blob: 9b1ac46c6bc26790ebcb585deb57a4b4debf8d27 [file] [log] [blame]
Willy Tarreaubaaee002006-06-26 02:48:02 +02001/*
2 * Configuration parser
3 *
Willy Tarreauff011f22011-01-06 17:51:27 +01004 * Copyright 2000-2011 Willy Tarreau <w@1wt.eu>
Willy Tarreaubaaee002006-06-26 02:48:02 +02005 *
6 * This program is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU General Public License
8 * as published by the Free Software Foundation; either version
9 * 2 of the License, or (at your option) any later version.
10 *
11 */
12
13#include <stdio.h>
14#include <stdlib.h>
15#include <string.h>
16#include <netdb.h>
17#include <ctype.h>
Willy Tarreau95c20ac2007-03-25 15:39:23 +020018#include <pwd.h>
19#include <grp.h>
Willy Tarreau0b4ed902007-03-26 00:18:40 +020020#include <errno.h>
Willy Tarreau3f49b302007-06-11 00:29:26 +020021#include <sys/types.h>
22#include <sys/stat.h>
23#include <fcntl.h>
24#include <unistd.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020025
Willy Tarreau2dd0d472006-06-29 17:53:05 +020026#include <common/cfgparse.h>
Willy Tarreauc7e42382012-08-24 19:22:53 +020027#include <common/chunk.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020028#include <common/config.h>
Willy Tarreau058e9072009-07-20 09:30:05 +020029#include <common/errors.h>
Willy Tarreau2dd0d472006-06-29 17:53:05 +020030#include <common/memory.h>
31#include <common/standard.h>
32#include <common/time.h>
33#include <common/uri_auth.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020034
35#include <types/capture.h>
36#include <types/global.h>
Emeric Brun32da3c42010-09-23 18:39:19 +020037#include <types/peers.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020038
Willy Tarreaueb0c6142007-05-07 00:53:22 +020039#include <proto/acl.h>
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +010040#include <proto/auth.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020041#include <proto/backend.h>
Willy Tarreauc7e42382012-08-24 19:22:53 +020042#include <proto/channel.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020043#include <proto/checks.h>
Willy Tarreaufbee7132007-10-18 13:53:22 +020044#include <proto/dumpstats.h>
Willy Tarreaueb472682010-05-28 18:46:57 +020045#include <proto/frontend.h>
Willy Tarreau34eb6712011-10-24 18:15:04 +020046#include <proto/hdr_idx.h>
Willy Tarreau6b2e11b2009-10-01 07:52:15 +020047#include <proto/lb_chash.h>
Willy Tarreauf09c6602012-02-13 17:12:08 +010048#include <proto/lb_fas.h>
Willy Tarreauf89c1872009-10-01 11:19:37 +020049#include <proto/lb_fwlc.h>
50#include <proto/lb_fwrr.h>
51#include <proto/lb_map.h>
Willy Tarreaud1d54542012-09-12 22:58:11 +020052#include <proto/listener.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020053#include <proto/log.h>
Willy Tarreauc6f4ce82009-06-10 11:09:37 +020054#include <proto/port_range.h>
Willy Tarreaud1d54542012-09-12 22:58:11 +020055#include <proto/protocol.h>
Willy Tarreaue6b98942007-10-29 01:09:36 +010056#include <proto/proto_tcp.h>
Emeric Bruned760922010-10-22 17:59:25 +020057#include <proto/proto_uxst.h>
Willy Tarreaue6b98942007-10-29 01:09:36 +010058#include <proto/proto_http.h>
Willy Tarreau2b5652f2006-12-31 17:46:05 +010059#include <proto/proxy.h>
Emeric Brun32da3c42010-09-23 18:39:19 +020060#include <proto/peers.h>
Willy Tarreaucd3b0942012-04-27 21:52:18 +020061#include <proto/sample.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020062#include <proto/server.h>
Willy Tarreau3bc13772008-12-07 11:50:35 +010063#include <proto/session.h>
Willy Tarreau75bf2c92012-08-20 17:01:35 +020064#include <proto/raw_sock.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020065#include <proto/task.h>
Emeric Brunb982a3d2010-01-04 15:45:53 +010066#include <proto/stick_table.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020067
Emeric Brunfc0421f2012-09-07 17:30:07 +020068#ifdef USE_OPENSSL
69#include <types/ssl_sock.h>
70#include <proto/ssl_sock.h>
71#include <proto/shctx.h>
72#endif /*USE_OPENSSL */
Willy Tarreaubaaee002006-06-26 02:48:02 +020073
Willy Tarreauf3c69202006-07-09 16:42:34 +020074/* This is the SSLv3 CLIENT HELLO packet used in conjunction with the
75 * ssl-hello-chk option to ensure that the remote server speaks SSL.
76 *
77 * Check RFC 2246 (TLSv1.0) sections A.3 and A.4 for details.
78 */
79const char sslv3_client_hello_pkt[] = {
80 "\x16" /* ContentType : 0x16 = Hanshake */
81 "\x03\x00" /* ProtocolVersion : 0x0300 = SSLv3 */
82 "\x00\x79" /* ContentLength : 0x79 bytes after this one */
83 "\x01" /* HanshakeType : 0x01 = CLIENT HELLO */
84 "\x00\x00\x75" /* HandshakeLength : 0x75 bytes after this one */
85 "\x03\x00" /* Hello Version : 0x0300 = v3 */
86 "\x00\x00\x00\x00" /* Unix GMT Time (s) : filled with <now> (@0x0B) */
87 "HAPROXYSSLCHK\nHAPROXYSSLCHK\n" /* Random : must be exactly 28 bytes */
88 "\x00" /* Session ID length : empty (no session ID) */
89 "\x00\x4E" /* Cipher Suite Length : 78 bytes after this one */
90 "\x00\x01" "\x00\x02" "\x00\x03" "\x00\x04" /* 39 most common ciphers : */
91 "\x00\x05" "\x00\x06" "\x00\x07" "\x00\x08" /* 0x01...0x1B, 0x2F...0x3A */
92 "\x00\x09" "\x00\x0A" "\x00\x0B" "\x00\x0C" /* This covers RSA/DH, */
93 "\x00\x0D" "\x00\x0E" "\x00\x0F" "\x00\x10" /* various bit lengths, */
94 "\x00\x11" "\x00\x12" "\x00\x13" "\x00\x14" /* SHA1/MD5, DES/3DES/AES... */
95 "\x00\x15" "\x00\x16" "\x00\x17" "\x00\x18"
96 "\x00\x19" "\x00\x1A" "\x00\x1B" "\x00\x2F"
97 "\x00\x30" "\x00\x31" "\x00\x32" "\x00\x33"
98 "\x00\x34" "\x00\x35" "\x00\x36" "\x00\x37"
99 "\x00\x38" "\x00\x39" "\x00\x3A"
100 "\x01" /* Compression Length : 0x01 = 1 byte for types */
101 "\x00" /* Compression Type : 0x00 = NULL compression */
102};
103
Willy Tarreau3842f002009-06-14 11:39:52 +0200104/* various keyword modifiers */
105enum kw_mod {
106 KWM_STD = 0, /* normal */
107 KWM_NO, /* "no" prefixed before the keyword */
108 KWM_DEF, /* "default" prefixed before the keyword */
109};
110
Willy Tarreau13943ab2006-12-31 00:24:10 +0100111/* some of the most common options which are also the easiest to handle */
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100112struct cfg_opt {
Willy Tarreau13943ab2006-12-31 00:24:10 +0100113 const char *name;
114 unsigned int val;
115 unsigned int cap;
Willy Tarreau4fee4e92007-01-06 21:09:17 +0100116 unsigned int checks;
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100117 unsigned int mode;
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100118};
119
120/* proxy->options */
121static const struct cfg_opt cfg_opts[] =
Willy Tarreau13943ab2006-12-31 00:24:10 +0100122{
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100123 { "abortonclose", PR_O_ABRT_CLOSE, PR_CAP_BE, 0, 0 },
124 { "allbackups", PR_O_USE_ALL_BK, PR_CAP_BE, 0, 0 },
125 { "checkcache", PR_O_CHK_CACHE, PR_CAP_BE, 0, PR_MODE_HTTP },
126 { "clitcpka", PR_O_TCP_CLI_KA, PR_CAP_FE, 0, 0 },
127 { "contstats", PR_O_CONTSTATS, PR_CAP_FE, 0, 0 },
128 { "dontlognull", PR_O_NULLNOLOG, PR_CAP_FE, 0, 0 },
129 { "forceclose", PR_O_FORCE_CLO, PR_CAP_FE | PR_CAP_BE, 0, PR_MODE_HTTP },
130 { "http_proxy", PR_O_HTTP_PROXY, PR_CAP_FE | PR_CAP_BE, 0, PR_MODE_HTTP },
131 { "httpclose", PR_O_HTTP_CLOSE, PR_CAP_FE | PR_CAP_BE, 0, PR_MODE_HTTP },
132 { "keepalive", PR_O_KEEPALIVE, PR_CAP_NONE, 0, PR_MODE_HTTP },
133 { "http-server-close", PR_O_SERVER_CLO, PR_CAP_FE | PR_CAP_BE, 0, PR_MODE_HTTP },
134 { "logasap", PR_O_LOGASAP, PR_CAP_FE, 0, 0 },
135 { "nolinger", PR_O_TCP_NOLING, PR_CAP_FE | PR_CAP_BE, 0, 0 },
136 { "persist", PR_O_PERSIST, PR_CAP_BE, 0, 0 },
137 { "redispatch", PR_O_REDISP, PR_CAP_BE, 0, 0 },
138 { "srvtcpka", PR_O_TCP_SRV_KA, PR_CAP_BE, 0, 0 },
Krzysztof Oledzki336d4752007-12-25 02:40:22 +0100139#ifdef TPROXY
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100140 { "transparent", PR_O_TRANSP, PR_CAP_BE, 0, 0 },
Cyril Bonté62846b22010-11-01 19:26:00 +0100141#else
142 { "transparent", 0, 0, 0, 0 },
Willy Tarreau8f922fc2007-01-06 21:11:49 +0100143#endif
144
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100145 { NULL, 0, 0, 0, 0 }
Willy Tarreau13943ab2006-12-31 00:24:10 +0100146};
147
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100148/* proxy->options2 */
149static const struct cfg_opt cfg_opts2[] =
150{
151#ifdef CONFIG_HAP_LINUX_SPLICE
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100152 { "splice-request", PR_O2_SPLIC_REQ, PR_CAP_FE|PR_CAP_BE, 0, 0 },
153 { "splice-response", PR_O2_SPLIC_RTR, PR_CAP_FE|PR_CAP_BE, 0, 0 },
154 { "splice-auto", PR_O2_SPLIC_AUT, PR_CAP_FE|PR_CAP_BE, 0, 0 },
Cyril Bonté62846b22010-11-01 19:26:00 +0100155#else
156 { "splice-request", 0, 0, 0, 0 },
157 { "splice-response", 0, 0, 0, 0 },
158 { "splice-auto", 0, 0, 0, 0 },
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100159#endif
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100160 { "accept-invalid-http-request", PR_O2_REQBUG_OK, PR_CAP_FE, 0, PR_MODE_HTTP },
161 { "accept-invalid-http-response", PR_O2_RSPBUG_OK, PR_CAP_BE, 0, PR_MODE_HTTP },
162 { "dontlog-normal", PR_O2_NOLOGNORM, PR_CAP_FE, 0, 0 },
163 { "log-separate-errors", PR_O2_LOGERRORS, PR_CAP_FE, 0, 0 },
164 { "log-health-checks", PR_O2_LOGHCHKS, PR_CAP_BE, 0, 0 },
165 { "socket-stats", PR_O2_SOCKSTAT, PR_CAP_FE, 0, 0 },
166 { "tcp-smart-accept", PR_O2_SMARTACC, PR_CAP_FE, 0, 0 },
167 { "tcp-smart-connect", PR_O2_SMARTCON, PR_CAP_BE, 0, 0 },
168 { "independant-streams", PR_O2_INDEPSTR, PR_CAP_FE|PR_CAP_BE, 0, 0 },
Jamie Gloudon801a0a32012-08-25 00:18:33 -0400169 { "independent-streams", PR_O2_INDEPSTR, PR_CAP_FE|PR_CAP_BE, 0, 0 },
Willy Tarreaue24fdfb2010-03-25 07:22:56 +0100170 { "http-use-proxy-header", PR_O2_USE_PXHDR, PR_CAP_FE, 0, PR_MODE_HTTP },
Willy Tarreaue52564c2010-04-27 22:19:14 +0200171 { "http-pretend-keepalive", PR_O2_FAKE_KA, PR_CAP_FE|PR_CAP_BE, 0, PR_MODE_HTTP },
Willy Tarreau96e31212011-05-30 18:10:30 +0200172 { "http-no-delay", PR_O2_NODELAY, PR_CAP_FE|PR_CAP_BE, 0, PR_MODE_HTTP },
Willy Tarreau66aa61f2009-01-18 21:44:07 +0100173 { NULL, 0, 0, 0 }
174};
Willy Tarreaubaaee002006-06-26 02:48:02 +0200175
Willy Tarreau6daf3432008-01-22 16:44:08 +0100176static char *cursection = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200177static struct proxy defproxy; /* fake proxy used to assign default values on all instances */
178int cfg_maxpconn = DEFAULT_MAXCONN; /* # of simultaneous connections per proxy (-N) */
Willy Tarreau5af24ef2009-03-15 15:23:16 +0100179int cfg_maxconn = 0; /* # of simultaneous connections, (-n) */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200180
Willy Tarreau5b2c3362008-07-09 19:39:06 +0200181/* List head of all known configuration keywords */
182static struct cfg_kw_list cfg_keywords = {
183 .list = LIST_HEAD_INIT(cfg_keywords.list)
184};
185
Willy Tarreaubaaee002006-06-26 02:48:02 +0200186/*
187 * converts <str> to a list of listeners which are dynamically allocated.
188 * The format is "{addr|'*'}:port[-end][,{addr|'*'}:port[-end]]*", where :
189 * - <addr> can be empty or "*" to indicate INADDR_ANY ;
190 * - <port> is a numerical port from 1 to 65535 ;
191 * - <end> indicates to use the range from <port> to <end> instead (inclusive).
192 * This can be repeated as many times as necessary, separated by a coma.
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200193 * Function returns 1 for success or 0 if error. In case of errors, if <err> is
194 * not NULL, it must be a valid pointer to either NULL or a freeable area that
195 * will be replaced with an error message.
Willy Tarreaubaaee002006-06-26 02:48:02 +0200196 */
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200197int str2listener(char *str, struct proxy *curproxy, struct bind_conf *bind_conf, const char *file, int line, char **err)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200198{
199 struct listener *l;
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100200 char *next, *dupstr;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200201 int port, end;
202
203 next = dupstr = strdup(str);
Krzysztof Piotr Oledzkiaeebf9b2009-10-04 15:43:17 +0200204
Willy Tarreaubaaee002006-06-26 02:48:02 +0200205 while (next && *next) {
206 struct sockaddr_storage ss;
207
208 str = next;
209 /* 1) look for the end of the first address */
Krzysztof Piotr Oledzki52d522b2009-01-27 16:57:08 +0100210 if ((next = strchr(str, ',')) != NULL) {
Willy Tarreaubaaee002006-06-26 02:48:02 +0200211 *next++ = 0;
212 }
213
Emeric Bruned760922010-10-22 17:59:25 +0200214 if (*str == '/') {
215 /* sun_path during a soft_stop rename is <unix_bind_prefix><path>.<pid>.<bak|tmp> */
216 /* so compute max path */
217 int prefix_path_len = global.unix_bind.prefix ? strlen(global.unix_bind.prefix) : 0;
218 int max_path_len = (sizeof(((struct sockaddr_un *)&ss)->sun_path) - 1) - (prefix_path_len + 1 + 5 + 1 + 3);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200219
Emeric Bruned760922010-10-22 17:59:25 +0200220 if (strlen(str) > max_path_len) {
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200221 memprintf(err, "socket path '%s' too long (max %d)\n", str, max_path_len);
Emeric Bruned760922010-10-22 17:59:25 +0200222 goto fail;
223 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200224
Willy Tarreaubaaee002006-06-26 02:48:02 +0200225 memset(&ss, 0, sizeof(ss));
Emeric Bruned760922010-10-22 17:59:25 +0200226 ss.ss_family = AF_UNIX;
227 if (global.unix_bind.prefix) {
228 memcpy(((struct sockaddr_un *)&ss)->sun_path, global.unix_bind.prefix, prefix_path_len);
229 strcpy(((struct sockaddr_un *)&ss)->sun_path+prefix_path_len, str);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200230 }
Emeric Bruned760922010-10-22 17:59:25 +0200231 else {
232 strcpy(((struct sockaddr_un *)&ss)->sun_path, str);
233 }
234 port = end = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200235 }
236 else {
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100237 struct sockaddr_storage *ss2;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200238
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100239 ss2 = str2sa_range(str, &port, &end);
240 if (!ss2) {
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200241 memprintf(err, "invalid listening address: '%s'\n", str);
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100242 goto fail;
Emeric Bruned760922010-10-22 17:59:25 +0200243 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200244
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100245 if (!port) {
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200246 memprintf(err, "missing port number: '%s'\n", str);
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100247 goto fail;
Emeric Bruned760922010-10-22 17:59:25 +0200248 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200249
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100250 /* OK the address looks correct */
251 ss = *ss2;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200252
Emeric Bruned760922010-10-22 17:59:25 +0200253 if (port < 1 || port > 65535) {
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200254 memprintf(err, "invalid port '%d' specified for address '%s'.\n", port, str);
Emeric Bruned760922010-10-22 17:59:25 +0200255 goto fail;
256 }
257
258 if (end < 1 || end > 65535) {
Willy Tarreau4fbb2282012-09-20 20:01:39 +0200259 memprintf(err, "invalid port '%d' specified for address '%s'.\n", end, str);
Emeric Bruned760922010-10-22 17:59:25 +0200260 goto fail;
261 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200262 }
263
264 for (; port <= end; port++) {
265 l = (struct listener *)calloc(1, sizeof(struct listener));
Willy Tarreau4348fad2012-09-20 16:48:07 +0200266 LIST_ADDQ(&curproxy->conf.listeners, &l->by_fe);
267 LIST_ADDQ(&bind_conf->listeners, &l->by_bind);
268 l->frontend = curproxy;
269 l->bind_conf = bind_conf;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200270
271 l->fd = -1;
272 l->addr = ss;
Willy Tarreauf7bc57c2012-10-03 00:19:48 +0200273 l->xprt = &raw_sock;
Willy Tarreaue6b98942007-10-29 01:09:36 +0100274 l->state = LI_INIT;
275
Willy Tarreau2dff0c22011-03-04 15:43:13 +0100276 if (ss.ss_family == AF_INET) {
Willy Tarreaubaaee002006-06-26 02:48:02 +0200277 ((struct sockaddr_in *)(&l->addr))->sin_port = htons(port);
Willy Tarreaue6b98942007-10-29 01:09:36 +0100278 tcpv4_add_listener(l);
279 }
Emeric Bruned760922010-10-22 17:59:25 +0200280 else if (ss.ss_family == AF_INET6) {
281 ((struct sockaddr_in6 *)(&l->addr))->sin6_port = htons(port);
282 tcpv6_add_listener(l);
283 }
284 else {
Emeric Bruned760922010-10-22 17:59:25 +0200285 uxst_add_listener(l);
286 }
Krzysztof Piotr Oledzkiaeebf9b2009-10-04 15:43:17 +0200287
Willy Tarreauaf7ad002010-08-31 15:39:26 +0200288 jobs++;
Willy Tarreaue6b98942007-10-29 01:09:36 +0100289 listeners++;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200290 } /* end for(port) */
291 } /* end while(next) */
292 free(dupstr);
Krzysztof Piotr Oledzkiaeebf9b2009-10-04 15:43:17 +0200293 return 1;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200294 fail:
295 free(dupstr);
Krzysztof Piotr Oledzkiaeebf9b2009-10-04 15:43:17 +0200296 return 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200297}
298
Willy Tarreau977b8e42006-12-29 14:19:17 +0100299/*
300 * Sends a warning if proxy <proxy> does not have at least one of the
301 * capabilities in <cap>. An optionnal <hint> may be added at the end
302 * of the warning to help the user. Returns 1 if a warning was emitted
303 * or 0 if the condition is valid.
304 */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100305int warnifnotcap(struct proxy *proxy, int cap, const char *file, int line, const char *arg, const char *hint)
Willy Tarreau977b8e42006-12-29 14:19:17 +0100306{
307 char *msg;
308
309 switch (cap) {
310 case PR_CAP_BE: msg = "no backend"; break;
311 case PR_CAP_FE: msg = "no frontend"; break;
312 case PR_CAP_RS: msg = "no ruleset"; break;
313 case PR_CAP_BE|PR_CAP_FE: msg = "neither frontend nor backend"; break;
314 default: msg = "not enough"; break;
315 }
316
317 if (!(proxy->cap & cap)) {
318 Warning("parsing [%s:%d] : '%s' ignored because %s '%s' has %s capability.%s\n",
Willy Tarreau2b5652f2006-12-31 17:46:05 +0100319 file, line, arg, proxy_type_str(proxy), proxy->id, msg, hint ? hint : "");
Willy Tarreau977b8e42006-12-29 14:19:17 +0100320 return 1;
321 }
322 return 0;
323}
Willy Tarreaubaaee002006-06-26 02:48:02 +0200324
Willy Tarreau61d18892009-03-31 10:49:21 +0200325/* Report a warning if a rule is placed after a 'block' rule.
326 * Return 1 if the warning has been emitted, otherwise 0.
327 */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100328int warnif_rule_after_block(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200329{
330 if (!LIST_ISEMPTY(&proxy->block_cond)) {
331 Warning("parsing [%s:%d] : a '%s' rule placed after a 'block' rule will still be processed before.\n",
332 file, line, arg);
333 return 1;
334 }
335 return 0;
336}
337
338/* Report a warning if a rule is placed after a reqrewrite rule.
339 * Return 1 if the warning has been emitted, otherwise 0.
340 */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100341int warnif_rule_after_reqxxx(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200342{
343 if (proxy->req_exp) {
344 Warning("parsing [%s:%d] : a '%s' rule placed after a 'reqxxx' rule will still be processed before.\n",
345 file, line, arg);
346 return 1;
347 }
348 return 0;
349}
350
351/* Report a warning if a rule is placed after a reqadd rule.
352 * Return 1 if the warning has been emitted, otherwise 0.
353 */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100354int warnif_rule_after_reqadd(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200355{
Willy Tarreaudeb9ed82010-01-03 21:03:22 +0100356 if (!LIST_ISEMPTY(&proxy->req_add)) {
Willy Tarreau61d18892009-03-31 10:49:21 +0200357 Warning("parsing [%s:%d] : a '%s' rule placed after a 'reqadd' rule will still be processed before.\n",
358 file, line, arg);
359 return 1;
360 }
361 return 0;
362}
363
364/* Report a warning if a rule is placed after a redirect rule.
365 * Return 1 if the warning has been emitted, otherwise 0.
366 */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100367int warnif_rule_after_redirect(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200368{
369 if (!LIST_ISEMPTY(&proxy->redirect_rules)) {
370 Warning("parsing [%s:%d] : a '%s' rule placed after a 'redirect' rule will still be processed before.\n",
371 file, line, arg);
372 return 1;
373 }
374 return 0;
375}
376
377/* Report a warning if a rule is placed after a 'use_backend' rule.
378 * Return 1 if the warning has been emitted, otherwise 0.
379 */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100380int warnif_rule_after_use_backend(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200381{
382 if (!LIST_ISEMPTY(&proxy->switching_rules)) {
383 Warning("parsing [%s:%d] : a '%s' rule placed after a 'use_backend' rule will still be processed before.\n",
384 file, line, arg);
385 return 1;
386 }
387 return 0;
388}
389
390/* report a warning if a block rule is dangerously placed */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100391int warnif_misplaced_block(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200392{
393 return warnif_rule_after_reqxxx(proxy, file, line, arg) ||
394 warnif_rule_after_reqadd(proxy, file, line, arg) ||
395 warnif_rule_after_redirect(proxy, file, line, arg) ||
396 warnif_rule_after_use_backend(proxy, file, line, arg);
397}
398
399/* report a warning if a reqxxx rule is dangerously placed */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100400int warnif_misplaced_reqxxx(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200401{
402 return warnif_rule_after_reqadd(proxy, file, line, arg) ||
403 warnif_rule_after_redirect(proxy, file, line, arg) ||
404 warnif_rule_after_use_backend(proxy, file, line, arg);
405}
406
407/* report a warning if a reqadd rule is dangerously placed */
Willy Tarreau3ec18a02010-01-28 19:01:34 +0100408int warnif_misplaced_reqadd(struct proxy *proxy, const char *file, int line, const char *arg)
Willy Tarreau61d18892009-03-31 10:49:21 +0200409{
410 return warnif_rule_after_redirect(proxy, file, line, arg) ||
411 warnif_rule_after_use_backend(proxy, file, line, arg);
412}
413
Willy Tarreauf1e98b82010-01-28 17:59:39 +0100414/* Report it if a request ACL condition uses some response-only parameters. It
415 * returns either 0 or ERR_WARN so that its result can be or'ed with err_code.
416 * Note that <cond> may be NULL and then will be ignored.
417 */
418static int warnif_cond_requires_resp(const struct acl_cond *cond, const char *file, int line)
419{
420 struct acl *acl;
421
422 if (!cond || !(cond->requires & ACL_USE_RTR_ANY))
423 return 0;
424
425 acl = cond_find_require(cond, ACL_USE_RTR_ANY);
426 Warning("parsing [%s:%d] : acl '%s' involves some response-only criteria which will be ignored.\n",
427 file, line, acl ? acl->name : "(unknown)");
428 return ERR_WARN;
429}
430
Willy Tarreaufdb563c2010-01-31 15:43:27 +0100431/* Report it if a request ACL condition uses some request-only volatile parameters.
432 * It returns either 0 or ERR_WARN so that its result can be or'ed with err_code.
433 * Note that <cond> may be NULL and then will be ignored.
434 */
435static int warnif_cond_requires_req(const struct acl_cond *cond, const char *file, int line)
436{
437 struct acl *acl;
438
439 if (!cond || !(cond->requires & ACL_USE_REQ_VOLATILE))
440 return 0;
441
442 acl = cond_find_require(cond, ACL_USE_REQ_VOLATILE);
443 Warning("parsing [%s:%d] : acl '%s' involves some volatile request-only criteria which will be ignored.\n",
444 file, line, acl ? acl->name : "(unknown)");
445 return ERR_WARN;
446}
447
Willy Tarreauf1e98b82010-01-28 17:59:39 +0100448
Willy Tarreaubaaee002006-06-26 02:48:02 +0200449/*
Willy Tarreau058e9072009-07-20 09:30:05 +0200450 * parse a line in a <global> section. Returns the error code, 0 if OK, or
451 * any combination of :
452 * - ERR_ABORT: must abort ASAP
453 * - ERR_FATAL: we can continue parsing but not start the service
454 * - ERR_WARN: a warning has been emitted
455 * - ERR_ALERT: an alert has been emitted
456 * Only the two first ones can stop processing, the two others are just
457 * indicators.
Willy Tarreaubaaee002006-06-26 02:48:02 +0200458 */
Willy Tarreau3842f002009-06-14 11:39:52 +0200459int cfg_parse_global(const char *file, int linenum, char **args, int kwm)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200460{
Willy Tarreau058e9072009-07-20 09:30:05 +0200461 int err_code = 0;
Willy Tarreau0a3dd742012-05-08 19:47:01 +0200462 char *errmsg = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200463
464 if (!strcmp(args[0], "global")) { /* new section */
465 /* no option, nothing special to do */
Willy Tarreau058e9072009-07-20 09:30:05 +0200466 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200467 }
Emeric Brunc8e8d122012-10-02 18:42:10 +0200468 else if (!strcmp(args[0], "ca-base")) {
469#ifdef USE_OPENSSL
470 if (global.ca_base != NULL) {
471 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
472 err_code |= ERR_ALERT;
473 goto out;
474 }
475 if (*(args[1]) == 0) {
476 Alert("parsing [%s:%d] : '%s' expects a directory path as an argument.\n", file, linenum, args[0]);
477 err_code |= ERR_ALERT | ERR_FATAL;
478 goto out;
479 }
480 global.ca_base = strdup(args[1]);
481#else
482 Alert("parsing [%s:%d] : '%s' is not implemented.\n", file, linenum, args[0]);
483 err_code |= ERR_ALERT | ERR_FATAL;
484 goto out;
485#endif
486 }
487 else if (!strcmp(args[0], "crt-base")) {
488#ifdef USE_OPENSSL
489 if (global.crt_base != NULL) {
490 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
491 err_code |= ERR_ALERT;
492 goto out;
493 }
494 if (*(args[1]) == 0) {
495 Alert("parsing [%s:%d] : '%s' expects a directory path as an argument.\n", file, linenum, args[0]);
496 err_code |= ERR_ALERT | ERR_FATAL;
497 goto out;
498 }
499 global.crt_base = strdup(args[1]);
500#else
501 Alert("parsing [%s:%d] : '%s' is not implemented.\n", file, linenum, args[0]);
502 err_code |= ERR_ALERT | ERR_FATAL;
503 goto out;
504#endif
505 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200506 else if (!strcmp(args[0], "daemon")) {
507 global.mode |= MODE_DAEMON;
508 }
509 else if (!strcmp(args[0], "debug")) {
510 global.mode |= MODE_DEBUG;
511 }
512 else if (!strcmp(args[0], "noepoll")) {
Willy Tarreau43b78992009-01-25 15:42:27 +0100513 global.tune.options &= ~GTUNE_USE_EPOLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200514 }
Willy Tarreaude99e992007-04-16 00:53:59 +0200515 else if (!strcmp(args[0], "nosepoll")) {
Willy Tarreau43b78992009-01-25 15:42:27 +0100516 global.tune.options &= ~GTUNE_USE_SEPOLL;
Willy Tarreaude99e992007-04-16 00:53:59 +0200517 }
518 else if (!strcmp(args[0], "nokqueue")) {
Willy Tarreau43b78992009-01-25 15:42:27 +0100519 global.tune.options &= ~GTUNE_USE_KQUEUE;
Willy Tarreaude99e992007-04-16 00:53:59 +0200520 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200521 else if (!strcmp(args[0], "nopoll")) {
Willy Tarreau43b78992009-01-25 15:42:27 +0100522 global.tune.options &= ~GTUNE_USE_POLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200523 }
Willy Tarreau3ab68cf2009-01-25 16:03:28 +0100524 else if (!strcmp(args[0], "nosplice")) {
525 global.tune.options &= ~GTUNE_USE_SPLICE;
526 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200527 else if (!strcmp(args[0], "quiet")) {
528 global.mode |= MODE_QUIET;
529 }
Willy Tarreau1db37712007-06-03 17:16:49 +0200530 else if (!strcmp(args[0], "tune.maxpollevents")) {
531 if (global.tune.maxpollevents != 0) {
532 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200533 err_code |= ERR_ALERT;
534 goto out;
Willy Tarreau1db37712007-06-03 17:16:49 +0200535 }
536 if (*(args[1]) == 0) {
537 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200538 err_code |= ERR_ALERT | ERR_FATAL;
539 goto out;
Willy Tarreau1db37712007-06-03 17:16:49 +0200540 }
541 global.tune.maxpollevents = atol(args[1]);
542 }
Willy Tarreaua0250ba2008-01-06 11:22:57 +0100543 else if (!strcmp(args[0], "tune.maxaccept")) {
544 if (global.tune.maxaccept != 0) {
545 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200546 err_code |= ERR_ALERT;
547 goto out;
Willy Tarreaua0250ba2008-01-06 11:22:57 +0100548 }
549 if (*(args[1]) == 0) {
550 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200551 err_code |= ERR_ALERT | ERR_FATAL;
552 goto out;
Willy Tarreaua0250ba2008-01-06 11:22:57 +0100553 }
554 global.tune.maxaccept = atol(args[1]);
555 }
Willy Tarreau43961d52010-10-04 20:39:20 +0200556 else if (!strcmp(args[0], "tune.chksize")) {
557 if (*(args[1]) == 0) {
558 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
559 err_code |= ERR_ALERT | ERR_FATAL;
560 goto out;
561 }
562 global.tune.chksize = atol(args[1]);
563 }
Emeric Brunfc32aca2012-09-03 12:10:29 +0200564#ifdef USE_OPENSSL
565 else if (!strcmp(args[0], "tune.sslcachesize")) {
566 if (*(args[1]) == 0) {
567 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
568 err_code |= ERR_ALERT | ERR_FATAL;
569 goto out;
570 }
571 global.tune.sslcachesize = atol(args[1]);
572 }
573#endif
Willy Tarreau27a674e2009-08-17 07:23:33 +0200574 else if (!strcmp(args[0], "tune.bufsize")) {
575 if (*(args[1]) == 0) {
576 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
577 err_code |= ERR_ALERT | ERR_FATAL;
578 goto out;
579 }
580 global.tune.bufsize = atol(args[1]);
581 if (global.tune.maxrewrite >= global.tune.bufsize / 2)
582 global.tune.maxrewrite = global.tune.bufsize / 2;
David du Colombier7af46052012-05-16 14:16:48 +0200583 trashlen = global.tune.bufsize;
584 trash = realloc(trash, trashlen);
Willy Tarreau27a674e2009-08-17 07:23:33 +0200585 }
586 else if (!strcmp(args[0], "tune.maxrewrite")) {
587 if (*(args[1]) == 0) {
588 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
589 err_code |= ERR_ALERT | ERR_FATAL;
590 goto out;
591 }
592 global.tune.maxrewrite = atol(args[1]);
593 if (global.tune.maxrewrite >= global.tune.bufsize / 2)
594 global.tune.maxrewrite = global.tune.bufsize / 2;
595 }
Willy Tarreaue803de22010-01-21 17:43:04 +0100596 else if (!strcmp(args[0], "tune.rcvbuf.client")) {
597 if (global.tune.client_rcvbuf != 0) {
598 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
599 err_code |= ERR_ALERT;
600 goto out;
601 }
602 if (*(args[1]) == 0) {
603 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
604 err_code |= ERR_ALERT | ERR_FATAL;
605 goto out;
606 }
607 global.tune.client_rcvbuf = atol(args[1]);
608 }
609 else if (!strcmp(args[0], "tune.rcvbuf.server")) {
610 if (global.tune.server_rcvbuf != 0) {
611 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
612 err_code |= ERR_ALERT;
613 goto out;
614 }
615 if (*(args[1]) == 0) {
616 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
617 err_code |= ERR_ALERT | ERR_FATAL;
618 goto out;
619 }
620 global.tune.server_rcvbuf = atol(args[1]);
621 }
622 else if (!strcmp(args[0], "tune.sndbuf.client")) {
623 if (global.tune.client_sndbuf != 0) {
624 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
625 err_code |= ERR_ALERT;
626 goto out;
627 }
628 if (*(args[1]) == 0) {
629 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
630 err_code |= ERR_ALERT | ERR_FATAL;
631 goto out;
632 }
633 global.tune.client_sndbuf = atol(args[1]);
634 }
635 else if (!strcmp(args[0], "tune.sndbuf.server")) {
636 if (global.tune.server_sndbuf != 0) {
637 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
638 err_code |= ERR_ALERT;
639 goto out;
640 }
641 if (*(args[1]) == 0) {
642 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
643 err_code |= ERR_ALERT | ERR_FATAL;
644 goto out;
645 }
646 global.tune.server_sndbuf = atol(args[1]);
647 }
Willy Tarreaubd9a0a72011-10-23 21:14:29 +0200648 else if (!strcmp(args[0], "tune.pipesize")) {
649 if (*(args[1]) == 0) {
650 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
651 err_code |= ERR_ALERT | ERR_FATAL;
652 goto out;
653 }
654 global.tune.pipesize = atol(args[1]);
655 }
Willy Tarreauac1932d2011-10-24 19:14:41 +0200656 else if (!strcmp(args[0], "tune.http.maxhdr")) {
657 if (*(args[1]) == 0) {
658 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
659 err_code |= ERR_ALERT | ERR_FATAL;
660 goto out;
661 }
662 global.tune.max_http_hdr = atol(args[1]);
663 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200664 else if (!strcmp(args[0], "uid")) {
665 if (global.uid != 0) {
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200666 Alert("parsing [%s:%d] : user/uid already specified. Continuing.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +0200667 err_code |= ERR_ALERT;
668 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200669 }
670 if (*(args[1]) == 0) {
671 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200672 err_code |= ERR_ALERT | ERR_FATAL;
673 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200674 }
675 global.uid = atol(args[1]);
676 }
677 else if (!strcmp(args[0], "gid")) {
678 if (global.gid != 0) {
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200679 Alert("parsing [%s:%d] : group/gid already specified. Continuing.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +0200680 err_code |= ERR_ALERT;
681 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200682 }
683 if (*(args[1]) == 0) {
684 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200685 err_code |= ERR_ALERT | ERR_FATAL;
686 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200687 }
688 global.gid = atol(args[1]);
689 }
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200690 /* user/group name handling */
691 else if (!strcmp(args[0], "user")) {
692 struct passwd *ha_user;
693 if (global.uid != 0) {
694 Alert("parsing [%s:%d] : user/uid already specified. Continuing.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +0200695 err_code |= ERR_ALERT;
696 goto out;
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200697 }
698 errno = 0;
699 ha_user = getpwnam(args[1]);
700 if (ha_user != NULL) {
701 global.uid = (int)ha_user->pw_uid;
702 }
703 else {
704 Alert("parsing [%s:%d] : cannot find user id for '%s' (%d:%s)\n", file, linenum, args[1], errno, strerror(errno));
Willy Tarreau058e9072009-07-20 09:30:05 +0200705 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200706 }
707 }
708 else if (!strcmp(args[0], "group")) {
709 struct group *ha_group;
710 if (global.gid != 0) {
Willy Tarreau1772ece2009-04-03 14:49:12 +0200711 Alert("parsing [%s:%d] : gid/group was already specified. Continuing.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +0200712 err_code |= ERR_ALERT;
713 goto out;
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200714 }
715 errno = 0;
716 ha_group = getgrnam(args[1]);
717 if (ha_group != NULL) {
718 global.gid = (int)ha_group->gr_gid;
719 }
720 else {
721 Alert("parsing [%s:%d] : cannot find group id for '%s' (%d:%s)\n", file, linenum, args[1], errno, strerror(errno));
Willy Tarreau058e9072009-07-20 09:30:05 +0200722 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreau95c20ac2007-03-25 15:39:23 +0200723 }
724 }
725 /* end of user/group name handling*/
Willy Tarreaubaaee002006-06-26 02:48:02 +0200726 else if (!strcmp(args[0], "nbproc")) {
727 if (global.nbproc != 0) {
728 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200729 err_code |= ERR_ALERT;
730 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200731 }
732 if (*(args[1]) == 0) {
733 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200734 err_code |= ERR_ALERT | ERR_FATAL;
735 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200736 }
737 global.nbproc = atol(args[1]);
738 }
739 else if (!strcmp(args[0], "maxconn")) {
740 if (global.maxconn != 0) {
741 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200742 err_code |= ERR_ALERT;
743 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200744 }
745 if (*(args[1]) == 0) {
746 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200747 err_code |= ERR_ALERT | ERR_FATAL;
748 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200749 }
750 global.maxconn = atol(args[1]);
751#ifdef SYSTEM_MAXCONN
752 if (global.maxconn > DEFAULT_MAXCONN && cfg_maxconn <= DEFAULT_MAXCONN) {
753 Alert("parsing [%s:%d] : maxconn value %d too high for this system.\nLimiting to %d. Please use '-n' to force the value.\n", file, linenum, global.maxconn, DEFAULT_MAXCONN);
754 global.maxconn = DEFAULT_MAXCONN;
Willy Tarreau058e9072009-07-20 09:30:05 +0200755 err_code |= ERR_ALERT;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200756 }
757#endif /* SYSTEM_MAXCONN */
758 }
Willy Tarreau403edff2012-09-06 11:58:37 +0200759 else if (!strcmp(args[0], "maxsslconn")) {
760#ifdef USE_OPENSSL
761 if (*(args[1]) == 0) {
762 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
763 err_code |= ERR_ALERT | ERR_FATAL;
764 goto out;
765 }
766 global.maxsslconn = atol(args[1]);
767#else
Emeric Brun0914df82012-10-02 18:45:42 +0200768 Alert("parsing [%s:%d] : '%s' is not implemented.\n", file, linenum, args[0]);
769 err_code |= ERR_ALERT | ERR_FATAL;
770 goto out;
Willy Tarreau403edff2012-09-06 11:58:37 +0200771#endif
772 }
Willy Tarreau81c25d02011-09-07 15:17:21 +0200773 else if (!strcmp(args[0], "maxconnrate")) {
774 if (global.cps_lim != 0) {
775 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
776 err_code |= ERR_ALERT;
777 goto out;
778 }
779 if (*(args[1]) == 0) {
780 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
781 err_code |= ERR_ALERT | ERR_FATAL;
782 goto out;
783 }
784 global.cps_lim = atol(args[1]);
785 }
Willy Tarreau3ec79b92009-01-18 20:39:42 +0100786 else if (!strcmp(args[0], "maxpipes")) {
787 if (global.maxpipes != 0) {
788 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200789 err_code |= ERR_ALERT;
790 goto out;
Willy Tarreau3ec79b92009-01-18 20:39:42 +0100791 }
792 if (*(args[1]) == 0) {
793 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200794 err_code |= ERR_ALERT | ERR_FATAL;
795 goto out;
Willy Tarreau3ec79b92009-01-18 20:39:42 +0100796 }
797 global.maxpipes = atol(args[1]);
798 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200799 else if (!strcmp(args[0], "ulimit-n")) {
800 if (global.rlimit_nofile != 0) {
801 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200802 err_code |= ERR_ALERT;
803 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200804 }
805 if (*(args[1]) == 0) {
806 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200807 err_code |= ERR_ALERT | ERR_FATAL;
808 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200809 }
810 global.rlimit_nofile = atol(args[1]);
811 }
812 else if (!strcmp(args[0], "chroot")) {
813 if (global.chroot != NULL) {
814 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200815 err_code |= ERR_ALERT;
816 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200817 }
818 if (*(args[1]) == 0) {
819 Alert("parsing [%s:%d] : '%s' expects a directory as an argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200820 err_code |= ERR_ALERT | ERR_FATAL;
821 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200822 }
823 global.chroot = strdup(args[1]);
824 }
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +0200825 else if (!strcmp(args[0], "description")) {
826 int i, len=0;
827 char *d;
828
829 if (!*args[1]) {
830 Alert("parsing [%s:%d]: '%s' expects a string argument.\n",
831 file, linenum, args[0]);
832 err_code |= ERR_ALERT | ERR_FATAL;
833 goto out;
834 }
835
836 for(i=1; *args[i]; i++)
837 len += strlen(args[i])+1;
838
839 if (global.desc)
840 free(global.desc);
841
842 global.desc = d = (char *)calloc(1, len);
843
844 d += sprintf(d, "%s", args[1]);
845 for(i=2; *args[i]; i++)
846 d += sprintf(d, " %s", args[i]);
847 }
848 else if (!strcmp(args[0], "node")) {
849 int i;
850 char c;
851
852 for (i=0; args[1][i]; i++) {
853 c = args[1][i];
Willy Tarreau88e05812010-03-03 00:16:00 +0100854 if (!isupper((unsigned char)c) && !islower((unsigned char)c) &&
855 !isdigit((unsigned char)c) && c != '_' && c != '-' && c != '.')
