rpcbind.c revision 1.25 1 1.25 christos /* $NetBSD: rpcbind.c,v 1.25 2017/08/21 17:01:04 christos Exp $ */
2 1.1 fvdl
3 1.24 christos /*-
4 1.24 christos * Copyright (c) 2009, Sun Microsystems, Inc.
5 1.24 christos * All rights reserved.
6 1.1 fvdl *
7 1.24 christos * Redistribution and use in source and binary forms, with or without
8 1.24 christos * modification, are permitted provided that the following conditions are met:
9 1.24 christos * - Redistributions of source code must retain the above copyright notice,
10 1.24 christos * this list of conditions and the following disclaimer.
11 1.24 christos * - Redistributions in binary form must reproduce the above copyright notice,
12 1.24 christos * this list of conditions and the following disclaimer in the documentation
13 1.24 christos * and/or other materials provided with the distribution.
14 1.24 christos * - Neither the name of Sun Microsystems, Inc. nor the names of its
15 1.24 christos * contributors may be used to endorse or promote products derived
16 1.24 christos * from this software without specific prior written permission.
17 1.1 fvdl *
18 1.24 christos * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
19 1.24 christos * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
20 1.24 christos * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
21 1.24 christos * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT HOLDER OR CONTRIBUTORS BE
22 1.24 christos * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
23 1.24 christos * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
24 1.24 christos * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
25 1.24 christos * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
26 1.24 christos * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
27 1.24 christos * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
28 1.24 christos * POSSIBILITY OF SUCH DAMAGE.
29 1.1 fvdl */
30 1.1 fvdl /*
31 1.1 fvdl * Copyright (c) 1984 - 1991 by Sun Microsystems, Inc.
32 1.1 fvdl */
33 1.1 fvdl
34 1.1 fvdl /* #ident "@(#)rpcbind.c 1.19 94/04/25 SMI" */
35 1.1 fvdl
36 1.1 fvdl #if 0
37 1.1 fvdl #ifndef lint
38 1.1 fvdl static char sccsid[] = "@(#)rpcbind.c 1.35 89/04/21 Copyr 1984 Sun Micro";
39 1.1 fvdl #endif
40 1.1 fvdl #endif
41 1.1 fvdl
42 1.1 fvdl /*
43 1.1 fvdl * rpcbind.c
44 1.1 fvdl * Implements the program, version to address mapping for rpc.
45 1.1 fvdl *
46 1.1 fvdl */
47 1.1 fvdl
48 1.1 fvdl #include <sys/types.h>
49 1.1 fvdl #include <sys/stat.h>
50 1.1 fvdl #include <sys/errno.h>
51 1.1 fvdl #include <sys/time.h>
52 1.1 fvdl #include <sys/resource.h>
53 1.1 fvdl #include <sys/wait.h>
54 1.1 fvdl #include <sys/signal.h>
55 1.1 fvdl #include <sys/socket.h>
56 1.1 fvdl #include <sys/un.h>
57 1.1 fvdl #include <rpc/rpc.h>
58 1.24 christos #include <rpc/rpc_com.h>
59 1.1 fvdl #ifdef PORTMAP
60 1.1 fvdl #include <netinet/in.h>
61 1.1 fvdl #endif
62 1.24 christos #include <arpa/inet.h>
63 1.24 christos #include <fcntl.h>
64 1.1 fvdl #include <netdb.h>
65 1.1 fvdl #include <stdio.h>
66 1.1 fvdl #include <netconfig.h>
67 1.1 fvdl #include <stdlib.h>
68 1.1 fvdl #include <unistd.h>
69 1.1 fvdl #include <syslog.h>
70 1.1 fvdl #include <err.h>
71 1.1 fvdl #include <util.h>
72 1.1 fvdl #include <pwd.h>
73 1.1 fvdl #include <string.h>
74 1.1 fvdl #include <errno.h>
75 1.1 fvdl #include "rpcbind.h"
76 1.1 fvdl
77 1.23 christos #ifdef RPCBIND_RUMP
78 1.23 christos #include <semaphore.h>
79 1.23 christos
80 1.23 christos #include <rump/rump.h>
81 1.23 christos #include <rump/rump_syscalls.h>
82 1.23 christos
83 1.23 christos #include "svc_fdset.h"
84 1.23 christos
85 1.23 christos extern sem_t gensem;
86 1.23 christos #define DEBUGGING 1
87 1.23 christos #else
88 1.23 christos #define DEBUGGING 0
89 1.23 christos #endif
90 1.23 christos
91 1.1 fvdl /* Global variables */
92 1.23 christos int debugging = DEBUGGING; /* Tell me what's going on */
93 1.1 fvdl int doabort = 0; /* When debugging, do an abort on errors */
94 1.1 fvdl rpcblist_ptr list_rbl; /* A list of version 3/4 rpcbind services */
95 1.1 fvdl
96 1.1 fvdl /* who to suid to if -s is given */
97 1.1 fvdl #define RUN_AS "daemon"
98 1.1 fvdl
99 1.24 christos #define RPCBINDDLOCK "/var/run/rpcbind.lock"
100 1.24 christos
101 1.24 christos static int runasdaemon = 0;
102 1.1 fvdl int insecure = 0;
103 1.1 fvdl int oldstyle_local = 0;
104 1.24 christos #ifdef LIBWRAP
105 1.24 christos int libwrap = 0;
106 1.24 christos #endif
107 1.1 fvdl int verboselog = 0;
108 1.1 fvdl
109 1.24 christos static char **hosts = NULL;
110 1.24 christos static struct sockaddr **bound_sa;
111 1.24 christos static int ipv6_only = 0;
112 1.24 christos static int nhosts = 0;
113 1.24 christos static int on = 1;
114 1.25 christos #ifndef RPCBIND_RUMP
