rpcbind.c revision 1.24 1 1.24 christos /* $NetBSD: rpcbind.c,v 1.24 2017/08/16 08:44:40 christos Exp $ */
2 1.1 fvdl
3 1.24 christos /*-
4 1.24 christos * Copyright (c) 2009, Sun Microsystems, Inc.
5 1.24 christos * All rights reserved.
6 1.1 fvdl *
7 1.24 christos * Redistribution and use in source and binary forms, with or without
8 1.24 christos * modification, are permitted provided that the following conditions are met:
9 1.24 christos * - Redistributions of source code must retain the above copyright notice,
10 1.24 christos * this list of conditions and the following disclaimer.
11 1.24 christos * - Redistributions in binary form must reproduce the above copyright notice,
12 1.24 christos * this list of conditions and the following disclaimer in the documentation
13 1.24 christos * and/or other materials provided with the distribution.
14 1.24 christos * - Neither the name of Sun Microsystems, Inc. nor the names of its
15 1.24 christos * contributors may be used to endorse or promote products derived
16 1.24 christos * from this software without specific prior written permission.
17 1.1 fvdl *
18 1.24 christos * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
19 1.24 christos * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
20 1.24 christos * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
21 1.24 christos * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE
22 1.24 christos * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
23 1.24 christos * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
24 1.24 christos * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
25 1.24 christos * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
26 1.24 christos * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
27 1.24 christos * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
28 1.24 christos * POSSIBILITY OF SUCH DAMAGE.
29 1.1 fvdl */
30 1.1 fvdl /*
31 1.1 fvdl * Copyright (c) 1984 - 1991 by Sun Microsystems, Inc.
32 1.1 fvdl */
33 1.1 fvdl
34 1.1 fvdl /* #ident "@(#)rpcbind.c 1.19 94/04/25 SMI" */
35 1.1 fvdl
36 1.1 fvdl #if 0
37 1.1 fvdl #ifndef lint
38 1.1 fvdl static char sccsid[] = "@(#)rpcbind.c 1.35 89/04/21 Copyr 1984 Sun Micro";
39 1.1 fvdl #endif
40 1.1 fvdl #endif
41 1.1 fvdl
42 1.1 fvdl /*
43 1.1 fvdl * rpcbind.c
44 1.1 fvdl * Implements the program, version to address mapping for rpc.
45 1.1 fvdl *
46 1.1 fvdl */
47 1.1 fvdl
48 1.1 fvdl #include <sys/types.h>
49 1.1 fvdl #include <sys/stat.h>
50 1.1 fvdl #include <sys/errno.h>
51 1.1 fvdl #include <sys/time.h>
52 1.1 fvdl #include <sys/resource.h>
53 1.1 fvdl #include <sys/wait.h>
54 1.1 fvdl #include <sys/signal.h>
55 1.1 fvdl #include <sys/socket.h>
56 1.1 fvdl #include <sys/un.h>
57 1.1 fvdl #include <rpc/rpc.h>
58 1.24 christos #include <rpc/rpc_com.h>
59 1.1 fvdl #ifdef PORTMAP
60 1.1 fvdl #include <netinet/in.h>
61 1.1 fvdl #endif
62 1.24 christos #include <arpa/inet.h>
63 1.24 christos #include <fcntl.h>
64 1.1 fvdl #include <netdb.h>
65 1.1 fvdl #include <stdio.h>
66 1.1 fvdl #include <netconfig.h>
67 1.1 fvdl #include <stdlib.h>
68 1.1 fvdl #include <unistd.h>
69 1.1 fvdl #include <syslog.h>
70 1.1 fvdl #include <err.h>
71 1.1 fvdl #include <util.h>
72 1.1 fvdl #include <pwd.h>
73 1.1 fvdl #include <string.h>
74 1.1 fvdl #include <errno.h>
75 1.1 fvdl #include "rpcbind.h"
76 1.1 fvdl
77 1.23 christos #ifdef RPCBIND_RUMP
78 1.23 christos #include <semaphore.h>
79 1.23 christos
80 1.23 christos #include <rump/rump.h>
81 1.23 christos #include <rump/rump_syscalls.h>
82 1.23 christos
83 1.23 christos #include "svc_fdset.h"
84 1.23 christos
85 1.23 christos extern sem_t gensem;
86 1.23 christos #define DEBUGGING 1
87 1.23 christos #else
88 1.23 christos #define DEBUGGING 0
89 1.23 christos #endif
90 1.23 christos
91 1.1 fvdl /* Global variables */
92 1.23 christos int debugging = DEBUGGING; /* Tell me what's going on */
93 1.1 fvdl int doabort = 0; /* When debugging, do an abort on errors */
94 1.1 fvdl rpcblist_ptr list_rbl; /* A list of version 3/4 rpcbind services */
95 1.1 fvdl
96 1.1 fvdl /* who to suid to if -s is given */
97 1.1 fvdl #define RUN_AS "daemon"
98 1.1 fvdl
99 1.24 christos #define RPCBINDDLOCK "/var/run/rpcbind.lock"
100 1.24 christos
101 1.24 christos static int runasdaemon = 0;
102 1.1 fvdl int insecure = 0;
103 1.1 fvdl int oldstyle_local = 0;
104 1.24 christos #ifdef LIBWRAP
105 1.24 christos int libwrap = 0;
106 1.24 christos #endif
107 1.1 fvdl int verboselog = 0;
108 1.1 fvdl
109 1.24 christos static char **hosts = NULL;
110 1.24 christos static struct sockaddr **bound_sa;
111 1.24 christos static int ipv6_only = 0;
112 1.24 christos static int nhosts = 0;
113 1.24 christos static int on = 1;
114 1.24 christos static int rpcbindlockfd;
