rndc.c revision 1.1.1.5 1 1.1 christos /* $NetBSD: rndc.c,v 1.1.1.5 2021/02/19 16:37:04 christos Exp $ */
2 1.1 christos
3 1.1 christos /*
4 1.1 christos * Copyright (C) Internet Systems Consortium, Inc. ("ISC")
5 1.1 christos *
6 1.1 christos * This Source Code Form is subject to the terms of the Mozilla Public
7 1.1 christos * License, v. 2.0. If a copy of the MPL was not distributed with this
8 1.1.1.5 christos * file, you can obtain one at https://mozilla.org/MPL/2.0/.
9 1.1 christos *
10 1.1 christos * See the COPYRIGHT file distributed with this work for additional
11 1.1 christos * information regarding copyright ownership.
12 1.1 christos */
13 1.1 christos
14 1.1 christos /*! \file */
15 1.1 christos
16 1.1.1.2 christos #include <inttypes.h>
17 1.1.1.2 christos #include <stdbool.h>
18 1.1 christos #include <stdlib.h>
19 1.1 christos
20 1.1 christos #include <isc/app.h>
21 1.1.1.3 christos #include <isc/atomic.h>
22 1.1 christos #include <isc/buffer.h>
23 1.1 christos #include <isc/commandline.h>
24 1.1 christos #include <isc/file.h>
25 1.1 christos #include <isc/log.h>
26 1.1 christos #include <isc/mem.h>
27 1.1.1.3 christos #include <isc/net.h>
28 1.1 christos #include <isc/print.h>
29 1.1 christos #include <isc/random.h>
30 1.1.1.3 christos #include <isc/refcount.h>
31 1.1 christos #include <isc/socket.h>
32 1.1 christos #include <isc/stdtime.h>
33 1.1 christos #include <isc/string.h>
34 1.1 christos #include <isc/task.h>
35 1.1 christos #include <isc/thread.h>
36 1.1 christos #include <isc/util.h>
37 1.1 christos
38 1.1 christos #include <pk11/site.h>
39 1.1 christos
40 1.1.1.3 christos #include <dns/name.h>
41 1.1 christos
42 1.1 christos #include <isccc/alist.h>
43 1.1 christos #include <isccc/base64.h>
44 1.1 christos #include <isccc/cc.h>
45 1.1 christos #include <isccc/ccmsg.h>
46 1.1 christos #include <isccc/result.h>
47 1.1 christos #include <isccc/sexpr.h>
48 1.1 christos #include <isccc/types.h>
49 1.1 christos #include <isccc/util.h>
50 1.1 christos
51 1.1.1.3 christos #include <isccfg/namedconf.h>
52 1.1 christos
53 1.1 christos #include <bind9/getaddresses.h>
54 1.1 christos
55 1.1 christos #include "util.h"
56 1.1 christos
57 1.1 christos #define SERVERADDRS 10
58 1.1 christos
59 1.1 christos const char *progname;
60 1.1.1.2 christos bool verbose;
61 1.1 christos
62 1.1 christos static const char *admin_conffile;
63 1.1 christos static const char *admin_keyfile;
64 1.1 christos static const char *version = VERSION;
65 1.1 christos static const char *servername = NULL;
66 1.1 christos static isc_sockaddr_t serveraddrs[SERVERADDRS];
67 1.1 christos static isc_sockaddr_t local4, local6;
68 1.1.1.2 christos static bool local4set = false, local6set = false;
69 1.1 christos static int nserveraddrs;
70 1.1 christos static int currentaddr = 0;
71 1.1 christos static unsigned int remoteport = 0;
72 1.1 christos static isc_socketmgr_t *socketmgr = NULL;
73 1.1 christos static isc_buffer_t *databuf;
74 1.1 christos static isccc_ccmsg_t ccmsg;
75 1.1.1.2 christos static uint32_t algorithm;
76 1.1 christos static isccc_region_t secret;
77 1.1.1.2 christos static bool failed = false;
78 1.1.1.2 christos static bool c_flag = false;
79 1.1 christos static isc_mem_t *rndc_mctx;
80 1.1.1.3 christos static atomic_uint_fast32_t sends = ATOMIC_VAR_INIT(0);
81 1.1.1.3 christos static atomic_uint_fast32_t recvs = ATOMIC_VAR_INIT(0);
82 1.1.1.3 christos static atomic_uint_fast32_t connects = ATOMIC_VAR_INIT(0);
83 1.1 christos static char *command;
84 1.1 christos static char *args;
85 1.1 christos static char program[256];
86 1.1 christos static isc_socket_t *sock = NULL;
87 1.1.1.2 christos static uint32_t serial;
88 1.1.1.2 christos static bool quiet = false;
89 1.1.1.2 christos static bool showresult = false;
90 1.1 christos
91 1.1.1.3 christos static void
92 1.1.1.3 christos rndc_startconnect(isc_sockaddr_t *addr, isc_task_t *task);
93 1.1 christos
94 1.1 christos ISC_PLATFORM_NORETURN_PRE static void
95 1.1 christos usage(int status) ISC_PLATFORM_NORETURN_POST;
96 1.1 christos
97 1.1 christos static void
98 1.1 christos usage(int status) {
99 1.1 christos fprintf(stderr, "\
100 1.1 christos Usage: %s [-b address] [-c config] [-s server] [-p port]\n\
101 1.1 christos [-k key-file ] [-y key] [-r] [-V] [-4 | -6] command\n\
102 1.1 christos \n\
103 1.1 christos command is one of the following:\n\
104 1.1 christos \n\
105 1.1 christos addzone zone [class [view]] { zone-options }\n\
106 1.1 christos Add zone to given view. Requires allow-new-zones option.\n\
107 1.1 christos delzone [-clean] zone [class [view]]\n\
108 1.1 christos Removes zone from given view.\n\
109 1.1.1.5 christos dnssec -checkds [-key id [-alg algorithm]] [-when time] (published|withdrawn) zone [class [view]]\n\
110 1.1.1.5 christos Mark the DS record for the KSK of the given zone as seen\n\
111 1.1.1.5 christos in the parent. If the zone has multiple KSKs, select a\n\
112 1.1.1.5 christos specific key by providing the keytag with -key id and\n\
113 1.1.1.5 christos optionally the key's algorithm with -alg algorithm.\n\
114 1.1.1.5 christos Requires the zone to have a dnssec-policy.\n\
115 1.1.1.5 christos dnssec -rollover -key id [-alg algorithm] [-when time] zone [class [view]]\n\
116 1.1.1.5 christos Rollover key with id of the given zone. Requires the zone\n\
117 1.1.1.5 christos to have a dnssec-policy.\n\
118 1.1.1.4 christos dnssec -status zone [class [view]]\n\
119 1.1.1.4 christos Show the DNSSEC signing state for the specified zone.\n\
120 1.1.1.4 christos Requires the zone to have a dnssec-policy.\n\
121 1.1 christos dnstap -reopen\n\
122 1.1 christos Close, truncate and re-open the DNSTAP output file.\n\
123 1.1 christos dnstap -roll count\n\
124 1.1 christos Close, rename and re-open the DNSTAP output file(s).\n\
125 1.1.1.5 christos dumpdb [-all|-cache|-zones|-adb|-bad|-expired|-fail] [view ...]\n\
126 1.1 christos Dump cache(s) to the dump file (named_dump.db).\n\
127 1.1 christos flush Flushes all of the server's caches.\n\
128 1.1 christos flush [view] Flushes the server's cache for a view.\n\
129 1.1 christos flushname name [view]\n\
130 1.1 christos Flush the given name from the server's cache(s)\n\
