1 /* SPDX-License-Identifier: LGPL-2.1+ */
8 #include "sd-netlink.h"
11 #include "alloc-util.h"
12 #include "bus-common-errors.h"
13 #include "bus-error.h"
15 #include "dns-domain.h"
17 #include "format-table.h"
18 #include "format-util.h"
19 #include "gcrypt-util.h"
20 #include "main-func.h"
21 #include "missing_network.h"
22 #include "netlink-util.h"
24 #include "parse-util.h"
25 #include "pretty-print.h"
26 #include "resolvconf-compat.h"
27 #include "resolvectl.h"
28 #include "resolved-def.h"
29 #include "resolved-dns-packet.h"
30 #include "socket-netlink.h"
31 #include "sort-util.h"
32 #include "stdio-util.h"
33 #include "string-table.h"
35 #include "terminal-util.h"
38 static int arg_family
= AF_UNSPEC
;
39 static int arg_ifindex
= 0;
40 static char *arg_ifname
= NULL
;
41 static uint16_t arg_type
= 0;
42 static uint16_t arg_class
= 0;
43 static bool arg_legend
= true;
44 static uint64_t arg_flags
= 0;
45 static PagerFlags arg_pager_flags
= 0;
46 bool arg_ifindex_permissive
= false; /* If true, don't generate an error if the specified interface index doesn't exist */
47 static const char *arg_service_family
= NULL
;
49 typedef enum RawType
{
54 static RawType arg_raw
= RAW_NONE
;
56 ExecutionMode arg_mode
= MODE_RESOLVE_HOST
;
58 char **arg_set_dns
= NULL
;
59 char **arg_set_domain
= NULL
;
60 static const char *arg_set_llmnr
= NULL
;
61 static const char *arg_set_mdns
= NULL
;
62 static const char *arg_set_dns_over_tls
= NULL
;
63 static const char *arg_set_dnssec
= NULL
;
64 static char **arg_set_nta
= NULL
;
66 STATIC_DESTRUCTOR_REGISTER(arg_ifname
, freep
);
67 STATIC_DESTRUCTOR_REGISTER(arg_set_dns
, strv_freep
);
68 STATIC_DESTRUCTOR_REGISTER(arg_set_domain
, strv_freep
);
69 STATIC_DESTRUCTOR_REGISTER(arg_set_nta
, strv_freep
);
71 typedef enum StatusMode
{
83 typedef struct InterfaceInfo
{
88 static int interface_info_compare(const InterfaceInfo
*a
, const InterfaceInfo
*b
) {
91 r
= CMP(a
->index
, b
->index
);
95 return strcmp_ptr(a
->name
, b
->name
);
98 int ifname_mangle(const char *s
) {
99 _cleanup_free_
char *iface
= NULL
;
105 dot
= strchr(s
, '.');
107 log_debug("Ignoring protocol specifier '%s'.", dot
+ 1);
108 iface
= strndup(s
, dot
- s
);
115 ifi
= resolve_interface(NULL
, iface
);
117 if (ifi
== -ENODEV
&& arg_ifindex_permissive
) {
118 log_debug("Interface '%s' not found, but -f specified, ignoring.", iface
);
122 return log_error_errno(ifi
, "Failed to resolve interface \"%s\": %m", iface
);
125 if (arg_ifindex
> 0 && arg_ifindex
!= ifi
)
126 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
), "Specified multiple different interfaces. Refusing.");
129 free_and_replace(arg_ifname
, iface
);
134 static void print_source(uint64_t flags
, usec_t rtt
) {
135 char rtt_str
[FORMAT_TIMESTAMP_MAX
];
143 printf("\n%s-- Information acquired via", ansi_grey());
146 printf(" protocol%s%s%s%s%s",
147 flags
& SD_RESOLVED_DNS
? " DNS" :"",
148 flags
& SD_RESOLVED_LLMNR_IPV4
? " LLMNR/IPv4" : "",
149 flags
& SD_RESOLVED_LLMNR_IPV6
? " LLMNR/IPv6" : "",
150 flags
& SD_RESOLVED_MDNS_IPV4
? " mDNS/IPv4" : "",
151 flags
& SD_RESOLVED_MDNS_IPV6
? " mDNS/IPv6" : "");
153 assert_se(format_timespan(rtt_str
, sizeof(rtt_str
), rtt
, 100));
156 "%s-- Data is authenticated: %s%s\n",
157 rtt_str
, ansi_normal(),
158 ansi_grey(), yes_no(flags
& SD_RESOLVED_AUTHENTICATED
), ansi_normal());
161 static void print_ifindex_comment(int printed_so_far
, int ifindex
) {
162 char ifname
[IF_NAMESIZE
+ 1];
167 if (!format_ifname(ifindex
, ifname
))
168 log_warning_errno(errno
, "Failed to resolve interface name for index %i, ignoring: %m", ifindex
);
170 printf("%*s%s-- link: %s%s",
171 60 > printed_so_far
? 60 - printed_so_far
: 0, " ", /* Align comment to the 60th column */
172 ansi_grey(), ifname
, ansi_normal());
175 static int resolve_host(sd_bus
*bus
, const char *name
) {
176 _cleanup_(sd_bus_message_unrefp
) sd_bus_message
*req
= NULL
, *reply
= NULL
;
177 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
178 const char *canonical
= NULL
;
186 log_debug("Resolving %s (family %s, interface %s).", name
, af_to_name(arg_family
) ?: "*", isempty(arg_ifname
) ? "*" : arg_ifname
);
188 r
= bus_message_new_method_call(bus
, &req
, bus_resolve_mgr
, "ResolveHostname");
190 return bus_log_create_error(r
);
192 r
= sd_bus_message_append(req
, "isit", arg_ifindex
, name
, arg_family
, arg_flags
);
194 return bus_log_create_error(r
);
196 ts
= now(CLOCK_MONOTONIC
);
198 r
= sd_bus_call(bus
, req
, SD_RESOLVED_QUERY_TIMEOUT_USEC
, &error
, &reply
);
200 return log_error_errno(r
, "%s: resolve call failed: %s", name
, bus_error_message(&error
, r
));
202 ts
= now(CLOCK_MONOTONIC
) - ts
;
204 r
= sd_bus_message_enter_container(reply
, 'a', "(iiay)");
206 return bus_log_parse_error(r
);
208 while ((r
= sd_bus_message_enter_container(reply
, 'r', "iiay")) > 0) {
209 _cleanup_free_
char *pretty
= NULL
;
210 int ifindex
, family
, k
;
214 assert_cc(sizeof(int) == sizeof(int32_t));
216 r
= sd_bus_message_read(reply
, "ii", &ifindex
, &family
);
218 return bus_log_parse_error(r
);
220 r
= sd_bus_message_read_array(reply
, 'y', &a
, &sz
);
222 return bus_log_parse_error(r
);
224 r
= sd_bus_message_exit_container(reply
);
226 return bus_log_parse_error(r
);
228 if (!IN_SET(family
, AF_INET
, AF_INET6
)) {
229 log_debug("%s: skipping entry with family %d (%s)", name
, family
, af_to_name(family
) ?: "unknown");
233 if (sz
!= FAMILY_ADDRESS_SIZE(family
)) {
234 log_error("%s: systemd-resolved returned address of invalid size %zu for family %s", name
, sz
, af_to_name(family
) ?: "unknown");
238 r
= in_addr_ifindex_to_string(family
, a
, ifindex
, &pretty
);
240 return log_error_errno(r
, "Failed to print address for %s: %m", name
);
242 k
= printf("%*s%s %s%s%s",
243 (int) strlen(name
), c
== 0 ? name
: "", c
== 0 ? ":" : " ",
244 ansi_highlight(), pretty
, ansi_normal());
246 print_ifindex_comment(k
, ifindex
);
252 return bus_log_parse_error(r
);
254 r
= sd_bus_message_exit_container(reply
);
256 return bus_log_parse_error(r
);
258 r
= sd_bus_message_read(reply
, "st", &canonical
, &flags
);
260 return bus_log_parse_error(r
);
262 if (!streq(name
, canonical
))
263 printf("%*s%s (%s)\n",
264 (int) strlen(name
), c
== 0 ? name
: "", c
== 0 ? ":" : " ",
268 log_error("%s: no addresses found", name
);
272 print_source(flags
, ts
);
277 static int resolve_address(sd_bus
*bus
, int family
, const union in_addr_union
*address
, int ifindex
) {
278 _cleanup_(sd_bus_message_unrefp
) sd_bus_message
*req
= NULL
, *reply
= NULL
;
279 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
280 _cleanup_free_
char *pretty
= NULL
;
287 assert(IN_SET(family
, AF_INET
, AF_INET6
));
291 ifindex
= arg_ifindex
;
293 r
= in_addr_ifindex_to_string(family
, address
, ifindex
, &pretty
);
297 log_debug("Resolving %s.", pretty
);
299 r
= bus_message_new_method_call(bus
, &req
, bus_resolve_mgr
, "ResolveAddress");
301 return bus_log_create_error(r
);
303 r
= sd_bus_message_append(req
, "ii", ifindex
, family
);
305 return bus_log_create_error(r
);
307 r
= sd_bus_message_append_array(req
, 'y', address
, FAMILY_ADDRESS_SIZE(family
));
309 return bus_log_create_error(r
);
311 r
= sd_bus_message_append(req
, "t", arg_flags
);
313 return bus_log_create_error(r
);
315 ts
= now(CLOCK_MONOTONIC
);
317 r
= sd_bus_call(bus
, req
, SD_RESOLVED_QUERY_TIMEOUT_USEC
, &error
, &reply
);
319 return log_error_errno(r
, "%s: resolve call failed: %s", pretty
, bus_error_message(&error
, r
));
321 ts
= now(CLOCK_MONOTONIC
) - ts
;
323 r
= sd_bus_message_enter_container(reply
, 'a', "(is)");
325 return bus_log_create_error(r
);
327 while ((r
= sd_bus_message_enter_container(reply
, 'r', "is")) > 0) {
331 assert_cc(sizeof(int) == sizeof(int32_t));
333 r
= sd_bus_message_read(reply
, "is", &ifindex
, &n
);
337 r
= sd_bus_message_exit_container(reply
);
341 k
= printf("%*s%s %s%s%s",
342 (int) strlen(pretty
), c
== 0 ? pretty
: "",
344 ansi_highlight(), n
, ansi_normal());
346 print_ifindex_comment(k
, ifindex
);
352 return bus_log_parse_error(r
);
354 r
= sd_bus_message_exit_container(reply
);
356 return bus_log_parse_error(r
);
358 r
= sd_bus_message_read(reply
, "t", &flags
);
360 return bus_log_parse_error(r
);
363 log_error("%s: no names found", pretty
);
367 print_source(flags
, ts
);
372 static int output_rr_packet(const void *d
, size_t l
, int ifindex
) {
373 _cleanup_(dns_resource_record_unrefp
) DnsResourceRecord
*rr
= NULL
;
374 _cleanup_(dns_packet_unrefp
) DnsPacket
*p
= NULL
;
377 r
= dns_packet_new(&p
, DNS_PROTOCOL_DNS
, 0, DNS_PACKET_SIZE_MAX
);
381 p
->refuse_compression
= true;
383 r
= dns_packet_append_blob(p
, d
, l
, NULL
);
387 r
= dns_packet_read_rr(p
, &rr
, NULL
, NULL
);
389 return log_error_errno(r
, "Failed to parse RR: %m");
391 if (arg_raw
== RAW_PAYLOAD
) {
395 k
= dns_resource_record_payload(rr
, &data
);
397 return log_error_errno(k
, "Cannot dump RR: %m");
398 fwrite(data
, 1, k
, stdout
);
403 s
= dns_resource_record_to_string(rr
);
408 print_ifindex_comment(k
, ifindex
);
