1 /* $OpenBSD: ripe.c,v 1.28 2021/01/19 10:09:59 claudio Exp $ */ 2 3 /* 4 * Copyright (c) 2006 Michele Marchetto <mydecay@openbeer.it> 5 * Copyright (c) 2005 Claudio Jeker <claudio@openbsd.org> 6 * Copyright (c) 2004 Esben Norby <norby@openbsd.org> 7 * Copyright (c) 2003, 2004 Henning Brauer <henning@openbsd.org> 8 * 9 * Permission to use, copy, modify, and distribute this software for any 10 * purpose with or without fee is hereby granted, provided that the above 11 * copyright notice and this permission notice appear in all copies. 12 * 13 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES 14 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF 15 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR 16 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES 17 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN 18 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF 19 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. 20 */ 21 22 #include <sys/types.h> 23 #include <sys/socket.h> 24 #include <sys/queue.h> 25 #include <netinet/in.h> 26 #include <arpa/inet.h> 27 #include <net/if_types.h> 28 #include <stdlib.h> 29 #include <signal.h> 30 #include <string.h> 31 #include <fcntl.h> 32 #include <pwd.h> 33 #include <unistd.h> 34 #include <event.h> 35 #include <err.h> 36 #include <errno.h> 37 #include <stdio.h> 38 39 #include "ripd.h" 40 #include "rip.h" 41 #include "ripe.h" 42 #include "log.h" 43 #include "control.h" 44 45 void ripe_sig_handler(int, short, void *); 46 __dead void ripe_shutdown(void); 47 48 struct ripd_conf *oeconf = NULL; 49 struct imsgev *iev_main; 50 struct imsgev *iev_rde; 51 52 /* ARGSUSED */ 53 void 54 ripe_sig_handler(int sig, short event, void *bula) 55 { 56 switch (sig) { 57 case SIGINT: 58 case SIGTERM: 59 ripe_shutdown(); 60 /* NOTREACHED */ 61 default: 62 fatalx("unexpected signal"); 63 } 64 } 65 66 /* rip engine */ 67 pid_t 68 ripe(struct ripd_conf *xconf, int pipe_parent2ripe[2], int pipe_ripe2rde[2], 69 int pipe_parent2rde[2]) 70 { 71 struct event ev_sigint, ev_sigterm; 72 struct sockaddr_in addr; 73 struct iface *iface = NULL; 74 struct passwd *pw; 75 struct redistribute *r; 76 pid_t pid; 77 78 switch (pid = fork()) { 79 case -1: 80 fatal("cannot fork"); 81 case 0: 82 break; 83 default: 84 return (pid); 85 } 86 87 /* create ripd control socket outside chroot */ 88 if (control_init(xconf->csock) == -1) 89 fatalx("control socket setup failed"); 90 91 addr.sin_family = AF_INET; 92 addr.sin_port = htons(RIP_PORT); 93 addr.sin_addr.s_addr = INADDR_ANY; 94 95 if ((xconf->rip_socket = socket(AF_INET, 96 SOCK_DGRAM | SOCK_CLOEXEC | SOCK_NONBLOCK, 97 IPPROTO_UDP)) == -1) 98 fatalx("error creating socket"); 99 100 if (bind(xconf->rip_socket, (struct sockaddr *)&addr, 101 sizeof(addr)) == -1) 