]> git.ipfire.org Git - thirdparty/systemd.git/blob - src/run/run.c
Merge pull request #4548 from keszybz/seccomp-help
[thirdparty/systemd.git] / src / run / run.c
1 /***
2 This file is part of systemd.
3
4 Copyright 2013 Lennart Poettering
5
6 systemd is free software; you can redistribute it and/or modify it
7 under the terms of the GNU Lesser General Public License as published by
8 the Free Software Foundation; either version 2.1 of the License, or
9 (at your option) any later version.
10
11 systemd is distributed in the hope that it will be useful, but
12 WITHOUT ANY WARRANTY; without even the implied warranty of
13 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
14 Lesser General Public License for more details.
15
16 You should have received a copy of the GNU Lesser General Public License
17 along with systemd; If not, see <http://www.gnu.org/licenses/>.
18 ***/
19
20 #include <getopt.h>
21 #include <stdio.h>
22
23 #include "sd-bus.h"
24 #include "sd-event.h"
25
26 #include "alloc-util.h"
27 #include "bus-error.h"
28 #include "bus-unit-util.h"
29 #include "bus-util.h"
30 #include "calendarspec.h"
31 #include "env-util.h"
32 #include "fd-util.h"
33 #include "formats-util.h"
34 #include "parse-util.h"
35 #include "path-util.h"
36 #include "process-util.h"
37 #include "ptyfwd.h"
38 #include "signal-util.h"
39 #include "spawn-polkit-agent.h"
40 #include "strv.h"
41 #include "terminal-util.h"
42 #include "unit-name.h"
43 #include "user-util.h"
44
45 static bool arg_ask_password = true;
46 static bool arg_scope = false;
47 static bool arg_remain_after_exit = false;
48 static bool arg_no_block = false;
49 static bool arg_wait = false;
50 static const char *arg_unit = NULL;
51 static const char *arg_description = NULL;
52 static const char *arg_slice = NULL;
53 static bool arg_send_sighup = false;
54 static BusTransport arg_transport = BUS_TRANSPORT_LOCAL;
55 static const char *arg_host = NULL;
56 static bool arg_user = false;
57 static const char *arg_service_type = NULL;
58 static const char *arg_exec_user = NULL;
59 static const char *arg_exec_group = NULL;
60 static int arg_nice = 0;
61 static bool arg_nice_set = false;
62 static char **arg_environment = NULL;
63 static char **arg_property = NULL;
64 static bool arg_pty = false;
65 static usec_t arg_on_active = 0;
66 static usec_t arg_on_boot = 0;
67 static usec_t arg_on_startup = 0;
68 static usec_t arg_on_unit_active = 0;
69 static usec_t arg_on_unit_inactive = 0;
70 static const char *arg_on_calendar = NULL;
71 static char **arg_timer_property = NULL;
72 static bool arg_quiet = false;
73
74 static void polkit_agent_open_if_enabled(void) {
75
76 /* Open the polkit agent as a child process if necessary */
77 if (!arg_ask_password)
78 return;
79
80 if (arg_transport != BUS_TRANSPORT_LOCAL)
81 return;
82
83 polkit_agent_open();
84 }
85
86 static void help(void) {
87 printf("%s [OPTIONS...] {COMMAND} [ARGS...]\n\n"
88 "Run the specified command in a transient scope or service.\n\n"
89 " -h --help Show this help\n"
90 " --version Show package version\n"
91 " --no-ask-password Do not prompt for password\n"
92 " --user Run as user unit\n"
93 " -H --host=[USER@]HOST Operate on remote host\n"
94 " -M --machine=CONTAINER Operate on local container\n"
95 " --scope Run this as scope rather than service\n"
96 " --unit=UNIT Run under the specified unit name\n"
97 " -p --property=NAME=VALUE Set service or scope unit property\n"
98 " --description=TEXT Description for unit\n"
99 " --slice=SLICE Run in the specified slice\n"
100 " --no-block Do not wait until operation finished\n"
101 " -r --remain-after-exit Leave service around until explicitly stopped\n"
102 " --wait Wait until service stopped again\n"
103 " --send-sighup Send SIGHUP when terminating\n"
104 " --service-type=TYPE Service type\n"
105 " --uid=USER Run as system user\n"
106 " --gid=GROUP Run as system group\n"
107 " --nice=NICE Nice level\n"
108 " -E --setenv=NAME=VALUE Set environment\n"
109 " -t --pty Run service on pseudo tty\n"
110 " -q --quiet Suppress information messages during runtime\n\n"
111 "Timer options:\n"
112 " --on-active=SECONDS Run after SECONDS delay\n"
113 " --on-boot=SECONDS Run SECONDS after machine was booted up\n"
114 " --on-startup=SECONDS Run SECONDS after systemd activation\n"
115 " --on-unit-active=SECONDS Run SECONDS after the last activation\n"
116 " --on-unit-inactive=SECONDS Run SECONDS after the last deactivation\n"
117 " --on-calendar=SPEC Realtime timer\n"
118 " --timer-property=NAME=VALUE Set timer unit property\n"
119 , program_invocation_short_name);
120 }
121
122 static bool with_timer(void) {
123 return arg_on_active || arg_on_boot || arg_on_startup || arg_on_unit_active || arg_on_unit_inactive || arg_on_calendar;
124 }
125
126 static int parse_argv(int argc, char *argv[]) {
127
128 enum {
129 ARG_VERSION = 0x100,
