blob: aeb92e6b0761790e52b471fbd16f9725d303ed4e [file] [log] [blame]
Willy Tarreaubaaee002006-06-26 02:48:02 +02001/*
2 * HA-Proxy : High Availability-enabled HTTP/TCP proxy
Willy Tarreau421ed392021-01-06 17:41:32 +01003 * Copyright 2000-2021 Willy Tarreau <willy@haproxy.org>.
Willy Tarreaubaaee002006-06-26 02:48:02 +02004 *
5 * This program is free software; you can redistribute it and/or
6 * modify it under the terms of the GNU General Public License
7 * as published by the Free Software Foundation; either version
8 * 2 of the License, or (at your option) any later version.
9 *
Ilya Shipitsin46a030c2020-07-05 16:36:08 +050010 * Please refer to RFC7230 - RFC7235 information about HTTP protocol, and
11 * RFC6265 for information about cookies usage. More generally, the IETF HTTP
Willy Tarreaubaaee002006-06-26 02:48:02 +020012 * Working Group's web site should be consulted for protocol related changes :
13 *
14 * http://ftp.ics.uci.edu/pub/ietf/http/
15 *
16 * Pending bugs (may be not fixed because never reproduced) :
17 * - solaris only : sometimes, an HTTP proxy with only a dispatch address causes
18 * the proxy to terminate (no core) if the client breaks the connection during
19 * the response. Seen on 1.1.8pre4, but never reproduced. May not be related to
20 * the snprintf() bug since requests were simple (GET / HTTP/1.0), but may be
21 * related to missing setsid() (fixed in 1.1.15)
22 * - a proxy with an invalid config will prevent the startup even if disabled.
23 *
24 * ChangeLog has moved to the CHANGELOG file.
25 *
Willy Tarreaubaaee002006-06-26 02:48:02 +020026 */
27
David Carlier7ece0962015-12-08 21:43:09 +000028#define _GNU_SOURCE
Willy Tarreaubaaee002006-06-26 02:48:02 +020029#include <stdio.h>
30#include <stdlib.h>
31#include <unistd.h>
32#include <string.h>
33#include <ctype.h>
Maxime de Roucy379d9c72016-05-13 23:52:56 +020034#include <dirent.h>
Maxime de Roucy379d9c72016-05-13 23:52:56 +020035#include <sys/stat.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020036#include <sys/time.h>
37#include <sys/types.h>
38#include <sys/socket.h>
39#include <netinet/tcp.h>
40#include <netinet/in.h>
41#include <arpa/inet.h>
42#include <netdb.h>
43#include <fcntl.h>
44#include <errno.h>
45#include <signal.h>
46#include <stdarg.h>
47#include <sys/resource.h>
Tim Duesterhusdfad6a42020-04-18 16:02:47 +020048#include <sys/utsname.h>
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +010049#include <sys/wait.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020050#include <time.h>
51#include <syslog.h>
Michael Schererab012dd2013-01-12 18:35:19 +010052#include <grp.h>
Willy Tarreaufc6c0322012-11-16 16:12:27 +010053#ifdef USE_CPU_AFFINITY
Willy Tarreaufc6c0322012-11-16 16:12:27 +010054#include <sched.h>
David Carlier42d9e5a2018-11-12 16:22:19 +000055#if defined(__FreeBSD__) || defined(__DragonFly__)
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +020056#include <sys/param.h>
David Carlier42d9e5a2018-11-12 16:22:19 +000057#ifdef __FreeBSD__
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +020058#include <sys/cpuset.h>
David Carlier42d9e5a2018-11-12 16:22:19 +000059#endif
David Carlier6d5c8412017-11-29 11:02:32 +000060#include <pthread_np.h>
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +020061#endif
David Carlier5e4c8e22019-09-13 05:12:58 +010062#ifdef __APPLE__
63#include <mach/mach_types.h>
64#include <mach/thread_act.h>
65#include <mach/thread_policy.h>
66#endif
Willy Tarreaufc6c0322012-11-16 16:12:27 +010067#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +020068
Willy Tarreau636848a2019-04-15 19:38:50 +020069#if defined(USE_PRCTL)
70#include <sys/prctl.h>
71#endif
72
Willy Tarreaubaaee002006-06-26 02:48:02 +020073#ifdef DEBUG_FULL
74#include <assert.h>
75#endif
Tim Duesterhusd6942c82017-11-20 15:58:35 +010076#if defined(USE_SYSTEMD)
77#include <systemd/sd-daemon.h>
78#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +020079
Willy Tarreau6c3a6812020-03-06 18:57:15 +010080#include <import/sha1.h>
81
Willy Tarreaub2551052020-06-09 09:07:15 +020082#include <haproxy/acl.h>
Amaury Denoyelle68fd7e42021-03-25 17:15:52 +010083#include <haproxy/action.h>
Willy Tarreaub2551052020-06-09 09:07:15 +020084#include <haproxy/activity.h>
85#include <haproxy/api.h>
86#include <haproxy/arg.h>
87#include <haproxy/auth.h>
Willy Tarreau8d366972020-05-27 16:10:29 +020088#include <haproxy/base64.h>
Willy Tarreaub2551052020-06-09 09:07:15 +020089#include <haproxy/capture-t.h>
Willy Tarreau6be78492020-06-05 00:00:29 +020090#include <haproxy/cfgparse.h>
Willy Tarreauc13ed532020-06-02 10:22:45 +020091#include <haproxy/chunk.h>
Willy Tarreau83487a82020-06-04 20:19:54 +020092#include <haproxy/cli.h>
Willy Tarreau7ea393d2020-06-04 18:02:10 +020093#include <haproxy/connection.h>
Willy Tarreaueb92deb2020-06-04 10:53:16 +020094#include <haproxy/dns.h>
Willy Tarreau2741c8c2020-06-02 11:28:02 +020095#include <haproxy/dynbuf.h>
Willy Tarreau8d366972020-05-27 16:10:29 +020096#include <haproxy/errors.h>
Willy Tarreaub2551052020-06-09 09:07:15 +020097#include <haproxy/fd.h>
Willy Tarreauc7babd82020-06-04 21:29:29 +020098#include <haproxy/filters.h>
Willy Tarreaub2551052020-06-09 09:07:15 +020099#include <haproxy/global.h>
Willy Tarreau86416052020-06-04 09:20:54 +0200100#include <haproxy/hlua.h>
Willy Tarreauc761f842020-06-04 11:40:28 +0200101#include <haproxy/http_rules.h>
Willy Tarreau853b2972020-05-27 18:01:47 +0200102#include <haproxy/list.h>
Willy Tarreau213e9902020-06-04 14:58:24 +0200103#include <haproxy/listener.h>
Willy Tarreauaeed4a82020-06-04 22:01:04 +0200104#include <haproxy/log.h>
Willy Tarreaub5abe5b2020-06-04 14:07:37 +0200105#include <haproxy/mworker.h>
Willy Tarreau7a00efb2020-06-02 17:02:59 +0200106#include <haproxy/namespace.h>
Willy Tarreau6131d6a2020-06-02 16:48:09 +0200107#include <haproxy/net_helper.h>
Willy Tarreau6019fab2020-05-27 16:26:00 +0200108#include <haproxy/openssl-compat.h>
Willy Tarreau225a90a2020-06-04 15:06:28 +0200109#include <haproxy/pattern.h>
Willy Tarreau3c2a7c22020-06-04 18:38:21 +0200110#include <haproxy/peers.h>
Willy Tarreaub2551052020-06-09 09:07:15 +0200111#include <haproxy/pool.h>
112#include <haproxy/protocol.h>
Willy Tarreaubf3b06b2020-08-26 10:23:40 +0200113#include <haproxy/proto_tcp.h>
Willy Tarreaua264d962020-06-04 22:29:18 +0200114#include <haproxy/proxy.h>
Willy Tarreau7cd8b6e2020-06-02 17:32:26 +0200115#include <haproxy/regex.h>
Willy Tarreaub2551052020-06-09 09:07:15 +0200116#include <haproxy/sample.h>
Willy Tarreau1e56f922020-06-04 23:20:13 +0200117#include <haproxy/server.h>
Willy Tarreau48d25b32020-06-04 18:58:52 +0200118#include <haproxy/session.h>
Willy Tarreau3727a8a2020-06-04 17:37:26 +0200119#include <haproxy/signal.h>
Willy Tarreau063d47d2020-08-28 16:29:53 +0200120#include <haproxy/sock.h>
Willy Tarreau25140cc2020-08-28 15:40:33 +0200121#include <haproxy/sock_inet.h>
Willy Tarreau209108d2020-06-04 20:30:20 +0200122#include <haproxy/ssl_sock.h>
Amaury Denoyelleee63d4b2020-10-05 11:49:42 +0200123#include <haproxy/stats-t.h>
Willy Tarreaudfd3de82020-06-04 23:46:14 +0200124#include <haproxy/stream.h>
Willy Tarreaucea0e1b2020-06-04 17:25:40 +0200125#include <haproxy/task.h>
Willy Tarreau3f567e42020-05-28 15:29:19 +0200126#include <haproxy/thread.h>
Willy Tarreaub2551052020-06-09 09:07:15 +0200127#include <haproxy/time.h>
128#include <haproxy/tools.h>
129#include <haproxy/uri_auth-t.h>
Willy Tarreaua1718922020-06-04 16:25:31 +0200130#include <haproxy/vars.h>
Willy Tarreaub2551052020-06-09 09:07:15 +0200131#include <haproxy/version.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200132
Willy Tarreaubaaee002006-06-26 02:48:02 +0200133
Willy Tarreau7b5654f2019-03-29 21:30:17 +0100134/* array of init calls for older platforms */
135DECLARE_INIT_STAGES;
136
Willy Tarreau477ecd82010-01-03 21:12:30 +0100137/* list of config files */
138static struct list cfg_cfgfiles = LIST_HEAD_INIT(cfg_cfgfiles);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200139int pid; /* current process id */
Willy Tarreau28156642007-11-26 16:13:36 +0100140int relative_pid = 1; /* process id starting at 1 */
Willy Tarreau387bd4f2017-11-10 19:08:14 +0100141unsigned long pid_bit = 1; /* bit corresponding to the process id */
Willy Tarreaua38a7172019-02-02 17:11:28 +0100142unsigned long all_proc_mask = 1; /* mask of all processes */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200143
Willy Tarreauf8ea00e2020-03-12 17:24:53 +0100144volatile unsigned long sleeping_thread_mask = 0; /* Threads that are about to sleep in poll() */
Willy Tarreau4b3f27b2020-03-12 17:28:01 +0100145volatile unsigned long stopping_thread_mask = 0; /* Threads acknowledged stopping */
Willy Tarreauf8ea00e2020-03-12 17:24:53 +0100146
Willy Tarreaubaaee002006-06-26 02:48:02 +0200147/* global options */
148struct global global = {
Cyril Bonté203ec5a2017-03-23 22:44:13 +0100149 .hard_stop_after = TICK_ETERNITY,
Willy Tarreau247a13a2012-11-15 17:38:15 +0100150 .nbproc = 1,
Willy Tarreau149ab772019-01-26 14:27:06 +0100151 .nbthread = 0,
William Lallemand5f232402012-04-05 18:02:55 +0200152 .req_count = 0,
William Lallemand0f99e342011-10-12 17:50:54 +0200153 .logsrvs = LIST_HEAD_INIT(global.logsrvs),
William Lallemand9d5f5482012-11-07 16:12:57 +0100154 .maxzlibmem = 0,
William Lallemandd85f9172012-11-09 17:05:39 +0100155 .comp_rate_lim = 0,
Emeric Brun850efd52014-01-29 12:24:34 +0100156 .ssl_server_verify = SSL_SERVER_VERIFY_REQUIRED,
Emeric Bruned760922010-10-22 17:59:25 +0200157 .unix_bind = {
158 .ux = {
159 .uid = -1,
160 .gid = -1,
161 .mode = 0,
162 }
163 },
Willy Tarreau27a674e2009-08-17 07:23:33 +0200164 .tune = {
Willy Tarreau7ac908b2019-02-27 12:02:18 +0100165 .options = GTUNE_LISTENER_MQ,
Willy Tarreauc77d3642018-12-12 06:19:42 +0100166 .bufsize = (BUFSIZE + 2*sizeof(void *) - 1) & -(2*sizeof(void *)),
Christopher Faulet546c4692020-01-22 14:31:21 +0100167 .maxrewrite = MAXREWRITE,
Willy Tarreaua24adf02014-11-27 01:11:56 +0100168 .reserved_bufs = RESERVED_BUFS,
Willy Tarreauf3045d22015-04-29 16:24:50 +0200169 .pattern_cache = DEFAULT_PAT_LRU_SIZE,
Olivier Houchard88698d92019-04-16 19:07:22 +0200170 .pool_low_ratio = 20,
171 .pool_high_ratio = 25,
Christopher Faulet41ba36f2019-07-19 09:36:45 +0200172 .max_http_hdr = MAX_HTTP_HDR,
Emeric Brunfc32aca2012-09-03 12:10:29 +0200173#ifdef USE_OPENSSL
Emeric Brun46635772012-11-14 11:32:56 +0100174 .sslcachesize = SSLCACHESIZE,
Emeric Brunfc32aca2012-09-03 12:10:29 +0200175#endif
William Lallemandf3747832012-11-09 12:33:10 +0100176 .comp_maxlevel = 1,
Willy Tarreau7e312732014-02-12 16:35:14 +0100177#ifdef DEFAULT_IDLE_TIMER
178 .idle_timer = DEFAULT_IDLE_TIMER,
179#else
180 .idle_timer = 1000, /* 1 second */
181#endif
Willy Tarreau27a674e2009-08-17 07:23:33 +0200182 },
Emeric Brun76d88952012-10-05 15:47:31 +0200183#ifdef USE_OPENSSL
184#ifdef DEFAULT_MAXSSLCONN
Willy Tarreau403edff2012-09-06 11:58:37 +0200185 .maxsslconn = DEFAULT_MAXSSLCONN,
186#endif
Emeric Brun76d88952012-10-05 15:47:31 +0200187#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200188 /* others NULL OK */
189};
190
191/*********************************************************************/
192
193int stopping; /* non zero means stopping in progress */
Cyril Bonté203ec5a2017-03-23 22:44:13 +0100194int killed; /* non zero means a hard-stop is triggered */
Willy Tarreauaf7ad002010-08-31 15:39:26 +0200195int jobs = 0; /* number of active jobs (conns, listeners, active tasks, ...) */
William Lallemanda7199262018-11-16 16:57:20 +0100196int unstoppable_jobs = 0; /* number of active jobs that can't be stopped during a soft stop */
Willy Tarreau199ad242018-11-05 16:31:22 +0100197int active_peers = 0; /* number of active peers (connection attempts and connected) */
Willy Tarreau2d372c22018-11-05 17:12:27 +0100198int connected_peers = 0; /* number of connected peers (verified ones) */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200199
Ilya Shipitsin46a030c2020-07-05 16:36:08 +0500200/* Here we store information about the pids of the processes we may pause
Willy Tarreaubaaee002006-06-26 02:48:02 +0200201 * or kill. We will send them a signal every 10 ms until we can bind to all
202 * our ports. With 200 retries, that's about 2 seconds.
203 */
204#define MAX_START_RETRIES 200
Willy Tarreaubaaee002006-06-26 02:48:02 +0200205static int *oldpids = NULL;
206static int oldpids_sig; /* use USR1 or TERM */
207
Olivier Houchardf73629d2017-04-05 22:33:04 +0200208/* Path to the unix socket we use to retrieve listener sockets from the old process */
209static const char *old_unixsocket;
210
William Lallemand85b0bd92017-06-01 17:38:53 +0200211static char *cur_unixsocket = NULL;
212
William Lallemandcb11fd22017-06-01 17:38:52 +0200213int atexit_flag = 0;
214
Willy Tarreaubb545b42010-08-25 12:58:59 +0200215int nb_oldpids = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200216const int zero = 0;
217const int one = 1;
Alexandre Cassen87ea5482007-10-11 20:48:58 +0200218const struct linger nolinger = { .l_onoff = 1, .l_linger = 0 };
Willy Tarreaubaaee002006-06-26 02:48:02 +0200219
Willy Tarreau1d21e0a2010-03-12 21:58:54 +0100220char hostname[MAX_HOSTNAME_LEN];
Dragan Dosen4f014152020-06-18 16:56:47 +0200221char *localpeer = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200222
William Lallemand00417412020-06-05 14:08:41 +0200223static char **old_argv = NULL; /* previous argv but cleaned up */
William Lallemand73b85e72017-06-01 17:38:51 +0200224
William Lallemandbc193052018-09-11 10:06:26 +0200225struct list proc_list = LIST_HEAD_INIT(proc_list);
226
227int master = 0; /* 1 if in master, 0 if in child */
Willy Tarreaubf696402019-03-01 10:09:28 +0100228unsigned int rlim_fd_cur_at_boot = 0;
229unsigned int rlim_fd_max_at_boot = 0;
William Lallemandbc193052018-09-11 10:06:26 +0200230
Willy Tarreau6c3a6812020-03-06 18:57:15 +0100231/* per-boot randomness */
232unsigned char boot_seed[20]; /* per-boot random seed (160 bits initially) */
233
William Lallemand16dd1b32018-11-19 18:46:18 +0100234struct mworker_proc *proc_self = NULL;
William Lallemandbc193052018-09-11 10:06:26 +0200235
William Lallemandb3f2be32018-09-11 10:06:18 +0200236static void *run_thread_poll_loop(void *data);
237
Willy Tarreauff055502014-04-28 22:27:06 +0200238/* bitfield of a few warnings to emit just once (WARN_*) */
239unsigned int warned = 0;
240
William Lallemande7361152018-10-26 14:47:36 +0200241/* master CLI configuration (-S flag) */
242struct list mworker_cli_conf = LIST_HEAD_INIT(mworker_cli_conf);
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100243
244/* These are strings to be reported in the output of "haproxy -vv". They may
245 * either be constants (in which case must_free must be zero) or dynamically
246 * allocated strings to pass to free() on exit, and in this case must_free
247 * must be non-zero.
248 */
249struct list build_opts_list = LIST_HEAD_INIT(build_opts_list);
250struct build_opts_str {
251 struct list list;
252 const char *str;
253 int must_free;
254};
255
Willy Tarreaubaaee002006-06-26 02:48:02 +0200256/*********************************************************************/
257/* general purpose functions ***************************************/
258/*********************************************************************/
259
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100260/* used to register some build option strings at boot. Set must_free to
261 * non-zero if the string must be freed upon exit.
262 */
263void hap_register_build_opts(const char *str, int must_free)
264{
265 struct build_opts_str *b;
266
267 b = calloc(1, sizeof(*b));
268 if (!b) {
269 fprintf(stderr, "out of memory\n");
270 exit(1);
271 }
272 b->str = str;
273 b->must_free = must_free;
274 LIST_ADDQ(&build_opts_list, &b->list);
275}
276
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100277static void display_version()
Willy Tarreaubaaee002006-06-26 02:48:02 +0200278{
Tim Duesterhusdfad6a42020-04-18 16:02:47 +0200279 struct utsname utsname;
280
Willy Tarreau08dd2022019-11-21 18:07:30 +0100281 printf("HA-Proxy version %s %s - https://haproxy.org/\n"
282 PRODUCT_STATUS "\n", haproxy_version, haproxy_date);
Willy Tarreau47479eb2019-11-21 18:48:20 +0100283
284 if (strlen(PRODUCT_URL_BUGS) > 0) {
285 char base_version[20];
286 int dots = 0;
287 char *del;
288
289 /* only retrieve the base version without distro-specific extensions */
290 for (del = haproxy_version; *del; del++) {
291 if (*del == '.')
292 dots++;
293 else if (*del < '0' || *del > '9')
294 break;
295 }
296
297 strlcpy2(base_version, haproxy_version, del - haproxy_version + 1);
298 if (dots < 2)
299 printf("Known bugs: https://github.com/haproxy/haproxy/issues?q=is:issue+is:open\n");
300 else
301 printf("Known bugs: " PRODUCT_URL_BUGS "\n", base_version);
302 }
Tim Duesterhusdfad6a42020-04-18 16:02:47 +0200303
304 if (uname(&utsname) == 0) {
305 printf("Running on: %s %s %s %s\n", utsname.sysname, utsname.release, utsname.version, utsname.machine);
306 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200307}
308
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100309static void display_build_opts()
Willy Tarreau7b066db2007-12-02 11:28:59 +0100310{
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100311 struct build_opts_str *item;
312
Willy Tarreau7b066db2007-12-02 11:28:59 +0100313 printf("Build options :"
314#ifdef BUILD_TARGET
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100315 "\n TARGET = " BUILD_TARGET
Willy Tarreau7b066db2007-12-02 11:28:59 +0100316#endif
317#ifdef BUILD_CPU
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100318 "\n CPU = " BUILD_CPU
Willy Tarreau7b066db2007-12-02 11:28:59 +0100319#endif
320#ifdef BUILD_CC
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100321 "\n CC = " BUILD_CC
322#endif
323#ifdef BUILD_CFLAGS
324 "\n CFLAGS = " BUILD_CFLAGS
Willy Tarreau7b066db2007-12-02 11:28:59 +0100325#endif
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100326#ifdef BUILD_OPTIONS
327 "\n OPTIONS = " BUILD_OPTIONS
Willy Tarreau7b066db2007-12-02 11:28:59 +0100328#endif
Tim Duesterhusc8d19702020-11-21 18:07:59 +0100329#ifdef BUILD_DEBUG
330 "\n DEBUG = " BUILD_DEBUG
331#endif
Willy Tarreau7728ed32019-03-27 13:20:08 +0100332#ifdef BUILD_FEATURES
333 "\n\nFeature list : " BUILD_FEATURES
334#endif
Willy Tarreau27a674e2009-08-17 07:23:33 +0200335 "\n\nDefault settings :"
Willy Tarreauca783d42019-03-13 10:03:07 +0100336 "\n bufsize = %d, maxrewrite = %d, maxpollevents = %d"
Willy Tarreau27a674e2009-08-17 07:23:33 +0200337 "\n\n",
Willy Tarreauca783d42019-03-13 10:03:07 +0100338 BUFSIZE, MAXREWRITE, MAX_POLL_EVENTS);
Willy Tarreaube5b6852009-10-03 18:57:08 +0200339
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100340 list_for_each_entry(item, &build_opts_list, list) {
341 puts(item->str);
342 }
343
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +0100344 putchar('\n');
345
Willy Tarreaube5b6852009-10-03 18:57:08 +0200346 list_pollers(stdout);
347 putchar('\n');
Christopher Faulet98d9fe22018-04-10 14:37:32 +0200348 list_mux_proto(stdout);
349 putchar('\n');
Willy Tarreau679bba12019-03-19 08:08:10 +0100350 list_services(stdout);
351 putchar('\n');
Christopher Fauletb3f4e142016-03-07 12:46:38 +0100352 list_filters(stdout);
353 putchar('\n');
Willy Tarreau7b066db2007-12-02 11:28:59 +0100354}
355
Willy Tarreaubaaee002006-06-26 02:48:02 +0200356/*
357 * This function prints the command line usage and exits
358 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100359static void usage(char *name)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200360{
361 display_version();
362 fprintf(stderr,
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200363 "Usage : %s [-f <cfgfile|cfgdir>]* [ -vdV"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200364 "D ] [ -n <maxconn> ] [ -N <maxpconn> ]\n"
Willy Tarreaua088d312015-10-08 11:58:48 +0200365 " [ -p <pidfile> ] [ -m <max megs> ] [ -C <dir> ] [-- <cfgfile>*]\n"
Willy Tarreau7b066db2007-12-02 11:28:59 +0100366 " -v displays version ; -vv shows known build options.\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200367 " -d enters debug mode ; -db only disables background mode.\n"
Willy Tarreau6e064432012-05-08 15:40:42 +0200368 " -dM[<byte>] poisons memory with <byte> (defaults to 0x50)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200369 " -V enters verbose mode (disables quiet mode)\n"
Willy Tarreau576132e2011-09-10 19:26:56 +0200370 " -D goes daemon ; -C changes to <dir> before loading files.\n"
William Lallemand095ba4c2017-06-01 17:38:50 +0200371 " -W master-worker mode.\n"
Tim Duesterhusd6942c82017-11-20 15:58:35 +0100372#if defined(USE_SYSTEMD)
373 " -Ws master-worker mode with systemd notify support.\n"
374#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200375 " -q quiet mode : don't display messages\n"
Willy Tarreau5d01a632009-06-22 16:02:30 +0200376 " -c check mode : only check config files and exit\n"
Willy Tarreauca783d42019-03-13 10:03:07 +0100377 " -n sets the maximum total # of connections (uses ulimit -n)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200378 " -m limits the usable amount of memory (in MB)\n"
379 " -N sets the default, per-proxy maximum # of connections (%d)\n"
Emeric Brun2b920a12010-09-23 18:30:22 +0200380 " -L set local peer name (default to hostname)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200381 " -p writes pids of all children to this file\n"
Willy Tarreaue5733232019-05-22 19:24:06 +0200382#if defined(USE_EPOLL)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200383 " -de disables epoll() usage even when available\n"
384#endif
Willy Tarreaue5733232019-05-22 19:24:06 +0200385#if defined(USE_KQUEUE)
Willy Tarreau1e63130a2007-04-09 12:03:06 +0200386 " -dk disables kqueue() usage even when available\n"
387#endif
Willy Tarreaue5733232019-05-22 19:24:06 +0200388#if defined(USE_EVPORTS)
Emmanuel Hocdet0ba4f482019-04-08 16:53:32 +0000389 " -dv disables event ports usage even when available\n"
390#endif
Willy Tarreaue5733232019-05-22 19:24:06 +0200391#if defined(USE_POLL)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200392 " -dp disables poll() usage even when available\n"
393#endif
Willy Tarreaue5733232019-05-22 19:24:06 +0200394#if defined(USE_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +0100395 " -dS disables splice usage (broken on old kernels)\n"
396#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +0200397#if defined(USE_GETADDRINFO)
398 " -dG disables getaddrinfo() usage\n"
399#endif
Lukas Tribusa0bcbdc2016-09-12 21:42:20 +0000400#if defined(SO_REUSEPORT)
401 " -dR disables SO_REUSEPORT usage\n"
402#endif
Willy Tarreau3eed10e2016-11-07 21:03:16 +0100403 " -dr ignores server address resolution failures\n"
Emeric Brun850efd52014-01-29 12:24:34 +0100404 " -dV disables SSL verify on servers side\n"
Willy Tarreau3eb10b82020-04-15 16:42:39 +0200405 " -dW fails if any warning is emitted\n"
Amaury Denoyelle7b01a8d2021-03-29 10:29:07 +0200406 " -dD diagnostic mode : warn about suspicious configuration statements\n"
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +0200407 " -sf/-st [pid ]* finishes/terminates old pids.\n"
Olivier Houchardf73629d2017-04-05 22:33:04 +0200408 " -x <unix_socket> get listening sockets from a unix socket\n"
William Lallemand63329e32019-06-13 17:03:37 +0200409 " -S <bind>[,<bind options>...] new master CLI\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200410 "\n",
Willy Tarreauca783d42019-03-13 10:03:07 +0100411 name, cfg_maxpconn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200412 exit(1);
413}
414
415
416
417/*********************************************************************/
418/* more specific functions ***************************************/
419/*********************************************************************/
420
William Lallemand73b85e72017-06-01 17:38:51 +0200421/* sends the signal <sig> to all pids found in <oldpids>. Returns the number of
422 * pids the signal was correctly delivered to.
