blob: f71ec04206b4727c02dba4a613277fbffa7a209a [file] [log] [blame]
Willy Tarreaubaaee002006-06-26 02:48:02 +02001/*
2 * HA-Proxy : High Availability-enabled HTTP/TCP proxy
Willy Tarreaud8498662020-02-13 07:58:50 +01003 * Copyright 2000-2020 Willy Tarreau <willy@haproxy.org>.
Willy Tarreaubaaee002006-06-26 02:48:02 +02004 *
5 * This program is free software; you can redistribute it and/or
6 * modify it under the terms of the GNU General Public License
7 * as published by the Free Software Foundation; either version
8 * 2 of the License, or (at your option) any later version.
9 *
Lukas Tribus23953682017-04-28 13:24:30 +000010 * Please refer to RFC7230 - RFC7235 informations about HTTP protocol, and
11 * RFC6265 for informations about cookies usage. More generally, the IETF HTTP
Willy Tarreaubaaee002006-06-26 02:48:02 +020012 * Working Group's web site should be consulted for protocol related changes :
13 *
14 * http://ftp.ics.uci.edu/pub/ietf/http/
15 *
16 * Pending bugs (may be not fixed because never reproduced) :
17 * - solaris only : sometimes, an HTTP proxy with only a dispatch address causes
18 * the proxy to terminate (no core) if the client breaks the connection during
19 * the response. Seen on 1.1.8pre4, but never reproduced. May not be related to
20 * the snprintf() bug since requests were simple (GET / HTTP/1.0), but may be
21 * related to missing setsid() (fixed in 1.1.15)
22 * - a proxy with an invalid config will prevent the startup even if disabled.
23 *
24 * ChangeLog has moved to the CHANGELOG file.
25 *
Willy Tarreaubaaee002006-06-26 02:48:02 +020026 */
27
David Carlier7ece0962015-12-08 21:43:09 +000028#define _GNU_SOURCE
Willy Tarreaubaaee002006-06-26 02:48:02 +020029#include <stdio.h>
30#include <stdlib.h>
31#include <unistd.h>
32#include <string.h>
33#include <ctype.h>
Maxime de Roucy379d9c72016-05-13 23:52:56 +020034#include <dirent.h>
Maxime de Roucy379d9c72016-05-13 23:52:56 +020035#include <sys/stat.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020036#include <sys/time.h>
37#include <sys/types.h>
38#include <sys/socket.h>
39#include <netinet/tcp.h>
40#include <netinet/in.h>
41#include <arpa/inet.h>
Olivier Houchardf73629d2017-04-05 22:33:04 +020042#include <net/if.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020043#include <netdb.h>
44#include <fcntl.h>
45#include <errno.h>
46#include <signal.h>
47#include <stdarg.h>
48#include <sys/resource.h>
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +010049#include <sys/wait.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020050#include <time.h>
51#include <syslog.h>
Michael Schererab012dd2013-01-12 18:35:19 +010052#include <grp.h>
Willy Tarreaufc6c0322012-11-16 16:12:27 +010053#ifdef USE_CPU_AFFINITY
Willy Tarreaufc6c0322012-11-16 16:12:27 +010054#include <sched.h>
David Carlier42d9e5a2018-11-12 16:22:19 +000055#if defined(__FreeBSD__) || defined(__DragonFly__)
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +020056#include <sys/param.h>
David Carlier42d9e5a2018-11-12 16:22:19 +000057#ifdef __FreeBSD__
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +020058#include <sys/cpuset.h>
David Carlier42d9e5a2018-11-12 16:22:19 +000059#endif
David Carlier6d5c8412017-11-29 11:02:32 +000060#include <pthread_np.h>
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +020061#endif
Willy Tarreaufc6c0322012-11-16 16:12:27 +010062#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +020063
Willy Tarreau636848a2019-04-15 19:38:50 +020064#if defined(USE_PRCTL)
65#include <sys/prctl.h>
66#endif
67
Willy Tarreaubaaee002006-06-26 02:48:02 +020068#ifdef DEBUG_FULL
69#include <assert.h>
70#endif
Tim Duesterhusd6942c82017-11-20 15:58:35 +010071#if defined(USE_SYSTEMD)
72#include <systemd/sd-daemon.h>
73#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +020074
Willy Tarreau4ce41952020-03-06 18:57:15 +010075#include <import/sha1.h>
76
Willy Tarreau2dd0d472006-06-29 17:53:05 +020077#include <common/base64.h>
78#include <common/cfgparse.h>
Willy Tarreauc7e42382012-08-24 19:22:53 +020079#include <common/chunk.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020080#include <common/compat.h>
81#include <common/config.h>
82#include <common/defaults.h>
Willy Tarreaud740bab2007-10-28 11:14:07 +010083#include <common/errors.h>
Willy Tarreau5794fb02018-11-25 18:43:29 +010084#include <common/initcall.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020085#include <common/memory.h>
86#include <common/mini-clist.h>
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +010087#include <common/namespace.h>
Willy Tarreau4ce41952020-03-06 18:57:15 +010088#include <common/net_helper.h>
Willy Tarreauc125cef2019-05-10 09:58:43 +020089#include <common/openssl-compat.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020090#include <common/regex.h>
91#include <common/standard.h>
92#include <common/time.h>
93#include <common/uri_auth.h>
94#include <common/version.h>
Christopher Fauletbe0faa22017-08-29 15:37:10 +020095#include <common/hathreads.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020096
97#include <types/capture.h>
William Lallemandce83b4a2018-10-26 14:47:30 +020098#include <types/cli.h>
Christopher Fauletd7c91962015-04-30 11:48:27 +020099#include <types/filters.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200100#include <types/global.h>
Simon Hormanac821422011-07-15 13:14:09 +0900101#include <types/acl.h>
Willy Tarreau3c63fd82011-09-07 18:00:47 +0200102#include <types/peers.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200103
Willy Tarreau0fc45a72007-06-17 00:36:03 +0200104#include <proto/acl.h>
Willy Tarreau609aad92018-11-22 08:31:09 +0100105#include <proto/activity.h>
Willy Tarreau2e845be2012-10-19 19:49:09 +0200106#include <proto/arg.h>
Willy Tarreau3c595ac2015-04-19 09:59:31 +0200107#include <proto/auth.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200108#include <proto/backend.h>
Willy Tarreauc7e42382012-08-24 19:22:53 +0200109#include <proto/channel.h>
Christopher Fauletc6e07702020-03-26 19:48:20 +0100110#include <proto/checks.h>
William Lallemandce83b4a2018-10-26 14:47:30 +0200111#include <proto/cli.h>
Willy Tarreauf2943dc2012-10-26 20:10:28 +0200112#include <proto/connection.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200113#include <proto/fd.h>
Christopher Fauletd7c91962015-04-30 11:48:27 +0200114#include <proto/filters.h>
Willy Tarreau34eb6712011-10-24 18:15:04 +0200115#include <proto/hdr_idx.h>
Thierry FOURNIER6f1fd482015-01-23 14:06:13 +0100116#include <proto/hlua.h>
Willy Tarreau61c112a2018-10-02 16:43:32 +0200117#include <proto/http_rules.h>
Willy Tarreaud1d54542012-09-12 22:58:11 +0200118#include <proto/listener.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200119#include <proto/log.h>
William Lallemand48dfbbd2019-04-01 11:29:53 +0200120#include <proto/mworker.h>
Thierry FOURNIERaf5a29d2014-03-11 14:29:22 +0100121#include <proto/pattern.h>
Willy Tarreaud1d54542012-09-12 22:58:11 +0200122#include <proto/protocol.h>
Willy Tarreau80587432006-12-24 17:47:20 +0100123#include <proto/proto_http.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200124#include <proto/proxy.h>
125#include <proto/queue.h>
126#include <proto/server.h>
Willy Tarreaub1ec8c42015-04-03 13:53:24 +0200127#include <proto/session.h>
Willy Tarreau87b09662015-04-03 00:22:06 +0200128#include <proto/stream.h>
Willy Tarreau29857942009-05-10 09:01:21 +0200129#include <proto/signal.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200130#include <proto/task.h>
Baptiste Assmann325137d2015-04-13 23:40:55 +0200131#include <proto/dns.h>
Christopher Fauletff2613e2016-11-09 11:36:17 +0100132#include <proto/vars.h>
Grant Zhang872f9c22017-01-21 01:10:18 +0000133#include <proto/ssl_sock.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200134
Willy Tarreau7b5654f2019-03-29 21:30:17 +0100135/* array of init calls for older platforms */
136DECLARE_INIT_STAGES;
137
Willy Tarreau477ecd82010-01-03 21:12:30 +0100138/* list of config files */
139static struct list cfg_cfgfiles = LIST_HEAD_INIT(cfg_cfgfiles);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200140int pid; /* current process id */
Willy Tarreau28156642007-11-26 16:13:36 +0100141int relative_pid = 1; /* process id starting at 1 */
Willy Tarreau387bd4f2017-11-10 19:08:14 +0100142unsigned long pid_bit = 1; /* bit corresponding to the process id */
Willy Tarreaua38a7172019-02-02 17:11:28 +0100143unsigned long all_proc_mask = 1; /* mask of all processes */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200144
Willy Tarreaub7bd3852020-03-12 17:24:53 +0100145volatile unsigned long sleeping_thread_mask = 0; /* Threads that are about to sleep in poll() */
Willy Tarreauaf6be6f2020-03-12 17:28:01 +0100146volatile unsigned long stopping_thread_mask = 0; /* Threads acknowledged stopping */
Willy Tarreaub7bd3852020-03-12 17:24:53 +0100147
Willy Tarreaubaaee002006-06-26 02:48:02 +0200148/* global options */
149struct global global = {
Cyril Bonté203ec5a2017-03-23 22:44:13 +0100150 .hard_stop_after = TICK_ETERNITY,
Willy Tarreau247a13a2012-11-15 17:38:15 +0100151 .nbproc = 1,
Willy Tarreau149ab772019-01-26 14:27:06 +0100152 .nbthread = 0,
William Lallemand5f232402012-04-05 18:02:55 +0200153 .req_count = 0,
William Lallemand0f99e342011-10-12 17:50:54 +0200154 .logsrvs = LIST_HEAD_INIT(global.logsrvs),
William Lallemand9d5f5482012-11-07 16:12:57 +0100155 .maxzlibmem = 0,
William Lallemandd85f9172012-11-09 17:05:39 +0100156 .comp_rate_lim = 0,
Emeric Brun850efd52014-01-29 12:24:34 +0100157 .ssl_server_verify = SSL_SERVER_VERIFY_REQUIRED,
Emeric Bruned760922010-10-22 17:59:25 +0200158 .unix_bind = {
159 .ux = {
160 .uid = -1,
161 .gid = -1,
162 .mode = 0,
163 }
164 },
Willy Tarreau27a674e2009-08-17 07:23:33 +0200165 .tune = {
Willy Tarreau7ac908b2019-02-27 12:02:18 +0100166 .options = GTUNE_LISTENER_MQ,
Willy Tarreauc77d3642018-12-12 06:19:42 +0100167 .bufsize = (BUFSIZE + 2*sizeof(void *) - 1) & -(2*sizeof(void *)),
Willy Tarreau27097842015-09-28 13:53:23 +0200168 .maxrewrite = -1,
Willy Tarreauc77d3642018-12-12 06:19:42 +0100169 .chksize = (BUFSIZE + 2*sizeof(void *) - 1) & -(2*sizeof(void *)),
Willy Tarreaua24adf02014-11-27 01:11:56 +0100170 .reserved_bufs = RESERVED_BUFS,
Willy Tarreauf3045d22015-04-29 16:24:50 +0200171 .pattern_cache = DEFAULT_PAT_LRU_SIZE,
Olivier Houchard88698d92019-04-16 19:07:22 +0200172 .pool_low_ratio = 20,
173 .pool_high_ratio = 25,
Emeric Brunfc32aca2012-09-03 12:10:29 +0200174#ifdef USE_OPENSSL
Emeric Brun46635772012-11-14 11:32:56 +0100175 .sslcachesize = SSLCACHESIZE,
Emeric Brunfc32aca2012-09-03 12:10:29 +0200176#endif
William Lallemandf3747832012-11-09 12:33:10 +0100177 .comp_maxlevel = 1,
Willy Tarreau7e312732014-02-12 16:35:14 +0100178#ifdef DEFAULT_IDLE_TIMER
179 .idle_timer = DEFAULT_IDLE_TIMER,
180#else
181 .idle_timer = 1000, /* 1 second */
182#endif
Willy Tarreau27a674e2009-08-17 07:23:33 +0200183 },
Emeric Brun76d88952012-10-05 15:47:31 +0200184#ifdef USE_OPENSSL
185#ifdef DEFAULT_MAXSSLCONN
Willy Tarreau403edff2012-09-06 11:58:37 +0200186 .maxsslconn = DEFAULT_MAXSSLCONN,
187#endif
Emeric Brun76d88952012-10-05 15:47:31 +0200188#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200189 /* others NULL OK */
190};
191
192/*********************************************************************/
193
194int stopping; /* non zero means stopping in progress */
Cyril Bonté203ec5a2017-03-23 22:44:13 +0100195int killed; /* non zero means a hard-stop is triggered */
Willy Tarreauaf7ad002010-08-31 15:39:26 +0200196int jobs = 0; /* number of active jobs (conns, listeners, active tasks, ...) */
William Lallemanda7199262018-11-16 16:57:20 +0100197int unstoppable_jobs = 0; /* number of active jobs that can't be stopped during a soft stop */
Willy Tarreau199ad242018-11-05 16:31:22 +0100198int active_peers = 0; /* number of active peers (connection attempts and connected) */
Willy Tarreau2d372c22018-11-05 17:12:27 +0100199int connected_peers = 0; /* number of connected peers (verified ones) */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200200
201/* Here we store informations about the pids of the processes we may pause
202 * or kill. We will send them a signal every 10 ms until we can bind to all
203 * our ports. With 200 retries, that's about 2 seconds.
204 */
205#define MAX_START_RETRIES 200
Willy Tarreaubaaee002006-06-26 02:48:02 +0200206static int *oldpids = NULL;
207static int oldpids_sig; /* use USR1 or TERM */
208
Olivier Houchardf73629d2017-04-05 22:33:04 +0200209/* Path to the unix socket we use to retrieve listener sockets from the old process */
210static const char *old_unixsocket;
211
William Lallemand85b0bd92017-06-01 17:38:53 +0200212static char *cur_unixsocket = NULL;
213
William Lallemandcb11fd22017-06-01 17:38:52 +0200214int atexit_flag = 0;
215
Willy Tarreaubb545b42010-08-25 12:58:59 +0200216int nb_oldpids = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200217const int zero = 0;
218const int one = 1;
Alexandre Cassen87ea5482007-10-11 20:48:58 +0200219const struct linger nolinger = { .l_onoff = 1, .l_linger = 0 };
Willy Tarreaubaaee002006-06-26 02:48:02 +0200220
Willy Tarreau1d21e0a2010-03-12 21:58:54 +0100221char hostname[MAX_HOSTNAME_LEN];
Emeric Brun2b920a12010-09-23 18:30:22 +0200222char localpeer[MAX_HOSTNAME_LEN];
Willy Tarreaubaaee002006-06-26 02:48:02 +0200223
Willy Tarreau89efaed2013-12-13 15:14:55 +0100224/* used from everywhere just to drain results we don't want to read and which
225 * recent versions of gcc increasingly and annoyingly complain about.
226 */
227int shut_your_big_mouth_gcc_int = 0;
228
William Lallemand73b85e72017-06-01 17:38:51 +0200229static char **next_argv = NULL;
230
William Lallemandbc193052018-09-11 10:06:26 +0200231struct list proc_list = LIST_HEAD_INIT(proc_list);
232
233int master = 0; /* 1 if in master, 0 if in child */
Willy Tarreaubf696402019-03-01 10:09:28 +0100234unsigned int rlim_fd_cur_at_boot = 0;
235unsigned int rlim_fd_max_at_boot = 0;
William Lallemandbc193052018-09-11 10:06:26 +0200236
Willy Tarreau4ce41952020-03-06 18:57:15 +0100237/* per-boot randomness */
238unsigned char boot_seed[20]; /* per-boot random seed (160 bits initially) */
239
William Lallemand16dd1b32018-11-19 18:46:18 +0100240struct mworker_proc *proc_self = NULL;
William Lallemandbc193052018-09-11 10:06:26 +0200241
Willy Tarreau08ceb102011-07-24 22:58:00 +0200242/* list of the temporarily limited listeners because of lack of resource */
243struct list global_listener_queue = LIST_HEAD_INIT(global_listener_queue);
Willy Tarreaue9b26022011-08-01 20:57:55 +0200244struct task *global_listener_queue_task;
Olivier Houchard9f6af332018-05-25 14:04:04 +0200245static struct task *manage_global_listener_queue(struct task *t, void *context, unsigned short state);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200246
William Lallemandb3f2be32018-09-11 10:06:18 +0200247static void *run_thread_poll_loop(void *data);
248
Willy Tarreauff055502014-04-28 22:27:06 +0200249/* bitfield of a few warnings to emit just once (WARN_*) */
250unsigned int warned = 0;
251
William Lallemande7361152018-10-26 14:47:36 +0200252/* master CLI configuration (-S flag) */
253struct list mworker_cli_conf = LIST_HEAD_INIT(mworker_cli_conf);
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100254
255/* These are strings to be reported in the output of "haproxy -vv". They may
256 * either be constants (in which case must_free must be zero) or dynamically
257 * allocated strings to pass to free() on exit, and in this case must_free
258 * must be non-zero.
259 */
260struct list build_opts_list = LIST_HEAD_INIT(build_opts_list);
261struct build_opts_str {
262 struct list list;
263 const char *str;
264 int must_free;
265};
266
Willy Tarreaue6945732016-12-21 19:57:00 +0100267/* These functions are called just after the point where the program exits
268 * after a config validity check, so they are generally suited for resource
269 * allocation and slow initializations that should be skipped during basic
270 * config checks. The functions must return 0 on success, or a combination
271 * of ERR_* flags (ERR_WARN, ERR_ABORT, ERR_FATAL, ...). The 2 latter cause
272 * and immediate exit, so the function must have emitted any useful error.
273 */
274struct list post_check_list = LIST_HEAD_INIT(post_check_list);
275struct post_check_fct {
276 struct list list;
277 int (*fct)();
278};
279
Willy Tarreau082b6282019-05-22 14:42:12 +0200280/* These functions are called for each thread just after the thread creation
281 * and before running the init functions. They should be used to do per-thread
282 * (re-)allocations that are needed by subsequent functoins. They must return 0
283 * if an error occurred. */
284struct list per_thread_alloc_list = LIST_HEAD_INIT(per_thread_alloc_list);
285struct per_thread_alloc_fct {
Willy Tarreau05554e62016-12-21 20:46:26 +0100286 struct list list;
Willy Tarreau082b6282019-05-22 14:42:12 +0200287 int (*fct)();
Willy Tarreau05554e62016-12-21 20:46:26 +0100288};
289
Christopher Faulet415f6112017-07-25 16:52:58 +0200290/* These functions are called for each thread just after the thread creation
291 * and before running the scheduler. They should be used to do per-thread
292 * initializations. They must return 0 if an error occurred. */
293struct list per_thread_init_list = LIST_HEAD_INIT(per_thread_init_list);
294struct per_thread_init_fct {
295 struct list list;
296 int (*fct)();
297};
298
Willy Tarreau082b6282019-05-22 14:42:12 +0200299/* These functions are called when freeing the global sections at the end of
300 * deinit, after everything is stopped. They don't return anything. They should
301 * not release shared resources that are possibly used by other deinit
302 * functions, only close/release what is private. Use the per_thread_free_list
303 * to release shared resources.
304 */
305struct list post_deinit_list = LIST_HEAD_INIT(post_deinit_list);
306struct post_deinit_fct {
307 struct list list;
308 void (*fct)();
309};
310
311/* These functions are called when freeing the global sections at the end of
312 * deinit, after the thread deinit functions, to release unneeded memory
313 * allocations. They don't return anything, and they work in best effort mode
314 * as their sole goal is to make valgrind mostly happy.
315 */
316struct list per_thread_free_list = LIST_HEAD_INIT(per_thread_free_list);
317struct per_thread_free_fct {
318 struct list list;
319 int (*fct)();
320};
321
Christopher Faulet415f6112017-07-25 16:52:58 +0200322/* These functions are called for each thread just after the scheduler loop and
323 * before exiting the thread. They don't return anything and, as for post-deinit
324 * functions, they work in best effort mode as their sole goal is to make
325 * valgrind mostly happy. */
326struct list per_thread_deinit_list = LIST_HEAD_INIT(per_thread_deinit_list);
327struct per_thread_deinit_fct {
328 struct list list;
329 void (*fct)();
330};
331
Willy Tarreaubaaee002006-06-26 02:48:02 +0200332/*********************************************************************/
333/* general purpose functions ***************************************/
334/*********************************************************************/
335
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100336/* used to register some build option strings at boot. Set must_free to
337 * non-zero if the string must be freed upon exit.
338 */
339void hap_register_build_opts(const char *str, int must_free)
340{
341 struct build_opts_str *b;
342
343 b = calloc(1, sizeof(*b));
344 if (!b) {
345 fprintf(stderr, "out of memory\n");
346 exit(1);
347 }
348 b->str = str;
349 b->must_free = must_free;
350 LIST_ADDQ(&build_opts_list, &b->list);
351}
352
Willy Tarreaue6945732016-12-21 19:57:00 +0100353/* used to register some initialization functions to call after the checks. */
354void hap_register_post_check(int (*fct)())
355{
356 struct post_check_fct *b;
357
358 b = calloc(1, sizeof(*b));
359 if (!b) {
360 fprintf(stderr, "out of memory\n");
361 exit(1);
362 }
363 b->fct = fct;
364 LIST_ADDQ(&post_check_list, &b->list);
365}
366
Willy Tarreau05554e62016-12-21 20:46:26 +0100367/* used to register some de-initialization functions to call after everything
368 * has stopped.
