blob: a8d0fad87fe6619f5be282d2fac4704dbe449d35 [file] [log] [blame]
Willy Tarreaubaaee002006-06-26 02:48:02 +02001/*
2 * HA-Proxy : High Availability-enabled HTTP/TCP proxy
Willy Tarreau7b677262017-04-03 09:27:49 +02003 * Copyright 2000-2017 Willy Tarreau <willy@haproxy.org>.
Willy Tarreaubaaee002006-06-26 02:48:02 +02004 *
5 * This program is free software; you can redistribute it and/or
6 * modify it under the terms of the GNU General Public License
7 * as published by the Free Software Foundation; either version
8 * 2 of the License, or (at your option) any later version.
9 *
Lukas Tribus23953682017-04-28 13:24:30 +000010 * Please refer to RFC7230 - RFC7235 informations about HTTP protocol, and
11 * RFC6265 for informations about cookies usage. More generally, the IETF HTTP
Willy Tarreaubaaee002006-06-26 02:48:02 +020012 * Working Group's web site should be consulted for protocol related changes :
13 *
14 * http://ftp.ics.uci.edu/pub/ietf/http/
15 *
16 * Pending bugs (may be not fixed because never reproduced) :
17 * - solaris only : sometimes, an HTTP proxy with only a dispatch address causes
18 * the proxy to terminate (no core) if the client breaks the connection during
19 * the response. Seen on 1.1.8pre4, but never reproduced. May not be related to
20 * the snprintf() bug since requests were simple (GET / HTTP/1.0), but may be
21 * related to missing setsid() (fixed in 1.1.15)
22 * - a proxy with an invalid config will prevent the startup even if disabled.
23 *
24 * ChangeLog has moved to the CHANGELOG file.
25 *
Willy Tarreaubaaee002006-06-26 02:48:02 +020026 */
27
David Carlier7ece0962015-12-08 21:43:09 +000028#define _GNU_SOURCE
Willy Tarreaubaaee002006-06-26 02:48:02 +020029#include <stdio.h>
30#include <stdlib.h>
31#include <unistd.h>
32#include <string.h>
33#include <ctype.h>
Maxime de Roucy379d9c72016-05-13 23:52:56 +020034#include <dirent.h>
Maxime de Roucy379d9c72016-05-13 23:52:56 +020035#include <sys/stat.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020036#include <sys/time.h>
37#include <sys/types.h>
38#include <sys/socket.h>
39#include <netinet/tcp.h>
40#include <netinet/in.h>
41#include <arpa/inet.h>
Olivier Houchardf73629d2017-04-05 22:33:04 +020042#include <net/if.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020043#include <netdb.h>
44#include <fcntl.h>
45#include <errno.h>
46#include <signal.h>
47#include <stdarg.h>
48#include <sys/resource.h>
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +010049#include <sys/wait.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020050#include <time.h>
51#include <syslog.h>
Michael Schererab012dd2013-01-12 18:35:19 +010052#include <grp.h>
Willy Tarreaufc6c0322012-11-16 16:12:27 +010053#ifdef USE_CPU_AFFINITY
Willy Tarreaufc6c0322012-11-16 16:12:27 +010054#include <sched.h>
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +020055#ifdef __FreeBSD__
56#include <sys/param.h>
57#include <sys/cpuset.h>
David Carlier6d5c8412017-11-29 11:02:32 +000058#include <pthread_np.h>
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +020059#endif
Willy Tarreaufc6c0322012-11-16 16:12:27 +010060#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +020061
62#ifdef DEBUG_FULL
63#include <assert.h>
64#endif
Tim Duesterhusd6942c82017-11-20 15:58:35 +010065#if defined(USE_SYSTEMD)
66#include <systemd/sd-daemon.h>
67#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +020068
Willy Tarreau2dd0d472006-06-29 17:53:05 +020069#include <common/base64.h>
70#include <common/cfgparse.h>
Willy Tarreauc7e42382012-08-24 19:22:53 +020071#include <common/chunk.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020072#include <common/compat.h>
73#include <common/config.h>
74#include <common/defaults.h>
Willy Tarreaud740bab2007-10-28 11:14:07 +010075#include <common/errors.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020076#include <common/memory.h>
77#include <common/mini-clist.h>
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +010078#include <common/namespace.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020079#include <common/regex.h>
80#include <common/standard.h>
81#include <common/time.h>
82#include <common/uri_auth.h>
83#include <common/version.h>
Christopher Fauletbe0faa22017-08-29 15:37:10 +020084#include <common/hathreads.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020085
86#include <types/capture.h>
Christopher Fauletd7c91962015-04-30 11:48:27 +020087#include <types/filters.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020088#include <types/global.h>
Simon Hormanac821422011-07-15 13:14:09 +090089#include <types/acl.h>
Willy Tarreau3c63fd82011-09-07 18:00:47 +020090#include <types/peers.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020091
Willy Tarreau0fc45a72007-06-17 00:36:03 +020092#include <proto/acl.h>
Willy Tarreau3c595ac2015-04-19 09:59:31 +020093#include <proto/applet.h>
Willy Tarreau2e845be2012-10-19 19:49:09 +020094#include <proto/arg.h>
Willy Tarreau3c595ac2015-04-19 09:59:31 +020095#include <proto/auth.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020096#include <proto/backend.h>
Willy Tarreauc7e42382012-08-24 19:22:53 +020097#include <proto/channel.h>
Willy Tarreauf2943dc2012-10-26 20:10:28 +020098#include <proto/connection.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020099#include <proto/fd.h>
Christopher Fauletd7c91962015-04-30 11:48:27 +0200100#include <proto/filters.h>
Willy Tarreau34eb6712011-10-24 18:15:04 +0200101#include <proto/hdr_idx.h>
Thierry FOURNIER6f1fd482015-01-23 14:06:13 +0100102#include <proto/hlua.h>
Willy Tarreaud1d54542012-09-12 22:58:11 +0200103#include <proto/listener.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200104#include <proto/log.h>
Thierry FOURNIERaf5a29d2014-03-11 14:29:22 +0100105#include <proto/pattern.h>
Willy Tarreaud1d54542012-09-12 22:58:11 +0200106#include <proto/protocol.h>
Willy Tarreau80587432006-12-24 17:47:20 +0100107#include <proto/proto_http.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200108#include <proto/proxy.h>
109#include <proto/queue.h>
110#include <proto/server.h>
Willy Tarreaub1ec8c42015-04-03 13:53:24 +0200111#include <proto/session.h>
Willy Tarreau87b09662015-04-03 00:22:06 +0200112#include <proto/stream.h>
Willy Tarreau29857942009-05-10 09:01:21 +0200113#include <proto/signal.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200114#include <proto/task.h>
Baptiste Assmann325137d2015-04-13 23:40:55 +0200115#include <proto/dns.h>
Christopher Fauletff2613e2016-11-09 11:36:17 +0100116#include <proto/vars.h>
Willy Tarreau50bc31d2017-08-16 15:35:19 +0200117#ifdef USE_OPENSSL
Grant Zhang872f9c22017-01-21 01:10:18 +0000118#include <proto/ssl_sock.h>
Willy Tarreau50bc31d2017-08-16 15:35:19 +0200119#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200120
Willy Tarreau477ecd82010-01-03 21:12:30 +0100121/* list of config files */
122static struct list cfg_cfgfiles = LIST_HEAD_INIT(cfg_cfgfiles);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200123int pid; /* current process id */
Willy Tarreau28156642007-11-26 16:13:36 +0100124int relative_pid = 1; /* process id starting at 1 */
Willy Tarreau387bd4f2017-11-10 19:08:14 +0100125unsigned long pid_bit = 1; /* bit corresponding to the process id */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200126
127/* global options */
128struct global global = {
Cyril Bonté203ec5a2017-03-23 22:44:13 +0100129 .hard_stop_after = TICK_ETERNITY,
Willy Tarreau247a13a2012-11-15 17:38:15 +0100130 .nbproc = 1,
Christopher Fauletbe0faa22017-08-29 15:37:10 +0200131 .nbthread = 1,
William Lallemand5f232402012-04-05 18:02:55 +0200132 .req_count = 0,
William Lallemand0f99e342011-10-12 17:50:54 +0200133 .logsrvs = LIST_HEAD_INIT(global.logsrvs),
William Lallemand9d5f5482012-11-07 16:12:57 +0100134 .maxzlibmem = 0,
William Lallemandd85f9172012-11-09 17:05:39 +0100135 .comp_rate_lim = 0,
Emeric Brun850efd52014-01-29 12:24:34 +0100136 .ssl_server_verify = SSL_SERVER_VERIFY_REQUIRED,
Emeric Bruned760922010-10-22 17:59:25 +0200137 .unix_bind = {
138 .ux = {
139 .uid = -1,
140 .gid = -1,
141 .mode = 0,
142 }
143 },
Willy Tarreau27a674e2009-08-17 07:23:33 +0200144 .tune = {
145 .bufsize = BUFSIZE,
Willy Tarreau27097842015-09-28 13:53:23 +0200146 .maxrewrite = -1,
Willy Tarreau43961d52010-10-04 20:39:20 +0200147 .chksize = BUFSIZE,
Willy Tarreaua24adf02014-11-27 01:11:56 +0100148 .reserved_bufs = RESERVED_BUFS,
Willy Tarreauf3045d22015-04-29 16:24:50 +0200149 .pattern_cache = DEFAULT_PAT_LRU_SIZE,
Emeric Brunfc32aca2012-09-03 12:10:29 +0200150#ifdef USE_OPENSSL
Emeric Brun46635772012-11-14 11:32:56 +0100151 .sslcachesize = SSLCACHESIZE,
Emeric Brunfc32aca2012-09-03 12:10:29 +0200152#endif
William Lallemandf3747832012-11-09 12:33:10 +0100153 .comp_maxlevel = 1,
Willy Tarreau7e312732014-02-12 16:35:14 +0100154#ifdef DEFAULT_IDLE_TIMER
155 .idle_timer = DEFAULT_IDLE_TIMER,
156#else
157 .idle_timer = 1000, /* 1 second */
158#endif
Willy Tarreau27a674e2009-08-17 07:23:33 +0200159 },
Emeric Brun76d88952012-10-05 15:47:31 +0200160#ifdef USE_OPENSSL
161#ifdef DEFAULT_MAXSSLCONN
Willy Tarreau403edff2012-09-06 11:58:37 +0200162 .maxsslconn = DEFAULT_MAXSSLCONN,
163#endif
Emeric Brun76d88952012-10-05 15:47:31 +0200164#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200165 /* others NULL OK */
166};
167
168/*********************************************************************/
169
170int stopping; /* non zero means stopping in progress */
Cyril Bonté203ec5a2017-03-23 22:44:13 +0100171int killed; /* non zero means a hard-stop is triggered */
Willy Tarreauaf7ad002010-08-31 15:39:26 +0200172int jobs = 0; /* number of active jobs (conns, listeners, active tasks, ...) */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200173
174/* Here we store informations about the pids of the processes we may pause
175 * or kill. We will send them a signal every 10 ms until we can bind to all
176 * our ports. With 200 retries, that's about 2 seconds.
177 */
178#define MAX_START_RETRIES 200
Willy Tarreaubaaee002006-06-26 02:48:02 +0200179static int *oldpids = NULL;
180static int oldpids_sig; /* use USR1 or TERM */
181
Olivier Houchardf73629d2017-04-05 22:33:04 +0200182/* Path to the unix socket we use to retrieve listener sockets from the old process */
183static const char *old_unixsocket;
184
William Lallemand85b0bd92017-06-01 17:38:53 +0200185static char *cur_unixsocket = NULL;
186
William Lallemandcb11fd22017-06-01 17:38:52 +0200187int atexit_flag = 0;
188
Willy Tarreaubb545b42010-08-25 12:58:59 +0200189int nb_oldpids = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200190const int zero = 0;
191const int one = 1;
Alexandre Cassen87ea5482007-10-11 20:48:58 +0200192const struct linger nolinger = { .l_onoff = 1, .l_linger = 0 };
Willy Tarreaubaaee002006-06-26 02:48:02 +0200193
Willy Tarreau1d21e0a2010-03-12 21:58:54 +0100194char hostname[MAX_HOSTNAME_LEN];
Emeric Brun2b920a12010-09-23 18:30:22 +0200195char localpeer[MAX_HOSTNAME_LEN];
Willy Tarreaubaaee002006-06-26 02:48:02 +0200196
Willy Tarreau89efaed2013-12-13 15:14:55 +0100197/* used from everywhere just to drain results we don't want to read and which
198 * recent versions of gcc increasingly and annoyingly complain about.
199 */
200int shut_your_big_mouth_gcc_int = 0;
201
William Lallemand73b85e72017-06-01 17:38:51 +0200202int *children = NULL; /* store PIDs of children in master workers mode */
203
204static volatile sig_atomic_t caught_signal = 0;
205static char **next_argv = NULL;
206
William Lallemande20b6a62017-06-01 17:38:55 +0200207int mworker_pipe[2];
208
Willy Tarreau08ceb102011-07-24 22:58:00 +0200209/* list of the temporarily limited listeners because of lack of resource */
210struct list global_listener_queue = LIST_HEAD_INIT(global_listener_queue);
Willy Tarreaue9b26022011-08-01 20:57:55 +0200211struct task *global_listener_queue_task;
212static struct task *manage_global_listener_queue(struct task *t);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200213
Willy Tarreauff055502014-04-28 22:27:06 +0200214/* bitfield of a few warnings to emit just once (WARN_*) */
215unsigned int warned = 0;
216
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100217
218/* These are strings to be reported in the output of "haproxy -vv". They may
219 * either be constants (in which case must_free must be zero) or dynamically
220 * allocated strings to pass to free() on exit, and in this case must_free
221 * must be non-zero.
222 */
223struct list build_opts_list = LIST_HEAD_INIT(build_opts_list);
224struct build_opts_str {
225 struct list list;
226 const char *str;
227 int must_free;
228};
229
Willy Tarreaue6945732016-12-21 19:57:00 +0100230/* These functions are called just after the point where the program exits
231 * after a config validity check, so they are generally suited for resource
232 * allocation and slow initializations that should be skipped during basic
233 * config checks. The functions must return 0 on success, or a combination
234 * of ERR_* flags (ERR_WARN, ERR_ABORT, ERR_FATAL, ...). The 2 latter cause
235 * and immediate exit, so the function must have emitted any useful error.
236 */
237struct list post_check_list = LIST_HEAD_INIT(post_check_list);
238struct post_check_fct {
239 struct list list;
240 int (*fct)();
241};
242
Willy Tarreau05554e62016-12-21 20:46:26 +0100243/* These functions are called when freeing the global sections at the end
244 * of deinit, after everything is stopped. They don't return anything, and
245 * they work in best effort mode as their sole goal is to make valgrind
246 * mostly happy.
247 */
248struct list post_deinit_list = LIST_HEAD_INIT(post_deinit_list);
249struct post_deinit_fct {
250 struct list list;
251 void (*fct)();
252};
253
Christopher Faulet415f6112017-07-25 16:52:58 +0200254/* These functions are called for each thread just after the thread creation
255 * and before running the scheduler. They should be used to do per-thread
256 * initializations. They must return 0 if an error occurred. */
257struct list per_thread_init_list = LIST_HEAD_INIT(per_thread_init_list);
258struct per_thread_init_fct {
259 struct list list;
260 int (*fct)();
261};
262
263/* These functions are called for each thread just after the scheduler loop and
264 * before exiting the thread. They don't return anything and, as for post-deinit
265 * functions, they work in best effort mode as their sole goal is to make
266 * valgrind mostly happy. */
267struct list per_thread_deinit_list = LIST_HEAD_INIT(per_thread_deinit_list);
268struct per_thread_deinit_fct {
269 struct list list;
270 void (*fct)();
271};
272
Willy Tarreaubaaee002006-06-26 02:48:02 +0200273/*********************************************************************/
274/* general purpose functions ***************************************/
275/*********************************************************************/
276
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100277/* used to register some build option strings at boot. Set must_free to
278 * non-zero if the string must be freed upon exit.
279 */
280void hap_register_build_opts(const char *str, int must_free)
281{
282 struct build_opts_str *b;
283
284 b = calloc(1, sizeof(*b));
285 if (!b) {
286 fprintf(stderr, "out of memory\n");
287 exit(1);
288 }
289 b->str = str;
290 b->must_free = must_free;
291 LIST_ADDQ(&build_opts_list, &b->list);
292}
293
Willy Tarreaue6945732016-12-21 19:57:00 +0100294/* used to register some initialization functions to call after the checks. */
295void hap_register_post_check(int (*fct)())
296{
297 struct post_check_fct *b;
298
299 b = calloc(1, sizeof(*b));
300 if (!b) {
301 fprintf(stderr, "out of memory\n");
302 exit(1);
303 }
304 b->fct = fct;
305 LIST_ADDQ(&post_check_list, &b->list);
306}
307
Willy Tarreau05554e62016-12-21 20:46:26 +0100308/* used to register some de-initialization functions to call after everything
309 * has stopped.
