blob: c5ffa0fb954caf9cc216eba607b283af63a188df [file] [log] [blame]
Willy Tarreaubaaee002006-06-26 02:48:02 +02001/*
2 * HA-Proxy : High Availability-enabled HTTP/TCP proxy
Willy Tarreau1a34d572014-02-03 00:41:29 +01003 * Copyright 2000-2014 Willy Tarreau <w@1wt.eu>.
Willy Tarreaubaaee002006-06-26 02:48:02 +02004 *
5 * This program is free software; you can redistribute it and/or
6 * modify it under the terms of the GNU General Public License
7 * as published by the Free Software Foundation; either version
8 * 2 of the License, or (at your option) any later version.
9 *
10 * Please refer to RFC2068 or RFC2616 for informations about HTTP protocol, and
11 * RFC2965 for informations about cookies usage. More generally, the IETF HTTP
12 * Working Group's web site should be consulted for protocol related changes :
13 *
14 * http://ftp.ics.uci.edu/pub/ietf/http/
15 *
16 * Pending bugs (may be not fixed because never reproduced) :
17 * - solaris only : sometimes, an HTTP proxy with only a dispatch address causes
18 * the proxy to terminate (no core) if the client breaks the connection during
19 * the response. Seen on 1.1.8pre4, but never reproduced. May not be related to
20 * the snprintf() bug since requests were simple (GET / HTTP/1.0), but may be
21 * related to missing setsid() (fixed in 1.1.15)
22 * - a proxy with an invalid config will prevent the startup even if disabled.
23 *
24 * ChangeLog has moved to the CHANGELOG file.
25 *
Willy Tarreaubaaee002006-06-26 02:48:02 +020026 */
27
28#include <stdio.h>
29#include <stdlib.h>
30#include <unistd.h>
31#include <string.h>
32#include <ctype.h>
33#include <sys/time.h>
34#include <sys/types.h>
35#include <sys/socket.h>
36#include <netinet/tcp.h>
37#include <netinet/in.h>
38#include <arpa/inet.h>
39#include <netdb.h>
40#include <fcntl.h>
41#include <errno.h>
42#include <signal.h>
43#include <stdarg.h>
44#include <sys/resource.h>
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +010045#include <sys/wait.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020046#include <time.h>
47#include <syslog.h>
Michael Schererab012dd2013-01-12 18:35:19 +010048#include <grp.h>
Willy Tarreaufc6c0322012-11-16 16:12:27 +010049#ifdef USE_CPU_AFFINITY
50#define __USE_GNU
51#include <sched.h>
52#undef __USE_GNU
53#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +020054
55#ifdef DEBUG_FULL
56#include <assert.h>
57#endif
58
Willy Tarreau2dd0d472006-06-29 17:53:05 +020059#include <common/appsession.h>
60#include <common/base64.h>
61#include <common/cfgparse.h>
Willy Tarreauc7e42382012-08-24 19:22:53 +020062#include <common/chunk.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020063#include <common/compat.h>
64#include <common/config.h>
65#include <common/defaults.h>
Willy Tarreaud740bab2007-10-28 11:14:07 +010066#include <common/errors.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020067#include <common/memory.h>
68#include <common/mini-clist.h>
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +010069#include <common/namespace.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020070#include <common/regex.h>
71#include <common/standard.h>
72#include <common/time.h>
73#include <common/uri_auth.h>
74#include <common/version.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020075
76#include <types/capture.h>
77#include <types/global.h>
Simon Hormanac821422011-07-15 13:14:09 +090078#include <types/proto_tcp.h>
79#include <types/acl.h>
Willy Tarreau3c63fd82011-09-07 18:00:47 +020080#include <types/peers.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020081
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +010082#include <proto/auth.h>
Willy Tarreau0fc45a72007-06-17 00:36:03 +020083#include <proto/acl.h>
Willy Tarreau2e845be2012-10-19 19:49:09 +020084#include <proto/arg.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020085#include <proto/backend.h>
Willy Tarreauc7e42382012-08-24 19:22:53 +020086#include <proto/channel.h>
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +020087#include <proto/checks.h>
Willy Tarreauf2943dc2012-10-26 20:10:28 +020088#include <proto/connection.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020089#include <proto/fd.h>
Willy Tarreau34eb6712011-10-24 18:15:04 +020090#include <proto/hdr_idx.h>
Willy Tarreaud1d54542012-09-12 22:58:11 +020091#include <proto/listener.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020092#include <proto/log.h>
Thierry FOURNIERaf5a29d2014-03-11 14:29:22 +010093#include <proto/pattern.h>
Willy Tarreaud1d54542012-09-12 22:58:11 +020094#include <proto/protocol.h>
Willy Tarreau80587432006-12-24 17:47:20 +010095#include <proto/proto_http.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020096#include <proto/proxy.h>
97#include <proto/queue.h>
98#include <proto/server.h>
Willy Tarreauc6ca1a02007-05-13 19:43:47 +020099#include <proto/session.h>
Willy Tarreau29857942009-05-10 09:01:21 +0200100#include <proto/signal.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200101#include <proto/task.h>
102
Willy Tarreaub38651a2007-03-24 17:24:39 +0100103#ifdef CONFIG_HAP_CTTPROXY
104#include <proto/cttproxy.h>
105#endif
106
Emeric Brunfc0421f2012-09-07 17:30:07 +0200107#ifdef USE_OPENSSL
108#include <proto/ssl_sock.h>
109#endif
110
Willy Tarreaubaaee002006-06-26 02:48:02 +0200111/*********************************************************************/
112
Cyril Bonté6162c432012-11-10 19:27:47 +0100113extern const struct comp_algo comp_algos[];
114
Willy Tarreaubaaee002006-06-26 02:48:02 +0200115/*********************************************************************/
116
Willy Tarreau477ecd82010-01-03 21:12:30 +0100117/* list of config files */
118static struct list cfg_cfgfiles = LIST_HEAD_INIT(cfg_cfgfiles);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200119int pid; /* current process id */
Willy Tarreau28156642007-11-26 16:13:36 +0100120int relative_pid = 1; /* process id starting at 1 */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200121
122/* global options */
123struct global global = {
Willy Tarreau247a13a2012-11-15 17:38:15 +0100124 .nbproc = 1,
William Lallemand5f232402012-04-05 18:02:55 +0200125 .req_count = 0,
William Lallemand0f99e342011-10-12 17:50:54 +0200126 .logsrvs = LIST_HEAD_INIT(global.logsrvs),
Willy Tarreau96aa6b32012-11-12 15:52:53 +0100127#ifdef DEFAULT_MAXZLIBMEM
Willy Tarreau5a940372012-12-03 12:10:45 +0100128 .maxzlibmem = DEFAULT_MAXZLIBMEM * 1024U * 1024U,
Willy Tarreau96aa6b32012-11-12 15:52:53 +0100129#else
William Lallemand9d5f5482012-11-07 16:12:57 +0100130 .maxzlibmem = 0,
Willy Tarreau96aa6b32012-11-12 15:52:53 +0100131#endif
William Lallemandd85f9172012-11-09 17:05:39 +0100132 .comp_rate_lim = 0,
Emeric Brun850efd52014-01-29 12:24:34 +0100133 .ssl_server_verify = SSL_SERVER_VERIFY_REQUIRED,
Emeric Bruned760922010-10-22 17:59:25 +0200134 .unix_bind = {
135 .ux = {
136 .uid = -1,
137 .gid = -1,
138 .mode = 0,
139 }
140 },
Willy Tarreau27a674e2009-08-17 07:23:33 +0200141 .tune = {
142 .bufsize = BUFSIZE,
143 .maxrewrite = MAXREWRITE,
Willy Tarreau43961d52010-10-04 20:39:20 +0200144 .chksize = BUFSIZE,
Willy Tarreaua24adf02014-11-27 01:11:56 +0100145 .reserved_bufs = RESERVED_BUFS,
Emeric Brunfc32aca2012-09-03 12:10:29 +0200146#ifdef USE_OPENSSL
Emeric Brun46635772012-11-14 11:32:56 +0100147 .sslcachesize = SSLCACHESIZE,
Remi Gacognef46cd6e2014-06-12 14:58:40 +0200148 .ssl_default_dh_param = SSL_DEFAULT_DH_PARAM,
Willy Tarreau03effc12014-02-12 14:55:41 +0100149#ifdef DEFAULT_SSL_MAX_RECORD
150 .ssl_max_record = DEFAULT_SSL_MAX_RECORD,
151#endif
Emeric Brunfc32aca2012-09-03 12:10:29 +0200152#endif
William Lallemanda509e4c2012-11-07 16:54:34 +0100153#ifdef USE_ZLIB
154 .zlibmemlevel = 8,
155 .zlibwindowsize = MAX_WBITS,
156#endif
William Lallemandf3747832012-11-09 12:33:10 +0100157 .comp_maxlevel = 1,
Willy Tarreau7e312732014-02-12 16:35:14 +0100158#ifdef DEFAULT_IDLE_TIMER
159 .idle_timer = DEFAULT_IDLE_TIMER,
160#else
161 .idle_timer = 1000, /* 1 second */
162#endif
Willy Tarreau27a674e2009-08-17 07:23:33 +0200163 },
Emeric Brun76d88952012-10-05 15:47:31 +0200164#ifdef USE_OPENSSL
165#ifdef DEFAULT_MAXSSLCONN
Willy Tarreau403edff2012-09-06 11:58:37 +0200166 .maxsslconn = DEFAULT_MAXSSLCONN,
167#endif
Emeric Brun76d88952012-10-05 15:47:31 +0200168#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200169 /* others NULL OK */
170};
171
172/*********************************************************************/
173
174int stopping; /* non zero means stopping in progress */
Willy Tarreauaf7ad002010-08-31 15:39:26 +0200175int jobs = 0; /* number of active jobs (conns, listeners, active tasks, ...) */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200176
177/* Here we store informations about the pids of the processes we may pause
178 * or kill. We will send them a signal every 10 ms until we can bind to all
179 * our ports. With 200 retries, that's about 2 seconds.
180 */
181#define MAX_START_RETRIES 200
Willy Tarreaubaaee002006-06-26 02:48:02 +0200182static int *oldpids = NULL;
183static int oldpids_sig; /* use USR1 or TERM */
184
185/* this is used to drain data, and as a temporary buffer for sprintf()... */
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100186struct chunk trash = { };
Willy Tarreaubaaee002006-06-26 02:48:02 +0200187
Willy Tarreau8096de92010-02-26 11:12:27 +0100188/* this buffer is always the same size as standard buffers and is used for
189 * swapping data inside a buffer.
190 */
191char *swap_buffer = NULL;
192
Willy Tarreaubb545b42010-08-25 12:58:59 +0200193int nb_oldpids = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200194const int zero = 0;
195const int one = 1;
Alexandre Cassen87ea5482007-10-11 20:48:58 +0200196const struct linger nolinger = { .l_onoff = 1, .l_linger = 0 };
Willy Tarreaubaaee002006-06-26 02:48:02 +0200197
Willy Tarreau1d21e0a2010-03-12 21:58:54 +0100198char hostname[MAX_HOSTNAME_LEN];
Emeric Brun2b920a12010-09-23 18:30:22 +0200199char localpeer[MAX_HOSTNAME_LEN];
Willy Tarreaubaaee002006-06-26 02:48:02 +0200200
Willy Tarreau89efaed2013-12-13 15:14:55 +0100201/* used from everywhere just to drain results we don't want to read and which
202 * recent versions of gcc increasingly and annoyingly complain about.
