X-Git-Url: https://arthur.barton.de/cgi-bin/gitweb.cgi?a=blobdiff_plain;ds=sidebyside;f=src%2Fngircd%2Fngircd.c;h=5fc88c9c8c601293d5936df608c796c5423836ae;hb=44acf41cc172e8131c3a987d430b9f948afd26ad;hp=33dfdbc55600465ab9a9314e506cc05cc8250c3f;hpb=45404a1644f510b5e5e9d67daa9faf8613653621;p=ngircd-alex.git diff --git a/src/ngircd/ngircd.c b/src/ngircd/ngircd.c index 33dfdbc5..5fc88c9c 100644 --- a/src/ngircd/ngircd.c +++ b/src/ngircd/ngircd.c @@ -1,6 +1,6 @@ /* * ngIRCd -- The Next Generation IRC Daemon - * Copyright (c)2001-2005 by Alexander Barton (alex@barton.de) + * Copyright (c)2001-2009 Alexander Barton (alex@barton.de). * * This program is free software; you can redistribute it and/or modify * it under the terms of the GNU General Public License as published by @@ -12,8 +12,6 @@ #include "portab.h" -static char UNUSED id[] = "$Id: ngircd.c,v 1.96 2005/06/01 21:52:18 alex Exp $"; - /** * @file * The main program, including the C function main() which is called @@ -36,19 +34,23 @@ static char UNUSED id[] = "$Id: ngircd.c,v 1.96 2005/06/01 21:52:18 alex Exp $"; #include #include +#if defined(DEBUG) && defined(HAVE_MTRACE) +#include +#endif + #include "defines.h" #include "resolve.h" #include "conn.h" +#include "conf-ssl.h" #include "client.h" #include "channel.h" #include "conf.h" -#include "cvs-version.h" #include "lists.h" #include "log.h" #include "parse.h" #include "irc.h" -#ifdef RENDEZVOUS +#ifdef ZEROCONF #include "rendezvous.h" #endif @@ -56,19 +58,20 @@ static char UNUSED id[] = "$Id: ngircd.c,v 1.96 2005/06/01 21:52:18 alex Exp $"; #include "ngircd.h" -LOCAL void Initialize_Signal_Handler PARAMS(( void )); -LOCAL void Signal_Handler PARAMS(( int Signal )); +static void Initialize_Signal_Handler PARAMS(( void )); +static void Signal_Handler PARAMS(( int Signal )); -LOCAL void Show_Version PARAMS(( void )); -LOCAL void Show_Help PARAMS(( void )); +static void Show_Version PARAMS(( void )); +static void Show_Help PARAMS(( void )); -LOCAL void Pidfile_Create PARAMS(( long )); -LOCAL void Pidfile_Delete PARAMS(( void )); +static void Pidfile_Create PARAMS(( pid_t pid )); +static void Pidfile_Delete PARAMS(( void )); -LOCAL void Fill_Version PARAMS(( void )); +static void Fill_Version PARAMS(( void )); -LOCAL void Setup_FDStreams PARAMS(( void )); +static void Setup_FDStreams PARAMS(( void )); +static bool NGIRCd_Init PARAMS(( bool )); /** * The main() function of ngIRCd. @@ -81,17 +84,21 @@ LOCAL void Setup_FDStreams PARAMS(( void )); GLOBAL int main( int argc, const char *argv[] ) { - struct passwd *pwd; - struct group *grp; bool ok, configtest = false; - long pid; + bool NGIRCd_NoDaemon = false; int i; size_t n; +#if defined(DEBUG) && defined(HAVE_MTRACE) + /* enable GNU libc memory tracing when running in debug mode + * and functionality available */ + mtrace(); +#endif + umask( 0077 ); NGIRCd_SignalQuit = NGIRCd_SignalRestart = NGIRCd_SignalRehash = false; - NGIRCd_NoDaemon = NGIRCd_Passive = false; + NGIRCd_Passive = false; #ifdef DEBUG NGIRCd_Debug = false; #endif @@ -103,14 +110,13 @@ main( int argc, const char *argv[] ) Fill_Version( ); - /* Kommandozeile parsen */ + /* parse conmmand line */ for( i = 