1 /* SPDX-License-Identifier: LGPL-2.1-or-later */
3 #include <linux/filter.h>
4 #include <linux/nl80211.h>
5 #include <sys/socket.h>
9 #include "sd-netlink.h"
10 #include "sd-resolve.h"
12 #include "alloc-util.h"
13 #include "bus-error.h"
14 #include "bus-locator.h"
15 #include "bus-log-control-api.h"
16 #include "bus-object.h"
18 #include "capability-util.h"
19 #include "common-signal.h"
20 #include "daemon-util.h"
21 #include "device-private.h"
22 #include "device-util.h"
24 #include "errno-util.h"
26 #include "firewall-util.h"
27 #include "initrd-util.h"
28 #include "mount-util.h"
29 #include "netlink-util.h"
30 #include "networkd-address.h"
31 #include "networkd-address-label.h"
32 #include "networkd-address-pool.h"
33 #include "networkd-link.h"
34 #include "networkd-manager.h"
35 #include "networkd-manager-bus.h"
36 #include "networkd-manager-varlink.h"
37 #include "networkd-neighbor.h"
38 #include "networkd-nexthop.h"
39 #include "networkd-queue.h"
40 #include "networkd-route.h"
41 #include "networkd-routing-policy-rule.h"
42 #include "networkd-serialize.h"
43 #include "networkd-speed-meter.h"
44 #include "networkd-state-file.h"
45 #include "networkd-wifi.h"
46 #include "networkd-wiphy.h"
47 #include "ordered-set.h"
50 #include "stat-util.h"
51 #include "string-util.h"
55 #include "udev-util.h"
57 /* use 128 MB for receive socket kernel queue. */
58 #define RCVBUF_SIZE (128*1024*1024)
60 static int match_prepare_for_sleep(sd_bus_message
*message
, void *userdata
, sd_bus_error
*ret_error
) {
61 Manager
*m
= ASSERT_PTR(userdata
);
67 r
= sd_bus_message_read(message
, "b", &b
);
69 bus_log_parse_error(r
);
76 log_debug("Coming back from suspend, reconfiguring all connections...");
78 HASHMAP_FOREACH(link
, m
->links_by_index
)
79 (void) link_reconfigure(link
, LINK_RECONFIGURE_UNCONDITIONALLY
);
84 static int on_connected(sd_bus_message
*message
, void *userdata
, sd_bus_error
*ret_error
) {
85 Manager
*m
= ASSERT_PTR(userdata
);
89 /* Did we get a timezone or transient hostname from DHCP while D-Bus wasn't up yet? */
90 if (m
->dynamic_hostname
)
91 (void) manager_set_hostname(m
, m
->dynamic_hostname
);
92 if (m
->dynamic_timezone
)
93 (void) manager_set_timezone(m
, m
->dynamic_timezone
);
94 if (m
->product_uuid_requested
)
95 (void) manager_request_product_uuid(m
);
100 static int manager_connect_bus(Manager
*m
) {
106 r
= bus_open_system_watch_bind_with_description(&m
->bus
, "bus-api-network");
108 return log_error_errno(r
, "Failed to connect to bus: %m");
110 r
= bus_add_implementation(m
->bus
, &manager_object
, m
);
114 r
= bus_log_control_api_register(m
->bus
);
118 r
= sd_bus_request_name_async(m
->bus
, NULL
, "org.freedesktop.network1", 0, NULL
, NULL
);
120 return log_error_errno(r
, "Failed to request name: %m");
122 r
= sd_bus_attach_event(m
->bus
, m
->event
, 0);
124 return log_error_errno(r
, "Failed to attach bus to event loop: %m");
126 r
= sd_bus_match_signal_async(
129 "org.freedesktop.DBus.Local",
131 "org.freedesktop.DBus.Local",
133 on_connected
, NULL
, m
);
135 return log_error_errno(r
, "Failed to request match on Connected signal: %m");
137 r
= bus_match_signal_async(
142 match_prepare_for_sleep
, NULL
, m
);
144 log_warning_errno(r
, "Failed to request match for PrepareForSleep, ignoring: %m");
149 static int manager_process_uevent(sd_device_monitor
*monitor
, sd_device
*device
, void *userdata
) {
150 Manager
*m
= ASSERT_PTR(userdata
);
151 sd_device_action_t action
;
156 r
= sd_device_get_action(device
, &action
);
158 return log_device_warning_errno(device
, r
, "Failed to get udev action, ignoring: %m");
160 if (device_in_subsystem(device
, "net") > 0)
161 r
= manager_udev_process_link(m
, device
, action
);
162 else if (device_in_subsystem(device
, "ieee80211") > 0)
163 r
= manager_udev_process_wiphy(m
, device
, action
);
164 else if (device_in_subsystem(device
, "rfkill") > 0)
165 r
= manager_udev_process_rfkill(m
, device
, action
);
167 log_device_warning_errno(device
, r
, "Failed to process \"%s\" uevent, ignoring: %m",
168 device_action_to_string(action
