]> git.ipfire.org Git - thirdparty/systemd.git/blob - src/shared/bus-util.c
Merge pull request #8417 from brauner/2018-03-09/add_bind_mount_fallback_to_private_d...
[thirdparty/systemd.git] / src / shared / bus-util.c
1 /* SPDX-License-Identifier: LGPL-2.1+ */
2 /***
3 This file is part of systemd.
4
5 Copyright 2013 Lennart Poettering
6 ***/
7
8 #include <errno.h>
9 #include <fcntl.h>
10 #include <inttypes.h>
11 #include <stdio.h>
12 #include <stdlib.h>
13 #include <string.h>
14 #include <sys/ioctl.h>
15 #include <sys/resource.h>
16 #include <sys/socket.h>
17 #include <unistd.h>
18
19 #include "sd-bus-protocol.h"
20 #include "sd-bus.h"
21 #include "sd-daemon.h"
22 #include "sd-event.h"
23 #include "sd-id128.h"
24
25 #include "alloc-util.h"
26 #include "bus-internal.h"
27 #include "bus-label.h"
28 #include "bus-message.h"
29 #include "bus-util.h"
30 #include "cap-list.h"
31 #include "cgroup-util.h"
32 #include "def.h"
33 #include "escape.h"
34 #include "fd-util.h"
35 #include "missing.h"
36 #include "mount-util.h"
37 #include "nsflags.h"
38 #include "parse-util.h"
39 #include "proc-cmdline.h"
40 #include "rlimit-util.h"
41 #include "stdio-util.h"
42 #include "strv.h"
43 #include "user-util.h"
44
45 static int name_owner_change_callback(sd_bus_message *m, void *userdata, sd_bus_error *ret_error) {
46 sd_event *e = userdata;
47
48 assert(m);
49 assert(e);
50
51 sd_bus_close(sd_bus_message_get_bus(m));
52 sd_event_exit(e, 0);
53
54 return 1;
55 }
56
57 int bus_async_unregister_and_exit(sd_event *e, sd_bus *bus, const char *name) {
58 const char *match;
59 const char *unique;
60 int r;
61
62 assert(e);
63 assert(bus);
64 assert(name);
65
66 /* We unregister the name here and then wait for the
67 * NameOwnerChanged signal for this event to arrive before we
68 * quit. We do this in order to make sure that any queued
69 * requests are still processed before we really exit. */
70
71 r = sd_bus_get_unique_name(bus, &unique);
72 if (r < 0)
73 return r;
74
75 match = strjoina(
76 "sender='org.freedesktop.DBus',"
77 "type='signal',"
78 "interface='org.freedesktop.DBus',"
79 "member='NameOwnerChanged',"
80 "path='/org/freedesktop/DBus',"
81 "arg0='", name, "',",
82 "arg1='", unique, "',",
83 "arg2=''");
84
85 r = sd_bus_add_match_async(bus, NULL, match, name_owner_change_callback, NULL, e);
86 if (r < 0)
87 return r;
88
89 r = sd_bus_release_name_async(bus, NULL, name, NULL, NULL);
90 if (r < 0)
91 return r;
92
93 return 0;
94 }
95
96 int bus_event_loop_with_idle(
97 sd_event *e,
98 sd_bus *bus,
99 const char *name,
100 usec_t timeout,
101 check_idle_t check_idle,
102 void *userdata) {
103 bool exiting = false;
104 int r, code;
105
106 assert(e);
107 assert(bus);
108 assert(name);
109
110 for (;;) {
111 bool idle;
112
113 r = sd_event_get_state(e);
114 if (r < 0)
115 return r;
116 if (r == SD_EVENT_FINISHED)
117 break;
118
119 if (check_idle)
120 idle = check_idle(userdata);
121 else
122 idle = true;
123
124 r = sd_event_run(e, exiting || !idle ? (uint64_t) -1 : timeout);
125 if (r < 0)
126 return r;
127
128 if (r == 0 && !exiting && idle) {
129
130 r = sd_bus_try_close(bus);
131 if (r == -EBUSY)
132 continue;
133
134 /* Fallback for dbus1 connections: we
135 * unregister the name and wait for the
136 * response to come through for it */
137 if (r == -EOPNOTSUPP) {
138
139 /* Inform the service manager that we
140 * are going down, so that it will
141 * queue all further start requests,
142 * instead of assuming we are already
143 * running. */
144 sd_notify(false, "STOPPING=1");
145
146 r = bus_async_unregister_and_exit(e, bus, name);
147 if (r < 0)
148 return r;
149
150 exiting = true;
151 continue;
152 }
153
154 if (r < 0)
155 return r;
156
157 sd_event_exit(e, 0);
158 break;
159 }
160 }
161
162 r = sd_event_get_exit_code(e, &code);
163 if (r < 0)
164 return r;
165
166 return code;
167 }
168
169 int bus_name_has_owner(sd_bus *c, const char *name, sd_bus_error *error) {
170 _cleanup_(sd_bus_message_unrefp) sd_bus_message *rep = NULL;
171 int r, has_owner = 0;
172
173 assert(c);
174 assert(name);
175
176 r = sd_bus_call_method(c,
177 "org.freedesktop.DBus",
178 "/org/freedesktop/dbus",
179 "org.freedesktop.DBus",
180 "NameHasOwner",
181 error,
182 &rep,
183 "s",
184 name);
185 if (r < 0)
186 return r;
187
188 r = sd_bus_message_read_basic(rep, 'b', &has_owner);
189 if (r < 0)
190 return sd_bus_error_set_errno(error, r);
191
192 return has_owner;
193 }
194
195 static int check_good_user(sd_bus_message *m, uid_t good_user) {
196 _cleanup_(sd_bus_creds_unrefp) sd_bus_creds *creds = NULL;
197 uid_t sender_uid;
198 int r;
199
200 assert(m);
201
202 if (good_user == UID_INVALID)
203 return 0;
204
205 r = sd_bus_query_sender_creds(m, SD_BUS_CREDS_EUID, &creds);
206 if (r < 0)
207 return r;
208
209 /* Don't trust augmented credentials for authorization */
210 assert_return((sd_bus_creds_get_augmented_mask(creds) & SD_BUS_CREDS_EUID) == 0, -EPERM);
211
212 r = sd_bus_creds_get_euid(creds, &sender_uid);
213 if (r < 0)
214 return r;
215
216 return sender_uid == good_user;