131 1.1 christos flushtree name [view]\n\
132 1.1 christos Flush all names under the given name from the server's cache(s)\n\
133 1.1 christos freeze Suspend updates to all dynamic zones.\n\
134 1.1 christos freeze zone [class [view]]\n\
135 1.1 christos Suspend updates to a dynamic zone.\n\
136 1.1 christos halt Stop the server without saving pending updates.\n\
137 1.1 christos halt -p Stop the server without saving pending updates reporting\n\
138 1.1 christos process id.\n\
139 1.1 christos loadkeys zone [class [view]]\n\
140 1.1 christos Update keys without signing immediately.\n\
141 1.1 christos managed-keys refresh [class [view]]\n\
142 1.1 christos Check trust anchor for RFC 5011 key changes\n\
143 1.1 christos managed-keys status [class [view]]\n\
144 1.1 christos Display RFC 5011 managed keys information\n\
145 1.1 christos managed-keys sync [class [view]]\n\
146 1.1 christos Write RFC 5011 managed keys to disk\n\
147 1.1 christos modzone zone [class [view]] { zone-options }\n\
148 1.1 christos Modify a zone's configuration.\n\
149 1.1 christos Requires allow-new-zones option.\n\
150 1.1 christos notify zone [class [view]]\n\
151 1.1 christos Resend NOTIFY messages for the zone.\n\
152 1.1 christos notrace Set debugging level to 0.\n\
153 1.1 christos nta -dump\n\
154 1.1 christos List all negative trust anchors.\n\
155 1.1 christos nta [-lifetime duration] [-force] domain [view]\n\
156 1.1 christos Set a negative trust anchor, disabling DNSSEC validation\n\
157 1.1 christos for the given domain.\n\
158 1.1 christos Using -lifetime specifies the duration of the NTA, up\n\
159 1.1 christos to one week.\n\
160 1.1 christos Using -force prevents the NTA from expiring before its\n\
161 1.1 christos full lifetime, even if the domain can validate sooner.\n\
162 1.1 christos nta -remove domain [view]\n\
163 1.1 christos Remove a negative trust anchor, re-enabling validation\n\
164 1.1 christos for the given domain.\n\
165 1.1 christos querylog [ on | off ]\n\
166 1.1 christos Enable / disable query logging.\n\
167 1.1 christos reconfig Reload configuration file and new zones only.\n\
168 1.1 christos recursing Dump the queries that are currently recursing (named.recursing)\n\
169 1.1 christos refresh zone [class [view]]\n\
170 1.1 christos Schedule immediate maintenance for a zone.\n\
171 1.1 christos reload Reload configuration file and zones.\n\
172 1.1 christos reload zone [class [view]]\n\
173 1.1 christos Reload a single zone.\n\
174 1.1 christos retransfer zone [class [view]]\n\
175 1.1 christos Retransfer a single zone without checking serial number.\n\
176 1.1 christos scan Scan available network interfaces for changes.\n\
177 1.1 christos secroots [view ...]\n\
178 1.1 christos Write security roots to the secroots file.\n\
179 1.1.1.3 christos serve-stale [ on | off | reset | status ] [class [view]]\n\
180 1.1 christos Control whether stale answers are returned\n\
181 1.1 christos showzone zone [class [view]]\n\
182 1.1 christos Print a zone's configuration.\n\
183 1.1 christos sign zone [class [view]]\n\
184 1.1 christos Update zone keys, and sign as needed.\n\
185 1.1 christos signing -clear all zone [class [view]]\n\
186 1.1 christos Remove the private records for all keys that have\n\
187 1.1 christos finished signing the given zone.\n\
188 1.1 christos signing -clear <keyid>/<algorithm> zone [class [view]]\n\
189 1.1 christos Remove the private record that indicating the given key\n\
190 1.1 christos has finished signing the given zone.\n\
191 1.1 christos signing -list zone [class [view]]\n\
192 1.1 christos List the private records showing the state of DNSSEC\n\
193 1.1 christos signing in the given zone.\n\
194 1.1 christos signing -nsec3param hash flags iterations salt zone [class [view]]\n\
195 1.1 christos Add NSEC3 chain to zone if already signed.\n\
196 1.1 christos Prime zone with NSEC3 chain if not yet signed.\n\
197 1.1 christos signing -nsec3param none zone [class [view]]\n\
198 1.1 christos Remove NSEC3 chains from zone.\n\
199 1.1 christos signing -serial <value> zone [class [view]]\n\
200 1.1 christos Set the zones's serial to <value>.\n\
201 1.1 christos stats Write server statistics to the statistics file.\n\
202 1.1 christos status Display status of the server.\n\
203 1.1 christos stop Save pending updates to master files and stop the server.\n\
204 1.1 christos stop -p Save pending updates to master files and stop the server\n\
205 1.1 christos reporting process id.\n\
206 1.1 christos sync [-clean] Dump changes to all dynamic zones to disk, and optionally\n\
207 1.1 christos remove their journal files.\n\
208 1.1 christos sync [-clean] zone [class [view]]\n\
209 1.1 christos Dump a single zone's changes to disk, and optionally\n\
210 1.1 christos remove its journal file.\n\
211 1.1 christos tcp-timeouts Display the tcp-*-timeout option values\n\
212 1.1 christos tcp-timeouts initial idle keepalive advertised\n\
213 1.1 christos Update the tcp-*-timeout option values\n\
214 1.1 christos thaw Enable updates to all dynamic zones and reload them.\n\
215 1.1 christos thaw zone [class [view]]\n\
216 1.1 christos Enable updates to a frozen dynamic zone and reload it.\n\
217 1.1 christos trace Increment debugging level by one.\n\
218 1.1 christos trace level Change the debugging level.\n\
219 1.1 christos tsig-delete keyname [view]\n\
220 1.1 christos Delete a TKEY-negotiated TSIG key.\n\
221 1.1 christos tsig-list List all currently active TSIG keys, including both statically\n\
222 1.1 christos configured and TKEY-negotiated keys.\n\
223 1.1.1.3 christos validation [ on | off | status ] [view]\n\
224 1.1 christos Enable / disable DNSSEC validation.\n\
225 1.1 christos zonestatus zone [class [view]]\n\
226 1.1 christos Display the current status of a zone.\n\
227 1.1 christos \n\
228 1.1 christos Version: %s\n",
229 1.1 christos progname, version);
230 1.1 christos
231 1.1 christos exit(status);
232 1.1 christos }
233 1.1 christos
234 1.1 christos #define CMDLINE_FLAGS "46b:c:hk:Mmp:qrs:Vy:"
235 1.1 christos
236 1.1 christos static void
237 1.1 christos preparse_args(int argc, char **argv) {
238 1.1.1.2 christos bool ipv4only = false, ipv6only = false;
239 1.1 christos int ch;
