2 * Copyright (c) 1999 Adrian Sun (asun@zoology.washington.edu)
3 * Copyright (c) 1990,1993 Regents of The University of Michigan.
4 * All Rights Reserved. See COPYRIGHT.
6 * modified from main.c. this handles afp over tcp.
11 #endif /* HAVE_CONFIG_H */
20 #endif /* HAVE_UNISTD_H */
21 #include <sys/socket.h>
23 #ifdef HAVE_SYS_STAT_H
25 #endif /* HAVE_SYS_STAT_H */
26 #include <netinet/in.h>
27 #include <arpa/inet.h>
28 #include <atalk/logger.h>
31 #include <atalk/dsi.h>
32 #include <atalk/compat.h>
33 #include <atalk/util.h>
34 #include <atalk/uuid.h>
35 #include <atalk/paths.h>
36 #include <atalk/server_ipc.h>
38 #include <atalk/globals.h>
47 #endif /* FORCE_UIDGID */
50 * We generally pass this from afp_over_dsi to all afp_* funcs, so it should already be
51 * available everywhere. Unfortunately some funcs (eg acltoownermode) need acces to it
52 * but are deeply nested in the function chain with the caller already without acces to it.
53 * Changing this would require adding a reference to the caller which itself might be
54 * called in many places (eg acltoownermode is called from accessmode).
55 * The only sane way out is providing a copy of it here:
57 AFPObj *AFPobj = NULL;
68 * - indexed just by taking DSIreqID mod REPLAYCACHE_SIZE
70 static rc_elem_t replaycache[REPLAYCACHE_SIZE];
72 static sigjmp_buf recon_jmp;
73 static void afp_dsi_close(AFPObj *obj)
75 DSI *dsi = obj->handle;
80 /* we may have been called from a signal handler caught when afpd was running
81 * as uid 0, that's the wrong user for volume's prexec_close scripts if any,
82 * restore our login user
84 if (geteuid() != obj->uid) {
85 if (seteuid( obj->uid ) < 0) {
86 LOG(log_error, logtype_afpd, "can't seteuid(%u) back %s: uid: %u, euid: %u",
87 obj->uid, strerror(errno), getuid(), geteuid());
96 LOG(log_note, logtype_afpd, "AFP statistics: %.2f KB read, %.2f KB written",
97 dsi->read_count/1024.0, dsi->write_count/1024.0);
103 /* -------------------------------
105 * a little bit of code duplication.
107 static void afp_dsi_die(int sig)
109 DSI *dsi = (DSI *)AFPobj->handle;
111 if (dsi->flags & DSI_RECONINPROG) {
112 /* Primary reconnect succeeded, got SIGTERM from afpd parent */
113 dsi->flags &= ~DSI_RECONINPROG;
114 return; /* this returns to afp_disconnect */
117 if (dsi->flags & DSI_DISCONNECTED) {
118 LOG(log_note, logtype_afpd, "Disconnected session terminating");
122 dsi_attention(AFPobj->handle, AFPATTN_SHUTDOWN);
123 afp_dsi_close(AFPobj);
124 if (sig) /* if no signal, assume dieing because logins are disabled &
125 don't log it (maintenance mode)*/
126 LOG(log_info, logtype_afpd, "Connection terminated");
127 if (sig == SIGTERM || sig == SIGALRM) {
135 /* SIGQUIT handler */
136 static void ipc_reconnect_handler(int sig _U_)
138 DSI *dsi = (DSI *)AFPobj->handle;
140 LOG(log_note, logtype_afpd, "ipc_reconnect_handler: got SIGQUIT, trying IPC reconnect");
142 if (reconnect_ipc(AFPobj) != 0) {
143 LOG(log_error, logtype_afpd, "ipc_reconnect_handler: failed IPC reconnect");
144 afp_dsi_close(AFPobj);
148 LOG(log_note, logtype_afpd, "ipc_reconnect_handler: resending client ID");
149 if (ipc_child_write(AFPobj->ipc_fd, IPC_GETSESSION, AFPobj->sinfo.clientid_len, AFPobj->sinfo.clientid) != 0) {
