X-Git-Url: https://arthur.barton.de/cgi-bin/gitweb.cgi?p=ngircd-alex.git;a=blobdiff_plain;f=src%2Fngircd%2Fngircd.c;h=63fc64bf2ef2ac6a34ff847bb9f59ad7d1b036d8;hp=1396d9ed706f08da5e5cba9eaf1087f07e1272be;hb=6d11fb149707194e986b0d64af3d44f21e158fcc;hpb=0f3f03b51d297c427269413457f0614159ee6c01 diff --git a/src/ngircd/ngircd.c b/src/ngircd/ngircd.c index 1396d9ed..63fc64bf 100644 --- a/src/ngircd/ngircd.c +++ b/src/ngircd/ngircd.c @@ -1,20 +1,22 @@ /* * ngIRCd -- The Next Generation IRC Daemon - * Copyright (c)2001,2002 by Alexander Barton (alex@barton.de) + * Copyright (c)2001-2011 Alexander Barton (alex@barton.de) and Contributors. * * This program is free software; you can redistribute it and/or modify * it under the terms of the GNU General Public License as published by * the Free Software Foundation; either version 2 of the License, or * (at your option) any later version. * Please read the file COPYING, README and AUTHORS for more information. - * - * Main program -- main() */ #include "portab.h" -static char UNUSED id[] = "$Id: ngircd.c,v 1.64 2002/12/12 11:31:21 alex Exp $"; +/** + * @file + * The main program, including the C function main() which is called + * by the loader of the operating system. + */ #include "imp.h" #include @@ -24,89 +26,115 @@ static char UNUSED id[] = "$Id: ngircd.c,v 1.64 2002/12/12 11:31:21 alex Exp $"; #include #include #include +#include #include #include -#include -#include +#include #include #include -#include "resolve.h" +#if defined(DEBUG) && defined(HAVE_MTRACE) +#include +#endif + +#include "defines.h" #include "conn.h" -#include "client.h" +#include "conf-ssl.h" #include "channel.h" #include "conf.h" -#include "cvs-version.h" -#include "defines.h" #include "lists.h" #include "log.h" #include "parse.h" +#include "sighandlers.h" +#include "io.h" #include "irc.h" +#ifdef ZEROCONF +#include "rendezvous.h" +#endif + #include "exp.h" #include "ngircd.h" -LOCAL VOID Initialize_Signal_Handler PARAMS(( VOID )); -LOCAL VOID Signal_Handler PARAMS(( INT Signal )); +static void Show_Version PARAMS(( void )); +static void Show_Help PARAMS(( void )); -LOCAL VOID Show_Version PARAMS(( VOID )); -LOCAL VOID Show_Help PARAMS(( VOID )); +static void Pidfile_Create PARAMS(( pid_t pid )); +static void Pidfile_Delete PARAMS(( void )); +static void Fill_Version PARAMS(( void )); +static void Setup_FDStreams PARAMS(( int fd )); + +static bool NGIRCd_Init PARAMS(( bool )); + + +/** + * The main() function of ngIRCd. + * Here all starts: this function is called by the operating system loader, + * it is the first portion of code executed of ngIRCd. + * @param argc The number of arguments passed to ngIRCd on the command line. + * @param argv An array containing all the arguments passed to ngIRCd. + * @return Global exit code of ngIRCd, zero on success. + */ GLOBAL int main( int argc, const char *argv[] ) { - struct passwd *pwd; - struct group *grp; - BOOLEAN ok, configtest = FALSE; - LONG pid, n; - INT i; + bool ok, configtest = false; + bool NGIRCd_NoDaemon = false; + int i; + size_t n; + +#if defined(DEBUG) && defined(HAVE_MTRACE) + /* enable GNU libc memory tracing when running in debug mode + * and functionality available */ + mtrace(); +#endif umask( 0077 ); - NGIRCd_Restart = FALSE; - NGIRCd_Quit = FALSE; - NGIRCd_NoDaemon = FALSE; - NGIRCd_Passive = FALSE; + NGIRCd_SignalQuit = NGIRCd_SignalRestart = false; + NGIRCd_Passive = false; #ifdef DEBUG - NGIRCd_Debug = FALSE; + NGIRCd_Debug = false; #endif #ifdef SNIFFER - NGIRCd_Sniffer = FALSE; + NGIRCd_Sniffer = false; #endif - strcpy( NGIRCd_ConfFile, CONFIG_FILE ); + strlcpy( NGIRCd_ConfFile, SYSCONFDIR, sizeof( NGIRCd_ConfFile )); + strlcat( NGIRCd_ConfFile, CONFIG_FILE, sizeof( NGIRCd_ConfFile )); + + Fill_Version( ); - /* Kommandozeile parsen */ + /* parse conmmand line */ for( i = 1; i < argc; i++ ) { - ok = FALSE; + ok = false; if(( argv[i][0] == '-' ) && ( argv[i][1] == '-' )) { - /* Lange Option */ - + /* long option */ if( strcmp( argv[i], "--config" ) == 0 ) { if( i + 1 < argc ) { - /* Ok, danach kommt noch ein Parameter */ - strncpy( NGIRCd_ConfFile, argv[i + 1], FNAME_LEN - 1 ); - NGIRCd_ConfFile[FNAME_LEN - 1] = '\0'; + /* Ok, there's an parameter left */ + strlcpy( NGIRCd_ConfFile, argv[i + 1], sizeof( NGIRCd_ConfFile )); - /* zum uebernaechsten Parameter */ - i++; ok = TRUE; + /* next parameter */ + i++; ok = true; } } if( strcmp( argv[i], "--configtest" ) == 0 ) { - configtest = TRUE; - ok = TRUE; + configtest = true; + ok = true; } #ifdef DEBUG if( strcmp( argv[i], "--debug" ) == 0 ) { - NGIRCd_Debug = TRUE; - ok = TRUE; + NGIRCd_Debug = true; + ok = true; } #endif if( strcmp( argv[i], "--help" ) == 0 ) @@ -117,19 +145,19 @@ main( int argc, const char *argv[] ) } if( strcmp( argv[i], "--nodaemon" ) == 0 ) { - NGIRCd_NoDaemon = TRUE; - ok = TRUE; + NGIRCd_NoDaemon = true; + ok = true; } if( strcmp( argv[i], "--passive" ) == 0 ) { - NGIRCd_Passive = TRUE; - ok = TRUE; + NGIRCd_Passive = true; + ok = true; } #ifdef SNIFFER if( strcmp( argv[i], "--sniffer" ) == 0 ) { - NGIRCd_Sniffer = TRUE; - ok = TRUE; + NGIRCd_Sniffer = true; + ok = true; } #endif if( strcmp( argv[i], "--version" ) == 0 ) @@ -140,53 +168,62 @@ main( int argc, const char *argv[] ) } else if(( argv[i][0] == '-' ) && ( argv[i][1] != '-' )) { - /* Kurze Option */ - - for( n = 1; n < (LONG)strlen( argv[i] ); n++ ) + /* short option */ + for( n = 1; n < strlen( argv[i] ); n++ ) { - ok = FALSE; + ok = false; #ifdef DEBUG - if( argv[i][n] == 'd' ) - { - NGIRCd_Debug = TRUE; - ok = TRUE; + if (argv[i][n] == 'd') { + NGIRCd_Debug = true; + ok = true; } #endif - if( argv[i][n] == 'f' ) - { + if (argv[i][n] == 'f') { if(( ! argv[i][n + 1] ) && ( i + 1 < argc )) { - /* Ok, danach kommt ein Leerzeichen */ - strncpy( NGIRCd_ConfFile, argv[i + 1], FNAME_LEN - 1 ); - NGIRCd_ConfFile[FNAME_LEN - 1] = '\0'; + /* Ok, next character is a blank */ + strlcpy( NGIRCd_ConfFile, argv[i + 1], sizeof( NGIRCd_ConfFile )); - /* zum uebernaechsten Parameter */ - i++; n = (LONG)strlen( argv[i] ); - ok = TRUE; + /* go to the following parameter */ + i++; + n = strlen( argv[i] ); + ok = true; } } - if( argv[i][n] == 'n' ) - { - NGIRCd_NoDaemon = TRUE; - ok = TRUE; + + if (argv[i][n] == 'h') { + Show_Version(); + puts(""); Show_Help(); puts(""); + exit(1); } - if( argv[i][n] == 'p' ) - { - NGIRCd_Passive = TRUE; - ok = TRUE; + + if (argv[i][n] == 'n') { + NGIRCd_NoDaemon = true; + ok = true; + } + if (argv[i][n] == 'p') { + NGIRCd_Passive = true; + ok = true; } #ifdef SNIFFER - if( argv[i][n] == 's' ) - { - NGIRCd_Sniffer = TRUE; - ok = TRUE; + if (argv[i][n] == 's') { + NGIRCd_Sniffer = true; + ok = true; } #endif + if (argv[i][n] == 't') { + configtest = true; + ok = true; + } - if( ! ok ) - { - printf( "%s: invalid option \"-%c\"!\n", PACKAGE, argv[i][n] ); - printf( "Try \"%s --help\" for more information.\n", PACKAGE ); + if (argv[i][n] == 'V') { + Show_Version(); + exit(1); + } + + if (! ok) { + printf( "%s: invalid option \"-%c\"!