310 */
311void hap_register_post_deinit(void (*fct)())
312{
313 struct post_deinit_fct *b;
314
315 b = calloc(1, sizeof(*b));
316 if (!b) {
317 fprintf(stderr, "out of memory\n");
318 exit(1);
319 }
320 b->fct = fct;
321 LIST_ADDQ(&post_deinit_list, &b->list);
322}
323
Christopher Faulet415f6112017-07-25 16:52:58 +0200324/* used to register some initialization functions to call for each thread. */
325void hap_register_per_thread_init(int (*fct)())
326{
327 struct per_thread_init_fct *b;
328
329 b = calloc(1, sizeof(*b));
330 if (!b) {
331 fprintf(stderr, "out of memory\n");
332 exit(1);
333 }
334 b->fct = fct;
335 LIST_ADDQ(&per_thread_init_list, &b->list);
336}
337
338/* used to register some de-initialization functions to call for each thread. */
339void hap_register_per_thread_deinit(void (*fct)())
340{
341 struct per_thread_deinit_fct *b;
342
343 b = calloc(1, sizeof(*b));
344 if (!b) {
345 fprintf(stderr, "out of memory\n");
346 exit(1);
347 }
348 b->fct = fct;
349 LIST_ADDQ(&per_thread_deinit_list, &b->list);
350}
351
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100352static void display_version()
Willy Tarreaubaaee002006-06-26 02:48:02 +0200353{
354 printf("HA-Proxy version " HAPROXY_VERSION " " HAPROXY_DATE"\n");
Willy Tarreau7b677262017-04-03 09:27:49 +0200355 printf("Copyright 2000-2017 Willy Tarreau <willy@haproxy.org>\n\n");
Willy Tarreaubaaee002006-06-26 02:48:02 +0200356}
357
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100358static void display_build_opts()
Willy Tarreau7b066db2007-12-02 11:28:59 +0100359{
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100360 struct build_opts_str *item;
361
Willy Tarreau7b066db2007-12-02 11:28:59 +0100362 printf("Build options :"
363#ifdef BUILD_TARGET
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100364 "\n TARGET = " BUILD_TARGET
Willy Tarreau7b066db2007-12-02 11:28:59 +0100365#endif
366#ifdef BUILD_CPU
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100367 "\n CPU = " BUILD_CPU
Willy Tarreau7b066db2007-12-02 11:28:59 +0100368#endif
369#ifdef BUILD_CC
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100370 "\n CC = " BUILD_CC
371#endif
372#ifdef BUILD_CFLAGS
373 "\n CFLAGS = " BUILD_CFLAGS
Willy Tarreau7b066db2007-12-02 11:28:59 +0100374#endif
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100375#ifdef BUILD_OPTIONS
376 "\n OPTIONS = " BUILD_OPTIONS
Willy Tarreau7b066db2007-12-02 11:28:59 +0100377#endif
Willy Tarreau27a674e2009-08-17 07:23:33 +0200378 "\n\nDefault settings :"
379 "\n maxconn = %d, bufsize = %d, maxrewrite = %d, maxpollevents = %d"
380 "\n\n",
381 DEFAULT_MAXCONN, BUFSIZE, MAXREWRITE, MAX_POLL_EVENTS);
Willy Tarreaube5b6852009-10-03 18:57:08 +0200382
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100383 list_for_each_entry(item, &build_opts_list, list) {
384 puts(item->str);
385 }
386
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +0100387 putchar('\n');
388
Willy Tarreaube5b6852009-10-03 18:57:08 +0200389 list_pollers(stdout);
390 putchar('\n');
Christopher Fauletb3f4e142016-03-07 12:46:38 +0100391 list_filters(stdout);
392 putchar('\n');
Willy Tarreau7b066db2007-12-02 11:28:59 +0100393}
394
Willy Tarreaubaaee002006-06-26 02:48:02 +0200395/*
396 * This function prints the command line usage and exits
397 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100398static void usage(char *name)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200399{
400 display_version();
401 fprintf(stderr,
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200402 "Usage : %s [-f <cfgfile|cfgdir>]* [ -vdV"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200403 "D ] [ -n <maxconn> ] [ -N <maxpconn> ]\n"
Willy Tarreaua088d312015-10-08 11:58:48 +0200404 " [ -p <pidfile> ] [ -m <max megs> ] [ -C <dir> ] [-- <cfgfile>*]\n"
Willy Tarreau7b066db2007-12-02 11:28:59 +0100405 " -v displays version ; -vv shows known build options.\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200406 " -d enters debug mode ; -db only disables background mode.\n"
Willy Tarreau6e064432012-05-08 15:40:42 +0200407 " -dM[<byte>] poisons memory with <byte> (defaults to 0x50)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200408 " -V enters verbose mode (disables quiet mode)\n"
Willy Tarreau576132e2011-09-10 19:26:56 +0200409 " -D goes daemon ; -C changes to <dir> before loading files.\n"
William Lallemand095ba4c2017-06-01 17:38:50 +0200410 " -W master-worker mode.\n"
Tim Duesterhusd6942c82017-11-20 15:58:35 +0100411#if defined(USE_SYSTEMD)
412 " -Ws master-worker mode with systemd notify support.\n"
413#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200414 " -q quiet mode : don't display messages\n"
Willy Tarreau5d01a632009-06-22 16:02:30 +0200415 " -c check mode : only check config files and exit\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200416 " -n sets the maximum total # of connections (%d)\n"
417 " -m limits the usable amount of memory (in MB)\n"
418 " -N sets the default, per-proxy maximum # of connections (%d)\n"
Emeric Brun2b920a12010-09-23 18:30:22 +0200419 " -L set local peer name (default to hostname)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200420 " -p writes pids of all children to this file\n"
421#if defined(ENABLE_EPOLL)
422 " -de disables epoll() usage even when available\n"
423#endif
Willy Tarreau1e63130a2007-04-09 12:03:06 +0200424#if defined(ENABLE_KQUEUE)
425 " -dk disables kqueue() usage even when available\n"
426#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200427#if defined(ENABLE_POLL)
428 " -dp disables poll() usage even when available\n"
429#endif
Willy Tarreaub55932d2009-08-16 13:20:32 +0200430#if defined(CONFIG_HAP_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +0100431 " -dS disables splice usage (broken on old kernels)\n"
432#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +0200433#if defined(USE_GETADDRINFO)
434 " -dG disables getaddrinfo() usage\n"
435#endif
Lukas Tribusa0bcbdc2016-09-12 21:42:20 +0000436#if defined(SO_REUSEPORT)
437 " -dR disables SO_REUSEPORT usage\n"
438#endif
Willy Tarreau3eed10e2016-11-07 21:03:16 +0100439 " -dr ignores server address resolution failures\n"
Emeric Brun850efd52014-01-29 12:24:34 +0100440 " -dV disables SSL verify on servers side\n"
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +0200441 " -sf/-st [pid ]* finishes/terminates old pids.\n"
Olivier Houchardf73629d2017-04-05 22:33:04 +0200442 " -x <unix_socket> get listening sockets from a unix socket\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200443 "\n",
444 name, DEFAULT_MAXCONN, cfg_maxpconn);
445 exit(1);
446}
447
448
449
450/*********************************************************************/
451/* more specific functions ***************************************/
452/*********************************************************************/
453
William Lallemand73b85e72017-06-01 17:38:51 +0200454/* sends the signal <sig> to all pids found in <oldpids>. Returns the number of
455 * pids the signal was correctly delivered to.
456 */
457static int tell_old_pids(int sig)
458{
459 int p;
460 int ret = 0;
461 for (p = 0; p < nb_oldpids; p++)
462 if (kill(oldpids[p], sig) == 0)
463 ret++;
464 return ret;
465}
466
467/* return 1 if a pid is a current child otherwise 0 */
468
469int current_child(int pid)
470{
471 int i;
472
473 for (i = 0; i < global.nbproc; i++) {
474 if (children[i] == pid)
475 return 1;
476 }
477 return 0;
478}
479
480static void mworker_signalhandler(int signum)
481{
482 caught_signal = signum;
483}
484
485static void mworker_register_signals()
486{
487 struct sigaction sa;
488 /* Here we are not using the haproxy async way
489 for signals because it does not exists in
490 the master */
491 memset(&sa, 0, sizeof(struct sigaction));
492 sa.sa_handler = &mworker_signalhandler;
493 sigaction(SIGHUP, &sa, NULL);
494 sigaction(SIGUSR1, &sa, NULL);
495 sigaction(SIGUSR2, &sa, NULL);
496 sigaction(SIGINT, &sa, NULL);
497 sigaction(SIGTERM, &sa, NULL);
498}
499
500static void mworker_block_signals()
501{
502 sigset_t set;
503
504 sigemptyset(&set);
505 sigaddset(&set, SIGUSR1);
506 sigaddset(&set, SIGUSR2);
507 sigaddset(&set, SIGHUP);
508 sigaddset(&set, SIGINT);
509 sigaddset(&set, SIGTERM);
510 sigprocmask(SIG_SETMASK, &set, NULL);
511}
512
513static void mworker_unblock_signals()
514{
515 sigset_t set;
516
517 sigemptyset(&set);
518 sigaddset(&set, SIGUSR1);
519 sigaddset(&set, SIGUSR2);
520 sigaddset(&set, SIGHUP);
521 sigaddset(&set, SIGINT);
522 sigaddset(&set, SIGTERM);
523 sigprocmask(SIG_UNBLOCK, &set, NULL);
524}
525
526static void mworker_unregister_signals()
527{
528 signal(SIGINT, SIG_DFL);
529 signal(SIGTERM, SIG_DFL);
530 signal(SIGHUP, SIG_IGN);
531 signal(SIGUSR1, SIG_IGN);
532 signal(SIGUSR2, SIG_IGN);
533}
534
535/*
536 * Send signal to every known children.
537 */
538
539static void mworker_kill(int sig)
540{
541 int i;
542
543 tell_old_pids(sig);
544 if (children) {
545 for (i = 0; i < global.nbproc; i++)
546 kill(children[i], sig);
547 }
548}
549
Willy Tarreaubaaee002006-06-26 02:48:02 +0200550/*
William Lallemand75ea0a02017-11-15 19:02:58 +0100551 * Upon a reload, the master worker needs to close all listeners FDs but the mworker_pipe
552 * fd, and the FD provided by fd@
553 */
554static void mworker_cleanlisteners()
555{
556 struct listener *l, *l_next;
557 struct proxy *curproxy;
Willy Tarreau473cf5d2017-12-05 11:14:12 +0100558 struct peers *curpeers;
William Lallemand75ea0a02017-11-15 19:02:58 +0100559
Olivier Houchardfbc74e82017-11-24 16:54:05 +0100560 for (curproxy = proxies_list; curproxy; curproxy = curproxy->next) {
Willy Tarreau473cf5d2017-12-05 11:14:12 +0100561 /* we might have to unbind some peers sections from some processes */
562 for (curpeers = cfg_peers; curpeers; curpeers = curpeers->next) {
563 if (!curpeers->peers_fe)
564 continue;
565
566 stop_proxy(curpeers->peers_fe);
567 /* disable this peer section so that it kills itself */
568 signal_unregister_handler(curpeers->sighandler);
569 task_delete(curpeers->sync_task);
570 task_free(curpeers->sync_task);
571 curpeers->sync_task = NULL;
572 task_free(curpeers->peers_fe->task);
573 curpeers->peers_fe->task = NULL;
574 curpeers->peers_fe = NULL;
575 }
William Lallemand75ea0a02017-11-15 19:02:58 +0100576
577 list_for_each_entry_safe(l, l_next, &curproxy->conf.listeners, by_fe) {
578 /* does not close if the FD is inherited with fd@
579 * from the parent process */
580 if (!(l->options & LI_O_INHERITED)) {
581 close(l->fd);
582 LIST_DEL(&l->by_fe);
583 LIST_DEL(&l->by_bind);
584 free(l->name);
585 free(l->counters);
586 free(l);
587 }
588 }
589 }
590}
591
592
593/*
William Lallemand73b85e72017-06-01 17:38:51 +0200594 * remove a pid forom the olpid array and decrease nb_oldpids
595 * return 1 pid was found otherwise return 0
596 */
597
598int delete_oldpid(int pid)
599{
600 int i;
601
602 for (i = 0; i < nb_oldpids; i++) {
603 if (oldpids[i] == pid) {
604 oldpids[i] = oldpids[nb_oldpids - 1];
605 oldpids[nb_oldpids - 1] = 0;
606 nb_oldpids--;
607 return 1;
608 }
609 }
610 return 0;
611}
612
William Lallemand85b0bd92017-06-01 17:38:53 +0200613
614static void get_cur_unixsocket()
615{
616 /* if -x was used, try to update the stat socket if not available anymore */
617 if (global.stats_fe) {
618 struct bind_conf *bind_conf;
619
620 /* pass through all stats socket */
621 list_for_each_entry(bind_conf, &global.stats_fe->conf.bind, by_fe) {
622 struct listener *l;
623
624 list_for_each_entry(l, &bind_conf->listeners, by_bind) {
625
626 if (l->addr.ss_family == AF_UNIX &&
627 (bind_conf->level & ACCESS_FD_LISTENERS)) {
628 const struct sockaddr_un *un;
629
630 un = (struct sockaddr_un *)&l->addr;
631 /* priority to old_unixsocket */
632 if (!cur_unixsocket) {
633 cur_unixsocket = strdup(un->sun_path);
634 } else {
635 if (old_unixsocket && !strcmp(un->sun_path, old_unixsocket)) {
636 free(cur_unixsocket);
637 cur_unixsocket = strdup(old_unixsocket);
638 return;
639 }
640 }
641 }
642 }
643 }
644 }
645 if (!cur_unixsocket && old_unixsocket)
646 cur_unixsocket = strdup(old_unixsocket);
647}
648
William Lallemand73b85e72017-06-01 17:38:51 +0200649/*
650 * When called, this function reexec haproxy with -sf followed by current
651 * children PIDs and possibily old children PIDs if they didn't leave yet.
652 */
653static void mworker_reload()
654{
655 int next_argc = 0;
656 int j;
657 char *msg = NULL;
658
659 mworker_block_signals();
660 mworker_unregister_signals();
Tim Duesterhusd6942c82017-11-20 15:58:35 +0100661#if defined(USE_SYSTEMD)
662 if (global.tune.options & GTUNE_USE_SYSTEMD)
663 sd_notify(0, "RELOADING=1");
664#endif
William Lallemand73b85e72017-06-01 17:38:51 +0200665 setenv("HAPROXY_MWORKER_REEXEC", "1", 1);
666
667 /* compute length */
668 while (next_argv[next_argc])
669 next_argc++;
670
William Lallemand85b0bd92017-06-01 17:38:53 +0200671 /* 1 for haproxy -sf, 2 for -x /socket */
672 next_argv = realloc(next_argv, (next_argc + 1 + 2 + global.nbproc + nb_oldpids + 1) * sizeof(char *));
William Lallemand73b85e72017-06-01 17:38:51 +0200673 if (next_argv == NULL)
674 goto alloc_error;
675
676
677 /* add -sf <PID>* to argv */
678 if (children || nb_oldpids > 0)
679 next_argv[next_argc++] = "-sf";
680 if (children) {
681 for (j = 0; j < global.nbproc; next_argc++,j++) {
682 next_argv[next_argc] = memprintf(&msg, "%d", children[j]);
683 if (next_argv[next_argc] == NULL)
684 goto alloc_error;
685 msg = NULL;
686 }
687 }
688 /* copy old process PIDs */
689 for (j = 0; j < nb_oldpids; next_argc++,j++) {
690 next_argv[next_argc] = memprintf(&msg, "%d", oldpids[j]);
691 if (next_argv[next_argc] == NULL)
692 goto alloc_error;
693 msg = NULL;
694 }
695 next_argv[next_argc] = NULL;
William Lallemand85b0bd92017-06-01 17:38:53 +0200696
William Lallemand2bf6d622017-06-20 11:20:23 +0200697 /* add the -x option with the stat socket */
William Lallemand85b0bd92017-06-01 17:38:53 +0200698 if (cur_unixsocket) {
699
William Lallemand2bf6d622017-06-20 11:20:23 +0200700 next_argv[next_argc++] = "-x";
701 next_argv[next_argc++] = (char *)cur_unixsocket;
702 next_argv[next_argc++] = NULL;
William Lallemand85b0bd92017-06-01 17:38:53 +0200703 }
704
Christopher Faulet767a84b2017-11-24 16:50:31 +0100705 ha_warning("Reexecuting Master process\n");
Tim Duesterhus0436ab72017-11-12 17:39:18 +0100706 execvp(next_argv[0], next_argv);
William Lallemand73b85e72017-06-01 17:38:51 +0200707
Christopher Faulet767a84b2017-11-24 16:50:31 +0100708 ha_warning("Failed to reexecute the master process [%d]: %s\n", pid, strerror(errno));
William Lallemand722d4ca2017-11-15 19:02:55 +0100709 return;
710
William Lallemand73b85e72017-06-01 17:38:51 +0200711alloc_error:
Christopher Faulet767a84b2017-11-24 16:50:31 +0100712 ha_warning("Failed to reexecute the master processs [%d]: Cannot allocate memory\n", pid);
William Lallemand73b85e72017-06-01 17:38:51 +0200713 return;
714}
715
716
717/*
718 * Wait for every children to exit
719 */
720
721static void mworker_wait()
722{
723 int exitpid = -1;
724 int status = 0;
725
William Lallemand2f8b31c2017-11-15 19:02:56 +0100726restart_wait:
727
Tim Duesterhusd6942c82017-11-20 15:58:35 +0100728#if defined(USE_SYSTEMD)
729 if (global.tune.options & GTUNE_USE_SYSTEMD)
730 sd_notifyf(0, "READY=1\nMAINPID=%lu", (unsigned long)getpid());
731#endif
732
William Lallemand73b85e72017-06-01 17:38:51 +0200733 mworker_register_signals();
734 mworker_unblock_signals();
735
736 while (1) {
737
738 while (((exitpid = wait(&status)) == -1) && errno == EINTR) {
739 int sig = caught_signal;
740 if (sig == SIGUSR2 || sig == SIGHUP) {
741 mworker_reload();
William Lallemand2f8b31c2017-11-15 19:02:56 +0100742 /* should reach there only if it fail */
743 goto restart_wait;
William Lallemand73b85e72017-06-01 17:38:51 +0200744 } else {
Tim Duesterhusd6942c82017-11-20 15:58:35 +0100745#if defined(USE_SYSTEMD)
746 if ((global.tune.options & GTUNE_USE_SYSTEMD) && (sig == SIGUSR1 || sig == SIGTERM)) {
747 sd_notify(0, "STOPPING=1");
748 }
749#endif
Christopher Faulet767a84b2017-11-24 16:50:31 +0100750 ha_warning("Exiting Master process...\n");
William Lallemand73b85e72017-06-01 17:38:51 +0200751 mworker_kill(sig);
752 mworker_unregister_signals();
753 }
754 caught_signal = 0;
755 }
756
757 if (exitpid == -1 && errno == ECHILD) {
Tim Duesterhusd16f4502017-12-05 18:14:13 +0100758 ha_warning("All workers exited. Exiting... (%d)\n", status);
William Lallemandcb11fd22017-06-01 17:38:52 +0200759 atexit_flag = 0;
William Lallemand73b85e72017-06-01 17:38:51 +0200760 exit(status); /* parent must leave using the latest status code known */
761 }
762
763 if (WIFEXITED(status))
764 status = WEXITSTATUS(status);
765 else if (WIFSIGNALED(status))
766 status = 128 + WTERMSIG(status);
767 else if (WIFSTOPPED(status))
768 status = 128 + WSTOPSIG(status);
769 else
770 status = 255;
771
772 if (!children) {
Tim Duesterhusd16f4502017-12-05 18:14:13 +0100773 ha_warning("Worker %d exited with code %d\n", exitpid, status);
William Lallemand73b85e72017-06-01 17:38:51 +0200774 } else {
775 /* check if exited child was in the current children list */
776 if (current_child(exitpid)) {
Tim Duesterhusd16f4502017-12-05 18:14:13 +0100777 ha_alert("Current worker %d exited with code %d\n", exitpid, status);
William Lallemand69f9b3b2017-06-01 17:38:54 +0200778 if (status != 0 && status != 130 && status != 143
William Lallemand4cfede82017-11-24 22:02:34 +0100779 && !(global.tune.options & GTUNE_NOEXIT_ONFAILURE)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100780 ha_alert("exit-on-failure: killing every workers with SIGTERM\n");
William Lallemand69f9b3b2017-06-01 17:38:54 +0200781 mworker_kill(SIGTERM);
782 }
William Lallemand73b85e72017-06-01 17:38:51 +0200783 } else {
Tim Duesterhusd16f4502017-12-05 18:14:13 +0100784 ha_warning("Former worker %d exited with code %d\n", exitpid, status);
William Lallemand73b85e72017-06-01 17:38:51 +0200785 delete_oldpid(exitpid);
786 }
787 }
788 }
789}
790
William Lallemandcb11fd22017-06-01 17:38:52 +0200791
792/*
793 * Reexec the process in failure mode, instead of exiting
794 */
795void reexec_on_failure()
796{
797 if (!atexit_flag)
798 return;
799
800 setenv("HAPROXY_MWORKER_WAIT_ONLY", "1", 1);
801
Christopher Faulet767a84b2017-11-24 16:50:31 +0100802 ha_warning("Reexecuting Master process in waitpid mode\n");
William Lallemandcb11fd22017-06-01 17:38:52 +0200803 mworker_reload();
William Lallemandcb11fd22017-06-01 17:38:52 +0200804}
William Lallemand73b85e72017-06-01 17:38:51 +0200805
806
807/*
Willy Tarreaud0807c32010-08-27 18:26:11 +0200808 * upon SIGUSR1, let's have a soft stop. Note that soft_stop() broadcasts
809 * a signal zero to all subscribers. This means that it's as easy as
810 * subscribing to signal 0 to get informed about an imminent shutdown.
Willy Tarreaubaaee002006-06-26 02:48:02 +0200811 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100812static void sig_soft_stop(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200813{
814 soft_stop();
Willy Tarreau24f4efa2010-08-27 17:56:48 +0200815 signal_unregister_handler(sh);
Willy Tarreaubafbe012017-11-24 17:34:44 +0100816 pool_gc(NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200817}
818
819/*
820 * upon SIGTTOU, we pause everything
821 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100822static void sig_pause(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200823{
824 pause_proxies();
Willy Tarreaubafbe012017-11-24 17:34:44 +0100825 pool_gc(NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200826}
827
828/*
829 * upon SIGTTIN, let's have a soft stop.
830 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100831static void sig_listen(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200832{
Willy Tarreaube58c382011-07-24 18:28:10 +0200833 resume_proxies();
Willy Tarreaubaaee002006-06-26 02:48:02 +0200834}
835
836/*
837 * this function dumps every server's state when the process receives SIGHUP.
