10Sstevel@tonic-gate /* 20Sstevel@tonic-gate * CDDL HEADER START 30Sstevel@tonic-gate * 40Sstevel@tonic-gate * The contents of this file are subject to the terms of the 50Sstevel@tonic-gate * Common Development and Distribution License, Version 1.0 only 60Sstevel@tonic-gate * (the "License"). You may not use this file except in compliance 70Sstevel@tonic-gate * with the License. 80Sstevel@tonic-gate * 90Sstevel@tonic-gate * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE 100Sstevel@tonic-gate * or http://www.opensolaris.org/os/licensing. 110Sstevel@tonic-gate * See the License for the specific language governing permissions 120Sstevel@tonic-gate * and limitations under the License. 130Sstevel@tonic-gate * 140Sstevel@tonic-gate * When distributing Covered Code, include this CDDL HEADER in each 150Sstevel@tonic-gate * file and include the License file at usr/src/OPENSOLARIS.LICENSE. 160Sstevel@tonic-gate * If applicable, add the following below this CDDL HEADER, with the 170Sstevel@tonic-gate * fields enclosed by brackets "[]" replaced with your own identifying 180Sstevel@tonic-gate * information: Portions Copyright [yyyy] [name of copyright owner] 190Sstevel@tonic-gate * 200Sstevel@tonic-gate * CDDL HEADER END 210Sstevel@tonic-gate */ 220Sstevel@tonic-gate /* 230Sstevel@tonic-gate * Copyright 2005 Sun Microsystems, Inc. All rights reserved. 240Sstevel@tonic-gate * Use is subject to license terms. 250Sstevel@tonic-gate */ 260Sstevel@tonic-gate 270Sstevel@tonic-gate /* Copyright (c) 1984, 1986, 1987, 1988, 1989 AT&T */ 280Sstevel@tonic-gate /* All Rights Reserved */ 290Sstevel@tonic-gate 300Sstevel@tonic-gate /* 310Sstevel@tonic-gate * University Copyright- Copyright (c) 1982, 1986, 1988 320Sstevel@tonic-gate * The Regents of the University of California 330Sstevel@tonic-gate * All Rights Reserved 340Sstevel@tonic-gate * 350Sstevel@tonic-gate * University Acknowledgment- Portions of this document are derived from 360Sstevel@tonic-gate * software developed by the University of California, Berkeley, and its 370Sstevel@tonic-gate * contributors. 380Sstevel@tonic-gate */ 390Sstevel@tonic-gate 400Sstevel@tonic-gate #pragma ident "%Z%%M% %I% %E% SMI" 410Sstevel@tonic-gate 420Sstevel@tonic-gate /* 430Sstevel@tonic-gate * init(1M) is the general process spawning program. Its primary job is to 440Sstevel@tonic-gate * start and restart svc.startd for smf(5). For backwards-compatibility it also 450Sstevel@tonic-gate * spawns and respawns processes according to /etc/inittab and the current 460Sstevel@tonic-gate * run-level. It reads /etc/default/inittab for general configuration. 470Sstevel@tonic-gate * 480Sstevel@tonic-gate * To change run-levels the system administrator runs init from the command 490Sstevel@tonic-gate * line with a level name. init signals svc.startd via libscf and directs the 500Sstevel@tonic-gate * zone's init (pid 1 in the global zone) what to do by sending it a signal; 510Sstevel@tonic-gate * these signal numbers are commonly refered to in the code as 'states'. Valid 520Sstevel@tonic-gate * run-levels are [sS0123456]. Additionally, init can be given directives 530Sstevel@tonic-gate * [qQabc], which indicate actions to be taken pertaining to /etc/inittab. 540Sstevel@tonic-gate * 550Sstevel@tonic-gate * When init processes inittab entries, it finds processes that are to be 560Sstevel@tonic-gate * spawned at various run-levels. inittab contains the set of the levels for 570Sstevel@tonic-gate * which each inittab entry is valid. 580Sstevel@tonic-gate * 590Sstevel@tonic-gate * State File and Restartability 600Sstevel@tonic-gate * Premature exit by init(1M) is handled as a special case by the kernel: 610Sstevel@tonic-gate * init(1M) will be immediately re-executed, retaining its original PID. (PID 620Sstevel@tonic-gate * 1 in the global zone.) To track the processes it has previously spawned, 630Sstevel@tonic-gate * as well as other mutable state, init(1M) regularly updates a state file 640Sstevel@tonic-gate * such that its subsequent invocations have knowledge of its various 650Sstevel@tonic-gate * dependent processes and duties. 660Sstevel@tonic-gate * 670Sstevel@tonic-gate * Process Contracts 680Sstevel@tonic-gate * We start svc.startd(1M) in a contract and transfer inherited contracts when 690Sstevel@tonic-gate * restarting it. Everything else is started using the legacy contract 700Sstevel@tonic-gate * template, and the created contracts are abandoned when they become empty. 710Sstevel@tonic-gate * 720Sstevel@tonic-gate * utmpx Entry Handling 730Sstevel@tonic-gate * Because init(1M) no longer governs the startup process, its knowledge of 740Sstevel@tonic-gate * when utmpx becomes writable is indirect. However, spawned processes 750Sstevel@tonic-gate * expect to be constructed with valid utmpx entries. As a result, attempts 760Sstevel@tonic-gate * to write normal entries will be retried until successful. 770Sstevel@tonic-gate * 780Sstevel@tonic-gate * Maintenance Mode 790Sstevel@tonic-gate * In certain failure scenarios, init(1M) will enter a maintenance mode, in 800Sstevel@tonic-gate * which it invokes sulogin(1M) to allow the operator an opportunity to 810Sstevel@tonic-gate * repair the system. Normally, this operation is performed as a 820Sstevel@tonic-gate * fork(2)-exec(2)-waitpid(3C) sequence with the parent waiting for repair or 830Sstevel@tonic-gate * diagnosis to be completed. In the cases that fork(2) requests themselves 840Sstevel@tonic-gate * fail, init(1M) will directly execute sulogin(1M), and allow the kernel to 850Sstevel@tonic-gate * restart init(1M) on exit from the operator session. 860Sstevel@tonic-gate * 870Sstevel@tonic-gate * One scenario where init(1M) enters its maintenance mode is when 880Sstevel@tonic-gate * svc.startd(1M) begins to fail rapidly, defined as when the average time 890Sstevel@tonic-gate * between recent failures drops below a given threshold. 900Sstevel@tonic-gate */ 910Sstevel@tonic-gate 920Sstevel@tonic-gate #include <sys/contract/process.h> 930Sstevel@tonic-gate #include <sys/ctfs.h> 940Sstevel@tonic-gate #include <sys/stat.h> 950Sstevel@tonic-gate #include <sys/statvfs.h> 960Sstevel@tonic-gate #include <sys/stropts.h> 970Sstevel@tonic-gate #include <sys/systeminfo.h> 980Sstevel@tonic-gate #include <sys/time.h> 990Sstevel@tonic-gate #include <sys/termios.h> 1000Sstevel@tonic-gate #include <sys/tty.h> 1010Sstevel@tonic-gate #include <sys/types.h> 1020Sstevel@tonic-gate #include <sys/utsname.h> 1030Sstevel@tonic-gate 1040Sstevel@tonic-gate #include <bsm/adt_event.h> 1050Sstevel@tonic-gate #include <bsm/libbsm.h> 1060Sstevel@tonic-gate #include <security/pam_appl.h> 1070Sstevel@tonic-gate 1080Sstevel@tonic-gate #include <assert.h> 1090Sstevel@tonic-gate #include <ctype.h> 1100Sstevel@tonic-gate #include <dirent.h> 1110Sstevel@tonic-gate #include <errno.h> 1120Sstevel@tonic-gate #include <fcntl.h> 1130Sstevel@tonic-gate #include <libcontract.h> 1140Sstevel@tonic-gate #include <libcontract_priv.h> 1150Sstevel@tonic-gate #include <libintl.h> 1160Sstevel@tonic-gate #include <libscf.h> 1170Sstevel@tonic-gate #include <libscf_priv.h> 1180Sstevel@tonic-gate #include <poll.h> 1190Sstevel@tonic-gate #include <procfs.h> 1200Sstevel@tonic-gate #include <signal.h> 1210Sstevel@tonic-gate #include <stdarg.h> 1220Sstevel@tonic-gate #include <stdio.h> 1230Sstevel@tonic-gate #include <stdio_ext.h> 1240Sstevel@tonic-gate #include <stdlib.h> 1250Sstevel@tonic-gate #include <string.h> 1260Sstevel@tonic-gate #include <strings.h> 1270Sstevel@tonic-gate #include <syslog.h> 1280Sstevel@tonic-gate #include <time.h> 1290Sstevel@tonic-gate #include <ulimit.h> 1300Sstevel@tonic-gate #include <unistd.h> 1310Sstevel@tonic-gate #include <utmpx.h> 1320Sstevel@tonic-gate #include <wait.h> 1330Sstevel@tonic-gate #include <zone.h> 1340Sstevel@tonic-gate #include <ucontext.h> 1350Sstevel@tonic-gate 1360Sstevel@tonic-gate #undef sleep 1370Sstevel@tonic-gate 1380Sstevel@tonic-gate #define fioctl(p, sptr, cmd) ioctl(fileno(p), sptr, cmd) 1390Sstevel@tonic-gate #define min(a, b) (((a) < (b)) ? (a) : (b)) 1400Sstevel@tonic-gate 1410Sstevel@tonic-gate #define TRUE 1 1420Sstevel@tonic-gate #define FALSE 0 1430Sstevel@tonic-gate #define FAILURE -1 1440Sstevel@tonic-gate 1450Sstevel@tonic-gate #define UT_LINE_SZ 32 /* Size of a utmpx ut_line field */ 1460Sstevel@tonic-gate 1470Sstevel@tonic-gate /* 1480Sstevel@tonic-gate * SLEEPTIME The number of seconds "init" sleeps between wakeups if 1490Sstevel@tonic-gate * nothing else requires this "init" wakeup. 1500Sstevel@tonic-gate */ 1510Sstevel@tonic-gate #define SLEEPTIME (5 * 60) 1520Sstevel@tonic-gate 1530Sstevel@tonic-gate /* 1540Sstevel@tonic-gate * MAXCMDL The maximum length of a command string in inittab. 1550Sstevel@tonic-gate */ 1560Sstevel@tonic-gate #define MAXCMDL 512 1570Sstevel@tonic-gate 1580Sstevel@tonic-gate /* 1590Sstevel@tonic-gate * EXEC The length of the prefix string added to all comamnds 1600Sstevel@tonic-gate * found in inittab. 1610Sstevel@tonic-gate */ 1620Sstevel@tonic-gate #define EXEC (sizeof ("exec ") - 1) 1630Sstevel@tonic-gate 1640Sstevel@tonic-gate /* 1650Sstevel@tonic-gate * TWARN The amount of time between warning signal, SIGTERM, 1660Sstevel@tonic-gate * and the fatal kill signal, SIGKILL. 1670Sstevel@tonic-gate */ 1680Sstevel@tonic-gate #define TWARN 5 1690Sstevel@tonic-gate 1700Sstevel@tonic-gate #define id_eq(x, y) ((x[0] == y[0] && x[1] == y[1] && x[2] == y[2] &&\ 1710Sstevel@tonic-gate x[3] == y[3]) ? TRUE : FALSE) 1720Sstevel@tonic-gate 1730Sstevel@tonic-gate /* 1740Sstevel@tonic-gate * The kernel's default umask is 022 these days; since some processes inherit 1750Sstevel@tonic-gate * their umask from init, init will set it from CMASK in /etc/default/init. 1760Sstevel@tonic-gate * init gets the default umask from the kernel, it sets it to 022 whenever 1770Sstevel@tonic-gate * it wants to create a file and reverts to CMASK afterwards. 1780Sstevel@tonic-gate */ 1790Sstevel@tonic-gate 1800Sstevel@tonic-gate static int cmask; 1810Sstevel@tonic-gate 1820Sstevel@tonic-gate /* 1830Sstevel@tonic-gate * The following definitions, concluding with the 'lvls' array, provide a 1840Sstevel@tonic-gate * common mapping between level-name (like 'S'), signal number (state), 1850Sstevel@tonic-gate * run-level mask, and specific properties associated with a run-level. 1860Sstevel@tonic-gate * This array should be accessed using the routines lvlname_to_state(), 1870Sstevel@tonic-gate * lvlname_to_mask(), state_to_mask(), and state_to_flags(). 1880Sstevel@tonic-gate */ 1890Sstevel@tonic-gate 1900Sstevel@tonic-gate /* 1910Sstevel@tonic-gate * Correspondence of signals to init actions. 1920Sstevel@tonic-gate */ 1930Sstevel@tonic-gate #define LVLQ SIGHUP 1940Sstevel@tonic-gate #define LVL0 SIGINT 1950Sstevel@tonic-gate #define LVL1 SIGQUIT 1960Sstevel@tonic-gate #define LVL2 SIGILL 1970Sstevel@tonic-gate #define LVL3 SIGTRAP 1980Sstevel@tonic-gate #define LVL4 SIGIOT 1990Sstevel@tonic-gate #define LVL5 SIGEMT 2000Sstevel@tonic-gate #define LVL6 SIGFPE 2010Sstevel@tonic-gate #define SINGLE_USER SIGBUS 2020Sstevel@tonic-gate #define LVLa SIGSEGV 2030Sstevel@tonic-gate #define LVLb SIGSYS 2040Sstevel@tonic-gate #define LVLc SIGPIPE 2050Sstevel@tonic-gate 2060Sstevel@tonic-gate /* 2070Sstevel@tonic-gate * Bit Mask for each level. Used to determine legal levels. 2080Sstevel@tonic-gate */ 2090Sstevel@tonic-gate #define MASK0 0x0001 2100Sstevel@tonic-gate #define MASK1 0x0002 2110Sstevel@tonic-gate #define MASK2 0x0004 2120Sstevel@tonic-gate #define MASK3 0x0008 2130Sstevel@tonic-gate #define MASK4 0x0010 2140Sstevel@tonic-gate #define MASK5 0x0020 2150Sstevel@tonic-gate #define MASK6 0x0040 2160Sstevel@tonic-gate #define MASKSU 0x0080 2170Sstevel@tonic-gate #define MASKa 0x0100 2180Sstevel@tonic-gate #define MASKb 0x0200 2190Sstevel@tonic-gate #define MASKc 0x0400 2200Sstevel@tonic-gate 2210Sstevel@tonic-gate #define MASK_NUMERIC (MASK0 | MASK1 | MASK2 | MASK3 | MASK4 | MASK5 | MASK6) 2220Sstevel@tonic-gate #define MASK_abc (MASKa | MASKb | MASKc) 2230Sstevel@tonic-gate 2240Sstevel@tonic-gate /* 2250Sstevel@tonic-gate * Flags to indicate properties of various states. 2260Sstevel@tonic-gate */ 2270Sstevel@tonic-gate #define LSEL_RUNLEVEL 0x0001 /* runlevels you can transition to */ 2280Sstevel@tonic-gate #define LSEL_NOAUDIT 0x0002 /* levels with auditing disabled */ 2290Sstevel@tonic-gate 2300Sstevel@tonic-gate typedef struct lvl { 2310Sstevel@tonic-gate int lvl_state; 2320Sstevel@tonic-gate int lvl_mask; 2330Sstevel@tonic-gate char lvl_name; 2340Sstevel@tonic-gate int lvl_flags; 2350Sstevel@tonic-gate } lvl_t; 2360Sstevel@tonic-gate 2370Sstevel@tonic-gate static lvl_t lvls[] = { 2380Sstevel@tonic-gate { LVLQ, 0, 'Q', 0 }, 2390Sstevel@tonic-gate { LVLQ, 0, 'q', 0 }, 2400Sstevel@tonic-gate { LVL0, MASK0, '0', LSEL_RUNLEVEL | LSEL_NOAUDIT }, 2410Sstevel@tonic-gate { LVL1, MASK1, '1', LSEL_RUNLEVEL | LSEL_NOAUDIT }, 2420Sstevel@tonic-gate { LVL2, MASK2, '2', LSEL_RUNLEVEL }, 2430Sstevel@tonic-gate { LVL3, MASK3, '3', LSEL_RUNLEVEL }, 2440Sstevel@tonic-gate { LVL4, MASK4, '4', LSEL_RUNLEVEL }, 2450Sstevel@tonic-gate { LVL5, MASK5, '5', LSEL_RUNLEVEL | LSEL_NOAUDIT }, 2460Sstevel@tonic-gate { LVL6, MASK6, '6', LSEL_RUNLEVEL | LSEL_NOAUDIT }, 2470Sstevel@tonic-gate { SINGLE_USER, MASKSU, 'S', LSEL_RUNLEVEL | LSEL_NOAUDIT }, 2480Sstevel@tonic-gate { SINGLE_USER, MASKSU, 's', LSEL_RUNLEVEL | LSEL_NOAUDIT }, 2490Sstevel@tonic-gate { LVLa, MASKa, 'a', 0 }, 2500Sstevel@tonic-gate { LVLb, MASKb, 'b', 0 }, 2510Sstevel@tonic-gate { LVLc, MASKc, 'c', 0 } 2520Sstevel@tonic-gate }; 2530Sstevel@tonic-gate 2540Sstevel@tonic-gate #define LVL_NELEMS (sizeof (lvls) / sizeof (lvl_t)) 2550Sstevel@tonic-gate 2560Sstevel@tonic-gate /* 2570Sstevel@tonic-gate * Legal action field values. 2580Sstevel@tonic-gate */ 2590Sstevel@tonic-gate #define OFF 0 /* Kill process if on, else ignore */ 2600Sstevel@tonic-gate #define RESPAWN 1 /* Continuously restart process when it dies */ 2610Sstevel@tonic-gate #define ONDEMAND RESPAWN /* Respawn for a, b, c type processes */ 2620Sstevel@tonic-gate #define ONCE 2 /* Start process, do not respawn when dead */ 2630Sstevel@tonic-gate #define WAIT 3 /* Perform once and wait to complete */ 2640Sstevel@tonic-gate #define BOOT 4 /* Start at boot time only */ 2650Sstevel@tonic-gate #define BOOTWAIT 5 /* Start at boot time and wait to complete */ 2660Sstevel@tonic-gate #define POWERFAIL 6 /* Start on powerfail */ 2670Sstevel@tonic-gate #define POWERWAIT 7 /* Start and wait for complete on powerfail */ 2680Sstevel@tonic-gate #define INITDEFAULT 8 /* Default level "init" should start at */ 2690Sstevel@tonic-gate #define SYSINIT 9 /* Actions performed before init speaks */ 2700Sstevel@tonic-gate 2710Sstevel@tonic-gate #define M_OFF 0001 2720Sstevel@tonic-gate #define M_RESPAWN 0002 2730Sstevel@tonic-gate #define M_ONDEMAND M_RESPAWN 2740Sstevel@tonic-gate #define M_ONCE 0004 2750Sstevel@tonic-gate #define M_WAIT 0010 2760Sstevel@tonic-gate #define M_BOOT 0020 2770Sstevel@tonic-gate #define M_BOOTWAIT 0040 2780Sstevel@tonic-gate #define M_PF 0100 2790Sstevel@tonic-gate #define M_PWAIT 0200 2800Sstevel@tonic-gate #define M_INITDEFAULT 0400 2810Sstevel@tonic-gate #define M_SYSINIT 01000 2820Sstevel@tonic-gate 2830Sstevel@tonic-gate /* States for the inittab parser in getcmd(). */ 2840Sstevel@tonic-gate #define ID 1 2850Sstevel@tonic-gate #define LEVELS 2 2860Sstevel@tonic-gate #define ACTION 3 2870Sstevel@tonic-gate #define COMMAND 4 2880Sstevel@tonic-gate #define COMMENT 5 2890Sstevel@tonic-gate 2900Sstevel@tonic-gate /* 2910Sstevel@tonic-gate * Init can be in any of three main states, "normal" mode where it is 2920Sstevel@tonic-gate * processing entries for the lines file in a normal fashion, "boot" mode, 2930Sstevel@tonic-gate * where it is only interested in the boot actions, and "powerfail" mode, 2940Sstevel@tonic-gate * where it is only interested in powerfail related actions. The following 2950Sstevel@tonic-gate * masks declare the legal actions for each mode. 2960Sstevel@tonic-gate */ 2970Sstevel@tonic-gate #define NORMAL_MODES (M_OFF | M_RESPAWN | M_ONCE | M_WAIT) 2980Sstevel@tonic-gate #define BOOT_MODES (M_BOOT | M_BOOTWAIT) 2990Sstevel@tonic-gate #define PF_MODES (M_PF | M_PWAIT) 3000Sstevel@tonic-gate 3010Sstevel@tonic-gate struct PROC_TABLE { 3020Sstevel@tonic-gate char p_id[4]; /* Four letter unique id of process */ 3030Sstevel@tonic-gate pid_t p_pid; /* Process id */ 3040Sstevel@tonic-gate short p_count; /* How many respawns of this command in */ 3050Sstevel@tonic-gate /* the current series */ 3060Sstevel@tonic-gate long p_time; /* Start time for a series of respawns */ 3070Sstevel@tonic-gate short p_flags; 3080Sstevel@tonic-gate short p_exit; /* Exit status of a process which died */ 3090Sstevel@tonic-gate }; 3100Sstevel@tonic-gate 3110Sstevel@tonic-gate /* 3120Sstevel@tonic-gate * Flags for the "p_flags" word of a PROC_TABLE entry: 3130Sstevel@tonic-gate * 3140Sstevel@tonic-gate * OCCUPIED This slot in init's proc table is in use. 3150Sstevel@tonic-gate * 3160Sstevel@tonic-gate * LIVING Process is alive. 3170Sstevel@tonic-gate * 3180Sstevel@tonic-gate * NOCLEANUP efork() is not allowed to cleanup this entry even 3190Sstevel@tonic-gate * if process is dead. 3200Sstevel@tonic-gate * 3210Sstevel@tonic-gate * NAMED This process has a name, i.e. came from inittab. 3220Sstevel@tonic-gate * 3230Sstevel@tonic-gate * DEMANDREQUEST Process started by a "telinit [abc]" command. Processes 3240Sstevel@tonic-gate * formed this way are respawnable and immune to level 3250Sstevel@tonic-gate * changes as long as their entry exists in inittab. 3260Sstevel@tonic-gate * 3270Sstevel@tonic-gate * TOUCHED Flag used by remv() to determine whether it has looked 3280Sstevel@tonic-gate * at an entry while checking for processes to be killed. 3290Sstevel@tonic-gate * 3300Sstevel@tonic-gate * WARNED Flag used by remv() to mark processes that have been 3310Sstevel@tonic-gate * sent the SIGTERM signal. If they don't die in 5 3320Sstevel@tonic-gate * seconds, they are sent the SIGKILL signal. 3330Sstevel@tonic-gate * 3340Sstevel@tonic-gate * KILLED Flag used by remv() to mark procs that have been sent 3350Sstevel@tonic-gate * the SIGTERM and SIGKILL signals. 3360Sstevel@tonic-gate * 3370Sstevel@tonic-gate * PF_MASK Bitwise or of legal flags, for sanity checking. 3380Sstevel@tonic-gate */ 3390Sstevel@tonic-gate #define OCCUPIED 01 3400Sstevel@tonic-gate #define LIVING 02 3410Sstevel@tonic-gate #define NOCLEANUP 04 3420Sstevel@tonic-gate #define NAMED 010 3430Sstevel@tonic-gate #define DEMANDREQUEST 020 3440Sstevel@tonic-gate #define TOUCHED 040 3450Sstevel@tonic-gate #define WARNED 0100 3460Sstevel@tonic-gate #define KILLED 0200 3470Sstevel@tonic-gate #define PF_MASK 0377 3480Sstevel@tonic-gate 3490Sstevel@tonic-gate /* 3500Sstevel@tonic-gate * Respawn limits for processes that are to be respawned: 3510Sstevel@tonic-gate * 3520Sstevel@tonic-gate * SPAWN_INTERVAL The number of seconds over which "init" will try to 3530Sstevel@tonic-gate * respawn a process SPAWN_LIMIT times before it gets mad. 3540Sstevel@tonic-gate * 3550Sstevel@tonic-gate * SPAWN_LIMIT The number of respawns "init" will attempt in 3560Sstevel@tonic-gate * SPAWN_INTERVAL seconds before it generates an 3570Sstevel@tonic-gate * error message and inhibits further tries for 3580Sstevel@tonic-gate * INHIBIT seconds. 3590Sstevel@tonic-gate * 3600Sstevel@tonic-gate * INHIBIT The number of seconds "init" ignores an entry it had 3610Sstevel@tonic-gate * trouble spawning unless a "telinit Q" is received. 3620Sstevel@tonic-gate */ 3630Sstevel@tonic-gate 3640Sstevel@tonic-gate #define SPAWN_INTERVAL (2*60) 3650Sstevel@tonic-gate #define SPAWN_LIMIT 10 3660Sstevel@tonic-gate #define INHIBIT (5*60) 3670Sstevel@tonic-gate 3680Sstevel@tonic-gate /* 3690Sstevel@tonic-gate * The maximum number of decimal digits for an id_t. (ceil(log10 (max_id))) 3700Sstevel@tonic-gate */ 3710Sstevel@tonic-gate #define ID_MAX_STR_LEN 10 3720Sstevel@tonic-gate 3730Sstevel@tonic-gate #define NULLPROC ((struct PROC_TABLE *)(0)) 3740Sstevel@tonic-gate #define NO_ROOM ((struct PROC_TABLE *)(FAILURE)) 3750Sstevel@tonic-gate 3760Sstevel@tonic-gate struct CMD_LINE { 3770Sstevel@tonic-gate char c_id[4]; /* Four letter unique id of process to be */ 3780Sstevel@tonic-gate /* affected by action */ 3790Sstevel@tonic-gate short c_levels; /* Mask of legal levels for process */ 3800Sstevel@tonic-gate short c_action; /* Mask for type of action required */ 3810Sstevel@tonic-gate char *c_command; /* Pointer to init command */ 3820Sstevel@tonic-gate }; 3830Sstevel@tonic-gate 3840Sstevel@tonic-gate struct pidrec { 3850Sstevel@tonic-gate int pd_type; /* Command type */ 3860Sstevel@tonic-gate pid_t pd_pid; /* pid to add or remove */ 3870Sstevel@tonic-gate }; 3880Sstevel@tonic-gate 3890Sstevel@tonic-gate /* 3900Sstevel@tonic-gate * pd_type's 3910Sstevel@tonic-gate */ 3920Sstevel@tonic-gate #define ADDPID 1 3930Sstevel@tonic-gate #define REMPID 2 3940Sstevel@tonic-gate 3950Sstevel@tonic-gate static struct pidlist { 3960Sstevel@tonic-gate pid_t pl_pid; /* pid to watch for */ 3970Sstevel@tonic-gate int pl_dflag; /* Flag indicating SIGCLD from this pid */ 3980Sstevel@tonic-gate short pl_exit; /* Exit status of proc */ 3990Sstevel@tonic-gate struct pidlist *pl_next; /* Next in list */ 4000Sstevel@tonic-gate } *Plhead, *Plfree; 4010Sstevel@tonic-gate 4020Sstevel@tonic-gate /* 4030Sstevel@tonic-gate * The following structure contains a set of modes for /dev/syscon 4040Sstevel@tonic-gate * and should match the default contents of /etc/ioctl.syscon. 4050Sstevel@tonic-gate */ 4060Sstevel@tonic-gate static struct termios dflt_termios = { 4070Sstevel@tonic-gate BRKINT|ICRNL|IXON|IMAXBEL, /* iflag */ 4080Sstevel@tonic-gate OPOST|ONLCR|TAB3, /* oflag */ 4090Sstevel@tonic-gate CS8|CREAD|B9600, /* cflag */ 4100Sstevel@tonic-gate ISIG|ICANON|ECHO|ECHOE|ECHOK|ECHOCTL|ECHOKE|IEXTEN, /* lflag */ 4110Sstevel@tonic-gate CINTR, CQUIT, CERASE, CKILL, CEOF, 0, 0, 0, 4120Sstevel@tonic-gate 0, 0, 0, 0, 0, 0, 0, 0, 4130Sstevel@tonic-gate 0, 0, 0 4140Sstevel@tonic-gate }; 4150Sstevel@tonic-gate 4160Sstevel@tonic-gate static struct termios stored_syscon_termios; 4170Sstevel@tonic-gate static int write_ioctl = 0; /* Rewrite /etc/ioctl.syscon */ 4180Sstevel@tonic-gate 4190Sstevel@tonic-gate static union WAKEUP { 4200Sstevel@tonic-gate struct WAKEFLAGS { 4210Sstevel@tonic-gate unsigned w_usersignal : 1; /* User sent signal to "init" */ 4220Sstevel@tonic-gate unsigned w_childdeath : 1; /* An "init" child died */ 4230Sstevel@tonic-gate unsigned w_powerhit : 1; /* OS experienced powerfail */ 4240Sstevel@tonic-gate } w_flags; 4250Sstevel@tonic-gate int w_mask; 4260Sstevel@tonic-gate } wakeup; 4270Sstevel@tonic-gate 4280Sstevel@tonic-gate 4290Sstevel@tonic-gate struct init_state { 4300Sstevel@tonic-gate int ist_runlevel; 4310Sstevel@tonic-gate int ist_num_proc; 4320Sstevel@tonic-gate int ist_utmpx_ok; 4330Sstevel@tonic-gate struct PROC_TABLE ist_proc_table[1]; 4340Sstevel@tonic-gate }; 4350Sstevel@tonic-gate 4360Sstevel@tonic-gate #define cur_state (g_state->ist_runlevel) 4370Sstevel@tonic-gate #define num_proc (g_state->ist_num_proc) 4380Sstevel@tonic-gate #define proc_table (g_state->ist_proc_table) 4390Sstevel@tonic-gate #define utmpx_ok (g_state->ist_utmpx_ok) 4400Sstevel@tonic-gate 4410Sstevel@tonic-gate /* Contract cookies. */ 4420Sstevel@tonic-gate #define ORDINARY_COOKIE 0 4430Sstevel@tonic-gate #define STARTD_COOKIE 1 4440Sstevel@tonic-gate 4450Sstevel@tonic-gate 4460Sstevel@tonic-gate #ifndef NDEBUG 4470Sstevel@tonic-gate #define bad_error(func, err) { \ 4480Sstevel@tonic-gate (void) fprintf(stderr, "%s:%d: %s() failed with unexpected " \ 4490Sstevel@tonic-gate "error %d. Aborting.\n", __FILE__, __LINE__, (func), (err)); \ 4500Sstevel@tonic-gate abort(); \ 4510Sstevel@tonic-gate } 4520Sstevel@tonic-gate #else 4530Sstevel@tonic-gate #define bad_error(func, err) abort() 4540Sstevel@tonic-gate #endif 4550Sstevel@tonic-gate 4560Sstevel@tonic-gate 4570Sstevel@tonic-gate /* 4580Sstevel@tonic-gate * Useful file and device names. 4590Sstevel@tonic-gate */ 4600Sstevel@tonic-gate static char *CONSOLE = "/dev/console"; /* Real system console */ 4610Sstevel@tonic-gate static char *INITPIPE_DIR = "/etc"; 4620Sstevel@tonic-gate static char *INITPIPE = "/etc/initpipe"; 4630Sstevel@tonic-gate 4640Sstevel@tonic-gate #define INIT_STATE_DIR "/etc/svc/volatile" 4650Sstevel@tonic-gate static const char * const init_state_file = INIT_STATE_DIR "/init.state"; 4660Sstevel@tonic-gate static const char * const init_next_state_file = 4670Sstevel@tonic-gate INIT_STATE_DIR "/init-next.state"; 4680Sstevel@tonic-gate 4690Sstevel@tonic-gate static const int init_num_proc = 20; /* Initial size of process table. */ 4700Sstevel@tonic-gate 4710Sstevel@tonic-gate static char *UTMPX = UTMPX_FILE; /* Snapshot record file */ 4720Sstevel@tonic-gate static char *WTMPX = WTMPX_FILE; /* Long term record file */ 4730Sstevel@tonic-gate static char *INITTAB = "/etc/inittab"; /* Script file for "init" */ 4740Sstevel@tonic-gate static char *SYSTTY = "/dev/systty"; /* System Console */ 4750Sstevel@tonic-gate static char *SYSCON = "/dev/syscon"; /* Virtual System console */ 4760Sstevel@tonic-gate static char *IOCTLSYSCON = "/etc/ioctl.syscon"; /* Last syscon modes */ 4770Sstevel@tonic-gate static char *ENVFILE = "/etc/default/init"; /* Default env. */ 4780Sstevel@tonic-gate static char *SU = "/etc/sulogin"; /* Super-user program for single user */ 4790Sstevel@tonic-gate static char *SH = "/sbin/sh"; /* Standard shell */ 4800Sstevel@tonic-gate 4810Sstevel@tonic-gate /* 4820Sstevel@tonic-gate * Default Path. /sbin is included in path only during sysinit phase 4830Sstevel@tonic-gate */ 4840Sstevel@tonic-gate #define DEF_PATH "PATH=/usr/sbin:/usr/bin" 4850Sstevel@tonic-gate #define INIT_PATH "PATH=/sbin:/usr/sbin:/usr/bin" 4860Sstevel@tonic-gate 4870Sstevel@tonic-gate static int prior_state; 4880Sstevel@tonic-gate static int prev_state; /* State "init" was in last time it woke */ 4890Sstevel@tonic-gate static int new_state; /* State user wants "init" to go to. */ 4900Sstevel@tonic-gate static int op_modes = BOOT_MODES; /* Current state of "init" */ 4910Sstevel@tonic-gate static int Gchild = 0; /* Flag to indicate "godchild" died, set in */ 4920Sstevel@tonic-gate /* childeath() and cleared in cleanaux() */ 4930Sstevel@tonic-gate static int Pfd = -1; /* fd to receive pids thru */ 4940Sstevel@tonic-gate static unsigned int spawncnt, pausecnt; 4950Sstevel@tonic-gate static int rsflag; /* Set if a respawn has taken place */ 4960Sstevel@tonic-gate static volatile int time_up; /* Flag set to TRUE by the alarm interrupt */ 4970Sstevel@tonic-gate /* routine each time an alarm interrupt */ 4980Sstevel@tonic-gate /* takes place. */ 4990Sstevel@tonic-gate static int sflg = 0; /* Set if we were booted -s to single user */ 5000Sstevel@tonic-gate static int rflg = 0; /* Set if booted -r, reconfigure devices */ 5010Sstevel@tonic-gate static int bflg = 0; /* Set if booted -b, don't run rc scripts */ 5020Sstevel@tonic-gate static pid_t init_pid; /* PID of "one true" init for current zone */ 5030Sstevel@tonic-gate 5040Sstevel@tonic-gate static struct init_state *g_state = NULL; 5050Sstevel@tonic-gate static size_t g_state_sz; 5060Sstevel@tonic-gate static int booting = 1; /* Set while we're booting. */ 5070Sstevel@tonic-gate 5080Sstevel@tonic-gate /* 5090Sstevel@tonic-gate * Array for default global environment. 