217 }
218
219 int bus_test_polkit(
220 sd_bus_message *call,
221 int capability,
222 const char *action,
223 const char **details,
224 uid_t good_user,
225 bool *_challenge,
226 sd_bus_error *e) {
227
228 int r;
229
230 assert(call);
231 assert(action);
232
233 /* Tests non-interactively! */
234
235 r = check_good_user(call, good_user);
236 if (r != 0)
237 return r;
238
239 r = sd_bus_query_sender_privilege(call, capability);
240 if (r < 0)
241 return r;
242 else if (r > 0)
243 return 1;
244 #if ENABLE_POLKIT
245 else {
246 _cleanup_(sd_bus_message_unrefp) sd_bus_message *request = NULL;
247 _cleanup_(sd_bus_message_unrefp) sd_bus_message *reply = NULL;
248 int authorized = false, challenge = false;
249 const char *sender, **k, **v;
250
251 sender = sd_bus_message_get_sender(call);
252 if (!sender)
253 return -EBADMSG;
254
255 r = sd_bus_message_new_method_call(
256 call->bus,
257 &request,
258 "org.freedesktop.PolicyKit1",
259 "/org/freedesktop/PolicyKit1/Authority",
260 "org.freedesktop.PolicyKit1.Authority",
261 "CheckAuthorization");
262 if (r < 0)
263 return r;
264
265 r = sd_bus_message_append(
266 request,
267 "(sa{sv})s",
268 "system-bus-name", 1, "name", "s", sender,
269 action);
270 if (r < 0)
271 return r;
272
273 r = sd_bus_message_open_container(request, 'a', "{ss}");
274 if (r < 0)
275 return r;
276
277 STRV_FOREACH_PAIR(k, v, details) {
278 r = sd_bus_message_append(request, "{ss}", *k, *v);
279 if (r < 0)
280 return r;
281 }
282
283 r = sd_bus_message_close_container(request);
284 if (r < 0)
285 return r;
286
287 r = sd_bus_message_append(request, "us", 0, NULL);
288 if (r < 0)
289 return r;
290
291 r = sd_bus_call(call->bus, request, 0, e, &reply);
292 if (r < 0) {
293 /* Treat no PK available as access denied */
294 if (sd_bus_error_has_name(e, SD_BUS_ERROR_SERVICE_UNKNOWN)) {
295 sd_bus_error_free(e);
296 return -EACCES;
297 }
298
299 return r;
300 }
301
302 r = sd_bus_message_enter_container(reply, 'r', "bba{ss}");
303 if (r < 0)
304 return r;
305
306 r = sd_bus_message_read(reply, "bb", &authorized, &challenge);
307 if (r < 0)
308 return r;
309
310 if (authorized)
311 return 1;
312
313 if (_challenge) {
314 *_challenge = challenge;
315 return 0;
316 }
317 }
318 #endif
319
320 return -EACCES;
321 }
322
323 #if ENABLE_POLKIT
324
325 typedef struct AsyncPolkitQuery {
326 sd_bus_message *request, *reply;
327 sd_bus_message_handler_t callback;
328 void *userdata;
329 sd_bus_slot *slot;
330 Hashmap *registry;
331 } AsyncPolkitQuery;
332
333 static void async_polkit_query_free(AsyncPolkitQuery *q) {
334
335 if (!q)
336 return;
337
338 sd_bus_slot_unref(q->slot);
339
340 if (q->registry && q->request)
341 hashmap_remove(q->registry, q->request);
342
343 sd_bus_message_unref(q->request);
344 sd_bus_message_unref(q->reply);
345
346 free(q);
347 }
348
349 static int async_polkit_callback(sd_bus_message *reply, void *userdata, sd_bus_error *error) {
350 _cleanup_(sd_bus_error_free) sd_bus_error error_buffer = SD_BUS_ERROR_NULL;
351 AsyncPolkitQuery *q = userdata;
352 int r;
353
354 assert(reply);
355 assert(q);
356
357 q->slot = sd_bus_slot_unref(q->slot);
358 q->reply = sd_bus_message_ref(reply);
359
360 r = sd_bus_message_rewind(q->request, true);
361 if (r < 0) {
362 r = sd_bus_reply_method_errno(q->request, r, NULL);
363 goto finish;
364 }
365
366 r = q->callback(q->request, q->userdata, &error_buffer);
367 r = bus_maybe_reply_error(q->request, r, &error_buffer);
368
369 finish:
370 async_polkit_query_free(q);
371
372 return r;
373 }
374
375 #endif
376
377 int bus_verify_polkit_async(
378 sd_bus_message *call,
379 int capability,
380 const char *action,
381 const char **details,
382 bool interactive,
383 uid_t good_user,
384 Hashmap **registry,
385 sd_bus_error *error) {
386
387 #if ENABLE_POLKIT
388 _cleanup_(sd_bus_message_unrefp) sd_bus_message *pk = NULL;
389 AsyncPolkitQuery *q;
390 const char *sender, **k, **v;
391 sd_bus_message_handler_t callback;
392 void *userdata;
393 int c;
394 #endif
395 int r;
396
397 assert(call);
398 assert(action);
399 assert(registry);
400
401 r = check_good_user(call, good_user);
402 if (r != 0)
403 return r;
404
405 #if ENABLE_POLKIT
406 q = hashmap_get(*registry, call);
407 if (q) {
408 int authorized, challenge;
409
410 /* This is the second invocation of this function, and
411 * there's already a response from polkit, let's
412 * process it */
413 assert(q->reply);
414
415 if (sd_bus_message_is_method_error(q->reply, NULL)) {
416 const sd_bus_error *e;
417
418 /* Copy error from polkit reply */
419 e = sd_bus_message_get_error(q->reply);
420 sd_bus_error_copy(error, e);
421
422 /* Treat no PK available as access denied */
423 if (sd_bus_error_has_name(e, SD_BUS_ERROR_SERVICE_UNKNOWN))
424 return -EACCES;
425
426 return -sd_bus_error_get_errno(e);
427 }
428
429 r = sd_bus_message_enter_container(q->reply, 'r', "bba{ss}");
430 if (r >= 0)
431 r = sd_bus_message_read(q->reply, "bb", &authorized, &challenge);
432
433 if (r < 0)
434 return r;
435
436 if (authorized)
437 return 1;
438