240 1.1 christos
241 1.1 christos while ((ch = isc_commandline_parse(argc, argv, CMDLINE_FLAGS)) != -1) {
242 1.1 christos switch (ch) {
243 1.1 christos case '4':
244 1.1 christos if (ipv6only) {
245 1.1 christos fatal("only one of -4 and -6 allowed");
246 1.1 christos }
247 1.1.1.2 christos ipv4only = true;
248 1.1 christos break;
249 1.1 christos case '6':
250 1.1 christos if (ipv4only) {
251 1.1 christos fatal("only one of -4 and -6 allowed");
252 1.1 christos }
253 1.1.1.2 christos ipv6only = true;
254 1.1 christos break;
255 1.1 christos default:
256 1.1 christos break;
257 1.1 christos }
258 1.1 christos }
259 1.1 christos
260 1.1.1.2 christos isc_commandline_reset = true;
261 1.1 christos isc_commandline_index = 1;
262 1.1 christos }
263 1.1 christos
264 1.1 christos static void
265 1.1 christos get_addresses(const char *host, in_port_t port) {
266 1.1 christos isc_result_t result;
267 1.1 christos int found = 0, count;
268 1.1 christos
269 1.1.1.3 christos REQUIRE(host != NULL);
270 1.1.1.3 christos
271 1.1 christos if (*host == '/') {
272 1.1 christos result = isc_sockaddr_frompath(&serveraddrs[nserveraddrs],
273 1.1 christos host);
274 1.1.1.3 christos if (result == ISC_R_SUCCESS) {
275 1.1 christos nserveraddrs++;
276 1.1.1.3 christos }
277 1.1 christos } else {
278 1.1 christos count = SERVERADDRS - nserveraddrs;
279 1.1.1.3 christos result = bind9_getaddresses(
280 1.1.1.3 christos host, port, &serveraddrs[nserveraddrs], count, &found);
281 1.1 christos nserveraddrs += found;
282 1.1 christos }
283 1.1.1.3 christos if (result != ISC_R_SUCCESS) {
284 1.1.1.3 christos fatal("couldn't get address for '%s': %s", host,
285 1.1.1.3 christos isc_result_totext(result));
286 1.1.1.3 christos }
287 1.1 christos INSIST(nserveraddrs > 0);
288 1.1 christos }
289 1.1 christos
290 1.1 christos static void
291 1.1 christos rndc_senddone(isc_task_t *task, isc_event_t *event) {
292 1.1 christos isc_socketevent_t *sevent = (isc_socketevent_t *)event;
293 1.1 christos
294 1.1 christos UNUSED(task);
295 1.1 christos
296 1.1.1.3 christos if (sevent->result != ISC_R_SUCCESS) {
297 1.1 christos fatal("send failed: %s", isc_result_totext(sevent->result));
298 1.1.1.3 christos }
299 1.1 christos isc_event_free(&event);
300 1.1.1.3 christos if (atomic_fetch_sub_release(&sends, 1) == 1 &&
301 1.1.1.3 christos atomic_load_acquire(&recvs) == 0)
302 1.1.1.3 christos {
303 1.1 christos isc_socket_detach(&sock);
304 1.1 christos isc_task_shutdown(task);
305 1.1.1.3 christos isc_app_shutdown();
306 1.1 christos }
307 1.1 christos }
308 1.1 christos
309 1.1 christos static void
310 1.1 christos rndc_recvdone(isc_task_t *task, isc_event_t *event) {
311 1.1 christos isccc_sexpr_t *response = NULL;
312 1.1 christos isccc_sexpr_t *data;
313 1.1 christos isccc_region_t source;
314 1.1 christos char *errormsg = NULL;
315 1.1 christos char *textmsg = NULL;
316 1.1 christos isc_result_t result;
317 1.1 christos
318 1.1.1.3 christos atomic_fetch_sub_release(&recvs, 1);
319 1.1 christos
320 1.1.1.3 christos if (ccmsg.result == ISC_R_EOF) {
321 1.1 christos fatal("connection to remote host closed\n"
322 1.1 christos "This may indicate that\n"
323 1.1 christos "* the remote server is using an older version of"
324 1.1 christos " the command protocol,\n"
325 1.1 christos "* this host is not authorized to connect,\n"
326 1.1 christos "* the clocks are not synchronized, or\n"
327 1.1 christos "* the key is invalid.");
328 1.1.1.3 christos }
329 1.1 christos
330 1.1.1.3 christos if (ccmsg.result != ISC_R_SUCCESS) {
331 1.1 christos fatal("recv failed: %s", isc_result_totext(ccmsg.result));
332 1.1.1.3 christos }
333 1.1 christos
334 1.1 christos source.rstart = isc_buffer_base(&ccmsg.buffer);
335 1.1 christos source.rend = isc_buffer_used(&ccmsg.buffer);
336 1.1 christos
337 1.1 christos DO("parse message",
338 1.1 christos isccc_cc_fromwire(&source, &response, algorithm, &secret));
339 1.1 christos
340 1.1 christos data = isccc_alist_lookup(response, "_data");
341 1.1.1.3 christos if (!isccc_alist_alistp(data)) {
342 1.1 christos fatal("bad or missing data section in response");
343 1.1.1.3 christos }
344 1.1 christos result = isccc_cc_lookupstring(data, "err", &errormsg);
345 1.1 christos if (result == ISC_R_SUCCESS) {
346 1.1.1.2 christos failed = true;
347 1.1.1.3 christos fprintf(stderr, "%s: '%s' failed: %s\n", progname, command,
348 1.1.1.3 christos errormsg);
349 1.1.1.3 christos } else if (result != ISC_R_NOTFOUND) {
350 1.1.1.3 christos fprintf(stderr, "%s: parsing response failed: %s\n", progname,
351 1.1.1.3 christos isc_result_totext(result));
352 1.1 christos }
353 1.1 christos
354 1.1 christos result = isccc_cc_lookupstring(data, "text", &textmsg);
355 1.1 christos if (result == ISC_R_SUCCESS) {
356 1.1.1.3 christos if ((!quiet || failed) && strlen(textmsg) != 0U) {
357 1.1 christos fprintf(failed ? stderr : stdout, "%s\n", textmsg);
358 1.1.1.3 christos }
359 1.1.1.3 christos } else if (result != ISC_R_NOTFOUND) {
360 1.1.1.3 christos fprintf(stderr, "%s: parsing response failed: %s\n", progname,
361 1.1.1.3 christos isc_result_totext(result));
362 1.1.1.3 christos }
363 1.1 christos
364 1.1 christos if (showresult) {
365 1.1 christos isc_result_t eresult;
366 1.1 christos
367 1.1 christos result = isccc_cc_lookupuint32(data, "result", &eresult);
368 1.1.1.3 christos if (result == ISC_R_SUCCESS) {
369 1.1 christos printf("%s %u\n", isc_result_toid(eresult), eresult);
370 1.1.1.3 christos } else {
371 1.1 christos printf("NONE -1\n");
372 1.1.1.3 christos }
373 1.1 christos }
374 1.1 christos
375 1.1 christos isc_event_free(&event);
376 1.1 christos isccc_sexpr_free(&response);
377 1.1.1.3 christos if (atomic_load_acquire(&sends) == 0 &&
378 1.1.1.3 christos atomic_load_acquire(&recvs) == 0) {
379 1.1 christos isc_socket_detach(&sock);
380 1.1 christos isc_task_shutdown(task);
381 1.1.1.3 christos isc_app_shutdown();
382 1.1 christos }
383 1.1 christos }
384 1.1 christos
385 1.1 christos static void
386 1.1 christos rndc_recvnonce(isc_task_t *task, isc_event_t *event) {
387 1.1 christos isccc_sexpr_t *response = NULL;
388 1.1 christos isccc_sexpr_t *_ctrl;
389 1.1 christos isccc_region_t source;
