9
9
* "browse_callback", and parts of "main".
11
11
* Everything else is
12
* Copyright © 2008-2012 Teddy Hogeborn
13
* Copyright © 2008-2012 Björn Påhlsson
12
* Copyright © 2008-2011 Teddy Hogeborn
13
* Copyright © 2008-2011 Björn Påhlsson
15
15
* This program is free software: you can redistribute it and/or
16
16
* modify it under the terms of the GNU General Public License as
42
42
#include <stdio.h> /* fprintf(), stderr, fwrite(),
43
43
stdout, ferror(), remove() */
44
#include <stdint.h> /* uint16_t, uint32_t, intptr_t */
44
#include <stdint.h> /* uint16_t, uint32_t */
45
45
#include <stddef.h> /* NULL, size_t, ssize_t */
46
46
#include <stdlib.h> /* free(), EXIT_SUCCESS, srand(),
47
47
strtof(), abort() */
74
74
#include <unistd.h> /* close(), SEEK_SET, off_t, write(),
75
75
getuid(), getgid(), seteuid(),
76
setgid(), pause(), _exit() */
77
77
#include <arpa/inet.h> /* inet_pton(), htons, inet_ntop() */
78
78
#include <iso646.h> /* not, or, and */
79
79
#include <argp.h> /* struct argp_option, error_t, struct
173
170
/* Function to use when printing errors */
174
171
void perror_plus(const char *print_text){
176
172
fprintf(stderr, "Mandos plugin %s: ",
177
173
program_invocation_short_name);
179
174
perror(print_text);
182
__attribute__((format (gnu_printf, 2, 3)))
183
177
int fprintf_plus(FILE *stream, const char *format, ...){
185
179
va_start (ap, format);
209
203
/* Add server to set of servers to retry periodically */
210
bool add_server(const char *ip, uint16_t port, AvahiIfIndex if_index,
204
int add_server(const char *ip, uint16_t port, AvahiIfIndex if_index,
213
207
server *new_server = malloc(sizeof(server));
214
208
if(new_server == NULL){
215
209
perror_plus("malloc");
218
212
*new_server = (server){ .ip = strdup(ip),
826
/* This casting via intptr_t is to eliminate warning about casting
827
an int to a pointer type. This is exactly how the GnuTLS Guile
828
function "set-session-transport-fd!" does it. */
829
gnutls_transport_set_ptr(session,
830
(gnutls_transport_ptr_t)(intptr_t)tcp_sd);
820
/* Spurious warning from -Wint-to-pointer-cast */
821
gnutls_transport_set_ptr(session, (gnutls_transport_ptr_t) tcp_sd);
1039
1030
avahi_simple_poll_quit(mc.simple_poll);
1041
if(not add_server(ip, port, interface,
1042
avahi_proto_to_af(proto))){
1043
fprintf_plus(stderr, "Failed to add server \"%s\" to server"
1032
ret = add_server(ip, port, interface,
1033
avahi_proto_to_af(proto));
1395
/* Set effective uid to 0, return errno */
1396
error_t raise_privileges(void){
1397
error_t old_errno = errno;
1398
error_t ret_errno = 0;
1399
if(seteuid(0) == -1){
1401
perror_plus("seteuid");
1407
/* Set effective and real user ID to 0. Return errno. */
1408
error_t raise_privileges_permanently(void){
1409
error_t old_errno = errno;
1410
error_t ret_errno = raise_privileges();
1415
if(setuid(0) == -1){
1417
perror_plus("seteuid");
1423
/* Set effective user ID to unprivileged saved user ID */
1424
error_t lower_privileges(void){
1425
error_t old_errno = errno;
1426
error_t ret_errno = 0;
1427
if(seteuid(uid) == -1){
1429
perror_plus("seteuid");
1435
1379
bool run_network_hooks(const char *mode, const char *interface,
1436
1380
const float delay){
1437