115 1.24 christos static int rpcbindlockfd;
116 1.25 christos #endif
117 1.24 christos
118 1.1 fvdl #ifdef WARMSTART
119 1.1 fvdl /* Local Variable */
120 1.24 christos static int warmstart = 0; /* Grab an old copy of registrations */
121 1.1 fvdl #endif
122 1.1 fvdl
123 1.1 fvdl #ifdef PORTMAP
124 1.1 fvdl struct pmaplist *list_pml; /* A list of version 2 rpcbind services */
125 1.11 christos const char *udptrans; /* Name of UDP transport */
126 1.11 christos const char *tcptrans; /* Name of TCP transport */
127 1.11 christos const char *udp_uaddr; /* Universal UDP address */
128 1.11 christos const char *tcp_uaddr; /* Universal TCP address */
129 1.1 fvdl #endif
130 1.10 christos static const char servname[] = "sunrpc";
131 1.1 fvdl
132 1.13 christos const char rpcbind_superuser[] = "superuser";
133 1.13 christos const char rpcbind_unknown[] = "unknown";
134 1.1 fvdl
135 1.11 christos static int init_transport(struct netconfig *);
136 1.11 christos static void rbllist_add(rpcprog_t, rpcvers_t, struct netconfig *,
137 1.11 christos struct netbuf *);
138 1.17 joerg __dead static void terminate(int);
139 1.24 christos static void update_bound_sa(void);
140 1.23 christos #ifndef RPCBIND_RUMP
141 1.11 christos static void parseargs(int, char *[]);
142 1.1 fvdl
143 1.1 fvdl int
144 1.1 fvdl main(int argc, char *argv[])
145 1.23 christos #else
146 1.23 christos int rpcbind_main(void *);
147 1.23 christos int
148 1.23 christos rpcbind_main(void *arg)
149 1.23 christos #endif
150 1.1 fvdl {
151 1.1 fvdl struct netconfig *nconf;
152 1.1 fvdl void *nc_handle; /* Net config handle */
153 1.1 fvdl struct rlimit rl;
154 1.3 fvdl int maxrec = RPC_MAXDATASIZE;
155 1.1 fvdl
156 1.23 christos #ifdef RPCBIND_RUMP
157 1.23 christos svc_fdset_init(SVC_FDSET_MT);
158 1.23 christos #else
159 1.1 fvdl parseargs(argc, argv);
160 1.23 christos #endif
161 1.1 fvdl
162 1.22 christos if (getrlimit(RLIMIT_NOFILE, &rl) == -1)
163 1.22 christos err(EXIT_FAILURE, "getrlimit(RLIMIT_NOFILE)");
164 1.22 christos
165 1.22 christos if (rl.rlim_cur < 128) {
166 1.1 fvdl if (rl.rlim_max <= 128)
167 1.1 fvdl rl.rlim_cur = rl.rlim_max;
168 1.1 fvdl else
169 1.1 fvdl rl.rlim_cur = 128;
170 1.22 christos if (setrlimit(RLIMIT_NOFILE, &rl) < 0)
171 1.21 dholland err(EXIT_FAILURE, "setrlimit(RLIMIT_NOFILE)");
172 1.1 fvdl }
173 1.24 christos update_bound_sa();
174 1.24 christos
175 1.25 christos #ifndef RPCBIND_RUMP
176 1.24 christos /* Check that another rpcbind isn't already running. */
177 1.24 christos if ((rpcbindlockfd = open(RPCBINDDLOCK, O_RDONLY|O_CREAT, 0444)) == -1)
178 1.24 christos err(1, "%s", RPCBINDDLOCK);
179 1.24 christos
180 1.24 christos if (flock(rpcbindlockfd, LOCK_EX|LOCK_NB) == -1 && errno == EWOULDBLOCK)
181 1.24 christos errx(1, "another rpcbind is already running. Aborting");
182 1.24 christos
183 1.24 christos if (geteuid()) /* This command allowed only to root */
184 1.24 christos errx(EXIT_FAILURE, "Sorry. You are not superuser\n");
185 1.24 christos #endif
186 1.1 fvdl nc_handle = setnetconfig(); /* open netconfig file */
187 1.11 christos if (nc_handle == NULL)
188 1.22 christos errx(EXIT_FAILURE, "could not read /etc/netconfig");
189 1.24 christos
190 1.1 fvdl #ifdef PORTMAP
191 1.1 fvdl udptrans = "";
192 1.1 fvdl tcptrans = "";
193 1.1 fvdl #endif
194 1.1 fvdl
195 1.1 fvdl nconf = getnetconfigent("local");
196 1.11 christos if (nconf == NULL)
197 1.22 christos errx(EXIT_FAILURE, "can't find local transport");
198 1.3 fvdl
199 1.3 fvdl rpc_control(RPC_SVC_CONNMAXREC_SET, &maxrec);
200 1.3 fvdl
201 1.1 fvdl init_transport(nconf);
202 1.1 fvdl
203 1.1 fvdl while ((nconf = getnetconfig(nc_handle))) {
204 1.24 christos if (nconf->nc_flag & NC_VISIBLE) {
205 1.24 christos if (ipv6_only == 1 && strcmp(nconf->nc_protofmly,
206 1.24 christos "inet") == 0) {
207 1.24 christos /* DO NOTHING */
208 1.24 christos } else
209 1.24 christos init_transport(nconf);
210 1.24 christos }
211 1.1 fvdl }
212 1.1 fvdl endnetconfig(nc_handle);
213 1.1 fvdl
214 1.1 fvdl /* catch the usual termination signals for graceful exit */
215 1.1 fvdl (void) signal(SIGCHLD, reap);
216 1.1 fvdl (void) signal(SIGINT, terminate);
217 1.1 fvdl (void) signal(SIGTERM, terminate);
218 1.1 fvdl (void) signal(SIGQUIT, terminate);
219 1.1 fvdl /* ignore others that could get sent */
220 1.1 fvdl (void) signal(SIGPIPE, SIG_IGN);
221 1.23 christos #ifndef RPCBIND_RUMP
222 1.1 fvdl (void) signal(SIGHUP, SIG_IGN);
223 1.23 christos #endif
224 1.1 fvdl (void) signal(SIGUSR1, SIG_IGN);
225 1.1 fvdl (void) signal(SIGUSR2, SIG_IGN);
226 1.1 fvdl #ifdef WARMSTART
227 1.1 fvdl if (warmstart) {
228 1.1 fvdl read_warmstart();
229 1.1 fvdl }
230 1.1 fvdl #endif
231 1.1 fvdl if (debugging) {
232 1.1 fvdl printf("rpcbind debugging enabled.");
233 1.1 fvdl if (doabort) {
