]> git.ipfire.org Git - thirdparty/systemd.git/blame - src/network/networkd-manager.c
nspawn: replace udev_device by sd_device
[thirdparty/systemd.git] / src / network / networkd-manager.c
CommitLineData
53e1b683 1/* SPDX-License-Identifier: LGPL-2.1+ */
f579559b 2
091a364c 3#include <sys/socket.h>
bbf7c048 4#include <linux/if.h>
bce67bbe 5#include <linux/fib_rules.h>
0d536673 6#include <stdio_ext.h>
3bef724f 7
fc2f9534 8#include "sd-daemon.h"
07630cea 9#include "sd-netlink.h"
fc2f9534 10
b5efdb8a 11#include "alloc-util.h"
a97dcc12 12#include "bus-util.h"
07630cea 13#include "conf-parser.h"
a97dcc12 14#include "def.h"
482d1aeb 15#include "dns-domain.h"
3ffd4af2 16#include "fd-util.h"
0d39fa9c 17#include "fileio.h"
07630cea 18#include "libudev-private.h"
4f5f911e 19#include "local-addresses.h"
07630cea 20#include "netlink-util.h"
23f53b99 21#include "networkd-manager.h"
00616955 22#include "ordered-set.h"
07630cea
LP
23#include "path-util.h"
24#include "set.h"
25#include "udev-util.h"
26#include "virt.h"
505f8da7 27
be660c37
AR
28/* use 8 MB for receive socket kernel queue. */
29#define RCVBUF_SIZE (8*1024*1024)
30
2ad8416d
ZJS
31const char* const network_dirs[] = {
32 "/etc/systemd/network",
33 "/run/systemd/network",
34 "/usr/lib/systemd/network",
349cc4a5 35#if HAVE_SPLIT_USR
2ad8416d
ZJS
36 "/lib/systemd/network",
37#endif
38 NULL};
39
11bf3cce
LP
40static int setup_default_address_pool(Manager *m) {
41 AddressPool *p;
42 int r;
43
44 assert(m);
45
46 /* Add in the well-known private address ranges. */
47
48 r = address_pool_new_from_string(m, &p, AF_INET6, "fc00::", 7);
49 if (r < 0)
50 return r;
51
52 r = address_pool_new_from_string(m, &p, AF_INET, "192.168.0.0", 16);
53 if (r < 0)
54 return r;
55
56 r = address_pool_new_from_string(m, &p, AF_INET, "172.16.0.0", 12);
57 if (r < 0)
58 return r;
59
60 r = address_pool_new_from_string(m, &p, AF_INET, "10.0.0.0", 8);
61 if (r < 0)
62 return r;
63
64 return 0;
65}
66
9c0a72f9
TG
67static int manager_reset_all(Manager *m) {
68 Link *link;
69 Iterator i;
70 int r;
71
72 assert(m);
73
74 HASHMAP_FOREACH(link, m->links, i) {
75 r = link_carrier_reset(link);
76 if (r < 0)
2f3cf1f9 77 log_link_warning_errno(link, r, "Could not reset carrier: %m");
9c0a72f9
TG
78 }
79
80 return 0;
81}
82
19070062 83static int match_prepare_for_sleep(sd_bus_message *message, void *userdata, sd_bus_error *ret_error) {
9c0a72f9
TG
84 Manager *m = userdata;
85 int b, r;
86
19070062 87 assert(message);
d7afd945 88 assert(m);
9c0a72f9
TG
89
90 r = sd_bus_message_read(message, "b", &b);
91 if (r < 0) {
92 log_debug_errno(r, "Failed to parse PrepareForSleep signal: %m");
93 return 0;
94 }
95
96 if (b)
97 return 0;
98
99 log_debug("Coming back from suspend, resetting all connections...");
100
e1694a75 101 (void) manager_reset_all(m);
9c0a72f9
TG
102
103 return 0;
104}
105
d7afd945
LP
106static int on_connected(sd_bus_message *message, void *userdata, sd_bus_error *ret_error) {
107 Manager *m = userdata;
9c0a72f9 108
d7afd945 109 assert(message);
9c0a72f9
TG
110 assert(m);
111
d7afd945
LP
112 /* Did we get a timezone or transient hostname from DHCP while D-Bus wasn't up yet? */
113 if (m->dynamic_hostname)
114 (void) manager_set_hostname(m, m->dynamic_hostname);
115 if (m->dynamic_timezone)
116 (void) manager_set_timezone(m, m->dynamic_timezone);
9c0a72f9 117
d7afd945
LP
118 return 0;
119}
9c0a72f9 120
d7afd945
LP
121int manager_connect_bus(Manager *m) {
122 int r;
123
124 assert(m);
9c0a72f9 125
d7afd945 126 if (m->bus)
9c0a72f9 127 return 0;
7d6884b6 128
621e4509 129 r = bus_open_system_watch_bind_with_description(&m->bus, "bus-api-network");
9c0a72f9 130 if (r < 0)
d7afd945 131 return log_error_errno(r, "Failed to connect to bus: %m");
9c0a72f9 132
e331e246
TG
133 r = sd_bus_add_object_vtable(m->bus, NULL, "/org/freedesktop/network1", "org.freedesktop.network1.Manager", manager_vtable, m);
134 if (r < 0)
135 return log_error_errno(r, "Failed to add manager object vtable: %m");
136
137 r = sd_bus_add_fallback_vtable(m->bus, NULL, "/org/freedesktop/network1/link", "org.freedesktop.network1.Link", link_vtable, link_object_find, m);
138 if (r < 0)
139 return log_error_errno(r, "Failed to add link object vtable: %m");
140
141 r = sd_bus_add_node_enumerator(m->bus, NULL, "/org/freedesktop/network1/link", link_node_enumerator, m);
142 if (r < 0)
143 return log_error_errno(r, "Failed to add link enumerator: %m");
3175fcde
TG
144
145 r = sd_bus_add_fallback_vtable(m->bus, NULL, "/org/freedesktop/network1/network", "org.freedesktop.network1.Network", network_vtable, network_object_find, m);
146 if (r < 0)
147 return log_error_errno(r, "Failed to add network object vtable: %m");
148
149 r = sd_bus_add_node_enumerator(m->bus, NULL, "/org/freedesktop/network1/network", network_node_enumerator, m);
150 if (r < 0)
151 return log_error_errno(r, "Failed to add network enumerator: %m");
e331e246 152
d4e9e574 153 r = bus_request_name_async_may_reload_dbus(m->bus, NULL, "org.freedesktop.network1", 0, NULL);
e331e246 154 if (r < 0)
0c0b9306 155 return log_error_errno(r, "Failed to request name: %m");
e331e246
TG
156
157 r = sd_bus_attach_event(m->bus, m->event, 0);
158 if (r < 0)
159 return log_error_errno(r, "Failed to attach bus to event loop: %m");
160
d7afd945
LP
161 r = sd_bus_match_signal_async(
162 m->bus,
cad43595 163 NULL,
d7afd945
LP
164 "org.freedesktop.DBus.Local",
165 NULL,
166 "org.freedesktop.DBus.Local",
167 "Connected",
168 on_connected, NULL, m);
169 if (r < 0)
170 return log_error_errno(r, "Failed to request match on Connected signal: %m");
171
172 r = sd_bus_match_signal_async(
173 m->bus,
cad43595 174 NULL,
d7afd945
LP
175 "org.freedesktop.login1",
176 "/org/freedesktop/login1",
177 "org.freedesktop.login1.Manager",
178 "PrepareForSleep",
179 match_prepare_for_sleep, NULL, m);
180 if (r < 0)
181 log_warning_errno(r, "Failed to request match for PrepareForSleep, ignoring: %m");
7901cea1 182
9c0a72f9
TG
183 return 0;
184}
185
5fae368b
TG
186static int manager_udev_process_link(Manager *m, struct udev_device *device) {
187 Link *link = NULL;
188 int r, ifindex;
5544ee85 189
5fae368b
TG
190 assert(m);
191 assert(device);
5544ee85 192
5fae368b
TG
193 if (!streq_ptr(udev_device_get_action(device), "add"))
194 return 0;
5544ee85 195
5fae368b
TG
196 ifindex = udev_device_get_ifindex(device);
197 if (ifindex <= 0) {
2f3cf1f9 198 log_debug("Ignoring udev ADD event for device with invalid ifindex");
5fae368b 199 return 0;
5544ee85
TG
200 }
201
5fae368b
TG
202 r = link_get(m, ifindex, &link);
203 if (r == -ENODEV)
204 return 0;
205 else if (r < 0)
f579559b
TG
206 return r;
207
5fae368b 208 r = link_initialized(link, device);
44de0efc
LP
209 if (r < 0)
210 return r;
211
5fae368b
TG
212 return 0;
213}
be660c37 214
5fae368b
TG
215static int manager_dispatch_link_udev(sd_event_source *source, int fd, uint32_t revents, void *userdata) {
216 Manager *m = userdata;
217 struct udev_monitor *monitor = m->udev_monitor;