838 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100839static void sig_dump_state(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200840{
Olivier Houchardfbc74e82017-11-24 16:54:05 +0100841 struct proxy *p = proxies_list;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200842
Christopher Faulet767a84b2017-11-24 16:50:31 +0100843 ha_warning("SIGHUP received, dumping servers states.\n");
Willy Tarreaubaaee002006-06-26 02:48:02 +0200844 while (p) {
845 struct server *s = p->srv;
846
847 send_log(p, LOG_NOTICE, "SIGHUP received, dumping servers states for proxy %s.\n", p->id);
848 while (s) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100849 chunk_printf(&trash,
850 "SIGHUP: Server %s/%s is %s. Conn: %d act, %d pend, %lld tot.",
851 p->id, s->id,
Emeric Brun52a91d32017-08-31 14:41:55 +0200852 (s->cur_state != SRV_ST_STOPPED) ? "UP" : "DOWN",
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100853 s->cur_sess, s->nbpend, s->counters.cum_sess);
Christopher Faulet767a84b2017-11-24 16:50:31 +0100854 ha_warning("%s\n", trash.str);
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100855 send_log(p, LOG_NOTICE, "%s\n", trash.str);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200856 s = s->next;
857 }
858
Willy Tarreau5fcc8f12007-09-17 11:27:09 +0200859 /* FIXME: those info are a bit outdated. We should be able to distinguish between FE and BE. */
860 if (!p->srv) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100861 chunk_printf(&trash,
862 "SIGHUP: Proxy %s has no servers. Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
863 p->id,
864 p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreau5fcc8f12007-09-17 11:27:09 +0200865 } else if (p->srv_act == 0) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100866 chunk_printf(&trash,
867 "SIGHUP: Proxy %s %s ! Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
868 p->id,
869 (p->srv_bck) ? "is running on backup servers" : "has no server available",
870 p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200871 } else {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100872 chunk_printf(&trash,
873 "SIGHUP: Proxy %s has %d active servers and %d backup servers available."
874 " Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
875 p->id, p->srv_act, p->srv_bck,
876 p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200877 }
Christopher Faulet767a84b2017-11-24 16:50:31 +0100878 ha_warning("%s\n", trash.str);
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100879 send_log(p, LOG_NOTICE, "%s\n", trash.str);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200880
881 p = p->next;
882 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200883}
884
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100885static void dump(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200886{
Willy Tarreauc6ca1a02007-05-13 19:43:47 +0200887 /* dump memory usage then free everything possible */
888 dump_pools();
Willy Tarreaubafbe012017-11-24 17:34:44 +0100889 pool_gc(NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200890}
891
William Lallemande1340412017-12-28 16:09:36 +0100892/*
893 * This function dup2 the stdio FDs (0,1,2) with <fd>, then closes <fd>
894 * If <fd> < 0, it opens /dev/null and use it to dup
895 *
896 * In the case of chrooting, you have to open /dev/null before the chroot, and
897 * pass the <fd> to this function
898 */
899static void stdio_quiet(int fd)
900{
901 if (fd < 0)
902 fd = open("/dev/null", O_RDWR, 0);
903
904 if (fd > -1) {
905 fclose(stdin);
906 fclose(stdout);
907 fclose(stderr);
908
909 dup2(fd, 0);
910 dup2(fd, 1);
911 dup2(fd, 2);
912 if (fd > 2)
913 close(fd);
914 return;
915 }
916
917 ha_alert("Cannot open /dev/null\n");
918 exit(EXIT_FAILURE);
919}
920
921
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200922/* This function check if cfg_cfgfiles containes directories.
923 * If it find one, it add all the files (and only files) it containes
924 * in cfg_cfgfiles in place of the directory (and remove the directory).
925 * It add the files in lexical order.
926 * It add only files with .cfg extension.
927 * It doesn't add files with name starting with '.'
928 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100929static void cfgfiles_expand_directories(void)
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200930{
931 struct wordlist *wl, *wlb;
932 char *err = NULL;
933
934 list_for_each_entry_safe(wl, wlb, &cfg_cfgfiles, list) {
935 struct stat file_stat;
936 struct dirent **dir_entries = NULL;
937 int dir_entries_nb;
938 int dir_entries_it;
939
940 if (stat(wl->s, &file_stat)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100941 ha_alert("Cannot open configuration file/directory %s : %s\n",
942 wl->s,
943 strerror(errno));
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200944 exit(1);
945 }
946
947 if (!S_ISDIR(file_stat.st_mode))
948 continue;
949
950 /* from this point wl->s is a directory */
951
952 dir_entries_nb = scandir(wl->s, &dir_entries, NULL, alphasort);
953 if (dir_entries_nb < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100954 ha_alert("Cannot open configuration directory %s : %s\n",
955 wl->s,
956 strerror(errno));
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200957 exit(1);
958 }
959
960 /* for each element in the directory wl->s */
961 for (dir_entries_it = 0; dir_entries_it < dir_entries_nb; dir_entries_it++) {
962 struct dirent *dir_entry = dir_entries[dir_entries_it];
963 char *filename = NULL;
964 char *d_name_cfgext = strstr(dir_entry->d_name, ".cfg");
965
966 /* don't add filename that begin with .
967 * only add filename with .cfg extention
968 */
969 if (dir_entry->d_name[0] == '.' ||
970 !(d_name_cfgext && d_name_cfgext[4] == '\0'))
971 goto next_dir_entry;
972
973 if (!memprintf(&filename, "%s/%s", wl->s, dir_entry->d_name)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100974 ha_alert("Cannot load configuration files %s : out of memory.\n",
975 filename);
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200976 exit(1);
977 }
978
979 if (stat(filename, &file_stat)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100980 ha_alert("Cannot open configuration file %s : %s\n",
981 wl->s,
982 strerror(errno));
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200983 exit(1);
984 }
985
986 /* don't add anything else than regular file in cfg_cfgfiles
987 * this way we avoid loops
988 */
989 if (!S_ISREG(file_stat.st_mode))
990 goto next_dir_entry;
991
992 if (!list_append_word(&wl->list, filename, &err)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100993 ha_alert("Cannot load configuration files %s : %s\n",
994 filename,
995 err);
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200996 exit(1);
997 }
998
999next_dir_entry:
1000 free(filename);
1001 free(dir_entry);
1002 }
1003
1004 free(dir_entries);
1005
1006 /* remove the current directory (wl) from cfg_cfgfiles */
1007 free(wl->s);
1008 LIST_DEL(&wl->list);
1009 free(wl);
1010 }
1011
1012 free(err);
1013}
1014
Olivier Houchardf73629d2017-04-05 22:33:04 +02001015static int get_old_sockets(const char *unixsocket)
1016{
1017 char *cmsgbuf = NULL, *tmpbuf = NULL;
1018 int *tmpfd = NULL;
1019 struct sockaddr_un addr;
1020 struct cmsghdr *cmsg;
1021 struct msghdr msghdr;
1022 struct iovec iov;
1023 struct xfer_sock_list *xfer_sock = NULL;
Olivier Houchard54740872017-04-06 14:45:14 +02001024 struct timeval tv = { .tv_sec = 1, .tv_usec = 0 };
Olivier Houchardf73629d2017-04-05 22:33:04 +02001025 int sock = -1;
1026 int ret = -1;
1027 int ret2 = -1;
1028 int fd_nb;
1029 int got_fd = 0;
1030 int i = 0;
1031 size_t maxoff = 0, curoff = 0;
1032
1033 memset(&msghdr, 0, sizeof(msghdr));
1034 cmsgbuf = malloc(CMSG_SPACE(sizeof(int)) * MAX_SEND_FD);
1035 if (!cmsgbuf) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001036 ha_warning("Failed to allocate memory to send sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001037 goto out;
1038 }
1039 sock = socket(PF_UNIX, SOCK_STREAM, 0);
1040 if (sock < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001041 ha_warning("Failed to connect to the old process socket '%s'\n",
1042 unixsocket);
Olivier Houchardf73629d2017-04-05 22:33:04 +02001043 goto out;
1044 }
1045 strncpy(addr.sun_path, unixsocket, sizeof(addr.sun_path));
1046 addr.sun_path[sizeof(addr.sun_path) - 1] = 0;
1047 addr.sun_family = PF_UNIX;
1048 ret = connect(sock, (struct sockaddr *)&addr, sizeof(addr));
1049 if (ret < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001050 ha_warning("Failed to connect to the old process socket '%s'\n",
1051 unixsocket);
Olivier Houchardf73629d2017-04-05 22:33:04 +02001052 goto out;
1053 }
Olivier Houchard54740872017-04-06 14:45:14 +02001054 setsockopt(sock, SOL_SOCKET, SO_RCVTIMEO, (void *)&tv, sizeof(tv));
Olivier Houchardf73629d2017-04-05 22:33:04 +02001055 iov.iov_base = &fd_nb;
1056 iov.iov_len = sizeof(fd_nb);
1057 msghdr.msg_iov = &iov;
1058 msghdr.msg_iovlen = 1;
1059 send(sock, "_getsocks\n", strlen("_getsocks\n"), 0);
1060 /* First, get the number of file descriptors to be received */
1061 if (recvmsg(sock, &msghdr, MSG_WAITALL) != sizeof(fd_nb)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001062 ha_warning("Failed to get the number of sockets to be transferred !\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001063 goto out;
1064 }
1065 if (fd_nb == 0) {
1066 ret = 0;
1067 goto out;
1068 }
Olivier Houchardf143b802017-11-04 15:13:01 +01001069 tmpbuf = malloc(fd_nb * (1 + MAXPATHLEN + 1 + IFNAMSIZ + sizeof(int)));
Olivier Houchardf73629d2017-04-05 22:33:04 +02001070 if (tmpbuf == NULL) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001071 ha_warning("Failed to allocate memory while receiving sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001072 goto out;
1073 }
1074 tmpfd = malloc(fd_nb * sizeof(int));
1075 if (tmpfd == NULL) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001076 ha_warning("Failed to allocate memory while receiving sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001077 goto out;
1078 }
1079 msghdr.msg_control = cmsgbuf;
1080 msghdr.msg_controllen = CMSG_SPACE(sizeof(int)) * MAX_SEND_FD;
Olivier Houchardf143b802017-11-04 15:13:01 +01001081 iov.iov_len = MAX_SEND_FD * (1 + MAXPATHLEN + 1 + IFNAMSIZ + sizeof(int));
Olivier Houchardf73629d2017-04-05 22:33:04 +02001082 do {
1083 int ret3;
1084
1085 iov.iov_base = tmpbuf + curoff;
1086 ret = recvmsg(sock, &msghdr, 0);
1087 if (ret == -1 && errno == EINTR)
1088 continue;
1089 if (ret <= 0)
1090 break;
1091 /* Send an ack to let the sender know we got the sockets
1092 * and it can send some more
1093 */
1094 do {
1095 ret3 = send(sock, &got_fd, sizeof(got_fd), 0);
1096 } while (ret3 == -1 && errno == EINTR);
1097 for (cmsg = CMSG_FIRSTHDR(&msghdr); cmsg != NULL;
1098 cmsg = CMSG_NXTHDR(&msghdr, cmsg)) {
1099 if (cmsg->cmsg_level == SOL_SOCKET &&
1100 cmsg->cmsg_type == SCM_RIGHTS) {
1101 size_t totlen = cmsg->cmsg_len -
1102 CMSG_LEN(0);
1103 if (totlen / sizeof(int) + got_fd > fd_nb) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001104 ha_warning("Got to many sockets !\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001105 goto out;
1106 }
1107 /*
1108 * Be paranoid and use memcpy() to avoid any
1109 * potential alignement issue.
1110 */
1111 memcpy(&tmpfd[got_fd], CMSG_DATA(cmsg), totlen);
1112 got_fd += totlen / sizeof(int);
1113 }
1114 }
1115 curoff += ret;
1116 } while (got_fd < fd_nb);
1117
1118 if (got_fd != fd_nb) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001119 ha_warning("We didn't get the expected number of sockets (expecting %d got %d)\n",
1120 fd_nb, got_fd);
Olivier Houchardf73629d2017-04-05 22:33:04 +02001121 goto out;
1122 }
1123 maxoff = curoff;
1124 curoff = 0;
1125 for (i = 0; i < got_fd; i++) {
1126 int fd = tmpfd[i];
1127 socklen_t socklen;
1128 int len;
1129
1130 xfer_sock = calloc(1, sizeof(*xfer_sock));
1131 if (!xfer_sock) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001132 ha_warning("Failed to allocate memory in get_old_sockets() !\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001133 break;
1134 }
1135 xfer_sock->fd = -1;
1136
1137 socklen = sizeof(xfer_sock->addr);
1138 if (getsockname(fd, (struct sockaddr *)&xfer_sock->addr, &socklen) != 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001139 ha_warning("Failed to get socket address\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001140 free(xfer_sock);
Olivier Houchardbe7b1ce2017-07-17 17:25:33 +02001141 xfer_sock = NULL;
Olivier Houchardf73629d2017-04-05 22:33:04 +02001142 continue;
1143 }
1144 if (curoff >= maxoff) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001145 ha_warning("Inconsistency while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001146 goto out;
1147 }
1148 len = tmpbuf[curoff++];
1149 if (len > 0) {
1150 /* We have a namespace */
1151 if (curoff + len > maxoff) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001152 ha_warning("Inconsistency while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001153 goto out;
1154 }
1155 xfer_sock->namespace = malloc(len + 1);
1156 if (!xfer_sock->namespace) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001157 ha_warning("Failed to allocate memory while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001158 goto out;
1159 }
1160 memcpy(xfer_sock->namespace, &tmpbuf[curoff], len);
1161 xfer_sock->namespace[len] = 0;
1162 curoff += len;
1163 }
1164 if (curoff >= maxoff) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001165 ha_warning("Inconsistency while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001166 goto out;
1167 }
1168 len = tmpbuf[curoff++];
1169 if (len > 0) {
1170 /* We have an interface */
1171 if (curoff + len > maxoff) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001172 ha_warning("Inconsistency while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001173 goto out;
1174 }
1175 xfer_sock->iface = malloc(len + 1);
1176 if (!xfer_sock->iface) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001177 ha_warning("Failed to allocate memory while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001178 goto out;
1179 }
1180 memcpy(xfer_sock->iface, &tmpbuf[curoff], len);
1181 xfer_sock->namespace[len] = 0;
1182 curoff += len;
1183 }
1184 if (curoff + sizeof(int) > maxoff) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001185 ha_warning("Inconsistency while transferring sockets\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001186 goto out;
1187 }
1188 memcpy(&xfer_sock->options, &tmpbuf[curoff],
1189 sizeof(xfer_sock->options));
1190 curoff += sizeof(xfer_sock->options);
1191
1192 xfer_sock->fd = fd;
1193 if (xfer_sock_list)
1194 xfer_sock_list->prev = xfer_sock;
1195 xfer_sock->next = xfer_sock_list;
1196 xfer_sock->prev = NULL;
1197 xfer_sock_list = xfer_sock;
1198 xfer_sock = NULL;
1199 }
1200
1201 ret2 = 0;
1202out:
1203 /* If we failed midway make sure to close the remaining
1204 * file descriptors
1205 */
1206 if (tmpfd != NULL && i < got_fd) {
1207 for (; i < got_fd; i++) {
1208 close(tmpfd[i]);
1209 }
1210 }
1211 free(tmpbuf);
1212 free(tmpfd);
1213 free(cmsgbuf);
1214 if (sock != -1)
1215 close(sock);
1216 if (xfer_sock) {
1217 free(xfer_sock->namespace);
1218 free(xfer_sock->iface);
1219 if (xfer_sock->fd != -1)
1220 close(xfer_sock->fd);
1221 free(xfer_sock);
1222 }
1223 return (ret2);
1224}
1225
Willy Tarreaubaaee002006-06-26 02:48:02 +02001226/*
William Lallemand73b85e72017-06-01 17:38:51 +02001227 * copy and cleanup the current argv
1228 * Remove the -sf /-st parameters
1229 * Return an allocated copy of argv
1230 */
1231
1232static char **copy_argv(int argc, char **argv)
1233{
1234 char **newargv;
William Lallemand2bf6d622017-06-20 11:20:23 +02001235 int i = 0, j = 0;
William Lallemand73b85e72017-06-01 17:38:51 +02001236
1237 newargv = calloc(argc + 2, sizeof(char *));
1238 if (newargv == NULL) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001239 ha_warning("Cannot allocate memory\n");
William Lallemand73b85e72017-06-01 17:38:51 +02001240 return NULL;
1241 }
1242
William Lallemand2bf6d622017-06-20 11:20:23 +02001243 while (i < argc) {
1244 /* -sf or -st or -x */
William Lallemand29f690c2018-01-09 23:12:27 +01001245 if (i > 0 && argv[i][0] == '-' &&
1246 ((argv[i][1] == 's' && (argv[i][2] == 'f' || argv[i][2] == 't')) || argv[i][1] == 'x' )) {
William Lallemand2bf6d622017-06-20 11:20:23 +02001247 /* list of pids to finish ('f') or terminate ('t') or unix socket (-x) */
William Lallemand73b85e72017-06-01 17:38:51 +02001248 i++;
1249 while (i < argc && argv[i][0] != '-') {
1250 i++;
1251 }
William Lallemand2bf6d622017-06-20 11:20:23 +02001252 continue;
William Lallemand73b85e72017-06-01 17:38:51 +02001253 }
William Lallemand2bf6d622017-06-20 11:20:23 +02001254
1255 newargv[j++] = argv[i++];
William Lallemand73b85e72017-06-01 17:38:51 +02001256 }
William Lallemand2bf6d622017-06-20 11:20:23 +02001257
William Lallemand73b85e72017-06-01 17:38:51 +02001258 return newargv;
1259}
1260
1261/*
Willy Tarreaubaaee002006-06-26 02:48:02 +02001262 * This function initializes all the necessary variables. It only returns
1263 * if everything is OK. If something fails, it exits.
1264 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +01001265static void init(int argc, char **argv)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001266{
Willy Tarreaubaaee002006-06-26 02:48:02 +02001267 int arg_mode = 0; /* MODE_DEBUG, ... */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001268 char *tmp;
1269 char *cfg_pidfile = NULL;
Willy Tarreau058e9072009-07-20 09:30:05 +02001270 int err_code = 0;
Maxime de Roucy0f503922016-05-13 23:52:55 +02001271 char *err_msg = NULL;
Willy Tarreau477ecd82010-01-03 21:12:30 +01001272 struct wordlist *wl;
Kevinm48936af2010-12-22 16:08:21 +00001273 char *progname;
Willy Tarreau576132e2011-09-10 19:26:56 +02001274 char *change_dir = NULL;
Christopher Fauletd7c91962015-04-30 11:48:27 +02001275 struct proxy *px;
Willy Tarreaue6945732016-12-21 19:57:00 +01001276 struct post_check_fct *pcf;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001277
Christopher Faulete3a5e352017-10-24 13:53:54 +02001278 global.mode = MODE_STARTING;
William Lallemand73b85e72017-06-01 17:38:51 +02001279 next_argv = copy_argv(argc, argv);
1280
Christopher Fauletcd7879a2017-10-27 13:53:47 +02001281 if (!init_trash_buffers(1)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001282 ha_alert("failed to initialize trash buffers.\n");
Christopher Faulet748919a2017-07-26 14:59:46 +02001283 exit(1);
1284 }
David du Colombier7af46052012-05-16 14:16:48 +02001285
Emeric Brun2b920a12010-09-23 18:30:22 +02001286 /* NB: POSIX does not make it mandatory for gethostname() to NULL-terminate
1287 * the string in case of truncation, and at least FreeBSD appears not to do
1288 * it.
1289 */
1290 memset(hostname, 0, sizeof(hostname));
1291 gethostname(hostname, sizeof(hostname) - 1);
1292 memset(localpeer, 0, sizeof(localpeer));
1293 memcpy(localpeer, hostname, (sizeof(hostname) > sizeof(localpeer) ? sizeof(localpeer) : sizeof(hostname)) - 1);
1294
Willy Tarreaubaaee002006-06-26 02:48:02 +02001295 /*
1296 * Initialize the previously static variables.
