1 /* SPDX-License-Identifier: LGPL-2.1-or-later */
4 #include "alloc-util.h"
6 #include "bus-unit-util.h"
9 #include "cgroup-setup.h"
10 #include "cgroup-util.h"
11 #include "condition.h"
12 #include "coredump-util.h"
13 #include "cpu-set-util.h"
14 #include "dissect-image.h"
16 #include "exec-util.h"
17 #include "exit-status.h"
19 #include "hexdecoct.h"
20 #include "hostname-util.h"
21 #include "in-addr-util.h"
22 #include "ioprio-util.h"
23 #include "ip-protocol-list.h"
24 #include "libmount-util.h"
25 #include "locale-util.h"
28 #include "missing_fs.h"
29 #include "mountpoint-util.h"
31 #include "numa-util.h"
32 #include "parse-helpers.h"
33 #include "parse-util.h"
34 #include "path-util.h"
35 #include "percent-util.h"
36 #include "process-util.h"
37 #include "rlimit-util.h"
39 #include "seccomp-util.h"
41 #include "securebits-util.h"
42 #include "signal-util.h"
43 #include "socket-util.h"
44 #include "sort-util.h"
45 #include "stdio-util.h"
46 #include "string-util.h"
47 #include "syslog-util.h"
48 #include "terminal-util.h"
50 #include "user-util.h"
53 int bus_parse_unit_info(sd_bus_message *message, UnitInfo *u) {
59 return sd_bus_message_read(
74 #define DEFINE_BUS_APPEND_PARSE_PTR(bus_type, cast_type, type, parse_func) \
75 static int bus_append_##parse_func( \
82 r = parse_func(eq, &val); \
84 return log_error_errno(r, "Failed to parse %s=%s: %m", field, eq); \
86 r = sd_bus_message_append(m, "(sv)", field, \
87 bus_type, (cast_type) val); \
89 return bus_log_create_error(r); \
94 #define DEFINE_BUS_APPEND_PARSE(bus_type, parse_func) \
95 static int bus_append_##parse_func( \
101 r = parse_func(eq); \
103 return log_error_errno(SYNTHETIC_ERRNO(EINVAL), "Failed to parse %s: %s", field, eq); \
105 r = sd_bus_message_append(m, "(sv)", field, \
106 bus_type, (int32_t) r); \
108 return bus_log_create_error(r); \
113 DEFINE_BUS_APPEND_PARSE("b", parse_boolean);
114 DEFINE_BUS_APPEND_PARSE("i", ioprio_class_from_string);
115 DEFINE_BUS_APPEND_PARSE("i", ip_tos_from_string);
116 DEFINE_BUS_APPEND_PARSE("i", log_facility_unshifted_from_string);
117 DEFINE_BUS_APPEND_PARSE("i", log_level_from_string);
119 static inline int seccomp_parse_errno_or_action(const char *eq) { return -EINVAL; }
121 DEFINE_BUS_APPEND_PARSE("i", seccomp_parse_errno_or_action);
122 DEFINE_BUS_APPEND_PARSE("i", sched_policy_from_string);
123 DEFINE_BUS_APPEND_PARSE("i", secure_bits_from_string);
124 DEFINE_BUS_APPEND_PARSE("i", signal_from_string);
125 DEFINE_BUS_APPEND_PARSE("i", parse_ip_protocol);
126 DEFINE_BUS_APPEND_PARSE_PTR("i", int32_t, int, ioprio_parse_priority);
127 DEFINE_BUS_APPEND_PARSE_PTR("i", int32_t, int, parse_nice);
128 DEFINE_BUS_APPEND_PARSE_PTR("i", int32_t, int, safe_atoi);
129 DEFINE_BUS_APPEND_PARSE_PTR("t", uint64_t, nsec_t, parse_nsec);
130 DEFINE_BUS_APPEND_PARSE_PTR("t", uint64_t, uint64_t, cg_blkio_weight_parse);
131 DEFINE_BUS_APPEND_PARSE_PTR("t", uint64_t, uint64_t, cg_cpu_shares_parse);
132 DEFINE_BUS_APPEND_PARSE_PTR("t", uint64_t, uint64_t, cg_weight_parse);
133 DEFINE_BUS_APPEND_PARSE_PTR("t", uint64_t, uint64_t, cg_cpu_weight_parse);
134 DEFINE_BUS_APPEND_PARSE_PTR("t", uint64_t, unsigned long, mount_propagation_flags_from_string);
135 DEFINE_BUS_APPEND_PARSE_PTR("t", uint64_t, uint64_t, safe_atou64);
136 DEFINE_BUS_APPEND_PARSE_PTR("u", uint32_t, mode_t, parse_mode);
137 DEFINE_BUS_APPEND_PARSE_PTR("u", uint32_t, unsigned, safe_atou);
138 DEFINE_BUS_APPEND_PARSE_PTR("x", int64_t, int64_t, safe_atoi64);
139 DEFINE_BUS_APPEND_PARSE_PTR("t", uint64_t, uint64_t, coredump_filter_mask_from_string);
141 static int bus_append_string(sd_bus_message *m, const char *field, const char *eq) {
144 r = sd_bus_message_append(m, "(sv)", field, "s", eq);
146 return bus_log_create_error(r);
151 static int bus_append_strv(sd_bus_message *m, const char *field, const char *eq, ExtractFlags flags) {
155 r = sd_bus_message_open_container(m, 'r', "sv");
157 return bus_log_create_error(r);
159 r = sd_bus_message_append_basic(m, 's', field);
161 return bus_log_create_error(r);
163 r = sd_bus_message_open_container(m, 'v', "as");
165 return bus_log_create_error(r);
167 r = sd_bus_message_open_container(m, 'a', "s");
169 return bus_log_create_error(r);
172 _cleanup_free_ char *word = NULL;
174 r = extract_first_word(&p, &word, NULL, flags);
180 return log_error_errno(r, "Invalid syntax: %s", eq);
182 r = sd_bus_message_append_basic(m, 's', word);
184 return bus_log_create_error(r);
187 r = sd_bus_message_close_container(m);
189 return bus_log_create_error(r);
191 r = sd_bus_message_close_container(m);
193 return bus_log_create_error(r);
195 r = sd_bus_message_close_container(m);
197 return bus_log_create_error(r);
202 static int bus_append_byte_array(sd_bus_message *m, const char *field, const void *buf, size_t n) {
205 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
207 return bus_log_create_error(r);
209 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, field);
211 return bus_log_create_error(r);
213 r = sd_bus_message_open_container(m, 'v', "ay");
215 return bus_log_create_error(r);
217 r = sd_bus_message_append_array(m, 'y', buf, n);
219 return bus_log_create_error(r);
221 r = sd_bus_message_close_container(m);
223 return bus_log_create_error(r);
225 r = sd_bus_message_close_container(m);
227 return bus_log_create_error(r);
232 static int bus_append_parse_sec_rename(sd_bus_message *m, const char *field, const char *eq) {
238 r = parse_sec(eq, &t);
240 return log_error_errno(r, "Failed to parse %s=%s: %m", field, eq);
243 n = newa(char, l + 2);
244 /* Change suffix Sec → USec */
245 strcpy(mempcpy(n, field, l - 3), "USec");
247 r = sd_bus_message_append(m, "(sv)", n, "t", t);
249 return bus_log_create_error(r);
254 static int bus_append_parse_size(sd_bus_message *m, const char *field, const char *eq, uint64_t base) {
258 r = parse_size(eq, base, &v);
260 return log_error_errno(r, "Failed to parse %s=%s: %m", field, eq);
262 r = sd_bus_message_append(m, "(sv)", field, "t", v);
264 return bus_log_create_error(r);
269 static int bus_append_exec_command(sd_bus_message *m, const char *field, const char *eq) {
270 bool explicit_path = false, done = false;
271 _cleanup_strv_free_ char **l = NULL, **ex_opts = NULL;
272 _cleanup_free_ char *path = NULL, *upgraded_name = NULL;
273 ExecCommandFlags flags = 0;
274 bool is_ex_prop = endswith(field, "Ex");
281 if (FLAGS_SET(flags, EXEC_COMMAND_IGNORE_FAILURE))
284 flags |= EXEC_COMMAND_IGNORE_FAILURE;
293 explicit_path = true;
299 if (FLAGS_SET(flags, EXEC_COMMAND_NO_ENV_EXPAND))
302 flags |= EXEC_COMMAND_NO_ENV_EXPAND;
308 if (flags & (EXEC_COMMAND_FULLY_PRIVILEGED|EXEC_COMMAND_NO_SETUID|EXEC_COMMAND_AMBIENT_MAGIC))
311 flags |= EXEC_COMMAND_FULLY_PRIVILEGED;
317 if (flags & (EXEC_COMMAND_FULLY_PRIVILEGED|EXEC_COMMAND_AMBIENT_MAGIC))
319 else if (FLAGS_SET(flags, EXEC_COMMAND_NO_SETUID)) {
320 flags &= ~EXEC_COMMAND_NO_SETUID;
321 flags |= EXEC_COMMAND_AMBIENT_MAGIC;
324 flags |= EXEC_COMMAND_NO_SETUID;
335 if (!is_ex_prop && (flags & (EXEC_COMMAND_NO_ENV_EXPAND|EXEC_COMMAND_FULLY_PRIVILEGED|EXEC_COMMAND_NO_SETUID|EXEC_COMMAND_AMBIENT_MAGIC))) {
336 /* Upgrade the ExecXYZ= property to ExecXYZEx= for convenience */
338 upgraded_name = strjoin(field, "Ex");
344 r = exec_command_flags_to_strv(flags, &ex_opts);
346 return log_error_errno(r, "Failed to convert ExecCommandFlags to strv: %m");