415 static int resolve_record(sd_bus
*bus
, const char *name
, uint16_t class, uint16_t type
, bool warn_missing
) {
416 _cleanup_(sd_bus_message_unrefp
) sd_bus_message
*req
= NULL
, *reply
= NULL
;
417 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
422 bool needs_authentication
= false;
426 log_debug("Resolving %s %s %s (interface %s).", name
, dns_class_to_string(class), dns_type_to_string(type
), isempty(arg_ifname
) ? "*" : arg_ifname
);
428 r
= bus_message_new_method_call(bus
, &req
, bus_resolve_mgr
, "ResolveRecord");
430 return bus_log_create_error(r
);
432 r
= sd_bus_message_append(req
, "isqqt", arg_ifindex
, name
, class, type
, arg_flags
);
434 return bus_log_create_error(r
);
436 ts
= now(CLOCK_MONOTONIC
);
438 r
= sd_bus_call(bus
, req
, SD_RESOLVED_QUERY_TIMEOUT_USEC
, &error
, &reply
);
440 if (warn_missing
|| r
!= -ENXIO
)
441 log_error("%s: resolve call failed: %s", name
, bus_error_message(&error
, r
));
445 ts
= now(CLOCK_MONOTONIC
) - ts
;
447 r
= sd_bus_message_enter_container(reply
, 'a', "(iqqay)");
449 return bus_log_parse_error(r
);
451 while ((r
= sd_bus_message_enter_container(reply
, 'r', "iqqay")) > 0) {
457 assert_cc(sizeof(int) == sizeof(int32_t));
459 r
= sd_bus_message_read(reply
, "iqq", &ifindex
, &c
, &t
);
461 return bus_log_parse_error(r
);
463 r
= sd_bus_message_read_array(reply
, 'y', &d
, &l
);
465 return bus_log_parse_error(r
);
467 r
= sd_bus_message_exit_container(reply
);
469 return bus_log_parse_error(r
);
471 if (arg_raw
== RAW_PACKET
) {
472 uint64_t u64
= htole64(l
);
474 fwrite(&u64
, sizeof(u64
), 1, stdout
);
475 fwrite(d
, 1, l
, stdout
);
477 r
= output_rr_packet(d
, l
, ifindex
);
482 if (dns_type_needs_authentication(t
))
483 needs_authentication
= true;
488 return bus_log_parse_error(r
);
490 r
= sd_bus_message_exit_container(reply
);
492 return bus_log_parse_error(r
);
494 r
= sd_bus_message_read(reply
, "t", &flags
);
496 return bus_log_parse_error(r
);
500 log_error("%s: no records found", name
);
504 print_source(flags
, ts
);
506 if ((flags
& SD_RESOLVED_AUTHENTICATED
) == 0 && needs_authentication
) {
509 fprintf(stderr
, "\n%s"
510 "WARNING: The resources shown contain cryptographic key data which could not be\n"
511 " authenticated. It is not suitable to authenticate any communication.\n"
512 " This is usually indication that DNSSEC authentication was not enabled\n"
513 " or is not available for the selected protocol or DNS servers.%s\n",
514 ansi_highlight_red(),
521 static int resolve_rfc4501(sd_bus
*bus
, const char *name
) {
522 uint16_t type
= 0, class = 0;
523 const char *p
, *q
, *n
;
528 assert(startswith(name
, "dns:"));
530 /* Parse RFC 4501 dns: URIs */
540 e
= strchr(p
+ 2, '/');
545 log_warning("DNS authority specification not supported; ignoring specified authority.");
552 n
= strndupa(p
, q
- p
);
558 f
= startswith_no_case(q
, "class=");
560 _cleanup_free_
char *t
= NULL
;
564 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
565 "DNS class specified twice.");
567 e
= strchrnul(f
, ';');
568 t
= strndup(f
, e
- f
);
572 r
= dns_class_from_string(t
);
574 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
575 "Unknown DNS class %s.", t
);
587 f
= startswith_no_case(q
, "type=");
589 _cleanup_free_
char *t
= NULL
;
593 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
594 "DNS type specified twice.");
596 e
= strchrnul(f
, ';');
597 t
= strndup(f
, e
- f
);
601 r
= dns_type_from_string(t
);
603 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
604 "Unknown DNS type %s.", t
);
622 class = arg_class
?: DNS_CLASS_IN
;
624 type
= arg_type
?: DNS_TYPE_A
;
626 return resolve_record(bus
, n
, class, type
, true);
629 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
630 "Invalid DNS URI: %s", name
);
633 static int verb_query(int argc
, char **argv
, void *userdata
) {
634 sd_bus
*bus
= userdata
;
639 STRV_FOREACH(p
, argv
+ 1) {
640 q
= resolve_record(bus
, *p
, arg_class
, arg_type
, true);
646 STRV_FOREACH(p
, argv
+ 1) {
647 if (startswith(*p
, "dns:"))
648 q
= resolve_rfc4501(bus
, *p
);
651 union in_addr_union a
;
653 q
= in_addr_ifindex_from_string_auto(*p
, &family
, &a
, &ifindex
);
655 q
= resolve_address(bus
, family
, &a
, ifindex
);
657 q
= resolve_host(bus
, *p
);
666 static int resolve_service(sd_bus
*bus
, const char *name
, const char *type
, const char *domain
) {
667 const char *canonical_name
, *canonical_type
, *canonical_domain
;
668 _cleanup_(sd_bus_message_unrefp
) sd_bus_message
*req
= NULL
, *reply
= NULL
;
669 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
680 name
= empty_to_null(name
);
681 type
= empty_to_null(type
);
684 log_debug("Resolving service \"%s\" of type %s in %s (family %s, interface %s).", name
, type
, domain
, af_to_name(arg_family
) ?: "*", isempty(arg_ifname
) ? "*" : arg_ifname
);
686 log_debug("Resolving service type %s of %s (family %s, interface %s).", type
, domain
, af_to_name(arg_family
) ?: "*", isempty(arg_ifname
) ? "*" : arg_ifname
);
688 log_debug("Resolving service type %s (family %s, interface %s).", domain
, af_to_name(arg_family
) ?: "*", isempty(arg_ifname
) ? "*" : arg_ifname
);
690 r
= bus_message_new_method_call(bus
, &req
, bus_resolve_mgr
, "ResolveService");
692 return bus_log_create_error(r
);
694 r
= sd_bus_message_append(req
, "isssit", arg_ifindex
, name
, type
, domain
, arg_family
, arg_flags
);
696 return bus_log_create_error(r
);
698 ts
= now(CLOCK_MONOTONIC
);
700 r
= sd_bus_call(bus
, req
, SD_RESOLVED_QUERY_TIMEOUT_USEC
, &error
, &reply
);
702 return log_error_errno(r
, "Resolve call failed: %s", bus_error_message(&error
, r
));
704 ts
= now(CLOCK_MONOTONIC
) - ts
;
706 r
= sd_bus_message_enter_container(reply
, 'a', "(qqqsa(iiay)s)");
708 return bus_log_parse_error(r
);
711 (name
? strlen(name
) + 1 : 0) +
712 (type
? strlen(type
) + 1 : 0) +
716 while ((r
= sd_bus_message_enter_container(reply
, 'r', "qqqsa(iiay)s")) > 0) {
717 uint16_t priority
, weight
, port
;
718 const char *hostname
, *canonical
;
720 r
= sd_bus_message_read(reply
, "qqqs", &priority
, &weight
, &port
, &hostname
);
722 return bus_log_parse_error(r
);
725 printf("%*s%s", (int) strlen(name
), c
== 0 ? name
: "", c
== 0 ? "/" : " ");
727 printf("%*s%s", (int) strlen(type
), c
== 0 ? type
: "", c
== 0 ? "/" : " ");
729 printf("%*s%s %s:%u [priority=%u, weight=%u]\n",
730 (int) strlen(domain
), c
== 0 ? domain
: "",
735 r
= sd_bus_message_enter_container(reply
, 'a', "(iiay)");
737 return bus_log_parse_error(r
);
739 while ((r
= sd_bus_message_enter_container(reply
, 'r', "iiay")) > 0) {
740 _cleanup_free_
char *pretty
= NULL
;
741 int ifindex
, family
, k
;
744 assert_cc(sizeof(int) == sizeof(int32_t));
746 r
= sd_bus_message_read(reply
, "ii", &ifindex
, &family
);
748 return bus_log_parse_error(r
);
750 r
= sd_bus_message_read_array(reply
, 'y', &a
, &sz
);
752 return bus_log_parse_error(r
);
754 r
= sd_bus_message_exit_container(reply
);
756 return bus_log_parse_error(r
);
758 if (!IN_SET(family
, AF_INET
, AF_INET6
)) {
759 log_debug("%s: skipping entry with family %d (%s)", name
, family
, af_to_name(family
) ?: "unknown");
763 if (sz
!= FAMILY_ADDRESS_SIZE(family
)) {
764 log_error("%s: systemd-resolved returned address of invalid size %zu for family %s", name
, sz
, af_to_name(family
) ?: "unknown");
768 r
= in_addr_ifindex_to_string(family
, a
, ifindex
, &pretty
);
770 return log_error_errno(r
, "Failed to print address for %s: %m", name
);
772 k
= printf("%*s%s", (int) indent
, "", pretty
);
773 print_ifindex_comment(k
, ifindex
);
777 return bus_log_parse_error(r
);
779 r
= sd_bus_message_exit_container(reply
);
781 return bus_log_parse_error(r
);
783 r
= sd_bus_message_read(reply
, "s", &canonical
);
785 return bus_log_parse_error(r
);
787 if (!streq(hostname
, canonical
))
788 printf("%*s(%s)\n", (int) indent
, "", canonical
);
790 r
= sd_bus_message_exit_container(reply
);
792 return bus_log_parse_error(r
);
797 return bus_log_parse_error(r
);
799 r
= sd_bus_message_exit_container(reply
);
801 return bus_log_parse_error(r
);
803 r
= sd_bus_message_enter_container(reply
, 'a', "ay");
805 return bus_log_parse_error(r
);
807 while ((r
= sd_bus_message_read_array(reply
, 'y', (const void**) &p
, &sz
)) > 0) {
808 _cleanup_free_
char *escaped
= NULL
;
810 escaped
= cescape_length(p
, sz
);
814 printf("%*s%s\n", (int) indent
, "", escaped
);
817 return bus_log_parse_error(r
);
819 r
= sd_bus_message_exit_container(reply
);
821 return bus_log_parse_error(r
);
823 r
= sd_bus_message_read(reply
, "ssst", &canonical_name
, &canonical_type
, &canonical_domain
, &flags
);
825 return bus_log_parse_error(r
);
827 canonical_name
= empty_to_null(canonical_name
);
828 canonical_type
= empty_to_null(canonical_type
);
830 if (!streq_ptr(name
, canonical_name
) ||
831 !streq_ptr(type
, canonical_type
) ||
832 !streq_ptr(domain
, canonical_domain
)) {
834 printf("%*s(", (int) indent
, "");
837 printf("%s/", canonical_name
);
839 printf("%s/", canonical_type
);
841 printf("%s)\n", canonical_domain
);
844 print_source(flags
