104
46
#include <avahi-common/malloc.h>
105
47
#include <avahi-common/error.h>
108
#include <gnutls/gnutls.h> /* All GnuTLS types, constants and
111
init_gnutls_session(),
113
#include <gnutls/openpgp.h>
114
/* gnutls_certificate_set_openpgp_key_file(),
115
GNUTLS_OPENPGP_FMT_BASE64 */
118
#include <gpgme.h> /* All GPGME types, constants and
121
GPGME_PROTOCOL_OpenPGP,
50
#include <sys/types.h> /* socket(), setsockopt(), inet_pton() */
51
#include <sys/socket.h> /* socket(), setsockopt(), struct sockaddr_in6, struct in6_addr, inet_pton() */
52
#include <gnutls/gnutls.h> /* ALL GNUTLS STUFF */
53
#include <gnutls/openpgp.h> /* gnutls with openpgp stuff */
55
#include <unistd.h> /* close() */
56
#include <netinet/in.h>
57
#include <stdbool.h> /* true */
58
#include <string.h> /* memset */
59
#include <arpa/inet.h> /* inet_pton() */
60
#include <iso646.h> /* not */
63
#include <errno.h> /* perror() */
68
#define CERT_ROOT "/conf/conf.d/cryptkeyreq/"
70
#define CERTFILE CERT_ROOT "openpgp-client.txt"
71
#define KEYFILE CERT_ROOT "openpgp-client-key.txt"
124
72
#define BUFFER_SIZE 256
126
#define PATHDIR "/conf/conf.d/mandos"
127
#define SECKEY "seckey.txt"
128
#define PUBKEY "pubkey.txt"
129
#define HOOKDIR "/lib/mandos/network-hooks.d"
132
static const char mandos_protocol_version[] = "1";
133
const char *argp_program_version = "mandos-client " VERSION;
134
const char *argp_program_bug_address = "<mandos@recompile.se>";
135
static const char sys_class_net[] = "/sys/class/net";
136
char *connect_to = NULL;
137
const char *hookdir = HOOKDIR;
139
/* Doubly linked list that need to be circularly linked when used */
140
typedef struct server{
143
AvahiIfIndex if_index;
145
struct timespec last_seen;
150
/* Used for passing in values through the Avahi callback functions */
152
AvahiSimplePoll *simple_poll;
76
gnutls_session_t session;
154
77
gnutls_certificate_credentials_t cred;
155
unsigned int dh_bits;
156
78
gnutls_dh_params_t dh_params;
157
const char *priority;
82
ssize_t gpg_packet_decrypt (char *packet, size_t packet_size, char **new_packet, char *homedir){
83
gpgme_data_t dh_crypto, dh_plain;
159
server *current_server;
162
/* global context so signal handler can reach it*/
163
mandos_context mc = { .simple_poll = NULL, .server = NULL,
164
.dh_bits = 1024, .priority = "SECURE256"
165
":!CTYPE-X.509:+CTYPE-OPENPGP",
166
.current_server = NULL };
168
sig_atomic_t quit_now = 0;
169
int signal_received = 0;
171
/* Function to use when printing errors */
172
void perror_plus(const char *print_text){
173
fprintf(stderr, "Mandos plugin %s: ",
174
program_invocation_short_name);
178
int fprintf_plus(FILE *stream, const char *format, ...){
180
va_start (ap, format);
182
TEMP_FAILURE_RETRY(fprintf(stream, "Mandos plugin %s: ",
183
program_invocation_short_name));
184
return TEMP_FAILURE_RETRY(vfprintf(stream, format, ap));
188
* Make additional room in "buffer" for at least BUFFER_SIZE more
189
* bytes. "buffer_capacity" is how much is currently allocated,
190
* "buffer_length" is how much is already used.
192
size_t incbuffer(char **buffer, size_t buffer_length,
193
size_t buffer_capacity){
194
if(buffer_length + BUFFER_SIZE > buffer_capacity){
195
*buffer = realloc(*buffer, buffer_capacity + BUFFER_SIZE);
199
buffer_capacity += BUFFER_SIZE;
201
return buffer_capacity;
204
/* Add server to set of servers to retry periodically */
205
bool add_server(const char *ip, uint16_t port, AvahiIfIndex if_index,
208
server *new_server = malloc(sizeof(server));
209
if(new_server == NULL){
210
perror_plus("malloc");
213
*new_server = (server){ .ip = strdup(ip),
215
.if_index = if_index,
217
if(new_server->ip == NULL){
218
perror_plus("strdup");
221
/* Special case of first server */
222
if (mc.current_server == NULL){
223
new_server->next = new_server;
224
new_server->prev = new_server;
225
mc.current_server = new_server;
226
/* Place the new server last in the list */
228
new_server->next = mc.current_server;
229
new_server->prev = mc.current_server->prev;
230
new_server->prev->next = new_server;
231
mc.current_server->prev = new_server;
233
ret = clock_gettime(CLOCK_MONOTONIC, &mc.current_server->last_seen);
235
perror_plus("clock_gettime");
244
static bool init_gpgme(const char *seckey, const char *pubkey,
245
const char *tempdir){
87
size_t new_packet_capacity = 0;
88
size_t new_packet_length = 0;
247
89
gpgme_engine_info_t engine_info;
251
* Helper function to insert pub and seckey to the engine keyring.
253
bool import_key(const char *filename){
256
gpgme_data_t pgp_data;
258
fd = (int)TEMP_FAILURE_RETRY(open(filename, O_RDONLY));
264
rc = gpgme_data_new_from_fd(&pgp_data, fd);
265
if(rc != GPG_ERR_NO_ERROR){
266
fprintf_plus(stderr, "bad gpgme_data_new_from_fd: %s: %s\n",
267
gpgme_strsource(rc), gpgme_strerror(rc));
271
rc = gpgme_op_import(mc.ctx, pgp_data);
272
if(rc != GPG_ERR_NO_ERROR){
273
fprintf_plus(stderr, "bad gpgme_op_import: %s: %s\n",
274
gpgme_strsource(rc), gpgme_strerror(rc));
278
ret = (int)TEMP_FAILURE_RETRY(close(fd));
280
perror_plus("close");
282
gpgme_data_release(pgp_data);
287
fprintf_plus(stderr, "Initializing GPGME\n");
291
92
gpgme_check_version(NULL);
292
rc = gpgme_engine_check_version(GPGME_PROTOCOL_OpenPGP);
293
if(rc != GPG_ERR_NO_ERROR){
294
fprintf_plus(stderr, "bad gpgme_engine_check_version: %s: %s\n",
295
gpgme_strsource(rc), gpgme_strerror(rc));
93
gpgme_engine_check_version(GPGME_PROTOCOL_OpenPGP);
299
/* Set GPGME home directory for the OpenPGP engine only */
300
rc = gpgme_get_engine_info(&engine_info);
301
if(rc != GPG_ERR_NO_ERROR){
302
fprintf_plus(stderr, "bad gpgme_get_engine_info: %s: %s\n",
303
gpgme_strsource(rc), gpgme_strerror(rc));
95
/* Set GPGME home directory */
96
rc = gpgme_get_engine_info (&engine_info);
97
if (rc != GPG_ERR_NO_ERROR){
98
fprintf(stderr, "bad gpgme_get_engine_info: %s: %s\n",
99
gpgme_strsource(rc), gpgme_strerror(rc));
306
102
while(engine_info != NULL){
307
103
if(engine_info->protocol == GPGME_PROTOCOL_OpenPGP){
308
104
gpgme_set_engine_info(GPGME_PROTOCOL_OpenPGP,
309
engine_info->file_name, tempdir);
105
engine_info->file_name, homedir);
312
108
engine_info = engine_info->next;
314
110
if(engine_info == NULL){
315
fprintf_plus(stderr, "Could not set GPGME home dir to %s\n",
320
/* Create new GPGME "context" */
321
rc = gpgme_new(&(mc.ctx));
322
if(rc != GPG_ERR_NO_ERROR){
323
fprintf_plus(stderr, "Mandos plugin mandos-client: "
324
"bad gpgme_new: %s: %s\n", gpgme_strsource(rc),
329
if(not import_key(pubkey) or not import_key(seckey)){
337
* Decrypt OpenPGP data.
