1 /* SPDX-License-Identifier: LGPL-2.1+ */
3 #include <sys/socket.h>
5 #include <linux/fib_rules.h>
9 #include "sd-netlink.h"
11 #include "alloc-util.h"
13 #include "conf-parser.h"
15 #include "device-util.h"
16 #include "dns-domain.h"
19 #include "local-addresses.h"
20 #include "netlink-util.h"
21 #include "networkd-manager.h"
22 #include "ordered-set.h"
23 #include "path-util.h"
28 /* use 8 MB for receive socket kernel queue. */
29 #define RCVBUF_SIZE (8*1024*1024)
31 const char* const network_dirs
[] = {
32 "/etc/systemd/network",
33 "/run/systemd/network",
34 "/usr/lib/systemd/network",
36 "/lib/systemd/network",
40 static int setup_default_address_pool(Manager
*m
) {
46 /* Add in the well-known private address ranges. */
48 r
= address_pool_new_from_string(m
, &p
, AF_INET6
, "fc00::", 7);
52 r
= address_pool_new_from_string(m
, &p
, AF_INET
, "192.168.0.0", 16);
56 r
= address_pool_new_from_string(m
, &p
, AF_INET
, "172.16.0.0", 12);
60 r
= address_pool_new_from_string(m
, &p
, AF_INET
, "10.0.0.0", 8);
67 static int manager_reset_all(Manager
*m
) {
74 HASHMAP_FOREACH(link
, m
->links
, i
) {
75 r
= link_carrier_reset(link
);
77 log_link_warning_errno(link
, r
, "Could not reset carrier: %m");
83 static int match_prepare_for_sleep(sd_bus_message
*message
, void *userdata
, sd_bus_error
*ret_error
) {
84 Manager
*m
= userdata
;
90 r
= sd_bus_message_read(message
, "b", &b
);
92 log_debug_errno(r
, "Failed to parse PrepareForSleep signal: %m");
99 log_debug("Coming back from suspend, resetting all connections...");
101 (void) manager_reset_all(m
);
106 static int on_connected(sd_bus_message
*message
, void *userdata
, sd_bus_error
*ret_error
) {
107 Manager
*m
= userdata
;
112 /* Did we get a timezone or transient hostname from DHCP while D-Bus wasn't up yet? */
113 if (m
->dynamic_hostname
)
114 (void) manager_set_hostname(m
, m
->dynamic_hostname
);
115 if (m
->dynamic_timezone
)
116 (void) manager_set_timezone(m
, m
->dynamic_timezone
);
117 if (m
->links_requesting_uuid
)
118 (void) manager_request_product_uuid(m
, NULL
);
123 int manager_connect_bus(Manager
*m
) {
131 r
= bus_open_system_watch_bind_with_description(&m
->bus
, "bus-api-network");
133 return log_error_errno(r
, "Failed to connect to bus: %m");
135 r
= sd_bus_add_object_vtable(m
->bus
, NULL
, "/org/freedesktop/network1", "org.freedesktop.network1.Manager", manager_vtable
, m
);
137 return log_error_errno(r
, "Failed to add manager object vtable: %m");
139 r
= sd_bus_add_fallback_vtable(m
->bus
, NULL
, "/org/freedesktop/network1/link", "org.freedesktop.network1.Link", link_vtable
, link_object_find
, m
);
141 return log_error_errno(r
, "Failed to add link object vtable: %m");
143 r
= sd_bus_add_node_enumerator(m
->bus
, NULL
, "/org/freedesktop/network1/link", link_node_enumerator
, m
);
145 return log_error_errno(r
, "Failed to add link enumerator: %m");
147 r
= sd_bus_add_fallback_vtable(m
->bus
, NULL
, "/org/freedesktop/network1/network", "org.freedesktop.network1.Network", network_vtable
, network_object_find
, m
);
149 return log_error_errno(r
, "Failed to add network object vtable: %m");
151 r
= sd_bus_add_node_enumerator(m
->bus
, NULL
, "/org/freedesktop/network1/network", network_node_enumerator
, m
);
153 return log_error_errno(r
, "Failed to add network enumerator: %m");
155 r
= sd_bus_request_name_async(m
->bus
, NULL
, "org.freedesktop.network1", 0, NULL
, NULL
);
157 return log_error_errno(r
, "Failed to request name: %m");
159 r
= sd_bus_attach_event(m
->bus
, m
->event
, 0);
161 return log_error_errno(r
, "Failed to attach bus to event loop: %m");
163 r
= sd_bus_match_signal_async(
166 "org.freedesktop.DBus.Local",
168 "org.freedesktop.DBus.Local",
170 on_connected
, NULL
, m
);
172 return log_error_errno(r
, "Failed to request match on Connected signal: %m");
174 r
= sd_bus_match_signal_async(
177 "org.freedesktop.login1",
178 "/org/freedesktop/login1",
179 "org.freedesktop.login1.Manager",
181 match_prepare_for_sleep
, NULL
, m
);
183 log_warning_errno(r
, "Failed to request match for PrepareForSleep, ignoring: %m");
188 static int manager_udev_process_link(sd_device_monitor
*monitor
, sd_device
*device
, void *userdata
) {
189 Manager
*m
= userdata
;
197 r
= sd_device_get_property_value(device
, "ACTION", &action
);
199 log_device_debug_errno(device
, r
, "Failed to get 'ACTION' property, ignoring device: %m");
203 if (!STR_IN_SET(action
, "add", "change")) {
204 log_device_debug(device
, "Ignoring udev %s event for device.", action
);
208 r
= sd_device_get_ifindex(device
, &ifindex
);
210 log_device_debug_errno(device
, r
, "Ignoring udev ADD event for device without ifindex or with invalid ifindex: %m");
214 r
= link_get(m
, ifindex
, &link
);
217 log_debug_errno(r
, "Failed to get link from ifindex %i, ignoring: %m", ifindex
);
221 (void) link_initialized(link
, device
);