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +0200856 break;
857 }
858
859 if (!i || args[1][i]) {
860 Alert("parsing [%s:%d]: '%s' requires valid node name - non-empty string"
861 " with digits(0-9), letters(A-Z, a-z), dot(.), hyphen(-) or underscode(_).\n",
862 file, linenum, args[0]);
863 err_code |= ERR_ALERT | ERR_FATAL;
864 goto out;
865 }
866
867 if (global.node)
868 free(global.node);
869
870 global.node = strdup(args[1]);
871 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200872 else if (!strcmp(args[0], "pidfile")) {
873 if (global.pidfile != NULL) {
874 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200875 err_code |= ERR_ALERT;
876 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200877 }
878 if (*(args[1]) == 0) {
879 Alert("parsing [%s:%d] : '%s' expects a file name as an argument.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200880 err_code |= ERR_ALERT | ERR_FATAL;
881 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200882 }
883 global.pidfile = strdup(args[1]);
884 }
Emeric Bruned760922010-10-22 17:59:25 +0200885 else if (!strcmp(args[0], "unix-bind")) {
886 int cur_arg = 1;
887 while (*(args[cur_arg])) {
888 if (!strcmp(args[cur_arg], "prefix")) {
889 if (global.unix_bind.prefix != NULL) {
890 Alert("parsing [%s:%d] : unix-bind '%s' already specified. Continuing.\n", file, linenum, args[cur_arg]);
891 err_code |= ERR_ALERT;
892 cur_arg += 2;
893 continue;
894 }
895
896 if (*(args[cur_arg+1]) == 0) {
897 Alert("parsing [%s:%d] : unix_bind '%s' expects a path as an argument.\n", file, linenum, args[cur_arg]);
898 err_code |= ERR_ALERT | ERR_FATAL;
899 goto out;
900 }
901 global.unix_bind.prefix = strdup(args[cur_arg+1]);
902 cur_arg += 2;
903 continue;
904 }
905
906 if (!strcmp(args[cur_arg], "mode")) {
907
908 global.unix_bind.ux.mode = strtol(args[cur_arg + 1], NULL, 8);
909 cur_arg += 2;
910 continue;
911 }
912
913 if (!strcmp(args[cur_arg], "uid")) {
914
915 global.unix_bind.ux.uid = atol(args[cur_arg + 1 ]);
916 cur_arg += 2;
917 continue;
918 }
919
920 if (!strcmp(args[cur_arg], "gid")) {
921
922 global.unix_bind.ux.gid = atol(args[cur_arg + 1 ]);
923 cur_arg += 2;
924 continue;
925 }
926
927 if (!strcmp(args[cur_arg], "user")) {
928 struct passwd *user;
929
930 user = getpwnam(args[cur_arg + 1]);
931 if (!user) {
932 Alert("parsing [%s:%d] : '%s' : '%s' unknown user.\n",
933 file, linenum, args[0], args[cur_arg + 1 ]);
934 err_code |= ERR_ALERT | ERR_FATAL;
935 goto out;
936 }
937
938 global.unix_bind.ux.uid = user->pw_uid;
939 cur_arg += 2;
940 continue;
941 }
942
943 if (!strcmp(args[cur_arg], "group")) {
944 struct group *group;
945
946 group = getgrnam(args[cur_arg + 1]);
947 if (!group) {
948 Alert("parsing [%s:%d] : '%s' : '%s' unknown group.\n",
949 file, linenum, args[0], args[cur_arg + 1 ]);
950 err_code |= ERR_ALERT | ERR_FATAL;
951 goto out;
952 }
953
954 global.unix_bind.ux.gid = group->gr_gid;
955 cur_arg += 2;
956 continue;
957 }
958
Willy Tarreaub48f9582011-09-05 01:17:06 +0200959 Alert("parsing [%s:%d] : '%s' only supports the 'prefix', 'mode', 'uid', 'gid', 'user' and 'group' options.\n",
Emeric Bruned760922010-10-22 17:59:25 +0200960 file, linenum, args[0]);
961 err_code |= ERR_ALERT | ERR_FATAL;
962 goto out;
963 }
964 }
William Lallemand0f99e342011-10-12 17:50:54 +0200965 else if (!strcmp(args[0], "log") && kwm == KWM_NO) { /* no log */
966 /* delete previous herited or defined syslog servers */
967 struct logsrv *back;
968 struct logsrv *tmp;
969
970 if (*(args[1]) != 0) {
971 Alert("parsing [%s:%d]:%s : 'no log' does not expect arguments.\n", file, linenum, args[1]);
972 err_code |= ERR_ALERT | ERR_FATAL;
973 goto out;
974 }
975
976 list_for_each_entry_safe(tmp, back, &global.logsrvs, list) {
977 LIST_DEL(&tmp->list);
978 free(tmp);
979 }
980 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200981 else if (!strcmp(args[0], "log")) { /* syslog server address */
William Lallemand0f99e342011-10-12 17:50:54 +0200982 struct logsrv *logsrv;
983
Willy Tarreaubaaee002006-06-26 02:48:02 +0200984 if (*(args[1]) == 0 || *(args[2]) == 0) {
985 Alert("parsing [%s:%d] : '%s' expects <address> and <facility> as arguments.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200986 err_code |= ERR_ALERT | ERR_FATAL;
987 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200988 }
William Lallemand0f99e342011-10-12 17:50:54 +0200989
990 logsrv = calloc(1, sizeof(struct logsrv));
991
992 logsrv->facility = get_log_facility(args[2]);
993 if (logsrv->facility < 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +0200994 Alert("parsing [%s:%d] : unknown log facility '%s'\n", file, linenum, args[2]);
Willy Tarreau058e9072009-07-20 09:30:05 +0200995 err_code |= ERR_ALERT | ERR_FATAL;
William Lallemand0f99e342011-10-12 17:50:54 +0200996 logsrv->facility = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200997 }
998
William Lallemand0f99e342011-10-12 17:50:54 +0200999 logsrv->level = 7; /* max syslog level = debug */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001000 if (*(args[3])) {
William Lallemand0f99e342011-10-12 17:50:54 +02001001 logsrv->level = get_log_level(args[3]);
1002 if (logsrv->level < 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02001003 Alert("parsing [%s:%d] : unknown optional log level '%s'\n", file, linenum, args[3]);
Willy Tarreau058e9072009-07-20 09:30:05 +02001004 err_code |= ERR_ALERT | ERR_FATAL;
William Lallemand0f99e342011-10-12 17:50:54 +02001005 logsrv->level = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001006 }
1007 }
1008
William Lallemand0f99e342011-10-12 17:50:54 +02001009 logsrv->minlvl = 0; /* limit syslog level to this level (emerg) */
Willy Tarreauf7edefa2009-05-10 17:20:05 +02001010 if (*(args[4])) {
William Lallemand0f99e342011-10-12 17:50:54 +02001011 logsrv->minlvl = get_log_level(args[4]);
1012 if (logsrv->minlvl < 0) {
Willy Tarreauf7edefa2009-05-10 17:20:05 +02001013 Alert("parsing [%s:%d] : unknown optional minimum log level '%s'\n", file, linenum, args[4]);
Willy Tarreau058e9072009-07-20 09:30:05 +02001014 err_code |= ERR_ALERT | ERR_FATAL;
William Lallemand0f99e342011-10-12 17:50:54 +02001015 logsrv->minlvl = 0;
Willy Tarreauf7edefa2009-05-10 17:20:05 +02001016 }
1017 }
1018
Robert Tsai81ae1952007-12-05 10:47:29 +01001019 if (args[1][0] == '/') {
David du Colombier11bcb6c2011-03-24 12:23:00 +01001020 struct sockaddr_storage *sk = (struct sockaddr_storage *)str2sun(args[1]);
Willy Tarreaud5191e72010-02-09 20:50:45 +01001021 if (!sk) {
1022 Alert("parsing [%s:%d] : Socket path '%s' too long (max %d)\n", file, linenum,
David du Colombier11bcb6c2011-03-24 12:23:00 +01001023 args[1], (int)sizeof(((struct sockaddr_un *)&sk)->sun_path) - 1);
Willy Tarreaud5191e72010-02-09 20:50:45 +01001024 err_code |= ERR_ALERT | ERR_FATAL;
William Lallemand0f99e342011-10-12 17:50:54 +02001025 free(logsrv);
Willy Tarreaud5191e72010-02-09 20:50:45 +01001026 goto out;
1027 }
William Lallemand0f99e342011-10-12 17:50:54 +02001028 logsrv->addr = *sk;
Robert Tsai81ae1952007-12-05 10:47:29 +01001029 } else {
David du Colombier6f5ccb12011-03-10 22:26:24 +01001030 struct sockaddr_storage *sk = str2sa(args[1]);
David du Colombier11bcb6c2011-03-24 12:23:00 +01001031 if (!sk) {
Willy Tarreaud5191e72010-02-09 20:50:45 +01001032 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[1]);
1033 err_code |= ERR_ALERT | ERR_FATAL;
William Lallemand0f99e342011-10-12 17:50:54 +02001034 free(logsrv);
Willy Tarreaud5191e72010-02-09 20:50:45 +01001035 goto out;
1036 }
William Lallemand0f99e342011-10-12 17:50:54 +02001037 logsrv->addr = *sk;
1038 if (!get_host_port(&logsrv->addr))
1039 set_host_port(&logsrv->addr, SYSLOG_PORT);
Robert Tsai81ae1952007-12-05 10:47:29 +01001040 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001041
William Lallemand0f99e342011-10-12 17:50:54 +02001042 LIST_ADDQ(&global.logsrvs, &logsrv->list);
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001043 }
Joe Williamsdf5b38f2010-12-29 17:05:48 +01001044 else if (!strcmp(args[0], "log-send-hostname")) { /* set the hostname in syslog header */
1045 char *name;
1046 int len;
1047
1048 if (global.log_send_hostname != NULL) {
1049 Alert("parsing [%s:%d] : '%s' already specified. Continuing.\n", file, linenum, args[0]);
1050 err_code |= ERR_ALERT;
1051 goto out;
1052 }
1053
1054 if (*(args[1]))
1055 name = args[1];
1056 else
1057 name = hostname;
1058
1059 len = strlen(name);
1060
1061 /* We'll add a space after the name to respect the log format */
1062 free(global.log_send_hostname);
1063 global.log_send_hostname = malloc(len + 2);
1064 snprintf(global.log_send_hostname, len + 2, "%s ", name);
1065 }
Kevinm48936af2010-12-22 16:08:21 +00001066 else if (!strcmp(args[0], "log-tag")) { /* tag to report to syslog */
1067 if (*(args[1]) == 0) {
1068 Alert("parsing [%s:%d] : '%s' expects a tag for use in syslog.\n", file, linenum, args[0]);
1069 err_code |= ERR_ALERT | ERR_FATAL;
1070 goto out;
1071 }
1072 free(global.log_tag);
1073 global.log_tag = strdup(args[1]);
1074 }
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001075 else if (!strcmp(args[0], "spread-checks")) { /* random time between checks (0-50) */
1076 if (global.spread_checks != 0) {
1077 Alert("parsing [%s:%d]: spread-checks already specified. Continuing.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +02001078 err_code |= ERR_ALERT;
1079 goto out;
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001080 }
1081 if (*(args[1]) == 0) {
1082 Alert("parsing [%s:%d]: '%s' expects an integer argument (0..50).\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +02001083 err_code |= ERR_ALERT | ERR_FATAL;
1084 goto out;
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001085 }
1086 global.spread_checks = atol(args[1]);
1087 if (global.spread_checks < 0 || global.spread_checks > 50) {
1088 Alert("parsing [%s:%d]: 'spread-checks' needs a positive value in range 0..50.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +02001089 err_code |= ERR_ALERT | ERR_FATAL;
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02001090 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001091 }
1092 else {
Willy Tarreau5b2c3362008-07-09 19:39:06 +02001093 struct cfg_kw_list *kwl;
1094 int index;
Willy Tarreau39f23b62008-07-09 20:22:56 +02001095 int rc;
Willy Tarreau5b2c3362008-07-09 19:39:06 +02001096
1097 list_for_each_entry(kwl, &cfg_keywords.list, list) {
1098 for (index = 0; kwl->kw[index].kw != NULL; index++) {
1099 if (kwl->kw[index].section != CFG_GLOBAL)
1100 continue;
1101 if (strcmp(kwl->kw[index].kw, args[0]) == 0) {
1102 /* prepare error message just in case */
David du Colombier7af46052012-05-16 14:16:48 +02001103 snprintf(trash, trashlen,
Willy Tarreau5b2c3362008-07-09 19:39:06 +02001104 "error near '%s' in '%s' section", args[0], "global");
Willy Tarreau28a47d62012-09-18 20:02:48 +02001105 rc = kwl->kw[index].parse(args, CFG_GLOBAL, NULL, NULL, file, linenum, &errmsg);
Willy Tarreau39f23b62008-07-09 20:22:56 +02001106 if (rc < 0) {
Willy Tarreau0a3dd742012-05-08 19:47:01 +02001107 Alert("parsing [%s:%d] : %s\n", file, linenum, errmsg);
Willy Tarreau058e9072009-07-20 09:30:05 +02001108 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreau5b2c3362008-07-09 19:39:06 +02001109 }
Willy Tarreau39f23b62008-07-09 20:22:56 +02001110 else if (rc > 0) {
Willy Tarreau0a3dd742012-05-08 19:47:01 +02001111 Warning("parsing [%s:%d] : %s\n", file, linenum, errmsg);
Willy Tarreau058e9072009-07-20 09:30:05 +02001112 err_code |= ERR_WARN;
1113 goto out;
Willy Tarreau39f23b62008-07-09 20:22:56 +02001114 }
Willy Tarreau058e9072009-07-20 09:30:05 +02001115 goto out;
Willy Tarreau5b2c3362008-07-09 19:39:06 +02001116 }
1117 }
1118 }
1119
Willy Tarreaubaaee002006-06-26 02:48:02 +02001120 Alert("parsing [%s:%d] : unknown keyword '%s' in '%s' section\n", file, linenum, args[0], "global");
Willy Tarreau058e9072009-07-20 09:30:05 +02001121 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001122 }
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02001123
Willy Tarreau058e9072009-07-20 09:30:05 +02001124 out:
Willy Tarreau0a3dd742012-05-08 19:47:01 +02001125 free(errmsg);
Willy Tarreau058e9072009-07-20 09:30:05 +02001126 return err_code;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001127}
1128
Willy Tarreau915e1eb2009-06-22 15:48:36 +02001129void init_default_instance()
Willy Tarreaubaaee002006-06-26 02:48:02 +02001130{
Willy Tarreau97cb7802010-01-03 20:23:58 +01001131 init_new_proxy(&defproxy);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001132 defproxy.mode = PR_MODE_TCP;
1133 defproxy.state = PR_STNEW;
1134 defproxy.maxconn = cfg_maxpconn;
1135 defproxy.conn_retries = CONN_RETRIES;
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01001136
1137 defproxy.defsrv.inter = DEF_CHKINTR;
1138 defproxy.defsrv.fastinter = 0;
1139 defproxy.defsrv.downinter = 0;
1140 defproxy.defsrv.rise = DEF_RISETIME;
1141 defproxy.defsrv.fall = DEF_FALLTIME;
Willy Tarreau5b3a2022012-09-28 15:01:02 +02001142 defproxy.defsrv.check.port = 0;
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01001143 defproxy.defsrv.maxqueue = 0;
1144 defproxy.defsrv.minconn = 0;
1145 defproxy.defsrv.maxconn = 0;
1146 defproxy.defsrv.slowstart = 0;
1147 defproxy.defsrv.onerror = DEF_HANA_ONERR;
1148 defproxy.defsrv.consecutive_errors_limit = DEF_HANA_ERRLIMIT;
1149 defproxy.defsrv.uweight = defproxy.defsrv.iweight = 1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001150}
1151
Willy Tarreauade5ec42010-01-28 19:33:49 +01001152
1153static int create_cond_regex_rule(const char *file, int line,
1154 struct proxy *px, int dir, int action, int flags,
1155 const char *cmd, const char *reg, const char *repl,
1156 const char **cond_start)
1157{
1158 regex_t *preg = NULL;
Willy Tarreaub7451bb2012-04-27 12:38:15 +02001159 char *errmsg = NULL;
Willy Tarreauade5ec42010-01-28 19:33:49 +01001160 const char *err;
1161 int err_code = 0;
Willy Tarreau5321c422010-01-28 20:35:13 +01001162 struct acl_cond *cond = NULL;
Willy Tarreauade5ec42010-01-28 19:33:49 +01001163
1164 if (px == &defproxy) {
1165 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, line, cmd);
1166 err_code |= ERR_ALERT | ERR_FATAL;
1167 goto err;
1168 }
1169
1170 if (*reg == 0) {
1171 Alert("parsing [%s:%d] : '%s' expects <regex> as an argument.\n", file, line, cmd);
1172 err_code |= ERR_ALERT | ERR_FATAL;
1173 goto err;
1174 }
1175
1176 if (warnifnotcap(px, PR_CAP_RS, file, line, cmd, NULL))
1177 err_code |= ERR_WARN;
1178
Willy Tarreau5321c422010-01-28 20:35:13 +01001179 if (cond_start &&
1180 (strcmp(*cond_start, "if") == 0 || strcmp(*cond_start, "unless") == 0)) {
Willy Tarreaub7451bb2012-04-27 12:38:15 +02001181 if ((cond = build_acl_cond(file, line, px, cond_start, &errmsg)) == NULL) {
1182 Alert("parsing [%s:%d] : error detected while parsing a '%s' condition : %s.\n",
1183 file, line, cmd, errmsg);
Willy Tarreau5321c422010-01-28 20:35:13 +01001184 err_code |= ERR_ALERT | ERR_FATAL;
1185 goto err;
1186 }
1187 }
1188 else if (cond_start && **cond_start) {
1189 Alert("parsing [%s:%d] : '%s' : Expecting nothing, 'if', or 'unless', got '%s'.\n",
1190 file, line, cmd, *cond_start);
1191 err_code |= ERR_ALERT | ERR_FATAL;
1192 goto err;
1193 }
1194
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02001195 if (dir == SMP_OPT_DIR_REQ)
Willy Tarreau5321c422010-01-28 20:35:13 +01001196 err_code |= warnif_cond_requires_resp(cond, file, line);
Willy Tarreaufdb563c2010-01-31 15:43:27 +01001197 else
1198 err_code |= warnif_cond_requires_req(cond, file, line);
Willy Tarreau5321c422010-01-28 20:35:13 +01001199
Willy Tarreauade5ec42010-01-28 19:33:49 +01001200 preg = calloc(1, sizeof(regex_t));
1201 if (!preg) {
1202 Alert("parsing [%s:%d] : '%s' : not enough memory to build regex.\n", file, line, cmd);
1203 err_code = ERR_ALERT | ERR_FATAL;
1204 goto err;
1205 }
1206
1207 if (regcomp(preg, reg, REG_EXTENDED | flags) != 0) {
1208 Alert("parsing [%s:%d] : '%s' : bad regular expression '%s'.\n", file, line, cmd, reg);
1209 err_code = ERR_ALERT | ERR_FATAL;
1210 goto err;
1211 }
1212
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02001213 err = chain_regex((dir == SMP_OPT_DIR_REQ) ? &px->req_exp : &px->rsp_exp,
Willy Tarreau5321c422010-01-28 20:35:13 +01001214 preg, action, repl ? strdup(repl) : NULL, cond);
Willy Tarreauade5ec42010-01-28 19:33:49 +01001215 if (repl && err) {
1216 Alert("parsing [%s:%d] : '%s' : invalid character or unterminated sequence in replacement string near '%c'.\n",
1217 file, line, cmd, *err);
1218 err_code |= ERR_ALERT | ERR_FATAL;
1219 goto err;
1220 }
1221
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02001222 if (dir == SMP_OPT_DIR_REQ && warnif_misplaced_reqxxx(px, file, line, cmd))
Willy Tarreauade5ec42010-01-28 19:33:49 +01001223 err_code |= ERR_WARN;
1224
Willy Tarreauf4068b62012-05-08 17:37:49 +02001225 free(errmsg);
Willy Tarreauade5ec42010-01-28 19:33:49 +01001226 return err_code;
1227 err:
Willy Tarreauf4068b62012-05-08 17:37:49 +02001228 free(errmsg);
Willy Tarreauade5ec42010-01-28 19:33:49 +01001229 free(preg);
1230 return err_code;
1231}
1232
Willy Tarreaubaaee002006-06-26 02:48:02 +02001233/*
Willy Tarreau977b8e42006-12-29 14:19:17 +01001234 * Parse a line in a <listen>, <frontend>, <backend> or <ruleset> section.
Willy Tarreau93893792009-07-23 13:19:11 +02001235 * Returns the error code, 0 if OK, or any combination of :
1236 * - ERR_ABORT: must abort ASAP
1237 * - ERR_FATAL: we can continue parsing but not start the service
1238 * - ERR_WARN: a warning has been emitted
1239 * - ERR_ALERT: an alert has been emitted
1240 * Only the two first ones can stop processing, the two others are just
1241 * indicators.
Willy Tarreaubaaee002006-06-26 02:48:02 +02001242 */
Emeric Brun32da3c42010-09-23 18:39:19 +02001243int cfg_parse_peers(const char *file, int linenum, char **args, int kwm)
1244{
1245 static struct peers *curpeers = NULL;
1246 struct peer *newpeer = NULL;
1247 const char *err;
Willy Tarreau4348fad2012-09-20 16:48:07 +02001248 struct bind_conf *bind_conf;
1249 struct listener *l;
Emeric Brun32da3c42010-09-23 18:39:19 +02001250 int err_code = 0;
1251
1252 if (strcmp(args[0], "peers") == 0) { /* new peers section */
1253
1254 err = invalid_char(args[1]);
1255 if (err) {
1256 Alert("parsing [%s:%d] : character '%c' is not permitted in '%s' name '%s'.\n",
1257 file, linenum, *err, args[0], args[1]);
1258 err_code |= ERR_ALERT | ERR_FATAL;
1259 }
1260
1261 for (curpeers = peers; curpeers != NULL; curpeers = curpeers->next) {
1262 /*
1263 * If there are two proxies with the same name only following
1264 * combinations are allowed:
1265 */
1266 if (strcmp(curpeers->id, args[1]) == 0) {
1267 Warning("Parsing [%s:%d]: peers '%s' has same name as another peers (declared at %s:%d).\n",
1268 file, linenum, args[1], curpeers->conf.file, curpeers->conf.line);
1269 err_code |= ERR_WARN;
1270 }
1271 }
1272
1273 if ((curpeers = (struct peers *)calloc(1, sizeof(struct peers))) == NULL) {
1274 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
1275 err_code |= ERR_ALERT | ERR_ABORT;
1276 goto out;
1277 }
1278
1279 curpeers->next = peers;
1280 peers = curpeers;
Willy Tarreau8113a5d2012-10-04 08:01:43 +02001281 curpeers->conf.file = strdup(file);
Emeric Brun32da3c42010-09-23 18:39:19 +02001282 curpeers->conf.line = linenum;
1283 curpeers->last_change = now.tv_sec;
1284 curpeers->id = strdup(args[1]);
1285 }
1286 else if (strcmp(args[0], "peer") == 0) { /* peer definition */
1287 char *rport, *raddr;
1288 short realport = 0;
David du Colombier6f5ccb12011-03-10 22:26:24 +01001289 struct sockaddr_storage *sk;
Willy Tarreau4fbb2282012-09-20 20:01:39 +02001290 char *err_msg = NULL;
Emeric Brun32da3c42010-09-23 18:39:19 +02001291
1292 if (!*args[2]) {
1293 Alert("parsing [%s:%d] : '%s' expects <name> and <addr>[:<port>] as arguments.\n",
1294 file, linenum, args[0]);
1295 err_code |= ERR_ALERT | ERR_FATAL;
1296 goto out;
1297 }
1298
1299 err = invalid_char(args[1]);
1300 if (err) {
1301 Alert("parsing [%s:%d] : character '%c' is not permitted in server name '%s'.\n",
1302 file, linenum, *err, args[1]);
1303 err_code |= ERR_ALERT | ERR_FATAL;
1304 goto out;
1305 }
1306
1307 if ((newpeer = (struct peer *)calloc(1, sizeof(struct peer))) == NULL) {
1308 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
1309 err_code |= ERR_ALERT | ERR_ABORT;
1310 goto out;
1311 }
1312
1313 /* the peers are linked backwards first */
1314 curpeers->count++;
1315 newpeer->next = curpeers->remote;
1316 curpeers->remote = newpeer;
1317 newpeer->peers = curpeers;
Willy Tarreau8113a5d2012-10-04 08:01:43 +02001318 newpeer->conf.file = strdup(file);
Emeric Brun32da3c42010-09-23 18:39:19 +02001319 newpeer->conf.line = linenum;
1320
1321 newpeer->last_change = now.tv_sec;
1322 newpeer->id = strdup(args[1]);
1323
1324 raddr = strdup(args[2]);
Willy Tarreaufab5a432011-03-04 15:31:53 +01001325 rport = strrchr(raddr, ':');
Emeric Brun32da3c42010-09-23 18:39:19 +02001326 if (rport) {
1327 *rport++ = 0;
1328 realport = atol(rport);
1329 }
1330 if (!realport) {
1331 Alert("parsing [%s:%d] : Missing or invalid port in '%s'\n", file, linenum, args[2]);
1332 err_code |= ERR_ALERT | ERR_FATAL;
1333 goto out;
1334 }
1335
Willy Tarreaufab5a432011-03-04 15:31:53 +01001336 sk = str2ip(raddr);
Emeric Brun32da3c42010-09-23 18:39:19 +02001337 free(raddr);
1338 if (!sk) {
1339 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[2]);
1340 err_code |= ERR_ALERT | ERR_FATAL;
1341 goto out;
1342 }
1343 newpeer->addr = *sk;
Willy Tarreau26d8c592012-05-07 18:12:14 +02001344 newpeer->proto = protocol_by_family(newpeer->addr.ss_family);
Willy Tarreauf7bc57c2012-10-03 00:19:48 +02001345 newpeer->xprt = &raw_sock;
Willy Tarreaud02394b2012-05-11 18:32:18 +02001346 newpeer->sock_init_arg = NULL;
Willy Tarreau26d8c592012-05-07 18:12:14 +02001347
Willy Tarreau173e7fb2012-09-24 22:47:39 +02001348 if (!newpeer->proto) {
Willy Tarreau26d8c592012-05-07 18:12:14 +02001349 Alert("parsing [%s:%d] : Unknown protocol family %d '%s'\n",
1350 file, linenum, newpeer->addr.ss_family, args[2]);
1351 err_code |= ERR_ALERT | ERR_FATAL;
1352 goto out;
1353 }
1354
Willy Tarreau86ad42c2011-08-27 12:29:07 +02001355 set_host_port(&newpeer->addr, realport);
Emeric Brun32da3c42010-09-23 18:39:19 +02001356
1357 if (strcmp(newpeer->id, localpeer) == 0) {
1358 /* Current is local peer, it define a frontend */
1359 newpeer->local = 1;
1360
1361 if (!curpeers->peers_fe) {
1362 if ((curpeers->peers_fe = calloc(1, sizeof(struct proxy))) == NULL) {
1363 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
1364 err_code |= ERR_ALERT | ERR_ABORT;
1365 goto out;
1366 }
Emeric Brun32da3c42010-09-23 18:39:19 +02001367
Willy Tarreau237250c2011-07-29 01:49:03 +02001368 init_new_proxy(curpeers->peers_fe);
1369 curpeers->peers_fe->parent = curpeers;
Emeric Brun32da3c42010-09-23 18:39:19 +02001370
1371 curpeers->peers_fe->last_change = now.tv_sec;
1372 curpeers->peers_fe->id = strdup(args[1]);
1373 curpeers->peers_fe->cap = PR_CAP_FE;
Willy Tarreau3ae65a12011-09-07 17:40:39 +02001374 curpeers->peers_fe->maxconn = 0;
Emeric Brun32da3c42010-09-23 18:39:19 +02001375 curpeers->peers_fe->conn_retries = CONN_RETRIES;
1376 curpeers->peers_fe->timeout.connect = 5000;
1377 curpeers->peers_fe->accept = peer_accept;
1378 curpeers->peers_fe->options2 |= PR_O2_INDEPSTR | PR_O2_SMARTCON | PR_O2_SMARTACC;
Willy Tarreau4348fad2012-09-20 16:48:07 +02001379
1380 bind_conf = bind_conf_alloc(&curpeers->peers_fe->conf.bind, file, linenum, args[2]);
1381
Willy Tarreau4fbb2282012-09-20 20:01:39 +02001382 if (!str2listener(args[2], curpeers->peers_fe, bind_conf, file, linenum, &err_msg)) {
1383 if (err_msg && *err_msg) {
1384 indent_msg(&err_msg, 2);
1385 Alert("parsing [%s:%d] : '%s %s' : %s\n", file, linenum, args[0], args[1], err_msg);
1386 }
1387 else
1388 Alert("parsing [%s:%d] : '%s %s' : error encountered while parsing listening address %s.\n",
1389 file, linenum, args[0], args[1], args[2]);
1390 free(err_msg);
Emeric Brun32da3c42010-09-23 18:39:19 +02001391 err_code |= ERR_FATAL;
1392 goto out;
1393 }
Willy Tarreau4348fad2012-09-20 16:48:07 +02001394
1395 list_for_each_entry(l, &bind_conf->listeners, by_bind) {
1396 l->maxconn = ((struct proxy *)curpeers->peers_fe)->maxconn;
1397 l->backlog = ((struct proxy *)curpeers->peers_fe)->backlog;
1398 l->timeout = &((struct proxy *)curpeers->peers_fe)->timeout.client;
1399 l->accept = session_accept;
1400 l->handler = process_session;
1401 l->analysers |= ((struct proxy *)curpeers->peers_fe)->fe_req_ana;
1402 l->options |= LI_O_UNLIMITED; /* don't make the peers subject to global limits */
1403 global.maxsock += l->maxconn;
1404 }
Emeric Brun32da3c42010-09-23 18:39:19 +02001405 }
1406 }
1407 } /* neither "peer" nor "peers" */
1408 else if (*args[0] != 0) {
1409 Alert("parsing [%s:%d] : unknown keyword '%s' in '%s' section\n", file, linenum, args[0], cursection);
1410 err_code |= ERR_ALERT | ERR_FATAL;
1411 goto out;
1412 }
1413
1414out:
1415 return err_code;
1416}
1417
1418
Willy Tarreau3842f002009-06-14 11:39:52 +02001419int cfg_parse_listen(const char *file, int linenum, char **args, int kwm)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001420{
1421 static struct proxy *curproxy = NULL;
1422 struct server *newsrv = NULL;
Willy Tarreaub17916e2006-10-15 15:17:57 +02001423 const char *err;
Willy Tarreaub3f32f52007-12-02 22:15:14 +01001424 int rc;
1425 unsigned val;
Willy Tarreau93893792009-07-23 13:19:11 +02001426 int err_code = 0;
Willy Tarreau3ec18a02010-01-28 19:01:34 +01001427 struct acl_cond *cond = NULL;
William Lallemand723b73a2012-02-08 16:37:49 +01001428 struct logsrv *tmplogsrv;
Willy Tarreauf4068b62012-05-08 17:37:49 +02001429 char *errmsg = NULL;
Willy Tarreau2a65ff02012-09-13 17:54:29 +02001430 struct bind_conf *bind_conf;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001431
Willy Tarreau977b8e42006-12-29 14:19:17 +01001432 if (!strcmp(args[0], "listen"))
1433 rc = PR_CAP_LISTEN;
1434 else if (!strcmp(args[0], "frontend"))
1435 rc = PR_CAP_FE | PR_CAP_RS;
1436 else if (!strcmp(args[0], "backend"))
1437 rc = PR_CAP_BE | PR_CAP_RS;
1438 else if (!strcmp(args[0], "ruleset"))
1439 rc = PR_CAP_RS;
1440 else
1441 rc = PR_CAP_NONE;
1442
1443 if (rc != PR_CAP_NONE) { /* new proxy */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001444 if (!*args[1]) {
1445 Alert("parsing [%s:%d] : '%s' expects an <id> argument and\n"
1446 " optionnally supports [addr1]:port1[-end1]{,[addr]:port[-end]}...\n",
1447 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001448 err_code |= ERR_ALERT | ERR_ABORT;
1449 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001450 }
Krzysztof Oledzki365d1cd2007-10-21 02:55:17 +02001451
Willy Tarreau2e74c3f2007-12-02 18:45:09 +01001452 err = invalid_char(args[1]);
1453 if (err) {
1454 Alert("parsing [%s:%d] : character '%c' is not permitted in '%s' name '%s'.\n",
1455 file, linenum, *err, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02001456 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreau2e74c3f2007-12-02 18:45:09 +01001457 }
1458
Krzysztof Oledzki365d1cd2007-10-21 02:55:17 +02001459 for (curproxy = proxy; curproxy != NULL; curproxy = curproxy->next) {
1460 /*
1461 * If there are two proxies with the same name only following
1462 * combinations are allowed:
1463 *
1464 * listen backend frontend ruleset
1465 * listen - - - -
1466 * backend - - OK -
1467 * frontend - OK - -
1468 * ruleset - - - -
1469 */
1470
1471 if (!strcmp(curproxy->id, args[1]) &&
1472 (rc!=(PR_CAP_FE|PR_CAP_RS) || curproxy->cap!=(PR_CAP_BE|PR_CAP_RS)) &&
1473 (rc!=(PR_CAP_BE|PR_CAP_RS) || curproxy->cap!=(PR_CAP_FE|PR_CAP_RS))) {
Willy Tarreau092549f2009-10-04 21:11:42 +02001474 Warning("Parsing [%s:%d]: %s '%s' has same name as another %s (declared at %s:%d).\n",
1475 file, linenum, proxy_cap_str(rc), args[1], proxy_type_str(curproxy),
1476 curproxy->conf.file, curproxy->conf.line);
Willy Tarreau93893792009-07-23 13:19:11 +02001477 err_code |= ERR_WARN;
Krzysztof Oledzki365d1cd2007-10-21 02:55:17 +02001478 }
1479 }
1480
Willy Tarreaubaaee002006-06-26 02:48:02 +02001481 if ((curproxy = (struct proxy *)calloc(1, sizeof(struct proxy))) == NULL) {
1482 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02001483 err_code |= ERR_ALERT | ERR_ABORT;
1484 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001485 }
Willy Tarreau5af24ef2009-03-15 15:23:16 +01001486
Willy Tarreau97cb7802010-01-03 20:23:58 +01001487 init_new_proxy(curproxy);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001488 curproxy->next = proxy;
1489 proxy = curproxy;
Willy Tarreau8113a5d2012-10-04 08:01:43 +02001490 curproxy->conf.file = strdup(file);
Willy Tarreau90a570f2009-10-04 20:54:54 +02001491 curproxy->conf.line = linenum;
Krzysztof Oledzki85130942007-10-22 16:21:10 +02001492 curproxy->last_change = now.tv_sec;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001493 curproxy->id = strdup(args[1]);
Willy Tarreau977b8e42006-12-29 14:19:17 +01001494 curproxy->cap = rc;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001495
1496 /* parse the listener address if any */
Willy Tarreau977b8e42006-12-29 14:19:17 +01001497 if ((curproxy->cap & PR_CAP_FE) && *args[2]) {
Willy Tarreau4348fad2012-09-20 16:48:07 +02001498 struct listener *l;
Willy Tarreau4fbb2282012-09-20 20:01:39 +02001499 char *err_msg = NULL;
Willy Tarreau81a81172012-09-18 20:52:35 +02001500
Willy Tarreau4348fad2012-09-20 16:48:07 +02001501 bind_conf = bind_conf_alloc(&curproxy->conf.bind, file, linenum, args[2]);
1502
Willy Tarreau4fbb2282012-09-20 20:01:39 +02001503 if (!str2listener(args[2], curproxy, bind_conf, file, linenum, &err_msg)) {
1504 if (err_msg && *err_msg) {
1505 indent_msg(&err_msg, 2);
1506 Alert("parsing [%s:%d] : '%s %s' : %s\n", file, linenum, args[0], args[1], err_msg);
1507 }
1508 else
1509 Alert("parsing [%s:%d] : '%s %s' : error encountered while parsing listening address '%s'.\n",
1510 file, linenum, args[0], args[1], args[2]);
1511 free(err_msg);
Willy Tarreau93893792009-07-23 13:19:11 +02001512 err_code |= ERR_FATAL;
1513 goto out;
1514 }
Willy Tarreau81a81172012-09-18 20:52:35 +02001515
Willy Tarreau4348fad2012-09-20 16:48:07 +02001516 list_for_each_entry(l, &bind_conf->listeners, by_bind) {
Willy Tarreauc8b11092011-02-16 11:08:57 +01001517 global.maxsock++;
Willy Tarreau90a570f2009-10-04 20:54:54 +02001518 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001519 }
1520
1521 /* set default values */
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01001522 memcpy(&curproxy->defsrv, &defproxy.defsrv, sizeof(curproxy->defsrv));
