lpd.c revision 1.38 1 1.38 itojun /* $NetBSD: lpd.c,v 1.38 2002/08/12 18:03:41 itojun Exp $ */
2 1.7 mrg
3 1.1 cgd /*
4 1.4 cgd * Copyright (c) 1983, 1993, 1994
5 1.4 cgd * The Regents of the University of California. All rights reserved.
6 1.4 cgd *
7 1.1 cgd *
8 1.1 cgd * Redistribution and use in source and binary forms, with or without
9 1.1 cgd * modification, are permitted provided that the following conditions
10 1.1 cgd * are met:
11 1.1 cgd * 1. Redistributions of source code must retain the above copyright
12 1.1 cgd * notice, this list of conditions and the following disclaimer.
13 1.1 cgd * 2. Redistributions in binary form must reproduce the above copyright
14 1.1 cgd * notice, this list of conditions and the following disclaimer in the
15 1.1 cgd * documentation and/or other materials provided with the distribution.
16 1.1 cgd * 3. All advertising materials mentioning features or use of this software
17 1.1 cgd * must display the following acknowledgement:
18 1.1 cgd * This product includes software developed by the University of
19 1.1 cgd * California, Berkeley and its contributors.
20 1.1 cgd * 4. Neither the name of the University nor the names of its contributors
21 1.1 cgd * may be used to endorse or promote products derived from this software
22 1.1 cgd * without specific prior written permission.
23 1.1 cgd *
24 1.1 cgd * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
25 1.1 cgd * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
26 1.1 cgd * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
27 1.1 cgd * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
28 1.1 cgd * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
29 1.1 cgd * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
30 1.1 cgd * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
31 1.1 cgd * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
32 1.1 cgd * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
33 1.1 cgd * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
34 1.1 cgd * SUCH DAMAGE.
35 1.1 cgd */
36 1.1 cgd
37 1.11 mikel #include <sys/cdefs.h>
38 1.11 mikel
39 1.1 cgd #ifndef lint
40 1.11 mikel __COPYRIGHT("@(#) Copyright (c) 1983, 1993, 1994\n\
41 1.11 mikel The Regents of the University of California. All rights reserved.\n");
42 1.1 cgd #endif /* not lint */
43 1.1 cgd
44 1.1 cgd #ifndef lint
45 1.10 mikel #if 0
46 1.12 mrg static char sccsid[] = "@(#)lpd.c 8.7 (Berkeley) 5/10/95";
47 1.10 mikel #else
48 1.38 itojun __RCSID("$NetBSD: lpd.c,v 1.38 2002/08/12 18:03:41 itojun Exp $");
49 1.10 mikel #endif
50 1.1 cgd #endif /* not lint */
51 1.1 cgd
52 1.1 cgd /*
53 1.1 cgd * lpd -- line printer daemon.
54 1.1 cgd *
55 1.1 cgd * Listen for a connection and perform the requested operation.
56 1.1 cgd * Operations are:
57 1.1 cgd * \1printer\n
58 1.1 cgd * check the queue for jobs and print any found.
59 1.1 cgd * \2printer\n
60 1.1 cgd * receive a job from another machine and queue it.
61 1.1 cgd * \3printer [users ...] [jobs ...]\n
62 1.1 cgd * return the current state of the queue (short form).
63 1.1 cgd * \4printer [users ...] [jobs ...]\n
64 1.1 cgd * return the current state of the queue (long form).
65 1.1 cgd * \5printer person [users ...] [jobs ...]\n
66 1.1 cgd * remove jobs from the queue.
67 1.1 cgd *
68 1.1 cgd * Strategy to maintain protected spooling area:
69 1.1 cgd * 1. Spooling area is writable only by daemon and spooling group
70 1.1 cgd * 2. lpr runs setuid root and setgrp spooling group; it uses
71 1.1 cgd * root to access any file it wants (verifying things before
72 1.1 cgd * with an access call) and group id to know how it should
73 1.1 cgd * set up ownership of files in the spooling area.
74 1.1 cgd * 3. Files in spooling area are owned by root, group spooling
75 1.1 cgd * group, with mode 660.
76 1.1 cgd * 4. lpd, lpq and lprm run setuid daemon and setgrp spooling group to
77 1.1 cgd * access files and printer. Users can't get to anything
78 1.1 cgd * w/o help of lpq and lprm programs.