423 */
William Lallemande25473c2019-04-01 11:29:56 +0200424int tell_old_pids(int sig)
William Lallemand73b85e72017-06-01 17:38:51 +0200425{
426 int p;
427 int ret = 0;
428 for (p = 0; p < nb_oldpids; p++)
429 if (kill(oldpids[p], sig) == 0)
430 ret++;
431 return ret;
432}
433
William Lallemand75ea0a02017-11-15 19:02:58 +0100434/*
William Lallemand73b85e72017-06-01 17:38:51 +0200435 * remove a pid forom the olpid array and decrease nb_oldpids
436 * return 1 pid was found otherwise return 0
437 */
438
439int delete_oldpid(int pid)
440{
441 int i;
442
443 for (i = 0; i < nb_oldpids; i++) {
444 if (oldpids[i] == pid) {
445 oldpids[i] = oldpids[nb_oldpids - 1];
446 oldpids[nb_oldpids - 1] = 0;
447 nb_oldpids--;
448 return 1;
449 }
450 }
451 return 0;
452}
453
William Lallemand85b0bd92017-06-01 17:38:53 +0200454
455static void get_cur_unixsocket()
456{
457 /* if -x was used, try to update the stat socket if not available anymore */
Willy Tarreau4975d142021-03-13 11:00:33 +0100458 if (global.cli_fe) {
William Lallemand85b0bd92017-06-01 17:38:53 +0200459 struct bind_conf *bind_conf;
460
461 /* pass through all stats socket */
Willy Tarreau4975d142021-03-13 11:00:33 +0100462 list_for_each_entry(bind_conf, &global.cli_fe->conf.bind, by_fe) {
William Lallemand85b0bd92017-06-01 17:38:53 +0200463 struct listener *l;
464
465 list_for_each_entry(l, &bind_conf->listeners, by_bind) {
466
Willy Tarreau37159062020-08-27 07:48:42 +0200467 if (l->rx.addr.ss_family == AF_UNIX &&
William Lallemand85b0bd92017-06-01 17:38:53 +0200468 (bind_conf->level & ACCESS_FD_LISTENERS)) {
469 const struct sockaddr_un *un;
470
Willy Tarreau37159062020-08-27 07:48:42 +0200471 un = (struct sockaddr_un *)&l->rx.addr;
William Lallemand85b0bd92017-06-01 17:38:53 +0200472 /* priority to old_unixsocket */
473 if (!cur_unixsocket) {
474 cur_unixsocket = strdup(un->sun_path);
475 } else {
Tim Duesterhuse5ff1412021-01-02 22:31:53 +0100476 if (old_unixsocket && strcmp(un->sun_path, old_unixsocket) == 0) {
William Lallemand85b0bd92017-06-01 17:38:53 +0200477 free(cur_unixsocket);
478 cur_unixsocket = strdup(old_unixsocket);
479 return;
480 }
481 }
482 }
483 }
484 }
485 }
486 if (!cur_unixsocket && old_unixsocket)
487 cur_unixsocket = strdup(old_unixsocket);
488}
489
William Lallemand73b85e72017-06-01 17:38:51 +0200490/*
491 * When called, this function reexec haproxy with -sf followed by current
Joseph Herlant03420902018-11-15 10:41:50 -0800492 * children PIDs and possibly old children PIDs if they didn't leave yet.
William Lallemand73b85e72017-06-01 17:38:51 +0200493 */
William Lallemanda57b7e32018-12-14 21:11:31 +0100494void mworker_reload()
William Lallemand73b85e72017-06-01 17:38:51 +0200495{
William Lallemand00417412020-06-05 14:08:41 +0200496 char **next_argv = NULL;
497 int old_argc = 0; /* previous number of argument */
William Lallemand73b85e72017-06-01 17:38:51 +0200498 int next_argc = 0;
William Lallemand00417412020-06-05 14:08:41 +0200499 int i = 0;
William Lallemand73b85e72017-06-01 17:38:51 +0200500 char *msg = NULL;
Willy Tarreau8dca1952019-03-01 10:21:55 +0100501 struct rlimit limit;
William Lallemand7c756a82018-11-26 11:53:40 +0100502 struct per_thread_deinit_fct *ptdf;
William Lallemand73b85e72017-06-01 17:38:51 +0200503
504 mworker_block_signals();
Tim Duesterhusd6942c82017-11-20 15:58:35 +0100505#if defined(USE_SYSTEMD)
506 if (global.tune.options & GTUNE_USE_SYSTEMD)
507 sd_notify(0, "RELOADING=1");
508#endif
William Lallemand73b85e72017-06-01 17:38:51 +0200509 setenv("HAPROXY_MWORKER_REEXEC", "1", 1);
510
William Lallemandbc193052018-09-11 10:06:26 +0200511 mworker_proc_list_to_env(); /* put the children description in the env */
512
William Lallemand7c756a82018-11-26 11:53:40 +0100513 /* during the reload we must ensure that every FDs that can't be
514 * reuse (ie those that are not referenced in the proc_list)
515 * are closed or they will leak. */
516
517 /* close the listeners FD */
518 mworker_cli_proxy_stop();
William Lallemand16866672019-06-24 17:40:48 +0200519
520 if (getenv("HAPROXY_MWORKER_WAIT_ONLY") == NULL) {
521 /* close the poller FD and the thread waker pipe FD */
522 list_for_each_entry(ptdf, &per_thread_deinit_list, list)
523 ptdf->fct();
524 if (fdtab)
525 deinit_pollers();
526 }
Ilya Shipitsin98a9e1b2021-02-19 23:42:53 +0500527#ifdef HAVE_SSL_RAND_KEEP_RANDOM_DEVICES_OPEN
William Lallemand5fdb5b32019-10-15 14:04:08 +0200528 /* close random device FDs */
529 RAND_keep_random_devices_open(0);
Rob Allen56996da2019-05-03 09:11:32 +0100530#endif
William Lallemand7c756a82018-11-26 11:53:40 +0100531
Willy Tarreau8dca1952019-03-01 10:21:55 +0100532 /* restore the initial FD limits */
533 limit.rlim_cur = rlim_fd_cur_at_boot;
534 limit.rlim_max = rlim_fd_max_at_boot;
535 if (setrlimit(RLIMIT_NOFILE, &limit) == -1) {
536 getrlimit(RLIMIT_NOFILE, &limit);
537 ha_warning("Failed to restore initial FD limits (cur=%u max=%u), using cur=%u max=%u\n",
538 rlim_fd_cur_at_boot, rlim_fd_max_at_boot,
539 (unsigned int)limit.rlim_cur, (unsigned int)limit.rlim_max);
540 }
541
William Lallemand73b85e72017-06-01 17:38:51 +0200542 /* compute length */
William Lallemand00417412020-06-05 14:08:41 +0200543 while (old_argv[old_argc])
544 old_argc++;
William Lallemand73b85e72017-06-01 17:38:51 +0200545
William Lallemand85b0bd92017-06-01 17:38:53 +0200546 /* 1 for haproxy -sf, 2 for -x /socket */
Tim Duesterhuse52b6e52020-09-12 20:26:43 +0200547 next_argv = calloc(old_argc + 1 + 2 + mworker_child_nb() + nb_oldpids + 1,
548 sizeof(*next_argv));
William Lallemand73b85e72017-06-01 17:38:51 +0200549 if (next_argv == NULL)
550 goto alloc_error;
551
William Lallemand00417412020-06-05 14:08:41 +0200552 /* copy the program name */
553 next_argv[next_argc++] = old_argv[0];
554
555 /* insert the new options just after argv[0] in case we have a -- */
556
William Lallemand73b85e72017-06-01 17:38:51 +0200557 /* add -sf <PID>* to argv */
William Lallemand3f128872019-04-01 11:29:59 +0200558 if (mworker_child_nb() > 0) {
559 struct mworker_proc *child;
560
William Lallemand73b85e72017-06-01 17:38:51 +0200561 next_argv[next_argc++] = "-sf";
William Lallemand3f128872019-04-01 11:29:59 +0200562
563 list_for_each_entry(child, &proc_list, list) {
William Lallemand677e2f22019-11-19 17:04:18 +0100564 if (!(child->options & (PROC_O_TYPE_WORKER|PROC_O_TYPE_PROG)) || child->pid <= -1 )
William Lallemand3f128872019-04-01 11:29:59 +0200565 continue;
William Lallemand00417412020-06-05 14:08:41 +0200566 if ((next_argv[next_argc++] = memprintf(&msg, "%d", child->pid)) == NULL)
William Lallemand73b85e72017-06-01 17:38:51 +0200567 goto alloc_error;
568 msg = NULL;
569 }
570 }
William Lallemand2bf6d622017-06-20 11:20:23 +0200571 /* add the -x option with the stat socket */
William Lallemand85b0bd92017-06-01 17:38:53 +0200572 if (cur_unixsocket) {
William Lallemand2bf6d622017-06-20 11:20:23 +0200573 next_argv[next_argc++] = "-x";
574 next_argv[next_argc++] = (char *)cur_unixsocket;
William Lallemand85b0bd92017-06-01 17:38:53 +0200575 }
576
William Lallemand00417412020-06-05 14:08:41 +0200577 /* copy the previous options */
578 for (i = 1; i < old_argc; i++)
579 next_argv[next_argc++] = old_argv[i];
580
Christopher Faulet767a84b2017-11-24 16:50:31 +0100581 ha_warning("Reexecuting Master process\n");
Willy Tarreaue0d86e22019-08-26 10:37:39 +0200582 signal(SIGPROF, SIG_IGN);
Tim Duesterhus0436ab72017-11-12 17:39:18 +0100583 execvp(next_argv[0], next_argv);
William Lallemand73b85e72017-06-01 17:38:51 +0200584
Christopher Faulet767a84b2017-11-24 16:50:31 +0100585 ha_warning("Failed to reexecute the master process [%d]: %s\n", pid, strerror(errno));
Willy Tarreau61cfdf42021-02-20 10:46:51 +0100586 ha_free(&next_argv);
William Lallemand722d4ca2017-11-15 19:02:55 +0100587 return;
588
William Lallemand73b85e72017-06-01 17:38:51 +0200589alloc_error:
Willy Tarreau61cfdf42021-02-20 10:46:51 +0100590 ha_free(&next_argv);
Joseph Herlant07a08342018-11-15 10:43:05 -0800591 ha_warning("Failed to reexecute the master process [%d]: Cannot allocate memory\n", pid);
William Lallemand73b85e72017-06-01 17:38:51 +0200592 return;
593}
594
William Lallemandb3f2be32018-09-11 10:06:18 +0200595static void mworker_loop()
596{
597
598#if defined(USE_SYSTEMD)
599 if (global.tune.options & GTUNE_USE_SYSTEMD)
600 sd_notifyf(0, "READY=1\nMAINPID=%lu", (unsigned long)getpid());
601#endif
Willy Tarreaud83b6c12019-04-18 11:31:36 +0200602 /* Busy polling makes no sense in the master :-) */
603 global.tune.options &= ~GTUNE_BUSY_POLLING;
William Lallemandb3f2be32018-09-11 10:06:18 +0200604
William Lallemandbc193052018-09-11 10:06:26 +0200605 master = 1;
606
Willy Tarreaud26c9f92019-12-11 14:24:07 +0100607 signal_unregister(SIGTTIN);
608 signal_unregister(SIGTTOU);
William Lallemand0564d412018-11-20 17:36:53 +0100609 signal_unregister(SIGUSR1);
610 signal_unregister(SIGHUP);
611 signal_unregister(SIGQUIT);
612
William Lallemandb3f2be32018-09-11 10:06:18 +0200613 signal_register_fct(SIGTERM, mworker_catch_sigterm, SIGTERM);
614 signal_register_fct(SIGUSR1, mworker_catch_sigterm, SIGUSR1);
Willy Tarreaud26c9f92019-12-11 14:24:07 +0100615 signal_register_fct(SIGTTIN, mworker_broadcast_signal, SIGTTIN);
616 signal_register_fct(SIGTTOU, mworker_broadcast_signal, SIGTTOU);
William Lallemandb3f2be32018-09-11 10:06:18 +0200617 signal_register_fct(SIGINT, mworker_catch_sigterm, SIGINT);
618 signal_register_fct(SIGHUP, mworker_catch_sighup, SIGHUP);
619 signal_register_fct(SIGUSR2, mworker_catch_sighup, SIGUSR2);
620 signal_register_fct(SIGCHLD, mworker_catch_sigchld, SIGCHLD);
621
622 mworker_unblock_signals();
623 mworker_cleanlisteners();
William Lallemand27f3fa52018-12-06 14:05:20 +0100624 mworker_cleantasks();
William Lallemandb3f2be32018-09-11 10:06:18 +0200625
William Lallemandbc193052018-09-11 10:06:26 +0200626 mworker_catch_sigchld(NULL); /* ensure we clean the children in case
627 some SIGCHLD were lost */
628
William Lallemandb3f2be32018-09-11 10:06:18 +0200629 global.nbthread = 1;
630 relative_pid = 1;
631 pid_bit = 1;
Willy Tarreaua38a7172019-02-02 17:11:28 +0100632 all_proc_mask = 1;
William Lallemandb3f2be32018-09-11 10:06:18 +0200633
William Lallemand2672eb92018-12-14 15:52:39 +0100634#ifdef USE_THREAD
635 tid_bit = 1;
636 all_threads_mask = 1;
637#endif
638
William Lallemandb3f2be32018-09-11 10:06:18 +0200639 jobs++; /* this is the "master" job, we want to take care of the
640 signals even if there is no listener so the poll loop don't
641 leave */
642
643 fork_poller();
Willy Tarreaub4f7cc32019-05-03 09:27:30 +0200644 run_thread_poll_loop(0);
William Lallemandb3f2be32018-09-11 10:06:18 +0200645}
William Lallemandcb11fd22017-06-01 17:38:52 +0200646
647/*
648 * Reexec the process in failure mode, instead of exiting
649 */
650void reexec_on_failure()
651{
652 if (!atexit_flag)
653 return;
654
655 setenv("HAPROXY_MWORKER_WAIT_ONLY", "1", 1);
656
Christopher Faulet767a84b2017-11-24 16:50:31 +0100657 ha_warning("Reexecuting Master process in waitpid mode\n");
William Lallemandcb11fd22017-06-01 17:38:52 +0200658 mworker_reload();
William Lallemandcb11fd22017-06-01 17:38:52 +0200659}
William Lallemand73b85e72017-06-01 17:38:51 +0200660
661
662/*
Willy Tarreaud0807c32010-08-27 18:26:11 +0200663 * upon SIGUSR1, let's have a soft stop. Note that soft_stop() broadcasts
664 * a signal zero to all subscribers. This means that it's as easy as
665 * subscribing to signal 0 to get informed about an imminent shutdown.
Willy Tarreaubaaee002006-06-26 02:48:02 +0200666 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100667static void sig_soft_stop(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200668{
669 soft_stop();
Willy Tarreau24f4efa2010-08-27 17:56:48 +0200670 signal_unregister_handler(sh);
Willy Tarreaubafbe012017-11-24 17:34:44 +0100671 pool_gc(NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200672}
673
674/*
675 * upon SIGTTOU, we pause everything
676 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100677static void sig_pause(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200678{
Willy Tarreau775e0012020-09-24 16:36:26 +0200679 if (protocol_pause_all() & ERR_FATAL) {
680 const char *msg = "Some proxies refused to pause, performing soft stop now.\n";
Willy Tarreau0a002df2020-10-09 19:26:27 +0200681 ha_warning("%s", msg);
682 send_log(NULL, LOG_WARNING, "%s", msg);
Willy Tarreau775e0012020-09-24 16:36:26 +0200683 soft_stop();
684 }
Willy Tarreaubafbe012017-11-24 17:34:44 +0100685 pool_gc(NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200686}
687
688/*
689 * upon SIGTTIN, let's have a soft stop.
690 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100691static void sig_listen(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200692{
Willy Tarreau775e0012020-09-24 16:36:26 +0200693 if (protocol_resume_all() & ERR_FATAL) {
694 const char *msg = "Some proxies refused to resume, probably due to a conflict on a listening port. You may want to try again after the conflicting application is stopped, otherwise a restart might be needed to resume safe operations.\n";
Willy Tarreau0a002df2020-10-09 19:26:27 +0200695 ha_warning("%s", msg);
696 send_log(NULL, LOG_WARNING, "%s", msg);
Willy Tarreau775e0012020-09-24 16:36:26 +0200697 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200698}
699
700/*
701 * this function dumps every server's state when the process receives SIGHUP.
702 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100703static void sig_dump_state(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200704{
Olivier Houchardfbc74e82017-11-24 16:54:05 +0100705 struct proxy *p = proxies_list;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200706
Christopher Faulet767a84b2017-11-24 16:50:31 +0100707 ha_warning("SIGHUP received, dumping servers states.\n");
Willy Tarreaubaaee002006-06-26 02:48:02 +0200708 while (p) {
709 struct server *s = p->srv;
710
711 send_log(p, LOG_NOTICE, "SIGHUP received, dumping servers states for proxy %s.\n", p->id);
712 while (s) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100713 chunk_printf(&trash,
714 "SIGHUP: Server %s/%s is %s. Conn: %d act, %d pend, %lld tot.",
715 p->id, s->id,
Emeric Brun52a91d32017-08-31 14:41:55 +0200716 (s->cur_state != SRV_ST_STOPPED) ? "UP" : "DOWN",
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100717 s->cur_sess, s->nbpend, s->counters.cum_sess);
Willy Tarreau843b7cb2018-07-13 10:54:26 +0200718 ha_warning("%s\n", trash.area);
719 send_log(p, LOG_NOTICE, "%s\n", trash.area);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200720 s = s->next;
721 }
722
Willy Tarreau5fcc8f12007-09-17 11:27:09 +0200723 /* FIXME: those info are a bit outdated. We should be able to distinguish between FE and BE. */
724 if (!p->srv) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100725 chunk_printf(&trash,
726 "SIGHUP: Proxy %s has no servers. Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
727 p->id,
728 p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreau5fcc8f12007-09-17 11:27:09 +0200729 } else if (p->srv_act == 0) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100730 chunk_printf(&trash,
731 "SIGHUP: Proxy %s %s ! Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
732 p->id,
733 (p->srv_bck) ? "is running on backup servers" : "has no server available",
734 p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200735 } else {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100736 chunk_printf(&trash,
737 "SIGHUP: Proxy %s has %d active servers and %d backup servers available."
738 " Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
739 p->id, p->srv_act, p->srv_bck,
740 p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200741 }
Willy Tarreau843b7cb2018-07-13 10:54:26 +0200742 ha_warning("%s\n", trash.area);
743 send_log(p, LOG_NOTICE, "%s\n", trash.area);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200744
745 p = p->next;
746 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200747}
748
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100749static void dump(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200750{
Willy Tarreauc6ca1a02007-05-13 19:43:47 +0200751 /* dump memory usage then free everything possible */
752 dump_pools();
Willy Tarreaubafbe012017-11-24 17:34:44 +0100753 pool_gc(NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200754}
755
William Lallemande1340412017-12-28 16:09:36 +0100756/*
757 * This function dup2 the stdio FDs (0,1,2) with <fd>, then closes <fd>
758 * If <fd> < 0, it opens /dev/null and use it to dup
759 *
760 * In the case of chrooting, you have to open /dev/null before the chroot, and
761 * pass the <fd> to this function
762 */
763static void stdio_quiet(int fd)
764{
765 if (fd < 0)
766 fd = open("/dev/null", O_RDWR, 0);
767
768 if (fd > -1) {
769 fclose(stdin);
770 fclose(stdout);
771 fclose(stderr);
772
773 dup2(fd, 0);
774 dup2(fd, 1);
775 dup2(fd, 2);
776 if (fd > 2)
777 close(fd);
778 return;
779 }
780
781 ha_alert("Cannot open /dev/null\n");
782 exit(EXIT_FAILURE);
783}
784
785
Joseph Herlant03420902018-11-15 10:41:50 -0800786/* This function checks if cfg_cfgfiles contains directories.
