/[LeafOK_CVS]/lbbs/src/net_server.c
ViewVC logotype

Annotation of /lbbs/src/net_server.c

Parent Directory Parent Directory | Revision Log Revision Log


Revision 1.98 - (hide annotations)
Mon Dec 1 08:17:28 2025 UTC (3 months, 2 weeks ago) by sysadm
Branch: MAIN
Changes since 1.97: +4 -0 lines
Content type: text/x-csrc
Set sshbind and SSH_session into non-blocking mode after connection is established.

1 sysadm 1.77 /* SPDX-License-Identifier: GPL-3.0-or-later */
2     /*
3     * net_server
4     * - network server with SSH support
5     *
6 sysadm 1.78 * Copyright (C) 2004-2025 Leaflet <leaflet@leafok.com>
7 sysadm 1.77 */
8 sysadm 1.1
9 sysadm 1.81 #ifdef HAVE_CONFIG_H
10     #include "config.h"
11     #endif
12    
13 sysadm 1.62 #include "bbs.h"
14     #include "bbs_main.h"
15 sysadm 1.80 #include "bwf.h"
16 sysadm 1.1 #include "common.h"
17 sysadm 1.62 #include "database.h"
18     #include "file_loader.h"
19 sysadm 1.82 #include "hash_dict.h"
20 sysadm 1.7 #include "io.h"
21 sysadm 1.44 #include "init.h"
22 sysadm 1.62 #include "log.h"
23     #include "login.h"
24 sysadm 1.19 #include "menu.h"
25 sysadm 1.62 #include "net_server.h"
26 sysadm 1.67 #include "section_list.h"
27 sysadm 1.42 #include "section_list_loader.h"
28 sysadm 1.20 #include <errno.h>
29     #include <fcntl.h>
30 sysadm 1.74 #include <pty.h>
31 sysadm 1.19 #include <signal.h>
32 sysadm 1.20 #include <stdlib.h>
33 sysadm 1.62 #include <string.h>
34 sysadm 1.19 #include <unistd.h>
35 sysadm 1.74 #include <utmp.h>
36 sysadm 1.9 #include <arpa/inet.h>
37 sysadm 1.62 #include <libssh/callbacks.h>
38 sysadm 1.55 #include <libssh/libssh.h>
39     #include <libssh/server.h>
40 sysadm 1.62 #include <netinet/in.h>
41 sysadm 1.89 #include <sys/ioctl.h>
42 sysadm 1.62 #include <sys/socket.h>
43 sysadm 1.61 #include <sys/types.h>
44     #include <sys/wait.h>
45 sysadm 1.86
46 sysadm 1.88 #ifdef HAVE_SYS_EPOLL_H
47     #include <sys/epoll.h>
48     #else
49     #include <poll.h>
50     #endif
51    
52 sysadm 1.86 #ifdef HAVE_SYSTEMD_SD_DAEMON_H
53 sysadm 1.61 #include <systemd/sd-daemon.h>
54 sysadm 1.86 #endif
55 sysadm 1.3
56 sysadm 1.79 enum _net_server_constant_t
57     {
58     WAIT_CHILD_PROCESS_EXIT_TIMEOUT = 5, // second
59     WAIT_CHILD_PROCESS_KILL_TIMEOUT = 1, // second
60    
61     SSH_AUTH_MAX_DURATION = 60 * 1000, // milliseconds
62     };
63 sysadm 1.70
64 sysadm 1.74 /* A userdata struct for session. */
65     struct session_data_struct
66 sysadm 1.55 {
67     int tries;
68     int error;
69     };
70    
71 sysadm 1.74 /* A userdata struct for channel. */
72     struct channel_data_struct
73     {
74     /* pid of the child process the channel will spawn. */
75     pid_t pid;
76     /* For PTY allocation */
77     socket_t pty_master;
78     socket_t pty_slave;
79     /* For communication with the child process. */
80     socket_t child_stdin;
81     socket_t child_stdout;
82     /* Only used for subsystem and exec requests. */
83     socket_t child_stderr;
84     /* Event which is used to poll the above descriptors. */
85     ssh_event event;
86     /* Terminal size struct. */
87     struct winsize *winsize;
88     };
89    
90 sysadm 1.87 static int socket_server[2];
91     static int socket_client;
92 sysadm 1.88
93     #ifdef HAVE_SYS_EPOLL_H
94 sysadm 1.87 static int epollfd_server = -1;
95 sysadm 1.88 #endif
96    
97 sysadm 1.87 static ssh_bind sshbind;
98    
99     static HASH_DICT *hash_dict_pid_sockaddr = NULL;
100     static HASH_DICT *hash_dict_sockaddr_count = NULL;
101    
102     static const char SFTP_SERVER_PATH[] = "/usr/lib/sftp-server";
103    
104 sysadm 1.55 static int auth_password(ssh_session session, const char *user,
105     const char *password, void *userdata)
106     {
107 sysadm 1.74 struct session_data_struct *sdata = (struct session_data_struct *)userdata;
108 sysadm 1.55 int ret;
109    
110     if (strcmp(user, "guest") == 0)
111     {
112 sysadm 1.57 ret = load_guest_info();
113 sysadm 1.55 }