338
* Returns -1 on error
340
static ssize_t pgp_packet_decrypt(const char *cryptotext,
343
gpgme_data_t dh_crypto, dh_plain;
346
size_t plaintext_capacity = 0;
347
ssize_t plaintext_length = 0;
350
fprintf_plus(stderr, "Trying to decrypt OpenPGP data\n");
353
/* Create new GPGME data buffer from memory cryptotext */
354
rc = gpgme_data_new_from_mem(&dh_crypto, cryptotext, crypto_size,
356
if(rc != GPG_ERR_NO_ERROR){
357
fprintf_plus(stderr, "bad gpgme_data_new_from_mem: %s: %s\n",
358
gpgme_strsource(rc), gpgme_strerror(rc));
111
fprintf(stderr, "Could not set home dir to %s\n", homedir);
115
/* Create new GPGME data buffer from packet buffer */
116
rc = gpgme_data_new_from_mem(&dh_crypto, packet, packet_size, 0);
117
if (rc != GPG_ERR_NO_ERROR){
118
fprintf(stderr, "bad gpgme_data_new_from_mem: %s: %s\n",
119
gpgme_strsource(rc), gpgme_strerror(rc));
362
123
/* Create new empty GPGME data buffer for the plaintext */
363
124
rc = gpgme_data_new(&dh_plain);
364
if(rc != GPG_ERR_NO_ERROR){
365
fprintf_plus(stderr, "Mandos plugin mandos-client: "
366
"bad gpgme_data_new: %s: %s\n",
367
gpgme_strsource(rc), gpgme_strerror(rc));
368
gpgme_data_release(dh_crypto);
372
/* Decrypt data from the cryptotext data buffer to the plaintext
374
rc = gpgme_op_decrypt(mc.ctx, dh_crypto, dh_plain);
375
if(rc != GPG_ERR_NO_ERROR){
376
fprintf_plus(stderr, "bad gpgme_op_decrypt: %s: %s\n",
377
gpgme_strsource(rc), gpgme_strerror(rc));
378
plaintext_length = -1;
380
gpgme_decrypt_result_t result;
381
result = gpgme_op_decrypt_result(mc.ctx);
383
fprintf_plus(stderr, "gpgme_op_decrypt_result failed\n");
385
fprintf_plus(stderr, "Unsupported algorithm: %s\n",
386
result->unsupported_algorithm);
387
fprintf_plus(stderr, "Wrong key usage: %u\n",
388
result->wrong_key_usage);
389
if(result->file_name != NULL){
390
fprintf_plus(stderr, "File name: %s\n", result->file_name);
392
gpgme_recipient_t recipient;
393
recipient = result->recipients;
394
while(recipient != NULL){
395
fprintf_plus(stderr, "Public key algorithm: %s\n",
396
gpgme_pubkey_algo_name
397
(recipient->pubkey_algo));
398
fprintf_plus(stderr, "Key ID: %s\n", recipient->keyid);
399
fprintf_plus(stderr, "Secret key available: %s\n",
400
recipient->status == GPG_ERR_NO_SECKEY
402
recipient = recipient->next;
410
fprintf_plus(stderr, "Decryption of OpenPGP data succeeded\n");
125
if (rc != GPG_ERR_NO_ERROR){
126
fprintf(stderr, "bad gpgme_data_new: %s: %s\n",
127
gpgme_strsource(rc), gpgme_strerror(rc));
131
/* Create new GPGME "context" */
132
rc = gpgme_new(&ctx);
133
if (rc != GPG_ERR_NO_ERROR){
134
fprintf(stderr, "bad gpgme_new: %s: %s\n",
135
gpgme_strsource(rc), gpgme_strerror(rc));
139
/* Decrypt data from the FILE pointer to the plaintext data buffer */
140
rc = gpgme_op_decrypt(ctx, dh_crypto, dh_plain);
141
if (rc != GPG_ERR_NO_ERROR){
142
fprintf(stderr, "bad gpgme_op_decrypt: %s: %s\n",
143
gpgme_strsource(rc), gpgme_strerror(rc));
147
/* gpgme_decrypt_result_t result; */
148
/* result = gpgme_op_decrypt_result(ctx); */
149
/* fprintf(stderr, "Unsupported algorithm: %s\n", result->unsupported_algorithm); */
150
/* fprintf(stderr, "Wrong key usage: %d\n", result->wrong_key_usage); */
151
/* if(result->file_name != NULL){ */
152
/* fprintf(stderr, "File name: %s\n", result->file_name); */
154
/* gpgme_recipient_t recipient; */
155
/* recipient = result->recipients; */
157
/* while(recipient != NULL){ */
158
/* fprintf(stderr, "Public key algorithm: %s\n", */
159
/* gpgme_pubkey_algo_name(recipient->pubkey_algo)); */
160
/* fprintf(stderr, "Key ID: %s\n", recipient->keyid); */
161
/* fprintf(stderr, "Secret key available: %s\n", */
162
/* recipient->status == GPG_ERR_NO_SECKEY ? "No" : "Yes"); */
163
/* recipient = recipient->next; */
167
/* Delete the GPGME FILE pointer cryptotext data buffer */
168
gpgme_data_release(dh_crypto);
413
170
/* Seek back to the beginning of the GPGME plaintext data buffer */
414
if(gpgme_data_seek(dh_plain, (off_t)0, SEEK_SET) == -1){
415
perror_plus("gpgme_data_seek");
416
plaintext_length = -1;
171
gpgme_data_seek(dh_plain, 0, SEEK_SET);
422
plaintext_capacity = incbuffer(plaintext,
423
(size_t)plaintext_length,
425
if(plaintext_capacity == 0){
426
perror_plus("incbuffer");
427
plaintext_length = -1;
175
if (new_packet_length + BUFFER_SIZE > new_packet_capacity){
176
*new_packet = realloc(*new_packet, new_packet_capacity + BUFFER_SIZE);
177
if (*new_packet == NULL){
181
new_packet_capacity += BUFFER_SIZE;
431
ret = gpgme_data_read(dh_plain, *plaintext + plaintext_length,
184
ret = gpgme_data_read(dh_plain, *new_packet + new_packet_length, BUFFER_SIZE);
433
185
/* Print the data, if any */
187
/* If password is empty, then a incorrect error will be printed */
439
perror_plus("gpgme_data_read");
440
plaintext_length = -1;
443
plaintext_length += ret;
447
fprintf_plus(stderr, "Decrypted password is: ");
448
for(ssize_t i = 0; i < plaintext_length; i++){
449
fprintf(stderr, "%02hhX ", (*plaintext)[i]);
451
fprintf(stderr, "\n");
456
/* Delete the GPGME cryptotext data buffer */
457
gpgme_data_release(dh_crypto);
459
/* Delete the GPGME plaintext data buffer */
191
perror("gpgme_data_read");
194
new_packet_length += ret;
197
/* Delete the GPGME plaintext data buffer */
460
198
gpgme_data_release(dh_plain);
461
return plaintext_length;
199
return new_packet_length;
464
static const char * safer_gnutls_strerror(int value){
465
const char *ret = gnutls_strerror(value); /* Spurious warning from
466
-Wunreachable-code */
202
static const char * safer_gnutls_strerror (int value) {
203
const char *ret = gnutls_strerror (value);
468
205
ret = "(unknown)";
472
/* GnuTLS log function callback */
473
static void debuggnutls(__attribute__((unused)) int level,
475
fprintf_plus(stderr, "GnuTLS: %s", string);
209
void debuggnutls(int level, const char* string){
210
fprintf(stderr, "%s", string);
478
static int init_gnutls_global(const char *pubkeyfilename,
479
const char *seckeyfilename){
213
int initgnutls(encrypted_session *es){
483
fprintf_plus(stderr, "Initializing GnuTLS\n");
486
ret = gnutls_global_init();
487
if(ret != GNUTLS_E_SUCCESS){
488
fprintf_plus(stderr, "GnuTLS global_init: %s\n",
489
safer_gnutls_strerror(ret));
494
/* "Use a log level over 10 to enable all debugging options."