1297 */
Christopher Fauletcd7879a2017-10-27 13:53:47 +02001298
Willy Tarreau3eba98a2009-01-25 13:56:13 +01001299 totalconn = actconn = maxfd = listeners = stopping = 0;
Cyril Bonté203ec5a2017-03-23 22:44:13 +01001300 killed = 0;
Christopher Fauletcd7879a2017-10-27 13:53:47 +02001301
Willy Tarreaubaaee002006-06-26 02:48:02 +02001302
1303#ifdef HAPROXY_MEMMAX
Willy Tarreau70060452015-12-14 12:46:07 +01001304 global.rlimit_memmax_all = HAPROXY_MEMMAX;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001305#endif
1306
Benoit GARNIERb413c2a2016-03-27 11:08:03 +02001307 tzset();
Willy Tarreaub0b37bc2008-06-23 14:00:57 +02001308 tv_update_date(-1,-1);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001309 start_date = now;
1310
Willy Tarreau84310e22014-02-14 11:59:04 +01001311 srandom(now_ms - getpid());
1312
Dragan Dosen835b9212016-02-12 13:23:03 +01001313 init_log();
Willy Tarreau29857942009-05-10 09:01:21 +02001314 signal_init();
Willy Tarreau8ed669b2013-01-11 15:49:37 +01001315 if (init_acl() != 0)
1316 exit(1);
Willy Tarreauc6ca1a02007-05-13 19:43:47 +02001317 init_task();
Willy Tarreau87b09662015-04-03 00:22:06 +02001318 init_stream();
Willy Tarreaub1ec8c42015-04-03 13:53:24 +02001319 init_session();
Willy Tarreauf2943dc2012-10-26 20:10:28 +02001320 init_connection();
Willy Tarreau8280d642009-09-23 23:37:52 +02001321 /* warning, we init buffers later */
Willy Tarreaue4d7e552007-05-13 20:19:55 +02001322 init_pendconn();
Willy Tarreau80587432006-12-24 17:47:20 +01001323 init_proto_http();
Willy Tarreaubaaee002006-06-26 02:48:02 +02001324
Thierry FOURNIER6f1fd482015-01-23 14:06:13 +01001325 /* Initialise lua. */
1326 hlua_init();
Thierry FOURNIER6f1fd482015-01-23 14:06:13 +01001327
Christopher Fauletff2613e2016-11-09 11:36:17 +01001328 /* Initialize process vars */
1329 vars_init(&global.vars, SCOPE_PROC);
1330
Willy Tarreau43b78992009-01-25 15:42:27 +01001331 global.tune.options |= GTUNE_USE_SELECT; /* select() is always available */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001332#if defined(ENABLE_POLL)
Willy Tarreau43b78992009-01-25 15:42:27 +01001333 global.tune.options |= GTUNE_USE_POLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001334#endif
1335#if defined(ENABLE_EPOLL)
Willy Tarreau43b78992009-01-25 15:42:27 +01001336 global.tune.options |= GTUNE_USE_EPOLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001337#endif
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001338#if defined(ENABLE_KQUEUE)
Willy Tarreau43b78992009-01-25 15:42:27 +01001339 global.tune.options |= GTUNE_USE_KQUEUE;
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001340#endif
Willy Tarreaub55932d2009-08-16 13:20:32 +02001341#if defined(CONFIG_HAP_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +01001342 global.tune.options |= GTUNE_USE_SPLICE;
1343#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +02001344#if defined(USE_GETADDRINFO)
1345 global.tune.options |= GTUNE_USE_GAI;
1346#endif
Lukas Tribusa0bcbdc2016-09-12 21:42:20 +00001347#if defined(SO_REUSEPORT)
1348 global.tune.options |= GTUNE_USE_REUSEPORT;
1349#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +02001350
1351 pid = getpid();
1352 progname = *argv;
1353 while ((tmp = strchr(progname, '/')) != NULL)
1354 progname = tmp + 1;
1355
Kevinm48936af2010-12-22 16:08:21 +00001356 /* the process name is used for the logs only */
Dragan Dosen43885c72015-10-01 13:18:13 +02001357 chunk_initstr(&global.log_tag, strdup(progname));
Kevinm48936af2010-12-22 16:08:21 +00001358
Willy Tarreaubaaee002006-06-26 02:48:02 +02001359 argc--; argv++;
1360 while (argc > 0) {
1361 char *flag;
1362
1363 if (**argv == '-') {
1364 flag = *argv+1;
1365
1366 /* 1 arg */
1367 if (*flag == 'v') {
1368 display_version();
Willy Tarreau7b066db2007-12-02 11:28:59 +01001369 if (flag[1] == 'v') /* -vv */
1370 display_build_opts();
Willy Tarreaubaaee002006-06-26 02:48:02 +02001371 exit(0);
1372 }
1373#if defined(ENABLE_EPOLL)
1374 else if (*flag == 'd' && flag[1] == 'e')
Willy Tarreau43b78992009-01-25 15:42:27 +01001375 global.tune.options &= ~GTUNE_USE_EPOLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001376#endif
1377#if defined(ENABLE_POLL)
1378 else if (*flag == 'd' && flag[1] == 'p')
Willy Tarreau43b78992009-01-25 15:42:27 +01001379 global.tune.options &= ~GTUNE_USE_POLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001380#endif
Willy Tarreau69cad1a2007-04-10 22:45:11 +02001381#if defined(ENABLE_KQUEUE)
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001382 else if (*flag == 'd' && flag[1] == 'k')
Willy Tarreau43b78992009-01-25 15:42:27 +01001383 global.tune.options &= ~GTUNE_USE_KQUEUE;
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001384#endif
Willy Tarreaub55932d2009-08-16 13:20:32 +02001385#if defined(CONFIG_HAP_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +01001386 else if (*flag == 'd' && flag[1] == 'S')
1387 global.tune.options &= ~GTUNE_USE_SPLICE;
1388#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +02001389#if defined(USE_GETADDRINFO)
1390 else if (*flag == 'd' && flag[1] == 'G')
1391 global.tune.options &= ~GTUNE_USE_GAI;
1392#endif
Lukas Tribusa0bcbdc2016-09-12 21:42:20 +00001393#if defined(SO_REUSEPORT)
1394 else if (*flag == 'd' && flag[1] == 'R')
1395 global.tune.options &= ~GTUNE_USE_REUSEPORT;
1396#endif
Emeric Brun850efd52014-01-29 12:24:34 +01001397 else if (*flag == 'd' && flag[1] == 'V')
1398 global.ssl_server_verify = SSL_SERVER_VERIFY_NONE;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001399 else if (*flag == 'V')
1400 arg_mode |= MODE_VERBOSE;
1401 else if (*flag == 'd' && flag[1] == 'b')
1402 arg_mode |= MODE_FOREGROUND;
Willy Tarreau6e064432012-05-08 15:40:42 +02001403 else if (*flag == 'd' && flag[1] == 'M')
1404 mem_poison_byte = flag[2] ? strtol(flag + 2, NULL, 0) : 'P';
Willy Tarreau3eed10e2016-11-07 21:03:16 +01001405 else if (*flag == 'd' && flag[1] == 'r')
1406 global.tune.options |= GTUNE_RESOLVE_DONTFAIL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001407 else if (*flag == 'd')
1408 arg_mode |= MODE_DEBUG;
1409 else if (*flag == 'c')
1410 arg_mode |= MODE_CHECK;
William Lallemand095ba4c2017-06-01 17:38:50 +02001411 else if (*flag == 'D')
Willy Tarreau6bde87b2009-05-18 16:29:51 +02001412 arg_mode |= MODE_DAEMON;
Tim Duesterhusd6942c82017-11-20 15:58:35 +01001413 else if (*flag == 'W' && flag[1] == 's') {
Lukas Tribusf46bf952017-11-21 12:39:34 +01001414 arg_mode |= MODE_MWORKER | MODE_FOREGROUND;
Tim Duesterhusd6942c82017-11-20 15:58:35 +01001415#if defined(USE_SYSTEMD)
1416 global.tune.options |= GTUNE_USE_SYSTEMD;
1417#else
Christopher Faulet767a84b2017-11-24 16:50:31 +01001418 ha_alert("master-worker mode with systemd support (-Ws) requested, but not compiled. Use master-worker mode (-W) if you are not using Type=notify in your unit file or recompile with USE_SYSTEMD=1.\n\n");
Tim Duesterhusd6942c82017-11-20 15:58:35 +01001419 usage(progname);
1420#endif
1421 }
William Lallemand095ba4c2017-06-01 17:38:50 +02001422 else if (*flag == 'W')
1423 arg_mode |= MODE_MWORKER;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001424 else if (*flag == 'q')
1425 arg_mode |= MODE_QUIET;
Olivier Houchardf73629d2017-04-05 22:33:04 +02001426 else if (*flag == 'x') {
William Lallemand45eff442017-06-19 15:57:55 +02001427 if (argc <= 1 || argv[1][0] == '-') {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001428 ha_alert("Unix socket path expected with the -x flag\n\n");
William Lallemand45eff442017-06-19 15:57:55 +02001429 usage(progname);
Olivier Houchardf73629d2017-04-05 22:33:04 +02001430 }
William Lallemand4fc09692017-06-19 16:37:19 +02001431 if (old_unixsocket)
Christopher Faulet767a84b2017-11-24 16:50:31 +01001432 ha_warning("-x option already set, overwriting the value\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001433 old_unixsocket = argv[1];
William Lallemand4fc09692017-06-19 16:37:19 +02001434
Olivier Houchardf73629d2017-04-05 22:33:04 +02001435 argv++;
1436 argc--;
1437 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001438 else if (*flag == 's' && (flag[1] == 'f' || flag[1] == 't')) {
1439 /* list of pids to finish ('f') or terminate ('t') */
1440
1441 if (flag[1] == 'f')
1442 oldpids_sig = SIGUSR1; /* finish then exit */
1443 else
1444 oldpids_sig = SIGTERM; /* terminate immediately */
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001445 while (argc > 1 && argv[1][0] != '-') {
1446 oldpids = realloc(oldpids, (nb_oldpids + 1) * sizeof(int));
1447 if (!oldpids) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001448 ha_alert("Cannot allocate old pid : out of memory.\n");
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001449 exit(1);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001450 }
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001451 argc--; argv++;
1452 oldpids[nb_oldpids] = atol(*argv);
1453 if (oldpids[nb_oldpids] <= 0)
1454 usage(progname);
1455 nb_oldpids++;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001456 }
1457 }
Willy Tarreaua088d312015-10-08 11:58:48 +02001458 else if (flag[0] == '-' && flag[1] == 0) { /* "--" */
1459 /* now that's a cfgfile list */
1460 argv++; argc--;
1461 while (argc > 0) {
Maxime de Roucy0f503922016-05-13 23:52:55 +02001462 if (!list_append_word(&cfg_cfgfiles, *argv, &err_msg)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001463 ha_alert("Cannot load configuration file/directory %s : %s\n",
1464 *argv,
1465 err_msg);
Willy Tarreaua088d312015-10-08 11:58:48 +02001466 exit(1);
1467 }
Willy Tarreaua088d312015-10-08 11:58:48 +02001468 argv++; argc--;
1469 }
1470 break;
1471 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001472 else { /* >=2 args */
1473 argv++; argc--;
1474 if (argc == 0)
Willy Tarreau3bafcdc2011-09-10 19:20:23 +02001475 usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001476
1477 switch (*flag) {
Willy Tarreau576132e2011-09-10 19:26:56 +02001478 case 'C' : change_dir = *argv; break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001479 case 'n' : cfg_maxconn = atol(*argv); break;
Willy Tarreau70060452015-12-14 12:46:07 +01001480 case 'm' : global.rlimit_memmax_all = atol(*argv); break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001481 case 'N' : cfg_maxpconn = atol(*argv); break;
Emeric Brun2b920a12010-09-23 18:30:22 +02001482 case 'L' : strncpy(localpeer, *argv, sizeof(localpeer) - 1); break;
Willy Tarreau5d01a632009-06-22 16:02:30 +02001483 case 'f' :
Maxime de Roucy0f503922016-05-13 23:52:55 +02001484 if (!list_append_word(&cfg_cfgfiles, *argv, &err_msg)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001485 ha_alert("Cannot load configuration file/directory %s : %s\n",
1486 *argv,
1487 err_msg);
Willy Tarreau5d01a632009-06-22 16:02:30 +02001488 exit(1);
1489 }
Willy Tarreau5d01a632009-06-22 16:02:30 +02001490 break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001491 case 'p' : cfg_pidfile = *argv; break;
Willy Tarreau3bafcdc2011-09-10 19:20:23 +02001492 default: usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001493 }
1494 }
1495 }
1496 else
Willy Tarreau3bafcdc2011-09-10 19:20:23 +02001497 usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001498 argv++; argc--;
1499 }
1500
Christopher Faulete3a5e352017-10-24 13:53:54 +02001501 global.mode |= (arg_mode & (MODE_DAEMON | MODE_MWORKER | MODE_FOREGROUND | MODE_VERBOSE
1502 | MODE_QUIET | MODE_CHECK | MODE_DEBUG));
Willy Tarreaubaaee002006-06-26 02:48:02 +02001503
William Lallemandcb11fd22017-06-01 17:38:52 +02001504 /* Master workers wait mode */
1505 if ((global.mode & MODE_MWORKER) && (getenv("HAPROXY_MWORKER_WAIT_ONLY") != NULL)) {
1506
1507 unsetenv("HAPROXY_MWORKER_WAIT_ONLY");
1508 mworker_wait();
1509 }
1510
1511 if ((global.mode & MODE_MWORKER) && (getenv("HAPROXY_MWORKER_REEXEC") != NULL)) {
1512 atexit_flag = 1;
1513 atexit(reexec_on_failure);
1514 }
1515
Willy Tarreau576132e2011-09-10 19:26:56 +02001516 if (change_dir && chdir(change_dir) < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001517 ha_alert("Could not change to directory %s : %s\n", change_dir, strerror(errno));
Willy Tarreau576132e2011-09-10 19:26:56 +02001518 exit(1);
1519 }
1520
Maxime de Roucy379d9c72016-05-13 23:52:56 +02001521 /* handle cfgfiles that are actualy directories */
1522 cfgfiles_expand_directories();
1523
1524 if (LIST_ISEMPTY(&cfg_cfgfiles))
1525 usage(progname);
1526
Willy Tarreaubaaee002006-06-26 02:48:02 +02001527 global.maxsock = 10; /* reserve 10 fds ; will be incremented by socket eaters */
Willy Tarreau915e1eb2009-06-22 15:48:36 +02001528
1529 init_default_instance();
1530
Willy Tarreau477ecd82010-01-03 21:12:30 +01001531 list_for_each_entry(wl, &cfg_cfgfiles, list) {
Willy Tarreauc4382422009-12-06 13:10:44 +01001532 int ret;
1533
Willy Tarreau477ecd82010-01-03 21:12:30 +01001534 ret = readcfgfile(wl->s);
Willy Tarreauc4382422009-12-06 13:10:44 +01001535 if (ret == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001536 ha_alert("Could not open configuration file %s : %s\n",
1537 wl->s, strerror(errno));
Willy Tarreauc4382422009-12-06 13:10:44 +01001538 exit(1);
1539 }
Willy Tarreau25a67fa2009-12-15 21:46:25 +01001540 if (ret & (ERR_ABORT|ERR_FATAL))
Christopher Faulet767a84b2017-11-24 16:50:31 +01001541 ha_alert("Error(s) found in configuration file : %s\n", wl->s);
Willy Tarreau25a67fa2009-12-15 21:46:25 +01001542 err_code |= ret;
Willy Tarreau058e9072009-07-20 09:30:05 +02001543 if (err_code & ERR_ABORT)
Willy Tarreau5d01a632009-06-22 16:02:30 +02001544 exit(1);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001545 }
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001546
Willy Tarreaub83dc3d2017-04-19 11:24:07 +02001547 /* do not try to resolve arguments nor to spot inconsistencies when
1548 * the configuration contains fatal errors caused by files not found
1549 * or failed memory allocations.
1550 */
1551 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001552 ha_alert("Fatal errors found in configuration.\n");
Willy Tarreaub83dc3d2017-04-19 11:24:07 +02001553 exit(1);
1554 }
1555
Thierry FOURNIERaf5a29d2014-03-11 14:29:22 +01001556 pattern_finalize_config();
1557
Willy Tarreaubb925012009-07-23 13:36:36 +02001558 err_code |= check_config_validity();
1559 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001560 ha_alert("Fatal errors found in configuration.\n");
Willy Tarreau915e1eb2009-06-22 15:48:36 +02001561 exit(1);
1562 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001563
Willy Tarreau70060452015-12-14 12:46:07 +01001564 /* recompute the amount of per-process memory depending on nbproc and
1565 * the shared SSL cache size (allowed to exist in all processes).
1566 */
1567 if (global.rlimit_memmax_all) {
1568#if defined (USE_OPENSSL) && !defined(USE_PRIVATE_CACHE)
1569 int64_t ssl_cache_bytes = global.tune.sslcachesize * 200LL;
1570
1571 global.rlimit_memmax =
1572 ((((int64_t)global.rlimit_memmax_all * 1048576LL) -
1573 ssl_cache_bytes) / global.nbproc +
1574 ssl_cache_bytes + 1048575LL) / 1048576LL;
1575#else
1576 global.rlimit_memmax = global.rlimit_memmax_all / global.nbproc;
1577#endif
1578 }
1579
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +01001580#ifdef CONFIG_HAP_NS
1581 err_code |= netns_init();
1582 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001583 ha_alert("Failed to initialize namespace support.\n");
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +01001584 exit(1);
1585 }
1586#endif
1587
Baptiste Assmann4215d7d2016-11-02 15:33:15 +01001588 /* Apply server states */
1589 apply_server_state();
1590
Olivier Houchardfbc74e82017-11-24 16:54:05 +01001591 for (px = proxies_list; px; px = px->next)
Baptiste Assmann4215d7d2016-11-02 15:33:15 +01001592 srv_compute_all_admin_states(px);
1593
Baptiste Assmann83cbaa52016-11-02 15:34:05 +01001594 /* Apply servers' configured address */
1595 err_code |= srv_init_addr();
1596 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001597 ha_alert("Failed to initialize server(s) addr.\n");
Baptiste Assmann83cbaa52016-11-02 15:34:05 +01001598 exit(1);
1599 }
1600
Willy Tarreaubaaee002006-06-26 02:48:02 +02001601 if (global.mode & MODE_CHECK) {
Willy Tarreau8b15ba12012-02-02 17:48:18 +01001602 struct peers *pr;
1603 struct proxy *px;
1604
Frédéric Lécailleed2b4a62017-07-13 09:07:09 +02001605 for (pr = cfg_peers; pr; pr = pr->next)
Willy Tarreau8b15ba12012-02-02 17:48:18 +01001606 if (pr->peers_fe)
1607 break;
1608
Olivier Houchardfbc74e82017-11-24 16:54:05 +01001609 for (px = proxies_list; px; px = px->next)
Willy Tarreau4348fad2012-09-20 16:48:07 +02001610 if (px->state == PR_STNEW && !LIST_ISEMPTY(&px->conf.listeners))
Willy Tarreau8b15ba12012-02-02 17:48:18 +01001611 break;
1612
1613 if (pr || px) {
1614 /* At least one peer or one listener has been found */
1615 qfprintf(stdout, "Configuration file is valid\n");
1616 exit(0);
1617 }
1618 qfprintf(stdout, "Configuration file has no error but will not start (no listener) => exit(2).\n");
1619 exit(2);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001620 }
1621
Emeric Brunc60def82017-09-27 14:59:38 +02001622 global_listener_queue_task = task_new(MAX_THREADS_MASK);
Willy Tarreaue9b26022011-08-01 20:57:55 +02001623 if (!global_listener_queue_task) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001624 ha_alert("Out of memory when initializing global task\n");
Willy Tarreaue9b26022011-08-01 20:57:55 +02001625 exit(1);
1626 }
1627 /* very simple initialization, users will queue the task if needed */
1628 global_listener_queue_task->context = NULL; /* not even a context! */
1629 global_listener_queue_task->process = manage_global_listener_queue;
Willy Tarreaue9b26022011-08-01 20:57:55 +02001630
Willy Tarreau8263d2b2012-08-28 00:06:31 +02001631 /* now we know the buffer size, we can initialize the channels and buffers */
Willy Tarreau9b28e032012-10-12 23:49:43 +02001632 init_buffer();
Willy Tarreau8280d642009-09-23 23:37:52 +02001633
Willy Tarreaue6945732016-12-21 19:57:00 +01001634 list_for_each_entry(pcf, &post_check_list, list) {
1635 err_code |= pcf->fct();
1636 if (err_code & (ERR_ABORT|ERR_FATAL))
1637 exit(1);
1638 }
1639
Willy Tarreaubaaee002006-06-26 02:48:02 +02001640 if (cfg_maxconn > 0)
1641 global.maxconn = cfg_maxconn;
1642
1643 if (cfg_pidfile) {
Willy Tarreaua534fea2008-08-03 12:19:50 +02001644 free(global.pidfile);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001645 global.pidfile = strdup(cfg_pidfile);
1646 }
1647
Willy Tarreaud0256482015-01-15 21:45:22 +01001648 /* Now we want to compute the maxconn and possibly maxsslconn values.
