]> git.ipfire.org Git - thirdparty/systemd.git/blame - src/resolve/resolved-varlink.c
Implement DNS notifications from resolved via varlink
[thirdparty/systemd.git] / src / resolve / resolved-varlink.c
CommitLineData
db9ecf05 1/* SPDX-License-Identifier: LGPL-2.1-or-later */
9581bb84 2
28e5e1e9 3#include "glyph-util.h"
9581bb84
LP
4#include "in-addr-util.h"
5#include "resolved-dns-synthesize.h"
6#include "resolved-varlink.h"
7#include "socket-netlink.h"
8
9typedef struct LookupParameters {
10 int ifindex;
11 uint64_t flags;
12 int family;
13 union in_addr_union address;
14 size_t address_size;
15 char *name;
16} LookupParameters;
17
18static void lookup_parameters_destroy(LookupParameters *p) {
19 assert(p);
20 free(p->name);
21}
22
23static int reply_query_state(DnsQuery *q) {
24
25 assert(q);
26 assert(q->varlink_request);
27
28 switch (q->state) {
29
30 case DNS_TRANSACTION_NO_SERVERS:
31 return varlink_error(q->varlink_request, "io.systemd.Resolve.NoNameServers", NULL);
32
33 case DNS_TRANSACTION_TIMEOUT:
34 return varlink_error(q->varlink_request, "io.systemd.Resolve.QueryTimedOut", NULL);
35
36 case DNS_TRANSACTION_ATTEMPTS_MAX_REACHED:
37 return varlink_error(q->varlink_request, "io.systemd.Resolve.MaxAttemptsReached", NULL);
38
39 case DNS_TRANSACTION_INVALID_REPLY:
40 return varlink_error(q->varlink_request, "io.systemd.Resolve.InvalidReply", NULL);
41
42 case DNS_TRANSACTION_ERRNO:
43 return varlink_error_errno(q->varlink_request, q->answer_errno);
44
45 case DNS_TRANSACTION_ABORTED:
46 return varlink_error(q->varlink_request, "io.systemd.Resolve.QueryAborted", NULL);
47
48 case DNS_TRANSACTION_DNSSEC_FAILED:
49 return varlink_errorb(q->varlink_request, "io.systemd.Resolve.DNSSECValidationFailed",
50 JSON_BUILD_OBJECT(JSON_BUILD_PAIR("result", JSON_BUILD_STRING(dnssec_result_to_string(q->answer_dnssec_result)))));
51
52 case DNS_TRANSACTION_NO_TRUST_ANCHOR:
53 return varlink_error(q->varlink_request, "io.systemd.Resolve.NoTrustAnchor", NULL);
54
55 case DNS_TRANSACTION_RR_TYPE_UNSUPPORTED:
56 return varlink_error(q->varlink_request, "io.systemd.Resolve.ResourceRecordTypeUnsupported", NULL);
57
58 case DNS_TRANSACTION_NETWORK_DOWN:
59 return varlink_error(q->varlink_request, "io.systemd.Resolve.NetworkDown", NULL);
60
775ae354
LP
61 case DNS_TRANSACTION_NO_SOURCE:
62 return varlink_error(q->varlink_request, "io.systemd.Resolve.NoSource", NULL);
63
49ef064c
LP
64 case DNS_TRANSACTION_STUB_LOOP:
65 return varlink_error(q->varlink_request, "io.systemd.Resolve.StubLoop", NULL);
66
9581bb84
LP
67 case DNS_TRANSACTION_NOT_FOUND:
68 /* We return this as NXDOMAIN. This is only generated when a host doesn't implement LLMNR/TCP, and we
69 * thus quickly know that we cannot resolve an in-addr.arpa or ip6.arpa address. */
70 return varlink_errorb(q->varlink_request, "io.systemd.Resolve.DNSError",
71 JSON_BUILD_OBJECT(JSON_BUILD_PAIR("rcode", JSON_BUILD_INTEGER(DNS_RCODE_NXDOMAIN))));
72
73 case DNS_TRANSACTION_RCODE_FAILURE:
74 return varlink_errorb(q->varlink_request, "io.systemd.Resolve.DNSError",
75 JSON_BUILD_OBJECT(JSON_BUILD_PAIR("rcode", JSON_BUILD_INTEGER(q->answer_rcode))));
76
77 case DNS_TRANSACTION_NULL:
78 case DNS_TRANSACTION_PENDING:
79 case DNS_TRANSACTION_VALIDATING:
80 case DNS_TRANSACTION_SUCCESS:
81 default:
04499a70 82 assert_not_reached();
9581bb84
LP
83 }
84}
85
86static void vl_on_disconnect(VarlinkServer *s, Varlink *link, void *userdata) {
87 DnsQuery *q;
88
89 assert(s);
90 assert(link);
91
92 q = varlink_get_userdata(link);
93 if (!q)
94 return;
95
96 if (!DNS_TRANSACTION_IS_LIVE(q->state))
97 return;
98
99 log_debug("Client of active query vanished, aborting query.");
100 dns_query_complete(q, DNS_TRANSACTION_ABORTED);
101}
102
cb456374
SK
103static void vl_on_notification_disconnect(VarlinkServer *s, Varlink *link, void *userdata) {
104 Manager *m = ASSERT_PTR(userdata);
105
106 assert(s);
107 assert(link);
108
109 Varlink *removed_link = set_remove(m->varlink_subscription, link);
110 if (removed_link) {
111 varlink_unref(removed_link);
112 log_debug("%u monitor clients remain active", set_size(m->varlink_subscription));
113 }
114}
115
3354f500
LP
116static bool validate_and_mangle_flags(
117 const char *name,
118 uint64_t *flags,
119 uint64_t ok) {
120
9581bb84
LP
121 assert(flags);
122
123 /* This checks that the specified client-provided flags parameter actually makes sense, and mangles
124 * it slightly. Specifically:
125 *
775ae354 126 * 1. We check that only the protocol flags and a bunch of NO_XYZ flags are on at most, plus the
9581bb84
LP
127 * method-specific flags specified in 'ok'.
128 *
129 * 2. If no protocols are enabled we automatically convert that to "all protocols are enabled".
130 *
131 * The second rule means that clients can just pass 0 as flags for the common case, and all supported
132 * protocols are enabled. Moreover it's useful so that client's do not have to be aware of all
133 * protocols implemented in resolved, but can use 0 as protocols flags set as indicator for
134 * "everything".
135 */
136
775ae354
LP
137 if (*flags & ~(SD_RESOLVED_PROTOCOLS_ALL|
138 SD_RESOLVED_NO_CNAME|
139 SD_RESOLVED_NO_VALIDATE|
140 SD_RESOLVED_NO_SYNTHESIZE|
141 SD_RESOLVED_NO_CACHE|
142 SD_RESOLVED_NO_ZONE|
143 SD_RESOLVED_NO_TRUST_ANCHOR|
144 SD_RESOLVED_NO_NETWORK|
145 ok))
9581bb84
LP
146 return false;
147
148 if ((*flags & SD_RESOLVED_PROTOCOLS_ALL) == 0) /* If no protocol is enabled, enable all */
149 *flags |= SD_RESOLVED_PROTOCOLS_ALL;
150
3354f500
LP
151 /* If the SD_RESOLVED_NO_SEARCH flag is acceptable, and the query name is dot-suffixed, turn off
152 * search domains. Note that DNS name normalization drops the dot suffix, hence we propagate this
153 * into the flags field as early as we can. */
154 if (name && FLAGS_SET(ok, SD_RESOLVED_NO_SEARCH) && dns_name_dot_suffixed(name) > 0)
155 *flags |= SD_RESOLVED_NO_SEARCH;
156
9581bb84
LP
157 return true;
158}
159
c704288c 160static void vl_method_resolve_hostname_complete(DnsQuery *query) {
9581bb84
LP
161 _cleanup_(dns_resource_record_unrefp) DnsResourceRecord *canonical = NULL;
162 _cleanup_(json_variant_unrefp) JsonVariant *array = NULL;
c704288c 163 _cleanup_(dns_query_freep) DnsQuery *q = query;
9581bb84
LP
164 _cleanup_free_ char *normalized = NULL;
165 DnsResourceRecord *rr;
166 DnsQuestion *question;
167 int ifindex, r;
168
169 assert(q);
170
171 if (q->state != DNS_TRANSACTION_SUCCESS) {