497
gnutls_global_set_log_level(11);
498
gnutls_global_set_log_function(debuggnutls);
501
/* OpenPGP credentials */
502
ret = gnutls_certificate_allocate_credentials(&mc.cred);
503
if(ret != GNUTLS_E_SUCCESS){
504
fprintf_plus(stderr, "GnuTLS memory error: %s\n",
505
safer_gnutls_strerror(ret));
506
gnutls_global_deinit();
511
fprintf_plus(stderr, "Attempting to use OpenPGP public key %s and"
512
" secret key %s as GnuTLS credentials\n",
217
if ((ret = gnutls_global_init ())
218
!= GNUTLS_E_SUCCESS) {
219
fprintf (stderr, "global_init: %s\n", safer_gnutls_strerror(ret));
223
/* Uncomment to enable full debuggin on the gnutls library */
224
/* gnutls_global_set_log_level(11); */
225
/* gnutls_global_set_log_function(debuggnutls); */
228
/* openpgp credentials */
229
if ((ret = gnutls_certificate_allocate_credentials (&es->cred))
230
!= GNUTLS_E_SUCCESS) {
231
fprintf (stderr, "memory error: %s\n", safer_gnutls_strerror(ret));
517
235
ret = gnutls_certificate_set_openpgp_key_file
518
(mc.cred, pubkeyfilename, seckeyfilename,
519
GNUTLS_OPENPGP_FMT_BASE64);
520
if(ret != GNUTLS_E_SUCCESS){
522
"Error[%d] while reading the OpenPGP key pair ('%s',"
523
" '%s')\n", ret, pubkeyfilename, seckeyfilename);
524
fprintf_plus(stderr, "The GnuTLS error is: %s\n",
525
safer_gnutls_strerror(ret));
529
/* GnuTLS server initialization */
530
ret = gnutls_dh_params_init(&mc.dh_params);
531
if(ret != GNUTLS_E_SUCCESS){
532
fprintf_plus(stderr, "Error in GnuTLS DH parameter"
533
" initialization: %s\n",
534
safer_gnutls_strerror(ret));
537
ret = gnutls_dh_params_generate2(mc.dh_params, mc.dh_bits);
538
if(ret != GNUTLS_E_SUCCESS){
539
fprintf_plus(stderr, "Error in GnuTLS prime generation: %s\n",
540
safer_gnutls_strerror(ret));
544
gnutls_certificate_set_dh_params(mc.cred, mc.dh_params);
550
gnutls_certificate_free_credentials(mc.cred);
551
gnutls_global_deinit();
552
gnutls_dh_params_deinit(mc.dh_params);
556
static int init_gnutls_session(gnutls_session_t *session){
558
/* GnuTLS session creation */
560
ret = gnutls_init(session, GNUTLS_SERVER);
564
} while(ret == GNUTLS_E_INTERRUPTED or ret == GNUTLS_E_AGAIN);
565
if(ret != GNUTLS_E_SUCCESS){
567
"Error in GnuTLS session initialization: %s\n",
568
safer_gnutls_strerror(ret));
574
ret = gnutls_priority_set_direct(*session, mc.priority, &err);
576
gnutls_deinit(*session);
579
} while(ret == GNUTLS_E_INTERRUPTED or ret == GNUTLS_E_AGAIN);
580
if(ret != GNUTLS_E_SUCCESS){
581
fprintf_plus(stderr, "Syntax error at: %s\n", err);
582
fprintf_plus(stderr, "GnuTLS error: %s\n",
583
safer_gnutls_strerror(ret));
584
gnutls_deinit(*session);
590
ret = gnutls_credentials_set(*session, GNUTLS_CRD_CERTIFICATE,
593
gnutls_deinit(*session);
596
} while(ret == GNUTLS_E_INTERRUPTED or ret == GNUTLS_E_AGAIN);
597
if(ret != GNUTLS_E_SUCCESS){
598
fprintf_plus(stderr, "Error setting GnuTLS credentials: %s\n",
599
safer_gnutls_strerror(ret));
600
gnutls_deinit(*session);
236
(es->cred, CERTFILE, KEYFILE, GNUTLS_OPENPGP_FMT_BASE64);
237
if (ret != GNUTLS_E_SUCCESS) {
239
(stderr, "Error[%d] while reading the OpenPGP key pair ('%s', '%s')\n",
240
ret, CERTFILE, KEYFILE);
241
fprintf(stdout, "The Error is: %s\n",
242
safer_gnutls_strerror(ret));
246
//Gnutls server initialization
247
if ((ret = gnutls_dh_params_init (&es->dh_params))
248
!= GNUTLS_E_SUCCESS) {
249
fprintf (stderr, "Error in dh parameter initialization: %s\n",
250
safer_gnutls_strerror(ret));
254
if ((ret = gnutls_dh_params_generate2 (es->dh_params, DH_BITS))
255
!= GNUTLS_E_SUCCESS) {
256
fprintf (stderr, "Error in prime generation: %s\n",
257
safer_gnutls_strerror(ret));
261
gnutls_certificate_set_dh_params (es->cred, es->dh_params);
263
// Gnutls session creation
264
if ((ret = gnutls_init (&es->session, GNUTLS_SERVER))
265
!= GNUTLS_E_SUCCESS){
266
fprintf(stderr, "Error in gnutls session initialization: %s\n",
267
safer_gnutls_strerror(ret));
270
if ((ret = gnutls_priority_set_direct (es->session, "NORMAL", &err))
271
!= GNUTLS_E_SUCCESS) {
272
fprintf(stderr, "Syntax error at: %s\n", err);
273
fprintf(stderr, "Gnutls error: %s\n",
274
safer_gnutls_strerror(ret));
278
if ((ret = gnutls_credentials_set
279
(es->session, GNUTLS_CRD_CERTIFICATE, es->cred))
280
!= GNUTLS_E_SUCCESS) {
281
fprintf(stderr, "Error setting a credentials set: %s\n",
282
safer_gnutls_strerror(ret));
604
286
/* ignore client certificate if any. */
605
gnutls_certificate_server_set_request(*session, GNUTLS_CERT_IGNORE);
287
gnutls_certificate_server_set_request (es->session, GNUTLS_CERT_IGNORE);
607
gnutls_dh_set_prime_bits(*session, mc.dh_bits);
289
gnutls_dh_set_prime_bits (es->session, DH_BITS);
612
/* Avahi log function callback */
613
static void empty_log(__attribute__((unused)) AvahiLogLevel level,
614
__attribute__((unused)) const char *txt){}
294
void empty_log(AvahiLogLevel level, const char *txt){}
616
/* Called when a Mandos server is found */
617
static int start_mandos_communication(const char *ip, uint16_t port,
618
AvahiIfIndex if_index,
620
int ret, tcp_sd = -1;
623
struct sockaddr_in in;
624
struct sockaddr_in6 in6;
296
int start_mandos_communcation(char *ip, uint16_t port){
298
struct sockaddr_in6 to;
299
struct in6_addr ip_addr;
300
encrypted_session es;
626
301
char *buffer = NULL;
627
char *decrypted_buffer = NULL;
302
char *decrypted_buffer;
628
303
size_t buffer_length = 0;
629
304
size_t buffer_capacity = 0;
632
gnutls_session_t session;
633
int pf; /* Protocol family */
650
fprintf_plus(stderr, "Bad address family: %d\n", af);
655
ret = init_gnutls_session(&session);
661
fprintf_plus(stderr, "Setting up a TCP connection to %s, port %"
662
PRIu16 "\n", ip, port);
665
tcp_sd = socket(pf, SOCK_STREAM, 0);
668
perror_plus("socket");
678
memset(&to, 0, sizeof(to));
680
to.in6.sin6_family = (sa_family_t)af;
681
ret = inet_pton(af, ip, &to.in6.sin6_addr);
683
to.in.sin_family = (sa_family_t)af;
684
ret = inet_pton(af, ip, &to.in.sin_addr);
688
perror_plus("inet_pton");
305
ssize_t decrypted_buffer_size;
309
tcp_sd = socket(PF_INET6, SOCK_STREAM, 0);
315
ret = setsockopt(tcp_sd, SOL_SOCKET, SO_BINDTODEVICE, "eth0", 5);
317
perror("setsockopt bindtodevice");
321
memset(&to,0,sizeof(to));
322
to.sin6_family = AF_INET6;
323
ret = inet_pton(AF_INET6, ip, &ip_addr);
694
fprintf_plus(stderr, "Bad address: %s\n", ip);
699
to.in6.sin6_port = htons(port); /* Spurious warnings from
701
-Wunreachable-code */
703
if(IN6_IS_ADDR_LINKLOCAL /* Spurious warnings from */
704
(&to.in6.sin6_addr)){ /* -Wstrict-aliasing=2 or lower and
706
if(if_index == AVAHI_IF_UNSPEC){
707
fprintf_plus(stderr, "An IPv6 link-local address is"
708
" incomplete without a network interface\n");
712
/* Set the network interface number as scope */
713
to.in6.sin6_scope_id = (uint32_t)if_index;
716
to.in.sin_port = htons(port); /* Spurious warnings from
718
-Wunreachable-code */
727
if(af == AF_INET6 and if_index != AVAHI_IF_UNSPEC){
728
char interface[IF_NAMESIZE];
729
if(if_indextoname((unsigned int)if_index, interface) == NULL){
730
perror_plus("if_indextoname");
732
fprintf_plus(stderr, "Connection to: %s%%%s, port %" PRIu16
733
"\n", ip, interface, port);
736
fprintf_plus(stderr, "Connection to: %s, port %" PRIu16 "\n",
739
char addrstr[(INET_ADDRSTRLEN > INET6_ADDRSTRLEN) ?