234 1.1 fvdl printf(" Will abort on errors!\n");
235 1.1 fvdl } else {
236 1.1 fvdl printf("\n");
237 1.1 fvdl }
238 1.1 fvdl } else {
239 1.1 fvdl if (daemon(0, 0))
240 1.22 christos err(EXIT_FAILURE, "fork failed");
241 1.1 fvdl }
242 1.11 christos
243 1.11 christos openlog("rpcbind", 0, LOG_DAEMON);
244 1.1 fvdl pidfile(NULL);
245 1.1 fvdl
246 1.1 fvdl if (runasdaemon) {
247 1.1 fvdl struct passwd *p;
248 1.1 fvdl
249 1.1 fvdl if((p = getpwnam(RUN_AS)) == NULL) {
250 1.1 fvdl syslog(LOG_ERR, "cannot get uid of daemon: %m");
251 1.22 christos exit(EXIT_FAILURE);
252 1.1 fvdl }
253 1.1 fvdl if (setuid(p->pw_uid) == -1) {
254 1.1 fvdl syslog(LOG_ERR, "setuid to daemon failed: %m");
255 1.22 christos exit(EXIT_FAILURE);
256 1.1 fvdl }
257 1.1 fvdl }
258 1.1 fvdl
259 1.1 fvdl network_init();
260 1.1 fvdl
261 1.23 christos #ifdef RPCBIND_RUMP
262 1.23 christos sem_post(&gensem);
263 1.23 christos #endif
264 1.1 fvdl my_svc_run();
265 1.1 fvdl syslog(LOG_ERR, "svc_run returned unexpectedly");
266 1.1 fvdl rpcbind_abort();
267 1.1 fvdl /* NOTREACHED */
268 1.1 fvdl
269 1.22 christos return EXIT_SUCCESS;
270 1.1 fvdl }
271 1.1 fvdl
272 1.1 fvdl /*
273 1.1 fvdl * Adds the entry into the rpcbind database.
274 1.1 fvdl * If PORTMAP, then for UDP and TCP, it adds the entries for version 2 also
275 1.1 fvdl * Returns 0 if succeeds, else fails
276 1.1 fvdl */
277 1.1 fvdl static int
278 1.1 fvdl init_transport(struct netconfig *nconf)
279 1.1 fvdl {
280 1.1 fvdl int fd;
281 1.1 fvdl struct t_bind taddr;
282 1.1 fvdl struct addrinfo hints, *res = NULL;
283 1.1 fvdl struct __rpc_sockinfo si;
284 1.1 fvdl SVCXPRT *my_xprt;
285 1.1 fvdl int status; /* bound checking ? */
286 1.1 fvdl int aicode;
287 1.1 fvdl int addrlen;
288 1.24 christos int nhostsbak;
289 1.24 christos int bound;
290 1.24 christos u_int32_t host_addr[4]; /* IPv4 or IPv6 */
291 1.1 fvdl struct sockaddr *sa;
292 1.1 fvdl struct sockaddr_un sun;
293 1.24 christos #ifndef RPCBIND_RUMP
294 1.24 christos mode_t oldmask;
295 1.24 christos #endif
296 1.1 fvdl
297 1.1 fvdl if ((nconf->nc_semantics != NC_TPI_CLTS) &&
298 1.1 fvdl (nconf->nc_semantics != NC_TPI_COTS) &&
299 1.1 fvdl (nconf->nc_semantics != NC_TPI_COTS_ORD))
300 1.11 christos return 1; /* not my type */
301 1.15 dsl #ifdef RPCBIND_DEBUG
302 1.1 fvdl if (debugging) {
303 1.1 fvdl int i;
304 1.1 fvdl char **s;
305 1.1 fvdl
306 1.11 christos (void)fprintf(stderr, "%s: %ld lookup routines :\n",
307 1.11 christos nconf->nc_netid, nconf->nc_nlookups);
308 1.1 fvdl for (i = 0, s = nconf->nc_lookups; i < nconf->nc_nlookups;
309 1.1 fvdl i++, s++)
310 1.11 christos (void)fprintf(stderr, "[%d] - %s\n", i, *s);
311 1.1 fvdl }
312 1.1 fvdl #endif
313 1.1 fvdl
314 1.1 fvdl /*
315 1.1 fvdl * XXX - using RPC library internal functions.
316 1.1 fvdl */
317 1.24 christos if (strcmp(nconf->nc_netid, "local") == 0) {
318 1.24 christos /*
319 1.24 christos * For other transports we call this later, for each socket we
320 1.24 christos * like to bind.
321 1.24 christos */
322 1.24 christos if ((fd = __rpc_nconf2fd(nconf)) < 0) {
323 1.24 christos int non_fatal = 0;
324 1.24 christos if (errno == EAFNOSUPPORT)
325 1.24 christos non_fatal = 1;
326 1.24 christos syslog(non_fatal ? LOG_DEBUG : LOG_ERR,
327 1.24 christos "Cannot create socket for `%s'", nconf->nc_netid);
328 1.14 christos return 1;
329 1.24 christos }
330 1.24 christos } else
331 1.24 christos fd = -1;
332 1.1 fvdl
333 1.1 fvdl if (!__rpc_nconf2sockinfo(nconf, &si)) {
334 1.24 christos syslog(LOG_ERR, "Cannot get information for `%s'",
335 1.24 christos nconf->nc_netid);
336 1.11 christos return 1;
337 1.1 fvdl }
338 1.6 fvdl
339 1.24 christos if (strcmp(nconf->nc_netid, "local") == 0) {
340 1.11 christos (void)memset(&sun, 0, sizeof sun);
341 1.1 fvdl sun.sun_family = AF_LOCAL;
342 1.23 christos #ifdef RPCBIND_RUMP
343 1.23 christos (void)rump_sys_unlink(_PATH_RPCBINDSOCK);
344 1.23 christos #else
345 1.11 christos (void)unlink(_PATH_RPCBINDSOCK);
346 1.23 christos #endif
347 1.11 christos (void)strlcpy(sun.sun_path, _PATH_RPCBINDSOCK,
348 1.11 christos sizeof(sun.sun_path));
349 1.1 fvdl sun.sun_len = SUN_LEN(&sun);
350 1.11 christos addrlen = sizeof(struct sockaddr_un);
351 1.1 fvdl sa = (struct sockaddr *)&sun;
352 1.1 fvdl } else {
353 1.1 fvdl /* Get rpcbind's address on this transport */
354 1.1 fvdl
355 1.11 christos (void)memset(&hints, 0, sizeof hints);
356 1.1 fvdl hints.ai_flags = AI_PASSIVE;
357 1.1 fvdl hints.ai_family = si.si_af;
358 1.1 fvdl hints.ai_socktype = si.si_socktype;
359 1.1 fvdl hints.ai_protocol = si.si_proto;
360 1.24 christos }
361 1.24 christos
362 1.24 christos if (strcmp(nconf->nc_netid, "local") != 0) {
363 1.24 christos /*
364 1.24 christos * If no hosts were specified, just bind to INADDR_ANY.
