]> git.ipfire.org Git - thirdparty/systemd.git/blob - src/network/networkd.c
48bc9820a9b2f31374c1a2646c238b7bece0b892
[thirdparty/systemd.git] / src / network / networkd.c
1 /* SPDX-License-Identifier: LGPL-2.1+ */
2 /***
3 This file is part of systemd.
4
5 Copyright 2013 Tom Gundersen <teg@jklm.no>
6 ***/
7
8 #include "sd-daemon.h"
9 #include "sd-event.h"
10
11 #include "capability-util.h"
12 #include "networkd-conf.h"
13 #include "networkd-manager.h"
14 #include "signal-util.h"
15 #include "user-util.h"
16
17 int main(int argc, char *argv[]) {
18 sd_event *event = NULL;
19 _cleanup_manager_free_ Manager *m = NULL;
20 const char *user = "systemd-network";
21 uid_t uid;
22 gid_t gid;
23 int r;
24
25 log_set_target(LOG_TARGET_AUTO);
26 log_parse_environment();
27 log_open();
28
29 umask(0022);
30
31 if (argc != 1) {
32 log_error("This program takes no arguments.");
33 r = -EINVAL;
34 goto out;
35 }
36
37 r = get_user_creds(&user, &uid, &gid, NULL, NULL);
38 if (r < 0) {
39 log_error_errno(r, "Cannot resolve user name %s: %m", user);
40 goto out;
41 }
42
43 /* Create runtime directory. This is not necessary when networkd is
44 * started with "RuntimeDirectory=systemd/netif", or after
45 * systemd-tmpfiles-setup.service. */
46 r = mkdir_safe_label("/run/systemd/netif", 0755, uid, gid, MKDIR_WARN_MODE);
47 if (r < 0)
48 log_warning_errno(r, "Could not create runtime directory: %m");
49
50 /* Drop privileges, but only if we have been started as root. If we are not running as root we assume all
51 * privileges are already dropped. */
52 if (geteuid() == 0) {
53 r = drop_privileges(uid, gid,
54 (1ULL << CAP_NET_ADMIN) |
55 (1ULL << CAP_NET_BIND_SERVICE) |
56 (1ULL << CAP_NET_BROADCAST) |
57 (1ULL << CAP_NET_RAW));
58 if (r < 0)
59 goto out;
60 }
61
62 /* Always create the directories people can create inotify watches in.
63 * It is necessary to create the following subdirectories after drop_privileges()
64 * to support old kernels not supporting AmbientCapabilities=. */
65 r = mkdir_safe_label("/run/systemd/netif/links", 0755, uid, gid, MKDIR_WARN_MODE);
66 if (r < 0)
67 log_warning_errno(r, "Could not create runtime directory 'links': %m");
68
69 r = mkdir_safe_label("/run/systemd/netif/leases", 0755, uid, gid, MKDIR_WARN_MODE);
70 if (r < 0)
71 log_warning_errno(r, "Could not create runtime directory 'leases': %m");
72
73 r = mkdir_safe_label("/run/systemd/netif/lldp", 0755, uid, gid, MKDIR_WARN_MODE);
74 if (r < 0)
75 log_warning_errno(r, "Could not create runtime directory 'lldp': %m");
76
77 assert_se(sigprocmask_many(SIG_BLOCK, NULL, SIGTERM, SIGINT, -1) >= 0);
78
79 r = sd_event_default(&event);
80 if (r < 0)
81 goto out;
82
83 sd_event_set_watchdog(event, true);
84 sd_event_add_signal(event, NULL, SIGTERM, NULL, NULL);
85 sd_event_add_signal(event, NULL, SIGINT, NULL, NULL);
86
87 r = manager_new(&m, event);
88 if (r < 0) {
89 log_error_errno(r, "Could not create manager: %m");
90 goto out;
91 }
92
93 r = manager_connect_bus(m);
94 if (r < 0) {
95 log_error_errno(r, "Could not connect to bus: %m");
96 goto out;
97 }
98
99 r = manager_parse_config_file(m);
100 if (r < 0)
101 log_warning_errno(r, "Failed to parse configuration file: %m");
102
103 r = manager_load_config(m);
104 if (r < 0) {
105 log_error_errno(r, "Could not load configuration files: %m");
106 goto out;
107 }
108
109 r = manager_rtnl_enumerate_links(m);
110 if (r < 0) {
111 log_error_errno(r, "Could not enumerate links: %m");
112 goto out;
113 }
114
115 r = manager_rtnl_enumerate_addresses(m);
116 if (r < 0) {
117 log_error_errno(r, "Could not enumerate addresses: %m");
118 goto out;
119 }
120
121 r = manager_rtnl_enumerate_routes(m);
122 if (r < 0) {
123 log_error_errno(r, "Could not enumerate routes: %m");
124 goto out;
125 }
126
127 r = manager_rtnl_enumerate_rules(m);
128 if (r < 0) {
129 log_error_errno(r, "Could not enumerate rules: %m");
130 goto out;
131 }
132
133 r = manager_start(m);
134 if (r < 0) {
135 log_error_errno(r, "Could not start manager: %m");
136 goto out;
137 }
138
139 log_info("Enumeration completed");
140
141 sd_notify(false,
142 "READY=1\n"
143 "STATUS=Processing requests...");
144
145 r = sd_event_loop(event);
146 if (r < 0) {
147 log_error_errno(r, "Event loop failed: %m");
148 goto out;
149 }
150 out:
151 sd_notify(false,
152 "STOPPING=1\n"
153 "STATUS=Shutting down...");
154
155 sd_event_unref(event);
156
157 return r < 0 ? EXIT_FAILURE : EXIT_SUCCESS;
158 }