1 /* SPDX-License-Identifier: LGPL-2.1+ */
3 #include <sys/socket.h>
5 #include <linux/fib_rules.h>
9 #include "sd-netlink.h"
11 #include "alloc-util.h"
13 #include "conf-parser.h"
15 #include "dns-domain.h"
18 #include "libudev-private.h"
19 #include "local-addresses.h"
20 #include "netlink-util.h"
21 #include "networkd-manager.h"
22 #include "ordered-set.h"
23 #include "path-util.h"
25 #include "udev-util.h"
28 /* use 8 MB for receive socket kernel queue. */
29 #define RCVBUF_SIZE (8*1024*1024)
31 const char* const network_dirs
[] = {
32 "/etc/systemd/network",
33 "/run/systemd/network",
34 "/usr/lib/systemd/network",
36 "/lib/systemd/network",
40 static int setup_default_address_pool(Manager
*m
) {
46 /* Add in the well-known private address ranges. */
48 r
= address_pool_new_from_string(m
, &p
, AF_INET6
, "fc00::", 7);
52 r
= address_pool_new_from_string(m
, &p
, AF_INET
, "192.168.0.0", 16);
56 r
= address_pool_new_from_string(m
, &p
, AF_INET
, "172.16.0.0", 12);
60 r
= address_pool_new_from_string(m
, &p
, AF_INET
, "10.0.0.0", 8);
67 static int manager_reset_all(Manager
*m
) {
74 HASHMAP_FOREACH(link
, m
->links
, i
) {
75 r
= link_carrier_reset(link
);
77 log_link_warning_errno(link
, r
, "Could not reset carrier: %m");
83 static int match_prepare_for_sleep(sd_bus_message
*message
, void *userdata
, sd_bus_error
*ret_error
) {
84 Manager
*m
= userdata
;
90 r
= sd_bus_message_read(message
, "b", &b
);
92 log_debug_errno(r
, "Failed to parse PrepareForSleep signal: %m");
99 log_debug("Coming back from suspend, resetting all connections...");
101 (void) manager_reset_all(m
);
106 static int on_connected(sd_bus_message
*message
, void *userdata
, sd_bus_error
*ret_error
) {
107 Manager
*m
= userdata
;
112 /* Did we get a timezone or transient hostname from DHCP while D-Bus wasn't up yet? */
113 if (m
->dynamic_hostname
)
114 (void) manager_set_hostname(m
, m
->dynamic_hostname
);
115 if (m
->dynamic_timezone
)
116 (void) manager_set_timezone(m
, m
->dynamic_timezone
);
121 int manager_connect_bus(Manager
*m
) {
129 r
= bus_open_system_watch_bind_with_description(&m
->bus
, "bus-api-network");
131 return log_error_errno(r
, "Failed to connect to bus: %m");
133 r
= sd_bus_add_object_vtable(m
->bus
, NULL
, "/org/freedesktop/network1", "org.freedesktop.network1.Manager", manager_vtable
, m
);
135 return log_error_errno(r
, "Failed to add manager object vtable: %m");
137 r
= sd_bus_add_fallback_vtable(m
->bus
, NULL
, "/org/freedesktop/network1/link", "org.freedesktop.network1.Link", link_vtable
, link_object_find
, m
);
139 return log_error_errno(r
, "Failed to add link object vtable: %m");
141 r
= sd_bus_add_node_enumerator(m
->bus
, NULL
, "/org/freedesktop/network1/link", link_node_enumerator
, m
);
143 return log_error_errno(r
, "Failed to add link enumerator: %m");
145 r
= sd_bus_add_fallback_vtable(m
->bus
, NULL
, "/org/freedesktop/network1/network", "org.freedesktop.network1.Network", network_vtable
, network_object_find
, m
);
147 return log_error_errno(r
, "Failed to add network object vtable: %m");
149 r
= sd_bus_add_node_enumerator(m
->bus
, NULL
, "/org/freedesktop/network1/network", network_node_enumerator
, m
);
151 return log_error_errno(r
, "Failed to add network enumerator: %m");
153 r
= bus_request_name_async_may_reload_dbus(m
->bus
, NULL
, "org.freedesktop.network1", 0, NULL
);
155 return log_error_errno(r
, "Failed to request name: %m");
157 r
= sd_bus_attach_event(m
->bus
, m
->event
, 0);
159 return log_error_errno(r
, "Failed to attach bus to event loop: %m");
161 r
= sd_bus_match_signal_async(
164 "org.freedesktop.DBus.Local",
166 "org.freedesktop.DBus.Local",
168 on_connected
, NULL
, m
);
170 return log_error_errno(r
, "Failed to request match on Connected signal: %m");
172 r
= sd_bus_match_signal_async(
175 "org.freedesktop.login1",
176 "/org/freedesktop/login1",
177 "org.freedesktop.login1.Manager",
179 match_prepare_for_sleep
, NULL
, m
);
181 log_warning_errno(r
, "Failed to request match for PrepareForSleep, ignoring: %m");
186 static int manager_udev_process_link(Manager
*m
, struct udev_device
*device
) {
193 if (!streq_ptr(udev_device_get_action(device
), "add"))
196 ifindex
= udev_device_get_ifindex(device
);
198 log_debug("Ignoring udev ADD event for device with invalid ifindex");
202 r
= link_get(m
, ifindex
, &link
);
208 r
= link_initialized(link
, device
);
215 static int manager_dispatch_link_udev(sd_event_source
*source
, int fd
, uint32_t revents
, void *userdata
) {
216 Manager
*m
= userdata
;
217 struct udev_monitor
*monitor
= m
->udev_monitor
;
218 _cleanup_(udev_device_unrefp
) struct udev_device
*device
= NULL
;
220 device
= udev_monitor_receive_device(monitor