365 1.24 christos * Otherwise make sure 127.0.0.1 is added to the list.
366 1.24 christos */
367 1.24 christos nhostsbak = nhosts + 1;
368 1.24 christos hosts = realloc(hosts, nhostsbak * sizeof(char *));
369 1.24 christos if (nhostsbak == 1)
370 1.24 christos hosts[0] = __UNCONST("*");
371 1.24 christos else {
372 1.24 christos if (hints.ai_family == AF_INET) {
373 1.24 christos hosts[nhostsbak - 1] = __UNCONST("127.0.0.1");
374 1.24 christos } else if (hints.ai_family == AF_INET6) {
375 1.24 christos hosts[nhostsbak - 1] = __UNCONST("::1");
376 1.24 christos } else
377 1.24 christos return 1;
378 1.24 christos }
379 1.24 christos
380 1.24 christos /*
381 1.24 christos * Bind to specific IPs if asked to
382 1.24 christos */
383 1.24 christos bound = 0;
384 1.24 christos while (nhostsbak > 0) {
385 1.24 christos --nhostsbak;
386 1.24 christos /*
387 1.24 christos * XXX - using RPC library internal functions.
388 1.24 christos */
389 1.24 christos if ((fd = __rpc_nconf2fd(nconf)) < 0) {
390 1.24 christos int non_fatal = 0;
391 1.24 christos if (errno == EAFNOSUPPORT &&
392 1.24 christos nconf->nc_semantics != NC_TPI_CLTS)
393 1.24 christos non_fatal = 1;
394 1.24 christos syslog(non_fatal ? LOG_DEBUG : LOG_ERR,
395 1.24 christos "cannot create socket for %s",
396 1.24 christos nconf->nc_netid);
397 1.24 christos return 1;
398 1.24 christos }
399 1.24 christos switch (hints.ai_family) {
400 1.24 christos case AF_INET:
401 1.24 christos if (inet_pton(AF_INET, hosts[nhostsbak],
402 1.24 christos host_addr) == 1) {
403 1.24 christos hints.ai_flags &= AI_NUMERICHOST;
404 1.24 christos } else {
405 1.24 christos /*
406 1.24 christos * Skip if we have an AF_INET6 address.
407 1.24 christos */
408 1.24 christos if (inet_pton(AF_INET6,
409 1.24 christos hosts[nhostsbak], host_addr) == 1) {
410 1.24 christos close(fd);
411 1.24 christos continue;
412 1.24 christos }
413 1.24 christos }
414 1.24 christos break;
415 1.24 christos case AF_INET6:
416 1.24 christos if (inet_pton(AF_INET6, hosts[nhostsbak],
417 1.24 christos host_addr) == 1) {
418 1.24 christos hints.ai_flags &= AI_NUMERICHOST;
419 1.24 christos } else {
420 1.24 christos /*
421 1.24 christos * Skip if we have an AF_INET address.
422 1.24 christos */
423 1.24 christos if (inet_pton(AF_INET, hosts[nhostsbak],
424 1.24 christos host_addr) == 1) {
425 1.24 christos close(fd);
426 1.24 christos continue;
427 1.24 christos }
428 1.24 christos }
429 1.24 christos if (setsockopt(fd, IPPROTO_IPV6,
430 1.24 christos IPV6_V6ONLY, &on, sizeof on) < 0) {
431 1.24 christos syslog(LOG_ERR,
432 1.24 christos "can't set v6-only binding for "
433 1.24 christos "ipv6 socket: %m");
434 1.24 christos continue;
435 1.24 christos }
436 1.24 christos break;
437 1.24 christos default:
438 1.24 christos break;
439 1.24 christos }
440 1.24 christos
441 1.24 christos /*
442 1.24 christos * If no hosts were specified, just bind to INADDR_ANY
443 1.24 christos */
444 1.24 christos if (strcmp("*", hosts[nhostsbak]) == 0)
445 1.24 christos hosts[nhostsbak] = NULL;
446 1.24 christos if (strcmp(nconf->nc_netid, "local") != 0) {
447 1.24 christos if ((aicode = getaddrinfo(hosts[nhostsbak],
448 1.24 christos servname, &hints, &res)) != 0) {
449 1.24 christos syslog(LOG_ERR,
450 1.24 christos "cannot get local address for %s: %s",
451 1.24 christos nconf->nc_netid,
452 1.24 christos gai_strerror(aicode));
453 1.24 christos continue;
454 1.24 christos }
455 1.24 christos addrlen = res->ai_addrlen;
456 1.24 christos sa = (struct sockaddr *)res->ai_addr;
457 1.24 christos }
458 1.24 christos #ifndef RPCBIND_RUMP
459 1.24 christos oldmask = umask(S_IXUSR|S_IXGRP|S_IXOTH);
460 1.24 christos #endif
461 1.24 christos if (bind(fd, sa, addrlen) != 0) {
462 1.24 christos syslog(LOG_ERR, "cannot bind %s on %s: %m",
463 1.24 christos (hosts[nhostsbak] == NULL) ? "*" :
464 1.24 christos hosts[nhostsbak], nconf->nc_netid);
465 1.24 christos if (res != NULL)
466 1.24 christos freeaddrinfo(res);
467 1.24 christos continue;
