Home | History | Annotate | Line # | Download | only in lpd
lpd.c revision 1.33.2.2
      1  1.33.2.2      jmc /*	$NetBSD: lpd.c,v 1.33.2.2 2003/10/21 03:54:37 jmc Exp $	*/
      2       1.7      mrg 
      3       1.1      cgd /*
      4       1.4      cgd  * Copyright (c) 1983, 1993, 1994
      5       1.4      cgd  *	The Regents of the University of California.  All rights reserved.
      6       1.4      cgd  *
      7       1.1      cgd  *
      8       1.1      cgd  * Redistribution and use in source and binary forms, with or without
      9       1.1      cgd  * modification, are permitted provided that the following conditions
     10       1.1      cgd  * are met:
     11       1.1      cgd  * 1. Redistributions of source code must retain the above copyright
     12       1.1      cgd  *    notice, this list of conditions and the following disclaimer.
     13       1.1      cgd  * 2. Redistributions in binary form must reproduce the above copyright
     14       1.1      cgd  *    notice, this list of conditions and the following disclaimer in the
     15       1.1      cgd  *    documentation and/or other materials provided with the distribution.
     16       1.1      cgd  * 3. All advertising materials mentioning features or use of this software
     17       1.1      cgd  *    must display the following acknowledgement:
     18       1.1      cgd  *	This product includes software developed by the University of
     19       1.1      cgd  *	California, Berkeley and its contributors.
     20       1.1      cgd  * 4. Neither the name of the University nor the names of its contributors
     21       1.1      cgd  *    may be used to endorse or promote products derived from this software
     22       1.1      cgd  *    without specific prior written permission.
     23       1.1      cgd  *
     24       1.1      cgd  * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
     25       1.1      cgd  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
     26       1.1      cgd  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
     27       1.1      cgd  * ARE DISCLAIMED.  IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
     28       1.1      cgd  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
     29       1.1      cgd  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
     30       1.1      cgd  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
     31       1.1      cgd  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
     32       1.1      cgd  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
     33       1.1      cgd  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
     34       1.1      cgd  * SUCH DAMAGE.
     35       1.1      cgd  */
     36       1.1      cgd 
     37      1.11    mikel #include <sys/cdefs.h>
     38      1.11    mikel 
     39       1.1      cgd #ifndef lint
     40      1.11    mikel __COPYRIGHT("@(#) Copyright (c) 1983, 1993, 1994\n\
     41      1.11    mikel 	The Regents of the University of California.  All rights reserved.\n");
     42       1.1      cgd #endif /* not lint */
     43       1.1      cgd 
     44       1.1      cgd #ifndef lint
     45      1.10    mikel #if 0
     46      1.12      mrg static char sccsid[] = "@(#)lpd.c	8.7 (Berkeley) 5/10/95";
     47      1.10    mikel #else
     48  1.33.2.2      jmc __RCSID("$NetBSD: lpd.c,v 1.33.2.2 2003/10/21 03:54:37 jmc Exp $");
     49      1.10    mikel #endif
     50       1.1      cgd #endif /* not lint */
     51       1.1      cgd 
     52       1.1      cgd /*
     53       1.1      cgd  * lpd -- line printer daemon.
     54       1.1      cgd  *
     55       1.1      cgd  * Listen for a connection and perform the requested operation.
     56       1.1      cgd  * Operations are:
     57       1.1      cgd  *	\1printer\n
     58       1.1      cgd  *		check the queue for jobs and print any found.
     59       1.1      cgd  *	\2printer\n
     60       1.1      cgd  *		receive a job from another machine and queue it.
     61       1.1      cgd  *	\3printer [users ...] [jobs ...]\n
     62       1.1      cgd  *		return the current state of the queue (short form).
     63       1.1      cgd  *	\4printer [users ...] [jobs ...]\n
     64       1.1      cgd  *		return the current state of the queue (long form).
     65       1.1      cgd  *	\5printer person [users ...] [jobs ...]\n
     66       1.1      cgd  *		remove jobs from the queue.
     67       1.1      cgd  *
     68       1.1      cgd  * Strategy to maintain protected spooling area:
     69       1.1      cgd  *	1. Spooling area is writable only by daemon and spooling group
     70       1.1      cgd  *	2. lpr runs setuid root and setgrp spooling group; it uses
     71       1.1      cgd  *	   root to access any file it wants (verifying things before
     72       1.1      cgd  *	   with an access call) and group id to know how it should
     73       1.1      cgd  *	   set up ownership of files in the spooling area.
     74       1.1      cgd  *	3. Files in spooling area are owned by root, group spooling
     75       1.1      cgd  *	   group, with mode 660.
     76       1.1      cgd  *	4. lpd, lpq and lprm run setuid daemon and setgrp spooling group to
     77       1.1      cgd  *	   access files and printer.  Users can't get to anything
     78       1.1      cgd  *	   w/o help of lpq and lprm programs.
