blob: 88c6300329b8811471c0fe61d356b55af48799ce [file] [log] [blame]
Willy Tarreaubaaee002006-06-26 02:48:02 +02001/*
2 * Configuration parser
3 *
Willy Tarreauff011f22011-01-06 17:51:27 +01004 * Copyright 2000-2011 Willy Tarreau <w@1wt.eu>
Willy Tarreaubaaee002006-06-26 02:48:02 +02005 *
6 * This program is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU General Public License
8 * as published by the Free Software Foundation; either version
9 * 2 of the License, or (at your option) any later version.
10 *
11 */
12
13#include <stdio.h>
14#include <stdlib.h>
15#include <string.h>
16#include <netdb.h>
17#include <ctype.h>
Willy Tarreau95c20ac2007-03-25 15:39:23 +020018#include <pwd.h>
19#include <grp.h>
Willy Tarreau0b4ed902007-03-26 00:18:40 +020020#include <errno.h>
Willy Tarreau3f49b302007-06-11 00:29:26 +020021#include <sys/types.h>
22#include <sys/stat.h>
23#include <fcntl.h>
24#include <unistd.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020025
Willy Tarreau2dd0d472006-06-29 17:53:05 +020026#include <common/cfgparse.h>
Willy Tarreauc7e42382012-08-24 19:22:53 +020027#include <common/chunk.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020028#include <common/config.h>
Willy Tarreau058e9072009-07-20 09:30:05 +020029#include <common/errors.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020030#include <common/memory.h>
31#include <common/standard.h>
32#include <common/time.h>
33#include <common/uri_auth.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020034
35#include <types/capture.h>
36#include <types/global.h>
Emeric Brun32da3c42010-09-23 18:39:19 +020037#include <types/peers.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020038
Willy Tarreaueb0c6142007-05-07 00:53:22 +020039#include <proto/acl.h>
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +010040#include <proto/auth.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020041#include <proto/backend.h>
Willy Tarreauc7e42382012-08-24 19:22:53 +020042#include <proto/channel.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020043#include <proto/checks.h>
Willy Tarreaufbee7132007-10-18 13:53:22 +020044#include <proto/dumpstats.h>
Willy Tarreaueb472682010-05-28 18:46:57 +020045#include <proto/frontend.h>
Willy Tarreau34eb6712011-10-24 18:15:04 +020046#include <proto/hdr_idx.h>
Willy Tarreau6b2e11b2009-10-01 07:52:15 +020047#include <proto/lb_chash.h>
Willy Tarreauf09c6602012-02-13 17:12:08 +010048#include <proto/lb_fas.h>
Willy Tarreauf89c1872009-10-01 11:19:37 +020049#include <proto/lb_fwlc.h>
50#include <proto/lb_fwrr.h>
51#include <proto/lb_map.h>
Willy Tarreaud1d54542012-09-12 22:58:11 +020052#include <proto/listener.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020053#include <proto/log.h>
Willy Tarreauc6f4ce82009-06-10 11:09:37 +020054#include <proto/port_range.h>
Willy Tarreaud1d54542012-09-12 22:58:11 +020055#include <proto/protocol.h>
Willy Tarreaue6b98942007-10-29 01:09:36 +010056#include <proto/proto_tcp.h>
Emeric Bruned760922010-10-22 17:59:25 +020057#include <proto/proto_uxst.h>
Willy Tarreaue6b98942007-10-29 01:09:36 +010058#include <proto/proto_http.h>
Willy Tarreau2b5652f2006-12-31 17:46:05 +010059#include <proto/proxy.h>
Emeric Brun32da3c42010-09-23 18:39:19 +020060#include <proto/peers.h>
Willy Tarreaucd3b0942012-04-27 21:52:18 +020061#include <proto/sample.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020062#include <proto/server.h>
Willy Tarreau3bc13772008-12-07 11:50:35 +010063#include <proto/session.h>
Willy Tarreau75bf2c92012-08-20 17:01:35 +020064#include <proto/raw_sock.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020065#include <proto/task.h>
Emeric Brunb982a3d2010-01-04 15:45:53 +010066#include <proto/stick_table.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020067
Emeric Brunfc0421f2012-09-07 17:30:07 +020068#ifdef USE_OPENSSL
69#include <types/ssl_sock.h>
70#include <proto/ssl_sock.h>
71#include <proto/shctx.h>
72#endif /*USE_OPENSSL */
Willy Tarreaubaaee002006-06-26 02:48:02 +020073
Willy Tarreauf3c69202006-07-09 16:42:34 +020074/* This is the SSLv3 CLIENT HELLO packet used in conjunction with the
75 * ssl-hello-chk option to ensure that the remote server speaks SSL.
76 *
77 * Check RFC 2246 (TLSv1.0) sections A.3 and A.4 for details.
78 */
79const char sslv3_client_hello_pkt[] = {
80 "\x16" /* ContentType : 0x16 = Hanshake */
81 "\x03\x00" /* ProtocolVersion : 0x0300 = SSLv3 */
82 "\x00\x79" /* ContentLength : 0x79 bytes after this one */
83 "\x01" /* HanshakeType : 0x01 = CLIENT HELLO */
84 "\x00\x00\x75" /* HandshakeLength : 0x75 bytes after this one */
85 "\x03\x00" /* Hello Version : 0x0300 = v3 */
86 "\x00\x00\x00\x00" /* Unix GMT Time (s) : filled with <now> (@0x0B) */
87 "HAPROXYSSLCHK\nHAPROXYSSLCHK\n" /* Random : must be exactly 28 bytes */
88 "\x00" /* Session ID length : empty (no session ID) */
89 "\x00\x4E" /* Cipher Suite Length : 78 bytes after this one */
90 "\x00\x01" "\x00\x02" "\x00\x03" "\x00\x04" /* 39 most common ciphers : */
91 "\x00\x05" "\x00\x06" "\x00\x07" "\x00\x08" /* 0x01...0x1B, 0x2F...0x3A */
92 "\x00\x09" "\x00\x0A" "\x00\x0B" "\x00\x0C" /* This covers RSA/DH, */
93 "\x00\x0D" "\x00\x0E" "\x00\x0F" "\x00\x10" /* various bit lengths, */
94 "\x00\x11" "\x00\x12" "\x00\x13" "\x00\x14" /* SHA1/MD5, DES/3DES/AES... */
95 "\x00\x15" "\x00\x16" "\x00\x17" "\x00\x18"
96 "\x00\x19" "\x00\x1A" "\x00\x1B" "\x00\x2F"
97 "\x00\x30" "\x00\x31" "\x00\x32" "\x00\x33"
98 "\x00\x34" "\x00\x35" "\x00\x36" "\x00\x37"
99 "\x00\x38" "\x00\x39" "\x00\x3A"
100 "\x01" /* Compression Length : 0x01 = 1 byte for types */
101 "\x00" /* Compression Type : 0x00 = NULL compression */
102};
103
Willy Tarreau3842f002009-06-14 11:39:52 +0200104/* various keyword modifiers */
105enum kw_mod {
106 KWM_STD = 0, /* normal */
107 KWM_NO, /* "no" prefixed before the keyword */
108 KWM_DEF, /* "default" prefixed before the keyword */
109};
110
Willy Tarreau13943ab2006-12-31 00:24:10 +0100111/* some of the most common options which are also the easiest to handle */
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100112struct cfg_opt {
Willy Tarreau13943ab2006-12-31 00:24:10 +0100113 const char *name;
114 unsigned int val;
115 unsigned int cap;
Willy Tarreau4fee4e92007-01-06 21:09:17 +0100116 unsigned int checks;
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100117 unsigned int mode;
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100118};
119
120/* proxy->options */
121static const struct cfg_opt cfg_opts[] =
Willy Tarreau13943ab2006-12-31 00:24:10 +0100122{
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100123 { "abortonclose", PR_O_ABRT_CLOSE, PR_CAP_BE, 0, 0 },
124 { "allbackups", PR_O_USE_ALL_BK, PR_CAP_BE, 0, 0 },
125 { "checkcache", PR_O_CHK_CACHE, PR_CAP_BE, 0, PR_MODE_HTTP },
126 { "clitcpka", PR_O_TCP_CLI_KA, PR_CAP_FE, 0, 0 },
127 { "contstats", PR_O_CONTSTATS, PR_CAP_FE, 0, 0 },
128 { "dontlognull", PR_O_NULLNOLOG, PR_CAP_FE, 0, 0 },
129 { "forceclose", PR_O_FORCE_CLO, PR_CAP_FE | PR_CAP_BE, 0, PR_MODE_HTTP },
130 { "http_proxy", PR_O_HTTP_PROXY, PR_CAP_FE | PR_CAP_BE, 0, PR_MODE_HTTP },
131 { "httpclose", PR_O_HTTP_CLOSE, PR_CAP_FE | PR_CAP_BE, 0, PR_MODE_HTTP },
132 { "keepalive", PR_O_KEEPALIVE, PR_CAP_NONE, 0, PR_MODE_HTTP },
133 { "http-server-close", PR_O_SERVER_CLO, PR_CAP_FE | PR_CAP_BE, 0, PR_MODE_HTTP },
134 { "logasap", PR_O_LOGASAP, PR_CAP_FE, 0, 0 },
135 { "nolinger", PR_O_TCP_NOLING, PR_CAP_FE | PR_CAP_BE, 0, 0 },
136 { "persist", PR_O_PERSIST, PR_CAP_BE, 0, 0 },
137 { "redispatch", PR_O_REDISP, PR_CAP_BE, 0, 0 },
138 { "srvtcpka", PR_O_TCP_SRV_KA, PR_CAP_BE, 0, 0 },
Krzysztof Oledzki336d4752007-12-25 02:40:22 +0100139#ifdef TPROXY
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100140 { "transparent", PR_O_TRANSP, PR_CAP_BE, 0, 0 },
Cyril Bonté62846b22010-11-01 19:26:00 +0100141#else
142 { "transparent", 0, 0, 0, 0 },
Willy Tarreau8f922fc2007-01-06 21:11:49 +0100143#endif
144
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100145 { NULL, 0, 0, 0, 0 }
Willy Tarreau13943ab2006-12-31 00:24:10 +0100146};
147
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100148/* proxy->options2 */
149static const struct cfg_opt cfg_opts2[] =
150{
151#ifdef CONFIG_HAP_LINUX_SPLICE
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100152 { "splice-request", PR_O2_SPLIC_REQ, PR_CAP_FE|PR_CAP_BE, 0, 0 },
153 { "splice-response", PR_O2_SPLIC_RTR, PR_CAP_FE|PR_CAP_BE, 0, 0 },
154 { "splice-auto", PR_O2_SPLIC_AUT, PR_CAP_FE|PR_CAP_BE, 0, 0 },
Cyril Bonté62846b22010-11-01 19:26:00 +0100155#else
156 { "splice-request", 0, 0, 0, 0 },
157 { "splice-response", 0, 0, 0, 0 },
158 { "splice-auto", 0, 0, 0, 0 },
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100159#endif
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100160 { "accept-invalid-http-request", PR_O2_REQBUG_OK, PR_CAP_FE, 0, PR_MODE_HTTP },
161 { "accept-invalid-http-response", PR_O2_RSPBUG_OK, PR_CAP_BE, 0, PR_MODE_HTTP },
162 { "dontlog-normal", PR_O2_NOLOGNORM, PR_CAP_FE, 0, 0 },
163 { "log-separate-errors", PR_O2_LOGERRORS, PR_CAP_FE, 0, 0 },
164 { "log-health-checks", PR_O2_LOGHCHKS, PR_CAP_BE, 0, 0 },
165 { "socket-stats", PR_O2_SOCKSTAT, PR_CAP_FE, 0, 0 },
166 { "tcp-smart-accept", PR_O2_SMARTACC, PR_CAP_FE, 0, 0 },
167 { "tcp-smart-connect", PR_O2_SMARTCON, PR_CAP_BE, 0, 0 },
168 { "independant-streams", PR_O2_INDEPSTR, PR_CAP_FE|PR_CAP_BE, 0, 0 },
Jamie Gloudon801a0a32012-08-25 00:18:33 -0400169 { "independent-streams", PR_O2_INDEPSTR, PR_CAP_FE|PR_CAP_BE, 0, 0 },
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100170 { "http-use-proxy-header", PR_O2_USE_PXHDR, PR_CAP_FE, 0, PR_MODE_HTTP },
Willy Tarreaue52564c2010-04-27 22:19:14 +0200171 { "http-pretend-keepalive", PR_O2_FAKE_KA, PR_CAP_FE|PR_CAP_BE, 0, PR_MODE_HTTP },
Willy Tarreau96e31212011-05-30 18:10:30 +0200172 { "http-no-delay", PR_O2_NODELAY, PR_CAP_FE|PR_CAP_BE, 0, PR_MODE_HTTP },
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100173 { NULL, 0, 0, 0 }
174};
Willy Tarreaubaaee002006-06-26 02:48:02 +0200175
Willy Tarreau6daf3432008-01-22 16:44:08 +0100176static char *cursection = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200177static struct proxy defproxy; /* fake proxy used to assign default values on all instances */
178int cfg_maxpconn = DEFAULT_MAXCONN; /* # of simultaneous connections per proxy (-N) */
Willy Tarreau5af24ef2009-03-15 15:23:16 +0100179int cfg_maxconn = 0; /* # of simultaneous connections, (-n) */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200180
Willy Tarreau5b2c3362008-07-09 19:39:06 +0200181/* List head of all known configuration keywords */
182static struct cfg_kw_list cfg_keywords = {
183 .list = LIST_HEAD_INIT(cfg_keywords.list)
184};
185
Willy Tarreaubaaee002006-06-26 02:48:02 +0200186/*
187 * converts <str> to a list of listeners which are dynamically allocated.
188 * The format is "{addr|'*'}:port[-end][,{addr|'*'}:port[-end]]*", where :
189 * - <addr> can be empty or "*" to indicate INADDR_ANY ;
190 * - <port> is a numerical port from 1 to 65535 ;
191 * - <end> indicates to use the range from <port> to <end> instead (inclusive).
192 * This can be repeated as many times as necessary, separated by a coma.
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200193 * Function returns 1 for success or 0 if error. In case of errors, if <err> is
194 * not NULL, it must be a valid pointer to either NULL or a freeable area that
195 * will be replaced with an error message.
Willy Tarreaubaaee002006-06-26 02:48:02 +0200196 */
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200197int str2listener(char *str, struct proxy *curproxy, struct bind_conf *bind_conf, const char *file, int line, char **err)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200198{
199 struct listener *l;
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100200 char *next, *dupstr;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200201 int port, end;
202
203 next = dupstr = strdup(str);
Krzysztof Piotr Oledzkiaeebf9b2009-10-04 15:43:17 +0200204
Willy Tarreaubaaee002006-06-26 02:48:02 +0200205 while (next && *next) {
206 struct sockaddr_storage ss;
207
208 str = next;
209 /* 1) look for the end of the first address */
Krzysztof Piotr Oledzki52d522b2009-01-27 16:57:08 +0100210 if ((next = strchr(str, ',')) != NULL) {
Willy Tarreaubaaee002006-06-26 02:48:02 +0200211 *next++ = 0;
212 }
213
Emeric Bruned760922010-10-22 17:59:25 +0200214 if (*str == '/') {
215 /* sun_path during a soft_stop rename is <unix_bind_prefix><path>.<pid>.<bak|tmp> */
216 /* so compute max path */
217 int prefix_path_len = global.unix_bind.prefix ? strlen(global.unix_bind.prefix) : 0;
218 int max_path_len = (sizeof(((struct sockaddr_un *)&ss)->sun_path) - 1) - (prefix_path_len + 1 + 5 + 1 + 3);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200219
Emeric Bruned760922010-10-22 17:59:25 +0200220 if (strlen(str) > max_path_len) {
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200221 memprintf(err, "socket path '%s' too long (max %d)\n", str, max_path_len);
Emeric Bruned760922010-10-22 17:59:25 +0200222 goto fail;
223 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200224
Willy Tarreaubaaee002006-06-26 02:48:02 +0200225 memset(&ss, 0, sizeof(ss));
Emeric Bruned760922010-10-22 17:59:25 +0200226 ss.ss_family = AF_UNIX;
227 if (global.unix_bind.prefix) {
228 memcpy(((struct sockaddr_un *)&ss)->sun_path, global.unix_bind.prefix, prefix_path_len);
229 strcpy(((struct sockaddr_un *)&ss)->sun_path+prefix_path_len, str);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200230 }
Emeric Bruned760922010-10-22 17:59:25 +0200231 else {
232 strcpy(((struct sockaddr_un *)&ss)->sun_path, str);
233 }
234 port = end = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200235 }
236 else {
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100237 struct sockaddr_storage *ss2;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200238
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100239 ss2 = str2sa_range(str, &port, &end);
240 if (!ss2) {
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200241 memprintf(err, "invalid listening address: '%s'\n", str);
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100242 goto fail;
Emeric Bruned760922010-10-22 17:59:25 +0200243 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200244
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100245 if (!port) {
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200246 memprintf(err, "missing port number: '%s'\n", str);
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100247 goto fail;
Emeric Bruned760922010-10-22 17:59:25 +0200248 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200249
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100250 /* OK the address looks correct */
251 ss = *ss2;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200252
Emeric Bruned760922010-10-22 17:59:25 +0200253 if (port < 1 || port > 65535) {
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200254 memprintf(err, "invalid port '%d' specified for address '%s'.\n", port, str);
Emeric Bruned760922010-10-22 17:59:25 +0200255 goto fail;
256 }
257
258 if (end < 1 || end > 65535) {
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200259 memprintf(err, "invalid port '%d' specified for address '%s'.\n", end, str);
Emeric Bruned760922010-10-22 17:59:25 +0200260 goto fail;
261 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200262 }
263
264 for (; port <= end; port++) {
265 l = (struct listener *)calloc(1, sizeof(struct listener));
Willy Tarreau4348fad2012-09-20 16:48:07 +0200266 LIST_ADDQ(&curproxy->conf.listeners, &l->by_fe);
267 LIST_ADDQ(&bind_conf->listeners, &l->by_bind);
268 l->frontend = curproxy;
269 l->bind_conf = bind_conf;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200270
271 l->fd = -1;
272 l->addr = ss;
Willy Tarreauf7bc57c2012-10-03 00:19:48 +0200273 l->xprt = &raw_sock;
Willy Tarreaue6b98942007-10-29 01:09:36 +0100274 l->state = LI_INIT;
275
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100276 if (ss.ss_family == AF_INET) {
Willy Tarreaubaaee002006-06-26 02:48:02 +0200277 ((struct sockaddr_in *)(&l->addr))->sin_port = htons(port);
Willy Tarreaue6b98942007-10-29 01:09:36 +0100278 tcpv4_add_listener(l);
279 }
Emeric Bruned760922010-10-22 17:59:25 +0200280 else if (ss.ss_family == AF_INET6) {
281 ((struct sockaddr_in6 *)(&l->addr))->sin6_port = htons(port);
282 tcpv6_add_listener(l);
283 }
284 else {
Emeric Bruned760922010-10-22 17:59:25 +0200285 uxst_add_listener(l);
286 }
Krzysztof Piotr Oledzkiaeebf9b2009-10-04 15:43:17 +0200287
Willy Tarreauaf7ad002010-08-31 15:39:26 +0200288 jobs++;
Willy Tarreaue6b98942007-10-29 01:09:36 +0100289 listeners++;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200290 } /* end for(port) */
291 } /* end while(next) */
292 free(dupstr);
Krzysztof Piotr Oledzkiaeebf9b2009-10-04 15:43:17 +0200293 return 1;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200294 fail:
295 free(dupstr);
Krzysztof Piotr Oledzkiaeebf9b2009-10-04 15:43:17 +0200296 return 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200297}
298
Willy Tarreau977b8e42006-12-29 14:19:17 +0100299/*
300 * Sends a warning if proxy <proxy> does not have at least one of the
301 * capabilities in <cap>. An optionnal <hint> may be added at the end
302 * of the warning to help the user. Returns 1 if a warning was emitted
303 * or 0 if the condition is valid.
304 */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100305int warnifnotcap(struct proxy *proxy, int cap, const char *file, int line, const char *arg, const char *hint)
Willy Tarreau977b8e42006-12-29 14:19:17 +0100306{
307 char *msg;
308
309 switch (cap) {
310 case PR_CAP_BE: msg = "no backend"; break;
311 case PR_CAP_FE: msg = "no frontend"; break;
312 case PR_CAP_RS: msg = "no ruleset"; break;
313 case PR_CAP_BE|PR_CAP_FE: msg = "neither frontend nor backend"; break;
314 default: msg = "not enough"; break;
315 }
316
317 if (!(proxy->cap & cap)) {
318 Warning("parsing [%s:%d] : '%s' ignored because %s '%s' has %s capability.%s\n",
Willy Tarreau2b5652f2006-12-31 17:46:05 +0100319 file, line, arg, proxy_type_str(proxy), proxy->id, msg, hint ? hint : "");
Willy Tarreau977b8e42006-12-29 14:19:17 +0100320 return 1;
321 }
322 return 0;
323}
Willy Tarreaubaaee002006-06-26 02:48:02 +0200324
Willy Tarreau61d18892009-03-31 10:49:21 +0200325/* Report a warning if a rule is placed after a 'block' rule.
326 * Return 1 if the warning has been emitted, otherwise 0.
327 */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100328int warnif_rule_after_block(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200329{
330 if (!LIST_ISEMPTY(&proxy->block_cond)) {
331 Warning("parsing [%s:%d] : a '%s' rule placed after a 'block' rule will still be processed before.\n",
332 file, line, arg);
333 return 1;
334 }
335 return 0;
336}
337
338/* Report a warning if a rule is placed after a reqrewrite rule.
339 * Return 1 if the warning has been emitted, otherwise 0.
340 */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100341int warnif_rule_after_reqxxx(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200342{
343 if (proxy->req_exp) {
344 Warning("parsing [%s:%d] : a '%s' rule placed after a 'reqxxx' rule will still be processed before.\n",
345 file, line, arg);
346 return 1;
347 }
348 return 0;
349}
350
351/* Report a warning if a rule is placed after a reqadd rule.
352 * Return 1 if the warning has been emitted, otherwise 0.
353 */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100354int warnif_rule_after_reqadd(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200355{
Willy Tarreaudeb9ed82010-01-03 21:03:22 +0100356 if (!LIST_ISEMPTY(&proxy->req_add)) {
Willy Tarreau61d18892009-03-31 10:49:21 +0200357 Warning("parsing [%s:%d] : a '%s' rule placed after a 'reqadd' rule will still be processed before.\n",
358 file, line, arg);
359 return 1;
360 }
361 return 0;
362}
363
364/* Report a warning if a rule is placed after a redirect rule.
365 * Return 1 if the warning has been emitted, otherwise 0.
366 */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100367int warnif_rule_after_redirect(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200368{
369 if (!LIST_ISEMPTY(&proxy->redirect_rules)) {
370 Warning("parsing [%s:%d] : a '%s' rule placed after a 'redirect' rule will still be processed before.\n",
371 file, line, arg);
372 return 1;
373 }
374 return 0;
375}
376
377/* Report a warning if a rule is placed after a 'use_backend' rule.
378 * Return 1 if the warning has been emitted, otherwise 0.
379 */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100380int warnif_rule_after_use_backend(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200381{
382 if (!LIST_ISEMPTY(&proxy->switching_rules)) {
383 Warning("parsing [%s:%d] : a '%s' rule placed after a 'use_backend' rule will still be processed before.\n",
384 file, line, arg);
385 return 1;
386 }
387 return 0;
388}
389
390/* report a warning if a block rule is dangerously placed */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100391int warnif_misplaced_block(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200392{
393 return warnif_rule_after_reqxxx(proxy, file, line, arg) ||
394 warnif_rule_after_reqadd(proxy, file, line, arg) ||
395 warnif_rule_after_redirect(proxy, file, line, arg) ||
396 warnif_rule_after_use_backend(proxy, file, line, arg);
397}
398
399/* report a warning if a reqxxx rule is dangerously placed */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100400int warnif_misplaced_reqxxx(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200401{
402 return warnif_rule_after_reqadd(proxy, file, line, arg) ||
403 warnif_rule_after_redirect(proxy, file, line, arg) ||
404 warnif_rule_after_use_backend(proxy, file, line, arg);
405}
406
407/* report a warning if a reqadd rule is dangerously placed */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100408int warnif_misplaced_reqadd(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200409{
410 return warnif_rule_after_redirect(proxy, file, line, arg) ||
411 warnif_rule_after_use_backend(proxy, file, line, arg);
412}
413
Willy Tarreauf1e98b82010-01-28 17:59:39 +0100414/* Report it if a request ACL condition uses some response-only parameters. It
415 * returns either 0 or ERR_WARN so that its result can be or'ed with err_code.
416 * Note that <cond> may be NULL and then will be ignored.
417 */
418static int warnif_cond_requires_resp(const struct acl_cond *cond, const char *file, int line)
419{
420 struct acl *acl;
421
422 if (!cond || !(cond->requires & ACL_USE_RTR_ANY))
423 return 0;
424
425 acl = cond_find_require(cond, ACL_USE_RTR_ANY);
426 Warning("parsing [%s:%d] : acl '%s' involves some response-only criteria which will be ignored.\n",
427 file, line, acl ? acl->name : "(unknown)");
428 return ERR_WARN;
429}
430
Willy Tarreaufdb563c2010-01-31 15:43:27 +0100431/* Report it if a request ACL condition uses some request-only volatile parameters.
432 * It returns either 0 or ERR_WARN so that its result can be or'ed with err_code.
433 * Note that <cond> may be NULL and then will be ignored.
434 */
435static int warnif_cond_requires_req(const struct acl_cond *cond, const char *file, int line)
436{
437 struct acl *acl;
438
439 if (!cond || !(cond->requires & ACL_USE_REQ_VOLATILE))
440 return 0;
441
442 acl = cond_find_require(cond, ACL_USE_REQ_VOLATILE);
443 Warning("parsing [%s:%d] : acl '%s' involves some volatile request-only criteria which will be ignored.\n",
444 file, line, acl ? acl->name : "(unknown)");
445 return ERR_WARN;
446}
447
Willy Tarreauf1e98b82010-01-28 17:59:39 +0100448
Willy Tarreaubaaee002006-06-26 02:48:02 +0200449/*
Willy Tarreau058e9072009-07-20 09:30:05 +0200450 * parse a line in a <global> section. Returns the error code, 0 if OK, or
451 * any combination of :
452 * - ERR_ABORT: must abort ASAP
453 * - ERR_FATAL: we can continue parsing but not start the service
454 * - ERR_WARN: a warning has been emitted
455 * - ERR_ALERT: an alert has been emitted
456 * Only the two first ones can stop processing, the two others are just
457 * indicators.
Willy Tarreaubaaee002006-06-26 02:48:02 +0200458 */
Willy Tarreau3842f002009-06-14 11:39:52 +0200459int cfg_parse_global(const char *file, int linenum, char **args, int kwm)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200460{
Willy Tarreau058e9072009-07-20 09:30:05 +0200461 int err_code = 0;
Willy Tarreau0a3dd742012-05-08 19:47:01 +0200462 char *errmsg = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200463
464 if (!strcmp(args[0], "global")) { /* new section */
465 /* no option, nothing special to do */
Willy Tarreau058e9072009-07-20 09:30:05 +0200466 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200467 }
Emeric Brunc8e8d122012-10-02 18:42:10 +0200468 else if (!strcmp(args[0], "ca-base")) {
469#ifdef USE_OPENSSL
470 if (global.ca_base != NULL) {
471 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
472 err_code |= ERR_ALERT;
473 goto out;
474 }
475 if (*(args[1]) == 0) {
476 Alert("parsing [%s:%d] : '%s' expects a directory path as an argument.\n", file, linenum, args[0]);
477 err_code |= ERR_ALERT | ERR_FATAL;
478 goto out;
479 }
480 global.ca_base = strdup(args[1]);
481#else
482 Alert("parsing [%s:%d] : '%s' is not implemented.\n", file, linenum, args[0]);
483 err_code |= ERR_ALERT | ERR_FATAL;
484 goto out;
485#endif
486 }
487 else if (!strcmp(args[0], "crt-base")) {
488#ifdef USE_OPENSSL
489 if (global.crt_base != NULL) {
490 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
491 err_code |= ERR_ALERT;
492 goto out;
493 }
494 if (*(args[1]) == 0) {
495 Alert("parsing [%s:%d] : '%s' expects a directory path as an argument.\n", file, linenum, args[0]);
496 err_code |= ERR_ALERT | ERR_FATAL;
497 goto out;
498 }
499 global.crt_base = strdup(args[1]);
500#else
501 Alert("parsing [%s:%d] : '%s' is not implemented.\n", file, linenum, args[0]);
502 err_code |= ERR_ALERT | ERR_FATAL;
503 goto out;
504#endif
505 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200506 else if (!strcmp(args[0], "daemon")) {
507 global.mode |= MODE_DAEMON;
508 }
509 else if (!strcmp(args[0], "debug")) {
510 global.mode |= MODE_DEBUG;
511 }
512 else if (!strcmp(args[0], "noepoll")) {
Willy Tarreau43b78992009-01-25 15:42:27 +0100513 global.tune.options &= ~GTUNE_USE_EPOLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200514 }
Willy Tarreaude99e992007-04-16 00:53:59 +0200515 else if (!strcmp(args[0], "nosepoll")) {
Willy Tarreau43b78992009-01-25 15:42:27 +0100516 global.tune.options &= ~GTUNE_USE_SEPOLL;
Willy Tarreaude99e992007-04-16 00:53:59 +0200517 }
518 else if (!strcmp(args[0], "nokqueue")) {
Willy Tarreau43b78992009-01-25 15:42:27 +0100519 global.tune.options &= ~GTUNE_USE_KQUEUE;
Willy Tarreaude99e992007-04-16 00:53:59 +0200520 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200521 else if (!strcmp(args[0], "nopoll")) {
Willy Tarreau43b78992009-01-25 15:42:27 +0100522 global.tune.options &= ~GTUNE_USE_POLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200523 }
Willy Tarreau3ab68cf2009-01-25 16:03:28 +0100524 else if (!strcmp(args[0], "nosplice")) {
525 global.tune.options &= ~GTUNE_USE_SPLICE;
526 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200527 else if (!strcmp(args[0], "quiet")) {
528 global.mode |= MODE_QUIET;
529 }
Willy Tarreau1db37712007-06-03 17:16:49 +0200530 else if (!strcmp(args[0], "tune.maxpollevents")) {
531 if (global.tune.maxpollevents != 0) {
532 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200533 err_code |= ERR_ALERT;
534 goto out;
Willy Tarreau1db37712007-06-03 17:16:49 +0200535 }
536 if (*(args[1]) == 0) {
537 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200538 err_code |= ERR_ALERT | ERR_FATAL;
539 goto out;
Willy Tarreau1db37712007-06-03 17:16:49 +0200540 }
541 global.tune.maxpollevents = atol(args[1]);
542 }
Willy Tarreaua0250ba2008-01-06 11:22:57 +0100543 else if (!strcmp(args[0], "tune.maxaccept")) {
544 if (global.tune.maxaccept != 0) {
545 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200546 err_code |= ERR_ALERT;
547 goto out;
Willy Tarreaua0250ba2008-01-06 11:22:57 +0100548 }
549 if (*(args[1]) == 0) {
550 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200551 err_code |= ERR_ALERT | ERR_FATAL;
552 goto out;
Willy Tarreaua0250ba2008-01-06 11:22:57 +0100553 }
554 global.tune.maxaccept = atol(args[1]);
555 }
Willy Tarreau43961d52010-10-04 20:39:20 +0200556 else if (!strcmp(args[0], "tune.chksize")) {
557 if (*(args[1]) == 0) {
558 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
559 err_code |= ERR_ALERT | ERR_FATAL;
560 goto out;
561 }
562 global.tune.chksize = atol(args[1]);
563 }
Emeric Brunfc32aca2012-09-03 12:10:29 +0200564#ifdef USE_OPENSSL
565 else if (!strcmp(args[0], "tune.sslcachesize")) {
566 if (*(args[1]) == 0) {
567 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
568 err_code |= ERR_ALERT | ERR_FATAL;
569 goto out;
570 }
571 global.tune.sslcachesize = atol(args[1]);
572 }
573#endif
Willy Tarreau27a674e2009-08-17 07:23:33 +0200574 else if (!strcmp(args[0], "tune.bufsize")) {
575 if (*(args[1]) == 0) {
576 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
577 err_code |= ERR_ALERT | ERR_FATAL;
578 goto out;
579 }
580 global.tune.bufsize = atol(args[1]);
581 if (global.tune.maxrewrite >= global.tune.bufsize / 2)
582 global.tune.maxrewrite = global.tune.bufsize / 2;
David du Colombier7af46052012-05-16 14:16:48 +0200583 trashlen = global.tune.bufsize;
584 trash = realloc(trash, trashlen);
Willy Tarreau27a674e2009-08-17 07:23:33 +0200585 }
586 else if (!strcmp(args[0], "tune.maxrewrite")) {
587 if (*(args[1]) == 0) {
588 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
589 err_code |= ERR_ALERT | ERR_FATAL;
590 goto out;
591 }
592 global.tune.maxrewrite = atol(args[1]);
593 if (global.tune.maxrewrite >= global.tune.bufsize / 2)
594 global.tune.maxrewrite = global.tune.bufsize / 2;
595 }
Willy Tarreaue803de22010-01-21 17:43:04 +0100596 else if (!strcmp(args[0], "tune.rcvbuf.client")) {
597 if (global.tune.client_rcvbuf != 0) {
598 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
599 err_code |= ERR_ALERT;
600 goto out;
601 }
602 if (*(args[1]) == 0) {
603 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
604 err_code |= ERR_ALERT | ERR_FATAL;
605 goto out;
606 }
607 global.tune.client_rcvbuf = atol(args[1]);
608 }
609 else if (!strcmp(args[0], "tune.rcvbuf.server")) {
610 if (global.tune.server_rcvbuf != 0) {
611 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
612 err_code |= ERR_ALERT;
613 goto out;
614 }
615 if (*(args[1]) == 0) {
616 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
617 err_code |= ERR_ALERT | ERR_FATAL;
618 goto out;
619 }
620 global.tune.server_rcvbuf = atol(args[1]);
621 }
622 else if (!strcmp(args[0], "tune.sndbuf.client")) {
623 if (global.tune.client_sndbuf != 0) {
624 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
625 err_code |= ERR_ALERT;
626 goto out;
627 }
628 if (*(args[1]) == 0) {
629 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
630 err_code |= ERR_ALERT | ERR_FATAL;
631 goto out;
632 }
633 global.tune.client_sndbuf = atol(args[1]);
634 }
635 else if (!strcmp(args[0], "tune.sndbuf.server")) {
636 if (global.tune.server_sndbuf != 0) {
637 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
638 err_code |= ERR_ALERT;
639 goto out;
640 }
641 if (*(args[1]) == 0) {
642 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
643 err_code |= ERR_ALERT | ERR_FATAL;
644 goto out;
645 }
646 global.tune.server_sndbuf = atol(args[1]);
647 }
Willy Tarreaubd9a0a72011-10-23 21:14:29 +0200648 else if (!strcmp(args[0], "tune.pipesize")) {
649 if (*(args[1]) == 0) {
650 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
651 err_code |= ERR_ALERT | ERR_FATAL;
652 goto out;
653 }
654 global.tune.pipesize = atol(args[1]);
655 }
Willy Tarreauac1932d2011-10-24 19:14:41 +0200656 else if (!strcmp(args[0], "tune.http.maxhdr")) {
657 if (*(args[1]) == 0) {
658 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
659 err_code |= ERR_ALERT | ERR_FATAL;
660 goto out;
661 }
662 global.tune.max_http_hdr = atol(args[1]);
663 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200664 else if (!strcmp(args[0], "uid")) {
665 if (global.uid != 0) {
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200666 Alert("parsing [%s:%d] : user/uid already specified. Continuing.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +0200667 err_code |= ERR_ALERT;
668 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200669 }
670 if (*(args[1]) == 0) {
671 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200672 err_code |= ERR_ALERT | ERR_FATAL;
673 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200674 }
675 global.uid = atol(args[1]);
676 }
677 else if (!strcmp(args[0], "gid")) {
678 if (global.gid != 0) {
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200679 Alert("parsing [%s:%d] : group/gid already specified. Continuing.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +0200680 err_code |= ERR_ALERT;
681 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200682 }
683 if (*(args[1]) == 0) {
684 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200685 err_code |= ERR_ALERT | ERR_FATAL;
686 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200687 }
688 global.gid = atol(args[1]);
689 }
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200690 /* user/group name handling */
691 else if (!strcmp(args[0], "user")) {
692 struct passwd *ha_user;
693 if (global.uid != 0) {
694 Alert("parsing [%s:%d] : user/uid already specified. Continuing.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +0200695 err_code |= ERR_ALERT;
696 goto out;
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200697 }
698 errno = 0;
699 ha_user = getpwnam(args[1]);
700 if (ha_user != NULL) {
701 global.uid = (int)ha_user->pw_uid;
702 }
703 else {
704 Alert("parsing [%s:%d] : cannot find user id for '%s' (%d:%s)\n", file, linenum, args[1], errno, strerror(errno));
Willy Tarreau058e9072009-07-20 09:30:05 +0200705 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200706 }
707 }
708 else if (!strcmp(args[0], "group")) {
709 struct group *ha_group;
710 if (global.gid != 0) {
Willy Tarreau1772ece2009-04-03 14:49:12 +0200711 Alert("parsing [%s:%d] : gid/group was already specified. Continuing.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +0200712 err_code |= ERR_ALERT;
713 goto out;
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200714 }
715 errno = 0;
716 ha_group = getgrnam(args[1]);
717 if (ha_group != NULL) {
718 global.gid = (int)ha_group->gr_gid;
719 }
720 else {
721 Alert("parsing [%s:%d] : cannot find group id for '%s' (%d:%s)\n", file, linenum, args[1], errno, strerror(errno));
Willy Tarreau058e9072009-07-20 09:30:05 +0200722 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200723 }
724 }
725 /* end of user/group name handling*/
Willy Tarreaubaaee002006-06-26 02:48:02 +0200726 else if (!strcmp(args[0], "nbproc")) {
727 if (global.nbproc != 0) {
728 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200729 err_code |= ERR_ALERT;
730 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200731 }
732 if (*(args[1]) == 0) {
733 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200734 err_code |= ERR_ALERT | ERR_FATAL;
735 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200736 }
737 global.nbproc = atol(args[1]);
738 }
739 else if (!strcmp(args[0], "maxconn")) {
740 if (global.maxconn != 0) {
741 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200742 err_code |= ERR_ALERT;
743 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200744 }
745 if (*(args[1]) == 0) {
746 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200747 err_code |= ERR_ALERT | ERR_FATAL;
748 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200749 }
750 global.maxconn = atol(args[1]);
751#ifdef SYSTEM_MAXCONN
752 if (global.maxconn > DEFAULT_MAXCONN && cfg_maxconn <= DEFAULT_MAXCONN) {
753 Alert("parsing [%s:%d] : maxconn value %d too high for this system.\nLimiting to %d. Please use '-n' to force the value.\n", file, linenum, global.maxconn, DEFAULT_MAXCONN);
754 global.maxconn = DEFAULT_MAXCONN;
Willy Tarreau058e9072009-07-20 09:30:05 +0200755 err_code |= ERR_ALERT;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200756 }
757#endif /* SYSTEM_MAXCONN */
758 }
Willy Tarreau403edff2012-09-06 11:58:37 +0200759 else if (!strcmp(args[0], "maxsslconn")) {
760#ifdef USE_OPENSSL
761 if (*(args[1]) == 0) {
762 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
763 err_code |= ERR_ALERT | ERR_FATAL;
764 goto out;
765 }
766 global.maxsslconn = atol(args[1]);
767#else
Emeric Brun0914df82012-10-02 18:45:42 +0200768 Alert("parsing [%s:%d] : '%s' is not implemented.\n", file, linenum, args[0]);
769 err_code |= ERR_ALERT | ERR_FATAL;
770 goto out;
Willy Tarreau403edff2012-09-06 11:58:37 +0200771#endif
772 }
Willy Tarreau81c25d02011-09-07 15:17:21 +0200773 else if (!strcmp(args[0], "maxconnrate")) {
774 if (global.cps_lim != 0) {
775 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
776 err_code |= ERR_ALERT;
777 goto out;
778 }
779 if (*(args[1]) == 0) {
780 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
781 err_code |= ERR_ALERT | ERR_FATAL;
782 goto out;
783 }
784 global.cps_lim = atol(args[1]);
785 }
Willy Tarreau3ec79b92009-01-18 20:39:42 +0100786 else if (!strcmp(args[0], "maxpipes")) {
787 if (global.maxpipes != 0) {
788 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200789 err_code |= ERR_ALERT;
790 goto out;
Willy Tarreau3ec79b92009-01-18 20:39:42 +0100791 }
792 if (*(args[1]) == 0) {
793 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200794 err_code |= ERR_ALERT | ERR_FATAL;
795 goto out;
Willy Tarreau3ec79b92009-01-18 20:39:42 +0100796 }
797 global.maxpipes = atol(args[1]);
798 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200799 else if (!strcmp(args[0], "ulimit-n")) {
800 if (global.rlimit_nofile != 0) {
801 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200802 err_code |= ERR_ALERT;
803 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200804 }
805 if (*(args[1]) == 0) {
806 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200807 err_code |= ERR_ALERT | ERR_FATAL;
808 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200809 }
810 global.rlimit_nofile = atol(args[1]);
811 }
812 else if (!strcmp(args[0], "chroot")) {
813 if (global.chroot != NULL) {
814 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200815 err_code |= ERR_ALERT;
816 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200817 }
818 if (*(args[1]) == 0) {
819 Alert("parsing [%s:%d] : '%s' expects a directory as an argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200820 err_code |= ERR_ALERT | ERR_FATAL;
821 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200822 }
823 global.chroot = strdup(args[1]);
824 }
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +0200825 else if (!strcmp(args[0], "description")) {
826 int i, len=0;
827 char *d;
828
829 if (!*args[1]) {
830 Alert("parsing [%s:%d]: '%s' expects a string argument.\n",
831 file, linenum, args[0]);
832 err_code |= ERR_ALERT | ERR_FATAL;
833 goto out;
834 }
835
836 for(i=1; *args[i]; i++)
837 len += strlen(args[i])+1;
838
839 if (global.desc)
840 free(global.desc);
841
842 global.desc = d = (char *)calloc(1, len);
843
844 d += sprintf(d, "%s", args[1]);
845 for(i=2; *args[i]; i++)
846 d += sprintf(d, " %s", args[i]);
847 }
848 else if (!strcmp(args[0], "node")) {
849 int i;
850 char c;
851
852 for (i=0; args[1][i]; i++) {
853 c = args[1][i];
Willy Tarreau88e05812010-03-03 00:16:00 +0100854 if (!isupper((unsigned char)c) && !islower((unsigned char)c) &&
855 !isdigit((unsigned char)c) && c != '_' && c != '-' && c != '.')