114     else
115     {
116 sysadm 1.57 ret = check_user(user, password);
117 sysadm 1.55 }
118    
119     if (ret == 0)
120     {
121     return SSH_AUTH_SUCCESS;
122     }
123    
124 sysadm 1.74 if ((++(sdata->tries)) >= BBS_login_retry_times)
125 sysadm 1.55 {
126 sysadm 1.74 sdata->error = 1;
127 sysadm 1.55 }
128    
129     return SSH_AUTH_DENIED;
130     }
131    
132     static int pty_request(ssh_session session, ssh_channel channel, const char *term,
133 sysadm 1.74 int cols, int rows, int px, int py, void *userdata)
134     {
135     struct channel_data_struct *cdata = (struct channel_data_struct *)userdata;
136     int rc;
137    
138     (void)session;
139     (void)channel;
140     (void)term;
141    
142     cdata->winsize->ws_row = (unsigned short int)rows;
143     cdata->winsize->ws_col = (unsigned short int)cols;
144     cdata->winsize->ws_xpixel = (unsigned short int)px;
145     cdata->winsize->ws_ypixel = (unsigned short int)py;
146    
147     rc = openpty(&cdata->pty_master, &cdata->pty_slave, NULL, NULL, cdata->winsize);
148     if (rc != 0)
149     {
150     log_error("Failed to open pty\n");
151     return SSH_ERROR;
152     }
153    
154     return SSH_OK;
155     }
156    
157     static int pty_resize(ssh_session session, ssh_channel channel, int cols, int rows,
158     int py, int px, void *userdata)
159     {
160     struct channel_data_struct *cdata = (struct channel_data_struct *)userdata;
161    
162     (void)session;
163     (void)channel;
164    
165     cdata->winsize->ws_row = (unsigned short int)rows;
166     cdata->winsize->ws_col = (unsigned short int)cols;
167     cdata->winsize->ws_xpixel = (unsigned short int)px;
168     cdata->winsize->ws_ypixel = (unsigned short int)py;
169    
170     if (cdata->pty_master != -1)
171     {
172     return ioctl(cdata->pty_master, TIOCSWINSZ, cdata->winsize);
173     }
174    
175     return SSH_ERROR;
176     }
177    
178     static int exec_pty(const char *mode, const char *command, struct channel_data_struct *cdata)
179     {
180     (void)cdata;
181    
182     if (command != NULL)
183     {
184     log_error("Forbid exec /bin/sh %s %s)\n", mode, command);
185     }
186    
187     return SSH_OK;
188     }
189    
190     static int exec_nopty(const char *command, struct channel_data_struct *cdata)
191     {
192     (void)cdata;
193    
194     if (command != NULL)
195     {
196     log_error("Forbid exec /bin/sh -c %s)\n", command);
197     }
198    
199     return SSH_OK;
200     }
201    
202     static int exec_request(ssh_session session, ssh_channel channel, const char *command, void *userdata)
203 sysadm 1.55 {
204 sysadm 1.74 struct channel_data_struct *cdata = (struct channel_data_struct *)userdata;
205    
206     (void)session;
207     (void)channel;
208    
209     if (cdata->pid > 0)
210     {
211     return SSH_ERROR;
212     }
213    
214     if (cdata->pty_master != -1 && cdata->pty_slave != -1)
215     {
216     return exec_pty("-c", command, cdata);
217     }
218     return exec_nopty(command, cdata);
219 sysadm 1.55 }
220    
221     static int shell_request(ssh_session session, ssh_channel channel, void *userdata)
222     {
223 sysadm 1.74 struct channel_data_struct *cdata = (struct channel_data_struct *)userdata;
224    
225     (void)session;
226     (void)channel;
227    
228     if (cdata->pid > 0)
229     {
230     return SSH_ERROR;
231     }
232    
233     if (cdata->pty_master != -1 && cdata->pty_slave != -1)
234     {
235     return exec_pty("-l", NULL, cdata);
236     }
237     /* Client requested a shell without a pty, let's pretend we allow that */
238     return SSH_OK;
239 sysadm 1.55 }
240    
241 sysadm 1.74 static int subsystem_request(ssh_session session, ssh_channel channel, const char *subsystem, void *userdata)
242     {
243     (void)session;
244     (void)channel;
245    
246     log_error("subsystem_request(subsystem=%s)\n", subsystem);
247    