Willy Tarreau70160202010-04-07 16:06:40 +02001523 curproxy->defsrv.id = "default-server";
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01001524
Willy Tarreaubaaee002006-06-26 02:48:02 +02001525 curproxy->state = defproxy.state;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001526 curproxy->options = defproxy.options;
Willy Tarreau66aa61f2009-01-18 21:44:07 +01001527 curproxy->options2 = defproxy.options2;
Willy Tarreau84b57da2009-06-14 11:10:45 +02001528 curproxy->no_options = defproxy.no_options;
1529 curproxy->no_options2 = defproxy.no_options2;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01001530 curproxy->bind_proc = defproxy.bind_proc;
Willy Tarreau31682232007-11-29 15:38:04 +01001531 curproxy->lbprm.algo = defproxy.lbprm.algo;
Willy Tarreau7ac51f62007-03-25 16:00:04 +02001532 curproxy->except_net = defproxy.except_net;
1533 curproxy->except_mask = defproxy.except_mask;
Maik Broemme36db02e2009-05-08 17:02:07 +02001534 curproxy->except_to = defproxy.except_to;
Maik Broemme2850cb42009-04-17 18:53:21 +02001535 curproxy->except_mask_to = defproxy.except_mask_to;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001536
Willy Tarreau79f5fe82008-08-23 08:18:21 +02001537 if (defproxy.fwdfor_hdr_len) {
1538 curproxy->fwdfor_hdr_len = defproxy.fwdfor_hdr_len;
1539 curproxy->fwdfor_hdr_name = strdup(defproxy.fwdfor_hdr_name);
1540 }
1541
Willy Tarreaub86db342009-11-30 11:50:16 +01001542 if (defproxy.orgto_hdr_len) {
1543 curproxy->orgto_hdr_len = defproxy.orgto_hdr_len;
1544 curproxy->orgto_hdr_name = strdup(defproxy.orgto_hdr_name);
1545 }
1546
Mark Lamourinec2247f02012-01-04 13:02:01 -05001547 if (defproxy.server_id_hdr_len) {
1548 curproxy->server_id_hdr_len = defproxy.server_id_hdr_len;
1549 curproxy->server_id_hdr_name = strdup(defproxy.server_id_hdr_name);
1550 }
1551
Willy Tarreau977b8e42006-12-29 14:19:17 +01001552 if (curproxy->cap & PR_CAP_FE) {
1553 curproxy->maxconn = defproxy.maxconn;
Willy Tarreauc73ce2b2008-01-06 10:55:10 +01001554 curproxy->backlog = defproxy.backlog;
Willy Tarreau13a34bd2009-05-10 18:52:49 +02001555 curproxy->fe_sps_lim = defproxy.fe_sps_lim;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001556
1557 /* initialize error relocations */
Krzysztof Piotr Oledzki78abe612009-09-27 13:23:20 +02001558 for (rc = 0; rc < HTTP_ERR_SIZE; rc++)
1559 chunk_dup(&curproxy->errmsg[rc], &defproxy.errmsg[rc]);
Willy Tarreau977b8e42006-12-29 14:19:17 +01001560
1561 curproxy->to_log = defproxy.to_log & ~LW_COOKIE & ~LW_REQHDR & ~ LW_RSPHDR;
1562 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001563
Willy Tarreau977b8e42006-12-29 14:19:17 +01001564 if (curproxy->cap & PR_CAP_BE) {
1565 curproxy->fullconn = defproxy.fullconn;
1566 curproxy->conn_retries = defproxy.conn_retries;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001567
Willy Tarreauaa2f3892010-10-22 16:15:31 +02001568 if (defproxy.check_req) {
1569 curproxy->check_req = calloc(1, defproxy.check_len);
1570 memcpy(curproxy->check_req, defproxy.check_req, defproxy.check_len);
1571 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01001572 curproxy->check_len = defproxy.check_len;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001573
Willy Tarreau1ee51a62011-08-19 20:04:17 +02001574 if (defproxy.expect_str) {
1575 curproxy->expect_str = strdup(defproxy.expect_str);
1576 if (defproxy.expect_regex) {
1577 /* note: this regex is known to be valid */
1578 curproxy->expect_regex = calloc(1, sizeof(regex_t));
1579 regcomp(curproxy->expect_regex, defproxy.expect_str, REG_EXTENDED);
1580 }
1581 }
1582
Willy Tarreau67402132012-05-31 20:40:20 +02001583 curproxy->ck_opts = defproxy.ck_opts;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001584 if (defproxy.cookie_name)
1585 curproxy->cookie_name = strdup(defproxy.cookie_name);
1586 curproxy->cookie_len = defproxy.cookie_len;
Willy Tarreau4d187ac2009-12-03 23:13:06 +01001587 if (defproxy.cookie_domain)
1588 curproxy->cookie_domain = strdup(defproxy.cookie_domain);
Willy Tarreau01732802007-11-01 22:48:15 +01001589
Willy Tarreau31936852010-10-06 16:59:56 +02001590 if (defproxy.cookie_maxidle)
1591 curproxy->cookie_maxidle = defproxy.cookie_maxidle;
1592
1593 if (defproxy.cookie_maxlife)
1594 curproxy->cookie_maxlife = defproxy.cookie_maxlife;
1595
Emeric Brun647caf12009-06-30 17:57:00 +02001596 if (defproxy.rdp_cookie_name)
1597 curproxy->rdp_cookie_name = strdup(defproxy.rdp_cookie_name);
1598 curproxy->rdp_cookie_len = defproxy.rdp_cookie_len;
1599
Willy Tarreau01732802007-11-01 22:48:15 +01001600 if (defproxy.url_param_name)
1601 curproxy->url_param_name = strdup(defproxy.url_param_name);
1602 curproxy->url_param_len = defproxy.url_param_len;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01001603
Benoitaffb4812009-03-25 13:02:10 +01001604 if (defproxy.hh_name)
1605 curproxy->hh_name = strdup(defproxy.hh_name);
1606 curproxy->hh_len = defproxy.hh_len;
1607 curproxy->hh_match_domain = defproxy.hh_match_domain;
1608
Willy Tarreaud53f96b2009-02-04 18:46:54 +01001609 if (defproxy.iface_name)
1610 curproxy->iface_name = strdup(defproxy.iface_name);
1611 curproxy->iface_len = defproxy.iface_len;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001612 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001613
Willy Tarreau3b6b1a92009-07-23 13:24:23 +02001614 if (curproxy->cap & PR_CAP_FE) {
Willy Tarreau977b8e42006-12-29 14:19:17 +01001615 if (defproxy.capture_name)
1616 curproxy->capture_name = strdup(defproxy.capture_name);
1617 curproxy->capture_namelen = defproxy.capture_namelen;
1618 curproxy->capture_len = defproxy.capture_len;
Willy Tarreau0f772532006-12-23 20:51:41 +01001619 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001620
Willy Tarreau977b8e42006-12-29 14:19:17 +01001621 if (curproxy->cap & PR_CAP_FE) {
Willy Tarreaud7c30f92007-12-03 01:38:36 +01001622 curproxy->timeout.client = defproxy.timeout.client;
Willy Tarreau1fa31262007-12-03 00:36:16 +01001623 curproxy->timeout.tarpit = defproxy.timeout.tarpit;
Willy Tarreau036fae02008-01-06 13:24:40 +01001624 curproxy->timeout.httpreq = defproxy.timeout.httpreq;
Willy Tarreaub16a5742010-01-10 14:46:16 +01001625 curproxy->timeout.httpka = defproxy.timeout.httpka;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001626 curproxy->uri_auth = defproxy.uri_auth;
1627 curproxy->mon_net = defproxy.mon_net;
1628 curproxy->mon_mask = defproxy.mon_mask;
1629 if (defproxy.monitor_uri)
1630 curproxy->monitor_uri = strdup(defproxy.monitor_uri);
1631 curproxy->monitor_uri_len = defproxy.monitor_uri_len;
Willy Tarreau5fdfb912007-01-01 23:11:07 +01001632 if (defproxy.defbe.name)
1633 curproxy->defbe.name = strdup(defproxy.defbe.name);
Willy Tarreau99a7ca22012-05-31 19:39:23 +02001634
1635 /* get either a pointer to the logformat string or a copy of it */
1636 curproxy->logformat_string = defproxy.logformat_string;
1637 if (curproxy->logformat_string &&
1638 curproxy->logformat_string != default_http_log_format &&
1639 curproxy->logformat_string != default_tcp_log_format &&
1640 curproxy->logformat_string != clf_http_log_format)
1641 curproxy->logformat_string = strdup(curproxy->logformat_string);
Willy Tarreau977b8e42006-12-29 14:19:17 +01001642 }
1643
1644 if (curproxy->cap & PR_CAP_BE) {
Willy Tarreaud7c30f92007-12-03 01:38:36 +01001645 curproxy->timeout.connect = defproxy.timeout.connect;
1646 curproxy->timeout.server = defproxy.timeout.server;
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01001647 curproxy->timeout.check = defproxy.timeout.check;
Willy Tarreau1fa31262007-12-03 00:36:16 +01001648 curproxy->timeout.queue = defproxy.timeout.queue;
Willy Tarreau51c9bde2008-01-06 13:40:03 +01001649 curproxy->timeout.tarpit = defproxy.timeout.tarpit;
Willy Tarreaucd7afc02009-07-12 10:03:17 +02001650 curproxy->timeout.httpreq = defproxy.timeout.httpreq;
Willy Tarreaub16a5742010-01-10 14:46:16 +01001651 curproxy->timeout.httpka = defproxy.timeout.httpka;
Willy Tarreauce887fd2012-05-12 12:50:00 +02001652 curproxy->timeout.tunnel = defproxy.timeout.tunnel;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001653 curproxy->source_addr = defproxy.source_addr;
1654 }
1655
Willy Tarreaubaaee002006-06-26 02:48:02 +02001656 curproxy->mode = defproxy.mode;
William Lallemand0f99e342011-10-12 17:50:54 +02001657
1658 /* copy default logsrvs to curproxy */
William Lallemand723b73a2012-02-08 16:37:49 +01001659 list_for_each_entry(tmplogsrv, &defproxy.logsrvs, list) {
William Lallemand0f99e342011-10-12 17:50:54 +02001660 struct logsrv *node = malloc(sizeof(struct logsrv));
William Lallemand723b73a2012-02-08 16:37:49 +01001661 memcpy(node, tmplogsrv, sizeof(struct logsrv));
William Lallemand0f99e342011-10-12 17:50:54 +02001662 LIST_INIT(&node->list);
1663 LIST_ADDQ(&curproxy->logsrvs, &node->list);
1664 }
1665
Willy Tarreau196729e2012-05-31 19:30:26 +02001666 curproxy->uniqueid_format_string = defproxy.uniqueid_format_string;
1667 if (curproxy->uniqueid_format_string)
1668 curproxy->uniqueid_format_string = strdup(curproxy->uniqueid_format_string);
William Lallemanda73203e2012-03-12 12:48:57 +01001669
1670 /* copy default header unique id */
1671 if (defproxy.header_unique_id)
1672 curproxy->header_unique_id = strdup(defproxy.header_unique_id);
1673
Willy Tarreaubaaee002006-06-26 02:48:02 +02001674 curproxy->grace = defproxy.grace;
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02001675 curproxy->conf.used_listener_id = EB_ROOT;
1676 curproxy->conf.used_server_id = EB_ROOT;
Willy Tarreau1c47f852006-07-09 08:22:27 +02001677
Willy Tarreau93893792009-07-23 13:19:11 +02001678 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001679 }
1680 else if (!strcmp(args[0], "defaults")) { /* use this one to assign default values */
1681 /* some variables may have already been initialized earlier */
Willy Tarreau5fdfb912007-01-01 23:11:07 +01001682 /* FIXME-20070101: we should do this too at the end of the
1683 * config parsing to free all default values.
1684 */
Willy Tarreaua534fea2008-08-03 12:19:50 +02001685 free(defproxy.check_req);
1686 free(defproxy.cookie_name);
Emeric Brun647caf12009-06-30 17:57:00 +02001687 free(defproxy.rdp_cookie_name);
Willy Tarreau4d187ac2009-12-03 23:13:06 +01001688 free(defproxy.cookie_domain);
Willy Tarreaua534fea2008-08-03 12:19:50 +02001689 free(defproxy.url_param_name);
Benoitaffb4812009-03-25 13:02:10 +01001690 free(defproxy.hh_name);
Willy Tarreaua534fea2008-08-03 12:19:50 +02001691 free(defproxy.capture_name);
1692 free(defproxy.monitor_uri);
1693 free(defproxy.defbe.name);
Willy Tarreaud53f96b2009-02-04 18:46:54 +01001694 free(defproxy.iface_name);
Willy Tarreau79f5fe82008-08-23 08:18:21 +02001695 free(defproxy.fwdfor_hdr_name);
1696 defproxy.fwdfor_hdr_len = 0;
Willy Tarreaub86db342009-11-30 11:50:16 +01001697 free(defproxy.orgto_hdr_name);
1698 defproxy.orgto_hdr_len = 0;
Mark Lamourinec2247f02012-01-04 13:02:01 -05001699 free(defproxy.server_id_hdr_name);
1700 defproxy.server_id_hdr_len = 0;
Willy Tarreau1ee51a62011-08-19 20:04:17 +02001701 free(defproxy.expect_str);
1702 if (defproxy.expect_regex) regfree(defproxy.expect_regex);
Willy Tarreau0f772532006-12-23 20:51:41 +01001703
Willy Tarreau39b06652012-06-01 10:58:06 +02001704 if (defproxy.logformat_string != default_http_log_format &&
1705 defproxy.logformat_string != default_tcp_log_format &&
1706 defproxy.logformat_string != clf_http_log_format)
Willy Tarreau196729e2012-05-31 19:30:26 +02001707 free(defproxy.logformat_string);
1708
1709 free(defproxy.uniqueid_format_string);
1710
Willy Tarreaua534fea2008-08-03 12:19:50 +02001711 for (rc = 0; rc < HTTP_ERR_SIZE; rc++)
Krzysztof Piotr Oledzki78abe612009-09-27 13:23:20 +02001712 chunk_destroy(&defproxy.errmsg[rc]);
Willy Tarreau0f772532006-12-23 20:51:41 +01001713
Willy Tarreaubaaee002006-06-26 02:48:02 +02001714 /* we cannot free uri_auth because it might already be used */
1715 init_default_instance();
1716 curproxy = &defproxy;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001717 defproxy.cap = PR_CAP_LISTEN; /* all caps for now */
Willy Tarreau93893792009-07-23 13:19:11 +02001718 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001719 }
1720 else if (curproxy == NULL) {
1721 Alert("parsing [%s:%d] : 'listen' or 'defaults' expected.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02001722 err_code |= ERR_ALERT | ERR_FATAL;
1723 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001724 }
1725
Willy Tarreau977b8e42006-12-29 14:19:17 +01001726
1727 /* Now let's parse the proxy-specific keywords */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001728 if (!strcmp(args[0], "bind")) { /* new listen addresses */
Willy Tarreau4348fad2012-09-20 16:48:07 +02001729 struct listener *l;
Willy Tarreau5e6e2042009-02-04 17:19:29 +01001730 int cur_arg;
Willy Tarreau4fbb2282012-09-20 20:01:39 +02001731 char *err_msg = NULL;
Willy Tarreau5e6e2042009-02-04 17:19:29 +01001732
Willy Tarreaubaaee002006-06-26 02:48:02 +02001733 if (curproxy == &defproxy) {
1734 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001735 err_code |= ERR_ALERT | ERR_FATAL;
1736 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001737 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01001738 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02001739 err_code |= ERR_WARN;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001740
Emeric Bruned760922010-10-22 17:59:25 +02001741 if ( *(args[1]) != '/' && strchr(args[1], ':') == NULL) {
Willy Tarreaud55c3fe2010-11-09 09:50:37 +01001742 Alert("parsing [%s:%d] : '%s' expects {<path>|[addr1]:port1[-end1]}{,[addr]:port[-end]}... as arguments.\n",
Willy Tarreaubaaee002006-06-26 02:48:02 +02001743 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001744 err_code |= ERR_ALERT | ERR_FATAL;
1745 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001746 }
Willy Tarreaub1e52e82008-01-13 14:49:51 +01001747
Willy Tarreau2a65ff02012-09-13 17:54:29 +02001748 bind_conf = bind_conf_alloc(&curproxy->conf.bind, file, linenum, args[1]);
Willy Tarreau290e63a2012-09-20 18:07:14 +02001749 memcpy(&bind_conf->ux, &global.unix_bind.ux, sizeof(global.unix_bind.ux));
Willy Tarreau8a956912010-10-15 14:27:08 +02001750
1751 /* NOTE: the following line might create several listeners if there
1752 * are comma-separated IPs or port ranges. So all further processing
1753 * will have to be applied to all listeners created after last_listen.
1754 */
Willy Tarreau4fbb2282012-09-20 20:01:39 +02001755 if (!str2listener(args[1], curproxy, bind_conf, file, linenum, &err_msg)) {
1756 if (err_msg && *err_msg) {
1757 indent_msg(&err_msg, 2);
1758 Alert("parsing [%s:%d] : '%s' : %s\n", file, linenum, args[0], err_msg);
1759 }
1760 else
1761 Alert("parsing [%s:%d] : '%s' : error encountered while parsing listening address '%s'.\n",
1762 file, linenum, args[0], args[1]);
1763 free(err_msg);
Willy Tarreau93893792009-07-23 13:19:11 +02001764 err_code |= ERR_ALERT | ERR_FATAL;
1765 goto out;
1766 }
Willy Tarreau5e6e2042009-02-04 17:19:29 +01001767
Willy Tarreau4348fad2012-09-20 16:48:07 +02001768 list_for_each_entry(l, &bind_conf->listeners, by_bind) {
1769 /* Set default global rights and owner for unix bind */
Willy Tarreauc8b11092011-02-16 11:08:57 +01001770 global.maxsock++;
Willy Tarreau90a570f2009-10-04 20:54:54 +02001771 }
1772
Willy Tarreau5e6e2042009-02-04 17:19:29 +01001773 cur_arg = 2;
1774 while (*(args[cur_arg])) {
Willy Tarreau8638f482012-09-18 18:01:17 +02001775 static int bind_dumped;
Willy Tarreau26982662012-09-12 23:17:10 +02001776 struct bind_kw *kw;
Willy Tarreau8638f482012-09-18 18:01:17 +02001777 char *err;
1778
Willy Tarreau26982662012-09-12 23:17:10 +02001779 kw = bind_find_kw(args[cur_arg]);
1780 if (kw) {
1781 char *err = NULL;
1782 int code;
1783
1784 if (!kw->parse) {
Willy Tarreaudda322d2012-09-18 16:34:09 +02001785 Alert("parsing [%s:%d] : '%s %s' : '%s' option is not implemented in this version (check build options).\n",
1786 file, linenum, args[0], args[1], args[cur_arg]);
Willy Tarreau26982662012-09-12 23:17:10 +02001787 cur_arg += 1 + kw->skip ;
1788 err_code |= ERR_ALERT | ERR_FATAL;
1789 goto out;
1790 }
1791
Willy Tarreau4348fad2012-09-20 16:48:07 +02001792 code = kw->parse(args, cur_arg, curproxy, bind_conf, &err);
Willy Tarreau26982662012-09-12 23:17:10 +02001793 err_code |= code;
1794
1795 if (code) {
1796 if (err && *err) {
1797 indent_msg(&err, 2);
Willy Tarreaudda322d2012-09-18 16:34:09 +02001798 Alert("parsing [%s:%d] : '%s %s' : %s\n", file, linenum, args[0], args[1], err);
Willy Tarreau26982662012-09-12 23:17:10 +02001799 }
1800 else
Willy Tarreaudda322d2012-09-18 16:34:09 +02001801 Alert("parsing [%s:%d] : '%s %s' : error encountered while processing '%s'.\n",
1802 file, linenum, args[0], args[1], args[cur_arg]);
Willy Tarreau26982662012-09-12 23:17:10 +02001803 if (code & ERR_FATAL) {
1804 free(err);
1805 cur_arg += 1 + kw->skip;
1806 goto out;
1807 }
1808 }
1809 free(err);
1810 cur_arg += 1 + kw->skip;
1811 continue;
1812 }
1813
Willy Tarreau8638f482012-09-18 18:01:17 +02001814 err = NULL;
1815 if (!bind_dumped) {
1816 bind_dump_kws(&err);
1817 indent_msg(&err, 4);
1818 bind_dumped = 1;
1819 }
1820
1821 Alert("parsing [%s:%d] : '%s %s' unknown keyword '%s'.%s%s\n",
1822 file, linenum, args[0], args[1], args[cur_arg],
1823 err ? " Registered keywords :" : "", err ? err : "");
1824 free(err);
1825
Willy Tarreau93893792009-07-23 13:19:11 +02001826 err_code |= ERR_ALERT | ERR_FATAL;
1827 goto out;
Willy Tarreaub1e52e82008-01-13 14:49:51 +01001828 }
Willy Tarreau93893792009-07-23 13:19:11 +02001829 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001830 }
1831 else if (!strcmp(args[0], "monitor-net")) { /* set the range of IPs to ignore */
1832 if (!*args[1] || !str2net(args[1], &curproxy->mon_net, &curproxy->mon_mask)) {
1833 Alert("parsing [%s:%d] : '%s' expects address[/mask].\n",
1834 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001835 err_code |= ERR_ALERT | ERR_FATAL;
1836 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001837 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01001838 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02001839 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001840
Willy Tarreaubaaee002006-06-26 02:48:02 +02001841 /* flush useless bits */
1842 curproxy->mon_net.s_addr &= curproxy->mon_mask.s_addr;
Willy Tarreau93893792009-07-23 13:19:11 +02001843 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001844 }
Willy Tarreau1c47f852006-07-09 08:22:27 +02001845 else if (!strcmp(args[0], "monitor-uri")) { /* set the URI to intercept */
Willy Tarreau977b8e42006-12-29 14:19:17 +01001846 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02001847 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01001848
Willy Tarreau1c47f852006-07-09 08:22:27 +02001849 if (!*args[1]) {
1850 Alert("parsing [%s:%d] : '%s' expects an URI.\n",
1851 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001852 err_code |= ERR_ALERT | ERR_FATAL;
1853 goto out;
Willy Tarreau1c47f852006-07-09 08:22:27 +02001854 }
1855
Willy Tarreaua534fea2008-08-03 12:19:50 +02001856 free(curproxy->monitor_uri);
Willy Tarreau8d5d7f22007-01-21 19:16:41 +01001857 curproxy->monitor_uri_len = strlen(args[1]);
Willy Tarreau1c47f852006-07-09 08:22:27 +02001858 curproxy->monitor_uri = (char *)calloc(1, curproxy->monitor_uri_len + 1);
Willy Tarreau8d5d7f22007-01-21 19:16:41 +01001859 memcpy(curproxy->monitor_uri, args[1], curproxy->monitor_uri_len);
Willy Tarreau1c47f852006-07-09 08:22:27 +02001860 curproxy->monitor_uri[curproxy->monitor_uri_len] = '\0';
1861
Willy Tarreau93893792009-07-23 13:19:11 +02001862 goto out;
Willy Tarreau1c47f852006-07-09 08:22:27 +02001863 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001864 else if (!strcmp(args[0], "mode")) { /* sets the proxy mode */
1865 if (!strcmp(args[1], "http")) curproxy->mode = PR_MODE_HTTP;
1866 else if (!strcmp(args[1], "tcp")) curproxy->mode = PR_MODE_TCP;
1867 else if (!strcmp(args[1], "health")) curproxy->mode = PR_MODE_HEALTH;
1868 else {
1869 Alert("parsing [%s:%d] : unknown proxy mode '%s'.\n", file, linenum, args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02001870 err_code |= ERR_ALERT | ERR_FATAL;
1871 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001872 }
1873 }
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001874 else if (!strcmp(args[0], "id")) {
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02001875 struct eb32_node *node;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001876
1877 if (curproxy == &defproxy) {
1878 Alert("parsing [%s:%d]: '%s' not allowed in 'defaults' section.\n",
1879 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001880 err_code |= ERR_ALERT | ERR_FATAL;
1881 goto out;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001882 }
1883
1884 if (!*args[1]) {
1885 Alert("parsing [%s:%d]: '%s' expects an integer argument.\n",
1886 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001887 err_code |= ERR_ALERT | ERR_FATAL;
1888 goto out;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001889 }
1890
1891 curproxy->uuid = atol(args[1]);
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02001892 curproxy->conf.id.key = curproxy->uuid;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001893
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02001894 if (curproxy->uuid <= 0) {
1895 Alert("parsing [%s:%d]: custom id has to be > 0.\n",
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001896 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02001897 err_code |= ERR_ALERT | ERR_FATAL;
1898 goto out;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001899 }
1900
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02001901 node = eb32_lookup(&used_proxy_id, curproxy->uuid);
1902 if (node) {
1903 struct proxy *target = container_of(node, struct proxy, conf.id);
1904 Alert("parsing [%s:%d]: %s %s reuses same custom id as %s %s (declared at %s:%d).\n",
1905 file, linenum, proxy_type_str(curproxy), curproxy->id,
1906 proxy_type_str(target), target->id, target->conf.file, target->conf.line);
1907 err_code |= ERR_ALERT | ERR_FATAL;
1908 goto out;
1909 }
1910 eb32_insert(&used_proxy_id, &curproxy->conf.id);
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01001911 }
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02001912 else if (!strcmp(args[0], "description")) {
1913 int i, len=0;
1914 char *d;
1915
Cyril Bonté99ed3272010-01-24 23:29:44 +01001916 if (curproxy == &defproxy) {
1917 Alert("parsing [%s:%d]: '%s' not allowed in 'defaults' section.\n",
1918 file, linenum, args[0]);
1919 err_code |= ERR_ALERT | ERR_FATAL;
1920 goto out;
1921 }
1922
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02001923 if (!*args[1]) {
1924 Alert("parsing [%s:%d]: '%s' expects a string argument.\n",
1925 file, linenum, args[0]);
1926 return -1;
1927 }
1928
1929 for(i=1; *args[i]; i++)
1930 len += strlen(args[i])+1;
1931
1932 d = (char *)calloc(1, len);
1933 curproxy->desc = d;
1934
1935 d += sprintf(d, "%s", args[1]);
1936 for(i=2; *args[i]; i++)
1937 d += sprintf(d, " %s", args[i]);
1938
1939 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001940 else if (!strcmp(args[0], "disabled")) { /* disables this proxy */
1941 curproxy->state = PR_STSTOPPED;
1942 }
1943 else if (!strcmp(args[0], "enabled")) { /* enables this proxy (used to revert a disabled default) */
1944 curproxy->state = PR_STNEW;
1945 }
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01001946 else if (!strcmp(args[0], "bind-process")) { /* enable this proxy only on some processes */
1947 int cur_arg = 1;
1948 unsigned int set = 0;
1949
1950 while (*args[cur_arg]) {
1951 int u;
1952 if (strcmp(args[cur_arg], "all") == 0) {
1953 set = 0;
1954 break;
1955 }
1956 else if (strcmp(args[cur_arg], "odd") == 0) {
1957 set |= 0x55555555;
1958 }
1959 else if (strcmp(args[cur_arg], "even") == 0) {
1960 set |= 0xAAAAAAAA;
1961 }
1962 else {
1963 u = str2uic(args[cur_arg]);
1964 if (u < 1 || u > 32) {
1965 Alert("parsing [%s:%d]: %s expects 'all', 'odd', 'even', or process numbers from 1 to 32.\n",
1966 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001967 err_code |= ERR_ALERT | ERR_FATAL;
1968 goto out;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01001969 }
1970 if (u > global.nbproc) {
1971 Warning("parsing [%s:%d]: %s references process number higher than global.nbproc.\n",
1972 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001973 err_code |= ERR_WARN;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01001974 }
1975 set |= 1 << (u - 1);
1976 }
1977 cur_arg++;
1978 }
1979 curproxy->bind_proc = set;
1980 }
Willy Tarreaueb0c6142007-05-07 00:53:22 +02001981 else if (!strcmp(args[0], "acl")) { /* add an ACL */
Willy Tarreaub099aca2008-10-12 17:26:37 +02001982 if (curproxy == &defproxy) {
1983 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02001984 err_code |= ERR_ALERT | ERR_FATAL;
1985 goto out;
Willy Tarreaub099aca2008-10-12 17:26:37 +02001986 }
1987
Willy Tarreau2e74c3f2007-12-02 18:45:09 +01001988 err = invalid_char(args[1]);
1989 if (err) {
1990 Alert("parsing [%s:%d] : character '%c' is not permitted in acl name '%s'.\n",
1991 file, linenum, *err, args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02001992 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreau2e74c3f2007-12-02 18:45:09 +01001993 }
1994
Willy Tarreaub7451bb2012-04-27 12:38:15 +02001995 if (parse_acl((const char **)args + 1, &curproxy->acl, &errmsg) == NULL) {
1996 Alert("parsing [%s:%d] : error detected while parsing ACL '%s' : %s.\n",
1997 file, linenum, args[1], errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02001998 err_code |= ERR_ALERT | ERR_FATAL;
1999 goto out;
Willy Tarreaueb0c6142007-05-07 00:53:22 +02002000 }
2001 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002002 else if (!strcmp(args[0], "cookie")) { /* cookie name */
2003 int cur_arg;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002004
Willy Tarreau977b8e42006-12-29 14:19:17 +01002005 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02002006 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01002007
Willy Tarreaubaaee002006-06-26 02:48:02 +02002008 if (*(args[1]) == 0) {
2009 Alert("parsing [%s:%d] : '%s' expects <cookie_name> as argument.\n",
2010 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002011 err_code |= ERR_ALERT | ERR_FATAL;
2012 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002013 }
Willy Tarreaua534fea2008-08-03 12:19:50 +02002014
Willy Tarreau67402132012-05-31 20:40:20 +02002015 curproxy->ck_opts = 0;
Willy Tarreauc63d4bb2010-10-23 11:37:27 +02002016 curproxy->cookie_maxidle = curproxy->cookie_maxlife = 0;
Willy Tarreau4d187ac2009-12-03 23:13:06 +01002017 free(curproxy->cookie_domain); curproxy->cookie_domain = NULL;
Willy Tarreaua534fea2008-08-03 12:19:50 +02002018 free(curproxy->cookie_name);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002019 curproxy->cookie_name = strdup(args[1]);
2020 curproxy->cookie_len = strlen(curproxy->cookie_name);
Willy Tarreauc63d4bb2010-10-23 11:37:27 +02002021
Willy Tarreaubaaee002006-06-26 02:48:02 +02002022 cur_arg = 2;
2023 while (*(args[cur_arg])) {
2024 if (!strcmp(args[cur_arg], "rewrite")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002025 curproxy->ck_opts |= PR_CK_RW;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002026 }
2027 else if (!strcmp(args[cur_arg], "indirect")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002028 curproxy->ck_opts |= PR_CK_IND;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002029 }
2030 else if (!strcmp(args[cur_arg], "insert")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002031 curproxy->ck_opts |= PR_CK_INS;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002032 }
2033 else if (!strcmp(args[cur_arg], "nocache")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002034 curproxy->ck_opts |= PR_CK_NOC;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002035 }
2036 else if (!strcmp(args[cur_arg], "postonly")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002037 curproxy->ck_opts |= PR_CK_POST;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002038 }
Willy Tarreauba4c5be2010-10-23 12:46:42 +02002039 else if (!strcmp(args[cur_arg], "preserve")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002040 curproxy->ck_opts |= PR_CK_PSV;
Willy Tarreauba4c5be2010-10-23 12:46:42 +02002041 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002042 else if (!strcmp(args[cur_arg], "prefix")) {
Willy Tarreau67402132012-05-31 20:40:20 +02002043 curproxy->ck_opts |= PR_CK_PFX;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002044 }
Willy Tarreau4992dd22012-05-31 21:02:17 +02002045 else if (!strcmp(args[cur_arg], "httponly")) {
2046 curproxy->ck_opts |= PR_CK_HTTPONLY;
2047 }
2048 else if (!strcmp(args[cur_arg], "secure")) {
2049 curproxy->ck_opts |= PR_CK_SECURE;
2050 }
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002051 else if (!strcmp(args[cur_arg], "domain")) {
2052 if (!*args[cur_arg + 1]) {
2053 Alert("parsing [%s:%d]: '%s' expects <domain> as argument.\n",
2054 file, linenum, args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02002055 err_code |= ERR_ALERT | ERR_FATAL;
2056 goto out;
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002057 }
2058
Krzysztof Piotr Oledzki1a8bea92009-12-15 23:40:47 +01002059 if (*args[cur_arg + 1] != '.' || !strchr(args[cur_arg + 1] + 1, '.')) {
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002060 /* rfc2109, 4.3.2 Rejecting Cookies */
Krzysztof Piotr Oledzki1a8bea92009-12-15 23:40:47 +01002061 Warning("parsing [%s:%d]: domain '%s' contains no embedded"
2062 " dots nor does not start with a dot."
2063 " RFC forbids it, this configuration may not work properly.\n",
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002064 file, linenum, args[cur_arg + 1]);
Krzysztof Piotr Oledzki1a8bea92009-12-15 23:40:47 +01002065 err_code |= ERR_WARN;
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002066 }
2067
2068 err = invalid_domainchar(args[cur_arg + 1]);
2069 if (err) {
2070 Alert("parsing [%s:%d]: character '%c' is not permitted in domain name '%s'.\n",
2071 file, linenum, *err, args[cur_arg + 1]);
Willy Tarreau93893792009-07-23 13:19:11 +02002072 err_code |= ERR_ALERT | ERR_FATAL;
2073 goto out;
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002074 }
2075
Willy Tarreau68a897b2009-12-03 23:28:34 +01002076 if (!curproxy->cookie_domain) {
2077 curproxy->cookie_domain = strdup(args[cur_arg + 1]);
2078 } else {
2079 /* one domain was already specified, add another one by
2080 * building the string which will be returned along with
2081 * the cookie.