79 1.1 cgd */
80 1.1 cgd
81 1.4 cgd #include <sys/param.h>
82 1.4 cgd #include <sys/wait.h>
83 1.4 cgd #include <sys/types.h>
84 1.4 cgd #include <sys/socket.h>
85 1.4 cgd #include <sys/un.h>
86 1.4 cgd #include <sys/stat.h>
87 1.12 mrg #include <sys/file.h>
88 1.4 cgd #include <netinet/in.h>
89 1.4 cgd
90 1.18 mrg #include <err.h>
91 1.4 cgd #include <netdb.h>
92 1.4 cgd #include <unistd.h>
93 1.4 cgd #include <syslog.h>
94 1.4 cgd #include <signal.h>
95 1.4 cgd #include <errno.h>
96 1.4 cgd #include <fcntl.h>
97 1.4 cgd #include <dirent.h>
98 1.30 mjl #include <stdarg.h>
99 1.4 cgd #include <stdio.h>
100 1.4 cgd #include <stdlib.h>
101 1.4 cgd #include <string.h>
102 1.4 cgd #include <ctype.h>
103 1.11 mikel #include <arpa/inet.h>
104 1.11 mikel
105 1.38 itojun #ifdef LIBWRAP
106 1.38 itojun #include <tcpd.h>
107 1.38 itojun #endif
108 1.38 itojun
109 1.1 cgd #include "lp.h"
110 1.4 cgd #include "lp.local.h"
111 1.1 cgd #include "pathnames.h"
112 1.4 cgd #include "extern.h"
113 1.1 cgd
114 1.21 itojun /* XXX from libc/net/rcmd.c */
115 1.35 wiz extern int __ivaliduser_sa(FILE *, struct sockaddr *, socklen_t,
116 1.35 wiz const char *, const char *);
117 1.21 itojun
118 1.38 itojun #ifdef LIBWRAP
119 1.38 itojun int allow_severity = LOG_AUTH|LOG_INFO;
120 1.38 itojun int deny_severity = LOG_AUTH|LOG_WARNING;
121 1.38 itojun #endif
122 1.38 itojun
123 1.1 cgd int lflag; /* log requests flag */
124 1.18 mrg int rflag; /* allow of for remote printers */
125 1.8 perry int sflag; /* secure (no inet) flag */
126 1.1 cgd int from_remote; /* from remote socket */
127 1.23 scw char **blist; /* list of addresses to bind(2) to */
128 1.23 scw int blist_size;
129 1.23 scw int blist_addrs;
130 1.1 cgd
131 1.35 wiz int main(int, char **);
132 1.35 wiz static void reapchild(int);
133 1.35 wiz static void mcleanup(int);
134 1.35 wiz static void doit(void);
135 1.35 wiz static void startup(void);
136 1.35 wiz static void chkhost(struct sockaddr *, int);
137 1.35 wiz static int ckqueue(char *);
138 1.35 wiz static void usage(void);
139 1.35 wiz static int *socksetup(int, int, const char *);
140 1.1 cgd
141 1.5 hpeyerl uid_t uid, euid;
142 1.18 mrg int child_count;
143 1.5 hpeyerl
144 1.30 mjl #define LPD_NOPORTCHK 0001 /* skip reserved-port check */
145 1.30 mjl
146 1.4 cgd int
147 1.30 mjl main(int argc, char **argv)
148 1.1 cgd {
149 1.4 cgd fd_set defreadfds;
150 1.4 cgd struct sockaddr_un un, fromunix;
151 1.20 itojun struct sockaddr_storage frominet;
152 1.22 mrg sigset_t nmask, omask;
153 1.22 mrg int lfd, errs, i, f, funix, *finet;
154 1.32 wiz int child_max = 32; /* more than enough to hose the system */
155 1.30 mjl int options = 0, check_options = 0;
156 1.26 itojun struct servent *sp;
157 1.26 itojun const char *port = "printer";
158 1.1 cgd
159 1.5 hpeyerl euid = geteuid(); /* these shouldn't be different */
160 1.5 hpeyerl uid = getuid();
161 1.1 cgd gethostname(host, sizeof(host));
162 1.16 mrg host[sizeof(host) - 1] = '\0';
163 1.1 cgd name = argv[0];
164 1.1 cgd
165 1.13 mrg errs = 0;
166 1.34 hubertf while ((i = getopt(argc, argv, "b:dln:srw:W")) != -1)
167 1.13 mrg switch (i) {
168 1.23 scw case 'b':
169 1.23 scw if (blist_addrs >= blist_size) {
170 1.23 scw blist_size += sizeof(char *) * 4;
171 1.23 scw if (blist == NULL)
172 1.23 scw blist = malloc(blist_size);
173 1.23 scw else
174 1.23 scw blist = realloc(blist, blist_size);
175 1.23 scw if (blist == NULL)
176 1.23 scw err(1, "cant allocate bind addr list");
177 1.23 scw }
178 1.23 scw blist[blist_addrs++] = strdup(optarg);
179 1.23 scw break;
180 1.13 mrg case 'd':
181 1.13 mrg options |= SO_DEBUG;
182 1.13 mrg break;
183 1.13 mrg case 'l':
184 1.13 mrg lflag++;
185 1.14 mrg break;
186 1.18 mrg case 'n':
187 1.18 mrg child_max = atoi(optarg);
188 1.18 mrg if (child_max < 0 || child_max > 1024)
189 1.18 mrg errx(1, "invalid number of children: %s",
190 1.18 mrg optarg);
191 1.18 mrg break;
192 1.18 mrg case 'r':
193 1.18 mrg rflag++;
194 1.18 mrg break;
195 1.14 mrg case 's':
196 1.14 mrg sflag++;
197 1.13 mrg break;
198 1.18 mrg case 'w':
199 1.18 mrg wait_time = atoi(optarg);
200 1.18 mrg if (wait_time < 0)
201 1.18 mrg errx(1, "wait time must be postive: %s",
202 1.18 mrg optarg);
203 1.18 mrg if (wait_time < 30)
204 1.18 mrg warnx("warning: wait time less than 30 seconds");
205 1.18 mrg break;
206 1.30 mjl case 'W':/* allow connections coming from a non-reserved port */
207 1.30 mjl /* (done by some lpr-implementations for MS-Windows) */
208 1.30 mjl check_options |= LPD_NOPORTCHK;
209 1.30 mjl break;
210 1.13 mrg default:
211 1.13 mrg errs++;
212 1.13 mrg }
213 1.13 mrg argc -= optind;
214 1.13 mrg argv += optind;
215 1.22 mrg if (errs)
216 1.13 mrg usage();
217 1.1 cgd
218 1.22 mrg switch (argc) {
219 1.22 mrg case 1:
220 1.22 mrg if ((i = atoi(argv[0])) == 0)
221 1.22 mrg usage();
222 1.22 mrg if (i < 0 || i > USHRT_MAX)
223 1.22 mrg errx(1, "port # %d is invalid", i);
224 1.22 mrg
225 1.26 itojun port = argv[0];
226 1.22 mrg break;
227 1.22 mrg case 0:
228 1.26 itojun sp = getservbyname(port, "tcp");
229 1.22 mrg if (sp == NULL)
230 1.26 itojun errx(1, "%s/tcp: unknown service", port);
231 1.22 mrg break;
232 1.22 mrg default:
233 1.22 mrg usage();
234 1.22 mrg }
235 1.22 mrg
236 1.1 cgd #ifndef DEBUG
237 1.1 cgd /*
238 1.1 cgd * Set up standard environment by detaching from the parent.