, ts
);
849 static int verb_service(int argc
, char **argv
, void *userdata
) {
850 sd_bus
*bus
= userdata
;
853 return resolve_service(bus
, NULL
, NULL
, argv
[1]);
855 return resolve_service(bus
, NULL
, argv
[1], argv
[2]);
857 return resolve_service(bus
, argv
[1], argv
[2], argv
[3]);
860 static int resolve_openpgp(sd_bus
*bus
, const char *address
) {
861 const char *domain
, *full
;
863 _cleanup_free_
char *hashed
= NULL
;
868 domain
= strrchr(address
, '@');
870 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
871 "Address does not contain '@': \"%s\"", address
);
872 if (domain
== address
|| domain
[1] == '\0')
873 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
874 "Address starts or ends with '@': \"%s\"", address
);
877 r
= string_hashsum_sha256(address
, domain
- 1 - address
, &hashed
);
879 return log_error_errno(r
, "Hashing failed: %m");
881 strshorten(hashed
, 56);
883 full
= strjoina(hashed
, "._openpgpkey.", domain
);
884 log_debug("Looking up \"%s\".", full
);
886 r
= resolve_record(bus
, full
,
887 arg_class
?: DNS_CLASS_IN
,
888 arg_type
?: DNS_TYPE_OPENPGPKEY
, false);
890 if (IN_SET(r
, -ENXIO
, -ESRCH
)) { /* NXDOMAIN or NODATA? */
891 hashed
= mfree(hashed
);
892 r
= string_hashsum_sha224(address
, domain
- 1 - address
, &hashed
);
894 return log_error_errno(r
, "Hashing failed: %m");
896 full
= strjoina(hashed
, "._openpgpkey.", domain
);
897 log_debug("Looking up \"%s\".", full
);
899 return resolve_record(bus
, full
,
900 arg_class
?: DNS_CLASS_IN
,
901 arg_type
?: DNS_TYPE_OPENPGPKEY
, true);
907 static int verb_openpgp(int argc
, char **argv
, void *userdata
) {
908 sd_bus
*bus
= userdata
;
912 STRV_FOREACH(p
, argv
+ 1) {
913 q
= resolve_openpgp(bus
, *p
);
921 static int resolve_tlsa(sd_bus
*bus
, const char *family
, const char *address
) {
923 uint16_t port_num
= 443;
924 _cleanup_free_
char *full
= NULL
;
930 port
= strrchr(address
, ':');
932 r
= parse_ip_port(port
+ 1, &port_num
);
934 return log_error_errno(r
, "Invalid port \"%s\".", port
+ 1);
936 address
= strndupa(address
, port
- address
);
939 r
= asprintf(&full
, "_%u._%s.%s",
946 log_debug("Looking up \"%s\".", full
);
948 return resolve_record(bus
, full
,
949 arg_class
?: DNS_CLASS_IN
,
950 arg_type
?: DNS_TYPE_TLSA
, true);
953 static bool service_family_is_valid(const char *s
) {
954 return STR_IN_SET(s
, "tcp", "udp", "sctp");
957 static int verb_tlsa(int argc
, char **argv
, void *userdata
) {
958 sd_bus
*bus
= userdata
;
959 char **p
, **args
= argv
+ 1;
960 const char *family
= "tcp";
963 if (service_family_is_valid(argv
[1])) {
968 STRV_FOREACH(p
, args
) {
969 q
= resolve_tlsa(bus
, family
, *p
);
977 static int show_statistics(int argc
, char **argv
, void *userdata
) {
978 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
979 _cleanup_(sd_bus_message_unrefp
) sd_bus_message
*reply
= NULL
;
980 _cleanup_(table_unrefp
) Table
*table
= NULL
;
981 sd_bus
*bus
= userdata
;
982 uint64_t n_current_transactions
, n_total_transactions
,
983 cache_size
, n_cache_hit
, n_cache_miss
,
984 n_dnssec_secure
, n_dnssec_insecure
, n_dnssec_bogus
, n_dnssec_indeterminate
;
985 int r
, dnssec_supported
;
989 r
= bus_get_property_trivial(bus
, bus_resolve_mgr
, "DNSSECSupported", &error
, 'b', &dnssec_supported
);
991 return log_error_errno(r
, "Failed to get DNSSEC supported state: %s", bus_error_message(&error
, r
));
993 printf("DNSSEC supported by current servers: %s%s%s\n\n",
995 yes_no(dnssec_supported
),
998 r
= bus_get_property(bus
, bus_resolve_mgr
, "TransactionStatistics", &error
, &reply
, "(tt)");
1000 return log_error_errno(r
, "Failed to get transaction statistics: %s", bus_error_message(&error
, r
));
1002 r
= sd_bus_message_read(reply
, "(tt)",
1003 &n_current_transactions
,
1004 &n_total_transactions
);
1006 return bus_log_parse_error(r
);
1008 reply
= sd_bus_message_unref(reply
);
1010 r
= bus_get_property(bus
, bus_resolve_mgr
, "CacheStatistics", &error
, &reply
, "(ttt)");
1012 return log_error_errno(r
, "Failed to get cache statistics: %s", bus_error_message(&error
, r
));
1014 r
= sd_bus_message_read(reply
, "(ttt)",
1019 return bus_log_parse_error(r
);
1021 reply
= sd_bus_message_unref(reply
);
1023 r
= bus_get_property(bus
, bus_resolve_mgr
, "DNSSECStatistics", &error
, &reply
, "(tttt)");
1025 return log_error_errno(r
, "Failed to get DNSSEC statistics: %s", bus_error_message(&error
, r
));
1027 r
= sd_bus_message_read(reply
, "(tttt)",
1031 &n_dnssec_indeterminate
);
1033 return bus_log_parse_error(r
);
1035 table
= table_new("key", "value");
1039 table_set_header(table
, false);
1041 r
= table_add_many(table
,
1042 TABLE_STRING
, "Transactions",
1043 TABLE_SET_COLOR
, ansi_highlight(),
1045 TABLE_STRING
, "Current Transactions:",
1046 TABLE_SET_ALIGN_PERCENT
, 100,
1047 TABLE_UINT64
, n_current_transactions
,
1048 TABLE_STRING
, "Total Transactions:",
1049 TABLE_UINT64
, n_total_transactions
,
1050 TABLE_EMPTY
, TABLE_EMPTY
,
1051 TABLE_STRING
, "Cache",
1052 TABLE_SET_COLOR
, ansi_highlight(),
1053 TABLE_SET_ALIGN_PERCENT
, 0,
1055 TABLE_STRING
, "Current Cache Size:",
1056 TABLE_SET_ALIGN_PERCENT
, 100,
1057 TABLE_UINT64
, cache_size
,
1058 TABLE_STRING
, "Cache Hits:",
1059 TABLE_UINT64
, n_cache_hit
,
1060 TABLE_STRING
, "Cache Misses:",
1061 TABLE_UINT64
, n_cache_miss
,
1062 TABLE_EMPTY
, TABLE_EMPTY
,
1063 TABLE_STRING
, "DNSSEC Verdicts",
1064 TABLE_SET_COLOR
, ansi_highlight(),
1065 TABLE_SET_ALIGN_PERCENT
, 0,
1067 TABLE_STRING
, "Secure:",
1068 TABLE_SET_ALIGN_PERCENT
, 100,
1069 TABLE_UINT64
, n_dnssec_secure
,
1070 TABLE_STRING
, "Insecure:",
1071 TABLE_UINT64
, n_dnssec_insecure
,
1072 TABLE_STRING
, "Bogus:",
1073 TABLE_UINT64
, n_dnssec_bogus
,
1074 TABLE_STRING
, "Indeterminate:",
1075 TABLE_UINT64
, n_dnssec_indeterminate
);
1077 table_log_add_error(r
);
1079 r
= table_print(table
, NULL
);
1081 return log_error_errno(r
, "Failed to print table: %m");
1086 static int reset_statistics(int argc
, char **argv
, void *userdata
) {
1087 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
1088 sd_bus
*bus
= userdata
;
1091 r
= bus_call_method(bus
, bus_resolve_mgr
, "ResetStatistics", &error
, NULL
, NULL
);
1093 return log_error_errno(r
, "Failed to reset statistics: %s", bus_error_message(&error
, r
));
1098 static int flush_caches(int argc
, char **argv
, void *userdata
) {
1099 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
1100 sd_bus
*bus
= userdata
;
1103 r
= bus_call_method(bus
, bus_resolve_mgr
, "FlushCaches", &error
, NULL
, NULL
);
1105 return log_error_errno(r
, "Failed to flush caches: %s", bus_error_message(&error
, r
));
1110 static int reset_server_features(int argc
, char **argv
, void *userdata
) {
1111 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
1112 sd_bus
*bus
= userdata
;
1115 r
= bus_call_method(bus
, bus_resolve_mgr
, "ResetServerFeatures", &error
, NULL
, NULL
);
1117 return log_error_errno(r
, "Failed to reset server features: %s", bus_error_message(&error
, r
));
1122 static int read_dns_server_one(sd_bus_message
*m
, bool with_ifindex
, char **ret
) {
1123 _cleanup_free_
char *pretty
= NULL
;
1124 int ifindex
, family
, r
;
1131 r
= sd_bus_message_enter_container(m
, 'r', with_ifindex
? "iiay" : "iay");
1136 r
= sd_bus_message_read(m
, "i", &ifindex
);
1141 r
= sd_bus_message_read(m
, "i", &family
);
1145 r
= sd_bus_message_read_array(m
, 'y', &a
, &sz
);
1149 r
= sd_bus_message_exit_container(m
);
1153 if (with_ifindex
&& ifindex
!= 0) {
1154 /* only show the global ones here */
1159 if (!IN_SET(family
, AF_INET
, AF_INET6
)) {
1160 log_debug("Unexpected family, ignoring: %i", family
);
1166 if (sz
!= FAMILY_ADDRESS_SIZE(family
)) {
1167 log_debug("Address size mismatch, ignoring.");
1173 r
= in_addr_to_string(family
, a
, &pretty
);
1177 *ret
= TAKE_PTR(pretty
);
1182 static int map_link_dns_servers(sd_bus
*bus
, const char *member
, sd_bus_message
*m
, sd_bus_error
*error
, void *userdata
) {
1183 char ***l
= userdata
;
1191 r
= sd_bus_message_enter_container(m
, 'a', "(iay)");
1196 _cleanup_free_
char *pretty
= NULL
;
1198 r
= read_dns_server_one(m
, false, &pretty
);
1204 if (isempty(pretty
))
1207 r
= strv_consume(l
, TAKE_PTR(pretty
));
1212 r
= sd_bus_message_exit_container(m
);
1219 static int map_link_current_dns_server(sd_bus
*bus
, const char *member
, sd_bus_message
*m
, sd_bus_error
*error
, void *userdata
) {
1223 return read_dns_server_one(m
, false, userdata
);
1226 static int read_domain_one(sd_bus_message
*m
, bool with_ifindex
, char **ret
) {
1227 _cleanup_free_
char *str
= NULL
;
1228 int ifindex
, route_only
, r
;
1235 r
= sd_bus_message_read(m
, "(isb)", &ifindex
, &domain
, &route_only
);
1237 r
= sd_bus_message_read(m
, "(sb)", &domain
, &route_only
);
1241 if (with_ifindex
&& ifindex
!= 0) {
1242 /* only show the global ones here */
1248 str
= strjoin("~", domain
);
1250 str
= strdup(domain
);
1254 *ret
= TAKE_PTR(str
);
1259 static int map_link_domains(sd_bus
*bus
, const char *member
, sd_bus_message
*m
, sd_bus_error
*error