1381
struct dirent **direntries;
1445
1389
int devnull = open("/dev/null", O_RDONLY);
1446
1390
for(int i = 0; i < numhooks; i++){
1447
direntry = direntries[i];
1391
direntry = direntries[0];
1448
1392
char *fullname = NULL;
1449
1393
ret = asprintf(&fullname, "%s/%s", hookdir, direntry->d_name);
1451
1395
perror_plus("asprintf");
1455
fprintf_plus(stderr, "Running network hook \"%s\"\n",
1458
1398
pid_t hook_pid = fork();
1459
1399
if(hook_pid == 0){
1461
/* Raise privileges */
1462
raise_privileges_permanently();
1467
perror_plus("setgid");
1469
/* Reset supplementary groups */
1471
ret = setgroups(0, NULL);
1473
perror_plus("setgroups");
1475
1401
dup2(devnull, STDIN_FILENO);
1476
1402
close(devnull);
1477
1403
dup2(STDERR_FILENO, STDOUT_FILENO);
1478
1404
ret = setenv("MANDOSNETHOOKDIR", hookdir, 1);
1480
1406
perror_plus("setenv");
1483
1409
ret = setenv("DEVICE", interface, 1);
1485
1411
perror_plus("setenv");
1488
ret = setenv("VERBOSITY", debug ? "1" : "0", 1);
1414
ret = setenv("VERBOSE", debug ? "1" : "0", 1);
1490
1416
perror_plus("setenv");
1493
1419
ret = setenv("MODE", mode, 1);
1495
1421
perror_plus("setenv");
1498
1424
char *delaystring;
1499
1425
ret = asprintf(&delaystring, "%f", delay);
1501
1427
perror_plus("asprintf");
1504
1430
ret = setenv("DELAY", delaystring, 1);
1506
1432
free(delaystring);
1507
1433
perror_plus("setenv");
1510
1436
free(delaystring);
1511
if(connect_to != NULL){
1512
ret = setenv("CONNECT", connect_to, 1);
1514
perror_plus("setenv");
1518
if(execl(fullname, direntry->d_name, mode, NULL) == -1){
1519
perror_plus("execl");
1520
_exit(EXIT_FAILURE);
1437
ret = execl(fullname, direntry->d_name, mode, NULL);
1438
perror_plus("execl");
1524
1441
if(TEMP_FAILURE_RETRY(waitpid(hook_pid, &status, 0)) == -1){
1561
int bring_up_interface(const char *const interface,
1564
int old_errno = errno;
1567
struct ifreq network;
1568
AvahiIfIndex if_index = (AvahiIfIndex)if_nametoindex(interface);
1570
fprintf_plus(stderr, "No such interface: \"%s\"\n", interface);
1580
/* Re-raise priviliges */
1584
/* Lower kernel loglevel to KERN_NOTICE to avoid KERN_INFO
1585
messages about the network interface to mess up the prompt */
1586
ret = klogctl(8, NULL, 5);
1587
bool restore_loglevel = true;
1589
restore_loglevel = false;
1590
perror_plus("klogctl");
1592
#endif /* __linux__ */
1594
sd = socket(PF_INET6, SOCK_DGRAM, IPPROTO_IP);
1597
perror_plus("socket");
1599
if(restore_loglevel){
1600
ret = klogctl(7, NULL, 0);
1602
perror_plus("klogctl");
1605
#endif /* __linux__ */
1606
/* Lower privileges */
1611
strcpy(network.ifr_name, interface);
1612
ret = ioctl(sd, SIOCGIFFLAGS, &network);
1615
perror_plus("ioctl SIOCGIFFLAGS");
1617
if(restore_loglevel){
1618
ret = klogctl(7, NULL, 0);
1620
perror_plus("klogctl");
1623
#endif /* __linux__ */
1624
/* Lower privileges */
1629
if((network.ifr_flags & IFF_UP) == 0){
1630
network.ifr_flags |= IFF_UP;
1631
ret = ioctl(sd, SIOCSIFFLAGS, &network);
1634
perror_plus("ioctl SIOCSIFFLAGS +IFF_UP");
1636
if(restore_loglevel){
1637
ret = klogctl(7, NULL, 0);
1639
perror_plus("klogctl");
1642
#endif /* __linux__ */
1643
/* Lower privileges */
1649
/* Sleep checking until interface is running.