1649 * It's a bit tricky. If memmax is not set, maxconn defaults to
1650 * DEFAULT_MAXCONN and maxsslconn defaults to DEFAULT_MAXSSLCONN.
1651 *
1652 * If memmax is set, then it depends on which values are set. If
1653 * maxsslconn is set, we use memmax to determine how many cleartext
1654 * connections may be added, and set maxconn to the sum of the two.
1655 * If maxconn is set and not maxsslconn, maxsslconn is computed from
1656 * the remaining amount of memory between memmax and the cleartext
1657 * connections. If neither are set, then it is considered that all
1658 * connections are SSL-capable, and maxconn is computed based on this,
1659 * then maxsslconn accordingly. We need to know if SSL is used on the
1660 * frontends, backends, or both, because when it's used on both sides,
1661 * we need twice the value for maxsslconn, but we only count the
1662 * handshake once since it is not performed on the two sides at the
1663 * same time (frontend-side is terminated before backend-side begins).
1664 * The SSL stack is supposed to have filled ssl_session_cost and
Willy Tarreau474b96a2015-01-28 19:03:21 +01001665 * ssl_handshake_cost during its initialization. In any case, if
1666 * SYSTEM_MAXCONN is set, we still enforce it as an upper limit for
1667 * maxconn in order to protect the system.
Willy Tarreaud0256482015-01-15 21:45:22 +01001668 */
1669 if (!global.rlimit_memmax) {
1670 if (global.maxconn == 0) {
1671 global.maxconn = DEFAULT_MAXCONN;
1672 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
1673 fprintf(stderr, "Note: setting global.maxconn to %d.\n", global.maxconn);
1674 }
1675 }
1676#ifdef USE_OPENSSL
1677 else if (!global.maxconn && !global.maxsslconn &&
1678 (global.ssl_used_frontend || global.ssl_used_backend)) {
1679 /* memmax is set, compute everything automatically. Here we want
1680 * to ensure that all SSL connections will be served. We take
1681 * care of the number of sides where SSL is used, and consider
1682 * the worst case : SSL used on both sides and doing a handshake
1683 * simultaneously. Note that we can't have more than maxconn
1684 * handshakes at a time by definition, so for the worst case of
1685 * two SSL conns per connection, we count a single handshake.
1686 */
1687 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
1688 int64_t mem = global.rlimit_memmax * 1048576ULL;
1689
1690 mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry
1691 mem -= global.maxzlibmem;
1692 mem = mem * MEM_USABLE_RATIO;
1693
1694 global.maxconn = mem /
Willy Tarreau87b09662015-04-03 00:22:06 +02001695 ((STREAM_MAX_COST + 2 * global.tune.bufsize) + // stream + 2 buffers per stream
Willy Tarreaud0256482015-01-15 21:45:22 +01001696 sides * global.ssl_session_max_cost + // SSL buffers, one per side
1697 global.ssl_handshake_max_cost); // 1 handshake per connection max
1698
1699 global.maxconn = round_2dig(global.maxconn);
Willy Tarreau474b96a2015-01-28 19:03:21 +01001700#ifdef SYSTEM_MAXCONN
1701 if (global.maxconn > DEFAULT_MAXCONN)
1702 global.maxconn = DEFAULT_MAXCONN;
1703#endif /* SYSTEM_MAXCONN */
Willy Tarreaud0256482015-01-15 21:45:22 +01001704 global.maxsslconn = sides * global.maxconn;
1705 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
1706 fprintf(stderr, "Note: setting global.maxconn to %d and global.maxsslconn to %d.\n",
1707 global.maxconn, global.maxsslconn);
1708 }
1709 else if (!global.maxsslconn &&
1710 (global.ssl_used_frontend || global.ssl_used_backend)) {
1711 /* memmax and maxconn are known, compute maxsslconn automatically.
1712 * maxsslconn being forced, we don't know how many of it will be
1713 * on each side if both sides are being used. The worst case is
1714 * when all connections use only one SSL instance because
1715 * handshakes may be on two sides at the same time.
1716 */
1717 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
1718 int64_t mem = global.rlimit_memmax * 1048576ULL;
1719 int64_t sslmem;
1720
1721 mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry
1722 mem -= global.maxzlibmem;
1723 mem = mem * MEM_USABLE_RATIO;
1724
Willy Tarreau87b09662015-04-03 00:22:06 +02001725 sslmem = mem - global.maxconn * (int64_t)(STREAM_MAX_COST + 2 * global.tune.bufsize);
Willy Tarreaud0256482015-01-15 21:45:22 +01001726 global.maxsslconn = sslmem / (global.ssl_session_max_cost + global.ssl_handshake_max_cost);
1727 global.maxsslconn = round_2dig(global.maxsslconn);
1728
1729 if (sslmem <= 0 || global.maxsslconn < sides) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001730 ha_alert("Cannot compute the automatic maxsslconn because global.maxconn is already too "
1731 "high for the global.memmax value (%d MB). The absolute maximum possible value "
1732 "without SSL is %d, but %d was found and SSL is in use.\n",
1733 global.rlimit_memmax,
1734 (int)(mem / (STREAM_MAX_COST + 2 * global.tune.bufsize)),
1735 global.maxconn);
Willy Tarreaud0256482015-01-15 21:45:22 +01001736 exit(1);
1737 }
1738
1739 if (global.maxsslconn > sides * global.maxconn)
1740 global.maxsslconn = sides * global.maxconn;
1741
1742 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
1743 fprintf(stderr, "Note: setting global.maxsslconn to %d\n", global.maxsslconn);
1744 }
1745#endif
1746 else if (!global.maxconn) {
1747 /* memmax and maxsslconn are known/unused, compute maxconn automatically */
1748 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
1749 int64_t mem = global.rlimit_memmax * 1048576ULL;
1750 int64_t clearmem;
1751
1752 if (global.ssl_used_frontend || global.ssl_used_backend)
1753 mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry
1754
1755 mem -= global.maxzlibmem;
1756 mem = mem * MEM_USABLE_RATIO;
1757
1758 clearmem = mem;
1759 if (sides)
1760 clearmem -= (global.ssl_session_max_cost + global.ssl_handshake_max_cost) * (int64_t)global.maxsslconn;
1761
Willy Tarreau87b09662015-04-03 00:22:06 +02001762 global.maxconn = clearmem / (STREAM_MAX_COST + 2 * global.tune.bufsize);
Willy Tarreaud0256482015-01-15 21:45:22 +01001763 global.maxconn = round_2dig(global.maxconn);
Willy Tarreau474b96a2015-01-28 19:03:21 +01001764#ifdef SYSTEM_MAXCONN
1765 if (global.maxconn > DEFAULT_MAXCONN)
1766 global.maxconn = DEFAULT_MAXCONN;
1767#endif /* SYSTEM_MAXCONN */
Willy Tarreaud0256482015-01-15 21:45:22 +01001768
1769 if (clearmem <= 0 || !global.maxconn) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001770 ha_alert("Cannot compute the automatic maxconn because global.maxsslconn is already too "
1771 "high for the global.memmax value (%d MB). The absolute maximum possible value "
1772 "is %d, but %d was found.\n",
1773 global.rlimit_memmax,
1774 (int)(mem / (global.ssl_session_max_cost + global.ssl_handshake_max_cost)),
1775 global.maxsslconn);
Willy Tarreaud0256482015-01-15 21:45:22 +01001776 exit(1);
1777 }
1778
1779 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
1780 if (sides && global.maxsslconn > sides * global.maxconn) {
1781 fprintf(stderr, "Note: global.maxsslconn is forced to %d which causes global.maxconn "
1782 "to be limited to %d. Better reduce global.maxsslconn to get more "
1783 "room for extra connections.\n", global.maxsslconn, global.maxconn);
1784 }
1785 fprintf(stderr, "Note: setting global.maxconn to %d\n", global.maxconn);
1786 }
1787 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001788
Willy Tarreau66aa61f2009-01-18 21:44:07 +01001789 if (!global.maxpipes) {
1790 /* maxpipes not specified. Count how many frontends and backends
1791 * may be using splicing, and bound that to maxconn.
1792 */
1793 struct proxy *cur;
1794 int nbfe = 0, nbbe = 0;
1795
Olivier Houchardfbc74e82017-11-24 16:54:05 +01001796 for (cur = proxies_list; cur; cur = cur->next) {
Willy Tarreau66aa61f2009-01-18 21:44:07 +01001797 if (cur->options2 & (PR_O2_SPLIC_ANY)) {
1798 if (cur->cap & PR_CAP_FE)
1799 nbfe += cur->maxconn;
1800 if (cur->cap & PR_CAP_BE)
Willy Tarreauafb48762009-01-25 10:42:05 +01001801 nbbe += cur->fullconn ? cur->fullconn : global.maxconn;
Willy Tarreau66aa61f2009-01-18 21:44:07 +01001802 }
1803 }
1804 global.maxpipes = MAX(nbfe, nbbe);
1805 if (global.maxpipes > global.maxconn)
1806 global.maxpipes = global.maxconn;
Willy Tarreau686ac822009-01-25 14:06:58 +01001807 global.maxpipes /= 4;
Willy Tarreau66aa61f2009-01-18 21:44:07 +01001808 }
1809
1810
Willy Tarreauabacc2c2011-09-07 14:26:33 +02001811 global.hardmaxconn = global.maxconn; /* keep this max value */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001812 global.maxsock += global.maxconn * 2; /* each connection needs two sockets */
Willy Tarreau3ec79b92009-01-18 20:39:42 +01001813 global.maxsock += global.maxpipes * 2; /* each pipe needs two FDs */
Emeric Brunece0c332017-12-06 13:51:49 +01001814 /* compute fd used by async engines */
1815 if (global.ssl_used_async_engines) {
1816 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
1817 global.maxsock += global.maxconn * sides * global.ssl_used_async_engines;
1818 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001819
Willy Tarreau3c63fd82011-09-07 18:00:47 +02001820 if (global.stats_fe)
1821 global.maxsock += global.stats_fe->maxconn;
1822
Frédéric Lécailleed2b4a62017-07-13 09:07:09 +02001823 if (cfg_peers) {
Willy Tarreau3c63fd82011-09-07 18:00:47 +02001824 /* peers also need to bypass global maxconn */
Frédéric Lécailleed2b4a62017-07-13 09:07:09 +02001825 struct peers *p = cfg_peers;
Willy Tarreau3c63fd82011-09-07 18:00:47 +02001826
Frédéric Lécailleed2b4a62017-07-13 09:07:09 +02001827 for (p = cfg_peers; p; p = p->next)
Willy Tarreau3c63fd82011-09-07 18:00:47 +02001828 if (p->peers_fe)
1829 global.maxsock += p->peers_fe->maxconn;
1830 }
1831
Willy Tarreau1db37712007-06-03 17:16:49 +02001832 if (global.tune.maxpollevents <= 0)
1833 global.tune.maxpollevents = MAX_POLL_EVENTS;
1834
Willy Tarreau6f4a82c2009-03-21 20:43:57 +01001835 if (global.tune.recv_enough == 0)
1836 global.tune.recv_enough = MIN_RECV_AT_ONCE_ENOUGH;
1837
Willy Tarreau27097842015-09-28 13:53:23 +02001838 if (global.tune.maxrewrite < 0)
1839 global.tune.maxrewrite = MAXREWRITE;
1840
Willy Tarreau27a674e2009-08-17 07:23:33 +02001841 if (global.tune.maxrewrite >= global.tune.bufsize / 2)
1842 global.tune.maxrewrite = global.tune.bufsize / 2;
1843
Willy Tarreaubaaee002006-06-26 02:48:02 +02001844 if (arg_mode & (MODE_DEBUG | MODE_FOREGROUND)) {
1845 /* command line debug mode inhibits configuration mode */
William Lallemand095ba4c2017-06-01 17:38:50 +02001846 global.mode &= ~(MODE_DAEMON | MODE_QUIET);
Willy Tarreau772f0dd2012-10-26 16:04:28 +02001847 global.mode |= (arg_mode & (MODE_DEBUG | MODE_FOREGROUND));
1848 }
1849
William Lallemand095ba4c2017-06-01 17:38:50 +02001850 if (arg_mode & MODE_DAEMON) {
Willy Tarreau772f0dd2012-10-26 16:04:28 +02001851 /* command line daemon mode inhibits foreground and debug modes mode */
1852 global.mode &= ~(MODE_DEBUG | MODE_FOREGROUND);
William Lallemand095ba4c2017-06-01 17:38:50 +02001853 global.mode |= arg_mode & MODE_DAEMON;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001854 }
Willy Tarreau772f0dd2012-10-26 16:04:28 +02001855
1856 global.mode |= (arg_mode & (MODE_QUIET | MODE_VERBOSE));
Willy Tarreaubaaee002006-06-26 02:48:02 +02001857
William Lallemand095ba4c2017-06-01 17:38:50 +02001858 if ((global.mode & MODE_DEBUG) && (global.mode & (MODE_DAEMON | MODE_QUIET))) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001859 ha_warning("<debug> mode incompatible with <quiet> and <daemon>. Keeping <debug> only.\n");
William Lallemand095ba4c2017-06-01 17:38:50 +02001860 global.mode &= ~(MODE_DAEMON | MODE_QUIET);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001861 }
1862
William Lallemand095ba4c2017-06-01 17:38:50 +02001863 if ((global.nbproc > 1) && !(global.mode & (MODE_DAEMON | MODE_MWORKER))) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02001864 if (!(global.mode & (MODE_FOREGROUND | MODE_DEBUG)))
Christopher Faulet767a84b2017-11-24 16:50:31 +01001865 ha_warning("<nbproc> is only meaningful in daemon mode or master-worker mode. Setting limit to 1 process.\n");
Willy Tarreaubaaee002006-06-26 02:48:02 +02001866 global.nbproc = 1;
1867 }
1868
1869 if (global.nbproc < 1)
1870 global.nbproc = 1;
1871
Christopher Fauletbe0faa22017-08-29 15:37:10 +02001872 if (global.nbthread < 1)
1873 global.nbthread = 1;
1874
Christopher Faulet3ef26392017-08-29 16:46:57 +02001875 /* Realloc trash buffers because global.tune.bufsize may have changed */
Christopher Fauletcd7879a2017-10-27 13:53:47 +02001876 if (!init_trash_buffers(0)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001877 ha_alert("failed to initialize trash buffers.\n");
Christopher Faulet3ef26392017-08-29 16:46:57 +02001878 exit(1);
1879 }
1880
Christopher Faulet96d44832017-11-14 22:02:30 +01001881 if (!init_log_buffers()) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001882 ha_alert("failed to initialize log buffers.\n");
Christopher Faulet96d44832017-11-14 22:02:30 +01001883 exit(1);
1884 }
1885
Willy Tarreauef1d1f82007-04-16 00:25:25 +02001886 /*
1887 * Note: we could register external pollers here.
1888 * Built-in pollers have been registered before main().