369 */
370void hap_register_post_deinit(void (*fct)())
371{
372 struct post_deinit_fct *b;
373
374 b = calloc(1, sizeof(*b));
375 if (!b) {
376 fprintf(stderr, "out of memory\n");
377 exit(1);
378 }
379 b->fct = fct;
380 LIST_ADDQ(&post_deinit_list, &b->list);
381}
382
Willy Tarreau082b6282019-05-22 14:42:12 +0200383/* used to register some allocation functions to call for each thread. */
384void hap_register_per_thread_alloc(int (*fct)())
385{
386 struct per_thread_alloc_fct *b;
387
388 b = calloc(1, sizeof(*b));
389 if (!b) {
390 fprintf(stderr, "out of memory\n");
391 exit(1);
392 }
393 b->fct = fct;
394 LIST_ADDQ(&per_thread_alloc_list, &b->list);
395}
396
Christopher Faulet415f6112017-07-25 16:52:58 +0200397/* used to register some initialization functions to call for each thread. */
398void hap_register_per_thread_init(int (*fct)())
399{
400 struct per_thread_init_fct *b;
401
402 b = calloc(1, sizeof(*b));
403 if (!b) {
404 fprintf(stderr, "out of memory\n");
405 exit(1);
406 }
407 b->fct = fct;
408 LIST_ADDQ(&per_thread_init_list, &b->list);
409}
410
411/* used to register some de-initialization functions to call for each thread. */
412void hap_register_per_thread_deinit(void (*fct)())
413{
414 struct per_thread_deinit_fct *b;
415
416 b = calloc(1, sizeof(*b));
417 if (!b) {
418 fprintf(stderr, "out of memory\n");
419 exit(1);
420 }
421 b->fct = fct;
422 LIST_ADDQ(&per_thread_deinit_list, &b->list);
423}
424
Willy Tarreau082b6282019-05-22 14:42:12 +0200425/* used to register some free functions to call for each thread. */
426void hap_register_per_thread_free(int (*fct)())
427{
428 struct per_thread_free_fct *b;
429
430 b = calloc(1, sizeof(*b));
431 if (!b) {
432 fprintf(stderr, "out of memory\n");
433 exit(1);
434 }
435 b->fct = fct;
436 LIST_ADDQ(&per_thread_free_list, &b->list);
437}
438
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100439static void display_version()
Willy Tarreaubaaee002006-06-26 02:48:02 +0200440{
Willy Tarreau909b9d82019-01-04 18:20:32 +0100441 printf("HA-Proxy version %s %s - https://haproxy.org/\n", haproxy_version, haproxy_date);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200442}
443
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100444static void display_build_opts()
Willy Tarreau7b066db2007-12-02 11:28:59 +0100445{
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100446 struct build_opts_str *item;
447
Willy Tarreau7b066db2007-12-02 11:28:59 +0100448 printf("Build options :"
449#ifdef BUILD_TARGET
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100450 "\n TARGET = " BUILD_TARGET
Willy Tarreau7b066db2007-12-02 11:28:59 +0100451#endif
452#ifdef BUILD_CPU
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100453 "\n CPU = " BUILD_CPU
Willy Tarreau7b066db2007-12-02 11:28:59 +0100454#endif
455#ifdef BUILD_CC
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100456 "\n CC = " BUILD_CC
457#endif
458#ifdef BUILD_CFLAGS
459 "\n CFLAGS = " BUILD_CFLAGS
Willy Tarreau7b066db2007-12-02 11:28:59 +0100460#endif
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100461#ifdef BUILD_OPTIONS
462 "\n OPTIONS = " BUILD_OPTIONS
Willy Tarreau7b066db2007-12-02 11:28:59 +0100463#endif
Willy Tarreau7728ed32019-03-27 13:20:08 +0100464#ifdef BUILD_FEATURES
465 "\n\nFeature list : " BUILD_FEATURES
466#endif
Willy Tarreau27a674e2009-08-17 07:23:33 +0200467 "\n\nDefault settings :"
Willy Tarreauca783d42019-03-13 10:03:07 +0100468 "\n bufsize = %d, maxrewrite = %d, maxpollevents = %d"
Willy Tarreau27a674e2009-08-17 07:23:33 +0200469 "\n\n",
Willy Tarreauca783d42019-03-13 10:03:07 +0100470 BUFSIZE, MAXREWRITE, MAX_POLL_EVENTS);
Willy Tarreaube5b6852009-10-03 18:57:08 +0200471
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100472 list_for_each_entry(item, &build_opts_list, list) {
473 puts(item->str);
474 }
475
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +0100476 putchar('\n');
477
Willy Tarreaube5b6852009-10-03 18:57:08 +0200478 list_pollers(stdout);
479 putchar('\n');
Christopher Faulet98d9fe22018-04-10 14:37:32 +0200480 list_mux_proto(stdout);
481 putchar('\n');
Willy Tarreau679bba12019-03-19 08:08:10 +0100482 list_services(stdout);
483 putchar('\n');
Christopher Fauletb3f4e142016-03-07 12:46:38 +0100484 list_filters(stdout);
485 putchar('\n');
Willy Tarreau7b066db2007-12-02 11:28:59 +0100486}
487
Willy Tarreaubaaee002006-06-26 02:48:02 +0200488/*
489 * This function prints the command line usage and exits
490 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100491static void usage(char *name)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200492{
493 display_version();
494 fprintf(stderr,
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200495 "Usage : %s [-f <cfgfile|cfgdir>]* [ -vdV"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200496 "D ] [ -n <maxconn> ] [ -N <maxpconn> ]\n"
Willy Tarreaua088d312015-10-08 11:58:48 +0200497 " [ -p <pidfile> ] [ -m <max megs> ] [ -C <dir> ] [-- <cfgfile>*]\n"
Willy Tarreau7b066db2007-12-02 11:28:59 +0100498 " -v displays version ; -vv shows known build options.\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200499 " -d enters debug mode ; -db only disables background mode.\n"
Willy Tarreau6e064432012-05-08 15:40:42 +0200500 " -dM[<byte>] poisons memory with <byte> (defaults to 0x50)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200501 " -V enters verbose mode (disables quiet mode)\n"
Willy Tarreau576132e2011-09-10 19:26:56 +0200502 " -D goes daemon ; -C changes to <dir> before loading files.\n"
William Lallemand095ba4c2017-06-01 17:38:50 +0200503 " -W master-worker mode.\n"
Tim Duesterhusd6942c82017-11-20 15:58:35 +0100504#if defined(USE_SYSTEMD)
505 " -Ws master-worker mode with systemd notify support.\n"
506#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200507 " -q quiet mode : don't display messages\n"
Willy Tarreau5d01a632009-06-22 16:02:30 +0200508 " -c check mode : only check config files and exit\n"
Willy Tarreauca783d42019-03-13 10:03:07 +0100509 " -n sets the maximum total # of connections (uses ulimit -n)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200510 " -m limits the usable amount of memory (in MB)\n"
511 " -N sets the default, per-proxy maximum # of connections (%d)\n"
Emeric Brun2b920a12010-09-23 18:30:22 +0200512 " -L set local peer name (default to hostname)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200513 " -p writes pids of all children to this file\n"
Willy Tarreaue5733232019-05-22 19:24:06 +0200514#if defined(USE_EPOLL)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200515 " -de disables epoll() usage even when available\n"
516#endif
Willy Tarreaue5733232019-05-22 19:24:06 +0200517#if defined(USE_KQUEUE)
Willy Tarreau1e63130a2007-04-09 12:03:06 +0200518 " -dk disables kqueue() usage even when available\n"
519#endif
Willy Tarreaue5733232019-05-22 19:24:06 +0200520#if defined(USE_EVPORTS)
Emmanuel Hocdet0ba4f482019-04-08 16:53:32 +0000521 " -dv disables event ports usage even when available\n"
522#endif
Willy Tarreaue5733232019-05-22 19:24:06 +0200523#if defined(USE_POLL)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200524 " -dp disables poll() usage even when available\n"
525#endif
Willy Tarreaue5733232019-05-22 19:24:06 +0200526#if defined(USE_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +0100527 " -dS disables splice usage (broken on old kernels)\n"
528#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +0200529#if defined(USE_GETADDRINFO)
530 " -dG disables getaddrinfo() usage\n"
531#endif
Lukas Tribusa0bcbdc2016-09-12 21:42:20 +0000532#if defined(SO_REUSEPORT)
533 " -dR disables SO_REUSEPORT usage\n"
534#endif
Willy Tarreau3eed10e2016-11-07 21:03:16 +0100535 " -dr ignores server address resolution failures\n"
Emeric Brun850efd52014-01-29 12:24:34 +0100536 " -dV disables SSL verify on servers side\n"
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +0200537 " -sf/-st [pid ]* finishes/terminates old pids.\n"
Olivier Houchardf73629d2017-04-05 22:33:04 +0200538 " -x <unix_socket> get listening sockets from a unix socket\n"
William Lallemand63329e32019-06-13 17:03:37 +0200539 " -S <bind>[,<bind options>...] new master CLI\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200540 "\n",
Willy Tarreauca783d42019-03-13 10:03:07 +0100541 name, cfg_maxpconn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200542 exit(1);
543}
544
545
546
547/*********************************************************************/
548/* more specific functions ***************************************/
549/*********************************************************************/
550
William Lallemand73b85e72017-06-01 17:38:51 +0200551/* sends the signal <sig> to all pids found in <oldpids>. Returns the number of
552 * pids the signal was correctly delivered to.
553 */
William Lallemande25473c2019-04-01 11:29:56 +0200554int tell_old_pids(int sig)
William Lallemand73b85e72017-06-01 17:38:51 +0200555{
556 int p;
557 int ret = 0;
558 for (p = 0; p < nb_oldpids; p++)
559 if (kill(oldpids[p], sig) == 0)
560 ret++;
561 return ret;
562}
563
William Lallemand75ea0a02017-11-15 19:02:58 +0100564/*
William Lallemand73b85e72017-06-01 17:38:51 +0200565 * remove a pid forom the olpid array and decrease nb_oldpids
566 * return 1 pid was found otherwise return 0
567 */
568
569int delete_oldpid(int pid)
570{
571 int i;
572
573 for (i = 0; i < nb_oldpids; i++) {
574 if (oldpids[i] == pid) {
575 oldpids[i] = oldpids[nb_oldpids - 1];
576 oldpids[nb_oldpids - 1] = 0;
577 nb_oldpids--;
578 return 1;
579 }
580 }
581 return 0;
582}
583
William Lallemand85b0bd92017-06-01 17:38:53 +0200584
585static void get_cur_unixsocket()
586{
587 /* if -x was used, try to update the stat socket if not available anymore */
588 if (global.stats_fe) {
589 struct bind_conf *bind_conf;
590
591 /* pass through all stats socket */
592 list_for_each_entry(bind_conf, &global.stats_fe->conf.bind, by_fe) {
593 struct listener *l;
594
595 list_for_each_entry(l, &bind_conf->listeners, by_bind) {
596
597 if (l->addr.ss_family == AF_UNIX &&
598 (bind_conf->level & ACCESS_FD_LISTENERS)) {
599 const struct sockaddr_un *un;
600
601 un = (struct sockaddr_un *)&l->addr;
602 /* priority to old_unixsocket */
603 if (!cur_unixsocket) {
604 cur_unixsocket = strdup(un->sun_path);
605 } else {
606 if (old_unixsocket && !strcmp(un->sun_path, old_unixsocket)) {
607 free(cur_unixsocket);
608 cur_unixsocket = strdup(old_unixsocket);
609 return;
610 }
611 }
612 }
613 }
614 }
615 }
616 if (!cur_unixsocket && old_unixsocket)
617 cur_unixsocket = strdup(old_unixsocket);
618}
619
William Lallemand73b85e72017-06-01 17:38:51 +0200620/*
621 * When called, this function reexec haproxy with -sf followed by current
Joseph Herlant03420902018-11-15 10:41:50 -0800622 * children PIDs and possibly old children PIDs if they didn't leave yet.
William Lallemand73b85e72017-06-01 17:38:51 +0200623 */
William Lallemanda57b7e32018-12-14 21:11:31 +0100624void mworker_reload()
William Lallemand73b85e72017-06-01 17:38:51 +0200625{
626 int next_argc = 0;
William Lallemand73b85e72017-06-01 17:38:51 +0200627 char *msg = NULL;
Willy Tarreau8dca1952019-03-01 10:21:55 +0100628 struct rlimit limit;
William Lallemand7c756a82018-11-26 11:53:40 +0100629 struct per_thread_deinit_fct *ptdf;
William Lallemand73b85e72017-06-01 17:38:51 +0200630
631 mworker_block_signals();
Tim Duesterhusd6942c82017-11-20 15:58:35 +0100632#if defined(USE_SYSTEMD)
633 if (global.tune.options & GTUNE_USE_SYSTEMD)
634 sd_notify(0, "RELOADING=1");
635#endif
William Lallemand73b85e72017-06-01 17:38:51 +0200636 setenv("HAPROXY_MWORKER_REEXEC", "1", 1);
637
William Lallemandbc193052018-09-11 10:06:26 +0200638 mworker_proc_list_to_env(); /* put the children description in the env */
639
William Lallemand7c756a82018-11-26 11:53:40 +0100640 /* during the reload we must ensure that every FDs that can't be
641 * reuse (ie those that are not referenced in the proc_list)
642 * are closed or they will leak. */
643
644 /* close the listeners FD */
645 mworker_cli_proxy_stop();
William Lallemand13b11702019-06-24 17:40:48 +0200646
647 if (getenv("HAPROXY_MWORKER_WAIT_ONLY") == NULL) {
648 /* close the poller FD and the thread waker pipe FD */
649 list_for_each_entry(ptdf, &per_thread_deinit_list, list)
650 ptdf->fct();
651 if (fdtab)
652 deinit_pollers();
653 }
Willy Tarreau5db847a2019-05-09 14:13:35 +0200654#if defined(USE_OPENSSL) && (HA_OPENSSL_VERSION_NUMBER >= 0x10101000L)
William Lallemand1b7c4dc2019-10-15 14:04:08 +0200655 /* close random device FDs */
656 RAND_keep_random_devices_open(0);
Rob Allen56996da2019-05-03 09:11:32 +0100657#endif
William Lallemand7c756a82018-11-26 11:53:40 +0100658
Willy Tarreau8dca1952019-03-01 10:21:55 +0100659 /* restore the initial FD limits */
660 limit.rlim_cur = rlim_fd_cur_at_boot;
661 limit.rlim_max = rlim_fd_max_at_boot;
662 if (setrlimit(RLIMIT_NOFILE, &limit) == -1) {
663 getrlimit(RLIMIT_NOFILE, &limit);
664 ha_warning("Failed to restore initial FD limits (cur=%u max=%u), using cur=%u max=%u\n",
665 rlim_fd_cur_at_boot, rlim_fd_max_at_boot,
666 (unsigned int)limit.rlim_cur, (unsigned int)limit.rlim_max);
667 }
668
William Lallemand73b85e72017-06-01 17:38:51 +0200669 /* compute length */
670 while (next_argv[next_argc])
671 next_argc++;
672
William Lallemand85b0bd92017-06-01 17:38:53 +0200673 /* 1 for haproxy -sf, 2 for -x /socket */
William Lallemand3f128872019-04-01 11:29:59 +0200674 next_argv = realloc(next_argv, (next_argc + 1 + 2 + mworker_child_nb() + nb_oldpids + 1) * sizeof(char *));
William Lallemand73b85e72017-06-01 17:38:51 +0200675 if (next_argv == NULL)
676 goto alloc_error;
677
William Lallemand73b85e72017-06-01 17:38:51 +0200678 /* add -sf <PID>* to argv */
William Lallemand3f128872019-04-01 11:29:59 +0200679 if (mworker_child_nb() > 0) {
680 struct mworker_proc *child;
681
William Lallemand73b85e72017-06-01 17:38:51 +0200682 next_argv[next_argc++] = "-sf";
William Lallemand3f128872019-04-01 11:29:59 +0200683
684 list_for_each_entry(child, &proc_list, list) {
William Lallemand175125e2019-11-19 17:04:18 +0100685 if (!(child->options & (PROC_O_TYPE_WORKER|PROC_O_TYPE_PROG)) || child->pid <= -1 )
William Lallemand3f128872019-04-01 11:29:59 +0200686 continue;
687 next_argv[next_argc] = memprintf(&msg, "%d", child->pid);
William Lallemand73b85e72017-06-01 17:38:51 +0200688 if (next_argv[next_argc] == NULL)
689 goto alloc_error;
690 msg = NULL;
William Lallemand3f128872019-04-01 11:29:59 +0200691 next_argc++;
William Lallemand73b85e72017-06-01 17:38:51 +0200692 }
693 }
William Lallemand3f128872019-04-01 11:29:59 +0200694
William Lallemand73b85e72017-06-01 17:38:51 +0200695 next_argv[next_argc] = NULL;
William Lallemand85b0bd92017-06-01 17:38:53 +0200696
William Lallemand2bf6d622017-06-20 11:20:23 +0200697 /* add the -x option with the stat socket */
William Lallemand85b0bd92017-06-01 17:38:53 +0200698 if (cur_unixsocket) {
699
William Lallemand2bf6d622017-06-20 11:20:23 +0200700 next_argv[next_argc++] = "-x";
701 next_argv[next_argc++] = (char *)cur_unixsocket;
702 next_argv[next_argc++] = NULL;
William Lallemand85b0bd92017-06-01 17:38:53 +0200703 }
704
Christopher Faulet767a84b2017-11-24 16:50:31 +0100705 ha_warning("Reexecuting Master process\n");
Willy Tarreauf259fcc2019-08-26 10:37:39 +0200706 signal(SIGPROF, SIG_IGN);
Tim Duesterhus0436ab72017-11-12 17:39:18 +0100707 execvp(next_argv[0], next_argv);
William Lallemand73b85e72017-06-01 17:38:51 +0200708
Christopher Faulet767a84b2017-11-24 16:50:31 +0100709 ha_warning("Failed to reexecute the master process [%d]: %s\n", pid, strerror(errno));
William Lallemand722d4ca2017-11-15 19:02:55 +0100710 return;
711
William Lallemand73b85e72017-06-01 17:38:51 +0200712alloc_error:
Joseph Herlant07a08342018-11-15 10:43:05 -0800713 ha_warning("Failed to reexecute the master process [%d]: Cannot allocate memory\n", pid);
William Lallemand73b85e72017-06-01 17:38:51 +0200714 return;
715}
716
William Lallemandb3f2be32018-09-11 10:06:18 +0200717static void mworker_loop()
718{
719
720#if defined(USE_SYSTEMD)
721 if (global.tune.options & GTUNE_USE_SYSTEMD)
722 sd_notifyf(0, "READY=1\nMAINPID=%lu", (unsigned long)getpid());
723#endif
Willy Tarreaud83b6c12019-04-18 11:31:36 +0200724 /* Busy polling makes no sense in the master :-) */
725 global.tune.options &= ~GTUNE_BUSY_POLLING;
William Lallemandb3f2be32018-09-11 10:06:18 +0200726
William Lallemandbc193052018-09-11 10:06:26 +0200727 master = 1;
728
Willy Tarreau708c2442019-12-11 14:24:07 +0100729 signal_unregister(SIGTTIN);
730 signal_unregister(SIGTTOU);
William Lallemand0564d412018-11-20 17:36:53 +0100731 signal_unregister(SIGUSR1);
732 signal_unregister(SIGHUP);
733 signal_unregister(SIGQUIT);
734
William Lallemandb3f2be32018-09-11 10:06:18 +0200735 signal_register_fct(SIGTERM, mworker_catch_sigterm, SIGTERM);
736 signal_register_fct(SIGUSR1, mworker_catch_sigterm, SIGUSR1);
Willy Tarreau708c2442019-12-11 14:24:07 +0100737 signal_register_fct(SIGTTIN, mworker_broadcast_signal, SIGTTIN);
738 signal_register_fct(SIGTTOU, mworker_broadcast_signal, SIGTTOU);
William Lallemandb3f2be32018-09-11 10:06:18 +0200739 signal_register_fct(SIGINT, mworker_catch_sigterm, SIGINT);
740 signal_register_fct(SIGHUP, mworker_catch_sighup, SIGHUP);
741 signal_register_fct(SIGUSR2, mworker_catch_sighup, SIGUSR2);
742 signal_register_fct(SIGCHLD, mworker_catch_sigchld, SIGCHLD);
743
744 mworker_unblock_signals();
745 mworker_cleanlisteners();
William Lallemand27f3fa52018-12-06 14:05:20 +0100746 mworker_cleantasks();
William Lallemandb3f2be32018-09-11 10:06:18 +0200747
William Lallemandbc193052018-09-11 10:06:26 +0200748 mworker_catch_sigchld(NULL); /* ensure we clean the children in case
749 some SIGCHLD were lost */
750
William Lallemandb3f2be32018-09-11 10:06:18 +0200751 global.nbthread = 1;
752 relative_pid = 1;
753 pid_bit = 1;
Willy Tarreaua38a7172019-02-02 17:11:28 +0100754 all_proc_mask = 1;
William Lallemandb3f2be32018-09-11 10:06:18 +0200755
William Lallemand2672eb92018-12-14 15:52:39 +0100756#ifdef USE_THREAD
757 tid_bit = 1;
758 all_threads_mask = 1;
759#endif
760
William Lallemandb3f2be32018-09-11 10:06:18 +0200761 jobs++; /* this is the "master" job, we want to take care of the
762 signals even if there is no listener so the poll loop don't
763 leave */
764
765 fork_poller();
Willy Tarreaub4f7cc32019-05-03 09:27:30 +0200766 run_thread_poll_loop(0);
William Lallemandb3f2be32018-09-11 10:06:18 +0200767}
William Lallemandcb11fd22017-06-01 17:38:52 +0200768
769/*
770 * Reexec the process in failure mode, instead of exiting
771 */
772void reexec_on_failure()
773{
774 if (!atexit_flag)
775 return;
776
777 setenv("HAPROXY_MWORKER_WAIT_ONLY", "1", 1);
778
Christopher Faulet767a84b2017-11-24 16:50:31 +0100779 ha_warning("Reexecuting Master process in waitpid mode\n");
William Lallemandcb11fd22017-06-01 17:38:52 +0200780 mworker_reload();
William Lallemandcb11fd22017-06-01 17:38:52 +0200781}
William Lallemand73b85e72017-06-01 17:38:51 +0200782
783
784/*
Willy Tarreaud0807c32010-08-27 18:26:11 +0200785 * upon SIGUSR1, let's have a soft stop. Note that soft_stop() broadcasts
786 * a signal zero to all subscribers. This means that it's as easy as
787 * subscribing to signal 0 to get informed about an imminent shutdown.
Willy Tarreaubaaee002006-06-26 02:48:02 +0200788 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100789static void sig_soft_stop(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200790{
791 soft_stop();
Willy Tarreau24f4efa2010-08-27 17:56:48 +0200792 signal_unregister_handler(sh);
Willy Tarreaubafbe012017-11-24 17:34:44 +0100793 pool_gc(NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200794}
795
796/*
797 * upon SIGTTOU, we pause everything
798 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100799static void sig_pause(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200800{
801 pause_proxies();
Willy Tarreaubafbe012017-11-24 17:34:44 +0100802 pool_gc(NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200803}
804
805/*
806 * upon SIGTTIN, let's have a soft stop.
807 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100808static void sig_listen(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200809{
Willy Tarreaube58c382011-07-24 18:28:10 +0200810 resume_proxies();
Willy Tarreaubaaee002006-06-26 02:48:02 +0200811}
812
813/*
814 * this function dumps every server's state when the process receives SIGHUP.
815 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100816static void sig_dump_state(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200817{
Olivier Houchardfbc74e82017-11-24 16:54:05 +0100818 struct proxy *p = proxies_list;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200819
Christopher Faulet767a84b2017-11-24 16:50:31 +0100820 ha_warning("SIGHUP received, dumping servers states.\n");
Willy Tarreaubaaee002006-06-26 02:48:02 +0200821 while (p) {
822 struct server *s = p->srv;
823
824 send_log(p, LOG_NOTICE, "SIGHUP received, dumping servers states for proxy %s.\n", p->id);
825 while (s) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100826 chunk_printf(&trash,
827 "SIGHUP: Server %s/%s is %s. Conn: %d act, %d pend, %lld tot.",
828 p->id, s->id,
Emeric Brun52a91d32017-08-31 14:41:55 +0200829 (s->cur_state != SRV_ST_STOPPED) ? "UP" : "DOWN",
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100830 s->cur_sess, s->nbpend, s->counters.cum_sess);
Willy Tarreau843b7cb2018-07-13 10:54:26 +0200831 ha_warning("%s\n", trash.area);
832 send_log(p, LOG_NOTICE, "%s\n", trash.area);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200833 s = s->next;
834 }
835
Willy Tarreau5fcc8f12007-09-17 11:27:09 +0200836 /* FIXME: those info are a bit outdated. We should be able to distinguish between FE and BE. */
837 if (!p->srv) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100838 chunk_printf(&trash,
839 "SIGHUP: Proxy %s has no servers. Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
840 p->id,
841 p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreau5fcc8f12007-09-17 11:27:09 +0200842 } else if (p->srv_act == 0) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100843 chunk_printf(&trash,
844 "SIGHUP: Proxy %s %s ! Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
845 p->id,
846 (p->srv_bck) ? "is running on backup servers" : "has no server available",
847 p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200848 } else {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100849 chunk_printf(&trash,
850 "SIGHUP: Proxy %s has %d active servers and %d backup servers available."
851 " Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
852 p->id, p->srv_act, p->srv_bck,
853 p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200854 }
Willy Tarreau843b7cb2018-07-13 10:54:26 +0200855 ha_warning("%s\n", trash.area);
856 send_log(p, LOG_NOTICE, "%s\n", trash.area);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200857
858 p = p->next;
859 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200860}
861
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100862static void dump(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200863{
Willy Tarreauc6ca1a02007-05-13 19:43:47 +0200864 /* dump memory usage then free everything possible */
865 dump_pools();
Willy Tarreaubafbe012017-11-24 17:34:44 +0100866 pool_gc(NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200867}
868
William Lallemande1340412017-12-28 16:09:36 +0100869/*
870 * This function dup2 the stdio FDs (0,1,2) with <fd>, then closes <fd>
871 * If <fd> < 0, it opens /dev/null and use it to dup
872 *
873 * In the case of chrooting, you have to open /dev/null before the chroot, and
874 * pass the <fd> to this function
875 */
876static void stdio_quiet(int fd)
877{
878 if (fd < 0)
879 fd = open("/dev/null", O_RDWR, 0);
880
881 if (fd > -1) {
882 fclose(stdin);
883 fclose(stdout);
884 fclose(stderr);
885
886 dup2(fd, 0);
887 dup2(fd, 1);
888 dup2(fd, 2);
889 if (fd > 2)
890 close(fd);
891 return;
892 }
893
894 ha_alert("Cannot open /dev/null\n");
895 exit(EXIT_FAILURE);
896}
897
898
Joseph Herlant03420902018-11-15 10:41:50 -0800899/* This function checks if cfg_cfgfiles contains directories.
900 * If it finds one, it adds all the files (and only files) it contains
901 * in cfg_cfgfiles in place of the directory (and removes the directory).
902 * It adds the files in lexical order.
903 * It adds only files with .cfg extension.
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200904 * It doesn't add files with name starting with '.'