350 r = extract_first_word(&eq, &path, NULL, EXTRACT_UNQUOTE|EXTRACT_CUNESCAPE);
352 return log_error_errno(r, "Failed to parse path: %m");
355 r = strv_split_full(&l, eq, NULL, EXTRACT_UNQUOTE|EXTRACT_CUNESCAPE);
357 return log_error_errno(r, "Failed to parse command line: %m");
359 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
361 return bus_log_create_error(r);
363 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, upgraded_name ?: field);
365 return bus_log_create_error(r);
367 r = sd_bus_message_open_container(m, 'v', is_ex_prop ? "a(sasas)" : "a(sasb)");
369 return bus_log_create_error(r);
371 r = sd_bus_message_open_container(m, 'a', is_ex_prop ? "(sasas)" : "(sasb)");
373 return bus_log_create_error(r);
375 if (!strv_isempty(l)) {
377 r = sd_bus_message_open_container(m, 'r', is_ex_prop ? "sasas" : "sasb");
379 return bus_log_create_error(r);
381 r = sd_bus_message_append(m, "s", path ?: l[0]);
383 return bus_log_create_error(r);
385 r = sd_bus_message_append_strv(m, l);
387 return bus_log_create_error(r);
389 r = is_ex_prop ? sd_bus_message_append_strv(m, ex_opts) : sd_bus_message_append(m, "b", FLAGS_SET(flags, EXEC_COMMAND_IGNORE_FAILURE));
391 return bus_log_create_error(r);
393 r = sd_bus_message_close_container(m);
395 return bus_log_create_error(r);
398 r = sd_bus_message_close_container(m);
400 return bus_log_create_error(r);
402 r = sd_bus_message_close_container(m);
404 return bus_log_create_error(r);
406 r = sd_bus_message_close_container(m);
408 return bus_log_create_error(r);
413 static int bus_append_open_file(sd_bus_message *m, const char *field, const char *eq) {
421 r = parse_open_file_fields(eq, &path, &fdname, &flags);
425 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
427 return bus_log_create_error(r);
429 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, field);
431 return bus_log_create_error(r);
433 r = sd_bus_message_open_container(m, 'v', "a(ssx)");
435 return bus_log_create_error(r);
437 r = sd_bus_message_open_container(m, 'a', "(ssx)");
439 return bus_log_create_error(r);
441 r = sd_bus_message_append(m, "(ssx)", path, fdname, flags);
443 return bus_log_create_error(r);
445 r = sd_bus_message_close_container(m);
447 return bus_log_create_error(r);
449 r = sd_bus_message_close_container(m);
451 return bus_log_create_error(r);
453 r = sd_bus_message_close_container(m);
455 return bus_log_create_error(r);
460 static int bus_append_ip_address_access(sd_bus_message *m, int family, const union in_addr_union *prefix, unsigned char prefixlen) {
466 r = sd_bus_message_open_container(m, 'r', "iayu");
470 r = sd_bus_message_append(m, "i", family);
474 r = sd_bus_message_append_array(m, 'y', prefix, FAMILY_ADDRESS_SIZE(family));
478 r = sd_bus_message_append(m, "u", prefixlen);
482 return sd_bus_message_close_container(m);
485 static int bus_append_cgroup_property(sd_bus_message *m, const char *field, const char *eq) {
488 if (STR_IN_SET(field, "DevicePolicy",
491 "ManagedOOMMemoryPressure",
492 "ManagedOOMPreference"))
493 return bus_append_string(m, field, eq);
495 if (STR_IN_SET(field, "ManagedOOMMemoryPressureLimit")) {
496 r = parse_permyriad(eq);
498 return log_error_errno(r, "Failed to parse %s value: %s", field, eq);
500 /* Pass around scaled to 2^32-1 == 100% */
501 r = sd_bus_message_append(m, "(sv)", field, "u", UINT32_SCALE_FROM_PERMYRIAD(r));
503 return bus_log_create_error(r);
508 if (STR_IN_SET(field, "CPUAccounting",
514 return bus_append_parse_boolean(m, field, eq);
516 if (STR_IN_SET(field, "CPUWeight",
518 return bus_append_cg_cpu_weight_parse(m, field, eq);
520 if (STR_IN_SET(field, "IOWeight",
522 return bus_append_cg_weight_parse(m, field, eq);
524 if (STR_IN_SET(field, "CPUShares",
526 return bus_append_cg_cpu_shares_parse(m, field, eq);
528 if (STR_IN_SET(field, "AllowedCPUs",
529 "StartupAllowedCPUs",
530 "AllowedMemoryNodes",
531 "StartupAllowedMemoryNodes")) {
532 _cleanup_(cpu_set_reset) CPUSet cpuset = {};
533 _cleanup_free_ uint8_t *array = NULL;
536 r = parse_cpu_set(eq, &cpuset);
538 return log_error_errno(r, "Failed to parse %s value: %s", field, eq);
540 r = cpu_set_to_dbus(&cpuset, &array, &allocated);
542 return log_error_errno(r, "Failed to serialize CPUSet: %m");
544 return bus_append_byte_array(m, field, array, allocated);
547 if (STR_IN_SET(field, "BlockIOWeight",
548 "StartupBlockIOWeight"))
549 return bus_append_cg_blkio_weight_parse(m, field, eq);
551 if (streq(field, "DisableControllers"))
552 return bus_append_strv(m, "DisableControllers", eq, EXTRACT_UNQUOTE);
554 if (streq(field, "Delegate")) {
555 r = parse_boolean(eq);
557 return bus_append_strv(m, "DelegateControllers", eq, EXTRACT_UNQUOTE);
559 r = sd_bus_message_append(m, "(sv)", "Delegate", "b", r);
561 return bus_log_create_error(r);
566 if (STR_IN_SET(field, "MemoryMin",
576 if (streq(eq, "infinity")) {
577 r = sd_bus_message_append(m, "(sv)", field, "t", CGROUP_LIMIT_MAX);
579 return bus_log_create_error(r);
581 } else if (isempty(eq)) {
582 uint64_t empty_value = STR_IN_SET(field,
590 r = sd_bus_message_append(m, "(sv)", field, "t", empty_value);
592 return bus_log_create_error(r);
596 r = parse_permyriad(eq);
600 /* When this is a percentage we'll convert this into a relative value in the range 0…UINT32_MAX
601 * and pass it in the MemoryLowScale property (and related ones). This way the physical memory
602 * size can be determined server-side. */
604 n = strjoina(field, "Scale");
605 r = sd_bus_message_append(m, "(sv)", n, "u", UINT32_SCALE_FROM_PERMYRIAD(r));
607 return bus_log_create_error(r);
612 if (streq(field, "TasksMax"))
613 return bus_append_safe_atou64(m, field, eq);
615 return bus_append_parse_size(m, field, eq, 1024);
618 if (streq(field, "CPUQuota")) {
620 r = sd_bus_message_append(m, "(sv)", "CPUQuotaPerSecUSec", "t", USEC_INFINITY);
622 r = parse_permyriad_unbounded(eq);
624 return log_error_errno(SYNTHETIC_ERRNO(ERANGE),
625 "CPU quota too small.");
627 return log_error_errno(r, "CPU quota '%s' invalid.", eq);
629 r = sd_bus_message_append(m, "(sv)", "CPUQuotaPerSecUSec", "t", (((uint64_t) r * USEC_PER_SEC) / 10000U));
633 return bus_log_create_error(r);
638 if (streq(field, "CPUQuotaPeriodSec")) {
639 usec_t u = USEC_INFINITY;
641 r = parse_sec_def_infinity(eq, &u);
643 return log_error_errno(r, "CPU quota period '%s' invalid.", eq);
645 r = sd_bus_message_append(m, "(sv)", "CPUQuotaPeriodUSec", "t", u);
647 return bus_log_create_error(r);
652 if (streq(field, "DeviceAllow")) {
654 r = sd_bus_message_append(m, "(sv)", field, "a(ss)", 0);
656 const char *path = eq, *rwm = NULL, *e;
660 path = strndupa_safe(eq, e - eq);
664 r = sd_bus_message_append(m, "(sv)", field, "a(ss)", 1, path, strempty(rwm));
668 return bus_log_create_error(r);
673 if (cgroup_io_limit_type_from_string(field) >= 0 || STR_IN_SET(field, "BlockIOReadBandwidth", "BlockIOWriteBandwidth")) {
675 r = sd_bus_message_append(m, "(sv)", field, "a(st)", 0);
677 const char *path, *bandwidth, *e;
682 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
683 "Failed to parse %s value %s.",
686 path = strndupa_safe(eq, e - eq);
689 if (streq(bandwidth, "infinity"))
690 bytes = CGROUP_LIMIT_MAX;
692 r = parse_size(bandwidth, 1000, &bytes);
694 return log_error_errno(r, "Failed to parse byte value %s: %m", bandwidth);