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +0200856 break;
857 }
858
859 if (!i || args[1][i]) {
860 Alert("parsing [%s:%d]: '%s' requires valid node name - non-empty string"
861 " with digits(0-9), letters(A-Z, a-z), dot(.), hyphen(-) or underscode(_).\n",
862 file, linenum, args[0]);
863 err_code |= ERR_ALERT | ERR_FATAL;
864 goto out;
865 }
866
867 if (global.node)
868 free(global.node);
869
870 global.node = strdup(args[1]);
871 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200872 else if (!strcmp(args[0], "pidfile")) {
873 if (global.pidfile != NULL) {
874 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200875 err_code |= ERR_ALERT;
876 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200877 }
878 if (*(args[1]) == 0) {
879 Alert("parsing [%s:%d] : '%s' expects a file name as an argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200880 err_code |= ERR_ALERT | ERR_FATAL;
881 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200882 }
883 global.pidfile = strdup(args[1]);
884 }
Emeric Bruned760922010-10-22 17:59:25 +0200885 else if (!strcmp(args[0], "unix-bind")) {
886 int cur_arg = 1;
887 while (*(args[cur_arg])) {
888 if (!strcmp(args[cur_arg], "prefix")) {
889 if (global.unix_bind.prefix != NULL) {
890 Alert("parsing [%s:%d] : unix-bind '%s' already specified. Continuing.\n", file, linenum, args[cur_arg]);
891 err_code |= ERR_ALERT;
892 cur_arg += 2;
893 continue;
894 }
895
896 if (*(args[cur_arg+1]) == 0) {
897 Alert("parsing [%s:%d] : unix_bind '%s' expects a path as an argument.\n", file, linenum, args[cur_arg]);
898 err_code |= ERR_ALERT | ERR_FATAL;
899 goto out;
900 }
901 global.unix_bind.prefix = strdup(args[cur_arg+1]);
902 cur_arg += 2;
903 continue;
904 }
905
906 if (!strcmp(args[cur_arg], "mode")) {
907
908 global.unix_bind.ux.mode = strtol(args[cur_arg + 1], NULL, 8);
909 cur_arg += 2;
910 continue;
911 }
912
913 if (!strcmp(args[cur_arg], "uid")) {
914
915 global.unix_bind.ux.uid = atol(args[cur_arg + 1 ]);
916 cur_arg += 2;
917 continue;
918 }
919
920 if (!strcmp(args[cur_arg], "gid")) {
921
922 global.unix_bind.ux.gid = atol(args[cur_arg + 1 ]);
923 cur_arg += 2;
924 continue;
925 }
926
927 if (!strcmp(args[cur_arg], "user")) {
928 struct passwd *user;
929
930 user = getpwnam(args[cur_arg + 1]);
931 if (!user) {
932 Alert("parsing [%s:%d] : '%s' : '%s' unknown user.\n",
933 file, linenum, args[0], args[cur_arg + 1 ]);
934 err_code |= ERR_ALERT | ERR_FATAL;
935 goto out;
936 }
937
938 global.unix_bind.ux.uid = user->pw_uid;
939 cur_arg += 2;
940 continue;
941 }
942
943 if (!strcmp(args[cur_arg], "group")) {
944 struct group *group;
945
946 group = getgrnam(args[cur_arg + 1]);
947 if (!group) {
948 Alert("parsing [%s:%d] : '%s' : '%s' unknown group.\n",
949 file, linenum, args[0], args[cur_arg + 1 ]);
950 err_code |= ERR_ALERT | ERR_FATAL;
951 goto out;
952 }
953
954 global.unix_bind.ux.gid = group->gr_gid;
955 cur_arg += 2;
956 continue;
957 }
958
Willy Tarreaub48f9582011-09-05 01:17:06 +0200959 Alert("parsing [%s:%d] : '%s' only supports the 'prefix', 'mode', 'uid', 'gid', 'user' and 'group' options.\n",
Emeric Bruned760922010-10-22 17:59:25 +0200960 file, linenum, args[0]);
961 err_code |= ERR_ALERT | ERR_FATAL;
962 goto out;
963 }
964 }
William Lallemand0f99e342011-10-12 17:50:54 +0200965 else if (!strcmp(args[0], "log") && kwm == KWM_NO) { /* no log */
966 /* delete previous herited or defined syslog servers */
967 struct logsrv *back;
968 struct logsrv *tmp;
969
970 if (*(args[1]) != 0) {
971 Alert("parsing [%s:%d]:%s : 'no log' does not expect arguments.\n", file, linenum, args[1]);
972 err_code |= ERR_ALERT | ERR_FATAL;
973 goto out;
974 }
975
976 list_for_each_entry_safe(tmp, back, &global.logsrvs, list) {
977 LIST_DEL(&tmp->list);
978 free(tmp);
979 }
980 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200981 else if (!strcmp(args[0], "log")) { /* syslog server address */
William Lallemand0f99e342011-10-12 17:50:54 +0200982 struct logsrv *logsrv;
983
Willy Tarreaubaaee002006-06-26 02:48:02 +0200984 if (*(args[1]) == 0 || *(args[2]) == 0) {
985 Alert("parsing [%s:%d] : '%s' expects <address> and <facility> as arguments.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200986 err_code |= ERR_ALERT | ERR_FATAL;
987 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200988 }
William Lallemand0f99e342011-10-12 17:50:54 +0200989
990 logsrv = calloc(1, sizeof(struct logsrv));
991
992 logsrv->facility = get_log_facility(args[2]);
993 if (logsrv->facility < 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +0200994 Alert("parsing [%s:%d] : unknown log facility '%s'\n", file, linenum, args[2]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200995 err_code |= ERR_ALERT | ERR_FATAL;
William Lallemand0f99e342011-10-12 17:50:54 +0200996 logsrv->facility = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200997 }
998
William Lallemand0f99e342011-10-12 17:50:54 +0200999 logsrv->level = 7; /* max syslog level = debug */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001000 if (*(args[3])) {
William Lallemand0f99e342011-10-12 17:50:54 +02001001 logsrv->level = get_log_level(args[3]);
1002 if (logsrv->level < 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02001003 Alert("parsing [%s:%d] : unknown optional log level '%s'\n", file, linenum, args[3]);
Willy Tarreau058e9072009-07-20 09:30:05 +02001004 err_code |= ERR_ALERT | ERR_FATAL;
William Lallemand0f99e342011-10-12 17:50:54 +02001005 logsrv->level = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001006 }
1007 }
1008
William Lallemand0f99e342011-10-12 17:50:54 +02001009 logsrv->minlvl = 0; /* limit syslog level to this level (emerg) */
Willy Tarreauf7edefa2009-05-10 17:20:05 +02001010 if (*(args[4])) {
William Lallemand0f99e342011-10-12 17:50:54 +02001011 logsrv->minlvl = get_log_level(args[4]);
1012 if (logsrv->minlvl < 0) {
Willy Tarreauf7edefa2009-05-10 17:20:05 +02001013 Alert("parsing [%s:%d] : unknown optional minimum log level '%s'\n", file, linenum, args[4]);
Willy Tarreau058e9072009-07-20 09:30:05 +02001014 err_code |= ERR_ALERT | ERR_FATAL;
William Lallemand0f99e342011-10-12 17:50:54 +02001015 logsrv->minlvl = 0;
Willy Tarreauf7edefa2009-05-10 17:20:05 +02001016 }
1017 }
1018
Robert Tsai81ae1952007-12-05 10:47:29 +01001019 if (args[1][0] == '/') {
David du Colombier11bcb6c2011-03-24 12:23:00 +01001020 struct sockaddr_storage *sk = (struct sockaddr_storage *)str2sun(args[1]);
Willy Tarreaud5191e72010-02-09 20:50:45 +01001021 if (!sk) {
1022 Alert("parsing [%s:%d] : Socket path '%s' too long (max %d)\n", file, linenum,
David du Colombier11bcb6c2011-03-24 12:23:00 +01001023 args[1], (int)sizeof(((struct sockaddr_un *)&sk)->sun_path) - 1);
Willy Tarreaud5191e72010-02-09 20:50:45 +01001024 err_code |= ERR_ALERT | ERR_FATAL;
William Lallemand0f99e342011-10-12 17:50:54 +02001025 free(logsrv);
Willy Tarreaud5191e72010-02-09 20:50:45 +01001026 goto out;
1027 }
William Lallemand0f99e342011-10-12 17:50:54 +02001028 logsrv->addr = *sk;
Robert Tsai81ae1952007-12-05 10:47:29 +01001029 } else {
David du Colombier6f5ccb12011-03-10 22:26:24 +01001030 struct sockaddr_storage *sk = str2sa(args[1]);
David du Colombier11bcb6c2011-03-24 12:23:00 +01001031 if (!sk) {
Willy Tarreaud5191e72010-02-09 20:50:45 +01001032 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[1]);
1033 err_code |= ERR_ALERT | ERR_FATAL;
William Lallemand0f99e342011-10-12 17:50:54 +02001034 free(logsrv);
Willy Tarreaud5191e72010-02-09 20:50:45 +01001035 goto out;
1036 }
William Lallemand0f99e342011-10-12 17:50:54 +02001037 logsrv->addr = *sk;
1038 if (!get_host_port(&logsrv->addr))
1039 set_host_port(&logsrv->addr, SYSLOG_PORT);
Robert Tsai81ae1952007-12-05 10:47:29 +01001040 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001041
William Lallemand0f99e342011-10-12 17:50:54 +02001042 LIST_ADDQ(&global.logsrvs, &logsrv->list);
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001043 }
Joe Williamsdf5b38f2010-12-29 17:05:48 +01001044 else if (!strcmp(args[0], "log-send-hostname")) { /* set the hostname in syslog header */
1045 char *name;
1046 int len;
1047
1048 if (global.log_send_hostname != NULL) {
1049 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
1050 err_code |= ERR_ALERT;
1051 goto out;
1052 }
1053
1054 if (*(args[1]))
1055 name = args[1];
1056 else
1057 name = hostname;
1058
1059 len = strlen(name);
1060
1061 /* We'll add a space after the name to respect the log format */
1062 free(global.log_send_hostname);
1063 global.log_send_hostname = malloc(len + 2);
1064 snprintf(global.log_send_hostname, len + 2, "%s ", name);
1065 }
Kevinm48936af2010-12-22 16:08:21 +00001066 else if (!strcmp(args[0], "log-tag")) { /* tag to report to syslog */
1067 if (*(args[1]) == 0) {
1068 Alert("parsing [%s:%d] : '%s' expects a tag for use in syslog.\n", file, linenum, args[0]);
1069 err_code |= ERR_ALERT | ERR_FATAL;
1070 goto out;
1071 }
1072 free(global.log_tag);
1073 global.log_tag = strdup(args[1]);
1074 }
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001075 else if (!strcmp(args[0], "spread-checks")) { /* random time between checks (0-50) */
1076 if (global.spread_checks != 0) {
1077 Alert("parsing [%s:%d]: spread-checks already specified. Continuing.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +02001078 err_code |= ERR_ALERT;
1079 goto out;
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001080 }
1081 if (*(args[1]) == 0) {
1082 Alert("parsing [%s:%d]: '%s' expects an integer argument (0..50).\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +02001083 err_code |= ERR_ALERT | ERR_FATAL;
1084 goto out;
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001085 }
1086 global.spread_checks = atol(args[1]);
1087 if (global.spread_checks < 0 || global.spread_checks > 50) {
1088 Alert("parsing [%s:%d]: 'spread-checks' needs a positive value in range 0..50.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +02001089 err_code |= ERR_ALERT | ERR_FATAL;
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001090 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001091 }
1092 else {
Willy Tarreau5b2c3362008-07-09 19:39:06 +02001093 struct cfg_kw_list *kwl;
1094 int index;
Willy Tarreau39f23b62008-07-09 20:22:56 +02001095 int rc;
Willy Tarreau5b2c3362008-07-09 19:39:06 +02001096
1097 list_for_each_entry(kwl, &cfg_keywords.list, list) {
1098 for (index = 0; kwl->kw[index].kw != NULL; index++) {
1099 if (kwl->kw[index].section != CFG_GLOBAL)
1100 continue;
1101 if (strcmp(kwl->kw[index].kw, args[0]) == 0) {
1102 /* prepare error message just in case */
David du Colombier7af46052012-05-16 14:16:48 +02001103 snprintf(trash, trashlen,
Willy Tarreau5b2c3362008-07-09 19:39:06 +02001104 "error near '%s' in '%s' section", args[0], "global");
Willy Tarreau28a47d62012-09-18 20:02:48 +02001105 rc = kwl->kw[index].parse(args, CFG_GLOBAL, NULL, NULL, file, linenum, &errmsg);
Willy Tarreau39f23b62008-07-09 20:22:56 +02001106 if (rc < 0) {
Willy Tarreau0a3dd742012-05-08 19:47:01 +02001107 Alert("parsing [%s:%d] : %s\n", file, linenum, errmsg);
Willy Tarreau058e9072009-07-20 09:30:05 +02001108 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreau5b2c3362008-07-09 19:39:06 +02001109 }
Willy Tarreau39f23b62008-07-09 20:22:56 +02001110 else if (rc > 0) {
Willy Tarreau0a3dd742012-05-08 19:47:01 +02001111 Warning("parsing [%s:%d] : %s\n", file, linenum, errmsg);
Willy Tarreau058e9072009-07-20 09:30:05 +02001112 err_code |= ERR_WARN;
1113 goto out;
Willy Tarreau39f23b62008-07-09 20:22:56 +02001114 }
Willy Tarreau058e9072009-07-20 09:30:05 +02001115 goto out;
Willy Tarreau5b2c3362008-07-09 19:39:06 +02001116 }
1117 }
1118 }
1119
Willy Tarreaubaaee002006-06-26 02:48:02 +02001120 Alert("parsing [%s:%d] : unknown keyword '%s' in '%s' section\n", file, linenum, args[0], "global");
Willy Tarreau058e9072009-07-20 09:30:05 +02001121 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001122 }
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02001123
Willy Tarreau058e9072009-07-20 09:30:05 +02001124 out:
Willy Tarreau0a3dd742012-05-08 19:47:01 +02001125 free(errmsg);
Willy Tarreau058e9072009-07-20 09:30:05 +02001126 return err_code;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001127}
1128
Willy Tarreau915e1eb2009-06-22 15:48:36 +02001129void init_default_instance()
Willy Tarreaubaaee002006-06-26 02:48:02 +02001130{
Willy Tarreau97cb7802010-01-03 20:23:58 +01001131 init_new_proxy(&defproxy);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001132 defproxy.mode = PR_MODE_TCP;
1133 defproxy.state = PR_STNEW;
1134 defproxy.maxconn = cfg_maxpconn;
1135 defproxy.conn_retries = CONN_RETRIES;
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01001136
1137 defproxy.defsrv.inter = DEF_CHKINTR;
1138 defproxy.defsrv.fastinter = 0;
1139 defproxy.defsrv.downinter = 0;
1140 defproxy.defsrv.rise = DEF_RISETIME;
1141 defproxy.defsrv.fall = DEF_FALLTIME;
Willy Tarreau5b3a2022012-09-28 15:01:02 +02001142 defproxy.defsrv.check.port = 0;
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01001143 defproxy.defsrv.maxqueue = 0;
1144 defproxy.defsrv.minconn = 0;
1145 defproxy.defsrv.maxconn = 0;
1146 defproxy.defsrv.slowstart = 0;
1147 defproxy.defsrv.onerror = DEF_HANA_ONERR;
1148 defproxy.defsrv.consecutive_errors_limit = DEF_HANA_ERRLIMIT;
1149 defproxy.defsrv.uweight = defproxy.defsrv.iweight = 1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001150}
1151
Willy Tarreauade5ec42010-01-28 19:33:49 +01001152
1153static int create_cond_regex_rule(const char *file, int line,
1154 struct proxy *px, int dir, int action, int flags,
1155 const char *cmd, const char *reg, const char *repl,
1156 const char **cond_start)
1157{
1158 regex_t *preg = NULL;
Willy Tarreaub7451bb2012-04-27 12:38:15 +02001159 char *errmsg = NULL;
Willy Tarreauade5ec42010-01-28 19:33:49 +01001160 const char *err;
1161 int err_code = 0;
Willy Tarreau5321c422010-01-28 20:35:13 +01001162 struct acl_cond *cond = NULL;
Willy Tarreauade5ec42010-01-28 19:33:49 +01001163
1164 if (px == &defproxy) {
1165 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, line, cmd);
1166 err_code |= ERR_ALERT | ERR_FATAL;
1167 goto err;
1168 }
1169
1170 if (*reg == 0) {
1171 Alert("parsing [%s:%d] : '%s' expects <regex> as an argument.\n", file, line, cmd);
1172 err_code |= ERR_ALERT | ERR_FATAL;
1173 goto err;
1174 }
1175
1176 if (warnifnotcap(px, PR_CAP_RS, file, line, cmd, NULL))
1177 err_code |= ERR_WARN;
1178
Willy Tarreau5321c422010-01-28 20:35:13 +01001179 if (cond_start &&
1180 (strcmp(*cond_start, "if") == 0 || strcmp(*cond_start, "unless") == 0)) {
Willy Tarreaub7451bb2012-04-27 12:38:15 +02001181 if ((cond = build_acl_cond(file, line, px, cond_start, &errmsg)) == NULL) {
1182 Alert("parsing [%s:%d] : error detected while parsing a '%s' condition : %s.\n",
1183 file, line, cmd, errmsg);
Willy Tarreau5321c422010-01-28 20:35:13 +01001184 err_code |= ERR_ALERT | ERR_FATAL;
1185 goto err;
1186 }
1187 }
1188 else if (cond_start && **cond_start) {
1189 Alert("parsing [%s:%d] : '%s' : Expecting nothing, 'if', or 'unless', got '%s'.\n",
1190 file, line, cmd, *cond_start);
1191 err_code |= ERR_ALERT | ERR_FATAL;
1192 goto err;
1193 }
1194
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02001195 if (dir == SMP_OPT_DIR_REQ)
Willy Tarreau5321c422010-01-28 20:35:13 +01001196 err_code |= warnif_cond_requires_resp(cond, file, line);
Willy Tarreaufdb563c2010-01-31 15:43:27 +01001197 else
1198 err_code |= warnif_cond_requires_req(cond, file, line);
Willy Tarreau5321c422010-01-28 20:35:13 +01001199
Willy Tarreauade5ec42010-01-28 19:33:49 +01001200 preg = calloc(1, sizeof(regex_t));
1201 if (!preg) {
1202 Alert("parsing [%s:%d] : '%s' : not enough memory to build regex.\n", file, line, cmd);
1203 err_code = ERR_ALERT | ERR_FATAL;
1204 goto err;
1205 }
1206
1207 if (regcomp(preg, reg, REG_EXTENDED | flags) != 0) {
1208 Alert("parsing [%s:%d] : '%s' : bad regular expression '%s'.\n", file, line, cmd, reg);
1209 err_code = ERR_ALERT | ERR_FATAL;
1210 goto err;
1211 }
1212
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02001213 err = chain_regex((dir == SMP_OPT_DIR_REQ) ? &px->req_exp : &px->rsp_exp,
Willy Tarreau5321c422010-01-28 20:35:13 +01001214 preg, action, repl ? strdup(repl) : NULL, cond);
Willy Tarreauade5ec42010-01-28 19:33:49 +01001215 if (repl && err) {
1216 Alert("parsing [%s:%d] : '%s' : invalid character or unterminated sequence in replacement string near '%c'.\n",
1217 file, line, cmd, *err);
1218 err_code |= ERR_ALERT | ERR_FATAL;
1219 goto err;
1220 }
1221
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02001222 if (dir == SMP_OPT_DIR_REQ && warnif_misplaced_reqxxx(px, file, line, cmd))
Willy Tarreauade5ec42010-01-28 19:33:49 +01001223 err_code |= ERR_WARN;
1224
Willy Tarreauf4068b62012-05-08 17:37:49 +02001225 free(errmsg);
Willy Tarreauade5ec42010-01-28 19:33:49 +01001226 return err_code;
1227 err:
Willy Tarreauf4068b62012-05-08 17:37:49 +02001228 free(errmsg);
Willy Tarreauade5ec42010-01-28 19:33:49 +01001229 free(preg);
1230 return err_code;
1231}
1232
Willy Tarreaubaaee002006-06-26 02:48:02 +02001233/*
Willy Tarreau977b8e42006-12-29 14:19:17 +01001234 * Parse a line in a <listen>, <frontend>, <backend> or <ruleset> section.
Willy Tarreau93893792009-07-23 13:19:11 +02001235 * Returns the error code, 0 if OK, or any combination of :
1236 * - ERR_ABORT: must abort ASAP
1237 * - ERR_FATAL: we can continue parsing but not start the service
1238 * - ERR_WARN: a warning has been emitted
1239 * - ERR_ALERT: an alert has been emitted
1240 * Only the two first ones can stop processing, the two others are just
1241 * indicators.
Willy Tarreaubaaee002006-06-26 02:48:02 +02001242 */
Emeric Brun32da3c42010-09-23 18:39:19 +02001243int cfg_parse_peers(const char *file, int linenum, char **args, int kwm)
1244{
1245 static struct peers *curpeers = NULL;
1246 struct peer *newpeer = NULL;
1247 const char *err;
Willy Tarreau4348fad2012-09-20 16:48:07 +02001248 struct bind_conf *bind_conf;
1249 struct listener *l;
Emeric Brun32da3c42010-09-23 18:39:19 +02001250 int err_code = 0;
1251
1252 if (strcmp(args[0], "peers") == 0) { /* new peers section */
1253
1254 err = invalid_char(args[1]);
1255 if (err) {
1256 Alert("parsing [%s:%d] : character '%c' is not permitted in '%s' name '%s'.\n",
1257 file, linenum, *err, args[0], args[1]);
1258 err_code |= ERR_ALERT | ERR_FATAL;
1259 }
1260
1261 for (curpeers = peers; curpeers != NULL; curpeers = curpeers->next) {
1262 /*
1263 * If there are two proxies with the same name only following
1264 * combinations are allowed:
1265 */
1266 if (strcmp(curpeers->id, args[1]) == 0) {
1267 Warning("Parsing [%s:%d]: peers '%s' has same name as another peers (declared at %s:%d).\n",
1268 file, linenum, args[1], curpeers->conf.file, curpeers->conf.line);
1269 err_code |= ERR_WARN;
1270 }
1271 }
1272
1273 if ((curpeers = (struct peers *)calloc(1, sizeof(struct peers))) == NULL) {
1274 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
1275 err_code |= ERR_ALERT | ERR_ABORT;
1276 goto out;
1277 }
1278
1279 curpeers->next = peers;
1280 peers = curpeers;
Willy Tarreau8113a5d2012-10-04 08:01:43 +02001281 curpeers->conf.file = strdup(file);
Emeric Brun32da3c42010-09-23 18:39:19 +02001282 curpeers->conf.line = linenum;
1283 curpeers->last_change = now.tv_sec;
1284 curpeers->id = strdup(args[1]);
1285 }
1286 else if (strcmp(args[0], "peer") == 0) { /* peer definition */
1287 char *rport, *raddr;
1288 short realport = 0;
David du Colombier6f5ccb12011-03-10 22:26:24 +01001289 struct sockaddr_storage *sk;
Willy Tarreau4fbb2282012-09-20 20:01:39 +02001290 char *err_msg = NULL;
Emeric Brun32da3c42010-09-23 18:39:19 +02001291
1292 if (!*args[2]) {
1293 Alert("parsing [%s:%d] : '%s' expects <name> and <addr>[:<port>] as arguments.\n",
1294 file, linenum, args[0]);
1295 err_code |= ERR_ALERT | ERR_FATAL;
1296 goto out;
1297 }
1298
1299 err = invalid_char(args[1]);
1300 if (err) {
1301 Alert("parsing [%s:%d] : character '%c' is not permitted in server name '%s'.\n",
1302 file, linenum, *err, args[1]);
1303 err_code |= ERR_ALERT | ERR_FATAL;
1304 goto out;
1305 }
1306
1307 if ((newpeer = (struct peer *)calloc(1, sizeof(struct peer))) == NULL) {
1308 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
1309 err_code |= ERR_ALERT | ERR_ABORT;
1310 goto out;
1311 }
1312
1313 /* the peers are linked backwards first */
1314 curpeers->count++;
1315 newpeer->next = curpeers->remote;
1316 curpeers->remote = newpeer;
1317 newpeer->peers = curpeers;
Willy Tarreau8113a5d2012-10-04 08:01:43 +02001318 newpeer->conf.file = strdup(file);
Emeric Brun32da3c42010-09-23 18:39:19 +02001319 newpeer->conf.line = linenum;
1320
1321 newpeer->last_change = now.tv_sec;
1322 newpeer->id = strdup(args[1]);
1323
1324 raddr = strdup(args[2]);
Willy Tarreaufab5a432011-03-04 15:31:53 +01001325 rport = strrchr(raddr, ':');
Emeric Brun32da3c42010-09-23 18:39:19 +02001326 if (rport) {
1327 *rport++ = 0;
1328 realport = atol(rport);
1329 }
1330 if (!realport) {
1331 Alert("parsing [%s:%d] : Missing or invalid port in '%s'\n", file, linenum, args[2]);
1332 err_code |= ERR_ALERT | ERR_FATAL;
1333 goto out;
1334 }
1335
Willy Tarreaufab5a432011-03-04 15:31:53 +01001336 sk = str2ip(raddr);
Emeric Brun32da3c42010-09-23 18:39:19 +02001337 free(raddr);
1338 if (!sk) {
1339 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[2]);
1340 err_code |= ERR_ALERT | ERR_FATAL;
1341 goto out;
1342 }
1343 newpeer->addr = *sk;
Willy Tarreau26d8c592012-05-07 18:12:14 +02001344 newpeer->proto = protocol_by_family(newpeer->addr.ss_family);
Willy Tarreauf7bc57c2012-10-03 00:19:48 +02001345 newpeer->xprt = &raw_sock;
Willy Tarreaud02394b2012-05-11 18:32:18 +02001346 newpeer->sock_init_arg = NULL;
Willy Tarreau26d8c592012-05-07 18:12:14 +02001347
Willy Tarreau173e7fb2012-09-24 22:47:39 +02001348 if (!newpeer->proto) {
Willy Tarreau26d8c592012-05-07 18:12:14 +02001349 Alert("parsing [%s:%d] : Unknown protocol family %d '%s'\n",
1350 file, linenum, newpeer->addr.ss_family, args[2]);
1351 err_code |= ERR_ALERT | ERR_FATAL;
1352 goto out;
1353 }
1354
Willy Tarreau86ad42c2011-08-27 12:29:07 +02001355 set_host_port(&newpeer->addr, realport);
Emeric Brun32da3c42010-09-23 18:39:19 +02001356
1357 if (strcmp(newpeer->id, localpeer) == 0) {
1358 /* Current is local peer, it define a frontend */
1359 newpeer->local = 1;
1360
1361 if (!curpeers->peers_fe) {
1362 if ((curpeers->peers_fe = calloc(1, sizeof(struct proxy))) == NULL) {
1363 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
1364 err_code |= ERR_ALERT | ERR_ABORT;
1365 goto out;
1366 }
Emeric Brun32da3c42010-09-23 18:39:19 +02001367
Willy Tarreau237250c2011-07-29 01:49:03 +02001368 init_new_proxy(curpeers->peers_fe);
1369 curpeers->peers_fe->parent = curpeers;
Emeric Brun32da3c42010-09-23 18:39:19 +02001370
1371 curpeers->peers_fe->last_change = now.tv_sec;
1372 curpeers->peers_fe->id = strdup(args[1]);
1373 curpeers->peers_fe->cap = PR_CAP_FE;
Willy Tarreau3ae65a12011-09-07 17:40:39 +02001374 curpeers->peers_fe->maxconn = 0;
Emeric Brun32da3c42010-09-23 18:39:19 +02001375 curpeers->peers_fe->conn_retries = CONN_RETRIES;
1376 curpeers->peers_fe->timeout.connect = 5000;
1377 curpeers->peers_fe->accept = peer_accept;
1378 curpeers->peers_fe->options2 |= PR_O2_INDEPSTR | PR_O2_SMARTCON | PR_O2_SMARTACC;
Willy Tarreau4348fad2012-09-20 16:48:07 +02001379
1380 bind_conf = bind_conf_alloc(&curpeers->peers_fe->conf.bind, file, linenum, args[2]);
1381
Willy Tarreau4fbb2282012-09-20 20:01:39 +02001382 if (!str2listener(args[2], curpeers->peers_fe, bind_conf, file, linenum, &err_msg)) {
1383 if (err_msg && *err_msg) {
1384 indent_msg(&err_msg, 2);
1385 Alert("parsing [%s:%d] : '%s %s' : %s\n", file, linenum, args[0], args[1], err_msg);
1386 }
1387 else
1388 Alert("parsing [%s:%d] : '%s %s' : error encountered while parsing listening address %s.\n",
1389 file, linenum, args[0], args[1], args[2]);
1390 free(err_msg);
Emeric Brun32da3c42010-09-23 18:39:19 +02001391 err_code |= ERR_FATAL;
1392 goto out;
1393 }
Willy Tarreau4348fad2012-09-20 16:48:07 +02001394
1395 list_for_each_entry(l, &bind_conf->listeners, by_bind) {
1396 l->maxconn = ((struct proxy *)curpeers->peers_fe)->maxconn;
1397 l->backlog = ((struct proxy *)curpeers->peers_fe)->backlog;
1398 l->timeout = &((struct proxy *)curpeers->peers_fe)->timeout.client;
1399 l->accept = session_accept;
1400 l->handler = process_session;
1401 l->analysers |= ((struct proxy *)curpeers->peers_fe)->fe_req_ana;
1402 l->options |= LI_O_UNLIMITED; /* don't make the peers subject to global limits */
1403 global.maxsock += l->maxconn;
1404 }
Emeric Brun32da3c42010-09-23 18:39:19 +02001405 }
1406 }
1407 } /* neither "peer" nor "peers" */
1408 else if (*args[0] != 0) {
1409 Alert("parsing [%s:%d] : unknown keyword '%s' in '%s' section\n", file, linenum, args[0], cursection);
1410 err_code |= ERR_ALERT | ERR_FATAL;
1411 goto out;
1412 }
1413
1414out:
1415 return err_code;
1416}
1417
1418
Willy Tarreau3842f002009-06-14 11:39:52 +02001419int cfg_parse_listen(const char *file, int linenum, char **args, int kwm)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001420{
1421 static struct proxy *curproxy = NULL;
1422 struct server *newsrv = NULL;
Willy Tarreaub17916e2006-10-15 15:17:57 +02001423 const char *err;
Willy Tarreaub3f32f52007-12-02 22:15:14 +01001424 int rc;
1425 unsigned val;
Willy Tarreau93893792009-07-23 13:19:11 +02001426 int err_code = 0;
Willy Tarreau3ec18a02010-01-28 19:01:34 +01001427 struct acl_cond *cond = NULL;
William Lallemand723b73a2012-02-08 16:37:49 +01001428 struct logsrv *tmplogsrv;
Willy Tarreauf4068b62012-05-08 17:37:49 +02001429 char *errmsg = NULL;
Willy Tarreau2a65ff02012-09-13 17:54:29 +02001430 struct bind_conf *bind_conf;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001431
Willy Tarreau977b8e42006-12-29 14:19:17 +01001432 if (!strcmp(args[0], "listen"))
1433 rc = PR_CAP_LISTEN;
1434 else if (!strcmp(args[0], "frontend"))
1435 rc = PR_CAP_FE | PR_CAP_RS;
1436 else if (!strcmp(args[0], "backend"))
1437 rc = PR_CAP_BE | PR_CAP_RS;
1438 else if (!strcmp(args[0], "ruleset"))
1439 rc = PR_CAP_RS;
1440 else
1441 rc = PR_CAP_NONE;
1442
1443 if (rc != PR_CAP_NONE) { /* new proxy */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001444 if (!*args[1]) {
1445 Alert("parsing [%s:%d] : '%s' expects an <id> argument and\n"
1446 " optionnally supports [addr1]:port1[-end1]{,[addr]:port[-end]}...\n",
1447 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001448 err_code |= ERR_ALERT | ERR_ABORT;
1449 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001450 }
Krzysztof Oledzki365d1cd2007-10-21 02:55:17 +02001451
Willy Tarreau2e74c3f2007-12-02 18:45:09 +01001452 err = invalid_char(args[1]);
1453 if (err) {
1454 Alert("parsing [%s:%d] : character '%c' is not permitted in '%s' name '%s'.\n",
1455 file, linenum, *err, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02001456 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreau2e74c3f2007-12-02 18:45:09 +01001457 }
1458
Krzysztof Oledzki365d1cd2007-10-21 02:55:17 +02001459 for (curproxy = proxy; curproxy != NULL; curproxy = curproxy->next) {
1460 /*
1461 * If there are two proxies with the same name only following
1462 * combinations are allowed:
1463 *
1464 * listen backend frontend ruleset
1465 * listen - - - -
1466 * backend - - OK -
1467 * frontend - OK - -
1468 * ruleset - - - -
1469 */
1470
1471 if (!strcmp(curproxy->id, args[1]) &&
1472 (rc!=(PR_CAP_FE|PR_CAP_RS) || curproxy->cap!=(PR_CAP_BE|PR_CAP_RS)) &&
1473 (rc!=(PR_CAP_BE|PR_CAP_RS) || curproxy->cap!=(PR_CAP_FE|PR_CAP_RS))) {
Willy Tarreau092549f2009-10-04 21:11:42 +02001474 Warning("Parsing [%s:%d]: %s '%s' has same name as another %s (declared at %s:%d).\n",
1475 file, linenum, proxy_cap_str(rc), args[1], proxy_type_str(curproxy),
1476 curproxy->conf.file, curproxy->conf.line);
Willy Tarreau93893792009-07-23 13:19:11 +02001477 err_code |= ERR_WARN;
Krzysztof Oledzki365d1cd2007-10-21 02:55:17 +02001478 }
1479 }
1480
Willy Tarreaubaaee002006-06-26 02:48:02 +02001481 if ((curproxy = (struct proxy *)calloc(1, sizeof(struct proxy))) == NULL) {
1482 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02001483 err_code |= ERR_ALERT | ERR_ABORT;
1484 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001485 }
Willy Tarreau5af24ef2009-03-15 15:23:16 +01001486
Willy Tarreau97cb7802010-01-03 20:23:58 +01001487 init_new_proxy(curproxy);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001488 curproxy->next = proxy;
1489 proxy = curproxy;
Willy Tarreau8113a5d2012-10-04 08:01:43 +02001490 curproxy->conf.file = strdup(file);
Willy Tarreau90a570f2009-10-04 20:54:54 +02001491 curproxy->conf.line = linenum;
Krzysztof Oledzki85130942007-10-22 16:21:10 +02001492 curproxy->last_change = now.tv_sec;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001493 curproxy->id = strdup(args[1]);
Willy Tarreau977b8e42006-12-29 14:19:17 +01001494 curproxy->cap = rc;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001495
1496 /* parse the listener address if any */
Willy Tarreau977b8e42006-12-29 14:19:17 +01001497 if ((curproxy->cap & PR_CAP_FE) && *args[2]) {
Willy Tarreau4348fad2012-09-20 16:48:07 +02001498 struct listener *l;
Willy Tarreau4fbb2282012-09-20 20:01:39 +02001499 char *err_msg = NULL;
Willy Tarreau81a81172012-09-18 20:52:35 +02001500
Willy Tarreau4348fad2012-09-20 16:48:07 +02001501 bind_conf = bind_conf_alloc(&curproxy->conf.bind, file, linenum, args[2]);
1502
Willy Tarreau4fbb2282012-09-20 20:01:39 +02001503 if (!str2listener(args[2], curproxy, bind_conf, file, linenum, &err_msg)) {
1504 if (err_msg && *err_msg) {
1505 indent_msg(&err_msg, 2);
1506 Alert("parsing [%s:%d] : '%s %s' : %s\n", file, linenum, args[0], args[1], err_msg);
1507 }
1508 else
1509 Alert("parsing [%s:%d] : '%s %s' : error encountered while parsing listening address '%s'.\n",
1510 file, linenum, args[0], args[1], args[2]);
1511 free(err_msg);
Willy Tarreau93893792009-07-23 13:19:11 +02001512 err_code |= ERR_FATAL;
1513 goto out;
1514 }
Willy Tarreau81a81172012-09-18 20:52:35 +02001515
Willy Tarreau4348fad2012-09-20 16:48:07 +02001516 list_for_each_entry(l, &bind_conf->listeners, by_bind) {
Willy Tarreauc8b11092011-02-16 11:08:57 +01001517 global.maxsock++;
Willy Tarreau90a570f2009-10-04 20:54:54 +02001518 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001519 }
1520
1521 /* set default values */
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01001522 memcpy(&curproxy->defsrv, &defproxy.defsrv, sizeof(curproxy->defsrv));
Willy Tarreau70160202010-04-07 16:06:40 +02001523 curproxy->defsrv.id = "default-server";
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01001524
Willy Tarreaubaaee002006-06-26 02:48:02 +02001525 curproxy->state = defproxy.state;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001526 curproxy->options = defproxy.options;
Willy Tarreau66aa61f2009-01-18 21:44:07 +01001527 curproxy->options2 = defproxy.options2;
Willy Tarreau84b57da2009-06-14 11:10:45 +02001528 curproxy->no_options = defproxy.no_options;
1529 curproxy->no_options2 = defproxy.no_options2;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01001530 curproxy->bind_proc = defproxy.bind_proc;
Willy Tarreau31682232007-11-29 15:38:04 +01001531 curproxy->lbprm.algo = defproxy.lbprm.algo;
Willy Tarreau7ac51f62007-03-25 16:00:04 +02001532 curproxy->except_net = defproxy.except_net;
1533 curproxy->except_mask = defproxy.except_mask;
Maik Broemme36db02e2009-05-08 17:02:07 +02001534 curproxy->except_to = defproxy.except_to;
Maik Broemme2850cb42009-04-17 18:53:21 +02001535 curproxy->except_mask_to = defproxy.except_mask_to;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001536
Willy Tarreau79f5fe82008-08-23 08:18:21 +02001537 if (defproxy.fwdfor_hdr_len) {
1538 curproxy->fwdfor_hdr_len = defproxy.fwdfor_hdr_len;
1539 curproxy->fwdfor_hdr_name = strdup(defproxy.fwdfor_hdr_name);
1540 }
1541
Willy Tarreaub86db342009-11-30 11:50:16 +01001542 if (defproxy.orgto_hdr_len) {
1543 curproxy->orgto_hdr_len = defproxy.orgto_hdr_len;
1544 curproxy->orgto_hdr_name = strdup(defproxy.orgto_hdr_name);
1545 }
1546
Mark Lamourinec2247f02012-01-04 13:02:01 -05001547 if (defproxy.server_id_hdr_len) {
1548 curproxy->server_id_hdr_len = defproxy.server_id_hdr_len;
1549 curproxy->server_id_hdr_name = strdup(defproxy.server_id_hdr_name);
1550 }
1551
Willy Tarreau977b8e42006-12-29 14:19:17 +01001552 if (curproxy->cap & PR_CAP_FE) {
1553 curproxy->maxconn = defproxy.maxconn;
Willy Tarreauc73ce2b2008-01-06 10:55:10 +01001554 curproxy->backlog = defproxy.backlog;
Willy Tarreau13a34bd2009-05-10 18:52:49 +02001555 curproxy->fe_sps_lim = defproxy.fe_sps_lim;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001556
1557 /* initialize error relocations */
Krzysztof Piotr Oledzki78abe612009-09-27 13:23:20 +02001558 for (rc = 0; rc < HTTP_ERR_SIZE; rc++)
1559 chunk_dup(&curproxy->errmsg[rc], &defproxy.errmsg[rc]);
Willy Tarreau977b8e42006-12-29 14:19:17 +01001560
1561 curproxy->to_log = defproxy.to_log & ~LW_COOKIE & ~LW_REQHDR & ~ LW_RSPHDR;
1562 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001563
Willy Tarreau977b8e42006-12-29 14:19:17 +01001564 if (curproxy->cap & PR_CAP_BE) {
1565 curproxy->fullconn = defproxy.fullconn;
1566 curproxy->conn_retries = defproxy.conn_retries;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001567
Willy Tarreauaa2f3892010-10-22 16:15:31 +02001568 if (defproxy.check_req) {
1569 curproxy->check_req = calloc(1, defproxy.check_len);
1570 memcpy(curproxy->check_req, defproxy.check_req, defproxy.check_len);
1571 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01001572 curproxy->check_len = defproxy.check_len;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001573
Willy Tarreau1ee51a62011-08-19 20:04:17 +02001574 if (defproxy.expect_str) {
1575 curproxy->expect_str = strdup(defproxy.expect_str);
1576 if (defproxy.expect_regex) {
1577 /* note: this regex is known to be valid */
1578 curproxy->expect_regex = calloc(1, sizeof(regex_t));
1579 regcomp(curproxy->expect_regex, defproxy.expect_str, REG_EXTENDED);
1580 }
1581 }
1582
Willy Tarreau67402132012-05-31 20:40:20 +02001583 curproxy->ck_opts = defproxy.ck_opts;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001584 if (defproxy.cookie_name)
1585 curproxy->cookie_name = strdup(defproxy.cookie_name);
1586 curproxy->cookie_len = defproxy.cookie_len;
Willy Tarreau4d187ac2009-12-03 23:13:06 +01001587 if (defproxy.cookie_domain)
1588 curproxy->cookie_domain = strdup(defproxy.cookie_domain);
Willy Tarreau01732802007-11-01 22:48:15 +01001589
Willy Tarreau31936852010-10-06 16:59:56 +02001590 if (defproxy.cookie_maxidle)
1591 curproxy->cookie_maxidle = defproxy.cookie_maxidle;
1592
1593 if (defproxy.cookie_maxlife)
1594 curproxy->cookie_maxlife = defproxy.cookie_maxlife;
1595
Emeric Brun647caf12009-06-30 17:57:00 +02001596 if (defproxy.rdp_cookie_name)
1597 curproxy->rdp_cookie_name = strdup(defproxy.rdp_cookie_name);
1598 curproxy->rdp_cookie_len = defproxy.rdp_cookie_len;
1599
Willy Tarreau01732802007-11-01 22:48:15 +01001600 if (defproxy.url_param_name)
1601 curproxy->url_param_name = strdup(defproxy.url_param_name);
1602 curproxy->url_param_len = defproxy.url_param_len;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01001603
Benoitaffb4812009-03-25 13:02:10 +01001604 if (defproxy.hh_name)
1605 curproxy->hh_name = strdup(defproxy.hh_name);
1606 curproxy->hh_len = defproxy.hh_len;
1607 curproxy->hh_match_domain = defproxy.hh_match_domain;
1608
Willy Tarreaud53f96b2009-02-04 18:46:54 +01001609 if (defproxy.iface_name)
1610 curproxy->iface_name = strdup(defproxy.iface_name);
1611 curproxy->iface_len = defproxy.iface_len;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001612 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001613
Willy Tarreau3b6b1a92009-07-23 13:24:23 +02001614 if (curproxy->cap & PR_CAP_FE) {
Willy Tarreau977b8e42006-12-29 14:19:17 +01001615 if (defproxy.capture_name)
1616 curproxy->capture_name = strdup(defproxy.capture_name);
1617 curproxy->capture_namelen = defproxy.capture_namelen;
1618 curproxy->capture_len = defproxy.capture_len;
Willy Tarreau0f772532006-12-23 20:51:41 +01001619 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001620
Willy Tarreau977b8e42006-12-29 14:19:17 +01001621 if (curproxy->cap & PR_CAP_FE) {
Willy Tarreaud7c30f92007-12-03 01:38:36 +01001622 curproxy->timeout.client = defproxy.timeout.client;
Willy Tarreau1fa31262007-12-03 00:36:16 +01001623 curproxy->timeout.tarpit = defproxy.timeout.tarpit;
Willy Tarreau036fae02008-01-06 13:24:40 +01001624 curproxy->timeout.httpreq = defproxy.timeout.httpreq;
Willy Tarreaub16a5742010-01-10 14:46:16 +01001625 curproxy->timeout.httpka = defproxy.timeout.httpka;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001626 curproxy->uri_auth = defproxy.uri_auth;
1627 curproxy->mon_net = defproxy.mon_net;
1628 curproxy->mon_mask = defproxy.mon_mask;
1629 if (defproxy.monitor_uri)
1630 curproxy->monitor_uri = strdup(defproxy.monitor_uri);
1631 curproxy->monitor_uri_len = defproxy.monitor_uri_len;
Willy Tarreau5fdfb912007-01-01 23:11:07 +01001632 if (defproxy.defbe.name)
1633 curproxy->defbe.name = strdup(defproxy.defbe.name);
Willy Tarreau99a7ca22012-05-31 19:39:23 +02001634
1635 /* get either a pointer to the logformat string or a copy of it */
1636 curproxy->logformat_string = defproxy.logformat_string;
1637 if (curproxy->logformat_string &&
1638 curproxy->logformat_string != default_http_log_format &&
1639 curproxy->logformat_string != default_tcp_log_format &&
1640 curproxy->logformat_string != clf_http_log_format)
1641 curproxy->logformat_string = strdup(curproxy->logformat_string);
Willy Tarreau977b8e42006-12-29 14:19:17 +01001642 }
1643
1644 if (curproxy->cap & PR_CAP_BE) {
Willy Tarreaud7c30f92007-12-03 01:38:36 +01001645 curproxy->timeout.connect = defproxy.timeout.connect;
1646 curproxy->timeout.server = defproxy.timeout.server;
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01001647 curproxy->timeout.check = defproxy.timeout.check;
Willy Tarreau1fa31262007-12-03 00:36:16 +01001648 curproxy->timeout.queue = defproxy.timeout.queue;
Willy Tarreau51c9bde2008-01-06 13:40:03 +01001649 curproxy->timeout.tarpit = defproxy.timeout.tarpit;
Willy Tarreaucd7afc02009-07-12 10:03:17 +02001650 curproxy->timeout.httpreq = defproxy.timeout.httpreq;
Willy Tarreaub16a5742010-01-10 14:46:16 +01001651 curproxy->timeout.httpka = defproxy.timeout.httpka;
Willy Tarreauce887fd2012-05-12 12:50:00 +02001652 curproxy->timeout.tunnel = defproxy.timeout.tunnel;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001653 curproxy->source_addr = defproxy.source_addr;
1654 }
1655
Willy Tarreaubaaee002006-06-26 02:48:02 +02001656 curproxy->mode = defproxy.mode;
William Lallemand0f99e342011-10-12 17:50:54 +02001657
1658 /* copy default logsrvs to curproxy */
William Lallemand723b73a2012-02-08 16:37:49 +01001659 list_for_each_entry(tmplogsrv, &defproxy.logsrvs, list) {
William Lallemand0f99e342011-10-12 17:50:54 +02001660 struct logsrv *node = malloc(sizeof(struct logsrv));
William Lallemand723b73a2012-02-08 16:37:49 +01001661 memcpy(node, tmplogsrv, sizeof(struct logsrv));
William Lallemand0f99e342011-10-12 17:50:54 +02001662 LIST_INIT(&node->list);
1663 LIST_ADDQ(&curproxy->logsrvs, &node->list);
1664 }
1665
Willy Tarreau196729e2012-05-31 19:30:26 +02001666 curproxy->uniqueid_format_string = defproxy.uniqueid_format_string;
1667 if (curproxy->uniqueid_format_string)
1668 curproxy->uniqueid_format_string = strdup(curproxy->uniqueid_format_string);
William Lallemanda73203e2012-03-12 12:48:57 +01001669
1670 /* copy default header unique id */
1671 if (defproxy.header_unique_id)
1672 curproxy->header_unique_id = strdup(defproxy.header_unique_id);
1673
Willy Tarreaubaaee002006-06-26 02:48:02 +02001674 curproxy->grace = defproxy.grace;
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02001675 curproxy->conf.used_listener_id = EB_ROOT;
1676 curproxy->conf.used_server_id = EB_ROOT;
Willy Tarreau1c47f852006-07-09 08:22:27 +02001677
Willy Tarreau93893792009-07-23 13:19:11 +02001678 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001679 }
1680 else if (!strcmp(args[0], "defaults")) { /* use this one to assign default values */
1681 /* some variables may have already been initialized earlier */
Willy Tarreau5fdfb912007-01-01 23:11:07 +01001682 /* FIXME-20070101: we should do this too at the end of the
1683 * config parsing to free all default values.
1684 */
Willy Tarreaua534fea2008-08-03 12:19:50 +02001685 free(defproxy.check_req);
1686 free(defproxy.cookie_name);
Emeric Brun647caf12009-06-30 17:57:00 +02001687 free(defproxy.rdp_cookie_name);
Willy Tarreau4d187ac2009-12-03 23:13:06 +01001688 free(defproxy.cookie_domain);
Willy Tarreaua534fea2008-08-03 12:19:50 +02001689 free(defproxy.url_param_name);
Benoitaffb4812009-03-25 13:02:10 +01001690 free(defproxy.hh_name);
Willy Tarreaua534fea2008-08-03 12:19:50 +02001691 free(defproxy.capture_name);
1692 free(defproxy.monitor_uri);
1693 free(defproxy.defbe.name);
Willy Tarreaud53f96b2009-02-04 18:46:54 +01001694 free(defproxy.iface_name);
Willy Tarreau79f5fe82008-08-23 08:18:21 +02001695 free(defproxy.fwdfor_hdr_name);
1696 defproxy.fwdfor_hdr_len = 0;
Willy Tarreaub86db342009-11-30 11:50:16 +01001697 free(defproxy.orgto_hdr_name);
1698 defproxy.orgto_hdr_len = 0;
Mark Lamourinec2247f02012-01-04 13:02:01 -05001699 free(defproxy.server_id_hdr_name);
1700 defproxy.server_id_hdr_len = 0;
Willy Tarreau1ee51a62011-08-19 20:04:17 +02001701 free(defproxy.expect_str);
1702 if (defproxy.expect_regex) regfree(defproxy.expect_regex);
Willy Tarreau0f772532006-12-23 20:51:41 +01001703
Willy Tarreau39b06652012-06-01 10:58:06 +02001704 if (defproxy.logformat_string != default_http_log_format &&
1705 defproxy.logformat_string != default_tcp_log_format &&
1706 defproxy.logformat_string != clf_http_log_format)
Willy Tarreau196729e2012-05-31 19:30:26 +02001707 free(defproxy.logformat_string);
1708
1709 free(defproxy.uniqueid_format_string);
1710
Willy Tarreaua534fea2008-08-03 12:19:50 +02001711 for (rc = 0; rc < HTTP_ERR_SIZE; rc++)
Krzysztof Piotr Oledzki78abe612009-09-27 13:23:20 +02001712 chunk_destroy(&defproxy.errmsg[rc]);
Willy Tarreau0f772532006-12-23 20:51:41 +01001713
Willy Tarreaubaaee002006-06-26 02:48:02 +02001714 /* we cannot free uri_auth because it might already be used */
1715 init_default_instance();
1716 curproxy = &defproxy;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001717 defproxy.cap = PR_CAP_LISTEN; /* all caps for now */
Willy Tarreau93893792009-07-23 13:19:11 +02001718 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001719 }
1720 else if (curproxy == NULL) {
1721 Alert("parsing [%s:%d] : 'listen' or 'defaults' expected.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02001722 err_code |= ERR_ALERT | ERR_FATAL;
1723 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001724 }
1725
Willy Tarreau977b8e42006-12-29 14:19:17 +01001726
1727 /* Now let's parse the proxy-specific keywords */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001728 if (!strcmp(args[0], "bind")) { /* new listen addresses */
Willy Tarreau4348fad2012-09-20 16:48:07 +02001729 struct listener *l;
Willy Tarreau5e6e2042009-02-04 17:19:29 +01001730 int cur_arg;
Willy Tarreau4fbb2282012-09-20 20:01:39 +02001731 char *err_msg = NULL;
Willy Tarreau5e6e2042009-02-04 17:19:29 +01001732
Willy Tarreaubaaee002006-06-26 02:48:02 +02001733 if (curproxy == &defproxy) {
1734 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001735 err_code |= ERR_ALERT | ERR_FATAL;
1736 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001737 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01001738 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02001739 err_code |= ERR_WARN;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001740
Emeric Bruned760922010-10-22 17:59:25 +02001741 if ( *(args[1]) != '/' && strchr(args[1], ':') == NULL) {
Willy Tarreaud55c3fe2010-11-09 09:50:37 +01001742 Alert("parsing [%s:%d] : '%s' expects {<path>|[addr1]:port1[-end1]}{,[addr]:port[-end]}... as arguments.\n",
Willy Tarreaubaaee002006-06-26 02:48:02 +02001743 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001744 err_code |= ERR_ALERT | ERR_FATAL;
1745 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001746 }
Willy Tarreaub1e52e82008-01-13 14:49:51 +01001747
Willy Tarreau2a65ff02012-09-13 17:54:29 +02001748 bind_conf = bind_conf_alloc(&curproxy->conf.bind, file, linenum, args[1]);
Willy Tarreau290e63a2012-09-20 18:07:14 +02001749 memcpy(&bind_conf->ux, &global.unix_bind.ux, sizeof(global.unix_bind.ux));
Willy Tarreau8a956912010-10-15 14:27:08 +02001750
1751 /* NOTE: the following line might create several listeners if there
1752 * are comma-separated IPs or port ranges. So all further processing
1753 * will have to be applied to all listeners created after last_listen.
