]> git.ipfire.org Git - thirdparty/systemd.git/blob - src/resolve/resolvectl.c
Merge pull request #14505 from poettering/refuse-on-failure
[thirdparty/systemd.git] / src / resolve / resolvectl.c
1 /* SPDX-License-Identifier: LGPL-2.1+ */
2
3 #include <getopt.h>
4 #include <locale.h>
5 #include <net/if.h>
6
7 #include "sd-bus.h"
8 #include "sd-netlink.h"
9
10 #include "af-list.h"
11 #include "alloc-util.h"
12 #include "bus-common-errors.h"
13 #include "bus-error.h"
14 #include "bus-util.h"
15 #include "dns-domain.h"
16 #include "escape.h"
17 #include "format-util.h"
18 #include "gcrypt-util.h"
19 #include "main-func.h"
20 #include "missing_network.h"
21 #include "netlink-util.h"
22 #include "pager.h"
23 #include "parse-util.h"
24 #include "pretty-print.h"
25 #include "resolvconf-compat.h"
26 #include "resolvectl.h"
27 #include "resolved-def.h"
28 #include "resolved-dns-packet.h"
29 #include "socket-netlink.h"
30 #include "stdio-util.h"
31 #include "string-table.h"
32 #include "strv.h"
33 #include "terminal-util.h"
34 #include "verbs.h"
35
36 static int arg_family = AF_UNSPEC;
37 static int arg_ifindex = 0;
38 static char *arg_ifname = NULL;
39 static uint16_t arg_type = 0;
40 static uint16_t arg_class = 0;
41 static bool arg_legend = true;
42 static uint64_t arg_flags = 0;
43 static PagerFlags arg_pager_flags = 0;
44 bool arg_ifindex_permissive = false; /* If true, don't generate an error if the specified interface index doesn't exist */
45 static const char *arg_service_family = NULL;
46
47 typedef enum RawType {
48 RAW_NONE,
49 RAW_PAYLOAD,
50 RAW_PACKET,
51 } RawType;
52 static RawType arg_raw = RAW_NONE;
53
54 ExecutionMode arg_mode = MODE_RESOLVE_HOST;
55
56 char **arg_set_dns = NULL;
57 char **arg_set_domain = NULL;
58 static const char *arg_set_llmnr = NULL;
59 static const char *arg_set_mdns = NULL;
60 static const char *arg_set_dns_over_tls = NULL;
61 static const char *arg_set_dnssec = NULL;
62 static char **arg_set_nta = NULL;
63
64 STATIC_DESTRUCTOR_REGISTER(arg_ifname, freep);
65 STATIC_DESTRUCTOR_REGISTER(arg_set_dns, strv_freep);
66 STATIC_DESTRUCTOR_REGISTER(arg_set_domain, strv_freep);
67 STATIC_DESTRUCTOR_REGISTER(arg_set_nta, strv_freep);
68
69 typedef enum StatusMode {
70 STATUS_ALL,
71 STATUS_DNS,
72 STATUS_DOMAIN,
73 STATUS_DEFAULT_ROUTE,
74 STATUS_LLMNR,
75 STATUS_MDNS,
76 STATUS_PRIVATE,
77 STATUS_DNSSEC,
78 STATUS_NTA,
79 } StatusMode;
80
81 int ifname_mangle(const char *s) {
82 _cleanup_free_ char *iface = NULL;
83 const char *dot;
84 int ifi;
85
86 assert(s);
87
88 dot = strchr(s, '.');
89 if (dot) {
90 log_debug("Ignoring protocol specifier '%s'.", dot + 1);
91 iface = strndup(s, dot - s);
92
93 } else
94 iface = strdup(s);
95 if (!iface)
96 return log_oom();
97
98 ifi = resolve_interface(NULL, iface);
99 if (ifi < 0) {
100 if (ifi == -ENODEV && arg_ifindex_permissive) {
101 log_debug("Interface '%s' not found, but -f specified, ignoring.", iface);
102 return 0; /* done */
103 }
104
105 return log_error_errno(ifi, "Failed to resolve interface \"%s\": %m", iface);
106 }
107
108 if (arg_ifindex > 0 && arg_ifindex != ifi)
109 return log_error_errno(SYNTHETIC_ERRNO(EINVAL), "Specified multiple different interfaces. Refusing.");
110
111 arg_ifindex = ifi;
112 free_and_replace(arg_ifname, iface);
113
114 return 1;
115 }
116
117 static void print_source(uint64_t flags, usec_t rtt) {
118 char rtt_str[FORMAT_TIMESTAMP_MAX];
119
120 if (!arg_legend)
121 return;
122
123 if (flags == 0)
124 return;
125
126 printf("\n%s-- Information acquired via", ansi_grey());
127
128 if (flags != 0)
129 printf(" protocol%s%s%s%s%s",
130 flags & SD_RESOLVED_DNS ? " DNS" :"",
131 flags & SD_RESOLVED_LLMNR_IPV4 ? " LLMNR/IPv4" : "",
132 flags & SD_RESOLVED_LLMNR_IPV6 ? " LLMNR/IPv6" : "",
133 flags & SD_RESOLVED_MDNS_IPV4 ? " mDNS/IPv4" : "",
134 flags & SD_RESOLVED_MDNS_IPV6 ? " mDNS/IPv6" : "");
135
136 assert_se(format_timespan(rtt_str, sizeof(rtt_str), rtt, 100));
137
138 printf(" in %s.%s\n"
139 "%s-- Data is authenticated: %s%s\n",
140 rtt_str, ansi_normal(),
141 ansi_grey(), yes_no(flags & SD_RESOLVED_AUTHENTICATED), ansi_normal());
142 }
143
144 static void print_ifindex_comment(int printed_so_far, int ifindex) {
145 char ifname[IF_NAMESIZE + 1];
146
147 if (ifindex <= 0)
148 return;
149
150 if (!format_ifname(ifindex, ifname))
151 log_warning_errno(errno, "Failed to resolve interface name for index %i, ignoring: %m", ifindex);
152 else
153 printf("%*s%s-- link: %s%s",
154 60 > printed_so_far ? 60 - printed_so_far : 0, " ", /* Align comment to the 60th column */
155 ansi_grey(), ifname, ansi_normal());
156 }
157
158 static int resolve_host(sd_bus *bus, const char *name) {
159 _cleanup_(sd_bus_message_unrefp) sd_bus_message *req = NULL, *reply = NULL;
160 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
161 const char *canonical = NULL;
162 unsigned c = 0;
163 uint64_t flags;
164 usec_t ts;
165 int r;
166
167 assert(name);
168
169 log_debug("Resolving %s (family %s, interface %s).", name, af_to_name(arg_family) ?: "*", isempty(arg_ifname) ? "*" : arg_ifname);
170
171 r = sd_bus_message_new_method_call(
172 bus,
173 &req,
174 "org.freedesktop.resolve1",
175 "/org/freedesktop/resolve1",
176 "org.freedesktop.resolve1.Manager",
177 "ResolveHostname");
178 if (r < 0)
179 return bus_log_create_error(r);
180
181 r = sd_bus_message_append(req, "isit", arg_ifindex, name, arg_family, arg_flags);
182 if (r < 0)
183 return bus_log_create_error(r);
184
185 ts = now(CLOCK_MONOTONIC);
186
187 r = sd_bus_call(bus, req, SD_RESOLVED_QUERY_TIMEOUT_USEC, &error, &reply);
188 if (r < 0)
189 return log_error_errno(r, "%s: resolve call failed: %s", name, bus_error_message(&error, r));
190
191 ts = now(CLOCK_MONOTONIC) - ts;
192
193 r = sd_bus_message_enter_container(reply, 'a', "(iiay)");
194 if (r < 0)
195 return bus_log_parse_error(r);
196
197 while ((r = sd_bus_message_enter_container(reply, 'r', "iiay")) > 0) {
198 _cleanup_free_ char *pretty = NULL;
199 int ifindex, family, k;
200 const void *a;
201 size_t sz;
202
203 assert_cc(sizeof(int) == sizeof(int32_t));
204
205 r = sd_bus_message_read(reply, "ii", &ifindex, &family);
206 if (r < 0)
207 return bus_log_parse_error(r);
208
209 r = sd_bus_message_read_array(reply, 'y', &a, &sz);
210 if (r < 0)
211 return bus_log_parse_error(r);
212
213 r = sd_bus_message_exit_container(reply);
214 if (r < 0)
215 return bus_log_parse_error(r);
216
217 if (!IN_SET(family, AF_INET, AF_INET6)) {
218 log_debug("%s: skipping entry with family %d (%s)", name, family, af_to_name(family) ?: "unknown");
219 continue;
220 }
221
222 if (sz != FAMILY_ADDRESS_SIZE(family)) {
223 log_error("%s: systemd-resolved returned address of invalid size %zu for family %s", name, sz, af_to_name(family) ?: "unknown");
224 return -EINVAL;
225 }
226
227 r = in_addr_ifindex_to_string(family, a, ifindex, &pretty);
228 if (r < 0)
229 return log_error_errno(r, "Failed to print address for %s: %m", name);
230
231 k = printf("%*s%s %s%s%s",
232 (int) strlen(name), c == 0 ? name : "", c == 0 ? ":" : " ",
233 ansi_highlight(), pretty, ansi_normal());
234
235 print_ifindex_comment(k, ifindex);
236 fputc('\n', stdout);
237
238 c++;
239 }
240 if (r < 0)
241 return bus_log_parse_error(r);
242
243 r = sd_bus_message_exit_container(reply);
244 if (r < 0)
245 return bus_log_parse_error(r);
246
247 r = sd_bus_message_read(reply, "st", &canonical, &flags);
248 if (r < 0)
249 return bus_log_parse_error(r);
250
251 if (!streq(name, canonical))
252 printf("%*s%s (%s)\n",
253 (int) strlen(name), c == 0 ? name : "", c == 0 ? ":" : " ",
254 canonical);
255
256 if (c == 0) {
257 log_error("%s: no addresses found", name);
258 return -ESRCH;
259 }
260
261 print_source(flags, ts);
262
263 return 0;
264 }
265
266 static int resolve_address(sd_bus *bus, int family, const union in_addr_union *address, int ifindex) {
267 _cleanup_(sd_bus_message_unrefp) sd_bus_message *req = NULL, *reply = NULL;
268 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
269 _cleanup_free_ char *pretty = NULL;
270 uint64_t flags;
271 unsigned c = 0;
272 usec_t ts;
273 int r;
274
275 assert(bus);
276 assert(IN_SET(family, AF_INET, AF_INET6));
277 assert(address);
278
279 if (ifindex <= 0)
280 ifindex = arg_ifindex;
281
282 r = in_addr_ifindex_to_string(family, address, ifindex, &pretty);
283 if (r < 0)
284 return log_oom();
285
286 log_debug("Resolving %s.", pretty);
287
288 r = sd_bus_message_new_method_call(
289 bus,
290 &req,
291 "org.freedesktop.resolve1",
292 "/org/freedesktop/resolve1",
293 "org.freedesktop.resolve1.Manager",
294 "ResolveAddress");
295 if (r < 0)
296 return bus_log_create_error(r);
297
298 r = sd_bus_message_append(req, "ii", ifindex, family);
299 if (r < 0)
300 return bus_log_create_error(r);
301
302 r = sd_bus_message_append_array(req, 'y', address, FAMILY_ADDRESS_SIZE(family));
303 if (r < 0)
304 return bus_log_create_error(r);
305
306 r = sd_bus_message_append(req, "t", arg_flags);
307 if (r < 0)
308 return bus_log_create_error(r);
309
310 ts = now(CLOCK_MONOTONIC);
311
312 r = sd_bus_call(bus, req, SD_RESOLVED_QUERY_TIMEOUT_USEC, &error, &reply);
313 if (r < 0)
314 return log_error_errno(r, "%s: resolve call failed: %s", pretty, bus_error_message(&error, r));
315
316 ts = now(CLOCK_MONOTONIC) - ts;
317
318 r = sd_bus_message_enter_container(reply, 'a', "(is)");
319 if (r < 0)
320 return bus_log_create_error(r);
321
322 while ((r = sd_bus_message_enter_container(reply, 'r', "is")) > 0) {
323 const char *n;
324 int k;
325
326 assert_cc(sizeof(int) == sizeof(int32_t));
327
328 r = sd_bus_message_read(reply, "is", &ifindex, &n);
329 if (r < 0)
330 return r;
331
332 r = sd_bus_message_exit_container(reply);
333 if (r < 0)
334 return r;
335
336 k = printf("%*s%s %s%s%s",
337 (int) strlen(pretty), c == 0 ? pretty : "",
338 c == 0 ? ":" : " ",
339 ansi_highlight(), n, ansi_normal());
340
341 print_ifindex_comment(k, ifindex);
342 fputc('\n', stdout);
343
344 c++;
345 }
346 if (r < 0)
347 return bus_log_parse_error(r);
348
349 r = sd_bus_message_exit_container(reply);
350 if (r < 0)
351 return bus_log_parse_error(r);
352
353 r = sd_bus_message_read(reply, "t", &flags);
354 if (r < 0)
355 return bus_log_parse_error(r);
356
357 if (c == 0) {
358 log_error("%s: no names found", pretty);
359 return -ESRCH;
360 }
361
362 print_source(flags, ts);
363
364 return 0;
365 }
366
367 static int output_rr_packet(const void *d, size_t l, int ifindex) {
368 _cleanup_(dns_resource_record_unrefp) DnsResourceRecord *rr = NULL;
369 _cleanup_(dns_packet_unrefp) DnsPacket *p = NULL;
370 int r;
371
372 r = dns_packet_new(&p, DNS_PROTOCOL_DNS, 0, DNS_PACKET_SIZE_MAX);
373 if (r < 0)
374 return log_oom();
375
376 p->refuse_compression = true;
377
378 r = dns_packet_append_blob(p, d, l, NULL);
379 if (r < 0)
380 return log_oom();
381
382 r = dns_packet_read_rr(p, &rr, NULL, NULL);
383 if (r < 0)
384 return log_error_errno(r, "Failed to parse RR: %m");
385
386 if (arg_raw == RAW_PAYLOAD) {
387 void *data;
388 ssize_t k;
389
390 k = dns_resource_record_payload(rr, &data);
391 if (k < 0)
392 return log_error_errno(k, "Cannot dump RR: %m");
393 fwrite(data, 1, k, stdout);
394 } else {
395 const char *s;
396 int k;
397
398 s = dns_resource_record_to_string(rr);
399 if (!s)
400 return log_oom();
401