697 r = sd_bus_message_append(m, "(sv)", field, "a(st)", 1, path, bytes);
701 return bus_log_create_error(r);
706 if (STR_IN_SET(field, "IODeviceWeight",
707 "BlockIODeviceWeight")) {
709 r = sd_bus_message_append(m, "(sv)", field, "a(st)", 0);
711 const char *path, *weight, *e;
716 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
717 "Failed to parse %s value %s.",
720 path = strndupa_safe(eq, e - eq);
723 r = safe_atou64(weight, &u);
725 return log_error_errno(r, "Failed to parse %s value %s: %m", field, weight);
727 r = sd_bus_message_append(m, "(sv)", field, "a(st)", 1, path, u);
731 return bus_log_create_error(r);
736 if (streq(field, "IODeviceLatencyTargetSec")) {
737 const char *field_usec = "IODeviceLatencyTargetUSec";
740 r = sd_bus_message_append(m, "(sv)", field_usec, "a(st)", USEC_INFINITY);
742 const char *path, *target, *e;
747 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
748 "Failed to parse %s value %s.",
751 path = strndupa_safe(eq, e - eq);
754 r = parse_sec(target, &usec);
756 return log_error_errno(r, "Failed to parse %s value %s: %m", field, target);
758 r = sd_bus_message_append(m, "(sv)", field_usec, "a(st)", 1, path, usec);
762 return bus_log_create_error(r);
767 if (STR_IN_SET(field, "IPAddressAllow",
769 unsigned char prefixlen;
770 union in_addr_union prefix = {};
774 r = sd_bus_message_append(m, "(sv)", field, "a(iayu)", 0);
776 return bus_log_create_error(r);
781 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
783 return bus_log_create_error(r);
785 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, field);
787 return bus_log_create_error(r);
789 r = sd_bus_message_open_container(m, 'v', "a(iayu)");
791 return bus_log_create_error(r);
793 r = sd_bus_message_open_container(m, 'a', "(iayu)");
795 return bus_log_create_error(r);
797 if (streq(eq, "any")) {
798 /* "any" is a shortcut for 0.0.0.0/0 and ::/0 */
800 r = bus_append_ip_address_access(m, AF_INET, &prefix, 0);
802 return bus_log_create_error(r);
804 r = bus_append_ip_address_access(m, AF_INET6, &prefix, 0);
806 return bus_log_create_error(r);
808 } else if (is_localhost(eq)) {
809 /* "localhost" is a shortcut for 127.0.0.0/8 and ::1/128 */
811 prefix.in.s_addr = htobe32(0x7f000000);
812 r = bus_append_ip_address_access(m, AF_INET, &prefix, 8);
814 return bus_log_create_error(r);
816 prefix.in6 = (struct in6_addr) IN6ADDR_LOOPBACK_INIT;
817 r = bus_append_ip_address_access(m, AF_INET6, &prefix, 128);
821 } else if (streq(eq, "link-local")) {
822 /* "link-local" is a shortcut for 169.254.0.0/16 and fe80::/64 */
824 prefix.in.s_addr = htobe32((UINT32_C(169) << 24 | UINT32_C(254) << 16));
825 r = bus_append_ip_address_access(m, AF_INET, &prefix, 16);
827 return bus_log_create_error(r);
829 prefix.in6 = (struct in6_addr) {
830 .s6_addr32[0] = htobe32(0xfe800000)
832 r = bus_append_ip_address_access(m, AF_INET6, &prefix, 64);
834 return bus_log_create_error(r);
836 } else if (streq(eq, "multicast")) {
837 /* "multicast" is a shortcut for 224.0.0.0/4 and ff00::/8 */
839 prefix.in.s_addr = htobe32((UINT32_C(224) << 24));
840 r = bus_append_ip_address_access(m, AF_INET, &prefix, 4);
842 return bus_log_create_error(r);
844 prefix.in6 = (struct in6_addr) {
845 .s6_addr32[0] = htobe32(0xff000000)
847 r = bus_append_ip_address_access(m, AF_INET6, &prefix, 8);
849 return bus_log_create_error(r);
853 _cleanup_free_ char *word = NULL;
855 r = extract_first_word(&eq, &word, NULL, 0);
861 return log_error_errno(r, "Failed to parse %s: %s", field, eq);
863 r = in_addr_prefix_from_string_auto(word, &family, &prefix, &prefixlen);
865 return log_error_errno(r, "Failed to parse IP address prefix: %s", word);
867 r = bus_append_ip_address_access(m, family, &prefix, prefixlen);
869 return bus_log_create_error(r);
873 r = sd_bus_message_close_container(m);
875 return bus_log_create_error(r);
877 r = sd_bus_message_close_container(m);
879 return bus_log_create_error(r);
881 r = sd_bus_message_close_container(m);
883 return bus_log_create_error(r);
888 if (STR_IN_SET(field, "IPIngressFilterPath",
889 "IPEgressFilterPath")) {
891 r = sd_bus_message_append(m, "(sv)", field, "as", 0);
893 r = sd_bus_message_append(m, "(sv)", field, "as", 1, eq);
896 return bus_log_create_error(r);
901 if (streq(field, "BPFProgram")) {
903 r = sd_bus_message_append(m, "(sv)", field, "a(ss)", 0);
905 _cleanup_free_ char *word = NULL;
907 r = extract_first_word(&eq, &word, ":", 0);
911 return log_error_errno(r, "Failed to parse %s: %m", field);
913 r = sd_bus_message_append(m, "(sv)", field, "a(ss)", 1, word, eq);
916 return bus_log_create_error(r);
921 if (STR_IN_SET(field, "SocketBindAllow",
924 r = sd_bus_message_append(m, "(sv)", field, "a(iiqq)", 0);
926 int32_t family, ip_protocol;
927 uint16_t nr_ports, port_min;
929 r = parse_socket_bind_item(eq, &family, &ip_protocol, &nr_ports, &port_min);
933 return log_error_errno(r, "Failed to parse %s", field);
935 r = sd_bus_message_append(
936 m, "(sv)", field, "a(iiqq)", 1, family, ip_protocol, nr_ports, port_min);
939 return bus_log_create_error(r);
947 static int bus_append_automount_property(sd_bus_message *m, const char *field, const char *eq) {
948 if (STR_IN_SET(field, "Where",
950 return bus_append_string(m, field, eq);
952 if (streq(field, "DirectoryMode"))
953 return bus_append_parse_mode(m, field, eq);
955 if (streq(field, "TimeoutIdleSec"))
956 return bus_append_parse_sec_rename(m, field, eq);
961 static int bus_append_execute_property(sd_bus_message *m, const char *field, const char *eq) {
965 if (STR_IN_SET(field, "User",
979 "RuntimeDirectoryPreserve",
984 "NetworkNamespacePath",
987 return bus_append_string(m, field, eq);
989 if (STR_IN_SET(field, "IgnoreSIGPIPE",
1000 "SyslogLevelPrefix",
1001 "MemoryDenyWriteExecute",
1005 "ProtectKernelTunables",
1006 "ProtectKernelModules",
1007 "ProtectKernelLogs",
1009 "ProtectControlGroups",
1011 "CPUSchedulingResetOnFork",
1014 "RestrictSUIDSGID"))
1015 return bus_append_parse_boolean(m, field, eq);
1017 if (STR_IN_SET(field, "ReadWriteDirectories",
1018 "ReadOnlyDirectories",
1019 "InaccessibleDirectories",
1022 "InaccessiblePaths",
1026 "ExtensionDirectories",
1027 "ConfigurationDirectory",
1028 "SupplementaryGroups",
1029 "SystemCallArchitectures"))
1030 return bus_append_strv(m, field, eq, EXTRACT_UNQUOTE);
1032 if (STR_IN_SET(field, "SyslogLevel",
1034 return bus_append_log_level_from_string(m, field, eq);
1036 if (streq(field, "SyslogFacility"))
1037 return bus_append_log_facility_unshifted_from_string(m, field, eq);
1039 if (streq(field, "SecureBits"))
1040 return bus_append_secure_bits_from_string(m, field, eq);
1042 if (streq(field, "CPUSchedulingPolicy"))
1043 return bus_append_sched_policy_from_string(m, field, eq);
1045 if (STR_IN_SET(field, "CPUSchedulingPriority",
1047 return bus_append_safe_atoi(m, field, eq);
1049 if (streq(field, "CoredumpFilter"))
1050 return bus_append_coredump_filter_mask_from_string(m, field, eq);
1052 if (streq(field, "Nice"))
1053 return bus_append_parse_nice(m, field, eq);
1055 if (streq(field, "SystemCallErrorNumber"))
1056 return bus_append_seccomp_parse_errno_or_action(m, field, eq);
1058 if (streq(field, "IOSchedulingClass"))
1059 return bus_append_ioprio_class_from_string(m, field, eq);
1061 if (streq(field, "IOSchedulingPriority"))
1062 return bus_append_ioprio_parse_priority(m, field, eq);