439 if (challenge)
440 return sd_bus_error_set(error, SD_BUS_ERROR_INTERACTIVE_AUTHORIZATION_REQUIRED, "Interactive authentication required.");
441
442 return -EACCES;
443 }
444 #endif
445
446 r = sd_bus_query_sender_privilege(call, capability);
447 if (r < 0)
448 return r;
449 else if (r > 0)
450 return 1;
451
452 #if ENABLE_POLKIT
453 if (sd_bus_get_current_message(call->bus) != call)
454 return -EINVAL;
455
456 callback = sd_bus_get_current_handler(call->bus);
457 if (!callback)
458 return -EINVAL;
459
460 userdata = sd_bus_get_current_userdata(call->bus);
461
462 sender = sd_bus_message_get_sender(call);
463 if (!sender)
464 return -EBADMSG;
465
466 c = sd_bus_message_get_allow_interactive_authorization(call);
467 if (c < 0)
468 return c;
469 if (c > 0)
470 interactive = true;
471
472 r = hashmap_ensure_allocated(registry, NULL);
473 if (r < 0)
474 return r;
475
476 r = sd_bus_message_new_method_call(
477 call->bus,
478 &pk,
479 "org.freedesktop.PolicyKit1",
480 "/org/freedesktop/PolicyKit1/Authority",
481 "org.freedesktop.PolicyKit1.Authority",
482 "CheckAuthorization");
483 if (r < 0)
484 return r;
485
486 r = sd_bus_message_append(
487 pk,
488 "(sa{sv})s",
489 "system-bus-name", 1, "name", "s", sender,
490 action);
491 if (r < 0)
492 return r;
493
494 r = sd_bus_message_open_container(pk, 'a', "{ss}");
495 if (r < 0)
496 return r;
497
498 STRV_FOREACH_PAIR(k, v, details) {
499 r = sd_bus_message_append(pk, "{ss}", *k, *v);
500 if (r < 0)
501 return r;
502 }
503
504 r = sd_bus_message_close_container(pk);
505 if (r < 0)
506 return r;
507
508 r = sd_bus_message_append(pk, "us", !!interactive, NULL);
509 if (r < 0)
510 return r;
511
512 q = new0(AsyncPolkitQuery, 1);
513 if (!q)
514 return -ENOMEM;
515
516 q->request = sd_bus_message_ref(call);
517 q->callback = callback;
518 q->userdata = userdata;
519
520 r = hashmap_put(*registry, call, q);
521 if (r < 0) {
522 async_polkit_query_free(q);
523 return r;
524 }
525
526 q->registry = *registry;
527
528 r = sd_bus_call_async(call->bus, &q->slot, pk, async_polkit_callback, q, 0);
529 if (r < 0) {
530 async_polkit_query_free(q);
531 return r;
532 }
533
534 return 0;
535 #endif
536
537 return -EACCES;
538 }
539
540 void bus_verify_polkit_async_registry_free(Hashmap *registry) {
541 #if ENABLE_POLKIT
542 hashmap_free_with_destructor(registry, async_polkit_query_free);
543 #endif
544 }
545
546 int bus_check_peercred(sd_bus *c) {
547 struct ucred ucred;
548 int fd, r;
549
550 assert(c);
551
552 fd = sd_bus_get_fd(c);
553 if (fd < 0)
554 return fd;
555
556 r = getpeercred(fd, &ucred);
557 if (r < 0)
558 return r;
559
560 if (ucred.uid != 0 && ucred.uid != geteuid())
561 return -EPERM;
562
563 return 1;
564 }
565
566 int bus_connect_system_systemd(sd_bus **_bus) {
567 _cleanup_(sd_bus_unrefp) sd_bus *bus = NULL;
568 int r;
569
570 assert(_bus);
571
572 if (geteuid() != 0)
573 return sd_bus_default_system(_bus);
574
575 /* If we are root then let's talk directly to the system
576 * instance, instead of going via the bus */
577
578 r = sd_bus_new(&bus);
579 if (r < 0)
580 return r;
581
582 r = sd_bus_set_address(bus, "unix:path=/run/systemd/private");
583 if (r < 0)
584 return r;
585
586 r = sd_bus_start(bus);
587 if (r < 0)
588 return sd_bus_default_system(_bus);
589
590 r = bus_check_peercred(bus);
591 if (r < 0)
592 return r;
593
594 *_bus = TAKE_PTR(bus);
595
596 return 0;
597 }
598
599 int bus_connect_user_systemd(sd_bus **_bus) {
600 _cleanup_(sd_bus_unrefp) sd_bus *bus = NULL;
601 _cleanup_free_ char *ee = NULL;
602 const char *e;
603 int r;
604
605 assert(_bus);
606
607 e = secure_getenv("XDG_RUNTIME_DIR");
608 if (!e)
609 return sd_bus_default_user(_bus);
610
611 ee = bus_address_escape(e);
612 if (!ee)
613 return -ENOMEM;
614
615 r = sd_bus_new(&bus);
616 if (r < 0)
617 return r;
618
619 bus->address = strjoin("unix:path=", ee, "/systemd/private");
620 if (!bus->address)
621 return -ENOMEM;
622
623 r = sd_bus_start(bus);
624 if (r < 0)
625 return sd_bus_default_user(_bus);
626
627 r = bus_check_peercred(bus);
628 if (r < 0)
629 return r;
630
631 *_bus = TAKE_PTR(bus);
632
633 return 0;
634 }
635
636 #define print_property(name, fmt, ...) \
637 do { \
638 if (value) \
639 printf(fmt "\n", __VA_ARGS__); \
640 else \
641 printf("%s=" fmt "\n", name, __VA_ARGS__); \
642 } while (0)
643
644 int bus_print_property(const char *name, sd_bus_message *m, bool value, bool all) {
645 char type;
646 const char *contents;
647 int r;
648
649 assert(name);
650 assert(m);
651
652 r = sd_bus_message_peek_type(m, &type, &contents);
653 if (r < 0)
654 return r;
655
656 switch (type) {
657
658 case SD_BUS_TYPE_STRING: {
659 const char *s;
660
661 r = sd_bus_message_read_basic(m, type, &s);
662 if (r < 0)
663 return r;
664
665 if (all || !isempty(s)) {
666 bool good;
667
668 /* This property has a single value, so we need to take
669 * care not to print a new line, everything else is OK. */
670 good = !strchr(s, '\n');
671 print_property(name, "%s", good ? s : "[unprintable]");
672 }
673
674 return 1;
675 }
676
