xref: /openbsd/usr.sbin/ripd/ripe.c (revision 8654e9c5)
1 /*	$OpenBSD: ripe.c,v 1.28 2021/01/19 10:09:59 claudio Exp $ */
2 
3 /*
4  * Copyright (c) 2006 Michele Marchetto <mydecay@openbeer.it>
5  * Copyright (c) 2005 Claudio Jeker <claudio@openbsd.org>
6  * Copyright (c) 2004 Esben Norby <norby@openbsd.org>
7  * Copyright (c) 2003, 2004 Henning Brauer <henning@openbsd.org>
8  *
9  * Permission to use, copy, modify, and distribute this software for any
10  * purpose with or without fee is hereby granted, provided that the above
11  * copyright notice and this permission notice appear in all copies.
12  *
13  * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
14  * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
15  * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
16  * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
17  * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
18  * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
19  * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
20  */
21 
22 #include <sys/types.h>
23 #include <sys/socket.h>
24 #include <sys/queue.h>
25 #include <netinet/in.h>
26 #include <arpa/inet.h>
27 #include <net/if_types.h>
28 #include <stdlib.h>
29 #include <signal.h>
30 #include <string.h>
31 #include <fcntl.h>
32 #include <pwd.h>
33 #include <unistd.h>
34 #include <event.h>
35 #include <err.h>
36 #include <errno.h>
37 #include <stdio.h>
38 
39 #include "ripd.h"
40 #include "rip.h"
41 #include "ripe.h"
42 #include "log.h"
43 #include "control.h"
44 
45 void		 ripe_sig_handler(int, short, void *);
46 __dead void	 ripe_shutdown(void);
47 
48 struct ripd_conf	*oeconf = NULL;
49 struct imsgev		*iev_main;
50 struct imsgev		*iev_rde;
51 
52 /* ARGSUSED */
53 void
54 ripe_sig_handler(int sig, short event, void *bula)
55 {
56 	switch (sig) {
57 	case SIGINT:
58 	case SIGTERM:
59 		ripe_shutdown();
60 		/* NOTREACHED */
61 	default:
62 		fatalx("unexpected signal");
63 	}
64 }
65 
66 /* rip engine */
67 pid_t
68 ripe(struct ripd_conf *xconf, int pipe_parent2ripe[2], int pipe_ripe2rde[2],
69     int pipe_parent2rde[2])
70 {
71 	struct event		 ev_sigint, ev_sigterm;
72 	struct sockaddr_in	 addr;
73 	struct iface		*iface = NULL;
74 	struct passwd		*pw;
75 	struct redistribute	*r;
76 	pid_t			 pid;
77 
78 	switch (pid = fork()) {
79 	case -1:
80 		fatal("cannot fork");
81 	case 0:
82 		break;
83 	default:
84 		return (pid);
85 	}
86 
87 	/* create ripd control socket outside chroot */
88 	if (control_init(xconf->csock) == -1)
89 		fatalx("control socket setup failed");
90 
91 	addr.sin_family = AF_INET;
92 	addr.sin_port = htons(RIP_PORT);
93 	addr.sin_addr.s_addr = INADDR_ANY;
94 
95 	if ((xconf->rip_socket = socket(AF_INET,
96 	    SOCK_DGRAM | SOCK_CLOEXEC | SOCK_NONBLOCK,
97 	    IPPROTO_UDP)) == -1)
98 		fatalx("error creating socket");
99 
100 	if (bind(xconf->rip_socket, (struct sockaddr *)&addr,
101 	    sizeof(addr)) == -1)
102 		fatal("error binding socket");
103 
104 	/* set some defaults */