8e766630 218 _cleanup_(udev_device_unrefp) struct udev_device *device = NULL;
f579559b 219
5fae368b
TG
220 device = udev_monitor_receive_device(monitor);
221 if (!device)
02b59d57
TG
222 return -ENOMEM;
223
e1694a75
YW
224 (void) manager_udev_process_link(m, device);
225
f579559b
TG
226 return 0;
227}
228
5fae368b
TG
229static int manager_connect_udev(Manager *m) {
230 int r;
f579559b 231
5fae368b
TG
232 /* udev does not initialize devices inside containers,
233 * so we rely on them being already initialized before
234 * entering the container */
75f86906 235 if (detect_container() > 0)
5fae368b 236 return 0;
f579559b 237
5fae368b
TG
238 m->udev = udev_new();
239 if (!m->udev)
240 return -ENOMEM;
02b59d57 241
5fae368b
TG
242 m->udev_monitor = udev_monitor_new_from_netlink(m->udev, "udev");
243 if (!m->udev_monitor)
244 return -ENOMEM;
02b59d57 245
5fae368b 246 r = udev_monitor_filter_add_match_subsystem_devtype(m->udev_monitor, "net", NULL);
02b59d57 247 if (r < 0)
5fae368b 248 return log_error_errno(r, "Could not add udev monitor filter: %m");
02b59d57 249
5fae368b
TG
250 r = udev_monitor_enable_receiving(m->udev_monitor);
251 if (r < 0) {
252 log_error("Could not enable udev monitor");
02b59d57 253 return r;
667fcc6d 254 }
505f8da7 255
5fae368b
TG
256 r = sd_event_add_io(m->event,
257 &m->udev_event_source,
258 udev_monitor_get_fd(m->udev_monitor),
259 EPOLLIN, manager_dispatch_link_udev,
260 m);
261 if (r < 0)
667fcc6d 262 return r;
505f8da7 263
5fae368b 264 r = sd_event_source_set_description(m->udev_event_source, "networkd-udev");
505f8da7
TG
265 if (r < 0)
266 return r;
11a7f229 267
505f8da7
TG
268 return 0;
269}
f579559b 270
1c8e710c
TG
271int manager_rtnl_process_route(sd_netlink *rtnl, sd_netlink_message *message, void *userdata) {
272 Manager *m = userdata;
273 Link *link = NULL;
274 uint16_t type;
275 uint32_t ifindex, priority = 0;
983226f3 276 unsigned char protocol, scope, tos, table, rt_type;
1c8e710c
TG
277 int family;
278 unsigned char dst_prefixlen, src_prefixlen;
279 union in_addr_union dst = {}, gw = {}, src = {}, prefsrc = {};
280 Route *route = NULL;
281 int r;
282
283 assert(rtnl);
284 assert(message);
285 assert(m);
286
287 if (sd_netlink_message_is_error(message)) {
288 r = sd_netlink_message_get_errno(message);
289 if (r < 0)
e1694a75 290 log_warning_errno(r, "rtnl: failed to receive route, ignoring: %m");
1c8e710c
TG
291
292 return 0;
293 }
294
295 r = sd_netlink_message_get_type(message, &type);
296 if (r < 0) {
e1694a75 297 log_warning_errno(r, "rtnl: could not get message type, ignoring: %m");
1c8e710c 298 return 0;
25a1bffc 299 } else if (!IN_SET(type, RTM_NEWROUTE, RTM_DELROUTE)) {
e1694a75 300 log_warning("rtnl: received unexpected message type when processing route, ignoring");
1c8e710c
TG
301 return 0;
302 }
303
304 r = sd_netlink_message_read_u32(message, RTA_OIF, &ifindex);
305 if (r == -ENODATA) {
306 log_debug("rtnl: received route without ifindex, ignoring");
307 return 0;
308 } else if (r < 0) {
309 log_warning_errno(r, "rtnl: could not get ifindex from route, ignoring: %m");
310 return 0;
311 } else if (ifindex <= 0) {
312 log_warning("rtnl: received route message with invalid ifindex, ignoring: %d", ifindex);
313 return 0;
314 } else {
315 r = link_get(m, ifindex, &link);
316 if (r < 0 || !link) {
317 /* when enumerating we might be out of sync, but we will
318 * get the route again, so just ignore it */
319 if (!m->enumerating)
320 log_warning("rtnl: received route for nonexistent link (%d), ignoring", ifindex);
321 return 0;
322 }
323 }
324
325 r = sd_rtnl_message_route_get_family(message, &family);
326 if (r < 0 || !IN_SET(family, AF_INET, AF_INET6)) {
e1694a75 327 log_link_warning(link, "rtnl: received address with invalid family, ignoring");
1c8e710c
TG
328 return 0;
329 }
330
331 r = sd_rtnl_message_route_get_protocol(message, &protocol);
332 if (r < 0) {
333 log_warning_errno(r, "rtnl: could not get route protocol: %m");
334 return 0;
335 }
336
337 switch (family) {
338 case AF_INET:
339 r = sd_netlink_message_read_in_addr(message, RTA_DST, &dst.in);
340 if (r < 0 && r != -ENODATA) {
341 log_link_warning_errno(link, r, "rtnl: received route without valid destination, ignoring: %m");
342 return 0;
343 }
344
345 r = sd_netlink_message_read_in_addr(message, RTA_GATEWAY, &gw.in);
346 if (r < 0 && r != -ENODATA) {
347 log_link_warning_errno(link, r, "rtnl: received route with invalid gateway, ignoring: %m");
348 return 0;
349 }
350
351 r = sd_netlink_message_read_in_addr(message, RTA_SRC, &src.in);
352 if (r < 0 && r != -ENODATA) {
353 log_link_warning_errno(link, r, "rtnl: received route with invalid source, ignoring: %m");
354 return 0;
355 }
356
357 r = sd_netlink_message_read_in_addr(message, RTA_PREFSRC, &prefsrc.in);
358 if (r < 0 && r != -ENODATA) {
359 log_link_warning_errno(link, r, "rtnl: received route with invalid preferred source, ignoring: %m");
360 return 0;
361 }
362
363 break;
364
365 case AF_INET6:
366 r = sd_netlink_message_read_in6_addr(message, RTA_DST, &dst.in6);
367 if (r < 0 && r != -ENODATA) {
368 log_link_warning_errno(link, r, "rtnl: received route without valid destination, ignoring: %m");
369 return 0;
370 }
371
372 r = sd_netlink_message_read_in6_addr(message, RTA_GATEWAY, &gw.in6);
373 if (r < 0 && r != -ENODATA) {
374 log_link_warning_errno(link, r, "rtnl: received route with invalid gateway, ignoring: %m");
375 return 0;
376 }
377
378 r = sd_netlink_message_read_in6_addr(message, RTA_SRC, &src.in6);
379 if (r < 0 && r != -ENODATA) {
380 log_link_warning_errno(link, r, "rtnl: received route with invalid source, ignoring: %m");
381 return 0;
382 }
383
384 r = sd_netlink_message_read_in6_addr(message, RTA_PREFSRC, &prefsrc.in6);
385 if (r < 0 && r != -ENODATA) {
386 log_link_warning_errno(link, r, "rtnl: received route with invalid preferred source, ignoring: %m");
387 return 0;
388 }
389
390 break;
391
392 default:
74dead34 393 assert_not_reached("Received unsupported address family");
1c8e710c
TG
394 return 0;
395 }
396
397 r = sd_rtnl_message_route_get_dst_prefixlen(message, &dst_prefixlen);
398 if (r < 0) {
399 log_link_warning_errno(link, r, "rtnl: received route with invalid destination prefixlen, ignoring: %m");
400 return 0;
401 }
402
403 r = sd_rtnl_message_route_get_src_prefixlen(message, &src_prefixlen);
404 if (r < 0) {
405 log_link_warning_errno(link, r, "rtnl: received route with invalid source prefixlen, ignoring: %m");
406 return 0;
407 }
408
409 r = sd_rtnl_message_route_get_scope(message, &scope);
410 if (r < 0) {
411 log_link_warning_errno(link, r, "rtnl: received route with invalid scope, ignoring: %m");
412 return 0;
413 }
414
415 r = sd_rtnl_message_route_get_tos(message, &tos);
416 if (r < 0) {
417 log_link_warning_errno(link, r, "rtnl: received route with invalid tos, ignoring: %m");
418 return 0;
419 }
420
983226f3
SS
421 r = sd_rtnl_message_route_get_type(message, &rt_type);
