xref: /netbsd-src/usr.sbin/rpcbind/rpcbind.c (revision b1c86f5f087524e68db12794ee9c3e3da1ab17a0)
1 /*	$NetBSD: rpcbind.c,v 1.15 2007/08/27 19:53:33 dsl Exp $	*/
2 
3 /*
4  * Sun RPC is a product of Sun Microsystems, Inc. and is provided for
5  * unrestricted use provided that this legend is included on all tape
6  * media and as a part of the software program in whole or part.  Users
7  * may copy or modify Sun RPC without charge, but are not authorized
8  * to license or distribute it to anyone else except as part of a product or
9  * program developed by the user.
10  *
11  * SUN RPC IS PROVIDED AS IS WITH NO WARRANTIES OF ANY KIND INCLUDING THE
12  * WARRANTIES OF DESIGN, MERCHANTIBILITY AND FITNESS FOR A PARTICULAR
13  * PURPOSE, OR ARISING FROM A COURSE OF DEALING, USAGE OR TRADE PRACTICE.
14  *
15  * Sun RPC is provided with no support and without any obligation on the
16  * part of Sun Microsystems, Inc. to assist in its use, correction,
17  * modification or enhancement.
18  *
19  * SUN MICROSYSTEMS, INC. SHALL HAVE NO LIABILITY WITH RESPECT TO THE
20  * INFRINGEMENT OF COPYRIGHTS, TRADE SECRETS OR ANY PATENTS BY SUN RPC
21  * OR ANY PART THEREOF.
22  *
23  * In no event will Sun Microsystems, Inc. be liable for any lost revenue
24  * or profits or other special, indirect and consequential damages, even if
25  * Sun has been advised of the possibility of such damages.
26  *
27  * Sun Microsystems, Inc.
28  * 2550 Garcia Avenue
29  * Mountain View, California  94043
30  */
31 /*
32  * Copyright (c) 1984 - 1991 by Sun Microsystems, Inc.
33  */
34 
35 /* #ident	"@(#)rpcbind.c	1.19	94/04/25 SMI" */
36 
37 #if 0
38 #ifndef lint
39 static	char sccsid[] = "@(#)rpcbind.c 1.35 89/04/21 Copyr 1984 Sun Micro";
40 #endif
41 #endif
42 
43 /*
44  * rpcbind.c
45  * Implements the program, version to address mapping for rpc.
46  *
47  */
48 
49 #include <sys/types.h>
50 #include <sys/stat.h>
51 #include <sys/errno.h>
52 #include <sys/time.h>
53 #include <sys/resource.h>
54 #include <sys/wait.h>
55 #include <sys/signal.h>
56 #include <sys/socket.h>
57 #include <sys/un.h>
58 #include <rpc/rpc.h>
59 #ifdef PORTMAP
60 #include <netinet/in.h>
61 #endif
62 #include <netdb.h>
63 #include <stdio.h>
64 #include <netconfig.h>
65 #include <stdlib.h>
66 #include <unistd.h>
67 #include <syslog.h>
68 #include <err.h>
69 #include <util.h>
70 #include <pwd.h>
71 #include <string.h>
72 #include <errno.h>
73 #include "rpcbind.h"
74 
75 /* Global variables */
76 int debugging = 0;	/* Tell me what's going on */
77 int doabort = 0;	/* When debugging, do an abort on errors */
78 rpcblist_ptr list_rbl;	/* A list of version 3/4 rpcbind services */
79 
80 /* who to suid to if -s is given */
81 #define RUN_AS  "daemon"
82 
83 int runasdaemon = 0;
84 int insecure = 0;
85 int oldstyle_local = 0;
86 int verboselog = 0;
87 
88 #ifdef WARMSTART
89 /* Local Variable */
90 static int warmstart = 0;	/* Grab a old copy of registrations */
91 #endif
92 
93 #ifdef PORTMAP
94 struct pmaplist *list_pml;	/* A list of version 2 rpcbind services */
95 const char *udptrans;		/* Name of UDP transport */
96 const char *tcptrans;		/* Name of TCP transport */
97 const char *udp_uaddr;		/* Universal UDP address */
98 const char *tcp_uaddr;		/* Universal TCP address */
99 #endif
100 static const char servname[] = "sunrpc";
101 
102 const char rpcbind_superuser[] = "superuser";
103 const char rpcbind_unknown[] = "unknown";
104 
105 static int init_transport(struct netconfig *);
106 static void rbllist_add(rpcprog_t, rpcvers_t, struct netconfig *,
107     struct netbuf *);
108 static void terminate(int);