1754 */
Willy Tarreau4fbb2282012-09-20 20:01:39 +02001755 if (!str2listener(args[1], curproxy, bind_conf, file, linenum, &err_msg)) {
1756 if (err_msg && *err_msg) {
1757 indent_msg(&err_msg, 2);
1758 Alert("parsing [%s:%d] : '%s' : %s\n", file, linenum, args[0], err_msg);
1759 }
1760 else
1761 Alert("parsing [%s:%d] : '%s' : error encountered while parsing listening address '%s'.\n",
1762 file, linenum, args[0], args[1]);
1763 free(err_msg);
Willy Tarreau93893792009-07-23 13:19:11 +02001764 err_code |= ERR_ALERT | ERR_FATAL;
1765 goto out;
1766 }
Willy Tarreau5e6e2042009-02-04 17:19:29 +01001767
Willy Tarreau4348fad2012-09-20 16:48:07 +02001768 list_for_each_entry(l, &bind_conf->listeners, by_bind) {
1769 /* Set default global rights and owner for unix bind */
Willy Tarreauc8b11092011-02-16 11:08:57 +01001770 global.maxsock++;
Willy Tarreau90a570f2009-10-04 20:54:54 +02001771 }
1772
Willy Tarreau5e6e2042009-02-04 17:19:29 +01001773 cur_arg = 2;
1774 while (*(args[cur_arg])) {
Willy Tarreau8638f482012-09-18 18:01:17 +02001775 static int bind_dumped;
Willy Tarreau26982662012-09-12 23:17:10 +02001776 struct bind_kw *kw;
Willy Tarreau8638f482012-09-18 18:01:17 +02001777 char *err;
1778
Willy Tarreau26982662012-09-12 23:17:10 +02001779 kw = bind_find_kw(args[cur_arg]);
1780 if (kw) {
1781 char *err = NULL;
1782 int code;
1783
1784 if (!kw->parse) {
Willy Tarreaudda322d2012-09-18 16:34:09 +02001785 Alert("parsing [%s:%d] : '%s %s' : '%s' option is not implemented in this version (check build options).\n",
1786 file, linenum, args[0], args[1], args[cur_arg]);
Willy Tarreau26982662012-09-12 23:17:10 +02001787 cur_arg += 1 + kw->skip ;
1788 err_code |= ERR_ALERT | ERR_FATAL;
1789 goto out;
1790 }
1791
Willy Tarreau4348fad2012-09-20 16:48:07 +02001792 code = kw->parse(args, cur_arg, curproxy, bind_conf, &err);
Willy Tarreau26982662012-09-12 23:17:10 +02001793 err_code |= code;
1794
1795 if (code) {
1796 if (err && *err) {
1797 indent_msg(&err, 2);
Willy Tarreaudda322d2012-09-18 16:34:09 +02001798 Alert("parsing [%s:%d] : '%s %s' : %s\n", file, linenum, args[0], args[1], err);
Willy Tarreau26982662012-09-12 23:17:10 +02001799 }
1800 else
Willy Tarreaudda322d2012-09-18 16:34:09 +02001801 Alert("parsing [%s:%d] : '%s %s' : error encountered while processing '%s'.\n",
1802 file, linenum, args[0], args[1], args[cur_arg]);
Willy Tarreau26982662012-09-12 23:17:10 +02001803 if (code & ERR_FATAL) {
1804 free(err);
1805 cur_arg += 1 + kw->skip;
1806 goto out;
1807 }
1808 }
1809 free(err);
1810 cur_arg += 1 + kw->skip;
1811 continue;
1812 }
1813
Willy Tarreau8638f482012-09-18 18:01:17 +02001814 err = NULL;
1815 if (!bind_dumped) {
1816 bind_dump_kws(&err);
1817 indent_msg(&err, 4);
1818 bind_dumped = 1;
1819 }
1820
1821 Alert("parsing [%s:%d] : '%s %s' unknown keyword '%s'.%s%s\n",
1822 file, linenum, args[0], args[1], args[cur_arg],
1823 err ? " Registered keywords :" : "", err ? err : "");
1824 free(err);
1825
Willy Tarreau93893792009-07-23 13:19:11 +02001826 err_code |= ERR_ALERT | ERR_FATAL;
1827 goto out;
Willy Tarreaub1e52e82008-01-13 14:49:51 +01001828 }
Willy Tarreau93893792009-07-23 13:19:11 +02001829 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001830 }
1831 else if (!strcmp(args[0], "monitor-net")) { /* set the range of IPs to ignore */
1832 if (!*args[1] || !str2net(args[1], &curproxy->mon_net, &curproxy->mon_mask)) {
1833 Alert("parsing [%s:%d] : '%s' expects address[/mask].\n",
1834 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001835 err_code |= ERR_ALERT | ERR_FATAL;
1836 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001837 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01001838 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02001839 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001840
Willy Tarreaubaaee002006-06-26 02:48:02 +02001841 /* flush useless bits */
1842 curproxy->mon_net.s_addr &= curproxy->mon_mask.s_addr;
Willy Tarreau93893792009-07-23 13:19:11 +02001843 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001844 }
Willy Tarreau1c47f852006-07-09 08:22:27 +02001845 else if (!strcmp(args[0], "monitor-uri")) { /* set the URI to intercept */
Willy Tarreau977b8e42006-12-29 14:19:17 +01001846 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02001847 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001848
Willy Tarreau1c47f852006-07-09 08:22:27 +02001849 if (!*args[1]) {
1850 Alert("parsing [%s:%d] : '%s' expects an URI.\n",
1851 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001852 err_code |= ERR_ALERT | ERR_FATAL;
1853 goto out;
Willy Tarreau1c47f852006-07-09 08:22:27 +02001854 }
1855
Willy Tarreaua534fea2008-08-03 12:19:50 +02001856 free(curproxy->monitor_uri);
Willy Tarreau8d5d7f22007-01-21 19:16:41 +01001857 curproxy->monitor_uri_len = strlen(args[1]);
Willy Tarreau1c47f852006-07-09 08:22:27 +02001858 curproxy->monitor_uri = (char *)calloc(1, curproxy->monitor_uri_len + 1);
Willy Tarreau8d5d7f22007-01-21 19:16:41 +01001859 memcpy(curproxy->monitor_uri, args[1], curproxy->monitor_uri_len);
Willy Tarreau1c47f852006-07-09 08:22:27 +02001860 curproxy->monitor_uri[curproxy->monitor_uri_len] = '\0';
1861
Willy Tarreau93893792009-07-23 13:19:11 +02001862 goto out;
Willy Tarreau1c47f852006-07-09 08:22:27 +02001863 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001864 else if (!strcmp(args[0], "mode")) { /* sets the proxy mode */
1865 if (!strcmp(args[1], "http")) curproxy->mode = PR_MODE_HTTP;
1866 else if (!strcmp(args[1], "tcp")) curproxy->mode = PR_MODE_TCP;
1867 else if (!strcmp(args[1], "health")) curproxy->mode = PR_MODE_HEALTH;
1868 else {
1869 Alert("parsing [%s:%d] : unknown proxy mode '%s'.\n", file, linenum, args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02001870 err_code |= ERR_ALERT | ERR_FATAL;
1871 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001872 }
1873 }
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001874 else if (!strcmp(args[0], "id")) {
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02001875 struct eb32_node *node;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001876
1877 if (curproxy == &defproxy) {
1878 Alert("parsing [%s:%d]: '%s' not allowed in 'defaults' section.\n",
1879 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001880 err_code |= ERR_ALERT | ERR_FATAL;
1881 goto out;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001882 }
1883
1884 if (!*args[1]) {
1885 Alert("parsing [%s:%d]: '%s' expects an integer argument.\n",
1886 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001887 err_code |= ERR_ALERT | ERR_FATAL;
1888 goto out;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001889 }
1890
1891 curproxy->uuid = atol(args[1]);
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02001892 curproxy->conf.id.key = curproxy->uuid;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001893
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02001894 if (curproxy->uuid <= 0) {
1895 Alert("parsing [%s:%d]: custom id has to be > 0.\n",
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001896 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02001897 err_code |= ERR_ALERT | ERR_FATAL;
1898 goto out;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001899 }
1900
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02001901 node = eb32_lookup(&used_proxy_id, curproxy->uuid);
1902 if (node) {
1903 struct proxy *target = container_of(node, struct proxy, conf.id);
1904 Alert("parsing [%s:%d]: %s %s reuses same custom id as %s %s (declared at %s:%d).\n",
1905 file, linenum, proxy_type_str(curproxy), curproxy->id,
1906 proxy_type_str(target), target->id, target->conf.file, target->conf.line);
1907 err_code |= ERR_ALERT | ERR_FATAL;
1908 goto out;
1909 }
1910 eb32_insert(&used_proxy_id, &curproxy->conf.id);
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001911 }
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02001912 else if (!strcmp(args[0], "description")) {
1913 int i, len=0;
1914 char *d;
1915
Cyril Bonté99ed3272010-01-24 23:29:44 +01001916 if (curproxy == &defproxy) {
1917 Alert("parsing [%s:%d]: '%s' not allowed in 'defaults' section.\n",
1918 file, linenum, args[0]);
1919 err_code |= ERR_ALERT | ERR_FATAL;
1920 goto out;
1921 }
1922
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02001923 if (!*args[1]) {
1924 Alert("parsing [%s:%d]: '%s' expects a string argument.\n",
1925 file, linenum, args[0]);
1926 return -1;
1927 }
1928
1929 for(i=1; *args[i]; i++)
1930 len += strlen(args[i])+1;
1931
1932 d = (char *)calloc(1, len);
1933 curproxy->desc = d;
1934
1935 d += sprintf(d, "%s", args[1]);
1936 for(i=2; *args[i]; i++)
1937 d += sprintf(d, " %s", args[i]);
1938
1939 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001940 else if (!strcmp(args[0], "disabled")) { /* disables this proxy */
1941 curproxy->state = PR_STSTOPPED;
1942 }
1943 else if (!strcmp(args[0], "enabled")) { /* enables this proxy (used to revert a disabled default) */
1944 curproxy->state = PR_STNEW;
1945 }
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01001946 else if (!strcmp(args[0], "bind-process")) { /* enable this proxy only on some processes */
1947 int cur_arg = 1;
1948 unsigned int set = 0;
1949
1950 while (*args[cur_arg]) {
1951 int u;
1952 if (strcmp(args[cur_arg], "all") == 0) {
1953 set = 0;
1954 break;
1955 }
1956 else if (strcmp(args[cur_arg], "odd") == 0) {
1957 set |= 0x55555555;
1958 }
1959 else if (strcmp(args[cur_arg], "even") == 0) {
1960 set |= 0xAAAAAAAA;
1961 }
1962 else {
1963 u = str2uic(args[cur_arg]);
1964 if (u < 1 || u > 32) {
1965 Alert("parsing [%s:%d]: %s expects 'all', 'odd', 'even', or process numbers from 1 to 32.\n",
1966 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001967 err_code |= ERR_ALERT | ERR_FATAL;
1968 goto out;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01001969 }
1970 if (u > global.nbproc) {
1971 Warning("parsing [%s:%d]: %s references process number higher than global.nbproc.\n",
1972 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001973 err_code |= ERR_WARN;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01001974 }
1975 set |= 1 << (u - 1);
1976 }
1977 cur_arg++;
1978 }
1979 curproxy->bind_proc = set;
1980 }
Willy Tarreaueb0c6142007-05-07 00:53:22 +02001981 else if (!strcmp(args[0], "acl")) { /* add an ACL */
Willy Tarreaub099aca2008-10-12 17:26:37 +02001982 if (curproxy == &defproxy) {
1983 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001984 err_code |= ERR_ALERT | ERR_FATAL;
1985 goto out;
Willy Tarreaub099aca2008-10-12 17:26:37 +02001986 }
1987
Willy Tarreau2e74c3f2007-12-02 18:45:09 +01001988 err = invalid_char(args[1]);
1989 if (err) {
1990 Alert("parsing [%s:%d] : character '%c' is not permitted in acl name '%s'.\n",
1991 file, linenum, *err, args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02001992 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreau2e74c3f2007-12-02 18:45:09 +01001993 }
1994
Willy Tarreaub7451bb2012-04-27 12:38:15 +02001995 if (parse_acl((const char **)args + 1, &curproxy->acl, &errmsg) == NULL) {
1996 Alert("parsing [%s:%d] : error detected while parsing ACL '%s' : %s.\n",
1997 file, linenum, args[1], errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02001998 err_code |= ERR_ALERT | ERR_FATAL;
1999 goto out;
Willy Tarreaueb0c6142007-05-07 00:53:22 +02002000 }
2001 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002002 else if (!strcmp(args[0], "cookie")) { /* cookie name */
2003 int cur_arg;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002004
Willy Tarreau977b8e42006-12-29 14:19:17 +01002005 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02002006 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01002007
Willy Tarreaubaaee002006-06-26 02:48:02 +02002008 if (*(args[1]) == 0) {
2009 Alert("parsing [%s:%d] : '%s' expects <cookie_name> as argument.\n",
2010 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002011 err_code |= ERR_ALERT | ERR_FATAL;
2012 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002013 }
Willy Tarreaua534fea2008-08-03 12:19:50 +02002014
Willy Tarreau67402132012-05-31 20:40:20 +02002015 curproxy->ck_opts = 0;
Willy Tarreauc63d4bb2010-10-23 11:37:27 +02002016 curproxy->cookie_maxidle = curproxy->cookie_maxlife = 0;
Willy Tarreau4d187ac2009-12-03 23:13:06 +01002017 free(curproxy->cookie_domain); curproxy->cookie_domain = NULL;
Willy Tarreaua534fea2008-08-03 12:19:50 +02002018 free(curproxy->cookie_name);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002019 curproxy->cookie_name = strdup(args[1]);
2020 curproxy->cookie_len = strlen(curproxy->cookie_name);
Willy Tarreauc63d4bb2010-10-23 11:37:27 +02002021
Willy Tarreaubaaee002006-06-26 02:48:02 +02002022 cur_arg = 2;
2023 while (*(args[cur_arg])) {
2024 if (!strcmp(args[cur_arg], "rewrite")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002025 curproxy->ck_opts |= PR_CK_RW;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002026 }
2027 else if (!strcmp(args[cur_arg], "indirect")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002028 curproxy->ck_opts |= PR_CK_IND;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002029 }
2030 else if (!strcmp(args[cur_arg], "insert")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002031 curproxy->ck_opts |= PR_CK_INS;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002032 }
2033 else if (!strcmp(args[cur_arg], "nocache")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002034 curproxy->ck_opts |= PR_CK_NOC;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002035 }
2036 else if (!strcmp(args[cur_arg], "postonly")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002037 curproxy->ck_opts |= PR_CK_POST;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002038 }
Willy Tarreauba4c5be2010-10-23 12:46:42 +02002039 else if (!strcmp(args[cur_arg], "preserve")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002040 curproxy->ck_opts |= PR_CK_PSV;
Willy Tarreauba4c5be2010-10-23 12:46:42 +02002041 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002042 else if (!strcmp(args[cur_arg], "prefix")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002043 curproxy->ck_opts |= PR_CK_PFX;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002044 }
Willy Tarreau4992dd22012-05-31 21:02:17 +02002045 else if (!strcmp(args[cur_arg], "httponly")) {
2046 curproxy->ck_opts |= PR_CK_HTTPONLY;
2047 }
2048 else if (!strcmp(args[cur_arg], "secure")) {
2049 curproxy->ck_opts |= PR_CK_SECURE;
2050 }
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002051 else if (!strcmp(args[cur_arg], "domain")) {
2052 if (!*args[cur_arg + 1]) {
2053 Alert("parsing [%s:%d]: '%s' expects <domain> as argument.\n",
2054 file, linenum, args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02002055 err_code |= ERR_ALERT | ERR_FATAL;
2056 goto out;
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002057 }
2058
Krzysztof Piotr Oledzki1a8bea92009-12-15 23:40:47 +01002059 if (*args[cur_arg + 1] != '.' || !strchr(args[cur_arg + 1] + 1, '.')) {
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002060 /* rfc2109, 4.3.2 Rejecting Cookies */
Krzysztof Piotr Oledzki1a8bea92009-12-15 23:40:47 +01002061 Warning("parsing [%s:%d]: domain '%s' contains no embedded"
2062 " dots nor does not start with a dot."
2063 " RFC forbids it, this configuration may not work properly.\n",
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002064 file, linenum, args[cur_arg + 1]);
Krzysztof Piotr Oledzki1a8bea92009-12-15 23:40:47 +01002065 err_code |= ERR_WARN;
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002066 }
2067
2068 err = invalid_domainchar(args[cur_arg + 1]);
2069 if (err) {
2070 Alert("parsing [%s:%d]: character '%c' is not permitted in domain name '%s'.\n",
2071 file, linenum, *err, args[cur_arg + 1]);
Willy Tarreau93893792009-07-23 13:19:11 +02002072 err_code |= ERR_ALERT | ERR_FATAL;
2073 goto out;
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002074 }
2075
Willy Tarreau68a897b2009-12-03 23:28:34 +01002076 if (!curproxy->cookie_domain) {
2077 curproxy->cookie_domain = strdup(args[cur_arg + 1]);
2078 } else {
2079 /* one domain was already specified, add another one by
2080 * building the string which will be returned along with
2081 * the cookie.
2082 */
2083 char *new_ptr;
2084 int new_len = strlen(curproxy->cookie_domain) +
2085 strlen("; domain=") + strlen(args[cur_arg + 1]) + 1;
2086 new_ptr = malloc(new_len);
2087 snprintf(new_ptr, new_len, "%s; domain=%s", curproxy->cookie_domain, args[cur_arg+1]);
2088 free(curproxy->cookie_domain);
2089 curproxy->cookie_domain = new_ptr;
2090 }
Willy Tarreau31936852010-10-06 16:59:56 +02002091 cur_arg++;
2092 }
2093 else if (!strcmp(args[cur_arg], "maxidle")) {
2094 unsigned int maxidle;
2095 const char *res;
2096
2097 if (!*args[cur_arg + 1]) {
2098 Alert("parsing [%s:%d]: '%s' expects <idletime> in seconds as argument.\n",
2099 file, linenum, args[cur_arg]);
2100 err_code |= ERR_ALERT | ERR_FATAL;
2101 goto out;
2102 }
2103
2104 res = parse_time_err(args[cur_arg + 1], &maxidle, TIME_UNIT_S);
2105 if (res) {
2106 Alert("parsing [%s:%d]: unexpected character '%c' in argument to <%s>.\n",
2107 file, linenum, *res, args[cur_arg]);
2108 err_code |= ERR_ALERT | ERR_FATAL;
2109 goto out;
2110 }
2111 curproxy->cookie_maxidle = maxidle;
2112 cur_arg++;
2113 }
2114 else if (!strcmp(args[cur_arg], "maxlife")) {
2115 unsigned int maxlife;
2116 const char *res;
2117
2118 if (!*args[cur_arg + 1]) {
2119 Alert("parsing [%s:%d]: '%s' expects <lifetime> in seconds as argument.\n",
2120 file, linenum, args[cur_arg]);
2121 err_code |= ERR_ALERT | ERR_FATAL;
2122 goto out;
2123 }
2124
2125 res = parse_time_err(args[cur_arg + 1], &maxlife, TIME_UNIT_S);
2126 if (res) {
2127 Alert("parsing [%s:%d]: unexpected character '%c' in argument to <%s>.\n",
2128 file, linenum, *res, args[cur_arg]);
2129 err_code |= ERR_ALERT | ERR_FATAL;
2130 goto out;
2131 }
2132 curproxy->cookie_maxlife = maxlife;
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002133 cur_arg++;
2134 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002135 else {
Willy Tarreau31936852010-10-06 16:59:56 +02002136 Alert("parsing [%s:%d] : '%s' supports 'rewrite', 'insert', 'prefix', 'indirect', 'nocache', 'postonly', 'domain', 'maxidle, and 'maxlife' options.\n",
Willy Tarreaubaaee002006-06-26 02:48:02 +02002137 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002138 err_code |= ERR_ALERT | ERR_FATAL;
2139 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002140 }
2141 cur_arg++;
2142 }
Willy Tarreau67402132012-05-31 20:40:20 +02002143 if (!POWEROF2(curproxy->ck_opts & (PR_CK_RW|PR_CK_IND))) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02002144 Alert("parsing [%s:%d] : cookie 'rewrite' and 'indirect' modes are incompatible.\n",
2145 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002146 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002147 }
2148
Willy Tarreau67402132012-05-31 20:40:20 +02002149 if (!POWEROF2(curproxy->ck_opts & (PR_CK_RW|PR_CK_INS|PR_CK_PFX))) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02002150 Alert("parsing [%s:%d] : cookie 'rewrite', 'insert' and 'prefix' modes are incompatible.\n",
2151 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002152 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002153 }
Willy Tarreauba4c5be2010-10-23 12:46:42 +02002154
Willy Tarreau67402132012-05-31 20:40:20 +02002155 if ((curproxy->ck_opts & (PR_CK_PSV | PR_CK_INS | PR_CK_IND)) == PR_CK_PSV) {
Willy Tarreauba4c5be2010-10-23 12:46:42 +02002156 Alert("parsing [%s:%d] : cookie 'preserve' requires at least 'insert' or 'indirect'.\n",
2157 file, linenum);
2158 err_code |= ERR_ALERT | ERR_FATAL;
2159 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002160 }/* end else if (!strcmp(args[0], "cookie")) */
Emeric Brun647caf12009-06-30 17:57:00 +02002161 else if (!strcmp(args[0], "persist")) { /* persist */
2162 if (*(args[1]) == 0) {
2163 Alert("parsing [%s:%d] : missing persist method.\n",
2164 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002165 err_code |= ERR_ALERT | ERR_FATAL;
2166 goto out;
Emeric Brun647caf12009-06-30 17:57:00 +02002167 }
2168
2169 if (!strncmp(args[1], "rdp-cookie", 10)) {
2170 curproxy->options2 |= PR_O2_RDPC_PRST;
2171
Emeric Brunb982a3d2010-01-04 15:45:53 +01002172 if (*(args[1] + 10) == '(') { /* cookie name */
Emeric Brun647caf12009-06-30 17:57:00 +02002173 const char *beg, *end;
2174
2175 beg = args[1] + 11;
2176 end = strchr(beg, ')');
2177
2178 if (!end || end == beg) {
2179 Alert("parsing [%s:%d] : persist rdp-cookie(name)' requires an rdp cookie name.\n",
2180 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002181 err_code |= ERR_ALERT | ERR_FATAL;
2182 goto out;
Emeric Brun647caf12009-06-30 17:57:00 +02002183 }
2184
2185 free(curproxy->rdp_cookie_name);
2186 curproxy->rdp_cookie_name = my_strndup(beg, end - beg);
2187 curproxy->rdp_cookie_len = end-beg;
2188 }
Emeric Brunb982a3d2010-01-04 15:45:53 +01002189 else if (*(args[1] + 10) == '\0') { /* default cookie name 'msts' */
Emeric Brun647caf12009-06-30 17:57:00 +02002190 free(curproxy->rdp_cookie_name);
2191 curproxy->rdp_cookie_name = strdup("msts");
2192 curproxy->rdp_cookie_len = strlen(curproxy->rdp_cookie_name);
2193 }
2194 else { /* syntax */
2195 Alert("parsing [%s:%d] : persist rdp-cookie(name)' requires an rdp cookie name.\n",
2196 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002197 err_code |= ERR_ALERT | ERR_FATAL;
2198 goto out;
Emeric Brun647caf12009-06-30 17:57:00 +02002199 }
2200 }
2201 else {
2202 Alert("parsing [%s:%d] : unknown persist method.\n",
2203 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002204 err_code |= ERR_ALERT | ERR_FATAL;
2205 goto out;
Emeric Brun647caf12009-06-30 17:57:00 +02002206 }
2207 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002208 else if (!strcmp(args[0], "appsession")) { /* cookie name */
Cyril Bontébf47aeb2009-10-15 00:15:40 +02002209 int cur_arg;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002210
Cyril Bonté3b7a3692010-01-10 17:01:47 +01002211 if (curproxy == &defproxy) {
2212 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
2213 err_code |= ERR_ALERT | ERR_FATAL;
2214 goto out;
2215 }
2216
Willy Tarreau977b8e42006-12-29 14:19:17 +01002217 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02002218 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01002219
Willy Tarreaubaaee002006-06-26 02:48:02 +02002220 if (*(args[5]) == 0) {
Cyril Bontéb21570a2009-11-29 20:04:48 +01002221 Alert("parsing [%s:%d] : '%s' expects 'appsession' <cookie_name> 'len' <len> 'timeout' <timeout> [options*].\n",
Willy Tarreaubaaee002006-06-26 02:48:02 +02002222 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002223 err_code |= ERR_ALERT | ERR_FATAL;
2224 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002225 }
2226 have_appsession = 1;
Willy Tarreaua534fea2008-08-03 12:19:50 +02002227 free(curproxy->appsession_name);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002228 curproxy->appsession_name = strdup(args[1]);
2229 curproxy->appsession_name_len = strlen(curproxy->appsession_name);
2230 curproxy->appsession_len = atoi(args[3]);
Willy Tarreaub3f32f52007-12-02 22:15:14 +01002231 err = parse_time_err(args[5], &val, TIME_UNIT_MS);
2232 if (err) {
2233 Alert("parsing [%s:%d] : unexpected character '%c' in %s timeout.\n",
2234 file, linenum, *err, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002235 err_code |= ERR_ALERT | ERR_FATAL;
2236 goto out;
Willy Tarreaub3f32f52007-12-02 22:15:14 +01002237 }
Willy Tarreau0c303ee2008-07-07 00:09:58 +02002238 curproxy->timeout.appsession = val;
Willy Tarreauee991362007-05-14 14:37:50 +02002239
Willy Tarreau51041c72007-09-09 21:56:53 +02002240 if (appsession_hash_init(&(curproxy->htbl_proxy), destroy) == 0) {
2241 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002242 err_code |= ERR_ALERT | ERR_ABORT;
2243 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002244 }
Cyril Bontébf47aeb2009-10-15 00:15:40 +02002245
2246 cur_arg = 6;
2247 curproxy->options2 &= ~PR_O2_AS_REQL;
Cyril Bontéb21570a2009-11-29 20:04:48 +01002248 curproxy->options2 &= ~PR_O2_AS_M_ANY;
2249 curproxy->options2 |= PR_O2_AS_M_PP;
Cyril Bontébf47aeb2009-10-15 00:15:40 +02002250 while (*(args[cur_arg])) {
Cyril Bontéb21570a2009-11-29 20:04:48 +01002251 if (!strcmp(args[cur_arg], "request-learn")) {
Cyril Bontébf47aeb2009-10-15 00:15:40 +02002252 curproxy->options2 |= PR_O2_AS_REQL;
Cyril Bontéb21570a2009-11-29 20:04:48 +01002253 } else if (!strcmp(args[cur_arg], "prefix")) {
2254 curproxy->options2 |= PR_O2_AS_PFX;
2255 } else if (!strcmp(args[cur_arg], "mode")) {
2256 if (!*args[cur_arg + 1]) {
2257 Alert("parsing [%s:%d] : '%s': missing argument for '%s'.\n",
2258 file, linenum, args[0], args[cur_arg]);
2259 err_code |= ERR_ALERT | ERR_FATAL;
2260 goto out;
2261 }
2262
2263 cur_arg++;
2264 if (!strcmp(args[cur_arg], "query-string")) {
2265 curproxy->options2 &= ~PR_O2_AS_M_ANY;
2266 curproxy->options2 |= PR_O2_AS_M_QS;
2267 } else if (!strcmp(args[cur_arg], "path-parameters")) {
2268 curproxy->options2 &= ~PR_O2_AS_M_ANY;
2269 curproxy->options2 |= PR_O2_AS_M_PP;
2270 } else {
2271 Alert("parsing [%s:%d] : unknown mode '%s'\n", file, linenum, args[cur_arg]);
2272 err_code |= ERR_ALERT | ERR_FATAL;
2273 goto out;
2274 }
2275 }
Cyril Bontébf47aeb2009-10-15 00:15:40 +02002276 cur_arg++;
2277 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002278 } /* Url App Session */
2279 else if (!strcmp(args[0], "capture")) {
Willy Tarreau3b6b1a92009-07-23 13:24:23 +02002280 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02002281 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01002282
Willy Tarreaubaaee002006-06-26 02:48:02 +02002283 if (!strcmp(args[1], "cookie")) { /* name of a cookie to capture */
Cyril Bonté99ed3272010-01-24 23:29:44 +01002284 if (curproxy == &defproxy) {
2285 Alert("parsing [%s:%d] : '%s %s' not allowed in 'defaults' section.\n", file, linenum, args[0], args[1]);
2286 err_code |= ERR_ALERT | ERR_FATAL;
2287 goto out;
2288 }
2289
Willy Tarreaubaaee002006-06-26 02:48:02 +02002290 if (*(args[4]) == 0) {
2291 Alert("parsing [%s:%d] : '%s' expects 'cookie' <cookie_name> 'len' <len>.\n",
2292 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002293 err_code |= ERR_ALERT | ERR_FATAL;
2294 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002295 }
Willy Tarreaua534fea2008-08-03 12:19:50 +02002296 free(curproxy->capture_name);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002297 curproxy->capture_name = strdup(args[2]);
2298 curproxy->capture_namelen = strlen(curproxy->capture_name);
2299 curproxy->capture_len = atol(args[4]);
2300 if (curproxy->capture_len >= CAPTURE_LEN) {
2301 Warning("parsing [%s:%d] : truncating capture length to %d bytes.\n",
2302 file, linenum, CAPTURE_LEN - 1);
Willy Tarreau93893792009-07-23 13:19:11 +02002303 err_code |= ERR_WARN;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002304 curproxy->capture_len = CAPTURE_LEN - 1;
2305 }
2306 curproxy->to_log |= LW_COOKIE;
2307 }
2308 else if (!strcmp(args[1], "request") && !strcmp(args[2], "header")) {
2309 struct cap_hdr *hdr;
2310
2311 if (curproxy == &defproxy) {
2312 Alert("parsing [%s:%d] : '%s %s' not allowed in 'defaults' section.\n", file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02002313 err_code |= ERR_ALERT | ERR_FATAL;
2314 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002315 }
2316
2317 if (*(args[3]) == 0 || strcmp(args[4], "len") != 0 || *(args[5]) == 0) {
2318 Alert("parsing [%s:%d] : '%s %s' expects 'header' <header_name> 'len' <len>.\n",
2319 file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02002320 err_code |= ERR_ALERT | ERR_FATAL;
2321 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002322 }
2323
2324 hdr = calloc(sizeof(struct cap_hdr), 1);
2325 hdr->next = curproxy->req_cap;
2326 hdr->name = strdup(args[3]);
2327 hdr->namelen = strlen(args[3]);
2328 hdr->len = atol(args[5]);
Willy Tarreaucf7f3202007-05-13 22:46:04 +02002329 hdr->pool = create_pool("caphdr", hdr->len + 1, MEM_F_SHARED);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002330 hdr->index = curproxy->nb_req_cap++;
2331 curproxy->req_cap = hdr;
2332 curproxy->to_log |= LW_REQHDR;
2333 }
2334 else if (!strcmp(args[1], "response") && !strcmp(args[2], "header")) {
2335 struct cap_hdr *hdr;
2336
2337 if (curproxy == &defproxy) {
2338 Alert("parsing [%s:%d] : '%s %s' not allowed in 'defaults' section.\n", file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02002339 err_code |= ERR_ALERT | ERR_FATAL;
2340 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002341 }
2342
2343 if (*(args[3]) == 0 || strcmp(args[4], "len") != 0 || *(args[5]) == 0) {
2344 Alert("parsing [%s:%d] : '%s %s' expects 'header' <header_name> 'len' <len>.\n",
2345 file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02002346 err_code |= ERR_ALERT | ERR_FATAL;
2347 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002348 }
2349 hdr = calloc(sizeof(struct cap_hdr), 1);
2350 hdr->next = curproxy->rsp_cap;
2351 hdr->name = strdup(args[3]);
2352 hdr->namelen = strlen(args[3]);
2353 hdr->len = atol(args[5]);
Willy Tarreaucf7f3202007-05-13 22:46:04 +02002354 hdr->pool = create_pool("caphdr", hdr->len + 1, MEM_F_SHARED);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002355 hdr->index = curproxy->nb_rsp_cap++;
2356 curproxy->rsp_cap = hdr;
2357 curproxy->to_log |= LW_RSPHDR;
2358 }
2359 else {
2360 Alert("parsing [%s:%d] : '%s' expects 'cookie' or 'request header' or 'response header'.\n",
2361 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002362 err_code |= ERR_ALERT | ERR_FATAL;
2363 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002364 }
2365 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002366 else if (!strcmp(args[0], "retries")) { /* connection retries */
Willy Tarreau977b8e42006-12-29 14:19:17 +01002367 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02002368 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01002369
Willy Tarreaubaaee002006-06-26 02:48:02 +02002370 if (*(args[1]) == 0) {
2371 Alert("parsing [%s:%d] : '%s' expects an integer argument (dispatch counts for one).\n",
2372 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002373 err_code |= ERR_ALERT | ERR_FATAL;
2374 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002375 }
2376 curproxy->conn_retries = atol(args[1]);
2377 }
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002378 else if (!strcmp(args[0], "http-request")) { /* request access control: allow/deny/auth */
Willy Tarreauff011f22011-01-06 17:51:27 +01002379 struct http_req_rule *rule;
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002380
2381 if (curproxy == &defproxy) {
2382 Alert("parsing [%s:%d]: '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
2383 err_code |= ERR_ALERT | ERR_FATAL;
2384 goto out;
2385 }
2386
Willy Tarreauff011f22011-01-06 17:51:27 +01002387 if (!LIST_ISEMPTY(&curproxy->http_req_rules) && !LIST_PREV(&curproxy->http_req_rules, struct http_req_rule *, list)->cond) {
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002388 Warning("parsing [%s:%d]: previous '%s' action has no condition attached, further entries are NOOP.\n",
2389 file, linenum, args[0]);
2390 err_code |= ERR_WARN;
2391 }
2392
Willy Tarreauff011f22011-01-06 17:51:27 +01002393 rule = parse_http_req_cond((const char **)args + 1, file, linenum, curproxy);
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002394
Willy Tarreauff011f22011-01-06 17:51:27 +01002395 if (!rule) {
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002396 err_code |= ERR_ALERT | ERR_ABORT;
2397 goto out;
2398 }
2399
Willy Tarreauff011f22011-01-06 17:51:27 +01002400 err_code |= warnif_cond_requires_resp(rule->cond, file, linenum);
2401 LIST_ADDQ(&curproxy->http_req_rules, &rule->list);
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002402 }
Mark Lamourinec2247f02012-01-04 13:02:01 -05002403 else if (!strcmp(args[0], "http-send-name-header")) { /* send server name in request header */
2404 /* set the header name and length into the proxy structure */
2405 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
2406 err_code |= ERR_WARN;
2407
2408 if (!*args[1]) {
2409 Alert("parsing [%s:%d] : '%s' requires a header string.\n",
2410 file, linenum, args[0]);
2411 err_code |= ERR_ALERT | ERR_FATAL;
2412 goto out;
2413 }
2414
2415 /* set the desired header name */
2416 free(curproxy->server_id_hdr_name);
2417 curproxy->server_id_hdr_name = strdup(args[1]);
2418 curproxy->server_id_hdr_len = strlen(curproxy->server_id_hdr_name);
2419 }
Willy Tarreau5c8e3e02007-05-07 00:58:25 +02002420 else if (!strcmp(args[0], "block")) { /* early blocking based on ACLs */
Willy Tarreaub099aca2008-10-12 17:26:37 +02002421 if (curproxy == &defproxy) {
2422 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002423 err_code |= ERR_ALERT | ERR_FATAL;
2424 goto out;
Willy Tarreaub099aca2008-10-12 17:26:37 +02002425 }
2426
Willy Tarreauef6494c2010-01-28 17:12:36 +01002427 if (strcmp(args[1], "if") != 0 && strcmp(args[1], "unless") != 0) {
Willy Tarreau5c8e3e02007-05-07 00:58:25 +02002428 Alert("parsing [%s:%d] : '%s' requires either 'if' or 'unless' followed by a condition.\n",
2429 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002430 err_code |= ERR_ALERT | ERR_FATAL;
2431 goto out;
Willy Tarreau5c8e3e02007-05-07 00:58:25 +02002432 }
2433
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002434 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + 1, &errmsg)) == NULL) {
2435 Alert("parsing [%s:%d] : error detected while parsing blocking condition : %s.\n",
2436 file, linenum, errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02002437 err_code |= ERR_ALERT | ERR_FATAL;
2438 goto out;
Willy Tarreau5c8e3e02007-05-07 00:58:25 +02002439 }
Willy Tarreauef6494c2010-01-28 17:12:36 +01002440
Willy Tarreau5c8e3e02007-05-07 00:58:25 +02002441 LIST_ADDQ(&curproxy->block_cond, &cond->list);
Willy Tarreau61d18892009-03-31 10:49:21 +02002442 warnif_misplaced_block(curproxy, file, linenum, args[0]);
Willy Tarreau5c8e3e02007-05-07 00:58:25 +02002443 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002444 else if (!strcmp(args[0], "redirect")) {
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002445 struct redirect_rule *rule;
2446 int cur_arg;
2447 int type = REDIRECT_TYPE_NONE;
2448 int code = 302;
2449 char *destination = NULL;
Willy Tarreau0140f252008-11-19 21:07:09 +01002450 char *cookie = NULL;
2451 int cookie_set = 0;
Willy Tarreau79da4692008-11-19 20:03:04 +01002452 unsigned int flags = REDIRECT_FLAG_NONE;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002453
Cyril Bonté99ed3272010-01-24 23:29:44 +01002454 if (curproxy == &defproxy) {
2455 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
2456 err_code |= ERR_ALERT | ERR_FATAL;
2457 goto out;
2458 }
2459
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002460 cur_arg = 1;
2461 while (*(args[cur_arg])) {
2462 if (!strcmp(args[cur_arg], "location")) {
2463 if (!*args[cur_arg + 1]) {
2464 Alert("parsing [%s:%d] : '%s': missing argument for '%s'.\n",
2465 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02002466 err_code |= ERR_ALERT | ERR_FATAL;
2467 goto out;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002468 }
2469
2470 type = REDIRECT_TYPE_LOCATION;
2471 cur_arg++;
2472 destination = args[cur_arg];
2473 }
2474 else if (!strcmp(args[cur_arg], "prefix")) {
2475 if (!*args[cur_arg + 1]) {
2476 Alert("parsing [%s:%d] : '%s': missing argument for '%s'.\n",
2477 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02002478 err_code |= ERR_ALERT | ERR_FATAL;
2479 goto out;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002480 }
2481
2482 type = REDIRECT_TYPE_PREFIX;
2483 cur_arg++;
2484 destination = args[cur_arg];
2485 }
Willy Tarreau2e1dca82012-09-12 08:43:15 +02002486 else if (!strcmp(args[cur_arg], "scheme")) {
2487 if (!*args[cur_arg + 1]) {
2488 Alert("parsing [%s:%d] : '%s': missing argument for '%s'.\n",
2489 file, linenum, args[0], args[cur_arg]);
2490 err_code |= ERR_ALERT | ERR_FATAL;
2491 goto out;
2492 }
2493
2494 type = REDIRECT_TYPE_SCHEME;
2495 cur_arg++;
2496 destination = args[cur_arg];
2497 }
Willy Tarreau0140f252008-11-19 21:07:09 +01002498 else if (!strcmp(args[cur_arg], "set-cookie")) {
2499 if (!*args[cur_arg + 1]) {
2500 Alert("parsing [%s:%d] : '%s': missing argument for '%s'.\n",
2501 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02002502 err_code |= ERR_ALERT | ERR_FATAL;
2503 goto out;
Willy Tarreau0140f252008-11-19 21:07:09 +01002504 }
2505
2506 cur_arg++;
2507 cookie = args[cur_arg];
2508 cookie_set = 1;
2509 }
2510 else if (!strcmp(args[cur_arg], "clear-cookie")) {
2511 if (!*args[cur_arg + 1]) {
2512 Alert("parsing [%s:%d] : '%s': missing argument for '%s'.\n",
2513 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02002514 err_code |= ERR_ALERT | ERR_FATAL;
2515 goto out;
Willy Tarreau0140f252008-11-19 21:07:09 +01002516 }
2517
2518 cur_arg++;
2519 cookie = args[cur_arg];
2520 cookie_set = 0;
2521 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002522 else if (!strcmp(args[cur_arg],"code")) {
2523 if (!*args[cur_arg + 1]) {
2524 Alert("parsing [%s:%d] : '%s': missing HTTP code.\n",
2525 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002526 err_code |= ERR_ALERT | ERR_FATAL;
2527 goto out;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002528 }
2529 cur_arg++;
2530 code = atol(args[cur_arg]);
2531 if (code < 301 || code > 303) {
2532 Alert("parsing [%s:%d] : '%s': unsupported HTTP code '%d'.\n",
2533 file, linenum, args[0], code);
Willy Tarreau93893792009-07-23 13:19:11 +02002534 err_code |= ERR_ALERT | ERR_FATAL;
2535 goto out;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002536 }
2537 }
Willy Tarreau79da4692008-11-19 20:03:04 +01002538 else if (!strcmp(args[cur_arg],"drop-query")) {
2539 flags |= REDIRECT_FLAG_DROP_QS;
2540 }
Willy Tarreau81e3b4f2010-01-10 00:42:19 +01002541 else if (!strcmp(args[cur_arg],"append-slash")) {
2542 flags |= REDIRECT_FLAG_APPEND_SLASH;
2543 }
Willy Tarreauef6494c2010-01-28 17:12:36 +01002544 else if (strcmp(args[cur_arg], "if") == 0 ||
2545 strcmp(args[cur_arg], "unless") == 0) {
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002546 cond = build_acl_cond(file, linenum, curproxy, (const char **)args + cur_arg, &errmsg);
Willy Tarreauef6494c2010-01-28 17:12:36 +01002547 if (!cond) {
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002548 Alert("parsing [%s:%d] : '%s': error detected while parsing redirect condition : %s.\n",
2549 file, linenum, args[0], errmsg);
Willy Tarreauef6494c2010-01-28 17:12:36 +01002550 err_code |= ERR_ALERT | ERR_FATAL;
2551 goto out;
2552 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002553 break;
2554 }
2555 else {
Willy Tarreau2e1dca82012-09-12 08:43:15 +02002556 Alert("parsing [%s:%d] : '%s' expects 'code', 'prefix', 'location', 'scheme', 'set-cookie', 'clear-cookie', 'drop-query' or 'append-slash' (was '%s').\n",
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002557 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02002558 err_code |= ERR_ALERT | ERR_FATAL;
2559 goto out;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002560 }
2561 cur_arg++;
2562 }
2563
2564 if (type == REDIRECT_TYPE_NONE) {
2565 Alert("parsing [%s:%d] : '%s' expects a redirection type ('prefix' or 'location').\n",
2566 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002567 err_code |= ERR_ALERT | ERR_FATAL;
2568 goto out;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002569 }
2570
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002571 rule = (struct redirect_rule *)calloc(1, sizeof(*rule));
2572 rule->cond = cond;
2573 rule->rdr_str = strdup(destination);
2574 rule->rdr_len = strlen(destination);
Willy Tarreau0140f252008-11-19 21:07:09 +01002575 if (cookie) {
2576 /* depending on cookie_set, either we want to set the cookie, or to clear it.
William Turnerd9865262010-03-01 13:30:34 -05002577 * a clear consists in appending "; path=/; Max-Age=0;" at the end.
