xref: /openbsd/regress/usr.sbin/syslogd/Client.pm (revision 274d7c50)
1#	$OpenBSD: Client.pm,v 1.11 2017/09/13 00:35:53 bluhm Exp $
2
3# Copyright (c) 2010-2014 Alexander Bluhm <bluhm@openbsd.org>
4#
5# Permission to use, copy, modify, and distribute this software for any
6# purpose with or without fee is hereby granted, provided that the above
7# copyright notice and this permission notice appear in all copies.
8#
9# THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
10# WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
11# MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
12# ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
13# WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
14# ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
15# OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
16
17use strict;
18use warnings;
19
20package Client;
21use parent 'Proc';
22use Carp;
23use Socket;
24use Socket6;
25use IO::Socket;
26use IO::Socket::INET6;
27use IO::Socket::SSL;
28use Sys::Syslog qw(:standard :extended :macros);
29
30sub new {
31	my $class = shift;
32	my %args = @_;
33	$args{ktracefile} ||= "client.ktrace";
34	$args{logfile} ||= "client.log";
35	$args{up} ||= "Openlog";
36	my $self = Proc::new($class, %args);
37	if (defined($self->{connectdomain})) {
38		$self->{connectproto} ||= "udp";
39	}
40	return $self;
41}
42
43sub child {
44	my $self = shift;
45
46	if (defined($self->{connectdomain}) &&
47	    $self->{connectdomain} ne "sendsyslog") {
48		my $cs;
49		if ($self->{connectdomain} == AF_UNIX) {
50			$cs = IO::Socket::UNIX->new(
51			    Type => SOCK_DGRAM,
52			    Peer => $self->{connectpath} || "/dev/log",
53			) or die ref($self), " socket unix failed: $!";
54			$cs->setsockopt(SOL_SOCKET, SO_SNDBUF, 10000)
55			    or die ref($self), " setsockopt failed: $!";
56		} else {
57			$SSL_ERROR = "";
58			my $iosocket = $self->{connectproto} eq "tls" ?
59			    "IO::Socket::SSL" : "IO::Socket::INET6";
60			my $proto = $self->{connectproto};
61			$proto = "tcp" if $proto eq "tls";
62			$cs = $iosocket->new(
63			    Proto               => $proto,
64			    Domain              => $self->{connectdomain},
65			    PeerAddr            => $self->{connectaddr},
66			    PeerPort            => $self->{connectport},
67			    $self->{sslcert} ?
68				(SSL_cert_file => $self->{sslcert}) : (),
69			    $self->{sslkey} ?
70				(SSL_key_file => $self->{sslkey}) : (),
71			    $self->{sslca} ?
72				(SSL_ca_file => $self->{sslca}) : (),
73			    SSL_verify_mode     => ($self->{sslca} ?
74				SSL_VERIFY_PEER : SSL_VERIFY_NONE),
75			    $self->{sslversion} ?
76				(SSL_version => $self->{sslversion}) : (),
77			    $self->{sslciphers} ?
78				(SSL_cipher_list => $self->{sslciphers}) : (),
79			) or die ref($self), " $iosocket socket connect ".
80			    "failed: $!,$SSL_ERROR";
81			if ($self->{sndbuf}) {
82				setsockopt($cs, SOL_SOCKET, SO_SNDBUF,
83				    pack('i', $self->{sndbuf})) or die
84				    ref($self), " set SO_SNDBUF failed: $!";
85			}
86			if ($self->{rcvbuf}) {
87				setsockopt($cs, SOL_SOCKET, SO_RCVBUF,
88				    pack('i', $self->{rcvbuf})) or die
89				    ref($self), " set SO_RCVBUF failed: $!";
90			}
91			print STDERR "connect sock: ",$cs->sockhost()," ",
92			    $cs->sockport(),"\n";
93			print STDERR "connect peer: ",$cs->peerhost()," ",
94			    $cs->peerport(),"\n";
95			if ($self->{connectproto} eq "tls") {
96				print STDERR "ssl version: ",
97				    $cs->get_sslversion(),"\n";
98				print STDERR "ssl cipher: ",
99				    $cs->get_cipher(),"\n";
100				print STDERR "ssl issuer: ",
101				    $cs->peer_certificate('issuer'),"\n";
102				print STDERR "ssl subject: ",
103				    $cs->peer_certificate('subject'),"\n";
104				print STDERR "ssl cn: ",
105				    $cs->peer_certificate('cn'),"\n";
106			}
107		}
108
109		IO::Handle::flush(\*STDOUT);
110		*STDIN = *STDOUT = $self->{cs} = $cs;
111		select(STDOUT);
112	}
113
114	if ($self->{logsock}) {
115		setlogsock($self->{logsock})
116		    or die ref($self), " setlogsock failed: $!";
117	}
118	# we take LOG_UUCP as it is not used nowadays
119	openlog("syslogd-regress", "perror,pid", LOG_UUCP);
120}
121
1221;
123