390 1.1 christos isc_result_t result;
391 1.1.1.2 christos uint32_t nonce;
392 1.1 christos isccc_sexpr_t *request = NULL;
393 1.1 christos isccc_time_t now;
394 1.1 christos isc_region_t r;
395 1.1 christos isccc_sexpr_t *data;
396 1.1 christos isc_buffer_t b;
397 1.1 christos
398 1.1.1.3 christos atomic_fetch_sub_release(&recvs, 1);
399 1.1 christos
400 1.1.1.3 christos if (ccmsg.result == ISC_R_EOF) {
401 1.1 christos fatal("connection to remote host closed\n"
402 1.1 christos "This may indicate that\n"
403 1.1 christos "* the remote server is using an older version of"
404 1.1 christos " the command protocol,\n"
405 1.1 christos "* this host is not authorized to connect,\n"
406 1.1 christos "* the clocks are not synchronized,\n"
407 1.1 christos "* the key signing algorithm is incorrect, or\n"
408 1.1 christos "* the key is invalid.");
409 1.1.1.3 christos }
410 1.1 christos
411 1.1.1.3 christos if (ccmsg.result != ISC_R_SUCCESS) {
412 1.1 christos fatal("recv failed: %s", isc_result_totext(ccmsg.result));
413 1.1.1.3 christos }
414 1.1 christos
415 1.1 christos source.rstart = isc_buffer_base(&ccmsg.buffer);
416 1.1 christos source.rend = isc_buffer_used(&ccmsg.buffer);
417 1.1 christos
418 1.1 christos DO("parse message",
419 1.1 christos isccc_cc_fromwire(&source, &response, algorithm, &secret));
420 1.1 christos
421 1.1 christos _ctrl = isccc_alist_lookup(response, "_ctrl");
422 1.1.1.3 christos if (!isccc_alist_alistp(_ctrl)) {
423 1.1 christos fatal("bad or missing ctrl section in response");
424 1.1.1.3 christos }
425 1.1 christos nonce = 0;
426 1.1.1.3 christos if (isccc_cc_lookupuint32(_ctrl, "_nonce", &nonce) != ISC_R_SUCCESS) {
427 1.1 christos nonce = 0;
428 1.1.1.3 christos }
429 1.1 christos
430 1.1 christos isc_stdtime_get(&now);
431 1.1 christos
432 1.1 christos DO("create message", isccc_cc_createmessage(1, NULL, NULL, ++serial,
433 1.1 christos now, now + 60, &request));
434 1.1 christos data = isccc_alist_lookup(request, "_data");
435 1.1.1.3 christos if (data == NULL) {
436 1.1 christos fatal("_data section missing");
437 1.1.1.3 christos }
438 1.1.1.3 christos if (isccc_cc_definestring(data, "type", args) == NULL) {
439 1.1 christos fatal("out of memory");
440 1.1.1.3 christos }
441 1.1 christos if (nonce != 0) {
442 1.1 christos _ctrl = isccc_alist_lookup(request, "_ctrl");
443 1.1.1.3 christos if (_ctrl == NULL) {
444 1.1 christos fatal("_ctrl section missing");
445 1.1.1.3 christos }
446 1.1.1.3 christos if (isccc_cc_defineuint32(_ctrl, "_nonce", nonce) == NULL) {
447 1.1 christos fatal("out of memory");
448 1.1.1.3 christos }
449 1.1 christos }
450 1.1 christos
451 1.1 christos isc_buffer_clear(databuf);
452 1.1 christos /* Skip the length field (4 bytes) */
453 1.1 christos isc_buffer_add(databuf, 4);
454 1.1 christos
455 1.1 christos DO("render message",
456 1.1 christos isccc_cc_towire(request, &databuf, algorithm, &secret));
457 1.1 christos
458 1.1 christos isc_buffer_init(&b, databuf->base, 4);
459 1.1 christos isc_buffer_putuint32(&b, databuf->used - 4);
460 1.1 christos
461 1.1 christos r.base = databuf->base;
462 1.1 christos r.length = databuf->used;
463 1.1 christos
464 1.1 christos isccc_ccmsg_cancelread(&ccmsg);
465 1.1.1.3 christos DO("schedule recv",
466 1.1.1.3 christos isccc_ccmsg_readmessage(&ccmsg, task, rndc_recvdone, NULL));
467 1.1.1.3 christos atomic_fetch_add_relaxed(&recvs, 1);
468 1.1.1.3 christos DO("send message",
469 1.1.1.3 christos isc_socket_send(sock, &r, task, rndc_senddone, NULL));
470 1.1.1.3 christos atomic_fetch_add_relaxed(&sends, 1);
471 1.1 christos
472 1.1 christos isc_event_free(&event);
473 1.1 christos isccc_sexpr_free(&response);
474 1.1 christos isccc_sexpr_free(&request);
475 1.1 christos return;
476 1.1 christos }
477 1.1 christos
478 1.1 christos static void
479 1.1 christos rndc_connected(isc_task_t *task, isc_event_t *event) {
480 1.1 christos char socktext[ISC_SOCKADDR_FORMATSIZE];
481 1.1 christos isc_socketevent_t *sevent = (isc_socketevent_t *)event;
482 1.1 christos isccc_sexpr_t *request = NULL;
483 1.1 christos isccc_sexpr_t *data;
484 1.1 christos isccc_time_t now;
485 1.1 christos isc_region_t r;
486 1.1 christos isc_buffer_t b;
487 1.1 christos isc_result_t result;
488 1.1 christos
489 1.1.1.3 christos atomic_fetch_sub_release(&connects, 1);
490 1.1 christos
491 1.1 christos if (sevent->result != ISC_R_SUCCESS) {
492 1.1 christos isc_sockaddr_format(&serveraddrs[currentaddr], socktext,
493 1.1 christos sizeof(socktext));
494 1.1 christos if (sevent->result != ISC_R_CANCELED &&
495 1.1.1.3 christos ++currentaddr < nserveraddrs) {
496 1.1 christos notify("connection failed: %s: %s", socktext,
497 1.1 christos isc_result_totext(sevent->result));
498 1.1 christos isc_socket_detach(&sock);
499 1.1 christos isc_event_free(&event);
500 1.1 christos rndc_startconnect(&serveraddrs[currentaddr], task);
501 1.1 christos return;
502 1.1.1.3 christos } else {
503 1.1 christos fatal("connect failed: %s: %s", socktext,
504 1.1 christos isc_result_totext(sevent->result));
505 1.1.1.3 christos }
506 1.1 christos }
507 1.1 christos
508 1.1 christos isc_stdtime_get(&now);
509 1.1 christos DO("create message", isccc_cc_createmessage(1, NULL, NULL, ++serial,
510 1.1 christos now, now + 60, &request));
511 1.1 christos data = isccc_alist_lookup(request, "_data");
512 1.1.1.3 christos if (data == NULL) {
513 1.1 christos fatal("_data section missing");
514 1.1.1.3 christos }
515 1.1.1.3 christos if (isccc_cc_definestring(data, "type", "null") == NULL) {
516 1.1 christos fatal("out of memory");
517 1.1.1.3 christos }
518 1.1 christos
519 1.1 christos isc_buffer_clear(databuf);
520 1.1 christos /* Skip the length field (4 bytes) */
521 1.1 christos isc_buffer_add(databuf, 4);
522 1.1 christos
523 1.1 christos DO("render message",
524 1.1 christos isccc_cc_towire(request, &databuf, algorithm, &secret));
525 1.1 christos
526 1.1 christos isc_buffer_init(&b, databuf->base, 4);
527 1.1 christos isc_buffer_putuint32(&b, databuf->used - 4);
528 1.1 christos
529 1.1 christos r.base = databuf->base;
530 1.1 christos r.length = databuf->used;
531 1.1 christos
532 1.1 christos isccc_ccmsg_init(rndc_mctx, sock, &ccmsg);