740
INET_ADDRSTRLEN : INET6_ADDRSTRLEN] = "";
743
pcret = inet_ntop(af, &(to.in6.sin6_addr), addrstr,
746
pcret = inet_ntop(af, &(to.in.sin_addr), addrstr,
750
perror_plus("inet_ntop");
752
if(strcmp(addrstr, ip) != 0){
753
fprintf_plus(stderr, "Canonical address form: %s\n", addrstr);
764
ret = connect(tcp_sd, &to.in6, sizeof(to));
766
ret = connect(tcp_sd, &to.in, sizeof(to)); /* IPv4 */
769
if ((errno != ECONNREFUSED and errno != ENETUNREACH) or debug){
771
perror_plus("connect");
782
const char *out = mandos_protocol_version;
785
size_t out_size = strlen(out);
786
ret = (int)TEMP_FAILURE_RETRY(write(tcp_sd, out + written,
787
out_size - written));
790
perror_plus("write");
794
written += (size_t)ret;
795
if(written < out_size){
798
if(out == mandos_protocol_version){
813
fprintf_plus(stderr, "Establishing TLS session with %s\n", ip);
821
/* Spurious warning from -Wint-to-pointer-cast */
822
gnutls_transport_set_ptr(session, (gnutls_transport_ptr_t) tcp_sd);
830
ret = gnutls_handshake(session);
835
} while(ret == GNUTLS_E_AGAIN or ret == GNUTLS_E_INTERRUPTED);
837
if(ret != GNUTLS_E_SUCCESS){
839
fprintf_plus(stderr, "*** GnuTLS Handshake failed ***\n");
846
/* Read OpenPGP packet that contains the wanted password */
849
fprintf_plus(stderr, "Retrieving OpenPGP encrypted password from"
860
buffer_capacity = incbuffer(&buffer, buffer_length,
862
if(buffer_capacity == 0){
864
perror_plus("incbuffer");
874
sret = gnutls_record_recv(session, buffer+buffer_length,
329
fprintf(stderr, "Bad address: %s\n", ip);
332
to.sin6_port = htons(port);
333
to.sin6_scope_id = if_nametoindex("eth0");
335
ret = connect(tcp_sd, (struct sockaddr *) &to, sizeof(to));
341
ret = initgnutls (&es);
348
gnutls_transport_set_ptr (es.session, (gnutls_transport_ptr_t) tcp_sd);
350
ret = gnutls_handshake (es.session);
352
if (ret != GNUTLS_E_SUCCESS){
353
fprintf(stderr, "\n*** Handshake failed ***\n");
361
if (buffer_length + BUFFER_SIZE > buffer_capacity){
362
buffer = realloc(buffer, buffer_capacity + BUFFER_SIZE);
367
buffer_capacity += BUFFER_SIZE;
370
ret = gnutls_record_recv
371
(es.session, buffer+buffer_length, BUFFER_SIZE);
881
377
case GNUTLS_E_INTERRUPTED:
882
378
case GNUTLS_E_AGAIN:
884
380
case GNUTLS_E_REHANDSHAKE:
886
ret = gnutls_handshake(session);
892
} while(ret == GNUTLS_E_AGAIN or ret == GNUTLS_E_INTERRUPTED);
894
fprintf_plus(stderr, "*** GnuTLS Re-handshake failed "
381
ret = gnutls_handshake (es.session);
383
fprintf(stderr, "\n*** Handshake failed ***\n");
902
fprintf_plus(stderr, "Unknown error while reading data from"
903
" encrypted session with Mandos server\n");
904
gnutls_bye(session, GNUTLS_SHUT_RDWR);
390
fprintf(stderr, "Unknown error while reading data from encrypted session with mandos server\n");
392
gnutls_bye (es.session, GNUTLS_SHUT_RDWR);
909
buffer_length += (size_t) sret;
914
fprintf_plus(stderr, "Closing TLS session\n");
923
ret = gnutls_bye(session, GNUTLS_SHUT_RDWR);
928
} while(ret == GNUTLS_E_AGAIN or ret == GNUTLS_E_INTERRUPTED);
930
if(buffer_length > 0){
931
ssize_t decrypted_buffer_size;
932
decrypted_buffer_size = pgp_packet_decrypt(buffer, buffer_length,
934
if(decrypted_buffer_size >= 0){
937
while(written < (size_t) decrypted_buffer_size){
943
ret = (int)fwrite(decrypted_buffer + written, 1,
944
(size_t)decrypted_buffer_size - written,
946
if(ret == 0 and ferror(stdout)){
949
fprintf_plus(stderr, "Error writing encrypted data: %s\n",
955
written += (size_t)ret;
961
/* Shutdown procedure */
966
free(decrypted_buffer);
969
ret = (int)TEMP_FAILURE_RETRY(close(tcp_sd));
975
perror_plus("close");
977
gnutls_deinit(session);
396
buffer_length += ret;
400
if (buffer_length > 0){
401
if ((decrypted_buffer_size = gpg_packet_decrypt(buffer, buffer_length, &decrypted_buffer, CERT_ROOT)) == 0){
404
fwrite (decrypted_buffer, 1, decrypted_buffer_size, stdout);
405
free(decrypted_buffer);
412
gnutls_bye (es.session, GNUTLS_SHUT_RDWR);
415
gnutls_deinit (es.session);
416
gnutls_certificate_free_credentials (es.cred);
417
gnutls_global_deinit ();
987
static void resolve_callback(AvahiSServiceResolver *r,
988
AvahiIfIndex interface,
990
AvahiResolverEvent event,
994
const char *host_name,
995
const AvahiAddress *address,
997
AVAHI_GCC_UNUSED AvahiStringList *txt,
998
AVAHI_GCC_UNUSED AvahiLookupResultFlags
1000
AVAHI_GCC_UNUSED void* userdata){
1003
/* Called whenever a service has been resolved successfully or
1012
case AVAHI_RESOLVER_FAILURE:
1013
fprintf_plus(stderr, "(Avahi Resolver) Failed to resolve service "
1014
"'%s' of type '%s' in domain '%s': %s\n", name, type,
1016
avahi_strerror(avahi_server_errno(mc.server)));
1019
case AVAHI_RESOLVER_FOUND:
1021
char ip[AVAHI_ADDRESS_STR_MAX];
1022
avahi_address_snprint(ip, sizeof(ip), address);
1024
fprintf_plus(stderr, "Mandos server \"%s\" found on %s (%s, %"
1025
PRIdMAX ") on port %" PRIu16 "\n", name,
1026
host_name, ip, (intmax_t)interface, port);
1028
int ret = start_mandos_communication(ip, port, interface,
1029
avahi_proto_to_af(proto));
1031
avahi_simple_poll_quit(mc.simple_poll);
1033
if(not add_server(ip, port, interface,
1034
avahi_proto_to_af(proto))){
1035
fprintf_plus(stderr, "Failed to add server \"%s\" to server"
1041
avahi_s_service_resolver_free(r);
1044
static void browse_callback(AvahiSServiceBrowser *b,
1045
AvahiIfIndex interface,
1046
AvahiProtocol protocol,
1047
AvahiBrowserEvent event,
1051
AVAHI_GCC_UNUSED AvahiLookupResultFlags
1053
AVAHI_GCC_UNUSED void* userdata){
1056
/* Called whenever a new services becomes available on the LAN or
1057
is removed from the LAN */
1065
case AVAHI_BROWSER_FAILURE:
1067
fprintf_plus(stderr, "(Avahi browser) %s\n",
1068
avahi_strerror(avahi_server_errno(mc.server)));
1069
avahi_simple_poll_quit(mc.simple_poll);
1072
case AVAHI_BROWSER_NEW:
1073
/* We ignore the returned Avahi resolver object. In the callback
1074
function we free it. If the Avahi server is terminated before
1075
the callback function is called the Avahi server will free the
1078
if(avahi_s_service_resolver_new(mc.server, interface, protocol,
1079
name, type, domain, protocol, 0,
1080
resolve_callback, NULL) == NULL)
1081
fprintf_plus(stderr, "Avahi: Failed to resolve service '%s':"
1083
avahi_strerror(avahi_server_errno(mc.server)));
1086
case AVAHI_BROWSER_REMOVE:
1089
case AVAHI_BROWSER_ALL_FOR_NOW:
1090
case AVAHI_BROWSER_CACHE_EXHAUSTED:
1092
fprintf_plus(stderr, "No Mandos server found, still"
1099
/* Signal handler that stops main loop after SIGTERM */
1100
static void handle_sigterm(int sig){
1105
signal_received = sig;
1106
int old_errno = errno;
1107
/* set main loop to exit */
1108
if(mc.simple_poll != NULL){
1109
avahi_simple_poll_quit(mc.simple_poll);
1114
bool get_flags(const char *ifname, struct ifreq *ifr){
1117
int s = socket(PF_INET6, SOCK_DGRAM, IPPROTO_IP);
1119
perror_plus("socket");
1122
strcpy(ifr->ifr_name, ifname);
1123
ret = ioctl(s, SIOCGIFFLAGS, ifr);
1126
perror_plus("ioctl SIOCGIFFLAGS");
1133
bool good_flags(const char *ifname, const struct ifreq *ifr){
1135
/* Reject the loopback device */
1136
if(ifr->ifr_flags & IFF_LOOPBACK){
1138
fprintf_plus(stderr, "Rejecting loopback interface \"%s\"\n",
1143
/* Accept point-to-point devices only if connect_to is specified */
1144
if(connect_to != NULL and (ifr->ifr_flags & IFF_POINTOPOINT)){
1146
fprintf_plus(stderr, "Accepting point-to-point interface"
1147
" \"%s\"\n", ifname);
1151
/* Otherwise, reject non-broadcast-capable devices */
1152
if(not (ifr->ifr_flags & IFF_BROADCAST)){
1154
fprintf_plus(stderr, "Rejecting non-broadcast interface"
1155
" \"%s\"\n", ifname);
1159
/* Reject non-ARP interfaces (including dummy interfaces) */
1160
if(ifr->ifr_flags & IFF_NOARP){
1162
fprintf_plus(stderr, "Rejecting non-ARP interface \"%s\"\n",
1168
/* Accept this device */
1170
fprintf_plus(stderr, "Interface \"%s\" is good\n", ifname);
1176
* This function determines if a directory entry in /sys/class/net
1177
* corresponds to an acceptable network device.
