5b8f98e2510a4b9b24361dd4838ba1cd87454534
[strongswan.git] / src / frontends / osx / charon-xpc / charon-xpc.c
1 /*
2 * Copyright (C) 2013 Martin Willi
3 * Copyright (C) 2013 revosec AG
4 *
5 * This program is free software; you can redistribute it and/or modify it
6 * under the terms of the GNU General Public License as published by the
7 * Free Software Foundation; either version 2 of the License, or (at your
8 * option) any later version. See <http://www.fsf.org/copyleft/gpl.txt>.
9 *
10 * This program is distributed in the hope that it will be useful, but
11 * WITHOUT ANY WARRANTY; without even the implied warranty of MERCHANTABILITY
12 * or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public License
13 * for more details.
14 */
15
16 #include <sys/types.h>
17 #include <sys/utsname.h>
18 #include <unistd.h>
19 #include <stdio.h>
20 #include <signal.h>
21 #include <pthread.h>
22 #include <errno.h>
23
24 #include <library.h>
25 #include <hydra.h>
26 #include <daemon.h>
27 #include <threading/thread.h>
28 #include <utils/backtrace.h>
29
30 #include "xpc_dispatch.h"
31
32 /**
33 * XPC dispatcher class
34 */
35 static xpc_dispatch_t *dispatcher;
36
37 /**
38 * atexit() cleanup for dispatcher
39 */
40 void dispatcher_cleanup()
41 {
42 DESTROY_IF(dispatcher);
43 }
44
45 /**
46 * Loglevel configuration
47 */
48 static level_t levels[DBG_MAX];
49
50 /**
51 * hook in library for debugging messages
52 */
53 extern void (*dbg) (debug_t group, level_t level, char *fmt, ...);
54
55 /**
56 * Logging hook for library logs, using stderr output
57 */
58 static void dbg_stderr(debug_t group, level_t level, char *fmt, ...)
59 {
60 va_list args;
61
62 if (level <= 1)
63 {
64 va_start(args, fmt);
65 fprintf(stderr, "00[%N] ", debug_names, group);
66 vfprintf(stderr, fmt, args);
67 fprintf(stderr, "\n");
68 va_end(args);
69 }
70 }
71
72 /**
73 * Run the daemon and handle unix signals
74 */
75 static int run()
76 {
77 sigset_t set;
78
79 sigemptyset(&set);
80 sigaddset(&set, SIGINT);
81 sigaddset(&set, SIGTERM);
82 sigprocmask(SIG_BLOCK, &set, NULL);
83
84 while (TRUE)
85 {
86 int sig;
87
88 sig = sigwaitinfo(&set, NULL);
89 if (sig == -1)
90 {
91 DBG1(DBG_DMN, "waiting for signal failed: %s", strerror(errno));
92 return 1;
93 }
94 switch (sig)
95 {
96 case SIGINT:
97 DBG1(DBG_DMN, "signal of type SIGINT received. Shutting down");
98 charon->bus->alert(charon->bus, ALERT_SHUTDOWN_SIGNAL, sig);
99 return 0;
100 case SIGTERM:
101 DBG1(DBG_DMN, "signal of type SIGTERM received. Shutting down");
102 charon->bus->alert(charon->bus, ALERT_SHUTDOWN_SIGNAL, sig);
103 return 0;
104 default:
105 DBG1(DBG_DMN, "unknown signal %d received. Ignored", sig);
106 break;
107 }
108 }
109 }
110
111 /**
112 * Handle SIGSEGV/SIGILL signals raised by threads
113 */
114 static void segv_handler(int signal)
115 {
116 backtrace_t *backtrace;
117
118 DBG1(DBG_DMN, "thread %u received %d", thread_current_id(), signal);
119 backtrace = backtrace_create(2);
120 backtrace->log(backtrace, NULL, TRUE);
121 backtrace->destroy(backtrace);
122
123 DBG1(DBG_DMN, "killing ourself, received critical signal");
124 abort();
125 }
126
127 /**
128 * PF_ROUTE for some reason does not send an event for the first address
129 * installed after a fresh boot. Fix this by installing a fake tun address
130 * just to remove it afterwards.
