2 * copyright (c) 2001-2011 Emil Mikulic.
4 * dns.c: synchronous DNS in a child process.
6 * You may use, modify and redistribute this file under the terms of the
7 * GNU General Public License version 2. (see COPYING.GPL)
19 #include "bsd.h" /* for setproctitle, strlcpy */
21 #include <sys/param.h>
22 #include <sys/socket.h>
33 # define gethostbyaddr(addr, len, type) \
34 gethostbyaddr((const char *)(addr), len, type)
37 static void dns_main(void) _noreturn_
; /* the child process runs this */
39 #define CHILD 0 /* child process uses this socket */
42 static pid_t pid
= -1;
46 int error
; /* for gai_strerror(), or 0 if no error */
47 char name
[256]; /* http://tools.ietf.org/html/rfc1034#section-3.1 */
51 dns_init(const char *privdrop_user
)
53 if (socketpair(AF_UNIX
, SOCK_STREAM
, 0, sock
) == -1)
61 /* We are the child. */
62 privdrop(NULL
/* don't chroot */, privdrop_user
);
65 daemonize_finish(); /* drop our copy of the lifeline! */
66 if (signal(SIGUSR1
, SIG_IGN
) == SIG_ERR
)
67 errx(1, "signal(SIGUSR1, ignore) failed");
69 verbosef("fell out of dns_main()");
72 /* We are the parent. */
75 fd_set_nonblock(sock
[PARENT
]);
76 verbosef("DNS child has PID %d", pid
);
84 return; /* no child was started */
86 if (kill(pid
, SIGINT
) == -1)
88 verbosef("dns_stop() waiting for child");
89 if (waitpid(pid
, NULL
, 0) == -1)
91 verbosef("dns_stop() done waiting for child");
95 RB_ENTRY(tree_rec
) ptree
;
100 tree_cmp(struct tree_rec
*a
, struct tree_rec
*b
)
102 if (a
->ip
.family
!= b
->ip
.family
)
103 /* Sort IPv4 to the left of IPv6. */
104 return ((a
->ip
.family
== IPv4
) ? -1 : +1);
106 if (a
->ip
.family
== IPv4
)
107 return (memcmp(&a
->ip
.ip
.v4
, &b
->ip
.ip
.v4
, sizeof(a
->ip
.ip
.v4
)));
109 assert(a
->ip
.family
== IPv6
);
110 return (memcmp(&a
->ip
.ip
.v6
, &b
->ip
.ip
.v6
, sizeof(a
->ip
.ip
.v6
)));
114 static RB_HEAD(tree_t
, tree_rec
) ip_tree
= RB_INITIALIZER(&tree_rec
);
115 /* Quiet warnings. */
116 static struct tree_rec
* tree_t_RB_NEXT(struct tree_rec
*elm
)
118 static struct tree_rec
* tree_t_RB_MINMAX(struct tree_t
*head
, int val
)
120 RB_GENERATE(tree_t
, tree_rec
, ptree
, tree_cmp
)
123 dns_queue(const struct addr
*const ipaddr
)
125 struct tree_rec
*rec
;
129 return; /* no child was started - we're not doing any DNS */
131 if ((ipaddr
->family
!= IPv4
) && (ipaddr
->family
!= IPv6
)) {
132 verbosef("dns_queue() for unknown family %d", ipaddr
->family
);
136 rec
= xmalloc(sizeof(*rec
));
137 memcpy(&rec
->ip
, ipaddr
, sizeof(rec
->ip
));
139 if (RB_INSERT(tree_t
, &ip_tree
, rec
) != NULL
) {
140 /* Already queued - this happens seldom enough that we don't care about
141 * the performance hit of needlessly malloc()ing. */
142 verbosef("already queued %s", addr_to_str(ipaddr
));
147 num_w
= write(sock
[PARENT
], ipaddr
, sizeof(*ipaddr
)); /* won't block */
149 warnx("dns_queue: write: ignoring end of file");
150 else if (num_w
== -1)
151 warn("dns_queue: ignoring write error");
152 else if (num_w
!= sizeof(*ipaddr
))
153 err(1, "dns_queue: wrote %zu instead of %zu", num_w
, sizeof(*ipaddr
));
157 dns_unqueue(const struct addr
*const ipaddr
)
159 struct tree_rec tmp
, *rec
;
161 memcpy(&tmp
.ip
, ipaddr
, sizeof(tmp
.ip
));
162 if ((rec
= RB_FIND(tree_t
, &ip_tree
, &tmp
)) != NULL
) {
163 RB_REMOVE(tree_t
, &ip_tree
, rec
);
167 verbosef("couldn't unqueue %s - not in queue!", addr_to_str(ipaddr
));
171 * Returns non-zero if result waiting, stores IP and name into given pointers
172 * (name buffer is allocated by dns_poll)
175 dns_get_result(struct addr
*ipaddr
, char **name
)
177 struct dns_reply reply
;
180 numread
= read(sock
[PARENT
], &reply
, sizeof(reply
));
183 return (0); /* no input waiting */
188 goto error
; /* EOF */
189 if (numread
!= sizeof(reply
))
190 errx(1, "dns_get_result read got %zu, expected %zu",
191 numread
, sizeof(reply
));
193 /* Return successful reply. */
194 memcpy(ipaddr
, &reply
.addr
, sizeof(*ipaddr
));
195 if (reply
.error
!= 0) {