239 1.1 cgd */
240 1.1 cgd daemon(0, 0);
241 1.1 cgd #endif
242 1.1 cgd
243 1.1 cgd openlog("lpd", LOG_PID, LOG_LPR);
244 1.4 cgd syslog(LOG_INFO, "restarted");
245 1.9 mrg (void)umask(0);
246 1.1 cgd lfd = open(_PATH_MASTERLOCK, O_WRONLY|O_CREAT, 0644);
247 1.1 cgd if (lfd < 0) {
248 1.1 cgd syslog(LOG_ERR, "%s: %m", _PATH_MASTERLOCK);
249 1.1 cgd exit(1);
250 1.1 cgd }
251 1.1 cgd if (flock(lfd, LOCK_EX|LOCK_NB) < 0) {
252 1.33 wiz if (errno == EWOULDBLOCK) /* active daemon present */
253 1.1 cgd exit(0);
254 1.1 cgd syslog(LOG_ERR, "%s: %m", _PATH_MASTERLOCK);
255 1.1 cgd exit(1);
256 1.1 cgd }
257 1.1 cgd ftruncate(lfd, 0);
258 1.1 cgd /*
259 1.1 cgd * write process id for others to know
260 1.1 cgd */
261 1.9 mrg (void)snprintf(line, sizeof(line), "%u\n", getpid());
262 1.1 cgd f = strlen(line);
263 1.1 cgd if (write(lfd, line, f) != f) {
264 1.1 cgd syslog(LOG_ERR, "%s: %m", _PATH_MASTERLOCK);
265 1.1 cgd exit(1);
266 1.1 cgd }
267 1.1 cgd signal(SIGCHLD, reapchild);
268 1.1 cgd /*
269 1.1 cgd * Restart all the printers.
270 1.1 cgd */
271 1.1 cgd startup();
272 1.9 mrg (void)unlink(_PATH_SOCKETNAME);
273 1.17 lukem funix = socket(AF_LOCAL, SOCK_STREAM, 0);
274 1.1 cgd if (funix < 0) {
275 1.1 cgd syslog(LOG_ERR, "socket: %m");
276 1.1 cgd exit(1);
277 1.1 cgd }
278 1.22 mrg
279 1.22 mrg sigemptyset(&nmask);
280 1.22 mrg sigaddset(&nmask, SIGHUP);
281 1.22 mrg sigaddset(&nmask, SIGINT);
282 1.22 mrg sigaddset(&nmask, SIGQUIT);
283 1.22 mrg sigaddset(&nmask, SIGTERM);
284 1.22 mrg sigprocmask(SIG_BLOCK, &nmask, &omask);
285 1.22 mrg
286 1.22 mrg (void) umask(07);
287 1.1 cgd signal(SIGHUP, mcleanup);
288 1.1 cgd signal(SIGINT, mcleanup);
289 1.1 cgd signal(SIGQUIT, mcleanup);
290 1.1 cgd signal(SIGTERM, mcleanup);
291 1.4 cgd memset(&un, 0, sizeof(un));
292 1.17 lukem un.sun_family = AF_LOCAL;
293 1.9 mrg strncpy(un.sun_path, _PATH_SOCKETNAME, sizeof(un.sun_path) - 1);
294 1.4 cgd #ifndef SUN_LEN
295 1.4 cgd #define SUN_LEN(unp) (strlen((unp)->sun_path) + 2)
296 1.4 cgd #endif
297 1.4 cgd if (bind(funix, (struct sockaddr *)&un, SUN_LEN(&un)) < 0) {
298 1.1 cgd syslog(LOG_ERR, "ubind: %m");
299 1.1 cgd exit(1);
300 1.1 cgd }
301 1.22 mrg (void) umask(0);
302 1.22 mrg sigprocmask(SIG_SETMASK, &omask, (sigset_t *)0);
303 1.4 cgd FD_ZERO(&defreadfds);
304 1.36 itojun if (funix >= FD_SETSIZE) {
305 1.36 itojun syslog(LOG_ERR, "descriptor too big");
306 1.36 itojun exit(1);
307 1.36 itojun }
308 1.4 cgd FD_SET(funix, &defreadfds);
309 1.1 cgd listen(funix, 5);
310 1.23 scw if (!sflag || blist_addrs)
311 1.26 itojun finet = socksetup(PF_UNSPEC, options, port);
312 1.8 perry else
313 1.20 itojun finet = NULL; /* pretend we couldn't open TCP socket. */
314 1.1 cgd
315 1.24 scw if (blist != NULL) {
316 1.24 scw for (i = 0; i < blist_addrs; i++)
317 1.24 scw free(blist[i]);
318 1.23 scw free(blist);
319 1.24 scw }
320 1.23 scw
321 1.20 itojun if (finet) {
322 1.20 itojun for (i = 1; i <= *finet; i++) {
323 1.36 itojun if (finet[i] >= FD_SETSIZE) {
324 1.36 itojun syslog(LOG_ERR, "descriptor too big");
325 1.36 itojun exit(1);
326 1.36 itojun }
327 1.20 itojun FD_SET(finet[i], &defreadfds);