1889 */
Willy Tarreau4f60f162007-04-08 16:39:58 +02001890
Willy Tarreau43b78992009-01-25 15:42:27 +01001891 if (!(global.tune.options & GTUNE_USE_KQUEUE))
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001892 disable_poller("kqueue");
1893
Willy Tarreau43b78992009-01-25 15:42:27 +01001894 if (!(global.tune.options & GTUNE_USE_EPOLL))
Willy Tarreau4f60f162007-04-08 16:39:58 +02001895 disable_poller("epoll");
1896
Willy Tarreau43b78992009-01-25 15:42:27 +01001897 if (!(global.tune.options & GTUNE_USE_POLL))
Willy Tarreau4f60f162007-04-08 16:39:58 +02001898 disable_poller("poll");
1899
Willy Tarreau43b78992009-01-25 15:42:27 +01001900 if (!(global.tune.options & GTUNE_USE_SELECT))
Willy Tarreau4f60f162007-04-08 16:39:58 +02001901 disable_poller("select");
1902
1903 /* Note: we could disable any poller by name here */
1904
Christopher Fauletb3f4e142016-03-07 12:46:38 +01001905 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
Willy Tarreau2ff76222007-04-09 19:29:56 +02001906 list_pollers(stderr);
Christopher Fauletb3f4e142016-03-07 12:46:38 +01001907 fprintf(stderr, "\n");
1908 list_filters(stderr);
1909 }
Willy Tarreau2ff76222007-04-09 19:29:56 +02001910
Willy Tarreau4f60f162007-04-08 16:39:58 +02001911 if (!init_pollers()) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001912 ha_alert("No polling mechanism available.\n"
1913 " It is likely that haproxy was built with TARGET=generic and that FD_SETSIZE\n"
1914 " is too low on this platform to support maxconn and the number of listeners\n"
1915 " and servers. You should rebuild haproxy specifying your system using TARGET=\n"
1916 " in order to support other polling systems (poll, epoll, kqueue) or reduce the\n"
1917 " global maxconn setting to accommodate the system's limitation. For reference,\n"
1918 " FD_SETSIZE=%d on this system, global.maxconn=%d resulting in a maximum of\n"
1919 " %d file descriptors. You should thus reduce global.maxconn by %d. Also,\n"
1920 " check build settings using 'haproxy -vv'.\n\n",
1921 FD_SETSIZE, global.maxconn, global.maxsock, (global.maxsock + 1 - FD_SETSIZE) / 2);
Willy Tarreau4f60f162007-04-08 16:39:58 +02001922 exit(1);
1923 }
Willy Tarreau2ff76222007-04-09 19:29:56 +02001924 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
1925 printf("Using %s() as the polling mechanism.\n", cur_poller.name);
Willy Tarreau4f60f162007-04-08 16:39:58 +02001926 }
1927
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02001928 if (!global.node)
1929 global.node = strdup(hostname);
1930
Thierry FOURNIERa4a0f3d2015-01-23 12:08:30 +01001931 if (!hlua_post_init())
1932 exit(1);
Thomas Holmes6abded42015-05-12 16:23:58 +01001933
Maxime de Roucy0f503922016-05-13 23:52:55 +02001934 free(err_msg);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001935}
1936
Simon Horman6fb82592011-07-15 13:14:11 +09001937static void deinit_acl_cond(struct acl_cond *cond)
Simon Hormanac821422011-07-15 13:14:09 +09001938{
Simon Hormanac821422011-07-15 13:14:09 +09001939 struct acl_term_suite *suite, *suiteb;
1940 struct acl_term *term, *termb;
1941
Simon Horman6fb82592011-07-15 13:14:11 +09001942 if (!cond)
1943 return;
1944
1945 list_for_each_entry_safe(suite, suiteb, &cond->suites, list) {
1946 list_for_each_entry_safe(term, termb, &suite->terms, list) {
1947 LIST_DEL(&term->list);
1948 free(term);
Simon Hormanac821422011-07-15 13:14:09 +09001949 }
Simon Horman6fb82592011-07-15 13:14:11 +09001950 LIST_DEL(&suite->list);
1951 free(suite);
1952 }
1953
1954 free(cond);
1955}
1956
1957static void deinit_tcp_rules(struct list *rules)
1958{
Thierry FOURNIERa28a9422015-08-04 19:35:46 +02001959 struct act_rule *trule, *truleb;
Simon Horman6fb82592011-07-15 13:14:11 +09001960
1961 list_for_each_entry_safe(trule, truleb, rules, list) {
Simon Hormanac821422011-07-15 13:14:09 +09001962 LIST_DEL(&trule->list);
Simon Horman6fb82592011-07-15 13:14:11 +09001963 deinit_acl_cond(trule->cond);
Simon Hormanac821422011-07-15 13:14:09 +09001964 free(trule);
1965 }
1966}
1967
Simon Horman6fb82592011-07-15 13:14:11 +09001968static void deinit_stick_rules(struct list *rules)
1969{
1970 struct sticking_rule *rule, *ruleb;
1971
1972 list_for_each_entry_safe(rule, ruleb, rules, list) {
1973 LIST_DEL(&rule->list);
1974 deinit_acl_cond(rule->cond);
Christopher Faulet476e5d02016-10-26 11:34:47 +02001975 release_sample_expr(rule->expr);
Simon Horman6fb82592011-07-15 13:14:11 +09001976 free(rule);
1977 }
1978}
1979
Cyril Bonté203ec5a2017-03-23 22:44:13 +01001980void deinit(void)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001981{
Olivier Houchardfbc74e82017-11-24 16:54:05 +01001982 struct proxy *p = proxies_list, *p0;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001983 struct cap_hdr *h,*h_next;
1984 struct server *s,*s_next;
1985 struct listener *l,*l_next;
Willy Tarreau0fc45a72007-06-17 00:36:03 +02001986 struct acl_cond *cond, *condb;
1987 struct hdr_exp *exp, *expb;
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02001988 struct acl *acl, *aclb;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001989 struct switching_rule *rule, *ruleb;
Willy Tarreau4a5cade2012-04-05 21:09:48 +02001990 struct server_rule *srule, *sruleb;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02001991 struct redirect_rule *rdr, *rdrb;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01001992 struct wordlist *wl, *wlb;
Willy Tarreauf4f04122010-01-28 18:10:50 +01001993 struct cond_wordlist *cwl, *cwlb;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001994 struct uri_auth *uap, *ua = NULL;
William Lallemand0f99e342011-10-12 17:50:54 +02001995 struct logsrv *log, *logb;
William Lallemand723b73a2012-02-08 16:37:49 +01001996 struct logformat_node *lf, *lfb;
Willy Tarreau2a65ff02012-09-13 17:54:29 +02001997 struct bind_conf *bind_conf, *bind_back;
Willy Tarreaucdb737e2016-12-21 18:43:10 +01001998 struct build_opts_str *bol, *bolb;
Willy Tarreau05554e62016-12-21 20:46:26 +01001999 struct post_deinit_fct *pdf;
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002000 int i;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002001
Willy Tarreau24f4efa2010-08-27 17:56:48 +02002002 deinit_signals();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002003 while (p) {
Willy Tarreau8113a5d2012-10-04 08:01:43 +02002004 free(p->conf.file);
Willy Tarreaua534fea2008-08-03 12:19:50 +02002005 free(p->id);
2006 free(p->check_req);
2007 free(p->cookie_name);
2008 free(p->cookie_domain);
2009 free(p->url_param_name);
2010 free(p->capture_name);
2011 free(p->monitor_uri);
Simon Hormana31c7f72011-07-15 13:14:08 +09002012 free(p->rdp_cookie_name);
Willy Tarreau62a61232013-04-12 18:13:46 +02002013 if (p->conf.logformat_string != default_http_log_format &&
2014 p->conf.logformat_string != default_tcp_log_format &&
2015 p->conf.logformat_string != clf_http_log_format)
2016 free(p->conf.logformat_string);
Willy Tarreau196729e2012-05-31 19:30:26 +02002017
Willy Tarreau62a61232013-04-12 18:13:46 +02002018 free(p->conf.lfs_file);
2019 free(p->conf.uniqueid_format_string);
2020 free(p->conf.uif_file);
Godbachaf1a75d2013-10-02 17:10:11 +08002021 free(p->lbprm.map.srv);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002022
Dragan Dosen0b85ece2015-09-25 19:17:44 +02002023 if (p->conf.logformat_sd_string != default_rfc5424_sd_log_format)
2024 free(p->conf.logformat_sd_string);
2025 free(p->conf.lfsd_file);
2026
Willy Tarreaua534fea2008-08-03 12:19:50 +02002027 for (i = 0; i < HTTP_ERR_SIZE; i++)
Krzysztof Piotr Oledzki78abe612009-09-27 13:23:20 +02002028 chunk_destroy(&p->errmsg[i]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002029
Willy Tarreauf4f04122010-01-28 18:10:50 +01002030 list_for_each_entry_safe(cwl, cwlb, &p->req_add, list) {
2031 LIST_DEL(&cwl->list);
2032 free(cwl->s);
2033 free(cwl);
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01002034 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002035
Willy Tarreauf4f04122010-01-28 18:10:50 +01002036 list_for_each_entry_safe(cwl, cwlb, &p->rsp_add, list) {
2037 LIST_DEL(&cwl->list);
2038 free(cwl->s);
2039 free(cwl);
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01002040 }
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002041
Willy Tarreaub80c2302007-11-30 20:51:32 +01002042 list_for_each_entry_safe(cond, condb, &p->mon_fail_cond, list) {
2043 LIST_DEL(&cond->list);
2044 prune_acl_cond(cond);
2045 free(cond);
2046 }
2047
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002048 for (exp = p->req_exp; exp != NULL; ) {
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002049 if (exp->preg) {
Thierry FOURNIER09af0d62014-06-18 11:35:54 +02002050 regex_free(exp->preg);
2051 free(exp->preg);
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002052 }
2053
Willy Tarreau98d04852015-05-26 12:18:29 +02002054 free((char *)exp->replace);
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002055 expb = exp;
2056 exp = exp->next;
2057 free(expb);
2058 }
2059
2060 for (exp = p->rsp_exp; exp != NULL; ) {
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002061 if (exp->preg) {
Thierry FOURNIER09af0d62014-06-18 11:35:54 +02002062 regex_free(exp->preg);
2063 free(exp->preg);
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002064 }
2065
Willy Tarreau98d04852015-05-26 12:18:29 +02002066 free((char *)exp->replace);
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002067 expb = exp;
2068 exp = exp->next;
2069 free(expb);
2070 }
2071
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002072 /* build a list of unique uri_auths */
2073 if (!ua)
2074 ua = p->uri_auth;
2075 else {
2076 /* check if p->uri_auth is unique */
2077 for (uap = ua; uap; uap=uap->next)
2078 if (uap == p->uri_auth)
2079 break;
2080
Willy Tarreauaccc4e12008-06-24 11:14:45 +02002081 if (!uap && p->uri_auth) {
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002082 /* add it, if it is */
2083 p->uri_auth->next = ua;
2084 ua = p->uri_auth;
2085 }
2086 }
Willy Tarreau0fc45a72007-06-17 00:36:03 +02002087
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002088 list_for_each_entry_safe(acl, aclb, &p->acl, list) {
2089 LIST_DEL(&acl->list);
2090 prune_acl(acl);
2091 free(acl);
2092 }
2093
Willy Tarreau4a5cade2012-04-05 21:09:48 +02002094 list_for_each_entry_safe(srule, sruleb, &p->server_rules, list) {
2095 LIST_DEL(&srule->list);
2096 prune_acl_cond(srule->cond);
2097 free(srule->cond);
2098 free(srule);
2099 }
2100
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002101 list_for_each_entry_safe(rule, ruleb, &p->switching_rules, list) {
2102 LIST_DEL(&rule->list);
Willy Tarreauf51658d2014-04-23 01:21:56 +02002103 if (rule->cond) {
2104 prune_acl_cond(rule->cond);
2105 free(rule->cond);
Thierry FOURNIER / OZON.IO4ed1c952016-11-24 23:57:54 +01002106 free(rule->file);
Willy Tarreauf51658d2014-04-23 01:21:56 +02002107 }
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002108 free(rule);
2109 }
2110
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002111 list_for_each_entry_safe(rdr, rdrb, &p->redirect_rules, list) {
2112 LIST_DEL(&rdr->list);
Willy Tarreauf285f542010-01-03 20:03:03 +01002113 if (rdr->cond) {
2114 prune_acl_cond(rdr->cond);
2115 free(rdr->cond);
2116 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002117 free(rdr->rdr_str);
Thierry FOURNIERd18cd0f2013-11-29 12:15:45 +01002118 list_for_each_entry_safe(lf, lfb, &rdr->rdr_fmt, list) {
2119 LIST_DEL(&lf->list);
2120 free(lf);
2121 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002122 free(rdr);
2123 }
2124
William Lallemand0f99e342011-10-12 17:50:54 +02002125 list_for_each_entry_safe(log, logb, &p->logsrvs, list) {
2126 LIST_DEL(&log->list);
2127 free(log);
2128 }
2129
William Lallemand723b73a2012-02-08 16:37:49 +01002130 list_for_each_entry_safe(lf, lfb, &p->logformat, list) {
2131 LIST_DEL(&lf->list);
2132 free(lf);
2133 }
2134
Dragan Dosen0b85ece2015-09-25 19:17:44 +02002135 list_for_each_entry_safe(lf, lfb, &p->logformat_sd, list) {
2136 LIST_DEL(&lf->list);
2137 free(lf);
2138 }
2139
Simon Hormanac821422011-07-15 13:14:09 +09002140 deinit_tcp_rules(&p->tcp_req.inspect_rules);
2141 deinit_tcp_rules(&p->tcp_req.l4_rules);
2142
Simon Horman6fb82592011-07-15 13:14:11 +09002143 deinit_stick_rules(&p->storersp_rules);
2144 deinit_stick_rules(&p->sticking_rules);
2145
Willy Tarreaubaaee002006-06-26 02:48:02 +02002146 h = p->req_cap;
2147 while (h) {
2148 h_next = h->next;
Willy Tarreaua534fea2008-08-03 12:19:50 +02002149 free(h->name);
Willy Tarreaubafbe012017-11-24 17:34:44 +01002150 pool_destroy(h->pool);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002151 free(h);
2152 h = h_next;
2153 }/* end while(h) */
2154
2155 h = p->rsp_cap;
2156 while (h) {
2157 h_next = h->next;
Willy Tarreaua534fea2008-08-03 12:19:50 +02002158 free(h->name);
Willy Tarreaubafbe012017-11-24 17:34:44 +01002159 pool_destroy(h->pool);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002160 free(h);
2161 h = h_next;
2162 }/* end while(h) */
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002163
Willy Tarreaubaaee002006-06-26 02:48:02 +02002164 s = p->srv;
2165 while (s) {
2166 s_next = s->next;
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002167
Willy Tarreau5b3a2022012-09-28 15:01:02 +02002168 if (s->check.task) {
2169 task_delete(s->check.task);
2170 task_free(s->check.task);
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002171 }
Simon Hormand60d6912013-11-25 10:46:36 +09002172 if (s->agent.task) {
2173 task_delete(s->agent.task);
2174 task_free(s->agent.task);
2175 }
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002176
Willy Tarreau2e993902011-10-31 11:53:20 +01002177 if (s->warmup) {
2178 task_delete(s->warmup);
2179 task_free(s->warmup);
2180 }
2181
Willy Tarreaua534fea2008-08-03 12:19:50 +02002182 free(s->id);
2183 free(s->cookie);
Willy Tarreau1ae1b7b2012-09-28 15:28:30 +02002184 free(s->check.bi);
2185 free(s->check.bo);
Simon Hormand60d6912013-11-25 10:46:36 +09002186 free(s->agent.bi);
2187 free(s->agent.bo);
James Brown55f9ff12015-10-21 18:19:05 -07002188 free(s->agent.send_string);
Christopher Faulet67957bd2017-09-27 11:00:59 +02002189 free(s->hostname_dn);
Sárközi, László34c01792014-09-05 10:08:23 +02002190 free((char*)s->conf.file);
Willy Tarreau17d45382016-12-22 21:16:08 +01002191
2192 if (s->use_ssl || s->check.use_ssl) {
2193 if (xprt_get(XPRT_SSL) && xprt_get(XPRT_SSL)->destroy_srv)
2194 xprt_get(XPRT_SSL)->destroy_srv(s);
2195 }
Christopher Faulet2a944ee2017-11-07 10:42:54 +01002196 HA_SPIN_DESTROY(&s->lock);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002197 free(s);
2198 s = s_next;
2199 }/* end while(s) */
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002200
Willy Tarreau4348fad2012-09-20 16:48:07 +02002201 list_for_each_entry_safe(l, l_next, &p->conf.listeners, by_fe) {
Olivier Houchard1fc05162017-04-06 01:05:05 +02002202 /*
2203 * Zombie proxy, the listener just pretend to be up
2204 * because they still hold an opened fd.
2205 * Close it and give the listener its real state.
2206 */
2207 if (p->state == PR_STSTOPPED && l->state >= LI_ZOMBIE) {
2208 close(l->fd);
2209 l->state = LI_INIT;
2210 }
Willy Tarreauf6e2cc72010-09-03 10:38:17 +02002211 unbind_listener(l);
2212 delete_listener(l);
Willy Tarreau4348fad2012-09-20 16:48:07 +02002213 LIST_DEL(&l->by_fe);
2214 LIST_DEL(&l->by_bind);
Krzysztof Piotr Oledzkiaff01ea2010-02-05 20:31:44 +01002215 free(l->name);
2216 free(l->counters);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002217 free(l);
Willy Tarreau4348fad2012-09-20 16:48:07 +02002218 }
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002219
Willy Tarreau4348fad2012-09-20 16:48:07 +02002220 /* Release unused SSL configs. */
Willy Tarreau2a65ff02012-09-13 17:54:29 +02002221 list_for_each_entry_safe(bind_conf, bind_back, &p->conf.bind, by_fe) {
Willy Tarreau795cdab2016-12-22 17:30:54 +01002222 if (bind_conf->xprt->destroy_bind_conf)
2223 bind_conf->xprt->destroy_bind_conf(bind_conf);
Willy Tarreau2a65ff02012-09-13 17:54:29 +02002224 free(bind_conf->file);
2225 free(bind_conf->arg);
2226 LIST_DEL(&bind_conf->by_fe);
2227 free(bind_conf);
2228 }
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02002229
Christopher Fauletd7c91962015-04-30 11:48:27 +02002230 flt_deinit(p);
2231
Krzysztof Piotr Oledzkiaff01ea2010-02-05 20:31:44 +01002232 free(p->desc);
2233 free(p->fwdfor_hdr_name);
2234
Willy Tarreauff011f22011-01-06 17:51:27 +01002235 free_http_req_rules(&p->http_req_rules);
Sasha Pachev218f0642014-06-16 12:05:59 -06002236 free_http_res_rules(&p->http_res_rules);
Willy Tarreau1f89b182017-11-22 16:53:53 +01002237 task_free(p->task);
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002238
Willy Tarreaubafbe012017-11-24 17:34:44 +01002239 pool_destroy(p->req_cap_pool);
2240 pool_destroy(p->rsp_cap_pool);
2241 pool_destroy(p->table.pool);
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01002242
Willy Tarreau4d2d0982007-05-14 00:39:29 +02002243 p0 = p;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002244 p = p->next;
Christopher Faulet2a944ee2017-11-07 10:42:54 +01002245 HA_SPIN_DESTROY(&p0->lbprm.lock);
2246 HA_SPIN_DESTROY(&p0->lock);
Willy Tarreau4d2d0982007-05-14 00:39:29 +02002247 free(p0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002248 }/* end while(p) */
Willy Tarreaudd815982007-10-16 12:25:14 +02002249
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002250 while (ua) {
2251 uap = ua;
2252 ua = ua->next;
2253
Willy Tarreaua534fea2008-08-03 12:19:50 +02002254 free(uap->uri_prefix);
2255 free(uap->auth_realm);
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02002256 free(uap->node);
2257 free(uap->desc);
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002258
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01002259 userlist_free(uap->userlist);
Willy Tarreauff011f22011-01-06 17:51:27 +01002260 free_http_req_rules(&uap->http_req_rules);
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01002261
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002262 free(uap);
2263 }
2264
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01002265 userlist_free(userlist);
2266
David Carlier834cb2e2015-09-25 12:02:25 +01002267 cfg_unregister_sections();
2268
Christopher Faulet0132d062017-07-26 15:33:35 +02002269 deinit_log_buffers();
Christopher Faulet748919a2017-07-26 14:59:46 +02002270 deinit_trash_buffers();
David Carlier834cb2e2015-09-25 12:02:25 +01002271
Willy Tarreaudd815982007-10-16 12:25:14 +02002272 protocol_unbind_all();
2273
Willy Tarreau05554e62016-12-21 20:46:26 +01002274 list_for_each_entry(pdf, &post_deinit_list, list)
2275 pdf->fct();
2276
Joe Williamsdf5b38f2010-12-29 17:05:48 +01002277 free(global.log_send_hostname); global.log_send_hostname = NULL;
Dragan Dosen43885c72015-10-01 13:18:13 +02002278 chunk_destroy(&global.log_tag);
Willy Tarreaua534fea2008-08-03 12:19:50 +02002279 free(global.chroot); global.chroot = NULL;
2280 free(global.pidfile); global.pidfile = NULL;
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02002281 free(global.node); global.node = NULL;
2282 free(global.desc); global.desc = NULL;
Willy Tarreaua534fea2008-08-03 12:19:50 +02002283 free(oldpids); oldpids = NULL;
Willy Tarreau1f89b182017-11-22 16:53:53 +01002284 task_free(global_listener_queue_task); global_listener_queue_task = NULL;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002285
William Lallemand0f99e342011-10-12 17:50:54 +02002286 list_for_each_entry_safe(log, logb, &global.logsrvs, list) {
2287 LIST_DEL(&log->list);
2288 free(log);
2289 }
Willy Tarreau477ecd82010-01-03 21:12:30 +01002290 list_for_each_entry_safe(wl, wlb, &cfg_cfgfiles, list) {
Maxime de Roucy0f503922016-05-13 23:52:55 +02002291 free(wl->s);
Willy Tarreau477ecd82010-01-03 21:12:30 +01002292 LIST_DEL(&wl->list);
2293 free(wl);
2294 }
2295
Willy Tarreaucdb737e2016-12-21 18:43:10 +01002296 list_for_each_entry_safe(bol, bolb, &build_opts_list, list) {
2297 if (bol->must_free)
2298 free((void *)bol->str);
2299 LIST_DEL(&bol->list);
2300 free(bol);
2301 }
2302
Christopher Fauletff2613e2016-11-09 11:36:17 +01002303 vars_prune(&global.vars, NULL, NULL);
2304
Christopher Fauletad405f12017-08-29 15:30:11 +02002305 deinit_buffer();
2306
Willy Tarreaubafbe012017-11-24 17:34:44 +01002307 pool_destroy(pool_head_stream);
2308 pool_destroy(pool_head_session);
2309 pool_destroy(pool_head_connection);
2310 pool_destroy(pool_head_connstream);
2311 pool_destroy(pool_head_requri);
2312 pool_destroy(pool_head_task);
2313 pool_destroy(pool_head_capture);
2314 pool_destroy(pool_head_pendconn);
2315 pool_destroy(pool_head_sig_handlers);
2316 pool_destroy(pool_head_hdr_idx);
2317 pool_destroy(pool_head_http_txn);
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002318 deinit_pollers();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002319} /* end deinit() */
2320
Christopher Fauletd4604ad2017-05-29 10:40:41 +02002321void mworker_pipe_handler(int fd)
2322{
2323 char c;
2324
2325 while (read(fd, &c, 1) == -1) {
2326 if (errno == EINTR)
2327 continue;
2328 if (errno == EAGAIN) {
2329 fd_cant_recv(fd);
2330 return;
2331 }
2332 break;
2333 }
2334
2335 deinit();
2336 exit(EXIT_FAILURE);
2337 return;
2338}
2339
2340void mworker_pipe_register(int pipefd[2])
2341{
2342 close(mworker_pipe[1]); /* close the write end of the master pipe in the children */
Willy Tarreaubaaee002006-06-26 02:48:02 +02002343
Christopher Fauletd4604ad2017-05-29 10:40:41 +02002344 fcntl(mworker_pipe[0], F_SETFL, O_NONBLOCK);
2345 fdtab[mworker_pipe[0]].owner = mworker_pipe;
2346 fdtab[mworker_pipe[0]].iocb = mworker_pipe_handler;
Christopher Faulet36716a72017-05-30 11:07:16 +02002347 fd_insert(mworker_pipe[0], MAX_THREADS_MASK);
Christopher Fauletd4604ad2017-05-29 10:40:41 +02002348 fd_want_recv(mworker_pipe[0]);
2349}
Christopher Fauletdc628a32017-10-19 11:59:44 +02002350
2351static void sync_poll_loop()
2352{
2353 if (THREAD_NO_SYNC())
2354 return;
2355
2356 THREAD_ENTER_SYNC();
2357
2358 if (!THREAD_NEED_SYNC())
2359 goto exit;
2360
2361 /* *** { */
2362 /* Put here all sync functions */
2363
Christopher Faulet5d42e092017-10-16 12:00:40 +02002364 servers_update_status(); /* Commit server status changes */
Christopher Fauletdc628a32017-10-19 11:59:44 +02002365
2366 /* *** } */
2367 exit:
2368 THREAD_EXIT_SYNC();
2369}
2370
Willy Tarreau918ff602011-07-25 16:33:49 +02002371/* Runs the polling loop */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +01002372static void run_poll_loop()
Willy Tarreau4f60f162007-04-08 16:39:58 +02002373{
Willy Tarreau0c303ee2008-07-07 00:09:58 +02002374 int next;
Willy Tarreau4f60f162007-04-08 16:39:58 +02002375
Willy Tarreaub0b37bc2008-06-23 14:00:57 +02002376 tv_update_date(0,1);
Willy Tarreau4f60f162007-04-08 16:39:58 +02002377 while (1) {
Thierry FOURNIER9cf7c4b2014-12-15 13:26:01 +01002378 /* Process a few tasks */
2379 process_runnable_tasks();
2380
Willy Tarreau29857942009-05-10 09:01:21 +02002381 /* check if we caught some signals and process them */
2382 signal_process_queue();
2383
Willy Tarreau58b458d2008-06-29 22:40:23 +02002384 /* Check if we can expire some tasks */
Thierry FOURNIER9cf7c4b2014-12-15 13:26:01 +01002385 next = wake_expired_tasks();
Willy Tarreau4f60f162007-04-08 16:39:58 +02002386
Willy Tarreauaf7ad002010-08-31 15:39:26 +02002387 /* stop when there's nothing left to do */
2388 if (jobs == 0)
Willy Tarreau4f60f162007-04-08 16:39:58 +02002389 break;
2390
Willy Tarreau10146c92015-04-13 20:44:19 +02002391 /* expire immediately if events are pending */
Christopher Faulet71630562017-11-14 11:30:47 +01002392 if (fd_cache_num || (active_tasks_mask & tid_bit) || signal_queue_len || (active_applets_mask & tid_bit))
Willy Tarreau10146c92015-04-13 20:44:19 +02002393 next = now_ms;
2394
Willy Tarreau58b458d2008-06-29 22:40:23 +02002395 /* The poller will ensure it returns around <next> */
Willy Tarreau0c303ee2008-07-07 00:09:58 +02002396 cur_poller.poll(&cur_poller, next);
Willy Tarreau033cd9d2014-01-25 19:24:15 +01002397 fd_process_cached_events();
Willy Tarreau3c595ac2015-04-19 09:59:31 +02002398 applet_run_active();
Emeric Brun64cc49c2017-10-03 14:46:45 +02002399
Christopher Fauletdc628a32017-10-19 11:59:44 +02002400
2401 /* Synchronize all polling loops */
2402 sync_poll_loop();
2403
Willy Tarreau4f60f162007-04-08 16:39:58 +02002404 }
2405}
2406
Christopher Faulet1d17c102017-08-29 15:38:48 +02002407static void *run_thread_poll_loop(void *data)
2408{
2409 struct per_thread_init_fct *ptif;
2410 struct per_thread_deinit_fct *ptdf;
2411
2412 tid = *((unsigned int *)data);
2413 tid_bit = (1UL << tid);
2414 tv_update_date(-1,-1);
2415
2416 list_for_each_entry(ptif, &per_thread_init_list, list) {
2417 if (!ptif->fct()) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002418 ha_alert("failed to initialize thread %u.\n", tid);
Christopher Faulet1d17c102017-08-29 15:38:48 +02002419 exit(1);
2420 }
2421 }
2422
Christopher Fauletd4604ad2017-05-29 10:40:41 +02002423 if (global.mode & MODE_MWORKER)
2424 mworker_pipe_register(mworker_pipe);
2425
2426 protocol_enable_all();
Christopher Fauletdc628a32017-10-19 11:59:44 +02002427 THREAD_SYNC_ENABLE();
Christopher Faulet1d17c102017-08-29 15:38:48 +02002428 run_poll_loop();
2429
2430 list_for_each_entry(ptdf, &per_thread_deinit_list, list)
2431 ptdf->fct();
2432
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002433#ifdef USE_THREAD
2434 if (tid > 0)
2435 pthread_exit(NULL);
Christopher Faulet1d17c102017-08-29 15:38:48 +02002436#endif
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002437 return NULL;
2438}
Christopher Faulet1d17c102017-08-29 15:38:48 +02002439
Willy Tarreaue9b26022011-08-01 20:57:55 +02002440/* This is the global management task for listeners. It enables listeners waiting
2441 * for global resources when there are enough free resource, or at least once in
2442 * a while. It is designed to be called as a task.