115 1.24 christos
116 1.1 fvdl #ifdef WARMSTART
117 1.1 fvdl /* Local Variable */
118 1.24 christos static int warmstart = 0; /* Grab an old copy of registrations */
119 1.1 fvdl #endif
120 1.1 fvdl
121 1.1 fvdl #ifdef PORTMAP
122 1.1 fvdl struct pmaplist *list_pml; /* A list of version 2 rpcbind services */
123 1.11 christos const char *udptrans; /* Name of UDP transport */
124 1.11 christos const char *tcptrans; /* Name of TCP transport */
125 1.11 christos const char *udp_uaddr; /* Universal UDP address */
126 1.11 christos const char *tcp_uaddr; /* Universal TCP address */
127 1.1 fvdl #endif
128 1.10 christos static const char servname[] = "sunrpc";
129 1.1 fvdl
130 1.13 christos const char rpcbind_superuser[] = "superuser";
131 1.13 christos const char rpcbind_unknown[] = "unknown";
132 1.1 fvdl
133 1.11 christos static int init_transport(struct netconfig *);
134 1.11 christos static void rbllist_add(rpcprog_t, rpcvers_t, struct netconfig *,
135 1.11 christos struct netbuf *);
136 1.17 joerg __dead static void terminate(int);
137 1.24 christos static void update_bound_sa(void);
138 1.23 christos #ifndef RPCBIND_RUMP
139 1.11 christos static void parseargs(int, char *[]);
140 1.1 fvdl
141 1.1 fvdl int
142 1.1 fvdl main(int argc, char *argv[])
143 1.23 christos #else
144 1.23 christos int rpcbind_main(void *);
145 1.23 christos int
146 1.23 christos rpcbind_main(void *arg)
147 1.23 christos #endif
148 1.1 fvdl {
149 1.1 fvdl struct netconfig *nconf;
150 1.1 fvdl void *nc_handle; /* Net config handle */
151 1.1 fvdl struct rlimit rl;
152 1.3 fvdl int maxrec = RPC_MAXDATASIZE;
153 1.1 fvdl
154 1.23 christos #ifdef RPCBIND_RUMP
155 1.23 christos svc_fdset_init(SVC_FDSET_MT);
156 1.23 christos #else
157 1.1 fvdl parseargs(argc, argv);
158 1.23 christos #endif
159 1.1 fvdl
160 1.22 christos if (getrlimit(RLIMIT_NOFILE, &rl) == -1)
161 1.22 christos err(EXIT_FAILURE, "getrlimit(RLIMIT_NOFILE)");
162 1.22 christos
163 1.22 christos if (rl.rlim_cur < 128) {
164 1.1 fvdl if (rl.rlim_max <= 128)
165 1.1 fvdl rl.rlim_cur = rl.rlim_max;
166 1.1 fvdl else
167 1.1 fvdl rl.rlim_cur = 128;
168 1.22 christos if (setrlimit(RLIMIT_NOFILE, &rl) < 0)
169 1.21 dholland err(EXIT_FAILURE, "setrlimit(RLIMIT_NOFILE)");
170 1.1 fvdl }
171 1.24 christos update_bound_sa();
172 1.24 christos
173 1.24 christos /* Check that another rpcbind isn't already running. */
174 1.24 christos if ((rpcbindlockfd = open(RPCBINDDLOCK, O_RDONLY|O_CREAT, 0444)) == -1)
175 1.24 christos err(1, "%s", RPCBINDDLOCK);
176 1.24 christos
177 1.24 christos if (flock(rpcbindlockfd, LOCK_EX|LOCK_NB) == -1 && errno == EWOULDBLOCK)
178 1.24 christos errx(1, "another rpcbind is already running. Aborting");
179 1.24 christos
180 1.24 christos #ifndef RPCBIND_RUMP
181 1.24 christos if (geteuid()) /* This command allowed only to root */
182 1.24 christos errx(EXIT_FAILURE, "Sorry. You are not superuser\n");
183 1.24 christos #endif
184 1.1 fvdl nc_handle = setnetconfig(); /* open netconfig file */
185 1.11 christos if (nc_handle == NULL)
186 1.22 christos errx(EXIT_FAILURE, "could not read /etc/netconfig");
187 1.24 christos
188 1.1 fvdl #ifdef PORTMAP
189 1.1 fvdl udptrans = "";
190 1.1 fvdl tcptrans = "";
191 1.1 fvdl #endif
192 1.1 fvdl
193 1.1 fvdl nconf = getnetconfigent("local");
194 1.11 christos if (nconf == NULL)
195 1.22 christos errx(EXIT_FAILURE, "can't find local transport");
196 1.3 fvdl
197 1.3 fvdl rpc_control(RPC_SVC_CONNMAXREC_SET, &maxrec);
198 1.3 fvdl
199 1.1 fvdl init_transport(nconf);
200 1.1 fvdl
201 1.1 fvdl while ((nconf = getnetconfig(nc_handle))) {
202 1.24 christos if (nconf->nc_flag & NC_VISIBLE) {
203 1.24 christos if (ipv6_only == 1 && strcmp(nconf->nc_protofmly,
204 1.24 christos "inet") == 0) {
205 1.24 christos /* DO NOTHING */
206 1.24 christos } else
207 1.24 christos init_transport(nconf);
208 1.24 christos }
209 1.1 fvdl }
210 1.1 fvdl endnetconfig(nc_handle);
211 1.1 fvdl
212 1.1 fvdl /* catch the usual termination signals for graceful exit */
213 1.1 fvdl (void) signal(SIGCHLD, reap);
214 1.1 fvdl (void) signal(SIGINT, terminate);
215 1.1 fvdl (void) signal(SIGTERM, terminate);
216 1.1 fvdl (void) signal(SIGQUIT, terminate);
217 1.1 fvdl /* ignore others that could get sent */
218 1.1 fvdl (void) signal(SIGPIPE, SIG_IGN);
219 1.23 christos #ifndef RPCBIND_RUMP
220 1.1 fvdl (void) signal(SIGHUP, SIG_IGN);
221 1.23 christos #endif
222 1.1 fvdl (void) signal(SIGUSR1, SIG_IGN);
223 1.1 fvdl (void) signal(SIGUSR2, SIG_IGN);
224 1.1 fvdl #ifdef WARMSTART
225 1.1 fvdl if (warmstart) {
226 1.1 fvdl read_warmstart();
227 1.1 fvdl }
228 1.1 fvdl #endif
229 1.1 fvdl if (debugging) {
230 1.1 fvdl printf("rpcbind debugging enabled.");
231 1.1 fvdl if (doabort) {