402 k = printf("%s", s);
403 print_ifindex_comment(k, ifindex);
404 fputc('\n', stdout);
405 }
406
407 return 0;
408 }
409
410 static int resolve_record(sd_bus *bus, const char *name, uint16_t class, uint16_t type, bool warn_missing) {
411 _cleanup_(sd_bus_message_unrefp) sd_bus_message *req = NULL, *reply = NULL;
412 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
413 unsigned n = 0;
414 uint64_t flags;
415 int r;
416 usec_t ts;
417 bool needs_authentication = false;
418
419 assert(name);
420
421 log_debug("Resolving %s %s %s (interface %s).", name, dns_class_to_string(class), dns_type_to_string(type), isempty(arg_ifname) ? "*" : arg_ifname);
422
423 r = sd_bus_message_new_method_call(
424 bus,
425 &req,
426 "org.freedesktop.resolve1",
427 "/org/freedesktop/resolve1",
428 "org.freedesktop.resolve1.Manager",
429 "ResolveRecord");
430 if (r < 0)
431 return bus_log_create_error(r);
432
433 r = sd_bus_message_append(req, "isqqt", arg_ifindex, name, class, type, arg_flags);
434 if (r < 0)
435 return bus_log_create_error(r);
436
437 ts = now(CLOCK_MONOTONIC);
438
439 r = sd_bus_call(bus, req, SD_RESOLVED_QUERY_TIMEOUT_USEC, &error, &reply);
440 if (r < 0) {
441 if (warn_missing || r != -ENXIO)
442 log_error("%s: resolve call failed: %s", name, bus_error_message(&error, r));
443 return r;
444 }
445
446 ts = now(CLOCK_MONOTONIC) - ts;
447
448 r = sd_bus_message_enter_container(reply, 'a', "(iqqay)");
449 if (r < 0)
450 return bus_log_parse_error(r);
451
452 while ((r = sd_bus_message_enter_container(reply, 'r', "iqqay")) > 0) {
453 uint16_t c, t;
454 int ifindex;
455 const void *d;
456 size_t l;
457
458 assert_cc(sizeof(int) == sizeof(int32_t));
459
460 r = sd_bus_message_read(reply, "iqq", &ifindex, &c, &t);
461 if (r < 0)
462 return bus_log_parse_error(r);
463
464 r = sd_bus_message_read_array(reply, 'y', &d, &l);
465 if (r < 0)
466 return bus_log_parse_error(r);
467
468 r = sd_bus_message_exit_container(reply);
469 if (r < 0)
470 return bus_log_parse_error(r);
471
472 if (arg_raw == RAW_PACKET) {
473 uint64_t u64 = htole64(l);
474
475 fwrite(&u64, sizeof(u64), 1, stdout);
476 fwrite(d, 1, l, stdout);
477 } else {
478 r = output_rr_packet(d, l, ifindex);
479 if (r < 0)
480 return r;
481 }
482
483 if (dns_type_needs_authentication(t))
484 needs_authentication = true;
485
486 n++;
487 }
488 if (r < 0)
489 return bus_log_parse_error(r);
490
491 r = sd_bus_message_exit_container(reply);
492 if (r < 0)
493 return bus_log_parse_error(r);
494
495 r = sd_bus_message_read(reply, "t", &flags);
496 if (r < 0)
497 return bus_log_parse_error(r);
498
499 if (n == 0) {
500 if (warn_missing)
501 log_error("%s: no records found", name);
502 return -ESRCH;
503 }
504
505 print_source(flags, ts);
506
507 if ((flags & SD_RESOLVED_AUTHENTICATED) == 0 && needs_authentication) {
508 fflush(stdout);
509
510 fprintf(stderr, "\n%s"
511 "WARNING: The resources shown contain cryptographic key data which could not be\n"
512 " authenticated. It is not suitable to authenticate any communication.\n"
513 " This is usually indication that DNSSEC authentication was not enabled\n"
514 " or is not available for the selected protocol or DNS servers.%s\n",
515 ansi_highlight_red(),
516 ansi_normal());
517 }
518
519 return 0;
520 }
521
522 static int resolve_rfc4501(sd_bus *bus, const char *name) {
523 uint16_t type = 0, class = 0;
524 const char *p, *q, *n;
525 int r;
526
527 assert(bus);
528 assert(name);
529 assert(startswith(name, "dns:"));
530
531 /* Parse RFC 4501 dns: URIs */
532
533 p = name + 4;
534
535 if (p[0] == '/') {
536 const char *e;
537
538 if (p[1] != '/')
539 goto invalid;
540
541 e = strchr(p + 2, '/');
542 if (!e)
543 goto invalid;
544
545 if (e != p + 2)
546 log_warning("DNS authority specification not supported; ignoring specified authority.");
547
548 p = e + 1;
549 }
550
551 q = strchr(p, '?');
552 if (q) {
553 n = strndupa(p, q - p);
554 q++;
555
556 for (;;) {
557 const char *f;
558
559 f = startswith_no_case(q, "class=");
560 if (f) {
561 _cleanup_free_ char *t = NULL;
562 const char *e;
563
564 if (class != 0)
565 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
566 "DNS class specified twice.");
567
568 e = strchrnul(f, ';');
569 t = strndup(f, e - f);
570 if (!t)
571 return log_oom();
572
573 r = dns_class_from_string(t);
574 if (r < 0)
575 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
576 "Unknown DNS class %s.", t);
577
578 class = r;
579
580 if (*e == ';') {
581 q = e + 1;
582 continue;
583 }
584
585 break;
586 }
587
588 f = startswith_no_case(q, "type=");
589 if (f) {
590 _cleanup_free_ char *t = NULL;
591 const char *e;
592
593 if (type != 0)
594 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
595 "DNS type specified twice.");
596
597 e = strchrnul(f, ';');
598 t = strndup(f, e - f);
599 if (!t)
600 return log_oom();
601
602 r = dns_type_from_string(t);
603 if (r < 0)
604 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
605 "Unknown DNS type %s.", t);
606
607 type = r;
608
609 if (*e == ';') {
610 q = e + 1;
611 continue;
612 }
613
614 break;
615 }
616
617 goto invalid;
618 }
619 } else
620 n = p;
621
622 if (class == 0)
623 class = arg_class ?: DNS_CLASS_IN;
624 if (type == 0)
625 type = arg_type ?: DNS_TYPE_A;
626
627 return resolve_record(bus, n, class, type, true);
628
629 invalid:
630 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
631 "Invalid DNS URI: %s", name);
632 }
633
634 static int verb_query(int argc, char **argv, void *userdata) {
635 sd_bus *bus = userdata;
636 char **p;
637 int q, r = 0;
638
639 if (arg_type != 0)
640 STRV_FOREACH(p, argv + 1) {
641 q = resolve_record(bus, *p, arg_class, arg_type, true);
642 if (q < 0)
643 r = q;
644 }
645
646 else
647 STRV_FOREACH(p, argv + 1) {
648 if (startswith(*p, "dns:"))
649 q = resolve_rfc4501(bus, *p);
650 else {
651 int family, ifindex;
652 union in_addr_union a;
653
654 q = in_addr_ifindex_from_string_auto(*p, &family, &a, &ifindex);
655 if (q >= 0)
656 q = resolve_address(bus, family, &a, ifindex);
657 else
658 q = resolve_host(bus, *p);
659 }
660 if (q < 0)
661 r = q;
662 }
663
664 return r;
665 }
666
667 static int resolve_service(sd_bus *bus, const char *name, const char *type, const char *domain) {
668 const char *canonical_name, *canonical_type, *canonical_domain;
669 _cleanup_(sd_bus_message_unrefp) sd_bus_message *req = NULL, *reply = NULL;
670 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
671 size_t indent, sz;
672 uint64_t flags;
673 const char *p;
674 unsigned c;
675 usec_t ts;
676 int r;
677
678 assert(bus);
679 assert(domain);
680
681 name = empty_to_null(name);
682 type = empty_to_null(type);
683
684 if (name)
685 log_debug("Resolving service \"%s\" of type %s in %s (family %s, interface %s).", name, type, domain, af_to_name(arg_family) ?: "*", isempty(arg_ifname) ? "*" : arg_ifname);
686 else if (type)
687 log_debug("Resolving service type %s of %s (family %s, interface %s).", type, domain, af_to_name(arg_family) ?: "*", isempty(arg_ifname) ? "*" : arg_ifname);
688 else
689 log_debug("Resolving service type %s (family %s, interface %s).", domain, af_to_name(arg_family) ?: "*", isempty(arg_ifname) ? "*" : arg_ifname);
690
691 r = sd_bus_message_new_method_call(
692 bus,
693 &req,
694 "org.freedesktop.resolve1",
695 "/org/freedesktop/resolve1",
696 "org.freedesktop.resolve1.Manager",
697 "ResolveService");
698 if (r < 0)
699 return bus_log_create_error(r);
700
701 r = sd_bus_message_append(req, "isssit", arg_ifindex, name, type, domain, arg_family, arg_flags);
702 if (r < 0)
703 return bus_log_create_error(r);
704
705 ts = now(CLOCK_MONOTONIC);
706
707 r = sd_bus_call(bus, req, SD_RESOLVED_QUERY_TIMEOUT_USEC, &error, &reply);
708 if (r < 0)
709 return log_error_errno(r, "Resolve call failed: %s", bus_error_message(&error, r));
710
711 ts = now(CLOCK_MONOTONIC) - ts;
712
713 r = sd_bus_message_enter_container(reply, 'a', "(qqqsa(iiay)s)");
714 if (r < 0)
715 return bus_log_parse_error(r);
716
717 indent =
718 (name ? strlen(name) + 1 : 0) +
719 (type ? strlen(type) + 1 : 0) +
720 strlen(domain) + 2;
721
722 c = 0;
723 while ((r = sd_bus_message_enter_container(reply, 'r', "qqqsa(iiay)s")) > 0) {
724 uint16_t priority, weight, port;
725 const char *hostname, *canonical;
726
727 r = sd_bus_message_read(reply, "qqqs", &priority, &weight, &port, &hostname);
728 if (r < 0)
729 return bus_log_parse_error(r);
730
731 if (name)
732 printf("%*s%s", (int) strlen(name), c == 0 ? name : "", c == 0 ? "/" : " ");
733 if (type)
734 printf("%*s%s", (int) strlen(type), c == 0 ? type : "", c == 0 ? "/" : " ");
735
736 printf("%*s%s %s:%u [priority=%u, weight=%u]\n",
737 (int) strlen(domain), c == 0 ? domain : "",
738 c == 0 ? ":" : " ",
739 hostname, port,
740 priority, weight);
741
742 r = sd_bus_message_enter_container(reply, 'a', "(iiay)");
743 if (r < 0)
744 return bus_log_parse_error(r);
745
746 while ((r = sd_bus_message_enter_container(reply, 'r', "iiay")) > 0) {
747 _cleanup_free_ char *pretty = NULL;
748 int ifindex, family, k;
749 const void *a;
750
751 assert_cc(sizeof(int) == sizeof(int32_t));
752
753 r = sd_bus_message_read(reply, "ii", &ifindex, &family);
754 if (r < 0)
755 return bus_log_parse_error(r);
756
757 r = sd_bus_message_read_array(reply, 'y', &a, &sz);
758 if (r < 0)
759 return bus_log_parse_error(r);
760
761 r = sd_bus_message_exit_container(reply);
762 if (r < 0)
763 return bus_log_parse_error(r);
764
765 if (!IN_SET(family, AF_INET, AF_INET6)) {
766 log_debug("%s: skipping entry with family %d (%s)", name, family, af_to_name(family) ?: "unknown");
767 continue;
768 }
769
770 if (sz != FAMILY_ADDRESS_SIZE(family)) {
771 log_error("%s: systemd-resolved returned address of invalid size %zu for family %s", name, sz, af_to_name(family) ?: "unknown");
772 return -EINVAL;
773 }
774
775 r = in_addr_ifindex_to_string(family, a, ifindex, &pretty);
776 if (r < 0)
777 return log_error_errno(r, "Failed to print address for %s: %m", name);
778
779 k = printf("%*s%s", (int) indent, "", pretty);
780 print_ifindex_comment(k, ifindex);
781 fputc('\n', stdout);
782 }
783 if (r < 0)
784 return bus_log_parse_error(r);
785
786 r = sd_bus_message_exit_container(reply);
787 if (r < 0)
788 return bus_log_parse_error(r);
789
790 r = sd_bus_message_read(reply, "s", &canonical);
791 if (r < 0)
792 return bus_log_parse_error(r);
793
794 if (!streq(hostname, canonical))
795 printf("%*s(%s)\n", (int) indent, "", canonical);
796
797 r = sd_bus_message_exit_container(reply);
798 if (r < 0)
799 return bus_log_parse_error(r);
800
801 c++;
802 }
803 if (r < 0)
804 return bus_log_parse_error(r);
805
806 r = sd_bus_message_exit_container(reply);
807 if (r < 0)
808 return bus_log_parse_error(r);
809
810 r = sd_bus_message_enter_container(reply, 'a', "ay");
811 if (r < 0)
812 return bus_log_parse_error(r);
813
814 while ((r = sd_bus_message_read_array(reply, 'y', (const void**) &p, &sz)) > 0) {
815 _cleanup_free_ char *escaped = NULL;
816
817 escaped = cescape_length(p, sz);
818 if (!escaped)
819 return log_oom();
820
821 printf("%*s%s\n", (int) indent, "", escaped);
822 }
823 if (r < 0)
824 return bus_log_parse_error(r);
825
826 r = sd_bus_message_exit_container(reply);
827 if (r < 0)
828 return bus_log_parse_error(r);
829