905 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100906static void cfgfiles_expand_directories(void)
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200907{
908 struct wordlist *wl, *wlb;
909 char *err = NULL;
910
911 list_for_each_entry_safe(wl, wlb, &cfg_cfgfiles, list) {
912 struct stat file_stat;
913 struct dirent **dir_entries = NULL;
914 int dir_entries_nb;
915 int dir_entries_it;
916
917 if (stat(wl->s, &file_stat)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100918 ha_alert("Cannot open configuration file/directory %s : %s\n",
919 wl->s,
920 strerror(errno));
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200921 exit(1);
922 }
923
924 if (!S_ISDIR(file_stat.st_mode))
925 continue;
926
927 /* from this point wl->s is a directory */
928
929 dir_entries_nb = scandir(wl->s, &dir_entries, NULL, alphasort);
930 if (dir_entries_nb < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100931 ha_alert("Cannot open configuration directory %s : %s\n",
932 wl->s,
933 strerror(errno));
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200934 exit(1);
935 }
936
937 /* for each element in the directory wl->s */
938 for (dir_entries_it = 0; dir_entries_it < dir_entries_nb; dir_entries_it++) {
939 struct dirent *dir_entry = dir_entries[dir_entries_it];
940 char *filename = NULL;
941 char *d_name_cfgext = strstr(dir_entry->d_name, ".cfg");
942
943 /* don't add filename that begin with .
Joseph Herlant03420902018-11-15 10:41:50 -0800944 * only add filename with .cfg extension
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200945 */
946 if (dir_entry->d_name[0] == '.' ||
947 !(d_name_cfgext && d_name_cfgext[4] == '\0'))
948 goto next_dir_entry;
949
950 if (!memprintf(&filename, "%s/%s", wl->s, dir_entry->d_name)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100951 ha_alert("Cannot load configuration files %s : out of memory.\n",
952 filename);
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200953 exit(1);
954 }
955
956 if (stat(filename, &file_stat)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100957 ha_alert("Cannot open configuration file %s : %s\n",
958 wl->s,
959 strerror(errno));
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200960 exit(1);
961 }
962
963 /* don't add anything else than regular file in cfg_cfgfiles
964 * this way we avoid loops
965 */
966 if (!S_ISREG(file_stat.st_mode))
967 goto next_dir_entry;
968
969 if (!list_append_word(&wl->list, filename, &err)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100970 ha_alert("Cannot load configuration files %s : %s\n",
971 filename,
972 err);
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200973 exit(1);
974 }
975
976next_dir_entry:
977 free(filename);
978 free(dir_entry);
979 }
980
981 free(dir_entries);
982
983 /* remove the current directory (wl) from cfg_cfgfiles */
984 free(wl->s);
985 LIST_DEL(&wl->list);
986 free(wl);
987 }
988
989 free(err);
990}
991
Olivier Houchardf73629d2017-04-05 22:33:04 +0200992static int get_old_sockets(const char *unixsocket)
993{
994 char *cmsgbuf = NULL, *tmpbuf = NULL;
995 int *tmpfd = NULL;
996 struct sockaddr_un addr;
997 struct cmsghdr *cmsg;
998 struct msghdr msghdr;
999 struct iovec iov;
1000 struct xfer_sock_list *xfer_sock = NULL;
Olivier Houchard54740872017-04-06 14:45:14 +02001001 struct timeval tv = { .tv_sec = 1, .tv_usec = 0 };
Olivier Houchardf73629d2017-04-05 22:33:04 +02001002 int sock = -1;
1003 int ret = -1;
1004 int ret2 = -1;
1005 int fd_nb;
1006 int got_fd = 0;
1007 int i = 0;
1008 size_t maxoff = 0, curoff = 0;
1009
1010 memset(&msghdr, 0, sizeof(msghdr));
1011 cmsgbuf = malloc(CMSG_SPACE(sizeof(int)) * MAX_SEND_FD);
1012 if (!cmsgbuf) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001013 ha_warning("Failed to allocate memory to send sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001014 goto out;
1015 }
1016 sock = socket(PF_UNIX, SOCK_STREAM, 0);
1017 if (sock < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001018 ha_warning("Failed to connect to the old process socket '%s'\n",
1019 unixsocket);
Olivier Houchardf73629d2017-04-05 22:33:04 +02001020 goto out;
1021 }
Willy Tarreaud668dcf2019-12-11 16:29:10 +01001022 strncpy(addr.sun_path, unixsocket, sizeof(addr.sun_path) - 1);
Olivier Houchardf73629d2017-04-05 22:33:04 +02001023 addr.sun_path[sizeof(addr.sun_path) - 1] = 0;
1024 addr.sun_family = PF_UNIX;
1025 ret = connect(sock, (struct sockaddr *)&addr, sizeof(addr));
1026 if (ret < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001027 ha_warning("Failed to connect to the old process socket '%s'\n",
1028 unixsocket);
Olivier Houchardf73629d2017-04-05 22:33:04 +02001029 goto out;
1030 }
Olivier Houchard54740872017-04-06 14:45:14 +02001031 setsockopt(sock, SOL_SOCKET, SO_RCVTIMEO, (void *)&tv, sizeof(tv));
Olivier Houchardf73629d2017-04-05 22:33:04 +02001032 iov.iov_base = &fd_nb;
1033 iov.iov_len = sizeof(fd_nb);
1034 msghdr.msg_iov = &iov;
1035 msghdr.msg_iovlen = 1;
1036 send(sock, "_getsocks\n", strlen("_getsocks\n"), 0);
1037 /* First, get the number of file descriptors to be received */
1038 if (recvmsg(sock, &msghdr, MSG_WAITALL) != sizeof(fd_nb)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001039 ha_warning("Failed to get the number of sockets to be transferred !\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001040 goto out;
1041 }
1042 if (fd_nb == 0) {
1043 ret = 0;
1044 goto out;
1045 }
Olivier Houchardf143b802017-11-04 15:13:01 +01001046 tmpbuf = malloc(fd_nb * (1 + MAXPATHLEN + 1 + IFNAMSIZ + sizeof(int)));
Olivier Houchardf73629d2017-04-05 22:33:04 +02001047 if (tmpbuf == NULL) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001048 ha_warning("Failed to allocate memory while receiving sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001049 goto out;
1050 }
1051 tmpfd = malloc(fd_nb * sizeof(int));
1052 if (tmpfd == NULL) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001053 ha_warning("Failed to allocate memory while receiving sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001054 goto out;
1055 }
1056 msghdr.msg_control = cmsgbuf;
1057 msghdr.msg_controllen = CMSG_SPACE(sizeof(int)) * MAX_SEND_FD;
Olivier Houchardf143b802017-11-04 15:13:01 +01001058 iov.iov_len = MAX_SEND_FD * (1 + MAXPATHLEN + 1 + IFNAMSIZ + sizeof(int));
Olivier Houchardf73629d2017-04-05 22:33:04 +02001059 do {
1060 int ret3;
1061
1062 iov.iov_base = tmpbuf + curoff;
1063 ret = recvmsg(sock, &msghdr, 0);
1064 if (ret == -1 && errno == EINTR)
1065 continue;
1066 if (ret <= 0)
1067 break;
1068 /* Send an ack to let the sender know we got the sockets
1069 * and it can send some more
1070 */
1071 do {
1072 ret3 = send(sock, &got_fd, sizeof(got_fd), 0);
1073 } while (ret3 == -1 && errno == EINTR);
1074 for (cmsg = CMSG_FIRSTHDR(&msghdr); cmsg != NULL;
1075 cmsg = CMSG_NXTHDR(&msghdr, cmsg)) {
1076 if (cmsg->cmsg_level == SOL_SOCKET &&
1077 cmsg->cmsg_type == SCM_RIGHTS) {
1078 size_t totlen = cmsg->cmsg_len -
1079 CMSG_LEN(0);
1080 if (totlen / sizeof(int) + got_fd > fd_nb) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001081 ha_warning("Got to many sockets !\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001082 goto out;
1083 }
1084 /*
1085 * Be paranoid and use memcpy() to avoid any
1086 * potential alignement issue.
1087 */
1088 memcpy(&tmpfd[got_fd], CMSG_DATA(cmsg), totlen);
1089 got_fd += totlen / sizeof(int);
1090 }
1091 }
1092 curoff += ret;
1093 } while (got_fd < fd_nb);
1094
1095 if (got_fd != fd_nb) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001096 ha_warning("We didn't get the expected number of sockets (expecting %d got %d)\n",
1097 fd_nb, got_fd);
Olivier Houchardf73629d2017-04-05 22:33:04 +02001098 goto out;
1099 }
1100 maxoff = curoff;
1101 curoff = 0;
1102 for (i = 0; i < got_fd; i++) {
1103 int fd = tmpfd[i];
1104 socklen_t socklen;
1105 int len;
1106
1107 xfer_sock = calloc(1, sizeof(*xfer_sock));
1108 if (!xfer_sock) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001109 ha_warning("Failed to allocate memory in get_old_sockets() !\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001110 break;
1111 }
1112 xfer_sock->fd = -1;
1113
1114 socklen = sizeof(xfer_sock->addr);
1115 if (getsockname(fd, (struct sockaddr *)&xfer_sock->addr, &socklen) != 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001116 ha_warning("Failed to get socket address\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001117 free(xfer_sock);
Olivier Houchardbe7b1ce2017-07-17 17:25:33 +02001118 xfer_sock = NULL;
Olivier Houchardf73629d2017-04-05 22:33:04 +02001119 continue;
1120 }
1121 if (curoff >= maxoff) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001122 ha_warning("Inconsistency while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001123 goto out;
1124 }
1125 len = tmpbuf[curoff++];
1126 if (len > 0) {
1127 /* We have a namespace */
1128 if (curoff + len > maxoff) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001129 ha_warning("Inconsistency while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001130 goto out;
1131 }
1132 xfer_sock->namespace = malloc(len + 1);
1133 if (!xfer_sock->namespace) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001134 ha_warning("Failed to allocate memory while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001135 goto out;
1136 }
1137 memcpy(xfer_sock->namespace, &tmpbuf[curoff], len);
1138 xfer_sock->namespace[len] = 0;
1139 curoff += len;
1140 }
1141 if (curoff >= maxoff) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001142 ha_warning("Inconsistency while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001143 goto out;
1144 }
1145 len = tmpbuf[curoff++];
1146 if (len > 0) {
1147 /* We have an interface */
1148 if (curoff + len > maxoff) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001149 ha_warning("Inconsistency while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001150 goto out;
1151 }
1152 xfer_sock->iface = malloc(len + 1);
1153 if (!xfer_sock->iface) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001154 ha_warning("Failed to allocate memory while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001155 goto out;
1156 }
1157 memcpy(xfer_sock->iface, &tmpbuf[curoff], len);
Olivier Houchard33e083c2018-03-15 17:48:49 +01001158 xfer_sock->iface[len] = 0;
Olivier Houchardf73629d2017-04-05 22:33:04 +02001159 curoff += len;
1160 }
1161 if (curoff + sizeof(int) > maxoff) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001162 ha_warning("Inconsistency while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001163 goto out;
1164 }
1165 memcpy(&xfer_sock->options, &tmpbuf[curoff],
1166 sizeof(xfer_sock->options));
1167 curoff += sizeof(xfer_sock->options);
1168
1169 xfer_sock->fd = fd;
1170 if (xfer_sock_list)
1171 xfer_sock_list->prev = xfer_sock;
1172 xfer_sock->next = xfer_sock_list;
1173 xfer_sock->prev = NULL;
1174 xfer_sock_list = xfer_sock;
1175 xfer_sock = NULL;
1176 }
1177
1178 ret2 = 0;
1179out:
1180 /* If we failed midway make sure to close the remaining
1181 * file descriptors
1182 */
1183 if (tmpfd != NULL && i < got_fd) {
1184 for (; i < got_fd; i++) {
1185 close(tmpfd[i]);
1186 }
1187 }
1188 free(tmpbuf);
1189 free(tmpfd);
1190 free(cmsgbuf);
1191 if (sock != -1)
1192 close(sock);
1193 if (xfer_sock) {
1194 free(xfer_sock->namespace);
1195 free(xfer_sock->iface);
1196 if (xfer_sock->fd != -1)
1197 close(xfer_sock->fd);
1198 free(xfer_sock);
1199 }
1200 return (ret2);
1201}
1202
Willy Tarreaubaaee002006-06-26 02:48:02 +02001203/*
William Lallemand73b85e72017-06-01 17:38:51 +02001204 * copy and cleanup the current argv
William Lallemand16545cb2020-06-04 17:40:23 +02001205 * Remove the -sf /-st / -x parameters
William Lallemand73b85e72017-06-01 17:38:51 +02001206 * Return an allocated copy of argv
1207 */
1208
1209static char **copy_argv(int argc, char **argv)
1210{
William Lallemand16545cb2020-06-04 17:40:23 +02001211 char **newargv, **retargv;
William Lallemand73b85e72017-06-01 17:38:51 +02001212
1213 newargv = calloc(argc + 2, sizeof(char *));
1214 if (newargv == NULL) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001215 ha_warning("Cannot allocate memory\n");
William Lallemand73b85e72017-06-01 17:38:51 +02001216 return NULL;
1217 }
William Lallemand16545cb2020-06-04 17:40:23 +02001218 retargv = newargv;
William Lallemand73b85e72017-06-01 17:38:51 +02001219
William Lallemand16545cb2020-06-04 17:40:23 +02001220 /* first copy argv[0] */
1221 *newargv++ = *argv++;
1222 argc--;
1223
1224 while (argc > 0) {
1225 if (**argv != '-') {
1226 /* non options are copied but will fail in the argument parser */
1227 *newargv++ = *argv++;
1228 argc--;
1229
1230 } else {
1231 char *flag;
1232
1233 flag = *argv + 1;
1234
1235 if (flag[0] == '-' && flag[1] == 0) {
1236 /* "--\0" copy every arguments till the end of argv */
1237 *newargv++ = *argv++;
1238 argc--;
1239
1240 while (argc > 0) {
1241 *newargv++ = *argv++;
1242 argc--;
1243 }
1244 } else {
1245 switch (*flag) {
1246 case 's':
1247 /* -sf / -st and their parameters are ignored */
1248 if (flag[1] == 'f' || flag[1] == 't') {
1249 argc--;
1250 argv++;
1251 /* The list can't contain a negative value since the only
1252 way to know the end of this list is by looking for the
1253 next option or the end of the options */
1254 while (argc > 0 && argv[0][0] != '-') {
1255 argc--;
1256 argv++;
1257 }
1258 }
1259 break;
1260
1261 case 'x':
1262 /* this option and its parameter are ignored */
1263 argc--;
1264 argv++;
1265 if (argc > 0) {
1266 argc--;
1267 argv++;
1268 }
1269 break;
1270
1271 case 'C':
1272 case 'n':
1273 case 'm':
1274 case 'N':
1275 case 'L':
1276 case 'f':
1277 case 'p':
1278 case 'S':
1279 /* these options have only 1 parameter which must be copied and can start with a '-' */
1280 *newargv++ = *argv++;
1281 argc--;
1282 if (argc == 0)
1283 goto error;
1284 *newargv++ = *argv++;
1285 argc--;
1286 break;
1287 default:
1288 /* for other options just copy them without parameters, this is also done
1289 * for options like "--foo", but this will fail in the argument parser.
1290 * */
1291 *newargv++ = *argv++;
1292 argc--;
1293 break;
1294 }
William Lallemand73b85e72017-06-01 17:38:51 +02001295 }
1296 }
William Lallemand73b85e72017-06-01 17:38:51 +02001297 }
William Lallemand2bf6d622017-06-20 11:20:23 +02001298
William Lallemand16545cb2020-06-04 17:40:23 +02001299 return retargv;
1300
1301error:
1302 free(retargv);
1303 return NULL;
William Lallemand73b85e72017-06-01 17:38:51 +02001304}
1305
Willy Tarreau4ce41952020-03-06 18:57:15 +01001306
1307/* Performs basic random seed initialization. The main issue with this is that
1308 * srandom_r() only takes 32 bits and purposely provides a reproducible sequence,
1309 * which means that there will only be 4 billion possible random sequences once
1310 * srandom() is called, regardless of the internal state. Not calling it is
1311 * even worse as we'll always produce the same randoms sequences. What we do
1312 * here is to create an initial sequence from various entropy sources, hash it
1313 * using SHA1 and keep the resulting 160 bits available globally.
1314 *
1315 * We initialize the current process with the first 32 bits before starting the
1316 * polling loop, where all this will be changed to have process specific and
1317 * thread specific sequences.
Willy Tarreau861c4ef2020-03-08 00:42:37 +01001318 *
1319 * Before starting threads, it's still possible to call random() as srandom()
1320 * is initialized from this, but after threads and/or processes are started,
1321 * only ha_random() is expected to be used to guarantee distinct sequences.
Willy Tarreau4ce41952020-03-06 18:57:15 +01001322 */
1323static void ha_random_boot(char *const *argv)
1324{
1325 unsigned char message[256];
1326 unsigned char *m = message;
1327 struct timeval tv;
1328 blk_SHA_CTX ctx;
1329 unsigned long l;
1330 int fd;
1331 int i;
1332
1333 /* start with current time as pseudo-random seed */
1334 gettimeofday(&tv, NULL);
1335 write_u32(m, tv.tv_sec); m += 4;
1336 write_u32(m, tv.tv_usec); m += 4;
1337
1338 /* PID and PPID add some OS-based randomness */
1339 write_u16(m, getpid()); m += 2;
1340 write_u16(m, getppid()); m += 2;
1341
1342 /* take up to 160 bits bytes from /dev/urandom if available (non-blocking) */
1343 fd = open("/dev/urandom", O_RDONLY);
1344 if (fd >= 0) {
1345 i = read(fd, m, 20);
1346 if (i > 0)
1347 m += i;
1348 close(fd);
1349 }
1350
1351 /* take up to 160 bits bytes from openssl (non-blocking) */
1352#ifdef USE_OPENSSL
1353 if (RAND_bytes(m, 20) == 1)
1354 m += 20;
1355#endif
1356
1357 /* take 160 bits from existing random in case it was already initialized */
1358 for (i = 0; i < 5; i++) {
1359 write_u32(m, random());
1360 m += 4;
1361 }
1362
1363 /* stack address (benefit form operating system's ASLR) */
1364 l = (unsigned long)&m;
1365 memcpy(m, &l, sizeof(l)); m += sizeof(l);
1366
1367 /* argv address (benefit form operating system's ASLR) */
1368 l = (unsigned long)&argv;
1369 memcpy(m, &l, sizeof(l)); m += sizeof(l);
1370
1371 /* use tv_usec again after all the operations above */
1372 gettimeofday(&tv, NULL);
1373 write_u32(m, tv.tv_usec); m += 4;
1374
1375 /*
1376 * At this point, ~84-92 bytes have been used
1377 */
1378
1379 /* finish with the hostname */
1380 strncpy((char *)m, hostname, message + sizeof(message) - m);
1381 m += strlen(hostname);
1382
1383 /* total message length */
1384 l = m - message;
1385
1386 memset(&ctx, 0, sizeof(ctx));
1387 blk_SHA1_Init(&ctx);
1388 blk_SHA1_Update(&ctx, message, l);
1389 blk_SHA1_Final(boot_seed, &ctx);
1390
1391 srandom(read_u32(boot_seed));
Willy Tarreau861c4ef2020-03-08 00:42:37 +01001392 ha_random_seed(boot_seed, sizeof(boot_seed));
Willy Tarreau4ce41952020-03-06 18:57:15 +01001393}
1394
Willy Tarreau5a023f02019-03-01 14:19:31 +01001395/* considers splicing proxies' maxconn, computes the ideal global.maxpipes
1396 * setting, and returns it. It may return -1 meaning "unlimited" if some
1397 * unlimited proxies have been found and the global.maxconn value is not yet
1398 * set. It may also return a value greater than maxconn if it's not yet set.
1399 * Note that a value of zero means there is no need for pipes. -1 is never
1400 * returned if global.maxconn is valid.
1401 */
1402static int compute_ideal_maxpipes()
1403{
1404 struct proxy *cur;
1405 int nbfe = 0, nbbe = 0;
1406 int unlimited = 0;
1407 int pipes;
1408 int max;
1409
1410 for (cur = proxies_list; cur; cur = cur->next) {
1411 if (cur->options2 & (PR_O2_SPLIC_ANY)) {
1412 if (cur->cap & PR_CAP_FE) {
1413 max = cur->maxconn;
1414 nbfe += max;
1415 if (!max) {
1416 unlimited = 1;
1417 break;
1418 }
1419 }
1420 if (cur->cap & PR_CAP_BE) {
1421 max = cur->fullconn ? cur->fullconn : global.maxconn;
1422 nbbe += max;
1423 if (!max) {
1424 unlimited = 1;
1425 break;
1426 }
1427 }
1428 }
1429 }
1430
1431 pipes = MAX(nbfe, nbbe);
1432 if (global.maxconn) {
1433 if (pipes > global.maxconn || unlimited)
1434 pipes = global.maxconn;
1435 } else if (unlimited) {
1436 pipes = -1;
1437 }
1438
1439 return pipes >= 4 ? pipes / 4 : pipes;
1440}
1441
Willy Tarreauac350932019-03-01 15:43:14 +01001442/* considers global.maxsocks, global.maxpipes, async engines, SSL frontends and
1443 * rlimits and computes an ideal maxconn. It's meant to be called only when
1444 * maxsock contains the sum of listening FDs, before it is updated based on
Willy Tarreaudf23c0c2019-03-13 10:10:49 +01001445 * maxconn and pipes. If there are not enough FDs left, DEFAULT_MAXCONN (by
1446 * default 100) is returned as it is expected that it will even run on tight
1447 * environments, and will maintain compatibility with previous packages that
1448 * used to rely on this value as the default one. The system will emit a
1449 * warning indicating how many FDs are missing anyway if needed.
Willy Tarreauac350932019-03-01 15:43:14 +01001450 */
1451static int compute_ideal_maxconn()
1452{
1453 int ssl_sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
1454 int engine_fds = global.ssl_used_async_engines * ssl_sides;
1455 int pipes = compute_ideal_maxpipes();
Willy Tarreau3477ebe2020-03-06 10:25:31 +01001456 int remain = MAX(rlim_fd_cur_at_boot, rlim_fd_max_at_boot);
Willy Tarreauac350932019-03-01 15:43:14 +01001457 int maxconn;
1458
1459 /* we have to take into account these elements :
1460 * - number of engine_fds, which inflates the number of FD needed per
1461 * connection by this number.
1462 * - number of pipes per connection on average : for the unlimited
1463 * case, this is 0.5 pipe FDs per connection, otherwise it's a
1464 * fixed value of 2*pipes.
1465 * - two FDs per connection
1466 */
1467
1468 /* subtract listeners and checks */
1469 remain -= global.maxsock;
1470
Willy Tarreau3f200852019-03-14 19:13:17 +01001471 /* one epoll_fd/kqueue_fd per thread */
1472 remain -= global.nbthread;
1473
1474 /* one wake-up pipe (2 fd) per thread */
1475 remain -= 2 * global.nbthread;
1476
Willy Tarreauac350932019-03-01 15:43:14 +01001477 /* Fixed pipes values : we only subtract them if they're not larger
1478 * than the remaining FDs because pipes are optional.
1479 */
1480 if (pipes >= 0 && pipes * 2 < remain)
1481 remain -= pipes * 2;
1482
1483 if (pipes < 0) {
1484 /* maxsock = maxconn * 2 + maxconn/4 * 2 + maxconn * engine_fds.
1485 * = maxconn * (2 + 0.5 + engine_fds)
1486 * = maxconn * (4 + 1 + 2*engine_fds) / 2
1487 */
1488 maxconn = 2 * remain / (5 + 2 * engine_fds);
1489 } else {
1490 /* maxsock = maxconn * 2 + maxconn * engine_fds.
1491 * = maxconn * (2 + engine_fds)
1492 */
1493 maxconn = remain / (2 + engine_fds);
1494 }
1495
Willy Tarreaudf23c0c2019-03-13 10:10:49 +01001496 return MAX(maxconn, DEFAULT_MAXCONN);
Willy Tarreauac350932019-03-01 15:43:14 +01001497}
1498
William Lallemand73b85e72017-06-01 17:38:51 +02001499/*
Willy Tarreaubaaee002006-06-26 02:48:02 +02001500 * This function initializes all the necessary variables. It only returns
1501 * if everything is OK. If something fails, it exits.