130 ARG_USER,
131 ARG_SYSTEM,
132 ARG_SCOPE,
133 ARG_UNIT,
134 ARG_DESCRIPTION,
135 ARG_SLICE,
136 ARG_SEND_SIGHUP,
137 ARG_SERVICE_TYPE,
138 ARG_EXEC_USER,
139 ARG_EXEC_GROUP,
140 ARG_NICE,
141 ARG_ON_ACTIVE,
142 ARG_ON_BOOT,
143 ARG_ON_STARTUP,
144 ARG_ON_UNIT_ACTIVE,
145 ARG_ON_UNIT_INACTIVE,
146 ARG_ON_CALENDAR,
147 ARG_TIMER_PROPERTY,
148 ARG_NO_BLOCK,
149 ARG_NO_ASK_PASSWORD,
150 ARG_WAIT,
151 };
152
153 static const struct option options[] = {
154 { "help", no_argument, NULL, 'h' },
155 { "version", no_argument, NULL, ARG_VERSION },
156 { "user", no_argument, NULL, ARG_USER },
157 { "system", no_argument, NULL, ARG_SYSTEM },
158 { "scope", no_argument, NULL, ARG_SCOPE },
159 { "unit", required_argument, NULL, ARG_UNIT },
160 { "description", required_argument, NULL, ARG_DESCRIPTION },
161 { "slice", required_argument, NULL, ARG_SLICE },
162 { "remain-after-exit", no_argument, NULL, 'r' },
163 { "send-sighup", no_argument, NULL, ARG_SEND_SIGHUP },
164 { "host", required_argument, NULL, 'H' },
165 { "machine", required_argument, NULL, 'M' },
166 { "service-type", required_argument, NULL, ARG_SERVICE_TYPE },
167 { "wait", no_argument, NULL, ARG_WAIT },
168 { "uid", required_argument, NULL, ARG_EXEC_USER },
169 { "gid", required_argument, NULL, ARG_EXEC_GROUP },
170 { "nice", required_argument, NULL, ARG_NICE },
171 { "setenv", required_argument, NULL, 'E' },
172 { "property", required_argument, NULL, 'p' },
173 { "tty", no_argument, NULL, 't' }, /* deprecated */
174 { "pty", no_argument, NULL, 't' },
175 { "quiet", no_argument, NULL, 'q' },
176 { "on-active", required_argument, NULL, ARG_ON_ACTIVE },
177 { "on-boot", required_argument, NULL, ARG_ON_BOOT },
178 { "on-startup", required_argument, NULL, ARG_ON_STARTUP },
179 { "on-unit-active", required_argument, NULL, ARG_ON_UNIT_ACTIVE },
180 { "on-unit-inactive", required_argument, NULL, ARG_ON_UNIT_INACTIVE },
181 { "on-calendar", required_argument, NULL, ARG_ON_CALENDAR },
182 { "timer-property", required_argument, NULL, ARG_TIMER_PROPERTY },
183 { "no-block", no_argument, NULL, ARG_NO_BLOCK },
184 { "no-ask-password", no_argument, NULL, ARG_NO_ASK_PASSWORD },
185 {},
186 };
187
188 int r, c;
189
190 assert(argc >= 0);
191 assert(argv);
192
193 while ((c = getopt_long(argc, argv, "+hrH:M:E:p:tq", options, NULL)) >= 0)
194
195 switch (c) {
196
197 case 'h':
198 help();
199 return 0;
200
201 case ARG_VERSION:
202 return version();
203
204 case ARG_NO_ASK_PASSWORD:
205 arg_ask_password = false;
206 break;
207
208 case ARG_USER:
209 arg_user = true;
210 break;
211
212 case ARG_SYSTEM:
213 arg_user = false;
214 break;
215
216 case ARG_SCOPE:
217 arg_scope = true;
218 break;
219
220 case ARG_UNIT:
221 arg_unit = optarg;
222 break;
223
224 case ARG_DESCRIPTION:
225 arg_description = optarg;
226 break;
227
228 case ARG_SLICE:
229 arg_slice = optarg;
230 break;
231
232 case ARG_SEND_SIGHUP:
233 arg_send_sighup = true;
234 break;
235
236 case 'r':
237 arg_remain_after_exit = true;
238 break;
239
240 case 'H':
241 arg_transport = BUS_TRANSPORT_REMOTE;
242 arg_host = optarg;
243 break;
244
245 case 'M':
246 arg_transport = BUS_TRANSPORT_MACHINE;
247 arg_host = optarg;
248 break;
249
250 case ARG_SERVICE_TYPE:
251 arg_service_type = optarg;
252 break;
253
254 case ARG_EXEC_USER:
255 arg_exec_user = optarg;
256 break;
257
258 case ARG_EXEC_GROUP:
259 arg_exec_group = optarg;
260 break;
261
262 case ARG_NICE:
263 r = parse_nice(optarg, &arg_nice);
264 if (r < 0)
265 return log_error_errno(r, "Failed to parse nice value: %s", optarg);
266
267 arg_nice_set = true;
268 break;
269
270 case 'E':
271 if (strv_extend(&arg_environment, optarg) < 0)
272 return log_oom();
273
274 break;
275
276 case 'p':
277 if (strv_extend(&arg_property, optarg) < 0)
278 return log_oom();
279
280 break;
281
282 case 't':
283 arg_pty = true;
284 break;
285
286 case 'q':
287 arg_quiet = true;
288 break;
289
290 case ARG_ON_ACTIVE:
291
292 r = parse_sec(optarg, &arg_on_active);
293 if (r < 0) {
294 log_error("Failed to parse timer value: %s", optarg);
295 return r;
296 }
297
298 break;
299
300 case ARG_ON_BOOT:
301
302 r = parse_sec(optarg, &arg_on_boot);
303 if (r < 0) {
304 log_error("Failed to parse timer value: %s", optarg);
305 return r;
306 }
307
308 break;
309
310 case ARG_ON_STARTUP:
311
312 r = parse_sec(optarg, &arg_on_startup);
313 if (r < 0) {
314 log_error("Failed to parse timer value: %s", optarg);
315 return r;
316 }
317
318 break;
319
320 case ARG_ON_UNIT_ACTIVE:
321
322 r = parse_sec(optarg, &arg_on_unit_active);
323 if (r < 0) {
324 log_error("Failed to parse timer value: %s", optarg);
325 return r;
326 }
327
328 break;
329
330 case ARG_ON_UNIT_INACTIVE:
331
332 r = parse_sec(optarg, &arg_on_unit_inactive);
333 if (r < 0) {
334 log_error("Failed to parse timer value: %s", optarg);
335 return r;
336 }
337
338 break;
339