1178
* (This function is passed to scandir(3) as a filter function.)
1180
int good_interface(const struct dirent *if_entry){
1181
if(if_entry->d_name[0] == '.'){
1186
if(not get_flags(if_entry->d_name, &ifr)){
1188
fprintf_plus(stderr, "Failed to get flags for interface "
1189
"\"%s\"\n", if_entry->d_name);
1194
if(not good_flags(if_entry->d_name, &ifr)){
1201
* This function determines if a directory entry in /sys/class/net
1202
* corresponds to an acceptable network device which is up.
1203
* (This function is passed to scandir(3) as a filter function.)
1205
int up_interface(const struct dirent *if_entry){
1206
if(if_entry->d_name[0] == '.'){
1211
if(not get_flags(if_entry->d_name, &ifr)){
1213
fprintf_plus(stderr, "Failed to get flags for interface "
1214
"\"%s\"\n", if_entry->d_name);
1219
/* Reject down interfaces */
1220
if(not (ifr.ifr_flags & IFF_UP)){
1222
fprintf_plus(stderr, "Rejecting down interface \"%s\"\n",
1228
/* Reject non-running interfaces */
1229
if(not (ifr.ifr_flags & IFF_RUNNING)){
1231
fprintf_plus(stderr, "Rejecting non-running interface \"%s\"\n",
1237
if(not good_flags(if_entry->d_name, &ifr)){
1243
int notdotentries(const struct dirent *direntry){
1244
/* Skip "." and ".." */
1245
if(direntry->d_name[0] == '.'
1246
and (direntry->d_name[1] == '\0'
1247
or (direntry->d_name[1] == '.'
1248
and direntry->d_name[2] == '\0'))){
1254
/* Is this directory entry a runnable program? */
1255
int runnable_hook(const struct dirent *direntry){
1260
if((direntry->d_name)[0] == '\0'){
1265
sret = strspn(direntry->d_name, "ABCDEFGHIJKLMNOPQRSTUVWXYZ"
1266
"abcdefghijklmnopqrstuvwxyz"
1269
if((direntry->d_name)[sret] != '\0'){
1270
/* Contains non-allowed characters */
1272
fprintf_plus(stderr, "Ignoring hook \"%s\" with bad name\n",
1278
char *fullname = NULL;
1279
ret = asprintf(&fullname, "%s/%s", hookdir, direntry->d_name);
1281
perror_plus("asprintf");
1285
ret = stat(fullname, &st);
1288
perror_plus("Could not stat hook");
1292
if(not (S_ISREG(st.st_mode))){
1293
/* Not a regular file */
1295
fprintf_plus(stderr, "Ignoring hook \"%s\" - not a file\n",
1300
if(not (st.st_mode & (S_IXUSR | S_IXGRP | S_IXOTH))){
1301
/* Not executable */
1303
fprintf_plus(stderr, "Ignoring hook \"%s\" - not executable\n",
1309
fprintf_plus(stderr, "Hook \"%s\" is acceptable\n",
1315
int avahi_loop_with_timeout(AvahiSimplePoll *s, int retry_interval){
1317
struct timespec now;
1318
struct timespec waited_time;
1319
intmax_t block_time;
1322
if(mc.current_server == NULL){
1324
fprintf_plus(stderr, "Wait until first server is found."
1327
ret = avahi_simple_poll_iterate(s, -1);
1330
fprintf_plus(stderr, "Check current_server if we should run"
1333
/* the current time */
1334
ret = clock_gettime(CLOCK_MONOTONIC, &now);
1336
perror_plus("clock_gettime");
1339
/* Calculating in ms how long time between now and server
1340
who we visted longest time ago. Now - last seen. */
1341
waited_time.tv_sec = (now.tv_sec
1342
- mc.current_server->last_seen.tv_sec);
1343
waited_time.tv_nsec = (now.tv_nsec
1344
- mc.current_server->last_seen.tv_nsec);
1345
/* total time is 10s/10,000ms.