422 if (r < 0) {
423 log_link_warning_errno(link, r, "rtnl: received route with invalid type, ignoring: %m");
424 return 0;
425 }
426
1c8e710c
TG
427 r = sd_rtnl_message_route_get_table(message, &table);
428 if (r < 0) {
429 log_link_warning_errno(link, r, "rtnl: received route with invalid table, ignoring: %m");
430 return 0;
431 }
432
433 r = sd_netlink_message_read_u32(message, RTA_PRIORITY, &priority);
434 if (r < 0 && r != -ENODATA) {
435 log_link_warning_errno(link, r, "rtnl: received route with invalid priority, ignoring: %m");
436 return 0;
437 }
438
e1694a75 439 (void) route_get(link, family, &dst, dst_prefixlen, tos, priority, table, &route);
1c8e710c
TG
440
441 switch (type) {
442 case RTM_NEWROUTE:
443 if (!route) {
444 /* A route appeared that we did not request */
445 r = route_add_foreign(link, family, &dst, dst_prefixlen, tos, priority, table, &route);
e1694a75
YW
446 if (r < 0) {
447 log_link_warning_errno(link, r, "Failed to add route, ignoring: %m");
1c8e710c 448 return 0;
e1694a75 449 }
1c8e710c
TG
450 }
451
bbd15900 452 route_update(route, &src, src_prefixlen, &gw, &prefsrc, scope, protocol, rt_type);
1c8e710c
TG
453
454 break;
455
456 case RTM_DELROUTE:
b9642f41 457 route_free(route);
1c8e710c 458 break;
b9642f41 459
1c8e710c
TG
460 default:
461 assert_not_reached("Received invalid RTNL message type");
462 }
463
464 return 1;
465}
466
200a0868
TG
467int manager_rtnl_process_address(sd_netlink *rtnl, sd_netlink_message *message, void *userdata) {
468 Manager *m = userdata;
469 Link *link = NULL;
470 uint16_t type;
200a0868 471 unsigned char flags;
054f0db4
TG
472 int family;
473 unsigned char prefixlen;
474 unsigned char scope;
475 union in_addr_union in_addr;
476 struct ifa_cacheinfo cinfo;
477 Address *address = NULL;
200a0868
TG
478 char buf[INET6_ADDRSTRLEN], valid_buf[FORMAT_TIMESPAN_MAX];
479 const char *valid_str = NULL;
480 int r, ifindex;
481
482 assert(rtnl);
483 assert(message);
484 assert(m);
485
486 if (sd_netlink_message_is_error(message)) {
487 r = sd_netlink_message_get_errno(message);
488 if (r < 0)
e1694a75 489 log_warning_errno(r, "rtnl: failed to receive address, ignoring: %m");
200a0868
TG
490
491 return 0;
492 }
493
494 r = sd_netlink_message_get_type(message, &type);
495 if (r < 0) {
e1694a75 496 log_warning_errno(r, "rtnl: could not get message type, ignoring: %m");
200a0868 497 return 0;
25a1bffc 498 } else if (!IN_SET(type, RTM_NEWADDR, RTM_DELADDR)) {
e1694a75 499 log_warning("rtnl: received unexpected message type when processing address, ignoring");
200a0868
TG
500 return 0;
501 }
502
503 r = sd_rtnl_message_addr_get_ifindex(message, &ifindex);
504 if (r < 0) {
e1694a75 505 log_warning_errno(r, "rtnl: could not get ifindex from address, ignoring: %m");
200a0868
TG
506 return 0;
507 } else if (ifindex <= 0) {
e1694a75 508 log_warning("rtnl: received address message with invalid ifindex, ignoring: %d", ifindex);
200a0868
TG
509 return 0;
510 } else {
511 r = link_get(m, ifindex, &link);
512 if (r < 0 || !link) {
513 /* when enumerating we might be out of sync, but we will
514 * get the address again, so just ignore it */
515 if (!m->enumerating)
516 log_warning("rtnl: received address for nonexistent link (%d), ignoring", ifindex);
517 return 0;
518 }
519 }
520
054f0db4
TG
521 r = sd_rtnl_message_addr_get_family(message, &family);
522 if (r < 0 || !IN_SET(family, AF_INET, AF_INET6)) {
e1694a75 523 log_link_warning(link, "rtnl: received address with invalid family, ignoring");
200a0868
TG
524 return 0;
525 }
526
054f0db4 527 r = sd_rtnl_message_addr_get_prefixlen(message, &prefixlen);
200a0868
TG
528 if (r < 0) {
529 log_link_warning_errno(link, r, "rtnl: received address with invalid prefixlen, ignoring: %m");
530 return 0;
531 }
532
054f0db4 533 r = sd_rtnl_message_addr_get_scope(message, &scope);
200a0868
TG
534 if (r < 0) {
535 log_link_warning_errno(link, r, "rtnl: received address with invalid scope, ignoring: %m");
536 return 0;
537 }
538
539 r = sd_rtnl_message_addr_get_flags(message, &flags);
540 if (r < 0) {
541 log_link_warning_errno(link, r, "rtnl: received address with invalid flags, ignoring: %m");
542 return 0;
543 }
200a0868 544
054f0db4 545 switch (family) {
200a0868 546 case AF_INET:
054f0db4 547 r = sd_netlink_message_read_in_addr(message, IFA_LOCAL, &in_addr.in);
200a0868
TG
548 if (r < 0) {
549 log_link_warning_errno(link, r, "rtnl: received address without valid address, ignoring: %m");
550 return 0;
551 }
552
553 break;
554
555 case AF_INET6:
054f0db4 556 r = sd_netlink_message_read_in6_addr(message, IFA_ADDRESS, &in_addr.in6);
200a0868
TG
557 if (r < 0) {
558 log_link_warning_errno(link, r, "rtnl: received address without valid address, ignoring: %m");
559 return 0;
560 }
561
562 break;
563
564 default:
e1694a75 565 assert_not_reached("Received unsupported address family");
200a0868
TG
566 }
567
054f0db4 568 if (!inet_ntop(family, &in_addr, buf, INET6_ADDRSTRLEN)) {
e1694a75 569 log_link_warning(link, "Could not print address, ignoring");
200a0868
TG
570 return 0;
571 }
572
054f0db4 573 r = sd_netlink_message_read_cache_info(message, IFA_CACHEINFO, &cinfo);
e1694a75
YW
574 if (r < 0 && r != -ENODATA) {
575 log_link_warning_errno(link, r, "rtnl: cannot get IFA_CACHEINFO attribute, ignoring: %m");
576 return 0;
577 } else if (r >= 0) {
4058d339 578 if (cinfo.ifa_valid != CACHE_INFO_INFINITY_LIFE_TIME)
200a0868 579 valid_str = format_timespan(valid_buf, FORMAT_TIMESPAN_MAX,
054f0db4 580 cinfo.ifa_valid * USEC_PER_SEC,
200a0868
TG
581 USEC_PER_SEC);
582 }
583
e1694a75 584 (void) address_get(link, family, &in_addr, prefixlen, &address);
200a0868
TG
585
586 switch (type) {
587 case RTM_NEWADDR:
36c32f61 588 if (address)
4058d339 589 log_link_debug(link, "Updating address: %s/%u (valid %s%s)", buf, prefixlen,
87e4e28d 590 valid_str ? "for " : "forever", strempty(valid_str));
36c32f61 591 else {
adda1ed9
TG
592 /* An address appeared that we did not request */
593 r = address_add_foreign(link, family, &in_addr, prefixlen, &address);
cf1d700d 594 if (r < 0) {
e1694a75 595 log_link_warning_errno(link, r, "Failed to add address %s/%u, ignoring: %m", buf, prefixlen);
cf1d700d
TG
596 return 0;
597 } else
4058d339 598 log_link_debug(link, "Adding address: %s/%u (valid %s%s)", buf, prefixlen,
87e4e28d 599 valid_str ? "for " : "forever", strempty(valid_str));
200a0868
TG
600 }
601
e1694a75
YW
602 r = address_update(address, flags, scope, &cinfo);
603 if (r < 0) {
604 log_link_warning_errno(link, r, "Failed to update address %s/%u, ignoring: %m", buf, prefixlen);
605 return 0;
606 }
36c32f61 607
200a0868
TG
608 break;
609
610 case RTM_DELADDR:
611
054f0db4 612 if (address) {
4058d339 613 log_link_debug(link, "Removing address: %s/%u (valid %s%s)", buf, prefixlen,
87e4e28d 614 valid_str ? "for " : "forever", strempty(valid_str));
e1694a75 615 (void) address_drop(address);
200a0868 616 } else