\n", PACKAGE_NAME, argv[i][n] ); + printf( "Try \"%s --help\" for more information.\n", PACKAGE_NAME ); exit( 1 ); } } @@ -194,126 +231,97 @@ main( int argc, const char *argv[] ) } if( ! ok ) { - printf( "%s: invalid option \"%s\"!\n", PACKAGE, argv[i] ); - printf( "Try \"%s --help\" for more information.\n", PACKAGE ); + printf( "%s: invalid option \"%s\"!\n", PACKAGE_NAME, argv[i] ); + printf( "Try \"%s --help\" for more information.\n", PACKAGE_NAME ); exit( 1 ); } } - /* Debug-Level (fuer IRC-Befehl "VERSION") ermitteln */ - strcpy( NGIRCd_DebugLevel, "" ); + /* Debug-Level (for IRCs "VERSION" command) */ + NGIRCd_DebugLevel[0] = '\0'; #ifdef DEBUG if( NGIRCd_Debug ) strcpy( NGIRCd_DebugLevel, "1" ); #endif #ifdef SNIFFER if( NGIRCd_Sniffer ) { - NGIRCd_Debug = TRUE; + NGIRCd_Debug = true; strcpy( NGIRCd_DebugLevel, "2" ); } #endif - /* Soll nur die Konfigurations ueberprueft und ausgegeben werden? */ if( configtest ) { Show_Version( ); puts( "" ); exit( Conf_Test( )); } - while( ! NGIRCd_Quit ) + while( ! NGIRCd_SignalQuit ) { - /* In der Regel wird ein Sub-Prozess ge-fork()'t, der - * nicht mehr mit dem Terminal verbunden ist. Mit der - * Option "--nodaemon" kann dies (z.B. zum Debuggen) - * verhindert werden. */ - if( ! NGIRCd_NoDaemon ) - { - /* Daemon im Hintergrund erzeugen */ - pid = (LONG)fork( ); - if( pid > 0 ) - { - /* "alter" Prozess */ - exit( 0 ); - } - if( pid < 0 ) - { - /* Fehler */ - printf( "%s: Can't fork: %s!\nFatal error, exiting now ...\n", PACKAGE, strerror( errno )); - exit( 1 ); - } - - /* Child-Prozess initialisieren */ - (VOID)setsid( ); - chdir( "/" ); - } - - /* Globale Variablen initialisieren */ + /* Initialize global variables */ NGIRCd_Start = time( NULL ); - (VOID)strftime( NGIRCd_StartStr, 64, "%a %b %d %Y at %H:%M:%S (%Z)", localtime( &NGIRCd_Start )); - NGIRCd_Restart = FALSE; - NGIRCd_Quit = FALSE; + (void)strftime( NGIRCd_StartStr, 64, "%a %b %d %Y at %H:%M:%S (%Z)", localtime( &NGIRCd_Start )); + + NGIRCd_SignalRestart = false; + NGIRCd_SignalQuit = false; - /* Module initialisieren */ - Log_Init( ); - Resolve_Init( ); + /* Initialize modules, part I */ + Log_Init( ! NGIRCd_NoDaemon ); Conf_Init( ); - Lists_Init( ); + + /* Initialize the "main program": chroot environment, user and + * group ID, ... */ + if (!NGIRCd_Init(NGIRCd_NoDaemon)) { + Log(LOG_ALERT, "Fatal: Initialization failed"); + exit(1); + } + + /* Initialize modules, part II: these functions are eventually + * called with already dropped privileges ... */ Channel_Init( ); Client_Init( ); +#ifdef ZEROCONF + Rendezvous_Init( ); +#endif Conn_Init( ); - /* Wenn als root ausgefuehrt und eine andere UID - * konfiguriert ist, jetzt zu dieser wechseln */ - if( getuid( ) == 0 ) - { - if( Conf_GID != 0 ) - { - /* Neue Group-ID setzen */ - if( setgid( Conf_GID ) != 0 ) Log( LOG_ERR, "Can't change Group-ID to %u: %s", Conf_GID, strerror( errno )); - } - if( Conf_UID != 0 ) - { - /* Neue User-ID setzen */ - if( setuid( Conf_UID ) != 0 ) Log( LOG_ERR, "Can't change User-ID to %u: %s", Conf_UID, strerror( errno )); - } + if (!io_library_init(CONNECTION_POOL)) { + Log(LOG_ALERT, "Fatal: Cannot initialize IO routines: %s", strerror(errno)); + exit(1); } - - /* User, Gruppe und Prozess-ID des Daemon ausgeben */ - pwd = getpwuid( getuid( )); grp = getgrgid( getgid( )); - Log( LOG_INFO, "Running as user %s(%ld), group %s(%ld), with PID %ld.", pwd ? pwd->pw_name : "unknown", (LONG)getuid( ), grp ? grp->gr_name : "unknown", (LONG)getgid( ), (LONG)getpid( )); - - /* stderr in "Error-File" umlenken */ - Log_InitErrorfile( ); - /* Signal-Handler initialisieren */ - Initialize_Signal_Handler( ); + if (!Signals_Init()) { + Log(LOG_ALERT, "Fatal: Could not set up signal handlers: %s", strerror(errno)); + exit(1); + } - /* Protokoll- und Server-Identifikation erzeugen. Die vom ngIRCd - * beim PASS-Befehl verwendete Syntax sowie die erweiterten Flags - * sind in doc/Protocol.txt beschrieben. */ + /* + * create protocol and server identification. + * The syntax used by ngIRCd in PASS commands and the extended flags + * are described in doc/Protocol.txt + */ #ifdef IRCPLUS - sprintf( NGIRCd_ProtoID, "%s%s %s|%s:%s", PROTOVER, PROTOIRCPLUS, PACKAGE, VERSION, IRCPLUSFLAGS ); -#ifdef USE_ZLIB + snprintf( NGIRCd_ProtoID, sizeof NGIRCd_ProtoID, "%s%s %s|%s:%s", PROTOVER, PROTOIRCPLUS, PACKAGE_NAME, PACKAGE_VERSION, IRCPLUSFLAGS ); +#ifdef ZLIB strcat( NGIRCd_ProtoID, "Z" ); #endif if( Conf_OperCanMode ) strcat( NGIRCd_ProtoID, "o" ); #else - sprintf( NGIRCd_ProtoID, "%s%s %s|%s", PROTOVER, PROTOIRC, PACKAGE, VERSION ); + snprintf( NGIRCd_ProtoID, sizeof NGIRCd_ProtoID, "%s%s %s|%s", PROTOVER, PROTOIRC, PACKAGE_NAME, PACKAGE_VERSION ); #endif - strcat( NGIRCd_ProtoID, " P" ); -#ifdef USE_ZLIB - strcat( NGIRCd_ProtoID, "Z" ); + strlcat( NGIRCd_ProtoID, " P", sizeof NGIRCd_ProtoID ); +#ifdef ZLIB + strlcat( NGIRCd_ProtoID, "Z", sizeof NGIRCd_ProtoID ); #endif - Log( LOG_DEBUG, "Protocol and server ID is \"%s\".", NGIRCd_ProtoID ); + LogDebug("Protocol and server ID is \"%s\".", NGIRCd_ProtoID); - /* Vordefinierte Channels anlegen */ Channel_InitPredefined( ); - /* Listen-Ports initialisieren */ if( Conn_InitListeners( ) < 1 ) { Log( LOG_ALERT, "Server isn't listening on a single port!" ); - Log( LOG_ALERT, "%s exiting due to fatal errors!", PACKAGE ); + Log( LOG_ALERT, "%s exiting due to fatal errors!", PACKAGE_NAME ); + Pidfile_Delete( ); exit( 1 ); } @@ -322,213 +330,394 @@ main( int argc, const char *argv[] ) /* Alles abmelden */ Conn_Exit( ); +#ifdef ZEROCONF + Rendezvous_Exit( ); +#endif Client_Exit( ); Channel_Exit( ); - Lists_Exit( ); Log_Exit( ); } + Pidfile_Delete( ); return 0; } /* main */ -GLOBAL CHAR * -NGIRCd_Version( VOID ) -{ - STATIC CHAR version[126]; - -#ifdef CVSDATE - sprintf( version, "%s %s(%s)-%s", PACKAGE, VERSION, CVSDATE, NGIRCd_VersionAddition( )); -#else - sprintf( version, "%s %s-%s", PACKAGE, VERSION, NGIRCd_VersionAddition( )); -#endif - return version; -} /* NGIRCd_Version */ - - -GLOBAL CHAR * -NGIRCd_VersionAddition( VOID ) +/** + * Generate ngIRCd "version string". + * This string is generated once and then stored in NGIRCd_Version for + * further usage, for example by the IRC command VERSION and the --version + * command line switch. + */ +static void +Fill_Version( void ) { - STATIC CHAR txt[64]; - - strcpy( txt, "" ); + NGIRCd_VersionAddition[0] = '\0'; -#ifdef USE_SYSLOG - if( txt[0] ) strcat( txt, "+" ); - strcat( txt, "SYSLOG" ); +#ifdef SYSLOG + strlcpy( NGIRCd_VersionAddition, "SYSLOG", sizeof NGIRCd_VersionAddition ); +#endif +#ifdef ZLIB + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + strlcat( NGIRCd_VersionAddition, "ZLIB", sizeof NGIRCd_VersionAddition ); +#endif +#ifdef SSL_SUPPORT + if ( NGIRCd_VersionAddition[0] ) strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + strlcat( NGIRCd_VersionAddition, "SSL", sizeof NGIRCd_VersionAddition ); +#endif +#ifdef TCPWRAP + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + strlcat( NGIRCd_VersionAddition, "TCPWRAP", sizeof NGIRCd_VersionAddition ); +#endif +#ifdef ZEROCONF + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + strlcat( NGIRCd_VersionAddition, "ZEROCONF", sizeof NGIRCd_VersionAddition ); +#endif +#ifdef IDENTAUTH + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + strlcat( NGIRCd_VersionAddition, "IDENT", sizeof NGIRCd_VersionAddition ); #endif -#ifdef USE_ZLIB - if( txt[0] ) strcat( txt, "+" ); - strcat( txt, "ZLIB" ); +#ifdef PAM + if (NGIRCd_VersionAddition[0]) + strlcat(NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition); + strlcat(NGIRCd_VersionAddition, "PAM", sizeof NGIRCd_VersionAddition); #endif #ifdef DEBUG - if( txt[0] ) strcat( txt, "+" ); - strcat( txt, "DEBUG" ); + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + strlcat( NGIRCd_VersionAddition, "DEBUG", sizeof NGIRCd_VersionAddition ); #endif #ifdef SNIFFER - if( txt[0] ) strcat( txt, "+" ); - strcat( txt, "SNIFFER" ); + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + strlcat( NGIRCd_VersionAddition, "SNIFFER", sizeof NGIRCd_VersionAddition ); #endif #ifdef STRICT_RFC - if( txt[0] ) strcat( txt, "+" ); - strcat( txt, "RFC" ); + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + strlcat( NGIRCd_VersionAddition, "RFC", sizeof NGIRCd_VersionAddition ); #endif #ifdef IRCPLUS - if( txt[0] ) strcat( txt, "+" ); - strcat( txt, "IRCPLUS" ); + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "+", sizeof NGIRCd_VersionAddition ); + strlcat( NGIRCd_VersionAddition, "IRCPLUS", sizeof NGIRCd_VersionAddition ); #endif - - if( txt[0] ) strcat( txt, "-" ); - strcat( txt, TARGET_CPU ); - strcat( txt, "/" ); - strcat( txt, TARGET_VENDOR ); - strcat( txt, "/" ); - strcat( txt, TARGET_OS ); +#ifdef WANT_IPV6 + if (NGIRCd_VersionAddition[0]) + strlcat(NGIRCd_VersionAddition, "+", sizeof(NGIRCd_VersionAddition)); + strlcat(NGIRCd_VersionAddition, "IPv6", sizeof(NGIRCd_VersionAddition)); +#endif + if( NGIRCd_VersionAddition[0] ) + strlcat( NGIRCd_VersionAddition, "-", sizeof( NGIRCd_VersionAddition )); + + strlcat( NGIRCd_VersionAddition, TARGET_CPU, sizeof( NGIRCd_VersionAddition )); + strlcat( NGIRCd_VersionAddition, "/", sizeof( NGIRCd_VersionAddition )); + strlcat( NGIRCd_VersionAddition, TARGET_VENDOR, sizeof( NGIRCd_VersionAddition )); + strlcat( NGIRCd_VersionAddition, "/", sizeof( NGIRCd_VersionAddition )); + strlcat( NGIRCd_VersionAddition, TARGET_OS, sizeof( NGIRCd_VersionAddition )); - return txt; -} /* NGIRCd_VersionAddition */ + snprintf(NGIRCd_Version, sizeof NGIRCd_Version, "%s %s-%s", + PACKAGE_NAME, PACKAGE_VERSION, NGIRCd_VersionAddition); + } /* Fill_Version */ -GLOBAL VOID -NGIRCd_Rehash( VOID ) +/** + * Display copyright and version information of ngIRCd on the console. + */ +static void +Show_Version( void ) { - CHAR old_name[CLIENT_ID_LEN]; - - /* Alle Listen-Sockets schliessen */ - Conn_ExitListeners( ); + puts( NGIRCd_Version ); + puts( "Copyright (c)2001-2011 Alexander Barton () and Contributors." ); + puts( "Homepage: \n" ); + puts( "This is free software; see the source for copying conditions. There is NO" ); + puts( "warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE." ); +} /* Show_Version */ + - /* Alten Server-Namen merken */ - strcpy( old_name, Conf_ServerName ); +/** + * Display a short help text on the console. + * This help depends on the configuration of the executable and only shows + * options that are actually enabled. + */ +static