248     /* subsystem requests behave similarly to exec requests. */
249     if (strcmp(subsystem, "sftp") == 0)
250     {
251     return exec_request(session, channel, SFTP_SERVER_PATH, userdata);
252     }
253     return SSH_ERROR;
254     }
255 sysadm 1.55
256 sysadm 1.74 static ssh_channel channel_open(ssh_session session, void *userdata)
257 sysadm 1.55 {
258 sysadm 1.74 (void)userdata;
259    
260 sysadm 1.55 if (SSH_channel != NULL)
261     {
262     return NULL;
263     }
264    
265     SSH_channel = ssh_channel_new(session);
266    
267     return SSH_channel;
268     }
269    
270 sysadm 1.56 static int fork_server(void)
271 sysadm 1.55 {
272     ssh_event event;
273 sysadm 1.71 long int ssh_timeout = 0;
274 sysadm 1.55 int pid;
275     int i;
276     int ret;
277    
278 sysadm 1.74 /* Structure for storing the pty size. */
279     struct winsize wsize = {
280     .ws_row = 0,
281     .ws_col = 0,
282     .ws_xpixel = 0,
283     .ws_ypixel = 0};
284    
285     /* Our struct holding information about the channel. */
286     struct channel_data_struct cdata = {
287     .pid = 0,
288     .pty_master = -1,
289     .pty_slave = -1,
290     .child_stdin = -1,
291     .child_stdout = -1,
292     .child_stderr = -1,
293     .event = NULL,
294     .winsize = &wsize};
295    
296     struct session_data_struct cb_data = {
297 sysadm 1.55 .tries = 0,
298     .error = 0,
299     };
300    
301 sysadm 1.74 struct ssh_channel_callbacks_struct channel_cb = {
302     .userdata = &cdata,
303     .channel_pty_request_function = pty_request,
304     .channel_pty_window_change_function = pty_resize,
305     .channel_shell_request_function = shell_request,
306     .channel_exec_request_function = exec_request,
307     .channel_subsystem_request_function = subsystem_request};
308    
309     struct ssh_server_callbacks_struct server_cb = {
310 sysadm 1.55 .userdata = &cb_data,
311     .auth_password_function = auth_password,
312 sysadm 1.74 .channel_open_request_session_function = channel_open,
313 sysadm 1.55 };
314    
315     pid = fork();
316    
317     if (pid > 0) // Parent process
318     {
319     SYS_child_process_count++;
320     log_common("Child process (%d) start\n", pid);
321     return pid;
322     }
323     else if (pid < 0) // Error
324     {
325     log_error("fork() error (%d)\n", errno);
326     return -1;
327     }
328    
329     // Child process
330 sysadm 1.88 #ifdef HAVE_SYS_EPOLL_H
331 sysadm 1.87 if (close(epollfd_server) < 0)
332     {
333     log_error("close(epollfd_server) error (%d)\n");
334     }
335 sysadm 1.88 #endif
336 sysadm 1.55
337 sysadm 1.87 for (i = 0; i < 2; i++)
338 sysadm 1.55 {
339 sysadm 1.87 if (close(socket_server[i]) == -1)
340     {
341     log_error("Close server socket failed\n");
342     }
343 sysadm 1.55 }
344    
345 sysadm 1.87 hash_dict_destroy(hash_dict_pid_sockaddr);
346     hash_dict_destroy(hash_dict_sockaddr_count);
347    
348 sysadm 1.55 SSH_session = ssh_new();
349    
350     if (SSH_v2)
351     {
352     if (ssh_bind_accept_fd(sshbind, SSH_session, socket_client) != SSH_OK)
353     {
354     log_error("ssh_bind_accept_fd() error: %s\n", ssh_get_error(SSH_session));
355     goto cleanup;
356     }
357    
358     ssh_bind_free(sshbind);
359    
360 sysadm 1.71 ssh_timeout = 60; // second
361     if (ssh_options_set(SSH_session, SSH_OPTIONS_TIMEOUT, &ssh_timeout) < 0)
362     {
363     log_error("Error setting SSH options: %s\n", ssh_get_error(SSH_session));
364     goto cleanup;
365     }
366    
367 sysadm 1.75 ssh_set_auth_methods(SSH_session, SSH_AUTH_METHOD_PASSWORD);
368    
369     ssh_callbacks_init(&server_cb);
370     ssh_callbacks_init(&channel_cb);
371    
372     ssh_set_server_callbacks(SSH_session, &server_cb);
373    
374 sysadm 1.55 if (ssh_handle_key_exchange(SSH_session))
375     {
376     log_error("ssh_handle_key_exchange() error: %s\n", ssh_get_error(SSH_session));
377     goto cleanup;
378     }
379    
380     event = ssh_event_new();