5100Sstevel@tonic-gate */ 5110Sstevel@tonic-gate #define MAXENVENT 24 /* Max number of default env variables + 1 */ 5120Sstevel@tonic-gate /* init can use three itself, so this leaves */ 5130Sstevel@tonic-gate /* 20 for the administrator in ENVFILE. */ 5140Sstevel@tonic-gate static char *glob_envp[MAXENVENT]; /* Array of environment strings */ 5150Sstevel@tonic-gate static int glob_envn; /* Number of environment strings */ 5160Sstevel@tonic-gate 5170Sstevel@tonic-gate 5180Sstevel@tonic-gate static struct pollfd poll_fds[1]; 5190Sstevel@tonic-gate static int poll_nfds = 0; /* poll_fds is uninitialized */ 5200Sstevel@tonic-gate 5210Sstevel@tonic-gate static int legacy_tmpl = -1; /* fd for legacy contract template */ 5220Sstevel@tonic-gate static int startd_tmpl = -1; /* fd for svc.startd's template */ 5230Sstevel@tonic-gate 5240Sstevel@tonic-gate static char startd_cline[256] = ""; /* svc.startd's command line */ 5250Sstevel@tonic-gate static int do_restart_startd = 1; /* Whether to restart svc.startd. */ 5260Sstevel@tonic-gate static char *smf_options = NULL; /* Options to give to startd. */ 5270Sstevel@tonic-gate static int smf_debug = 0; /* Messages for debugging smf(5) */ 5280Sstevel@tonic-gate static time_t init_boot_time; /* Substitute for kernel boot time. */ 5290Sstevel@tonic-gate 5300Sstevel@tonic-gate #define NSTARTD_FAILURE_TIMES 3 /* trigger after 3 failures */ 5310Sstevel@tonic-gate #define STARTD_FAILURE_RATE_NS 5000000000LL /* 1 failure/5 seconds */ 5320Sstevel@tonic-gate 5330Sstevel@tonic-gate static hrtime_t startd_failure_time[NSTARTD_FAILURE_TIMES]; 5340Sstevel@tonic-gate static uint_t startd_failure_index; 5350Sstevel@tonic-gate 5360Sstevel@tonic-gate 5370Sstevel@tonic-gate static char *prog_name(char *); 5380Sstevel@tonic-gate static int state_to_mask(int); 5390Sstevel@tonic-gate static int lvlname_to_mask(char, int *); 5400Sstevel@tonic-gate static void lscf_set_runlevel(char); 5410Sstevel@tonic-gate static int state_to_flags(int); 5420Sstevel@tonic-gate static char state_to_name(int); 5430Sstevel@tonic-gate static int lvlname_to_state(char); 5440Sstevel@tonic-gate static int getcmd(struct CMD_LINE *, char *); 5450Sstevel@tonic-gate static int realcon(); 5460Sstevel@tonic-gate static int spawn_processes(); 5470Sstevel@tonic-gate static int get_ioctl_syscon(); 5480Sstevel@tonic-gate static int account(short, struct PROC_TABLE *, char *); 5490Sstevel@tonic-gate static void alarmclk(); 5500Sstevel@tonic-gate static void childeath(int); 5510Sstevel@tonic-gate static void cleanaux(); 5520Sstevel@tonic-gate static void clearent(pid_t, short); 5530Sstevel@tonic-gate static void console(boolean_t, char *, ...); 5540Sstevel@tonic-gate static void init_signals(void); 5550Sstevel@tonic-gate static void setup_pipe(); 5560Sstevel@tonic-gate static void killproc(pid_t); 5570Sstevel@tonic-gate static void init_env(); 5580Sstevel@tonic-gate static void boot_init(); 5590Sstevel@tonic-gate static void powerfail(); 5600Sstevel@tonic-gate static void remv(); 5610Sstevel@tonic-gate static void write_ioctl_syscon(); 5620Sstevel@tonic-gate static void spawn(struct PROC_TABLE *, struct CMD_LINE *); 5630Sstevel@tonic-gate static void setimer(int); 5640Sstevel@tonic-gate static void siglvl(int, siginfo_t *, ucontext_t *); 5650Sstevel@tonic-gate static void sigpoll(int); 5660Sstevel@tonic-gate static void enter_maintenance(void); 5670Sstevel@tonic-gate static void timer(int); 5680Sstevel@tonic-gate static void userinit(int, char **); 5690Sstevel@tonic-gate static void notify_pam_dead(struct utmpx *); 5700Sstevel@tonic-gate static long waitproc(struct PROC_TABLE *); 5710Sstevel@tonic-gate static struct PROC_TABLE *efork(int, struct PROC_TABLE *, int); 5720Sstevel@tonic-gate static struct PROC_TABLE *findpslot(struct CMD_LINE *); 5730Sstevel@tonic-gate static void increase_proc_table_size(); 5740Sstevel@tonic-gate static void st_init(); 5750Sstevel@tonic-gate static void st_write(); 5760Sstevel@tonic-gate static void contracts_init(); 5770Sstevel@tonic-gate static void contract_event(struct pollfd *); 5780Sstevel@tonic-gate static int startd_run(const char *, int, ctid_t); 5790Sstevel@tonic-gate static void startd_record_failure(); 5800Sstevel@tonic-gate static int startd_failure_rate_critical(); 5810Sstevel@tonic-gate static char *audit_boot_msg(); 5820Sstevel@tonic-gate static int audit_put_record(int, int, char *); 5830Sstevel@tonic-gate static void update_boot_archive(int new_state); 5840Sstevel@tonic-gate 5850Sstevel@tonic-gate int 5860Sstevel@tonic-gate main(int argc, char *argv[]) 5870Sstevel@tonic-gate { 5880Sstevel@tonic-gate int chg_lvl_flag = FALSE, print_banner = FALSE; 5890Sstevel@tonic-gate int may_need_audit = 1; 5900Sstevel@tonic-gate int c; 5910Sstevel@tonic-gate char *msg; 5920Sstevel@tonic-gate 5930Sstevel@tonic-gate /* Get a timestamp for use as boot time, if needed. */ 5940Sstevel@tonic-gate (void) time(&init_boot_time); 5950Sstevel@tonic-gate 5960Sstevel@tonic-gate /* Get the default umask */ 5970Sstevel@tonic-gate cmask = umask(022); 5980Sstevel@tonic-gate (void) umask(cmask); 5990Sstevel@tonic-gate 6000Sstevel@tonic-gate /* Parse the arguments to init. Check for single user */ 6010Sstevel@tonic-gate opterr = 0; 6020Sstevel@tonic-gate while ((c = getopt(argc, argv, "brsm:")) != EOF) { 6030Sstevel@tonic-gate switch (c) { 6040Sstevel@tonic-gate case 'b': 6050Sstevel@tonic-gate rflg = 0; 6060Sstevel@tonic-gate bflg = 1; 6070Sstevel@tonic-gate if (!sflg) 6080Sstevel@tonic-gate sflg++; 6090Sstevel@tonic-gate break; 6100Sstevel@tonic-gate case 'r': 6110Sstevel@tonic-gate bflg = 0; 6120Sstevel@tonic-gate rflg++; 6130Sstevel@tonic-gate break; 6140Sstevel@tonic-gate case 's': 6150Sstevel@tonic-gate if (!bflg) 6160Sstevel@tonic-gate sflg++; 6170Sstevel@tonic-gate break; 6180Sstevel@tonic-gate case 'm': 6190Sstevel@tonic-gate smf_options = optarg; 6200Sstevel@tonic-gate smf_debug = (strstr(smf_options, "debug") != NULL); 6210Sstevel@tonic-gate break; 6220Sstevel@tonic-gate } 6230Sstevel@tonic-gate } 6240Sstevel@tonic-gate 6250Sstevel@tonic-gate /* 6260Sstevel@tonic-gate * Determine if we are the main init, or a user invoked init, whose job 6270Sstevel@tonic-gate * it is to inform init to change levels or perform some other action. 6280Sstevel@tonic-gate */ 6290Sstevel@tonic-gate if (zone_getattr(getzoneid(), ZONE_ATTR_INITPID, &init_pid, 6300Sstevel@tonic-gate sizeof (init_pid)) != sizeof (init_pid)) { 6310Sstevel@tonic-gate (void) fprintf(stderr, "could not get pid for init\n"); 6320Sstevel@tonic-gate return (1); 6330Sstevel@tonic-gate } 6340Sstevel@tonic-gate 6350Sstevel@tonic-gate /* 6360Sstevel@tonic-gate * If this PID is not the same as the "true" init for the zone, then we 6370Sstevel@tonic-gate * must be in 'user' mode. 6380Sstevel@tonic-gate */ 6390Sstevel@tonic-gate if (getpid() != init_pid) { 6400Sstevel@tonic-gate userinit(argc, argv); 6410Sstevel@tonic-gate } 6420Sstevel@tonic-gate 6430Sstevel@tonic-gate if (getzoneid() != GLOBAL_ZONEID) { 6440Sstevel@tonic-gate print_banner = TRUE; 6450Sstevel@tonic-gate } 6460Sstevel@tonic-gate 6470Sstevel@tonic-gate /* 6480Sstevel@tonic-gate * Initialize state (and set "booting"). 6490Sstevel@tonic-gate */ 6500Sstevel@tonic-gate st_init(); 6510Sstevel@tonic-gate 6520Sstevel@tonic-gate if (booting && print_banner) { 6530Sstevel@tonic-gate struct utsname un; 6540Sstevel@tonic-gate char buf[BUFSIZ], *isa; 6550Sstevel@tonic-gate long ret; 6560Sstevel@tonic-gate int bits = 32; 6570Sstevel@tonic-gate 6580Sstevel@tonic-gate /* 6590Sstevel@tonic-gate * We want to print the boot banner as soon as 6600Sstevel@tonic-gate * possible. In the global zone, the kernel does it, 6610Sstevel@tonic-gate * but we do not have that luxury in non-global zones, 6620Sstevel@tonic-gate * so we will print it here. 6630Sstevel@tonic-gate */ 6640Sstevel@tonic-gate (void) uname(&un); 6650Sstevel@tonic-gate ret = sysinfo(SI_ISALIST, buf, sizeof (buf)); 6660Sstevel@tonic-gate if (ret != -1L && ret <= sizeof (buf)) { 6670Sstevel@tonic-gate for (isa = strtok(buf, " "); isa; 6680Sstevel@tonic-gate isa = strtok(NULL, " ")) { 6690Sstevel@tonic-gate if (strcmp(isa, "sparcv9") == 0 || 6700Sstevel@tonic-gate strcmp(isa, "amd64") == 0) { 6710Sstevel@tonic-gate bits = 64; 6720Sstevel@tonic-gate break; 6730Sstevel@tonic-gate } 6740Sstevel@tonic-gate } 6750Sstevel@tonic-gate } 6760Sstevel@tonic-gate 6770Sstevel@tonic-gate console(B_FALSE, 6780Sstevel@tonic-gate "\n\n%s Release %s Version %s %d-bit\r\n", 6790Sstevel@tonic-gate un.sysname, un.release, un.version, bits); 6800Sstevel@tonic-gate console(B_FALSE, 6810Sstevel@tonic-gate "Copyright 1983-2005 Sun Microsystems, Inc. " 6820Sstevel@tonic-gate " All rights reserved.\r\n"); 6830Sstevel@tonic-gate console(B_FALSE, 6840Sstevel@tonic-gate "Use is subject to license terms.\r\n"); 6850Sstevel@tonic-gate } 6860Sstevel@tonic-gate 6870Sstevel@tonic-gate /* 6880Sstevel@tonic-gate * Get the ioctl settings for /dev/syscon from /etc/ioctl.syscon 6890Sstevel@tonic-gate * so that it can be brought up in the state it was in when the 6900Sstevel@tonic-gate * system went down; or set to defaults if ioctl.syscon isn't 6910Sstevel@tonic-gate * valid. 6920Sstevel@tonic-gate * 6930Sstevel@tonic-gate * This needs to be done even if we're restarting so reset_modes() 6940Sstevel@tonic-gate * will work in case we need to go down to single user mode. 6950Sstevel@tonic-gate */ 6960Sstevel@tonic-gate write_ioctl = get_ioctl_syscon(); 6970Sstevel@tonic-gate 6980Sstevel@tonic-gate /* 6990Sstevel@tonic-gate * Set up all signals to be caught or ignored as appropriate. 7000Sstevel@tonic-gate */ 7010Sstevel@tonic-gate init_signals(); 7020Sstevel@tonic-gate 7030Sstevel@tonic-gate /* Load glob_envp from ENVFILE. */ 7040Sstevel@tonic-gate init_env(); 7050Sstevel@tonic-gate 7060Sstevel@tonic-gate contracts_init(); 7070Sstevel@tonic-gate 7080Sstevel@tonic-gate if (!booting) { 7090Sstevel@tonic-gate /* cur_state should have been read in. */ 7100Sstevel@tonic-gate 7110Sstevel@tonic-gate op_modes = NORMAL_MODES; 7120Sstevel@tonic-gate 7130Sstevel@tonic-gate /* Rewrite the ioctl file if it was bad. */ 7140Sstevel@tonic-gate if (write_ioctl) 7150Sstevel@tonic-gate write_ioctl_syscon(); 7160Sstevel@tonic-gate } else { 7170Sstevel@tonic-gate /* 7180Sstevel@tonic-gate * It's fine to boot up with state as zero, because 7190Sstevel@tonic-gate * startd will later tell us the real state. 7200Sstevel@tonic-gate */ 7210Sstevel@tonic-gate cur_state = 0; 7220Sstevel@tonic-gate op_modes = BOOT_MODES; 7230Sstevel@tonic-gate 7240Sstevel@tonic-gate boot_init(); 7250Sstevel@tonic-gate } 7260Sstevel@tonic-gate 7270Sstevel@tonic-gate prev_state = prior_state = cur_state; 7280Sstevel@tonic-gate 7290Sstevel@tonic-gate /* 7300Sstevel@tonic-gate * Here is the beginning of the main process loop. 7310Sstevel@tonic-gate */ 7320Sstevel@tonic-gate for (;;) { 7330Sstevel@tonic-gate if (Pfd < 0) 7340Sstevel@tonic-gate setup_pipe(); 7350Sstevel@tonic-gate 7360Sstevel@tonic-gate /* 7370Sstevel@tonic-gate * Clean up any accounting records for dead "godchildren". 7380Sstevel@tonic-gate */ 7390Sstevel@tonic-gate if (Gchild) 7400Sstevel@tonic-gate cleanaux(); 7410Sstevel@tonic-gate 7420Sstevel@tonic-gate /* 7430Sstevel@tonic-gate * If in "normal" mode, check all living processes and initiate 7440Sstevel@tonic-gate * kill sequence on those that should not be there anymore. 7450Sstevel@tonic-gate */ 7460Sstevel@tonic-gate if (op_modes == NORMAL_MODES && cur_state != LVLa && 7470Sstevel@tonic-gate cur_state != LVLb && cur_state != LVLc) 7480Sstevel@tonic-gate remv(); 7490Sstevel@tonic-gate 7500Sstevel@tonic-gate /* 7510Sstevel@tonic-gate * If a change in run levels is the reason we awoke, now do 7520Sstevel@tonic-gate * the accounting to report the change in the utmp file. 7530Sstevel@tonic-gate * Also report the change on the system console. 7540Sstevel@tonic-gate */ 7550Sstevel@tonic-gate if (chg_lvl_flag) { 7560Sstevel@tonic-gate chg_lvl_flag = FALSE; 7570Sstevel@tonic-gate 7580Sstevel@tonic-gate if (state_to_flags(cur_state) & LSEL_RUNLEVEL) { 7590Sstevel@tonic-gate char rl = state_to_name(cur_state); 7600Sstevel@tonic-gate 7610Sstevel@tonic-gate if (rl != -1) 7620Sstevel@tonic-gate lscf_set_runlevel(rl); 7630Sstevel@tonic-gate } 7640Sstevel@tonic-gate 7650Sstevel@tonic-gate may_need_audit = 1; 7660Sstevel@tonic-gate } 7670Sstevel@tonic-gate 7680Sstevel@tonic-gate /* 7690Sstevel@tonic-gate * Scan the inittab file and spawn and respawn processes that 7700Sstevel@tonic-gate * should be alive in the current state. If inittab does not 7710Sstevel@tonic-gate * exist default to single user mode. 7720Sstevel@tonic-gate */ 7730Sstevel@tonic-gate if (spawn_processes() == FAILURE) { 7740Sstevel@tonic-gate prior_state = prev_state; 7750Sstevel@tonic-gate cur_state = SINGLE_USER; 7760Sstevel@tonic-gate } 7770Sstevel@tonic-gate 7780Sstevel@tonic-gate /* If any respawns occurred, take note. */ 7790Sstevel@tonic-gate if (rsflag) { 7800Sstevel@tonic-gate rsflag = 0; 7810Sstevel@tonic-gate spawncnt++; 7820Sstevel@tonic-gate } 7830Sstevel@tonic-gate 7840Sstevel@tonic-gate /* 7850Sstevel@tonic-gate * If a powerfail signal was received during the last 7860Sstevel@tonic-gate * sequence, set mode to powerfail. When spawn_processes() is 7870Sstevel@tonic-gate * entered the first thing it does is to check "powerhit". If 7880Sstevel@tonic-gate * it is in PF_MODES then it clears "powerhit" and does 7890Sstevel@tonic-gate * a powerfail sequence. If it is not in PF_MODES, then it 7900Sstevel@tonic-gate * puts itself in PF_MODES and then clears "powerhit". Should 7910Sstevel@tonic-gate * "powerhit" get set again while spawn_processes() is working 7920Sstevel@tonic-gate * on a powerfail sequence, the following code will see that 7930Sstevel@tonic-gate * spawn_processes() tries to execute the powerfail sequence 7940Sstevel@tonic-gate * again. This guarantees that the powerfail sequence will be 7950Sstevel@tonic-gate * successfully completed before further processing takes 7960Sstevel@tonic-gate * place. 7970Sstevel@tonic-gate */ 7980Sstevel@tonic-gate if (wakeup.w_flags.w_powerhit) { 7990Sstevel@tonic-gate op_modes = PF_MODES; 8000Sstevel@tonic-gate /* 8010Sstevel@tonic-gate * Make sure that cur_state != prev_state so that 8020Sstevel@tonic-gate * ONCE and WAIT types work. 8030Sstevel@tonic-gate */ 8040Sstevel@tonic-gate prev_state = 0; 8050Sstevel@tonic-gate } else if (op_modes != NORMAL_MODES) { 8060Sstevel@tonic-gate /* 8070Sstevel@tonic-gate * If spawn_processes() was not just called while in 8080Sstevel@tonic-gate * normal mode, we set the mode to normal and it will 8090Sstevel@tonic-gate * be called again to check normal modes. If we have 8100Sstevel@tonic-gate * just finished a powerfail sequence with prev_state 8110Sstevel@tonic-gate * equal to zero, we set prev_state equal to cur_state 8120Sstevel@tonic-gate * before the next pass through. 8130Sstevel@tonic-gate */ 8140Sstevel@tonic-gate if (op_modes == PF_MODES) 8150Sstevel@tonic-gate prev_state = cur_state; 8160Sstevel@tonic-gate op_modes = NORMAL_MODES; 8170Sstevel@tonic-gate } else if (cur_state == LVLa || cur_state == LVLb || 8180Sstevel@tonic-gate cur_state == LVLc) { 8190Sstevel@tonic-gate /* 8200Sstevel@tonic-gate * If it was a change of levels that awakened us and the 8210Sstevel@tonic-gate * new level is one of the demand levels then reset 8220Sstevel@tonic-gate * cur_state to the previous state and do another scan 8230Sstevel@tonic-gate * to take care of the usual respawn actions. 8240Sstevel@tonic-gate */ 8250Sstevel@tonic-gate cur_state = prior_state; 8260Sstevel@tonic-gate prior_state = prev_state; 8270Sstevel@tonic-gate prev_state = cur_state; 8280Sstevel@tonic-gate } else { 8290Sstevel@tonic-gate prev_state = cur_state; 8300Sstevel@tonic-gate 8310Sstevel@tonic-gate if (wakeup.w_mask == 0) { 8320Sstevel@tonic-gate int ret; 8330Sstevel@tonic-gate 8340Sstevel@tonic-gate if (may_need_audit && (cur_state == LVL3)) { 8350Sstevel@tonic-gate msg = audit_boot_msg(); 8360Sstevel@tonic-gate 8370Sstevel@tonic-gate may_need_audit = 0; 8380Sstevel@tonic-gate (void) audit_put_record(ADT_SUCCESS, 8390Sstevel@tonic-gate ADT_SUCCESS, msg); 8400Sstevel@tonic-gate free(msg); 8410Sstevel@tonic-gate } 8420Sstevel@tonic-gate 8430Sstevel@tonic-gate /* 8440Sstevel@tonic-gate * "init" is finished with all actions for 8450Sstevel@tonic-gate * the current wakeup. 8460Sstevel@tonic-gate */ 8470Sstevel@tonic-gate ret = poll(poll_fds, poll_nfds, 8480Sstevel@tonic-gate SLEEPTIME * MILLISEC); 8490Sstevel@tonic-gate pausecnt++; 8500Sstevel@tonic-gate if (ret > 0) 8510Sstevel@tonic-gate contract_event(&poll_fds[0]); 8520Sstevel@tonic-gate else if (ret < 0 && errno != EINTR) 8530Sstevel@tonic-gate console(B_TRUE, "poll() error: %s\n", 8540Sstevel@tonic-gate strerror(errno)); 8550Sstevel@tonic-gate } 8560Sstevel@tonic-gate 8570Sstevel@tonic-gate if (wakeup.w_flags.w_usersignal) { 8580Sstevel@tonic-gate /* 8590Sstevel@tonic-gate * Install the new level. This could be a real 8600Sstevel@tonic-gate * change in levels or a telinit [Q|a|b|c] or 8610Sstevel@tonic-gate * just a telinit to the same level at which 8620Sstevel@tonic-gate * we are running. 8630Sstevel@tonic-gate */ 8640Sstevel@tonic-gate if (new_state != cur_state) { 8650Sstevel@tonic-gate if (new_state == LVLa || 8660Sstevel@tonic-gate new_state == LVLb || 8670Sstevel@tonic-gate new_state == LVLc) { 8680Sstevel@tonic-gate prev_state = prior_state; 8690Sstevel@tonic-gate prior_state = cur_state; 8700Sstevel@tonic-gate cur_state = new_state; 8710Sstevel@tonic-gate } else { 8720Sstevel@tonic-gate prev_state = cur_state; 8730Sstevel@tonic-gate if (cur_state >= 0) 8740Sstevel@tonic-gate prior_state = cur_state; 8750Sstevel@tonic-gate cur_state = new_state; 8760Sstevel@tonic-gate chg_lvl_flag = TRUE; 8770Sstevel@tonic-gate } 8780Sstevel@tonic-gate } 8790Sstevel@tonic-gate 8800Sstevel@tonic-gate new_state = 0; 8810Sstevel@tonic-gate } 8820Sstevel@tonic-gate 8830Sstevel@tonic-gate if (wakeup.w_flags.w_powerhit) 8840Sstevel@tonic-gate op_modes = PF_MODES; 8850Sstevel@tonic-gate 8860Sstevel@tonic-gate /* 8870Sstevel@tonic-gate * Clear all wakeup reasons. 8880Sstevel@tonic-gate */ 8890Sstevel@tonic-gate wakeup.w_mask = 0; 8900Sstevel@tonic-gate } 8910Sstevel@tonic-gate } 8920Sstevel@tonic-gate 8930Sstevel@tonic-gate /*NOTREACHED*/ 8940Sstevel@tonic-gate } 8950Sstevel@tonic-gate 8960Sstevel@tonic-gate static void 8970Sstevel@tonic-gate update_boot_archive(int new_state) 8980Sstevel@tonic-gate { 8990Sstevel@tonic-gate if (new_state != LVL0 && new_state != LVL5 && new_state != LVL6) 9000Sstevel@tonic-gate return; 9010Sstevel@tonic-gate 9020Sstevel@tonic-gate if (getzoneid() != GLOBAL_ZONEID) 9030Sstevel@tonic-gate return; 9040Sstevel@tonic-gate 9050Sstevel@tonic-gate (void) system("/sbin/bootadm -a update_all"); 9060Sstevel@tonic-gate } 9070Sstevel@tonic-gate 9080Sstevel@tonic-gate /* 9090Sstevel@tonic-gate * void enter_maintenance() 9100Sstevel@tonic-gate * A simple invocation of sulogin(1M), with no baggage, in the case that we 9110Sstevel@tonic-gate * are unable to activate svc.startd(1M). We fork; the child runs sulogin; 9120Sstevel@tonic-gate * we wait for it to exit. 9130Sstevel@tonic-gate */ 9140Sstevel@tonic-gate static void 9150Sstevel@tonic-gate enter_maintenance() 9160Sstevel@tonic-gate { 9170Sstevel@tonic-gate struct PROC_TABLE *su_process; 9180Sstevel@tonic-gate 9190Sstevel@tonic-gate console(B_FALSE, "Requesting maintenance mode\n" 9200Sstevel@tonic-gate "(See /lib/svc/share/README for additional information.)\n"); 9210Sstevel@tonic-gate (void) sigset(SIGCLD, SIG_DFL); 9220Sstevel@tonic-gate while ((su_process = efork(M_OFF, NULLPROC, NOCLEANUP)) == NO_ROOM) 9230Sstevel@tonic-gate (void) pause(); 9240Sstevel@tonic-gate (void) sigset(SIGCLD, childeath); 9250Sstevel@tonic-gate if (su_process == NULLPROC) { 9260Sstevel@tonic-gate int fd; 9270Sstevel@tonic-gate 9280Sstevel@tonic-gate (void) fclose(stdin); 9290Sstevel@tonic-gate (void) fclose(stdout); 9300Sstevel@tonic-gate (void) fclose(stderr); 9310Sstevel@tonic-gate closefrom(0); 9320Sstevel@tonic-gate 9330Sstevel@tonic-gate fd = open(SYSCON, O_RDWR | O_NOCTTY); 9340Sstevel@tonic-gate if (fd >= 0) { 9350Sstevel@tonic-gate (void) dup2(fd, 1); 9360Sstevel@tonic-gate (void) dup2(fd, 2); 9370Sstevel@tonic-gate } else { 9380Sstevel@tonic-gate /* 9390Sstevel@tonic-gate * Need to issue an error message somewhere. 9400Sstevel@tonic-gate */ 9410Sstevel@tonic-gate syslog(LOG_CRIT, "init[%d]: cannot open %s; %s\n", 9420Sstevel@tonic-gate getpid(), SYSCON, strerror(errno)); 9430Sstevel@tonic-gate } 9440Sstevel@tonic-gate 9450Sstevel@tonic-gate /* 9460Sstevel@tonic-gate * Execute the "su" program. 9470Sstevel@tonic-gate */ 9480Sstevel@tonic-gate (void) execle(SU, SU, "-", (char *)0, glob_envp); 9490Sstevel@tonic-gate console(B_TRUE, "execle of %s failed: %s\n", SU, 9500Sstevel@tonic-gate strerror(errno)); 9510Sstevel@tonic-gate timer(5); 9520Sstevel@tonic-gate exit(1); 9530Sstevel@tonic-gate } 9540Sstevel@tonic-gate 9550Sstevel@tonic-gate /* 9560Sstevel@tonic-gate * If we are the parent, wait around for the child to die 9570Sstevel@tonic-gate * or for "init" to be signaled to change levels. 9580Sstevel@tonic-gate */ 9590Sstevel@tonic-gate while (waitproc(su_process) == FAILURE) { 9600Sstevel@tonic-gate /* 9610Sstevel@tonic-gate * All other reasons for waking are ignored when in 9620Sstevel@tonic-gate * single-user mode. The only child we are interested 9630Sstevel@tonic-gate * in is being waited for explicitly by waitproc(). 9640Sstevel@tonic-gate */ 9650Sstevel@tonic-gate wakeup.w_mask = 0; 9660Sstevel@tonic-gate } 9670Sstevel@tonic-gate } 9680Sstevel@tonic-gate 9690Sstevel@tonic-gate /* 9700Sstevel@tonic-gate * remv() scans through "proc_table" and performs cleanup. If 9710Sstevel@tonic-gate * there is a process in the table, which shouldn't be here at 9720Sstevel@tonic-gate * the current run level, then remv() kills the process. 9730Sstevel@tonic-gate */ 9740Sstevel@tonic-gate static void 9750Sstevel@tonic-gate remv() 9760Sstevel@tonic-gate { 9770Sstevel@tonic-gate struct PROC_TABLE *process; 9780Sstevel@tonic-gate struct CMD_LINE cmd; 9790Sstevel@tonic-gate char cmd_string[MAXCMDL]; 9800Sstevel@tonic-gate int change_level; 9810Sstevel@tonic-gate 9820Sstevel@tonic-gate change_level = (cur_state != prev_state ? TRUE : FALSE); 9830Sstevel@tonic-gate 9840Sstevel@tonic-gate /* 9850Sstevel@tonic-gate * Clear the TOUCHED flag on all entries so that when we have 9860Sstevel@tonic-gate * finished scanning inittab, we will be able to tell if we 9870Sstevel@tonic-gate * have any processes for which there is no entry in inittab. 9880Sstevel@tonic-gate */ 9890Sstevel@tonic-gate for (process = proc_table; 9900Sstevel@tonic-gate (process < proc_table + num_proc); process++) { 9910Sstevel@tonic-gate process->p_flags &= ~TOUCHED; 9920Sstevel@tonic-gate } 9930Sstevel@tonic-gate 9940Sstevel@tonic-gate /* 9950Sstevel@tonic-gate * Scan all inittab entries. 9960Sstevel@tonic-gate */ 9970Sstevel@tonic-gate while (getcmd(&cmd, &cmd_string[0]) == TRUE) { 9980Sstevel@tonic-gate /* Scan for process which goes with this entry in inittab. */ 9990Sstevel@tonic-gate for (process = proc_table; 10000Sstevel@tonic-gate (process < proc_table + num_proc); process++) { 10010Sstevel@tonic-gate if ((process->p_flags & OCCUPIED) == 0 || 10020Sstevel@tonic-gate !id_eq(process->p_id, cmd.c_id)) 10030Sstevel@tonic-gate continue; 10040Sstevel@tonic-gate 10050Sstevel@tonic-gate /* 10060Sstevel@tonic-gate * This slot contains the process we are looking for. 10070Sstevel@tonic-gate */ 10080Sstevel@tonic-gate 10090Sstevel@tonic-gate /* 10100Sstevel@tonic-gate * Is the cur_state SINGLE_USER or is this process 10110Sstevel@tonic-gate * marked as "off" or was this proc started by some 10120Sstevel@tonic-gate * mechanism other than LVL{a|b|c} and the current level 10130Sstevel@tonic-gate * does not support this process? 10140Sstevel@tonic-gate */ 10150Sstevel@tonic-gate if (cur_state == SINGLE_USER || 10160Sstevel@tonic-gate cmd.c_action == M_OFF || 10170Sstevel@tonic-gate ((cmd.c_levels & state_to_mask(cur_state)) == 0 && 10180Sstevel@tonic-gate (process->p_flags & DEMANDREQUEST) == 0)) { 10190Sstevel@tonic-gate if (process->p_flags & LIVING) { 10200Sstevel@tonic-gate /* 10210Sstevel@tonic-gate * Touch this entry so we know we have 10220Sstevel@tonic-gate * treated it. Note that procs which 10230Sstevel@tonic-gate * are already dead at this point and 10240Sstevel@tonic-gate * should not be restarted are left 10250Sstevel@tonic-gate * untouched. This causes their slot to 10260Sstevel@tonic-gate * be freed later after dead accounting 10270Sstevel@tonic-gate * is done. 10280Sstevel@tonic-gate */ 10290Sstevel@tonic-gate process->p_flags |= TOUCHED; 10300Sstevel@tonic-gate 10310Sstevel@tonic-gate if ((process->p_flags & KILLED) == 0) { 10320Sstevel@tonic-gate if (change_level) { 10330Sstevel@tonic-gate process->p_flags 10340Sstevel@tonic-gate |= WARNED; 10350Sstevel@tonic-gate (void) kill( 10360Sstevel@tonic-gate process->p_pid, 10370Sstevel@tonic-gate SIGTERM); 10380Sstevel@tonic-gate } else { 10390Sstevel@tonic-gate /* 10400Sstevel@tonic-gate * Fork a killing proc 10410Sstevel@tonic-gate * so "init" can 10420Sstevel@tonic-gate * continue without 10430Sstevel@tonic-gate * having to pause for 10440Sstevel@tonic-gate * TWARN seconds. 10450Sstevel@tonic-gate */ 10460Sstevel@tonic-gate killproc( 10470Sstevel@tonic-gate process->p_pid); 10480Sstevel@tonic-gate } 10490Sstevel@tonic-gate process->p_flags |= KILLED; 10500Sstevel@tonic-gate } 10510Sstevel@tonic-gate } 10520Sstevel@tonic-gate } else { 10530Sstevel@tonic-gate /* 10540Sstevel@tonic-gate * Process can exist at current level. If it is 10550Sstevel@tonic-gate * still alive or a DEMANDREQUEST we touch it so 10560Sstevel@tonic-gate * it will be left alone. Otherwise we leave it 10570Sstevel@tonic-gate * untouched so it will be accounted for and 10580Sstevel@tonic-gate * cleaned up later in remv(). Dead 10590Sstevel@tonic-gate * DEMANDREQUESTs will be accounted but not 10600Sstevel@tonic-gate * freed. 