));
173 static int manager_connect_udev(Manager
*m
) {
176 /* udev does not initialize devices inside containers, so we rely on them being already
177 * initialized before entering the container. */
178 if (!udev_available())
181 r
= sd_device_monitor_new(&m
->device_monitor
);
183 return log_error_errno(r
, "Failed to initialize device monitor: %m");
185 r
= sd_device_monitor_filter_add_match_subsystem_devtype(m
->device_monitor
, "net", NULL
);
187 return log_error_errno(r
, "Could not add device monitor filter for net subsystem: %m");
189 r
= sd_device_monitor_filter_add_match_subsystem_devtype(m
->device_monitor
, "ieee80211", NULL
);
191 return log_error_errno(r
, "Could not add device monitor filter for ieee80211 subsystem: %m");
193 r
= sd_device_monitor_filter_add_match_subsystem_devtype(m
->device_monitor
, "rfkill", NULL
);
195 return log_error_errno(r
, "Could not add device monitor filter for rfkill subsystem: %m");
197 r
= sd_device_monitor_attach_event(m
->device_monitor
, m
->event
);
199 return log_error_errno(r
, "Failed to attach event to device monitor: %m");
201 r
= sd_device_monitor_start(m
->device_monitor
, manager_process_uevent
, m
);
203 return log_error_errno(r
, "Failed to start device monitor: %m");
208 static int manager_listen_fds(Manager
*m
, int *ret_rtnl_fd
, int *ret_varlink_fd
) {
209 _cleanup_strv_free_
char **names
= NULL
;
210 int n
, rtnl_fd
= -EBADF
, varlink_fd
= -EBADF
;
214 assert(ret_varlink_fd
);
216 n
= sd_listen_fds_with_names(/* unset_environment = */ true, &names
);
220 for (int i
= 0; i
< n
; i
++) {
221 int fd
= i
+ SD_LISTEN_FDS_START
;
223 if (sd_is_socket(fd
, AF_NETLINK
, SOCK_RAW
, -1) > 0) {
225 log_debug("Received multiple netlink sockets, ignoring.");
233 if (streq(names
[i
], "varlink")) {
238 if (manager_set_serialization_fd(m
, fd
, names
[i
]) >= 0)
241 if (manager_add_tuntap_fd(m
, fd
, names
[i
]) >= 0)
248 close_and_notify_warn(fd
, names
[i
]);
251 *ret_rtnl_fd
= rtnl_fd
;
252 *ret_varlink_fd
= varlink_fd
;
257 static int manager_connect_genl(Manager
*m
) {
262 r
= sd_genl_socket_open(&m
->genl
);
266 r
= sd_netlink_increase_rxbuf(m
->genl
, RCVBUF_SIZE
);
268 log_warning_errno(r
, "Failed to increase receive buffer size for general netlink socket, ignoring: %m");
270 r
= sd_netlink_attach_event(m
->genl
, m
->event
, 0);
274 /* If the kernel is built without CONFIG_WIRELESS, the below will fail with -EOPNOTSUPP. */
275 r
= genl_add_match(m
->genl
, NULL
, NL80211_GENL_NAME
, NL80211_MULTICAST_GROUP_CONFIG
, 0,
276 &manager_genl_process_nl80211_config
, NULL
, m
, "network-genl_process_nl80211_config");
277 if (r
< 0 && r
!= -EOPNOTSUPP
)
280 r
= genl_add_match(m
->genl
, NULL
, NL80211_GENL_NAME
, NL80211_MULTICAST_GROUP_MLME
, 0,
281 &manager_genl_process_nl80211_mlme
, NULL
, m
, "network-genl_process_nl80211_mlme");
282 if (r
< 0 && r
!= -EOPNOTSUPP
)
288 static int manager_setup_rtnl_filter(Manager
*manager
) {
289 struct sock_filter filter
[] = {
290 /* Check the packet length. */
291 BPF_STMT(BPF_LD
+ BPF_W
+ BPF_LEN
, 0), /* A <- packet length */
292 BPF_JUMP(BPF_JMP
+ BPF_JGE
+ BPF_K
, sizeof(struct nlmsghdr
), 1, 0), /* A (packet length) >= sizeof(struct nlmsghdr) ? */
293 BPF_STMT(BPF_RET
+ BPF_K
, 0), /* reject */
294 /* Always accept multipart message. */
295 BPF_STMT(BPF_LD
+ BPF_H
+ BPF_ABS
, offsetof(struct nlmsghdr
, nlmsg_flags
)), /* A <- message flags */
296 BPF_JUMP(BPF_JMP
+ BPF_JSET
+ BPF_K
, htobe16(NLM_F_MULTI
), 0, 1), /* message flags has NLM_F_MULTI ? */
297 BPF_STMT(BPF_RET
+ BPF_K
, UINT32_MAX
), /* accept */
298 /* Accept all message types except for RTM_NEWNEIGH or RTM_DELNEIGH. */
299 BPF_STMT(BPF_LD
+ BPF_H
+ BPF_ABS
, offsetof(struct nlmsghdr
, nlmsg_type
)), /* A <- message type */
300 BPF_JUMP(BPF_JMP
+ BPF_JEQ
+ BPF_K
, htobe16(RTM_NEWNEIGH
), 2, 0), /* message type == RTM_NEWNEIGH ? */
301 BPF_JUMP(BPF_JMP
+ BPF_JEQ
+ BPF_K
, htobe16(RTM_DELNEIGH
), 1, 0), /* message type == RTM_DELNEIGH ? */
302 BPF_STMT(BPF_RET
+ BPF_K
, UINT32_MAX
), /* accept */