381     ssh_event_add_session(event, SSH_session);
382    
383 sysadm 1.58 for (i = 0; i < SSH_AUTH_MAX_DURATION && !SYS_server_exit && !cb_data.error && SSH_channel == NULL; i += 100)
384 sysadm 1.55 {
385 sysadm 1.58 ret = ssh_event_dopoll(event, 100); // 0.1 second
386 sysadm 1.55 if (ret == SSH_ERROR)
387     {
388 sysadm 1.73 #ifdef _DEBUG
389 sysadm 1.55 log_error("ssh_event_dopoll() error: %s\n", ssh_get_error(SSH_session));
390 sysadm 1.73 #endif
391 sysadm 1.55 goto cleanup;
392     }
393     }
394    
395     if (cb_data.error)
396     {
397     log_error("SSH auth error, tried %d times\n", cb_data.tries);
398     goto cleanup;
399     }
400 sysadm 1.71
401 sysadm 1.74 ssh_set_channel_callbacks(SSH_channel, &channel_cb);
402    
403 sysadm 1.75 do
404     {
405     ret = ssh_event_dopoll(event, 100); // 0.1 second
406     if (ret == SSH_ERROR)
407     {
408     ssh_channel_close(SSH_channel);
409     }
410    
411     if (ret == SSH_AGAIN) // loop until SSH connection is fully established
412     {
413     /* Executed only once, once the child process starts. */
414     cdata.event = event;
415     break;
416     }
417     } while (ssh_channel_is_open(SSH_channel));
418    
419 sysadm 1.71 ssh_timeout = 0;
420     if (ssh_options_set(SSH_session, SSH_OPTIONS_TIMEOUT, &ssh_timeout) < 0)
421     {
422     log_error("Error setting SSH options: %s\n", ssh_get_error(SSH_session));
423     goto cleanup;
424     }
425 sysadm 1.98
426     ssh_set_blocking(SSH_session, 0);
427 sysadm 1.55 }
428    
429     // Redirect Input
430     if (dup2(socket_client, STDIN_FILENO) == -1)
431     {
432     log_error("Redirect stdin to client socket failed\n");
433     goto cleanup;
434     }
435    
436     // Redirect Output
437     if (dup2(socket_client, STDOUT_FILENO) == -1)
438     {
439     log_error("Redirect stdout to client socket failed\n");
440     goto cleanup;
441     }
442    
443 sysadm 1.87 if (io_init() < 0)
444     {
445     log_error("io_init() error\n");
446     goto cleanup;
447     }
448    
449 sysadm 1.55 SYS_child_process_count = 0;
450    
451 sysadm 1.96 // BWF compile
452     if (bwf_compile() < 0)
453 sysadm 1.95 {
454 sysadm 1.96 log_error("bwf_compile() error\n");
455 sysadm 1.95 goto cleanup;
456     }
457    
458 sysadm 1.55 bbs_main();
459    
460     cleanup:
461     // Child process exit
462     SYS_server_exit = 1;
463    
464     if (SSH_v2)
465     {
466 sysadm 1.87 if (cdata.pty_master != -1)
467     {
468     close(cdata.pty_master);
469     }
470     if (cdata.child_stdin != -1)
471     {
472     close(cdata.child_stdin);
473     }
474     if (cdata.child_stdout != -1)
475     {
476     close(cdata.child_stdout);
477     }
478     if (cdata.child_stderr != -1)
479     {
480     close(cdata.child_stderr);
481     }
482 sysadm 1.74
483 sysadm 1.55 ssh_channel_free(SSH_channel);
484     ssh_disconnect(SSH_session);
485     }
486     else if (close(socket_client) == -1)
487     {
488     log_error("Close client socket failed\n");
489     }
490    
491     ssh_free(SSH_session);
492     ssh_finalize();
493    
494 sysadm 1.96 // BWF cleanup
495     bwf_cleanup();
496 sysadm 1.95
497 sysadm 1.55 // Close Input and Output for client
498 sysadm 1.87 io_cleanup();
499 sysadm 1.55 close(STDIN_FILENO);
500     close(STDOUT_FILENO);
501    
502     log_common("Process exit normally\n");
503     log_end();
504    
505     _exit(0);
506    
507     return 0;
508     }
509    
510 sysadm 1.52 int net_server(const char *hostaddr, in_port_t port[])
511 sysadm 1.1 {
512 sysadm 1.52 unsigned int addrlen;
513 sysadm 1.19 int ret;
514 sysadm 1.87 int flags_server[2];
515 sysadm 1.13 struct sockaddr_in sin;
516 sysadm 1.88
517     #ifdef HAVE_SYS_EPOLL_H
518 sysadm 1.25 struct epoll_event ev, events[MAX_EVENTS];
519 sysadm 1.88 #else
520     struct pollfd pfds[2];
521     #endif
522    
523 sysadm 1.87 int nfds;
524 sysadm 1.70 int notify_child_exit = 0;
525     time_t tm_notify_child_exit = time(NULL);