468 1.24 christos } else
469 1.24 christos bound = 1;
470 1.24 christos #ifndef RPCBIND_RUMP
471 1.24 christos (void)umask(oldmask);
472 1.24 christos #endif
473 1.24 christos
474 1.24 christos /* Copy the address */
475 1.24 christos taddr.addr.len = taddr.addr.maxlen = addrlen;
476 1.24 christos taddr.addr.buf = malloc(addrlen);
477 1.24 christos if (taddr.addr.buf == NULL) {
478 1.24 christos syslog(LOG_ERR,
479 1.24 christos "cannot allocate memory for %s address",
480 1.24 christos nconf->nc_netid);
481 1.24 christos if (res != NULL)
482 1.24 christos freeaddrinfo(res);
483 1.24 christos return 1;
484 1.24 christos }
485 1.24 christos memcpy(taddr.addr.buf, sa, addrlen);
486 1.24 christos #ifdef RPCBIND_DEBUG
487 1.24 christos if (debugging) {
488 1.24 christos /*
489 1.24 christos * for debugging print out our universal
490 1.24 christos * address
491 1.24 christos */
492 1.24 christos char *uaddr;
493 1.24 christos struct netbuf nb;
494 1.24 christos
495 1.24 christos nb.buf = sa;
496 1.24 christos nb.len = nb.maxlen = sa->sa_len;
497 1.24 christos uaddr = taddr2uaddr(nconf, &nb);
498 1.24 christos (void)fprintf(stderr,
499 1.24 christos "rpcbind : my address is %s\n", uaddr);
500 1.24 christos (void)free(uaddr);
501 1.24 christos }
502 1.24 christos #endif
503 1.24 christos
504 1.24 christos if (nconf->nc_semantics != NC_TPI_CLTS)
505 1.24 christos listen(fd, SOMAXCONN);
506 1.24 christos
507 1.24 christos my_xprt = (SVCXPRT *)svc_tli_create(fd, nconf, &taddr,
508 1.24 christos RPC_MAXDATASIZE, RPC_MAXDATASIZE);
509 1.24 christos if (my_xprt == NULL) {
510 1.24 christos syslog(LOG_ERR,
511 1.24 christos "Could not create service for `%s'",
512 1.24 christos nconf->nc_netid);
513 1.24 christos goto error;
514 1.24 christos }
515 1.24 christos }
516 1.24 christos if (!bound)
517 1.24 christos return 1;
518 1.24 christos } else {
519 1.24 christos #ifndef RPCBIND_RUMP
520 1.24 christos oldmask = umask(S_IXUSR|S_IXGRP|S_IXOTH);
521 1.24 christos #endif
522 1.24 christos if (bind(fd, sa, addrlen) < 0) {
523 1.24 christos syslog(LOG_ERR, "cannot bind %s: %m", nconf->nc_netid);
524 1.24 christos if (res != NULL)
525 1.24 christos freeaddrinfo(res);
526 1.1 fvdl return 1;
527 1.1 fvdl }
528 1.23 christos #ifndef RPCBIND_RUMP
529 1.24 christos (void) umask(oldmask);
530 1.23 christos #endif
531 1.1 fvdl
532 1.24 christos /* Copy the address */
533 1.24 christos taddr.addr.len = taddr.addr.maxlen = addrlen;
534 1.24 christos taddr.addr.buf = malloc(addrlen);
535 1.24 christos if (taddr.addr.buf == NULL) {
536 1.24 christos syslog(LOG_ERR, "cannot allocate memory for %s address",
537 1.24 christos nconf->nc_netid);
538 1.24 christos if (res != NULL)
539 1.24 christos freeaddrinfo(res);
540 1.24 christos return 1;
541 1.24 christos }
542 1.24 christos memcpy(taddr.addr.buf, sa, addrlen);
543 1.15 dsl #ifdef RPCBIND_DEBUG
544 1.24 christos if (debugging) {
545 1.24 christos /* for debugging print out our universal address */
546 1.24 christos char *uaddr;
547 1.24 christos struct netbuf nb;
548 1.24 christos
549 1.24 christos nb.buf = sa;
550 1.24 christos nb.len = nb.maxlen = sa->sa_len;
551 1.24 christos uaddr = taddr2uaddr(nconf, &nb);
552 1.24 christos (void) fprintf(stderr, "rpcbind : my address is %s\n",
553 1.24 christos uaddr);
554 1.24 christos (void) free(uaddr);
555 1.24 christos }
556 1.1 fvdl #endif
557 1.1 fvdl
558 1.24 christos if (nconf->nc_semantics != NC_TPI_CLTS)
559 1.24 christos listen(fd, SOMAXCONN);
560 1.24 christos
561 1.24 christos my_xprt = (SVCXPRT *)svc_tli_create(fd, nconf, &taddr,
562 1.24 christos RPC_MAXDATASIZE, RPC_MAXDATASIZE);
563 1.24 christos if (my_xprt == (SVCXPRT *)NULL) {
564 1.24 christos syslog(LOG_ERR, "%s: could not create service",
565 1.24 christos nconf->nc_netid);
566 1.24 christos goto error;
567 1.24 christos }
568 1.1 fvdl }
569 1.1 fvdl
570 1.1 fvdl #ifdef PORTMAP
571 1.1 fvdl /*
572 1.1 fvdl * Register both the versions for tcp/ip, udp/ip and local.