203 */
204int shut_your_big_mouth_gcc_int = 0;
205
Willy Tarreau08ceb102011-07-24 22:58:00 +0200206/* list of the temporarily limited listeners because of lack of resource */
207struct list global_listener_queue = LIST_HEAD_INIT(global_listener_queue);
Willy Tarreaue9b26022011-08-01 20:57:55 +0200208struct task *global_listener_queue_task;
209static struct task *manage_global_listener_queue(struct task *t);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200210
Willy Tarreauff055502014-04-28 22:27:06 +0200211/* bitfield of a few warnings to emit just once (WARN_*) */
212unsigned int warned = 0;
213
Willy Tarreaubaaee002006-06-26 02:48:02 +0200214/*********************************************************************/
215/* general purpose functions ***************************************/
216/*********************************************************************/
217
218void display_version()
219{
220 printf("HA-Proxy version " HAPROXY_VERSION " " HAPROXY_DATE"\n");
Willy Tarreau1a34d572014-02-03 00:41:29 +0100221 printf("Copyright 2000-2014 Willy Tarreau <w@1wt.eu>\n\n");
Willy Tarreaubaaee002006-06-26 02:48:02 +0200222}
223
Willy Tarreau7b066db2007-12-02 11:28:59 +0100224void display_build_opts()
225{
226 printf("Build options :"
227#ifdef BUILD_TARGET
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100228 "\n TARGET = " BUILD_TARGET
Willy Tarreau7b066db2007-12-02 11:28:59 +0100229#endif
230#ifdef BUILD_CPU
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100231 "\n CPU = " BUILD_CPU
Willy Tarreau7b066db2007-12-02 11:28:59 +0100232#endif
233#ifdef BUILD_CC
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100234 "\n CC = " BUILD_CC
235#endif
236#ifdef BUILD_CFLAGS
237 "\n CFLAGS = " BUILD_CFLAGS
Willy Tarreau7b066db2007-12-02 11:28:59 +0100238#endif
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100239#ifdef BUILD_OPTIONS
240 "\n OPTIONS = " BUILD_OPTIONS
Willy Tarreau7b066db2007-12-02 11:28:59 +0100241#endif
Willy Tarreau27a674e2009-08-17 07:23:33 +0200242 "\n\nDefault settings :"
243 "\n maxconn = %d, bufsize = %d, maxrewrite = %d, maxpollevents = %d"
244 "\n\n",
245 DEFAULT_MAXCONN, BUFSIZE, MAXREWRITE, MAX_POLL_EVENTS);
Willy Tarreaube5b6852009-10-03 18:57:08 +0200246
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +0100247 printf("Encrypted password support via crypt(3): "
248#ifdef CONFIG_HAP_CRYPT
249 "yes"
250#else
251 "no"
252#endif
253 "\n");
254
Cyril Bonté6162c432012-11-10 19:27:47 +0100255#ifdef USE_ZLIB
256 printf("Built with zlib version : " ZLIB_VERSION "\n");
257#else /* USE_ZLIB */
258 printf("Built without zlib support (USE_ZLIB not set)\n");
259#endif
260 printf("Compression algorithms supported :");
261 {
262 int i;
263
264 for (i = 0; comp_algos[i].name; i++) {
265 printf("%s %s", (i == 0 ? "" : ","), comp_algos[i].name);
266 }
267 if (i == 0) {
268 printf("none");
269 }
270 }
271 printf("\n");
272
Willy Tarreau1ee0e302012-09-10 07:16:05 +0200273#ifdef USE_OPENSSL
Lukas Tribus581cc8d2014-08-18 00:56:30 +0200274 printf("Built with OpenSSL version : "
275#ifdef OPENSSL_IS_BORINGSSL
276 "BoringSSL\n");
277#else /* OPENSSL_IS_BORINGSSL */
278 OPENSSL_VERSION_TEXT "\n");
Willy Tarreau0cff0db2013-04-26 18:16:13 +0200279 printf("Running on OpenSSL version : %s%s\n",
280 SSLeay_version(SSLEAY_VERSION),
281 ((OPENSSL_VERSION_NUMBER ^ SSLeay()) >> 8) ? " (VERSIONS DIFFER!)" : "");
Lukas Tribus581cc8d2014-08-18 00:56:30 +0200282#endif
Willy Tarreau1ee0e302012-09-10 07:16:05 +0200283 printf("OpenSSL library supports TLS extensions : "
284#if OPENSSL_VERSION_NUMBER < 0x00907000L
285 "no (library version too old)"
286#elif defined(OPENSSL_NO_TLSEXT)
287 "no (disabled via OPENSSL_NO_TLSEXT)"
288#else
289 "yes"
290#endif
291 "\n");
292 printf("OpenSSL library supports SNI : "
293#ifdef SSL_CTRL_SET_TLSEXT_HOSTNAME
294 "yes"
295#else
296#ifdef OPENSSL_NO_TLSEXT
297 "no (because of OPENSSL_NO_TLSEXT)"
298#else
299 "no (version might be too old, 0.9.8f min needed)"
300#endif
301#endif
302 "\n");
303 printf("OpenSSL library supports prefer-server-ciphers : "
304#ifdef SSL_OP_CIPHER_SERVER_PREFERENCE
305 "yes"
306#else
307 "no (0.9.7 or later needed)"
308#endif
309 "\n");
310#else /* USE_OPENSSL */
311 printf("Built without OpenSSL support (USE_OPENSSL not set)\n");
312#endif
Lukas Tribusea68d362013-04-04 12:24:16 +0200313
314#ifdef USE_PCRE
315 printf("Built with PCRE version : %s", pcre_version());
Lukas Tribusd9bdccd2013-04-15 00:41:40 +0200316 printf("\nPCRE library supports JIT : ");
317#ifdef USE_PCRE_JIT
318 {
319 int r;
320 pcre_config(PCRE_CONFIG_JIT, &r);
321 if (r)
322 printf("yes");
323 else
324 printf("no (libpcre build without JIT?)");
325 }
Lukas Tribusea68d362013-04-04 12:24:16 +0200326#else
Lukas Tribusd9bdccd2013-04-15 00:41:40 +0200327 printf("no (USE_PCRE_JIT not set)");
Lukas Tribusea68d362013-04-04 12:24:16 +0200328#endif
Lukas Tribusd9bdccd2013-04-15 00:41:40 +0200329 printf("\n");
Lukas Tribusea68d362013-04-04 12:24:16 +0200330#else
331 printf("Built without PCRE support (using libc's regex instead)\n");
332#endif
333
Pieter Baauwd551fb52013-05-08 22:49:23 +0200334#if defined(CONFIG_HAP_TRANSPARENT) || defined(CONFIG_HAP_CTTPROXY)
335 printf("Built with transparent proxy support using:"
336#if defined(CONFIG_HAP_CTTPROXY)
337 " CTTPROXY"
338#endif
339#if defined(IP_TRANSPARENT)
340 " IP_TRANSPARENT"
341#endif
342#if defined(IPV6_TRANSPARENT)
343 " IPV6_TRANSPARENT"
344#endif
345#if defined(IP_FREEBIND)
346 " IP_FREEBIND"
347#endif
Pieter Baauwff30b662013-05-08 23:22:39 +0200348#if defined(IP_BINDANY)
349 " IP_BINDANY"
350#endif
351#if defined(IPV6_BINDANY)
352 " IPV6_BINDANY"
353#endif
Pieter Baauw1eb75922013-05-08 23:30:23 +0200354#if defined(SO_BINDANY)
355 " SO_BINDANY"
356#endif
Pieter Baauwd551fb52013-05-08 22:49:23 +0200357 "\n");
358#endif
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +0100359
360#if defined(CONFIG_HAP_NS)
361 printf("Built with network namespace support\n");
362#endif
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +0100363 putchar('\n');
364
Willy Tarreaube5b6852009-10-03 18:57:08 +0200365 list_pollers(stdout);
366 putchar('\n');
Willy Tarreau7b066db2007-12-02 11:28:59 +0100367}
368
Willy Tarreaubaaee002006-06-26 02:48:02 +0200369/*
370 * This function prints the command line usage and exits
371 */
372void usage(char *name)
373{
374 display_version();
375 fprintf(stderr,
Willy Tarreau5d01a632009-06-22 16:02:30 +0200376 "Usage : %s [-f <cfgfile>]* [ -vdV"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200377 "D ] [ -n <maxconn> ] [ -N <maxpconn> ]\n"
Willy Tarreau576132e2011-09-10 19:26:56 +0200378 " [ -p <pidfile> ] [ -m <max megs> ] [ -C <dir> ]\n"
Willy Tarreau7b066db2007-12-02 11:28:59 +0100379 " -v displays version ; -vv shows known build options.\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200380 " -d enters debug mode ; -db only disables background mode.\n"
Willy Tarreau6e064432012-05-08 15:40:42 +0200381 " -dM[<byte>] poisons memory with <byte> (defaults to 0x50)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200382 " -V enters verbose mode (disables quiet mode)\n"
Willy Tarreau576132e2011-09-10 19:26:56 +0200383 " -D goes daemon ; -C changes to <dir> before loading files.\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200384 " -q quiet mode : don't display messages\n"
Willy Tarreau5d01a632009-06-22 16:02:30 +0200385 " -c check mode : only check config files and exit\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200386 " -n sets the maximum total # of connections (%d)\n"
387 " -m limits the usable amount of memory (in MB)\n"
388 " -N sets the default, per-proxy maximum # of connections (%d)\n"
Emeric Brun2b920a12010-09-23 18:30:22 +0200389 " -L set local peer name (default to hostname)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200390 " -p writes pids of all children to this file\n"
391#if defined(ENABLE_EPOLL)
392 " -de disables epoll() usage even when available\n"
393#endif
Willy Tarreau1e63130a2007-04-09 12:03:06 +0200394#if defined(ENABLE_KQUEUE)
395 " -dk disables kqueue() usage even when available\n"
396#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200397#if defined(ENABLE_POLL)
398 " -dp disables poll() usage even when available\n"
399#endif
Willy Tarreaub55932d2009-08-16 13:20:32 +0200400#if defined(CONFIG_HAP_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +0100401 " -dS disables splice usage (broken on old kernels)\n"
402#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +0200403#if defined(USE_GETADDRINFO)
404 " -dG disables getaddrinfo() usage\n"
405#endif
Emeric Brun850efd52014-01-29 12:24:34 +0100406 " -dV disables SSL verify on servers side\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200407 " -sf/-st [pid ]* finishes/terminates old pids. Must be last arguments.\n"
408 "\n",
409 name, DEFAULT_MAXCONN, cfg_maxpconn);
410 exit(1);
411}
412
413
414
415/*********************************************************************/
416/* more specific functions ***************************************/
417/*********************************************************************/
418
419/*
Willy Tarreaud0807c32010-08-27 18:26:11 +0200420 * upon SIGUSR1, let's have a soft stop. Note that soft_stop() broadcasts
421 * a signal zero to all subscribers. This means that it's as easy as
422 * subscribing to signal 0 to get informed about an imminent shutdown.
Willy Tarreaubaaee002006-06-26 02:48:02 +0200423 */
Willy Tarreau24f4efa2010-08-27 17:56:48 +0200424void sig_soft_stop(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200425{
426 soft_stop();
Willy Tarreau24f4efa2010-08-27 17:56:48 +0200427 signal_unregister_handler(sh);
Willy Tarreau4d2d0982007-05-14 00:39:29 +0200428 pool_gc2();
Willy Tarreaubaaee002006-06-26 02:48:02 +0200429}
430
431/*
432 * upon SIGTTOU, we pause everything
433 */
Willy Tarreau24f4efa2010-08-27 17:56:48 +0200434void sig_pause(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200435{
436 pause_proxies();
Willy Tarreau4d2d0982007-05-14 00:39:29 +0200437 pool_gc2();
Willy Tarreaubaaee002006-06-26 02:48:02 +0200438}
439
440/*
441 * upon SIGTTIN, let's have a soft stop.
442 */
Willy Tarreau24f4efa2010-08-27 17:56:48 +0200443void sig_listen(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200444{
Willy Tarreaube58c382011-07-24 18:28:10 +0200445 resume_proxies();
Willy Tarreaubaaee002006-06-26 02:48:02 +0200446}
447
448/*
449 * this function dumps every server's state when the process receives SIGHUP.
450 */
Willy Tarreau24f4efa2010-08-27 17:56:48 +0200451void sig_dump_state(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200452{
453 struct proxy *p = proxy;
454
455 Warning("SIGHUP received, dumping servers states.\n");
456 while (p) {
457 struct server *s = p->srv;
458
459 send_log(p, LOG_NOTICE, "SIGHUP received, dumping servers states for proxy %s.\n", p->id);
460 while (s) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100461 chunk_printf(&trash,
462 "SIGHUP: Server %s/%s is %s. Conn: %d act, %d pend, %lld tot.",
463 p->id, s->id,
Willy Tarreau892337c2014-05-13 23:41:20 +0200464 (s->state != SRV_ST_STOPPED) ? "UP" : "DOWN",
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100465 s->cur_sess, s->nbpend, s->counters.cum_sess);
466 Warning("%s\n", trash.str);
467 send_log(p, LOG_NOTICE, "%s\n", trash.str);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200468 s = s->next;
469 }
470
Willy Tarreau5fcc8f12007-09-17 11:27:09 +0200471 /* FIXME: those info are a bit outdated. We should be able to distinguish between FE and BE. */
472 if (!p->srv) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100473 chunk_printf(&trash,
474 "SIGHUP: Proxy %s has no servers. Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
475 p->id,
476 p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreau5fcc8f12007-09-17 11:27:09 +0200477 } else if (p->srv_act == 0) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100478 chunk_printf(&trash,
479 "SIGHUP: Proxy %s %s ! Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
480 p->id,
481 (p->srv_bck) ? "is running on backup servers" : "has no server available",
482 p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200483 } else {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100484 chunk_printf(&trash,
485 "SIGHUP: Proxy %s has %d active servers and %d backup servers available."