830 r = sd_bus_message_read(reply, "ssst", &canonical_name, &canonical_type, &canonical_domain, &flags);
831 if (r < 0)
832 return bus_log_parse_error(r);
833
834 canonical_name = empty_to_null(canonical_name);
835 canonical_type = empty_to_null(canonical_type);
836
837 if (!streq_ptr(name, canonical_name) ||
838 !streq_ptr(type, canonical_type) ||
839 !streq_ptr(domain, canonical_domain)) {
840
841 printf("%*s(", (int) indent, "");
842
843 if (canonical_name)
844 printf("%s/", canonical_name);
845 if (canonical_type)
846 printf("%s/", canonical_type);
847
848 printf("%s)\n", canonical_domain);
849 }
850
851 print_source(flags, ts);
852
853 return 0;
854 }
855
856 static int verb_service(int argc, char **argv, void *userdata) {
857 sd_bus *bus = userdata;
858
859 if (argc == 2)
860 return resolve_service(bus, NULL, NULL, argv[1]);
861 else if (argc == 3)
862 return resolve_service(bus, NULL, argv[1], argv[2]);
863 else
864 return resolve_service(bus, argv[1], argv[2], argv[3]);
865 }
866
867 static int resolve_openpgp(sd_bus *bus, const char *address) {
868 const char *domain, *full;
869 int r;
870 _cleanup_free_ char *hashed = NULL;
871
872 assert(bus);
873 assert(address);
874
875 domain = strrchr(address, '@');
876 if (!domain)
877 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
878 "Address does not contain '@': \"%s\"", address);
879 if (domain == address || domain[1] == '\0')
880 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
881 "Address starts or ends with '@': \"%s\"", address);
882 domain++;
883
884 r = string_hashsum_sha256(address, domain - 1 - address, &hashed);
885 if (r < 0)
886 return log_error_errno(r, "Hashing failed: %m");
887
888 strshorten(hashed, 56);
889
890 full = strjoina(hashed, "._openpgpkey.", domain);
891 log_debug("Looking up \"%s\".", full);
892
893 r = resolve_record(bus, full,
894 arg_class ?: DNS_CLASS_IN,
895 arg_type ?: DNS_TYPE_OPENPGPKEY, false);
896
897 if (IN_SET(r, -ENXIO, -ESRCH)) { /* NXDOMAIN or NODATA? */
898 hashed = mfree(hashed);
899 r = string_hashsum_sha224(address, domain - 1 - address, &hashed);
900 if (r < 0)
901 return log_error_errno(r, "Hashing failed: %m");
902
903 full = strjoina(hashed, "._openpgpkey.", domain);
904 log_debug("Looking up \"%s\".", full);
905
906 return resolve_record(bus, full,
907 arg_class ?: DNS_CLASS_IN,
908 arg_type ?: DNS_TYPE_OPENPGPKEY, true);
909 }
910
911 return r;
912 }
913
914 static int verb_openpgp(int argc, char **argv, void *userdata) {
915 sd_bus *bus = userdata;
916 char **p;
917 int q, r = 0;
918
919 STRV_FOREACH(p, argv + 1) {
920 q = resolve_openpgp(bus, *p);
921 if (q < 0)
922 r = q;
923 }
924
925 return r;
926 }
927
928 static int resolve_tlsa(sd_bus *bus, const char *family, const char *address) {
929 const char *port;
930 uint16_t port_num = 443;
931 _cleanup_free_ char *full = NULL;
932 int r;
933
934 assert(bus);
935 assert(address);
936
937 port = strrchr(address, ':');
938 if (port) {
939 r = parse_ip_port(port + 1, &port_num);
940 if (r < 0)
941 return log_error_errno(r, "Invalid port \"%s\".", port + 1);
942
943 address = strndupa(address, port - address);
944 }
945
946 r = asprintf(&full, "_%u._%s.%s",
947 port_num,
948 family,
949 address);
950 if (r < 0)
951 return log_oom();
952
953 log_debug("Looking up \"%s\".", full);
954
955 return resolve_record(bus, full,
956 arg_class ?: DNS_CLASS_IN,
957 arg_type ?: DNS_TYPE_TLSA, true);
958 }
959
960 static bool service_family_is_valid(const char *s) {
961 return STR_IN_SET(s, "tcp", "udp", "sctp");
962 }
963
964 static int verb_tlsa(int argc, char **argv, void *userdata) {
965 sd_bus *bus = userdata;
966 char **p, **args = argv + 1;
967 const char *family = "tcp";
968 int q, r = 0;
969
970 if (service_family_is_valid(argv[1])) {
971 family = argv[1];
972 args++;
973 }
974
975 STRV_FOREACH(p, args) {
976 q = resolve_tlsa(bus, family, *p);
977 if (q < 0)
978 r = q;
979 }
980
981 return r;
982 }
983
984 static int show_statistics(int argc, char **argv, void *userdata) {
985 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
986 _cleanup_(sd_bus_message_unrefp) sd_bus_message *reply = NULL;
987 sd_bus *bus = userdata;
988 uint64_t n_current_transactions, n_total_transactions,
989 cache_size, n_cache_hit, n_cache_miss,
990 n_dnssec_secure, n_dnssec_insecure, n_dnssec_bogus, n_dnssec_indeterminate;
991 int r, dnssec_supported;
992
993 assert(bus);
994
995 r = sd_bus_get_property_trivial(bus,
996 "org.freedesktop.resolve1",
997 "/org/freedesktop/resolve1",
998 "org.freedesktop.resolve1.Manager",
999 "DNSSECSupported",
1000 &error,
1001 'b',
1002 &dnssec_supported);
1003 if (r < 0)
1004 return log_error_errno(r, "Failed to get DNSSEC supported state: %s", bus_error_message(&error, r));
1005
1006 printf("DNSSEC supported by current servers: %s%s%s\n\n",
1007 ansi_highlight(),
1008 yes_no(dnssec_supported),
1009 ansi_normal());
1010
1011 r = sd_bus_get_property(bus,
1012 "org.freedesktop.resolve1",
1013 "/org/freedesktop/resolve1",
1014 "org.freedesktop.resolve1.Manager",
1015 "TransactionStatistics",
1016 &error,
1017 &reply,
1018 "(tt)");
1019 if (r < 0)
1020 return log_error_errno(r, "Failed to get transaction statistics: %s", bus_error_message(&error, r));
1021
1022 r = sd_bus_message_read(reply, "(tt)",
1023 &n_current_transactions,
1024 &n_total_transactions);
1025 if (r < 0)
1026 return bus_log_parse_error(r);
1027
1028 printf("%sTransactions%s\n"
1029 "Current Transactions: %" PRIu64 "\n"
1030 " Total Transactions: %" PRIu64 "\n",
1031 ansi_highlight(),
1032 ansi_normal(),
1033 n_current_transactions,
1034 n_total_transactions);
1035
1036 reply = sd_bus_message_unref(reply);
1037
1038 r = sd_bus_get_property(bus,
1039 "org.freedesktop.resolve1",
1040 "/org/freedesktop/resolve1",
1041 "org.freedesktop.resolve1.Manager",
1042 "CacheStatistics",
1043 &error,
1044 &reply,
1045 "(ttt)");
1046 if (r < 0)
1047 return log_error_errno(r, "Failed to get cache statistics: %s", bus_error_message(&error, r));
1048
1049 r = sd_bus_message_read(reply, "(ttt)",
1050 &cache_size,
1051 &n_cache_hit,
1052 &n_cache_miss);
1053 if (r < 0)
1054 return bus_log_parse_error(r);
1055
1056 printf("\n%sCache%s\n"
1057 " Current Cache Size: %" PRIu64 "\n"
1058 " Cache Hits: %" PRIu64 "\n"
1059 " Cache Misses: %" PRIu64 "\n",
1060 ansi_highlight(),
1061 ansi_normal(),
1062 cache_size,
1063 n_cache_hit,
1064 n_cache_miss);
1065
1066 reply = sd_bus_message_unref(reply);
1067
1068 r = sd_bus_get_property(bus,
1069 "org.freedesktop.resolve1",
1070 "/org/freedesktop/resolve1",
1071 "org.freedesktop.resolve1.Manager",
1072 "DNSSECStatistics",
1073 &error,
1074 &reply,
1075 "(tttt)");
1076 if (r < 0)
1077 return log_error_errno(r, "Failed to get DNSSEC statistics: %s", bus_error_message(&error, r));
1078
1079 r = sd_bus_message_read(reply, "(tttt)",
1080 &n_dnssec_secure,
1081 &n_dnssec_insecure,
1082 &n_dnssec_bogus,
1083 &n_dnssec_indeterminate);
1084 if (r < 0)
1085 return bus_log_parse_error(r);
1086
1087 printf("\n%sDNSSEC Verdicts%s\n"
1088 " Secure: %" PRIu64 "\n"
1089 " Insecure: %" PRIu64 "\n"
1090 " Bogus: %" PRIu64 "\n"
1091 " Indeterminate: %" PRIu64 "\n",
1092 ansi_highlight(),
1093 ansi_normal(),
1094 n_dnssec_secure,
1095 n_dnssec_insecure,
1096 n_dnssec_bogus,
1097 n_dnssec_indeterminate);
1098
1099 return 0;
1100 }
1101
1102 static int reset_statistics(int argc, char **argv, void *userdata) {
1103 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
1104 sd_bus *bus = userdata;
1105 int r;
1106
1107 r = sd_bus_call_method(bus,
1108 "org.freedesktop.resolve1",
1109 "/org/freedesktop/resolve1",
1110 "org.freedesktop.resolve1.Manager",
1111 "ResetStatistics",
1112 &error,
1113 NULL,
1114 NULL);
1115 if (r < 0)
1116 return log_error_errno(r, "Failed to reset statistics: %s", bus_error_message(&error, r));
1117
1118 return 0;
1119 }
1120
1121 static int flush_caches(int argc, char **argv, void *userdata) {
1122 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
1123 sd_bus *bus = userdata;
1124 int r;
1125
1126 r = sd_bus_call_method(bus,
1127 "org.freedesktop.resolve1",
1128 "/org/freedesktop/resolve1",
1129 "org.freedesktop.resolve1.Manager",
1130 "FlushCaches",
1131 &error,
1132 NULL,
1133 NULL);
1134 if (r < 0)
1135 return log_error_errno(r, "Failed to flush caches: %s", bus_error_message(&error, r));
1136
1137 return 0;
1138 }
1139
1140 static int reset_server_features(int argc, char **argv, void *userdata) {
1141 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
1142 sd_bus *bus = userdata;
1143 int r;
1144
1145 r = sd_bus_call_method(bus,
1146 "org.freedesktop.resolve1",
1147 "/org/freedesktop/resolve1",
1148 "org.freedesktop.resolve1.Manager",
1149 "ResetServerFeatures",
1150 &error,
1151 NULL,
1152 NULL);
1153 if (r < 0)
1154 return log_error_errno(r, "Failed to reset server features: %s", bus_error_message(&error, r));
1155
1156 return 0;
1157 }
1158
1159 static int read_dns_server_one(sd_bus_message *m, bool with_ifindex, char **ret) {
1160 _cleanup_free_ char *pretty = NULL;
1161 int ifindex, family, r;
1162 const void *a;
1163 size_t sz;
1164
1165 assert(m);
1166 assert(ret);
1167
1168 r = sd_bus_message_enter_container(m, 'r', with_ifindex ? "iiay" : "iay");
1169 if (r <= 0)
1170 return r;
1171
1172 if (with_ifindex) {
1173 r = sd_bus_message_read(m, "i", &ifindex);
1174 if (r < 0)
1175 return r;
1176 }
1177
1178 r = sd_bus_message_read(m, "i", &family);
1179 if (r < 0)
1180 return r;
1181
1182 r = sd_bus_message_read_array(m, 'y', &a, &sz);
1183 if (r < 0)
1184 return r;
1185
1186 r = sd_bus_message_exit_container(m);
1187 if (r < 0)
1188 return r;
1189
1190 if (with_ifindex && ifindex != 0) {
1191 /* only show the global ones here */
1192 *ret = NULL;
1193 return 1;
1194 }
1195
1196 if (!IN_SET(family, AF_INET, AF_INET6)) {
1197 log_debug("Unexpected family, ignoring: %i", family);
1198
1199 *ret = NULL;
1200 return 1;
1201 }
1202
1203 if (sz != FAMILY_ADDRESS_SIZE(family)) {
1204 log_debug("Address size mismatch, ignoring.");
1205
1206 *ret = NULL;
1207 return 1;
1208 }
1209
1210 r = in_addr_to_string(family, a, &pretty);
1211 if (r < 0)
1212 return r;
1213
1214 *ret = TAKE_PTR(pretty);
1215
1216 return 1;
1217 }
1218
1219 static int map_link_dns_servers(sd_bus *bus, const char *member, sd_bus_message *m, sd_bus_error *error, void *userdata) {
1220 char ***l = userdata;
1221 int r;
1222
1223 assert(bus);
1224 assert(member);
1225 assert(m);
1226 assert(l);
1227
1228 r = sd_bus_message_enter_container(m, 'a', "(iay)");
1229 if (r < 0)
1230 return r;
1231
1232 for (;;) {
1233 _cleanup_free_ char *pretty = NULL;
1234
1235 r = read_dns_server_one(m, false, &pretty);
1236 if (r < 0)
1237 return r;
1238 if (r == 0)
1239 break;
1240
1241 if (isempty(pretty))
1242 continue;
1243
1244 r = strv_consume(l, TAKE_PTR(pretty));
1245 if (r < 0)
1246 return r;
1247 }
1248
1249 r = sd_bus_message_exit_container(m);
1250 if (r < 0)
1251 return r;
1252
1253 return 0;
1254 }
1255
1256 static int map_link_current_dns_server(sd_bus *bus, const char *member, sd_bus_message *m, sd_bus_error *error, void *userdata) {
1257 assert(m);
1258 assert(userdata);
1259
1260 return read_dns_server_one(m, false, userdata);
1261 }
1262
1263 static int read_domain_one(sd_bus_message *m, bool with_ifindex, char **ret) {
1264 _cleanup_free_ char *str = NULL;