131 */
132 static void fixup_pf_route()
133 {
134 tun_device_t *tun;
135 host_t *host;
136
137 tun = tun_device_create(NULL);
138 if (tun)
139 {
140 if (tun->up(tun))
141 {
142 host = host_create_from_string("127.0.0.99", 0);
143 tun->set_address(tun, host, 32);
144 host->destroy(host);
145 }
146 tun->destroy(tun);
147 }
148 }
149
150 /**
151 * Main function, starts the daemon.
152 */
153 int main(int argc, char *argv[])
154 {
155 struct sigaction action;
156 struct utsname utsname;
157 int group;
158
159 dbg = dbg_stderr;
160 atexit(library_deinit);
161 if (!library_init(NULL, "charon-xpc"))
162 {
163 exit(SS_RC_LIBSTRONGSWAN_INTEGRITY);
164 }
165 if (lib->integrity)
166 {
167 if (!lib->integrity->check_file(lib->integrity, "charon-xpc", argv[0]))
168 {
169 exit(SS_RC_DAEMON_INTEGRITY);
170 }
171 }
172 atexit(libhydra_deinit);
173 if (!libhydra_init())
174 {
175 exit(SS_RC_INITIALIZATION_FAILED);
176 }
177 atexit(libcharon_deinit);
178 if (!libcharon_init())
179 {
180 exit(SS_RC_INITIALIZATION_FAILED);
181 }
182 for (group = 0; group < DBG_MAX; group++)
183 {
184 levels[group] = LEVEL_CTRL;
185 }
186 charon->load_loggers(charon, levels, TRUE);
187
188 lib->settings->set_default_str(lib->settings, "charon-xpc.port", "0");
189 lib->settings->set_default_str(lib->settings, "charon-xpc.port_nat_t", "0");
190 lib->settings->set_default_str(lib->settings,
191 "charon-xpc.close_ike_on_child_failure", "yes");
192 lib->settings->set_default_str(lib->settings,
193 "charon-xpc.plugins.osx-attr.append", "no");
194 if (!charon->initialize(charon,
195 lib->settings->get_str(lib->settings, "charon-xpc.load",
196 "nonce pkcs1 openssl keychain ctr ccm gcm kernel-libipsec "
197 "kernel-pfroute socket-default eap-identity eap-mschapv2 "
198 "eap-md5 xauth-generic osx-attr")))
199 {
200 exit(SS_RC_INITIALIZATION_FAILED);
201 }
202
203 if (uname(&utsname) != 0)
204 {
205 memset(&utsname, 0, sizeof(utsname));
206 }
207 DBG1(DBG_DMN, "Starting charon-xpc IKE daemon (strongSwan %s, %s %s, %s)",
208 VERSION, utsname.sysname, utsname.release, utsname.machine);
209
210 /* add handler for SEGV and ILL,
211 * INT, TERM and HUP are handled by sigwaitinfo() in run() */
212 action.sa_handler = segv_handler;
213 action.sa_flags = 0;
214 sigemptyset(&action.sa_mask);
215 sigaddset(&action.sa_mask, SIGINT);
216 sigaddset(&action.sa_mask, SIGTERM);
217 sigaddset(&action.sa_mask, SIGHUP);
218 sigaction(SIGSEGV, &action, NULL);
219 sigaction(SIGILL, &action, NULL);
220 sigaction(SIGBUS, &action, NULL);
221 action.sa_handler = SIG_IGN;
222 sigaction(SIGPIPE, &action, NULL);
223
224 pthread_sigmask(SIG_SETMASK, &action.sa_mask, NULL);
225
226 dispatcher = xpc_dispatch_create();
227 if (!dispatcher)
228 {
229 exit(SS_RC_INITIALIZATION_FAILED);
230 }
231 atexit(dispatcher_cleanup);
232
233 charon->start(charon);
234 fixup_pf_route();
235 return run();
236 }