105 	if (if_set_opt(xconf->rip_socket) == -1)
106 		fatal("if_set_opt");
107 
108 	if (if_set_mcast_ttl(xconf->rip_socket, IP_DEFAULT_MULTICAST_TTL) == -1)
109 		fatal("if_set_mcast_ttl");
110 
111 	if (if_set_mcast_loop(xconf->rip_socket) == -1)
112 		fatal("if_set_mcast_loop");
113 
114 	if (if_set_tos(xconf->rip_socket, IPTOS_PREC_INTERNETCONTROL) == -1)
115 		fatal("if_set_tos");
116 
117 	if_set_recvbuf(xconf->rip_socket);
118 
119 	oeconf = xconf;
120 
121 	if ((pw = getpwnam(RIPD_USER)) == NULL)
122 		fatal("getpwnam");
123 
124 	if (chroot(pw->pw_dir) == -1)
125 		fatal("chroot");
126 	if (chdir("/") == -1)
127 		fatal("chdir(\"/\")");
128 
129 	setproctitle("rip engine");
130 	ripd_process = PROC_RIP_ENGINE;
131 	log_procname = log_procnames[ripd_process];
132 
133 	if (setgroups(1, &pw->pw_gid) ||
134 	    setresgid(pw->pw_gid, pw->pw_gid, pw->pw_gid) ||
135 	    setresuid(pw->pw_uid, pw->pw_uid, pw->pw_uid))
136 		fatal("can't drop privileges");
137 
138 	event_init();
139 	nbr_init(NBR_HASHSIZE);
140 
141 	/* setup signal handler */
142 	signal_set(&ev_sigint, SIGINT, ripe_sig_handler, NULL);
143 	signal_set(&ev_sigterm, SIGTERM, ripe_sig_handler, NULL);
144 	signal_add(&ev_sigint, NULL);
145 	signal_add(&ev_sigterm, NULL);
146 	signal(SIGPIPE, SIG_IGN);
147 	signal(SIGHUP, SIG_IGN);
148 
149 	/* setup pipes */
150 	close(pipe_parent2ripe[0]);
151 	close(pipe_ripe2rde[1]);
152 	close(pipe_parent2rde[0]);
153 	close(pipe_parent2rde[1]);
154 
155 	if ((iev_rde = malloc(sizeof(struct imsgev))) == NULL ||
156 	    (iev_main = malloc(sizeof(struct imsgev))) == NULL)
157 		fatal(NULL);
158 	imsg_init(&iev_rde->ibuf, pipe_ripe2rde[0]);
159 	iev_rde->handler = ripe_dispatch_rde;
160 	imsg_init(&iev_main->ibuf, pipe_parent2ripe[1]);
161 	iev_main->handler = ripe_dispatch_main;
162 
163 	/* setup event handler */
164 	iev_rde->events = EV_READ;
165 	event_set(&iev_rde->ev, iev_rde->ibuf.fd, iev_rde->events,
166 	    iev_rde->handler, iev_rde);
167 	event_add(&iev_rde->ev, NULL);
168 
169 	iev_main->events = EV_READ;
170 	event_set(&iev_main->ev, iev_main->ibuf.fd, iev_main->events,
171 	    iev_main->handler, iev_main);
172 	event_add(&iev_main->ev, NULL);
173 
174 	event_set(&oeconf->ev, oeconf->rip_socket, EV_READ|EV_PERSIST,
175 	    recv_packet, oeconf);
176 	event_add(&oeconf->ev, NULL);
177 
178 	/* remove unneeded config stuff */
179 	while ((r = SIMPLEQ_FIRST(&oeconf->redist_list)) != NULL) {
180 		SIMPLEQ_REMOVE_HEAD(&oeconf->redist_list, entry);
181 		free(r);
182 	}
183 
184 	/* listen on ripd control socket */
185 	control_listen();
186 
187 	/* start interfaces */
188 	LIST_FOREACH(iface, &xconf->iface_list, entry) {
189 		if_init(xconf, iface);
190 		if (if_fsm(iface, IF_EVT_UP))
191 			log_debug("ripe: error starting interface: %s",
192 			    iface->name);
193 	}
194 
195 	if (pledge("stdio inet mcast", NULL) == -1)
196 		fatal("pledge");
197 
198 	evtimer_set(&oeconf->report_timer, report_timer, oeconf);
199 	start_report_timer();