526 sysadm 1.44 int i, j;
527     pid_t pid;
528 sysadm 1.97 int ssh_key_valid = 0;
529 sysadm 1.51 int ssh_log_level = SSH_LOG_NOLOG;
530 sysadm 1.88
531 sysadm 1.86 #ifdef HAVE_SYSTEMD_SD_DAEMON_H
532     int sd_notify_stopping = 0;
533     #endif
534 sysadm 1.10
535 sysadm 1.51 ssh_init();
536    
537     sshbind = ssh_bind_new();
538    
539 sysadm 1.97 if (ssh_bind_options_set(sshbind, SSH_BIND_OPTIONS_HOSTKEY, SSH_HOST_RSA_KEY_FILE) < 0)
540     {
541     log_error("Error setting SSH RSA key: %s\n", SSH_HOST_RSA_KEY_FILE);
542     }
543     else
544     {
545     ssh_key_valid = 1;
546     }
547     if (ssh_bind_options_set(sshbind, SSH_BIND_OPTIONS_HOSTKEY, SSH_HOST_ED25519_KEY_FILE) < 0)
548     {
549     log_error("Error setting SSH ED25519 key: %s\n", SSH_HOST_ED25519_KEY_FILE);
550     }
551     else
552     {
553     ssh_key_valid = 1;
554     }
555    
556     if (!ssh_key_valid)
557     {
558     log_error("Error: no valid SSH host key\n");
559     ssh_bind_free(sshbind);
560     return -1;
561     }
562    
563 sysadm 1.51 if (ssh_bind_options_set(sshbind, SSH_BIND_OPTIONS_BINDADDR, hostaddr) < 0 ||
564     ssh_bind_options_set(sshbind, SSH_BIND_OPTIONS_BINDPORT, &port) < 0 ||
565 sysadm 1.97 ssh_bind_options_set(sshbind, SSH_BIND_OPTIONS_HOSTKEY_ALGORITHMS, "ssh-rsa,rsa-sha2-512,rsa-sha2-256,ssh-ed25519") < 0 ||
566 sysadm 1.51 ssh_bind_options_set(sshbind, SSH_BIND_OPTIONS_LOG_VERBOSITY, &ssh_log_level) < 0)
567     {
568     log_error("Error setting SSH bind options: %s\n", ssh_get_error(sshbind));
569     ssh_bind_free(sshbind);
570     return -1;
571     }
572 sysadm 1.10
573 sysadm 1.88 #ifdef HAVE_SYS_EPOLL_H
574 sysadm 1.87 epollfd_server = epoll_create1(0);
575     if (epollfd_server == -1)
576 sysadm 1.13 {
577 sysadm 1.52 log_error("epoll_create1() error (%d)\n", errno);
578 sysadm 1.27 return -1;
579 sysadm 1.13 }
580 sysadm 1.88 #endif
581 sysadm 1.10
582 sysadm 1.52 // Server socket
583     for (i = 0; i < 2; i++)
584 sysadm 1.23 {
585 sysadm 1.52 socket_server[i] = socket(AF_INET, SOCK_STREAM, IPPROTO_TCP);
586 sysadm 1.23
587 sysadm 1.52 if (socket_server[i] < 0)
588     {
589     log_error("Create socket_server error (%d)\n", errno);
590     return -1;
591     }
592 sysadm 1.10
593 sysadm 1.52 sin.sin_family = AF_INET;
594     sin.sin_addr.s_addr = (hostaddr[0] != '\0' ? inet_addr(hostaddr) : INADDR_ANY);
595     sin.sin_port = htons(port[i]);
596    
597     // Reuse address and port
598 sysadm 1.87 flags_server[i] = 1;
599     if (setsockopt(socket_server[i], SOL_SOCKET, SO_REUSEADDR, &flags_server[i], sizeof(flags_server[i])) < 0)
600 sysadm 1.52 {
601     log_error("setsockopt SO_REUSEADDR error (%d)\n", errno);
602     }
603 sysadm 1.90 #if defined(SO_REUSEPORT)
604 sysadm 1.87 if (setsockopt(socket_server[i], SOL_SOCKET, SO_REUSEPORT, &flags_server[i], sizeof(flags_server[i])) < 0)
605 sysadm 1.52 {
606     log_error("setsockopt SO_REUSEPORT error (%d)\n", errno);
607     }
608 sysadm 1.90 #endif
609 sysadm 1.1
610 sysadm 1.52 if (bind(socket_server[i], (struct sockaddr *)&sin, sizeof(sin)) < 0)
611     {
612     log_error("Bind address %s:%u error (%d)\n",
613     inet_ntoa(sin.sin_addr), ntohs(sin.sin_port), errno);
614     return -1;
615     }
616 sysadm 1.16
617 sysadm 1.52 if (listen(socket_server[i], 10) < 0)
618     {
619     log_error("Telnet socket listen error (%d)\n", errno);
620     return -1;
621     }
622 sysadm 1.13
623 sysadm 1.52 log_common("Listening at %s:%u\n", inet_ntoa(sin.sin_addr), ntohs(sin.sin_port));
624 sysadm 1.25
625 sysadm 1.88 #ifdef HAVE_SYS_EPOLL_H
626 sysadm 1.52 ev.events = EPOLLIN;
627     ev.data.fd = socket_server[i];
628 sysadm 1.87 if (epoll_ctl(epollfd_server, EPOLL_CTL_ADD, socket_server[i], &ev) == -1)
629 sysadm 1.30 {
630 sysadm 1.52 log_error("epoll_ctl(socket_server[%d]) error (%d)\n", i, errno);
631 sysadm 1.87 if (close(epollfd_server) < 0)
632 sysadm 1.52 {
633     log_error("close(epoll) error (%d)\n");
634     }
635     return -1;