573 1.1 fvdl */
574 1.1 fvdl if ((strcmp(nconf->nc_protofmly, NC_INET) == 0 &&
575 1.1 fvdl (strcmp(nconf->nc_proto, NC_TCP) == 0 ||
576 1.1 fvdl strcmp(nconf->nc_proto, NC_UDP) == 0)) ||
577 1.1 fvdl strcmp(nconf->nc_netid, "local") == 0) {
578 1.1 fvdl struct pmaplist *pml;
579 1.1 fvdl
580 1.1 fvdl if (!svc_register(my_xprt, PMAPPROG, PMAPVERS,
581 1.5 fvdl pmap_service, 0)) {
582 1.24 christos syslog(LOG_ERR, "Could not register on `%s'",
583 1.24 christos nconf->nc_netid);
584 1.1 fvdl goto error;
585 1.1 fvdl }
586 1.8 christos pml = malloc(sizeof (struct pmaplist));
587 1.8 christos if (pml == NULL) {
588 1.24 christos syslog(LOG_ERR, "Cannot allocate memory");
589 1.11 christos goto error;
590 1.1 fvdl }
591 1.24 christos
592 1.1 fvdl pml->pml_map.pm_prog = PMAPPROG;
593 1.1 fvdl pml->pml_map.pm_vers = PMAPVERS;
594 1.1 fvdl pml->pml_map.pm_port = PMAPPORT;
595 1.1 fvdl if (strcmp(nconf->nc_proto, NC_TCP) == 0) {
596 1.1 fvdl if (tcptrans[0]) {
597 1.24 christos syslog(LOG_ERR,
598 1.11 christos "Cannot have more than one TCP transport");
599 1.8 christos free(pml);
600 1.1 fvdl goto error;
601 1.1 fvdl }
602 1.1 fvdl tcptrans = strdup(nconf->nc_netid);
603 1.11 christos if (tcptrans == NULL) {
604 1.11 christos free(pml);
605 1.24 christos syslog(LOG_ERR, "Cannot allocate memory");
606 1.11 christos goto error;
607 1.11 christos }
608 1.1 fvdl pml->pml_map.pm_prot = IPPROTO_TCP;
609 1.1 fvdl
610 1.1 fvdl /* Let's snarf the universal address */
611 1.1 fvdl /* "h1.h2.h3.h4.p1.p2" */
612 1.1 fvdl tcp_uaddr = taddr2uaddr(nconf, &taddr.addr);
613 1.1 fvdl } else if (strcmp(nconf->nc_proto, NC_UDP) == 0) {
614 1.1 fvdl if (udptrans[0]) {
615 1.11 christos free(pml);
616 1.24 christos syslog(LOG_ERR,
617 1.11 christos "Cannot have more than one UDP transport");
618 1.1 fvdl goto error;
619 1.1 fvdl }
620 1.1 fvdl udptrans = strdup(nconf->nc_netid);
621 1.11 christos if (udptrans == NULL) {
622 1.11 christos free(pml);
623 1.24 christos syslog(LOG_ERR, "Cannot allocate memory");
624 1.11 christos goto error;
625 1.11 christos }
626 1.1 fvdl pml->pml_map.pm_prot = IPPROTO_UDP;
627 1.1 fvdl
628 1.1 fvdl /* Let's snarf the universal address */
629 1.1 fvdl /* "h1.h2.h3.h4.p1.p2" */
630 1.1 fvdl udp_uaddr = taddr2uaddr(nconf, &taddr.addr);
631 1.1 fvdl }
632 1.24 christos #ifdef IPPROTO_ST
633 1.24 christos else if (strcmp(nconf->nc_netid, "local") == 0)
634 1.24 christos pml->pml_map.pm_prot = IPPROTO_ST;
635 1.24 christos #endif
636 1.1 fvdl pml->pml_next = list_pml;
637 1.1 fvdl list_pml = pml;
638 1.1 fvdl
639 1.1 fvdl /* Add version 3 information */
640 1.8 christos pml = malloc(sizeof (struct pmaplist));
641 1.8 christos if (pml == NULL) {
642 1.24 christos syslog(LOG_ERR, "Cannot allocate memory");
643 1.11 christos goto error;
644 1.1 fvdl }
645 1.1 fvdl pml->pml_map = list_pml->pml_map;
646 1.1 fvdl pml->pml_map.pm_vers = RPCBVERS;
647 1.1 fvdl pml->pml_next = list_pml;
648 1.1 fvdl list_pml = pml;
649 1.1 fvdl
650 1.1 fvdl /* Add version 4 information */
651 1.8 christos pml = malloc(sizeof (struct pmaplist));
652 1.8 christos if (pml == NULL) {
653 1.24 christos syslog(LOG_ERR, "Cannot allocate memory");
654 1.11 christos goto error;
655 1.1 fvdl }
656 1.1 fvdl pml->pml_map = list_pml->pml_map;
657 1.1 fvdl pml->pml_map.pm_vers = RPCBVERS4;
658 1.1 fvdl pml->pml_next = list_pml;
659 1.1 fvdl list_pml = pml;
660 1.1 fvdl
661 1.1 fvdl /* Also add version 2 stuff to rpcbind list */
662 1.1 fvdl rbllist_add(PMAPPROG, PMAPVERS, nconf, &taddr.addr);
663 1.1 fvdl }
664 1.1 fvdl #endif
665 1.1 fvdl
666 1.1 fvdl /* version 3 registration */
667 1.1 fvdl if (!svc_reg(my_xprt, RPCBPROG, RPCBVERS, rpcb_service_3, NULL)) {
668 1.24 christos syslog(LOG_ERR, "Could not register %s version 3",
669 1.24 christos nconf->nc_netid);
670 1.1 fvdl goto error;
671 1.1 fvdl }
672 1.1 fvdl rbllist_add(RPCBPROG, RPCBVERS, nconf, &taddr.addr);
673 1.1 fvdl
674 1.1 fvdl /* version 4 registration */
675 1.1 fvdl if (!svc_reg(my_xprt, RPCBPROG, RPCBVERS4, rpcb_service_4, NULL)) {
676 1.24 christos syslog(LOG_ERR, "Could not register %s version 4",
677 1.24 christos nconf->nc_netid);
678 1.1 fvdl goto error;
679 1.1 fvdl }
680 1.1 fvdl rbllist_add(RPCBPROG, RPCBVERS4, nconf, &taddr.addr);
681 1.1 fvdl
682 1.1 fvdl /* decide if bound checking works for this transport */
683 1.1 fvdl status = add_bndlist(nconf, &taddr.addr);
684 1.15 dsl #ifdef RPCBIND_DEBUG
685 1.1 fvdl if (debugging) {
686 1.1 fvdl if (status < 0) {
687 1.1 fvdl fprintf(stderr, "Error in finding bind status for %s\n",
688 1.1 fvdl nconf->nc_netid);
689 1.1 fvdl } else if (status == 0) {
690 1.1 fvdl fprintf(stderr, "check binding for %s\n",
691 1.1 fvdl nconf->nc_netid);
692 1.1 fvdl } else if (status > 0) {
693 1.1 fvdl fprintf(stderr, "No check binding for %s\n",
694 1.1 fvdl nconf->nc_netid);
695 1.1 fvdl }
696 1.1 fvdl }
697 1.19 christos #else
698 1.19 christos __USE(status);
699 1.1 fvdl #endif
700 1.1 fvdl /*
701 1.1 fvdl * rmtcall only supported on CLTS transports for now.