1650
Check every 0.25s, up to total time of delay */
1651
for(int i=0; i < delay * 4; i++){
1652
ret = ioctl(sd, SIOCGIFFLAGS, &network);
1654
perror_plus("ioctl SIOCGIFFLAGS");
1655
} else if(network.ifr_flags & IFF_RUNNING){
1658
struct timespec sleeptime = { .tv_nsec = 250000000 };
1659
ret = nanosleep(&sleeptime, NULL);
1660
if(ret == -1 and errno != EINTR){
1661
perror_plus("nanosleep");
1664
/* Close the socket */
1665
ret = (int)TEMP_FAILURE_RETRY(close(sd));
1667
perror_plus("close");
1670
if(restore_loglevel){
1671
/* Restores kernel loglevel to default */
1672
ret = klogctl(7, NULL, 0);
1674
perror_plus("klogctl");
1677
#endif /* __linux__ */
1678
/* Lower privileges */
1684
1477
int main(int argc, char *argv[]){
1685
1478
AvahiSServiceBrowser *sb = NULL;
1842
1637
argp_state_help(state, state->out_stream,
1843
1638
ARGP_HELP_USAGE | ARGP_HELP_EXIT_ERR);
1844
1639
case 'V': /* --version */
1640
fprintf_plus(state->out_stream,
1641
"Mandos plugin mandos-client: ");
1845
1642
fprintf_plus(state->out_stream, "%s\n", argp_program_version);
1846
1643
exit(argp_err_exit_status);
1876
1673
/* Work around Debian bug #633582:
1877
1674
<http://bugs.debian.org/633582> */
1879
1677
/* Re-raise priviliges */
1880
if(raise_privileges() == 0){
1883
if(strcmp(seckey, PATHDIR "/" SECKEY) == 0){
1884
int seckey_fd = open(seckey, O_RDONLY);
1885
if(seckey_fd == -1){
1886
perror_plus("open");
1888
ret = (int)TEMP_FAILURE_RETRY(fstat(seckey_fd, &st));
1890
perror_plus("fstat");
1892
if(S_ISREG(st.st_mode)
1893
and st.st_uid == 0 and st.st_gid == 0){
1894
ret = fchown(seckey_fd, uid, gid);
1896
perror_plus("fchown");
1900
TEMP_FAILURE_RETRY(close(seckey_fd));
1904
if(strcmp(pubkey, PATHDIR "/" PUBKEY) == 0){
1905
int pubkey_fd = open(pubkey, O_RDONLY);
1906
if(pubkey_fd == -1){
1907
perror_plus("open");
1909
ret = (int)TEMP_FAILURE_RETRY(fstat(pubkey_fd, &st));
1911
perror_plus("fstat");
1913
if(S_ISREG(st.st_mode)
1914
and st.st_uid == 0 and st.st_gid == 0){
1915
ret = fchown(pubkey_fd, uid, gid);
1917
perror_plus("fchown");
1921
TEMP_FAILURE_RETRY(close(pubkey_fd));
1925
/* Lower privileges */
1929
perror_plus("seteuid");
1681
perror_plus("seteuid");
1684
if(strcmp(seckey, PATHDIR "/" SECKEY) == 0){
1685
int seckey_fd = open(seckey, O_RDONLY);
1686
if(seckey_fd == -1){
1687
perror_plus("open");
1689
ret = (int)TEMP_FAILURE_RETRY(fstat(seckey_fd, &st));
1691
perror_plus("fstat");
1693
if(S_ISREG(st.st_mode)
1694
and st.st_uid == 0 and st.st_gid == 0){
1695
ret = fchown(seckey_fd, uid, gid);
1697
perror_plus("fchown");
1701
TEMP_FAILURE_RETRY(close(seckey_fd));
1705
if(strcmp(pubkey, PATHDIR "/" PUBKEY) == 0){
1706
int pubkey_fd = open(pubkey, O_RDONLY);
1707
if(pubkey_fd == -1){
1708
perror_plus("open");
1710
ret = (int)TEMP_FAILURE_RETRY(fstat(pubkey_fd, &st));
1712
perror_plus("fstat");
1714
if(S_ISREG(st.st_mode)
1715
and st.st_uid == 0 and st.st_gid == 0){
1716
ret = fchown(pubkey_fd, uid, gid);
1718
perror_plus("fchown");
1722
TEMP_FAILURE_RETRY(close(pubkey_fd));