void +Show_Help( void ) +{ +#ifdef DEBUG + puts( " -d, --debug log extra debug messages" ); +#endif + puts( " -f, --config use file as configuration file" ); + puts( " -n, --nodaemon don't fork and don't detach from controlling terminal" ); + puts( " -p, --passive disable automatic connections to other servers" ); +#ifdef SNIFFER + puts( " -s, --sniffer enable network sniffer and display all IRC traffic" ); +#endif + puts( " -t, --configtest read, validate and display configuration; then exit" ); + puts( " -V, --version output version information and exit" ); + puts( " -h, --help display this help and exit" ); +} /* Show_Help */ - /* Konfiguration neu lesen ... */ - Conf_Init( ); - /* Alten Server-Namen wiederherstellen: dieser - * kann nicht zur Laufzeit geaendert werden ... */ - if( strcmp( old_name, Conf_ServerName ) != 0 ) - { - strcpy( Conf_ServerName, old_name ); - Log( LOG_ERR, "Can't change \"ServerName\" on runtime! Ignored new name." ); +/** + * Delete the file containing the process ID (PID). + */ +static void +Pidfile_Delete( void ) +{ + /* Pidfile configured? */ + if( ! Conf_PidFile[0] ) return; + +#ifdef DEBUG + Log( LOG_DEBUG, "Removing PID file (%s) ...", Conf_PidFile ); +#endif + + if( unlink( Conf_PidFile )) + Log( LOG_ERR, "Error unlinking PID file (%s): %s", Conf_PidFile, strerror( errno )); +} /* Pidfile_Delete */ + + +/** + * Create the file containing the process ID of ngIRCd ("PID file"). + * @param pid The process ID to be stored in this file. + */ +static void +Pidfile_Create(pid_t pid) +{ + int pidfd; + char pidbuf[64]; + int len; + + /* Pidfile configured? */ + if( ! Conf_PidFile[0] ) return; + +#ifdef DEBUG + Log( LOG_DEBUG, "Creating PID file (%s) ...", Conf_PidFile ); +#endif + + pidfd = open( Conf_PidFile, O_RDWR|O_CREAT|O_EXCL, S_IRUSR|S_IWUSR|S_IRGRP|S_IROTH); + if ( pidfd < 0 ) { + Log( LOG_ERR, "Error writing PID file (%s): %s", Conf_PidFile, strerror( errno )); + return; } - /* neue pre-defined Channel anlegen: */ - Channel_InitPredefined( ); + len = snprintf(pidbuf, sizeof pidbuf, "%ld\n", (long)pid); + if (len < 0 || len >= (int)sizeof pidbuf) { + Log( LOG_ERR, "Error converting pid"); + return; + } - /* Listen-Sockets neu anlegen: */ - Conn_InitListeners( ); + if (write(pidfd, pidbuf, (size_t)len) != (ssize_t)len) + Log( LOG_ERR, "Can't write PID file (%s): %s", Conf_PidFile, strerror( errno )); - Log( LOG_INFO, "Re-reading of configuration done." ); -} /* NGIRCd_Rehash */ + if( close(pidfd) != 0 ) + Log( LOG_ERR, "Error closing PID file (%s): %s", Conf_PidFile, strerror( errno )); +} /* Pidfile_Create */ -LOCAL VOID -Initialize_Signal_Handler( VOID ) +/** + * Redirect stdin, stdout and stderr to apropriate file handles. + */ +static void +Setup_FDStreams(int fd) { - /* Signal-Handler initialisieren: einige Signale - * werden ignoriert, andere speziell behandelt. */ + if (fd < 0) + return; -#ifdef HAVE_SIGACTION - /* sigaction() ist vorhanden */ + fflush(stdout); + fflush(stderr); - struct sigaction saction; + /* Create new stdin(0), stdout(1) and stderr(2) descriptors */ + dup2( fd, 0 ); dup2( fd, 1 ); dup2( fd, 2 ); +} /* Setup_FDStreams */ - /* Signal-Struktur initialisieren */ - memset( &saction, 0, sizeof( saction )); - saction.sa_handler = Signal_Handler; -#ifdef SA_RESTART - saction.sa_flags |= SA_RESTART; -#endif -#ifdef SA_NOCLDWAIT - saction.sa_flags |= SA_NOCLDWAIT; + +static bool +NGIRCd_getNobodyID(uid_t *uid, gid_t *gid ) +{ + struct passwd *pwd; + +#ifdef __CYGWIN__ + /* Cygwin kludge. + * It can return EINVAL instead of EPERM + * so, if we are already unprivileged, + * use id of current user. + */ + if (geteuid() && getuid()) { + *uid = getuid(); + *gid = getgid(); + return true; + } #endif - /* Signal-Handler einhaengen */ - sigaction( SIGINT, &saction, NULL ); - sigaction( SIGQUIT, &saction, NULL ); - sigaction( SIGTERM, &saction, NULL); - sigaction( SIGHUP, &saction, NULL); - sigaction( SIGCHLD, &saction, NULL); + pwd = getpwnam("nobody"); + if (!pwd) return false; - /* einige Signale ignorieren */ - saction.sa_handler = SIG_IGN; - sigaction( SIGPIPE, &saction, NULL ); -#else - /* kein sigaction() vorhanden */ + if ( !pwd->pw_uid || !pwd->pw_gid) + return false; - /* Signal-Handler einhaengen */ - signal( SIGINT, Signal_Handler ); - signal( SIGQUIT, Signal_Handler ); - signal( SIGTERM, Signal_Handler ); - signal( SIGHUP, Signal_Handler ); - signal( SIGCHLD, Signal_Handler ); + *uid = pwd->pw_uid; + *gid = pwd->pw_gid; + endpwent(); - /* einige Signale ignorieren */ - signal( SIGPIPE, SIG_IGN ); -#endif -} /* Initialize_Signal_Handler */ + return true; +} -LOCAL VOID -Signal_Handler( INT Signal ) +static bool +NGIRCd_Init( bool NGIRCd_NoDaemon ) { - /* Signal-Handler. Dieser wird aufgerufen, wenn eines der Signale eintrifft, - * fuer das wir uns registriert haben (vgl. Initialize_Signal_Handler). Die - * Nummer des eingetroffenen Signals wird der Funktion uebergeben. */ + static bool initialized; + bool chrooted = false; + struct passwd *pwd; + struct group *grp; + int real_errno, fd = -1; + pid_t pid; - switch( Signal ) - { - case SIGTERM: - case SIGINT: - case SIGQUIT: - /* wir soll(t)en uns wohl beenden ... */ - if( Signal == SIGTERM ) Log( LOG_WARNING|LOG_snotice, "Got TERM signal, terminating now ..." ); - else if( Signal == SIGINT ) Log( LOG_WARNING|LOG_snotice, "Got INT signal, terminating now ..." ); - else if( Signal == SIGQUIT ) Log( LOG_WARNING|LOG_snotice, "Got QUIT signal, terminating now ..." ); - NGIRCd_Quit = TRUE; - break; - case SIGHUP: - /* Konfiguration neu einlesen: */ - Log( LOG_WARNING|LOG_snotice, "Got HUP signal, re-reading configuration ..." ); - NGIRCd_Rehash( ); - break; - case SIGCHLD: - /* Child-Prozess wurde beendet. Zombies vermeiden: */ - while( waitpid( -1, NULL, WNOHANG ) > 0); - break; - default: - /* unbekanntes bzw. unbehandeltes Signal */ - Log( LOG_NOTICE, "Got signal %d! Ignored.", Signal ); + if (initialized) + return true; + + if (!NGIRCd_NoDaemon) { + /* open /dev/null before chroot() */ + fd = open( "/dev/null", O_RDWR); + if (fd < 0) + Log(LOG_WARNING, "Could not open /dev/null: %s", strerror(errno)); } -} /* Signal_Handler */ + if (!ConnSSL_InitLibrary()) + Log(LOG_WARNING, + "Warning: Error during SSL initialization, continuing ..."); -LOCAL VOID -Show_Version( VOID ) -{ - puts( NGIRCd_Version( )); - puts( "Copyright (c)2001,2002 by Alexander Barton ()." ); - puts( "Homepage: \n" ); - puts( "This is free software; see the source for copying conditions. There is NO" ); - puts( "warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE." ); -} /* Show_Version */ + if( Conf_Chroot[0] ) { + if( chdir( Conf_Chroot ) != 0 ) { + Log( LOG_ERR, "Can't chdir() in ChrootDir (%s): %s", Conf_Chroot, strerror( errno )); + goto out; + } + if( chroot( Conf_Chroot ) != 0 ) { + if (errno != EPERM) { + Log( LOG_ERR, "Can't change root directory to \"%s\": %s", + Conf_Chroot, strerror( errno )); + goto out; + } + } else { + chrooted = true; + Log( LOG_INFO, "Changed