     79       1.1      cgd  */
     80       1.1      cgd 
     81       1.4      cgd #include <sys/param.h>
     82       1.4      cgd #include <sys/wait.h>
     83       1.4      cgd #include <sys/types.h>
     84       1.4      cgd #include <sys/socket.h>
     85       1.4      cgd #include <sys/un.h>
     86       1.4      cgd #include <sys/stat.h>
     87      1.12      mrg #include <sys/file.h>
     88       1.4      cgd #include <netinet/in.h>
     89       1.4      cgd 
     90      1.18      mrg #include <err.h>
     91       1.4      cgd #include <netdb.h>
     92       1.4      cgd #include <unistd.h>
     93       1.4      cgd #include <syslog.h>
     94       1.4      cgd #include <signal.h>
     95       1.4      cgd #include <errno.h>
     96       1.4      cgd #include <fcntl.h>
     97       1.4      cgd #include <dirent.h>
     98      1.30      mjl #include <stdarg.h>
     99       1.4      cgd #include <stdio.h>
    100       1.4      cgd #include <stdlib.h>
    101       1.4      cgd #include <string.h>
    102       1.4      cgd #include <ctype.h>
    103      1.11    mikel #include <arpa/inet.h>
    104      1.11    mikel 
    105  1.33.2.2      jmc #ifdef LIBWRAP
    106  1.33.2.2      jmc #include <tcpd.h>
    107  1.33.2.2      jmc #endif
    108  1.33.2.2      jmc 
    109       1.1      cgd #include "lp.h"
    110       1.4      cgd #include "lp.local.h"
    111       1.1      cgd #include "pathnames.h"
    112       1.4      cgd #include "extern.h"
    113       1.1      cgd 
    114      1.21   itojun /* XXX from libc/net/rcmd.c */
    115      1.21   itojun extern int __ivaliduser_sa __P((FILE *, struct sockaddr *, socklen_t,
    116      1.21   itojun 		const char *, const char *));
    117      1.21   itojun 
    118  1.33.2.2      jmc #ifdef LIBWRAP
    119  1.33.2.2      jmc int allow_severity = LOG_AUTH|LOG_INFO;
    120  1.33.2.2      jmc int deny_severity = LOG_AUTH|LOG_WARNING;
    121  1.33.2.2      jmc #endif
    122  1.33.2.2      jmc 
    123       1.1      cgd int	lflag;				/* log requests flag */
    124      1.18      mrg int	rflag;				/* allow of for remote printers */
    125       1.8    perry int	sflag;				/* secure (no inet) flag */
    126       1.1      cgd int	from_remote;			/* from remote socket */
    127      1.23      scw char	**blist;			/* list of addresses to bind(2) to */
    128      1.23      scw int	blist_size;
    129      1.23      scw int	blist_addrs;
    130       1.1      cgd 
    131      1.11    mikel int               main __P((int, char **));
    132       1.4      cgd static void       reapchild __P((int));
    133       1.4      cgd static void       mcleanup __P((int));
    134       1.4      cgd static void       doit __P((void));
    135       1.4      cgd static void       startup __P((void));
    136      1.30      mjl static void       chkhost __P((struct sockaddr *, int));
    137      1.12      mrg static int	  ckqueue __P((char *));
    138      1.13      mrg static void	  usage __P((void));
    139      1.26   itojun static int	  *socksetup __P((int, int, const char *));
    140       1.1      cgd 
    141       1.5  hpeyerl uid_t	uid, euid;
    142      1.18      mrg int child_count;
    143       1.5  hpeyerl 
    144      1.30      mjl #define LPD_NOPORTCHK	0001		/* skip reserved-port check */
    145      1.30      mjl 
    146       1.4      cgd int
    147      1.30      mjl main(int argc, char **argv)
    148       1.1      cgd {
    149       1.4      cgd 	fd_set defreadfds;
    150       1.4      cgd 	struct sockaddr_un un, fromunix;
    151      1.20   itojun 	struct sockaddr_storage frominet;
    152      1.22      mrg 	sigset_t nmask, omask;
    153      1.22      mrg 	int lfd, errs, i, f, funix, *finet;
    154      1.32      wiz 	int child_max = 32;	/* more than enough to hose the system */
    155      1.30      mjl 	int options = 0, check_options = 0;
    156      1.26   itojun 	struct servent *sp;
    157      1.26   itojun 	const char *port = "printer";
    158       1.1      cgd 
    159       1.5  hpeyerl 	euid = geteuid();	/* these shouldn't be different */
    160       1.5  hpeyerl 	uid = getuid();
    161       1.1      cgd 	gethostname(host, sizeof(host));
    162      1.16      mrg 	host[sizeof(host) - 1] = '\0';
    163       1.1      cgd 	name = argv[0];
    164       1.1      cgd 
    165      1.13      mrg 	errs = 0;
    166      1.30      mjl 	while ((i = getopt(argc, argv, "b:cdln:srw:W")) != -1)
    167      1.13      mrg 		switch (i) {
    168      1.23      scw 		case 'b':
    169      1.23      scw 			if (blist_addrs >= blist_size) {
    170      1.23      scw 				blist_size += sizeof(char *) * 4;
    171      1.23      scw 				if (blist == NULL)
    172      1.23      scw 					blist = malloc(blist_size);
    173      1.23      scw 				else
    174      1.23      scw 					blist = realloc(blist, blist_size);
    175      1.23      scw 				if (blist == NULL)
    176      1.23      scw 					err(1, "cant allocate bind addr list");
    177      1.23      scw 			}
    178      1.23      scw 			blist[blist_addrs++] = strdup(optarg);
    179      1.23      scw 			break;
    180      1.13      mrg 		case 'd':
    181      1.13      mrg 			options |= SO_DEBUG;
    182      1.13      mrg 			break;
    183      1.13      mrg 		case 'l':
    184      1.13      mrg 			lflag++;
    185      1.14      mrg 			break;
    186      1.18      mrg 		case 'n':
    187      1.18      mrg 			child_max = atoi(optarg);
    188      1.18      mrg 			if (child_max < 0 || child_max > 1024)
    189      1.18      mrg 				errx(1, "invalid number of children: %s",
    190      1.18      mrg 				    optarg);
    191      1.18      mrg 			break;
    192      1.18      mrg 		case 'r':
    193      1.18      mrg 			rflag++;
    194      1.18      mrg 			break;
    195      1.14      mrg 		case 's':
    196      1.14      mrg 			sflag++;
    197      1.13      mrg 			break;
    198      1.18      mrg 		case 'w':
    199      1.18      mrg 			wait_time = atoi(optarg);
    200      1.18      mrg 			if (wait_time < 0)
    201      1.18      mrg 				errx(1, "wait time must be postive: %s",
    202      1.18      mrg 				    optarg);
    203      1.18      mrg 			if (wait_time < 30)
    204      1.18      mrg 			    warnx("warning: wait time less than 30 seconds");
    205      1.18      mrg 			break;
    206      1.30      mjl 		case 'W':/* allow connections coming from a non-reserved port */
    207      1.30      mjl 			 /* (done by some lpr-implementations for MS-Windows) */
    208      1.30      mjl 			check_options |= LPD_NOPORTCHK;
    209      1.30      mjl 			break;
    210      1.13      mrg 		default:
    211      1.13      mrg 			errs++;
    212      1.13      mrg 		}
    213      1.13      mrg 	argc -= optind;
    214      1.13      mrg 	argv += optind;
    215      1.22      mrg 	if (errs)
    216      1.13      mrg 		usage();
    217       1.1      cgd 
    218      1.22      mrg 	switch (argc) {
    219      1.22      mrg 	case 1:
    220      1.22      mrg 		if ((i = atoi(argv[0])) == 0)
    221      1.22      mrg 			usage();
    222      1.22      mrg 		if (i < 0 || i > USHRT_MAX)
    223      1.22      mrg 			errx(1, "port # %d is invalid", i);
    224      1.22      mrg 
    225      1.26   itojun 		port = argv[0];
    226      1.22      mrg 		break;
    227      1.22      mrg 	case 0:
    228      1.26   itojun 		sp = getservbyname(port, "tcp");
    229      1.22      mrg 		if (sp == NULL)
    230      1.26   itojun 			errx(1, "%s/tcp: unknown service", port);
    231      1.22      mrg 		break;
    232      1.22      mrg 	default:
    233      1.22      mrg 		usage();
    234      1.22      mrg 	}
    235      1.22      mrg 
    236       1.1      cgd #ifndef DEBUG
    237       1.1      cgd 	/*
    238       1.1      cgd 	 * Set up standard environment by detaching from the parent.