, void *userdata
) {
1260 char ***l
= userdata
;
1268 r
= sd_bus_message_enter_container(m
, 'a', "(sb)");
1273 _cleanup_free_
char *pretty
= NULL
;
1275 r
= read_domain_one(m
, false, &pretty
);
1281 if (isempty(pretty
))
1284 r
= strv_consume(l
, TAKE_PTR(pretty
));
1289 r
= sd_bus_message_exit_container(m
);
1296 static int status_print_strv_ifindex(int ifindex
, const char *ifname
, char **p
) {
1299 printf("%sLink %i (%s)%s:",
1300 ansi_highlight(), ifindex
, ifname
, ansi_normal());
1311 uint64_t scopes_mask
;
1314 const char *dns_over_tls
;
1320 bool dnssec_supported
;
1324 static void link_info_clear(struct link_info
*p
) {
1325 free(p
->current_dns
);
1327 strv_free(p
->domains
);
1331 static int dump_list(Table
*table
, const char *prefix
, char * const *l
) {
1334 if (strv_isempty(l
))
1337 r
= table_add_many(table
,
1338 TABLE_STRING
, prefix
,
1341 return table_log_add_error(r
);
1346 static int status_ifindex(sd_bus
*bus
, int ifindex
, const char *name
, StatusMode mode
, bool *empty_line
) {
1347 static const struct bus_properties_map property_map
[] = {
1348 { "ScopesMask", "t", NULL
, offsetof(struct link_info
, scopes_mask
) },
1349 { "DNS", "a(iay)", map_link_dns_servers
, offsetof(struct link_info
, dns
) },
1350 { "CurrentDNSServer", "(iay)", map_link_current_dns_server
, offsetof(struct link_info
, current_dns
) },
1351 { "Domains", "a(sb)", map_link_domains
, offsetof(struct link_info
, domains
) },
1352 { "DefaultRoute", "b", NULL
, offsetof(struct link_info
, default_route
) },
1353 { "LLMNR", "s", NULL
, offsetof(struct link_info
, llmnr
) },
1354 { "MulticastDNS", "s", NULL
, offsetof(struct link_info
, mdns
) },
1355 { "DNSOverTLS", "s", NULL
, offsetof(struct link_info
, dns_over_tls
) },
1356 { "DNSSEC", "s", NULL
, offsetof(struct link_info
, dnssec
) },
1357 { "DNSSECNegativeTrustAnchors", "as", NULL
, offsetof(struct link_info
, ntas
) },
1358 { "DNSSECSupported", "b", NULL
, offsetof(struct link_info
, dnssec_supported
) },
1361 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
1362 _cleanup_(sd_bus_message_unrefp
) sd_bus_message
*m
= NULL
;
1363 _cleanup_(link_info_clear
) struct link_info link_info
= {};
1364 _cleanup_(table_unrefp
) Table
*table
= NULL
;
1365 _cleanup_free_
char *p
= NULL
;
1366 char ifi
[DECIMAL_STR_MAX(int)], ifname
[IF_NAMESIZE
+ 1] = "";
1370 assert(ifindex
> 0);
1373 if (!format_ifname(ifindex
, ifname
))
1374 return log_error_errno(errno
, "Failed to resolve interface name for %i: %m", ifindex
);
1379 xsprintf(ifi
, "%i", ifindex
);
1380 r
= sd_bus_path_encode("/org/freedesktop/resolve1/link", ifi
, &p
);
1384 r
= bus_map_all_properties(bus
,
1385 "org.freedesktop.resolve1",
1388 BUS_MAP_BOOLEAN_AS_BOOL
,
1393 return log_error_errno(r
, "Failed to get link data for %i: %s", ifindex
, bus_error_message(&error
, r
));
1395 (void) pager_open(arg_pager_flags
);
1397 if (mode
== STATUS_DNS
)
1398 return status_print_strv_ifindex(ifindex
, name
, link_info
.dns
);
1400 if (mode
== STATUS_DOMAIN
)
1401 return status_print_strv_ifindex(ifindex
, name
, link_info
.domains
);
1403 if (mode
== STATUS_NTA
)
1404 return status_print_strv_ifindex(ifindex
, name
, link_info
.ntas
);
1406 if (mode
== STATUS_DEFAULT_ROUTE
) {
1407 printf("%sLink %i (%s)%s: %s\n",
1408 ansi_highlight(), ifindex
, name
, ansi_normal(),
1409 yes_no(link_info
.default_route
));
1414 if (mode
== STATUS_LLMNR
) {
1415 printf("%sLink %i (%s)%s: %s\n",
1416 ansi_highlight(), ifindex
, name
, ansi_normal(),
1417 strna(link_info
.llmnr
));
1422 if (mode
== STATUS_MDNS
) {
1423 printf("%sLink %i (%s)%s: %s\n",
1424 ansi_highlight(), ifindex
, name
, ansi_normal(),
1425 strna(link_info
.mdns
));
1430 if (mode
== STATUS_PRIVATE
) {
1431 printf("%sLink %i (%s)%s: %s\n",
1432 ansi_highlight(), ifindex
, name
, ansi_normal(),
1433 strna(link_info
.dns_over_tls
));
1438 if (mode
== STATUS_DNSSEC
) {
1439 printf("%sLink %i (%s)%s: %s\n",
1440 ansi_highlight(), ifindex
, name
, ansi_normal(),
1441 strna(link_info
.dnssec
));
1446 if (empty_line
&& *empty_line
)
1447 fputc('\n', stdout
);
1449 printf("%sLink %i (%s)%s\n",
1450 ansi_highlight(), ifindex
, name
, ansi_normal());
1452 table
= table_new("key", "value");
1456 table_set_header(table
, false);
1458 r
= table_add_many(table
,
1459 TABLE_STRING
, "Current Scopes:",
1460 TABLE_SET_ALIGN_PERCENT
, 100);
1462 return table_log_add_error(r
);
1464 if (link_info
.scopes_mask
== 0)
1465 r
= table_add_cell(table
, NULL
, TABLE_STRING
, "none");
1467 _cleanup_free_
char *buf
= NULL
;
1470 if (asprintf(&buf
, "%s%s%s%s%s",
1471 link_info
.scopes_mask
& SD_RESOLVED_DNS
? "DNS " : "",
1472 link_info
.scopes_mask
& SD_RESOLVED_LLMNR_IPV4
? "LLMNR/IPv4 " : "",
1473 link_info
.scopes_mask
& SD_RESOLVED_LLMNR_IPV6
? "LLMNR/IPv6 " : "",
1474 link_info
.scopes_mask
& SD_RESOLVED_MDNS_IPV4
? "mDNS/IPv4 " : "",
1475 link_info
.scopes_mask
& SD_RESOLVED_MDNS_IPV6
? "mDNS/IPv6 " : "") < 0)
1480 buf
[len
- 1] = '\0';
1482 r
= table_add_cell(table
, NULL
, TABLE_STRING
, buf
);
1485 return table_log_add_error(r
);
1487 r
= table_add_many(table
,
1488 TABLE_STRING
, "DefaultRoute setting:",
1489 TABLE_BOOLEAN
, link_info
.default_route
,
1490 TABLE_STRING
, "LLMNR setting:",
1491 TABLE_STRING
, strna(link_info
.llmnr
),
1492 TABLE_STRING
, "MulticastDNS setting:",
1493 TABLE_STRING
, strna(link_info
.mdns
),
1494 TABLE_STRING
, "DNSOverTLS setting:",
1495 TABLE_STRING
, strna(link_info
.dns_over_tls
),
1496 TABLE_STRING
, "DNSSEC setting:",
1497 TABLE_STRING
, strna(link_info
.dnssec
),
1498 TABLE_STRING
, "DNSSEC supported:",
1499 TABLE_BOOLEAN
, link_info
.dnssec_supported
);
1501 return table_log_add_error(r
);
1503 if (link_info
.current_dns
) {
1504 r
= table_add_many(table
,
1505 TABLE_STRING
, "Current DNS Server:",
1506 TABLE_STRING
, link_info
.current_dns
);
1508 return table_log_add_error(r
);
1511 r
= dump_list(table
, "DNS Servers:", link_info
.dns
);
1515 r
= dump_list(table
, "DNS Domain:", link_info
.domains
);
1519 r
= table_print(table
, NULL
);
1521 return log_error_errno(r
, "Failed to print table: %m");
1529 static int map_global_dns_servers(sd_bus
*bus
, const char *member
, sd_bus_message
*m
, sd_bus_error
*error
, void *userdata
) {
1530 char ***l
= userdata
;
1538 r
= sd_bus_message_enter_container(m
, 'a', "(iiay)");
1543 _cleanup_free_
char *pretty
= NULL
;
1545 r
= read_dns_server_one(m
, true, &pretty
);
1551 if (isempty(pretty
))
1554 r
= strv_consume(l
, TAKE_PTR(pretty
));
1559 r
= sd_bus_message_exit_container(m
);
1566 static int map_global_current_dns_server(sd_bus
*bus
, const char *member
, sd_bus_message
*m
, sd_bus_error
*error
, void *userdata
) {
1570 return read_dns_server_one(m
, true, userdata
);
1573 static int map_global_domains(sd_bus
*bus
, const char *member
, sd_bus_message
*m
, sd_bus_error
*error
, void *userdata
) {
1574 char ***l
= userdata
;
1582 r
= sd_bus_message_enter_container(m
, 'a', "(isb)");
1587 _cleanup_free_
char *pretty
= NULL
;
1589 r
= read_domain_one(m
, true, &pretty
);
1595 if (isempty(pretty
))
1598 r
= strv_consume(l
, TAKE_PTR(pretty
));
1603 r
= sd_bus_message_exit_container(m
);
1610 static int status_print_strv_global(char **p
) {
1613 printf("%sGlobal%s:", ansi_highlight(), ansi_normal());
1623 struct global_info
{
1626 char **fallback_dns
;
1631 const char *dns_over_tls
;
1633 bool dnssec_supported
;
1636 static void global_info_clear(struct global_info
*p
) {
1637 free(p
->current_dns
);
1639 strv_free(p
->fallback_dns
);
1640 strv_free(p
->domains
);
1644 static int status_global(sd_bus
*bus
, StatusMode mode
, bool *empty_line
) {
1645 static const struct bus_properties_map property_map
[] = {
1646 { "DNS", "a(iiay)", map_global_dns_servers
, offsetof(struct global_info
, dns
) },
1647 { "FallbackDNS", "a(iiay)", map_global_dns_servers
, offsetof(struct global_info
, fallback_dns
) },
1648 { "CurrentDNSServer", "(iiay)", map_global_current_dns_server
, offsetof(struct global_info
, current_dns
) },
1649 { "Domains", "a(isb)", map_global_domains
, offsetof(struct global_info
, domains
) },
1650 { "DNSSECNegativeTrustAnchors", "as", NULL
, offsetof(struct global_info
, ntas
) },
1651 { "LLMNR", "s", NULL
, offsetof(struct global_info
, llmnr
) },
1652 { "MulticastDNS", "s", NULL
, offsetof(struct global_info
, mdns
) },
1653 { "DNSOverTLS", "s", NULL
, offsetof(struct global_info
, dns_over_tls
) },
1654 { "DNSSEC", "s", NULL
, offsetof(struct global_info
, dnssec
) },
1655 { "DNSSECSupported", "b", NULL
, offsetof(struct global_info
, dnssec_supported
) },
1658 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
1659 _cleanup_(sd_bus_message_unrefp
) sd_bus_message
*m
= NULL
;
1660 _cleanup_(global_info_clear
) struct global_info global_info
= {};
1661 _cleanup_(table_unrefp
) Table
*table
= NULL
;
1667 r
= bus_map_all_properties(bus
,
1668 "org.freedesktop.resolve1",
1669 "/org/freedesktop/resolve1",
1671 BUS_MAP_BOOLEAN_AS_BOOL
,
1676 return log_error_errno(r
, "Failed to get global data: %s", bus_error_message(&error
, r
));