533 1.1 christos isccc_ccmsg_setmaxsize(&ccmsg, 1024 * 1024);
534 1.1 christos
535 1.1.1.3 christos DO("schedule recv",
536 1.1.1.3 christos isccc_ccmsg_readmessage(&ccmsg, task, rndc_recvnonce, NULL));
537 1.1.1.3 christos atomic_fetch_add_relaxed(&recvs, 1);
538 1.1.1.3 christos DO("send message",
539 1.1.1.3 christos isc_socket_send(sock, &r, task, rndc_senddone, NULL));
540 1.1.1.3 christos atomic_fetch_add_relaxed(&sends, 1);
541 1.1 christos isc_event_free(&event);
542 1.1 christos isccc_sexpr_free(&request);
543 1.1 christos }
544 1.1 christos
545 1.1 christos static void
546 1.1 christos rndc_startconnect(isc_sockaddr_t *addr, isc_task_t *task) {
547 1.1 christos isc_result_t result;
548 1.1 christos int pf;
549 1.1 christos isc_sockettype_t type;
550 1.1 christos
551 1.1 christos char socktext[ISC_SOCKADDR_FORMATSIZE];
552 1.1 christos
553 1.1 christos isc_sockaddr_format(addr, socktext, sizeof(socktext));
554 1.1 christos
555 1.1 christos notify("using server %s (%s)", servername, socktext);
556 1.1 christos
557 1.1 christos pf = isc_sockaddr_pf(addr);
558 1.1.1.3 christos if (pf == AF_INET || pf == AF_INET6) {
559 1.1 christos type = isc_sockettype_tcp;
560 1.1.1.3 christos } else {
561 1.1 christos type = isc_sockettype_unix;
562 1.1.1.3 christos }
563 1.1 christos DO("create socket", isc_socket_create(socketmgr, pf, type, &sock));
564 1.1 christos switch (isc_sockaddr_pf(addr)) {
565 1.1 christos case AF_INET:
566 1.1 christos DO("bind socket", isc_socket_bind(sock, &local4, 0));
567 1.1 christos break;
568 1.1 christos case AF_INET6:
569 1.1 christos DO("bind socket", isc_socket_bind(sock, &local6, 0));
570 1.1 christos break;
571 1.1 christos default:
572 1.1 christos break;
573 1.1 christos }
574 1.1.1.3 christos DO("connect",
575 1.1.1.3 christos isc_socket_connect(sock, addr, task, rndc_connected, NULL));
576 1.1.1.3 christos atomic_fetch_add_relaxed(&connects, 1);
577 1.1 christos }
578 1.1 christos
579 1.1 christos static void
580 1.1 christos rndc_start(isc_task_t *task, isc_event_t *event) {
581 1.1 christos isc_event_free(&event);
582 1.1 christos
583 1.1 christos currentaddr = 0;
584 1.1 christos rndc_startconnect(&serveraddrs[currentaddr], task);
585 1.1 christos }
586 1.1 christos
587 1.1 christos static void
588 1.1 christos parse_config(isc_mem_t *mctx, isc_log_t *log, const char *keyname,
589 1.1.1.3 christos cfg_parser_t **pctxp, cfg_obj_t **configp) {
590 1.1 christos isc_result_t result;
591 1.1 christos const char *conffile = admin_conffile;
592 1.1 christos const cfg_obj_t *addresses = NULL;
593 1.1 christos const cfg_obj_t *defkey = NULL;
594 1.1 christos const cfg_obj_t *options = NULL;
595 1.1 christos const cfg_obj_t *servers = NULL;
596 1.1 christos const cfg_obj_t *server = NULL;
597 1.1 christos const cfg_obj_t *keys = NULL;
598 1.1 christos const cfg_obj_t *key = NULL;
599 1.1 christos const cfg_obj_t *defport = NULL;
600 1.1 christos const cfg_obj_t *secretobj = NULL;
601 1.1 christos const cfg_obj_t *algorithmobj = NULL;
602 1.1 christos cfg_obj_t *config = NULL;
603 1.1 christos const cfg_obj_t *address = NULL;
604 1.1 christos const cfg_listelt_t *elt;
605 1.1 christos const char *secretstr;
606 1.1 christos const char *algorithmstr;
607 1.1 christos static char secretarray[1024];
608 1.1 christos const cfg_type_t *conftype = &cfg_type_rndcconf;
609 1.1.1.2 christos bool key_only = false;
610 1.1 christos const cfg_listelt_t *element;
611 1.1 christos
612 1.1.1.3 christos if (!isc_file_exists(conffile)) {
613 1.1 christos conffile = admin_keyfile;
614 1.1 christos conftype = &cfg_type_rndckey;
615 1.1 christos
616 1.1.1.3 christos if (c_flag) {
617 1.1 christos fatal("%s does not exist", admin_conffile);
618 1.1.1.3 christos }
619 1.1 christos
620 1.1.1.3 christos if (!isc_file_exists(conffile)) {
621 1.1.1.3 christos fatal("neither %s nor %s was found", admin_conffile,
622 1.1.1.3 christos admin_keyfile);
623 1.1.1.3 christos }
624 1.1.1.2 christos key_only = true;
625 1.1.1.3 christos } else if (!c_flag && isc_file_exists(admin_keyfile)) {
626 1.1.1.3 christos fprintf(stderr,
627 1.1.1.3 christos "WARNING: key file (%s) exists, but using "
628 1.1 christos "default configuration file (%s)\n",
629 1.1 christos admin_keyfile, admin_conffile);
630 1.1 christos }
631 1.1 christos
632 1.1 christos DO("create parser", cfg_parser_create(mctx, log, pctxp));
633 1.1 christos
634 1.1 christos /*
635 1.1 christos * The parser will output its own errors, so DO() is not used.
636 1.1 christos */
637 1.1 christos result = cfg_parse_file(*pctxp, conffile, conftype, &config);
638 1.1.1.3 christos if (result != ISC_R_SUCCESS) {
639 1.1 christos fatal("could not load rndc configuration");
640 1.1.1.3 christos }
641 1.1 christos
642 1.1.1.3 christos if (!key_only) {
643 1.1 christos (void)cfg_map_get(config, "options", &options);
644 1.1.1.3 christos }
645 1.1 christos
646 1.1.1.3 christos if (key_only && servername == NULL) {
647 1.1 christos servername = "127.0.0.1";
648 1.1.1.3 christos } else if (servername == NULL && options != NULL) {
649 1.1 christos const cfg_obj_t *defserverobj = NULL;
650 1.1 christos (void)cfg_map_get(options, "default-server", &defserverobj);
651 1.1.1.3 christos if (defserverobj != NULL) {
652 1.1 christos servername = cfg_obj_asstring(defserverobj);
653 1.1.1.3 christos }
654 1.1 christos }
655 1.1 christos
656 1.1.1.3 christos if (servername == NULL) {
657 1.1 christos fatal("no server specified and no default");
658 1.1.1.3 christos }
659 1.1 christos
660 1.1 christos if (!key_only) {
661 1.1 christos (void)cfg_map_get(config, "server", &servers);
662 1.1 christos if (servers != NULL) {
663 1.1.1.3 christos for (elt = cfg_list_first(servers); elt != NULL;
664 1.1.1.3 christos elt = cfg_list_next(elt)) {
665 1.1 christos const char *name;
666 1.1 christos server = cfg_listelt_value(elt);
667 1.1.1.3 christos name = cfg_obj_asstring(
668 1.1.1.3 christos cfg_map_getname(server));
669 1.1.1.3 christos if (strcasecmp(name, servername) == 0) {
670 1.1 christos break;
671 1.1.1.3 christos }
672 1.1 christos server = NULL;
673 1.1 christos }
674 1.1 christos }
675 1.1 christos }
676 1.1 christos
677 1.1 christos /*
678 1.1 christos * Look for the name of the key to use.
