]> arthur.barton.de Git - ngircd-alex.git/blobdiff - src/ngircd/ngircd.c
Update copyright notices for 2010 :)
[ngircd-alex.git] / src / ngircd / ngircd.c
index 184746be2cef0a2831d99fa5ac5115bce1946017..63fc64bf2ef2ac6a34ff847bb9f59ad7d1b036d8 100644 (file)
@@ -1,22 +1,23 @@
 /*
  * ngIRCd -- The Next Generation IRC Daemon
- * Copyright (c)2001,2002 by Alexander Barton (alex@barton.de)
+ * Copyright (c)2001-2011 Alexander Barton (alex@barton.de) and Contributors.
  *
- * Dieses Programm ist freie Software. Sie koennen es unter den Bedingungen
- * der GNU General Public License (GPL), wie von der Free Software Foundation
- * herausgegeben, weitergeben und/oder modifizieren, entweder unter Version 2
- * der Lizenz oder (wenn Sie es wuenschen) jeder spaeteren Version.
- * Naehere Informationen entnehmen Sie bitter der Datei COPYING. Eine Liste
- * der an ngIRCd beteiligten Autoren finden Sie in der Datei AUTHORS.
- *
- * $Id: ngircd.c,v 1.45 2002/05/18 12:20:02 alex Exp $
- *
- * ngircd.c: Hier beginnt alles ;-)
+ * This program is free software; you can redistribute it and/or modify
+ * it under the terms of the GNU General Public License as published by
+ * the Free Software Foundation; either version 2 of the License, or
+ * (at your option) any later version.
+ * Please read the file COPYING, README and AUTHORS for more information.
  */
 
 
 #include "portab.h"
 
+/**
+ * @file
+ * The main program, including the C function main() which is called
+ * by the loader of the operating system.
+ */
+
 #include "imp.h"
 #include <assert.h>
 #include <errno.h>
 #include <signal.h>
 #include <string.h>
 #include <unistd.h>
-#include <sys/types.h>
-#include <sys/wait.h>
 #include <time.h>
+#include <sys/types.h>
+#include <sys/stat.h>
+#include <fcntl.h>
+#include <pwd.h>
+#include <grp.h>
+
+#if defined(DEBUG) && defined(HAVE_MTRACE)
+#include <mcheck.h>
+#endif
 
+#include "defines.h"
+#include "conn.h"
+#include "conf-ssl.h"
 #include "channel.h"
-#include "client.h"
 #include "conf.h"
-#include "conn.h"
-#include "defines.h"
-#include "irc.h"
+#include "lists.h"
 #include "log.h"
 #include "parse.h"
+#include "sighandlers.h"
+#include "io.h"
+#include "irc.h"
+
+#ifdef ZEROCONF
+#include "rendezvous.h"
+#endif
 
 #include "exp.h"
 #include "ngircd.h"
 
 
-LOCAL VOID Initialize_Signal_Handler( VOID );
-LOCAL VOID Signal_Handler( INT Signal );
+static void Show_Version PARAMS(( void ));
+static void Show_Help PARAMS(( void ));
+
+static void Pidfile_Create PARAMS(( pid_t pid ));
+static void Pidfile_Delete PARAMS(( void ));
+
+static void Fill_Version PARAMS(( void ));
 
-LOCAL VOID Initialize_Listen_Ports( VOID );
+static void Setup_FDStreams PARAMS(( int fd ));
 
-LOCAL VOID Show_Version( VOID );
-LOCAL VOID Show_Help( VOID );
+static bool NGIRCd_Init PARAMS(( bool ));
 
 
-GLOBAL int main( int argc, const char *argv[] )
+/**
+ * The main() function of ngIRCd.
+ * Here all starts: this function is called by the operating system loader,
+ * it is the first portion of code executed of ngIRCd.
+ * @param argc The number of arguments passed to ngIRCd on the command line.
+ * @param argv An array containing all the arguments passed to ngIRCd.
+ * @return Global exit code of ngIRCd, zero on success.
+ */
+GLOBAL int
+main( int argc, const char *argv[] )
 {
-       BOOLEAN ok, configtest = FALSE;
-       INT32 pid, n;
-       INT i;
-
-       NGIRCd_Restart = FALSE;
-       NGIRCd_Quit = FALSE;
-       NGIRCd_NoDaemon = FALSE;
-       NGIRCd_Passive = FALSE;
+       bool ok, configtest = false;
+       bool NGIRCd_NoDaemon = false;
+       int i;
+       size_t n;
+
+#if defined(DEBUG) && defined(HAVE_MTRACE)
+       /* enable GNU libc memory tracing when running in debug mode
+        * and functionality available */
+       mtrace();
+#endif
+
+       umask( 0077 );
+
+       NGIRCd_SignalQuit = NGIRCd_SignalRestart = false;
+       NGIRCd_Passive = false;
 #ifdef DEBUG
-       NGIRCd_Debug = FALSE;
+       NGIRCd_Debug = false;
 #endif
 #ifdef SNIFFER
-       NGIRCd_Sniffer = FALSE;
+       NGIRCd_Sniffer = false;
 #endif
-       strcpy( NGIRCd_ConfFile, CONFIG_FILE );
+       strlcpy( NGIRCd_ConfFile, SYSCONFDIR, sizeof( NGIRCd_ConfFile ));
+       strlcat( NGIRCd_ConfFile, CONFIG_FILE, sizeof( NGIRCd_ConfFile ));
+
+       Fill_Version( );
 