Willy Tarreau0140f252008-11-19 21:07:09 +01002578 */
2579 rule->cookie_len = strlen(cookie);
William Turnerd9865262010-03-01 13:30:34 -05002580 if (cookie_set) {
2581 rule->cookie_str = malloc(rule->cookie_len + 10);
2582 memcpy(rule->cookie_str, cookie, rule->cookie_len);
2583 memcpy(rule->cookie_str + rule->cookie_len, "; path=/;", 10);
2584 rule->cookie_len += 9;
2585 } else {
2586 rule->cookie_str = malloc(rule->cookie_len + 21);
Willy Tarreau0140f252008-11-19 21:07:09 +01002587 memcpy(rule->cookie_str, cookie, rule->cookie_len);
William Turnerd9865262010-03-01 13:30:34 -05002588 memcpy(rule->cookie_str + rule->cookie_len, "; path=/; Max-Age=0;", 21);
2589 rule->cookie_len += 20;
Willy Tarreau0140f252008-11-19 21:07:09 +01002590 }
2591 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002592 rule->type = type;
2593 rule->code = code;
Willy Tarreau79da4692008-11-19 20:03:04 +01002594 rule->flags = flags;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002595 LIST_INIT(&rule->list);
2596 LIST_ADDQ(&curproxy->redirect_rules, &rule->list);
Willy Tarreau9d9ed012011-02-23 15:24:42 +01002597 err_code |= warnif_rule_after_use_backend(curproxy, file, linenum, args[0]);
2598 err_code |= warnif_cond_requires_resp(cond, file, linenum);
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002599 }
Krzysztof Piotr Oledzki7b723ef2009-01-27 21:09:41 +01002600 else if (!strcmp(args[0], "use_backend")) {
Willy Tarreau55ea7572007-06-17 19:56:27 +02002601 struct switching_rule *rule;
2602
Willy Tarreaub099aca2008-10-12 17:26:37 +02002603 if (curproxy == &defproxy) {
2604 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002605 err_code |= ERR_ALERT | ERR_FATAL;
2606 goto out;
Willy Tarreaub099aca2008-10-12 17:26:37 +02002607 }
2608
Willy Tarreau55ea7572007-06-17 19:56:27 +02002609 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02002610 err_code |= ERR_WARN;
Willy Tarreau55ea7572007-06-17 19:56:27 +02002611
2612 if (*(args[1]) == 0) {
2613 Alert("parsing [%s:%d] : '%s' expects a backend name.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002614 err_code |= ERR_ALERT | ERR_FATAL;
2615 goto out;
Willy Tarreau55ea7572007-06-17 19:56:27 +02002616 }
2617
Willy Tarreauef6494c2010-01-28 17:12:36 +01002618 if (strcmp(args[2], "if") != 0 && strcmp(args[2], "unless") != 0) {
Willy Tarreau55ea7572007-06-17 19:56:27 +02002619 Alert("parsing [%s:%d] : '%s' requires either 'if' or 'unless' followed by a condition.\n",
2620 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002621 err_code |= ERR_ALERT | ERR_FATAL;
2622 goto out;
Willy Tarreau55ea7572007-06-17 19:56:27 +02002623 }
2624
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002625 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + 2, &errmsg)) == NULL) {
2626 Alert("parsing [%s:%d] : error detected while parsing switching rule : %s.\n",
2627 file, linenum, errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02002628 err_code |= ERR_ALERT | ERR_FATAL;
2629 goto out;
Willy Tarreau55ea7572007-06-17 19:56:27 +02002630 }
2631
Willy Tarreauf1e98b82010-01-28 17:59:39 +01002632 err_code |= warnif_cond_requires_resp(cond, file, linenum);
Willy Tarreaua9802632008-07-25 19:13:19 +02002633
Willy Tarreau55ea7572007-06-17 19:56:27 +02002634 rule = (struct switching_rule *)calloc(1, sizeof(*rule));
2635 rule->cond = cond;
2636 rule->be.name = strdup(args[1]);
2637 LIST_INIT(&rule->list);
2638 LIST_ADDQ(&curproxy->switching_rules, &rule->list);
2639 }
Willy Tarreau4a5cade2012-04-05 21:09:48 +02002640 else if (strcmp(args[0], "use-server") == 0) {
2641 struct server_rule *rule;
2642
2643 if (curproxy == &defproxy) {
2644 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
2645 err_code |= ERR_ALERT | ERR_FATAL;
2646 goto out;
2647 }
2648
2649 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
2650 err_code |= ERR_WARN;
2651
2652 if (*(args[1]) == 0) {
2653 Alert("parsing [%s:%d] : '%s' expects a server name.\n", file, linenum, args[0]);
2654 err_code |= ERR_ALERT | ERR_FATAL;
2655 goto out;
2656 }
2657
2658 if (strcmp(args[2], "if") != 0 && strcmp(args[2], "unless") != 0) {
2659 Alert("parsing [%s:%d] : '%s' requires either 'if' or 'unless' followed by a condition.\n",
2660 file, linenum, args[0]);
2661 err_code |= ERR_ALERT | ERR_FATAL;
2662 goto out;
2663 }
2664
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002665 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + 2, &errmsg)) == NULL) {
2666 Alert("parsing [%s:%d] : error detected while parsing switching rule : %s.\n",
2667 file, linenum, errmsg);
Willy Tarreau4a5cade2012-04-05 21:09:48 +02002668 err_code |= ERR_ALERT | ERR_FATAL;
2669 goto out;
2670 }
2671
2672 err_code |= warnif_cond_requires_resp(cond, file, linenum);
2673
2674 rule = (struct server_rule *)calloc(1, sizeof(*rule));
2675 rule->cond = cond;
2676 rule->srv.name = strdup(args[1]);
2677 LIST_INIT(&rule->list);
2678 LIST_ADDQ(&curproxy->server_rules, &rule->list);
2679 curproxy->be_req_ana |= AN_REQ_SRV_RULES;
2680 }
Cyril Bonté47fdd8e2010-04-25 00:00:51 +02002681 else if ((!strcmp(args[0], "force-persist")) ||
2682 (!strcmp(args[0], "ignore-persist"))) {
2683 struct persist_rule *rule;
Willy Tarreau4de91492010-01-22 19:10:05 +01002684
2685 if (curproxy == &defproxy) {
2686 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
2687 err_code |= ERR_ALERT | ERR_FATAL;
2688 goto out;
2689 }
2690
2691 if (warnifnotcap(curproxy, PR_CAP_FE|PR_CAP_BE, file, linenum, args[0], NULL))
2692 err_code |= ERR_WARN;
2693
Willy Tarreauef6494c2010-01-28 17:12:36 +01002694 if (strcmp(args[1], "if") != 0 && strcmp(args[1], "unless") != 0) {
Willy Tarreau4de91492010-01-22 19:10:05 +01002695 Alert("parsing [%s:%d] : '%s' requires either 'if' or 'unless' followed by a condition.\n",
2696 file, linenum, args[0]);
2697 err_code |= ERR_ALERT | ERR_FATAL;
2698 goto out;
2699 }
2700
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002701 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + 1, &errmsg)) == NULL) {
2702 Alert("parsing [%s:%d] : error detected while parsing a '%s' rule : %s.\n",
2703 file, linenum, args[0], errmsg);
Willy Tarreau4de91492010-01-22 19:10:05 +01002704 err_code |= ERR_ALERT | ERR_FATAL;
2705 goto out;
2706 }
2707
Willy Tarreauf1e98b82010-01-28 17:59:39 +01002708 err_code |= warnif_cond_requires_resp(cond, file, linenum);
Willy Tarreau4de91492010-01-22 19:10:05 +01002709
Cyril Bonté47fdd8e2010-04-25 00:00:51 +02002710 rule = (struct persist_rule *)calloc(1, sizeof(*rule));
Willy Tarreau4de91492010-01-22 19:10:05 +01002711 rule->cond = cond;
Cyril Bonté47fdd8e2010-04-25 00:00:51 +02002712 if (!strcmp(args[0], "force-persist")) {
2713 rule->type = PERSIST_TYPE_FORCE;
2714 } else {
2715 rule->type = PERSIST_TYPE_IGNORE;
2716 }
Willy Tarreau4de91492010-01-22 19:10:05 +01002717 LIST_INIT(&rule->list);
Cyril Bonté47fdd8e2010-04-25 00:00:51 +02002718 LIST_ADDQ(&curproxy->persist_rules, &rule->list);
Willy Tarreau4de91492010-01-22 19:10:05 +01002719 }
Emeric Brunb982a3d2010-01-04 15:45:53 +01002720 else if (!strcmp(args[0], "stick-table")) {
2721 int myidx = 1;
2722
Emeric Brun32da3c42010-09-23 18:39:19 +02002723 curproxy->table.id = curproxy->id;
Emeric Brunb982a3d2010-01-04 15:45:53 +01002724 curproxy->table.type = (unsigned int)-1;
2725 while (*args[myidx]) {
2726 const char *err;
2727
2728 if (strcmp(args[myidx], "size") == 0) {
2729 myidx++;
2730 if (!*(args[myidx])) {
2731 Alert("parsing [%s:%d] : stick-table: missing argument after '%s'.\n",
2732 file, linenum, args[myidx-1]);
2733 err_code |= ERR_ALERT | ERR_FATAL;
2734 goto out;
2735 }
2736 if ((err = parse_size_err(args[myidx], &curproxy->table.size))) {
2737 Alert("parsing [%s:%d] : stick-table: unexpected character '%c' in argument of '%s'.\n",
2738 file, linenum, *err, args[myidx-1]);
2739 err_code |= ERR_ALERT | ERR_FATAL;
2740 goto out;
2741 }
Willy Tarreau0c559312010-01-26 18:36:26 +01002742 myidx++;
Emeric Brunb982a3d2010-01-04 15:45:53 +01002743 }
Emeric Brun32da3c42010-09-23 18:39:19 +02002744 else if (strcmp(args[myidx], "peers") == 0) {
2745 myidx++;
2746 if (!*(args[myidx])) {
2747 Alert("parsing [%s:%d] : stick-table: missing argument after '%s'.\n",
2748 file, linenum, args[myidx-1]);
2749 err_code |= ERR_ALERT | ERR_FATAL;
2750 goto out;
2751 }
2752 curproxy->table.peers.name = strdup(args[myidx++]);
2753 }
Emeric Brunb982a3d2010-01-04 15:45:53 +01002754 else if (strcmp(args[myidx], "expire") == 0) {
2755 myidx++;
2756 if (!*(args[myidx])) {
2757 Alert("parsing [%s:%d] : stick-table: missing argument after '%s'.\n",
2758 file, linenum, args[myidx-1]);
2759 err_code |= ERR_ALERT | ERR_FATAL;
2760 goto out;
2761 }
2762 err = parse_time_err(args[myidx], &val, TIME_UNIT_MS);
2763 if (err) {
2764 Alert("parsing [%s:%d] : stick-table: unexpected character '%c' in argument of '%s'.\n",
2765 file, linenum, *err, args[myidx-1]);
2766 err_code |= ERR_ALERT | ERR_FATAL;
2767 goto out;
2768 }
2769 curproxy->table.expire = val;
Willy Tarreau0c559312010-01-26 18:36:26 +01002770 myidx++;
Emeric Brunb982a3d2010-01-04 15:45:53 +01002771 }
2772 else if (strcmp(args[myidx], "nopurge") == 0) {
2773 curproxy->table.nopurge = 1;
Willy Tarreau0c559312010-01-26 18:36:26 +01002774 myidx++;
Emeric Brunb982a3d2010-01-04 15:45:53 +01002775 }
2776 else if (strcmp(args[myidx], "type") == 0) {
2777 myidx++;
2778 if (stktable_parse_type(args, &myidx, &curproxy->table.type, &curproxy->table.key_size) != 0) {
2779 Alert("parsing [%s:%d] : stick-table: unknown type '%s'.\n",
2780 file, linenum, args[myidx]);
2781 err_code |= ERR_ALERT | ERR_FATAL;
2782 goto out;
2783 }
Willy Tarreau0c559312010-01-26 18:36:26 +01002784 /* myidx already points to next arg */
2785 }
Willy Tarreau08d5f982010-06-06 13:34:54 +02002786 else if (strcmp(args[myidx], "store") == 0) {
Willy Tarreauac782882010-06-20 10:41:54 +02002787 int type, err;
Willy Tarreau888617d2010-06-20 09:11:39 +02002788 char *cw, *nw, *sa;
Willy Tarreau08d5f982010-06-06 13:34:54 +02002789
2790 myidx++;
Willy Tarreaub084e9c2010-06-19 07:12:36 +02002791 nw = args[myidx];
2792 while (*nw) {
2793 /* the "store" keyword supports a comma-separated list */
2794 cw = nw;
Willy Tarreau888617d2010-06-20 09:11:39 +02002795 sa = NULL; /* store arg */
2796 while (*nw && *nw != ',') {
2797 if (*nw == '(') {
2798 *nw = 0;
2799 sa = ++nw;
2800 while (*nw != ')') {
2801 if (!*nw) {
2802 Alert("parsing [%s:%d] : %s: missing closing parenthesis after store option '%s'.\n",
2803 file, linenum, args[0], cw);
2804 err_code |= ERR_ALERT | ERR_FATAL;
2805 goto out;
2806 }
2807 nw++;
2808 }
2809 *nw = '\0';
2810 }
Willy Tarreaub084e9c2010-06-19 07:12:36 +02002811 nw++;
Willy Tarreau888617d2010-06-20 09:11:39 +02002812 }
Willy Tarreaub084e9c2010-06-19 07:12:36 +02002813 if (*nw)
2814 *nw++ = '\0';
2815 type = stktable_get_data_type(cw);
2816 if (type < 0) {
2817 Alert("parsing [%s:%d] : %s: unknown store option '%s'.\n",
2818 file, linenum, args[0], cw);
2819 err_code |= ERR_ALERT | ERR_FATAL;
2820 goto out;
2821 }
Willy Tarreauac782882010-06-20 10:41:54 +02002822
2823 err = stktable_alloc_data_type(&curproxy->table, type, sa);
2824 switch (err) {
2825 case PE_NONE: break;
2826 case PE_EXIST:
Willy Tarreaub084e9c2010-06-19 07:12:36 +02002827 Warning("parsing [%s:%d]: %s: store option '%s' already enabled, ignored.\n",
2828 file, linenum, args[0], cw);
2829 err_code |= ERR_WARN;
Willy Tarreauac782882010-06-20 10:41:54 +02002830 break;
2831
2832 case PE_ARG_MISSING:
2833 Alert("parsing [%s:%d] : %s: missing argument to store option '%s'.\n",
2834 file, linenum, args[0], cw);
2835 err_code |= ERR_ALERT | ERR_FATAL;
2836 goto out;
2837
2838 case PE_ARG_NOT_USED:
2839 Alert("parsing [%s:%d] : %s: unexpected argument to store option '%s'.\n",
2840 file, linenum, args[0], cw);
2841 err_code |= ERR_ALERT | ERR_FATAL;
2842 goto out;
2843
2844 default:
2845 Alert("parsing [%s:%d] : %s: error when processing store option '%s'.\n",
2846 file, linenum, args[0], cw);
2847 err_code |= ERR_ALERT | ERR_FATAL;
2848 goto out;
Willy Tarreaub084e9c2010-06-19 07:12:36 +02002849 }
Willy Tarreau08d5f982010-06-06 13:34:54 +02002850 }
2851 myidx++;
2852 }
Willy Tarreau0c559312010-01-26 18:36:26 +01002853 else {
2854 Alert("parsing [%s:%d] : stick-table: unknown argument '%s'.\n",
2855 file, linenum, args[myidx]);
2856 err_code |= ERR_ALERT | ERR_FATAL;
2857 goto out;
Emeric Brunb982a3d2010-01-04 15:45:53 +01002858 }
Emeric Brunb982a3d2010-01-04 15:45:53 +01002859 }
2860
2861 if (!curproxy->table.size) {
2862 Alert("parsing [%s:%d] : stick-table: missing size.\n",
2863 file, linenum);
2864 err_code |= ERR_ALERT | ERR_FATAL;
2865 goto out;
2866 }
2867
2868 if (curproxy->table.type == (unsigned int)-1) {
2869 Alert("parsing [%s:%d] : stick-table: missing type.\n",
2870 file, linenum);
2871 err_code |= ERR_ALERT | ERR_FATAL;
2872 goto out;
2873 }
2874 }
2875 else if (!strcmp(args[0], "stick")) {
Emeric Brunb982a3d2010-01-04 15:45:53 +01002876 struct sticking_rule *rule;
Willy Tarreau12785782012-04-27 21:37:17 +02002877 struct sample_expr *expr;
Emeric Brunb982a3d2010-01-04 15:45:53 +01002878 int myidx = 0;
2879 const char *name = NULL;
2880 int flags;
2881
2882 if (curproxy == &defproxy) {
2883 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
2884 err_code |= ERR_ALERT | ERR_FATAL;
2885 goto out;
2886 }
2887
2888 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL)) {
2889 err_code |= ERR_WARN;
2890 goto out;
2891 }
2892
2893 myidx++;
2894 if ((strcmp(args[myidx], "store") == 0) ||
2895 (strcmp(args[myidx], "store-request") == 0)) {
2896 myidx++;
2897 flags = STK_IS_STORE;
2898 }
2899 else if (strcmp(args[myidx], "store-response") == 0) {
2900 myidx++;
2901 flags = STK_IS_STORE | STK_ON_RSP;
2902 }
2903 else if (strcmp(args[myidx], "match") == 0) {
2904 myidx++;
2905 flags = STK_IS_MATCH;
2906 }
2907 else if (strcmp(args[myidx], "on") == 0) {
2908 myidx++;
2909 flags = STK_IS_MATCH | STK_IS_STORE;
2910 }
2911 else {
2912 Alert("parsing [%s:%d] : '%s' expects 'on', 'match', or 'store'.\n", file, linenum, args[0]);
2913 err_code |= ERR_ALERT | ERR_FATAL;
2914 goto out;
2915 }
2916
2917 if (*(args[myidx]) == 0) {
2918 Alert("parsing [%s:%d] : '%s' expects a fetch method.\n", file, linenum, args[0]);
2919 err_code |= ERR_ALERT | ERR_FATAL;
2920 goto out;
2921 }
2922
David du Colombier7af46052012-05-16 14:16:48 +02002923 expr = sample_parse_expr(args, &myidx, trash, trashlen);
Emeric Brunb982a3d2010-01-04 15:45:53 +01002924 if (!expr) {
Emeric Brun485479d2010-09-23 18:02:19 +02002925 Alert("parsing [%s:%d] : '%s': %s\n", file, linenum, args[0], trash);
Emeric Brunb982a3d2010-01-04 15:45:53 +01002926 err_code |= ERR_ALERT | ERR_FATAL;
2927 goto out;
2928 }
2929
2930 if (flags & STK_ON_RSP) {
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02002931 if (!(expr->fetch->cap & SMP_CAP_RES)) {
Emeric Brunb982a3d2010-01-04 15:45:53 +01002932 Alert("parsing [%s:%d] : '%s': fetch method '%s' can not be used on response.\n",
2933 file, linenum, args[0], expr->fetch->kw);
2934 err_code |= ERR_ALERT | ERR_FATAL;
Simon Horman5e55f5d2011-07-15 13:14:07 +09002935 free(expr);
Emeric Brunb982a3d2010-01-04 15:45:53 +01002936 goto out;
2937 }
2938 } else {
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02002939 if (!(expr->fetch->cap & SMP_CAP_REQ)) {
Emeric Brunb982a3d2010-01-04 15:45:53 +01002940 Alert("parsing [%s:%d] : '%s': fetch method '%s' can not be used on request.\n",
2941 file, linenum, args[0], expr->fetch->kw);
2942 err_code |= ERR_ALERT | ERR_FATAL;
Simon Horman5e55f5d2011-07-15 13:14:07 +09002943 free(expr);
Emeric Brunb982a3d2010-01-04 15:45:53 +01002944 goto out;
2945 }
2946 }
2947
2948 if (strcmp(args[myidx], "table") == 0) {
2949 myidx++;
2950 name = args[myidx++];
2951 }
2952
Willy Tarreauef6494c2010-01-28 17:12:36 +01002953 if (strcmp(args[myidx], "if") == 0 || strcmp(args[myidx], "unless") == 0) {
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002954 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + myidx, &errmsg)) == NULL) {
2955 Alert("parsing [%s:%d] : '%s': error detected while parsing sticking condition : %s.\n",
2956 file, linenum, args[0], errmsg);
Emeric Brunb982a3d2010-01-04 15:45:53 +01002957 err_code |= ERR_ALERT | ERR_FATAL;
Simon Horman5e55f5d2011-07-15 13:14:07 +09002958 free(expr);
Emeric Brunb982a3d2010-01-04 15:45:53 +01002959 goto out;
2960 }
Emeric Brunb982a3d2010-01-04 15:45:53 +01002961 }
Willy Tarreauef6494c2010-01-28 17:12:36 +01002962 else if (*(args[myidx])) {
2963 Alert("parsing [%s:%d] : '%s': unknown keyword '%s'.\n",
2964 file, linenum, args[0], args[myidx]);
2965 err_code |= ERR_ALERT | ERR_FATAL;
Simon Horman5e55f5d2011-07-15 13:14:07 +09002966 free(expr);
Willy Tarreauef6494c2010-01-28 17:12:36 +01002967 goto out;
2968 }
Emeric Brun97679e72010-09-23 17:56:44 +02002969 if (flags & STK_ON_RSP)
2970 err_code |= warnif_cond_requires_req(cond, file, linenum);
2971 else
2972 err_code |= warnif_cond_requires_resp(cond, file, linenum);
Willy Tarreauf1e98b82010-01-28 17:59:39 +01002973
Emeric Brunb982a3d2010-01-04 15:45:53 +01002974 rule = (struct sticking_rule *)calloc(1, sizeof(*rule));
2975 rule->cond = cond;
2976 rule->expr = expr;
2977 rule->flags = flags;
2978 rule->table.name = name ? strdup(name) : NULL;
2979 LIST_INIT(&rule->list);
2980 if (flags & STK_ON_RSP)
2981 LIST_ADDQ(&curproxy->storersp_rules, &rule->list);
2982 else
2983 LIST_ADDQ(&curproxy->sticking_rules, &rule->list);
2984 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002985 else if (!strcmp(args[0], "stats")) {
Willy Tarreau977b8e42006-12-29 14:19:17 +01002986 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02002987 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01002988
Willy Tarreaubaaee002006-06-26 02:48:02 +02002989 if (curproxy != &defproxy && curproxy->uri_auth == defproxy.uri_auth)
2990 curproxy->uri_auth = NULL; /* we must detach from the default config */
2991
Krzysztof Piotr Oledzki260a3bb2010-01-06 16:25:05 +01002992 if (!*args[1]) {
2993 goto stats_error_parsing;
Cyril Bonté474be412010-10-12 00:14:36 +02002994 } else if (!strcmp(args[1], "admin")) {
2995 struct stats_admin_rule *rule;
2996
2997 if (curproxy == &defproxy) {
2998 Alert("parsing [%s:%d]: '%s %s' not allowed in 'defaults' section.\n", file, linenum, args[0], args[1]);
2999 err_code |= ERR_ALERT | ERR_FATAL;
3000 goto out;
3001 }
3002
3003 if (!stats_check_init_uri_auth(&curproxy->uri_auth)) {
3004 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
3005 err_code |= ERR_ALERT | ERR_ABORT;
3006 goto out;
3007 }
3008
3009 if (strcmp(args[2], "if") != 0 && strcmp(args[2], "unless") != 0) {
3010 Alert("parsing [%s:%d] : '%s %s' requires either 'if' or 'unless' followed by a condition.\n",
3011 file, linenum, args[0], args[1]);
3012 err_code |= ERR_ALERT | ERR_FATAL;
3013 goto out;
3014 }
Willy Tarreaub7451bb2012-04-27 12:38:15 +02003015 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + 2, &errmsg)) == NULL) {
3016 Alert("parsing [%s:%d] : error detected while parsing a '%s %s' rule : %s.\n",
3017 file, linenum, args[0], args[1], errmsg);
Cyril Bonté474be412010-10-12 00:14:36 +02003018 err_code |= ERR_ALERT | ERR_FATAL;
3019 goto out;
3020 }
3021
3022 err_code |= warnif_cond_requires_resp(cond, file, linenum);
3023
3024 rule = (struct stats_admin_rule *)calloc(1, sizeof(*rule));
3025 rule->cond = cond;
3026 LIST_INIT(&rule->list);
3027 LIST_ADDQ(&curproxy->uri_auth->admin_rules, &rule->list);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003028 } else if (!strcmp(args[1], "uri")) {
3029 if (*(args[2]) == 0) {
3030 Alert("parsing [%s:%d] : 'uri' needs an URI prefix.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003031 err_code |= ERR_ALERT | ERR_FATAL;
3032 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003033 } else if (!stats_set_uri(&curproxy->uri_auth, args[2])) {
3034 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003035 err_code |= ERR_ALERT | ERR_ABORT;
3036 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003037 }
3038 } else if (!strcmp(args[1], "realm")) {
3039 if (*(args[2]) == 0) {
3040 Alert("parsing [%s:%d] : 'realm' needs an realm name.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003041 err_code |= ERR_ALERT | ERR_FATAL;
3042 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003043 } else if (!stats_set_realm(&curproxy->uri_auth, args[2])) {
3044 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003045 err_code |= ERR_ALERT | ERR_ABORT;
3046 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003047 }
Willy Tarreaubbd42122007-07-25 07:26:38 +02003048 } else if (!strcmp(args[1], "refresh")) {
Willy Tarreaub3f32f52007-12-02 22:15:14 +01003049 unsigned interval;
3050
3051 err = parse_time_err(args[2], &interval, TIME_UNIT_S);
3052 if (err) {
3053 Alert("parsing [%s:%d] : unexpected character '%c' in stats refresh interval.\n",
3054 file, linenum, *err);
Willy Tarreau93893792009-07-23 13:19:11 +02003055 err_code |= ERR_ALERT | ERR_FATAL;
3056 goto out;
Willy Tarreaubbd42122007-07-25 07:26:38 +02003057 } else if (!stats_set_refresh(&curproxy->uri_auth, interval)) {
3058 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003059 err_code |= ERR_ALERT | ERR_ABORT;
3060 goto out;
Willy Tarreaubbd42122007-07-25 07:26:38 +02003061 }
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01003062 } else if (!strcmp(args[1], "http-request")) { /* request access control: allow/deny/auth */
Willy Tarreauff011f22011-01-06 17:51:27 +01003063 struct http_req_rule *rule;
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01003064
3065 if (curproxy == &defproxy) {
3066 Alert("parsing [%s:%d]: '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
3067 err_code |= ERR_ALERT | ERR_FATAL;
3068 goto out;
3069 }
3070
3071 if (!stats_check_init_uri_auth(&curproxy->uri_auth)) {
3072 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
3073 err_code |= ERR_ALERT | ERR_ABORT;
3074 goto out;
3075 }
3076
Willy Tarreauff011f22011-01-06 17:51:27 +01003077 if (!LIST_ISEMPTY(&curproxy->uri_auth->http_req_rules) &&
3078 !LIST_PREV(&curproxy->uri_auth->http_req_rules, struct http_req_rule *, list)->cond) {
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01003079 Warning("parsing [%s:%d]: previous '%s' action has no condition attached, further entries are NOOP.\n",
3080 file, linenum, args[0]);
3081 err_code |= ERR_WARN;
3082 }
3083
Willy Tarreauff011f22011-01-06 17:51:27 +01003084 rule = parse_http_req_cond((const char **)args + 2, file, linenum, curproxy);
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01003085
Willy Tarreauff011f22011-01-06 17:51:27 +01003086 if (!rule) {
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01003087 err_code |= ERR_ALERT | ERR_ABORT;
3088 goto out;
3089 }
3090
Willy Tarreauff011f22011-01-06 17:51:27 +01003091 err_code |= warnif_cond_requires_resp(rule->cond, file, linenum);
3092 LIST_ADDQ(&curproxy->uri_auth->http_req_rules, &rule->list);
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01003093
Willy Tarreaubaaee002006-06-26 02:48:02 +02003094 } else if (!strcmp(args[1], "auth")) {
3095 if (*(args[2]) == 0) {
3096 Alert("parsing [%s:%d] : 'auth' needs a user:password account.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003097 err_code |= ERR_ALERT | ERR_FATAL;
3098 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003099 } else if (!stats_add_auth(&curproxy->uri_auth, args[2])) {
3100 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003101 err_code |= ERR_ALERT | ERR_ABORT;
3102 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003103 }
3104 } else if (!strcmp(args[1], "scope")) {
3105 if (*(args[2]) == 0) {
3106 Alert("parsing [%s:%d] : 'scope' needs a proxy name.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003107 err_code |= ERR_ALERT | ERR_FATAL;
3108 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003109 } else if (!stats_add_scope(&curproxy->uri_auth, args[2])) {
3110 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003111 err_code |= ERR_ALERT | ERR_ABORT;
3112 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003113 }
3114 } else if (!strcmp(args[1], "enable")) {
3115 if (!stats_check_init_uri_auth(&curproxy->uri_auth)) {
3116 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003117 err_code |= ERR_ALERT | ERR_ABORT;
3118 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003119 }
Krzysztof Oledzkid9db9272007-10-15 10:05:11 +02003120 } else if (!strcmp(args[1], "hide-version")) {
3121 if (!stats_set_flag(&curproxy->uri_auth, ST_HIDEVER)) {
3122 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003123 err_code |= ERR_ALERT | ERR_ABORT;
3124 goto out;
Krzysztof Oledzkid9db9272007-10-15 10:05:11 +02003125 }
Krzysztof Piotr Oledzki15514c22010-01-04 16:03:09 +01003126 } else if (!strcmp(args[1], "show-legends")) {
3127 if (!stats_set_flag(&curproxy->uri_auth, ST_SHLGNDS)) {
3128 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
3129 err_code |= ERR_ALERT | ERR_ABORT;
3130 goto out;
3131 }
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02003132 } else if (!strcmp(args[1], "show-node")) {
3133
3134 if (*args[2]) {
3135 int i;
3136 char c;
3137
3138 for (i=0; args[2][i]; i++) {
3139 c = args[2][i];
Willy Tarreau88e05812010-03-03 00:16:00 +01003140 if (!isupper((unsigned char)c) && !islower((unsigned char)c) &&
3141 !isdigit((unsigned char)c) && c != '_' && c != '-' && c != '.')
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02003142 break;
3143 }
3144
3145 if (!i || args[2][i]) {
3146 Alert("parsing [%s:%d]: '%s %s' invalid node name - should be a string"
3147 "with digits(0-9), letters(A-Z, a-z), hyphen(-) or underscode(_).\n",
3148 file, linenum, args[0], args[1]);
3149 err_code |= ERR_ALERT | ERR_FATAL;
3150 goto out;
3151 }
3152 }
3153
3154 if (!stats_set_node(&curproxy->uri_auth, args[2])) {
3155 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
3156 err_code |= ERR_ALERT | ERR_ABORT;
3157 goto out;
3158 }
3159 } else if (!strcmp(args[1], "show-desc")) {
3160 char *desc = NULL;
3161
3162 if (*args[2]) {
3163 int i, len=0;
3164 char *d;
3165
3166 for(i=2; *args[i]; i++)
3167 len += strlen(args[i])+1;
3168
3169 desc = d = (char *)calloc(1, len);
3170
3171 d += sprintf(d, "%s", args[2]);
3172 for(i=3; *args[i]; i++)
3173 d += sprintf(d, " %s", args[i]);
3174 }
3175
3176 if (!*args[2] && !global.desc)
3177 Warning("parsing [%s:%d]: '%s' requires a parameter or 'desc' to be set in the global section.\n",
3178 file, linenum, args[1]);
3179 else {
3180 if (!stats_set_desc(&curproxy->uri_auth, desc)) {
3181 free(desc);
3182 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
3183 err_code |= ERR_ALERT | ERR_ABORT;
3184 goto out;
3185 }
3186 free(desc);
3187 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003188 } else {
Krzysztof Piotr Oledzki260a3bb2010-01-06 16:25:05 +01003189stats_error_parsing:
Cyril Bonté474be412010-10-12 00:14:36 +02003190 Alert("parsing [%s:%d]: %s '%s', expects 'admin', 'uri', 'realm', 'auth', 'scope', 'enable', 'hide-version', 'show-node', 'show-desc' or 'show-legends'.\n",
Krzysztof Piotr Oledzki260a3bb2010-01-06 16:25:05 +01003191 file, linenum, *args[1]?"unknown stats parameter":"missing keyword in", args[*args[1]?1:0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003192 err_code |= ERR_ALERT | ERR_FATAL;
3193 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003194 }
3195 }
3196 else if (!strcmp(args[0], "option")) {
Willy Tarreau13943ab2006-12-31 00:24:10 +01003197 int optnum;
3198
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01003199 if (*(args[1]) == '\0') {
3200 Alert("parsing [%s:%d]: '%s' expects an option name.\n",
3201 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003202 err_code |= ERR_ALERT | ERR_FATAL;
3203 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003204 }
Willy Tarreau13943ab2006-12-31 00:24:10 +01003205
3206 for (optnum = 0; cfg_opts[optnum].name; optnum++) {
3207 if (!strcmp(args[1], cfg_opts[optnum].name)) {
Cyril Bonté62846b22010-11-01 19:26:00 +01003208 if (cfg_opts[optnum].cap == PR_CAP_NONE) {
3209 Alert("parsing [%s:%d]: option '%s' is not supported due to build options.\n",
3210 file, linenum, cfg_opts[optnum].name);
3211 err_code |= ERR_ALERT | ERR_FATAL;
3212 goto out;
3213 }
Willy Tarreau93893792009-07-23 13:19:11 +02003214 if (warnifnotcap(curproxy, cfg_opts[optnum].cap, file, linenum, args[1], NULL)) {
3215 err_code |= ERR_WARN;
3216 goto out;
3217 }
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01003218
Willy Tarreau3842f002009-06-14 11:39:52 +02003219 curproxy->no_options &= ~cfg_opts[optnum].val;
3220 curproxy->options &= ~cfg_opts[optnum].val;
3221
3222 switch (kwm) {
3223 case KWM_STD:
3224 curproxy->options |= cfg_opts[optnum].val;
3225 break;
3226 case KWM_NO:
3227 curproxy->no_options |= cfg_opts[optnum].val;
3228 break;
3229 case KWM_DEF: /* already cleared */
3230 break;
Willy Tarreau84b57da2009-06-14 11:10:45 +02003231 }
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01003232
Willy Tarreau93893792009-07-23 13:19:11 +02003233 goto out;
Willy Tarreau13943ab2006-12-31 00:24:10 +01003234 }
3235 }
3236
Willy Tarreau66aa61f2009-01-18 21:44:07 +01003237 for (optnum = 0; cfg_opts2[optnum].name; optnum++) {
3238 if (!strcmp(args[1], cfg_opts2[optnum].name)) {
Cyril Bonté62846b22010-11-01 19:26:00 +01003239 if (cfg_opts2[optnum].cap == PR_CAP_NONE) {
3240 Alert("parsing [%s:%d]: option '%s' is not supported due to build options.\n",
3241 file, linenum, cfg_opts2[optnum].name);
3242 err_code |= ERR_ALERT | ERR_FATAL;
3243 goto out;
3244 }
Willy Tarreau93893792009-07-23 13:19:11 +02003245 if (warnifnotcap(curproxy, cfg_opts2[optnum].cap, file, linenum, args[1], NULL)) {
3246 err_code |= ERR_WARN;
3247 goto out;
3248 }
Willy Tarreau66aa61f2009-01-18 21:44:07 +01003249
Willy Tarreau3842f002009-06-14 11:39:52 +02003250 curproxy->no_options2 &= ~cfg_opts2[optnum].val;
3251 curproxy->options2 &= ~cfg_opts2[optnum].val;
3252
3253 switch (kwm) {
3254 case KWM_STD:
3255 curproxy->options2 |= cfg_opts2[optnum].val;
3256 break;
3257 case KWM_NO:
3258 curproxy->no_options2 |= cfg_opts2[optnum].val;
3259 break;
3260 case KWM_DEF: /* already cleared */
3261 break;
Willy Tarreau84b57da2009-06-14 11:10:45 +02003262 }
Willy Tarreau93893792009-07-23 13:19:11 +02003263 goto out;
Willy Tarreau66aa61f2009-01-18 21:44:07 +01003264 }
3265 }
3266
Willy Tarreau3842f002009-06-14 11:39:52 +02003267 if (kwm != KWM_STD) {
3268 Alert("parsing [%s:%d]: negation/default is not supported for option '%s'.\n",
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01003269 file, linenum, args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02003270 err_code |= ERR_ALERT | ERR_FATAL;
3271 goto out;
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01003272 }
3273
Emeric Brun3a058f32009-06-30 18:26:00 +02003274 if (!strcmp(args[1], "httplog")) {
William Lallemand723b73a2012-02-08 16:37:49 +01003275 char *logformat;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003276 /* generate a complete HTTP log */
William Lallemand723b73a2012-02-08 16:37:49 +01003277 logformat = default_http_log_format;
Emeric Brun3a058f32009-06-30 18:26:00 +02003278 if (*(args[2]) != '\0') {
3279 if (!strcmp(args[2], "clf")) {
3280 curproxy->options2 |= PR_O2_CLFLOG;
William Lallemand723b73a2012-02-08 16:37:49 +01003281 logformat = clf_http_log_format;
Emeric Brun3a058f32009-06-30 18:26:00 +02003282 } else {
3283 Alert("parsing [%s:%d] : keyword '%s' only supports option 'clf'.\n", file, linenum, args[2]);
Willy Tarreau93893792009-07-23 13:19:11 +02003284 err_code |= ERR_ALERT | ERR_FATAL;
3285 goto out;
Emeric Brun3a058f32009-06-30 18:26:00 +02003286 }
3287 }
Willy Tarreau196729e2012-05-31 19:30:26 +02003288 if (curproxy->logformat_string != default_http_log_format &&
3289 curproxy->logformat_string != default_tcp_log_format &&
3290 curproxy->logformat_string != clf_http_log_format)
3291 free(curproxy->logformat_string);
3292 curproxy->logformat_string = logformat;
Emeric Brun3a058f32009-06-30 18:26:00 +02003293 }
William Lallemandbddd4fd2012-02-27 11:23:10 +01003294 else if (!strcmp(args[1], "tcplog")) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02003295 /* generate a detailed TCP log */
Willy Tarreau196729e2012-05-31 19:30:26 +02003296 if (curproxy->logformat_string != default_http_log_format &&
3297 curproxy->logformat_string != default_tcp_log_format &&
3298 curproxy->logformat_string != clf_http_log_format)
3299 free(curproxy->logformat_string);
3300 curproxy->logformat_string = default_tcp_log_format;
William Lallemandbddd4fd2012-02-27 11:23:10 +01003301 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003302 else if (!strcmp(args[1], "tcpka")) {
3303 /* enable TCP keep-alives on client and server sessions */
Willy Tarreau13943ab2006-12-31 00:24:10 +01003304 if (warnifnotcap(curproxy, PR_CAP_BE | PR_CAP_FE, file, linenum, args[1], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003305 err_code |= ERR_WARN;
Willy Tarreau13943ab2006-12-31 00:24:10 +01003306
3307 if (curproxy->cap & PR_CAP_FE)
3308 curproxy->options |= PR_O_TCP_CLI_KA;
3309 if (curproxy->cap & PR_CAP_BE)
3310 curproxy->options |= PR_O_TCP_SRV_KA;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003311 }
3312 else if (!strcmp(args[1], "httpchk")) {
Willy Tarreau13943ab2006-12-31 00:24:10 +01003313 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[1], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003314 err_code |= ERR_WARN;
3315
Willy Tarreaubaaee002006-06-26 02:48:02 +02003316 /* use HTTP request to check servers' health */
Willy Tarreaua534fea2008-08-03 12:19:50 +02003317 free(curproxy->check_req);
Willy Tarreau54f6a582010-02-01 16:31:14 +01003318 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003319 curproxy->options2 &= ~PR_O2_CHK_ANY;
3320 curproxy->options2 |= PR_O2_HTTP_CHK;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003321 if (!*args[2]) { /* no argument */
3322 curproxy->check_req = strdup(DEF_CHECK_REQ); /* default request */
3323 curproxy->check_len = strlen(DEF_CHECK_REQ);
3324 } else if (!*args[3]) { /* one argument : URI */
Willy Tarreaue9d87882010-01-27 11:28:42 +01003325 int reqlen = strlen(args[2]) + strlen("OPTIONS HTTP/1.0\r\n") + 1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003326 curproxy->check_req = (char *)malloc(reqlen);
3327 curproxy->check_len = snprintf(curproxy->check_req, reqlen,
Willy Tarreaue9d87882010-01-27 11:28:42 +01003328 "OPTIONS %s HTTP/1.0\r\n", args[2]); /* URI to use */
Willy Tarreaubaaee002006-06-26 02:48:02 +02003329 } else { /* more arguments : METHOD URI [HTTP_VER] */
Willy Tarreaue9d87882010-01-27 11:28:42 +01003330 int reqlen = strlen(args[2]) + strlen(args[3]) + 3 + strlen("\r\n");
Willy Tarreaubaaee002006-06-26 02:48:02 +02003331 if (*args[4])
3332 reqlen += strlen(args[4]);
3333 else
3334 reqlen += strlen("HTTP/1.0");
3335
3336 curproxy->check_req = (char *)malloc(reqlen);
3337 curproxy->check_len = snprintf(curproxy->check_req, reqlen,
Willy Tarreaue9d87882010-01-27 11:28:42 +01003338 "%s %s %s\r\n", args[2], args[3], *args[4]?args[4]:"HTTP/1.0");
Willy Tarreaubaaee002006-06-26 02:48:02 +02003339 }
Willy Tarreauf3c69202006-07-09 16:42:34 +02003340 }
3341 else if (!strcmp(args[1], "ssl-hello-chk")) {
3342 /* use SSLv3 CLIENT HELLO to check servers' health */
Willy Tarreau13943ab2006-12-31 00:24:10 +01003343 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[1], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003344 err_code |= ERR_WARN;
Willy Tarreau13943ab2006-12-31 00:24:10 +01003345
Willy Tarreaua534fea2008-08-03 12:19:50 +02003346 free(curproxy->check_req);
Willy Tarreau54f6a582010-02-01 16:31:14 +01003347 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003348 curproxy->options2 &= ~PR_O2_CHK_ANY;
Willy Tarreau07a54902010-03-29 18:33:29 +02003349 curproxy->options2 |= PR_O2_SSL3_CHK;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003350 }
Willy Tarreau23677902007-05-08 23:50:35 +02003351 else if (!strcmp(args[1], "smtpchk")) {
3352 /* use SMTP request to check servers' health */
Willy Tarreaua534fea2008-08-03 12:19:50 +02003353 free(curproxy->check_req);
Willy Tarreau54f6a582010-02-01 16:31:14 +01003354 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003355 curproxy->options2 &= ~PR_O2_CHK_ANY;
3356 curproxy->options2 |= PR_O2_SMTP_CHK;
Willy Tarreau23677902007-05-08 23:50:35 +02003357
3358 if (!*args[2] || !*args[3]) { /* no argument or incomplete EHLO host */
3359 curproxy->check_req = strdup(DEF_SMTP_CHECK_REQ); /* default request */
3360 curproxy->check_len = strlen(DEF_SMTP_CHECK_REQ);
3361 } else { /* ESMTP EHLO, or SMTP HELO, and a hostname */
3362 if (!strcmp(args[2], "EHLO") || !strcmp(args[2], "HELO")) {
3363 int reqlen = strlen(args[2]) + strlen(args[3]) + strlen(" \r\n") + 1;
3364 curproxy->check_req = (char *)malloc(reqlen);
3365 curproxy->check_len = snprintf(curproxy->check_req, reqlen,
3366 "%s %s\r\n", args[2], args[3]); /* HELO hostname */
3367 } else {
3368 /* this just hits the default for now, but you could potentially expand it to allow for other stuff
3369 though, it's unlikely you'd want to send anything other than an EHLO or HELO */
3370 curproxy->check_req = strdup(DEF_SMTP_CHECK_REQ); /* default request */
3371 curproxy->check_len = strlen(DEF_SMTP_CHECK_REQ);
3372 }
3373 }
3374 }
Rauf Kuliyev38b41562011-01-04 15:14:13 +01003375 else if (!strcmp(args[1], "pgsql-check")) {
3376 /* use PostgreSQL request to check servers' health */
3377 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[1], NULL))
3378 err_code |= ERR_WARN;
3379
3380 free(curproxy->check_req);
3381 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003382 curproxy->options2 &= ~PR_O2_CHK_ANY;
Rauf Kuliyev38b41562011-01-04 15:14:13 +01003383 curproxy->options2 |= PR_O2_PGSQL_CHK;
3384
3385 if (*(args[2])) {
3386 int cur_arg = 2;
3387
3388 while (*(args[cur_arg])) {
3389 if (strcmp(args[cur_arg], "user") == 0) {
3390 char * packet;
3391 uint32_t packet_len;
3392 uint32_t pv;
3393
3394 /* suboption header - needs additional argument for it */
3395 if (*(args[cur_arg+1]) == 0) {
3396 Alert("parsing [%s:%d] : '%s %s %s' expects <username> as argument.\n",
3397 file, linenum, args[0], args[1], args[cur_arg]);
3398 err_code |= ERR_ALERT | ERR_FATAL;
3399 goto out;
3400 }
3401
3402 /* uint32_t + uint32_t + strlen("user")+1 + strlen(username)+1 + 1 */
3403 packet_len = 4 + 4 + 5 + strlen(args[cur_arg + 1])+1 +1;
3404 pv = htonl(0x30000); /* protocol version 3.0 */
3405
3406 packet = (char*) calloc(1, packet_len);
3407
3408 memcpy(packet + 4, &pv, 4);
3409
3410 /* copy "user" */
3411 memcpy(packet + 8, "user", 4);
3412
3413 /* copy username */
3414 memcpy(packet + 13, args[cur_arg+1], strlen(args[cur_arg+1]));
3415
3416 free(curproxy->check_req);
3417 curproxy->check_req = packet;
3418 curproxy->check_len = packet_len;
3419
3420 packet_len = htonl(packet_len);
3421 memcpy(packet, &packet_len, 4);
3422 cur_arg += 2;
3423 } else {
3424 /* unknown suboption - catchall */
3425 Alert("parsing [%s:%d] : '%s %s' only supports optional values: 'user'.\n",
3426 file, linenum, args[0], args[1]);
3427 err_code |= ERR_ALERT | ERR_FATAL;
3428 goto out;
3429 }
3430 } /* end while loop */
3431 }
3432 }
3433
Hervé COMMOWICKec032d62011-08-05 16:23:48 +02003434 else if (!strcmp(args[1], "redis-check")) {
3435 /* use REDIS PING request to check servers' health */
3436 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[1], NULL))
3437 err_code |= ERR_WARN;
3438
3439 free(curproxy->check_req);
3440 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003441 curproxy->options2 &= ~PR_O2_CHK_ANY;
Hervé COMMOWICKec032d62011-08-05 16:23:48 +02003442 curproxy->options2 |= PR_O2_REDIS_CHK;
3443
3444 curproxy->check_req = (char *) malloc(sizeof(DEF_REDIS_CHECK_REQ) - 1);
3445 memcpy(curproxy->check_req, DEF_REDIS_CHECK_REQ, sizeof(DEF_REDIS_CHECK_REQ) - 1);
3446 curproxy->check_len = sizeof(DEF_REDIS_CHECK_REQ) - 1;
3447 }
3448
Hervé COMMOWICK698ae002010-01-12 09:25:13 +01003449 else if (!strcmp(args[1], "mysql-check")) {
3450 /* use MYSQL request to check servers' health */
Hervé COMMOWICK8776f1b2010-10-18 15:58:36 +02003451 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[1], NULL))
3452 err_code |= ERR_WARN;
3453
Hervé COMMOWICK698ae002010-01-12 09:25:13 +01003454 free(curproxy->check_req);
Willy Tarreau54f6a582010-02-01 16:31:14 +01003455 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003456 curproxy->options2 &= ~PR_O2_CHK_ANY;
Hervé COMMOWICK698ae002010-01-12 09:25:13 +01003457 curproxy->options2 |= PR_O2_MYSQL_CHK;
Hervé COMMOWICK8776f1b2010-10-18 15:58:36 +02003458
3459 /* This is an exemple of an MySQL >=4.0 client Authentication packet kindly provided by Cyril Bonte.
3460 * const char mysql40_client_auth_pkt[] = {
3461 * "\x0e\x00\x00" // packet length
3462 * "\x01" // packet number
3463 * "\x00\x00" // client capabilities
3464 * "\x00\x00\x01" // max packet
3465 * "haproxy\x00" // username (null terminated string)
3466 * "\x00" // filler (always 0x00)
3467 * "\x01\x00\x00" // packet length
3468 * "\x00" // packet number
3469 * "\x01" // COM_QUIT command
3470 * };
3471 */
3472
3473 if (*(args[2])) {
3474 int cur_arg = 2;
3475
3476 while (*(args[cur_arg])) {
3477 if (strcmp(args[cur_arg], "user") == 0) {
3478 char *mysqluser;
3479 int packetlen, reqlen, userlen;
3480
3481 /* suboption header - needs additional argument for it */
3482 if (*(args[cur_arg+1]) == 0) {
3483 Alert("parsing [%s:%d] : '%s %s %s' expects <username> as argument.\n",
3484 file, linenum, args[0], args[1], args[cur_arg]);
3485 err_code |= ERR_ALERT | ERR_FATAL;
3486 goto out;
3487 }
3488 mysqluser = args[cur_arg + 1];
3489 userlen = strlen(mysqluser);
3490 packetlen = userlen + 7;
3491 reqlen = packetlen + 9;
3492
3493 free(curproxy->check_req);
3494 curproxy->check_req = (char *)calloc(1, reqlen);
3495 curproxy->check_len = reqlen;
3496
3497 snprintf(curproxy->check_req, 4, "%c%c%c",
3498 ((unsigned char) packetlen & 0xff),
3499 ((unsigned char) (packetlen >> 8) & 0xff),
3500 ((unsigned char) (packetlen >> 16) & 0xff));
3501
3502 curproxy->check_req[3] = 1;
Hervé COMMOWICK212f7782011-06-10 14:05:59 +02003503 curproxy->check_req[5] = 128;
Hervé COMMOWICK8776f1b2010-10-18 15:58:36 +02003504 curproxy->check_req[8] = 1;
3505 memcpy(&curproxy->check_req[9], mysqluser, userlen);
3506 curproxy->check_req[9 + userlen + 1 + 1] = 1;
3507 curproxy->check_req[9 + userlen + 1 + 1 + 4] = 1;
3508 cur_arg += 2;
3509 } else {
3510 /* unknown suboption - catchall */
3511 Alert("parsing [%s:%d] : '%s %s' only supports optional values: 'user'.\n",
3512 file, linenum, args[0], args[1]);
3513 err_code |= ERR_ALERT | ERR_FATAL;
3514 goto out;
3515 }
3516 } /* end while loop */
3517 }
Hervé COMMOWICK698ae002010-01-12 09:25:13 +01003518 }
Gabor Lekenyb4c81e42010-09-29 18:17:05 +02003519 else if (!strcmp(args[1], "ldap-check")) {
3520 /* use LDAP request to check servers' health */
3521 free(curproxy->check_req);
3522 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003523 curproxy->options2 &= ~PR_O2_CHK_ANY;
Gabor Lekenyb4c81e42010-09-29 18:17:05 +02003524 curproxy->options2 |= PR_O2_LDAP_CHK;
3525
3526 curproxy->check_req = (char *) malloc(sizeof(DEF_LDAP_CHECK_REQ) - 1);
3527 memcpy(curproxy->check_req, DEF_LDAP_CHECK_REQ, sizeof(DEF_LDAP_CHECK_REQ) - 1);
3528 curproxy->check_len = sizeof(DEF_LDAP_CHECK_REQ) - 1;
3529 }
Willy Tarreau7ac51f62007-03-25 16:00:04 +02003530 else if (!strcmp(args[1], "forwardfor")) {
Ross Westaf72a1d2008-08-03 10:51:45 +02003531 int cur_arg;
3532
3533 /* insert x-forwarded-for field, but not for the IP address listed as an except.
3534 * set default options (ie: bitfield, header name, etc)
Willy Tarreau7ac51f62007-03-25 16:00:04 +02003535 */
Ross Westaf72a1d2008-08-03 10:51:45 +02003536
Willy Tarreau87cf5142011-08-19 22:57:24 +02003537 curproxy->options |= PR_O_FWDFOR | PR_O_FF_ALWAYS;
Ross Westaf72a1d2008-08-03 10:51:45 +02003538
3539 free(curproxy->fwdfor_hdr_name);
3540 curproxy->fwdfor_hdr_name = strdup(DEF_XFORWARDFOR_HDR);
3541 curproxy->fwdfor_hdr_len = strlen(DEF_XFORWARDFOR_HDR);
3542
3543 /* loop to go through arguments - start at 2, since 0+1 = "option" "forwardfor" */
3544 cur_arg = 2;
3545 while (*(args[cur_arg])) {
3546 if (!strcmp(args[cur_arg], "except")) {
3547 /* suboption except - needs additional argument for it */
3548 if (!*(args[cur_arg+1]) || !str2net(args[cur_arg+1], &curproxy->except_net, &curproxy->except_mask)) {
3549 Alert("parsing [%s:%d] : '%s %s %s' expects <address>[/mask] as argument.\n",
3550 file, linenum, args[0], args[1], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02003551 err_code |= ERR_ALERT | ERR_FATAL;
3552 goto out;
Willy Tarreau7ac51f62007-03-25 16:00:04 +02003553 }
3554 /* flush useless bits */
3555 curproxy->except_net.s_addr &= curproxy->except_mask.s_addr;
Ross Westaf72a1d2008-08-03 10:51:45 +02003556 cur_arg += 2;
3557 } else if (!strcmp(args[cur_arg], "header")) {
3558 /* suboption header - needs additional argument for it */
3559 if (*(args[cur_arg+1]) == 0) {
3560 Alert("parsing [%s:%d] : '%s %s %s' expects <header_name> as argument.\n",
3561 file, linenum, args[0], args[1], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02003562 err_code |= ERR_ALERT | ERR_FATAL;
3563 goto out;
Ross Westaf72a1d2008-08-03 10:51:45 +02003564 }
3565 free(curproxy->fwdfor_hdr_name);
3566 curproxy->fwdfor_hdr_name = strdup(args[cur_arg+1]);
3567 curproxy->fwdfor_hdr_len = strlen(curproxy->fwdfor_hdr_name);
3568 cur_arg += 2;
Willy Tarreau87cf5142011-08-19 22:57:24 +02003569 } else if (!strcmp(args[cur_arg], "if-none")) {
3570 curproxy->options &= ~PR_O_FF_ALWAYS;
3571 cur_arg += 1;
Willy Tarreau7ac51f62007-03-25 16:00:04 +02003572 } else {
Ross Westaf72a1d2008-08-03 10:51:45 +02003573 /* unknown suboption - catchall */
Willy Tarreau87cf5142011-08-19 22:57:24 +02003574 Alert("parsing [%s:%d] : '%s %s' only supports optional values: 'except', 'header' and 'if-none'.\n",
Ross Westaf72a1d2008-08-03 10:51:45 +02003575 file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02003576 err_code |= ERR_ALERT | ERR_FATAL;
3577 goto out;
Willy Tarreau7ac51f62007-03-25 16:00:04 +02003578 }
Ross Westaf72a1d2008-08-03 10:51:45 +02003579 } /* end while loop */
Willy Tarreau7ac51f62007-03-25 16:00:04 +02003580 }
Maik Broemme2850cb42009-04-17 18:53:21 +02003581 else if (!strcmp(args[1], "originalto")) {
3582 int cur_arg;
3583
3584 /* insert x-original-to field, but not for the IP address listed as an except.