    239       1.1      cgd 	 */
    240       1.1      cgd 	daemon(0, 0);
    241       1.1      cgd #endif
    242       1.1      cgd 
    243       1.1      cgd 	openlog("lpd", LOG_PID, LOG_LPR);
    244       1.4      cgd 	syslog(LOG_INFO, "restarted");
    245       1.9      mrg 	(void)umask(0);
    246       1.1      cgd 	lfd = open(_PATH_MASTERLOCK, O_WRONLY|O_CREAT, 0644);
    247       1.1      cgd 	if (lfd < 0) {
    248       1.1      cgd 		syslog(LOG_ERR, "%s: %m", _PATH_MASTERLOCK);
    249       1.1      cgd 		exit(1);
    250       1.1      cgd 	}
    251       1.1      cgd 	if (flock(lfd, LOCK_EX|LOCK_NB) < 0) {
    252      1.33      wiz 		if (errno == EWOULDBLOCK)	/* active daemon present */
    253       1.1      cgd 			exit(0);
    254       1.1      cgd 		syslog(LOG_ERR, "%s: %m", _PATH_MASTERLOCK);
    255       1.1      cgd 		exit(1);
    256       1.1      cgd 	}
    257       1.1      cgd 	ftruncate(lfd, 0);
    258       1.1      cgd 	/*
    259       1.1      cgd 	 * write process id for others to know
    260       1.1      cgd 	 */
    261       1.9      mrg 	(void)snprintf(line, sizeof(line), "%u\n", getpid());
    262       1.1      cgd 	f = strlen(line);
    263       1.1      cgd 	if (write(lfd, line, f) != f) {
    264       1.1      cgd 		syslog(LOG_ERR, "%s: %m", _PATH_MASTERLOCK);
    265       1.1      cgd 		exit(1);
    266       1.1      cgd 	}
    267       1.1      cgd 	signal(SIGCHLD, reapchild);
    268       1.1      cgd 	/*
    269       1.1      cgd 	 * Restart all the printers.
    270       1.1      cgd 	 */
    271       1.1      cgd 	startup();
    272       1.9      mrg 	(void)unlink(_PATH_SOCKETNAME);
    273      1.17    lukem 	funix = socket(AF_LOCAL, SOCK_STREAM, 0);
    274       1.1      cgd 	if (funix < 0) {
    275       1.1      cgd 		syslog(LOG_ERR, "socket: %m");
    276       1.1      cgd 		exit(1);
    277       1.1      cgd 	}
    278      1.22      mrg 
    279      1.22      mrg 	sigemptyset(&nmask);
    280      1.22      mrg 	sigaddset(&nmask, SIGHUP);
    281      1.22      mrg 	sigaddset(&nmask, SIGINT);
    282      1.22      mrg 	sigaddset(&nmask, SIGQUIT);
    283      1.22      mrg 	sigaddset(&nmask, SIGTERM);
    284      1.22      mrg 	sigprocmask(SIG_BLOCK, &nmask, &omask);
    285      1.22      mrg 
    286      1.22      mrg 	(void) umask(07);
    287       1.1      cgd 	signal(SIGHUP, mcleanup);
    288       1.1      cgd 	signal(SIGINT, mcleanup);
    289       1.1      cgd 	signal(SIGQUIT, mcleanup);
    290       1.1      cgd 	signal(SIGTERM, mcleanup);
    291       1.4      cgd 	memset(&un, 0, sizeof(un));
    292      1.17    lukem 	un.sun_family = AF_LOCAL;
    293       1.9      mrg 	strncpy(un.sun_path, _PATH_SOCKETNAME, sizeof(un.sun_path) - 1);
    294       1.4      cgd #ifndef SUN_LEN
    295       1.4      cgd #define SUN_LEN(unp) (strlen((unp)->sun_path) + 2)
    296       1.4      cgd #endif
    297       1.4      cgd 	if (bind(funix, (struct sockaddr *)&un, SUN_LEN(&un)) < 0) {
    298       1.1      cgd 		syslog(LOG_ERR, "ubind: %m");
    299       1.1      cgd 		exit(1);
    300       1.1      cgd 	}
    301      1.22      mrg 	(void) umask(0);
    302      1.22      mrg 	sigprocmask(SIG_SETMASK, &omask, (sigset_t *)0);
    303       1.4      cgd 	FD_ZERO(&defreadfds);
    304       1.4      cgd 	FD_SET(funix, &defreadfds);
    305       1.1      cgd 	listen(funix, 5);
    306      1.23      scw 	if (!sflag || blist_addrs)
    307      1.26   itojun 		finet = socksetup(PF_UNSPEC, options, port);
    308       1.8    perry 	else
    309      1.20   itojun 		finet = NULL;	/* pretend we couldn't open TCP socket. */
    310       1.1      cgd 
    311      1.24      scw 	if (blist != NULL) {
    312      1.24      scw 		for (i = 0; i < blist_addrs; i++)
    313      1.24      scw 			free(blist[i]);
    314      1.23      scw 		free(blist);
    315      1.24      scw 	}
    316      1.23      scw 
    317      1.20   itojun 	if (finet) {
    318      1.20   itojun 		for (i = 1; i <= *finet; i++) {
    319      1.20   itojun 			FD_SET(finet[i], &defreadfds);
    320      1.20   itojun 			listen(finet[i], 5);
    321       1.1      cgd 		}
    322       1.1      cgd 	}
    323       1.1      cgd 	/*
    324       1.1      cgd 	 * Main loop: accept, do a request, continue.
