lpd.c revision 1.46 1 /* $NetBSD: lpd.c,v 1.46 2003/08/07 11:25:27 agc Exp $ */
2
3 /*
4 * Copyright (c) 1983, 1993, 1994
5 * The Regents of the University of California. All rights reserved.
6 *
7 *
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted provided that the following conditions
10 * are met:
11 * 1. Redistributions of source code must retain the above copyright
12 * notice, this list of conditions and the following disclaimer.
13 * 2. Redistributions in binary form must reproduce the above copyright
14 * notice, this list of conditions and the following disclaimer in the
15 * documentation and/or other materials provided with the distribution.
16 * 3. Neither the name of the University nor the names of its contributors
17 * may be used to endorse or promote products derived from this software
18 * without specific prior written permission.
19 *
20 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
21 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
24 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
25 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
26 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
27 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
28 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
29 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
30 * SUCH DAMAGE.
31 */
32
33 #include <sys/cdefs.h>
34
35 #ifndef lint
36 __COPYRIGHT("@(#) Copyright (c) 1983, 1993, 1994\n\
37 The Regents of the University of California. All rights reserved.\n");
38 #endif /* not lint */
39
40 #ifndef lint
41 #if 0
42 static char sccsid[] = "@(#)lpd.c 8.7 (Berkeley) 5/10/95";
43 #else
44 __RCSID("$NetBSD: lpd.c,v 1.46 2003/08/07 11:25:27 agc Exp $");
45 #endif
46 #endif /* not lint */
47
48 /*
49 * lpd -- line printer daemon.
50 *
51 * Listen for a connection and perform the requested operation.
52 * Operations are:
53 * \1printer\n
54 * check the queue for jobs and print any found.
55 * \2printer\n
56 * receive a job from another machine and queue it.
57 * \3printer [users ...] [jobs ...]\n
58 * return the current state of the queue (short form).
59 * \4printer [users ...] [jobs ...]\n
60 * return the current state of the queue (long form).
61 * \5printer person [users ...] [jobs ...]\n
62 * remove jobs from the queue.
63 *
64 * Strategy to maintain protected spooling area:
65 * 1. Spooling area is writable only by daemon and spooling group
66 * 2. lpr runs setuid root and setgrp spooling group; it uses
67 * root to access any file it wants (verifying things before
68 * with an access call) and group id to know how it should
69 * set up ownership of files in the spooling area.
70 * 3. Files in spooling area are owned by root, group spooling
71 * group, with mode 660.
72 * 4. lpd, lpq and lprm run setuid daemon and setgrp spooling group to
73 * access files and printer. Users can't get to anything
74 * w/o help of lpq and lprm programs.
75 */
76
77 #include <sys/param.h>
78 #include <sys/wait.h>
79 #include <sys/types.h>
80 #include <sys/socket.h>
81 #include <sys/un.h>
82 #include <sys/stat.h>
83 #include <sys/file.h>
84 #include <sys/poll.h>
85 #include <netinet/in.h>
86
87 #include <err.h>
88 #include <netdb.h>
89 #include <unistd.h>
90 #include <syslog.h>
91 #include <signal.h>
92 #include <errno.h>
93 #include <fcntl.h>
94 #include <dirent.h>
95 #include <stdarg.h>
96 #include <stdio.h>
97 #include <stdlib.h>
98 #include <string.h>
99 #include <ctype.h>
100 #include <arpa/inet.h>
101
102 #ifdef LIBWRAP
103 #include <tcpd.h>
104 #endif
105
106 #include "lp.h"
107 #include "lp.local.h"
108 #include "pathnames.h"
109 #include "extern.h"
110
111 /* XXX from libc/net/rcmd.c */
112 extern int __ivaliduser_sa(FILE *, struct sockaddr *, socklen_t,
113 const char *, const char *);
114
115 #ifdef LIBWRAP
116 int allow_severity = LOG_AUTH|LOG_INFO;