1064 if (STR_IN_SET(field, "RuntimeDirectoryMode",
1065 "StateDirectoryMode",
1066 "CacheDirectoryMode",
1067 "LogsDirectoryMode",
1068 "ConfigurationDirectoryMode",
1070 return bus_append_parse_mode(m, field, eq);
1072 if (streq(field, "TimerSlackNSec"))
1073 return bus_append_parse_nsec(m, field, eq);
1075 if (streq(field, "LogRateLimitIntervalSec"))
1076 return bus_append_parse_sec_rename(m, field, eq);
1078 if (STR_IN_SET(field, "LogRateLimitBurst",
1081 return bus_append_safe_atou(m, field, eq);
1083 if (streq(field, "MountFlags"))
1084 return bus_append_mount_propagation_flags_from_string(m, field, eq);
1086 if (STR_IN_SET(field, "Environment",
1089 return bus_append_strv(m, field, eq, EXTRACT_UNQUOTE|EXTRACT_CUNESCAPE);
1091 if (streq(field, "EnvironmentFile")) {
1093 r = sd_bus_message_append(m, "(sv)", "EnvironmentFiles", "a(sb)", 0);
1095 r = sd_bus_message_append(m, "(sv)", "EnvironmentFiles", "a(sb)", 1,
1096 eq[0] == '-' ? eq + 1 : eq,
1099 return bus_log_create_error(r);
1104 if (STR_IN_SET(field, "SetCredential", "SetCredentialEncrypted")) {
1105 r = sd_bus_message_open_container(m, 'r', "sv");
1107 return bus_log_create_error(r);
1109 r = sd_bus_message_append_basic(m, 's', field);
1111 return bus_log_create_error(r);
1113 r = sd_bus_message_open_container(m, 'v', "a(say)");
1115 return bus_log_create_error(r);
1118 r = sd_bus_message_append(m, "a(say)", 0);
1120 _cleanup_free_ char *word = NULL;
1123 r = extract_first_word(&p, &word, ":", EXTRACT_DONT_COALESCE_SEPARATORS);
1127 return log_error_errno(r, "Failed to parse %s= parameter: %s", field, eq);
1129 return log_error_errno(SYNTHETIC_ERRNO(EINVAL), "Missing argument to %s=.", field);
1131 r = sd_bus_message_open_container(m, 'a', "(say)");
1133 return bus_log_create_error(r);
1135 r = sd_bus_message_open_container(m, 'r', "say");
1137 return bus_log_create_error(r);
1139 r = sd_bus_message_append(m, "s", word);
1141 return bus_log_create_error(r);
1143 if (streq(field, "SetCredentialEncrypted")) {
1144 _cleanup_free_ void *decoded = NULL;
1145 size_t decoded_size;
1147 r = unbase64mem(p, SIZE_MAX, &decoded, &decoded_size);
1149 return log_error_errno(r, "Failed to base64 decode encrypted credential: %m");
1151 r = sd_bus_message_append_array(m, 'y', decoded, decoded_size);
1153 _cleanup_free_ char *unescaped = NULL;
1156 l = cunescape(p, UNESCAPE_ACCEPT_NUL, &unescaped);
1158 return log_error_errno(l, "Failed to unescape %s= value: %s", field, p);
1160 r = sd_bus_message_append_array(m, 'y', unescaped, l);
1163 return bus_log_create_error(r);
1165 r = sd_bus_message_close_container(m);
1167 return bus_log_create_error(r);
1169 r = sd_bus_message_close_container(m);
1172 return bus_log_create_error(r);
1174 r = sd_bus_message_close_container(m);
1176 return bus_log_create_error(r);
1178 r = sd_bus_message_close_container(m);
1180 return bus_log_create_error(r);
1185 if (STR_IN_SET(field, "LoadCredential", "LoadCredentialEncrypted")) {
1186 r = sd_bus_message_open_container(m, 'r', "sv");
1188 return bus_log_create_error(r);
1190 r = sd_bus_message_append_basic(m, 's', field);
1192 return bus_log_create_error(r);
1194 r = sd_bus_message_open_container(m, 'v', "a(ss)");
1196 return bus_log_create_error(r);
1199 r = sd_bus_message_append(m, "a(ss)", 0);
1201 _cleanup_free_ char *word = NULL;
1204 r = extract_first_word(&p, &word, ":", EXTRACT_DONT_COALESCE_SEPARATORS);
1208 return log_error_errno(r, "Failed to parse %s= parameter: %s", field, eq);
1210 return log_error_errno(SYNTHETIC_ERRNO(EINVAL), "Missing argument to %s=.", field);
1212 if (isempty(p)) /* If only one field is specified, then this means "inherit from above" */
1215 r = sd_bus_message_append(m, "a(ss)", 1, word, p);
1218 return bus_log_create_error(r);
1220 r = sd_bus_message_close_container(m);
1222 return bus_log_create_error(r);
1224 r = sd_bus_message_close_container(m);
1226 return bus_log_create_error(r);
1231 if (streq(field, "LogExtraFields")) {
1232 r = sd_bus_message_open_container(m, 'r', "sv");
1234 return bus_log_create_error(r);
1236 r = sd_bus_message_append_basic(m, 's', "LogExtraFields");
1238 return bus_log_create_error(r);
1240 r = sd_bus_message_open_container(m, 'v', "aay");
1242 return bus_log_create_error(r);
1244 r = sd_bus_message_open_container(m, 'a', "ay");
1246 return bus_log_create_error(r);
1248 r = sd_bus_message_append_array(m, 'y', eq, strlen(eq));
1250 return bus_log_create_error(r);
1252 r = sd_bus_message_close_container(m);
1254 return bus_log_create_error(r);
1256 r = sd_bus_message_close_container(m);
1258 return bus_log_create_error(r);
1260 r = sd_bus_message_close_container(m);
1262 return bus_log_create_error(r);
1267 if (STR_IN_SET(field, "StandardInput",
1270 const char *n, *appended;
1272 if ((n = startswith(eq, "fd:"))) {
1273 appended = strjoina(field, "FileDescriptorName");
1274 r = sd_bus_message_append(m, "(sv)", appended, "s", n);
1275 } else if ((n = startswith(eq, "file:"))) {
1276 appended = strjoina(field, "File");
1277 r = sd_bus_message_append(m, "(sv)", appended, "s", n);
1278 } else if ((n = startswith(eq, "append:"))) {
1279 appended = strjoina(field, "FileToAppend");
1280 r = sd_bus_message_append(m, "(sv)", appended, "s", n);
1281 } else if ((n = startswith(eq, "truncate:"))) {
1282 appended = strjoina(field, "FileToTruncate");
1283 r = sd_bus_message_append(m, "(sv)", appended, "s", n);
1285 r = sd_bus_message_append(m, "(sv)", field, "s", eq);
1287 return bus_log_create_error(r);
1292 if (streq(field, "StandardInputText")) {
1293 _cleanup_free_ char *unescaped = NULL;
1296 l = cunescape(eq, 0, &unescaped);
1298 return log_error_errno(l, "Failed to unescape text '%s': %m", eq);
1300 if (!strextend(&unescaped, "\n"))
1303 /* Note that we don't expand specifiers here, but that should be OK, as this is a
1304 * programmatic interface anyway */
1306 return bus_append_byte_array(m, field, unescaped, l + 1);
1309 if (streq(field, "StandardInputData")) {
1310 _cleanup_free_ void *decoded = NULL;
1313 r = unbase64mem(eq, SIZE_MAX, &decoded, &sz);
1315 return log_error_errno(r, "Failed to decode base64 data '%s': %m", eq);
1317 return bus_append_byte_array(m, field, decoded, sz);
1320 if ((suffix = startswith(field, "Limit"))) {
1323 rl = rlimit_from_string(suffix);
1328 r = rlimit_parse(rl, eq, &l);
1330 return log_error_errno(r, "Failed to parse resource limit: %s", eq);
1332 r = sd_bus_message_append(m, "(sv)", field, "t", l.rlim_max);
1334 return bus_log_create_error(r);
1336 sn = strjoina(field, "Soft");
1337 r = sd_bus_message_append(m, "(sv)", sn, "t", l.rlim_cur);
1339 return bus_log_create_error(r);
1345 if (STR_IN_SET(field, "AppArmorProfile",
1346 "SmackProcessLabel")) {
1355 r = sd_bus_message_append(m, "(sv)", field, "(bs)", ignore, s);
1357 return bus_log_create_error(r);
1362 if (STR_IN_SET(field, "CapabilityBoundingSet",
1363 "AmbientCapabilities")) {
1365 bool invert = false;
1373 r = capability_set_from_string(p, &sum);
1375 return log_error_errno(r, "Failed to parse %s value %s: %m", field, eq);
1377 sum = invert ? ~sum : sum;
1379 r = sd_bus_message_append(m, "(sv)", field, "t", sum);
1381 return bus_log_create_error(r);
1386 if (streq(field, "CPUAffinity")) {
1387 _cleanup_(cpu_set_reset) CPUSet cpuset = {};
1388 _cleanup_free_ uint8_t *array = NULL;
1391 if (eq && streq(eq, "numa")) {