226 static int manager_connect_udev(Manager
*m
) {
229 /* udev does not initialize devices inside containers,
230 * so we rely on them being already initialized before
231 * entering the container */
232 if (detect_container() > 0)
235 r
= sd_device_monitor_new(&m
->device_monitor
);
237 return log_error_errno(r
, "Failed to initialize device monitor: %m");
239 r
= sd_device_monitor_filter_add_match_subsystem_devtype(m
->device_monitor
, "net", NULL
);
241 return log_error_errno(r
, "Could not add device monitor filter: %m");
243 r
= sd_device_monitor_attach_event(m
->device_monitor
, m
->event
);
245 return log_error_errno(r
, "Failed to attach event to device monitor: %m");
247 r
= sd_device_monitor_start(m
->device_monitor
, manager_udev_process_link
, m
);
249 return log_error_errno(r
, "Failed to start device monitor: %m");
254 int manager_rtnl_process_route(sd_netlink
*rtnl
, sd_netlink_message
*message
, void *userdata
) {
255 Manager
*m
= userdata
;
258 uint32_t ifindex
, priority
= 0;
259 unsigned char protocol
, scope
, tos
, table
, rt_type
;
261 unsigned char dst_prefixlen
, src_prefixlen
;
262 union in_addr_union dst
= {}, gw
= {}, src
= {}, prefsrc
= {};
270 if (sd_netlink_message_is_error(message
)) {
271 r
= sd_netlink_message_get_errno(message
);
273 log_warning_errno(r
, "rtnl: failed to receive route, ignoring: %m");
278 r
= sd_netlink_message_get_type(message
, &type
);
280 log_warning_errno(r
, "rtnl: could not get message type, ignoring: %m");
282 } else if (!IN_SET(type
, RTM_NEWROUTE
, RTM_DELROUTE
)) {
283 log_warning("rtnl: received unexpected message type when processing route, ignoring");
287 r
= sd_netlink_message_read_u32(message
, RTA_OIF
, &ifindex
);
289 log_debug("rtnl: received route without ifindex, ignoring");
292 log_warning_errno(r
, "rtnl: could not get ifindex from route, ignoring: %m");
294 } else if (ifindex
<= 0) {
295 log_warning("rtnl: received route message with invalid ifindex, ignoring: %d", ifindex
);
298 r
= link_get(m
, ifindex
, &link
);
299 if (r
< 0 || !link
) {
300 /* when enumerating we might be out of sync, but we will
301 * get the route again, so just ignore it */
303 log_warning("rtnl: received route for nonexistent link (%d), ignoring", ifindex
);
308 r
= sd_rtnl_message_route_get_family(message
, &family
);
309 if (r
< 0 || !IN_SET(family
, AF_INET
, AF_INET6
)) {
310 log_link_warning(link
, "rtnl: received address with invalid family, ignoring");
314 r
= sd_rtnl_message_route_get_protocol(message
, &protocol
);
316 log_warning_errno(r
, "rtnl: could not get route protocol: %m");
322 r
= sd_netlink_message_read_in_addr(message
, RTA_DST
, &dst
.in
);
323 if (r
< 0 && r
!= -ENODATA
) {
324 log_link_warning_errno(link
, r
, "rtnl: received route without valid destination, ignoring: %m");
328 r
= sd_netlink_message_read_in_addr(message
, RTA_GATEWAY
, &gw
.in
);
329 if (r
< 0 && r
!= -ENODATA
) {
330 log_link_warning_errno(link
, r
, "rtnl: received route with invalid gateway, ignoring: %m");
334 r
= sd_netlink_message_read_in_addr(message
, RTA_SRC
, &src
.in
);
335 if (r
< 0 && r
!= -ENODATA
) {
336 log_link_warning_errno(link
, r
, "rtnl: received route with invalid source, ignoring: %m");
340 r
= sd_netlink_message_read_in_addr(message
, RTA_PREFSRC
, &prefsrc
.in
);
341 if (r
< 0 && r
!= -ENODATA
) {
342 log_link_warning_errno(link
, r
, "rtnl: received route with invalid preferred source, ignoring: %m");
349 r
= sd_netlink_message_read_in6_addr(message
, RTA_DST
, &dst
.in6
);
350 if (r
< 0 && r
!= -ENODATA
) {
351 log_link_warning_errno(link
, r
, "rtnl: received route without valid destination, ignoring: %m");
355 r
= sd_netlink_message_read_in6_addr(message
, RTA_GATEWAY
, &gw
.in6
);
356 if (r
< 0 && r
!= -ENODATA
) {
357 log_link_warning_errno(link
, r
, "rtnl: received route with invalid gateway, ignoring: %m");
361 r
= sd_netlink_message_read_in6_addr(message
, RTA_SRC
, &src
.in6
);
362 if (r
< 0 && r
!= -ENODATA
) {
363 log_link_warning_errno(link
, r
, "rtnl: received route with invalid source, ignoring: %m");
367 r
= sd_netlink_message_read_in6_addr(message
, RTA_PREFSRC
, &prefsrc
.in6
);
368 if (r
< 0 && r
!= -ENODATA
) {
369 log_link_warning_errno(link
, r
, "rtnl: received route with invalid preferred source, ignoring: %m");
376 assert_not_reached("Received unsupported address family");
380 r
= sd_rtnl_message_route_get_dst_prefixlen(message
, &dst_prefixlen
);
382 log_link_warning_errno(link
, r
, "rtnl: received route with invalid destination prefixlen, ignoring: %m");
386 r
= sd_rtnl_message_route_get_src_prefixlen(message
, &src_prefixlen
);
388 log_link_warning_errno(link
, r
, "rtnl: received route with invalid source prefixlen, ignoring: %m");
392 r
= sd_rtnl_message_route_get_scope(message
, &scope
);
394 log_link_warning_errno(link
, r
, "rtnl: received route with invalid scope, ignoring: %m");