1502 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +01001503static void init(int argc, char **argv)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001504{
Willy Tarreaubaaee002006-06-26 02:48:02 +02001505 int arg_mode = 0; /* MODE_DEBUG, ... */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001506 char *tmp;
1507 char *cfg_pidfile = NULL;
Willy Tarreau058e9072009-07-20 09:30:05 +02001508 int err_code = 0;
Maxime de Roucy0f503922016-05-13 23:52:55 +02001509 char *err_msg = NULL;
Willy Tarreau477ecd82010-01-03 21:12:30 +01001510 struct wordlist *wl;
Kevinm48936af2010-12-22 16:08:21 +00001511 char *progname;
Willy Tarreau576132e2011-09-10 19:26:56 +02001512 char *change_dir = NULL;
Christopher Fauletd7c91962015-04-30 11:48:27 +02001513 struct proxy *px;
Willy Tarreaue6945732016-12-21 19:57:00 +01001514 struct post_check_fct *pcf;
Willy Tarreauac350932019-03-01 15:43:14 +01001515 int ideal_maxconn;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001516
Christopher Faulete3a5e352017-10-24 13:53:54 +02001517 global.mode = MODE_STARTING;
William Lallemand73b85e72017-06-01 17:38:51 +02001518 next_argv = copy_argv(argc, argv);
William Lallemand16545cb2020-06-04 17:40:23 +02001519 if (!next_argv) {
1520 ha_alert("failed to copy argv.\n");
1521 exit(1);
1522 }
William Lallemand73b85e72017-06-01 17:38:51 +02001523
Christopher Fauletcd7879a2017-10-27 13:53:47 +02001524 if (!init_trash_buffers(1)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001525 ha_alert("failed to initialize trash buffers.\n");
Christopher Faulet748919a2017-07-26 14:59:46 +02001526 exit(1);
1527 }
David du Colombier7af46052012-05-16 14:16:48 +02001528
Emeric Brun2b920a12010-09-23 18:30:22 +02001529 /* NB: POSIX does not make it mandatory for gethostname() to NULL-terminate
1530 * the string in case of truncation, and at least FreeBSD appears not to do
1531 * it.
1532 */
1533 memset(hostname, 0, sizeof(hostname));
1534 gethostname(hostname, sizeof(hostname) - 1);
1535 memset(localpeer, 0, sizeof(localpeer));
1536 memcpy(localpeer, hostname, (sizeof(hostname) > sizeof(localpeer) ? sizeof(localpeer) : sizeof(hostname)) - 1);
William Lallemanddaf4cd22018-04-17 16:46:13 +02001537 setenv("HAPROXY_LOCALPEER", localpeer, 1);
Emeric Brun2b920a12010-09-23 18:30:22 +02001538
William Lallemand8e16e7a2020-01-14 17:58:18 +01001539 /* we were in mworker mode, we should restart in mworker mode */
1540 if (getenv("HAPROXY_MWORKER_REEXEC") != NULL)
1541 global.mode |= MODE_MWORKER;
1542
Willy Tarreaubaaee002006-06-26 02:48:02 +02001543 /*
1544 * Initialize the previously static variables.
1545 */
Christopher Fauletcd7879a2017-10-27 13:53:47 +02001546
Willy Tarreau173d9952018-01-26 21:48:23 +01001547 totalconn = actconn = listeners = stopping = 0;
Cyril Bonté203ec5a2017-03-23 22:44:13 +01001548 killed = 0;
Christopher Fauletcd7879a2017-10-27 13:53:47 +02001549
Willy Tarreaubaaee002006-06-26 02:48:02 +02001550
1551#ifdef HAPROXY_MEMMAX
Willy Tarreau70060452015-12-14 12:46:07 +01001552 global.rlimit_memmax_all = HAPROXY_MEMMAX;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001553#endif
1554
Benoit GARNIERb413c2a2016-03-27 11:08:03 +02001555 tzset();
Willy Tarreaub0b37bc2008-06-23 14:00:57 +02001556 tv_update_date(-1,-1);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001557 start_date = now;
1558
Willy Tarreau4ce41952020-03-06 18:57:15 +01001559 ha_random_boot(argv);
Willy Tarreau84310e22014-02-14 11:59:04 +01001560
Willy Tarreau8ed669b2013-01-11 15:49:37 +01001561 if (init_acl() != 0)
1562 exit(1);
Willy Tarreaub6b3df32018-11-26 16:31:20 +01001563
Willy Tarreau8280d642009-09-23 23:37:52 +02001564 /* warning, we init buffers later */
Willy Tarreau04f1e2d2018-09-10 18:04:24 +02001565 if (!init_http(&err_msg)) {
1566 ha_alert("%s. Aborting.\n", err_msg);
1567 free(err_msg);
1568 abort();
1569 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001570
Thierry FOURNIER6f1fd482015-01-23 14:06:13 +01001571 /* Initialise lua. */
1572 hlua_init();
Thierry FOURNIER6f1fd482015-01-23 14:06:13 +01001573
Christopher Fauletff2613e2016-11-09 11:36:17 +01001574 /* Initialize process vars */
1575 vars_init(&global.vars, SCOPE_PROC);
1576
Willy Tarreau43b78992009-01-25 15:42:27 +01001577 global.tune.options |= GTUNE_USE_SELECT; /* select() is always available */
Willy Tarreaue5733232019-05-22 19:24:06 +02001578#if defined(USE_POLL)
Willy Tarreau43b78992009-01-25 15:42:27 +01001579 global.tune.options |= GTUNE_USE_POLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001580#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001581#if defined(USE_EPOLL)
Willy Tarreau43b78992009-01-25 15:42:27 +01001582 global.tune.options |= GTUNE_USE_EPOLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001583#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001584#if defined(USE_KQUEUE)
Willy Tarreau43b78992009-01-25 15:42:27 +01001585 global.tune.options |= GTUNE_USE_KQUEUE;
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001586#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001587#if defined(USE_EVPORTS)
Emmanuel Hocdet0ba4f482019-04-08 16:53:32 +00001588 global.tune.options |= GTUNE_USE_EVPORTS;
1589#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001590#if defined(USE_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +01001591 global.tune.options |= GTUNE_USE_SPLICE;
1592#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +02001593#if defined(USE_GETADDRINFO)
1594 global.tune.options |= GTUNE_USE_GAI;
1595#endif
Lukas Tribusa0bcbdc2016-09-12 21:42:20 +00001596#if defined(SO_REUSEPORT)
1597 global.tune.options |= GTUNE_USE_REUSEPORT;
1598#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +02001599
1600 pid = getpid();
1601 progname = *argv;
1602 while ((tmp = strchr(progname, '/')) != NULL)
1603 progname = tmp + 1;
1604
Kevinm48936af2010-12-22 16:08:21 +00001605 /* the process name is used for the logs only */
Dragan Dosen43885c72015-10-01 13:18:13 +02001606 chunk_initstr(&global.log_tag, strdup(progname));
Kevinm48936af2010-12-22 16:08:21 +00001607
Willy Tarreaubaaee002006-06-26 02:48:02 +02001608 argc--; argv++;
1609 while (argc > 0) {
1610 char *flag;
1611
1612 if (**argv == '-') {
1613 flag = *argv+1;
1614
1615 /* 1 arg */
1616 if (*flag == 'v') {
1617 display_version();
Willy Tarreau7b066db2007-12-02 11:28:59 +01001618 if (flag[1] == 'v') /* -vv */
1619 display_build_opts();
Willy Tarreaubaaee002006-06-26 02:48:02 +02001620 exit(0);
1621 }
Willy Tarreaue5733232019-05-22 19:24:06 +02001622#if defined(USE_EPOLL)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001623 else if (*flag == 'd' && flag[1] == 'e')
Willy Tarreau43b78992009-01-25 15:42:27 +01001624 global.tune.options &= ~GTUNE_USE_EPOLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001625#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001626#if defined(USE_POLL)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001627 else if (*flag == 'd' && flag[1] == 'p')
Willy Tarreau43b78992009-01-25 15:42:27 +01001628 global.tune.options &= ~GTUNE_USE_POLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001629#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001630#if defined(USE_KQUEUE)
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001631 else if (*flag == 'd' && flag[1] == 'k')
Willy Tarreau43b78992009-01-25 15:42:27 +01001632 global.tune.options &= ~GTUNE_USE_KQUEUE;
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001633#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001634#if defined(USE_EVPORTS)
Emmanuel Hocdet0ba4f482019-04-08 16:53:32 +00001635 else if (*flag == 'd' && flag[1] == 'v')
1636 global.tune.options &= ~GTUNE_USE_EVPORTS;
1637#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001638#if defined(USE_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +01001639 else if (*flag == 'd' && flag[1] == 'S')
1640 global.tune.options &= ~GTUNE_USE_SPLICE;
1641#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +02001642#if defined(USE_GETADDRINFO)
1643 else if (*flag == 'd' && flag[1] == 'G')
1644 global.tune.options &= ~GTUNE_USE_GAI;
1645#endif
Lukas Tribusa0bcbdc2016-09-12 21:42:20 +00001646#if defined(SO_REUSEPORT)
1647 else if (*flag == 'd' && flag[1] == 'R')
1648 global.tune.options &= ~GTUNE_USE_REUSEPORT;
1649#endif
Emeric Brun850efd52014-01-29 12:24:34 +01001650 else if (*flag == 'd' && flag[1] == 'V')
1651 global.ssl_server_verify = SSL_SERVER_VERIFY_NONE;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001652 else if (*flag == 'V')
1653 arg_mode |= MODE_VERBOSE;
1654 else if (*flag == 'd' && flag[1] == 'b')
1655 arg_mode |= MODE_FOREGROUND;
Willy Tarreau6e064432012-05-08 15:40:42 +02001656 else if (*flag == 'd' && flag[1] == 'M')
1657 mem_poison_byte = flag[2] ? strtol(flag + 2, NULL, 0) : 'P';
Willy Tarreau3eed10e2016-11-07 21:03:16 +01001658 else if (*flag == 'd' && flag[1] == 'r')
1659 global.tune.options |= GTUNE_RESOLVE_DONTFAIL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001660 else if (*flag == 'd')
1661 arg_mode |= MODE_DEBUG;
1662 else if (*flag == 'c')
1663 arg_mode |= MODE_CHECK;
William Lallemand095ba4c2017-06-01 17:38:50 +02001664 else if (*flag == 'D')
Willy Tarreau6bde87b2009-05-18 16:29:51 +02001665 arg_mode |= MODE_DAEMON;
Tim Duesterhusd6942c82017-11-20 15:58:35 +01001666 else if (*flag == 'W' && flag[1] == 's') {
Lukas Tribusf46bf952017-11-21 12:39:34 +01001667 arg_mode |= MODE_MWORKER | MODE_FOREGROUND;
Tim Duesterhusd6942c82017-11-20 15:58:35 +01001668#if defined(USE_SYSTEMD)
1669 global.tune.options |= GTUNE_USE_SYSTEMD;
1670#else
Christopher Faulet767a84b2017-11-24 16:50:31 +01001671 ha_alert("master-worker mode with systemd support (-Ws) requested, but not compiled. Use master-worker mode (-W) if you are not using Type=notify in your unit file or recompile with USE_SYSTEMD=1.\n\n");
Tim Duesterhusd6942c82017-11-20 15:58:35 +01001672 usage(progname);
1673#endif
1674 }
William Lallemand095ba4c2017-06-01 17:38:50 +02001675 else if (*flag == 'W')
1676 arg_mode |= MODE_MWORKER;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001677 else if (*flag == 'q')
1678 arg_mode |= MODE_QUIET;
Olivier Houchardf73629d2017-04-05 22:33:04 +02001679 else if (*flag == 'x') {
William Lallemand45eff442017-06-19 15:57:55 +02001680 if (argc <= 1 || argv[1][0] == '-') {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001681 ha_alert("Unix socket path expected with the -x flag\n\n");
William Lallemand45eff442017-06-19 15:57:55 +02001682 usage(progname);
Olivier Houchardf73629d2017-04-05 22:33:04 +02001683 }
William Lallemand4fc09692017-06-19 16:37:19 +02001684 if (old_unixsocket)
Christopher Faulet767a84b2017-11-24 16:50:31 +01001685 ha_warning("-x option already set, overwriting the value\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001686 old_unixsocket = argv[1];
William Lallemand4fc09692017-06-19 16:37:19 +02001687
Olivier Houchardf73629d2017-04-05 22:33:04 +02001688 argv++;
1689 argc--;
1690 }
William Lallemande7361152018-10-26 14:47:36 +02001691 else if (*flag == 'S') {
1692 struct wordlist *c;
1693
1694 if (argc <= 1 || argv[1][0] == '-') {
1695 ha_alert("Socket and optional bind parameters expected with the -S flag\n");
1696 usage(progname);
1697 }
1698 if ((c = malloc(sizeof(*c))) == NULL || (c->s = strdup(argv[1])) == NULL) {
1699 ha_alert("Cannot allocate memory\n");
1700 exit(EXIT_FAILURE);
1701 }
1702 LIST_ADD(&mworker_cli_conf, &c->list);
1703
1704 argv++;
1705 argc--;
1706 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001707 else if (*flag == 's' && (flag[1] == 'f' || flag[1] == 't')) {
1708 /* list of pids to finish ('f') or terminate ('t') */
1709
1710 if (flag[1] == 'f')
1711 oldpids_sig = SIGUSR1; /* finish then exit */
1712 else
1713 oldpids_sig = SIGTERM; /* terminate immediately */
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001714 while (argc > 1 && argv[1][0] != '-') {
Chris Lane236062f2018-02-05 23:15:44 +00001715 char * endptr = NULL;
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001716 oldpids = realloc(oldpids, (nb_oldpids + 1) * sizeof(int));
1717 if (!oldpids) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001718 ha_alert("Cannot allocate old pid : out of memory.\n");
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001719 exit(1);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001720 }
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001721 argc--; argv++;
Chris Lane236062f2018-02-05 23:15:44 +00001722 errno = 0;
1723 oldpids[nb_oldpids] = strtol(*argv, &endptr, 10);
1724 if (errno) {
1725 ha_alert("-%2s option: failed to parse {%s}: %s\n",
1726 flag,
1727 *argv, strerror(errno));
1728 exit(1);
1729 } else if (endptr && strlen(endptr)) {
1730 while (isspace(*endptr)) endptr++;
Aurélien Nephtali39b89882018-02-17 20:53:11 +01001731 if (*endptr != 0) {
Chris Lane236062f2018-02-05 23:15:44 +00001732 ha_alert("-%2s option: some bytes unconsumed in PID list {%s}\n",
1733 flag, endptr);
1734 exit(1);
Aurélien Nephtali39b89882018-02-17 20:53:11 +01001735 }
Chris Lane236062f2018-02-05 23:15:44 +00001736 }
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001737 if (oldpids[nb_oldpids] <= 0)
1738 usage(progname);
1739 nb_oldpids++;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001740 }
1741 }
Willy Tarreaua088d312015-10-08 11:58:48 +02001742 else if (flag[0] == '-' && flag[1] == 0) { /* "--" */
1743 /* now that's a cfgfile list */
1744 argv++; argc--;
1745 while (argc > 0) {
Maxime de Roucy0f503922016-05-13 23:52:55 +02001746 if (!list_append_word(&cfg_cfgfiles, *argv, &err_msg)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001747 ha_alert("Cannot load configuration file/directory %s : %s\n",
1748 *argv,
1749 err_msg);
Willy Tarreaua088d312015-10-08 11:58:48 +02001750 exit(1);
1751 }
Willy Tarreaua088d312015-10-08 11:58:48 +02001752 argv++; argc--;
1753 }
1754 break;
1755 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001756 else { /* >=2 args */
1757 argv++; argc--;
1758 if (argc == 0)
Willy Tarreau3bafcdc2011-09-10 19:20:23 +02001759 usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001760
1761 switch (*flag) {
Willy Tarreau576132e2011-09-10 19:26:56 +02001762 case 'C' : change_dir = *argv; break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001763 case 'n' : cfg_maxconn = atol(*argv); break;
Willy Tarreau70060452015-12-14 12:46:07 +01001764 case 'm' : global.rlimit_memmax_all = atol(*argv); break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001765 case 'N' : cfg_maxpconn = atol(*argv); break;
William Lallemanddaf4cd22018-04-17 16:46:13 +02001766 case 'L' :
1767 strncpy(localpeer, *argv, sizeof(localpeer) - 1);
1768 setenv("HAPROXY_LOCALPEER", localpeer, 1);
1769 break;
Willy Tarreau5d01a632009-06-22 16:02:30 +02001770 case 'f' :
Maxime de Roucy0f503922016-05-13 23:52:55 +02001771 if (!list_append_word(&cfg_cfgfiles, *argv, &err_msg)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001772 ha_alert("Cannot load configuration file/directory %s : %s\n",
1773 *argv,
1774 err_msg);
Willy Tarreau5d01a632009-06-22 16:02:30 +02001775 exit(1);
1776 }
Willy Tarreau5d01a632009-06-22 16:02:30 +02001777 break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001778 case 'p' : cfg_pidfile = *argv; break;
Willy Tarreau3bafcdc2011-09-10 19:20:23 +02001779 default: usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001780 }
1781 }
1782 }
1783 else
Willy Tarreau3bafcdc2011-09-10 19:20:23 +02001784 usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001785 argv++; argc--;
1786 }
1787
Christopher Faulete3a5e352017-10-24 13:53:54 +02001788 global.mode |= (arg_mode & (MODE_DAEMON | MODE_MWORKER | MODE_FOREGROUND | MODE_VERBOSE
1789 | MODE_QUIET | MODE_CHECK | MODE_DEBUG));
Willy Tarreaubaaee002006-06-26 02:48:02 +02001790
William Lallemand944e6192018-11-21 15:48:31 +01001791 if (getenv("HAPROXY_MWORKER_WAIT_ONLY")) {
William Lallemandcb11fd22017-06-01 17:38:52 +02001792 unsetenv("HAPROXY_MWORKER_WAIT_ONLY");
William Lallemand944e6192018-11-21 15:48:31 +01001793 global.mode |= MODE_MWORKER_WAIT;
1794 global.mode &= ~MODE_MWORKER;
William Lallemandcb11fd22017-06-01 17:38:52 +02001795 }
1796
1797 if ((global.mode & MODE_MWORKER) && (getenv("HAPROXY_MWORKER_REEXEC") != NULL)) {
1798 atexit_flag = 1;
1799 atexit(reexec_on_failure);
1800 }
1801
Willy Tarreau576132e2011-09-10 19:26:56 +02001802 if (change_dir && chdir(change_dir) < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001803 ha_alert("Could not change to directory %s : %s\n", change_dir, strerror(errno));
Willy Tarreau576132e2011-09-10 19:26:56 +02001804 exit(1);
1805 }
1806
Willy Tarreaubaaee002006-06-26 02:48:02 +02001807 global.maxsock = 10; /* reserve 10 fds ; will be incremented by socket eaters */
Willy Tarreau915e1eb2009-06-22 15:48:36 +02001808
1809 init_default_instance();
1810
William Lallemand944e6192018-11-21 15:48:31 +01001811 /* in wait mode, we don't try to read the configuration files */
1812 if (!(global.mode & MODE_MWORKER_WAIT)) {
William Lallemand7b302d82019-05-20 11:15:37 +02001813 struct buffer *trash = get_trash_chunk();
Willy Tarreauc4382422009-12-06 13:10:44 +01001814
William Lallemand944e6192018-11-21 15:48:31 +01001815 /* handle cfgfiles that are actually directories */
1816 cfgfiles_expand_directories();
1817
1818 if (LIST_ISEMPTY(&cfg_cfgfiles))
1819 usage(progname);
1820
1821
1822 list_for_each_entry(wl, &cfg_cfgfiles, list) {
1823 int ret;
1824
William Lallemand7b302d82019-05-20 11:15:37 +02001825 if (trash->data)
1826 chunk_appendf(trash, ";");
1827
1828 chunk_appendf(trash, "%s", wl->s);
1829
William Lallemand944e6192018-11-21 15:48:31 +01001830 ret = readcfgfile(wl->s);
1831 if (ret == -1) {
1832 ha_alert("Could not open configuration file %s : %s\n",
1833 wl->s, strerror(errno));
1834 exit(1);
1835 }
1836 if (ret & (ERR_ABORT|ERR_FATAL))
1837 ha_alert("Error(s) found in configuration file : %s\n", wl->s);
1838 err_code |= ret;
1839 if (err_code & ERR_ABORT)
1840 exit(1);
Willy Tarreauc4382422009-12-06 13:10:44 +01001841 }
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001842
William Lallemand944e6192018-11-21 15:48:31 +01001843 /* do not try to resolve arguments nor to spot inconsistencies when
1844 * the configuration contains fatal errors caused by files not found
1845 * or failed memory allocations.
1846 */
1847 if (err_code & (ERR_ABORT|ERR_FATAL)) {
1848 ha_alert("Fatal errors found in configuration.\n");
1849 exit(1);
1850 }
William Lallemand7b302d82019-05-20 11:15:37 +02001851 if (trash->data)
1852 setenv("HAPROXY_CFGFILES", trash->area, 1);
1853
Willy Tarreaub83dc3d2017-04-19 11:24:07 +02001854 }
William Lallemandce83b4a2018-10-26 14:47:30 +02001855 if (global.mode & MODE_MWORKER) {
1856 int proc;
William Lallemand16dd1b32018-11-19 18:46:18 +01001857 struct mworker_proc *tmproc;
1858
William Lallemand482f9a92019-04-12 16:15:00 +02001859 setenv("HAPROXY_MWORKER", "1", 1);
1860
William Lallemand16dd1b32018-11-19 18:46:18 +01001861 if (getenv("HAPROXY_MWORKER_REEXEC") == NULL) {
1862
William Lallemandf3a86832019-04-01 11:29:58 +02001863 tmproc = calloc(1, sizeof(*tmproc));
William Lallemand16dd1b32018-11-19 18:46:18 +01001864 if (!tmproc) {
1865 ha_alert("Cannot allocate process structures.\n");
1866 exit(EXIT_FAILURE);
1867 }
William Lallemand8f7069a2019-04-12 16:09:23 +02001868 tmproc->options |= PROC_O_TYPE_MASTER; /* master */
William Lallemand16dd1b32018-11-19 18:46:18 +01001869 tmproc->reloads = 0;
1870 tmproc->relative_pid = 0;
1871 tmproc->pid = pid;
1872 tmproc->timestamp = start_date.tv_sec;
1873 tmproc->ipc_fd[0] = -1;
1874 tmproc->ipc_fd[1] = -1;
1875
1876 proc_self = tmproc;
1877
1878 LIST_ADDQ(&proc_list, &tmproc->list);
1879 }
William Lallemandce83b4a2018-10-26 14:47:30 +02001880
1881 for (proc = 0; proc < global.nbproc; proc++) {
William Lallemandce83b4a2018-10-26 14:47:30 +02001882
William Lallemandf3a86832019-04-01 11:29:58 +02001883 tmproc = calloc(1, sizeof(*tmproc));
William Lallemandce83b4a2018-10-26 14:47:30 +02001884 if (!tmproc) {
1885 ha_alert("Cannot allocate process structures.\n");
1886 exit(EXIT_FAILURE);
1887 }
1888
William Lallemand8f7069a2019-04-12 16:09:23 +02001889 tmproc->options |= PROC_O_TYPE_WORKER; /* worker */
William Lallemandce83b4a2018-10-26 14:47:30 +02001890 tmproc->pid = -1;
1891 tmproc->reloads = 0;
William Lallemande3683302018-11-19 18:46:17 +01001892 tmproc->timestamp = -1;
William Lallemandce83b4a2018-10-26 14:47:30 +02001893 tmproc->relative_pid = 1 + proc;
William Lallemand550db6d2018-11-06 17:37:12 +01001894 tmproc->ipc_fd[0] = -1;
1895 tmproc->ipc_fd[1] = -1;
William Lallemandce83b4a2018-10-26 14:47:30 +02001896
1897 if (mworker_cli_sockpair_new(tmproc, proc) < 0) {
1898 exit(EXIT_FAILURE);
1899 }
1900
1901 LIST_ADDQ(&proc_list, &tmproc->list);
1902 }
William Lallemand944e6192018-11-21 15:48:31 +01001903 }
1904 if (global.mode & (MODE_MWORKER|MODE_MWORKER_WAIT)) {
1905 struct wordlist *it, *c;
1906
William Lallemand1b663612018-10-26 14:47:33 +02001907 mworker_env_to_proc_list(); /* get the info of the children in the env */
William Lallemand8a022572018-10-26 14:47:35 +02001908
William Lallemande7361152018-10-26 14:47:36 +02001909
William Lallemand550db6d2018-11-06 17:37:12 +01001910 if (!LIST_ISEMPTY(&mworker_cli_conf)) {
William Lallemande7361152018-10-26 14:47:36 +02001911
William Lallemand550db6d2018-11-06 17:37:12 +01001912 if (mworker_cli_proxy_create() < 0) {
William Lallemande7361152018-10-26 14:47:36 +02001913 ha_alert("Can't create the master's CLI.\n");
1914 exit(EXIT_FAILURE);
1915 }
William Lallemande7361152018-10-26 14:47:36 +02001916
William Lallemand550db6d2018-11-06 17:37:12 +01001917 list_for_each_entry_safe(c, it, &mworker_cli_conf, list) {
1918
1919 if (mworker_cli_proxy_new_listener(c->s) < 0) {
1920 ha_alert("Can't create the master's CLI.\n");
1921 exit(EXIT_FAILURE);
1922 }
1923 LIST_DEL(&c->list);
1924 free(c->s);
1925 free(c);
1926 }
1927 }
William Lallemandce83b4a2018-10-26 14:47:30 +02001928 }
1929
Willy Tarreaubb925012009-07-23 13:36:36 +02001930 err_code |= check_config_validity();
1931 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001932 ha_alert("Fatal errors found in configuration.\n");
Willy Tarreau915e1eb2009-06-22 15:48:36 +02001933 exit(1);
1934 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001935
Carl Henrik Lunde4944c8c2020-02-27 16:45:50 +01001936 err_code |= pattern_finalize_config();
1937 if (err_code & (ERR_ABORT|ERR_FATAL)) {
1938 ha_alert("Failed to finalize pattern config.\n");
1939 exit(1);
1940 }
Willy Tarreau0f936722019-04-11 14:47:08 +02001941
Willy Tarreau70060452015-12-14 12:46:07 +01001942 /* recompute the amount of per-process memory depending on nbproc and
1943 * the shared SSL cache size (allowed to exist in all processes).
