE); 874f93497feSConrad Meyer 875f93497feSConrad Meyer if (supersede) 876f93497feSConrad Meyer mtu = getUShort(ip->client->config->defaults[DHO_INTERFACE_MTU].data); 877387016a5SConrad Meyer else 878f93497feSConrad Meyer mtu = be16dec(opt->data); 879f93497feSConrad Meyer 880221e5d2dSMaxim Sobolev if (ip->client->active) { 881221e5d2dSMaxim Sobolev opt = &ip->client->active->options[DHO_INTERFACE_MTU]; 882221e5d2dSMaxim Sobolev if (opt->len == sizeof(u_int16_t)) { 883221e5d2dSMaxim Sobolev old_mtu = be16dec(opt->data); 884221e5d2dSMaxim Sobolev } 885221e5d2dSMaxim Sobolev } 886221e5d2dSMaxim Sobolev 887f93497feSConrad Meyer if (mtu < MIN_MTU) { 888f93497feSConrad Meyer /* Treat 0 like a user intentionally doesn't want to change MTU and, 889f93497feSConrad Meyer * therefore, warning is not needed */ 890f93497feSConrad Meyer if (!supersede || mtu != 0) 891f93497feSConrad Meyer warning("mtu size %u < %d: ignored", (unsigned)mtu, MIN_MTU); 892221e5d2dSMaxim Sobolev } else if (ip->client->state != S_RENEWING || mtu != old_mtu) { 893387016a5SConrad Meyer interface_set_mtu_unpriv(privfd, mtu); 894387016a5SConrad Meyer } 895f93497feSConrad Meyer } 896387016a5SConrad Meyer 89747c08596SBrooks Davis /* Write out the new lease. */ 89847c08596SBrooks Davis write_client_lease(ip, ip->client->new, 0); 89947c08596SBrooks Davis 90047c08596SBrooks Davis /* Run the client script with the new parameters. */ 90147c08596SBrooks Davis script_init((ip->client->state == S_REQUESTING ? "BOUND" : 90247c08596SBrooks Davis (ip->client->state == S_RENEWING ? "RENEW" : 90347c08596SBrooks Davis (ip->client->state == S_REBOOTING ? "REBOOT" : "REBIND"))), 90447c08596SBrooks Davis ip->client->new->medium); 90547c08596SBrooks Davis if (ip->client->active && ip->client->state != S_REBOOTING) 90647c08596SBrooks Davis script_write_params("old_", ip->client->active); 90747c08596SBrooks Davis script_write_params("new_", ip->client->new); 90847c08596SBrooks Davis if (ip->client->alias) 90947c08596SBrooks Davis script_write_params("alias_", ip->client->alias); 91047c08596SBrooks Davis script_go(); 91147c08596SBrooks Davis 91247c08596SBrooks Davis /* Replace the old active lease with the new one. */ 91347c08596SBrooks Davis if (ip->client->active) 91447c08596SBrooks Davis free_client_lease(ip->client->active); 91547c08596SBrooks Davis ip->client->active = ip->client->new; 91647c08596SBrooks Davis ip->client->new = NULL; 91747c08596SBrooks Davis 91847c08596SBrooks Davis /* Set up a timeout to start the renewal process. */ 91947c08596SBrooks Davis add_timeout(ip->client->active->renewal, state_bound, ip); 92047c08596SBrooks Davis 92147c08596SBrooks Davis note("bound to %s -- renewal in %d seconds.", 92247c08596SBrooks Davis piaddr(ip->client->active->address), 9239c13d9cdSBrooks Davis (int)(ip->client->active->renewal - cur_time)); 92447c08596SBrooks Davis ip->client->state = S_BOUND; 92547c08596SBrooks Davis reinitialize_interfaces(); 92647c08596SBrooks Davis go_daemon(); 92747c08596SBrooks Davis } 92847c08596SBrooks Davis 92947c08596SBrooks Davis /* 93047c08596SBrooks Davis * state_bound is called when we've successfully bound to a particular 93147c08596SBrooks Davis * lease, but the renewal time on that lease has expired. We are 93247c08596SBrooks Davis * expected to unicast a DHCPREQUEST to the server that gave us our 93347c08596SBrooks Davis * original lease. 93447c08596SBrooks Davis */ 93547c08596SBrooks Davis void 93647c08596SBrooks Davis state_bound(void *ipp) 93747c08596SBrooks Davis { 93847c08596SBrooks Davis struct interface_info *ip = ipp; 9390a539a0fSFabian Kurtz u_int8_t *dp = NULL; 9400a539a0fSFabian Kurtz int len; 94147c08596SBrooks Davis 94247c08596SBrooks Davis ASSERT_STATE(state, S_BOUND); 94347c08596SBrooks Davis 94447c08596SBrooks Davis /* T1 has expired. */ 94547c08596SBrooks Davis make_request(ip, ip->client->active); 94647c08596SBrooks Davis ip->client->xid = ip->client->packet.xid; 94747c08596SBrooks Davis 9480a539a0fSFabian Kurtz if (ip->client->config->default_actions[DHO_DHCP_SERVER_IDENTIFIER] == 9490a539a0fSFabian Kurtz ACTION_SUPERSEDE) { 9500a539a0fSFabian Kurtz dp = ip->client->config->defaults[DHO_DHCP_SERVER_IDENTIFIER].data; 9510a539a0fSFabian Kurtz len = ip->client->config->defaults[DHO_DHCP_SERVER_IDENTIFIER].len; 9520a539a0fSFabian Kurtz } else { 9530a539a0fSFabian Kurtz dp = ip->client->active->options[DHO_DHCP_SERVER_IDENTIFIER].data; 9540a539a0fSFabian Kurtz len = ip->client->active->options[DHO_DHCP_SERVER_IDENTIFIER].len; 9550a539a0fSFabian Kurtz } 9560a539a0fSFabian Kurtz if (len == 4) { 9570a539a0fSFabian Kurtz memcpy(ip->client->destination.iabuf, dp, len); 9580a539a0fSFabian Kurtz ip->client->destination.len = len; 95947c08596SBrooks Davis } else 96047c08596SBrooks Davis ip->client->destination = iaddr_broadcast; 96147c08596SBrooks Davis 96247c08596SBrooks Davis ip->client->first_sending = cur_time; 96347c08596SBrooks Davis ip->client->interval = ip->client->config->initial_interval; 96447c08596SBrooks Davis ip->client->state = S_RENEWING; 96547c08596SBrooks Davis 96647c08596SBrooks Davis /* Send the first packet immediately. */ 96747c08596SBrooks Davis send_request(ip); 96847c08596SBrooks Davis } 96947c08596SBrooks Davis 97047c08596SBrooks Davis void 97147c08596SBrooks Davis bootp(struct packet *packet) 97247c08596SBrooks Davis { 97347c08596SBrooks Davis struct iaddrlist *ap; 97447c08596SBrooks Davis 97547c08596SBrooks Davis if (packet->raw->op != BOOTREPLY) 97647c08596SBrooks Davis return; 97747c08596SBrooks Davis 97847c08596SBrooks Davis /* If there's a reject list, make sure this packet's sender isn't 97947c08596SBrooks Davis on it. */ 98047c08596SBrooks Davis for (ap = packet->interface->client->config->reject_list; 98147c08596SBrooks Davis ap; ap = ap->next) { 98247c08596SBrooks Davis if (addr_eq(packet->client_addr, ap->addr)) { 98347c08596SBrooks Davis note("BOOTREPLY from %s rejected.", piaddr(ap->addr)); 98447c08596SBrooks Davis return; 98547c08596SBrooks Davis } 98647c08596SBrooks Davis } 98747c08596SBrooks Davis dhcpoffer(packet); 98847c08596SBrooks Davis } 98947c08596SBrooks Davis 99047c08596SBrooks Davis void 99147c08596SBrooks Davis dhcp(struct packet *packet) 99247c08596SBrooks Davis { 99347c08596SBrooks Davis struct iaddrlist *ap; 99447c08596SBrooks Davis void (*handler)(struct packet *); 99579a1d195SAlan Somers const char *type; 99647c08596SBrooks Davis 99747c08596SBrooks Davis switch (packet->packet_type) { 99847c08596SBrooks Davis case DHCPOFFER: 99947c08596SBrooks Davis handler = dhcpoffer; 100047c08596SBrooks Davis type = "DHCPOFFER"; 100147c08596SBrooks Davis break; 100247c08596SBrooks Davis case DHCPNAK: 100347c08596SBrooks Davis handler = dhcpnak; 100447c08596SBrooks Davis type = "DHCPNACK"; 100547c08596SBrooks Davis break; 100647c08596SBrooks Davis case DHCPACK: 100747c08596SBrooks Davis handler = dhcpack; 100847c08596SBrooks Davis type = "DHCPACK"; 100947c08596SBrooks Davis break; 101047c08596SBrooks Davis default: 101147c08596SBrooks Davis return; 101247c08596SBrooks Davis } 101347c08596SBrooks Davis 101447c08596SBrooks Davis /* If there's a reject list, make sure this packet's sender isn't 101547c08596SBrooks Davis on it. */ 101647c08596SBrooks Davis for (ap = packet->interface->client->config->reject_list; 101747c08596SBrooks Davis ap; ap = ap->next) { 101847c08596SBrooks Davis if (addr_eq(packet->client_addr, ap->addr)) { 101947c08596SBrooks Davis note("%s from %s rejected.", type, piaddr(ap->addr)); 102047c08596SBrooks Davis return; 102147c08596SBrooks Davis } 102247c08596SBrooks Davis } 102347c08596SBrooks Davis (*handler)(packet); 102447c08596SBrooks Davis } 102547c08596SBrooks Davis 102647c08596SBrooks Davis void 102747c08596SBrooks Davis dhcpoffer(struct packet *packet) 102847c08596SBrooks Davis { 102947c08596SBrooks Davis struct interface_info *ip = packet->interface; 103047c08596SBrooks Davis struct client_lease *lease, *lp; 103147c08596SBrooks Davis int i; 103276e0ffd9SIsaac Cilia Attard struct timespec arp_timeout_needed; 103376e0ffd9SIsaac Cilia Attard struct timespec stop_selecting = { .tv_sec = 0, .tv_nsec = 0 }; 103476e0ffd9SIsaac Cilia Attard time_now.tv_sec = cur_time; 103576e0ffd9SIsaac Cilia Attard time_now.tv_nsec = 0; 103676e0ffd9SIsaac Cilia Attard 103779a1d195SAlan Somers const char *name = packet->options[DHO_DHCP_MESSAGE_TYPE].len ? 103847c08596SBrooks Davis "DHCPOFFER" : "BOOTREPLY"; 103947c08596SBrooks Davis 104047c08596SBrooks Davis /* If we're not receptive to an offer right now, or if the offer 104147c08596SBrooks Davis has an unrecognizable transaction id, then just drop it. */ 104247c08596SBrooks Davis if (ip->client->state != S_SELECTING || 104347c08596SBrooks Davis packet->interface->client->xid != packet->raw->xid || 104447c08596SBrooks Davis (packet->interface->hw_address.hlen != packet->raw->hlen) || 104547c08596SBrooks Davis (memcmp(packet->interface->hw_address.haddr, 104647c08596SBrooks Davis packet->raw->chaddr, packet->raw->hlen))) 104747c08596SBrooks Davis return; 104847c08596SBrooks Davis 104947c08596SBrooks Davis note("%s from %s", name, piaddr(packet->client_addr)); 105047c08596SBrooks Davis 105147c08596SBrooks Davis /* If this lease doesn't supply the minimum required parameters, 105247c08596SBrooks Davis blow it off. */ 105347c08596SBrooks Davis for (i = 0; ip->client->config->required_options[i]; i++) { 105447c08596SBrooks Davis if (!packet->options[ip->client->config-> 105547c08596SBrooks Davis required_options[i]].len) { 105647c08596SBrooks Davis note("%s isn't satisfactory.", name); 105747c08596SBrooks Davis return; 105847c08596SBrooks Davis } 105947c08596SBrooks Davis } 106047c08596SBrooks Davis 106147c08596SBrooks Davis /* If we've already seen this lease, don't record it again. */ 106247c08596SBrooks Davis for (lease = ip->client->offered_leases; 106347c08596SBrooks Davis lease; lease = lease->next) { 106447c08596SBrooks Davis if (lease->address.len == sizeof(packet->raw->yiaddr) && 106547c08596SBrooks Davis !memcmp(lease->address.iabuf, 106647c08596SBrooks Davis &packet->raw->yiaddr, lease->address.len)) { 106747c08596SBrooks Davis debug("%s already seen.", name); 106847c08596SBrooks Davis return; 106947c08596SBrooks Davis } 107047c08596SBrooks Davis } 107147c08596SBrooks Davis 107247c08596SBrooks Davis lease = packet_to_lease(packet); 107347c08596SBrooks Davis if (!lease) { 107447c08596SBrooks Davis note("packet_to_lease failed."); 107547c08596SBrooks Davis return; 107647c08596SBrooks Davis } 107747c08596SBrooks Davis 107847c08596SBrooks Davis /* If this lease was acquired through a BOOTREPLY, record that 107947c08596SBrooks Davis fact. */ 108047c08596SBrooks Davis if (!packet->options[DHO_DHCP_MESSAGE_TYPE].len) 108147c08596SBrooks Davis lease->is_bootp = 1; 108247c08596SBrooks Davis 108347c08596SBrooks Davis /* Record the medium under which this lease was offered. */ 108447c08596SBrooks Davis lease->medium = ip->client->medium; 108547c08596SBrooks Davis 108647c08596SBrooks Davis /* Send out an ARP Request for the offered IP address. */ 108747c08596SBrooks Davis script_init("ARPSEND", lease->medium); 108847c08596SBrooks Davis script_write_params("check_", lease); 108947c08596SBrooks Davis /* If the script can't send an ARP request without waiting, 109047c08596SBrooks Davis we'll be waiting when we do the ARPCHECK, so don't wait now. */ 109147c08596SBrooks Davis if (script_go()) 109276e0ffd9SIsaac Cilia Attard arp_timeout_needed = zero_timespec; 109376e0ffd9SIsaac Cilia Attard 109447c08596SBrooks Davis else 109576e0ffd9SIsaac Cilia Attard arp_timeout_needed = arp_timeout; 109647c08596SBrooks Davis 109747c08596SBrooks Davis /* Figure out when we're supposed to stop selecting. */ 109876e0ffd9SIsaac Cilia Attard stop_selecting.tv_sec = 109947c08596SBrooks Davis ip->client->first_sending + ip->client->config->select_interval; 110047c08596SBrooks Davis 110147c08596SBrooks Davis /* If this is the lease we asked for, put it at the head of the 110247c08596SBrooks Davis list, and don't mess with the arp request timeout. */ 110347c08596SBrooks Davis if (lease->address.len == ip->client->requested_address.len && 110447c08596SBrooks Davis !memcmp(lease->address.iabuf, 110547c08596SBrooks Davis ip->client->requested_address.iabuf, 110647c08596SBrooks Davis ip->client->requested_address.len)) { 110747c08596SBrooks Davis lease->next = ip->client->offered_leases; 110847c08596SBrooks Davis ip->client->offered_leases = lease; 110947c08596SBrooks Davis } else { 111047c08596SBrooks Davis /* If we already have an offer, and arping for this 111147c08596SBrooks Davis offer would take us past the selection timeout, 111247c08596SBrooks Davis then don't extend the timeout - just hope for the 111347c08596SBrooks Davis best. */ 111476e0ffd9SIsaac Cilia Attard 111576e0ffd9SIsaac Cilia Attard struct timespec interm_struct; 111676e0ffd9SIsaac Cilia Attard timespecadd(&time_now, &arp_timeout_needed, &interm_struct); 111776e0ffd9SIsaac Cilia Attard 111847c08596SBrooks Davis if (ip->client->offered_leases && 