303 /* Check the packet length. */
304 BPF_STMT(BPF_LD
+ BPF_W
+ BPF_LEN
, 0), /* A <- packet length */
305 BPF_JUMP(BPF_JMP
+ BPF_JGE
+ BPF_K
, sizeof(struct nlmsghdr
) + sizeof(struct ndmsg
), 1, 0),
306 /* packet length >= sizeof(struct nlmsghdr) + sizeof(struct ndmsg) ? */
307 BPF_STMT(BPF_RET
+ BPF_K
, 0), /* reject */
308 /* Reject the message when the neighbor state does not have NUD_PERMANENT flag. */
309 BPF_STMT(BPF_LD
+ BPF_H
+ BPF_ABS
, sizeof(struct nlmsghdr
) + offsetof(struct ndmsg
, ndm_state
)),
310 /* A <- neighbor state */
311 BPF_JUMP(BPF_JMP
+ BPF_JSET
+ BPF_K
, htobe16(NUD_PERMANENT
), 1, 0), /* neighbor state has NUD_PERMANENT ? */
312 BPF_STMT(BPF_RET
+ BPF_K
, 0), /* reject */
313 BPF_STMT(BPF_RET
+ BPF_K
, UINT32_MAX
), /* accept */
317 assert(manager
->rtnl
);
319 return sd_netlink_attach_filter(manager
->rtnl
, ELEMENTSOF(filter
), filter
);
322 static int manager_connect_rtnl(Manager
*m
, int fd
) {
323 _unused_ _cleanup_close_
int fd_close
= fd
;
328 /* This takes input fd. */
331 r
= sd_netlink_open(&m
->rtnl
);
333 r
= sd_netlink_open_fd(&m
->rtnl
, fd
);
338 /* Bump receiver buffer, but only if we are not called via socket activation, as in that
339 * case systemd sets the receive buffer size for us, and the value in the .socket unit
340 * should take full effect. */
342 r
= sd_netlink_increase_rxbuf(m
->rtnl
, RCVBUF_SIZE
);
344 log_warning_errno(r
, "Failed to increase receive buffer size for rtnl socket, ignoring: %m");
347 r
= sd_netlink_attach_event(m
->rtnl
, m
->event
, 0);
351 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_NEWLINK
, &manager_rtnl_process_link
, NULL
, m
, "network-rtnl_process_link");
355 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_DELLINK
, &manager_rtnl_process_link
, NULL
, m
, "network-rtnl_process_link");
359 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_NEWQDISC
, &manager_rtnl_process_qdisc
, NULL
, m
, "network-rtnl_process_qdisc");
363 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_DELQDISC
, &manager_rtnl_process_qdisc
, NULL
, m
, "network-rtnl_process_qdisc");
367 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_NEWTCLASS
, &manager_rtnl_process_tclass
, NULL
, m
, "network-rtnl_process_tclass");
371 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_DELTCLASS
, &manager_rtnl_process_tclass
, NULL
, m
, "network-rtnl_process_tclass");
375 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_NEWADDR
, &manager_rtnl_process_address
, NULL
, m
, "network-rtnl_process_address");
379 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_DELADDR
, &manager_rtnl_process_address
, NULL
, m
, "network-rtnl_process_address");
383 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_NEWNEIGH
, &manager_rtnl_process_neighbor
, NULL
, m
, "network-rtnl_process_neighbor");
387 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_DELNEIGH
, &manager_rtnl_process_neighbor
, NULL
, m
, "network-rtnl_process_neighbor");
391 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_NEWROUTE
, &manager_rtnl_process_route
, NULL
, m
, "network-rtnl_process_route");
395 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_DELROUTE
, &manager_rtnl_process_route
, NULL
, m
, "network-rtnl_process_route");
399 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_NEWRULE
, &manager_rtnl_process_rule
, NULL
, m
, "network-rtnl_process_rule");
403 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_DELRULE
, &manager_rtnl_process_rule
, NULL
, m
, "network-rtnl_process_rule");
407 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_NEWNEXTHOP
, &manager_rtnl_process_nexthop
, NULL
, m
, "network-rtnl_process_nexthop");
411 r
= netlink_add_match(m
->rtnl
, NULL
, RTM_DELNEXTHOP
, &manager_rtnl_process_nexthop
, NULL
, m
, "network-rtnl_process_nexthop");
415 return manager_setup_rtnl_filter(m
);
418 static int manager_post_handler(sd_event_source
*s
, void *userdata
) {
419 Manager
*manager
= ASSERT_PTR(userdata
);
421 /* To release dynamic leases, we need to process queued remove requests before stopping networkd.