2443 */
2444static struct task *manage_global_listener_queue(struct task *t)
2445{
2446 int next = TICK_ETERNITY;
Willy Tarreaue9b26022011-08-01 20:57:55 +02002447 /* queue is empty, nothing to do */
2448 if (LIST_ISEMPTY(&global_listener_queue))
2449 goto out;
2450
2451 /* If there are still too many concurrent connections, let's wait for
2452 * some of them to go away. We don't need to re-arm the timer because
2453 * each of them will scan the queue anyway.
2454 */
2455 if (unlikely(actconn >= global.maxconn))
2456 goto out;
2457
2458 /* We should periodically try to enable listeners waiting for a global
2459 * resource here, because it is possible, though very unlikely, that
2460 * they have been blocked by a temporary lack of global resource such
2461 * as a file descriptor or memory and that the temporary condition has
2462 * disappeared.
2463 */
Willy Tarreauabacc2c2011-09-07 14:26:33 +02002464 dequeue_all_listeners(&global_listener_queue);
Willy Tarreaue9b26022011-08-01 20:57:55 +02002465
2466 out:
2467 t->expire = next;
2468 task_queue(t);
2469 return t;
2470}
Willy Tarreau4f60f162007-04-08 16:39:58 +02002471
Willy Tarreaubaaee002006-06-26 02:48:02 +02002472int main(int argc, char **argv)
2473{
2474 int err, retry;
2475 struct rlimit limit;
Emeric Bruncf20bf12010-10-22 16:06:11 +02002476 char errmsg[100];
Willy Tarreau269ab312012-09-05 08:02:48 +02002477 int pidfd = -1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002478
Emeric Bruncf20bf12010-10-22 16:06:11 +02002479 init(argc, argv);
Willy Tarreau24f4efa2010-08-27 17:56:48 +02002480 signal_register_fct(SIGQUIT, dump, SIGQUIT);
2481 signal_register_fct(SIGUSR1, sig_soft_stop, SIGUSR1);
2482 signal_register_fct(SIGHUP, sig_dump_state, SIGHUP);
William Lallemand73b85e72017-06-01 17:38:51 +02002483 signal_register_fct(SIGUSR2, NULL, 0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002484
Willy Tarreaue437c442010-03-17 18:02:46 +01002485 /* Always catch SIGPIPE even on platforms which define MSG_NOSIGNAL.
2486 * Some recent FreeBSD setups report broken pipes, and MSG_NOSIGNAL
2487 * was defined there, so let's stay on the safe side.
Willy Tarreaubaaee002006-06-26 02:48:02 +02002488 */
Willy Tarreau24f4efa2010-08-27 17:56:48 +02002489 signal_register_fct(SIGPIPE, NULL, 0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002490
Willy Tarreaudc23a922011-02-16 11:10:36 +01002491 /* ulimits */
2492 if (!global.rlimit_nofile)
2493 global.rlimit_nofile = global.maxsock;
2494
2495 if (global.rlimit_nofile) {
2496 limit.rlim_cur = limit.rlim_max = global.rlimit_nofile;
2497 if (setrlimit(RLIMIT_NOFILE, &limit) == -1) {
Willy Tarreauef635472016-06-21 11:48:18 +02002498 /* try to set it to the max possible at least */
2499 getrlimit(RLIMIT_NOFILE, &limit);
Willy Tarreau164dd0b2016-06-21 11:51:59 +02002500 limit.rlim_cur = limit.rlim_max;
2501 if (setrlimit(RLIMIT_NOFILE, &limit) != -1)
2502 getrlimit(RLIMIT_NOFILE, &limit);
2503
Christopher Faulet767a84b2017-11-24 16:50:31 +01002504 ha_warning("[%s.main()] Cannot raise FD limit to %d, limit is %d.\n", argv[0], global.rlimit_nofile, (int)limit.rlim_cur);
Willy Tarreauef635472016-06-21 11:48:18 +02002505 global.rlimit_nofile = limit.rlim_cur;
Willy Tarreaudc23a922011-02-16 11:10:36 +01002506 }
2507 }
2508
2509 if (global.rlimit_memmax) {
2510 limit.rlim_cur = limit.rlim_max =
Willy Tarreau70060452015-12-14 12:46:07 +01002511 global.rlimit_memmax * 1048576ULL;
Willy Tarreaudc23a922011-02-16 11:10:36 +01002512#ifdef RLIMIT_AS
2513 if (setrlimit(RLIMIT_AS, &limit) == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002514 ha_warning("[%s.main()] Cannot fix MEM limit to %d megs.\n",
2515 argv[0], global.rlimit_memmax);
Willy Tarreaudc23a922011-02-16 11:10:36 +01002516 }
2517#else
2518 if (setrlimit(RLIMIT_DATA, &limit) == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002519 ha_warning("[%s.main()] Cannot fix MEM limit to %d megs.\n",
2520 argv[0], global.rlimit_memmax);
Willy Tarreaudc23a922011-02-16 11:10:36 +01002521 }
2522#endif
2523 }
2524
Olivier Houchardf73629d2017-04-05 22:33:04 +02002525 if (old_unixsocket) {
William Lallemand85b0bd92017-06-01 17:38:53 +02002526 if (strcmp("/dev/null", old_unixsocket) != 0) {
2527 if (get_old_sockets(old_unixsocket) != 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002528 ha_alert("Failed to get the sockets from the old process!\n");
William Lallemand85b0bd92017-06-01 17:38:53 +02002529 if (!(global.mode & MODE_MWORKER))
2530 exit(1);
2531 }
Olivier Houchardf73629d2017-04-05 22:33:04 +02002532 }
2533 }
William Lallemand85b0bd92017-06-01 17:38:53 +02002534 get_cur_unixsocket();
2535
Willy Tarreaubaaee002006-06-26 02:48:02 +02002536 /* We will loop at most 100 times with 10 ms delay each time.
2537 * That's at most 1 second. We only send a signal to old pids
2538 * if we cannot grab at least one port.
2539 */
2540 retry = MAX_START_RETRIES;
2541 err = ERR_NONE;
2542 while (retry >= 0) {
2543 struct timeval w;
2544 err = start_proxies(retry == 0 || nb_oldpids == 0);
Willy Tarreaue13e9252007-12-20 23:05:50 +01002545 /* exit the loop on no error or fatal error */
2546 if ((err & (ERR_RETRYABLE|ERR_FATAL)) != ERR_RETRYABLE)
Willy Tarreaubaaee002006-06-26 02:48:02 +02002547 break;
Willy Tarreaubb545b42010-08-25 12:58:59 +02002548 if (nb_oldpids == 0 || retry == 0)
Willy Tarreaubaaee002006-06-26 02:48:02 +02002549 break;
2550
2551 /* FIXME-20060514: Solaris and OpenBSD do not support shutdown() on
2552 * listening sockets. So on those platforms, it would be wiser to
2553 * simply send SIGUSR1, which will not be undoable.
2554 */
Willy Tarreaubb545b42010-08-25 12:58:59 +02002555 if (tell_old_pids(SIGTTOU) == 0) {
2556 /* no need to wait if we can't contact old pids */
2557 retry = 0;
2558 continue;
2559 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002560 /* give some time to old processes to stop listening */
2561 w.tv_sec = 0;
2562 w.tv_usec = 10*1000;
2563 select(0, NULL, NULL, NULL, &w);
2564 retry--;
2565 }
2566
2567 /* Note: start_proxies() sends an alert when it fails. */
Willy Tarreau0a3b9d92009-02-04 17:05:23 +01002568 if ((err & ~ERR_WARN) != ERR_NONE) {
Willy Tarreauf68da462009-06-09 14:36:00 +02002569 if (retry != MAX_START_RETRIES && nb_oldpids) {
2570 protocol_unbind_all(); /* cleanup everything we can */
Willy Tarreaubaaee002006-06-26 02:48:02 +02002571 tell_old_pids(SIGTTIN);
Willy Tarreauf68da462009-06-09 14:36:00 +02002572 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002573 exit(1);
2574 }
2575
2576 if (listeners == 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002577 ha_alert("[%s.main()] No enabled listener found (check for 'bind' directives) ! Exiting.\n", argv[0]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002578 /* Note: we don't have to send anything to the old pids because we
2579 * never stopped them. */
2580 exit(1);
2581 }
2582
Emeric Bruncf20bf12010-10-22 16:06:11 +02002583 err = protocol_bind_all(errmsg, sizeof(errmsg));
2584 if ((err & ~ERR_WARN) != ERR_NONE) {
2585 if ((err & ERR_ALERT) || (err & ERR_WARN))
Christopher Faulet767a84b2017-11-24 16:50:31 +01002586 ha_alert("[%s.main()] %s.\n", argv[0], errmsg);
Emeric Bruncf20bf12010-10-22 16:06:11 +02002587
Christopher Faulet767a84b2017-11-24 16:50:31 +01002588 ha_alert("[%s.main()] Some protocols failed to start their listeners! Exiting.\n", argv[0]);
Willy Tarreaudd815982007-10-16 12:25:14 +02002589 protocol_unbind_all(); /* cleanup everything we can */
2590 if (nb_oldpids)
2591 tell_old_pids(SIGTTIN);
2592 exit(1);
Emeric Bruncf20bf12010-10-22 16:06:11 +02002593 } else if (err & ERR_WARN) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002594 ha_alert("[%s.main()] %s.\n", argv[0], errmsg);
Willy Tarreaudd815982007-10-16 12:25:14 +02002595 }
Olivier Houchardf73629d2017-04-05 22:33:04 +02002596 /* Ok, all listener should now be bound, close any leftover sockets
2597 * the previous process gave us, we don't need them anymore
2598 */
2599 while (xfer_sock_list != NULL) {
2600 struct xfer_sock_list *tmpxfer = xfer_sock_list->next;
2601 close(xfer_sock_list->fd);
2602 free(xfer_sock_list->iface);
2603 free(xfer_sock_list->namespace);
2604 free(xfer_sock_list);
2605 xfer_sock_list = tmpxfer;
2606 }
Willy Tarreaudd815982007-10-16 12:25:14 +02002607
Willy Tarreaubaaee002006-06-26 02:48:02 +02002608 /* prepare pause/play signals */
Willy Tarreau24f4efa2010-08-27 17:56:48 +02002609 signal_register_fct(SIGTTOU, sig_pause, SIGTTOU);
2610 signal_register_fct(SIGTTIN, sig_listen, SIGTTIN);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002611
Willy Tarreaubaaee002006-06-26 02:48:02 +02002612 /* MODE_QUIET can inhibit alerts and warnings below this line */
2613
PiBa-NL149a81a2017-12-25 21:03:31 +01002614 if (getenv("HAPROXY_MWORKER_REEXEC") != NULL) {
2615 /* either stdin/out/err are already closed or should stay as they are. */
2616 if ((global.mode & MODE_DAEMON)) {
2617 /* daemon mode re-executing, stdin/stdout/stderr are already closed so keep quiet */
2618 global.mode &= ~MODE_VERBOSE;
2619 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
2620 }
2621 } else {
2622 if ((global.mode & MODE_QUIET) && !(global.mode & MODE_VERBOSE)) {
2623 /* detach from the tty */
William Lallemande1340412017-12-28 16:09:36 +01002624 stdio_quiet(-1);
PiBa-NL149a81a2017-12-25 21:03:31 +01002625 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002626 }
2627
2628 /* open log & pid files before the chroot */
William Lallemand80293002017-11-06 11:00:03 +01002629 if ((global.mode & MODE_DAEMON || global.mode & MODE_MWORKER) && global.pidfile != NULL) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02002630 unlink(global.pidfile);
2631 pidfd = open(global.pidfile, O_CREAT | O_WRONLY | O_TRUNC, 0644);
2632 if (pidfd < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002633 ha_alert("[%s.main()] Cannot create pidfile %s\n", argv[0], global.pidfile);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002634 if (nb_oldpids)
2635 tell_old_pids(SIGTTIN);
Willy Tarreaudd815982007-10-16 12:25:14 +02002636 protocol_unbind_all();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002637 exit(1);
2638 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002639 }
2640
Willy Tarreaub38651a2007-03-24 17:24:39 +01002641 if ((global.last_checks & LSTCHK_NETADM) && global.uid) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002642 ha_alert("[%s.main()] Some configuration options require full privileges, so global.uid cannot be changed.\n"
2643 "", argv[0]);
Willy Tarreaudd815982007-10-16 12:25:14 +02002644 protocol_unbind_all();
Willy Tarreaub38651a2007-03-24 17:24:39 +01002645 exit(1);
2646 }
2647
Willy Tarreau4e30ed72009-02-04 18:02:48 +01002648 /* If the user is not root, we'll still let him try the configuration
2649 * but we inform him that unexpected behaviour may occur.
2650 */
2651 if ((global.last_checks & LSTCHK_NETADM) && getuid())
Christopher Faulet767a84b2017-11-24 16:50:31 +01002652 ha_warning("[%s.main()] Some options which require full privileges"
2653 " might not work well.\n"
2654 "", argv[0]);
Willy Tarreau4e30ed72009-02-04 18:02:48 +01002655
William Lallemand095ba4c2017-06-01 17:38:50 +02002656 if ((global.mode & (MODE_MWORKER|MODE_DAEMON)) == 0) {
2657
2658 /* chroot if needed */
2659 if (global.chroot != NULL) {
2660 if (chroot(global.chroot) == -1 || chdir("/") == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002661 ha_alert("[%s.main()] Cannot chroot(%s).\n", argv[0], global.chroot);
William Lallemand095ba4c2017-06-01 17:38:50 +02002662 if (nb_oldpids)
2663 tell_old_pids(SIGTTIN);
2664 protocol_unbind_all();
2665 exit(1);
2666 }
Willy Tarreauf223cc02007-10-15 18:57:08 +02002667 }
Willy Tarreauf223cc02007-10-15 18:57:08 +02002668 }
2669
Willy Tarreaubaaee002006-06-26 02:48:02 +02002670 if (nb_oldpids)
Willy Tarreaubb545b42010-08-25 12:58:59 +02002671 nb_oldpids = tell_old_pids(oldpids_sig);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002672
William Lallemand8a361b52017-06-20 11:20:33 +02002673 if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL)) {
2674 nb_oldpids = 0;
2675 free(oldpids);
2676 oldpids = NULL;
2677 }
2678
2679
Willy Tarreaubaaee002006-06-26 02:48:02 +02002680 /* Note that any error at this stage will be fatal because we will not
2681 * be able to restart the old pids.
