xref: /openbsd/etc/rc (revision 759e03b2)
1*759e03b2Sderaadt#	$OpenBSD: rc,v 1.54 1997/11/08 20:45:33 deraadt Exp $
2df930be7Sderaadt
3df930be7Sderaadt# System startup script run by init on autoboot
4df930be7Sderaadt# or after single-user.
5df930be7Sderaadt# Output and error are redirected to console by init,
6df930be7Sderaadt# and the console is the controlling terminal.
7df930be7Sderaadt
8df930be7Sderaadtstty status '^T'
9df930be7Sderaadt
10df930be7Sderaadt# Set shell to ignore SIGINT (2), but not children;
11df930be7Sderaadt# shell catches SIGQUIT (3) and returns to single user after fsck.
12df930be7Sderaadttrap : 2
13df930be7Sderaadttrap : 3	# shouldn't be needed
14df930be7Sderaadt
15df930be7SderaadtHOME=/; export HOME
16df930be7SderaadtPATH=/sbin:/bin:/usr/sbin:/usr/bin
17df930be7Sderaadtexport PATH
18df930be7Sderaadt
19df930be7Sderaadt# Configure ccd devices.
208b7444a6Sderaadtif [ -f /etc/ccd.conf ]; then
21df930be7Sderaadt	ccdconfig -C
22df930be7Sderaadtfi
23df930be7Sderaadt
248b7444a6Sderaadtif [ -e /fastboot ]; then
25df930be7Sderaadt	echo "Fast boot: skipping disk checks."
268b7444a6Sderaadtelif [ $1x = autobootx ]; then
27df930be7Sderaadt	echo "Automatic boot in progress: starting file system checks."
28b39bbe87Smillert	fsck -p
29df930be7Sderaadt	case $? in
30df930be7Sderaadt	0)
31df930be7Sderaadt		;;
32df930be7Sderaadt	2)
33df930be7Sderaadt		exit 1
34df930be7Sderaadt		;;
35df930be7Sderaadt	4)
36df930be7Sderaadt		echo "Rebooting..."
37df930be7Sderaadt		reboot
38df930be7Sderaadt		echo "Reboot failed; help!"
39df930be7Sderaadt		exit 1
40df930be7Sderaadt		;;
41df930be7Sderaadt	8)
42df930be7Sderaadt		echo "Automatic file system check failed; help!"
43df930be7Sderaadt		exit 1
44df930be7Sderaadt		;;
45df930be7Sderaadt	12)
46df930be7Sderaadt		echo "Boot interrupted."
47df930be7Sderaadt		exit 1
48df930be7Sderaadt		;;
49df930be7Sderaadt	130)
50df930be7Sderaadt		# interrupt before catcher installed
51df930be7Sderaadt		exit 1
52df930be7Sderaadt		;;
53df930be7Sderaadt	*)
54df930be7Sderaadt		echo "Unknown error; help!"
55df930be7Sderaadt		exit 1
56df930be7Sderaadt		;;
57df930be7Sderaadt	esac
58df930be7Sderaadtfi
59df930be7Sderaadt
60df930be7Sderaadttrap "echo 'Boot interrupted.'; exit 1" 3
61df930be7Sderaadt
62df930be7Sderaadtswapon -a
63df930be7Sderaadt
64df930be7Sderaadtumount -a >/dev/null 2>&1
65df930be7Sderaadtmount -a -t nonfs
66df930be7Sderaadtrm -f /fastboot		# XXX (root now writeable)
67df930be7Sderaadt
68df930be7Sderaadt# set flags on ttys.  (do early, in case they use tty for SLIP in netstart)
69df930be7Sderaadtecho 'setting tty flags'
70df930be7Sderaadtttyflags -a
71df930be7Sderaadt
72df930be7Sderaadt# set hostname, turn on network
73df930be7Sderaadtecho 'starting network'
74df930be7Sderaadt. /etc/netstart
75df930be7Sderaadt
76df930be7Sderaadtmount /usr >/dev/null 2>&1
77df930be7Sderaadtmount /var >/dev/null 2>&1
78df930be7Sderaadt
79*759e03b2Sderaadt# $named_flags is imported from /etc/rc.conf;
80*759e03b2Sderaadt# if $named_flags != NO, named is run.