-       /* Kommandozeile parsen */
+       /* parse conmmand line */
        for( i = 1; i < argc; i++ )
        {
-               ok = FALSE;
+               ok = false;
                if(( argv[i][0] == '-' ) && ( argv[i][1] == '-' ))
                {
-                       /* Lange Option */
-
+                       /* long option */
                        if( strcmp( argv[i], "--config" ) == 0 )
                        {
                                if( i + 1 < argc )
                                {
-                                       /* Ok, danach kommt noch ein Parameter */
-                                       strncpy( NGIRCd_ConfFile, argv[i + 1], FNAME_LEN - 1 );
-                                       NGIRCd_ConfFile[FNAME_LEN - 1] = '\0';
+                                       /* Ok, there's an parameter left */
+                                       strlcpy( NGIRCd_ConfFile, argv[i + 1], sizeof( NGIRCd_ConfFile ));
 
-                                       /* zum uebernaechsten Parameter */
-                                       i++; ok = TRUE;
+                                       /* next parameter */
+                                       i++; ok = true;
                                }
                        }
                        if( strcmp( argv[i], "--configtest" ) == 0 )
                        {
-                               configtest = TRUE;
-                               ok = TRUE;
+                               configtest = true;
+                               ok = true;
                        }
 #ifdef DEBUG
                        if( strcmp( argv[i], "--debug" ) == 0 )
                        {
-                               NGIRCd_Debug = TRUE;
-                               ok = TRUE;
+                               NGIRCd_Debug = true;
+                               ok = true;
                        }
 #endif
                        if( strcmp( argv[i], "--help" ) == 0 )
@@ -109,19 +145,19 @@ GLOBAL int main( int argc, const char *argv[] )
                        }
                        if( strcmp( argv[i], "--nodaemon" ) == 0 )
                        {
-                               NGIRCd_NoDaemon = TRUE;
-                               ok = TRUE;
+                               NGIRCd_NoDaemon = true;
+                               ok = true;
                        }
                        if( strcmp( argv[i], "--passive" ) == 0 )
                        {
-                               NGIRCd_Passive = TRUE;
-                               ok = TRUE;
+                               NGIRCd_Passive = true;
+                               ok = true;
                        }
 #ifdef SNIFFER
                        if( strcmp( argv[i], "--sniffer" ) == 0 )
                        {
-                               NGIRCd_Sniffer = TRUE;
-                               ok = TRUE;
+                               NGIRCd_Sniffer = true;
+                               ok = true;
                        }
 #endif
                        if( strcmp( argv[i], "--version" ) == 0 )
@@ -132,53 +168,62 @@ GLOBAL int main( int argc, const char *argv[] )
                }
                else if(( argv[i][0] == '-' ) && ( argv[i][1] != '-' ))
                {
-                       /* Kurze Option */
-                       
-                       for( n = 1; n < (INT32)strlen( argv[i] ); n++ )
+                       /* short option */
+                       for( n = 1; n < strlen( argv[i] ); n++ )
                        {
-                               ok = FALSE;
+                               ok = false;
 #ifdef DEBUG
-                               if( argv[i][n] == 'd' )
-                               {
-                                       NGIRCd_Debug = TRUE;
-                                       ok = TRUE;
+                               if (argv[i][n] == 'd') {
+                                       NGIRCd_Debug = true;
+                                       ok = true;
                                }
 #endif
-                               if( argv[i][n] == 'f' )
-                               {
+                               if (argv[i][n] == 'f') {
                                        if(( ! argv[i][n + 1] ) && ( i + 1 < argc ))
                                        {
-                                               /* Ok, danach kommt ein Leerzeichen */
-                                               strncpy( NGIRCd_ConfFile, argv[i + 1], FNAME_LEN - 1 );
-                                               NGIRCd_ConfFile[FNAME_LEN - 1] = '\0';
+                                               /* Ok, next character is a blank */
+                                               strlcpy( NGIRCd_ConfFile, argv[i + 1], sizeof( NGIRCd_ConfFile ));
 