1265 int ifindex, route_only, r;
1266 const char *domain;
1267
1268 assert(m);
1269 assert(ret);
1270
1271 if (with_ifindex)
1272 r = sd_bus_message_read(m, "(isb)", &ifindex, &domain, &route_only);
1273 else
1274 r = sd_bus_message_read(m, "(sb)", &domain, &route_only);
1275 if (r <= 0)
1276 return r;
1277
1278 if (with_ifindex && ifindex != 0) {
1279 /* only show the global ones here */
1280 *ret = NULL;
1281 return 1;
1282 }
1283
1284 if (route_only)
1285 str = strjoin("~", domain);
1286 else
1287 str = strdup(domain);
1288 if (!str)
1289 return -ENOMEM;
1290
1291 *ret = TAKE_PTR(str);
1292
1293 return 1;
1294 }
1295
1296 static int map_link_domains(sd_bus *bus, const char *member, sd_bus_message *m, sd_bus_error *error, void *userdata) {
1297 char ***l = userdata;
1298 int r;
1299
1300 assert(bus);
1301 assert(member);
1302 assert(m);
1303 assert(l);
1304
1305 r = sd_bus_message_enter_container(m, 'a', "(sb)");
1306 if (r < 0)
1307 return r;
1308
1309 for (;;) {
1310 _cleanup_free_ char *pretty = NULL;
1311
1312 r = read_domain_one(m, false, &pretty);
1313 if (r < 0)
1314 return r;
1315 if (r == 0)
1316 break;
1317
1318 if (isempty(pretty))
1319 continue;
1320
1321 r = strv_consume(l, TAKE_PTR(pretty));
1322 if (r < 0)
1323 return r;
1324 }
1325
1326 r = sd_bus_message_exit_container(m);
1327 if (r < 0)
1328 return r;
1329
1330 return 0;
1331 }
1332
1333 static int status_print_strv_ifindex(int ifindex, const char *ifname, char **p) {
1334 char **i;
1335
1336 printf("%sLink %i (%s)%s:",
1337 ansi_highlight(), ifindex, ifname, ansi_normal());
1338
1339 STRV_FOREACH(i, p)
1340 printf(" %s", *i);
1341
1342 printf("\n");
1343
1344 return 0;
1345 }
1346
1347 struct link_info {
1348 uint64_t scopes_mask;
1349 const char *llmnr;
1350 const char *mdns;
1351 const char *dns_over_tls;
1352 const char *dnssec;
1353 char *current_dns;
1354 char **dns;
1355 char **domains;
1356 char **ntas;
1357 bool dnssec_supported;
1358 bool default_route;
1359 };
1360
1361 static void link_info_clear(struct link_info *p) {
1362 free(p->current_dns);
1363 strv_free(p->dns);
1364 strv_free(p->domains);
1365 strv_free(p->ntas);
1366 }
1367
1368 static int status_ifindex(sd_bus *bus, int ifindex, const char *name, StatusMode mode, bool *empty_line) {
1369 static const struct bus_properties_map property_map[] = {
1370 { "ScopesMask", "t", NULL, offsetof(struct link_info, scopes_mask) },
1371 { "DNS", "a(iay)", map_link_dns_servers, offsetof(struct link_info, dns) },
1372 { "CurrentDNSServer", "(iay)", map_link_current_dns_server, offsetof(struct link_info, current_dns) },
1373 { "Domains", "a(sb)", map_link_domains, offsetof(struct link_info, domains) },
1374 { "DefaultRoute", "b", NULL, offsetof(struct link_info, default_route) },
1375 { "LLMNR", "s", NULL, offsetof(struct link_info, llmnr) },
1376 { "MulticastDNS", "s", NULL, offsetof(struct link_info, mdns) },
1377 { "DNSOverTLS", "s", NULL, offsetof(struct link_info, dns_over_tls) },
1378 { "DNSSEC", "s", NULL, offsetof(struct link_info, dnssec) },
1379 { "DNSSECNegativeTrustAnchors", "as", NULL, offsetof(struct link_info, ntas) },
1380 { "DNSSECSupported", "b", NULL, offsetof(struct link_info, dnssec_supported) },
1381 {}
1382 };
1383 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
1384 _cleanup_(sd_bus_message_unrefp) sd_bus_message *m = NULL;
1385 _cleanup_(link_info_clear) struct link_info link_info = {};
1386 _cleanup_free_ char *p = NULL;
1387 char ifi[DECIMAL_STR_MAX(int)], ifname[IF_NAMESIZE + 1] = "";
1388 char **i;
1389 int r;
1390
1391 assert(bus);
1392 assert(ifindex > 0);
1393
1394 if (!name) {
1395 if (!format_ifname(ifindex, ifname))
1396 return log_error_errno(errno, "Failed to resolve interface name for %i: %m", ifindex);
1397
1398 name = ifname;
1399 }
1400
1401 xsprintf(ifi, "%i", ifindex);
1402 r = sd_bus_path_encode("/org/freedesktop/resolve1/link", ifi, &p);
1403 if (r < 0)
1404 return log_oom();
1405
1406 r = bus_map_all_properties(bus,
1407 "org.freedesktop.resolve1",
1408 p,
1409 property_map,
1410 BUS_MAP_BOOLEAN_AS_BOOL,
1411 &error,
1412 &m,
1413 &link_info);
1414 if (r < 0)
1415 return log_error_errno(r, "Failed to get link data for %i: %s", ifindex, bus_error_message(&error, r));
1416
1417 (void) pager_open(arg_pager_flags);
1418
1419 if (mode == STATUS_DNS)
1420 return status_print_strv_ifindex(ifindex, name, link_info.dns);
1421
1422 if (mode == STATUS_DOMAIN)
1423 return status_print_strv_ifindex(ifindex, name, link_info.domains);
1424
1425 if (mode == STATUS_NTA)
1426 return status_print_strv_ifindex(ifindex, name, link_info.ntas);
1427
1428 if (mode == STATUS_DEFAULT_ROUTE) {
1429 printf("%sLink %i (%s)%s: %s\n",
1430 ansi_highlight(), ifindex, name, ansi_normal(),
1431 yes_no(link_info.default_route));
1432
1433 return 0;
1434 }
1435
1436 if (mode == STATUS_LLMNR) {
1437 printf("%sLink %i (%s)%s: %s\n",
1438 ansi_highlight(), ifindex, name, ansi_normal(),
1439 strna(link_info.llmnr));
1440
1441 return 0;
1442 }
1443
1444 if (mode == STATUS_MDNS) {
1445 printf("%sLink %i (%s)%s: %s\n",
1446 ansi_highlight(), ifindex, name, ansi_normal(),
1447 strna(link_info.mdns));
1448
1449 return 0;
1450 }
1451
1452 if (mode == STATUS_PRIVATE) {
1453 printf("%sLink %i (%s)%s: %s\n",
1454 ansi_highlight(), ifindex, name, ansi_normal(),
1455 strna(link_info.dns_over_tls));
1456
1457 return 0;
1458 }
1459
1460 if (mode == STATUS_DNSSEC) {
1461 printf("%sLink %i (%s)%s: %s\n",
1462 ansi_highlight(), ifindex, name, ansi_normal(),
1463 strna(link_info.dnssec));
1464
1465 return 0;
1466 }
1467
1468 if (empty_line && *empty_line)
1469 fputc('\n', stdout);
1470
1471 printf("%sLink %i (%s)%s\n",
1472 ansi_highlight(), ifindex, name, ansi_normal());
1473
1474 if (link_info.scopes_mask == 0)
1475 printf(" Current Scopes: none\n");
1476 else
1477 printf(" Current Scopes:%s%s%s%s%s\n",
1478 link_info.scopes_mask & SD_RESOLVED_DNS ? " DNS" : "",
1479 link_info.scopes_mask & SD_RESOLVED_LLMNR_IPV4 ? " LLMNR/IPv4" : "",
1480 link_info.scopes_mask & SD_RESOLVED_LLMNR_IPV6 ? " LLMNR/IPv6" : "",
1481 link_info.scopes_mask & SD_RESOLVED_MDNS_IPV4 ? " mDNS/IPv4" : "",
1482 link_info.scopes_mask & SD_RESOLVED_MDNS_IPV6 ? " mDNS/IPv6" : "");
1483
1484 printf("DefaultRoute setting: %s\n"
1485 " LLMNR setting: %s\n"
1486 "MulticastDNS setting: %s\n"
1487 " DNSOverTLS setting: %s\n"
1488 " DNSSEC setting: %s\n"
1489 " DNSSEC supported: %s\n",
1490 yes_no(link_info.default_route),
1491 strna(link_info.llmnr),
1492 strna(link_info.mdns),
1493 strna(link_info.dns_over_tls),
1494 strna(link_info.dnssec),
1495 yes_no(link_info.dnssec_supported));
1496
1497 if (link_info.current_dns)
1498 printf(" Current DNS Server: %s\n", link_info.current_dns);
1499
1500 STRV_FOREACH(i, link_info.dns) {
1501 printf(" %s %s\n",
1502 i == link_info.dns ? "DNS Servers:" : " ",
1503 *i);
1504 }
1505
1506 STRV_FOREACH(i, link_info.domains) {
1507 printf(" %s %s\n",
1508 i == link_info.domains ? "DNS Domain:" : " ",
1509 *i);
1510 }
1511
1512 STRV_FOREACH(i, link_info.ntas) {
1513 printf(" %s %s\n",
1514 i == link_info.ntas ? "DNSSEC NTA:" : " ",
1515 *i);
1516 }
1517
1518 if (empty_line)
1519 *empty_line = true;
1520
1521 return 0;
1522 }
1523
1524 static int map_global_dns_servers(sd_bus *bus, const char *member, sd_bus_message *m, sd_bus_error *error, void *userdata) {
1525 char ***l = userdata;
1526 int r;
1527
1528 assert(bus);
1529 assert(member);
1530 assert(m);
1531 assert(l);
1532
1533 r = sd_bus_message_enter_container(m, 'a', "(iiay)");
1534 if (r < 0)
1535 return r;
1536
1537 for (;;) {
1538 _cleanup_free_ char *pretty = NULL;
1539
1540 r = read_dns_server_one(m, true, &pretty);
1541 if (r < 0)
1542 return r;
1543 if (r == 0)
1544 break;
1545
1546 if (isempty(pretty))
1547 continue;
1548
1549 r = strv_consume(l, TAKE_PTR(pretty));
1550 if (r < 0)
1551 return r;
1552 }
1553
1554 r = sd_bus_message_exit_container(m);
1555 if (r < 0)
1556 return r;
1557
1558 return 0;
1559 }
1560
1561 static int map_global_current_dns_server(sd_bus *bus, const char *member, sd_bus_message *m, sd_bus_error *error, void *userdata) {
1562 assert(m);
1563 assert(userdata);
1564
1565 return read_dns_server_one(m, true, userdata);
1566 }
1567
1568 static int map_global_domains(sd_bus *bus, const char *member, sd_bus_message *m, sd_bus_error *error, void *userdata) {
1569 char ***l = userdata;
1570 int r;
1571
1572 assert(bus);
1573 assert(member);
1574 assert(m);
1575 assert(l);
1576
1577 r = sd_bus_message_enter_container(m, 'a', "(isb)");
1578 if (r < 0)
1579 return r;
1580
1581 for (;;) {
1582 _cleanup_free_ char *pretty = NULL;
1583
1584 r = read_domain_one(m, true, &pretty);
1585 if (r < 0)
1586 return r;
1587 if (r == 0)
1588 break;
1589
1590 if (isempty(pretty))
1591 continue;
1592
1593 r = strv_consume(l, TAKE_PTR(pretty));
1594 if (r < 0)
1595 return r;
1596 }
1597
1598 r = sd_bus_message_exit_container(m);
1599 if (r < 0)
1600 return r;
1601
1602 return 0;
1603 }
1604
1605 static int status_print_strv_global(char **p) {
1606 char **i;
1607
1608 printf("%sGlobal%s:", ansi_highlight(), ansi_normal());
1609
1610 STRV_FOREACH(i, p)
1611 printf(" %s", *i);
1612
1613 printf("\n");
1614
1615 return 0;
1616 }
1617
1618 struct global_info {
1619 char *current_dns;
1620 char **dns;
1621 char **fallback_dns;
1622 char **domains;
1623 char **ntas;
1624 const char *llmnr;
1625 const char *mdns;
1626 const char *dns_over_tls;
1627 const char *dnssec;
1628 bool dnssec_supported;
1629 };
1630
1631 static void global_info_clear(struct global_info *p) {
1632 free(p->current_dns);
1633 strv_free(p->dns);
1634 strv_free(p->fallback_dns);
1635 strv_free(p->domains);
1636 strv_free(p->ntas);
1637 }
1638
1639 static int status_global(sd_bus *bus, StatusMode mode, bool *empty_line) {
1640 static const struct bus_properties_map property_map[] = {
1641 { "DNS", "a(iiay)", map_global_dns_servers, offsetof(struct global_info, dns) },
1642 { "FallbackDNS", "a(iiay)", map_global_dns_servers, offsetof(struct global_info, fallback_dns) },
1643 { "CurrentDNSServer", "(iiay)", map_global_current_dns_server, offsetof(struct global_info, current_dns) },
1644 { "Domains", "a(isb)", map_global_domains, offsetof(struct global_info, domains) },
1645 { "DNSSECNegativeTrustAnchors", "as", NULL, offsetof(struct global_info, ntas) },
1646 { "LLMNR", "s", NULL, offsetof(struct global_info, llmnr) },
1647 { "MulticastDNS", "s", NULL, offsetof(struct global_info, mdns) },
1648 { "DNSOverTLS", "s", NULL, offsetof(struct global_info, dns_over_tls) },
1649 { "DNSSEC", "s", NULL, offsetof(struct global_info, dnssec) },
1650 { "DNSSECSupported", "b", NULL, offsetof(struct global_info, dnssec_supported) },
1651 {}
1652 };
1653 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
1654 _cleanup_(sd_bus_message_unrefp) sd_bus_message *m = NULL;
1655 _cleanup_(global_info_clear) struct global_info global_info = {};
1656 char **i;
1657 int r;
1658
1659 assert(bus);
1660 assert(empty_line);
1661
1662 r = bus_map_all_properties(bus,
1663 "org.freedesktop.resolve1",
1664 "/org/freedesktop/resolve1",
1665 property_map,
1666 BUS_MAP_BOOLEAN_AS_BOOL,
1667 &error,
1668 &m,
1669 &global_info);
1670 if (r < 0)
1671 return log_error_errno(r, "Failed to get global data: %s", bus_error_message(&error, r));