677 case SD_BUS_TYPE_BOOLEAN: {
678 int b;
679
680 r = sd_bus_message_read_basic(m, type, &b);
681 if (r < 0)
682 return r;
683
684 print_property(name, "%s", yes_no(b));
685
686 return 1;
687 }
688
689 case SD_BUS_TYPE_UINT64: {
690 uint64_t u;
691
692 r = sd_bus_message_read_basic(m, type, &u);
693 if (r < 0)
694 return r;
695
696 /* Yes, heuristics! But we can change this check
697 * should it turn out to not be sufficient */
698
699 if (endswith(name, "Timestamp") || STR_IN_SET(name, "NextElapseUSecRealtime", "LastTriggerUSec")) {
700 char timestamp[FORMAT_TIMESTAMP_MAX], *t;
701
702 t = format_timestamp(timestamp, sizeof(timestamp), u);
703 if (t || all)
704 print_property(name, "%s", strempty(t));
705
706 } else if (strstr(name, "USec")) {
707 char timespan[FORMAT_TIMESPAN_MAX];
708
709 print_property(name, "%s", format_timespan(timespan, sizeof(timespan), u, 0));
710 } else if (streq(name, "RestrictNamespaces")) {
711 _cleanup_free_ char *s = NULL;
712 const char *result;
713
714 if ((u & NAMESPACE_FLAGS_ALL) == 0)
715 result = "yes";
716 else if ((u & NAMESPACE_FLAGS_ALL) == NAMESPACE_FLAGS_ALL)
717 result = "no";
718 else {
719 r = namespace_flag_to_string_many(u, &s);
720 if (r < 0)
721 return r;
722
723 result = s;
724 }
725
726 print_property(name, "%s", result);
727
728 } else if (streq(name, "MountFlags")) {
729 const char *result;
730
731 result = mount_propagation_flags_to_string(u);
732 if (!result)
733 return -EINVAL;
734
735 print_property(name, "%s", result);
736
737 } else if (STR_IN_SET(name, "CapabilityBoundingSet", "AmbientCapabilities")) {
738 _cleanup_free_ char *s = NULL;
739
740 r = capability_set_to_string_alloc(u, &s);
741 if (r < 0)
742 return r;
743
744 print_property(name, "%s", s);
745
746 } else if ((STR_IN_SET(name, "CPUWeight", "StartupCPUWeight", "IOWeight", "StartupIOWeight") && u == CGROUP_WEIGHT_INVALID) ||
747 (STR_IN_SET(name, "CPUShares", "StartupCPUShares") && u == CGROUP_CPU_SHARES_INVALID) ||
748 (STR_IN_SET(name, "BlockIOWeight", "StartupBlockIOWeight") && u == CGROUP_BLKIO_WEIGHT_INVALID) ||
749 (STR_IN_SET(name, "MemoryCurrent", "TasksCurrent") && u == (uint64_t) -1) ||
750 (endswith(name, "NSec") && u == (uint64_t) -1))
751
752 print_property(name, "%s", "[not set]");
753
754 else if ((STR_IN_SET(name, "MemoryLow", "MemoryHigh", "MemoryMax", "MemorySwapMax", "MemoryLimit") && u == CGROUP_LIMIT_MAX) ||
755 (STR_IN_SET(name, "TasksMax", "DefaultTasksMax") && u == (uint64_t) -1) ||
756 (startswith(name, "Limit") && u == (uint64_t) -1) ||
757 (startswith(name, "DefaultLimit") && u == (uint64_t) -1))
758
759 print_property(name, "%s", "infinity");
760 else
761 print_property(name, "%"PRIu64, u);
762
763 return 1;
764 }
765
766 case SD_BUS_TYPE_INT64: {
767 int64_t i;
768
769 r = sd_bus_message_read_basic(m, type, &i);
770 if (r < 0)
771 return r;
772
773 print_property(name, "%"PRIi64, i);
774
775 return 1;
776 }
777
778 case SD_BUS_TYPE_UINT32: {
779 uint32_t u;
780
781 r = sd_bus_message_read_basic(m, type, &u);
782 if (r < 0)
783 return r;
784
785 if (strstr(name, "UMask") || strstr(name, "Mode"))
786 print_property(name, "%04o", u);
787 else if (streq(name, "UID")) {
788 if (u == UID_INVALID)
789 print_property(name, "%s", "[not set]");
790 else
791 print_property(name, "%"PRIu32, u);
792 } else if (streq(name, "GID")) {
793 if (u == GID_INVALID)
794 print_property(name, "%s", "[not set]");
795 else
796 print_property(name, "%"PRIu32, u);
797 } else
798 print_property(name, "%"PRIu32, u);
799
800 return 1;
801 }
802
803 case SD_BUS_TYPE_INT32: {
804 int32_t i;
805
806 r = sd_bus_message_read_basic(m, type, &i);
807 if (r < 0)
808 return r;
809
810 print_property(name, "%"PRIi32, i);
811 return 1;
812 }
813
814 case SD_BUS_TYPE_DOUBLE: {
815 double d;
816
817 r = sd_bus_message_read_basic(m, type, &d);
818 if (r < 0)
819 return r;
820
821 print_property(name, "%g", d);
822 return 1;
823 }
824
825 case SD_BUS_TYPE_ARRAY:
826 if (streq(contents, "s")) {
827 bool first = true;
828 const char *str;
829
830 r = sd_bus_message_enter_container(m, SD_BUS_TYPE_ARRAY, contents);
831 if (r < 0)
832 return r;
833
834 while ((r = sd_bus_message_read_basic(m, SD_BUS_TYPE_STRING, &str)) > 0) {
835 bool good;
836
837 if (first && !value)
838 printf("%s=", name);
839
840 /* This property has multiple space-separated values, so
841 * neither spaces not newlines can be allowed in a value. */
842 good = str[strcspn(str, " \n")] == '\0';
843
844 printf("%s%s", first ? "" : " ", good ? str : "[unprintable]");
845
846 first = false;
847 }
848 if (r < 0)
849 return r;
850
851 if (first && all && !value)
852 printf("%s=", name);
853 if (!first || all)
854 puts("");
855
856 r = sd_bus_message_exit_container(m);
857 if (r < 0)
858 return r;
859
860 return 1;
861
862 } else if (streq(contents, "y")) {
863 const uint8_t *u;
864 size_t n;
865
866 r = sd_bus_message_read_array(m, SD_BUS_TYPE_BYTE, (const void**) &u, &n);
867 if (r < 0)
868 return r;
869
870 if (all || n > 0) {
871 unsigned int i;
872
873 if (!value)