486 " Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
487 p->id, p->srv_act, p->srv_bck,
488 p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200489 }
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100490 Warning("%s\n", trash.str);
491 send_log(p, LOG_NOTICE, "%s\n", trash.str);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200492
493 p = p->next;
494 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200495}
496
Willy Tarreau24f4efa2010-08-27 17:56:48 +0200497void dump(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200498{
Willy Tarreauc6ca1a02007-05-13 19:43:47 +0200499 /* dump memory usage then free everything possible */
500 dump_pools();
501 pool_gc2();
Willy Tarreaubaaee002006-06-26 02:48:02 +0200502}
503
Willy Tarreaubaaee002006-06-26 02:48:02 +0200504/*
505 * This function initializes all the necessary variables. It only returns
506 * if everything is OK. If something fails, it exits.
507 */
508void init(int argc, char **argv)
509{
Willy Tarreaubaaee002006-06-26 02:48:02 +0200510 int arg_mode = 0; /* MODE_DEBUG, ... */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200511 char *tmp;
512 char *cfg_pidfile = NULL;
Willy Tarreau058e9072009-07-20 09:30:05 +0200513 int err_code = 0;
Willy Tarreau477ecd82010-01-03 21:12:30 +0100514 struct wordlist *wl;
Kevinm48936af2010-12-22 16:08:21 +0000515 char *progname;
Willy Tarreau576132e2011-09-10 19:26:56 +0200516 char *change_dir = NULL;
Yuxans Yao4e25b012012-10-19 10:36:09 +0800517 struct tm curtime;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200518
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100519 chunk_init(&trash, malloc(global.tune.bufsize), global.tune.bufsize);
Willy Tarreau2819e992013-12-13 14:41:10 +0100520 alloc_trash_buffers(global.tune.bufsize);
David du Colombier7af46052012-05-16 14:16:48 +0200521
Emeric Brun2b920a12010-09-23 18:30:22 +0200522 /* NB: POSIX does not make it mandatory for gethostname() to NULL-terminate
523 * the string in case of truncation, and at least FreeBSD appears not to do
524 * it.
525 */
526 memset(hostname, 0, sizeof(hostname));
527 gethostname(hostname, sizeof(hostname) - 1);
528 memset(localpeer, 0, sizeof(localpeer));
529 memcpy(localpeer, hostname, (sizeof(hostname) > sizeof(localpeer) ? sizeof(localpeer) : sizeof(hostname)) - 1);
530
Willy Tarreaubaaee002006-06-26 02:48:02 +0200531 /*
532 * Initialize the previously static variables.
533 */
534
Willy Tarreau3eba98a2009-01-25 13:56:13 +0100535 totalconn = actconn = maxfd = listeners = stopping = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200536
537
538#ifdef HAPROXY_MEMMAX
539 global.rlimit_memmax = HAPROXY_MEMMAX;
540#endif
541
Willy Tarreaub0b37bc2008-06-23 14:00:57 +0200542 tv_update_date(-1,-1);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200543 start_date = now;
544
Willy Tarreau84310e22014-02-14 11:59:04 +0100545 srandom(now_ms - getpid());
546
Yuxans Yao4e25b012012-10-19 10:36:09 +0800547 /* Get the numeric timezone. */
548 get_localtime(start_date.tv_sec, &curtime);
549 strftime(localtimezone, 6, "%z", &curtime);
550
Willy Tarreau29857942009-05-10 09:01:21 +0200551 signal_init();
Willy Tarreau8ed669b2013-01-11 15:49:37 +0100552 if (init_acl() != 0)
553 exit(1);
Willy Tarreauc6ca1a02007-05-13 19:43:47 +0200554 init_task();
555 init_session();
Willy Tarreauf2943dc2012-10-26 20:10:28 +0200556 init_connection();
Willy Tarreau8280d642009-09-23 23:37:52 +0200557 /* warning, we init buffers later */
Willy Tarreaue4d7e552007-05-13 20:19:55 +0200558 init_pendconn();
Willy Tarreau80587432006-12-24 17:47:20 +0100559 init_proto_http();
Willy Tarreaubaaee002006-06-26 02:48:02 +0200560
Willy Tarreau43b78992009-01-25 15:42:27 +0100561 global.tune.options |= GTUNE_USE_SELECT; /* select() is always available */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200562#if defined(ENABLE_POLL)
Willy Tarreau43b78992009-01-25 15:42:27 +0100563 global.tune.options |= GTUNE_USE_POLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200564#endif
565#if defined(ENABLE_EPOLL)
Willy Tarreau43b78992009-01-25 15:42:27 +0100566 global.tune.options |= GTUNE_USE_EPOLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200567#endif
Willy Tarreau1e63130a2007-04-09 12:03:06 +0200568#if defined(ENABLE_KQUEUE)
Willy Tarreau43b78992009-01-25 15:42:27 +0100569 global.tune.options |= GTUNE_USE_KQUEUE;
Willy Tarreau1e63130a2007-04-09 12:03:06 +0200570#endif
Willy Tarreaub55932d2009-08-16 13:20:32 +0200571#if defined(CONFIG_HAP_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +0100572 global.tune.options |= GTUNE_USE_SPLICE;
573#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +0200574#if defined(USE_GETADDRINFO)
575 global.tune.options |= GTUNE_USE_GAI;
576#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200577
578 pid = getpid();
579 progname = *argv;
580 while ((tmp = strchr(progname, '/')) != NULL)
581 progname = tmp + 1;
582
Kevinm48936af2010-12-22 16:08:21 +0000583 /* the process name is used for the logs only */
584 global.log_tag = strdup(progname);
585
Willy Tarreaubaaee002006-06-26 02:48:02 +0200586 argc--; argv++;
587 while (argc > 0) {
588 char *flag;
589
590 if (**argv == '-') {
591 flag = *argv+1;
592
593 /* 1 arg */
594 if (*flag == 'v') {
595 display_version();
Willy Tarreau7b066db2007-12-02 11:28:59 +0100596 if (flag[1] == 'v') /* -vv */
597 display_build_opts();
Willy Tarreaubaaee002006-06-26 02:48:02 +0200598 exit(0);
599 }
600#if defined(ENABLE_EPOLL)
601 else if (*flag == 'd' && flag[1] == 'e')
Willy Tarreau43b78992009-01-25 15:42:27 +0100602 global.tune.options &= ~GTUNE_USE_EPOLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200603#endif
604#if defined(ENABLE_POLL)
605 else if (*flag == 'd' && flag[1] == 'p')
Willy Tarreau43b78992009-01-25 15:42:27 +0100606 global.tune.options &= ~GTUNE_USE_POLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200607#endif
Willy Tarreau69cad1a2007-04-10 22:45:11 +0200608#if defined(ENABLE_KQUEUE)
Willy Tarreau1e63130a2007-04-09 12:03:06 +0200609 else if (*flag == 'd' && flag[1] == 'k')
Willy Tarreau43b78992009-01-25 15:42:27 +0100610 global.tune.options &= ~GTUNE_USE_KQUEUE;
Willy Tarreau1e63130a2007-04-09 12:03:06 +0200611#endif
Willy Tarreaub55932d2009-08-16 13:20:32 +0200612#if defined(CONFIG_HAP_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +0100613 else if (*flag == 'd' && flag[1] == 'S')
614 global.tune.options &= ~GTUNE_USE_SPLICE;
615#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +0200616#if defined(USE_GETADDRINFO)
617 else if (*flag == 'd' && flag[1] == 'G')
618 global.tune.options &= ~GTUNE_USE_GAI;
619#endif
Emeric Brun850efd52014-01-29 12:24:34 +0100620 else if (*flag == 'd' && flag[1] == 'V')
621 global.ssl_server_verify = SSL_SERVER_VERIFY_NONE;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200622 else if (*flag == 'V')
623 arg_mode |= MODE_VERBOSE;
624 else if (*flag == 'd' && flag[1] == 'b')
625 arg_mode |= MODE_FOREGROUND;
Willy Tarreau6e064432012-05-08 15:40:42 +0200626 else if (*flag == 'd' && flag[1] == 'M')
627 mem_poison_byte = flag[2] ? strtol(flag + 2, NULL, 0) : 'P';
Willy Tarreaubaaee002006-06-26 02:48:02 +0200628 else if (*flag == 'd')
629 arg_mode |= MODE_DEBUG;
630 else if (*flag == 'c')
631 arg_mode |= MODE_CHECK;
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +0100632 else if (*flag == 'D') {
Willy Tarreau6bde87b2009-05-18 16:29:51 +0200633 arg_mode |= MODE_DAEMON;
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +0100634 if (flag[1] == 's') /* -Ds */
635 arg_mode |= MODE_SYSTEMD;
636 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200637 else if (*flag == 'q')
638 arg_mode |= MODE_QUIET;
639 else if (*flag == 's' && (flag[1] == 'f' || flag[1] == 't')) {
640 /* list of pids to finish ('f') or terminate ('t') */
641
642 if (flag[1] == 'f')
643 oldpids_sig = SIGUSR1; /* finish then exit */
644 else
645 oldpids_sig = SIGTERM; /* terminate immediately */
646 argv++; argc--;
647
648 if (argc > 0) {
649 oldpids = calloc(argc, sizeof(int));
650 while (argc > 0) {
651 oldpids[nb_oldpids] = atol(*argv);
652 if (oldpids[nb_oldpids] <= 0)
Willy Tarreau3bafcdc2011-09-10 19:20:23 +0200653 usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200654 argc--; argv++;
655 nb_oldpids++;
656 }
657 }
658 }
659 else { /* >=2 args */
660 argv++; argc--;
661 if (argc == 0)
Willy Tarreau3bafcdc2011-09-10 19:20:23 +0200662 usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200663
664 switch (*flag) {
Willy Tarreau576132e2011-09-10 19:26:56 +0200665 case 'C' : change_dir = *argv; break;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200666 case 'n' : cfg_maxconn = atol(*argv); break;
667 case 'm' : global.rlimit_memmax = atol(*argv); break;
668 case 'N' : cfg_maxpconn = atol(*argv); break;
Emeric Brun2b920a12010-09-23 18:30:22 +0200669 case 'L' : strncpy(localpeer, *argv, sizeof(localpeer) - 1); break;
Willy Tarreau5d01a632009-06-22 16:02:30 +0200670 case 'f' :
Willy Tarreau477ecd82010-01-03 21:12:30 +0100671 wl = (struct wordlist *)calloc(1, sizeof(*wl));
672 if (!wl) {
673 Alert("Cannot load configuration file %s : out of memory.\n", *argv);
Willy Tarreau5d01a632009-06-22 16:02:30 +0200674 exit(1);
675 }
Willy Tarreau477ecd82010-01-03 21:12:30 +0100676 wl->s = *argv;
677 LIST_ADDQ(&cfg_cfgfiles, &wl->list);
Willy Tarreau5d01a632009-06-22 16:02:30 +0200678 break;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200679 case 'p' : cfg_pidfile = *argv; break;
Willy Tarreau3bafcdc2011-09-10 19:20:23 +0200680 default: usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200681 }
682 }
683 }
684 else
Willy Tarreau3bafcdc2011-09-10 19:20:23 +0200685 usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200686 argv++; argc--;
687 }
688
689 global.mode = MODE_STARTING | /* during startup, we want most of the alerts */
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +0100690 (arg_mode & (MODE_DAEMON | MODE_SYSTEMD | MODE_FOREGROUND | MODE_VERBOSE
Willy Tarreaubaaee002006-06-26 02:48:02 +0200691 | MODE_QUIET | MODE_CHECK | MODE_DEBUG));
692
Willy Tarreau477ecd82010-01-03 21:12:30 +0100693 if (LIST_ISEMPTY(&cfg_cfgfiles))
Willy Tarreau3bafcdc2011-09-10 19:20:23 +0200694 usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200695
Willy Tarreau576132e2011-09-10 19:26:56 +0200696 if (change_dir && chdir(change_dir) < 0) {
697 Alert("Could not change to directory %s : %s\n", change_dir, strerror(errno));
698 exit(1);
699 }
700
Willy Tarreaubaaee002006-06-26 02:48:02 +0200701 have_appsession = 0;
702 global.maxsock = 10; /* reserve 10 fds ; will be incremented by socket eaters */
Willy Tarreau915e1eb2009-06-22 15:48:36 +0200703
704 init_default_instance();
705