1; i < argc; i++ ) { ok = false; if(( argv[i][0] == '-' ) && ( argv[i][1] == '-' )) { - /* Lange Option */ - + /* long option */ if( strcmp( argv[i], "--config" ) == 0 ) { if( i + 1 < argc ) @@ -165,19 +171,17 @@ main( int argc, const char *argv[] ) } else if(( argv[i][0] == '-' ) && ( argv[i][1] != '-' )) { - /* Kurze Option */ + /* short option */ for( n = 1; n < strlen( argv[i] ); n++ ) { ok = false; #ifdef DEBUG - if( argv[i][n] == 'd' ) - { + if (argv[i][n] == 'd') { NGIRCd_Debug = true; ok = true; } #endif - if( argv[i][n] == 'f' ) - { + if (argv[i][n] == 'f') { if(( ! argv[i][n + 1] ) && ( i + 1 < argc )) { /* Ok, next character is a blank */ @@ -189,31 +193,38 @@ main( int argc, const char *argv[] ) ok = true; } } - if( argv[i][n] == 'n' ) - { + + if (argv[i][n] == 'h') { + Show_Version(); + puts(""); Show_Help(); puts(""); + exit(1); + } + + if (argv[i][n] == 'n') { NGIRCd_NoDaemon = true; ok = true; } - if( argv[i][n] == 'p' ) - { + if (argv[i][n] == 'p') { NGIRCd_Passive = true; ok = true; } #ifdef SNIFFER - if( argv[i][n] == 's' ) - { + if (argv[i][n] == 's') { NGIRCd_Sniffer = true; ok = true; } #endif - if( argv[i][n] == 't' ) - { + if (argv[i][n] == 't') { configtest = true; ok = true; } - if( ! ok ) - { + if (argv[i][n] == 'V') { + Show_Version(); + exit(1); + } + + if (! ok) { printf( "%s: invalid option \"-%c\"!\n", PACKAGE_NAME, argv[i][n] ); printf( "Try \"%s --help\" for more information.\n", PACKAGE_NAME ); exit( 1 ); @@ -229,7 +240,7 @@ main( int argc, const char *argv[] ) } } - /* Debug-Level (fuer IRC-Befehl "VERSION") ermitteln */ + /* Debug-Level (for IRCs "VERSION" command) */ NGIRCd_DebugLevel[0] = '\0'; #ifdef DEBUG if( NGIRCd_Debug ) strcpy( NGIRCd_DebugLevel, "1" ); @@ -242,7 +253,6 @@ main( int argc, const char *argv[] ) } #endif - /* Soll nur die Konfigurations ueberprueft und ausgegeben werden? */ if( configtest ) { Show_Version( ); puts( "" ); @@ -260,86 +270,21 @@ main( int argc, const char *argv[] ) NGIRCd_SignalQuit = false; /* Initialize modules, part I */ - Log_Init( ); + Log_Init( ! NGIRCd_NoDaemon ); Conf_Init( ); - if( Conf_Chroot[0] ) - { - /* Chroot */ - if( chdir( Conf_Chroot ) != 0 ) Log( LOG_ERR, "Can't chdir() in ChrootDir (%s): %s", Conf_Chroot, strerror( errno )); - - if( chroot( Conf_Chroot ) != 0 ) Log( LOG_ERR, "Can't change root directory to \"%s\": %s", Conf_Chroot, strerror( errno )); - else Log( LOG_INFO, "Changed root and working directory to \"%s\".", Conf_Chroot ); - } - - if( Conf_GID != 0 ) - { - /* Set new group ID */ - if( setgid( Conf_GID ) != 0 ) Log( LOG_ERR, "Can't change group ID to %u: %s", Conf_GID, strerror( errno )); - } - if( Conf_UID != 0 ) - { - /* Set new user ID */ - if( setuid( Conf_UID ) != 0 ) Log( LOG_ERR, "Can't change user ID to %u: %s", Conf_UID, strerror( errno )); - } - - /* Normally a child process is forked which isn't any longer - * connected to ther controlling terminal. Use "--nodaemon" - * to disable this "daemon mode" (useful for debugging). */ - if( ! NGIRCd_NoDaemon ) - { - /* fork child process */ - pid = (long)fork( ); - if( pid > 0 ) - { - /* "Old" process: exit. */ - exit( 0 ); - } - if( pid < 0 ) - { - /* Error!? */ - fprintf( stderr, "%s: Can't fork: %s!