2082 */
2083 char *new_ptr;
2084 int new_len = strlen(curproxy->cookie_domain) +
2085 strlen("; domain=") + strlen(args[cur_arg + 1]) + 1;
2086 new_ptr = malloc(new_len);
2087 snprintf(new_ptr, new_len, "%s; domain=%s", curproxy->cookie_domain, args[cur_arg+1]);
2088 free(curproxy->cookie_domain);
2089 curproxy->cookie_domain = new_ptr;
2090 }
Willy Tarreau31936852010-10-06 16:59:56 +02002091 cur_arg++;
2092 }
2093 else if (!strcmp(args[cur_arg], "maxidle")) {
2094 unsigned int maxidle;
2095 const char *res;
2096
2097 if (!*args[cur_arg + 1]) {
2098 Alert("parsing [%s:%d]: '%s' expects <idletime> in seconds as argument.\n",
2099 file, linenum, args[cur_arg]);
2100 err_code |= ERR_ALERT | ERR_FATAL;
2101 goto out;
2102 }
2103
2104 res = parse_time_err(args[cur_arg + 1], &maxidle, TIME_UNIT_S);
2105 if (res) {
2106 Alert("parsing [%s:%d]: unexpected character '%c' in argument to <%s>.\n",
2107 file, linenum, *res, args[cur_arg]);
2108 err_code |= ERR_ALERT | ERR_FATAL;
2109 goto out;
2110 }
2111 curproxy->cookie_maxidle = maxidle;
2112 cur_arg++;
2113 }
2114 else if (!strcmp(args[cur_arg], "maxlife")) {
2115 unsigned int maxlife;
2116 const char *res;
2117
2118 if (!*args[cur_arg + 1]) {
2119 Alert("parsing [%s:%d]: '%s' expects <lifetime> in seconds as argument.\n",
2120 file, linenum, args[cur_arg]);
2121 err_code |= ERR_ALERT | ERR_FATAL;
2122 goto out;
2123 }
2124
2125 res = parse_time_err(args[cur_arg + 1], &maxlife, TIME_UNIT_S);
2126 if (res) {
2127 Alert("parsing [%s:%d]: unexpected character '%c' in argument to <%s>.\n",
2128 file, linenum, *res, args[cur_arg]);
2129 err_code |= ERR_ALERT | ERR_FATAL;
2130 goto out;
2131 }
2132 curproxy->cookie_maxlife = maxlife;
Krzysztof Piotr Oledzkiefe3b6f2008-05-23 23:49:32 +02002133 cur_arg++;
2134 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002135 else {
Willy Tarreau31936852010-10-06 16:59:56 +02002136 Alert("parsing [%s:%d] : '%s' supports 'rewrite', 'insert', 'prefix', 'indirect', 'nocache', 'postonly', 'domain', 'maxidle, and 'maxlife' options.\n",
Willy Tarreaubaaee002006-06-26 02:48:02 +02002137 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002138 err_code |= ERR_ALERT | ERR_FATAL;
2139 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002140 }
2141 cur_arg++;
2142 }
Willy Tarreau67402132012-05-31 20:40:20 +02002143 if (!POWEROF2(curproxy->ck_opts & (PR_CK_RW|PR_CK_IND))) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02002144 Alert("parsing [%s:%d] : cookie 'rewrite' and 'indirect' modes are incompatible.\n",
2145 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002146 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002147 }
2148
Willy Tarreau67402132012-05-31 20:40:20 +02002149 if (!POWEROF2(curproxy->ck_opts & (PR_CK_RW|PR_CK_INS|PR_CK_PFX))) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02002150 Alert("parsing [%s:%d] : cookie 'rewrite', 'insert' and 'prefix' modes are incompatible.\n",
2151 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002152 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002153 }
Willy Tarreauba4c5be2010-10-23 12:46:42 +02002154
Willy Tarreau67402132012-05-31 20:40:20 +02002155 if ((curproxy->ck_opts & (PR_CK_PSV | PR_CK_INS | PR_CK_IND)) == PR_CK_PSV) {
Willy Tarreauba4c5be2010-10-23 12:46:42 +02002156 Alert("parsing [%s:%d] : cookie 'preserve' requires at least 'insert' or 'indirect'.\n",
2157 file, linenum);
2158 err_code |= ERR_ALERT | ERR_FATAL;
2159 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002160 }/* end else if (!strcmp(args[0], "cookie")) */
Emeric Brun647caf12009-06-30 17:57:00 +02002161 else if (!strcmp(args[0], "persist")) { /* persist */
2162 if (*(args[1]) == 0) {
2163 Alert("parsing [%s:%d] : missing persist method.\n",
2164 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002165 err_code |= ERR_ALERT | ERR_FATAL;
2166 goto out;
Emeric Brun647caf12009-06-30 17:57:00 +02002167 }
2168
2169 if (!strncmp(args[1], "rdp-cookie", 10)) {
2170 curproxy->options2 |= PR_O2_RDPC_PRST;
2171
Emeric Brunb982a3d2010-01-04 15:45:53 +01002172 if (*(args[1] + 10) == '(') { /* cookie name */
Emeric Brun647caf12009-06-30 17:57:00 +02002173 const char *beg, *end;
2174
2175 beg = args[1] + 11;
2176 end = strchr(beg, ')');
2177
2178 if (!end || end == beg) {
2179 Alert("parsing [%s:%d] : persist rdp-cookie(name)' requires an rdp cookie name.\n",
2180 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002181 err_code |= ERR_ALERT | ERR_FATAL;
2182 goto out;
Emeric Brun647caf12009-06-30 17:57:00 +02002183 }
2184
2185 free(curproxy->rdp_cookie_name);
2186 curproxy->rdp_cookie_name = my_strndup(beg, end - beg);
2187 curproxy->rdp_cookie_len = end-beg;
2188 }
Emeric Brunb982a3d2010-01-04 15:45:53 +01002189 else if (*(args[1] + 10) == '\0') { /* default cookie name 'msts' */
Emeric Brun647caf12009-06-30 17:57:00 +02002190 free(curproxy->rdp_cookie_name);
2191 curproxy->rdp_cookie_name = strdup("msts");
2192 curproxy->rdp_cookie_len = strlen(curproxy->rdp_cookie_name);
2193 }
2194 else { /* syntax */
2195 Alert("parsing [%s:%d] : persist rdp-cookie(name)' requires an rdp cookie name.\n",
2196 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002197 err_code |= ERR_ALERT | ERR_FATAL;
2198 goto out;
Emeric Brun647caf12009-06-30 17:57:00 +02002199 }
2200 }
2201 else {
2202 Alert("parsing [%s:%d] : unknown persist method.\n",
2203 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002204 err_code |= ERR_ALERT | ERR_FATAL;
2205 goto out;
Emeric Brun647caf12009-06-30 17:57:00 +02002206 }
2207 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002208 else if (!strcmp(args[0], "appsession")) { /* cookie name */
Cyril Bontébf47aeb2009-10-15 00:15:40 +02002209 int cur_arg;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002210
Cyril Bonté3b7a3692010-01-10 17:01:47 +01002211 if (curproxy == &defproxy) {
2212 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
2213 err_code |= ERR_ALERT | ERR_FATAL;
2214 goto out;
2215 }
2216
Willy Tarreau977b8e42006-12-29 14:19:17 +01002217 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02002218 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01002219
Willy Tarreaubaaee002006-06-26 02:48:02 +02002220 if (*(args[5]) == 0) {
Cyril Bontéb21570a2009-11-29 20:04:48 +01002221 Alert("parsing [%s:%d] : '%s' expects 'appsession' <cookie_name> 'len' <len> 'timeout' <timeout> [options*].\n",
Willy Tarreaubaaee002006-06-26 02:48:02 +02002222 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002223 err_code |= ERR_ALERT | ERR_FATAL;
2224 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002225 }
2226 have_appsession = 1;
Willy Tarreaua534fea2008-08-03 12:19:50 +02002227 free(curproxy->appsession_name);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002228 curproxy->appsession_name = strdup(args[1]);
2229 curproxy->appsession_name_len = strlen(curproxy->appsession_name);
2230 curproxy->appsession_len = atoi(args[3]);
Willy Tarreaub3f32f52007-12-02 22:15:14 +01002231 err = parse_time_err(args[5], &val, TIME_UNIT_MS);
2232 if (err) {
2233 Alert("parsing [%s:%d] : unexpected character '%c' in %s timeout.\n",
2234 file, linenum, *err, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002235 err_code |= ERR_ALERT | ERR_FATAL;
2236 goto out;
Willy Tarreaub3f32f52007-12-02 22:15:14 +01002237 }
Willy Tarreau0c303ee2008-07-07 00:09:58 +02002238 curproxy->timeout.appsession = val;
Willy Tarreauee991362007-05-14 14:37:50 +02002239
Willy Tarreau51041c72007-09-09 21:56:53 +02002240 if (appsession_hash_init(&(curproxy->htbl_proxy), destroy) == 0) {
2241 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02002242 err_code |= ERR_ALERT | ERR_ABORT;
2243 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002244 }
Cyril Bontébf47aeb2009-10-15 00:15:40 +02002245
2246 cur_arg = 6;
2247 curproxy->options2 &= ~PR_O2_AS_REQL;
Cyril Bontéb21570a2009-11-29 20:04:48 +01002248 curproxy->options2 &= ~PR_O2_AS_M_ANY;
2249 curproxy->options2 |= PR_O2_AS_M_PP;
Cyril Bontébf47aeb2009-10-15 00:15:40 +02002250 while (*(args[cur_arg])) {
Cyril Bontéb21570a2009-11-29 20:04:48 +01002251 if (!strcmp(args[cur_arg], "request-learn")) {
Cyril Bontébf47aeb2009-10-15 00:15:40 +02002252 curproxy->options2 |= PR_O2_AS_REQL;
Cyril Bontéb21570a2009-11-29 20:04:48 +01002253 } else if (!strcmp(args[cur_arg], "prefix")) {
2254 curproxy->options2 |= PR_O2_AS_PFX;
2255 } else if (!strcmp(args[cur_arg], "mode")) {
2256 if (!*args[cur_arg + 1]) {
2257 Alert("parsing [%s:%d] : '%s': missing argument for '%s'.\n",
2258 file, linenum, args[0], args[cur_arg]);
2259 err_code |= ERR_ALERT | ERR_FATAL;
2260 goto out;
2261 }
2262
2263 cur_arg++;
2264 if (!strcmp(args[cur_arg], "query-string")) {
2265 curproxy->options2 &= ~PR_O2_AS_M_ANY;
2266 curproxy->options2 |= PR_O2_AS_M_QS;
2267 } else if (!strcmp(args[cur_arg], "path-parameters")) {
2268 curproxy->options2 &= ~PR_O2_AS_M_ANY;
2269 curproxy->options2 |= PR_O2_AS_M_PP;
2270 } else {
2271 Alert("parsing [%s:%d] : unknown mode '%s'\n", file, linenum, args[cur_arg]);
2272 err_code |= ERR_ALERT | ERR_FATAL;
2273 goto out;
2274 }
2275 }
Cyril Bontébf47aeb2009-10-15 00:15:40 +02002276 cur_arg++;
2277 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002278 } /* Url App Session */
2279 else if (!strcmp(args[0], "capture")) {
Willy Tarreau3b6b1a92009-07-23 13:24:23 +02002280 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02002281 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01002282
Willy Tarreaubaaee002006-06-26 02:48:02 +02002283 if (!strcmp(args[1], "cookie")) { /* name of a cookie to capture */
Cyril Bonté99ed3272010-01-24 23:29:44 +01002284 if (curproxy == &defproxy) {
2285 Alert("parsing [%s:%d] : '%s %s' not allowed in 'defaults' section.\n", file, linenum, args[0], args[1]);
2286 err_code |= ERR_ALERT | ERR_FATAL;
2287 goto out;
2288 }
2289
Willy Tarreaubaaee002006-06-26 02:48:02 +02002290 if (*(args[4]) == 0) {
2291 Alert("parsing [%s:%d] : '%s' expects 'cookie' <cookie_name> 'len' <len>.\n",
2292 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002293 err_code |= ERR_ALERT | ERR_FATAL;
2294 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002295 }
Willy Tarreaua534fea2008-08-03 12:19:50 +02002296 free(curproxy->capture_name);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002297 curproxy->capture_name = strdup(args[2]);
2298 curproxy->capture_namelen = strlen(curproxy->capture_name);
2299 curproxy->capture_len = atol(args[4]);
2300 if (curproxy->capture_len >= CAPTURE_LEN) {
2301 Warning("parsing [%s:%d] : truncating capture length to %d bytes.\n",
2302 file, linenum, CAPTURE_LEN - 1);
Willy Tarreau93893792009-07-23 13:19:11 +02002303 err_code |= ERR_WARN;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002304 curproxy->capture_len = CAPTURE_LEN - 1;
2305 }
2306 curproxy->to_log |= LW_COOKIE;
2307 }
2308 else if (!strcmp(args[1], "request") && !strcmp(args[2], "header")) {
2309 struct cap_hdr *hdr;
2310
2311 if (curproxy == &defproxy) {
2312 Alert("parsing [%s:%d] : '%s %s' not allowed in 'defaults' section.\n", file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02002313 err_code |= ERR_ALERT | ERR_FATAL;
2314 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002315 }
2316
2317 if (*(args[3]) == 0 || strcmp(args[4], "len") != 0 || *(args[5]) == 0) {
2318 Alert("parsing [%s:%d] : '%s %s' expects 'header' <header_name> 'len' <len>.\n",
2319 file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02002320 err_code |= ERR_ALERT | ERR_FATAL;
2321 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002322 }
2323
2324 hdr = calloc(sizeof(struct cap_hdr), 1);
2325 hdr->next = curproxy->req_cap;
2326 hdr->name = strdup(args[3]);
2327 hdr->namelen = strlen(args[3]);
2328 hdr->len = atol(args[5]);
Willy Tarreaucf7f3202007-05-13 22:46:04 +02002329 hdr->pool = create_pool("caphdr", hdr->len + 1, MEM_F_SHARED);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002330 hdr->index = curproxy->nb_req_cap++;
2331 curproxy->req_cap = hdr;
2332 curproxy->to_log |= LW_REQHDR;
2333 }
2334 else if (!strcmp(args[1], "response") && !strcmp(args[2], "header")) {
2335 struct cap_hdr *hdr;
2336
2337 if (curproxy == &defproxy) {
2338 Alert("parsing [%s:%d] : '%s %s' not allowed in 'defaults' section.\n", file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02002339 err_code |= ERR_ALERT | ERR_FATAL;
2340 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002341 }
2342
2343 if (*(args[3]) == 0 || strcmp(args[4], "len") != 0 || *(args[5]) == 0) {
2344 Alert("parsing [%s:%d] : '%s %s' expects 'header' <header_name> 'len' <len>.\n",
2345 file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02002346 err_code |= ERR_ALERT | ERR_FATAL;
2347 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002348 }
2349 hdr = calloc(sizeof(struct cap_hdr), 1);
2350 hdr->next = curproxy->rsp_cap;
2351 hdr->name = strdup(args[3]);
2352 hdr->namelen = strlen(args[3]);
2353 hdr->len = atol(args[5]);
Willy Tarreaucf7f3202007-05-13 22:46:04 +02002354 hdr->pool = create_pool("caphdr", hdr->len + 1, MEM_F_SHARED);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002355 hdr->index = curproxy->nb_rsp_cap++;
2356 curproxy->rsp_cap = hdr;
2357 curproxy->to_log |= LW_RSPHDR;
2358 }
2359 else {
2360 Alert("parsing [%s:%d] : '%s' expects 'cookie' or 'request header' or 'response header'.\n",
2361 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002362 err_code |= ERR_ALERT | ERR_FATAL;
2363 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002364 }
2365 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002366 else if (!strcmp(args[0], "retries")) { /* connection retries */
Willy Tarreau977b8e42006-12-29 14:19:17 +01002367 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02002368 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01002369
Willy Tarreaubaaee002006-06-26 02:48:02 +02002370 if (*(args[1]) == 0) {
2371 Alert("parsing [%s:%d] : '%s' expects an integer argument (dispatch counts for one).\n",
2372 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002373 err_code |= ERR_ALERT | ERR_FATAL;
2374 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002375 }
2376 curproxy->conn_retries = atol(args[1]);
2377 }
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002378 else if (!strcmp(args[0], "http-request")) { /* request access control: allow/deny/auth */
Willy Tarreauff011f22011-01-06 17:51:27 +01002379 struct http_req_rule *rule;
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002380
2381 if (curproxy == &defproxy) {
2382 Alert("parsing [%s:%d]: '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
2383 err_code |= ERR_ALERT | ERR_FATAL;
2384 goto out;
2385 }
2386
Willy Tarreauff011f22011-01-06 17:51:27 +01002387 if (!LIST_ISEMPTY(&curproxy->http_req_rules) && !LIST_PREV(&curproxy->http_req_rules, struct http_req_rule *, list)->cond) {
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002388 Warning("parsing [%s:%d]: previous '%s' action has no condition attached, further entries are NOOP.\n",
2389 file, linenum, args[0]);
2390 err_code |= ERR_WARN;
2391 }
2392
Willy Tarreauff011f22011-01-06 17:51:27 +01002393 rule = parse_http_req_cond((const char **)args + 1, file, linenum, curproxy);
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002394
Willy Tarreauff011f22011-01-06 17:51:27 +01002395 if (!rule) {
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002396 err_code |= ERR_ALERT | ERR_ABORT;
2397 goto out;
2398 }
2399
Willy Tarreauff011f22011-01-06 17:51:27 +01002400 err_code |= warnif_cond_requires_resp(rule->cond, file, linenum);
2401 LIST_ADDQ(&curproxy->http_req_rules, &rule->list);
Krzysztof Piotr Oledzki59bb2182010-01-29 17:58:21 +01002402 }
Mark Lamourinec2247f02012-01-04 13:02:01 -05002403 else if (!strcmp(args[0], "http-send-name-header")) { /* send server name in request header */
2404 /* set the header name and length into the proxy structure */
2405 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
2406 err_code |= ERR_WARN;
2407
2408 if (!*args[1]) {
2409 Alert("parsing [%s:%d] : '%s' requires a header string.\n",
2410 file, linenum, args[0]);
2411 err_code |= ERR_ALERT | ERR_FATAL;
2412 goto out;
2413 }
2414
2415 /* set the desired header name */
2416 free(curproxy->server_id_hdr_name);
2417 curproxy->server_id_hdr_name = strdup(args[1]);
2418 curproxy->server_id_hdr_len = strlen(curproxy->server_id_hdr_name);
2419 }
Willy Tarreau5c8e3e02007-05-07 00:58:25 +02002420 else if (!strcmp(args[0], "block")) { /* early blocking based on ACLs */
Willy Tarreaub099aca2008-10-12 17:26:37 +02002421 if (curproxy == &defproxy) {
2422 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002423 err_code |= ERR_ALERT | ERR_FATAL;
2424 goto out;
Willy Tarreaub099aca2008-10-12 17:26:37 +02002425 }
2426
Willy Tarreauef6494c2010-01-28 17:12:36 +01002427 if (strcmp(args[1], "if") != 0 && strcmp(args[1], "unless") != 0) {
Willy Tarreau5c8e3e02007-05-07 00:58:25 +02002428 Alert("parsing [%s:%d] : '%s' requires either 'if' or 'unless' followed by a condition.\n",
2429 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002430 err_code |= ERR_ALERT | ERR_FATAL;
2431 goto out;
Willy Tarreau5c8e3e02007-05-07 00:58:25 +02002432 }
2433
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002434 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + 1, &errmsg)) == NULL) {
2435 Alert("parsing [%s:%d] : error detected while parsing blocking condition : %s.\n",
2436 file, linenum, errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02002437 err_code |= ERR_ALERT | ERR_FATAL;
2438 goto out;
Willy Tarreau5c8e3e02007-05-07 00:58:25 +02002439 }
Willy Tarreauef6494c2010-01-28 17:12:36 +01002440
Willy Tarreau5c8e3e02007-05-07 00:58:25 +02002441 LIST_ADDQ(&curproxy->block_cond, &cond->list);
Willy Tarreau61d18892009-03-31 10:49:21 +02002442 warnif_misplaced_block(curproxy, file, linenum, args[0]);
Willy Tarreau5c8e3e02007-05-07 00:58:25 +02002443 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002444 else if (!strcmp(args[0], "redirect")) {
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002445 struct redirect_rule *rule;
2446 int cur_arg;
2447 int type = REDIRECT_TYPE_NONE;
2448 int code = 302;
2449 char *destination = NULL;
Willy Tarreau0140f252008-11-19 21:07:09 +01002450 char *cookie = NULL;
2451 int cookie_set = 0;
Willy Tarreau79da4692008-11-19 20:03:04 +01002452 unsigned int flags = REDIRECT_FLAG_NONE;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002453
Cyril Bonté99ed3272010-01-24 23:29:44 +01002454 if (curproxy == &defproxy) {
2455 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
2456 err_code |= ERR_ALERT | ERR_FATAL;
2457 goto out;
2458 }
2459
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002460 cur_arg = 1;
2461 while (*(args[cur_arg])) {
2462 if (!strcmp(args[cur_arg], "location")) {
2463 if (!*args[cur_arg + 1]) {
2464 Alert("parsing [%s:%d] : '%s': missing argument for '%s'.\n",
2465 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02002466 err_code |= ERR_ALERT | ERR_FATAL;
2467 goto out;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002468 }
2469
2470 type = REDIRECT_TYPE_LOCATION;
2471 cur_arg++;
2472 destination = args[cur_arg];
2473 }
2474 else if (!strcmp(args[cur_arg], "prefix")) {
2475 if (!*args[cur_arg + 1]) {
2476 Alert("parsing [%s:%d] : '%s': missing argument for '%s'.\n",
2477 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02002478 err_code |= ERR_ALERT | ERR_FATAL;
2479 goto out;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002480 }
2481
2482 type = REDIRECT_TYPE_PREFIX;
2483 cur_arg++;
2484 destination = args[cur_arg];
2485 }
Willy Tarreau2e1dca82012-09-12 08:43:15 +02002486 else if (!strcmp(args[cur_arg], "scheme")) {
2487 if (!*args[cur_arg + 1]) {
2488 Alert("parsing [%s:%d] : '%s': missing argument for '%s'.\n",
2489 file, linenum, args[0], args[cur_arg]);
2490 err_code |= ERR_ALERT | ERR_FATAL;
2491 goto out;
2492 }
2493
2494 type = REDIRECT_TYPE_SCHEME;
2495 cur_arg++;
2496 destination = args[cur_arg];
2497 }
Willy Tarreau0140f252008-11-19 21:07:09 +01002498 else if (!strcmp(args[cur_arg], "set-cookie")) {
2499 if (!*args[cur_arg + 1]) {
2500 Alert("parsing [%s:%d] : '%s': missing argument for '%s'.\n",
2501 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02002502 err_code |= ERR_ALERT | ERR_FATAL;
2503 goto out;
Willy Tarreau0140f252008-11-19 21:07:09 +01002504 }
2505
2506 cur_arg++;
2507 cookie = args[cur_arg];
2508 cookie_set = 1;
2509 }
2510 else if (!strcmp(args[cur_arg], "clear-cookie")) {
2511 if (!*args[cur_arg + 1]) {
2512 Alert("parsing [%s:%d] : '%s': missing argument for '%s'.\n",
2513 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02002514 err_code |= ERR_ALERT | ERR_FATAL;
2515 goto out;
Willy Tarreau0140f252008-11-19 21:07:09 +01002516 }
2517
2518 cur_arg++;
2519 cookie = args[cur_arg];
2520 cookie_set = 0;
2521 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002522 else if (!strcmp(args[cur_arg],"code")) {
2523 if (!*args[cur_arg + 1]) {
2524 Alert("parsing [%s:%d] : '%s': missing HTTP code.\n",
2525 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002526 err_code |= ERR_ALERT | ERR_FATAL;
2527 goto out;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002528 }
2529 cur_arg++;
2530 code = atol(args[cur_arg]);
2531 if (code < 301 || code > 303) {
2532 Alert("parsing [%s:%d] : '%s': unsupported HTTP code '%d'.\n",
2533 file, linenum, args[0], code);
Willy Tarreau93893792009-07-23 13:19:11 +02002534 err_code |= ERR_ALERT | ERR_FATAL;
2535 goto out;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002536 }
2537 }
Willy Tarreau79da4692008-11-19 20:03:04 +01002538 else if (!strcmp(args[cur_arg],"drop-query")) {
2539 flags |= REDIRECT_FLAG_DROP_QS;
2540 }
Willy Tarreau81e3b4f2010-01-10 00:42:19 +01002541 else if (!strcmp(args[cur_arg],"append-slash")) {
2542 flags |= REDIRECT_FLAG_APPEND_SLASH;
2543 }
Willy Tarreauef6494c2010-01-28 17:12:36 +01002544 else if (strcmp(args[cur_arg], "if") == 0 ||
2545 strcmp(args[cur_arg], "unless") == 0) {
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002546 cond = build_acl_cond(file, linenum, curproxy, (const char **)args + cur_arg, &errmsg);
Willy Tarreauef6494c2010-01-28 17:12:36 +01002547 if (!cond) {
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002548 Alert("parsing [%s:%d] : '%s': error detected while parsing redirect condition : %s.\n",
2549 file, linenum, args[0], errmsg);
Willy Tarreauef6494c2010-01-28 17:12:36 +01002550 err_code |= ERR_ALERT | ERR_FATAL;
2551 goto out;
2552 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002553 break;
2554 }
2555 else {
Willy Tarreau2e1dca82012-09-12 08:43:15 +02002556 Alert("parsing [%s:%d] : '%s' expects 'code', 'prefix', 'location', 'scheme', 'set-cookie', 'clear-cookie', 'drop-query' or 'append-slash' (was '%s').\n",
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002557 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02002558 err_code |= ERR_ALERT | ERR_FATAL;
2559 goto out;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002560 }
2561 cur_arg++;
2562 }
2563
2564 if (type == REDIRECT_TYPE_NONE) {
2565 Alert("parsing [%s:%d] : '%s' expects a redirection type ('prefix' or 'location').\n",
2566 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002567 err_code |= ERR_ALERT | ERR_FATAL;
2568 goto out;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002569 }
2570
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002571 rule = (struct redirect_rule *)calloc(1, sizeof(*rule));
2572 rule->cond = cond;
2573 rule->rdr_str = strdup(destination);
2574 rule->rdr_len = strlen(destination);
Willy Tarreau0140f252008-11-19 21:07:09 +01002575 if (cookie) {
2576 /* depending on cookie_set, either we want to set the cookie, or to clear it.
William Turnerd9865262010-03-01 13:30:34 -05002577 * a clear consists in appending "; path=/; Max-Age=0;" at the end.