Willy Tarreau477ecd82010-01-03 21:12:30 +0100706 list_for_each_entry(wl, &cfg_cfgfiles, list) {
Willy Tarreauc4382422009-12-06 13:10:44 +0100707 int ret;
708
Willy Tarreau477ecd82010-01-03 21:12:30 +0100709 ret = readcfgfile(wl->s);
Willy Tarreauc4382422009-12-06 13:10:44 +0100710 if (ret == -1) {
711 Alert("Could not open configuration file %s : %s\n",
Willy Tarreau477ecd82010-01-03 21:12:30 +0100712 wl->s, strerror(errno));
Willy Tarreauc4382422009-12-06 13:10:44 +0100713 exit(1);
714 }
Willy Tarreau25a67fa2009-12-15 21:46:25 +0100715 if (ret & (ERR_ABORT|ERR_FATAL))
Willy Tarreau477ecd82010-01-03 21:12:30 +0100716 Alert("Error(s) found in configuration file : %s\n", wl->s);
Willy Tarreau25a67fa2009-12-15 21:46:25 +0100717 err_code |= ret;
Willy Tarreau058e9072009-07-20 09:30:05 +0200718 if (err_code & ERR_ABORT)
Willy Tarreau5d01a632009-06-22 16:02:30 +0200719 exit(1);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200720 }
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +0200721
Thierry FOURNIERaf5a29d2014-03-11 14:29:22 +0100722 pattern_finalize_config();
723
Willy Tarreaubb925012009-07-23 13:36:36 +0200724 err_code |= check_config_validity();
725 if (err_code & (ERR_ABORT|ERR_FATAL)) {
726 Alert("Fatal errors found in configuration.\n");
Willy Tarreau915e1eb2009-06-22 15:48:36 +0200727 exit(1);
728 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200729
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +0100730#ifdef CONFIG_HAP_NS
731 err_code |= netns_init();
732 if (err_code & (ERR_ABORT|ERR_FATAL)) {
733 Alert("Failed to initialize namespace support.\n");
734 exit(1);
735 }
736#endif
737
Willy Tarreaubaaee002006-06-26 02:48:02 +0200738 if (global.mode & MODE_CHECK) {
Willy Tarreau8b15ba12012-02-02 17:48:18 +0100739 struct peers *pr;
740 struct proxy *px;
741
742 for (pr = peers; pr; pr = pr->next)
743 if (pr->peers_fe)
744 break;
745
746 for (px = proxy; px; px = px->next)
Willy Tarreau4348fad2012-09-20 16:48:07 +0200747 if (px->state == PR_STNEW && !LIST_ISEMPTY(&px->conf.listeners))
Willy Tarreau8b15ba12012-02-02 17:48:18 +0100748 break;
749
750 if (pr || px) {
751 /* At least one peer or one listener has been found */
752 qfprintf(stdout, "Configuration file is valid\n");
753 exit(0);
754 }
755 qfprintf(stdout, "Configuration file has no error but will not start (no listener) => exit(2).\n");
756 exit(2);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200757 }
758
Willy Tarreaue9b26022011-08-01 20:57:55 +0200759 global_listener_queue_task = task_new();
760 if (!global_listener_queue_task) {
761 Alert("Out of memory when initializing global task\n");
762 exit(1);
763 }
764 /* very simple initialization, users will queue the task if needed */
765 global_listener_queue_task->context = NULL; /* not even a context! */
766 global_listener_queue_task->process = manage_global_listener_queue;
767 global_listener_queue_task->expire = TICK_ETERNITY;
768
Willy Tarreau8263d2b2012-08-28 00:06:31 +0200769 /* now we know the buffer size, we can initialize the channels and buffers */
770 init_channel();
Willy Tarreau9b28e032012-10-12 23:49:43 +0200771 init_buffer();
Willy Tarreau8280d642009-09-23 23:37:52 +0200772
Willy Tarreau915e1eb2009-06-22 15:48:36 +0200773 if (have_appsession)
774 appsession_init();
775
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +0200776 if (start_checks() < 0)
777 exit(1);
778
Willy Tarreaubaaee002006-06-26 02:48:02 +0200779 if (cfg_maxconn > 0)
780 global.maxconn = cfg_maxconn;
781
782 if (cfg_pidfile) {
Willy Tarreaua534fea2008-08-03 12:19:50 +0200783 free(global.pidfile);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200784 global.pidfile = strdup(cfg_pidfile);
785 }
786
Willy Tarreaud0256482015-01-15 21:45:22 +0100787 /* Now we want to compute the maxconn and possibly maxsslconn values.
788 * It's a bit tricky. If memmax is not set, maxconn defaults to
789 * DEFAULT_MAXCONN and maxsslconn defaults to DEFAULT_MAXSSLCONN.
790 *
791 * If memmax is set, then it depends on which values are set. If
792 * maxsslconn is set, we use memmax to determine how many cleartext
793 * connections may be added, and set maxconn to the sum of the two.
794 * If maxconn is set and not maxsslconn, maxsslconn is computed from
795 * the remaining amount of memory between memmax and the cleartext
796 * connections. If neither are set, then it is considered that all
797 * connections are SSL-capable, and maxconn is computed based on this,
798 * then maxsslconn accordingly. We need to know if SSL is used on the
799 * frontends, backends, or both, because when it's used on both sides,
800 * we need twice the value for maxsslconn, but we only count the
801 * handshake once since it is not performed on the two sides at the
802 * same time (frontend-side is terminated before backend-side begins).
803 * The SSL stack is supposed to have filled ssl_session_cost and
Willy Tarreau474b96a2015-01-28 19:03:21 +0100804 * ssl_handshake_cost during its initialization. In any case, if
805 * SYSTEM_MAXCONN is set, we still enforce it as an upper limit for
806 * maxconn in order to protect the system.
Willy Tarreaud0256482015-01-15 21:45:22 +0100807 */
808 if (!global.rlimit_memmax) {
809 if (global.maxconn == 0) {
810 global.maxconn = DEFAULT_MAXCONN;
811 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
812 fprintf(stderr, "Note: setting global.maxconn to %d.\n", global.maxconn);
813 }
814 }
815#ifdef USE_OPENSSL
816 else if (!global.maxconn && !global.maxsslconn &&
817 (global.ssl_used_frontend || global.ssl_used_backend)) {
818 /* memmax is set, compute everything automatically. Here we want
819 * to ensure that all SSL connections will be served. We take
820 * care of the number of sides where SSL is used, and consider
821 * the worst case : SSL used on both sides and doing a handshake
822 * simultaneously. Note that we can't have more than maxconn
823 * handshakes at a time by definition, so for the worst case of
824 * two SSL conns per connection, we count a single handshake.
825 */
826 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
827 int64_t mem = global.rlimit_memmax * 1048576ULL;
828
829 mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry
830 mem -= global.maxzlibmem;
831 mem = mem * MEM_USABLE_RATIO;
832
833 global.maxconn = mem /
834 ((SESSION_MAX_COST + 2 * global.tune.bufsize) + // session + 2 buffers per session
835 sides * global.ssl_session_max_cost + // SSL buffers, one per side
836 global.ssl_handshake_max_cost); // 1 handshake per connection max
837
838 global.maxconn = round_2dig(global.maxconn);
Willy Tarreau474b96a2015-01-28 19:03:21 +0100839#ifdef SYSTEM_MAXCONN
840 if (global.maxconn > DEFAULT_MAXCONN)
841 global.maxconn = DEFAULT_MAXCONN;
842#endif /* SYSTEM_MAXCONN */
Willy Tarreaud0256482015-01-15 21:45:22 +0100843 global.maxsslconn = sides * global.maxconn;
844 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
845 fprintf(stderr, "Note: setting global.maxconn to %d and global.maxsslconn to %d.\n",
846 global.maxconn, global.maxsslconn);
847 }
848 else if (!global.maxsslconn &&
849 (global.ssl_used_frontend || global.ssl_used_backend)) {
850 /* memmax and maxconn are known, compute maxsslconn automatically.
851 * maxsslconn being forced, we don't know how many of it will be
852 * on each side if both sides are being used. The worst case is
853 * when all connections use only one SSL instance because
854 * handshakes may be on two sides at the same time.
855 */
856 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
857 int64_t mem = global.rlimit_memmax * 1048576ULL;
858 int64_t sslmem;
859
860 mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry
861 mem -= global.maxzlibmem;
862 mem = mem * MEM_USABLE_RATIO;
863
864 sslmem = mem - global.maxconn * (int64_t)(SESSION_MAX_COST + 2 * global.tune.bufsize);
865 global.maxsslconn = sslmem / (global.ssl_session_max_cost + global.ssl_handshake_max_cost);
866 global.maxsslconn = round_2dig(global.maxsslconn);
867
868 if (sslmem <= 0 || global.maxsslconn < sides) {
869 Alert("Cannot compute the automatic maxsslconn because global.maxconn is already too "
870 "high for the global.memmax value (%d MB). The absolute maximum possible value "
871 "without SSL is %d, but %d was found and SSL is in use.\n",
872 global.rlimit_memmax,
873 (int)(mem / (SESSION_MAX_COST + 2 * global.tune.bufsize)),
874 global.maxconn);
875 exit(1);
876 }
877
878 if (global.maxsslconn > sides * global.maxconn)
879 global.maxsslconn = sides * global.maxconn;
880
881 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
882 fprintf(stderr, "Note: setting global.maxsslconn to %d\n", global.maxsslconn);
883 }
884#endif
885 else if (!global.maxconn) {
886 /* memmax and maxsslconn are known/unused, compute maxconn automatically */
887 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
888 int64_t mem = global.rlimit_memmax * 1048576ULL;
889 int64_t clearmem;
890
891 if (global.ssl_used_frontend || global.ssl_used_backend)
892 mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry
893
894 mem -= global.maxzlibmem;
895 mem = mem * MEM_USABLE_RATIO;
896
897 clearmem = mem;
898 if (sides)
899 clearmem -= (global.ssl_session_max_cost + global.ssl_handshake_max_cost) * (int64_t)global.maxsslconn;
900
901 global.maxconn = clearmem / (SESSION_MAX_COST + 2 * global.tune.bufsize);
902 global.maxconn = round_2dig(global.maxconn);
Willy Tarreau474b96a2015-01-28 19:03:21 +0100903#ifdef SYSTEM_MAXCONN
904 if (global.maxconn > DEFAULT_MAXCONN)
905 global.maxconn = DEFAULT_MAXCONN;
906#endif /* SYSTEM_MAXCONN */
Willy Tarreaud0256482015-01-15 21:45:22 +0100907
908 if (clearmem <= 0 || !global.maxconn) {
909 Alert("Cannot compute the automatic maxconn because global.maxsslconn is already too "
910 "high for the global.memmax value (%d MB). The absolute maximum possible value "
911 "is %d, but %d was found.\n",
912 global.rlimit_memmax,
913 (int)(mem / (global.ssl_session_max_cost + global.ssl_handshake_max_cost)),
914 global.maxsslconn);
915 exit(1);
916 }
917
918 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
919 if (sides && global.maxsslconn > sides * global.maxconn) {
920 fprintf(stderr, "Note: global.maxsslconn is forced to %d which causes global.maxconn "
921 "to be limited to %d. Better reduce global.maxsslconn to get more "
922 "room for extra connections.\n", global.maxsslconn, global.maxconn);
923 }
924 fprintf(stderr, "Note: setting global.maxconn to %d\n", global.maxconn);
925 }
926 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200927
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100928 if (!global.maxpipes) {
929 /* maxpipes not specified. Count how many frontends and backends
930 * may be using splicing, and bound that to maxconn.