109 static void parseargs(int, char *[]);
110 
111 int
112 main(int argc, char *argv[])
113 {
114 	struct netconfig *nconf;
115 	void *nc_handle;	/* Net config handle */
116 	struct rlimit rl;
117 	int maxrec = RPC_MAXDATASIZE;
118 
119 	parseargs(argc, argv);
120 
121 	getrlimit(RLIMIT_NOFILE, &rl);
122 	if (rl.rlim_cur < 128) {
123 		if (rl.rlim_max <= 128)
124 			rl.rlim_cur = rl.rlim_max;
125 		else
126 			rl.rlim_cur = 128;
127 		setrlimit(RLIMIT_NOFILE, &rl);
128 	}
129 	if (geteuid()) /* This command allowed only to root */
130 		errx(1, "Sorry. You are not superuser");
131 	nc_handle = setnetconfig(); 	/* open netconfig file */
132 	if (nc_handle == NULL)
133 		errx(1, "could not read /etc/netconfig");
134 #ifdef PORTMAP
135 	udptrans = "";
136 	tcptrans = "";
137 #endif
138 
139 	nconf = getnetconfigent("local");
140 	if (nconf == NULL)
141 		errx(1, "can't find local transport");
142 
143 	rpc_control(RPC_SVC_CONNMAXREC_SET, &maxrec);
144 
145 	init_transport(nconf);
146 
147 	while ((nconf = getnetconfig(nc_handle))) {
148 		if (nconf->nc_flag & NC_VISIBLE)
149 			init_transport(nconf);
150 	}
151 	endnetconfig(nc_handle);
152 
153 	/* catch the usual termination signals for graceful exit */
154 	(void) signal(SIGCHLD, reap);
155 	(void) signal(SIGINT, terminate);
156 	(void) signal(SIGTERM, terminate);
157 	(void) signal(SIGQUIT, terminate);
158 	/* ignore others that could get sent */
159 	(void) signal(SIGPIPE, SIG_IGN);
160 	(void) signal(SIGHUP, SIG_IGN);
161 	(void) signal(SIGUSR1, SIG_IGN);
162 	(void) signal(SIGUSR2, SIG_IGN);
163 #ifdef WARMSTART
164 	if (warmstart) {
165 		read_warmstart();
166 	}
167 #endif
168 	if (debugging) {
169 		printf("rpcbind debugging enabled.");
170 		if (doabort) {
171 			printf("  Will abort on errors!\n");
172 		} else {
173 			printf("\n");
174 		}
175 	} else {
176 		if (daemon(0, 0))
177 			err(1, "fork failed");
178 	}
179 
180 	openlog("rpcbind", 0, LOG_DAEMON);
181 	pidfile(NULL);
182 
183 	if (runasdaemon) {
184 		struct passwd *p;
185 
186 		if((p = getpwnam(RUN_AS)) == NULL) {
187 			syslog(LOG_ERR, "cannot get uid of daemon: %m");
188 			exit(1);
189 		}
190 		if (setuid(p->pw_uid) == -1) {
191 			syslog(LOG_ERR, "setuid to daemon failed: %m");
192 			exit(1);
193 		}
194 	}
195 
196 	network_init();
197 
198 	my_svc_run();
199 	syslog(LOG_ERR, "svc_run returned unexpectedly");
200 	rpcbind_abort();
201 	/* NOTREACHED */
202 
203 	return 0;
204 }
205 
206 /*
207  * Adds the entry into the rpcbind database.
208  * If PORTMAP, then for UDP and TCP, it adds the entries for version 2 also
209  * Returns 0 if succeeds, else fails
210  */
211 static int
212 init_transport(struct netconfig *nconf)
213 {
214 	int fd;
215 	struct t_bind taddr;
216 	struct addrinfo hints, *res = NULL;
217 	struct __rpc_sockinfo si;
218 	SVCXPRT	*my_xprt;
219 	int status;	/* bound checking ? */
220 	int aicode;
221 	int addrlen;
222 	struct sockaddr *sa;
223 	struct sockaddr_un sun;
224 	const int one = 1;
225 
226 	if ((nconf->nc_semantics != NC_TPI_CLTS) &&
227 		(nconf->nc_semantics != NC_TPI_COTS) &&
228 		(nconf->nc_semantics != NC_TPI_COTS_ORD))
229 		return 1;	/* not my type */
230 #ifdef RPCBIND_DEBUG
231 	if (debugging) {
232 		int i;
233 		char **s;
234 
235 		(void)fprintf(stderr, "%s: %ld lookup routines :\n",
236 		    nconf->nc_netid, nconf->nc_nlookups);
237 		for (i = 0, s = nconf->nc_lookups; i < nconf->nc_nlookups;
238 		     i++, s++)
239 			(void)fprintf(stderr, "[%d] - %s\n", i, *s);
240 	}
241 #endif
242 
243 	/*
244 	 * XXX - using RPC library internal functions.