1944 */
1945 if (global.rlimit_memmax_all) {
1946#if defined (USE_OPENSSL) && !defined(USE_PRIVATE_CACHE)
1947 int64_t ssl_cache_bytes = global.tune.sslcachesize * 200LL;
1948
1949 global.rlimit_memmax =
1950 ((((int64_t)global.rlimit_memmax_all * 1048576LL) -
1951 ssl_cache_bytes) / global.nbproc +
1952 ssl_cache_bytes + 1048575LL) / 1048576LL;
1953#else
1954 global.rlimit_memmax = global.rlimit_memmax_all / global.nbproc;
1955#endif
1956 }
1957
Willy Tarreaue5733232019-05-22 19:24:06 +02001958#ifdef USE_NS
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +01001959 err_code |= netns_init();
1960 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001961 ha_alert("Failed to initialize namespace support.\n");
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +01001962 exit(1);
1963 }
1964#endif
1965
Baptiste Assmann4215d7d2016-11-02 15:33:15 +01001966 /* Apply server states */
1967 apply_server_state();
1968
Olivier Houchardfbc74e82017-11-24 16:54:05 +01001969 for (px = proxies_list; px; px = px->next)
Baptiste Assmann4215d7d2016-11-02 15:33:15 +01001970 srv_compute_all_admin_states(px);
1971
Baptiste Assmann83cbaa52016-11-02 15:34:05 +01001972 /* Apply servers' configured address */
1973 err_code |= srv_init_addr();
1974 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001975 ha_alert("Failed to initialize server(s) addr.\n");
Baptiste Assmann83cbaa52016-11-02 15:34:05 +01001976 exit(1);
1977 }
1978
Willy Tarreaubaaee002006-06-26 02:48:02 +02001979 if (global.mode & MODE_CHECK) {
Willy Tarreau8b15ba12012-02-02 17:48:18 +01001980 struct peers *pr;
1981 struct proxy *px;
1982
Frédéric Lécailleed2b4a62017-07-13 09:07:09 +02001983 for (pr = cfg_peers; pr; pr = pr->next)
Willy Tarreau8b15ba12012-02-02 17:48:18 +01001984 if (pr->peers_fe)
1985 break;
1986
Olivier Houchardfbc74e82017-11-24 16:54:05 +01001987 for (px = proxies_list; px; px = px->next)
Willy Tarreau4348fad2012-09-20 16:48:07 +02001988 if (px->state == PR_STNEW && !LIST_ISEMPTY(&px->conf.listeners))
Willy Tarreau8b15ba12012-02-02 17:48:18 +01001989 break;
1990
1991 if (pr || px) {
1992 /* At least one peer or one listener has been found */
1993 qfprintf(stdout, "Configuration file is valid\n");
1994 exit(0);
1995 }
1996 qfprintf(stdout, "Configuration file has no error but will not start (no listener) => exit(2).\n");
1997 exit(2);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001998 }
1999
Emeric Brunc60def82017-09-27 14:59:38 +02002000 global_listener_queue_task = task_new(MAX_THREADS_MASK);
Willy Tarreaue9b26022011-08-01 20:57:55 +02002001 if (!global_listener_queue_task) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002002 ha_alert("Out of memory when initializing global task\n");
Willy Tarreaue9b26022011-08-01 20:57:55 +02002003 exit(1);
2004 }
2005 /* very simple initialization, users will queue the task if needed */
2006 global_listener_queue_task->context = NULL; /* not even a context! */
2007 global_listener_queue_task->process = manage_global_listener_queue;
Willy Tarreaue9b26022011-08-01 20:57:55 +02002008
Willy Tarreau8263d2b2012-08-28 00:06:31 +02002009 /* now we know the buffer size, we can initialize the channels and buffers */
Willy Tarreau9b28e032012-10-12 23:49:43 +02002010 init_buffer();
Willy Tarreau8280d642009-09-23 23:37:52 +02002011
Willy Tarreaue6945732016-12-21 19:57:00 +01002012 list_for_each_entry(pcf, &post_check_list, list) {
2013 err_code |= pcf->fct();
2014 if (err_code & (ERR_ABORT|ERR_FATAL))
2015 exit(1);
2016 }
2017
Willy Tarreaubaaee002006-06-26 02:48:02 +02002018 if (cfg_maxconn > 0)
2019 global.maxconn = cfg_maxconn;
2020
Willy Tarreau8d687d82019-03-01 09:39:42 +01002021 if (global.stats_fe)
2022 global.maxsock += global.stats_fe->maxconn;
2023
2024 if (cfg_peers) {
2025 /* peers also need to bypass global maxconn */
2026 struct peers *p = cfg_peers;
2027
2028 for (p = cfg_peers; p; p = p->next)
2029 if (p->peers_fe)
2030 global.maxsock += p->peers_fe->maxconn;
2031 }
2032
Willy Tarreaubaaee002006-06-26 02:48:02 +02002033 if (cfg_pidfile) {
Willy Tarreaua534fea2008-08-03 12:19:50 +02002034 free(global.pidfile);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002035 global.pidfile = strdup(cfg_pidfile);
2036 }
2037
Willy Tarreaud0256482015-01-15 21:45:22 +01002038 /* Now we want to compute the maxconn and possibly maxsslconn values.
Willy Tarreauac350932019-03-01 15:43:14 +01002039 * It's a bit tricky. Maxconn defaults to the pre-computed value based
2040 * on rlim_fd_cur and the number of FDs in use due to the configuration,
2041 * and maxsslconn defaults to DEFAULT_MAXSSLCONN. On top of that we can
2042 * enforce a lower limit based on memmax.
Willy Tarreaud0256482015-01-15 21:45:22 +01002043 *
2044 * If memmax is set, then it depends on which values are set. If
2045 * maxsslconn is set, we use memmax to determine how many cleartext
2046 * connections may be added, and set maxconn to the sum of the two.
2047 * If maxconn is set and not maxsslconn, maxsslconn is computed from
2048 * the remaining amount of memory between memmax and the cleartext
2049 * connections. If neither are set, then it is considered that all
2050 * connections are SSL-capable, and maxconn is computed based on this,
2051 * then maxsslconn accordingly. We need to know if SSL is used on the
2052 * frontends, backends, or both, because when it's used on both sides,
2053 * we need twice the value for maxsslconn, but we only count the
2054 * handshake once since it is not performed on the two sides at the
2055 * same time (frontend-side is terminated before backend-side begins).
2056 * The SSL stack is supposed to have filled ssl_session_cost and
Willy Tarreau474b96a2015-01-28 19:03:21 +01002057 * ssl_handshake_cost during its initialization. In any case, if
2058 * SYSTEM_MAXCONN is set, we still enforce it as an upper limit for
2059 * maxconn in order to protect the system.
Willy Tarreaud0256482015-01-15 21:45:22 +01002060 */
Willy Tarreauac350932019-03-01 15:43:14 +01002061 ideal_maxconn = compute_ideal_maxconn();
2062
Willy Tarreaud0256482015-01-15 21:45:22 +01002063 if (!global.rlimit_memmax) {
2064 if (global.maxconn == 0) {
Willy Tarreauac350932019-03-01 15:43:14 +01002065 global.maxconn = ideal_maxconn;
Willy Tarreaud0256482015-01-15 21:45:22 +01002066 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
2067 fprintf(stderr, "Note: setting global.maxconn to %d.\n", global.maxconn);
2068 }
2069 }
2070#ifdef USE_OPENSSL
2071 else if (!global.maxconn && !global.maxsslconn &&
2072 (global.ssl_used_frontend || global.ssl_used_backend)) {
2073 /* memmax is set, compute everything automatically. Here we want
2074 * to ensure that all SSL connections will be served. We take
2075 * care of the number of sides where SSL is used, and consider
2076 * the worst case : SSL used on both sides and doing a handshake
2077 * simultaneously. Note that we can't have more than maxconn
2078 * handshakes at a time by definition, so for the worst case of
2079 * two SSL conns per connection, we count a single handshake.
2080 */
2081 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
2082 int64_t mem = global.rlimit_memmax * 1048576ULL;
2083
2084 mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry
2085 mem -= global.maxzlibmem;
2086 mem = mem * MEM_USABLE_RATIO;
2087
2088 global.maxconn = mem /
Willy Tarreau87b09662015-04-03 00:22:06 +02002089 ((STREAM_MAX_COST + 2 * global.tune.bufsize) + // stream + 2 buffers per stream
Willy Tarreaud0256482015-01-15 21:45:22 +01002090 sides * global.ssl_session_max_cost + // SSL buffers, one per side
2091 global.ssl_handshake_max_cost); // 1 handshake per connection max
2092
Willy Tarreauac350932019-03-01 15:43:14 +01002093 global.maxconn = MIN(global.maxconn, ideal_maxconn);
Willy Tarreaud0256482015-01-15 21:45:22 +01002094 global.maxconn = round_2dig(global.maxconn);
Willy Tarreau474b96a2015-01-28 19:03:21 +01002095#ifdef SYSTEM_MAXCONN
Willy Tarreauca783d42019-03-13 10:03:07 +01002096 if (global.maxconn > SYSTEM_MAXCONN)
2097 global.maxconn = SYSTEM_MAXCONN;
Willy Tarreau474b96a2015-01-28 19:03:21 +01002098#endif /* SYSTEM_MAXCONN */
Willy Tarreaud0256482015-01-15 21:45:22 +01002099 global.maxsslconn = sides * global.maxconn;
2100 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
2101 fprintf(stderr, "Note: setting global.maxconn to %d and global.maxsslconn to %d.\n",
2102 global.maxconn, global.maxsslconn);
2103 }
2104 else if (!global.maxsslconn &&
2105 (global.ssl_used_frontend || global.ssl_used_backend)) {
2106 /* memmax and maxconn are known, compute maxsslconn automatically.
2107 * maxsslconn being forced, we don't know how many of it will be
2108 * on each side if both sides are being used. The worst case is
2109 * when all connections use only one SSL instance because
2110 * handshakes may be on two sides at the same time.
2111 */
2112 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
2113 int64_t mem = global.rlimit_memmax * 1048576ULL;
2114 int64_t sslmem;
2115
2116 mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry
2117 mem -= global.maxzlibmem;
2118 mem = mem * MEM_USABLE_RATIO;
2119
Willy Tarreau87b09662015-04-03 00:22:06 +02002120 sslmem = mem - global.maxconn * (int64_t)(STREAM_MAX_COST + 2 * global.tune.bufsize);
Willy Tarreaud0256482015-01-15 21:45:22 +01002121 global.maxsslconn = sslmem / (global.ssl_session_max_cost + global.ssl_handshake_max_cost);
2122 global.maxsslconn = round_2dig(global.maxsslconn);
2123
2124 if (sslmem <= 0 || global.maxsslconn < sides) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002125 ha_alert("Cannot compute the automatic maxsslconn because global.maxconn is already too "
2126 "high for the global.memmax value (%d MB). The absolute maximum possible value "
2127 "without SSL is %d, but %d was found and SSL is in use.\n",
2128 global.rlimit_memmax,
2129 (int)(mem / (STREAM_MAX_COST + 2 * global.tune.bufsize)),
2130 global.maxconn);
Willy Tarreaud0256482015-01-15 21:45:22 +01002131 exit(1);
2132 }
2133
2134 if (global.maxsslconn > sides * global.maxconn)
2135 global.maxsslconn = sides * global.maxconn;
2136
2137 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
2138 fprintf(stderr, "Note: setting global.maxsslconn to %d\n", global.maxsslconn);
2139 }
2140#endif
2141 else if (!global.maxconn) {
2142 /* memmax and maxsslconn are known/unused, compute maxconn automatically */
2143 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
2144 int64_t mem = global.rlimit_memmax * 1048576ULL;
2145 int64_t clearmem;
2146
2147 if (global.ssl_used_frontend || global.ssl_used_backend)
2148 mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry
2149
2150 mem -= global.maxzlibmem;
2151 mem = mem * MEM_USABLE_RATIO;
2152
2153 clearmem = mem;
2154 if (sides)
2155 clearmem -= (global.ssl_session_max_cost + global.ssl_handshake_max_cost) * (int64_t)global.maxsslconn;
2156
Willy Tarreau87b09662015-04-03 00:22:06 +02002157 global.maxconn = clearmem / (STREAM_MAX_COST + 2 * global.tune.bufsize);
Willy Tarreauac350932019-03-01 15:43:14 +01002158 global.maxconn = MIN(global.maxconn, ideal_maxconn);
Willy Tarreaud0256482015-01-15 21:45:22 +01002159 global.maxconn = round_2dig(global.maxconn);
Willy Tarreau474b96a2015-01-28 19:03:21 +01002160#ifdef SYSTEM_MAXCONN
Willy Tarreauca783d42019-03-13 10:03:07 +01002161 if (global.maxconn > SYSTEM_MAXCONN)
2162 global.maxconn = SYSTEM_MAXCONN;
Willy Tarreau474b96a2015-01-28 19:03:21 +01002163#endif /* SYSTEM_MAXCONN */
Willy Tarreaud0256482015-01-15 21:45:22 +01002164
2165 if (clearmem <= 0 || !global.maxconn) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002166 ha_alert("Cannot compute the automatic maxconn because global.maxsslconn is already too "
2167 "high for the global.memmax value (%d MB). The absolute maximum possible value "
2168 "is %d, but %d was found.\n",
2169 global.rlimit_memmax,
2170 (int)(mem / (global.ssl_session_max_cost + global.ssl_handshake_max_cost)),
2171 global.maxsslconn);
Willy Tarreaud0256482015-01-15 21:45:22 +01002172 exit(1);
2173 }
2174
2175 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
2176 if (sides && global.maxsslconn > sides * global.maxconn) {
2177 fprintf(stderr, "Note: global.maxsslconn is forced to %d which causes global.maxconn "
2178 "to be limited to %d. Better reduce global.maxsslconn to get more "
2179 "room for extra connections.\n", global.maxsslconn, global.maxconn);
2180 }
2181 fprintf(stderr, "Note: setting global.maxconn to %d\n", global.maxconn);
2182 }
Willy Tarreau66aa61f2009-01-18 21:44:07 +01002183 }
2184
Willy Tarreau5a023f02019-03-01 14:19:31 +01002185 if (!global.maxpipes)
2186 global.maxpipes = compute_ideal_maxpipes();
Willy Tarreau66aa61f2009-01-18 21:44:07 +01002187
Willy Tarreauabacc2c2011-09-07 14:26:33 +02002188 global.hardmaxconn = global.maxconn; /* keep this max value */
Willy Tarreaubaaee002006-06-26 02:48:02 +02002189 global.maxsock += global.maxconn * 2; /* each connection needs two sockets */
Willy Tarreau3ec79b92009-01-18 20:39:42 +01002190 global.maxsock += global.maxpipes * 2; /* each pipe needs two FDs */
Willy Tarreau2c58b412019-03-14 19:10:55 +01002191 global.maxsock += global.nbthread; /* one epoll_fd/kqueue_fd per thread */
2192 global.maxsock += 2 * global.nbthread; /* one wake-up pipe (2 fd) per thread */
2193
Emeric Brunece0c332017-12-06 13:51:49 +01002194 /* compute fd used by async engines */
2195 if (global.ssl_used_async_engines) {
2196 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
2197 global.maxsock += global.maxconn * sides * global.ssl_used_async_engines;
2198 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002199
Olivier Houchard88698d92019-04-16 19:07:22 +02002200 /* update connection pool thresholds */
2201 global.tune.pool_low_count = ((long long)global.maxsock * global.tune.pool_low_ratio + 99) / 100;
2202 global.tune.pool_high_count = ((long long)global.maxsock * global.tune.pool_high_ratio + 99) / 100;
2203
Willy Tarreauc8d5b952019-02-27 17:25:52 +01002204 proxy_adjust_all_maxconn();
2205
Willy Tarreau1db37712007-06-03 17:16:49 +02002206 if (global.tune.maxpollevents <= 0)
2207 global.tune.maxpollevents = MAX_POLL_EVENTS;
2208
Olivier Houchard1599b802018-05-24 18:59:04 +02002209 if (global.tune.runqueue_depth <= 0)
2210 global.tune.runqueue_depth = RUNQUEUE_DEPTH;
2211
Willy Tarreau6f4a82c2009-03-21 20:43:57 +01002212 if (global.tune.recv_enough == 0)
2213 global.tune.recv_enough = MIN_RECV_AT_ONCE_ENOUGH;
2214
Willy Tarreau27097842015-09-28 13:53:23 +02002215 if (global.tune.maxrewrite < 0)
2216 global.tune.maxrewrite = MAXREWRITE;
2217
Willy Tarreau27a674e2009-08-17 07:23:33 +02002218 if (global.tune.maxrewrite >= global.tune.bufsize / 2)
2219 global.tune.maxrewrite = global.tune.bufsize / 2;
2220
Willy Tarreaubaaee002006-06-26 02:48:02 +02002221 if (arg_mode & (MODE_DEBUG | MODE_FOREGROUND)) {
2222 /* command line debug mode inhibits configuration mode */
William Lallemand095ba4c2017-06-01 17:38:50 +02002223 global.mode &= ~(MODE_DAEMON | MODE_QUIET);
Willy Tarreau772f0dd2012-10-26 16:04:28 +02002224 global.mode |= (arg_mode & (MODE_DEBUG | MODE_FOREGROUND));
2225 }
2226
William Lallemand095ba4c2017-06-01 17:38:50 +02002227 if (arg_mode & MODE_DAEMON) {
Willy Tarreau772f0dd2012-10-26 16:04:28 +02002228 /* command line daemon mode inhibits foreground and debug modes mode */
2229 global.mode &= ~(MODE_DEBUG | MODE_FOREGROUND);
William Lallemand095ba4c2017-06-01 17:38:50 +02002230 global.mode |= arg_mode & MODE_DAEMON;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002231 }
Willy Tarreau772f0dd2012-10-26 16:04:28 +02002232
2233 global.mode |= (arg_mode & (MODE_QUIET | MODE_VERBOSE));
Willy Tarreaubaaee002006-06-26 02:48:02 +02002234
William Lallemand095ba4c2017-06-01 17:38:50 +02002235 if ((global.mode & MODE_DEBUG) && (global.mode & (MODE_DAEMON | MODE_QUIET))) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002236 ha_warning("<debug> mode incompatible with <quiet> and <daemon>. Keeping <debug> only.\n");
William Lallemand095ba4c2017-06-01 17:38:50 +02002237 global.mode &= ~(MODE_DAEMON | MODE_QUIET);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002238 }
2239
William Lallemand095ba4c2017-06-01 17:38:50 +02002240 if ((global.nbproc > 1) && !(global.mode & (MODE_DAEMON | MODE_MWORKER))) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02002241 if (!(global.mode & (MODE_FOREGROUND | MODE_DEBUG)))
Christopher Faulet767a84b2017-11-24 16:50:31 +01002242 ha_warning("<nbproc> is only meaningful in daemon mode or master-worker mode. Setting limit to 1 process.\n");
Willy Tarreaubaaee002006-06-26 02:48:02 +02002243 global.nbproc = 1;
2244 }
2245
2246 if (global.nbproc < 1)
2247 global.nbproc = 1;
2248
Christopher Fauletbe0faa22017-08-29 15:37:10 +02002249 if (global.nbthread < 1)
2250 global.nbthread = 1;
2251
Christopher Faulet3ef26392017-08-29 16:46:57 +02002252 /* Realloc trash buffers because global.tune.bufsize may have changed */
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002253 if (!init_trash_buffers(0)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002254 ha_alert("failed to initialize trash buffers.\n");
Christopher Faulet3ef26392017-08-29 16:46:57 +02002255 exit(1);
2256 }
2257
Christopher Faulet96d44832017-11-14 22:02:30 +01002258 if (!init_log_buffers()) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002259 ha_alert("failed to initialize log buffers.\n");
Christopher Faulet96d44832017-11-14 22:02:30 +01002260 exit(1);
2261 }
2262
Willy Tarreauef1d1f82007-04-16 00:25:25 +02002263 /*
2264 * Note: we could register external pollers here.
2265 * Built-in pollers have been registered before main().