1392 r = sd_bus_message_append(m, "(sv)", "CPUAffinityFromNUMA", "b", true);
1394 return bus_log_create_error(r);
1398 r = parse_cpu_set(eq, &cpuset);
1400 return log_error_errno(r, "Failed to parse %s value: %s", field, eq);
1402 r = cpu_set_to_dbus(&cpuset, &array, &allocated);
1404 return log_error_errno(r, "Failed to serialize CPUAffinity: %m");
1406 return bus_append_byte_array(m, field, array, allocated);
1409 if (streq(field, "NUMAPolicy")) {
1410 r = mpol_from_string(eq);
1412 return log_error_errno(r, "Failed to parse %s value: %s", field, eq);
1414 r = sd_bus_message_append(m, "(sv)", field, "i", (int32_t) r);
1416 return bus_log_create_error(r);
1421 if (streq(field, "NUMAMask")) {
1422 _cleanup_(cpu_set_reset) CPUSet nodes = {};
1423 _cleanup_free_ uint8_t *array = NULL;
1426 if (eq && streq(eq, "all")) {
1427 r = numa_mask_add_all(&nodes);
1429 return log_error_errno(r, "Failed to create NUMA mask representing \"all\" NUMA nodes: %m");
1431 r = parse_cpu_set(eq, &nodes);
1433 return log_error_errno(r, "Failed to parse %s value: %s", field, eq);
1436 r = cpu_set_to_dbus(&nodes, &array, &allocated);
1438 return log_error_errno(r, "Failed to serialize NUMAMask: %m");
1440 return bus_append_byte_array(m, field, array, allocated);
1443 if (STR_IN_SET(field, "RestrictAddressFamilies",
1444 "RestrictFileSystems",
1447 "RestrictNetworkInterfaces")) {
1456 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
1458 return bus_log_create_error(r);
1460 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, field);
1462 return bus_log_create_error(r);
1464 r = sd_bus_message_open_container(m, 'v', "(bas)");
1466 return bus_log_create_error(r);
1468 r = sd_bus_message_open_container(m, 'r', "bas");
1470 return bus_log_create_error(r);
1472 r = sd_bus_message_append_basic(m, 'b', &allow_list);
1474 return bus_log_create_error(r);
1476 r = sd_bus_message_open_container(m, 'a', "s");
1478 return bus_log_create_error(r);
1481 _cleanup_free_ char *word = NULL;
1483 r = extract_first_word(&p, &word, NULL, EXTRACT_UNQUOTE);
1489 return log_error_errno(r, "Invalid syntax: %s", eq);
1491 r = sd_bus_message_append_basic(m, 's', word);
1493 return bus_log_create_error(r);
1496 r = sd_bus_message_close_container(m);
1498 return bus_log_create_error(r);
1500 r = sd_bus_message_close_container(m);
1502 return bus_log_create_error(r);
1504 r = sd_bus_message_close_container(m);
1506 return bus_log_create_error(r);
1508 r = sd_bus_message_close_container(m);
1510 return bus_log_create_error(r);
1515 if (streq(field, "RestrictNamespaces")) {
1516 bool invert = false;
1517 unsigned long flags;
1519 r = parse_boolean(eq);
1523 flags = NAMESPACE_FLAGS_ALL;
1530 r = namespace_flags_from_string(eq, &flags);
1532 return log_error_errno(r, "Failed to parse %s value %s.", field, eq);
1536 flags = (~flags) & NAMESPACE_FLAGS_ALL;
1538 r = sd_bus_message_append(m, "(sv)", field, "t", (uint64_t) flags);
1540 return bus_log_create_error(r);
1545 if (STR_IN_SET(field, "BindPaths",
1546 "BindReadOnlyPaths")) {
1549 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
1551 return bus_log_create_error(r);
1553 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, field);
1555 return bus_log_create_error(r);
1557 r = sd_bus_message_open_container(m, 'v', "a(ssbt)");
1559 return bus_log_create_error(r);
1561 r = sd_bus_message_open_container(m, 'a', "(ssbt)");
1563 return bus_log_create_error(r);
1566 _cleanup_free_ char *source = NULL, *destination = NULL;
1567 char *s = NULL, *d = NULL;
1568 bool ignore_enoent = false;
1569 uint64_t flags = MS_REC;
1571 r = extract_first_word(&p, &source, ":" WHITESPACE, EXTRACT_UNQUOTE|EXTRACT_DONT_COALESCE_SEPARATORS);
1573 return log_error_errno(r, "Failed to parse argument: %m");
1579 ignore_enoent = true;
1583 if (p && p[-1] == ':') {
1584 r = extract_first_word(&p, &destination, ":" WHITESPACE, EXTRACT_UNQUOTE|EXTRACT_DONT_COALESCE_SEPARATORS);
1586 return log_error_errno(r, "Failed to parse argument: %m");
1588 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
1589 "Missing argument after ':': %s",
1594 if (p && p[-1] == ':') {
1595 _cleanup_free_ char *options = NULL;
1597 r = extract_first_word(&p, &options, NULL, EXTRACT_UNQUOTE);
1599 return log_error_errno(r, "Failed to parse argument: %m");
1601 if (isempty(options) || streq(options, "rbind"))
1603 else if (streq(options, "norbind"))
1606 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
1607 "Unknown options: %s",
1613 r = sd_bus_message_append(m, "(ssbt)", s, d, ignore_enoent, flags);
1615 return bus_log_create_error(r);
1618 r = sd_bus_message_close_container(m);
1620 return bus_log_create_error(r);
1622 r = sd_bus_message_close_container(m);
1624 return bus_log_create_error(r);
1626 r = sd_bus_message_close_container(m);
1628 return bus_log_create_error(r);
1633 if (streq(field, "TemporaryFileSystem")) {
1636 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
1638 return bus_log_create_error(r);
1640 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, field);
1642 return bus_log_create_error(r);
1644 r = sd_bus_message_open_container(m, 'v', "a(ss)");
1646 return bus_log_create_error(r);
1648 r = sd_bus_message_open_container(m, 'a', "(ss)");
1650 return bus_log_create_error(r);
1653 _cleanup_free_ char *word = NULL, *path = NULL;
1656 r = extract_first_word(&p, &word, NULL, EXTRACT_UNQUOTE);
1658 return log_error_errno(r, "Failed to parse argument: %m");
1663 r = extract_first_word(&w, &path, ":", EXTRACT_DONT_COALESCE_SEPARATORS);
1665 return log_error_errno(r, "Failed to parse argument: %m");
1667 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
1668 "Failed to parse argument: %s",
1671 r = sd_bus_message_append(m, "(ss)", path, w);
1673 return bus_log_create_error(r);
1676 r = sd_bus_message_close_container(m);
1678 return bus_log_create_error(r);
1680 r = sd_bus_message_close_container(m);
1682 return bus_log_create_error(r);
1684 r = sd_bus_message_close_container(m);
1686 return bus_log_create_error(r);
1691 if (streq(field, "RootHash")) {
1692 _cleanup_free_ void *roothash_decoded = NULL;
1693 size_t roothash_decoded_size = 0;
1695 /* We have the path to a roothash to load and decode, eg: RootHash=/foo/bar.roothash */
1696 if (path_is_absolute(eq))
1697 return bus_append_string(m, "RootHashPath", eq);
1699 /* We have a roothash to decode, eg: RootHash=012345789abcdef */
1700 r = unhexmem(eq, strlen(eq), &roothash_decoded, &roothash_decoded_size);
1702 return log_error_errno(r, "Failed to decode RootHash= '%s': %m", eq);
1703 if (roothash_decoded_size < sizeof(sd_id128_t))
1704 return log_error_errno(SYNTHETIC_ERRNO(EINVAL), "RootHash= '%s' is too short: %m", eq);
1706 return bus_append_byte_array(m, field, roothash_decoded, roothash_decoded_size);
1709 if (streq(field, "RootHashSignature")) {
1710 _cleanup_free_ void *roothash_sig_decoded = NULL;
1712 size_t roothash_sig_decoded_size = 0;
1714 /* We have the path to a roothash signature to load and decode, eg: RootHash=/foo/bar.roothash.p7s */
1715 if (path_is_absolute(eq))
1716 return bus_append_string(m, "RootHashSignaturePath", eq);
1718 if (!(value = startswith(eq, "base64:")))
1719 return log_error_errno(SYNTHETIC_ERRNO(EINVAL), "Failed to decode RootHashSignature= '%s', not a path but doesn't start with 'base64:': %m", eq);