Willy Tarreau0140f252008-11-19 21:07:09 +01002578 */
2579 rule->cookie_len = strlen(cookie);
William Turnerd9865262010-03-01 13:30:34 -05002580 if (cookie_set) {
2581 rule->cookie_str = malloc(rule->cookie_len + 10);
2582 memcpy(rule->cookie_str, cookie, rule->cookie_len);
2583 memcpy(rule->cookie_str + rule->cookie_len, "; path=/;", 10);
2584 rule->cookie_len += 9;
2585 } else {
2586 rule->cookie_str = malloc(rule->cookie_len + 21);
Willy Tarreau0140f252008-11-19 21:07:09 +01002587 memcpy(rule->cookie_str, cookie, rule->cookie_len);
William Turnerd9865262010-03-01 13:30:34 -05002588 memcpy(rule->cookie_str + rule->cookie_len, "; path=/; Max-Age=0;", 21);
2589 rule->cookie_len += 20;
Willy Tarreau0140f252008-11-19 21:07:09 +01002590 }
2591 }
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002592 rule->type = type;
2593 rule->code = code;
Willy Tarreau79da4692008-11-19 20:03:04 +01002594 rule->flags = flags;
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002595 LIST_INIT(&rule->list);
2596 LIST_ADDQ(&curproxy->redirect_rules, &rule->list);
Willy Tarreau9d9ed012011-02-23 15:24:42 +01002597 err_code |= warnif_rule_after_use_backend(curproxy, file, linenum, args[0]);
2598 err_code |= warnif_cond_requires_resp(cond, file, linenum);
Willy Tarreaub463dfb2008-06-07 23:08:56 +02002599 }
Krzysztof Piotr Oledzki7b723ef2009-01-27 21:09:41 +01002600 else if (!strcmp(args[0], "use_backend")) {
Willy Tarreau55ea7572007-06-17 19:56:27 +02002601 struct switching_rule *rule;
2602
Willy Tarreaub099aca2008-10-12 17:26:37 +02002603 if (curproxy == &defproxy) {
2604 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002605 err_code |= ERR_ALERT | ERR_FATAL;
2606 goto out;
Willy Tarreaub099aca2008-10-12 17:26:37 +02002607 }
2608
Willy Tarreau55ea7572007-06-17 19:56:27 +02002609 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02002610 err_code |= ERR_WARN;
Willy Tarreau55ea7572007-06-17 19:56:27 +02002611
2612 if (*(args[1]) == 0) {
2613 Alert("parsing [%s:%d] : '%s' expects a backend name.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002614 err_code |= ERR_ALERT | ERR_FATAL;
2615 goto out;
Willy Tarreau55ea7572007-06-17 19:56:27 +02002616 }
2617
Willy Tarreauef6494c2010-01-28 17:12:36 +01002618 if (strcmp(args[2], "if") != 0 && strcmp(args[2], "unless") != 0) {
Willy Tarreau55ea7572007-06-17 19:56:27 +02002619 Alert("parsing [%s:%d] : '%s' requires either 'if' or 'unless' followed by a condition.\n",
2620 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02002621 err_code |= ERR_ALERT | ERR_FATAL;
2622 goto out;
Willy Tarreau55ea7572007-06-17 19:56:27 +02002623 }
2624
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002625 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + 2, &errmsg)) == NULL) {
2626 Alert("parsing [%s:%d] : error detected while parsing switching rule : %s.\n",
2627 file, linenum, errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02002628 err_code |= ERR_ALERT | ERR_FATAL;
2629 goto out;
Willy Tarreau55ea7572007-06-17 19:56:27 +02002630 }
2631
Willy Tarreauf1e98b82010-01-28 17:59:39 +01002632 err_code |= warnif_cond_requires_resp(cond, file, linenum);
Willy Tarreaua9802632008-07-25 19:13:19 +02002633
Willy Tarreau55ea7572007-06-17 19:56:27 +02002634 rule = (struct switching_rule *)calloc(1, sizeof(*rule));
2635 rule->cond = cond;
2636 rule->be.name = strdup(args[1]);
2637 LIST_INIT(&rule->list);
2638 LIST_ADDQ(&curproxy->switching_rules, &rule->list);
2639 }
Willy Tarreau4a5cade2012-04-05 21:09:48 +02002640 else if (strcmp(args[0], "use-server") == 0) {
2641 struct server_rule *rule;
2642
2643 if (curproxy == &defproxy) {
2644 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
2645 err_code |= ERR_ALERT | ERR_FATAL;
2646 goto out;
2647 }
2648
2649 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
2650 err_code |= ERR_WARN;
2651
2652 if (*(args[1]) == 0) {
2653 Alert("parsing [%s:%d] : '%s' expects a server name.\n", file, linenum, args[0]);
2654 err_code |= ERR_ALERT | ERR_FATAL;
2655 goto out;
2656 }
2657
2658 if (strcmp(args[2], "if") != 0 && strcmp(args[2], "unless") != 0) {
2659 Alert("parsing [%s:%d] : '%s' requires either 'if' or 'unless' followed by a condition.\n",
2660 file, linenum, args[0]);
2661 err_code |= ERR_ALERT | ERR_FATAL;
2662 goto out;
2663 }
2664
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002665 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + 2, &errmsg)) == NULL) {
2666 Alert("parsing [%s:%d] : error detected while parsing switching rule : %s.\n",
2667 file, linenum, errmsg);
Willy Tarreau4a5cade2012-04-05 21:09:48 +02002668 err_code |= ERR_ALERT | ERR_FATAL;
2669 goto out;
2670 }
2671
2672 err_code |= warnif_cond_requires_resp(cond, file, linenum);
2673
2674 rule = (struct server_rule *)calloc(1, sizeof(*rule));
2675 rule->cond = cond;
2676 rule->srv.name = strdup(args[1]);
2677 LIST_INIT(&rule->list);
2678 LIST_ADDQ(&curproxy->server_rules, &rule->list);
2679 curproxy->be_req_ana |= AN_REQ_SRV_RULES;
2680 }
Cyril Bonté47fdd8e2010-04-25 00:00:51 +02002681 else if ((!strcmp(args[0], "force-persist")) ||
2682 (!strcmp(args[0], "ignore-persist"))) {
2683 struct persist_rule *rule;
Willy Tarreau4de91492010-01-22 19:10:05 +01002684
2685 if (curproxy == &defproxy) {
2686 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
2687 err_code |= ERR_ALERT | ERR_FATAL;
2688 goto out;
2689 }
2690
2691 if (warnifnotcap(curproxy, PR_CAP_FE|PR_CAP_BE, file, linenum, args[0], NULL))
2692 err_code |= ERR_WARN;
2693
Willy Tarreauef6494c2010-01-28 17:12:36 +01002694 if (strcmp(args[1], "if") != 0 && strcmp(args[1], "unless") != 0) {
Willy Tarreau4de91492010-01-22 19:10:05 +01002695 Alert("parsing [%s:%d] : '%s' requires either 'if' or 'unless' followed by a condition.\n",
2696 file, linenum, args[0]);
2697 err_code |= ERR_ALERT | ERR_FATAL;
2698 goto out;
2699 }
2700
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002701 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + 1, &errmsg)) == NULL) {
2702 Alert("parsing [%s:%d] : error detected while parsing a '%s' rule : %s.\n",
2703 file, linenum, args[0], errmsg);
Willy Tarreau4de91492010-01-22 19:10:05 +01002704 err_code |= ERR_ALERT | ERR_FATAL;
2705 goto out;
2706 }
2707
Willy Tarreauf1e98b82010-01-28 17:59:39 +01002708 err_code |= warnif_cond_requires_resp(cond, file, linenum);
Willy Tarreau4de91492010-01-22 19:10:05 +01002709
Cyril Bonté47fdd8e2010-04-25 00:00:51 +02002710 rule = (struct persist_rule *)calloc(1, sizeof(*rule));
Willy Tarreau4de91492010-01-22 19:10:05 +01002711 rule->cond = cond;
Cyril Bonté47fdd8e2010-04-25 00:00:51 +02002712 if (!strcmp(args[0], "force-persist")) {
2713 rule->type = PERSIST_TYPE_FORCE;
2714 } else {
2715 rule->type = PERSIST_TYPE_IGNORE;
2716 }
Willy Tarreau4de91492010-01-22 19:10:05 +01002717 LIST_INIT(&rule->list);
Cyril Bonté47fdd8e2010-04-25 00:00:51 +02002718 LIST_ADDQ(&curproxy->persist_rules, &rule->list);
Willy Tarreau4de91492010-01-22 19:10:05 +01002719 }
Emeric Brunb982a3d2010-01-04 15:45:53 +01002720 else if (!strcmp(args[0], "stick-table")) {
2721 int myidx = 1;
2722
Emeric Brun32da3c42010-09-23 18:39:19 +02002723 curproxy->table.id = curproxy->id;
Emeric Brunb982a3d2010-01-04 15:45:53 +01002724 curproxy->table.type = (unsigned int)-1;
2725 while (*args[myidx]) {
2726 const char *err;
2727
2728 if (strcmp(args[myidx], "size") == 0) {
2729 myidx++;
2730 if (!*(args[myidx])) {
2731 Alert("parsing [%s:%d] : stick-table: missing argument after '%s'.\n",
2732 file, linenum, args[myidx-1]);
2733 err_code |= ERR_ALERT | ERR_FATAL;
2734 goto out;
2735 }
2736 if ((err = parse_size_err(args[myidx], &curproxy->table.size))) {
2737 Alert("parsing [%s:%d] : stick-table: unexpected character '%c' in argument of '%s'.\n",
2738 file, linenum, *err, args[myidx-1]);
2739 err_code |= ERR_ALERT | ERR_FATAL;
2740 goto out;
2741 }
Willy Tarreau0c559312010-01-26 18:36:26 +01002742 myidx++;
Emeric Brunb982a3d2010-01-04 15:45:53 +01002743 }
Emeric Brun32da3c42010-09-23 18:39:19 +02002744 else if (strcmp(args[myidx], "peers") == 0) {
2745 myidx++;
2746 if (!*(args[myidx])) {
2747 Alert("parsing [%s:%d] : stick-table: missing argument after '%s'.\n",
2748 file, linenum, args[myidx-1]);
2749 err_code |= ERR_ALERT | ERR_FATAL;
2750 goto out;
2751 }
2752 curproxy->table.peers.name = strdup(args[myidx++]);
2753 }
Emeric Brunb982a3d2010-01-04 15:45:53 +01002754 else if (strcmp(args[myidx], "expire") == 0) {
2755 myidx++;
2756 if (!*(args[myidx])) {
2757 Alert("parsing [%s:%d] : stick-table: missing argument after '%s'.\n",
2758 file, linenum, args[myidx-1]);
2759 err_code |= ERR_ALERT | ERR_FATAL;
2760 goto out;
2761 }
2762 err = parse_time_err(args[myidx], &val, TIME_UNIT_MS);
2763 if (err) {
2764 Alert("parsing [%s:%d] : stick-table: unexpected character '%c' in argument of '%s'.\n",
2765 file, linenum, *err, args[myidx-1]);
2766 err_code |= ERR_ALERT | ERR_FATAL;
2767 goto out;
2768 }
2769 curproxy->table.expire = val;
Willy Tarreau0c559312010-01-26 18:36:26 +01002770 myidx++;
Emeric Brunb982a3d2010-01-04 15:45:53 +01002771 }
2772 else if (strcmp(args[myidx], "nopurge") == 0) {
2773 curproxy->table.nopurge = 1;
Willy Tarreau0c559312010-01-26 18:36:26 +01002774 myidx++;
Emeric Brunb982a3d2010-01-04 15:45:53 +01002775 }
2776 else if (strcmp(args[myidx], "type") == 0) {
2777 myidx++;
2778 if (stktable_parse_type(args, &myidx, &curproxy->table.type, &curproxy->table.key_size) != 0) {
2779 Alert("parsing [%s:%d] : stick-table: unknown type '%s'.\n",
2780 file, linenum, args[myidx]);
2781 err_code |= ERR_ALERT | ERR_FATAL;
2782 goto out;
2783 }
Willy Tarreau0c559312010-01-26 18:36:26 +01002784 /* myidx already points to next arg */
2785 }
Willy Tarreau08d5f982010-06-06 13:34:54 +02002786 else if (strcmp(args[myidx], "store") == 0) {
Willy Tarreauac782882010-06-20 10:41:54 +02002787 int type, err;
Willy Tarreau888617d2010-06-20 09:11:39 +02002788 char *cw, *nw, *sa;
Willy Tarreau08d5f982010-06-06 13:34:54 +02002789
2790 myidx++;
Willy Tarreaub084e9c2010-06-19 07:12:36 +02002791 nw = args[myidx];
2792 while (*nw) {
2793 /* the "store" keyword supports a comma-separated list */
2794 cw = nw;
Willy Tarreau888617d2010-06-20 09:11:39 +02002795 sa = NULL; /* store arg */
2796 while (*nw && *nw != ',') {
2797 if (*nw == '(') {
2798 *nw = 0;
2799 sa = ++nw;
2800 while (*nw != ')') {
2801 if (!*nw) {
2802 Alert("parsing [%s:%d] : %s: missing closing parenthesis after store option '%s'.\n",
2803 file, linenum, args[0], cw);
2804 err_code |= ERR_ALERT | ERR_FATAL;
2805 goto out;
2806 }
2807 nw++;
2808 }
2809 *nw = '\0';
2810 }
Willy Tarreaub084e9c2010-06-19 07:12:36 +02002811 nw++;
Willy Tarreau888617d2010-06-20 09:11:39 +02002812 }
Willy Tarreaub084e9c2010-06-19 07:12:36 +02002813 if (*nw)
2814 *nw++ = '\0';
2815 type = stktable_get_data_type(cw);
2816 if (type < 0) {
2817 Alert("parsing [%s:%d] : %s: unknown store option '%s'.\n",
2818 file, linenum, args[0], cw);
2819 err_code |= ERR_ALERT | ERR_FATAL;
2820 goto out;
2821 }
Willy Tarreauac782882010-06-20 10:41:54 +02002822
2823 err = stktable_alloc_data_type(&curproxy->table, type, sa);
2824 switch (err) {
2825 case PE_NONE: break;
2826 case PE_EXIST:
Willy Tarreaub084e9c2010-06-19 07:12:36 +02002827 Warning("parsing [%s:%d]: %s: store option '%s' already enabled, ignored.\n",
2828 file, linenum, args[0], cw);
2829 err_code |= ERR_WARN;
Willy Tarreauac782882010-06-20 10:41:54 +02002830 break;
2831
2832 case PE_ARG_MISSING:
2833 Alert("parsing [%s:%d] : %s: missing argument to store option '%s'.\n",
2834 file, linenum, args[0], cw);
2835 err_code |= ERR_ALERT | ERR_FATAL;
2836 goto out;
2837
2838 case PE_ARG_NOT_USED:
2839 Alert("parsing [%s:%d] : %s: unexpected argument to store option '%s'.\n",
2840 file, linenum, args[0], cw);
2841 err_code |= ERR_ALERT | ERR_FATAL;
2842 goto out;
2843
2844 default:
2845 Alert("parsing [%s:%d] : %s: error when processing store option '%s'.\n",
2846 file, linenum, args[0], cw);
2847 err_code |= ERR_ALERT | ERR_FATAL;
2848 goto out;
Willy Tarreaub084e9c2010-06-19 07:12:36 +02002849 }
Willy Tarreau08d5f982010-06-06 13:34:54 +02002850 }
2851 myidx++;
2852 }
Willy Tarreau0c559312010-01-26 18:36:26 +01002853 else {
2854 Alert("parsing [%s:%d] : stick-table: unknown argument '%s'.\n",
2855 file, linenum, args[myidx]);
2856 err_code |= ERR_ALERT | ERR_FATAL;
2857 goto out;
Emeric Brunb982a3d2010-01-04 15:45:53 +01002858 }
Emeric Brunb982a3d2010-01-04 15:45:53 +01002859 }
2860
2861 if (!curproxy->table.size) {
2862 Alert("parsing [%s:%d] : stick-table: missing size.\n",
2863 file, linenum);
2864 err_code |= ERR_ALERT | ERR_FATAL;
2865 goto out;
2866 }
2867
2868 if (curproxy->table.type == (unsigned int)-1) {
2869 Alert("parsing [%s:%d] : stick-table: missing type.\n",
2870 file, linenum);
2871 err_code |= ERR_ALERT | ERR_FATAL;
2872 goto out;
2873 }
2874 }
2875 else if (!strcmp(args[0], "stick")) {
Emeric Brunb982a3d2010-01-04 15:45:53 +01002876 struct sticking_rule *rule;
Willy Tarreau12785782012-04-27 21:37:17 +02002877 struct sample_expr *expr;
Emeric Brunb982a3d2010-01-04 15:45:53 +01002878 int myidx = 0;
2879 const char *name = NULL;
2880 int flags;
2881
2882 if (curproxy == &defproxy) {
2883 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
2884 err_code |= ERR_ALERT | ERR_FATAL;
2885 goto out;
2886 }
2887
2888 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL)) {
2889 err_code |= ERR_WARN;
2890 goto out;
2891 }
2892
2893 myidx++;
2894 if ((strcmp(args[myidx], "store") == 0) ||
2895 (strcmp(args[myidx], "store-request") == 0)) {
2896 myidx++;
2897 flags = STK_IS_STORE;
2898 }
2899 else if (strcmp(args[myidx], "store-response") == 0) {
2900 myidx++;
2901 flags = STK_IS_STORE | STK_ON_RSP;
2902 }
2903 else if (strcmp(args[myidx], "match") == 0) {
2904 myidx++;
2905 flags = STK_IS_MATCH;
2906 }
2907 else if (strcmp(args[myidx], "on") == 0) {
2908 myidx++;
2909 flags = STK_IS_MATCH | STK_IS_STORE;
2910 }
2911 else {
2912 Alert("parsing [%s:%d] : '%s' expects 'on', 'match', or 'store'.\n", file, linenum, args[0]);
2913 err_code |= ERR_ALERT | ERR_FATAL;
2914 goto out;
2915 }
2916
2917 if (*(args[myidx]) == 0) {
2918 Alert("parsing [%s:%d] : '%s' expects a fetch method.\n", file, linenum, args[0]);
2919 err_code |= ERR_ALERT | ERR_FATAL;
2920 goto out;
2921 }
2922
David du Colombier7af46052012-05-16 14:16:48 +02002923 expr = sample_parse_expr(args, &myidx, trash, trashlen);
Emeric Brunb982a3d2010-01-04 15:45:53 +01002924 if (!expr) {
Emeric Brun485479d2010-09-23 18:02:19 +02002925 Alert("parsing [%s:%d] : '%s': %s\n", file, linenum, args[0], trash);
Emeric Brunb982a3d2010-01-04 15:45:53 +01002926 err_code |= ERR_ALERT | ERR_FATAL;
2927 goto out;
2928 }
2929
2930 if (flags & STK_ON_RSP) {
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02002931 if (!(expr->fetch->cap & SMP_CAP_RES)) {
Emeric Brunb982a3d2010-01-04 15:45:53 +01002932 Alert("parsing [%s:%d] : '%s': fetch method '%s' can not be used on response.\n",
2933 file, linenum, args[0], expr->fetch->kw);
2934 err_code |= ERR_ALERT | ERR_FATAL;
Simon Horman5e55f5d2011-07-15 13:14:07 +09002935 free(expr);
Emeric Brunb982a3d2010-01-04 15:45:53 +01002936 goto out;
2937 }
2938 } else {
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02002939 if (!(expr->fetch->cap & SMP_CAP_REQ)) {
Emeric Brunb982a3d2010-01-04 15:45:53 +01002940 Alert("parsing [%s:%d] : '%s': fetch method '%s' can not be used on request.\n",
2941 file, linenum, args[0], expr->fetch->kw);
2942 err_code |= ERR_ALERT | ERR_FATAL;
Simon Horman5e55f5d2011-07-15 13:14:07 +09002943 free(expr);
Emeric Brunb982a3d2010-01-04 15:45:53 +01002944 goto out;
2945 }
2946 }
2947
2948 if (strcmp(args[myidx], "table") == 0) {
2949 myidx++;
2950 name = args[myidx++];
2951 }
2952
Willy Tarreauef6494c2010-01-28 17:12:36 +01002953 if (strcmp(args[myidx], "if") == 0 || strcmp(args[myidx], "unless") == 0) {
Willy Tarreaub7451bb2012-04-27 12:38:15 +02002954 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + myidx, &errmsg)) == NULL) {
2955 Alert("parsing [%s:%d] : '%s': error detected while parsing sticking condition : %s.\n",
2956 file, linenum, args[0], errmsg);
Emeric Brunb982a3d2010-01-04 15:45:53 +01002957 err_code |= ERR_ALERT | ERR_FATAL;
Simon Horman5e55f5d2011-07-15 13:14:07 +09002958 free(expr);
Emeric Brunb982a3d2010-01-04 15:45:53 +01002959 goto out;
2960 }
Emeric Brunb982a3d2010-01-04 15:45:53 +01002961 }
Willy Tarreauef6494c2010-01-28 17:12:36 +01002962 else if (*(args[myidx])) {
2963 Alert("parsing [%s:%d] : '%s': unknown keyword '%s'.\n",
2964 file, linenum, args[0], args[myidx]);
2965 err_code |= ERR_ALERT | ERR_FATAL;
Simon Horman5e55f5d2011-07-15 13:14:07 +09002966 free(expr);
Willy Tarreauef6494c2010-01-28 17:12:36 +01002967 goto out;
2968 }
Emeric Brun97679e72010-09-23 17:56:44 +02002969 if (flags & STK_ON_RSP)
2970 err_code |= warnif_cond_requires_req(cond, file, linenum);
2971 else
2972 err_code |= warnif_cond_requires_resp(cond, file, linenum);
Willy Tarreauf1e98b82010-01-28 17:59:39 +01002973
Emeric Brunb982a3d2010-01-04 15:45:53 +01002974 rule = (struct sticking_rule *)calloc(1, sizeof(*rule));
2975 rule->cond = cond;
2976 rule->expr = expr;
2977 rule->flags = flags;
2978 rule->table.name = name ? strdup(name) : NULL;
2979 LIST_INIT(&rule->list);
2980 if (flags & STK_ON_RSP)
2981 LIST_ADDQ(&curproxy->storersp_rules, &rule->list);
2982 else
2983 LIST_ADDQ(&curproxy->sticking_rules, &rule->list);
2984 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002985 else if (!strcmp(args[0], "stats")) {
Willy Tarreau977b8e42006-12-29 14:19:17 +01002986 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02002987 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01002988
Willy Tarreaubaaee002006-06-26 02:48:02 +02002989 if (curproxy != &defproxy && curproxy->uri_auth == defproxy.uri_auth)
2990 curproxy->uri_auth = NULL; /* we must detach from the default config */
2991
Krzysztof Piotr Oledzki260a3bb2010-01-06 16:25:05 +01002992 if (!*args[1]) {
2993 goto stats_error_parsing;
Cyril Bonté474be412010-10-12 00:14:36 +02002994 } else if (!strcmp(args[1], "admin")) {
2995 struct stats_admin_rule *rule;
2996
2997 if (curproxy == &defproxy) {
2998 Alert("parsing [%s:%d]: '%s %s' not allowed in 'defaults' section.\n", file, linenum, args[0], args[1]);
2999 err_code |= ERR_ALERT | ERR_FATAL;
3000 goto out;
3001 }
3002
3003 if (!stats_check_init_uri_auth(&curproxy->uri_auth)) {
3004 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
3005 err_code |= ERR_ALERT | ERR_ABORT;
3006 goto out;
3007 }
3008
3009 if (strcmp(args[2], "if") != 0 && strcmp(args[2], "unless") != 0) {
3010 Alert("parsing [%s:%d] : '%s %s' requires either 'if' or 'unless' followed by a condition.\n",
3011 file, linenum, args[0], args[1]);
3012 err_code |= ERR_ALERT | ERR_FATAL;
3013 goto out;
3014 }
Willy Tarreaub7451bb2012-04-27 12:38:15 +02003015 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + 2, &errmsg)) == NULL) {
3016 Alert("parsing [%s:%d] : error detected while parsing a '%s %s' rule : %s.\n",
3017 file, linenum, args[0], args[1], errmsg);
Cyril Bonté474be412010-10-12 00:14:36 +02003018 err_code |= ERR_ALERT | ERR_FATAL;
3019 goto out;
3020 }
3021
3022 err_code |= warnif_cond_requires_resp(cond, file, linenum);
3023
3024 rule = (struct stats_admin_rule *)calloc(1, sizeof(*rule));
3025 rule->cond = cond;
3026 LIST_INIT(&rule->list);
3027 LIST_ADDQ(&curproxy->uri_auth->admin_rules, &rule->list);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003028 } else if (!strcmp(args[1], "uri")) {
3029 if (*(args[2]) == 0) {
3030 Alert("parsing [%s:%d] : 'uri' needs an URI prefix.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003031 err_code |= ERR_ALERT | ERR_FATAL;
3032 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003033 } else if (!stats_set_uri(&curproxy->uri_auth, args[2])) {
3034 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003035 err_code |= ERR_ALERT | ERR_ABORT;
3036 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003037 }
3038 } else if (!strcmp(args[1], "realm")) {
3039 if (*(args[2]) == 0) {
3040 Alert("parsing [%s:%d] : 'realm' needs an realm name.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003041 err_code |= ERR_ALERT | ERR_FATAL;
3042 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003043 } else if (!stats_set_realm(&curproxy->uri_auth, args[2])) {
3044 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003045 err_code |= ERR_ALERT | ERR_ABORT;
3046 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003047 }
Willy Tarreaubbd42122007-07-25 07:26:38 +02003048 } else if (!strcmp(args[1], "refresh")) {
Willy Tarreaub3f32f52007-12-02 22:15:14 +01003049 unsigned interval;
3050
3051 err = parse_time_err(args[2], &interval, TIME_UNIT_S);
3052 if (err) {
3053 Alert("parsing [%s:%d] : unexpected character '%c' in stats refresh interval.\n",
3054 file, linenum, *err);
Willy Tarreau93893792009-07-23 13:19:11 +02003055 err_code |= ERR_ALERT | ERR_FATAL;
3056 goto out;
Willy Tarreaubbd42122007-07-25 07:26:38 +02003057 } else if (!stats_set_refresh(&curproxy->uri_auth, interval)) {
3058 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003059 err_code |= ERR_ALERT | ERR_ABORT;
3060 goto out;
Willy Tarreaubbd42122007-07-25 07:26:38 +02003061 }
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01003062 } else if (!strcmp(args[1], "http-request")) { /* request access control: allow/deny/auth */
Willy Tarreauff011f22011-01-06 17:51:27 +01003063 struct http_req_rule *rule;
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01003064
3065 if (curproxy == &defproxy) {
3066 Alert("parsing [%s:%d]: '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
3067 err_code |= ERR_ALERT | ERR_FATAL;
3068 goto out;
3069 }
3070
3071 if (!stats_check_init_uri_auth(&curproxy->uri_auth)) {
3072 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
3073 err_code |= ERR_ALERT | ERR_ABORT;
3074 goto out;
3075 }
3076
Willy Tarreauff011f22011-01-06 17:51:27 +01003077 if (!LIST_ISEMPTY(&curproxy->uri_auth->http_req_rules) &&
3078 !LIST_PREV(&curproxy->uri_auth->http_req_rules, struct http_req_rule *, list)->cond) {
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01003079 Warning("parsing [%s:%d]: previous '%s' action has no condition attached, further entries are NOOP.\n",
3080 file, linenum, args[0]);
3081 err_code |= ERR_WARN;
3082 }
3083
Willy Tarreauff011f22011-01-06 17:51:27 +01003084 rule = parse_http_req_cond((const char **)args + 2, file, linenum, curproxy);
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01003085
Willy Tarreauff011f22011-01-06 17:51:27 +01003086 if (!rule) {
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01003087 err_code |= ERR_ALERT | ERR_ABORT;
3088 goto out;
3089 }
3090
Willy Tarreauff011f22011-01-06 17:51:27 +01003091 err_code |= warnif_cond_requires_resp(rule->cond, file, linenum);
3092 LIST_ADDQ(&curproxy->uri_auth->http_req_rules, &rule->list);
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01003093
Willy Tarreaubaaee002006-06-26 02:48:02 +02003094 } else if (!strcmp(args[1], "auth")) {
3095 if (*(args[2]) == 0) {
3096 Alert("parsing [%s:%d] : 'auth' needs a user:password account.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003097 err_code |= ERR_ALERT | ERR_FATAL;
3098 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003099 } else if (!stats_add_auth(&curproxy->uri_auth, args[2])) {
3100 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003101 err_code |= ERR_ALERT | ERR_ABORT;
3102 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003103 }
3104 } else if (!strcmp(args[1], "scope")) {
3105 if (*(args[2]) == 0) {
3106 Alert("parsing [%s:%d] : 'scope' needs a proxy name.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003107 err_code |= ERR_ALERT | ERR_FATAL;
3108 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003109 } else if (!stats_add_scope(&curproxy->uri_auth, args[2])) {
3110 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003111 err_code |= ERR_ALERT | ERR_ABORT;
3112 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003113 }
3114 } else if (!strcmp(args[1], "enable")) {
3115 if (!stats_check_init_uri_auth(&curproxy->uri_auth)) {
3116 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003117 err_code |= ERR_ALERT | ERR_ABORT;
3118 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003119 }
Krzysztof Oledzkid9db9272007-10-15 10:05:11 +02003120 } else if (!strcmp(args[1], "hide-version")) {
3121 if (!stats_set_flag(&curproxy->uri_auth, ST_HIDEVER)) {
3122 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02003123 err_code |= ERR_ALERT | ERR_ABORT;
3124 goto out;
Krzysztof Oledzkid9db9272007-10-15 10:05:11 +02003125 }
Krzysztof Piotr Oledzki15514c22010-01-04 16:03:09 +01003126 } else if (!strcmp(args[1], "show-legends")) {
3127 if (!stats_set_flag(&curproxy->uri_auth, ST_SHLGNDS)) {
3128 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
3129 err_code |= ERR_ALERT | ERR_ABORT;
3130 goto out;
3131 }
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02003132 } else if (!strcmp(args[1], "show-node")) {
3133
3134 if (*args[2]) {
3135 int i;
3136 char c;
3137
3138 for (i=0; args[2][i]; i++) {
3139 c = args[2][i];
Willy Tarreau88e05812010-03-03 00:16:00 +01003140 if (!isupper((unsigned char)c) && !islower((unsigned char)c) &&
3141 !isdigit((unsigned char)c) && c != '_' && c != '-' && c != '.')
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02003142 break;
3143 }
3144
3145 if (!i || args[2][i]) {
3146 Alert("parsing [%s:%d]: '%s %s' invalid node name - should be a string"
3147 "with digits(0-9), letters(A-Z, a-z), hyphen(-) or underscode(_).\n",
3148 file, linenum, args[0], args[1]);
3149 err_code |= ERR_ALERT | ERR_FATAL;
3150 goto out;
3151 }
3152 }
3153
3154 if (!stats_set_node(&curproxy->uri_auth, args[2])) {
3155 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
3156 err_code |= ERR_ALERT | ERR_ABORT;
3157 goto out;
3158 }
3159 } else if (!strcmp(args[1], "show-desc")) {
3160 char *desc = NULL;
3161
3162 if (*args[2]) {
3163 int i, len=0;
3164 char *d;
3165
3166 for(i=2; *args[i]; i++)
3167 len += strlen(args[i])+1;
3168
3169 desc = d = (char *)calloc(1, len);
3170
3171 d += sprintf(d, "%s", args[2]);
3172 for(i=3; *args[i]; i++)
3173 d += sprintf(d, " %s", args[i]);
3174 }
3175
3176 if (!*args[2] && !global.desc)
3177 Warning("parsing [%s:%d]: '%s' requires a parameter or 'desc' to be set in the global section.\n",
3178 file, linenum, args[1]);
3179 else {
3180 if (!stats_set_desc(&curproxy->uri_auth, desc)) {
3181 free(desc);
3182 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
3183 err_code |= ERR_ALERT | ERR_ABORT;
3184 goto out;
3185 }
3186 free(desc);
3187 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003188 } else {
Krzysztof Piotr Oledzki260a3bb2010-01-06 16:25:05 +01003189stats_error_parsing:
Cyril Bonté474be412010-10-12 00:14:36 +02003190 Alert("parsing [%s:%d]: %s '%s', expects 'admin', 'uri', 'realm', 'auth', 'scope', 'enable', 'hide-version', 'show-node', 'show-desc' or 'show-legends'.\n",
Krzysztof Piotr Oledzki260a3bb2010-01-06 16:25:05 +01003191 file, linenum, *args[1]?"unknown stats parameter":"missing keyword in", args[*args[1]?1:0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003192 err_code |= ERR_ALERT | ERR_FATAL;
3193 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003194 }
3195 }
3196 else if (!strcmp(args[0], "option")) {
Willy Tarreau13943ab2006-12-31 00:24:10 +01003197 int optnum;
3198
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01003199 if (*(args[1]) == '\0') {
3200 Alert("parsing [%s:%d]: '%s' expects an option name.\n",
3201 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003202 err_code |= ERR_ALERT | ERR_FATAL;
3203 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003204 }
Willy Tarreau13943ab2006-12-31 00:24:10 +01003205
3206 for (optnum = 0; cfg_opts[optnum].name; optnum++) {
3207 if (!strcmp(args[1], cfg_opts[optnum].name)) {
Cyril Bonté62846b22010-11-01 19:26:00 +01003208 if (cfg_opts[optnum].cap == PR_CAP_NONE) {
3209 Alert("parsing [%s:%d]: option '%s' is not supported due to build options.\n",
3210 file, linenum, cfg_opts[optnum].name);
3211 err_code |= ERR_ALERT | ERR_FATAL;
3212 goto out;
3213 }
Willy Tarreau93893792009-07-23 13:19:11 +02003214 if (warnifnotcap(curproxy, cfg_opts[optnum].cap, file, linenum, args[1], NULL)) {
3215 err_code |= ERR_WARN;
3216 goto out;
3217 }
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01003218
Willy Tarreau3842f002009-06-14 11:39:52 +02003219 curproxy->no_options &= ~cfg_opts[optnum].val;
3220 curproxy->options &= ~cfg_opts[optnum].val;
3221
3222 switch (kwm) {
3223 case KWM_STD:
3224 curproxy->options |= cfg_opts[optnum].val;
3225 break;
3226 case KWM_NO:
3227 curproxy->no_options |= cfg_opts[optnum].val;
3228 break;
3229 case KWM_DEF: /* already cleared */
3230 break;
Willy Tarreau84b57da2009-06-14 11:10:45 +02003231 }
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01003232
Willy Tarreau93893792009-07-23 13:19:11 +02003233 goto out;
Willy Tarreau13943ab2006-12-31 00:24:10 +01003234 }
3235 }
3236
Willy Tarreau66aa61f2009-01-18 21:44:07 +01003237 for (optnum = 0; cfg_opts2[optnum].name; optnum++) {
3238 if (!strcmp(args[1], cfg_opts2[optnum].name)) {
Cyril Bonté62846b22010-11-01 19:26:00 +01003239 if (cfg_opts2[optnum].cap == PR_CAP_NONE) {
3240 Alert("parsing [%s:%d]: option '%s' is not supported due to build options.\n",
3241 file, linenum, cfg_opts2[optnum].name);
3242 err_code |= ERR_ALERT | ERR_FATAL;
3243 goto out;
3244 }
Willy Tarreau93893792009-07-23 13:19:11 +02003245 if (warnifnotcap(curproxy, cfg_opts2[optnum].cap, file, linenum, args[1], NULL)) {
3246 err_code |= ERR_WARN;
3247 goto out;
3248 }
Willy Tarreau66aa61f2009-01-18 21:44:07 +01003249
Willy Tarreau3842f002009-06-14 11:39:52 +02003250 curproxy->no_options2 &= ~cfg_opts2[optnum].val;
3251 curproxy->options2 &= ~cfg_opts2[optnum].val;
3252
3253 switch (kwm) {
3254 case KWM_STD:
3255 curproxy->options2 |= cfg_opts2[optnum].val;
3256 break;
3257 case KWM_NO:
3258 curproxy->no_options2 |= cfg_opts2[optnum].val;
3259 break;
3260 case KWM_DEF: /* already cleared */
3261 break;
Willy Tarreau84b57da2009-06-14 11:10:45 +02003262 }
Willy Tarreau93893792009-07-23 13:19:11 +02003263 goto out;
Willy Tarreau66aa61f2009-01-18 21:44:07 +01003264 }
3265 }
3266
Willy Tarreau3842f002009-06-14 11:39:52 +02003267 if (kwm != KWM_STD) {
3268 Alert("parsing [%s:%d]: negation/default is not supported for option '%s'.\n",
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01003269 file, linenum, args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02003270 err_code |= ERR_ALERT | ERR_FATAL;
3271 goto out;
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01003272 }
3273
Emeric Brun3a058f32009-06-30 18:26:00 +02003274 if (!strcmp(args[1], "httplog")) {
William Lallemand723b73a2012-02-08 16:37:49 +01003275 char *logformat;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003276 /* generate a complete HTTP log */
William Lallemand723b73a2012-02-08 16:37:49 +01003277 logformat = default_http_log_format;
Emeric Brun3a058f32009-06-30 18:26:00 +02003278 if (*(args[2]) != '\0') {
3279 if (!strcmp(args[2], "clf")) {
3280 curproxy->options2 |= PR_O2_CLFLOG;
William Lallemand723b73a2012-02-08 16:37:49 +01003281 logformat = clf_http_log_format;
Emeric Brun3a058f32009-06-30 18:26:00 +02003282 } else {
3283 Alert("parsing [%s:%d] : keyword '%s' only supports option 'clf'.\n", file, linenum, args[2]);
Willy Tarreau93893792009-07-23 13:19:11 +02003284 err_code |= ERR_ALERT | ERR_FATAL;
3285 goto out;
Emeric Brun3a058f32009-06-30 18:26:00 +02003286 }
3287 }
Willy Tarreau196729e2012-05-31 19:30:26 +02003288 if (curproxy->logformat_string != default_http_log_format &&
3289 curproxy->logformat_string != default_tcp_log_format &&
3290 curproxy->logformat_string != clf_http_log_format)
3291 free(curproxy->logformat_string);
3292 curproxy->logformat_string = logformat;
Emeric Brun3a058f32009-06-30 18:26:00 +02003293 }
William Lallemandbddd4fd2012-02-27 11:23:10 +01003294 else if (!strcmp(args[1], "tcplog")) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02003295 /* generate a detailed TCP log */
Willy Tarreau196729e2012-05-31 19:30:26 +02003296 if (curproxy->logformat_string != default_http_log_format &&
3297 curproxy->logformat_string != default_tcp_log_format &&
3298 curproxy->logformat_string != clf_http_log_format)
3299 free(curproxy->logformat_string);
3300 curproxy->logformat_string = default_tcp_log_format;
William Lallemandbddd4fd2012-02-27 11:23:10 +01003301 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003302 else if (!strcmp(args[1], "tcpka")) {
3303 /* enable TCP keep-alives on client and server sessions */
Willy Tarreau13943ab2006-12-31 00:24:10 +01003304 if (warnifnotcap(curproxy, PR_CAP_BE | PR_CAP_FE, file, linenum, args[1], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003305 err_code |= ERR_WARN;
Willy Tarreau13943ab2006-12-31 00:24:10 +01003306
3307 if (curproxy->cap & PR_CAP_FE)
3308 curproxy->options |= PR_O_TCP_CLI_KA;
3309 if (curproxy->cap & PR_CAP_BE)
3310 curproxy->options |= PR_O_TCP_SRV_KA;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003311 }
3312 else if (!strcmp(args[1], "httpchk")) {
Willy Tarreau13943ab2006-12-31 00:24:10 +01003313 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[1], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003314 err_code |= ERR_WARN;
3315
Willy Tarreaubaaee002006-06-26 02:48:02 +02003316 /* use HTTP request to check servers' health */
Willy Tarreaua534fea2008-08-03 12:19:50 +02003317 free(curproxy->check_req);
Willy Tarreau54f6a582010-02-01 16:31:14 +01003318 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003319 curproxy->options2 &= ~PR_O2_CHK_ANY;
3320 curproxy->options2 |= PR_O2_HTTP_CHK;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003321 if (!*args[2]) { /* no argument */
3322 curproxy->check_req = strdup(DEF_CHECK_REQ); /* default request */
3323 curproxy->check_len = strlen(DEF_CHECK_REQ);
3324 } else if (!*args[3]) { /* one argument : URI */
Willy Tarreaue9d87882010-01-27 11:28:42 +01003325 int reqlen = strlen(args[2]) + strlen("OPTIONS HTTP/1.0\r\n") + 1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003326 curproxy->check_req = (char *)malloc(reqlen);
3327 curproxy->check_len = snprintf(curproxy->check_req, reqlen,
Willy Tarreaue9d87882010-01-27 11:28:42 +01003328 "OPTIONS %s HTTP/1.0\r\n", args[2]); /* URI to use */
Willy Tarreaubaaee002006-06-26 02:48:02 +02003329 } else { /* more arguments : METHOD URI [HTTP_VER] */
Willy Tarreaue9d87882010-01-27 11:28:42 +01003330 int reqlen = strlen(args[2]) + strlen(args[3]) + 3 + strlen("\r\n");
Willy Tarreaubaaee002006-06-26 02:48:02 +02003331 if (*args[4])
3332 reqlen += strlen(args[4]);
3333 else
3334 reqlen += strlen("HTTP/1.0");
3335
3336 curproxy->check_req = (char *)malloc(reqlen);
3337 curproxy->check_len = snprintf(curproxy->check_req, reqlen,
Willy Tarreaue9d87882010-01-27 11:28:42 +01003338 "%s %s %s\r\n", args[2], args[3], *args[4]?args[4]:"HTTP/1.0");
Willy Tarreaubaaee002006-06-26 02:48:02 +02003339 }
Willy Tarreauf3c69202006-07-09 16:42:34 +02003340 }
3341 else if (!strcmp(args[1], "ssl-hello-chk")) {
3342 /* use SSLv3 CLIENT HELLO to check servers' health */
Willy Tarreau13943ab2006-12-31 00:24:10 +01003343 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[1], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003344 err_code |= ERR_WARN;
Willy Tarreau13943ab2006-12-31 00:24:10 +01003345
Willy Tarreaua534fea2008-08-03 12:19:50 +02003346 free(curproxy->check_req);
Willy Tarreau54f6a582010-02-01 16:31:14 +01003347 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003348 curproxy->options2 &= ~PR_O2_CHK_ANY;
Willy Tarreau07a54902010-03-29 18:33:29 +02003349 curproxy->options2 |= PR_O2_SSL3_CHK;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003350 }
Willy Tarreau23677902007-05-08 23:50:35 +02003351 else if (!strcmp(args[1], "smtpchk")) {
3352 /* use SMTP request to check servers' health */
Willy Tarreaua534fea2008-08-03 12:19:50 +02003353 free(curproxy->check_req);
Willy Tarreau54f6a582010-02-01 16:31:14 +01003354 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003355 curproxy->options2 &= ~PR_O2_CHK_ANY;
3356 curproxy->options2 |= PR_O2_SMTP_CHK;
Willy Tarreau23677902007-05-08 23:50:35 +02003357
3358 if (!*args[2] || !*args[3]) { /* no argument or incomplete EHLO host */
3359 curproxy->check_req = strdup(DEF_SMTP_CHECK_REQ); /* default request */
3360 curproxy->check_len = strlen(DEF_SMTP_CHECK_REQ);
3361 } else { /* ESMTP EHLO, or SMTP HELO, and a hostname */
3362 if (!strcmp(args[2], "EHLO") || !strcmp(args[2], "HELO")) {
3363 int reqlen = strlen(args[2]) + strlen(args[3]) + strlen(" \r\n") + 1;
3364 curproxy->check_req = (char *)malloc(reqlen);
3365 curproxy->check_len = snprintf(curproxy->check_req, reqlen,
3366 "%s %s\r\n", args[2], args[3]); /* HELO hostname */
3367 } else {
3368 /* this just hits the default for now, but you could potentially expand it to allow for other stuff
3369 though, it's unlikely you'd want to send anything other than an EHLO or HELO */
3370 curproxy->check_req = strdup(DEF_SMTP_CHECK_REQ); /* default request */
3371 curproxy->check_len = strlen(DEF_SMTP_CHECK_REQ);
3372 }
3373 }
3374 }
Rauf Kuliyev38b41562011-01-04 15:14:13 +01003375 else if (!strcmp(args[1], "pgsql-check")) {
3376 /* use PostgreSQL request to check servers' health */
3377 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[1], NULL))
3378 err_code |= ERR_WARN;
3379
3380 free(curproxy->check_req);
3381 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003382 curproxy->options2 &= ~PR_O2_CHK_ANY;
Rauf Kuliyev38b41562011-01-04 15:14:13 +01003383 curproxy->options2 |= PR_O2_PGSQL_CHK;
3384
3385 if (*(args[2])) {
3386 int cur_arg = 2;
3387
3388 while (*(args[cur_arg])) {
3389 if (strcmp(args[cur_arg], "user") == 0) {
3390 char * packet;
3391 uint32_t packet_len;
3392 uint32_t pv;
3393
3394 /* suboption header - needs additional argument for it */
3395 if (*(args[cur_arg+1]) == 0) {
3396 Alert("parsing [%s:%d] : '%s %s %s' expects <username> as argument.\n",
3397 file, linenum, args[0], args[1], args[cur_arg]);
3398 err_code |= ERR_ALERT | ERR_FATAL;
3399 goto out;
3400 }
3401
3402 /* uint32_t + uint32_t + strlen("user")+1 + strlen(username)+1 + 1 */
3403 packet_len = 4 + 4 + 5 + strlen(args[cur_arg + 1])+1 +1;
3404 pv = htonl(0x30000); /* protocol version 3.0 */
3405
3406 packet = (char*) calloc(1, packet_len);
3407
3408 memcpy(packet + 4, &pv, 4);
3409
3410 /* copy "user" */
3411 memcpy(packet + 8, "user", 4);
3412
3413 /* copy username */
3414 memcpy(packet + 13, args[cur_arg+1], strlen(args[cur_arg+1]));
3415
3416 free(curproxy->check_req);
3417 curproxy->check_req = packet;
3418 curproxy->check_len = packet_len;
3419
3420 packet_len = htonl(packet_len);
3421 memcpy(packet, &packet_len, 4);
3422 cur_arg += 2;
3423 } else {
3424 /* unknown suboption - catchall */
3425 Alert("parsing [%s:%d] : '%s %s' only supports optional values: 'user'.\n",
3426 file, linenum, args[0], args[1]);
3427 err_code |= ERR_ALERT | ERR_FATAL;
3428 goto out;
3429 }
3430 } /* end while loop */
3431 }
3432 }
3433
Hervé COMMOWICKec032d62011-08-05 16:23:48 +02003434 else if (!strcmp(args[1], "redis-check")) {
3435 /* use REDIS PING request to check servers' health */
3436 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[1], NULL))
3437 err_code |= ERR_WARN;
3438
3439 free(curproxy->check_req);
3440 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003441 curproxy->options2 &= ~PR_O2_CHK_ANY;
Hervé COMMOWICKec032d62011-08-05 16:23:48 +02003442 curproxy->options2 |= PR_O2_REDIS_CHK;
3443
3444 curproxy->check_req = (char *) malloc(sizeof(DEF_REDIS_CHECK_REQ) - 1);
3445 memcpy(curproxy->check_req, DEF_REDIS_CHECK_REQ, sizeof(DEF_REDIS_CHECK_REQ) - 1);
3446 curproxy->check_len = sizeof(DEF_REDIS_CHECK_REQ) - 1;
3447 }
3448
Hervé COMMOWICK698ae002010-01-12 09:25:13 +01003449 else if (!strcmp(args[1], "mysql-check")) {
3450 /* use MYSQL request to check servers' health */
Hervé COMMOWICK8776f1b2010-10-18 15:58:36 +02003451 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[1], NULL))
3452 err_code |= ERR_WARN;
3453
Hervé COMMOWICK698ae002010-01-12 09:25:13 +01003454 free(curproxy->check_req);
Willy Tarreau54f6a582010-02-01 16:31:14 +01003455 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003456 curproxy->options2 &= ~PR_O2_CHK_ANY;
Hervé COMMOWICK698ae002010-01-12 09:25:13 +01003457 curproxy->options2 |= PR_O2_MYSQL_CHK;
Hervé COMMOWICK8776f1b2010-10-18 15:58:36 +02003458
3459 /* This is an exemple of an MySQL >=4.0 client Authentication packet kindly provided by Cyril Bonte.