    325       1.1      cgd 	 */
    326       1.4      cgd 	memset(&frominet, 0, sizeof(frominet));
    327       1.4      cgd 	memset(&fromunix, 0, sizeof(fromunix));
    328       1.1      cgd 	for (;;) {
    329      1.22      mrg 		int domain, nfds, s, fromlen;
    330       1.4      cgd 		fd_set readfds;
    331      1.18      mrg 		/* "short" so it overflows in about 2 hours */
    332      1.18      mrg 		short sleeptime = 10;
    333      1.18      mrg 
    334      1.18      mrg 		while (child_max < child_count) {
    335      1.18      mrg 			syslog(LOG_WARNING,
    336      1.18      mrg 			    "too many children, sleeping for %d seconds",
    337      1.18      mrg 				sleeptime);
    338      1.18      mrg 			sleep(sleeptime);
    339      1.18      mrg 			sleeptime <<= 1;
    340      1.18      mrg 			if (sleeptime < 0) {
    341      1.18      mrg 				syslog(LOG_CRIT, "sleeptime overflowed! help!");
    342      1.18      mrg 				sleeptime = 10;
    343      1.18      mrg 			}
    344      1.18      mrg 		}
    345       1.1      cgd 
    346       1.4      cgd 		FD_COPY(&defreadfds, &readfds);
    347       1.1      cgd 		nfds = select(20, &readfds, 0, 0, 0);
    348       1.1      cgd 		if (nfds <= 0) {
    349       1.1      cgd 			if (nfds < 0 && errno != EINTR)
    350       1.1      cgd 				syslog(LOG_WARNING, "select: %m");
    351       1.1      cgd 			continue;
    352       1.1      cgd 		}
    353       1.4      cgd 		if (FD_ISSET(funix, &readfds)) {
    354      1.22      mrg 			domain = AF_LOCAL;
    355      1.22      mrg 			fromlen = sizeof(fromunix);
    356       1.1      cgd 			s = accept(funix,
    357       1.1      cgd 			    (struct sockaddr *)&fromunix, &fromlen);
    358      1.20   itojun 		} else {
    359      1.20   itojun                         for (i = 1; i <= *finet; i++)
    360      1.20   itojun 				if (FD_ISSET(finet[i], &readfds)) {
    361      1.20   itojun 					domain = AF_INET, fromlen = sizeof(frominet);
    362      1.20   itojun 					s = accept(finet[i], (struct sockaddr *)&frominet, &fromlen);
    363      1.20   itojun 				}
    364       1.1      cgd 		}
    365       1.1      cgd 		if (s < 0) {
    366       1.1      cgd 			if (errno != EINTR)
    367       1.1      cgd 				syslog(LOG_WARNING, "accept: %m");
    368       1.1      cgd 			continue;
    369       1.1      cgd 		}
    370      1.18      mrg 
    371      1.18      mrg 		switch (fork()) {
    372      1.18      mrg 		case 0:
    373       1.1      cgd 			signal(SIGCHLD, SIG_IGN);
    374       1.1      cgd 			signal(SIGHUP, SIG_IGN);
    375       1.1      cgd 			signal(SIGINT, SIG_IGN);
    376       1.1      cgd 			signal(SIGQUIT, SIG_IGN);
    377       1.1      cgd 			signal(SIGTERM, SIG_IGN);
    378       1.9      mrg 			(void)close(funix);
    379      1.20   itojun 			if (!sflag && finet)
    380      1.20   itojun                         	for (i = 1; i <= *finet; i++)
    381      1.20   itojun 					(void)close(finet[i]);
    382  1.33.2.2      jmc 			dup2(s, STDOUT_FILENO);
    383       1.9      mrg 			(void)close(s);
    384       1.1      cgd 			if (domain == AF_INET) {
    385      1.20   itojun 				/* for both AF_INET and AF_INET6 */
    386       1.1      cgd 				from_remote = 1;
    387      1.30      mjl 				chkhost((struct sockaddr *)&frominet, check_options);
    388       1.1      cgd 			} else
    389       1.1      cgd 				from_remote = 0;
    390       1.1      cgd 			doit();
    391       1.1      cgd 			exit(0);
    392      1.18      mrg 		case -1:
    393      1.18      mrg 			syslog(LOG_WARNING, "fork: %m, sleeping for 10 seconds...");
    394      1.18      mrg 			sleep(10);
    395      1.18      mrg 			continue;
    396      1.18      mrg 		default:
    397      1.18      mrg 			child_count++;
    398       1.1      cgd 		}
    399       1.9      mrg 		(void)close(s);
    400       1.1      cgd 	}
    401       1.1      cgd }
    402       1.1      cgd 
    403       1.4      cgd static void
    404      1.30      mjl reapchild(int signo)
    405       1.1      cgd {
    406       1.1      cgd 	union wait status;
    407       1.1      cgd 
    408       1.1      cgd 	while (wait3((int *)&status, WNOHANG, 0) > 0)
    409      1.18      mrg 		child_count--;
    410       1.1      cgd }
    411       1.1      cgd 
    412       1.4      cgd static void
    413      1.30      mjl mcleanup(int signo)
    414       1.1      cgd {
    415       1.1      cgd 	if (lflag)
    416       1.1      cgd 		syslog(LOG_INFO, "exiting");
    417       1.1      cgd 	unlink(_PATH_SOCKETNAME);
    418       1.1      cgd 	exit(0);
    419       1.1      cgd }
    420       1.1      cgd 
    421       1.1      cgd /*
    422       1.1      cgd  * Stuff for handling job specifications
    423       1.1      cgd  */