81*759e03b2Sderaadtif [ "X${named_flags}" != X"NO" ]; then
82*759e03b2Sderaadt	echo -n ' named';		named $named_flags
83*759e03b2Sderaadtfi
84*759e03b2Sderaadt
8530d9f12bSderaadt# /etc/ifaliases, if it exists, contains the names of additional IP
8630d9f12bSderaadt# addresses for each interface. It is formatted as a series of lines
8730d9f12bSderaadt# that contain
8830d9f12bSderaadt#	interface address netmask
8930d9f12bSderaadtif [ -f /etc/ifaliases ]; then
9030d9f12bSderaadt(
9130d9f12bSderaadt	# delete comments and blank lines
9230d9f12bSderaadt	set -- `sed -e 's/#.*$//' /etc/ifaliases | grep -v '^$'`
9330d9f12bSderaadt	while [ $# -ge 3 ] ; do
9430d9f12bSderaadt		ifconfig $1 inet alias $2 netmask $3
957940ce84Smillert		route add -host $2 localhost
9630d9f12bSderaadt		shift 3
9730d9f12bSderaadt	done
9830d9f12bSderaadt)
9930d9f12bSderaadtfi
10030d9f12bSderaadt
1019a844b63Sdmif [ X"${ipfilter}" = X"YES" -a X"${ipmon_flags}" != X"NO" ]; then
1027132670aSmickey	echo 'starting ipmon';		ipmon ${ipmon_flags}
1039a844b63Sdmfi
1049a844b63Sdm
1052e57e016Sderaadtif [ X"${rfc1323}" = X"NO" ]; then
1062e57e016Sderaadt	echo 'disabling rfc1323'; 	sysctl -w net.inet.tcp.rfc1323=0
1072e57e016Sderaadtfi
1082e57e016Sderaadt
109edae963cSderaadt# $photurisd_flags is imported from /etc/rc.conf;
1103edbf32cSkstailey# If $photurisd_flags == NO or /etc/photuris/photuris.conf doesn't exist, then
111a5aa1706Sprovos# photurisd isn't run.
1123edbf32cSkstaileyif [ "X${photurisd_flags}" != X"NO" -a -e /etc/photuris/photuris.conf ]; then
113a5aa1706Sprovos	echo 'starting photurisd';	photurisd ${photurisd_flags}
114a5aa1706Sprovosfi
115a5aa1706Sprovos
116df930be7Sderaadt# clean up left-over files
117df930be7Sderaadtrm -f /etc/nologin
118df930be7Sderaadtrm -f /var/spool/lock/LCK.*
119df930be7Sderaadtrm -f /var/spool/uucp/STST/*
120df930be7Sderaadt(cd /var/run && { rm -rf -- *; install -c -m 664 -g utmp /dev/null utmp; })
121df930be7Sderaadt
122df930be7Sderaadtecho -n 'starting rpc daemons:'
1238e74b1f0Smillert
124edae963cSderaadt# $portmap is imported from /etc/rc.conf;
1258e74b1f0Smillert# if $portmap == YES, the portmapper is started.
1268e74b1f0Smillertif [ X"${portmap}" = X"YES" ]; then
127df930be7Sderaadt	echo -n ' portmap';		portmap
128423a3640Sderaadtfi
129df930be7Sderaadt
1309704da5bSderaadtif [ -d /var/yp/binding ]; then
1312d5ee5bcSderaadt	if [ -d /var/yp/`domainname` ]; then
132b25099beSderaadt		# yp server capabilities needed...