328 1.20 itojun listen(finet[i], 5);
329 1.1 cgd }
330 1.1 cgd }
331 1.1 cgd /*
332 1.1 cgd * Main loop: accept, do a request, continue.
333 1.1 cgd */
334 1.4 cgd memset(&frominet, 0, sizeof(frominet));
335 1.4 cgd memset(&fromunix, 0, sizeof(fromunix));
336 1.1 cgd for (;;) {
337 1.22 mrg int domain, nfds, s, fromlen;
338 1.4 cgd fd_set readfds;
339 1.18 mrg /* "short" so it overflows in about 2 hours */
340 1.18 mrg short sleeptime = 10;
341 1.18 mrg
342 1.18 mrg while (child_max < child_count) {
343 1.18 mrg syslog(LOG_WARNING,
344 1.18 mrg "too many children, sleeping for %d seconds",
345 1.18 mrg sleeptime);
346 1.18 mrg sleep(sleeptime);
347 1.18 mrg sleeptime <<= 1;
348 1.18 mrg if (sleeptime < 0) {
349 1.18 mrg syslog(LOG_CRIT, "sleeptime overflowed! help!");
350 1.18 mrg sleeptime = 10;
351 1.18 mrg }
352 1.18 mrg }
353 1.1 cgd
354 1.4 cgd FD_COPY(&defreadfds, &readfds);
355 1.1 cgd nfds = select(20, &readfds, 0, 0, 0);
356 1.1 cgd if (nfds <= 0) {
357 1.1 cgd if (nfds < 0 && errno != EINTR)
358 1.1 cgd syslog(LOG_WARNING, "select: %m");
359 1.1 cgd continue;
360 1.1 cgd }
361 1.4 cgd if (FD_ISSET(funix, &readfds)) {
362 1.22 mrg domain = AF_LOCAL;
363 1.22 mrg fromlen = sizeof(fromunix);
364 1.1 cgd s = accept(funix,
365 1.1 cgd (struct sockaddr *)&fromunix, &fromlen);
366 1.20 itojun } else {
367 1.20 itojun for (i = 1; i <= *finet; i++)
368 1.20 itojun if (FD_ISSET(finet[i], &readfds)) {
369 1.20 itojun domain = AF_INET, fromlen = sizeof(frominet);
370 1.20 itojun s = accept(finet[i], (struct sockaddr *)&frominet, &fromlen);
371 1.20 itojun }
372 1.1 cgd }
373 1.1 cgd if (s < 0) {
374 1.1 cgd if (errno != EINTR)
375 1.1 cgd syslog(LOG_WARNING, "accept: %m");
376 1.1 cgd continue;
377 1.1 cgd }
378 1.18 mrg
379 1.18 mrg switch (fork()) {
380 1.18 mrg case 0:
381 1.1 cgd signal(SIGCHLD, SIG_IGN);
382 1.1 cgd signal(SIGHUP, SIG_IGN);
383 1.1 cgd signal(SIGINT, SIG_IGN);
384 1.1 cgd signal(SIGQUIT, SIG_IGN);
385 1.1 cgd signal(SIGTERM, SIG_IGN);
386 1.9 mrg (void)close(funix);
387 1.20 itojun if (!sflag && finet)
388 1.20 itojun for (i = 1; i <= *finet; i++)
389 1.20 itojun (void)close(finet[i]);
390 1.1 cgd dup2(s, 1);
391 1.9 mrg (void)close(s);
392 1.1 cgd if (domain == AF_INET) {
393 1.20 itojun /* for both AF_INET and AF_INET6 */
394 1.1 cgd from_remote = 1;
395 1.30 mjl chkhost((struct sockaddr *)&frominet, check_options);
396 1.1 cgd } else
397 1.1 cgd from_remote = 0;
398 1.1 cgd doit();
399 1.1 cgd exit(0);
400 1.18 mrg case -1:
401 1.18 mrg syslog(LOG_WARNING, "fork: %m, sleeping for 10 seconds...");
402 1.18 mrg sleep(10);
403 1.18 mrg continue;
404 1.18 mrg default:
405 1.18 mrg child_count++;
406 1.1 cgd }
407 1.9 mrg (void)close(s);
408 1.1 cgd }
409 1.1 cgd }
410 1.1 cgd
411 1.4 cgd static void
412 1.30 mjl reapchild(int signo)
413 1.1 cgd {
414 1.1 cgd union wait status;
415 1.1 cgd
416 1.1 cgd while (wait3((int *)&status, WNOHANG, 0) > 0)
417 1.18 mrg child_count--;
418 1.1 cgd }
419 1.1 cgd
420 1.4 cgd static void
421 1.30 mjl mcleanup(int signo)
422 1.1 cgd {
423 1.1 cgd if (lflag)
424 1.1 cgd syslog(LOG_INFO, "exiting");
425 1.1 cgd unlink(_PATH_SOCKETNAME);