196 /* Identify common special cases. */
197 const char *type
= "none";
199 if (reply
.addr
.family
== IPv6
) {
200 if (IN6_IS_ADDR_LINKLOCAL(&reply
.addr
.ip
.v6
))
202 else if (IN6_IS_ADDR_SITELOCAL(&reply
.addr
.ip
.v6
))
204 else if (IN6_IS_ADDR_MULTICAST(&reply
.addr
.ip
.v6
))
207 assert(reply
.addr
.family
== IPv4
);
208 if (IN_MULTICAST(htonl(reply
.addr
.ip
.v4
)))
211 xasprintf(name
, "(%s)", type
);
213 else /* Correctly resolved name. */
214 *name
= xstrdup(reply
.name
);
216 dns_unqueue(&reply
.addr
);
220 warn("dns_get_result: ignoring read error");
221 /* FIXME: re-align to stream? restart dns child? */
232 return; /* no child was started - we're not doing any DNS */
234 while (dns_get_result(&ip
, &name
)) {
235 /* push into hosts_db */
236 struct bucket
*b
= host_find(&ip
);
239 verbosef("resolved %s to %s but it's not in the DB!",
240 addr_to_str(&ip
), name
);
243 if (b
->u
.host
.dns
!= NULL
) {
244 verbosef("resolved %s to %s but it's already in the DB!",
245 addr_to_str(&ip
), name
);
248 b
->u
.host
.dns
= name
;
252 /* ------------------------------------------------------------------------ */
255 STAILQ_ENTRY(qitem
) entries
;
259 STAILQ_HEAD(qhead
, qitem
) queue
= STAILQ_HEAD_INITIALIZER(queue
);
262 enqueue(const struct addr
*const ip
)
266 i
= xmalloc(sizeof(*i
));
267 memcpy(&i
->ip
, ip
, sizeof(i
->ip
));
268 STAILQ_INSERT_TAIL(&queue
, i
, entries
);
269 verbosef("DNS: enqueued %s", addr_to_str(ip
));
272 /* Return non-zero and populate <ip> pointer if queue isn't empty. */
274 dequeue(struct addr
*ip
)
278 i
= STAILQ_FIRST(&queue
);
281 STAILQ_REMOVE_HEAD(&queue
, entries
);
282 memcpy(ip
, &i
->ip
, sizeof(*ip
));
284 verbosef("DNS: dequeued %s", addr_to_str(ip
));
289 xwrite(const int d
, const void *buf
, const size_t nbytes
)
291 ssize_t ret
= write(d
, buf
, nbytes
);
295 if (ret
!= (ssize_t
)nbytes
)
296 err(1, "wrote %d bytes instead of all %d bytes", (int)ret
, (int)nbytes
);
304 setproctitle("DNS child");
305 fd_set_nonblock(sock
[CHILD
]);
306 verbosef("DNS child entering main DNS loop");
310 if (STAILQ_EMPTY(&queue
)) {
312 fd_set_block(sock
[CHILD
]);
313 verbosef("entering blocking read loop");
316 fd_set_nonblock(sock
[CHILD
]);
317 verbosef("non-blocking poll");
320 /* While we have input to process... */
321 ssize_t numread
= read(sock
[CHILD
], &ip
, sizeof(ip
));
323 exit(0); /* end of file, nothing more to do here. */
325 if (!blocking
&& (errno
== EAGAIN
))
326 break; /* ran out of input */
328 err(1, "DNS: read failed");
330 if (numread
!= sizeof(ip
))
331 err(1, "DNS: read got %zu bytes, expecting %zu",
332 numread
, sizeof(ip
));
335 /* After one blocking read, become non-blocking so that when we
336 * run out of input we fall through to queue processing.
339 fd_set_nonblock(sock
[CHILD
]);
345 struct dns_reply reply
;
346 struct sockaddr_in sin
;
347 struct sockaddr_in6 sin6
;
349 char host
[NI_MAXHOST
];
359 sin
.sin_family
= AF_INET
;
360 sin
.sin_addr
.s_addr
= ip
.ip
.v4
;
361 ret
= getnameinfo((struct sockaddr
*) &sin
, sizeof(sin
),
362 host
, sizeof(host
), NULL
, 0, flags
);
363 if (ret
== EAI_FAMILY
) {
364 verbosef("getnameinfo error %s, trying gethostbyname",
366 he
= gethostbyaddr(&sin
.sin_addr
.s_addr
,
367 sizeof(sin
.sin_addr
.s_addr
), sin
.sin_family
);
370 verbosef("gethostbyname error %s", hstrerror(h_errno
));
373 strlcpy(host
, he
->h_name
, sizeof(host
));
378 sin6
.sin6_family
= AF_INET6
;
379 memcpy(&sin6
.sin6_addr
, &ip
.ip
.v6
, sizeof(sin6
.sin6_addr
));
380 ret
= getnameinfo((struct sockaddr
*) &sin6
, sizeof(sin6
),
381 host
, sizeof(host
), NULL
, 0, flags
);
388 reply
.name
[0] = '\0';
391 assert(sizeof(reply
.name
) > sizeof(char *)); /* not just a ptr */
392 strlcpy(reply
.name
, host
, sizeof(reply
.name
));
395 fd_set_block(sock
[CHILD
]);
396 xwrite(sock
[CHILD
], &reply
, sizeof(reply
));
397 verbosef("DNS: %s is \"%s\".", addr_to_str(&reply
.addr
),
398 (ret
== 0) ? reply
.name
: gai_strerror(ret
));
403 /* vim:set ts=3 sw=3 tw=78 expandtab: */