1726
/* Lower privileges */
1730
perror_plus("seteuid");
1934
1734
/* Run network hooks */
1935
if(not run_network_hooks("start", interface, delay)){
1736
/* Re-raise priviliges */
1740
perror_plus("seteuid");
1742
if(not run_network_hooks("start", interface, delay)){
1745
/* Lower privileges */
1749
perror_plus("seteuid");
2050
1864
/* If the interface is down, bring it up */
2051
if((interface[0] != '\0') and (strcmp(interface, "none") != 0)){
2052
ret = bring_up_interface(interface, delay);
2055
perror_plus("Failed to bring up interface");
1865
if(strcmp(interface, "none") != 0){
1866
if_index = (AvahiIfIndex) if_nametoindex(interface);
1868
fprintf_plus(stderr, "No such interface: \"%s\"\n", interface);
1869
exitcode = EX_UNAVAILABLE;
1877
/* Re-raise priviliges */
1881
perror_plus("seteuid");
1885
/* Lower kernel loglevel to KERN_NOTICE to avoid KERN_INFO
1886
messages about the network interface to mess up the prompt */
1887
ret = klogctl(8, NULL, 5);
1888
bool restore_loglevel = true;
1890
restore_loglevel = false;
1891
perror_plus("klogctl");
1893
#endif /* __linux__ */
1895
sd = socket(PF_INET6, SOCK_DGRAM, IPPROTO_IP);
1897
perror_plus("socket");
1898
exitcode = EX_OSERR;
1900
if(restore_loglevel){
1901
ret = klogctl(7, NULL, 0);
1903
perror_plus("klogctl");
1906
#endif /* __linux__ */
1907
/* Lower privileges */
1911
perror_plus("seteuid");
1915
strcpy(network.ifr_name, interface);
1916
ret = ioctl(sd, SIOCGIFFLAGS, &network);
1918
perror_plus("ioctl SIOCGIFFLAGS");
1920
if(restore_loglevel){
1921
ret = klogctl(7, NULL, 0);
1923
perror_plus("klogctl");
1926
#endif /* __linux__ */
1927
exitcode = EX_OSERR;
1928
/* Lower privileges */
1932
perror_plus("seteuid");
1936
if((network.ifr_flags & IFF_UP) == 0){
1937
network.ifr_flags |= IFF_UP;
1938
take_down_interface = true;
1939
ret = ioctl(sd, SIOCSIFFLAGS, &network);
1941
take_down_interface = false;
1942
perror_plus("ioctl SIOCSIFFLAGS +IFF_UP");
1943
exitcode = EX_OSERR;
1945
if(restore_loglevel){
1946
ret = klogctl(7, NULL, 0);
1948
perror_plus("klogctl");
1951
#endif /* __linux__ */
1952
/* Lower privileges */
1956
perror_plus("seteuid");
1961
/* Sleep checking until interface is running.
1962
Check every 0.25s, up to total time of delay */
1963
for(int i=0; i < delay * 4; i++){
1964
ret = ioctl(sd, SIOCGIFFLAGS, &network);
1966
perror_plus("ioctl SIOCGIFFLAGS");
1967
} else if(network.ifr_flags & IFF_RUNNING){
1970
struct timespec sleeptime = { .tv_nsec = 250000000 };
1971
ret = nanosleep(&sleeptime, NULL);
1972
if(ret == -1 and errno != EINTR){
1973
perror_plus("nanosleep");
1976
if(not take_down_interface){
1977
/* We won't need the socket anymore */
1978
ret = (int)TEMP_FAILURE_RETRY(close(sd));
1980
perror_plus("close");
1984
if(restore_loglevel){
1985
/* Restores kernel loglevel to default */
1986
ret = klogctl(7, NULL, 0);
1988
perror_plus("klogctl");
1991
#endif /* __linux__ */
1992
/* Lower privileges */
1994
/* Lower privileges */
1997
perror_plus("seteuid");