111976e0ffd9SIsaac Cilia Attard timespeccmp(&interm_struct, &stop_selecting, >)) 112076e0ffd9SIsaac Cilia Attard arp_timeout_needed = zero_timespec; 112147c08596SBrooks Davis 112247c08596SBrooks Davis /* Put the lease at the end of the list. */ 112347c08596SBrooks Davis lease->next = NULL; 112447c08596SBrooks Davis if (!ip->client->offered_leases) 112547c08596SBrooks Davis ip->client->offered_leases = lease; 112647c08596SBrooks Davis else { 112747c08596SBrooks Davis for (lp = ip->client->offered_leases; lp->next; 112847c08596SBrooks Davis lp = lp->next) 112947c08596SBrooks Davis ; /* nothing */ 113047c08596SBrooks Davis lp->next = lease; 113147c08596SBrooks Davis } 113247c08596SBrooks Davis } 113347c08596SBrooks Davis 113447c08596SBrooks Davis /* If we're supposed to stop selecting before we've had time 113547c08596SBrooks Davis to wait for the ARPREPLY, add some delay to wait for 113647c08596SBrooks Davis the ARPREPLY. */ 113776e0ffd9SIsaac Cilia Attard struct timespec time_left; 113876e0ffd9SIsaac Cilia Attard timespecsub(&stop_selecting, &time_now, &time_left); 113976e0ffd9SIsaac Cilia Attard 114076e0ffd9SIsaac Cilia Attard if (timespeccmp(&time_left, &arp_timeout_needed, <)) { 114176e0ffd9SIsaac Cilia Attard timespecadd(&time_now, &arp_timeout_needed, &stop_selecting); 114276e0ffd9SIsaac Cilia Attard } 114347c08596SBrooks Davis 114447c08596SBrooks Davis /* If the selecting interval has expired, go immediately to 114547c08596SBrooks Davis state_selecting(). Otherwise, time out into 114647c08596SBrooks Davis state_selecting at the select interval. */ 114776e0ffd9SIsaac Cilia Attard 114876e0ffd9SIsaac Cilia Attard 114976e0ffd9SIsaac Cilia Attard if (timespeccmp(&stop_selecting, &zero_timespec, <=)) 115047c08596SBrooks Davis state_selecting(ip); 115147c08596SBrooks Davis else { 115276e0ffd9SIsaac Cilia Attard add_timeout_timespec(stop_selecting, state_selecting, ip); 115347c08596SBrooks Davis cancel_timeout(send_discover, ip); 115447c08596SBrooks Davis } 115547c08596SBrooks Davis } 115647c08596SBrooks Davis 115747c08596SBrooks Davis /* Allocate a client_lease structure and initialize it from the parameters 115847c08596SBrooks Davis in the specified packet. */ 115947c08596SBrooks Davis 116047c08596SBrooks Davis struct client_lease * 116147c08596SBrooks Davis packet_to_lease(struct packet *packet) 116247c08596SBrooks Davis { 1163461ccb55SRob Norris struct interface_info *ip = packet->interface; 116447c08596SBrooks Davis struct client_lease *lease; 1165461ccb55SRob Norris int i, j; 116647c08596SBrooks Davis 116747c08596SBrooks Davis lease = malloc(sizeof(struct client_lease)); 116847c08596SBrooks Davis 116947c08596SBrooks Davis if (!lease) { 117047c08596SBrooks Davis warning("dhcpoffer: no memory to record lease."); 117147c08596SBrooks Davis return (NULL); 117247c08596SBrooks Davis } 117347c08596SBrooks Davis 117447c08596SBrooks Davis memset(lease, 0, sizeof(*lease)); 117547c08596SBrooks Davis 117647c08596SBrooks Davis /* Copy the lease options. */ 117747c08596SBrooks Davis for (i = 0; i < 256; i++) { 117847c08596SBrooks Davis if (packet->options[i].len) { 1179461ccb55SRob Norris int ignored = 0; 1180461ccb55SRob Norris for (j = 0; ip->client->config->ignored_options[j]; j++) 1181461ccb55SRob Norris if (i == 1182461ccb55SRob Norris ip->client->config->ignored_options[j]) { 1183461ccb55SRob Norris ignored = 1; 1184461ccb55SRob Norris break; 1185461ccb55SRob Norris } 1186461ccb55SRob Norris if (ignored) 1187461ccb55SRob Norris continue; 118847c08596SBrooks Davis lease->options[i].data = 118947c08596SBrooks Davis malloc(packet->options[i].len + 1); 119047c08596SBrooks Davis if (!lease->options[i].data) { 119147c08596SBrooks Davis warning("dhcpoffer: no memory for option %d", i); 119247c08596SBrooks Davis free_client_lease(lease); 119347c08596SBrooks Davis return (NULL); 119447c08596SBrooks Davis } else { 119547c08596SBrooks Davis memcpy(lease->options[i].data, 119647c08596SBrooks Davis packet->options[i].data, 119747c08596SBrooks Davis packet->options[i].len); 119847c08596SBrooks Davis lease->options[i].len = 119947c08596SBrooks Davis packet->options[i].len; 120047c08596SBrooks Davis lease->options[i].data[lease->options[i].len] = 120147c08596SBrooks Davis 0; 120247c08596SBrooks Davis } 120347c08596SBrooks Davis if (!check_option(lease,i)) { 120447c08596SBrooks Davis /* ignore a bogus lease offer */ 120547c08596SBrooks Davis warning("Invalid lease option - ignoring offer"); 120647c08596SBrooks Davis free_client_lease(lease); 120747c08596SBrooks Davis return (NULL); 120847c08596SBrooks Davis } 120947c08596SBrooks Davis } 121047c08596SBrooks Davis } 121147c08596SBrooks Davis 121247c08596SBrooks Davis lease->address.len = sizeof(packet->raw->yiaddr); 121347c08596SBrooks Davis memcpy(lease->address.iabuf, &packet->raw->yiaddr, lease->address.len); 121447c08596SBrooks Davis 1215d32438c3SBruce M Simpson lease->nextserver.len = sizeof(packet->raw->siaddr); 1216d32438c3SBruce M Simpson memcpy(lease->nextserver.iabuf, &packet->raw->siaddr, lease->nextserver.len); 1217d32438c3SBruce M Simpson 1218acccb9aaSBrooks Davis /* If the server name was filled out, copy it. 1219acccb9aaSBrooks Davis Do not attempt to validate the server name as a host name. 1220acccb9aaSBrooks Davis RFC 2131 merely states that sname is NUL-terminated (which do 1221acccb9aaSBrooks Davis do not assume) and that it is the server's host name. Since 1222acccb9aaSBrooks Davis the ISC client and server allow arbitrary characters, we do 1223acccb9aaSBrooks Davis as well. */ 122447c08596SBrooks Davis if ((!packet->options[DHO_DHCP_OPTION_OVERLOAD].len || 122547c08596SBrooks Davis !(packet->options[DHO_DHCP_OPTION_OVERLOAD].data[0] & 2)) && 122647c08596SBrooks Davis packet->raw->sname[0]) { 122747c08596SBrooks Davis lease->server_name = malloc(DHCP_SNAME_LEN + 1); 122847c08596SBrooks Davis if (!lease->server_name) { 122947c08596SBrooks Davis warning("dhcpoffer: no memory for server name."); 123047c08596SBrooks Davis free_client_lease(lease); 123147c08596SBrooks Davis return (NULL); 123247c08596SBrooks Davis } 123347c08596SBrooks Davis memcpy(lease->server_name, packet->raw->sname, DHCP_SNAME_LEN); 123447c08596SBrooks Davis lease->server_name[DHCP_SNAME_LEN]='\0'; 123547c08596SBrooks Davis } 123647c08596SBrooks Davis 123747c08596SBrooks Davis /* Ditto for the filename. */ 123847c08596SBrooks Davis if ((!packet->options[DHO_DHCP_OPTION_OVERLOAD].len || 123947c08596SBrooks Davis !(packet->options[DHO_DHCP_OPTION_OVERLOAD].data[0] & 1)) && 124047c08596SBrooks Davis packet->raw->file[0]) { 124147c08596SBrooks Davis /* Don't count on the NUL terminator. */ 124247c08596SBrooks Davis lease->filename = malloc(DHCP_FILE_LEN + 1); 124347c08596SBrooks Davis if (!lease->filename) { 124447c08596SBrooks Davis warning("dhcpoffer: no memory for filename."); 124547c08596SBrooks Davis free_client_lease(lease); 124647c08596SBrooks Davis return (NULL); 124747c08596SBrooks Davis } 124847c08596SBrooks Davis memcpy(lease->filename, packet->raw->file, DHCP_FILE_LEN); 124947c08596SBrooks Davis lease->filename[DHCP_FILE_LEN]='\0'; 125047c08596SBrooks Davis } 125147c08596SBrooks Davis return lease; 125247c08596SBrooks Davis } 125347c08596SBrooks Davis 125447c08596SBrooks Davis void 125547c08596SBrooks Davis dhcpnak(struct packet *packet) 125647c08596SBrooks Davis { 125747c08596SBrooks Davis struct interface_info *ip = packet->interface; 125847c08596SBrooks Davis 125947c08596SBrooks Davis /* If we're not receptive to an offer right now, or if the offer 126047c08596SBrooks Davis has an unrecognizable transaction id, then just drop it. */ 126147c08596SBrooks Davis if (packet->interface->client->xid != packet->raw->xid || 126247c08596SBrooks Davis (packet->interface->hw_address.hlen != packet->raw->hlen) || 126347c08596SBrooks Davis (memcmp(packet->interface->hw_address.haddr, 126447c08596SBrooks Davis packet->raw->chaddr, packet->raw->hlen))) 126547c08596SBrooks Davis return; 126647c08596SBrooks Davis 126747c08596SBrooks Davis if (ip->client->state != S_REBOOTING && 126847c08596SBrooks Davis ip->client->state != S_REQUESTING && 126947c08596SBrooks Davis ip->client->state != S_RENEWING && 127047c08596SBrooks Davis ip->client->state != S_REBINDING) 127147c08596SBrooks Davis return; 127247c08596SBrooks Davis 127347c08596SBrooks Davis note("DHCPNAK from %s", piaddr(packet->client_addr)); 127447c08596SBrooks Davis 127547c08596SBrooks Davis if (!ip->client->active) { 127647c08596SBrooks Davis note("DHCPNAK with no active lease.\n"); 127747c08596SBrooks Davis return; 127847c08596SBrooks Davis } 127947c08596SBrooks Davis 128047c08596SBrooks Davis free_client_lease(ip->client->active); 128147c08596SBrooks Davis ip->client->active = NULL; 128247c08596SBrooks Davis 128347c08596SBrooks Davis /* Stop sending DHCPREQUEST packets... */ 128447c08596SBrooks Davis cancel_timeout(send_request, ip); 128547c08596SBrooks Davis 128647c08596SBrooks Davis ip->client->state = S_INIT; 128747c08596SBrooks Davis state_init(ip); 128847c08596SBrooks Davis } 128947c08596SBrooks Davis 129047c08596SBrooks Davis /* Send out a DHCPDISCOVER packet, and set a timeout to send out another 129147c08596SBrooks Davis one after the right interval has expired. If we don't get an offer by 129247c08596SBrooks Davis the time we reach the panic interval, call the panic function. */ 129347c08596SBrooks Davis 129447c08596SBrooks Davis void 129547c08596SBrooks Davis send_discover(void *ipp) 129647c08596SBrooks Davis { 129747c08596SBrooks Davis struct interface_info *ip = ipp; 129847c08596SBrooks Davis int interval, increase = 1; 129947c08596SBrooks Davis 130047c08596SBrooks Davis /* Figure out how long it's been since we started transmitting. */ 130147c08596SBrooks Davis interval = cur_time - ip->client->first_sending; 130247c08596SBrooks Davis 130347c08596SBrooks Davis /* If we're past the panic timeout, call the script and tell it 130447c08596SBrooks Davis we haven't found anything for this interface yet. */ 130547c08596SBrooks Davis if (interval > ip->client->config->timeout) { 130647c08596SBrooks Davis state_panic(ip); 130747c08596SBrooks Davis return; 130847c08596SBrooks Davis } 130947c08596SBrooks Davis 131047c08596SBrooks Davis /* If we're selecting media, try the whole list before doing 131147c08596SBrooks Davis the exponential backoff, but if we've already received an 131247c08596SBrooks Davis offer, stop looping, because we obviously have it right. */ 131347c08596SBrooks Davis if (!ip->client->offered_leases && 131447c08596SBrooks Davis ip->client->config->media) { 131547c08596SBrooks Davis int fail = 0; 131647c08596SBrooks Davis again: 131747c08596SBrooks Davis if (ip->client->medium) { 131847c08596SBrooks Davis ip->client->medium = ip->client->medium->next; 131947c08596SBrooks Davis increase = 0; 132047c08596SBrooks Davis } 132147c08596SBrooks Davis if (!ip->client->medium) { 132247c08596SBrooks Davis if (fail) 132347c08596SBrooks Davis error("No valid media types for %s!", ip->name); 132447c08596SBrooks Davis ip->client->medium = ip->client->config->media; 132547c08596SBrooks Davis increase = 1; 132647c08596SBrooks Davis } 132747c08596SBrooks Davis 132847c08596SBrooks Davis note("Trying medium \"%s\" %d", ip->client->medium->string, 132947c08596SBrooks Davis increase); 133047c08596SBrooks Davis script_init("MEDIUM", ip->client->medium); 133147c08596SBrooks Davis if (script_go()) 133247c08596SBrooks Davis goto again; 133347c08596SBrooks Davis } 133447c08596SBrooks Davis 133547c08596SBrooks Davis /* 133647c08596SBrooks Davis * If we're supposed to increase the interval, do so. If it's 133747c08596SBrooks Davis * currently zero (i.e., we haven't sent any packets yet), set 133847c08596SBrooks Davis * it to one; otherwise, add to it a random number between zero 133947c08596SBrooks Davis * and two times itself. On average, this means that it will 134047c08596SBrooks Davis * double with every transmission. 