636 sysadm 1.30 }
637 sysadm 1.88 #endif
638 sysadm 1.52
639 sysadm 1.87 flags_server[i] = fcntl(socket_server[i], F_GETFL, 0);
640     fcntl(socket_server[i], F_SETFL, flags_server[i] | O_NONBLOCK);
641 sysadm 1.25 }
642    
643 sysadm 1.98 ssh_bind_set_blocking(sshbind, 0);
644    
645 sysadm 1.82 hash_dict_pid_sockaddr = hash_dict_create(MAX_CLIENT_LIMIT);
646     if (hash_dict_pid_sockaddr == NULL)
647     {
648     log_error("hash_dict_create(hash_dict_pid_sockaddr) error\n");
649     return -1;
650     }
651     hash_dict_sockaddr_count = hash_dict_create(MAX_CLIENT_LIMIT);
652     if (hash_dict_sockaddr_count == NULL)
653     {
654     log_error("hash_dict_create(hash_dict_sockaddr_count) error\n");
655     return -1;
656     }
657    
658 sysadm 1.31 // Startup complete
659 sysadm 1.86 #ifdef HAVE_SYSTEMD_SD_DAEMON_H
660 sysadm 1.31 sd_notifyf(0, "READY=1\n"
661 sysadm 1.52 "STATUS=Listening at %s:%d (Telnet) and %s:%d (SSH2)\n"
662 sysadm 1.31 "MAINPID=%d",
663 sysadm 1.52 hostaddr, port[0], hostaddr, port[1], getpid());
664 sysadm 1.86 #endif
665 sysadm 1.31
666 sysadm 1.19 while (!SYS_server_exit || SYS_child_process_count > 0)
667 sysadm 1.13 {
668 sysadm 1.86 #ifdef HAVE_SYSTEMD_SD_DAEMON_H
669 sysadm 1.31 if (SYS_server_exit && !sd_notify_stopping)
670     {
671     sd_notify(0, "STOPPING=1");
672     sd_notify_stopping = 1;
673     }
674 sysadm 1.86 #endif
675 sysadm 1.37
676 sysadm 1.22 while ((SYS_child_exit || SYS_server_exit) && SYS_child_process_count > 0)
677 sysadm 1.19 {
678 sysadm 1.30 SYS_child_exit = 0;
679    
680 sysadm 1.92 pid = waitpid(-1, &ret, WNOHANG);
681 sysadm 1.89 if (pid > 0)
682 sysadm 1.19 {
683 sysadm 1.30 SYS_child_exit = 1; // Retry waitid
684 sysadm 1.92 SYS_child_process_count--;
685 sysadm 1.30
686 sysadm 1.92 if (WIFEXITED(ret))
687     {
688     log_common("Child process (%d) exited, status=%d\n", pid, WEXITSTATUS(ret));
689     }
690     else if (WIFSIGNALED(ret))
691     {
692     log_common("Child process (%d) is killed, status=%d\n", pid, WTERMSIG(ret));
693     }
694     else
695     {
696     log_common("Child process (%d) exited abnormally, status=%d\n", pid, ret);
697     }
698 sysadm 1.44
699 sysadm 1.89 if (pid != section_list_loader_pid)
700 sysadm 1.44 {
701 sysadm 1.82 j = 0;
702 sysadm 1.89 ret = hash_dict_get(hash_dict_pid_sockaddr, (uint64_t)pid, (int64_t *)&j);
703 sysadm 1.82 if (ret < 0)
704     {
705 sysadm 1.89 log_error("hash_dict_get(hash_dict_pid_sockaddr, %d) error\n", pid);
706 sysadm 1.82 }
707     else
708 sysadm 1.44 {
709 sysadm 1.85 ret = hash_dict_inc(hash_dict_sockaddr_count, (uint64_t)j, -1);
710 sysadm 1.82 if (ret < 0)
711     {
712 sysadm 1.85 log_error("hash_dict_inc(hash_dict_sockaddr_count, %d, -1) error\n", j);
713 sysadm 1.82 }
714    
715 sysadm 1.89 ret = hash_dict_del(hash_dict_pid_sockaddr, (uint64_t)pid);
716 sysadm 1.82 if (ret < 0)
717 sysadm 1.45 {
718 sysadm 1.89 log_error("hash_dict_del(hash_dict_pid_sockaddr, %d) error\n", pid);
719 sysadm 1.45 }
720     }
721 sysadm 1.44 }
722 sysadm 1.19 }
723 sysadm 1.89 else if (pid == 0)
724 sysadm 1.19 {
725     break;
726     }
727 sysadm 1.89 else if (pid < 0)
728 sysadm 1.19 {
729 sysadm 1.89 log_error("Error in waitpid(): %d\n", errno);
730 sysadm 1.19 break;
731     }
732     }
733    
734 sysadm 1.22 if (SYS_server_exit && !SYS_child_exit && SYS_child_process_count > 0)
735 sysadm 1.21 {
736 sysadm 1.70 if (notify_child_exit == 0)
737 sysadm 1.21 {
738 sysadm 1.86 #ifdef HAVE_SYSTEMD_SD_DAEMON_H
739 sysadm 1.70 sd_notifyf(0, "STATUS=Notify %d child process to exit", SYS_child_process_count);
740     log_common("Notify %d child process to exit\n", SYS_child_process_count);
741 sysadm 1.86 #endif
742 sysadm 1.70
743 sysadm 1.93 if (kill(0, SIGTERM) < 0)
744 sysadm 1.70 {
745     log_error("Send SIGTERM signal failed (%d)\n", errno);
746     }
747    
748     notify_child_exit = 1;
749     tm_notify_child_exit = time(NULL);
750 sysadm 1.21 }