e1694a75 617 log_link_warning(link, "Removing non-existent address: %s/%u (valid %s%s), ignoring", buf, prefixlen,
87e4e28d 618 valid_str ? "for " : "forever", strempty(valid_str));
200a0868
TG
619
620 break;
621 default:
622 assert_not_reached("Received invalid RTNL message type");
623 }
624
625 return 1;
626}
627
1c4baffc 628static int manager_rtnl_process_link(sd_netlink *rtnl, sd_netlink_message *message, void *userdata) {
505f8da7
TG
629 Manager *m = userdata;
630 Link *link = NULL;
4d473d5d 631 NetDev *netdev = NULL;
f2236469 632 uint16_t type;
ca4e095a 633 const char *name;
505f8da7 634 int r, ifindex;
f579559b 635
505f8da7
TG
636 assert(rtnl);
637 assert(message);
f579559b
TG
638 assert(m);
639
1c4baffc
TG
640 if (sd_netlink_message_is_error(message)) {
641 r = sd_netlink_message_get_errno(message);
45af44d4 642 if (r < 0)
e1694a75 643 log_warning_errno(r, "rtnl: Could not receive link, ignoring: %m");
45af44d4
TG
644
645 return 0;
646 }
647
1c4baffc 648 r = sd_netlink_message_get_type(message, &type);
f2236469 649 if (r < 0) {
e1694a75 650 log_warning_errno(r, "rtnl: Could not get message type, ignoring: %m");
f2236469 651 return 0;
25a1bffc 652 } else if (!IN_SET(type, RTM_NEWLINK, RTM_DELLINK)) {
e1694a75 653 log_warning("rtnl: Received unexpected message type when processing link, ignoring");
cdfee943 654 return 0;
f2236469
TG
655 }
656
505f8da7 657 r = sd_rtnl_message_link_get_ifindex(message, &ifindex);
45af44d4 658 if (r < 0) {
e1694a75 659 log_warning_errno(r, "rtnl: Could not get ifindex from link, ignoring: %m");
45af44d4
TG
660 return 0;
661 } else if (ifindex <= 0) {
e1694a75 662 log_warning("rtnl: received link message with invalid ifindex %d, ignoring", ifindex);
505f8da7 663 return 0;
a0db8e46 664 }
f579559b 665
1c4baffc 666 r = sd_netlink_message_read_string(message, IFLA_IFNAME, &name);
45af44d4 667 if (r < 0) {
e1694a75 668 log_warning_errno(r, "rtnl: Received link message without ifname, ignoring: %m");
4d473d5d 669 return 0;
a0db8e46
ZJS
670 }
671
672 (void) link_get(m, ifindex, &link);
673 (void) netdev_get(m, name, &netdev);
4d473d5d
TG
674
675 switch (type) {
676 case RTM_NEWLINK:
677 if (!link) {
678 /* link is new, so add it */
679 r = link_add(m, message, &link);
680 if (r < 0) {
e1694a75 681 log_warning_errno(r, "Could not add new link, ignoring: %m");
4d473d5d
TG
682 return 0;
683 }
684 }
685
686 if (netdev) {
687 /* netdev exists, so make sure the ifindex matches */
505f8da7
TG
688 r = netdev_set_ifindex(netdev, message);
689 if (r < 0) {
e1694a75 690 log_warning_errno(r, "Could not set ifindex on netdev, ignoring: %m");
505f8da7
TG
691 return 0;
692 }
693 }
e1202047 694
f2236469 695 r = link_update(link, message);
e1694a75
YW
696 if (r < 0) {
697 log_warning_errno(r, "Could not update link, ignoring: %m");
f2236469 698 return 0;
e1694a75 699 }
4d473d5d
TG
700
701 break;
702
703 case RTM_DELLINK:
704 link_drop(link);
705 netdev_drop(netdev);
706
707 break;
708
709 default:
710 assert_not_reached("Received invalid RTNL message type.");
f2236469 711 }
505f8da7
TG
712
713 return 1;
714}
715
bce67bbe
SS
716int manager_rtnl_process_rule(sd_netlink *rtnl, sd_netlink_message *message, void *userdata) {
717 uint8_t tos = 0, to_prefixlen = 0, from_prefixlen = 0;
36e6e28b 718 union in_addr_union to = {}, from = {};
bce67bbe 719 RoutingPolicyRule *rule = NULL;
bce67bbe 720 uint32_t fwmark = 0, table = 0;
36e6e28b 721 char *iif = NULL, *oif = NULL;
bce67bbe
SS
722 Manager *m = userdata;
723 uint16_t type;
724 int family;
725 int r;
726
727 assert(rtnl);
728 assert(message);
729 assert(m);
730
731 if (sd_netlink_message_is_error(message)) {
732 r = sd_netlink_message_get_errno(message);
733 if (r < 0)
e1694a75 734 log_warning_errno(r, "rtnl: failed to receive rule, ignoring: %m");
bce67bbe
SS
735
736 return 0;
737 }
738
739 r = sd_netlink_message_get_type(message, &type);
740 if (r < 0) {
e1694a75 741 log_warning_errno(r, "rtnl: could not get message type, ignoring: %m");
bce67bbe
SS
742 return 0;
743 } else if (!IN_SET(type, RTM_NEWRULE, RTM_DELRULE)) {
e1694a75 744 log_warning("rtnl: received unexpected message type '%u' when processing rule, ignoring", type);
bce67bbe
SS
745 return 0;
746 }
747
748 r = sd_rtnl_message_get_family(message, &family);
615ded62 749 if (r < 0) {
e1694a75 750 log_warning_errno(r, "rtnl: could not get rule family, ignoring: %m");
615ded62
YW
751 return 0;
752 } else if (!IN_SET(family, AF_INET, AF_INET6)) {
e1694a75 753 log_debug("rtnl: received address with invalid family %u, ignoring", family);
bce67bbe
SS
754 return 0;
755 }
756
757 switch (family) {
758 case AF_INET:
759 r = sd_netlink_message_read_in_addr(message, FRA_SRC, &from.in);
e1694a75
YW
760 if (r < 0 && r != -ENODATA) {
761 log_warning_errno(r, "rtnl: could not get FRA_SRC attribute, ignoring: %m");
762 return 0;
763 } else if (r >= 0) {
bce67bbe 764 r = sd_rtnl_message_routing_policy_rule_get_rtm_src_prefixlen(message, &from_prefixlen);
e1694a75 765 if (r < 0) {
3fe91079 766 log_warning_errno(r, "rtnl: failed to retrieve rule from prefix length, ignoring: %m");
e1694a75
YW
767 return 0;
768 }
bce67bbe
SS
769 }
770
771 r = sd_netlink_message_read_in_addr(message, FRA_DST, &to.in);
e1694a75
YW
772 if (r < 0 && r != -ENODATA) {
773 log_warning_errno(r, "rtnl: could not get FRA_DST attribute, ignoring: %m");
774 return 0;
775 } else if (r >= 0) {
bce67bbe 776 r = sd_rtnl_message_routing_policy_rule_get_rtm_dst_prefixlen(message, &to_prefixlen);
e1694a75 777 if (r < 0) {
3fe91079 778 log_warning_errno(r, "rtnl: failed to retrieve rule to prefix length, ignoring: %m");
e1694a75
YW
779 return 0;
780 }
bce67bbe
SS
781 }
782
783 break;
784
785 case AF_INET6:
786 r = sd_netlink_message_read_in6_addr(message, FRA_SRC, &from.in6);
e1694a75
YW
787 if (r < 0 && r != -ENODATA) {
788 log_warning_errno(r, "rtnl: could not get FRA_SRC attribute, ignoring: %m");
789 return 0;
790 } else if (r >= 0) {
bce67bbe 791 r = sd_rtnl_message_routing_policy_rule_get_rtm_src_prefixlen(message, &from_prefixlen);
e1694a75 792 if (r < 0) {
3fe91079 793 log_warning_errno(r, "rtnl: failed to retrieve rule from prefix length, ignoring: %m");
e1694a75
YW
794 return 0;
795 }
bce67bbe
SS
796 }
797
798 r = sd_netlink_message_read_in6_addr(message, FRA_DST, &to.in6);
e1694a75
YW
799 if (r < 0 && r != -ENODATA) {
800 log_warning_errno(r, "rtnl: could not get FRA_DST attribute, ignoring: %m");
801 return 0;
802 } else if (r >= 0) {
bce67bbe 803 r = sd_rtnl_message_routing_policy_rule_get_rtm_dst_prefixlen(message, &to_prefixlen);
e1694a75 804 if (r < 0) {
3fe91079 805 log_warning_errno(r, "rtnl: failed to retrieve rule to prefix length, ignoring: %m");
e1694a75
YW
806 return 0;
807 }
bce67bbe
SS
808 }
809
810 break;
811
812 default:
74dead34 813 assert_not_reached("Received unsupported address family");
bce67bbe
SS
814 }
815
816 if (from_prefixlen == 0 && to_prefixlen == 0)
817 return 0;
818
e1694a75
YW
819 r = sd_netlink_message_read_u32(message, FRA_FWMARK, &fwmark);