931 */
932 struct proxy *cur;
933 int nbfe = 0, nbbe = 0;
934
935 for (cur = proxy; cur; cur = cur->next) {
936 if (cur->options2 & (PR_O2_SPLIC_ANY)) {
937 if (cur->cap & PR_CAP_FE)
938 nbfe += cur->maxconn;
939 if (cur->cap & PR_CAP_BE)
Willy Tarreauafb48762009-01-25 10:42:05 +0100940 nbbe += cur->fullconn ? cur->fullconn : global.maxconn;
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100941 }
942 }
943 global.maxpipes = MAX(nbfe, nbbe);
944 if (global.maxpipes > global.maxconn)
945 global.maxpipes = global.maxconn;
Willy Tarreau686ac822009-01-25 14:06:58 +0100946 global.maxpipes /= 4;
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100947 }
948
949
Willy Tarreauabacc2c2011-09-07 14:26:33 +0200950 global.hardmaxconn = global.maxconn; /* keep this max value */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200951 global.maxsock += global.maxconn * 2; /* each connection needs two sockets */
Willy Tarreau3ec79b92009-01-18 20:39:42 +0100952 global.maxsock += global.maxpipes * 2; /* each pipe needs two FDs */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200953
Willy Tarreau3c63fd82011-09-07 18:00:47 +0200954 if (global.stats_fe)
955 global.maxsock += global.stats_fe->maxconn;
956
957 if (peers) {
958 /* peers also need to bypass global maxconn */
959 struct peers *p = peers;
960
961 for (p = peers; p; p = p->next)
962 if (p->peers_fe)
963 global.maxsock += p->peers_fe->maxconn;
964 }
965
Willy Tarreau1db37712007-06-03 17:16:49 +0200966 if (global.tune.maxpollevents <= 0)
967 global.tune.maxpollevents = MAX_POLL_EVENTS;
968
Willy Tarreau6f4a82c2009-03-21 20:43:57 +0100969 if (global.tune.recv_enough == 0)
970 global.tune.recv_enough = MIN_RECV_AT_ONCE_ENOUGH;
971
Willy Tarreau27a674e2009-08-17 07:23:33 +0200972 if (global.tune.maxrewrite >= global.tune.bufsize / 2)
973 global.tune.maxrewrite = global.tune.bufsize / 2;
974
Willy Tarreaubaaee002006-06-26 02:48:02 +0200975 if (arg_mode & (MODE_DEBUG | MODE_FOREGROUND)) {
976 /* command line debug mode inhibits configuration mode */
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +0100977 global.mode &= ~(MODE_DAEMON | MODE_SYSTEMD | MODE_QUIET);
Willy Tarreau772f0dd2012-10-26 16:04:28 +0200978 global.mode |= (arg_mode & (MODE_DEBUG | MODE_FOREGROUND));
979 }
980
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +0100981 if (arg_mode & (MODE_DAEMON | MODE_SYSTEMD)) {
Willy Tarreau772f0dd2012-10-26 16:04:28 +0200982 /* command line daemon mode inhibits foreground and debug modes mode */
983 global.mode &= ~(MODE_DEBUG | MODE_FOREGROUND);
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +0100984 global.mode |= (arg_mode & (MODE_DAEMON | MODE_SYSTEMD));
Willy Tarreaubaaee002006-06-26 02:48:02 +0200985 }
Willy Tarreau772f0dd2012-10-26 16:04:28 +0200986
987 global.mode |= (arg_mode & (MODE_QUIET | MODE_VERBOSE));
Willy Tarreaubaaee002006-06-26 02:48:02 +0200988
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +0100989 if ((global.mode & MODE_DEBUG) && (global.mode & (MODE_DAEMON | MODE_SYSTEMD | MODE_QUIET))) {
990 Warning("<debug> mode incompatible with <quiet>, <daemon> and <systemd>. Keeping <debug> only.\n");
991 global.mode &= ~(MODE_DAEMON | MODE_SYSTEMD | MODE_QUIET);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200992 }
993
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +0100994 if ((global.nbproc > 1) && !(global.mode & (MODE_DAEMON | MODE_SYSTEMD))) {
Willy Tarreaubaaee002006-06-26 02:48:02 +0200995 if (!(global.mode & (MODE_FOREGROUND | MODE_DEBUG)))
996 Warning("<nbproc> is only meaningful in daemon mode. Setting limit to 1 process.\n");
997 global.nbproc = 1;
998 }
999
1000 if (global.nbproc < 1)
1001 global.nbproc = 1;
1002
Willy Tarreau8096de92010-02-26 11:12:27 +01001003 swap_buffer = (char *)calloc(1, global.tune.bufsize);
Willy Tarreau7e2c6472012-10-29 20:44:36 +01001004 get_http_auth_buff = (char *)calloc(1, global.tune.bufsize);
Willy Tarreau07115412012-10-29 21:56:59 +01001005 static_table_key = calloc(1, sizeof(*static_table_key) + global.tune.bufsize);
Willy Tarreau8096de92010-02-26 11:12:27 +01001006
Willy Tarreau8d5d77e2009-10-18 07:25:52 +02001007 fdinfo = (struct fdinfo *)calloc(1,
1008 sizeof(struct fdinfo) * (global.maxsock));
Willy Tarreaubaaee002006-06-26 02:48:02 +02001009 fdtab = (struct fdtab *)calloc(1,
1010 sizeof(struct fdtab) * (global.maxsock));
Willy Tarreauef1d1f82007-04-16 00:25:25 +02001011 /*
1012 * Note: we could register external pollers here.
1013 * Built-in pollers have been registered before main().
1014 */
Willy Tarreau4f60f162007-04-08 16:39:58 +02001015
Willy Tarreau43b78992009-01-25 15:42:27 +01001016 if (!(global.tune.options & GTUNE_USE_KQUEUE))
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001017 disable_poller("kqueue");
1018
Willy Tarreau43b78992009-01-25 15:42:27 +01001019 if (!(global.tune.options & GTUNE_USE_EPOLL))
Willy Tarreau4f60f162007-04-08 16:39:58 +02001020 disable_poller("epoll");
1021
Willy Tarreau43b78992009-01-25 15:42:27 +01001022 if (!(global.tune.options & GTUNE_USE_POLL))
Willy Tarreau4f60f162007-04-08 16:39:58 +02001023 disable_poller("poll");
1024
Willy Tarreau43b78992009-01-25 15:42:27 +01001025 if (!(global.tune.options & GTUNE_USE_SELECT))
Willy Tarreau4f60f162007-04-08 16:39:58 +02001026 disable_poller("select");
1027
1028 /* Note: we could disable any poller by name here */
1029
Willy Tarreau2ff76222007-04-09 19:29:56 +02001030 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
1031 list_pollers(stderr);
1032
Willy Tarreau4f60f162007-04-08 16:39:58 +02001033 if (!init_pollers()) {
Willy Tarreau3fa87b12013-03-31 14:41:15 +02001034 Alert("No polling mechanism available.\n"
1035 " It is likely that haproxy was built with TARGET=generic and that FD_SETSIZE\n"
1036 " is too low on this platform to support maxconn and the number of listeners\n"
1037 " and servers. You should rebuild haproxy specifying your system using TARGET=\n"
1038 " in order to support other polling systems (poll, epoll, kqueue) or reduce the\n"
Prach Pongpanichb837e682013-05-14 20:56:28 +02001039 " global maxconn setting to accommodate the system's limitation. For reference,\n"
Willy Tarreau3fa87b12013-03-31 14:41:15 +02001040 " FD_SETSIZE=%d on this system, global.maxconn=%d resulting in a maximum of\n"
1041 " %d file descriptors. You should thus reduce global.maxconn by %d. Also,\n"
1042 " check build settings using 'haproxy -vv'.\n\n",
1043 FD_SETSIZE, global.maxconn, global.maxsock, (global.maxsock + 1 - FD_SETSIZE) / 2);
Willy Tarreau4f60f162007-04-08 16:39:58 +02001044 exit(1);
1045 }
Willy Tarreau2ff76222007-04-09 19:29:56 +02001046 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
1047 printf("Using %s() as the polling mechanism.\n", cur_poller.name);
Willy Tarreau4f60f162007-04-08 16:39:58 +02001048 }
1049
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02001050 if (!global.node)
1051 global.node = strdup(hostname);
1052
Willy Tarreaubaaee002006-06-26 02:48:02 +02001053}
1054
Simon Horman6fb82592011-07-15 13:14:11 +09001055static void deinit_acl_cond(struct acl_cond *cond)
Simon Hormanac821422011-07-15 13:14:09 +09001056{
Simon Hormanac821422011-07-15 13:14:09 +09001057 struct acl_term_suite *suite, *suiteb;
1058 struct acl_term *term, *termb;
1059
Simon Horman6fb82592011-07-15 13:14:11 +09001060 if (!cond)
1061 return;
1062
1063 list_for_each_entry_safe(suite, suiteb, &cond->suites, list) {
1064 list_for_each_entry_safe(term, termb, &suite->terms, list) {
1065 LIST_DEL(&term->list);
1066 free(term);
Simon Hormanac821422011-07-15 13:14:09 +09001067 }
Simon Horman6fb82592011-07-15 13:14:11 +09001068 LIST_DEL(&suite->list);
1069 free(suite);
1070 }
1071
1072 free(cond);
1073}
1074
1075static void deinit_tcp_rules(struct list *rules)
1076{
1077 struct tcp_rule *trule, *truleb;
1078
1079 list_for_each_entry_safe(trule, truleb, rules, list) {
Simon Hormanac821422011-07-15 13:14:09 +09001080 LIST_DEL(&trule->list);
Simon Horman6fb82592011-07-15 13:14:11 +09001081 deinit_acl_cond(trule->cond);
Simon Hormanac821422011-07-15 13:14:09 +09001082 free(trule);
1083 }
1084}
1085
Willy Tarreau12785782012-04-27 21:37:17 +02001086static void deinit_sample_arg(struct arg *p)
Simon Horman6fb82592011-07-15 13:14:11 +09001087{
Willy Tarreauf9954102012-04-20 14:03:29 +02001088 struct arg *p_back = p;
1089
Simon Horman6fb82592011-07-15 13:14:11 +09001090 if (!p)
1091 return;
1092
Willy Tarreauf9954102012-04-20 14:03:29 +02001093 while (p->type != ARGT_STOP) {
Willy Tarreau496aa012012-06-01 10:38:29 +02001094 if (p->type == ARGT_STR || p->unresolved) {
Willy Tarreauf9954102012-04-20 14:03:29 +02001095 free(p->data.str.str);
1096 p->data.str.str = NULL;
Willy Tarreau496aa012012-06-01 10:38:29 +02001097 p->unresolved = 0;
Willy Tarreauecfb8e82012-04-20 12:29:52 +02001098 }
Willy Tarreau46947782015-01-19 19:00:58 +01001099 else if (p->type == ARGT_REG) {
1100 if (p->data.reg) {
1101 regex_free(p->data.reg);
1102 free(p->data.reg);
1103 p->data.reg = NULL;
1104 }
1105 }
Willy Tarreauf9954102012-04-20 14:03:29 +02001106 p++;
Willy Tarreauecfb8e82012-04-20 12:29:52 +02001107 }
Simon Horman6fb82592011-07-15 13:14:11 +09001108
Willy Tarreau2e845be2012-10-19 19:49:09 +02001109 if (p_back != empty_arg_list)
1110 free(p_back);
Simon Horman6fb82592011-07-15 13:14:11 +09001111}
1112
1113static void deinit_stick_rules(struct list *rules)
1114{
1115 struct sticking_rule *rule, *ruleb;
1116
1117 list_for_each_entry_safe(rule, ruleb, rules, list) {
1118 LIST_DEL(&rule->list);
1119 deinit_acl_cond(rule->cond);
1120 if (rule->expr) {
Willy Tarreau12785782012-04-27 21:37:17 +02001121 struct sample_conv_expr *conv_expr, *conv_exprb;
Simon Horman6fb82592011-07-15 13:14:11 +09001122 list_for_each_entry_safe(conv_expr, conv_exprb, &rule->expr->conv_exprs, list)
Willy Tarreau12785782012-04-27 21:37:17 +02001123 deinit_sample_arg(conv_expr->arg_p);
1124 deinit_sample_arg(rule->expr->arg_p);
Simon Horman6fb82592011-07-15 13:14:11 +09001125 free(rule->expr);
1126 }
1127 free(rule);
1128 }
1129}
1130
Willy Tarreaubaaee002006-06-26 02:48:02 +02001131void deinit(void)
1132{
Willy Tarreau4d2d0982007-05-14 00:39:29 +02001133 struct proxy *p = proxy, *p0;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001134 struct cap_hdr *h,*h_next;
1135 struct server *s,*s_next;
1136 struct listener *l,*l_next;
Willy Tarreau0fc45a72007-06-17 00:36:03 +02001137 struct acl_cond *cond, *condb;
1138 struct hdr_exp *exp, *expb;