    424       1.1      cgd char	*user[MAXUSERS];	/* users to process */
    425       1.1      cgd int	users;			/* # of users in user array */
    426       1.1      cgd int	requ[MAXREQUESTS];	/* job number of spool entries */
    427       1.1      cgd int	requests;		/* # of spool requests */
    428       1.1      cgd char	*person;		/* name of person doing lprm */
    429       1.1      cgd 
    430      1.20   itojun char	fromb[NI_MAXHOST];	/* buffer for client's machine name */
    431       1.4      cgd char	cbuf[BUFSIZ];		/* command line buffer */
    432       1.1      cgd char	*cmdnames[] = {
    433       1.1      cgd 	"null",
    434       1.1      cgd 	"printjob",
    435       1.1      cgd 	"recvjob",
    436       1.1      cgd 	"displayq short",
    437       1.1      cgd 	"displayq long",
    438       1.1      cgd 	"rmjob"
    439       1.1      cgd };
    440       1.1      cgd 
    441       1.4      cgd static void
    442      1.30      mjl doit(void)
    443       1.1      cgd {
    444      1.13      mrg 	char *cp;
    445      1.13      mrg 	int n;
    446       1.1      cgd 
    447       1.1      cgd 	for (;;) {
    448       1.1      cgd 		cp = cbuf;
    449       1.1      cgd 		do {
    450       1.1      cgd 			if (cp >= &cbuf[sizeof(cbuf) - 1])
    451       1.1      cgd 				fatal("Command line too long");
    452      1.31      mjl 			if ((n = read(STDOUT_FILENO, cp, 1)) != 1) {
    453       1.1      cgd 				if (n < 0)
    454       1.1      cgd 					fatal("Lost connection");
    455       1.1      cgd 				return;
    456       1.1      cgd 			}
    457       1.1      cgd 		} while (*cp++ != '\n');
    458       1.1      cgd 		*--cp = '\0';
    459       1.1      cgd 		cp = cbuf;
    460       1.1      cgd 		if (lflag) {
    461      1.18      mrg 			if (*cp >= '\1' && *cp <= '\5') {
    462       1.1      cgd 				syslog(LOG_INFO, "%s requests %s %s",
    463      1.10    mikel 					from, cmdnames[(int)*cp], cp+1);
    464      1.18      mrg 				setproctitle("serving %s: %s %s", from,
    465      1.18      mrg 				    cmdnames[(int)*cp], cp+1);
    466      1.18      mrg 			}
    467       1.1      cgd 			else
    468       1.1      cgd 				syslog(LOG_INFO, "bad request (%d) from %s",
    469       1.1      cgd 					*cp, from);
    470       1.1      cgd 		}
    471       1.1      cgd 		switch (*cp++) {
    472       1.1      cgd 		case '\1':	/* check the queue and print any jobs there */
    473       1.1      cgd 			printer = cp;
    474      1.29      mrg 			if (*printer == '\0')
    475      1.29      mrg 				printer = DEFLP;
    476       1.1      cgd 			printjob();
    477       1.1      cgd 			break;
    478       1.1      cgd 		case '\2':	/* receive files to be queued */
    479       1.1      cgd 			if (!from_remote) {
    480       1.1      cgd 				syslog(LOG_INFO, "illegal request (%d)", *cp);
    481       1.1      cgd 				exit(1);
    482       1.1      cgd 			}
    483       1.1      cgd 			printer = cp;
    484      1.29      mrg 			if (*printer == '\0')
    485      1.29      mrg 				printer = DEFLP;
    486       1.1      cgd 			recvjob();
    487       1.1      cgd 			break;
    488       1.1      cgd 		case '\3':	/* display the queue (short form) */
    489       1.1      cgd 		case '\4':	/* display the queue (long form) */
    490       1.1      cgd 			printer = cp;
    491      1.29      mrg 			if (*printer == '\0')
    492      1.29      mrg 				printer = DEFLP;
    493       1.1      cgd 			while (*cp) {
    494       1.1      cgd 				if (*cp != ' ') {
    495       1.1      cgd 					cp++;
    496       1.1      cgd 					continue;
    497       1.1      cgd 				}
    498       1.1      cgd 				*cp++ = '\0';
    499       1.1      cgd 				while (isspace(*cp))
    500       1.1      cgd 					cp++;
    501       1.1      cgd 				if (*cp == '\0')
    502       1.1      cgd 					break;
    503       1.1      cgd 				if (isdigit(*cp)) {
    504       1.1      cgd 					if (requests >= MAXREQUESTS)
    505       1.1      cgd 						fatal("Too many requests");
    506       1.1      cgd 					requ[requests++] = atoi(cp);
    507       1.1      cgd 				} else {
    508       1.1      cgd 					if (users >= MAXUSERS)
    509       1.1      cgd 						fatal("Too many users");
    510       1.1      cgd 					user[users++] = cp;
    511       1.1      cgd 				}
    512       1.1      cgd 			}
    513       1.1      cgd 			displayq(cbuf[0] - '\3');
    514       1.1      cgd 			exit(0);
    515       1.1      cgd 		case '\5':	/* remove a job from the queue */
    516       1.1      cgd 			if (!from_remote) {
    517       1.1      cgd 				syslog(LOG_INFO, "illegal request (%d)", *cp);
    518       1.1      cgd 				exit(1);
    519       1.1      cgd 			}
    520       1.1      cgd 			printer = cp;