751 sysadm 1.70 else if (notify_child_exit == 1 && time(NULL) - tm_notify_child_exit >= WAIT_CHILD_PROCESS_EXIT_TIMEOUT)
752     {
753 sysadm 1.86 #ifdef HAVE_SYSTEMD_SD_DAEMON_H
754 sysadm 1.70 sd_notifyf(0, "STATUS=Kill %d child process", SYS_child_process_count);
755 sysadm 1.86 #endif
756 sysadm 1.31
757 sysadm 1.93 if (kill(0, SIGKILL) < 0)
758 sysadm 1.70 {
759 sysadm 1.82 log_error("Send SIGKILL signal failed (%d)\n", errno);
760 sysadm 1.70 }
761 sysadm 1.69
762 sysadm 1.70 notify_child_exit = 2;
763     tm_notify_child_exit = time(NULL);
764     }
765     else if (notify_child_exit == 2 && time(NULL) - tm_notify_child_exit >= WAIT_CHILD_PROCESS_KILL_TIMEOUT)
766     {
767     log_error("Main process prepare to exit without waiting for %d child process any longer\n", SYS_child_process_count);
768     SYS_child_process_count = 0;
769     }
770 sysadm 1.21 }
771    
772 sysadm 1.44 if (SYS_conf_reload && !SYS_server_exit)
773 sysadm 1.19 {
774 sysadm 1.44 SYS_conf_reload = 0;
775 sysadm 1.86
776     #ifdef HAVE_SYSTEMD_SD_DAEMON_H
777 sysadm 1.37 sd_notify(0, "RELOADING=1");
778 sysadm 1.86 #endif
779 sysadm 1.30
780 sysadm 1.84 // Restart log
781     if (log_restart() < 0)
782     {
783     log_error("Restart logging failed\n");
784     }
785    
786 sysadm 1.44 // Reload configuration
787     if (load_conf(CONF_BBSD) < 0)
788     {
789     log_error("Reload conf failed\n");
790     }
791    
792 sysadm 1.80 // Reload BWF config
793     if (bwf_load(CONF_BWF) < 0)
794     {
795     log_error("Reload BWF conf failed\n");
796     }
797    
798 sysadm 1.94 if (detach_menu_shm(&bbs_menu) < 0)
799 sysadm 1.34 {
800 sysadm 1.94 log_error("detach_menu_shm(bbs_menu) error\n");
801 sysadm 1.19 }
802 sysadm 1.94 if (load_menu(&bbs_menu, CONF_MENU) < 0)
803 sysadm 1.19 {
804 sysadm 1.94 log_error("load_menu(bbs_menu) error\n");
805 sysadm 1.68 unload_menu(&bbs_menu);
806 sysadm 1.72 }
807    
808 sysadm 1.94 if (detach_menu_shm(&top10_menu) < 0)
809 sysadm 1.72 {
810 sysadm 1.94 log_error("detach_menu_shm(top10_menu) error\n");
811 sysadm 1.72 }
812 sysadm 1.94 if (load_menu(&top10_menu, CONF_TOP10_MENU) < 0)
813 sysadm 1.72 {
814 sysadm 1.94 log_error("load_menu(top10_menu) error\n");
815 sysadm 1.72 unload_menu(&top10_menu);
816 sysadm 1.19 }
817 sysadm 1.37
818 sysadm 1.35 for (int i = 0; i < data_files_load_startup_count; i++)
819     {
820 sysadm 1.39 if (load_file(data_files_load_startup[i]) < 0)
821 sysadm 1.35 {
822 sysadm 1.76 log_error("load_file(%s) error\n", data_files_load_startup[i]);
823 sysadm 1.35 }
824     }
825    
826 sysadm 1.68 // Load section config and gen_ex
827     if (load_section_config_from_db(1) < 0)
828     {
829     log_error("load_section_config_from_db(1) error\n");
830     }
831    
832 sysadm 1.84 // Notify child processes to reload configuration
833 sysadm 1.93 if (kill(0, SIGUSR1) < 0)
834 sysadm 1.84 {
835     log_error("Send SIGUSR1 signal failed (%d)\n", errno);
836     }
837    
838 sysadm 1.86 #ifdef HAVE_SYSTEMD_SD_DAEMON_H
839 sysadm 1.68 sd_notify(0, "READY=1");
840 sysadm 1.86 #endif
841 sysadm 1.42 }
842    
843 sysadm 1.88 #ifdef HAVE_SYS_EPOLL_H
844 sysadm 1.87 nfds = epoll_wait(epollfd_server, events, MAX_EVENTS, 100); // 0.1 second
845 sysadm 1.88 ret = nfds;
846     #else
847     pfds[0].fd = socket_server[0];
848     pfds[0].events = POLLIN;
849     pfds[1].fd = socket_server[1];
850     pfds[1].events = POLLIN;
851     nfds = 2;
852     ret = poll(pfds, (nfds_t)nfds, 100); // 0.1 second
853     #endif
854     if (ret < 0)
855 sysadm 1.19 {
856     if (errno != EINTR)
857     {
858 sysadm 1.88 #ifdef HAVE_SYS_EPOLL_H
859 sysadm 1.25 log_error("epoll_wait() error (%d)\n", errno);
860 sysadm 1.88 #else
861     log_error("poll() error (%d)\n", errno);
862     #endif
863 sysadm 1.25 break;
864 sysadm 1.19 }
865     continue;
866     }
867 sysadm 1.13
868 sysadm 1.19 // Stop accept new connection on exit
869     if (SYS_server_exit)
870 sysadm 1.13 {
871     continue;
872     }