679 1.1 christos */
680 1.1.1.3 christos if (keyname != NULL) {
681 1.1.1.3 christos /* Was set on command line, do nothing. */
682 1.1.1.3 christos } else if (server != NULL) {
683 1.1 christos DO("get key for server", cfg_map_get(server, "key", &defkey));
684 1.1 christos keyname = cfg_obj_asstring(defkey);
685 1.1 christos } else if (options != NULL) {
686 1.1.1.3 christos DO("get default key",
687 1.1.1.3 christos cfg_map_get(options, "default-key", &defkey));
688 1.1 christos keyname = cfg_obj_asstring(defkey);
689 1.1.1.3 christos } else if (!key_only) {
690 1.1 christos fatal("no key for server and no default");
691 1.1.1.3 christos }
692 1.1 christos
693 1.1 christos /*
694 1.1 christos * Get the key's definition.
695 1.1 christos */
696 1.1.1.3 christos if (key_only) {
697 1.1 christos DO("get key", cfg_map_get(config, "key", &key));
698 1.1.1.3 christos } else {
699 1.1 christos DO("get config key list", cfg_map_get(config, "key", &keys));
700 1.1.1.3 christos for (elt = cfg_list_first(keys); elt != NULL;
701 1.1.1.3 christos elt = cfg_list_next(elt)) {
702 1.1 christos key = cfg_listelt_value(elt);
703 1.1 christos if (strcasecmp(cfg_obj_asstring(cfg_map_getname(key)),
704 1.1.1.3 christos keyname) == 0) {
705 1.1 christos break;
706 1.1.1.3 christos }
707 1.1 christos }
708 1.1.1.3 christos if (elt == NULL) {
709 1.1 christos fatal("no key definition for name %s", keyname);
710 1.1.1.3 christos }
711 1.1 christos }
712 1.1 christos (void)cfg_map_get(key, "secret", &secretobj);
713 1.1 christos (void)cfg_map_get(key, "algorithm", &algorithmobj);
714 1.1.1.3 christos if (secretobj == NULL || algorithmobj == NULL) {
715 1.1 christos fatal("key must have algorithm and secret");
716 1.1.1.3 christos }
717 1.1 christos
718 1.1 christos secretstr = cfg_obj_asstring(secretobj);
719 1.1 christos algorithmstr = cfg_obj_asstring(algorithmobj);
720 1.1 christos
721 1.1.1.2 christos if (strcasecmp(algorithmstr, "hmac-md5") == 0) {
722 1.1 christos algorithm = ISCCC_ALG_HMACMD5;
723 1.1.1.2 christos } else if (strcasecmp(algorithmstr, "hmac-sha1") == 0) {
724 1.1 christos algorithm = ISCCC_ALG_HMACSHA1;
725 1.1.1.2 christos } else if (strcasecmp(algorithmstr, "hmac-sha224") == 0) {
726 1.1 christos algorithm = ISCCC_ALG_HMACSHA224;
727 1.1.1.2 christos } else if (strcasecmp(algorithmstr, "hmac-sha256") == 0) {
728 1.1 christos algorithm = ISCCC_ALG_HMACSHA256;
729 1.1.1.2 christos } else if (strcasecmp(algorithmstr, "hmac-sha384") == 0) {
730 1.1 christos algorithm = ISCCC_ALG_HMACSHA384;
731 1.1.1.2 christos } else if (strcasecmp(algorithmstr, "hmac-sha512") == 0) {
732 1.1 christos algorithm = ISCCC_ALG_HMACSHA512;
733 1.1.1.2 christos } else {
734 1.1 christos fatal("unsupported algorithm: %s", algorithmstr);
735 1.1.1.2 christos }
736 1.1 christos
737 1.1 christos secret.rstart = (unsigned char *)secretarray;
738 1.1 christos secret.rend = (unsigned char *)secretarray + sizeof(secretarray);
739 1.1 christos DO("decode base64 secret", isccc_base64_decode(secretstr, &secret));
740 1.1 christos secret.rend = secret.rstart;
741 1.1 christos secret.rstart = (unsigned char *)secretarray;
742 1.1 christos
743 1.1 christos /*
744 1.1 christos * Find the port to connect to.
745 1.1 christos */
746 1.1.1.3 christos if (remoteport != 0) {
747 1.1.1.3 christos /* Was set on command line, do nothing. */
748 1.1.1.3 christos } else {
749 1.1.1.3 christos if (server != NULL) {
750 1.1 christos (void)cfg_map_get(server, "port", &defport);
751 1.1.1.3 christos }
752 1.1.1.3 christos if (defport == NULL && options != NULL) {
753 1.1 christos (void)cfg_map_get(options, "default-port", &defport);
754 1.1.1.3 christos }
755 1.1 christos }
756 1.1 christos if (defport != NULL) {
757 1.1 christos remoteport = cfg_obj_asuint32(defport);
758 1.1.1.3 christos if (remoteport > 65535 || remoteport == 0) {
759 1.1 christos fatal("port %u out of range", remoteport);
760 1.1.1.3 christos }
761 1.1.1.3 christos } else if (remoteport == 0) {
762 1.1 christos remoteport = NS_CONTROL_PORT;
763 1.1.1.3 christos }
764 1.1 christos
765 1.1.1.3 christos if (server != NULL) {
766 1.1 christos result = cfg_map_get(server, "addresses", &addresses);
767 1.1.1.3 christos } else {
768 1.1 christos result = ISC_R_NOTFOUND;
769 1.1.1.3 christos }
770 1.1 christos if (result == ISC_R_SUCCESS) {
771 1.1.1.3 christos for (element = cfg_list_first(addresses); element != NULL;
772 1.1 christos element = cfg_list_next(element))
773 1.1 christos {
774 1.1 christos isc_sockaddr_t sa;
775 1.1 christos
776 1.1 christos address = cfg_listelt_value(element);
777 1.1 christos if (!cfg_obj_issockaddr(address)) {
778 1.1 christos unsigned int myport;
779 1.1 christos const char *name;
780 1.1 christos const cfg_obj_t *obj;
781 1.1 christos
782 1.1 christos obj = cfg_tuple_get(address, "name");
783 1.1 christos name = cfg_obj_asstring(obj);
784 1.1 christos obj = cfg_tuple_get(address, "port");
785 1.1 christos if (cfg_obj_isuint32(obj)) {
786 1.1 christos myport = cfg_obj_asuint32(obj);
787 1.1.1.3 christos if (myport > UINT16_MAX || myport == 0)
788 1.1.1.3 christos {
789 1.1 christos fatal("port %u out of range",
790 1.1 christos myport);
791 1.1.1.3 christos }
792 1.1.1.3 christos } else {
793 1.1 christos myport = remoteport;
794 1.1.1.3 christos }
795 1.1.1.3 christos if (nserveraddrs < SERVERADDRS) {
796 1.1.1.3 christos get_addresses(name, (in_port_t)myport);
797 1.1.1.3 christos } else {
798 1.1.1.3 christos fprintf(stderr,
799 1.1.1.3 christos "too many address: "
800 1.1.1.3 christos "%s: dropped\n",
801 1.1.1.3 christos name);
802 1.1.1.3 christos }