117 int deny_severity = LOG_AUTH|LOG_WARNING;
118 #endif
119
120 int lflag; /* log requests flag */
121 int rflag; /* allow of for remote printers */
122 int sflag; /* secure (no inet) flag */
123 int from_remote; /* from remote socket */
124 char **blist; /* list of addresses to bind(2) to */
125 int blist_size;
126 int blist_addrs;
127
128 int main(int, char **);
129 static void reapchild(int);
130 static void mcleanup(int);
131 static void doit(void);
132 static void startup(void);
133 static void chkhost(struct sockaddr *, int);
134 static int ckqueue(char *);
135 static void usage(void);
136 static struct pollfd *socksetup(int, int, const char *, int *);
137
138 uid_t uid, euid;
139 int child_count;
140
141 #define LPD_NOPORTCHK 0001 /* skip reserved-port check */
142
143 int
144 main(int argc, char **argv)
145 {
146 struct sockaddr_storage from;
147 socklen_t fromlen;
148 sigset_t nmask, omask;
149 int lfd, errs, i, f, nfds;
150 struct pollfd *socks;
151 int child_max = 32; /* more than enough to hose the system */
152 int options = 0, check_options = 0;
153 struct servent *sp;
154 const char *port = "printer";
155
156 euid = geteuid(); /* these shouldn't be different */
157 uid = getuid();
158 gethostname(host, sizeof(host));
159 host[sizeof(host) - 1] = '\0';
160 name = argv[0];
161
162 errs = 0;
163 while ((i = getopt(argc, argv, "b:dln:srw:W")) != -1)
164 switch (i) {
165 case 'b':
166 if (blist_addrs >= blist_size) {
167 blist_size += sizeof(char *) * 4;
168 if (blist == NULL)
169 blist = malloc(blist_size);
170 else
171 blist = realloc(blist, blist_size);
172 if (blist == NULL)
173 err(1, "cant allocate bind addr list");
174 }
175 blist[blist_addrs++] = strdup(optarg);
176 break;
177 case 'd':
178 options |= SO_DEBUG;
179 break;
180 case 'l':
181 lflag++;
182 break;
183 case 'n':
184 child_max = atoi(optarg);
185 if (child_max < 0 || child_max > 1024)
186 errx(1, "invalid number of children: %s",
187 optarg);
188 break;
189 case 'r':
190 rflag++;
191 break;
192 case 's':
193 sflag++;
194 break;
195 case 'w':
196 wait_time = atoi(optarg);
197 if (wait_time < 0)
198 errx(1, "wait time must be postive: %s",
199 optarg);
200 if (wait_time < 30)
201 warnx("warning: wait time less than 30 seconds");
202 break;
203 case 'W':/* allow connections coming from a non-reserved port */
204 /* (done by some lpr-implementations for MS-Windows) */
205 check_options |= LPD_NOPORTCHK;
206 break;
207 default:
208 errs++;
209 }
210 argc -= optind;
211 argv += optind;
212 if (errs)
213 usage();
214
215 switch (argc) {
216 case 1:
217 if ((i = atoi(argv[0])) == 0)
218 usage();
219 if (i < 0 || i > USHRT_MAX)
220 errx(1, "port # %d is invalid", i);
221
222 port = argv[0];
223 break;
224 case 0:
225 sp = getservbyname(port, "tcp");
226 if (sp == NULL)
227 errx(1, "%s/tcp: unknown service", port);
228 break;
229 default:
230 usage();
231 }
232
233 #ifndef DEBUG
234 /*
235 * Set up standard environment by detaching from the parent.
236 */
237 daemon(0, 0);
238 #endif
239
240 openlog("lpd", LOG_PID, LOG_LPR);
241 syslog(LOG_INFO, "restarted");
242 (void)umask(0);
243 lfd = open(_PATH_MASTERLOCK, O_WRONLY|O_CREAT, 0644);
244 if (lfd < 0) {
245 syslog(LOG_ERR, "%s: %m", _PATH_MASTERLOCK);
246 exit(1);
247 }
248 if (flock(lfd, LOCK_EX|LOCK_NB) < 0) {
249 if (errno == EWOULDBLOCK) { /* active daemon present */
250 syslog(LOG_ERR, "%s is locked; another lpd is running",
251 _PATH_MASTERLOCK);
252 exit(0);
253 }
254 syslog(LOG_ERR, "%s: %m", _PATH_MASTERLOCK);
255 exit(1);
256 }
257 ftruncate(lfd, 0);
258 /*
259 * write process id for others to know
260 */
261 (void)snprintf(line, sizeof(line), "%u\n", getpid());
262 f = strlen(line);
263 if (write(lfd, line, f) != f) {
264 syslog(LOG_ERR, "%s: %m", _PATH_MASTERLOCK);
265 exit(1);
266 }
267 signal(SIGCHLD, reapchild);
268 /*
269 * Restart all the printers.