134147c08596SBrooks Davis */ 134247c08596SBrooks Davis if (increase) { 134347c08596SBrooks Davis if (!ip->client->interval) 134447c08596SBrooks Davis ip->client->interval = 134547c08596SBrooks Davis ip->client->config->initial_interval; 134647c08596SBrooks Davis else { 134747c08596SBrooks Davis ip->client->interval += (arc4random() >> 2) % 134847c08596SBrooks Davis (2 * ip->client->interval); 134947c08596SBrooks Davis } 135047c08596SBrooks Davis 135147c08596SBrooks Davis /* Don't backoff past cutoff. */ 135247c08596SBrooks Davis if (ip->client->interval > 135347c08596SBrooks Davis ip->client->config->backoff_cutoff) 135447c08596SBrooks Davis ip->client->interval = 135547c08596SBrooks Davis ((ip->client->config->backoff_cutoff / 2) 135647c08596SBrooks Davis + ((arc4random() >> 2) % 135747c08596SBrooks Davis ip->client->config->backoff_cutoff)); 135847c08596SBrooks Davis } else if (!ip->client->interval) 135947c08596SBrooks Davis ip->client->interval = 136047c08596SBrooks Davis ip->client->config->initial_interval; 136147c08596SBrooks Davis 136247c08596SBrooks Davis /* If the backoff would take us to the panic timeout, just use that 136347c08596SBrooks Davis as the interval. */ 136447c08596SBrooks Davis if (cur_time + ip->client->interval > 136547c08596SBrooks Davis ip->client->first_sending + ip->client->config->timeout) 136647c08596SBrooks Davis ip->client->interval = 136747c08596SBrooks Davis (ip->client->first_sending + 136847c08596SBrooks Davis ip->client->config->timeout) - cur_time + 1; 136947c08596SBrooks Davis 137047c08596SBrooks Davis /* Record the number of seconds since we started sending. */ 137147c08596SBrooks Davis if (interval < 65536) 137247c08596SBrooks Davis ip->client->packet.secs = htons(interval); 137347c08596SBrooks Davis else 137447c08596SBrooks Davis ip->client->packet.secs = htons(65535); 137547c08596SBrooks Davis ip->client->secs = ip->client->packet.secs; 137647c08596SBrooks Davis 137747c08596SBrooks Davis note("DHCPDISCOVER on %s to %s port %d interval %d", 1378ba019ae5SPawel Jakub Dawidek ip->name, inet_ntoa(inaddr_broadcast), REMOTE_PORT, 13799c13d9cdSBrooks Davis (int)ip->client->interval); 138047c08596SBrooks Davis 138147c08596SBrooks Davis /* Send out a packet. */ 1382235eb530SPawel Jakub Dawidek send_packet_unpriv(privfd, &ip->client->packet, 1383235eb530SPawel Jakub Dawidek ip->client->packet_length, inaddr_any, inaddr_broadcast); 138447c08596SBrooks Davis 138547c08596SBrooks Davis add_timeout(cur_time + ip->client->interval, send_discover, ip); 138647c08596SBrooks Davis } 138747c08596SBrooks Davis 138847c08596SBrooks Davis /* 138947c08596SBrooks Davis * state_panic gets called if we haven't received any offers in a preset 139047c08596SBrooks Davis * amount of time. When this happens, we try to use existing leases 139147c08596SBrooks Davis * that haven't yet expired, and failing that, we call the client script 139247c08596SBrooks Davis * and hope it can do something. 139347c08596SBrooks Davis */ 139447c08596SBrooks Davis void 139547c08596SBrooks Davis state_panic(void *ipp) 139647c08596SBrooks Davis { 139747c08596SBrooks Davis struct interface_info *ip = ipp; 139847c08596SBrooks Davis struct client_lease *loop = ip->client->active; 139947c08596SBrooks Davis struct client_lease *lp; 140047c08596SBrooks Davis 140147c08596SBrooks Davis note("No DHCPOFFERS received."); 140247c08596SBrooks Davis 140347c08596SBrooks Davis /* We may not have an active lease, but we may have some 140447c08596SBrooks Davis predefined leases that we can try. */ 140547c08596SBrooks Davis if (!ip->client->active && ip->client->leases) 140647c08596SBrooks Davis goto activate_next; 140747c08596SBrooks Davis 140847c08596SBrooks Davis /* Run through the list of leases and see if one can be used. */ 140947c08596SBrooks Davis while (ip->client->active) { 141047c08596SBrooks Davis if (ip->client->active->expiry > cur_time) { 141147c08596SBrooks Davis note("Trying recorded lease %s", 141247c08596SBrooks Davis piaddr(ip->client->active->address)); 141347c08596SBrooks Davis /* Run the client script with the existing 141447c08596SBrooks Davis parameters. */ 141547c08596SBrooks Davis script_init("TIMEOUT", 141647c08596SBrooks Davis ip->client->active->medium); 141747c08596SBrooks Davis script_write_params("new_", ip->client->active); 141847c08596SBrooks Davis if (ip->client->alias) 141947c08596SBrooks Davis script_write_params("alias_", 142047c08596SBrooks Davis ip->client->alias); 142147c08596SBrooks Davis 142247c08596SBrooks Davis /* If the old lease is still good and doesn't 142347c08596SBrooks Davis yet need renewal, go into BOUND state and 142447c08596SBrooks Davis timeout at the renewal time. */ 142547c08596SBrooks Davis if (!script_go()) { 142647c08596SBrooks Davis if (cur_time < 142747c08596SBrooks Davis ip->client->active->renewal) { 142847c08596SBrooks Davis ip->client->state = S_BOUND; 142947c08596SBrooks Davis note("bound: renewal in %d seconds.", 14309c13d9cdSBrooks Davis (int)(ip->client->active->renewal - 14319c13d9cdSBrooks Davis cur_time)); 143247c08596SBrooks Davis add_timeout( 143347c08596SBrooks Davis ip->client->active->renewal, 143447c08596SBrooks Davis state_bound, ip); 143547c08596SBrooks Davis } else { 143647c08596SBrooks Davis ip->client->state = S_BOUND; 143747c08596SBrooks Davis note("bound: immediate renewal."); 143847c08596SBrooks Davis state_bound(ip); 143947c08596SBrooks Davis } 144047c08596SBrooks Davis reinitialize_interfaces(); 144147c08596SBrooks Davis go_daemon(); 144247c08596SBrooks Davis return; 144347c08596SBrooks Davis } 144447c08596SBrooks Davis } 144547c08596SBrooks Davis 144647c08596SBrooks Davis /* If there are no other leases, give up. */ 144747c08596SBrooks Davis if (!ip->client->leases) { 144847c08596SBrooks Davis ip->client->leases = ip->client->active; 144947c08596SBrooks Davis ip->client->active = NULL; 145047c08596SBrooks Davis break; 145147c08596SBrooks Davis } 145247c08596SBrooks Davis 145347c08596SBrooks Davis activate_next: 145447c08596SBrooks Davis /* Otherwise, put the active lease at the end of the 145547c08596SBrooks Davis lease list, and try another lease.. */ 145647c08596SBrooks Davis for (lp = ip->client->leases; lp->next; lp = lp->next) 145747c08596SBrooks Davis ; 145847c08596SBrooks Davis lp->next = ip->client->active; 145947c08596SBrooks Davis if (lp->next) 146047c08596SBrooks Davis lp->next->next = NULL; 146147c08596SBrooks Davis ip->client->active = ip->client->leases; 146247c08596SBrooks Davis ip->client->leases = ip->client->leases->next; 146347c08596SBrooks Davis 146447c08596SBrooks Davis /* If we already tried this lease, we've exhausted the 146547c08596SBrooks Davis set of leases, so we might as well give up for 146647c08596SBrooks Davis now. */ 146747c08596SBrooks Davis if (ip->client->active == loop) 146847c08596SBrooks Davis break; 146947c08596SBrooks Davis else if (!loop) 147047c08596SBrooks Davis loop = ip->client->active; 147147c08596SBrooks Davis } 147247c08596SBrooks Davis 147347c08596SBrooks Davis /* No leases were available, or what was available didn't work, so 147447c08596SBrooks Davis tell the shell script that we failed to allocate an address, 147547c08596SBrooks Davis and try again later. */ 147647c08596SBrooks Davis note("No working leases in persistent database - sleeping.\n"); 147747c08596SBrooks Davis script_init("FAIL", NULL); 147847c08596SBrooks Davis if (ip->client->alias) 147947c08596SBrooks Davis script_write_params("alias_", ip->client->alias); 148047c08596SBrooks Davis script_go(); 148147c08596SBrooks Davis ip->client->state = S_INIT; 148247c08596SBrooks Davis add_timeout(cur_time + ip->client->config->retry_interval, state_init, 148347c08596SBrooks Davis ip); 148447c08596SBrooks Davis go_daemon(); 148547c08596SBrooks Davis } 148647c08596SBrooks Davis 148747c08596SBrooks Davis void 148847c08596SBrooks Davis send_request(void *ipp) 148947c08596SBrooks Davis { 149047c08596SBrooks Davis struct interface_info *ip = ipp; 1491ba019ae5SPawel Jakub Dawidek struct in_addr from, to; 149247c08596SBrooks Davis int interval; 149347c08596SBrooks Davis 149447c08596SBrooks Davis /* Figure out how long it's been since we started transmitting. */ 149547c08596SBrooks Davis interval = cur_time - ip->client->first_sending; 149647c08596SBrooks Davis 149747c08596SBrooks Davis /* If we're in the INIT-REBOOT or REQUESTING state and we're 149847c08596SBrooks Davis past the reboot timeout, go to INIT and see if we can 149947c08596SBrooks Davis DISCOVER an address... */ 150047c08596SBrooks Davis /* XXX In the INIT-REBOOT state, if we don't get an ACK, it 150147c08596SBrooks Davis means either that we're on a network with no DHCP server, 150247c08596SBrooks Davis or that our server is down. In the latter case, assuming 150347c08596SBrooks Davis that there is a backup DHCP server, DHCPDISCOVER will get 150447c08596SBrooks Davis us a new address, but we could also have successfully 150547c08596SBrooks Davis reused our old address. In the former case, we're hosed 150647c08596SBrooks Davis anyway. This is not a win-prone situation. */ 150747c08596SBrooks Davis if ((ip->client->state == S_REBOOTING || 150847c08596SBrooks Davis ip->client->state == S_REQUESTING) && 150947c08596SBrooks Davis interval > ip->client->config->reboot_timeout) { 151047c08596SBrooks Davis cancel: 151147c08596SBrooks Davis ip->client->state = S_INIT; 151247c08596SBrooks Davis cancel_timeout(send_request, ip); 151347c08596SBrooks Davis state_init(ip); 151447c08596SBrooks Davis return; 151547c08596SBrooks Davis } 151647c08596SBrooks Davis 151747c08596SBrooks Davis /* If we're in the reboot state, make sure the media is set up 151847c08596SBrooks Davis correctly. */ 151947c08596SBrooks Davis if (ip->client->state == S_REBOOTING && 152047c08596SBrooks Davis !ip->client->medium && 152147c08596SBrooks Davis ip->client->active->medium ) { 152247c08596SBrooks Davis script_init("MEDIUM", ip->client->active->medium); 152347c08596SBrooks Davis 152447c08596SBrooks Davis /* If the medium we chose won't fly, go to INIT state. */ 152547c08596SBrooks Davis if (script_go()) 152647c08596SBrooks Davis goto cancel; 152747c08596SBrooks Davis 152847c08596SBrooks Davis /* Record the medium. */ 152947c08596SBrooks Davis ip->client->medium = ip->client->active->medium; 153047c08596SBrooks Davis } 153147c08596SBrooks Davis 153247c08596SBrooks Davis /* If the lease has expired, relinquish the address and go back 153347c08596SBrooks Davis to the INIT state. */ 153447c08596SBrooks Davis if (ip->client->state != S_REQUESTING && 153547c08596SBrooks Davis cur_time > ip->client->active->expiry) { 153647c08596SBrooks Davis /* Run the client script with the new parameters. */ 153747c08596SBrooks Davis script_init("EXPIRE", NULL); 153847c08596SBrooks Davis script_write_params("old_", ip->client->active); 153947c08596SBrooks Davis if (ip->client->alias) 154047c08596SBrooks Davis script_write_params("alias_", ip->client->alias); 154147c08596SBrooks Davis script_go(); 154247c08596SBrooks Davis 154347c08596SBrooks Davis /* Now do a preinit on the interface so that we can 154447c08596SBrooks Davis discover a new address. */ 154547c08596SBrooks Davis script_init("PREINIT", NULL); 154647c08596SBrooks Davis if (ip->client->alias) 154747c08596SBrooks Davis script_write_params("alias_", ip->client->alias); 154847c08596SBrooks Davis script_go(); 154947c08596SBrooks Davis 155047c08596SBrooks Davis ip->client->state = S_INIT; 155147c08596SBrooks Davis state_init(ip); 155247c08596SBrooks Davis return; 155347c08596SBrooks Davis } 155447c08596SBrooks Davis 155547c08596SBrooks Davis /* Do the exponential backoff... */ 155647c08596SBrooks Davis if (!ip->client->interval) 155747c08596SBrooks Davis ip->client->interval = ip->client->config->initial_interval; 155847c08596SBrooks Davis else 155947c08596SBrooks Davis ip->client->interval += ((arc4random() >> 2) % 156047c08596SBrooks Davis (2 * ip->client->interval)); 156147c08596SBrooks Davis 156247c08596SBrooks Davis /* Don't backoff past cutoff. */ 156347c08596SBrooks Davis if (ip->client->interval > 156447c08596SBrooks Davis ip->client->config->backoff_cutoff) 156547c08596SBrooks Davis ip->client->interval = 156647c08596SBrooks Davis ((ip->client->config->backoff_cutoff / 2) + 156747c08596SBrooks Davis ((arc4random() >> 2) % ip->client->interval)); 156847c08596SBrooks Davis 156947c08596SBrooks Davis /* If the backoff would take us to the expiry time, just set the 157047c08596SBrooks Davis timeout to the expiry time. */ 157147c08596SBrooks Davis if (ip->client->state != S_REQUESTING && 157247c08596SBrooks Davis cur_time + ip->client->interval > 157347c08596SBrooks Davis ip->client->active->expiry) 157447c08596SBrooks Davis ip->client->interval = 157547c08596SBrooks Davis ip->client->active->expiry - cur_time + 1; 157647c08596SBrooks Davis 157747c08596SBrooks Davis /* If the lease T2 time has elapsed, or if we're not yet bound, 157847c08596SBrooks Davis broadcast the DHCPREQUEST rather than unicasting. */ 157947c08596SBrooks Davis if (ip->client->state == S_REQUESTING || 158047c08596SBrooks Davis ip->client->state == S_REBOOTING || 158147c08596SBrooks Davis cur_time > ip->client->active->rebind) 1582ba019ae5SPawel Jakub Dawidek to.s_addr = INADDR_BROADCAST; 158347c08596SBrooks Davis else 1584ba019ae5SPawel Jakub Dawidek memcpy(&to.s_addr, ip->client->destination.iabuf, 1585ba019ae5SPawel Jakub Dawidek sizeof(to.s_addr)); 158647c08596SBrooks Davis 15873acf1760SDavid Bright if (ip->client->state != S_REQUESTING && 15883acf1760SDavid Bright ip->client->state != S_REBOOTING) 158947c08596SBrooks Davis memcpy(&from, ip->client->active->address.iabuf, 159047c08596SBrooks Davis sizeof(from)); 159147c08596SBrooks Davis else 159247c08596SBrooks Davis from.s_addr = INADDR_ANY; 159347c08596SBrooks Davis 159447c08596SBrooks Davis /* Record the number of seconds since we started sending. */ 159547c08596SBrooks Davis if (ip->client->state == S_REQUESTING) 159647c08596SBrooks Davis ip->client->packet.secs = ip->client->secs; 159747c08596SBrooks Davis else { 159847c08596SBrooks Davis if (interval < 65536) 159947c08596SBrooks Davis