803 1.1 christos continue;
804 1.1 christos }
805 1.1 christos sa = *cfg_obj_assockaddr(address);
806 1.1.1.3 christos if (isc_sockaddr_getport(&sa) == 0) {
807 1.1 christos isc_sockaddr_setport(&sa, remoteport);
808 1.1.1.3 christos }
809 1.1.1.3 christos if (nserveraddrs < SERVERADDRS) {
810 1.1 christos serveraddrs[nserveraddrs++] = sa;
811 1.1.1.3 christos } else {
812 1.1 christos char socktext[ISC_SOCKADDR_FORMATSIZE];
813 1.1 christos
814 1.1 christos isc_sockaddr_format(&sa, socktext,
815 1.1 christos sizeof(socktext));
816 1.1 christos fprintf(stderr,
817 1.1 christos "too many address: %s: dropped\n",
818 1.1 christos socktext);
819 1.1 christos }
820 1.1 christos }
821 1.1 christos }
822 1.1 christos
823 1.1 christos if (!local4set && server != NULL) {
824 1.1 christos address = NULL;
825 1.1 christos cfg_map_get(server, "source-address", &address);
826 1.1 christos if (address != NULL) {
827 1.1 christos local4 = *cfg_obj_assockaddr(address);
828 1.1.1.2 christos local4set = true;
829 1.1 christos }
830 1.1 christos }
831 1.1 christos if (!local4set && options != NULL) {
832 1.1 christos address = NULL;
833 1.1 christos cfg_map_get(options, "default-source-address", &address);
834 1.1 christos if (address != NULL) {
835 1.1 christos local4 = *cfg_obj_assockaddr(address);
836 1.1.1.2 christos local4set = true;
837 1.1 christos }
838 1.1 christos }
839 1.1 christos
840 1.1 christos if (!local6set && server != NULL) {
841 1.1 christos address = NULL;
842 1.1 christos cfg_map_get(server, "source-address-v6", &address);
843 1.1 christos if (address != NULL) {
844 1.1 christos local6 = *cfg_obj_assockaddr(address);
845 1.1.1.2 christos local6set = true;
846 1.1 christos }
847 1.1 christos }
848 1.1 christos if (!local6set && options != NULL) {
849 1.1 christos address = NULL;
850 1.1 christos cfg_map_get(options, "default-source-address-v6", &address);
851 1.1 christos if (address != NULL) {
852 1.1 christos local6 = *cfg_obj_assockaddr(address);
853 1.1.1.2 christos local6set = true;
854 1.1 christos }
855 1.1 christos }
856 1.1 christos
857 1.1 christos *configp = config;
858 1.1 christos }
859 1.1 christos
860 1.1 christos int
861 1.1 christos main(int argc, char **argv) {
862 1.1 christos isc_result_t result = ISC_R_SUCCESS;
863 1.1.1.2 christos bool show_final_mem = false;
864 1.1 christos isc_taskmgr_t *taskmgr = NULL;
865 1.1 christos isc_task_t *task = NULL;
866 1.1 christos isc_log_t *log = NULL;
867 1.1 christos isc_logconfig_t *logconfig = NULL;
868 1.1 christos isc_logdestination_t logdest;
869 1.1 christos cfg_parser_t *pctx = NULL;
870 1.1 christos cfg_obj_t *config = NULL;
871 1.1 christos const char *keyname = NULL;
872 1.1 christos struct in_addr in;
873 1.1 christos struct in6_addr in6;
874 1.1 christos char *p;
875 1.1 christos size_t argslen;
876 1.1 christos int ch;
877 1.1 christos int i;
878 1.1 christos
879 1.1 christos result = isc_file_progname(*argv, program, sizeof(program));
880 1.1.1.3 christos if (result != ISC_R_SUCCESS) {
881 1.1 christos memmove(program, "rndc", 5);
882 1.1.1.3 christos }
883 1.1 christos progname = program;
884 1.1 christos
885 1.1 christos admin_conffile = RNDC_CONFFILE;
886 1.1 christos admin_keyfile = RNDC_KEYFILE;
887 1.1 christos
888 1.1 christos isc_sockaddr_any(&local4);
889 1.1 christos isc_sockaddr_any6(&local6);
890 1.1 christos
891 1.1 christos result = isc_app_start();
892 1.1.1.3 christos if (result != ISC_R_SUCCESS) {
893 1.1 christos fatal("isc_app_start() failed: %s", isc_result_totext(result));
894 1.1.1.3 christos }
895 1.1 christos
896 1.1.1.2 christos isc_commandline_errprint = false;
897 1.1 christos
898 1.1 christos preparse_args(argc, argv);
899 1.1 christos
900 1.1 christos while ((ch = isc_commandline_parse(argc, argv, CMDLINE_FLAGS)) != -1) {
901 1.1 christos switch (ch) {
902 1.1 christos case '4':
903 1.1 christos if (isc_net_probeipv4() != ISC_R_SUCCESS) {
904 1.1 christos fatal("can't find IPv4 networking");
905 1.1 christos }
906 1.1 christos isc_net_disableipv6();
907 1.1 christos break;
908 1.1 christos case '6':
909 1.1 christos if (isc_net_probeipv6() != ISC_R_SUCCESS) {
910 1.1 christos fatal("can't find IPv6 networking");
911 1.1 christos }
912 1.1 christos isc_net_disableipv4();
913 1.1 christos break;
914 1.1 christos case 'b':
915 1.1.1.3 christos if (inet_pton(AF_INET, isc_commandline_argument, &in) ==
916 1.1.1.3 christos 1) {
917 1.1 christos isc_sockaddr_fromin(&local4, &in, 0);
918 1.1.1.2 christos local4set = true;
919 1.1 christos } else if (inet_pton(AF_INET6, isc_commandline_argument,
920 1.1 christos &in6) == 1) {
921 1.1 christos isc_sockaddr_fromin6(&local6, &in6, 0);
922 1.1.1.2 christos local6set = true;
923 1.1 christos }
924 1.1 christos break;
925 1.1 christos
926 1.1 christos case 'c':
927 1.1 christos admin_conffile = isc_commandline_argument;
928 1.1.1.2 christos c_flag = true;
929 1.1 christos break;
930 1.1 christos
931 1.1 christos case 'k':
932 1.1 christos admin_keyfile = isc_commandline_argument;
933 1.1 christos break;
934 1.1 christos
935 1.1 christos case 'M':
936 1.1 christos isc_mem_debugging = ISC_MEM_DEBUGTRACE;
937 1.1 christos break;
938 1.1 christos
939 1.1 christos case 'm':
940 1.1.1.2 christos show_final_mem = true;
941 1.1 christos break;
942 1.1 christos
943 1.1 christos case 'p':
944 1.1 christos remoteport = atoi(isc_commandline_argument);
945 1.1.1.3 christos if (remoteport > 65535 || remoteport == 0) {
946 1.1 christos fatal("port '%s' out of range",
947 1.1 christos isc_commandline_argument);
948 1.1.1.3 christos }
949 1.1 christos break;
950 1.1 christos