172 r = reply_query_state(q);
173 goto finish;
174 }
175
1db8e6d1 176 r = dns_query_process_cname_many(q);
9581bb84
LP
177 if (r == -ELOOP) {
178 r = varlink_error(q->varlink_request, "io.systemd.Resolve.CNAMELoop", NULL);
179 goto finish;
180 }
181 if (r < 0)
182 goto finish;
c704288c
YW
183 if (r == DNS_QUERY_CNAME) {
184 /* This was a cname, and the query was restarted. */
185 TAKE_PTR(q);
9581bb84 186 return;
c704288c 187 }
9581bb84
LP
188
189 question = dns_query_question_for_protocol(q, q->answer_protocol);
190
191 DNS_ANSWER_FOREACH_IFINDEX(rr, ifindex, q->answer) {
192 _cleanup_(json_variant_unrefp) JsonVariant *entry = NULL;
193 int family;
194 const void *p;
195
196 r = dns_question_matches_rr(question, rr, DNS_SEARCH_DOMAIN_NAME(q->answer_search_domain));
197 if (r < 0)
198 goto finish;
199 if (r == 0)
200 continue;
201
202 if (rr->key->type == DNS_TYPE_A) {
203 family = AF_INET;
204 p = &rr->a.in_addr;
205 } else if (rr->key->type == DNS_TYPE_AAAA) {
206 family = AF_INET6;
207 p = &rr->aaaa.in6_addr;
208 } else {
209 r = -EAFNOSUPPORT;
210 goto finish;
211 }
212
213 r = json_build(&entry,
214 JSON_BUILD_OBJECT(
f8f5b8d8 215 JSON_BUILD_PAIR_CONDITION(ifindex > 0, "ifindex", JSON_BUILD_INTEGER(ifindex)),
9581bb84
LP
216 JSON_BUILD_PAIR("family", JSON_BUILD_INTEGER(family)),
217 JSON_BUILD_PAIR("address", JSON_BUILD_BYTE_ARRAY(p, FAMILY_ADDRESS_SIZE(family)))));
218 if (r < 0)
219 goto finish;
220
221 if (!canonical)
222 canonical = dns_resource_record_ref(rr);
223
224 r = json_variant_append_array(&array, entry);
225 if (r < 0)
226 goto finish;
227 }
228
229 if (json_variant_is_blank_object(array)) {
230 r = varlink_error(q->varlink_request, "io.systemd.Resolve.NoSuchResourceRecord", NULL);
231 goto finish;
232 }
233
234 assert(canonical);
235 r = dns_name_normalize(dns_resource_key_name(canonical->key), 0, &normalized);
236 if (r < 0)
237 goto finish;
238
239 r = varlink_replyb(q->varlink_request,
240 JSON_BUILD_OBJECT(
241 JSON_BUILD_PAIR("addresses", JSON_BUILD_VARIANT(array)),
242 JSON_BUILD_PAIR("name", JSON_BUILD_STRING(normalized)),
43fc4baa 243 JSON_BUILD_PAIR("flags", JSON_BUILD_INTEGER(dns_query_reply_flags_make(q)))));
9581bb84
LP
244finish:
245 if (r < 0) {
246 log_error_errno(r, "Failed to send hostname reply: %m");
247 r = varlink_error_errno(q->varlink_request, r);
248 }
9581bb84
LP
249}
250
251static int parse_as_address(Varlink *link, LookupParameters *p) {
252 _cleanup_free_ char *canonical = NULL;
253 int r, ff, parsed_ifindex, ifindex;
254 union in_addr_union parsed;
255
256 assert(link);
257 assert(p);
258
259 /* Check if this parses as literal address. If so, just parse it and return that, do not involve networking */
260 r = in_addr_ifindex_from_string_auto(p->name, &ff, &parsed, &parsed_ifindex);
261 if (r < 0)
262 return 0; /* not a literal address */
263
264 /* Make sure the data we parsed matches what is requested */
265 if ((p->family != AF_UNSPEC && ff != p->family) ||
266 (p->ifindex > 0 && parsed_ifindex > 0 && parsed_ifindex != p->ifindex))
267 return varlink_error(link, "io.systemd.Resolve.NoSuchResourceRecord", NULL);
268
269 ifindex = parsed_ifindex > 0 ? parsed_ifindex : p->ifindex;
270