398 r
= sd_rtnl_message_route_get_tos(message
, &tos
);
400 log_link_warning_errno(link
, r
, "rtnl: received route with invalid tos, ignoring: %m");
404 r
= sd_rtnl_message_route_get_type(message
, &rt_type
);
406 log_link_warning_errno(link
, r
, "rtnl: received route with invalid type, ignoring: %m");
410 r
= sd_rtnl_message_route_get_table(message
, &table
);
412 log_link_warning_errno(link
, r
, "rtnl: received route with invalid table, ignoring: %m");
416 r
= sd_netlink_message_read_u32(message
, RTA_PRIORITY
, &priority
);
417 if (r
< 0 && r
!= -ENODATA
) {
418 log_link_warning_errno(link
, r
, "rtnl: received route with invalid priority, ignoring: %m");
422 (void) route_get(link
, family
, &dst
, dst_prefixlen
, tos
, priority
, table
, &route
);
427 /* A route appeared that we did not request */
428 r
= route_add_foreign(link
, family
, &dst
, dst_prefixlen
, tos
, priority
, table
, &route
);
430 log_link_warning_errno(link
, r
, "Failed to add route, ignoring: %m");
435 route_update(route
, &src
, src_prefixlen
, &gw
, &prefsrc
, scope
, protocol
, rt_type
);
444 assert_not_reached("Received invalid RTNL message type");
450 int manager_rtnl_process_address(sd_netlink
*rtnl
, sd_netlink_message
*message
, void *userdata
) {
451 Manager
*m
= userdata
;
456 unsigned char prefixlen
;
458 union in_addr_union in_addr
;
459 struct ifa_cacheinfo cinfo
;
460 Address
*address
= NULL
;
461 char buf
[INET6_ADDRSTRLEN
], valid_buf
[FORMAT_TIMESPAN_MAX
];
462 const char *valid_str
= NULL
;
469 if (sd_netlink_message_is_error(message
)) {
470 r
= sd_netlink_message_get_errno(message
);
472 log_warning_errno(r
, "rtnl: failed to receive address, ignoring: %m");
477 r
= sd_netlink_message_get_type(message
, &type
);
479 log_warning_errno(r
, "rtnl: could not get message type, ignoring: %m");
481 } else if (!IN_SET(type
, RTM_NEWADDR
, RTM_DELADDR
)) {
482 log_warning("rtnl: received unexpected message type when processing address, ignoring");
486 r
= sd_rtnl_message_addr_get_ifindex(message
, &ifindex
);
488 log_warning_errno(r
, "rtnl: could not get ifindex from address, ignoring: %m");
490 } else if (ifindex
<= 0) {
491 log_warning("rtnl: received address message with invalid ifindex, ignoring: %d", ifindex
);
494 r
= link_get(m
, ifindex
, &link
);
495 if (r
< 0 || !link
) {
496 /* when enumerating we might be out of sync, but we will
497 * get the address again, so just ignore it */
499 log_warning("rtnl: received address for nonexistent link (%d), ignoring", ifindex
);
504 r
= sd_rtnl_message_addr_get_family(message
, &family
);
505 if (r
< 0 || !IN_SET(family
, AF_INET
, AF_INET6
)) {
506 log_link_warning(link
, "rtnl: received address with invalid family, ignoring");
510 r
= sd_rtnl_message_addr_get_prefixlen(message
, &prefixlen
);
512 log_link_warning_errno(link
, r
, "rtnl: received address with invalid prefixlen, ignoring: %m");
516 r
= sd_rtnl_message_addr_get_scope(message
, &scope
);
518 log_link_warning_errno(link
, r
, "rtnl: received address with invalid scope, ignoring: %m");
522 r
= sd_rtnl_message_addr_get_flags(message
, &flags
);
524 log_link_warning_errno(link
, r
, "rtnl: received address with invalid flags, ignoring: %m");
530 r
= sd_netlink_message_read_in_addr(message
, IFA_LOCAL
, &in_addr
.in
);
532 log_link_warning_errno(link
, r
, "rtnl: received address without valid address, ignoring: %m");
539 r
= sd_netlink_message_read_in6_addr(message
, IFA_ADDRESS
, &in_addr
.in6
);
541 log_link_warning_errno(link
, r
, "rtnl: received address without valid address, ignoring: %m");
548 assert_not_reached("Received unsupported address family");
551 if (!inet_ntop(family
, &in_addr
, buf
, INET6_ADDRSTRLEN
)) {
552 log_link_warning(link
, "Could not print address, ignoring");
556 r
= sd_netlink_message_read_cache_info(message
, IFA_CACHEINFO
, &cinfo
);
557 if (r
< 0 && r
!= -ENODATA
) {
558 log_link_warning_errno(link
, r
, "rtnl: cannot get IFA_CACHEINFO attribute, ignoring: %m");
561 if (cinfo
.ifa_valid
!= CACHE_INFO_INFINITY_LIFE_TIME
)
562 valid_str
= format_timespan(valid_buf
, FORMAT_TIMESPAN_MAX
,
563 cinfo
.ifa_valid
* USEC_PER_SEC
,
567 (void) address_get(link
, family
, &in_addr
, prefixlen
, &address
);
572 log_link_debug(link
, "Updating address: %s/%u (valid %s%s)", buf
, prefixlen
,
573 valid_str
? "for " : "forever", strempty(valid_str
));
575 /* An address appeared that we did not request */
576 r
= address_add_foreign(link
, family
, &in_addr
, prefixlen
, &address
);
578 log_link_warning_errno(link
, r
, "Failed to add address %s/%u, ignoring: %m", buf
, prefixlen
);
581 log_link_debug(link
, "Adding address: %s/%u (valid %s%s)", buf
, prefixlen
,
582 valid_str
? "for " : "forever", strempty(valid_str
));
585 r
= address_update(address
, flags
, scope
, &cinfo
);
587 log_link_warning_errno(link
, r
