]> git.ipfire.org Git - thirdparty/systemd.git/blame - src/core/dbus-scope.c
core: move pid watch/unwatch logic of the service manager to pidfd
[thirdparty/systemd.git] / src / core / dbus-scope.c
CommitLineData
db9ecf05 1/* SPDX-License-Identifier: LGPL-2.1-or-later */
6c12b52e 2
b5efdb8a 3#include "alloc-util.h"
96aad8d1 4#include "bus-common-errors.h"
40af3d02 5#include "bus-get-properties.h"
1d22e906
LP
6#include "dbus-cgroup.h"
7#include "dbus-kill.h"
5fa09835 8#include "dbus-manager.h"
1d22e906 9#include "dbus-scope.h"
b5efdb8a 10#include "dbus-unit.h"
0fb0fffa 11#include "dbus-util.h"
b5efdb8a
LP
12#include "dbus.h"
13#include "scope.h"
14#include "selinux-access.h"
15#include "unit.h"
6c12b52e 16
c20076a8 17int bus_scope_method_abandon(sd_bus_message *message, void *userdata, sd_bus_error *error) {
99534007 18 Scope *s = ASSERT_PTR(userdata);
4e2f8d27 19 int r;
a911bb9a 20
a911bb9a 21 assert(message);
a911bb9a 22
1d22e906
LP
23 r = mac_selinux_unit_access_check(UNIT(s), message, "stop", error);
24 if (r < 0)
25 return r;
26
27 r = bus_verify_manage_units_async(UNIT(s)->manager, message, error);
283868e1
SW
28 if (r < 0)
29 return r;
30 if (r == 0)
31 return 1; /* No authorization for now, but the async polkit stuff will call us again when it has it */
32
4e2f8d27 33 r = scope_abandon(s);
4e2f8d27
LP
34 if (r == -ESTALE)
35 return sd_bus_error_setf(error, BUS_ERROR_SCOPE_NOT_RUNNING, "Scope %s is not running, cannot abandon.", UNIT(s)->id);
1d22e906
LP
36 if (r < 0)
37 return r;
4e2f8d27
LP
38
39 return sd_bus_reply_method_return(message, NULL);
a911bb9a
LP
40}
41
718db961 42static BUS_DEFINE_PROPERTY_GET_ENUM(property_get_result, scope_result, ScopeResult);
5fa09835 43static BUS_DEFINE_SET_TRANSIENT_PARSE(oom_policy, OOMPolicy, oom_policy_from_string);
6c12b52e 44
718db961
LP
45const sd_bus_vtable bus_scope_vtable[] = {
46 SD_BUS_VTABLE_START(0),
371c0b79 47 SD_BUS_PROPERTY("Controller", "s", NULL, offsetof(Scope, controller), SD_BUS_VTABLE_PROPERTY_EMITS_CHANGE),
556089dc 48 SD_BUS_PROPERTY("TimeoutStopUSec", "t", bus_property_get_usec, offsetof(Scope, timeout_stop_usec), SD_BUS_VTABLE_PROPERTY_CONST),
718db961 49 SD_BUS_PROPERTY("Result", "s", property_get_result, offsetof(Scope, result), SD_BUS_VTABLE_PROPERTY_EMITS_CHANGE),
9ed7de60 50 SD_BUS_PROPERTY("RuntimeMaxUSec", "t", bus_property_get_usec, offsetof(Scope, runtime_max_usec), SD_BUS_VTABLE_PROPERTY_CONST),
5918a933 51 SD_BUS_PROPERTY("RuntimeRandomizedExtraUSec", "t", bus_property_get_usec, offsetof(Scope, runtime_rand_extra_usec), SD_BUS_VTABLE_PROPERTY_CONST),
5fa09835 52 SD_BUS_PROPERTY("OOMPolicy", "s", bus_property_get_oom_policy, offsetof(Scope, oom_policy), SD_BUS_VTABLE_PROPERTY_CONST),
2d4a39e7 53 SD_BUS_SIGNAL("RequestStop", NULL, 0),
c20076a8 54 SD_BUS_METHOD("Abandon", NULL, NULL, bus_scope_method_abandon, SD_BUS_VTABLE_UNPRIVILEGED),
718db961
LP
55 SD_BUS_VTABLE_END
56};
6c12b52e 57
9f2e86af 58static int bus_scope_set_transient_property(
6c12b52e
LP
59 Scope *s,
60 const char *name,
718db961 61 sd_bus_message *message,