2266 */
Willy Tarreau4f60f162007-04-08 16:39:58 +02002267
Willy Tarreau43b78992009-01-25 15:42:27 +01002268 if (!(global.tune.options & GTUNE_USE_KQUEUE))
Willy Tarreau1e63130a2007-04-09 12:03:06 +02002269 disable_poller("kqueue");
2270
Emmanuel Hocdet0ba4f482019-04-08 16:53:32 +00002271 if (!(global.tune.options & GTUNE_USE_EVPORTS))
2272 disable_poller("evports");
2273
Willy Tarreau43b78992009-01-25 15:42:27 +01002274 if (!(global.tune.options & GTUNE_USE_EPOLL))
Willy Tarreau4f60f162007-04-08 16:39:58 +02002275 disable_poller("epoll");
2276
Willy Tarreau43b78992009-01-25 15:42:27 +01002277 if (!(global.tune.options & GTUNE_USE_POLL))
Willy Tarreau4f60f162007-04-08 16:39:58 +02002278 disable_poller("poll");
2279
Willy Tarreau43b78992009-01-25 15:42:27 +01002280 if (!(global.tune.options & GTUNE_USE_SELECT))
Willy Tarreau4f60f162007-04-08 16:39:58 +02002281 disable_poller("select");
2282
2283 /* Note: we could disable any poller by name here */
2284
Christopher Fauletb3f4e142016-03-07 12:46:38 +01002285 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
Willy Tarreau2ff76222007-04-09 19:29:56 +02002286 list_pollers(stderr);
Christopher Fauletb3f4e142016-03-07 12:46:38 +01002287 fprintf(stderr, "\n");
2288 list_filters(stderr);
2289 }
Willy Tarreau2ff76222007-04-09 19:29:56 +02002290
Willy Tarreau4f60f162007-04-08 16:39:58 +02002291 if (!init_pollers()) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002292 ha_alert("No polling mechanism available.\n"
2293 " It is likely that haproxy was built with TARGET=generic and that FD_SETSIZE\n"
2294 " is too low on this platform to support maxconn and the number of listeners\n"
2295 " and servers. You should rebuild haproxy specifying your system using TARGET=\n"
2296 " in order to support other polling systems (poll, epoll, kqueue) or reduce the\n"
2297 " global maxconn setting to accommodate the system's limitation. For reference,\n"
2298 " FD_SETSIZE=%d on this system, global.maxconn=%d resulting in a maximum of\n"
2299 " %d file descriptors. You should thus reduce global.maxconn by %d. Also,\n"
2300 " check build settings using 'haproxy -vv'.\n\n",
2301 FD_SETSIZE, global.maxconn, global.maxsock, (global.maxsock + 1 - FD_SETSIZE) / 2);
Willy Tarreau4f60f162007-04-08 16:39:58 +02002302 exit(1);
2303 }
Willy Tarreau2ff76222007-04-09 19:29:56 +02002304 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
2305 printf("Using %s() as the polling mechanism.\n", cur_poller.name);
Willy Tarreau4f60f162007-04-08 16:39:58 +02002306 }
2307
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02002308 if (!global.node)
2309 global.node = strdup(hostname);
2310
Thierry FOURNIERa4a0f3d2015-01-23 12:08:30 +01002311 if (!hlua_post_init())
2312 exit(1);
Thomas Holmes6abded42015-05-12 16:23:58 +01002313
Maxime de Roucy0f503922016-05-13 23:52:55 +02002314 free(err_msg);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002315}
2316
Simon Horman6fb82592011-07-15 13:14:11 +09002317static void deinit_acl_cond(struct acl_cond *cond)
Simon Hormanac821422011-07-15 13:14:09 +09002318{
Simon Hormanac821422011-07-15 13:14:09 +09002319 struct acl_term_suite *suite, *suiteb;
2320 struct acl_term *term, *termb;
2321
Simon Horman6fb82592011-07-15 13:14:11 +09002322 if (!cond)
2323 return;
2324
2325 list_for_each_entry_safe(suite, suiteb, &cond->suites, list) {
2326 list_for_each_entry_safe(term, termb, &suite->terms, list) {
2327 LIST_DEL(&term->list);
2328 free(term);
Simon Hormanac821422011-07-15 13:14:09 +09002329 }
Simon Horman6fb82592011-07-15 13:14:11 +09002330 LIST_DEL(&suite->list);
2331 free(suite);
2332 }
2333
2334 free(cond);
2335}
2336
Christopher Faulet482c8ec2019-12-17 11:25:46 +01002337static void deinit_act_rules(struct list *rules)
Simon Horman6fb82592011-07-15 13:14:11 +09002338{
Christopher Faulet482c8ec2019-12-17 11:25:46 +01002339 struct act_rule *rule, *ruleb;
Simon Horman6fb82592011-07-15 13:14:11 +09002340
Christopher Faulet482c8ec2019-12-17 11:25:46 +01002341 list_for_each_entry_safe(rule, ruleb, rules, list) {
2342 LIST_DEL(&rule->list);
2343 deinit_acl_cond(rule->cond);
2344 free(rule);
Simon Hormanac821422011-07-15 13:14:09 +09002345 }
2346}
2347
Simon Horman6fb82592011-07-15 13:14:11 +09002348static void deinit_stick_rules(struct list *rules)
2349{
2350 struct sticking_rule *rule, *ruleb;
2351
2352 list_for_each_entry_safe(rule, ruleb, rules, list) {
2353 LIST_DEL(&rule->list);
2354 deinit_acl_cond(rule->cond);
Christopher Faulet476e5d02016-10-26 11:34:47 +02002355 release_sample_expr(rule->expr);
Simon Horman6fb82592011-07-15 13:14:11 +09002356 free(rule);
2357 }
2358}
2359
Cyril Bonté203ec5a2017-03-23 22:44:13 +01002360void deinit(void)
Willy Tarreaubaaee002006-06-26 02:48:02 +02002361{
Olivier Houchardfbc74e82017-11-24 16:54:05 +01002362 struct proxy *p = proxies_list, *p0;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002363 struct cap_hdr *h,*h_next;
2364 struct server *s,*s_next;
2365 struct listener *l,*l_next;
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002366 struct acl_cond *cond, *condb;
2367 struct hdr_exp *exp, *expb;
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002368 struct acl *acl, *aclb;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002369 struct switching_rule *rule, *ruleb;
Willy Tarreau4a5cade2012-04-05 21:09:48 +02002370 struct server_rule *srule, *sruleb;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002371 struct redirect_rule *rdr, *rdrb;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01002372 struct wordlist *wl, *wlb;
Willy Tarreauf4f04122010-01-28 18:10:50 +01002373 struct cond_wordlist *cwl, *cwlb;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002374 struct uri_auth *uap, *ua = NULL;
William Lallemand0f99e342011-10-12 17:50:54 +02002375 struct logsrv *log, *logb;
William Lallemand723b73a2012-02-08 16:37:49 +01002376 struct logformat_node *lf, *lfb;
Willy Tarreau2a65ff02012-09-13 17:54:29 +02002377 struct bind_conf *bind_conf, *bind_back;
Willy Tarreaucdb737e2016-12-21 18:43:10 +01002378 struct build_opts_str *bol, *bolb;
Willy Tarreau05554e62016-12-21 20:46:26 +01002379 struct post_deinit_fct *pdf;
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002380 int i;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002381
Willy Tarreau24f4efa2010-08-27 17:56:48 +02002382 deinit_signals();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002383 while (p) {
Willy Tarreau8113a5d2012-10-04 08:01:43 +02002384 free(p->conf.file);
Willy Tarreaua534fea2008-08-03 12:19:50 +02002385 free(p->id);
2386 free(p->check_req);
Christopher Fauletf304ad32020-04-09 08:44:06 +02002387 free(p->check_hdrs);
2388 free(p->check_body);
Willy Tarreaua534fea2008-08-03 12:19:50 +02002389 free(p->cookie_name);
2390 free(p->cookie_domain);
Christopher Fauletdb2cdbb2020-01-21 11:06:48 +01002391 free(p->cookie_attrs);
Willy Tarreau4c03d1c2019-01-14 15:23:54 +01002392 free(p->lbprm.arg_str);
Willy Tarreaua534fea2008-08-03 12:19:50 +02002393 free(p->capture_name);
2394 free(p->monitor_uri);
Simon Hormana31c7f72011-07-15 13:14:08 +09002395 free(p->rdp_cookie_name);
Willy Tarreau62a61232013-04-12 18:13:46 +02002396 if (p->conf.logformat_string != default_http_log_format &&
2397 p->conf.logformat_string != default_tcp_log_format &&
2398 p->conf.logformat_string != clf_http_log_format)
2399 free(p->conf.logformat_string);
Willy Tarreau196729e2012-05-31 19:30:26 +02002400
Willy Tarreau62a61232013-04-12 18:13:46 +02002401 free(p->conf.lfs_file);
2402 free(p->conf.uniqueid_format_string);
2403 free(p->conf.uif_file);
Willy Tarreau0cac26c2019-01-14 16:55:42 +01002404 if ((p->lbprm.algo & BE_LB_LKUP) == BE_LB_LKUP_MAP)
2405 free(p->lbprm.map.srv);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002406
Dragan Dosen0b85ece2015-09-25 19:17:44 +02002407 if (p->conf.logformat_sd_string != default_rfc5424_sd_log_format)
2408 free(p->conf.logformat_sd_string);
2409 free(p->conf.lfsd_file);
2410
Willy Tarreaua534fea2008-08-03 12:19:50 +02002411 for (i = 0; i < HTTP_ERR_SIZE; i++)
Krzysztof Piotr Oledzki78abe612009-09-27 13:23:20 +02002412 chunk_destroy(&p->errmsg[i]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002413
Willy Tarreauf4f04122010-01-28 18:10:50 +01002414 list_for_each_entry_safe(cwl, cwlb, &p->req_add, list) {
2415 LIST_DEL(&cwl->list);
2416 free(cwl->s);
2417 free(cwl);
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01002418 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002419
Willy Tarreauf4f04122010-01-28 18:10:50 +01002420 list_for_each_entry_safe(cwl, cwlb, &p->rsp_add, list) {
2421 LIST_DEL(&cwl->list);
2422 free(cwl->s);
2423 free(cwl);
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01002424 }
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002425
Willy Tarreaub80c2302007-11-30 20:51:32 +01002426 list_for_each_entry_safe(cond, condb, &p->mon_fail_cond, list) {
2427 LIST_DEL(&cond->list);
2428 prune_acl_cond(cond);
2429 free(cond);
2430 }
2431
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002432 for (exp = p->req_exp; exp != NULL; ) {
Dragan Dosen26743032019-04-30 15:54:36 +02002433 regex_free(exp->preg);
Willy Tarreau98d04852015-05-26 12:18:29 +02002434 free((char *)exp->replace);
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002435 expb = exp;
2436 exp = exp->next;
2437 free(expb);
2438 }
2439
2440 for (exp = p->rsp_exp; exp != NULL; ) {
Dragan Dosen26743032019-04-30 15:54:36 +02002441 regex_free(exp->preg);
Willy Tarreau98d04852015-05-26 12:18:29 +02002442 free((char *)exp->replace);
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002443 expb = exp;
2444 exp = exp->next;
2445 free(expb);
2446 }
2447
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002448 /* build a list of unique uri_auths */
2449 if (!ua)
2450 ua = p->uri_auth;
2451 else {
2452 /* check if p->uri_auth is unique */
2453 for (uap = ua; uap; uap=uap->next)
2454 if (uap == p->uri_auth)
2455 break;
2456
Willy Tarreauaccc4e12008-06-24 11:14:45 +02002457 if (!uap && p->uri_auth) {
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002458 /* add it, if it is */
2459 p->uri_auth->next = ua;
2460 ua = p->uri_auth;
2461 }
2462 }
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002463
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002464 list_for_each_entry_safe(acl, aclb, &p->acl, list) {
2465 LIST_DEL(&acl->list);
2466 prune_acl(acl);
2467 free(acl);
2468 }
2469
Willy Tarreau4a5cade2012-04-05 21:09:48 +02002470 list_for_each_entry_safe(srule, sruleb, &p->server_rules, list) {
2471 LIST_DEL(&srule->list);
2472 prune_acl_cond(srule->cond);
2473 free(srule->cond);
2474 free(srule);
2475 }
2476
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002477 list_for_each_entry_safe(rule, ruleb, &p->switching_rules, list) {
2478 LIST_DEL(&rule->list);
Willy Tarreauf51658d2014-04-23 01:21:56 +02002479 if (rule->cond) {
2480 prune_acl_cond(rule->cond);
2481 free(rule->cond);
2482 }
Dragan Dosen2a7c20f2019-04-30 00:38:36 +02002483 free(rule->file);
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002484 free(rule);
2485 }
2486
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002487 list_for_each_entry_safe(rdr, rdrb, &p->redirect_rules, list) {
2488 LIST_DEL(&rdr->list);
Willy Tarreauf285f542010-01-03 20:03:03 +01002489 if (rdr->cond) {
2490 prune_acl_cond(rdr->cond);
2491 free(rdr->cond);
2492 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002493 free(rdr->rdr_str);
Thierry FOURNIERd18cd0f2013-11-29 12:15:45 +01002494 list_for_each_entry_safe(lf, lfb, &rdr->rdr_fmt, list) {
2495 LIST_DEL(&lf->list);
2496 free(lf);
2497 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002498 free(rdr);
2499 }
2500
William Lallemand0f99e342011-10-12 17:50:54 +02002501 list_for_each_entry_safe(log, logb, &p->logsrvs, list) {
2502 LIST_DEL(&log->list);
2503 free(log);
2504 }
2505
William Lallemand723b73a2012-02-08 16:37:49 +01002506 list_for_each_entry_safe(lf, lfb, &p->logformat, list) {
2507 LIST_DEL(&lf->list);
Dragan Dosen61302da2019-04-30 00:40:02 +02002508 release_sample_expr(lf->expr);
2509 free(lf->arg);
William Lallemand723b73a2012-02-08 16:37:49 +01002510 free(lf);
2511 }
2512
Dragan Dosen0b85ece2015-09-25 19:17:44 +02002513 list_for_each_entry_safe(lf, lfb, &p->logformat_sd, list) {
2514 LIST_DEL(&lf->list);
Dragan Dosen61302da2019-04-30 00:40:02 +02002515 release_sample_expr(lf->expr);
2516 free(lf->arg);
Dragan Dosen0b85ece2015-09-25 19:17:44 +02002517 free(lf);
2518 }
2519
Christopher Faulet482c8ec2019-12-17 11:25:46 +01002520 deinit_act_rules(&p->tcp_req.inspect_rules);
2521 deinit_act_rules(&p->tcp_rep.inspect_rules);
2522 deinit_act_rules(&p->tcp_req.l4_rules);
2523 deinit_act_rules(&p->tcp_req.l5_rules);
2524 deinit_act_rules(&p->http_req_rules);
2525 deinit_act_rules(&p->http_res_rules);
Simon Hormanac821422011-07-15 13:14:09 +09002526
Simon Horman6fb82592011-07-15 13:14:11 +09002527 deinit_stick_rules(&p->storersp_rules);
2528 deinit_stick_rules(&p->sticking_rules);
2529
Willy Tarreaubaaee002006-06-26 02:48:02 +02002530 h = p->req_cap;
2531 while (h) {
2532 h_next = h->next;
Willy Tarreaua534fea2008-08-03 12:19:50 +02002533 free(h->name);
Willy Tarreaubafbe012017-11-24 17:34:44 +01002534 pool_destroy(h->pool);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002535 free(h);
2536 h = h_next;
2537 }/* end while(h) */
2538
2539 h = p->rsp_cap;
2540 while (h) {
2541 h_next = h->next;
Willy Tarreaua534fea2008-08-03 12:19:50 +02002542 free(h->name);
Willy Tarreaubafbe012017-11-24 17:34:44 +01002543 pool_destroy(h->pool);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002544 free(h);
2545 h = h_next;
2546 }/* end while(h) */
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002547
Willy Tarreaubaaee002006-06-26 02:48:02 +02002548 s = p->srv;
2549 while (s) {
2550 s_next = s->next;
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002551
Dragan Dosen026ef572019-04-30 00:56:20 +02002552
Willy Tarreauf6562792019-05-07 19:05:35 +02002553 task_destroy(s->warmup);
Willy Tarreau2e993902011-10-31 11:53:20 +01002554
Willy Tarreaua534fea2008-08-03 12:19:50 +02002555 free(s->id);
2556 free(s->cookie);
Christopher Faulet67957bd2017-09-27 11:00:59 +02002557 free(s->hostname_dn);
Sárközi, László34c01792014-09-05 10:08:23 +02002558 free((char*)s->conf.file);
Olivier Houchard7fc3be72018-11-22 18:50:54 +01002559 free(s->idle_conns);
2560 free(s->priv_conns);
2561 free(s->safe_conns);
Olivier Houchard0c18a6f2018-12-02 14:11:41 +01002562 free(s->idle_orphan_conns);
Olivier Houchardf1314812019-02-18 16:41:17 +01002563 free(s->curr_idle_thr);
Christopher Fauletc6e07702020-03-26 19:48:20 +01002564 deinit_srv_check(s);
2565 deinit_srv_agent_check(s);
Willy Tarreau17d45382016-12-22 21:16:08 +01002566
Christopher Faulet68d35ae2020-03-27 18:55:49 +01002567 if (s->use_ssl == 1 || s->check.use_ssl == 1 || (s->proxy->options & PR_O_TCPCHK_SSL)) {
Willy Tarreau17d45382016-12-22 21:16:08 +01002568 if (xprt_get(XPRT_SSL) && xprt_get(XPRT_SSL)->destroy_srv)
2569 xprt_get(XPRT_SSL)->destroy_srv(s);
2570 }
Christopher Faulet2a944ee2017-11-07 10:42:54 +01002571 HA_SPIN_DESTROY(&s->lock);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002572 free(s);
2573 s = s_next;
2574 }/* end while(s) */
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002575
Willy Tarreau4348fad2012-09-20 16:48:07 +02002576 list_for_each_entry_safe(l, l_next, &p->conf.listeners, by_fe) {
Olivier Houchard1fc05162017-04-06 01:05:05 +02002577 /*
2578 * Zombie proxy, the listener just pretend to be up
2579 * because they still hold an opened fd.
2580 * Close it and give the listener its real state.
2581 */
2582 if (p->state == PR_STSTOPPED && l->state >= LI_ZOMBIE) {
2583 close(l->fd);
2584 l->state = LI_INIT;
2585 }
Willy Tarreauf6e2cc72010-09-03 10:38:17 +02002586 unbind_listener(l);
2587 delete_listener(l);
Willy Tarreau4348fad2012-09-20 16:48:07 +02002588 LIST_DEL(&l->by_fe);
2589 LIST_DEL(&l->by_bind);
Krzysztof Piotr Oledzkiaff01ea2010-02-05 20:31:44 +01002590 free(l->name);
2591 free(l->counters);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002592 free(l);
Willy Tarreau4348fad2012-09-20 16:48:07 +02002593 }
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002594
Willy Tarreau4348fad2012-09-20 16:48:07 +02002595 /* Release unused SSL configs. */
Willy Tarreau2a65ff02012-09-13 17:54:29 +02002596 list_for_each_entry_safe(bind_conf, bind_back, &p->conf.bind, by_fe) {
Willy Tarreau795cdab2016-12-22 17:30:54 +01002597 if (bind_conf->xprt->destroy_bind_conf)
2598 bind_conf->xprt->destroy_bind_conf(bind_conf);
Willy Tarreau2a65ff02012-09-13 17:54:29 +02002599 free(bind_conf->file);
2600 free(bind_conf->arg);
2601 LIST_DEL(&bind_conf->by_fe);
2602 free(bind_conf);
2603 }
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02002604
Christopher Fauletd7c91962015-04-30 11:48:27 +02002605 flt_deinit(p);
2606
Krzysztof Piotr Oledzkiaff01ea2010-02-05 20:31:44 +01002607 free(p->desc);
2608 free(p->fwdfor_hdr_name);
2609
Olivier Houchard3f795f72019-04-17 22:51:06 +02002610 task_destroy(p->task);
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002611
Willy Tarreaubafbe012017-11-24 17:34:44 +01002612 pool_destroy(p->req_cap_pool);
2613 pool_destroy(p->rsp_cap_pool);
Dragan Dosen7d61a332019-05-07 14:16:18 +02002614 if (p->table)
2615 pool_destroy(p->table->pool);
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01002616
Willy Tarreau4d2d0982007-05-14 00:39:29 +02002617 p0 = p;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002618 p = p->next;
Christopher Faulet2a944ee2017-11-07 10:42:54 +01002619 HA_SPIN_DESTROY(&p0->lbprm.lock);
2620 HA_SPIN_DESTROY(&p0->lock);
Willy Tarreau4d2d0982007-05-14 00:39:29 +02002621 free(p0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002622 }/* end while(p) */
Willy Tarreaudd815982007-10-16 12:25:14 +02002623
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002624 while (ua) {
2625 uap = ua;
2626 ua = ua->next;
2627
Willy Tarreaua534fea2008-08-03 12:19:50 +02002628 free(uap->uri_prefix);
2629 free(uap->auth_realm);
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02002630 free(uap->node);
2631 free(uap->desc);
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002632
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01002633 userlist_free(uap->userlist);
Christopher Faulet482c8ec2019-12-17 11:25:46 +01002634 deinit_act_rules(&uap->http_req_rules);
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01002635
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002636 free(uap);
2637 }
2638
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01002639 userlist_free(userlist);
2640
David Carlier834cb2e2015-09-25 12:02:25 +01002641 cfg_unregister_sections();
2642
Christopher Faulet0132d062017-07-26 15:33:35 +02002643 deinit_log_buffers();
David Carlier834cb2e2015-09-25 12:02:25 +01002644
Willy Tarreaudd815982007-10-16 12:25:14 +02002645 protocol_unbind_all();
2646
Willy Tarreau05554e62016-12-21 20:46:26 +01002647 list_for_each_entry(pdf, &post_deinit_list, list)
2648 pdf->fct();
2649
Joe Williamsdf5b38f2010-12-29 17:05:48 +01002650 free(global.log_send_hostname); global.log_send_hostname = NULL;
Dragan Dosen43885c72015-10-01 13:18:13 +02002651 chunk_destroy(&global.log_tag);
Willy Tarreaua534fea2008-08-03 12:19:50 +02002652 free(global.chroot); global.chroot = NULL;
2653 free(global.pidfile); global.pidfile = NULL;
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02002654 free(global.node); global.node = NULL;
2655 free(global.desc); global.desc = NULL;
Willy Tarreaua534fea2008-08-03 12:19:50 +02002656 free(oldpids); oldpids = NULL;
Olivier Houchard3f795f72019-04-17 22:51:06 +02002657 task_destroy(global_listener_queue_task); global_listener_queue_task = NULL;
2658 task_destroy(idle_conn_task);
Olivier Houchard9ea5d362019-02-14 18:29:09 +01002659 idle_conn_task = NULL;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002660
William Lallemand0f99e342011-10-12 17:50:54 +02002661 list_for_each_entry_safe(log, logb, &global.logsrvs, list) {
2662 LIST_DEL(&log->list);
2663 free(log);
2664 }
Willy Tarreau477ecd82010-01-03 21:12:30 +01002665 list_for_each_entry_safe(wl, wlb, &cfg_cfgfiles, list) {
Maxime de Roucy0f503922016-05-13 23:52:55 +02002666 free(wl->s);
Willy Tarreau477ecd82010-01-03 21:12:30 +01002667 LIST_DEL(&wl->list);
2668 free(wl);
2669 }
2670
Willy Tarreaucdb737e2016-12-21 18:43:10 +01002671 list_for_each_entry_safe(bol, bolb, &build_opts_list, list) {
2672 if (bol->must_free)
2673 free((void *)bol->str);
2674 LIST_DEL(&bol->list);
2675 free(bol);
2676 }
2677
Christopher Fauletff2613e2016-11-09 11:36:17 +01002678 vars_prune(&global.vars, NULL, NULL);
Willy Tarreau2455ceb2018-11-26 15:57:34 +01002679 pool_destroy_all();
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002680 deinit_pollers();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002681} /* end deinit() */
2682
William Lallemand72160322018-11-06 17:37:16 +01002683
Willy Tarreau918ff602011-07-25 16:33:49 +02002684/* Runs the polling loop */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +01002685static void run_poll_loop()
Willy Tarreau4f60f162007-04-08 16:39:58 +02002686{
Willy Tarreau2ae84e42019-05-28 16:44:05 +02002687 int next, wake;
Willy Tarreau4f60f162007-04-08 16:39:58 +02002688
Willy Tarreaub0b37bc2008-06-23 14:00:57 +02002689 tv_update_date(0,1);
Willy Tarreau4f60f162007-04-08 16:39:58 +02002690 while (1) {
Thierry FOURNIER9cf7c4b2014-12-15 13:26:01 +01002691 /* Process a few tasks */
2692 process_runnable_tasks();
2693
William Lallemand1aab50b2018-06-07 09:46:01 +02002694 /* check if we caught some signals and process them in the
2695 first thread */
2696 if (tid == 0)
2697 signal_process_queue();
Willy Tarreau29857942009-05-10 09:01:21 +02002698
Willy Tarreau58b458d2008-06-29 22:40:23 +02002699 /* Check if we can expire some tasks */
Thierry FOURNIER9cf7c4b2014-12-15 13:26:01 +01002700 next = wake_expired_tasks();
Willy Tarreau4f60f162007-04-08 16:39:58 +02002701
Willy Tarreau7067b3a2019-06-02 11:11:29 +02002702 /* also stop if we failed to cleanly stop all tasks */
2703 if (killed > 1)
2704 break;
2705
Willy Tarreau10146c92015-04-13 20:44:19 +02002706 /* expire immediately if events are pending */
Willy Tarreau2ae84e42019-05-28 16:44:05 +02002707 wake = 1;
Christopher Faulet32467fe2018-01-15 12:16:34 +01002708 if (fd_cache_mask & tid_bit)
Willy Tarreaud80cb4e2018-01-20 19:30:13 +01002709 activity[tid].wake_cache++;
Olivier Houchardcfbb3e62019-05-29 19:22:43 +02002710 else if (thread_has_tasks())
Willy Tarreaud80cb4e2018-01-20 19:30:13 +01002711 activity[tid].wake_tasks++;
William Lallemand1aab50b2018-06-07 09:46:01 +02002712 else if (signal_queue_len && tid == 0)
Willy Tarreaud80cb4e2018-01-20 19:30:13 +01002713 activity[tid].wake_signal++;
Olivier Houchard79321b92018-07-26 17:55:11 +02002714 else {
Olivier Houchardb23a61f2019-03-08 18:51:17 +01002715 _HA_ATOMIC_OR(&sleeping_thread_mask, tid_bit);
2716 __ha_barrier_atomic_store();
Olivier Houchardcfbb3e62019-05-29 19:22:43 +02002717 if (global_tasks_mask & tid_bit) {
Olivier Houchard79321b92018-07-26 17:55:11 +02002718 activity[tid].wake_tasks++;
Olivier Houchardb23a61f2019-03-08 18:51:17 +01002719 _HA_ATOMIC_AND(&sleeping_thread_mask, ~tid_bit);
Olivier Houchard79321b92018-07-26 17:55:11 +02002720 } else
Willy Tarreau2ae84e42019-05-28 16:44:05 +02002721 wake = 0;
Olivier Houchard79321b92018-07-26 17:55:11 +02002722 }
Willy Tarreau10146c92015-04-13 20:44:19 +02002723
Willy Tarreau12b0d7b2020-03-23 09:27:28 +01002724 if (!wake) {
Willy Tarreaud1576822020-05-13 13:51:01 +02002725 int i;
2726
2727 if (stopping) {
Willy Tarreau12b0d7b2020-03-23 09:27:28 +01002728 _HA_ATOMIC_OR(&stopping_thread_mask, tid_bit);
Willy Tarreaud1576822020-05-13 13:51:01 +02002729 /* notify all threads that stopping was just set */
2730 for (i = 0; i < global.nbthread; i++)
2731 if (((all_threads_mask & ~stopping_thread_mask) >> i) & 1)
2732 wake_thread(i);
2733 }
Willy Tarreau12b0d7b2020-03-23 09:27:28 +01002734
2735 /* stop when there's nothing left to do */
2736 if ((jobs - unstoppable_jobs) == 0 &&
Willy Tarreaud1576822020-05-13 13:51:01 +02002737 (stopping_thread_mask & all_threads_mask) == all_threads_mask) {
2738 /* wake all threads waiting on jobs==0 */
2739 for (i = 0; i < global.nbthread; i++)
2740 if (((all_threads_mask & ~tid_bit) >> i) & 1)
2741 wake_thread(i);
Willy Tarreau12b0d7b2020-03-23 09:27:28 +01002742 break;
Willy Tarreaud1576822020-05-13 13:51:01 +02002743 }
Willy Tarreau12b0d7b2020-03-23 09:27:28 +01002744 }
2745
Willy Tarreau58b458d2008-06-29 22:40:23 +02002746 /* The poller will ensure it returns around <next> */
Willy Tarreau2ae84e42019-05-28 16:44:05 +02002747 cur_poller.poll(&cur_poller, next, wake);
Olivier Houchard79321b92018-07-26 17:55:11 +02002748 if (sleeping_thread_mask & tid_bit)
Olivier Houchardb23a61f2019-03-08 18:51:17 +01002749 _HA_ATOMIC_AND(&sleeping_thread_mask, ~tid_bit);
Willy Tarreau033cd9d2014-01-25 19:24:15 +01002750 fd_process_cached_events();
Emeric Brun64cc49c2017-10-03 14:46:45 +02002751
Willy Tarreaud80cb4e2018-01-20 19:30:13 +01002752 activity[tid].loops++;
Willy Tarreau4f60f162007-04-08 16:39:58 +02002753 }
2754}
2755
Christopher Faulet1d17c102017-08-29 15:38:48 +02002756static void *run_thread_poll_loop(void *data)
2757{
Willy Tarreau082b6282019-05-22 14:42:12 +02002758 struct per_thread_alloc_fct *ptaf;
Christopher Faulet1d17c102017-08-29 15:38:48 +02002759 struct per_thread_init_fct *ptif;
2760 struct per_thread_deinit_fct *ptdf;
Willy Tarreau082b6282019-05-22 14:42:12 +02002761 struct per_thread_free_fct *ptff;
Willy Tarreau34a150c2019-06-11 09:16:41 +02002762 static int init_left = 0;
2763 __decl_hathreads(static pthread_mutex_t init_mutex = PTHREAD_MUTEX_INITIALIZER);
2764 __decl_hathreads(static pthread_cond_t init_cond = PTHREAD_COND_INITIALIZER);
Christopher Faulet1d17c102017-08-29 15:38:48 +02002765
Willy Tarreaub4f7cc32019-05-03 09:27:30 +02002766 ha_set_tid((unsigned long)data);
Willy Tarreau91e6df02019-05-03 17:21:18 +02002767
Willy Tarreauf6178242019-05-21 19:46:58 +02002768#if (_POSIX_TIMERS > 0) && defined(_POSIX_THREAD_CPUTIME)
Willy Tarreau91e6df02019-05-03 17:21:18 +02002769#ifdef USE_THREAD
Willy Tarreau8323a372019-05-20 18:57:53 +02002770 pthread_getcpuclockid(pthread_self(), &ti->clock_id);
Willy Tarreau624dcbf2019-05-20 20:23:06 +02002771#else
Willy Tarreau8323a372019-05-20 18:57:53 +02002772 ti->clock_id = CLOCK_THREAD_CPUTIME_ID;
Willy Tarreau91e6df02019-05-03 17:21:18 +02002773#endif
Willy Tarreau663fda42019-05-21 15:14:08 +02002774#endif
Willy Tarreau6ec902a2019-06-07 14:41:11 +02002775 /* Now, initialize one thread init at a time. This is better since
2776 * some init code is a bit tricky and may release global resources
2777 * after reallocating them locally. This will also ensure there is
2778 * no race on file descriptors allocation.