1672
1673 (void) pager_open(arg_pager_flags);
1674
1675 if (mode == STATUS_DNS)
1676 return status_print_strv_global(global_info.dns);
1677
1678 if (mode == STATUS_DOMAIN)
1679 return status_print_strv_global(global_info.domains);
1680
1681 if (mode == STATUS_NTA)
1682 return status_print_strv_global(global_info.ntas);
1683
1684 if (mode == STATUS_LLMNR) {
1685 printf("%sGlobal%s: %s\n", ansi_highlight(), ansi_normal(),
1686 strna(global_info.llmnr));
1687
1688 return 0;
1689 }
1690
1691 if (mode == STATUS_MDNS) {
1692 printf("%sGlobal%s: %s\n", ansi_highlight(), ansi_normal(),
1693 strna(global_info.mdns));
1694
1695 return 0;
1696 }
1697
1698 if (mode == STATUS_PRIVATE) {
1699 printf("%sGlobal%s: %s\n", ansi_highlight(), ansi_normal(),
1700 strna(global_info.dns_over_tls));
1701
1702 return 0;
1703 }
1704
1705 if (mode == STATUS_DNSSEC) {
1706 printf("%sGlobal%s: %s\n", ansi_highlight(), ansi_normal(),
1707 strna(global_info.dnssec));
1708
1709 return 0;
1710 }
1711
1712 printf("%sGlobal%s\n", ansi_highlight(), ansi_normal());
1713
1714 printf(" LLMNR setting: %s\n"
1715 "MulticastDNS setting: %s\n"
1716 " DNSOverTLS setting: %s\n"
1717 " DNSSEC setting: %s\n"
1718 " DNSSEC supported: %s\n",
1719 strna(global_info.llmnr),
1720 strna(global_info.mdns),
1721 strna(global_info.dns_over_tls),
1722 strna(global_info.dnssec),
1723 yes_no(global_info.dnssec_supported));
1724
1725 if (global_info.current_dns)
1726 printf(" Current DNS Server: %s\n", global_info.current_dns);
1727
1728 STRV_FOREACH(i, global_info.dns) {
1729 printf(" %s %s\n",
1730 i == global_info.dns ? "DNS Servers:" : " ",
1731 *i);
1732 }
1733
1734 STRV_FOREACH(i, global_info.fallback_dns) {
1735 printf("%s %s\n",
1736 i == global_info.fallback_dns ? "Fallback DNS Servers:" : " ",
1737 *i);
1738 }
1739
1740 STRV_FOREACH(i, global_info.domains) {
1741 printf(" %s %s\n",
1742 i == global_info.domains ? "DNS Domain:" : " ",
1743 *i);
1744 }
1745
1746 strv_sort(global_info.ntas);
1747 STRV_FOREACH(i, global_info.ntas) {
1748 printf(" %s %s\n",
1749 i == global_info.ntas ? "DNSSEC NTA:" : " ",
1750 *i);
1751 }
1752
1753 *empty_line = true;
1754
1755 return 0;
1756 }
1757
1758 static int status_all(sd_bus *bus, StatusMode mode) {
1759 _cleanup_(sd_netlink_message_unrefp) sd_netlink_message *req = NULL, *reply = NULL;
1760 _cleanup_(sd_netlink_unrefp) sd_netlink *rtnl = NULL;
1761 sd_netlink_message *i;
1762 bool empty_line = false;
1763 int r;
1764
1765 assert(bus);
1766
1767 r = status_global(bus, mode, &empty_line);
1768 if (r < 0)
1769 return r;
1770
1771 r = sd_netlink_open(&rtnl);
1772 if (r < 0)
1773 return log_error_errno(r, "Failed to connect to netlink: %m");
1774
1775 r = sd_rtnl_message_new_link(rtnl, &req, RTM_GETLINK, 0);
1776 if (r < 0)
1777 return rtnl_log_create_error(r);
1778
1779 r = sd_netlink_message_request_dump(req, true);
1780 if (r < 0)
1781 return rtnl_log_create_error(r);
1782
1783 r = sd_netlink_call(rtnl, req, 0, &reply);
1784 if (r < 0)
1785 return log_error_errno(r, "Failed to enumerate links: %m");
1786
1787 r = 0;
1788 for (i = reply; i; i = sd_netlink_message_next(i)) {
1789 const char *name;
1790 int ifindex, q;
1791 uint16_t type;
1792
1793 q = sd_netlink_message_get_type(i, &type);
1794 if (q < 0)
1795 return rtnl_log_parse_error(q);
1796
1797 if (type != RTM_NEWLINK)
1798 continue;
1799
1800 q = sd_rtnl_message_link_get_ifindex(i, &ifindex);
1801 if (q < 0)
1802 return rtnl_log_parse_error(q);
1803
1804 if (ifindex == LOOPBACK_IFINDEX)
1805 continue;
1806
1807 q = sd_netlink_message_read_string(i, IFLA_IFNAME, &name);
1808 if (q < 0)
1809 return rtnl_log_parse_error(q);
1810
1811 q = status_ifindex(bus, ifindex, name, mode, &empty_line);
1812 if (q < 0 && r >= 0)
1813 r = q;
1814 }
1815
1816 return r;
1817 }
1818
1819 static int verb_status(int argc, char **argv, void *userdata) {
1820 sd_bus *bus = userdata;
1821 _cleanup_(sd_netlink_unrefp) sd_netlink *rtnl = NULL;
1822 int r = 0;
1823
1824 if (argc > 1) {
1825 char **ifname;
1826 bool empty_line = false;
1827
1828 STRV_FOREACH(ifname, argv + 1) {
1829 int ifindex, q;
1830
1831 ifindex = resolve_interface(&rtnl, *ifname);
1832 if (ifindex < 0) {
1833 log_warning_errno(ifindex, "Failed to resolve interface \"%s\", ignoring: %m", *ifname);
1834 continue;
1835 }
1836
1837 q = status_ifindex(bus, ifindex, NULL, STATUS_ALL, &empty_line);
1838 if (q < 0)
1839 r = q;
1840 }
1841 } else
1842 r = status_all(bus, STATUS_ALL);
1843
1844 return r;
1845 }
1846
1847 static int call_dns(sd_bus *bus, char **dns, const char *destination, const char *path, const char *interface, sd_bus_error *error) {
1848 _cleanup_(sd_bus_message_unrefp) sd_bus_message *req = NULL;
1849 char **p;
1850 int r;
1851
1852 r = sd_bus_message_new_method_call(
1853 bus,
1854 &req,
1855 destination,
1856 path,
1857 interface,
1858 "SetLinkDNS");
1859 if (r < 0)
1860 return bus_log_create_error(r);
1861
1862 r = sd_bus_message_append(req, "i", arg_ifindex);
1863 if (r < 0)
1864 return bus_log_create_error(r);
1865
1866 r = sd_bus_message_open_container(req, 'a', "(iay)");
1867 if (r < 0)
1868 return bus_log_create_error(r);
1869
1870 /* If only argument is the empty string, then call SetLinkDNS() with an
1871 * empty list, which will clear the list of domains for an interface. */
1872 if (!strv_equal(dns, STRV_MAKE("")))
1873 STRV_FOREACH(p, dns) {
1874 struct in_addr_data data;
1875
1876 r = in_addr_from_string_auto(*p, &data.family, &data.address);
1877 if (r < 0)
1878 return log_error_errno(r, "Failed to parse DNS server address: %s", *p);
1879
1880 r = sd_bus_message_open_container(req, 'r', "iay");
1881 if (r < 0)
1882 return bus_log_create_error(r);
1883
1884 r = sd_bus_message_append(req, "i", data.family);
1885 if (r < 0)
1886 return bus_log_create_error(r);
1887
1888 r = sd_bus_message_append_array(req, 'y', &data.address, FAMILY_ADDRESS_SIZE(data.family));
1889 if (r < 0)
1890 return bus_log_create_error(r);
1891
1892 r = sd_bus_message_close_container(req);
1893 if (r < 0)
1894 return bus_log_create_error(r);
1895 }
1896
1897 r = sd_bus_message_close_container(req);
1898 if (r < 0)
1899 return bus_log_create_error(r);
1900
1901 return sd_bus_call(bus, req, 0, error, NULL);
1902 }
1903
1904 static int verb_dns(int argc, char **argv, void *userdata) {
1905 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
1906 sd_bus *bus = userdata;
1907 int r;
1908
1909 assert(bus);
1910
1911 if (argc >= 2) {
1912 r = ifname_mangle(argv[1]);
1913 if (r < 0)
1914 return r;
1915 }
1916
1917 if (arg_ifindex <= 0)
1918 return status_all(bus, STATUS_DNS);
1919
1920 if (argc < 3)
1921 return status_ifindex(bus, arg_ifindex, NULL, STATUS_DNS, NULL);
1922
1923 r = call_dns(bus, argv + 2,
1924 "org.freedesktop.resolve1",
1925 "/org/freedesktop/resolve1",
1926 "org.freedesktop.resolve1.Manager",
1927 &error);
1928 if (r < 0 && sd_bus_error_has_name(&error, BUS_ERROR_LINK_BUSY)) {
1929 sd_bus_error_free(&error);
1930
1931 r = call_dns(bus, argv + 2,
1932 "org.freedesktop.network1",
1933 "/org/freedesktop/network1",
1934 "org.freedesktop.network1.Manager",
1935 &error);
1936 }
1937 if (r < 0) {
1938 if (arg_ifindex_permissive &&
1939 sd_bus_error_has_name(&error, BUS_ERROR_NO_SUCH_LINK))
1940 return 0;
1941
1942 return log_error_errno(r, "Failed to set DNS configuration: %s", bus_error_message(&error, r));
1943 }
1944
1945 return 0;
1946 }
1947
1948 static int call_domain(sd_bus *bus, char **domain, const char *destination, const char *path, const char *interface, sd_bus_error *error) {
1949 _cleanup_(sd_bus_message_unrefp) sd_bus_message *req = NULL;
1950 char **p;
1951 int r;
1952
1953 r = sd_bus_message_new_method_call(
1954 bus,
1955 &req,
1956 destination,
1957 path,
1958 interface,
1959 "SetLinkDomains");
1960 if (r < 0)
1961 return bus_log_create_error(r);
1962
1963 r = sd_bus_message_append(req, "i", arg_ifindex);
1964 if (r < 0)
1965 return bus_log_create_error(r);
1966
1967 r = sd_bus_message_open_container(req, 'a', "(sb)");
1968 if (r < 0)
1969 return bus_log_create_error(r);
1970
1971 /* If only argument is the empty string, then call SetLinkDomains() with an
1972 * empty list, which will clear the list of domains for an interface. */
1973 if (!strv_equal(domain, STRV_MAKE("")))
1974 STRV_FOREACH(p, domain) {
1975 const char *n;
1976
1977 n = **p == '~' ? *p + 1 : *p;
1978
1979 r = dns_name_is_valid(n);
1980 if (r < 0)
1981 return log_error_errno(r, "Failed to validate specified domain %s: %m", n);
1982 if (r == 0) {
1983 log_error("Domain not valid: %s", n);
1984 return -EINVAL;
1985 }
1986
1987 r = sd_bus_message_append(req, "(sb)", n, **p == '~');
1988 if (r < 0)
1989 return bus_log_create_error(r);
1990 }
1991
1992 r = sd_bus_message_close_container(req);
1993 if (r < 0)
1994 return bus_log_create_error(r);
1995
1996 return sd_bus_call(bus, req, 0, error, NULL);
1997 }
1998
1999 static int verb_domain(int argc, char **argv, void *userdata) {
2000 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
2001 sd_bus *bus = userdata;
2002 int r;
2003
2004 assert(bus);
2005
2006 if (argc >= 2) {
2007 r = ifname_mangle(argv[1]);
2008 if (r < 0)
2009 return r;
2010 }
2011
2012 if (arg_ifindex <= 0)
2013 return status_all(bus, STATUS_DOMAIN);
2014
2015 if (argc < 3)
2016 return status_ifindex(bus, arg_ifindex, NULL, STATUS_DOMAIN, NULL);
2017
2018 r = call_domain(bus, argv + 2,
2019 "org.freedesktop.resolve1",
2020 "/org/freedesktop/resolve1",
2021 "org.freedesktop.resolve1.Manager",
2022 &error);
2023 if (r < 0 && sd_bus_error_has_name(&error, BUS_ERROR_LINK_BUSY)) {
2024 sd_bus_error_free(&error);
2025
2026 r = call_domain(bus, argv + 2,
2027 "org.freedesktop.network1",
2028 "/org/freedesktop/network1",
2029 "org.freedesktop.network1.Manager",
2030 &error);
2031 }
2032 if (r < 0) {
2033 if (arg_ifindex_permissive &&
2034 sd_bus_error_has_name(&error, BUS_ERROR_NO_SUCH_LINK))
2035 return 0;
2036
2037 return log_error_errno(r, "Failed to set domain configuration: %s", bus_error_message(&error, r));
2038 }
2039
2040 return 0;
2041 }
2042
2043 static int verb_default_route(int argc, char **argv, void *userdata) {
2044 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
2045 sd_bus *bus = userdata;
2046 int r, b;
2047
2048 assert(bus);
2049
2050 if (argc >= 2) {
2051 r = ifname_mangle(argv[1]);
2052 if (r < 0)
2053 return r;
2054 }
2055
2056 if (arg_ifindex <= 0)
2057 return status_all(bus, STATUS_DEFAULT_ROUTE);
2058
2059 if (argc < 3)
2060 return status_ifindex(bus, arg_ifindex, NULL, STATUS_DEFAULT_ROUTE, NULL);
2061
2062 b = parse_boolean(argv[2]);
2063 if (b < 0)
2064 return log_error_errno(b, "Failed to parse boolean argument: %s", argv[2]);
2065
2066 r = sd_bus_call_method(
2067 bus,
2068 "org.freedesktop.resolve1",
2069 "/org/freedesktop/resolve1",
2070 "org.freedesktop.resolve1.Manager",
2071 "SetLinkDefaultRoute",
2072 &error,
2073 NULL,
2074 "ib", arg_ifindex, b);
2075 if (r < 0 && sd_bus_error_has_name(&error, BUS_ERROR_LINK_BUSY)) {
2076 sd_bus_error_free(&error);
2077
2078 r = sd_bus_call_method(
2079 bus,
2080 "org.freedesktop.network1",
2081 "/org/freedesktop/network1",
2082 "org.freedesktop.network1.Manager",
2083 "SetLinkDefaultRoute",
2084 &error,
2085 NULL,
2086 "ib", arg_ifindex, b);
2087 }
2088 if (r < 0) {