133d6518a3fSniklas		echo -n ' ypserv';		ypserv ${ypserv_flags}
134d52cd61fSderaadt		#echo -n ' ypxfrd';		ypxfrd
1357f2d1b00Sderaadt	fi
136b25099beSderaadt
1377f2d1b00Sderaadt	echo -n ' ypbind';		ypbind
1387f2d1b00Sderaadt
1397f2d1b00Sderaadt	if [ -d /var/yp/`domainname` ]; then
140b25099beSderaadt		# if we are the master server, run rpc.yppasswdd
141b25099beSderaadt		_host1=`ypwhich -m passwd 2> /dev/null`
142b25099beSderaadt		_host2=`hostname`
143fd917f6eSderaadt		if [ `grep '^lookup' /etc/resolv.conf | grep yp | wc -c` -ne 0 ]; then
144b25099beSderaadt			_host1=`ypmatch $_host1 hosts | cut -d'	' -f2`
145b25099beSderaadt			_host2=`ypmatch $_host2 hosts | cut -d'	' -f2 | head -1`
146b25099beSderaadt		else
147b25099beSderaadt			_host1=`nslookup $_host1 | grep '^Name: ' | \
148b25099beSderaadt			    sed -e 's/^Name:    //'`
149b25099beSderaadt			_host2=`nslookup $_host2 | grep '^Name: ' | \
150b25099beSderaadt			    sed -e 's/^Name:    //'`
151b25099beSderaadt		fi
152234efc0eSderaadt		if [ "$_host2" = "$_host1" ]; then
15313f82310Sniklas			echo -n ' rpc.yppasswdd'
15413f82310Sniklas			rpc.yppasswdd ${yppasswdd_flags}
1552d5ee5bcSderaadt		fi
1562d5ee5bcSderaadt	fi
157df930be7Sderaadtfi
158df930be7Sderaadt
159edae963cSderaadt# $nfs_server is imported from /etc/rc.conf;
160df930be7Sderaadt# if $nfs_server == YES, the machine is setup for being an nfs server
1612a7d8a9aSderaadtif [ X${nfs_server} = X"YES" -a -r /etc/exports -a \
1622a7d8a9aSderaadt    `cat /etc/exports | sed -e '/^#/d' | wc -l` -ne 0 ]; then
163df930be7Sderaadt	rm -f /var/db/mountdtab
164df930be7Sderaadt	echo -n > /var/db/mountdtab
165df930be7Sderaadt	echo -n ' mountd';		mountd
166e6d41a0aSniklas	echo -n ' nfsd';		nfsd ${nfsd_flags}
167e6d41a0aSniklas	if [ X${lockd} = X"YES" ]; then
168e6d41a0aSniklas		echo -n ' rpc.lockd';	rpc.lockd
169e6d41a0aSniklas	fi
170df930be7Sderaadtfi
171df930be7Sderaadt
172edae963cSderaadt# $nfs_client is imported from /etc/rc.conf;
173df930be7Sderaadt# if $nfs_client == YES, the machine is setup for being an nfs client
174df930be7Sderaadtif [ X${nfs_client} = X"YES" ]; then
175df930be7Sderaadt	echo -n ' nfsiod';		nfsiod -n 4
176df930be7Sderaadtfi
177df930be7Sderaadt
178df930be7Sderaadtif [ X${amd} = X"YES" -a -d ${amd_dir} -a -r ${amd_master} ]; then
179df930be7Sderaadt	echo -n ' amd'
180df930be7Sderaadt	amd -l syslog -x error,noinfo,nostats -p \
181df930be7Sderaadt	    -a ${amd_dir} `cat ${amd_master}` > /var/run/amd.pid
182df930be7Sderaadtfi
183df930be7Sderaadt
184df930be7Sderaadtecho '.'
185df930be7Sderaadtmount -a -t nfs
186df930be7Sderaadt
187df930be7Sderaadtecho -n 'starting system logger'
188df930be7Sderaadtrm -f /dev/log
18992de4609Sderaadtsyslogd
190df930be7Sderaadt
191edae963cSderaadt# $timed_flags is imported from /etc/rc.conf;
192df930be7Sderaadt# if $timed_flags == NO, timed isn't run.
193df930be7Sderaadtif [ "X${timed_flags}" != X"NO" ]; then
194df930be7Sderaadt	echo -n ', time daemon'; timed $timed_flags
195df930be7Sderaadtfi
196df930be7Sderaadtecho '.'