270 */
271 startup();
272
273 sigemptyset(&nmask);
274 sigaddset(&nmask, SIGHUP);
275 sigaddset(&nmask, SIGINT);
276 sigaddset(&nmask, SIGQUIT);
277 sigaddset(&nmask, SIGTERM);
278 sigprocmask(SIG_BLOCK, &nmask, &omask);
279
280 signal(SIGHUP, mcleanup);
281 signal(SIGINT, mcleanup);
282 signal(SIGQUIT, mcleanup);
283 signal(SIGTERM, mcleanup);
284
285 socks = socksetup(PF_UNSPEC, options, port, &nfds);
286
287 sigprocmask(SIG_SETMASK, &omask, (sigset_t *)0);
288
289 if (blist != NULL) {
290 for (i = 0; i < blist_addrs; i++)
291 free(blist[i]);
292 free(blist);
293 }
294
295 /*
296 * Main loop: accept, do a request, continue.
297 */
298 memset(&from, 0, sizeof(from));
299 for (;;) {
300 int rv, s;
301 /* "short" so it overflows in about 2 hours */
302 struct timespec sleeptime = {10, 0};
303
304 while (child_max < child_count) {
305 syslog(LOG_WARNING,
306 "too many children, sleeping for %ld seconds",
307 (long)sleeptime.tv_sec);
308 nanosleep(&sleeptime, NULL);
309 sleeptime.tv_sec <<= 1;
310 if (sleeptime.tv_sec <= 0) {
311 syslog(LOG_CRIT, "sleeptime overflowed! help!");
312 sleeptime.tv_sec = 10;
313 }
314 }
315
316 rv = poll(socks, nfds, INFTIM);
317 if (rv <= 0) {
318 if (rv < 0 && errno != EINTR)
319 syslog(LOG_WARNING, "poll: %m");
320 continue;
321 }
322 for (i = 0; i < nfds; i++)
323 if (socks[i].revents & POLLIN) {
324 fromlen = sizeof(from);
325 s = accept(socks[i].fd,
326 (struct sockaddr *)&from, &fromlen);
327 break;
328 }
329 if (s < 0) {
330 if (errno != EINTR)
331 syslog(LOG_WARNING, "accept: %m");
332 continue;
333 }
334
335 switch (fork()) {
336 case 0:
337 signal(SIGCHLD, SIG_IGN);
338 signal(SIGHUP, SIG_IGN);
339 signal(SIGINT, SIG_IGN);
340 signal(SIGQUIT, SIG_IGN);
341 signal(SIGTERM, SIG_IGN);
342 for (i = 0; i < nfds; i++)
343 (void)close(socks[i].fd);
344 dup2(s, STDOUT_FILENO);
345 (void)close(s);
346 if (from.ss_family != AF_LOCAL) {
347 /* for both AF_INET and AF_INET6 */
348 from_remote = 1;
349 chkhost((struct sockaddr *)&from, check_options);
350 } else
351 from_remote = 0;
352 doit();
353 exit(0);
354 case -1:
355 syslog(LOG_WARNING, "fork: %m, sleeping for 10 seconds...");
356 sleep(10);
357 continue;
358 default:
359 child_count++;
360 }
361 (void)close(s);
362 }
363 }
364
365 static void
366 reapchild(int signo)
367 {
368 union wait status;
369
370 while (wait3((int *)&status, WNOHANG, 0) > 0)
371 child_count--;
372 }
373
374 static void
375 mcleanup(int signo)
376 {
377 if (lflag)
378 syslog(LOG_INFO, "exiting");
379 unlink(_PATH_SOCKETNAME);
380 exit(0);
381 }
382
383 /*
384 * Stuff for handling job specifications
385 */
386 char *user[MAXUSERS]; /* users to process */
387 int users; /* # of users in user array */
388 int requ[MAXREQUESTS]; /* job number of spool entries */
389 int requests; /* # of spool requests */
390 char *person; /* name of person doing lprm */
391
392 char fromb[NI_MAXHOST]; /* buffer for client's machine name */
393 char cbuf[BUFSIZ]; /* command line buffer */
394 char *cmdnames[] = {
395 "null",
396 "printjob",
397 "recvjob",
398 "displayq short",
399 "displayq long",
400 "rmjob"
401 };
402
403 static void
404 doit(void)
405 {
406 char *cp;
407 int n;
408
409 for (;;) {
410 cp = cbuf;
411 do {
412 if (cp >= &cbuf[sizeof(cbuf) - 1])
413 fatal("Command line too long");
414 if ((n = read(STDOUT_FILENO, cp, 1)) != 1) {
415 if (n < 0)
416 fatal("Lost connection");
417 return;
418 }
419 } while (*cp++ != '\n');
420 *--cp = '\0';
421 cp = cbuf;
422 if (lflag) {
423 if (*cp >= '\1' && *cp <= '\5') {
424 syslog(LOG_INFO, "%s requests %s %s",