271 /* Reformat the address as string, to return as canonicalized name */
272 r = in_addr_ifindex_to_string(ff, &parsed, ifindex, &canonical);
273 if (r < 0)
274 return r;
275
276 return varlink_replyb(
277 link,
278 JSON_BUILD_OBJECT(
279 JSON_BUILD_PAIR("addresses",
280 JSON_BUILD_ARRAY(
281 JSON_BUILD_OBJECT(
282 JSON_BUILD_PAIR_CONDITION(ifindex > 0, "ifindex", JSON_BUILD_INTEGER(ifindex)),
283 JSON_BUILD_PAIR("family", JSON_BUILD_INTEGER(ff)),
284 JSON_BUILD_PAIR("address", JSON_BUILD_BYTE_ARRAY(&parsed, FAMILY_ADDRESS_SIZE(ff)))))),
285 JSON_BUILD_PAIR("name", JSON_BUILD_STRING(canonical)),
5c1790d1
LP
286 JSON_BUILD_PAIR("flags", JSON_BUILD_INTEGER(SD_RESOLVED_FLAGS_MAKE(dns_synthesize_protocol(p->flags), ff, true, true)|
287 SD_RESOLVED_SYNTHETIC))));
9581bb84
LP
288}
289
290static int vl_method_resolve_hostname(Varlink *link, JsonVariant *parameters, VarlinkMethodFlags flags, void *userdata) {
291 static const JsonDispatch dispatch_table[] = {
292 { "ifindex", JSON_VARIANT_UNSIGNED, json_dispatch_int, offsetof(LookupParameters, ifindex), 0 },
293 { "name", JSON_VARIANT_STRING, json_dispatch_string, offsetof(LookupParameters, name), JSON_MANDATORY },
294 { "family", JSON_VARIANT_UNSIGNED, json_dispatch_int, offsetof(LookupParameters, family), 0 },
295 { "flags", JSON_VARIANT_UNSIGNED, json_dispatch_uint64, offsetof(LookupParameters, flags), 0 },
296 {}
297 };
298
299 _cleanup_(dns_question_unrefp) DnsQuestion *question_idna = NULL, *question_utf8 = NULL;
300 _cleanup_(lookup_parameters_destroy) LookupParameters p = {
301 .family = AF_UNSPEC,
302 };
c704288c 303 _cleanup_(dns_query_freep) DnsQuery *q = NULL;
9807fdc1 304 Manager *m;
9581bb84
LP
305 int r;
306
307 assert(link);
9807fdc1
LP
308
309 m = varlink_server_get_userdata(varlink_get_server(link));
9581bb84
LP
310 assert(m);
311
312 if (FLAGS_SET(flags, VARLINK_METHOD_ONEWAY))
313 return -EINVAL;
314
315 r = json_dispatch(parameters, dispatch_table, NULL, 0, &p);
316 if (r < 0)
317 return r;
318
319 if (p.ifindex < 0)
320 return varlink_error_invalid_parameter(link, JSON_VARIANT_STRING_CONST("ifindex"));
321
322 r = dns_name_is_valid(p.name);
323 if (r < 0)
324 return r;
325 if (r == 0)
326 return varlink_error_invalid_parameter(link, JSON_VARIANT_STRING_CONST("name"));
327
328 if (!IN_SET(p.family, AF_UNSPEC, AF_INET, AF_INET6))
329 return varlink_error_invalid_parameter(link, JSON_VARIANT_STRING_CONST("family"));
330
3354f500 331 if (!validate_and_mangle_flags(p.name, &p.flags, SD_RESOLVED_NO_SEARCH))
9581bb84
LP
332 return varlink_error_invalid_parameter(link, JSON_VARIANT_STRING_CONST("flags"));
333
334 r = parse_as_address(link, &p);
335 if (r != 0)
336 return r;
337
338 r = dns_question_new_address(&question_utf8, p.family, p.name, false);
339 if (r < 0)
340 return r;
341
342 r = dns_question_new_address(&question_idna, p.family, p.name, true);
343 if (r < 0 && r != -EALREADY)
344 return r;
345
775ae354 346 r = dns_query_new(m, &q, question_utf8, question_idna ?: question_utf8, NULL, p.ifindex, p.flags);
9581bb84
LP
347 if (r < 0)
348 return r;
349
350 q->varlink_request = varlink_ref(link);
351 varlink_set_userdata(link, q);
352 q->request_family = p.family;
cb456374
SK
353 q->request_name = strdup(p.name);