    521      1.29      mrg 			if (*printer == '\0')
    522      1.29      mrg 				printer = DEFLP;
    523       1.1      cgd 			while (*cp && *cp != ' ')
    524       1.1      cgd 				cp++;
    525       1.1      cgd 			if (!*cp)
    526       1.1      cgd 				break;
    527       1.1      cgd 			*cp++ = '\0';
    528       1.1      cgd 			person = cp;
    529       1.1      cgd 			while (*cp) {
    530       1.1      cgd 				if (*cp != ' ') {
    531       1.1      cgd 					cp++;
    532       1.1      cgd 					continue;
    533       1.1      cgd 				}
    534       1.1      cgd 				*cp++ = '\0';
    535       1.1      cgd 				while (isspace(*cp))
    536       1.1      cgd 					cp++;
    537       1.1      cgd 				if (*cp == '\0')
    538       1.1      cgd 					break;
    539       1.1      cgd 				if (isdigit(*cp)) {
    540       1.1      cgd 					if (requests >= MAXREQUESTS)
    541       1.1      cgd 						fatal("Too many requests");
    542       1.1      cgd 					requ[requests++] = atoi(cp);
    543       1.1      cgd 				} else {
    544       1.1      cgd 					if (users >= MAXUSERS)
    545       1.1      cgd 						fatal("Too many users");
    546       1.1      cgd 					user[users++] = cp;
    547       1.1      cgd 				}
    548       1.1      cgd 			}
    549       1.1      cgd 			rmjob();
    550       1.1      cgd 			break;
    551       1.1      cgd 		}
    552       1.1      cgd 		fatal("Illegal service request");
    553       1.1      cgd 	}
    554       1.1      cgd }
    555       1.1      cgd 
    556       1.1      cgd /*
    557       1.1      cgd  * Make a pass through the printcap database and start printing any
    558       1.1      cgd  * files left from the last time the machine went down.
    559       1.1      cgd  */
    560       1.4      cgd static void
    561      1.30      mjl startup(void)
    562       1.1      cgd {
    563       1.4      cgd 	char *buf;
    564      1.13      mrg 	char *cp;
    565       1.1      cgd 
    566       1.1      cgd 	/*
    567       1.1      cgd 	 * Restart the daemons.
    568       1.1      cgd 	 */
    569       1.4      cgd 	while (cgetnext(&buf, printcapdb) > 0) {
    570      1.12      mrg 		if (ckqueue(buf) <= 0) {
    571      1.12      mrg 			free(buf);
    572      1.12      mrg 			continue;	/* no work to do for this printer */
    573      1.12      mrg 		}
    574       1.1      cgd 		for (cp = buf; *cp; cp++)
    575       1.1      cgd 			if (*cp == '|' || *cp == ':') {
    576       1.1      cgd 				*cp = '\0';
    577       1.1      cgd 				break;
    578       1.1      cgd 			}
    579      1.12      mrg 		if (lflag)
    580      1.12      mrg 			syslog(LOG_INFO, "work for %s", buf);
    581      1.18      mrg 		switch (fork()) {
    582      1.18      mrg 		case -1:
    583       1.1      cgd 			syslog(LOG_WARNING, "startup: cannot fork");
    584       1.4      cgd 			mcleanup(0);
    585      1.18      mrg 		case 0:
    586       1.4      cgd 			printer = buf;
    587      1.18      mrg 			setproctitle("working on printer %s", printer);
    588       1.4      cgd 			cgetclose();
    589       1.1      cgd 			printjob();
    590      1.12      mrg 			/* NOTREACHED */
    591      1.18      mrg 		default:
    592      1.18      mrg 			child_count++;
    593      1.18      mrg 			free(buf);
    594       1.1      cgd 		}
    595      1.12      mrg 	}
    596      1.12      mrg }
    597      1.12      mrg 
    598      1.12      mrg /*
    599      1.12      mrg  * Make sure there's some work to do before forking off a child
    600      1.12      mrg  */
    601      1.12      mrg static int
    602      1.30      mjl ckqueue(char *cap)
    603      1.12      mrg {
    604      1.13      mrg 	struct dirent *d;
    605      1.12      mrg 	DIR *dirp;
    606      1.12      mrg 	char *spooldir;
    607      1.12      mrg 
    608      1.12      mrg 	if (cgetstr(cap, "sd", &spooldir) == -1)
    609      1.12      mrg 		spooldir = _PATH_DEFSPOOL;
    610      1.12      mrg 	if ((dirp = opendir(spooldir)) == NULL)
    611      1.12      mrg 		return (-1);
    612      1.12      mrg 	while ((d = readdir(dirp)) != NULL) {
    613      1.12      mrg 		if (d->d_name[0] != 'c' || d->d_name[1] != 'f')
    614      1.12      mrg 			continue;	/* daemon control files only */
    615      1.12      mrg 		closedir(dirp);
    616      1.12      mrg 		return (1);		/* found something */
    617       1.1      cgd 	}
    618      1.12      mrg 	closedir(dirp);
    619      1.12      mrg 	return (0);
    620       1.1      cgd }
    621       1.1      cgd 
    622       1.1      cgd #define DUMMY ":nobody::"
    623       1.1      cgd 
    624       1.1      cgd /*
    625       1.1      cgd  * Check to see if the from host has access to the line printer.