340 case ARG_ON_CALENDAR: {
341 CalendarSpec *spec = NULL;
342
343 r = calendar_spec_from_string(optarg, &spec);
344 if (r < 0) {
345 log_error("Invalid calendar spec: %s", optarg);
346 return r;
347 }
348
349 calendar_spec_free(spec);
350 arg_on_calendar = optarg;
351 break;
352 }
353
354 case ARG_TIMER_PROPERTY:
355
356 if (strv_extend(&arg_timer_property, optarg) < 0)
357 return log_oom();
358
359 break;
360
361 case ARG_NO_BLOCK:
362 arg_no_block = true;
363 break;
364
365 case ARG_WAIT:
366 arg_wait = true;
367 break;
368
369 case '?':
370 return -EINVAL;
371
372 default:
373 assert_not_reached("Unhandled option");
374 }
375
376 if ((optind >= argc) && (!arg_unit || !with_timer())) {
377 log_error("Command line to execute required.");
378 return -EINVAL;
379 }
380
381 if (arg_user && arg_transport != BUS_TRANSPORT_LOCAL) {
382 log_error("Execution in user context is not supported on non-local systems.");
383 return -EINVAL;
384 }
385
386 if (arg_scope && arg_transport != BUS_TRANSPORT_LOCAL) {
387 log_error("Scope execution is not supported on non-local systems.");
388 return -EINVAL;
389 }
390
391 if (arg_scope && (arg_remain_after_exit || arg_service_type)) {
392 log_error("--remain-after-exit and --service-type= are not supported in --scope mode.");
393 return -EINVAL;
394 }
395
396 if (arg_pty && (with_timer() || arg_scope)) {
397 log_error("--pty is not compatible in timer or --scope mode.");
398 return -EINVAL;
399 }
400
401 if (arg_pty && arg_transport == BUS_TRANSPORT_REMOTE) {
402 log_error("--pty is only supported when connecting to the local system or containers.");
403 return -EINVAL;
404 }
405
406 if (arg_scope && with_timer()) {
407 log_error("Timer options are not supported in --scope mode.");
408 return -EINVAL;
409 }
410
411 if (arg_timer_property && !with_timer()) {
412 log_error("--timer-property= has no effect without any other timer options.");
413 return -EINVAL;
414 }
415
416 if (arg_wait) {
417 if (arg_no_block) {
418 log_error("--wait may not be combined with --no-block.");
419 return -EINVAL;
420 }
421
422 if (with_timer()) {
423 log_error("--wait may not be combined with timer operations.");
424 return -EINVAL;
425 }
426
427 if (arg_scope) {
428 log_error("--wait may not be combined with --scope.");
429 return -EINVAL;
430 }
431 }
432
433 return 1;
434 }
435
436 static int transient_unit_set_properties(sd_bus_message *m, char **properties) {
437 int r;
438
439 r = sd_bus_message_append(m, "(sv)", "Description", "s", arg_description);
440 if (r < 0)
441 return r;
442
443 r = bus_append_unit_property_assignment_many(m, properties);
444 if (r < 0)
445 return r;
446
447 return 0;
448 }
449
450 static int transient_cgroup_set_properties(sd_bus_message *m) {
451 int r;
452 assert(m);
453
454 if (!isempty(arg_slice)) {
455 _cleanup_free_ char *slice;
456
457 r = unit_name_mangle_with_suffix(arg_slice, UNIT_NAME_NOGLOB, ".slice", &slice);
458 if (r < 0)
459 return r;
460
461 r = sd_bus_message_append(m, "(sv)", "Slice", "s", slice);
462 if (r < 0)
463 return r;
464 }
465
466 return 0;
467 }
468
469 static int transient_kill_set_properties(sd_bus_message *m) {
470 assert(m);
471
472 if (arg_send_sighup)
473 return sd_bus_message_append(m, "(sv)", "SendSIGHUP", "b", arg_send_sighup);
474 else
475 return 0;
476 }
477
478 static int transient_service_set_properties(sd_bus_message *m, char **argv, const char *pty_path) {
479 int r;
480
481 assert(m);
482
483 r = transient_unit_set_properties(m, arg_property);
484 if (r < 0)
485 return r;
486
487 r = transient_kill_set_properties(m);
488 if (r < 0)
489 return r;
490
491 r = transient_cgroup_set_properties(m);
492 if (r < 0)
493 return r;
494
495 if (arg_wait) {
496 r = sd_bus_message_append(m, "(sv)", "AddRef", "b", 1);
497 if (r < 0)
498 return r;
499 }
500
501 if (arg_remain_after_exit) {
502 r = sd_bus_message_append(m, "(sv)", "RemainAfterExit", "b", arg_remain_after_exit);
503 if (r < 0)
504 return r;
505 }
506
507 if (arg_service_type) {
508 r = sd_bus_message_append(m, "(sv)", "Type", "s", arg_service_type);
509 if (r < 0)
510 return r;
511 }
512
513 if (arg_exec_user) {
514 r = sd_bus_message_append(m, "(sv)", "User", "s", arg_exec_user);
515 if (r < 0)
516 return r;
517 }
518
519 if (arg_exec_group) {
520 r = sd_bus_message_append(m, "(sv)", "Group", "s", arg_exec_group);
521 if (r < 0)
522 return r;
523 }
524
525 if (arg_nice_set) {
526 r = sd_bus_message_append(m, "(sv)", "Nice", "i", arg_nice);
527 if (r < 0)
528 return r;
529 }
530
531 if (pty_path) {
532 const char *e;
533
534 r = sd_bus_message_append(m,
535 "(sv)(sv)(sv)(sv)",
536 "StandardInput", "s", "tty",
537 "StandardOutput", "s", "tty",
538 "StandardError", "s", "tty",
539 "TTYPath", "s", pty_path);
540 if (r < 0)
541 return r;
542
543 e = getenv("TERM");
544 if (e) {
545 char *n;
546
547 n = strjoina("TERM=", e);