874 printf("%s=", name);
875
876 for (i = 0; i < n; i++)
877 printf("%02x", u[i]);
878
879 puts("");
880 }
881
882 return 1;
883
884 } else if (streq(contents, "u")) {
885 uint32_t *u;
886 size_t n;
887
888 r = sd_bus_message_read_array(m, SD_BUS_TYPE_UINT32, (const void**) &u, &n);
889 if (r < 0)
890 return r;
891
892 if (all || n > 0) {
893 unsigned int i;
894
895 if (!value)
896 printf("%s=", name);
897
898 for (i = 0; i < n; i++)
899 printf("%08x", u[i]);
900
901 puts("");
902 }
903
904 return 1;
905 }
906
907 break;
908 }
909
910 return 0;
911 }
912
913 int bus_message_print_all_properties(
914 sd_bus_message *m,
915 bus_message_print_t func,
916 char **filter,
917 bool value,
918 bool all,
919 Set **found_properties) {
920
921 int r;
922
923 assert(m);
924
925 r = sd_bus_message_enter_container(m, SD_BUS_TYPE_ARRAY, "{sv}");
926 if (r < 0)
927 return r;
928
929 while ((r = sd_bus_message_enter_container(m, SD_BUS_TYPE_DICT_ENTRY, "sv")) > 0) {
930 const char *name;
931 const char *contents;
932
933 r = sd_bus_message_read_basic(m, SD_BUS_TYPE_STRING, &name);
934 if (r < 0)
935 return r;
936
937 if (found_properties) {
938 r = set_ensure_allocated(found_properties, &string_hash_ops);
939 if (r < 0)
940 return log_oom();
941
942 r = set_put(*found_properties, name);
943 if (r < 0 && r != EEXIST)
944 return log_oom();
945 }
946
947 if (!filter || strv_find(filter, name)) {
948 r = sd_bus_message_peek_type(m, NULL, &contents);
949 if (r < 0)
950 return r;
951
952 r = sd_bus_message_enter_container(m, SD_BUS_TYPE_VARIANT, contents);
953 if (r < 0)
954 return r;
955
956 if (func)
957 r = func(name, m, value, all);
958 if (!func || r == 0)
959 r = bus_print_property(name, m, value, all);
960 if (r < 0)
961 return r;
962 if (r == 0) {
963 if (all)
964 printf("%s=[unprintable]\n", name);
965 /* skip what we didn't read */
966 r = sd_bus_message_skip(m, contents);
967 if (r < 0)
968 return r;
969 }
970
971 r = sd_bus_message_exit_container(m);
972 if (r < 0)
973 return r;
974 } else {
975 r = sd_bus_message_skip(m, "v");
976 if (r < 0)
977 return r;
978 }
979
980 r = sd_bus_message_exit_container(m);
981 if (r < 0)
982 return r;
983 }
984 if (r < 0)
985 return r;
986
987 r = sd_bus_message_exit_container(m);
988 if (r < 0)
989 return r;
990
991 return 0;
992 }
993
994 int bus_print_all_properties(
995 sd_bus *bus,
996 const char *dest,
997 const char *path,
998 bus_message_print_t func,
999 char **filter,
1000 bool value,
1001 bool all,
1002 Set **found_properties) {
1003
1004 _cleanup_(sd_bus_message_unrefp) sd_bus_message *reply = NULL;
1005 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
1006 int r;
1007
1008 assert(bus);
1009 assert(path);
1010
1011 r = sd_bus_call_method(bus,
1012 dest,
1013 path,
1014 "org.freedesktop.DBus.Properties",
1015 "GetAll",
1016 &error,
1017 &reply,
1018 "s", "");
1019 if (r < 0)
1020 return r;
1021
1022 return bus_message_print_all_properties(reply, func, filter, value, all, found_properties);
1023 }
1024
1025 int bus_map_id128(sd_bus *bus, const char *member, sd_bus_message *m, sd_bus_error *error, void *userdata) {
1026 sd_id128_t *p = userdata;
1027 const void *v;
1028 size_t n;
1029 int r;
1030
1031 r = sd_bus_message_read_array(m, SD_BUS_TYPE_BYTE, &v, &n);
1032 if (r < 0)
1033 return r;
1034
1035 if (n == 0)
1036 *p = SD_ID128_NULL;
1037 else if (n == 16)
1038 memcpy((*p).bytes, v, n);
1039 else
1040 return -EINVAL;
1041
1042 return 0;
1043 }
1044
1045 static int map_basic(sd_bus *bus, const char *member, sd_bus_message *m, unsigned flags, sd_bus_error *error, void *userdata) {
1046 char type;
1047 int r;
1048
1049 r = sd_bus_message_peek_type(m, &type, NULL);
1050 if (r < 0)
1051 return r;
1052
1053 switch (type) {
1054
1055 case SD_BUS_TYPE_STRING: {
1056 const char **p = userdata;
1057 const char *s;
1058
1059 r = sd_bus_message_read_basic(m, type, &s);
1060 if (r < 0)
1061 return r;
1062
1063 if (isempty(s))
1064 s = NULL;
1065
1066 if (flags & BUS_MAP_STRDUP)
1067 return free_and_strdup((char **) userdata, s);
1068
1069 *p = s;
1070 return 0;
1071 }
1072
1073 case SD_BUS_TYPE_ARRAY: {
1074 _cleanup_strv_free_ char **l = NULL;
1075 char ***p = userdata;
1076
1077 r = bus_message_read_strv_extend(m, &l);
1078 if (r < 0)
1079 return r;
1080
1081 strv_free(*p);
1082 *p = TAKE_PTR(l);
1083 return 0;
1084 }
1085
1086 case SD_BUS_TYPE_BOOLEAN: {
1087 int b;
1088
1089 r = sd_bus_message_read_basic(m, type, &b);
1090 if (r < 0)
1091 return r;
1092
1093 if (flags & BUS_MAP_BOOLEAN_AS_BOOL)
1094 * (bool*) userdata = !!b;
1095 else
1096 * (int*) userdata = b;
1097
1098 return 0;
1099 }
1100
1101 case SD_BUS_TYPE_INT32:
1102 case SD_BUS_TYPE_UINT32: {
1103 uint32_t u, *p = userdata;
1104
1105 r = sd_bus_message_read_basic(m, type, &u);
1106 if (r < 0)
1107 return r;
1108
1109 *p = u;
1110 return 0;
1111 }
1112
1113 case SD_BUS_TYPE_INT64:
1114 case SD_BUS_TYPE_UINT64: {
1115 uint64_t t, *p = userdata;
1116
1117 r = sd_bus_message_read_basic(m, type, &t);
1118 if (r < 0)
1119 return r;
1120
1121 *p = t;
1122 return 0;