787 * If it finds one, it adds all the files (and only files) it contains
788 * in cfg_cfgfiles in place of the directory (and removes the directory).
789 * It adds the files in lexical order.
790 * It adds only files with .cfg extension.
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200791 * It doesn't add files with name starting with '.'
792 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100793static void cfgfiles_expand_directories(void)
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200794{
795 struct wordlist *wl, *wlb;
796 char *err = NULL;
797
798 list_for_each_entry_safe(wl, wlb, &cfg_cfgfiles, list) {
799 struct stat file_stat;
800 struct dirent **dir_entries = NULL;
801 int dir_entries_nb;
802 int dir_entries_it;
803
804 if (stat(wl->s, &file_stat)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100805 ha_alert("Cannot open configuration file/directory %s : %s\n",
806 wl->s,
807 strerror(errno));
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200808 exit(1);
809 }
810
811 if (!S_ISDIR(file_stat.st_mode))
812 continue;
813
814 /* from this point wl->s is a directory */
815
816 dir_entries_nb = scandir(wl->s, &dir_entries, NULL, alphasort);
817 if (dir_entries_nb < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100818 ha_alert("Cannot open configuration directory %s : %s\n",
819 wl->s,
820 strerror(errno));
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200821 exit(1);
822 }
823
824 /* for each element in the directory wl->s */
825 for (dir_entries_it = 0; dir_entries_it < dir_entries_nb; dir_entries_it++) {
826 struct dirent *dir_entry = dir_entries[dir_entries_it];
827 char *filename = NULL;
828 char *d_name_cfgext = strstr(dir_entry->d_name, ".cfg");
829
830 /* don't add filename that begin with .
Joseph Herlant03420902018-11-15 10:41:50 -0800831 * only add filename with .cfg extension
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200832 */
833 if (dir_entry->d_name[0] == '.' ||
834 !(d_name_cfgext && d_name_cfgext[4] == '\0'))
835 goto next_dir_entry;
836
837 if (!memprintf(&filename, "%s/%s", wl->s, dir_entry->d_name)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100838 ha_alert("Cannot load configuration files %s : out of memory.\n",
839 filename);
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200840 exit(1);
841 }
842
843 if (stat(filename, &file_stat)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100844 ha_alert("Cannot open configuration file %s : %s\n",
845 wl->s,
846 strerror(errno));
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200847 exit(1);
848 }
849
850 /* don't add anything else than regular file in cfg_cfgfiles
851 * this way we avoid loops
852 */
853 if (!S_ISREG(file_stat.st_mode))
854 goto next_dir_entry;
855
856 if (!list_append_word(&wl->list, filename, &err)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100857 ha_alert("Cannot load configuration files %s : %s\n",
858 filename,
859 err);
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200860 exit(1);
861 }
862
863next_dir_entry:
864 free(filename);
865 free(dir_entry);
866 }
867
868 free(dir_entries);
869
870 /* remove the current directory (wl) from cfg_cfgfiles */
871 free(wl->s);
872 LIST_DEL(&wl->list);
873 free(wl);
874 }
875
876 free(err);
877}
878
Willy Tarreaubaaee002006-06-26 02:48:02 +0200879/*
William Lallemand73b85e72017-06-01 17:38:51 +0200880 * copy and cleanup the current argv
William Lallemanddf6c5a82020-06-04 17:40:23 +0200881 * Remove the -sf /-st / -x parameters
William Lallemand73b85e72017-06-01 17:38:51 +0200882 * Return an allocated copy of argv
883 */
884
885static char **copy_argv(int argc, char **argv)
886{
William Lallemanddf6c5a82020-06-04 17:40:23 +0200887 char **newargv, **retargv;
William Lallemand73b85e72017-06-01 17:38:51 +0200888
Tim Duesterhuse52b6e52020-09-12 20:26:43 +0200889 newargv = calloc(argc + 2, sizeof(*newargv));
William Lallemand73b85e72017-06-01 17:38:51 +0200890 if (newargv == NULL) {
Christopher Faulet767a84b2017-11-24 16:50:31 +0100891 ha_warning("Cannot allocate memory\n");
William Lallemand73b85e72017-06-01 17:38:51 +0200892 return NULL;
893 }
William Lallemanddf6c5a82020-06-04 17:40:23 +0200894 retargv = newargv;
William Lallemand73b85e72017-06-01 17:38:51 +0200895
William Lallemanddf6c5a82020-06-04 17:40:23 +0200896 /* first copy argv[0] */
897 *newargv++ = *argv++;
898 argc--;
899
900 while (argc > 0) {
901 if (**argv != '-') {
902 /* non options are copied but will fail in the argument parser */
903 *newargv++ = *argv++;
904 argc--;
905
906 } else {
907 char *flag;
908
909 flag = *argv + 1;
910
911 if (flag[0] == '-' && flag[1] == 0) {
912 /* "--\0" copy every arguments till the end of argv */
913 *newargv++ = *argv++;
914 argc--;
915
916 while (argc > 0) {
917 *newargv++ = *argv++;
918 argc--;
919 }
920 } else {
921 switch (*flag) {
922 case 's':
923 /* -sf / -st and their parameters are ignored */
924 if (flag[1] == 'f' || flag[1] == 't') {
925 argc--;
926 argv++;
927 /* The list can't contain a negative value since the only
928 way to know the end of this list is by looking for the
929 next option or the end of the options */
930 while (argc > 0 && argv[0][0] != '-') {
931 argc--;
932 argv++;
933 }
William Lallemand398da622020-09-02 16:12:23 +0200934 } else {
935 argc--;
936 argv++;
937
William Lallemanddf6c5a82020-06-04 17:40:23 +0200938 }
939 break;
940
941 case 'x':
942 /* this option and its parameter are ignored */
943 argc--;
944 argv++;
945 if (argc > 0) {
946 argc--;
947 argv++;
948 }
949 break;
950
951 case 'C':
952 case 'n':
953 case 'm':
954 case 'N':
955 case 'L':
956 case 'f':
957 case 'p':
958 case 'S':
959 /* these options have only 1 parameter which must be copied and can start with a '-' */
960 *newargv++ = *argv++;
961 argc--;
962 if (argc == 0)
963 goto error;
964 *newargv++ = *argv++;
965 argc--;
966 break;
967 default:
968 /* for other options just copy them without parameters, this is also done
969 * for options like "--foo", but this will fail in the argument parser.
970 * */
971 *newargv++ = *argv++;
972 argc--;
973 break;
974 }
William Lallemand73b85e72017-06-01 17:38:51 +0200975 }
976 }
William Lallemand73b85e72017-06-01 17:38:51 +0200977 }
William Lallemand2bf6d622017-06-20 11:20:23 +0200978
William Lallemanddf6c5a82020-06-04 17:40:23 +0200979 return retargv;
980
981error:
982 free(retargv);
983 return NULL;
William Lallemand73b85e72017-06-01 17:38:51 +0200984}
985
Willy Tarreau6c3a6812020-03-06 18:57:15 +0100986
987/* Performs basic random seed initialization. The main issue with this is that
988 * srandom_r() only takes 32 bits and purposely provides a reproducible sequence,
989 * which means that there will only be 4 billion possible random sequences once
990 * srandom() is called, regardless of the internal state. Not calling it is
991 * even worse as we'll always produce the same randoms sequences. What we do
992 * here is to create an initial sequence from various entropy sources, hash it
993 * using SHA1 and keep the resulting 160 bits available globally.
994 *
995 * We initialize the current process with the first 32 bits before starting the
996 * polling loop, where all this will be changed to have process specific and
997 * thread specific sequences.
Willy Tarreau52bf8392020-03-08 00:42:37 +0100998 *
999 * Before starting threads, it's still possible to call random() as srandom()
1000 * is initialized from this, but after threads and/or processes are started,
1001 * only ha_random() is expected to be used to guarantee distinct sequences.
Willy Tarreau6c3a6812020-03-06 18:57:15 +01001002 */
1003static void ha_random_boot(char *const *argv)
1004{
1005 unsigned char message[256];
1006 unsigned char *m = message;
1007 struct timeval tv;
1008 blk_SHA_CTX ctx;
1009 unsigned long l;
1010 int fd;
1011 int i;
1012
1013 /* start with current time as pseudo-random seed */
1014 gettimeofday(&tv, NULL);
1015 write_u32(m, tv.tv_sec); m += 4;
1016 write_u32(m, tv.tv_usec); m += 4;
1017
1018 /* PID and PPID add some OS-based randomness */
1019 write_u16(m, getpid()); m += 2;
1020 write_u16(m, getppid()); m += 2;
1021
1022 /* take up to 160 bits bytes from /dev/urandom if available (non-blocking) */
1023 fd = open("/dev/urandom", O_RDONLY);
1024 if (fd >= 0) {
1025 i = read(fd, m, 20);
1026 if (i > 0)
1027 m += i;
1028 close(fd);
1029 }
1030
1031 /* take up to 160 bits bytes from openssl (non-blocking) */
1032#ifdef USE_OPENSSL
1033 if (RAND_bytes(m, 20) == 1)
1034 m += 20;
1035#endif
1036
1037 /* take 160 bits from existing random in case it was already initialized */
1038 for (i = 0; i < 5; i++) {
1039 write_u32(m, random());
1040 m += 4;
1041 }
1042
1043 /* stack address (benefit form operating system's ASLR) */
1044 l = (unsigned long)&m;
1045 memcpy(m, &l, sizeof(l)); m += sizeof(l);
1046
1047 /* argv address (benefit form operating system's ASLR) */
1048 l = (unsigned long)&argv;
1049 memcpy(m, &l, sizeof(l)); m += sizeof(l);
1050
1051 /* use tv_usec again after all the operations above */
1052 gettimeofday(&tv, NULL);
1053 write_u32(m, tv.tv_usec); m += 4;
1054
1055 /*
1056 * At this point, ~84-92 bytes have been used
1057 */
1058
1059 /* finish with the hostname */
1060 strncpy((char *)m, hostname, message + sizeof(message) - m);
1061 m += strlen(hostname);
1062
1063 /* total message length */
1064 l = m - message;
1065
1066 memset(&ctx, 0, sizeof(ctx));
1067 blk_SHA1_Init(&ctx);
1068 blk_SHA1_Update(&ctx, message, l);
1069 blk_SHA1_Final(boot_seed, &ctx);
1070
1071 srandom(read_u32(boot_seed));
Willy Tarreau52bf8392020-03-08 00:42:37 +01001072 ha_random_seed(boot_seed, sizeof(boot_seed));
Willy Tarreau6c3a6812020-03-06 18:57:15 +01001073}
1074
Willy Tarreau5a023f02019-03-01 14:19:31 +01001075/* considers splicing proxies' maxconn, computes the ideal global.maxpipes
1076 * setting, and returns it. It may return -1 meaning "unlimited" if some
1077 * unlimited proxies have been found and the global.maxconn value is not yet
1078 * set. It may also return a value greater than maxconn if it's not yet set.
1079 * Note that a value of zero means there is no need for pipes. -1 is never
1080 * returned if global.maxconn is valid.
1081 */
1082static int compute_ideal_maxpipes()
1083{
1084 struct proxy *cur;
1085 int nbfe = 0, nbbe = 0;
1086 int unlimited = 0;
1087 int pipes;
1088 int max;
1089
1090 for (cur = proxies_list; cur; cur = cur->next) {
1091 if (cur->options2 & (PR_O2_SPLIC_ANY)) {
1092 if (cur->cap & PR_CAP_FE) {
1093 max = cur->maxconn;
1094 nbfe += max;
1095 if (!max) {
1096 unlimited = 1;
1097 break;
1098 }
1099 }
1100 if (cur->cap & PR_CAP_BE) {
1101 max = cur->fullconn ? cur->fullconn : global.maxconn;
1102 nbbe += max;
1103 if (!max) {
1104 unlimited = 1;
1105 break;
1106 }
1107 }
1108 }
1109 }
1110
1111 pipes = MAX(nbfe, nbbe);
1112 if (global.maxconn) {
1113 if (pipes > global.maxconn || unlimited)
1114 pipes = global.maxconn;
1115 } else if (unlimited) {
1116 pipes = -1;
1117 }
1118
1119 return pipes >= 4 ? pipes / 4 : pipes;
1120}
1121
Willy Tarreauac350932019-03-01 15:43:14 +01001122/* considers global.maxsocks, global.maxpipes, async engines, SSL frontends and
1123 * rlimits and computes an ideal maxconn. It's meant to be called only when
1124 * maxsock contains the sum of listening FDs, before it is updated based on
Willy Tarreaudf23c0c2019-03-13 10:10:49 +01001125 * maxconn and pipes. If there are not enough FDs left, DEFAULT_MAXCONN (by
1126 * default 100) is returned as it is expected that it will even run on tight
1127 * environments, and will maintain compatibility with previous packages that
1128 * used to rely on this value as the default one. The system will emit a
1129 * warning indicating how many FDs are missing anyway if needed.
Willy Tarreauac350932019-03-01 15:43:14 +01001130 */
1131static int compute_ideal_maxconn()
1132{
1133 int ssl_sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
1134 int engine_fds = global.ssl_used_async_engines * ssl_sides;
1135 int pipes = compute_ideal_maxpipes();
Willy Tarreaub1beaa32020-03-06 10:25:31 +01001136 int remain = MAX(rlim_fd_cur_at_boot, rlim_fd_max_at_boot);
Willy Tarreauac350932019-03-01 15:43:14 +01001137 int maxconn;
1138
1139 /* we have to take into account these elements :
1140 * - number of engine_fds, which inflates the number of FD needed per
1141 * connection by this number.
1142 * - number of pipes per connection on average : for the unlimited
1143 * case, this is 0.5 pipe FDs per connection, otherwise it's a
1144 * fixed value of 2*pipes.
1145 * - two FDs per connection
1146 */
1147
1148 /* subtract listeners and checks */
1149 remain -= global.maxsock;
1150
Willy Tarreau3f200852019-03-14 19:13:17 +01001151 /* one epoll_fd/kqueue_fd per thread */
1152 remain -= global.nbthread;
1153
1154 /* one wake-up pipe (2 fd) per thread */
1155 remain -= 2 * global.nbthread;
1156
Willy Tarreauac350932019-03-01 15:43:14 +01001157 /* Fixed pipes values : we only subtract them if they're not larger
1158 * than the remaining FDs because pipes are optional.
1159 */
1160 if (pipes >= 0 && pipes * 2 < remain)
1161 remain -= pipes * 2;
1162
1163 if (pipes < 0) {
1164 /* maxsock = maxconn * 2 + maxconn/4 * 2 + maxconn * engine_fds.
1165 * = maxconn * (2 + 0.5 + engine_fds)
1166 * = maxconn * (4 + 1 + 2*engine_fds) / 2
1167 */
1168 maxconn = 2 * remain / (5 + 2 * engine_fds);
1169 } else {
1170 /* maxsock = maxconn * 2 + maxconn * engine_fds.
1171 * = maxconn * (2 + engine_fds)
1172 */
1173 maxconn = remain / (2 + engine_fds);
1174 }
1175
Willy Tarreaudf23c0c2019-03-13 10:10:49 +01001176 return MAX(maxconn, DEFAULT_MAXCONN);
Willy Tarreauac350932019-03-01 15:43:14 +01001177}
1178
Willy Tarreaua409f302020-03-10 17:08:53 +01001179/* computes the estimated maxsock value for the given maxconn based on the
1180 * possibly set global.maxpipes and existing partial global.maxsock. It may
1181 * temporarily change global.maxconn for the time needed to propagate the
1182 * computations, and will reset it.
1183 */
1184static int compute_ideal_maxsock(int maxconn)
1185{
1186 int maxpipes = global.maxpipes;
1187 int maxsock = global.maxsock;
1188
1189
1190 if (!maxpipes) {
1191 int old_maxconn = global.maxconn;
1192
1193 global.maxconn = maxconn;
1194 maxpipes = compute_ideal_maxpipes();
1195 global.maxconn = old_maxconn;
1196 }
1197
1198 maxsock += maxconn * 2; /* each connection needs two sockets */
1199 maxsock += maxpipes * 2; /* each pipe needs two FDs */
1200 maxsock += global.nbthread; /* one epoll_fd/kqueue_fd per thread */
1201 maxsock += 2 * global.nbthread; /* one wake-up pipe (2 fd) per thread */
1202
1203 /* compute fd used by async engines */
1204 if (global.ssl_used_async_engines) {
1205 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
1206
1207 maxsock += maxconn * sides * global.ssl_used_async_engines;
1208 }
1209 return maxsock;
1210}
1211
Thayne McCombs8f0cc5c2021-01-07 21:35:52 -07001212/* Tests if it is possible to set the current process's RLIMIT_NOFILE to
Willy Tarreau304e17e2020-03-10 17:54:54 +01001213 * <maxsock>, then sets it back to the previous value. Returns non-zero if the
1214 * value is accepted, non-zero otherwise. This is used to determine if an
1215 * automatic limit may be applied or not. When it is not, the caller knows that
1216 * the highest we can do is the rlim_max at boot. In case of error, we return
1217 * that the setting is possible, so that we defer the error processing to the
1218 * final stage in charge of enforcing this.
1219 */
1220static int check_if_maxsock_permitted(int maxsock)
1221{
1222 struct rlimit orig_limit, test_limit;
1223 int ret;
1224
1225 if (getrlimit(RLIMIT_NOFILE, &orig_limit) != 0)
1226 return 1;
1227
1228 /* don't go further if we can't even set to what we have */
1229 if (setrlimit(RLIMIT_NOFILE, &orig_limit) != 0)
1230 return 1;
1231
1232 test_limit.rlim_max = MAX(maxsock, orig_limit.rlim_max);
1233 test_limit.rlim_cur = test_limit.rlim_max;
1234 ret = setrlimit(RLIMIT_NOFILE, &test_limit);
1235
1236 if (setrlimit(RLIMIT_NOFILE, &orig_limit) != 0)
1237 return 1;
1238
1239 return ret == 0;
1240}
1241
1242
William Lallemand73b85e72017-06-01 17:38:51 +02001243/*
Willy Tarreaubaaee002006-06-26 02:48:02 +02001244 * This function initializes all the necessary variables. It only returns
1245 * if everything is OK. If something fails, it exits.
1246 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +01001247static void init(int argc, char **argv)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001248{
Willy Tarreaubaaee002006-06-26 02:48:02 +02001249 int arg_mode = 0; /* MODE_DEBUG, ... */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001250 char *tmp;
1251 char *cfg_pidfile = NULL;
Willy Tarreau058e9072009-07-20 09:30:05 +02001252 int err_code = 0;
Maxime de Roucy0f503922016-05-13 23:52:55 +02001253 char *err_msg = NULL;
Willy Tarreau477ecd82010-01-03 21:12:30 +01001254 struct wordlist *wl;
Kevinm48936af2010-12-22 16:08:21 +00001255 char *progname;
Willy Tarreau576132e2011-09-10 19:26:56 +02001256 char *change_dir = NULL;
Christopher Fauletd7c91962015-04-30 11:48:27 +02001257 struct proxy *px;
Willy Tarreaue6945732016-12-21 19:57:00 +01001258 struct post_check_fct *pcf;
Willy Tarreauac350932019-03-01 15:43:14 +01001259 int ideal_maxconn;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001260
Christopher Faulete3a5e352017-10-24 13:53:54 +02001261 global.mode = MODE_STARTING;
William Lallemand00417412020-06-05 14:08:41 +02001262 old_argv = copy_argv(argc, argv);
1263 if (!old_argv) {
William Lallemanddf6c5a82020-06-04 17:40:23 +02001264 ha_alert("failed to copy argv.\n");
1265 exit(1);
1266 }
William Lallemand73b85e72017-06-01 17:38:51 +02001267
Christopher Fauletcd7879a2017-10-27 13:53:47 +02001268 if (!init_trash_buffers(1)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001269 ha_alert("failed to initialize trash buffers.\n");
Christopher Faulet748919a2017-07-26 14:59:46 +02001270 exit(1);
1271 }
David du Colombier7af46052012-05-16 14:16:48 +02001272
Emeric Brun2b920a12010-09-23 18:30:22 +02001273 /* NB: POSIX does not make it mandatory for gethostname() to NULL-terminate
1274 * the string in case of truncation, and at least FreeBSD appears not to do
1275 * it.
1276 */
1277 memset(hostname, 0, sizeof(hostname));
1278 gethostname(hostname, sizeof(hostname) - 1);
Dragan Dosen4f014152020-06-18 16:56:47 +02001279
1280 if ((localpeer = strdup(hostname)) == NULL) {
1281 ha_alert("Cannot allocate memory for local peer.\n");
1282 exit(EXIT_FAILURE);
1283 }
William Lallemanddaf4cd22018-04-17 16:46:13 +02001284 setenv("HAPROXY_LOCALPEER", localpeer, 1);
Emeric Brun2b920a12010-09-23 18:30:22 +02001285
William Lallemand24c928c2020-01-14 17:58:18 +01001286 /* we were in mworker mode, we should restart in mworker mode */
1287 if (getenv("HAPROXY_MWORKER_REEXEC") != NULL)
1288 global.mode |= MODE_MWORKER;
1289
Willy Tarreaubaaee002006-06-26 02:48:02 +02001290 /*
1291 * Initialize the previously static variables.