354 if (!q->request_name)
355 return log_oom();
9581bb84
LP
356 q->complete = vl_method_resolve_hostname_complete;
357
358 r = dns_query_go(q);
359 if (r < 0)
c704288c 360 return r;
9581bb84 361
c704288c 362 TAKE_PTR(q);
9581bb84 363 return 1;
9581bb84
LP
364}
365
366static int json_dispatch_address(const char *name, JsonVariant *variant, JsonDispatchFlags flags, void *userdata) {
367 LookupParameters *p = userdata;
368 union in_addr_union buf = {};
369 JsonVariant *i;
370 size_t n, k = 0;
371
372 assert(variant);
373 assert(p);
374
375 if (!json_variant_is_array(variant))
376 return json_log(variant, flags, SYNTHETIC_ERRNO(EINVAL), "JSON field '%s' is not an array.", strna(name));
377
378 n = json_variant_elements(variant);
379 if (!IN_SET(n, 4, 16))
380 return json_log(variant, flags, SYNTHETIC_ERRNO(EINVAL), "JSON field '%s' is array of unexpected size.", strna(name));
381
382 JSON_VARIANT_ARRAY_FOREACH(i, variant) {
718ca772 383 int64_t b;
9581bb84
LP
384
385 if (!json_variant_is_integer(i))
386 return json_log(variant, flags, SYNTHETIC_ERRNO(EINVAL), "Element %zu of JSON field '%s' is not an integer.", k, strna(name));
387
388 b = json_variant_integer(i);
389 if (b < 0 || b > 0xff)
28e5e1e9
DT
390 return json_log(variant, flags, SYNTHETIC_ERRNO(EINVAL),
391 "Element %zu of JSON field '%s' is out of range 0%s255.",
392 k, strna(name), special_glyph(SPECIAL_GLYPH_ELLIPSIS));
9581bb84
LP
393
394 buf.bytes[k++] = (uint8_t) b;
395 }
396
397 p->address = buf;
398 p->address_size = k;
399
400 return 0;
401}
402
c704288c 403static void vl_method_resolve_address_complete(DnsQuery *query) {
9581bb84 404 _cleanup_(json_variant_unrefp) JsonVariant *array = NULL;
c704288c 405 _cleanup_(dns_query_freep) DnsQuery *q = query;
9581bb84
LP
406 DnsQuestion *question;
407 DnsResourceRecord *rr;
408 int ifindex, r;
409
410 assert(q);
411
412 if (q->state != DNS_TRANSACTION_SUCCESS) {
413 r = reply_query_state(q);
414 goto finish;
415 }
416
1db8e6d1 417 r = dns_query_process_cname_many(q);
9581bb84
LP
418 if (r == -ELOOP) {
419 r = varlink_error(q->varlink_request, "io.systemd.Resolve.CNAMELoop", NULL);
420 goto finish;
421 }
422 if (r < 0)
423 goto finish;
c704288c
YW
424 if (r == DNS_QUERY_CNAME) {
425 /* This was a cname, and the query was restarted. */
426 TAKE_PTR(q);
9581bb84 427 return;
c704288c 428 }
9581bb84
LP
429
430 question = dns_query_question_for_protocol(q, q->answer_protocol);
431
432 DNS_ANSWER_FOREACH_IFINDEX(rr, ifindex, q->answer) {
433 _cleanup_(json_variant_unrefp) JsonVariant *entry = NULL;
434 _cleanup_free_ char *normalized = NULL;
435
436 r = dns_question_matches_rr(question, rr, NULL);
437 if (r < 0)
438 goto finish;
439 if (r == 0)
440 continue;
441
442 r = dns_name_normalize(rr->ptr.name, 0, &normalized);
443 if (r < 0)
444 goto finish;
445
446 r = json_build(&entry,
447 JSON_BUILD_OBJECT(
f8f5b8d8 448 JSON_BUILD_PAIR_CONDITION(ifindex > 0, "ifindex", JSON_BUILD_INTEGER(ifindex)),
9581bb84
LP
449 JSON_BUILD_PAIR("name", JSON_BUILD_STRING(normalized))));
450 if (r < 0)
451 goto finish;
452
453 r = json_variant_append_array(&array, entry);
454 if (r < 0)
455 goto finish;
456 }
457
458 if (json_variant_is_blank_object(array)) {