-                                               /* zum uebernaechsten Parameter */
-                                               i++; n = strlen( argv[i] );
-                                               ok = TRUE;
+                                               /* go to the following parameter */
+                                               i++;
+                                               n = strlen( argv[i] );
+                                               ok = true;
                                        }
                                }
-                               if( argv[i][n] == 'n' )
-                               {
-                                       NGIRCd_NoDaemon = TRUE;
-                                       ok = TRUE;
+
+                               if (argv[i][n] == 'h') {
+                                       Show_Version();
+                                       puts(""); Show_Help(); puts("");
+                                       exit(1);
                                }
-                               if( argv[i][n] == 'p' )
-                               {
-                                       NGIRCd_Passive = TRUE;
-                                       ok = TRUE;
+
+                               if (argv[i][n] == 'n') {
+                                       NGIRCd_NoDaemon = true;
+                                       ok = true;
+                               }
+                               if (argv[i][n] == 'p') {
+                                       NGIRCd_Passive = true;
+                                       ok = true;
                                }
 #ifdef SNIFFER
-                               if( argv[i][n] == 's' )
-                               {
-                                       NGIRCd_Sniffer = TRUE;
-                                       ok = TRUE;
+                               if (argv[i][n] == 's') {
+                                       NGIRCd_Sniffer = true;
+                                       ok = true;
                                }
 #endif
+                               if (argv[i][n] == 't') {
+                                       configtest = true;
+                                       ok = true;
+                               }
 
-                               if( ! ok )
-                               {
-                                       printf( PACKAGE": invalid option \"-%c\"!\n", argv[i][n] );
-                                       puts( "Try \""PACKAGE" --help\" for more information." );
+                               if (argv[i][n] == 'V') {
+                                       Show_Version();
+                                       exit(1);
+                               }
+
+                               if (! ok) {
+                                       printf( "%s: invalid option \"-%c\"!\n", PACKAGE_NAME, argv[i][n] );
+                                       printf( "Try \"%s --help\" for more information.\n", PACKAGE_NAME );
                                        exit( 1 );
                                }
                        }
@@ -186,286 +231,493 @@ GLOBAL int main( int argc, const char *argv[] )
                }
                if( ! ok )
                {
-                       printf( PACKAGE": invalid option \"%s\"!\n", argv[i] );
-                       puts( "Try \""PACKAGE" --help\" for more information." );
+                       printf( "%s: invalid option \"%s\"!\n", PACKAGE_NAME, argv[i] );
+                       printf( "Try \"%s --help\" for more information.\n", PACKAGE_NAME );
                        exit( 1 );
                }
        }
 
-       /* Debug-Level (fuer IRC-Befehl "VERSION") ermitteln */
-       strcpy( NGIRCd_DebugLevel, "" );
+       /* Debug-Level (for IRCs "VERSION" command) */
+       NGIRCd_DebugLevel[0] = '\0';
 #ifdef DEBUG
        if( NGIRCd_Debug ) strcpy( NGIRCd_DebugLevel, "1" );
 #endif
 #ifdef SNIFFER
        if( NGIRCd_Sniffer )
        {
-               NGIRCd_Debug = TRUE;
+               NGIRCd_Debug = true;
                strcpy( NGIRCd_DebugLevel, "2" );
        }
 #endif
 
-       /* Soll nur die Konfigurations ueberprueft und ausgegeben werden? */
        if( configtest )
        {
                Show_Version( ); puts( "" );
                exit( Conf_Test( ));
        }
        
-       while( ! NGIRCd_Quit )
+       while( ! NGIRCd_SignalQuit )
        {
-               /* In der Regel wird ein Sub-Prozess ge-fork()'t, der
-                * nicht mehr mit dem Terminal verbunden ist. Mit der
-                * Option "--nodaemon" kann dies (z.B. zum Debuggen)
-                * verhindert werden. */
-               if( ! NGIRCd_NoDaemon )
-               {
-                       /* Daemon im Hintergrund erzeugen */
-                       pid = (INT32)fork( );
-                       if( pid > 0 )
-                       {
-                               /* "alter" Prozess */
-                               exit( 0 );
-                       }
-                       if( pid < 0 )
-                       {
-                               /* Fehler */
-                               printf( PACKAGE": Can't fork: %s!\nFatal error, exiting now ...", strerror( errno ));
-                               exit( 1 );
-                       }
-
-                       /* Child-Prozess initialisieren */
-                       (VOID)setsid( );
-                       chdir( "/" );
-               }
-       
-               /* Globale Variablen initialisieren */
+               /* Initialize global variables */
                NGIRCd_Start = time( NULL );
-               (VOID)strftime( NGIRCd_StartStr, 64, "%a %b %d %Y at %H:%M:%S (%Z)", localtime( &NGIRCd_Start ));
-               NGIRCd_Restart = FALSE;
-               NGIRCd_Quit = FALSE;
+               (void)strftime( NGIRCd_StartStr, 64, "%a %b %d %Y at %H:%M:%S (%Z)", localtime( &NGIRCd_Start ));
 
-               /* Module initialisieren */
-               Log_Init( );
+               NGIRCd_SignalRestart = false;
+               NGIRCd_SignalQuit = false;
+
+               /* Initialize modules, part I */
+               Log_Init( ! NGIRCd_NoDaemon );
                Conf_Init( );
+
+               /* Initialize the "main program": chroot environment, user and
+                * group ID, ... */
+               if (!NGIRCd_Init(NGIRCd_NoDaemon)) {
+                       Log(LOG_ALERT, "Fatal: Initialization failed");
+                       exit(1);
+               }
+
+               /* Initialize modules, part II: these functions are eventually
+                * called with already dropped privileges ... */
                Channel_Init( );
                Client_Init( );
+#ifdef ZEROCONF
+               Rendezvous_Init( );
+#endif
                Conn_Init( );
 