425 from, cmdnames[(int)*cp], cp+1);
426 setproctitle("serving %s: %s %s", from,
427 cmdnames[(int)*cp], cp+1);
428 }
429 else
430 syslog(LOG_INFO, "bad request (%d) from %s",
431 *cp, from);
432 }
433 switch (*cp++) {
434 case '\1': /* check the queue and print any jobs there */
435 printer = cp;
436 if (*printer == '\0')
437 printer = DEFLP;
438 printjob();
439 break;
440 case '\2': /* receive files to be queued */
441 if (!from_remote) {
442 syslog(LOG_INFO, "illegal request (%d)", *cp);
443 exit(1);
444 }
445 printer = cp;
446 if (*printer == '\0')
447 printer = DEFLP;
448 recvjob();
449 break;
450 case '\3': /* display the queue (short form) */
451 case '\4': /* display the queue (long form) */
452 printer = cp;
453 if (*printer == '\0')
454 printer = DEFLP;
455 while (*cp) {
456 if (*cp != ' ') {
457 cp++;
458 continue;
459 }
460 *cp++ = '\0';
461 while (isspace(*cp))
462 cp++;
463 if (*cp == '\0')
464 break;
465 if (isdigit(*cp)) {
466 if (requests >= MAXREQUESTS)
467 fatal("Too many requests");
468 requ[requests++] = atoi(cp);
469 } else {
470 if (users >= MAXUSERS)
471 fatal("Too many users");
472 user[users++] = cp;
473 }
474 }
475 displayq(cbuf[0] - '\3');
476 exit(0);
477 case '\5': /* remove a job from the queue */
478 if (!from_remote) {
479 syslog(LOG_INFO, "illegal request (%d)", *cp);
480 exit(1);
481 }
482 printer = cp;
483 if (*printer == '\0')
484 printer = DEFLP;
485 while (*cp && *cp != ' ')
486 cp++;
487 if (!*cp)
488 break;
489 *cp++ = '\0';
490 person = cp;
491 while (*cp) {
492 if (*cp != ' ') {
493 cp++;
494 continue;
495 }
496 *cp++ = '\0';
497 while (isspace(*cp))
498 cp++;
499 if (*cp == '\0')
500 break;
501 if (isdigit(*cp)) {
502 if (requests >= MAXREQUESTS)
503 fatal("Too many requests");
504 requ[requests++] = atoi(cp);
505 } else {
506 if (users >= MAXUSERS)
507 fatal("Too many users");
508 user[users++] = cp;
509 }
510 }
511 rmjob();
512 break;
513 }
514 fatal("Illegal service request");
515 }
516 }
517
518 /*
519 * Make a pass through the printcap database and start printing any
520 * files left from the last time the machine went down.
521 */
522 static void
523 startup(void)
524 {
525 char *buf;
526 char *cp;
527
528 /*
529 * Restart the daemons.
530 */
531 while (cgetnext(&buf, printcapdb) > 0) {
532 if (ckqueue(buf) <= 0) {
533 free(buf);
534 continue; /* no work to do for this printer */
535 }
536 for (cp = buf; *cp; cp++)
537 if (*cp == '|' || *cp == ':') {
538 *cp = '\0';
539 break;
540 }
541 if (lflag)
542 syslog(LOG_INFO, "work for %s", buf);
543 switch (fork()) {
544 case -1:
545 syslog(LOG_WARNING, "startup: cannot fork");
546 mcleanup(0);
547 case 0:
548 printer = buf;
549 setproctitle("working on printer %s", printer);
550 cgetclose();
551 printjob();
552 /* NOTREACHED */
553 default:
554 child_count++;
555 free(buf);
556 }
557 }
558 }
559
560 /*
561 * Make sure there's some work to do before forking off a child
562 */
563 static int
564 ckqueue(char *cap)
565 {
566 struct dirent *d;
567 DIR *dirp;
568 char *spooldir;
569
570 if (cgetstr(cap, "sd", &spooldir) == -1)
571 spooldir = _PATH_DEFSPOOL;
572 if ((dirp = opendir(spooldir)) == NULL)
573 return (-1);
574 while ((d = readdir(dirp)) != NULL) {
575 if (d->d_name[0] != 'c' || d->d_name[1] != 'f')
576 continue; /* daemon control files only */
577 closedir(dirp);
578 return (1); /* found something */
579 }
580 closedir(dirp);
581 return (0);
582 }
583
584 #define DUMMY ":nobody::"
585
586 /*
587 * Check to see if the from host has access to the line printer.