1292 */
Christopher Fauletcd7879a2017-10-27 13:53:47 +02001293
Willy Tarreau173d9952018-01-26 21:48:23 +01001294 totalconn = actconn = listeners = stopping = 0;
Cyril Bonté203ec5a2017-03-23 22:44:13 +01001295 killed = 0;
Christopher Fauletcd7879a2017-10-27 13:53:47 +02001296
Willy Tarreaubaaee002006-06-26 02:48:02 +02001297
1298#ifdef HAPROXY_MEMMAX
Willy Tarreau70060452015-12-14 12:46:07 +01001299 global.rlimit_memmax_all = HAPROXY_MEMMAX;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001300#endif
1301
Benoit GARNIERb413c2a2016-03-27 11:08:03 +02001302 tzset();
Willy Tarreaub0b37bc2008-06-23 14:00:57 +02001303 tv_update_date(-1,-1);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001304 start_date = now;
1305
Willy Tarreau6c3a6812020-03-06 18:57:15 +01001306 ha_random_boot(argv);
Willy Tarreau84310e22014-02-14 11:59:04 +01001307
Willy Tarreau8ed669b2013-01-11 15:49:37 +01001308 if (init_acl() != 0)
1309 exit(1);
Willy Tarreaub6b3df32018-11-26 16:31:20 +01001310
Thierry FOURNIER6f1fd482015-01-23 14:06:13 +01001311 /* Initialise lua. */
1312 hlua_init();
Thierry FOURNIER6f1fd482015-01-23 14:06:13 +01001313
Christopher Fauletff2613e2016-11-09 11:36:17 +01001314 /* Initialize process vars */
1315 vars_init(&global.vars, SCOPE_PROC);
1316
Willy Tarreau43b78992009-01-25 15:42:27 +01001317 global.tune.options |= GTUNE_USE_SELECT; /* select() is always available */
Willy Tarreaue5733232019-05-22 19:24:06 +02001318#if defined(USE_POLL)
Willy Tarreau43b78992009-01-25 15:42:27 +01001319 global.tune.options |= GTUNE_USE_POLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001320#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001321#if defined(USE_EPOLL)
Willy Tarreau43b78992009-01-25 15:42:27 +01001322 global.tune.options |= GTUNE_USE_EPOLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001323#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001324#if defined(USE_KQUEUE)
Willy Tarreau43b78992009-01-25 15:42:27 +01001325 global.tune.options |= GTUNE_USE_KQUEUE;
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001326#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001327#if defined(USE_EVPORTS)
Emmanuel Hocdet0ba4f482019-04-08 16:53:32 +00001328 global.tune.options |= GTUNE_USE_EVPORTS;
1329#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001330#if defined(USE_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +01001331 global.tune.options |= GTUNE_USE_SPLICE;
1332#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +02001333#if defined(USE_GETADDRINFO)
1334 global.tune.options |= GTUNE_USE_GAI;
1335#endif
Lukas Tribusa0bcbdc2016-09-12 21:42:20 +00001336#if defined(SO_REUSEPORT)
1337 global.tune.options |= GTUNE_USE_REUSEPORT;
1338#endif
Willy Tarreau76cc6992020-07-01 18:49:24 +02001339#ifdef USE_THREAD
1340 global.tune.options |= GTUNE_IDLE_POOL_SHARED;
1341#endif
William Dauchya5194602020-03-28 19:29:58 +01001342 global.tune.options |= GTUNE_STRICT_LIMITS;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001343
1344 pid = getpid();
1345 progname = *argv;
1346 while ((tmp = strchr(progname, '/')) != NULL)
1347 progname = tmp + 1;
1348
Kevinm48936af2010-12-22 16:08:21 +00001349 /* the process name is used for the logs only */
Eric Salama7cea6062020-10-02 11:58:19 +02001350 chunk_initlen(&global.log_tag, strdup(progname), strlen(progname), strlen(progname));
1351 if (b_orig(&global.log_tag) == NULL) {
1352 chunk_destroy(&global.log_tag);
1353 ha_alert("Cannot allocate memory for log_tag.\n");
1354 exit(EXIT_FAILURE);
1355 }
Kevinm48936af2010-12-22 16:08:21 +00001356
Willy Tarreaubaaee002006-06-26 02:48:02 +02001357 argc--; argv++;
1358 while (argc > 0) {
1359 char *flag;
1360
1361 if (**argv == '-') {
1362 flag = *argv+1;
1363
1364 /* 1 arg */
1365 if (*flag == 'v') {
1366 display_version();
Willy Tarreau7b066db2007-12-02 11:28:59 +01001367 if (flag[1] == 'v') /* -vv */
1368 display_build_opts();
Willy Tarreaubaaee002006-06-26 02:48:02 +02001369 exit(0);
1370 }
Willy Tarreaue5733232019-05-22 19:24:06 +02001371#if defined(USE_EPOLL)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001372 else if (*flag == 'd' && flag[1] == 'e')
Willy Tarreau43b78992009-01-25 15:42:27 +01001373 global.tune.options &= ~GTUNE_USE_EPOLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001374#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001375#if defined(USE_POLL)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001376 else if (*flag == 'd' && flag[1] == 'p')
Willy Tarreau43b78992009-01-25 15:42:27 +01001377 global.tune.options &= ~GTUNE_USE_POLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001378#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001379#if defined(USE_KQUEUE)
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001380 else if (*flag == 'd' && flag[1] == 'k')
Willy Tarreau43b78992009-01-25 15:42:27 +01001381 global.tune.options &= ~GTUNE_USE_KQUEUE;
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001382#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001383#if defined(USE_EVPORTS)
Emmanuel Hocdet0ba4f482019-04-08 16:53:32 +00001384 else if (*flag == 'd' && flag[1] == 'v')
1385 global.tune.options &= ~GTUNE_USE_EVPORTS;
1386#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001387#if defined(USE_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +01001388 else if (*flag == 'd' && flag[1] == 'S')
1389 global.tune.options &= ~GTUNE_USE_SPLICE;
1390#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +02001391#if defined(USE_GETADDRINFO)
1392 else if (*flag == 'd' && flag[1] == 'G')
1393 global.tune.options &= ~GTUNE_USE_GAI;
1394#endif
Lukas Tribusa0bcbdc2016-09-12 21:42:20 +00001395#if defined(SO_REUSEPORT)
1396 else if (*flag == 'd' && flag[1] == 'R')
1397 global.tune.options &= ~GTUNE_USE_REUSEPORT;
1398#endif
Emeric Brun850efd52014-01-29 12:24:34 +01001399 else if (*flag == 'd' && flag[1] == 'V')
1400 global.ssl_server_verify = SSL_SERVER_VERIFY_NONE;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001401 else if (*flag == 'V')
1402 arg_mode |= MODE_VERBOSE;
1403 else if (*flag == 'd' && flag[1] == 'b')
1404 arg_mode |= MODE_FOREGROUND;
Amaury Denoyelle7b01a8d2021-03-29 10:29:07 +02001405 else if (*flag == 'd' && flag[1] == 'D')
1406 arg_mode |= MODE_DIAG;
Willy Tarreau3eb10b82020-04-15 16:42:39 +02001407 else if (*flag == 'd' && flag[1] == 'W')
1408 arg_mode |= MODE_ZERO_WARNING;
Willy Tarreau6e064432012-05-08 15:40:42 +02001409 else if (*flag == 'd' && flag[1] == 'M')
1410 mem_poison_byte = flag[2] ? strtol(flag + 2, NULL, 0) : 'P';
Willy Tarreau3eed10e2016-11-07 21:03:16 +01001411 else if (*flag == 'd' && flag[1] == 'r')
1412 global.tune.options |= GTUNE_RESOLVE_DONTFAIL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001413 else if (*flag == 'd')
1414 arg_mode |= MODE_DEBUG;
1415 else if (*flag == 'c')
1416 arg_mode |= MODE_CHECK;
William Lallemand095ba4c2017-06-01 17:38:50 +02001417 else if (*flag == 'D')
Willy Tarreau6bde87b2009-05-18 16:29:51 +02001418 arg_mode |= MODE_DAEMON;
Tim Duesterhusd6942c82017-11-20 15:58:35 +01001419 else if (*flag == 'W' && flag[1] == 's') {
Lukas Tribusf46bf952017-11-21 12:39:34 +01001420 arg_mode |= MODE_MWORKER | MODE_FOREGROUND;
Tim Duesterhusd6942c82017-11-20 15:58:35 +01001421#if defined(USE_SYSTEMD)
1422 global.tune.options |= GTUNE_USE_SYSTEMD;
1423#else
Christopher Faulet767a84b2017-11-24 16:50:31 +01001424 ha_alert("master-worker mode with systemd support (-Ws) requested, but not compiled. Use master-worker mode (-W) if you are not using Type=notify in your unit file or recompile with USE_SYSTEMD=1.\n\n");
Tim Duesterhusd6942c82017-11-20 15:58:35 +01001425 usage(progname);
1426#endif
1427 }
William Lallemand095ba4c2017-06-01 17:38:50 +02001428 else if (*flag == 'W')
1429 arg_mode |= MODE_MWORKER;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001430 else if (*flag == 'q')
1431 arg_mode |= MODE_QUIET;
Olivier Houchardf73629d2017-04-05 22:33:04 +02001432 else if (*flag == 'x') {
William Lallemand4f71d302020-06-04 23:41:29 +02001433 if (argc <= 1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001434 ha_alert("Unix socket path expected with the -x flag\n\n");
William Lallemand45eff442017-06-19 15:57:55 +02001435 usage(progname);
Olivier Houchardf73629d2017-04-05 22:33:04 +02001436 }
William Lallemand4fc09692017-06-19 16:37:19 +02001437 if (old_unixsocket)
Christopher Faulet767a84b2017-11-24 16:50:31 +01001438 ha_warning("-x option already set, overwriting the value\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001439 old_unixsocket = argv[1];
William Lallemand4fc09692017-06-19 16:37:19 +02001440
Olivier Houchardf73629d2017-04-05 22:33:04 +02001441 argv++;
1442 argc--;
1443 }
William Lallemande7361152018-10-26 14:47:36 +02001444 else if (*flag == 'S') {
1445 struct wordlist *c;
1446
William Lallemanda6b32492020-06-04 23:49:20 +02001447 if (argc <= 1) {
William Lallemande7361152018-10-26 14:47:36 +02001448 ha_alert("Socket and optional bind parameters expected with the -S flag\n");
1449 usage(progname);
1450 }
1451 if ((c = malloc(sizeof(*c))) == NULL || (c->s = strdup(argv[1])) == NULL) {
1452 ha_alert("Cannot allocate memory\n");
1453 exit(EXIT_FAILURE);
1454 }
1455 LIST_ADD(&mworker_cli_conf, &c->list);
1456
1457 argv++;
1458 argc--;
1459 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001460 else if (*flag == 's' && (flag[1] == 'f' || flag[1] == 't')) {
1461 /* list of pids to finish ('f') or terminate ('t') */
1462
1463 if (flag[1] == 'f')
1464 oldpids_sig = SIGUSR1; /* finish then exit */
1465 else
1466 oldpids_sig = SIGTERM; /* terminate immediately */
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001467 while (argc > 1 && argv[1][0] != '-') {
Chris Lane236062f2018-02-05 23:15:44 +00001468 char * endptr = NULL;
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001469 oldpids = realloc(oldpids, (nb_oldpids + 1) * sizeof(int));
1470 if (!oldpids) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001471 ha_alert("Cannot allocate old pid : out of memory.\n");
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001472 exit(1);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001473 }
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001474 argc--; argv++;
Chris Lane236062f2018-02-05 23:15:44 +00001475 errno = 0;
1476 oldpids[nb_oldpids] = strtol(*argv, &endptr, 10);
1477 if (errno) {
1478 ha_alert("-%2s option: failed to parse {%s}: %s\n",
1479 flag,
1480 *argv, strerror(errno));
1481 exit(1);
1482 } else if (endptr && strlen(endptr)) {
Willy Tarreau90807112020-02-25 08:16:33 +01001483 while (isspace((unsigned char)*endptr)) endptr++;
Aurélien Nephtali39b89882018-02-17 20:53:11 +01001484 if (*endptr != 0) {
Chris Lane236062f2018-02-05 23:15:44 +00001485 ha_alert("-%2s option: some bytes unconsumed in PID list {%s}\n",
1486 flag, endptr);
1487 exit(1);
Aurélien Nephtali39b89882018-02-17 20:53:11 +01001488 }
Chris Lane236062f2018-02-05 23:15:44 +00001489 }
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001490 if (oldpids[nb_oldpids] <= 0)
1491 usage(progname);
1492 nb_oldpids++;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001493 }
1494 }
Willy Tarreaua088d312015-10-08 11:58:48 +02001495 else if (flag[0] == '-' && flag[1] == 0) { /* "--" */
1496 /* now that's a cfgfile list */
1497 argv++; argc--;
1498 while (argc > 0) {
Maxime de Roucy0f503922016-05-13 23:52:55 +02001499 if (!list_append_word(&cfg_cfgfiles, *argv, &err_msg)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001500 ha_alert("Cannot load configuration file/directory %s : %s\n",
1501 *argv,
1502 err_msg);
Willy Tarreaua088d312015-10-08 11:58:48 +02001503 exit(1);
1504 }
Willy Tarreaua088d312015-10-08 11:58:48 +02001505 argv++; argc--;
1506 }
1507 break;
1508 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001509 else { /* >=2 args */
1510 argv++; argc--;
1511 if (argc == 0)
Willy Tarreau3bafcdc2011-09-10 19:20:23 +02001512 usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001513
1514 switch (*flag) {
Willy Tarreau576132e2011-09-10 19:26:56 +02001515 case 'C' : change_dir = *argv; break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001516 case 'n' : cfg_maxconn = atol(*argv); break;
Willy Tarreau70060452015-12-14 12:46:07 +01001517 case 'm' : global.rlimit_memmax_all = atol(*argv); break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001518 case 'N' : cfg_maxpconn = atol(*argv); break;
William Lallemanddaf4cd22018-04-17 16:46:13 +02001519 case 'L' :
Dragan Dosen4f014152020-06-18 16:56:47 +02001520 free(localpeer);
1521 if ((localpeer = strdup(*argv)) == NULL) {
1522 ha_alert("Cannot allocate memory for local peer.\n");
1523 exit(EXIT_FAILURE);
1524 }
William Lallemanddaf4cd22018-04-17 16:46:13 +02001525 setenv("HAPROXY_LOCALPEER", localpeer, 1);
Dragan Dosen13cd54c2020-06-18 18:24:05 +02001526 global.localpeer_cmdline = 1;
William Lallemanddaf4cd22018-04-17 16:46:13 +02001527 break;
Willy Tarreau5d01a632009-06-22 16:02:30 +02001528 case 'f' :
Maxime de Roucy0f503922016-05-13 23:52:55 +02001529 if (!list_append_word(&cfg_cfgfiles, *argv, &err_msg)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001530 ha_alert("Cannot load configuration file/directory %s : %s\n",
1531 *argv,
1532 err_msg);
Willy Tarreau5d01a632009-06-22 16:02:30 +02001533 exit(1);
1534 }
Willy Tarreau5d01a632009-06-22 16:02:30 +02001535 break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001536 case 'p' : cfg_pidfile = *argv; break;
Willy Tarreau3bafcdc2011-09-10 19:20:23 +02001537 default: usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001538 }
1539 }
1540 }
1541 else
Willy Tarreau3bafcdc2011-09-10 19:20:23 +02001542 usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001543 argv++; argc--;
1544 }
1545
Christopher Faulete3a5e352017-10-24 13:53:54 +02001546 global.mode |= (arg_mode & (MODE_DAEMON | MODE_MWORKER | MODE_FOREGROUND | MODE_VERBOSE
Amaury Denoyelle7b01a8d2021-03-29 10:29:07 +02001547 | MODE_QUIET | MODE_CHECK | MODE_DEBUG | MODE_ZERO_WARNING
1548 | MODE_DIAG));
Willy Tarreaubaaee002006-06-26 02:48:02 +02001549
William Lallemand944e6192018-11-21 15:48:31 +01001550 if (getenv("HAPROXY_MWORKER_WAIT_ONLY")) {
William Lallemandcb11fd22017-06-01 17:38:52 +02001551 unsetenv("HAPROXY_MWORKER_WAIT_ONLY");
William Lallemand944e6192018-11-21 15:48:31 +01001552 global.mode |= MODE_MWORKER_WAIT;
1553 global.mode &= ~MODE_MWORKER;
William Lallemandcb11fd22017-06-01 17:38:52 +02001554 }
1555
1556 if ((global.mode & MODE_MWORKER) && (getenv("HAPROXY_MWORKER_REEXEC") != NULL)) {
1557 atexit_flag = 1;
1558 atexit(reexec_on_failure);
1559 }
1560
Willy Tarreau576132e2011-09-10 19:26:56 +02001561 if (change_dir && chdir(change_dir) < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001562 ha_alert("Could not change to directory %s : %s\n", change_dir, strerror(errno));
Willy Tarreau576132e2011-09-10 19:26:56 +02001563 exit(1);
1564 }
1565
Willy Tarreaubaaee002006-06-26 02:48:02 +02001566 global.maxsock = 10; /* reserve 10 fds ; will be incremented by socket eaters */
Willy Tarreau915e1eb2009-06-22 15:48:36 +02001567
William Lallemand944e6192018-11-21 15:48:31 +01001568 /* in wait mode, we don't try to read the configuration files */
1569 if (!(global.mode & MODE_MWORKER_WAIT)) {
Christopher Faulet4e366822021-01-12 18:57:38 +01001570 char *env_cfgfiles = NULL;
1571 int env_err = 0;
Willy Tarreauc4382422009-12-06 13:10:44 +01001572
William Lallemand944e6192018-11-21 15:48:31 +01001573 /* handle cfgfiles that are actually directories */
1574 cfgfiles_expand_directories();
1575
1576 if (LIST_ISEMPTY(&cfg_cfgfiles))
1577 usage(progname);
1578
1579
1580 list_for_each_entry(wl, &cfg_cfgfiles, list) {
1581 int ret;
1582
Christopher Faulet4e366822021-01-12 18:57:38 +01001583 if (env_err == 0) {
1584 if (!memprintf(&env_cfgfiles, "%s%s%s",
1585 (env_cfgfiles ? env_cfgfiles : ""),
1586 (env_cfgfiles ? ";" : ""), wl->s))
1587 env_err = 1;
1588 }
William Lallemand7b302d82019-05-20 11:15:37 +02001589
William Lallemand944e6192018-11-21 15:48:31 +01001590 ret = readcfgfile(wl->s);
1591 if (ret == -1) {
1592 ha_alert("Could not open configuration file %s : %s\n",
1593 wl->s, strerror(errno));
Christopher Faulet4e366822021-01-12 18:57:38 +01001594 free(env_cfgfiles);
William Lallemand944e6192018-11-21 15:48:31 +01001595 exit(1);
1596 }
1597 if (ret & (ERR_ABORT|ERR_FATAL))
1598 ha_alert("Error(s) found in configuration file : %s\n", wl->s);
1599 err_code |= ret;
Christopher Faulet4e366822021-01-12 18:57:38 +01001600 if (err_code & ERR_ABORT) {
1601 free(env_cfgfiles);
William Lallemand944e6192018-11-21 15:48:31 +01001602 exit(1);
Christopher Faulet4e366822021-01-12 18:57:38 +01001603 }
Willy Tarreauc4382422009-12-06 13:10:44 +01001604 }
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001605
William Lallemand944e6192018-11-21 15:48:31 +01001606 /* do not try to resolve arguments nor to spot inconsistencies when
1607 * the configuration contains fatal errors caused by files not found
1608 * or failed memory allocations.
1609 */
1610 if (err_code & (ERR_ABORT|ERR_FATAL)) {
1611 ha_alert("Fatal errors found in configuration.\n");
Christopher Faulet4e366822021-01-12 18:57:38 +01001612 free(env_cfgfiles);
William Lallemand944e6192018-11-21 15:48:31 +01001613 exit(1);
1614 }
Christopher Faulet4e366822021-01-12 18:57:38 +01001615 if (env_err) {
1616 ha_alert("Could not allocate memory for HAPROXY_CFGFILES env variable\n");
1617 exit(1);
1618 }
1619 setenv("HAPROXY_CFGFILES", env_cfgfiles, 1);
1620 free(env_cfgfiles);
William Lallemand7b302d82019-05-20 11:15:37 +02001621
Willy Tarreaub83dc3d2017-04-19 11:24:07 +02001622 }
William Lallemandce83b4a2018-10-26 14:47:30 +02001623 if (global.mode & MODE_MWORKER) {
1624 int proc;
William Lallemand16dd1b32018-11-19 18:46:18 +01001625 struct mworker_proc *tmproc;
1626
William Lallemand482f9a92019-04-12 16:15:00 +02001627 setenv("HAPROXY_MWORKER", "1", 1);
1628
William Lallemand16dd1b32018-11-19 18:46:18 +01001629 if (getenv("HAPROXY_MWORKER_REEXEC") == NULL) {
1630
William Lallemandf3a86832019-04-01 11:29:58 +02001631 tmproc = calloc(1, sizeof(*tmproc));
William Lallemand16dd1b32018-11-19 18:46:18 +01001632 if (!tmproc) {
1633 ha_alert("Cannot allocate process structures.\n");
1634 exit(EXIT_FAILURE);
1635 }
William Lallemand8f7069a2019-04-12 16:09:23 +02001636 tmproc->options |= PROC_O_TYPE_MASTER; /* master */
William Lallemand16dd1b32018-11-19 18:46:18 +01001637 tmproc->reloads = 0;
1638 tmproc->relative_pid = 0;
1639 tmproc->pid = pid;
1640 tmproc->timestamp = start_date.tv_sec;
1641 tmproc->ipc_fd[0] = -1;
1642 tmproc->ipc_fd[1] = -1;
1643
1644 proc_self = tmproc;
1645
1646 LIST_ADDQ(&proc_list, &tmproc->list);
1647 }
William Lallemandce83b4a2018-10-26 14:47:30 +02001648
1649 for (proc = 0; proc < global.nbproc; proc++) {
William Lallemandce83b4a2018-10-26 14:47:30 +02001650
William Lallemandf3a86832019-04-01 11:29:58 +02001651 tmproc = calloc(1, sizeof(*tmproc));
William Lallemandce83b4a2018-10-26 14:47:30 +02001652 if (!tmproc) {
1653 ha_alert("Cannot allocate process structures.\n");
1654 exit(EXIT_FAILURE);
1655 }
1656
William Lallemand8f7069a2019-04-12 16:09:23 +02001657 tmproc->options |= PROC_O_TYPE_WORKER; /* worker */
William Lallemandce83b4a2018-10-26 14:47:30 +02001658 tmproc->pid = -1;
1659 tmproc->reloads = 0;
William Lallemande3683302018-11-19 18:46:17 +01001660 tmproc->timestamp = -1;
William Lallemandce83b4a2018-10-26 14:47:30 +02001661 tmproc->relative_pid = 1 + proc;
William Lallemand550db6d2018-11-06 17:37:12 +01001662 tmproc->ipc_fd[0] = -1;
1663 tmproc->ipc_fd[1] = -1;
William Lallemandce83b4a2018-10-26 14:47:30 +02001664
1665 if (mworker_cli_sockpair_new(tmproc, proc) < 0) {
1666 exit(EXIT_FAILURE);
1667 }
1668
1669 LIST_ADDQ(&proc_list, &tmproc->list);
1670 }
William Lallemand944e6192018-11-21 15:48:31 +01001671 }
1672 if (global.mode & (MODE_MWORKER|MODE_MWORKER_WAIT)) {
1673 struct wordlist *it, *c;
1674
William Lallemand1b663612018-10-26 14:47:33 +02001675 mworker_env_to_proc_list(); /* get the info of the children in the env */
William Lallemand8a022572018-10-26 14:47:35 +02001676
William Lallemande7361152018-10-26 14:47:36 +02001677
William Lallemand550db6d2018-11-06 17:37:12 +01001678 if (!LIST_ISEMPTY(&mworker_cli_conf)) {
William Lallemande7361152018-10-26 14:47:36 +02001679
William Lallemand550db6d2018-11-06 17:37:12 +01001680 if (mworker_cli_proxy_create() < 0) {
William Lallemande7361152018-10-26 14:47:36 +02001681 ha_alert("Can't create the master's CLI.\n");
1682 exit(EXIT_FAILURE);
1683 }
William Lallemande7361152018-10-26 14:47:36 +02001684
William Lallemand550db6d2018-11-06 17:37:12 +01001685 list_for_each_entry_safe(c, it, &mworker_cli_conf, list) {
1686
1687 if (mworker_cli_proxy_new_listener(c->s) < 0) {
1688 ha_alert("Can't create the master's CLI.\n");
1689 exit(EXIT_FAILURE);
1690 }
1691 LIST_DEL(&c->list);
1692 free(c->s);
1693 free(c);
1694 }
1695 }
William Lallemandce83b4a2018-10-26 14:47:30 +02001696 }
1697
Eric Salama5ba83352021-03-16 15:11:17 +01001698 if (!LIST_ISEMPTY(&mworker_cli_conf) && !(arg_mode & MODE_MWORKER)) {
1699 ha_warning("a master CLI socket was defined, but master-worker mode (-W) is not enabled.\n");
1700 }
1701
Willy Tarreauf42d7942020-10-20 11:54:49 +02001702 if (global.nbproc > 1 && !global.nbthread) {
1703 ha_warning("nbproc is deprecated!\n"
1704 " | For suffering many limitations, the 'nbproc' directive is now deprecated\n"
1705 " | and scheduled for removal in 2.5. Just comment it out: haproxy will use\n"
1706 " | threads and will run on all allocated processors. You may also switch to\n"
1707 " | 'nbthread %d' to keep the same number of processors. If you absolutely\n"
1708 " | want to run in multi-process mode, you can silence this warning by adding\n"
1709 " | 'nbthread 1', but then please report your use case to developers.\n",
1710 global.nbproc);
1711 }
1712
Willy Tarreaue90904d2021-02-12 14:08:31 +01001713 /* defaults sections are not needed anymore */
1714 proxy_destroy_all_defaults();
1715
Willy Tarreaubb925012009-07-23 13:36:36 +02001716 err_code |= check_config_validity();
Christopher Fauletc1692962019-08-12 09:51:07 +02001717 for (px = proxies_list; px; px = px->next) {
1718 struct server *srv;
1719 struct post_proxy_check_fct *ppcf;
1720 struct post_server_check_fct *pscf;
1721
Christopher Fauletd5bd8242020-11-02 16:20:13 +01001722 if (px->disabled)
1723 continue;
1724
Christopher Fauletc1692962019-08-12 09:51:07 +02001725 list_for_each_entry(pscf, &post_server_check_list, list) {
1726 for (srv = px->srv; srv; srv = srv->next)
1727 err_code |= pscf->fct(srv);
1728 }
1729 list_for_each_entry(ppcf, &post_proxy_check_list, list)
1730 err_code |= ppcf->fct(px);
1731 }
Willy Tarreaubb925012009-07-23 13:36:36 +02001732 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001733 ha_alert("Fatal errors found in configuration.\n");
Willy Tarreau915e1eb2009-06-22 15:48:36 +02001734 exit(1);
1735 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001736
Carl Henrik Lundef91ac192020-02-27 16:45:50 +01001737 err_code |= pattern_finalize_config();
1738 if (err_code & (ERR_ABORT|ERR_FATAL)) {
1739 ha_alert("Failed to finalize pattern config.\n");
1740 exit(1);
1741 }
Willy Tarreau0f936722019-04-11 14:47:08 +02001742
Willy Tarreau70060452015-12-14 12:46:07 +01001743 /* recompute the amount of per-process memory depending on nbproc and
1744 * the shared SSL cache size (allowed to exist in all processes).