1678 (void) pager_open(arg_pager_flags
);
1680 if (mode
== STATUS_DNS
)
1681 return status_print_strv_global(global_info
.dns
);
1683 if (mode
== STATUS_DOMAIN
)
1684 return status_print_strv_global(global_info
.domains
);
1686 if (mode
== STATUS_NTA
)
1687 return status_print_strv_global(global_info
.ntas
);
1689 if (mode
== STATUS_LLMNR
) {
1690 printf("%sGlobal%s: %s\n", ansi_highlight(), ansi_normal(),
1691 strna(global_info
.llmnr
));
1696 if (mode
== STATUS_MDNS
) {
1697 printf("%sGlobal%s: %s\n", ansi_highlight(), ansi_normal(),
1698 strna(global_info
.mdns
));
1703 if (mode
== STATUS_PRIVATE
) {
1704 printf("%sGlobal%s: %s\n", ansi_highlight(), ansi_normal(),
1705 strna(global_info
.dns_over_tls
));
1710 if (mode
== STATUS_DNSSEC
) {
1711 printf("%sGlobal%s: %s\n", ansi_highlight(), ansi_normal(),
1712 strna(global_info
.dnssec
));
1717 printf("%sGlobal%s\n", ansi_highlight(), ansi_normal());
1719 table
= table_new("key", "value");
1723 table_set_header(table
, false);
1725 r
= table_add_many(table
,
1726 TABLE_STRING
, "LLMNR setting:",
1727 TABLE_SET_ALIGN_PERCENT
, 100,
1728 TABLE_STRING
, strna(global_info
.llmnr
),
1729 TABLE_STRING
, "MulticastDNS setting:",
1730 TABLE_STRING
, strna(global_info
.mdns
),
1731 TABLE_STRING
, "DNSOverTLS setting:",
1732 TABLE_STRING
, strna(global_info
.dns_over_tls
),
1733 TABLE_STRING
, "DNSSEC setting:",
1734 TABLE_STRING
, strna(global_info
.dnssec
),
1735 TABLE_STRING
, "DNSSEC supported:",
1736 TABLE_BOOLEAN
, global_info
.dnssec_supported
);
1738 return table_log_add_error(r
);
1740 if (global_info
.current_dns
) {
1741 r
= table_add_many(table
,
1742 TABLE_STRING
, "Current DNS Server:",
1743 TABLE_STRING
, global_info
.current_dns
);
1745 return table_log_add_error(r
);
1748 r
= dump_list(table
, "DNS Servers:", global_info
.dns
);
1752 r
= dump_list(table
, "Fallback DNS Servers:", global_info
.fallback_dns
);
1756 r
= dump_list(table
, "DNS Domain:", global_info
.domains
);
1760 r
= table_print(table
, NULL
);
1762 return log_error_errno(r
, "Failed to print table: %m");
1769 static int status_all(sd_bus
*bus
, StatusMode mode
) {
1770 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
, *reply
= NULL
;
1771 _cleanup_(sd_netlink_unrefp
) sd_netlink
*rtnl
= NULL
;
1772 bool empty_line
= false;
1777 r
= status_global(bus
, mode
, &empty_line
);
1781 r
= sd_netlink_open(&rtnl
);
1783 return log_error_errno(r
, "Failed to connect to netlink: %m");
1785 r
= sd_rtnl_message_new_link(rtnl
, &req
, RTM_GETLINK
, 0);
1787 return rtnl_log_create_error(r
);
1789 r
= sd_netlink_message_request_dump(req
, true);
1791 return rtnl_log_create_error(r
);
1793 r
= sd_netlink_call(rtnl
, req
, 0, &reply
);
1795 return log_error_errno(r
, "Failed to enumerate links: %m");
1797 _cleanup_free_ InterfaceInfo
*infos
= NULL
;
1798 size_t n_allocated
= 0, n_infos
= 0;
1800 for (sd_netlink_message
*i
= reply
; i
; i
= sd_netlink_message_next(i
)) {
1805 r
= sd_netlink_message_get_type(i
, &type
);
1807 return rtnl_log_parse_error(r
);
1809 if (type
!= RTM_NEWLINK
)
1812 r
= sd_rtnl_message_link_get_ifindex(i
, &ifindex
);
1814 return rtnl_log_parse_error(r
);
1816 if (ifindex
== LOOPBACK_IFINDEX
)
1819 r
= sd_netlink_message_read_string(i
, IFLA_IFNAME
, &name
);
1821 return rtnl_log_parse_error(r
);
1823 if (!GREEDY_REALLOC(infos
, n_allocated
, n_infos
+ 1))
1826 infos
[n_infos
++] = (InterfaceInfo
) { ifindex
, name
};
1829 typesafe_qsort(infos
, n_infos
, interface_info_compare
);
1832 for (size_t i
= 0; i
< n_infos
; i
++) {
1833 int q
= status_ifindex(bus
, infos
[i
].index
, infos
[i
].name
, mode
, &empty_line
);
1834 if (q
< 0 && r
>= 0)
1841 static int verb_status(int argc
, char **argv
, void *userdata
) {
1842 sd_bus
*bus
= userdata
;
1843 _cleanup_(sd_netlink_unrefp
) sd_netlink
*rtnl
= NULL
;
1848 bool empty_line
= false;
1850 STRV_FOREACH(ifname
, argv
+ 1) {
1853 ifindex
= resolve_interface(&rtnl
, *ifname
);
1855 log_warning_errno(ifindex
, "Failed to resolve interface \"%s\", ignoring: %m", *ifname
);
1859 q
= status_ifindex(bus
, ifindex
, NULL
, STATUS_ALL
, &empty_line
);
1864 r
= status_all(bus
, STATUS_ALL
);
1869 static int call_dns(sd_bus
*bus
, char **dns
, const BusLocator
*locator
, sd_bus_error
*error
) {
1870 _cleanup_(sd_bus_message_unrefp
) sd_bus_message
*req
= NULL
;
1874 r
= bus_message_new_method_call(bus
, &req
, locator
, "SetLinkDNS");
1876 return bus_log_create_error(r
);
1878 r
= sd_bus_message_append(req
, "i", arg_ifindex
);
1880 return bus_log_create_error(r
);
1882 r
= sd_bus_message_open_container(req
, 'a', "(iay)");
1884 return bus_log_create_error(r
);
1886 /* If only argument is the empty string, then call SetLinkDNS() with an
1887 * empty list, which will clear the list of domains for an interface. */
1888 if (!strv_equal(dns
, STRV_MAKE("")))
1889 STRV_FOREACH(p
, dns
) {
1890 struct in_addr_data data
;
1892 r
= in_addr_from_string_auto(*p
, &data
.family
, &data
.address
);
1894 return log_error_errno(r
, "Failed to parse DNS server address: %s", *p
);
1896 r
= sd_bus_message_open_container(req
, 'r', "iay");
1898 return bus_log_create_error(r
);
1900 r
= sd_bus_message_append(req
, "i", data
.family
);
1902 return bus_log_create_error(r
);
1904 r
= sd_bus_message_append_array(req
, 'y', &data
.address
, FAMILY_ADDRESS_SIZE(data
.family
));
1906 return bus_log_create_error(r
);
1908 r
= sd_bus_message_close_container(req
);
1910 return bus_log_create_error(r
);
1913 r
= sd_bus_message_close_container(req
);
1915 return bus_log_create_error(r
);
1917 return sd_bus_call(bus
, req
, 0, error
, NULL
);
1920 static int verb_dns(int argc
, char **argv
, void *userdata
) {
1921 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
1922 sd_bus
*bus
= userdata
;
1928 r
= ifname_mangle(argv
[1]);
1933 if (arg_ifindex
<= 0)
1934 return status_all(bus
, STATUS_DNS
);
1937 return status_ifindex(bus
, arg_ifindex
, NULL
, STATUS_DNS
, NULL
);
1939 r
= call_dns(bus
, argv
+ 2, bus_resolve_mgr
, &error
);
1940 if (r
< 0 && sd_bus_error_has_name(&error
, BUS_ERROR_LINK_BUSY
)) {
1941 sd_bus_error_free(&error
);
1943 r
= call_dns(bus
, argv
+ 2, bus_network_mgr
, &error
);
1946 if (arg_ifindex_permissive
&&
1947 sd_bus_error_has_name(&error
, BUS_ERROR_NO_SUCH_LINK
))
1950 return log_error_errno(r
, "Failed to set DNS configuration: %s", bus_error_message(&error
, r
));
1956 static int call_domain(sd_bus
*bus
, char **domain
, const BusLocator
*locator
, sd_bus_error
*error
) {
1957 _cleanup_(sd_bus_message_unrefp
) sd_bus_message
*req
= NULL
;
1961 r
= bus_message_new_method_call(bus
, &req
, locator
, "SetLinkDomains");
1963 return bus_log_create_error(r
);
1965 r
= sd_bus_message_append(req
, "i", arg_ifindex
);
1967 return bus_log_create_error(r
);
1969 r
= sd_bus_message_open_container(req
, 'a', "(sb)");
1971 return bus_log_create_error(r
);
1973 /* If only argument is the empty string, then call SetLinkDomains() with an
1974 * empty list, which will clear the list of domains for an interface. */
1975 if (!strv_equal(domain
, STRV_MAKE("")))
1976 STRV_FOREACH(p
, domain
) {
1979 n
= **p
== '~' ? *p
+ 1 : *p
;
1981 r
= dns_name_is_valid(n
);
1983 return log_error_errno(r
, "Failed to validate specified domain %s: %m", n
);
1985 log_error("Domain not valid: %s", n
);
1989 r
= sd_bus_message_append(req
, "(sb)", n
, **p
== '~');
1991 return bus_log_create_error(r
);
1994 r
= sd_bus_message_close_container(req
);
1996 return bus_log_create_error(r
);
1998 return sd_bus_call(bus
, req
, 0, error
, NULL
);
2001 static int verb_domain(int argc
, char **argv
, void *userdata
) {
2002 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
2003 sd_bus
*bus
= userdata
;
2009 r
= ifname_mangle(argv
[1]);
2014 if (arg_ifindex
<= 0)
2015 return status_all(bus
, STATUS_DOMAIN
);
2018 return status_ifindex(bus
, arg_ifindex
, NULL
, STATUS_DOMAIN
, NULL
);
2020 r
= call_domain(bus
, argv
+ 2, bus_resolve_mgr
, &error
);
2021 if (r
< 0 && sd_bus_error_has_name(&error
, BUS_ERROR_LINK_BUSY
)) {
2022 sd_bus_error_free(&error
);
2024 r
= call_domain(bus
, argv
+ 2, bus_network_mgr
, &error
);
2027 if (arg_ifindex_permissive
&&
2028 sd_bus_error_has_name(&error
, BUS_ERROR_NO_SUCH_LINK
))
2031 return log_error_errno(r
, "Failed to set domain configuration: %s", bus_error_message(&error
, r
));
2037 static int verb_default_route(int argc
, char **argv
, void *userdata
) {
2038 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
2039 sd_bus
*bus
= userdata
;
2045 r
= ifname_mangle(argv
[1]);
2050 if (arg_ifindex
<= 0)
2051 return status_all(bus
, STATUS_DEFAULT_ROUTE
);
2054 return status_ifindex(bus
, arg_ifindex
, NULL
, STATUS_DEFAULT_ROUTE
, NULL
);
2056 b
= parse_boolean(argv
[2]);
2058 return log_error_errno(b
, "Failed to parse boolean argument: %s", argv
[2]);
2060 r
= bus_call_method(bus
, bus_resolve_mgr
, "SetLinkDefaultRoute", &error
, NULL
, "ib", arg_ifindex
, b
);
2061 if (r
< 0 && sd_bus_error_has_name(&error
, BUS_ERROR_LINK_BUSY
)) {
2062 sd_bus_error_free(&error
);
2064 r
= bus_call_method(bus