873    
874 sysadm 1.25 for (int i = 0; i < nfds; i++)
875 sysadm 1.13 {
876 sysadm 1.88 #ifdef HAVE_SYS_EPOLL_H
877 sysadm 1.52 if (events[i].data.fd == socket_server[0] || events[i].data.fd == socket_server[1])
878 sysadm 1.88 #else
879     if ((pfds[i].fd == socket_server[0] || pfds[i].fd == socket_server[1]) && (pfds[i].revents & POLLIN))
880     #endif
881 sysadm 1.13 {
882 sysadm 1.88 #ifdef HAVE_SYS_EPOLL_H
883 sysadm 1.53 SSH_v2 = (events[i].data.fd == socket_server[1] ? 1 : 0);
884 sysadm 1.88 #else
885     SSH_v2 = (pfds[i].fd == socket_server[1] ? 1 : 0);
886     #endif
887 sysadm 1.52
888 sysadm 1.29 while (!SYS_server_exit) // Accept all incoming connections until error
889 sysadm 1.13 {
890 sysadm 1.52 addrlen = sizeof(sin);
891 sysadm 1.91 socket_client = accept(socket_server[SSH_v2], (struct sockaddr *)&sin, (socklen_t *)&addrlen);
892 sysadm 1.25 if (socket_client < 0)
893     {
894 sysadm 1.28 if (errno == EAGAIN || errno == EWOULDBLOCK)
895     {
896     break;
897     }
898     else if (errno == EINTR)
899     {
900     continue;
901     }
902     else
903 sysadm 1.25 {
904     log_error("accept(socket_server) error (%d)\n", errno);
905 sysadm 1.28 break;
906 sysadm 1.25 }
907     }
908    
909     strncpy(hostaddr_client, inet_ntoa(sin.sin_addr), sizeof(hostaddr_client) - 1);
910     hostaddr_client[sizeof(hostaddr_client) - 1] = '\0';
911    
912     port_client = ntohs(sin.sin_port);
913    
914 sysadm 1.64 log_common("Accept %s connection from %s:%d\n", (SSH_v2 ? "SSH" : "telnet"), hostaddr_client, port_client);
915 sysadm 1.25
916 sysadm 1.43 if (SYS_child_process_count - 1 < BBS_max_client)
917 sysadm 1.25 {
918 sysadm 1.44 j = 0;
919 sysadm 1.82 ret = hash_dict_get(hash_dict_sockaddr_count, (uint64_t)sin.sin_addr.s_addr, (int64_t *)&j);
920     if (ret < 0)
921 sysadm 1.44 {
922 sysadm 1.82 log_error("hash_dict_get(hash_dict_sockaddr_count, %s) error\n", hostaddr_client);
923 sysadm 1.44 }
924    
925     if (j < BBS_max_client_per_ip)
926 sysadm 1.43 {
927 sysadm 1.52 if ((pid = fork_server()) < 0)
928 sysadm 1.44 {
929     log_error("fork_server() error\n");
930     }
931     else if (pid > 0)
932     {
933 sysadm 1.82 ret = hash_dict_set(hash_dict_pid_sockaddr, (uint64_t)pid, sin.sin_addr.s_addr);
934     if (ret < 0)
935 sysadm 1.44 {
936 sysadm 1.82 log_error("hash_dict_set(hash_dict_pid_sockaddr, %d, %s) error\n", pid, hostaddr_client);
937 sysadm 1.44 }
938    
939 sysadm 1.85 ret = hash_dict_inc(hash_dict_sockaddr_count, (uint64_t)sin.sin_addr.s_addr, 1);
940 sysadm 1.82 if (ret < 0)
941 sysadm 1.44 {
942 sysadm 1.85 log_error("hash_dict_inc(hash_dict_sockaddr_count, %s, %d) error\n", hostaddr_client, 1);
943 sysadm 1.44 }
944     }
945 sysadm 1.43 }
946 sysadm 1.82 else
947     {
948     log_error("Rejected client connection from %s over limit per IP (%d)\n", hostaddr_client, BBS_max_client_per_ip);
949     }
950 sysadm 1.43 }
951     else
952     {
953     log_error("Rejected client connection over limit (%d)\n", SYS_child_process_count - 1);
954 sysadm 1.25 }
955    
956     if (close(socket_client) == -1)
957     {
958     log_error("close(socket_lient) error (%d)\n", errno);
959     }
960 sysadm 1.13 }
961     }
962     }
963 sysadm 1.25 }
964 sysadm 1.13
965 sysadm 1.88 #ifdef HAVE_SYS_EPOLL_H
966 sysadm 1.87 if (close(epollfd_server) < 0)
967 sysadm 1.30 {
968 sysadm 1.87 log_error("close(epollfd_server) error (%d)\n");
969 sysadm 1.30 }
970 sysadm 1.88 #endif
971 sysadm 1.30
972 sysadm 1.52 for (i = 0; i < 2; i++)
973     {
974     if (close(socket_server[i]) == -1)
975     {
976     log_error("Close server socket failed\n");
977     }
978 sysadm 1.13 }
979 sysadm 1.7
980 sysadm 1.82 hash_dict_destroy(hash_dict_pid_sockaddr);
981     hash_dict_destroy(hash_dict_sockaddr_count);
982    
983 sysadm 1.51 ssh_bind_free(sshbind);
984     ssh_finalize();
985    
986 sysadm 1.13 return 0;
987 sysadm 1.1 }

webmaster@leafok.com
ViewVC Help
Powered by ViewVC 1.3.0-beta1