    626       1.1      cgd  */
    627       1.4      cgd static void
    628      1.30      mjl chkhost(struct sockaddr *f, int check_opts)
    629       1.1      cgd {
    630      1.20   itojun 	struct addrinfo hints, *res, *r;
    631      1.13      mrg 	FILE *hostf;
    632  1.33.2.2      jmc 	int good = 0;
    633      1.20   itojun 	char host[NI_MAXHOST], ip[NI_MAXHOST];
    634      1.20   itojun 	char serv[NI_MAXSERV];
    635      1.20   itojun 	int error;
    636  1.33.2.2      jmc #ifdef LIBWRAP
    637  1.33.2.2      jmc 	struct request_info req;
    638  1.33.2.2      jmc #endif
    639      1.20   itojun 
    640      1.20   itojun 	error = getnameinfo(f, f->sa_len, NULL, 0, serv, sizeof(serv),
    641      1.20   itojun 			    NI_NUMERICSERV);
    642      1.30      mjl 	if (error)
    643       1.1      cgd 		fatal("Malformed from address");
    644       1.4      cgd 
    645      1.30      mjl          if (!(check_opts & LPD_NOPORTCHK) &&
    646      1.30      mjl 	       atoi(serv) >= IPPORT_RESERVED)
    647      1.30      mjl 		fatal("Connect from invalid port (%s)", serv);
    648      1.30      mjl 
    649       1.4      cgd 	/* Need real hostname for temporary filenames */
    650      1.20   itojun 	error = getnameinfo(f, f->sa_len, host, sizeof(host), NULL, 0,
    651      1.20   itojun 			    NI_NAMEREQD);
    652      1.20   itojun 	if (error) {
    653      1.20   itojun 		error = getnameinfo(f, f->sa_len, host, sizeof(host), NULL, 0,
    654      1.20   itojun 				    NI_NUMERICHOST);
    655      1.20   itojun 		if (error)
    656      1.20   itojun 			fatal("Host name for your address unknown");
    657      1.20   itojun 		else
    658      1.20   itojun 			fatal("Host name for your address (%s) unknown", host);
    659      1.20   itojun 	}
    660       1.1      cgd 
    661      1.20   itojun 	(void)strncpy(fromb, host, sizeof(fromb) - 1);
    662      1.19      mjl 	fromb[sizeof(fromb) - 1] = '\0';
    663       1.1      cgd 	from = fromb;
    664       1.1      cgd 
    665      1.20   itojun 	/* need address in stringform for comparison (no DNS lookup here) */
    666      1.20   itojun 	error = getnameinfo(f, f->sa_len, host, sizeof(host), NULL, 0,
    667      1.20   itojun 			    NI_NUMERICHOST);
    668      1.20   itojun 	if (error)
    669      1.20   itojun 		fatal("Cannot print address");
    670      1.20   itojun 
    671      1.13      mrg 	/* Check for spoof, ala rlogind */
    672      1.20   itojun 	memset(&hints, 0, sizeof(hints));
    673      1.20   itojun 	hints.ai_family = PF_UNSPEC;
    674      1.20   itojun 	hints.ai_socktype = SOCK_DGRAM;	/*dummy*/
    675      1.20   itojun 	error = getaddrinfo(fromb, NULL, &hints, &res);
    676      1.20   itojun 	if (error) {
    677      1.20   itojun 		fatal("hostname for your address (%s) unknown: %s", host,
    678      1.20   itojun 		    gai_strerror(error));
    679      1.20   itojun 	}
    680      1.20   itojun 	good = 0;
    681      1.20   itojun 	for (r = res; good == 0 && r; r = r->ai_next) {
    682      1.20   itojun 		error = getnameinfo(r->ai_addr, r->ai_addrlen, ip, sizeof(ip),
    683      1.20   itojun 				    NULL, 0, NI_NUMERICHOST);
    684      1.20   itojun 		if (!error && !strcmp(host, ip))
    685      1.13      mrg 			good = 1;
    686      1.13      mrg 	}
    687      1.20   itojun 	if (res)
    688      1.20   itojun 		freeaddrinfo(res);
    689      1.13      mrg 	if (good == 0)
    690      1.20   itojun 		fatal("address for your hostname (%s) not matched", host);
    691  1.33.2.2      jmc 
    692      1.18      mrg 	setproctitle("serving %s", from);
    693  1.33.2.2      jmc 
    694  1.33.2.2      jmc #ifdef LIBWRAP
    695  1.33.2.2      jmc 	request_init(&req, RQ_DAEMON, "lpd", RQ_CLIENT_SIN, f,
    696  1.33.2.2      jmc 	    RQ_FILE, STDOUT_FILENO, NULL);
    697  1.33.2.2      jmc 	fromhost(&req);
    698  1.33.2.2      jmc 	if (!hosts_access(&req))
    699  1.33.2.2      jmc 		goto denied;
    700  1.33.2.2      jmc #endif
    701  1.33.2.2      jmc 
    702       1.1      cgd 	hostf = fopen(_PATH_HOSTSEQUIV, "r");
    703       1.1      cgd 	if (hostf) {
    704      1.21   itojun 		if (__ivaliduser_sa(hostf, f, f->sa_len, DUMMY, DUMMY) == 0) {
    705       1.9      mrg 			(void)fclose(hostf);
    706       1.1      cgd 			return;
    707       1.1      cgd 		}
    708       1.9      mrg 		(void)fclose(hostf);
    709       1.1      cgd 	}
    710  1.33.2.2      jmc 	hostf = fopen(_PATH_HOSTSLPD, "r");
    711  1.33.2.2      jmc 	if (hostf) {
    712  1.33.2.2      jmc 		if (__ivaliduser_sa(hostf, f, f->sa_len, DUMMY, DUMMY) == 0) {
    713  1.33.2.2      jmc 			(void)fclose(hostf);
    714  1.33.2.2      jmc 			return;
    715  1.33.2.2      jmc 		}
    716  1.33.2.2      jmc 		(void)fclose(hostf);
    717       1.1      cgd 	}
    718  1.33.2.2      jmc #ifdef LIBWRAP
    719  1.33.2.2      jmc   denied:
    720  1.33.2.2      jmc #endif
    721       1.1      cgd 	fatal("Your host does not have line printer access");
    722       1.4      cgd 	/*NOTREACHED*/
    723      1.13      mrg }
    724      1.13      mrg 
    725      1.30      mjl 