200 
201 	ripe_imsg_compose_rde(IMSG_FULL_REQUEST, 0, 0, NULL, 0);
202 
203 	event_dispatch();
204 
205 	ripe_shutdown();
206 	/* NOTREACHED */
207 	return (0);
208 }
209 
210 int
211 ripe_imsg_compose_parent(int type, pid_t pid, void *data, u_int16_t datalen)
212 {
213 	return (imsg_compose_event(iev_main, type, 0, pid, -1, data, datalen));
214 }
215 
216 int
217 ripe_imsg_compose_rde(int type, u_int32_t peerid, pid_t pid,
218     void *data, u_int16_t datalen)
219 {
220 	return (imsg_compose_event(iev_rde, type, peerid, pid, -1,
221 	    data, datalen));
222 }
223 
224 /* ARGSUSED */
225 void
226 ripe_dispatch_main(int fd, short event, void *bula)
227 {
228 	struct imsg	 imsg;
229 	struct imsgev	*iev = bula;
230 	struct imsgbuf	*ibuf = &iev->ibuf;
231 	struct kif	*kif;
232 	struct iface	*iface;
233 	ssize_t		 n;
234 	int		 link_ok, shut = 0;
235 
236 	if (event & EV_READ) {
237 		if ((n = imsg_read(ibuf)) == -1 && errno != EAGAIN)
238 			fatal("imsg_read error");
239 		if (n == 0)	/* connection closed */
240 			shut = 1;
241 	}
242 	if (event & EV_WRITE) {
243 		if ((n = msgbuf_write(&ibuf->w)) == -1 && errno != EAGAIN)
244 			fatal("msgbuf_write");
245 		if (n == 0)	/* connection closed */
246 			shut = 1;
247 	}
248 
249 	for (;;) {
250 		if ((n = imsg_get(ibuf, &imsg)) == -1)
251 			fatal("ripe_dispatch_main: imsg_get error");
252 		if (n == 0)
253 			break;
254 
255 		switch (imsg.hdr.type) {
256 		case IMSG_IFINFO:
257 			if (imsg.hdr.len - IMSG_HEADER_SIZE !=
258 			    sizeof(struct kif))
259 				fatalx("IFINFO imsg with wrong len");
260 			kif = imsg.data;
261 			link_ok = (kif->flags & IFF_UP) &&
262 			    LINK_STATE_IS_UP(kif->link_state);
263 
264 			LIST_FOREACH(iface, &oeconf->iface_list, entry) {
265 				if (kif->ifindex == iface->ifindex) {
266 					iface->flags = kif->flags;
267 					iface->linkstate = kif->link_state;
268 
269 					if (link_ok) {
270 						if_fsm(iface, IF_EVT_UP);
271 						log_warnx("interface %s up",
272 						    iface->name);
273 					} else {
274 						if_fsm(iface, IF_EVT_DOWN);
275 						log_warnx("interface %s down",
276 						    iface->name);
277 					}
278 				}
279 			}
280 			break;
281 		case IMSG_CTL_IFINFO:
282 		case IMSG_CTL_KROUTE:
283 		case IMSG_CTL_KROUTE_ADDR:
284 		case IMSG_CTL_END:
285 			control_imsg_relay(&imsg);
286 			break;
287 		default:
288 			log_debug("ripe_dispatch_main: error handling imsg %d",
289 			    imsg.hdr.type);
290 			break;
291 		}
292 		imsg_free(&imsg);
293 	}
294 	if (!shut)
295 		imsg_event_add(iev);
296 	else {
297 		/* this pipe is dead, so remove the event handler */
298 		event_del(&iev->ev);
299 		event_loopexit(NULL);
300 	}
301 }
302 
303 /* ARGSUSED */
304 void
305 ripe_dispatch_rde(int fd, short event, void *bula)
306 {
307 	struct rip_route	*rr;
308 	struct imsg		 imsg;
309 	struct imsgev		*iev = bula;
310 	struct imsgbuf		*ibuf = &iev->ibuf;
311 	struct iface		*iface;
312 	struct nbr		*nbr;
313 	ssize_t			 n;
314 	int			 shut = 0;
315 