422 * This is especially important when KeepConfiguration=no. See issue #34837. */
423 (void) manager_process_remove_requests(manager
);
425 switch (manager
->state
) {
426 case MANAGER_RUNNING
:
427 (void) manager_process_requests(manager
);
428 (void) manager_clean_all(manager
);
431 case MANAGER_TERMINATING
:
432 case MANAGER_RESTARTING
:
433 if (!ordered_set_isempty(manager
->remove_request_queue
))
434 return 0; /* There are some unissued remove requests. */
436 if (netlink_get_reply_callback_count(manager
->rtnl
) > 0 ||
437 netlink_get_reply_callback_count(manager
->genl
) > 0 ||
438 fw_ctx_get_reply_callback_count(manager
->fw_ctx
) > 0)
439 return 0; /* There are some message calls waiting for their replies. */
441 (void) manager_serialize(manager
);
442 manager
->state
= MANAGER_STOPPED
;
443 return sd_event_exit(sd_event_source_get_event(s
), 0);
446 assert_not_reached();
452 static int manager_stop(Manager
*manager
, ManagerState state
) {
454 assert(IN_SET(state
, MANAGER_TERMINATING
, MANAGER_RESTARTING
));
456 if (manager
->state
!= MANAGER_RUNNING
) {
457 log_debug("Already terminating or restarting systemd-networkd, refusing further operation request.");
462 case MANAGER_TERMINATING
:
463 log_debug("Terminate operation initiated.");
465 case MANAGER_RESTARTING
:
466 log_debug("Restart operation initiated.");
469 assert_not_reached();
472 manager
->state
= state
;
475 HASHMAP_FOREACH(link
, manager
->links_by_index
)
476 (void) link_stop_engines(link
, /* may_keep_dynamic = */ true);
481 static int signal_terminate_callback(sd_event_source
*s
, const struct signalfd_siginfo
*si
, void *userdata
) {
482 return manager_stop(userdata
, MANAGER_TERMINATING
);
485 static int signal_restart_callback(sd_event_source
*s
, const struct signalfd_siginfo
*si
, void *userdata
) {
486 return manager_stop(userdata
, MANAGER_RESTARTING
);
489 static int signal_reload_callback(sd_event_source
*s
, const struct signalfd_siginfo
*si
, void *userdata
) {
490 Manager
*m
= ASSERT_PTR(userdata
);
492 (void) manager_reload(m
, /* message = */ NULL
);
497 static int manager_set_keep_configuration(Manager
*m
) {
503 log_debug("Running in initrd, keep dynamically assigned configurations on stopping networkd by default.");
504 m
->keep_configuration
= KEEP_CONFIGURATION_DYNAMIC_ON_STOP
;
508 r
= path_is_network_fs_harder("/");
510 log_warning_errno(r
, "Failed to detect if root is network filesystem, assuming not: %m");
514 m
->keep_configuration
= _KEEP_CONFIGURATION_INVALID
;
518 log_debug("Running on network filesystem, enabling KeepConfiguration= by default.");
519 m
->keep_configuration
= KEEP_CONFIGURATION_YES
;
523 int manager_setup(Manager
*m
) {
524 _cleanup_close_
int rtnl_fd
= -EBADF
, varlink_fd
= -EBADF
;
529 r
= sd_event_default(&m
->event
);
533 (void) sd_event_set_watchdog(m
->event
, true);
534 (void) sd_event_add_signal(m
->event
, NULL
, SIGTERM
| SD_EVENT_SIGNAL_PROCMASK
, signal_terminate_callback
, m
);
535 (void) sd_event_add_signal(m
->event
, NULL
, SIGINT
| SD_EVENT_SIGNAL_PROCMASK
, signal_terminate_callback
, m
);
536 (void) sd_event_add_signal(m
->event
, NULL
, SIGUSR2
| SD_EVENT_SIGNAL_PROCMASK
, signal_restart_callback
, m
);
537 (void) sd_event_add_signal(m
->event
, NULL
, SIGHUP
| SD_EVENT_SIGNAL_PROCMASK
, signal_reload_callback
, m
);
538 (void) sd_event_add_signal(m
->event
, NULL
, (SIGRTMIN
+18) | SD_EVENT_SIGNAL_PROCMASK
, sigrtmin18_handler
, NULL
);
540 r
= sd_event_add_memory_pressure(m
->event
, NULL
, NULL
, NULL
);
542 log_debug_errno(r
, "Failed allocate memory pressure event source, ignoring: %m");
544 r
= sd_event_add_post(m
->event
, NULL
, manager_post_handler
, m
);
548 r
= manager_listen_fds(m
, &rtnl_fd
, &varlink_fd
);