);
224 (void) manager_udev_process_link(m
, device
);
229 static int manager_connect_udev(Manager
*m
) {
232 /* udev does not initialize devices inside containers,
233 * so we rely on them being already initialized before
234 * entering the container */
235 if (detect_container() > 0)
238 m
->udev
= udev_new();
242 m
->udev_monitor
= udev_monitor_new_from_netlink(m
->udev
, "udev");
243 if (!m
->udev_monitor
)
246 r
= udev_monitor_filter_add_match_subsystem_devtype(m
->udev_monitor
, "net", NULL
);
248 return log_error_errno(r
, "Could not add udev monitor filter: %m");
250 r
= udev_monitor_enable_receiving(m
->udev_monitor
);
252 log_error("Could not enable udev monitor");
256 r
= sd_event_add_io(m
->event
,
257 &m
->udev_event_source
,
258 udev_monitor_get_fd(m
->udev_monitor
),
259 EPOLLIN
, manager_dispatch_link_udev
,
264 r
= sd_event_source_set_description(m
->udev_event_source
, "networkd-udev");
271 int manager_rtnl_process_route(sd_netlink
*rtnl
, sd_netlink_message
*message
, void *userdata
) {
272 Manager
*m
= userdata
;
275 uint32_t ifindex
, priority
= 0;
276 unsigned char protocol
, scope
, tos
, table
, rt_type
;
278 unsigned char dst_prefixlen
, src_prefixlen
;
279 union in_addr_union dst
= {}, gw
= {}, src
= {}, prefsrc
= {};
287 if (sd_netlink_message_is_error(message
)) {
288 r
= sd_netlink_message_get_errno(message
);
290 log_warning_errno(r
, "rtnl: failed to receive route, ignoring: %m");
295 r
= sd_netlink_message_get_type(message
, &type
);
297 log_warning_errno(r
, "rtnl: could not get message type, ignoring: %m");
299 } else if (!IN_SET(type
, RTM_NEWROUTE
, RTM_DELROUTE
)) {
300 log_warning("rtnl: received unexpected message type when processing route, ignoring");
304 r
= sd_netlink_message_read_u32(message
, RTA_OIF
, &ifindex
);
306 log_debug("rtnl: received route without ifindex, ignoring");
309 log_warning_errno(r
, "rtnl: could not get ifindex from route, ignoring: %m");
311 } else if (ifindex
<= 0) {
312 log_warning("rtnl: received route message with invalid ifindex, ignoring: %d", ifindex
);
315 r
= link_get(m
, ifindex
, &link
);
316 if (r
< 0 || !link
) {
317 /* when enumerating we might be out of sync, but we will
318 * get the route again, so just ignore it */
320 log_warning("rtnl: received route for nonexistent link (%d), ignoring", ifindex
);
325 r
= sd_rtnl_message_route_get_family(message
, &family
);
326 if (r
< 0 || !IN_SET(family
, AF_INET
, AF_INET6
)) {
327 log_link_warning(link
, "rtnl: received address with invalid family, ignoring");
331 r
= sd_rtnl_message_route_get_protocol(message
, &protocol
);
333 log_warning_errno(r
, "rtnl: could not get route protocol: %m");
339 r
= sd_netlink_message_read_in_addr(message
, RTA_DST
, &dst
.in
);
340 if (r
< 0 && r
!= -ENODATA
) {
341 log_link_warning_errno(link
, r
, "rtnl: received route without valid destination, ignoring: %m");
345 r
= sd_netlink_message_read_in_addr(message
, RTA_GATEWAY
, &gw
.in
);
346 if (r
< 0 && r
!= -ENODATA
) {
347 log_link_warning_errno(link
, r
, "rtnl: received route with invalid gateway, ignoring: %m");
351 r
= sd_netlink_message_read_in_addr(message
, RTA_SRC
, &src
.in
);
352 if (r
< 0 && r
!= -ENODATA
) {
353 log_link_warning_errno(link
, r
, "rtnl: received route with invalid source, ignoring: %m");
357 r
= sd_netlink_message_read_in_addr(message
, RTA_PREFSRC
, &prefsrc
.in
);
358 if (r
< 0 && r
!= -ENODATA
) {
359 log_link_warning_errno(link
, r
, "rtnl: received route with invalid preferred source, ignoring: %m");
366 r
= sd_netlink_message_read_in6_addr(message
, RTA_DST
, &dst
.in6
);
367 if (r
< 0 && r
!= -ENODATA
) {
368 log_link_warning_errno(link
, r
, "rtnl: received route without valid destination, ignoring: %m");
372 r
= sd_netlink_message_read_in6_addr(message
, RTA_GATEWAY
, &gw
.in6
);
373 if (r
< 0 && r
!= -ENODATA
) {
374 log_link_warning_errno(link
, r
, "rtnl: received route with invalid gateway, ignoring: %m");
378 r
= sd_netlink_message_read_in6_addr(message
, RTA_SRC
, &src
.in6
);
379 if (r
< 0 && r
!= -ENODATA
) {
380 log_link_warning_errno(link
, r
, "rtnl: received route with invalid source, ignoring: %m");
384 r
= sd_netlink_message_read_in6_addr(message
, RTA_PREFSRC
, &prefsrc
.in6
);
385 if (r
< 0 && r
!= -ENODATA
) {
386 log_link_warning_errno(link
, r
, "rtnl: received route with invalid preferred source, ignoring: %m");
393 assert_not_reached("Received unsupported address family");
397 r
= sd_rtnl_message_route_get_dst_prefixlen(message
, &dst_prefixlen
);
399 log_link_warning_errno(link
, r
, "rtnl: received route with invalid destination prefixlen, ignoring: %m");
403 r
= sd_rtnl_message_route_get_src_prefixlen(message
, &src_prefixlen
);