426 1.1 cgd exit(0);
427 1.1 cgd }
428 1.1 cgd
429 1.1 cgd /*
430 1.1 cgd * Stuff for handling job specifications
431 1.1 cgd */
432 1.1 cgd char *user[MAXUSERS]; /* users to process */
433 1.1 cgd int users; /* # of users in user array */
434 1.1 cgd int requ[MAXREQUESTS]; /* job number of spool entries */
435 1.1 cgd int requests; /* # of spool requests */
436 1.1 cgd char *person; /* name of person doing lprm */
437 1.1 cgd
438 1.20 itojun char fromb[NI_MAXHOST]; /* buffer for client's machine name */
439 1.4 cgd char cbuf[BUFSIZ]; /* command line buffer */
440 1.1 cgd char *cmdnames[] = {
441 1.1 cgd "null",
442 1.1 cgd "printjob",
443 1.1 cgd "recvjob",
444 1.1 cgd "displayq short",
445 1.1 cgd "displayq long",
446 1.1 cgd "rmjob"
447 1.1 cgd };
448 1.1 cgd
449 1.4 cgd static void
450 1.30 mjl doit(void)
451 1.1 cgd {
452 1.13 mrg char *cp;
453 1.13 mrg int n;
454 1.1 cgd
455 1.1 cgd for (;;) {
456 1.1 cgd cp = cbuf;
457 1.1 cgd do {
458 1.1 cgd if (cp >= &cbuf[sizeof(cbuf) - 1])
459 1.1 cgd fatal("Command line too long");
460 1.31 mjl if ((n = read(STDOUT_FILENO, cp, 1)) != 1) {
461 1.1 cgd if (n < 0)
462 1.1 cgd fatal("Lost connection");
463 1.1 cgd return;
464 1.1 cgd }
465 1.1 cgd } while (*cp++ != '\n');
466 1.1 cgd *--cp = '\0';
467 1.1 cgd cp = cbuf;
468 1.1 cgd if (lflag) {
469 1.18 mrg if (*cp >= '\1' && *cp <= '\5') {
470 1.1 cgd syslog(LOG_INFO, "%s requests %s %s",
471 1.10 mikel from, cmdnames[(int)*cp], cp+1);
472 1.18 mrg setproctitle("serving %s: %s %s", from,
473 1.18 mrg cmdnames[(int)*cp], cp+1);
474 1.18 mrg }
475 1.1 cgd else
476 1.1 cgd syslog(LOG_INFO, "bad request (%d) from %s",
477 1.1 cgd *cp, from);
478 1.1 cgd }
479 1.1 cgd switch (*cp++) {
480 1.1 cgd case '\1': /* check the queue and print any jobs there */
481 1.1 cgd printer = cp;
482 1.29 mrg if (*printer == '\0')
483 1.29 mrg printer = DEFLP;
484 1.1 cgd printjob();
485 1.1 cgd break;
486 1.1 cgd case '\2': /* receive files to be queued */
487 1.1 cgd if (!from_remote) {
488 1.1 cgd syslog(LOG_INFO, "illegal request (%d)", *cp);
489 1.1 cgd exit(1);
490 1.1 cgd }
491 1.1 cgd printer = cp;
492 1.29 mrg if (*printer == '\0')
493 1.29 mrg printer = DEFLP;
494 1.1 cgd recvjob();
495 1.1 cgd break;
496 1.1 cgd case '\3': /* display the queue (short form) */
497 1.1 cgd case '\4': /* display the queue (long form) */
498 1.1 cgd printer = cp;
499 1.29 mrg if (*printer == '\0')
500 1.29 mrg printer = DEFLP;
501 1.1 cgd while (*cp) {
502 1.1 cgd if (*cp != ' ') {
503 1.1 cgd cp++;
504 1.1 cgd continue;
505 1.1 cgd }
506 1.1 cgd *cp++ = '\0';
507 1.1 cgd while (isspace(*cp))
508 1.1 cgd cp++;
509 1.1 cgd if (*cp == '\0')
510 1.1 cgd break;
511 1.1 cgd if (isdigit(*cp)) {
512 1.1 cgd if (requests >= MAXREQUESTS)
513 1.1 cgd fatal("Too many requests");
514 1.1 cgd requ[requests++] = atoi(cp);
515 1.1 cgd } else {
516 1.1 cgd if (users >= MAXUSERS)
517 1.1 cgd fatal("Too many users");
518 1.1 cgd user[users++] = cp;
519 1.1 cgd }
520 1.1 cgd }
521 1.1 cgd displayq(cbuf[0] - '\3');
522 1.1 cgd exit(0);
523 1.1 cgd case '\5': /* remove a job from the queue */
524 1.1 cgd if (!from_remote) {