2779 */
Willy Tarreau34a150c2019-06-11 09:16:41 +02002780#ifdef USE_THREAD
2781 pthread_mutex_lock(&init_mutex);
2782#endif
2783 /* The first thread must set the number of threads left */
2784 if (!init_left)
2785 init_left = global.nbthread;
2786 init_left--;
Willy Tarreau91e6df02019-05-03 17:21:18 +02002787
Christopher Faulet1d17c102017-08-29 15:38:48 +02002788 tv_update_date(-1,-1);
2789
Willy Tarreau082b6282019-05-22 14:42:12 +02002790 /* per-thread alloc calls performed here are not allowed to snoop on
2791 * other threads, so they are free to initialize at their own rhythm
2792 * as long as they act as if they were alone. None of them may rely
2793 * on resources initialized by the other ones.
2794 */
2795 list_for_each_entry(ptaf, &per_thread_alloc_list, list) {
2796 if (!ptaf->fct()) {
2797 ha_alert("failed to allocate resources for thread %u.\n", tid);
2798 exit(1);
2799 }
2800 }
2801
Willy Tarreau3078e9f2019-05-20 10:50:43 +02002802 /* per-thread init calls performed here are not allowed to snoop on
2803 * other threads, so they are free to initialize at their own rhythm
2804 * as long as they act as if they were alone.
2805 */
Christopher Faulet1d17c102017-08-29 15:38:48 +02002806 list_for_each_entry(ptif, &per_thread_init_list, list) {
2807 if (!ptif->fct()) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002808 ha_alert("failed to initialize thread %u.\n", tid);
Christopher Faulet1d17c102017-08-29 15:38:48 +02002809 exit(1);
2810 }
2811 }
2812
Willy Tarreau71092822019-06-10 09:51:04 +02002813 /* enabling protocols will result in fd_insert() calls to be performed,
2814 * we want all threads to have already allocated their local fd tables
Willy Tarreau34a150c2019-06-11 09:16:41 +02002815 * before doing so, thus only the last thread does it.
Willy Tarreau71092822019-06-10 09:51:04 +02002816 */
Willy Tarreau34a150c2019-06-11 09:16:41 +02002817 if (init_left == 0)
Willy Tarreaue4d7c9d2019-06-10 10:14:52 +02002818 protocol_enable_all();
Willy Tarreau6ec902a2019-06-07 14:41:11 +02002819
Willy Tarreau34a150c2019-06-11 09:16:41 +02002820#ifdef USE_THREAD
2821 pthread_cond_broadcast(&init_cond);
2822 pthread_mutex_unlock(&init_mutex);
2823
2824 /* now wait for other threads to finish starting */
2825 pthread_mutex_lock(&init_mutex);
2826 while (init_left)
2827 pthread_cond_wait(&init_cond, &init_mutex);
2828 pthread_mutex_unlock(&init_mutex);
2829#endif
Willy Tarreau3078e9f2019-05-20 10:50:43 +02002830
Christopher Faulet1d17c102017-08-29 15:38:48 +02002831 run_poll_loop();
2832
2833 list_for_each_entry(ptdf, &per_thread_deinit_list, list)
2834 ptdf->fct();
2835
Willy Tarreau082b6282019-05-22 14:42:12 +02002836 list_for_each_entry(ptff, &per_thread_free_list, list)
2837 ptff->fct();
2838
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002839#ifdef USE_THREAD
Olivier Houchardb23a61f2019-03-08 18:51:17 +01002840 _HA_ATOMIC_AND(&all_threads_mask, ~tid_bit);
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002841 if (tid > 0)
2842 pthread_exit(NULL);
Christopher Faulet1d17c102017-08-29 15:38:48 +02002843#endif
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002844 return NULL;
2845}
Christopher Faulet1d17c102017-08-29 15:38:48 +02002846
Willy Tarreaue9b26022011-08-01 20:57:55 +02002847/* This is the global management task for listeners. It enables listeners waiting
2848 * for global resources when there are enough free resource, or at least once in
2849 * a while. It is designed to be called as a task.
2850 */
Olivier Houchard9f6af332018-05-25 14:04:04 +02002851static struct task *manage_global_listener_queue(struct task *t, void *context, unsigned short state)
Willy Tarreaue9b26022011-08-01 20:57:55 +02002852{
2853 int next = TICK_ETERNITY;
Willy Tarreaue9b26022011-08-01 20:57:55 +02002854 /* queue is empty, nothing to do */
2855 if (LIST_ISEMPTY(&global_listener_queue))
2856 goto out;
2857
2858 /* If there are still too many concurrent connections, let's wait for
2859 * some of them to go away. We don't need to re-arm the timer because
2860 * each of them will scan the queue anyway.
2861 */
2862 if (unlikely(actconn >= global.maxconn))
2863 goto out;
2864
2865 /* We should periodically try to enable listeners waiting for a global
2866 * resource here, because it is possible, though very unlikely, that
2867 * they have been blocked by a temporary lack of global resource such
2868 * as a file descriptor or memory and that the temporary condition has
2869 * disappeared.
2870 */
Willy Tarreauabacc2c2011-09-07 14:26:33 +02002871 dequeue_all_listeners(&global_listener_queue);
Willy Tarreaue9b26022011-08-01 20:57:55 +02002872
2873 out:
2874 t->expire = next;
2875 task_queue(t);
2876 return t;
2877}
Willy Tarreau4f60f162007-04-08 16:39:58 +02002878
Willy Tarreaubaaee002006-06-26 02:48:02 +02002879int main(int argc, char **argv)
2880{
2881 int err, retry;
2882 struct rlimit limit;
Emeric Bruncf20bf12010-10-22 16:06:11 +02002883 char errmsg[100];
Willy Tarreau269ab312012-09-05 08:02:48 +02002884 int pidfd = -1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002885
Olivier Houchard5fa300d2018-02-03 15:15:21 +01002886 setvbuf(stdout, NULL, _IONBF, 0);
Willy Tarreau5794fb02018-11-25 18:43:29 +01002887
Willy Tarreauff9c9142019-02-07 10:39:36 +01002888 /* this can only safely be done here, though it's optimized away by
2889 * the compiler.
2890 */
2891 if (MAX_PROCS < 1 || MAX_PROCS > LONGBITS) {
2892 ha_alert("MAX_PROCS value must be between 1 and %d inclusive; "
2893 "HAProxy was built with value %d, please fix it and rebuild.\n",
2894 LONGBITS, MAX_PROCS);
2895 exit(1);
2896 }
2897
Willy Tarreaubf696402019-03-01 10:09:28 +01002898 /* take a copy of initial limits before we possibly change them */
2899 getrlimit(RLIMIT_NOFILE, &limit);
2900 rlim_fd_cur_at_boot = limit.rlim_cur;
2901 rlim_fd_max_at_boot = limit.rlim_max;
2902
Willy Tarreau5794fb02018-11-25 18:43:29 +01002903 /* process all initcalls in order of potential dependency */
2904 RUN_INITCALLS(STG_PREPARE);
2905 RUN_INITCALLS(STG_LOCK);
2906 RUN_INITCALLS(STG_ALLOC);
2907 RUN_INITCALLS(STG_POOL);
2908 RUN_INITCALLS(STG_REGISTER);
2909 RUN_INITCALLS(STG_INIT);
2910
Emeric Bruncf20bf12010-10-22 16:06:11 +02002911 init(argc, argv);
Willy Tarreau24f4efa2010-08-27 17:56:48 +02002912 signal_register_fct(SIGQUIT, dump, SIGQUIT);
2913 signal_register_fct(SIGUSR1, sig_soft_stop, SIGUSR1);
2914 signal_register_fct(SIGHUP, sig_dump_state, SIGHUP);
William Lallemand73b85e72017-06-01 17:38:51 +02002915 signal_register_fct(SIGUSR2, NULL, 0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002916
Willy Tarreaue437c442010-03-17 18:02:46 +01002917 /* Always catch SIGPIPE even on platforms which define MSG_NOSIGNAL.
2918 * Some recent FreeBSD setups report broken pipes, and MSG_NOSIGNAL
2919 * was defined there, so let's stay on the safe side.
Willy Tarreaubaaee002006-06-26 02:48:02 +02002920 */
Willy Tarreau24f4efa2010-08-27 17:56:48 +02002921 signal_register_fct(SIGPIPE, NULL, 0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002922
Willy Tarreaudc23a922011-02-16 11:10:36 +01002923 /* ulimits */
2924 if (!global.rlimit_nofile)
2925 global.rlimit_nofile = global.maxsock;
2926
2927 if (global.rlimit_nofile) {
Willy Tarreaue5cfdac2019-03-01 10:32:05 +01002928 limit.rlim_cur = global.rlimit_nofile;
2929 limit.rlim_max = MAX(rlim_fd_max_at_boot, limit.rlim_cur);
2930
Willy Tarreaudc23a922011-02-16 11:10:36 +01002931 if (setrlimit(RLIMIT_NOFILE, &limit) == -1) {
Willy Tarreauef635472016-06-21 11:48:18 +02002932 /* try to set it to the max possible at least */
2933 getrlimit(RLIMIT_NOFILE, &limit);
Willy Tarreau164dd0b2016-06-21 11:51:59 +02002934 limit.rlim_cur = limit.rlim_max;
2935 if (setrlimit(RLIMIT_NOFILE, &limit) != -1)
2936 getrlimit(RLIMIT_NOFILE, &limit);
2937
Christopher Faulet767a84b2017-11-24 16:50:31 +01002938 ha_warning("[%s.main()] Cannot raise FD limit to %d, limit is %d.\n", argv[0], global.rlimit_nofile, (int)limit.rlim_cur);
Willy Tarreauef635472016-06-21 11:48:18 +02002939 global.rlimit_nofile = limit.rlim_cur;
Willy Tarreaudc23a922011-02-16 11:10:36 +01002940 }
2941 }
2942
2943 if (global.rlimit_memmax) {
2944 limit.rlim_cur = limit.rlim_max =
Willy Tarreau70060452015-12-14 12:46:07 +01002945 global.rlimit_memmax * 1048576ULL;
Willy Tarreaudc23a922011-02-16 11:10:36 +01002946#ifdef RLIMIT_AS
2947 if (setrlimit(RLIMIT_AS, &limit) == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002948 ha_warning("[%s.main()] Cannot fix MEM limit to %d megs.\n",
2949 argv[0], global.rlimit_memmax);
Willy Tarreaudc23a922011-02-16 11:10:36 +01002950 }
2951#else
2952 if (setrlimit(RLIMIT_DATA, &limit) == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002953 ha_warning("[%s.main()] Cannot fix MEM limit to %d megs.\n",
2954 argv[0], global.rlimit_memmax);
Willy Tarreaudc23a922011-02-16 11:10:36 +01002955 }
2956#endif
2957 }
2958
Olivier Houchardf73629d2017-04-05 22:33:04 +02002959 if (old_unixsocket) {
William Lallemand85b0bd92017-06-01 17:38:53 +02002960 if (strcmp("/dev/null", old_unixsocket) != 0) {
2961 if (get_old_sockets(old_unixsocket) != 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002962 ha_alert("Failed to get the sockets from the old process!\n");
William Lallemand85b0bd92017-06-01 17:38:53 +02002963 if (!(global.mode & MODE_MWORKER))
2964 exit(1);
2965 }
Olivier Houchardf73629d2017-04-05 22:33:04 +02002966 }
2967 }
William Lallemand85b0bd92017-06-01 17:38:53 +02002968 get_cur_unixsocket();
2969
Willy Tarreaubaaee002006-06-26 02:48:02 +02002970 /* We will loop at most 100 times with 10 ms delay each time.
2971 * That's at most 1 second. We only send a signal to old pids
2972 * if we cannot grab at least one port.
2973 */
2974 retry = MAX_START_RETRIES;
2975 err = ERR_NONE;
2976 while (retry >= 0) {
2977 struct timeval w;
2978 err = start_proxies(retry == 0 || nb_oldpids == 0);
Willy Tarreaue13e9252007-12-20 23:05:50 +01002979 /* exit the loop on no error or fatal error */
2980 if ((err & (ERR_RETRYABLE|ERR_FATAL)) != ERR_RETRYABLE)
Willy Tarreaubaaee002006-06-26 02:48:02 +02002981 break;
Willy Tarreaubb545b42010-08-25 12:58:59 +02002982 if (nb_oldpids == 0 || retry == 0)
Willy Tarreaubaaee002006-06-26 02:48:02 +02002983 break;
2984
2985 /* FIXME-20060514: Solaris and OpenBSD do not support shutdown() on
2986 * listening sockets. So on those platforms, it would be wiser to
2987 * simply send SIGUSR1, which will not be undoable.
2988 */
Willy Tarreaubb545b42010-08-25 12:58:59 +02002989 if (tell_old_pids(SIGTTOU) == 0) {
2990 /* no need to wait if we can't contact old pids */
2991 retry = 0;
2992 continue;
2993 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002994 /* give some time to old processes to stop listening */
2995 w.tv_sec = 0;
2996 w.tv_usec = 10*1000;
2997 select(0, NULL, NULL, NULL, &w);
2998 retry--;
2999 }
3000
3001 /* Note: start_proxies() sends an alert when it fails. */
Willy Tarreau0a3b9d92009-02-04 17:05:23 +01003002 if ((err & ~ERR_WARN) != ERR_NONE) {
Willy Tarreauf68da462009-06-09 14:36:00 +02003003 if (retry != MAX_START_RETRIES && nb_oldpids) {
3004 protocol_unbind_all(); /* cleanup everything we can */
Willy Tarreaubaaee002006-06-26 02:48:02 +02003005 tell_old_pids(SIGTTIN);
Willy Tarreauf68da462009-06-09 14:36:00 +02003006 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003007 exit(1);
3008 }
3009
William Lallemand944e6192018-11-21 15:48:31 +01003010 if (!(global.mode & MODE_MWORKER_WAIT) && listeners == 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003011 ha_alert("[%s.main()] No enabled listener found (check for 'bind' directives) ! Exiting.\n", argv[0]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003012 /* Note: we don't have to send anything to the old pids because we
3013 * never stopped them. */
3014 exit(1);
3015 }
3016
Emeric Bruncf20bf12010-10-22 16:06:11 +02003017 err = protocol_bind_all(errmsg, sizeof(errmsg));
3018 if ((err & ~ERR_WARN) != ERR_NONE) {
3019 if ((err & ERR_ALERT) || (err & ERR_WARN))
Christopher Faulet767a84b2017-11-24 16:50:31 +01003020 ha_alert("[%s.main()] %s.\n", argv[0], errmsg);
Emeric Bruncf20bf12010-10-22 16:06:11 +02003021
Christopher Faulet767a84b2017-11-24 16:50:31 +01003022 ha_alert("[%s.main()] Some protocols failed to start their listeners! Exiting.\n", argv[0]);
Willy Tarreaudd815982007-10-16 12:25:14 +02003023 protocol_unbind_all(); /* cleanup everything we can */
3024 if (nb_oldpids)
3025 tell_old_pids(SIGTTIN);
3026 exit(1);
Emeric Bruncf20bf12010-10-22 16:06:11 +02003027 } else if (err & ERR_WARN) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003028 ha_alert("[%s.main()] %s.\n", argv[0], errmsg);
Willy Tarreaudd815982007-10-16 12:25:14 +02003029 }
Olivier Houchardf73629d2017-04-05 22:33:04 +02003030 /* Ok, all listener should now be bound, close any leftover sockets
3031 * the previous process gave us, we don't need them anymore
3032 */
3033 while (xfer_sock_list != NULL) {
3034 struct xfer_sock_list *tmpxfer = xfer_sock_list->next;
3035 close(xfer_sock_list->fd);
3036 free(xfer_sock_list->iface);
3037 free(xfer_sock_list->namespace);
3038 free(xfer_sock_list);
3039 xfer_sock_list = tmpxfer;
3040 }
Willy Tarreaudd815982007-10-16 12:25:14 +02003041
Willy Tarreaubaaee002006-06-26 02:48:02 +02003042 /* prepare pause/play signals */
Willy Tarreau24f4efa2010-08-27 17:56:48 +02003043 signal_register_fct(SIGTTOU, sig_pause, SIGTTOU);
3044 signal_register_fct(SIGTTIN, sig_listen, SIGTTIN);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003045
Willy Tarreaubaaee002006-06-26 02:48:02 +02003046 /* MODE_QUIET can inhibit alerts and warnings below this line */
3047
PiBa-NL149a81a2017-12-25 21:03:31 +01003048 if (getenv("HAPROXY_MWORKER_REEXEC") != NULL) {
3049 /* either stdin/out/err are already closed or should stay as they are. */
3050 if ((global.mode & MODE_DAEMON)) {
3051 /* daemon mode re-executing, stdin/stdout/stderr are already closed so keep quiet */
3052 global.mode &= ~MODE_VERBOSE;
3053 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
3054 }
3055 } else {
3056 if ((global.mode & MODE_QUIET) && !(global.mode & MODE_VERBOSE)) {
3057 /* detach from the tty */
William Lallemande1340412017-12-28 16:09:36 +01003058 stdio_quiet(-1);
PiBa-NL149a81a2017-12-25 21:03:31 +01003059 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003060 }
3061
3062 /* open log & pid files before the chroot */
William Lallemand80293002017-11-06 11:00:03 +01003063 if ((global.mode & MODE_DAEMON || global.mode & MODE_MWORKER) && global.pidfile != NULL) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02003064 unlink(global.pidfile);
3065 pidfd = open(global.pidfile, O_CREAT | O_WRONLY | O_TRUNC, 0644);
3066 if (pidfd < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003067 ha_alert("[%s.main()] Cannot create pidfile %s\n", argv[0], global.pidfile);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003068 if (nb_oldpids)
3069 tell_old_pids(SIGTTIN);
Willy Tarreaudd815982007-10-16 12:25:14 +02003070 protocol_unbind_all();
Willy Tarreaubaaee002006-06-26 02:48:02 +02003071 exit(1);
3072 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003073 }
3074
Willy Tarreaub38651a2007-03-24 17:24:39 +01003075 if ((global.last_checks & LSTCHK_NETADM) && global.uid) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003076 ha_alert("[%s.main()] Some configuration options require full privileges, so global.uid cannot be changed.\n"
3077 "", argv[0]);
Willy Tarreaudd815982007-10-16 12:25:14 +02003078 protocol_unbind_all();
Willy Tarreaub38651a2007-03-24 17:24:39 +01003079 exit(1);
3080 }
3081
Willy Tarreau4e30ed72009-02-04 18:02:48 +01003082 /* If the user is not root, we'll still let him try the configuration
3083 * but we inform him that unexpected behaviour may occur.
3084 */
3085 if ((global.last_checks & LSTCHK_NETADM) && getuid())
Christopher Faulet767a84b2017-11-24 16:50:31 +01003086 ha_warning("[%s.main()] Some options which require full privileges"
3087 " might not work well.\n"
3088 "", argv[0]);
Willy Tarreau4e30ed72009-02-04 18:02:48 +01003089
William Lallemand095ba4c2017-06-01 17:38:50 +02003090 if ((global.mode & (MODE_MWORKER|MODE_DAEMON)) == 0) {
3091
3092 /* chroot if needed */
3093 if (global.chroot != NULL) {
3094 if (chroot(global.chroot) == -1 || chdir("/") == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003095 ha_alert("[%s.main()] Cannot chroot(%s).\n", argv[0], global.chroot);
William Lallemand095ba4c2017-06-01 17:38:50 +02003096 if (nb_oldpids)
3097 tell_old_pids(SIGTTIN);
3098 protocol_unbind_all();
3099 exit(1);
3100 }
Willy Tarreauf223cc02007-10-15 18:57:08 +02003101 }
Willy Tarreauf223cc02007-10-15 18:57:08 +02003102 }
3103
William Lallemand944e6192018-11-21 15:48:31 +01003104 if (nb_oldpids && !(global.mode & MODE_MWORKER_WAIT))
Willy Tarreaubb545b42010-08-25 12:58:59 +02003105 nb_oldpids = tell_old_pids(oldpids_sig);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003106
William Lallemand27edc4b2019-05-07 17:49:33 +02003107 /* send a SIGTERM to workers who have a too high reloads number */
3108 if ((global.mode & MODE_MWORKER) && !(global.mode & MODE_MWORKER_WAIT))
3109 mworker_kill_max_reloads(SIGTERM);
3110
William Lallemand8a361b52017-06-20 11:20:33 +02003111 if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL)) {
3112 nb_oldpids = 0;
3113 free(oldpids);
3114 oldpids = NULL;
3115 }
3116
3117
Willy Tarreaubaaee002006-06-26 02:48:02 +02003118 /* Note that any error at this stage will be fatal because we will not
3119 * be able to restart the old pids.