588 */
589 static void
590 chkhost(struct sockaddr *f, int check_opts)
591 {
592 struct addrinfo hints, *res, *r;
593 FILE *hostf;
594 int good = 0;
595 char host[NI_MAXHOST], ip[NI_MAXHOST];
596 char serv[NI_MAXSERV];
597 int error;
598 #ifdef LIBWRAP
599 struct request_info req;
600 #endif
601
602 error = getnameinfo(f, f->sa_len, NULL, 0, serv, sizeof(serv),
603 NI_NUMERICSERV);
604 if (error)
605 fatal("Malformed from address: %s", gai_strerror(error));
606
607 if (!(check_opts & LPD_NOPORTCHK) &&
608 atoi(serv) >= IPPORT_RESERVED)
609 fatal("Connect from invalid port (%s)", serv);
610
611 /* Need real hostname for temporary filenames */
612 error = getnameinfo(f, f->sa_len, host, sizeof(host), NULL, 0,
613 NI_NAMEREQD);
614 if (error) {
615 error = getnameinfo(f, f->sa_len, host, sizeof(host), NULL, 0,
616 NI_NUMERICHOST);
617 if (error)
618 fatal("Host name for your address unknown");
619 else
620 fatal("Host name for your address (%s) unknown", host);
621 }
622
623 (void)strlcpy(fromb, host, sizeof(fromb));
624 from = fromb;
625
626 /* need address in stringform for comparison (no DNS lookup here) */
627 error = getnameinfo(f, f->sa_len, host, sizeof(host), NULL, 0,
628 NI_NUMERICHOST);
629 if (error)
630 fatal("Cannot print address");
631
632 /* Check for spoof, ala rlogind */
633 memset(&hints, 0, sizeof(hints));
634 hints.ai_family = PF_UNSPEC;
635 hints.ai_socktype = SOCK_DGRAM; /*dummy*/
636 error = getaddrinfo(fromb, NULL, &hints, &res);
637 if (error) {
638 fatal("hostname for your address (%s) unknown: %s", host,
639 gai_strerror(error));
640 }
641 good = 0;
642 for (r = res; good == 0 && r; r = r->ai_next) {
643 error = getnameinfo(r->ai_addr, r->ai_addrlen, ip, sizeof(ip),
644 NULL, 0, NI_NUMERICHOST);
645 if (!error && !strcmp(host, ip))
646 good = 1;
647 }
648 if (res)
649 freeaddrinfo(res);
650 if (good == 0)
651 fatal("address for your hostname (%s) not matched", host);
652
653 setproctitle("serving %s", from);
654
655 #ifdef LIBWRAP
656 request_init(&req, RQ_DAEMON, "lpd", RQ_CLIENT_SIN, f,
657 RQ_FILE, STDOUT_FILENO, NULL);
658 fromhost(&req);
659 if (!hosts_access(&req))
660 goto denied;
661 #endif
662
663 hostf = fopen(_PATH_HOSTSEQUIV, "r");
664 if (hostf) {
665 if (__ivaliduser_sa(hostf, f, f->sa_len, DUMMY, DUMMY) == 0) {
666 (void)fclose(hostf);
667 return;
668 }
669 (void)fclose(hostf);
670 }
671 hostf = fopen(_PATH_HOSTSLPD, "r");
672 if (hostf) {
673 if (__ivaliduser_sa(hostf, f, f->sa_len, DUMMY, DUMMY) == 0) {
674 (void)fclose(hostf);
675 return;
676 }
677 (void)fclose(hostf);
678 }
679 #ifdef LIBWRAP
680 denied:
681 #endif
682 fatal("Your host does not have line printer access");
683 /*NOTREACHED*/
684 }
685
686
687 static void
688 usage(void)
689 {
690
691 fprintf(stderr, "usage: %s [-dlrsW] [-b bind-address] [-n maxchild] "
692 "[-w maxwait] [port]\n", getprogname());
693 exit(1);
694 }
695
696 /* setup server socket for specified address family */