10610Sstevel@tonic-gate */ 10620Sstevel@tonic-gate if (process->p_flags & 10630Sstevel@tonic-gate (LIVING|NOCLEANUP|DEMANDREQUEST)) 10640Sstevel@tonic-gate process->p_flags |= TOUCHED; 10650Sstevel@tonic-gate } 10660Sstevel@tonic-gate 10670Sstevel@tonic-gate break; 10680Sstevel@tonic-gate } 10690Sstevel@tonic-gate } 10700Sstevel@tonic-gate 10710Sstevel@tonic-gate st_write(); 10720Sstevel@tonic-gate 10730Sstevel@tonic-gate /* 10740Sstevel@tonic-gate * If this was a change of levels call, scan through the 10750Sstevel@tonic-gate * process table for processes that were warned to die. If any 10760Sstevel@tonic-gate * are found that haven't left yet, sleep for TWARN seconds and 10770Sstevel@tonic-gate * then send final terminations to any that haven't died yet. 10780Sstevel@tonic-gate */ 10790Sstevel@tonic-gate if (change_level) { 10800Sstevel@tonic-gate 10810Sstevel@tonic-gate /* 10820Sstevel@tonic-gate * Set the alarm for TWARN seconds on the assumption 10830Sstevel@tonic-gate * that there will be some that need to be waited for. 10840Sstevel@tonic-gate * This won't harm anything except we are guaranteed to 10850Sstevel@tonic-gate * wakeup in TWARN seconds whether we need to or not. 10860Sstevel@tonic-gate */ 10870Sstevel@tonic-gate setimer(TWARN); 10880Sstevel@tonic-gate 10890Sstevel@tonic-gate /* 10900Sstevel@tonic-gate * Scan for processes which should be dying. We hope they 10910Sstevel@tonic-gate * will die without having to be sent a SIGKILL signal. 10920Sstevel@tonic-gate */ 10930Sstevel@tonic-gate for (process = proc_table; 10940Sstevel@tonic-gate (process < proc_table + num_proc); process++) { 10950Sstevel@tonic-gate /* 10960Sstevel@tonic-gate * If this process should die, hasn't yet, and the 10970Sstevel@tonic-gate * TWARN time hasn't expired yet, wait for process 10980Sstevel@tonic-gate * to die or for timer to expire. 10990Sstevel@tonic-gate */ 11000Sstevel@tonic-gate while (time_up == FALSE && 11010Sstevel@tonic-gate (process->p_flags & (WARNED|LIVING|OCCUPIED)) == 11020Sstevel@tonic-gate (WARNED|LIVING|OCCUPIED)) 11030Sstevel@tonic-gate (void) pause(); 11040Sstevel@tonic-gate 11050Sstevel@tonic-gate if (time_up == TRUE) 11060Sstevel@tonic-gate break; 11070Sstevel@tonic-gate } 11080Sstevel@tonic-gate 11090Sstevel@tonic-gate /* 11100Sstevel@tonic-gate * If we reached the end of the table without the timer 11110Sstevel@tonic-gate * expiring, then there are no procs which will have to be 11120Sstevel@tonic-gate * sent the SIGKILL signal. If the timer has expired, then 11130Sstevel@tonic-gate * it is necessary to scan the table again and send signals 11140Sstevel@tonic-gate * to all processes which aren't going away nicely. 11150Sstevel@tonic-gate */ 11160Sstevel@tonic-gate if (time_up == TRUE) { 11170Sstevel@tonic-gate for (process = proc_table; 11180Sstevel@tonic-gate (process < proc_table + num_proc); process++) { 11190Sstevel@tonic-gate if ((process->p_flags & 11200Sstevel@tonic-gate (WARNED|LIVING|OCCUPIED)) == 11210Sstevel@tonic-gate (WARNED|LIVING|OCCUPIED)) 11220Sstevel@tonic-gate (void) kill(process->p_pid, SIGKILL); 11230Sstevel@tonic-gate } 11240Sstevel@tonic-gate } 11250Sstevel@tonic-gate setimer(0); 11260Sstevel@tonic-gate } 11270Sstevel@tonic-gate 11280Sstevel@tonic-gate /* 11290Sstevel@tonic-gate * Rescan the proc_table for two kinds of entry, those marked LIVING, 11300Sstevel@tonic-gate * NAMED, which don't have an entry in inittab (haven't been TOUCHED 11310Sstevel@tonic-gate * by the above scanning), and haven't been sent kill signals, and 11320Sstevel@tonic-gate * those entries marked not LIVING, NAMED. The former procs are killed. 11330Sstevel@tonic-gate * The latter have DEAD_PROCESS accounting done and the slot cleared. 11340Sstevel@tonic-gate */ 11350Sstevel@tonic-gate for (process = proc_table; 11360Sstevel@tonic-gate (process < proc_table + num_proc); process++) { 11370Sstevel@tonic-gate if ((process->p_flags & (LIVING|NAMED|TOUCHED|KILLED|OCCUPIED)) 11380Sstevel@tonic-gate == (LIVING|NAMED|OCCUPIED)) { 11390Sstevel@tonic-gate killproc(process->p_pid); 11400Sstevel@tonic-gate process->p_flags |= KILLED; 11410Sstevel@tonic-gate } else if ((process->p_flags & (LIVING|NAMED|OCCUPIED)) == 11420Sstevel@tonic-gate (NAMED|OCCUPIED)) { 11430Sstevel@tonic-gate (void) account(DEAD_PROCESS, process, NULL); 11440Sstevel@tonic-gate /* 11450Sstevel@tonic-gate * If this named proc hasn't been TOUCHED, then free the 11460Sstevel@tonic-gate * space. It has either died of it's own accord, but 11470Sstevel@tonic-gate * isn't respawnable or it was killed because it 11480Sstevel@tonic-gate * shouldn't exist at this level. 11490Sstevel@tonic-gate */ 11500Sstevel@tonic-gate if ((process->p_flags & TOUCHED) == 0) 11510Sstevel@tonic-gate process->p_flags = 0; 11520Sstevel@tonic-gate } 11530Sstevel@tonic-gate } 11540Sstevel@tonic-gate 11550Sstevel@tonic-gate st_write(); 11560Sstevel@tonic-gate } 11570Sstevel@tonic-gate 11580Sstevel@tonic-gate /* 11590Sstevel@tonic-gate * Extract the svc.startd command line and whether to restart it from its 11600Sstevel@tonic-gate * inittab entry. 11610Sstevel@tonic-gate */ 11620Sstevel@tonic-gate /*ARGSUSED*/ 11630Sstevel@tonic-gate static void 11640Sstevel@tonic-gate process_startd_line(struct CMD_LINE *cmd, char *cmd_string) 11650Sstevel@tonic-gate { 11660Sstevel@tonic-gate size_t sz; 11670Sstevel@tonic-gate 11680Sstevel@tonic-gate /* Save the command line. */ 11690Sstevel@tonic-gate if (sflg || rflg) { 11700Sstevel@tonic-gate /* Also append -r or -s. */ 11710Sstevel@tonic-gate (void) strlcpy(startd_cline, cmd_string, sizeof (startd_cline)); 11720Sstevel@tonic-gate (void) strlcat(startd_cline, " -", sizeof (startd_cline)); 11730Sstevel@tonic-gate if (sflg) 11740Sstevel@tonic-gate sz = strlcat(startd_cline, "s", sizeof (startd_cline)); 11750Sstevel@tonic-gate if (rflg) 11760Sstevel@tonic-gate sz = strlcat(startd_cline, "r", sizeof (startd_cline)); 11770Sstevel@tonic-gate } else { 11780Sstevel@tonic-gate sz = strlcpy(startd_cline, cmd_string, sizeof (startd_cline)); 11790Sstevel@tonic-gate } 11800Sstevel@tonic-gate 11810Sstevel@tonic-gate if (sz >= sizeof (startd_cline)) { 11820Sstevel@tonic-gate console(B_TRUE, 11830Sstevel@tonic-gate "svc.startd command line too long. Ignoring.\n"); 11840Sstevel@tonic-gate startd_cline[0] = '\0'; 11850Sstevel@tonic-gate return; 11860Sstevel@tonic-gate } 11870Sstevel@tonic-gate } 11880Sstevel@tonic-gate 11890Sstevel@tonic-gate /* 11900Sstevel@tonic-gate * spawn_processes() scans inittab for entries which should be run at this 11910Sstevel@tonic-gate * mode. Processes which should be running but are not, are started. 11920Sstevel@tonic-gate */ 11930Sstevel@tonic-gate static int 11940Sstevel@tonic-gate spawn_processes() 11950Sstevel@tonic-gate { 11960Sstevel@tonic-gate struct PROC_TABLE *pp; 11970Sstevel@tonic-gate struct CMD_LINE cmd; 11980Sstevel@tonic-gate char cmd_string[MAXCMDL]; 11990Sstevel@tonic-gate short lvl_mask; 12000Sstevel@tonic-gate int status; 12010Sstevel@tonic-gate 12020Sstevel@tonic-gate /* 12030Sstevel@tonic-gate * First check the "powerhit" flag. If it is set, make sure the modes 12040Sstevel@tonic-gate * are PF_MODES and clear the "powerhit" flag. Avoid the possible race 12050Sstevel@tonic-gate * on the "powerhit" flag by disallowing a new powerfail interrupt 12060Sstevel@tonic-gate * between the test of the powerhit flag and the clearing of it. 12070Sstevel@tonic-gate */ 12080Sstevel@tonic-gate if (wakeup.w_flags.w_powerhit) { 12090Sstevel@tonic-gate wakeup.w_flags.w_powerhit = 0; 12100Sstevel@tonic-gate op_modes = PF_MODES; 12110Sstevel@tonic-gate } 12120Sstevel@tonic-gate lvl_mask = state_to_mask(cur_state); 12130Sstevel@tonic-gate 12140Sstevel@tonic-gate /* 12150Sstevel@tonic-gate * Scan through all the entries in inittab. 12160Sstevel@tonic-gate */ 12170Sstevel@tonic-gate while ((status = getcmd(&cmd, &cmd_string[0])) == TRUE) { 12180Sstevel@tonic-gate if (id_eq(cmd.c_id, "smf")) { 12190Sstevel@tonic-gate process_startd_line(&cmd, cmd_string); 12200Sstevel@tonic-gate continue; 12210Sstevel@tonic-gate } 12220Sstevel@tonic-gate 12230Sstevel@tonic-gate retry_for_proc_slot: 12240Sstevel@tonic-gate 12250Sstevel@tonic-gate /* 12260Sstevel@tonic-gate * Find out if there is a process slot for this entry already. 12270Sstevel@tonic-gate */ 12280Sstevel@tonic-gate if ((pp = findpslot(&cmd)) == NULLPROC) { 12290Sstevel@tonic-gate /* 12300Sstevel@tonic-gate * we've run out of proc table entries 12310Sstevel@tonic-gate * increase proc_table. 12320Sstevel@tonic-gate */ 12330Sstevel@tonic-gate increase_proc_table_size(); 12340Sstevel@tonic-gate 12350Sstevel@tonic-gate /* 12360Sstevel@tonic-gate * Retry now as we have an empty proc slot. 12370Sstevel@tonic-gate * In case increase_proc_table_size() fails, 12380Sstevel@tonic-gate * we will keep retrying. 12390Sstevel@tonic-gate */ 12400Sstevel@tonic-gate goto retry_for_proc_slot; 12410Sstevel@tonic-gate } 12420Sstevel@tonic-gate 12430Sstevel@tonic-gate /* 12440Sstevel@tonic-gate * If there is an entry, and it is marked as DEMANDREQUEST, 12450Sstevel@tonic-gate * one of the levels a, b, or c is in its levels mask, and 12460Sstevel@tonic-gate * the action field is ONDEMAND and ONDEMAND is a permissable 12470Sstevel@tonic-gate * mode, and the process is dead, then respawn it. 12480Sstevel@tonic-gate */ 12490Sstevel@tonic-gate if (((pp->p_flags & (LIVING|DEMANDREQUEST)) == DEMANDREQUEST) && 12500Sstevel@tonic-gate (cmd.c_levels & MASK_abc) && 12510Sstevel@tonic-gate (cmd.c_action & op_modes) == M_ONDEMAND) { 12520Sstevel@tonic-gate spawn(pp, &cmd); 12530Sstevel@tonic-gate continue; 12540Sstevel@tonic-gate } 12550Sstevel@tonic-gate 12560Sstevel@tonic-gate /* 12570Sstevel@tonic-gate * If the action is not an action we are interested in, 12580Sstevel@tonic-gate * skip the entry. 12590Sstevel@tonic-gate */ 12600Sstevel@tonic-gate if ((cmd.c_action & op_modes) == 0 || pp->p_flags & LIVING || 12610Sstevel@tonic-gate (cmd.c_levels & lvl_mask) == 0) 12620Sstevel@tonic-gate continue; 12630Sstevel@tonic-gate 12640Sstevel@tonic-gate /* 12650Sstevel@tonic-gate * If the modes are the normal modes (ONCE, WAIT, RESPAWN, OFF, 12660Sstevel@tonic-gate * ONDEMAND) and the action field is either OFF or the action 12670Sstevel@tonic-gate * field is ONCE or WAIT and the current level is the same as 12680Sstevel@tonic-gate * the last level, then skip this entry. ONCE and WAIT only 12690Sstevel@tonic-gate * get run when the level changes. 12700Sstevel@tonic-gate */ 12710Sstevel@tonic-gate if (op_modes == NORMAL_MODES && 12720Sstevel@tonic-gate (cmd.c_action == M_OFF || 12730Sstevel@tonic-gate (cmd.c_action & (M_ONCE|M_WAIT)) && 12740Sstevel@tonic-gate cur_state == prev_state)) 12750Sstevel@tonic-gate continue; 12760Sstevel@tonic-gate 12770Sstevel@tonic-gate /* 12780Sstevel@tonic-gate * At this point we are interested in performing the action for 12790Sstevel@tonic-gate * this entry. Actions fall into two categories, spinning off 12800Sstevel@tonic-gate * a process and not waiting, and spinning off a process and 12810Sstevel@tonic-gate * waiting for it to die. If the action is ONCE, RESPAWN, 12820Sstevel@tonic-gate * ONDEMAND, POWERFAIL, or BOOT we don't wait for the process 12830Sstevel@tonic-gate * to die, for all other actions we do wait. 12840Sstevel@tonic-gate */ 12850Sstevel@tonic-gate if (cmd.c_action & (M_ONCE | M_RESPAWN | M_PF | M_BOOT)) { 12860Sstevel@tonic-gate spawn(pp, &cmd); 12870Sstevel@tonic-gate 12880Sstevel@tonic-gate } else { 12890Sstevel@tonic-gate spawn(pp, &cmd); 12900Sstevel@tonic-gate while (waitproc(pp) == FAILURE); 12910Sstevel@tonic-gate (void) account(DEAD_PROCESS, pp, NULL); 12920Sstevel@tonic-gate pp->p_flags = 0; 12930Sstevel@tonic-gate } 12940Sstevel@tonic-gate } 12950Sstevel@tonic-gate return (status); 12960Sstevel@tonic-gate } 12970Sstevel@tonic-gate 12980Sstevel@tonic-gate /* 12990Sstevel@tonic-gate * spawn() spawns a shell, inserts the information about the process 13000Sstevel@tonic-gate * process into the proc_table, and does the startup accounting. 13010Sstevel@tonic-gate */ 13020Sstevel@tonic-gate static void 13030Sstevel@tonic-gate spawn(struct PROC_TABLE *process, struct CMD_LINE *cmd) 13040Sstevel@tonic-gate { 13050Sstevel@tonic-gate int i; 13060Sstevel@tonic-gate int modes, maxfiles; 13070Sstevel@tonic-gate time_t now; 13080Sstevel@tonic-gate struct PROC_TABLE tmproc, *oprocess; 13090Sstevel@tonic-gate 13100Sstevel@tonic-gate /* 13110Sstevel@tonic-gate * The modes to be sent to efork() are 0 unless we are 13120Sstevel@tonic-gate * spawning a LVLa, LVLb, or LVLc entry or we will be 13130Sstevel@tonic-gate * waiting for the death of the child before continuing. 13140Sstevel@tonic-gate */ 13150Sstevel@tonic-gate modes = NAMED; 13160Sstevel@tonic-gate if (process->p_flags & DEMANDREQUEST || cur_state == LVLa || 13170Sstevel@tonic-gate cur_state == LVLb || cur_state == LVLc) 13180Sstevel@tonic-gate modes |= DEMANDREQUEST; 13190Sstevel@tonic-gate if ((cmd->c_action & (M_SYSINIT | M_WAIT | M_BOOTWAIT | M_PWAIT)) != 0) 13200Sstevel@tonic-gate modes |= NOCLEANUP; 13210Sstevel@tonic-gate 13220Sstevel@tonic-gate /* 13230Sstevel@tonic-gate * If this is a respawnable process, check the threshold 13240Sstevel@tonic-gate * information to avoid excessive respawns. 13250Sstevel@tonic-gate */ 13260Sstevel@tonic-gate if (cmd->c_action & M_RESPAWN) { 13270Sstevel@tonic-gate /* 13280Sstevel@tonic-gate * Add NOCLEANUP to all respawnable commands so that the 13290Sstevel@tonic-gate * information about the frequency of respawns isn't lost. 13300Sstevel@tonic-gate */ 13310Sstevel@tonic-gate modes |= NOCLEANUP; 13320Sstevel@tonic-gate (void) time(&now); 13330Sstevel@tonic-gate 13340Sstevel@tonic-gate /* 13350Sstevel@tonic-gate * If no time is assigned, then this is the first time 13360Sstevel@tonic-gate * this command is being processed in this series. Assign 13370Sstevel@tonic-gate * the current time. 13380Sstevel@tonic-gate */ 13390Sstevel@tonic-gate if (process->p_time == 0L) 13400Sstevel@tonic-gate process->p_time = now; 13410Sstevel@tonic-gate 13420Sstevel@tonic-gate if (process->p_count++ == SPAWN_LIMIT) { 13430Sstevel@tonic-gate 13440Sstevel@tonic-gate if ((now - process->p_time) < SPAWN_INTERVAL) { 13450Sstevel@tonic-gate /* 13460Sstevel@tonic-gate * Process is respawning too rapidly. Print 13470Sstevel@tonic-gate * message and refuse to respawn it for now. 13480Sstevel@tonic-gate */ 13490Sstevel@tonic-gate console(B_TRUE, "Command is respawning too " 13500Sstevel@tonic-gate "rapidly. Check for possible errors.\n" 13510Sstevel@tonic-gate "id:%4s \"%s\"\n", 13520Sstevel@tonic-gate &cmd->c_id[0], &cmd->c_command[EXEC]); 13530Sstevel@tonic-gate return; 13540Sstevel@tonic-gate } 13550Sstevel@tonic-gate process->p_time = now; 13560Sstevel@tonic-gate process->p_count = 0; 13570Sstevel@tonic-gate 13580Sstevel@tonic-gate } else if (process->p_count > SPAWN_LIMIT) { 13590Sstevel@tonic-gate /* 13600Sstevel@tonic-gate * If process has been respawning too rapidly and 13610Sstevel@tonic-gate * the inhibit time limit hasn't expired yet, we 13620Sstevel@tonic-gate * refuse to respawn. 13630Sstevel@tonic-gate */ 13640Sstevel@tonic-gate if (now - process->p_time < SPAWN_INTERVAL + INHIBIT) 13650Sstevel@tonic-gate return; 13660Sstevel@tonic-gate process->p_time = now; 13670Sstevel@tonic-gate process->p_count = 0; 13680Sstevel@tonic-gate } 13690Sstevel@tonic-gate rsflag = TRUE; 13700Sstevel@tonic-gate } 13710Sstevel@tonic-gate 13720Sstevel@tonic-gate /* 13730Sstevel@tonic-gate * Spawn a child process to execute this command. 13740Sstevel@tonic-gate */ 13750Sstevel@tonic-gate (void) sigset(SIGCLD, SIG_DFL); 13760Sstevel@tonic-gate oprocess = process; 13770Sstevel@tonic-gate while ((process = efork(cmd->c_action, oprocess, modes)) == NO_ROOM) 13780Sstevel@tonic-gate (void) pause(); 13790Sstevel@tonic-gate 13800Sstevel@tonic-gate if (process == NULLPROC) { 13810Sstevel@tonic-gate 13820Sstevel@tonic-gate /* 13830Sstevel@tonic-gate * We are the child. We must make sure we get a different 13840Sstevel@tonic-gate * file pointer for our references to utmpx. Otherwise our 13850Sstevel@tonic-gate * seeks and reads will compete with those of the parent. 13860Sstevel@tonic-gate */ 13870Sstevel@tonic-gate endutxent(); 13880Sstevel@tonic-gate 13890Sstevel@tonic-gate /* 13900Sstevel@tonic-gate * Perform the accounting for the beginning of a process. 13910Sstevel@tonic-gate * Note that all processes are initially "INIT_PROCESS"es. 13920Sstevel@tonic-gate */ 13930Sstevel@tonic-gate tmproc.p_id[0] = cmd->c_id[0]; 13940Sstevel@tonic-gate tmproc.p_id[1] = cmd->c_id[1]; 13950Sstevel@tonic-gate tmproc.p_id[2] = cmd->c_id[2]; 13960Sstevel@tonic-gate tmproc.p_id[3] = cmd->c_id[3]; 13970Sstevel@tonic-gate tmproc.p_pid = getpid(); 13980Sstevel@tonic-gate tmproc.p_exit = 0; 13990Sstevel@tonic-gate (void) account(INIT_PROCESS, &tmproc, 14000Sstevel@tonic-gate prog_name(&cmd->c_command[EXEC])); 14010Sstevel@tonic-gate maxfiles = ulimit(UL_GDESLIM, 0); 14020Sstevel@tonic-gate for (i = 0; i < maxfiles; i++) 14030Sstevel@tonic-gate (void) fcntl(i, F_SETFD, FD_CLOEXEC); 14040Sstevel@tonic-gate 14050Sstevel@tonic-gate /* 14060Sstevel@tonic-gate * Now exec a shell with the -c option and the command 14070Sstevel@tonic-gate * from inittab. 14080Sstevel@tonic-gate */ 14090Sstevel@tonic-gate (void) execle(SH, "INITSH", "-c", cmd->c_command, (char *)0, 14100Sstevel@tonic-gate glob_envp); 14110Sstevel@tonic-gate console(B_TRUE, "Command\n\"%s\"\n failed to execute. errno " 14120Sstevel@tonic-gate "= %d (exec of shell failed)\n", cmd->c_command, errno); 14130Sstevel@tonic-gate 14140Sstevel@tonic-gate /* 14150Sstevel@tonic-gate * Don't come back so quickly that "init" doesn't have a 14160Sstevel@tonic-gate * chance to finish putting this child in "proc_table". 14170Sstevel@tonic-gate */ 14180Sstevel@tonic-gate timer(20); 14190Sstevel@tonic-gate exit(1); 14200Sstevel@tonic-gate 14210Sstevel@tonic-gate } 14220Sstevel@tonic-gate 14230Sstevel@tonic-gate /* 14240Sstevel@tonic-gate * We are the parent. Insert the necessary 14250Sstevel@tonic-gate * information in the proc_table. 14260Sstevel@tonic-gate */ 14270Sstevel@tonic-gate process->p_id[0] = cmd->c_id[0]; 14280Sstevel@tonic-gate process->p_id[1] = cmd->c_id[1]; 14290Sstevel@tonic-gate process->p_id[2] = cmd->c_id[2]; 14300Sstevel@tonic-gate process->p_id[3] = cmd->c_id[3]; 14310Sstevel@tonic-gate 14320Sstevel@tonic-gate st_write(); 14330Sstevel@tonic-gate 14340Sstevel@tonic-gate (void) sigset(SIGCLD, childeath); 14350Sstevel@tonic-gate } 14360Sstevel@tonic-gate 14370Sstevel@tonic-gate /* 14380Sstevel@tonic-gate * findpslot() finds the old slot in the process table for the 14390Sstevel@tonic-gate * command with the same id, or it finds an empty slot. 14400Sstevel@tonic-gate */ 14410Sstevel@tonic-gate static struct PROC_TABLE * 14420Sstevel@tonic-gate findpslot(struct CMD_LINE *cmd) 14430Sstevel@tonic-gate { 14440Sstevel@tonic-gate struct PROC_TABLE *process; 14450Sstevel@tonic-gate struct PROC_TABLE *empty = NULLPROC; 14460Sstevel@tonic-gate 14470Sstevel@tonic-gate for (process = proc_table; 14480Sstevel@tonic-gate (process < proc_table + num_proc); process++) { 14490Sstevel@tonic-gate if (process->p_flags & OCCUPIED && 14500Sstevel@tonic-gate id_eq(process->p_id, cmd->c_id)) 14510Sstevel@tonic-gate break; 14520Sstevel@tonic-gate 14530Sstevel@tonic-gate /* 14540Sstevel@tonic-gate * If the entry is totally empty and "empty" is still 0, 14550Sstevel@tonic-gate * remember where this hole is and make sure the slot is 14560Sstevel@tonic-gate * zeroed out. 14570Sstevel@tonic-gate */ 14580Sstevel@tonic-gate if (empty == NULLPROC && (process->p_flags & OCCUPIED) == 0) { 14590Sstevel@tonic-gate empty = process; 14600Sstevel@tonic-gate process->p_id[0] = '\0'; 14610Sstevel@tonic-gate process->p_id[1] = '\0'; 14620Sstevel@tonic-gate process->p_id[2] = '\0'; 14630Sstevel@tonic-gate process->p_id[3] = '\0'; 14640Sstevel@tonic-gate process->p_pid = 0; 14650Sstevel@tonic-gate process->p_time = 0L; 14660Sstevel@tonic-gate process->p_count = 0; 14670Sstevel@tonic-gate process->p_flags = 0; 14680Sstevel@tonic-gate process->p_exit = 0; 14690Sstevel@tonic-gate } 14700Sstevel@tonic-gate } 14710Sstevel@tonic-gate 14720Sstevel@tonic-gate /* 14730Sstevel@tonic-gate * If there is no entry for this slot, then there should be an 14740Sstevel@tonic-gate * empty slot. If there is no empty slot, then we've run out 14750Sstevel@tonic-gate * of proc_table space. If the latter is true, empty will be 14760Sstevel@tonic-gate * NULL and the caller will have to complain. 14770Sstevel@tonic-gate */ 14780Sstevel@tonic-gate if (process == (proc_table + num_proc)) 14790Sstevel@tonic-gate process = empty; 14800Sstevel@tonic-gate 14810Sstevel@tonic-gate return (process); 14820Sstevel@tonic-gate } 14830Sstevel@tonic-gate 14840Sstevel@tonic-gate /* 14850Sstevel@tonic-gate * getcmd() parses lines from inittab. Each time it finds a command line 14860Sstevel@tonic-gate * it will return TRUE as well as fill the passed CMD_LINE structure and 14870Sstevel@tonic-gate * the shell command string. When the end of inittab is reached, FALSE 14880Sstevel@tonic-gate * is returned inittab is automatically opened if it is not currently open 14890Sstevel@tonic-gate * and is closed when the end of the file is reached. 14900Sstevel@tonic-gate */ 14910Sstevel@tonic-gate static FILE *fp_inittab = NULL; 14920Sstevel@tonic-gate 14930Sstevel@tonic-gate static int 14940Sstevel@tonic-gate getcmd(struct CMD_LINE *cmd, char *shcmd) 14950Sstevel@tonic-gate { 14960Sstevel@tonic-gate char *ptr; 14970Sstevel@tonic-gate int c, lastc, state; 14980Sstevel@tonic-gate char *ptr1; 14990Sstevel@tonic-gate int answer, i, proceed; 15000Sstevel@tonic-gate struct stat sbuf; 15010Sstevel@tonic-gate static char *actions[] = { 15020Sstevel@tonic-gate "off", "respawn", "ondemand", "once", "wait", "boot", 15030Sstevel@tonic-gate "bootwait", "powerfail", "powerwait", "initdefault", 15040Sstevel@tonic-gate "sysinit", 15050Sstevel@tonic-gate }; 15060Sstevel@tonic-gate static short act_masks[] = { 15070Sstevel@tonic-gate M_OFF, M_RESPAWN, M_ONDEMAND, M_ONCE, M_WAIT, M_BOOT, 15080Sstevel@tonic-gate M_BOOTWAIT, M_PF, M_PWAIT, M_INITDEFAULT, M_SYSINIT, 15090Sstevel@tonic-gate }; 15100Sstevel@tonic-gate /* 15110Sstevel@tonic-gate * Only these actions will be allowed for entries which 15120Sstevel@tonic-gate * are specified for single-user mode. 15130Sstevel@tonic-gate */ 15140Sstevel@tonic-gate short su_acts = M_INITDEFAULT | M_PF | M_PWAIT | M_WAIT; 15150Sstevel@tonic-gate 15160Sstevel@tonic-gate if (fp_inittab == NULL) { 15170Sstevel@tonic-gate /* 15180Sstevel@tonic-gate * Before attempting to open inittab we stat it to make 15190Sstevel@tonic-gate * sure it currently exists and is not empty. We try 15200Sstevel@tonic-gate * several times because someone may have temporarily 15210Sstevel@tonic-gate * unlinked or truncated the file. 15220Sstevel@tonic-gate */ 15230Sstevel@tonic-gate for (i = 0; i < 3; i++) { 15240Sstevel@tonic-gate if (stat(INITTAB, &sbuf) == -1) { 15250Sstevel@tonic-gate if (i == 2) { 15260Sstevel@tonic-gate console(B_TRUE, 15270Sstevel@tonic-gate "Cannot stat %s, errno: %d\n", 15280Sstevel@tonic-gate INITTAB, errno); 15290Sstevel@tonic-gate return (FAILURE); 15300Sstevel@tonic-gate } else { 15310Sstevel@tonic-gate timer(3); 15320Sstevel@tonic-gate } 15330Sstevel@tonic-gate } else if (sbuf.st_size < 10) { 15340Sstevel@tonic-gate if (i == 2) { 15350Sstevel@tonic-gate console(B_TRUE, 15360Sstevel@tonic-gate "%s truncated or corrupted\n", 15370Sstevel@tonic-gate INITTAB); 15380Sstevel@tonic-gate return (FAILURE); 15390Sstevel@tonic-gate } else { 15400Sstevel@tonic-gate timer(3); 15410Sstevel@tonic-gate } 15420Sstevel@tonic-gate } else { 15430Sstevel@tonic-gate break; 15440Sstevel@tonic-gate } 15450Sstevel@tonic-gate } 15460Sstevel@tonic-gate 15470Sstevel@tonic-gate /* 15480Sstevel@tonic-gate * If unable to open inittab, print error message and 15490Sstevel@tonic-gate * return FAILURE to caller. 15500Sstevel@tonic-gate */ 15510Sstevel@tonic-gate if ((fp_inittab = fopen(INITTAB, "r")) == NULL) { 15520Sstevel@tonic-gate console(B_TRUE, "Cannot open %s errno: %d\n", INITTAB, 15530Sstevel@tonic-gate errno); 15540Sstevel@tonic-gate return (FAILURE); 15550Sstevel@tonic-gate } 15560Sstevel@tonic-gate } 15570Sstevel@tonic-gate 15580Sstevel@tonic-gate /* 15590Sstevel@tonic-gate * Keep getting commands from inittab until you find a 15600Sstevel@tonic-gate * good one or run out of file. 15610Sstevel@tonic-gate */ 15620Sstevel@tonic-gate for (answer = FALSE; answer == FALSE; ) { 15630Sstevel@tonic-gate /* 15640Sstevel@tonic-gate * Zero out the cmd itself before trying next line. 15650Sstevel@tonic-gate */ 15660Sstevel@tonic-gate bzero(cmd, sizeof (struct CMD_LINE)); 15670Sstevel@tonic-gate 15680Sstevel@tonic-gate /* 15690Sstevel@tonic-gate * Read in lines of inittab, parsing at colons, until a line is 15700Sstevel@tonic-gate * read in which doesn't end with a backslash. Do not start if 15710Sstevel@tonic-gate * the first character read is an EOF. Note that this means 15720Sstevel@tonic-gate * that lines which don't end in a newline are still processed, 15730Sstevel@tonic-gate * since the "for" will terminate normally once started, 15740Sstevel@tonic-gate * regardless of whether line terminates with a newline or EOF. 15750Sstevel@tonic-gate */ 15760Sstevel@tonic-gate state = FAILURE; 15770Sstevel@tonic-gate if ((c = fgetc(fp_inittab)) == EOF) { 15780Sstevel@tonic-gate answer = FALSE; 15790Sstevel@tonic-gate (void) fclose(fp_inittab); 15800Sstevel@tonic-gate fp_inittab = NULL; 15810Sstevel@tonic-gate break; 15820Sstevel@tonic-gate } 15830Sstevel@tonic-gate 15840Sstevel@tonic-gate for (proceed = TRUE, ptr = shcmd, state = ID, lastc = '\0'; 15850Sstevel@tonic-gate proceed && c != EOF; 15860Sstevel@tonic-gate lastc = c, c = fgetc(fp_inittab)) { 15870Sstevel@tonic-gate /* If we're not in the FAILURE state and haven't */ 15880Sstevel@tonic-gate /* yet reached the shell command field, process */ 15890Sstevel@tonic-gate /* the line, otherwise just look for a real end */ 15900Sstevel@tonic-gate /* of line. */ 15910Sstevel@tonic-gate if (state != FAILURE && state != COMMAND) { 15920Sstevel@tonic-gate /* 15930Sstevel@tonic-gate * Squeeze out spaces and tabs. 15940Sstevel@tonic-gate */ 15950Sstevel@tonic-gate if (c == ' ' || c == '\t') 15960Sstevel@tonic-gate continue; 15970Sstevel@tonic-gate 15980Sstevel@tonic-gate /* 15990Sstevel@tonic-gate * Ignore characters in a comment, except for the \n. 16000Sstevel@tonic-gate */ 16010Sstevel@tonic-gate if (state == COMMENT) { 16020Sstevel@tonic-gate if (c == '\n') { 16030Sstevel@tonic-gate lastc = ' '; 16040Sstevel@tonic-gate break; 16050Sstevel@tonic-gate } else { 16060Sstevel@tonic-gate continue; 16070Sstevel@tonic-gate } 16080Sstevel@tonic-gate } 16090Sstevel@tonic-gate 16100Sstevel@tonic-gate /* 16110Sstevel@tonic-gate * Detect comments (lines whose first non-whitespace 16120Sstevel@tonic-gate * character is '#') by checking that we're at the 16130Sstevel@tonic-gate * beginning of a line, have seen a '#', and haven't 16140Sstevel@tonic-gate * yet accumulated any characters. 