525 1.1 cgd syslog(LOG_INFO, "illegal request (%d)", *cp);
526 1.1 cgd exit(1);
527 1.1 cgd }
528 1.1 cgd printer = cp;
529 1.29 mrg if (*printer == '\0')
530 1.29 mrg printer = DEFLP;
531 1.1 cgd while (*cp && *cp != ' ')
532 1.1 cgd cp++;
533 1.1 cgd if (!*cp)
534 1.1 cgd break;
535 1.1 cgd *cp++ = '\0';
536 1.1 cgd person = cp;
537 1.1 cgd while (*cp) {
538 1.1 cgd if (*cp != ' ') {
539 1.1 cgd cp++;
540 1.1 cgd continue;
541 1.1 cgd }
542 1.1 cgd *cp++ = '\0';
543 1.1 cgd while (isspace(*cp))
544 1.1 cgd cp++;
545 1.1 cgd if (*cp == '\0')
546 1.1 cgd break;
547 1.1 cgd if (isdigit(*cp)) {
548 1.1 cgd if (requests >= MAXREQUESTS)
549 1.1 cgd fatal("Too many requests");
550 1.1 cgd requ[requests++] = atoi(cp);
551 1.1 cgd } else {
552 1.1 cgd if (users >= MAXUSERS)
553 1.1 cgd fatal("Too many users");
554 1.1 cgd user[users++] = cp;
555 1.1 cgd }
556 1.1 cgd }
557 1.1 cgd rmjob();
558 1.1 cgd break;
559 1.1 cgd }
560 1.1 cgd fatal("Illegal service request");
561 1.1 cgd }
562 1.1 cgd }
563 1.1 cgd
564 1.1 cgd /*
565 1.1 cgd * Make a pass through the printcap database and start printing any
566 1.1 cgd * files left from the last time the machine went down.
567 1.1 cgd */
568 1.4 cgd static void
569 1.30 mjl startup(void)
570 1.1 cgd {
571 1.4 cgd char *buf;
572 1.13 mrg char *cp;
573 1.1 cgd
574 1.1 cgd /*
575 1.1 cgd * Restart the daemons.
576 1.1 cgd */
577 1.4 cgd while (cgetnext(&buf, printcapdb) > 0) {
578 1.12 mrg if (ckqueue(buf) <= 0) {
579 1.12 mrg free(buf);
580 1.12 mrg continue; /* no work to do for this printer */
581 1.12 mrg }
582 1.1 cgd for (cp = buf; *cp; cp++)
583 1.1 cgd if (*cp == '|' || *cp == ':') {
584 1.1 cgd *cp = '\0';
585 1.1 cgd break;
586 1.1 cgd }
587 1.12 mrg if (lflag)
588 1.12 mrg syslog(LOG_INFO, "work for %s", buf);
589 1.18 mrg switch (fork()) {
590 1.18 mrg case -1:
591 1.1 cgd syslog(LOG_WARNING, "startup: cannot fork");
592 1.4 cgd mcleanup(0);
593 1.18 mrg case 0:
594 1.4 cgd printer = buf;
595 1.18 mrg setproctitle("working on printer %s", printer);
596 1.4 cgd cgetclose();
597 1.1 cgd printjob();
598 1.12 mrg /* NOTREACHED */
599 1.18 mrg default:
600 1.18 mrg child_count++;
601 1.18 mrg free(buf);
602 1.1 cgd }
603 1.12 mrg }
604 1.12 mrg }
605 1.12 mrg
606 1.12 mrg /*
607 1.12 mrg * Make sure there's some work to do before forking off a child
608 1.12 mrg */
609 1.12 mrg static int
610 1.30 mjl ckqueue(char *cap)
611 1.12 mrg {
612 1.13 mrg struct dirent *d;
613 1.12 mrg DIR *dirp;
614 1.12 mrg char *spooldir;
615 1.12 mrg
616 1.12 mrg if (cgetstr(cap, "sd", &spooldir) == -1)
617 1.12 mrg spooldir = _PATH_DEFSPOOL;
618 1.12 mrg if ((dirp = opendir(spooldir)) == NULL)
619 1.12 mrg return (-1);
620 1.12 mrg while ((d = readdir(dirp)) != NULL) {
621 1.12 mrg if (d->d_name[0] != 'c' || d->d_name[1] != 'f')
622 1.12 mrg continue; /* daemon control files only */
623 1.12 mrg closedir(dirp);
624 1.12 mrg return (1); /* found something */
625 1.1 cgd }
626 1.12 mrg closedir(dirp);
627 1.12 mrg return (0);
628 1.1 cgd }
629 1.1 cgd
630 1.1 cgd #define DUMMY ":nobody::"
631 1.1 cgd
632 1.1 cgd /*
633 1.1 cgd * Check to see if the from host has access to the line printer.