1346
Converting to s from ms by dividing by 1,000,
1347
and ns to ms by dividing by 1,000,000. */
1348
block_time = ((retry_interval
1349
- ((intmax_t)waited_time.tv_sec * 1000))
1350
- ((intmax_t)waited_time.tv_nsec / 1000000));
1353
fprintf_plus(stderr, "Blocking for %" PRIdMAX " ms\n",
1357
if(block_time <= 0){
1358
ret = start_mandos_communication(mc.current_server->ip,
1359
mc.current_server->port,
1360
mc.current_server->if_index,
1361
mc.current_server->af);
1363
avahi_simple_poll_quit(mc.simple_poll);
1366
ret = clock_gettime(CLOCK_MONOTONIC,
1367
&mc.current_server->last_seen);
1369
perror_plus("clock_gettime");
1372
mc.current_server = mc.current_server->next;
1373
block_time = 0; /* Call avahi to find new Mandos
1374
servers, but don't block */
1377
ret = avahi_simple_poll_iterate(s, (int)block_time);
1380
if (ret > 0 or errno != EINTR){
1381
return (ret != 1) ? ret : 0;
1387
bool run_network_hooks(const char *mode, const char *interface,
1389
struct dirent **direntries;
1390
struct dirent *direntry;
1392
int numhooks = scandir(hookdir, &direntries, runnable_hook,
1395
perror_plus("scandir");
1397
int devnull = open("/dev/null", O_RDONLY);
1398
for(int i = 0; i < numhooks; i++){
1399
direntry = direntries[i];
1400
char *fullname = NULL;
1401
ret = asprintf(&fullname, "%s/%s", hookdir, direntry->d_name);
1403
perror_plus("asprintf");
1407
fprintf_plus(stderr, "Running network hook \"%s\"\n",
1410
pid_t hook_pid = fork();
1413
/* Raise privileges */
1417
perror_plus("seteuid");
1419
/* Raise privileges even more */
1423
perror_plus("setuid");
1429
perror_plus("setgid");
1431
/* Reset supplementary groups */
1433
ret = setgroups(0, NULL);
1435
perror_plus("setgroups");
1437
dup2(devnull, STDIN_FILENO);
1439
dup2(STDERR_FILENO, STDOUT_FILENO);
1440
ret = setenv("MANDOSNETHOOKDIR", hookdir, 1);
1442
perror_plus("setenv");
1445
ret = setenv("DEVICE", interface, 1);
1447
perror_plus("setenv");
1450
ret = setenv("VERBOSE", debug ? "1" : "0", 1);
1452
perror_plus("setenv");
1455
ret = setenv("MODE", mode, 1);
1457
perror_plus("setenv");
1461
ret = asprintf(&delaystring, "%f", delay);
1463
perror_plus("asprintf");
1466
ret = setenv("DELAY", delaystring, 1);
1469
perror_plus("setenv");
1473
ret = execl(fullname, direntry->d_name, mode, NULL);
1474
perror_plus("execl");
1477
if(TEMP_FAILURE_RETRY(waitpid(hook_pid, &status, 0)) == -1){
1478
perror_plus("waitpid");
1482
if(WIFEXITED(status)){
1483
if(WEXITSTATUS(status) != 0){
1484
fprintf_plus(stderr, "Warning: network hook \"%s\" exited"
1485
" with status %d\n", direntry->d_name,
1486
WEXITSTATUS(status));
1490
} else if(WIFSIGNALED(status)){
1491
fprintf_plus(stderr, "Warning: network hook \"%s\" died by"
1492
" signal %d\n", direntry->d_name,
1497
fprintf_plus(stderr, "Warning: network hook \"%s\""
1498
" crashed\n", direntry->d_name);
1505
fprintf_plus(stderr, "Network hook \"%s\" ran successfully\n",
1514
int main(int argc, char *argv[]){
1515
AvahiSServiceBrowser *sb = NULL;
1520
int exitcode = EXIT_SUCCESS;
1521
const char *interface = "";
1522
struct ifreq network;
1524
bool take_down_interface = false;
1527
char tempdir[] = "/tmp/mandosXXXXXX";
1528
bool tempdir_created = false;
1529
AvahiIfIndex if_index = AVAHI_IF_UNSPEC;
1530
const char *seckey = PATHDIR "/" SECKEY;
1531
const char *pubkey = PATHDIR "/" PUBKEY;
1533
bool gnutls_initialized = false;
1534
bool gpgme_initialized = false;
1536
double retry_interval = 10; /* 10s between trying a server and
1537
retrying the same server again */
1539
struct sigaction old_sigterm_action = { .sa_handler = SIG_DFL };
1540
struct sigaction sigterm_action = { .sa_handler = handle_sigterm };
1545
/* Lower any group privileges we might have, just to be safe */
1549
perror_plus("setgid");
1552
/* Lower user privileges (temporarily) */
1556
perror_plus("seteuid");
1564
struct argp_option options[] = {
1565
{ .name = "debug", .key = 128,
1566
.doc = "Debug mode", .group = 3 },
1567
{ .name = "connect", .key = 'c',
1568
.arg = "ADDRESS:PORT",
1569
.doc = "Connect directly to a specific Mandos server",
1571
{ .name = "interface", .key = 'i',
1573
.doc = "Network interface that will be used to search for"
1576
{ .name = "seckey", .key = 's',
1578
.doc = "OpenPGP secret key file base name",
1580
{ .name = "pubkey", .key = 'p',
1582
.doc = "OpenPGP public key file base name",
1584
{ .name = "dh-bits", .key = 129,
1586
.doc = "Bit length of the prime number used in the"
1587
" Diffie-Hellman key exchange",
1589
{ .name = "priority", .key = 130,
1591
.doc = "GnuTLS priority string for the TLS handshake",
1593
{ .name = "delay", .key = 131,
1595
.doc = "Maximum delay to wait for interface startup",
1597
{ .name = "retry", .key = 132,
1599
.doc = "Retry interval used when denied by the mandos server",
1601
{ .name = "network-hook-dir", .key = 133,
1603
.doc = "Directory where network hooks are located",
1606
* These reproduce what we would get without ARGP_NO_HELP
1608
{ .name = "help", .key = '?',
1609
.doc = "Give this help list", .group = -1 },
1610
{ .name = "usage", .key = -3,
1611
.doc = "Give a short usage message", .group = -1 },
1612
{ .name = "version", .key = 'V',
1613
.doc = "Print program version", .group = -1 },
1617
error_t parse_opt(int key, char *arg,
1618
struct argp_state *state){
1621
case 128: /* --debug */
1624
case 'c': /* --connect */
1627
case 'i': /* --interface */
1630
case 's': /* --seckey */
1633
case 'p': /* --pubkey */
1636
case 129: /* --dh-bits */
1638
tmpmax = strtoimax(arg, &tmp, 10);
1639
if(errno != 0 or tmp == arg or *tmp != '\0'
1640
or tmpmax != (typeof(mc.dh_bits))tmpmax){
1641
argp_error(state, "Bad number of DH bits");
1643
mc.dh_bits = (typeof(mc.dh_bits))tmpmax;
1645
case 130: /* --priority */
1648
case 131: /* --delay */
1650
delay = strtof(arg, &tmp);
1651
if(errno != 0 or tmp == arg or *tmp != '\0'){
1652
argp_error(state, "Bad delay");
1654
case 132: /* --retry */
1656
retry_interval = strtod(arg, &tmp);
1657
if(errno != 0 or tmp == arg or *tmp != '\0'
1658
or (retry_interval * 1000) > INT_MAX
1659
or retry_interval < 0){
1660
argp_error(state, "Bad retry interval");
1663
case 133: /* --network-hook-dir */
1667
* These reproduce what we would get without ARGP_NO_HELP
1669
case '?': /* --help */
1670
argp_state_help(state, state->out_stream,
1671
(ARGP_HELP_STD_HELP | ARGP_HELP_EXIT_ERR)
1672
& ~(unsigned int)ARGP_HELP_EXIT_OK);
1673
case -3: /* --usage */
1674
argp_state_help(state, state->out_stream,
1675
ARGP_HELP_USAGE | ARGP_HELP_EXIT_ERR);
1676
case 'V': /* --version */
1677
fprintf_plus(state->out_stream, "%s\n", argp_program_version);
1678
exit(argp_err_exit_status);
1681
return ARGP_ERR_UNKNOWN;
1686
struct argp argp = { .options = options, .parser = parse_opt,
1688
.doc = "Mandos client -- Get and decrypt"
1689
" passwords from a Mandos server" };
1690
ret = argp_parse(&argp, argc, argv,
1691
ARGP_IN_ORDER | ARGP_NO_HELP, 0, NULL);
1698
perror_plus("argp_parse");
1699
exitcode = EX_OSERR;
1702
exitcode = EX_USAGE;
1708
/* Work around Debian bug #633582:
1709
<http://bugs.debian.org/633582> */
1711
/* Re-raise priviliges */
1715
perror_plus("seteuid");