    726      1.13      mrg static void
    727      1.30      mjl usage(void)
    728      1.13      mrg {
    729      1.13      mrg 
    730      1.30      mjl 	fprintf(stderr, "usage: %s [-dlrsW] [-b bind-address] [-n maxchild] "
    731      1.28   simonb 	    "[-w maxwait] [port]\n", getprogname());
    732      1.13      mrg 	exit(1);
    733      1.20   itojun }
    734      1.20   itojun 
    735      1.20   itojun /* setup server socket for specified address family */
    736      1.20   itojun /* if af is PF_UNSPEC more than one socket may be returned */
    737      1.20   itojun /* the returned list is dynamically allocated, so caller needs to free it */
    738      1.20   itojun int *
    739      1.30      mjl socksetup(int af, int options, const char *port)
    740      1.20   itojun {
    741      1.20   itojun 	struct addrinfo hints, *res, *r;
    742      1.23      scw 	int error, maxs = 0, *s, *socks = NULL, blidx = 0;
    743      1.20   itojun 	const int on = 1;
    744      1.20   itojun 
    745      1.23      scw 	do {
    746      1.23      scw 		memset(&hints, 0, sizeof(hints));
    747      1.23      scw 		hints.ai_flags = AI_PASSIVE;
    748      1.23      scw 		hints.ai_family = af;
    749      1.23      scw 		hints.ai_socktype = SOCK_STREAM;
    750      1.23      scw 		error = getaddrinfo((blist_addrs == 0) ? NULL : blist[blidx],
    751      1.26   itojun 		    port ? port : "printer", &hints, &res);
    752      1.23      scw 		if (error) {
    753      1.23      scw 			if (blist_addrs)
    754      1.23      scw 				syslog(LOG_ERR, "%s: %s", blist[blidx],
    755      1.25   itojun 				    gai_strerror(error));
    756      1.23      scw 			else
    757      1.25   itojun 				syslog(LOG_ERR, "%s", gai_strerror(error));
    758      1.23      scw 			mcleanup(0);
    759      1.23      scw 		}
    760      1.20   itojun 
    761      1.23      scw 		/* Count max number of sockets we may open */
    762      1.23      scw 		for (r = res; r; r = r->ai_next, maxs++)
    763      1.23      scw 			;
    764      1.23      scw 		if (socks == NULL) {
    765      1.23      scw 			socks = malloc((maxs + 1) * sizeof(int));
    766      1.23      scw 			if (socks)
    767      1.23      scw 				*socks = 0; /* num of sockets ctr at start */
    768      1.23      scw 		} else
    769      1.23      scw 			socks = realloc(socks, (maxs + 1) * sizeof(int));
    770      1.23      scw 		if (!socks) {
    771      1.23      scw 			syslog(LOG_ERR, "couldn't allocate memory for sockets");
    772      1.23      scw 			mcleanup(0);
    773      1.20   itojun 		}
    774      1.23      scw 
    775      1.23      scw 		s = socks + *socks + 1;
    776      1.23      scw 		for (r = res; r; r = r->ai_next) {
    777      1.23      scw 			*s = socket(r->ai_family, r->ai_socktype,
    778      1.23      scw 			            r->ai_protocol);
    779      1.23      scw 			if (*s < 0) {
    780      1.23      scw 				syslog(LOG_DEBUG, "socket(): %m");
    781      1.23      scw 				continue;
    782      1.23      scw 			}
    783      1.23      scw 			if (options & SO_DEBUG)
    784      1.23      scw 				if (setsockopt(*s, SOL_SOCKET, SO_DEBUG,
    785      1.23      scw 					       &on, sizeof(on)) < 0) {
    786      1.23      scw 					syslog(LOG_ERR,
    787      1.23      scw 					       "setsockopt (SO_DEBUG): %m");
    788      1.23      scw 					close (*s);
    789      1.23      scw 					continue;
    790      1.23      scw 				}
    791  1.33.2.2      jmc 			if (setsockopt(*s, SOL_SOCKET, SO_REUSEPORT, &on,
    792  1.33.2.2      jmc 			    sizeof(on)) < 0) {
    793  1.33.2.2      jmc 				syslog(LOG_ERR,
    794  1.33.2.2      jmc 				    "setsockopt (SO_REUSEPORT): %m");
    795  1.33.2.2      jmc 				close (*s);
    796  1.33.2.2      jmc 				continue;
    797  1.33.2.2      jmc 			}
    798  1.33.2.1    lukem 			if (r->ai_family == AF_INET6 && setsockopt(*s,
    799  1.33.2.1    lukem 			    IPPROTO_IPV6, IPV6_V6ONLY, &on, sizeof(on)) < 0) {
    800  1.33.2.1    lukem 				syslog(LOG_ERR,
    801  1.33.2.1    lukem 				    "setsockopt (IPV6_V6ONLY): %m");
    802  1.33.2.1    lukem 				close(*s);
    803  1.33.2.1    lukem 				continue;
    804  1.33.2.1    lukem 			}
    805      1.23      scw 			if (bind(*s, r->ai_addr, r->ai_addrlen) < 0) {
    806      1.23      scw 				syslog(LOG_DEBUG, "bind(): %m");
    807      1.20   itojun 				close (*s);
    808      1.20   itojun 				continue;
    809      1.20   itojun 			}
    810      1.23      scw 			*socks = *socks + 1;
    811      1.23      scw 			s++;
    812      1.20   itojun 		}
    813      1.20   itojun 
    814      1.23      scw 		if (res)
    815      1.23      scw 			freeaddrinfo(res);
    816      1.23      scw 	} while (++blidx < blist_addrs);
    817      1.20   itojun 
    818      1.23      scw 	if (socks == NULL || *socks == 0) {
    819      1.20   itojun 		syslog(LOG_ERR, "Couldn't bind to any socket");
    820      1.23      scw 		if (socks != NULL)
    821      1.23      scw 			free(socks);
    822      1.20   itojun 		mcleanup(0);
    823      1.20   itojun 	}
    824      1.20   itojun 	return(socks);
    825       1.1      cgd }
    826