548 r = sd_bus_message_append(m,
549 "(sv)",
550 "Environment", "as", 1, n);
551 if (r < 0)
552 return r;
553 }
554 }
555
556 if (!strv_isempty(arg_environment)) {
557 r = sd_bus_message_open_container(m, 'r', "sv");
558 if (r < 0)
559 return r;
560
561 r = sd_bus_message_append(m, "s", "Environment");
562 if (r < 0)
563 return r;
564
565 r = sd_bus_message_open_container(m, 'v', "as");
566 if (r < 0)
567 return r;
568
569 r = sd_bus_message_append_strv(m, arg_environment);
570 if (r < 0)
571 return r;
572
573 r = sd_bus_message_close_container(m);
574 if (r < 0)
575 return r;
576
577 r = sd_bus_message_close_container(m);
578 if (r < 0)
579 return r;
580 }
581
582 /* Exec container */
583 {
584 r = sd_bus_message_open_container(m, 'r', "sv");
585 if (r < 0)
586 return r;
587
588 r = sd_bus_message_append(m, "s", "ExecStart");
589 if (r < 0)
590 return r;
591
592 r = sd_bus_message_open_container(m, 'v', "a(sasb)");
593 if (r < 0)
594 return r;
595
596 r = sd_bus_message_open_container(m, 'a', "(sasb)");
597 if (r < 0)
598 return r;
599
600 r = sd_bus_message_open_container(m, 'r', "sasb");
601 if (r < 0)
602 return r;
603
604 r = sd_bus_message_append(m, "s", argv[0]);
605 if (r < 0)
606 return r;
607
608 r = sd_bus_message_append_strv(m, argv);
609 if (r < 0)
610 return r;
611
612 r = sd_bus_message_append(m, "b", false);
613 if (r < 0)
614 return r;
615
616 r = sd_bus_message_close_container(m);
617 if (r < 0)
618 return r;
619
620 r = sd_bus_message_close_container(m);
621 if (r < 0)
622 return r;
623
624 r = sd_bus_message_close_container(m);
625 if (r < 0)
626 return r;
627
628 r = sd_bus_message_close_container(m);
629 if (r < 0)
630 return r;
631 }
632
633 return 0;
634 }
635
636 static int transient_scope_set_properties(sd_bus_message *m) {
637 int r;
638
639 assert(m);
640
641 r = transient_unit_set_properties(m, arg_property);
642 if (r < 0)
643 return r;
644
645 r = transient_kill_set_properties(m);
646 if (r < 0)
647 return r;
648
649 r = transient_cgroup_set_properties(m);
650 if (r < 0)
651 return r;
652
653 r = sd_bus_message_append(m, "(sv)", "PIDs", "au", 1, (uint32_t) getpid());
654 if (r < 0)
655 return r;
656
657 return 0;
658 }
659
660 static int transient_timer_set_properties(sd_bus_message *m) {
661 int r;
662
663 assert(m);
664
665 r = transient_unit_set_properties(m, arg_timer_property);
666 if (r < 0)
667 return r;
668
669 /* Automatically clean up our transient timers */
670 r = sd_bus_message_append(m, "(sv)", "RemainAfterElapse", "b", false);
671 if (r < 0)
672 return r;
673
674 if (arg_on_active) {
675 r = sd_bus_message_append(m, "(sv)", "OnActiveSec", "t", arg_on_active);
676 if (r < 0)
677 return r;
678 }
679
680 if (arg_on_boot) {
681 r = sd_bus_message_append(m, "(sv)", "OnBootSec", "t", arg_on_boot);
682 if (r < 0)
683 return r;
684 }
685
686 if (arg_on_startup) {
687 r = sd_bus_message_append(m, "(sv)", "OnStartupSec", "t", arg_on_startup);
688 if (r < 0)
689 return r;
690 }
691
692 if (arg_on_unit_active) {
693 r = sd_bus_message_append(m, "(sv)", "OnUnitActiveSec", "t", arg_on_unit_active);
694 if (r < 0)
695 return r;
696 }
697
698 if (arg_on_unit_inactive) {
699 r = sd_bus_message_append(m, "(sv)", "OnUnitInactiveSec", "t", arg_on_unit_inactive);
700 if (r < 0)
701 return r;
702 }
703
704 if (arg_on_calendar) {
705 r = sd_bus_message_append(m, "(sv)", "OnCalendar", "s", arg_on_calendar);
706 if (r < 0)
707 return r;
708 }
709
710 return 0;
711 }
712
713 static int make_unit_name(sd_bus *bus, UnitType t, char **ret) {
714 const char *unique, *id;
715 char *p;
716 int r;
717
718 assert(bus);
719 assert(t >= 0);
720 assert(t < _UNIT_TYPE_MAX);
721
722 r = sd_bus_get_unique_name(bus, &unique);
723 if (r < 0) {
724 sd_id128_t rnd;
725
726 /* We couldn't get the unique name, which is a pretty
727 * common case if we are connected to systemd
728 * directly. In that case, just pick a random uuid as
729 * name */
730
731 r = sd_id128_randomize(&rnd);
732 if (r < 0)
733 return log_error_errno(r, "Failed to generate random run unit name: %m");
734
735 if (asprintf(ret, "run-r" SD_ID128_FORMAT_STR ".%s", SD_ID128_FORMAT_VAL(rnd), unit_type_to_string(t)) < 0)
736 return log_oom();
737
738 return 0;
739 }
740
741 /* We managed to get the unique name, then let's use that to
742 * name our transient units. */
743
744 id = startswith(unique, ":1.");
745 if (!id) {
746 log_error("Unique name %s has unexpected format.", unique);
747 return -EINVAL;
748 }
749
750 p = strjoin("run-u", id, ".", unit_type_to_string(t));
751 if (!p)
752 return log_oom();
753
754 *ret = p;
755 return 0;
756 }
757
758 typedef struct RunContext {
759 sd_bus *bus;
760 sd_event *event;
761 PTYForward *forward;
762 sd_bus_slot *match;
763
764 /* The exit data of the unit */
765 char *active_state;
766 uint64_t inactive_exit_usec;
767 uint64_t inactive_enter_usec;
768 char *result;