, bus_network_mgr
, "SetLinkDefaultRoute", &error
, NULL
, "ib", arg_ifindex
, b
);
2067 if (arg_ifindex_permissive
&&
2068 sd_bus_error_has_name(&error
, BUS_ERROR_NO_SUCH_LINK
))
2071 return log_error_errno(r
, "Failed to set default route configuration: %s", bus_error_message(&error
, r
));
2077 static int verb_llmnr(int argc
, char **argv
, void *userdata
) {
2078 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
2079 sd_bus
*bus
= userdata
;
2085 r
= ifname_mangle(argv
[1]);
2090 if (arg_ifindex
<= 0)
2091 return status_all(bus
, STATUS_LLMNR
);
2094 return status_ifindex(bus
, arg_ifindex
, NULL
, STATUS_LLMNR
, NULL
);
2096 r
= bus_call_method(bus
, bus_resolve_mgr
, "SetLinkLLMNR", &error
, NULL
, "is", arg_ifindex
, argv
[2]);
2097 if (r
< 0 && sd_bus_error_has_name(&error
, BUS_ERROR_LINK_BUSY
)) {
2098 sd_bus_error_free(&error
);
2100 r
= bus_call_method(bus
, bus_network_mgr
, "SetLinkLLMNR", &error
, NULL
, "is", arg_ifindex
, argv
[2]);
2103 if (arg_ifindex_permissive
&&
2104 sd_bus_error_has_name(&error
, BUS_ERROR_NO_SUCH_LINK
))
2107 return log_error_errno(r
, "Failed to set LLMNR configuration: %s", bus_error_message(&error
, r
));
2113 static int verb_mdns(int argc
, char **argv
, void *userdata
) {
2114 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
2115 sd_bus
*bus
= userdata
;
2121 r
= ifname_mangle(argv
[1]);
2126 if (arg_ifindex
<= 0)
2127 return status_all(bus
, STATUS_MDNS
);
2130 return status_ifindex(bus
, arg_ifindex
, NULL
, STATUS_MDNS
, NULL
);
2132 r
= bus_call_method(bus
, bus_resolve_mgr
, "SetLinkMulticastDNS", &error
, NULL
, "is", arg_ifindex
, argv
[2]);
2133 if (r
< 0 && sd_bus_error_has_name(&error
, BUS_ERROR_LINK_BUSY
)) {
2134 sd_bus_error_free(&error
);
2136 r
= bus_call_method(
2139 "SetLinkMulticastDNS",
2142 "is", arg_ifindex
, argv
[2]);
2145 if (arg_ifindex_permissive
&&
2146 sd_bus_error_has_name(&error
, BUS_ERROR_NO_SUCH_LINK
))
2149 return log_error_errno(r
, "Failed to set MulticastDNS configuration: %s", bus_error_message(&error
, r
));
2155 static int verb_dns_over_tls(int argc
, char **argv
, void *userdata
) {
2156 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
2157 sd_bus
*bus
= userdata
;
2163 r
= ifname_mangle(argv
[1]);
2168 if (arg_ifindex
<= 0)
2169 return status_all(bus
, STATUS_PRIVATE
);
2172 return status_ifindex(bus
, arg_ifindex
, NULL
, STATUS_PRIVATE
, NULL
);
2174 r
= bus_call_method(bus
, bus_resolve_mgr
, "SetLinkDNSOverTLS", &error
, NULL
, "is", arg_ifindex
, argv
[2]);
2175 if (r
< 0 && sd_bus_error_has_name(&error
, BUS_ERROR_LINK_BUSY
)) {
2176 sd_bus_error_free(&error
);
2178 r
= bus_call_method(
2181 "SetLinkDNSOverTLS",
2184 "is", arg_ifindex
, argv
[2]);
2187 if (arg_ifindex_permissive
&&
2188 sd_bus_error_has_name(&error
, BUS_ERROR_NO_SUCH_LINK
))
2191 return log_error_errno(r
, "Failed to set DNSOverTLS configuration: %s", bus_error_message(&error
, r
));
2197 static int verb_dnssec(int argc
, char **argv
, void *userdata
) {
2198 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
2199 sd_bus
*bus
= userdata
;
2205 r
= ifname_mangle(argv
[1]);
2210 if (arg_ifindex
<= 0)
2211 return status_all(bus
, STATUS_DNSSEC
);
2214 return status_ifindex(bus
, arg_ifindex
, NULL
, STATUS_DNSSEC
, NULL
);
2216 r
= bus_call_method(bus
, bus_resolve_mgr
, "SetLinkDNSSEC", &error
, NULL
, "is", arg_ifindex
, argv
[2]);
2217 if (r
< 0 && sd_bus_error_has_name(&error
, BUS_ERROR_LINK_BUSY
)) {
2218 sd_bus_error_free(&error
);
2220 r
= bus_call_method(bus
, bus_network_mgr
, "SetLinkDNSSEC", &error
, NULL
, "is", arg_ifindex
, argv
[2]);
2223 if (arg_ifindex_permissive
&&
2224 sd_bus_error_has_name(&error
, BUS_ERROR_NO_SUCH_LINK
))
2227 return log_error_errno(r
, "Failed to set DNSSEC configuration: %s", bus_error_message(&error
, r
));
2233 static int call_nta(sd_bus
*bus
, char **nta
, const BusLocator
*locator
, sd_bus_error
*error
) {
2234 _cleanup_(sd_bus_message_unrefp
) sd_bus_message
*req
= NULL
;
2237 r
= bus_message_new_method_call(bus
, &req
, locator
, "SetLinkDNSSECNegativeTrustAnchors");
2239 return bus_log_create_error(r
);
2241 r
= sd_bus_message_append(req
, "i", arg_ifindex
);
2243 return bus_log_create_error(r
);
2245 r
= sd_bus_message_append_strv(req
, nta
);
2247 return bus_log_create_error(r
);
2249 return sd_bus_call(bus
, req
, 0, error
, NULL
);
2252 static int verb_nta(int argc
, char **argv
, void *userdata
) {
2253 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
2254 sd_bus
*bus
= userdata
;
2262 r
= ifname_mangle(argv
[1]);
2267 if (arg_ifindex
<= 0)
2268 return status_all(bus
, STATUS_NTA
);
2271 return status_ifindex(bus
, arg_ifindex
, NULL
, STATUS_NTA
, NULL
);
2273 /* If only argument is the empty string, then call SetLinkDNSSECNegativeTrustAnchors()
2274 * with an empty list, which will clear the list of domains for an interface. */
2275 clear
= strv_equal(argv
+ 2, STRV_MAKE(""));
2278 STRV_FOREACH(p
, argv
+ 2) {
2279 r
= dns_name_is_valid(*p
);
2281 return log_error_errno(r
, "Failed to validate specified domain %s: %m", *p
);
2283 log_error("Domain not valid: %s", *p
);
2288 r
= call_nta(bus
, clear
? NULL
: argv
+ 2, bus_resolve_mgr
, &error
);
2289 if (r
< 0 && sd_bus_error_has_name(&error
, BUS_ERROR_LINK_BUSY
)) {
2290 sd_bus_error_free(&error
);
2292 r
= call_nta(bus
, clear
? NULL
: argv
+ 2, bus_network_mgr
, &error
);
2295 if (arg_ifindex_permissive
&&
2296 sd_bus_error_has_name(&error
, BUS_ERROR_NO_SUCH_LINK
))
2299 return log_error_errno(r
, "Failed to set DNSSEC NTA configuration: %s", bus_error_message(&error
, r
));
2305 static int verb_revert_link(int argc
, char **argv
, void *userdata
) {
2306 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
2307 sd_bus
*bus
= userdata
;
2313 r
= ifname_mangle(argv
[1]);
2318 if (arg_ifindex
<= 0)
2319 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
), "Interface argument required.");
2321 r
= bus_call_method(bus
, bus_resolve_mgr
, "RevertLink", &error
, NULL
, "i", arg_ifindex
);
2322 if (r
< 0 && sd_bus_error_has_name(&error
, BUS_ERROR_LINK_BUSY
)) {
2323 sd_bus_error_free(&error
);
2325 r
= bus_call_method(bus
, bus_network_mgr
, "RevertLinkDNS", &error
, NULL
, "i", arg_ifindex
);
2328 if (arg_ifindex_permissive
&&
2329 sd_bus_error_has_name(&error
, BUS_ERROR_NO_SUCH_LINK
))
2332 return log_error_errno(r
, "Failed to revert interface configuration: %s", bus_error_message(&error
, r
));
2338 static int verb_log_level(int argc
, char *argv
[], void *userdata
) {
2339 _cleanup_(sd_bus_error_free
) sd_bus_error error
= SD_BUS_ERROR_NULL
;
2340 sd_bus
*bus
= userdata
;
2346 _cleanup_free_
char *level
= NULL
;
2348 r
= sd_bus_get_property_string(
2350 "org.freedesktop.resolve1",
2351 "/org/freedesktop/LogControl1",
2352 "org.freedesktop.LogControl1",
2357 return log_error_errno(r
, "Failed to get log level: %s", bus_error_message(&error
, r
));
2364 r
= sd_bus_set_property(
2366 "org.freedesktop.resolve1",
2367 "/org/freedesktop/LogControl1",
2368 "org.freedesktop.LogControl1",
2374 return log_error_errno(r
, "Failed to set log level: %s", bus_error_message(&error
, r
));
2380 static void help_protocol_types(void) {
2382 puts("Known protocol types:");
2383 puts("dns\nllmnr\nllmnr-ipv4\nllmnr-ipv6\nmdns\nmdns-ipv4\nmdns-ipv6");
2386 static void help_dns_types(void) {
2388 puts("Known DNS RR types:");
2390 DUMP_STRING_TABLE(dns_type
, int, _DNS_TYPE_MAX
);
2393 static void help_dns_classes(void) {
2395 puts("Known DNS RR classes:");
2397 DUMP_STRING_TABLE(dns_class
, int, _DNS_CLASS_MAX
);
2400 static int compat_help(void) {
2401 _cleanup_free_
char *link
= NULL
;
2404 r
= terminal_urlify_man("resolvectl", "1", &link
);
2408 printf("%1$s [OPTIONS...] HOSTNAME|ADDRESS...\n"
2409 "%1$s [OPTIONS...] --service [[NAME] TYPE] DOMAIN\n"
2410 "%1$s [OPTIONS...] --openpgp EMAIL@DOMAIN...\n"
2411 "%1$s [OPTIONS...] --statistics\n"
2412 "%1$s [OPTIONS...] --reset-statistics\n"
2414 "%2$sResolve domain names, IPv4 and IPv6 addresses, DNS records, and services.%3$s\n\n"
2415 " -h --help Show this help\n"
2416 " --version Show package version\n"
2417 " --no-pager Do not pipe output into a pager\n"
2418 " -4 Resolve IPv4 addresses\n"
2419 " -6 Resolve IPv6 addresses\n"
2420 " -i --interface=INTERFACE Look on interface\n"
2421 " -p --protocol=PROTO|help Look via protocol\n"
2422 " -t --type=TYPE|help Query RR with DNS type\n"
2423 " -c --class=CLASS|help Query RR with DNS class\n"
2424 " --service Resolve service (SRV)\n"
2425 " --service-address=BOOL Resolve address for services (default: yes)\n"
2426 " --service-txt=BOOL Resolve TXT records for services (default: yes)\n"
2427 " --openpgp Query OpenPGP public key\n"
2428 " --tlsa Query TLS public key\n"
2429 " --cname=BOOL Follow CNAME redirects (default: yes)\n"
2430 " --search=BOOL Use search domains for single-label names\n"
2432 " --raw[=payload|packet] Dump the answer as binary data\n"
2433 " --legend=BOOL Print headers and additional info (default: yes)\n"
2434 " --statistics Show resolver statistics\n"