ip->client->packet.secs = htons(interval); 160047c08596SBrooks Davis else 160147c08596SBrooks Davis ip->client->packet.secs = htons(65535); 160247c08596SBrooks Davis } 160347c08596SBrooks Davis 1604ba019ae5SPawel Jakub Dawidek note("DHCPREQUEST on %s to %s port %d", ip->name, inet_ntoa(to), 1605ba019ae5SPawel Jakub Dawidek REMOTE_PORT); 160647c08596SBrooks Davis 160747c08596SBrooks Davis /* Send out a packet. */ 1608235eb530SPawel Jakub Dawidek send_packet_unpriv(privfd, &ip->client->packet, 1609235eb530SPawel Jakub Dawidek ip->client->packet_length, from, to); 161047c08596SBrooks Davis 161147c08596SBrooks Davis add_timeout(cur_time + ip->client->interval, send_request, ip); 161247c08596SBrooks Davis } 161347c08596SBrooks Davis 161447c08596SBrooks Davis void 161547c08596SBrooks Davis send_decline(void *ipp) 161647c08596SBrooks Davis { 161747c08596SBrooks Davis struct interface_info *ip = ipp; 161847c08596SBrooks Davis 161947c08596SBrooks Davis note("DHCPDECLINE on %s to %s port %d", ip->name, 1620ba019ae5SPawel Jakub Dawidek inet_ntoa(inaddr_broadcast), REMOTE_PORT); 162147c08596SBrooks Davis 162247c08596SBrooks Davis /* Send out a packet. */ 1623235eb530SPawel Jakub Dawidek send_packet_unpriv(privfd, &ip->client->packet, 1624235eb530SPawel Jakub Dawidek ip->client->packet_length, inaddr_any, inaddr_broadcast); 162547c08596SBrooks Davis } 162647c08596SBrooks Davis 162747c08596SBrooks Davis void 162847c08596SBrooks Davis make_discover(struct interface_info *ip, struct client_lease *lease) 162947c08596SBrooks Davis { 163047c08596SBrooks Davis unsigned char discover = DHCPDISCOVER; 163147c08596SBrooks Davis struct tree_cache *options[256]; 163247c08596SBrooks Davis struct tree_cache option_elements[256]; 163347c08596SBrooks Davis int i; 163447c08596SBrooks Davis 163547c08596SBrooks Davis memset(option_elements, 0, sizeof(option_elements)); 163647c08596SBrooks Davis memset(options, 0, sizeof(options)); 163747c08596SBrooks Davis memset(&ip->client->packet, 0, sizeof(ip->client->packet)); 163847c08596SBrooks Davis 163947c08596SBrooks Davis /* Set DHCP_MESSAGE_TYPE to DHCPDISCOVER */ 164047c08596SBrooks Davis i = DHO_DHCP_MESSAGE_TYPE; 164147c08596SBrooks Davis options[i] = &option_elements[i]; 164247c08596SBrooks Davis options[i]->value = &discover; 164347c08596SBrooks Davis options[i]->len = sizeof(discover); 164447c08596SBrooks Davis options[i]->buf_size = sizeof(discover); 164547c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 164647c08596SBrooks Davis 164747c08596SBrooks Davis /* Request the options we want */ 164847c08596SBrooks Davis i = DHO_DHCP_PARAMETER_REQUEST_LIST; 164947c08596SBrooks Davis options[i] = &option_elements[i]; 165047c08596SBrooks Davis options[i]->value = ip->client->config->requested_options; 165147c08596SBrooks Davis options[i]->len = ip->client->config->requested_option_count; 165247c08596SBrooks Davis options[i]->buf_size = 165347c08596SBrooks Davis ip->client->config->requested_option_count; 165447c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 165547c08596SBrooks Davis 165647c08596SBrooks Davis /* If we had an address, try to get it again. */ 165747c08596SBrooks Davis if (lease) { 165847c08596SBrooks Davis ip->client->requested_address = lease->address; 165947c08596SBrooks Davis i = DHO_DHCP_REQUESTED_ADDRESS; 166047c08596SBrooks Davis options[i] = &option_elements[i]; 166147c08596SBrooks Davis options[i]->value = lease->address.iabuf; 166247c08596SBrooks Davis options[i]->len = lease->address.len; 166347c08596SBrooks Davis options[i]->buf_size = lease->address.len; 166447c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 166547c08596SBrooks Davis } else 166647c08596SBrooks Davis ip->client->requested_address.len = 0; 166747c08596SBrooks Davis 166847c08596SBrooks Davis /* Send any options requested in the config file. */ 166947c08596SBrooks Davis for (i = 0; i < 256; i++) 167047c08596SBrooks Davis if (!options[i] && 167147c08596SBrooks Davis ip->client->config->send_options[i].data) { 167247c08596SBrooks Davis options[i] = &option_elements[i]; 167347c08596SBrooks Davis options[i]->value = 167447c08596SBrooks Davis ip->client->config->send_options[i].data; 167547c08596SBrooks Davis options[i]->len = 167647c08596SBrooks Davis ip->client->config->send_options[i].len; 167747c08596SBrooks Davis options[i]->buf_size = 167847c08596SBrooks Davis ip->client->config->send_options[i].len; 167947c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 168047c08596SBrooks Davis } 168147c08596SBrooks Davis 1682fcab8addSBrooks Davis /* send host name if not set via config file. */ 1683fcab8addSBrooks Davis if (!options[DHO_HOST_NAME]) { 16840bbe8306SPawel Jakub Dawidek if (hostname[0] != '\0') { 1685fcab8addSBrooks Davis size_t len; 1686fcab8addSBrooks Davis char* posDot = strchr(hostname, '.'); 1687fcab8addSBrooks Davis if (posDot != NULL) 1688fcab8addSBrooks Davis len = posDot - hostname; 1689fcab8addSBrooks Davis else 1690fcab8addSBrooks Davis len = strlen(hostname); 1691fcab8addSBrooks Davis options[DHO_HOST_NAME] = &option_elements[DHO_HOST_NAME]; 1692fcab8addSBrooks Davis options[DHO_HOST_NAME]->value = hostname; 1693fcab8addSBrooks Davis options[DHO_HOST_NAME]->len = len; 1694fcab8addSBrooks Davis options[DHO_HOST_NAME]->buf_size = len; 1695fcab8addSBrooks Davis options[DHO_HOST_NAME]->timeout = 0xFFFFFFFF; 1696fcab8addSBrooks Davis } 1697fcab8addSBrooks Davis } 1698fcab8addSBrooks Davis 1699fcab8addSBrooks Davis /* set unique client identifier */ 1700fb0eab09SConrad Meyer char client_ident[sizeof(ip->hw_address.haddr) + 1]; 1701fcab8addSBrooks Davis if (!options[DHO_DHCP_CLIENT_IDENTIFIER]) { 17024441bd73SConrad Meyer int hwlen = (ip->hw_address.hlen < sizeof(client_ident)-1) ? 17034441bd73SConrad Meyer ip->hw_address.hlen : sizeof(client_ident)-1; 17044441bd73SConrad Meyer client_ident[0] = ip->hw_address.htype; 17054441bd73SConrad Meyer memcpy(&client_ident[1], ip->hw_address.haddr, hwlen); 1706fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER] = &option_elements[DHO_DHCP_CLIENT_IDENTIFIER]; 17074441bd73SConrad Meyer options[DHO_DHCP_CLIENT_IDENTIFIER]->value = client_ident; 17084441bd73SConrad Meyer options[DHO_DHCP_CLIENT_IDENTIFIER]->len = hwlen+1; 17094441bd73SConrad Meyer options[DHO_DHCP_CLIENT_IDENTIFIER]->buf_size = hwlen+1; 1710fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER]->timeout = 0xFFFFFFFF; 1711fcab8addSBrooks Davis } 1712fcab8addSBrooks Davis 171347c08596SBrooks Davis /* Set up the option buffer... */ 171447c08596SBrooks Davis ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0, 171547c08596SBrooks Davis options, 0, 0, 0, NULL, 0); 171647c08596SBrooks Davis if (ip->client->packet_length < BOOTP_MIN_LEN) 171747c08596SBrooks Davis ip->client->packet_length = BOOTP_MIN_LEN; 171847c08596SBrooks Davis 171947c08596SBrooks Davis ip->client->packet.op = BOOTREQUEST; 172047c08596SBrooks Davis ip->client->packet.htype = ip->hw_address.htype; 172147c08596SBrooks Davis ip->client->packet.hlen = ip->hw_address.hlen; 172247c08596SBrooks Davis ip->client->packet.hops = 0; 172347c08596SBrooks Davis ip->client->packet.xid = arc4random(); 172447c08596SBrooks Davis ip->client->packet.secs = 0; /* filled in by send_discover. */ 172547c08596SBrooks Davis ip->client->packet.flags = 0; 172647c08596SBrooks Davis 172747c08596SBrooks Davis memset(&(ip->client->packet.ciaddr), 172847c08596SBrooks Davis 0, sizeof(ip->client->packet.ciaddr)); 172947c08596SBrooks Davis memset(&(ip->client->packet.yiaddr), 173047c08596SBrooks Davis 0, sizeof(ip->client->packet.yiaddr)); 173147c08596SBrooks Davis memset(&(ip->client->packet.siaddr), 173247c08596SBrooks Davis 0, sizeof(ip->client->packet.siaddr)); 173347c08596SBrooks Davis memset(&(ip->client->packet.giaddr), 173447c08596SBrooks Davis 0, sizeof(ip->client->packet.giaddr)); 17354441bd73SConrad Meyer memcpy(ip->client->packet.chaddr, 17364441bd73SConrad Meyer ip->hw_address.haddr, ip->hw_address.hlen); 173747c08596SBrooks Davis } 173847c08596SBrooks Davis 173947c08596SBrooks Davis 174047c08596SBrooks Davis void 174147c08596SBrooks Davis make_request(struct interface_info *ip, struct client_lease * lease) 174247c08596SBrooks Davis { 174347c08596SBrooks Davis unsigned char request = DHCPREQUEST; 174447c08596SBrooks Davis struct tree_cache *options[256]; 174547c08596SBrooks Davis struct tree_cache option_elements[256]; 174647c08596SBrooks Davis int i; 174747c08596SBrooks Davis 174847c08596SBrooks Davis memset(options, 0, sizeof(options)); 174947c08596SBrooks Davis memset(&ip->client->packet, 0, sizeof(ip->client->packet)); 175047c08596SBrooks Davis 175147c08596SBrooks Davis /* Set DHCP_MESSAGE_TYPE to DHCPREQUEST */ 175247c08596SBrooks Davis i = DHO_DHCP_MESSAGE_TYPE; 175347c08596SBrooks Davis options[i] = &option_elements[i]; 175447c08596SBrooks Davis options[i]->value = &request; 175547c08596SBrooks Davis options[i]->len = sizeof(request); 175647c08596SBrooks Davis options[i]->buf_size = sizeof(request); 175747c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 175847c08596SBrooks Davis 175947c08596SBrooks Davis /* Request the options we want */ 176047c08596SBrooks Davis i = DHO_DHCP_PARAMETER_REQUEST_LIST; 176147c08596SBrooks Davis options[i] = &option_elements[i]; 176247c08596SBrooks Davis options[i]->value = ip->client->config->requested_options; 176347c08596SBrooks Davis options[i]->len = ip->client->config->requested_option_count; 176447c08596SBrooks Davis options[i]->buf_size = 176547c08596SBrooks Davis ip->client->config->requested_option_count; 176647c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 176747c08596SBrooks Davis 176847c08596SBrooks Davis /* If we are requesting an address that hasn't yet been assigned 176947c08596SBrooks Davis to us, use the DHCP Requested Address option. */ 177047c08596SBrooks Davis if (ip->client->state == S_REQUESTING) { 177147c08596SBrooks Davis /* Send back the server identifier... */ 177247c08596SBrooks Davis i = DHO_DHCP_SERVER_IDENTIFIER; 177347c08596SBrooks Davis options[i] = &option_elements[i]; 177447c08596SBrooks Davis options[i]->value = lease->options[i].data; 177547c08596SBrooks Davis options[i]->len = lease->options[i].len; 177647c08596SBrooks Davis options[i]->buf_size = lease->options[i].len; 177747c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 177847c08596SBrooks Davis } 177947c08596SBrooks Davis if (ip->client->state == S_REQUESTING || 178047c08596SBrooks Davis ip->client->state == S_REBOOTING) { 178147c08596SBrooks Davis ip->client->requested_address = lease->address; 178247c08596SBrooks Davis i = DHO_DHCP_REQUESTED_ADDRESS; 178347c08596SBrooks Davis options[i] = &option_elements[i]; 178447c08596SBrooks Davis options[i]->value = lease->address.iabuf; 178547c08596SBrooks Davis options[i]->len = lease->address.len; 178647c08596SBrooks Davis options[i]->buf_size = lease->address.len; 178747c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 178847c08596SBrooks Davis } else 178947c08596SBrooks Davis ip->client->requested_address.len = 0; 179047c08596SBrooks Davis 179147c08596SBrooks Davis /* Send any options requested in the config file. */ 179247c08596SBrooks Davis for (i = 0; i < 256; i++) 179347c08596SBrooks Davis if (!options[i] && 179447c08596SBrooks Davis ip->client->config->send_options[i].data) { 179547c08596SBrooks Davis options[i] = &option_elements[i]; 179647c08596SBrooks Davis options[i]->value = 179747c08596SBrooks Davis ip->client->config->send_options[i].data; 179847c08596SBrooks Davis options[i]->len = 179947c08596SBrooks Davis ip->client->config->send_options[i].len; 180047c08596SBrooks Davis options[i]->buf_size = 180147c08596SBrooks Davis ip->client->config->send_options[i].len; 180247c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 180347c08596SBrooks Davis } 180447c08596SBrooks Davis 1805fcab8addSBrooks Davis /* send host name if not set via config file. */ 1806fcab8addSBrooks Davis if (!options[DHO_HOST_NAME]) { 18070bbe8306SPawel Jakub Dawidek if (hostname[0] != '\0') { 1808fcab8addSBrooks Davis size_t len; 1809fcab8addSBrooks Davis char* posDot = strchr(hostname, '.'); 1810fcab8addSBrooks Davis if (posDot != NULL) 1811fcab8addSBrooks Davis len = posDot - hostname; 1812fcab8addSBrooks Davis else 1813fcab8addSBrooks Davis len = strlen(hostname); 1814fcab8addSBrooks Davis options[DHO_HOST_NAME] = &option_elements[DHO_HOST_NAME]; 1815fcab8addSBrooks Davis options[DHO_HOST_NAME]->value = hostname; 1816fcab8addSBrooks Davis options[DHO_HOST_NAME]->len = len; 1817fcab8addSBrooks Davis options[DHO_HOST_NAME]->buf_size = len; 1818fcab8addSBrooks Davis options[DHO_HOST_NAME]->timeout = 0xFFFFFFFF; 1819fcab8addSBrooks Davis } 1820fcab8addSBrooks Davis } 1821fcab8addSBrooks Davis 1822fcab8addSBrooks Davis /* set unique client identifier */ 182374aed808SConrad Meyer char client_ident[sizeof(ip->hw_address.haddr) + 1]; 1824fcab8addSBrooks Davis if (!options[DHO_DHCP_CLIENT_IDENTIFIER]) { 1825fcab8addSBrooks Davis int hwlen = (ip->hw_address.hlen < sizeof(client_ident)-1) ? 