769 uint64_t cpu_usage_nsec;
770 uint32_t exit_code;
771 uint32_t exit_status;
772 } RunContext;
773
774 static void run_context_free(RunContext *c) {
775 assert(c);
776
777 c->forward = pty_forward_free(c->forward);
778 c->match = sd_bus_slot_unref(c->match);
779 c->bus = sd_bus_unref(c->bus);
780 c->event = sd_event_unref(c->event);
781
782 free(c->active_state);
783 free(c->result);
784 }
785
786 static void run_context_check_done(RunContext *c) {
787 bool done = true;
788
789 assert(c);
790
791 if (c->match)
792 done = done && (c->active_state && STR_IN_SET(c->active_state, "inactive", "failed"));
793
794 if (c->forward)
795 done = done && pty_forward_is_done(c->forward);
796
797 if (done)
798 sd_event_exit(c->event, EXIT_SUCCESS);
799 }
800
801 static int on_properties_changed(sd_bus_message *m, void *userdata, sd_bus_error *error) {
802
803 static const struct bus_properties_map map[] = {
804 { "ActiveState", "s", NULL, offsetof(RunContext, active_state) },
805 { "InactiveExitTimestampMonotonic", "t", NULL, offsetof(RunContext, inactive_exit_usec) },
806 { "InactiveEnterTimestampMonotonic", "t", NULL, offsetof(RunContext, inactive_enter_usec) },
807 { "Result", "s", NULL, offsetof(RunContext, result) },
808 { "ExecMainCode", "i", NULL, offsetof(RunContext, exit_code) },
809 { "ExecMainStatus", "i", NULL, offsetof(RunContext, exit_status) },
810 { "CPUUsageNSec", "t", NULL, offsetof(RunContext, cpu_usage_nsec) },
811 {}
812 };
813
814 RunContext *c = userdata;
815 int r;
816
817 r = bus_map_all_properties(c->bus,
818 "org.freedesktop.systemd1",
819 sd_bus_message_get_path(m),
820 map,
821 c);
822 if (r < 0) {
823 sd_event_exit(c->event, EXIT_FAILURE);
824 return log_error_errno(r, "Failed to query unit state: %m");
825 }
826
827 run_context_check_done(c);
828 return 0;
829 }
830
831 static int pty_forward_handler(PTYForward *f, int rcode, void *userdata) {
832 RunContext *c = userdata;
833
834 assert(f);
835
836 if (rcode < 0) {
837 sd_event_exit(c->event, EXIT_FAILURE);
838 return log_error_errno(rcode, "Error on PTY forwarding logic: %m");
839 }
840
841 run_context_check_done(c);
842 return 0;
843 }
844
845 static int start_transient_service(
846 sd_bus *bus,
847 char **argv,
848 int *retval) {
849
850 _cleanup_(sd_bus_message_unrefp) sd_bus_message *m = NULL, *reply = NULL;
851 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
852 _cleanup_(bus_wait_for_jobs_freep) BusWaitForJobs *w = NULL;
853 _cleanup_free_ char *service = NULL, *pty_path = NULL;
854 _cleanup_close_ int master = -1;
855 int r;
856
857 assert(bus);
858 assert(argv);
859 assert(retval);
860
861 if (arg_pty) {
862
863 if (arg_transport == BUS_TRANSPORT_LOCAL) {
864 master = posix_openpt(O_RDWR|O_NOCTTY|O_CLOEXEC|O_NDELAY);
865 if (master < 0)
866 return log_error_errno(errno, "Failed to acquire pseudo tty: %m");
867
868 r = ptsname_malloc(master, &pty_path);
869 if (r < 0)
870 return log_error_errno(r, "Failed to determine tty name: %m");
871
872 if (unlockpt(master) < 0)
873 return log_error_errno(errno, "Failed to unlock tty: %m");
874
875 } else if (arg_transport == BUS_TRANSPORT_MACHINE) {
876 _cleanup_(sd_bus_unrefp) sd_bus *system_bus = NULL;
877 _cleanup_(sd_bus_message_unrefp) sd_bus_message *pty_reply = NULL;
878 const char *s;
879
880 r = sd_bus_default_system(&system_bus);
881 if (r < 0)
882 return log_error_errno(r, "Failed to connect to system bus: %m");
883
884 r = sd_bus_call_method(system_bus,
885 "org.freedesktop.machine1",
886 "/org/freedesktop/machine1",
887 "org.freedesktop.machine1.Manager",
888 "OpenMachinePTY",
889 &error,
890 &pty_reply,
891 "s", arg_host);
892 if (r < 0) {
893 log_error("Failed to get machine PTY: %s", bus_error_message(&error, -r));
894 return r;
895 }
896
897 r = sd_bus_message_read(pty_reply, "hs", &master, &s);
898 if (r < 0)
899 return bus_log_parse_error(r);
900
901 master = fcntl(master, F_DUPFD_CLOEXEC, 3);
902 if (master < 0)
903 return log_error_errno(errno, "Failed to duplicate master fd: %m");
904
905 pty_path = strdup(s);
906 if (!pty_path)
907 return log_oom();
908 } else
909 assert_not_reached("Can't allocate tty via ssh");
910 }
911
912 if (!arg_no_block) {
913 r = bus_wait_for_jobs_new(bus, &w);
914 if (r < 0)
915 return log_error_errno(r, "Could not watch jobs: %m");
916 }
917
918 if (arg_unit) {
919 r = unit_name_mangle_with_suffix(arg_unit, UNIT_NAME_NOGLOB, ".service", &service);
920 if (r < 0)
921 return log_error_errno(r, "Failed to mangle unit name: %m");
922 } else {
923 r = make_unit_name(bus, UNIT_SERVICE, &service);
924 if (r < 0)
925 return r;
926 }
927
928 r = sd_bus_message_new_method_call(
929 bus,
930 &m,
931 "org.freedesktop.systemd1",
932 "/org/freedesktop/systemd1",
933 "org.freedesktop.systemd1.Manager",
934 "StartTransientUnit");
935 if (r < 0)
936 return bus_log_create_error(r);
937