316 	if (event & EV_READ) {
317 		if ((n = imsg_read(ibuf)) == -1 && errno != EAGAIN)
318 			fatal("imsg_read error");
319 		if (n == 0)	/* connection closed */
320 			shut = 1;
321 	}
322 	if (event & EV_WRITE) {
323 		if ((n = msgbuf_write(&ibuf->w)) == -1 && errno != EAGAIN)
324 			fatal("msgbuf_write");
325 		if (n == 0)	/* connection closed */
326 			shut = 1;
327 	}
328 
329 	for (;;) {
330 		if ((n = imsg_get(ibuf, &imsg)) == -1)
331 			fatal("ripe_dispatch_rde: imsg_get error");
332 		if (n == 0)
333 			break;
334 
335 		switch (imsg.hdr.type) {
336 		case IMSG_REQUEST_ADD:
337 			if (imsg.hdr.len - IMSG_HEADER_SIZE != sizeof(*rr))
338 				fatalx("invalid size of RDE request");
339 
340 			if ((rr = malloc(sizeof(*rr))) == NULL)
341 				fatal("ripe_dispatch_rde");
342 
343 			memcpy(rr, imsg.data, sizeof(*rr));
344 
345 			if (imsg.hdr.peerid != 0) {
346 				if ((nbr = nbr_find_peerid(imsg.hdr.peerid)) ==
347 				    NULL) {
348 					log_debug("unknown neighbor id %u",
349 					    imsg.hdr.peerid);
350 					free(rr);
351 					break;
352 				}
353 				add_entry(&nbr->rq_list, rr);
354 				break;
355 			}
356 
357 			LIST_FOREACH(iface, &oeconf->iface_list, entry) {
358 				add_entry(&iface->rq_list, rr);
359 			}
360 			break;
361 		case IMSG_SEND_REQUEST:
362 			if (imsg.hdr.peerid != 0) {
363 				if ((nbr = nbr_find_peerid(imsg.hdr.peerid)) ==
364 				    NULL) {
365 					log_debug("unknown neighbor id %u",
366 					    imsg.hdr.peerid);
367 					break;
368 				}
369 				send_request(&nbr->rq_list, NULL, nbr);
370 				break;
371 			}
372 
373 			LIST_FOREACH(iface, &oeconf->iface_list, entry) {
374 				send_request(&iface->rq_list, iface, NULL);
375 			}
376 			break;
377 		case IMSG_RESPONSE_ADD:
378 			if (imsg.hdr.len - IMSG_HEADER_SIZE != sizeof(*rr))
379 				fatalx("invalid size of RDE request");
380 
381 			if ((rr = malloc(sizeof(*rr))) == NULL)
382 				fatal("ripe_dispatch_rde");
383 
384 			memcpy(rr, imsg.data, sizeof(*rr));
385 
386 			if (imsg.hdr.peerid == 0) {
387 				LIST_FOREACH(iface, &oeconf->iface_list, entry)
388 					add_entry(&iface->rp_list, rr);
389 
390 				break;
391 			}
392 
393 			if ((nbr = nbr_find_peerid(imsg.hdr.peerid)) == NULL) {
394 				log_debug("unknown neighbor id %u",
395 				    imsg.hdr.peerid);
396 				free(rr);
397 				break;
398 			}
399 			add_entry(&nbr->rp_list, rr);
400 
401 			break;
402 		case IMSG_SEND_RESPONSE:
403 			if (imsg.hdr.peerid == 0) {
404 				LIST_FOREACH(iface, &oeconf->iface_list,
405 				    entry) {
406 					send_response(&iface->rp_list,
407 					    iface, NULL);
408 				}
409 				break;
410 			}
411 
412 			if ((nbr = nbr_find_peerid(imsg.hdr.peerid)) == NULL) {
413 				log_debug("unknown neighbor id %u",
414 				    imsg.hdr.peerid);
415 				break;
416 			}
417 			send_response(&nbr->rp_list, NULL, nbr);
418 			nbr_fsm(nbr, NBR_EVT_RESPONSE_SENT);
419 			break;
420 		case IMSG_SEND_TRIGGERED_UPDATE:
421 			if (imsg.hdr.len - IMSG_HEADER_SIZE != sizeof(struct
422 			    rip_route))