, "Failed to update address %s/%u, ignoring: %m", buf
, prefixlen
);
596 log_link_debug(link
, "Removing address: %s/%u (valid %s%s)", buf
, prefixlen
,
597 valid_str
? "for " : "forever", strempty(valid_str
));
598 (void) address_drop(address
);
600 log_link_warning(link
, "Removing non-existent address: %s/%u (valid %s%s), ignoring", buf
, prefixlen
,
601 valid_str
? "for " : "forever", strempty(valid_str
));
605 assert_not_reached("Received invalid RTNL message type");
611 static int manager_rtnl_process_link(sd_netlink
*rtnl
, sd_netlink_message
*message
, void *userdata
) {
612 Manager
*m
= userdata
;
614 NetDev
*netdev
= NULL
;
623 if (sd_netlink_message_is_error(message
)) {
624 r
= sd_netlink_message_get_errno(message
);
626 log_warning_errno(r
, "rtnl: Could not receive link, ignoring: %m");
631 r
= sd_netlink_message_get_type(message
, &type
);
633 log_warning_errno(r
, "rtnl: Could not get message type, ignoring: %m");
635 } else if (!IN_SET(type
, RTM_NEWLINK
, RTM_DELLINK
)) {
636 log_warning("rtnl: Received unexpected message type when processing link, ignoring");
640 r
= sd_rtnl_message_link_get_ifindex(message
, &ifindex
);
642 log_warning_errno(r
, "rtnl: Could not get ifindex from link, ignoring: %m");
644 } else if (ifindex
<= 0) {
645 log_warning("rtnl: received link message with invalid ifindex %d, ignoring", ifindex
);
649 r
= sd_netlink_message_read_string(message
, IFLA_IFNAME
, &name
);
651 log_warning_errno(r
, "rtnl: Received link message without ifname, ignoring: %m");
655 (void) link_get(m
, ifindex
, &link
);
656 (void) netdev_get(m
, name
, &netdev
);
661 /* link is new, so add it */
662 r
= link_add(m
, message
, &link
);
664 log_warning_errno(r
, "Could not add new link, ignoring: %m");
670 /* netdev exists, so make sure the ifindex matches */
671 r
= netdev_set_ifindex(netdev
, message
);
673 log_warning_errno(r
, "Could not set ifindex on netdev, ignoring: %m");
678 r
= link_update(link
, message
);
680 log_warning_errno(r
, "Could not update link, ignoring: %m");
693 assert_not_reached("Received invalid RTNL message type.");
699 int manager_rtnl_process_rule(sd_netlink
*rtnl
, sd_netlink_message
*message
, void *userdata
) {
700 uint8_t tos
= 0, to_prefixlen
= 0, from_prefixlen
= 0;
701 union in_addr_union to
= {}, from
= {};
702 RoutingPolicyRule
*rule
= NULL
;
703 uint32_t fwmark
= 0, table
= 0;
704 const char *iif
= NULL
, *oif
= NULL
;
705 Manager
*m
= userdata
;
714 if (sd_netlink_message_is_error(message
)) {
715 r
= sd_netlink_message_get_errno(message
);
717 log_warning_errno(r
, "rtnl: failed to receive rule, ignoring: %m");
722 r
= sd_netlink_message_get_type(message
, &type
);
724 log_warning_errno(r
, "rtnl: could not get message type, ignoring: %m");
726 } else if (!IN_SET(type
, RTM_NEWRULE
, RTM_DELRULE
)) {
727 log_warning("rtnl: received unexpected message type '%u' when processing rule, ignoring", type
);
731 r
= sd_rtnl_message_get_family(message
, &family
);
733 log_warning_errno(r
, "rtnl: could not get rule family, ignoring: %m");
735 } else if (!IN_SET(family
, AF_INET
, AF_INET6
)) {
736 log_debug("rtnl: received address with invalid family %u, ignoring", family
);
742 r
= sd_netlink_message_read_in_addr(message
, FRA_SRC
, &from
.in
);
743 if (r
< 0 && r
!= -ENODATA
) {
744 log_warning_errno(r
, "rtnl: could not get FRA_SRC attribute, ignoring: %m");
747 r
= sd_rtnl_message_routing_policy_rule_get_rtm_src_prefixlen(message
, &from_prefixlen
);
749 log_warning_errno(r
, "rtnl: failed to retrieve rule from prefix length, ignoring: %m");
754 r
= sd_netlink_message_read_in_addr(message
, FRA_DST
, &to
.in
);
755 if (r
< 0 && r
!= -ENODATA
) {
756 log_warning_errno(r
, "rtnl: could not get FRA_DST attribute, ignoring: %m");
759 r
= sd_rtnl_message_routing_policy_rule_get_rtm_dst_prefixlen(message
, &to_prefixlen
);
761 log_warning_errno(r
, "rtnl: failed to retrieve rule to prefix length, ignoring: %m");
769 r
= sd_netlink_message_read_in6_addr(message
, FRA_SRC
, &from
.in6
);
770 if (r
< 0 && r
!= -ENODATA
) {
771 log_warning_errno(r
, "rtnl: could not get FRA_SRC attribute, ignoring: %m");
774 r
= sd_rtnl_message_routing_policy_rule_get_rtm_src_prefixlen(message
, &from_prefixlen
);
776 log_warning_errno(r
, "rtnl: failed to retrieve rule from prefix length, ignoring: %m");
781 r
= sd_netlink_message_read_in6_addr(message
, FRA_DST
, &to
.in6
);
782 if (r
< 0 && r
!= -ENODATA
) {
783 log_warning_errno(r
, "rtnl: could not get FRA_DST attribute, ignoring: %m");
786 r
= sd_rtnl_message_routing_policy_rule_get_rtm_dst_prefixlen(message
, &to_prefixlen
);
788 log_warning_errno(r
, "rtnl: failed to retrieve rule to prefix length, ignoring: %m");
796 assert_not_reached("Received unsupported address family");
799 if (from_prefixlen
== 0 && to_prefixlen
== 0)
802 r
= sd_netlink_message_read_u32(message
, FRA_FWMARK
, &fwmark
);
803 if (r