-               /* Wenn als root ausgefuehrt und eine andere UID
-                * konfiguriert ist, jetzt zu dieser wechseln */
-               if( getuid( ) == 0 )
-               {
-                       if( Conf_GID != 0 )
-                       {
-                               /* Neue Group-ID setzen */
-                               if( setgid( Conf_GID ) != 0 ) Log( LOG_ERR, "Can't change Group-ID to %u: %s", Conf_GID, strerror( errno ));
-                       }
-                       if( Conf_UID != 0 )
-                       {
-                               /* Neue User-ID setzen */
-                               if( setuid( Conf_UID ) != 0 ) Log( LOG_ERR, "Can't change User-ID to %u: %s", Conf_UID, strerror( errno ));
-                       }
+               if (!io_library_init(CONNECTION_POOL)) {
+                       Log(LOG_ALERT, "Fatal: Cannot initialize IO routines: %s", strerror(errno));
+                       exit(1);
                }
-               Log( LOG_INFO, "Running as user %ld, group %ld.", (INT32)getuid( ), (INT32)getgid( ));
 
-               Log_InitErrorfile( );
+               if (!Signals_Init()) {
+                       Log(LOG_ALERT, "Fatal: Could not set up signal handlers: %s", strerror(errno));
+                       exit(1);
+               }
 
-               /* Signal-Handler initialisieren */
-               Initialize_Signal_Handler( );
+               /*
+                * create protocol and server identification.
+                * The syntax used by ngIRCd in PASS commands and the extended flags
+                * are described in doc/Protocol.txt
+                */
+#ifdef IRCPLUS
+               snprintf( NGIRCd_ProtoID, sizeof NGIRCd_ProtoID, "%s%s %s|%s:%s", PROTOVER, PROTOIRCPLUS, PACKAGE_NAME, PACKAGE_VERSION, IRCPLUSFLAGS );
+#ifdef ZLIB
+               strcat( NGIRCd_ProtoID, "Z" );
+#endif
+               if( Conf_OperCanMode ) strcat( NGIRCd_ProtoID, "o" );
+#else
+               snprintf( NGIRCd_ProtoID, sizeof NGIRCd_ProtoID, "%s%s %s|%s", PROTOVER, PROTOIRC, PACKAGE_NAME, PACKAGE_VERSION );
+#endif
+               strlcat( NGIRCd_ProtoID, " P", sizeof NGIRCd_ProtoID );
+#ifdef ZLIB
+               strlcat( NGIRCd_ProtoID, "Z", sizeof NGIRCd_ProtoID );
+#endif
+               LogDebug("Protocol and server ID is \"%s\".", NGIRCd_ProtoID);
 
-               /* Listen-Ports initialisieren */
-               Initialize_Listen_Ports( );
+               Channel_InitPredefined( );
 
-               /* Hauptschleife */
-               while( TRUE )
+               if( Conn_InitListeners( ) < 1 )
                {
-                       if( NGIRCd_Quit || NGIRCd_Restart ) break;
-                       Conn_Handler( 5 );
+                       Log( LOG_ALERT, "Server isn't listening on a single port!" );
+                       Log( LOG_ALERT, "%s exiting due to fatal errors!", PACKAGE_NAME );
+                       Pidfile_Delete( );
+                       exit( 1 );
                }
+               
+               /* Hauptschleife */
+               Conn_Handler( );
 
                /* Alles abmelden */
                Conn_Exit( );
+#ifdef ZEROCONF
+               Rendezvous_Exit( );
+#endif
                Client_Exit( );
                Channel_Exit( );
-               Conf_Exit( );
                Log_Exit( );
        }
+       Pidfile_Delete( );
 
        return 0;
 } /* main */
 
 
-GLOBAL CHAR *NGIRCd_Version( VOID )
-{
-       STATIC CHAR version[126];
-
-       sprintf( version, PACKAGE" version "VERSION"-%s", NGIRCd_VersionAddition( ));
-       return version;
-} /* NGIRCd_Version */
-
-
-GLOBAL CHAR *NGIRCd_VersionAddition( VOID )
+/**
+ * Generate ngIRCd "version string".
+ * This string is generated once and then stored in NGIRCd_Version for
+ * further usage, for example by the IRC command VERSION and the --version
+ * command line switch.
+ */
+static void
+Fill_Version( void )
 {
-       STATIC CHAR txt[64];
-
-       strcpy( txt, "" );
+       NGIRCd_VersionAddition[0] = '\0';
 