938 r = sd_bus_message_set_allow_interactive_authorization(m, arg_ask_password);
939 if (r < 0)
940 return bus_log_create_error(r);
941
942 /* Name and mode */
943 r = sd_bus_message_append(m, "ss", service, "fail");
944 if (r < 0)
945 return bus_log_create_error(r);
946
947 /* Properties */
948 r = sd_bus_message_open_container(m, 'a', "(sv)");
949 if (r < 0)
950 return bus_log_create_error(r);
951
952 r = transient_service_set_properties(m, argv, pty_path);
953 if (r < 0)
954 return bus_log_create_error(r);
955
956 r = sd_bus_message_close_container(m);
957 if (r < 0)
958 return bus_log_create_error(r);
959
960 /* Auxiliary units */
961 r = sd_bus_message_append(m, "a(sa(sv))", 0);
962 if (r < 0)
963 return bus_log_create_error(r);
964
965 polkit_agent_open_if_enabled();
966
967 r = sd_bus_call(bus, m, 0, &error, &reply);
968 if (r < 0)
969 return log_error_errno(r, "Failed to start transient service unit: %s", bus_error_message(&error, r));
970
971 if (w) {
972 const char *object;
973
974 r = sd_bus_message_read(reply, "o", &object);
975 if (r < 0)
976 return bus_log_parse_error(r);
977
978 r = bus_wait_for_jobs_one(w, object, arg_quiet);
979 if (r < 0)
980 return r;
981 }
982
983 if (!arg_quiet)
984 log_info("Running as unit: %s", service);
985
986 if (arg_wait || master >= 0) {
987 _cleanup_(run_context_free) RunContext c = {};
988
989 c.bus = sd_bus_ref(bus);
990
991 r = sd_event_default(&c.event);
992 if (r < 0)
993 return log_error_errno(r, "Failed to get event loop: %m");
994
995 if (master >= 0) {
996 assert_se(sigprocmask_many(SIG_BLOCK, NULL, SIGWINCH, SIGTERM, SIGINT, -1) >= 0);
997 (void) sd_event_add_signal(c.event, NULL, SIGINT, NULL, NULL);
998 (void) sd_event_add_signal(c.event, NULL, SIGTERM, NULL, NULL);
999
1000 if (!arg_quiet)
1001 log_info("Press ^] three times within 1s to disconnect TTY.");
1002
1003 r = pty_forward_new(c.event, master, PTY_FORWARD_IGNORE_INITIAL_VHANGUP, &c.forward);
1004 if (r < 0)
1005 return log_error_errno(r, "Failed to create PTY forwarder: %m");
1006
1007 pty_forward_set_handler(c.forward, pty_forward_handler, &c);
1008 }
1009
1010 if (arg_wait) {
1011 _cleanup_free_ char *path = NULL;
1012 const char *mt;
1013
1014 path = unit_dbus_path_from_name(service);
1015 if (!path)
1016 return log_oom();
1017
1018 mt = strjoina("type='signal',"
1019 "sender='org.freedesktop.systemd1',"
1020 "path='", path, "',"
1021 "interface='org.freedesktop.DBus.Properties',"
1022 "member='PropertiesChanged'");
1023 r = sd_bus_add_match(bus, &c.match, mt, on_properties_changed, &c);
1024 if (r < 0)
1025 return log_error_errno(r, "Failed to add properties changed signal.");
1026
1027 r = sd_bus_attach_event(bus, c.event, 0);
1028 if (r < 0)
1029 return log_error_errno(r, "Failed to attach bus to event loop.");
1030 }
1031
1032 r = sd_event_loop(c.event);
1033 if (r < 0)
1034 return log_error_errno(r, "Failed to run event loop: %m");
1035
1036 if (c.forward) {
1037 char last_char = 0;
1038
1039 r = pty_forward_get_last_char(c.forward, &last_char);
1040 if (r >= 0 && !arg_quiet && last_char != '\n')
1041 fputc('\n', stdout);
1042 }
1043
1044 if (!arg_quiet) {
1045 if (!isempty(c.result))
1046 log_info("Finished with result: %s", strna(c.result));
1047
1048 if (c.exit_code == CLD_EXITED)
1049 log_info("Main processes terminated with: code=%s/status=%i", sigchld_code_to_string(c.exit_code), c.exit_status);
1050 else if (c.exit_code > 0)
1051 log_info("Main processes terminated with: code=%s/status=%s", sigchld_code_to_string(c.exit_code), signal_to_string(c.exit_status));
1052
1053 if (c.inactive_enter_usec > 0 && c.inactive_enter_usec != USEC_INFINITY &&
1054 c.inactive_exit_usec > 0 && c.inactive_exit_usec != USEC_INFINITY &&
1055 c.inactive_enter_usec > c.inactive_exit_usec) {
1056 char ts[FORMAT_TIMESPAN_MAX];
1057 log_info("Service runtime: %s", format_timespan(ts, sizeof(ts), c.inactive_enter_usec - c.inactive_exit_usec, USEC_PER_MSEC));
1058 }
1059
1060 if (c.cpu_usage_nsec > 0 && c.cpu_usage_nsec != NSEC_INFINITY) {
1061 char ts[FORMAT_TIMESPAN_MAX];
1062 log_info("CPU time consumed: %s", format_timespan(ts, sizeof(ts), (c.cpu_usage_nsec + NSEC_PER_USEC - 1) / NSEC_PER_USEC, USEC_PER_MSEC));
1063 }
1064 }
1065
1066 /* Try to propagate the service's return value */
1067 if (c.result && STR_IN_SET(c.result, "success", "exit-code") && c.exit_code == CLD_EXITED)
1068 *retval = c.exit_status;
1069 else
1070 *retval = EXIT_FAILURE;
1071 }
1072
1073 return 0;
1074 }
1075
1076 static int start_transient_scope(
1077 sd_bus *bus,
1078 char **argv) {
1079
1080 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
1081 _cleanup_(sd_bus_message_unrefp) sd_bus_message *m = NULL, *reply = NULL;
1082 _cleanup_(bus_wait_for_jobs_freep) BusWaitForJobs *w = NULL;
1083 _cleanup_strv_free_ char **env = NULL, **user_env = NULL;
1084 _cleanup_free_ char *scope = NULL;