< 0 && r
!= -ENODATA
) {
804 log_warning_errno(r
, "rtnl: could not get FRA_FWMARK attribute, ignoring: %m");
808 r
= sd_netlink_message_read_u32(message
, FRA_TABLE
, &table
);
809 if (r
< 0 && r
!= -ENODATA
) {
810 log_warning_errno(r
, "rtnl: could not get FRA_TABLE attribute, ignoring: %m");
814 r
= sd_rtnl_message_routing_policy_rule_get_tos(message
, &tos
);
815 if (r
< 0 && r
!= -ENODATA
) {
816 log_warning_errno(r
, "rtnl: could not get ip rule TOS, ignoring: %m");
820 r
= sd_netlink_message_read_string(message
, FRA_IIFNAME
, &iif
);
821 if (r
< 0 && r
!= -ENODATA
) {
822 log_warning_errno(r
, "rtnl: could not get FRA_IIFNAME attribute, ignoring: %m");
826 r
= sd_netlink_message_read_string(message
, FRA_OIFNAME
, &oif
);
827 if (r
< 0 && r
!= -ENODATA
) {
828 log_warning_errno(r
, "rtnl: could not get FRA_OIFNAME attribute, ignoring: %m");
832 (void) routing_policy_rule_get(m
, family
, &from
, from_prefixlen
, &to
, to_prefixlen
, tos
, fwmark
, table
, iif
, oif
, &rule
);
837 r
= routing_policy_rule_add_foreign(m
, family
, &from
, from_prefixlen
, &to
, to_prefixlen
, tos
, fwmark
, table
, iif
, oif
, &rule
);
839 log_warning_errno(r
, "Could not add rule, ignoring: %m");
845 routing_policy_rule_free(rule
);
850 assert_not_reached("Received invalid RTNL message type");
856 static int systemd_netlink_fd(void) {
857 int n
, fd
, rtnl_fd
= -EINVAL
;
859 n
= sd_listen_fds(true);
863 for (fd
= SD_LISTEN_FDS_START
; fd
< SD_LISTEN_FDS_START
+ n
; fd
++) {
864 if (sd_is_socket(fd
, AF_NETLINK
, SOCK_RAW
, -1) > 0) {
875 static int manager_connect_genl(Manager
*m
) {
880 r
= sd_genl_socket_open(&m
->genl
);
884 r
= sd_netlink_inc_rcvbuf(m
->genl
, RCVBUF_SIZE
);
888 r
= sd_netlink_attach_event(m
->genl
, m
->event
, 0);
895 static int manager_connect_rtnl(Manager
*m
) {
900 fd
= systemd_netlink_fd();
902 r
= sd_netlink_open(&m
->rtnl
);
904 r
= sd_netlink_open_fd(&m
->rtnl
, fd
);
908 r
= sd_netlink_inc_rcvbuf(m
->rtnl
, RCVBUF_SIZE
);
912 r
= sd_netlink_attach_event(m
->rtnl
, m
->event
, 0);
916 r
= sd_netlink_add_match(m
->rtnl
, NULL
, RTM_NEWLINK
, &manager_rtnl_process_link
, NULL
, m
, "network-rtnl_process_link");
920 r
= sd_netlink_add_match(m
->rtnl
, NULL
, RTM_DELLINK
, &manager_rtnl_process_link
, NULL
, m
, "network-rtnl_process_link");
924 r
= sd_netlink_add_match(m
->rtnl
, NULL
, RTM_NEWADDR
, &manager_rtnl_process_address
, NULL
, m
, "network-rtnl_process_address");
928 r
= sd_netlink_add_match(m
->rtnl
, NULL
, RTM_DELADDR
, &manager_rtnl_process_address
, NULL
, m
, "network-rtnl_process_address");
932 r
= sd_netlink_add_match(m
->rtnl
, NULL
, RTM_NEWROUTE
, &manager_rtnl_process_route
, NULL
, m
, "network-rtnl_process_route");
936 r
= sd_netlink_add_match(m
->rtnl
, NULL
, RTM_DELROUTE
, &manager_rtnl_process_route
, NULL
, m
, "network-rtnl_process_route");
940 r
= sd_netlink_add_match(m
->rtnl
, NULL
, RTM_NEWRULE
, &manager_rtnl_process_rule
, NULL
, m
, "network-rtnl_process_rule");
944 r
= sd_netlink_add_match(m
->rtnl
, NULL
, RTM_DELRULE
, &manager_rtnl_process_rule
, NULL
, m
, "network-rtnl_process_rule");
951 static int ordered_set_put_in_addr_data(OrderedSet
*s
, const struct in_addr_data
*address
) {
958 r
= in_addr_to_string(address
->family
, &address
->address
, &p
);
962 r
= ordered_set_consume(s
, p
);
969 static int ordered_set_put_in_addr_datav(OrderedSet
*s
, const struct in_addr_data
*addresses
, unsigned n
) {
974 assert(addresses
|| n
== 0);
976 for (i
= 0; i
< n
; i
++) {
977 r
= ordered_set_put_in_addr_data(s
, addresses
+i
);
987 static int ordered_set_put_in4_addr(OrderedSet
*s
, const struct in_addr
*address
) {
994 r
= in_addr_to_string(AF_INET
, (const union in_addr_union
*) address
, &p
);
998 r
= ordered_set_consume(s
, p
);
1005 static int ordered_set_put_in4_addrv(OrderedSet
*s
, const struct in_addr
*addresses
, unsigned n
) {
1010 assert(n
== 0 || addresses
);
1012 for (i
= 0; i
< n
; i
++) {
1013 r
= ordered_set_put_in4_addr(s
, addresses
+i
);
1023 static void print_string_set(FILE *f
, const char *field
, OrderedSet
*s
) {
1028 if (ordered_set_isempty(s
))
1033 ORDERED_SET_FOREACH(p
, s
, i
)
1034 fputs_with_space(f
, p
, NULL
, &space
);
1039 static int manager_save(Manager
*m
) {
1040 _cleanup_ordered_set_free_free_ OrderedSet
*dns
= NULL
, *ntp
= NULL
, *search_domains
= NULL
, *route_domains
= NULL
;
1043 _cleanup_free_
char *temp_path
= NULL
;
1044 _cleanup_fclose_
FILE *f
= NULL
;
1045 LinkOperationalState operstate
= LINK_OPERSTATE_OFF
;
1046 const char *operstate_str
;
1050 assert(m
->state_file
);
1052 /* We add all NTP and DNS server to a set, to filter out duplicates */
1053 dns
= ordered_set_new(&string_hash_ops
);
1057 ntp
= ordered_set_new(&string_hash_ops
);
1061 search_domains
= ordered_set_new(&dns_name_hash_ops
);
1062 if (!search_domains
)
1065 route_domains
= ordered_set_new(&dns_name_hash_ops