820 if (r < 0 && r != -ENODATA) {
821 log_warning_errno(r, "rtnl: could not get FRA_FWMARK attribute, ignoring: %m");
822 return 0;
823 }
824
825 r = sd_netlink_message_read_u32(message, FRA_TABLE, &table);
826 if (r < 0 && r != -ENODATA) {
827 log_warning_errno(r, "rtnl: could not get FRA_TABLE attribute, ignoring: %m");
828 return 0;
829 }
830
831 r = sd_rtnl_message_routing_policy_rule_get_tos(message, &tos);
832 if (r < 0 && r != -ENODATA) {
833 log_warning_errno(r, "rtnl: could not get ip rule TOS, ignoring: %m");
834 return 0;
835 }
836
837 r = sd_netlink_message_read_string(message, FRA_IIFNAME, (const char **) &iif);
838 if (r < 0 && r != -ENODATA) {
839 log_warning_errno(r, "rtnl: could not get FRA_IIFNAME attribute, ignoring: %m");
840 return 0;
841 }
842
843 r = sd_netlink_message_read_string(message, FRA_OIFNAME, (const char **) &oif);
844 if (r < 0 && r != -ENODATA) {
845 log_warning_errno(r, "rtnl: could not get FRA_OIFNAME attribute, ignoring: %m");
846 return 0;
847 }
bce67bbe 848
762e2659 849 (void) routing_policy_rule_get(m, family, &from, from_prefixlen, &to, to_prefixlen, tos, fwmark, table, iif, oif, &rule);
bce67bbe
SS
850
851 switch (type) {
852 case RTM_NEWRULE:
508f63b4 853 if (!rule) {
762e2659 854 r = routing_policy_rule_add_foreign(m, family, &from, from_prefixlen, &to, to_prefixlen, tos, fwmark, table, iif, oif, &rule);
bce67bbe 855 if (r < 0) {
e1694a75 856 log_warning_errno(r, "Could not add rule, ignoring: %m");
bce67bbe
SS
857 return 0;
858 }
859 }
860 break;
861 case RTM_DELRULE:
862 routing_policy_rule_free(rule);
863
864 break;
865
866 default:
867 assert_not_reached("Received invalid RTNL message type");
868 }
869
870 return 1;
871}
872
5fae368b
TG
873static int systemd_netlink_fd(void) {
874 int n, fd, rtnl_fd = -EINVAL;
875
876 n = sd_listen_fds(true);
877 if (n <= 0)
878 return -EINVAL;
879
880 for (fd = SD_LISTEN_FDS_START; fd < SD_LISTEN_FDS_START + n; fd ++) {
881 if (sd_is_socket(fd, AF_NETLINK, SOCK_RAW, -1) > 0) {
882 if (rtnl_fd >= 0)
883 return -EINVAL;
884
885 rtnl_fd = fd;
886 }
887 }
888
889 return rtnl_fd;
890}
891
05d0c2e3
JT
892static int manager_connect_genl(Manager *m) {
893 int r;
894
895 assert(m);
896
897 r = sd_genl_socket_open(&m->genl);
898 if (r < 0)
899 return r;
900
901 r = sd_netlink_inc_rcvbuf(m->genl, RCVBUF_SIZE);
902 if (r < 0)
903 return r;
904
905 r = sd_netlink_attach_event(m->genl, m->event, 0);
906 if (r < 0)
907 return r;
908
909 return 0;
910}
911
5fae368b
TG
912static int manager_connect_rtnl(Manager *m) {
913 int fd, r;
505f8da7
TG
914
915 assert(m);
505f8da7 916
5fae368b
TG
917 fd = systemd_netlink_fd();
918 if (fd < 0)
1c4baffc 919 r = sd_netlink_open(&m->rtnl);
5fae368b 920 else
1c4baffc 921 r = sd_netlink_open_fd(&m->rtnl, fd);
505f8da7
TG
922 if (r < 0)
923 return r;
924
1c4baffc 925 r = sd_netlink_inc_rcvbuf(m->rtnl, RCVBUF_SIZE);
f579559b 926 if (r < 0)
bf5332d2 927 return r;
f579559b 928
1c4baffc 929 r = sd_netlink_attach_event(m->rtnl, m->event, 0);
505f8da7
TG
930 if (r < 0)
931 return r;
f579559b 932
1c4baffc 933 r = sd_netlink_add_match(m->rtnl, RTM_NEWLINK, &manager_rtnl_process_link, m);
5fae368b
TG
934 if (r < 0)
935 return r;
505f8da7 936
1c4baffc 937 r = sd_netlink_add_match(m->rtnl, RTM_DELLINK, &manager_rtnl_process_link, m);
5fae368b
TG
938 if (r < 0)
939 return r;
45af44d4 940
200a0868 941 r = sd_netlink_add_match(m->rtnl, RTM_NEWADDR, &manager_rtnl_process_address, m);
5fae368b
TG
942 if (r < 0)
943 return r;
944
200a0868 945 r = sd_netlink_add_match(m->rtnl, RTM_DELADDR, &manager_rtnl_process_address, m);
5fae368b
TG
946 if (r < 0)
947 return r;
948
1c8e710c
TG
949 r = sd_netlink_add_match(m->rtnl, RTM_NEWROUTE, &manager_rtnl_process_route, m);
950 if (r < 0)
951 return r;
952
953 r = sd_netlink_add_match(m->rtnl, RTM_DELROUTE, &manager_rtnl_process_route, m);
954 if (r < 0)
955 return r;
956
bce67bbe
SS
957 r = sd_netlink_add_match(m->rtnl, RTM_NEWRULE, &manager_rtnl_process_rule, m);
958 if (r < 0)
959 return r;
960
961 r = sd_netlink_add_match(m->rtnl, RTM_DELRULE, &manager_rtnl_process_rule, m);
962 if (r < 0)
963 return r;
964
5fae368b 965 return 0;
45af44d4 966}
505f8da7 967
5512a963 968static int ordered_set_put_in_addr_data(OrderedSet *s, const struct in_addr_data *address) {
84de38c5
TG
969 char *p;
970 int r;
971
972 assert(s);
5512a963
LP
973 assert(address);
974
975 r = in_addr_to_string(address->family, &address->address, &p);
976 if (r < 0)
977 return r;
978
979 r = ordered_set_consume(s, p);
980 if (r == -EEXIST)
981 return 0;
982
983 return r;
984}
985
986static int ordered_set_put_in_addr_datav(OrderedSet *s, const struct in_addr_data *addresses, unsigned n) {
987 int r, c = 0;
988 unsigned i;
989
990 assert(s);
991 assert(addresses || n == 0);
992
993 for (i = 0; i < n; i++) {
994 r = ordered_set_put_in_addr_data(s, addresses+i);
995 if (r < 0)
996 return r;
997
998 c += r;
999 }
1000
1001 return c;
1002}
1003
1004static int ordered_set_put_in4_addr(OrderedSet *s, const struct in_addr *address) {
1005 char *p;
1006 int r;
1007
1008 assert(s);
1009 assert(address);
84de38c5
TG
1010
1011 r = in_addr_to_string(AF_INET, (const union in_addr_union*) address, &p);
1012 if (r < 0)
1013 return r;
1014
00616955 1015 r = ordered_set_consume(s, p);
84de38c5
TG
1016 if (r == -EEXIST)
1017 return 0;
1018
1019 return r;
1020}
1021
5512a963
LP
1022static int ordered_set_put_in4_addrv(OrderedSet *s, const struct in_addr *addresses, unsigned n) {
1023 int r, c = 0;
1024 unsigned i;
84de38c5
TG
1025
1026 assert(s);
5512a963 1027 assert(n == 0 || addresses);
84de38c5
TG
1028
1029 for (i = 0; i < n; i++) {
5512a963 1030 r = ordered_set_put_in4_addr(s, addresses+i);
84de38c5
TG
1031 if (r < 0)
1032 return r;
1033
1034 c += r;
1035 }
1036
1037 return c;
1038}
1039
00616955 1040static void print_string_set(FILE *f, const char *field, OrderedSet *s) {
84de38c5
TG
1041 bool space = false;
1042 Iterator i;
1043 char *p;
1044
00616955 1045 if (ordered_set_isempty(s))
84de38c5
TG
1046 return;
1047
0d536673 1048 fputs(field, f);
84de38c5 1049
d390f8ef
LP
1050 ORDERED_SET_FOREACH(p, s, i)
1051 fputs_with_space(f, p, NULL, &space);
1052
0d536673 1053 fputc('\n', f);
84de38c5
TG
1054}
1055
1056static int manager_save(Manager *m) {
00616955 1057 _cleanup_ordered_set_free_free_ OrderedSet *dns = NULL, *ntp = NULL, *search_domains = NULL, *route_domains = NULL;
84de38c5
TG
1058 Link *link;
1059 Iterator i;
1060 _cleanup_free_ char *temp_path = NULL;
1061 _cleanup_fclose_ FILE *f = NULL;
1062 LinkOperationalState operstate = LINK_OPERSTATE_OFF;
1063 const char *operstate_str;
1064 int r;
1065
1066 assert(m);
1067 assert(m->state_file);
1068
1069 /* We add all NTP and DNS server to a set, to filter out duplicates */
00616955 1070 dns = ordered_set_new(&string_hash_ops);
84de38c5
TG
1071 if (!dns)
1072 return -ENOMEM;
1073
00616955 1074 ntp = ordered_set_new(&string_hash_ops);
84de38c5
TG
1075 if (!ntp)
1076 return -ENOMEM;