2e59b241 62 UnitWriteFlags flags,
718db961 63 sd_bus_error *error) {
6c12b52e 64
ef71cc77 65 Unit *u = UNIT(s);
6c12b52e
LP
66 int r;
67
6c12b52e 68 assert(s);
718db961
LP
69 assert(name);
70 assert(message);
6c12b52e 71
2e59b241
LP
72 flags |= UNIT_PRIVATE;
73
0fb0fffa 74 if (streq(name, "TimeoutStopUSec"))
ef71cc77 75 return bus_set_transient_usec(u, name, &s->timeout_stop_usec, message, flags, error);
0fb0fffa 76
9ed7de60
PW
77 if (streq(name, "RuntimeMaxUSec"))
78 return bus_set_transient_usec(u, name, &s->runtime_max_usec, message, flags, error);
79
5918a933
AB
80 if (streq(name, "RuntimeRandomizedExtraUSec"))
81 return bus_set_transient_usec(u, name, &s->runtime_rand_extra_usec, message, flags, error);
82
5fa09835
ML
83 if (streq(name, "OOMPolicy"))
84 return bus_set_transient_oom_policy(u, name, &s->oom_policy, message, flags, error);
85
6c12b52e 86 if (streq(name, "PIDs")) {
6592b975 87 _cleanup_(sd_bus_creds_unrefp) sd_bus_creds *creds = NULL;
294a90cc 88 unsigned n = 0;
6c12b52e 89
718db961
LP
90 r = sd_bus_message_enter_container(message, 'a', "u");
91 if (r < 0)
92 return r;
6c12b52e 93
6592b975 94 for (;;) {
495e75ed 95 _cleanup_(pidref_done) PidRef pidref = PIDREF_NULL;
6592b975
LP
96 uint32_t upid;
97 pid_t pid;
98
99 r = sd_bus_message_read(message, "u", &upid);
100 if (r < 0)
101 return r;
102 if (r == 0)
103 break;
104
105 if (upid == 0) {
106 if (!creds) {
107 r = sd_bus_query_sender_creds(message, SD_BUS_CREDS_PID, &creds);
108 if (r < 0)
109 return r;
110 }
111
112 r = sd_bus_creds_get_pid(creds, &pid);
113 if (r < 0)
114 return r;
115 } else
116 pid = (uid_t) upid;
6c12b52e 117
495e75ed
LP
118 r = pidref_set_pid(&pidref, pid);
119 if (r < 0)
120 return r;
121
122 r = unit_pid_attachable(u, &pidref, error);
6592b975
LP
123 if (r < 0)
124 return r;
6c12b52e 125
2e59b241 126 if (!UNIT_WRITE_FLAGS_NOOP(flags)) {
495e75ed 127 r = unit_watch_pidref(u, &pidref, /* exclusive= */ false);
adb3a45d
LP
128 if (r < 0 && r != -EEXIST)
129 return r;
130 }
6c12b52e 131
adb3a45d 132 n++;
6c12b52e 133 }
718db961
LP
134
135 r = sd_bus_message_exit_container(message);
136 if (r < 0)
137 return r;
6c12b52e 138
adb3a45d 139 if (n <= 0)
6c12b52e
LP
140 return -EINVAL;
141
142 return 1;
cc23f9f1 143
2d4a39e7
LP
144 } else if (streq(name, "Controller")) {
145 const char *controller;
2d4a39e7 146
f2c49c86
LP
147 /* We can't support direct connections with this, as direct connections know no service or unique name
148 * concept, but the Controller field stores exactly that. */
ef71cc77 149 if (sd_bus_message_get_bus(message) != u->manager->api_bus)
1b09b81c 150 return sd_bus_error_set(error, SD_BUS_ERROR_NOT_SUPPORTED, "Sorry, Controller= logic only supported via the bus.");
f2c49c86 151
2d4a39e7
LP
152 r = sd_bus_message_read(message, "s", &controller);
153 if (r < 0)
154 return r;
155
5453a4b1 156 if (!isempty(controller) && !sd_bus_service_name_is_valid(controller))
2d4a39e7
LP
157 return sd_bus_error_setf(error, SD_BUS_ERROR_INVALID_ARGS, "Controller '%s' is not a valid bus name.", controller);
158
2e59b241