);
1069 HASHMAP_FOREACH(link
, m
->links
, i
) {
1070 if (link
->flags
& IFF_LOOPBACK
)
1073 if (link
->operstate
> operstate
)
1074 operstate
= link
->operstate
;
1079 /* First add the static configured entries */
1080 r
= ordered_set_put_in_addr_datav(dns
, link
->network
->dns
, link
->network
->n_dns
);
1084 r
= ordered_set_put_strdupv(ntp
, link
->network
->ntp
);
1088 r
= ordered_set_put_strdupv(search_domains
, link
->network
->search_domains
);
1092 r
= ordered_set_put_strdupv(route_domains
, link
->network
->route_domains
);
1096 if (!link
->dhcp_lease
)
1099 /* Secondly, add the entries acquired via DHCP */
1100 if (link
->network
->dhcp_use_dns
) {
1101 const struct in_addr
*addresses
;
1103 r
= sd_dhcp_lease_get_dns(link
->dhcp_lease
, &addresses
);
1105 r
= ordered_set_put_in4_addrv(dns
, addresses
, r
);
1108 } else if (r
< 0 && r
!= -ENODATA
)
1112 if (link
->network
->dhcp_use_ntp
) {
1113 const struct in_addr
*addresses
;
1115 r
= sd_dhcp_lease_get_ntp(link
->dhcp_lease
, &addresses
);
1117 r
= ordered_set_put_in4_addrv(ntp
, addresses
, r
);
1120 } else if (r
< 0 && r
!= -ENODATA
)
1124 if (link
->network
->dhcp_use_domains
!= DHCP_USE_DOMAINS_NO
) {
1125 const char *domainname
;
1126 char **domains
= NULL
;
1128 OrderedSet
*target_domains
= (link
->network
->dhcp_use_domains
== DHCP_USE_DOMAINS_YES
) ? search_domains
: route_domains
;
1129 r
= sd_dhcp_lease_get_domainname(link
->dhcp_lease
, &domainname
);
1131 r
= ordered_set_put_strdup(target_domains
, domainname
);
1134 } else if (r
!= -ENODATA
)
1137 r
= sd_dhcp_lease_get_search_domains(link
->dhcp_lease
, &domains
);
1139 r
= ordered_set_put_strdupv(target_domains
, domains
);
1142 } else if (r
!= -ENODATA
)
1147 operstate_str
= link_operstate_to_string(operstate
);
1148 assert(operstate_str
);
1150 r
= fopen_temporary(m
->state_file
, &f
, &temp_path
);
1154 (void) __fsetlocking(f
, FSETLOCKING_BYCALLER
);
1155 (void) fchmod(fileno(f
), 0644);
1158 "# This is private data. Do not parse.\n"
1159 "OPER_STATE=%s\n", operstate_str
);
1161 print_string_set(f
, "DNS=", dns
);
1162 print_string_set(f
, "NTP=", ntp
);
1163 print_string_set(f
, "DOMAINS=", search_domains
);
1164 print_string_set(f
, "ROUTE_DOMAINS=", route_domains
);
1166 r
= routing_policy_serialize_rules(m
->rules
, f
);
1170 r
= fflush_and_check(f
);
1174 if (rename(temp_path
, m
->state_file
) < 0) {
1179 if (m
->operational_state
!= operstate
) {
1180 m
->operational_state
= operstate
;
1181 r
= manager_send_changed(m
, "OperationalState", NULL
);
1183 log_error_errno(r
, "Could not emit changed OperationalState: %m");
1191 (void) unlink(m
->state_file
);
1192 (void) unlink(temp_path
);
1194 return log_error_errno(r
, "Failed to save network state to %s: %m", m
->state_file
);
1197 static int manager_dirty_handler(sd_event_source
*s
, void *userdata
) {
1198 Manager
*m
= userdata
;
1207 SET_FOREACH(link
, m
->dirty_links
, i
)
1208 if (link_save(link
) >= 0)
1214 Link
*manager_dhcp6_prefix_get(Manager
*m
, struct in6_addr
*addr
) {
1215 assert_return(m
, NULL
);
1216 assert_return(addr
, NULL
);
1218 return hashmap_get(m
->dhcp6_prefixes
, addr
);
1221 static int dhcp6_route_add_handler(sd_netlink
*nl
, sd_netlink_message
*m
, void *userdata
) {
1222 Link
*link
= userdata
;
1227 r
= sd_netlink_message_get_errno(m
);
1228 if (r
< 0 && r
!= -EEXIST
)
1229 log_link_debug_errno(link
, r
, "Received error adding DHCPv6 Prefix Delegation route: %m");
1234 static void dhcp6_prefixes_hash_func(const void *p
, struct siphash
*state
) {
1235 const struct in6_addr
*addr
= p
;
1239 siphash24_compress(addr
, sizeof(*addr
), state
);
1242 static int dhcp6_prefixes_compare_func(const void *_a
, const void *_b
) {
1243 const struct in6_addr
*a
= _a
, *b
= _b
;
1245 return memcmp(a
, b
, sizeof(*a
));
1248 static const struct hash_ops dhcp6_prefixes_hash_ops
= {
1249 .hash
= dhcp6_prefixes_hash_func
,
1250 .compare
= dhcp6_prefixes_compare_func
,
1253 int manager_dhcp6_prefix_add(Manager
*m
, struct in6_addr
*addr
, Link
*link
) {
1254 _cleanup_free_
char *buf
= NULL
;
1258 assert_return(m
, -EINVAL
);
1259 assert_return(addr
, -EINVAL
);
1261 r
= route_add(link
, AF_INET6
, (union in_addr_union
*) addr
, 64,
1266 r
= route_configure(route
, link
, dhcp6_route_add_handler
);
1270 (void) in_addr_to_string(AF_INET6
, (union in_addr_union
*) addr
, &buf
);
1271 log_link_debug(link
, "Adding prefix route %s/64", strnull(buf
));
1273 r
= hashmap_ensure_allocated(&m
->dhcp6_prefixes
, &dhcp6_prefixes_hash_ops
);
1277 return hashmap_put(m
->dhcp6_prefixes
, addr
, link
);
1280 static int dhcp6_route_remove_handler(sd_netlink
*nl
, sd_netlink_message
*m
, void *userdata
) {
1281 Link
*link
= userdata
;
1286 r
= sd_netlink_message_get_errno(m
);
1288 log_link_debug_errno(link
, r
, "Received error on DHCPv6 Prefix Delegation route removal: %m");