2435 " --reset-statistics Reset resolver statistics\n"
2436 " --status Show link and server status\n"
2437 " --flush-caches Flush all local DNS caches\n"
2438 " --reset-server-features\n"
2439 " Forget learnt DNS server feature levels\n"
2440 " --set-dns=SERVER Set per-interface DNS server address\n"
2441 " --set-domain=DOMAIN Set per-interface search domain\n"
2442 " --set-llmnr=MODE Set per-interface LLMNR mode\n"
2443 " --set-mdns=MODE Set per-interface MulticastDNS mode\n"
2444 " --set-dnsovertls=MODE Set per-interface DNS-over-TLS mode\n"
2445 " --set-dnssec=MODE Set per-interface DNSSEC mode\n"
2446 " --set-nta=DOMAIN Set per-interface DNSSEC NTA\n"
2447 " --revert Revert per-interface configuration\n"
2448 "\nSee the %4$s for details.\n"
2449 , program_invocation_short_name
2458 static int native_help(void) {
2459 _cleanup_free_
char *link
= NULL
;
2462 r
= terminal_urlify_man("resolvectl", "1", &link
);
2466 printf("%s [OPTIONS...] COMMAND ...\n"
2468 "%sSend control commands to the network name resolution manager, or%s\n"
2469 "%sresolve domain names, IPv4 and IPv6 addresses, DNS records, and services.%s\n"
2471 " query HOSTNAME|ADDRESS... Resolve domain names, IPv4 and IPv6 addresses\n"
2472 " service [[NAME] TYPE] DOMAIN Resolve service (SRV)\n"
2473 " openpgp EMAIL@DOMAIN... Query OpenPGP public key\n"
2474 " tlsa DOMAIN[:PORT]... Query TLS public key\n"
2475 " status [LINK...] Show link and server status\n"
2476 " statistics Show resolver statistics\n"
2477 " reset-statistics Reset resolver statistics\n"
2478 " flush-caches Flush all local DNS caches\n"
2479 " reset-server-features Forget learnt DNS server feature levels\n"
2480 " dns [LINK [SERVER...]] Get/set per-interface DNS server address\n"
2481 " domain [LINK [DOMAIN...]] Get/set per-interface search domain\n"
2482 " default-route [LINK [BOOL]] Get/set per-interface default route flag\n"
2483 " llmnr [LINK [MODE]] Get/set per-interface LLMNR mode\n"
2484 " mdns [LINK [MODE]] Get/set per-interface MulticastDNS mode\n"
2485 " dnsovertls [LINK [MODE]] Get/set per-interface DNS-over-TLS mode\n"
2486 " dnssec [LINK [MODE]] Get/set per-interface DNSSEC mode\n"
2487 " nta [LINK [DOMAIN...]] Get/set per-interface DNSSEC NTA\n"
2488 " revert LINK Revert per-interface configuration\n"
2490 " -h --help Show this help\n"
2491 " --version Show package version\n"
2492 " --no-pager Do not pipe output into a pager\n"
2493 " -4 Resolve IPv4 addresses\n"
2494 " -6 Resolve IPv6 addresses\n"
2495 " -i --interface=INTERFACE Look on interface\n"
2496 " -p --protocol=PROTO|help Look via protocol\n"
2497 " -t --type=TYPE|help Query RR with DNS type\n"
2498 " -c --class=CLASS|help Query RR with DNS class\n"
2499 " --service-address=BOOL Resolve address for services (default: yes)\n"
2500 " --service-txt=BOOL Resolve TXT records for services (default: yes)\n"
2501 " --cname=BOOL Follow CNAME redirects (default: yes)\n"
2502 " --search=BOOL Use search domains for single-label names\n"
2504 " --raw[=payload|packet] Dump the answer as binary data\n"
2505 " --legend=BOOL Print headers and additional info (default: yes)\n"
2506 "\nSee the %s for details.\n"
2507 , program_invocation_short_name
2518 static int verb_help(int argc
, char **argv
, void *userdata
) {
2519 return native_help();
2522 static int compat_parse_argv(int argc
, char *argv
[]) {
2524 ARG_VERSION
= 0x100,
2528 ARG_SERVICE_ADDRESS
,
2535 ARG_RESET_STATISTICS
,
2538 ARG_RESET_SERVER_FEATURES
,
2550 static const struct option options
[] = {
2551 { "help", no_argument
, NULL
, 'h' },
2552 { "version", no_argument
, NULL
, ARG_VERSION
},
2553 { "type", required_argument
, NULL
, 't' },
2554 { "class", required_argument
, NULL
, 'c' },
2555 { "legend", required_argument
, NULL
, ARG_LEGEND
},
2556 { "interface", required_argument
, NULL
, 'i' },
2557 { "protocol", required_argument
, NULL
, 'p' },
2558 { "cname", required_argument
, NULL
, ARG_CNAME
},
2559 { "service", no_argument
, NULL
, ARG_SERVICE
},
2560 { "service-address", required_argument
, NULL
, ARG_SERVICE_ADDRESS
},
2561 { "service-txt", required_argument
, NULL
, ARG_SERVICE_TXT
},
2562 { "openpgp", no_argument
, NULL
, ARG_OPENPGP
},
2563 { "tlsa", optional_argument
, NULL
, ARG_TLSA
},
2564 { "raw", optional_argument
, NULL
, ARG_RAW
},
2565 { "search", required_argument
, NULL
, ARG_SEARCH
},
2566 { "statistics", no_argument
, NULL
, ARG_STATISTICS
, },
2567 { "reset-statistics", no_argument
, NULL
, ARG_RESET_STATISTICS
},
2568 { "status", no_argument
, NULL
, ARG_STATUS
},
2569 { "flush-caches", no_argument
, NULL
, ARG_FLUSH_CACHES
},
2570 { "reset-server-features", no_argument
, NULL
, ARG_RESET_SERVER_FEATURES
},
2571 { "no-pager", no_argument
, NULL
, ARG_NO_PAGER
},
2572 { "set-dns", required_argument
, NULL
, ARG_SET_DNS
},
2573 { "set-domain", required_argument
, NULL
, ARG_SET_DOMAIN
},
2574 { "set-llmnr", required_argument
, NULL
, ARG_SET_LLMNR
},
2575 { "set-mdns", required_argument
, NULL
, ARG_SET_MDNS
},
2576 { "set-dnsovertls", required_argument
, NULL
, ARG_SET_PRIVATE
},
2577 { "set-dnssec", required_argument
, NULL
, ARG_SET_DNSSEC
},
2578 { "set-nta", required_argument
, NULL
, ARG_SET_NTA
},
2579 { "revert", no_argument
, NULL
, ARG_REVERT_LINK
},
2588 while ((c
= getopt_long(argc
, argv
, "h46i:t:c:p:", options
, NULL
)) >= 0)
2592 return compat_help();
2598 arg_family
= AF_INET
;
2602 arg_family
= AF_INET6
;
2606 r
= ifname_mangle(optarg
);
2612 if (streq(optarg
, "help")) {
2617 r
= dns_type_from_string(optarg
);
2619 log_error("Failed to parse RR record type %s", optarg
);
2622 arg_type
= (uint16_t) r
;
2623 assert((int) arg_type
== r
);
2625 arg_mode
= MODE_RESOLVE_RECORD
;
2629 if (streq(optarg
, "help")) {
2634 r
= dns_class_from_string(optarg
);
2636 log_error("Failed to parse RR record class %s", optarg
);
2639 arg_class
= (uint16_t) r
;
2640 assert((int) arg_class
== r
);
2645 r
= parse_boolean(optarg
);
2647 return log_error_errno(r
, "Failed to parse --legend= argument");
2653 if (streq(optarg
, "help")) {
2654 help_protocol_types();
2656 } else if (streq(optarg
, "dns"))
2657 arg_flags
|= SD_RESOLVED_DNS
;
2658 else if (streq(optarg
, "llmnr"))
2659 arg_flags
|= SD_RESOLVED_LLMNR
;
2660 else if (streq(optarg
, "llmnr-ipv4"))
2661 arg_flags
|= SD_RESOLVED_LLMNR_IPV4
;
2662 else if (streq(optarg
, "llmnr-ipv6"))
2663 arg_flags
|= SD_RESOLVED_LLMNR_IPV6
;
2664 else if (streq(optarg
, "mdns"))
2665 arg_flags
|= SD_RESOLVED_MDNS
;
2666 else if (streq(optarg
, "mdns-ipv4"))
2667 arg_flags
|= SD_RESOLVED_MDNS_IPV4
;
2668 else if (streq(optarg
, "mdns-ipv6"))
2669 arg_flags
|= SD_RESOLVED_MDNS_IPV6
;
2671 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
2672 "Unknown protocol specifier: %s", optarg
);
2677 arg_mode
= MODE_RESOLVE_SERVICE
;
2681 arg_mode
= MODE_RESOLVE_OPENPGP
;
2685 arg_mode
= MODE_RESOLVE_TLSA
;
2686 if (!optarg
|| service_family_is_valid(optarg
))
2687 arg_service_family
= optarg
;
2689 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
2690 "Unknown service family \"%s\".", optarg
);
2695 return log_error_errno(SYNTHETIC_ERRNO(ENOTTY
),
2696 "Refusing to write binary data to tty.");
2698 if (optarg
== NULL
|| streq(optarg
, "payload"))
2699 arg_raw
= RAW_PAYLOAD
;
2700 else if (streq(optarg
, "packet"))
2701 arg_raw
= RAW_PACKET
;
2703 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
2704 "Unknown --raw specifier \"%s\".",
2711 r
= parse_boolean(optarg
);
2713 return log_error_errno(r
, "Failed to parse --cname= argument.");
2714 SET_FLAG(arg_flags
, SD_RESOLVED_NO_CNAME
, r
== 0);
2717 case ARG_SERVICE_ADDRESS
:
2718 r
= parse_boolean(optarg
);
2720 return log_error_errno(r
, "Failed to parse --service-address= argument.");
2721 SET_FLAG(arg_flags
, SD_RESOLVED_NO_ADDRESS
, r
== 0);
2724 case ARG_SERVICE_TXT
:
2725 r
= parse_boolean(optarg
);
2727 return log_error_errno(r
, "Failed to parse --service-txt= argument.");
2728 SET_FLAG(arg_flags
, SD_RESOLVED_NO_TXT
, r
== 0);
2732 r
= parse_boolean(optarg
);
2734 return log_error_errno(r
, "Failed to parse --search argument.");
2735 SET_FLAG(arg_flags
, SD_RESOLVED_NO_SEARCH
, r
== 0);
2738 case ARG_STATISTICS
:
2739 arg_mode
= MODE_STATISTICS
;
2742 case ARG_RESET_STATISTICS
:
2743 arg_mode
= MODE_RESET_STATISTICS
;
2746 case ARG_FLUSH_CACHES
:
2747 arg_mode
= MODE_FLUSH_CACHES
;
2750 case ARG_RESET_SERVER_FEATURES
:
2751 arg_mode
= MODE_RESET_SERVER_FEATURES
;
2755 arg_mode
= MODE_STATUS
;
2759 arg_pager_flags
|= PAGER_DISABLE
;
2763 r
= strv_extend(&arg_set_dns
, optarg
);
2767 arg_mode
= MODE_SET_LINK
;
2770 case ARG_SET_DOMAIN
:
2771 r
= strv_extend(&arg_set_domain
, optarg
);
2775 arg_mode
= MODE_SET_LINK
;
2779 arg_set_llmnr
= optarg
;
2780 arg_mode
= MODE_SET_LINK
;
2784 arg_set_mdns
= optarg
;
2785 arg_mode
= MODE_SET_LINK
;
2788 case ARG_SET_PRIVATE
:
2789 arg_set_dns_over_tls
= optarg
;
2790 arg_mode
= MODE_SET_LINK
;
2793 case ARG_SET_DNSSEC
:
2794 arg_set_dnssec
= optarg
;
2795 arg_mode
= MODE_SET_LINK
;
2799 r
= strv_extend(&arg_set_nta
, optarg
);
2803 arg_mode
= MODE_SET_LINK