LP
159 if (!UNIT_WRITE_FLAGS_NOOP(flags)) {
160 r = free_and_strdup(&s->controller, empty_to_null(controller));
161 if (r < 0)
162 return r;
2d4a39e7
LP
163 }
164
cc23f9f1 165 return 1;
6c12b52e
LP
166 }
167
168 return 0;
169}
170
171int bus_scope_set_property(
172 Unit *u,
173 const char *name,
718db961 174 sd_bus_message *message,
2e59b241 175 UnitWriteFlags flags,
718db961 176 sd_bus_error *error) {
6c12b52e
LP
177
178 Scope *s = SCOPE(u);
179 int r;
180
718db961 181 assert(s);
6c12b52e 182 assert(name);
718db961 183 assert(message);
6c12b52e 184
2e59b241 185 r = bus_cgroup_set_property(u, &s->cgroup_context, name, message, flags, error);
6c12b52e
LP
186 if (r != 0)
187 return r;
188
189 if (u->load_state == UNIT_STUB) {
190 /* While we are created we still accept PIDs */
191
2e59b241 192 r = bus_scope_set_transient_property(s, name, message, flags, error);
6c12b52e
LP
193 if (r != 0)
194 return r;
a6c0353b 195
2e59b241 196 r = bus_kill_context_set_transient_property(u, &s->kill_context, name, message, flags, error);
a6c0353b
LP
197 if (r != 0)
198 return r;
03860190
MS
199
200 if (streq(name, "User"))
201 return bus_set_transient_user_relaxed(u, name, &s->user, message, flags, error);
202
203 if (streq(name, "Group"))
204 return bus_set_transient_user_relaxed(u, name, &s->group, message, flags, error);
6c12b52e
LP
205 }
206
207 return 0;
208}
209
210int bus_scope_commit_properties(Unit *u) {
211 assert(u);
212
213 unit_realize_cgroup(u);
bc432dc7 214
6c12b52e
LP
215 return 0;
216}
2d4a39e7
LP
217
218int bus_scope_send_request_stop(Scope *s) {
4afd3348 219 _cleanup_(sd_bus_message_unrefp) sd_bus_message *m = NULL;
2d4a39e7
LP
220 _cleanup_free_ char *p = NULL;
221 int r;
222
223 assert(s);
224
225 if (!s->controller)
226 return 0;
227
228 p = unit_dbus_path(UNIT(s));
229 if (!p)
230 return -ENOMEM;
231
232 r = sd_bus_message_new_signal(
233 UNIT(s)->manager->api_bus,
151b9b96 234 &m,
2d4a39e7
LP
235 p,
236 "org.freedesktop.systemd1.Scope",
151b9b96 237 "RequestStop");
2d4a39e7
LP
238 if (r < 0)
239 return r;
240
f4b0fb23 241 return sd_bus_send_to(UNIT(s)->manager->api_bus, m, s->controller, NULL);
2d4a39e7 242}
371c0b79
LP
243
244static int on_controller_gone(sd_bus_track *track, void *userdata) {
245 Scope *s = userdata;
246
247 assert(track);
248
249 if (s->controller) {
250 log_unit_debug(UNIT(s), "Controller %s disappeared from bus.", s->controller);
251 unit_add_to_dbus_queue(UNIT(s));
252 s->controller = mfree(s->controller);
253 }
254
255 s->controller_track = sd_bus_track_unref(s->controller_track);
256
257 return 0;
258}
259
260int bus_scope_track_controller(Scope *s) {
261 int r;
262
263 assert(s);
264
265 if (!s->controller || s->controller_track)
266 return 0;
267
268 r = sd_bus_track_new(UNIT(s)->manager->api_bus, &s->controller_track, on_controller_gone, s);
269 if (r < 0)
270 return r;
271
272 r = sd_bus_track_add_name(s->controller_track, s->controller);
273 if (r < 0) {
274 s->controller_track = sd_bus_track_unref(s->controller_track);
275 return r;
276 }
277
278 return 0;
279}