197df930be7Sderaadt
198df930be7Sderaadt# /var/crash should be a directory or a symbolic link
199df930be7Sderaadt# to the crash directory if core dumps are to be saved.
200df930be7Sderaadtif [ -d /var/crash ]; then
201df930be7Sderaadt	echo checking for core dump...
202df930be7Sderaadt	savecore /var/crash
203df930be7Sderaadtfi
204df930be7Sderaadt
20536a647e7Sdownsjif [ "X${check_quotas}" = X"YES" ]; then
206df930be7Sderaadt	echo -n 'checking quotas:'
207df930be7Sderaadt	quotacheck -a
208df930be7Sderaadt	echo ' done.'
209df930be7Sderaadt	quotaon -a
21036a647e7Sdownsjfi
211df930be7Sderaadt
212df930be7Sderaadt# build ps databases
213df930be7Sderaadtecho 'building databases...'
214e8bd198cSderaadtkvm_mkdb /bsd
215df930be7Sderaadtdev_mkdb
216df930be7Sderaadt
217df930be7Sderaadtchmod 666 /dev/tty[pqrs]*
218df930be7Sderaadt
219df930be7Sderaadt# check the password temp/lock file
2208b7444a6Sderaadtif [ -f /etc/ptmp ]; then
221df930be7Sderaadt	logger -s -p auth.err \
222df930be7Sderaadt	'password file may be incorrect -- /etc/ptmp exists'
223df930be7Sderaadtfi
224df930be7Sderaadt
225e65724e6Smillertecho clearing /tmp
226e65724e6Smillert
227e65724e6Smillert# prune quickly with one rm, then use find to clean up /tmp/[lq]*
228e65724e6Smillert# (not needed with mfs /tmp, but doesn't hurt there...)
229e65724e6Smillert(cd /tmp && rm -rf [a-km-pr-zA-Z]* &&
230e65724e6Smillert    find . ! -name . ! -name lost+found ! -name quota.user \
231e65724e6Smillert	! -name quota.group -exec rm -rf -- {} \; -type d -prune)
232e65724e6Smillert
233e31a5b5aSmillerttest -f /etc/rc.securelevel && . /etc/rc.securelevel
23441406ee4Sderaadtif [ X${securelevel} != X"" ]; then
235e31a5b5aSmillert	echo -n 'setting kernel security level: '
23641406ee4Sderaadt	sysctl -w kern.securelevel=${securelevel}
23741406ee4Sderaadtfi
23841406ee4Sderaadt
239dc279d04Sderaadt# patch /etc/motd
240dc279d04Sderaadtif [ ! -f /etc/motd ]; then
241dc279d04Sderaadt	install -c -o root -g wheel -m 664 /dev/null /etc/motd
242dc279d04Sderaadtfi
243dc279d04SderaadtT=/tmp/_motd
244dc279d04Sderaadtrm -f $T
245dc279d04Sderaadtsysctl -n kern.version | sed 1q > $T
246dc279d04Sderaadtecho "" >> $T
247dc279d04Sderaadtsed '1,/^$/d' < /etc/motd >> $T
248dc279d04Sderaadtcmp -s $T /etc/motd || cp $T /etc/motd
249dc279d04Sderaadtrm -f $T
250dc279d04Sderaadt
2518e5713fdSmillert# nvi file recovery
252c2c7b38aSmillertif [ ! -d /var/tmp/vi.recover ]; then
253c2c7b38aSmillert	if [ -e /var/tmp/vi.recover ]; then
254c2c7b38aSmillert		echo "Warning!  /var/tmp/vi.recover is not a directory!"
255c2c7b38aSmillert	else
256c2c7b38aSmillert		mkdir /var/tmp/vi.recover
257c2c7b38aSmillert		chmod 1777 /var/tmp/vi.recover
258c2c7b38aSmillert	fi
259c2c7b38aSmillertfi
2608e5713fdSmillertvibackup=/var/tmp/vi.recover/vi.*
2618e5713fdSmillertif [ "$vibackup" != "/var/tmp/vi.recover/vi.*" ]; then
2628e5713fdSmillert	for i in $vibackup; do
2638e5713fdSmillert		# Unmodified nvi editor backup files either have the
2648e5713fdSmillert		# execute bit set or are zero length.  Delete them.