552 r
= manager_connect_rtnl(m
, TAKE_FD(rtnl_fd
));
556 r
= manager_connect_genl(m
);
563 r
= manager_connect_varlink(m
, TAKE_FD(varlink_fd
));
567 r
= manager_connect_bus(m
);
571 r
= manager_connect_udev(m
);
575 r
= sd_resolve_default(&m
->resolve
);
579 r
= sd_resolve_attach_event(m
->resolve
, m
->event
, 0);
583 r
= address_pool_setup_default(m
);
587 r
= manager_set_keep_configuration(m
);
591 m
->state_file
= strdup("/run/systemd/netif/state");
598 static int persistent_storage_open(void) {
599 _cleanup_close_
int fd
= -EBADF
;
602 r
= getenv_bool("SYSTEMD_NETWORK_PERSISTENT_STORAGE_READY");
603 if (r
< 0 && r
!= -ENXIO
)
604 return log_debug_errno(r
, "Failed to parse $SYSTEMD_NETWORK_PERSISTENT_STORAGE_READY environment variable, ignoring: %m");
608 fd
= open("/var/lib/systemd/network/", O_CLOEXEC
| O_DIRECTORY
);
610 return log_debug_errno(errno
, "Failed to open %s, ignoring: %m", "/var/lib/systemd/network/");
612 r
= fd_is_read_only_fs(fd
);
614 return log_debug_errno(r
, "Failed to check if /var/lib/systemd/network/ is writable: %m");
616 return log_debug_errno(SYNTHETIC_ERRNO(EROFS
), "The directory /var/lib/systemd/network/ is on read-only filesystem.");
621 int manager_new(Manager
**ret
, bool test_mode
) {
622 _cleanup_(manager_freep
) Manager
*m
= NULL
;
629 .keep_configuration
= _KEEP_CONFIGURATION_INVALID
,
630 .ipv6_privacy_extensions
= IPV6_PRIVACY_EXTENSIONS_NO
,
631 .test_mode
= test_mode
,
632 .speed_meter_interval_usec
= SPEED_METER_DEFAULT_TIME_INTERVAL
,
633 .online_state
= _LINK_ONLINE_STATE_INVALID
,
634 .manage_foreign_routes
= true,
635 .manage_foreign_rules
= true,
636 .manage_foreign_nexthops
= true,
637 .ethtool_fd
= -EBADF
,
638 .persistent_storage_fd
= persistent_storage_open(),
639 .dhcp_use_domains
= _USE_DOMAINS_INVALID
,
640 .dhcp6_use_domains
= _USE_DOMAINS_INVALID
,
641 .ndisc_use_domains
= _USE_DOMAINS_INVALID
,
642 .dhcp_client_identifier
= DHCP_CLIENT_ID_DUID
,
643 .dhcp_duid
.type
= DUID_TYPE_EN
,
644 .dhcp6_duid
.type
= DUID_TYPE_EN
,
645 .duid_product_uuid
.type
= DUID_TYPE_UUID
,
646 .dhcp_server_persist_leases
= DHCP_SERVER_PERSIST_LEASES_YES
,
647 .serialization_fd
= -EBADF
,
648 .ip_forwarding
= { -1, -1, },
658 Manager
* manager_free(Manager
*m
) {
662 manager_remove_sysctl_monitor(m
);
666 m
->request_queue
= ordered_set_free(m
->request_queue
);
667 m
->remove_request_queue
= ordered_set_free(m
->remove_request_queue
);
669 m
->new_wlan_ifindices
= set_free(m
->new_wlan_ifindices
);
671 m
->dirty_links
= set_free(m
->dirty_links
);
672 m
->links_by_name
= hashmap_free(m
->links_by_name
);
673 m
->links_by_hw_addr
= hashmap_free(m
->links_by_hw_addr
);
674 m
->links_by_dhcp_pd_subnet_prefix
= hashmap_free(m
->links_by_dhcp_pd_subnet_prefix
);
675 m
->links_by_index
= hashmap_free(m
->links_by_index
);
677 m
->dhcp_pd_subnet_ids
= set_free(m
->dhcp_pd_subnet_ids
);
678 m
->networks
= ordered_hashmap_free(m
->networks
);
680 /* The same object may be registered with multiple names, and netdev_detach() may drop multiple entries. */
681 for (NetDev
*n
; (n
= hashmap_first(m
->netdevs
)); )
683 m
->netdevs
= hashmap_free(m
->netdevs
);
685 m
->tuntap_fds_by_name
= hashmap_free(m
->tuntap_fds_by_name
);
687 m
->wiphy_by_name
= hashmap_free(m
->wiphy_by_name
);
688 m
->wiphy_by_index
= hashmap_free(m
->wiphy_by_index
);
690 ordered_set_free(m
->address_pools
);
692 hashmap_free(m
->route_table_names_by_number
);
693 hashmap_free(m
->route_table_numbers_by_name
);
697 sd_netlink_unref(m
->rtnl
);
698 sd_netlink_unref(m
->genl
);
699 sd_resolve_unref(m
->resolve
);
701 m
->routes
= set_free(m
->routes
);
703 m
->nexthops_by_id
= hashmap_free(m
->nexthops_by_id
);
704 m
->nexthop_ids
= set_free(m
->nexthop_ids
);
706 m