1826fcab8addSBrooks Davis ip->hw_address.hlen : sizeof(client_ident)-1; 1827fcab8addSBrooks Davis client_ident[0] = ip->hw_address.htype; 1828fcab8addSBrooks Davis memcpy(&client_ident[1], ip->hw_address.haddr, hwlen); 1829fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER] = &option_elements[DHO_DHCP_CLIENT_IDENTIFIER]; 1830fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER]->value = client_ident; 1831fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER]->len = hwlen+1; 1832fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER]->buf_size = hwlen+1; 1833fcab8addSBrooks Davis options[DHO_DHCP_CLIENT_IDENTIFIER]->timeout = 0xFFFFFFFF; 1834fcab8addSBrooks Davis } 1835fcab8addSBrooks Davis 183647c08596SBrooks Davis /* Set up the option buffer... */ 183747c08596SBrooks Davis ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0, 183847c08596SBrooks Davis options, 0, 0, 0, NULL, 0); 183947c08596SBrooks Davis if (ip->client->packet_length < BOOTP_MIN_LEN) 184047c08596SBrooks Davis ip->client->packet_length = BOOTP_MIN_LEN; 184147c08596SBrooks Davis 184247c08596SBrooks Davis ip->client->packet.op = BOOTREQUEST; 184347c08596SBrooks Davis ip->client->packet.htype = ip->hw_address.htype; 184447c08596SBrooks Davis ip->client->packet.hlen = ip->hw_address.hlen; 184547c08596SBrooks Davis ip->client->packet.hops = 0; 184647c08596SBrooks Davis ip->client->packet.xid = ip->client->xid; 184747c08596SBrooks Davis ip->client->packet.secs = 0; /* Filled in by send_request. */ 184847c08596SBrooks Davis 184947c08596SBrooks Davis /* If we own the address we're requesting, put it in ciaddr; 185047c08596SBrooks Davis otherwise set ciaddr to zero. */ 185147c08596SBrooks Davis if (ip->client->state == S_BOUND || 185247c08596SBrooks Davis ip->client->state == S_RENEWING || 185347c08596SBrooks Davis ip->client->state == S_REBINDING) { 185447c08596SBrooks Davis memcpy(&ip->client->packet.ciaddr, 185547c08596SBrooks Davis lease->address.iabuf, lease->address.len); 185647c08596SBrooks Davis ip->client->packet.flags = 0; 185747c08596SBrooks Davis } else { 185847c08596SBrooks Davis memset(&ip->client->packet.ciaddr, 0, 185947c08596SBrooks Davis sizeof(ip->client->packet.ciaddr)); 186047c08596SBrooks Davis ip->client->packet.flags = 0; 186147c08596SBrooks Davis } 186247c08596SBrooks Davis 186347c08596SBrooks Davis memset(&ip->client->packet.yiaddr, 0, 186447c08596SBrooks Davis sizeof(ip->client->packet.yiaddr)); 186547c08596SBrooks Davis memset(&ip->client->packet.siaddr, 0, 186647c08596SBrooks Davis sizeof(ip->client->packet.siaddr)); 186747c08596SBrooks Davis memset(&ip->client->packet.giaddr, 0, 186847c08596SBrooks Davis sizeof(ip->client->packet.giaddr)); 186947c08596SBrooks Davis memcpy(ip->client->packet.chaddr, 187047c08596SBrooks Davis ip->hw_address.haddr, ip->hw_address.hlen); 187147c08596SBrooks Davis } 187247c08596SBrooks Davis 187347c08596SBrooks Davis void 187447c08596SBrooks Davis make_decline(struct interface_info *ip, struct client_lease *lease) 187547c08596SBrooks Davis { 187647c08596SBrooks Davis struct tree_cache *options[256], message_type_tree; 187747c08596SBrooks Davis struct tree_cache requested_address_tree; 187847c08596SBrooks Davis struct tree_cache server_id_tree, client_id_tree; 187947c08596SBrooks Davis unsigned char decline = DHCPDECLINE; 188047c08596SBrooks Davis int i; 188147c08596SBrooks Davis 188247c08596SBrooks Davis memset(options, 0, sizeof(options)); 188347c08596SBrooks Davis memset(&ip->client->packet, 0, sizeof(ip->client->packet)); 188447c08596SBrooks Davis 188547c08596SBrooks Davis /* Set DHCP_MESSAGE_TYPE to DHCPDECLINE */ 188647c08596SBrooks Davis i = DHO_DHCP_MESSAGE_TYPE; 188747c08596SBrooks Davis options[i] = &message_type_tree; 188847c08596SBrooks Davis options[i]->value = &decline; 188947c08596SBrooks Davis options[i]->len = sizeof(decline); 189047c08596SBrooks Davis options[i]->buf_size = sizeof(decline); 189147c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 189247c08596SBrooks Davis 189347c08596SBrooks Davis /* Send back the server identifier... */ 189447c08596SBrooks Davis i = DHO_DHCP_SERVER_IDENTIFIER; 189547c08596SBrooks Davis options[i] = &server_id_tree; 189647c08596SBrooks Davis options[i]->value = lease->options[i].data; 189747c08596SBrooks Davis options[i]->len = lease->options[i].len; 189847c08596SBrooks Davis options[i]->buf_size = lease->options[i].len; 189947c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 190047c08596SBrooks Davis 190147c08596SBrooks Davis /* Send back the address we're declining. */ 190247c08596SBrooks Davis i = DHO_DHCP_REQUESTED_ADDRESS; 190347c08596SBrooks Davis options[i] = &requested_address_tree; 190447c08596SBrooks Davis options[i]->value = lease->address.iabuf; 190547c08596SBrooks Davis options[i]->len = lease->address.len; 190647c08596SBrooks Davis options[i]->buf_size = lease->address.len; 190747c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 190847c08596SBrooks Davis 190947c08596SBrooks Davis /* Send the uid if the user supplied one. */ 191047c08596SBrooks Davis i = DHO_DHCP_CLIENT_IDENTIFIER; 191147c08596SBrooks Davis if (ip->client->config->send_options[i].len) { 191247c08596SBrooks Davis options[i] = &client_id_tree; 191347c08596SBrooks Davis options[i]->value = ip->client->config->send_options[i].data; 191447c08596SBrooks Davis options[i]->len = ip->client->config->send_options[i].len; 191547c08596SBrooks Davis options[i]->buf_size = ip->client->config->send_options[i].len; 191647c08596SBrooks Davis options[i]->timeout = 0xFFFFFFFF; 191747c08596SBrooks Davis } 191847c08596SBrooks Davis 191947c08596SBrooks Davis 192047c08596SBrooks Davis /* Set up the option buffer... */ 192147c08596SBrooks Davis ip->client->packet_length = cons_options(NULL, &ip->client->packet, 0, 192247c08596SBrooks Davis options, 0, 0, 0, NULL, 0); 192347c08596SBrooks Davis if (ip->client->packet_length < BOOTP_MIN_LEN) 192447c08596SBrooks Davis ip->client->packet_length = BOOTP_MIN_LEN; 192547c08596SBrooks Davis 192647c08596SBrooks Davis ip->client->packet.op = BOOTREQUEST; 192747c08596SBrooks Davis ip->client->packet.htype = ip->hw_address.htype; 192847c08596SBrooks Davis ip->client->packet.hlen = ip->hw_address.hlen; 192947c08596SBrooks Davis ip->client->packet.hops = 0; 193047c08596SBrooks Davis ip->client->packet.xid = ip->client->xid; 193147c08596SBrooks Davis ip->client->packet.secs = 0; /* Filled in by send_request. */ 193247c08596SBrooks Davis ip->client->packet.flags = 0; 193347c08596SBrooks Davis 193447c08596SBrooks Davis /* ciaddr must always be zero. */ 193547c08596SBrooks Davis memset(&ip->client->packet.ciaddr, 0, 193647c08596SBrooks Davis sizeof(ip->client->packet.ciaddr)); 193747c08596SBrooks Davis memset(&ip->client->packet.yiaddr, 0, 193847c08596SBrooks Davis sizeof(ip->client->packet.yiaddr)); 193947c08596SBrooks Davis memset(&ip->client->packet.siaddr, 0, 194047c08596SBrooks Davis sizeof(ip->client->packet.siaddr)); 194147c08596SBrooks Davis memset(&ip->client->packet.giaddr, 0, 194247c08596SBrooks Davis sizeof(ip->client->packet.giaddr)); 194347c08596SBrooks Davis memcpy(ip->client->packet.chaddr, 194447c08596SBrooks Davis ip->hw_address.haddr, ip->hw_address.hlen); 194547c08596SBrooks Davis } 194647c08596SBrooks Davis 194747c08596SBrooks Davis void 194847c08596SBrooks Davis free_client_lease(struct client_lease *lease) 194947c08596SBrooks Davis { 195047c08596SBrooks Davis int i; 195147c08596SBrooks Davis 195247c08596SBrooks Davis if (lease->server_name) 195347c08596SBrooks Davis free(lease->server_name); 195447c08596SBrooks Davis if (lease->filename) 195547c08596SBrooks Davis free(lease->filename); 195647c08596SBrooks Davis for (i = 0; i < 256; i++) { 195747c08596SBrooks Davis if (lease->options[i].len) 195847c08596SBrooks Davis free(lease->options[i].data); 195947c08596SBrooks Davis } 196047c08596SBrooks Davis free(lease); 196147c08596SBrooks Davis } 196247c08596SBrooks Davis 196371c6c44dSEitan Adler static FILE *leaseFile; 196447c08596SBrooks Davis 196547c08596SBrooks Davis void 196647c08596SBrooks Davis rewrite_client_leases(void) 196747c08596SBrooks Davis { 196847c08596SBrooks Davis struct client_lease *lp; 19697008be5bSPawel Jakub Dawidek cap_rights_t rights; 197047c08596SBrooks Davis 197147c08596SBrooks Davis if (!leaseFile) { 197247c08596SBrooks Davis leaseFile = fopen(path_dhclient_db, "w"); 197347c08596SBrooks Davis if (!leaseFile) 197447c08596SBrooks Davis error("can't create %s: %m", path_dhclient_db); 197519342eeeSPatrick Kelsey cap_rights_init(&rights, CAP_FCNTL, CAP_FSTAT, CAP_FSYNC, 197619342eeeSPatrick Kelsey CAP_FTRUNCATE, CAP_SEEK, CAP_WRITE); 1977377421dfSMariusz Zaborski if (caph_rights_limit(fileno(leaseFile), &rights) < 0) { 1978fe5c7163SPawel Jakub Dawidek error("can't limit lease descriptor: %m"); 1979fe5c7163SPawel Jakub Dawidek } 1980377421dfSMariusz Zaborski if (caph_fcntls_limit(fileno(leaseFile), CAP_FCNTL_GETFL) < 0) { 198119342eeeSPatrick Kelsey error("can't limit lease descriptor fcntls: %m"); 198219342eeeSPatrick Kelsey } 198347c08596SBrooks Davis } else { 198447c08596SBrooks Davis fflush(leaseFile); 198547c08596SBrooks Davis rewind(leaseFile); 198647c08596SBrooks Davis } 198747c08596SBrooks Davis 198847c08596SBrooks Davis for (lp = ifi->client->leases; lp; lp = lp->next) 198947c08596SBrooks Davis write_client_lease(ifi, lp, 1); 199047c08596SBrooks Davis if (ifi->client->active) 199147c08596SBrooks Davis write_client_lease(ifi, ifi->client->active, 1); 199247c08596SBrooks Davis 199347c08596SBrooks Davis fflush(leaseFile); 199447c08596SBrooks Davis ftruncate(fileno(leaseFile), ftello(leaseFile)); 199547c08596SBrooks Davis fsync(fileno(leaseFile)); 199647c08596SBrooks Davis } 199747c08596SBrooks Davis 199847c08596SBrooks Davis void 199947c08596SBrooks Davis write_client_lease(struct interface_info *ip, struct client_lease *lease, 200047c08596SBrooks Davis int rewrite) 200147c08596SBrooks Davis { 200247c08596SBrooks Davis static int leases_written; 200347c08596SBrooks Davis struct tm *t; 200447c08596SBrooks Davis int i; 200547c08596SBrooks Davis 200647c08596SBrooks Davis if (!rewrite) { 200747c08596SBrooks Davis if (leases_written++ > 20) { 200847c08596SBrooks Davis rewrite_client_leases(); 200947c08596SBrooks Davis leases_written = 0; 201047c08596SBrooks Davis } 201147c08596SBrooks Davis } 201247c08596SBrooks Davis 201347c08596SBrooks Davis /* If the lease came from the config file, we don't need to stash 201447c08596SBrooks Davis a copy in the lease database. */ 201547c08596SBrooks Davis if (lease->is_static) 201647c08596SBrooks Davis return; 201747c08596SBrooks Davis 201847c08596SBrooks Davis if (!leaseFile) { /* XXX */ 201947c08596SBrooks Davis leaseFile = fopen(path_dhclient_db, "w"); 202047c08596SBrooks Davis if (!leaseFile) 202147c08596SBrooks Davis error("can't create %s: %m", path_dhclient_db); 202247c08596SBrooks Davis } 202347c08596SBrooks Davis 202447c08596SBrooks Davis fprintf(leaseFile, "lease {\n"); 202547c08596SBrooks Davis if (lease->is_bootp) 202647c08596SBrooks Davis fprintf(leaseFile, " bootp;\n"); 202747c08596SBrooks Davis fprintf(leaseFile, " interface \"%s\";\n", ip->name); 202847c08596SBrooks Davis fprintf(leaseFile, " fixed-address %s;\n", piaddr(lease->address)); 2029d32438c3SBruce M Simpson if (lease->nextserver.len == sizeof(inaddr_any) && 2030d32438c3SBruce M Simpson 0 != memcmp(lease->nextserver.iabuf, &inaddr_any, 2031d32438c3SBruce M Simpson sizeof(inaddr_any))) 2032d32438c3SBruce M Simpson fprintf(leaseFile, " next-server %s;\n", 2033d32438c3SBruce M Simpson piaddr(lease->nextserver)); 203447c08596SBrooks Davis if (lease->filename) 203547c08596SBrooks Davis fprintf(leaseFile, " filename \"%s\";\n", lease->filename); 203647c08596SBrooks Davis if (lease->server_name) 203747c08596SBrooks Davis fprintf(leaseFile, " server-name \"%s\";\n", 203847c08596SBrooks Davis lease->server_name); 203947c08596SBrooks Davis if (lease->medium) 204047c08596SBrooks Davis fprintf(leaseFile, " medium \"%s\";\n", lease->medium->string); 204147c08596SBrooks Davis for (i = 0; i < 256; i++) 204247c08596SBrooks Davis if (lease->options[i].len) 204347c08596SBrooks Davis fprintf(leaseFile, " option %s %s;\n", 204447c08596SBrooks Davis dhcp_options[i].name, 204547c08596SBrooks Davis pretty_print_option(i, lease->options[i].data, 204647c08596SBrooks Davis lease->options[i].len, 1, 1)); 204747c08596SBrooks Davis 204847c08596SBrooks Davis t = gmtime(&lease->renewal); 204947c08596SBrooks Davis fprintf(leaseFile, " renew %d %d/%d/%d %02d:%02d:%02d;\n", 205047c08596SBrooks Davis t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday, 205147c08596SBrooks Davis t->tm_hour, t->tm_min, t->tm_sec); 205247c08596SBrooks Davis t = gmtime(&lease->rebind); 205347c08596SBrooks Davis fprintf(leaseFile, " rebind %d %d/%d/%d %02d:%02d:%02d;\n", 205447c08596SBrooks Davis t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday, 205547c08596SBrooks Davis t->tm_hour, t->tm_min, t->tm_sec); 205647c08596SBrooks Davis t = gmtime(&lease->expiry); 205747c08596SBrooks Davis