-#ifdef USE_SYSLOG
-       if( txt[0] ) strcat( txt, "+" );
-       strcat( txt, "SYSLOG" );
+#ifdef SYSLOG
+       strlcpy( NGIRCd_VersionAddition, "SYSLOG", sizeof NGIRCd_VersionAddition );
 #endif
-#ifdef REGEX
-       if( txt[0] ) strcat( txt, "+" );
-       strcat( txt, "REGEX" );
+#ifdef ZLIB
+       if( NGIRCd_VersionAddition[0] )
+               strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition );
+       strlcat( NGIRCd_VersionAddition, "ZLIB", sizeof NGIRCd_VersionAddition );
 #endif
-#ifdef STRICT_RFC
-       if( txt[0] ) strcat( txt, "+" );
-       strcat( txt, "RFC" );
+#ifdef SSL_SUPPORT
+       if ( NGIRCd_VersionAddition[0] ) strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition );
+       strlcat( NGIRCd_VersionAddition, "SSL", sizeof NGIRCd_VersionAddition );
+#endif
+#ifdef TCPWRAP
+       if( NGIRCd_VersionAddition[0] )
+                       strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition );
+       strlcat( NGIRCd_VersionAddition, "TCPWRAP", sizeof NGIRCd_VersionAddition );
+#endif
+#ifdef ZEROCONF
+       if( NGIRCd_VersionAddition[0] )
+               strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition );
+       strlcat( NGIRCd_VersionAddition, "ZEROCONF", sizeof NGIRCd_VersionAddition );
+#endif
+#ifdef IDENTAUTH
+       if( NGIRCd_VersionAddition[0] )
+               strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition );
+       strlcat( NGIRCd_VersionAddition, "IDENT", sizeof NGIRCd_VersionAddition );
+#endif
+#ifdef PAM
+       if (NGIRCd_VersionAddition[0])
+               strlcat(NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition);
+       strlcat(NGIRCd_VersionAddition, "PAM", sizeof NGIRCd_VersionAddition);
 #endif
 #ifdef DEBUG
-       if( txt[0] ) strcat( txt, "+" );
-       strcat( txt, "DEBUG" );
+       if( NGIRCd_VersionAddition[0] )
+               strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition );
+       strlcat( NGIRCd_VersionAddition, "DEBUG", sizeof NGIRCd_VersionAddition );
 #endif
 #ifdef SNIFFER
-       if( txt[0] ) strcat( txt, "+" );
-       strcat( txt, "SNIFFER" );
+       if( NGIRCd_VersionAddition[0] )
+               strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition );
+       strlcat( NGIRCd_VersionAddition, "SNIFFER", sizeof NGIRCd_VersionAddition );
+#endif
+#ifdef STRICT_RFC
+       if( NGIRCd_VersionAddition[0] )
+               strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition );
+       strlcat( NGIRCd_VersionAddition, "RFC", sizeof NGIRCd_VersionAddition );
+#endif
+#ifdef IRCPLUS
+       if( NGIRCd_VersionAddition[0] )
+               strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition );
+       strlcat( NGIRCd_VersionAddition, "IRCPLUS", sizeof NGIRCd_VersionAddition );
+#endif
+#ifdef WANT_IPV6
+       if (NGIRCd_VersionAddition[0])
+               strlcat(NGIRCd_VersionAddition, "+", sizeof(NGIRCd_VersionAddition));
+       strlcat(NGIRCd_VersionAddition, "IPv6", sizeof(NGIRCd_VersionAddition));
 #endif
+       if( NGIRCd_VersionAddition[0] )
+               strlcat( NGIRCd_VersionAddition, "-", sizeof( NGIRCd_VersionAddition ));
 
-       if( txt[0] ) strcat( txt, "-" );
-       strcat( txt, TARGET_CPU"/"TARGET_VENDOR"/"TARGET_OS );
+       strlcat( NGIRCd_VersionAddition, TARGET_CPU, sizeof( NGIRCd_VersionAddition ));
+       strlcat( NGIRCd_VersionAddition, "/", sizeof( NGIRCd_VersionAddition ));
+       strlcat( NGIRCd_VersionAddition, TARGET_VENDOR, sizeof( NGIRCd_VersionAddition ));
+       strlcat( NGIRCd_VersionAddition, "/", sizeof( NGIRCd_VersionAddition ));
+       strlcat( NGIRCd_VersionAddition, TARGET_OS, sizeof( NGIRCd_VersionAddition ));
 
-       return txt;
-} /* NGIRCd_VersionAddition */
+       snprintf(NGIRCd_Version, sizeof NGIRCd_Version, "%s %s-%s",
+                PACKAGE_NAME, PACKAGE_VERSION, NGIRCd_VersionAddition);
+       } /* Fill_Version */
 