245 	 */
246 	if ((fd = __rpc_nconf2fd(nconf)) < 0) {
247 		if (errno == EAFNOSUPPORT)
248 			return 1;
249 		warn("Cannot create socket for `%s'", nconf->nc_netid);
250 		return 1;
251 	}
252 
253 	if (!__rpc_nconf2sockinfo(nconf, &si)) {
254 		warnx("Cannot get information for `%s'", nconf->nc_netid);
255 		return 1;
256 	}
257 
258 	if (si.si_af == AF_INET6) {
259 		/*
260 		 * We're doing host-based access checks here, so don't allow
261 		 * v4-in-v6 to confuse things.
262 		 */
263 		if (setsockopt(fd, IPPROTO_IPV6, IPV6_V6ONLY, &one,
264 		    sizeof one) < 0) {
265 			warn("Can't make socket ipv6 only");
266 			return 1;
267 		}
268 	}
269 
270 
271 	if (!strcmp(nconf->nc_netid, "local")) {
272 		(void)memset(&sun, 0, sizeof sun);
273 		sun.sun_family = AF_LOCAL;
274 		(void)unlink(_PATH_RPCBINDSOCK);
275 		(void)strlcpy(sun.sun_path, _PATH_RPCBINDSOCK,
276 		    sizeof(sun.sun_path));
277 		sun.sun_len = SUN_LEN(&sun);
278 		addrlen = sizeof(struct sockaddr_un);
279 		sa = (struct sockaddr *)&sun;
280 	} else {
281 		/* Get rpcbind's address on this transport */
282 
283 		(void)memset(&hints, 0, sizeof hints);
284 		hints.ai_flags = AI_PASSIVE;
285 		hints.ai_family = si.si_af;
286 		hints.ai_socktype = si.si_socktype;
287 		hints.ai_protocol = si.si_proto;
288 		if ((aicode = getaddrinfo(NULL, servname, &hints, &res)) != 0) {
289 			warnx("Cannot get local address for `%s' (%s)",
290 			    nconf->nc_netid, gai_strerror(aicode));
291 			return 1;
292 		}
293 		addrlen = res->ai_addrlen;
294 		sa = (struct sockaddr *)res->ai_addr;
295 	}
296 
297 	if (bind(fd, sa, addrlen) < 0) {
298 		warn("Cannot bind `%s'", nconf->nc_netid);
299 		if (res != NULL)
300 			freeaddrinfo(res);
301 		return 1;
302 	}
303 	if (sa->sa_family == AF_LOCAL)
304 		if (chmod(sun.sun_path, S_IRWXU|S_IRWXG|S_IRWXO) == -1)
305 			warn("Cannot chmod `%s'", sun.sun_path);
306 
307 	/* Copy the address */
308 	taddr.addr.len = taddr.addr.maxlen = addrlen;
309 	taddr.addr.buf = malloc(addrlen);
310 	if (taddr.addr.buf == NULL) {
311 		warn("Cannot allocate memory for `%s' address",
312 		    nconf->nc_netid);
313 		if (res != NULL)
314 			freeaddrinfo(res);
315 		return 1;
316 	}
317 	(void)memcpy(taddr.addr.buf, sa, addrlen);
318 #ifdef RPCBIND_DEBUG
319 	if (debugging) {
320 		/* for debugging print out our universal address */
321 		char *uaddr;
322 		struct netbuf nb;
323 
324 		nb.buf = sa;
325 		nb.len = nb.maxlen = sa->sa_len;
326 		uaddr = taddr2uaddr(nconf, &nb);
327 		(void)fprintf(stderr, "rpcbind: my address is %s\n", uaddr);
328 		(void)free(uaddr);
329 	}
330 #endif
331 
332 	if (res != NULL)
333 		freeaddrinfo(res);
334 
335 	if (nconf->nc_semantics != NC_TPI_CLTS)
336 		listen(fd, SOMAXCONN);
337 
338 	my_xprt = (SVCXPRT *)svc_tli_create(fd, nconf, &taddr, RPC_MAXDATASIZE,
339 	    RPC_MAXDATASIZE);
340 	if (my_xprt == (SVCXPRT *)NULL) {
341 		warnx("Could not create service for `%s'", nconf->nc_netid);
342 		goto error;
343 	}
344 
345 #ifdef PORTMAP
346 	/*
347 	 * Register both the versions for tcp/ip, udp/ip and local.