3460 * const char mysql40_client_auth_pkt[] = {
3461 * "\x0e\x00\x00" // packet length
3462 * "\x01" // packet number
3463 * "\x00\x00" // client capabilities
3464 * "\x00\x00\x01" // max packet
3465 * "haproxy\x00" // username (null terminated string)
3466 * "\x00" // filler (always 0x00)
3467 * "\x01\x00\x00" // packet length
3468 * "\x00" // packet number
3469 * "\x01" // COM_QUIT command
3470 * };
3471 */
3472
3473 if (*(args[2])) {
3474 int cur_arg = 2;
3475
3476 while (*(args[cur_arg])) {
3477 if (strcmp(args[cur_arg], "user") == 0) {
3478 char *mysqluser;
3479 int packetlen, reqlen, userlen;
3480
3481 /* suboption header - needs additional argument for it */
3482 if (*(args[cur_arg+1]) == 0) {
3483 Alert("parsing [%s:%d] : '%s %s %s' expects <username> as argument.\n",
3484 file, linenum, args[0], args[1], args[cur_arg]);
3485 err_code |= ERR_ALERT | ERR_FATAL;
3486 goto out;
3487 }
3488 mysqluser = args[cur_arg + 1];
3489 userlen = strlen(mysqluser);
3490 packetlen = userlen + 7;
3491 reqlen = packetlen + 9;
3492
3493 free(curproxy->check_req);
3494 curproxy->check_req = (char *)calloc(1, reqlen);
3495 curproxy->check_len = reqlen;
3496
3497 snprintf(curproxy->check_req, 4, "%c%c%c",
3498 ((unsigned char) packetlen & 0xff),
3499 ((unsigned char) (packetlen >> 8) & 0xff),
3500 ((unsigned char) (packetlen >> 16) & 0xff));
3501
3502 curproxy->check_req[3] = 1;
Hervé COMMOWICK212f7782011-06-10 14:05:59 +02003503 curproxy->check_req[5] = 128;
Hervé COMMOWICK8776f1b2010-10-18 15:58:36 +02003504 curproxy->check_req[8] = 1;
3505 memcpy(&curproxy->check_req[9], mysqluser, userlen);
3506 curproxy->check_req[9 + userlen + 1 + 1] = 1;
3507 curproxy->check_req[9 + userlen + 1 + 1 + 4] = 1;
3508 cur_arg += 2;
3509 } else {
3510 /* unknown suboption - catchall */
3511 Alert("parsing [%s:%d] : '%s %s' only supports optional values: 'user'.\n",
3512 file, linenum, args[0], args[1]);
3513 err_code |= ERR_ALERT | ERR_FATAL;
3514 goto out;
3515 }
3516 } /* end while loop */
3517 }
Hervé COMMOWICK698ae002010-01-12 09:25:13 +01003518 }
Gabor Lekenyb4c81e42010-09-29 18:17:05 +02003519 else if (!strcmp(args[1], "ldap-check")) {
3520 /* use LDAP request to check servers' health */
3521 free(curproxy->check_req);
3522 curproxy->check_req = NULL;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003523 curproxy->options2 &= ~PR_O2_CHK_ANY;
Gabor Lekenyb4c81e42010-09-29 18:17:05 +02003524 curproxy->options2 |= PR_O2_LDAP_CHK;
3525
3526 curproxy->check_req = (char *) malloc(sizeof(DEF_LDAP_CHECK_REQ) - 1);
3527 memcpy(curproxy->check_req, DEF_LDAP_CHECK_REQ, sizeof(DEF_LDAP_CHECK_REQ) - 1);
3528 curproxy->check_len = sizeof(DEF_LDAP_CHECK_REQ) - 1;
3529 }
Willy Tarreau7ac51f62007-03-25 16:00:04 +02003530 else if (!strcmp(args[1], "forwardfor")) {
Ross Westaf72a1d2008-08-03 10:51:45 +02003531 int cur_arg;
3532
3533 /* insert x-forwarded-for field, but not for the IP address listed as an except.
3534 * set default options (ie: bitfield, header name, etc)
Willy Tarreau7ac51f62007-03-25 16:00:04 +02003535 */
Ross Westaf72a1d2008-08-03 10:51:45 +02003536
Willy Tarreau87cf5142011-08-19 22:57:24 +02003537 curproxy->options |= PR_O_FWDFOR | PR_O_FF_ALWAYS;
Ross Westaf72a1d2008-08-03 10:51:45 +02003538
3539 free(curproxy->fwdfor_hdr_name);
3540 curproxy->fwdfor_hdr_name = strdup(DEF_XFORWARDFOR_HDR);
3541 curproxy->fwdfor_hdr_len = strlen(DEF_XFORWARDFOR_HDR);
3542
3543 /* loop to go through arguments - start at 2, since 0+1 = "option" "forwardfor" */
3544 cur_arg = 2;
3545 while (*(args[cur_arg])) {
3546 if (!strcmp(args[cur_arg], "except")) {
3547 /* suboption except - needs additional argument for it */
3548 if (!*(args[cur_arg+1]) || !str2net(args[cur_arg+1], &curproxy->except_net, &curproxy->except_mask)) {
3549 Alert("parsing [%s:%d] : '%s %s %s' expects <address>[/mask] as argument.\n",
3550 file, linenum, args[0], args[1], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02003551 err_code |= ERR_ALERT | ERR_FATAL;
3552 goto out;
Willy Tarreau7ac51f62007-03-25 16:00:04 +02003553 }
3554 /* flush useless bits */
3555 curproxy->except_net.s_addr &= curproxy->except_mask.s_addr;
Ross Westaf72a1d2008-08-03 10:51:45 +02003556 cur_arg += 2;
3557 } else if (!strcmp(args[cur_arg], "header")) {
3558 /* suboption header - needs additional argument for it */
3559 if (*(args[cur_arg+1]) == 0) {
3560 Alert("parsing [%s:%d] : '%s %s %s' expects <header_name> as argument.\n",
3561 file, linenum, args[0], args[1], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02003562 err_code |= ERR_ALERT | ERR_FATAL;
3563 goto out;
Ross Westaf72a1d2008-08-03 10:51:45 +02003564 }
3565 free(curproxy->fwdfor_hdr_name);
3566 curproxy->fwdfor_hdr_name = strdup(args[cur_arg+1]);
3567 curproxy->fwdfor_hdr_len = strlen(curproxy->fwdfor_hdr_name);
3568 cur_arg += 2;
Willy Tarreau87cf5142011-08-19 22:57:24 +02003569 } else if (!strcmp(args[cur_arg], "if-none")) {
3570 curproxy->options &= ~PR_O_FF_ALWAYS;
3571 cur_arg += 1;
Willy Tarreau7ac51f62007-03-25 16:00:04 +02003572 } else {
Ross Westaf72a1d2008-08-03 10:51:45 +02003573 /* unknown suboption - catchall */
Willy Tarreau87cf5142011-08-19 22:57:24 +02003574 Alert("parsing [%s:%d] : '%s %s' only supports optional values: 'except', 'header' and 'if-none'.\n",
Ross Westaf72a1d2008-08-03 10:51:45 +02003575 file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02003576 err_code |= ERR_ALERT | ERR_FATAL;
3577 goto out;
Willy Tarreau7ac51f62007-03-25 16:00:04 +02003578 }
Ross Westaf72a1d2008-08-03 10:51:45 +02003579 } /* end while loop */
Willy Tarreau7ac51f62007-03-25 16:00:04 +02003580 }
Maik Broemme2850cb42009-04-17 18:53:21 +02003581 else if (!strcmp(args[1], "originalto")) {
3582 int cur_arg;
3583
3584 /* insert x-original-to field, but not for the IP address listed as an except.
3585 * set default options (ie: bitfield, header name, etc)
3586 */
3587
3588 curproxy->options |= PR_O_ORGTO;
3589
3590 free(curproxy->orgto_hdr_name);
3591 curproxy->orgto_hdr_name = strdup(DEF_XORIGINALTO_HDR);
3592 curproxy->orgto_hdr_len = strlen(DEF_XORIGINALTO_HDR);
3593
Willy Tarreau87cf5142011-08-19 22:57:24 +02003594 /* loop to go through arguments - start at 2, since 0+1 = "option" "originalto" */
Maik Broemme2850cb42009-04-17 18:53:21 +02003595 cur_arg = 2;
3596 while (*(args[cur_arg])) {
3597 if (!strcmp(args[cur_arg], "except")) {
3598 /* suboption except - needs additional argument for it */
3599 if (!*(args[cur_arg+1]) || !str2net(args[cur_arg+1], &curproxy->except_to, &curproxy->except_mask_to)) {
3600 Alert("parsing [%s:%d] : '%s %s %s' expects <address>[/mask] as argument.\n",
3601 file, linenum, args[0], args[1], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02003602 err_code |= ERR_ALERT | ERR_FATAL;
3603 goto out;
Maik Broemme2850cb42009-04-17 18:53:21 +02003604 }
3605 /* flush useless bits */
3606 curproxy->except_to.s_addr &= curproxy->except_mask_to.s_addr;
3607 cur_arg += 2;
3608 } else if (!strcmp(args[cur_arg], "header")) {
3609 /* suboption header - needs additional argument for it */
3610 if (*(args[cur_arg+1]) == 0) {
3611 Alert("parsing [%s:%d] : '%s %s %s' expects <header_name> as argument.\n",
3612 file, linenum, args[0], args[1], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02003613 err_code |= ERR_ALERT | ERR_FATAL;
3614 goto out;
Maik Broemme2850cb42009-04-17 18:53:21 +02003615 }
3616 free(curproxy->orgto_hdr_name);
3617 curproxy->orgto_hdr_name = strdup(args[cur_arg+1]);
3618 curproxy->orgto_hdr_len = strlen(curproxy->orgto_hdr_name);
3619 cur_arg += 2;
3620 } else {
3621 /* unknown suboption - catchall */
3622 Alert("parsing [%s:%d] : '%s %s' only supports optional values: 'except' and 'header'.\n",
3623 file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02003624 err_code |= ERR_ALERT | ERR_FATAL;
3625 goto out;
Maik Broemme2850cb42009-04-17 18:53:21 +02003626 }
3627 } /* end while loop */
3628 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003629 else {
3630 Alert("parsing [%s:%d] : unknown option '%s'.\n", file, linenum, args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02003631 err_code |= ERR_ALERT | ERR_FATAL;
3632 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003633 }
Willy Tarreau93893792009-07-23 13:19:11 +02003634 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003635 }
Willy Tarreau5fdfb912007-01-01 23:11:07 +01003636 else if (!strcmp(args[0], "default_backend")) {
3637 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003638 err_code |= ERR_WARN;
Willy Tarreau5fdfb912007-01-01 23:11:07 +01003639
3640 if (*(args[1]) == 0) {
3641 Alert("parsing [%s:%d] : '%s' expects a backend name.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003642 err_code |= ERR_ALERT | ERR_FATAL;
3643 goto out;
Willy Tarreau5fdfb912007-01-01 23:11:07 +01003644 }
Willy Tarreaua534fea2008-08-03 12:19:50 +02003645 free(curproxy->defbe.name);
Willy Tarreau5fdfb912007-01-01 23:11:07 +01003646 curproxy->defbe.name = strdup(args[1]);
3647 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003648 else if (!strcmp(args[0], "redispatch") || !strcmp(args[0], "redisp")) {
Willy Tarreau977b8e42006-12-29 14:19:17 +01003649 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003650 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01003651
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01003652 Warning("parsing [%s:%d]: keyword '%s' is deprecated, please use 'option redispatch' instead.\n",
3653 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003654 err_code |= ERR_WARN;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003655 /* enable reconnections to dispatch */
3656 curproxy->options |= PR_O_REDISP;
3657 }
Willy Tarreau48494c02007-11-30 10:41:39 +01003658 else if (!strcmp(args[0], "http-check")) {
3659 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003660 err_code |= ERR_WARN;
Willy Tarreau48494c02007-11-30 10:41:39 +01003661
3662 if (strcmp(args[1], "disable-on-404") == 0) {
3663 /* enable a graceful server shutdown on an HTTP 404 response */
3664 curproxy->options |= PR_O_DISABLE404;
3665 }
Willy Tarreauef781042010-01-27 11:53:01 +01003666 else if (strcmp(args[1], "send-state") == 0) {
3667 /* enable emission of the apparent state of a server in HTTP checks */
3668 curproxy->options2 |= PR_O2_CHK_SNDST;
3669 }
Willy Tarreaubd741542010-03-16 18:46:54 +01003670 else if (strcmp(args[1], "expect") == 0) {
3671 const char *ptr_arg;
3672 int cur_arg;
3673
3674 if (curproxy->options2 & PR_O2_EXP_TYPE) {
3675 Alert("parsing [%s:%d] : '%s %s' already specified.\n", file, linenum, args[0], args[1]);
3676 err_code |= ERR_ALERT | ERR_FATAL;
3677 goto out;
3678 }
3679
3680 cur_arg = 2;
3681 /* consider exclamation marks, sole or at the beginning of a word */
3682 while (*(ptr_arg = args[cur_arg])) {
3683 while (*ptr_arg == '!') {
3684 curproxy->options2 ^= PR_O2_EXP_INV;
3685 ptr_arg++;
3686 }
3687 if (*ptr_arg)
3688 break;
3689 cur_arg++;
3690 }
3691 /* now ptr_arg points to the beginning of a word past any possible
3692 * exclamation mark, and cur_arg is the argument which holds this word.
3693 */
3694 if (strcmp(ptr_arg, "status") == 0) {
3695 if (!*(args[cur_arg + 1])) {
3696 Alert("parsing [%s:%d] : '%s %s %s' expects <string> as an argument.\n",
3697 file, linenum, args[0], args[1], ptr_arg);
3698 err_code |= ERR_ALERT | ERR_FATAL;
3699 goto out;
3700 }
3701 curproxy->options2 |= PR_O2_EXP_STS;
Willy Tarreau1ee51a62011-08-19 20:04:17 +02003702 free(curproxy->expect_str);
Willy Tarreaubd741542010-03-16 18:46:54 +01003703 curproxy->expect_str = strdup(args[cur_arg + 1]);
3704 }
3705 else if (strcmp(ptr_arg, "string") == 0) {
3706 if (!*(args[cur_arg + 1])) {
3707 Alert("parsing [%s:%d] : '%s %s %s' expects <string> as an argument.\n",
3708 file, linenum, args[0], args[1], ptr_arg);
3709 err_code |= ERR_ALERT | ERR_FATAL;
3710 goto out;
3711 }
3712 curproxy->options2 |= PR_O2_EXP_STR;
Willy Tarreau1ee51a62011-08-19 20:04:17 +02003713 free(curproxy->expect_str);
Willy Tarreaubd741542010-03-16 18:46:54 +01003714 curproxy->expect_str = strdup(args[cur_arg + 1]);
3715 }
3716 else if (strcmp(ptr_arg, "rstatus") == 0) {
3717 if (!*(args[cur_arg + 1])) {
3718 Alert("parsing [%s:%d] : '%s %s %s' expects <regex> as an argument.\n",
3719 file, linenum, args[0], args[1], ptr_arg);
3720 err_code |= ERR_ALERT | ERR_FATAL;
3721 goto out;
3722 }
3723 curproxy->options2 |= PR_O2_EXP_RSTS;
Willy Tarreau1ee51a62011-08-19 20:04:17 +02003724 free(curproxy->expect_str);
3725 if (curproxy->expect_regex) regfree(curproxy->expect_regex);
3726 curproxy->expect_str = strdup(args[cur_arg + 1]);
Willy Tarreaubd741542010-03-16 18:46:54 +01003727 curproxy->expect_regex = calloc(1, sizeof(regex_t));
3728 if (regcomp(curproxy->expect_regex, args[cur_arg + 1], REG_EXTENDED) != 0) {
3729 Alert("parsing [%s:%d] : '%s %s %s' : bad regular expression '%s'.\n",
3730 file, linenum, args[0], args[1], ptr_arg, args[cur_arg + 1]);
3731 err_code |= ERR_ALERT | ERR_FATAL;
3732 goto out;
3733 }
3734 }
3735 else if (strcmp(ptr_arg, "rstring") == 0) {
3736 if (!*(args[cur_arg + 1])) {
3737 Alert("parsing [%s:%d] : '%s %s %s' expects <regex> as an argument.\n",
3738 file, linenum, args[0], args[1], ptr_arg);
3739 err_code |= ERR_ALERT | ERR_FATAL;
3740 goto out;
3741 }
3742 curproxy->options2 |= PR_O2_EXP_RSTR;
Willy Tarreau1ee51a62011-08-19 20:04:17 +02003743 free(curproxy->expect_str);
3744 if (curproxy->expect_regex) regfree(curproxy->expect_regex);
3745 curproxy->expect_str = strdup(args[cur_arg + 1]);
Willy Tarreaubd741542010-03-16 18:46:54 +01003746 curproxy->expect_regex = calloc(1, sizeof(regex_t));
3747 if (regcomp(curproxy->expect_regex, args[cur_arg + 1], REG_EXTENDED) != 0) {
3748 Alert("parsing [%s:%d] : '%s %s %s' : bad regular expression '%s'.\n",
3749 file, linenum, args[0], args[1], ptr_arg, args[cur_arg + 1]);
3750 err_code |= ERR_ALERT | ERR_FATAL;
3751 goto out;
3752 }
3753 }
3754 else {
3755 Alert("parsing [%s:%d] : '%s %s' only supports [!] 'status', 'string', 'rstatus', 'rstring', found '%s'.\n",
3756 file, linenum, args[0], args[1], ptr_arg);
3757 err_code |= ERR_ALERT | ERR_FATAL;
3758 goto out;
3759 }
3760 }
Willy Tarreau48494c02007-11-30 10:41:39 +01003761 else {
Willy Tarreau1ee51a62011-08-19 20:04:17 +02003762 Alert("parsing [%s:%d] : '%s' only supports 'disable-on-404', 'send-state', 'expect'.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003763 err_code |= ERR_ALERT | ERR_FATAL;
3764 goto out;
Willy Tarreau48494c02007-11-30 10:41:39 +01003765 }
3766 }
Willy Tarreaub80c2302007-11-30 20:51:32 +01003767 else if (!strcmp(args[0], "monitor")) {
Willy Tarreaub099aca2008-10-12 17:26:37 +02003768 if (curproxy == &defproxy) {
3769 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003770 err_code |= ERR_ALERT | ERR_FATAL;
3771 goto out;
Willy Tarreaub099aca2008-10-12 17:26:37 +02003772 }
3773
Willy Tarreaub80c2302007-11-30 20:51:32 +01003774 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003775 err_code |= ERR_WARN;
Willy Tarreaub80c2302007-11-30 20:51:32 +01003776
3777 if (strcmp(args[1], "fail") == 0) {
3778 /* add a condition to fail monitor requests */
Willy Tarreauef6494c2010-01-28 17:12:36 +01003779 if (strcmp(args[2], "if") != 0 && strcmp(args[2], "unless") != 0) {
Willy Tarreaub80c2302007-11-30 20:51:32 +01003780 Alert("parsing [%s:%d] : '%s %s' requires either 'if' or 'unless' followed by a condition.\n",
3781 file, linenum, args[0], args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02003782 err_code |= ERR_ALERT | ERR_FATAL;
3783 goto out;
Willy Tarreaub80c2302007-11-30 20:51:32 +01003784 }
3785
Willy Tarreaub7451bb2012-04-27 12:38:15 +02003786 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args + 2, &errmsg)) == NULL) {
3787 Alert("parsing [%s:%d] : error detected while parsing a '%s %s' condition : %s.\n",
3788 file, linenum, args[0], args[1], errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02003789 err_code |= ERR_ALERT | ERR_FATAL;
3790 goto out;
Willy Tarreaub80c2302007-11-30 20:51:32 +01003791 }
3792 LIST_ADDQ(&curproxy->mon_fail_cond, &cond->list);
3793 }
3794 else {
3795 Alert("parsing [%s:%d] : '%s' only supports 'fail'.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003796 err_code |= ERR_ALERT | ERR_FATAL;
3797 goto out;
Willy Tarreaub80c2302007-11-30 20:51:32 +01003798 }
3799 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003800#ifdef TPROXY
3801 else if (!strcmp(args[0], "transparent")) {
3802 /* enable transparent proxy connections */
3803 curproxy->options |= PR_O_TRANSP;
3804 }
3805#endif
3806 else if (!strcmp(args[0], "maxconn")) { /* maxconn */
Willy Tarreau977b8e42006-12-29 14:19:17 +01003807 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], " Maybe you want 'fullconn' instead ?"))
Willy Tarreau93893792009-07-23 13:19:11 +02003808 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01003809
Willy Tarreaubaaee002006-06-26 02:48:02 +02003810 if (*(args[1]) == 0) {
3811 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003812 err_code |= ERR_ALERT | ERR_FATAL;
3813 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003814 }
3815 curproxy->maxconn = atol(args[1]);
3816 }
Willy Tarreauc73ce2b2008-01-06 10:55:10 +01003817 else if (!strcmp(args[0], "backlog")) { /* backlog */
3818 if (warnifnotcap(curproxy, PR_CAP_FE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003819 err_code |= ERR_WARN;
Willy Tarreauc73ce2b2008-01-06 10:55:10 +01003820
3821 if (*(args[1]) == 0) {
3822 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003823 err_code |= ERR_ALERT | ERR_FATAL;
3824 goto out;
Willy Tarreauc73ce2b2008-01-06 10:55:10 +01003825 }
3826 curproxy->backlog = atol(args[1]);
3827 }
Willy Tarreau86034312006-12-29 00:10:33 +01003828 else if (!strcmp(args[0], "fullconn")) { /* fullconn */
Willy Tarreau977b8e42006-12-29 14:19:17 +01003829 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], " Maybe you want 'maxconn' instead ?"))
Willy Tarreau93893792009-07-23 13:19:11 +02003830 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01003831
Willy Tarreau86034312006-12-29 00:10:33 +01003832 if (*(args[1]) == 0) {
3833 Alert("parsing [%s:%d] : '%s' expects an integer argument.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003834 err_code |= ERR_ALERT | ERR_FATAL;
3835 goto out;
Willy Tarreau86034312006-12-29 00:10:33 +01003836 }
3837 curproxy->fullconn = atol(args[1]);
3838 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003839 else if (!strcmp(args[0], "grace")) { /* grace time (ms) */
3840 if (*(args[1]) == 0) {
3841 Alert("parsing [%s:%d] : '%s' expects a time in milliseconds.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003842 err_code |= ERR_ALERT | ERR_FATAL;
3843 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003844 }
Willy Tarreaub3f32f52007-12-02 22:15:14 +01003845 err = parse_time_err(args[1], &val, TIME_UNIT_MS);
3846 if (err) {
3847 Alert("parsing [%s:%d] : unexpected character '%c' in grace time.\n",
3848 file, linenum, *err);
Willy Tarreau93893792009-07-23 13:19:11 +02003849 err_code |= ERR_ALERT | ERR_FATAL;
3850 goto out;
Willy Tarreaub3f32f52007-12-02 22:15:14 +01003851 }
3852 curproxy->grace = val;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003853 }
3854 else if (!strcmp(args[0], "dispatch")) { /* dispatch address */
David du Colombier6f5ccb12011-03-10 22:26:24 +01003855 struct sockaddr_storage *sk;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003856 if (curproxy == &defproxy) {
3857 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003858 err_code |= ERR_ALERT | ERR_FATAL;
3859 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003860 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01003861 else if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003862 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01003863
Willy Tarreaubaaee002006-06-26 02:48:02 +02003864 if (strchr(args[1], ':') == NULL) {
3865 Alert("parsing [%s:%d] : '%s' expects <addr:port> as argument.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003866 err_code |= ERR_ALERT | ERR_FATAL;
3867 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003868 }
Willy Tarreaud5191e72010-02-09 20:50:45 +01003869 sk = str2sa(args[1]);
3870 if (!sk) {
3871 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[1]);
3872 err_code |= ERR_ALERT | ERR_FATAL;
3873 goto out;
3874 }
3875 curproxy->dispatch_addr = *sk;
Willy Tarreau1620ec32011-08-06 17:05:02 +02003876 curproxy->options |= PR_O_DISPATCH;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003877 }
3878 else if (!strcmp(args[0], "balance")) { /* set balancing with optional algorithm */
Willy Tarreau977b8e42006-12-29 14:19:17 +01003879 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003880 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01003881
Willy Tarreaua93c74b2012-05-08 18:14:39 +02003882 if (backend_parse_balance((const char **)args + 1, &errmsg, curproxy) < 0) {
3883 Alert("parsing [%s:%d] : %s %s\n", file, linenum, args[0], errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02003884 err_code |= ERR_ALERT | ERR_FATAL;
3885 goto out;
Willy Tarreau2fcb5002007-05-08 13:35:26 +02003886 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003887 }
Willy Tarreau6b2e11b2009-10-01 07:52:15 +02003888 else if (!strcmp(args[0], "hash-type")) { /* set hashing method */
3889 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
3890 err_code |= ERR_WARN;
3891
3892 if (strcmp(args[1], "consistent") == 0) { /* use consistent hashing */
3893 curproxy->lbprm.algo &= ~BE_LB_HASH_TYPE;
3894 curproxy->lbprm.algo |= BE_LB_HASH_CONS;
3895 }
3896 else if (strcmp(args[1], "map-based") == 0) { /* use map-based hashing */
3897 curproxy->lbprm.algo &= ~BE_LB_HASH_TYPE;
3898 curproxy->lbprm.algo |= BE_LB_HASH_MAP;
3899 }
Willy Tarreau798a39c2010-11-24 15:04:29 +01003900 else if (strcmp(args[1], "avalanche") == 0) { /* use full hash before map-based hashing */
3901 curproxy->lbprm.algo &= ~BE_LB_HASH_TYPE;
3902 curproxy->lbprm.algo |= BE_LB_HASH_AVAL;
3903 }
Willy Tarreau6b2e11b2009-10-01 07:52:15 +02003904 else {
Willy Tarreau798a39c2010-11-24 15:04:29 +01003905 Alert("parsing [%s:%d] : '%s' only supports 'avalanche', 'consistent' and 'map-based'.\n", file, linenum, args[0]);
Willy Tarreau6b2e11b2009-10-01 07:52:15 +02003906 err_code |= ERR_ALERT | ERR_FATAL;
3907 goto out;
3908 }
3909 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003910 else if (!strcmp(args[0], "server") || !strcmp(args[0], "default-server")) { /* server address */
Willy Tarreaubaaee002006-06-26 02:48:02 +02003911 int cur_arg;
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003912 char *rport, *raddr;
3913 short realport = 0;
3914 int do_check = 0, defsrv = (*args[0] == 'd');
Willy Tarreaubaaee002006-06-26 02:48:02 +02003915
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003916 if (!defsrv && curproxy == &defproxy) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02003917 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003918 err_code |= ERR_ALERT | ERR_FATAL;
3919 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003920 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01003921 else if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02003922 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003923
3924 if (!*args[2]) {
3925 Alert("parsing [%s:%d] : '%s' expects <name> and <addr>[:<port>] as arguments.\n",
3926 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02003927 err_code |= ERR_ALERT | ERR_FATAL;
3928 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003929 }
Willy Tarreau2e74c3f2007-12-02 18:45:09 +01003930
3931 err = invalid_char(args[1]);
3932 if (err) {
3933 Alert("parsing [%s:%d] : character '%c' is not permitted in server name '%s'.\n",
3934 file, linenum, *err, args[1]);
Willy Tarreau93893792009-07-23 13:19:11 +02003935 err_code |= ERR_ALERT | ERR_FATAL;
3936 goto out;
Willy Tarreau2e74c3f2007-12-02 18:45:09 +01003937 }
3938
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003939 if (!defsrv) {
David du Colombier6f5ccb12011-03-10 22:26:24 +01003940 struct sockaddr_storage *sk;
Willy Tarreaud5191e72010-02-09 20:50:45 +01003941
Krzysztof Piotr Oledzkiaff01ea2010-02-05 20:31:44 +01003942 if ((newsrv = (struct server *)calloc(1, sizeof(struct server))) == NULL) {
3943 Alert("parsing [%s:%d] : out of memory.\n", file, linenum);
3944 err_code |= ERR_ALERT | ERR_ABORT;
3945 goto out;
3946 }
3947
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003948 /* the servers are linked backwards first */
3949 newsrv->next = curproxy->srv;
3950 curproxy->srv = newsrv;
3951 newsrv->proxy = curproxy;
Willy Tarreau8113a5d2012-10-04 08:01:43 +02003952 newsrv->conf.file = strdup(file);
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003953 newsrv->conf.line = linenum;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003954
Simon Hormanaf514952011-06-21 14:34:57 +09003955 LIST_INIT(&newsrv->actconns);
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003956 LIST_INIT(&newsrv->pendconns);
3957 do_check = 0;
3958 newsrv->state = SRV_RUNNING; /* early server setup */
3959 newsrv->last_change = now.tv_sec;
3960 newsrv->id = strdup(args[1]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003961
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003962 /* several ways to check the port component :
David du Colombier9842ff12011-03-17 10:40:28 +01003963 * - IP => port=+0, relative (IPv4 only)
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003964 * - IP: => port=+0, relative
3965 * - IP:N => port=N, absolute
3966 * - IP:+N => port=+N, relative
3967 * - IP:-N => port=-N, relative
3968 */
3969 raddr = strdup(args[2]);
Willy Tarreaufab5a432011-03-04 15:31:53 +01003970 rport = strrchr(raddr, ':');
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003971 if (rport) {
3972 *rport++ = 0;
3973 realport = atol(rport);
3974 if (!isdigit((unsigned char)*rport))
3975 newsrv->state |= SRV_MAPPORTS;
3976 } else
Willy Tarreaubaaee002006-06-26 02:48:02 +02003977 newsrv->state |= SRV_MAPPORTS;
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003978
Willy Tarreaufab5a432011-03-04 15:31:53 +01003979 sk = str2ip(raddr);
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003980 free(raddr);
Willy Tarreaud5191e72010-02-09 20:50:45 +01003981 if (!sk) {
3982 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[2]);
3983 err_code |= ERR_ALERT | ERR_FATAL;
3984 goto out;
3985 }
3986 newsrv->addr = *sk;
Willy Tarreauf4288ee2012-09-28 18:13:10 +02003987 newsrv->proto = newsrv->check.proto = protocol_by_family(newsrv->addr.ss_family);
3988 newsrv->xprt = newsrv->check.xprt = &raw_sock;
Willy Tarreau26d8c592012-05-07 18:12:14 +02003989
Willy Tarreau173e7fb2012-09-24 22:47:39 +02003990 if (!newsrv->proto) {
Willy Tarreau26d8c592012-05-07 18:12:14 +02003991 Alert("parsing [%s:%d] : Unknown protocol family %d '%s'\n",
3992 file, linenum, newsrv->addr.ss_family, args[2]);
3993 err_code |= ERR_ALERT | ERR_FATAL;
3994 goto out;
3995 }
Willy Tarreau86ad42c2011-08-27 12:29:07 +02003996 set_host_port(&newsrv->addr, realport);
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01003997
Willy Tarreauf4288ee2012-09-28 18:13:10 +02003998 newsrv->check.use_ssl = curproxy->defsrv.check.use_ssl;
Willy Tarreau5b3a2022012-09-28 15:01:02 +02003999 newsrv->check.port = curproxy->defsrv.check.port;
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004000 newsrv->inter = curproxy->defsrv.inter;
4001 newsrv->fastinter = curproxy->defsrv.fastinter;
4002 newsrv->downinter = curproxy->defsrv.downinter;
4003 newsrv->rise = curproxy->defsrv.rise;
4004 newsrv->fall = curproxy->defsrv.fall;
4005 newsrv->maxqueue = curproxy->defsrv.maxqueue;
4006 newsrv->minconn = curproxy->defsrv.minconn;
4007 newsrv->maxconn = curproxy->defsrv.maxconn;
4008 newsrv->slowstart = curproxy->defsrv.slowstart;
4009 newsrv->onerror = curproxy->defsrv.onerror;
4010 newsrv->consecutive_errors_limit
4011 = curproxy->defsrv.consecutive_errors_limit;
Emeric Brun01f8e2f2012-05-18 16:02:00 +02004012#ifdef OPENSSL
4013 newsrv->use_ssl = curproxy->defsrv.use_ssl;
4014#endif
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004015 newsrv->uweight = newsrv->iweight
4016 = curproxy->defsrv.iweight;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004017
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004018 newsrv->health = newsrv->rise; /* up, but will fall down at first failure */
Willy Tarreaubaaee002006-06-26 02:48:02 +02004019
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004020 cur_arg = 3;
4021 } else {
4022 newsrv = &curproxy->defsrv;
4023 cur_arg = 1;
4024 }
Willy Tarreau0f03c6f2007-03-25 20:46:19 +02004025
Willy Tarreaubaaee002006-06-26 02:48:02 +02004026 while (*args[cur_arg]) {
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004027 if (!defsrv && !strcmp(args[cur_arg], "id")) {
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02004028 struct eb32_node *node;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01004029
4030 if (!*args[cur_arg + 1]) {
4031 Alert("parsing [%s:%d]: '%s' expects an integer argument.\n",
4032 file, linenum, args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02004033 err_code |= ERR_ALERT | ERR_FATAL;
4034 goto out;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01004035 }
4036
4037 newsrv->puid = atol(args[cur_arg + 1]);