634 1.1 cgd */
635 1.4 cgd static void
636 1.30 mjl chkhost(struct sockaddr *f, int check_opts)
637 1.1 cgd {
638 1.20 itojun struct addrinfo hints, *res, *r;
639 1.13 mrg FILE *hostf;
640 1.38 itojun int good = 0;
641 1.20 itojun char host[NI_MAXHOST], ip[NI_MAXHOST];
642 1.20 itojun char serv[NI_MAXSERV];
643 1.20 itojun int error;
644 1.38 itojun #ifdef LIBWRAP
645 1.38 itojun struct request_info req;
646 1.38 itojun #endif
647 1.20 itojun
648 1.20 itojun error = getnameinfo(f, f->sa_len, NULL, 0, serv, sizeof(serv),
649 1.20 itojun NI_NUMERICSERV);
650 1.30 mjl if (error)
651 1.37 grant fatal("Malformed from address: %s", gai_strerror(error));
652 1.4 cgd
653 1.30 mjl if (!(check_opts & LPD_NOPORTCHK) &&
654 1.30 mjl atoi(serv) >= IPPORT_RESERVED)
655 1.30 mjl fatal("Connect from invalid port (%s)", serv);
656 1.30 mjl
657 1.4 cgd /* Need real hostname for temporary filenames */
658 1.20 itojun error = getnameinfo(f, f->sa_len, host, sizeof(host), NULL, 0,
659 1.20 itojun NI_NAMEREQD);
660 1.20 itojun if (error) {
661 1.20 itojun error = getnameinfo(f, f->sa_len, host, sizeof(host), NULL, 0,
662 1.20 itojun NI_NUMERICHOST);
663 1.20 itojun if (error)
664 1.20 itojun fatal("Host name for your address unknown");
665 1.20 itojun else
666 1.20 itojun fatal("Host name for your address (%s) unknown", host);
667 1.20 itojun }
668 1.1 cgd
669 1.20 itojun (void)strncpy(fromb, host, sizeof(fromb) - 1);
670 1.19 mjl fromb[sizeof(fromb) - 1] = '\0';
671 1.1 cgd from = fromb;
672 1.1 cgd
673 1.20 itojun /* need address in stringform for comparison (no DNS lookup here) */
674 1.20 itojun error = getnameinfo(f, f->sa_len, host, sizeof(host), NULL, 0,
675 1.20 itojun NI_NUMERICHOST);
676 1.20 itojun if (error)
677 1.20 itojun fatal("Cannot print address");
678 1.20 itojun
679 1.13 mrg /* Check for spoof, ala rlogind */
680 1.20 itojun memset(&hints, 0, sizeof(hints));
681 1.20 itojun hints.ai_family = PF_UNSPEC;
682 1.20 itojun hints.ai_socktype = SOCK_DGRAM; /*dummy*/
683 1.20 itojun error = getaddrinfo(fromb, NULL, &hints, &res);
684 1.20 itojun if (error) {
685 1.20 itojun fatal("hostname for your address (%s) unknown: %s", host,
686 1.20 itojun gai_strerror(error));
687 1.20 itojun }
688 1.20 itojun good = 0;
689 1.20 itojun for (r = res; good == 0 && r; r = r->ai_next) {
690 1.20 itojun error = getnameinfo(r->ai_addr, r->ai_addrlen, ip, sizeof(ip),
691 1.20 itojun NULL, 0, NI_NUMERICHOST);
692 1.20 itojun if (!error && !strcmp(host, ip))
693 1.13 mrg good = 1;
694 1.13 mrg }
695 1.20 itojun if (res)
696 1.20 itojun freeaddrinfo(res);
697 1.13 mrg if (good == 0)
698 1.20 itojun fatal("address for your hostname (%s) not matched", host);
699 1.38 itojun
700 1.18 mrg setproctitle("serving %s", from);
701 1.38 itojun
702 1.38 itojun #ifdef LIBWRAP
703 1.38 itojun request_init(&req, RQ_DAEMON, "lpd", RQ_CLIENT_SIN, f, NULL);
704 1.38 itojun fromhost(&req);
705 1.38 itojun if (!hosts_access(&req))
706 1.38 itojun goto denied;
707 1.38 itojun #endif
708 1.38 itojun
709 1.1 cgd hostf = fopen(_PATH_HOSTSEQUIV, "r");
710 1.1 cgd if (hostf) {
711 1.21 itojun if (__ivaliduser_sa(hostf, f, f->sa_len, DUMMY, DUMMY) == 0) {
712 1.9 mrg (void)fclose(hostf);
713 1.1 cgd return;
714 1.1 cgd }
715 1.9 mrg (void)fclose(hostf);
716 1.1 cgd }
717 1.38 itojun hostf = fopen(_PATH_HOSTSLPD, "r");
718 1.38 itojun if (hostf) {
719 1.38 itojun if (__ivaliduser_sa(hostf, f, f->sa_len, DUMMY, DUMMY) == 0) {
720 1.38 itojun (void)fclose(hostf);
721 1.38 itojun return;
722 1.38 itojun }
723 1.38 itojun (void)fclose(hostf);
724 1.1 cgd }