3585 * set default options (ie: bitfield, header name, etc)
3586 */
3587
3588 curproxy->options |= PR_O_ORGTO;
3589
3590 free(curproxy->orgto_hdr_name);
3591 curproxy->orgto_hdr_name = strdup(DEF_XORIGINALTO_HDR);
3592 curproxy->orgto_hdr_len = strlen(DEF_XORIGINALTO_HDR);
3593
Willy Tarreau87cf5142011-08-19 22:57:24 +02003594 /* loop to go through arguments - start at 2, since 0+1 = "option" "originalto" */
Maik Broemme2850cb42009-04-17 18:53:21 +02003595 cur_arg = 2;
3596 while (*(args[cur_arg])) {
3597 if (!strcmp(args[cur_arg], "except")) {
3598 /* suboption except - needs additional argument for it */
3599 if (!*(args[cur_arg+1]) || !str2net(args[cur_arg+1], &curproxy->except_to, &curproxy->except_mask_to)) {
3600 Alert("parsing [%s:%d] : '%s %s %s' expects <address>[/mask] as argument.\n",
3601 file, linenum, args[0], args[1], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02003602 err_code |= ERR_ALERT | ERR_FATAL;
3603 goto out;
Maik Broemme2850cb42009-04-17 18:53:21 +02003604 }
3605 /* flush useless bits */
3606 curproxy->except_to.s_addr &= curproxy->except_mask_to.s_addr;
3607 cur_arg += 2;
3608 } else if (!strcmp(args[cur_arg], "header")) {
3609 /* suboption header - needs additional argument for it */
3610 if (*(args[cur_arg+1]) == 0) {
3611 Alert("parsing [%s:%d] : '%s %s %s' expects <header_name> as argument.\n",
3612 file, linenum, args[0], args[1], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02003613 err_code |= ERR_ALERT | ERR_FATAL;
3614 goto out;
Maik Broemme2850cb42009-04-17 18:53:21 +02003615 }
3616 free(curproxy->orgto_hdr_name);
3617 curproxy->orgto_hdr_name = strdup(args[cur_arg+1]);
3618 curproxy->orgto_hdr_len = strlen(curproxy->orgto_hdr_name);
3619 cur_arg += 2;
3620 } else {
3621 /* unknown suboption - catchall */
3622 Alert("parsing [%s:%d] : '%s %s' only supports optional values: 'except' and 'header'.\n",
3623 file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02003624 err_code |= ERR_ALERT | ERR_FATAL;
3625 goto out;
Maik Broemme2850cb42009-04-17 18:53:21 +02003626 }
3627 } /* end while loop */
3628 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003629 else {
3630 Alert("parsing [%s:%d] : unknown option '%s'.\n", file, linenum, args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02003631 err_code |= ERR_ALERT | ERR_FATAL;
3632 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003633 }
Willy Tarreau93893792009-07-23 13:19:11 +02003634 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003635 }
Willy Tarreau5fdfb912007-01-01 23:11:07 +01003636 else if (!strcmp(args[0], "default_backend")) {
3637 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003638 err_code |= ERR_WARN;
Willy Tarreau5fdfb912007-01-01 23:11:07 +01003639
3640 if (*(args[1]) == 0) {
3641 Alert("parsing [%s:%d] : '%s' expects a backend name.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003642 err_code |= ERR_ALERT | ERR_FATAL;
3643 goto out;
Willy Tarreau5fdfb912007-01-01 23:11:07 +01003644 }
Willy Tarreaua534fea2008-08-03 12:19:50 +02003645 free(curproxy->defbe.name);
Willy Tarreau5fdfb912007-01-01 23:11:07 +01003646 curproxy->defbe.name = strdup(args[1]);
3647 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003648 else if (!strcmp(args[0], "redispatch") || !strcmp(args[0], "redisp")) {
Willy Tarreau977b8e42006-12-29 14:19:17 +01003649 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003650 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01003651
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01003652 Warning("parsing [%s:%d]: keyword '%s' is deprecated, please use 'option redispatch' instead.\n",
3653 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003654 err_code |= ERR_WARN;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003655 /* enable reconnections to dispatch */
3656 curproxy->options |= PR_O_REDISP;
3657 }
Willy Tarreau48494c02007-11-30 10:41:39 +01003658 else if (!strcmp(args[0], "http-check")) {
3659 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003660 err_code |= ERR_WARN;
Willy Tarreau48494c02007-11-30 10:41:39 +01003661
3662 if (strcmp(args[1], "disable-on-404") == 0) {
3663 /* enable a graceful server shutdown on an HTTP 404 response */
3664 curproxy->options |= PR_O_DISABLE404;
3665 }
Willy Tarreauef781042010-01-27 11:53:01 +01003666 else if (strcmp(args[1], "send-state") == 0) {
3667 /* enable emission of the apparent state of a server in HTTP checks */
3668 curproxy->options2 |= PR_O2_CHK_SNDST;
3669 }
Willy Tarreaubd741542010-03-16 18:46:54 +01003670 else if (strcmp(args[1], "expect") == 0) {
3671 const char *ptr_arg;
3672 int cur_arg;
3673
3674 if (curproxy->options2 & PR_O2_EXP_TYPE) {
3675 Alert("parsing [%s:%d] : '%s %s' already specified.\n", file, linenum, args[0], args[1]);
3676 err_code |= ERR_ALERT | ERR_FATAL;
3677 goto out;
3678 }
3679
3680 cur_arg = 2;
3681 /* consider exclamation marks, sole or at the beginning of a word */
3682 while (*(ptr_arg = args[cur_arg])) {
3683 while (*ptr_arg == '!') {
3684 curproxy->options2 ^= PR_O2_EXP_INV;
3685 ptr_arg++;
3686 }
3687 if (*ptr_arg)
3688 break;
3689 cur_arg++;
3690 }
3691 /* now ptr_arg points to the beginning of a word past any possible
3692 * exclamation mark, and cur_arg is the argument which holds this word.
3693 */
3694 if (strcmp(ptr_arg, "status") == 0) {
3695 if (!*(args[cur_arg + 1])) {
3696 Alert("parsing [%s:%d] : '%s %s %s' expects <string> as an argument.\n",
3697 file, linenum, args[0], args[1], ptr_arg);
3698 err_code |= ERR_ALERT | ERR_FATAL;
3699 goto out;
3700 }
3701 curproxy->options2 |= PR_O2_EXP_STS;
Willy Tarreau1ee51a62011-08-19 20:04:17 +02003702 free(curproxy->expect_str);
Willy Tarreaubd741542010-03-16 18:46:54 +01003703 curproxy->expect_str = strdup(args[cur_arg + 1]);
3704 }
3705 else if (strcmp(ptr_arg, "string") == 0) {
3706 if (!*(args[cur_arg + 1])) {
3707 Alert("parsing [%s:%d] : '%s %s %s' expects <string> as an argument.\n",
3708 file, linenum, args[0], args[1], ptr_arg);
3709 err_code |= ERR_ALERT | ERR_FATAL;
3710 goto out;
3711 }
3712 curproxy->options2 |= PR_O2_EXP_STR;
Willy Tarreau1ee51a62011-08-19 20:04:17 +02003713 free(curproxy->expect_str);
Willy Tarreaubd741542010-03-16 18:46:54 +01003714 curproxy->expect_str = strdup(args[cur_arg + 1]);
3715 }
3716 else if (strcmp(ptr_arg, "rstatus") == 0) {
3717 if (!*(args[cur_arg + 1])) {
3718 Alert("parsing [%s:%d] : '%s %s %s' expects <regex> as an argument.\n",
3719 file, linenum, args[0], args[1], ptr_arg);
3720 err_code |= ERR_ALERT | ERR_FATAL;
3721 goto out;
3722 }
3723 curproxy->options2 |= PR_O2_EXP_RSTS;
Willy Tarreau1ee51a62011-08-19 20:04:17 +02003724 free(curproxy->expect_str);
3725 if (curproxy->expect_regex) regfree(curproxy->expect_regex);
3726 curproxy->expect_str = strdup(args[cur_arg + 1]);
Willy Tarreaubd741542010-03-16 18:46:54 +01003727 curproxy->expect_regex = calloc(1, sizeof(regex_t));
3728 if (regcomp(curproxy->expect_regex, args[cur_arg + 1], REG_EXTENDED) != 0) {
3729 Alert("parsing [%s:%d] : '%s %s %s' : bad regular expression '%s'.\n",
3730 file, linenum, args[0], args[1], ptr_arg, args[cur_arg + 1]);
3731 err_code |= ERR_ALERT | ERR_FATAL;
3732 goto out;
3733 }
3734 }
3735 else if (strcmp(ptr_arg, "rstring") == 0) {
3736 if (!*(args[cur_arg + 1])) {
3737 Alert("parsing [%s:%d] : '%s %s %s' expects <regex> as an argument.\n",
3738 file, linenum, args[0], args[1], ptr_arg);
3739 err_code |= ERR_ALERT | ERR_FATAL;
3740 goto out;
3741 }
3742 curproxy->options2 |= PR_O2_EXP_RSTR;
Willy Tarreau1ee51a62011-08-19 20:04:17 +02003743 free(curproxy->expect_str);
3744 if (curproxy->expect_regex) regfree(curproxy->expect_regex);
3745 curproxy->expect_str = strdup(args[cur_arg + 1]);
Willy Tarreaubd741542010-03-16 18:46:54 +01003746 curproxy->expect_regex = calloc(1, sizeof(regex_t));
3747 if (regcomp(curproxy->expect_regex, args[cur_arg + 1], REG_EXTENDED) != 0) {
3748 Alert("parsing [%s:%d] : '%s %s %s' : bad regular expression '%s'.\n",
3749 file, linenum, args[0], args[1], ptr_arg, args[cur_arg + 1]);
3750 err_code |= ERR_ALERT | ERR_FATAL;
3751 goto out;
3752 }
3753 }
3754 else {
3755 Alert("parsing [%s:%d] : '%s %s' only supports [!] 'status', 'string', 'rstatus', 'rstring', found '%s'.\n",
3756 file, linenum, args[0], args[1], ptr_arg);
3757 err_code |= ERR_ALERT | ERR_FATAL;
3758 goto out;
3759 }
3760 }
Willy Tarreau48494c02007-11-30 10:41:39 +01003761 else {
Willy Tarreau1ee51a62011-08-19 20:04:17 +02003762 Alert("parsing [%s:%d] : '%s' only supports 'disable-on-404', 'send-state', 'expect'.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003763 err_code |= ERR_ALERT | ERR_FATAL;
3764 goto out;
Willy Tarreau48494c02007-11-30 10:41:39 +01003765 }
3766 }
Willy Tarreaub80c2302007-11-30 20:51:32 +01003767 else if (!strcmp(args[0], "monitor")) {
Willy Tarreaub099aca2008-10-12 17:26:37 +02003768 if (curproxy == &defproxy) {
3769 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003770 err_code |= ERR_ALERT | ERR_FATAL;
3771 goto out;
Willy Tarreaub099aca2008-10-12 17:26:37 +02003772 }
3773
Willy Tarreaub80c2302007-11-30 20:51:32 +01003774 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003775 err_code |= ERR_WARN;
Willy Tarreaub80c2302007-11-30 20:51:32 +01003776
3777 if (strcmp(args[1], "fail") == 0) {
3778 /* add a condition to fail monitor requests */
Willy Tarreauef6494c2010-01-28 17:12:36 +01003779 if (strcmp(args[2], "if") != 0 && strcmp(args[2], "unless") != 0) {
Willy Tarreaub80c2302007-11-30 20:51:32 +01003780 Alert("parsing [%s:%d] : '%s %s' requires either 'if' or 'unless' followed by a condition.\n",
3781 file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02003782 err_code |= ERR_ALERT | ERR_FATAL;
3783 goto out;
Willy Tarreaub80c2302007-11-30 20:51:32 +01003784 }
3785
Willy Tarreaub7451bb2012-04-27 12:38:15 +02003786 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + 2, &errmsg)) == NULL) {
3787 Alert("parsing [%s:%d] : error detected while parsing a '%s %s' condition : %s.\n",
3788 file, linenum, args[0], args[1], errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02003789 err_code |= ERR_ALERT | ERR_FATAL;
3790 goto out;
Willy Tarreaub80c2302007-11-30 20:51:32 +01003791 }
3792 LIST_ADDQ(&curproxy->mon_fail_cond, &cond->list);
3793 }
3794 else {
3795 Alert("parsing [%s:%d] : '%s' only supports 'fail'.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003796 err_code |= ERR_ALERT | ERR_FATAL;
3797 goto out;
Willy Tarreaub80c2302007-11-30 20:51:32 +01003798 }
3799 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003800#ifdef TPROXY
3801 else if (!strcmp(args[0], "transparent")) {
3802 /* enable transparent proxy connections */
3803 curproxy->options |= PR_O_TRANSP;
3804 }
3805#endif
3806 else if (!strcmp(args[0], "maxconn")) { /* maxconn */
Willy Tarreau977b8e42006-12-29 14:19:17 +01003807 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], " Maybe you want 'fullconn' instead ?"))
Willy Tarreau93893792009-07-23 13:19:11 +02003808 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01003809
Willy Tarreaubaaee002006-06-26 02:48:02 +02003810 if (*(args[1]) == 0) {
3811 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003812 err_code |= ERR_ALERT | ERR_FATAL;
3813 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003814 }
3815 curproxy->maxconn = atol(args[1]);
3816 }
Willy Tarreauc73ce2b2008-01-06 10:55:10 +01003817 else if (!strcmp(args[0], "backlog")) { /* backlog */
3818 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003819 err_code |= ERR_WARN;
Willy Tarreauc73ce2b2008-01-06 10:55:10 +01003820
3821 if (*(args[1]) == 0) {
3822 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003823 err_code |= ERR_ALERT | ERR_FATAL;
3824 goto out;
Willy Tarreauc73ce2b2008-01-06 10:55:10 +01003825 }
3826 curproxy->backlog = atol(args[1]);
3827 }
Willy Tarreau86034312006-12-29 00:10:33 +01003828 else if (!strcmp(args[0], "fullconn")) { /* fullconn */
Willy Tarreau977b8e42006-12-29 14:19:17 +01003829 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], " Maybe you want 'maxconn' instead ?"))
Willy Tarreau93893792009-07-23 13:19:11 +02003830 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01003831
Willy Tarreau86034312006-12-29 00:10:33 +01003832 if (*(args[1]) == 0) {
3833 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003834 err_code |= ERR_ALERT | ERR_FATAL;
3835 goto out;
Willy Tarreau86034312006-12-29 00:10:33 +01003836 }
3837 curproxy->fullconn = atol(args[1]);
3838 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003839 else if (!strcmp(args[0], "grace")) { /* grace time (ms) */
3840 if (*(args[1]) == 0) {
3841 Alert("parsing [%s:%d] : '%s' expects a time in milliseconds.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003842 err_code |= ERR_ALERT | ERR_FATAL;
3843 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003844 }
Willy Tarreaub3f32f52007-12-02 22:15:14 +01003845 err = parse_time_err(args[1], &val, TIME_UNIT_MS);
3846 if (err) {
3847 Alert("parsing [%s:%d] : unexpected character '%c' in grace time.\n",
3848 file, linenum, *err);
Willy Tarreau93893792009-07-23 13:19:11 +02003849 err_code |= ERR_ALERT | ERR_FATAL;
3850 goto out;
Willy Tarreaub3f32f52007-12-02 22:15:14 +01003851 }
3852 curproxy->grace = val;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003853 }
3854 else if (!strcmp(args[0], "dispatch")) { /* dispatch address */
David du Colombier6f5ccb12011-03-10 22:26:24 +01003855 struct sockaddr_storage *sk;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003856 if (curproxy == &defproxy) {
3857 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003858 err_code |= ERR_ALERT | ERR_FATAL;
3859 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003860 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01003861 else if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003862 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01003863
Willy Tarreaubaaee002006-06-26 02:48:02 +02003864 if (strchr(args[1], ':') == NULL) {
3865 Alert("parsing [%s:%d] : '%s' expects <addr:port> as argument.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003866 err_code |= ERR_ALERT | ERR_FATAL;
3867 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003868 }
Willy Tarreaud5191e72010-02-09 20:50:45 +01003869 sk = str2sa(args[1]);
3870 if (!sk) {
3871 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[1]);
3872 err_code |= ERR_ALERT | ERR_FATAL;
3873 goto out;
3874 }
3875 curproxy->dispatch_addr = *sk;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003876 curproxy->options |= PR_O_DISPATCH;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003877 }
3878 else if (!strcmp(args[0], "balance")) { /* set balancing with optional algorithm */
Willy Tarreau977b8e42006-12-29 14:19:17 +01003879 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003880 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01003881
Willy Tarreaua93c74b2012-05-08 18:14:39 +02003882 if (backend_parse_balance((const char **)args + 1, &errmsg, curproxy) < 0) {
3883 Alert("parsing [%s:%d] : %s %s\n", file, linenum, args[0], errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02003884 err_code |= ERR_ALERT | ERR_FATAL;
3885 goto out;
Willy Tarreau2fcb5002007-05-08 13:35:26 +02003886 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003887 }
Willy Tarreau6b2e11b2009-10-01 07:52:15 +02003888 else if (!strcmp(args[0], "hash-type")) { /* set hashing method */
3889 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
3890 err_code |= ERR_WARN;
3891
3892 if (strcmp(args[1], "consistent") == 0) { /* use consistent hashing */
3893 curproxy->lbprm.algo &= ~BE_LB_HASH_TYPE;
3894 curproxy->lbprm.algo |= BE_LB_HASH_CONS;
3895 }
3896 else if (strcmp(args[1], "map-based") == 0) { /* use map-based hashing */
3897 curproxy->lbprm.algo &= ~BE_LB_HASH_TYPE;
3898 curproxy->lbprm.algo |= BE_LB_HASH_MAP;
3899 }
Willy Tarreau798a39c2010-11-24 15:04:29 +01003900 else if (strcmp(args[1], "avalanche") == 0) { /* use full hash before map-based hashing */
3901 curproxy->lbprm.algo &= ~BE_LB_HASH_TYPE;
3902 curproxy->lbprm.algo |= BE_LB_HASH_AVAL;
3903 }
Willy Tarreau6b2e11b2009-10-01 07:52:15 +02003904 else {
Willy Tarreau798a39c2010-11-24 15:04:29 +01003905 Alert("parsing [%s:%d] : '%s' only supports 'avalanche', 'consistent' and 'map-based'.\n", file, linenum, args[0]);
Willy Tarreau6b2e11b2009-10-01 07:52:15 +02003906 err_code |= ERR_ALERT | ERR_FATAL;
3907 goto out;
3908 }
3909 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003910 else if (!strcmp(args[0], "server") || !strcmp(args[0], "default-server")) { /* server address */
Willy Tarreaubaaee002006-06-26 02:48:02 +02003911 int cur_arg;
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003912 char *rport, *raddr;
3913 short realport = 0;
3914 int do_check = 0, defsrv = (*args[0] == 'd');
Willy Tarreaubaaee002006-06-26 02:48:02 +02003915
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003916 if (!defsrv && curproxy == &defproxy) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02003917 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003918 err_code |= ERR_ALERT | ERR_FATAL;
3919 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003920 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01003921 else if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003922 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003923
3924 if (!*args[2]) {
3925 Alert("parsing [%s:%d] : '%s' expects <name> and <addr>[:<port>] as arguments.\n",
3926 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003927 err_code |= ERR_ALERT | ERR_FATAL;
3928 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003929 }
Willy Tarreau2e74c3f2007-12-02 18:45:09 +01003930
3931 err = invalid_char(args[1]);
3932 if (err) {
3933 Alert("parsing [%s:%d] : character '%c' is not permitted in server name '%s'.\n",
3934 file, linenum, *err, args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02003935 err_code |= ERR_ALERT | ERR_FATAL;
3936 goto out;
Willy Tarreau2e74c3f2007-12-02 18:45:09 +01003937 }
3938
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003939 if (!defsrv) {
David du Colombier6f5ccb12011-03-10 22:26:24 +01003940 struct sockaddr_storage *sk;
Willy Tarreaud5191e72010-02-09 20:50:45 +01003941
Krzysztof Piotr Oledzkiaff01ea2010-02-05 20:31:44 +01003942 if ((newsrv = (struct server *)calloc(1, sizeof(struct server))) == NULL) {
3943 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
3944 err_code |= ERR_ALERT | ERR_ABORT;
3945 goto out;
3946 }
3947
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003948 /* the servers are linked backwards first */
3949 newsrv->next = curproxy->srv;
3950 curproxy->srv = newsrv;
3951 newsrv->proxy = curproxy;
Willy Tarreau8113a5d2012-10-04 08:01:43 +02003952 newsrv->conf.file = strdup(file);
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003953 newsrv->conf.line = linenum;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003954
Simon Hormanaf514952011-06-21 14:34:57 +09003955 LIST_INIT(&newsrv->actconns);
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003956 LIST_INIT(&newsrv->pendconns);
3957 do_check = 0;
3958 newsrv->state = SRV_RUNNING; /* early server setup */
3959 newsrv->last_change = now.tv_sec;
3960 newsrv->id = strdup(args[1]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003961
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003962 /* several ways to check the port component :
David du Colombier9842ff12011-03-17 10:40:28 +01003963 * - IP => port=+0, relative (IPv4 only)
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003964 * - IP: => port=+0, relative
3965 * - IP:N => port=N, absolute
3966 * - IP:+N => port=+N, relative
3967 * - IP:-N => port=-N, relative
3968 */
3969 raddr = strdup(args[2]);
Willy Tarreaufab5a432011-03-04 15:31:53 +01003970 rport = strrchr(raddr, ':');
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003971 if (rport) {
3972 *rport++ = 0;
3973 realport = atol(rport);
3974 if (!isdigit((unsigned char)*rport))
3975 newsrv->state |= SRV_MAPPORTS;
3976 } else
Willy Tarreaubaaee002006-06-26 02:48:02 +02003977 newsrv->state |= SRV_MAPPORTS;
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003978
Willy Tarreaufab5a432011-03-04 15:31:53 +01003979 sk = str2ip(raddr);
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003980 free(raddr);
Willy Tarreaud5191e72010-02-09 20:50:45 +01003981 if (!sk) {
3982 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[2]);
3983 err_code |= ERR_ALERT | ERR_FATAL;
3984 goto out;
3985 }
3986 newsrv->addr = *sk;
Willy Tarreauf4288ee2012-09-28 18:13:10 +02003987 newsrv->proto = newsrv->check.proto = protocol_by_family(newsrv->addr.ss_family);
3988 newsrv->xprt = newsrv->check.xprt = &raw_sock;
Willy Tarreau26d8c592012-05-07 18:12:14 +02003989
Willy Tarreau173e7fb2012-09-24 22:47:39 +02003990 if (!newsrv->proto) {
Willy Tarreau26d8c592012-05-07 18:12:14 +02003991 Alert("parsing [%s:%d] : Unknown protocol family %d '%s'\n",
3992 file, linenum, newsrv->addr.ss_family, args[2]);
3993 err_code |= ERR_ALERT | ERR_FATAL;
3994 goto out;
3995 }
Willy Tarreau86ad42c2011-08-27 12:29:07 +02003996 set_host_port(&newsrv->addr, realport);
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003997
Willy Tarreauf4288ee2012-09-28 18:13:10 +02003998 newsrv->check.use_ssl = curproxy->defsrv.check.use_ssl;
Willy Tarreau5b3a2022012-09-28 15:01:02 +02003999 newsrv->check.port = curproxy->defsrv.check.port;
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004000 newsrv->inter = curproxy->defsrv.inter;
4001 newsrv->fastinter = curproxy->defsrv.fastinter;
4002 newsrv->downinter = curproxy->defsrv.downinter;
4003 newsrv->rise = curproxy->defsrv.rise;
4004 newsrv->fall = curproxy->defsrv.fall;
4005 newsrv->maxqueue = curproxy->defsrv.maxqueue;
4006 newsrv->minconn = curproxy->defsrv.minconn;
4007 newsrv->maxconn = curproxy->defsrv.maxconn;
4008 newsrv->slowstart = curproxy->defsrv.slowstart;
4009 newsrv->onerror = curproxy->defsrv.onerror;
4010 newsrv->consecutive_errors_limit
4011 = curproxy->defsrv.consecutive_errors_limit;
Emeric Brun01f8e2f2012-05-18 16:02:00 +02004012#ifdef OPENSSL
4013 newsrv->use_ssl = curproxy->defsrv.use_ssl;
4014#endif
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004015 newsrv->uweight = newsrv->iweight
4016 = curproxy->defsrv.iweight;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004017
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004018 newsrv->health = newsrv->rise; /* up, but will fall down at first failure */
Willy Tarreaubaaee002006-06-26 02:48:02 +02004019
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004020 cur_arg = 3;
4021 } else {
4022 newsrv = &curproxy->defsrv;
4023 cur_arg = 1;
4024 }
Willy Tarreau0f03c6f2007-03-25 20:46:19 +02004025
Willy Tarreaubaaee002006-06-26 02:48:02 +02004026 while (*args[cur_arg]) {
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004027 if (!defsrv && !strcmp(args[cur_arg], "id")) {
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02004028 struct eb32_node *node;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01004029
4030 if (!*args[cur_arg + 1]) {
4031 Alert("parsing [%s:%d]: '%s' expects an integer argument.\n",
4032 file, linenum, args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02004033 err_code |= ERR_ALERT | ERR_FATAL;
4034 goto out;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01004035 }
4036
4037 newsrv->puid = atol(args[cur_arg + 1]);
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02004038 newsrv->conf.id.key = newsrv->puid;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01004039
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02004040 if (newsrv->puid <= 0) {
4041 Alert("parsing [%s:%d]: custom id has to be > 0.\n",
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01004042 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02004043 err_code |= ERR_ALERT | ERR_FATAL;
4044 goto out;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01004045 }
4046
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02004047 node = eb32_lookup(&curproxy->conf.used_server_id, newsrv->puid);
4048 if (node) {
4049 struct server *target = container_of(node, struct server, conf.id);
4050 Alert("parsing [%s:%d]: server %s reuses same custom id as server %s (declared at %s:%d).\n",
4051 file, linenum, newsrv->id, target->id, target->conf.file, target->conf.line);
4052 err_code |= ERR_ALERT | ERR_FATAL;
4053 goto out;
4054 }
4055 eb32_insert(&curproxy->conf.used_server_id, &newsrv->conf.id);
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01004056 cur_arg += 2;
4057 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004058 else if (!defsrv && !strcmp(args[cur_arg], "cookie")) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004059 newsrv->cookie = strdup(args[cur_arg + 1]);
4060 newsrv->cklen = strlen(args[cur_arg + 1]);
4061 cur_arg += 2;
4062 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004063 else if (!defsrv && !strcmp(args[cur_arg], "redir")) {
Willy Tarreau21d2af32008-02-14 20:25:24 +01004064 newsrv->rdr_pfx = strdup(args[cur_arg + 1]);
4065 newsrv->rdr_len = strlen(args[cur_arg + 1]);
4066 cur_arg += 2;
4067 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004068 else if (!strcmp(args[cur_arg], "rise")) {
Krzysztof Piotr Oledzki08ff9592009-09-27 16:17:31 +02004069 if (!*args[cur_arg + 1]) {
4070 Alert("parsing [%s:%d]: '%s' expects an integer argument.\n",
4071 file, linenum, args[cur_arg]);
4072 err_code |= ERR_ALERT | ERR_FATAL;
4073 goto out;
4074 }
4075
Willy Tarreaubaaee002006-06-26 02:48:02 +02004076 newsrv->rise = atol(args[cur_arg + 1]);
Krzysztof Piotr Oledzki08ff9592009-09-27 16:17:31 +02004077 if (newsrv->rise <= 0) {
4078 Alert("parsing [%s:%d]: '%s' has to be > 0.\n",
4079 file, linenum, args[cur_arg]);
4080 err_code |= ERR_ALERT | ERR_FATAL;
4081 goto out;
4082 }
4083
Willy Tarreau96839092010-03-29 10:02:24 +02004084 if (newsrv->health)
4085 newsrv->health = newsrv->rise;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004086 cur_arg += 2;
4087 }
4088 else if (!strcmp(args[cur_arg], "fall")) {
4089 newsrv->fall = atol(args[cur_arg + 1]);
Krzysztof Piotr Oledzki08ff9592009-09-27 16:17:31 +02004090
4091 if (!*args[cur_arg + 1]) {
4092 Alert("parsing [%s:%d]: '%s' expects an integer argument.\n",
4093 file, linenum, args[cur_arg]);
4094 err_code |= ERR_ALERT | ERR_FATAL;
4095 goto out;
4096 }
4097
4098 if (newsrv->fall <= 0) {
4099 Alert("parsing [%s:%d]: '%s' has to be > 0.\n",
4100 file, linenum, args[cur_arg]);
4101 err_code |= ERR_ALERT | ERR_FATAL;
4102 goto out;
4103 }
4104
Willy Tarreaubaaee002006-06-26 02:48:02 +02004105 cur_arg += 2;
4106 }
4107 else if (!strcmp(args[cur_arg], "inter")) {
Willy Tarreaub3f32f52007-12-02 22:15:14 +01004108 const char *err = parse_time_err(args[cur_arg + 1], &val, TIME_UNIT_MS);
4109 if (err) {
4110 Alert("parsing [%s:%d] : unexpected character '%c' in 'inter' argument of server %s.\n",
4111 file, linenum, *err, newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004112 err_code |= ERR_ALERT | ERR_FATAL;
4113 goto out;
Willy Tarreaub3f32f52007-12-02 22:15:14 +01004114 }
Willy Tarreaue3838802009-03-21 18:58:32 +01004115 if (val <= 0) {
4116 Alert("parsing [%s:%d]: invalid value %d for argument '%s' of server %s.\n",
4117 file, linenum, val, args[cur_arg], newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004118 err_code |= ERR_ALERT | ERR_FATAL;
4119 goto out;
Willy Tarreaue3838802009-03-21 18:58:32 +01004120 }
Willy Tarreaub3f32f52007-12-02 22:15:14 +01004121 newsrv->inter = val;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004122 cur_arg += 2;
4123 }
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01004124 else if (!strcmp(args[cur_arg], "fastinter")) {
4125 const char *err = parse_time_err(args[cur_arg + 1], &val, TIME_UNIT_MS);
4126 if (err) {
4127 Alert("parsing [%s:%d]: unexpected character '%c' in 'fastinter' argument of server %s.\n",
4128 file, linenum, *err, newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004129 err_code |= ERR_ALERT | ERR_FATAL;
4130 goto out;
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01004131 }
Willy Tarreaue3838802009-03-21 18:58:32 +01004132 if (val <= 0) {
4133 Alert("parsing [%s:%d]: invalid value %d for argument '%s' of server %s.\n",
4134 file, linenum, val, args[cur_arg], newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004135 err_code |= ERR_ALERT | ERR_FATAL;
4136 goto out;
Willy Tarreaue3838802009-03-21 18:58:32 +01004137 }
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01004138 newsrv->fastinter = val;
4139 cur_arg += 2;
4140 }
Emeric Brun8694b9a2012-10-05 14:39:07 +02004141 else if (!strcmp(args[cur_arg], "force-sslv3")) {
4142#ifdef USE_OPENSSL
4143 newsrv->ssl_ctx.options |= SRV_SSL_O_USE_SSLV3;
4144 cur_arg += 1;
4145#else /* USE_OPENSSL */
4146 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4147 file, linenum, args[cur_arg]);
4148 err_code |= ERR_ALERT | ERR_FATAL;
4149 goto out;
4150#endif /* USE_OPENSSL */
4151 }
4152 else if (!strcmp(args[cur_arg], "force-tlsv10")) {
4153#ifdef USE_OPENSSL
4154 newsrv->ssl_ctx.options |= SRV_SSL_O_USE_TLSV10;
4155 cur_arg += 1;
4156#else /* USE_OPENSSL */
4157 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4158 file, linenum, args[cur_arg]);
4159 err_code |= ERR_ALERT | ERR_FATAL;
4160 goto out;
4161#endif /* USE_OPENSSL */
4162 }
4163 else if (!strcmp(args[cur_arg], "force-tlsv11")) {
4164#ifdef USE_OPENSSL
4165#if SSL_OP_NO_TLSv1_1
4166 newsrv->ssl_ctx.options |= SRV_SSL_O_USE_TLSV11;
4167 cur_arg += 1;
4168#else
4169 Alert("parsing [%s:%d]: '%s' library does not support protocol TLSv1.1.\n",
4170 file, linenum, args[cur_arg]);
4171 err_code |= ERR_ALERT | ERR_FATAL;
4172 goto out;
4173#endif
4174#else /* USE_OPENSSL */
4175 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4176 file, linenum, args[cur_arg]);
4177 err_code |= ERR_ALERT | ERR_FATAL;
4178 goto out;
4179#endif /* USE_OPENSSL */
4180 }
4181 else if (!strcmp(args[cur_arg], "force-tlsv12")) {
4182#ifdef USE_OPENSSL
4183#if SSL_OP_NO_TLSv1_2
4184 newsrv->ssl_ctx.options |= SRV_SSL_O_USE_TLSV12;
4185 cur_arg += 1;
4186#else
4187 Alert("parsing [%s:%d]: '%s' library does not support protocol TLSv1.2.\n",
4188 file, linenum, args[cur_arg]);
4189 err_code |= ERR_ALERT | ERR_FATAL;
4190 goto out;
4191#endif
4192#else /* USE_OPENSSL */
4193 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4194 file, linenum, args[cur_arg]);
4195 err_code |= ERR_ALERT | ERR_FATAL;
4196 goto out;
4197#endif /* USE_OPENSSL */
4198 }
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01004199 else if (!strcmp(args[cur_arg], "downinter")) {
4200 const char *err = parse_time_err(args[cur_arg + 1], &val, TIME_UNIT_MS);
4201 if (err) {
4202 Alert("parsing [%s:%d]: unexpected character '%c' in 'downinter' argument of server %s.\n",
4203 file, linenum, *err, newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004204 err_code |= ERR_ALERT | ERR_FATAL;
4205 goto out;
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01004206 }
Willy Tarreaue3838802009-03-21 18:58:32 +01004207 if (val <= 0) {
4208 Alert("parsing [%s:%d]: invalid value %d for argument '%s' of server %s.\n",
4209 file, linenum, val, args[cur_arg], newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004210 err_code |= ERR_ALERT | ERR_FATAL;
4211 goto out;
Willy Tarreaue3838802009-03-21 18:58:32 +01004212 }
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01004213 newsrv->downinter = val;
4214 cur_arg += 2;
4215 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004216 else if (!defsrv && !strcmp(args[cur_arg], "addr")) {
David du Colombier6f5ccb12011-03-10 22:26:24 +01004217 struct sockaddr_storage *sk = str2sa(args[cur_arg + 1]);
Willy Tarreaud5191e72010-02-09 20:50:45 +01004218 if (!sk) {
4219 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[cur_arg + 1]);
4220 err_code |= ERR_ALERT | ERR_FATAL;
4221 goto out;
4222 }
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004223 newsrv->check.addr = *sk;
Willy Tarreau2ea3abb2007-03-25 16:45:16 +02004224 cur_arg += 2;
4225 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004226 else if (!strcmp(args[cur_arg], "port")) {
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004227 newsrv->check.port = atol(args[cur_arg + 1]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02004228 cur_arg += 2;
4229 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004230 else if (!defsrv && !strcmp(args[cur_arg], "backup")) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004231 newsrv->state |= SRV_BACKUP;
4232 cur_arg ++;
4233 }
Simon Hormanfa461682011-06-25 09:39:49 +09004234 else if (!defsrv && !strcmp(args[cur_arg], "non-stick")) {
4235 newsrv->state |= SRV_NON_STICK;
4236 cur_arg ++;
4237 }
Willy Tarreau5ab04ec2011-03-20 10:32:26 +01004238 else if (!defsrv && !strcmp(args[cur_arg], "send-proxy")) {
4239 newsrv->state |= SRV_SEND_PROXY;
4240 cur_arg ++;
4241 }
Willy Tarreau6c16adc2012-10-05 00:04:16 +02004242 else if (!defsrv && !strcmp(args[cur_arg], "check-send-proxy")) {
4243 newsrv->check.send_proxy = 1;
4244 cur_arg ++;
4245 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004246 else if (!strcmp(args[cur_arg], "weight")) {
4247 int w;
4248 w = atol(args[cur_arg + 1]);
Willy Tarreau6704d672009-06-15 10:56:05 +02004249 if (w < 0 || w > 256) {
4250 Alert("parsing [%s:%d] : weight of server %s is not within 0 and 256 (%d).\n",
Willy Tarreaubaaee002006-06-26 02:48:02 +02004251 file, linenum, newsrv->id, w);
Willy Tarreau93893792009-07-23 13:19:11 +02004252 err_code |= ERR_ALERT | ERR_FATAL;
4253 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004254 }
Willy Tarreau975c50b2009-10-10 19:34:06 +02004255 newsrv->uweight = newsrv->iweight = w;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004256 cur_arg += 2;
4257 }
4258 else if (!strcmp(args[cur_arg], "minconn")) {
4259 newsrv->minconn = atol(args[cur_arg + 1]);
4260 cur_arg += 2;
4261 }
4262 else if (!strcmp(args[cur_arg], "maxconn")) {
4263 newsrv->maxconn = atol(args[cur_arg + 1]);
4264 cur_arg += 2;
4265 }
Elijah Epifanovacafc5f2007-10-25 20:15:38 +02004266 else if (!strcmp(args[cur_arg], "maxqueue")) {
4267 newsrv->maxqueue = atol(args[cur_arg + 1]);
4268 cur_arg += 2;
4269 }
Willy Tarreau9909fc12007-11-30 17:42:05 +01004270 else if (!strcmp(args[cur_arg], "slowstart")) {
4271 /* slowstart is stored in seconds */
Willy Tarreau3259e332007-12-03 01:51:45 +01004272 const char *err = parse_time_err(args[cur_arg + 1], &val, TIME_UNIT_MS);
Willy Tarreaub3f32f52007-12-02 22:15:14 +01004273 if (err) {
4274 Alert("parsing [%s:%d] : unexpected character '%c' in 'slowstart' argument of server %s.\n",
4275 file, linenum, *err, newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004276 err_code |= ERR_ALERT | ERR_FATAL;
4277 goto out;
Willy Tarreaub3f32f52007-12-02 22:15:14 +01004278 }
Willy Tarreau4554bc12010-03-26 10:40:49 +01004279 if (val < 0) {
Willy Tarreaue3838802009-03-21 18:58:32 +01004280 Alert("parsing [%s:%d]: invalid value %d for argument '%s' of server %s.\n",
4281 file, linenum, val, args[cur_arg], newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004282 err_code |= ERR_ALERT | ERR_FATAL;
4283 goto out;
Willy Tarreaue3838802009-03-21 18:58:32 +01004284 }
Willy Tarreau3259e332007-12-03 01:51:45 +01004285 newsrv->slowstart = (val + 999) / 1000;
Willy Tarreau9909fc12007-11-30 17:42:05 +01004286 cur_arg += 2;
4287 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004288 else if (!defsrv && !strcmp(args[cur_arg], "track")) {
Krzysztof Piotr Oledzkic8b16fc2008-02-18 01:26:35 +01004289
4290 if (!*args[cur_arg + 1]) {
4291 Alert("parsing [%s:%d]: 'track' expects [<proxy>/]<server> as argument.\n",
4292 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02004293 err_code |= ERR_ALERT | ERR_FATAL;
4294 goto out;
Krzysztof Piotr Oledzkic8b16fc2008-02-18 01:26:35 +01004295 }
4296
4297 newsrv->trackit = strdup(args[cur_arg + 1]);
4298
4299 cur_arg += 2;
4300 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004301 else if (!defsrv && !strcmp(args[cur_arg], "check")) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004302 global.maxsock++;
4303 do_check = 1;
4304 cur_arg += 1;
4305 }
Willy Tarreau96839092010-03-29 10:02:24 +02004306 else if (!defsrv && !strcmp(args[cur_arg], "disabled")) {
4307 newsrv->state |= SRV_MAINTAIN;
4308 newsrv->state &= ~SRV_RUNNING;
4309 newsrv->health = 0;
4310 cur_arg += 1;
4311 }
Emeric Brun01f8e2f2012-05-18 16:02:00 +02004312 else if (!strcmp(args[cur_arg], "ssl")) {
4313#ifdef USE_OPENSSL
4314 newsrv->use_ssl = 1;
4315 cur_arg += 1;
4316#else /* USE_OPENSSL */
4317 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4318 file, linenum, args[cur_arg]);
4319 err_code |= ERR_ALERT | ERR_FATAL;
4320 goto out;
4321#endif /* USE_OPENSSL */
4322 }
Willy Tarreau763a95b2012-10-04 23:15:39 +02004323 else if (!strcmp(args[cur_arg], "check-ssl")) {
4324#ifdef USE_OPENSSL
4325 newsrv->check.use_ssl = 1;
4326 cur_arg += 1;
4327#else /* USE_OPENSSL */
4328 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4329 file, linenum, args[cur_arg]);
4330 err_code |= ERR_ALERT | ERR_FATAL;
4331 goto out;
4332#endif /* USE_OPENSSL */
4333 }
Willy Tarreaud7aacbf2012-09-03 23:34:19 +02004334 else if (!strcmp(args[cur_arg], "ciphers")) { /* use this SSL cipher suite */
4335#ifdef USE_OPENSSL
4336 if (!*args[cur_arg + 1]) {
4337 Alert("parsing [%s:%d] : '%s' : '%s' : missing cipher suite.\n",
4338 file, linenum, args[0], args[cur_arg]);
4339 err_code |= ERR_ALERT | ERR_FATAL;
4340 goto out;
4341 }
4342
4343 newsrv->ssl_ctx.ciphers = strdup(args[cur_arg + 1]);
4344
4345 cur_arg += 2;
4346 continue;
4347#else
4348 Alert("parsing [%s:%d] : '%s' : '%s' option not implemented.\n",
4349 file, linenum, args[0], args[cur_arg]);
4350 err_code |= ERR_ALERT | ERR_FATAL;
4351 goto out;
4352#endif
4353 }
Emeric Brun9b3009b2012-10-05 11:55:06 +02004354 else if (!strcmp(args[cur_arg], "no-sslv3")) {
Willy Tarreauc230b8b2012-09-03 23:55:16 +02004355#ifdef USE_OPENSSL
Emeric Brun89675492012-10-05 13:48:26 +02004356 newsrv->ssl_ctx.options |= SRV_SSL_O_NO_SSLV3;
Willy Tarreauc230b8b2012-09-03 23:55:16 +02004357 cur_arg += 1;
4358#else /* USE_OPENSSL */
4359 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4360 file, linenum, args[cur_arg]);
4361 err_code |= ERR_ALERT | ERR_FATAL;
4362 goto out;
4363#endif /* USE_OPENSSL */
4364 }
Emeric Brun9b3009b2012-10-05 11:55:06 +02004365 else if (!strcmp(args[cur_arg], "no-tlsv10")) {
Willy Tarreauc230b8b2012-09-03 23:55:16 +02004366#ifdef USE_OPENSSL
Emeric Brun89675492012-10-05 13:48:26 +02004367 newsrv->ssl_ctx.options |= SRV_SSL_O_NO_TLSV10;
Willy Tarreauc230b8b2012-09-03 23:55:16 +02004368 cur_arg += 1;
4369#else /* USE_OPENSSL */
4370 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4371 file, linenum, args[cur_arg]);
4372 err_code |= ERR_ALERT | ERR_FATAL;
4373 goto out;
4374#endif /* USE_OPENSSL */
4375 }
Emeric Brun9b3009b2012-10-05 11:55:06 +02004376 else if (!strcmp(args[cur_arg], "no-tlsv11")) {
Emeric Brunc0ff4922012-09-28 19:37:02 +02004377#ifdef USE_OPENSSL
Emeric Brun89675492012-10-05 13:48:26 +02004378 newsrv->ssl_ctx.options |= SRV_SSL_O_NO_TLSV11;
Emeric Brunc0ff4922012-09-28 19:37:02 +02004379 cur_arg += 1;
4380#else /* USE_OPENSSL */
4381 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4382 file, linenum, args[cur_arg]);
4383 err_code |= ERR_ALERT | ERR_FATAL;
4384 goto out;
4385#endif /* USE_OPENSSL */
4386 }
Emeric Brun9b3009b2012-10-05 11:55:06 +02004387 else if (!strcmp(args[cur_arg], "no-tlsv12")) {
Emeric Brunc0ff4922012-09-28 19:37:02 +02004388#ifdef USE_OPENSSL
Emeric Brun89675492012-10-05 13:48:26 +02004389 newsrv->ssl_ctx.options |= SRV_SSL_O_NO_TLSV12;
Emeric Brunc0ff4922012-09-28 19:37:02 +02004390 cur_arg += 1;
4391#else /* USE_OPENSSL */
4392 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4393 file, linenum, args[cur_arg]);
4394 err_code |= ERR_ALERT | ERR_FATAL;
4395 goto out;
4396#endif /* USE_OPENSSL */
4397 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004398 else if (!defsrv && !strcmp(args[cur_arg], "observe")) {
Krzysztof Piotr Oledzki97f07b82009-12-15 22:31:24 +01004399 if (!strcmp(args[cur_arg + 1], "none"))
4400 newsrv->observe = HANA_OBS_NONE;
4401 else if (!strcmp(args[cur_arg + 1], "layer4"))
4402 newsrv->observe = HANA_OBS_LAYER4;
4403 else if (!strcmp(args[cur_arg + 1], "layer7")) {
4404 if (curproxy->mode != PR_MODE_HTTP) {
4405 Alert("parsing [%s:%d]: '%s' can only be used in http proxies.\n",
4406 file, linenum, args[cur_arg + 1]);
4407 err_code |= ERR_ALERT;
4408 }
4409 newsrv->observe = HANA_OBS_LAYER7;
4410 }
4411 else {
4412 Alert("parsing [%s:%d]: '%s' expects one of 'none', "
Willy Tarreau53621e02010-10-22 14:53:40 +02004413 "'layer4', 'layer7' but got '%s'\n",
Krzysztof Piotr Oledzki97f07b82009-12-15 22:31:24 +01004414 file, linenum, args[cur_arg], args[cur_arg + 1]);
4415 err_code |= ERR_ALERT | ERR_FATAL;
4416 goto out;
4417 }
4418
4419 cur_arg += 2;
4420 }
4421 else if (!strcmp(args[cur_arg], "on-error")) {
4422 if (!strcmp(args[cur_arg + 1], "fastinter"))
4423 newsrv->onerror = HANA_ONERR_FASTINTER;
4424 else if (!strcmp(args[cur_arg + 1], "fail-check"))
4425 newsrv->onerror = HANA_ONERR_FAILCHK;
4426 else if (!strcmp(args[cur_arg + 1], "sudden-death"))
4427 newsrv->onerror = HANA_ONERR_SUDDTH;
4428 else if (!strcmp(args[cur_arg + 1], "mark-down"))
4429 newsrv->onerror = HANA_ONERR_MARKDWN;
4430 else {
4431 Alert("parsing [%s:%d]: '%s' expects one of 'fastinter', "
Willy Tarreau53621e02010-10-22 14:53:40 +02004432 "'fail-check', 'sudden-death' or 'mark-down' but got '%s'\n",
Krzysztof Piotr Oledzki97f07b82009-12-15 22:31:24 +01004433 file, linenum, args[cur_arg], args[cur_arg + 1]);
4434 err_code |= ERR_ALERT | ERR_FATAL;
4435 goto out;
4436 }
4437
4438 cur_arg += 2;
4439 }
Simon Hormane0d1bfb2011-06-21 14:34:58 +09004440 else if (!strcmp(args[cur_arg], "on-marked-down")) {
4441 if (!strcmp(args[cur_arg + 1], "shutdown-sessions"))
4442 newsrv->onmarkeddown = HANA_ONMARKEDDOWN_SHUTDOWNSESSIONS;
4443 else {
4444 Alert("parsing [%s:%d]: '%s' expects 'shutdown-sessions' but got '%s'\n",
4445 file, linenum, args[cur_arg], args[cur_arg + 1]);
4446 err_code |= ERR_ALERT | ERR_FATAL;
4447 goto out;
4448 }
4449
4450 cur_arg += 2;
4451 }
Justin Karnegeseb2c24a2012-05-24 15:28:52 -07004452 else if (!strcmp(args[cur_arg], "on-marked-up")) {
4453 if (!strcmp(args[cur_arg + 1], "shutdown-backup-sessions"))
4454 newsrv->onmarkedup = HANA_ONMARKEDUP_SHUTDOWNBACKUPSESSIONS;
4455 else {
4456 Alert("parsing [%s:%d]: '%s' expects 'shutdown-backup-sessions' but got '%s'\n",
4457 file, linenum, args[cur_arg], args[cur_arg + 1]);
4458 err_code |= ERR_ALERT | ERR_FATAL;
4459 goto out;
4460 }
4461
4462 cur_arg += 2;
4463 }
Krzysztof Piotr Oledzki97f07b82009-12-15 22:31:24 +01004464 else if (!strcmp(args[cur_arg], "error-limit")) {
4465 if (!*args[cur_arg + 1]) {
4466 Alert("parsing [%s:%d]: '%s' expects an integer argument.\n",
4467 file, linenum, args[cur_arg]);
4468 err_code |= ERR_ALERT | ERR_FATAL;
4469 goto out;
4470 }
4471
4472 newsrv->consecutive_errors_limit = atoi(args[cur_arg + 1]);
4473
4474 if (newsrv->consecutive_errors_limit <= 0) {
4475 Alert("parsing [%s:%d]: %s has to be > 0.\n",
4476 file, linenum, args[cur_arg]);
4477 err_code |= ERR_ALERT | ERR_FATAL;
4478 goto out;
4479 }
Willy Tarreauf53b25d2010-03-15 19:40:37 +01004480 cur_arg += 2;
Krzysztof Piotr Oledzki97f07b82009-12-15 22:31:24 +01004481 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004482 else if (!defsrv && !strcmp(args[cur_arg], "source")) { /* address to which we bind when connecting */
Willy Tarreauc6f4ce82009-06-10 11:09:37 +02004483 int port_low, port_high;
David du Colombier6f5ccb12011-03-10 22:26:24 +01004484 struct sockaddr_storage *sk;
Willy Tarreaud5191e72010-02-09 20:50:45 +01004485
Willy Tarreaubaaee002006-06-26 02:48:02 +02004486 if (!*args[cur_arg + 1]) {
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004487#if defined(CONFIG_HAP_CTTPROXY) || defined(CONFIG_HAP_LINUX_TPROXY)
Willy Tarreauc6f4ce82009-06-10 11:09:37 +02004488 Alert("parsing [%s:%d] : '%s' expects <addr>[:<port>[-<port>]], and optional '%s' <addr> as argument.\n",
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004489 file, linenum, "source", "usesrc");
4490#else
Willy Tarreauc6f4ce82009-06-10 11:09:37 +02004491 Alert("parsing [%s:%d] : '%s' expects <addr>[:<port>[-<port>]] as argument.\n",
Willy Tarreaubaaee002006-06-26 02:48:02 +02004492 file, linenum, "source");
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004493#endif
Willy Tarreau93893792009-07-23 13:19:11 +02004494 err_code |= ERR_ALERT | ERR_FATAL;
4495 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004496 }
4497 newsrv->state |= SRV_BIND_SRC;
Willy Tarreaud5191e72010-02-09 20:50:45 +01004498 sk = str2sa_range(args[cur_arg + 1], &port_low, &port_high);
4499 if (!sk) {
4500 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[cur_arg + 1]);
4501 err_code |= ERR_ALERT | ERR_FATAL;
4502 goto out;
4503 }
4504 newsrv->source_addr = *sk;
Willy Tarreauc6f4ce82009-06-10 11:09:37 +02004505
4506 if (port_low != port_high) {
4507 int i;
4508 if (port_low <= 0 || port_low > 65535 ||
4509 port_high <= 0 || port_high > 65535 ||
4510 port_low > port_high) {
4511 Alert("parsing [%s:%d] : invalid source port range %d-%d.\n",
4512 file, linenum, port_low, port_high);
Willy Tarreau93893792009-07-23 13:19:11 +02004513 err_code |= ERR_ALERT | ERR_FATAL;
4514 goto out;
Willy Tarreauc6f4ce82009-06-10 11:09:37 +02004515 }
4516 newsrv->sport_range = port_range_alloc_range(port_high - port_low + 1);
4517 for (i = 0; i < newsrv->sport_range->size; i++)
4518 newsrv->sport_range->ports[i] = port_low + i;
4519 }
4520
Willy Tarreaubaaee002006-06-26 02:48:02 +02004521 cur_arg += 2;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004522 while (*(args[cur_arg])) {
4523 if (!strcmp(args[cur_arg], "usesrc")) { /* address to use outside */
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004524#if defined(CONFIG_HAP_CTTPROXY) || defined(CONFIG_HAP_LINUX_TPROXY)
4525#if !defined(CONFIG_HAP_LINUX_TPROXY)
Willy Tarreauc76721d2009-02-04 20:20:58 +01004526 if (newsrv->source_addr.sin_addr.s_addr == INADDR_ANY) {
4527 Alert("parsing [%s:%d] : '%s' requires an explicit '%s' address.\n",
4528 file, linenum, "usesrc", "source");
Willy Tarreau93893792009-07-23 13:19:11 +02004529 err_code |= ERR_ALERT | ERR_FATAL;
4530 goto out;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004531 }
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004532#endif
Willy Tarreauc76721d2009-02-04 20:20:58 +01004533 if (!*args[cur_arg + 1]) {
Willy Tarreaubce70882009-09-07 11:51:47 +02004534 Alert("parsing [%s:%d] : '%s' expects <addr>[:<port>], 'client', 'clientip', or 'hdr_ip(name,#)' as argument.\n",
Willy Tarreauc76721d2009-02-04 20:20:58 +01004535 file, linenum, "usesrc");
Willy Tarreau93893792009-07-23 13:19:11 +02004536 err_code |= ERR_ALERT | ERR_FATAL;
4537 goto out;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004538 }
4539 if (!strcmp(args[cur_arg + 1], "client")) {
Willy Tarreaubce70882009-09-07 11:51:47 +02004540 newsrv->state &= ~SRV_TPROXY_MASK;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004541 newsrv->state |= SRV_TPROXY_CLI;
4542 } else if (!strcmp(args[cur_arg + 1], "clientip")) {
Willy Tarreaubce70882009-09-07 11:51:47 +02004543 newsrv->state &= ~SRV_TPROXY_MASK;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004544 newsrv->state |= SRV_TPROXY_CIP;
Willy Tarreaubce70882009-09-07 11:51:47 +02004545 } else if (!strncmp(args[cur_arg + 1], "hdr_ip(", 7)) {
4546 char *name, *end;
4547
4548 name = args[cur_arg+1] + 7;
4549 while (isspace(*name))
4550 name++;
4551
4552 end = name;
4553 while (*end && !isspace(*end) && *end != ',' && *end != ')')
4554 end++;
4555
4556 newsrv->state &= ~SRV_TPROXY_MASK;
4557 newsrv->state |= SRV_TPROXY_DYN;
4558 newsrv->bind_hdr_name = calloc(1, end - name + 1);
4559 newsrv->bind_hdr_len = end - name;
4560 memcpy(newsrv->bind_hdr_name, name, end - name);
4561 newsrv->bind_hdr_name[end-name] = '\0';
4562 newsrv->bind_hdr_occ = -1;
4563
4564 /* now look for an occurrence number */
4565 while (isspace(*end))
4566 end++;
4567 if (*end == ',') {
4568 end++;
4569 name = end;
4570 if (*end == '-')
4571 end++;
4572 while (isdigit(*end))
4573 end++;
4574 newsrv->bind_hdr_occ = strl2ic(name, end-name);
4575 }
4576
4577 if (newsrv->bind_hdr_occ < -MAX_HDR_HISTORY) {
4578 Alert("parsing [%s:%d] : usesrc hdr_ip(name,num) does not support negative"
4579 " occurrences values smaller than %d.\n",
4580 file, linenum, MAX_HDR_HISTORY);
4581 err_code |= ERR_ALERT | ERR_FATAL;
4582 goto out;
4583 }
Willy Tarreauc76721d2009-02-04 20:20:58 +01004584 } else {
David du Colombier6f5ccb12011-03-10 22:26:24 +01004585 struct sockaddr_storage *sk = str2sa(args[cur_arg + 1]);
Willy Tarreaud5191e72010-02-09 20:50:45 +01004586 if (!sk) {
4587 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[cur_arg + 1]);
4588 err_code |= ERR_ALERT | ERR_FATAL;
4589 goto out;
4590 }
4591 newsrv->tproxy_addr = *sk;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004592 newsrv->state |= SRV_TPROXY_ADDR;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004593 }
4594 global.last_checks |= LSTCHK_NETADM;
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004595#if !defined(CONFIG_HAP_LINUX_TPROXY)
Willy Tarreauc76721d2009-02-04 20:20:58 +01004596 global.last_checks |= LSTCHK_CTTPROXY;
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004597#endif
Willy Tarreauc76721d2009-02-04 20:20:58 +01004598 cur_arg += 2;
4599 continue;
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004600#else /* no TPROXY support */
Willy Tarreauc76721d2009-02-04 20:20:58 +01004601 Alert("parsing [%s:%d] : '%s' not allowed here because support for TPROXY was not compiled in.\n",
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004602 file, linenum, "usesrc");
Willy Tarreau93893792009-07-23 13:19:11 +02004603 err_code |= ERR_ALERT | ERR_FATAL;
4604 goto out;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004605#endif /* defined(CONFIG_HAP_CTTPROXY) || defined(CONFIG_HAP_LINUX_TPROXY) */
4606 } /* "usesrc" */
4607
4608 if (!strcmp(args[cur_arg], "interface")) { /* specifically bind to this interface */
4609#ifdef SO_BINDTODEVICE
4610 if (!*args[cur_arg + 1]) {
4611 Alert("parsing [%s:%d] : '%s' : missing interface name.\n",
4612 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02004613 err_code |= ERR_ALERT | ERR_FATAL;
4614 goto out;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004615 }
4616 if (newsrv->iface_name)
4617 free(newsrv->iface_name);
4618
4619 newsrv->iface_name = strdup(args[cur_arg + 1]);
4620 newsrv->iface_len = strlen(newsrv->iface_name);
4621 global.last_checks |= LSTCHK_NETADM;
4622#else
4623 Alert("parsing [%s:%d] : '%s' : '%s' option not implemented.\n",
4624 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02004625 err_code |= ERR_ALERT | ERR_FATAL;
4626 goto out;
Willy Tarreau77074d52006-11-12 23:57:19 +01004627#endif
Willy Tarreauc76721d2009-02-04 20:20:58 +01004628 cur_arg += 2;
4629 continue;
4630 }
4631 /* this keyword in not an option of "source" */
4632 break;
4633 } /* while */
Willy Tarreaubaaee002006-06-26 02:48:02 +02004634 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004635 else if (!defsrv && !strcmp(args[cur_arg], "usesrc")) { /* address to use outside: needs "source" first */
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004636 Alert("parsing [%s:%d] : '%s' only allowed after a '%s' statement.\n",
4637 file, linenum, "usesrc", "source");
Willy Tarreau93893792009-07-23 13:19:11 +02004638 err_code |= ERR_ALERT | ERR_FATAL;
4639 goto out;
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004640 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004641 else {
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004642 if (!defsrv)
Simon Hormane0d1bfb2011-06-21 14:34:58 +09004643 Alert("parsing [%s:%d] : server %s only supports options 'backup', 'cookie', 'redir', 'observer', 'on-error', 'on-marked-down', 'error-limit', 'check', 'disabled', 'track', 'id', 'inter', 'fastinter', 'downinter', 'rise', 'fall', 'addr', 'port', 'source', 'send-proxy', 'minconn', 'maxconn', 'maxqueue', 'slowstart' and 'weight'.\n",
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004644 file, linenum, newsrv->id);
4645 else
Krzysztof Piotr Oledzkia9389b12010-01-05 16:44:17 +01004646 Alert("parsing [%s:%d]: default-server only supports options 'on-error', 'error-limit', 'inter', 'fastinter', 'downinter', 'rise', 'fall', 'port', 'minconn', 'maxconn', 'maxqueue', 'slowstart' and 'weight'.\n",
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004647 file, linenum);
4648
Willy Tarreau93893792009-07-23 13:19:11 +02004649 err_code |= ERR_ALERT | ERR_FATAL;
4650 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004651 }
4652 }
4653
4654 if (do_check) {
Krzysztof Piotr Oledzkic8b16fc2008-02-18 01:26:35 +01004655 if (newsrv->trackit) {
4656 Alert("parsing [%s:%d]: unable to enable checks and tracking at the same time!\n",
4657 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02004658 err_code |= ERR_ALERT | ERR_FATAL;
4659 goto out;
Krzysztof Piotr Oledzkic8b16fc2008-02-18 01:26:35 +01004660 }
4661
Willy Tarreauf4288ee2012-09-28 18:13:10 +02004662 /* If neither a port nor an addr was specified and no check transport
4663 * layer is forced, then the transport layer used by the checks is the
4664 * same as for the production traffic. Otherwise we use raw_sock by
4665 * default, unless one is specified.