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02001139 struct acl *acl, *aclb;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001140 struct switching_rule *rule, *ruleb;
Willy Tarreau4a5cade2012-04-05 21:09:48 +02001141 struct server_rule *srule, *sruleb;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02001142 struct redirect_rule *rdr, *rdrb;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01001143 struct wordlist *wl, *wlb;
Willy Tarreauf4f04122010-01-28 18:10:50 +01001144 struct cond_wordlist *cwl, *cwlb;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001145 struct uri_auth *uap, *ua = NULL;
William Lallemand0f99e342011-10-12 17:50:54 +02001146 struct logsrv *log, *logb;
William Lallemand723b73a2012-02-08 16:37:49 +01001147 struct logformat_node *lf, *lfb;
Willy Tarreau2a65ff02012-09-13 17:54:29 +02001148 struct bind_conf *bind_conf, *bind_back;
Willy Tarreau0fc45a72007-06-17 00:36:03 +02001149 int i;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001150
Willy Tarreau24f4efa2010-08-27 17:56:48 +02001151 deinit_signals();
Willy Tarreaubaaee002006-06-26 02:48:02 +02001152 while (p) {
Willy Tarreau8113a5d2012-10-04 08:01:43 +02001153 free(p->conf.file);
Willy Tarreaua534fea2008-08-03 12:19:50 +02001154 free(p->id);
1155 free(p->check_req);
1156 free(p->cookie_name);
1157 free(p->cookie_domain);
1158 free(p->url_param_name);
1159 free(p->capture_name);
1160 free(p->monitor_uri);
Simon Hormana31c7f72011-07-15 13:14:08 +09001161 free(p->rdp_cookie_name);
Willy Tarreau62a61232013-04-12 18:13:46 +02001162 if (p->conf.logformat_string != default_http_log_format &&
1163 p->conf.logformat_string != default_tcp_log_format &&
1164 p->conf.logformat_string != clf_http_log_format)
1165 free(p->conf.logformat_string);
Willy Tarreau196729e2012-05-31 19:30:26 +02001166
Willy Tarreau62a61232013-04-12 18:13:46 +02001167 free(p->conf.lfs_file);
1168 free(p->conf.uniqueid_format_string);
1169 free(p->conf.uif_file);
Godbachaf1a75d2013-10-02 17:10:11 +08001170 free(p->lbprm.map.srv);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001171
Willy Tarreaua534fea2008-08-03 12:19:50 +02001172 for (i = 0; i < HTTP_ERR_SIZE; i++)
Krzysztof Piotr Oledzki78abe612009-09-27 13:23:20 +02001173 chunk_destroy(&p->errmsg[i]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001174
Willy Tarreauf4f04122010-01-28 18:10:50 +01001175 list_for_each_entry_safe(cwl, cwlb, &p->req_add, list) {
1176 LIST_DEL(&cwl->list);
1177 free(cwl->s);
1178 free(cwl);
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01001179 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001180
Willy Tarreauf4f04122010-01-28 18:10:50 +01001181 list_for_each_entry_safe(cwl, cwlb, &p->rsp_add, list) {
1182 LIST_DEL(&cwl->list);
1183 free(cwl->s);
1184 free(cwl);
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01001185 }
Willy Tarreau0fc45a72007-06-17 00:36:03 +02001186
Willy Tarreau353bc9f2014-04-28 22:05:31 +02001187 list_for_each_entry_safe(cond, condb, &p->block_rules, list) {
Willy Tarreau0fc45a72007-06-17 00:36:03 +02001188 LIST_DEL(&cond->list);
1189 prune_acl_cond(cond);
1190 free(cond);
1191 }
1192
Willy Tarreaub80c2302007-11-30 20:51:32 +01001193 list_for_each_entry_safe(cond, condb, &p->mon_fail_cond, list) {
1194 LIST_DEL(&cond->list);
1195 prune_acl_cond(cond);
1196 free(cond);
1197 }
1198
Willy Tarreau0fc45a72007-06-17 00:36:03 +02001199 for (exp = p->req_exp; exp != NULL; ) {
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001200 if (exp->preg) {
Thierry FOURNIER09af0d62014-06-18 11:35:54 +02001201 regex_free(exp->preg);
1202 free(exp->preg);
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001203 }
1204
Willy Tarreau0fc45a72007-06-17 00:36:03 +02001205 if (exp->replace && exp->action != ACT_SETBE)
1206 free((char *)exp->replace);
1207 expb = exp;
1208 exp = exp->next;
1209 free(expb);
1210 }
1211
1212 for (exp = p->rsp_exp; exp != NULL; ) {
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001213 if (exp->preg) {
Thierry FOURNIER09af0d62014-06-18 11:35:54 +02001214 regex_free(exp->preg);
1215 free(exp->preg);
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001216 }
1217
Willy Tarreau0fc45a72007-06-17 00:36:03 +02001218 if (exp->replace && exp->action != ACT_SETBE)
1219 free((char *)exp->replace);
1220 expb = exp;
1221 exp = exp->next;
1222 free(expb);
1223 }
1224
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001225 /* build a list of unique uri_auths */
1226 if (!ua)
1227 ua = p->uri_auth;
1228 else {
1229 /* check if p->uri_auth is unique */
1230 for (uap = ua; uap; uap=uap->next)
1231 if (uap == p->uri_auth)
1232 break;
1233
Willy Tarreauaccc4e12008-06-24 11:14:45 +02001234 if (!uap && p->uri_auth) {
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001235 /* add it, if it is */
1236 p->uri_auth->next = ua;
1237 ua = p->uri_auth;
1238 }
1239 }
Willy Tarreau0fc45a72007-06-17 00:36:03 +02001240
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02001241 list_for_each_entry_safe(acl, aclb, &p->acl, list) {
1242 LIST_DEL(&acl->list);
1243 prune_acl(acl);
1244 free(acl);
1245 }
1246
Willy Tarreau4a5cade2012-04-05 21:09:48 +02001247 list_for_each_entry_safe(srule, sruleb, &p->server_rules, list) {
1248 LIST_DEL(&srule->list);
1249 prune_acl_cond(srule->cond);
1250 free(srule->cond);
1251 free(srule);
1252 }
1253
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001254 list_for_each_entry_safe(rule, ruleb, &p->switching_rules, list) {
1255 LIST_DEL(&rule->list);
Willy Tarreauf51658d2014-04-23 01:21:56 +02001256 if (rule->cond) {
1257 prune_acl_cond(rule->cond);
1258 free(rule->cond);
1259 }
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001260 free(rule);
1261 }
1262
Willy Tarreaub463dfb2008-06-07 23:08:56 +02001263 list_for_each_entry_safe(rdr, rdrb, &p->redirect_rules, list) {
1264 LIST_DEL(&rdr->list);
Willy Tarreauf285f542010-01-03 20:03:03 +01001265 if (rdr->cond) {
1266 prune_acl_cond(rdr->cond);
1267 free(rdr->cond);
1268 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02001269 free(rdr->rdr_str);
Thierry FOURNIERd18cd0f2013-11-29 12:15:45 +01001270 list_for_each_entry_safe(lf, lfb, &rdr->rdr_fmt, list) {
1271 LIST_DEL(&lf->list);
1272 free(lf);
1273 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02001274 free(rdr);
1275 }
1276
William Lallemand0f99e342011-10-12 17:50:54 +02001277 list_for_each_entry_safe(log, logb, &p->logsrvs, list) {
1278 LIST_DEL(&log->list);
1279 free(log);
1280 }
1281
William Lallemand723b73a2012-02-08 16:37:49 +01001282 list_for_each_entry_safe(lf, lfb, &p->logformat, list) {
1283 LIST_DEL(&lf->list);
1284 free(lf);
1285 }
1286
Simon Hormanac821422011-07-15 13:14:09 +09001287 deinit_tcp_rules(&p->tcp_req.inspect_rules);
1288 deinit_tcp_rules(&p->tcp_req.l4_rules);
1289
Simon Horman6fb82592011-07-15 13:14:11 +09001290 deinit_stick_rules(&p->storersp_rules);
1291 deinit_stick_rules(&p->sticking_rules);
1292
Willy Tarreaua534fea2008-08-03 12:19:50 +02001293 free(p->appsession_name);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001294
1295 h = p->req_cap;
1296 while (h) {
1297 h_next = h->next;
Willy Tarreaua534fea2008-08-03 12:19:50 +02001298 free(h->name);
Willy Tarreaucf7f3202007-05-13 22:46:04 +02001299 pool_destroy2(h->pool);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001300 free(h);
1301 h = h_next;
1302 }/* end while(h) */
1303
1304 h = p->rsp_cap;
1305 while (h) {
1306 h_next = h->next;
Willy Tarreaua534fea2008-08-03 12:19:50 +02001307 free(h->name);
Willy Tarreaucf7f3202007-05-13 22:46:04 +02001308 pool_destroy2(h->pool);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001309 free(h);
1310 h = h_next;
1311 }/* end while(h) */
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02001312
Willy Tarreaubaaee002006-06-26 02:48:02 +02001313 s = p->srv;
1314 while (s) {
1315 s_next = s->next;
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02001316
Willy Tarreau5b3a2022012-09-28 15:01:02 +02001317 if (s->check.task) {
1318 task_delete(s->check.task);
1319 task_free(s->check.task);
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02001320 }
Simon Hormand60d6912013-11-25 10:46:36 +09001321 if (s->agent.task) {
1322 task_delete(s->agent.task);
1323 task_free(s->agent.task);
1324 }
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02001325
Willy Tarreau2e993902011-10-31 11:53:20 +01001326 if (s->warmup) {
1327 task_delete(s->warmup);
1328 task_free(s->warmup);
1329 }
1330
Willy Tarreaua534fea2008-08-03 12:19:50 +02001331 free(s->id);
1332 free(s->cookie);
Willy Tarreau1ae1b7b2012-09-28 15:28:30 +02001333 free(s->check.bi);
1334 free(s->check.bo);
Simon Hormand60d6912013-11-25 10:46:36 +09001335 free(s->agent.bi);
1336 free(s->agent.bo);
Sárközi, László34c01792014-09-05 10:08:23 +02001337 free((char*)s->conf.file);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001338 free(s);
1339 s = s_next;
1340 }/* end while(s) */
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02001341
Willy Tarreau4348fad2012-09-20 16:48:07 +02001342 list_for_each_entry_safe(l, l_next, &p->conf.listeners, by_fe) {
Willy Tarreauf6e2cc72010-09-03 10:38:17 +02001343 unbind_listener(l);
1344 delete_listener(l);
Willy Tarreau4348fad2012-09-20 16:48:07 +02001345 LIST_DEL(&l->by_fe);
1346 LIST_DEL(&l->by_bind);
Krzysztof Piotr Oledzkiaff01ea2010-02-05 20:31:44 +01001347 free(l->name);
1348 free(l->counters);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001349 free(l);
Willy Tarreau4348fad2012-09-20 16:48:07 +02001350 }
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02001351
Willy Tarreau4348fad2012-09-20 16:48:07 +02001352 /* Release unused SSL configs. */
Willy Tarreau2a65ff02012-09-13 17:54:29 +02001353 list_for_each_entry_safe(bind_conf, bind_back, &p->conf.bind, by_fe) {
1354#ifdef USE_OPENSSL
1355 ssl_sock_free_all_ctx(bind_conf);
Emeric Brunfb510ea2012-10-05 12:00:26 +02001356 free(bind_conf->ca_file);
Willy Tarreau2a65ff02012-09-13 17:54:29 +02001357 free(bind_conf->ciphers);
Emeric Brun2b58d042012-09-20 17:10:03 +02001358 free(bind_conf->ecdhe);
Emeric Brunfb510ea2012-10-05 12:00:26 +02001359 free(bind_conf->crl_file);
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02001360#endif /* USE_OPENSSL */
Willy Tarreau2a65ff02012-09-13 17:54:29 +02001361 free(bind_conf->file);
1362 free(bind_conf->arg);
1363 LIST_DEL(&bind_conf->by_fe);
1364 free(bind_conf);
1365 }
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02001366
Krzysztof Piotr Oledzkiaff01ea2010-02-05 20:31:44 +01001367 free(p->desc);
1368 free(p->fwdfor_hdr_name);
1369
Willy Tarreauff011f22011-01-06 17:51:27 +01001370 free_http_req_rules(&p->http_req_rules);