1293 static int manager_dhcp6_prefix_remove(Manager
*m
, struct in6_addr
*addr
) {
1294 _cleanup_free_
char *buf
= NULL
;
1299 assert_return(m
, -EINVAL
);
1300 assert_return(addr
, -EINVAL
);
1302 l
= hashmap_remove(m
->dhcp6_prefixes
, addr
);
1306 (void) sd_radv_remove_prefix(l
->radv
, addr
, 64);
1307 r
= route_get(l
, AF_INET6
, (union in_addr_union
*) addr
, 64,
1312 r
= route_remove(route
, l
, dhcp6_route_remove_handler
);
1316 (void) in_addr_to_string(AF_INET6
, (union in_addr_union
*) addr
, &buf
);
1317 log_link_debug(l
, "Removing prefix route %s/64", strnull(buf
));
1322 int manager_dhcp6_prefix_remove_all(Manager
*m
, Link
*link
) {
1323 struct in6_addr
*addr
;
1327 assert_return(m
, -EINVAL
);
1328 assert_return(link
, -EINVAL
);
1330 HASHMAP_FOREACH_KEY(l
, addr
, m
->dhcp6_prefixes
, i
) {
1334 (void) manager_dhcp6_prefix_remove(m
, addr
);
1340 int manager_new(Manager
**ret
) {
1341 _cleanup_(manager_freep
) Manager
*m
= NULL
;
1344 m
= new0(Manager
, 1);
1348 m
->state_file
= strdup("/run/systemd/netif/state");
1352 r
= sd_event_default(&m
->event
);
1356 (void) sd_event_set_watchdog(m
->event
, true);
1357 (void) sd_event_add_signal(m
->event
, NULL
, SIGTERM
, NULL
, NULL
);
1358 (void) sd_event_add_signal(m
->event
, NULL
, SIGINT
, NULL
, NULL
);
1360 r
= sd_event_add_post(m
->event
, NULL
, manager_dirty_handler
, m
);
1364 r
= manager_connect_rtnl(m
);
1368 r
= manager_connect_genl(m
);
1372 r
= manager_connect_udev(m
);
1376 LIST_HEAD_INIT(m
->networks
);
1378 r
= sd_resolve_default(&m
->resolve
);
1382 r
= sd_resolve_attach_event(m
->resolve
, m
->event
, 0);
1386 r
= setup_default_address_pool(m
);
1390 m
->duid
.type
= DUID_TYPE_EN
;
1392 (void) routing_policy_load_rules(m
->state_file
, &m
->rules_saved
);
1399 void manager_free(Manager
*m
) {
1407 free(m
->state_file
);
1409 sd_netlink_unref(m
->rtnl
);
1410 sd_netlink_unref(m
->genl
);
1411 sd_resolve_unref(m
->resolve
);
1413 while ((network
= m
->networks
))
1414 network_free(network
);
1416 while ((link
= hashmap_first(m
->dhcp6_prefixes
)))
1417 manager_dhcp6_prefix_remove_all(m
, link
);
1418 hashmap_free(m
->dhcp6_prefixes
);
1420 while ((link
= hashmap_steal_first(m
->links
))) {
1421 if (link
->dhcp6_client
)
1422 (void) dhcp6_lease_pd_prefix_lost(link
->dhcp6_client
, link
);
1426 m
->dirty_links
= set_free_with_destructor(m
->dirty_links
, link_unref
);
1427 m
->links
= hashmap_free(m
->links
);
1428 m
->links_requesting_uuid
= set_free(m
->links_requesting_uuid
);
1429 set_free(m
->duids_requesting_uuid
);
1431 hashmap_free(m
->networks_by_name
);
1433 m
->netdevs
= hashmap_free_with_destructor(m
->netdevs
, netdev_unref
);
1435 while ((pool
= m
->address_pools
))
1436 address_pool_free(pool
);
1438 /* routing_policy_rule_free() access m->rules and m->rules_foreign.
1439 * So, it is necessary to set NULL after the sets are freed. */
1440 m
->rules
= set_free_with_destructor(m
->rules
, routing_policy_rule_free
);
1441 m
->rules_foreign
= set_free_with_destructor(m
->rules_foreign
, routing_policy_rule_free
);
1442 set_free_with_destructor(m
->rules_saved
, routing_policy_rule_free
);
1444 sd_event_unref(m
->event
);
1446 sd_device_monitor_unref(m
->device_monitor
);
1448 sd_bus_unref(m
->bus
);
1450 free(m
->dynamic_timezone
);
1451 free(m
->dynamic_hostname
);
1456 int manager_start(Manager
*m
) {
1462 /* The dirty handler will deal with future serialization, but the first one
1463 must be done explicitly. */
1467 HASHMAP_FOREACH(link
, m
->links
, i
)
1473 int manager_load_config(Manager
*m
) {
1476 /* update timestamp */
1477 paths_check_timestamp(network_dirs
, &m
->network_dirs_ts_usec
, true);
1483 r
= network_load(m
);
1490 bool manager_should_reload(Manager
*m
) {
1491 return paths_check_timestamp(network_dirs
, &m
->network_dirs_ts_usec
, false);
1494 int manager_rtnl_enumerate_links(Manager
*m
) {
1495 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
, *reply
= NULL
;
1496 sd_netlink_message
*link
;
1502 r
= sd_rtnl_message_new_link(m
->rtnl
, &req
, RTM_GETLINK
, 0);
1506 r
= sd_netlink_message_request_dump(req
, true);
1510 r
= sd_netlink_call(m
->rtnl
, req
, 0, &reply
);
1514 for (link
= reply
; link
; link
= sd_netlink_message_next(link
)) {
1517 m
->enumerating
= true;
1519 k
= manager_rtnl_process_link(m
->rtnl
, link
, m
);
1523 m
->enumerating
= false;
1529 int manager_rtnl_enumerate_addresses(Manager
*m
) {
1530 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
, *reply
= NULL
;
1531 sd_netlink_message
*addr
;
1537 r
= sd_rtnl_message_new_addr(m
->rtnl
, &req
, RTM_GETADDR
, 0, 0);
1541 r
= sd_netlink_message_request_dump(req
, true);
1545 r
= sd_netlink_call(m
->rtnl
, req
, 0, &reply
);
1549 for (addr
= reply
; addr
; addr
= sd_netlink_message_next(addr
)) {
1552 m
->enumerating
= true;
1554 k
= manager_rtnl_process_address(m
->rtnl
, addr
, m
);