232 1.1 fvdl printf(" Will abort on errors!\n");
233 1.1 fvdl } else {
234 1.1 fvdl printf("\n");
235 1.1 fvdl }
236 1.1 fvdl } else {
237 1.1 fvdl if (daemon(0, 0))
238 1.22 christos err(EXIT_FAILURE, "fork failed");
239 1.1 fvdl }
240 1.11 christos
241 1.11 christos openlog("rpcbind", 0, LOG_DAEMON);
242 1.1 fvdl pidfile(NULL);
243 1.1 fvdl
244 1.1 fvdl if (runasdaemon) {
245 1.1 fvdl struct passwd *p;
246 1.1 fvdl
247 1.1 fvdl if((p = getpwnam(RUN_AS)) == NULL) {
248 1.1 fvdl syslog(LOG_ERR, "cannot get uid of daemon: %m");
249 1.22 christos exit(EXIT_FAILURE);
250 1.1 fvdl }
251 1.1 fvdl if (setuid(p->pw_uid) == -1) {
252 1.1 fvdl syslog(LOG_ERR, "setuid to daemon failed: %m");
253 1.22 christos exit(EXIT_FAILURE);
254 1.1 fvdl }
255 1.1 fvdl }
256 1.1 fvdl
257 1.1 fvdl network_init();
258 1.1 fvdl
259 1.23 christos #ifdef RPCBIND_RUMP
260 1.23 christos sem_post(&gensem);
261 1.23 christos #endif
262 1.1 fvdl my_svc_run();
263 1.1 fvdl syslog(LOG_ERR, "svc_run returned unexpectedly");
264 1.1 fvdl rpcbind_abort();
265 1.1 fvdl /* NOTREACHED */
266 1.1 fvdl
267 1.22 christos return EXIT_SUCCESS;
268 1.1 fvdl }
269 1.1 fvdl
270 1.1 fvdl /*
271 1.1 fvdl * Adds the entry into the rpcbind database.
272 1.1 fvdl * If PORTMAP, then for UDP and TCP, it adds the entries for version 2 also
273 1.1 fvdl * Returns 0 if succeeds, else fails
274 1.1 fvdl */
275 1.1 fvdl static int
276 1.1 fvdl init_transport(struct netconfig *nconf)
277 1.1 fvdl {
278 1.1 fvdl int fd;
279 1.1 fvdl struct t_bind taddr;
280 1.1 fvdl struct addrinfo hints, *res = NULL;
281 1.1 fvdl struct __rpc_sockinfo si;
282 1.1 fvdl SVCXPRT *my_xprt;
283 1.1 fvdl int status; /* bound checking ? */
284 1.1 fvdl int aicode;
285 1.1 fvdl int addrlen;
286 1.24 christos int nhostsbak;
287 1.24 christos int bound;
288 1.24 christos u_int32_t host_addr[4]; /* IPv4 or IPv6 */
289 1.1 fvdl struct sockaddr *sa;
290 1.1 fvdl struct sockaddr_un sun;
291 1.24 christos #ifndef RPCBIND_RUMP
292 1.24 christos mode_t oldmask;
293 1.24 christos #endif
294 1.1 fvdl
295 1.1 fvdl if ((nconf->nc_semantics != NC_TPI_CLTS) &&
296 1.1 fvdl (nconf->nc_semantics != NC_TPI_COTS) &&
297 1.1 fvdl (nconf->nc_semantics != NC_TPI_COTS_ORD))
298 1.11 christos return 1; /* not my type */
299 1.15 dsl #ifdef RPCBIND_DEBUG
300 1.1 fvdl if (debugging) {
301 1.1 fvdl int i;
302 1.1 fvdl char **s;
303 1.1 fvdl
304 1.11 christos (void)fprintf(stderr, "%s: %ld lookup routines :\n",
305 1.11 christos nconf->nc_netid, nconf->nc_nlookups);
306 1.1 fvdl for (i = 0, s = nconf->nc_lookups; i < nconf->nc_nlookups;
307 1.1 fvdl i++, s++)
308 1.11 christos (void)fprintf(stderr, "[%d] - %s\n", i, *s);
309 1.1 fvdl }
310 1.1 fvdl #endif
311 1.1 fvdl
312 1.1 fvdl /*
313 1.1 fvdl * XXX - using RPC library internal functions.
314 1.1 fvdl */
315 1.24 christos if (strcmp(nconf->nc_netid, "local") == 0) {
316 1.24 christos /*
317 1.24 christos * For other transports we call this later, for each socket we
318 1.24 christos * like to bind.
319 1.24 christos */
320 1.24 christos if ((fd = __rpc_nconf2fd(nconf)) < 0) {
321 1.24 christos int non_fatal = 0;
322 1.24 christos if (errno == EAFNOSUPPORT)
323 1.24 christos non_fatal = 1;
324 1.24 christos syslog(non_fatal ? LOG_DEBUG : LOG_ERR,
325 1.24 christos "Cannot create socket for `%s'", nconf->nc_netid);
326 1.14 christos return 1;
327 1.24 christos }
328 1.24 christos } else
329 1.24 christos fd = -1;
330 1.1 fvdl
331 1.1 fvdl if (!__rpc_nconf2sockinfo(nconf, &si)) {
332 1.24 christos syslog(LOG_ERR, "Cannot get information for `%s'",
333 1.24 christos nconf->nc_netid);
334 1.11 christos return 1;
335 1.1 fvdl }
336 1.6 fvdl
337 1.24 christos if (strcmp(nconf->nc_netid, "local") == 0) {
338 1.11 christos (void)memset(&sun, 0, sizeof sun);
339 1.1 fvdl sun.sun_family = AF_LOCAL;
340 1.23 christos #ifdef RPCBIND_RUMP
341 1.23 christos (void)rump_sys_unlink(_PATH_RPCBINDSOCK);
342 1.23 christos #else
343 1.11 christos (void)unlink(_PATH_RPCBINDSOCK);
344 1.23 christos #endif
345 1.11 christos (void)strlcpy(sun.sun_path, _PATH_RPCBINDSOCK,
346 1.11 christos sizeof(sun.sun_path));
347 1.1 fvdl sun.sun_len = SUN_LEN(&sun);
348 1.11 christos addrlen = sizeof(struct sockaddr_un);
349 1.1 fvdl sa = (struct sockaddr *)&sun;
350 1.1 fvdl } else {
351 1.1 fvdl /* Get rpcbind's address on this transport */
352 1.1 fvdl
353 1.11 christos (void)memset(&hints, 0, sizeof hints);
354 1.1 fvdl hints.ai_flags = AI_PASSIVE;
355 1.1 fvdl hints.ai_family = si.si_af;
356 1.1 fvdl hints.ai_socktype = si.si_socktype;
357 1.1 fvdl hints.ai_protocol = si.si_proto;
358 1.24 christos }
359 1.24 christos
360 1.24 christos if (strcmp(nconf->nc_netid, "local") != 0) {
361 1.24 christos /*
362 1.24 christos * If no hosts were specified, just bind to INADDR_ANY.