102 fatal("error binding socket"); 103 104 /* set some defaults */ 105 if (if_set_opt(xconf->rip_socket) == -1) 106 fatal("if_set_opt"); 107 108 if (if_set_mcast_ttl(xconf->rip_socket, IP_DEFAULT_MULTICAST_TTL) == -1) 109 fatal("if_set_mcast_ttl"); 110 111 if (if_set_mcast_loop(xconf->rip_socket) == -1) 112 fatal("if_set_mcast_loop"); 113 114 if (if_set_tos(xconf->rip_socket, IPTOS_PREC_INTERNETCONTROL) == -1) 115 fatal("if_set_tos"); 116 117 if_set_recvbuf(xconf->rip_socket); 118 119 oeconf = xconf; 120 121 if ((pw = getpwnam(RIPD_USER)) == NULL) 122 fatal("getpwnam"); 123 124 if (chroot(pw->pw_dir) == -1) 125 fatal("chroot"); 126 if (chdir("/") == -1) 127 fatal("chdir(\"/\")"); 128 129 setproctitle("rip engine"); 130 ripd_process = PROC_RIP_ENGINE; 131 log_procname = log_procnames[ripd_process]; 132 133 if (setgroups(1, &pw->pw_gid) || 134 setresgid(pw->pw_gid, pw->pw_gid, pw->pw_gid) || 135 setresuid(pw->pw_uid, pw->pw_uid, pw->pw_uid)) 136 fatal("can't drop privileges"); 137 138 event_init(); 139 nbr_init(NBR_HASHSIZE); 140 141 /* setup signal handler */ 142 signal_set(&ev_sigint, SIGINT, ripe_sig_handler, NULL); 143 signal_set(&ev_sigterm, SIGTERM, ripe_sig_handler, NULL); 144 signal_add(&ev_sigint, NULL); 145 signal_add(&ev_sigterm, NULL); 146 signal(SIGPIPE, SIG_IGN); 147 signal(SIGHUP, SIG_IGN); 148 149 /* setup pipes */ 150 close(pipe_parent2ripe[0]); 151 close(pipe_ripe2rde[1]); 152 close(pipe_parent2rde[0]); 153 close(pipe_parent2rde[1]); 154 155 if ((iev_rde = malloc(sizeof(struct imsgev))) == NULL || 156 (iev_main = malloc(sizeof(struct imsgev))) == NULL) 157 fatal(NULL); 158 imsg_init(&iev_rde->ibuf, pipe_ripe2rde[0]); 159 iev_rde->handler = ripe_dispatch_rde; 160 imsg_init(&iev_main->ibuf, pipe_parent2ripe[1]); 161 iev_main->handler = ripe_dispatch_main; 162 163 /* setup event handler */ 164 iev_rde->events = EV_READ; 165 event_set(&iev_rde->ev, iev_rde->ibuf.fd, iev_rde->events, 166 iev_rde->handler, iev_rde); 167 event_add(&iev_rde->ev, NULL); 168 169 iev_main->events = EV_READ; 170 event_set(&iev_main->ev, iev_main->ibuf.fd, iev_main->events, 171 iev_main->handler, iev_main); 172 event_add(&iev_main->ev, NULL); 173 174 event_set(&oeconf->ev, oeconf->rip_socket, EV_READ|EV_PERSIST, 175 recv_packet, oeconf); 176 event_add(&oeconf->ev, NULL); 177 178 /* remove unneeded config stuff */ 179 while ((r = SIMPLEQ_FIRST(&oeconf->redist_list)) != NULL) { 180 SIMPLEQ_REMOVE_HEAD(&oeconf->redist_list, entry); 181 free(r); 182 } 183 184 /* listen on ripd control socket */ 185 control_listen(); 186 187 /* start interfaces */ 188 LIST_FOREACH(iface, &xconf->iface_list, entry) { 189 if_init(xconf, iface); 190 if (if_fsm(iface, IF_EVT_UP)) 191 log_debug("ripe: error starting interface: %s", 192 iface->name); 193 } 194 195 if (pledge("stdio inet mcast", NULL) == -1) 196 fatal("pledge"); 197 198 evtimer_set(&oeconf->report_timer, report_timer, oeconf); 199 start_report_timer(); 200 201 ripe_imsg_compose_rde(IMSG_FULL_REQUEST, 0, 0, NULL, 0); 202 203 event_dispatch(); 204 205 ripe_shutdown(); 206 /* NOTREACHED */ 207 return (0); 208 } 209 210 int 211 ripe_imsg_compose_parent(int type, pid_t pid, void *data, u_int16_t datalen) 212 { 213 return (imsg_compose_event(iev_main, type, 0, pid, -1, data, datalen)); 214 } 215 216 int 217 ripe_imsg_compose_rde(int type, u_int32_t peerid, pid_t pid, 218 void *data, u_int16_t datalen) 219 { 220 return (imsg_compose_event(iev_rde, type, peerid, pid, -1, 221 data, datalen)); 222 } 223 224 /* ARGSUSED */ 225 void 226 ripe_dispatch_main(int fd, short event, void *bula) 227 { 228 struct imsg imsg; 229 struct imsgev *iev = bula; 230 struct imsgbuf *ibuf = &iev->ibuf; 231 struct kif *kif; 232 struct iface *iface; 233 ssize_t n; 234 int link_ok, shut = 0; 235 236 if (event & EV_READ) { 237 if ((n = imsg_read(ibuf)) == -1 && errno != EAGAIN) 238 fatal("imsg_read error"); 239 if (n == 0) /* connection closed */ 240 shut = 1; 241 } 242 if (event & EV_WRITE) { 243 if ((n = msgbuf_write(&ibuf->w)) == -1 && errno != EAGAIN) 244 fatal("msgbuf_write"); 245 if (n == 0) /* connection closed */ 246 shut = 1; 247 } 248 249 for (;;) { 250 if ((n = imsg_get(ibuf, &imsg)) == -1) 251 fatal("ripe_dispatch_main: imsg_get error"); 252 if (n == 0) 253 break; 254 255 switch (imsg.hdr.type) { 256 case IMSG_IFINFO: 257 if (imsg.hdr.len - IMSG_HEADER_SIZE != 258 sizeof(struct kif)) 259 fatalx("IFINFO imsg with wrong len"); 260 kif = imsg.data; 261 link_ok = (kif->flags & IFF_UP) && 262 LINK_STATE_IS_UP(kif->link_state); 263 264 LIST_FOREACH(iface, &oeconf->iface_list, entry) { 265 if (kif->ifindex == iface->ifindex) { 266 iface->flags = kif->flags; 267 iface->linkstate = kif->link_state; 268 269 if (link_ok) { 270 if_fsm(iface, IF_EVT_UP); 271 log_warnx("interface %s up", 272 iface->name); 273 } else { 274 if_fsm(iface, IF_EVT_DOWN); 275 log_warnx("interface %s down", 276 iface->name); 277 } 278 } 279 } 280 break; 281 case IMSG_CTL_IFINFO: 282 case IMSG_CTL_KROUTE: 283 case IMSG_CTL_KROUTE_ADDR: 284 case IMSG_CTL_END: 285 control_imsg_relay(&imsg); 286 break; 287 default: 288 log_debug("ripe_dispatch_main: error handling imsg %d", 289 imsg.hdr.type); 290 break; 291 } 292 imsg_free(&imsg); 293 } 294 if (!shut) 295 imsg_event_add(iev); 296 else { 297 /* this pipe is dead, so remove the event handler */ 298 event_del(&iev->ev); 299 event_loopexit(NULL); 300 } 301 } 302 303 /* ARGSUSED */ 304 void 305 ripe_dispatch_rde(int fd, short event, void *bula) 306 { 307 struct rip_route *rr; 308 struct imsg imsg; 309 struct imsgev *iev = bula; 310 struct