1558 m
->enumerating
= false;
1564 int manager_rtnl_enumerate_routes(Manager
*m
) {
1565 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
, *reply
= NULL
;
1566 sd_netlink_message
*route
;
1572 r
= sd_rtnl_message_new_route(m
->rtnl
, &req
, RTM_GETROUTE
, 0, 0);
1576 r
= sd_netlink_message_request_dump(req
, true);
1580 r
= sd_netlink_call(m
->rtnl
, req
, 0, &reply
);
1584 for (route
= reply
; route
; route
= sd_netlink_message_next(route
)) {
1587 m
->enumerating
= true;
1589 k
= manager_rtnl_process_route(m
->rtnl
, route
, m
);
1593 m
->enumerating
= false;
1599 int manager_rtnl_enumerate_rules(Manager
*m
) {
1600 _cleanup_(sd_netlink_message_unrefp
) sd_netlink_message
*req
= NULL
, *reply
= NULL
;
1601 sd_netlink_message
*rule
;
1607 r
= sd_rtnl_message_new_routing_policy_rule(m
->rtnl
, &req
, RTM_GETRULE
, 0);
1611 r
= sd_netlink_message_request_dump(req
, true);
1615 r
= sd_netlink_call(m
->rtnl
, req
, 0, &reply
);
1617 if (r
== -EOPNOTSUPP
) {
1618 log_debug("FIB Rules are not supported by the kernel. Ignoring.");
1625 for (rule
= reply
; rule
; rule
= sd_netlink_message_next(rule
)) {
1628 m
->enumerating
= true;
1630 k
= manager_rtnl_process_rule(m
->rtnl
, rule
, m
);
1634 m
->enumerating
= false;
1640 int manager_address_pool_acquire(Manager
*m
, int family
, unsigned prefixlen
, union in_addr_union
*found
) {
1645 assert(prefixlen
> 0);
1648 LIST_FOREACH(address_pools
, p
, m
->address_pools
) {
1649 if (p
->family
!= family
)
1652 r
= address_pool_acquire(p
, prefixlen
, found
);
1660 Link
* manager_find_uplink(Manager
*m
, Link
*exclude
) {
1661 _cleanup_free_
struct local_address
*gateways
= NULL
;
1666 /* Looks for a suitable "uplink", via black magic: an
1667 * interface that is up and where the default route with the
1668 * highest priority points to. */
1670 n
= local_gateways(m
->rtnl
, 0, AF_UNSPEC
, &gateways
);
1672 log_warning_errno(n
, "Failed to determine list of default gateways: %m");
1676 for (i
= 0; i
< n
; i
++) {
1679 link
= hashmap_get(m
->links
, INT_TO_PTR(gateways
[i
].ifindex
));
1681 log_debug("Weird, found a gateway for a link we don't know. Ignoring.");
1685 if (link
== exclude
)
1688 if (link
->operstate
< LINK_OPERSTATE_ROUTABLE
)
1697 void manager_dirty(Manager
*manager
) {
1700 /* the serialized state in /run is no longer up-to-date */
1701 manager
->dirty
= true;
1704 static int set_hostname_handler(sd_bus_message
*m
, void *userdata
, sd_bus_error
*ret_error
) {
1705 Manager
*manager
= userdata
;
1706 const sd_bus_error
*e
;
1711 e
= sd_bus_message_get_error(m
);
1713 log_warning_errno(sd_bus_error_get_errno(e
), "Could not set hostname: %s", e
->message
);
1718 int manager_set_hostname(Manager
*m
, const char *hostname
) {
1721 log_debug("Setting transient hostname: '%s'", strna(hostname
));
1723 if (free_and_strdup(&m
->dynamic_hostname
, hostname
) < 0)
1726 if (!m
->bus
|| sd_bus_is_ready(m
->bus
) <= 0) {
1727 log_debug("Not connected to system bus, setting hostname later.");
1731 r
= sd_bus_call_method_async(
1734 "org.freedesktop.hostname1",
1735 "/org/freedesktop/hostname1",
1736 "org.freedesktop.hostname1",
1738 set_hostname_handler
,
1745 return log_error_errno(r
, "Could not set transient hostname: %m");
1750 static int set_timezone_handler(sd_bus_message
*m
, void *userdata
, sd_bus_error
*ret_error
) {
1751 Manager
*manager
= userdata
;
1752 const sd_bus_error
*e
;
1757 e
= sd_bus_message_get_error(m
);
1759 log_warning_errno(sd_bus_error_get_errno(e
), "Could not set timezone: %s", e
->message
);
1764 int manager_set_timezone(Manager
*m
, const char *tz
) {
1770 log_debug("Setting system timezone: '%s'", tz
);
1771 if (free_and_strdup(&m
->dynamic_timezone
, tz
) < 0)
1774 if (!m
->bus
|| sd_bus_is_ready(m
->bus
) <= 0) {
1775 log_debug("Not connected to system bus, setting timezone later.");
1779 r
= sd_bus_call_method_async(
1782 "org.freedesktop.timedate1",
1783 "/org/freedesktop/timedate1",
1784 "org.freedesktop.timedate1",
1786 set_timezone_handler
,
1792 return log_error_errno(r
, "Could not set timezone: %m");
1797 int manager_request_product_uuid(Manager
*m
, Link
*link
) {
1802 if (m
->has_product_uuid
)
1805 log_debug("Requesting product UUID");
1810 assert_se(duid
= link_get_duid(link
));
1812 r
= set_ensure_allocated(&m
->links_requesting_uuid
, NULL
);
1816 r
= set_ensure_allocated(&m
->duids_requesting_uuid
, NULL
);
1820 r
= set_put(m
->links_requesting_uuid
, link
);
1824 r
= set_put(m
->duids_requesting_uuid
, duid
);
1829 if (!m
->bus
|| sd_bus_is_ready(m
->bus
) <= 0) {
1830 log_debug("Not connected to system bus, requesting product UUID later.");
1834 r
= sd_bus_call_method_async(
1837 "org.freedesktop.hostname1",
1838 "/org/freedesktop/hostname1",
1839 "org.freedesktop.hostname1",
1841 get_product_uuid_handler
,
1846 return log_warning_errno(r
, "Failed to get product UUID: %m");