->address_labels_by_section
= hashmap_free(m
->address_labels_by_section
);
708 sd_event_source_unref(m
->speed_meter_event_source
);
709 sd_event_unref(m
->event
);
711 sd_device_monitor_unref(m
->device_monitor
);
713 manager_varlink_done(m
);
714 hashmap_free(m
->polkit_registry
);
715 sd_bus_flush_close_unref(m
->bus
);
717 free(m
->dynamic_timezone
);
718 free(m
->dynamic_hostname
);
720 safe_close(m
->ethtool_fd
);
721 safe_close(m
->persistent_storage_fd
);
723 m
->fw_ctx
= fw_ctx_free(m
->fw_ctx
);
725 m
->serialization_fd
= safe_close(m
->serialization_fd
);
730 int manager_start(Manager
*m
) {
736 log_debug("Starting...");
738 (void) manager_install_sysctl_monitor(m
);
740 /* Loading BPF programs requires CAP_SYS_ADMIN and CAP_BPF.
741 * Drop the capabilities here, regardless if the load succeeds or not. */
742 r
= drop_capability(CAP_SYS_ADMIN
);
744 log_warning_errno(r
, "Failed to drop CAP_SYS_ADMIN, ignoring: %m.");
746 r
= drop_capability(CAP_BPF
);
748 log_warning_errno(r
, "Failed to drop CAP_BPF, ignoring: %m.");
750 manager_set_sysctl(m
);
752 r
= manager_request_static_address_labels(m
);
756 r
= manager_start_speed_meter(m
);
758 return log_error_errno(r
, "Failed to initialize speed meter: %m");
760 HASHMAP_FOREACH(link
, m
->links_by_index
) {
761 if (link
->state
!= LINK_STATE_PENDING
)
764 r
= link_check_initialized(link
);
766 log_link_warning_errno(link
, r
, "Failed to check if link is initialized: %m");
767 link_enter_failed(link
);
771 /* The dirty handler will deal with future serialization, but the first one
772 must be done explicitly. */
776 log_warning_errno(r
, "Failed to update state file %s, ignoring: %m", m
->state_file
);
778 HASHMAP_FOREACH(link
, m
->links_by_index
) {
779 r
= link_save_and_clean(link
);
781 log_link_warning_errno(link
, r
, "Failed to update link state file %s, ignoring: %m", link
->state_file
);
784 log_debug("Started.");
788 int manager_load_config(Manager
*m
) {
791 log_debug("Loading...");
795 return log_debug_errno(r
, "Failed to load .netdev files: %m");
797 manager_clear_unmanaged_tuntap_fds(m
);
799 r
= network_load(m
, &m
->networks
);
801 return log_debug_errno(r
, "Failed to load .network files: %m");
803 r
= manager_build_dhcp_pd_subnet_ids(m
);
805 return log_debug_errno(r
, "Failed to build DHCP-PD subnet ID map: %m");
807 r
= manager_build_nexthop_ids(m
);
809 return log_debug_errno(r
, "Failed to build nexthop ID map: %m");
811 log_debug("Loaded.");
815 int manager_enumerate_internal(
818 sd_netlink_message
*req
,
819 int (*process
)(sd_netlink
*, sd_netlink_message
*, Manager
*)) {
821 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*reply
= NULL
;
829 r
= sd_netlink_message_set_request_dump(req
, true);
833 r
= sd_netlink_call(nl
, req
, 0, &reply
);
837 m
->enumerating
= true;
838 for (sd_netlink_message
*reply_one
= reply
; reply_one
; reply_one
= sd_netlink_message_next(reply_one
))
839 RET_GATHER(r
, process(nl
, reply_one
, m
));
840 m
->enumerating
= false;
845 static int manager_enumerate_links(Manager
*m
) {
846 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
;
852 r
= sd_rtnl_message_new_link(m
->rtnl
, &req
, RTM_GETLINK
, 0);
856 r
= manager_enumerate_internal(m
, m
->rtnl
, req
, manager_rtnl_process_link
);
860 req
= sd_netlink_message_unref(req
);
862 r
= sd_rtnl_message_new_link(m
->rtnl
, &req
, RTM_GETLINK
, 0);
866 r
= sd_rtnl_message_link_set_family(req
, AF_BRIDGE
);
870 return manager_enumerate_internal(m
, m
->rtnl
, req
, manager_rtnl_process_link
);
873 static int manager_enumerate_qdisc(Manager
*m
) {
874 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
;
880 r
= sd_rtnl_message_new_traffic_control(m
->rtnl
, &req
, RTM_GETQDISC
, 0, 0, 0);