150 LOG(log_error, logtype_afpd, "ipc_reconnect_handler: failed IPC ID resend");
151 afp_dsi_close(AFPobj);
154 LOG(log_note, logtype_afpd, "ipc_reconnect_handler: done");
157 /* SIGURG handler (primary reconnect) */
158 static void afp_dsi_transfer_session(int sig _U_)
162 DSI *dsi = (DSI *)AFPobj->handle;
164 LOG(log_debug, logtype_afpd, "afp_dsi_transfer_session: got SIGURG, trying to receive session");
166 if (readt(AFPobj->ipc_fd, &dsiID, 2, 0, 2) != 2) {
167 LOG(log_error, logtype_afpd, "afp_dsi_transfer_session: couldn't receive DSI id, goodbye");
168 afp_dsi_close(AFPobj);
172 if ((socket = recv_fd(AFPobj->ipc_fd, 1)) == -1) {
173 LOG(log_error, logtype_afpd, "afp_dsi_transfer_session: couldn't receive session fd, goodbye");
174 afp_dsi_close(AFPobj);
178 LOG(log_debug, logtype_afpd, "afp_dsi_transfer_session: received socket fd: %i", socket);
180 dsi->proto_close(dsi);
181 dsi->socket = socket;
182 dsi->flags = DSI_RECONSOCKET;
184 dsi->eof = dsi->start = dsi->buffer;
186 dsi->header.dsi_requestID = dsiID;
187 dsi->header.dsi_command = DSIFUNC_CMD;
190 * The session transfer happens in the middle of FPDisconnect old session, thus we
191 * have to send the reply now.
193 if (!dsi_cmdreply(dsi, AFP_OK)) {
194 LOG(log_error, logtype_afpd, "dsi_cmdreply: %s", strerror(errno) );
195 afp_dsi_close(AFPobj);
199 LOG(log_note, logtype_afpd, "afp_dsi_transfer_session: succesfull primary reconnect");
201 * Now returning from this signal handler return to dsi_receive which should start
202 * reading/continuing from the connected socket that was passed via the parent from
203 * another session. The parent will terminate that session.
205 siglongjmp(recon_jmp, 1);
208 /* ------------------- */
209 static void afp_dsi_timedown(int sig _U_)
213 DSI *dsi = (DSI *)AFPobj->handle;
214 dsi->flags |= DSI_DIE;
215 /* shutdown and don't reconnect. server going down in 5 minutes. */
216 setmessage("The server is going down for maintenance.");
217 if (dsi_attention(AFPobj->handle, AFPATTN_SHUTDOWN | AFPATTN_NORECONNECT |
218 AFPATTN_MESG | AFPATTN_TIME(5)) < 0) {
219 DSI *dsi = (DSI *)AFPobj->handle;
220 dsi->down_request = 1;
223 it.it_interval.tv_sec = 0;
224 it.it_interval.tv_usec = 0;
225 it.it_value.tv_sec = 300;
226 it.it_value.tv_usec = 0;
228 if ( setitimer( ITIMER_REAL, &it, NULL ) < 0 ) {
229 LOG(log_error, logtype_afpd, "afp_timedown: setitimer: %s", strerror(errno) );
230 afp_dsi_die(EXITERR_SYS);
232 memset(&sv, 0, sizeof(sv));
233 sv.sa_handler = afp_dsi_die;
234 sigemptyset( &sv.sa_mask );
235 sigaddset(&sv.sa_mask, SIGHUP);
236 sigaddset(&sv.sa_mask, SIGTERM);
237 sv.sa_flags = SA_RESTART;
238 if ( sigaction( SIGALRM, &sv, NULL ) < 0 ) {
239 LOG(log_error, logtype_afpd, "afp_timedown: sigaction: %s", strerror(errno) );
240 afp_dsi_die(EXITERR_SYS);
244 sv.sa_handler = SIG_IGN;
245 sigemptyset( &sv.sa_mask );
246 sv.sa_flags = SA_RESTART;
247 if ( sigaction( SIGUSR1, &sv, NULL ) < 0 ) {
248 LOG(log_error, logtype_afpd, "afp_timedown: sigaction SIGHUP: %s", strerror(errno) );
249 afp_dsi_die(EXITERR_SYS);
253 /* ---------------------------------
254 * SIGHUP reload configuration file
256 volatile int reload_request = 0;
258 static void afp_dsi_reload(int sig _U_)
263 /* ---------------------------------
264 * SIGINT: enable max_debug LOGging