2658e5713fdSmillert		if test -x $i -o ! -s $i; then
2668e5713fdSmillert			rm $i
2678e5713fdSmillert		fi
2688e5713fdSmillert	done
2698e5713fdSmillertfi
270df930be7Sderaadtvirecovery=/var/tmp/vi.recover/recover.*
271df930be7Sderaadtif [ "$virecovery" != "/var/tmp/vi.recover/recover.*" ]; then
272df930be7Sderaadt	echo preserving editor files
273df930be7Sderaadt	for i in $virecovery; do
2748e5713fdSmillert		# Delete any recovery files that are zero length, corrupted,
2758e5713fdSmillert		# or that have no corresponding backup file.  Else send mail
2768e5713fdSmillert		# to the user.
2778e5713fdSmillert		recfile=`awk '/^X-vi-recover-path:/{print $2}' < $i`
2788e5713fdSmillert		if test -n "$recfile" -a -s "$recfile"; then
279df930be7Sderaadt			sendmail -t < $i
2808e5713fdSmillert		else
2818e5713fdSmillert			rm $i
2828e5713fdSmillert		fi
283df930be7Sderaadt	done
284df930be7Sderaadtfi
285df930be7Sderaadt
286df930be7Sderaadtif [ -f /var/account/acct ]; then
287df930be7Sderaadt	echo 'turning on accounting';	accton /var/account/acct
288df930be7Sderaadtfi
289df930be7Sderaadt
290df930be7Sderaadtecho -n standard daemons:
291df930be7Sderaadtecho -n ' cron';		cron
292df930be7Sderaadtecho '.'
293df930be7Sderaadt
294df930be7Sderaadtecho -n starting network daemons:
295df930be7Sderaadt
296edae963cSderaadt# $gated and $routed_flags are imported from /etc/rc.conf.
297df930be7Sderaadt# If $gated == YES, gated is used; otherwise routed.
298df930be7Sderaadt# If $routed_flags == NO, routed isn't run.
299df930be7Sderaadtif [ X${gated} = X"YES" -a -r /etc/gated.conf ]; then
300df930be7Sderaadt	echo -n ' gated';		gated $gated_flags
301df930be7Sderaadtelif [ "X${routed_flags}" != X"NO" ]; then
302df930be7Sderaadt	echo -n ' routed';		routed $routed_flags
303df930be7Sderaadtfi
304df930be7Sderaadt
305edae963cSderaadt# $mrouted_flags is imported from /etc/rc.conf;
30669b30726Sderaadt# If $mrouted_flags == NO, then mrouted isn't run.
30769b30726Sderaadtif [ "X${mrouted_flags}" != X"NO" ]; then
30869b30726Sderaadt	echo -n ' mrouted';		mrouted $mrouted_flags
30969b30726Sderaadtfi
31069b30726Sderaadt
311edae963cSderaadt# $rwhod is imported from /etc/rc.conf;
312df930be7Sderaadt# if $rwhod == YES, rwhod is run.
313df930be7Sderaadtif [ X${rwhod} = X"YES" ]; then
314df930be7Sderaadt	echo -n ' rwhod';		rwhod
315df930be7Sderaadtfi
316df930be7Sderaadt
317423a3640Sderaadt
318423a3640Sderaadtif [ X${lpd} = X"YES" ]; then
319df930be7Sderaadt	echo -n ' printer';		lpd
320423a3640Sderaadtfi
321df930be7Sderaadt
322edae963cSderaadt# $sendmail_flags is imported from /etc/rc.conf;
323df930be7Sderaadt# If $sendmail_flags == NO or /etc/sendmail.cf doesn't exist, then
3244844ae79Sderaadt# sendmail isn't run.  We call sendmail with a full path so that
3254844ae79Sderaadt# SIGHUP works.