1077
482d1aeb 1078 search_domains = ordered_set_new(&dns_name_hash_ops);
3df9bec5
LP
1079 if (!search_domains)
1080 return -ENOMEM;
1081
482d1aeb 1082 route_domains = ordered_set_new(&dns_name_hash_ops);
3df9bec5 1083 if (!route_domains)
84de38c5
TG
1084 return -ENOMEM;
1085
1086 HASHMAP_FOREACH(link, m->links, i) {
1087 if (link->flags & IFF_LOOPBACK)
1088 continue;
1089
1090 if (link->operstate > operstate)
1091 operstate = link->operstate;
1092
1093 if (!link->network)
1094 continue;
1095
1096 /* First add the static configured entries */
5512a963 1097 r = ordered_set_put_in_addr_datav(dns, link->network->dns, link->network->n_dns);
84de38c5
TG
1098 if (r < 0)
1099 return r;
1100
00616955 1101 r = ordered_set_put_strdupv(ntp, link->network->ntp);
84de38c5
TG
1102 if (r < 0)
1103 return r;
1104
00616955 1105 r = ordered_set_put_strdupv(search_domains, link->network->search_domains);
3df9bec5
LP
1106 if (r < 0)
1107 return r;
1108
00616955 1109 r = ordered_set_put_strdupv(route_domains, link->network->route_domains);
84de38c5
TG
1110 if (r < 0)
1111 return r;
1112
1113 if (!link->dhcp_lease)
1114 continue;
1115
1116 /* Secondly, add the entries acquired via DHCP */
27cb34f5 1117 if (link->network->dhcp_use_dns) {
84de38c5
TG
1118 const struct in_addr *addresses;
1119
1120 r = sd_dhcp_lease_get_dns(link->dhcp_lease, &addresses);
1121 if (r > 0) {
5512a963 1122 r = ordered_set_put_in4_addrv(dns, addresses, r);
84de38c5
TG
1123 if (r < 0)
1124 return r;
1125 } else if (r < 0 && r != -ENODATA)
1126 return r;
1127 }
1128
27cb34f5 1129 if (link->network->dhcp_use_ntp) {
84de38c5
TG
1130 const struct in_addr *addresses;
1131
1132 r = sd_dhcp_lease_get_ntp(link->dhcp_lease, &addresses);
1133 if (r > 0) {
5512a963 1134 r = ordered_set_put_in4_addrv(ntp, addresses, r);
84de38c5
TG
1135 if (r < 0)
1136 return r;
1137 } else if (r < 0 && r != -ENODATA)
1138 return r;
1139 }
1140
b2a81c0b 1141 if (link->network->dhcp_use_domains != DHCP_USE_DOMAINS_NO) {
84de38c5 1142 const char *domainname;
b85bc551 1143 char **domains = NULL;
84de38c5 1144
b85bc551 1145 OrderedSet *target_domains = (link->network->dhcp_use_domains == DHCP_USE_DOMAINS_YES) ? search_domains : route_domains;
84de38c5
TG
1146 r = sd_dhcp_lease_get_domainname(link->dhcp_lease, &domainname);
1147 if (r >= 0) {
b85bc551
DW
1148 r = ordered_set_put_strdup(target_domains, domainname);
1149 if (r < 0)
1150 return r;
1151 } else if (r != -ENODATA)
1152 return r;
b2a81c0b 1153
b85bc551
DW
1154 r = sd_dhcp_lease_get_search_domains(link->dhcp_lease, &domains);
1155 if (r >= 0) {
1156 r = ordered_set_put_strdupv(target_domains, domains);
84de38c5
TG
1157 if (r < 0)
1158 return r;
1159 } else if (r != -ENODATA)
1160 return r;
1161 }
1162 }
1163
1164 operstate_str = link_operstate_to_string(operstate);
1165 assert(operstate_str);
1166
1167 r = fopen_temporary(m->state_file, &f, &temp_path);
1168 if (r < 0)
1169 return r;
1170
0d536673 1171 (void) __fsetlocking(f, FSETLOCKING_BYCALLER);
5512a963 1172 (void) fchmod(fileno(f), 0644);
84de38c5
TG
1173
1174 fprintf(f,
1175 "# This is private data. Do not parse.\n"
1176 "OPER_STATE=%s\n", operstate_str);
1177
1178 print_string_set(f, "DNS=", dns);
1179 print_string_set(f, "NTP=", ntp);
3df9bec5
LP
1180 print_string_set(f, "DOMAINS=", search_domains);
1181 print_string_set(f, "ROUTE_DOMAINS=", route_domains);
84de38c5 1182
458d8ae3
ZJS
1183 r = routing_policy_serialize_rules(m->rules, f);
1184 if (r < 0)
1185 goto fail;
bce67bbe 1186
84de38c5
TG
1187 r = fflush_and_check(f);
1188 if (r < 0)
1189 goto fail;
1190
1191 if (rename(temp_path, m->state_file) < 0) {
1192 r = -errno;
1193 goto fail;
1194 }
1195
1196 if (m->operational_state != operstate) {
1197 m->operational_state = operstate;
1198 r = manager_send_changed(m, "OperationalState", NULL);
1199 if (r < 0)
1200 log_error_errno(r, "Could not emit changed OperationalState: %m");
1201 }
1202
1203 m->dirty = false;
1204
1205 return 0;
1206
1207fail:
1208 (void) unlink(m->state_file);
1209 (void) unlink(temp_path);
1210
1211 return log_error_errno(r, "Failed to save network state to %s: %m", m->state_file);
1212}
1213
1214static int manager_dirty_handler(sd_event_source *s, void *userdata) {
1215 Manager *m = userdata;
1216 Link *link;
1217 Iterator i;
1218 int r;
1219
1220 assert(m);
1221
1222 if (m->dirty)
1223 manager_save(m);
1224
1225 SET_FOREACH(link, m->dirty_links, i) {
1226 r = link_save(link);
1227 if (r >= 0)
1228 link_clean(link);
1229 }
1230
1231 return 1;
1232}
1233
e133b289
PF
1234Link *manager_dhcp6_prefix_get(Manager *m, struct in6_addr *addr) {
1235 assert_return(m, NULL);
1236 assert_return(m->dhcp6_prefixes, NULL);
1237 assert_return(addr, NULL);
1238
1239 return hashmap_get(m->dhcp6_prefixes, addr);
1240}
1241
9f386c6d
PF
1242static int dhcp6_route_add_callback(sd_netlink *nl, sd_netlink_message *m,
1243 void *userdata) {
1244 Link *l = userdata;
1245 int r;
1246 union in_addr_union prefix;
1247 _cleanup_free_ char *buf = NULL;
1248
1249 r = sd_netlink_message_get_errno(m);
1250 if (r != 0) {
1251 log_link_debug_errno(l, r, "Received error adding DHCPv6 Prefix Delegation route: %m");
1252 return 0;
1253 }
1254
1255 r = sd_netlink_message_read_in6_addr(m, RTA_DST, &prefix.in6);
1256 if (r < 0) {
1257 log_link_debug_errno(l, r, "Could not read IPv6 address from DHCPv6 Prefix Delegation while adding route: %m");
1258 return 0;
1259 }
1260
1261 (void) in_addr_to_string(AF_INET6, &prefix, &buf);
1262 log_link_debug(l, "Added DHCPv6 Prefix Deleagtion route %s/64",
1263 strnull(buf));
1264
1265 return 0;
1266}
1267
e133b289 1268int manager_dhcp6_prefix_add(Manager *m, struct in6_addr *addr, Link *link) {
9f386c6d
PF
1269 int r;
1270 Route *route;
1271
e133b289
PF
1272 assert_return(m, -EINVAL);
1273 assert_return(m->dhcp6_prefixes, -ENODATA);
1274 assert_return(addr, -EINVAL);
1275
9f386c6d
PF
1276 r = route_add(link, AF_INET6, (union in_addr_union *) addr, 64,
1277 0, 0, 0, &route);
1278 if (r < 0)
1279 return r;
1280
1281 r = route_configure(route, link, dhcp6_route_add_callback);
1282 if (r < 0)
1283 return r;
1284
e133b289
PF
1285 return hashmap_put(m->dhcp6_prefixes, addr, link);
1286}
1287
9f386c6d
PF
1288static int dhcp6_route_remove_callback(sd_netlink *nl, sd_netlink_message *m,
1289 void *userdata) {
1290 Link *l = userdata;
1291 int r;
1292 union in_addr_union prefix;
1293 _cleanup_free_ char *buf = NULL;
1294
1295 r = sd_netlink_message_get_errno(m);
1296 if (r != 0) {
1297 log_link_debug_errno(l, r, "Received error on DHCPv6 Prefix Delegation route removal: %m");
1298 return 0;
1299 }
1300
1301 r = sd_netlink_message_read_in6_addr(m, RTA_DST, &prefix.in6);
1302 if (r < 0) {
1303 log_link_debug_errno(l, r, "Could not read IPv6 address from DHCPv6 Prefix Delegation while removing route: %m");
1304 return 0;
1305 }
1306
1307 (void) in_addr_to_string(AF_INET6, &prefix, &buf);
1308 log_link_debug(l, "Removed DHCPv6 Prefix Delegation route %s/64",