1123 }
1124
1125 case SD_BUS_TYPE_DOUBLE: {
1126 double d, *p = userdata;
1127
1128 r = sd_bus_message_read_basic(m, type, &d);
1129 if (r < 0)
1130 return r;
1131
1132 *p = d;
1133 return 0;
1134 }}
1135
1136 return -EOPNOTSUPP;
1137 }
1138
1139 int bus_message_map_all_properties(
1140 sd_bus_message *m,
1141 const struct bus_properties_map *map,
1142 unsigned flags,
1143 sd_bus_error *error,
1144 void *userdata) {
1145
1146 int r;
1147
1148 assert(m);
1149 assert(map);
1150
1151 r = sd_bus_message_enter_container(m, SD_BUS_TYPE_ARRAY, "{sv}");
1152 if (r < 0)
1153 return r;
1154
1155 while ((r = sd_bus_message_enter_container(m, SD_BUS_TYPE_DICT_ENTRY, "sv")) > 0) {
1156 const struct bus_properties_map *prop;
1157 const char *member;
1158 const char *contents;
1159 void *v;
1160 unsigned i;
1161
1162 r = sd_bus_message_read_basic(m, SD_BUS_TYPE_STRING, &member);
1163 if (r < 0)
1164 return r;
1165
1166 for (i = 0, prop = NULL; map[i].member; i++)
1167 if (streq(map[i].member, member)) {
1168 prop = &map[i];
1169 break;
1170 }
1171
1172 if (prop) {
1173 r = sd_bus_message_peek_type(m, NULL, &contents);
1174 if (r < 0)
1175 return r;
1176
1177 r = sd_bus_message_enter_container(m, SD_BUS_TYPE_VARIANT, contents);
1178 if (r < 0)
1179 return r;
1180
1181 v = (uint8_t *)userdata + prop->offset;
1182 if (map[i].set)
1183 r = prop->set(sd_bus_message_get_bus(m), member, m, error, v);
1184 else
1185 r = map_basic(sd_bus_message_get_bus(m), member, m, flags, error, v);
1186 if (r < 0)
1187 return r;
1188
1189 r = sd_bus_message_exit_container(m);
1190 if (r < 0)
1191 return r;
1192 } else {
1193 r = sd_bus_message_skip(m, "v");
1194 if (r < 0)
1195 return r;
1196 }
1197
1198 r = sd_bus_message_exit_container(m);
1199 if (r < 0)
1200 return r;
1201 }
1202 if (r < 0)
1203 return r;
1204
1205 return sd_bus_message_exit_container(m);
1206 }
1207
1208 int bus_message_map_properties_changed(
1209 sd_bus_message *m,
1210 const struct bus_properties_map *map,
1211 unsigned flags,
1212 sd_bus_error *error,
1213 void *userdata) {
1214
1215 const char *member;
1216 int r, invalidated, i;
1217
1218 assert(m);
1219 assert(map);
1220
1221 r = bus_message_map_all_properties(m, map, flags, error, userdata);
1222 if (r < 0)
1223 return r;
1224
1225 r = sd_bus_message_enter_container(m, SD_BUS_TYPE_ARRAY, "s");
1226 if (r < 0)
1227 return r;
1228
1229 invalidated = 0;
1230 while ((r = sd_bus_message_read_basic(m, SD_BUS_TYPE_STRING, &member)) > 0)
1231 for (i = 0; map[i].member; i++)
1232 if (streq(map[i].member, member)) {
1233 ++invalidated;
1234 break;
1235 }
1236 if (r < 0)
1237 return r;
1238
1239 r = sd_bus_message_exit_container(m);
1240 if (r < 0)
1241 return r;
1242
1243 return invalidated;
1244 }
1245
1246 int bus_map_all_properties(
1247 sd_bus *bus,
1248 const char *destination,
1249 const char *path,
1250 const struct bus_properties_map *map,
1251 unsigned flags,
1252 sd_bus_error *error,
1253 sd_bus_message **reply,
1254 void *userdata) {
1255
1256 _cleanup_(sd_bus_message_unrefp) sd_bus_message *m = NULL;
1257 int r;
1258
1259 assert(bus);
1260 assert(destination);
1261 assert(path);
1262 assert(map);
1263 assert(reply || (flags & BUS_MAP_STRDUP));
1264
1265 r = sd_bus_call_method(
1266 bus,
1267 destination,
1268 path,
1269 "org.freedesktop.DBus.Properties",
1270 "GetAll",
1271 error,
1272 &m,
1273 "s", "");
1274 if (r < 0)
1275 return r;
1276
1277 r = bus_message_map_all_properties(m, map, flags, error, userdata);
1278 if (r < 0)
1279 return r;
1280
1281 if (reply)
1282 *reply = sd_bus_message_ref(m);
1283
1284 return r;
1285 }
1286
1287 int bus_connect_transport(BusTransport transport, const char *host, bool user, sd_bus **ret) {
1288 _cleanup_(sd_bus_unrefp) sd_bus *bus = NULL;
1289 int r;
1290
1291 assert(transport >= 0);
1292 assert(transport < _BUS_TRANSPORT_MAX);
1293 assert(ret);
1294
1295 assert_return((transport == BUS_TRANSPORT_LOCAL) == !host, -EINVAL);
1296 assert_return(transport == BUS_TRANSPORT_LOCAL || !user, -EOPNOTSUPP);
1297
1298 switch (transport) {
1299
1300 case BUS_TRANSPORT_LOCAL:
1301 if (user)
1302 r = sd_bus_default_user(&bus);
1303 else
1304 r = sd_bus_default_system(&bus);
1305
1306 break;
1307
1308 case BUS_TRANSPORT_REMOTE:
1309 r = sd_bus_open_system_remote(&bus, host);
1310 break;
1311
1312 case BUS_TRANSPORT_MACHINE:
1313 r = sd_bus_open_system_machine(&bus, host);
1314 break;
1315
1316 default:
1317 assert_not_reached("Hmm, unknown transport type.");
1318 }
1319 if (r < 0)
1320 return r;
1321
1322 r = sd_bus_set_exit_on_disconnect(bus, true);
1323 if (r < 0)
1324 return r;
1325
1326 *ret = TAKE_PTR(bus);
1327
1328 return 0;
1329 }
1330
1331 int bus_connect_transport_systemd(BusTransport transport, const char *host, bool user, sd_bus **bus) {
1332 int r;
1333
1334 assert(transport >= 0);
1335 assert(transport < _BUS_TRANSPORT_MAX);
1336 assert(bus);
1337
1338 assert_return((transport == BUS_TRANSPORT_LOCAL) == !host, -EINVAL);
1339 assert_return(transport == BUS_TRANSPORT_LOCAL || !user, -EOPNOTSUPP);
1340