1721 /* We have a roothash signature to decode, eg: RootHashSignature=base64:012345789abcdef */
1722 r = unbase64mem(value, strlen(value), &roothash_sig_decoded, &roothash_sig_decoded_size);
1724 return log_error_errno(r, "Failed to decode RootHashSignature= '%s': %m", eq);
1726 return bus_append_byte_array(m, field, roothash_sig_decoded, roothash_sig_decoded_size);
1729 if (streq(field, "RootImageOptions")) {
1730 _cleanup_strv_free_ char **l = NULL;
1733 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
1735 return bus_log_create_error(r);
1737 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, field);
1739 return bus_log_create_error(r);
1741 r = sd_bus_message_open_container(m, 'v', "a(ss)");
1743 return bus_log_create_error(r);
1745 r = sd_bus_message_open_container(m, 'a', "(ss)");
1747 return bus_log_create_error(r);
1749 r = strv_split_colon_pairs(&l, p);
1751 return log_error_errno(r, "Failed to parse argument: %m");
1753 STRV_FOREACH_PAIR(first, second, l) {
1754 r = sd_bus_message_append(m, "(ss)",
1755 !isempty(*second) ? *first : "root",
1756 !isempty(*second) ? *second : *first);
1758 return bus_log_create_error(r);
1761 r = sd_bus_message_close_container(m);
1763 return bus_log_create_error(r);
1765 r = sd_bus_message_close_container(m);
1767 return bus_log_create_error(r);
1769 r = sd_bus_message_close_container(m);
1771 return bus_log_create_error(r);
1776 if (streq(field, "MountImages")) {
1779 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
1781 return bus_log_create_error(r);
1783 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, field);
1785 return bus_log_create_error(r);
1787 r = sd_bus_message_open_container(m, 'v', "a(ssba(ss))");
1789 return bus_log_create_error(r);
1791 r = sd_bus_message_open_container(m, 'a', "(ssba(ss))");
1793 return bus_log_create_error(r);
1796 _cleanup_free_ char *first = NULL, *second = NULL, *tuple = NULL;
1797 const char *q = NULL, *source = NULL;
1798 bool permissive = false;
1800 r = extract_first_word(&p, &tuple, NULL, EXTRACT_UNQUOTE|EXTRACT_RETAIN_ESCAPE);
1802 return log_error_errno(r, "Failed to parse MountImages= property: %s", eq);
1807 r = extract_many_words(&q, ":", EXTRACT_CUNESCAPE|EXTRACT_UNESCAPE_SEPARATORS, &first, &second, NULL);
1809 return log_error_errno(r, "Failed to parse MountImages= property: %s", eq);
1814 if (source[0] == '-') {
1819 if (isempty(second))
1820 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
1821 "Missing argument after ':': %s",
1824 r = sd_bus_message_open_container(m, 'r', "ssba(ss)");
1826 return bus_log_create_error(r);
1828 r = sd_bus_message_append(m, "ssb", source, second, permissive);
1830 return bus_log_create_error(r);
1832 r = sd_bus_message_open_container(m, 'a', "(ss)");
1834 return bus_log_create_error(r);
1837 _cleanup_free_ char *partition = NULL, *mount_options = NULL;
1839 r = extract_many_words(&q, ":", EXTRACT_CUNESCAPE|EXTRACT_UNESCAPE_SEPARATORS, &partition, &mount_options, NULL);
1841 return log_error_errno(r, "Failed to parse MountImages= property: %s", eq);
1844 /* Single set of options, applying to the root partition/single filesystem */
1846 r = sd_bus_message_append(m, "(ss)", "root", partition);
1848 return bus_log_create_error(r);
1853 r = sd_bus_message_append(m, "(ss)", partition, mount_options);
1855 return bus_log_create_error(r);
1858 r = sd_bus_message_close_container(m);
1860 return bus_log_create_error(r);
1862 r = sd_bus_message_close_container(m);
1864 return bus_log_create_error(r);
1867 r = sd_bus_message_close_container(m);
1869 return bus_log_create_error(r);
1871 r = sd_bus_message_close_container(m);
1873 return bus_log_create_error(r);
1875 r = sd_bus_message_close_container(m);
1877 return bus_log_create_error(r);
1882 if (streq(field, "ExtensionImages")) {
1885 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
1887 return bus_log_create_error(r);
1889 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, field);
1891 return bus_log_create_error(r);
1893 r = sd_bus_message_open_container(m, 'v', "a(sba(ss))");
1895 return bus_log_create_error(r);
1897 r = sd_bus_message_open_container(m, 'a', "(sba(ss))");
1899 return bus_log_create_error(r);
1902 _cleanup_free_ char *source = NULL, *tuple = NULL;
1903 const char *q = NULL, *s = NULL;
1904 bool permissive = false;
1906 r = extract_first_word(&p, &tuple, NULL, EXTRACT_UNQUOTE|EXTRACT_RETAIN_ESCAPE);
1908 return log_error_errno(r, "Failed to parse ExtensionImages= property: %s", eq);
1913 r = extract_first_word(&q, &source, ":", EXTRACT_CUNESCAPE|EXTRACT_UNESCAPE_SEPARATORS);
1915 return log_error_errno(r, "Failed to parse ExtensionImages= property: %s", eq);
1925 r = sd_bus_message_open_container(m, 'r', "sba(ss)");
1927 return bus_log_create_error(r);
1929 r = sd_bus_message_append(m, "sb", s, permissive);
1931 return bus_log_create_error(r);
1933 r = sd_bus_message_open_container(m, 'a', "(ss)");
1935 return bus_log_create_error(r);
1938 _cleanup_free_ char *partition = NULL, *mount_options = NULL;
1940 r = extract_many_words(&q, ":", EXTRACT_CUNESCAPE|EXTRACT_UNESCAPE_SEPARATORS, &partition, &mount_options, NULL);
1942 return log_error_errno(r, "Failed to parse ExtensionImages= property: %s", eq);
1945 /* Single set of options, applying to the root partition/single filesystem */
1947 r = sd_bus_message_append(m, "(ss)", "root", partition);
1949 return bus_log_create_error(r);
1954 r = sd_bus_message_append(m, "(ss)", partition, mount_options);
1956 return bus_log_create_error(r);
1959 r = sd_bus_message_close_container(m);
1961 return bus_log_create_error(r);
1963 r = sd_bus_message_close_container(m);
1965 return bus_log_create_error(r);
1968 r = sd_bus_message_close_container(m);
1970 return bus_log_create_error(r);
1972 r = sd_bus_message_close_container(m);
1974 return bus_log_create_error(r);
1976 r = sd_bus_message_close_container(m);
1978 return bus_log_create_error(r);
1983 if (STR_IN_SET(field, "StateDirectory", "RuntimeDirectory", "CacheDirectory", "LogsDirectory")) {
1984 _cleanup_strv_free_ char **symlinks = NULL, **sources = NULL;
1987 /* Adding new directories is supported from both *DirectorySymlink methods and the
1988 * older ones, so first parse the input, and if we are given a new-style src:dst
1989 * tuple use the new method, else use the old one. */
1992 _cleanup_free_ char *tuple = NULL, *source = NULL, *destination = NULL;
1994 r = extract_first_word(&p, &tuple, NULL, EXTRACT_UNQUOTE);
1996 return log_error_errno(r, "Failed to parse argument: %m");
2000 const char *t = tuple;
2001 r = extract_many_words(&t, ":", EXTRACT_UNQUOTE|EXTRACT_DONT_COALESCE_SEPARATORS, &source, &destination, NULL);
2003 return log_error_errno(r ?: SYNTHETIC_ERRNO(EINVAL), "Failed to parse argument: %m");
2005 path_simplify(source);
2007 if (isempty(destination)) {
2008 r = strv_consume(&sources, TAKE_PTR(source));
2010 return bus_log_create_error(r);
2012 path_simplify(destination);
2014 r = strv_consume_pair(&symlinks, TAKE_PTR(source), TAKE_PTR(destination));
2020 if (!strv_isempty(sources)) {
2021 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
2023 return bus_log_create_error(r);
2025 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, field);
2027 return bus_log_create_error(r);
2029 r = sd_bus_message_open_container(m, 'v', "as");
2031 return bus_log_create_error(r);
2033 r = sd_bus_message_append_strv(m, sources);