16150Sstevel@tonic-gate */ 16160Sstevel@tonic-gate if (state == ID && c == '#' && ptr == shcmd) { 16170Sstevel@tonic-gate state = COMMENT; 16180Sstevel@tonic-gate continue; 16190Sstevel@tonic-gate } 16200Sstevel@tonic-gate 16210Sstevel@tonic-gate /* 16220Sstevel@tonic-gate * If the character is a ':', then check the 16230Sstevel@tonic-gate * previous field for correctness and advance 16240Sstevel@tonic-gate * to the next field. 16250Sstevel@tonic-gate */ 16260Sstevel@tonic-gate if (c == ':') { 16270Sstevel@tonic-gate switch (state) { 16280Sstevel@tonic-gate 16290Sstevel@tonic-gate case ID : 16300Sstevel@tonic-gate /* 16310Sstevel@tonic-gate * Check to see that there are only 16320Sstevel@tonic-gate * 1 to 4 characters for the id. 16330Sstevel@tonic-gate */ 16340Sstevel@tonic-gate if ((i = ptr - shcmd) < 1 || i > 4) { 16350Sstevel@tonic-gate state = FAILURE; 16360Sstevel@tonic-gate } else { 16370Sstevel@tonic-gate bcopy(shcmd, &cmd->c_id[0], i); 16380Sstevel@tonic-gate ptr = shcmd; 16390Sstevel@tonic-gate state = LEVELS; 16400Sstevel@tonic-gate } 16410Sstevel@tonic-gate break; 16420Sstevel@tonic-gate 16430Sstevel@tonic-gate case LEVELS : 16440Sstevel@tonic-gate /* 16450Sstevel@tonic-gate * Build a mask for all the levels for 16460Sstevel@tonic-gate * which this command will be legal. 16470Sstevel@tonic-gate */ 16480Sstevel@tonic-gate for (cmd->c_levels = 0, ptr1 = shcmd; 16490Sstevel@tonic-gate ptr1 < ptr; ptr1++) { 16500Sstevel@tonic-gate int mask; 16510Sstevel@tonic-gate if (lvlname_to_mask(*ptr1, 16520Sstevel@tonic-gate &mask) == -1) { 16530Sstevel@tonic-gate state = FAILURE; 16540Sstevel@tonic-gate break; 16550Sstevel@tonic-gate } 16560Sstevel@tonic-gate cmd->c_levels |= mask; 16570Sstevel@tonic-gate } 16580Sstevel@tonic-gate if (state != FAILURE) { 16590Sstevel@tonic-gate state = ACTION; 16600Sstevel@tonic-gate ptr = shcmd; /* Reset the buffer */ 16610Sstevel@tonic-gate } 16620Sstevel@tonic-gate break; 16630Sstevel@tonic-gate 16640Sstevel@tonic-gate case ACTION : 16650Sstevel@tonic-gate /* 16660Sstevel@tonic-gate * Null terminate the string in shcmd buffer and 16670Sstevel@tonic-gate * then try to match against legal actions. If 16680Sstevel@tonic-gate * the field is of length 0, then the default of 16690Sstevel@tonic-gate * "RESPAWN" is used if the id is numeric, 16700Sstevel@tonic-gate * otherwise the default is "OFF". 16710Sstevel@tonic-gate */ 16720Sstevel@tonic-gate if (ptr == shcmd) { 16730Sstevel@tonic-gate if (isdigit(cmd->c_id[0]) && 16740Sstevel@tonic-gate (cmd->c_id[1] == '\0' || 16750Sstevel@tonic-gate isdigit(cmd->c_id[1])) && 16760Sstevel@tonic-gate (cmd->c_id[2] == '\0' || 16770Sstevel@tonic-gate isdigit(cmd->c_id[2])) && 16780Sstevel@tonic-gate (cmd->c_id[3] == '\0' || 16790Sstevel@tonic-gate isdigit(cmd->c_id[3]))) 16800Sstevel@tonic-gate cmd->c_action = M_RESPAWN; 16810Sstevel@tonic-gate else 16820Sstevel@tonic-gate cmd->c_action = M_OFF; 16830Sstevel@tonic-gate } else { 16840Sstevel@tonic-gate for (cmd->c_action = 0, i = 0, *ptr = '\0'; 16850Sstevel@tonic-gate i < sizeof (actions)/sizeof (char *); 16860Sstevel@tonic-gate i++) { 16870Sstevel@tonic-gate if (strcmp(shcmd, actions[i]) == 0) { 16880Sstevel@tonic-gate if ((cmd->c_levels & MASKSU) && 16890Sstevel@tonic-gate !(act_masks[i] & su_acts)) 16900Sstevel@tonic-gate cmd->c_action = 0; 16910Sstevel@tonic-gate else 16920Sstevel@tonic-gate cmd->c_action = act_masks[i]; 16930Sstevel@tonic-gate break; 16940Sstevel@tonic-gate } 16950Sstevel@tonic-gate } 16960Sstevel@tonic-gate } 16970Sstevel@tonic-gate 16980Sstevel@tonic-gate /* 16990Sstevel@tonic-gate * If the action didn't match any legal action, 17000Sstevel@tonic-gate * set state to FAILURE. 17010Sstevel@tonic-gate */ 17020Sstevel@tonic-gate if (cmd->c_action == 0) { 17030Sstevel@tonic-gate state = FAILURE; 17040Sstevel@tonic-gate } else { 17050Sstevel@tonic-gate state = COMMAND; 17060Sstevel@tonic-gate (void) strcpy(shcmd, "exec "); 17070Sstevel@tonic-gate } 17080Sstevel@tonic-gate ptr = shcmd + EXEC; 17090Sstevel@tonic-gate break; 17100Sstevel@tonic-gate } 17110Sstevel@tonic-gate continue; 17120Sstevel@tonic-gate } 17130Sstevel@tonic-gate } 17140Sstevel@tonic-gate 17150Sstevel@tonic-gate /* If the character is a '\n', then this is the end of a */ 17160Sstevel@tonic-gate /* line. If the '\n' wasn't preceded by a backslash, */ 17170Sstevel@tonic-gate /* it is also the end of an inittab command. If it was */ 17180Sstevel@tonic-gate /* preceded by a backslash then the next line is a */ 17190Sstevel@tonic-gate /* continuation. Note that the continuation '\n' falls */ 17200Sstevel@tonic-gate /* through and is treated like other characters and is */ 17210Sstevel@tonic-gate /* stored in the shell command line. */ 17220Sstevel@tonic-gate if (c == '\n' && lastc != '\\') { 17230Sstevel@tonic-gate proceed = FALSE; 17240Sstevel@tonic-gate *ptr = '\0'; 17250Sstevel@tonic-gate break; 17260Sstevel@tonic-gate } 17270Sstevel@tonic-gate 17280Sstevel@tonic-gate /* For all other characters just stuff them into the */ 17290Sstevel@tonic-gate /* command as long as there aren't too many of them. */ 17300Sstevel@tonic-gate /* Make sure there is room for a terminating '\0' also. */ 17310Sstevel@tonic-gate if (ptr >= shcmd + MAXCMDL - 1) 17320Sstevel@tonic-gate state = FAILURE; 17330Sstevel@tonic-gate else 17340Sstevel@tonic-gate *ptr++ = (char)c; 17350Sstevel@tonic-gate 17360Sstevel@tonic-gate /* If the character we just stored was a quoted */ 17370Sstevel@tonic-gate /* backslash, then change "c" to '\0', so that this */ 17380Sstevel@tonic-gate /* backslash will not cause a subsequent '\n' to appear */ 17390Sstevel@tonic-gate /* quoted. In otherwords '\' '\' '\n' is the real end */ 17400Sstevel@tonic-gate /* of a command, while '\' '\n' is a continuation. */ 17410Sstevel@tonic-gate if (c == '\\' && lastc == '\\') 17420Sstevel@tonic-gate c = '\0'; 17430Sstevel@tonic-gate } 17440Sstevel@tonic-gate 17450Sstevel@tonic-gate /* 17460Sstevel@tonic-gate * Make sure all the fields are properly specified 17470Sstevel@tonic-gate * for a good command line. 17480Sstevel@tonic-gate */ 17490Sstevel@tonic-gate if (state == COMMAND) { 17500Sstevel@tonic-gate answer = TRUE; 17510Sstevel@tonic-gate cmd->c_command = shcmd; 17520Sstevel@tonic-gate 17530Sstevel@tonic-gate /* 17540Sstevel@tonic-gate * If no default level was supplied, insert 17550Sstevel@tonic-gate * all numerical levels. 17560Sstevel@tonic-gate */ 17570Sstevel@tonic-gate if (cmd->c_levels == 0) 17580Sstevel@tonic-gate cmd->c_levels = MASK_NUMERIC; 17590Sstevel@tonic-gate 17600Sstevel@tonic-gate /* 17610Sstevel@tonic-gate * If no action has been supplied, declare this 17620Sstevel@tonic-gate * entry to be OFF. 17630Sstevel@tonic-gate */ 17640Sstevel@tonic-gate if (cmd->c_action == 0) 17650Sstevel@tonic-gate cmd->c_action = M_OFF; 17660Sstevel@tonic-gate 17670Sstevel@tonic-gate /* 17680Sstevel@tonic-gate * If no shell command has been supplied, make sure 17690Sstevel@tonic-gate * there is a null string in the command field. 17700Sstevel@tonic-gate */ 17710Sstevel@tonic-gate if (ptr == shcmd + EXEC) 17720Sstevel@tonic-gate *shcmd = '\0'; 17730Sstevel@tonic-gate } else 17740Sstevel@tonic-gate answer = FALSE; 17750Sstevel@tonic-gate 17760Sstevel@tonic-gate /* 17770Sstevel@tonic-gate * If we have reached the end of inittab, then close it 17780Sstevel@tonic-gate * and quit trying to find a good command line. 17790Sstevel@tonic-gate */ 17800Sstevel@tonic-gate if (c == EOF) { 17810Sstevel@tonic-gate (void) fclose(fp_inittab); 17820Sstevel@tonic-gate fp_inittab = NULL; 17830Sstevel@tonic-gate break; 17840Sstevel@tonic-gate } 17850Sstevel@tonic-gate } 17860Sstevel@tonic-gate return (answer); 17870Sstevel@tonic-gate } 17880Sstevel@tonic-gate 17890Sstevel@tonic-gate /* 17900Sstevel@tonic-gate * lvlname_to_state(): convert the character name of a state to its level 17910Sstevel@tonic-gate * (its corresponding signal number). 17920Sstevel@tonic-gate */ 17930Sstevel@tonic-gate static int 17940Sstevel@tonic-gate lvlname_to_state(char name) 17950Sstevel@tonic-gate { 17960Sstevel@tonic-gate int i; 17970Sstevel@tonic-gate for (i = 0; i < LVL_NELEMS; i++) { 17980Sstevel@tonic-gate if (lvls[i].lvl_name == name) 17990Sstevel@tonic-gate return (lvls[i].lvl_state); 18000Sstevel@tonic-gate } 18010Sstevel@tonic-gate return (-1); 18020Sstevel@tonic-gate } 18030Sstevel@tonic-gate 18040Sstevel@tonic-gate /* 18050Sstevel@tonic-gate * state_to_name(): convert the level to the character name. 18060Sstevel@tonic-gate */ 18070Sstevel@tonic-gate static char 18080Sstevel@tonic-gate state_to_name(int state) 18090Sstevel@tonic-gate { 18100Sstevel@tonic-gate int i; 18110Sstevel@tonic-gate for (i = 0; i < LVL_NELEMS; i++) { 18120Sstevel@tonic-gate if (lvls[i].lvl_state == state) 18130Sstevel@tonic-gate return (lvls[i].lvl_name); 18140Sstevel@tonic-gate } 18150Sstevel@tonic-gate return (-1); 18160Sstevel@tonic-gate } 18170Sstevel@tonic-gate 18180Sstevel@tonic-gate /* 18190Sstevel@tonic-gate * state_to_mask(): return the mask corresponding to a signal number 18200Sstevel@tonic-gate */ 18210Sstevel@tonic-gate static int 18220Sstevel@tonic-gate state_to_mask(int state) 18230Sstevel@tonic-gate { 18240Sstevel@tonic-gate int i; 18250Sstevel@tonic-gate for (i = 0; i < LVL_NELEMS; i++) { 18260Sstevel@tonic-gate if (lvls[i].lvl_state == state) 18270Sstevel@tonic-gate return (lvls[i].lvl_mask); 18280Sstevel@tonic-gate } 18290Sstevel@tonic-gate return (0); /* return 0, since that represents an empty mask */ 18300Sstevel@tonic-gate } 18310Sstevel@tonic-gate 18320Sstevel@tonic-gate /* 18330Sstevel@tonic-gate * lvlname_to_mask(): return the mask corresponding to a levels character name 18340Sstevel@tonic-gate */ 18350Sstevel@tonic-gate static int 18360Sstevel@tonic-gate lvlname_to_mask(char name, int *mask) 18370Sstevel@tonic-gate { 18380Sstevel@tonic-gate int i; 18390Sstevel@tonic-gate for (i = 0; i < LVL_NELEMS; i++) { 18400Sstevel@tonic-gate if (lvls[i].lvl_name == name) { 18410Sstevel@tonic-gate *mask = lvls[i].lvl_mask; 18420Sstevel@tonic-gate return (0); 18430Sstevel@tonic-gate } 18440Sstevel@tonic-gate } 18450Sstevel@tonic-gate return (-1); 18460Sstevel@tonic-gate } 18470Sstevel@tonic-gate 18480Sstevel@tonic-gate /* 18490Sstevel@tonic-gate * state_to_flags(): return the flags corresponding to a runlevel. These 18500Sstevel@tonic-gate * indicate properties of that runlevel. 18510Sstevel@tonic-gate */ 18520Sstevel@tonic-gate static int 18530Sstevel@tonic-gate state_to_flags(int state) 18540Sstevel@tonic-gate { 18550Sstevel@tonic-gate int i; 18560Sstevel@tonic-gate for (i = 0; i < LVL_NELEMS; i++) { 18570Sstevel@tonic-gate if (lvls[i].lvl_state == state) 18580Sstevel@tonic-gate return (lvls[i].lvl_flags); 18590Sstevel@tonic-gate } 18600Sstevel@tonic-gate return (0); 18610Sstevel@tonic-gate } 18620Sstevel@tonic-gate 18630Sstevel@tonic-gate /* 18640Sstevel@tonic-gate * killproc() creates a child which kills the process specified by pid. 18650Sstevel@tonic-gate */ 18660Sstevel@tonic-gate void 18670Sstevel@tonic-gate killproc(pid_t pid) 18680Sstevel@tonic-gate { 18690Sstevel@tonic-gate struct PROC_TABLE *process; 18700Sstevel@tonic-gate 18710Sstevel@tonic-gate (void) sigset(SIGCLD, SIG_DFL); 18720Sstevel@tonic-gate while ((process = efork(M_OFF, NULLPROC, 0)) == NO_ROOM) 18730Sstevel@tonic-gate (void) pause(); 18740Sstevel@tonic-gate (void) sigset(SIGCLD, childeath); 18750Sstevel@tonic-gate 18760Sstevel@tonic-gate if (process == NULLPROC) { 18770Sstevel@tonic-gate /* 18780Sstevel@tonic-gate * efork() sets all signal handlers to the default, so reset 18790Sstevel@tonic-gate * the ALRM handler to make timer() work as expected. 18800Sstevel@tonic-gate */ 18810Sstevel@tonic-gate (void) sigset(SIGALRM, alarmclk); 18820Sstevel@tonic-gate 18830Sstevel@tonic-gate /* 18840Sstevel@tonic-gate * We are the child. Try to terminate the process nicely 18850Sstevel@tonic-gate * first using SIGTERM and if it refuses to die in TWARN 18860Sstevel@tonic-gate * seconds kill it with SIGKILL. 18870Sstevel@tonic-gate */ 18880Sstevel@tonic-gate (void) kill(pid, SIGTERM); 18890Sstevel@tonic-gate (void) timer(TWARN); 18900Sstevel@tonic-gate (void) kill(pid, SIGKILL); 18910Sstevel@tonic-gate (void) exit(0); 18920Sstevel@tonic-gate } 18930Sstevel@tonic-gate } 18940Sstevel@tonic-gate 18950Sstevel@tonic-gate /* 18960Sstevel@tonic-gate * Set up the default environment for all procs to be forked from init. 18970Sstevel@tonic-gate * Read the values from the /etc/default/init file, except for PATH. If 18980Sstevel@tonic-gate * there's not enough room in the environment array, the environment 18990Sstevel@tonic-gate * lines that don't fit are silently discarded. 19000Sstevel@tonic-gate */ 19010Sstevel@tonic-gate void 19020Sstevel@tonic-gate init_env() 19030Sstevel@tonic-gate { 19040Sstevel@tonic-gate char line[MAXCMDL]; 19050Sstevel@tonic-gate FILE *fp; 19060Sstevel@tonic-gate int inquotes, length, wslength; 19070Sstevel@tonic-gate char *tokp, *cp1, *cp2; 19080Sstevel@tonic-gate 19090Sstevel@tonic-gate glob_envp[0] = malloc((unsigned)(strlen(DEF_PATH)+2)); 19100Sstevel@tonic-gate (void) strcpy(glob_envp[0], DEF_PATH); 19110Sstevel@tonic-gate glob_envn = 1; 19120Sstevel@tonic-gate 19130Sstevel@tonic-gate if (rflg) { 19140Sstevel@tonic-gate glob_envp[1] = 19150Sstevel@tonic-gate malloc((unsigned)(strlen("_DVFS_RECONFIG=YES")+2)); 19160Sstevel@tonic-gate (void) strcpy(glob_envp[1], "_DVFS_RECONFIG=YES"); 19170Sstevel@tonic-gate ++glob_envn; 19180Sstevel@tonic-gate } else if (bflg == 1) { 19190Sstevel@tonic-gate glob_envp[1] = 19200Sstevel@tonic-gate malloc((unsigned)(strlen("RB_NOBOOTRC=YES")+2)); 19210Sstevel@tonic-gate (void) strcpy(glob_envp[1], "RB_NOBOOTRC=YES"); 19220Sstevel@tonic-gate ++glob_envn; 19230Sstevel@tonic-gate } 19240Sstevel@tonic-gate 19250Sstevel@tonic-gate if ((fp = fopen(ENVFILE, "r")) == NULL) { 19260Sstevel@tonic-gate console(B_TRUE, 19270Sstevel@tonic-gate "Cannot open %s. Environment not initialized.\n", 19280Sstevel@tonic-gate ENVFILE); 19290Sstevel@tonic-gate } else { 19300Sstevel@tonic-gate while (fgets(line, MAXCMDL - 1, fp) != NULL && 19310Sstevel@tonic-gate glob_envn < MAXENVENT - 2) { 19320Sstevel@tonic-gate /* 19330Sstevel@tonic-gate * Toss newline 19340Sstevel@tonic-gate */ 19350Sstevel@tonic-gate length = strlen(line); 19360Sstevel@tonic-gate if (line[length - 1] == '\n') 19370Sstevel@tonic-gate line[length - 1] = '\0'; 19380Sstevel@tonic-gate 19390Sstevel@tonic-gate /* 19400Sstevel@tonic-gate * Ignore blank or comment lines. 19410Sstevel@tonic-gate */ 19420Sstevel@tonic-gate if (line[0] == '#' || line[0] == '\0' || 19430Sstevel@tonic-gate (wslength = strspn(line, " \t\n")) == 19440Sstevel@tonic-gate strlen(line) || 19450Sstevel@tonic-gate strchr(line, '#') == line + wslength) 19460Sstevel@tonic-gate continue; 19470Sstevel@tonic-gate 19480Sstevel@tonic-gate /* 19490Sstevel@tonic-gate * First make a pass through the line and change 19500Sstevel@tonic-gate * any non-quoted semi-colons to blanks so they 19510Sstevel@tonic-gate * will be treated as token separators below. 19520Sstevel@tonic-gate */ 19530Sstevel@tonic-gate inquotes = 0; 19540Sstevel@tonic-gate for (cp1 = line; *cp1 != '\0'; cp1++) { 19550Sstevel@tonic-gate if (*cp1 == '"') { 19560Sstevel@tonic-gate if (inquotes == 0) 19570Sstevel@tonic-gate inquotes = 1; 19580Sstevel@tonic-gate else 19590Sstevel@tonic-gate inquotes = 0; 19600Sstevel@tonic-gate } else if (*cp1 == ';') { 19610Sstevel@tonic-gate if (inquotes == 0) 19620Sstevel@tonic-gate *cp1 = ' '; 19630Sstevel@tonic-gate } 19640Sstevel@tonic-gate } 19650Sstevel@tonic-gate 19660Sstevel@tonic-gate /* 19670Sstevel@tonic-gate * Tokens within the line are separated by blanks 19680Sstevel@tonic-gate * and tabs. For each token in the line which 19690Sstevel@tonic-gate * contains a '=' we strip out any quotes and then 19700Sstevel@tonic-gate * stick the token in the environment array. 19710Sstevel@tonic-gate */ 19720Sstevel@tonic-gate if ((tokp = strtok(line, " \t")) == NULL) 19730Sstevel@tonic-gate continue; 19740Sstevel@tonic-gate do { 19750Sstevel@tonic-gate if (strchr(tokp, '=') == NULL) 19760Sstevel@tonic-gate continue; 19770Sstevel@tonic-gate length = strlen(tokp); 19780Sstevel@tonic-gate while ((cp1 = strpbrk(tokp, "\"\'")) != NULL) { 19790Sstevel@tonic-gate for (cp2 = cp1; 19800Sstevel@tonic-gate cp2 < &tokp[length]; cp2++) 19810Sstevel@tonic-gate *cp2 = *(cp2 + 1); 19820Sstevel@tonic-gate length--; 19830Sstevel@tonic-gate } 19840Sstevel@tonic-gate 19850Sstevel@tonic-gate if (strncmp(tokp, "CMASK=", 19860Sstevel@tonic-gate sizeof ("CMASK=") - 1) == 0) { 19870Sstevel@tonic-gate long t; 19880Sstevel@tonic-gate 19890Sstevel@tonic-gate /* We know there's an = */ 19900Sstevel@tonic-gate t = strtol(strchr(tokp, '=') + 1, NULL, 19910Sstevel@tonic-gate 8); 19920Sstevel@tonic-gate 19930Sstevel@tonic-gate /* Sanity */ 19940Sstevel@tonic-gate if (t <= 077 && t >= 0) 19950Sstevel@tonic-gate cmask = (int)t; 19960Sstevel@tonic-gate (void) umask(cmask); 19970Sstevel@tonic-gate continue; 19980Sstevel@tonic-gate } 19990Sstevel@tonic-gate glob_envp[glob_envn] = 20000Sstevel@tonic-gate malloc((unsigned)(length + 1)); 20010Sstevel@tonic-gate (void) strcpy(glob_envp[glob_envn], tokp); 20020Sstevel@tonic-gate if (++glob_envn >= MAXENVENT - 1) 20030Sstevel@tonic-gate break; 20040Sstevel@tonic-gate } while ((tokp = strtok(NULL, " \t")) != NULL); 20050Sstevel@tonic-gate } 20060Sstevel@tonic-gate 20070Sstevel@tonic-gate /* 20080Sstevel@tonic-gate * Append a null pointer to the environment array 20090Sstevel@tonic-gate * to mark its end. 20100Sstevel@tonic-gate */ 20110Sstevel@tonic-gate glob_envp[glob_envn] = NULL; 20120Sstevel@tonic-gate (void) fclose(fp); 20130Sstevel@tonic-gate } 20140Sstevel@tonic-gate } 20150Sstevel@tonic-gate 20160Sstevel@tonic-gate /* 20170Sstevel@tonic-gate * boot_init(): Do initialization things that should be done at boot. 20180Sstevel@tonic-gate */ 20190Sstevel@tonic-gate void 20200Sstevel@tonic-gate boot_init() 20210Sstevel@tonic-gate { 20220Sstevel@tonic-gate int i; 20230Sstevel@tonic-gate struct PROC_TABLE *process, *oprocess; 20240Sstevel@tonic-gate struct CMD_LINE cmd; 20250Sstevel@tonic-gate char line[MAXCMDL]; 20260Sstevel@tonic-gate char *old_path; 20270Sstevel@tonic-gate int maxfiles; 20280Sstevel@tonic-gate 20290Sstevel@tonic-gate /* Use INIT_PATH for sysinit cmds */ 20300Sstevel@tonic-gate old_path = glob_envp[0]; 20310Sstevel@tonic-gate glob_envp[0] = malloc((unsigned)(strlen(INIT_PATH)+2)); 20320Sstevel@tonic-gate (void) strcpy(glob_envp[0], INIT_PATH); 20330Sstevel@tonic-gate 20340Sstevel@tonic-gate /* 20350Sstevel@tonic-gate * Scan inittab(4) and process the special svc.startd entry, initdefault 20360Sstevel@tonic-gate * and sysinit entries. 20370Sstevel@tonic-gate */ 20380Sstevel@tonic-gate while (getcmd(&cmd, &line[0]) == TRUE) { 20390Sstevel@tonic-gate if (startd_tmpl >= 0 && id_eq(cmd.c_id, "smf")) 20400Sstevel@tonic-gate process_startd_line(&cmd, line); 20410Sstevel@tonic-gate else if (cmd.c_action == M_INITDEFAULT) { 20420Sstevel@tonic-gate /* 20430Sstevel@tonic-gate * initdefault is no longer meaningful, as the SMF 20440Sstevel@tonic-gate * milestone controls what (legacy) run level we 20450Sstevel@tonic-gate * boot to. 20460Sstevel@tonic-gate */ 20470Sstevel@tonic-gate console(B_TRUE, 20480Sstevel@tonic-gate "Ignoring legacy \"initdefault\" entry.\n"); 20490Sstevel@tonic-gate } else if (cmd.c_action == M_SYSINIT) { 20500Sstevel@tonic-gate /* 20510Sstevel@tonic-gate * Execute the "sysinit" entry and wait for it to 20520Sstevel@tonic-gate * complete. No bookkeeping is performed on these 20530Sstevel@tonic-gate * entries because we avoid writing to the file system 20540Sstevel@tonic-gate * until after there has been an chance to check it. 20550Sstevel@tonic-gate */ 20560Sstevel@tonic-gate if (process = findpslot(&cmd)) { 20570Sstevel@tonic-gate (void) sigset(SIGCLD, SIG_DFL); 20580Sstevel@tonic-gate 20590Sstevel@tonic-gate for (oprocess = process; 20600Sstevel@tonic-gate (process = efork(M_OFF, oprocess, 20610Sstevel@tonic-gate (NAMED|NOCLEANUP))) == NO_ROOM; 20620Sstevel@tonic-gate /* CSTYLED */) 20630Sstevel@tonic-gate ; 20640Sstevel@tonic-gate (void) sigset(SIGCLD, childeath); 20650Sstevel@tonic-gate 20660Sstevel@tonic-gate if (process == NULLPROC) { 20670Sstevel@tonic-gate maxfiles = ulimit(UL_GDESLIM, 0); 20680Sstevel@tonic-gate 20690Sstevel@tonic-gate for (i = 0; i < maxfiles; i++) 20700Sstevel@tonic-gate (void) fcntl(i, F_SETFD, 20710Sstevel@tonic-gate FD_CLOEXEC); 20720Sstevel@tonic-gate (void) execle(SH, "INITSH", "-c", 20730Sstevel@tonic-gate cmd.c_command, 20740Sstevel@tonic-gate (char *)0, glob_envp); 20750Sstevel@tonic-gate console(B_TRUE, 20760Sstevel@tonic-gate "Command\n\"%s\"\n failed to execute. errno = %d (exec of shell failed)\n", 20770Sstevel@tonic-gate cmd.c_command, errno); 20780Sstevel@tonic-gate exit(1); 20790Sstevel@tonic-gate } else while (waitproc(process) == FAILURE); 20800Sstevel@tonic-gate process->p_flags = 0; 20810Sstevel@tonic-gate st_write(); 20820Sstevel@tonic-gate } 20830Sstevel@tonic-gate } 20840Sstevel@tonic-gate } 20850Sstevel@tonic-gate 20860Sstevel@tonic-gate /* Restore the path. */ 20870Sstevel@tonic-gate free(glob_envp[0]); 20880Sstevel@tonic-gate glob_envp[0] = old_path; 20890Sstevel@tonic-gate 20900Sstevel@tonic-gate /* 20910Sstevel@tonic-gate * This will enable st_write() to complain about init_state_file. 20920Sstevel@tonic-gate */ 20930Sstevel@tonic-gate booting = 0; 20940Sstevel@tonic-gate 20950Sstevel@tonic-gate /* 20960Sstevel@tonic-gate * If the /etc/ioctl.syscon didn't exist or had invalid contents write 20970Sstevel@tonic-gate * out a correct version. 20980Sstevel@tonic-gate */ 20990Sstevel@tonic-gate if (write_ioctl) 21000Sstevel@tonic-gate write_ioctl_syscon(); 21010Sstevel@tonic-gate 21020Sstevel@tonic-gate /* 21030Sstevel@tonic-gate * Start svc.startd(1M), which does most of the work. 21040Sstevel@tonic-gate */ 21050Sstevel@tonic-gate if (startd_cline[0] != '\0' && startd_tmpl >= 0) { 21060Sstevel@tonic-gate /* Start svc.startd. */ 21070Sstevel@tonic-gate if (startd_run(startd_cline, startd_tmpl, 0) == -1) 21080Sstevel@tonic-gate cur_state = SINGLE_USER; 21090Sstevel@tonic-gate } else { 21100Sstevel@tonic-gate console(B_TRUE, "Absent svc.startd entry or bad " 21110Sstevel@tonic-gate "contract template. Not starting svc.startd.\n"); 21120Sstevel@tonic-gate enter_maintenance(); 21130Sstevel@tonic-gate } 21140Sstevel@tonic-gate } 21150Sstevel@tonic-gate 21160Sstevel@tonic-gate /* 21170Sstevel@tonic-gate * init_signals(): Initialize all signals to either be caught or ignored. 21180Sstevel@tonic-gate */ 21190Sstevel@tonic-gate void 21200Sstevel@tonic-gate init_signals(void) 21210Sstevel@tonic-gate { 21220Sstevel@tonic-gate struct sigaction act; 21230Sstevel@tonic-gate int i; 21240Sstevel@tonic-gate 21250Sstevel@tonic-gate /* 21260Sstevel@tonic-gate * Start by ignoring all signals, then selectively re-enable some. 21270Sstevel@tonic-gate * The SIG_IGN disposition will only affect asynchronous signals: 21280Sstevel@tonic-gate * any signal that we trigger synchronously that doesn't end up 21290Sstevel@tonic-gate * being handled by siglvl() will be forcibly delivered by the kernel. 21300Sstevel@tonic-gate */ 21310Sstevel@tonic-gate for (i = SIGHUP; i <= SIGRTMAX; i++) 21320Sstevel@tonic-gate (void) sigset(i, SIG_IGN); 21330Sstevel@tonic-gate 21340Sstevel@tonic-gate /* 21350Sstevel@tonic-gate * Handle all level-changing signals using siglvl() and set sa_mask so 21360Sstevel@tonic-gate * that all level-changing signals are blocked while in siglvl(). 21370Sstevel@tonic-gate */ 21380Sstevel@tonic-gate act.sa_handler = siglvl; 21390Sstevel@tonic-gate act.sa_flags = SA_SIGINFO; 21400Sstevel@tonic-gate (void) sigemptyset(&act.sa_mask); 21410Sstevel@tonic-gate 21420Sstevel@tonic-gate (void) sigaddset(&act.sa_mask, LVLQ); 21430Sstevel@tonic-gate (void) sigaddset(&act.sa_mask, LVL0); 21440Sstevel@tonic-gate (void) sigaddset(&act.sa_mask, LVL1); 21450Sstevel@tonic-gate (void) sigaddset(&act.sa_mask, LVL2); 21460Sstevel@tonic-gate (void) sigaddset(&act.sa_mask, LVL3); 21470Sstevel@tonic-gate (void) sigaddset(&act.sa_mask, LVL4); 21480Sstevel@tonic-gate (void) sigaddset(&act.sa_mask, LVL5); 21490Sstevel@tonic-gate (void) sigaddset(&act.sa_mask, LVL6); 21500Sstevel@tonic-gate (void) sigaddset(&act.sa_mask, SINGLE_USER); 21510Sstevel@tonic-gate (void) sigaddset(&act.sa_mask, LVLa); 21520Sstevel@tonic-gate (void) sigaddset(&act.sa_mask, LVLb); 21530Sstevel@tonic-gate (void) sigaddset(&act.sa_mask, LVLc); 21540Sstevel@tonic-gate 21550Sstevel@tonic-gate (void) sigaction(LVLQ, &act, NULL); 21560Sstevel@tonic-gate (void) sigaction(LVL0, &act, NULL); 21570Sstevel@tonic-gate (void) sigaction(LVL1, &act, NULL); 21580Sstevel@tonic-gate (void) sigaction(LVL2, &act, NULL); 21590Sstevel@tonic-gate (void) sigaction(LVL3, &act, NULL); 21600Sstevel@tonic-gate (void) sigaction(LVL4, &act, NULL); 21610Sstevel@tonic-gate (void) sigaction(LVL5, &act, NULL); 21620Sstevel@tonic-gate (void) sigaction(LVL6, &act, NULL); 21630Sstevel@tonic-gate (void) sigaction(SINGLE_USER, &act, NULL); 21640Sstevel@tonic-gate (void) sigaction(LVLa, &act, NULL); 21650Sstevel@tonic-gate (void) sigaction(LVLb, &act, NULL); 21660Sstevel@tonic-gate (void) sigaction(LVLc, &act, NULL); 21670Sstevel@tonic-gate 21680Sstevel@tonic-gate (void) sigset(SIGALRM, alarmclk); 21690Sstevel@tonic-gate alarmclk(); 21700Sstevel@tonic-gate 21710Sstevel@tonic-gate (void) sigset(SIGCLD, childeath); 21720Sstevel@tonic-gate (void) sigset(SIGPWR, powerfail); 21730Sstevel@tonic-gate } 21740Sstevel@tonic-gate 21750Sstevel@tonic-gate /* 21760Sstevel@tonic-gate * Set up pipe for "godchildren". If the file exists and is a pipe just open 21770Sstevel@tonic-gate * it. Else, if the file system is r/w create it. Otherwise, defer its 21780Sstevel@tonic-gate * creation and open until after the sysinit functions have had a chance to 21790Sstevel@tonic-gate * make the root read/write. 