405 log_link_warning_errno(link
, r
, "rtnl: received route with invalid source prefixlen, ignoring: %m");
409 r
= sd_rtnl_message_route_get_scope(message
, &scope
);
411 log_link_warning_errno(link
, r
, "rtnl: received route with invalid scope, ignoring: %m");
415 r
= sd_rtnl_message_route_get_tos(message
, &tos
);
417 log_link_warning_errno(link
, r
, "rtnl: received route with invalid tos, ignoring: %m");
421 r
= sd_rtnl_message_route_get_type(message
, &rt_type
);
423 log_link_warning_errno(link
, r
, "rtnl: received route with invalid type, ignoring: %m");
427 r
= sd_rtnl_message_route_get_table(message
, &table
);
429 log_link_warning_errno(link
, r
, "rtnl: received route with invalid table, ignoring: %m");
433 r
= sd_netlink_message_read_u32(message
, RTA_PRIORITY
, &priority
);
434 if (r
< 0 && r
!= -ENODATA
) {
435 log_link_warning_errno(link
, r
, "rtnl: received route with invalid priority, ignoring: %m");
439 (void) route_get(link
, family
, &dst
, dst_prefixlen
, tos
, priority
, table
, &route
);
444 /* A route appeared that we did not request */
445 r
= route_add_foreign(link
, family
, &dst
, dst_prefixlen
, tos
, priority
, table
, &route
);
447 log_link_warning_errno(link
, r
, "Failed to add route, ignoring: %m");
452 route_update(route
, &src
, src_prefixlen
, &gw
, &prefsrc
, scope
, protocol
, rt_type
);
461 assert_not_reached("Received invalid RTNL message type");
467 int manager_rtnl_process_address(sd_netlink
*rtnl
, sd_netlink_message
*message
, void *userdata
) {
468 Manager
*m
= userdata
;
473 unsigned char prefixlen
;
475 union in_addr_union in_addr
;
476 struct ifa_cacheinfo cinfo
;
477 Address
*address
= NULL
;
478 char buf
[INET6_ADDRSTRLEN
], valid_buf
[FORMAT_TIMESPAN_MAX
];
479 const char *valid_str
= NULL
;
486 if (sd_netlink_message_is_error(message
)) {
487 r
= sd_netlink_message_get_errno(message
);
489 log_warning_errno(r
, "rtnl: failed to receive address, ignoring: %m");
494 r
= sd_netlink_message_get_type(message
, &type
);
496 log_warning_errno(r
, "rtnl: could not get message type, ignoring: %m");
498 } else if (!IN_SET(type
, RTM_NEWADDR
, RTM_DELADDR
)) {
499 log_warning("rtnl: received unexpected message type when processing address, ignoring");
503 r
= sd_rtnl_message_addr_get_ifindex(message
, &ifindex
);
505 log_warning_errno(r
, "rtnl: could not get ifindex from address, ignoring: %m");
507 } else if (ifindex
<= 0) {
508 log_warning("rtnl: received address message with invalid ifindex, ignoring: %d", ifindex
);
511 r
= link_get(m
, ifindex
, &link
);
512 if (r
< 0 || !link
) {
513 /* when enumerating we might be out of sync, but we will
514 * get the address again, so just ignore it */
516 log_warning("rtnl: received address for nonexistent link (%d), ignoring", ifindex
);
521 r
= sd_rtnl_message_addr_get_family(message
, &family
);
522 if (r
< 0 || !IN_SET(family
, AF_INET
, AF_INET6
)) {
523 log_link_warning(link
, "rtnl: received address with invalid family, ignoring");
527 r
= sd_rtnl_message_addr_get_prefixlen(message
, &prefixlen
);
529 log_link_warning_errno(link
, r
, "rtnl: received address with invalid prefixlen, ignoring: %m");
533 r
= sd_rtnl_message_addr_get_scope(message
, &scope
);
535 log_link_warning_errno(link
, r
, "rtnl: received address with invalid scope, ignoring: %m");
539 r
= sd_rtnl_message_addr_get_flags(message
, &flags
);
541 log_link_warning_errno(link
, r
, "rtnl: received address with invalid flags, ignoring: %m");
547 r
= sd_netlink_message_read_in_addr(message
, IFA_LOCAL
, &in_addr
.in
);
549 log_link_warning_errno(link
, r
, "rtnl: received address without valid address, ignoring: %m");
556 r
= sd_netlink_message_read_in6_addr(message
, IFA_ADDRESS
, &in_addr
.in6
);
558 log_link_warning_errno(link
, r
, "rtnl: received address without valid address, ignoring: %m");
565 assert_not_reached("Received unsupported address family");
568 if (!inet_ntop(family
, &in_addr
, buf
, INET6_ADDRSTRLEN
)) {
569 log_link_warning(link
, "Could not print address, ignoring");
573 r
= sd_netlink_message_read_cache_info(message
, IFA_CACHEINFO
, &cinfo
);
574 if (r
< 0 && r
!= -ENODATA
) {
575 log_link_warning_errno(link
, r
, "rtnl: cannot get IFA_CACHEINFO attribute, ignoring: %m");
578 if (cinfo
.ifa_valid
!= CACHE_INFO_INFINITY_LIFE_TIME
)
579 valid_str
= format_timespan(valid_buf
, FORMAT_TIMESPAN_MAX
,
580 cinfo
.ifa_valid
* USEC_PER_SEC
,
584 (void) address_get(link
, family
, &in_addr
, prefixlen
, &address
);
589 log_link_debug(link
, "Updating address: %s/%u (valid %s%s)", buf
, prefixlen
,
590 valid_str
? "for " : "forever", strempty(valid_str
));
592 /* An address appeared that we did not request */
593 r
= address_add_foreign(link
, family