\nFatal error, exiting now ...\n", PACKAGE_NAME, strerror( errno )); - exit( 1 ); - } - - /* New child process */ - (void)setsid( ); - chdir( "/" ); - - /* Detach stdin, stdout and stderr */ - Setup_FDStreams( ); - } - - /* Create PID file */ - pid = (long) getpid( ); - Pidfile_Create( pid ); - - /* Show user, group, and PID of the running daemon */ - pwd = getpwuid( getuid( )); grp = getgrgid( getgid( )); - Log( LOG_INFO, "Running as user %s(%ld), group %s(%ld), with PID %ld.", pwd ? pwd->pw_name : "unknown", (long)getuid( ), grp ? grp->gr_name : "unknown", (long)getgid( ), pid); - - /* Change working directory to home directory of the user - * we are running as (when not running chroot()'ed!) */ - if( Conf_UID != 0 && ! Conf_Chroot[0] ) - { - struct passwd *pwd; - - pwd = getpwuid( Conf_UID ); - if( pwd != NULL ) - { - if( chdir( pwd->pw_dir ) == 0 ) Log( LOG_DEBUG, "Changed working directory to \"%s\" ...", pwd->pw_dir ); - else Log( LOG_ERR, "Can't change working directory to \"%s\": %s", pwd->pw_dir, strerror( errno )); - } - else Log( LOG_ERR, "Can't get user informaton for UID %d!?", Conf_UID ); + /* Initialize the "main program": chroot environment, user and + * group ID, ... */ + if (!NGIRCd_Init(NGIRCd_NoDaemon)) { + Log(LOG_ALERT, "Fatal: Initialization failed"); + exit(1); } /* Initialize modules, part II: these functions are eventually * called with already dropped privileges ... */ - Resolve_Init( ); - Lists_Init( ); Channel_Init( ); Client_Init( ); -#ifdef RENDEZVOUS +#ifdef ZEROCONF Rendezvous_Init( ); #endif Conn_Init( ); @@ -350,31 +295,30 @@ main( int argc, const char *argv[] ) if( ! NGIRCd_NoDaemon ) Log_InitErrorfile( ); #endif - /* Signal-Handler initialisieren */ Initialize_Signal_Handler( ); - /* Protokoll- und Server-Identifikation erzeugen. Die vom ngIRCd - * beim PASS-Befehl verwendete Syntax sowie die erweiterten Flags - * sind in doc/Protocol.txt beschrieben. */ + /* + * create protocol and server identification. + * The syntax used by ngIRCd in PASS commands and the extended flags + * are described in doc/Protocol.txt + */ #ifdef IRCPLUS - sprintf( NGIRCd_ProtoID, "%s%s %s|%s:%s", PROTOVER, PROTOIRCPLUS, PACKAGE_NAME, PACKAGE_VERSION, IRCPLUSFLAGS ); + snprintf( NGIRCd_ProtoID, sizeof NGIRCd_ProtoID, "%s%s %s|%s:%s", PROTOVER, PROTOIRCPLUS, PACKAGE_NAME, PACKAGE_VERSION, IRCPLUSFLAGS ); #ifdef ZLIB strcat( NGIRCd_ProtoID, "Z" ); #endif if( Conf_OperCanMode ) strcat( NGIRCd_ProtoID, "o" ); #else - sprintf( NGIRCd_ProtoID, "%s%s %s|%s", PROTOVER, PROTOIRC, PACKAGE_NAME, PACKAGE_VERSION ); + snprintf( NGIRCd_ProtoID, sizeof NGIRCd_ProtoID, "%s%s %s|%s", PROTOVER, PROTOIRC, PACKAGE_NAME, PACKAGE_VERSION ); #endif - strcat( NGIRCd_ProtoID, " P" ); + strlcat( NGIRCd_ProtoID, " P", sizeof NGIRCd_ProtoID ); #ifdef ZLIB - strcat( NGIRCd_ProtoID, "Z" ); + strlcat( NGIRCd_ProtoID, "Z", sizeof NGIRCd_ProtoID ); #endif - Log( LOG_DEBUG, "Protocol and server ID is \"%s\".", NGIRCd_ProtoID ); + LogDebug("Protocol and server ID is \"%s\".", NGIRCd_ProtoID); - /* Vordefinierte Channels anlegen */ Channel_InitPredefined( ); - /* Listen-Ports initialisieren */ if( Conn_InitListeners( ) < 1 ) { Log( LOG_ALERT, "Server isn't listening on a single port!" ); @@ -388,16 +332,14 @@ main( int argc, const char *argv[] ) /* Alles abmelden */ Conn_Exit( ); -#ifdef RENDEZVOUS +#ifdef ZEROCONF Rendezvous_Exit( ); #endif Client_Exit( ); Channel_Exit( ); - Lists_Exit( ); Log_Exit( ); - - Pidfile_Delete( ); } + Pidfile_Delete( ); return 0; } /* main */ @@ -409,60 +351,84 @@ main( int argc, const char *argv[] ) * further usage, for example by the IRC command VERSION and the --version * command line switch. */ -LOCAL void +static void Fill_Version( void ) { NGIRCd_VersionAddition[0] = '\0'; #ifdef SYSLOG - strcpy( NGIRCd_VersionAddition, "SYSLOG" ); + strlcpy( NGIRCd_VersionAddition, "SYSLOG", sizeof NGIRCd_VersionAddition ); #endif #ifdef ZLIB - if( NGIRCd_VersionAddition[0] ) strcat( NGIRCd_VersionAddition, "+" ); - strcat( NGIRCd_VersionAddition, "ZLIB" ); + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + + strlcat( NGIRCd_VersionAddition, "ZLIB", sizeof NGIRCd_VersionAddition ); +#endif +#ifdef SSL_SUPPORT + if ( NGIRCd_VersionAddition[0] ) strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + strlcat( NGIRCd_VersionAddition, "SSL", sizeof NGIRCd_VersionAddition ); #endif #ifdef TCPWRAP - if( NGIRCd_VersionAddition[0] ) strcat( NGIRCd_VersionAddition, "+" ); - strcat( NGIRCd_VersionAddition, "TCPWRAP" ); + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + + strlcat( NGIRCd_VersionAddition, "TCPWRAP", sizeof NGIRCd_VersionAddition ); #endif -#ifdef RENDEZVOUS - if( NGIRCd_VersionAddition[0] ) strcat( NGIRCd_VersionAddition, "+" ); - strcat( NGIRCd_VersionAddition, "RENDEZVOUS" ); +#ifdef ZEROCONF + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + + strlcat( NGIRCd_VersionAddition, "ZEROCONF", sizeof NGIRCd_VersionAddition ); #endif #ifdef IDENTAUTH - if( NGIRCd_VersionAddition[0] ) strcat( NGIRCd_VersionAddition, "+" ); - strcat( NGIRCd_VersionAddition, "IDENT" ); + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + + strlcat( NGIRCd_VersionAddition, "IDENT", sizeof NGIRCd_VersionAddition ); #endif #ifdef DEBUG - if( NGIRCd_VersionAddition[0] ) strcat( NGIRCd_VersionAddition, "+" ); - strcat( NGIRCd_VersionAddition, "DEBUG" ); + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + + strlcat( NGIRCd_VersionAddition, "DEBUG", sizeof NGIRCd_VersionAddition ); #endif #ifdef SNIFFER - if( NGIRCd_VersionAddition[0] ) strcat( NGIRCd_VersionAddition, "+" ); - strcat( NGIRCd_VersionAddition, "SNIFFER" ); + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + + strlcat( NGIRCd_VersionAddition, "SNIFFER", sizeof NGIRCd_VersionAddition ); #endif #ifdef STRICT_RFC - if( NGIRCd_VersionAddition[0] ) strcat( NGIRCd_VersionAddition, "+" ); - strcat( NGIRCd_VersionAddition, "RFC" ); + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + + strlcat( NGIRCd_VersionAddition, "RFC", sizeof NGIRCd_VersionAddition ); #endif #ifdef IRCPLUS - if( NGIRCd_VersionAddition[0] ) strcat( NGIRCd_VersionAddition, "+" ); - strcat( NGIRCd_VersionAddition, "IRCPLUS" ); + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + + strlcat( NGIRCd_VersionAddition, "IRCPLUS", sizeof NGIRCd_VersionAddition ); #endif +#ifdef WANT_IPV6 + if (NGIRCd_VersionAddition[0]) + strlcat(NGIRCd_VersionAddition, "+", sizeof(NGIRCd_VersionAddition)); + + strlcat(NGIRCd_VersionAddition, "IPv6", sizeof(NGIRCd_VersionAddition)); +#endif + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "-", sizeof( NGIRCd_VersionAddition )); - if( NGIRCd_VersionAddition[0] ) strlcat( NGIRCd_VersionAddition, "-", sizeof( NGIRCd_VersionAddition )); strlcat( NGIRCd_VersionAddition, TARGET_CPU, sizeof( NGIRCd_VersionAddition )); strlcat( NGIRCd_VersionAddition, "/", sizeof( NGIRCd_VersionAddition )); strlcat( NGIRCd_VersionAddition, TARGET_VENDOR, sizeof( NGIRCd_VersionAddition )); strlcat( NGIRCd_VersionAddition, "/", sizeof( NGIRCd_VersionAddition )); strlcat( NGIRCd_VersionAddition, TARGET_OS, sizeof( NGIRCd_VersionAddition )); -#ifdef CVSDATE - snprintf( NGIRCd_Version, sizeof NGIRCd_Version,"%s %s(%s)-%s", PACKAGE_NAME, PACKAGE_VERSION, CVSDATE, NGIRCd_VersionAddition); -#else - snprintf( NGIRCd_Version, sizeof NGIRCd_Version, "%s %s-%s", PACKAGE_NAME, PACKAGE_VERSION, NGIRCd_VersionAddition); -#endif -} /* Fill_Version */ + snprintf(NGIRCd_Version, sizeof NGIRCd_Version, "%s %s-%s", + PACKAGE_NAME, PACKAGE_VERSION, NGIRCd_VersionAddition); + } /* Fill_Version */ /** @@ -472,29 +438,39 @@ GLOBAL void NGIRCd_Rehash( void ) { char old_name[CLIENT_ID_LEN]; + unsigned old_nicklen; Log( LOG_NOTICE|LOG_snotice, "Re-reading configuration NOW!" ); NGIRCd_SignalRehash = false; - /* Close down all listening sockets */ - Conn_ExitListeners( ); - - /* Remember old server name */ - strcpy( old_name, Conf_ServerName ); + /* Remember old server name and nick name length */ + strlcpy( old_name, Conf_ServerName, sizeof old_name ); + old_nicklen = Conf_MaxNickLength; /* Re-read configuration ... */ - Conf_Rehash( ); + if (!Conf_Rehash( )) + return; - /* Recover old server name: it can't be changed during run-time */ - if( strcmp( old_name, Conf_ServerName ) != 0 ) - { - strcpy( Conf_ServerName, old_name ); - Log( LOG_ERR, "Can't change \"ServerName\" on runtime! Ignored new name." ); + /* Close down all listening sockets */ + Conn_ExitListeners( ); + + /* Recover old server name and nick name length: these values can't + * be changed during run-time */ + if (strcmp(old_name, Conf_ServerName) != 0 ) { + strlcpy(Conf_ServerName, old_name, sizeof Conf_ServerName); + Log(LOG_ERR, "Can't change \"ServerName\" on runtime! Ignored new name."); + } + if (old_nicklen != Conf_MaxNickLength) { + Conf_MaxNickLength = old_nicklen; + Log(LOG_ERR, "Can't change \"MaxNickLength\" on runtime! Ignored new value."); } /* Create new pre-defined channels */ Channel_InitPredefined( ); - + + if (!ConnSSL_InitLibrary()) + Log(LOG_WARNING, "Re-Initializing SSL failed, using old keys"); + /* Start listening on sockets */ Conn_InitListeners( ); @@ -508,18 +484,12 @@ NGIRCd_Rehash( void ) /** * Initialize the signal handler. */ -LOCAL void +static void Initialize_Signal_Handler( void ) { - /* Signal-Handler initialisieren: einige Signale - * werden ignoriert, andere speziell behandelt. */ - #ifdef HAVE_SIGACTION - /* sigaction() ist vorhanden */ - struct sigaction saction; - /* Signal-Struktur initialisieren */ memset( &saction, 0, sizeof( saction )); saction.sa_handler = Signal_Handler; #ifdef SA_RESTART @@ -529,28 +499,23 @@ Initialize_Signal_Handler( void ) saction.sa_flags |= SA_NOCLDWAIT; #endif - /* Signal-Handler einhaengen */ - sigaction( SIGINT, &saction, NULL ); - sigaction( SIGQUIT, &saction, NULL ); - sigaction( SIGTERM, &saction, NULL); - sigaction( SIGHUP, &saction, NULL); - sigaction( SIGCHLD, &saction, NULL); + sigaction(SIGINT, &saction, NULL); + sigaction(SIGQUIT, &saction, NULL); + sigaction(SIGTERM, &saction, NULL); + sigaction(SIGHUP, &saction, NULL); + sigaction(SIGCHLD, &saction, NULL); - /* einige Signale ignorieren */ + /* we handle write errors properly; ignore SIGPIPE */ saction.sa_handler = SIG_IGN; - sigaction( SIGPIPE, &saction, NULL ); + sigaction(SIGPIPE, &saction, NULL); #else - /* kein sigaction() vorhanden */ - - /* Signal-Handler einhaengen */ - signal( SIGINT, Signal_Handler ); - signal( SIGQUIT, Signal_Handler ); - signal( SIGTERM, Signal_Handler ); - signal( SIGHUP, Signal_Handler ); - signal( SIGCHLD, Signal_Handler ); + signal(SIGINT, Signal_Handler); + signal(SIGQUIT, Signal_Handler); + signal(SIGTERM, Signal_Handler); + signal(SIGHUP, Signal_Handler); + signal(SIGCHLD, Signal_Handler); - /* einige Signale ignorieren */ - signal( SIGPIPE, SIG_IGN ); + signal(SIGPIPE, SIG_IGN); #endif } /* Initialize_Signal_Handler */ @@ -561,7 +526,7 @@ Initialize_Signal_Handler( void ) * user and/or the system to it. For example SIGTERM and SIGHUP. * @param Signal Number of the signal to handle. */ -LOCAL void +static void Signal_Handler( int Signal ) { switch( Signal ) @@ -569,16 +534,17 @@ Signal_Handler( int Signal ) case SIGTERM: case SIGINT: case SIGQUIT: - /* wir soll(t)en uns wohl beenden ... */ + /* shut down sever */ NGIRCd_SignalQuit = true; break; case SIGHUP: - /* Konfiguration neu einlesen: */ + /* re-read configuration */ NGIRCd_SignalRehash = true; break; case SIGCHLD: - /* Child-Prozess wurde beendet. Zombies vermeiden: */ - while( waitpid( -1, NULL, WNOHANG ) > 0); + /* child-process exited, avoid zombies */ + while (waitpid( -1, NULL, WNOHANG) > 0) + ; break; #ifdef DEBUG default: @@ -592,12 +558,12 @@ Signal_Handler( int Signal ) /** * Display copyright and version information of ngIRCd on the console. */ -LOCAL void +static void Show_Version( void ) { puts( NGIRCd_Version ); - puts( "Copyright (c)2001-2005 by Alexander Barton ()." ); - puts( "Homepage: \n" ); + puts( "Copyright (c)2001-2009 Alexander Barton () and Contributors." ); + puts( "Homepage: \n" ); puts( "This is free software; see the source for copying conditions. There is NO" ); puts( "warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE." ); } /* Show_Version */ @@ -608,7 +574,7 @@ Show_Version( void ) * This help depends on the configuration of the executable and only shows * options that are actually enabled. */ -LOCAL void +static void Show_Help( void ) { #ifdef DEBUG @@ -621,15 +587,15 @@ Show_Help( void ) puts( " -s, --sniffer enable network sniffer and display all IRC traffic" ); #endif puts( " -t, --configtest read, validate and display configuration; then exit" ); - puts( " --version output version