884 return manager_enumerate_internal(m
, m
->rtnl
, req
, manager_rtnl_process_qdisc
);
887 static int manager_enumerate_tclass(Manager
*m
) {
894 /* TC class can be enumerated only per link. See tc_dump_tclass() in net/sched/sched_api.c. */
896 HASHMAP_FOREACH(link
, m
->links_by_index
)
897 RET_GATHER(r
, link_enumerate_tclass(link
, 0));
902 static int manager_enumerate_addresses(Manager
*m
) {
903 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
;
909 r
= sd_rtnl_message_new_addr(m
->rtnl
, &req
, RTM_GETADDR
, 0, 0);
913 return manager_enumerate_internal(m
, m
->rtnl
, req
, manager_rtnl_process_address
);
916 static int manager_enumerate_neighbors(Manager
*m
) {
917 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
;
923 r
= sd_rtnl_message_new_neigh(m
->rtnl
, &req
, RTM_GETNEIGH
, 0, AF_UNSPEC
);
927 return manager_enumerate_internal(m
, m
->rtnl
, req
, manager_rtnl_process_neighbor
);
930 static int manager_enumerate_routes(Manager
*m
) {
931 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
;
937 if (!m
->manage_foreign_routes
)
940 r
= sd_rtnl_message_new_route(m
->rtnl
, &req
, RTM_GETROUTE
, 0, 0);
944 return manager_enumerate_internal(m
, m
->rtnl
, req
, manager_rtnl_process_route
);
947 static int manager_enumerate_rules(Manager
*m
) {
948 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
;
954 if (!m
->manage_foreign_rules
)
957 r
= sd_rtnl_message_new_routing_policy_rule(m
->rtnl
, &req
, RTM_GETRULE
, 0);
961 return manager_enumerate_internal(m
, m
->rtnl
, req
, manager_rtnl_process_rule
);
964 static int manager_enumerate_nexthop(Manager
*m
) {
965 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
;
971 if (!m
->manage_foreign_nexthops
)
974 r
= sd_rtnl_message_new_nexthop(m
->rtnl
, &req
, RTM_GETNEXTHOP
, 0, 0);
978 return manager_enumerate_internal(m
, m
->rtnl
, req
, manager_rtnl_process_nexthop
);
981 static int manager_enumerate_nl80211_wiphy(Manager
*m
) {
982 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
;
988 r
= sd_genl_message_new(m
->genl
, NL80211_GENL_NAME
, NL80211_CMD_GET_WIPHY
, &req
);
992 return manager_enumerate_internal(m
, m
->genl
, req
, manager_genl_process_nl80211_wiphy
);
995 static int manager_enumerate_nl80211_config(Manager
*m
) {
996 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
;
1002 r
= sd_genl_message_new(m
->genl
, NL80211_GENL_NAME
, NL80211_CMD_GET_INTERFACE
, &req
);
1006 return manager_enumerate_internal(m
, m
->genl
, req
, manager_genl_process_nl80211_config
);
1009 static int manager_enumerate_nl80211_mlme(Manager
*m
) {
1016 HASHMAP_FOREACH(link
, m
->links_by_index
) {
1017 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
;
1019 if (link
->wlan_iftype
!= NL80211_IFTYPE_STATION
)
1022 r
= sd_genl_message_new(m
->genl
, NL80211_GENL_NAME
, NL80211_CMD_GET_STATION
, &req
);
1026 r
= sd_netlink_message_append_u32(req
, NL80211_ATTR_IFINDEX
, link
->ifindex
);
1030 r
= manager_enumerate_internal(m
, m
->genl
, req
, manager_genl_process_nl80211_mlme
);
1038 int manager_enumerate(Manager
*m
) {
1041 log_debug("Enumerating...");
1043 r
= manager_enumerate_links(m
);
1045 return log_error_errno(r
, "Could not enumerate links: %m");
1047 /* If the kernel is built without CONFIG_NET_SCHED, the below will fail with -EOPNOTSUPP. */
1048 r
= manager_enumerate_qdisc(m
);
1049 if (r
== -EOPNOTSUPP
)
1050 log_debug_errno(r
, "Could not enumerate QDiscs, ignoring: %m");
1052 return log_error_errno(r
, "Could not enumerate QDisc: %m");
1054 /* If the kernel is built without CONFIG_NET_CLS, the below will fail with -EOPNOTSUPP. */
1055 r
= manager_enumerate_tclass(m
);
1056 if (r
== -EOPNOTSUPP
)
1057 log_debug_errno(r
, "Could not enumerate TClasses, ignoring: %m");
1059 return log_error_errno(r