, &in_addr
, prefixlen
, &address
);
595 log_link_warning_errno(link
, r
, "Failed to add address %s/%u, ignoring: %m", buf
, prefixlen
);
598 log_link_debug(link
, "Adding address: %s/%u (valid %s%s)", buf
, prefixlen
,
599 valid_str
? "for " : "forever", strempty(valid_str
));
602 r
= address_update(address
, flags
, scope
, &cinfo
);
604 log_link_warning_errno(link
, r
, "Failed to update address %s/%u, ignoring: %m", buf
, prefixlen
);
613 log_link_debug(link
, "Removing address: %s/%u (valid %s%s)", buf
, prefixlen
,
614 valid_str
? "for " : "forever", strempty(valid_str
));
615 (void) address_drop(address
);
617 log_link_warning(link
, "Removing non-existent address: %s/%u (valid %s%s), ignoring", buf
, prefixlen
,
618 valid_str
? "for " : "forever", strempty(valid_str
));
622 assert_not_reached("Received invalid RTNL message type");
628 static int manager_rtnl_process_link(sd_netlink
*rtnl
, sd_netlink_message
*message
, void *userdata
) {
629 Manager
*m
= userdata
;
631 NetDev
*netdev
= NULL
;
640 if (sd_netlink_message_is_error(message
)) {
641 r
= sd_netlink_message_get_errno(message
);
643 log_warning_errno(r
, "rtnl: Could not receive link, ignoring: %m");
648 r
= sd_netlink_message_get_type(message
, &type
);
650 log_warning_errno(r
, "rtnl: Could not get message type, ignoring: %m");
652 } else if (!IN_SET(type
, RTM_NEWLINK
, RTM_DELLINK
)) {
653 log_warning("rtnl: Received unexpected message type when processing link, ignoring");
657 r
= sd_rtnl_message_link_get_ifindex(message
, &ifindex
);
659 log_warning_errno(r
, "rtnl: Could not get ifindex from link, ignoring: %m");
661 } else if (ifindex
<= 0) {
662 log_warning("rtnl: received link message with invalid ifindex %d, ignoring", ifindex
);
666 r
= sd_netlink_message_read_string(message
, IFLA_IFNAME
, &name
);
668 log_warning_errno(r
, "rtnl: Received link message without ifname, ignoring: %m");
672 (void) link_get(m
, ifindex
, &link
);
673 (void) netdev_get(m
, name
, &netdev
);
678 /* link is new, so add it */
679 r
= link_add(m
, message
, &link
);
681 log_warning_errno(r
, "Could not add new link, ignoring: %m");
687 /* netdev exists, so make sure the ifindex matches */
688 r
= netdev_set_ifindex(netdev
, message
);
690 log_warning_errno(r
, "Could not set ifindex on netdev, ignoring: %m");
695 r
= link_update(link
, message
);
697 log_warning_errno(r
, "Could not update link, ignoring: %m");
710 assert_not_reached("Received invalid RTNL message type.");
716 int manager_rtnl_process_rule(sd_netlink
*rtnl
, sd_netlink_message
*message
, void *userdata
) {
717 uint8_t tos
= 0, to_prefixlen
= 0, from_prefixlen
= 0;
718 union in_addr_union to
= {}, from
= {};
719 RoutingPolicyRule
*rule
= NULL
;
720 uint32_t fwmark
= 0, table
= 0;
721 char *iif
= NULL
, *oif
= NULL
;
722 Manager
*m
= userdata
;
731 if (sd_netlink_message_is_error(message
)) {
732 r
= sd_netlink_message_get_errno(message
);
734 log_warning_errno(r
, "rtnl: failed to receive rule, ignoring: %m");
739 r
= sd_netlink_message_get_type(message
, &type
);
741 log_warning_errno(r
, "rtnl: could not get message type, ignoring: %m");
743 } else if (!IN_SET(type
, RTM_NEWRULE
, RTM_DELRULE
)) {
744 log_warning("rtnl: received unexpected message type '%u' when processing rule, ignoring", type
);
748 r
= sd_rtnl_message_get_family(message
, &family
);
750 log_warning_errno(r
, "rtnl: could not get rule family, ignoring: %m");
752 } else if (!IN_SET(family
, AF_INET
, AF_INET6
)) {
753 log_debug("rtnl: received address with invalid family %u, ignoring", family
);
759 r
= sd_netlink_message_read_in_addr(message
, FRA_SRC
, &from
.in
);
760 if (r
< 0 && r
!= -ENODATA
) {
761 log_warning_errno(r
, "rtnl: could not get FRA_SRC attribute, ignoring: %m");
764 r
= sd_rtnl_message_routing_policy_rule_get_rtm_src_prefixlen(message
, &from_prefixlen
);
766 log_warning_errno(r
, "rtnl: failed to retrieve rule from prefix length, ignoring: %m");
771 r
= sd_netlink_message_read_in_addr(message
, FRA_DST
, &to
.in
);
772 if (r
< 0 && r
!= -ENODATA
) {
773 log_warning_errno(r
, "rtnl: could not get FRA_DST attribute, ignoring: %m");
776 r
= sd_rtnl_message_routing_policy_rule_get_rtm_dst_prefixlen(message
, &to_prefixlen
);
778 log_warning_errno(r
, "rtnl: failed to retrieve rule to prefix length, ignoring: %m");
786 r
= sd_netlink_message_read_in6_addr(message
, FRA_SRC
, &from
.in6
);
787 if (r
< 0 && r
!= -ENODATA
) {
788 log_warning_errno(r
, "rtnl: could not get FRA_SRC attribute, ignoring: %m");
791 r
= sd_rtnl_message_routing_policy_rule_get_rtm_src_prefixlen(message
, &from_prefixlen
);
793 log_warning_errno(r
, "rtnl: failed to retrieve rule from prefix length, ignoring: %m");
798 r