951 1.1 christos case 'q':
952 1.1.1.2 christos quiet = true;
953 1.1 christos break;
954 1.1 christos
955 1.1 christos case 'r':
956 1.1.1.2 christos showresult = true;
957 1.1 christos break;
958 1.1 christos
959 1.1 christos case 's':
960 1.1 christos servername = isc_commandline_argument;
961 1.1 christos break;
962 1.1 christos
963 1.1 christos case 'V':
964 1.1.1.2 christos verbose = true;
965 1.1 christos break;
966 1.1 christos
967 1.1 christos case 'y':
968 1.1 christos keyname = isc_commandline_argument;
969 1.1 christos break;
970 1.1 christos
971 1.1 christos case '?':
972 1.1 christos if (isc_commandline_option != '?') {
973 1.1 christos fprintf(stderr, "%s: invalid argument -%c\n",
974 1.1 christos program, isc_commandline_option);
975 1.1 christos usage(1);
976 1.1 christos }
977 1.1.1.3 christos /* FALLTHROUGH */
978 1.1 christos case 'h':
979 1.1 christos usage(0);
980 1.1 christos break;
981 1.1 christos default:
982 1.1.1.3 christos fprintf(stderr, "%s: unhandled option -%c\n", program,
983 1.1.1.3 christos isc_commandline_option);
984 1.1 christos exit(1);
985 1.1 christos }
986 1.1 christos }
987 1.1 christos
988 1.1 christos argc -= isc_commandline_index;
989 1.1 christos argv += isc_commandline_index;
990 1.1 christos
991 1.1.1.3 christos if (argc < 1) {
992 1.1 christos usage(1);
993 1.1.1.3 christos }
994 1.1 christos
995 1.1.1.2 christos serial = isc_random32();
996 1.1 christos
997 1.1.1.3 christos isc_mem_create(&rndc_mctx);
998 1.1.1.3 christos DO("create socket manager",
999 1.1.1.3 christos isc_socketmgr_create(rndc_mctx, &socketmgr));
1000 1.1.1.3 christos DO("create task manager",
1001 1.1.1.3 christos isc_taskmgr_create(rndc_mctx, 1, 0, NULL, &taskmgr));
1002 1.1 christos DO("create task", isc_task_create(taskmgr, 0, &task));
1003 1.1 christos
1004 1.1.1.3 christos isc_log_create(rndc_mctx, &log, &logconfig);
1005 1.1 christos isc_log_setcontext(log);
1006 1.1.1.3 christos isc_log_settag(logconfig, progname);
1007 1.1 christos logdest.file.stream = stderr;
1008 1.1 christos logdest.file.name = NULL;
1009 1.1 christos logdest.file.versions = ISC_LOG_ROLLNEVER;
1010 1.1 christos logdest.file.maximum_size = 0;
1011 1.1.1.3 christos isc_log_createchannel(logconfig, "stderr", ISC_LOG_TOFILEDESC,
1012 1.1.1.3 christos ISC_LOG_INFO, &logdest,
1013 1.1.1.3 christos ISC_LOG_PRINTTAG | ISC_LOG_PRINTLEVEL);
1014 1.1.1.3 christos DO("enabling log channel",
1015 1.1.1.3 christos isc_log_usechannel(logconfig, "stderr", NULL, NULL));
1016 1.1 christos
1017 1.1 christos parse_config(rndc_mctx, log, keyname, &pctx, &config);
1018 1.1 christos
1019 1.1 christos isccc_result_register();
1020 1.1 christos
1021 1.1 christos command = *argv;
1022 1.1 christos
1023 1.1.1.3 christos isc_buffer_allocate(rndc_mctx, &databuf, 2048);
1024 1.1 christos
1025 1.1 christos /*
1026 1.1 christos * Convert argc/argv into a space-delimited command string
1027 1.1 christos * similar to what the user might enter in interactive mode
1028 1.1 christos * (if that were implemented).
1029 1.1 christos */
1030 1.1 christos argslen = 0;
1031 1.1.1.3 christos for (i = 0; i < argc; i++) {
1032 1.1 christos argslen += strlen(argv[i]) + 1;
1033 1.1.1.3 christos }
1034 1.1 christos
1035 1.1 christos args = isc_mem_get(rndc_mctx, argslen);
1036 1.1 christos
1037 1.1 christos p = args;
1038 1.1 christos for (i = 0; i < argc; i++) {
1039 1.1 christos size_t len = strlen(argv[i]);
1040 1.1 christos memmove(p, argv[i], len);
1041 1.1 christos p += len;
1042 1.1 christos *p++ = ' ';
1043 1.1 christos }
1044 1.1 christos
1045 1.1 christos p--;
1046 1.1 christos *p++ = '\0';
1047 1.1 christos INSIST(p == args + argslen);
1048 1.1 christos
1049 1.1 christos notify("%s", command);
1050 1.1 christos
1051 1.1.1.3 christos if (strcmp(command, "restart") == 0) {
1052 1.1 christos fatal("'%s' is not implemented", command);
1053 1.1.1.3 christos }
1054 1.1 christos
1055 1.1.1.3 christos if (nserveraddrs == 0 && servername != NULL) {
1056 1.1.1.3 christos get_addresses(servername, (in_port_t)remoteport);
1057 1.1.1.3 christos }
1058 1.1 christos
1059 1.1 christos DO("post event", isc_app_onrun(rndc_mctx, task, rndc_start, NULL));
1060 1.1 christos
1061 1.1 christos result = isc_app_run();
1062 1.1.1.3 christos if (result != ISC_R_SUCCESS) {
1063 1.1 christos fatal("isc_app_run() failed: %s", isc_result_totext(result));
1064 1.1.1.3 christos }
1065 1.1 christos
1066 1.1.1.3 christos if (atomic_load_acquire(&connects) > 0 ||
1067 1.1.1.3 christos atomic_load_acquire(&sends) > 0 || atomic_load_acquire(&recvs) > 0)
1068 1.1.1.3 christos {
1069 1.1 christos isc_socket_cancel(sock, task, ISC_SOCKCANCEL_ALL);
1070 1.1.1.3 christos }
1071 1.1 christos
1072 1.1 christos isc_task_detach(&task);
1073 1.1 christos isc_taskmgr_destroy(&taskmgr);
1074 1.1 christos isc_socketmgr_destroy(&socketmgr);
1075 1.1 christos isc_log_destroy(&log);
1076 1.1 christos isc_log_setcontext(NULL);
1077 1.1 christos
1078 1.1 christos cfg_obj_destroy(pctx, &config);
1079 1.1 christos cfg_parser_destroy(&pctx);
1080 1.1 christos
1081 1.1 christos isc_mem_put(rndc_mctx, args, argslen);
1082 1.1 christos isccc_ccmsg_invalidate(&ccmsg);
1083 1.1 christos
1084 1.1 christos isc_buffer_free(&databuf);
1085 1.1 christos
1086 1.1.1.3 christos if (show_final_mem) {
1087 1.1 christos isc_mem_stats(rndc_mctx, stderr);
1088 1.1.1.3 christos }
1089 1.1 christos
1090 1.1 christos isc_mem_destroy(&rndc_mctx);
1091 1.1 christos
1092 1.1.1.3 christos if (failed) {
1093 1.1 christos return (1);
1094 1.1.1.3 christos }
1095 1.1 christos
1096 1.1 christos return (0);
1097 1.1 christos }
1098