4666 */
Baptiste Assmanne6baecf2012-10-05 11:48:04 +02004667#ifdef USE_OPENSSL
Willy Tarreau6c16adc2012-10-05 00:04:16 +02004668 if (!newsrv->check.port && !is_addr(&newsrv->check.addr)) {
Willy Tarreauf4288ee2012-09-28 18:13:10 +02004669 newsrv->check.use_ssl |= newsrv->use_ssl;
Willy Tarreau6c16adc2012-10-05 00:04:16 +02004670 newsrv->check.send_proxy |= (newsrv->state & SRV_SEND_PROXY);
4671 }
Baptiste Assmanne6baecf2012-10-05 11:48:04 +02004672#endif
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004673 /* try to get the port from check.addr if check.port not set */
4674 if (!newsrv->check.port)
4675 newsrv->check.port = get_host_port(&newsrv->check.addr);
Willy Tarreau0f03c6f2007-03-25 20:46:19 +02004676
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004677 if (!newsrv->check.port && !(newsrv->state & SRV_MAPPORTS))
4678 newsrv->check.port = realport; /* by default */
4679 if (!newsrv->check.port) {
Willy Tarreauef00b502007-01-07 02:40:09 +01004680 /* not yet valid, because no port was set on
4681 * the server either. We'll check if we have
4682 * a known port on the first listener.
4683 */
Willy Tarreau4348fad2012-09-20 16:48:07 +02004684 struct listener *l;
4685
4686 list_for_each_entry(l, &curproxy->conf.listeners, by_fe) {
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004687 newsrv->check.port = get_host_port(&l->addr);
4688 if (newsrv->check.port)
Willy Tarreau4348fad2012-09-20 16:48:07 +02004689 break;
4690 }
Willy Tarreauef00b502007-01-07 02:40:09 +01004691 }
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004692 if (!newsrv->check.port) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004693 Alert("parsing [%s:%d] : server %s has neither service port nor check port. Check has been disabled.\n",
4694 file, linenum, newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004695 err_code |= ERR_ALERT | ERR_FATAL;
4696 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004697 }
Krzysztof Piotr Oledzki09605412009-09-23 22:09:24 +02004698
Willy Tarreau1ae1b7b2012-09-28 15:28:30 +02004699 /* Allocate buffer for check requests... */
4700 if ((newsrv->check.bi = calloc(sizeof(struct buffer) + global.tune.chksize, sizeof(char))) == NULL) {
Cyril Bontéc9f825f2010-03-17 18:56:31 +01004701 Alert("parsing [%s:%d] : out of memory while allocating check buffer.\n", file, linenum);
4702 err_code |= ERR_ALERT | ERR_ABORT;
4703 goto out;
4704 }
Willy Tarreau1ae1b7b2012-09-28 15:28:30 +02004705 newsrv->check.bi->size = global.tune.chksize;
4706
4707 /* Allocate buffer for check responses... */
4708 if ((newsrv->check.bo = calloc(sizeof(struct buffer) + global.tune.chksize, sizeof(char))) == NULL) {
4709 Alert("parsing [%s:%d] : out of memory while allocating check buffer.\n", file, linenum);
4710 err_code |= ERR_ALERT | ERR_ABORT;
4711 goto out;
4712 }
4713 newsrv->check.bo->size = global.tune.chksize;
Cyril Bontéc9f825f2010-03-17 18:56:31 +01004714
Willy Tarreauda92e2f2012-07-06 09:40:59 +02004715 /* Allocate buffer for partial check results... */
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004716 if ((newsrv->check.conn = calloc(1, sizeof(struct connection))) == NULL) {
Willy Tarreauda92e2f2012-07-06 09:40:59 +02004717 Alert("parsing [%s:%d] : out of memory while allocating check connection.\n", file, linenum);
4718 err_code |= ERR_ALERT | ERR_ABORT;
4719 goto out;
4720 }
4721
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004722 newsrv->check.conn->t.sock.fd = -1; /* no check in progress yet */
4723 newsrv->check.status = HCHK_STATUS_INI;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004724 newsrv->state |= SRV_CHECKED;
4725 }
4726
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004727 if (!defsrv) {
4728 if (newsrv->state & SRV_BACKUP)
4729 curproxy->srv_bck++;
4730 else
4731 curproxy->srv_act++;
Willy Tarreaub625a082007-11-26 01:15:43 +01004732
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004733 newsrv->prev_state = newsrv->state;
4734 }
William Lallemanda73203e2012-03-12 12:48:57 +01004735 }
4736
4737 else if (strcmp(args[0], "unique-id-format") == 0) {
4738 if (!*(args[1])) {
4739 Alert("parsing [%s:%d] : %s expects an argument.\n", file, linenum, args[0]);
4740 err_code |= ERR_ALERT | ERR_FATAL;
4741 goto out;
4742 }
Willy Tarreau196729e2012-05-31 19:30:26 +02004743 free(curproxy->uniqueid_format_string);
4744 curproxy->uniqueid_format_string = strdup(args[1]);
William Lallemand723b73a2012-02-08 16:37:49 +01004745 }
William Lallemanda73203e2012-03-12 12:48:57 +01004746
4747 else if (strcmp(args[0], "unique-id-header") == 0) {
4748 if (!*(args[1])) {
4749 Alert("parsing [%s:%d] : %s expects an argument.\n", file, linenum, args[0]);
4750 err_code |= ERR_ALERT | ERR_FATAL;
4751 goto out;
4752 }
4753 free(curproxy->header_unique_id);
4754 curproxy->header_unique_id = strdup(args[1]);
4755 }
4756
William Lallemand723b73a2012-02-08 16:37:49 +01004757 else if (strcmp(args[0], "log-format") == 0) {
4758 if (!*(args[1])) {
4759 Alert("parsing [%s:%d] : %s expects an argument.\n", file, linenum, args[0]);
4760 err_code |= ERR_ALERT | ERR_FATAL;
4761 goto out;
4762 }
Willy Tarreau196729e2012-05-31 19:30:26 +02004763
4764 if (curproxy->logformat_string != default_http_log_format &&
4765 curproxy->logformat_string != default_tcp_log_format &&
4766 curproxy->logformat_string != clf_http_log_format)
4767 free(curproxy->logformat_string);
4768 curproxy->logformat_string = strdup(args[1]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02004769 }
William Lallemand723b73a2012-02-08 16:37:49 +01004770
William Lallemand0f99e342011-10-12 17:50:54 +02004771 else if (!strcmp(args[0], "log") && kwm == KWM_NO) {
4772 /* delete previous herited or defined syslog servers */
4773 struct logsrv *back;
4774
4775 if (*(args[1]) != 0) {
4776 Alert("parsing [%s:%d]:%s : 'no log' does not expect arguments.\n", file, linenum, args[1]);
4777 err_code |= ERR_ALERT | ERR_FATAL;
4778 goto out;
4779 }
4780
William Lallemand723b73a2012-02-08 16:37:49 +01004781 list_for_each_entry_safe(tmplogsrv, back, &curproxy->logsrvs, list) {
4782 LIST_DEL(&tmplogsrv->list);
4783 free(tmplogsrv);
William Lallemand0f99e342011-10-12 17:50:54 +02004784 }
4785 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004786 else if (!strcmp(args[0], "log")) { /* syslog server address */
William Lallemand0f99e342011-10-12 17:50:54 +02004787 struct logsrv *logsrv;
4788
Willy Tarreaubaaee002006-06-26 02:48:02 +02004789 if (*(args[1]) && *(args[2]) == 0 && !strcmp(args[1], "global")) {
William Lallemand0f99e342011-10-12 17:50:54 +02004790 /* copy global.logrsvs linked list to the end of curproxy->logsrvs */
William Lallemand723b73a2012-02-08 16:37:49 +01004791 list_for_each_entry(tmplogsrv, &global.logsrvs, list) {
William Lallemand0f99e342011-10-12 17:50:54 +02004792 struct logsrv *node = malloc(sizeof(struct logsrv));
William Lallemand723b73a2012-02-08 16:37:49 +01004793 memcpy(node, tmplogsrv, sizeof(struct logsrv));
William Lallemand0f99e342011-10-12 17:50:54 +02004794 LIST_INIT(&node->list);
4795 LIST_ADDQ(&curproxy->logsrvs, &node->list);
4796 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004797 }
4798 else if (*(args[1]) && *(args[2])) {
William Lallemand0f99e342011-10-12 17:50:54 +02004799
4800 logsrv = calloc(1, sizeof(struct logsrv));
Willy Tarreaubaaee002006-06-26 02:48:02 +02004801
William Lallemand0f99e342011-10-12 17:50:54 +02004802 logsrv->facility = get_log_facility(args[2]);
4803 if (logsrv->facility < 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004804 Alert("parsing [%s:%d] : unknown log facility '%s'\n", file, linenum, args[2]);
William Lallemand0f99e342011-10-12 17:50:54 +02004805 err_code |= ERR_ALERT | ERR_FATAL;
4806 goto out;
4807
Willy Tarreaubaaee002006-06-26 02:48:02 +02004808 }
4809
William Lallemand0f99e342011-10-12 17:50:54 +02004810 logsrv->level = 7; /* max syslog level = debug */
Willy Tarreaubaaee002006-06-26 02:48:02 +02004811 if (*(args[3])) {
William Lallemand0f99e342011-10-12 17:50:54 +02004812 logsrv->level = get_log_level(args[3]);
4813 if (logsrv->level < 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004814 Alert("parsing [%s:%d] : unknown optional log level '%s'\n", file, linenum, args[3]);
William Lallemand0f99e342011-10-12 17:50:54 +02004815 err_code |= ERR_ALERT | ERR_FATAL;
4816 goto out;
4817
Willy Tarreaubaaee002006-06-26 02:48:02 +02004818 }
4819 }
4820
William Lallemand0f99e342011-10-12 17:50:54 +02004821 logsrv->minlvl = 0; /* limit syslog level to this level (emerg) */
Willy Tarreauf7edefa2009-05-10 17:20:05 +02004822 if (*(args[4])) {
William Lallemand0f99e342011-10-12 17:50:54 +02004823 logsrv->minlvl = get_log_level(args[4]);
4824 if (logsrv->level < 0) {
Willy Tarreauf7edefa2009-05-10 17:20:05 +02004825 Alert("parsing [%s:%d] : unknown optional minimum log level '%s'\n", file, linenum, args[4]);
William Lallemand0f99e342011-10-12 17:50:54 +02004826 err_code |= ERR_ALERT | ERR_FATAL;
4827 goto out;
4828
Willy Tarreauf7edefa2009-05-10 17:20:05 +02004829 }
4830 }
4831
Robert Tsai81ae1952007-12-05 10:47:29 +01004832 if (args[1][0] == '/') {
David du Colombier11bcb6c2011-03-24 12:23:00 +01004833 struct sockaddr_storage *sk = (struct sockaddr_storage *)str2sun(args[1]);
Willy Tarreaud5191e72010-02-09 20:50:45 +01004834 if (!sk) {
4835 Alert("parsing [%s:%d] : Socket path '%s' too long (max %d)\n", file, linenum,
David du Colombier11bcb6c2011-03-24 12:23:00 +01004836 args[1], (int)sizeof(((struct sockaddr_un *)sk)->sun_path) - 1);
Willy Tarreaud5191e72010-02-09 20:50:45 +01004837 err_code |= ERR_ALERT | ERR_FATAL;
4838 goto out;
4839 }
William Lallemand0f99e342011-10-12 17:50:54 +02004840 logsrv->addr = *sk;
Robert Tsai81ae1952007-12-05 10:47:29 +01004841 } else {
David du Colombier6f5ccb12011-03-10 22:26:24 +01004842 struct sockaddr_storage *sk = str2sa(args[1]);
David du Colombier11bcb6c2011-03-24 12:23:00 +01004843 if (!sk) {
Willy Tarreaud5191e72010-02-09 20:50:45 +01004844 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[1]);
4845 err_code |= ERR_ALERT | ERR_FATAL;
4846 goto out;
4847 }
William Lallemand0f99e342011-10-12 17:50:54 +02004848 logsrv->addr = *sk;
4849 if (!get_host_port(&logsrv->addr))
4850 set_host_port(&logsrv->addr, SYSLOG_PORT);
Willy Tarreaubaaee002006-06-26 02:48:02 +02004851 }
William Lallemand0f99e342011-10-12 17:50:54 +02004852
4853 LIST_ADDQ(&curproxy->logsrvs, &logsrv->list);
Willy Tarreaubaaee002006-06-26 02:48:02 +02004854 }
4855 else {
4856 Alert("parsing [%s:%d] : 'log' expects either <address[:port]> and <facility> or 'global' as arguments.\n",
4857 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02004858 err_code |= ERR_ALERT | ERR_FATAL;
4859 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004860 }
4861 }
4862 else if (!strcmp(args[0], "source")) { /* address to which we bind when connecting */
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004863 int cur_arg;
David du Colombier6f5ccb12011-03-10 22:26:24 +01004864 struct sockaddr_storage *sk;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004865
Willy Tarreau977b8e42006-12-29 14:19:17 +01004866 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02004867 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01004868
Willy Tarreaubaaee002006-06-26 02:48:02 +02004869 if (!*args[1]) {
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004870 Alert("parsing [%s:%d] : '%s' expects <addr>[:<port>], and optionally '%s' <addr>, and '%s' <name>.\n",
4871 file, linenum, "source", "usesrc", "interface");
Willy Tarreau93893792009-07-23 13:19:11 +02004872 err_code |= ERR_ALERT | ERR_FATAL;
4873 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004874 }
Willy Tarreau368480c2009-03-01 08:27:21 +01004875
4876 /* we must first clear any optional default setting */
4877 curproxy->options &= ~PR_O_TPXY_MASK;
4878 free(curproxy->iface_name);
4879 curproxy->iface_name = NULL;
4880 curproxy->iface_len = 0;
4881
Willy Tarreaud5191e72010-02-09 20:50:45 +01004882 sk = str2sa(args[1]);
4883 if (!sk) {
4884 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[1]);
4885 err_code |= ERR_ALERT | ERR_FATAL;
4886 goto out;
4887 }
4888 curproxy->source_addr = *sk;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004889 curproxy->options |= PR_O_BIND_SRC;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004890
4891 cur_arg = 2;
4892 while (*(args[cur_arg])) {
4893 if (!strcmp(args[cur_arg], "usesrc")) { /* address to use outside */
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004894#if defined(CONFIG_HAP_CTTPROXY) || defined(CONFIG_HAP_LINUX_TPROXY)
4895#if !defined(CONFIG_HAP_LINUX_TPROXY)
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004896 if (curproxy->source_addr.sin_addr.s_addr == INADDR_ANY) {
4897 Alert("parsing [%s:%d] : '%s' requires an explicit 'source' address.\n",
4898 file, linenum, "usesrc");
Willy Tarreau93893792009-07-23 13:19:11 +02004899 err_code |= ERR_ALERT | ERR_FATAL;
4900 goto out;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004901 }
4902#endif
4903 if (!*args[cur_arg + 1]) {
4904 Alert("parsing [%s:%d] : '%s' expects <addr>[:<port>], 'client', or 'clientip' as argument.\n",
4905 file, linenum, "usesrc");
Willy Tarreau93893792009-07-23 13:19:11 +02004906 err_code |= ERR_ALERT | ERR_FATAL;
4907 goto out;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004908 }
4909
4910 if (!strcmp(args[cur_arg + 1], "client")) {
Willy Tarreaubce70882009-09-07 11:51:47 +02004911 curproxy->options &= ~PR_O_TPXY_MASK;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004912 curproxy->options |= PR_O_TPXY_CLI;
4913 } else if (!strcmp(args[cur_arg + 1], "clientip")) {
Willy Tarreaubce70882009-09-07 11:51:47 +02004914 curproxy->options &= ~PR_O_TPXY_MASK;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004915 curproxy->options |= PR_O_TPXY_CIP;
Willy Tarreaubce70882009-09-07 11:51:47 +02004916 } else if (!strncmp(args[cur_arg + 1], "hdr_ip(", 7)) {
4917 char *name, *end;
4918
4919 name = args[cur_arg+1] + 7;
4920 while (isspace(*name))
4921 name++;
4922
4923 end = name;
4924 while (*end && !isspace(*end) && *end != ',' && *end != ')')
4925 end++;
4926
4927 curproxy->options &= ~PR_O_TPXY_MASK;
4928 curproxy->options |= PR_O_TPXY_DYN;
4929 curproxy->bind_hdr_name = calloc(1, end - name + 1);
4930 curproxy->bind_hdr_len = end - name;
4931 memcpy(curproxy->bind_hdr_name, name, end - name);
4932 curproxy->bind_hdr_name[end-name] = '\0';
4933 curproxy->bind_hdr_occ = -1;
4934
4935 /* now look for an occurrence number */
4936 while (isspace(*end))
4937 end++;
4938 if (*end == ',') {
4939 end++;
4940 name = end;
4941 if (*end == '-')
4942 end++;
4943 while (isdigit(*end))
4944 end++;
4945 curproxy->bind_hdr_occ = strl2ic(name, end-name);
4946 }
4947
4948 if (curproxy->bind_hdr_occ < -MAX_HDR_HISTORY) {
4949 Alert("parsing [%s:%d] : usesrc hdr_ip(name,num) does not support negative"
4950 " occurrences values smaller than %d.\n",
4951 file, linenum, MAX_HDR_HISTORY);
4952 err_code |= ERR_ALERT | ERR_FATAL;
4953 goto out;
4954 }
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004955 } else {
David du Colombier6f5ccb12011-03-10 22:26:24 +01004956 struct sockaddr_storage *sk = str2sa(args[cur_arg + 1]);
Willy Tarreaud5191e72010-02-09 20:50:45 +01004957 if (!sk) {
4958 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[cur_arg + 1]);
4959 err_code |= ERR_ALERT | ERR_FATAL;
4960 goto out;
4961 }
4962 curproxy->tproxy_addr = *sk;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004963 curproxy->options |= PR_O_TPXY_ADDR;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004964 }
4965 global.last_checks |= LSTCHK_NETADM;
4966#if !defined(CONFIG_HAP_LINUX_TPROXY)
4967 global.last_checks |= LSTCHK_CTTPROXY;
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004968#endif
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004969#else /* no TPROXY support */
4970 Alert("parsing [%s:%d] : '%s' not allowed here because support for TPROXY was not compiled in.\n",
Willy Tarreau77074d52006-11-12 23:57:19 +01004971 file, linenum, "usesrc");
Willy Tarreau93893792009-07-23 13:19:11 +02004972 err_code |= ERR_ALERT | ERR_FATAL;
4973 goto out;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004974#endif
4975 cur_arg += 2;
4976 continue;
Willy Tarreau77074d52006-11-12 23:57:19 +01004977 }
4978
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004979 if (!strcmp(args[cur_arg], "interface")) { /* specifically bind to this interface */
4980#ifdef SO_BINDTODEVICE
4981 if (!*args[cur_arg + 1]) {
4982 Alert("parsing [%s:%d] : '%s' : missing interface name.\n",
4983 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02004984 err_code |= ERR_ALERT | ERR_FATAL;
4985 goto out;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004986 }
4987 if (curproxy->iface_name)
4988 free(curproxy->iface_name);
4989
4990 curproxy->iface_name = strdup(args[cur_arg + 1]);
4991 curproxy->iface_len = strlen(curproxy->iface_name);
4992 global.last_checks |= LSTCHK_NETADM;
4993#else
4994 Alert("parsing [%s:%d] : '%s' : '%s' option not implemented.\n",
4995 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02004996 err_code |= ERR_ALERT | ERR_FATAL;
4997 goto out;
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004998#endif
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004999 cur_arg += 2;
5000 continue;
5001 }
5002 Alert("parsing [%s:%d] : '%s' only supports optional keywords '%s' and '%s'.\n",
Willy Tarreau3631d412012-09-25 16:31:00 +02005003 file, linenum, args[0], "interface", "usesrc");
Willy Tarreau93893792009-07-23 13:19:11 +02005004 err_code |= ERR_ALERT | ERR_FATAL;
5005 goto out;
Willy Tarreau8d9246d2007-03-24 12:47:24 +01005006 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005007 }
Willy Tarreau8d9246d2007-03-24 12:47:24 +01005008 else if (!strcmp(args[0], "usesrc")) { /* address to use outside: needs "source" first */
5009 Alert("parsing [%s:%d] : '%s' only allowed after a '%s' statement.\n",
5010 file, linenum, "usesrc", "source");
Willy Tarreau93893792009-07-23 13:19:11 +02005011 err_code |= ERR_ALERT | ERR_FATAL;
5012 goto out;
Willy Tarreau8d9246d2007-03-24 12:47:24 +01005013 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005014 else if (!strcmp(args[0], "cliexp") || !strcmp(args[0], "reqrep")) { /* replace request header from a regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005015 if (*(args[2]) == 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005016 Alert("parsing [%s:%d] : '%s' expects <search> and <replace> as arguments.\n",
5017 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005018 err_code |= ERR_ALERT | ERR_FATAL;
5019 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005020 }
Willy Tarreauade5ec42010-01-28 19:33:49 +01005021
5022 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005023 SMP_OPT_DIR_REQ, ACT_REPLACE, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01005024 args[0], args[1], args[2], (const char **)args+3);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005025 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005026 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005027 }
5028 else if (!strcmp(args[0], "reqdel")) { /* delete request header from a regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005029 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005030 SMP_OPT_DIR_REQ, ACT_REMOVE, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01005031 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005032 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005033 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005034 }
5035 else if (!strcmp(args[0], "reqdeny")) { /* deny a request if a header matches this regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005036 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005037 SMP_OPT_DIR_REQ, ACT_DENY, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01005038 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005039 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005040 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005041 }
5042 else if (!strcmp(args[0], "reqpass")) { /* pass this header without allowing or denying the request */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005043 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005044 SMP_OPT_DIR_REQ, ACT_PASS, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01005045 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005046 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005047 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005048 }
5049 else if (!strcmp(args[0], "reqallow")) { /* allow a request if a header matches this regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005050 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005051 SMP_OPT_DIR_REQ, ACT_ALLOW, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01005052 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005053 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005054 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005055 }
Willy Tarreaub8750a82006-09-03 09:56:00 +02005056 else if (!strcmp(args[0], "reqtarpit")) { /* tarpit a request if a header matches this regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005057 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005058 SMP_OPT_DIR_REQ, ACT_TARPIT, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01005059 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005060 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005061 goto out;
Willy Tarreaub8750a82006-09-03 09:56:00 +02005062 }
Willy Tarreaua496b602006-12-17 23:15:24 +01005063 else if (!strcmp(args[0], "reqsetbe")) { /* switch the backend from a regex, respecting case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005064 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005065 SMP_OPT_DIR_REQ, ACT_SETBE, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01005066 args[0], args[1], args[2], (const char **)args+3);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005067 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005068 goto out;
Willy Tarreaua496b602006-12-17 23:15:24 +01005069 }
5070 else if (!strcmp(args[0], "reqisetbe")) { /* switch the backend from a regex, ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005071 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005072 SMP_OPT_DIR_REQ, ACT_SETBE, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005073 args[0], args[1], args[2], (const char **)args+3);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005074 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005075 goto out;
Willy Tarreaua496b602006-12-17 23:15:24 +01005076 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005077 else if (!strcmp(args[0], "reqirep")) { /* replace request header from a regex, ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005078 if (*(args[2]) == 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005079 Alert("parsing [%s:%d] : '%s' expects <search> and <replace> as arguments.\n",
5080 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005081 err_code |= ERR_ALERT | ERR_FATAL;
5082 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005083 }
Willy Tarreauade5ec42010-01-28 19:33:49 +01005084
5085 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005086 SMP_OPT_DIR_REQ, ACT_REPLACE, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005087 args[0], args[1], args[2], (const char **)args+3);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005088 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005089 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005090 }
5091 else if (!strcmp(args[0], "reqidel")) { /* delete request header from a regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005092 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005093 SMP_OPT_DIR_REQ, ACT_REMOVE, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005094 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005095 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005096 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005097 }
5098 else if (!strcmp(args[0], "reqideny")) { /* deny a request if a header matches this regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005099 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005100 SMP_OPT_DIR_REQ, ACT_DENY, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005101 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005102 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005103 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005104 }
5105 else if (!strcmp(args[0], "reqipass")) { /* pass this header without allowing or denying the request */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005106 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005107 SMP_OPT_DIR_REQ, ACT_PASS, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005108 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005109 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005110 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005111 }
5112 else if (!strcmp(args[0], "reqiallow")) { /* allow a request if a header matches this regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005113 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005114 SMP_OPT_DIR_REQ, ACT_ALLOW, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005115 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005116 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005117 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005118 }
Willy Tarreaub8750a82006-09-03 09:56:00 +02005119 else if (!strcmp(args[0], "reqitarpit")) { /* tarpit a request if a header matches this regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005120 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005121 SMP_OPT_DIR_REQ, ACT_TARPIT, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005122 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005123 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005124 goto out;
Willy Tarreaub8750a82006-09-03 09:56:00 +02005125 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005126 else if (!strcmp(args[0], "reqadd")) { /* add request header */
Willy Tarreauf4f04122010-01-28 18:10:50 +01005127 struct cond_wordlist *wl;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005128
Willy Tarreaubaaee002006-06-26 02:48:02 +02005129 if (curproxy == &defproxy) {
5130 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005131 err_code |= ERR_ALERT | ERR_FATAL;
5132 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005133 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01005134 else if (warnifnotcap(curproxy, PR_CAP_RS, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02005135 err_code |= ERR_WARN;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005136
Willy Tarreaubaaee002006-06-26 02:48:02 +02005137 if (*(args[1]) == 0) {
5138 Alert("parsing [%s:%d] : '%s' expects <header> as an argument.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005139 err_code |= ERR_ALERT | ERR_FATAL;
5140 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005141 }
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005142
Willy Tarreau8abd4cd2010-01-31 14:30:44 +01005143 if ((strcmp(args[2], "if") == 0 || strcmp(args[2], "unless") == 0)) {
Willy Tarreaub7451bb2012-04-27 12:38:15 +02005144 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args+2, &errmsg)) == NULL) {
5145 Alert("parsing [%s:%d] : error detected while parsing a '%s' condition : %s.\n",
5146 file, linenum, args[0], errmsg);
Willy Tarreau8abd4cd2010-01-31 14:30:44 +01005147 err_code |= ERR_ALERT | ERR_FATAL;
5148 goto out;
5149 }
5150 err_code |= warnif_cond_requires_resp(cond, file, linenum);
5151 }
5152 else if (*args[2]) {
5153 Alert("parsing [%s:%d] : '%s' : Expecting nothing, 'if', or 'unless', got '%s'.\n",
5154 file, linenum, args[0], args[2]);
5155 err_code |= ERR_ALERT | ERR_FATAL;
5156 goto out;
5157 }
5158
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005159 wl = calloc(1, sizeof(*wl));
Willy Tarreau8abd4cd2010-01-31 14:30:44 +01005160 wl->cond = cond;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005161 wl->s = strdup(args[1]);
5162 LIST_ADDQ(&curproxy->req_add, &wl->list);
Willy Tarreau61d18892009-03-31 10:49:21 +02005163 warnif_misplaced_reqadd(curproxy, file, linenum, args[0]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005164 }
5165 else if (!strcmp(args[0], "srvexp") || !strcmp(args[0], "rsprep")) { /* replace response header from a regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005166 if (*(args[2]) == 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005167 Alert("parsing [%s:%d] : '%s' expects <search> and <replace> as arguments.\n",
5168 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005169 err_code |= ERR_ALERT | ERR_FATAL;
5170 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005171 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01005172
Willy Tarreauade5ec42010-01-28 19:33:49 +01005173 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005174 SMP_OPT_DIR_RES, ACT_REPLACE, 0,
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005175 args[0], args[1], args[2], (const char **)args+3);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005176 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005177 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005178 }
5179 else if (!strcmp(args[0], "rspdel")) { /* delete response header from a regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005180 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005181 SMP_OPT_DIR_RES, ACT_REMOVE, 0,
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005182 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005183 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005184 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005185 }
5186 else if (!strcmp(args[0], "rspdeny")) { /* block response header from a regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005187 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005188 SMP_OPT_DIR_RES, ACT_DENY, 0,
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005189 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005190 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005191 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005192 }
5193 else if (!strcmp(args[0], "rspirep")) { /* replace response header from a regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005194 if (*(args[2]) == 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005195 Alert("parsing [%s:%d] : '%s' expects <search> and <replace> as arguments.\n",
5196 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005197 err_code |= ERR_ALERT | ERR_FATAL;
5198 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005199 }
5200
Willy Tarreauade5ec42010-01-28 19:33:49 +01005201 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005202 SMP_OPT_DIR_RES, ACT_REPLACE, REG_ICASE,
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005203 args[0], args[1], args[2], (const char **)args+3);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005204 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005205 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005206 }
5207 else if (!strcmp(args[0], "rspidel")) { /* delete response header from a regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005208 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005209 SMP_OPT_DIR_RES, ACT_REMOVE, REG_ICASE,
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005210 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005211 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005212 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005213 }
5214 else if (!strcmp(args[0], "rspideny")) { /* block response header from a regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005215 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005216 SMP_OPT_DIR_RES, ACT_DENY, REG_ICASE,
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005217 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005218 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005219 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005220 }
5221 else if (!strcmp(args[0], "rspadd")) { /* add response header */
Willy Tarreauf4f04122010-01-28 18:10:50 +01005222 struct cond_wordlist *wl;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005223
Willy Tarreaubaaee002006-06-26 02:48:02 +02005224 if (curproxy == &defproxy) {
5225 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005226 err_code |= ERR_ALERT | ERR_FATAL;
5227 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005228 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01005229 else if (warnifnotcap(curproxy, PR_CAP_RS, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02005230 err_code |= ERR_WARN;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005231
Willy Tarreaubaaee002006-06-26 02:48:02 +02005232 if (*(args[1]) == 0) {
5233 Alert("parsing [%s:%d] : '%s' expects <header> as an argument.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005234 err_code |= ERR_ALERT | ERR_FATAL;
5235 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005236 }
5237
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005238 if ((strcmp(args[2], "if") == 0 || strcmp(args[2], "unless") == 0)) {
Willy Tarreaub7451bb2012-04-27 12:38:15 +02005239 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args+2, &errmsg)) == NULL) {
5240 Alert("parsing [%s:%d] : error detected while parsing a '%s' condition : %s.\n",
5241 file, linenum, args[0], errmsg);
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005242 err_code |= ERR_ALERT | ERR_FATAL;
5243 goto out;
5244 }
5245 err_code |= warnif_cond_requires_req(cond, file, linenum);
5246 }
5247 else if (*args[2]) {
5248 Alert("parsing [%s:%d] : '%s' : Expecting nothing, 'if', or 'unless', got '%s'.\n",
5249 file, linenum, args[0], args[2]);
5250 err_code |= ERR_ALERT | ERR_FATAL;
5251 goto out;
5252 }
5253
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005254 wl = calloc(1, sizeof(*wl));
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005255 wl->cond = cond;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005256 wl->s = strdup(args[1]);
5257 LIST_ADDQ(&curproxy->rsp_add, &wl->list);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005258 }
5259 else if (!strcmp(args[0], "errorloc") ||
5260 !strcmp(args[0], "errorloc302") ||
5261 !strcmp(args[0], "errorloc303")) { /* error location */
5262 int errnum, errlen;
5263 char *err;
5264
Willy Tarreau977b8e42006-12-29 14:19:17 +01005265 if (warnifnotcap(curproxy, PR_CAP_FE | PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02005266 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01005267
Willy Tarreaubaaee002006-06-26 02:48:02 +02005268 if (*(args[2]) == 0) {
Willy Tarreau1772ece2009-04-03 14:49:12 +02005269 Alert("parsing [%s:%d] : <%s> expects <status_code> and <url> as arguments.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005270 err_code |= ERR_ALERT | ERR_FATAL;
5271 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005272 }
5273
5274 errnum = atol(args[1]);
5275 if (!strcmp(args[0], "errorloc303")) {
5276 err = malloc(strlen(HTTP_303) + strlen(args[2]) + 5);
5277 errlen = sprintf(err, "%s%s\r\n\r\n", HTTP_303, args[2]);
5278 } else {
5279 err = malloc(strlen(HTTP_302) + strlen(args[2]) + 5);
5280 errlen = sprintf(err, "%s%s\r\n\r\n", HTTP_302, args[2]);
5281 }
5282
Willy Tarreau0f772532006-12-23 20:51:41 +01005283 for (rc = 0; rc < HTTP_ERR_SIZE; rc++) {
5284 if (http_err_codes[rc] == errnum) {
Krzysztof Piotr Oledzki78abe612009-09-27 13:23:20 +02005285 chunk_destroy(&curproxy->errmsg[rc]);
5286 chunk_initlen(&curproxy->errmsg[rc], err, errlen, errlen);
Willy Tarreau0f772532006-12-23 20:51:41 +01005287 break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005288 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005289 }
Willy Tarreau0f772532006-12-23 20:51:41 +01005290
5291 if (rc >= HTTP_ERR_SIZE) {
5292 Warning("parsing [%s:%d] : status code %d not handled, error relocation will be ignored.\n",
5293 file, linenum, errnum);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005294 free(err);
5295 }
5296 }
Willy Tarreau3f49b302007-06-11 00:29:26 +02005297 else if (!strcmp(args[0], "errorfile")) { /* error message from a file */
5298 int errnum, errlen, fd;
5299 char *err;
5300 struct stat stat;
5301
5302 if (warnifnotcap(curproxy, PR_CAP_FE | PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02005303 err_code |= ERR_WARN;
Willy Tarreau3f49b302007-06-11 00:29:26 +02005304
5305 if (*(args[2]) == 0) {
Willy Tarreau1772ece2009-04-03 14:49:12 +02005306 Alert("parsing [%s:%d] : <%s> expects <status_code> and <file> as arguments.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005307 err_code |= ERR_ALERT | ERR_FATAL;
5308 goto out;
Willy Tarreau3f49b302007-06-11 00:29:26 +02005309 }
5310
5311 fd = open(args[2], O_RDONLY);
5312 if ((fd < 0) || (fstat(fd, &stat) < 0)) {
5313 Alert("parsing [%s:%d] : error opening file <%s> for custom error message <%s>.\n",
5314 file, linenum, args[2], args[1]);
5315 if (fd >= 0)
5316 close(fd);
Willy Tarreau93893792009-07-23 13:19:11 +02005317 err_code |= ERR_ALERT | ERR_FATAL;
5318 goto out;
Willy Tarreau3f49b302007-06-11 00:29:26 +02005319 }
5320
Willy Tarreau27a674e2009-08-17 07:23:33 +02005321 if (stat.st_size <= global.tune.bufsize) {
Willy Tarreau3f49b302007-06-11 00:29:26 +02005322 errlen = stat.st_size;
5323 } else {
5324 Warning("parsing [%s:%d] : custom error message file <%s> larger than %d bytes. Truncating.\n",
Willy Tarreau27a674e2009-08-17 07:23:33 +02005325 file, linenum, args[2], global.tune.bufsize);
Willy Tarreau93893792009-07-23 13:19:11 +02005326 err_code |= ERR_WARN;
Willy Tarreau27a674e2009-08-17 07:23:33 +02005327 errlen = global.tune.bufsize;
Willy Tarreau3f49b302007-06-11 00:29:26 +02005328 }
5329
5330 err = malloc(errlen); /* malloc() must succeed during parsing */
5331 errnum = read(fd, err, errlen);
5332 if (errnum != errlen) {
5333 Alert("parsing [%s:%d] : error reading file <%s> for custom error message <%s>.\n",
5334 file, linenum, args[2], args[1]);
5335 close(fd);
5336 free(err);
Willy Tarreau93893792009-07-23 13:19:11 +02005337 err_code |= ERR_ALERT | ERR_FATAL;
5338 goto out;
Willy Tarreau3f49b302007-06-11 00:29:26 +02005339 }
5340 close(fd);
5341
5342 errnum = atol(args[1]);
5343 for (rc = 0; rc < HTTP_ERR_SIZE; rc++) {
5344 if (http_err_codes[rc] == errnum) {
Krzysztof Piotr Oledzki78abe612009-09-27 13:23:20 +02005345 chunk_destroy(&curproxy->errmsg[rc]);
5346 chunk_initlen(&curproxy->errmsg[rc], err, errlen, errlen);
Willy Tarreau3f49b302007-06-11 00:29:26 +02005347 break;
5348 }
5349 }
5350
5351 if (rc >= HTTP_ERR_SIZE) {
5352 Warning("parsing [%s:%d] : status code %d not handled, error customization will be ignored.\n",
5353 file, linenum, errnum);
Willy Tarreau93893792009-07-23 13:19:11 +02005354 err_code |= ERR_WARN;
Willy Tarreau3f49b302007-06-11 00:29:26 +02005355 free(err);
5356 }
5357 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005358 else {
Willy Tarreau5b2c3362008-07-09 19:39:06 +02005359 struct cfg_kw_list *kwl;
5360 int index;
5361
5362 list_for_each_entry(kwl, &cfg_keywords.list, list) {
5363 for (index = 0; kwl->kw[index].kw != NULL; index++) {
5364 if (kwl->kw[index].section != CFG_LISTEN)
5365 continue;
5366 if (strcmp(kwl->kw[index].kw, args[0]) == 0) {
5367 /* prepare error message just in case */
David du Colombier7af46052012-05-16 14:16:48 +02005368 snprintf(trash, trashlen,
Willy Tarreau5b2c3362008-07-09 19:39:06 +02005369 "error near '%s' in %s section", args[0], cursection);
Willy Tarreau28a47d62012-09-18 20:02:48 +02005370 rc = kwl->kw[index].parse(args, CFG_LISTEN, curproxy, &defproxy, file, linenum, &errmsg);
Willy Tarreau39f23b62008-07-09 20:22:56 +02005371 if (rc < 0) {
Willy Tarreau0a3dd742012-05-08 19:47:01 +02005372 Alert("parsing [%s:%d] : %s\n", file, linenum, errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02005373 err_code |= ERR_ALERT | ERR_FATAL;
5374 goto out;
Willy Tarreau5b2c3362008-07-09 19:39:06 +02005375 }
Willy Tarreau39f23b62008-07-09 20:22:56 +02005376 else if (rc > 0) {
Willy Tarreau0a3dd742012-05-08 19:47:01 +02005377 Warning("parsing [%s:%d] : %s\n", file, linenum, errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02005378 err_code |= ERR_WARN;
5379 goto out;
Willy Tarreau39f23b62008-07-09 20:22:56 +02005380 }
Willy Tarreau93893792009-07-23 13:19:11 +02005381 goto out;
Willy Tarreau5b2c3362008-07-09 19:39:06 +02005382 }
5383 }
5384 }
5385
Willy Tarreau6daf3432008-01-22 16:44:08 +01005386 Alert("parsing [%s:%d] : unknown keyword '%s' in '%s' section\n", file, linenum, args[0], cursection);
Willy Tarreau93893792009-07-23 13:19:11 +02005387 err_code |= ERR_ALERT | ERR_FATAL;
5388 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005389 }
Willy Tarreau93893792009-07-23 13:19:11 +02005390 out:
Willy Tarreauf4068b62012-05-08 17:37:49 +02005391 free(errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02005392 return err_code;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005393}
5394
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01005395int
5396cfg_parse_users(const char *file, int linenum, char **args, int kwm)
5397{
5398
5399 int err_code = 0;
5400 const char *err;
5401
5402 if (!strcmp(args[0], "userlist")) { /* new userlist */
5403 struct userlist *newul;
5404
5405 if (!*args[1]) {
5406 Alert("parsing [%s:%d]: '%s' expects <name> as arguments.\n",
5407 file, linenum, args[0]);
5408 err_code |= ERR_ALERT | ERR_FATAL;
5409 goto out;
5410 }
5411
5412 err = invalid_char(args[1]);
5413 if (err) {
5414 Alert("parsing [%s:%d]: character '%c' is not permitted in '%s' name '%s'.\n",
5415 file, linenum, *err, args[0], args[1]);
5416 err_code |= ERR_ALERT | ERR_FATAL;
5417 goto out;
5418 }
5419
5420 for (newul = userlist; newul; newul = newul->next)
5421 if (!strcmp(newul->name, args[1])) {
5422 Warning("parsing [%s:%d]: ignoring duplicated userlist '%s'.\n",
5423 file, linenum, args[1]);
5424 err_code |= ERR_WARN;
5425 goto out;
5426 }
5427
5428 newul = (struct userlist *)calloc(1, sizeof(struct userlist));
5429 if (!newul) {
5430 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
5431 err_code |= ERR_ALERT | ERR_ABORT;
5432 goto out;
5433 }
5434
5435 newul->groupusers = calloc(MAX_AUTH_GROUPS, sizeof(char *));
5436 newul->name = strdup(args[1]);
5437
5438 if (!newul->groupusers | !newul->name) {
5439 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
5440 err_code |= ERR_ALERT | ERR_ABORT;
5441 goto out;
5442 }
5443
5444 newul->next = userlist;
5445 userlist = newul;
5446
5447 } else if (!strcmp(args[0], "group")) { /* new group */
5448 int cur_arg, i;
5449 const char *err;
5450
5451 if (!*args[1]) {
5452 Alert("parsing [%s:%d]: '%s' expects <name> as arguments.\n",
5453 file, linenum, args[0]);
5454 err_code |= ERR_ALERT | ERR_FATAL;
5455 goto out;
5456 }
5457
5458 err = invalid_char(args[1]);
5459 if (err) {
5460 Alert("parsing [%s:%d]: character '%c' is not permitted in '%s' name '%s'.\n",
5461 file, linenum, *err, args[0], args[1]);
5462 err_code |= ERR_ALERT | ERR_FATAL;
5463 goto out;
5464 }
5465
5466 for(i = 0; i < userlist->grpcnt; i++)
5467 if (!strcmp(userlist->groups[i], args[1])) {
5468 Warning("parsing [%s:%d]: ignoring duplicated group '%s' in userlist '%s'.\n",
5469 file, linenum, args[1], userlist->name);
5470 err_code |= ERR_ALERT;
5471 goto out;
5472 }
5473
5474 if (userlist->grpcnt >= MAX_AUTH_GROUPS) {
5475 Alert("parsing [%s:%d]: too many groups (%u) in in userlist '%s' while adding group '%s'.\n",
5476 file, linenum, MAX_AUTH_GROUPS, userlist->name, args[1]);
5477 err_code |= ERR_ALERT | ERR_FATAL;
5478 goto out;
5479 }
5480
5481 cur_arg = 2;
5482
5483 while (*args[cur_arg]) {
5484 if (!strcmp(args[cur_arg], "users")) {
5485 userlist->groupusers[userlist->grpcnt] = strdup(args[cur_arg + 1]);
5486 cur_arg += 2;
5487 continue;
5488 } else {
5489 Alert("parsing [%s:%d]: '%s' only supports 'users' option.\n",
5490 file, linenum, args[0]);
5491 err_code |= ERR_ALERT | ERR_FATAL;
5492 goto out;
5493 }
5494 }
5495
5496 userlist->groups[userlist->grpcnt++] = strdup(args[1]);
5497 } else if (!strcmp(args[0], "user")) { /* new user */
5498 struct auth_users *newuser;
5499 int cur_arg;
5500
5501 if (!*args[1]) {
5502 Alert("parsing [%s:%d]: '%s' expects <name> as arguments.\n",
5503 file, linenum, args[0]);
5504 err_code |= ERR_ALERT | ERR_FATAL;
5505 goto out;
5506 }
5507
5508 for (newuser = userlist->users; newuser; newuser = newuser->next)
5509 if (!strcmp(newuser->user, args[1])) {
5510 Warning("parsing [%s:%d]: ignoring duplicated user '%s' in userlist '%s'.\n",
5511 file, linenum, args[1], userlist->name);
5512 err_code |= ERR_ALERT;
5513 goto out;
5514 }
5515
5516 newuser = (struct auth_users *)calloc(1, sizeof(struct auth_users));
5517 if (!newuser) {
5518 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
5519 err_code |= ERR_ALERT | ERR_ABORT;
5520 goto out;
5521 }
5522
5523 newuser->user = strdup(args[1]);
5524
5525 newuser->next = userlist->users;
5526 userlist->users = newuser;
5527
5528 cur_arg = 2;
5529
5530 while (*args[cur_arg]) {
5531 if (!strcmp(args[cur_arg], "password")) {
5532#ifndef CONFIG_HAP_CRYPT
5533 Warning("parsing [%s:%d]: no crypt(3) support compiled, encrypted passwords will not work.\n",
5534 file, linenum);
5535 err_code |= ERR_ALERT;
5536#endif
5537 newuser->pass = strdup(args[cur_arg + 1]);
5538 cur_arg += 2;
5539 continue;
5540 } else if (!strcmp(args[cur_arg], "insecure-password")) {
5541 newuser->pass = strdup(args[cur_arg + 1]);
5542 newuser->flags |= AU_O_INSECURE;
5543 cur_arg += 2;
5544 continue;
5545 } else if (!strcmp(args[cur_arg], "groups")) {
Willy Tarreaub4c06b72010-02-02 11:28:20 +01005546 newuser->u.groups = strdup(args[cur_arg + 1]);
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01005547 cur_arg += 2;
5548 continue;
5549 } else {
5550 Alert("parsing [%s:%d]: '%s' only supports 'password', 'insecure-password' and 'groups' options.\n",
5551 file, linenum, args[0]);
5552 err_code |= ERR_ALERT | ERR_FATAL;
5553 goto out;
5554 }
5555 }
5556 } else {
5557 Alert("parsing [%s:%d]: unknown keyword '%s' in '%s' section\n", file, linenum, args[0], "users");
5558 err_code |= ERR_ALERT | ERR_FATAL;
5559 }
5560
5561out:
5562 return err_code;
5563}
Willy Tarreaubaaee002006-06-26 02:48:02 +02005564
5565/*
5566 * This function reads and parses the configuration file given in the argument.