423 				fatalx("invalid size of RDE request");
424 
425 			rr = imsg.data;
426 
427 			LIST_FOREACH(iface, &oeconf->iface_list,
428 			    entry) {
429 				if (rr->ifindex != iface->ifindex)
430 					send_triggered_update(iface, rr);
431 			}
432 			break;
433 		case IMSG_CTL_END:
434 		case IMSG_CTL_SHOW_RIB:
435 			control_imsg_relay(&imsg);
436 			break;
437 		default:
438 			log_debug("ripe_dispatch_rde: error handling imsg %d",
439 			    imsg.hdr.type);
440 			break;
441 		}
442 		imsg_free(&imsg);
443 	}
444 	if (!shut)
445 		imsg_event_add(iev);
446 	else {
447 		/* this pipe is dead, so remove the event handler */
448 		event_del(&iev->ev);
449 		event_loopexit(NULL);
450 	}
451 }
452 
453 __dead void
454 ripe_shutdown(void)
455 {
456 	struct iface	*iface;
457 
458 	/* close pipes */
459 	msgbuf_write(&iev_rde->ibuf.w);
460 	msgbuf_clear(&iev_rde->ibuf.w);
461 	close(iev_rde->ibuf.fd);
462 	msgbuf_write(&iev_main->ibuf.w);
463 	msgbuf_clear(&iev_main->ibuf.w);
464 	close(iev_main->ibuf.fd);
465 
466 	LIST_FOREACH(iface, &oeconf->iface_list, entry) {
467 		if (if_fsm(iface, IF_EVT_DOWN)) {
468 			log_debug("error stopping interface %s",
469 			    iface->name);
470 		}
471 	}
472 	while ((iface = LIST_FIRST(&oeconf->iface_list)) != NULL) {
473 		LIST_REMOVE(iface, entry);
474 
475 		/* revert the demotion when the interface is deleted */
476 		if (iface->state == IF_STA_DOWN)
477 			ripe_demote_iface(iface, 1);
478 
479 		if_del(iface);
480 	}
481 
482 	close(oeconf->rip_socket);
483 
484 	/* clean up */
485 	free(iev_rde);
486 	free(iev_main);
487 	free(oeconf);
488 
489 	log_info("rip engine exiting");
490 	_exit(0);
491 }
492 
493 void
494 ripe_iface_ctl(struct ctl_conn *c, unsigned int idx)
495 {
496 	struct iface		*iface;
497 	struct ctl_iface	*ictl;
498 
499 	LIST_FOREACH(iface, &oeconf->iface_list, entry) {
500 		if (idx == 0 || idx == iface->ifindex) {
501 			ictl = if_to_ctl(iface);
502 			imsg_compose_event(&c->iev, IMSG_CTL_SHOW_IFACE,
503 			    0, 0, -1, ictl, sizeof(struct ctl_iface));
504 		}
505 	}
506 }
507 
508 void
509 ripe_nbr_ctl(struct ctl_conn *c)
510 {
511 	struct iface	*iface;
512 	struct nbr	*nbr;
513 	struct ctl_nbr	*nctl;
514 
515 	LIST_FOREACH(iface, &oeconf->iface_list, entry)
516 		LIST_FOREACH(nbr, &iface->nbr_list, entry) {
517 				nctl = nbr_to_ctl(nbr);
518 				imsg_compose_event(&c->iev,
519 				    IMSG_CTL_SHOW_NBR, 0, 0, -1, nctl,
520 				    sizeof(struct ctl_nbr));
521 		}
522 
523 	imsg_compose_event(&c->iev, IMSG_CTL_END, 0, 0, -1, NULL, 0);
524 }
525 
526 void
527 ripe_demote_iface(struct iface *iface, int active)
528 {
529 	struct demote_msg	dmsg;
530 
531 	if (iface->demote_group[0] == '\0')
532 		return;
533 
534 	bzero(&dmsg, sizeof(dmsg));
535 	strlcpy(dmsg.demote_group, iface->demote_group,
536 	    sizeof(dmsg.demote_group));
537 	if (active)
538 		dmsg.level = -1;
539 	else
540 		dmsg.level = 1;
541 
542 	ripe_imsg_compose_parent(IMSG_DEMOTE, 0, &dmsg, sizeof(dmsg));
543 }
544