root and working directory to \"%s\".", Conf_Chroot ); + } + } -LOCAL VOID -Show_Help( VOID ) -{ -#ifdef DEBUG - puts( " -d, --debug log extra debug messages" ); -#endif - puts( " -f, --config use file as configuration file" ); - puts( " -n, --nodaemon don't fork and don't detach from controlling terminal" ); - puts( " -p, --passive disable automatic connections to other servers" ); -#ifdef SNIFFER - puts( " -s, --sniffer enable network sniffer and display all IRC traffic" ); + if (Conf_UID == 0) { + Log(LOG_INFO, "ServerUID must not be 0, using \"nobody\" instead.", Conf_UID); + + if (! NGIRCd_getNobodyID(&Conf_UID, &Conf_GID)) { + Log(LOG_WARNING, "Could not get user/group ID of user \"nobody\": %s", + errno ? strerror(errno) : "not found" ); + goto out; + } + } + + if (getgid() != Conf_GID) { + /* Change group ID */ + if (setgid(Conf_GID) != 0) { + real_errno = errno; + Log( LOG_ERR, "Can't change group ID to %u: %s", Conf_GID, strerror( errno )); + if (real_errno != EPERM) + goto out; + } + } + + if (getuid() != Conf_UID) { + /* Change user ID */ + if (setuid(Conf_UID) != 0) { + real_errno = errno; + Log(LOG_ERR, "Can't change user ID to %u: %s", Conf_UID, strerror(errno)); + if (real_errno != EPERM) + goto out; + } + } + + initialized = true; + + /* Normally a child process is forked which isn't any longer + * connected to ther controlling terminal. Use "--nodaemon" + * to disable this "daemon mode" (useful for debugging). */ + if ( ! NGIRCd_NoDaemon ) { + pid = fork( ); + if( pid > 0 ) { + /* "Old" process: exit. */ + exit( 0 ); + } + if( pid < 0 ) { + /* Error!? */ + fprintf( stderr, "%s: Can't fork: %s!\nFatal error, exiting now ...\n", + PACKAGE_NAME, strerror( errno )); + exit( 1 ); + } + + /* New child process */ +#ifndef NeXT + (void)setsid( ); +#else + setpgrp(0, getpid()); #endif - puts( " --configtest read, validate and display configuration; then exit" ); - puts( " --version output version information and exit" ); - puts( " --help display this help and exit" ); -} /* Show_Help */ + if (chdir( "/" ) != 0) + Log(LOG_ERR, "Can't change directory to '/': %s", + strerror(errno)); + + /* Detach stdin, stdout and stderr */ + Setup_FDStreams(fd); + if (fd > 2) { + close(fd); + fd = -1; + } + } + pid = getpid(); + + Pidfile_Create( pid ); + + /* Check UID/GID we are running as, can be different from values + * configured (e. g. if we were already started with a UID>0. */ + Conf_UID = getuid(); + Conf_GID = getgid(); + + pwd = getpwuid( Conf_UID ); + grp = getgrgid( Conf_GID ); + + Log(LOG_INFO, "Running as user %s(%ld), group %s(%ld), with PID %ld.", + pwd ? pwd->pw_name : "unknown", (long)Conf_UID, + grp ? grp->gr_name : "unknown", (long)Conf_GID, (long)pid); + + if (chrooted) { + Log(LOG_INFO, "Running with root directory \"%s\".", + Conf_Chroot ); + return true; + } else + Log(LOG_INFO, "Not running with changed root directory."); + + /* Change working directory to home directory of the user + * we are running as (only when running in daemon mode and not in chroot) */ + + if (pwd) { + if (!NGIRCd_NoDaemon ) { + if( chdir( pwd->pw_dir ) == 0 ) + Log( LOG_DEBUG, "Changed working directory to \"%s\" ...", pwd->pw_dir ); + else + Log( LOG_INFO, "Notice: Can't change working directory to \"%s\": %s", + pwd->pw_dir, strerror( errno )); + } + } else { + Log( LOG_ERR, "Can't get user informaton for UID %d!?", Conf_UID ); + } + + return true; + out: + if (fd > 2) + close(fd); + return false; +} /* -eof- */