697 /* if af is PF_UNSPEC more than one socket may be returned */
698 /* the returned list is dynamically allocated, so caller needs to free it */
699 struct pollfd *
700 socksetup(int af, int options, const char *port, int *nfds)
701 {
702 struct sockaddr_un un;
703 struct addrinfo hints, *res, *r;
704 int error, s, blidx = 0, n;
705 struct pollfd *socks;
706 const int on = 1;
707
708 *nfds = 0;
709
710 socks = malloc(1 * sizeof(int));
711 if (!socks) {
712 syslog(LOG_ERR, "couldn't allocate memory for sockets");
713 mcleanup(0);
714 }
715
716 s = socket(AF_LOCAL, SOCK_STREAM, 0);
717 if (s < 0) {
718 syslog(LOG_ERR, "socket(): %m");
719 exit(1);
720 }
721 memset(&un, 0, sizeof(un));
722 un.sun_family = AF_LOCAL;
723 strncpy(un.sun_path, _PATH_SOCKETNAME, sizeof(un.sun_path) - 1);
724 un.sun_len = SUN_LEN(&un);
725 (void)umask(07);
726 (void)unlink(_PATH_SOCKETNAME);
727 if (bind(s, (struct sockaddr *)&un, un.sun_len) < 0) {
728 syslog(LOG_ERR, "bind(): %m");
729 exit(1);
730 }
731 (void)umask(0);
732 listen(s, 5);
733 socks[*nfds].fd = s;
734 socks[*nfds].events = POLLIN;
735 (*nfds)++;
736
737 if (sflag && !blist_addrs)
738 return (socks);
739
740 do {
741 memset(&hints, 0, sizeof(hints));
742 hints.ai_flags = AI_PASSIVE;
743 hints.ai_family = af;
744 hints.ai_socktype = SOCK_STREAM;
745 error = getaddrinfo((blist_addrs == 0) ? NULL : blist[blidx],
746 port ? port : "printer", &hints, &res);
747 if (error) {
748 if (blist_addrs)
749 syslog(LOG_ERR, "%s: %s", blist[blidx],
750 gai_strerror(error));
751 else
752 syslog(LOG_ERR, "%s", gai_strerror(error));
753 mcleanup(0);
754 }
755
756 /* Count max number of sockets we may open */
757 for (r = res, n = 0; r; r = r->ai_next, n++)
758 ;
759 socks = realloc(socks, (*nfds + n) * sizeof(int));
760 if (!socks) {
761 syslog(LOG_ERR, "couldn't allocate memory for sockets");
762 mcleanup(0);
763 }
764
765 for (r = res; r; r = r->ai_next) {
766 s = socket(r->ai_family, r->ai_socktype,
767 r->ai_protocol);
768 if (s < 0) {
769 syslog(LOG_DEBUG, "socket(): %m");
770 continue;
771 }
772 if (options & SO_DEBUG)
773 if (setsockopt(s, SOL_SOCKET, SO_DEBUG,
774 &on, sizeof(on)) < 0) {
775 syslog(LOG_ERR,
776 "setsockopt (SO_DEBUG): %m");
777 close(s);
778 continue;
779 }
780 if (setsockopt(s, SOL_SOCKET, SO_REUSEPORT, &on,
781 sizeof(on)) < 0) {
782 syslog(LOG_ERR,
783 "setsockopt (SO_REUSEPORT): %m");
784 close(s);
785 continue;
786 }
787 if (r->ai_family == AF_INET6 && setsockopt(s,
788 IPPROTO_IPV6, IPV6_V6ONLY, &on, sizeof(on)) < 0) {
789 syslog(LOG_ERR,
790 "setsockopt (IPV6_V6ONLY): %m");
791 close(s);
792 continue;
793 }
794 if (bind(s, r->ai_addr, r->ai_addrlen) < 0) {
795 syslog(LOG_DEBUG, "bind(): %m");
796 close(s);
797 continue;
798 }
799 listen(s, 5);
800 socks[*nfds].fd = s;
801 socks[*nfds].events = POLLIN;
802 (*nfds)++;
803 }
804
805 if (res)
806 freeaddrinfo(res);
807 } while (++blidx < blist_addrs);
808
809 return (socks);
810 }
811