= sd_netlink_message_read_in6_addr(message
, FRA_DST
, &to
.in6
);
799 if (r
< 0 && r
!= -ENODATA
) {
800 log_warning_errno(r
, "rtnl: could not get FRA_DST attribute, ignoring: %m");
803 r
= sd_rtnl_message_routing_policy_rule_get_rtm_dst_prefixlen(message
, &to_prefixlen
);
805 log_warning_errno(r
, "rtnl: failed to retrieve rule to prefix length, ignoring: %m");
813 assert_not_reached("Received unsupported address family");
816 if (from_prefixlen
== 0 && to_prefixlen
== 0)
819 r
= sd_netlink_message_read_u32(message
, FRA_FWMARK
, &fwmark
);
820 if (r
< 0 && r
!= -ENODATA
) {
821 log_warning_errno(r
, "rtnl: could not get FRA_FWMARK attribute, ignoring: %m");
825 r
= sd_netlink_message_read_u32(message
, FRA_TABLE
, &table
);
826 if (r
< 0 && r
!= -ENODATA
) {
827 log_warning_errno(r
, "rtnl: could not get FRA_TABLE attribute, ignoring: %m");
831 r
= sd_rtnl_message_routing_policy_rule_get_tos(message
, &tos
);
832 if (r
< 0 && r
!= -ENODATA
) {
833 log_warning_errno(r
, "rtnl: could not get ip rule TOS, ignoring: %m");
837 r
= sd_netlink_message_read_string(message
, FRA_IIFNAME
, (const char **) &iif
);
838 if (r
< 0 && r
!= -ENODATA
) {
839 log_warning_errno(r
, "rtnl: could not get FRA_IIFNAME attribute, ignoring: %m");
843 r
= sd_netlink_message_read_string(message
, FRA_OIFNAME
, (const char **) &oif
);
844 if (r
< 0 && r
!= -ENODATA
) {
845 log_warning_errno(r
, "rtnl: could not get FRA_OIFNAME attribute, ignoring: %m");
849 (void) routing_policy_rule_get(m
, family
, &from
, from_prefixlen
, &to
, to_prefixlen
, tos
, fwmark
, table
, iif
, oif
, &rule
);
854 r
= routing_policy_rule_add_foreign(m
, family
, &from
, from_prefixlen
, &to
, to_prefixlen
, tos
, fwmark
, table
, iif
, oif
, &rule
);
856 log_warning_errno(r
, "Could not add rule, ignoring: %m");
862 routing_policy_rule_free(rule
);
867 assert_not_reached("Received invalid RTNL message type");
873 static int systemd_netlink_fd(void) {
874 int n
, fd
, rtnl_fd
= -EINVAL
;
876 n
= sd_listen_fds(true);
880 for (fd
= SD_LISTEN_FDS_START
; fd
< SD_LISTEN_FDS_START
+ n
; fd
++) {
881 if (sd_is_socket(fd
, AF_NETLINK
, SOCK_RAW
, -1) > 0) {
892 static int manager_connect_genl(Manager
*m
) {
897 r
= sd_genl_socket_open(&m
->genl
);
901 r
= sd_netlink_inc_rcvbuf(m
->genl
, RCVBUF_SIZE
);
905 r
= sd_netlink_attach_event(m
->genl
, m
->event
, 0);
912 static int manager_connect_rtnl(Manager
*m
) {
917 fd
= systemd_netlink_fd();
919 r
= sd_netlink_open(&m
->rtnl
);
921 r
= sd_netlink_open_fd(&m
->rtnl
, fd
);
925 r
= sd_netlink_inc_rcvbuf(m
->rtnl
, RCVBUF_SIZE
);
929 r
= sd_netlink_attach_event(m
->rtnl
, m
->event
, 0);
933 r
= sd_netlink_add_match(m
->rtnl
, RTM_NEWLINK
, &manager_rtnl_process_link
, m
);
937 r
= sd_netlink_add_match(m
->rtnl
, RTM_DELLINK
, &manager_rtnl_process_link
, m
);
941 r
= sd_netlink_add_match(m
->rtnl
, RTM_NEWADDR
, &manager_rtnl_process_address
, m
);
945 r
= sd_netlink_add_match(m
->rtnl
, RTM_DELADDR
, &manager_rtnl_process_address
, m
);
949 r
= sd_netlink_add_match(m
->rtnl
, RTM_NEWROUTE
, &manager_rtnl_process_route
, m
);
953 r
= sd_netlink_add_match(m
->rtnl
, RTM_DELROUTE
, &manager_rtnl_process_route
, m
);
957 r
= sd_netlink_add_match(m
->rtnl
, RTM_NEWRULE
, &manager_rtnl_process_rule
, m
);
961 r
= sd_netlink_add_match(m
->rtnl
, RTM_DELRULE
, &manager_rtnl_process_rule
, m
);
968 static int ordered_set_put_in_addr_data(OrderedSet
*s
, const struct in_addr_data
*address
) {
975 r
= in_addr_to_string(address
->family
, &address
->address
, &p
);
979 r
= ordered_set_consume(s
, p
);
986 static int ordered_set_put_in_addr_datav(OrderedSet
*s
, const struct in_addr_data
*addresses
, unsigned n
) {
991 assert(addresses
|| n
== 0);
993 for (i
= 0; i
< n
; i
++) {
994 r
= ordered_set_put_in_addr_data(s
, addresses
+i
);
1004 static int ordered_set_put_in4_addr(OrderedSet
*s
, const struct in_addr
*address
) {
1011 r
= in_addr_to_string(AF_INET
, (const union in_addr_union
*) address
, &p
);
1015 r
= ordered_set_consume(s
, p
);
1022 static int ordered_set_put_in4_addrv(OrderedSet
*s
, const struct in_addr
*addresses
, unsigned n
) {
1027 assert(n
== 0 || addresses
);
1029 for (i
= 0; i
< n
; i
++) {
1030 r
= ordered_set_put_in4_addr(s
, addresses
+i
);
1040 static void print_string_set(FILE *f
, const char *field
, OrderedSet
*s
) {
1045 if (ordered_set_isempty(s
))
1050 ORDERED_SET_FOREACH(p
, s
, i
)
1051 fputs_with_space(f
, p
, NULL
, &space
);
1056 static int manager_save(Manager
*m
) {
1057 _cleanup_ordered_set_free_free_ OrderedSet
*dns
= NULL
, *ntp
= NULL
, *search_domains
= NULL
, *route_domains
= NULL
;
1060 _cleanup_free_
char *temp_path
= NULL
;
1061 _cleanup_fclose_
FILE *f
= NULL
;
1062 LinkOperationalState operstate