1745 */
1746 if (global.rlimit_memmax_all) {
1747#if defined (USE_OPENSSL) && !defined(USE_PRIVATE_CACHE)
1748 int64_t ssl_cache_bytes = global.tune.sslcachesize * 200LL;
1749
1750 global.rlimit_memmax =
1751 ((((int64_t)global.rlimit_memmax_all * 1048576LL) -
1752 ssl_cache_bytes) / global.nbproc +
1753 ssl_cache_bytes + 1048575LL) / 1048576LL;
1754#else
1755 global.rlimit_memmax = global.rlimit_memmax_all / global.nbproc;
1756#endif
1757 }
1758
Willy Tarreaue5733232019-05-22 19:24:06 +02001759#ifdef USE_NS
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +01001760 err_code |= netns_init();
1761 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001762 ha_alert("Failed to initialize namespace support.\n");
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +01001763 exit(1);
1764 }
1765#endif
1766
Baptiste Assmann4215d7d2016-11-02 15:33:15 +01001767 /* Apply server states */
1768 apply_server_state();
1769
Olivier Houchardfbc74e82017-11-24 16:54:05 +01001770 for (px = proxies_list; px; px = px->next)
Baptiste Assmann4215d7d2016-11-02 15:33:15 +01001771 srv_compute_all_admin_states(px);
1772
Baptiste Assmann83cbaa52016-11-02 15:34:05 +01001773 /* Apply servers' configured address */
1774 err_code |= srv_init_addr();
1775 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001776 ha_alert("Failed to initialize server(s) addr.\n");
Baptiste Assmann83cbaa52016-11-02 15:34:05 +01001777 exit(1);
1778 }
1779
Willy Tarreau3eb10b82020-04-15 16:42:39 +02001780 if (warned & WARN_ANY && global.mode & MODE_ZERO_WARNING) {
1781 ha_alert("Some warnings were found and 'zero-warning' is set. Aborting.\n");
1782 exit(1);
1783 }
1784
Willy Tarreaubaaee002006-06-26 02:48:02 +02001785 if (global.mode & MODE_CHECK) {
Willy Tarreau8b15ba12012-02-02 17:48:18 +01001786 struct peers *pr;
1787 struct proxy *px;
1788
Willy Tarreaubebd2122020-04-15 16:06:11 +02001789 if (warned & WARN_ANY)
1790 qfprintf(stdout, "Warnings were found.\n");
1791
Frédéric Lécailleed2b4a62017-07-13 09:07:09 +02001792 for (pr = cfg_peers; pr; pr = pr->next)
Willy Tarreau8b15ba12012-02-02 17:48:18 +01001793 if (pr->peers_fe)
1794 break;
1795
Olivier Houchardfbc74e82017-11-24 16:54:05 +01001796 for (px = proxies_list; px; px = px->next)
Willy Tarreauc3914d42020-09-24 08:39:22 +02001797 if (!px->disabled && px->li_all)
Willy Tarreau8b15ba12012-02-02 17:48:18 +01001798 break;
1799
1800 if (pr || px) {
1801 /* At least one peer or one listener has been found */
1802 qfprintf(stdout, "Configuration file is valid\n");
Tim Duesterhus0a3b43d2020-06-14 00:37:42 +02001803 deinit_and_exit(0);
Willy Tarreau8b15ba12012-02-02 17:48:18 +01001804 }
1805 qfprintf(stdout, "Configuration file has no error but will not start (no listener) => exit(2).\n");
1806 exit(2);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001807 }
Willy Tarreaue9b26022011-08-01 20:57:55 +02001808
Willy Tarreau8263d2b2012-08-28 00:06:31 +02001809 /* now we know the buffer size, we can initialize the channels and buffers */
Willy Tarreau9b28e032012-10-12 23:49:43 +02001810 init_buffer();
Willy Tarreau8280d642009-09-23 23:37:52 +02001811
Willy Tarreaue6945732016-12-21 19:57:00 +01001812 list_for_each_entry(pcf, &post_check_list, list) {
1813 err_code |= pcf->fct();
1814 if (err_code & (ERR_ABORT|ERR_FATAL))
1815 exit(1);
1816 }
1817
Willy Tarreaubaaee002006-06-26 02:48:02 +02001818 if (cfg_maxconn > 0)
1819 global.maxconn = cfg_maxconn;
1820
Willy Tarreau4975d142021-03-13 11:00:33 +01001821 if (global.cli_fe)
1822 global.maxsock += global.cli_fe->maxconn;
Willy Tarreau8d687d82019-03-01 09:39:42 +01001823
1824 if (cfg_peers) {
1825 /* peers also need to bypass global maxconn */
1826 struct peers *p = cfg_peers;
1827
1828 for (p = cfg_peers; p; p = p->next)
1829 if (p->peers_fe)
1830 global.maxsock += p->peers_fe->maxconn;
1831 }
1832
Willy Tarreaubaaee002006-06-26 02:48:02 +02001833 if (cfg_pidfile) {
Willy Tarreaua534fea2008-08-03 12:19:50 +02001834 free(global.pidfile);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001835 global.pidfile = strdup(cfg_pidfile);
1836 }
1837
Willy Tarreaud0256482015-01-15 21:45:22 +01001838 /* Now we want to compute the maxconn and possibly maxsslconn values.
Willy Tarreauac350932019-03-01 15:43:14 +01001839 * It's a bit tricky. Maxconn defaults to the pre-computed value based
1840 * on rlim_fd_cur and the number of FDs in use due to the configuration,
1841 * and maxsslconn defaults to DEFAULT_MAXSSLCONN. On top of that we can
1842 * enforce a lower limit based on memmax.
Willy Tarreaud0256482015-01-15 21:45:22 +01001843 *
1844 * If memmax is set, then it depends on which values are set. If
1845 * maxsslconn is set, we use memmax to determine how many cleartext
1846 * connections may be added, and set maxconn to the sum of the two.
1847 * If maxconn is set and not maxsslconn, maxsslconn is computed from
1848 * the remaining amount of memory between memmax and the cleartext
1849 * connections. If neither are set, then it is considered that all
1850 * connections are SSL-capable, and maxconn is computed based on this,
1851 * then maxsslconn accordingly. We need to know if SSL is used on the
1852 * frontends, backends, or both, because when it's used on both sides,
1853 * we need twice the value for maxsslconn, but we only count the
1854 * handshake once since it is not performed on the two sides at the
1855 * same time (frontend-side is terminated before backend-side begins).
1856 * The SSL stack is supposed to have filled ssl_session_cost and
Willy Tarreau474b96a2015-01-28 19:03:21 +01001857 * ssl_handshake_cost during its initialization. In any case, if
1858 * SYSTEM_MAXCONN is set, we still enforce it as an upper limit for
1859 * maxconn in order to protect the system.
Willy Tarreaud0256482015-01-15 21:45:22 +01001860 */
Willy Tarreauac350932019-03-01 15:43:14 +01001861 ideal_maxconn = compute_ideal_maxconn();
1862
Willy Tarreaud0256482015-01-15 21:45:22 +01001863 if (!global.rlimit_memmax) {
1864 if (global.maxconn == 0) {
Willy Tarreauac350932019-03-01 15:43:14 +01001865 global.maxconn = ideal_maxconn;
Willy Tarreaud0256482015-01-15 21:45:22 +01001866 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
1867 fprintf(stderr, "Note: setting global.maxconn to %d.\n", global.maxconn);
1868 }
1869 }
1870#ifdef USE_OPENSSL
1871 else if (!global.maxconn && !global.maxsslconn &&
1872 (global.ssl_used_frontend || global.ssl_used_backend)) {
1873 /* memmax is set, compute everything automatically. Here we want
1874 * to ensure that all SSL connections will be served. We take
1875 * care of the number of sides where SSL is used, and consider
1876 * the worst case : SSL used on both sides and doing a handshake
1877 * simultaneously. Note that we can't have more than maxconn
1878 * handshakes at a time by definition, so for the worst case of
1879 * two SSL conns per connection, we count a single handshake.
1880 */
1881 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
1882 int64_t mem = global.rlimit_memmax * 1048576ULL;
Willy Tarreau304e17e2020-03-10 17:54:54 +01001883 int retried = 0;
Willy Tarreaud0256482015-01-15 21:45:22 +01001884
1885 mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry
1886 mem -= global.maxzlibmem;
1887 mem = mem * MEM_USABLE_RATIO;
1888
Willy Tarreau304e17e2020-03-10 17:54:54 +01001889 /* Principle: we test once to set maxconn according to the free
1890 * memory. If it results in values the system rejects, we try a
1891 * second time by respecting rlim_fd_max. If it fails again, we
1892 * go back to the initial value and will let the final code
1893 * dealing with rlimit report the error. That's up to 3 attempts.
1894 */
1895 do {
1896 global.maxconn = mem /
1897 ((STREAM_MAX_COST + 2 * global.tune.bufsize) + // stream + 2 buffers per stream
1898 sides * global.ssl_session_max_cost + // SSL buffers, one per side
1899 global.ssl_handshake_max_cost); // 1 handshake per connection max
Willy Tarreaud0256482015-01-15 21:45:22 +01001900
Willy Tarreau304e17e2020-03-10 17:54:54 +01001901 if (retried == 1)
1902 global.maxconn = MIN(global.maxconn, ideal_maxconn);
1903 global.maxconn = round_2dig(global.maxconn);
Willy Tarreau474b96a2015-01-28 19:03:21 +01001904#ifdef SYSTEM_MAXCONN
Willy Tarreau304e17e2020-03-10 17:54:54 +01001905 if (global.maxconn > SYSTEM_MAXCONN)
1906 global.maxconn = SYSTEM_MAXCONN;
Willy Tarreau474b96a2015-01-28 19:03:21 +01001907#endif /* SYSTEM_MAXCONN */
Willy Tarreau304e17e2020-03-10 17:54:54 +01001908 global.maxsslconn = sides * global.maxconn;
1909
1910 if (check_if_maxsock_permitted(compute_ideal_maxsock(global.maxconn)))
1911 break;
1912 } while (retried++ < 2);
1913
Willy Tarreaud0256482015-01-15 21:45:22 +01001914 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
1915 fprintf(stderr, "Note: setting global.maxconn to %d and global.maxsslconn to %d.\n",
1916 global.maxconn, global.maxsslconn);
1917 }
1918 else if (!global.maxsslconn &&
1919 (global.ssl_used_frontend || global.ssl_used_backend)) {
1920 /* memmax and maxconn are known, compute maxsslconn automatically.
1921 * maxsslconn being forced, we don't know how many of it will be
1922 * on each side if both sides are being used. The worst case is
1923 * when all connections use only one SSL instance because
1924 * handshakes may be on two sides at the same time.
1925 */
1926 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
1927 int64_t mem = global.rlimit_memmax * 1048576ULL;
1928 int64_t sslmem;
1929
1930 mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry
1931 mem -= global.maxzlibmem;
1932 mem = mem * MEM_USABLE_RATIO;
1933
Willy Tarreau87b09662015-04-03 00:22:06 +02001934 sslmem = mem - global.maxconn * (int64_t)(STREAM_MAX_COST + 2 * global.tune.bufsize);
Willy Tarreaud0256482015-01-15 21:45:22 +01001935 global.maxsslconn = sslmem / (global.ssl_session_max_cost + global.ssl_handshake_max_cost);
1936 global.maxsslconn = round_2dig(global.maxsslconn);
1937
1938 if (sslmem <= 0 || global.maxsslconn < sides) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001939 ha_alert("Cannot compute the automatic maxsslconn because global.maxconn is already too "
1940 "high for the global.memmax value (%d MB). The absolute maximum possible value "
1941 "without SSL is %d, but %d was found and SSL is in use.\n",
1942 global.rlimit_memmax,
1943 (int)(mem / (STREAM_MAX_COST + 2 * global.tune.bufsize)),
1944 global.maxconn);
Willy Tarreaud0256482015-01-15 21:45:22 +01001945 exit(1);
1946 }
1947
1948 if (global.maxsslconn > sides * global.maxconn)
1949 global.maxsslconn = sides * global.maxconn;
1950
1951 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
1952 fprintf(stderr, "Note: setting global.maxsslconn to %d\n", global.maxsslconn);
1953 }
1954#endif
1955 else if (!global.maxconn) {
1956 /* memmax and maxsslconn are known/unused, compute maxconn automatically */
1957 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
1958 int64_t mem = global.rlimit_memmax * 1048576ULL;
1959 int64_t clearmem;
Willy Tarreau304e17e2020-03-10 17:54:54 +01001960 int retried = 0;
Willy Tarreaud0256482015-01-15 21:45:22 +01001961
1962 if (global.ssl_used_frontend || global.ssl_used_backend)
1963 mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry
1964
1965 mem -= global.maxzlibmem;
1966 mem = mem * MEM_USABLE_RATIO;
1967
1968 clearmem = mem;
1969 if (sides)
1970 clearmem -= (global.ssl_session_max_cost + global.ssl_handshake_max_cost) * (int64_t)global.maxsslconn;
1971
Willy Tarreau304e17e2020-03-10 17:54:54 +01001972 /* Principle: we test once to set maxconn according to the free
1973 * memory. If it results in values the system rejects, we try a
1974 * second time by respecting rlim_fd_max. If it fails again, we
1975 * go back to the initial value and will let the final code
1976 * dealing with rlimit report the error. That's up to 3 attempts.
1977 */
1978 do {
1979 global.maxconn = clearmem / (STREAM_MAX_COST + 2 * global.tune.bufsize);
1980 if (retried == 1)
1981 global.maxconn = MIN(global.maxconn, ideal_maxconn);
1982 global.maxconn = round_2dig(global.maxconn);
Willy Tarreau474b96a2015-01-28 19:03:21 +01001983#ifdef SYSTEM_MAXCONN
Willy Tarreau304e17e2020-03-10 17:54:54 +01001984 if (global.maxconn > SYSTEM_MAXCONN)
1985 global.maxconn = SYSTEM_MAXCONN;
Willy Tarreau474b96a2015-01-28 19:03:21 +01001986#endif /* SYSTEM_MAXCONN */
Willy Tarreaud0256482015-01-15 21:45:22 +01001987
Willy Tarreau304e17e2020-03-10 17:54:54 +01001988 if (clearmem <= 0 || !global.maxconn) {
1989 ha_alert("Cannot compute the automatic maxconn because global.maxsslconn is already too "
1990 "high for the global.memmax value (%d MB). The absolute maximum possible value "
1991 "is %d, but %d was found.\n",
1992 global.rlimit_memmax,
Christopher Faulet767a84b2017-11-24 16:50:31 +01001993 (int)(mem / (global.ssl_session_max_cost + global.ssl_handshake_max_cost)),
Willy Tarreau304e17e2020-03-10 17:54:54 +01001994 global.maxsslconn);
1995 exit(1);
1996 }
1997
1998 if (check_if_maxsock_permitted(compute_ideal_maxsock(global.maxconn)))
1999 break;
2000 } while (retried++ < 2);
Willy Tarreaud0256482015-01-15 21:45:22 +01002001
2002 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
2003 if (sides && global.maxsslconn > sides * global.maxconn) {
2004 fprintf(stderr, "Note: global.maxsslconn is forced to %d which causes global.maxconn "
2005 "to be limited to %d. Better reduce global.maxsslconn to get more "
2006 "room for extra connections.\n", global.maxsslconn, global.maxconn);
2007 }
2008 fprintf(stderr, "Note: setting global.maxconn to %d\n", global.maxconn);
2009 }
Willy Tarreau66aa61f2009-01-18 21:44:07 +01002010 }
2011
Willy Tarreaua409f302020-03-10 17:08:53 +01002012 global.maxsock = compute_ideal_maxsock(global.maxconn);
2013 global.hardmaxconn = global.maxconn;
Willy Tarreaua4818db2020-06-19 16:20:59 +02002014 if (!global.maxpipes)
2015 global.maxpipes = compute_ideal_maxpipes();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002016
Olivier Houchard88698d92019-04-16 19:07:22 +02002017 /* update connection pool thresholds */
2018 global.tune.pool_low_count = ((long long)global.maxsock * global.tune.pool_low_ratio + 99) / 100;
2019 global.tune.pool_high_count = ((long long)global.maxsock * global.tune.pool_high_ratio + 99) / 100;
2020
Willy Tarreauc8d5b952019-02-27 17:25:52 +01002021 proxy_adjust_all_maxconn();
2022
Willy Tarreau1db37712007-06-03 17:16:49 +02002023 if (global.tune.maxpollevents <= 0)
2024 global.tune.maxpollevents = MAX_POLL_EVENTS;
2025
Willy Tarreau060a7612021-03-10 11:06:26 +01002026 if (global.tune.runqueue_depth <= 0) {
2027 /* tests on various thread counts from 1 to 64 have shown an
2028 * optimal queue depth following roughly 1/sqrt(threads).
2029 */
2030 int s = my_flsl(global.nbthread);
2031 s += (global.nbthread / s); // roughly twice the sqrt.
2032 global.tune.runqueue_depth = RUNQUEUE_DEPTH * 2 / s;
2033 }
Olivier Houchard1599b802018-05-24 18:59:04 +02002034
Willy Tarreau6f4a82c2009-03-21 20:43:57 +01002035 if (global.tune.recv_enough == 0)
2036 global.tune.recv_enough = MIN_RECV_AT_ONCE_ENOUGH;
2037
Willy Tarreau27a674e2009-08-17 07:23:33 +02002038 if (global.tune.maxrewrite >= global.tune.bufsize / 2)
2039 global.tune.maxrewrite = global.tune.bufsize / 2;
2040
Willy Tarreaubaaee002006-06-26 02:48:02 +02002041 if (arg_mode & (MODE_DEBUG | MODE_FOREGROUND)) {
2042 /* command line debug mode inhibits configuration mode */
William Lallemand095ba4c2017-06-01 17:38:50 +02002043 global.mode &= ~(MODE_DAEMON | MODE_QUIET);
Willy Tarreau772f0dd2012-10-26 16:04:28 +02002044 global.mode |= (arg_mode & (MODE_DEBUG | MODE_FOREGROUND));
2045 }
2046
William Lallemand095ba4c2017-06-01 17:38:50 +02002047 if (arg_mode & MODE_DAEMON) {
Willy Tarreau772f0dd2012-10-26 16:04:28 +02002048 /* command line daemon mode inhibits foreground and debug modes mode */
2049 global.mode &= ~(MODE_DEBUG | MODE_FOREGROUND);
William Lallemand095ba4c2017-06-01 17:38:50 +02002050 global.mode |= arg_mode & MODE_DAEMON;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002051 }
Willy Tarreau772f0dd2012-10-26 16:04:28 +02002052
2053 global.mode |= (arg_mode & (MODE_QUIET | MODE_VERBOSE));
Willy Tarreaubaaee002006-06-26 02:48:02 +02002054
William Lallemand095ba4c2017-06-01 17:38:50 +02002055 if ((global.mode & MODE_DEBUG) && (global.mode & (MODE_DAEMON | MODE_QUIET))) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002056 ha_warning("<debug> mode incompatible with <quiet> and <daemon>. Keeping <debug> only.\n");
William Lallemand095ba4c2017-06-01 17:38:50 +02002057 global.mode &= ~(MODE_DAEMON | MODE_QUIET);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002058 }
2059
William Lallemand095ba4c2017-06-01 17:38:50 +02002060 if ((global.nbproc > 1) && !(global.mode & (MODE_DAEMON | MODE_MWORKER))) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02002061 if (!(global.mode & (MODE_FOREGROUND | MODE_DEBUG)))
Christopher Faulet767a84b2017-11-24 16:50:31 +01002062 ha_warning("<nbproc> is only meaningful in daemon mode or master-worker mode. Setting limit to 1 process.\n");
Willy Tarreaubaaee002006-06-26 02:48:02 +02002063 global.nbproc = 1;
2064 }
2065
2066 if (global.nbproc < 1)
2067 global.nbproc = 1;
2068
Christopher Fauletbe0faa22017-08-29 15:37:10 +02002069 if (global.nbthread < 1)
2070 global.nbthread = 1;
2071
Christopher Faulet3ef26392017-08-29 16:46:57 +02002072 /* Realloc trash buffers because global.tune.bufsize may have changed */
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002073 if (!init_trash_buffers(0)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002074 ha_alert("failed to initialize trash buffers.\n");
Christopher Faulet3ef26392017-08-29 16:46:57 +02002075 exit(1);
2076 }
2077
Christopher Faulet96d44832017-11-14 22:02:30 +01002078 if (!init_log_buffers()) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002079 ha_alert("failed to initialize log buffers.\n");
Christopher Faulet96d44832017-11-14 22:02:30 +01002080 exit(1);
2081 }
2082
Willy Tarreauef1d1f82007-04-16 00:25:25 +02002083 /*
2084 * Note: we could register external pollers here.
2085 * Built-in pollers have been registered before main().