459 r = varlink_error(q->varlink_request, "io.systemd.Resolve.NoSuchResourceRecord", NULL);
460 goto finish;
461 }
462
463 r = varlink_replyb(q->varlink_request,
464 JSON_BUILD_OBJECT(
465 JSON_BUILD_PAIR("names", JSON_BUILD_VARIANT(array)),
43fc4baa 466 JSON_BUILD_PAIR("flags", JSON_BUILD_INTEGER(dns_query_reply_flags_make(q)))));
9581bb84
LP
467finish:
468 if (r < 0) {
469 log_error_errno(r, "Failed to send address reply: %m");
470 r = varlink_error_errno(q->varlink_request, r);
471 }
9581bb84
LP
472}
473
474static int vl_method_resolve_address(Varlink *link, JsonVariant *parameters, VarlinkMethodFlags flags, void *userdata) {
475 static const JsonDispatch dispatch_table[] = {
476 { "ifindex", JSON_VARIANT_UNSIGNED, json_dispatch_int, offsetof(LookupParameters, ifindex), 0 },
477 { "family", JSON_VARIANT_UNSIGNED, json_dispatch_int, offsetof(LookupParameters, family), JSON_MANDATORY },
478 { "address", JSON_VARIANT_ARRAY, json_dispatch_address, 0, JSON_MANDATORY },
479 { "flags", JSON_VARIANT_UNSIGNED, json_dispatch_uint64, offsetof(LookupParameters, flags), 0 },
480 {}
481 };
482
483 _cleanup_(dns_question_unrefp) DnsQuestion *question = NULL;
484 _cleanup_(lookup_parameters_destroy) LookupParameters p = {
485 .family = AF_UNSPEC,
486 };
c704288c 487 _cleanup_(dns_query_freep) DnsQuery *q = NULL;
9807fdc1 488 Manager *m;
9581bb84
LP
489 int r;
490
491 assert(link);
9807fdc1
LP
492
493 m = varlink_server_get_userdata(varlink_get_server(link));
9581bb84
LP
494 assert(m);
495
496 if (FLAGS_SET(flags, VARLINK_METHOD_ONEWAY))
497 return -EINVAL;
498
499 r = json_dispatch(parameters, dispatch_table, NULL, 0, &p);
500 if (r < 0)
501 return r;
502
503 if (p.ifindex < 0)
504 return varlink_error_invalid_parameter(link, JSON_VARIANT_STRING_CONST("ifindex"));
505
0234f0c0 506 if (!IN_SET(p.family, AF_INET, AF_INET6))
9581bb84
LP
507 return varlink_error_invalid_parameter(link, JSON_VARIANT_STRING_CONST("family"));
508
509 if (FAMILY_ADDRESS_SIZE(p.family) != p.address_size)
510 return varlink_error(link, "io.systemd.UserDatabase.BadAddressSize", NULL);
511
3354f500 512 if (!validate_and_mangle_flags(NULL, &p.flags, 0))
9581bb84
LP
513 return varlink_error_invalid_parameter(link, JSON_VARIANT_STRING_CONST("flags"));
514
515 r = dns_question_new_reverse(&question, p.family, &p.address);
516 if (r < 0)
517 return r;
518
775ae354 519 r = dns_query_new(m, &q, question, question, NULL, p.ifindex, p.flags|SD_RESOLVED_NO_SEARCH);
9581bb84
LP
520 if (r < 0)
521 return r;
522
523 q->varlink_request = varlink_ref(link);
524 varlink_set_userdata(link, q);
525
526 q->request_family = p.family;
527 q->request_address = p.address;
528 q->complete = vl_method_resolve_address_complete;
529
530 r = dns_query_go(q);
531 if (r < 0)
c704288c 532 return r;
9581bb84 533
c704288c 534 TAKE_PTR(q);
9581bb84 535 return 1;
9581bb84
LP
536}
537
cb456374
SK
538static int vl_method_subscribe_dns_resolves(Varlink *link, JsonVariant *parameters, VarlinkMethodFlags flags, void *userdata) {
539 Manager *m;
540 int r;
541
542 assert(link);
543
544 m = varlink_server_get_userdata(varlink_get_server(link));
545 assert(m);
546
547 if (json_variant_elements(parameters) > 0)