702 1.1 fvdl */
703 1.1 fvdl if (nconf->nc_semantics == NC_TPI_CLTS) {
704 1.1 fvdl status = create_rmtcall_fd(nconf);
705 1.1 fvdl
706 1.15 dsl #ifdef RPCBIND_DEBUG
707 1.1 fvdl if (debugging) {
708 1.1 fvdl if (status < 0) {
709 1.1 fvdl fprintf(stderr,
710 1.1 fvdl "Could not create rmtcall fd for %s\n",
711 1.1 fvdl nconf->nc_netid);
712 1.1 fvdl } else {
713 1.1 fvdl fprintf(stderr, "rmtcall fd for %s is %d\n",
714 1.1 fvdl nconf->nc_netid, status);
715 1.1 fvdl }
716 1.1 fvdl }
717 1.1 fvdl #endif
718 1.1 fvdl }
719 1.1 fvdl return (0);
720 1.1 fvdl error:
721 1.23 christos #ifdef RPCBIND_RUMP
722 1.23 christos (void)rump_sys_close(fd);
723 1.23 christos #else
724 1.11 christos (void)close(fd);
725 1.23 christos #endif
726 1.1 fvdl return (1);
727 1.1 fvdl }
728 1.1 fvdl
729 1.24 christos /*
730 1.24 christos * Create the list of addresses that we're bound to. Normally, this
731 1.24 christos * list is empty because we're listening on the wildcard address
732 1.24 christos * (nhost == 0). If -h is specified on the command line, then
733 1.24 christos * bound_sa will have a list of the addresses that the program binds
734 1.24 christos * to specifically. This function takes that list and converts them to
735 1.24 christos * struct sockaddr * and stores them in bound_sa.
736 1.24 christos */
737 1.24 christos static void
738 1.24 christos update_bound_sa(void)
739 1.24 christos {
740 1.24 christos struct addrinfo hints, *res = NULL;
741 1.24 christos int i;
742 1.24 christos
743 1.24 christos if (nhosts == 0)
744 1.24 christos return;
745 1.24 christos bound_sa = malloc(sizeof(*bound_sa) * nhosts);
746 1.24 christos memset(&hints, 0, sizeof(hints));
747 1.24 christos hints.ai_family = PF_UNSPEC;
748 1.24 christos for (i = 0; i < nhosts; i++) {
749 1.24 christos if (getaddrinfo(hosts[i], NULL, &hints, &res) != 0)
750 1.24 christos continue;
751 1.24 christos bound_sa[i] = malloc(res->ai_addrlen);
752 1.24 christos memcpy(bound_sa[i], res->ai_addr, res->ai_addrlen);
753 1.24 christos }
754 1.24 christos }
755 1.24 christos
756 1.24 christos /*
757 1.24 christos * Match the sa against the list of addresses we've bound to. If
758 1.24 christos * we've not specifically bound to anything, we match everything.
759 1.24 christos * Otherwise, if the IPv4 or IPv6 address matches one of the addresses
760 1.24 christos * in bound_sa, we return true. If not, we return false.
761 1.24 christos */
762 1.24 christos int
763 1.24 christos listen_addr(const struct sockaddr *sa)
764 1.24 christos {
765 1.24 christos int i;
766 1.24 christos
767 1.24 christos /*
768 1.24 christos * If nhosts == 0, then there were no -h options on the
769 1.24 christos * command line, so all addresses are addresses we're
770 1.24 christos * listening to.
771 1.24 christos */
772 1.24 christos if (nhosts == 0)
773 1.24 christos return 1;
774 1.24 christos for (i = 0; i < nhosts; i++) {
775 1.24 christos if (bound_sa[i] == NULL ||
776 1.24 christos sa->sa_family != bound_sa[i]->sa_family)
777 1.24 christos continue;
778 1.24 christos switch (sa->sa_family) {
779 1.24 christos case AF_INET:
780 1.24 christos if (memcmp(&SA2SINADDR(sa), &SA2SINADDR(bound_sa[i]),
781 1.24 christos sizeof(struct in_addr)) == 0)
782 1.24 christos return (1);
783 1.24 christos break;
784 1.24 christos #ifdef INET6
785 1.24 christos case AF_INET6:
786 1.24 christos if (memcmp(&SA2SIN6ADDR(sa), &SA2SIN6ADDR(bound_sa[i]),
787 1.24 christos sizeof(struct in6_addr)) == 0)
788 1.24 christos return (1);
789 1.24 christos break;
790 1.24 christos #endif
791 1.24 christos default:
792 1.24 christos break;
793 1.24 christos }
794 1.24 christos }
795 1.24 christos return (0);
796 1.24 christos }
797 1.24 christos
798 1.1 fvdl static void
799 1.1 fvdl rbllist_add(rpcprog_t prog, rpcvers_t vers, struct netconfig *nconf,
800 1.1 fvdl struct netbuf *addr)
801 1.1 fvdl {
802 1.1 fvdl rpcblist_ptr rbl;
803 1.1 fvdl
804 1.8 christos rbl = malloc(sizeof(rpcblist));
805 1.8 christos if (rbl == NULL) {
806 1.24 christos syslog(LOG_ERR, "Out of memory");
807 1.11 christos return;
808 1.1 fvdl }
809 1.1 fvdl
810 1.1 fvdl rbl->rpcb_map.r_prog = prog;