 
-LOCAL VOID Initialize_Signal_Handler( VOID )
+/**
+ * Display copyright and version information of ngIRCd on the console.
+ */
+static void
+Show_Version( void )
 {
-       /* Signal-Handler initialisieren: einige Signale
-        * werden ignoriert, andere speziell behandelt. */
-
-#ifdef HAVE_SIGACTION
-       /* sigaction() ist vorhanden */
+       puts( NGIRCd_Version );
+       puts( "Copyright (c)2001-2011 Alexander Barton (<alex@barton.de>) and Contributors." );
+       puts( "Homepage: <http://ngircd.barton.de/>\n" );
+       puts( "This is free software; see the source for copying conditions. There is NO" );
+       puts( "warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE." );
+} /* Show_Version */
 
-       struct sigaction saction;
 
-       /* Signal-Struktur initialisieren */
-       memset( &saction, 0, sizeof( saction ));
-       saction.sa_handler = Signal_Handler;
-#ifdef SA_RESTART
-       saction.sa_flags |= SA_RESTART;
+/**
+ * Display a short help text on the console.
+ * This help depends on the configuration of the executable and only shows
+ * options that are actually enabled.
+ */
+static void
+Show_Help( void )
+{
+#ifdef DEBUG
+       puts( "  -d, --debug        log extra debug messages" );
 #endif
-#ifdef SA_NOCLDWAIT
-       saction.sa_flags |= SA_NOCLDWAIT;
+       puts( "  -f, --config <f>   use file <f> as configuration file" );
+       puts( "  -n, --nodaemon     don't fork and don't detach from controlling terminal" );
+       puts( "  -p, --passive      disable automatic connections to other servers" );
+#ifdef SNIFFER
+       puts( "  -s, --sniffer      enable network sniffer and display all IRC traffic" );
 #endif
+       puts( "  -t, --configtest   read, validate and display configuration; then exit" );
+       puts( "  -V, --version      output version information and exit" );
+       puts( "  -h, --help         display this help and exit" );
+} /* Show_Help */
 
-       /* Signal-Handler einhaengen */
-       sigaction( SIGINT, &saction, NULL );
-       sigaction( SIGQUIT, &saction, NULL );
-       sigaction( SIGTERM, &saction, NULL);
-       sigaction( SIGHUP, &saction, NULL);
-       sigaction( SIGCHLD, &saction, NULL);
 
-       /* einige Signale ignorieren */
-       saction.sa_handler = SIG_IGN;
-       sigaction( SIGPIPE, &saction, NULL );
-#else
-       /* kein sigaction() vorhanden */
+/**
+ * Delete the file containing the process ID (PID).
+ */
+static void
+Pidfile_Delete( void )
+{
+       /* Pidfile configured? */
+       if( ! Conf_PidFile[0] ) return;
+
+#ifdef DEBUG
+       Log( LOG_DEBUG, "Removing PID file (%s) ...", Conf_PidFile );
+#endif
+
+       if( unlink( Conf_PidFile ))
+               Log( LOG_ERR, "Error unlinking PID file (%s): %s", Conf_PidFile, strerror( errno ));
+} /* Pidfile_Delete */
 
-       /* Signal-Handler einhaengen */
-       signal( SIGINT, Signal_Handler );
-       signal( SIGQUIT, Signal_Handler );
-       signal( SIGTERM, Signal_Handler );
-       signal( SIGHUP, Signal_Handler );
-       signal( SIGCHLD, Signal_Handler );
 
-       /* einige Signale ignorieren */
-       signal( SIGPIPE, SIG_IGN );
+/**
+ * Create the file containing the process ID of ngIRCd ("PID file").
+ * @param pid The process ID to be stored in this file.
+ */
+static void
+Pidfile_Create(pid_t pid)
+{
+       int pidfd;
+       char pidbuf[64];
+       int len;
+
+       /* Pidfile configured? */
+       if( ! Conf_PidFile[0] ) return;
+
+#ifdef DEBUG
+       Log( LOG_DEBUG, "Creating PID file (%s) ...", Conf_PidFile );
 #endif
-} /* Initialize_Signal_Handler */
 
+       pidfd = open( Conf_PidFile, O_RDWR|O_CREAT|O_EXCL, S_IRUSR|S_IWUSR|S_IRGRP|S_IROTH);
+       if ( pidfd < 0 ) {
+               Log( LOG_ERR, "Error writing PID file (%s): %s", Conf_PidFile, strerror( errno ));
+               return;
+       }
+
+       len = snprintf(pidbuf, sizeof pidbuf, "%ld\n", (long)pid);
+       if (len < 0 || len >= (int)sizeof pidbuf) {
+               Log( LOG_ERR, "Error converting pid");
+               return;
+       }
+       
+       if (write(pidfd, pidbuf, (size_t)len) != (ssize_t)len)
+               Log( LOG_ERR, "Can't write PID file (%s): %s", Conf_PidFile, strerror( errno ));
+
+       if( close(pidfd) != 0 )
+               Log( LOG_ERR, "Error closing PID file (%s): %s", Conf_PidFile, strerror( errno ));
+} /* Pidfile_Create */
 