21800Sstevel@tonic-gate */ 21810Sstevel@tonic-gate void 21820Sstevel@tonic-gate setup_pipe() 21830Sstevel@tonic-gate { 21840Sstevel@tonic-gate struct stat stat_buf; 21850Sstevel@tonic-gate struct statvfs statvfs_buf; 21860Sstevel@tonic-gate 21870Sstevel@tonic-gate if ((stat(INITPIPE, &stat_buf) == 0) && 21880Sstevel@tonic-gate ((stat_buf.st_mode & (S_IFMT|S_IRUSR)) == (S_IFIFO|S_IRUSR))) 21890Sstevel@tonic-gate Pfd = open(INITPIPE, O_RDWR | O_NDELAY); 21900Sstevel@tonic-gate else 21910Sstevel@tonic-gate if ((statvfs(INITPIPE_DIR, &statvfs_buf) == 0) && 21920Sstevel@tonic-gate ((statvfs_buf.f_flag & ST_RDONLY) == 0)) { 21930Sstevel@tonic-gate (void) unlink(INITPIPE); 21940Sstevel@tonic-gate (void) mknod(INITPIPE, S_IFIFO | 0600, 0); 21950Sstevel@tonic-gate Pfd = open(INITPIPE, O_RDWR | O_NDELAY); 21960Sstevel@tonic-gate } 21970Sstevel@tonic-gate 21980Sstevel@tonic-gate if (Pfd >= 0) { 21990Sstevel@tonic-gate (void) ioctl(Pfd, I_SETSIG, S_INPUT); 22000Sstevel@tonic-gate /* 22010Sstevel@tonic-gate * Read pipe in message discard mode. 22020Sstevel@tonic-gate */ 22030Sstevel@tonic-gate (void) ioctl(Pfd, I_SRDOPT, RMSGD); 22040Sstevel@tonic-gate (void) sigset(SIGPOLL, sigpoll); 22050Sstevel@tonic-gate } 22060Sstevel@tonic-gate } 22070Sstevel@tonic-gate 22080Sstevel@tonic-gate /* 22090Sstevel@tonic-gate * siglvl - handle an asynchronous signal from init(1M) telling us that we 22100Sstevel@tonic-gate * should change the current run level. We set new_state accordingly. 22110Sstevel@tonic-gate */ 22120Sstevel@tonic-gate void 22130Sstevel@tonic-gate siglvl(int sig, siginfo_t *sip, ucontext_t *ucp) 22140Sstevel@tonic-gate { 22150Sstevel@tonic-gate struct PROC_TABLE *process; 22160Sstevel@tonic-gate struct sigaction act; 22170Sstevel@tonic-gate 22180Sstevel@tonic-gate /* 22190Sstevel@tonic-gate * If the signal was from the kernel (rather than init(1M)) then init 22200Sstevel@tonic-gate * itself tripped the signal. That is, we might have a bug and tripped 22210Sstevel@tonic-gate * a real SIGSEGV instead of receiving it as an alias for SIGLVLa. In 22220Sstevel@tonic-gate * such a case we reset the disposition to SIG_DFL, block all signals 22230Sstevel@tonic-gate * in uc_mask but the current one, and return to the interrupted ucp 22240Sstevel@tonic-gate * to effect an appropriate death. The kernel will then restart us. 22250Sstevel@tonic-gate * 22260Sstevel@tonic-gate * The one exception to SI_FROMKERNEL() is SIGFPE (a.k.a. LVL6), which 22270Sstevel@tonic-gate * the kernel can send us when it wants to effect an orderly reboot. 22280Sstevel@tonic-gate * For this case we must also verify si_code is zero, rather than a 22290Sstevel@tonic-gate * code such as FPE_INTDIV which a bug might have triggered. 22300Sstevel@tonic-gate */ 22310Sstevel@tonic-gate if (sip != NULL && SI_FROMKERNEL(sip) && 22320Sstevel@tonic-gate (sig != SIGFPE || sip->si_code == 0)) { 22330Sstevel@tonic-gate 22340Sstevel@tonic-gate (void) sigemptyset(&act.sa_mask); 22350Sstevel@tonic-gate act.sa_handler = SIG_DFL; 22360Sstevel@tonic-gate act.sa_flags = 0; 22370Sstevel@tonic-gate (void) sigaction(sig, &act, NULL); 22380Sstevel@tonic-gate 22390Sstevel@tonic-gate (void) sigfillset(&ucp->uc_sigmask); 22400Sstevel@tonic-gate (void) sigdelset(&ucp->uc_sigmask, sig); 22410Sstevel@tonic-gate ucp->uc_flags |= UC_SIGMASK; 22420Sstevel@tonic-gate 22430Sstevel@tonic-gate (void) setcontext(ucp); 22440Sstevel@tonic-gate } 22450Sstevel@tonic-gate 22460Sstevel@tonic-gate /* 22470Sstevel@tonic-gate * If the signal received is a LVLQ signal, do not really 22480Sstevel@tonic-gate * change levels, just restate the current level. If the 22490Sstevel@tonic-gate * signal is not a LVLQ, set the new level to the signal 22500Sstevel@tonic-gate * received. 22510Sstevel@tonic-gate */ 22520Sstevel@tonic-gate if (sig == LVLQ) 22530Sstevel@tonic-gate new_state = cur_state; 22540Sstevel@tonic-gate else 22550Sstevel@tonic-gate new_state = sig; 22560Sstevel@tonic-gate 22570Sstevel@tonic-gate /* 22580Sstevel@tonic-gate * Clear all times and repeat counts in the process table 22590Sstevel@tonic-gate * since either the level is changing or the user has editted 22600Sstevel@tonic-gate * the inittab file and wants us to look at it again. 22610Sstevel@tonic-gate * If the user has fixed a typo, we don't want residual timing 22620Sstevel@tonic-gate * data preventing the fixed command line from executing. 22630Sstevel@tonic-gate */ 22640Sstevel@tonic-gate for (process = proc_table; 22650Sstevel@tonic-gate (process < proc_table + num_proc); process++) { 22660Sstevel@tonic-gate process->p_time = 0L; 22670Sstevel@tonic-gate process->p_count = 0; 22680Sstevel@tonic-gate } 22690Sstevel@tonic-gate 22700Sstevel@tonic-gate /* 22710Sstevel@tonic-gate * Set the flag to indicate that a "user signal" was received. 22720Sstevel@tonic-gate */ 22730Sstevel@tonic-gate wakeup.w_flags.w_usersignal = 1; 22740Sstevel@tonic-gate } 22750Sstevel@tonic-gate 22760Sstevel@tonic-gate 22770Sstevel@tonic-gate /* 22780Sstevel@tonic-gate * alarmclk 22790Sstevel@tonic-gate */ 22800Sstevel@tonic-gate static void 22810Sstevel@tonic-gate alarmclk() 22820Sstevel@tonic-gate { 22830Sstevel@tonic-gate time_up = TRUE; 22840Sstevel@tonic-gate } 22850Sstevel@tonic-gate 22860Sstevel@tonic-gate /* 22870Sstevel@tonic-gate * childeath_single(): 22880Sstevel@tonic-gate * 22890Sstevel@tonic-gate * This used to be the SIGCLD handler and it was set with signal() 22900Sstevel@tonic-gate * (as opposed to sigset()). When a child exited we'd come to the 22910Sstevel@tonic-gate * handler, wait for the child, and reenable the handler with 22920Sstevel@tonic-gate * signal() just before returning. The implementation of signal() 22930Sstevel@tonic-gate * checks with waitid() for waitable children and sends a SIGCLD 22940Sstevel@tonic-gate * if there are some. If children are exiting faster than the 22950Sstevel@tonic-gate * handler can run we keep sending signals and the handler never 22960Sstevel@tonic-gate * gets to return and eventually the stack runs out and init dies. 22970Sstevel@tonic-gate * To prevent that we set the handler with sigset() so the handler 22980Sstevel@tonic-gate * doesn't need to be reset, and in childeath() (see below) we 22990Sstevel@tonic-gate * call childeath_single() as long as there are children to be 23000Sstevel@tonic-gate * waited for. If a child exits while init is in the handler a 23010Sstevel@tonic-gate * SIGCLD will be pending and delivered on return from the handler. 23020Sstevel@tonic-gate * If the child was already waited for the handler will have nothing 23030Sstevel@tonic-gate * to do and return, otherwise the child will be waited for. 23040Sstevel@tonic-gate */ 23050Sstevel@tonic-gate static void 23060Sstevel@tonic-gate childeath_single() 23070Sstevel@tonic-gate { 23080Sstevel@tonic-gate struct PROC_TABLE *process; 23090Sstevel@tonic-gate struct pidlist *pp; 23100Sstevel@tonic-gate pid_t pid; 23110Sstevel@tonic-gate int status; 23120Sstevel@tonic-gate 23130Sstevel@tonic-gate /* 23140Sstevel@tonic-gate * Perform wait to get the process id of the child that died and 23150Sstevel@tonic-gate * then scan the process table to see if we are interested in 23160Sstevel@tonic-gate * this process. NOTE: if a super-user sends the SIGCLD signal 23170Sstevel@tonic-gate * to init, the following wait will not immediately return and 23180Sstevel@tonic-gate * init will be inoperative until one of its child really does die. 23190Sstevel@tonic-gate */ 23200Sstevel@tonic-gate pid = wait(&status); 23210Sstevel@tonic-gate 23220Sstevel@tonic-gate for (process = proc_table; 23230Sstevel@tonic-gate (process < proc_table + num_proc); process++) { 23240Sstevel@tonic-gate if ((process->p_flags & (LIVING|OCCUPIED)) == 23250Sstevel@tonic-gate (LIVING|OCCUPIED) && process->p_pid == pid) { 23260Sstevel@tonic-gate 23270Sstevel@tonic-gate /* 23280Sstevel@tonic-gate * Mark this process as having died and store the exit 23290Sstevel@tonic-gate * status. Also set the wakeup flag for a dead child 23300Sstevel@tonic-gate * and break out of the loop. 23310Sstevel@tonic-gate */ 23320Sstevel@tonic-gate process->p_flags &= ~LIVING; 23330Sstevel@tonic-gate process->p_exit = (short)status; 23340Sstevel@tonic-gate wakeup.w_flags.w_childdeath = 1; 23350Sstevel@tonic-gate 23360Sstevel@tonic-gate return; 23370Sstevel@tonic-gate } 23380Sstevel@tonic-gate } 23390Sstevel@tonic-gate 23400Sstevel@tonic-gate /* 23410Sstevel@tonic-gate * No process was found above, look through auxiliary list. 23420Sstevel@tonic-gate */ 23430Sstevel@tonic-gate (void) sighold(SIGPOLL); 23440Sstevel@tonic-gate pp = Plhead; 23450Sstevel@tonic-gate while (pp) { 23460Sstevel@tonic-gate if (pid > pp->pl_pid) { 23470Sstevel@tonic-gate /* 23480Sstevel@tonic-gate * Keep on looking. 23490Sstevel@tonic-gate */ 23500Sstevel@tonic-gate pp = pp->pl_next; 23510Sstevel@tonic-gate continue; 23520Sstevel@tonic-gate } else if (pid < pp->pl_pid) { 23530Sstevel@tonic-gate /* 23540Sstevel@tonic-gate * Not in the list. 23550Sstevel@tonic-gate */ 23560Sstevel@tonic-gate break; 23570Sstevel@tonic-gate } else { 23580Sstevel@tonic-gate /* 23590Sstevel@tonic-gate * This is a dead "godchild". 23600Sstevel@tonic-gate */ 23610Sstevel@tonic-gate pp->pl_dflag = 1; 23620Sstevel@tonic-gate pp->pl_exit = (short)status; 23630Sstevel@tonic-gate wakeup.w_flags.w_childdeath = 1; 23640Sstevel@tonic-gate Gchild = 1; /* Notice to call cleanaux(). */ 23650Sstevel@tonic-gate break; 23660Sstevel@tonic-gate } 23670Sstevel@tonic-gate } 23680Sstevel@tonic-gate 23690Sstevel@tonic-gate (void) sigrelse(SIGPOLL); 23700Sstevel@tonic-gate } 23710Sstevel@tonic-gate 23720Sstevel@tonic-gate /* ARGSUSED */ 23730Sstevel@tonic-gate static void 23740Sstevel@tonic-gate childeath(int signo) 23750Sstevel@tonic-gate { 23760Sstevel@tonic-gate siginfo_t info; 23770Sstevel@tonic-gate 23780Sstevel@tonic-gate while ((waitid(P_ALL, (id_t)0, &info, WEXITED|WNOHANG|WNOWAIT) == 0) && 23790Sstevel@tonic-gate info.si_pid != 0) 23800Sstevel@tonic-gate childeath_single(); 23810Sstevel@tonic-gate } 23820Sstevel@tonic-gate 23830Sstevel@tonic-gate static void 23840Sstevel@tonic-gate powerfail() 23850Sstevel@tonic-gate { 23860Sstevel@tonic-gate (void) nice(-19); 23870Sstevel@tonic-gate wakeup.w_flags.w_powerhit = 1; 23880Sstevel@tonic-gate } 23890Sstevel@tonic-gate 23900Sstevel@tonic-gate /* 23910Sstevel@tonic-gate * efork() forks a child and the parent inserts the process in its table 23920Sstevel@tonic-gate * of processes that are directly a result of forks that it has performed. 23930Sstevel@tonic-gate * The child just changes the "global" with the process id for this process 23940Sstevel@tonic-gate * to it's new value. 23950Sstevel@tonic-gate * If efork() is called with a pointer into the proc_table it uses that slot, 23960Sstevel@tonic-gate * otherwise it searches for a free slot. Regardless of how it was called, 23970Sstevel@tonic-gate * it returns the pointer to the proc_table entry 23980Sstevel@tonic-gate * 23990Sstevel@tonic-gate * The SIGCLD handler is set to default (SIG_DFL) before calling efork(). 24000Sstevel@tonic-gate * This relies on the somewhat obscure SVR2 SIGCLD/SIG_DFL semantic 24010Sstevel@tonic-gate * implied by the use of signal(3c). While the meaning of SIG_DFL for 24020Sstevel@tonic-gate * SIGCLD is nominally to ignore the signal, once the signal disposition 24030Sstevel@tonic-gate * is set to childeath(), the kernel will post a SIGCLD if a child 24040Sstevel@tonic-gate * exited during the period the disposition was SIG_DFL. It acts more 24050Sstevel@tonic-gate * like a signal block. 24060Sstevel@tonic-gate * 24070Sstevel@tonic-gate * Ideally, this should be rewritten to use modern signal semantics. 24080Sstevel@tonic-gate */ 24090Sstevel@tonic-gate static struct PROC_TABLE * 24100Sstevel@tonic-gate efork(int action, struct PROC_TABLE *process, int modes) 24110Sstevel@tonic-gate { 24120Sstevel@tonic-gate pid_t childpid; 24130Sstevel@tonic-gate struct PROC_TABLE *proc; 24140Sstevel@tonic-gate int i; 24150Sstevel@tonic-gate void (*oldroutine)(); 24160Sstevel@tonic-gate /* 24170Sstevel@tonic-gate * Freshen up the proc_table, removing any entries for dead processes 24180Sstevel@tonic-gate * that don't have NOCLEANUP set. Perform the necessary accounting. 24190Sstevel@tonic-gate */ 24200Sstevel@tonic-gate for (proc = proc_table; (proc < proc_table + num_proc); proc++) { 24210Sstevel@tonic-gate if ((proc->p_flags & (OCCUPIED|LIVING|NOCLEANUP)) == 24220Sstevel@tonic-gate (OCCUPIED)) { 24230Sstevel@tonic-gate /* 24240Sstevel@tonic-gate * Is this a named process? 24250Sstevel@tonic-gate * If so, do the necessary bookkeeping. 24260Sstevel@tonic-gate */ 24270Sstevel@tonic-gate if (proc->p_flags & NAMED) 24280Sstevel@tonic-gate (void) account(DEAD_PROCESS, proc, NULL); 24290Sstevel@tonic-gate 24300Sstevel@tonic-gate /* 24310Sstevel@tonic-gate * Free this entry for new usage. 24320Sstevel@tonic-gate */ 24330Sstevel@tonic-gate proc->p_flags = 0; 24340Sstevel@tonic-gate } 24350Sstevel@tonic-gate } 24360Sstevel@tonic-gate 24370Sstevel@tonic-gate while ((childpid = fork()) == FAILURE) { 24380Sstevel@tonic-gate /* 24390Sstevel@tonic-gate * Shorten the alarm timer in case someone else's child dies 24400Sstevel@tonic-gate * and free up a slot in the process table. 24410Sstevel@tonic-gate */ 24420Sstevel@tonic-gate setimer(5); 24430Sstevel@tonic-gate 24440Sstevel@tonic-gate /* 24450Sstevel@tonic-gate * Wait for some children to die. Since efork() is normally 24460Sstevel@tonic-gate * called with SIGCLD in the default state, reset it to catch 24470Sstevel@tonic-gate * so that child death signals can come in. 24480Sstevel@tonic-gate */ 24490Sstevel@tonic-gate oldroutine = sigset(SIGCLD, childeath); 24500Sstevel@tonic-gate (void) pause(); 24510Sstevel@tonic-gate (void) sigset(SIGCLD, oldroutine); 24520Sstevel@tonic-gate setimer(0); 24530Sstevel@tonic-gate } 24540Sstevel@tonic-gate 24550Sstevel@tonic-gate if (childpid != 0) { 24560Sstevel@tonic-gate 24570Sstevel@tonic-gate if (process == NULLPROC) { 24580Sstevel@tonic-gate /* 24590Sstevel@tonic-gate * No proc table pointer specified so search 24600Sstevel@tonic-gate * for a free slot. 24610Sstevel@tonic-gate */ 24620Sstevel@tonic-gate for (process = proc_table; process->p_flags != 0 && 24630Sstevel@tonic-gate (process < proc_table + num_proc); process++) 24640Sstevel@tonic-gate ; 24650Sstevel@tonic-gate 24660Sstevel@tonic-gate if (process == (proc_table + num_proc)) { 24670Sstevel@tonic-gate int old_proc_table_size = num_proc; 24680Sstevel@tonic-gate 24690Sstevel@tonic-gate /* Increase the process table size */ 24700Sstevel@tonic-gate increase_proc_table_size(); 24710Sstevel@tonic-gate if (old_proc_table_size == num_proc) { 24720Sstevel@tonic-gate /* didn't grow: memory failure */ 24730Sstevel@tonic-gate return (NO_ROOM); 24740Sstevel@tonic-gate } else { 24750Sstevel@tonic-gate process = 24760Sstevel@tonic-gate proc_table + old_proc_table_size; 24770Sstevel@tonic-gate } 24780Sstevel@tonic-gate } 24790Sstevel@tonic-gate 24800Sstevel@tonic-gate process->p_time = 0L; 24810Sstevel@tonic-gate process->p_count = 0; 24820Sstevel@tonic-gate } 24830Sstevel@tonic-gate process->p_id[0] = '\0'; 24840Sstevel@tonic-gate process->p_id[1] = '\0'; 24850Sstevel@tonic-gate process->p_id[2] = '\0'; 24860Sstevel@tonic-gate process->p_id[3] = '\0'; 24870Sstevel@tonic-gate process->p_pid = childpid; 24880Sstevel@tonic-gate process->p_flags = (LIVING | OCCUPIED | modes); 24890Sstevel@tonic-gate process->p_exit = 0; 24900Sstevel@tonic-gate 24910Sstevel@tonic-gate st_write(); 24920Sstevel@tonic-gate } else { 24930Sstevel@tonic-gate if ((action & (M_WAIT | M_BOOTWAIT)) == 0) 24940Sstevel@tonic-gate (void) setpgrp(); 24950Sstevel@tonic-gate 24960Sstevel@tonic-gate process = NULLPROC; 24970Sstevel@tonic-gate 24980Sstevel@tonic-gate /* 24990Sstevel@tonic-gate * Reset all signals to the system defaults. 25000Sstevel@tonic-gate */ 25010Sstevel@tonic-gate for (i = SIGHUP; i <= SIGRTMAX; i++) 25020Sstevel@tonic-gate (void) sigset(i, SIG_DFL); 25030Sstevel@tonic-gate 25040Sstevel@tonic-gate /* 25050Sstevel@tonic-gate * POSIX B.2.2.2 advises that init should set SIGTTOU, 25060Sstevel@tonic-gate * SIGTTIN, and SIGTSTP to SIG_IGN. 25070Sstevel@tonic-gate * 25080Sstevel@tonic-gate * Make sure that SIGXCPU and SIGXFSZ also remain ignored, 25090Sstevel@tonic-gate * for backward compatibility. 25100Sstevel@tonic-gate */ 25110Sstevel@tonic-gate (void) sigset(SIGTTIN, SIG_IGN); 25120Sstevel@tonic-gate (void) sigset(SIGTTOU, SIG_IGN); 25130Sstevel@tonic-gate (void) sigset(SIGTSTP, SIG_IGN); 25140Sstevel@tonic-gate (void) sigset(SIGXCPU, SIG_IGN); 25150Sstevel@tonic-gate (void) sigset(SIGXFSZ, SIG_IGN); 25160Sstevel@tonic-gate } 25170Sstevel@tonic-gate return (process); 25180Sstevel@tonic-gate } 25190Sstevel@tonic-gate 25200Sstevel@tonic-gate 25210Sstevel@tonic-gate /* 25220Sstevel@tonic-gate * waitproc() waits for a specified process to die. For this function to 25230Sstevel@tonic-gate * work, the specified process must already in the proc_table. waitproc() 25240Sstevel@tonic-gate * returns the exit status of the specified process when it dies. 25250Sstevel@tonic-gate */ 25260Sstevel@tonic-gate static long 25270Sstevel@tonic-gate waitproc(struct PROC_TABLE *process) 25280Sstevel@tonic-gate { 25290Sstevel@tonic-gate int answer; 25300Sstevel@tonic-gate sigset_t oldmask, newmask, zeromask; 25310Sstevel@tonic-gate 25320Sstevel@tonic-gate (void) sigemptyset(&zeromask); 25330Sstevel@tonic-gate (void) sigemptyset(&newmask); 25340Sstevel@tonic-gate 25350Sstevel@tonic-gate (void) sigaddset(&newmask, SIGCLD); 25360Sstevel@tonic-gate 25370Sstevel@tonic-gate /* Block SIGCLD and save the current signal mask */ 25380Sstevel@tonic-gate if (sigprocmask(SIG_BLOCK, &newmask, &oldmask) < 0) 25390Sstevel@tonic-gate perror("SIG_BLOCK error"); 25400Sstevel@tonic-gate 25410Sstevel@tonic-gate /* 25420Sstevel@tonic-gate * Wait around until the process dies. 25430Sstevel@tonic-gate */ 25440Sstevel@tonic-gate if (process->p_flags & LIVING) 25450Sstevel@tonic-gate (void) sigsuspend(&zeromask); 25460Sstevel@tonic-gate 25470Sstevel@tonic-gate /* Reset signal mask to unblock SIGCLD */ 25480Sstevel@tonic-gate if (sigprocmask(SIG_SETMASK, &oldmask, NULL) < 0) 25490Sstevel@tonic-gate perror("SIG_SETMASK error"); 25500Sstevel@tonic-gate 25510Sstevel@tonic-gate if (process->p_flags & LIVING) 25520Sstevel@tonic-gate return (FAILURE); 25530Sstevel@tonic-gate 25540Sstevel@tonic-gate /* 25550Sstevel@tonic-gate * Make sure to only return 16 bits so that answer will always 25560Sstevel@tonic-gate * be positive whenever the process of interest really died. 25570Sstevel@tonic-gate */ 25580Sstevel@tonic-gate answer = (process->p_exit & 0xffff); 25590Sstevel@tonic-gate 25600Sstevel@tonic-gate /* 25610Sstevel@tonic-gate * Free the slot in the proc_table. 25620Sstevel@tonic-gate */ 25630Sstevel@tonic-gate process->p_flags = 0; 25640Sstevel@tonic-gate return (answer); 25650Sstevel@tonic-gate } 25660Sstevel@tonic-gate 25670Sstevel@tonic-gate /* 25680Sstevel@tonic-gate * notify_pam_dead(): calls into the PAM framework to close the given session. 25690Sstevel@tonic-gate */ 25700Sstevel@tonic-gate static void 25710Sstevel@tonic-gate notify_pam_dead(struct utmpx *up) 25720Sstevel@tonic-gate { 25730Sstevel@tonic-gate pam_handle_t *pamh; 25740Sstevel@tonic-gate char user[sizeof (up->ut_user) + 1]; 25750Sstevel@tonic-gate char ttyn[sizeof (up->ut_line) + 1]; 25760Sstevel@tonic-gate char host[sizeof (up->ut_host) + 1]; 25770Sstevel@tonic-gate 25780Sstevel@tonic-gate /* 25790Sstevel@tonic-gate * PAM does not take care of updating utmpx/wtmpx. 25800Sstevel@tonic-gate */ 25810Sstevel@tonic-gate (void) snprintf(user, sizeof (user), "%s", up->ut_user); 25820Sstevel@tonic-gate (void) snprintf(ttyn, sizeof (ttyn), "%s", up->ut_line); 25830Sstevel@tonic-gate (void) snprintf(host, sizeof (host), "%s", up->ut_host); 25840Sstevel@tonic-gate 25850Sstevel@tonic-gate if (pam_start("init", user, NULL, &pamh) == PAM_SUCCESS) { 25860Sstevel@tonic-gate (void) pam_set_item(pamh, PAM_TTY, ttyn); 25870Sstevel@tonic-gate (void) pam_set_item(pamh, PAM_RHOST, host); 25880Sstevel@tonic-gate (void) pam_close_session(pamh, 0); 25890Sstevel@tonic-gate (void) pam_end(pamh, PAM_SUCCESS); 25900Sstevel@tonic-gate } 25910Sstevel@tonic-gate } 25920Sstevel@tonic-gate 25930Sstevel@tonic-gate /* 25940Sstevel@tonic-gate * Check you can access utmpx (As / may be read-only and 25950Sstevel@tonic-gate * /var may not be mounted yet). 25960Sstevel@tonic-gate */ 25970Sstevel@tonic-gate static int 25980Sstevel@tonic-gate access_utmpx(void) 25990Sstevel@tonic-gate { 26000Sstevel@tonic-gate do { 26010Sstevel@tonic-gate utmpx_ok = (access(UTMPX, R_OK|W_OK) == 0); 26020Sstevel@tonic-gate } while (!utmpx_ok && errno == EINTR); 26030Sstevel@tonic-gate 26040Sstevel@tonic-gate return (utmpx_ok); 26050Sstevel@tonic-gate } 26060Sstevel@tonic-gate 26070Sstevel@tonic-gate /* 26080Sstevel@tonic-gate * account() updates entries in utmpx and appends new entries to the end of 26090Sstevel@tonic-gate * wtmpx (assuming they exist). The program argument indicates the name of 26100Sstevel@tonic-gate * program if INIT_PROCESS, otherwise should be NULL. 26110Sstevel@tonic-gate * 26120Sstevel@tonic-gate * account() only blocks for INIT_PROCESS requests. 26130Sstevel@tonic-gate * 26140Sstevel@tonic-gate * Returns non-zero if write failed. 26150Sstevel@tonic-gate */ 26160Sstevel@tonic-gate static int 26170Sstevel@tonic-gate account(short state, struct PROC_TABLE *process, char *program) 26180Sstevel@tonic-gate { 26190Sstevel@tonic-gate struct utmpx utmpbuf, *u, *oldu; 26200Sstevel@tonic-gate int tmplen; 26210Sstevel@tonic-gate char fail_buf[UT_LINE_SZ]; 26220Sstevel@tonic-gate sigset_t block, unblock; 26230Sstevel@tonic-gate 26240Sstevel@tonic-gate if (!utmpx_ok && !access_utmpx()) { 26250Sstevel@tonic-gate return (-1); 26260Sstevel@tonic-gate } 26270Sstevel@tonic-gate 26280Sstevel@tonic-gate /* 26290Sstevel@tonic-gate * Set up the prototype for the utmp structure we want to write. 26300Sstevel@tonic-gate */ 26310Sstevel@tonic-gate u = &utmpbuf; 26320Sstevel@tonic-gate (void) memset(u, 0, sizeof (struct utmpx)); 26330Sstevel@tonic-gate 26340Sstevel@tonic-gate /* 26350Sstevel@tonic-gate * Fill in the various fields of the utmp structure. 26360Sstevel@tonic-gate */ 26370Sstevel@tonic-gate u->ut_id[0] = process->p_id[0]; 26380Sstevel@tonic-gate u->ut_id[1] = process->p_id[1]; 26390Sstevel@tonic-gate u->ut_id[2] = process->p_id[2]; 26400Sstevel@tonic-gate u->ut_id[3] = process->p_id[3]; 26410Sstevel@tonic-gate u->ut_pid = process->p_pid; 26420Sstevel@tonic-gate 26430Sstevel@tonic-gate /* 26440Sstevel@tonic-gate * Fill the "ut_exit" structure. 26450Sstevel@tonic-gate */ 26460Sstevel@tonic-gate u->ut_exit.e_termination = WTERMSIG(process->p_exit); 26470Sstevel@tonic-gate u->ut_exit.e_exit = WEXITSTATUS(process->p_exit); 26480Sstevel@tonic-gate u->ut_type = state; 26490Sstevel@tonic-gate 26500Sstevel@tonic-gate (void) time(&u->ut_tv.tv_sec); 26510Sstevel@tonic-gate 26520Sstevel@tonic-gate /* 26530Sstevel@tonic-gate * Block signals for utmp update. 26540Sstevel@tonic-gate */ 26550Sstevel@tonic-gate (void) sigfillset(&block); 26560Sstevel@tonic-gate (void) sigprocmask(SIG_BLOCK, &block, &unblock); 26570Sstevel@tonic-gate 26580Sstevel@tonic-gate /* 26590Sstevel@tonic-gate * See if there already is such an entry in the "utmpx" file. 26600Sstevel@tonic-gate */ 26610Sstevel@tonic-gate setutxent(); /* Start at beginning of utmpx file. */ 26620Sstevel@tonic-gate 26630Sstevel@tonic-gate if ((oldu = getutxid(u)) != NULL) { 26640Sstevel@tonic-gate /* 26650Sstevel@tonic-gate * Copy in the old "user", "line" and "host" fields 26660Sstevel@tonic-gate * to our new structure. 26670Sstevel@tonic-gate */ 26680Sstevel@tonic-gate bcopy(oldu->ut_user, u->ut_user, sizeof (u->ut_user)); 26690Sstevel@tonic-gate bcopy(oldu->ut_line, u->ut_line, sizeof (u->ut_line)); 26700Sstevel@tonic-gate bcopy(oldu->ut_host, u->ut_host, sizeof (u->ut_host)); 26710Sstevel@tonic-gate u->ut_syslen = (tmplen = strlen(u->ut_host)) ? 26720Sstevel@tonic-gate min(tmplen + 1, sizeof (u->ut_host)) : 0; 26730Sstevel@tonic-gate 26740Sstevel@tonic-gate if (oldu->ut_type == USER_PROCESS && state == DEAD_PROCESS) { 26750Sstevel@tonic-gate notify_pam_dead(oldu); 26760Sstevel@tonic-gate } 26770Sstevel@tonic-gate } 26780Sstevel@tonic-gate 26790Sstevel@tonic-gate /* 26800Sstevel@tonic-gate * Perform special accounting. Insert the special string into the 26810Sstevel@tonic-gate * ut_line array. For INIT_PROCESSes put in the name of the 26820Sstevel@tonic-gate * program in the "ut_user" field. 26830Sstevel@tonic-gate */ 26840Sstevel@tonic-gate switch (state) { 26850Sstevel@tonic-gate case INIT_PROCESS: 26860Sstevel@tonic-gate (void) strncpy(u->ut_user, program, sizeof (u->ut_user)); 26870Sstevel@tonic-gate (void) strcpy(fail_buf, "INIT_PROCESS"); 26880Sstevel@tonic-gate break; 26890Sstevel@tonic-gate 26900Sstevel@tonic-gate default: 26910Sstevel@tonic-gate (void) strlcpy(fail_buf, u->ut_id, sizeof (u->ut_id) + 1); 26920Sstevel@tonic-gate break; 26930Sstevel@tonic-gate } 26940Sstevel@tonic-gate 26950Sstevel@tonic-gate /* 26960Sstevel@tonic-gate * Write out the updated entry to utmpx file. 26970Sstevel@tonic-gate */ 26980Sstevel@tonic-gate if (pututxline(u) == NULL) { 26990Sstevel@tonic-gate console(B_TRUE, "Failed write of utmpx entry: \"%s\": %s\n", 27000Sstevel@tonic-gate fail_buf, strerror(errno)); 27010Sstevel@tonic-gate endutxent(); 27020Sstevel@tonic-gate (void) sigprocmask(SIG_SETMASK, &unblock, NULL); 27030Sstevel@tonic-gate return (-1); 27040Sstevel@tonic-gate } 27050Sstevel@tonic-gate 27060Sstevel@tonic-gate /* 27070Sstevel@tonic-gate * If we're able to write to utmpx, then attempt to add to the 27080Sstevel@tonic-gate * end of the wtmpx file. 27090Sstevel@tonic-gate */ 27100Sstevel@tonic-gate updwtmpx(WTMPX, u); 27110Sstevel@tonic-gate 27120Sstevel@tonic-gate endutxent(); 27130Sstevel@tonic-gate 27140Sstevel@tonic-gate (void) sigprocmask(SIG_SETMASK, &unblock, NULL); 27150Sstevel@tonic-gate 27160Sstevel@tonic-gate return (0); 27170Sstevel@tonic-gate } 27180Sstevel@tonic-gate 27190Sstevel@tonic-gate static void 27200Sstevel@tonic-gate clearent(pid_t pid, short status) 27210Sstevel@tonic-gate { 27220Sstevel@tonic-gate struct utmpx *up; 27230Sstevel@tonic-gate sigset_t block, unblock; 27240Sstevel@tonic-gate 27250Sstevel@tonic-gate /* 27260Sstevel@tonic-gate * Block signals for utmp update. 