= LINK_OPERSTATE_OFF
;
1063 const char *operstate_str
;
1067 assert(m
->state_file
);
1069 /* We add all NTP and DNS server to a set, to filter out duplicates */
1070 dns
= ordered_set_new(&string_hash_ops
);
1074 ntp
= ordered_set_new(&string_hash_ops
);
1078 search_domains
= ordered_set_new(&dns_name_hash_ops
);
1079 if (!search_domains
)
1082 route_domains
= ordered_set_new(&dns_name_hash_ops
);
1086 HASHMAP_FOREACH(link
, m
->links
, i
) {
1087 if (link
->flags
& IFF_LOOPBACK
)
1090 if (link
->operstate
> operstate
)
1091 operstate
= link
->operstate
;
1096 /* First add the static configured entries */
1097 r
= ordered_set_put_in_addr_datav(dns
, link
->network
->dns
, link
->network
->n_dns
);
1101 r
= ordered_set_put_strdupv(ntp
, link
->network
->ntp
);
1105 r
= ordered_set_put_strdupv(search_domains
, link
->network
->search_domains
);
1109 r
= ordered_set_put_strdupv(route_domains
, link
->network
->route_domains
);
1113 if (!link
->dhcp_lease
)
1116 /* Secondly, add the entries acquired via DHCP */
1117 if (link
->network
->dhcp_use_dns
) {
1118 const struct in_addr
*addresses
;
1120 r
= sd_dhcp_lease_get_dns(link
->dhcp_lease
, &addresses
);
1122 r
= ordered_set_put_in4_addrv(dns
, addresses
, r
);
1125 } else if (r
< 0 && r
!= -ENODATA
)
1129 if (link
->network
->dhcp_use_ntp
) {
1130 const struct in_addr
*addresses
;
1132 r
= sd_dhcp_lease_get_ntp(link
->dhcp_lease
, &addresses
);
1134 r
= ordered_set_put_in4_addrv(ntp
, addresses
, r
);
1137 } else if (r
< 0 && r
!= -ENODATA
)
1141 if (link
->network
->dhcp_use_domains
!= DHCP_USE_DOMAINS_NO
) {
1142 const char *domainname
;
1143 char **domains
= NULL
;
1145 OrderedSet
*target_domains
= (link
->network
->dhcp_use_domains
== DHCP_USE_DOMAINS_YES
) ? search_domains
: route_domains
;
1146 r
= sd_dhcp_lease_get_domainname(link
->dhcp_lease
, &domainname
);
1148 r
= ordered_set_put_strdup(target_domains
, domainname
);
1151 } else if (r
!= -ENODATA
)
1154 r
= sd_dhcp_lease_get_search_domains(link
->dhcp_lease
, &domains
);
1156 r
= ordered_set_put_strdupv(target_domains
, domains
);
1159 } else if (r
!= -ENODATA
)
1164 operstate_str
= link_operstate_to_string(operstate
);
1165 assert(operstate_str
);
1167 r
= fopen_temporary(m
->state_file
, &f
, &temp_path
);
1171 (void) __fsetlocking(f
, FSETLOCKING_BYCALLER
);
1172 (void) fchmod(fileno(f
), 0644);
1175 "# This is private data. Do not parse.\n"
1176 "OPER_STATE=%s\n", operstate_str
);
1178 print_string_set(f
, "DNS=", dns
);
1179 print_string_set(f
, "NTP=", ntp
);
1180 print_string_set(f
, "DOMAINS=", search_domains
);
1181 print_string_set(f
, "ROUTE_DOMAINS=", route_domains
);
1183 r
= routing_policy_serialize_rules(m
->rules
, f
);
1187 r
= fflush_and_check(f
);
1191 if (rename(temp_path
, m
->state_file
) < 0) {
1196 if (m
->operational_state
!= operstate
) {
1197 m
->operational_state
= operstate
;
1198 r
= manager_send_changed(m
, "OperationalState", NULL
);
1200 log_error_errno(r
, "Could not emit changed OperationalState: %m");
1208 (void) unlink(m
->state_file
);
1209 (void) unlink(temp_path
);
1211 return log_error_errno(r
, "Failed to save network state to %s: %m", m
->state_file
);
1214 static int manager_dirty_handler(sd_event_source
*s
, void *userdata
) {
1215 Manager
*m
= userdata
;
1225 SET_FOREACH(link
, m
->dirty_links
, i
) {
1226 r
= link_save(link
);
1234 Link
*manager_dhcp6_prefix_get(Manager
*m
, struct in6_addr
*addr
) {
1235 assert_return(m
, NULL
);
1236 assert_return(m
->dhcp6_prefixes
, NULL
);
1237 assert_return(addr
, NULL
);
1239 return hashmap_get(m
->dhcp6_prefixes
, addr
);
1242 static int dhcp6_route_add_callback(sd_netlink
*nl
, sd_netlink_message
*m
,
1246 union in_addr_union prefix
;
1247 _cleanup_free_
char *buf
= NULL
;
1249 r
= sd_netlink_message_get_errno(m
);
1251 log_link_debug_errno(l
, r
, "Received error adding DHCPv6 Prefix Delegation route: %m");
1255 r
= sd_netlink_message_read_in6_addr(m
, RTA_DST
, &prefix
.in6
);
1257 log_link_debug_errno(l
, r
, "Could not read IPv6 address from DHCPv6 Prefix Delegation while adding route: %m");
1261 (void) in_addr_to_string(AF_INET6
, &prefix
, &buf
);
1262 log_link_debug(l
, "Added DHCPv6 Prefix Deleagtion route %s/64",
1268 int manager_dhcp6_prefix_add(Manager
*m
, struct in6_addr
*addr
, Link
*link
) {
1272 assert_return(m
, -EINVAL
);
1273 assert_return(m
->dhcp6_prefixes
, -ENODATA
);
1274 assert_return(addr
, -EINVAL
);
1276 r
= route_add(link
, AF_INET6
, (union in_addr_union
*) addr
, 64,
1281 r
= route_configure(route
, link
, dhcp6_route_add_callback
);
1285 return hashmap_put(m
->dhcp6_prefixes
, addr
, link
);
1288 static int dhcp6_route_remove_callback(sd_netlink
*nl
, sd_netlink_message
*m
,