1309 strnull(buf));
1310
1311 return 0;
1312}
1313
e133b289
PF
1314int manager_dhcp6_prefix_remove(Manager *m, struct in6_addr *addr) {
1315 Link *l;
9f386c6d
PF
1316 int r;
1317 Route *route;
e133b289
PF
1318
1319 assert_return(m, -EINVAL);
1320 assert_return(m->dhcp6_prefixes, -ENODATA);
1321 assert_return(addr, -EINVAL);
1322
1323 l = hashmap_remove(m->dhcp6_prefixes, addr);
1324 if (!l)
1325 return -EINVAL;
1326
1327 (void) sd_radv_remove_prefix(l->radv, addr, 64);
9f386c6d
PF
1328 r = route_get(l, AF_INET6, (union in_addr_union *) addr, 64,
1329 0, 0, 0, &route);
1330 if (r >= 0)
1331 (void) route_remove(route, l, dhcp6_route_remove_callback);
e133b289
PF
1332
1333 return 0;
1334}
1335
1336int manager_dhcp6_prefix_remove_all(Manager *m, Link *link) {
1337 Iterator i;
1338 Link *l;
1339 struct in6_addr *addr;
1340
1341 assert_return(m, -EINVAL);
b7d16a91 1342 assert_return(link, -EINVAL);
e133b289
PF
1343
1344 HASHMAP_FOREACH_KEY(l, addr, m->dhcp6_prefixes, i) {
1345 if (l != link)
1346 continue;
1347
9f386c6d 1348 (void) manager_dhcp6_prefix_remove(m, addr);
e133b289
PF
1349 }
1350
1351 return 0;
1352}
1353
1354static void dhcp6_prefixes_hash_func(const void *p, struct siphash *state) {
1355 const struct in6_addr *addr = p;
1356
1357 assert(p);
1358
1359 siphash24_compress(addr, sizeof(*addr), state);
1360}
1361
1362static int dhcp6_prefixes_compare_func(const void *_a, const void *_b) {
1363 const struct in6_addr *a = _a, *b = _b;
1364
aa18944d 1365 return memcmp(a, b, sizeof(*a));
e133b289
PF
1366}
1367
1368static const struct hash_ops dhcp6_prefixes_hash_ops = {
1369 .hash = dhcp6_prefixes_hash_func,
1370 .compare = dhcp6_prefixes_compare_func,
1371};
1372
3534a043 1373int manager_new(Manager **ret) {
8e766630 1374 _cleanup_(manager_freep) Manager *m = NULL;
45af44d4 1375 int r;
f579559b 1376
5fae368b
TG
1377 m = new0(Manager, 1);
1378 if (!m)
1379 return -ENOMEM;
45af44d4 1380
5fae368b
TG
1381 m->state_file = strdup("/run/systemd/netif/state");
1382 if (!m->state_file)
1383 return -ENOMEM;
1384
3534a043
YW
1385 r = sd_event_default(&m->event);
1386 if (r < 0)
1387 return r;
1388
05e21627
YW
1389 (void) sd_event_set_watchdog(m->event, true);
1390 (void) sd_event_add_signal(m->event, NULL, SIGTERM, NULL, NULL);
1391 (void) sd_event_add_signal(m->event, NULL, SIGINT, NULL, NULL);
5fae368b 1392
84de38c5
TG
1393 r = sd_event_add_post(m->event, NULL, manager_dirty_handler, m);
1394 if (r < 0)
1395 return r;
1396
5fae368b 1397 r = manager_connect_rtnl(m);
45af44d4
TG
1398 if (r < 0)
1399 return r;
1400
05d0c2e3
JT
1401 r = manager_connect_genl(m);
1402 if (r < 0)
1403 return r;
1404
5fae368b
TG
1405 r = manager_connect_udev(m);
1406 if (r < 0)
1407 return r;
45af44d4 1408
5fae368b
TG
1409 m->netdevs = hashmap_new(&string_hash_ops);
1410 if (!m->netdevs)
1411 return -ENOMEM;
f579559b 1412
5fae368b 1413 LIST_HEAD_INIT(m->networks);
f579559b 1414
05d0c2e3
JT
1415 r = sd_resolve_default(&m->resolve);
1416 if (r < 0)
1417 return r;
1418
1419 r = sd_resolve_attach_event(m->resolve, m->event, 0);
1420 if (r < 0)
1421 return r;
1422
5fae368b
TG
1423 r = setup_default_address_pool(m);
1424 if (r < 0)
1425 return r;
f579559b 1426
e133b289
PF
1427 m->dhcp6_prefixes = hashmap_new(&dhcp6_prefixes_hash_ops);
1428 if (!m->dhcp6_prefixes)
1429 return -ENOMEM;
1430
8341a5c3 1431 m->duid.type = DUID_TYPE_EN;
413708d1 1432
458d8ae3 1433 (void) routing_policy_load_rules(m->state_file, &m->rules_saved);
bce67bbe 1434
1cc6c93a 1435 *ret = TAKE_PTR(m);
f579559b 1436
f579559b
TG
1437 return 0;
1438}
1439
5fae368b
TG
1440void manager_free(Manager *m) {
1441 Network *network;
1442 NetDev *netdev;
1443 Link *link;
1444 AddressPool *pool;
f579559b 1445
5fae368b
TG
1446 if (!m)
1447 return;
505f8da7 1448
5fae368b 1449 free(m->state_file);
505f8da7 1450
bce67bbe
SS
1451 while ((network = m->networks))
1452 network_free(network);
1453
e133b289
PF
1454 while ((link = hashmap_first(m->dhcp6_prefixes)))
1455 link_unref(link);
1456 hashmap_free(m->dhcp6_prefixes);
1457
5fae368b
TG
1458 while ((link = hashmap_first(m->links)))
1459 link_unref(link);
1460 hashmap_free(m->links);
f579559b 1461
dbffab87
TG
1462 hashmap_free(m->networks_by_name);
1463
5fae368b
TG
1464 while ((netdev = hashmap_first(m->netdevs)))
1465 netdev_unref(netdev);
1466 hashmap_free(m->netdevs);
1467
1468 while ((pool = m->address_pools))
1469 address_pool_free(pool);
1470
bce67bbe
SS
1471 set_free(m->rules);
1472 set_free(m->rules_foreign);
1473
b921fcb2 1474 set_free_with_destructor(m->rules_saved, routing_policy_rule_free);
bce67bbe 1475
1c4baffc 1476 sd_netlink_unref(m->rtnl);
e4269943 1477 sd_netlink_unref(m->genl);
2f5b4a77 1478 sd_event_unref(m->event);
5fae368b 1479
05d0c2e3
JT
1480 sd_resolve_unref(m->resolve);
1481
7d20d375
TG
1482 sd_event_source_unref(m->udev_event_source);
1483 udev_monitor_unref(m->udev_monitor);
1484 udev_unref(m->udev);
1485
1486 sd_bus_unref(m->bus);
7d20d375 1487
7901cea1
MP
1488 free(m->dynamic_timezone);
1489 free(m->dynamic_hostname);
1490
5fae368b
TG
1491 free(m);
1492}
1493
b76d99d9 1494int manager_start(Manager *m) {
84de38c5
TG
1495 Link *link;
1496 Iterator i;
1497
a97dcc12
TG
1498 assert(m);
1499
84de38c5
TG
1500 /* The dirty handler will deal with future serialization, but the first one
1501 must be done explicitly. */
1502
1503 manager_save(m);
1504
1505 HASHMAP_FOREACH(link, m->links, i)
1506 link_save(link);
1507
b76d99d9 1508 return 0;
a97dcc12
TG
1509}
1510
5fae368b
TG
1511int manager_load_config(Manager *m) {
1512 int r;
1513
1514 /* update timestamp */
1515 paths_check_timestamp(network_dirs, &m->network_dirs_ts_usec, true);
1516
1517 r = netdev_load(m);
f579559b
TG
1518 if (r < 0)
1519 return r;
1520
5fae368b 1521 r = network_load(m);
9021bb9f
TG
1522 if (r < 0)
1523 return r;
1524
f579559b
TG
1525 return 0;
1526}
f882c247 1527
5fae368b
TG
1528bool manager_should_reload(Manager *m) {
1529 return paths_check_timestamp(network_dirs, &m->network_dirs_ts_usec, false);
1530}
1531
1532int manager_rtnl_enumerate_links(Manager *m) {
4afd3348 1533 _cleanup_(sd_netlink_message_unrefp) sd_netlink_message *req = NULL, *reply = NULL;
1c4baffc 1534 sd_netlink_message *link;
f882c247
TG
1535 int r;
1536
5da8149f 1537 assert(m);
5fae368b 1538 assert(m->rtnl);
5da8149f 1539
5fae368b 1540 r = sd_rtnl_message_new_link(m->rtnl, &req, RTM_GETLINK, 0);
f882c247
TG
1541 if (r < 0)
1542 return r;
1543
1c4baffc 1544 r = sd_netlink_message_request_dump(req, true);
dd3efc09
TG
1545 if (r < 0)
1546 return r;
1547
1c4baffc 1548 r = sd_netlink_call(m->rtnl, req, 0, &reply);
f2236469
TG
1549 if (r < 0)
1550 return r;
1551
1c4baffc 1552 for (link = reply; link; link = sd_netlink_message_next(link)) {
5fae368b 1553 int k;
2e9f08ea 1554
6a24f148
TG
1555 m->enumerating = true;
1556
5fae368b
TG
1557 k = manager_rtnl_process_link(m->rtnl, link, m);
1558 if (k < 0)
1559 r = k;
6a24f148
TG
1560
1561 m->enumerating = false;
5fae368b 1562 }