1719
if(strcmp(seckey, PATHDIR "/" SECKEY) == 0){
1720
int seckey_fd = open(seckey, O_RDONLY);
1721
if(seckey_fd == -1){
1722
perror_plus("open");
1724
ret = (int)TEMP_FAILURE_RETRY(fstat(seckey_fd, &st));
1726
perror_plus("fstat");
1728
if(S_ISREG(st.st_mode)
1729
and st.st_uid == 0 and st.st_gid == 0){
1730
ret = fchown(seckey_fd, uid, gid);
1732
perror_plus("fchown");
1736
TEMP_FAILURE_RETRY(close(seckey_fd));
1740
if(strcmp(pubkey, PATHDIR "/" PUBKEY) == 0){
1741
int pubkey_fd = open(pubkey, O_RDONLY);
1742
if(pubkey_fd == -1){
1743
perror_plus("open");
1745
ret = (int)TEMP_FAILURE_RETRY(fstat(pubkey_fd, &st));
1747
perror_plus("fstat");
1749
if(S_ISREG(st.st_mode)
1750
and st.st_uid == 0 and st.st_gid == 0){
1751
ret = fchown(pubkey_fd, uid, gid);
1753
perror_plus("fchown");
1757
TEMP_FAILURE_RETRY(close(pubkey_fd));
1761
/* Lower privileges */
1765
perror_plus("seteuid");
1770
/* Run network hooks */
1771
if(not run_network_hooks("start", interface, delay)){
421
static AvahiSimplePoll *simple_poll = NULL;
422
static AvahiServer *server = NULL;
424
static void resolve_callback(
425
AvahiSServiceResolver *r,
426
AVAHI_GCC_UNUSED AvahiIfIndex interface,
427
AVAHI_GCC_UNUSED AvahiProtocol protocol,
428
AvahiResolverEvent event,
432
const char *host_name,
433
const AvahiAddress *address,
435
AvahiStringList *txt,
436
AvahiLookupResultFlags flags,
437
AVAHI_GCC_UNUSED void* userdata) {
441
/* Called whenever a service has been resolved successfully or timed out */
444
case AVAHI_RESOLVER_FAILURE:
445
fprintf(stderr, "(Resolver) Failed to resolve service '%s' of type '%s' in domain '%s': %s\n", name, type, domain, avahi_strerror(avahi_server_errno(server)));
448
case AVAHI_RESOLVER_FOUND: {
449
char ip[AVAHI_ADDRESS_STR_MAX];
450
avahi_address_snprint(ip, sizeof(ip), address);
451
int ret = start_mandos_communcation(ip, port);
459
avahi_s_service_resolver_free(r);
462
static void browse_callback(
463
AvahiSServiceBrowser *b,
464
AvahiIfIndex interface,
465
AvahiProtocol protocol,
466
AvahiBrowserEvent event,
470
AVAHI_GCC_UNUSED AvahiLookupResultFlags flags,
473
AvahiServer *s = userdata;
476
/* Called whenever a new services becomes available on the LAN or is removed from the LAN */
480
case AVAHI_BROWSER_FAILURE:
482
fprintf(stderr, "(Browser) %s\n", avahi_strerror(avahi_server_errno(server)));
483
avahi_simple_poll_quit(simple_poll);
486
case AVAHI_BROWSER_NEW:
487
/* We ignore the returned resolver object. In the callback
488
function we free it. If the server is terminated before
489
the callback function is called the server will free
490
the resolver for us. */
492
if (!(avahi_s_service_resolver_new(s, interface, protocol, name, type, domain, AVAHI_PROTO_INET6, 0, resolve_callback, s)))
493
fprintf(stderr, "Failed to resolve service '%s': %s\n", name, avahi_strerror(avahi_server_errno(s)));
497
case AVAHI_BROWSER_REMOVE:
500
case AVAHI_BROWSER_ALL_FOR_NOW:
501
case AVAHI_BROWSER_CACHE_EXHAUSTED:
506
int main(AVAHI_GCC_UNUSED int argc, AVAHI_GCC_UNUSED char*argv[]) {
507
AvahiServerConfig config;
508
AvahiSServiceBrowser *sb = NULL;
1776
512
avahi_set_log_function(empty_log);
1779
if(interface[0] == '\0'){
1780
struct dirent **direntries;
1781
/* First look for interfaces that are up */
1782
ret = scandir(sys_class_net, &direntries, up_interface,
1785
/* No up interfaces, look for any good interfaces */
1787
ret = scandir(sys_class_net, &direntries, good_interface,
1791
/* Pick the first interface returned */
1792
interface = strdup(direntries[0]->d_name);
1794
fprintf_plus(stderr, "Using interface \"%s\"\n", interface);
1796
if(interface == NULL){
1797
perror_plus("malloc");
1799
exitcode = EXIT_FAILURE;
1805
fprintf_plus(stderr, "Could not find a network interface\n");
1806
exitcode = EXIT_FAILURE;
1811
/* Initialize Avahi early so avahi_simple_poll_quit() can be called
1812
from the signal handler */
1813
/* Initialize the pseudo-RNG for Avahi */
1814
srand((unsigned int) time(NULL));
1815
mc.simple_poll = avahi_simple_poll_new();
1816
if(mc.simple_poll == NULL){
1817
fprintf_plus(stderr,
1818
"Avahi: Failed to create simple poll object.\n");
1819
exitcode = EX_UNAVAILABLE;
1823
sigemptyset(&sigterm_action.sa_mask);
1824
ret = sigaddset(&sigterm_action.sa_mask, SIGINT);
1826
perror_plus("sigaddset");
1827
exitcode = EX_OSERR;
1830
ret = sigaddset(&sigterm_action.sa_mask, SIGHUP);
1832
perror_plus("sigaddset");
1833
exitcode = EX_OSERR;
1836
ret = sigaddset(&sigterm_action.sa_mask, SIGTERM);
1838
perror_plus("sigaddset");
1839
exitcode = EX_OSERR;
1842
/* Need to check if the handler is SIG_IGN before handling:
1843
| [[info:libc:Initial Signal Actions]] |
1844
| [[info:libc:Basic Signal Handling]] |
1846
ret = sigaction(SIGINT, NULL, &old_sigterm_action);
1848
perror_plus("sigaction");
1851
if(old_sigterm_action.sa_handler != SIG_IGN){
1852
ret = sigaction(SIGINT, &sigterm_action, NULL);
1854
perror_plus("sigaction");
1855
exitcode = EX_OSERR;
1859
ret = sigaction(SIGHUP, NULL, &old_sigterm_action);
1861
perror_plus("sigaction");
1864
if(old_sigterm_action.sa_handler != SIG_IGN){
1865
ret = sigaction(SIGHUP, &sigterm_action, NULL);
1867
perror_plus("sigaction");
1868
exitcode = EX_OSERR;
1872
ret = sigaction(SIGTERM, NULL, &old_sigterm_action);
1874
perror_plus("sigaction");
1877
if(old_sigterm_action.sa_handler != SIG_IGN){
1878
ret = sigaction(SIGTERM, &sigterm_action, NULL);
1880
perror_plus("sigaction");
1881
exitcode = EX_OSERR;
1886
/* If the interface is down, bring it up */
1887
if(strcmp(interface, "none") != 0){
1888
if_index = (AvahiIfIndex) if_nametoindex(interface);
1890
fprintf_plus(stderr, "No such interface: \"%s\"\n", interface);
1891
exitcode = EX_UNAVAILABLE;
1899
/* Re-raise priviliges */
1903
perror_plus("seteuid");
1907
/* Lower kernel loglevel to KERN_NOTICE to avoid KERN_INFO
1908
messages about the network interface to mess up the prompt */
1909
ret = klogctl(8, NULL, 5);
1910
bool restore_loglevel = true;
1912
restore_loglevel = false;
1913
perror_plus("klogctl");
1915
#endif /* __linux__ */
1917
sd = socket(PF_INET6, SOCK_DGRAM, IPPROTO_IP);
1919
perror_plus("socket");
1920
exitcode = EX_OSERR;
1922
if(restore_loglevel){
1923
ret = klogctl(7, NULL, 0);
1925
perror_plus("klogctl");
1928
#endif /* __linux__ */
1929
/* Lower privileges */
1933
perror_plus("seteuid");
1937
strcpy(network.ifr_name, interface);
1938
ret = ioctl(sd, SIOCGIFFLAGS, &network);
1940
perror_plus("ioctl SIOCGIFFLAGS");
1942
if(restore_loglevel){
1943
ret = klogctl(7, NULL, 0);
1945
perror_plus("klogctl");
1948
#endif /* __linux__ */
1949
exitcode = EX_OSERR;
1950
/* Lower privileges */
1954
perror_plus("seteuid");
1958
if((network.ifr_flags & IFF_UP) == 0){
1959
network.ifr_flags |= IFF_UP;
1960
take_down_interface = true;
1961
ret = ioctl(sd, SIOCSIFFLAGS, &network);
1963
take_down_interface = false;
1964
perror_plus("ioctl SIOCSIFFLAGS +IFF_UP");
1965
exitcode = EX_OSERR;
1967
if(restore_loglevel){
1968
ret = klogctl(7, NULL, 0);
1970
perror_plus("klogctl");
1973
#endif /* __linux__ */
1974
/* Lower privileges */
1978
perror_plus("seteuid");
1983
/* Sleep checking until interface is running.