1085 const char *object = NULL;
1086 int r;
1087
1088 assert(bus);
1089 assert(argv);
1090
1091 r = bus_wait_for_jobs_new(bus, &w);
1092 if (r < 0)
1093 return log_oom();
1094
1095 if (arg_unit) {
1096 r = unit_name_mangle_with_suffix(arg_unit, UNIT_NAME_NOGLOB, ".scope", &scope);
1097 if (r < 0)
1098 return log_error_errno(r, "Failed to mangle scope name: %m");
1099 } else {
1100 r = make_unit_name(bus, UNIT_SCOPE, &scope);
1101 if (r < 0)
1102 return r;
1103 }
1104
1105 r = sd_bus_message_new_method_call(
1106 bus,
1107 &m,
1108 "org.freedesktop.systemd1",
1109 "/org/freedesktop/systemd1",
1110 "org.freedesktop.systemd1.Manager",
1111 "StartTransientUnit");
1112 if (r < 0)
1113 return bus_log_create_error(r);
1114
1115 r = sd_bus_message_set_allow_interactive_authorization(m, arg_ask_password);
1116 if (r < 0)
1117 return bus_log_create_error(r);
1118
1119 /* Name and Mode */
1120 r = sd_bus_message_append(m, "ss", scope, "fail");
1121 if (r < 0)
1122 return bus_log_create_error(r);
1123
1124 /* Properties */
1125 r = sd_bus_message_open_container(m, 'a', "(sv)");
1126 if (r < 0)
1127 return bus_log_create_error(r);
1128
1129 r = transient_scope_set_properties(m);
1130 if (r < 0)
1131 return bus_log_create_error(r);
1132
1133 r = sd_bus_message_close_container(m);
1134 if (r < 0)
1135 return bus_log_create_error(r);
1136
1137 /* Auxiliary units */
1138 r = sd_bus_message_append(m, "a(sa(sv))", 0);
1139 if (r < 0)
1140 return bus_log_create_error(r);
1141
1142 polkit_agent_open_if_enabled();
1143
1144 r = sd_bus_call(bus, m, 0, &error, &reply);
1145 if (r < 0) {
1146 log_error("Failed to start transient scope unit: %s", bus_error_message(&error, -r));
1147 return r;
1148 }
1149
1150 if (arg_nice_set) {
1151 if (setpriority(PRIO_PROCESS, 0, arg_nice) < 0)
1152 return log_error_errno(errno, "Failed to set nice level: %m");
1153 }
1154
1155 if (arg_exec_group) {
1156 gid_t gid;
1157
1158 r = get_group_creds(&arg_exec_group, &gid);
1159 if (r < 0)
1160 return log_error_errno(r, "Failed to resolve group %s: %m", arg_exec_group);
1161
1162 if (setresgid(gid, gid, gid) < 0)
1163 return log_error_errno(errno, "Failed to change GID to " GID_FMT ": %m", gid);
1164 }
1165
1166 if (arg_exec_user) {
1167 const char *home, *shell;
1168 uid_t uid;
1169 gid_t gid;
1170
1171 r = get_user_creds_clean(&arg_exec_user, &uid, &gid, &home, &shell);
1172 if (r < 0)
1173 return log_error_errno(r, "Failed to resolve user %s: %m", arg_exec_user);
1174
1175 if (home) {
1176 r = strv_extendf(&user_env, "HOME=%s", home);
1177 if (r < 0)
1178 return log_oom();
1179 }
1180
1181 if (shell) {
1182 r = strv_extendf(&user_env, "SHELL=%s", shell);
1183 if (r < 0)
1184 return log_oom();
1185 }
1186
1187 r = strv_extendf(&user_env, "USER=%s", arg_exec_user);
1188 if (r < 0)
1189 return log_oom();
1190
1191 r = strv_extendf(&user_env, "LOGNAME=%s", arg_exec_user);
1192 if (r < 0)
1193 return log_oom();
1194
1195 if (!arg_exec_group) {
1196 if (setresgid(gid, gid, gid) < 0)
1197 return log_error_errno(errno, "Failed to change GID to " GID_FMT ": %m", gid);
1198 }
1199
1200 if (setresuid(uid, uid, uid) < 0)
1201 return log_error_errno(errno, "Failed to change UID to " UID_FMT ": %m", uid);
1202 }
1203
1204 env = strv_env_merge(3, environ, user_env, arg_environment);
1205 if (!env)
1206 return log_oom();
1207
1208 r = sd_bus_message_read(reply, "o", &object);
1209 if (r < 0)
1210 return bus_log_parse_error(r);
1211
1212 r = bus_wait_for_jobs_one(w, object, arg_quiet);
1213 if (r < 0)
1214 return r;
1215
1216 if (!arg_quiet)
1217 log_info("Running scope as unit: %s", scope);
1218
1219 execvpe(argv[0], argv, env);
1220
1221 return log_error_errno(errno, "Failed to execute: %m");
1222 }
1223
1224 static int start_transient_timer(
1225 sd_bus *bus,
1226 char **argv) {
1227
1228 _cleanup_(sd_bus_error_free) sd_bus_error error = SD_BUS_ERROR_NULL;
1229 _cleanup_(sd_bus_message_unrefp) sd_bus_message *m = NULL, *reply = NULL;
1230 _cleanup_(bus_wait_for_jobs_freep) BusWaitForJobs *w = NULL;
1231 _cleanup_free_ char *timer = NULL, *service = NULL;
1232 const char *object = NULL;
1233 int r;
1234
1235 assert(bus);
1236 assert(argv);
1237
1238 r = bus_wait_for_jobs_new(bus, &w);
1239 if (r < 0)
1240 return log_oom();
1241
1242 if (arg_unit) {
1243 switch (unit_name_to_type(arg_unit)) {
1244
1245 case UNIT_SERVICE:
1246 service = strdup(arg_unit);
1247 if (!service)
1248 return log_oom();
1249
1250 r = unit_name_change_suffix(service, ".timer", &timer);
1251 if (r < 0)
1252 return log_error_errno(r, "Failed to change unit suffix: %m");
1253 break;
1254
1255 case UNIT_TIMER:
1256 timer = strdup(arg_unit);
1257 if (!timer)
1258 return log_oom();
1259
1260 r = unit_name_change_suffix(timer, ".service", &service);
1261 if (r < 0)
1262 return log_error_errno(r, "Failed to change unit suffix: %m");
1263 break;
1264
1265 default:
1266 r = unit_name_mangle_with_suffix(arg_unit, UNIT_NAME_NOGLOB, ".service", &service);
1267 if (r < 0)
1268 return log_error_errno(r, "Failed to mangle unit name: %m");
1269
1270 r = unit_name_mangle_with_suffix(arg_unit, UNIT_NAME_NOGLOB, ".timer", &timer);
1271 if (r < 0)
1272 return log_error_errno(r, "Failed to mangle unit name: %m");
1273
1274 break;
1275 }
1276 } else {
1277 r = make_unit_name(bus, UNIT_SERVICE, &service);
1278 if (r < 0)
1279 return r;
1280
1281 r = unit_name_change_suffix(service, ".timer", &timer);
1282 if (r < 0)
1283 return log_error_errno(r, "Failed to change unit suffix: %m");
1284 }
1285
1286 r = sd_bus_message_new_method_call(
1287 bus,
1288 &m,
1289 "org.freedesktop.systemd1",
1290 "/org/freedesktop/systemd1",
1291 "org.freedesktop.systemd1.Manager",
1292 "StartTransientUnit");
1293 if (r < 0)
1294 return bus_log_create_error(r);
1295
1296 r = sd_bus_message_set_allow_interactive_authorization(m, arg_ask_password);
1297 if (r < 0)
1298 return bus_log_create_error(r);
1299
1300 /* Name and Mode */
1301 r = sd_bus_message_append(m, "ss", timer, "fail");
1302 if (r < 0)
1303 return bus_log_create_error(r);
1304
1305 /* Properties */
1306 r = sd_bus_message_open_container(m, 'a', "(sv)");
1307 if (r < 0)
1308 return bus_log_create_error(r);
1309
1310 r = transient_timer_set_properties(m);
1311 if (r < 0)
1312 return bus_log_create_error(r);
1313
1314 r = sd_bus_message_close_container(m);
1315 if (r < 0)
1316 return bus_log_create_error(r);
1317
1318 r = sd_bus_message_open_container(m, 'a', "(sa(sv))");
1319 if (r < 0)
1320 return bus_log_create_error(r);
1321
1322 if (!strv_isempty(argv)) {
1323 r = sd_bus_message_open_container(m, 'r', "sa(sv)");
1324 if (r < 0)
1325 return bus_log_create_error(r);
1326
1327 r = sd_bus_message_append(m, "s", service);
1328 if (r < 0)
1329 return bus_log_create_error(r);
1330
1331 r = sd_bus_message_open_container(m, 'a', "(sv)");
1332 if (r < 0)
1333 return bus_log_create_error(r);
1334
1335 r = transient_service_set_properties(m, argv, NULL);
1336 if (r < 0)
1337 return bus_log_create_error(r);
1338
1339 r = sd_bus_message_close_container(m);
1340 if (r < 0)
1341 return bus_log_create_error(r);
1342
1343 r = sd_bus_message_close_container(m);
1344 if (r < 0)
1345 return bus_log_create_error(r);
1346 }
1347
1348 r = sd_bus_message_close_container(m);
1349 if (r < 0)
1350 return bus_log_create_error(r);
1351
1352 polkit_agent_open_if_enabled();
1353
1354 r = sd_bus_call(bus, m, 0, &error, &reply);
1355 if (r < 0) {
1356 log_error("Failed to start transient timer unit: %s", bus_error_message(&error, -r));
1357 return r;
1358 }
1359
1360 r = sd_bus_message_read(reply, "o", &object);
1361 if (r < 0)
1362 return bus_log_parse_error(r);
1363
1364 r = bus_wait_for_jobs_one(w, object, arg_quiet);
1365 if (r < 0)
1366 return r;
1367
1368 if (!arg_quiet) {
1369 log_info("Running timer as unit: %s", timer);
1370 if (argv[0])
1371 log_info("Will run service as unit: %s", service);
1372 }
1373
1374 return 0;
1375 }
1376
1377 int main(int argc, char* argv[]) {
1378 _cleanup_(sd_bus_flush_close_unrefp) sd_bus *bus = NULL;
1379 _cleanup_free_ char *description = NULL, *command = NULL;
1380 int r, retval = EXIT_SUCCESS;
1381
1382 log_parse_environment();
1383 log_open();
1384
1385 r = parse_argv(argc, argv);
1386 if (r <= 0)
1387 goto finish;
1388
1389 if (argc > optind && arg_transport == BUS_TRANSPORT_LOCAL) {
1390 /* Patch in an absolute path */
1391
1392 r = find_binary(argv[optind], &command);
1393 if (r < 0) {
1394 log_error_errno(r, "Failed to find executable %s: %m", argv[optind]);
1395 goto finish;
1396 }
1397
1398 argv[optind] = command;
1399 }
1400
1401 if (!arg_description) {
1402 description = strv_join(argv + optind, " ");
1403 if (!description) {
1404 r = log_oom();
1405 goto finish;
1406 }
1407
1408 if (arg_unit && isempty(description)) {
1409 r = free_and_strdup(&description, arg_unit);
1410 if (r < 0)
1411 goto finish;
1412 }
1413
1414 arg_description = description;
1415 }
1416
1417 /* If --wait is used connect via the bus, unconditionally, as ref/unref is not supported via the limited direct
1418 * connection */
1419 if (arg_wait)
1420 r = bus_connect_transport(arg_transport, arg_host, arg_user, &bus);
1421 else
1422 r = bus_connect_transport_systemd(arg_transport, arg_host, arg_user, &bus);
1423 if (r < 0) {
1424 log_error_errno(r, "Failed to create bus connection: %m");
1425 goto finish;
1426 }
1427
1428 if (arg_scope)
1429 r = start_transient_scope(bus, argv + optind);
1430 else if (with_timer())
1431 r = start_transient_timer(bus, argv + optind);
1432 else
1433 r = start_transient_service(bus, argv + optind, &retval);
1434
1435 finish:
1436 strv_free(arg_environment);
1437 strv_free(arg_property);
1438 strv_free(arg_timer_property);
1439
1440 return r < 0 ? EXIT_FAILURE : retval;
1441 }