811 1.1 fvdl rbl->rpcb_map.r_vers = vers;
812 1.1 fvdl rbl->rpcb_map.r_netid = strdup(nconf->nc_netid);
813 1.1 fvdl rbl->rpcb_map.r_addr = taddr2uaddr(nconf, addr);
814 1.13 christos rbl->rpcb_map.r_owner = strdup(rpcbind_superuser);
815 1.1 fvdl rbl->rpcb_next = list_rbl; /* Attach to global list */
816 1.1 fvdl list_rbl = rbl;
817 1.1 fvdl }
818 1.1 fvdl
819 1.1 fvdl /*
820 1.1 fvdl * Catch the signal and die
821 1.1 fvdl */
822 1.1 fvdl static void
823 1.24 christos terminate(int signum __unused)
824 1.1 fvdl {
825 1.25 christos #ifndef RPCBIND_RUMP
826 1.24 christos close(rpcbindlockfd);
827 1.25 christos #endif
828 1.1 fvdl #ifdef WARMSTART
829 1.1 fvdl syslog(LOG_ERR,
830 1.24 christos "rpcbind terminating on signal %d. Restart with \"rpcbind -w\"",
831 1.24 christos signum);
832 1.1 fvdl write_warmstart(); /* Dump yourself */
833 1.1 fvdl #endif
834 1.23 christos #ifdef RPCBIND_RUMP
835 1.23 christos exit(2);
836 1.23 christos #else
837 1.22 christos exit(EXIT_FAILURE);
838 1.23 christos #endif
839 1.1 fvdl }
840 1.1 fvdl
841 1.1 fvdl void
842 1.24 christos rpcbind_abort(void)
843 1.1 fvdl {
844 1.1 fvdl #ifdef WARMSTART
845 1.1 fvdl write_warmstart(); /* Dump yourself */
846 1.1 fvdl #endif
847 1.1 fvdl abort();
848 1.1 fvdl }
849 1.1 fvdl
850 1.23 christos #ifndef RPCBIND_RUMP
851 1.1 fvdl /* get command line options */
852 1.1 fvdl static void
853 1.1 fvdl parseargs(int argc, char *argv[])
854 1.1 fvdl {
855 1.1 fvdl int c;
856 1.1 fvdl
857 1.24 christos #ifdef WARMSTART
858 1.24 christos #define WSOP "w"
859 1.24 christos #else
860 1.24 christos #define WSOP ""
861 1.24 christos #endif
862 1.24 christos #ifdef LIBWRAP
863 1.24 christos #define WRAPOP "W"
864 1.24 christos #else
865 1.24 christos #define WRAPOP ""
866 1.24 christos #endif
867 1.24 christos while ((c = getopt(argc, argv, "6adh:iLls" WRAPOP WSOP)) != -1) {
868 1.1 fvdl switch (c) {
869 1.24 christos case '6':
870 1.24 christos ipv6_only = 1;
871 1.24 christos break;
872 1.1 fvdl case 'a':
873 1.1 fvdl doabort = 1; /* when debugging, do an abort on */
874 1.1 fvdl break; /* errors; for rpcbind developers */
875 1.1 fvdl /* only! */
876 1.1 fvdl case 'd':
877 1.1 fvdl debugging = 1;
878 1.1 fvdl break;
879 1.24 christos case 'h':
880 1.24 christos ++nhosts;
881 1.24 christos hosts = realloc(hosts, nhosts * sizeof(char *));
882 1.24 christos if (hosts == NULL)
883 1.24 christos errx(1, "Out of memory");
884 1.24 christos hosts[nhosts - 1] = strdup(optarg);
885 1.24 christos if (hosts[nhosts - 1] == NULL)
886 1.24 christos errx(1, "Out of memory");
887 1.24 christos break;
888 1.1 fvdl case 'i':
889 1.1 fvdl insecure = 1;
890 1.1 fvdl break;
891 1.1 fvdl case 'L':
892 1.1 fvdl oldstyle_local = 1;
893 1.1 fvdl break;
894 1.1 fvdl case 'l':
895 1.1 fvdl verboselog = 1;
896 1.1 fvdl break;
897 1.1 fvdl case 's':
898 1.1 fvdl runasdaemon = 1;
899 1.1 fvdl break;
900 1.24 christos #ifdef LIBWRAP
901 1.24 christos case 'W':
902 1.24 christos libwrap = 1;
903 1.24 christos break;
904 1.24 christos #endif
905 1.1 fvdl #ifdef WARMSTART
906 1.1 fvdl case 'w':
907 1.1 fvdl warmstart = 1;
908 1.1 fvdl break;
909 1.1 fvdl #endif
910 1.1 fvdl default: /* error */
911 1.1 fvdl fprintf(stderr, "usage: rpcbind [-Idwils]\n");
912 1.24 christos fprintf(stderr,
913 1.24 christos "Usage: %s [-6adiLls%s%s] [-h bindip]\n",
914 1.24 christos getprogname(), WRAPOP, WSOP);
915 1.22 christos exit(EXIT_FAILURE);
916 1.1 fvdl }
917 1.1 fvdl }
918 1.1 fvdl if (doabort && !debugging) {
919 1.1 fvdl fprintf(stderr,
920 1.1 fvdl "-a (abort) specified without -d (debugging) -- ignored.\n");
921 1.1 fvdl doabort = 0;
922 1.1 fvdl }
923 1.24 christos #undef WRAPOP
924 1.24 christos #undef WSOP
925 1.1 fvdl }
926 1.23 christos #endif
927 1.1 fvdl
928 1.1 fvdl void
929 1.24 christos reap(int dummy __unused)
930 1.1 fvdl {
931 1.1 fvdl int save_errno = errno;
932 1.1 fvdl
933 1.1 fvdl while (wait3(NULL, WNOHANG, NULL) > 0)
934 1.1 fvdl ;
935 1.1 fvdl errno = save_errno;
936 1.1 fvdl }
937 1.1 fvdl
938 1.1 fvdl void
939 1.24 christos toggle_verboselog(int dummy __unused)
940 1.1 fvdl {
941 1.1 fvdl verboselog = !verboselog;
942 1.1 fvdl }
943