348 	 */
349 	if ((strcmp(nconf->nc_protofmly, NC_INET) == 0 &&
350 		(strcmp(nconf->nc_proto, NC_TCP) == 0 ||
351 		strcmp(nconf->nc_proto, NC_UDP) == 0)) ||
352 		strcmp(nconf->nc_netid, "local") == 0) {
353 		struct pmaplist *pml;
354 
355 		if (!svc_register(my_xprt, PMAPPROG, PMAPVERS,
356 			pmap_service, 0)) {
357 			warn("Could not register on `%s'", nconf->nc_netid);
358 			goto error;
359 		}
360 		pml = malloc(sizeof (struct pmaplist));
361 		if (pml == NULL) {
362 			warn("Cannot allocate memory");
363 			goto error;
364 		}
365 		pml->pml_map.pm_prog = PMAPPROG;
366 		pml->pml_map.pm_vers = PMAPVERS;
367 		pml->pml_map.pm_port = PMAPPORT;
368 		if (strcmp(nconf->nc_proto, NC_TCP) == 0) {
369 			if (tcptrans[0]) {
370 				warnx(
371 				    "Cannot have more than one TCP transport");
372 				free(pml);
373 				goto error;
374 			}
375 			tcptrans = strdup(nconf->nc_netid);
376 			if (tcptrans == NULL) {
377 				free(pml);
378 				warn("Cannot allocate memory");
379 				goto error;
380 			}
381 			pml->pml_map.pm_prot = IPPROTO_TCP;
382 
383 			/* Let's snarf the universal address */
384 			/* "h1.h2.h3.h4.p1.p2" */
385 			tcp_uaddr = taddr2uaddr(nconf, &taddr.addr);
386 		} else if (strcmp(nconf->nc_proto, NC_UDP) == 0) {
387 			if (udptrans[0]) {
388 				free(pml);
389 				warnx(
390 				"Cannot have more than one UDP transport");
391 				goto error;
392 			}
393 			udptrans = strdup(nconf->nc_netid);
394 			if (udptrans == NULL) {
395 				free(pml);
396 				warn("Cannot allocate memory");
397 				goto error;
398 			}
399 			pml->pml_map.pm_prot = IPPROTO_UDP;
400 
401 			/* Let's snarf the universal address */
402 			/* "h1.h2.h3.h4.p1.p2" */
403 			udp_uaddr = taddr2uaddr(nconf, &taddr.addr);
404 		}
405 		pml->pml_next = list_pml;
406 		list_pml = pml;
407 
408 		/* Add version 3 information */
409 		pml = malloc(sizeof (struct pmaplist));
410 		if (pml == NULL) {
411 			warn("Cannot allocate memory");
412 			goto error;
413 		}
414 		pml->pml_map = list_pml->pml_map;
415 		pml->pml_map.pm_vers = RPCBVERS;
416 		pml->pml_next = list_pml;
417 		list_pml = pml;
418 
419 		/* Add version 4 information */
420 		pml = malloc(sizeof (struct pmaplist));
421 		if (pml == NULL) {
422 			warn("Cannot allocate memory");
423 			goto error;
424 		}
425 		pml->pml_map = list_pml->pml_map;
426 		pml->pml_map.pm_vers = RPCBVERS4;
427 		pml->pml_next = list_pml;
428 		list_pml = pml;
429 
430 		/* Also add version 2 stuff to rpcbind list */
431 		rbllist_add(PMAPPROG, PMAPVERS, nconf, &taddr.addr);
432 	}
433 #endif
434 
435 	/* version 3 registration */
436 	if (!svc_reg(my_xprt, RPCBPROG, RPCBVERS, rpcb_service_3, NULL)) {
437 		warn("Could not register %s version 3", nconf->nc_netid);
438 		goto error;
439 	}
440 	rbllist_add(RPCBPROG, RPCBVERS, nconf, &taddr.addr);
441 
442 	/* version 4 registration */
443 	if (!svc_reg(my_xprt, RPCBPROG, RPCBVERS4, rpcb_service_4, NULL)) {
444 		warn("Could not register %s version 4", nconf->nc_netid);
445 		goto error;
446 	}
447 	rbllist_add(RPCBPROG, RPCBVERS4, nconf, &taddr.addr);
448 
449 	/* decide if bound checking works for this transport */
450 	status = add_bndlist(nconf, &taddr.addr);
451 #ifdef RPCBIND_DEBUG
452 	if (debugging) {
453 		if (status < 0) {
454 			fprintf(stderr, "Error in finding bind status for %s\n",
455 				nconf->nc_netid);
456 		} else if (status == 0) {
457 			fprintf(stderr, "check binding for %s\n",
458 				nconf->nc_netid);
459 		} else if (status > 0) {
460 			fprintf(stderr, "No check binding for %s\n",
461 				nconf->nc_netid);
462 		}
463 	}
464 #endif
465 	/*
466 	 * rmtcall only supported on CLTS transports for now.