2035 return bus_log_create_error(r);
2037 r = sd_bus_message_close_container(m);
2039 return bus_log_create_error(r);
2041 r = sd_bus_message_close_container(m);
2043 return bus_log_create_error(r);
2046 /* For State and Runtime directories we support an optional destination parameter, which
2047 * will be used to create a symlink to the source. But it is new so we cannot change the
2048 * old DBUS signatures, so append a new message type. */
2049 if (!strv_isempty(symlinks)) {
2050 const char *symlink_field;
2052 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
2054 return bus_log_create_error(r);
2056 if (streq(field, "StateDirectory"))
2057 symlink_field = "StateDirectorySymlink";
2058 else if (streq(field, "RuntimeDirectory"))
2059 symlink_field = "RuntimeDirectorySymlink";
2060 else if (streq(field, "CacheDirectory"))
2061 symlink_field = "CacheDirectorySymlink";
2062 else if (streq(field, "LogsDirectory"))
2063 symlink_field = "LogsDirectorySymlink";
2065 assert_not_reached();
2067 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, symlink_field);
2069 return bus_log_create_error(r);
2071 r = sd_bus_message_open_container(m, 'v', "a(sst)");
2073 return bus_log_create_error(r);
2075 r = sd_bus_message_open_container(m, 'a', "(sst)");
2077 return bus_log_create_error(r);
2079 STRV_FOREACH_PAIR(source, destination, symlinks) {
2080 r = sd_bus_message_append(m, "(sst)", *source, *destination, 0);
2082 return bus_log_create_error(r);
2085 r = sd_bus_message_close_container(m);
2087 return bus_log_create_error(r);
2089 r = sd_bus_message_close_container(m);
2091 return bus_log_create_error(r);
2093 r = sd_bus_message_close_container(m);
2095 return bus_log_create_error(r);
2104 static int bus_append_kill_property(sd_bus_message *m, const char *field, const char *eq) {
2105 if (streq(field, "KillMode"))
2106 return bus_append_string(m, field, eq);
2108 if (STR_IN_SET(field, "SendSIGHUP",
2110 return bus_append_parse_boolean(m, field, eq);
2112 if (STR_IN_SET(field, "KillSignal",
2113 "RestartKillSignal",
2116 return bus_append_signal_from_string(m, field, eq);
2121 static int bus_append_mount_property(sd_bus_message *m, const char *field, const char *eq) {
2123 if (STR_IN_SET(field, "What",
2127 return bus_append_string(m, field, eq);
2129 if (streq(field, "TimeoutSec"))
2130 return bus_append_parse_sec_rename(m, field, eq);
2132 if (streq(field, "DirectoryMode"))
2133 return bus_append_parse_mode(m, field, eq);
2135 if (STR_IN_SET(field, "SloppyOptions",
2139 return bus_append_parse_boolean(m, field, eq);
2144 static int bus_append_path_property(sd_bus_message *m, const char *field, const char *eq) {
2147 if (streq(field, "MakeDirectory"))
2148 return bus_append_parse_boolean(m, field, eq);
2150 if (streq(field, "DirectoryMode"))
2151 return bus_append_parse_mode(m, field, eq);
2153 if (STR_IN_SET(field, "PathExists",
2157 "DirectoryNotEmpty")) {
2159 r = sd_bus_message_append(m, "(sv)", "Paths", "a(ss)", 0);
2161 r = sd_bus_message_append(m, "(sv)", "Paths", "a(ss)", 1, field, eq);
2163 return bus_log_create_error(r);
2168 if (streq(field, "TriggerLimitBurst"))
2169 return bus_append_safe_atou(m, field, eq);
2171 if (streq(field, "TriggerLimitIntervalSec"))
2172 return bus_append_parse_sec_rename(m, field, eq);
2177 static int bus_append_scope_property(sd_bus_message *m, const char *field, const char *eq) {
2178 if (streq(field, "RuntimeMaxSec"))
2179 return bus_append_parse_sec_rename(m, field, eq);
2181 if (streq(field, "RuntimeRandomizedExtraSec"))
2182 return bus_append_parse_sec_rename(m, field, eq);
2184 if (streq(field, "TimeoutStopSec"))
2185 return bus_append_parse_sec_rename(m, field, eq);
2187 /* Scope units don't have execution context but we still want to allow setting these two,
2188 * so let's handle them separately. */
2189 if (STR_IN_SET(field, "User", "Group"))
2190 return bus_append_string(m, field, eq);
2195 static int bus_append_service_property(sd_bus_message *m, const char *field, const char *eq) {
2198 if (STR_IN_SET(field, "PIDFile",
2204 "USBFunctionDescriptors",
2205 "USBFunctionStrings",
2207 "TimeoutStartFailureMode",
2208 "TimeoutStopFailureMode"))
2209 return bus_append_string(m, field, eq);
2211 if (STR_IN_SET(field, "PermissionsStartOnly",
2212 "RootDirectoryStartOnly",
2215 return bus_append_parse_boolean(m, field, eq);
2217 if (STR_IN_SET(field, "RestartSec",
2222 "RuntimeRandomizedExtraSec",
2224 return bus_append_parse_sec_rename(m, field, eq);
2226 if (streq(field, "TimeoutSec")) {
2227 r = bus_append_parse_sec_rename(m, "TimeoutStartSec", eq);
2231 return bus_append_parse_sec_rename(m, "TimeoutStopSec", eq);
2234 if (streq(field, "FileDescriptorStoreMax"))
2235 return bus_append_safe_atou(m, field, eq);
2237 if (STR_IN_SET(field, "ExecCondition",
2251 return bus_append_exec_command(m, field, eq);
2253 if (STR_IN_SET(field, "RestartPreventExitStatus",
2254 "RestartForceExitStatus",
2255 "SuccessExitStatus")) {
2256 _cleanup_free_ int *status = NULL, *signal = NULL;
2257 size_t n_status = 0, n_signal = 0;
2261 _cleanup_free_ char *word = NULL;
2263 r = extract_first_word(&p, &word, NULL, EXTRACT_UNQUOTE);
2269 return log_error_errno(r, "Invalid syntax in %s: %s", field, eq);
2271 /* We need to call exit_status_from_string() first, because we want
2272 * to parse numbers as exit statuses, not signals. */
2274 r = exit_status_from_string(word);
2276 assert(r >= 0 && r < 256);
2278 status = reallocarray(status, n_status + 1, sizeof(int));
2282 status[n_status++] = r;
2284 } else if ((r = signal_from_string(word)) >= 0) {
2285 signal = reallocarray(signal, n_signal + 1, sizeof(int));
2289 signal[n_signal++] = r;
2292 /* original r from exit_status_to_string() */
2293 return log_error_errno(r, "Invalid status or signal %s in %s: %m",
2297 r = sd_bus_message_open_container(m, SD_BUS_TYPE_STRUCT, "sv");
2299 return bus_log_create_error(r);
2301 r = sd_bus_message_append_basic(m, SD_BUS_TYPE_STRING, field);
2303 return bus_log_create_error(r);
2305 r = sd_bus_message_open_container(m, 'v', "(aiai)");
2307 return bus_log_create_error(r);
2309 r = sd_bus_message_open_container(m, 'r', "aiai");
2311 return bus_log_create_error(r);
2313 r = sd_bus_message_append_array(m, 'i', status, n_status * sizeof(int));
2315 return bus_log_create_error(r);
2317 r = sd_bus_message_append_array(m, 'i', signal, n_signal * sizeof(int));
2319 return bus_log_create_error(r);
2321 r = sd_bus_message_close_container(m);
2323 return bus_log_create_error(r);
2325 r = sd_bus_message_close_container(m);
2327 return bus_log_create_error(r);
2329 r = sd_bus_message_close_container(m);
2331 return bus_log_create_error(r);
2336 if (streq(field, "OpenFile"))
2337 return bus_append_open_file(m, field, eq);
2342 static int bus_append_socket_property(sd_bus_message *m, const char *field, const char *eq) {
2345 if (STR_IN_SET(field, "Accept",
2358 "SELinuxContextFromNet"))
2359 return bus_append_parse_boolean(m, field, eq);
2361 if (STR_IN_SET(field, "Priority",
2364 return bus_append_safe_atoi(m, field, eq);
2366 if (streq(field, "IPTOS"))
2367 return bus_append_ip_tos_from_string(m, field, eq);
2369 if (STR_IN_SET(field, "Backlog",
2371 "MaxConnectionsPerSource",
2373 "TriggerLimitBurst"))
2374 return bus_append_safe_atou(m, field, eq);
2376 if (STR_IN_SET(field, "SocketMode",