-LOCAL VOID Signal_Handler( INT Signal )
+
+/**
+ * Redirect stdin, stdout and stderr to apropriate file handles.
+ */
+static void
+Setup_FDStreams(int fd)
 {
-       /* Signal-Handler. Dieser wird aufgerufen, wenn eines der Signale eintrifft,
-        * fuer das wir uns registriert haben (vgl. Initialize_Signal_Handler). Die
-        * Nummer des eingetroffenen Signals wird der Funktion uebergeben. */
+       if (fd < 0)
+               return;
 
-       switch( Signal )
-       {
-               case SIGTERM:
-               case SIGINT:
-               case SIGQUIT:
-                       /* wir soll(t)en uns wohl beenden ... */
-                       if( Signal == SIGTERM ) Log( LOG_WARNING, "Got TERM signal, terminating now ..." );
-                       else if( Signal == SIGINT ) Log( LOG_WARNING, "Got INT signal, terminating now ..." );
-                       else if( Signal == SIGQUIT ) Log( LOG_WARNING, "Got QUIT signal, terminating now ..." );
-                       NGIRCd_Quit = TRUE;
-                       break;
-               case SIGHUP:
-                       /* neu starten */
-                       Log( LOG_WARNING, "Got HUP signal, restarting now ..." );
-                       NGIRCd_Restart = TRUE;
-                       break;
-               case SIGCHLD:
-                       /* Child-Prozess wurde beendet. Zombies vermeiden: */
-                       while( waitpid( -1, NULL, WNOHANG ) > 0);
-                       break;
-               default:
-                       /* unbekanntes bzw. unbehandeltes Signal */
-                       Log( LOG_NOTICE, "Got signal %d! Ignored.", Signal );
+       fflush(stdout);
+       fflush(stderr);
+
+       /* Create new stdin(0), stdout(1) and stderr(2) descriptors */
+       dup2( fd, 0 ); dup2( fd, 1 ); dup2( fd, 2 );
+} /* Setup_FDStreams */
+
+
+static bool
+NGIRCd_getNobodyID(uid_t *uid, gid_t *gid )
+{
+       struct passwd *pwd;
+
+#ifdef __CYGWIN__
+       /* Cygwin kludge.
+        * It can return EINVAL instead of EPERM
+        * so, if we are already unprivileged,
+        * use id of current user.
+        */
+       if (geteuid() && getuid()) {
+               *uid = getuid();
+               *gid = getgid();
+               return true;
        }
-} /* Signal_Handler */
+#endif
+
+       pwd = getpwnam("nobody");
+       if (!pwd) return false;
+
+       if ( !pwd->pw_uid || !pwd->pw_gid)
+               return false;
 
+       *uid = pwd->pw_uid;     
+       *gid = pwd->pw_gid;
+       endpwent();
 
-LOCAL VOID Initialize_Listen_Ports( VOID )
+       return true;    
+}
+
+
+static bool
+NGIRCd_Init( bool NGIRCd_NoDaemon ) 
 {
-       /* Ports, auf denen der Server Verbindungen entgegennehmen
-        * soll, initialisieren */
-       
-       UINT created, i;
+       static bool initialized;
+       bool chrooted = false;
+       struct passwd *pwd;
+       struct group *grp;
+       int real_errno, fd = -1;
+       pid_t pid;
+
+       if (initialized)
+               return true;
+
+       if (!NGIRCd_NoDaemon) {
+               /* open /dev/null before chroot() */
+               fd = open( "/dev/null", O_RDWR);
+               if (fd < 0)
+                       Log(LOG_WARNING, "Could not open /dev/null: %s", strerror(errno));
+       }
 
-       created = 0;
-       for( i = 0; i < Conf_ListenPorts_Count; i++ )
-       {
-               if( Conn_NewListener( Conf_ListenPorts[i] )) created++;
-               else Log( LOG_ERR, "Can't listen on port %u!", Conf_ListenPorts[i] );
+       if (!ConnSSL_InitLibrary())
+               Log(LOG_WARNING,
+                   "Warning: Error during SSL initialization, continuing ...");
+
+       if( Conf_Chroot[0] ) {
+               if( chdir( Conf_Chroot ) != 0 ) {
+                       Log( LOG_ERR, "Can't chdir() in ChrootDir (%s): %s", Conf_Chroot, strerror( errno ));
+                       goto out;
+               }
+
+               if( chroot( Conf_Chroot ) != 0 ) {
+                       if (errno != EPERM) {
+                               Log( LOG_ERR, "Can't change root directory to \"%s\": %s",
+                                                               Conf_Chroot, strerror( errno ));
+                               goto out;
+                       }
+               } else {
+                       chrooted = true;
+                       Log( LOG_INFO, "Changed root and working directory to \"%s\".", Conf_Chroot );
+               }
        }
 
-       if( created < 1 )
-       {
-               Log( LOG_ALERT, "Server isn't listening on a single port!" );
-               Log( LOG_ALERT, PACKAGE" exiting due to fatal errors!" );
-               exit( 1 );
+       if (Conf_UID == 0) {
+               Log(LOG_INFO, "ServerUID must not be 0, using \"nobody\" instead.", Conf_UID);
+
+               if (! NGIRCd_getNobodyID(&Conf_UID, &Conf_GID)) {
+                       Log(LOG_WARNING, "Could not get user/group ID of user \"nobody\": %s",
+                                       errno ? strerror(errno) : "not found" );
+                       goto out;
+               }
        }
-} /* Initialize_Listen_Ports */
 