725 1.38 itojun #ifdef LIBWRAP
726 1.38 itojun denied:
727 1.38 itojun #endif
728 1.1 cgd fatal("Your host does not have line printer access");
729 1.4 cgd /*NOTREACHED*/
730 1.13 mrg }
731 1.13 mrg
732 1.30 mjl
733 1.13 mrg static void
734 1.30 mjl usage(void)
735 1.13 mrg {
736 1.13 mrg
737 1.30 mjl fprintf(stderr, "usage: %s [-dlrsW] [-b bind-address] [-n maxchild] "
738 1.28 simonb "[-w maxwait] [port]\n", getprogname());
739 1.13 mrg exit(1);
740 1.20 itojun }
741 1.20 itojun
742 1.20 itojun /* setup server socket for specified address family */
743 1.20 itojun /* if af is PF_UNSPEC more than one socket may be returned */
744 1.20 itojun /* the returned list is dynamically allocated, so caller needs to free it */
745 1.20 itojun int *
746 1.30 mjl socksetup(int af, int options, const char *port)
747 1.20 itojun {
748 1.20 itojun struct addrinfo hints, *res, *r;
749 1.23 scw int error, maxs = 0, *s, *socks = NULL, blidx = 0;
750 1.20 itojun const int on = 1;
751 1.20 itojun
752 1.23 scw do {
753 1.23 scw memset(&hints, 0, sizeof(hints));
754 1.23 scw hints.ai_flags = AI_PASSIVE;
755 1.23 scw hints.ai_family = af;
756 1.23 scw hints.ai_socktype = SOCK_STREAM;
757 1.23 scw error = getaddrinfo((blist_addrs == 0) ? NULL : blist[blidx],
758 1.26 itojun port ? port : "printer", &hints, &res);
759 1.23 scw if (error) {
760 1.23 scw if (blist_addrs)
761 1.23 scw syslog(LOG_ERR, "%s: %s", blist[blidx],
762 1.25 itojun gai_strerror(error));
763 1.23 scw else
764 1.25 itojun syslog(LOG_ERR, "%s", gai_strerror(error));
765 1.23 scw mcleanup(0);
766 1.23 scw }
767 1.20 itojun
768 1.23 scw /* Count max number of sockets we may open */
769 1.23 scw for (r = res; r; r = r->ai_next, maxs++)
770 1.23 scw ;
771 1.23 scw if (socks == NULL) {
772 1.23 scw socks = malloc((maxs + 1) * sizeof(int));
773 1.23 scw if (socks)
774 1.23 scw *socks = 0; /* num of sockets ctr at start */
775 1.23 scw } else
776 1.23 scw socks = realloc(socks, (maxs + 1) * sizeof(int));
777 1.23 scw if (!socks) {
778 1.23 scw syslog(LOG_ERR, "couldn't allocate memory for sockets");
779 1.23 scw mcleanup(0);
780 1.20 itojun }
781 1.23 scw
782 1.23 scw s = socks + *socks + 1;
783 1.23 scw for (r = res; r; r = r->ai_next) {
784 1.23 scw *s = socket(r->ai_family, r->ai_socktype,
785 1.23 scw r->ai_protocol);
786 1.23 scw if (*s < 0) {
787 1.23 scw syslog(LOG_DEBUG, "socket(): %m");
788 1.23 scw continue;
789 1.23 scw }
790 1.23 scw if (options & SO_DEBUG)
791 1.23 scw if (setsockopt(*s, SOL_SOCKET, SO_DEBUG,
792 1.23 scw &on, sizeof(on)) < 0) {
793 1.23 scw syslog(LOG_ERR,
794 1.23 scw "setsockopt (SO_DEBUG): %m");
795 1.23 scw close (*s);
796 1.23 scw continue;
797 1.23 scw }
798 1.38 itojun if (setsockopt(*s, SOL_SOCKET, SO_REUSEPORT, &on,
799 1.38 itojun sizeof(on)) < 0) {
800 1.38 itojun syslog(LOG_ERR,
801 1.38 itojun "setsockopt (SO_REUSEPORT): %m");
802 1.38 itojun close (*s);
803 1.38 itojun continue;
804 1.38 itojun }
805 1.23 scw if (bind(*s, r->ai_addr, r->ai_addrlen) < 0) {
806 1.23 scw syslog(LOG_DEBUG, "bind(): %m");
807 1.20 itojun close (*s);
808 1.20 itojun continue;
809 1.20 itojun }
810 1.23 scw *socks = *socks + 1;
811 1.23 scw s++;
812 1.20 itojun }
813 1.20 itojun
814 1.23 scw if (res)
815 1.23 scw freeaddrinfo(res);
816 1.23 scw } while (++blidx < blist_addrs);
817 1.20 itojun
818 1.23 scw if (socks == NULL || *socks == 0) {
819 1.20 itojun syslog(LOG_ERR, "Couldn't bind to any socket");
820 1.23 scw if (socks != NULL)
821 1.23 scw free(socks);
822 1.20 itojun mcleanup(0);
823 1.20 itojun }
824 1.20 itojun return(socks);
825 1.1 cgd }
826