Sasha Pachev218f0642014-06-16 12:05:59 -06001371 free_http_res_rules(&p->http_res_rules);
Willy Tarreau918ff602011-07-25 16:33:49 +02001372 free(p->task);
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01001373
Willy Tarreaucf7f3202007-05-13 22:46:04 +02001374 pool_destroy2(p->req_cap_pool);
1375 pool_destroy2(p->rsp_cap_pool);
Simon Hormanb08584a2011-07-15 13:14:10 +09001376 pool_destroy2(p->table.pool);
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01001377
Willy Tarreau4d2d0982007-05-14 00:39:29 +02001378 p0 = p;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001379 p = p->next;
Willy Tarreau4d2d0982007-05-14 00:39:29 +02001380 free(p0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001381 }/* end while(p) */
Willy Tarreaudd815982007-10-16 12:25:14 +02001382
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001383 while (ua) {
1384 uap = ua;
1385 ua = ua->next;
1386
Willy Tarreaua534fea2008-08-03 12:19:50 +02001387 free(uap->uri_prefix);
1388 free(uap->auth_realm);
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02001389 free(uap->node);
1390 free(uap->desc);
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001391
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01001392 userlist_free(uap->userlist);
Willy Tarreauff011f22011-01-06 17:51:27 +01001393 free_http_req_rules(&uap->http_req_rules);
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01001394
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001395 free(uap);
1396 }
1397
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01001398 userlist_free(userlist);
1399
Willy Tarreaudd815982007-10-16 12:25:14 +02001400 protocol_unbind_all();
1401
Joe Williamsdf5b38f2010-12-29 17:05:48 +01001402 free(global.log_send_hostname); global.log_send_hostname = NULL;
Kevinm48936af2010-12-22 16:08:21 +00001403 free(global.log_tag); global.log_tag = NULL;
Willy Tarreaua534fea2008-08-03 12:19:50 +02001404 free(global.chroot); global.chroot = NULL;
1405 free(global.pidfile); global.pidfile = NULL;
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02001406 free(global.node); global.node = NULL;
1407 free(global.desc); global.desc = NULL;
Godbach4cc1b0d2013-06-26 16:49:51 +08001408 free(fdinfo); fdinfo = NULL;
Willy Tarreaua534fea2008-08-03 12:19:50 +02001409 free(fdtab); fdtab = NULL;
1410 free(oldpids); oldpids = NULL;
Willy Tarreaue9b26022011-08-01 20:57:55 +02001411 free(global_listener_queue_task); global_listener_queue_task = NULL;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02001412
William Lallemand0f99e342011-10-12 17:50:54 +02001413 list_for_each_entry_safe(log, logb, &global.logsrvs, list) {
1414 LIST_DEL(&log->list);
1415 free(log);
1416 }
Willy Tarreau477ecd82010-01-03 21:12:30 +01001417 list_for_each_entry_safe(wl, wlb, &cfg_cfgfiles, list) {
1418 LIST_DEL(&wl->list);
1419 free(wl);
1420 }
1421
Willy Tarreauc6ca1a02007-05-13 19:43:47 +02001422 pool_destroy2(pool2_session);
Willy Tarreauf2943dc2012-10-26 20:10:28 +02001423 pool_destroy2(pool2_connection);
Willy Tarreau9b28e032012-10-12 23:49:43 +02001424 pool_destroy2(pool2_buffer);
Willy Tarreau8263d2b2012-08-28 00:06:31 +02001425 pool_destroy2(pool2_channel);
Willy Tarreau332f8bf2007-05-13 21:36:56 +02001426 pool_destroy2(pool2_requri);
Willy Tarreauc6ca1a02007-05-13 19:43:47 +02001427 pool_destroy2(pool2_task);
Willy Tarreau086b3b42007-05-13 21:45:51 +02001428 pool_destroy2(pool2_capture);
Willy Tarreau63963c62007-05-13 21:29:55 +02001429 pool_destroy2(pool2_appsess);
Willy Tarreaue4d7e552007-05-13 20:19:55 +02001430 pool_destroy2(pool2_pendconn);
Willy Tarreau24f4efa2010-08-27 17:56:48 +02001431 pool_destroy2(pool2_sig_handlers);
Willy Tarreau34eb6712011-10-24 18:15:04 +02001432 pool_destroy2(pool2_hdr_idx);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001433
1434 if (have_appsession) {
Willy Tarreau63963c62007-05-13 21:29:55 +02001435 pool_destroy2(apools.serverid);
1436 pool_destroy2(apools.sessid);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001437 }
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02001438
1439 deinit_pollers();
Willy Tarreaubaaee002006-06-26 02:48:02 +02001440} /* end deinit() */
1441
Willy Tarreaubb545b42010-08-25 12:58:59 +02001442/* sends the signal <sig> to all pids found in <oldpids>. Returns the number of
1443 * pids the signal was correctly delivered to.
1444 */
1445static int tell_old_pids(int sig)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001446{
1447 int p;
Willy Tarreaubb545b42010-08-25 12:58:59 +02001448 int ret = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001449 for (p = 0; p < nb_oldpids; p++)
Willy Tarreaubb545b42010-08-25 12:58:59 +02001450 if (kill(oldpids[p], sig) == 0)
1451 ret++;
1452 return ret;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001453}
1454
Willy Tarreau918ff602011-07-25 16:33:49 +02001455/* Runs the polling loop */
Willy Tarreau4f60f162007-04-08 16:39:58 +02001456void run_poll_loop()
1457{
Willy Tarreau0c303ee2008-07-07 00:09:58 +02001458 int next;
Willy Tarreau4f60f162007-04-08 16:39:58 +02001459
Willy Tarreaub0b37bc2008-06-23 14:00:57 +02001460 tv_update_date(0,1);
Willy Tarreau4f60f162007-04-08 16:39:58 +02001461 while (1) {
Willy Tarreau29857942009-05-10 09:01:21 +02001462 /* check if we caught some signals and process them */
1463 signal_process_queue();
1464
Willy Tarreau58b458d2008-06-29 22:40:23 +02001465 /* Check if we can expire some tasks */
1466 wake_expired_tasks(&next);
1467
1468 /* Process a few tasks */
Willy Tarreaud825eef2007-05-12 22:35:00 +02001469 process_runnable_tasks(&next);
Willy Tarreau4f60f162007-04-08 16:39:58 +02001470
Willy Tarreauaf7ad002010-08-31 15:39:26 +02001471 /* stop when there's nothing left to do */
1472 if (jobs == 0)
Willy Tarreau4f60f162007-04-08 16:39:58 +02001473 break;
1474
Willy Tarreau58b458d2008-06-29 22:40:23 +02001475 /* The poller will ensure it returns around <next> */
Willy Tarreau0c303ee2008-07-07 00:09:58 +02001476 cur_poller.poll(&cur_poller, next);
Willy Tarreau033cd9d2014-01-25 19:24:15 +01001477 fd_process_cached_events();
Willy Tarreau4f60f162007-04-08 16:39:58 +02001478 }
1479}
1480
Willy Tarreaue9b26022011-08-01 20:57:55 +02001481/* This is the global management task for listeners. It enables listeners waiting
1482 * for global resources when there are enough free resource, or at least once in
1483 * a while. It is designed to be called as a task.
1484 */
1485static struct task *manage_global_listener_queue(struct task *t)
1486{
1487 int next = TICK_ETERNITY;
Willy Tarreaue9b26022011-08-01 20:57:55 +02001488 /* queue is empty, nothing to do */
1489 if (LIST_ISEMPTY(&global_listener_queue))
1490 goto out;
1491
1492 /* If there are still too many concurrent connections, let's wait for
1493 * some of them to go away. We don't need to re-arm the timer because
1494 * each of them will scan the queue anyway.
1495 */
1496 if (unlikely(actconn >= global.maxconn))
1497 goto out;
1498
1499 /* We should periodically try to enable listeners waiting for a global
1500 * resource here, because it is possible, though very unlikely, that
1501 * they have been blocked by a temporary lack of global resource such
1502 * as a file descriptor or memory and that the temporary condition has
1503 * disappeared.
1504 */
Willy Tarreauabacc2c2011-09-07 14:26:33 +02001505 dequeue_all_listeners(&global_listener_queue);
Willy Tarreaue9b26022011-08-01 20:57:55 +02001506
1507 out:
1508 t->expire = next;
1509 task_queue(t);
1510 return t;
1511}
Willy Tarreau4f60f162007-04-08 16:39:58 +02001512
Willy Tarreaubaaee002006-06-26 02:48:02 +02001513int main(int argc, char **argv)
1514{
1515 int err, retry;
1516 struct rlimit limit;
Emeric Bruncf20bf12010-10-22 16:06:11 +02001517 char errmsg[100];
Willy Tarreau269ab312012-09-05 08:02:48 +02001518 int pidfd = -1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001519
Emeric Bruncf20bf12010-10-22 16:06:11 +02001520 init(argc, argv);
Willy Tarreau24f4efa2010-08-27 17:56:48 +02001521 signal_register_fct(SIGQUIT, dump, SIGQUIT);
1522 signal_register_fct(SIGUSR1, sig_soft_stop, SIGUSR1);
1523 signal_register_fct(SIGHUP, sig_dump_state, SIGHUP);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001524
Willy Tarreaue437c442010-03-17 18:02:46 +01001525 /* Always catch SIGPIPE even on platforms which define MSG_NOSIGNAL.
1526 * Some recent FreeBSD setups report broken pipes, and MSG_NOSIGNAL
1527 * was defined there, so let's stay on the safe side.
Willy Tarreaubaaee002006-06-26 02:48:02 +02001528 */
Willy Tarreau24f4efa2010-08-27 17:56:48 +02001529 signal_register_fct(SIGPIPE, NULL, 0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001530
Willy Tarreaudc23a922011-02-16 11:10:36 +01001531 /* ulimits */
1532 if (!global.rlimit_nofile)
1533 global.rlimit_nofile = global.maxsock;
1534
1535 if (global.rlimit_nofile) {
1536 limit.rlim_cur = limit.rlim_max = global.rlimit_nofile;
1537 if (setrlimit(RLIMIT_NOFILE, &limit) == -1) {
1538 Warning("[%s.main()] Cannot raise FD limit to %d.\n", argv[0], global.rlimit_nofile);
1539 }
1540 }
1541
1542 if (global.rlimit_memmax) {
1543 limit.rlim_cur = limit.rlim_max =
1544 global.rlimit_memmax * 1048576 / global.nbproc;
1545#ifdef RLIMIT_AS
1546 if (setrlimit(RLIMIT_AS, &limit) == -1) {
1547 Warning("[%s.main()] Cannot fix MEM limit to %d megs.\n",
1548 argv[0], global.rlimit_memmax);
1549 }
1550#else
1551 if (setrlimit(RLIMIT_DATA, &limit) == -1) {
1552 Warning("[%s.main()] Cannot fix MEM limit to %d megs.\n",
1553 argv[0], global.rlimit_memmax);
1554 }
1555#endif
1556 }
1557
Willy Tarreaubaaee002006-06-26 02:48:02 +02001558 /* We will loop at most 100 times with 10 ms delay each time.
1559 * That's at most 1 second. We only send a signal to old pids
1560 * if we cannot grab at least one port.
1561 */
1562 retry = MAX_START_RETRIES;
1563 err = ERR_NONE;
1564 while (retry >= 0) {
1565 struct timeval w;
1566 err = start_proxies(retry == 0 || nb_oldpids == 0);
Willy Tarreaue13e9252007-12-20 23:05:50 +01001567 /* exit the loop on no error or fatal error */
1568 if ((err & (ERR_RETRYABLE|ERR_FATAL)) != ERR_RETRYABLE)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001569 break;
Willy Tarreaubb545b42010-08-25 12:58:59 +02001570 if (nb_oldpids == 0 || retry == 0)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001571 break;
1572
1573 /* FIXME-20060514: Solaris and OpenBSD do not support shutdown() on
1574 * listening sockets. So on those platforms, it would be wiser to
1575 * simply send SIGUSR1, which will not be undoable.