fprintf(leaseFile, " expire %d %d/%d/%d %02d:%02d:%02d;\n", 205847c08596SBrooks Davis t->tm_wday, t->tm_year + 1900, t->tm_mon + 1, t->tm_mday, 205947c08596SBrooks Davis t->tm_hour, t->tm_min, t->tm_sec); 206047c08596SBrooks Davis fprintf(leaseFile, "}\n"); 206147c08596SBrooks Davis fflush(leaseFile); 206247c08596SBrooks Davis } 206347c08596SBrooks Davis 206447c08596SBrooks Davis void 206579a1d195SAlan Somers script_init(const char *reason, struct string_list *medium) 206647c08596SBrooks Davis { 206747c08596SBrooks Davis size_t len, mediumlen = 0; 206847c08596SBrooks Davis struct imsg_hdr hdr; 206947c08596SBrooks Davis struct buf *buf; 207047c08596SBrooks Davis int errs; 207147c08596SBrooks Davis 207247c08596SBrooks Davis if (medium != NULL && medium->string != NULL) 207347c08596SBrooks Davis mediumlen = strlen(medium->string); 207447c08596SBrooks Davis 207547c08596SBrooks Davis hdr.code = IMSG_SCRIPT_INIT; 207647c08596SBrooks Davis hdr.len = sizeof(struct imsg_hdr) + 207747c08596SBrooks Davis sizeof(size_t) + mediumlen + 207847c08596SBrooks Davis sizeof(size_t) + strlen(reason); 207947c08596SBrooks Davis 208047c08596SBrooks Davis if ((buf = buf_open(hdr.len)) == NULL) 208147c08596SBrooks Davis error("buf_open: %m"); 208247c08596SBrooks Davis 208347c08596SBrooks Davis errs = 0; 208447c08596SBrooks Davis errs += buf_add(buf, &hdr, sizeof(hdr)); 208547c08596SBrooks Davis errs += buf_add(buf, &mediumlen, sizeof(mediumlen)); 208647c08596SBrooks Davis if (mediumlen > 0) 208747c08596SBrooks Davis errs += buf_add(buf, medium->string, mediumlen); 208847c08596SBrooks Davis len = strlen(reason); 208947c08596SBrooks Davis errs += buf_add(buf, &len, sizeof(len)); 209047c08596SBrooks Davis errs += buf_add(buf, reason, len); 209147c08596SBrooks Davis 209247c08596SBrooks Davis if (errs) 209347c08596SBrooks Davis error("buf_add: %m"); 209447c08596SBrooks Davis 209547c08596SBrooks Davis if (buf_close(privfd, buf) == -1) 209647c08596SBrooks Davis error("buf_close: %m"); 209747c08596SBrooks Davis } 209847c08596SBrooks Davis 209947c08596SBrooks Davis void 210079a1d195SAlan Somers priv_script_init(const char *reason, char *medium) 210147c08596SBrooks Davis { 210247c08596SBrooks Davis struct interface_info *ip = ifi; 210347c08596SBrooks Davis 210447c08596SBrooks Davis if (ip) { 210547c08596SBrooks Davis ip->client->scriptEnvsize = 100; 210647c08596SBrooks Davis if (ip->client->scriptEnv == NULL) 210747c08596SBrooks Davis ip->client->scriptEnv = 210847c08596SBrooks Davis malloc(ip->client->scriptEnvsize * sizeof(char *)); 210947c08596SBrooks Davis if (ip->client->scriptEnv == NULL) 211047c08596SBrooks Davis error("script_init: no memory for environment"); 211147c08596SBrooks Davis 211247c08596SBrooks Davis ip->client->scriptEnv[0] = strdup(CLIENT_PATH); 211347c08596SBrooks Davis if (ip->client->scriptEnv[0] == NULL) 211447c08596SBrooks Davis error("script_init: no memory for environment"); 211547c08596SBrooks Davis 211647c08596SBrooks Davis ip->client->scriptEnv[1] = NULL; 211747c08596SBrooks Davis 211847c08596SBrooks Davis script_set_env(ip->client, "", "interface", ip->name); 211947c08596SBrooks Davis 212047c08596SBrooks Davis if (medium) 212147c08596SBrooks Davis script_set_env(ip->client, "", "medium", medium); 212247c08596SBrooks Davis 212347c08596SBrooks Davis script_set_env(ip->client, "", "reason", reason); 212447c08596SBrooks Davis } 212547c08596SBrooks Davis } 212647c08596SBrooks Davis 212747c08596SBrooks Davis void 212879a1d195SAlan Somers priv_script_write_params(const char *prefix, struct client_lease *lease) 212947c08596SBrooks Davis { 213047c08596SBrooks Davis struct interface_info *ip = ifi; 213140767e22SBrooks Davis u_int8_t dbuf[1500], *dp = NULL; 2132afe6f835SAlan Somers int i; 2133afe6f835SAlan Somers size_t len; 213447c08596SBrooks Davis char tbuf[128]; 213547c08596SBrooks Davis 213647c08596SBrooks Davis script_set_env(ip->client, prefix, "ip_address", 213747c08596SBrooks Davis piaddr(lease->address)); 213847c08596SBrooks Davis 213940767e22SBrooks Davis if (ip->client->config->default_actions[DHO_SUBNET_MASK] == 214040767e22SBrooks Davis ACTION_SUPERSEDE) { 214140767e22SBrooks Davis dp = ip->client->config->defaults[DHO_SUBNET_MASK].data; 214240767e22SBrooks Davis len = ip->client->config->defaults[DHO_SUBNET_MASK].len; 214340767e22SBrooks Davis } else { 214440767e22SBrooks Davis dp = lease->options[DHO_SUBNET_MASK].data; 214540767e22SBrooks Davis len = lease->options[DHO_SUBNET_MASK].len; 214640767e22SBrooks Davis } 214740767e22SBrooks Davis if (len && (len < sizeof(lease->address.iabuf))) { 214847c08596SBrooks Davis struct iaddr netmask, subnet, broadcast; 214947c08596SBrooks Davis 215040767e22SBrooks Davis memcpy(netmask.iabuf, dp, len); 215140767e22SBrooks Davis netmask.len = len; 215247c08596SBrooks Davis subnet = subnet_number(lease->address, netmask); 215347c08596SBrooks Davis if (subnet.len) { 215447c08596SBrooks Davis script_set_env(ip->client, prefix, "network_number", 215547c08596SBrooks Davis piaddr(subnet)); 215647c08596SBrooks Davis if (!lease->options[DHO_BROADCAST_ADDRESS].len) { 215747c08596SBrooks Davis broadcast = broadcast_addr(subnet, netmask); 215847c08596SBrooks Davis if (broadcast.len) 215947c08596SBrooks Davis script_set_env(ip->client, prefix, 216047c08596SBrooks Davis "broadcast_address", 216147c08596SBrooks Davis piaddr(broadcast)); 216247c08596SBrooks Davis } 216347c08596SBrooks Davis } 216447c08596SBrooks Davis } 216547c08596SBrooks Davis 216647c08596SBrooks Davis if (lease->filename) 216747c08596SBrooks Davis script_set_env(ip->client, prefix, "filename", lease->filename); 216847c08596SBrooks Davis if (lease->server_name) 216947c08596SBrooks Davis script_set_env(ip->client, prefix, "server_name", 217047c08596SBrooks Davis lease->server_name); 217147c08596SBrooks Davis for (i = 0; i < 256; i++) { 217240767e22SBrooks Davis len = 0; 217347c08596SBrooks Davis 217447c08596SBrooks Davis if (ip->client->config->defaults[i].len) { 217547c08596SBrooks Davis if (lease->options[i].len) { 217647c08596SBrooks Davis switch ( 217747c08596SBrooks Davis ip->client->config->default_actions[i]) { 217847c08596SBrooks Davis case ACTION_DEFAULT: 217947c08596SBrooks Davis dp = lease->options[i].data; 218047c08596SBrooks Davis len = lease->options[i].len; 218147c08596SBrooks Davis break; 218247c08596SBrooks Davis case ACTION_SUPERSEDE: 218347c08596SBrooks Davis supersede: 218447c08596SBrooks Davis dp = ip->client-> 218547c08596SBrooks Davis config->defaults[i].data; 218647c08596SBrooks Davis len = ip->client-> 218747c08596SBrooks Davis config->defaults[i].len; 218847c08596SBrooks Davis break; 218947c08596SBrooks Davis case ACTION_PREPEND: 219047c08596SBrooks Davis len = ip->client-> 219147c08596SBrooks Davis config->defaults[i].len + 219247c08596SBrooks Davis lease->options[i].len; 2193043bcc8dSBrian Somers if (len >= sizeof(dbuf)) { 219447c08596SBrooks Davis warning("no space to %s %s", 219547c08596SBrooks Davis "prepend option", 219647c08596SBrooks Davis dhcp_options[i].name); 219747c08596SBrooks Davis goto supersede; 219847c08596SBrooks Davis } 219947c08596SBrooks Davis dp = dbuf; 220047c08596SBrooks Davis memcpy(dp, 220147c08596SBrooks Davis ip->client-> 220247c08596SBrooks Davis config->defaults[i].data, 220347c08596SBrooks Davis ip->client-> 220447c08596SBrooks Davis config->defaults[i].len); 220547c08596SBrooks Davis memcpy(dp + ip->client-> 220647c08596SBrooks Davis config->defaults[i].len, 220747c08596SBrooks Davis lease->options[i].data, 220847c08596SBrooks Davis lease->options[i].len); 220947c08596SBrooks Davis dp[len] = '\0'; 221047c08596SBrooks Davis break; 221147c08596SBrooks Davis case ACTION_APPEND: 2212043bcc8dSBrian Somers /* 2213043bcc8dSBrian Somers * When we append, we assume that we're 2214043bcc8dSBrian Somers * appending to text. Some MS servers 2215043bcc8dSBrian Somers * include a NUL byte at the end of 2216043bcc8dSBrian Somers * the search string provided. 2217043bcc8dSBrian Somers */ 221847c08596SBrooks Davis len = ip->client-> 221947c08596SBrooks Davis config->defaults[i].len + 222047c08596SBrooks Davis lease->options[i].len; 2221043bcc8dSBrian Somers if (len >= sizeof(dbuf)) { 222247c08596SBrooks Davis warning("no space to %s %s", 222347c08596SBrooks Davis "append option", 222447c08596SBrooks Davis dhcp_options[i].name); 222547c08596SBrooks Davis goto supersede; 222647c08596SBrooks Davis } 2227043bcc8dSBrian Somers memcpy(dbuf, 222847c08596SBrooks Davis lease->options[i].data, 222947c08596SBrooks Davis lease->options[i].len); 2230043bcc8dSBrian Somers for (dp = dbuf + lease->options[i].len; 2231043bcc8dSBrian Somers dp > dbuf; dp--, len--) 2232043bcc8dSBrian Somers if (dp[-1] != '\0') 2233043bcc8dSBrian Somers break; 2234043bcc8dSBrian Somers memcpy(dp, 223547c08596SBrooks Davis ip->client-> 223647c08596SBrooks Davis config->defaults[i].data, 223747c08596SBrooks Davis ip->client-> 223847c08596SBrooks Davis config->defaults[i].len); 2239043bcc8dSBrian Somers dp = dbuf; 224047c08596SBrooks Davis dp[len] = '\0'; 224147c08596SBrooks Davis } 224247c08596SBrooks Davis } else { 224347c08596SBrooks Davis dp = ip->client-> 224447c08596SBrooks Davis config->defaults[i].data; 224547c08596SBrooks Davis len = ip->client-> 224647c08596SBrooks Davis config->defaults[i].len; 224747c08596SBrooks Davis } 224847c08596SBrooks Davis } else if (lease->options[i].len) { 224947c08596SBrooks Davis len = lease->options[i].len; 225047c08596SBrooks Davis dp = lease->options[i].data; 225147c08596SBrooks Davis } else { 225247c08596SBrooks Davis len = 0; 225347c08596SBrooks Davis } 225447c08596SBrooks Davis if (len) { 225547c08596SBrooks Davis char name[256]; 225647c08596SBrooks Davis 225747c08596SBrooks Davis if (dhcp_option_ev_name(name, sizeof(name), 225847c08596SBrooks Davis &dhcp_options[i])) 225947c08596SBrooks Davis script_set_env(ip->client, prefix, name, 226047c08596SBrooks Davis pretty_print_option(i, dp, len, 0, 0)); 226147c08596SBrooks Davis } 226247c08596SBrooks Davis } 226347c08596SBrooks Davis snprintf(tbuf, sizeof(tbuf), "%d", (int)lease->expiry); 226447c08596SBrooks Davis script_set_env(ip->client, prefix, "expiry", tbuf); 226547c08596SBrooks Davis } 226647c08596SBrooks Davis 226747c08596SBrooks Davis void 226879a1d195SAlan Somers script_write_params(const char *prefix, struct client_lease *lease) 226947c08596SBrooks Davis { 227047c08596SBrooks Davis size_t fn_len = 0, sn_len = 0, pr_len = 0; 227147c08596SBrooks Davis struct imsg_hdr hdr; 227247c08596SBrooks Davis struct buf *buf; 227347c08596SBrooks Davis int errs, i; 227447c08596SBrooks Davis 227547c08596SBrooks Davis if (lease->filename != NULL) 227647c08596SBrooks Davis fn_len = strlen(lease->filename); 227747c08596SBrooks Davis if (lease->server_name != NULL) 227847c08596SBrooks Davis sn_len = strlen(lease->server_name); 227947c08596SBrooks Davis if (prefix != NULL) 228047c08596SBrooks Davis pr_len = strlen(prefix); 228147c08596SBrooks Davis 228247c08596SBrooks Davis hdr.code = IMSG_SCRIPT_WRITE_PARAMS; 2283afe6f835SAlan Somers hdr.len = sizeof(hdr) + sizeof(*lease) + 2284afe6f835SAlan Somers sizeof(fn_len) + fn_len + sizeof(sn_len) + sn_len + 2285afe6f835SAlan Somers sizeof(pr_len) + pr_len; 228647c08596SBrooks Davis 2287afe6f835SAlan Somers for (i = 0; i < 256; i++) { 2288afe6f835SAlan Somers hdr.len += sizeof(lease->options[i].len); 2289afe6f835SAlan Somers hdr.len += lease->options[i].len; 2290afe6f835SAlan Somers } 229147c08596SBrooks Davis 229247c08596SBrooks Davis scripttime = time(NULL); 229347c08596SBrooks Davis 229447c08596SBrooks Davis if ((buf = buf_open(hdr.len)) == NULL) 229547c08596SBrooks Davis error("buf_open: %m"); 229647c08596SBrooks Davis 229747c08596SBrooks Davis errs = 0; 229847c08596SBrooks Davis errs += buf_add(buf, &hdr, sizeof(hdr)); 2299afe6f835SAlan Somers errs += buf_add(buf, lease, sizeof(*lease)); 230047c08596SBrooks Davis errs += buf_add(buf, &fn_len, sizeof(fn_len)); 230147c08596SBrooks Davis errs += buf_add(buf, lease->filename, fn_len); 230247c08596SBrooks Davis errs += buf_add(buf, &sn_len, sizeof(sn_len)); 230347c08596SBrooks Davis errs += buf_add(buf, lease->server_name, sn_len); 230447c08596SBrooks Davis errs += buf_add(buf, &pr_len, sizeof(pr_len)); 230547c08596SBrooks Davis errs += buf_add(buf, prefix, pr_len); 230647c08596SBrooks Davis 230747c08596SBrooks Davis for (i = 0; i < 256; i++) { 230847c08596SBrooks Davis errs += buf_add(buf, &lease->options[i].len, 230947c08596SBrooks Davis sizeof(lease->options[i].len)); 231047c08596SBrooks Davis errs += buf_add(buf, lease->options[i].data, 231147c08596SBrooks Davis lease->options[i].len); 231247c08596SBrooks Davis } 231347c08596SBrooks Davis 231447c08596SBrooks Davis if (errs) 231547c08596SBrooks Davis error("buf_add: %m"); 231647c08596SBrooks Davis 231747c08596SBrooks Davis if (buf_close(privfd, buf) == -1) 231847c08596SBrooks Davis error("buf_close: %m"); 231947c08596SBrooks Davis } 232047c08596SBrooks Davis 232147c08596SBrooks Davis int 232247c08596SBrooks Davis script_go(void) 232347c08596SBrooks Davis { 232447c08596SBrooks Davis struct imsg_hdr hdr; 232547c08596SBrooks Davis struct buf *buf; 232647c08596SBrooks Davis int ret; 232747c08596SBrooks Davis 232847c08596SBrooks Davis hdr.code = IMSG_SCRIPT_GO; 232947c08596SBrooks Davis hdr.len = sizeof(struct imsg_hdr); 233047c08596SBrooks Davis 233147c08596SBrooks Davis if ((buf = buf_open(hdr.len)) == NULL) 233247c08596SBrooks Davis error("buf_open: %m"); 233347c08596SBrooks Davis 233447c08596SBrooks Davis if (buf_add(buf, &hdr, sizeof(hdr))) 233547c08596SBrooks Davis error("buf_add: %m"); 233647c08596SBrooks Davis 233747c08596SBrooks Davis if (buf_close(privfd, buf) == -1) 233847c08596SBrooks Davis error("buf_close: %m"); 233947c08596SBrooks Davis 234047c08596SBrooks Davis bzero(&hdr, sizeof(hdr)); 234147c08596SBrooks Davis buf_read(privfd, &hdr, sizeof(hdr)); 234247c08596SBrooks Davis if (hdr.code != IMSG_SCRIPT_GO_RET) 234347c08596SBrooks Davis error("unexpected msg type %u", hdr.code); 234447c08596SBrooks Davis if (hdr.len != sizeof(hdr) + sizeof(int)) 234547c08596SBrooks Davis error("received corrupted message"); 234647c08596SBrooks Davis buf_read(privfd, &ret, sizeof(ret)); 234747c08596SBrooks Davis 23486964abefSBrian Somers scripttime = time(NULL); 23496964abefSBrian Somers 235047c08596SBrooks Davis return (ret); 235147c08596SBrooks Davis } 235247c08596SBrooks Davis 235347c08596SBrooks Davis int 235447c08596SBrooks Davis priv_script_go(void) 235547c08596SBrooks Davis { 235647c08596SBrooks Davis char *scriptName, *argv[2], **envp, *epp[3], reason[] = "REASON=NBI"; 235747c08596SBrooks Davis static char client_path[] = CLIENT_PATH; 235847c08596SBrooks Davis struct interface_info *ip = ifi; 235947c08596SBrooks Davis int pid, wpid, wstatus; 236047c08596SBrooks Davis 236147c08596SBrooks Davis scripttime = time(NULL); 236247c08596SBrooks Davis 236347c08596SBrooks Davis if (ip) { 236447c08596SBrooks Davis scriptName = ip->client->config->script_name; 236547c08596SBrooks Davis envp = ip->client->scriptEnv; 236647c08596SBrooks Davis } else { 236747c08596SBrooks Davis scriptName = top_level_config.script_name; 236847c08596SBrooks Davis epp[0] = reason; 236947c08596SBrooks Davis epp[1] = client_path; 237047c08596SBrooks Davis epp[2] = NULL; 237147c08596SBrooks Davis envp = epp; 237247c08596SBrooks Davis } 237347c08596SBrooks Davis 237447c08596SBrooks Davis argv[0] = scriptName; 237547c08596SBrooks Davis argv[1] = NULL; 237647c08596SBrooks Davis 237747c08596SBrooks Davis pid = fork(); 237847c08596SBrooks Davis if (pid < 0) { 237947c08596SBrooks Davis error("fork: %m"); 238047c08596SBrooks Davis wstatus = 0; 238147c08596SBrooks Davis } else if (pid) { 238247c08596SBrooks Davis do { 238347c08596SBrooks Davis wpid = wait(&wstatus); 238447c08596SBrooks Davis } while (wpid != pid && wpid > 0); 238547c08596SBrooks Davis if (wpid < 0) { 238647c08596SBrooks Davis error("wait: %m"); 238747c08596SBrooks Davis wstatus = 0; 238847c08596SBrooks Davis } 238947c08596SBrooks Davis } else { 239047c08596SBrooks Davis execve(scriptName, argv, envp); 239147c08596SBrooks Davis error("execve (%s, ...): %m", scriptName); 239247c08596SBrooks Davis } 239347c08596SBrooks Davis 239447c08596SBrooks Davis if (ip) 239547c08596SBrooks Davis script_flush_env(ip->client); 239647c08596SBrooks Davis 23973b08e0fcSJilles Tjoelker return (WIFEXITED(wstatus) ? 23983b08e0fcSJilles Tjoelker WEXITSTATUS(wstatus) : 128 + WTERMSIG(wstatus)); 239947c08596SBrooks Davis } 240047c08596SBrooks Davis 240147c08596SBrooks Davis void 240247c08596SBrooks Davis script_set_env(struct client_state *client, const char *prefix, 240347c08596SBrooks Davis const char *name, const char *value) 240447c08596SBrooks Davis { 2405afe6f835SAlan Somers int i, namelen; 2406afe6f835SAlan Somers size_t j; 240747c08596SBrooks Davis 2408dd09ce39SSepherosa Ziehau /* No `` or $() command substitution allowed in environment values! */ 2409dd09ce39SSepherosa Ziehau for (j=0; j < strlen(value); j++) 2410dd09ce39SSepherosa Ziehau switch (value[j]) { 2411dd09ce39SSepherosa Ziehau case '`': 2412dd09ce39SSepherosa Ziehau case '$': 2413dd09ce39SSepherosa Ziehau warning("illegal character (%c) in value '%s'", 2414dd09ce39SSepherosa Ziehau value[j], value); 2415dd09ce39SSepherosa Ziehau /* Ignore this option */ 2416dd09ce39SSepherosa Ziehau return; 2417dd09ce39SSepherosa Ziehau } 2418dd09ce39SSepherosa Ziehau 241947c08596SBrooks Davis namelen = strlen(name); 242047c08596SBrooks Davis 242147c08596SBrooks Davis for (i = 0; client->scriptEnv[i]; i++) 242247c08596SBrooks Davis if (strncmp(client->scriptEnv[i], name, namelen) == 0 && 242347c08596SBrooks Davis client->scriptEnv[i][namelen] == '=') 242447c08596SBrooks Davis break; 242547c08596SBrooks Davis 242647c08596SBrooks Davis if (client->scriptEnv[i]) 242747c08596SBrooks Davis /* Reuse the slot. */ 242847c08596SBrooks Davis free(client->scriptEnv[i]); 242947c08596SBrooks Davis else { 243047c08596SBrooks Davis /* New variable. Expand if necessary. */ 243147c08596SBrooks Davis if (i >= client->scriptEnvsize - 1) { 243247c08596SBrooks Davis char **newscriptEnv; 243347c08596SBrooks Davis int newscriptEnvsize = client->scriptEnvsize + 50; 243447c08596SBrooks Davis 243547c08596SBrooks Davis newscriptEnv = realloc(client->scriptEnv, 243647c08596SBrooks Davis newscriptEnvsize); 243747c08596SBrooks Davis if (newscriptEnv == NULL) { 243847c08596SBrooks Davis free(client->scriptEnv); 243947c08596SBrooks Davis client->scriptEnv = NULL; 244047c08596SBrooks Davis client->scriptEnvsize = 0; 244147c08596SBrooks Davis error("script_set_env: no memory for variable"); 244247c08596SBrooks Davis } 244347c08596SBrooks Davis client->scriptEnv = newscriptEnv; 244447c08596SBrooks Davis client->scriptEnvsize = newscriptEnvsize; 244547c08596SBrooks Davis } 244647c08596SBrooks Davis /* need to set the NULL pointer at end of array beyond 244747c08596SBrooks Davis the new slot. */ 244847c08596SBrooks Davis client->scriptEnv[i + 1] = NULL; 244947c08596SBrooks Davis } 245047c08596SBrooks Davis /* Allocate space and format the variable in the appropriate slot. */ 245147c08596SBrooks Davis client->scriptEnv[i] = malloc(strlen(prefix) + strlen(name) + 1 + 245247c08596SBrooks Davis strlen(value) + 1); 245347c08596SBrooks Davis if (client->scriptEnv[i] == NULL) 245447c08596SBrooks Davis error("script_set_env: no memory for variable assignment"); 245547c08596SBrooks Davis snprintf(client->scriptEnv[i], strlen(prefix) + strlen(name) + 245647c08596SBrooks Davis 1 + strlen(value) + 1, "%s%s=%s", prefix, name, value); 245747c08596SBrooks Davis } 245847c08596SBrooks Davis 245947c08596SBrooks Davis void 246047c08596SBrooks Davis script_flush_env(struct client_state *client) 246147c08596SBrooks Davis { 246247c08596SBrooks Davis int i; 246347c08596SBrooks Davis 246447c08596SBrooks Davis for (i = 0; client->scriptEnv[i]; i++) { 246547c08596SBrooks Davis free(client->scriptEnv[i]); 246647c08596SBrooks Davis client->scriptEnv[i] = NULL; 246747c08596SBrooks Davis } 246847c08596SBrooks Davis client->scriptEnvsize = 0; 246947c08596SBrooks Davis } 247047c08596SBrooks Davis 247147c08596SBrooks Davis int 247247c08596SBrooks Davis dhcp_option_ev_name(char *buf, size_t buflen, struct option *option) 247347c08596SBrooks Davis { 2474afe6f835SAlan Somers size_t i; 247547c08596SBrooks Davis 247647c08596SBrooks Davis for (i = 0; option->name[i]; i++) { 247747c08596SBrooks Davis if (i + 1 == buflen) 247847c08596SBrooks Davis return 0; 247947c08596SBrooks Davis if (option->name[i] == '-') 248047c08596SBrooks Davis buf[i] = '_'; 248147c08596SBrooks Davis else 248247c08596SBrooks Davis buf[i] = option->name[i]; 248347c08596SBrooks Davis } 248447c08596SBrooks Davis 248547c08596SBrooks Davis buf[i] = 0; 248647c08596SBrooks Davis return 1; 248747c08596SBrooks Davis } 248847c08596SBrooks Davis 248947c08596SBrooks Davis void 249047c08596SBrooks Davis go_daemon(void) 249147c08596SBrooks Davis { 249247c08596SBrooks Davis static int state = 0; 24937008be5bSPawel Jakub Dawidek cap_rights_t rights; 249447c08596SBrooks Davis 249547c08596SBrooks Davis if (no_daemon || state) 249647c08596SBrooks Davis return; 249747c08596SBrooks Davis 249847c08596SBrooks Davis state = 1; 249947c08596SBrooks Davis 250047c08596SBrooks Davis /* Stop logging to stderr... */ 250147c08596SBrooks Davis log_perror = 0; 250247c08596SBrooks Davis 250331698405SMariusz Zaborski if (daemonfd(-1, nullfd) == -1) 250447c08596SBrooks Davis error("daemon"); 250547c08596SBrooks Davis 25067008be5bSPawel Jakub Dawidek cap_rights_init(&rights); 25077008be5bSPawel Jakub Dawidek 2508377421dfSMariusz Zaborski if (pidfile != NULL) { 250923f39c90SDag-Erling Smørgrav pidfile_write(pidfile); 251023f39c90SDag-Erling Smørgrav 2511377421dfSMariusz Zaborski if (caph_rights_limit(pidfile_fileno(pidfile), &rights) < 0) 2512377421dfSMariusz Zaborski error("can't limit pidfile descriptor: %m"); 2513377421dfSMariusz Zaborski } 2514377421dfSMariusz Zaborski 251547c08596SBrooks Davis if (nullfd != -1) { 251647c08596SBrooks Davis close(nullfd); 251747c08596SBrooks Davis nullfd = -1; 251847c08596SBrooks Davis } 2519a6f38228SPawel Jakub Dawidek 2520377421dfSMariusz Zaborski if (caph_rights_limit(STDIN_FILENO, &rights) < 0) 2521a6f38228SPawel Jakub Dawidek error("can't limit stdin: %m"); 25227008be5bSPawel Jakub Dawidek cap_rights_init(&rights, CAP_WRITE); 2523377421dfSMariusz Zaborski if (caph_rights_limit(STDOUT_FILENO, &rights) < 0) 2524a6f38228SPawel Jakub Dawidek error("can't limit stdout: %m"); 2525377421dfSMariusz Zaborski if (caph_rights_limit(STDERR_FILENO, &rights) < 0) 2526a6f38228SPawel Jakub Dawidek error("can't limit stderr: %m"); 252747c08596SBrooks Davis } 252847c08596SBrooks Davis 252947c08596SBrooks Davis int 253047c08596SBrooks Davis check_option(struct client_lease *l, int option) 253147c08596SBrooks Davis { 253279a1d195SAlan Somers const char *opbuf; 253379a1d195SAlan Somers const char *sbuf; 253447c08596SBrooks Davis 253547c08596SBrooks Davis /* we use this, since this is what gets passed to dhclient-script */ 253647c08596SBrooks Davis 253747c08596SBrooks Davis opbuf = pretty_print_option(option, l->options[option].data, 253847c08596SBrooks Davis l->options[option].len, 0, 0); 253947c08596SBrooks Davis 254047c08596SBrooks Davis sbuf = option_as_string(option, l->options[option].data, 254147c08596SBrooks Davis l->options[option].len); 254247c08596SBrooks Davis 254347c08596SBrooks Davis switch (option) { 254447c08596SBrooks Davis case DHO_SUBNET_MASK: 254547c08596SBrooks Davis case DHO_TIME_SERVERS: 254647c08596SBrooks Davis case DHO_NAME_SERVERS: 254747c08596SBrooks Davis case DHO_ROUTERS: 254847c08596SBrooks Davis case DHO_DOMAIN_NAME_SERVERS: 254947c08596SBrooks Davis case DHO_LOG_SERVERS: 255047c08596SBrooks Davis case DHO_COOKIE_SERVERS: 255147c08596SBrooks Davis case DHO_LPR_SERVERS: 255247c08596SBrooks Davis case DHO_IMPRESS_SERVERS: 255347c08596SBrooks Davis case DHO_RESOURCE_LOCATION_SERVERS: 255447c08596SBrooks Davis case DHO_SWAP_SERVER: 255547c08596SBrooks Davis case DHO_BROADCAST_ADDRESS: 255647c08596SBrooks Davis case DHO_NIS_SERVERS: 255747c08596SBrooks Davis case DHO_NTP_SERVERS: 255847c08596SBrooks Davis case DHO_NETBIOS_NAME_SERVERS: 255947c08596SBrooks Davis case DHO_NETBIOS_DD_SERVER: 256047c08596SBrooks Davis case DHO_FONT_SERVERS: 256147c08596SBrooks Davis case DHO_DHCP_SERVER_IDENTIFIER: 256238e755fdSBrooks Davis case DHO_NISPLUS_SERVERS: 256338e755fdSBrooks Davis case DHO_MOBILE_IP_HOME_AGENT: 2564a36c0b6bSBrooks Davis case DHO_SMTP_SERVER: 2565a36c0b6bSBrooks Davis case DHO_POP_SERVER: 2566a36c0b6bSBrooks Davis case DHO_NNTP_SERVER: 2567a36c0b6bSBrooks Davis case DHO_WWW_SERVER: 2568a36c0b6bSBrooks Davis case DHO_FINGER_SERVER: 2569a36c0b6bSBrooks Davis case DHO_IRC_SERVER: 257038e755fdSBrooks Davis case DHO_STREETTALK_SERVER: 257138e755fdSBrooks Davis case DHO_STREETTALK_DA_SERVER: 257247c08596SBrooks Davis if (!ipv4addrs(opbuf)) { 257347c08596SBrooks Davis warning("Invalid IP address in option: %s", opbuf); 257447c08596SBrooks Davis return (0); 257547c08596SBrooks Davis } 257647c08596SBrooks Davis return (1) ; 257747c08596SBrooks Davis case DHO_HOST_NAME: 257847c08596SBrooks Davis case DHO_NIS_DOMAIN: 257938e755fdSBrooks Davis case DHO_NISPLUS_DOMAIN: 258038e755fdSBrooks Davis case DHO_TFTP_SERVER_NAME: 258147c08596SBrooks Davis if (!res_hnok(sbuf)) { 258247c08596SBrooks Davis warning("Bogus Host Name option %d: %s (%s)", option, 258347c08596SBrooks Davis sbuf, opbuf); 258482dbbc41SBrooks Davis l->options[option].len = 0; 258582dbbc41SBrooks Davis free(l->options[option].data); 258647c08596SBrooks Davis } 258747c08596SBrooks Davis return (1); 2588b388f1cbSBrooks Davis case DHO_DOMAIN_NAME: 2589409139f0SJean-Sébastien Pédron case DHO_DOMAIN_SEARCH: 2590f954ec0bSBrooks Davis if (!res_hnok(sbuf)) { 2591f954ec0bSBrooks Davis if (!check_search(sbuf)) { 2592f954ec0bSBrooks Davis warning("Bogus domain search list %d: %s (%s)", 2593f954ec0bSBrooks Davis option, sbuf, opbuf); 259482dbbc41SBrooks Davis l->options[option].len = 0; 259582dbbc41SBrooks Davis