3120 */
3121
William Lallemand095ba4c2017-06-01 17:38:50 +02003122 if ((global.mode & (MODE_MWORKER|MODE_DAEMON)) == 0) {
3123 /* setgid / setuid */
3124 if (global.gid) {
3125 if (getgroups(0, NULL) > 0 && setgroups(0, NULL) == -1)
Christopher Faulet767a84b2017-11-24 16:50:31 +01003126 ha_warning("[%s.main()] Failed to drop supplementary groups. Using 'gid'/'group'"
3127 " without 'uid'/'user' is generally useless.\n", argv[0]);
William Lallemand095ba4c2017-06-01 17:38:50 +02003128
3129 if (setgid(global.gid) == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003130 ha_alert("[%s.main()] Cannot set gid %d.\n", argv[0], global.gid);
William Lallemand095ba4c2017-06-01 17:38:50 +02003131 protocol_unbind_all();
3132 exit(1);
3133 }
3134 }
Michael Schererab012dd2013-01-12 18:35:19 +01003135
William Lallemand095ba4c2017-06-01 17:38:50 +02003136 if (global.uid && setuid(global.uid) == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003137 ha_alert("[%s.main()] Cannot set uid %d.\n", argv[0], global.uid);
Michael Schererab012dd2013-01-12 18:35:19 +01003138 protocol_unbind_all();
3139 exit(1);
3140 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003141 }
Willy Tarreau636848a2019-04-15 19:38:50 +02003142
Willy Tarreaubaaee002006-06-26 02:48:02 +02003143 /* check ulimits */
3144 limit.rlim_cur = limit.rlim_max = 0;
3145 getrlimit(RLIMIT_NOFILE, &limit);
3146 if (limit.rlim_cur < global.maxsock) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003147 ha_warning("[%s.main()] FD limit (%d) too low for maxconn=%d/maxsock=%d. Please raise 'ulimit-n' to %d or more to avoid any trouble.\n",
3148 argv[0], (int)limit.rlim_cur, global.maxconn, global.maxsock, global.maxsock);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003149 }
3150
William Lallemand944e6192018-11-21 15:48:31 +01003151 if (global.mode & (MODE_DAEMON | MODE_MWORKER | MODE_MWORKER_WAIT)) {
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01003152 struct proxy *px;
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02003153 struct peers *curpeers;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003154 int ret = 0;
3155 int proc;
William Lallemande1340412017-12-28 16:09:36 +01003156 int devnullfd = -1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003157
William Lallemand095ba4c2017-06-01 17:38:50 +02003158 /*
3159 * if daemon + mworker: must fork here to let a master
3160 * process live in background before forking children
3161 */
William Lallemand73b85e72017-06-01 17:38:51 +02003162
3163 if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL)
3164 && (global.mode & MODE_MWORKER)
3165 && (global.mode & MODE_DAEMON)) {
William Lallemand095ba4c2017-06-01 17:38:50 +02003166 ret = fork();
3167 if (ret < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003168 ha_alert("[%s.main()] Cannot fork.\n", argv[0]);
William Lallemand095ba4c2017-06-01 17:38:50 +02003169 protocol_unbind_all();
3170 exit(1); /* there has been an error */
William Lallemandbfd8eb52018-07-04 15:31:23 +02003171 } else if (ret > 0) { /* parent leave to daemonize */
William Lallemand095ba4c2017-06-01 17:38:50 +02003172 exit(0);
William Lallemandbfd8eb52018-07-04 15:31:23 +02003173 } else /* change the process group ID in the child (master process) */
3174 setsid();
William Lallemand095ba4c2017-06-01 17:38:50 +02003175 }
William Lallemande20b6a62017-06-01 17:38:55 +02003176
William Lallemande20b6a62017-06-01 17:38:55 +02003177
William Lallemanddeed7802017-11-06 11:00:04 +01003178 /* if in master-worker mode, write the PID of the father */
3179 if (global.mode & MODE_MWORKER) {
3180 char pidstr[100];
Willy Tarreaueb7f0722019-06-22 07:41:38 +02003181 snprintf(pidstr, sizeof(pidstr), "%d\n", (int)getpid());
Willy Tarreau46ec48b2018-01-23 19:20:19 +01003182 if (pidfd >= 0)
3183 shut_your_big_mouth_gcc(write(pidfd, pidstr, strlen(pidstr)));
William Lallemanddeed7802017-11-06 11:00:04 +01003184 }
3185
Willy Tarreaubaaee002006-06-26 02:48:02 +02003186 /* the father launches the required number of processes */
William Lallemand944e6192018-11-21 15:48:31 +01003187 if (!(global.mode & MODE_MWORKER_WAIT)) {
William Lallemand9a1ee7a2019-04-01 11:30:02 +02003188 if (global.mode & MODE_MWORKER)
3189 mworker_ext_launch_all();
William Lallemand944e6192018-11-21 15:48:31 +01003190 for (proc = 0; proc < global.nbproc; proc++) {
3191 ret = fork();
3192 if (ret < 0) {
3193 ha_alert("[%s.main()] Cannot fork.\n", argv[0]);
3194 protocol_unbind_all();
3195 exit(1); /* there has been an error */
3196 }
Willy Tarreau861c4ef2020-03-08 00:42:37 +01003197 else if (ret == 0) { /* child breaks here */
3198 ha_random_jump96(relative_pid);
William Lallemand944e6192018-11-21 15:48:31 +01003199 break;
Willy Tarreau861c4ef2020-03-08 00:42:37 +01003200 }
William Lallemand944e6192018-11-21 15:48:31 +01003201 if (pidfd >= 0 && !(global.mode & MODE_MWORKER)) {
3202 char pidstr[100];
3203 snprintf(pidstr, sizeof(pidstr), "%d\n", ret);
3204 shut_your_big_mouth_gcc(write(pidfd, pidstr, strlen(pidstr)));
3205 }
3206 if (global.mode & MODE_MWORKER) {
3207 struct mworker_proc *child;
William Lallemandce83b4a2018-10-26 14:47:30 +02003208
William Lallemand220567e2018-11-21 18:04:53 +01003209 ha_notice("New worker #%d (%d) forked\n", relative_pid, ret);
William Lallemand944e6192018-11-21 15:48:31 +01003210 /* find the right mworker_proc */
3211 list_for_each_entry(child, &proc_list, list) {
3212 if (child->relative_pid == relative_pid &&
William Lallemand8f7069a2019-04-12 16:09:23 +02003213 child->reloads == 0 && child->options & PROC_O_TYPE_WORKER) {
William Lallemand944e6192018-11-21 15:48:31 +01003214 child->timestamp = now.tv_sec;
3215 child->pid = ret;
William Lallemand1dc69632019-06-12 19:11:33 +02003216 child->version = strdup(haproxy_version);
William Lallemand944e6192018-11-21 15:48:31 +01003217 break;
3218 }
William Lallemandce83b4a2018-10-26 14:47:30 +02003219 }
3220 }
William Lallemandbc193052018-09-11 10:06:26 +02003221
William Lallemand944e6192018-11-21 15:48:31 +01003222 relative_pid++; /* each child will get a different one */
3223 pid_bit <<= 1;
3224 }
3225 } else {
3226 /* wait mode */
3227 global.nbproc = 1;
3228 proc = 1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003229 }
Willy Tarreaufc6c0322012-11-16 16:12:27 +01003230
3231#ifdef USE_CPU_AFFINITY
3232 if (proc < global.nbproc && /* child */
Willy Tarreauff9c9142019-02-07 10:39:36 +01003233 proc < MAX_PROCS && /* only the first 32/64 processes may be pinned */
Christopher Fauletcb6a9452017-11-22 16:50:41 +01003234 global.cpu_map.proc[proc]) /* only do this if the process has a CPU map */
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +02003235#ifdef __FreeBSD__
Olivier Houchard97148f62017-08-16 17:29:11 +02003236 {
3237 cpuset_t cpuset;
3238 int i;
Christopher Fauletcb6a9452017-11-22 16:50:41 +01003239 unsigned long cpu_map = global.cpu_map.proc[proc];
Olivier Houchard97148f62017-08-16 17:29:11 +02003240
3241 CPU_ZERO(&cpuset);
3242 while ((i = ffsl(cpu_map)) > 0) {
3243 CPU_SET(i - 1, &cpuset);
Cyril Bontéd400ab32018-03-12 21:47:39 +01003244 cpu_map &= ~(1UL << (i - 1));
Olivier Houchard97148f62017-08-16 17:29:11 +02003245 }
3246 ret = cpuset_setaffinity(CPU_LEVEL_WHICH, CPU_WHICH_PID, -1, sizeof(cpuset), &cpuset);
3247 }
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +02003248#else
Christopher Fauletcb6a9452017-11-22 16:50:41 +01003249 sched_setaffinity(0, sizeof(unsigned long), (void *)&global.cpu_map.proc[proc]);
Willy Tarreaufc6c0322012-11-16 16:12:27 +01003250#endif
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +02003251#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +02003252 /* close the pidfile both in children and father */
Willy Tarreau269ab312012-09-05 08:02:48 +02003253 if (pidfd >= 0) {
3254 //lseek(pidfd, 0, SEEK_SET); /* debug: emulate eglibc bug */
3255 close(pidfd);
3256 }
Willy Tarreaud137dd32010-08-25 12:49:05 +02003257
3258 /* We won't ever use this anymore */
Willy Tarreaud137dd32010-08-25 12:49:05 +02003259 free(global.pidfile); global.pidfile = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003260
Willy Tarreauedaff0a2015-05-01 17:01:08 +02003261 if (proc == global.nbproc) {
William Lallemand944e6192018-11-21 15:48:31 +01003262 if (global.mode & (MODE_MWORKER|MODE_MWORKER_WAIT)) {
PiBa-NLbaf6ea42017-11-28 23:26:08 +01003263
3264 if ((!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE)) &&
3265 (global.mode & MODE_DAEMON)) {
3266 /* detach from the tty, this is required to properly daemonize. */
William Lallemande1340412017-12-28 16:09:36 +01003267 if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL))
3268 stdio_quiet(-1);
3269
PiBa-NLbaf6ea42017-11-28 23:26:08 +01003270 global.mode &= ~MODE_VERBOSE;
3271 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
PiBa-NLbaf6ea42017-11-28 23:26:08 +01003272 }
3273
William Lallemandb3f2be32018-09-11 10:06:18 +02003274 mworker_loop();
William Lallemand1499b9b2017-06-07 15:04:47 +02003275 /* should never get there */
3276 exit(EXIT_FAILURE);
Willy Tarreauedaff0a2015-05-01 17:01:08 +02003277 }
William Lallemandcf4e4962017-06-08 19:05:48 +02003278#if defined(USE_OPENSSL) && !defined(OPENSSL_NO_DH)
Grant Zhang872f9c22017-01-21 01:10:18 +00003279 ssl_free_dh();
3280#endif
William Lallemand1499b9b2017-06-07 15:04:47 +02003281 exit(0); /* parent must leave */
Willy Tarreauedaff0a2015-05-01 17:01:08 +02003282 }
3283
William Lallemandcb11fd22017-06-01 17:38:52 +02003284 /* child must never use the atexit function */
3285 atexit_flag = 0;
3286
William Lallemandbc193052018-09-11 10:06:26 +02003287 /* close useless master sockets */
3288 if (global.mode & MODE_MWORKER) {
3289 struct mworker_proc *child, *it;
3290 master = 0;
3291
William Lallemand309dc9a2018-10-26 14:47:45 +02003292 mworker_cli_proxy_stop();
3293
William Lallemandbc193052018-09-11 10:06:26 +02003294 /* free proc struct of other processes */
3295 list_for_each_entry_safe(child, it, &proc_list, list) {
William Lallemandce83b4a2018-10-26 14:47:30 +02003296 /* close the FD of the master side for all
3297 * workers, we don't need to close the worker
3298 * side of other workers since it's done with
3299 * the bind_proc */
Tim Duesterhus742e0f92018-11-25 20:03:39 +01003300 if (child->ipc_fd[0] >= 0)
3301 close(child->ipc_fd[0]);
William Lallemandce83b4a2018-10-26 14:47:30 +02003302 if (child->relative_pid == relative_pid &&
3303 child->reloads == 0) {
3304 /* keep this struct if this is our pid */
3305 proc_self = child;
William Lallemandbc193052018-09-11 10:06:26 +02003306 continue;
William Lallemandce83b4a2018-10-26 14:47:30 +02003307 }
William Lallemandbc193052018-09-11 10:06:26 +02003308 LIST_DEL(&child->list);
Tim Duesterhus9b7a9762019-05-16 20:23:22 +02003309 mworker_free_child(child);
3310 child = NULL;
William Lallemandbc193052018-09-11 10:06:26 +02003311 }
3312 }
Willy Tarreau1605c7a2018-01-23 19:01:49 +01003313
William Lallemande1340412017-12-28 16:09:36 +01003314 if (!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE)) {
3315 devnullfd = open("/dev/null", O_RDWR, 0);
3316 if (devnullfd < 0) {
3317 ha_alert("Cannot open /dev/null\n");
3318 exit(EXIT_FAILURE);
3319 }
3320 }
3321
William Lallemand095ba4c2017-06-01 17:38:50 +02003322 /* Must chroot and setgid/setuid in the children */
3323 /* chroot if needed */
3324 if (global.chroot != NULL) {
3325 if (chroot(global.chroot) == -1 || chdir("/") == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003326 ha_alert("[%s.main()] Cannot chroot1(%s).\n", argv[0], global.chroot);
William Lallemand095ba4c2017-06-01 17:38:50 +02003327 if (nb_oldpids)
3328 tell_old_pids(SIGTTIN);
3329 protocol_unbind_all();
3330 exit(1);
3331 }
3332 }
3333
3334 free(global.chroot);
3335 global.chroot = NULL;
3336
3337 /* setgid / setuid */
3338 if (global.gid) {
3339 if (getgroups(0, NULL) > 0 && setgroups(0, NULL) == -1)
Christopher Faulet767a84b2017-11-24 16:50:31 +01003340 ha_warning("[%s.main()] Failed to drop supplementary groups. Using 'gid'/'group'"
3341 " without 'uid'/'user' is generally useless.\n", argv[0]);
William Lallemand095ba4c2017-06-01 17:38:50 +02003342
3343 if (setgid(global.gid) == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003344 ha_alert("[%s.main()] Cannot set gid %d.\n", argv[0], global.gid);
William Lallemand095ba4c2017-06-01 17:38:50 +02003345 protocol_unbind_all();
3346 exit(1);
3347 }
3348 }
3349
3350 if (global.uid && setuid(global.uid) == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003351 ha_alert("[%s.main()] Cannot set uid %d.\n", argv[0], global.uid);
William Lallemand095ba4c2017-06-01 17:38:50 +02003352 protocol_unbind_all();
3353 exit(1);
3354 }
3355
William Lallemand7f80eb22017-05-26 18:19:55 +02003356 /* pass through every cli socket, and check if it's bound to
3357 * the current process and if it exposes listeners sockets.
3358 * Caution: the GTUNE_SOCKET_TRANSFER is now set after the fork.
3359 * */
3360
3361 if (global.stats_fe) {
3362 struct bind_conf *bind_conf;
3363
3364 list_for_each_entry(bind_conf, &global.stats_fe->conf.bind, by_fe) {
3365 if (bind_conf->level & ACCESS_FD_LISTENERS) {
3366 if (!bind_conf->bind_proc || bind_conf->bind_proc & (1UL << proc)) {
3367 global.tune.options |= GTUNE_SOCKET_TRANSFER;
3368 break;
3369 }
3370 }
3371 }
3372 }
3373
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01003374 /* we might have to unbind some proxies from some processes */
Olivier Houchardfbc74e82017-11-24 16:54:05 +01003375 px = proxies_list;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01003376 while (px != NULL) {
3377 if (px->bind_proc && px->state != PR_STSTOPPED) {
Olivier Houchard1fc05162017-04-06 01:05:05 +02003378 if (!(px->bind_proc & (1UL << proc))) {
3379 if (global.tune.options & GTUNE_SOCKET_TRANSFER)
3380 zombify_proxy(px);
3381 else
3382 stop_proxy(px);
3383 }
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01003384 }
3385 px = px->next;
3386 }
3387
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02003388 /* we might have to unbind some peers sections from some processes */
Frédéric Lécailleed2b4a62017-07-13 09:07:09 +02003389 for (curpeers = cfg_peers; curpeers; curpeers = curpeers->next) {
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02003390 if (!curpeers->peers_fe)
3391 continue;
3392
3393 if (curpeers->peers_fe->bind_proc & (1UL << proc))
3394 continue;
3395
3396 stop_proxy(curpeers->peers_fe);
3397 /* disable this peer section so that it kills itself */
Willy Tarreau47c8c022015-09-28 16:39:25 +02003398 signal_unregister_handler(curpeers->sighandler);
Olivier Houchard3f795f72019-04-17 22:51:06 +02003399 task_destroy(curpeers->sync_task);
Willy Tarreau47c8c022015-09-28 16:39:25 +02003400 curpeers->sync_task = NULL;
Olivier Houchard3f795f72019-04-17 22:51:06 +02003401 task_destroy(curpeers->peers_fe->task);
Willy Tarreau47c8c022015-09-28 16:39:25 +02003402 curpeers->peers_fe->task = NULL;
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02003403 curpeers->peers_fe = NULL;
3404 }
3405
William Lallemand2e8fad92018-11-13 16:18:23 +01003406 /*
3407 * This is only done in daemon mode because we might want the
3408 * logs on stdout in mworker mode. If we're NOT in QUIET mode,
3409 * we should now close the 3 first FDs to ensure that we can
3410 * detach from the TTY. We MUST NOT do it in other cases since
3411 * it would have already be done, and 0-2 would have been
3412 * affected to listening sockets
Willy Tarreaubaaee002006-06-26 02:48:02 +02003413 */
William Lallemand2e8fad92018-11-13 16:18:23 +01003414 if ((global.mode & MODE_DAEMON) &&
3415 (!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE))) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02003416 /* detach from the tty */
William Lallemande1340412017-12-28 16:09:36 +01003417 stdio_quiet(devnullfd);
Willy Tarreau106cb762008-11-16 07:40:34 +01003418 global.mode &= ~MODE_VERBOSE;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003419 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
3420 }
3421 pid = getpid(); /* update child's pid */
William Lallemandbfd8eb52018-07-04 15:31:23 +02003422 if (!(global.mode & MODE_MWORKER)) /* in mworker mode we don't want a new pgid for the children */
3423 setsid();
Willy Tarreau2ff76222007-04-09 19:29:56 +02003424 fork_poller();
Willy Tarreaubaaee002006-06-26 02:48:02 +02003425 }
3426
William Dauchycaf02112019-11-19 10:11:36 +01003427 /* try our best to re-enable core dumps depending on system capabilities.
3428 * What is addressed here :
3429 * - remove file size limits
3430 * - remove core size limits
3431 * - mark the process dumpable again if it lost it due to user/group
3432 */
3433 if (global.tune.options & GTUNE_SET_DUMPABLE) {
3434 limit.rlim_cur = limit.rlim_max = RLIM_INFINITY;
3435
3436#if defined(RLIMIT_FSIZE)
3437 if (setrlimit(RLIMIT_FSIZE, &limit) == -1)
3438 ha_warning("[%s.main()] Failed to set the raise the maximum file size.\n", argv[0]);
3439#endif
3440
3441#if defined(RLIMIT_CORE)
3442 if (setrlimit(RLIMIT_CORE, &limit) == -1)
3443 ha_warning("[%s.main()] Failed to set the raise the core dump size.\n", argv[0]);
3444#endif
3445
3446#if defined(USE_PRCTL)
3447 if (prctl(PR_SET_DUMPABLE, 1, 0, 0, 0) == -1)
3448 ha_warning("[%s.main()] Failed to set the dumpable flag, no core will be dumped.\n", argv[0]);
3449#endif
3450 }
3451
Christopher Faulete3a5e352017-10-24 13:53:54 +02003452 global.mode &= ~MODE_STARTING;
Willy Tarreau4f60f162007-04-08 16:39:58 +02003453 /*
3454 * That's it : the central polling loop. Run until we stop.
3455 */
Christopher Faulet1d17c102017-08-29 15:38:48 +02003456#ifdef USE_THREAD
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003457 {
William Lallemand1aab50b2018-06-07 09:46:01 +02003458 sigset_t blocked_sig, old_sig;
Willy Tarreauc40efc12019-05-03 09:22:44 +02003459 int i;
3460
William Lallemand1aab50b2018-06-07 09:46:01 +02003461 /* ensure the signals will be blocked in every thread */
3462 sigfillset(&blocked_sig);
3463 sigdelset(&blocked_sig, SIGPROF);
3464 sigdelset(&blocked_sig, SIGBUS);
3465 sigdelset(&blocked_sig, SIGFPE);
3466 sigdelset(&blocked_sig, SIGILL);
3467 sigdelset(&blocked_sig, SIGSEGV);
3468 pthread_sigmask(SIG_SETMASK, &blocked_sig, &old_sig);
3469
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003470 /* Create nbthread-1 thread. The first thread is the current process */
Willy Tarreau522cfbc2019-05-03 10:16:39 +02003471 thread_info[0].pthread = pthread_self();
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003472 for (i = 1; i < global.nbthread; i++)
Willy Tarreau522cfbc2019-05-03 10:16:39 +02003473 pthread_create(&thread_info[i].pthread, NULL, &run_thread_poll_loop, (void *)(long)i);
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003474
Christopher Faulet62519022017-10-16 15:49:32 +02003475#ifdef USE_CPU_AFFINITY
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003476 /* Now the CPU affinity for all threads */
Willy Tarreau47b00ae2019-07-16 15:10:34 +02003477 if (global.cpu_map.proc_t1[relative_pid-1])
3478 global.cpu_map.thread[0] &= global.cpu_map.proc_t1[relative_pid-1];
3479
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003480 for (i = 0; i < global.nbthread; i++) {
Christopher Fauletcb6a9452017-11-22 16:50:41 +01003481 if (global.cpu_map.proc[relative_pid-1])
Willy Tarreau81492c92019-05-03 09:41:23 +02003482 global.cpu_map.thread[i] &= global.cpu_map.proc[relative_pid-1];
Christopher Faulet62519022017-10-16 15:49:32 +02003483
Willy Tarreau421f02e2018-01-20 18:19:22 +01003484 if (i < MAX_THREADS && /* only the first 32/64 threads may be pinned */
Willy Tarreau81492c92019-05-03 09:41:23 +02003485 global.cpu_map.thread[i]) {/* only do this if the thread has a THREAD map */
Olivier Houchard829aa242017-12-01 18:19:43 +01003486#if defined(__FreeBSD__) || defined(__NetBSD__)
3487 cpuset_t cpuset;
3488#else
3489 cpu_set_t cpuset;
3490#endif
3491 int j;
Willy Tarreau81492c92019-05-03 09:41:23 +02003492 unsigned long cpu_map = global.cpu_map.thread[i];
Olivier Houchard829aa242017-12-01 18:19:43 +01003493
3494 CPU_ZERO(&cpuset);
3495
3496 while ((j = ffsl(cpu_map)) > 0) {
3497 CPU_SET(j - 1, &cpuset);
Cyril Bontéd400ab32018-03-12 21:47:39 +01003498 cpu_map &= ~(1UL << (j - 1));
Olivier Houchard829aa242017-12-01 18:19:43 +01003499 }
Willy Tarreau522cfbc2019-05-03 10:16:39 +02003500 pthread_setaffinity_np(thread_info[i].pthread,
Olivier Houchard829aa242017-12-01 18:19:43 +01003501 sizeof(cpuset), &cpuset);
3502 }
Christopher Faulet1d17c102017-08-29 15:38:48 +02003503 }
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003504#endif /* !USE_CPU_AFFINITY */
3505
William Lallemand1aab50b2018-06-07 09:46:01 +02003506 /* when multithreading we need to let only the thread 0 handle the signals */
William Lallemandd3801c12018-09-11 10:06:23 +02003507 haproxy_unblock_signals();
William Lallemand1aab50b2018-06-07 09:46:01 +02003508
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003509 /* Finally, start the poll loop for the first thread */
Willy Tarreaub4f7cc32019-05-03 09:27:30 +02003510 run_thread_poll_loop(0);
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003511
3512 /* Wait the end of other threads */
3513 for (i = 1; i < global.nbthread; i++)
Willy Tarreau522cfbc2019-05-03 10:16:39 +02003514 pthread_join(thread_info[i].pthread, NULL);
Christopher Faulet1d17c102017-08-29 15:38:48 +02003515
Christopher Fauletb79a94c2017-05-30 15:34:30 +02003516#if defined(DEBUG_THREAD) || defined(DEBUG_FULL)
3517 show_lock_stats();
3518#endif
Christopher Faulet1d17c102017-08-29 15:38:48 +02003519 }
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003520#else /* ! USE_THREAD */
William Lallemandd3801c12018-09-11 10:06:23 +02003521 haproxy_unblock_signals();
Willy Tarreaub4f7cc32019-05-03 09:27:30 +02003522 run_thread_poll_loop(0);
Christopher Faulet62519022017-10-16 15:49:32 +02003523#endif
Christopher Faulet1d17c102017-08-29 15:38:48 +02003524
3525 /* Do some cleanup */
Willy Tarreaubaaee002006-06-26 02:48:02 +02003526 deinit();
Christopher Faulet1d17c102017-08-29 15:38:48 +02003527
Willy Tarreaubaaee002006-06-26 02:48:02 +02003528 exit(0);
3529}
3530
3531
3532/*
3533 * Local variables:
3534 * c-indent-level: 8
3535 * c-basic-offset: 8
3536 * End:
3537 */