2378 return bus_append_parse_mode(m, field, eq);
2380 if (STR_IN_SET(field, "MessageQueueMaxMessages",
2381 "MessageQueueMessageSize"))
2382 return bus_append_safe_atoi64(m, field, eq);
2384 if (STR_IN_SET(field, "TimeoutSec",
2386 "KeepAliveIntervalSec",
2388 "TriggerLimitIntervalSec"))
2389 return bus_append_parse_sec_rename(m, field, eq);
2391 if (STR_IN_SET(field, "ReceiveBuffer",
2394 return bus_append_parse_size(m, field, eq, 1024);
2396 if (STR_IN_SET(field, "ExecStartPre",
2400 return bus_append_exec_command(m, field, eq);
2402 if (STR_IN_SET(field, "SmackLabel",
2408 "FileDescriptorName",
2412 return bus_append_string(m, field, eq);
2414 if (streq(field, "Symlinks"))
2415 return bus_append_strv(m, field, eq, EXTRACT_UNQUOTE);
2417 if (streq(field, "SocketProtocol"))
2418 return bus_append_parse_ip_protocol(m, field, eq);
2420 if (STR_IN_SET(field, "ListenStream",
2422 "ListenSequentialPacket",
2425 "ListenMessageQueue",
2427 "ListenUSBFunction")) {
2429 r = sd_bus_message_append(m, "(sv)", "Listen", "a(ss)", 0);
2431 r = sd_bus_message_append(m, "(sv)", "Listen", "a(ss)", 1, field + STRLEN("Listen"), eq);
2433 return bus_log_create_error(r);
2440 static int bus_append_timer_property(sd_bus_message *m, const char *field, const char *eq) {
2443 if (STR_IN_SET(field, "WakeSystem",
2444 "RemainAfterElapse",
2448 "FixedRandomDelay"))
2449 return bus_append_parse_boolean(m, field, eq);
2451 if (STR_IN_SET(field, "AccuracySec",
2452 "RandomizedDelaySec"))
2453 return bus_append_parse_sec_rename(m, field, eq);
2455 if (STR_IN_SET(field, "OnActiveSec",
2459 "OnUnitInactiveSec")) {
2461 r = sd_bus_message_append(m, "(sv)", "TimersMonotonic", "a(st)", 0);
2464 r = parse_sec(eq, &t);
2466 return log_error_errno(r, "Failed to parse %s=%s: %m", field, eq);
2468 r = sd_bus_message_append(m, "(sv)", "TimersMonotonic", "a(st)", 1, field, t);
2471 return bus_log_create_error(r);
2476 if (streq(field, "OnCalendar")) {
2478 r = sd_bus_message_append(m, "(sv)", "TimersCalendar", "a(ss)", 0);
2480 r = sd_bus_message_append(m, "(sv)", "TimersCalendar", "a(ss)", 1, field, eq);
2482 return bus_log_create_error(r);
2490 static int bus_append_unit_property(sd_bus_message *m, const char *field, const char *eq) {
2491 ConditionType t = _CONDITION_TYPE_INVALID;
2492 bool is_condition = false;
2495 if (STR_IN_SET(field, "Description",
2499 "JobTimeoutRebootArgument",
2505 return bus_append_string(m, field, eq);
2507 if (STR_IN_SET(field, "StopWhenUnneeded",
2508 "RefuseManualStart",
2512 "DefaultDependencies"))
2513 return bus_append_parse_boolean(m, field, eq);
2515 if (STR_IN_SET(field, "JobTimeoutSec",
2516 "JobRunningTimeoutSec",
2517 "StartLimitIntervalSec"))
2518 return bus_append_parse_sec_rename(m, field, eq);
2520 if (streq(field, "StartLimitBurst"))
2521 return bus_append_safe_atou(m, field, eq);
2523 if (STR_IN_SET(field, "SuccessActionExitStatus",
2524 "FailureActionExitStatus")) {
2526 r = sd_bus_message_append(m, "(sv)", field, "i", -1);
2530 r = safe_atou8(eq, &u);
2532 return log_error_errno(r, "Failed to parse %s=%s", field, eq);
2534 r = sd_bus_message_append(m, "(sv)", field, "i", (int) u);
2537 return bus_log_create_error(r);
2542 if (unit_dependency_from_string(field) >= 0 ||
2543 STR_IN_SET(field, "Documentation",
2544 "RequiresMountsFor",
2546 return bus_append_strv(m, field, eq, EXTRACT_UNQUOTE);
2548 t = condition_type_from_string(field);
2550 is_condition = true;
2552 t = assert_type_from_string(field);
2555 r = sd_bus_message_append(m, "(sv)", is_condition ? "Conditions" : "Asserts", "a(sbbs)", 0);
2558 int trigger, negate;
2560 trigger = *p == '|';
2568 r = sd_bus_message_append(m, "(sv)", is_condition ? "Conditions" : "Asserts", "a(sbbs)", 1,
2569 field, trigger, negate, p);
2572 return bus_log_create_error(r);
2580 int bus_append_unit_property_assignment(sd_bus_message *m, UnitType t, const char *assignment) {
2581 const char *eq, *field;
2587 eq = strchr(assignment, '=');
2589 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
2590 "Not an assignment: %s", assignment);
2592 field = strndupa_safe(assignment, eq - assignment);
2597 r = bus_append_cgroup_property(m, field, eq);
2601 r = bus_append_execute_property(m, field, eq);
2605 r = bus_append_kill_property(m, field, eq);
2609 r = bus_append_service_property(m, field, eq);
2615 r = bus_append_cgroup_property(m, field, eq);
2619 r = bus_append_execute_property(m, field, eq);
2623 r = bus_append_kill_property(m, field, eq);
2627 r = bus_append_socket_property(m, field, eq);
2633 r = bus_append_timer_property(m, field, eq);
2639 r = bus_append_path_property(m, field, eq);
2645 r = bus_append_cgroup_property(m, field, eq);
2651 r = bus_append_cgroup_property(m, field, eq);
2655 r = bus_append_kill_property(m, field, eq);
2659 r = bus_append_scope_property(m, field, eq);
2665 r = bus_append_cgroup_property(m, field, eq);
2669 r = bus_append_execute_property(m, field, eq);
2673 r = bus_append_kill_property(m, field, eq);
2677 r = bus_append_mount_property(m, field, eq);
2683 case UNIT_AUTOMOUNT:
2684 r = bus_append_automount_property(m, field, eq);
2696 assert_not_reached();
2699 r = bus_append_unit_property(m, field, eq);
2703 return log_error_errno(SYNTHETIC_ERRNO(EINVAL),
2704 "Unknown assignment: %s", assignment);
2707 int bus_append_unit_property_assignment_many(sd_bus_message *m, UnitType t, char **l) {
2712 STRV_FOREACH(i, l) {
2713 r = bus_append_unit_property_assignment(m, t, *i);
2721 int bus_deserialize_and_dump_unit_file_changes(sd_bus_message *m, bool quiet, InstallChange **changes, size_t *n_changes) {
2722 const char *type, *path, *source;
2725 /* changes is dereferenced when calling install_changes_dump() later,
2726 * so we have to make sure this is not NULL. */
2730 r = sd_bus_message_enter_container(m, SD_BUS_TYPE_ARRAY, "(sss)");
2732 return bus_log_parse_error(r);
2734 while ((r = sd_bus_message_read(m, "(sss)", &type, &path, &source)) > 0) {
2735 InstallChangeType t;
2737 /* We expect only "success" changes to be sent over the bus. Hence, reject anything
2739 t = install_change_type_from_string(type);
2741 log_notice_errno(t, "Manager reported unknown change type \"%s\" for path \"%s\", ignoring.",
2746 r = install_changes_add(changes, n_changes, t, path, source);
2751 return bus_log_parse_error(r);
2753 r = sd_bus_message_exit_container(m);
2755 return bus_log_parse_error(r);
2757 install_changes_dump(0, NULL, *changes, *n_changes, quiet);
2761 int unit_load_state(sd_bus *bus, const char *name, char **load_state) {
2762 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
2763 _cleanup_free_ char *path = NULL;
2766 path = unit_dbus_path_from_name(name);
2770 /* This function warns on it's own, because otherwise it'd be awkward to pass
2771 * the dbus error message around. */
2773 r = sd_bus_get_property_string(
2775 "org.freedesktop.systemd1",
2777 "org.freedesktop.systemd1.Unit",
2782 return log_error_errno(r, "Failed to get load state of %s: %s", name, bus_error_message(&error, r));
2787 int unit_info_compare(const UnitInfo *a, const UnitInfo *b) {
2790 /* First, order by machine */
2791 r = strcasecmp_ptr(a->machine, b->machine);
2795 /* Second, order by unit type */
2796 r = strcasecmp_ptr(strrchr(a->id, '.'), strrchr(b->id, '.'));
2800 /* Third, order by name */
2801 return strcasecmp(a->id, b->id);