free(l->options[option].data); 2596f954ec0bSBrooks Davis } 2597f954ec0bSBrooks Davis } 2598f954ec0bSBrooks Davis return (1); 259947c08596SBrooks Davis case DHO_PAD: 260047c08596SBrooks Davis case DHO_TIME_OFFSET: 260147c08596SBrooks Davis case DHO_BOOT_SIZE: 260247c08596SBrooks Davis case DHO_MERIT_DUMP: 260347c08596SBrooks Davis case DHO_ROOT_PATH: 260447c08596SBrooks Davis case DHO_EXTENSIONS_PATH: 260547c08596SBrooks Davis case DHO_IP_FORWARDING: 260647c08596SBrooks Davis case DHO_NON_LOCAL_SOURCE_ROUTING: 260747c08596SBrooks Davis case DHO_POLICY_FILTER: 260847c08596SBrooks Davis case DHO_MAX_DGRAM_REASSEMBLY: 260947c08596SBrooks Davis case DHO_DEFAULT_IP_TTL: 261047c08596SBrooks Davis case DHO_PATH_MTU_AGING_TIMEOUT: 261147c08596SBrooks Davis case DHO_PATH_MTU_PLATEAU_TABLE: 261247c08596SBrooks Davis case DHO_INTERFACE_MTU: 261347c08596SBrooks Davis case DHO_ALL_SUBNETS_LOCAL: 261447c08596SBrooks Davis case DHO_PERFORM_MASK_DISCOVERY: 261547c08596SBrooks Davis case DHO_MASK_SUPPLIER: 261647c08596SBrooks Davis case DHO_ROUTER_DISCOVERY: 261747c08596SBrooks Davis case DHO_ROUTER_SOLICITATION_ADDRESS: 261847c08596SBrooks Davis case DHO_STATIC_ROUTES: 261947c08596SBrooks Davis case DHO_TRAILER_ENCAPSULATION: 262047c08596SBrooks Davis case DHO_ARP_CACHE_TIMEOUT: 262147c08596SBrooks Davis case DHO_IEEE802_3_ENCAPSULATION: 262247c08596SBrooks Davis case DHO_DEFAULT_TCP_TTL: 262347c08596SBrooks Davis case DHO_TCP_KEEPALIVE_INTERVAL: 262447c08596SBrooks Davis case DHO_TCP_KEEPALIVE_GARBAGE: 262547c08596SBrooks Davis case DHO_VENDOR_ENCAPSULATED_OPTIONS: 262647c08596SBrooks Davis case DHO_NETBIOS_NODE_TYPE: 262747c08596SBrooks Davis case DHO_NETBIOS_SCOPE: 262847c08596SBrooks Davis case DHO_X_DISPLAY_MANAGER: 262947c08596SBrooks Davis case DHO_DHCP_REQUESTED_ADDRESS: 263047c08596SBrooks Davis case DHO_DHCP_LEASE_TIME: 263147c08596SBrooks Davis case DHO_DHCP_OPTION_OVERLOAD: 263247c08596SBrooks Davis case DHO_DHCP_MESSAGE_TYPE: 263347c08596SBrooks Davis case DHO_DHCP_PARAMETER_REQUEST_LIST: 263447c08596SBrooks Davis case DHO_DHCP_MESSAGE: 263547c08596SBrooks Davis case DHO_DHCP_MAX_MESSAGE_SIZE: 263647c08596SBrooks Davis case DHO_DHCP_RENEWAL_TIME: 263747c08596SBrooks Davis case DHO_DHCP_REBINDING_TIME: 263847c08596SBrooks Davis case DHO_DHCP_CLASS_IDENTIFIER: 263947c08596SBrooks Davis case DHO_DHCP_CLIENT_IDENTIFIER: 264038e755fdSBrooks Davis case DHO_BOOTFILE_NAME: 264147c08596SBrooks Davis case DHO_DHCP_USER_CLASS_ID: 2642130cfcf3SDave Cottlehuber case DHO_URL: 2643ac6dc5cdSYuichiro NAITO case DHO_SIP_SERVERS: 2644*38c63b52SMichael Osipov case DHO_V_I_VENDOR_CLASS: 2645*38c63b52SMichael Osipov case DHO_V_I_VENDOR_OPTS: 264647c08596SBrooks Davis case DHO_END: 264747c08596SBrooks Davis return (1); 26482fcc7370SEd Maste case DHO_CLASSLESS_ROUTES: 26492fcc7370SEd Maste return (check_classless_option(l->options[option].data, 26502fcc7370SEd Maste l->options[option].len)); 265147c08596SBrooks Davis default: 265247c08596SBrooks Davis warning("unknown dhcp option value 0x%x", option); 265347c08596SBrooks Davis return (unknown_ok); 265447c08596SBrooks Davis } 265547c08596SBrooks Davis } 265647c08596SBrooks Davis 26572fcc7370SEd Maste /* RFC 3442 The Classless Static Routes option checks */ 26582fcc7370SEd Maste int 26592fcc7370SEd Maste check_classless_option(unsigned char *data, int len) 26602fcc7370SEd Maste { 26612fcc7370SEd Maste int i = 0; 26622fcc7370SEd Maste unsigned char width; 26632fcc7370SEd Maste in_addr_t addr, mask; 26642fcc7370SEd Maste 26652fcc7370SEd Maste if (len < 5) { 26662fcc7370SEd Maste warning("Too small length: %d", len); 26672fcc7370SEd Maste return (0); 26682fcc7370SEd Maste } 26692fcc7370SEd Maste while(i < len) { 26702fcc7370SEd Maste width = data[i++]; 26712fcc7370SEd Maste if (width == 0) { 26722fcc7370SEd Maste i += 4; 26732fcc7370SEd Maste continue; 26742fcc7370SEd Maste } else if (width < 9) { 26752fcc7370SEd Maste addr = (in_addr_t)(data[i] << 24); 26762fcc7370SEd Maste i += 1; 26772fcc7370SEd Maste } else if (width < 17) { 26782fcc7370SEd Maste addr = (in_addr_t)(data[i] << 24) + 26792fcc7370SEd Maste (in_addr_t)(data[i + 1] << 16); 26802fcc7370SEd Maste i += 2; 26812fcc7370SEd Maste } else if (width < 25) { 26822fcc7370SEd Maste addr = (in_addr_t)(data[i] << 24) + 26832fcc7370SEd Maste (in_addr_t)(data[i + 1] << 16) + 26842fcc7370SEd Maste (in_addr_t)(data[i + 2] << 8); 26852fcc7370SEd Maste i += 3; 26862fcc7370SEd Maste } else if (width < 33) { 26872fcc7370SEd Maste addr = (in_addr_t)(data[i] << 24) + 26882fcc7370SEd Maste (in_addr_t)(data[i + 1] << 16) + 26892fcc7370SEd Maste (in_addr_t)(data[i + 2] << 8) + 26902fcc7370SEd Maste data[i + 3]; 26912fcc7370SEd Maste i += 4; 26922fcc7370SEd Maste } else { 26932fcc7370SEd Maste warning("Incorrect subnet width: %d", width); 26942fcc7370SEd Maste return (0); 26952fcc7370SEd Maste } 26962fcc7370SEd Maste mask = (in_addr_t)(~0) << (32 - width); 26972fcc7370SEd Maste addr = ntohl(addr); 26982fcc7370SEd Maste mask = ntohl(mask); 26992fcc7370SEd Maste 27002fcc7370SEd Maste /* 27012fcc7370SEd Maste * From RFC 3442: 27022fcc7370SEd Maste * ... After deriving a subnet number and subnet mask 27032fcc7370SEd Maste * from each destination descriptor, the DHCP client 27042fcc7370SEd Maste * MUST zero any bits in the subnet number where the 27052fcc7370SEd Maste * corresponding bit in the mask is zero... 27062fcc7370SEd Maste */ 27072fcc7370SEd Maste if ((addr & mask) != addr) { 27082fcc7370SEd Maste addr &= mask; 27092fcc7370SEd Maste data[i - 1] = (unsigned char)( 27102fcc7370SEd Maste (addr >> (((32 - width)/8)*8)) & 0xFF); 27112fcc7370SEd Maste } 27122fcc7370SEd Maste i += 4; 27132fcc7370SEd Maste } 27142fcc7370SEd Maste if (i > len) { 27152fcc7370SEd Maste warning("Incorrect data length: %d (must be %d)", len, i); 27162fcc7370SEd Maste return (0); 27172fcc7370SEd Maste } 27182fcc7370SEd Maste return (1); 27192fcc7370SEd Maste } 27202fcc7370SEd Maste 272147c08596SBrooks Davis int 272247c08596SBrooks Davis res_hnok(const char *dn) 272347c08596SBrooks Davis { 272447c08596SBrooks Davis int pch = PERIOD, ch = *dn++; 272547c08596SBrooks Davis 272647c08596SBrooks Davis while (ch != '\0') { 272747c08596SBrooks Davis int nch = *dn++; 272847c08596SBrooks Davis 272947c08596SBrooks Davis if (periodchar(ch)) { 273047c08596SBrooks Davis ; 273147c08596SBrooks Davis } else if (periodchar(pch)) { 273247c08596SBrooks Davis if (!borderchar(ch)) 273347c08596SBrooks Davis return (0); 273447c08596SBrooks Davis } else if (periodchar(nch) || nch == '\0') { 273547c08596SBrooks Davis if (!borderchar(ch)) 273647c08596SBrooks Davis return (0); 273747c08596SBrooks Davis } else { 273847c08596SBrooks Davis if (!middlechar(ch)) 273947c08596SBrooks Davis return (0); 274047c08596SBrooks Davis } 274147c08596SBrooks Davis pch = ch, ch = nch; 274247c08596SBrooks Davis } 274347c08596SBrooks Davis return (1); 274447c08596SBrooks Davis } 274547c08596SBrooks Davis 2746f954ec0bSBrooks Davis int 2747f954ec0bSBrooks Davis check_search(const char *srch) 2748f954ec0bSBrooks Davis { 2749f954ec0bSBrooks Davis int pch = PERIOD, ch = *srch++; 2750f954ec0bSBrooks Davis int domains = 1; 2751f954ec0bSBrooks Davis 2752f954ec0bSBrooks Davis /* 256 char limit re resolv.conf(5) */ 2753f954ec0bSBrooks Davis if (strlen(srch) > 256) 2754f954ec0bSBrooks Davis return (0); 2755f954ec0bSBrooks Davis 2756f954ec0bSBrooks Davis while (whitechar(ch)) 2757f954ec0bSBrooks Davis ch = *srch++; 2758f954ec0bSBrooks Davis 2759f954ec0bSBrooks Davis while (ch != '\0') { 2760f954ec0bSBrooks Davis int nch = *srch++; 2761f954ec0bSBrooks Davis 2762f954ec0bSBrooks Davis if (periodchar(ch) || whitechar(ch)) { 2763f954ec0bSBrooks Davis ; 2764f954ec0bSBrooks Davis } else if (periodchar(pch)) { 2765f954ec0bSBrooks Davis if (!borderchar(ch)) 2766f954ec0bSBrooks Davis return (0); 2767f954ec0bSBrooks Davis } else if (periodchar(nch) || nch == '\0') { 2768f954ec0bSBrooks Davis if (!borderchar(ch)) 2769f954ec0bSBrooks Davis return (0); 2770f954ec0bSBrooks Davis } else { 2771f954ec0bSBrooks Davis if (!middlechar(ch)) 2772f954ec0bSBrooks Davis return (0); 2773f954ec0bSBrooks Davis } 2774f954ec0bSBrooks Davis if (!whitechar(ch)) { 2775f954ec0bSBrooks Davis pch = ch; 2776f954ec0bSBrooks Davis } else { 2777f954ec0bSBrooks Davis while (whitechar(nch)) { 2778f954ec0bSBrooks Davis nch = *srch++; 2779f954ec0bSBrooks Davis } 2780f954ec0bSBrooks Davis if (nch != '\0') 2781f954ec0bSBrooks Davis domains++; 2782f954ec0bSBrooks Davis pch = PERIOD; 2783f954ec0bSBrooks Davis } 2784f954ec0bSBrooks Davis ch = nch; 2785f954ec0bSBrooks Davis } 2786f954ec0bSBrooks Davis /* 6 domain limit re resolv.conf(5) */ 2787f954ec0bSBrooks Davis if (domains > 6) 2788f954ec0bSBrooks Davis return (0); 2789f954ec0bSBrooks Davis return (1); 2790f954ec0bSBrooks Davis } 2791f954ec0bSBrooks Davis 279247c08596SBrooks Davis /* Does buf consist only of dotted decimal ipv4 addrs? 279347c08596SBrooks Davis * return how many if so, 279447c08596SBrooks Davis * otherwise, return 0 279547c08596SBrooks Davis */ 279647c08596SBrooks Davis int 279779a1d195SAlan Somers ipv4addrs(const char * buf) 279847c08596SBrooks Davis { 279947c08596SBrooks Davis struct in_addr jnk; 280047c08596SBrooks Davis int count = 0; 280147c08596SBrooks Davis 280247c08596SBrooks Davis while (inet_aton(buf, &jnk) == 1){ 280347c08596SBrooks Davis count++; 280447c08596SBrooks Davis while (periodchar(*buf) || digitchar(*buf)) 280547c08596SBrooks Davis buf++; 280647c08596SBrooks Davis if (*buf == '\0') 280747c08596SBrooks Davis return (count); 280847c08596SBrooks Davis while (*buf == ' ') 280947c08596SBrooks Davis buf++; 281047c08596SBrooks Davis } 281147c08596SBrooks Davis return (0); 281247c08596SBrooks Davis } 281347c08596SBrooks Davis 281447c08596SBrooks Davis 281579a1d195SAlan Somers const char * 281647c08596SBrooks Davis option_as_string(unsigned int code, unsigned char *data, int len) 281747c08596SBrooks Davis { 281847c08596SBrooks Davis static char optbuf[32768]; /* XXX */ 281947c08596SBrooks Davis char *op = optbuf; 282047c08596SBrooks Davis int opleft = sizeof(optbuf); 282147c08596SBrooks Davis unsigned char *dp = data; 282247c08596SBrooks Davis 282347c08596SBrooks Davis if (code > 255) 282447c08596SBrooks Davis error("option_as_string: bad code %d", code); 282547c08596SBrooks Davis 282647c08596SBrooks Davis for (; dp < data + len; dp++) { 282747c08596SBrooks Davis if (!isascii(*dp) || !isprint(*dp)) { 282847c08596SBrooks Davis if (dp + 1 != data + len || *dp != 0) { 282947c08596SBrooks Davis snprintf(op, opleft, "\\%03o", *dp); 283047c08596SBrooks Davis op += 4; 283147c08596SBrooks Davis opleft -= 4; 283247c08596SBrooks Davis } 283347c08596SBrooks Davis } else if (*dp == '"' || *dp == '\'' || *dp == '$' || 283447c08596SBrooks Davis *dp == '`' || *dp == '\\') { 283547c08596SBrooks Davis *op++ = '\\'; 283647c08596SBrooks Davis *op++ = *dp; 283747c08596SBrooks Davis opleft -= 2; 283847c08596SBrooks Davis } else { 283947c08596SBrooks Davis *op++ = *dp; 284047c08596SBrooks Davis opleft--; 284147c08596SBrooks Davis } 284247c08596SBrooks Davis } 284347c08596SBrooks Davis if (opleft < 1) 284447c08596SBrooks Davis goto toobig; 284547c08596SBrooks Davis *op = 0; 284647c08596SBrooks Davis return optbuf; 284747c08596SBrooks Davis toobig: 284847c08596SBrooks Davis warning("dhcp option too large"); 284947c08596SBrooks Davis return "<error>"; 285047c08596SBrooks Davis } 285147c08596SBrooks Davis 285247c08596SBrooks Davis int 285347c08596SBrooks Davis fork_privchld(int fd, int fd2) 285447c08596SBrooks Davis { 285547c08596SBrooks Davis struct pollfd pfd[1]; 285647c08596SBrooks Davis int nfds; 285747c08596SBrooks Davis 285847c08596SBrooks Davis switch (fork()) { 285947c08596SBrooks Davis case -1: 286047c08596SBrooks Davis error("cannot fork"); 286147c08596SBrooks Davis case 0: 286247c08596SBrooks Davis break; 286347c08596SBrooks Davis default: 286447c08596SBrooks Davis return (0); 286547c08596SBrooks Davis } 286647c08596SBrooks Davis 286747c08596SBrooks Davis setproctitle("%s [priv]", ifi->name); 286847c08596SBrooks Davis 286970892546SEd Schouten setsid(); 287047c08596SBrooks Davis dup2(nullfd, STDIN_FILENO); 287147c08596SBrooks Davis dup2(nullfd, STDOUT_FILENO); 287247c08596SBrooks Davis dup2(nullfd, STDERR_FILENO); 287347c08596SBrooks Davis close(nullfd); 287447c08596SBrooks Davis close(fd2); 2875235eb530SPawel Jakub Dawidek close(ifi->rfdesc); 2876235eb530SPawel Jakub Dawidek ifi->rfdesc = -1; 287747c08596SBrooks Davis 287847c08596SBrooks Davis for (;;) { 287947c08596SBrooks Davis pfd[0].fd = fd; 288047c08596SBrooks Davis pfd[0].events = POLLIN; 288147c08596SBrooks Davis if ((nfds = poll(pfd, 1, INFTIM)) == -1) 288247c08596SBrooks Davis if (errno != EINTR) 288347c08596SBrooks Davis error("poll error"); 288447c08596SBrooks Davis 288547c08596SBrooks Davis if (nfds == 0 || !(pfd[0].revents & POLLIN)) 288647c08596SBrooks Davis continue; 288747c08596SBrooks Davis 2888235eb530SPawel Jakub Dawidek dispatch_imsg(ifi, fd); 288947c08596SBrooks Davis } 289047c08596SBrooks Davis } 2891