1984
Check every 0.25s, up to total time of delay */
1985
for(int i=0; i < delay * 4; i++){
1986
ret = ioctl(sd, SIOCGIFFLAGS, &network);
1988
perror_plus("ioctl SIOCGIFFLAGS");
1989
} else if(network.ifr_flags & IFF_RUNNING){
1992
struct timespec sleeptime = { .tv_nsec = 250000000 };
1993
ret = nanosleep(&sleeptime, NULL);
1994
if(ret == -1 and errno != EINTR){
1995
perror_plus("nanosleep");
1998
if(not take_down_interface){
1999
/* We won't need the socket anymore */
2000
ret = (int)TEMP_FAILURE_RETRY(close(sd));
2002
perror_plus("close");
2006
if(restore_loglevel){
2007
/* Restores kernel loglevel to default */
2008
ret = klogctl(7, NULL, 0);
2010
perror_plus("klogctl");
2013
#endif /* __linux__ */
2014
/* Lower privileges */
2016
/* Lower privileges */
2019
perror_plus("seteuid");
2027
ret = init_gnutls_global(pubkey, seckey);
2029
fprintf_plus(stderr, "init_gnutls_global failed\n");
2030
exitcode = EX_UNAVAILABLE;
2033
gnutls_initialized = true;
2040
if(mkdtemp(tempdir) == NULL){
2041
perror_plus("mkdtemp");
2044
tempdir_created = true;
2050
if(not init_gpgme(pubkey, seckey, tempdir)){
2051
fprintf_plus(stderr, "init_gpgme failed\n");
2052
exitcode = EX_UNAVAILABLE;
2055
gpgme_initialized = true;
2062
if(connect_to != NULL){
2063
/* Connect directly, do not use Zeroconf */
2064
/* (Mainly meant for debugging) */
2065
char *address = strrchr(connect_to, ':');
2066
if(address == NULL){
2067
fprintf_plus(stderr, "No colon in address\n");
2068
exitcode = EX_USAGE;
2078
tmpmax = strtoimax(address+1, &tmp, 10);
2079
if(errno != 0 or tmp == address+1 or *tmp != '\0'
2080
or tmpmax != (uint16_t)tmpmax){
2081
fprintf_plus(stderr, "Bad port number\n");
2082
exitcode = EX_USAGE;
2090
port = (uint16_t)tmpmax;
2092
/* Colon in address indicates IPv6 */
2094
if(strchr(connect_to, ':') != NULL){
2096
/* Accept [] around IPv6 address - see RFC 5952 */
2097
if(connect_to[0] == '[' and address[-1] == ']')
2105
address = connect_to;
2111
while(not quit_now){
2112
ret = start_mandos_communication(address, port, if_index, af);
2113
if(quit_now or ret == 0){
2117
fprintf_plus(stderr, "Retrying in %d seconds\n",
2118
(int)retry_interval);
2120
sleep((int)retry_interval);
2124
exitcode = EXIT_SUCCESS;
2135
AvahiServerConfig config;
2136
/* Do not publish any local Zeroconf records */
514
/* Initialize the psuedo-RNG */
517
/* Allocate main loop object */
518
if (!(simple_poll = avahi_simple_poll_new())) {
519
fprintf(stderr, "Failed to create simple poll object.\n");
523
/* Do not publish any local records */
2137
524
avahi_server_config_init(&config);
2138
525
config.publish_hinfo = 0;
2139
526
config.publish_addresses = 0;
2140
527
config.publish_workstation = 0;
2141
528
config.publish_domain = 0;
530
/* /\* Set a unicast DNS server for wide area DNS-SD *\/ */
531
/* avahi_address_parse("193.11.177.11", AVAHI_PROTO_UNSPEC, &config.wide_area_servers[0]); */
532
/* config.n_wide_area_servers = 1; */
533
/* config.enable_wide_area = 1; */
2143
535
/* Allocate a new server */
2144
mc.server = avahi_server_new(avahi_simple_poll_get
2145
(mc.simple_poll), &config, NULL,
2148
/* Free the Avahi configuration data */
536
server = avahi_server_new(avahi_simple_poll_get(simple_poll), &config, NULL, NULL, &error);
538
/* Free the configuration data */
2149
539
avahi_server_config_free(&config);
2152
/* Check if creating the Avahi server object succeeded */
2153
if(mc.server == NULL){
2154
fprintf_plus(stderr, "Failed to create Avahi server: %s\n",
2155
avahi_strerror(error));
2156
exitcode = EX_UNAVAILABLE;
2164
/* Create the Avahi service browser */
2165
sb = avahi_s_service_browser_new(mc.server, if_index,
2166
AVAHI_PROTO_UNSPEC, "_mandos._tcp",
2167
NULL, 0, browse_callback, NULL);
2169
fprintf_plus(stderr, "Failed to create service browser: %s\n",
2170
avahi_strerror(avahi_server_errno(mc.server)));
2171
exitcode = EX_UNAVAILABLE;
2179
/* Run the main loop */
2182
fprintf_plus(stderr, "Starting Avahi loop search\n");
2185
ret = avahi_loop_with_timeout(mc.simple_poll,
2186
(int)(retry_interval * 1000));
2188
fprintf_plus(stderr, "avahi_loop_with_timeout exited %s\n",
2189
(ret == 0) ? "successfully" : "with error");
2195
fprintf_plus(stderr, "%s exiting\n", argv[0]);
2198
/* Cleanup things */
2200
avahi_s_service_browser_free(sb);
2202
if(mc.server != NULL)
2203
avahi_server_free(mc.server);
2205
if(mc.simple_poll != NULL)
2206
avahi_simple_poll_free(mc.simple_poll);
2208
if(gnutls_initialized){
2209
gnutls_certificate_free_credentials(mc.cred);
2210
gnutls_global_deinit();
2211
gnutls_dh_params_deinit(mc.dh_params);
2214
if(gpgme_initialized){
2215
gpgme_release(mc.ctx);
2218
/* Cleans up the circular linked list of Mandos servers the client
2220
if(mc.current_server != NULL){
2221
mc.current_server->prev->next = NULL;
2222
while(mc.current_server != NULL){
2223
server *next = mc.current_server->next;
2224
free(mc.current_server);
2225
mc.current_server = next;
2229
/* Run network hooks */
2230
run_network_hooks("stop", interface, delay);
2232
/* Re-raise priviliges */
2237
perror_plus("seteuid");
2240
/* Take down the network interface */
2241
if(take_down_interface and geteuid() == 0){
2242
ret = ioctl(sd, SIOCGIFFLAGS, &network);
2244
perror_plus("ioctl SIOCGIFFLAGS");
2245
} else if(network.ifr_flags & IFF_UP){
2246
network.ifr_flags &= ~(short)IFF_UP; /* clear flag */
2247
ret = ioctl(sd, SIOCSIFFLAGS, &network);
2249
perror_plus("ioctl SIOCSIFFLAGS -IFF_UP");
2252
ret = (int)TEMP_FAILURE_RETRY(close(sd));
2254
perror_plus("close");
2258
/* Lower privileges permanently */
2262
perror_plus("setuid");
2265
/* Removes the GPGME temp directory and all files inside */
2266
if(tempdir_created){
2267
struct dirent **direntries = NULL;
2268
struct dirent *direntry = NULL;
2269
int numentries = scandir(tempdir, &direntries, notdotentries,
2271
if (numentries > 0){
2272
for(int i = 0; i < numentries; i++){
2273
direntry = direntries[i];
2274
char *fullname = NULL;
2275
ret = asprintf(&fullname, "%s/%s", tempdir,
2278
perror_plus("asprintf");
2281
ret = remove(fullname);
2283
fprintf_plus(stderr, "remove(\"%s\"): %s\n", fullname,
2290
/* need to clean even if 0 because man page doesn't specify */
2292
if (numentries == -1){
2293
perror_plus("scandir");
2295
ret = rmdir(tempdir);
2296
if(ret == -1 and errno != ENOENT){
2297
perror_plus("rmdir");
2302
sigemptyset(&old_sigterm_action.sa_mask);
2303
old_sigterm_action.sa_handler = SIG_DFL;
2304
ret = (int)TEMP_FAILURE_RETRY(sigaction(signal_received,
2305
&old_sigterm_action,
2308
perror_plus("sigaction");
2311
ret = raise(signal_received);
2312
} while(ret != 0 and errno == EINTR);
2314
perror_plus("raise");
2317
TEMP_FAILURE_RETRY(pause());
541
/* Check wether creating the server object succeeded */
543
fprintf(stderr, "Failed to create server: %s\n", avahi_strerror(error));
547
/* Create the service browser */
548
if (!(sb = avahi_s_service_browser_new(server, if_nametoindex("eth0"), AVAHI_PROTO_INET6, "_mandos._tcp", NULL, 0, browse_callback, server))) {
549
fprintf(stderr, "Failed to create service browser: %s\n", avahi_strerror(avahi_server_errno(server)));
553
/* Run the main loop */
554
avahi_simple_poll_loop(simple_poll);
562
avahi_s_service_browser_free(sb);
565
avahi_server_free(server);
568
avahi_simple_poll_free(simple_poll);