;
2806 case ARG_REVERT_LINK
:
2807 arg_mode
= MODE_REVERT_LINK
;
2814 assert_not_reached("Unhandled option");
2817 if (arg_type
== 0 && arg_class
!= 0)
2818 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
2819 "--class= may only be used in conjunction with --type=.");
2821 if (arg_type
!= 0 && arg_mode
== MODE_RESOLVE_SERVICE
)
2822 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
2823 "--service and --type= may not be combined.");
2825 if (arg_type
!= 0 && arg_class
== 0)
2826 arg_class
= DNS_CLASS_IN
;
2828 if (arg_class
!= 0 && arg_type
== 0)
2829 arg_type
= DNS_TYPE_A
;
2831 if (IN_SET(arg_mode
, MODE_SET_LINK
, MODE_REVERT_LINK
)) {
2833 if (arg_ifindex
<= 0)
2834 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
2835 "--set-dns=, --set-domain=, --set-llmnr=, --set-mdns=, --set-dnsovertls=, --set-dnssec=, --set-nta= and --revert require --interface=.");
2838 return 1 /* work to do */;
2841 static int native_parse_argv(int argc
, char *argv
[]) {
2843 ARG_VERSION
= 0x100,
2846 ARG_SERVICE_ADDRESS
,
2853 static const struct option options
[] = {
2854 { "help", no_argument
, NULL
, 'h' },
2855 { "version", no_argument
, NULL
, ARG_VERSION
},
2856 { "type", required_argument
, NULL
, 't' },
2857 { "class", required_argument
, NULL
, 'c' },
2858 { "legend", required_argument
, NULL
, ARG_LEGEND
},
2859 { "interface", required_argument
, NULL
, 'i' },
2860 { "protocol", required_argument
, NULL
, 'p' },
2861 { "cname", required_argument
, NULL
, ARG_CNAME
},
2862 { "service-address", required_argument
, NULL
, ARG_SERVICE_ADDRESS
},
2863 { "service-txt", required_argument
, NULL
, ARG_SERVICE_TXT
},
2864 { "raw", optional_argument
, NULL
, ARG_RAW
},
2865 { "search", required_argument
, NULL
, ARG_SEARCH
},
2866 { "no-pager", no_argument
, NULL
, ARG_NO_PAGER
},
2875 while ((c
= getopt_long(argc
, argv
, "h46i:t:c:p:", options
, NULL
)) >= 0)
2879 return native_help();
2885 arg_family
= AF_INET
;
2889 arg_family
= AF_INET6
;
2893 r
= ifname_mangle(optarg
);
2899 if (streq(optarg
, "help")) {
2904 r
= dns_type_from_string(optarg
);
2906 log_error("Failed to parse RR record type %s", optarg
);
2909 arg_type
= (uint16_t) r
;
2910 assert((int) arg_type
== r
);
2915 if (streq(optarg
, "help")) {
2920 r
= dns_class_from_string(optarg
);
2922 log_error("Failed to parse RR record class %s", optarg
);
2925 arg_class
= (uint16_t) r
;
2926 assert((int) arg_class
== r
);
2931 r
= parse_boolean(optarg
);
2933 return log_error_errno(r
, "Failed to parse --legend= argument");
2939 if (streq(optarg
, "help")) {
2940 help_protocol_types();
2942 } else if (streq(optarg
, "dns"))
2943 arg_flags
|= SD_RESOLVED_DNS
;
2944 else if (streq(optarg
, "llmnr"))
2945 arg_flags
|= SD_RESOLVED_LLMNR
;
2946 else if (streq(optarg
, "llmnr-ipv4"))
2947 arg_flags
|= SD_RESOLVED_LLMNR_IPV4
;
2948 else if (streq(optarg
, "llmnr-ipv6"))
2949 arg_flags
|= SD_RESOLVED_LLMNR_IPV6
;
2950 else if (streq(optarg
, "mdns"))
2951 arg_flags
|= SD_RESOLVED_MDNS
;
2952 else if (streq(optarg
, "mdns-ipv4"))
2953 arg_flags
|= SD_RESOLVED_MDNS_IPV4
;
2954 else if (streq(optarg
, "mdns-ipv6"))
2955 arg_flags
|= SD_RESOLVED_MDNS_IPV6
;
2957 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
2958 "Unknown protocol specifier: %s",
2965 return log_error_errno(SYNTHETIC_ERRNO(ENOTTY
),
2966 "Refusing to write binary data to tty.");
2968 if (optarg
== NULL
|| streq(optarg
, "payload"))
2969 arg_raw
= RAW_PAYLOAD
;
2970 else if (streq(optarg
, "packet"))
2971 arg_raw
= RAW_PACKET
;
2973 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
2974 "Unknown --raw specifier \"%s\".",
2981 r
= parse_boolean(optarg
);
2983 return log_error_errno(r
, "Failed to parse --cname= argument.");
2984 SET_FLAG(arg_flags
, SD_RESOLVED_NO_CNAME
, r
== 0);
2987 case ARG_SERVICE_ADDRESS
:
2988 r
= parse_boolean(optarg
);
2990 return log_error_errno(r
, "Failed to parse --service-address= argument.");
2991 SET_FLAG(arg_flags
, SD_RESOLVED_NO_ADDRESS
, r
== 0);
2994 case ARG_SERVICE_TXT
:
2995 r
= parse_boolean(optarg
);
2997 return log_error_errno(r
, "Failed to parse --service-txt= argument.");
2998 SET_FLAG(arg_flags
, SD_RESOLVED_NO_TXT
, r
== 0);
3002 r
= parse_boolean(optarg
);
3004 return log_error_errno(r
, "Failed to parse --search argument.");
3005 SET_FLAG(arg_flags
, SD_RESOLVED_NO_SEARCH
, r
== 0);
3009 arg_pager_flags
|= PAGER_DISABLE
;
3016 assert_not_reached("Unhandled option");
3019 if (arg_type
== 0 && arg_class
!= 0)
3020 return log_error_errno(SYNTHETIC_ERRNO(EINVAL
),
3021 "--class= may only be used in conjunction with --type=.");
3023 if (arg_type
!= 0 && arg_class
== 0)
3024 arg_class
= DNS_CLASS_IN
;
3026 if (arg_class
!= 0 && arg_type
== 0)
3027 arg_type
= DNS_TYPE_A
;
3029 return 1 /* work to do */;
3032 static int native_main(int argc
, char *argv
[], sd_bus
*bus
) {
3034 static const Verb verbs
[] = {
3035 { "help", VERB_ANY
, VERB_ANY
, 0, verb_help
},
3036 { "status", VERB_ANY
, VERB_ANY
, VERB_DEFAULT
, verb_status
},
3037 { "query", 2, VERB_ANY
, 0, verb_query
},
3038 { "service", 2, 4, 0, verb_service
},
3039 { "openpgp", 2, VERB_ANY
, 0, verb_openpgp
},
3040 { "tlsa", 2, VERB_ANY
, 0, verb_tlsa
},
3041 { "statistics", VERB_ANY
, 1, 0, show_statistics
},
3042 { "reset-statistics", VERB_ANY
, 1, 0, reset_statistics
},
3043 { "flush-caches", VERB_ANY
, 1, 0, flush_caches
},
3044 { "reset-server-features", VERB_ANY
, 1, 0, reset_server_features
},
3045 { "dns", VERB_ANY
, VERB_ANY
, 0, verb_dns
},
3046 { "domain", VERB_ANY
, VERB_ANY
, 0, verb_domain
},
3047 { "default-route", VERB_ANY
, 3, 0, verb_default_route
},
3048 { "llmnr", VERB_ANY
, 3, 0, verb_llmnr
},
3049 { "mdns", VERB_ANY
, 3, 0, verb_mdns
},
3050 { "dnsovertls", VERB_ANY
, 3, 0, verb_dns_over_tls
},
3051 { "dnssec", VERB_ANY
, 3, 0, verb_dnssec
},
3052 { "nta", VERB_ANY
, VERB_ANY
, 0, verb_nta
},
3053 { "revert", VERB_ANY
, 2, 0, verb_revert_link
},
3054 { "log-level", VERB_ANY
, 2, 0, verb_log_level
},
3058 return dispatch_verb(argc
, argv
, verbs
, bus
);
3061 static int translate(const char *verb
, const char *single_arg
, size_t num_args
, char **args
, sd_bus
*bus
) {
3066 assert(num_args
== 0 || args
);
3068 num
= !!single_arg
+ num_args
+ 1;
3070 p
= fake
= newa0(char *, num
+ 1);
3071 *p
++ = (char *) verb
;
3073 *p
++ = (char *) single_arg
;
3074 for (size_t i
= 0; i
< num_args
; i
++)
3078 return native_main((int) num
, fake
, bus
);
3081 static int compat_main(int argc
, char *argv
[], sd_bus
*bus
) {
3085 case MODE_RESOLVE_HOST
:
3086 case MODE_RESOLVE_RECORD
:
3087 return translate("query", NULL
, argc
- optind
, argv
+ optind
, bus
);
3089 case MODE_RESOLVE_SERVICE
:
3090 return translate("service", NULL
, argc
- optind
, argv
+ optind
, bus
);
3092 case MODE_RESOLVE_OPENPGP
:
3093 return translate("openpgp", NULL
, argc
- optind
, argv
+ optind
, bus
);
3095 case MODE_RESOLVE_TLSA
:
3096 return translate("tlsa", arg_service_family
, argc
- optind
, argv
+ optind
, bus
);
3098 case MODE_STATISTICS
:
3099 return translate("statistics", NULL
, 0, NULL
, bus
);
3101 case MODE_RESET_STATISTICS
:
3102 return translate("reset-statistics", NULL
, 0, NULL
, bus
);
3104 case MODE_FLUSH_CACHES
:
3105 return translate("flush-caches", NULL
, 0, NULL
, bus
);
3107 case MODE_RESET_SERVER_FEATURES
:
3108 return translate("reset-server-features", NULL
, 0, NULL
, bus
);
3111 return translate("status", NULL
, argc
- optind
, argv
+ optind
, bus
);
3117 r
= translate("dns", arg_ifname
, strv_length(arg_set_dns
), arg_set_dns
, bus
);
3122 if (arg_set_domain
) {
3123 r
= translate("domain", arg_ifname
, strv_length(arg_set_domain
), arg_set_domain
, bus
);
3129 r
= translate("nta", arg_ifname
, strv_length(arg_set_nta
), arg_set_nta
, bus
);
3134 if (arg_set_llmnr
) {
3135 r
= translate("llmnr", arg_ifname
, 1, (char **) &arg_set_llmnr
, bus
);
3141 r
= translate("mdns", arg_ifname
, 1, (char **) &arg_set_mdns
, bus
);
3146 if (arg_set_dns_over_tls
) {
3147 r
= translate("dnsovertls", arg_ifname
, 1, (char **) &arg_set_dns_over_tls
, bus
);
3152 if (arg_set_dnssec
) {
3153 r
= translate("dnssec", arg_ifname
, 1, (char **) &arg_set_dnssec
, bus
);
3160 case MODE_REVERT_LINK
:
3163 return translate("revert", arg_ifname
, 0, NULL
, bus
);
3166 assert_not_reached("invalid mode");
3172 static int run(int argc
, char **argv
) {
3173 _cleanup_(sd_bus_flush_close_unrefp
) sd_bus
*bus
= NULL
;
3176 setlocale(LC_ALL
, "");
3177 log_show_color(true);
3178 log_parse_environment();
3181 if (streq(program_invocation_short_name
, "resolvconf"))
3182 r
= resolvconf_parse_argv(argc
, argv
);
3183 else if (streq(program_invocation_short_name
, "systemd-resolve"))
3184 r
= compat_parse_argv(argc
, argv
);
3186 r
= native_parse_argv(argc
, argv
);
3190 r
= sd_bus_open_system(&bus
);
3192 return log_error_errno(r
, "sd_bus_open_system: %m");
3194 if (STR_IN_SET(program_invocation_short_name
, "systemd-resolve", "resolvconf"))
3195 return compat_main(argc
, argv
, bus
);
3197 return native_main(argc
, argv
, bus
);
3200 DEFINE_MAIN_FUNCTION(run
);