Willy Tarreau058e9072009-07-20 09:30:05 +02005567 * Returns the error code, 0 if OK, or any combination of :
5568 * - ERR_ABORT: must abort ASAP
5569 * - ERR_FATAL: we can continue parsing but not start the service
5570 * - ERR_WARN: a warning has been emitted
5571 * - ERR_ALERT: an alert has been emitted
5572 * Only the two first ones can stop processing, the two others are just
5573 * indicators.
Willy Tarreaubaaee002006-06-26 02:48:02 +02005574 */
Willy Tarreaub17916e2006-10-15 15:17:57 +02005575int readcfgfile(const char *file)
Willy Tarreaubaaee002006-06-26 02:48:02 +02005576{
Krzysztof Piotr Oledzkie6bbd742007-11-01 00:33:12 +01005577 char thisline[LINESIZE];
Willy Tarreaubaaee002006-06-26 02:48:02 +02005578 FILE *f;
5579 int linenum = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005580 int confsect = CFG_NONE;
Willy Tarreau058e9072009-07-20 09:30:05 +02005581 int err_code = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005582
Willy Tarreaubaaee002006-06-26 02:48:02 +02005583 if ((f=fopen(file,"r")) == NULL)
5584 return -1;
5585
Krzysztof Piotr Oledzkie6bbd742007-11-01 00:33:12 +01005586 while (fgets(thisline, sizeof(thisline), f) != NULL) {
Willy Tarreau3842f002009-06-14 11:39:52 +02005587 int arg, kwm = KWM_STD;
Krzysztof Piotr Oledzkie6bbd742007-11-01 00:33:12 +01005588 char *end;
5589 char *args[MAX_LINE_ARGS + 1];
5590 char *line = thisline;
5591
Willy Tarreaubaaee002006-06-26 02:48:02 +02005592 linenum++;
5593
5594 end = line + strlen(line);
5595
Krzysztof Piotr Oledzkie6bbd742007-11-01 00:33:12 +01005596 if (end-line == sizeof(thisline)-1 && *(end-1) != '\n') {
5597 /* Check if we reached the limit and the last char is not \n.
5598 * Watch out for the last line without the terminating '\n'!
5599 */
5600 Alert("parsing [%s:%d]: line too long, limit: %d.\n",
Willy Tarreau5e4a6f12009-04-11 19:42:49 +02005601 file, linenum, (int)sizeof(thisline)-1);
Willy Tarreau058e9072009-07-20 09:30:05 +02005602 err_code |= ERR_ALERT | ERR_FATAL;
Krzysztof Piotr Oledzkie6bbd742007-11-01 00:33:12 +01005603 }
5604
Willy Tarreaubaaee002006-06-26 02:48:02 +02005605 /* skip leading spaces */
Willy Tarreau8f8e6452007-06-17 21:51:38 +02005606 while (isspace((unsigned char)*line))
Willy Tarreaubaaee002006-06-26 02:48:02 +02005607 line++;
5608
5609 arg = 0;
5610 args[arg] = line;
5611
5612 while (*line && arg < MAX_LINE_ARGS) {
5613 /* first, we'll replace \\, \<space>, \#, \r, \n, \t, \xXX with their
5614 * C equivalent value. Other combinations left unchanged (eg: \1).
5615 */
5616 if (*line == '\\') {
5617 int skip = 0;
5618 if (line[1] == ' ' || line[1] == '\\' || line[1] == '#') {
5619 *line = line[1];
5620 skip = 1;
5621 }
5622 else if (line[1] == 'r') {
5623 *line = '\r';
5624 skip = 1;
5625 }
5626 else if (line[1] == 'n') {
5627 *line = '\n';
5628 skip = 1;
5629 }
5630 else if (line[1] == 't') {
5631 *line = '\t';
5632 skip = 1;
5633 }
5634 else if (line[1] == 'x') {
Emeric Brunb982a3d2010-01-04 15:45:53 +01005635 if ((line + 3 < end) && ishex(line[2]) && ishex(line[3])) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005636 unsigned char hex1, hex2;
5637 hex1 = toupper(line[2]) - '0';
5638 hex2 = toupper(line[3]) - '0';
5639 if (hex1 > 9) hex1 -= 'A' - '9' - 1;
5640 if (hex2 > 9) hex2 -= 'A' - '9' - 1;
5641 *line = (hex1<<4) + hex2;
5642 skip = 3;
5643 }
5644 else {
5645 Alert("parsing [%s:%d] : invalid or incomplete '\\x' sequence in '%s'.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +02005646 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005647 }
5648 }
5649 if (skip) {
Cyril Bontédd1b01d2009-12-06 13:43:42 +01005650 memmove(line + 1, line + 1 + skip, end - (line + skip));
Willy Tarreaubaaee002006-06-26 02:48:02 +02005651 end -= skip;
5652 }
5653 line++;
5654 }
5655 else if (*line == '#' || *line == '\n' || *line == '\r') {
5656 /* end of string, end of loop */
5657 *line = 0;
5658 break;
5659 }
Willy Tarreau8f8e6452007-06-17 21:51:38 +02005660 else if (isspace((unsigned char)*line)) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005661 /* a non-escaped space is an argument separator */
Krzysztof Piotr Oledzkie6bbd742007-11-01 00:33:12 +01005662 *line++ = '\0';
Willy Tarreau8f8e6452007-06-17 21:51:38 +02005663 while (isspace((unsigned char)*line))
Willy Tarreaubaaee002006-06-26 02:48:02 +02005664 line++;
5665 args[++arg] = line;
5666 }
5667 else {
5668 line++;
5669 }
5670 }
5671
5672 /* empty line */
5673 if (!**args)
5674 continue;
5675
Willy Tarreau7bb651e2009-11-09 21:16:53 +01005676 if (*line) {
5677 /* we had to stop due to too many args.
5678 * Let's terminate the string, print the offending part then cut the
5679 * last arg.
5680 */
5681 while (*line && *line != '#' && *line != '\n' && *line != '\r')
5682 line++;
5683 *line = '\0';
5684
Krzysztof Piotr Oledzki500b8f02009-12-15 22:34:51 +01005685 Alert("parsing [%s:%d]: line too long, truncating at word %d, position %ld: <%s>.\n",
Willy Tarreau3ccf94e2009-12-17 21:12:16 +01005686 file, linenum, arg + 1, (long)(args[arg] - thisline + 1), args[arg]);
Willy Tarreau7bb651e2009-11-09 21:16:53 +01005687 err_code |= ERR_ALERT | ERR_FATAL;
5688 args[arg] = line;
5689 }
5690
Willy Tarreau540abe42007-05-02 20:50:16 +02005691 /* zero out remaining args and ensure that at least one entry
5692 * is zeroed out.
5693 */
5694 while (++arg <= MAX_LINE_ARGS) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005695 args[arg] = line;
5696 }
5697
Willy Tarreau3842f002009-06-14 11:39:52 +02005698 /* check for keyword modifiers "no" and "default" */
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01005699 if (!strcmp(args[0], "no")) {
William Lallemand0f99e342011-10-12 17:50:54 +02005700 char *tmp;
5701
Willy Tarreau3842f002009-06-14 11:39:52 +02005702 kwm = KWM_NO;
William Lallemand0f99e342011-10-12 17:50:54 +02005703 tmp = args[0];
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01005704 for (arg=0; *args[arg+1]; arg++)
5705 args[arg] = args[arg+1]; // shift args after inversion
William Lallemand0f99e342011-10-12 17:50:54 +02005706 *tmp = '\0'; // fix the next arg to \0
5707 args[arg] = tmp;
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01005708 }
Willy Tarreau3842f002009-06-14 11:39:52 +02005709 else if (!strcmp(args[0], "default")) {
5710 kwm = KWM_DEF;
5711 for (arg=0; *args[arg+1]; arg++)
5712 args[arg] = args[arg+1]; // shift args after inversion
5713 }
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01005714
William Lallemand0f99e342011-10-12 17:50:54 +02005715 if (kwm != KWM_STD && strcmp(args[0], "option") != 0 && \
5716 strcmp(args[0], "log") != 0) {
5717 Alert("parsing [%s:%d]: negation/default currently supported only for options and log.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +02005718 err_code |= ERR_ALERT | ERR_FATAL;
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01005719 }
5720
Willy Tarreau977b8e42006-12-29 14:19:17 +01005721 if (!strcmp(args[0], "listen") ||
5722 !strcmp(args[0], "frontend") ||
5723 !strcmp(args[0], "backend") ||
5724 !strcmp(args[0], "ruleset") ||
Willy Tarreau6daf3432008-01-22 16:44:08 +01005725 !strcmp(args[0], "defaults")) { /* new proxy */
Willy Tarreaubaaee002006-06-26 02:48:02 +02005726 confsect = CFG_LISTEN;
Willy Tarreaua534fea2008-08-03 12:19:50 +02005727 free(cursection);
Willy Tarreau6daf3432008-01-22 16:44:08 +01005728 cursection = strdup(args[0]);
5729 }
5730 else if (!strcmp(args[0], "global")) { /* global config */
Willy Tarreaubaaee002006-06-26 02:48:02 +02005731 confsect = CFG_GLOBAL;
Willy Tarreaua534fea2008-08-03 12:19:50 +02005732 free(cursection);
Willy Tarreau6daf3432008-01-22 16:44:08 +01005733 cursection = strdup(args[0]);
Emeric Brun32da3c42010-09-23 18:39:19 +02005734 }
5735 else if (!strcmp(args[0], "userlist")) {
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01005736 confsect = CFG_USERLIST;
5737 free(cursection);
5738 cursection = strdup(args[0]);
Willy Tarreau6daf3432008-01-22 16:44:08 +01005739 }
Emeric Brun32da3c42010-09-23 18:39:19 +02005740 else if (!strcmp(args[0], "peers")) {
5741 confsect = CFG_PEERS;
5742 free(cursection);
5743 cursection = strdup(args[0]);
5744 }
5745
Willy Tarreaubaaee002006-06-26 02:48:02 +02005746 /* else it's a section keyword */
5747
5748 switch (confsect) {
5749 case CFG_LISTEN:
Willy Tarreau93893792009-07-23 13:19:11 +02005750 err_code |= cfg_parse_listen(file, linenum, args, kwm);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005751 break;
5752 case CFG_GLOBAL:
Willy Tarreau058e9072009-07-20 09:30:05 +02005753 err_code |= cfg_parse_global(file, linenum, args, kwm);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005754 break;
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01005755 case CFG_USERLIST:
5756 err_code |= cfg_parse_users(file, linenum, args, kwm);
5757 break;
Emeric Brun32da3c42010-09-23 18:39:19 +02005758 case CFG_PEERS:
5759 err_code |= cfg_parse_peers(file, linenum, args, kwm);
5760 break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005761 default:
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01005762 Alert("parsing [%s:%d]: unknown keyword '%s' out of section.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +02005763 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005764 }
Willy Tarreau058e9072009-07-20 09:30:05 +02005765
5766 if (err_code & ERR_ABORT)
5767 break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005768 }
Willy Tarreaua534fea2008-08-03 12:19:50 +02005769 free(cursection);
Willy Tarreau6daf3432008-01-22 16:44:08 +01005770 cursection = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005771 fclose(f);
Willy Tarreau058e9072009-07-20 09:30:05 +02005772 return err_code;
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005773}
5774
Willy Tarreaubb925012009-07-23 13:36:36 +02005775/*
5776 * Returns the error code, 0 if OK, or any combination of :
5777 * - ERR_ABORT: must abort ASAP
5778 * - ERR_FATAL: we can continue parsing but not start the service
5779 * - ERR_WARN: a warning has been emitted
5780 * - ERR_ALERT: an alert has been emitted
5781 * Only the two first ones can stop processing, the two others are just
5782 * indicators.
5783 */
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005784int check_config_validity()
5785{
5786 int cfgerr = 0;
5787 struct proxy *curproxy = NULL;
5788 struct server *newsrv = NULL;
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01005789 struct userlist *curuserlist = NULL;
Willy Tarreaubb925012009-07-23 13:36:36 +02005790 int err_code = 0;
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02005791 unsigned int next_pxid = 1;
Willy Tarreau2a65ff02012-09-13 17:54:29 +02005792 struct bind_conf *bind_conf;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005793
Willy Tarreau2a65ff02012-09-13 17:54:29 +02005794 bind_conf = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005795 /*
5796 * Now, check for the integrity of all that we have collected.
5797 */
5798
5799 /* will be needed further to delay some tasks */
Willy Tarreaub0b37bc2008-06-23 14:00:57 +02005800 tv_update_date(0,1);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005801
Willy Tarreau55bc0f82009-03-15 14:51:53 +01005802 /* first, we will invert the proxy list order */
5803 curproxy = NULL;
5804 while (proxy) {
5805 struct proxy *next;
5806
5807 next = proxy->next;
5808 proxy->next = curproxy;
5809 curproxy = proxy;
5810 if (!next)
5811 break;
5812 proxy = next;
5813 }
5814
Willy Tarreaubaaee002006-06-26 02:48:02 +02005815 while (curproxy != NULL) {
Willy Tarreau55ea7572007-06-17 19:56:27 +02005816 struct switching_rule *rule;
Willy Tarreau4a5cade2012-04-05 21:09:48 +02005817 struct server_rule *srule;
Emeric Brunb982a3d2010-01-04 15:45:53 +01005818 struct sticking_rule *mrule;
Willy Tarreau9ba2dcc2010-06-14 21:04:55 +02005819 struct tcp_rule *trule;
Willy Tarreaue6b98942007-10-29 01:09:36 +01005820 struct listener *listener;
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02005821 unsigned int next_id;
5822
Willy Tarreau050536d2012-10-04 08:47:34 +02005823 if (curproxy->uuid < 0) {
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02005824 /* proxy ID not set, use automatic numbering with first
5825 * spare entry starting with next_pxid.
5826 */
5827 next_pxid = get_next_id(&used_proxy_id, next_pxid);
5828 curproxy->conf.id.key = curproxy->uuid = next_pxid;
5829 eb32_insert(&used_proxy_id, &curproxy->conf.id);
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02005830 }
Krzysztof Piotr Oledzkidf5cb9f2010-02-05 20:58:27 +01005831 next_pxid++;
5832
Willy Tarreau55ea7572007-06-17 19:56:27 +02005833
Willy Tarreaubaaee002006-06-26 02:48:02 +02005834 if (curproxy->state == PR_STSTOPPED) {
Willy Tarreauda250db2008-10-12 12:07:48 +02005835 /* ensure we don't keep listeners uselessly bound */
5836 stop_proxy(curproxy);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005837 curproxy = curproxy->next;
5838 continue;
5839 }
5840
Willy Tarreauff01a212009-03-15 13:46:16 +01005841 switch (curproxy->mode) {
5842 case PR_MODE_HEALTH:
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005843 cfgerr += proxy_cfg_ensure_no_http(curproxy);
Willy Tarreauff01a212009-03-15 13:46:16 +01005844 if (!(curproxy->cap & PR_CAP_FE)) {
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005845 Alert("config : %s '%s' cannot be in health mode as it has no frontend capability.\n",
5846 proxy_type_str(curproxy), curproxy->id);
Willy Tarreauff01a212009-03-15 13:46:16 +01005847 cfgerr++;
5848 }
5849
5850 if (curproxy->srv != NULL)
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005851 Warning("config : servers will be ignored for %s '%s'.\n",
5852 proxy_type_str(curproxy), curproxy->id);
Willy Tarreauff01a212009-03-15 13:46:16 +01005853 break;
5854
5855 case PR_MODE_TCP:
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005856 cfgerr += proxy_cfg_ensure_no_http(curproxy);
Willy Tarreauff01a212009-03-15 13:46:16 +01005857 break;
5858
5859 case PR_MODE_HTTP:
Willy Tarreaua9fb0832009-07-10 20:53:53 +02005860 curproxy->acl_requires |= ACL_USE_L7_ANY;
Willy Tarreauff01a212009-03-15 13:46:16 +01005861 break;
5862 }
5863
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005864 if ((curproxy->cap & PR_CAP_BE) && (curproxy->mode != PR_MODE_HEALTH)) {
Willy Tarreauf3e49f92009-10-03 12:21:20 +02005865 if (curproxy->lbprm.algo & BE_LB_KIND) {
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005866 if (curproxy->options & PR_O_TRANSP) {
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005867 Alert("config : %s '%s' cannot use both transparent and balance mode.\n",
5868 proxy_type_str(curproxy), curproxy->id);
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005869 cfgerr++;
5870 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005871#ifdef WE_DONT_SUPPORT_SERVERLESS_LISTENERS
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005872 else if (curproxy->srv == NULL) {
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005873 Alert("config : %s '%s' needs at least 1 server in balance mode.\n",
5874 proxy_type_str(curproxy), curproxy->id);
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005875 cfgerr++;
5876 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005877#endif
Willy Tarreau1620ec32011-08-06 17:05:02 +02005878 else if (curproxy->options & PR_O_DISPATCH) {
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005879 Warning("config : dispatch address of %s '%s' will be ignored in balance mode.\n",
5880 proxy_type_str(curproxy), curproxy->id);
Willy Tarreaubb925012009-07-23 13:36:36 +02005881 err_code |= ERR_WARN;
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005882 }
5883 }
Willy Tarreau1620ec32011-08-06 17:05:02 +02005884 else if (!(curproxy->options & (PR_O_TRANSP | PR_O_DISPATCH | PR_O_HTTP_PROXY))) {
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005885 /* If no LB algo is set in a backend, and we're not in
5886 * transparent mode, dispatch mode nor proxy mode, we
5887 * want to use balance roundrobin by default.
5888 */
5889 curproxy->lbprm.algo &= ~BE_LB_ALGO;
5890 curproxy->lbprm.algo |= BE_LB_ALGO_RR;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005891 }
5892 }
Willy Tarreau193cf932007-09-17 10:17:23 +02005893
Willy Tarreau1620ec32011-08-06 17:05:02 +02005894 if (curproxy->options & PR_O_DISPATCH)
5895 curproxy->options &= ~(PR_O_TRANSP | PR_O_HTTP_PROXY);
5896 else if (curproxy->options & PR_O_HTTP_PROXY)
5897 curproxy->options &= ~(PR_O_DISPATCH | PR_O_TRANSP);
5898 else if (curproxy->options & PR_O_TRANSP)
5899 curproxy->options &= ~(PR_O_DISPATCH | PR_O_HTTP_PROXY);
Willy Tarreau82936582007-11-30 15:20:09 +01005900
Willy Tarreau1620ec32011-08-06 17:05:02 +02005901 if ((curproxy->options2 & PR_O2_CHK_ANY) != PR_O2_HTTP_CHK) {
5902 if (curproxy->options & PR_O_DISABLE404) {
5903 Warning("config : '%s' will be ignored for %s '%s' (requires 'option httpchk').\n",
5904 "disable-on-404", proxy_type_str(curproxy), curproxy->id);
5905 err_code |= ERR_WARN;
5906 curproxy->options &= ~PR_O_DISABLE404;
5907 }
5908 if (curproxy->options2 & PR_O2_CHK_SNDST) {
5909 Warning("config : '%s' will be ignored for %s '%s' (requires 'option httpchk').\n",
5910 "send-state", proxy_type_str(curproxy), curproxy->id);
5911 err_code |= ERR_WARN;
5912 curproxy->options &= ~PR_O2_CHK_SNDST;
5913 }
Willy Tarreauef781042010-01-27 11:53:01 +01005914 }
5915
Willy Tarreau5fdfb912007-01-01 23:11:07 +01005916 /* if a default backend was specified, let's find it */
5917 if (curproxy->defbe.name) {
5918 struct proxy *target;
5919
Alex Williams96532db2009-11-01 21:27:13 -05005920 target = findproxy_mode(curproxy->defbe.name, curproxy->mode, PR_CAP_BE);
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005921 if (!target) {
5922 Alert("Proxy '%s': unable to find required default_backend: '%s'.\n",
5923 curproxy->id, curproxy->defbe.name);
Willy Tarreau5fdfb912007-01-01 23:11:07 +01005924 cfgerr++;
5925 } else if (target == curproxy) {
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005926 Alert("Proxy '%s': loop detected for default_backend: '%s'.\n",
5927 curproxy->id, curproxy->defbe.name);
Willy Tarreaubb925012009-07-23 13:36:36 +02005928 cfgerr++;
Willy Tarreau5fdfb912007-01-01 23:11:07 +01005929 } else {
5930 free(curproxy->defbe.name);
5931 curproxy->defbe.be = target;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01005932 /* we force the backend to be present on at least all of
5933 * the frontend's processes.
5934 */
5935 target->bind_proc = curproxy->bind_proc ?
5936 (target->bind_proc | curproxy->bind_proc) : 0;
Willy Tarreauff678132012-02-13 14:32:34 +01005937
5938 /* Emit a warning if this proxy also has some servers */
5939 if (curproxy->srv) {
5940 Warning("In proxy '%s', the 'default_backend' rule always has precedence over the servers, which will never be used.\n",
5941 curproxy->id);
5942 err_code |= ERR_WARN;
5943 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005944 }
5945 }
5946
Willy Tarreau5fdfb912007-01-01 23:11:07 +01005947 /* find the target proxy in setbe */
Willy Tarreaua496b602006-12-17 23:15:24 +01005948 if (curproxy->mode == PR_MODE_HTTP && curproxy->req_exp != NULL) {
5949 /* map jump target for ACT_SETBE in req_rep chain */
5950 struct hdr_exp *exp;
Willy Tarreaua496b602006-12-17 23:15:24 +01005951 for (exp = curproxy->req_exp; exp != NULL; exp = exp->next) {
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005952 struct proxy *target;
5953
Willy Tarreaua496b602006-12-17 23:15:24 +01005954 if (exp->action != ACT_SETBE)
5955 continue;
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005956
Alex Williams96532db2009-11-01 21:27:13 -05005957 target = findproxy_mode(exp->replace, PR_MODE_HTTP, PR_CAP_BE);
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005958 if (!target) {
5959 Alert("Proxy '%s': unable to find required setbe: '%s'.\n",
5960 curproxy->id, exp->replace);
Willy Tarreaua496b602006-12-17 23:15:24 +01005961 cfgerr++;
5962 } else if (target == curproxy) {
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005963 Alert("Proxy '%s': loop detected for setbe: '%s'.\n",
5964 curproxy->id, exp->replace);
Willy Tarreau977b8e42006-12-29 14:19:17 +01005965 cfgerr++;
Willy Tarreaua496b602006-12-17 23:15:24 +01005966 } else {
5967 free((void *)exp->replace);
5968 exp->replace = (const char *)target;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01005969 /* we force the backend to be present on at least all of
5970 * the frontend's processes.
5971 */
5972 target->bind_proc = curproxy->bind_proc ?
5973 (target->bind_proc | curproxy->bind_proc) : 0;
Willy Tarreaua496b602006-12-17 23:15:24 +01005974 }
5975 }
5976 }
Willy Tarreau55ea7572007-06-17 19:56:27 +02005977
5978 /* find the target proxy for 'use_backend' rules */
5979 list_for_each_entry(rule, &curproxy->switching_rules, list) {
Willy Tarreau55ea7572007-06-17 19:56:27 +02005980 struct proxy *target;
5981
Alex Williams96532db2009-11-01 21:27:13 -05005982 target = findproxy_mode(rule->be.name, curproxy->mode, PR_CAP_BE);
Willy Tarreau55ea7572007-06-17 19:56:27 +02005983
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005984 if (!target) {
5985 Alert("Proxy '%s': unable to find required use_backend: '%s'.\n",
5986 curproxy->id, rule->be.name);
Willy Tarreau55ea7572007-06-17 19:56:27 +02005987 cfgerr++;
5988 } else if (target == curproxy) {
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005989 Alert("Proxy '%s': loop detected for use_backend: '%s'.\n",
5990 curproxy->id, rule->be.name);
Willy Tarreau55ea7572007-06-17 19:56:27 +02005991 cfgerr++;
5992 } else {
5993 free((void *)rule->be.name);
5994 rule->be.backend = target;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01005995 /* we force the backend to be present on at least all of
5996 * the frontend's processes.
5997 */
5998 target->bind_proc = curproxy->bind_proc ?
5999 (target->bind_proc | curproxy->bind_proc) : 0;
Willy Tarreau55ea7572007-06-17 19:56:27 +02006000 }
Willy Tarreau4a5cade2012-04-05 21:09:48 +02006001 }
6002
6003 /* find the target proxy for 'use_backend' rules */
6004 list_for_each_entry(srule, &curproxy->server_rules, list) {
6005 struct server *target = findserver(curproxy, srule->srv.name);
6006
6007 if (!target) {
6008 Alert("config : %s '%s' : unable to find server '%s' referenced in a 'use-server' rule.\n",
6009 proxy_type_str(curproxy), curproxy->id, srule->srv.name);
6010 cfgerr++;
6011 continue;
6012 }
6013 free((void *)srule->srv.name);
6014 srule->srv.ptr = target;
Willy Tarreau55ea7572007-06-17 19:56:27 +02006015 }
6016
Emeric Brunb982a3d2010-01-04 15:45:53 +01006017 /* find the target table for 'stick' rules */
6018 list_for_each_entry(mrule, &curproxy->sticking_rules, list) {
6019 struct proxy *target;
6020
Emeric Brun1d33b292010-01-04 15:47:17 +01006021 curproxy->be_req_ana |= AN_REQ_STICKING_RULES;
6022 if (mrule->flags & STK_IS_STORE)
6023 curproxy->be_rsp_ana |= AN_RES_STORE_RULES;
6024
Emeric Brunb982a3d2010-01-04 15:45:53 +01006025 if (mrule->table.name)
Willy Tarreauc00cdc22010-06-06 16:48:26 +02006026 target = findproxy(mrule->table.name, 0);
Emeric Brunb982a3d2010-01-04 15:45:53 +01006027 else
6028 target = curproxy;
6029
6030 if (!target) {
6031 Alert("Proxy '%s': unable to find stick-table '%s'.\n",
6032 curproxy->id, mrule->table.name);
6033 cfgerr++;
6034 }
6035 else if (target->table.size == 0) {
6036 Alert("Proxy '%s': stick-table '%s' used but not configured.\n",
6037 curproxy->id, mrule->table.name ? mrule->table.name : curproxy->id);
6038 cfgerr++;
6039 }
Willy Tarreau12785782012-04-27 21:37:17 +02006040 else if (!stktable_compatible_sample(mrule->expr, target->table.type)) {
6041 Alert("Proxy '%s': type of fetch not usable with type of stick-table '%s'.\n",
Emeric Brunb982a3d2010-01-04 15:45:53 +01006042 curproxy->id, mrule->table.name ? mrule->table.name : curproxy->id);
6043 cfgerr++;
6044 }
6045 else {
6046 free((void *)mrule->table.name);
6047 mrule->table.t = &(target->table);
Willy Tarreau888617d2010-06-20 09:11:39 +02006048 stktable_alloc_data_type(&target->table, STKTABLE_DT_SERVER_ID, NULL);
Emeric Brunb982a3d2010-01-04 15:45:53 +01006049 }
6050 }
6051
6052 /* find the target table for 'store response' rules */
6053 list_for_each_entry(mrule, &curproxy->storersp_rules, list) {
6054 struct proxy *target;
6055
Emeric Brun1d33b292010-01-04 15:47:17 +01006056 curproxy->be_rsp_ana |= AN_RES_STORE_RULES;
6057
Emeric Brunb982a3d2010-01-04 15:45:53 +01006058 if (mrule->table.name)
Willy Tarreauc00cdc22010-06-06 16:48:26 +02006059 target = findproxy(mrule->table.name, 0);
Emeric Brunb982a3d2010-01-04 15:45:53 +01006060 else
6061 target = curproxy;
6062
6063 if (!target) {
6064 Alert("Proxy '%s': unable to find store table '%s'.\n",
6065 curproxy->id, mrule->table.name);
6066 cfgerr++;
6067 }
6068 else if (target->table.size == 0) {
6069 Alert("Proxy '%s': stick-table '%s' used but not configured.\n",
6070 curproxy->id, mrule->table.name ? mrule->table.name : curproxy->id);
6071 cfgerr++;
6072 }
Willy Tarreau12785782012-04-27 21:37:17 +02006073 else if (!stktable_compatible_sample(mrule->expr, target->table.type)) {
6074 Alert("Proxy '%s': type of fetch not usable with type of stick-table '%s'.\n",
Emeric Brunb982a3d2010-01-04 15:45:53 +01006075 curproxy->id, mrule->table.name ? mrule->table.name : curproxy->id);
6076 cfgerr++;
6077 }
6078 else {
6079 free((void *)mrule->table.name);
6080 mrule->table.t = &(target->table);
Willy Tarreau888617d2010-06-20 09:11:39 +02006081 stktable_alloc_data_type(&target->table, STKTABLE_DT_SERVER_ID, NULL);
Emeric Brunb982a3d2010-01-04 15:45:53 +01006082 }
6083 }
6084
Willy Tarreau9ba2dcc2010-06-14 21:04:55 +02006085 /* find the target table for 'tcp-request' layer 4 rules */
6086 list_for_each_entry(trule, &curproxy->tcp_req.l4_rules, list) {
6087 struct proxy *target;
6088
Willy Tarreau56123282010-08-06 19:06:56 +02006089 if (trule->action != TCP_ACT_TRK_SC1 && trule->action != TCP_ACT_TRK_SC2)
Willy Tarreau9ba2dcc2010-06-14 21:04:55 +02006090 continue;
6091
6092 if (trule->act_prm.trk_ctr.table.n)
6093 target = findproxy(trule->act_prm.trk_ctr.table.n, 0);
6094 else
6095 target = curproxy;
6096
6097 if (!target) {
Willy Tarreau56123282010-08-06 19:06:56 +02006098 Alert("Proxy '%s': unable to find table '%s' referenced by track-sc%d.\n",
6099 curproxy->id, trule->act_prm.trk_ctr.table.n,
6100 trule->action == TCP_ACT_TRK_SC1 ? 1 : 2);
Willy Tarreau9ba2dcc2010-06-14 21:04:55 +02006101 cfgerr++;
6102 }
6103 else if (target->table.size == 0) {
6104 Alert("Proxy '%s': table '%s' used but not configured.\n",
6105 curproxy->id, trule->act_prm.trk_ctr.table.n ? trule->act_prm.trk_ctr.table.n : curproxy->id);
6106 cfgerr++;
6107 }
6108 else if (trule->act_prm.trk_ctr.type != target->table.type) {
Willy Tarreau56123282010-08-06 19:06:56 +02006109 Alert("Proxy '%s': type of tracking key for sticky counter not usable with type of stick-table '%s'.\n",
Willy Tarreau9ba2dcc2010-06-14 21:04:55 +02006110 curproxy->id, trule->act_prm.trk_ctr.table.n ? trule->act_prm.trk_ctr.table.n : curproxy->id);
6111 cfgerr++;
6112 }
6113 else {
6114 free(trule->act_prm.trk_ctr.table.n);
6115 trule->act_prm.trk_ctr.table.t = &target->table;
Willy Tarreau56123282010-08-06 19:06:56 +02006116 /* Note: if we decide to enhance the track-sc syntax, we may be able
Willy Tarreau9ba2dcc2010-06-14 21:04:55 +02006117 * to pass a list of counters to track and allocate them right here using
6118 * stktable_alloc_data_type().
6119 */
6120 }
6121 }
6122
Willy Tarreaud1f96522010-08-03 19:34:32 +02006123 /* find the target table for 'tcp-request' layer 6 rules */
6124 list_for_each_entry(trule, &curproxy->tcp_req.inspect_rules, list) {
6125 struct proxy *target;
6126
Willy Tarreau56123282010-08-06 19:06:56 +02006127 if (trule->action != TCP_ACT_TRK_SC1 && trule->action != TCP_ACT_TRK_SC2)
Willy Tarreaud1f96522010-08-03 19:34:32 +02006128 continue;
6129
6130 if (trule->act_prm.trk_ctr.table.n)
6131 target = findproxy(trule->act_prm.trk_ctr.table.n, 0);
6132 else
6133 target = curproxy;
6134
6135 if (!target) {
Willy Tarreau56123282010-08-06 19:06:56 +02006136 Alert("Proxy '%s': unable to find table '%s' referenced by track-sc%d.\n",
6137 curproxy->id, trule->act_prm.trk_ctr.table.n,
6138 trule->action == TCP_ACT_TRK_SC1 ? 1 : 2);
Willy Tarreaud1f96522010-08-03 19:34:32 +02006139 cfgerr++;
6140 }
6141 else if (target->table.size == 0) {
6142 Alert("Proxy '%s': table '%s' used but not configured.\n",
6143 curproxy->id, trule->act_prm.trk_ctr.table.n ? trule->act_prm.trk_ctr.table.n : curproxy->id);
6144 cfgerr++;
6145 }
6146 else if (trule->act_prm.trk_ctr.type != target->table.type) {
Willy Tarreau56123282010-08-06 19:06:56 +02006147 Alert("Proxy '%s': type of tracking key for sticky counter not usable with type of stick-table '%s'.\n",
Willy Tarreaud1f96522010-08-03 19:34:32 +02006148 curproxy->id, trule->act_prm.trk_ctr.table.n ? trule->act_prm.trk_ctr.table.n : curproxy->id);
6149 cfgerr++;
6150 }
6151 else {
6152 free(trule->act_prm.trk_ctr.table.n);
6153 trule->act_prm.trk_ctr.table.t = &target->table;
Willy Tarreau56123282010-08-06 19:06:56 +02006154 /* Note: if we decide to enhance the track-sc syntax, we may be able
Willy Tarreaud1f96522010-08-03 19:34:32 +02006155 * to pass a list of counters to track and allocate them right here using
6156 * stktable_alloc_data_type().
6157 */
6158 }
6159 }
6160
Emeric Brun32da3c42010-09-23 18:39:19 +02006161 if (curproxy->table.peers.name) {
6162 struct peers *curpeers = peers;
6163
6164 for (curpeers = peers; curpeers; curpeers = curpeers->next) {
6165 if (strcmp(curpeers->id, curproxy->table.peers.name) == 0) {
6166 free((void *)curproxy->table.peers.name);
6167 curproxy->table.peers.p = peers;
6168 break;
6169 }
6170 }
6171
6172 if (!curpeers) {
6173 Alert("Proxy '%s': unable to find sync peers '%s'.\n",
6174 curproxy->id, curproxy->table.peers.name);
Willy Tarreaud66bf962011-10-28 14:16:49 +02006175 free((void *)curproxy->table.peers.name);
6176 curproxy->table.peers.p = NULL;
Emeric Brun32da3c42010-09-23 18:39:19 +02006177 cfgerr++;
6178 }
6179 else if (!curpeers->peers_fe) {
Willy Tarreau122541c2011-09-07 21:24:49 +02006180 Alert("Proxy '%s': unable to find local peer '%s' in peers section '%s'.\n",
6181 curproxy->id, localpeer, curpeers->id);
Willy Tarreaud66bf962011-10-28 14:16:49 +02006182 curproxy->table.peers.p = NULL;
Emeric Brun32da3c42010-09-23 18:39:19 +02006183 cfgerr++;
6184 }
6185 }
6186
Krzysztof Piotr Oledzki329f74d2010-02-22 20:27:23 +01006187 if (curproxy->uri_auth && !(curproxy->uri_auth->flags & ST_CONVDONE) &&
Willy Tarreauff011f22011-01-06 17:51:27 +01006188 !LIST_ISEMPTY(&curproxy->uri_auth->http_req_rules) &&
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006189 (curproxy->uri_auth->userlist || curproxy->uri_auth->auth_realm )) {
6190 Alert("%s '%s': stats 'auth'/'realm' and 'http-request' can't be used at the same time.\n",
6191 "proxy", curproxy->id);
6192 cfgerr++;
6193 goto out_uri_auth_compat;
6194 }
6195
Krzysztof Piotr Oledzki329f74d2010-02-22 20:27:23 +01006196 if (curproxy->uri_auth && curproxy->uri_auth->userlist && !(curproxy->uri_auth->flags & ST_CONVDONE)) {
Willy Tarreau95fa4692010-02-01 13:05:50 +01006197 const char *uri_auth_compat_req[10];
Willy Tarreauff011f22011-01-06 17:51:27 +01006198 struct http_req_rule *rule;
Willy Tarreau95fa4692010-02-01 13:05:50 +01006199 int i = 0;
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006200
Willy Tarreau95fa4692010-02-01 13:05:50 +01006201 /* build the ACL condition from scratch. We're relying on anonymous ACLs for that */
6202 uri_auth_compat_req[i++] = "auth";
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006203
6204 if (curproxy->uri_auth->auth_realm) {
Willy Tarreau95fa4692010-02-01 13:05:50 +01006205 uri_auth_compat_req[i++] = "realm";
6206 uri_auth_compat_req[i++] = curproxy->uri_auth->auth_realm;
6207 }
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006208
Willy Tarreau95fa4692010-02-01 13:05:50 +01006209 uri_auth_compat_req[i++] = "unless";
6210 uri_auth_compat_req[i++] = "{";
6211 uri_auth_compat_req[i++] = "http_auth(.internal-stats-userlist)";
6212 uri_auth_compat_req[i++] = "}";
6213 uri_auth_compat_req[i++] = "";
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006214
Willy Tarreauff011f22011-01-06 17:51:27 +01006215 rule = parse_http_req_cond(uri_auth_compat_req, "internal-stats-auth-compat", 0, curproxy);
6216 if (!rule) {
Willy Tarreau95fa4692010-02-01 13:05:50 +01006217 cfgerr++;
6218 break;
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006219 }
6220
Willy Tarreauff011f22011-01-06 17:51:27 +01006221 LIST_ADDQ(&curproxy->uri_auth->http_req_rules, &rule->list);
Willy Tarreau95fa4692010-02-01 13:05:50 +01006222
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006223 if (curproxy->uri_auth->auth_realm) {
6224 free(curproxy->uri_auth->auth_realm);
6225 curproxy->uri_auth->auth_realm = NULL;
6226 }
Krzysztof Piotr Oledzki329f74d2010-02-22 20:27:23 +01006227
6228 curproxy->uri_auth->flags |= ST_CONVDONE;
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006229 }
6230out_uri_auth_compat:
6231
Krzysztof Piotr Oledzkif9423ae2010-01-29 19:26:18 +01006232 cfgerr += acl_find_targets(curproxy);
6233
Willy Tarreau2738a142006-07-08 17:28:09 +02006234 if ((curproxy->mode == PR_MODE_TCP || curproxy->mode == PR_MODE_HTTP) &&
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006235 (((curproxy->cap & PR_CAP_FE) && !curproxy->timeout.client) ||
Willy Tarreaud825eef2007-05-12 22:35:00 +02006236 ((curproxy->cap & PR_CAP_BE) && (curproxy->srv) &&
Willy Tarreauce887fd2012-05-12 12:50:00 +02006237 (!curproxy->timeout.connect ||
6238 (!curproxy->timeout.server && (curproxy->mode == PR_MODE_HTTP || !curproxy->timeout.tunnel)))))) {
Willy Tarreau915e1eb2009-06-22 15:48:36 +02006239 Warning("config : missing timeouts for %s '%s'.\n"
Willy Tarreau2738a142006-07-08 17:28:09 +02006240 " | While not properly invalid, you will certainly encounter various problems\n"
6241 " | with such a configuration. To fix this, please ensure that all following\n"
Willy Tarreau0f68eac2008-01-20 23:25:06 +01006242 " | timeouts are set to a non-zero value: 'client', 'connect', 'server'.\n",
Willy Tarreau915e1eb2009-06-22 15:48:36 +02006243 proxy_type_str(curproxy), curproxy->id);
Willy Tarreaubb925012009-07-23 13:36:36 +02006244 err_code |= ERR_WARN;
Willy Tarreau2738a142006-07-08 17:28:09 +02006245 }
Willy Tarreauf3c69202006-07-09 16:42:34 +02006246
Willy Tarreau1fa31262007-12-03 00:36:16 +01006247 /* Historically, the tarpit and queue timeouts were inherited from contimeout.