467 	 */
468 	if (nconf->nc_semantics == NC_TPI_CLTS) {
469 		status = create_rmtcall_fd(nconf);
470 
471 #ifdef RPCBIND_DEBUG
472 		if (debugging) {
473 			if (status < 0) {
474 				fprintf(stderr,
475 				    "Could not create rmtcall fd for %s\n",
476 					nconf->nc_netid);
477 			} else {
478 				fprintf(stderr, "rmtcall fd for %s is %d\n",
479 					nconf->nc_netid, status);
480 			}
481 		}
482 #endif
483 	}
484 	return (0);
485 error:
486 	(void)close(fd);
487 	return (1);
488 }
489 
490 static void
491 rbllist_add(rpcprog_t prog, rpcvers_t vers, struct netconfig *nconf,
492 	    struct netbuf *addr)
493 {
494 	rpcblist_ptr rbl;
495 
496 	rbl = malloc(sizeof(rpcblist));
497 	if (rbl == NULL) {
498 		warn("Out of memory");
499 		return;
500 	}
501 
502 	rbl->rpcb_map.r_prog = prog;
503 	rbl->rpcb_map.r_vers = vers;
504 	rbl->rpcb_map.r_netid = strdup(nconf->nc_netid);
505 	rbl->rpcb_map.r_addr = taddr2uaddr(nconf, addr);
506 	rbl->rpcb_map.r_owner = strdup(rpcbind_superuser);
507 	rbl->rpcb_next = list_rbl;	/* Attach to global list */
508 	list_rbl = rbl;
509 }
510 
511 /*
512  * Catch the signal and die
513  */
514 static void
515 terminate(int dummy)
516 {
517 #ifdef WARMSTART
518 	syslog(LOG_ERR,
519 		"rpcbind terminating on signal. Restart with \"rpcbind -w\"");
520 	write_warmstart();	/* Dump yourself */
521 #endif
522 	exit(2);
523 }
524 
525 void
526 rpcbind_abort()
527 {
528 #ifdef WARMSTART
529 	write_warmstart();	/* Dump yourself */
530 #endif
531 	abort();
532 }
533 
534 /* get command line options */
535 static void
536 parseargs(int argc, char *argv[])
537 {
538 	int c;
539 
540 	while ((c = getopt(argc, argv, "dwailLs")) != -1) {
541 		switch (c) {
542 		case 'a':
543 			doabort = 1;	/* when debugging, do an abort on */
544 			break;		/* errors; for rpcbind developers */
545 					/* only! */
546 		case 'd':
547 			debugging = 1;
548 			break;
549 		case 'i':
550 			insecure = 1;
551 			break;
552 		case 'L':
553 			oldstyle_local = 1;
554 			break;
555 		case 'l':
556 			verboselog = 1;
557 			break;
558 		case 's':
559 			runasdaemon = 1;
560 			break;
561 #ifdef WARMSTART
562 		case 'w':
563 			warmstart = 1;
564 			break;
565 #endif
566 		default:	/* error */
567 			fprintf(stderr,	"usage: rpcbind [-Idwils]\n");
568 			exit (1);
569 		}
570 	}
571 	if (doabort && !debugging) {
572 	    fprintf(stderr,
573 		"-a (abort) specified without -d (debugging) -- ignored.\n");
574 	    doabort = 0;
575 	}
576 }
577 
578 void
579 reap(int dummy)
580 {
581 	int save_errno = errno;
582 
583 	while (wait3(NULL, WNOHANG, NULL) > 0)
584 		;
585 	errno = save_errno;
586 }
587 
588 void
589 toggle_verboselog(int dummy)
590 {
591 	verboselog = !verboselog;
592 }
593