information and exit" ); - puts( " --help display this help and exit" ); + puts( " -V, --version output version information and exit" ); + puts( " -h, --help display this help and exit" ); } /* Show_Help */ /** * Delete the file containing the process ID (PID). */ -LOCAL void +static void Pidfile_Delete( void ) { /* Pidfile configured? */ @@ -648,10 +614,12 @@ Pidfile_Delete( void ) * Create the file containing the process ID of ngIRCd ("PID file"). * @param pid The process ID to be stored in this file. */ -LOCAL void -Pidfile_Create( long pid ) +static void +Pidfile_Create(pid_t pid) { - FILE *pidf; + int pidfd; + char pidbuf[64]; + int len; /* Pidfile configured? */ if( ! Conf_PidFile[0] ) return; @@ -660,18 +628,22 @@ Pidfile_Create( long pid ) Log( LOG_DEBUG, "Creating PID file (%s) ...", Conf_PidFile ); #endif - pidf = fopen( Conf_PidFile, "w" ); - - if( ! pidf ) - { + pidfd = open( Conf_PidFile, O_RDWR|O_CREAT|O_EXCL, S_IRUSR|S_IWUSR|S_IRGRP|S_IROTH); + if ( pidfd < 0 ) { Log( LOG_ERR, "Error writing PID file (%s): %s", Conf_PidFile, strerror( errno )); return; } - if( fprintf( pidf, "%ld\n", pid ) < 0 ) + len = snprintf(pidbuf, sizeof pidbuf, "%ld\n", (long)pid); + if (len < 0 || len >= (int)sizeof pidbuf) { + Log( LOG_ERR, "Error converting pid"); + return; + } + + if (write(pidfd, pidbuf, (size_t)len) != (ssize_t)len) Log( LOG_ERR, "Can't write PID file (%s): %s", Conf_PidFile, strerror( errno )); - if( fclose(pidf) != 0 ) + if( close(pidfd) != 0 ) Log( LOG_ERR, "Error closing PID file (%s): %s", Conf_PidFile, strerror( errno )); } /* Pidfile_Create */ @@ -679,7 +651,7 @@ Pidfile_Create( long pid ) /** * Redirect stdin, stdout and stderr to apropriate file handles. */ -LOCAL void +static void Setup_FDStreams( void ) { int fd; @@ -688,10 +660,13 @@ Setup_FDStreams( void ) * we are most probably chrooted already and the server has been * restarted. So we simply don't try to redirect stdXXX ... */ fd = open( "/dev/null", O_RDWR ); - if ( fd < 0 ) return; + if ( fd < 0 ) { + Log(LOG_WARNING, "Could not open /dev/null: %s", strerror(errno)); + return; + } - /* Close "old" stdin/out/err descriptors */ - close( 0 ); close( 1 ); close( 2 ); + fflush(stdout); + fflush(stderr); /* Create new stdin(0), stdout(1) and stderr(2) descriptors */ dup2( fd, 0 ); dup2( fd, 1 ); dup2( fd, 2 ); @@ -701,4 +676,172 @@ Setup_FDStreams( void ) } /* Setup_FDStreams */ +static bool +NGIRCd_getNobodyID(uid_t *uid, gid_t *gid ) +{ + struct passwd *pwd; + +#ifdef __CYGWIN__ + /* Cygwin kludge. + * It can return EINVAL instead of EPERM + * so, if we are already unprivileged, + * use id of current user. + */ + if (geteuid() && getuid()) { + *uid = getuid(); + *gid = getgid(); + return true; + } +#endif + + pwd = getpwnam("nobody"); + if (!pwd) return false; + + if ( !pwd->pw_uid || !pwd->pw_gid) + return false; + + *uid = pwd->pw_uid; + *gid = pwd->pw_gid; + endpwent(); + + return true; +} + + +static bool +NGIRCd_Init( bool NGIRCd_NoDaemon ) +{ + static bool initialized; + bool chrooted = false; + struct passwd *pwd; + struct group *grp; + int real_errno; + pid_t pid; + + if (initialized) + return true; + + if (!ConnSSL_InitLibrary()) + Log(LOG_WARNING, + "Warning: Error during SSL initialization, continuing ..."); + + if( Conf_Chroot[0] ) { + if( chdir( Conf_Chroot ) != 0 ) { + Log( LOG_ERR, "Can't chdir() in ChrootDir (%s): %s", Conf_Chroot, strerror( errno )); + return false; + } + + if( chroot( Conf_Chroot ) != 0 ) { + if (errno != EPERM) { + Log( LOG_ERR, "Can't change root directory to \"%s\": %s", + Conf_Chroot, strerror( errno )); + + return false; + } + } else { + chrooted = true; + Log( LOG_INFO, "Changed root and working directory to \"%s\".", Conf_Chroot ); + } + } + + if (Conf_UID == 0) { + Log(LOG_INFO, "ServerUID must not be 0, using \"nobody\" instead.", Conf_UID); + + if (! NGIRCd_getNobodyID(&Conf_UID, &Conf_GID)) { + Log(LOG_WARNING, "Could not get user/group ID of user \"nobody\": %s", + errno ? strerror(errno) : "not found" ); + return false; + } + } + + if (getgid() != Conf_GID) { + /* Change group ID */ + if (setgid(Conf_GID) != 0) { + real_errno = errno; + Log( LOG_ERR, "Can't change group ID to %u: %s", Conf_GID, strerror( errno )); + if (real_errno != EPERM) + return false; + } + } + + if (getuid() != Conf_UID) { + /* Change user ID */ + if (setuid(Conf_UID) != 0) { + real_errno = errno; + Log(LOG_ERR, "Can't change user ID to %u: %s", Conf_UID, strerror(errno)); + if (real_errno != EPERM) + return false; + } + } + + initialized = true; + + /* Normally a child process is forked which isn't any longer + * connected to ther controlling terminal. Use "--nodaemon" + * to disable this "daemon mode" (useful for debugging). */ + if ( ! NGIRCd_NoDaemon ) { + pid = fork( ); + if( pid > 0 ) { + /* "Old" process: exit. */ + exit( 0 ); + } + if( pid < 0 ) { + /* Error!? */ + fprintf( stderr, "%s: Can't fork: %s!\nFatal error, exiting now ...\n", + PACKAGE_NAME, strerror( errno )); + exit( 1 ); + } + + /* New child process */ +#ifndef NeXT + (void)setsid( ); +#else + setpgrp(0, getpid()); +#endif + chdir( "/" ); + + /* Detach stdin, stdout and stderr */ + Setup_FDStreams( ); + } + pid = getpid(); + + Pidfile_Create( pid ); + + /* Check UID/GID we are running as, can be different from values + * configured (e. g. if we were already started with a UID>0. */ + Conf_UID = getuid(); + Conf_GID = getgid(); + + pwd = getpwuid( Conf_UID ); + grp = getgrgid( Conf_GID ); + + Log(LOG_INFO, "Running as user %s(%ld), group %s(%ld), with PID %ld.", + pwd ? pwd->pw_name : "unknown", (long)Conf_UID, + grp ? grp->gr_name : "unknown", (long)Conf_GID, (long)pid); + + if (chrooted) { + Log(LOG_INFO, "Running with root directory \"%s\".", + Conf_Chroot ); + return true; + } else + Log(LOG_INFO, "Not running with changed root directory."); + + /* Change working directory to home directory of the user + * we are running as (only when running in daemon mode and not in chroot) */ + + if ( pwd ) { + if (!NGIRCd_NoDaemon ) { + if( chdir( pwd->pw_dir ) == 0 ) + Log( LOG_DEBUG, "Changed working directory to \"%s\" ...", pwd->pw_dir ); + else + Log( LOG_INFO, "Notice: Can't change working directory to \"%s\": %s", + pwd->pw_dir, strerror( errno )); + } + } else { + Log( LOG_ERR, "Can't get user informaton for UID %d!?", Conf_UID ); + } + +return true; +} + /* -eof- */