27270Sstevel@tonic-gate */ 27280Sstevel@tonic-gate (void) sigfillset(&block); 27290Sstevel@tonic-gate (void) sigprocmask(SIG_BLOCK, &block, &unblock); 27300Sstevel@tonic-gate 27310Sstevel@tonic-gate /* 27320Sstevel@tonic-gate * No error checking for now. 27330Sstevel@tonic-gate */ 27340Sstevel@tonic-gate 27350Sstevel@tonic-gate setutxent(); 27360Sstevel@tonic-gate while (up = getutxent()) { 27370Sstevel@tonic-gate if (up->ut_pid == pid) { 27380Sstevel@tonic-gate if (up->ut_type == DEAD_PROCESS) { 27390Sstevel@tonic-gate /* 27400Sstevel@tonic-gate * Cleaned up elsewhere. 27410Sstevel@tonic-gate */ 27420Sstevel@tonic-gate continue; 27430Sstevel@tonic-gate } 27440Sstevel@tonic-gate 27450Sstevel@tonic-gate notify_pam_dead(up); 27460Sstevel@tonic-gate 27470Sstevel@tonic-gate up->ut_type = DEAD_PROCESS; 27480Sstevel@tonic-gate up->ut_exit.e_termination = WTERMSIG(status); 27490Sstevel@tonic-gate up->ut_exit.e_exit = WEXITSTATUS(status); 27500Sstevel@tonic-gate (void) time(&up->ut_tv.tv_sec); 27510Sstevel@tonic-gate 27520Sstevel@tonic-gate (void) pututxline(up); 27530Sstevel@tonic-gate /* 27540Sstevel@tonic-gate * Now attempt to add to the end of the 27550Sstevel@tonic-gate * wtmp and wtmpx files. Do not create 27560Sstevel@tonic-gate * if they don't already exist. 27570Sstevel@tonic-gate */ 27580Sstevel@tonic-gate updwtmpx(WTMPX, up); 27590Sstevel@tonic-gate 27600Sstevel@tonic-gate break; 27610Sstevel@tonic-gate } 27620Sstevel@tonic-gate } 27630Sstevel@tonic-gate 27640Sstevel@tonic-gate endutxent(); 27650Sstevel@tonic-gate (void) sigprocmask(SIG_SETMASK, &unblock, NULL); 27660Sstevel@tonic-gate } 27670Sstevel@tonic-gate 27680Sstevel@tonic-gate /* 27690Sstevel@tonic-gate * prog_name() searches for the word or unix path name and 27700Sstevel@tonic-gate * returns a pointer to the last element of the pathname. 27710Sstevel@tonic-gate */ 27720Sstevel@tonic-gate static char * 27730Sstevel@tonic-gate prog_name(char *string) 27740Sstevel@tonic-gate { 27750Sstevel@tonic-gate char *ptr, *ptr2; 27760Sstevel@tonic-gate /* XXX - utmp - fix name length */ 27770Sstevel@tonic-gate static char word[_POSIX_LOGIN_NAME_MAX]; 27780Sstevel@tonic-gate 27790Sstevel@tonic-gate /* 27800Sstevel@tonic-gate * Search for the first word skipping leading spaces and tabs. 27810Sstevel@tonic-gate */ 27820Sstevel@tonic-gate while (*string == ' ' || *string == '\t') 27830Sstevel@tonic-gate string++; 27840Sstevel@tonic-gate 27850Sstevel@tonic-gate /* 27860Sstevel@tonic-gate * If the first non-space non-tab character is not one allowed in 27870Sstevel@tonic-gate * a word, return a pointer to a null string, otherwise parse the 27880Sstevel@tonic-gate * pathname. 27890Sstevel@tonic-gate */ 27900Sstevel@tonic-gate if (*string != '.' && *string != '/' && *string != '_' && 27910Sstevel@tonic-gate (*string < 'a' || *string > 'z') && 27920Sstevel@tonic-gate (*string < 'A' || * string > 'Z') && 27930Sstevel@tonic-gate (*string < '0' || *string > '9')) 27940Sstevel@tonic-gate return (""); 27950Sstevel@tonic-gate 27960Sstevel@tonic-gate /* 27970Sstevel@tonic-gate * Parse the pathname looking forward for '/', ' ', '\t', '\n' or 27980Sstevel@tonic-gate * '\0'. Each time a '/' is found, move "ptr" to one past the 27990Sstevel@tonic-gate * '/', thus when a ' ', '\t', '\n', or '\0' is found, "ptr" will 28000Sstevel@tonic-gate * point to the last element of the pathname. 28010Sstevel@tonic-gate */ 28020Sstevel@tonic-gate for (ptr = string; 28030Sstevel@tonic-gate *string != ' ' && *string != '\t' && *string != '\n' && 28040Sstevel@tonic-gate *string != '\0'; 28050Sstevel@tonic-gate string++) { 28060Sstevel@tonic-gate if (*string == '/') 28070Sstevel@tonic-gate ptr = string+1; 28080Sstevel@tonic-gate } 28090Sstevel@tonic-gate 28100Sstevel@tonic-gate /* 28110Sstevel@tonic-gate * Copy out up to the size of the "ut_user" array into "word", 28120Sstevel@tonic-gate * null terminate it and return a pointer to it. 28130Sstevel@tonic-gate */ 28140Sstevel@tonic-gate /* XXX - utmp - fix name length */ 28150Sstevel@tonic-gate for (ptr2 = &word[0]; ptr2 < &word[_POSIX_LOGIN_NAME_MAX - 1] && 28160Sstevel@tonic-gate ptr < string; /* CSTYLED */) 28170Sstevel@tonic-gate *ptr2++ = *ptr++; 28180Sstevel@tonic-gate 28190Sstevel@tonic-gate *ptr2 = '\0'; 28200Sstevel@tonic-gate return (&word[0]); 28210Sstevel@tonic-gate } 28220Sstevel@tonic-gate 28230Sstevel@tonic-gate 28240Sstevel@tonic-gate /* 28250Sstevel@tonic-gate * realcon() returns a nonzero value if there is a character device 28260Sstevel@tonic-gate * associated with SYSCON that has the same device number as CONSOLE. 28270Sstevel@tonic-gate */ 28280Sstevel@tonic-gate static int 28290Sstevel@tonic-gate realcon() 28300Sstevel@tonic-gate { 28310Sstevel@tonic-gate struct stat sconbuf, conbuf; 28320Sstevel@tonic-gate 28330Sstevel@tonic-gate if (stat(SYSCON, &sconbuf) != -1 && 28340Sstevel@tonic-gate stat(CONSOLE, &conbuf) != -1 && 2835*871Scasper S_ISCHR(sconbuf.st_mode) && 2836*871Scasper S_ISCHR(conbuf.st_mode) && 28370Sstevel@tonic-gate sconbuf.st_rdev == conbuf.st_rdev) { 28380Sstevel@tonic-gate return (1); 28390Sstevel@tonic-gate } else { 28400Sstevel@tonic-gate return (0); 28410Sstevel@tonic-gate } 28420Sstevel@tonic-gate } 28430Sstevel@tonic-gate 28440Sstevel@tonic-gate 28450Sstevel@tonic-gate /* 28460Sstevel@tonic-gate * get_ioctl_syscon() retrieves the SYSCON settings from the IOCTLSYSCON file. 28470Sstevel@tonic-gate * Returns true if the IOCTLSYSCON file needs to be written (with 28480Sstevel@tonic-gate * write_ioctl_syscon() below) 28490Sstevel@tonic-gate */ 28500Sstevel@tonic-gate static int 28510Sstevel@tonic-gate get_ioctl_syscon() 28520Sstevel@tonic-gate { 28530Sstevel@tonic-gate FILE *fp; 28540Sstevel@tonic-gate unsigned int iflags, oflags, cflags, lflags, ldisc, cc[18]; 28550Sstevel@tonic-gate int i, valid_format = 0; 28560Sstevel@tonic-gate 28570Sstevel@tonic-gate /* 28580Sstevel@tonic-gate * Read in the previous modes for SYSCON from IOCTLSYSCON. 28590Sstevel@tonic-gate */ 28600Sstevel@tonic-gate if ((fp = fopen(IOCTLSYSCON, "r")) == NULL) { 28610Sstevel@tonic-gate stored_syscon_termios = dflt_termios; 28620Sstevel@tonic-gate console(B_TRUE, 28630Sstevel@tonic-gate "warning:%s does not exist, default settings assumed\n", 28640Sstevel@tonic-gate IOCTLSYSCON); 28650Sstevel@tonic-gate } else { 28660Sstevel@tonic-gate 28670Sstevel@tonic-gate i = fscanf(fp, 28680Sstevel@tonic-gate "%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x", 28690Sstevel@tonic-gate &iflags, &oflags, &cflags, &lflags, 28700Sstevel@tonic-gate &cc[0], &cc[1], &cc[2], &cc[3], &cc[4], &cc[5], &cc[6], 28710Sstevel@tonic-gate &cc[7], &cc[8], &cc[9], &cc[10], &cc[11], &cc[12], &cc[13], 28720Sstevel@tonic-gate &cc[14], &cc[15], &cc[16], &cc[17]); 28730Sstevel@tonic-gate 28740Sstevel@tonic-gate if (i == 22) { 28750Sstevel@tonic-gate stored_syscon_termios.c_iflag = iflags; 28760Sstevel@tonic-gate stored_syscon_termios.c_oflag = oflags; 28770Sstevel@tonic-gate stored_syscon_termios.c_cflag = cflags; 28780Sstevel@tonic-gate stored_syscon_termios.c_lflag = lflags; 28790Sstevel@tonic-gate for (i = 0; i < 18; i++) 28800Sstevel@tonic-gate stored_syscon_termios.c_cc[i] = (char)cc[i]; 28810Sstevel@tonic-gate valid_format = 1; 28820Sstevel@tonic-gate } else if (i == 13) { 28830Sstevel@tonic-gate rewind(fp); 28840Sstevel@tonic-gate i = fscanf(fp, "%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x:%x", 28850Sstevel@tonic-gate &iflags, &oflags, &cflags, &lflags, &ldisc, &cc[0], &cc[1], 28860Sstevel@tonic-gate &cc[2], &cc[3], &cc[4], &cc[5], &cc[6], &cc[7]); 28870Sstevel@tonic-gate 28880Sstevel@tonic-gate /* 28890Sstevel@tonic-gate * If the file is formatted properly, use the values to 28900Sstevel@tonic-gate * initialize the console terminal condition. 28910Sstevel@tonic-gate */ 28920Sstevel@tonic-gate stored_syscon_termios.c_iflag = (ushort_t)iflags; 28930Sstevel@tonic-gate stored_syscon_termios.c_oflag = (ushort_t)oflags; 28940Sstevel@tonic-gate stored_syscon_termios.c_cflag = (ushort_t)cflags; 28950Sstevel@tonic-gate stored_syscon_termios.c_lflag = (ushort_t)lflags; 28960Sstevel@tonic-gate for (i = 0; i < 8; i++) 28970Sstevel@tonic-gate stored_syscon_termios.c_cc[i] = (char)cc[i]; 28980Sstevel@tonic-gate valid_format = 1; 28990Sstevel@tonic-gate } 29000Sstevel@tonic-gate (void) fclose(fp); 29010Sstevel@tonic-gate 29020Sstevel@tonic-gate /* If the file is badly formatted, use the default settings. */ 29030Sstevel@tonic-gate if (!valid_format) 29040Sstevel@tonic-gate stored_syscon_termios = dflt_termios; 29050Sstevel@tonic-gate } 29060Sstevel@tonic-gate 29070Sstevel@tonic-gate /* If the file had a bad format, rewrite it later. */ 29080Sstevel@tonic-gate return (!valid_format); 29090Sstevel@tonic-gate } 29100Sstevel@tonic-gate 29110Sstevel@tonic-gate 29120Sstevel@tonic-gate static void 29130Sstevel@tonic-gate write_ioctl_syscon() 29140Sstevel@tonic-gate { 29150Sstevel@tonic-gate FILE *fp; 29160Sstevel@tonic-gate int i; 29170Sstevel@tonic-gate 29180Sstevel@tonic-gate (void) unlink(SYSCON); 29190Sstevel@tonic-gate (void) link(SYSTTY, SYSCON); 29200Sstevel@tonic-gate (void) umask(022); 29210Sstevel@tonic-gate fp = fopen(IOCTLSYSCON, "w"); 29220Sstevel@tonic-gate 29230Sstevel@tonic-gate (void) fprintf(fp, "%x:%x:%x:%x:0", stored_syscon_termios.c_iflag, 29240Sstevel@tonic-gate stored_syscon_termios.c_oflag, stored_syscon_termios.c_cflag, 29250Sstevel@tonic-gate stored_syscon_termios.c_lflag); 29260Sstevel@tonic-gate for (i = 0; i < 8; ++i) 29270Sstevel@tonic-gate (void) fprintf(fp, ":%x", stored_syscon_termios.c_cc[i]); 29280Sstevel@tonic-gate (void) putc('\n', fp); 29290Sstevel@tonic-gate 29300Sstevel@tonic-gate (void) fflush(fp); 29310Sstevel@tonic-gate (void) fsync(fileno(fp)); 29320Sstevel@tonic-gate (void) fclose(fp); 29330Sstevel@tonic-gate (void) umask(cmask); 29340Sstevel@tonic-gate } 29350Sstevel@tonic-gate 29360Sstevel@tonic-gate 29370Sstevel@tonic-gate /* 29380Sstevel@tonic-gate * void console(boolean_t, char *, ...) 29390Sstevel@tonic-gate * Outputs the requested message to the system console. Note that the number 29400Sstevel@tonic-gate * of arguments passed to console() should be determined by the print format. 29410Sstevel@tonic-gate * 29420Sstevel@tonic-gate * The "prefix" parameter indicates whether or not "INIT: " should precede the 29430Sstevel@tonic-gate * message. 29440Sstevel@tonic-gate * 29450Sstevel@tonic-gate * To make sure we write to the console in a sane fashion, we use the modes 29460Sstevel@tonic-gate * we keep in stored_syscon_termios (which we read out of /etc/ioctl.syscon). 29470Sstevel@tonic-gate * Afterwards we restore whatever modes were already there. 29480Sstevel@tonic-gate */ 29490Sstevel@tonic-gate /* PRINTFLIKE2 */ 29500Sstevel@tonic-gate static void 29510Sstevel@tonic-gate console(boolean_t prefix, char *format, ...) 29520Sstevel@tonic-gate { 29530Sstevel@tonic-gate char outbuf[BUFSIZ]; 29540Sstevel@tonic-gate va_list args; 29550Sstevel@tonic-gate int fd, getret; 29560Sstevel@tonic-gate struct termios old_syscon_termios; 29570Sstevel@tonic-gate FILE *f; 29580Sstevel@tonic-gate 29590Sstevel@tonic-gate /* 29600Sstevel@tonic-gate * We open SYSCON anew each time in case it has changed (see 29610Sstevel@tonic-gate * userinit()). 29620Sstevel@tonic-gate */ 29630Sstevel@tonic-gate if ((fd = open(SYSCON, O_RDWR | O_NOCTTY)) < 0 || 29640Sstevel@tonic-gate (f = fdopen(fd, "r+")) == NULL) { 29650Sstevel@tonic-gate if (prefix) 29660Sstevel@tonic-gate syslog(LOG_WARNING, "INIT: "); 29670Sstevel@tonic-gate va_start(args, format); 29680Sstevel@tonic-gate vsyslog(LOG_WARNING, format, args); 29690Sstevel@tonic-gate va_end(args); 29700Sstevel@tonic-gate if (fd >= 0) 29710Sstevel@tonic-gate (void) close(fd); 29720Sstevel@tonic-gate return; 29730Sstevel@tonic-gate } 29740Sstevel@tonic-gate setbuf(f, &outbuf[0]); 29750Sstevel@tonic-gate 29760Sstevel@tonic-gate getret = tcgetattr(fd, &old_syscon_termios); 29770Sstevel@tonic-gate old_syscon_termios.c_cflag &= ~HUPCL; 29780Sstevel@tonic-gate if (realcon()) 29790Sstevel@tonic-gate /* Don't overwrite cflag of real console. */ 29800Sstevel@tonic-gate stored_syscon_termios.c_cflag = old_syscon_termios.c_cflag; 29810Sstevel@tonic-gate 29820Sstevel@tonic-gate stored_syscon_termios.c_cflag &= ~HUPCL; 29830Sstevel@tonic-gate 29840Sstevel@tonic-gate (void) tcsetattr(fd, TCSANOW, &stored_syscon_termios); 29850Sstevel@tonic-gate 29860Sstevel@tonic-gate if (prefix) 29870Sstevel@tonic-gate (void) fprintf(f, "\nINIT: "); 29880Sstevel@tonic-gate va_start(args, format); 29890Sstevel@tonic-gate (void) vfprintf(f, format, args); 29900Sstevel@tonic-gate va_end(args); 29910Sstevel@tonic-gate 29920Sstevel@tonic-gate if (getret == 0) 29930Sstevel@tonic-gate (void) tcsetattr(fd, TCSADRAIN, &old_syscon_termios); 29940Sstevel@tonic-gate 29950Sstevel@tonic-gate (void) fclose(f); 29960Sstevel@tonic-gate } 29970Sstevel@tonic-gate 29980Sstevel@tonic-gate /* 29990Sstevel@tonic-gate * timer() is a substitute for sleep() which uses alarm() and pause(). 30000Sstevel@tonic-gate */ 30010Sstevel@tonic-gate static void 30020Sstevel@tonic-gate timer(int waitime) 30030Sstevel@tonic-gate { 30040Sstevel@tonic-gate setimer(waitime); 30050Sstevel@tonic-gate while (time_up == FALSE) 30060Sstevel@tonic-gate (void) pause(); 30070Sstevel@tonic-gate } 30080Sstevel@tonic-gate 30090Sstevel@tonic-gate static void 30100Sstevel@tonic-gate setimer(int timelimit) 30110Sstevel@tonic-gate { 30120Sstevel@tonic-gate alarmclk(); 30130Sstevel@tonic-gate (void) alarm(timelimit); 30140Sstevel@tonic-gate time_up = (timelimit ? FALSE : TRUE); 30150Sstevel@tonic-gate } 30160Sstevel@tonic-gate 30170Sstevel@tonic-gate /* 30180Sstevel@tonic-gate * Fails with 30190Sstevel@tonic-gate * ENOMEM - out of memory 30200Sstevel@tonic-gate * ECONNABORTED - repository connection broken 30210Sstevel@tonic-gate * EPERM - permission denied 30220Sstevel@tonic-gate * EACCES - backend access denied 30230Sstevel@tonic-gate * EROFS - backend readonly 30240Sstevel@tonic-gate */ 30250Sstevel@tonic-gate static int 30260Sstevel@tonic-gate get_or_add_startd(scf_instance_t *inst) 30270Sstevel@tonic-gate { 30280Sstevel@tonic-gate scf_handle_t *h; 30290Sstevel@tonic-gate scf_scope_t *scope = NULL; 30300Sstevel@tonic-gate scf_service_t *svc = NULL; 30310Sstevel@tonic-gate int ret = 0; 30320Sstevel@tonic-gate 30330Sstevel@tonic-gate h = scf_instance_handle(inst); 30340Sstevel@tonic-gate 30350Sstevel@tonic-gate if (scf_handle_decode_fmri(h, SCF_SERVICE_STARTD, NULL, NULL, inst, 30360Sstevel@tonic-gate NULL, NULL, SCF_DECODE_FMRI_EXACT) == 0) 30370Sstevel@tonic-gate return (0); 30380Sstevel@tonic-gate 30390Sstevel@tonic-gate switch (scf_error()) { 30400Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 30410Sstevel@tonic-gate return (ECONNABORTED); 30420Sstevel@tonic-gate 30430Sstevel@tonic-gate case SCF_ERROR_NOT_FOUND: 30440Sstevel@tonic-gate break; 30450Sstevel@tonic-gate 30460Sstevel@tonic-gate case SCF_ERROR_HANDLE_MISMATCH: 30470Sstevel@tonic-gate case SCF_ERROR_INVALID_ARGUMENT: 30480Sstevel@tonic-gate case SCF_ERROR_CONSTRAINT_VIOLATED: 30490Sstevel@tonic-gate default: 30500Sstevel@tonic-gate bad_error("scf_handle_decode_fmri", scf_error()); 30510Sstevel@tonic-gate } 30520Sstevel@tonic-gate 30530Sstevel@tonic-gate /* Make sure we're right, since we're adding piece-by-piece. */ 30540Sstevel@tonic-gate assert(strcmp(SCF_SERVICE_STARTD, 30550Sstevel@tonic-gate "svc:/system/svc/restarter:default") == 0); 30560Sstevel@tonic-gate 30570Sstevel@tonic-gate if ((scope = scf_scope_create(h)) == NULL || 30580Sstevel@tonic-gate (svc = scf_service_create(h)) == NULL) { 30590Sstevel@tonic-gate ret = ENOMEM; 30600Sstevel@tonic-gate goto out; 30610Sstevel@tonic-gate } 30620Sstevel@tonic-gate 30630Sstevel@tonic-gate get_scope: 30640Sstevel@tonic-gate if (scf_handle_get_scope(h, SCF_SCOPE_LOCAL, scope) != 0) { 30650Sstevel@tonic-gate switch (scf_error()) { 30660Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 30670Sstevel@tonic-gate ret = ECONNABORTED; 30680Sstevel@tonic-gate goto out; 30690Sstevel@tonic-gate 30700Sstevel@tonic-gate case SCF_ERROR_NOT_FOUND: 30710Sstevel@tonic-gate (void) fputs(gettext( 30720Sstevel@tonic-gate "smf(5) repository missing local scope.\n"), 30730Sstevel@tonic-gate stderr); 30740Sstevel@tonic-gate exit(1); 30750Sstevel@tonic-gate /* NOTREACHED */ 30760Sstevel@tonic-gate 30770Sstevel@tonic-gate case SCF_ERROR_HANDLE_MISMATCH: 30780Sstevel@tonic-gate case SCF_ERROR_INVALID_ARGUMENT: 30790Sstevel@tonic-gate default: 30800Sstevel@tonic-gate bad_error("scf_handle_get_scope", scf_error()); 30810Sstevel@tonic-gate } 30820Sstevel@tonic-gate } 30830Sstevel@tonic-gate 30840Sstevel@tonic-gate get_svc: 30850Sstevel@tonic-gate if (scf_scope_get_service(scope, "system/svc/restarter", svc) != 0) { 30860Sstevel@tonic-gate switch (scf_error()) { 30870Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 30880Sstevel@tonic-gate ret = ECONNABORTED; 30890Sstevel@tonic-gate goto out; 30900Sstevel@tonic-gate 30910Sstevel@tonic-gate case SCF_ERROR_DELETED: 30920Sstevel@tonic-gate goto get_scope; 30930Sstevel@tonic-gate 30940Sstevel@tonic-gate case SCF_ERROR_NOT_FOUND: 30950Sstevel@tonic-gate break; 30960Sstevel@tonic-gate 30970Sstevel@tonic-gate case SCF_ERROR_HANDLE_MISMATCH: 30980Sstevel@tonic-gate case SCF_ERROR_INVALID_ARGUMENT: 30990Sstevel@tonic-gate case SCF_ERROR_NOT_SET: 31000Sstevel@tonic-gate default: 31010Sstevel@tonic-gate bad_error("scf_scope_get_service", scf_error()); 31020Sstevel@tonic-gate } 31030Sstevel@tonic-gate 31040Sstevel@tonic-gate add_svc: 31050Sstevel@tonic-gate if (scf_scope_add_service(scope, "system/svc/restarter", svc) != 31060Sstevel@tonic-gate 0) { 31070Sstevel@tonic-gate switch (scf_error()) { 31080Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 31090Sstevel@tonic-gate ret = ECONNABORTED; 31100Sstevel@tonic-gate goto out; 31110Sstevel@tonic-gate 31120Sstevel@tonic-gate case SCF_ERROR_EXISTS: 31130Sstevel@tonic-gate goto get_svc; 31140Sstevel@tonic-gate 31150Sstevel@tonic-gate case SCF_ERROR_PERMISSION_DENIED: 31160Sstevel@tonic-gate ret = EPERM; 31170Sstevel@tonic-gate goto out; 31180Sstevel@tonic-gate 31190Sstevel@tonic-gate case SCF_ERROR_BACKEND_ACCESS: 31200Sstevel@tonic-gate ret = EACCES; 31210Sstevel@tonic-gate goto out; 31220Sstevel@tonic-gate 31230Sstevel@tonic-gate case SCF_ERROR_BACKEND_READONLY: 31240Sstevel@tonic-gate ret = EROFS; 31250Sstevel@tonic-gate goto out; 31260Sstevel@tonic-gate 31270Sstevel@tonic-gate case SCF_ERROR_HANDLE_MISMATCH: 31280Sstevel@tonic-gate case SCF_ERROR_INVALID_ARGUMENT: 31290Sstevel@tonic-gate case SCF_ERROR_NOT_SET: 31300Sstevel@tonic-gate default: 31310Sstevel@tonic-gate bad_error("scf_scope_add_service", scf_error()); 31320Sstevel@tonic-gate } 31330Sstevel@tonic-gate } 31340Sstevel@tonic-gate } 31350Sstevel@tonic-gate 31360Sstevel@tonic-gate get_inst: 31370Sstevel@tonic-gate if (scf_service_get_instance(svc, "default", inst) != 0) { 31380Sstevel@tonic-gate switch (scf_error()) { 31390Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 31400Sstevel@tonic-gate ret = ECONNABORTED; 31410Sstevel@tonic-gate goto out; 31420Sstevel@tonic-gate 31430Sstevel@tonic-gate case SCF_ERROR_DELETED: 31440Sstevel@tonic-gate goto add_svc; 31450Sstevel@tonic-gate 31460Sstevel@tonic-gate case SCF_ERROR_NOT_FOUND: 31470Sstevel@tonic-gate break; 31480Sstevel@tonic-gate 31490Sstevel@tonic-gate case SCF_ERROR_HANDLE_MISMATCH: 31500Sstevel@tonic-gate case SCF_ERROR_INVALID_ARGUMENT: 31510Sstevel@tonic-gate case SCF_ERROR_NOT_SET: 31520Sstevel@tonic-gate default: 31530Sstevel@tonic-gate bad_error("scf_service_get_instance", scf_error()); 31540Sstevel@tonic-gate } 31550Sstevel@tonic-gate 31560Sstevel@tonic-gate if (scf_service_add_instance(svc, "default", inst) != 31570Sstevel@tonic-gate 0) { 31580Sstevel@tonic-gate switch (scf_error()) { 31590Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 31600Sstevel@tonic-gate ret = ECONNABORTED; 31610Sstevel@tonic-gate goto out; 31620Sstevel@tonic-gate 31630Sstevel@tonic-gate case SCF_ERROR_DELETED: 31640Sstevel@tonic-gate goto add_svc; 31650Sstevel@tonic-gate 31660Sstevel@tonic-gate case SCF_ERROR_EXISTS: 31670Sstevel@tonic-gate goto get_inst; 31680Sstevel@tonic-gate 31690Sstevel@tonic-gate case SCF_ERROR_PERMISSION_DENIED: 31700Sstevel@tonic-gate ret = EPERM; 31710Sstevel@tonic-gate goto out; 31720Sstevel@tonic-gate 31730Sstevel@tonic-gate case SCF_ERROR_BACKEND_ACCESS: 31740Sstevel@tonic-gate ret = EACCES; 31750Sstevel@tonic-gate goto out; 31760Sstevel@tonic-gate 31770Sstevel@tonic-gate case SCF_ERROR_BACKEND_READONLY: 31780Sstevel@tonic-gate ret = EROFS; 31790Sstevel@tonic-gate goto out; 31800Sstevel@tonic-gate 31810Sstevel@tonic-gate case SCF_ERROR_HANDLE_MISMATCH: 31820Sstevel@tonic-gate case SCF_ERROR_INVALID_ARGUMENT: 31830Sstevel@tonic-gate case SCF_ERROR_NOT_SET: 31840Sstevel@tonic-gate default: 31850Sstevel@tonic-gate bad_error("scf_service_add_instance", 31860Sstevel@tonic-gate scf_error()); 31870Sstevel@tonic-gate } 31880Sstevel@tonic-gate } 31890Sstevel@tonic-gate } 31900Sstevel@tonic-gate 31910Sstevel@tonic-gate ret = 0; 31920Sstevel@tonic-gate 31930Sstevel@tonic-gate out: 31940Sstevel@tonic-gate scf_service_destroy(svc); 31950Sstevel@tonic-gate scf_scope_destroy(scope); 31960Sstevel@tonic-gate return (ret); 31970Sstevel@tonic-gate } 31980Sstevel@tonic-gate 31990Sstevel@tonic-gate /* 32000Sstevel@tonic-gate * Fails with 32010Sstevel@tonic-gate * ECONNABORTED - repository connection broken 32020Sstevel@tonic-gate * ECANCELED - the transaction's property group was deleted 32030Sstevel@tonic-gate */ 32040Sstevel@tonic-gate static int 32050Sstevel@tonic-gate transaction_add_set(scf_transaction_t *tx, scf_transaction_entry_t *ent, 32060Sstevel@tonic-gate const char *pname, scf_type_t type) 32070Sstevel@tonic-gate { 32080Sstevel@tonic-gate change_type: 32090Sstevel@tonic-gate if (scf_transaction_property_change_type(tx, ent, pname, type) == 0) 32100Sstevel@tonic-gate return (0); 32110Sstevel@tonic-gate 32120Sstevel@tonic-gate switch (scf_error()) { 32130Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 32140Sstevel@tonic-gate return (ECONNABORTED); 32150Sstevel@tonic-gate 32160Sstevel@tonic-gate case SCF_ERROR_DELETED: 32170Sstevel@tonic-gate return (ECANCELED); 32180Sstevel@tonic-gate 32190Sstevel@tonic-gate case SCF_ERROR_NOT_FOUND: 32200Sstevel@tonic-gate goto new; 32210Sstevel@tonic-gate 32220Sstevel@tonic-gate case SCF_ERROR_HANDLE_MISMATCH: 32230Sstevel@tonic-gate case SCF_ERROR_INVALID_ARGUMENT: 32240Sstevel@tonic-gate case SCF_ERROR_NOT_BOUND: 32250Sstevel@tonic-gate case SCF_ERROR_NOT_SET: 32260Sstevel@tonic-gate default: 32270Sstevel@tonic-gate bad_error("scf_transaction_property_change_type", scf_error()); 32280Sstevel@tonic-gate } 32290Sstevel@tonic-gate 32300Sstevel@tonic-gate new: 32310Sstevel@tonic-gate if (scf_transaction_property_new(tx, ent, pname, type) == 0) 32320Sstevel@tonic-gate return (0); 32330Sstevel@tonic-gate 32340Sstevel@tonic-gate switch (scf_error()) { 32350Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 32360Sstevel@tonic-gate return (ECONNABORTED); 32370Sstevel@tonic-gate 32380Sstevel@tonic-gate case SCF_ERROR_DELETED: 32390Sstevel@tonic-gate return (ECANCELED); 32400Sstevel@tonic-gate 32410Sstevel@tonic-gate case SCF_ERROR_EXISTS: 32420Sstevel@tonic-gate goto change_type; 32430Sstevel@tonic-gate 32440Sstevel@tonic-gate case SCF_ERROR_HANDLE_MISMATCH: 32450Sstevel@tonic-gate case SCF_ERROR_INVALID_ARGUMENT: 32460Sstevel@tonic-gate case SCF_ERROR_NOT_BOUND: 32470Sstevel@tonic-gate case SCF_ERROR_NOT_SET: 32480Sstevel@tonic-gate default: 32490Sstevel@tonic-gate bad_error("scf_transaction_property_new", scf_error()); 32500Sstevel@tonic-gate /* NOTREACHED */ 32510Sstevel@tonic-gate } 32520Sstevel@tonic-gate } 32530Sstevel@tonic-gate 32540Sstevel@tonic-gate static void 32550Sstevel@tonic-gate scferr(void) 32560Sstevel@tonic-gate { 32570Sstevel@tonic-gate switch (scf_error()) { 32580Sstevel@tonic-gate case SCF_ERROR_NO_MEMORY: 32590Sstevel@tonic-gate console(B_TRUE, gettext("Out of memory.\n")); 32600Sstevel@tonic-gate break; 32610Sstevel@tonic-gate 32620Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 32630Sstevel@tonic-gate console(B_TRUE, gettext( 32640Sstevel@tonic-gate "Connection to smf(5) repository server broken.\n")); 32650Sstevel@tonic-gate break; 32660Sstevel@tonic-gate 32670Sstevel@tonic-gate case SCF_ERROR_NO_RESOURCES: 32680Sstevel@tonic-gate console(B_TRUE, gettext( 32690Sstevel@tonic-gate "smf(5) repository server is out of memory.\n")); 32700Sstevel@tonic-gate break; 32710Sstevel@tonic-gate 32720Sstevel@tonic-gate case SCF_ERROR_PERMISSION_DENIED: 32730Sstevel@tonic-gate console(B_TRUE, gettext("Insufficient privileges.\n")); 32740Sstevel@tonic-gate break; 32750Sstevel@tonic-gate 32760Sstevel@tonic-gate default: 32770Sstevel@tonic-gate console(B_TRUE, gettext("libscf error: %s\n"), 32780Sstevel@tonic-gate scf_strerror(scf_error())); 32790Sstevel@tonic-gate } 32800Sstevel@tonic-gate } 32810Sstevel@tonic-gate 32820Sstevel@tonic-gate static void 32830Sstevel@tonic-gate lscf_set_runlevel(char rl) 32840Sstevel@tonic-gate { 32850Sstevel@tonic-gate scf_handle_t *h; 32860Sstevel@tonic-gate scf_instance_t *inst = NULL; 32870Sstevel@tonic-gate scf_propertygroup_t *pg = NULL; 32880Sstevel@tonic-gate scf_transaction_t *tx = NULL; 32890Sstevel@tonic-gate scf_transaction_entry_t *ent = NULL; 32900Sstevel@tonic-gate scf_value_t *val = NULL; 32910Sstevel@tonic-gate char buf[2]; 32920Sstevel@tonic-gate int r; 32930Sstevel@tonic-gate 32940Sstevel@tonic-gate h = scf_handle_create(SCF_VERSION); 32950Sstevel@tonic-gate if (h == NULL) { 32960Sstevel@tonic-gate scferr(); 32970Sstevel@tonic-gate return; 32980Sstevel@tonic-gate } 32990Sstevel@tonic-gate 33000Sstevel@tonic-gate if (scf_handle_bind(h) != 0) { 33010Sstevel@tonic-gate switch (scf_error()) { 33020Sstevel@tonic-gate case SCF_ERROR_NO_SERVER: 33030Sstevel@tonic-gate console(B_TRUE, 33040Sstevel@tonic-gate gettext("smf(5) repository server not running.