2086 */
Willy Tarreau4f60f162007-04-08 16:39:58 +02002087
Willy Tarreau43b78992009-01-25 15:42:27 +01002088 if (!(global.tune.options & GTUNE_USE_KQUEUE))
Willy Tarreau1e63130a2007-04-09 12:03:06 +02002089 disable_poller("kqueue");
2090
Emmanuel Hocdet0ba4f482019-04-08 16:53:32 +00002091 if (!(global.tune.options & GTUNE_USE_EVPORTS))
2092 disable_poller("evports");
2093
Willy Tarreau43b78992009-01-25 15:42:27 +01002094 if (!(global.tune.options & GTUNE_USE_EPOLL))
Willy Tarreau4f60f162007-04-08 16:39:58 +02002095 disable_poller("epoll");
2096
Willy Tarreau43b78992009-01-25 15:42:27 +01002097 if (!(global.tune.options & GTUNE_USE_POLL))
Willy Tarreau4f60f162007-04-08 16:39:58 +02002098 disable_poller("poll");
2099
Willy Tarreau43b78992009-01-25 15:42:27 +01002100 if (!(global.tune.options & GTUNE_USE_SELECT))
Willy Tarreau4f60f162007-04-08 16:39:58 +02002101 disable_poller("select");
2102
2103 /* Note: we could disable any poller by name here */
2104
Christopher Fauletb3f4e142016-03-07 12:46:38 +01002105 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
Willy Tarreau2ff76222007-04-09 19:29:56 +02002106 list_pollers(stderr);
Christopher Fauletb3f4e142016-03-07 12:46:38 +01002107 fprintf(stderr, "\n");
2108 list_filters(stderr);
2109 }
Willy Tarreau2ff76222007-04-09 19:29:56 +02002110
Willy Tarreau4f60f162007-04-08 16:39:58 +02002111 if (!init_pollers()) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002112 ha_alert("No polling mechanism available.\n"
2113 " It is likely that haproxy was built with TARGET=generic and that FD_SETSIZE\n"
2114 " is too low on this platform to support maxconn and the number of listeners\n"
2115 " and servers. You should rebuild haproxy specifying your system using TARGET=\n"
2116 " in order to support other polling systems (poll, epoll, kqueue) or reduce the\n"
2117 " global maxconn setting to accommodate the system's limitation. For reference,\n"
2118 " FD_SETSIZE=%d on this system, global.maxconn=%d resulting in a maximum of\n"
2119 " %d file descriptors. You should thus reduce global.maxconn by %d. Also,\n"
2120 " check build settings using 'haproxy -vv'.\n\n",
2121 FD_SETSIZE, global.maxconn, global.maxsock, (global.maxsock + 1 - FD_SETSIZE) / 2);
Willy Tarreau4f60f162007-04-08 16:39:58 +02002122 exit(1);
2123 }
Willy Tarreau2ff76222007-04-09 19:29:56 +02002124 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
2125 printf("Using %s() as the polling mechanism.\n", cur_poller.name);
Willy Tarreau4f60f162007-04-08 16:39:58 +02002126 }
2127
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02002128 if (!global.node)
2129 global.node = strdup(hostname);
2130
Willy Tarreau02b092f2020-10-07 18:36:54 +02002131 /* stop disabled proxies */
2132 for (px = proxies_list; px; px = px->next) {
Willy Tarreauc3914d42020-09-24 08:39:22 +02002133 if (px->disabled)
Willy Tarreau02b092f2020-10-07 18:36:54 +02002134 stop_proxy(px);
2135 }
2136
Thierry FOURNIERa4a0f3d2015-01-23 12:08:30 +01002137 if (!hlua_post_init())
2138 exit(1);
Thomas Holmes6abded42015-05-12 16:23:58 +01002139
Maxime de Roucy0f503922016-05-13 23:52:55 +02002140 free(err_msg);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002141}
2142
Cyril Bonté203ec5a2017-03-23 22:44:13 +01002143void deinit(void)
Willy Tarreaubaaee002006-06-26 02:48:02 +02002144{
Olivier Houchardfbc74e82017-11-24 16:54:05 +01002145 struct proxy *p = proxies_list, *p0;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01002146 struct wordlist *wl, *wlb;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002147 struct uri_auth *uap, *ua = NULL;
William Lallemand0f99e342011-10-12 17:50:54 +02002148 struct logsrv *log, *logb;
Willy Tarreaucdb737e2016-12-21 18:43:10 +01002149 struct build_opts_str *bol, *bolb;
Tim Duesterhusfdf904a2020-07-04 11:49:48 +02002150 struct post_deinit_fct *pdf, *pdfb;
Tim Duesterhus17e363f2020-07-04 11:49:47 +02002151 struct proxy_deinit_fct *pxdf, *pxdfb;
Tim Duesterhus0837eb12020-07-04 11:49:49 +02002152 struct server_deinit_fct *srvdf, *srvdfb;
Tim Duesterhusf0c25d22020-09-10 19:46:41 +02002153 struct per_thread_init_fct *tif, *tifb;
2154 struct per_thread_deinit_fct *tdf, *tdfb;
2155 struct per_thread_alloc_fct *taf, *tafb;
2156 struct per_thread_free_fct *tff, *tffb;
Tim Duesterhus34bef072020-07-04 11:49:50 +02002157 struct post_server_check_fct *pscf, *pscfb;
Tim Duesterhusfc854942020-09-10 19:46:42 +02002158 struct post_check_fct *pcf, *pcfb;
Tim Duesterhus53508d62020-09-10 19:46:40 +02002159 struct post_proxy_check_fct *ppcf, *ppcfb;
Willy Tarreauae7bc4a2020-09-23 16:46:22 +02002160 int cur_fd;
2161
2162 /* At this point the listeners state is weird:
2163 * - most listeners are still bound and referenced in their protocol
2164 * - some might be zombies that are not in their proto anymore, but
2165 * still appear in their proxy's listeners with a valid FD.
2166 * - some might be stopped and still appear in their proxy as FD #-1
2167 * - among all of them, some might be inherited hence shared and we're
2168 * not allowed to pause them or whatever, we must just close them.
2169 * - finally some are not listeners (pipes, logs, stdout, etc) and
2170 * must be left intact.
2171 *
2172 * The safe way to proceed is to unbind (and close) whatever is not yet
2173 * unbound so that no more receiver/listener remains alive. Then close
2174 * remaining listener FDs, which correspond to zombie listeners (those
2175 * belonging to disabled proxies that were in another process).
2176 * objt_listener() would be cleaner here but not converted yet.
2177 */
2178 protocol_unbind_all();
2179
2180 for (cur_fd = 0; cur_fd < global.maxsock; cur_fd++) {
Willy Tarreau1a3770c2020-10-14 12:13:51 +02002181 if (!fdtab || !fdtab[cur_fd].owner)
Willy Tarreauae7bc4a2020-09-23 16:46:22 +02002182 continue;
2183
Willy Tarreaua74cb382020-10-15 21:29:49 +02002184 if (fdtab[cur_fd].iocb == &sock_accept_iocb) {
Willy Tarreauae7bc4a2020-09-23 16:46:22 +02002185 struct listener *l = fdtab[cur_fd].owner;
2186
2187 BUG_ON(l->state != LI_INIT);
2188 unbind_listener(l);
2189 }
2190 }
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002191
Willy Tarreau24f4efa2010-08-27 17:56:48 +02002192 deinit_signals();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002193 while (p) {
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002194 /* build a list of unique uri_auths */
2195 if (!ua)
2196 ua = p->uri_auth;
2197 else {
2198 /* check if p->uri_auth is unique */
2199 for (uap = ua; uap; uap=uap->next)
2200 if (uap == p->uri_auth)
2201 break;
2202
Willy Tarreauaccc4e12008-06-24 11:14:45 +02002203 if (!uap && p->uri_auth) {
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002204 /* add it, if it is */
2205 p->uri_auth->next = ua;
2206 ua = p->uri_auth;
2207 }
William Lallemand0f99e342011-10-12 17:50:54 +02002208 }
2209
Willy Tarreau4d2d0982007-05-14 00:39:29 +02002210 p0 = p;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002211 p = p->next;
Amaury Denoyelle27fefa12021-03-24 16:13:20 +01002212 free_proxy(p0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002213 }/* end while(p) */
Willy Tarreaudd815982007-10-16 12:25:14 +02002214
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002215 while (ua) {
Tim Duesterhus00f00cf2020-09-10 19:46:38 +02002216 struct stat_scope *scope, *scopep;
2217
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002218 uap = ua;
2219 ua = ua->next;
2220
Willy Tarreaua534fea2008-08-03 12:19:50 +02002221 free(uap->uri_prefix);
2222 free(uap->auth_realm);
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02002223 free(uap->node);
2224 free(uap->desc);
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002225
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01002226 userlist_free(uap->userlist);
Amaury Denoyelle68fd7e42021-03-25 17:15:52 +01002227 free_act_rules(&uap->http_req_rules);
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01002228
Tim Duesterhus00f00cf2020-09-10 19:46:38 +02002229 scope = uap->scope;
2230 while (scope) {
2231 scopep = scope;
2232 scope = scope->next;
2233
2234 free(scopep->px_id);
2235 free(scopep);
2236 }
2237
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002238 free(uap);
2239 }
2240
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01002241 userlist_free(userlist);
2242
David Carlier834cb2e2015-09-25 12:02:25 +01002243 cfg_unregister_sections();
2244
Christopher Faulet0132d062017-07-26 15:33:35 +02002245 deinit_log_buffers();
David Carlier834cb2e2015-09-25 12:02:25 +01002246
Willy Tarreau05554e62016-12-21 20:46:26 +01002247 list_for_each_entry(pdf, &post_deinit_list, list)
2248 pdf->fct();
2249
Willy Tarreau61cfdf42021-02-20 10:46:51 +01002250 ha_free(&global.log_send_hostname);
Dragan Dosen43885c72015-10-01 13:18:13 +02002251 chunk_destroy(&global.log_tag);
Willy Tarreau61cfdf42021-02-20 10:46:51 +01002252 ha_free(&global.chroot);
2253 ha_free(&global.pidfile);
2254 ha_free(&global.node);
2255 ha_free(&global.desc);
2256 ha_free(&oldpids);
2257 ha_free(&old_argv);
2258 ha_free(&localpeer);
2259 ha_free(&global.server_state_base);
2260 ha_free(&global.server_state_file);
Olivier Houchard3f795f72019-04-17 22:51:06 +02002261 task_destroy(idle_conn_task);
Olivier Houchard9ea5d362019-02-14 18:29:09 +01002262 idle_conn_task = NULL;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002263
William Lallemand0f99e342011-10-12 17:50:54 +02002264 list_for_each_entry_safe(log, logb, &global.logsrvs, list) {
2265 LIST_DEL(&log->list);
2266 free(log);
2267 }
Willy Tarreau477ecd82010-01-03 21:12:30 +01002268 list_for_each_entry_safe(wl, wlb, &cfg_cfgfiles, list) {
Maxime de Roucy0f503922016-05-13 23:52:55 +02002269 free(wl->s);
Willy Tarreau477ecd82010-01-03 21:12:30 +01002270 LIST_DEL(&wl->list);
2271 free(wl);
2272 }
2273
Willy Tarreaucdb737e2016-12-21 18:43:10 +01002274 list_for_each_entry_safe(bol, bolb, &build_opts_list, list) {
2275 if (bol->must_free)
2276 free((void *)bol->str);
2277 LIST_DEL(&bol->list);
2278 free(bol);
2279 }
2280
Tim Duesterhus17e363f2020-07-04 11:49:47 +02002281 list_for_each_entry_safe(pxdf, pxdfb, &proxy_deinit_list, list) {
2282 LIST_DEL(&pxdf->list);
2283 free(pxdf);
2284 }
2285
Tim Duesterhusfdf904a2020-07-04 11:49:48 +02002286 list_for_each_entry_safe(pdf, pdfb, &post_deinit_list, list) {
2287 LIST_DEL(&pdf->list);
2288 free(pdf);
2289 }
2290
Tim Duesterhus0837eb12020-07-04 11:49:49 +02002291 list_for_each_entry_safe(srvdf, srvdfb, &server_deinit_list, list) {
2292 LIST_DEL(&srvdf->list);
2293 free(srvdf);
2294 }
2295
Tim Duesterhusfc854942020-09-10 19:46:42 +02002296 list_for_each_entry_safe(pcf, pcfb, &post_check_list, list) {
2297 LIST_DEL(&pcf->list);
2298 free(pcf);
2299 }
2300
Tim Duesterhus34bef072020-07-04 11:49:50 +02002301 list_for_each_entry_safe(pscf, pscfb, &post_server_check_list, list) {
2302 LIST_DEL(&pscf->list);
2303 free(pscf);
2304 }
2305
Tim Duesterhus53508d62020-09-10 19:46:40 +02002306 list_for_each_entry_safe(ppcf, ppcfb, &post_proxy_check_list, list) {
2307 LIST_DEL(&ppcf->list);
2308 free(ppcf);
2309 }
2310
Tim Duesterhusf0c25d22020-09-10 19:46:41 +02002311 list_for_each_entry_safe(tif, tifb, &per_thread_init_list, list) {
2312 LIST_DEL(&tif->list);
2313 free(tif);
2314 }
2315
2316 list_for_each_entry_safe(tdf, tdfb, &per_thread_deinit_list, list) {
2317 LIST_DEL(&tdf->list);
2318 free(tdf);
2319 }
2320
2321 list_for_each_entry_safe(taf, tafb, &per_thread_alloc_list, list) {
2322 LIST_DEL(&taf->list);
2323 free(taf);
2324 }
2325
2326 list_for_each_entry_safe(tff, tffb, &per_thread_free_list, list) {
2327 LIST_DEL(&tff->list);
2328 free(tff);
2329 }
2330
Christopher Fauletff2613e2016-11-09 11:36:17 +01002331 vars_prune(&global.vars, NULL, NULL);
Willy Tarreau2455ceb2018-11-26 15:57:34 +01002332 pool_destroy_all();
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002333 deinit_pollers();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002334} /* end deinit() */
2335
Willy Tarreauf3ca5a02020-06-15 18:43:46 +02002336__attribute__((noreturn)) void deinit_and_exit(int status)
Tim Duesterhus26540552020-06-14 00:37:41 +02002337{
2338 deinit();
2339 exit(status);
2340}
William Lallemand72160322018-11-06 17:37:16 +01002341
Willy Tarreau918ff602011-07-25 16:33:49 +02002342/* Runs the polling loop */
Willy Tarreau3ebd55e2020-03-03 14:59:56 +01002343void run_poll_loop()
Willy Tarreau4f60f162007-04-08 16:39:58 +02002344{
Willy Tarreau2ae84e42019-05-28 16:44:05 +02002345 int next, wake;
Willy Tarreau4f60f162007-04-08 16:39:58 +02002346
Willy Tarreaub0b37bc2008-06-23 14:00:57 +02002347 tv_update_date(0,1);
Willy Tarreau4f60f162007-04-08 16:39:58 +02002348 while (1) {
Willy Tarreauc49ba522019-12-11 08:12:23 +01002349 wake_expired_tasks();
2350
William Lallemand1aab50b2018-06-07 09:46:01 +02002351 /* check if we caught some signals and process them in the
2352 first thread */
Willy Tarreaua7ad4ae2020-06-19 12:06:34 +02002353 if (signal_queue_len && tid == 0) {
2354 activity[tid].wake_signal++;
William Lallemand1aab50b2018-06-07 09:46:01 +02002355 signal_process_queue();
Willy Tarreaua7ad4ae2020-06-19 12:06:34 +02002356 }
2357
2358 /* Process a few tasks */
2359 process_runnable_tasks();
Willy Tarreau29857942009-05-10 09:01:21 +02002360
Willy Tarreau7067b3a2019-06-02 11:11:29 +02002361 /* also stop if we failed to cleanly stop all tasks */
2362 if (killed > 1)
2363 break;
2364
Willy Tarreau10146c92015-04-13 20:44:19 +02002365 /* expire immediately if events are pending */
Willy Tarreau2ae84e42019-05-28 16:44:05 +02002366 wake = 1;
Olivier Houchard305d5ab2019-07-24 18:07:06 +02002367 if (thread_has_tasks())
Willy Tarreaud80cb4e2018-01-20 19:30:13 +01002368 activity[tid].wake_tasks++;
Olivier Houchard79321b92018-07-26 17:55:11 +02002369 else {
Olivier Houchardb23a61f2019-03-08 18:51:17 +01002370 _HA_ATOMIC_OR(&sleeping_thread_mask, tid_bit);
2371 __ha_barrier_atomic_store();
Willy Tarreau95abd5b2020-03-23 09:33:32 +01002372 if (thread_has_tasks()) {
Olivier Houchard79321b92018-07-26 17:55:11 +02002373 activity[tid].wake_tasks++;
Olivier Houchardb23a61f2019-03-08 18:51:17 +01002374 _HA_ATOMIC_AND(&sleeping_thread_mask, ~tid_bit);
Olivier Houchard79321b92018-07-26 17:55:11 +02002375 } else
Willy Tarreau2ae84e42019-05-28 16:44:05 +02002376 wake = 0;
Olivier Houchard79321b92018-07-26 17:55:11 +02002377 }
Willy Tarreau10146c92015-04-13 20:44:19 +02002378
Willy Tarreau4f46a352020-03-23 09:27:28 +01002379 if (!wake) {
Willy Tarreaud7a6b2f2020-05-13 13:51:01 +02002380 int i;
2381
2382 if (stopping) {
Willy Tarreaud6455742020-05-13 14:30:25 +02002383 if (_HA_ATOMIC_OR(&stopping_thread_mask, tid_bit) == tid_bit) {
2384 /* notify all threads that stopping was just set */
2385 for (i = 0; i < global.nbthread; i++)
Willy Tarreau369a2ef2020-06-29 19:23:19 +02002386 if (((all_threads_mask & ~stopping_thread_mask) >> i) & 1)
Willy Tarreaud6455742020-05-13 14:30:25 +02002387 wake_thread(i);
2388 }
Willy Tarreaud7a6b2f2020-05-13 13:51:01 +02002389 }
Willy Tarreau4f46a352020-03-23 09:27:28 +01002390
2391 /* stop when there's nothing left to do */
2392 if ((jobs - unstoppable_jobs) == 0 &&
Willy Tarreaud7a6b2f2020-05-13 13:51:01 +02002393 (stopping_thread_mask & all_threads_mask) == all_threads_mask) {
2394 /* wake all threads waiting on jobs==0 */
2395 for (i = 0; i < global.nbthread; i++)
2396 if (((all_threads_mask & ~tid_bit) >> i) & 1)
2397 wake_thread(i);
Willy Tarreau4f46a352020-03-23 09:27:28 +01002398 break;
Willy Tarreaud7a6b2f2020-05-13 13:51:01 +02002399 }
Willy Tarreau4f46a352020-03-23 09:27:28 +01002400 }
2401
Willy Tarreauc49ba522019-12-11 08:12:23 +01002402 /* If we have to sleep, measure how long */
2403 next = wake ? TICK_ETERNITY : next_timer_expiry();
2404
Willy Tarreau58b458d2008-06-29 22:40:23 +02002405 /* The poller will ensure it returns around <next> */
Willy Tarreau2ae84e42019-05-28 16:44:05 +02002406 cur_poller.poll(&cur_poller, next, wake);
Emeric Brun64cc49c2017-10-03 14:46:45 +02002407
Willy Tarreaud80cb4e2018-01-20 19:30:13 +01002408 activity[tid].loops++;
Willy Tarreau4f60f162007-04-08 16:39:58 +02002409 }
2410}
2411
Christopher Faulet1d17c102017-08-29 15:38:48 +02002412static void *run_thread_poll_loop(void *data)
2413{
Willy Tarreau082b6282019-05-22 14:42:12 +02002414 struct per_thread_alloc_fct *ptaf;
Christopher Faulet1d17c102017-08-29 15:38:48 +02002415 struct per_thread_init_fct *ptif;
2416 struct per_thread_deinit_fct *ptdf;
Willy Tarreau082b6282019-05-22 14:42:12 +02002417 struct per_thread_free_fct *ptff;
Willy Tarreau34a150c2019-06-11 09:16:41 +02002418 static int init_left = 0;
Willy Tarreauaf613e82020-06-05 08:40:51 +02002419 __decl_thread(static pthread_mutex_t init_mutex = PTHREAD_MUTEX_INITIALIZER);
2420 __decl_thread(static pthread_cond_t init_cond = PTHREAD_COND_INITIALIZER);
Christopher Faulet1d17c102017-08-29 15:38:48 +02002421
Willy Tarreaub4f7cc32019-05-03 09:27:30 +02002422 ha_set_tid((unsigned long)data);
Willy Tarreaud022e9c2019-09-24 08:25:15 +02002423 sched = &task_per_thread[tid];
Willy Tarreau91e6df02019-05-03 17:21:18 +02002424
Willy Tarreauf6178242019-05-21 19:46:58 +02002425#if (_POSIX_TIMERS > 0) && defined(_POSIX_THREAD_CPUTIME)
Willy Tarreau91e6df02019-05-03 17:21:18 +02002426#ifdef USE_THREAD
Willy Tarreau8323a372019-05-20 18:57:53 +02002427 pthread_getcpuclockid(pthread_self(), &ti->clock_id);
Willy Tarreau624dcbf2019-05-20 20:23:06 +02002428#else
Willy Tarreau8323a372019-05-20 18:57:53 +02002429 ti->clock_id = CLOCK_THREAD_CPUTIME_ID;
Willy Tarreau91e6df02019-05-03 17:21:18 +02002430#endif
Willy Tarreau663fda42019-05-21 15:14:08 +02002431#endif
Willy Tarreau6ec902a2019-06-07 14:41:11 +02002432 /* Now, initialize one thread init at a time. This is better since
2433 * some init code is a bit tricky and may release global resources
2434 * after reallocating them locally. This will also ensure there is
2435 * no race on file descriptors allocation.
2436 */
Willy Tarreau34a150c2019-06-11 09:16:41 +02002437#ifdef USE_THREAD
2438 pthread_mutex_lock(&init_mutex);
2439#endif
2440 /* The first thread must set the number of threads left */
2441 if (!init_left)
2442 init_left = global.nbthread;
2443 init_left--;
Willy Tarreau91e6df02019-05-03 17:21:18 +02002444
Christopher Faulet1d17c102017-08-29 15:38:48 +02002445 tv_update_date(-1,-1);
2446
Willy Tarreau082b6282019-05-22 14:42:12 +02002447 /* per-thread alloc calls performed here are not allowed to snoop on
2448 * other threads, so they are free to initialize at their own rhythm
2449 * as long as they act as if they were alone. None of them may rely
2450 * on resources initialized by the other ones.
2451 */
2452 list_for_each_entry(ptaf, &per_thread_alloc_list, list) {
2453 if (!ptaf->fct()) {
2454 ha_alert("failed to allocate resources for thread %u.\n", tid);
2455 exit(1);
2456 }
2457 }
2458
Willy Tarreau3078e9f2019-05-20 10:50:43 +02002459 /* per-thread init calls performed here are not allowed to snoop on
2460 * other threads, so they are free to initialize at their own rhythm
2461 * as long as they act as if they were alone.
2462 */
Christopher Faulet1d17c102017-08-29 15:38:48 +02002463 list_for_each_entry(ptif, &per_thread_init_list, list) {
2464 if (!ptif->fct()) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002465 ha_alert("failed to initialize thread %u.\n", tid);
Christopher Faulet1d17c102017-08-29 15:38:48 +02002466 exit(1);
2467 }
2468 }
2469
Willy Tarreau71092822019-06-10 09:51:04 +02002470 /* enabling protocols will result in fd_insert() calls to be performed,
2471 * we want all threads to have already allocated their local fd tables
Willy Tarreau34a150c2019-06-11 09:16:41 +02002472 * before doing so, thus only the last thread does it.
Willy Tarreau71092822019-06-10 09:51:04 +02002473 */
Willy Tarreau34a150c2019-06-11 09:16:41 +02002474 if (init_left == 0)
Willy Tarreaue4d7c9d2019-06-10 10:14:52 +02002475 protocol_enable_all();
Willy Tarreau6ec902a2019-06-07 14:41:11 +02002476
Willy Tarreau34a150c2019-06-11 09:16:41 +02002477#ifdef USE_THREAD
2478 pthread_cond_broadcast(&init_cond);
2479 pthread_mutex_unlock(&init_mutex);
2480
2481 /* now wait for other threads to finish starting */
2482 pthread_mutex_lock(&init_mutex);
2483 while (init_left)
2484 pthread_cond_wait(&init_cond, &init_mutex);
2485 pthread_mutex_unlock(&init_mutex);
2486#endif
Willy Tarreau3078e9f2019-05-20 10:50:43 +02002487
Willy Tarreaua45a8b52019-12-06 16:31:45 +01002488#if defined(PR_SET_NO_NEW_PRIVS) && defined(USE_PRCTL)
2489 /* Let's refrain from using setuid executables. This way the impact of
2490 * an eventual vulnerability in a library remains limited. It may
2491 * impact external checks but who cares about them anyway ? In the
2492 * worst case it's possible to disable the option. Obviously we do this
2493 * in workers only. We can't hard-fail on this one as it really is
2494 * implementation dependent though we're interested in feedback, hence
2495 * the warning.