2089 if (arg_ifindex_permissive &&
2090 sd_bus_error_has_name(&error, BUS_ERROR_NO_SUCH_LINK))
2091 return 0;
2092
2093 return log_error_errno(r, "Failed to set default route configuration: %s", bus_error_message(&error, r));
2094 }
2095
2096 return 0;
2097 }
2098
2099 static int verb_llmnr(int argc, char **argv, void *userdata) {
2100 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
2101 sd_bus *bus = userdata;
2102 int r;
2103
2104 assert(bus);
2105
2106 if (argc >= 2) {
2107 r = ifname_mangle(argv[1]);
2108 if (r < 0)
2109 return r;
2110 }
2111
2112 if (arg_ifindex <= 0)
2113 return status_all(bus, STATUS_LLMNR);
2114
2115 if (argc < 3)
2116 return status_ifindex(bus, arg_ifindex, NULL, STATUS_LLMNR, NULL);
2117
2118 r = sd_bus_call_method(
2119 bus,
2120 "org.freedesktop.resolve1",
2121 "/org/freedesktop/resolve1",
2122 "org.freedesktop.resolve1.Manager",
2123 "SetLinkLLMNR",
2124 &error,
2125 NULL,
2126 "is", arg_ifindex, argv[2]);
2127 if (r < 0 && sd_bus_error_has_name(&error, BUS_ERROR_LINK_BUSY)) {
2128 sd_bus_error_free(&error);
2129
2130 r = sd_bus_call_method(
2131 bus,
2132 "org.freedesktop.network1",
2133 "/org/freedesktop/network1",
2134 "org.freedesktop.network1.Manager",
2135 "SetLinkLLMNR",
2136 &error,
2137 NULL,
2138 "is", arg_ifindex, argv[2]);
2139 }
2140 if (r < 0) {
2141 if (arg_ifindex_permissive &&
2142 sd_bus_error_has_name(&error, BUS_ERROR_NO_SUCH_LINK))
2143 return 0;
2144
2145 return log_error_errno(r, "Failed to set LLMNR configuration: %s", bus_error_message(&error, r));
2146 }
2147
2148 return 0;
2149 }
2150
2151 static int verb_mdns(int argc, char **argv, void *userdata) {
2152 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
2153 sd_bus *bus = userdata;
2154 int r;
2155
2156 assert(bus);
2157
2158 if (argc >= 2) {
2159 r = ifname_mangle(argv[1]);
2160 if (r < 0)
2161 return r;
2162 }
2163
2164 if (arg_ifindex <= 0)
2165 return status_all(bus, STATUS_MDNS);
2166
2167 if (argc < 3)
2168 return status_ifindex(bus, arg_ifindex, NULL, STATUS_MDNS, NULL);
2169
2170 r = sd_bus_call_method(
2171 bus,
2172 "org.freedesktop.resolve1",
2173 "/org/freedesktop/resolve1",
2174 "org.freedesktop.resolve1.Manager",
2175 "SetLinkMulticastDNS",
2176 &error,
2177 NULL,
2178 "is", arg_ifindex, argv[2]);
2179 if (r < 0 && sd_bus_error_has_name(&error, BUS_ERROR_LINK_BUSY)) {
2180 sd_bus_error_free(&error);
2181
2182 r = sd_bus_call_method(
2183 bus,
2184 "org.freedesktop.network1",
2185 "/org/freedesktop/network1",
2186 "org.freedesktop.network1.Manager",
2187 "SetLinkMulticastDNS",
2188 &error,
2189 NULL,
2190 "is", arg_ifindex, argv[2]);
2191 }
2192 if (r < 0) {
2193 if (arg_ifindex_permissive &&
2194 sd_bus_error_has_name(&error, BUS_ERROR_NO_SUCH_LINK))
2195 return 0;
2196
2197 return log_error_errno(r, "Failed to set MulticastDNS configuration: %s", bus_error_message(&error, r));
2198 }
2199
2200 return 0;
2201 }
2202
2203 static int verb_dns_over_tls(int argc, char **argv, void *userdata) {
2204 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
2205 sd_bus *bus = userdata;
2206 int r;
2207
2208 assert(bus);
2209
2210 if (argc >= 2) {
2211 r = ifname_mangle(argv[1]);
2212 if (r < 0)
2213 return r;
2214 }
2215
2216 if (arg_ifindex <= 0)
2217 return status_all(bus, STATUS_PRIVATE);
2218
2219 if (argc < 3)
2220 return status_ifindex(bus, arg_ifindex, NULL, STATUS_PRIVATE, NULL);
2221
2222 r = sd_bus_call_method(
2223 bus,
2224 "org.freedesktop.resolve1",
2225 "/org/freedesktop/resolve1",
2226 "org.freedesktop.resolve1.Manager",
2227 "SetLinkDNSOverTLS",
2228 &error,
2229 NULL,
2230 "is", arg_ifindex, argv[2]);
2231 if (r < 0 && sd_bus_error_has_name(&error, BUS_ERROR_LINK_BUSY)) {
2232 sd_bus_error_free(&error);
2233
2234 r = sd_bus_call_method(
2235 bus,
2236 "org.freedesktop.network1",
2237 "/org/freedesktop/network1",
2238 "org.freedesktop.network1.Manager",
2239 "SetLinkDNSOverTLS",
2240 &error,
2241 NULL,
2242 "is", arg_ifindex, argv[2]);
2243 }
2244 if (r < 0) {
2245 if (arg_ifindex_permissive &&
2246 sd_bus_error_has_name(&error, BUS_ERROR_NO_SUCH_LINK))
2247 return 0;
2248
2249 return log_error_errno(r, "Failed to set DNSOverTLS configuration: %s", bus_error_message(&error, r));
2250 }
2251
2252 return 0;
2253 }
2254
2255 static int verb_dnssec(int argc, char **argv, void *userdata) {
2256 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
2257 sd_bus *bus = userdata;
2258 int r;
2259
2260 assert(bus);
2261
2262 if (argc >= 2) {
2263 r = ifname_mangle(argv[1]);
2264 if (r < 0)
2265 return r;
2266 }
2267
2268 if (arg_ifindex <= 0)
2269 return status_all(bus, STATUS_DNSSEC);
2270
2271 if (argc < 3)
2272 return status_ifindex(bus, arg_ifindex, NULL, STATUS_DNSSEC, NULL);
2273
2274 r = sd_bus_call_method(
2275 bus,
2276 "org.freedesktop.resolve1",
2277 "/org/freedesktop/resolve1",
2278 "org.freedesktop.resolve1.Manager",
2279 "SetLinkDNSSEC",
2280 &error,
2281 NULL,
2282 "is", arg_ifindex, argv[2]);
2283 if (r < 0 && sd_bus_error_has_name(&error, BUS_ERROR_LINK_BUSY)) {
2284 sd_bus_error_free(&error);
2285
2286 r = sd_bus_call_method(
2287 bus,
2288 "org.freedesktop.network1",
2289 "/org/freedesktop/network1",
2290 "org.freedesktop.network1.Manager",
2291 "SetLinkDNSSEC",
2292 &error,
2293 NULL,
2294 "is", arg_ifindex, argv[2]);
2295 }
2296 if (r < 0) {
2297 if (arg_ifindex_permissive &&
2298 sd_bus_error_has_name(&error, BUS_ERROR_NO_SUCH_LINK))
2299 return 0;
2300
2301 return log_error_errno(r, "Failed to set DNSSEC configuration: %s", bus_error_message(&error, r));
2302 }
2303
2304 return 0;
2305 }
2306
2307 static int call_nta(sd_bus *bus, char **nta, const char *destination, const char *path, const char *interface, sd_bus_error *error) {
2308 _cleanup_(sd_bus_message_unrefp) sd_bus_message *req = NULL;
2309 int r;
2310
2311 r = sd_bus_message_new_method_call(
2312 bus,
2313 &req,
2314 destination,
2315 path,
2316 interface,
2317 "SetLinkDNSSECNegativeTrustAnchors");
2318 if (r < 0)
2319 return bus_log_create_error(r);
2320
2321 r = sd_bus_message_append(req, "i", arg_ifindex);
2322 if (r < 0)
2323 return bus_log_create_error(r);
2324
2325 r = sd_bus_message_append_strv(req, nta);
2326 if (r < 0)
2327 return bus_log_create_error(r);
2328
2329 return sd_bus_call(bus, req, 0, error, NULL);
2330 }
2331
2332 static int verb_nta(int argc, char **argv, void *userdata) {
2333 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
2334 sd_bus *bus = userdata;
2335 char **p;
2336 int r;
2337 bool clear;
2338
2339 assert(bus);
2340
2341 if (argc >= 2) {
2342 r = ifname_mangle(argv[1]);
2343 if (r < 0)
2344 return r;
2345 }
2346
2347 if (arg_ifindex <= 0)
2348 return status_all(bus, STATUS_NTA);
2349
2350 if (argc < 3)
2351 return status_ifindex(bus, arg_ifindex, NULL, STATUS_NTA, NULL);
2352
2353 /* If only argument is the empty string, then call SetLinkDNSSECNegativeTrustAnchors()
2354 * with an empty list, which will clear the list of domains for an interface. */
2355 clear = strv_equal(argv + 2, STRV_MAKE(""));
2356
2357 if (!clear)
2358 STRV_FOREACH(p, argv + 2) {
2359 r = dns_name_is_valid(*p);
2360 if (r < 0)
2361 return log_error_errno(r, "Failed to validate specified domain %s: %m", *p);
2362 if (r == 0) {
2363 log_error("Domain not valid: %s", *p);
2364 return -EINVAL;
2365 }
2366 }
2367
2368 r = call_nta(bus, clear ? NULL : argv + 2,
2369 "org.freedesktop.resolve1",
2370 "/org/freedesktop/resolve1",
2371 "org.freedesktop.resolve1.Manager",
2372 &error);
2373 if (r < 0 && sd_bus_error_has_name(&error, BUS_ERROR_LINK_BUSY)) {
2374 sd_bus_error_free(&error);
2375
2376 r = call_nta(bus, clear ? NULL : argv + 2,
2377 "org.freedesktop.network1",
2378 "/org/freedesktop/network1",
2379 "org.freedesktop.network1.Manager",
2380 &error);
2381 }
2382 if (r < 0) {
2383 if (arg_ifindex_permissive &&
2384 sd_bus_error_has_name(&error, BUS_ERROR_NO_SUCH_LINK))
2385 return 0;
2386
2387 return log_error_errno(r, "Failed to set DNSSEC NTA configuration: %s", bus_error_message(&error, r));
2388 }
2389
2390 return 0;
2391 }
2392
2393 static int verb_revert_link(int argc, char **argv, void *userdata) {
2394 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
2395 sd_bus *bus = userdata;
2396 int r;
2397
2398 assert(bus);
2399
2400 if (argc >= 2) {
2401 r = ifname_mangle(argv[1]);
2402 if (r < 0)
2403 return r;
2404 }
2405
2406 if (arg_ifindex <= 0)
2407 return log_error_errno(SYNTHETIC_ERRNO(EINVAL), "Interface argument required.");
2408
2409 r = sd_bus_call_method(
2410 bus,
2411 "org.freedesktop.resolve1",
2412 "/org/freedesktop/resolve1",
2413 "org.freedesktop.resolve1.Manager",
2414 "RevertLink",
2415 &error,
2416 NULL,
2417 "i", arg_ifindex);
2418 if (r < 0 && sd_bus_error_has_name(&error, BUS_ERROR_LINK_BUSY)) {
2419 sd_bus_error_free(&error);
2420
2421 r = sd_bus_call_method(
2422 bus,
2423 "org.freedesktop.network1",
2424 "/org/freedesktop/network1",
2425 "org.freedesktop.network1.Manager",
2426 "RevertLinkDNS",
2427 &error,
2428 NULL,
2429 "i", arg_ifindex);
2430 }
2431 if (r < 0) {
2432 if (arg_ifindex_permissive &&
2433 sd_bus_error_has_name(&error, BUS_ERROR_NO_SUCH_LINK))
2434 return 0;
2435
2436 return log_error_errno(r, "Failed to revert interface configuration: %s", bus_error_message(&error, r));
2437 }
2438
2439 return 0;
2440 }
2441
2442 static void help_protocol_types(void) {
2443 if (arg_legend)
2444 puts("Known protocol types:");
2445 puts("dns\nllmnr\nllmnr-ipv4\nllmnr-ipv6\nmdns\nmdns-ipv4\nmdns-ipv6");
2446 }
2447
2448 static void help_dns_types(void) {
2449 if (arg_legend)
2450 puts("Known DNS RR types:");
2451
2452 DUMP_STRING_TABLE(dns_type, int, _DNS_TYPE_MAX);
2453 }
2454
2455 static void help_dns_classes(void) {
2456 if (arg_legend)
2457 puts("Known DNS RR classes:");
2458
2459 DUMP_STRING_TABLE(dns_class, int, _DNS_CLASS_MAX);
2460 }
2461
2462 static int compat_help(void) {
2463 _cleanup_free_ char *link = NULL;
2464 int r;
2465
2466 r = terminal_urlify_man("resolvectl", "1", &link);
2467 if (r < 0)
2468 return log_oom();
2469
2470 printf("%1$s [OPTIONS...] HOSTNAME|ADDRESS...\n"
2471 "%1$s [OPTIONS...] --service [[NAME] TYPE] DOMAIN\n"
2472 "%1$s [OPTIONS...] --openpgp EMAIL@DOMAIN...\n"
2473 "%1$s [OPTIONS...] --statistics\n"
2474 "%1$s [OPTIONS...] --reset-statistics\n"
2475 "\n"
2476 "%2$sResolve domain names, IPv4 and IPv6 addresses, DNS records, and services.%3$s\n\n"
2477 " -h --help Show this help\n"
2478 " --version Show package version\n"
2479 " --no-pager Do not pipe output into a pager\n"
2480 " -4 Resolve IPv4 addresses\n"
2481 " -6 Resolve IPv6 addresses\n"
2482 " -i --interface=INTERFACE Look on interface\n"
2483 " -p --protocol=PROTO|help Look via protocol\n"
2484 " -t --type=TYPE|help Query RR with DNS type\n"
2485 " -c --class=CLASS|help Query RR with DNS class\n"
2486 " --service Resolve service (SRV)\n"
2487 " --service-address=BOOL Resolve address for services (default: yes)\n"
2488 " --service-txt=BOOL Resolve TXT records for services (default: yes)\n"
2489 " --openpgp Query OpenPGP public key\n"
2490 " --tlsa Query TLS public key\n"
2491 " --cname=BOOL Follow CNAME redirects (default: yes)\n"
2492 " --search=BOOL Use search domains for single-label names\n"
2493 " (default: yes)\n"
2494 " --raw[=payload|packet] Dump the answer as binary data\n"