363 1.24 christos * Otherwise make sure 127.0.0.1 is added to the list.
364 1.24 christos */
365 1.24 christos nhostsbak = nhosts + 1;
366 1.24 christos hosts = realloc(hosts, nhostsbak * sizeof(char *));
367 1.24 christos if (nhostsbak == 1)
368 1.24 christos hosts[0] = __UNCONST("*");
369 1.24 christos else {
370 1.24 christos if (hints.ai_family == AF_INET) {
371 1.24 christos hosts[nhostsbak - 1] = __UNCONST("127.0.0.1");
372 1.24 christos } else if (hints.ai_family == AF_INET6) {
373 1.24 christos hosts[nhostsbak - 1] = __UNCONST("::1");
374 1.24 christos } else
375 1.24 christos return 1;
376 1.24 christos }
377 1.24 christos
378 1.24 christos /*
379 1.24 christos * Bind to specific IPs if asked to
380 1.24 christos */
381 1.24 christos bound = 0;
382 1.24 christos while (nhostsbak > 0) {
383 1.24 christos --nhostsbak;
384 1.24 christos /*
385 1.24 christos * XXX - using RPC library internal functions.
386 1.24 christos */
387 1.24 christos if ((fd = __rpc_nconf2fd(nconf)) < 0) {
388 1.24 christos int non_fatal = 0;
389 1.24 christos if (errno == EAFNOSUPPORT &&
390 1.24 christos nconf->nc_semantics != NC_TPI_CLTS)
391 1.24 christos non_fatal = 1;
392 1.24 christos syslog(non_fatal ? LOG_DEBUG : LOG_ERR,
393 1.24 christos "cannot create socket for %s",
394 1.24 christos nconf->nc_netid);
395 1.24 christos return 1;
396 1.24 christos }
397 1.24 christos switch (hints.ai_family) {
398 1.24 christos case AF_INET:
399 1.24 christos if (inet_pton(AF_INET, hosts[nhostsbak],
400 1.24 christos host_addr) == 1) {
401 1.24 christos hints.ai_flags &= AI_NUMERICHOST;
402 1.24 christos } else {
403 1.24 christos /*
404 1.24 christos * Skip if we have an AF_INET6 address.
405 1.24 christos */
406 1.24 christos if (inet_pton(AF_INET6,
407 1.24 christos hosts[nhostsbak], host_addr) == 1) {
408 1.24 christos close(fd);
409 1.24 christos continue;
410 1.24 christos }
411 1.24 christos }
412 1.24 christos break;
413 1.24 christos case AF_INET6:
414 1.24 christos if (inet_pton(AF_INET6, hosts[nhostsbak],
415 1.24 christos host_addr) == 1) {
416 1.24 christos hints.ai_flags &= AI_NUMERICHOST;
417 1.24 christos } else {
418 1.24 christos /*
419 1.24 christos * Skip if we have an AF_INET address.
420 1.24 christos */
421 1.24 christos if (inet_pton(AF_INET, hosts[nhostsbak],
422 1.24 christos host_addr) == 1) {
423 1.24 christos close(fd);
424 1.24 christos continue;
425 1.24 christos }
426 1.24 christos }
427 1.24 christos if (setsockopt(fd, IPPROTO_IPV6,
428 1.24 christos IPV6_V6ONLY, &on, sizeof on) < 0) {
429 1.24 christos syslog(LOG_ERR,
430 1.24 christos "can't set v6-only binding for "
431 1.24 christos "ipv6 socket: %m");
432 1.24 christos continue;
433 1.24 christos }
434 1.24 christos break;
435 1.24 christos default:
436 1.24 christos break;
437 1.24 christos }
438 1.24 christos
439 1.24 christos /*
440 1.24 christos * If no hosts were specified, just bind to INADDR_ANY
441 1.24 christos */
442 1.24 christos if (strcmp("*", hosts[nhostsbak]) == 0)
443 1.24 christos hosts[nhostsbak] = NULL;
444 1.24 christos if (strcmp(nconf->nc_netid, "local") != 0) {
445 1.24 christos if ((aicode = getaddrinfo(hosts[nhostsbak],
446 1.24 christos servname, &hints, &res)) != 0) {
447 1.24 christos syslog(LOG_ERR,
448 1.24 christos "cannot get local address for %s: %s",
449 1.24 christos nconf->nc_netid,
450 1.24 christos gai_strerror(aicode));
451 1.24 christos continue;
452 1.24 christos }
453 1.24 christos addrlen = res->ai_addrlen;
454 1.24 christos sa = (struct sockaddr *)res->ai_addr;
455 1.24 christos }
456 1.24 christos #ifndef RPCBIND_RUMP
457 1.24 christos oldmask = umask(S_IXUSR|S_IXGRP|S_IXOTH);
458 1.24 christos #endif
459 1.24 christos if (bind(fd, sa, addrlen) != 0) {
460 1.24 christos syslog(LOG_ERR, "cannot bind %s on %s: %m",
461 1.24 christos (hosts[nhostsbak] == NULL) ? "*" :
462 1.24 christos hosts[nhostsbak], nconf->nc_netid);
463 1.24 christos if (res != NULL)
464 1.24 christos freeaddrinfo(res);
465 1.24 christos continue;