6248 * We must still support older configurations, so let's find out whether those
6249 * parameters have been set or must be copied from contimeouts.
6250 */
6251 if (curproxy != &defproxy) {
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006252 if (!curproxy->timeout.tarpit ||
6253 curproxy->timeout.tarpit == defproxy.timeout.tarpit) {
Willy Tarreau1fa31262007-12-03 00:36:16 +01006254 /* tarpit timeout not set. We search in the following order:
6255 * default.tarpit, curr.connect, default.connect.
6256 */
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006257 if (defproxy.timeout.tarpit)
Willy Tarreau1fa31262007-12-03 00:36:16 +01006258 curproxy->timeout.tarpit = defproxy.timeout.tarpit;
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006259 else if (curproxy->timeout.connect)
Willy Tarreaud7c30f92007-12-03 01:38:36 +01006260 curproxy->timeout.tarpit = curproxy->timeout.connect;
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006261 else if (defproxy.timeout.connect)
Willy Tarreaud7c30f92007-12-03 01:38:36 +01006262 curproxy->timeout.tarpit = defproxy.timeout.connect;
Willy Tarreau1fa31262007-12-03 00:36:16 +01006263 }
6264 if ((curproxy->cap & PR_CAP_BE) &&
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006265 (!curproxy->timeout.queue ||
6266 curproxy->timeout.queue == defproxy.timeout.queue)) {
Willy Tarreau1fa31262007-12-03 00:36:16 +01006267 /* queue timeout not set. We search in the following order:
6268 * default.queue, curr.connect, default.connect.
6269 */
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006270 if (defproxy.timeout.queue)
Willy Tarreau1fa31262007-12-03 00:36:16 +01006271 curproxy->timeout.queue = defproxy.timeout.queue;
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006272 else if (curproxy->timeout.connect)
Willy Tarreaud7c30f92007-12-03 01:38:36 +01006273 curproxy->timeout.queue = curproxy->timeout.connect;
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006274 else if (defproxy.timeout.connect)
Willy Tarreaud7c30f92007-12-03 01:38:36 +01006275 curproxy->timeout.queue = defproxy.timeout.connect;
Willy Tarreau1fa31262007-12-03 00:36:16 +01006276 }
6277 }
6278
Willy Tarreau1620ec32011-08-06 17:05:02 +02006279 if ((curproxy->options2 & PR_O2_CHK_ANY) == PR_O2_SSL3_CHK) {
Willy Tarreau137325d2010-02-01 16:38:17 +01006280 curproxy->check_len = sizeof(sslv3_client_hello_pkt) - 1;
6281 curproxy->check_req = (char *)malloc(curproxy->check_len);
6282 memcpy(curproxy->check_req, sslv3_client_hello_pkt, curproxy->check_len);
Willy Tarreauf3c69202006-07-09 16:42:34 +02006283 }
6284
Willy Tarreaucf7f3202007-05-13 22:46:04 +02006285 /* The small pools required for the capture lists */
Willy Tarreau9a54e132012-03-24 08:33:05 +01006286 if (curproxy->nb_req_cap) {
6287 if (curproxy->mode == PR_MODE_HTTP) {
6288 curproxy->req_cap_pool = create_pool("ptrcap",
6289 curproxy->nb_req_cap * sizeof(char *),
6290 MEM_F_SHARED);
6291 } else {
6292 Warning("config : 'capture request header' ignored for %s '%s' as it requires HTTP mode.\n",
6293 proxy_type_str(curproxy), curproxy->id);
6294 err_code |= ERR_WARN;
6295 curproxy->to_log &= ~LW_REQHDR;
6296 curproxy->nb_req_cap = 0;
6297 }
6298 }
6299
6300 if (curproxy->nb_rsp_cap) {
6301 if (curproxy->mode == PR_MODE_HTTP) {
6302 curproxy->rsp_cap_pool = create_pool("ptrcap",
6303 curproxy->nb_rsp_cap * sizeof(char *),
6304 MEM_F_SHARED);
6305 } else {
6306 Warning("config : 'capture response header' ignored for %s '%s' as it requires HTTP mode.\n",
6307 proxy_type_str(curproxy), curproxy->id);
6308 err_code |= ERR_WARN;
6309 curproxy->to_log &= ~LW_REQHDR;
6310 curproxy->nb_rsp_cap = 0;
6311 }
6312 }
Willy Tarreaucf7f3202007-05-13 22:46:04 +02006313
Willy Tarreau196729e2012-05-31 19:30:26 +02006314 /* compile the log format */
Willy Tarreau99a7ca22012-05-31 19:39:23 +02006315 if (!(curproxy->cap & PR_CAP_FE)) {
6316 if (curproxy->logformat_string != default_http_log_format &&
6317 curproxy->logformat_string != default_tcp_log_format &&
6318 curproxy->logformat_string != clf_http_log_format)
6319 free(curproxy->logformat_string);
6320 curproxy->logformat_string = NULL;
6321 }
6322
Willy Tarreau196729e2012-05-31 19:30:26 +02006323 if (curproxy->logformat_string)
6324 parse_logformat_string(curproxy->logformat_string, curproxy, &curproxy->logformat, curproxy->mode);
6325
6326 if (curproxy->uniqueid_format_string)
6327 parse_logformat_string(curproxy->uniqueid_format_string, curproxy, &curproxy->format_unique_id, PR_MODE_HTTP);
6328
Willy Tarreaubaaee002006-06-26 02:48:02 +02006329 /* first, we will invert the servers list order */
6330 newsrv = NULL;
6331 while (curproxy->srv) {
6332 struct server *next;
6333
6334 next = curproxy->srv->next;
6335 curproxy->srv->next = newsrv;
6336 newsrv = curproxy->srv;
6337 if (!next)
6338 break;
6339 curproxy->srv = next;
6340 }
6341
Willy Tarreaudd701652010-05-25 23:03:02 +02006342 /* assign automatic UIDs to servers which don't have one yet */
6343 next_id = 1;
6344 newsrv = curproxy->srv;
6345 while (newsrv != NULL) {
6346 if (!newsrv->puid) {
6347 /* server ID not set, use automatic numbering with first
6348 * spare entry starting with next_svid.
6349 */
6350 next_id = get_next_id(&curproxy->conf.used_server_id, next_id);
6351 newsrv->conf.id.key = newsrv->puid = next_id;
6352 eb32_insert(&curproxy->conf.used_server_id, &newsrv->conf.id);
6353 }
6354 next_id++;
6355 newsrv = newsrv->next;
6356 }
6357
Willy Tarreau20697042007-11-15 23:26:18 +01006358 curproxy->lbprm.wmult = 1; /* default weight multiplier */
Willy Tarreau5dc2fa62007-11-19 19:10:18 +01006359 curproxy->lbprm.wdiv = 1; /* default weight divider */
Willy Tarreaubaaee002006-06-26 02:48:02 +02006360
Willy Tarreau62c3be22012-01-20 13:12:32 +01006361 /*
6362 * If this server supports a maxconn parameter, it needs a dedicated
6363 * tasks to fill the emptied slots when a connection leaves.
6364 * Also, resolve deferred tracking dependency if needed.
6365 */
6366 newsrv = curproxy->srv;
6367 while (newsrv != NULL) {
6368 if (newsrv->minconn > newsrv->maxconn) {
6369 /* Only 'minconn' was specified, or it was higher than or equal
6370 * to 'maxconn'. Let's turn this into maxconn and clean it, as
6371 * this will avoid further useless expensive computations.
6372 */
6373 newsrv->maxconn = newsrv->minconn;
6374 } else if (newsrv->maxconn && !newsrv->minconn) {
6375 /* minconn was not specified, so we set it to maxconn */
6376 newsrv->minconn = newsrv->maxconn;
6377 }
6378
Emeric Brun01f8e2f2012-05-18 16:02:00 +02006379#ifdef USE_OPENSSL
6380#ifndef SSL_OP_NO_COMPRESSION /* needs OpenSSL >= 0.9.9 */
6381#define SSL_OP_NO_COMPRESSION 0
6382#endif
6383#ifndef SSL_MODE_RELEASE_BUFFERS /* needs OpenSSL >= 1.0.0 */
6384#define SSL_MODE_RELEASE_BUFFERS 0
6385#endif
6386#ifndef SSL_OP_NO_COMPRESSION /* needs OpenSSL >= 0.9.9 */
6387#define SSL_OP_NO_COMPRESSION 0
6388#endif
Emeric Brunc0ff4922012-09-28 19:37:02 +02006389#ifndef SSL_OP_NO_TLSv1_1 /* needs OpenSSL >= 1.0.1 */
6390#define SSL_OP_NO_TLSv1_1 0
6391#endif
6392#ifndef SSL_OP_NO_TLSv1_2 /* needs OpenSSL >= 1.0.1 */
6393#define SSL_OP_NO_TLSv1_2 0
6394#endif
Willy Tarreauf4288ee2012-09-28 18:13:10 +02006395 if (newsrv->use_ssl || newsrv->check.use_ssl) {
Emeric Brun01f8e2f2012-05-18 16:02:00 +02006396 int ssloptions =
6397 SSL_OP_ALL | /* all known workarounds for bugs */
6398 SSL_OP_NO_SSLv2 |
6399 SSL_OP_NO_COMPRESSION;
6400 int sslmode =
6401 SSL_MODE_ENABLE_PARTIAL_WRITE |
6402 SSL_MODE_ACCEPT_MOVING_WRITE_BUFFER |
6403 SSL_MODE_RELEASE_BUFFERS;
6404
6405 /* Initiate SSL context for current server */
6406 newsrv->ssl_ctx.reused_sess = NULL;
Willy Tarreauf4288ee2012-09-28 18:13:10 +02006407 if (newsrv->use_ssl)
6408 newsrv->xprt = &ssl_sock;
Willy Tarreauf1503172012-09-28 19:39:36 +02006409 if (newsrv->check.use_ssl)
6410 newsrv->check.xprt = &ssl_sock;
Emeric Brun01f8e2f2012-05-18 16:02:00 +02006411 newsrv->ssl_ctx.ctx = SSL_CTX_new(SSLv23_client_method());
6412 if(!newsrv->ssl_ctx.ctx) {
6413
6414 Alert("config : %s '%s', server '%s': unable to allocate ssl context.\n",
6415 proxy_type_str(curproxy), curproxy->id,
6416 newsrv->id);
6417 cfgerr++;
6418 goto next_srv;
6419 }
6420
Emeric Brun89675492012-10-05 13:48:26 +02006421 if (newsrv->ssl_ctx.options & SRV_SSL_O_NO_SSLV3)
Willy Tarreauc230b8b2012-09-03 23:55:16 +02006422 ssloptions |= SSL_OP_NO_SSLv3;
Emeric Brun89675492012-10-05 13:48:26 +02006423 if (newsrv->ssl_ctx.options & SRV_SSL_O_NO_TLSV10)
Willy Tarreauc230b8b2012-09-03 23:55:16 +02006424 ssloptions |= SSL_OP_NO_TLSv1;
Emeric Brun89675492012-10-05 13:48:26 +02006425 if (newsrv->ssl_ctx.options & SRV_SSL_O_NO_TLSV11)
Emeric Brunc0ff4922012-09-28 19:37:02 +02006426 ssloptions |= SSL_OP_NO_TLSv1_1;
Emeric Brun89675492012-10-05 13:48:26 +02006427 if (newsrv->ssl_ctx.options & SRV_SSL_O_NO_TLSV12)
Emeric Brunc0ff4922012-09-28 19:37:02 +02006428 ssloptions |= SSL_OP_NO_TLSv1_2;
Emeric Brun8694b9a2012-10-05 14:39:07 +02006429 if (newsrv->ssl_ctx.options & SRV_SSL_O_USE_SSLV3)
6430 SSL_CTX_set_ssl_version(newsrv->ssl_ctx.ctx, SSLv3_client_method());
6431 if (newsrv->ssl_ctx.options & SRV_SSL_O_USE_TLSV10)
6432 SSL_CTX_set_ssl_version(newsrv->ssl_ctx.ctx, TLSv1_client_method());
6433#if SSL_OP_NO_TLSv1_1
6434 if (newsrv->ssl_ctx.options & SRV_SSL_O_USE_TLSV11)
6435 SSL_CTX_set_ssl_version(newsrv->ssl_ctx.ctx, TLSv1_1_client_method());
6436#endif
6437#if SSL_OP_NO_TLSv1_2
6438 if (newsrv->ssl_ctx.options & SRV_SSL_O_USE_TLSV12)
6439 SSL_CTX_set_ssl_version(newsrv->ssl_ctx.ctx, TLSv1_2_client_method());
6440#endif
6441
Emeric Brun01f8e2f2012-05-18 16:02:00 +02006442 SSL_CTX_set_options(newsrv->ssl_ctx.ctx, ssloptions);
6443 SSL_CTX_set_mode(newsrv->ssl_ctx.ctx, sslmode);
6444 SSL_CTX_set_verify(newsrv->ssl_ctx.ctx, SSL_VERIFY_NONE, NULL);
6445 SSL_CTX_set_session_cache_mode(newsrv->ssl_ctx.ctx, SSL_SESS_CACHE_OFF);
Willy Tarreaud7aacbf2012-09-03 23:34:19 +02006446 if (newsrv->ssl_ctx.ciphers &&
6447 !SSL_CTX_set_cipher_list(newsrv->ssl_ctx.ctx, newsrv->ssl_ctx.ciphers)) {
6448 Alert("Proxy '%s', server '%s' [%s:%d] : unable to set SSL cipher list to '%s'.\n",
6449 curproxy->id, newsrv->id,
6450 newsrv->conf.file, newsrv->conf.line, newsrv->ssl_ctx.ciphers);
6451 cfgerr++;
6452 goto next_srv;
6453 }
Emeric Brun01f8e2f2012-05-18 16:02:00 +02006454 }
6455#endif /* USE_OPENSSL */
Willy Tarreau62c3be22012-01-20 13:12:32 +01006456 if (newsrv->trackit) {
6457 struct proxy *px;
6458 struct server *srv;
6459 char *pname, *sname;
6460
6461 pname = newsrv->trackit;
6462 sname = strrchr(pname, '/');
6463
6464 if (sname)
6465 *sname++ = '\0';
6466 else {
6467 sname = pname;
6468 pname = NULL;
6469 }
6470
6471 if (pname) {
6472 px = findproxy(pname, PR_CAP_BE);
6473 if (!px) {
6474 Alert("config : %s '%s', server '%s': unable to find required proxy '%s' for tracking.\n",
6475 proxy_type_str(curproxy), curproxy->id,
6476 newsrv->id, pname);
6477 cfgerr++;
6478 goto next_srv;
6479 }
6480 } else
6481 px = curproxy;
6482
6483 srv = findserver(px, sname);
6484 if (!srv) {
6485 Alert("config : %s '%s', server '%s': unable to find required server '%s' for tracking.\n",
6486 proxy_type_str(curproxy), curproxy->id,
6487 newsrv->id, sname);
6488 cfgerr++;
6489 goto next_srv;
6490 }
6491
6492 if (!(srv->state & SRV_CHECKED)) {
6493 Alert("config : %s '%s', server '%s': unable to use %s/%s for "
6494 "tracking as it does not have checks enabled.\n",
6495 proxy_type_str(curproxy), curproxy->id,
6496 newsrv->id, px->id, srv->id);
6497 cfgerr++;
6498 goto next_srv;
6499 }
6500
6501 if (curproxy != px &&
6502 (curproxy->options & PR_O_DISABLE404) != (px->options & PR_O_DISABLE404)) {
6503 Alert("config : %s '%s', server '%s': unable to use %s/%s for"
6504 "tracking: disable-on-404 option inconsistency.\n",
6505 proxy_type_str(curproxy), curproxy->id,
6506 newsrv->id, px->id, srv->id);
6507 cfgerr++;
6508 goto next_srv;
6509 }
6510
6511 /* if the other server is forced disabled, we have to do the same here */
6512 if (srv->state & SRV_MAINTAIN) {
6513 newsrv->state |= SRV_MAINTAIN;
6514 newsrv->state &= ~SRV_RUNNING;
6515 newsrv->health = 0;
6516 }
6517
6518 newsrv->track = srv;
6519 newsrv->tracknext = srv->tracknext;
6520 srv->tracknext = newsrv;
6521
6522 free(newsrv->trackit);
6523 newsrv->trackit = NULL;
6524 }
6525 next_srv:
6526 newsrv = newsrv->next;
6527 }
6528
Willy Tarreauf3e49f92009-10-03 12:21:20 +02006529 /* We have to initialize the server lookup mechanism depending
6530 * on what LB algorithm was choosen.
6531 */
6532
6533 curproxy->lbprm.algo &= ~(BE_LB_LKUP | BE_LB_PROP_DYN);
6534 switch (curproxy->lbprm.algo & BE_LB_KIND) {
6535 case BE_LB_KIND_RR:
Willy Tarreau9757a382009-10-03 12:56:50 +02006536 if ((curproxy->lbprm.algo & BE_LB_PARM) == BE_LB_RR_STATIC) {
6537 curproxy->lbprm.algo |= BE_LB_LKUP_MAP;
6538 init_server_map(curproxy);
6539 } else {
6540 curproxy->lbprm.algo |= BE_LB_LKUP_RRTREE | BE_LB_PROP_DYN;
6541 fwrr_init_server_groups(curproxy);
6542 }
Willy Tarreauf3e49f92009-10-03 12:21:20 +02006543 break;
Willy Tarreau6b2e11b2009-10-01 07:52:15 +02006544
Willy Tarreau3ebb1162012-02-13 16:57:44 +01006545 case BE_LB_KIND_CB:
Willy Tarreauf09c6602012-02-13 17:12:08 +01006546 if ((curproxy->lbprm.algo & BE_LB_PARM) == BE_LB_CB_LC) {
6547 curproxy->lbprm.algo |= BE_LB_LKUP_LCTREE | BE_LB_PROP_DYN;
6548 fwlc_init_server_tree(curproxy);
6549 } else {
6550 curproxy->lbprm.algo |= BE_LB_LKUP_FSTREE | BE_LB_PROP_DYN;
6551 fas_init_server_tree(curproxy);
6552 }
Willy Tarreauf3e49f92009-10-03 12:21:20 +02006553 break;
Willy Tarreau6b2e11b2009-10-01 07:52:15 +02006554
Willy Tarreauf3e49f92009-10-03 12:21:20 +02006555 case BE_LB_KIND_HI:
Willy Tarreau6b2e11b2009-10-01 07:52:15 +02006556 if ((curproxy->lbprm.algo & BE_LB_HASH_TYPE) == BE_LB_HASH_CONS) {
6557 curproxy->lbprm.algo |= BE_LB_LKUP_CHTREE | BE_LB_PROP_DYN;
6558 chash_init_server_tree(curproxy);
6559 } else {
6560 curproxy->lbprm.algo |= BE_LB_LKUP_MAP;
6561 init_server_map(curproxy);
6562 }
Willy Tarreauf3e49f92009-10-03 12:21:20 +02006563 break;
6564 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02006565
6566 if (curproxy->options & PR_O_LOGASAP)
6567 curproxy->to_log &= ~LW_BYTES;
6568
Willy Tarreaue7ded1f2009-08-09 10:11:45 +02006569 if ((curproxy->mode == PR_MODE_TCP || curproxy->mode == PR_MODE_HTTP) &&
William Lallemand0f99e342011-10-12 17:50:54 +02006570 (curproxy->cap & PR_CAP_FE) && curproxy->to_log && LIST_ISEMPTY(&curproxy->logsrvs)) {
Willy Tarreaue7ded1f2009-08-09 10:11:45 +02006571 Warning("config : log format ignored for %s '%s' since it has no log address.\n",
6572 proxy_type_str(curproxy), curproxy->id);
6573 err_code |= ERR_WARN;
6574 }
6575
Willy Tarreaue24fdfb2010-03-25 07:22:56 +01006576 if (curproxy->mode != PR_MODE_HTTP) {
6577 int optnum;
6578
Willy Tarreaue24fdfb2010-03-25 07:22:56 +01006579 if (curproxy->uri_auth) {
6580 Warning("config : 'stats' statement ignored for %s '%s' as it requires HTTP mode.\n",
6581 proxy_type_str(curproxy), curproxy->id);
6582 err_code |= ERR_WARN;
6583 curproxy->uri_auth = NULL;
6584 }
6585
Willy Tarreau87cf5142011-08-19 22:57:24 +02006586 if (curproxy->options & (PR_O_FWDFOR | PR_O_FF_ALWAYS)) {
Willy Tarreaue24fdfb2010-03-25 07:22:56 +01006587 Warning("config : 'option %s' ignored for %s '%s' as it requires HTTP mode.\n",
6588 "forwardfor", proxy_type_str(curproxy), curproxy->id);
6589 err_code |= ERR_WARN;
Willy Tarreau87cf5142011-08-19 22:57:24 +02006590 curproxy->options &= ~(PR_O_FWDFOR | PR_O_FF_ALWAYS);
Willy Tarreaue24fdfb2010-03-25 07:22:56 +01006591 }
6592
6593 if (curproxy->options & PR_O_ORGTO) {
6594 Warning("config : 'option %s' ignored for %s '%s' as it requires HTTP mode.\n",
6595 "originalto", proxy_type_str(curproxy), curproxy->id);
6596 err_code |= ERR_WARN;
6597 curproxy->options &= ~PR_O_ORGTO;
6598 }
6599
6600 for (optnum = 0; cfg_opts[optnum].name; optnum++) {
6601 if (cfg_opts[optnum].mode == PR_MODE_HTTP &&
6602 (curproxy->cap & cfg_opts[optnum].cap) &&
6603 (curproxy->options & cfg_opts[optnum].val)) {
6604 Warning("config : 'option %s' ignored for %s '%s' as it requires HTTP mode.\n",
6605 cfg_opts[optnum].name, proxy_type_str(curproxy), curproxy->id);
6606 err_code |= ERR_WARN;
6607 curproxy->options &= ~cfg_opts[optnum].val;
6608 }
6609 }
6610
6611 for (optnum = 0; cfg_opts2[optnum].name; optnum++) {
6612 if (cfg_opts2[optnum].mode == PR_MODE_HTTP &&
6613 (curproxy->cap & cfg_opts2[optnum].cap) &&
6614 (curproxy->options2 & cfg_opts2[optnum].val)) {
6615 Warning("config : 'option %s' ignored for %s '%s' as it requires HTTP mode.\n",
6616 cfg_opts2[optnum].name, proxy_type_str(curproxy), curproxy->id);
6617 err_code |= ERR_WARN;
6618 curproxy->options2 &= ~cfg_opts2[optnum].val;
6619 }
6620 }
Willy Tarreaubce70882009-09-07 11:51:47 +02006621
Willy Tarreauefa5f512010-03-30 20:13:29 +02006622#if defined(CONFIG_HAP_CTTPROXY) || defined(CONFIG_HAP_LINUX_TPROXY)
Willy Tarreaubce70882009-09-07 11:51:47 +02006623 if (curproxy->bind_hdr_occ) {
6624 curproxy->bind_hdr_occ = 0;
6625 Warning("config : %s '%s' : ignoring use of header %s as source IP in non-HTTP mode.\n",
6626 proxy_type_str(curproxy), curproxy->id, curproxy->bind_hdr_name);
6627 err_code |= ERR_WARN;
6628 }
Willy Tarreauefa5f512010-03-30 20:13:29 +02006629#endif
Willy Tarreaue24fdfb2010-03-25 07:22:56 +01006630 }
6631
Willy Tarreaubaaee002006-06-26 02:48:02 +02006632 /*
Willy Tarreau21d2af32008-02-14 20:25:24 +01006633 * ensure that we're not cross-dressing a TCP server into HTTP.
6634 */
6635 newsrv = curproxy->srv;
6636 while (newsrv != NULL) {
Willy Tarreau0cec3312011-10-31 13:49:26 +01006637 if ((curproxy->mode != PR_MODE_HTTP) && newsrv->rdr_len) {
Willy Tarreau915e1eb2009-06-22 15:48:36 +02006638 Alert("config : %s '%s' : server cannot have cookie or redirect prefix in non-HTTP mode.\n",
6639 proxy_type_str(curproxy), curproxy->id);
Willy Tarreaubb925012009-07-23 13:36:36 +02006640 cfgerr++;
Willy Tarreau21d2af32008-02-14 20:25:24 +01006641 }
Willy Tarreaubce70882009-09-07 11:51:47 +02006642
Willy Tarreau0cec3312011-10-31 13:49:26 +01006643 if ((curproxy->mode != PR_MODE_HTTP) && newsrv->cklen) {
6644 Warning("config : %s '%s' : ignoring cookie for server '%s' as HTTP mode is disabled.\n",
6645 proxy_type_str(curproxy), curproxy->id, newsrv->id);
6646 err_code |= ERR_WARN;
6647 }
6648
Willy Tarreauefa5f512010-03-30 20:13:29 +02006649#if defined(CONFIG_HAP_CTTPROXY) || defined(CONFIG_HAP_LINUX_TPROXY)
Willy Tarreaubce70882009-09-07 11:51:47 +02006650 if (curproxy->mode != PR_MODE_HTTP && newsrv->bind_hdr_occ) {
6651 newsrv->bind_hdr_occ = 0;
6652 Warning("config : %s '%s' : server %s cannot use header %s as source IP in non-HTTP mode.\n",
6653 proxy_type_str(curproxy), curproxy->id, newsrv->id, newsrv->bind_hdr_name);
6654 err_code |= ERR_WARN;
6655 }
Willy Tarreauefa5f512010-03-30 20:13:29 +02006656#endif
Willy Tarreau21d2af32008-02-14 20:25:24 +01006657 newsrv = newsrv->next;
6658 }
6659
Willy Tarreauc1a21672009-08-16 22:37:44 +02006660 if (curproxy->cap & PR_CAP_FE) {
Willy Tarreau050536d2012-10-04 08:47:34 +02006661 if (!curproxy->accept)
6662 curproxy->accept = frontend_accept;
Willy Tarreau81f9aa32010-06-01 17:45:26 +02006663
Willy Tarreauc1a21672009-08-16 22:37:44 +02006664 if (curproxy->tcp_req.inspect_delay ||
6665 !LIST_ISEMPTY(&curproxy->tcp_req.inspect_rules))
Willy Tarreaufb356202010-08-03 14:02:05 +02006666 curproxy->fe_req_ana |= AN_REQ_INSPECT_FE;
Willy Tarreauc1a21672009-08-16 22:37:44 +02006667
Willy Tarreau4e5b8282009-08-16 22:57:50 +02006668 if (curproxy->mode == PR_MODE_HTTP) {
Willy Tarreauc1a21672009-08-16 22:37:44 +02006669 curproxy->fe_req_ana |= AN_REQ_WAIT_HTTP | AN_REQ_HTTP_PROCESS_FE;
Willy Tarreaub37c27e2009-10-18 22:53:08 +02006670 curproxy->fe_rsp_ana |= AN_RES_WAIT_HTTP | AN_RES_HTTP_PROCESS_FE;
Willy Tarreau4e5b8282009-08-16 22:57:50 +02006671 }
Willy Tarreauc1a21672009-08-16 22:37:44 +02006672
6673 /* both TCP and HTTP must check switching rules */
6674 curproxy->fe_req_ana |= AN_REQ_SWITCHING_RULES;
6675 }
6676
6677 if (curproxy->cap & PR_CAP_BE) {
Willy Tarreaufb356202010-08-03 14:02:05 +02006678 if (curproxy->tcp_req.inspect_delay ||
6679 !LIST_ISEMPTY(&curproxy->tcp_req.inspect_rules))
6680 curproxy->be_req_ana |= AN_REQ_INSPECT_BE;
6681
Emeric Brun97679e72010-09-23 17:56:44 +02006682 if (!LIST_ISEMPTY(&curproxy->tcp_rep.inspect_rules))
6683 curproxy->be_rsp_ana |= AN_RES_INSPECT;
6684
Willy Tarreau4e5b8282009-08-16 22:57:50 +02006685 if (curproxy->mode == PR_MODE_HTTP) {
Willy Tarreauc1a21672009-08-16 22:37:44 +02006686 curproxy->be_req_ana |= AN_REQ_WAIT_HTTP | AN_REQ_HTTP_INNER | AN_REQ_HTTP_PROCESS_BE;
Willy Tarreaub37c27e2009-10-18 22:53:08 +02006687 curproxy->be_rsp_ana |= AN_RES_WAIT_HTTP | AN_RES_HTTP_PROCESS_BE;
Willy Tarreau4e5b8282009-08-16 22:57:50 +02006688 }
Willy Tarreauc1a21672009-08-16 22:37:44 +02006689
6690 /* If the backend does requires RDP cookie persistence, we have to
6691 * enable the corresponding analyser.
6692 */
6693 if (curproxy->options2 & PR_O2_RDPC_PRST)
6694 curproxy->be_req_ana |= AN_REQ_PRST_RDP_COOKIE;
6695 }
6696
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006697 /* Configure SSL for each bind line.
6698 * Note: if configuration fails at some point, the ->ctx member
6699 * remains NULL so that listeners can later detach.
6700 */
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006701 list_for_each_entry(bind_conf, &curproxy->conf.bind, by_fe) {
6702 if (!bind_conf->is_ssl)
6703 continue;
6704#ifdef USE_OPENSSL
6705 if (!bind_conf->default_ctx) {
Emeric Brunfc0421f2012-09-07 17:30:07 +02006706 Alert("Proxy '%s': no SSL certificate specified for bind '%s' at [%s:%d] (use 'crt').\n",
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006707 curproxy->id, bind_conf->arg, bind_conf->file, bind_conf->line);
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006708 cfgerr++;
6709 continue;
6710 }
6711
Emeric Brun4b3091e2012-09-24 15:48:52 +02006712 if (shared_context_init(global.tune.sslcachesize, (global.nbproc > 1) ? 1 : 0) < 0) {
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006713 Alert("Unable to allocate SSL session cache.\n");
6714 cfgerr++;
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006715 continue;
6716 }
6717
Emeric Brunfc0421f2012-09-07 17:30:07 +02006718 /* initialize all certificate contexts */
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006719 cfgerr += ssl_sock_prepare_all_ctx(bind_conf, curproxy);
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006720#endif /* USE_OPENSSL */
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006721 }
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006722
Willy Tarreaue6b98942007-10-29 01:09:36 +01006723 /* adjust this proxy's listeners */
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02006724 next_id = 1;
Willy Tarreau4348fad2012-09-20 16:48:07 +02006725 list_for_each_entry(listener, &curproxy->conf.listeners, by_fe) {
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02006726 if (!listener->luid) {
6727 /* listener ID not set, use automatic numbering with first
6728 * spare entry starting with next_luid.
6729 */
6730 next_id = get_next_id(&curproxy->conf.used_listener_id, next_id);
6731 listener->conf.id.key = listener->luid = next_id;
6732 eb32_insert(&curproxy->conf.used_listener_id, &listener->conf.id);
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02006733 }
Krzysztof Piotr Oledzkidf5cb9f2010-02-05 20:58:27 +01006734 next_id++;
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02006735
Krzysztof Piotr Oledzkiaeebf9b2009-10-04 15:43:17 +02006736 /* enable separate counters */
6737 if (curproxy->options2 & PR_O2_SOCKSTAT) {
6738 listener->counters = (struct licounters *)calloc(1, sizeof(struct licounters));
6739 if (!listener->name) {
6740 sprintf(trash, "sock-%d", listener->luid);
6741 listener->name = strdup(trash);
6742 }
6743 }
Willy Tarreau81796be2012-09-22 19:11:47 +02006744
Willy Tarreaue6b98942007-10-29 01:09:36 +01006745 if (curproxy->options & PR_O_TCP_NOLING)
6746 listener->options |= LI_O_NOLINGER;
Willy Tarreau32368ce2012-09-06 11:10:55 +02006747 if (!listener->maxconn)
6748 listener->maxconn = curproxy->maxconn;
6749 if (!listener->backlog)
6750 listener->backlog = curproxy->backlog;
Willy Tarreaud7c30f92007-12-03 01:38:36 +01006751 listener->timeout = &curproxy->timeout.client;
Willy Tarreau81f9aa32010-06-01 17:45:26 +02006752 listener->accept = session_accept;
Willy Tarreau3bc13772008-12-07 11:50:35 +01006753 listener->handler = process_session;
Willy Tarreauc1a21672009-08-16 22:37:44 +02006754 listener->analysers |= curproxy->fe_req_ana;
Willy Tarreau3bc13772008-12-07 11:50:35 +01006755
Willy Tarreaua5c0ab22010-05-31 10:30:33 +02006756 if (!LIST_ISEMPTY(&curproxy->tcp_req.l4_rules))
6757 listener->options |= LI_O_TCP_RULES;
6758
Willy Tarreaude3041d2010-05-31 10:56:17 +02006759 if (curproxy->mon_mask.s_addr)
6760 listener->options |= LI_O_CHK_MONNET;
6761
Willy Tarreau9ea05a72009-06-14 12:07:01 +02006762 /* smart accept mode is automatic in HTTP mode */
6763 if ((curproxy->options2 & PR_O2_SMARTACC) ||
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006764 ((curproxy->mode == PR_MODE_HTTP || listener->bind_conf->is_ssl) &&
Willy Tarreau9ea05a72009-06-14 12:07:01 +02006765 !(curproxy->no_options2 & PR_O2_SMARTACC)))
6766 listener->options |= LI_O_NOQUICKACK;
Willy Tarreaue6b98942007-10-29 01:09:36 +01006767 }
6768
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006769 /* Release unused SSL configs */
6770 list_for_each_entry(bind_conf, &curproxy->conf.bind, by_fe) {
6771 if (bind_conf->is_ssl)
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006772 continue;
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006773#ifdef USE_OPENSSL
6774 ssl_sock_free_all_ctx(bind_conf);
Emeric Brunfb510ea2012-10-05 12:00:26 +02006775 free(bind_conf->ca_file);
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006776 free(bind_conf->ciphers);
Emeric Brun2b58d042012-09-20 17:10:03 +02006777 free(bind_conf->ecdhe);
Emeric Brunfb510ea2012-10-05 12:00:26 +02006778 free(bind_conf->crl_file);
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006779#endif /* USE_OPENSSL */
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006780 }
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006781
Cyril Bonté02ff8ef2010-12-14 22:48:49 +01006782 /* Check multi-process mode compatibility for the current proxy */
6783 if (global.nbproc > 1) {
6784 int nbproc = 0;
6785 if (curproxy->bind_proc) {
6786 int proc;
6787 for (proc = 0; proc < global.nbproc; proc++) {
6788 if (curproxy->bind_proc & (1 << proc)) {
6789 nbproc++;
6790 }
6791 }
6792 } else {
6793 nbproc = global.nbproc;
6794 }
6795 if (curproxy->table.peers.name) {
6796 Alert("Proxy '%s': peers can't be used in multi-process mode (nbproc > 1).\n",
6797 curproxy->id);
6798 cfgerr++;
6799 }
6800 if (nbproc > 1) {
6801 if (curproxy->uri_auth) {
6802 Warning("Proxy '%s': in multi-process mode, stats will be limited to process assigned to the current request.\n",
6803 curproxy->id);
6804 if (!LIST_ISEMPTY(&curproxy->uri_auth->admin_rules)) {
6805 Warning("Proxy '%s': stats admin will not work correctly in multi-process mode.\n",
6806 curproxy->id);
6807 }
6808 }
6809 if (curproxy->appsession_name) {
6810 Warning("Proxy '%s': appsession will not work correctly in multi-process mode.\n",
6811 curproxy->id);
6812 }
6813 if (!LIST_ISEMPTY(&curproxy->sticking_rules)) {
6814 Warning("Proxy '%s': sticking rules will not work correctly in multi-process mode.\n",
6815 curproxy->id);
6816 }
6817 }
6818 }
Willy Tarreau918ff602011-07-25 16:33:49 +02006819
6820 /* create the task associated with the proxy */
6821 curproxy->task = task_new();
6822 if (curproxy->task) {
6823 curproxy->task->context = curproxy;
6824 curproxy->task->process = manage_proxy;
6825 /* no need to queue, it will be done automatically if some
6826 * listener gets limited.
6827 */
6828 curproxy->task->expire = TICK_ETERNITY;
6829 } else {
6830 Alert("Proxy '%s': no more memory when trying to allocate the management task\n",
6831 curproxy->id);
6832 cfgerr++;
6833 }
6834
Willy Tarreaubaaee002006-06-26 02:48:02 +02006835 curproxy = curproxy->next;
6836 }
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01006837
Cyril Bonté02ff8ef2010-12-14 22:48:49 +01006838 /* Check multi-process mode compatibility */
6839 if (global.nbproc > 1) {
6840 if (global.stats_fe) {
6841 Warning("stats socket will not work correctly in multi-process mode (nbproc > 1).\n");
6842 }
6843 }
6844
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006845 for (curuserlist = userlist; curuserlist; curuserlist = curuserlist->next) {
6846 struct auth_users *curuser;
6847 int g;
6848
6849 for (curuser = curuserlist->users; curuser; curuser = curuser->next) {
6850 unsigned int group_mask = 0;
6851 char *group = NULL;
6852
Willy Tarreaub4c06b72010-02-02 11:28:20 +01006853 if (!curuser->u.groups)
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006854 continue;
6855
Willy Tarreaub4c06b72010-02-02 11:28:20 +01006856 while ((group = strtok(group?NULL:curuser->u.groups, ","))) {
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006857
6858 for (g = 0; g < curuserlist->grpcnt; g++)
6859 if (!strcmp(curuserlist->groups[g], group))
6860 break;
6861
6862 if (g == curuserlist->grpcnt) {
6863 Alert("userlist '%s': no such group '%s' specified in user '%s'\n",
6864 curuserlist->name, group, curuser->user);
6865 err_code |= ERR_ALERT | ERR_FATAL;
6866 goto out;
6867 }
6868
6869 group_mask |= (1 << g);
6870 }
6871
Willy Tarreaub4c06b72010-02-02 11:28:20 +01006872 free(curuser->u.groups);
6873 curuser->u.group_mask = group_mask;
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006874 }
6875
6876 for (g = 0; g < curuserlist->grpcnt; g++) {
6877 char *user = NULL;
6878
6879 if (!curuserlist->groupusers[g])
6880 continue;
6881
6882 while ((user = strtok(user?NULL:curuserlist->groupusers[g], ","))) {
6883 for (curuser = curuserlist->users; curuser; curuser = curuser->next)
6884 if (!strcmp(curuser->user, user))
6885 break;
6886
6887 if (!curuser) {
6888 Alert("userlist '%s': no such user '%s' specified in group '%s'\n",
6889 curuserlist->name, user, curuserlist->groups[g]);
6890 err_code |= ERR_ALERT | ERR_FATAL;
6891 goto out;
6892 }
6893
Willy Tarreaub4c06b72010-02-02 11:28:20 +01006894 curuser->u.group_mask |= (1 << g);
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006895 }
6896
6897 free(curuserlist->groupusers[g]);
6898 }
6899
6900 free(curuserlist->groupusers);
6901
6902#ifdef DEBUG_AUTH
6903 for (g = 0; g < curuserlist->grpcnt; g++) {
6904 fprintf(stderr, "group %s, id %d, mask %08X, users:", curuserlist->groups[g], g , 1 << g);
6905
6906 for (curuser = curuserlist->users; curuser; curuser = curuser->next) {
Willy Tarreaub9509592012-05-10 23:25:35 +02006907 if (curuser->u.group_mask & (1 << g))
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006908 fprintf(stderr, " %s", curuser->user);
6909 }
6910
6911 fprintf(stderr, "\n");
6912 }
6913#endif
6914
Willy Tarreaufbb78422011-06-05 15:38:35 +02006915 }
6916
6917 /* automatically compute fullconn if not set. We must not do it in the
6918 * loop above because cross-references are not yet fully resolved.
6919 */
6920 for (curproxy = proxy; curproxy; curproxy = curproxy->next) {
6921 /* If <fullconn> is not set, let's set it to 10% of the sum of
6922 * the possible incoming frontend's maxconns.
6923 */
6924 if (!curproxy->fullconn && (curproxy->cap & PR_CAP_BE)) {
6925 struct proxy *fe;
6926 int total = 0;
6927
6928 /* sum up the number of maxconns of frontends which
6929 * reference this backend at least once or which are
6930 * the same one ('listen').
6931 */
6932 for (fe = proxy; fe; fe = fe->next) {
6933 struct switching_rule *rule;
6934 struct hdr_exp *exp;
6935 int found = 0;
6936
6937 if (!(fe->cap & PR_CAP_FE))
6938 continue;
6939
6940 if (fe == curproxy) /* we're on a "listen" instance */
6941 found = 1;
6942
6943 if (fe->defbe.be == curproxy) /* "default_backend" */
6944 found = 1;
6945
6946 /* check if a "use_backend" rule matches */
6947 if (!found) {
6948 list_for_each_entry(rule, &fe->switching_rules, list) {
6949 if (rule->be.backend == curproxy) {
6950 found = 1;
6951 break;
6952 }
6953 }
6954 }
6955
6956 /* check if a "reqsetbe" rule matches */
6957 for (exp = fe->req_exp; !found && exp; exp = exp->next) {
6958 if (exp->action == ACT_SETBE &&
6959 (struct proxy *)exp->replace == curproxy) {
6960 found = 1;
6961 break;
6962 }
6963 }
6964
6965 /* now we've checked all possible ways to reference a backend
6966 * from a frontend.
6967 */
Willy Tarreaufbb78422011-06-05 15:38:35 +02006968 if (!found)
6969 continue;
6970 total += fe->maxconn;
Willy Tarreaufbb78422011-06-05 15:38:35 +02006971 }
Willy Tarreaufbb78422011-06-05 15:38:35 +02006972 /* we have the sum of the maxconns in <total>. We only
6973 * keep 10% of that sum to set the default fullconn, with
6974 * a hard minimum of 1 (to avoid a divide by zero).
6975 */
6976 curproxy->fullconn = (total + 9) / 10;
6977 if (!curproxy->fullconn)
6978 curproxy->fullconn = 1;
6979 }
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006980 }
6981
Willy Tarreau056f5682010-06-06 15:51:11 +02006982 /* initialize stick-tables on backend capable proxies. This must not
6983 * be done earlier because the data size may be discovered while parsing
6984 * other proxies.
6985 */
6986 for (curproxy = proxy; curproxy; curproxy = curproxy->next)
Willy Tarreauc00cdc22010-06-06 16:48:26 +02006987 stktable_init(&curproxy->table);
Willy Tarreau056f5682010-06-06 15:51:11 +02006988
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01006989 /*
6990 * Recount currently required checks.
6991 */
6992
6993 for (curproxy=proxy; curproxy; curproxy=curproxy->next) {
6994 int optnum;
6995
Willy Tarreau66aa61f2009-01-18 21:44:07 +01006996 for (optnum = 0; cfg_opts[optnum].name; optnum++)
6997 if (curproxy->options & cfg_opts[optnum].val)
6998 global.last_checks |= cfg_opts[optnum].checks;
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01006999
Willy Tarreau66aa61f2009-01-18 21:44:07 +01007000 for (optnum = 0; cfg_opts2[optnum].name; optnum++)
7001 if (curproxy->options2 & cfg_opts2[optnum].val)
7002 global.last_checks |= cfg_opts2[optnum].checks;
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01007003 }
7004
Willy Tarreau122541c2011-09-07 21:24:49 +02007005 if (peers) {
7006 struct peers *curpeers = peers, **last;
7007 struct peer *p, *pb;
7008
7009 /* Remove all peers sections which don't have a valid listener.
7010 * This can happen when a peers section is never referenced and
7011 * does not contain a local peer.
7012 */
7013 last = &peers;
7014 while (*last) {
7015 curpeers = *last;
7016 if (curpeers->peers_fe) {
7017 last = &curpeers->next;
7018 continue;
7019 }
7020
7021 Warning("Removing incomplete section 'peers %s' (no peer named '%s').\n",
7022 curpeers->id, localpeer);
7023
7024 p = curpeers->remote;
7025 while (p) {
7026 pb = p->next;
7027 free(p->id);
7028 free(p);
7029 p = pb;
7030 }
7031
7032 /* Destroy and unlink this curpeers section.
7033 * Note: curpeers is backed up into *last.
7034 */
7035 free(curpeers->id);
7036 curpeers = curpeers->next;
7037 free(*last);
7038 *last = curpeers;
7039 }
7040 }
7041
Willy Tarreauac1932d2011-10-24 19:14:41 +02007042 if (!global.tune.max_http_hdr)
7043 global.tune.max_http_hdr = MAX_HTTP_HDR;
7044
Willy Tarreau34eb6712011-10-24 18:15:04 +02007045 pool2_hdr_idx = create_pool("hdr_idx",
Willy Tarreauac1932d2011-10-24 19:14:41 +02007046 global.tune.max_http_hdr * sizeof(struct hdr_idx_elem),
Willy Tarreau34eb6712011-10-24 18:15:04 +02007047 MEM_F_SHARED);
7048
Willy Tarreaubb925012009-07-23 13:36:36 +02007049 if (cfgerr > 0)
7050 err_code |= ERR_ALERT | ERR_FATAL;
7051 out:
7052 return err_code;
Willy Tarreaubaaee002006-06-26 02:48:02 +02007053}
7054
Willy Tarreau5b2c3362008-07-09 19:39:06 +02007055/*
7056 * Registers the CFG keyword list <kwl> as a list of valid keywords for next
7057 * parsing sessions.
7058 */
7059void cfg_register_keywords(struct cfg_kw_list *kwl)
7060{
7061 LIST_ADDQ(&cfg_keywords.list, &kwl->list);
7062}
Willy Tarreaubaaee002006-06-26 02:48:02 +02007063
Willy Tarreau5b2c3362008-07-09 19:39:06 +02007064/*
7065 * Unregisters the CFG keyword list <kwl> from the list of valid keywords.
7066 */
7067void cfg_unregister_keywords(struct cfg_kw_list *kwl)
7068{
7069 LIST_DEL(&kwl->list);
7070 LIST_INIT(&kwl->list);
7071}
Willy Tarreaubaaee002006-06-26 02:48:02 +02007072
7073/*
7074 * Local variables:
7075 * c-indent-level: 8
7076 * c-basic-offset: 8
7077 * End:
7078 */