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02004038 newsrv->conf.id.key = newsrv->puid;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01004039
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02004040 if (newsrv->puid <= 0) {
4041 Alert("parsing [%s:%d]: custom id has to be > 0.\n",
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01004042 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02004043 err_code |= ERR_ALERT | ERR_FATAL;
4044 goto out;
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01004045 }
4046
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02004047 node = eb32_lookup(&curproxy->conf.used_server_id, newsrv->puid);
4048 if (node) {
4049 struct server *target = container_of(node, struct server, conf.id);
4050 Alert("parsing [%s:%d]: server %s reuses same custom id as server %s (declared at %s:%d).\n",
4051 file, linenum, newsrv->id, target->id, target->conf.file, target->conf.line);
4052 err_code |= ERR_ALERT | ERR_FATAL;
4053 goto out;
4054 }
4055 eb32_insert(&curproxy->conf.used_server_id, &newsrv->conf.id);
Krzysztof Piotr Oledzkif58a9622008-02-23 01:19:10 +01004056 cur_arg += 2;
4057 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004058 else if (!defsrv && !strcmp(args[cur_arg], "cookie")) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004059 newsrv->cookie = strdup(args[cur_arg + 1]);
4060 newsrv->cklen = strlen(args[cur_arg + 1]);
4061 cur_arg += 2;
4062 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004063 else if (!defsrv && !strcmp(args[cur_arg], "redir")) {
Willy Tarreau21d2af32008-02-14 20:25:24 +01004064 newsrv->rdr_pfx = strdup(args[cur_arg + 1]);
4065 newsrv->rdr_len = strlen(args[cur_arg + 1]);
4066 cur_arg += 2;
4067 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004068 else if (!strcmp(args[cur_arg], "rise")) {
Krzysztof Piotr Oledzki08ff9592009-09-27 16:17:31 +02004069 if (!*args[cur_arg + 1]) {
4070 Alert("parsing [%s:%d]: '%s' expects an integer argument.\n",
4071 file, linenum, args[cur_arg]);
4072 err_code |= ERR_ALERT | ERR_FATAL;
4073 goto out;
4074 }
4075
Willy Tarreaubaaee002006-06-26 02:48:02 +02004076 newsrv->rise = atol(args[cur_arg + 1]);
Krzysztof Piotr Oledzki08ff9592009-09-27 16:17:31 +02004077 if (newsrv->rise <= 0) {
4078 Alert("parsing [%s:%d]: '%s' has to be > 0.\n",
4079 file, linenum, args[cur_arg]);
4080 err_code |= ERR_ALERT | ERR_FATAL;
4081 goto out;
4082 }
4083
Willy Tarreau96839092010-03-29 10:02:24 +02004084 if (newsrv->health)
4085 newsrv->health = newsrv->rise;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004086 cur_arg += 2;
4087 }
4088 else if (!strcmp(args[cur_arg], "fall")) {
4089 newsrv->fall = atol(args[cur_arg + 1]);
Krzysztof Piotr Oledzki08ff9592009-09-27 16:17:31 +02004090
4091 if (!*args[cur_arg + 1]) {
4092 Alert("parsing [%s:%d]: '%s' expects an integer argument.\n",
4093 file, linenum, args[cur_arg]);
4094 err_code |= ERR_ALERT | ERR_FATAL;
4095 goto out;
4096 }
4097
4098 if (newsrv->fall <= 0) {
4099 Alert("parsing [%s:%d]: '%s' has to be > 0.\n",
4100 file, linenum, args[cur_arg]);
4101 err_code |= ERR_ALERT | ERR_FATAL;
4102 goto out;
4103 }
4104
Willy Tarreaubaaee002006-06-26 02:48:02 +02004105 cur_arg += 2;
4106 }
4107 else if (!strcmp(args[cur_arg], "inter")) {
Willy Tarreaub3f32f52007-12-02 22:15:14 +01004108 const char *err = parse_time_err(args[cur_arg + 1], &val, TIME_UNIT_MS);
4109 if (err) {
4110 Alert("parsing [%s:%d] : unexpected character '%c' in 'inter' argument of server %s.\n",
4111 file, linenum, *err, newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004112 err_code |= ERR_ALERT | ERR_FATAL;
4113 goto out;
Willy Tarreaub3f32f52007-12-02 22:15:14 +01004114 }
Willy Tarreaue3838802009-03-21 18:58:32 +01004115 if (val <= 0) {
4116 Alert("parsing [%s:%d]: invalid value %d for argument '%s' of server %s.\n",
4117 file, linenum, val, args[cur_arg], newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004118 err_code |= ERR_ALERT | ERR_FATAL;
4119 goto out;
Willy Tarreaue3838802009-03-21 18:58:32 +01004120 }
Willy Tarreaub3f32f52007-12-02 22:15:14 +01004121 newsrv->inter = val;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004122 cur_arg += 2;
4123 }
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01004124 else if (!strcmp(args[cur_arg], "fastinter")) {
4125 const char *err = parse_time_err(args[cur_arg + 1], &val, TIME_UNIT_MS);
4126 if (err) {
4127 Alert("parsing [%s:%d]: unexpected character '%c' in 'fastinter' argument of server %s.\n",
4128 file, linenum, *err, newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004129 err_code |= ERR_ALERT | ERR_FATAL;
4130 goto out;
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01004131 }
Willy Tarreaue3838802009-03-21 18:58:32 +01004132 if (val <= 0) {
4133 Alert("parsing [%s:%d]: invalid value %d for argument '%s' of server %s.\n",
4134 file, linenum, val, args[cur_arg], newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004135 err_code |= ERR_ALERT | ERR_FATAL;
4136 goto out;
Willy Tarreaue3838802009-03-21 18:58:32 +01004137 }
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01004138 newsrv->fastinter = val;
4139 cur_arg += 2;
4140 }
4141 else if (!strcmp(args[cur_arg], "downinter")) {
4142 const char *err = parse_time_err(args[cur_arg + 1], &val, TIME_UNIT_MS);
4143 if (err) {
4144 Alert("parsing [%s:%d]: unexpected character '%c' in 'downinter' argument of server %s.\n",
4145 file, linenum, *err, newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004146 err_code |= ERR_ALERT | ERR_FATAL;
4147 goto out;
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01004148 }
Willy Tarreaue3838802009-03-21 18:58:32 +01004149 if (val <= 0) {
4150 Alert("parsing [%s:%d]: invalid value %d for argument '%s' of server %s.\n",
4151 file, linenum, val, args[cur_arg], newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004152 err_code |= ERR_ALERT | ERR_FATAL;
4153 goto out;
Willy Tarreaue3838802009-03-21 18:58:32 +01004154 }
Krzysztof Piotr Oledzki5259dfe2008-01-21 01:54:06 +01004155 newsrv->downinter = val;
4156 cur_arg += 2;
4157 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004158 else if (!defsrv && !strcmp(args[cur_arg], "addr")) {
David du Colombier6f5ccb12011-03-10 22:26:24 +01004159 struct sockaddr_storage *sk = str2sa(args[cur_arg + 1]);
Willy Tarreaud5191e72010-02-09 20:50:45 +01004160 if (!sk) {
4161 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[cur_arg + 1]);
4162 err_code |= ERR_ALERT | ERR_FATAL;
4163 goto out;
4164 }
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004165 newsrv->check.addr = *sk;
Willy Tarreau2ea3abb2007-03-25 16:45:16 +02004166 cur_arg += 2;
4167 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004168 else if (!strcmp(args[cur_arg], "port")) {
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004169 newsrv->check.port = atol(args[cur_arg + 1]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02004170 cur_arg += 2;
4171 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004172 else if (!defsrv && !strcmp(args[cur_arg], "backup")) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004173 newsrv->state |= SRV_BACKUP;
4174 cur_arg ++;
4175 }
Simon Hormanfa461682011-06-25 09:39:49 +09004176 else if (!defsrv && !strcmp(args[cur_arg], "non-stick")) {
4177 newsrv->state |= SRV_NON_STICK;
4178 cur_arg ++;
4179 }
Willy Tarreau5ab04ec2011-03-20 10:32:26 +01004180 else if (!defsrv && !strcmp(args[cur_arg], "send-proxy")) {
4181 newsrv->state |= SRV_SEND_PROXY;
4182 cur_arg ++;
4183 }
Willy Tarreau6c16adc2012-10-05 00:04:16 +02004184 else if (!defsrv && !strcmp(args[cur_arg], "check-send-proxy")) {
4185 newsrv->check.send_proxy = 1;
4186 cur_arg ++;
4187 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004188 else if (!strcmp(args[cur_arg], "weight")) {
4189 int w;
4190 w = atol(args[cur_arg + 1]);
Willy Tarreau6704d672009-06-15 10:56:05 +02004191 if (w < 0 || w > 256) {
4192 Alert("parsing [%s:%d] : weight of server %s is not within 0 and 256 (%d).\n",
Willy Tarreaubaaee002006-06-26 02:48:02 +02004193 file, linenum, newsrv->id, w);
Willy Tarreau93893792009-07-23 13:19:11 +02004194 err_code |= ERR_ALERT | ERR_FATAL;
4195 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004196 }
Willy Tarreau975c50b2009-10-10 19:34:06 +02004197 newsrv->uweight = newsrv->iweight = w;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004198 cur_arg += 2;
4199 }
4200 else if (!strcmp(args[cur_arg], "minconn")) {
4201 newsrv->minconn = atol(args[cur_arg + 1]);
4202 cur_arg += 2;
4203 }
4204 else if (!strcmp(args[cur_arg], "maxconn")) {
4205 newsrv->maxconn = atol(args[cur_arg + 1]);
4206 cur_arg += 2;
4207 }
Elijah Epifanovacafc5f2007-10-25 20:15:38 +02004208 else if (!strcmp(args[cur_arg], "maxqueue")) {
4209 newsrv->maxqueue = atol(args[cur_arg + 1]);
4210 cur_arg += 2;
4211 }
Willy Tarreau9909fc12007-11-30 17:42:05 +01004212 else if (!strcmp(args[cur_arg], "slowstart")) {
4213 /* slowstart is stored in seconds */
Willy Tarreau3259e332007-12-03 01:51:45 +01004214 const char *err = parse_time_err(args[cur_arg + 1], &val, TIME_UNIT_MS);
Willy Tarreaub3f32f52007-12-02 22:15:14 +01004215 if (err) {
4216 Alert("parsing [%s:%d] : unexpected character '%c' in 'slowstart' argument of server %s.\n",
4217 file, linenum, *err, newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004218 err_code |= ERR_ALERT | ERR_FATAL;
4219 goto out;
Willy Tarreaub3f32f52007-12-02 22:15:14 +01004220 }
Willy Tarreau4554bc12010-03-26 10:40:49 +01004221 if (val < 0) {
Willy Tarreaue3838802009-03-21 18:58:32 +01004222 Alert("parsing [%s:%d]: invalid value %d for argument '%s' of server %s.\n",
4223 file, linenum, val, args[cur_arg], newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004224 err_code |= ERR_ALERT | ERR_FATAL;
4225 goto out;
Willy Tarreaue3838802009-03-21 18:58:32 +01004226 }
Willy Tarreau3259e332007-12-03 01:51:45 +01004227 newsrv->slowstart = (val + 999) / 1000;
Willy Tarreau9909fc12007-11-30 17:42:05 +01004228 cur_arg += 2;
4229 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004230 else if (!defsrv && !strcmp(args[cur_arg], "track")) {
Krzysztof Piotr Oledzkic8b16fc2008-02-18 01:26:35 +01004231
4232 if (!*args[cur_arg + 1]) {
4233 Alert("parsing [%s:%d]: 'track' expects [<proxy>/]<server> as argument.\n",
4234 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02004235 err_code |= ERR_ALERT | ERR_FATAL;
4236 goto out;
Krzysztof Piotr Oledzkic8b16fc2008-02-18 01:26:35 +01004237 }
4238
4239 newsrv->trackit = strdup(args[cur_arg + 1]);
4240
4241 cur_arg += 2;
4242 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004243 else if (!defsrv && !strcmp(args[cur_arg], "check")) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004244 global.maxsock++;
4245 do_check = 1;
4246 cur_arg += 1;
4247 }
Willy Tarreau96839092010-03-29 10:02:24 +02004248 else if (!defsrv && !strcmp(args[cur_arg], "disabled")) {
4249 newsrv->state |= SRV_MAINTAIN;
4250 newsrv->state &= ~SRV_RUNNING;
4251 newsrv->health = 0;
4252 cur_arg += 1;
4253 }
Emeric Brun01f8e2f2012-05-18 16:02:00 +02004254 else if (!strcmp(args[cur_arg], "ssl")) {
4255#ifdef USE_OPENSSL
4256 newsrv->use_ssl = 1;
4257 cur_arg += 1;
4258#else /* USE_OPENSSL */
4259 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4260 file, linenum, args[cur_arg]);
4261 err_code |= ERR_ALERT | ERR_FATAL;
4262 goto out;
4263#endif /* USE_OPENSSL */
4264 }
Willy Tarreau763a95b2012-10-04 23:15:39 +02004265 else if (!strcmp(args[cur_arg], "check-ssl")) {
4266#ifdef USE_OPENSSL
4267 newsrv->check.use_ssl = 1;
4268 cur_arg += 1;
4269#else /* USE_OPENSSL */
4270 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4271 file, linenum, args[cur_arg]);
4272 err_code |= ERR_ALERT | ERR_FATAL;
4273 goto out;
4274#endif /* USE_OPENSSL */
4275 }
Willy Tarreaud7aacbf2012-09-03 23:34:19 +02004276 else if (!strcmp(args[cur_arg], "ciphers")) { /* use this SSL cipher suite */
4277#ifdef USE_OPENSSL
4278 if (!*args[cur_arg + 1]) {
4279 Alert("parsing [%s:%d] : '%s' : '%s' : missing cipher suite.\n",
4280 file, linenum, args[0], args[cur_arg]);
4281 err_code |= ERR_ALERT | ERR_FATAL;
4282 goto out;
4283 }
4284
4285 newsrv->ssl_ctx.ciphers = strdup(args[cur_arg + 1]);
4286
4287 cur_arg += 2;
4288 continue;
4289#else
4290 Alert("parsing [%s:%d] : '%s' : '%s' option not implemented.\n",
4291 file, linenum, args[0], args[cur_arg]);
4292 err_code |= ERR_ALERT | ERR_FATAL;
4293 goto out;
4294#endif
4295 }
Emeric Brun9b3009b2012-10-05 11:55:06 +02004296 else if (!strcmp(args[cur_arg], "no-sslv3")) {
Willy Tarreauc230b8b2012-09-03 23:55:16 +02004297#ifdef USE_OPENSSL
Emeric Brun89675492012-10-05 13:48:26 +02004298 newsrv->ssl_ctx.options |= SRV_SSL_O_NO_SSLV3;
Willy Tarreauc230b8b2012-09-03 23:55:16 +02004299 cur_arg += 1;
4300#else /* USE_OPENSSL */
4301 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4302 file, linenum, args[cur_arg]);
4303 err_code |= ERR_ALERT | ERR_FATAL;
4304 goto out;
4305#endif /* USE_OPENSSL */
4306 }
Emeric Brun9b3009b2012-10-05 11:55:06 +02004307 else if (!strcmp(args[cur_arg], "no-tlsv10")) {
Willy Tarreauc230b8b2012-09-03 23:55:16 +02004308#ifdef USE_OPENSSL
Emeric Brun89675492012-10-05 13:48:26 +02004309 newsrv->ssl_ctx.options |= SRV_SSL_O_NO_TLSV10;
Willy Tarreauc230b8b2012-09-03 23:55:16 +02004310 cur_arg += 1;
4311#else /* USE_OPENSSL */
4312 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4313 file, linenum, args[cur_arg]);
4314 err_code |= ERR_ALERT | ERR_FATAL;
4315 goto out;
4316#endif /* USE_OPENSSL */
4317 }
Emeric Brun9b3009b2012-10-05 11:55:06 +02004318 else if (!strcmp(args[cur_arg], "no-tlsv11")) {
Emeric Brunc0ff4922012-09-28 19:37:02 +02004319#ifdef USE_OPENSSL
Emeric Brun89675492012-10-05 13:48:26 +02004320 newsrv->ssl_ctx.options |= SRV_SSL_O_NO_TLSV11;
Emeric Brunc0ff4922012-09-28 19:37:02 +02004321 cur_arg += 1;
4322#else /* USE_OPENSSL */
4323 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4324 file, linenum, args[cur_arg]);
4325 err_code |= ERR_ALERT | ERR_FATAL;
4326 goto out;
4327#endif /* USE_OPENSSL */
4328 }
Emeric Brun9b3009b2012-10-05 11:55:06 +02004329 else if (!strcmp(args[cur_arg], "no-tlsv12")) {
Emeric Brunc0ff4922012-09-28 19:37:02 +02004330#ifdef USE_OPENSSL
Emeric Brun89675492012-10-05 13:48:26 +02004331 newsrv->ssl_ctx.options |= SRV_SSL_O_NO_TLSV12;
Emeric Brunc0ff4922012-09-28 19:37:02 +02004332 cur_arg += 1;
4333#else /* USE_OPENSSL */
4334 Alert("parsing [%s:%d]: '%s' option not implemented.\n",
4335 file, linenum, args[cur_arg]);
4336 err_code |= ERR_ALERT | ERR_FATAL;
4337 goto out;
4338#endif /* USE_OPENSSL */
4339 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004340 else if (!defsrv && !strcmp(args[cur_arg], "observe")) {
Krzysztof Piotr Oledzki97f07b82009-12-15 22:31:24 +01004341 if (!strcmp(args[cur_arg + 1], "none"))
4342 newsrv->observe = HANA_OBS_NONE;
4343 else if (!strcmp(args[cur_arg + 1], "layer4"))
4344 newsrv->observe = HANA_OBS_LAYER4;
4345 else if (!strcmp(args[cur_arg + 1], "layer7")) {
4346 if (curproxy->mode != PR_MODE_HTTP) {
4347 Alert("parsing [%s:%d]: '%s' can only be used in http proxies.\n",
4348 file, linenum, args[cur_arg + 1]);
4349 err_code |= ERR_ALERT;
4350 }
4351 newsrv->observe = HANA_OBS_LAYER7;
4352 }
4353 else {
4354 Alert("parsing [%s:%d]: '%s' expects one of 'none', "
Willy Tarreau53621e02010-10-22 14:53:40 +02004355 "'layer4', 'layer7' but got '%s'\n",
Krzysztof Piotr Oledzki97f07b82009-12-15 22:31:24 +01004356 file, linenum, args[cur_arg], args[cur_arg + 1]);
4357 err_code |= ERR_ALERT | ERR_FATAL;
4358 goto out;
4359 }
4360
4361 cur_arg += 2;
4362 }
4363 else if (!strcmp(args[cur_arg], "on-error")) {
4364 if (!strcmp(args[cur_arg + 1], "fastinter"))
4365 newsrv->onerror = HANA_ONERR_FASTINTER;
4366 else if (!strcmp(args[cur_arg + 1], "fail-check"))
4367 newsrv->onerror = HANA_ONERR_FAILCHK;
4368 else if (!strcmp(args[cur_arg + 1], "sudden-death"))
4369 newsrv->onerror = HANA_ONERR_SUDDTH;
4370 else if (!strcmp(args[cur_arg + 1], "mark-down"))
4371 newsrv->onerror = HANA_ONERR_MARKDWN;
4372 else {
4373 Alert("parsing [%s:%d]: '%s' expects one of 'fastinter', "
Willy Tarreau53621e02010-10-22 14:53:40 +02004374 "'fail-check', 'sudden-death' or 'mark-down' but got '%s'\n",
Krzysztof Piotr Oledzki97f07b82009-12-15 22:31:24 +01004375 file, linenum, args[cur_arg], args[cur_arg + 1]);
4376 err_code |= ERR_ALERT | ERR_FATAL;
4377 goto out;
4378 }
4379
4380 cur_arg += 2;
4381 }
Simon Hormane0d1bfb2011-06-21 14:34:58 +09004382 else if (!strcmp(args[cur_arg], "on-marked-down")) {
4383 if (!strcmp(args[cur_arg + 1], "shutdown-sessions"))
4384 newsrv->onmarkeddown = HANA_ONMARKEDDOWN_SHUTDOWNSESSIONS;
4385 else {
4386 Alert("parsing [%s:%d]: '%s' expects 'shutdown-sessions' but got '%s'\n",
4387 file, linenum, args[cur_arg], args[cur_arg + 1]);
4388 err_code |= ERR_ALERT | ERR_FATAL;
4389 goto out;
4390 }
4391
4392 cur_arg += 2;
4393 }
Justin Karnegeseb2c24a2012-05-24 15:28:52 -07004394 else if (!strcmp(args[cur_arg], "on-marked-up")) {
4395 if (!strcmp(args[cur_arg + 1], "shutdown-backup-sessions"))
4396 newsrv->onmarkedup = HANA_ONMARKEDUP_SHUTDOWNBACKUPSESSIONS;
4397 else {
4398 Alert("parsing [%s:%d]: '%s' expects 'shutdown-backup-sessions' but got '%s'\n",
4399 file, linenum, args[cur_arg], args[cur_arg + 1]);
4400 err_code |= ERR_ALERT | ERR_FATAL;
4401 goto out;
4402 }
4403
4404 cur_arg += 2;
4405 }
Krzysztof Piotr Oledzki97f07b82009-12-15 22:31:24 +01004406 else if (!strcmp(args[cur_arg], "error-limit")) {
4407 if (!*args[cur_arg + 1]) {
4408 Alert("parsing [%s:%d]: '%s' expects an integer argument.\n",
4409 file, linenum, args[cur_arg]);
4410 err_code |= ERR_ALERT | ERR_FATAL;
4411 goto out;
4412 }
4413
4414 newsrv->consecutive_errors_limit = atoi(args[cur_arg + 1]);
4415
4416 if (newsrv->consecutive_errors_limit <= 0) {
4417 Alert("parsing [%s:%d]: %s has to be > 0.\n",
4418 file, linenum, args[cur_arg]);
4419 err_code |= ERR_ALERT | ERR_FATAL;
4420 goto out;
4421 }
Willy Tarreauf53b25d2010-03-15 19:40:37 +01004422 cur_arg += 2;
Krzysztof Piotr Oledzki97f07b82009-12-15 22:31:24 +01004423 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004424 else if (!defsrv && !strcmp(args[cur_arg], "source")) { /* address to which we bind when connecting */
Willy Tarreauc6f4ce82009-06-10 11:09:37 +02004425 int port_low, port_high;
David du Colombier6f5ccb12011-03-10 22:26:24 +01004426 struct sockaddr_storage *sk;
Willy Tarreaud5191e72010-02-09 20:50:45 +01004427
Willy Tarreaubaaee002006-06-26 02:48:02 +02004428 if (!*args[cur_arg + 1]) {
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004429#if defined(CONFIG_HAP_CTTPROXY) || defined(CONFIG_HAP_LINUX_TPROXY)
Willy Tarreauc6f4ce82009-06-10 11:09:37 +02004430 Alert("parsing [%s:%d] : '%s' expects <addr>[:<port>[-<port>]], and optional '%s' <addr> as argument.\n",
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004431 file, linenum, "source", "usesrc");
4432#else
Willy Tarreauc6f4ce82009-06-10 11:09:37 +02004433 Alert("parsing [%s:%d] : '%s' expects <addr>[:<port>[-<port>]] as argument.\n",
Willy Tarreaubaaee002006-06-26 02:48:02 +02004434 file, linenum, "source");
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004435#endif
Willy Tarreau93893792009-07-23 13:19:11 +02004436 err_code |= ERR_ALERT | ERR_FATAL;
4437 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004438 }
4439 newsrv->state |= SRV_BIND_SRC;
Willy Tarreaud5191e72010-02-09 20:50:45 +01004440 sk = str2sa_range(args[cur_arg + 1], &port_low, &port_high);
4441 if (!sk) {
4442 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[cur_arg + 1]);
4443 err_code |= ERR_ALERT | ERR_FATAL;
4444 goto out;
4445 }
4446 newsrv->source_addr = *sk;
Willy Tarreauc6f4ce82009-06-10 11:09:37 +02004447
4448 if (port_low != port_high) {
4449 int i;
4450 if (port_low <= 0 || port_low > 65535 ||
4451 port_high <= 0 || port_high > 65535 ||
4452 port_low > port_high) {
4453 Alert("parsing [%s:%d] : invalid source port range %d-%d.\n",
4454 file, linenum, port_low, port_high);
Willy Tarreau93893792009-07-23 13:19:11 +02004455 err_code |= ERR_ALERT | ERR_FATAL;
4456 goto out;
Willy Tarreauc6f4ce82009-06-10 11:09:37 +02004457 }
4458 newsrv->sport_range = port_range_alloc_range(port_high - port_low + 1);
4459 for (i = 0; i < newsrv->sport_range->size; i++)
4460 newsrv->sport_range->ports[i] = port_low + i;
4461 }
4462
Willy Tarreaubaaee002006-06-26 02:48:02 +02004463 cur_arg += 2;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004464 while (*(args[cur_arg])) {
4465 if (!strcmp(args[cur_arg], "usesrc")) { /* address to use outside */
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004466#if defined(CONFIG_HAP_CTTPROXY) || defined(CONFIG_HAP_LINUX_TPROXY)
4467#if !defined(CONFIG_HAP_LINUX_TPROXY)
Willy Tarreauc76721d2009-02-04 20:20:58 +01004468 if (newsrv->source_addr.sin_addr.s_addr == INADDR_ANY) {
4469 Alert("parsing [%s:%d] : '%s' requires an explicit '%s' address.\n",
4470 file, linenum, "usesrc", "source");
Willy Tarreau93893792009-07-23 13:19:11 +02004471 err_code |= ERR_ALERT | ERR_FATAL;
4472 goto out;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004473 }
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004474#endif
Willy Tarreauc76721d2009-02-04 20:20:58 +01004475 if (!*args[cur_arg + 1]) {
Willy Tarreaubce70882009-09-07 11:51:47 +02004476 Alert("parsing [%s:%d] : '%s' expects <addr>[:<port>], 'client', 'clientip', or 'hdr_ip(name,#)' as argument.\n",
Willy Tarreauc76721d2009-02-04 20:20:58 +01004477 file, linenum, "usesrc");
Willy Tarreau93893792009-07-23 13:19:11 +02004478 err_code |= ERR_ALERT | ERR_FATAL;
4479 goto out;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004480 }
4481 if (!strcmp(args[cur_arg + 1], "client")) {
Willy Tarreaubce70882009-09-07 11:51:47 +02004482 newsrv->state &= ~SRV_TPROXY_MASK;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004483 newsrv->state |= SRV_TPROXY_CLI;
4484 } else if (!strcmp(args[cur_arg + 1], "clientip")) {
Willy Tarreaubce70882009-09-07 11:51:47 +02004485 newsrv->state &= ~SRV_TPROXY_MASK;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004486 newsrv->state |= SRV_TPROXY_CIP;
Willy Tarreaubce70882009-09-07 11:51:47 +02004487 } else if (!strncmp(args[cur_arg + 1], "hdr_ip(", 7)) {
4488 char *name, *end;
4489
4490 name = args[cur_arg+1] + 7;
4491 while (isspace(*name))
4492 name++;
4493
4494 end = name;
4495 while (*end && !isspace(*end) && *end != ',' && *end != ')')
4496 end++;
4497
4498 newsrv->state &= ~SRV_TPROXY_MASK;
4499 newsrv->state |= SRV_TPROXY_DYN;
4500 newsrv->bind_hdr_name = calloc(1, end - name + 1);
4501 newsrv->bind_hdr_len = end - name;
4502 memcpy(newsrv->bind_hdr_name, name, end - name);
4503 newsrv->bind_hdr_name[end-name] = '\0';
4504 newsrv->bind_hdr_occ = -1;
4505
4506 /* now look for an occurrence number */
4507 while (isspace(*end))
4508 end++;
4509 if (*end == ',') {
4510 end++;
4511 name = end;
4512 if (*end == '-')
4513 end++;
4514 while (isdigit(*end))
4515 end++;
4516 newsrv->bind_hdr_occ = strl2ic(name, end-name);
4517 }
4518
4519 if (newsrv->bind_hdr_occ < -MAX_HDR_HISTORY) {
4520 Alert("parsing [%s:%d] : usesrc hdr_ip(name,num) does not support negative"
4521 " occurrences values smaller than %d.\n",
4522 file, linenum, MAX_HDR_HISTORY);
4523 err_code |= ERR_ALERT | ERR_FATAL;
4524 goto out;
4525 }
Willy Tarreauc76721d2009-02-04 20:20:58 +01004526 } else {
David du Colombier6f5ccb12011-03-10 22:26:24 +01004527 struct sockaddr_storage *sk = str2sa(args[cur_arg + 1]);
Willy Tarreaud5191e72010-02-09 20:50:45 +01004528 if (!sk) {
4529 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[cur_arg + 1]);
4530 err_code |= ERR_ALERT | ERR_FATAL;
4531 goto out;
4532 }
4533 newsrv->tproxy_addr = *sk;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004534 newsrv->state |= SRV_TPROXY_ADDR;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004535 }
4536 global.last_checks |= LSTCHK_NETADM;
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004537#if !defined(CONFIG_HAP_LINUX_TPROXY)
Willy Tarreauc76721d2009-02-04 20:20:58 +01004538 global.last_checks |= LSTCHK_CTTPROXY;
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004539#endif
Willy Tarreauc76721d2009-02-04 20:20:58 +01004540 cur_arg += 2;
4541 continue;
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004542#else /* no TPROXY support */
Willy Tarreauc76721d2009-02-04 20:20:58 +01004543 Alert("parsing [%s:%d] : '%s' not allowed here because support for TPROXY was not compiled in.\n",
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004544 file, linenum, "usesrc");
Willy Tarreau93893792009-07-23 13:19:11 +02004545 err_code |= ERR_ALERT | ERR_FATAL;
4546 goto out;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004547#endif /* defined(CONFIG_HAP_CTTPROXY) || defined(CONFIG_HAP_LINUX_TPROXY) */
4548 } /* "usesrc" */
4549
4550 if (!strcmp(args[cur_arg], "interface")) { /* specifically bind to this interface */
4551#ifdef SO_BINDTODEVICE
4552 if (!*args[cur_arg + 1]) {
4553 Alert("parsing [%s:%d] : '%s' : missing interface name.\n",
4554 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02004555 err_code |= ERR_ALERT | ERR_FATAL;
4556 goto out;
Willy Tarreauc76721d2009-02-04 20:20:58 +01004557 }
4558 if (newsrv->iface_name)
4559 free(newsrv->iface_name);
4560
4561 newsrv->iface_name = strdup(args[cur_arg + 1]);
4562 newsrv->iface_len = strlen(newsrv->iface_name);
4563 global.last_checks |= LSTCHK_NETADM;
4564#else
4565 Alert("parsing [%s:%d] : '%s' : '%s' option not implemented.\n",
4566 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02004567 err_code |= ERR_ALERT | ERR_FATAL;
4568 goto out;
Willy Tarreau77074d52006-11-12 23:57:19 +01004569#endif
Willy Tarreauc76721d2009-02-04 20:20:58 +01004570 cur_arg += 2;
4571 continue;
4572 }
4573 /* this keyword in not an option of "source" */
4574 break;
4575 } /* while */
Willy Tarreaubaaee002006-06-26 02:48:02 +02004576 }
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004577 else if (!defsrv && !strcmp(args[cur_arg], "usesrc")) { /* address to use outside: needs "source" first */
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004578 Alert("parsing [%s:%d] : '%s' only allowed after a '%s' statement.\n",
4579 file, linenum, "usesrc", "source");
Willy Tarreau93893792009-07-23 13:19:11 +02004580 err_code |= ERR_ALERT | ERR_FATAL;
4581 goto out;
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004582 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004583 else {
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004584 if (!defsrv)
Simon Hormane0d1bfb2011-06-21 14:34:58 +09004585 Alert("parsing [%s:%d] : server %s only supports options 'backup', 'cookie', 'redir', 'observer', 'on-error', 'on-marked-down', 'error-limit', 'check', 'disabled', 'track', 'id', 'inter', 'fastinter', 'downinter', 'rise', 'fall', 'addr', 'port', 'source', 'send-proxy', 'minconn', 'maxconn', 'maxqueue', 'slowstart' and 'weight'.\n",
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004586 file, linenum, newsrv->id);
4587 else
Krzysztof Piotr Oledzkia9389b12010-01-05 16:44:17 +01004588 Alert("parsing [%s:%d]: default-server only supports options 'on-error', 'error-limit', 'inter', 'fastinter', 'downinter', 'rise', 'fall', 'port', 'minconn', 'maxconn', 'maxqueue', 'slowstart' and 'weight'.\n",
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004589 file, linenum);
4590
Willy Tarreau93893792009-07-23 13:19:11 +02004591 err_code |= ERR_ALERT | ERR_FATAL;
4592 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004593 }
4594 }
4595
4596 if (do_check) {
Krzysztof Piotr Oledzkic8b16fc2008-02-18 01:26:35 +01004597 if (newsrv->trackit) {
4598 Alert("parsing [%s:%d]: unable to enable checks and tracking at the same time!\n",
4599 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02004600 err_code |= ERR_ALERT | ERR_FATAL;
4601 goto out;
Krzysztof Piotr Oledzkic8b16fc2008-02-18 01:26:35 +01004602 }
4603
Willy Tarreauf4288ee2012-09-28 18:13:10 +02004604 /* If neither a port nor an addr was specified and no check transport
4605 * layer is forced, then the transport layer used by the checks is the
4606 * same as for the production traffic. Otherwise we use raw_sock by
4607 * default, unless one is specified.
4608 */
Baptiste Assmanne6baecf2012-10-05 11:48:04 +02004609#ifdef USE_OPENSSL
Willy Tarreau6c16adc2012-10-05 00:04:16 +02004610 if (!newsrv->check.port && !is_addr(&newsrv->check.addr)) {
Willy Tarreauf4288ee2012-09-28 18:13:10 +02004611 newsrv->check.use_ssl |= newsrv->use_ssl;
Willy Tarreau6c16adc2012-10-05 00:04:16 +02004612 newsrv->check.send_proxy |= (newsrv->state & SRV_SEND_PROXY);
4613 }
Baptiste Assmanne6baecf2012-10-05 11:48:04 +02004614#endif
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004615 /* try to get the port from check.addr if check.port not set */
4616 if (!newsrv->check.port)
4617 newsrv->check.port = get_host_port(&newsrv->check.addr);
Willy Tarreau0f03c6f2007-03-25 20:46:19 +02004618
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004619 if (!newsrv->check.port && !(newsrv->state & SRV_MAPPORTS))
4620 newsrv->check.port = realport; /* by default */
4621 if (!newsrv->check.port) {
Willy Tarreauef00b502007-01-07 02:40:09 +01004622 /* not yet valid, because no port was set on
4623 * the server either. We'll check if we have
4624 * a known port on the first listener.