2496 */
2497 if (!(global.tune.options & GTUNE_INSECURE_SETUID) && !master) {
2498 static int warn_fail;
2499 if (prctl(PR_SET_NO_NEW_PRIVS, 1, 0, 0, 0) == -1 && !_HA_ATOMIC_XADD(&warn_fail, 1)) {
2500 ha_warning("Failed to disable setuid, please report to developers with detailed "
2501 "information about your operating system. You can silence this warning "
2502 "by adding 'insecure-setuid-wanted' in the 'global' section.\n");
2503 }
2504 }
2505#endif
2506
Willy Tarreaud96f1122019-12-03 07:07:36 +01002507#if defined(RLIMIT_NPROC)
2508 /* all threads have started, it's now time to prevent any new thread
2509 * or process from starting. Obviously we do this in workers only. We
2510 * can't hard-fail on this one as it really is implementation dependent
2511 * though we're interested in feedback, hence the warning.
2512 */
2513 if (!(global.tune.options & GTUNE_INSECURE_FORK) && !master) {
2514 struct rlimit limit = { .rlim_cur = 0, .rlim_max = 0 };
2515 static int warn_fail;
2516
2517 if (setrlimit(RLIMIT_NPROC, &limit) == -1 && !_HA_ATOMIC_XADD(&warn_fail, 1)) {
2518 ha_warning("Failed to disable forks, please report to developers with detailed "
2519 "information about your operating system. You can silence this warning "
2520 "by adding 'insecure-fork-wanted' in the 'global' section.\n");
2521 }
2522 }
2523#endif
Christopher Faulet1d17c102017-08-29 15:38:48 +02002524 run_poll_loop();
2525
2526 list_for_each_entry(ptdf, &per_thread_deinit_list, list)
2527 ptdf->fct();
2528
Willy Tarreau082b6282019-05-22 14:42:12 +02002529 list_for_each_entry(ptff, &per_thread_free_list, list)
2530 ptff->fct();
2531
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002532#ifdef USE_THREAD
Olivier Houchardb23a61f2019-03-08 18:51:17 +01002533 _HA_ATOMIC_AND(&all_threads_mask, ~tid_bit);
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002534 if (tid > 0)
2535 pthread_exit(NULL);
Christopher Faulet1d17c102017-08-29 15:38:48 +02002536#endif
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002537 return NULL;
2538}
Christopher Faulet1d17c102017-08-29 15:38:48 +02002539
William Dauchyf9af9d72019-11-17 15:47:16 +01002540/* set uid/gid depending on global settings */
2541static void set_identity(const char *program_name)
2542{
2543 if (global.gid) {
2544 if (getgroups(0, NULL) > 0 && setgroups(0, NULL) == -1)
2545 ha_warning("[%s.main()] Failed to drop supplementary groups. Using 'gid'/'group'"
2546 " without 'uid'/'user' is generally useless.\n", program_name);
2547
2548 if (setgid(global.gid) == -1) {
2549 ha_alert("[%s.main()] Cannot set gid %d.\n", program_name, global.gid);
2550 protocol_unbind_all();
2551 exit(1);
2552 }
2553 }
2554
2555 if (global.uid && setuid(global.uid) == -1) {
2556 ha_alert("[%s.main()] Cannot set uid %d.\n", program_name, global.uid);
2557 protocol_unbind_all();
2558 exit(1);
2559 }
2560}
2561
Willy Tarreaubaaee002006-06-26 02:48:02 +02002562int main(int argc, char **argv)
2563{
2564 int err, retry;
2565 struct rlimit limit;
Willy Tarreau269ab312012-09-05 08:02:48 +02002566 int pidfd = -1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002567
Olivier Houchard5fa300d2018-02-03 15:15:21 +01002568 setvbuf(stdout, NULL, _IONBF, 0);
Willy Tarreau5794fb02018-11-25 18:43:29 +01002569
Willy Tarreauff9c9142019-02-07 10:39:36 +01002570 /* this can only safely be done here, though it's optimized away by
2571 * the compiler.
2572 */
2573 if (MAX_PROCS < 1 || MAX_PROCS > LONGBITS) {
2574 ha_alert("MAX_PROCS value must be between 1 and %d inclusive; "
2575 "HAProxy was built with value %d, please fix it and rebuild.\n",
2576 LONGBITS, MAX_PROCS);
2577 exit(1);
2578 }
2579
Willy Tarreaubf696402019-03-01 10:09:28 +01002580 /* take a copy of initial limits before we possibly change them */
2581 getrlimit(RLIMIT_NOFILE, &limit);
Willy Tarreau2bd0f812020-10-13 15:36:08 +02002582
2583 if (limit.rlim_max == RLIM_INFINITY)
2584 limit.rlim_max = limit.rlim_cur;
Willy Tarreaubf696402019-03-01 10:09:28 +01002585 rlim_fd_cur_at_boot = limit.rlim_cur;
2586 rlim_fd_max_at_boot = limit.rlim_max;
2587
Willy Tarreau5794fb02018-11-25 18:43:29 +01002588 /* process all initcalls in order of potential dependency */
2589 RUN_INITCALLS(STG_PREPARE);
2590 RUN_INITCALLS(STG_LOCK);
2591 RUN_INITCALLS(STG_ALLOC);
2592 RUN_INITCALLS(STG_POOL);
2593 RUN_INITCALLS(STG_REGISTER);
2594 RUN_INITCALLS(STG_INIT);
2595
Emeric Bruncf20bf12010-10-22 16:06:11 +02002596 init(argc, argv);
Willy Tarreau24f4efa2010-08-27 17:56:48 +02002597 signal_register_fct(SIGQUIT, dump, SIGQUIT);
2598 signal_register_fct(SIGUSR1, sig_soft_stop, SIGUSR1);
2599 signal_register_fct(SIGHUP, sig_dump_state, SIGHUP);
William Lallemand73b85e72017-06-01 17:38:51 +02002600 signal_register_fct(SIGUSR2, NULL, 0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002601
Willy Tarreaue437c442010-03-17 18:02:46 +01002602 /* Always catch SIGPIPE even on platforms which define MSG_NOSIGNAL.
2603 * Some recent FreeBSD setups report broken pipes, and MSG_NOSIGNAL
2604 * was defined there, so let's stay on the safe side.
Willy Tarreaubaaee002006-06-26 02:48:02 +02002605 */
Willy Tarreau24f4efa2010-08-27 17:56:48 +02002606 signal_register_fct(SIGPIPE, NULL, 0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002607
Willy Tarreaudc23a922011-02-16 11:10:36 +01002608 /* ulimits */
2609 if (!global.rlimit_nofile)
2610 global.rlimit_nofile = global.maxsock;
2611
2612 if (global.rlimit_nofile) {
Willy Tarreaue5cfdac2019-03-01 10:32:05 +01002613 limit.rlim_cur = global.rlimit_nofile;
2614 limit.rlim_max = MAX(rlim_fd_max_at_boot, limit.rlim_cur);
2615
Willy Tarreaudc23a922011-02-16 11:10:36 +01002616 if (setrlimit(RLIMIT_NOFILE, &limit) == -1) {
Willy Tarreauef635472016-06-21 11:48:18 +02002617 getrlimit(RLIMIT_NOFILE, &limit);
William Dauchy0fec3ab2019-10-27 20:08:11 +01002618 if (global.tune.options & GTUNE_STRICT_LIMITS) {
2619 ha_alert("[%s.main()] Cannot raise FD limit to %d, limit is %d.\n",
2620 argv[0], global.rlimit_nofile, (int)limit.rlim_cur);
Jerome Magnin50f757c2021-01-12 20:19:38 +01002621 exit(1);
William Dauchy0fec3ab2019-10-27 20:08:11 +01002622 }
2623 else {
2624 /* try to set it to the max possible at least */
2625 limit.rlim_cur = limit.rlim_max;
2626 if (setrlimit(RLIMIT_NOFILE, &limit) != -1)
2627 getrlimit(RLIMIT_NOFILE, &limit);
Willy Tarreau164dd0b2016-06-21 11:51:59 +02002628
William Dauchya5194602020-03-28 19:29:58 +01002629 ha_warning("[%s.main()] Cannot raise FD limit to %d, limit is %d.\n",
William Dauchy0fec3ab2019-10-27 20:08:11 +01002630 argv[0], global.rlimit_nofile, (int)limit.rlim_cur);
2631 global.rlimit_nofile = limit.rlim_cur;
2632 }
Willy Tarreaudc23a922011-02-16 11:10:36 +01002633 }
2634 }
2635
2636 if (global.rlimit_memmax) {
2637 limit.rlim_cur = limit.rlim_max =
Willy Tarreau70060452015-12-14 12:46:07 +01002638 global.rlimit_memmax * 1048576ULL;
Willy Tarreaudc23a922011-02-16 11:10:36 +01002639#ifdef RLIMIT_AS
2640 if (setrlimit(RLIMIT_AS, &limit) == -1) {
William Dauchy0fec3ab2019-10-27 20:08:11 +01002641 if (global.tune.options & GTUNE_STRICT_LIMITS) {
2642 ha_alert("[%s.main()] Cannot fix MEM limit to %d megs.\n",
2643 argv[0], global.rlimit_memmax);
Jerome Magnin50f757c2021-01-12 20:19:38 +01002644 exit(1);
William Dauchy0fec3ab2019-10-27 20:08:11 +01002645 }
2646 else
William Dauchya5194602020-03-28 19:29:58 +01002647 ha_warning("[%s.main()] Cannot fix MEM limit to %d megs.\n",
William Dauchy0fec3ab2019-10-27 20:08:11 +01002648 argv[0], global.rlimit_memmax);
Willy Tarreaudc23a922011-02-16 11:10:36 +01002649 }
2650#else
2651 if (setrlimit(RLIMIT_DATA, &limit) == -1) {
William Dauchy0fec3ab2019-10-27 20:08:11 +01002652 if (global.tune.options & GTUNE_STRICT_LIMITS) {
2653 ha_alert("[%s.main()] Cannot fix MEM limit to %d megs.\n",
2654 argv[0], global.rlimit_memmax);
Jerome Magnin50f757c2021-01-12 20:19:38 +01002655 exit(1);
William Dauchy0fec3ab2019-10-27 20:08:11 +01002656 }
2657 else
William Dauchya5194602020-03-28 19:29:58 +01002658 ha_warning("[%s.main()] Cannot fix MEM limit to %d megs.\n",
William Dauchy0fec3ab2019-10-27 20:08:11 +01002659 argv[0], global.rlimit_memmax);
Willy Tarreaudc23a922011-02-16 11:10:36 +01002660 }
2661#endif
2662 }
2663
Olivier Houchardf73629d2017-04-05 22:33:04 +02002664 if (old_unixsocket) {
William Lallemand85b0bd92017-06-01 17:38:53 +02002665 if (strcmp("/dev/null", old_unixsocket) != 0) {
Willy Tarreau42961742020-08-28 18:42:45 +02002666 if (sock_get_old_sockets(old_unixsocket) != 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002667 ha_alert("Failed to get the sockets from the old process!\n");
William Lallemand85b0bd92017-06-01 17:38:53 +02002668 if (!(global.mode & MODE_MWORKER))
2669 exit(1);
2670 }
Olivier Houchardf73629d2017-04-05 22:33:04 +02002671 }
2672 }
William Lallemand85b0bd92017-06-01 17:38:53 +02002673 get_cur_unixsocket();
2674
Willy Tarreaubaaee002006-06-26 02:48:02 +02002675 /* We will loop at most 100 times with 10 ms delay each time.
2676 * That's at most 1 second. We only send a signal to old pids
2677 * if we cannot grab at least one port.
2678 */
2679 retry = MAX_START_RETRIES;
2680 err = ERR_NONE;
2681 while (retry >= 0) {
2682 struct timeval w;
Willy Tarreaue91bff22020-09-02 11:11:43 +02002683 err = protocol_bind_all(retry == 0 || nb_oldpids == 0);
Willy Tarreaue13e9252007-12-20 23:05:50 +01002684 /* exit the loop on no error or fatal error */
2685 if ((err & (ERR_RETRYABLE|ERR_FATAL)) != ERR_RETRYABLE)
Willy Tarreaubaaee002006-06-26 02:48:02 +02002686 break;
Willy Tarreaubb545b42010-08-25 12:58:59 +02002687 if (nb_oldpids == 0 || retry == 0)
Willy Tarreaubaaee002006-06-26 02:48:02 +02002688 break;
2689
2690 /* FIXME-20060514: Solaris and OpenBSD do not support shutdown() on
2691 * listening sockets. So on those platforms, it would be wiser to
2692 * simply send SIGUSR1, which will not be undoable.
2693 */
Willy Tarreaubb545b42010-08-25 12:58:59 +02002694 if (tell_old_pids(SIGTTOU) == 0) {
2695 /* no need to wait if we can't contact old pids */
2696 retry = 0;
2697 continue;
2698 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002699 /* give some time to old processes to stop listening */
2700 w.tv_sec = 0;
2701 w.tv_usec = 10*1000;
2702 select(0, NULL, NULL, NULL, &w);
2703 retry--;
2704 }
2705
Willy Tarreaue91bff22020-09-02 11:11:43 +02002706 /* Note: protocol_bind_all() sends an alert when it fails. */
Willy Tarreau0a3b9d92009-02-04 17:05:23 +01002707 if ((err & ~ERR_WARN) != ERR_NONE) {
Willy Tarreaue91bff22020-09-02 11:11:43 +02002708 ha_alert("[%s.main()] Some protocols failed to start their listeners! Exiting.\n", argv[0]);
Willy Tarreauf68da462009-06-09 14:36:00 +02002709 if (retry != MAX_START_RETRIES && nb_oldpids) {
2710 protocol_unbind_all(); /* cleanup everything we can */
Willy Tarreaubaaee002006-06-26 02:48:02 +02002711 tell_old_pids(SIGTTIN);
Willy Tarreauf68da462009-06-09 14:36:00 +02002712 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002713 exit(1);
2714 }
2715
William Lallemand944e6192018-11-21 15:48:31 +01002716 if (!(global.mode & MODE_MWORKER_WAIT) && listeners == 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002717 ha_alert("[%s.main()] No enabled listener found (check for 'bind' directives) ! Exiting.\n", argv[0]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002718 /* Note: we don't have to send anything to the old pids because we
2719 * never stopped them. */
2720 exit(1);
2721 }
2722
Willy Tarreaue91bff22020-09-02 11:11:43 +02002723 /* Ok, all listeners should now be bound, close any leftover sockets
Olivier Houchardf73629d2017-04-05 22:33:04 +02002724 * the previous process gave us, we don't need them anymore
2725 */
2726 while (xfer_sock_list != NULL) {
2727 struct xfer_sock_list *tmpxfer = xfer_sock_list->next;
2728 close(xfer_sock_list->fd);
2729 free(xfer_sock_list->iface);
2730 free(xfer_sock_list->namespace);
2731 free(xfer_sock_list);
2732 xfer_sock_list = tmpxfer;
2733 }
Willy Tarreaudd815982007-10-16 12:25:14 +02002734
Willy Tarreaubaaee002006-06-26 02:48:02 +02002735 /* prepare pause/play signals */
Willy Tarreau24f4efa2010-08-27 17:56:48 +02002736 signal_register_fct(SIGTTOU, sig_pause, SIGTTOU);
2737 signal_register_fct(SIGTTIN, sig_listen, SIGTTIN);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002738
Willy Tarreaubaaee002006-06-26 02:48:02 +02002739 /* MODE_QUIET can inhibit alerts and warnings below this line */
2740
PiBa-NL149a81a2017-12-25 21:03:31 +01002741 if (getenv("HAPROXY_MWORKER_REEXEC") != NULL) {
2742 /* either stdin/out/err are already closed or should stay as they are. */
2743 if ((global.mode & MODE_DAEMON)) {
2744 /* daemon mode re-executing, stdin/stdout/stderr are already closed so keep quiet */
2745 global.mode &= ~MODE_VERBOSE;
2746 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
2747 }
2748 } else {
2749 if ((global.mode & MODE_QUIET) && !(global.mode & MODE_VERBOSE)) {
2750 /* detach from the tty */
William Lallemande1340412017-12-28 16:09:36 +01002751 stdio_quiet(-1);
PiBa-NL149a81a2017-12-25 21:03:31 +01002752 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002753 }
2754
2755 /* open log & pid files before the chroot */
William Lallemand80293002017-11-06 11:00:03 +01002756 if ((global.mode & MODE_DAEMON || global.mode & MODE_MWORKER) && global.pidfile != NULL) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02002757 unlink(global.pidfile);
2758 pidfd = open(global.pidfile, O_CREAT | O_WRONLY | O_TRUNC, 0644);
2759 if (pidfd < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002760 ha_alert("[%s.main()] Cannot create pidfile %s\n", argv[0], global.pidfile);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002761 if (nb_oldpids)
2762 tell_old_pids(SIGTTIN);
Willy Tarreaudd815982007-10-16 12:25:14 +02002763 protocol_unbind_all();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002764 exit(1);
2765 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002766 }
2767
Willy Tarreaub38651a2007-03-24 17:24:39 +01002768 if ((global.last_checks & LSTCHK_NETADM) && global.uid) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002769 ha_alert("[%s.main()] Some configuration options require full privileges, so global.uid cannot be changed.\n"
2770 "", argv[0]);
Willy Tarreaudd815982007-10-16 12:25:14 +02002771 protocol_unbind_all();
Willy Tarreaub38651a2007-03-24 17:24:39 +01002772 exit(1);
2773 }
2774
Jackie Tapia749f74c2020-07-22 18:59:40 -05002775 /* If the user is not root, we'll still let them try the configuration
2776 * but we inform them that unexpected behaviour may occur.
Willy Tarreau4e30ed72009-02-04 18:02:48 +01002777 */
2778 if ((global.last_checks & LSTCHK_NETADM) && getuid())
Christopher Faulet767a84b2017-11-24 16:50:31 +01002779 ha_warning("[%s.main()] Some options which require full privileges"
2780 " might not work well.\n"
2781 "", argv[0]);
Willy Tarreau4e30ed72009-02-04 18:02:48 +01002782
William Lallemand095ba4c2017-06-01 17:38:50 +02002783 if ((global.mode & (MODE_MWORKER|MODE_DAEMON)) == 0) {
2784
2785 /* chroot if needed */
2786 if (global.chroot != NULL) {
2787 if (chroot(global.chroot) == -1 || chdir("/") == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002788 ha_alert("[%s.main()] Cannot chroot(%s).\n", argv[0], global.chroot);
William Lallemand095ba4c2017-06-01 17:38:50 +02002789 if (nb_oldpids)
2790 tell_old_pids(SIGTTIN);
2791 protocol_unbind_all();
2792 exit(1);
2793 }
Willy Tarreauf223cc02007-10-15 18:57:08 +02002794 }
Willy Tarreauf223cc02007-10-15 18:57:08 +02002795 }
2796
William Lallemand944e6192018-11-21 15:48:31 +01002797 if (nb_oldpids && !(global.mode & MODE_MWORKER_WAIT))
Willy Tarreaubb545b42010-08-25 12:58:59 +02002798 nb_oldpids = tell_old_pids(oldpids_sig);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002799
William Lallemand27edc4b2019-05-07 17:49:33 +02002800 /* send a SIGTERM to workers who have a too high reloads number */
2801 if ((global.mode & MODE_MWORKER) && !(global.mode & MODE_MWORKER_WAIT))
2802 mworker_kill_max_reloads(SIGTERM);
2803
William Lallemand8a361b52017-06-20 11:20:33 +02002804 if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL)) {
2805 nb_oldpids = 0;
Willy Tarreau61cfdf42021-02-20 10:46:51 +01002806 ha_free(&oldpids);
William Lallemand8a361b52017-06-20 11:20:33 +02002807 }
2808
2809
Willy Tarreaubaaee002006-06-26 02:48:02 +02002810 /* Note that any error at this stage will be fatal because we will not
2811 * be able to restart the old pids.