266 static volatile sig_atomic_t debug_request = 0;
268 static void afp_dsi_debug(int sig _U_)
273 /* ---------------------- */
274 static void afp_dsi_getmesg (int sig _U_)
276 DSI *dsi = (DSI *)AFPobj->handle;
278 dsi->msg_request = 1;
279 if (dsi_attention(AFPobj->handle, AFPATTN_MESG | AFPATTN_TIME(5)) < 0)
280 dsi->msg_request = 2;
283 static void alarm_handler(int sig _U_)
286 DSI *dsi = (DSI *)AFPobj->handle;
288 /* we have to restart the timer because some libraries may use alarm() */
289 setitimer(ITIMER_REAL, &dsi->timer, NULL);
291 /* we got some traffic from the client since the previous timer tick. */
292 if ((dsi->flags & DSI_DATA)) {
293 dsi->flags &= ~DSI_DATA;
298 LOG(log_maxdebug, logtype_afpd, "alarm: tickles: %u, flags: %s|%s|%s|%s|%s|%s|%s|%s|%s",
300 (dsi->flags & DSI_DATA) ? "DSI_DATA" : "-",
301 (dsi->flags & DSI_RUNNING) ? "DSI_RUNNING" : "-",
302 (dsi->flags & DSI_SLEEPING) ? "DSI_SLEEPING" : "-",
303 (dsi->flags & DSI_EXTSLEEP) ? "DSI_EXTSLEEP" : "-",
304 (dsi->flags & DSI_DISCONNECTED) ? "DSI_DISCONNECTED" : "-",
305 (dsi->flags & DSI_DIE) ? "DSI_DIE" : "-",
306 (dsi->flags & DSI_NOREPLY) ? "DSI_NOREPLY" : "-",
307 (dsi->flags & DSI_RECONSOCKET) ? "DSI_RECONSOCKET" : "-",
308 (dsi->flags & DSI_RECONINPROG) ? "DSI_RECONINPROG" : "-");
310 if (dsi->flags & DSI_SLEEPING) {
311 if (dsi->tickle > AFPobj->options.sleep) {
312 LOG(log_note, logtype_afpd, "afp_alarm: sleep time ended");
313 afp_dsi_die(EXITERR_CLNT);
318 if (dsi->flags & DSI_DISCONNECTED) {
319 if (geteuid() == 0) {
320 LOG(log_note, logtype_afpd, "afp_alarm: unauthenticated user, connection problem");
321 afp_dsi_die(EXITERR_CLNT);
323 if (dsi->tickle > AFPobj->options.disconnected) {
324 LOG(log_error, logtype_afpd, "afp_alarm: reconnect timer expired, goodbye");
325 afp_dsi_die(EXITERR_CLNT);
330 /* if we're in the midst of processing something, don't die. */
331 if ( !(dsi->flags & DSI_RUNNING) && (dsi->tickle >= AFPobj->options.timeout)) {
332 LOG(log_error, logtype_afpd, "afp_alarm: child timed out, entering disconnected state");
333 if (dsi_disconnect(dsi) != 0)
334 afp_dsi_die(EXITERR_CLNT);
338 if ((err = pollvoltime(AFPobj)) == 0)
339 LOG(log_debug, logtype_afpd, "afp_alarm: sending DSI tickle");
340 err = dsi_tickle(AFPobj->handle);
342 if (geteuid() == 0) {
343 LOG(log_note, logtype_afpd, "afp_alarm: unauthenticated user, connection problem");
344 afp_dsi_die(EXITERR_CLNT);
346 LOG(log_error, logtype_afpd, "afp_alarm: connection problem, entering disconnected state");
347 if (dsi_disconnect(dsi) != 0)
348 afp_dsi_die(EXITERR_CLNT);
353 if dsi->in_write is set attention, tickle (and close?) msg
354 aren't sent. We don't care about tickle
356 static void pending_request(DSI *dsi)
358 /* send pending attention */
360 /* read msg if any, it could be done in afp_getsrvrmesg */
361 if (dsi->msg_request) {
362 if (dsi->msg_request == 2) {
363 /* didn't send it in signal handler */
364 dsi_attention(AFPobj->handle, AFPATTN_MESG | AFPATTN_TIME(5));
366 dsi->msg_request = 0;
369 if (dsi->down_request) {
370 dsi->down_request = 0;
371 dsi_attention(AFPobj->handle, AFPATTN_SHUTDOWN | AFPATTN_NORECONNECT |
372 AFPATTN_MESG | AFPATTN_TIME(5));
376 /* -------------------------------------------
377 afp over dsi. this never returns.