466 1.24 christos } else
467 1.24 christos bound = 1;
468 1.24 christos #ifndef RPCBIND_RUMP
469 1.24 christos (void)umask(oldmask);
470 1.24 christos #endif
471 1.24 christos
472 1.24 christos /* Copy the address */
473 1.24 christos taddr.addr.len = taddr.addr.maxlen = addrlen;
474 1.24 christos taddr.addr.buf = malloc(addrlen);
475 1.24 christos if (taddr.addr.buf == NULL) {
476 1.24 christos syslog(LOG_ERR,
477 1.24 christos "cannot allocate memory for %s address",
478 1.24 christos nconf->nc_netid);
479 1.24 christos if (res != NULL)
480 1.24 christos freeaddrinfo(res);
481 1.24 christos return 1;
482 1.24 christos }
483 1.24 christos memcpy(taddr.addr.buf, sa, addrlen);
484 1.24 christos #ifdef RPCBIND_DEBUG
485 1.24 christos if (debugging) {
486 1.24 christos /*
487 1.24 christos * for debugging print out our universal
488 1.24 christos * address
489 1.24 christos */
490 1.24 christos char *uaddr;
491 1.24 christos struct netbuf nb;
492 1.24 christos
493 1.24 christos nb.buf = sa;
494 1.24 christos nb.len = nb.maxlen = sa->sa_len;
495 1.24 christos uaddr = taddr2uaddr(nconf, &nb);
496 1.24 christos (void)fprintf(stderr,
497 1.24 christos "rpcbind : my address is %s\n", uaddr);
498 1.24 christos (void)free(uaddr);
499 1.24 christos }
500 1.24 christos #endif
501 1.24 christos
502 1.24 christos if (nconf->nc_semantics != NC_TPI_CLTS)
503 1.24 christos listen(fd, SOMAXCONN);
504 1.24 christos
505 1.24 christos my_xprt = (SVCXPRT *)svc_tli_create(fd, nconf, &taddr,
506 1.24 christos RPC_MAXDATASIZE, RPC_MAXDATASIZE);
507 1.24 christos if (my_xprt == NULL) {
508 1.24 christos syslog(LOG_ERR,
509 1.24 christos "Could not create service for `%s'",
510 1.24 christos nconf->nc_netid);
511 1.24 christos goto error;
512 1.24 christos }
513 1.24 christos }
514 1.24 christos if (!bound)
515 1.24 christos return 1;
516 1.24 christos } else {
517 1.24 christos #ifndef RPCBIND_RUMP
518 1.24 christos oldmask = umask(S_IXUSR|S_IXGRP|S_IXOTH);
519 1.24 christos #endif
520 1.24 christos if (bind(fd, sa, addrlen) < 0) {
521 1.24 christos syslog(LOG_ERR, "cannot bind %s: %m", nconf->nc_netid);
522 1.24 christos if (res != NULL)
523 1.24 christos freeaddrinfo(res);
524 1.1 fvdl return 1;
525 1.1 fvdl }
526 1.23 christos #ifndef RPCBIND_RUMP
527 1.24 christos (void) umask(oldmask);
528 1.23 christos #endif
529 1.1 fvdl
530 1.24 christos /* Copy the address */
531 1.24 christos taddr.addr.len = taddr.addr.maxlen = addrlen;
532 1.24 christos taddr.addr.buf = malloc(addrlen);
533 1.24 christos if (taddr.addr.buf == NULL) {
534 1.24 christos syslog(LOG_ERR, "cannot allocate memory for %s address",
535 1.24 christos nconf->nc_netid);
536 1.24 christos if (res != NULL)
537 1.24 christos freeaddrinfo(res);
538 1.24 christos return 1;
539 1.24 christos }
540 1.24 christos memcpy(taddr.addr.buf, sa, addrlen);
541 1.15 dsl #ifdef RPCBIND_DEBUG
542 1.24 christos if (debugging) {
543 1.24 christos /* for debugging print out our universal address */
544 1.24 christos char *uaddr;
545 1.24 christos struct netbuf nb;
546 1.24 christos
547 1.24 christos nb.buf = sa;
548 1.24 christos nb.len = nb.maxlen = sa->sa_len;
549 1.24 christos uaddr = taddr2uaddr(nconf, &nb);
550 1.24 christos (void) fprintf(stderr, "rpcbind : my address is %s\n",
551 1.24 christos uaddr);
552 1.24 christos (void) free(uaddr);
553 1.24 christos }
554 1.1 fvdl #endif
555 1.1 fvdl
556 1.24 christos if (nconf->nc_semantics != NC_TPI_CLTS)
557 1.24 christos listen(fd, SOMAXCONN);
558 1.24 christos
559 1.24 christos my_xprt = (SVCXPRT *)svc_tli_create(fd, nconf, &taddr,
560 1.24 christos RPC_MAXDATASIZE, RPC_MAXDATASIZE);
561 1.24 christos if (my_xprt == (SVCXPRT *)NULL) {
562 1.24 christos syslog(LOG_ERR, "%s: could not create service",
563 1.24 christos nconf->nc_netid);
564 1.24 christos goto error;
565 1.24 christos }
566 1.1 fvdl }
567 1.1 fvdl
568 1.1 fvdl #ifdef PORTMAP
569 1.1 fvdl /*
570 1.1 fvdl * Register both the versions for tcp/ip, udp/ip and local.