1576 */
Willy Tarreaubb545b42010-08-25 12:58:59 +02001577 if (tell_old_pids(SIGTTOU) == 0) {
1578 /* no need to wait if we can't contact old pids */
1579 retry = 0;
1580 continue;
1581 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001582 /* give some time to old processes to stop listening */
1583 w.tv_sec = 0;
1584 w.tv_usec = 10*1000;
1585 select(0, NULL, NULL, NULL, &w);
1586 retry--;
1587 }
1588
1589 /* Note: start_proxies() sends an alert when it fails. */
Willy Tarreau0a3b9d92009-02-04 17:05:23 +01001590 if ((err & ~ERR_WARN) != ERR_NONE) {
Willy Tarreauf68da462009-06-09 14:36:00 +02001591 if (retry != MAX_START_RETRIES && nb_oldpids) {
1592 protocol_unbind_all(); /* cleanup everything we can */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001593 tell_old_pids(SIGTTIN);
Willy Tarreauf68da462009-06-09 14:36:00 +02001594 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001595 exit(1);
1596 }
1597
1598 if (listeners == 0) {
1599 Alert("[%s.main()] No enabled listener found (check the <listen> keywords) ! Exiting.\n", argv[0]);
1600 /* Note: we don't have to send anything to the old pids because we
1601 * never stopped them. */
1602 exit(1);
1603 }
1604
Emeric Bruncf20bf12010-10-22 16:06:11 +02001605 err = protocol_bind_all(errmsg, sizeof(errmsg));
1606 if ((err & ~ERR_WARN) != ERR_NONE) {
1607 if ((err & ERR_ALERT) || (err & ERR_WARN))
1608 Alert("[%s.main()] %s.\n", argv[0], errmsg);
1609
Willy Tarreaudd815982007-10-16 12:25:14 +02001610 Alert("[%s.main()] Some protocols failed to start their listeners! Exiting.\n", argv[0]);
1611 protocol_unbind_all(); /* cleanup everything we can */
1612 if (nb_oldpids)
1613 tell_old_pids(SIGTTIN);
1614 exit(1);
Emeric Bruncf20bf12010-10-22 16:06:11 +02001615 } else if (err & ERR_WARN) {
1616 Alert("[%s.main()] %s.\n", argv[0], errmsg);
Willy Tarreaudd815982007-10-16 12:25:14 +02001617 }
1618
Willy Tarreaubaaee002006-06-26 02:48:02 +02001619 /* prepare pause/play signals */
Willy Tarreau24f4efa2010-08-27 17:56:48 +02001620 signal_register_fct(SIGTTOU, sig_pause, SIGTTOU);
1621 signal_register_fct(SIGTTIN, sig_listen, SIGTTIN);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001622
Willy Tarreaubaaee002006-06-26 02:48:02 +02001623 /* MODE_QUIET can inhibit alerts and warnings below this line */
1624
1625 global.mode &= ~MODE_STARTING;
1626 if ((global.mode & MODE_QUIET) && !(global.mode & MODE_VERBOSE)) {
1627 /* detach from the tty */
1628 fclose(stdin); fclose(stdout); fclose(stderr);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001629 }
1630
1631 /* open log & pid files before the chroot */
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +01001632 if (global.mode & (MODE_DAEMON | MODE_SYSTEMD) && global.pidfile != NULL) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02001633 unlink(global.pidfile);
1634 pidfd = open(global.pidfile, O_CREAT | O_WRONLY | O_TRUNC, 0644);
1635 if (pidfd < 0) {
1636 Alert("[%s.main()] Cannot create pidfile %s\n", argv[0], global.pidfile);
1637 if (nb_oldpids)
1638 tell_old_pids(SIGTTIN);
Willy Tarreaudd815982007-10-16 12:25:14 +02001639 protocol_unbind_all();
Willy Tarreaubaaee002006-06-26 02:48:02 +02001640 exit(1);
1641 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001642 }
1643
Willy Tarreaub38651a2007-03-24 17:24:39 +01001644#ifdef CONFIG_HAP_CTTPROXY
1645 if (global.last_checks & LSTCHK_CTTPROXY) {
1646 int ret;
1647
1648 ret = check_cttproxy_version();
1649 if (ret < 0) {
1650 Alert("[%s.main()] Cannot enable cttproxy.\n%s",
1651 argv[0],
1652 (ret == -1) ? " Incorrect module version.\n"
1653 : " Make sure you have enough permissions and that the module is loaded.\n");
Willy Tarreaudd815982007-10-16 12:25:14 +02001654 protocol_unbind_all();
Willy Tarreaub38651a2007-03-24 17:24:39 +01001655 exit(1);
1656 }
1657 }
1658#endif
1659
1660 if ((global.last_checks & LSTCHK_NETADM) && global.uid) {
1661 Alert("[%s.main()] Some configuration options require full privileges, so global.uid cannot be changed.\n"
Willy Tarreau4e30ed72009-02-04 18:02:48 +01001662 "", argv[0]);
Willy Tarreaudd815982007-10-16 12:25:14 +02001663 protocol_unbind_all();
Willy Tarreaub38651a2007-03-24 17:24:39 +01001664 exit(1);
1665 }
1666
Willy Tarreau4e30ed72009-02-04 18:02:48 +01001667 /* If the user is not root, we'll still let him try the configuration
1668 * but we inform him that unexpected behaviour may occur.
1669 */
1670 if ((global.last_checks & LSTCHK_NETADM) && getuid())
1671 Warning("[%s.main()] Some options which require full privileges"
1672 " might not work well.\n"
1673 "", argv[0]);
1674
Willy Tarreauf223cc02007-10-15 18:57:08 +02001675 /* chroot if needed */
1676 if (global.chroot != NULL) {
Willy Tarreau21337822012-04-29 14:11:38 +02001677 if (chroot(global.chroot) == -1 || chdir("/") == -1) {
Willy Tarreauf223cc02007-10-15 18:57:08 +02001678 Alert("[%s.main()] Cannot chroot(%s).\n", argv[0], global.chroot);
1679 if (nb_oldpids)
1680 tell_old_pids(SIGTTIN);
Willy Tarreaudd815982007-10-16 12:25:14 +02001681 protocol_unbind_all();
Willy Tarreauf223cc02007-10-15 18:57:08 +02001682 exit(1);
1683 }
Willy Tarreauf223cc02007-10-15 18:57:08 +02001684 }
1685
Willy Tarreaubaaee002006-06-26 02:48:02 +02001686 if (nb_oldpids)
Willy Tarreaubb545b42010-08-25 12:58:59 +02001687 nb_oldpids = tell_old_pids(oldpids_sig);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001688
1689 /* Note that any error at this stage will be fatal because we will not
1690 * be able to restart the old pids.
1691 */
1692
1693 /* setgid / setuid */
Michael Schererab012dd2013-01-12 18:35:19 +01001694 if (global.gid) {
1695 if (getgroups(0, NULL) > 0 && setgroups(0, NULL) == -1)
1696 Warning("[%s.main()] Failed to drop supplementary groups. Using 'gid'/'group'"
1697 " without 'uid'/'user' is generally useless.\n", argv[0]);
1698
1699 if (setgid(global.gid) == -1) {
1700 Alert("[%s.main()] Cannot set gid %d.\n", argv[0], global.gid);
1701 protocol_unbind_all();
1702 exit(1);
1703 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001704 }
1705
1706 if (global.uid && setuid(global.uid) == -1) {
1707 Alert("[%s.main()] Cannot set uid %d.\n", argv[0], global.uid);
Willy Tarreaudd815982007-10-16 12:25:14 +02001708 protocol_unbind_all();
Willy Tarreaubaaee002006-06-26 02:48:02 +02001709 exit(1);
1710 }
1711
1712 /* check ulimits */
1713 limit.rlim_cur = limit.rlim_max = 0;
1714 getrlimit(RLIMIT_NOFILE, &limit);
1715 if (limit.rlim_cur < global.maxsock) {
1716 Warning("[%s.main()] FD limit (%d) too low for maxconn=%d/maxsock=%d. Please raise 'ulimit-n' to %d or more to avoid any trouble.\n",
Willy Tarreau1772ece2009-04-03 14:49:12 +02001717 argv[0], (int)limit.rlim_cur, global.maxconn, global.maxsock, global.maxsock);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001718 }
1719
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +01001720 if (global.mode & (MODE_DAEMON | MODE_SYSTEMD)) {
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01001721 struct proxy *px;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001722 int ret = 0;
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +01001723 int *children = calloc(global.nbproc, sizeof(int));
Willy Tarreaubaaee002006-06-26 02:48:02 +02001724 int proc;
1725
1726 /* the father launches the required number of processes */
1727 for (proc = 0; proc < global.nbproc; proc++) {
1728 ret = fork();
1729 if (ret < 0) {
1730 Alert("[%s.main()] Cannot fork.\n", argv[0]);
Willy Tarreaudd815982007-10-16 12:25:14 +02001731 protocol_unbind_all();
Willy Tarreaud6803712007-10-16 07:44:56 +02001732 exit(1); /* there has been an error */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001733 }
1734 else if (ret == 0) /* child breaks here */
1735 break;
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +01001736 children[proc] = ret;
Willy Tarreau269ab312012-09-05 08:02:48 +02001737 if (pidfd >= 0) {
1738 char pidstr[100];
1739 snprintf(pidstr, sizeof(pidstr), "%d\n", ret);
Willy Tarreau89efaed2013-12-13 15:14:55 +01001740 shut_your_big_mouth_gcc(write(pidfd, pidstr, strlen(pidstr)));
Willy Tarreaubaaee002006-06-26 02:48:02 +02001741 }
Willy Tarreaudcd47712007-11-04 23:35:08 +01001742 relative_pid++; /* each child will get a different one */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001743 }
Willy Tarreaufc6c0322012-11-16 16:12:27 +01001744
1745#ifdef USE_CPU_AFFINITY
1746 if (proc < global.nbproc && /* child */
1747 proc < 32 && /* only the first 32 processes may be pinned */
1748 global.cpu_map[proc]) /* only do this if the process has a CPU map */
1749 sched_setaffinity(0, sizeof(unsigned long), (void *)&global.cpu_map[proc]);
1750#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +02001751 /* close the pidfile both in children and father */
Willy Tarreau269ab312012-09-05 08:02:48 +02001752 if (pidfd >= 0) {
1753 //lseek(pidfd, 0, SEEK_SET); /* debug: emulate eglibc bug */
1754 close(pidfd);
1755 }
Willy Tarreaud137dd32010-08-25 12:49:05 +02001756
1757 /* We won't ever use this anymore */
1758 free(oldpids); oldpids = NULL;
1759 free(global.chroot); global.chroot = NULL;
1760 free(global.pidfile); global.pidfile = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001761
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01001762 /* we might have to unbind some proxies from some processes */
1763 px = proxy;
1764 while (px != NULL) {
1765 if (px->bind_proc && px->state != PR_STSTOPPED) {
Willy Tarreaua9db57e2013-01-18 11:29:29 +01001766 if (!(px->bind_proc & (1UL << proc)))
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01001767 stop_proxy(px);
1768 }
1769 px = px->next;
1770 }
1771
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +01001772 if (proc == global.nbproc) {
1773 if (global.mode & MODE_SYSTEMD) {
Simone Gottib7f1cfc2014-06-11 00:15:51 +02001774 protocol_unbind_all();
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +01001775 for (proc = 0; proc < global.nbproc; proc++)
1776 while (waitpid(children[proc], NULL, 0) == -1 && errno == EINTR);
1777 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001778 exit(0); /* parent must leave */
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +01001779 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001780
Dirkjan Bussink07fcaaa2014-04-28 22:57:16 +00001781 free(children);
1782 children = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001783 /* if we're NOT in QUIET mode, we should now close the 3 first FDs to ensure
1784 * that we can detach from the TTY. We MUST NOT do it in other cases since
1785 * it would have already be done, and 0-2 would have been affected to listening
1786 * sockets
1787 */
Willy Tarreau106cb762008-11-16 07:40:34 +01001788 if (!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE)) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02001789 /* detach from the tty */
1790 fclose(stdin); fclose(stdout); fclose(stderr);
Willy Tarreau106cb762008-11-16 07:40:34 +01001791 global.mode &= ~MODE_VERBOSE;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001792 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
1793 }
1794 pid = getpid(); /* update child's pid */
1795 setsid();
Willy Tarreau2ff76222007-04-09 19:29:56 +02001796 fork_poller();
Willy Tarreaubaaee002006-06-26 02:48:02 +02001797 }
1798
Willy Tarreaudd815982007-10-16 12:25:14 +02001799 protocol_enable_all();
Willy Tarreau4f60f162007-04-08 16:39:58 +02001800 /*
1801 * That's it : the central polling loop. Run until we stop.
1802 */
1803 run_poll_loop();
Willy Tarreaubaaee002006-06-26 02:48:02 +02001804
1805 /* Free all Hash Keys and all Hash elements */
1806 appsession_cleanup();
1807 /* Do some cleanup */
1808 deinit();
1809
1810 exit(0);
1811}
1812
1813
1814/*
1815 * Local variables:
1816 * c-indent-level: 8
1817 * c-basic-offset: 8
1818 * End:
1819 */