379 void afp_over_dsi(AFPObj *obj)
381 DSI *dsi = (DSI *) obj->handle;
385 struct sigaction action;
389 obj->exit = afp_dsi_die;
390 obj->reply = (int (*)()) dsi_cmdreply;
391 obj->attention = (int (*)(void *, AFPUserBytes)) dsi_attention;
394 memset(&action, 0, sizeof(action));
395 sigfillset(&action.sa_mask);
396 action.sa_flags = SA_RESTART;
399 action.sa_handler = afp_dsi_reload;
400 if ( sigaction( SIGHUP, &action, NULL ) < 0 ) {
401 LOG(log_error, logtype_afpd, "afp_over_dsi: sigaction: %s", strerror(errno) );
402 afp_dsi_die(EXITERR_SYS);
406 action.sa_handler = afp_dsi_transfer_session;
407 if ( sigaction( SIGURG, &action, NULL ) < 0 ) {
408 LOG(log_error, logtype_afpd, "afp_over_dsi: sigaction: %s", strerror(errno) );
409 afp_dsi_die(EXITERR_SYS);
412 /* install SIGTERM */
413 action.sa_handler = afp_dsi_die;
414 if ( sigaction( SIGTERM, &action, NULL ) < 0 ) {
415 LOG(log_error, logtype_afpd, "afp_over_dsi: sigaction: %s", strerror(errno) );
416 afp_dsi_die(EXITERR_SYS);
419 /* install SIGQUIT */
420 action.sa_handler = ipc_reconnect_handler;
421 if ( sigaction(SIGQUIT, &action, NULL ) < 0 ) {
422 LOG(log_error, logtype_afpd, "afp_over_dsi: sigaction: %s", strerror(errno) );
423 afp_dsi_die(EXITERR_SYS);
426 /* SIGUSR2 - server message support */
427 action.sa_handler = afp_dsi_getmesg;
428 if ( sigaction( SIGUSR2, &action, NULL) < 0 ) {
429 LOG(log_error, logtype_afpd, "afp_over_dsi: sigaction: %s", strerror(errno) );
430 afp_dsi_die(EXITERR_SYS);
433 /* SIGUSR1 - set down in 5 minutes */
434 action.sa_handler = afp_dsi_timedown;
435 action.sa_flags = SA_RESTART;
436 if ( sigaction( SIGUSR1, &action, NULL) < 0 ) {
437 LOG(log_error, logtype_afpd, "afp_over_dsi: sigaction: %s", strerror(errno) );
438 afp_dsi_die(EXITERR_SYS);
441 /* SIGINT - enable max_debug LOGging to /tmp/afpd.PID.XXXXXX */
442 action.sa_handler = afp_dsi_debug;
443 if ( sigaction( SIGINT, &action, NULL) < 0 ) {
444 LOG(log_error, logtype_afpd, "afp_over_dsi: sigaction: %s", strerror(errno) );
445 afp_dsi_die(EXITERR_SYS);
449 /* SIGALRM - tickle handler */
450 action.sa_handler = alarm_handler;
451 if ((sigaction(SIGALRM, &action, NULL) < 0) ||
452 (setitimer(ITIMER_REAL, &dsi->timer, NULL) < 0)) {
453 afp_dsi_die(EXITERR_SYS);
455 #endif /* DEBUGGING */
457 if (dircache_init(obj->options.dircachesize) != 0)
458 afp_dsi_die(EXITERR_SYS);
460 /* set TCP snd/rcv buf */
461 if (obj->options.tcp_rcvbuf) {
462 if (setsockopt(dsi->socket,
465 &obj->options.tcp_rcvbuf,
466 sizeof(obj->options.tcp_rcvbuf)) != 0) {
467 LOG(log_error, logtype_dsi, "afp_over_dsi: setsockopt(SO_RCVBUF): %s", strerror(errno));
470 if (obj->options.tcp_sndbuf) {
471 if (setsockopt(dsi->socket,