571 1.1 fvdl */
572 1.1 fvdl if ((strcmp(nconf->nc_protofmly, NC_INET) == 0 &&
573 1.1 fvdl (strcmp(nconf->nc_proto, NC_TCP) == 0 ||
574 1.1 fvdl strcmp(nconf->nc_proto, NC_UDP) == 0)) ||
575 1.1 fvdl strcmp(nconf->nc_netid, "local") == 0) {
576 1.1 fvdl struct pmaplist *pml;
577 1.1 fvdl
578 1.1 fvdl if (!svc_register(my_xprt, PMAPPROG, PMAPVERS,
579 1.5 fvdl pmap_service, 0)) {
580 1.24 christos syslog(LOG_ERR, "Could not register on `%s'",
581 1.24 christos nconf->nc_netid);
582 1.1 fvdl goto error;
583 1.1 fvdl }
584 1.8 christos pml = malloc(sizeof (struct pmaplist));
585 1.8 christos if (pml == NULL) {
586 1.24 christos syslog(LOG_ERR, "Cannot allocate memory");
587 1.11 christos goto error;
588 1.1 fvdl }
589 1.24 christos
590 1.1 fvdl pml->pml_map.pm_prog = PMAPPROG;
591 1.1 fvdl pml->pml_map.pm_vers = PMAPVERS;
592 1.1 fvdl pml->pml_map.pm_port = PMAPPORT;
593 1.1 fvdl if (strcmp(nconf->nc_proto, NC_TCP) == 0) {
594 1.1 fvdl if (tcptrans[0]) {
595 1.24 christos syslog(LOG_ERR,
596 1.11 christos "Cannot have more than one TCP transport");
597 1.8 christos free(pml);
598 1.1 fvdl goto error;
599 1.1 fvdl }
600 1.1 fvdl tcptrans = strdup(nconf->nc_netid);
601 1.11 christos if (tcptrans == NULL) {
602 1.11 christos free(pml);
603 1.24 christos syslog(LOG_ERR, "Cannot allocate memory");
604 1.11 christos goto error;
605 1.11 christos }
606 1.1 fvdl pml->pml_map.pm_prot = IPPROTO_TCP;
607 1.1 fvdl
608 1.1 fvdl /* Let's snarf the universal address */
609 1.1 fvdl /* "h1.h2.h3.h4.p1.p2" */
610 1.1 fvdl tcp_uaddr = taddr2uaddr(nconf, &taddr.addr);
611 1.1 fvdl } else if (strcmp(nconf->nc_proto, NC_UDP) == 0) {
612 1.1 fvdl if (udptrans[0]) {
613 1.11 christos free(pml);
614 1.24 christos syslog(LOG_ERR,
615 1.11 christos "Cannot have more than one UDP transport");
616 1.1 fvdl goto error;
617 1.1 fvdl }
618 1.1 fvdl udptrans = strdup(nconf->nc_netid);
619 1.11 christos if (udptrans == NULL) {
620 1.11 christos free(pml);
621 1.24 christos syslog(LOG_ERR, "Cannot allocate memory");
622 1.11 christos goto error;
623 1.11 christos }
624 1.1 fvdl pml->pml_map.pm_prot = IPPROTO_UDP;
625 1.1 fvdl
626 1.1 fvdl /* Let's snarf the universal address */
627 1.1 fvdl /* "h1.h2.h3.h4.p1.p2" */
628 1.1 fvdl udp_uaddr = taddr2uaddr(nconf, &taddr.addr);
629 1.1 fvdl }
630 1.24 christos #ifdef IPPROTO_ST
631 1.24 christos else if (strcmp(nconf->nc_netid, "local") == 0)
632 1.24 christos pml->pml_map.pm_prot = IPPROTO_ST;
633 1.24 christos #endif
634 1.1 fvdl pml->pml_next = list_pml;
635 1.1 fvdl list_pml = pml;
636 1.1 fvdl
637 1.1 fvdl /* Add version 3 information */
638 1.8 christos pml = malloc(sizeof (struct pmaplist));
639 1.8 christos if (pml == NULL) {
640 1.24 christos syslog(LOG_ERR, "Cannot allocate memory");
641 1.11 christos goto error;
642 1.1 fvdl }
643 1.1 fvdl pml->pml_map = list_pml->pml_map;
644 1.1 fvdl pml->pml_map.pm_vers = RPCBVERS;
645 1.1 fvdl pml->pml_next = list_pml;
646 1.1 fvdl list_pml = pml;
647 1.1 fvdl
648 1.1 fvdl /* Add version 4 information */
649 1.8 christos pml = malloc(sizeof (struct pmaplist));
650 1.8 christos if (pml == NULL) {
651 1.24 christos syslog(LOG_ERR, "Cannot allocate memory");
652 1.11 christos goto error;
653 1.1 fvdl }
654 1.1 fvdl pml->pml_map = list_pml->pml_map;
655 1.1 fvdl pml->pml_map.pm_vers = RPCBVERS4;
656 1.1 fvdl pml->pml_next = list_pml;
657 1.1 fvdl list_pml = pml;
658 1.1 fvdl
659 1.1 fvdl /* Also add version 2 stuff to rpcbind list */
660 1.1 fvdl rbllist_add(PMAPPROG, PMAPVERS, nconf, &taddr.addr);
661 1.1 fvdl }
662 1.1 fvdl #endif
663 1.1 fvdl
664 1.1 fvdl /* version 3 registration */
665 1.1 fvdl if (!svc_reg(my_xprt, RPCBPROG, RPCBVERS, rpcb_service_3, NULL)) {
666 1.24 christos syslog(LOG_ERR, "Could not register %s version 3",
667 1.24 christos nconf->nc_netid);
668 1.1 fvdl goto error;
669 1.1 fvdl }
670 1.1 fvdl rbllist_add(RPCBPROG, RPCBVERS, nconf, &taddr.addr);
671 1.1 fvdl
672 1.1 fvdl /* version 4 registration */
673 1.1 fvdl if (!svc_reg(my_xprt, RPCBPROG, RPCBVERS4, rpcb_service_4, NULL)) {
674 1.24 christos syslog(LOG_ERR, "Could not register %s version 4",
675 1.24 christos nconf->nc_netid);
676 1.1 fvdl goto error;
677 1.1 fvdl }
678 1.1 fvdl rbllist_add(RPCBPROG, RPCBVERS4, nconf, &taddr.addr);
679 1.1 fvdl
680 1.1 fvdl /* decide if bound checking works for this transport */
681 1.1 fvdl status = add_bndlist(nconf, &taddr.addr);
682 1.15 dsl #ifdef RPCBIND_DEBUG
683 1.1 fvdl if (debugging) {
684 1.1 fvdl if (status < 0) {
685 1.1 fvdl fprintf(stderr, "Error in finding bind status for %s\n",
686 1.1 fvdl nconf->nc_netid);
687 1.1 fvdl } else if (status == 0) {
688 1.1 fvdl fprintf(stderr, "check binding for %s\n",
689 1.1 fvdl nconf->nc_netid);
690 1.1 fvdl } else if (status > 0) {
691 1.1 fvdl fprintf(stderr, "No check binding for %s\n",
692 1.1 fvdl nconf->nc_netid);
693 1.1 fvdl }
694 1.1 fvdl }
695 1.19 christos #else
696 1.19 christos __USE(status);
697 1.1 fvdl #endif
698 1.1 fvdl /*
699 1.1 fvdl * rmtcall only supported on CLTS transports for now.