2812 */
2813
William Dauchyf9af9d72019-11-17 15:47:16 +01002814 if ((global.mode & (MODE_MWORKER | MODE_DAEMON)) == 0)
2815 set_identity(argv[0]);
Willy Tarreau636848a2019-04-15 19:38:50 +02002816
Willy Tarreaubaaee002006-06-26 02:48:02 +02002817 /* check ulimits */
2818 limit.rlim_cur = limit.rlim_max = 0;
2819 getrlimit(RLIMIT_NOFILE, &limit);
2820 if (limit.rlim_cur < global.maxsock) {
William Dauchy0fec3ab2019-10-27 20:08:11 +01002821 if (global.tune.options & GTUNE_STRICT_LIMITS) {
2822 ha_alert("[%s.main()] FD limit (%d) too low for maxconn=%d/maxsock=%d. "
2823 "Please raise 'ulimit-n' to %d or more to avoid any trouble.\n",
2824 argv[0], (int)limit.rlim_cur, global.maxconn, global.maxsock,
2825 global.maxsock);
Jerome Magnin50f757c2021-01-12 20:19:38 +01002826 exit(1);
William Dauchy0fec3ab2019-10-27 20:08:11 +01002827 }
2828 else
2829 ha_alert("[%s.main()] FD limit (%d) too low for maxconn=%d/maxsock=%d. "
William Dauchya5194602020-03-28 19:29:58 +01002830 "Please raise 'ulimit-n' to %d or more to avoid any trouble.\n",
William Dauchy0fec3ab2019-10-27 20:08:11 +01002831 argv[0], (int)limit.rlim_cur, global.maxconn, global.maxsock,
2832 global.maxsock);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002833 }
2834
William Lallemand944e6192018-11-21 15:48:31 +01002835 if (global.mode & (MODE_DAEMON | MODE_MWORKER | MODE_MWORKER_WAIT)) {
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01002836 struct proxy *px;
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02002837 struct peers *curpeers;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002838 int ret = 0;
2839 int proc;
William Lallemande1340412017-12-28 16:09:36 +01002840 int devnullfd = -1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002841
William Lallemand095ba4c2017-06-01 17:38:50 +02002842 /*
2843 * if daemon + mworker: must fork here to let a master
2844 * process live in background before forking children
2845 */
William Lallemand73b85e72017-06-01 17:38:51 +02002846
2847 if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL)
2848 && (global.mode & MODE_MWORKER)
2849 && (global.mode & MODE_DAEMON)) {
William Lallemand095ba4c2017-06-01 17:38:50 +02002850 ret = fork();
2851 if (ret < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002852 ha_alert("[%s.main()] Cannot fork.\n", argv[0]);
William Lallemand095ba4c2017-06-01 17:38:50 +02002853 protocol_unbind_all();
2854 exit(1); /* there has been an error */
William Lallemandbfd8eb52018-07-04 15:31:23 +02002855 } else if (ret > 0) { /* parent leave to daemonize */
William Lallemand095ba4c2017-06-01 17:38:50 +02002856 exit(0);
William Lallemandbfd8eb52018-07-04 15:31:23 +02002857 } else /* change the process group ID in the child (master process) */
2858 setsid();
William Lallemand095ba4c2017-06-01 17:38:50 +02002859 }
William Lallemande20b6a62017-06-01 17:38:55 +02002860
William Lallemande20b6a62017-06-01 17:38:55 +02002861
William Lallemanddeed7802017-11-06 11:00:04 +01002862 /* if in master-worker mode, write the PID of the father */
2863 if (global.mode & MODE_MWORKER) {
2864 char pidstr[100];
Willy Tarreau76a80c72019-06-22 07:41:38 +02002865 snprintf(pidstr, sizeof(pidstr), "%d\n", (int)getpid());
Willy Tarreau46ec48b2018-01-23 19:20:19 +01002866 if (pidfd >= 0)
Willy Tarreau2e8ab6b2020-03-14 11:03:20 +01002867 DISGUISE(write(pidfd, pidstr, strlen(pidstr)));
William Lallemanddeed7802017-11-06 11:00:04 +01002868 }
2869
Willy Tarreaubaaee002006-06-26 02:48:02 +02002870 /* the father launches the required number of processes */
William Lallemand944e6192018-11-21 15:48:31 +01002871 if (!(global.mode & MODE_MWORKER_WAIT)) {
William Lallemand9a1ee7a2019-04-01 11:30:02 +02002872 if (global.mode & MODE_MWORKER)
2873 mworker_ext_launch_all();
William Lallemand944e6192018-11-21 15:48:31 +01002874 for (proc = 0; proc < global.nbproc; proc++) {
2875 ret = fork();
2876 if (ret < 0) {
2877 ha_alert("[%s.main()] Cannot fork.\n", argv[0]);
2878 protocol_unbind_all();
2879 exit(1); /* there has been an error */
2880 }
Willy Tarreau52bf8392020-03-08 00:42:37 +01002881 else if (ret == 0) { /* child breaks here */
2882 ha_random_jump96(relative_pid);
William Lallemand944e6192018-11-21 15:48:31 +01002883 break;
Willy Tarreau52bf8392020-03-08 00:42:37 +01002884 }
William Lallemand944e6192018-11-21 15:48:31 +01002885 if (pidfd >= 0 && !(global.mode & MODE_MWORKER)) {
2886 char pidstr[100];
2887 snprintf(pidstr, sizeof(pidstr), "%d\n", ret);
Willy Tarreau2e8ab6b2020-03-14 11:03:20 +01002888 DISGUISE(write(pidfd, pidstr, strlen(pidstr)));
William Lallemand944e6192018-11-21 15:48:31 +01002889 }
2890 if (global.mode & MODE_MWORKER) {
2891 struct mworker_proc *child;
William Lallemandce83b4a2018-10-26 14:47:30 +02002892
William Lallemand220567e2018-11-21 18:04:53 +01002893 ha_notice("New worker #%d (%d) forked\n", relative_pid, ret);
William Lallemand944e6192018-11-21 15:48:31 +01002894 /* find the right mworker_proc */
2895 list_for_each_entry(child, &proc_list, list) {
2896 if (child->relative_pid == relative_pid &&
William Lallemand8f7069a2019-04-12 16:09:23 +02002897 child->reloads == 0 && child->options & PROC_O_TYPE_WORKER) {
William Lallemand944e6192018-11-21 15:48:31 +01002898 child->timestamp = now.tv_sec;
2899 child->pid = ret;
William Lallemand1dc69632019-06-12 19:11:33 +02002900 child->version = strdup(haproxy_version);
William Lallemand944e6192018-11-21 15:48:31 +01002901 break;
2902 }
William Lallemandce83b4a2018-10-26 14:47:30 +02002903 }
2904 }
William Lallemandbc193052018-09-11 10:06:26 +02002905
William Lallemand944e6192018-11-21 15:48:31 +01002906 relative_pid++; /* each child will get a different one */
2907 pid_bit <<= 1;
2908 }
2909 } else {
2910 /* wait mode */
2911 global.nbproc = 1;
2912 proc = 1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002913 }
Willy Tarreaufc6c0322012-11-16 16:12:27 +01002914
2915#ifdef USE_CPU_AFFINITY
2916 if (proc < global.nbproc && /* child */
Willy Tarreauff9c9142019-02-07 10:39:36 +01002917 proc < MAX_PROCS && /* only the first 32/64 processes may be pinned */
Christopher Fauletcb6a9452017-11-22 16:50:41 +01002918 global.cpu_map.proc[proc]) /* only do this if the process has a CPU map */
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +02002919#ifdef __FreeBSD__
Olivier Houchard97148f62017-08-16 17:29:11 +02002920 {
2921 cpuset_t cpuset;
2922 int i;
Christopher Fauletcb6a9452017-11-22 16:50:41 +01002923 unsigned long cpu_map = global.cpu_map.proc[proc];
Olivier Houchard97148f62017-08-16 17:29:11 +02002924
2925 CPU_ZERO(&cpuset);
2926 while ((i = ffsl(cpu_map)) > 0) {
2927 CPU_SET(i - 1, &cpuset);
Cyril Bontéd400ab32018-03-12 21:47:39 +01002928 cpu_map &= ~(1UL << (i - 1));
Olivier Houchard97148f62017-08-16 17:29:11 +02002929 }
2930 ret = cpuset_setaffinity(CPU_LEVEL_WHICH, CPU_WHICH_PID, -1, sizeof(cpuset), &cpuset);
2931 }
David Carlier2d0493a2020-12-02 21:14:51 +00002932#elif defined(__linux__) || defined(__DragonFly__)
Christopher Fauletcb6a9452017-11-22 16:50:41 +01002933 sched_setaffinity(0, sizeof(unsigned long), (void *)&global.cpu_map.proc[proc]);
Willy Tarreaufc6c0322012-11-16 16:12:27 +01002934#endif
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +02002935#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +02002936 /* close the pidfile both in children and father */
Willy Tarreau269ab312012-09-05 08:02:48 +02002937 if (pidfd >= 0) {
2938 //lseek(pidfd, 0, SEEK_SET); /* debug: emulate eglibc bug */
2939 close(pidfd);
2940 }
Willy Tarreaud137dd32010-08-25 12:49:05 +02002941
2942 /* We won't ever use this anymore */
Willy Tarreau61cfdf42021-02-20 10:46:51 +01002943 ha_free(&global.pidfile);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002944
Willy Tarreauedaff0a2015-05-01 17:01:08 +02002945 if (proc == global.nbproc) {
William Lallemand944e6192018-11-21 15:48:31 +01002946 if (global.mode & (MODE_MWORKER|MODE_MWORKER_WAIT)) {
PiBa-NLbaf6ea42017-11-28 23:26:08 +01002947
2948 if ((!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE)) &&
2949 (global.mode & MODE_DAEMON)) {
2950 /* detach from the tty, this is required to properly daemonize. */
William Lallemande1340412017-12-28 16:09:36 +01002951 if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL))
2952 stdio_quiet(-1);
2953
PiBa-NLbaf6ea42017-11-28 23:26:08 +01002954 global.mode &= ~MODE_VERBOSE;
2955 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
PiBa-NLbaf6ea42017-11-28 23:26:08 +01002956 }
2957
William Lallemandb3f2be32018-09-11 10:06:18 +02002958 mworker_loop();
William Lallemand1499b9b2017-06-07 15:04:47 +02002959 /* should never get there */
2960 exit(EXIT_FAILURE);
Willy Tarreauedaff0a2015-05-01 17:01:08 +02002961 }
William Lallemandcf4e4962017-06-08 19:05:48 +02002962#if defined(USE_OPENSSL) && !defined(OPENSSL_NO_DH)
Grant Zhang872f9c22017-01-21 01:10:18 +00002963 ssl_free_dh();
2964#endif
William Lallemand1499b9b2017-06-07 15:04:47 +02002965 exit(0); /* parent must leave */
Willy Tarreauedaff0a2015-05-01 17:01:08 +02002966 }
2967
William Lallemandcb11fd22017-06-01 17:38:52 +02002968 /* child must never use the atexit function */
2969 atexit_flag = 0;
2970
William Lallemandbc193052018-09-11 10:06:26 +02002971 /* close useless master sockets */
2972 if (global.mode & MODE_MWORKER) {
2973 struct mworker_proc *child, *it;
2974 master = 0;
2975
William Lallemand309dc9a2018-10-26 14:47:45 +02002976 mworker_cli_proxy_stop();
2977
William Lallemandbc193052018-09-11 10:06:26 +02002978 /* free proc struct of other processes */
2979 list_for_each_entry_safe(child, it, &proc_list, list) {
William Lallemandce83b4a2018-10-26 14:47:30 +02002980 /* close the FD of the master side for all
2981 * workers, we don't need to close the worker
2982 * side of other workers since it's done with
2983 * the bind_proc */
Tim Duesterhus742e0f92018-11-25 20:03:39 +01002984 if (child->ipc_fd[0] >= 0)
2985 close(child->ipc_fd[0]);
William Lallemandce83b4a2018-10-26 14:47:30 +02002986 if (child->relative_pid == relative_pid &&
2987 child->reloads == 0) {
2988 /* keep this struct if this is our pid */
2989 proc_self = child;
William Lallemandbc193052018-09-11 10:06:26 +02002990 continue;
William Lallemandce83b4a2018-10-26 14:47:30 +02002991 }
William Lallemandbc193052018-09-11 10:06:26 +02002992 LIST_DEL(&child->list);
Tim Duesterhus9b7a9762019-05-16 20:23:22 +02002993 mworker_free_child(child);
2994 child = NULL;
William Lallemandbc193052018-09-11 10:06:26 +02002995 }
2996 }
Willy Tarreau1605c7a2018-01-23 19:01:49 +01002997
William Lallemande1340412017-12-28 16:09:36 +01002998 if (!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE)) {
2999 devnullfd = open("/dev/null", O_RDWR, 0);
3000 if (devnullfd < 0) {
3001 ha_alert("Cannot open /dev/null\n");
3002 exit(EXIT_FAILURE);
3003 }
3004 }
3005
William Lallemand095ba4c2017-06-01 17:38:50 +02003006 /* Must chroot and setgid/setuid in the children */
3007 /* chroot if needed */
3008 if (global.chroot != NULL) {
3009 if (chroot(global.chroot) == -1 || chdir("/") == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003010 ha_alert("[%s.main()] Cannot chroot1(%s).\n", argv[0], global.chroot);
William Lallemand095ba4c2017-06-01 17:38:50 +02003011 if (nb_oldpids)
3012 tell_old_pids(SIGTTIN);
3013 protocol_unbind_all();
3014 exit(1);
3015 }
3016 }
3017
Willy Tarreau61cfdf42021-02-20 10:46:51 +01003018 ha_free(&global.chroot);
William Dauchyf9af9d72019-11-17 15:47:16 +01003019 set_identity(argv[0]);
William Lallemand095ba4c2017-06-01 17:38:50 +02003020
William Lallemand7f80eb22017-05-26 18:19:55 +02003021 /* pass through every cli socket, and check if it's bound to
3022 * the current process and if it exposes listeners sockets.
3023 * Caution: the GTUNE_SOCKET_TRANSFER is now set after the fork.
3024 * */
3025
Willy Tarreau4975d142021-03-13 11:00:33 +01003026 if (global.cli_fe) {
William Lallemand7f80eb22017-05-26 18:19:55 +02003027 struct bind_conf *bind_conf;
3028
Willy Tarreau4975d142021-03-13 11:00:33 +01003029 list_for_each_entry(bind_conf, &global.cli_fe->conf.bind, by_fe) {
William Lallemand7f80eb22017-05-26 18:19:55 +02003030 if (bind_conf->level & ACCESS_FD_LISTENERS) {
Willy Tarreaue26993c2020-09-03 07:18:55 +02003031 if (!bind_conf->settings.bind_proc || bind_conf->settings.bind_proc & (1UL << proc)) {
William Lallemand7f80eb22017-05-26 18:19:55 +02003032 global.tune.options |= GTUNE_SOCKET_TRANSFER;
3033 break;
3034 }
3035 }
3036 }
3037 }
3038
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01003039 /* we might have to unbind some proxies from some processes */
Olivier Houchardfbc74e82017-11-24 16:54:05 +01003040 px = proxies_list;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01003041 while (px != NULL) {
Willy Tarreauc3914d42020-09-24 08:39:22 +02003042 if (px->bind_proc && !px->disabled) {
Willy Tarreau337c8352020-09-24 10:51:29 +02003043 if (!(px->bind_proc & (1UL << proc)))
3044 stop_proxy(px);
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01003045 }
3046 px = px->next;
3047 }
3048
Emeric Brunc47ba592020-10-07 10:13:10 +02003049 /* we might have to unbind some log forward proxies from some processes */
3050 px = cfg_log_forward;
3051 while (px != NULL) {
Willy Tarreauc3914d42020-09-24 08:39:22 +02003052 if (px->bind_proc && !px->disabled) {
Willy Tarreau337c8352020-09-24 10:51:29 +02003053 if (!(px->bind_proc & (1UL << proc)))
3054 stop_proxy(px);
Emeric Brunc47ba592020-10-07 10:13:10 +02003055 }
3056 px = px->next;
3057 }
3058
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02003059 /* we might have to unbind some peers sections from some processes */
Frédéric Lécailleed2b4a62017-07-13 09:07:09 +02003060 for (curpeers = cfg_peers; curpeers; curpeers = curpeers->next) {
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02003061 if (!curpeers->peers_fe)
3062 continue;
3063
3064 if (curpeers->peers_fe->bind_proc & (1UL << proc))
3065 continue;
3066
3067 stop_proxy(curpeers->peers_fe);
3068 /* disable this peer section so that it kills itself */
Willy Tarreau47c8c022015-09-28 16:39:25 +02003069 signal_unregister_handler(curpeers->sighandler);
Olivier Houchard3f795f72019-04-17 22:51:06 +02003070 task_destroy(curpeers->sync_task);
Willy Tarreau47c8c022015-09-28 16:39:25 +02003071 curpeers->sync_task = NULL;
Olivier Houchard3f795f72019-04-17 22:51:06 +02003072 task_destroy(curpeers->peers_fe->task);
Willy Tarreau47c8c022015-09-28 16:39:25 +02003073 curpeers->peers_fe->task = NULL;
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02003074 curpeers->peers_fe = NULL;
3075 }
3076
William Lallemand2e8fad92018-11-13 16:18:23 +01003077 /*
3078 * This is only done in daemon mode because we might want the
3079 * logs on stdout in mworker mode. If we're NOT in QUIET mode,
3080 * we should now close the 3 first FDs to ensure that we can
3081 * detach from the TTY. We MUST NOT do it in other cases since
3082 * it would have already be done, and 0-2 would have been
3083 * affected to listening sockets
Willy Tarreaubaaee002006-06-26 02:48:02 +02003084 */
William Lallemand2e8fad92018-11-13 16:18:23 +01003085 if ((global.mode & MODE_DAEMON) &&
3086 (!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE))) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02003087 /* detach from the tty */
William Lallemande1340412017-12-28 16:09:36 +01003088 stdio_quiet(devnullfd);
Willy Tarreau106cb762008-11-16 07:40:34 +01003089 global.mode &= ~MODE_VERBOSE;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003090 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
3091 }
3092 pid = getpid(); /* update child's pid */
William Lallemandbfd8eb52018-07-04 15:31:23 +02003093 if (!(global.mode & MODE_MWORKER)) /* in mworker mode we don't want a new pgid for the children */
3094 setsid();
Willy Tarreau2ff76222007-04-09 19:29:56 +02003095 fork_poller();
Willy Tarreaubaaee002006-06-26 02:48:02 +02003096 }
3097
William Dauchye039f262019-11-17 15:47:15 +01003098 /* try our best to re-enable core dumps depending on system capabilities.
3099 * What is addressed here :
3100 * - remove file size limits
3101 * - remove core size limits
3102 * - mark the process dumpable again if it lost it due to user/group
3103 */
3104 if (global.tune.options & GTUNE_SET_DUMPABLE) {
3105 limit.rlim_cur = limit.rlim_max = RLIM_INFINITY;
3106
3107#if defined(RLIMIT_FSIZE)
3108 if (setrlimit(RLIMIT_FSIZE, &limit) == -1) {
3109 if (global.tune.options & GTUNE_STRICT_LIMITS) {
3110 ha_alert("[%s.main()] Failed to set the raise the maximum "
3111 "file size.\n", argv[0]);
Jerome Magnin50f757c2021-01-12 20:19:38 +01003112 exit(1);
William Dauchye039f262019-11-17 15:47:15 +01003113 }
3114 else
3115 ha_warning("[%s.main()] Failed to set the raise the maximum "
William Dauchya5194602020-03-28 19:29:58 +01003116 "file size.\n", argv[0]);
William Dauchye039f262019-11-17 15:47:15 +01003117 }
3118#endif
3119
3120#if defined(RLIMIT_CORE)
3121 if (setrlimit(RLIMIT_CORE, &limit) == -1) {
3122 if (global.tune.options & GTUNE_STRICT_LIMITS) {
3123 ha_alert("[%s.main()] Failed to set the raise the core "
3124 "dump size.\n", argv[0]);
Jerome Magnin50f757c2021-01-12 20:19:38 +01003125 exit(1);
William Dauchye039f262019-11-17 15:47:15 +01003126 }
3127 else
3128 ha_warning("[%s.main()] Failed to set the raise the core "
William Dauchya5194602020-03-28 19:29:58 +01003129 "dump size.\n", argv[0]);
William Dauchye039f262019-11-17 15:47:15 +01003130 }
3131#endif
3132
3133#if defined(USE_PRCTL)
3134 if (prctl(PR_SET_DUMPABLE, 1, 0, 0, 0) == -1)
3135 ha_warning("[%s.main()] Failed to set the dumpable flag, "
3136 "no core will be dumped.\n", argv[0]);
3137#endif
3138 }
3139
Christopher Faulete3a5e352017-10-24 13:53:54 +02003140 global.mode &= ~MODE_STARTING;
Willy Tarreau4f60f162007-04-08 16:39:58 +02003141 /*
3142 * That's it : the central polling loop. Run until we stop.
3143 */
Christopher Faulet1d17c102017-08-29 15:38:48 +02003144#ifdef USE_THREAD
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003145 {
William Lallemand1aab50b2018-06-07 09:46:01 +02003146 sigset_t blocked_sig, old_sig;
Willy Tarreauc40efc12019-05-03 09:22:44 +02003147 int i;
3148
William Lallemand1aab50b2018-06-07 09:46:01 +02003149 /* ensure the signals will be blocked in every thread */
3150 sigfillset(&blocked_sig);
3151 sigdelset(&blocked_sig, SIGPROF);
3152 sigdelset(&blocked_sig, SIGBUS);
3153 sigdelset(&blocked_sig, SIGFPE);
3154 sigdelset(&blocked_sig, SIGILL);
3155 sigdelset(&blocked_sig, SIGSEGV);
3156 pthread_sigmask(SIG_SETMASK, &blocked_sig, &old_sig);
3157
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003158 /* Create nbthread-1 thread. The first thread is the current process */
David Carliera92c5ce2019-09-13 05:03:12 +01003159 ha_thread_info[0].pthread = pthread_self();
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003160 for (i = 1; i < global.nbthread; i++)
David Carliera92c5ce2019-09-13 05:03:12 +01003161 pthread_create(&ha_thread_info[i].pthread, NULL, &run_thread_poll_loop, (void *)(long)i);
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003162
Christopher Faulet62519022017-10-16 15:49:32 +02003163#ifdef USE_CPU_AFFINITY
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003164 /* Now the CPU affinity for all threads */
Willy Tarreau7764a572019-07-16 15:10:34 +02003165 if (global.cpu_map.proc_t1[relative_pid-1])
3166 global.cpu_map.thread[0] &= global.cpu_map.proc_t1[relative_pid-1];
3167
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003168 for (i = 0; i < global.nbthread; i++) {
Christopher Fauletcb6a9452017-11-22 16:50:41 +01003169 if (global.cpu_map.proc[relative_pid-1])
Willy Tarreau81492c92019-05-03 09:41:23 +02003170 global.cpu_map.thread[i] &= global.cpu_map.proc[relative_pid-1];
Christopher Faulet62519022017-10-16 15:49:32 +02003171
Willy Tarreau421f02e2018-01-20 18:19:22 +01003172 if (i < MAX_THREADS && /* only the first 32/64 threads may be pinned */
Willy Tarreau81492c92019-05-03 09:41:23 +02003173 global.cpu_map.thread[i]) {/* only do this if the thread has a THREAD map */
David Carlier5e4c8e22019-09-13 05:12:58 +01003174#if defined(__APPLE__)
3175 int j;
3176 unsigned long cpu_map = global.cpu_map.thread[i];
3177
3178 while ((j = ffsl(cpu_map)) > 0) {
3179 thread_affinity_policy_data_t cpu_set = { j - 1 };
3180 thread_port_t mthread = pthread_mach_thread_np(ha_thread_info[i].pthread);
3181 thread_policy_set(mthread, THREAD_AFFINITY_POLICY, (thread_policy_t)&cpu_set, 1);
3182 cpu_map &= ~(1UL << (j - 1));
3183 }
3184#else
Olivier Houchard829aa242017-12-01 18:19:43 +01003185#if defined(__FreeBSD__) || defined(__NetBSD__)
3186 cpuset_t cpuset;
3187#else
3188 cpu_set_t cpuset;
3189#endif
3190 int j;
Willy Tarreau81492c92019-05-03 09:41:23 +02003191 unsigned long cpu_map = global.cpu_map.thread[i];
Olivier Houchard829aa242017-12-01 18:19:43 +01003192
3193 CPU_ZERO(&cpuset);
3194
3195 while ((j = ffsl(cpu_map)) > 0) {
3196 CPU_SET(j - 1, &cpuset);
Cyril Bontéd400ab32018-03-12 21:47:39 +01003197 cpu_map &= ~(1UL << (j - 1));
Olivier Houchard829aa242017-12-01 18:19:43 +01003198 }
David Carliera92c5ce2019-09-13 05:03:12 +01003199 pthread_setaffinity_np(ha_thread_info[i].pthread,
Olivier Houchard829aa242017-12-01 18:19:43 +01003200 sizeof(cpuset), &cpuset);
David Carlier5e4c8e22019-09-13 05:12:58 +01003201#endif
Olivier Houchard829aa242017-12-01 18:19:43 +01003202 }
Christopher Faulet1d17c102017-08-29 15:38:48 +02003203 }
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003204#endif /* !USE_CPU_AFFINITY */
3205
William Lallemand1aab50b2018-06-07 09:46:01 +02003206 /* when multithreading we need to let only the thread 0 handle the signals */
William Lallemandd3801c12018-09-11 10:06:23 +02003207 haproxy_unblock_signals();
William Lallemand1aab50b2018-06-07 09:46:01 +02003208
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003209 /* Finally, start the poll loop for the first thread */
Willy Tarreaub4f7cc32019-05-03 09:27:30 +02003210 run_thread_poll_loop(0);
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003211
3212 /* Wait the end of other threads */
3213 for (i = 1; i < global.nbthread; i++)
David Carliera92c5ce2019-09-13 05:03:12 +01003214 pthread_join(ha_thread_info[i].pthread, NULL);
Christopher Faulet1d17c102017-08-29 15:38:48 +02003215
Christopher Fauletb79a94c2017-05-30 15:34:30 +02003216#if defined(DEBUG_THREAD) || defined(DEBUG_FULL)
3217 show_lock_stats();
3218#endif
Christopher Faulet1d17c102017-08-29 15:38:48 +02003219 }
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003220#else /* ! USE_THREAD */
William Lallemandd3801c12018-09-11 10:06:23 +02003221 haproxy_unblock_signals();
Willy Tarreaub4f7cc32019-05-03 09:27:30 +02003222 run_thread_poll_loop(0);
Christopher Faulet62519022017-10-16 15:49:32 +02003223#endif
Christopher Faulet1d17c102017-08-29 15:38:48 +02003224
Tim Duesterhus0a3b43d2020-06-14 00:37:42 +02003225 deinit_and_exit(0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003226}
3227
Willy Tarreaubaaee002006-06-26 02:48:02 +02003228/*
3229 * Local variables:
3230 * c-indent-level: 8
3231 * c-basic-offset: 8
3232 * End:
3233 */