474 &obj->options.tcp_sndbuf,
475 sizeof(obj->options.tcp_sndbuf)) != 0) {
476 LOG(log_error, logtype_dsi, "afp_over_dsi: setsockopt(SO_SNDBUF): %s", strerror(errno));
480 /* get stuck here until the end */
482 if (sigsetjmp(recon_jmp, 1) != 0)
483 /* returning from SIGALARM handler for a primary reconnect */
486 /* Blocking read on the network socket */
487 cmd = dsi_receive(dsi);
490 /* cmd == 0 is the error condition */
491 if (dsi->flags & DSI_RECONSOCKET) {
492 /* we just got a reconnect so we immediately try again to receive on the new fd */
493 dsi->flags &= ~DSI_RECONSOCKET;
497 /* the client sometimes logs out (afp_logout) but doesn't close the DSI session */
498 if (dsi->flags & DSI_AFP_LOGGED_OUT) {
499 LOG(log_note, logtype_afpd, "afp_over_dsi: client logged out, terminating DSI session");
504 /* got ECONNRESET in read from client => exit*/
505 if (dsi->flags & DSI_GOT_ECONNRESET) {
506 LOG(log_note, logtype_afpd, "afp_over_dsi: client connection reset");
511 /* Some error on the client connection, enter disconnected state */
512 if (dsi_disconnect(dsi) != 0)
513 afp_dsi_die(EXITERR_CLNT);
515 pause(); /* gets interrupted by SIGALARM or SIGURG tickle */
516 continue; /* continue receiving until disconnect timer expires
517 * or a primary reconnect succeeds */
520 if (!(dsi->flags & DSI_EXTSLEEP) && (dsi->flags & DSI_SLEEPING)) {
521 LOG(log_debug, logtype_afpd, "afp_over_dsi: got data, ending normal sleep");
522 dsi->flags &= ~DSI_SLEEPING;
526 if (reload_request) {
528 load_volumes(AFPobj);
531 /* The first SIGINT enables debugging, the next restores the config */
533 static int debugging = 0;
540 if (obj->options.logconfig)
541 setuplog(obj->options.logconfig);
543 setuplog("default log_note");
548 sprintf(logstr, "default log_maxdebug /tmp/afpd.%u.XXXXXX", getpid());
554 dsi->flags |= DSI_DATA;
560 LOG(log_debug, logtype_afpd, "DSI: close session request");
562 LOG(log_note, logtype_afpd, "done");
566 dsi->flags &= ~DSI_DATA; /* thats no data in the sense we use it in alarm_handler */
567 LOG(log_debug, logtype_afpd, "DSI: client tickle");
568 /* timer is not every 30 seconds anymore, so we don't get killed on the client side. */
569 if ((dsi->flags & DSI_DIE))
576 if ( flushfork( writtenfork ) < 0 ) {
577 LOG(log_error, logtype_afpd, "main flushfork: %s", strerror(errno) );
583 function = (u_char) dsi->commands[0];
585 /* AFP replay cache */
586 rc_idx = dsi->clientID % REPLAYCACHE_SIZE;
587 LOG(log_debug, logtype_afpd, "DSI request ID: %u", dsi->clientID);
589 if (replaycache[rc_idx].DSIreqID == dsi->clientID
590 && replaycache[rc_idx].AFPcommand == function) {
591 LOG(log_note, logtype_afpd, "AFP Replay Cache match: id: %u / cmd: %s",