\n")); 33050Sstevel@tonic-gate goto bail; 33060Sstevel@tonic-gate 33070Sstevel@tonic-gate default: 33080Sstevel@tonic-gate scferr(); 33090Sstevel@tonic-gate goto bail; 33100Sstevel@tonic-gate } 33110Sstevel@tonic-gate } 33120Sstevel@tonic-gate 33130Sstevel@tonic-gate if ((inst = scf_instance_create(h)) == NULL || 33140Sstevel@tonic-gate (pg = scf_pg_create(h)) == NULL || 33150Sstevel@tonic-gate (val = scf_value_create(h)) == NULL || 33160Sstevel@tonic-gate (tx = scf_transaction_create(h)) == NULL || 33170Sstevel@tonic-gate (ent = scf_entry_create(h)) == NULL) { 33180Sstevel@tonic-gate scferr(); 33190Sstevel@tonic-gate goto bail; 33200Sstevel@tonic-gate } 33210Sstevel@tonic-gate 33220Sstevel@tonic-gate get_inst: 33230Sstevel@tonic-gate r = get_or_add_startd(inst); 33240Sstevel@tonic-gate switch (r) { 33250Sstevel@tonic-gate case 0: 33260Sstevel@tonic-gate break; 33270Sstevel@tonic-gate 33280Sstevel@tonic-gate case ENOMEM: 33290Sstevel@tonic-gate case ECONNABORTED: 33300Sstevel@tonic-gate case EPERM: 33310Sstevel@tonic-gate case EACCES: 33320Sstevel@tonic-gate case EROFS: 33330Sstevel@tonic-gate scferr(); 33340Sstevel@tonic-gate goto bail; 33350Sstevel@tonic-gate default: 33360Sstevel@tonic-gate bad_error("get_or_add_startd", r); 33370Sstevel@tonic-gate } 33380Sstevel@tonic-gate 33390Sstevel@tonic-gate get_pg: 33400Sstevel@tonic-gate if (scf_instance_get_pg(inst, SCF_PG_OPTIONS_OVR, pg) != 0) { 33410Sstevel@tonic-gate switch (scf_error()) { 33420Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 33430Sstevel@tonic-gate scferr(); 33440Sstevel@tonic-gate goto bail; 33450Sstevel@tonic-gate 33460Sstevel@tonic-gate case SCF_ERROR_DELETED: 33470Sstevel@tonic-gate goto get_inst; 33480Sstevel@tonic-gate 33490Sstevel@tonic-gate case SCF_ERROR_NOT_FOUND: 33500Sstevel@tonic-gate break; 33510Sstevel@tonic-gate 33520Sstevel@tonic-gate case SCF_ERROR_HANDLE_MISMATCH: 33530Sstevel@tonic-gate case SCF_ERROR_INVALID_ARGUMENT: 33540Sstevel@tonic-gate case SCF_ERROR_NOT_SET: 33550Sstevel@tonic-gate default: 33560Sstevel@tonic-gate bad_error("scf_instance_get_pg", scf_error()); 33570Sstevel@tonic-gate } 33580Sstevel@tonic-gate 33590Sstevel@tonic-gate add_pg: 33600Sstevel@tonic-gate if (scf_instance_add_pg(inst, SCF_PG_OPTIONS_OVR, 33610Sstevel@tonic-gate SCF_PG_OPTIONS_OVR_TYPE, SCF_PG_OPTIONS_OVR_FLAGS, pg) != 33620Sstevel@tonic-gate 0) { 33630Sstevel@tonic-gate switch (scf_error()) { 33640Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 33650Sstevel@tonic-gate case SCF_ERROR_PERMISSION_DENIED: 33660Sstevel@tonic-gate case SCF_ERROR_BACKEND_ACCESS: 33670Sstevel@tonic-gate scferr(); 33680Sstevel@tonic-gate goto bail; 33690Sstevel@tonic-gate 33700Sstevel@tonic-gate case SCF_ERROR_DELETED: 33710Sstevel@tonic-gate goto get_inst; 33720Sstevel@tonic-gate 33730Sstevel@tonic-gate case SCF_ERROR_EXISTS: 33740Sstevel@tonic-gate goto get_pg; 33750Sstevel@tonic-gate 33760Sstevel@tonic-gate case SCF_ERROR_HANDLE_MISMATCH: 33770Sstevel@tonic-gate case SCF_ERROR_INVALID_ARGUMENT: 33780Sstevel@tonic-gate case SCF_ERROR_NOT_SET: 33790Sstevel@tonic-gate default: 33800Sstevel@tonic-gate bad_error("scf_instance_add_pg", scf_error()); 33810Sstevel@tonic-gate } 33820Sstevel@tonic-gate } 33830Sstevel@tonic-gate } 33840Sstevel@tonic-gate 33850Sstevel@tonic-gate buf[0] = rl; 33860Sstevel@tonic-gate buf[1] = '\0'; 33870Sstevel@tonic-gate r = scf_value_set_astring(val, buf); 33880Sstevel@tonic-gate assert(r == 0); 33890Sstevel@tonic-gate 33900Sstevel@tonic-gate for (;;) { 33910Sstevel@tonic-gate if (scf_transaction_start(tx, pg) != 0) { 33920Sstevel@tonic-gate switch (scf_error()) { 33930Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 33940Sstevel@tonic-gate case SCF_ERROR_PERMISSION_DENIED: 33950Sstevel@tonic-gate case SCF_ERROR_BACKEND_ACCESS: 33960Sstevel@tonic-gate scferr(); 33970Sstevel@tonic-gate goto bail; 33980Sstevel@tonic-gate 33990Sstevel@tonic-gate case SCF_ERROR_DELETED: 34000Sstevel@tonic-gate goto add_pg; 34010Sstevel@tonic-gate 34020Sstevel@tonic-gate case SCF_ERROR_HANDLE_MISMATCH: 34030Sstevel@tonic-gate case SCF_ERROR_NOT_BOUND: 34040Sstevel@tonic-gate case SCF_ERROR_IN_USE: 34050Sstevel@tonic-gate case SCF_ERROR_NOT_SET: 34060Sstevel@tonic-gate default: 34070Sstevel@tonic-gate bad_error("scf_transaction_start", scf_error()); 34080Sstevel@tonic-gate } 34090Sstevel@tonic-gate } 34100Sstevel@tonic-gate 34110Sstevel@tonic-gate r = transaction_add_set(tx, ent, "runlevel", SCF_TYPE_ASTRING); 34120Sstevel@tonic-gate switch (r) { 34130Sstevel@tonic-gate case 0: 34140Sstevel@tonic-gate break; 34150Sstevel@tonic-gate 34160Sstevel@tonic-gate case ECONNABORTED: 34170Sstevel@tonic-gate scferr(); 34180Sstevel@tonic-gate goto bail; 34190Sstevel@tonic-gate 34200Sstevel@tonic-gate case ECANCELED: 34210Sstevel@tonic-gate scf_transaction_reset(tx); 34220Sstevel@tonic-gate goto add_pg; 34230Sstevel@tonic-gate 34240Sstevel@tonic-gate default: 34250Sstevel@tonic-gate bad_error("transaction_add_set", r); 34260Sstevel@tonic-gate } 34270Sstevel@tonic-gate 34280Sstevel@tonic-gate r = scf_entry_add_value(ent, val); 34290Sstevel@tonic-gate assert(r == 0); 34300Sstevel@tonic-gate 34310Sstevel@tonic-gate r = scf_transaction_commit(tx); 34320Sstevel@tonic-gate if (r == 1) 34330Sstevel@tonic-gate break; 34340Sstevel@tonic-gate 34350Sstevel@tonic-gate if (r != 0) { 34360Sstevel@tonic-gate switch (scf_error()) { 34370Sstevel@tonic-gate case SCF_ERROR_CONNECTION_BROKEN: 34380Sstevel@tonic-gate case SCF_ERROR_PERMISSION_DENIED: 34390Sstevel@tonic-gate case SCF_ERROR_BACKEND_ACCESS: 34400Sstevel@tonic-gate case SCF_ERROR_BACKEND_READONLY: 34410Sstevel@tonic-gate scferr(); 34420Sstevel@tonic-gate goto bail; 34430Sstevel@tonic-gate 34440Sstevel@tonic-gate case SCF_ERROR_DELETED: 34450Sstevel@tonic-gate scf_transaction_reset(tx); 34460Sstevel@tonic-gate goto add_pg; 34470Sstevel@tonic-gate 34480Sstevel@tonic-gate case SCF_ERROR_INVALID_ARGUMENT: 34490Sstevel@tonic-gate case SCF_ERROR_NOT_BOUND: 34500Sstevel@tonic-gate case SCF_ERROR_NOT_SET: 34510Sstevel@tonic-gate default: 34520Sstevel@tonic-gate bad_error("scf_transaction_commit", 34530Sstevel@tonic-gate scf_error()); 34540Sstevel@tonic-gate } 34550Sstevel@tonic-gate } 34560Sstevel@tonic-gate 34570Sstevel@tonic-gate scf_transaction_reset(tx); 34580Sstevel@tonic-gate (void) scf_pg_update(pg); 34590Sstevel@tonic-gate } 34600Sstevel@tonic-gate 34610Sstevel@tonic-gate bail: 34620Sstevel@tonic-gate scf_transaction_destroy(tx); 34630Sstevel@tonic-gate scf_entry_destroy(ent); 34640Sstevel@tonic-gate scf_value_destroy(val); 34650Sstevel@tonic-gate scf_pg_destroy(pg); 34660Sstevel@tonic-gate scf_instance_destroy(inst); 34670Sstevel@tonic-gate 34680Sstevel@tonic-gate (void) scf_handle_unbind(h); 34690Sstevel@tonic-gate scf_handle_destroy(h); 34700Sstevel@tonic-gate } 34710Sstevel@tonic-gate 34720Sstevel@tonic-gate /* 34730Sstevel@tonic-gate * Function to handle requests from users to main init running as process 1. 34740Sstevel@tonic-gate */ 34750Sstevel@tonic-gate static void 34760Sstevel@tonic-gate userinit(int argc, char **argv) 34770Sstevel@tonic-gate { 34780Sstevel@tonic-gate FILE *fp; 34790Sstevel@tonic-gate char *ln; 34800Sstevel@tonic-gate int init_signal; 34810Sstevel@tonic-gate struct stat sconbuf, conbuf; 34820Sstevel@tonic-gate int turnoff = 0; 34830Sstevel@tonic-gate const char *usage_msg = "Usage: init [0123456SsQqabc]\n"; 34840Sstevel@tonic-gate 34850Sstevel@tonic-gate /* 34860Sstevel@tonic-gate * We are a user invoked init. Is there an argument and is it 34870Sstevel@tonic-gate * a single character? If not, print usage message and quit. 34880Sstevel@tonic-gate */ 34890Sstevel@tonic-gate if (argc != 2 || argv[1][1] != '\0') { 34900Sstevel@tonic-gate (void) fprintf(stderr, usage_msg); 34910Sstevel@tonic-gate exit(0); 34920Sstevel@tonic-gate } 34930Sstevel@tonic-gate 34940Sstevel@tonic-gate if ((init_signal = lvlname_to_state((char)argv[1][0])) == -1) { 34950Sstevel@tonic-gate (void) fprintf(stderr, usage_msg); 34960Sstevel@tonic-gate (void) audit_put_record(ADT_FAILURE, ADT_FAIL_VALUE_BAD_CMD, 34970Sstevel@tonic-gate argv[1]); 34980Sstevel@tonic-gate exit(1); 34990Sstevel@tonic-gate } 35000Sstevel@tonic-gate 35010Sstevel@tonic-gate turnoff = LSEL_NOAUDIT & state_to_flags(init_signal); 35020Sstevel@tonic-gate 35030Sstevel@tonic-gate if (init_signal == SINGLE_USER) { 35040Sstevel@tonic-gate /* 35050Sstevel@tonic-gate * Make sure this process is talking to a legal tty line 35060Sstevel@tonic-gate * and that /dev/syscon is linked to this line. 35070Sstevel@tonic-gate */ 35080Sstevel@tonic-gate ln = ttyname(0); /* Get the name of tty */ 35090Sstevel@tonic-gate if (ln == NULL) { 35100Sstevel@tonic-gate (void) fprintf(stderr, 35110Sstevel@tonic-gate "Standard input not a tty line\n"); 35120Sstevel@tonic-gate (void) audit_put_record(ADT_FAILURE, 35130Sstevel@tonic-gate ADT_FAIL_VALUE_BAD_TTY, argv[1]); 35140Sstevel@tonic-gate exit(1); 35150Sstevel@tonic-gate } 35160Sstevel@tonic-gate if (stat(ln, &sconbuf) != -1 && 35170Sstevel@tonic-gate stat(SYSCON, &conbuf) != -1 && 35180Sstevel@tonic-gate sconbuf.st_rdev != conbuf.st_rdev && 35190Sstevel@tonic-gate sconbuf.st_ino != conbuf.st_ino) { 35200Sstevel@tonic-gate /* 35210Sstevel@tonic-gate * Unlink /dev/syscon and relink it to the current line. 35220Sstevel@tonic-gate */ 35230Sstevel@tonic-gate if (unlink(SYSCON) == FAILURE) { 35240Sstevel@tonic-gate perror("Can't unlink /dev/syscon"); 35250Sstevel@tonic-gate (void) fprintf(stderr, 35260Sstevel@tonic-gate "Run command on the system console.\n"); 35270Sstevel@tonic-gate (void) audit_put_record(ADT_FAILURE, 35280Sstevel@tonic-gate ADT_FAIL_VALUE_PROGRAM, argv[1]); 35290Sstevel@tonic-gate exit(1); 35300Sstevel@tonic-gate } 35310Sstevel@tonic-gate if (link(ln, SYSCON) == FAILURE) { 35320Sstevel@tonic-gate (void) fprintf(stderr, 35330Sstevel@tonic-gate "Can't link /dev/syscon to %s: %s", ln, 35340Sstevel@tonic-gate strerror(errno)); 35350Sstevel@tonic-gate 35360Sstevel@tonic-gate /* Try to leave a syscon */ 35370Sstevel@tonic-gate (void) link(SYSTTY, SYSCON); 35380Sstevel@tonic-gate (void) audit_put_record(ADT_FAILURE, 35390Sstevel@tonic-gate ADT_FAIL_VALUE_PROGRAM, argv[1]); 35400Sstevel@tonic-gate exit(1); 35410Sstevel@tonic-gate } 35420Sstevel@tonic-gate 35430Sstevel@tonic-gate /* 35440Sstevel@tonic-gate * Try to leave a message on system console saying where 35450Sstevel@tonic-gate * /dev/syscon is currently connected. 35460Sstevel@tonic-gate */ 35470Sstevel@tonic-gate if ((fp = fopen(SYSTTY, "r+")) != NULL) { 35480Sstevel@tonic-gate (void) fprintf(fp, 35490Sstevel@tonic-gate "\n**** SYSCON CHANGED TO %s ****\n", 35500Sstevel@tonic-gate ln); 35510Sstevel@tonic-gate (void) fclose(fp); 35520Sstevel@tonic-gate } 35530Sstevel@tonic-gate } 35540Sstevel@tonic-gate } 35550Sstevel@tonic-gate 35560Sstevel@tonic-gate update_boot_archive(init_signal); 35570Sstevel@tonic-gate 35580Sstevel@tonic-gate if (audit_put_record(ADT_SUCCESS, ADT_SUCCESS, argv[1]) && 35590Sstevel@tonic-gate turnoff) { 35600Sstevel@tonic-gate /* turn off audit daemon and try to flush audit queue */ 35610Sstevel@tonic-gate 35620Sstevel@tonic-gate if (system("/usr/sbin/audit -t")) { 35630Sstevel@tonic-gate (void) fprintf(stderr, "%s: can't turn off auditd\n", 35640Sstevel@tonic-gate argv[0]); 35650Sstevel@tonic-gate } else { 35660Sstevel@tonic-gate (void) sleep(5); 35670Sstevel@tonic-gate } 35680Sstevel@tonic-gate } 35690Sstevel@tonic-gate 35700Sstevel@tonic-gate /* 35710Sstevel@tonic-gate * Signal init; init will take care of telling svc.startd. 35720Sstevel@tonic-gate */ 35730Sstevel@tonic-gate if (kill(init_pid, init_signal) == FAILURE) { 35740Sstevel@tonic-gate (void) fprintf(stderr, "Must be super-user\n"); 35750Sstevel@tonic-gate (void) audit_put_record(ADT_FAILURE, 35760Sstevel@tonic-gate ADT_FAIL_VALUE_AUTH, argv[1]); 35770Sstevel@tonic-gate exit(1); 35780Sstevel@tonic-gate } 35790Sstevel@tonic-gate 35800Sstevel@tonic-gate exit(0); 35810Sstevel@tonic-gate } 35820Sstevel@tonic-gate 35830Sstevel@tonic-gate 35840Sstevel@tonic-gate #define DELTA 25 /* Number of pidlist elements to allocate at a time */ 35850Sstevel@tonic-gate 35860Sstevel@tonic-gate /* ARGSUSED */ 35870Sstevel@tonic-gate void 35880Sstevel@tonic-gate sigpoll(int n) 35890Sstevel@tonic-gate { 35900Sstevel@tonic-gate struct pidrec prec; 35910Sstevel@tonic-gate struct pidrec *p = ≺ 35920Sstevel@tonic-gate struct pidlist *plp; 35930Sstevel@tonic-gate struct pidlist *tp, *savetp; 35940Sstevel@tonic-gate int i; 35950Sstevel@tonic-gate 35960Sstevel@tonic-gate if (Pfd < 0) { 35970Sstevel@tonic-gate return; 35980Sstevel@tonic-gate } 35990Sstevel@tonic-gate (void) sigset(SIGCLD, SIG_DFL); 36000Sstevel@tonic-gate for (;;) { 36010Sstevel@tonic-gate /* 36020Sstevel@tonic-gate * Important Note: Either read will really fail (in which case 36030Sstevel@tonic-gate * return is all we can do) or will get EAGAIN (Pfd was opened 36040Sstevel@tonic-gate * O_NDELAY), in which case we also want to return. 36050Sstevel@tonic-gate * Always return from here! 36060Sstevel@tonic-gate */ 36070Sstevel@tonic-gate if (read(Pfd, p, sizeof (struct pidrec)) != 36080Sstevel@tonic-gate sizeof (struct pidrec)) { 36090Sstevel@tonic-gate (void) sigset(SIGCLD, childeath); 36100Sstevel@tonic-gate return; 36110Sstevel@tonic-gate } 36120Sstevel@tonic-gate switch (p->pd_type) { 36130Sstevel@tonic-gate 36140Sstevel@tonic-gate case ADDPID: 36150Sstevel@tonic-gate /* 36160Sstevel@tonic-gate * New "godchild", add to list. 36170Sstevel@tonic-gate */ 36180Sstevel@tonic-gate if (Plfree == NULL) { 36190Sstevel@tonic-gate plp = (struct pidlist *)calloc(DELTA, 36200Sstevel@tonic-gate sizeof (struct pidlist)); 36210Sstevel@tonic-gate if (plp == NULL) { 36220Sstevel@tonic-gate /* Can't save pid */ 36230Sstevel@tonic-gate break; 36240Sstevel@tonic-gate } 36250Sstevel@tonic-gate /* 36260Sstevel@tonic-gate * Point at 2nd record allocated, we'll use plp. 36270Sstevel@tonic-gate */ 36280Sstevel@tonic-gate tp = plp + 1; 36290Sstevel@tonic-gate /* 36300Sstevel@tonic-gate * Link them into a chain. 36310Sstevel@tonic-gate */ 36320Sstevel@tonic-gate Plfree = tp; 36330Sstevel@tonic-gate for (i = 0; i < DELTA - 2; i++) { 36340Sstevel@tonic-gate tp->pl_next = tp + 1; 36350Sstevel@tonic-gate tp++; 36360Sstevel@tonic-gate } 36370Sstevel@tonic-gate } else { 36380Sstevel@tonic-gate plp = Plfree; 36390Sstevel@tonic-gate Plfree = plp->pl_next; 36400Sstevel@tonic-gate } 36410Sstevel@tonic-gate plp->pl_pid = p->pd_pid; 36420Sstevel@tonic-gate plp->pl_dflag = 0; 36430Sstevel@tonic-gate plp->pl_next = NULL; 36440Sstevel@tonic-gate /* 36450Sstevel@tonic-gate * Note - pid list is kept in increasing order of pids. 36460Sstevel@tonic-gate */ 36470Sstevel@tonic-gate if (Plhead == NULL) { 36480Sstevel@tonic-gate Plhead = plp; 36490Sstevel@tonic-gate /* Back up to read next record */ 36500Sstevel@tonic-gate break; 36510Sstevel@tonic-gate } else { 36520Sstevel@tonic-gate savetp = tp = Plhead; 36530Sstevel@tonic-gate while (tp) { 36540Sstevel@tonic-gate if (plp->pl_pid > tp->pl_pid) { 36550Sstevel@tonic-gate savetp = tp; 36560Sstevel@tonic-gate tp = tp->pl_next; 36570Sstevel@tonic-gate continue; 36580Sstevel@tonic-gate } else if (plp->pl_pid < tp->pl_pid) { 36590Sstevel@tonic-gate if (tp == Plhead) { 36600Sstevel@tonic-gate plp->pl_next = Plhead; 36610Sstevel@tonic-gate Plhead = plp; 36620Sstevel@tonic-gate } else { 36630Sstevel@tonic-gate plp->pl_next = 36640Sstevel@tonic-gate savetp->pl_next; 36650Sstevel@tonic-gate savetp->pl_next = plp; 36660Sstevel@tonic-gate } 36670Sstevel@tonic-gate break; 36680Sstevel@tonic-gate } else { 36690Sstevel@tonic-gate /* Already in list! */ 36700Sstevel@tonic-gate plp->pl_next = Plfree; 36710Sstevel@tonic-gate Plfree = plp; 36720Sstevel@tonic-gate break; 36730Sstevel@tonic-gate } 36740Sstevel@tonic-gate } 36750Sstevel@tonic-gate if (tp == NULL) { 36760Sstevel@tonic-gate /* Add to end of list */ 36770Sstevel@tonic-gate savetp->pl_next = plp; 36780Sstevel@tonic-gate } 36790Sstevel@tonic-gate } 36800Sstevel@tonic-gate /* Back up to read next record. */ 36810Sstevel@tonic-gate break; 36820Sstevel@tonic-gate 36830Sstevel@tonic-gate case REMPID: 36840Sstevel@tonic-gate /* 36850Sstevel@tonic-gate * This one was handled by someone else, 36860Sstevel@tonic-gate * purge it from the list. 36870Sstevel@tonic-gate */ 36880Sstevel@tonic-gate if (Plhead == NULL) { 36890Sstevel@tonic-gate /* Back up to read next record. */ 36900Sstevel@tonic-gate break; 36910Sstevel@tonic-gate } 36920Sstevel@tonic-gate savetp = tp = Plhead; 36930Sstevel@tonic-gate while (tp) { 36940Sstevel@tonic-gate if (p->pd_pid > tp->pl_pid) { 36950Sstevel@tonic-gate /* Keep on looking. */ 36960Sstevel@tonic-gate savetp = tp; 36970Sstevel@tonic-gate tp = tp->pl_next; 36980Sstevel@tonic-gate continue; 36990Sstevel@tonic-gate } else if (p->pd_pid < tp->pl_pid) { 37000Sstevel@tonic-gate /* Not in list. */ 37010Sstevel@tonic-gate break; 37020Sstevel@tonic-gate } else { 37030Sstevel@tonic-gate /* Found it. */ 37040Sstevel@tonic-gate if (tp == Plhead) 37050Sstevel@tonic-gate Plhead = tp->pl_next; 37060Sstevel@tonic-gate else 37070Sstevel@tonic-gate savetp->pl_next = tp->pl_next; 37080Sstevel@tonic-gate tp->pl_next = Plfree; 37090Sstevel@tonic-gate Plfree = tp; 37100Sstevel@tonic-gate break; 37110Sstevel@tonic-gate } 37120Sstevel@tonic-gate } 37130Sstevel@tonic-gate /* Back up to read next record. */ 37140Sstevel@tonic-gate break; 37150Sstevel@tonic-gate default: 37160Sstevel@tonic-gate console(B_TRUE, "Bad message on initpipe\n"); 37170Sstevel@tonic-gate break; 37180Sstevel@tonic-gate } 37190Sstevel@tonic-gate } 37200Sstevel@tonic-gate } 37210Sstevel@tonic-gate 37220Sstevel@tonic-gate 37230Sstevel@tonic-gate static void 37240Sstevel@tonic-gate cleanaux() 37250Sstevel@tonic-gate { 37260Sstevel@tonic-gate struct pidlist *savep, *p; 37270Sstevel@tonic-gate pid_t pid; 37280Sstevel@tonic-gate short status; 37290Sstevel@tonic-gate 37300Sstevel@tonic-gate (void) sigset(SIGCLD, SIG_DFL); 37310Sstevel@tonic-gate Gchild = 0; /* Note - Safe to do this here since no SIGCLDs */ 37320Sstevel@tonic-gate (void) sighold(SIGPOLL); 37330Sstevel@tonic-gate savep = p = Plhead; 37340Sstevel@tonic-gate while (p) { 37350Sstevel@tonic-gate if (p->pl_dflag) { 37360Sstevel@tonic-gate /* 37370Sstevel@tonic-gate * Found an entry to delete, 37380Sstevel@tonic-gate * remove it from list first. 37390Sstevel@tonic-gate */ 37400Sstevel@tonic-gate pid = p->pl_pid; 37410Sstevel@tonic-gate status = p->pl_exit; 37420Sstevel@tonic-gate if (p == Plhead) { 37430Sstevel@tonic-gate Plhead = p->pl_next; 37440Sstevel@tonic-gate p->pl_next = Plfree; 37450Sstevel@tonic-gate Plfree = p; 37460Sstevel@tonic-gate savep = p = Plhead; 37470Sstevel@tonic-gate } else { 37480Sstevel@tonic-gate savep->pl_next = p->pl_next; 37490Sstevel@tonic-gate p->pl_next = Plfree; 37500Sstevel@tonic-gate Plfree = p; 37510Sstevel@tonic-gate p = savep->pl_next; 37520Sstevel@tonic-gate } 37530Sstevel@tonic-gate clearent(pid, status); 37540Sstevel@tonic-gate continue; 37550Sstevel@tonic-gate } 37560Sstevel@tonic-gate savep = p; 37570Sstevel@tonic-gate p = p->pl_next; 37580Sstevel@tonic-gate } 37590Sstevel@tonic-gate (void) sigrelse(SIGPOLL); 37600Sstevel@tonic-gate (void) sigset(SIGCLD, childeath); 37610Sstevel@tonic-gate } 37620Sstevel@tonic-gate 37630Sstevel@tonic-gate 37640Sstevel@tonic-gate /* 37650Sstevel@tonic-gate * /etc/inittab has more entries and we have run out of room in the proc_table 37660Sstevel@tonic-gate * array. Double the size of proc_table to accomodate the extra entries. 37670Sstevel@tonic-gate */ 37680Sstevel@tonic-gate static void 37690Sstevel@tonic-gate increase_proc_table_size() 37700Sstevel@tonic-gate { 37710Sstevel@tonic-gate sigset_t block, unblock; 37720Sstevel@tonic-gate void *ptr; 37730Sstevel@tonic-gate size_t delta = num_proc * sizeof (struct PROC_TABLE); 37740Sstevel@tonic-gate 37750Sstevel@tonic-gate 37760Sstevel@tonic-gate /* 37770Sstevel@tonic-gate * Block signals for realloc. 37780Sstevel@tonic-gate */ 37790Sstevel@tonic-gate (void) sigfillset(&block); 37800Sstevel@tonic-gate (void) sigprocmask(SIG_BLOCK, &block, &unblock); 37810Sstevel@tonic-gate 37820Sstevel@tonic-gate 37830Sstevel@tonic-gate /* 37840Sstevel@tonic-gate * On failure we just return because callers of this function check 37850Sstevel@tonic-gate * for failure. 37860Sstevel@tonic-gate */ 37870Sstevel@tonic-gate do 37880Sstevel@tonic-gate ptr = realloc(g_state, g_state_sz + delta); 37890Sstevel@tonic-gate while (ptr == NULL && errno == EAGAIN); 37900Sstevel@tonic-gate 37910Sstevel@tonic-gate if (ptr != NULL) { 37920Sstevel@tonic-gate /* ensure that the new part is initialized to zero */ 37930Sstevel@tonic-gate bzero((caddr_t)ptr + g_state_sz, delta); 37940Sstevel@tonic-gate 37950Sstevel@tonic-gate g_state = ptr; 37960Sstevel@tonic-gate g_state_sz += delta; 37970Sstevel@tonic-gate num_proc <<= 1; 37980Sstevel@tonic-gate } 37990Sstevel@tonic-gate 38000Sstevel@tonic-gate 38010Sstevel@tonic-gate /* unblock our signals before returning */ 38020Sstevel@tonic-gate (void) sigprocmask(SIG_SETMASK, &unblock, NULL); 38030Sstevel@tonic-gate } 38040Sstevel@tonic-gate 38050Sstevel@tonic-gate 38060Sstevel@tonic-gate 38070Sstevel@tonic-gate /* 38080Sstevel@tonic-gate * Sanity check g_state. 38090Sstevel@tonic-gate */ 38100Sstevel@tonic-gate static int 38110Sstevel@tonic-gate st_sane() 38120Sstevel@tonic-gate { 38130Sstevel@tonic-gate int i; 38140Sstevel@tonic-gate struct PROC_TABLE *ptp; 38150Sstevel@tonic-gate 38160Sstevel@tonic-gate 38170Sstevel@tonic-gate /* Note: cur_state is encoded as a signal number */ 38180Sstevel@tonic-gate if (cur_state < 1 || cur_state == 9 || cur_state > 13) 38190Sstevel@tonic-gate return (0); 38200Sstevel@tonic-gate 38210Sstevel@tonic-gate /* Check num_proc */ 38220Sstevel@tonic-gate if (g_state_sz != sizeof (struct init_state) + (num_proc - 1) * 38230Sstevel@tonic-gate sizeof (struct PROC_TABLE)) 38240Sstevel@tonic-gate return (0); 38250Sstevel@tonic-gate 38260Sstevel@tonic-gate /* Check proc_table */ 38270Sstevel@tonic-gate for (i = 0, ptp = proc_table; i < num_proc; ++i, ++ptp) { 38280Sstevel@tonic-gate /* skip unoccupied entries */ 38290Sstevel@tonic-gate if (!(ptp->p_flags & OCCUPIED)) 38300Sstevel@tonic-gate continue; 38310Sstevel@tonic-gate 38320Sstevel@tonic-gate /* p_flags has no bits outside of PF_MASK */ 38330Sstevel@tonic-gate if (ptp->p_flags & ~(PF_MASK)) 38340Sstevel@tonic-gate return (0); 38350Sstevel@tonic-gate 38360Sstevel@tonic-gate /* 5 <= pid <= MAXPID */ 38370Sstevel@tonic-gate if (ptp->p_pid < 5 || ptp->p_pid > MAXPID) 38380Sstevel@tonic-gate return (0); 38390Sstevel@tonic-gate 38400Sstevel@tonic-gate /* p_count >= 0 */ 38410Sstevel@tonic-gate if (ptp->p_count < 0) 38420Sstevel@tonic-gate return (0); 38430Sstevel@tonic-gate 38440Sstevel@tonic-gate /* p_time >= 0 */ 38450Sstevel@tonic-gate if (ptp->p_time < 0) 38460Sstevel@tonic-gate return (0); 38470Sstevel@tonic-gate } 38480Sstevel@tonic-gate 38490Sstevel@tonic-gate return (1); 38500Sstevel@tonic-gate } 38510Sstevel@tonic-gate 38520Sstevel@tonic-gate /* 38530Sstevel@tonic-gate * Initialize our state. 38540Sstevel@tonic-gate * 38550Sstevel@tonic-gate * If the system just booted, then init_state_file, which is located on an 38560Sstevel@tonic-gate * everpresent tmpfs filesystem, should not exist. 38570Sstevel@tonic-gate * 38580Sstevel@tonic-gate * If we were restarted, then init_state_file should exist, in 38590Sstevel@tonic-gate * which case we'll read it in, sanity check it, and use it. 38600Sstevel@tonic-gate * 38610Sstevel@tonic-gate * Note: You can't call console() until proc_table is ready. 38620Sstevel@tonic-gate */ 38630Sstevel@tonic-gate void 38640Sstevel@tonic-gate st_init() 38650Sstevel@tonic-gate { 38660Sstevel@tonic-gate struct stat stb; 38670Sstevel@tonic-gate int ret, st_fd, insane = 0; 38680Sstevel@tonic-gate size_t to_be_read; 38690Sstevel@tonic-gate char *ptr; 38700Sstevel@tonic-gate 38710Sstevel@tonic-gate 38720Sstevel@tonic-gate booting = 1; 38730Sstevel@tonic-gate 38740Sstevel@tonic-gate do { 38750Sstevel@tonic-gate /* 38760Sstevel@tonic-gate * If we can exclusively create the file, then we're the 38770Sstevel@tonic-gate * initial invocation of init(1M). 38780Sstevel@tonic-gate */ 38790Sstevel@tonic-gate st_fd = open(init_state_file, O_RDWR | O_CREAT | O_EXCL, 38800Sstevel@tonic-gate S_IRUSR | S_IWUSR); 38810Sstevel@tonic-gate } while (st_fd == -1 && errno == EINTR); 38820Sstevel@tonic-gate if (st_fd != -1) 38830Sstevel@tonic-gate goto new_state; 38840Sstevel@tonic-gate 38850Sstevel@tonic-gate booting = 0; 38860Sstevel@tonic-gate 38870Sstevel@tonic-gate do { 38880Sstevel@tonic-gate st_fd = open(init_state_file, O_RDWR, S_IRUSR | S_IWUSR); 38890Sstevel@tonic-gate } while (st_fd == -1 && errno == EINTR); 38900Sstevel@tonic-gate if (st_fd == -1) 38910Sstevel@tonic-gate goto new_state; 38920Sstevel@tonic-gate 38930Sstevel@tonic-gate /* Get the size of the file. */ 38940Sstevel@tonic-gate do 38950Sstevel@tonic-gate ret = fstat(st_fd, &stb); 38960Sstevel@tonic-gate while (ret == -1 && errno == EINTR); 38970Sstevel@tonic-gate if (ret == -1) 38980Sstevel@tonic-gate goto new_state; 38990Sstevel@tonic-gate 39000Sstevel@tonic-gate do 39010Sstevel@tonic-gate g_state = malloc(stb.st_size); 39020Sstevel@tonic-gate while (g_state == NULL && errno == EAGAIN); 39030Sstevel@tonic-gate if (g_state == NULL) 39040Sstevel@tonic-gate goto new_state; 39050Sstevel@tonic-gate 39060Sstevel@tonic-gate to_be_read = stb.st_size; 39070Sstevel@tonic-gate ptr = (char *)g_state; 39080Sstevel@tonic-gate while (to_be_read > 0) { 39090Sstevel@tonic-gate ssize_t read_ret; 39100Sstevel@tonic-gate 39110Sstevel@tonic-gate read_ret = read(st_fd, ptr, to_be_read); 39120Sstevel@tonic-gate if (read_ret < 0) { 39130Sstevel@tonic-gate if (errno == EINTR) 39140Sstevel@tonic-gate continue; 39150Sstevel@tonic-gate 39160Sstevel@tonic-gate goto new_state; 39170Sstevel@tonic-gate } 39180Sstevel@tonic-gate 39190Sstevel@tonic-gate to_be_read -= read_ret; 39200Sstevel@tonic-gate ptr += read_ret; 39210Sstevel@tonic-gate } 39220Sstevel@tonic-gate 39230Sstevel@tonic-gate (void) close(st_fd); 39240Sstevel@tonic-gate 39250Sstevel@tonic-gate g_state_sz = stb.st_size; 39260Sstevel@tonic-gate 39270Sstevel@tonic-gate if (st_sane()) { 39280Sstevel@tonic-gate console(B_TRUE, "Restarting.\n"); 39290Sstevel@tonic-gate return; 39300Sstevel@tonic-gate } 39310Sstevel@tonic-gate 39320Sstevel@tonic-gate insane = 1; 39330Sstevel@tonic-gate 39340Sstevel@tonic-gate new_state: 39350Sstevel@tonic-gate if (st_fd >= 0) 39360Sstevel@tonic-gate (void) close(st_fd); 39370Sstevel@tonic-gate else 39380Sstevel@tonic-gate (void) unlink(init_state_file); 39390Sstevel@tonic-gate 39400Sstevel@tonic-gate if (g_state != NULL) 39410Sstevel@tonic-gate free(g_state); 39420Sstevel@tonic-gate 39430Sstevel@tonic-gate /* Something went wrong, so allocate new state. */ 39440Sstevel@tonic-gate g_state_sz = sizeof (struct init_state) + 39450Sstevel@tonic-gate ((init_num_proc - 1) * sizeof (struct PROC_TABLE)); 39460Sstevel@tonic-gate do 39470Sstevel@tonic-gate g_state = calloc(1, g_state_sz); 39480Sstevel@tonic-gate while (g_state == NULL && errno == EAGAIN); 39490Sstevel@tonic-gate if (g_state == NULL) { 39500Sstevel@tonic-gate /* Fatal error! */ 39510Sstevel@tonic-gate exit(errno); 39520Sstevel@tonic-gate } 39530Sstevel@tonic-gate 39540Sstevel@tonic-gate g_state->ist_runlevel = -1; 39550Sstevel@tonic-gate num_proc = init_num_proc; 39560Sstevel@tonic-gate 39570Sstevel@tonic-gate if (!booting) { 39580Sstevel@tonic-gate console(B_TRUE, "Restarting.