, "Could not enumerate TClass: %m");
1061 r
= manager_enumerate_addresses(m
);
1063 return log_error_errno(r
, "Could not enumerate addresses: %m");
1065 r
= manager_enumerate_neighbors(m
);
1067 return log_error_errno(r
, "Could not enumerate neighbors: %m");
1069 r
= manager_enumerate_nexthop(m
);
1071 return log_error_errno(r
, "Could not enumerate nexthops: %m");
1073 r
= manager_enumerate_routes(m
);
1075 return log_error_errno(r
, "Could not enumerate routes: %m");
1077 /* If the kernel is built without CONFIG_FIB_RULES, the below will fail with -EOPNOTSUPP. */
1078 r
= manager_enumerate_rules(m
);
1079 if (r
== -EOPNOTSUPP
)
1080 log_debug_errno(r
, "Could not enumerate routing policy rules, ignoring: %m");
1082 return log_error_errno(r
, "Could not enumerate routing policy rules: %m");
1084 /* If the kernel is built without CONFIG_WIRELESS, the below will fail with -EOPNOTSUPP. */
1085 r
= manager_enumerate_nl80211_wiphy(m
);
1086 if (r
== -EOPNOTSUPP
)
1087 log_debug_errno(r
, "Could not enumerate wireless LAN phy, ignoring: %m");
1089 return log_error_errno(r
, "Could not enumerate wireless LAN phy: %m");
1091 r
= manager_enumerate_nl80211_config(m
);
1092 if (r
== -EOPNOTSUPP
)
1093 log_debug_errno(r
, "Could not enumerate wireless LAN interfaces, ignoring: %m");
1095 return log_error_errno(r
, "Could not enumerate wireless LAN interfaces: %m");
1097 r
= manager_enumerate_nl80211_mlme(m
);
1098 if (r
== -EOPNOTSUPP
)
1099 log_debug_errno(r
, "Could not enumerate wireless LAN stations, ignoring: %m");
1101 return log_error_errno(r
, "Could not enumerate wireless LAN stations: %m");
1103 log_debug("Enumeration completed.");
1107 static int set_hostname_handler(sd_bus_message
*m
, void *userdata
, sd_bus_error
*ret_error
) {
1108 const sd_bus_error
*e
;
1113 e
= sd_bus_message_get_error(m
);
1115 r
= sd_bus_error_get_errno(e
);
1116 log_warning_errno(r
, "Could not set hostname: %s", bus_error_message(e
, r
));
1122 int manager_set_hostname(Manager
*m
, const char *hostname
) {
1125 log_debug("Setting transient hostname: '%s'", strna(hostname
));
1127 r
= free_and_strdup_warn(&m
->dynamic_hostname
, hostname
);
1131 if (sd_bus_is_ready(m
->bus
) <= 0) {
1132 log_debug("Not connected to system bus, setting system hostname later.");
1136 r
= bus_call_method_async(
1141 set_hostname_handler
,
1147 return log_error_errno(r
, "Could not set transient hostname: %m");
1152 static int set_timezone_handler(sd_bus_message
*m
, void *userdata
, sd_bus_error
*ret_error
) {
1153 const sd_bus_error
*e
;
1158 e
= sd_bus_message_get_error(m
);
1160 r
= sd_bus_error_get_errno(e
);
1161 log_warning_errno(r
, "Could not set timezone: %s", bus_error_message(e
, r
));
1167 int manager_set_timezone(Manager
*m
, const char *tz
) {
1173 log_debug("Setting system timezone: '%s'", tz
);
1174 r
= free_and_strdup_warn(&m
->dynamic_timezone
, tz
);
1178 if (sd_bus_is_ready(m
->bus
) <= 0) {
1179 log_debug("Not connected to system bus, setting system timezone later.");
1183 r
= bus_call_method_async(
1188 set_timezone_handler
,
1194 return log_error_errno(r
, "Could not set timezone: %m");
1199 int manager_reload(Manager
*m
, sd_bus_message
*message
) {
1205 log_debug("Reloading...");
1206 (void) notify_reloading();
1208 r
= netdev_reload(m
);
1210 log_debug_errno(r
, "Failed to reload .netdev files: %m");
1214 r
= network_reload(m
);
1216 log_debug_errno(r
, "Failed to reload .network files: %m");
1220 HASHMAP_FOREACH(link
, m
->links_by_index
)
1221 (void) link_reconfigure_full(link
, /* flags = */ 0, message
,
1222 /* counter = */ message
? &m
->reloading
: NULL
);
1224 log_debug("Reloaded.");
1227 (void) sd_notify(/* unset_environment= */ false, NOTIFY_READY_MESSAGE
);