1341 switch (transport) {
1342
1343 case BUS_TRANSPORT_LOCAL:
1344 if (user)
1345 r = bus_connect_user_systemd(bus);
1346 else
1347 r = bus_connect_system_systemd(bus);
1348
1349 break;
1350
1351 case BUS_TRANSPORT_REMOTE:
1352 r = sd_bus_open_system_remote(bus, host);
1353 break;
1354
1355 case BUS_TRANSPORT_MACHINE:
1356 r = sd_bus_open_system_machine(bus, host);
1357 break;
1358
1359 default:
1360 assert_not_reached("Hmm, unknown transport type.");
1361 }
1362
1363 return r;
1364 }
1365
1366 int bus_property_get_bool(
1367 sd_bus *bus,
1368 const char *path,
1369 const char *interface,
1370 const char *property,
1371 sd_bus_message *reply,
1372 void *userdata,
1373 sd_bus_error *error) {
1374
1375 int b = *(bool*) userdata;
1376
1377 return sd_bus_message_append_basic(reply, 'b', &b);
1378 }
1379
1380 int bus_property_set_bool(
1381 sd_bus *bus,
1382 const char *path,
1383 const char *interface,
1384 const char *property,
1385 sd_bus_message *value,
1386 void *userdata,
1387 sd_bus_error *error) {
1388
1389 int b, r;
1390
1391 r = sd_bus_message_read(value, "b", &b);
1392 if (r < 0)
1393 return r;
1394
1395 *(bool *) userdata = !!b;
1396 return 0;
1397 }
1398
1399 int bus_property_get_id128(
1400 sd_bus *bus,
1401 const char *path,
1402 const char *interface,
1403 const char *property,
1404 sd_bus_message *reply,
1405 void *userdata,
1406 sd_bus_error *error) {
1407
1408 sd_id128_t *id = userdata;
1409
1410 if (sd_id128_is_null(*id)) /* Add an empty array if the ID is zero */
1411 return sd_bus_message_append(reply, "ay", 0);
1412 else
1413 return sd_bus_message_append_array(reply, 'y', id->bytes, 16);
1414 }
1415
1416 #if __SIZEOF_SIZE_T__ != 8
1417 int bus_property_get_size(
1418 sd_bus *bus,
1419 const char *path,
1420 const char *interface,
1421 const char *property,
1422 sd_bus_message *reply,
1423 void *userdata,
1424 sd_bus_error *error) {
1425
1426 uint64_t sz = *(size_t*) userdata;
1427
1428 return sd_bus_message_append_basic(reply, 't', &sz);
1429 }
1430 #endif
1431
1432 #if __SIZEOF_LONG__ != 8
1433 int bus_property_get_long(
1434 sd_bus *bus,
1435 const char *path,
1436 const char *interface,
1437 const char *property,
1438 sd_bus_message *reply,
1439 void *userdata,
1440 sd_bus_error *error) {
1441
1442 int64_t l = *(long*) userdata;
1443
1444 return sd_bus_message_append_basic(reply, 'x', &l);
1445 }
1446
1447 int bus_property_get_ulong(
1448 sd_bus *bus,
1449 const char *path,
1450 const char *interface,
1451 const char *property,
1452 sd_bus_message *reply,
1453 void *userdata,
1454 sd_bus_error *error) {
1455
1456 uint64_t ul = *(unsigned long*) userdata;
1457
1458 return sd_bus_message_append_basic(reply, 't', &ul);
1459 }
1460 #endif
1461
1462 int bus_log_parse_error(int r) {
1463 return log_error_errno(r, "Failed to parse bus message: %m");
1464 }
1465
1466 int bus_log_create_error(int r) {
1467 return log_error_errno(r, "Failed to create bus message: %m");
1468 }
1469
1470 /**
1471 * bus_path_encode_unique() - encode unique object path
1472 * @b: bus connection or NULL
1473 * @prefix: object path prefix
1474 * @sender_id: unique-name of client, or NULL
1475 * @external_id: external ID to be chosen by client, or NULL
1476 * @ret_path: storage for encoded object path pointer
1477 *
1478 * Whenever we provide a bus API that allows clients to create and manage
1479 * server-side objects, we need to provide a unique name for these objects. If
1480 * we let the server choose the name, we suffer from a race condition: If a
1481 * client creates an object asynchronously, it cannot destroy that object until
1482 * it received the method reply. It cannot know the name of the new object,
1483 * thus, it cannot destroy it. Furthermore, it enforces a round-trip.
1484 *
1485 * Therefore, many APIs allow the client to choose the unique name for newly
1486 * created objects. There're two problems to solve, though:
1487 * 1) Object names are usually defined via dbus object paths, which are
1488 * usually globally namespaced. Therefore, multiple clients must be able
1489 * to choose unique object names without interference.
1490 * 2) If multiple libraries share the same bus connection, they must be
1491 * able to choose unique object names without interference.
1492 * The first problem is solved easily by prefixing a name with the
1493 * unique-bus-name of a connection. The server side must enforce this and
1494 * reject any other name. The second problem is solved by providing unique
1495 * suffixes from within sd-bus.
1496 *
1497 * This helper allows clients to create unique object-paths. It uses the
1498 * template '/prefix/sender_id/external_id' and returns the new path in
1499 * @ret_path (must be freed by the caller).
1500 * If @sender_id is NULL, the unique-name of @b is used. If @external_id is
1501 * NULL, this function allocates a unique suffix via @b (by requesting a new
1502 * cookie). If both @sender_id and @external_id are given, @b can be passed as
1503 * NULL.
1504 *
1505 * Returns: 0 on success, negative error code on failure.