1292 union in_addr_union prefix
;
1293 _cleanup_free_
char *buf
= NULL
;
1295 r
= sd_netlink_message_get_errno(m
);
1297 log_link_debug_errno(l
, r
, "Received error on DHCPv6 Prefix Delegation route removal: %m");
1301 r
= sd_netlink_message_read_in6_addr(m
, RTA_DST
, &prefix
.in6
);
1303 log_link_debug_errno(l
, r
, "Could not read IPv6 address from DHCPv6 Prefix Delegation while removing route: %m");
1307 (void) in_addr_to_string(AF_INET6
, &prefix
, &buf
);
1308 log_link_debug(l
, "Removed DHCPv6 Prefix Delegation route %s/64",
1314 int manager_dhcp6_prefix_remove(Manager
*m
, struct in6_addr
*addr
) {
1319 assert_return(m
, -EINVAL
);
1320 assert_return(m
->dhcp6_prefixes
, -ENODATA
);
1321 assert_return(addr
, -EINVAL
);
1323 l
= hashmap_remove(m
->dhcp6_prefixes
, addr
);
1327 (void) sd_radv_remove_prefix(l
->radv
, addr
, 64);
1328 r
= route_get(l
, AF_INET6
, (union in_addr_union
*) addr
, 64,
1331 (void) route_remove(route
, l
, dhcp6_route_remove_callback
);
1336 int manager_dhcp6_prefix_remove_all(Manager
*m
, Link
*link
) {
1339 struct in6_addr
*addr
;
1341 assert_return(m
, -EINVAL
);
1342 assert_return(link
, -EINVAL
);
1344 HASHMAP_FOREACH_KEY(l
, addr
, m
->dhcp6_prefixes
, i
) {
1348 (void) manager_dhcp6_prefix_remove(m
, addr
);
1354 static void dhcp6_prefixes_hash_func(const void *p
, struct siphash
*state
) {
1355 const struct in6_addr
*addr
= p
;
1359 siphash24_compress(addr
, sizeof(*addr
), state
);
1362 static int dhcp6_prefixes_compare_func(const void *_a
, const void *_b
) {
1363 const struct in6_addr
*a
= _a
, *b
= _b
;
1365 return memcmp(a
, b
, sizeof(*a
));
1368 static const struct hash_ops dhcp6_prefixes_hash_ops
= {
1369 .hash
= dhcp6_prefixes_hash_func
,
1370 .compare
= dhcp6_prefixes_compare_func
,
1373 int manager_new(Manager
**ret
) {
1374 _cleanup_(manager_freep
) Manager
*m
= NULL
;
1377 m
= new0(Manager
, 1);
1381 m
->state_file
= strdup("/run/systemd/netif/state");
1385 r
= sd_event_default(&m
->event
);
1389 (void) sd_event_set_watchdog(m
->event
, true);
1390 (void) sd_event_add_signal(m
->event
, NULL
, SIGTERM
, NULL
, NULL
);
1391 (void) sd_event_add_signal(m
->event
, NULL
, SIGINT
, NULL
, NULL
);
1393 r
= sd_event_add_post(m
->event
, NULL
, manager_dirty_handler
, m
);
1397 r
= manager_connect_rtnl(m
);
1401 r
= manager_connect_genl(m
);
1405 r
= manager_connect_udev(m
);
1409 m
->netdevs
= hashmap_new(&string_hash_ops
);
1413 LIST_HEAD_INIT(m
->networks
);
1415 r
= sd_resolve_default(&m
->resolve
);
1419 r
= sd_resolve_attach_event(m
->resolve
, m
->event
, 0);
1423 r
= setup_default_address_pool(m
);
1427 m
->dhcp6_prefixes
= hashmap_new(&dhcp6_prefixes_hash_ops
);
1428 if (!m
->dhcp6_prefixes
)
1431 m
->duid
.type
= DUID_TYPE_EN
;
1433 (void) routing_policy_load_rules(m
->state_file
, &m
->rules_saved
);
1440 void manager_free(Manager
*m
) {
1449 free(m
->state_file
);
1451 while ((network
= m
->networks
))
1452 network_free(network
);
1454 while ((link
= hashmap_first(m
->dhcp6_prefixes
)))
1456 hashmap_free(m
->dhcp6_prefixes
);
1458 while ((link
= hashmap_first(m
->links
)))
1460 hashmap_free(m
->links
);
1462 hashmap_free(m
->networks_by_name
);
1464 while ((netdev
= hashmap_first(m
->netdevs
)))
1465 netdev_unref(netdev
);
1466 hashmap_free(m
->netdevs
);
1468 while ((pool
= m
->address_pools
))
1469 address_pool_free(pool
);
1472 set_free(m
->rules_foreign
);
1474 set_free_with_destructor(m
->rules_saved
, routing_policy_rule_free
);
1476 sd_netlink_unref(m
->rtnl
);
1477 sd_netlink_unref(m
->genl
);
1478 sd_event_unref(m
->event
);
1480 sd_resolve_unref(m
->resolve
);
1482 sd_event_source_unref(m
->udev_event_source
);
1483 udev_monitor_unref(m
->udev_monitor
);
1484 udev_unref(m
->udev
);
1486 sd_bus_unref(m
->bus
);
1488 free(m
->dynamic_timezone
);
1489 free(m
->dynamic_hostname
);
1494 int manager_start(Manager
*m
) {
1500 /* The dirty handler will deal with future serialization, but the first one
1501 must be done explicitly. */
1505 HASHMAP_FOREACH(link
, m
->links
, i
)
1511 int manager_load_config(Manager
*m
) {
1514 /* update timestamp */
1515 paths_check_timestamp(network_dirs
, &m
->network_dirs_ts_usec
, true);
1521 r
= network_load(m
);
1528 bool manager_should_reload(Manager
*m
) {
1529 return paths_check_timestamp(network_dirs
, &m
->network_dirs_ts_usec
, false);
1532 int manager_rtnl_enumerate_links(Manager
*m
) {
1533 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
, *reply
= NULL
;
1534 sd_netlink_message
*link
;
1540 r
= sd_rtnl_message_new_link(m
->rtnl
, &req
, RTM_GETLINK
, 0);
1544 r
= sd_netlink_message_request_dump(req
, true);
1548 r
= sd_netlink_call(m
->rtnl
, req
, 0, &reply
);
1552 for (link
= reply
; link
; link