700 1.1 fvdl */
701 1.1 fvdl if (nconf->nc_semantics == NC_TPI_CLTS) {
702 1.1 fvdl status = create_rmtcall_fd(nconf);
703 1.1 fvdl
704 1.15 dsl #ifdef RPCBIND_DEBUG
705 1.1 fvdl if (debugging) {
706 1.1 fvdl if (status < 0) {
707 1.1 fvdl fprintf(stderr,
708 1.1 fvdl "Could not create rmtcall fd for %s\n",
709 1.1 fvdl nconf->nc_netid);
710 1.1 fvdl } else {
711 1.1 fvdl fprintf(stderr, "rmtcall fd for %s is %d\n",
712 1.1 fvdl nconf->nc_netid, status);
713 1.1 fvdl }
714 1.1 fvdl }
715 1.1 fvdl #endif
716 1.1 fvdl }
717 1.1 fvdl return (0);
718 1.1 fvdl error:
719 1.23 christos #ifdef RPCBIND_RUMP
720 1.23 christos (void)rump_sys_close(fd);
721 1.23 christos #else
722 1.11 christos (void)close(fd);
723 1.23 christos #endif
724 1.1 fvdl return (1);
725 1.1 fvdl }
726 1.1 fvdl
727 1.24 christos /*
728 1.24 christos * Create the list of addresses that we're bound to. Normally, this
729 1.24 christos * list is empty because we're listening on the wildcard address
730 1.24 christos * (nhost == 0). If -h is specified on the command line, then
731 1.24 christos * bound_sa will have a list of the addresses that the program binds
732 1.24 christos * to specifically. This function takes that list and converts them to
733 1.24 christos * struct sockaddr * and stores them in bound_sa.
734 1.24 christos */
735 1.24 christos static void
736 1.24 christos update_bound_sa(void)
737 1.24 christos {
738 1.24 christos struct addrinfo hints, *res = NULL;
739 1.24 christos int i;
740 1.24 christos
741 1.24 christos if (nhosts == 0)
742 1.24 christos return;
743 1.24 christos bound_sa = malloc(sizeof(*bound_sa) * nhosts);
744 1.24 christos memset(&hints, 0, sizeof(hints));
745 1.24 christos hints.ai_family = PF_UNSPEC;
746 1.24 christos for (i = 0; i < nhosts; i++) {
747 1.24 christos if (getaddrinfo(hosts[i], NULL, &hints, &res) != 0)
748 1.24 christos continue;
749 1.24 christos bound_sa[i] = malloc(res->ai_addrlen);
750 1.24 christos memcpy(bound_sa[i], res->ai_addr, res->ai_addrlen);
751 1.24 christos }
752 1.24 christos }
753 1.24 christos
754 1.24 christos /*
755 1.24 christos * Match the sa against the list of addresses we've bound to. If
756 1.24 christos * we've not specifically bound to anything, we match everything.
757 1.24 christos * Otherwise, if the IPv4 or IPv6 address matches one of the addresses
758 1.24 christos * in bound_sa, we return true. If not, we return false.
759 1.24 christos */
760 1.24 christos int
761 1.24 christos listen_addr(const struct sockaddr *sa)
762 1.24 christos {
763 1.24 christos int i;
764 1.24 christos
765 1.24 christos /*
766 1.24 christos * If nhosts == 0, then there were no -h options on the
767 1.24 christos * command line, so all addresses are addresses we're
768 1.24 christos * listening to.
769 1.24 christos */
770 1.24 christos if (nhosts == 0)
771 1.24 christos return 1;
772 1.24 christos for (i = 0; i < nhosts; i++) {
773 1.24 christos if (bound_sa[i] == NULL ||
774 1.24 christos sa->sa_family != bound_sa[i]->sa_family)
775 1.24 christos continue;
776 1.24 christos switch (sa->sa_family) {
777 1.24 christos case AF_INET:
778 1.24 christos if (memcmp(&SA2SINADDR(sa), &SA2SINADDR(bound_sa[i]),
779 1.24 christos sizeof(struct in_addr)) == 0)
780 1.24 christos return (1);
781 1.24 christos break;
782 1.24 christos #ifdef INET6
783 1.24 christos case AF_INET6:
784 1.24 christos if (memcmp(&SA2SIN6ADDR(sa), &SA2SIN6ADDR(bound_sa[i]),
785 1.24 christos sizeof(struct in6_addr)) == 0)
786 1.24 christos return (1);
787 1.24 christos break;
788 1.24 christos #endif
789 1.24 christos default:
790 1.24 christos break;
791 1.24 christos }
792 1.24 christos }
793 1.24 christos return (0);
794 1.24 christos }
795 1.24 christos
796 1.1 fvdl static void
797 1.1 fvdl rbllist_add(rpcprog_t prog, rpcvers_t vers, struct netconfig *nconf,
798 1.1 fvdl struct netbuf *addr)
799 1.1 fvdl {
800 1.1 fvdl rpcblist_ptr rbl;
801 1.1 fvdl
802 1.8 christos rbl = malloc(sizeof(rpcblist));
803 1.8 christos if (rbl == NULL) {
804 1.24 christos syslog(LOG_ERR, "Out of memory");
805 1.11 christos return;
806 1.1 fvdl }
807 1.1 fvdl