2495 " --legend=BOOL Print headers and additional info (default: yes)\n"
2496 " --statistics Show resolver statistics\n"
2497 " --reset-statistics Reset resolver statistics\n"
2498 " --status Show link and server status\n"
2499 " --flush-caches Flush all local DNS caches\n"
2500 " --reset-server-features\n"
2501 " Forget learnt DNS server feature levels\n"
2502 " --set-dns=SERVER Set per-interface DNS server address\n"
2503 " --set-domain=DOMAIN Set per-interface search domain\n"
2504 " --set-llmnr=MODE Set per-interface LLMNR mode\n"
2505 " --set-mdns=MODE Set per-interface MulticastDNS mode\n"
2506 " --set-dnsovertls=MODE Set per-interface DNS-over-TLS mode\n"
2507 " --set-dnssec=MODE Set per-interface DNSSEC mode\n"
2508 " --set-nta=DOMAIN Set per-interface DNSSEC NTA\n"
2509 " --revert Revert per-interface configuration\n"
2510 "\nSee the %4$s for details.\n"
2511 , program_invocation_short_name
2512 , ansi_highlight()
2513 , ansi_normal()
2514 , link
2515 );
2516
2517 return 0;
2518 }
2519
2520 static int native_help(void) {
2521 _cleanup_free_ char *link = NULL;
2522 int r;
2523
2524 r = terminal_urlify_man("resolvectl", "1", &link);
2525 if (r < 0)
2526 return log_oom();
2527
2528 printf("%s [OPTIONS...] COMMAND ...\n"
2529 "\n"
2530 "%sSend control commands to the network name resolution manager, or%s\n"
2531 "%sresolve domain names, IPv4 and IPv6 addresses, DNS records, and services.%s\n"
2532 "\nCommands:\n"
2533 " query HOSTNAME|ADDRESS... Resolve domain names, IPv4 and IPv6 addresses\n"
2534 " service [[NAME] TYPE] DOMAIN Resolve service (SRV)\n"
2535 " openpgp EMAIL@DOMAIN... Query OpenPGP public key\n"
2536 " tlsa DOMAIN[:PORT]... Query TLS public key\n"
2537 " status [LINK...] Show link and server status\n"
2538 " statistics Show resolver statistics\n"
2539 " reset-statistics Reset resolver statistics\n"
2540 " flush-caches Flush all local DNS caches\n"
2541 " reset-server-features Forget learnt DNS server feature levels\n"
2542 " dns [LINK [SERVER...]] Get/set per-interface DNS server address\n"
2543 " domain [LINK [DOMAIN...]] Get/set per-interface search domain\n"
2544 " default-route [LINK [BOOL]] Get/set per-interface default route flag\n"
2545 " llmnr [LINK [MODE]] Get/set per-interface LLMNR mode\n"
2546 " mdns [LINK [MODE]] Get/set per-interface MulticastDNS mode\n"
2547 " dnsovertls [LINK [MODE]] Get/set per-interface DNS-over-TLS mode\n"
2548 " dnssec [LINK [MODE]] Get/set per-interface DNSSEC mode\n"
2549 " nta [LINK [DOMAIN...]] Get/set per-interface DNSSEC NTA\n"
2550 " revert LINK Revert per-interface configuration\n"
2551 "\nOptions:\n"
2552 " -h --help Show this help\n"
2553 " --version Show package version\n"
2554 " --no-pager Do not pipe output into a pager\n"
2555 " -4 Resolve IPv4 addresses\n"
2556 " -6 Resolve IPv6 addresses\n"
2557 " -i --interface=INTERFACE Look on interface\n"
2558 " -p --protocol=PROTO|help Look via protocol\n"
2559 " -t --type=TYPE|help Query RR with DNS type\n"
2560 " -c --class=CLASS|help Query RR with DNS class\n"
2561 " --service-address=BOOL Resolve address for services (default: yes)\n"
2562 " --service-txt=BOOL Resolve TXT records for services (default: yes)\n"
2563 " --cname=BOOL Follow CNAME redirects (default: yes)\n"
2564 " --search=BOOL Use search domains for single-label names\n"
2565 " (default: yes)\n"
2566 " --raw[=payload|packet] Dump the answer as binary data\n"
2567 " --legend=BOOL Print headers and additional info (default: yes)\n"
2568 "\nSee the %s for details.\n"
2569 , program_invocation_short_name
2570 , ansi_highlight()
2571 , ansi_normal()
2572 , ansi_highlight()
2573 , ansi_normal()
2574 , link
2575 );
2576
2577 return 0;
2578 }
2579
2580 static int verb_help(int argc, char **argv, void *userdata) {
2581 return native_help();
2582 }
2583
2584 static int compat_parse_argv(int argc, char *argv[]) {
2585 enum {
2586 ARG_VERSION = 0x100,
2587 ARG_LEGEND,
2588 ARG_SERVICE,
2589 ARG_CNAME,
2590 ARG_SERVICE_ADDRESS,
2591 ARG_SERVICE_TXT,
2592 ARG_OPENPGP,
2593 ARG_TLSA,
2594 ARG_RAW,
2595 ARG_SEARCH,
2596 ARG_STATISTICS,
2597 ARG_RESET_STATISTICS,
2598 ARG_STATUS,
2599 ARG_FLUSH_CACHES,
2600 ARG_RESET_SERVER_FEATURES,
2601 ARG_NO_PAGER,
2602 ARG_SET_DNS,
2603 ARG_SET_DOMAIN,
2604 ARG_SET_LLMNR,
2605 ARG_SET_MDNS,
2606 ARG_SET_PRIVATE,
2607 ARG_SET_DNSSEC,
2608 ARG_SET_NTA,
2609 ARG_REVERT_LINK,
2610 };
2611
2612 static const struct option options[] = {
2613 { "help", no_argument, NULL, 'h' },
2614 { "version", no_argument, NULL, ARG_VERSION },
2615 { "type", required_argument, NULL, 't' },
2616 { "class", required_argument, NULL, 'c' },
2617 { "legend", required_argument, NULL, ARG_LEGEND },
2618 { "interface", required_argument, NULL, 'i' },
2619 { "protocol", required_argument, NULL, 'p' },
2620 { "cname", required_argument, NULL, ARG_CNAME },
2621 { "service", no_argument, NULL, ARG_SERVICE },
2622 { "service-address", required_argument, NULL, ARG_SERVICE_ADDRESS },
2623 { "service-txt", required_argument, NULL, ARG_SERVICE_TXT },
2624 { "openpgp", no_argument, NULL, ARG_OPENPGP },
2625 { "tlsa", optional_argument, NULL, ARG_TLSA },
2626 { "raw", optional_argument, NULL, ARG_RAW },
2627 { "search", required_argument, NULL, ARG_SEARCH },
2628 { "statistics", no_argument, NULL, ARG_STATISTICS, },
2629 { "reset-statistics", no_argument, NULL, ARG_RESET_STATISTICS },
2630 { "status", no_argument, NULL, ARG_STATUS },
2631 { "flush-caches", no_argument, NULL, ARG_FLUSH_CACHES },
2632 { "reset-server-features", no_argument, NULL, ARG_RESET_SERVER_FEATURES },
2633 { "no-pager", no_argument, NULL, ARG_NO_PAGER },
2634 { "set-dns", required_argument, NULL, ARG_SET_DNS },
2635 { "set-domain", required_argument, NULL, ARG_SET_DOMAIN },
2636 { "set-llmnr", required_argument, NULL, ARG_SET_LLMNR },
2637 { "set-mdns", required_argument, NULL, ARG_SET_MDNS },
2638 { "set-dnsovertls", required_argument, NULL, ARG_SET_PRIVATE },
2639 { "set-dnssec", required_argument, NULL, ARG_SET_DNSSEC },
2640 { "set-nta", required_argument, NULL, ARG_SET_NTA },
2641 { "revert", no_argument, NULL, ARG_REVERT_LINK },
2642 {}
2643 };
2644
2645 int c, r;
2646
2647 assert(argc >= 0);
2648 assert(argv);
2649
2650 while ((c = getopt_long(argc, argv, "h46i:t:c:p:", options, NULL)) >= 0)
2651 switch(c) {
2652
2653 case 'h':
2654 return compat_help();
2655
2656 case ARG_VERSION:
2657 return version();
2658
2659 case '4':
2660 arg_family = AF_INET;
2661 break;
2662
2663 case '6':
2664 arg_family = AF_INET6;
2665 break;
2666
2667 case 'i':
2668 r = ifname_mangle(optarg);
2669 if (r < 0)
2670 return r;
2671 break;
2672
2673 case 't':
2674 if (streq(optarg, "help")) {
2675 help_dns_types();
2676 return 0;
2677 }
2678
2679 r = dns_type_from_string(optarg);
2680 if (r < 0) {
2681 log_error("Failed to parse RR record type %s", optarg);
2682 return r;
2683 }
2684 arg_type = (uint16_t) r;
2685 assert((int) arg_type == r);
2686
2687 arg_mode = MODE_RESOLVE_RECORD;
2688 break;
2689
2690 case 'c':
2691 if (streq(optarg, "help")) {
2692 help_dns_classes();
2693 return 0;
2694 }
2695
2696 r = dns_class_from_string(optarg);
2697 if (r < 0) {
2698 log_error("Failed to parse RR record class %s", optarg);
2699 return r;
2700 }
2701 arg_class = (uint16_t) r;
2702 assert((int) arg_class == r);
2703
2704 break;
2705
2706 case ARG_LEGEND:
2707 r = parse_boolean(optarg);
2708 if (r < 0)
2709 return log_error_errno(r, "Failed to parse --legend= argument");
2710
2711 arg_legend = r;
2712 break;
2713
2714 case 'p':
2715 if (streq(optarg, "help")) {
2716 help_protocol_types();
2717 return 0;
2718 } else if (streq(optarg, "dns"))
2719 arg_flags |= SD_RESOLVED_DNS;
2720 else if (streq(optarg, "llmnr"))
2721 arg_flags |= SD_RESOLVED_LLMNR;
2722 else if (streq(optarg, "llmnr-ipv4"))
2723 arg_flags |= SD_RESOLVED_LLMNR_IPV4;
2724 else if (streq(optarg, "llmnr-ipv6"))
2725 arg_flags |= SD_RESOLVED_LLMNR_IPV6;
2726 else if (streq(optarg, "mdns"))
2727 arg_flags |= SD_RESOLVED_MDNS;
2728 else if (streq(optarg, "mdns-ipv4"))
2729 arg_flags |= SD_RESOLVED_MDNS_IPV4;
2730 else if (streq(optarg, "mdns-ipv6"))
2731 arg_flags |= SD_RESOLVED_MDNS_IPV6;
2732 else
2733 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
2734 "Unknown protocol specifier: %s", optarg);
2735
2736 break;
2737
2738 case ARG_SERVICE:
2739 arg_mode = MODE_RESOLVE_SERVICE;
2740 break;
2741
2742 case ARG_OPENPGP:
2743 arg_mode = MODE_RESOLVE_OPENPGP;
2744 break;
2745
2746 case ARG_TLSA:
2747 arg_mode = MODE_RESOLVE_TLSA;
2748 if (!optarg || service_family_is_valid(optarg))
2749 arg_service_family = optarg;
2750 else
2751 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
2752 "Unknown service family \"%s\".", optarg);
2753 break;
2754
2755 case ARG_RAW:
2756 if (on_tty())
2757 return log_error_errno(SYNTHETIC_ERRNO(ENOTTY),
2758 "Refusing to write binary data to tty.");
2759
2760 if (optarg == NULL || streq(optarg, "payload"))
2761 arg_raw = RAW_PAYLOAD;
2762 else if (streq(optarg, "packet"))
2763 arg_raw = RAW_PACKET;
2764 else
2765 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
2766 "Unknown --raw specifier \"%s\".",
2767 optarg);
2768
2769 arg_legend = false;
2770 break;
2771
2772 case ARG_CNAME:
2773 r = parse_boolean(optarg);
2774 if (r < 0)
2775 return log_error_errno(r, "Failed to parse --cname= argument.");
2776 SET_FLAG(arg_flags, SD_RESOLVED_NO_CNAME, r == 0);
2777 break;
2778
2779 case ARG_SERVICE_ADDRESS:
2780 r = parse_boolean(optarg);
2781 if (r < 0)
2782 return log_error_errno(r, "Failed to parse --service-address= argument.");
2783 SET_FLAG(arg_flags, SD_RESOLVED_NO_ADDRESS, r == 0);
2784 break;
2785
2786 case ARG_SERVICE_TXT:
2787 r = parse_boolean(optarg);
2788 if (r < 0)
2789 return log_error_errno(r, "Failed to parse --service-txt= argument.");
2790 SET_FLAG(arg_flags, SD_RESOLVED_NO_TXT, r == 0);
2791 break;
2792
2793 case ARG_SEARCH:
2794 r = parse_boolean(optarg);
2795 if (r < 0)
2796 return log_error_errno(r, "Failed to parse --search argument.");
2797 SET_FLAG(arg_flags, SD_RESOLVED_NO_SEARCH, r == 0);
2798 break;
2799
2800 case ARG_STATISTICS:
2801 arg_mode = MODE_STATISTICS;
2802 break;
2803
2804 case ARG_RESET_STATISTICS:
2805 arg_mode = MODE_RESET_STATISTICS;
2806 break;
2807
2808 case ARG_FLUSH_CACHES:
2809 arg_mode = MODE_FLUSH_CACHES;
2810 break;
2811
2812 case ARG_RESET_SERVER_FEATURES:
2813 arg_mode = MODE_RESET_SERVER_FEATURES;
2814 break;
2815
2816 case ARG_STATUS:
2817 arg_mode = MODE_STATUS;
2818 break;
2819
2820 case ARG_NO_PAGER:
2821 arg_pager_flags |= PAGER_DISABLE;
2822 break;
2823
2824 case ARG_SET_DNS:
2825 r = strv_extend(&arg_set_dns, optarg);
2826 if (r < 0)
2827 return log_oom();
2828
2829 arg_mode = MODE_SET_LINK;
2830 break;
2831
2832 case ARG_SET_DOMAIN:
2833 r = strv_extend(&arg_set_domain, optarg);
2834 if (r < 0)
2835 return log_oom();
2836
2837 arg_mode = MODE_SET_LINK;
2838 break;
2839
2840 case ARG_SET_LLMNR:
2841 arg_set_llmnr = optarg;
2842 arg_mode = MODE_SET_LINK;
2843 break;
2844
2845 case ARG_SET_MDNS:
2846 arg_set_mdns = optarg;
2847 arg_mode = MODE_SET_LINK;
2848 break;
2849
2850 case ARG_SET_PRIVATE:
2851 arg_set_dns_over_tls = optarg;
2852 arg_mode = MODE_SET_LINK;
2853 break;
2854
2855 case ARG_SET_DNSSEC:
2856 arg_set_dnssec = optarg;
2857 arg_mode = MODE_SET_LINK;
2858 break;
2859
2860 case ARG_SET_NTA:
2861 r = strv_extend(&arg_set_nta, optarg);
2862 if (r < 0)
2863 return log_oom();
2864
2865 arg_mode = MODE_SET_LINK;
2866 break;
2867
2868 case ARG_REVERT_LINK:
2869 arg_mode = MODE_REVERT_LINK;
2870 break;
2871
2872 case '?':
2873 return -EINVAL;
2874
2875 default:
2876 assert_not_reached("Unhandled option");
2877 }
2878
2879 if (arg_type == 0 && arg_class != 0)
2880 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
2881 "--class= may only be used in conjunction with --type=.");
2882
2883 if (arg_type != 0 && arg_mode == MODE_RESOLVE_SERVICE)
2884 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
2885 "--service and --type= may not be combined.");
2886
2887 if (arg_type != 0 && arg_class == 0)
2888 arg_class = DNS_CLASS_IN;
2889
2890 if (arg_class != 0 && arg_type == 0)
2891 arg_type = DNS_TYPE_A;
2892
2893 if (IN_SET(arg_mode, MODE_SET_LINK, MODE_REVERT_LINK)) {
2894
2895 if (arg_ifindex <= 0)
2896 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
2897 "--set-dns=, --set-domain=, --set-llmnr=, --set-mdns=, --set-dnsovertls=, --set-dnssec=, --set-nta= and --revert require --interface=.");
2898 }
2899
2900 return 1 /* work to do */;
2901 }
2902
2903 static int native_parse_argv(int argc, char *argv[]) {
2904 enum {
2905 ARG_VERSION = 0x100,
2906 ARG_LEGEND,
2907 ARG_CNAME,
2908 ARG_SERVICE_ADDRESS,
2909 ARG_SERVICE_TXT,
2910 ARG_RAW,
2911 ARG_SEARCH,
2912 ARG_NO_PAGER,
2913 };
2914
2915 static const struct option options[] = {
2916 { "help", no_argument, NULL, 'h' },
2917 { "version", no_argument, NULL, ARG_VERSION },
2918 { "type", required_argument, NULL, 't' },
2919 { "class", required_argument, NULL, 'c' },
2920 { "legend", required_argument, NULL, ARG_LEGEND },
2921 { "interface", required_argument, NULL, 'i' },
2922 { "protocol", required_argument, NULL, 'p' },
2923 { "cname", required_argument, NULL, ARG_CNAME },
2924 { "service-address", required_argument, NULL, ARG_SERVICE_ADDRESS },
2925 { "service-txt", required_argument, NULL, ARG_SERVICE_TXT },
2926 { "raw", optional_argument, NULL, ARG_RAW },
2927 { "search", required_argument, NULL, ARG_SEARCH },
2928 { "no-pager", no_argument, NULL, ARG_NO_PAGER },
2929 {}
2930 };
2931
2932 int c, r;
2933
2934 assert(argc >= 0);
2935 assert(argv);
2936
2937 while ((c = getopt_long(argc, argv, "h46i:t:c:p:", options, NULL)) >= 0)
2938 switch(c) {
2939
2940 case 'h':
2941 return native_help();
2942
2943 case ARG_VERSION:
2944 return version();
2945
2946 case '4':
2947 arg_family = AF_INET;
2948 break;
2949
2950 case '6':
2951 arg_family = AF_INET6;
2952 break;
2953
2954 case 'i':
2955 r = ifname_mangle(optarg);
2956 if (r < 0)
2957 return r;
2958 break;
2959
2960 case 't':
2961 if (streq(optarg, "help")) {
2962 help_dns_types();
2963 return 0;
2964 }
2965
2966 r = dns_type_from_string(optarg);
2967 if (r < 0) {
2968 log_error("Failed to parse RR record type %s", optarg);
2969 return r;
2970 }
2971 arg_type = (uint16_t) r;
2972 assert((int) arg_type == r);
2973
2974 break;
2975
2976 case 'c':
2977 if (streq(optarg, "help")) {
2978 help_dns_classes();
2979 return 0;
2980 }
2981
2982 r = dns_class_from_string(optarg);
2983 if (r < 0) {
2984 log_error("Failed to parse RR record class %s", optarg);
2985 return r;
2986 }
2987 arg_class = (uint16_t) r;
2988 assert((int) arg_class == r);
2989
2990 break;
2991
2992 case ARG_LEGEND:
2993 r = parse_boolean(optarg);
2994 if (r < 0)
2995 return log_error_errno(r, "Failed to parse --legend= argument");
2996
2997 arg_legend = r;
2998 break;
2999
3000 case 'p':
3001 if (streq(optarg, "help")) {
3002 help_protocol_types();
3003 return 0;
3004 } else if (streq(optarg, "dns"))
3005 arg_flags |= SD_RESOLVED_DNS;
3006 else if (streq(optarg, "llmnr"))
3007 arg_flags |= SD_RESOLVED_LLMNR;
3008 else if (streq(optarg, "llmnr-ipv4"))
3009 arg_flags |= SD_RESOLVED_LLMNR_IPV4;
3010 else if (streq(optarg, "llmnr-ipv6"))
3011 arg_flags |= SD_RESOLVED_LLMNR_IPV6;
3012 else if (streq(optarg, "mdns"))
3013 arg_flags |= SD_RESOLVED_MDNS;
3014 else if (streq(optarg, "mdns-ipv4"))
3015 arg_flags |= SD_RESOLVED_MDNS_IPV4;
3016 else if (streq(optarg, "mdns-ipv6"))
3017 arg_flags |= SD_RESOLVED_MDNS_IPV6;
3018 else
3019 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
3020 "Unknown protocol specifier: %s",
3021 optarg);
3022
3023 break;
3024
3025 case ARG_RAW:
3026 if (on_tty())
3027 return log_error_errno(SYNTHETIC_ERRNO(ENOTTY),
3028 "Refusing to write binary data to tty.");
3029
3030 if (optarg == NULL || streq(optarg, "payload"))
3031 arg_raw = RAW_PAYLOAD;
3032 else if (streq(optarg, "packet"))
3033 arg_raw = RAW_PACKET;
3034 else
3035 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
3036 "Unknown --raw specifier \"%s\".",
3037 optarg);
3038
3039 arg_legend = false;
3040 break;
3041
3042 case ARG_CNAME:
3043 r = parse_boolean(optarg);
3044 if (r < 0)
3045 return log_error_errno(r, "Failed to parse --cname= argument.");
3046 SET_FLAG(arg_flags, SD_RESOLVED_NO_CNAME, r == 0);
3047 break;
3048
3049 case ARG_SERVICE_ADDRESS:
3050 r = parse_boolean(optarg);
3051 if (r < 0)
3052 return log_error_errno(r, "Failed to parse --service-address= argument.");
3053 SET_FLAG(arg_flags, SD_RESOLVED_NO_ADDRESS, r == 0);
3054 break;
3055
3056 case ARG_SERVICE_TXT:
3057 r = parse_boolean(optarg);
3058 if (r < 0)
3059 return log_error_errno(r, "Failed to parse --service-txt= argument.");
3060 SET_FLAG(arg_flags, SD_RESOLVED_NO_TXT, r == 0);
3061 break;
3062
3063 case ARG_SEARCH:
3064 r = parse_boolean(optarg);
3065 if (r < 0)
3066 return log_error_errno(r, "Failed to parse --search argument.");
3067 SET_FLAG(arg_flags, SD_RESOLVED_NO_SEARCH, r == 0);
3068 break;
3069
3070 case ARG_NO_PAGER:
3071 arg_pager_flags |= PAGER_DISABLE;
3072 break;
3073
3074 case '?':
3075 return -EINVAL;
3076
3077 default:
3078 assert_not_reached("Unhandled option");
3079 }
3080
3081 if (arg_type == 0 && arg_class != 0)
3082 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
3083 "--class= may only be used in conjunction with --type=.");
3084
3085 if (arg_type != 0 && arg_class == 0)
3086 arg_class = DNS_CLASS_IN;
3087
3088 if (arg_class != 0 && arg_type == 0)
3089 arg_type = DNS_TYPE_A;
3090
3091 return 1 /* work to do */;
3092 }
3093
3094 static int native_main(int argc, char *argv[], sd_bus *bus) {
3095
3096 static const Verb verbs[] = {
3097 { "help", VERB_ANY, VERB_ANY, 0, verb_help },
3098 { "status", VERB_ANY, VERB_ANY, VERB_DEFAULT, verb_status },
3099 { "query", 2, VERB_ANY, 0, verb_query },
3100 { "service", 2, 4, 0, verb_service },
3101 { "openpgp", 2, VERB_ANY, 0, verb_openpgp },
3102 { "tlsa", 2, VERB_ANY, 0, verb_tlsa },
3103 { "statistics", VERB_ANY, 1, 0, show_statistics },
3104 { "reset-statistics", VERB_ANY, 1, 0, reset_statistics },
3105 { "flush-caches", VERB_ANY, 1, 0, flush_caches },
3106 { "reset-server-features", VERB_ANY, 1, 0, reset_server_features },
3107 { "dns", VERB_ANY, VERB_ANY, 0, verb_dns },
3108 { "domain", VERB_ANY, VERB_ANY, 0, verb_domain },
3109 { "default-route", VERB_ANY, 3, 0, verb_default_route },
3110 { "llmnr", VERB_ANY, 3, 0, verb_llmnr },
3111 { "mdns", VERB_ANY, 3, 0, verb_mdns },
3112 { "dnsovertls", VERB_ANY, 3, 0, verb_dns_over_tls },
3113 { "dnssec", VERB_ANY, 3, 0, verb_dnssec },
3114 { "nta", VERB_ANY, VERB_ANY, 0, verb_nta },
3115 { "revert", VERB_ANY, 2, 0, verb_revert_link },
3116 {}
3117 };
3118
3119 return dispatch_verb(argc, argv, verbs, bus);
3120 }
3121
3122 static int translate(const char *verb, const char *single_arg, size_t num_args, char **args, sd_bus *bus) {
3123 char **fake, **p;
3124 size_t num, i;
3125
3126 assert(verb);
3127 assert(num_args == 0 || args);
3128
3129 num = !!single_arg + num_args + 1;
3130
3131 p = fake = newa0(char *, num + 1);
3132 *p++ = (char *) verb;
3133 if (single_arg)
3134 *p++ = (char *) single_arg;
3135 for (i = 0; i < num_args; i++)
3136 *p++ = args[i];
3137
3138 optind = 0;
3139 return native_main((int) num, fake, bus);
3140 }
3141
3142 static int compat_main(int argc, char *argv[], sd_bus *bus) {
3143 int r = 0;
3144
3145 switch (arg_mode) {
3146 case MODE_RESOLVE_HOST:
3147 case MODE_RESOLVE_RECORD:
3148 return translate("query", NULL, argc - optind, argv + optind, bus);
3149
3150 case MODE_RESOLVE_SERVICE:
3151 return translate("service", NULL, argc - optind, argv + optind, bus);
3152
3153 case MODE_RESOLVE_OPENPGP:
3154 return translate("openpgp", NULL, argc - optind, argv + optind, bus);
3155
3156 case MODE_RESOLVE_TLSA:
3157 return translate("tlsa", arg_service_family, argc - optind, argv + optind, bus);
3158
3159 case MODE_STATISTICS:
3160 return translate("statistics", NULL, 0, NULL, bus);
3161
3162 case MODE_RESET_STATISTICS:
3163 return translate("reset-statistics", NULL, 0, NULL, bus);
3164
3165 case MODE_FLUSH_CACHES:
3166 return translate("flush-caches", NULL, 0, NULL, bus);
3167
3168 case MODE_RESET_SERVER_FEATURES:
3169 return translate("reset-server-features", NULL, 0, NULL, bus);
3170
3171 case MODE_STATUS:
3172 return translate("status", NULL, argc - optind, argv + optind, bus);
3173
3174 case MODE_SET_LINK:
3175 assert(arg_ifname);
3176
3177 if (arg_set_dns) {
3178 r = translate("dns", arg_ifname, strv_length(arg_set_dns), arg_set_dns, bus);
3179 if (r < 0)
3180 return r;
3181 }
3182
3183 if (arg_set_domain) {
3184 r = translate("domain", arg_ifname, strv_length(arg_set_domain), arg_set_domain, bus);
3185 if (r < 0)
3186 return r;
3187 }
3188
3189 if (arg_set_nta) {
3190 r = translate("nta", arg_ifname, strv_length(arg_set_nta), arg_set_nta, bus);
3191 if (r < 0)
3192 return r;
3193 }
3194
3195 if (arg_set_llmnr) {
3196 r = translate("llmnr", arg_ifname, 1, (char **) &arg_set_llmnr, bus);
3197 if (r < 0)
3198 return r;
3199 }
3200
3201 if (arg_set_mdns) {
3202 r = translate("mdns", arg_ifname, 1, (char **) &arg_set_mdns, bus);
3203 if (r < 0)
3204 return r;
3205 }
3206
3207 if (arg_set_dns_over_tls) {
3208 r = translate("dnsovertls", arg_ifname, 1, (char **) &arg_set_dns_over_tls, bus);
3209 if (r < 0)
3210 return r;
3211 }
3212
3213 if (arg_set_dnssec) {
3214 r = translate("dnssec", arg_ifname, 1, (char **) &arg_set_dnssec, bus);
3215 if (r < 0)
3216 return r;
3217 }
3218
3219 return r;
3220
3221 case MODE_REVERT_LINK:
3222 assert(arg_ifname);
3223
3224 return translate("revert", arg_ifname, 0, NULL, bus);
3225
3226 case _MODE_INVALID:
3227 assert_not_reached("invalid mode");
3228 }
3229
3230 return 0;
3231 }
3232
3233 static int run(int argc, char **argv) {
3234 _cleanup_(sd_bus_flush_close_unrefp) sd_bus *bus = NULL;
3235 int r;
3236
3237 setlocale(LC_ALL, "");
3238 log_show_color(true);
3239 log_parse_environment();
3240 log_open();
3241
3242 if (streq(program_invocation_short_name, "resolvconf"))
3243 r = resolvconf_parse_argv(argc, argv);
3244 else if (streq(program_invocation_short_name, "systemd-resolve"))
3245 r = compat_parse_argv(argc, argv);
3246 else
3247 r = native_parse_argv(argc, argv);
3248 if (r <= 0)
3249 return r;
3250
3251 r = sd_bus_open_system(&bus);
3252 if (r < 0)
3253 return log_error_errno(r, "sd_bus_open_system: %m");
3254
3255 if (STR_IN_SET(program_invocation_short_name, "systemd-resolve", "resolvconf"))
3256 return compat_main(argc, argv, bus);
3257
3258 return native_main(argc, argv, bus);
3259 }
3260
3261 DEFINE_MAIN_FUNCTION(run);