2682 */
2683
William Lallemand095ba4c2017-06-01 17:38:50 +02002684 if ((global.mode & (MODE_MWORKER|MODE_DAEMON)) == 0) {
2685 /* setgid / setuid */
2686 if (global.gid) {
2687 if (getgroups(0, NULL) > 0 && setgroups(0, NULL) == -1)
Christopher Faulet767a84b2017-11-24 16:50:31 +01002688 ha_warning("[%s.main()] Failed to drop supplementary groups. Using 'gid'/'group'"
2689 " without 'uid'/'user' is generally useless.\n", argv[0]);
William Lallemand095ba4c2017-06-01 17:38:50 +02002690
2691 if (setgid(global.gid) == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002692 ha_alert("[%s.main()] Cannot set gid %d.\n", argv[0], global.gid);
William Lallemand095ba4c2017-06-01 17:38:50 +02002693 protocol_unbind_all();
2694 exit(1);
2695 }
2696 }
Michael Schererab012dd2013-01-12 18:35:19 +01002697
William Lallemand095ba4c2017-06-01 17:38:50 +02002698 if (global.uid && setuid(global.uid) == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002699 ha_alert("[%s.main()] Cannot set uid %d.\n", argv[0], global.uid);
Michael Schererab012dd2013-01-12 18:35:19 +01002700 protocol_unbind_all();
2701 exit(1);
2702 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002703 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002704 /* check ulimits */
2705 limit.rlim_cur = limit.rlim_max = 0;
2706 getrlimit(RLIMIT_NOFILE, &limit);
2707 if (limit.rlim_cur < global.maxsock) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002708 ha_warning("[%s.main()] FD limit (%d) too low for maxconn=%d/maxsock=%d. Please raise 'ulimit-n' to %d or more to avoid any trouble.\n",
2709 argv[0], (int)limit.rlim_cur, global.maxconn, global.maxsock, global.maxsock);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002710 }
2711
William Lallemand095ba4c2017-06-01 17:38:50 +02002712 if (global.mode & (MODE_DAEMON | MODE_MWORKER)) {
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01002713 struct proxy *px;
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02002714 struct peers *curpeers;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002715 int ret = 0;
2716 int proc;
William Lallemande1340412017-12-28 16:09:36 +01002717 int devnullfd = -1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002718
William Lallemand73b85e72017-06-01 17:38:51 +02002719 children = calloc(global.nbproc, sizeof(int));
William Lallemand095ba4c2017-06-01 17:38:50 +02002720 /*
2721 * if daemon + mworker: must fork here to let a master
2722 * process live in background before forking children
2723 */
William Lallemand73b85e72017-06-01 17:38:51 +02002724
2725 if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL)
2726 && (global.mode & MODE_MWORKER)
2727 && (global.mode & MODE_DAEMON)) {
William Lallemand095ba4c2017-06-01 17:38:50 +02002728 ret = fork();
2729 if (ret < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002730 ha_alert("[%s.main()] Cannot fork.\n", argv[0]);
William Lallemand095ba4c2017-06-01 17:38:50 +02002731 protocol_unbind_all();
2732 exit(1); /* there has been an error */
2733 }
2734 /* parent leave to daemonize */
2735 if (ret > 0)
2736 exit(0);
2737 }
William Lallemande20b6a62017-06-01 17:38:55 +02002738
2739 if (global.mode & MODE_MWORKER) {
2740 if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL)) {
2741 char *msg = NULL;
2742 /* master pipe to ensure the master is still alive */
2743 ret = pipe(mworker_pipe);
2744 if (ret < 0) {
PiBa-NL4763ffd2017-11-28 23:22:14 +01002745 ha_alert("[%s.main()] Cannot create master pipe.\n", argv[0]);
2746 exit(EXIT_FAILURE);
William Lallemande20b6a62017-06-01 17:38:55 +02002747 } else {
2748 memprintf(&msg, "%d", mworker_pipe[0]);
2749 setenv("HAPROXY_MWORKER_PIPE_RD", msg, 1);
2750 memprintf(&msg, "%d", mworker_pipe[1]);
2751 setenv("HAPROXY_MWORKER_PIPE_WR", msg, 1);
2752 free(msg);
2753 }
2754 } else {
PiBa-NL4763ffd2017-11-28 23:22:14 +01002755 char* rd = getenv("HAPROXY_MWORKER_PIPE_RD");
2756 char* wr = getenv("HAPROXY_MWORKER_PIPE_WR");
2757 if (!rd || !wr) {
2758 ha_alert("[%s.main()] Cannot get master pipe FDs.\n", argv[0]);
2759 atexit_flag = 0;// dont reexecute master process
2760 exit(EXIT_FAILURE);
William Lallemande20b6a62017-06-01 17:38:55 +02002761 }
PiBa-NL4763ffd2017-11-28 23:22:14 +01002762 mworker_pipe[0] = atoi(rd);
2763 mworker_pipe[1] = atoi(wr);
William Lallemande20b6a62017-06-01 17:38:55 +02002764 }
2765 }
2766
William Lallemanddeed7802017-11-06 11:00:04 +01002767 /* if in master-worker mode, write the PID of the father */
2768 if (global.mode & MODE_MWORKER) {
2769 char pidstr[100];
2770 snprintf(pidstr, sizeof(pidstr), "%d\n", getpid());
2771 shut_your_big_mouth_gcc(write(pidfd, pidstr, strlen(pidstr)));
2772 }
2773
Willy Tarreaubaaee002006-06-26 02:48:02 +02002774 /* the father launches the required number of processes */
2775 for (proc = 0; proc < global.nbproc; proc++) {
2776 ret = fork();
2777 if (ret < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002778 ha_alert("[%s.main()] Cannot fork.\n", argv[0]);
Willy Tarreaudd815982007-10-16 12:25:14 +02002779 protocol_unbind_all();
Willy Tarreaud6803712007-10-16 07:44:56 +02002780 exit(1); /* there has been an error */
Willy Tarreaubaaee002006-06-26 02:48:02 +02002781 }
2782 else if (ret == 0) /* child breaks here */
2783 break;
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +01002784 children[proc] = ret;
William Lallemand92159b22017-11-06 11:16:12 +01002785 if (pidfd >= 0 && !(global.mode & MODE_MWORKER)) {
Willy Tarreau269ab312012-09-05 08:02:48 +02002786 char pidstr[100];
2787 snprintf(pidstr, sizeof(pidstr), "%d\n", ret);
Willy Tarreau89efaed2013-12-13 15:14:55 +01002788 shut_your_big_mouth_gcc(write(pidfd, pidstr, strlen(pidstr)));
Willy Tarreaubaaee002006-06-26 02:48:02 +02002789 }
Willy Tarreaudcd47712007-11-04 23:35:08 +01002790 relative_pid++; /* each child will get a different one */
Willy Tarreau387bd4f2017-11-10 19:08:14 +01002791 pid_bit <<= 1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002792 }
Willy Tarreaufc6c0322012-11-16 16:12:27 +01002793
2794#ifdef USE_CPU_AFFINITY
2795 if (proc < global.nbproc && /* child */
Willy Tarreaue7597492015-04-20 11:36:57 +02002796 proc < LONGBITS && /* only the first 32/64 processes may be pinned */
Christopher Fauletcb6a9452017-11-22 16:50:41 +01002797 global.cpu_map.proc[proc]) /* only do this if the process has a CPU map */
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +02002798#ifdef __FreeBSD__
Olivier Houchard97148f62017-08-16 17:29:11 +02002799 {
2800 cpuset_t cpuset;
2801 int i;
Christopher Fauletcb6a9452017-11-22 16:50:41 +01002802 unsigned long cpu_map = global.cpu_map.proc[proc];
Olivier Houchard97148f62017-08-16 17:29:11 +02002803
2804 CPU_ZERO(&cpuset);
2805 while ((i = ffsl(cpu_map)) > 0) {
2806 CPU_SET(i - 1, &cpuset);
2807 cpu_map &= ~(1 << (i - 1));
2808 }
2809 ret = cpuset_setaffinity(CPU_LEVEL_WHICH, CPU_WHICH_PID, -1, sizeof(cpuset), &cpuset);
2810 }
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +02002811#else
Christopher Fauletcb6a9452017-11-22 16:50:41 +01002812 sched_setaffinity(0, sizeof(unsigned long), (void *)&global.cpu_map.proc[proc]);
Willy Tarreaufc6c0322012-11-16 16:12:27 +01002813#endif
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +02002814#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +02002815 /* close the pidfile both in children and father */
Willy Tarreau269ab312012-09-05 08:02:48 +02002816 if (pidfd >= 0) {
2817 //lseek(pidfd, 0, SEEK_SET); /* debug: emulate eglibc bug */
2818 close(pidfd);
2819 }
Willy Tarreaud137dd32010-08-25 12:49:05 +02002820
2821 /* We won't ever use this anymore */
Willy Tarreaud137dd32010-08-25 12:49:05 +02002822 free(global.pidfile); global.pidfile = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002823
Willy Tarreauedaff0a2015-05-01 17:01:08 +02002824 if (proc == global.nbproc) {
William Lallemand095ba4c2017-06-01 17:38:50 +02002825 if (global.mode & MODE_MWORKER) {
William Lallemand75ea0a02017-11-15 19:02:58 +01002826 mworker_cleanlisteners();
2827 deinit_pollers();
PiBa-NLbaf6ea42017-11-28 23:26:08 +01002828
2829 if ((!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE)) &&
2830 (global.mode & MODE_DAEMON)) {
2831 /* detach from the tty, this is required to properly daemonize. */
William Lallemande1340412017-12-28 16:09:36 +01002832 if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL))
2833 stdio_quiet(-1);
2834
PiBa-NLbaf6ea42017-11-28 23:26:08 +01002835 global.mode &= ~MODE_VERBOSE;
2836 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
2837 setsid();
2838 }
2839
William Lallemand73b85e72017-06-01 17:38:51 +02002840 mworker_wait();
William Lallemand1499b9b2017-06-07 15:04:47 +02002841 /* should never get there */
2842 exit(EXIT_FAILURE);
Willy Tarreauedaff0a2015-05-01 17:01:08 +02002843 }
William Lallemandcf4e4962017-06-08 19:05:48 +02002844#if defined(USE_OPENSSL) && !defined(OPENSSL_NO_DH)
Grant Zhang872f9c22017-01-21 01:10:18 +00002845 ssl_free_dh();
2846#endif
William Lallemand1499b9b2017-06-07 15:04:47 +02002847 exit(0); /* parent must leave */
Willy Tarreauedaff0a2015-05-01 17:01:08 +02002848 }
2849
William Lallemandcb11fd22017-06-01 17:38:52 +02002850 /* child must never use the atexit function */
2851 atexit_flag = 0;
2852
William Lallemande1340412017-12-28 16:09:36 +01002853 if (!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE)) {
2854 devnullfd = open("/dev/null", O_RDWR, 0);
2855 if (devnullfd < 0) {
2856 ha_alert("Cannot open /dev/null\n");
2857 exit(EXIT_FAILURE);
2858 }
2859 }
2860
William Lallemand095ba4c2017-06-01 17:38:50 +02002861 /* Must chroot and setgid/setuid in the children */
2862 /* chroot if needed */
2863 if (global.chroot != NULL) {
2864 if (chroot(global.chroot) == -1 || chdir("/") == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002865 ha_alert("[%s.main()] Cannot chroot1(%s).\n", argv[0], global.chroot);
William Lallemand095ba4c2017-06-01 17:38:50 +02002866 if (nb_oldpids)
2867 tell_old_pids(SIGTTIN);
2868 protocol_unbind_all();
2869 exit(1);
2870 }
2871 }
2872
2873 free(global.chroot);
2874 global.chroot = NULL;
2875
2876 /* setgid / setuid */
2877 if (global.gid) {
2878 if (getgroups(0, NULL) > 0 && setgroups(0, NULL) == -1)
Christopher Faulet767a84b2017-11-24 16:50:31 +01002879 ha_warning("[%s.main()] Failed to drop supplementary groups. Using 'gid'/'group'"
2880 " without 'uid'/'user' is generally useless.\n", argv[0]);
William Lallemand095ba4c2017-06-01 17:38:50 +02002881
2882 if (setgid(global.gid) == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002883 ha_alert("[%s.main()] Cannot set gid %d.\n", argv[0], global.gid);
William Lallemand095ba4c2017-06-01 17:38:50 +02002884 protocol_unbind_all();
2885 exit(1);
2886 }
2887 }
2888
2889 if (global.uid && setuid(global.uid) == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002890 ha_alert("[%s.main()] Cannot set uid %d.\n", argv[0], global.uid);
William Lallemand095ba4c2017-06-01 17:38:50 +02002891 protocol_unbind_all();
2892 exit(1);
2893 }
2894
William Lallemand7f80eb22017-05-26 18:19:55 +02002895 /* pass through every cli socket, and check if it's bound to
2896 * the current process and if it exposes listeners sockets.
2897 * Caution: the GTUNE_SOCKET_TRANSFER is now set after the fork.
2898 * */
2899
2900 if (global.stats_fe) {
2901 struct bind_conf *bind_conf;
2902
2903 list_for_each_entry(bind_conf, &global.stats_fe->conf.bind, by_fe) {
2904 if (bind_conf->level & ACCESS_FD_LISTENERS) {
2905 if (!bind_conf->bind_proc || bind_conf->bind_proc & (1UL << proc)) {
2906 global.tune.options |= GTUNE_SOCKET_TRANSFER;
2907 break;
2908 }
2909 }
2910 }
2911 }
2912
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01002913 /* we might have to unbind some proxies from some processes */
Olivier Houchardfbc74e82017-11-24 16:54:05 +01002914 px = proxies_list;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01002915 while (px != NULL) {
2916 if (px->bind_proc && px->state != PR_STSTOPPED) {
Olivier Houchard1fc05162017-04-06 01:05:05 +02002917 if (!(px->bind_proc & (1UL << proc))) {
2918 if (global.tune.options & GTUNE_SOCKET_TRANSFER)
2919 zombify_proxy(px);
2920 else
2921 stop_proxy(px);
2922 }
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01002923 }
2924 px = px->next;
2925 }
2926
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02002927 /* we might have to unbind some peers sections from some processes */
Frédéric Lécailleed2b4a62017-07-13 09:07:09 +02002928 for (curpeers = cfg_peers; curpeers; curpeers = curpeers->next) {
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02002929 if (!curpeers->peers_fe)
2930 continue;
2931
2932 if (curpeers->peers_fe->bind_proc & (1UL << proc))
2933 continue;
2934
2935 stop_proxy(curpeers->peers_fe);
2936 /* disable this peer section so that it kills itself */
Willy Tarreau47c8c022015-09-28 16:39:25 +02002937 signal_unregister_handler(curpeers->sighandler);
2938 task_delete(curpeers->sync_task);
2939 task_free(curpeers->sync_task);
2940 curpeers->sync_task = NULL;
2941 task_free(curpeers->peers_fe->task);
2942 curpeers->peers_fe->task = NULL;
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02002943 curpeers->peers_fe = NULL;
2944 }
2945
Willy Tarreaubaaee002006-06-26 02:48:02 +02002946 /* if we're NOT in QUIET mode, we should now close the 3 first FDs to ensure
2947 * that we can detach from the TTY. We MUST NOT do it in other cases since
2948 * it would have already be done, and 0-2 would have been affected to listening
2949 * sockets
2950 */
Willy Tarreau106cb762008-11-16 07:40:34 +01002951 if (!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE)) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02002952 /* detach from the tty */
William Lallemande1340412017-12-28 16:09:36 +01002953 stdio_quiet(devnullfd);
Willy Tarreau106cb762008-11-16 07:40:34 +01002954 global.mode &= ~MODE_VERBOSE;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002955 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
2956 }
2957 pid = getpid(); /* update child's pid */
2958 setsid();
Willy Tarreau2ff76222007-04-09 19:29:56 +02002959 fork_poller();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002960 }
2961
Christopher Faulete3a5e352017-10-24 13:53:54 +02002962 global.mode &= ~MODE_STARTING;
Willy Tarreau4f60f162007-04-08 16:39:58 +02002963 /*
2964 * That's it : the central polling loop. Run until we stop.
2965 */
Christopher Faulet1d17c102017-08-29 15:38:48 +02002966#ifdef USE_THREAD
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002967 {
Christopher Faulet1d17c102017-08-29 15:38:48 +02002968 unsigned int *tids = calloc(global.nbthread, sizeof(unsigned int));
2969 pthread_t *threads = calloc(global.nbthread, sizeof(pthread_t));
2970 int i;
2971
Christopher Fauletd7bddda2017-10-31 17:30:12 +01002972 THREAD_SYNC_INIT((1UL << global.nbthread) - 1);
2973
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002974 /* Init tids array */
2975 for (i = 0; i < global.nbthread; i++)
Christopher Faulet1d17c102017-08-29 15:38:48 +02002976 tids[i] = i;
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002977
2978 /* Create nbthread-1 thread. The first thread is the current process */
2979 threads[0] = pthread_self();
2980 for (i = 1; i < global.nbthread; i++)
Christopher Faulet1d17c102017-08-29 15:38:48 +02002981 pthread_create(&threads[i], NULL, &run_thread_poll_loop, &tids[i]);
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002982
Christopher Faulet62519022017-10-16 15:49:32 +02002983#ifdef USE_CPU_AFFINITY
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002984 /* Now the CPU affinity for all threads */
2985 for (i = 0; i < global.nbthread; i++) {
Christopher Fauletcb6a9452017-11-22 16:50:41 +01002986 if (global.cpu_map.proc[relative_pid-1])
2987 global.cpu_map.thread[relative_pid-1][i] &= global.cpu_map.proc[relative_pid-1];
Christopher Faulet62519022017-10-16 15:49:32 +02002988
Willy Tarreau421f02e2018-01-20 18:19:22 +01002989 if (i < MAX_THREADS && /* only the first 32/64 threads may be pinned */
Olivier Houchard829aa242017-12-01 18:19:43 +01002990 global.cpu_map.thread[relative_pid-1][i]) {/* only do this if the thread has a THREAD map */
2991#if defined(__FreeBSD__) || defined(__NetBSD__)
2992 cpuset_t cpuset;
2993#else
2994 cpu_set_t cpuset;
2995#endif
2996 int j;
2997 unsigned long cpu_map = global.cpu_map.thread[relative_pid-1][i];
2998
2999 CPU_ZERO(&cpuset);
3000
3001 while ((j = ffsl(cpu_map)) > 0) {
3002 CPU_SET(j - 1, &cpuset);
3003 cpu_map &= ~(1 << (j - 1));
3004 }
Christopher Faulet62519022017-10-16 15:49:32 +02003005 pthread_setaffinity_np(threads[i],
Olivier Houchard829aa242017-12-01 18:19:43 +01003006 sizeof(cpuset), &cpuset);
3007 }
Christopher Faulet1d17c102017-08-29 15:38:48 +02003008 }
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003009#endif /* !USE_CPU_AFFINITY */
3010
3011 /* Finally, start the poll loop for the first thread */
3012 run_thread_poll_loop(&tids[0]);
3013
3014 /* Wait the end of other threads */
3015 for (i = 1; i < global.nbthread; i++)
Christopher Faulet1d17c102017-08-29 15:38:48 +02003016 pthread_join(threads[i], NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003017
Christopher Faulet1d17c102017-08-29 15:38:48 +02003018 free(tids);
3019 free(threads);
3020
Christopher Fauletb79a94c2017-05-30 15:34:30 +02003021#if defined(DEBUG_THREAD) || defined(DEBUG_FULL)
3022 show_lock_stats();
3023#endif
Christopher Faulet1d17c102017-08-29 15:38:48 +02003024 }
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003025#else /* ! USE_THREAD */
Christopher Fauletd4604ad2017-05-29 10:40:41 +02003026
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003027 run_thread_poll_loop((int []){0});
Christopher Faulet62519022017-10-16 15:49:32 +02003028
Christopher Faulet62519022017-10-16 15:49:32 +02003029#endif
Christopher Faulet1d17c102017-08-29 15:38:48 +02003030
3031 /* Do some cleanup */
Willy Tarreaubaaee002006-06-26 02:48:02 +02003032 deinit();
Christopher Faulet1d17c102017-08-29 15:38:48 +02003033
Willy Tarreaubaaee002006-06-26 02:48:02 +02003034 exit(0);
3035}
3036
3037
3038/*
3039 * Local variables:
3040 * c-indent-level: 8
3041 * c-basic-offset: 8
3042 * End:
3043 */