1506 */
1507 int bus_path_encode_unique(sd_bus *b, const char *prefix, const char *sender_id, const char *external_id, char **ret_path) {
1508 _cleanup_free_ char *sender_label = NULL, *external_label = NULL;
1509 char external_buf[DECIMAL_STR_MAX(uint64_t)], *p;
1510 int r;
1511
1512 assert_return(b || (sender_id && external_id), -EINVAL);
1513 assert_return(object_path_is_valid(prefix), -EINVAL);
1514 assert_return(ret_path, -EINVAL);
1515
1516 if (!sender_id) {
1517 r = sd_bus_get_unique_name(b, &sender_id);
1518 if (r < 0)
1519 return r;
1520 }
1521
1522 if (!external_id) {
1523 xsprintf(external_buf, "%"PRIu64, ++b->cookie);
1524 external_id = external_buf;
1525 }
1526
1527 sender_label = bus_label_escape(sender_id);
1528 if (!sender_label)
1529 return -ENOMEM;
1530
1531 external_label = bus_label_escape(external_id);
1532 if (!external_label)
1533 return -ENOMEM;
1534
1535 p = strjoin(prefix, "/", sender_label, "/", external_label);
1536 if (!p)
1537 return -ENOMEM;
1538
1539 *ret_path = p;
1540 return 0;
1541 }
1542
1543 /**
1544 * bus_path_decode_unique() - decode unique object path
1545 * @path: object path to decode
1546 * @prefix: object path prefix
1547 * @ret_sender: output parameter for sender-id label
1548 * @ret_external: output parameter for external-id label
1549 *
1550 * This does the reverse of bus_path_encode_unique() (see its description for
1551 * details). Both trailing labels, sender-id and external-id, are unescaped and
1552 * returned in the given output parameters (the caller must free them).
1553 *
1554 * Note that this function returns 0 if the path does not match the template
1555 * (see bus_path_encode_unique()), 1 if it matched.
1556 *
1557 * Returns: Negative error code on failure, 0 if the given object path does not
1558 * match the template (return parameters are set to NULL), 1 if it was
1559 * parsed successfully (return parameters contain allocated labels).
1560 */
1561 int bus_path_decode_unique(const char *path, const char *prefix, char **ret_sender, char **ret_external) {
1562 const char *p, *q;
1563 char *sender, *external;
1564
1565 assert(object_path_is_valid(path));
1566 assert(object_path_is_valid(prefix));
1567 assert(ret_sender);
1568 assert(ret_external);
1569
1570 p = object_path_startswith(path, prefix);
1571 if (!p) {
1572 *ret_sender = NULL;
1573 *ret_external = NULL;
1574 return 0;
1575 }
1576
1577 q = strchr(p, '/');
1578 if (!q) {
1579 *ret_sender = NULL;
1580 *ret_external = NULL;
1581 return 0;
1582 }
1583
1584 sender = bus_label_unescape_n(p, q - p);
1585 external = bus_label_unescape(q + 1);
1586 if (!sender || !external) {
1587 free(sender);
1588 free(external);
1589 return -ENOMEM;
1590 }
1591
1592 *ret_sender = sender;
1593 *ret_external = external;
1594 return 1;
1595 }
1596
1597 int bus_property_get_rlimit(
1598 sd_bus *bus,
1599 const char *path,
1600 const char *interface,
1601 const char *property,
1602 sd_bus_message *reply,
1603 void *userdata,
1604 sd_bus_error *error) {
1605
1606 struct rlimit *rl;
1607 uint64_t u;
1608 rlim_t x;
1609 const char *is_soft;
1610
1611 assert(bus);
1612 assert(reply);
1613 assert(userdata);
1614
1615 is_soft = endswith(property, "Soft");
1616 rl = *(struct rlimit**) userdata;
1617 if (rl)
1618 x = is_soft ? rl->rlim_cur : rl->rlim_max;
1619 else {
1620 struct rlimit buf = {};
1621 int z;
1622 const char *s;
1623
1624 s = is_soft ? strndupa(property, is_soft - property) : property;
1625
1626 z = rlimit_from_string(strstr(s, "Limit"));
1627 assert(z >= 0);
1628
1629 getrlimit(z, &buf);
1630 x = is_soft ? buf.rlim_cur : buf.rlim_max;
1631 }
1632
1633 /* rlim_t might have different sizes, let's map
1634 * RLIMIT_INFINITY to (uint64_t) -1, so that it is the same on
1635 * all archs */
1636 u = x == RLIM_INFINITY ? (uint64_t) -1 : (uint64_t) x;
1637
1638 return sd_bus_message_append(reply, "t", u);
1639 }
1640
1641 int bus_track_add_name_many(sd_bus_track *t, char **l) {
1642 int r = 0;
1643 char **i;
1644
1645 assert(t);
1646
1647 /* Continues adding after failure, and returns the first failure. */
1648
1649 STRV_FOREACH(i, l) {
1650 int k;
1651
1652 k = sd_bus_track_add_name(t, *i);
1653 if (k < 0 && r >= 0)
1654 r = k;
1655 }
1656
1657 return r;
1658 }
1659
1660 int bus_open_system_watch_bind_with_description(sd_bus **ret, const char *description) {
1661 _cleanup_(sd_bus_unrefp) sd_bus *bus = NULL;
1662 const char *e;
1663 int r;
1664
1665 assert(ret);
1666
1667 /* Match like sd_bus_open_system(), but with the "watch_bind" feature and the Connected() signal turned on. */
1668
1669 r = sd_bus_new(&bus);
1670 if (r < 0)
1671 return r;
1672
1673 if (description) {
1674 r = sd_bus_set_description(bus, description);
1675 if (r < 0)
1676 return r;
1677 }
1678
1679 e = secure_getenv("DBUS_SYSTEM_BUS_ADDRESS");
1680 if (!e)
1681 e = DEFAULT_SYSTEM_BUS_ADDRESS;
1682
1683 r = sd_bus_set_address(bus, e);
1684 if (r < 0)
1685 return r;
1686
1687 r = sd_bus_set_bus_client(bus, true);
1688 if (r < 0)
1689 return r;
1690
1691 r = sd_bus_set_trusted(bus, true);
1692 if (r < 0)
1693 return r;
1694
1695 r = sd_bus_negotiate_creds(bus, true, SD_BUS_CREDS_UID|SD_BUS_CREDS_EUID|SD_BUS_CREDS_EFFECTIVE_CAPS);
1696 if (r < 0)
1697 return r;
1698
1699 r = sd_bus_set_watch_bind(bus, true);
1700 if (r < 0)
1701 return r;
1702
1703 r = sd_bus_set_connected_signal(bus, true);
1704 if (r < 0)
1705 return r;
1706
1707 r = sd_bus_start(bus);
1708 if (r < 0)
1709 return r;
1710
1711 *ret = TAKE_PTR(bus);
1712
1713 return 0;
1714 }