]> git.ipfire.org Git - thirdparty/systemd.git/blob - src/network/networkd.c
Merge pull request #10407 from yuwata/netlink-slot
[thirdparty/systemd.git] / src / network / networkd.c
1 /* SPDX-License-Identifier: LGPL-2.1+ */
2
3 #include "sd-daemon.h"
4 #include "sd-event.h"
5
6 #include "capability-util.h"
7 #include "mkdir.h"
8 #include "networkd-conf.h"
9 #include "networkd-manager.h"
10 #include "signal-util.h"
11 #include "user-util.h"
12
13 int main(int argc, char *argv[]) {
14 _cleanup_(manager_freep) Manager *m = NULL;
15 const char *user = "systemd-network";
16 uid_t uid;
17 gid_t gid;
18 int r;
19
20 log_set_target(LOG_TARGET_AUTO);
21 log_parse_environment();
22 log_open();
23
24 umask(0022);
25
26 if (argc != 1) {
27 log_error("This program takes no arguments.");
28 r = -EINVAL;
29 goto out;
30 }
31
32 r = get_user_creds(&user, &uid, &gid, NULL, NULL, 0);
33 if (r < 0) {
34 log_error_errno(r, "Cannot resolve user name %s: %m", user);
35 goto out;
36 }
37
38 /* Create runtime directory. This is not necessary when networkd is
39 * started with "RuntimeDirectory=systemd/netif", or after
40 * systemd-tmpfiles-setup.service. */
41 r = mkdir_safe_label("/run/systemd/netif", 0755, uid, gid, MKDIR_WARN_MODE);
42 if (r < 0)
43 log_warning_errno(r, "Could not create runtime directory: %m");
44
45 /* Drop privileges, but only if we have been started as root. If we are not running as root we assume all
46 * privileges are already dropped. */
47 if (geteuid() == 0) {
48 r = drop_privileges(uid, gid,
49 (1ULL << CAP_NET_ADMIN) |
50 (1ULL << CAP_NET_BIND_SERVICE) |
51 (1ULL << CAP_NET_BROADCAST) |
52 (1ULL << CAP_NET_RAW));
53 if (r < 0)
54 goto out;
55 }
56
57 /* Always create the directories people can create inotify watches in.
58 * It is necessary to create the following subdirectories after drop_privileges()
59 * to support old kernels not supporting AmbientCapabilities=. */
60 r = mkdir_safe_label("/run/systemd/netif/links", 0755, uid, gid, MKDIR_WARN_MODE);
61 if (r < 0)
62 log_warning_errno(r, "Could not create runtime directory 'links': %m");
63
64 r = mkdir_safe_label("/run/systemd/netif/leases", 0755, uid, gid, MKDIR_WARN_MODE);
65 if (r < 0)
66 log_warning_errno(r, "Could not create runtime directory 'leases': %m");
67
68 r = mkdir_safe_label("/run/systemd/netif/lldp", 0755, uid, gid, MKDIR_WARN_MODE);
69 if (r < 0)
70 log_warning_errno(r, "Could not create runtime directory 'lldp': %m");
71
72 assert_se(sigprocmask_many(SIG_BLOCK, NULL, SIGTERM, SIGINT, -1) >= 0);
73
74 r = manager_new(&m);
75 if (r < 0) {
76 log_error_errno(r, "Could not create manager: %m");
77 goto out;
78 }
79
80 r = manager_connect_bus(m);
81 if (r < 0) {
82 log_error_errno(r, "Could not connect to bus: %m");
83 goto out;
84 }
85
86 r = manager_parse_config_file(m);
87 if (r < 0)
88 log_warning_errno(r, "Failed to parse configuration file: %m");
89
90 r = manager_load_config(m);
91 if (r < 0) {
92 log_error_errno(r, "Could not load configuration files: %m");
93 goto out;
94 }
95
96 r = manager_rtnl_enumerate_links(m);
97 if (r < 0) {
98 log_error_errno(r, "Could not enumerate links: %m");
99 goto out;
100 }
101
102 r = manager_rtnl_enumerate_addresses(m);
103 if (r < 0) {
104 log_error_errno(r, "Could not enumerate addresses: %m");
105 goto out;
106 }
107
108 r = manager_rtnl_enumerate_routes(m);
109 if (r < 0) {
110 log_error_errno(r, "Could not enumerate routes: %m");
111 goto out;
112 }
113
114 r = manager_rtnl_enumerate_rules(m);
115 if (r < 0) {
116 log_error_errno(r, "Could not enumerate rules: %m");
117 goto out;
118 }
119
120 r = manager_start(m);
121 if (r < 0) {
122 log_error_errno(r, "Could not start manager: %m");
123 goto out;
124 }
125
126 log_info("Enumeration completed");
127
128 sd_notify(false,
129 "READY=1\n"
130 "STATUS=Processing requests...");
131
132 r = sd_event_loop(m->event);
133 if (r < 0) {
134 log_error_errno(r, "Event loop failed: %m");
135 goto out;
136 }
137 out:
138 sd_notify(false,
139 "STOPPING=1\n"
140 "STATUS=Shutting down...");
141
142 return r < 0 ? EXIT_FAILURE : EXIT_SUCCESS;
143 }