imsgbuf *ibuf = &iev->ibuf; 311 struct iface *iface; 312 struct nbr *nbr; 313 ssize_t n; 314 int shut = 0; 315 316 if (event & EV_READ) { 317 if ((n = imsg_read(ibuf)) == -1 && errno != EAGAIN) 318 fatal("imsg_read error"); 319 if (n == 0) /* connection closed */ 320 shut = 1; 321 } 322 if (event & EV_WRITE) { 323 if ((n = msgbuf_write(&ibuf->w)) == -1 && errno != EAGAIN) 324 fatal("msgbuf_write"); 325 if (n == 0) /* connection closed */ 326 shut = 1; 327 } 328 329 for (;;) { 330 if ((n = imsg_get(ibuf, &imsg)) == -1) 331 fatal("ripe_dispatch_rde: imsg_get error"); 332 if (n == 0) 333 break; 334 335 switch (imsg.hdr.type) { 336 case IMSG_REQUEST_ADD: 337 if (imsg.hdr.len - IMSG_HEADER_SIZE != sizeof(*rr)) 338 fatalx("invalid size of RDE request"); 339 340 if ((rr = malloc(sizeof(*rr))) == NULL) 341 fatal("ripe_dispatch_rde"); 342 343 memcpy(rr, imsg.data, sizeof(*rr)); 344 345 if (imsg.hdr.peerid != 0) { 346 if ((nbr = nbr_find_peerid(imsg.hdr.peerid)) == 347 NULL) { 348 log_debug("unknown neighbor id %u", 349 imsg.hdr.peerid); 350 free(rr); 351 break; 352 } 353 add_entry(&nbr->rq_list, rr); 354 break; 355 } 356 357 LIST_FOREACH(iface, &oeconf->iface_list, entry) { 358 add_entry(&iface->rq_list, rr); 359 } 360 break; 361 case IMSG_SEND_REQUEST: 362 if (imsg.hdr.peerid != 0) { 363 if ((nbr = nbr_find_peerid(imsg.hdr.peerid)) == 364 NULL) { 365 log_debug("unknown neighbor id %u", 366 imsg.hdr.peerid); 367 break; 368 } 369 send_request(&nbr->rq_list, NULL, nbr); 370 break; 371 } 372 373 LIST_FOREACH(iface, &oeconf->iface_list, entry) { 374 send_request(&iface->rq_list, iface, NULL); 375 } 376 break; 377 case IMSG_RESPONSE_ADD: 378 if (imsg.hdr.len - IMSG_HEADER_SIZE != sizeof(*rr)) 379 fatalx("invalid size of RDE request"); 380 381 if ((rr = malloc(sizeof(*rr))) == NULL) 382 fatal("ripe_dispatch_rde"); 383 384 memcpy(rr, imsg.data, sizeof(*rr)); 385 386 if (imsg.hdr.peerid == 0) { 387 LIST_FOREACH(iface, &oeconf->iface_list, entry) 388 add_entry(&iface->rp_list, rr); 389 390 break; 391 } 392 393 if ((nbr = nbr_find_peerid(imsg.hdr.peerid)) == NULL) { 394 log_debug("unknown neighbor id %u", 395 imsg.hdr.peerid); 396 free(rr); 397 break; 398 } 399 add_entry(&nbr->rp_list, rr); 400 401 break; 402 case IMSG_SEND_RESPONSE: 403 if (imsg.hdr.peerid == 0) { 404 LIST_FOREACH(iface, &oeconf->iface_list, 405 entry) { 406 send_response(&iface->rp_list, 407 iface, NULL); 408 } 409 break; 410 } 411 412 if ((nbr = nbr_find_peerid(imsg.hdr.peerid)) == NULL) { 413 log_debug("unknown neighbor id %u", 414 imsg.hdr.peerid); 415 break; 416 } 417 send_response(&nbr->rp_list, NULL, nbr); 418 nbr_fsm(nbr, NBR_EVT_RESPONSE_SENT); 419 break; 420 case IMSG_SEND_TRIGGERED_UPDATE: 421 if (imsg.hdr.len - IMSG_HEADER_SIZE != sizeof(struct 422 rip_route)) 423 