\n"); 39590Sstevel@tonic-gate 39600Sstevel@tonic-gate /* Overwrite the bad state file. */ 39610Sstevel@tonic-gate st_write(); 39620Sstevel@tonic-gate 39630Sstevel@tonic-gate if (!insane) { 39640Sstevel@tonic-gate console(B_TRUE, 39650Sstevel@tonic-gate "Error accessing persistent state file `%s'. " 39660Sstevel@tonic-gate "Ignored.\n", init_state_file); 39670Sstevel@tonic-gate } else { 39680Sstevel@tonic-gate console(B_TRUE, 39690Sstevel@tonic-gate "Persistent state file `%s' is invalid and was " 39700Sstevel@tonic-gate "ignored.\n", init_state_file); 39710Sstevel@tonic-gate } 39720Sstevel@tonic-gate } 39730Sstevel@tonic-gate } 39740Sstevel@tonic-gate 39750Sstevel@tonic-gate /* 39760Sstevel@tonic-gate * Write g_state out to the state file. 39770Sstevel@tonic-gate */ 39780Sstevel@tonic-gate void 39790Sstevel@tonic-gate st_write() 39800Sstevel@tonic-gate { 39810Sstevel@tonic-gate static int complained = 0; 39820Sstevel@tonic-gate 39830Sstevel@tonic-gate int st_fd; 39840Sstevel@tonic-gate char *cp; 39850Sstevel@tonic-gate size_t sz; 39860Sstevel@tonic-gate ssize_t ret; 39870Sstevel@tonic-gate 39880Sstevel@tonic-gate 39890Sstevel@tonic-gate do { 39900Sstevel@tonic-gate st_fd = open(init_next_state_file, 39910Sstevel@tonic-gate O_WRONLY | O_CREAT | O_TRUNC, S_IRUSR | S_IWUSR); 39920Sstevel@tonic-gate } while (st_fd < 0 && errno == EINTR); 39930Sstevel@tonic-gate if (st_fd < 0) 39940Sstevel@tonic-gate goto err; 39950Sstevel@tonic-gate 39960Sstevel@tonic-gate cp = (char *)g_state; 39970Sstevel@tonic-gate sz = g_state_sz; 39980Sstevel@tonic-gate while (sz > 0) { 39990Sstevel@tonic-gate ret = write(st_fd, cp, sz); 40000Sstevel@tonic-gate if (ret < 0) { 40010Sstevel@tonic-gate if (errno == EINTR) 40020Sstevel@tonic-gate continue; 40030Sstevel@tonic-gate 40040Sstevel@tonic-gate goto err; 40050Sstevel@tonic-gate } 40060Sstevel@tonic-gate 40070Sstevel@tonic-gate sz -= ret; 40080Sstevel@tonic-gate cp += ret; 40090Sstevel@tonic-gate } 40100Sstevel@tonic-gate 40110Sstevel@tonic-gate (void) close(st_fd); 40120Sstevel@tonic-gate st_fd = -1; 40130Sstevel@tonic-gate if (rename(init_next_state_file, init_state_file)) { 40140Sstevel@tonic-gate (void) unlink(init_next_state_file); 40150Sstevel@tonic-gate goto err; 40160Sstevel@tonic-gate } 40170Sstevel@tonic-gate complained = 0; 40180Sstevel@tonic-gate 40190Sstevel@tonic-gate return; 40200Sstevel@tonic-gate 40210Sstevel@tonic-gate err: 40220Sstevel@tonic-gate if (st_fd >= 0) 40230Sstevel@tonic-gate (void) close(st_fd); 40240Sstevel@tonic-gate 40250Sstevel@tonic-gate if (!booting && !complained) { 40260Sstevel@tonic-gate /* 40270Sstevel@tonic-gate * Only complain after the filesystem should have come up. 40280Sstevel@tonic-gate * And only do it once so we don't loop between console() 40290Sstevel@tonic-gate * & efork(). 40300Sstevel@tonic-gate */ 40310Sstevel@tonic-gate complained = 1; 40320Sstevel@tonic-gate if (st_fd) 40330Sstevel@tonic-gate console(B_TRUE, "Couldn't write persistent state " 40340Sstevel@tonic-gate "file `%s'.\n", init_state_file); 40350Sstevel@tonic-gate else 40360Sstevel@tonic-gate console(B_TRUE, "Couldn't move persistent state " 40370Sstevel@tonic-gate "file `%s' to `%s'.\n", init_next_state_file, 40380Sstevel@tonic-gate init_state_file); 40390Sstevel@tonic-gate } 40400Sstevel@tonic-gate } 40410Sstevel@tonic-gate 40420Sstevel@tonic-gate /* 40430Sstevel@tonic-gate * Create a contract with these parameters. 40440Sstevel@tonic-gate */ 40450Sstevel@tonic-gate static int 40460Sstevel@tonic-gate contract_make_template(uint_t info, uint_t critical, uint_t fatal, 40470Sstevel@tonic-gate uint64_t cookie) 40480Sstevel@tonic-gate { 40490Sstevel@tonic-gate int fd, err; 40500Sstevel@tonic-gate 40510Sstevel@tonic-gate char *ioctl_tset_emsg = 40520Sstevel@tonic-gate "Couldn't set \"%s\" contract template parameter: %s.\n"; 40530Sstevel@tonic-gate 40540Sstevel@tonic-gate do 40550Sstevel@tonic-gate fd = open64(CTFS_ROOT "/process/template", O_RDWR); 40560Sstevel@tonic-gate while (fd < 0 && errno == EINTR); 40570Sstevel@tonic-gate if (fd < 0) { 40580Sstevel@tonic-gate console(B_TRUE, "Couldn't create process template: %s.\n", 40590Sstevel@tonic-gate strerror(errno)); 40600Sstevel@tonic-gate return (-1); 40610Sstevel@tonic-gate } 40620Sstevel@tonic-gate 40630Sstevel@tonic-gate if (err = ct_pr_tmpl_set_param(fd, CT_PR_INHERIT | CT_PR_REGENT)) 40640Sstevel@tonic-gate console(B_TRUE, "Contract set template inherit, regent " 40650Sstevel@tonic-gate "failed.\n"); 40660Sstevel@tonic-gate 40670Sstevel@tonic-gate /* 40680Sstevel@tonic-gate * These errors result in a misconfigured template, which is better 40690Sstevel@tonic-gate * than no template at all, so warn but don't abort. 40700Sstevel@tonic-gate */ 40710Sstevel@tonic-gate if (err = ct_tmpl_set_informative(fd, info)) 40720Sstevel@tonic-gate console(B_TRUE, ioctl_tset_emsg, "informative", strerror(err)); 40730Sstevel@tonic-gate 40740Sstevel@tonic-gate if (err = ct_tmpl_set_critical(fd, critical)) 40750Sstevel@tonic-gate console(B_TRUE, ioctl_tset_emsg, "critical", strerror(err)); 40760Sstevel@tonic-gate 40770Sstevel@tonic-gate if (err = ct_pr_tmpl_set_fatal(fd, fatal)) 40780Sstevel@tonic-gate console(B_TRUE, ioctl_tset_emsg, "fatal", strerror(err)); 40790Sstevel@tonic-gate 40800Sstevel@tonic-gate if (err = ct_tmpl_set_cookie(fd, cookie)) 40810Sstevel@tonic-gate console(B_TRUE, ioctl_tset_emsg, "cookie", strerror(err)); 40820Sstevel@tonic-gate 40830Sstevel@tonic-gate (void) fcntl(fd, F_SETFD, FD_CLOEXEC); 40840Sstevel@tonic-gate 40850Sstevel@tonic-gate return (fd); 40860Sstevel@tonic-gate } 40870Sstevel@tonic-gate 40880Sstevel@tonic-gate /* 40890Sstevel@tonic-gate * Create the templates and open an event file descriptor. We use dup2(2) to 40900Sstevel@tonic-gate * get these descriptors away from the stdin/stdout/stderr group. 40910Sstevel@tonic-gate */ 40920Sstevel@tonic-gate static void 40930Sstevel@tonic-gate contracts_init() 40940Sstevel@tonic-gate { 40950Sstevel@tonic-gate int err, fd; 40960Sstevel@tonic-gate 40970Sstevel@tonic-gate /* 40980Sstevel@tonic-gate * Create & configure a legacy template. We only want empty events so 40990Sstevel@tonic-gate * we know when to abandon them. 41000Sstevel@tonic-gate */ 41010Sstevel@tonic-gate legacy_tmpl = contract_make_template(0, CT_PR_EV_EMPTY, CT_PR_EV_HWERR, 41020Sstevel@tonic-gate ORDINARY_COOKIE); 41030Sstevel@tonic-gate if (legacy_tmpl >= 0) { 41040Sstevel@tonic-gate err = ct_tmpl_activate(legacy_tmpl); 41050Sstevel@tonic-gate if (err != 0) { 41060Sstevel@tonic-gate (void) close(legacy_tmpl); 41070Sstevel@tonic-gate legacy_tmpl = -1; 41080Sstevel@tonic-gate console(B_TRUE, 41090Sstevel@tonic-gate "Couldn't activate legacy template (%s); " 41100Sstevel@tonic-gate "legacy services will be in init's contract.\n", 41110Sstevel@tonic-gate strerror(err)); 41120Sstevel@tonic-gate } 41130Sstevel@tonic-gate } else 41140Sstevel@tonic-gate console(B_TRUE, 41150Sstevel@tonic-gate "Legacy services will be in init's contract.\n"); 41160Sstevel@tonic-gate 41170Sstevel@tonic-gate if (dup2(legacy_tmpl, 255) == -1) { 41180Sstevel@tonic-gate console(B_TRUE, "Could not duplicate legacy template: %s.\n", 41190Sstevel@tonic-gate strerror(errno)); 41200Sstevel@tonic-gate } else { 41210Sstevel@tonic-gate (void) close(legacy_tmpl); 41220Sstevel@tonic-gate legacy_tmpl = 255; 41230Sstevel@tonic-gate } 41240Sstevel@tonic-gate 41250Sstevel@tonic-gate (void) fcntl(legacy_tmpl, F_SETFD, FD_CLOEXEC); 41260Sstevel@tonic-gate 41270Sstevel@tonic-gate startd_tmpl = contract_make_template(0, CT_PR_EV_EMPTY, 41280Sstevel@tonic-gate CT_PR_EV_HWERR | CT_PR_EV_SIGNAL | CT_PR_EV_CORE, STARTD_COOKIE); 41290Sstevel@tonic-gate 41300Sstevel@tonic-gate if (dup2(startd_tmpl, 254) == -1) { 41310Sstevel@tonic-gate console(B_TRUE, "Could not duplicate startd template: %s.\n", 41320Sstevel@tonic-gate strerror(errno)); 41330Sstevel@tonic-gate } else { 41340Sstevel@tonic-gate (void) close(startd_tmpl); 41350Sstevel@tonic-gate startd_tmpl = 254; 41360Sstevel@tonic-gate } 41370Sstevel@tonic-gate 41380Sstevel@tonic-gate (void) fcntl(startd_tmpl, F_SETFD, FD_CLOEXEC); 41390Sstevel@tonic-gate 41400Sstevel@tonic-gate if (legacy_tmpl < 0 && startd_tmpl < 0) { 41410Sstevel@tonic-gate /* The creation errors have already been reported. */ 41420Sstevel@tonic-gate console(B_TRUE, 41430Sstevel@tonic-gate "Ignoring contract events. Core smf(5) services will not " 41440Sstevel@tonic-gate "be restarted.\n"); 41450Sstevel@tonic-gate return; 41460Sstevel@tonic-gate } 41470Sstevel@tonic-gate 41480Sstevel@tonic-gate /* 41490Sstevel@tonic-gate * Open an event endpoint. 41500Sstevel@tonic-gate */ 41510Sstevel@tonic-gate do 41520Sstevel@tonic-gate fd = open64(CTFS_ROOT "/process/pbundle", O_RDONLY); 41530Sstevel@tonic-gate while (fd < 0 && errno == EINTR); 41540Sstevel@tonic-gate if (fd < 0) { 41550Sstevel@tonic-gate console(B_TRUE, 41560Sstevel@tonic-gate "Couldn't open process pbundle: %s. Core smf(5) services " 41570Sstevel@tonic-gate "will not be restarted.\n", strerror(errno)); 41580Sstevel@tonic-gate return; 41590Sstevel@tonic-gate } 41600Sstevel@tonic-gate 41610Sstevel@tonic-gate if (dup2(fd, 253) == -1) { 41620Sstevel@tonic-gate console(B_TRUE, "Could not duplicate process bundle: %s.\n", 41630Sstevel@tonic-gate strerror(errno)); 41640Sstevel@tonic-gate } else { 41650Sstevel@tonic-gate (void) close(fd); 41660Sstevel@tonic-gate fd = 253; 41670Sstevel@tonic-gate } 41680Sstevel@tonic-gate 41690Sstevel@tonic-gate (void) fcntl(fd, F_SETFD, FD_CLOEXEC); 41700Sstevel@tonic-gate 41710Sstevel@tonic-gate /* Reset in case we've been restarted. */ 41720Sstevel@tonic-gate (void) ct_event_reset(fd); 41730Sstevel@tonic-gate 41740Sstevel@tonic-gate poll_fds[0].fd = fd; 41750Sstevel@tonic-gate poll_fds[0].events = POLLIN; 41760Sstevel@tonic-gate poll_nfds = 1; 41770Sstevel@tonic-gate } 41780Sstevel@tonic-gate 41790Sstevel@tonic-gate static int 41800Sstevel@tonic-gate contract_getfile(ctid_t id, const char *name, int oflag) 41810Sstevel@tonic-gate { 41820Sstevel@tonic-gate int fd; 41830Sstevel@tonic-gate 41840Sstevel@tonic-gate do 41850Sstevel@tonic-gate fd = contract_open(id, "process", name, oflag); 41860Sstevel@tonic-gate while (fd < 0 && errno == EINTR); 41870Sstevel@tonic-gate 41880Sstevel@tonic-gate if (fd < 0) 41890Sstevel@tonic-gate console(B_TRUE, "Couldn't open %s for contract %ld: %s.\n", 41900Sstevel@tonic-gate name, id, strerror(errno)); 41910Sstevel@tonic-gate 41920Sstevel@tonic-gate return (fd); 41930Sstevel@tonic-gate } 41940Sstevel@tonic-gate 41950Sstevel@tonic-gate static int 41960Sstevel@tonic-gate contract_cookie(ctid_t id, uint64_t *cp) 41970Sstevel@tonic-gate { 41980Sstevel@tonic-gate int fd, err; 41990Sstevel@tonic-gate ct_stathdl_t sh; 42000Sstevel@tonic-gate 42010Sstevel@tonic-gate fd = contract_getfile(id, "status", O_RDONLY); 42020Sstevel@tonic-gate if (fd < 0) 42030Sstevel@tonic-gate return (-1); 42040Sstevel@tonic-gate 42050Sstevel@tonic-gate err = ct_status_read(fd, CTD_COMMON, &sh); 42060Sstevel@tonic-gate if (err != 0) { 42070Sstevel@tonic-gate console(B_TRUE, "Couldn't read status of contract %ld: %s.\n", 42080Sstevel@tonic-gate id, strerror(err)); 42090Sstevel@tonic-gate (void) close(fd); 42100Sstevel@tonic-gate return (-1); 42110Sstevel@tonic-gate } 42120Sstevel@tonic-gate 42130Sstevel@tonic-gate (void) close(fd); 42140Sstevel@tonic-gate 42150Sstevel@tonic-gate *cp = ct_status_get_cookie(sh); 42160Sstevel@tonic-gate 42170Sstevel@tonic-gate ct_status_free(sh); 42180Sstevel@tonic-gate return (0); 42190Sstevel@tonic-gate } 42200Sstevel@tonic-gate 42210Sstevel@tonic-gate static void 42220Sstevel@tonic-gate contract_ack(ct_evthdl_t e) 42230Sstevel@tonic-gate { 42240Sstevel@tonic-gate int fd; 42250Sstevel@tonic-gate 42260Sstevel@tonic-gate if (ct_event_get_flags(e) & CTE_INFO) 42270Sstevel@tonic-gate return; 42280Sstevel@tonic-gate 42290Sstevel@tonic-gate fd = contract_getfile(ct_event_get_ctid(e), "ctl", O_WRONLY); 42300Sstevel@tonic-gate if (fd < 0) 42310Sstevel@tonic-gate return; 42320Sstevel@tonic-gate 42330Sstevel@tonic-gate (void) ct_ctl_ack(fd, ct_event_get_evid(e)); 42340Sstevel@tonic-gate (void) close(fd); 42350Sstevel@tonic-gate } 42360Sstevel@tonic-gate 42370Sstevel@tonic-gate /* 42380Sstevel@tonic-gate * Process a contract event. 42390Sstevel@tonic-gate */ 42400Sstevel@tonic-gate static void 42410Sstevel@tonic-gate contract_event(struct pollfd *poll) 42420Sstevel@tonic-gate { 42430Sstevel@tonic-gate ct_evthdl_t e; 42440Sstevel@tonic-gate int err; 42450Sstevel@tonic-gate ctid_t ctid; 42460Sstevel@tonic-gate 42470Sstevel@tonic-gate if (!(poll->revents & POLLIN)) { 42480Sstevel@tonic-gate if (poll->revents & POLLERR) 42490Sstevel@tonic-gate console(B_TRUE, 42500Sstevel@tonic-gate "Unknown poll error on my process contract " 42510Sstevel@tonic-gate "pbundle.\n"); 42520Sstevel@tonic-gate return; 42530Sstevel@tonic-gate } 42540Sstevel@tonic-gate 42550Sstevel@tonic-gate err = ct_event_read(poll->fd, &e); 42560Sstevel@tonic-gate if (err != 0) { 42570Sstevel@tonic-gate console(B_TRUE, "Error retrieving contract event: %s.\n", 42580Sstevel@tonic-gate strerror(err)); 42590Sstevel@tonic-gate return; 42600Sstevel@tonic-gate } 42610Sstevel@tonic-gate 42620Sstevel@tonic-gate ctid = ct_event_get_ctid(e); 42630Sstevel@tonic-gate 42640Sstevel@tonic-gate if (ct_event_get_type(e) == CT_PR_EV_EMPTY) { 42650Sstevel@tonic-gate uint64_t cookie; 42660Sstevel@tonic-gate int ret, abandon = 1; 42670Sstevel@tonic-gate 42680Sstevel@tonic-gate /* If it's svc.startd, restart it. Else, abandon. */ 42690Sstevel@tonic-gate ret = contract_cookie(ctid, &cookie); 42700Sstevel@tonic-gate 42710Sstevel@tonic-gate if (ret == 0) { 42720Sstevel@tonic-gate if (cookie == STARTD_COOKIE && 42730Sstevel@tonic-gate do_restart_startd) { 42740Sstevel@tonic-gate if (smf_debug) 42750Sstevel@tonic-gate console(B_TRUE, "Restarting " 42760Sstevel@tonic-gate "svc.startd.\n"); 42770Sstevel@tonic-gate 42780Sstevel@tonic-gate /* 42790Sstevel@tonic-gate * Account for the failure. If the failure rate 42800Sstevel@tonic-gate * exceeds a threshold, then drop to maintenance 42810Sstevel@tonic-gate * mode. 42820Sstevel@tonic-gate */ 42830Sstevel@tonic-gate startd_record_failure(); 42840Sstevel@tonic-gate if (startd_failure_rate_critical()) 42850Sstevel@tonic-gate enter_maintenance(); 42860Sstevel@tonic-gate 42870Sstevel@tonic-gate if (startd_tmpl < 0) 42880Sstevel@tonic-gate console(B_TRUE, 42890Sstevel@tonic-gate "Restarting svc.startd in " 42900Sstevel@tonic-gate "improper contract (bad " 42910Sstevel@tonic-gate "template).\n"); 42920Sstevel@tonic-gate 42930Sstevel@tonic-gate (void) startd_run(startd_cline, startd_tmpl, 42940Sstevel@tonic-gate ctid); 42950Sstevel@tonic-gate 42960Sstevel@tonic-gate abandon = 0; 42970Sstevel@tonic-gate } 42980Sstevel@tonic-gate } 42990Sstevel@tonic-gate 43000Sstevel@tonic-gate if (abandon && (err = contract_abandon_id(ctid))) { 43010Sstevel@tonic-gate console(B_TRUE, "Couldn't abandon contract %ld: %s.\n", 43020Sstevel@tonic-gate ctid, strerror(err)); 43030Sstevel@tonic-gate } 43040Sstevel@tonic-gate 43050Sstevel@tonic-gate /* 43060Sstevel@tonic-gate * No need to acknowledge the event since either way the 43070Sstevel@tonic-gate * originating contract should be abandoned. 43080Sstevel@tonic-gate */ 43090Sstevel@tonic-gate } else { 43100Sstevel@tonic-gate console(B_TRUE, 43110Sstevel@tonic-gate "Received contract event of unexpected type %d from " 43120Sstevel@tonic-gate "contract %ld.\n", ct_event_get_type(e), ctid); 43130Sstevel@tonic-gate 43140Sstevel@tonic-gate if ((ct_event_get_flags(e) & (CTE_INFO | CTE_ACK)) == 0) 43150Sstevel@tonic-gate /* Allow unexpected critical events to be released. */ 43160Sstevel@tonic-gate contract_ack(e); 43170Sstevel@tonic-gate } 43180Sstevel@tonic-gate 43190Sstevel@tonic-gate ct_event_free(e); 43200Sstevel@tonic-gate } 43210Sstevel@tonic-gate 43220Sstevel@tonic-gate /* 43230Sstevel@tonic-gate * svc.startd(1M) Management 43240Sstevel@tonic-gate */ 43250Sstevel@tonic-gate 43260Sstevel@tonic-gate /* 43270Sstevel@tonic-gate * (Re)start svc.startd(1M). old_ctid should be the contract ID of the old 43280Sstevel@tonic-gate * contract, or 0 if we're starting it for the first time. If wait is true 43290Sstevel@tonic-gate * we'll wait for and return the exit value of the child. 43300Sstevel@tonic-gate */ 43310Sstevel@tonic-gate static int 43320Sstevel@tonic-gate startd_run(const char *cline, int tmpl, ctid_t old_ctid) 43330Sstevel@tonic-gate { 43340Sstevel@tonic-gate int err, i, ret, did_activate; 43350Sstevel@tonic-gate pid_t pid; 43360Sstevel@tonic-gate struct stat sb; 43370Sstevel@tonic-gate 43380Sstevel@tonic-gate if (cline[0] == '\0') 43390Sstevel@tonic-gate return (-1); 43400Sstevel@tonic-gate 43410Sstevel@tonic-gate /* 43420Sstevel@tonic-gate * Don't restart startd if the system is rebooting or shutting down. 43430Sstevel@tonic-gate */ 43440Sstevel@tonic-gate do { 43450Sstevel@tonic-gate ret = stat("/etc/svc/volatile/resetting", &sb); 43460Sstevel@tonic-gate } while (ret == -1 && errno == EINTR); 43470Sstevel@tonic-gate 43480Sstevel@tonic-gate if (ret == 0) { 43490Sstevel@tonic-gate if (smf_debug) 43500Sstevel@tonic-gate console(B_TRUE, "Quiescing for reboot.\n"); 43510Sstevel@tonic-gate (void) pause(); 43520Sstevel@tonic-gate return (-1); 43530Sstevel@tonic-gate } 43540Sstevel@tonic-gate 43550Sstevel@tonic-gate err = ct_pr_tmpl_set_transfer(tmpl, old_ctid); 43560Sstevel@tonic-gate if (err == EINVAL) { 43570Sstevel@tonic-gate console(B_TRUE, "Remake startd_tmpl; reattempt transfer.\n"); 43580Sstevel@tonic-gate tmpl = startd_tmpl = contract_make_template(0, CT_PR_EV_EMPTY, 43590Sstevel@tonic-gate CT_PR_EV_HWERR, STARTD_COOKIE); 43600Sstevel@tonic-gate 43610Sstevel@tonic-gate err = ct_pr_tmpl_set_transfer(tmpl, old_ctid); 43620Sstevel@tonic-gate } 43630Sstevel@tonic-gate if (err != 0) { 43640Sstevel@tonic-gate console(B_TRUE, 43650Sstevel@tonic-gate "Couldn't set transfer parameter of contract template: " 43660Sstevel@tonic-gate "%s.\n", strerror(err)); 43670Sstevel@tonic-gate } 43680Sstevel@tonic-gate 43690Sstevel@tonic-gate did_activate = !(ct_tmpl_activate(tmpl)); 43700Sstevel@tonic-gate if (!did_activate) 43710Sstevel@tonic-gate console(B_TRUE, 43720Sstevel@tonic-gate "Template activation failed; not starting \"%s\" in " 43730Sstevel@tonic-gate "proper contract.\n", cline); 43740Sstevel@tonic-gate 43750Sstevel@tonic-gate /* Hold SIGCHLD so we can wait if necessary. */ 43760Sstevel@tonic-gate (void) sighold(SIGCHLD); 43770Sstevel@tonic-gate 43780Sstevel@tonic-gate while ((pid = fork()) < 0) { 43790Sstevel@tonic-gate if (errno == EPERM) { 43800Sstevel@tonic-gate console(B_TRUE, "Insufficient permission to fork.\n"); 43810Sstevel@tonic-gate 43820Sstevel@tonic-gate /* Now that's a doozy. */ 43830Sstevel@tonic-gate exit(1); 43840Sstevel@tonic-gate } 43850Sstevel@tonic-gate 43860Sstevel@tonic-gate console(B_TRUE, 43870Sstevel@tonic-gate "fork() for svc.startd failed: %s. Will retry in 1 " 43880Sstevel@tonic-gate "second...\n", strerror(errno)); 43890Sstevel@tonic-gate 43900Sstevel@tonic-gate (void) sleep(1); 43910Sstevel@tonic-gate 43920Sstevel@tonic-gate /* Eventually give up? */ 43930Sstevel@tonic-gate } 43940Sstevel@tonic-gate 43950Sstevel@tonic-gate if (pid == 0) { 43960Sstevel@tonic-gate /* child */ 43970Sstevel@tonic-gate 43980Sstevel@tonic-gate /* See the comment in efork() */ 43990Sstevel@tonic-gate for (i = SIGHUP; i <= SIGRTMAX; ++i) { 44000Sstevel@tonic-gate if (i == SIGTTOU || i == SIGTTIN || i == SIGTSTP) 44010Sstevel@tonic-gate (void) sigset(i, SIG_IGN); 44020Sstevel@tonic-gate else 44030Sstevel@tonic-gate (void) sigset(i, SIG_DFL); 44040Sstevel@tonic-gate } 44050Sstevel@tonic-gate 44060Sstevel@tonic-gate if (smf_options != NULL) { 44070Sstevel@tonic-gate /* Put smf_options in the environment. */ 44080Sstevel@tonic-gate glob_envp[glob_envn] = 44090Sstevel@tonic-gate malloc(sizeof ("SMF_OPTIONS=") - 1 + 44100Sstevel@tonic-gate strlen(smf_options) + 1); 44110Sstevel@tonic-gate 44120Sstevel@tonic-gate if (glob_envp[glob_envn] != NULL) { 44130Sstevel@tonic-gate /* LINTED */ 44140Sstevel@tonic-gate (void) sprintf(glob_envp[glob_envn], 44150Sstevel@tonic-gate "SMF_OPTIONS=%s", smf_options); 44160Sstevel@tonic-gate glob_envp[glob_envn+1] = NULL; 44170Sstevel@tonic-gate } else { 44180Sstevel@tonic-gate console(B_TRUE, 44190Sstevel@tonic-gate "Could not set SMF_OPTIONS (%s).\n", 44200Sstevel@tonic-gate strerror(errno)); 44210Sstevel@tonic-gate } 44220Sstevel@tonic-gate } 44230Sstevel@tonic-gate 44240Sstevel@tonic-gate if (smf_debug) 44250Sstevel@tonic-gate console(B_TRUE, "Executing svc.startd\n"); 44260Sstevel@tonic-gate 44270Sstevel@tonic-gate (void) execle(SH, "INITSH", "-c", cline, NULL, glob_envp); 44280Sstevel@tonic-gate 44290Sstevel@tonic-gate console(B_TRUE, "Could not exec \"%s\" (%s).\n", SH, 44300Sstevel@tonic-gate strerror(errno)); 44310Sstevel@tonic-gate 44320Sstevel@tonic-gate exit(1); 44330Sstevel@tonic-gate } 44340Sstevel@tonic-gate 44350Sstevel@tonic-gate /* parent */ 44360Sstevel@tonic-gate 44370Sstevel@tonic-gate if (did_activate) { 44380Sstevel@tonic-gate if (legacy_tmpl < 0 || ct_tmpl_activate(legacy_tmpl) != 0) 44390Sstevel@tonic-gate (void) ct_tmpl_clear(tmpl); 44400Sstevel@tonic-gate } 44410Sstevel@tonic-gate 44420Sstevel@tonic-gate /* Clear the old_ctid reference so the kernel can reclaim it. */ 44430Sstevel@tonic-gate if (old_ctid != 0) 44440Sstevel@tonic-gate (void) ct_pr_tmpl_set_transfer(tmpl, 0); 44450Sstevel@tonic-gate 44460Sstevel@tonic-gate (void) sigrelse(SIGCHLD); 44470Sstevel@tonic-gate 44480Sstevel@tonic-gate return (0); 44490Sstevel@tonic-gate } 44500Sstevel@tonic-gate 44510Sstevel@tonic-gate /* 44520Sstevel@tonic-gate * void startd_record_failure(void) 44530Sstevel@tonic-gate * Place the current time in our circular array of svc.startd failures. 44540Sstevel@tonic-gate */ 44550Sstevel@tonic-gate void 44560Sstevel@tonic-gate startd_record_failure() 44570Sstevel@tonic-gate { 44580Sstevel@tonic-gate int index = startd_failure_index++ % NSTARTD_FAILURE_TIMES; 44590Sstevel@tonic-gate 44600Sstevel@tonic-gate startd_failure_time[index] = gethrtime(); 44610Sstevel@tonic-gate } 44620Sstevel@tonic-gate 44630Sstevel@tonic-gate /* 44640Sstevel@tonic-gate * int startd_failure_rate_critical(void) 44650Sstevel@tonic-gate * Return true if the average failure interval is less than the permitted 44660Sstevel@tonic-gate * interval. Implicit success if insufficient measurements for an average 44670Sstevel@tonic-gate * exist. 44680Sstevel@tonic-gate */ 44690Sstevel@tonic-gate int 44700Sstevel@tonic-gate startd_failure_rate_critical() 44710Sstevel@tonic-gate { 44720Sstevel@tonic-gate int n = startd_failure_index; 44730Sstevel@tonic-gate hrtime_t avg_ns = 0; 44740Sstevel@tonic-gate 44750Sstevel@tonic-gate if (startd_failure_index < NSTARTD_FAILURE_TIMES) 44760Sstevel@tonic-gate return (0); 44770Sstevel@tonic-gate 44780Sstevel@tonic-gate avg_ns = 44790Sstevel@tonic-gate (startd_failure_time[(n - 1) % NSTARTD_FAILURE_TIMES] - 44800Sstevel@tonic-gate startd_failure_time[n % NSTARTD_FAILURE_TIMES]) / 44810Sstevel@tonic-gate NSTARTD_FAILURE_TIMES; 44820Sstevel@tonic-gate 44830Sstevel@tonic-gate return (avg_ns < STARTD_FAILURE_RATE_NS); 44840Sstevel@tonic-gate } 44850Sstevel@tonic-gate 44860Sstevel@tonic-gate /* 44870Sstevel@tonic-gate * returns string that must be free'd 44880Sstevel@tonic-gate */ 44890Sstevel@tonic-gate 44900Sstevel@tonic-gate static char 44910Sstevel@tonic-gate *audit_boot_msg() 44920Sstevel@tonic-gate { 44930Sstevel@tonic-gate char *b, *p; 44940Sstevel@tonic-gate char desc[] = "booted"; 44950Sstevel@tonic-gate zoneid_t zid = getzoneid(); 44960Sstevel@tonic-gate 44970Sstevel@tonic-gate b = malloc(sizeof (desc) + MAXNAMELEN + 3); 44980Sstevel@tonic-gate if (b == NULL) 44990Sstevel@tonic-gate return (b); 45000Sstevel@tonic-gate 45010Sstevel@tonic-gate p = b; 45020Sstevel@tonic-gate p += strlcpy(p, desc, sizeof (desc)); 45030Sstevel@tonic-gate if (zid != GLOBAL_ZONEID) { 45040Sstevel@tonic-gate p += strlcpy(p, ": ", 3); 45050Sstevel@tonic-gate (void) getzonenamebyid(zid, p, MAXNAMELEN); 45060Sstevel@tonic-gate } 45070Sstevel@tonic-gate return (b); 45080Sstevel@tonic-gate } 45090Sstevel@tonic-gate 45100Sstevel@tonic-gate /* 45110Sstevel@tonic-gate * Generate AUE_init_solaris audit record. Return 1 if 45120Sstevel@tonic-gate * auditing is enabled in case the caller cares. 45130Sstevel@tonic-gate * 45140Sstevel@tonic-gate * In the case of userint() or a local zone invocation of 45150Sstevel@tonic-gate * one_true_init, the process initially contains the audit 45160Sstevel@tonic-gate * characteristics of the process that invoked init. The first pass 45170Sstevel@tonic-gate * through here uses those characteristics then for the case of 45180Sstevel@tonic-gate * one_true_init in a local zone, clears them so subsequent system 45190Sstevel@tonic-gate * state changes won't be attributed to the person who booted the 45200Sstevel@tonic-gate * zone. 45210Sstevel@tonic-gate */ 45220Sstevel@tonic-gate static int 45230Sstevel@tonic-gate audit_put_record(int pass_fail, int status, char *msg) 45240Sstevel@tonic-gate { 45250Sstevel@tonic-gate adt_session_data_t *ah; 45260Sstevel@tonic-gate adt_event_data_t *event; 45270Sstevel@tonic-gate 45280Sstevel@tonic-gate if (!adt_audit_enabled()) 45290Sstevel@tonic-gate return (0); 45300Sstevel@tonic-gate 45310Sstevel@tonic-gate /* 45320Sstevel@tonic-gate * the PROC_DATA picks up the context to tell whether this is 45330Sstevel@tonic-gate * an attributed record (auid = -2 is unattributed) 45340Sstevel@tonic-gate */ 45350Sstevel@tonic-gate if (adt_start_session(&ah, NULL, ADT_USE_PROC_DATA)) { 45360Sstevel@tonic-gate console(B_TRUE, "audit failure: %s\n", strerror(errno)); 45370Sstevel@tonic-gate return (1); 45380Sstevel@tonic-gate } 45390Sstevel@tonic-gate event = adt_alloc_event(ah, ADT_init_solaris); 45400Sstevel@tonic-gate if (event == NULL) { 45410Sstevel@tonic-gate console(B_TRUE, "audit failure: %s\n", strerror(errno)); 45420Sstevel@tonic-gate (void) adt_end_session(ah); 45430Sstevel@tonic-gate return (1); 45440Sstevel@tonic-gate } 45450Sstevel@tonic-gate event->adt_init_solaris.info = msg; /* NULL is ok here */ 45460Sstevel@tonic-gate 45470Sstevel@tonic-gate if (adt_put_event(event, pass_fail, status)) { 45480Sstevel@tonic-gate console(B_TRUE, "audit failure: %s\n", strerror(errno)); 45490Sstevel@tonic-gate (void) adt_end_session(ah); 45500Sstevel@tonic-gate return (1); 45510Sstevel@tonic-gate } 45520Sstevel@tonic-gate adt_free_event(event); 45530Sstevel@tonic-gate 45540Sstevel@tonic-gate (void) adt_end_session(ah); 45550Sstevel@tonic-gate 45560Sstevel@tonic-gate return (1); 45570Sstevel@tonic-gate } 4558