326df930be7Sderaadtif [ "X${sendmail_flags}" != X"NO" -a -r /etc/sendmail.cf ]; then
3274844ae79Sderaadt	echo -n ' sendmail';		/usr/sbin/sendmail ${sendmail_flags}
328df930be7Sderaadtfi
329df930be7Sderaadt
330423a3640Sderaadtif [ X${inetd} = X"YES" ]; then
331df930be7Sderaadt	echo -n ' inetd';		inetd
332423a3640Sderaadtfi
333df930be7Sderaadt
334edae963cSderaadt# $rarpd_flags is imported from /etc/rc.conf;
335df930be7Sderaadt# If $rarpd_flags == NO or /etc/ethers doesn't exist, then
336df930be7Sderaadt# rarpd isn't run.
337df930be7Sderaadtif [ "X${rarpd_flags}" != X"NO" -a -r /etc/ethers ]; then
338df930be7Sderaadt	echo -n ' rarpd';		rarpd ${rarpd_flags}
339df930be7Sderaadtfi
340df930be7Sderaadt
341edae963cSderaadt# $bootparamd_flags is imported from /etc/rc.conf;
342df930be7Sderaadt# If $bootparamd_flags == NO or /etc/bootparams doesn't exist, then
343df930be7Sderaadt# bootparamd isn't run.
344df930be7Sderaadtif [ "X${bootparamd_flags}" != X"NO" -a -r /etc/bootparams ]; then
345df930be7Sderaadt	echo -n ' rpc.bootparamd';	rpc.bootparamd ${bootparamd_flags}
346df930be7Sderaadtfi
347df930be7Sderaadt
348edae963cSderaadt# $rbootd_flags is imported from /etc/rc.conf;
349df930be7Sderaadt# If $rbootd_flags == NO or /etc/rbootd.conf doesn't exist, then
350df930be7Sderaadt# rbootd isn't run.
351df930be7Sderaadtif [ "X${rbootd_flags}" != X"NO" -a -r /etc/rbootd.conf ]; then
352df930be7Sderaadt	echo -n ' rbootd';		rbootd ${rbootd_flags}
353df930be7Sderaadtfi
354df930be7Sderaadt
355eed9d356Sderaadtif [ -x /usr/sbin/screenblank ]; then
356eed9d356Sderaadt	echo -n ' screenblank';	/usr/sbin/screenblank
357eed9d356Sderaadtfi
358eed9d356Sderaadt
359df930be7Sderaadtecho '.'
360df930be7Sderaadt
361e1ebb78aSderaadtif [ -f /sbin/kbd -a -f /etc/kbdtype ]; then
362e1ebb78aSderaadt	kbd `cat /etc/kbdtype`
363e1ebb78aSderaadtfi
364e1ebb78aSderaadt
3658b7444a6Sderaadtif [ -f /sbin/ldconfig ]; then
3668b7444a6Sderaadt	echo 'creating runtime link editor directory cache.'
36706c3e72bSderaadt	_LIBS=
36806c3e72bSderaadt	if [ -d /usr/local/lib ]; then
36906c3e72bSderaadt		_LIBS="$_LIBS /usr/local/lib"
37006c3e72bSderaadt	fi
37106c3e72bSderaadt	if [ -d /usr/X11R6/lib ]; then
37206c3e72bSderaadt		_LIBS="$_LIBS /usr/X11R6/lib"
37306c3e72bSderaadt	fi
37406c3e72bSderaadt	ldconfig $_LIBS
3758b7444a6Sderaadtfi
3768b7444a6Sderaadt
3778b7444a6Sderaadt# Kerberos runs ONLY on the Kerberos server machine
3788b7444a6Sderaadtif [ X${kerberos_server} = X"YES" ]; then
379a5c30118Stholo	echo 'kerberos server'
380a5c30118Stholo	kerberos >> /var/log/kerberos.log &
381a5c30118Stholo	kadmind -n >> /var/log/kadmind.log &
3828b7444a6Sderaadtfi
3838b7444a6Sderaadt
3848b7444a6Sderaadt. /etc/rc.local
3858b7444a6Sderaadt
386df930be7Sderaadtdate
387df930be7Sderaadtexit 0
388