fatalx("invalid size of RDE request"); 424 425 rr = imsg.data; 426 427 LIST_FOREACH(iface, &oeconf->iface_list, 428 entry) { 429 if (rr->ifindex != iface->ifindex) 430 send_triggered_update(iface, rr); 431 } 432 break; 433 case IMSG_CTL_END: 434 case IMSG_CTL_SHOW_RIB: 435 control_imsg_relay(&imsg); 436 break; 437 default: 438 log_debug("ripe_dispatch_rde: error handling imsg %d", 439 imsg.hdr.type); 440 break; 441 } 442 imsg_free(&imsg); 443 } 444 if (!shut) 445 imsg_event_add(iev); 446 else { 447 /* this pipe is dead, so remove the event handler */ 448 event_del(&iev->ev); 449 event_loopexit(NULL); 450 } 451 } 452 453 __dead void 454 ripe_shutdown(void) 455 { 456 struct iface *iface; 457 458 /* close pipes */ 459 msgbuf_write(&iev_rde->ibuf.w); 460 msgbuf_clear(&iev_rde->ibuf.w); 461 close(iev_rde->ibuf.fd); 462 msgbuf_write(&iev_main->ibuf.w); 463 msgbuf_clear(&iev_main->ibuf.w); 464 close(iev_main->ibuf.fd); 465 466 LIST_FOREACH(iface, &oeconf->iface_list, entry) { 467 if (if_fsm(iface, IF_EVT_DOWN)) { 468 log_debug("error stopping interface %s", 469 iface->name); 470 } 471 } 472 while ((iface = LIST_FIRST(&oeconf->iface_list)) != NULL) { 473 LIST_REMOVE(iface, entry); 474 475 /* revert the demotion when the interface is deleted */ 476 if (iface->state == IF_STA_DOWN) 477 ripe_demote_iface(iface, 1); 478 479 if_del(iface); 480 } 481 482 close(oeconf->rip_socket); 483 484 /* clean up */ 485 free(iev_rde); 486 free(iev_main); 487 free(oeconf); 488 489 log_info("rip engine exiting"); 490 _exit(0); 491 } 492 493 void 494 ripe_iface_ctl(struct ctl_conn *c, unsigned int idx) 495 { 496 struct iface *iface; 497 struct ctl_iface *ictl; 498 499 LIST_FOREACH(iface, &oeconf->iface_list, entry) { 500 if (idx == 0 || idx == iface->ifindex) { 501 ictl = if_to_ctl(iface); 502 imsg_compose_event(&c->iev, IMSG_CTL_SHOW_IFACE, 503 0, 0, -1, ictl, sizeof(struct ctl_iface)); 504 } 505 } 506 } 507 508 void 509 ripe_nbr_ctl(struct ctl_conn *c) 510 { 511 struct iface *iface; 512 struct nbr *nbr; 513 struct ctl_nbr *nctl; 514 515 LIST_FOREACH(iface, &oeconf->iface_list, entry) 516 LIST_FOREACH(nbr, &iface->nbr_list, entry) { 517 nctl = nbr_to_ctl(nbr); 518 imsg_compose_event(&c->iev, 519 IMSG_CTL_SHOW_NBR, 0, 0, -1, nctl, 520 sizeof(struct ctl_nbr)); 521 } 522 523 imsg_compose_event(&c->iev, IMSG_CTL_END, 0, 0, -1, NULL, 0); 524 } 525 526 void 527 ripe_demote_iface(struct iface *iface, int active) 528 { 529 struct demote_msg dmsg; 530 531 if (iface->demote_group[0] == '\0') 532 return; 533 534 bzero(&dmsg, sizeof(dmsg)); 535 strlcpy(dmsg.demote_group, iface->demote_group, 536 sizeof(dmsg.demote_group)); 537 if (active) 538 dmsg.level = -1; 539 else 540 dmsg.level = 1; 541 542 ripe_imsg_compose_parent(IMSG_DEMOTE, 0, &dmsg, sizeof(dmsg)); 543 } 544