= sd_netlink_message_next(link
)) {
1555 m
->enumerating
= true;
1557 k
= manager_rtnl_process_link(m
->rtnl
, link
, m
);
1561 m
->enumerating
= false;
1567 int manager_rtnl_enumerate_addresses(Manager
*m
) {
1568 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
, *reply
= NULL
;
1569 sd_netlink_message
*addr
;
1575 r
= sd_rtnl_message_new_addr(m
->rtnl
, &req
, RTM_GETADDR
, 0, 0);
1579 r
= sd_netlink_message_request_dump(req
, true);
1583 r
= sd_netlink_call(m
->rtnl
, req
, 0, &reply
);
1587 for (addr
= reply
; addr
; addr
= sd_netlink_message_next(addr
)) {
1590 m
->enumerating
= true;
1592 k
= manager_rtnl_process_address(m
->rtnl
, addr
, m
);
1596 m
->enumerating
= false;
1602 int manager_rtnl_enumerate_routes(Manager
*m
) {
1603 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
, *reply
= NULL
;
1604 sd_netlink_message
*route
;
1610 r
= sd_rtnl_message_new_route(m
->rtnl
, &req
, RTM_GETROUTE
, 0, 0);
1614 r
= sd_netlink_message_request_dump(req
, true);
1618 r
= sd_netlink_call(m
->rtnl
, req
, 0, &reply
);
1622 for (route
= reply
; route
; route
= sd_netlink_message_next(route
)) {
1625 m
->enumerating
= true;
1627 k
= manager_rtnl_process_route(m
->rtnl
, route
, m
);
1631 m
->enumerating
= false;
1637 int manager_rtnl_enumerate_rules(Manager
*m
) {
1638 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
, *reply
= NULL
;
1639 sd_netlink_message
*rule
;
1645 r
= sd_rtnl_message_new_routing_policy_rule(m
->rtnl
, &req
, RTM_GETRULE
, 0);
1649 r
= sd_netlink_message_request_dump(req
, true);
1653 r
= sd_netlink_call(m
->rtnl
, req
, 0, &reply
);
1655 if (r
== -EOPNOTSUPP
) {
1656 log_debug("FIB Rules are not supported by the kernel. Ignoring.");
1663 for (rule
= reply
; rule
; rule
= sd_netlink_message_next(rule
)) {
1666 m
->enumerating
= true;
1668 k
= manager_rtnl_process_rule(m
->rtnl
, rule
, m
);
1672 m
->enumerating
= false;
1678 int manager_address_pool_acquire(Manager
*m
, int family
, unsigned prefixlen
, union in_addr_union
*found
) {
1683 assert(prefixlen
> 0);
1686 LIST_FOREACH(address_pools
, p
, m
->address_pools
) {
1687 if (p
->family
!= family
)
1690 r
= address_pool_acquire(p
, prefixlen
, found
);
1698 Link
* manager_find_uplink(Manager
*m
, Link
*exclude
) {
1699 _cleanup_free_
struct local_address
*gateways
= NULL
;
1704 /* Looks for a suitable "uplink", via black magic: an
1705 * interface that is up and where the default route with the
1706 * highest priority points to. */
1708 n
= local_gateways(m
->rtnl
, 0, AF_UNSPEC
, &gateways
);
1710 log_warning_errno(n
, "Failed to determine list of default gateways: %m");
1714 for (i
= 0; i
< n
; i
++) {
1717 link
= hashmap_get(m
->links
, INT_TO_PTR(gateways
[i
].ifindex
));
1719 log_debug("Weird, found a gateway for a link we don't know. Ignoring.");
1723 if (link
== exclude
)
1726 if (link
->operstate
< LINK_OPERSTATE_ROUTABLE
)
1735 void manager_dirty(Manager
*manager
) {
1738 /* the serialized state in /run is no longer up-to-date */
1739 manager
->dirty
= true;
1742 static int set_hostname_handler(sd_bus_message
*m
, void *userdata
, sd_bus_error
*ret_error
) {
1743 Manager
*manager
= userdata
;
1744 const sd_bus_error
*e
;
1749 e
= sd_bus_message_get_error(m
);
1751 log_warning_errno(sd_bus_error_get_errno(e
), "Could not set hostname: %s", e
->message
);
1756 int manager_set_hostname(Manager
*m
, const char *hostname
) {
1759 log_debug("Setting transient hostname: '%s'", strna(hostname
));
1761 if (free_and_strdup(&m
->dynamic_hostname
, hostname
) < 0)
1764 if (!m
->bus
|| sd_bus_is_ready(m
->bus
) <= 0) {
1765 log_debug("Not connected to system bus, setting hostname later.");
1769 r
= sd_bus_call_method_async(
1772 "org.freedesktop.hostname1",
1773 "/org/freedesktop/hostname1",
1774 "org.freedesktop.hostname1",
1776 set_hostname_handler
,
1783 return log_error_errno(r
, "Could not set transient hostname: %m");
1788 static int set_timezone_handler(sd_bus_message
*m
, void *userdata
, sd_bus_error
*ret_error
) {
1789 Manager
*manager
= userdata
;
1790 const sd_bus_error
*e
;
1795 e
= sd_bus_message_get_error(m
);
1797 log_warning_errno(sd_bus_error_get_errno(e
), "Could not set timezone: %s", e
->message
);
1802 int manager_set_timezone(Manager
*m
, const char *tz
) {
1808 log_debug("Setting system timezone: '%s'", tz
);
1809 if (free_and_strdup(&m
->dynamic_timezone
, tz
) < 0)
1812 if (!m
->bus
|| sd_bus_is_ready(m
->bus
) <= 0) {
1813 log_debug("Not connected to system bus, setting timezone later.");
1817 r
= sd_bus_call_method_async(
1820 "org.freedesktop.timedate1",
1821 "/org/freedesktop/timedate1",
1822 "org.freedesktop.timedate1",
1824 set_timezone_handler
,
1830 return log_error_errno(r
, "Could not set timezone: %m");