808 1.1 fvdl rbl->rpcb_map.r_prog = prog;
809 1.1 fvdl rbl->rpcb_map.r_vers = vers;
810 1.1 fvdl rbl->rpcb_map.r_netid = strdup(nconf->nc_netid);
811 1.1 fvdl rbl->rpcb_map.r_addr = taddr2uaddr(nconf, addr);
812 1.13 christos rbl->rpcb_map.r_owner = strdup(rpcbind_superuser);
813 1.1 fvdl rbl->rpcb_next = list_rbl; /* Attach to global list */
814 1.1 fvdl list_rbl = rbl;
815 1.1 fvdl }
816 1.1 fvdl
817 1.1 fvdl /*
818 1.1 fvdl * Catch the signal and die
819 1.1 fvdl */
820 1.1 fvdl static void
821 1.24 christos terminate(int signum __unused)
822 1.1 fvdl {
823 1.24 christos close(rpcbindlockfd);
824 1.1 fvdl #ifdef WARMSTART
825 1.1 fvdl syslog(LOG_ERR,
826 1.24 christos "rpcbind terminating on signal %d. Restart with \"rpcbind -w\"",
827 1.24 christos signum);
828 1.1 fvdl write_warmstart(); /* Dump yourself */
829 1.1 fvdl #endif
830 1.23 christos #ifdef RPCBIND_RUMP
831 1.23 christos exit(2);
832 1.23 christos #else
833 1.22 christos exit(EXIT_FAILURE);
834 1.23 christos #endif
835 1.1 fvdl }
836 1.1 fvdl
837 1.1 fvdl void
838 1.24 christos rpcbind_abort(void)
839 1.1 fvdl {
840 1.1 fvdl #ifdef WARMSTART
841 1.1 fvdl write_warmstart(); /* Dump yourself */
842 1.1 fvdl #endif
843 1.1 fvdl abort();
844 1.1 fvdl }
845 1.1 fvdl
846 1.23 christos #ifndef RPCBIND_RUMP
847 1.1 fvdl /* get command line options */
848 1.1 fvdl static void
849 1.1 fvdl parseargs(int argc, char *argv[])
850 1.1 fvdl {
851 1.1 fvdl int c;
852 1.1 fvdl
853 1.24 christos #ifdef WARMSTART
854 1.24 christos #define WSOP "w"
855 1.24 christos #else
856 1.24 christos #define WSOP ""
857 1.24 christos #endif
858 1.24 christos #ifdef LIBWRAP
859 1.24 christos #define WRAPOP "W"
860 1.24 christos #else
861 1.24 christos #define WRAPOP ""
862 1.24 christos #endif
863 1.24 christos while ((c = getopt(argc, argv, "6adh:iLls" WRAPOP WSOP)) != -1) {
864 1.1 fvdl switch (c) {
865 1.24 christos case '6':
866 1.24 christos ipv6_only = 1;
867 1.24 christos break;
868 1.1 fvdl case 'a':
869 1.1 fvdl doabort = 1; /* when debugging, do an abort on */
870 1.1 fvdl break; /* errors; for rpcbind developers */
871 1.1 fvdl /* only! */
872 1.1 fvdl case 'd':
873 1.1 fvdl debugging = 1;
874 1.1 fvdl break;
875 1.24 christos case 'h':
876 1.24 christos ++nhosts;
877 1.24 christos hosts = realloc(hosts, nhosts * sizeof(char *));
878 1.24 christos if (hosts == NULL)
879 1.24 christos errx(1, "Out of memory");
880 1.24 christos hosts[nhosts - 1] = strdup(optarg);
881 1.24 christos if (hosts[nhosts - 1] == NULL)
882 1.24 christos errx(1, "Out of memory");
883 1.24 christos break;
884 1.1 fvdl case 'i':
885 1.1 fvdl insecure = 1;
886 1.1 fvdl break;
887 1.1 fvdl case 'L':
888 1.1 fvdl oldstyle_local = 1;
889 1.1 fvdl break;
890 1.1 fvdl case 'l':
891 1.1 fvdl verboselog = 1;
892 1.1 fvdl break;
893 1.1 fvdl case 's':
894 1.1 fvdl runasdaemon = 1;
895 1.1 fvdl break;
896 1.24 christos #ifdef LIBWRAP
897 1.24 christos case 'W':
898 1.24 christos libwrap = 1;
899 1.24 christos break;
900 1.24 christos #endif
901 1.1 fvdl #ifdef WARMSTART
902 1.1 fvdl case 'w':
903 1.1 fvdl warmstart = 1;
904 1.1 fvdl break;
905 1.1 fvdl #endif
906 1.1 fvdl default: /* error */
907 1.1 fvdl fprintf(stderr, "usage: rpcbind [-Idwils]\n");
908 1.24 christos fprintf(stderr,
909 1.24 christos "Usage: %s [-6adiLls%s%s] [-h bindip]\n",
910 1.24 christos getprogname(), WRAPOP, WSOP);
911 1.22 christos exit(EXIT_FAILURE);
912 1.1 fvdl }
913 1.1 fvdl }
914 1.1 fvdl if (doabort && !debugging) {
915 1.1 fvdl fprintf(stderr,
916 1.1 fvdl "-a (abort) specified without -d (debugging) -- ignored.\n");
917 1.1 fvdl doabort = 0;
918 1.1 fvdl }
919 1.24 christos #undef WRAPOP
920 1.24 christos #undef WSOP
921 1.1 fvdl }
922 1.23 christos #endif
923 1.1 fvdl
924 1.1 fvdl void
925 1.24 christos reap(int dummy __unused)
926 1.1 fvdl {
927 1.1 fvdl int save_errno = errno;
928 1.1 fvdl
929 1.1 fvdl while (wait3(NULL, WNOHANG, NULL) > 0)
930 1.1 fvdl ;
931 1.1 fvdl errno = save_errno;
932 1.1 fvdl }
933 1.1 fvdl
934 1.1 fvdl void
935 1.24 christos toggle_verboselog(int dummy __unused)
936 1.1 fvdl {
937 1.1 fvdl verboselog = !verboselog;
938 1.1 fvdl }
939