2e9f08ea 1563
5fae368b 1564 return r;
f882c247 1565}
3bef724f 1566
5fae368b 1567int manager_rtnl_enumerate_addresses(Manager *m) {
4afd3348 1568 _cleanup_(sd_netlink_message_unrefp) sd_netlink_message *req = NULL, *reply = NULL;
1c4baffc 1569 sd_netlink_message *addr;
1346b1f0
TG
1570 int r;
1571
5fae368b
TG
1572 assert(m);
1573 assert(m->rtnl);
bcbca829 1574
5fae368b
TG
1575 r = sd_rtnl_message_new_addr(m->rtnl, &req, RTM_GETADDR, 0, 0);
1576 if (r < 0)
1577 return r;
bcbca829 1578
1c4baffc 1579 r = sd_netlink_message_request_dump(req, true);
1346b1f0
TG
1580 if (r < 0)
1581 return r;
1582
1c4baffc 1583 r = sd_netlink_call(m->rtnl, req, 0, &reply);
5fae368b
TG
1584 if (r < 0)
1585 return r;
1586
1c4baffc 1587 for (addr = reply; addr; addr = sd_netlink_message_next(addr)) {
5fae368b
TG
1588 int k;
1589
6a24f148
TG
1590 m->enumerating = true;
1591
200a0868 1592 k = manager_rtnl_process_address(m->rtnl, addr, m);
5fae368b
TG
1593 if (k < 0)
1594 r = k;
6a24f148
TG
1595
1596 m->enumerating = false;
5fae368b
TG
1597 }
1598
1599 return r;
1346b1f0
TG
1600}
1601
1c8e710c 1602int manager_rtnl_enumerate_routes(Manager *m) {
4afd3348 1603 _cleanup_(sd_netlink_message_unrefp) sd_netlink_message *req = NULL, *reply = NULL;
1c8e710c
TG
1604 sd_netlink_message *route;
1605 int r;
1606
1607 assert(m);
1608 assert(m->rtnl);
1609
1610 r = sd_rtnl_message_new_route(m->rtnl, &req, RTM_GETROUTE, 0, 0);
1611 if (r < 0)
1612 return r;
1613
1614 r = sd_netlink_message_request_dump(req, true);
1615 if (r < 0)
1616 return r;
1617
1618 r = sd_netlink_call(m->rtnl, req, 0, &reply);
1619 if (r < 0)
1620 return r;
1621
1622 for (route = reply; route; route = sd_netlink_message_next(route)) {
1623 int k;
1624
1625 m->enumerating = true;
1626
1627 k = manager_rtnl_process_route(m->rtnl, route, m);
1628 if (k < 0)
1629 r = k;
1630
1631 m->enumerating = false;
1632 }
1633
1634 return r;
1635}
1636
bce67bbe
SS
1637int manager_rtnl_enumerate_rules(Manager *m) {
1638 _cleanup_(sd_netlink_message_unrefp) sd_netlink_message *req = NULL, *reply = NULL;
1639 sd_netlink_message *rule;
1640 int r;
1641
1642 assert(m);
1643 assert(m->rtnl);
1644
1645 r = sd_rtnl_message_new_routing_policy_rule(m->rtnl, &req, RTM_GETRULE, 0);
1646 if (r < 0)
1647 return r;
1648
1649 r = sd_netlink_message_request_dump(req, true);
1650 if (r < 0)
1651 return r;
1652
1653 r = sd_netlink_call(m->rtnl, req, 0, &reply);
6acbbdd4
SS
1654 if (r < 0) {
1655 if (r == -EOPNOTSUPP) {
1656 log_debug("FIB Rules are not supported by the kernel. Ignoring.");
1657 return 0;
1658 }
1659
bce67bbe 1660 return r;
6acbbdd4 1661 }
bce67bbe
SS
1662
1663 for (rule = reply; rule; rule = sd_netlink_message_next(rule)) {
1664 int k;
1665
1666 m->enumerating = true;
1667
1668 k = manager_rtnl_process_rule(m->rtnl, rule, m);
1669 if (k < 0)
1670 r = k;
1671
1672 m->enumerating = false;
1673 }
1674
1675 return r;
1676}
1677
0dd25fb9 1678int manager_address_pool_acquire(Manager *m, int family, unsigned prefixlen, union in_addr_union *found) {
11bf3cce
LP
1679 AddressPool *p;
1680 int r;
1681
1682 assert(m);
1683 assert(prefixlen > 0);
1684 assert(found);
1685
1686 LIST_FOREACH(address_pools, p, m->address_pools) {
1687 if (p->family != family)
1688 continue;
1689
1690 r = address_pool_acquire(p, prefixlen, found);
1691 if (r != 0)
1692 return r;
1693 }
1694
1695 return 0;
1696}
4f5f911e
LP
1697
1698Link* manager_find_uplink(Manager *m, Link *exclude) {
1699 _cleanup_free_ struct local_address *gateways = NULL;
1700 int n, i;
1701
1702 assert(m);
1703
1704 /* Looks for a suitable "uplink", via black magic: an
1705 * interface that is up and where the default route with the
1706 * highest priority points to. */
1707
1708 n = local_gateways(m->rtnl, 0, AF_UNSPEC, &gateways);
1709 if (n < 0) {
1710 log_warning_errno(n, "Failed to determine list of default gateways: %m");
1711 return NULL;
1712 }
1713
1714 for (i = 0; i < n; i++) {
1715 Link *link;
1716
1717 link = hashmap_get(m->links, INT_TO_PTR(gateways[i].ifindex));
1718 if (!link) {
c2c940bd 1719 log_debug("Weird, found a gateway for a link we don't know. Ignoring.");
4f5f911e
LP
1720 continue;
1721 }
1722
1723 if (link == exclude)
1724 continue;
1725
1726 if (link->operstate < LINK_OPERSTATE_ROUTABLE)
1727 continue;
1728
1729 return link;
1730 }
1731
1732 return NULL;
1733}
84de38c5
TG
1734
1735void manager_dirty(Manager *manager) {
1736 assert(manager);
1737
1738 /* the serialized state in /run is no longer up-to-date */
1739 manager->dirty = true;
1740}
59eb33e0
MP
1741
1742static int set_hostname_handler(sd_bus_message *m, void *userdata, sd_bus_error *ret_error) {
1743 Manager *manager = userdata;
1744 const sd_bus_error *e;
1745
1746 assert(m);
1747 assert(manager);
1748
1749 e = sd_bus_message_get_error(m);
1750 if (e)
1751 log_warning_errno(sd_bus_error_get_errno(e), "Could not set hostname: %s", e->message);
1752
1753 return 1;
1754}
1755
1756int manager_set_hostname(Manager *m, const char *hostname) {
1757 int r;
1758
1759 log_debug("Setting transient hostname: '%s'", strna(hostname));
d7afd945 1760
7901cea1
MP
1761 if (free_and_strdup(&m->dynamic_hostname, hostname) < 0)
1762 return log_oom();
59eb33e0 1763
d7afd945 1764 if (!m->bus || sd_bus_is_ready(m->bus) <= 0) {
e0d95f03 1765 log_debug("Not connected to system bus, setting hostname later.");
59eb33e0
MP
1766 return 0;
1767 }
1768
1769 r = sd_bus_call_method_async(
1770 m->bus,
1771 NULL,
1772 "org.freedesktop.hostname1",
1773 "/org/freedesktop/hostname1",
1774 "org.freedesktop.hostname1",
1775 "SetHostname",
1776 set_hostname_handler,
1777 m,
1778 "sb",
1779 hostname,
1780 false);
1781
1782 if (r < 0)
1783 return log_error_errno(r, "Could not set transient hostname: %m");
1784
1785 return 0;
1786}
1787
1788static int set_timezone_handler(sd_bus_message *m, void *userdata, sd_bus_error *ret_error) {
1789 Manager *manager = userdata;
1790 const sd_bus_error *e;
1791
1792 assert(m);
1793 assert(manager);
1794
1795 e = sd_bus_message_get_error(m);
1796 if (e)
1797 log_warning_errno(sd_bus_error_get_errno(e), "Could not set timezone: %s", e->message);
1798
1799 return 1;
1800}
1801
1802int manager_set_timezone(Manager *m, const char *tz) {
1803 int r;
1804
1805 assert(m);
1806 assert(tz);
1807
1808 log_debug("Setting system timezone: '%s'", tz);
7901cea1
MP
1809 if (free_and_strdup(&m->dynamic_timezone, tz) < 0)
1810 return log_oom();
59eb33e0 1811
d7afd945 1812 if (!m->bus || sd_bus_is_ready(m->bus) <= 0) {
e0d95f03 1813 log_debug("Not connected to system bus, setting timezone later.");
59eb33e0
MP
1814 return 0;
1815 }
1816
1817 r = sd_bus_call_method_async(
1818 m->bus,
1819 NULL,
1820 "org.freedesktop.timedate1",
1821 "/org/freedesktop/timedate1",
1822 "org.freedesktop.timedate1",
1823 "SetTimezone",
1824 set_timezone_handler,
1825 m,
1826 "sb",
1827 tz,
1828 false);
1829 if (r < 0)
1830 return log_error_errno(r, "Could not set timezone: %m");
1831
1832 return 0;
1833}