592 dsi->clientID, AfpNum2name(function));
593 err = replaycache[rc_idx].result;
594 /* AFP replay cache end */
596 /* send off an afp command. in a couple cases, we take advantage
597 * of the fact that we're a stream-based protocol. */
598 if (afp_switch[function]) {
599 dsi->datalen = DSI_DATASIZ;
600 dsi->flags |= DSI_RUNNING;
602 LOG(log_debug, logtype_afpd, "<== Start AFP command: %s", AfpNum2name(function));
604 err = (*afp_switch[function])(obj,
605 (char *)&dsi->commands, dsi->cmdlen,
606 (char *)&dsi->data, &dsi->datalen);
608 LOG(log_debug, logtype_afpd, "==> Finished AFP command: %s -> %s",
609 AfpNum2name(function), AfpErr2name(err));
611 dir_free_invalid_q();
614 /* bring everything back to old euid, egid */
616 restore_uidgid ( &obj->uidgid );
617 #endif /* FORCE_UIDGID */
618 dsi->flags &= ~DSI_RUNNING;
620 /* Add result to the AFP replay cache */
621 replaycache[rc_idx].DSIreqID = dsi->clientID;
622 replaycache[rc_idx].AFPcommand = function;
623 replaycache[rc_idx].result = err;
625 LOG(log_error, logtype_afpd, "bad function %X", function);
631 /* single shot toggle that gets set by dsi_readinit. */
632 if (dsi->flags & DSI_NOREPLY) {
633 dsi->flags &= ~DSI_NOREPLY;
637 if (!dsi_cmdreply(dsi, err)) {
638 LOG(log_error, logtype_afpd, "dsi_cmdreply(%d): %s", dsi->socket, strerror(errno) );
639 if (dsi_disconnect(dsi) != 0)
640 afp_dsi_die(EXITERR_CLNT);
644 case DSIFUNC_WRITE: /* FPWrite and FPAddIcon */
645 function = (u_char) dsi->commands[0];
646 if ( afp_switch[ function ] != NULL ) {
647 dsi->datalen = DSI_DATASIZ;
648 dsi->flags |= DSI_RUNNING;
650 LOG(log_debug, logtype_afpd, "<== Start AFP command: %s", AfpNum2name(function));
652 err = (*afp_switch[function])(obj,
653 (char *)&dsi->commands, dsi->cmdlen,
654 (char *)&dsi->data, &dsi->datalen);
656 LOG(log_debug, logtype_afpd, "==> Finished AFP command: %s -> %s",
657 AfpNum2name(function), AfpErr2name(err));
659 dsi->flags &= ~DSI_RUNNING;
661 /* bring everything back to old euid, egid */
663 restore_uidgid ( &obj->uidgid );
664 #endif /* FORCE_UIDGID */
666 LOG(log_error, logtype_afpd, "(write) bad function %x", function);
671 if (!dsi_wrtreply(dsi, err)) {
672 LOG(log_error, logtype_afpd, "dsi_wrtreply: %s", strerror(errno) );
673 if (dsi_disconnect(dsi) != 0)
674 afp_dsi_die(EXITERR_CLNT);
678 case DSIFUNC_ATTN: /* attention replies */
681 /* error. this usually implies a mismatch of some kind
682 * between server and client. if things are correct,
683 * we need to flush the rest of the packet if necessary. */
685 LOG(log_info, logtype_afpd,"afp_dsi: spurious command %d", cmd);
686 dsi_writeinit(dsi, dsi->data, DSI_DATASIZ);
690 pending_request(dsi);
694 afp_dsi_die(EXITERR_CLNT);