548 return varlink_error_invalid_parameter(link, parameters);
549
550 r = set_ensure_put(&m->varlink_subscription, NULL, link);
551 if (r < 0)
552 return log_error_errno(r, "Failed to add subscription to set: %m");
553 varlink_ref(link);
554
555 log_debug("%u clients now attached for varlink notifications", set_size(m->varlink_subscription));
556
557 /* if the client didn't set the more flag, return an empty response and close the connection */
558 if (!FLAGS_SET(flags, VARLINK_METHOD_MORE))
559 return varlink_reply(link, NULL);
560
561 return 1;
562}
563
9581bb84
LP
564int manager_varlink_init(Manager *m) {
565 _cleanup_(varlink_server_unrefp) VarlinkServer *s = NULL;
566 int r;
567
568 assert(m);
569
570 if (m->varlink_server)
571 return 0;
572
573 r = varlink_server_new(&s, VARLINK_SERVER_ACCOUNT_UID);
574 if (r < 0)
575 return log_error_errno(r, "Failed to allocate varlink server object: %m");
576
577 varlink_server_set_userdata(s, m);
578
579 r = varlink_server_bind_method_many(
580 s,
581 "io.systemd.Resolve.ResolveHostname", vl_method_resolve_hostname,
582 "io.systemd.Resolve.ResolveAddress", vl_method_resolve_address);
583 if (r < 0)
584 return log_error_errno(r, "Failed to register varlink methods: %m");
585
586 r = varlink_server_bind_disconnect(s, vl_on_disconnect);
587 if (r < 0)
588 return log_error_errno(r, "Failed to register varlink disconnect handler: %m");
589
590 r = varlink_server_listen_address(s, "/run/systemd/resolve/io.systemd.Resolve", 0666);
591 if (r < 0)
592 return log_error_errno(r, "Failed to bind to varlink socket: %m");
593
594 r = varlink_server_attach_event(s, m->event, SD_EVENT_PRIORITY_NORMAL);
595 if (r < 0)
596 return log_error_errno(r, "Failed to attach varlink connection to event loop: %m");
597
598 m->varlink_server = TAKE_PTR(s);
cb456374
SK
599
600 if (m->enable_varlink_notifications) {
601 if (m->varlink_notification_server)
602 return 0;
603
604 r = varlink_server_new(&s, VARLINK_SERVER_ACCOUNT_UID);
605 if (r < 0)
606 return log_error_errno(r, "Failed to allocate varlink server object: %m");
607
608 varlink_server_set_userdata(s, m);
609
610 r = varlink_server_bind_method_many(
611 s,
612 "io.systemd.Resolve.Monitor.SubscribeDnsResolves",
613 vl_method_subscribe_dns_resolves);
614 if (r < 0)
615 return log_error_errno(r, "Failed to register varlink methods: %m");
616
617 r = varlink_server_bind_disconnect(s, vl_on_notification_disconnect);
618 if (r < 0)
619 return log_error_errno(r, "Failed to register varlink disconnect handler: %m");
620
621 r = varlink_server_listen_address(s, "/run/systemd/resolve/io.systemd.Resolve.Monitor", 0660);
622 if (r < 0)
623 return log_error_errno(r, "Failed to bind to varlink socket: %m");
624
625 r = varlink_server_attach_event(s, m->event, SD_EVENT_PRIORITY_NORMAL);
626 if (r < 0)
627 return log_error_errno(r, "Failed to attach varlink connection to event loop: %m");
628
629 m->varlink_notification_server = TAKE_PTR(s);
630 }
631
9581bb84
LP
632 return 0;
633}
634
635void manager_varlink_done(Manager *m) {
636 assert(m);
637
638 m->varlink_server = varlink_server_unref(m->varlink_server);
cb456374 639 m->varlink_notification_server = varlink_server_unref(m->varlink_notification_server);
9581bb84 640}