+       if (getgid() != Conf_GID) {
+               /* Change group ID */
+               if (setgid(Conf_GID) != 0) {
+                       real_errno = errno;
+                       Log( LOG_ERR, "Can't change group ID to %u: %s", Conf_GID, strerror( errno ));
+                       if (real_errno != EPERM) 
+                               goto out;
+               }
+       }
 
-LOCAL VOID Show_Version( VOID )
-{
-       puts( NGIRCd_Version( ));
-       puts( "Copyright (c)2001,2002 by Alexander Barton (<alex@barton.de>)." );
-       puts( "Homepage: <http://arthur.ath.cx/~alex/ngircd/>\n" );
-       puts( "This is free software; see the source for copying conditions. There is NO" );
-       puts( "warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE." );
-} /* Show_Version */
+       if (getuid() != Conf_UID) {
+               /* Change user ID */
+               if (setuid(Conf_UID) != 0) {
+                       real_errno = errno;
+                       Log(LOG_ERR, "Can't change user ID to %u: %s", Conf_UID, strerror(errno));
+                       if (real_errno != EPERM) 
+                               goto out;
+               }
+       }
 
+       initialized = true;
 
-LOCAL VOID Show_Help( VOID )
-{
-#ifdef DEBUG
-       puts( "  -d, --debug        log extra debug messages" );
-#endif
-       puts( "  -f, --config <f>   use file <f> as configuration file" );
-        puts( "  -n, --nodaemon     don't fork and don't detatch from controlling terminal" );
-        puts( "  -p, --passive      disable automatic connections to other servers" );
-#ifdef SNIFFER
-       puts( "  -s, --sniffer      enable network sniffer and display all IRC traffic" );
+       /* Normally a child process is forked which isn't any longer
+        * connected to ther controlling terminal. Use "--nodaemon"
+        * to disable this "daemon mode" (useful for debugging). */
+       if ( ! NGIRCd_NoDaemon ) {
+               pid = fork( );
+               if( pid > 0 ) {
+                       /* "Old" process: exit. */
+                       exit( 0 );
+               }
+               if( pid < 0 ) {
+                       /* Error!? */
+                       fprintf( stderr, "%s: Can't fork: %s!\nFatal error, exiting now ...\n",
+                                                               PACKAGE_NAME, strerror( errno ));
+                       exit( 1 );
+               }
+
+               /* New child process */
+#ifndef NeXT
+               (void)setsid( );
+#else
+               setpgrp(0, getpid());
 #endif
-       puts( "      --configtest   read, validate and display configuration; then exit" );
-       puts( "      --version      output version information and exit" );
-       puts( "      --help         display this help and exit" );
-} /* Show_Help */
+               if (chdir( "/" ) != 0)
+                       Log(LOG_ERR, "Can't change directory to '/': %s",
+                                    strerror(errno));
+
+               /* Detach stdin, stdout and stderr */
+               Setup_FDStreams(fd);
+               if (fd > 2) {
+                       close(fd);
+                       fd = -1;
+               }
+       }
+       pid = getpid();
+
+       Pidfile_Create( pid );
+
+       /* Check UID/GID we are running as, can be different from values
+        * configured (e. g. if we were already started with a UID>0. */
+       Conf_UID = getuid();
+       Conf_GID = getgid();
+
+       pwd = getpwuid( Conf_UID );
+       grp = getgrgid( Conf_GID );
+
+       Log(LOG_INFO, "Running as user %s(%ld), group %s(%ld), with PID %ld.",
+                               pwd ? pwd->pw_name : "unknown", (long)Conf_UID,
+                               grp ? grp->gr_name : "unknown", (long)Conf_GID, (long)pid);
+
+       if (chrooted) {
+               Log(LOG_INFO, "Running with root directory \"%s\".",
+                   Conf_Chroot );
+               return true;
+       } else
+               Log(LOG_INFO, "Not running with changed root directory.");
+
+       /* Change working directory to home directory of the user
+        * we are running as (only when running in daemon mode and not in chroot) */
+
+       if (pwd) {
+               if (!NGIRCd_NoDaemon ) {
+                       if( chdir( pwd->pw_dir ) == 0 ) 
+                               Log( LOG_DEBUG, "Changed working directory to \"%s\" ...", pwd->pw_dir );
+                       else 
+                               Log( LOG_INFO, "Notice: Can't change working directory to \"%s\": %s",
+                                                               pwd->pw_dir, strerror( errno ));
+               }
+       } else {
+               Log( LOG_ERR, "Can't get user informaton for UID %d!?", Conf_UID );
+       }
+
+       return true;
+ out:
+       if (fd > 2)
+               close(fd);
+       return false;
+}
 
 
 /* -eof- */