4625 */
Willy Tarreau4348fad2012-09-20 16:48:07 +02004626 struct listener *l;
4627
4628 list_for_each_entry(l, &curproxy->conf.listeners, by_fe) {
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004629 newsrv->check.port = get_host_port(&l->addr);
4630 if (newsrv->check.port)
Willy Tarreau4348fad2012-09-20 16:48:07 +02004631 break;
4632 }
Willy Tarreauef00b502007-01-07 02:40:09 +01004633 }
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004634 if (!newsrv->check.port) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004635 Alert("parsing [%s:%d] : server %s has neither service port nor check port. Check has been disabled.\n",
4636 file, linenum, newsrv->id);
Willy Tarreau93893792009-07-23 13:19:11 +02004637 err_code |= ERR_ALERT | ERR_FATAL;
4638 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004639 }
Krzysztof Piotr Oledzki09605412009-09-23 22:09:24 +02004640
Willy Tarreau1ae1b7b2012-09-28 15:28:30 +02004641 /* Allocate buffer for check requests... */
4642 if ((newsrv->check.bi = calloc(sizeof(struct buffer) + global.tune.chksize, sizeof(char))) == NULL) {
Cyril Bontéc9f825f2010-03-17 18:56:31 +01004643 Alert("parsing [%s:%d] : out of memory while allocating check buffer.\n", file, linenum);
4644 err_code |= ERR_ALERT | ERR_ABORT;
4645 goto out;
4646 }
Willy Tarreau1ae1b7b2012-09-28 15:28:30 +02004647 newsrv->check.bi->size = global.tune.chksize;
4648
4649 /* Allocate buffer for check responses... */
4650 if ((newsrv->check.bo = calloc(sizeof(struct buffer) + global.tune.chksize, sizeof(char))) == NULL) {
4651 Alert("parsing [%s:%d] : out of memory while allocating check buffer.\n", file, linenum);
4652 err_code |= ERR_ALERT | ERR_ABORT;
4653 goto out;
4654 }
4655 newsrv->check.bo->size = global.tune.chksize;
Cyril Bontéc9f825f2010-03-17 18:56:31 +01004656
Willy Tarreauda92e2f2012-07-06 09:40:59 +02004657 /* Allocate buffer for partial check results... */
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004658 if ((newsrv->check.conn = calloc(1, sizeof(struct connection))) == NULL) {
Willy Tarreauda92e2f2012-07-06 09:40:59 +02004659 Alert("parsing [%s:%d] : out of memory while allocating check connection.\n", file, linenum);
4660 err_code |= ERR_ALERT | ERR_ABORT;
4661 goto out;
4662 }
4663
Willy Tarreau5b3a2022012-09-28 15:01:02 +02004664 newsrv->check.conn->t.sock.fd = -1; /* no check in progress yet */
4665 newsrv->check.status = HCHK_STATUS_INI;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004666 newsrv->state |= SRV_CHECKED;
4667 }
4668
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004669 if (!defsrv) {
4670 if (newsrv->state & SRV_BACKUP)
4671 curproxy->srv_bck++;
4672 else
4673 curproxy->srv_act++;
Willy Tarreaub625a082007-11-26 01:15:43 +01004674
Krzysztof Piotr Oledzkic6df0662010-01-05 16:38:49 +01004675 newsrv->prev_state = newsrv->state;
4676 }
William Lallemanda73203e2012-03-12 12:48:57 +01004677 }
4678
4679 else if (strcmp(args[0], "unique-id-format") == 0) {
4680 if (!*(args[1])) {
4681 Alert("parsing [%s:%d] : %s expects an argument.\n", file, linenum, args[0]);
4682 err_code |= ERR_ALERT | ERR_FATAL;
4683 goto out;
4684 }
Willy Tarreau196729e2012-05-31 19:30:26 +02004685 free(curproxy->uniqueid_format_string);
4686 curproxy->uniqueid_format_string = strdup(args[1]);
William Lallemand723b73a2012-02-08 16:37:49 +01004687 }
William Lallemanda73203e2012-03-12 12:48:57 +01004688
4689 else if (strcmp(args[0], "unique-id-header") == 0) {
4690 if (!*(args[1])) {
4691 Alert("parsing [%s:%d] : %s expects an argument.\n", file, linenum, args[0]);
4692 err_code |= ERR_ALERT | ERR_FATAL;
4693 goto out;
4694 }
4695 free(curproxy->header_unique_id);
4696 curproxy->header_unique_id = strdup(args[1]);
4697 }
4698
William Lallemand723b73a2012-02-08 16:37:49 +01004699 else if (strcmp(args[0], "log-format") == 0) {
4700 if (!*(args[1])) {
4701 Alert("parsing [%s:%d] : %s expects an argument.\n", file, linenum, args[0]);
4702 err_code |= ERR_ALERT | ERR_FATAL;
4703 goto out;
4704 }
Willy Tarreau196729e2012-05-31 19:30:26 +02004705
4706 if (curproxy->logformat_string != default_http_log_format &&
4707 curproxy->logformat_string != default_tcp_log_format &&
4708 curproxy->logformat_string != clf_http_log_format)
4709 free(curproxy->logformat_string);
4710 curproxy->logformat_string = strdup(args[1]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02004711 }
William Lallemand723b73a2012-02-08 16:37:49 +01004712
William Lallemand0f99e342011-10-12 17:50:54 +02004713 else if (!strcmp(args[0], "log") && kwm == KWM_NO) {
4714 /* delete previous herited or defined syslog servers */
4715 struct logsrv *back;
4716
4717 if (*(args[1]) != 0) {
4718 Alert("parsing [%s:%d]:%s : 'no log' does not expect arguments.\n", file, linenum, args[1]);
4719 err_code |= ERR_ALERT | ERR_FATAL;
4720 goto out;
4721 }
4722
William Lallemand723b73a2012-02-08 16:37:49 +01004723 list_for_each_entry_safe(tmplogsrv, back, &curproxy->logsrvs, list) {
4724 LIST_DEL(&tmplogsrv->list);
4725 free(tmplogsrv);
William Lallemand0f99e342011-10-12 17:50:54 +02004726 }
4727 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004728 else if (!strcmp(args[0], "log")) { /* syslog server address */
William Lallemand0f99e342011-10-12 17:50:54 +02004729 struct logsrv *logsrv;
4730
Willy Tarreaubaaee002006-06-26 02:48:02 +02004731 if (*(args[1]) && *(args[2]) == 0 && !strcmp(args[1], "global")) {
William Lallemand0f99e342011-10-12 17:50:54 +02004732 /* copy global.logrsvs linked list to the end of curproxy->logsrvs */
William Lallemand723b73a2012-02-08 16:37:49 +01004733 list_for_each_entry(tmplogsrv, &global.logsrvs, list) {
William Lallemand0f99e342011-10-12 17:50:54 +02004734 struct logsrv *node = malloc(sizeof(struct logsrv));
William Lallemand723b73a2012-02-08 16:37:49 +01004735 memcpy(node, tmplogsrv, sizeof(struct logsrv));
William Lallemand0f99e342011-10-12 17:50:54 +02004736 LIST_INIT(&node->list);
4737 LIST_ADDQ(&curproxy->logsrvs, &node->list);
4738 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004739 }
4740 else if (*(args[1]) && *(args[2])) {
William Lallemand0f99e342011-10-12 17:50:54 +02004741
4742 logsrv = calloc(1, sizeof(struct logsrv));
Willy Tarreaubaaee002006-06-26 02:48:02 +02004743
William Lallemand0f99e342011-10-12 17:50:54 +02004744 logsrv->facility = get_log_facility(args[2]);
4745 if (logsrv->facility < 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004746 Alert("parsing [%s:%d] : unknown log facility '%s'\n", file, linenum, args[2]);
William Lallemand0f99e342011-10-12 17:50:54 +02004747 err_code |= ERR_ALERT | ERR_FATAL;
4748 goto out;
4749
Willy Tarreaubaaee002006-06-26 02:48:02 +02004750 }
4751
William Lallemand0f99e342011-10-12 17:50:54 +02004752 logsrv->level = 7; /* max syslog level = debug */
Willy Tarreaubaaee002006-06-26 02:48:02 +02004753 if (*(args[3])) {
William Lallemand0f99e342011-10-12 17:50:54 +02004754 logsrv->level = get_log_level(args[3]);
4755 if (logsrv->level < 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004756 Alert("parsing [%s:%d] : unknown optional log level '%s'\n", file, linenum, args[3]);
William Lallemand0f99e342011-10-12 17:50:54 +02004757 err_code |= ERR_ALERT | ERR_FATAL;
4758 goto out;
4759
Willy Tarreaubaaee002006-06-26 02:48:02 +02004760 }
4761 }
4762
William Lallemand0f99e342011-10-12 17:50:54 +02004763 logsrv->minlvl = 0; /* limit syslog level to this level (emerg) */
Willy Tarreauf7edefa2009-05-10 17:20:05 +02004764 if (*(args[4])) {
William Lallemand0f99e342011-10-12 17:50:54 +02004765 logsrv->minlvl = get_log_level(args[4]);
4766 if (logsrv->level < 0) {
Willy Tarreauf7edefa2009-05-10 17:20:05 +02004767 Alert("parsing [%s:%d] : unknown optional minimum log level '%s'\n", file, linenum, args[4]);
William Lallemand0f99e342011-10-12 17:50:54 +02004768 err_code |= ERR_ALERT | ERR_FATAL;
4769 goto out;
4770
Willy Tarreauf7edefa2009-05-10 17:20:05 +02004771 }
4772 }
4773
Robert Tsai81ae1952007-12-05 10:47:29 +01004774 if (args[1][0] == '/') {
David du Colombier11bcb6c2011-03-24 12:23:00 +01004775 struct sockaddr_storage *sk = (struct sockaddr_storage *)str2sun(args[1]);
Willy Tarreaud5191e72010-02-09 20:50:45 +01004776 if (!sk) {
4777 Alert("parsing [%s:%d] : Socket path '%s' too long (max %d)\n", file, linenum,
David du Colombier11bcb6c2011-03-24 12:23:00 +01004778 args[1], (int)sizeof(((struct sockaddr_un *)sk)->sun_path) - 1);
Willy Tarreaud5191e72010-02-09 20:50:45 +01004779 err_code |= ERR_ALERT | ERR_FATAL;
4780 goto out;
4781 }
William Lallemand0f99e342011-10-12 17:50:54 +02004782 logsrv->addr = *sk;
Robert Tsai81ae1952007-12-05 10:47:29 +01004783 } else {
David du Colombier6f5ccb12011-03-10 22:26:24 +01004784 struct sockaddr_storage *sk = str2sa(args[1]);
David du Colombier11bcb6c2011-03-24 12:23:00 +01004785 if (!sk) {
Willy Tarreaud5191e72010-02-09 20:50:45 +01004786 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[1]);
4787 err_code |= ERR_ALERT | ERR_FATAL;
4788 goto out;
4789 }
William Lallemand0f99e342011-10-12 17:50:54 +02004790 logsrv->addr = *sk;
4791 if (!get_host_port(&logsrv->addr))
4792 set_host_port(&logsrv->addr, SYSLOG_PORT);
Willy Tarreaubaaee002006-06-26 02:48:02 +02004793 }
William Lallemand0f99e342011-10-12 17:50:54 +02004794
4795 LIST_ADDQ(&curproxy->logsrvs, &logsrv->list);
Willy Tarreaubaaee002006-06-26 02:48:02 +02004796 }
4797 else {
4798 Alert("parsing [%s:%d] : 'log' expects either <address[:port]> and <facility> or 'global' as arguments.\n",
4799 file, linenum);
Willy Tarreau93893792009-07-23 13:19:11 +02004800 err_code |= ERR_ALERT | ERR_FATAL;
4801 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004802 }
4803 }
4804 else if (!strcmp(args[0], "source")) { /* address to which we bind when connecting */
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004805 int cur_arg;
David du Colombier6f5ccb12011-03-10 22:26:24 +01004806 struct sockaddr_storage *sk;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004807
Willy Tarreau977b8e42006-12-29 14:19:17 +01004808 if (warnifnotcap(curproxy, PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02004809 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01004810
Willy Tarreaubaaee002006-06-26 02:48:02 +02004811 if (!*args[1]) {
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004812 Alert("parsing [%s:%d] : '%s' expects <addr>[:<port>], and optionally '%s' <addr>, and '%s' <name>.\n",
4813 file, linenum, "source", "usesrc", "interface");
Willy Tarreau93893792009-07-23 13:19:11 +02004814 err_code |= ERR_ALERT | ERR_FATAL;
4815 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004816 }
Willy Tarreau368480c2009-03-01 08:27:21 +01004817
4818 /* we must first clear any optional default setting */
4819 curproxy->options &= ~PR_O_TPXY_MASK;
4820 free(curproxy->iface_name);
4821 curproxy->iface_name = NULL;
4822 curproxy->iface_len = 0;
4823
Willy Tarreaud5191e72010-02-09 20:50:45 +01004824 sk = str2sa(args[1]);
4825 if (!sk) {
4826 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[1]);
4827 err_code |= ERR_ALERT | ERR_FATAL;
4828 goto out;
4829 }
4830 curproxy->source_addr = *sk;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004831 curproxy->options |= PR_O_BIND_SRC;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004832
4833 cur_arg = 2;
4834 while (*(args[cur_arg])) {
4835 if (!strcmp(args[cur_arg], "usesrc")) { /* address to use outside */
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004836#if defined(CONFIG_HAP_CTTPROXY) || defined(CONFIG_HAP_LINUX_TPROXY)
4837#if !defined(CONFIG_HAP_LINUX_TPROXY)
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004838 if (curproxy->source_addr.sin_addr.s_addr == INADDR_ANY) {
4839 Alert("parsing [%s:%d] : '%s' requires an explicit 'source' address.\n",
4840 file, linenum, "usesrc");
Willy Tarreau93893792009-07-23 13:19:11 +02004841 err_code |= ERR_ALERT | ERR_FATAL;
4842 goto out;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004843 }
4844#endif
4845 if (!*args[cur_arg + 1]) {
4846 Alert("parsing [%s:%d] : '%s' expects <addr>[:<port>], 'client', or 'clientip' as argument.\n",
4847 file, linenum, "usesrc");
Willy Tarreau93893792009-07-23 13:19:11 +02004848 err_code |= ERR_ALERT | ERR_FATAL;
4849 goto out;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004850 }
4851
4852 if (!strcmp(args[cur_arg + 1], "client")) {
Willy Tarreaubce70882009-09-07 11:51:47 +02004853 curproxy->options &= ~PR_O_TPXY_MASK;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004854 curproxy->options |= PR_O_TPXY_CLI;
4855 } else if (!strcmp(args[cur_arg + 1], "clientip")) {
Willy Tarreaubce70882009-09-07 11:51:47 +02004856 curproxy->options &= ~PR_O_TPXY_MASK;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004857 curproxy->options |= PR_O_TPXY_CIP;
Willy Tarreaubce70882009-09-07 11:51:47 +02004858 } else if (!strncmp(args[cur_arg + 1], "hdr_ip(", 7)) {
4859 char *name, *end;
4860
4861 name = args[cur_arg+1] + 7;
4862 while (isspace(*name))
4863 name++;
4864
4865 end = name;
4866 while (*end && !isspace(*end) && *end != ',' && *end != ')')
4867 end++;
4868
4869 curproxy->options &= ~PR_O_TPXY_MASK;
4870 curproxy->options |= PR_O_TPXY_DYN;
4871 curproxy->bind_hdr_name = calloc(1, end - name + 1);
4872 curproxy->bind_hdr_len = end - name;
4873 memcpy(curproxy->bind_hdr_name, name, end - name);
4874 curproxy->bind_hdr_name[end-name] = '\0';
4875 curproxy->bind_hdr_occ = -1;
4876
4877 /* now look for an occurrence number */
4878 while (isspace(*end))
4879 end++;
4880 if (*end == ',') {
4881 end++;
4882 name = end;
4883 if (*end == '-')
4884 end++;
4885 while (isdigit(*end))
4886 end++;
4887 curproxy->bind_hdr_occ = strl2ic(name, end-name);
4888 }
4889
4890 if (curproxy->bind_hdr_occ < -MAX_HDR_HISTORY) {
4891 Alert("parsing [%s:%d] : usesrc hdr_ip(name,num) does not support negative"
4892 " occurrences values smaller than %d.\n",
4893 file, linenum, MAX_HDR_HISTORY);
4894 err_code |= ERR_ALERT | ERR_FATAL;
4895 goto out;
4896 }
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004897 } else {
David du Colombier6f5ccb12011-03-10 22:26:24 +01004898 struct sockaddr_storage *sk = str2sa(args[cur_arg + 1]);
Willy Tarreaud5191e72010-02-09 20:50:45 +01004899 if (!sk) {
4900 Alert("parsing [%s:%d] : Unknown host in '%s'\n", file, linenum, args[cur_arg + 1]);
4901 err_code |= ERR_ALERT | ERR_FATAL;
4902 goto out;
4903 }
4904 curproxy->tproxy_addr = *sk;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004905 curproxy->options |= PR_O_TPXY_ADDR;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004906 }
4907 global.last_checks |= LSTCHK_NETADM;
4908#if !defined(CONFIG_HAP_LINUX_TPROXY)
4909 global.last_checks |= LSTCHK_CTTPROXY;
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004910#endif
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004911#else /* no TPROXY support */
4912 Alert("parsing [%s:%d] : '%s' not allowed here because support for TPROXY was not compiled in.\n",
Willy Tarreau77074d52006-11-12 23:57:19 +01004913 file, linenum, "usesrc");
Willy Tarreau93893792009-07-23 13:19:11 +02004914 err_code |= ERR_ALERT | ERR_FATAL;
4915 goto out;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004916#endif
4917 cur_arg += 2;
4918 continue;
Willy Tarreau77074d52006-11-12 23:57:19 +01004919 }
4920
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004921 if (!strcmp(args[cur_arg], "interface")) { /* specifically bind to this interface */
4922#ifdef SO_BINDTODEVICE
4923 if (!*args[cur_arg + 1]) {
4924 Alert("parsing [%s:%d] : '%s' : missing interface name.\n",
4925 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02004926 err_code |= ERR_ALERT | ERR_FATAL;
4927 goto out;
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004928 }
4929 if (curproxy->iface_name)
4930 free(curproxy->iface_name);
4931
4932 curproxy->iface_name = strdup(args[cur_arg + 1]);
4933 curproxy->iface_len = strlen(curproxy->iface_name);
4934 global.last_checks |= LSTCHK_NETADM;
4935#else
4936 Alert("parsing [%s:%d] : '%s' : '%s' option not implemented.\n",
4937 file, linenum, args[0], args[cur_arg]);
Willy Tarreau93893792009-07-23 13:19:11 +02004938 err_code |= ERR_ALERT | ERR_FATAL;
4939 goto out;
Willy Tarreau5b6995c2008-01-13 16:31:17 +01004940#endif
Willy Tarreaud53f96b2009-02-04 18:46:54 +01004941 cur_arg += 2;
4942 continue;
4943 }
4944 Alert("parsing [%s:%d] : '%s' only supports optional keywords '%s' and '%s'.\n",
Willy Tarreau3631d412012-09-25 16:31:00 +02004945 file, linenum, args[0], "interface", "usesrc");
Willy Tarreau93893792009-07-23 13:19:11 +02004946 err_code |= ERR_ALERT | ERR_FATAL;
4947 goto out;
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004948 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004949 }
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004950 else if (!strcmp(args[0], "usesrc")) { /* address to use outside: needs "source" first */
4951 Alert("parsing [%s:%d] : '%s' only allowed after a '%s' statement.\n",
4952 file, linenum, "usesrc", "source");
Willy Tarreau93893792009-07-23 13:19:11 +02004953 err_code |= ERR_ALERT | ERR_FATAL;
4954 goto out;
Willy Tarreau8d9246d2007-03-24 12:47:24 +01004955 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02004956 else if (!strcmp(args[0], "cliexp") || !strcmp(args[0], "reqrep")) { /* replace request header from a regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01004957 if (*(args[2]) == 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02004958 Alert("parsing [%s:%d] : '%s' expects <search> and <replace> as arguments.\n",
4959 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02004960 err_code |= ERR_ALERT | ERR_FATAL;
4961 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004962 }
Willy Tarreauade5ec42010-01-28 19:33:49 +01004963
4964 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02004965 SMP_OPT_DIR_REQ, ACT_REPLACE, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01004966 args[0], args[1], args[2], (const char **)args+3);
Willy Tarreauade5ec42010-01-28 19:33:49 +01004967 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02004968 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004969 }
4970 else if (!strcmp(args[0], "reqdel")) { /* delete request header from a regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01004971 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02004972 SMP_OPT_DIR_REQ, ACT_REMOVE, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01004973 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01004974 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02004975 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004976 }
4977 else if (!strcmp(args[0], "reqdeny")) { /* deny a request if a header matches this regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01004978 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02004979 SMP_OPT_DIR_REQ, ACT_DENY, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01004980 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01004981 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02004982 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004983 }
4984 else if (!strcmp(args[0], "reqpass")) { /* pass this header without allowing or denying the request */
Willy Tarreauade5ec42010-01-28 19:33:49 +01004985 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02004986 SMP_OPT_DIR_REQ, ACT_PASS, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01004987 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01004988 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02004989 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004990 }
4991 else if (!strcmp(args[0], "reqallow")) { /* allow a request if a header matches this regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01004992 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02004993 SMP_OPT_DIR_REQ, ACT_ALLOW, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01004994 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01004995 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02004996 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02004997 }
Willy Tarreaub8750a82006-09-03 09:56:00 +02004998 else if (!strcmp(args[0], "reqtarpit")) { /* tarpit a request if a header matches this regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01004999 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005000 SMP_OPT_DIR_REQ, ACT_TARPIT, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01005001 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005002 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005003 goto out;
Willy Tarreaub8750a82006-09-03 09:56:00 +02005004 }
Willy Tarreaua496b602006-12-17 23:15:24 +01005005 else if (!strcmp(args[0], "reqsetbe")) { /* switch the backend from a regex, respecting case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005006 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005007 SMP_OPT_DIR_REQ, ACT_SETBE, 0,
Willy Tarreau5321c422010-01-28 20:35:13 +01005008 args[0], args[1], args[2], (const char **)args+3);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005009 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005010 goto out;
Willy Tarreaua496b602006-12-17 23:15:24 +01005011 }
5012 else if (!strcmp(args[0], "reqisetbe")) { /* switch the backend from a regex, ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005013 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005014 SMP_OPT_DIR_REQ, ACT_SETBE, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005015 args[0], args[1], args[2], (const char **)args+3);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005016 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005017 goto out;
Willy Tarreaua496b602006-12-17 23:15:24 +01005018 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005019 else if (!strcmp(args[0], "reqirep")) { /* replace request header from a regex, ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005020 if (*(args[2]) == 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005021 Alert("parsing [%s:%d] : '%s' expects <search> and <replace> as arguments.\n",
5022 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005023 err_code |= ERR_ALERT | ERR_FATAL;
5024 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005025 }
Willy Tarreauade5ec42010-01-28 19:33:49 +01005026
5027 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005028 SMP_OPT_DIR_REQ, ACT_REPLACE, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005029 args[0], args[1], args[2], (const char **)args+3);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005030 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005031 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005032 }
5033 else if (!strcmp(args[0], "reqidel")) { /* delete request header from a regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005034 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005035 SMP_OPT_DIR_REQ, ACT_REMOVE, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005036 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005037 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005038 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005039 }
5040 else if (!strcmp(args[0], "reqideny")) { /* deny a request if a header matches this regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005041 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005042 SMP_OPT_DIR_REQ, ACT_DENY, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005043 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005044 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005045 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005046 }
5047 else if (!strcmp(args[0], "reqipass")) { /* pass this header without allowing or denying the request */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005048 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005049 SMP_OPT_DIR_REQ, ACT_PASS, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005050 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005051 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005052 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005053 }
5054 else if (!strcmp(args[0], "reqiallow")) { /* allow a request if a header matches this regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005055 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005056 SMP_OPT_DIR_REQ, ACT_ALLOW, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005057 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005058 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005059 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005060 }
Willy Tarreaub8750a82006-09-03 09:56:00 +02005061 else if (!strcmp(args[0], "reqitarpit")) { /* tarpit a request if a header matches this regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005062 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005063 SMP_OPT_DIR_REQ, ACT_TARPIT, REG_ICASE,
Willy Tarreau5321c422010-01-28 20:35:13 +01005064 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005065 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005066 goto out;
Willy Tarreaub8750a82006-09-03 09:56:00 +02005067 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005068 else if (!strcmp(args[0], "reqadd")) { /* add request header */
Willy Tarreauf4f04122010-01-28 18:10:50 +01005069 struct cond_wordlist *wl;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005070
Willy Tarreaubaaee002006-06-26 02:48:02 +02005071 if (curproxy == &defproxy) {
5072 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005073 err_code |= ERR_ALERT | ERR_FATAL;
5074 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005075 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01005076 else if (warnifnotcap(curproxy, PR_CAP_RS, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02005077 err_code |= ERR_WARN;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005078
Willy Tarreaubaaee002006-06-26 02:48:02 +02005079 if (*(args[1]) == 0) {
5080 Alert("parsing [%s:%d] : '%s' expects <header> as an argument.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005081 err_code |= ERR_ALERT | ERR_FATAL;
5082 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005083 }
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005084
Willy Tarreau8abd4cd2010-01-31 14:30:44 +01005085 if ((strcmp(args[2], "if") == 0 || strcmp(args[2], "unless") == 0)) {
Willy Tarreaub7451bb2012-04-27 12:38:15 +02005086 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args+2, &errmsg)) == NULL) {
5087 Alert("parsing [%s:%d] : error detected while parsing a '%s' condition : %s.\n",
5088 file, linenum, args[0], errmsg);
Willy Tarreau8abd4cd2010-01-31 14:30:44 +01005089 err_code |= ERR_ALERT | ERR_FATAL;
5090 goto out;
5091 }
5092 err_code |= warnif_cond_requires_resp(cond, file, linenum);
5093 }
5094 else if (*args[2]) {
5095 Alert("parsing [%s:%d] : '%s' : Expecting nothing, 'if', or 'unless', got '%s'.\n",
5096 file, linenum, args[0], args[2]);
5097 err_code |= ERR_ALERT | ERR_FATAL;
5098 goto out;
5099 }
5100
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005101 wl = calloc(1, sizeof(*wl));
Willy Tarreau8abd4cd2010-01-31 14:30:44 +01005102 wl->cond = cond;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005103 wl->s = strdup(args[1]);
5104 LIST_ADDQ(&curproxy->req_add, &wl->list);
Willy Tarreau61d18892009-03-31 10:49:21 +02005105 warnif_misplaced_reqadd(curproxy, file, linenum, args[0]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005106 }
5107 else if (!strcmp(args[0], "srvexp") || !strcmp(args[0], "rsprep")) { /* replace response header from a regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005108 if (*(args[2]) == 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005109 Alert("parsing [%s:%d] : '%s' expects <search> and <replace> as arguments.\n",
5110 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005111 err_code |= ERR_ALERT | ERR_FATAL;
5112 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005113 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01005114
Willy Tarreauade5ec42010-01-28 19:33:49 +01005115 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005116 SMP_OPT_DIR_RES, ACT_REPLACE, 0,
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005117 args[0], args[1], args[2], (const char **)args+3);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005118 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005119 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005120 }
5121 else if (!strcmp(args[0], "rspdel")) { /* delete response header from a regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005122 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005123 SMP_OPT_DIR_RES, ACT_REMOVE, 0,
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005124 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005125 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005126 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005127 }
5128 else if (!strcmp(args[0], "rspdeny")) { /* block response header from a regex */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005129 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005130 SMP_OPT_DIR_RES, ACT_DENY, 0,
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005131 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005132 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005133 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005134 }
5135 else if (!strcmp(args[0], "rspirep")) { /* replace response header from a regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005136 if (*(args[2]) == 0) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005137 Alert("parsing [%s:%d] : '%s' expects <search> and <replace> as arguments.\n",
5138 file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005139 err_code |= ERR_ALERT | ERR_FATAL;
5140 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005141 }
5142
Willy Tarreauade5ec42010-01-28 19:33:49 +01005143 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005144 SMP_OPT_DIR_RES, ACT_REPLACE, REG_ICASE,
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005145 args[0], args[1], args[2], (const char **)args+3);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005146 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005147 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005148 }
5149 else if (!strcmp(args[0], "rspidel")) { /* delete response header from a regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005150 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005151 SMP_OPT_DIR_RES, ACT_REMOVE, REG_ICASE,
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005152 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005153 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005154 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005155 }
5156 else if (!strcmp(args[0], "rspideny")) { /* block response header from a regex ignoring case */
Willy Tarreauade5ec42010-01-28 19:33:49 +01005157 err_code |= create_cond_regex_rule(file, linenum, curproxy,
Willy Tarreau32a6f2e2012-04-25 10:13:36 +02005158 SMP_OPT_DIR_RES, ACT_DENY, REG_ICASE,
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005159 args[0], args[1], NULL, (const char **)args+2);
Willy Tarreauade5ec42010-01-28 19:33:49 +01005160 if (err_code & ERR_FATAL)
Willy Tarreau93893792009-07-23 13:19:11 +02005161 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005162 }
5163 else if (!strcmp(args[0], "rspadd")) { /* add response header */
Willy Tarreauf4f04122010-01-28 18:10:50 +01005164 struct cond_wordlist *wl;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005165
Willy Tarreaubaaee002006-06-26 02:48:02 +02005166 if (curproxy == &defproxy) {
5167 Alert("parsing [%s:%d] : '%s' not allowed in 'defaults' section.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005168 err_code |= ERR_ALERT | ERR_FATAL;
5169 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005170 }
Willy Tarreau977b8e42006-12-29 14:19:17 +01005171 else if (warnifnotcap(curproxy, PR_CAP_RS, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02005172 err_code |= ERR_WARN;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005173
Willy Tarreaubaaee002006-06-26 02:48:02 +02005174 if (*(args[1]) == 0) {
5175 Alert("parsing [%s:%d] : '%s' expects <header> as an argument.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005176 err_code |= ERR_ALERT | ERR_FATAL;
5177 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005178 }
5179
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005180 if ((strcmp(args[2], "if") == 0 || strcmp(args[2], "unless") == 0)) {
Willy Tarreaub7451bb2012-04-27 12:38:15 +02005181 if ((cond = build_acl_cond(file, linenum, curproxy, (const char **)args+2, &errmsg)) == NULL) {
5182 Alert("parsing [%s:%d] : error detected while parsing a '%s' condition : %s.\n",
5183 file, linenum, args[0], errmsg);
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005184 err_code |= ERR_ALERT | ERR_FATAL;
5185 goto out;
5186 }
5187 err_code |= warnif_cond_requires_req(cond, file, linenum);
5188 }
5189 else if (*args[2]) {
5190 Alert("parsing [%s:%d] : '%s' : Expecting nothing, 'if', or 'unless', got '%s'.\n",
5191 file, linenum, args[0], args[2]);
5192 err_code |= ERR_ALERT | ERR_FATAL;
5193 goto out;
5194 }
5195
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005196 wl = calloc(1, sizeof(*wl));
Willy Tarreaufdb563c2010-01-31 15:43:27 +01005197 wl->cond = cond;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01005198 wl->s = strdup(args[1]);
5199 LIST_ADDQ(&curproxy->rsp_add, &wl->list);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005200 }
5201 else if (!strcmp(args[0], "errorloc") ||
5202 !strcmp(args[0], "errorloc302") ||
5203 !strcmp(args[0], "errorloc303")) { /* error location */
5204 int errnum, errlen;
5205 char *err;
5206
Willy Tarreau977b8e42006-12-29 14:19:17 +01005207 if (warnifnotcap(curproxy, PR_CAP_FE | PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02005208 err_code |= ERR_WARN;
Willy Tarreau977b8e42006-12-29 14:19:17 +01005209
Willy Tarreaubaaee002006-06-26 02:48:02 +02005210 if (*(args[2]) == 0) {
Willy Tarreau1772ece2009-04-03 14:49:12 +02005211 Alert("parsing [%s:%d] : <%s> expects <status_code> and <url> as arguments.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005212 err_code |= ERR_ALERT | ERR_FATAL;
5213 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005214 }
5215
5216 errnum = atol(args[1]);
5217 if (!strcmp(args[0], "errorloc303")) {
5218 err = malloc(strlen(HTTP_303) + strlen(args[2]) + 5);
5219 errlen = sprintf(err, "%s%s\r\n\r\n", HTTP_303, args[2]);
5220 } else {
5221 err = malloc(strlen(HTTP_302) + strlen(args[2]) + 5);
5222 errlen = sprintf(err, "%s%s\r\n\r\n", HTTP_302, args[2]);
5223 }
5224
Willy Tarreau0f772532006-12-23 20:51:41 +01005225 for (rc = 0; rc < HTTP_ERR_SIZE; rc++) {
5226 if (http_err_codes[rc] == errnum) {
Krzysztof Piotr Oledzki78abe612009-09-27 13:23:20 +02005227 chunk_destroy(&curproxy->errmsg[rc]);
5228 chunk_initlen(&curproxy->errmsg[rc], err, errlen, errlen);
Willy Tarreau0f772532006-12-23 20:51:41 +01005229 break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005230 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005231 }
Willy Tarreau0f772532006-12-23 20:51:41 +01005232
5233 if (rc >= HTTP_ERR_SIZE) {
5234 Warning("parsing [%s:%d] : status code %d not handled, error relocation will be ignored.\n",
5235 file, linenum, errnum);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005236 free(err);
5237 }
5238 }
Willy Tarreau3f49b302007-06-11 00:29:26 +02005239 else if (!strcmp(args[0], "errorfile")) { /* error message from a file */
5240 int errnum, errlen, fd;
5241 char *err;
5242 struct stat stat;
5243
5244 if (warnifnotcap(curproxy, PR_CAP_FE | PR_CAP_BE, file, linenum, args[0], NULL))
Willy Tarreau93893792009-07-23 13:19:11 +02005245 err_code |= ERR_WARN;
Willy Tarreau3f49b302007-06-11 00:29:26 +02005246
5247 if (*(args[2]) == 0) {
Willy Tarreau1772ece2009-04-03 14:49:12 +02005248 Alert("parsing [%s:%d] : <%s> expects <status_code> and <file> as arguments.\n", file, linenum, args[0]);
Willy Tarreau93893792009-07-23 13:19:11 +02005249 err_code |= ERR_ALERT | ERR_FATAL;
5250 goto out;
Willy Tarreau3f49b302007-06-11 00:29:26 +02005251 }
5252
5253 fd = open(args[2], O_RDONLY);
5254 if ((fd < 0) || (fstat(fd, &stat) < 0)) {
5255 Alert("parsing [%s:%d] : error opening file <%s> for custom error message <%s>.\n",
5256 file, linenum, args[2], args[1]);
5257 if (fd >= 0)
5258 close(fd);
Willy Tarreau93893792009-07-23 13:19:11 +02005259 err_code |= ERR_ALERT | ERR_FATAL;
5260 goto out;
Willy Tarreau3f49b302007-06-11 00:29:26 +02005261 }
5262
Willy Tarreau27a674e2009-08-17 07:23:33 +02005263 if (stat.st_size <= global.tune.bufsize) {
Willy Tarreau3f49b302007-06-11 00:29:26 +02005264 errlen = stat.st_size;
5265 } else {
5266 Warning("parsing [%s:%d] : custom error message file <%s> larger than %d bytes. Truncating.\n",
Willy Tarreau27a674e2009-08-17 07:23:33 +02005267 file, linenum, args[2], global.tune.bufsize);
Willy Tarreau93893792009-07-23 13:19:11 +02005268 err_code |= ERR_WARN;
Willy Tarreau27a674e2009-08-17 07:23:33 +02005269 errlen = global.tune.bufsize;
Willy Tarreau3f49b302007-06-11 00:29:26 +02005270 }
5271
5272 err = malloc(errlen); /* malloc() must succeed during parsing */
5273 errnum = read(fd, err, errlen);
5274 if (errnum != errlen) {
5275 Alert("parsing [%s:%d] : error reading file <%s> for custom error message <%s>.\n",
5276 file, linenum, args[2], args[1]);
5277 close(fd);
5278 free(err);
Willy Tarreau93893792009-07-23 13:19:11 +02005279 err_code |= ERR_ALERT | ERR_FATAL;
5280 goto out;
Willy Tarreau3f49b302007-06-11 00:29:26 +02005281 }
5282 close(fd);
5283
5284 errnum = atol(args[1]);
5285 for (rc = 0; rc < HTTP_ERR_SIZE; rc++) {
5286 if (http_err_codes[rc] == errnum) {
Krzysztof Piotr Oledzki78abe612009-09-27 13:23:20 +02005287 chunk_destroy(&curproxy->errmsg[rc]);
5288 chunk_initlen(&curproxy->errmsg[rc], err, errlen, errlen);
Willy Tarreau3f49b302007-06-11 00:29:26 +02005289 break;
5290 }
5291 }
5292
5293 if (rc >= HTTP_ERR_SIZE) {
5294 Warning("parsing [%s:%d] : status code %d not handled, error customization will be ignored.\n",
5295 file, linenum, errnum);
Willy Tarreau93893792009-07-23 13:19:11 +02005296 err_code |= ERR_WARN;
Willy Tarreau3f49b302007-06-11 00:29:26 +02005297 free(err);
5298 }
5299 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005300 else {
Willy Tarreau5b2c3362008-07-09 19:39:06 +02005301 struct cfg_kw_list *kwl;
5302 int index;
5303
5304 list_for_each_entry(kwl, &cfg_keywords.list, list) {
5305 for (index = 0; kwl->kw[index].kw != NULL; index++) {
5306 if (kwl->kw[index].section != CFG_LISTEN)
5307 continue;
5308 if (strcmp(kwl->kw[index].kw, args[0]) == 0) {
5309 /* prepare error message just in case */
David du Colombier7af46052012-05-16 14:16:48 +02005310 snprintf(trash, trashlen,
Willy Tarreau5b2c3362008-07-09 19:39:06 +02005311 "error near '%s' in %s section", args[0], cursection);
Willy Tarreau28a47d62012-09-18 20:02:48 +02005312 rc = kwl->kw[index].parse(args, CFG_LISTEN, curproxy, &defproxy, file, linenum, &errmsg);
Willy Tarreau39f23b62008-07-09 20:22:56 +02005313 if (rc < 0) {
Willy Tarreau0a3dd742012-05-08 19:47:01 +02005314 Alert("parsing [%s:%d] : %s\n", file, linenum, errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02005315 err_code |= ERR_ALERT | ERR_FATAL;
5316 goto out;
Willy Tarreau5b2c3362008-07-09 19:39:06 +02005317 }
Willy Tarreau39f23b62008-07-09 20:22:56 +02005318 else if (rc > 0) {
Willy Tarreau0a3dd742012-05-08 19:47:01 +02005319 Warning("parsing [%s:%d] : %s\n", file, linenum, errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02005320 err_code |= ERR_WARN;
5321 goto out;
Willy Tarreau39f23b62008-07-09 20:22:56 +02005322 }
Willy Tarreau93893792009-07-23 13:19:11 +02005323 goto out;
Willy Tarreau5b2c3362008-07-09 19:39:06 +02005324 }
5325 }
5326 }
5327
Willy Tarreau6daf3432008-01-22 16:44:08 +01005328 Alert("parsing [%s:%d] : unknown keyword '%s' in '%s' section\n", file, linenum, args[0], cursection);
Willy Tarreau93893792009-07-23 13:19:11 +02005329 err_code |= ERR_ALERT | ERR_FATAL;
5330 goto out;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005331 }
Willy Tarreau93893792009-07-23 13:19:11 +02005332 out:
Willy Tarreauf4068b62012-05-08 17:37:49 +02005333 free(errmsg);
Willy Tarreau93893792009-07-23 13:19:11 +02005334 return err_code;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005335}
5336
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01005337int
5338cfg_parse_users(const char *file, int linenum, char **args, int kwm)
5339{
5340
5341 int err_code = 0;
5342 const char *err;
5343
5344 if (!strcmp(args[0], "userlist")) { /* new userlist */
5345 struct userlist *newul;
5346
5347 if (!*args[1]) {
5348 Alert("parsing [%s:%d]: '%s' expects <name> as arguments.\n",
5349 file, linenum, args[0]);
5350 err_code |= ERR_ALERT | ERR_FATAL;
5351 goto out;
5352 }
5353
5354 err = invalid_char(args[1]);
5355 if (err) {
5356 Alert("parsing [%s:%d]: character '%c' is not permitted in '%s' name '%s'.\n",
5357 file, linenum, *err, args[0], args[1]);
5358 err_code |= ERR_ALERT | ERR_FATAL;
5359 goto out;
5360 }
5361
5362 for (newul = userlist; newul; newul = newul->next)
5363 if (!strcmp(newul->name, args[1])) {
5364 Warning("parsing [%s:%d]: ignoring duplicated userlist '%s'.\n",
5365 file, linenum, args[1]);
5366 err_code |= ERR_WARN;
5367 goto out;
5368 }
5369
5370 newul = (struct userlist *)calloc(1, sizeof(struct userlist));
5371 if (!newul) {
5372 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
5373 err_code |= ERR_ALERT | ERR_ABORT;
5374 goto out;
5375 }
5376
5377 newul->groupusers = calloc(MAX_AUTH_GROUPS, sizeof(char *));
5378 newul->name = strdup(args[1]);
5379
5380 if (!newul->groupusers | !newul->name) {
5381 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
5382 err_code |= ERR_ALERT | ERR_ABORT;
5383 goto out;
5384 }
5385
5386 newul->next = userlist;
5387 userlist = newul;
5388
5389 } else if (!strcmp(args[0], "group")) { /* new group */
5390 int cur_arg, i;
5391 const char *err;
5392
5393 if (!*args[1]) {
5394 Alert("parsing [%s:%d]: '%s' expects <name> as arguments.\n",
5395 file, linenum, args[0]);
5396 err_code |= ERR_ALERT | ERR_FATAL;
5397 goto out;
5398 }
5399
5400 err = invalid_char(args[1]);
5401 if (err) {
5402 Alert("parsing [%s:%d]: character '%c' is not permitted in '%s' name '%s'.\n",
5403 file, linenum, *err, args[0], args[1]);
5404 err_code |= ERR_ALERT | ERR_FATAL;
5405 goto out;
5406 }
5407
5408 for(i = 0; i < userlist->grpcnt; i++)
5409 if (!strcmp(userlist->groups[i], args[1])) {
5410 Warning("parsing [%s:%d]: ignoring duplicated group '%s' in userlist '%s'.\n",
5411 file, linenum, args[1], userlist->name);
5412 err_code |= ERR_ALERT;
5413 goto out;
5414 }
5415
5416 if (userlist->grpcnt >= MAX_AUTH_GROUPS) {
5417 Alert("parsing [%s:%d]: too many groups (%u) in in userlist '%s' while adding group '%s'.\n",
5418 file, linenum, MAX_AUTH_GROUPS, userlist->name, args[1]);
5419 err_code |= ERR_ALERT | ERR_FATAL;
5420 goto out;
5421 }
5422
5423 cur_arg = 2;
5424
5425 while (*args[cur_arg]) {
5426 if (!strcmp(args[cur_arg], "users")) {
5427 userlist->groupusers[userlist->grpcnt] = strdup(args[cur_arg + 1]);
5428 cur_arg += 2;
5429 continue;
5430 } else {
5431 Alert("parsing [%s:%d]: '%s' only supports 'users' option.\n",
5432 file, linenum, args[0]);
5433 err_code |= ERR_ALERT | ERR_FATAL;
5434 goto out;
5435 }
5436 }
5437
5438 userlist->groups[userlist->grpcnt++] = strdup(args[1]);
5439 } else if (!strcmp(args[0], "user")) { /* new user */
5440 struct auth_users *newuser;
5441 int cur_arg;
5442
5443 if (!*args[1]) {
5444 Alert("parsing [%s:%d]: '%s' expects <name> as arguments.\n",
5445 file, linenum, args[0]);
5446 err_code |= ERR_ALERT | ERR_FATAL;
5447 goto out;
5448 }
5449
5450 for (newuser = userlist->users; newuser; newuser = newuser->next)
5451 if (!strcmp(newuser->user, args[1])) {
5452 Warning("parsing [%s:%d]: ignoring duplicated user '%s' in userlist '%s'.\n",
5453 file, linenum, args[1], userlist->name);
5454 err_code |= ERR_ALERT;
5455 goto out;
5456 }
5457
5458 newuser = (struct auth_users *)calloc(1, sizeof(struct auth_users));
5459 if (!newuser) {
5460 Alert("parsing [%s:%d]: out of memory.\n", file, linenum);
5461 err_code |= ERR_ALERT | ERR_ABORT;
5462 goto out;
5463 }
5464
5465 newuser->user = strdup(args[1]);
5466
5467 newuser->next = userlist->users;
5468 userlist->users = newuser;
5469
5470 cur_arg = 2;
5471
5472 while (*args[cur_arg]) {
5473 if (!strcmp(args[cur_arg], "password")) {
5474#ifndef CONFIG_HAP_CRYPT
5475 Warning("parsing [%s:%d]: no crypt(3) support compiled, encrypted passwords will not work.\n",
5476 file, linenum);
5477 err_code |= ERR_ALERT;
5478#endif
5479 newuser->pass = strdup(args[cur_arg + 1]);
5480 cur_arg += 2;
5481 continue;
5482 } else if (!strcmp(args[cur_arg], "insecure-password")) {
5483 newuser->pass = strdup(args[cur_arg + 1]);
5484 newuser->flags |= AU_O_INSECURE;
5485 cur_arg += 2;
5486 continue;
5487 } else if (!strcmp(args[cur_arg], "groups")) {
Willy Tarreaub4c06b72010-02-02 11:28:20 +01005488 newuser->u.groups = strdup(args[cur_arg + 1]);
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01005489 cur_arg += 2;
5490 continue;
5491 } else {
5492 Alert("parsing [%s:%d]: '%s' only supports 'password', 'insecure-password' and 'groups' options.\n",
5493 file, linenum, args[0]);
5494 err_code |= ERR_ALERT | ERR_FATAL;
5495 goto out;
5496 }
5497 }
5498 } else {
5499 Alert("parsing [%s:%d]: unknown keyword '%s' in '%s' section\n", file, linenum, args[0], "users");
5500 err_code |= ERR_ALERT | ERR_FATAL;
5501 }
5502
5503out:
5504 return err_code;
5505}
Willy Tarreaubaaee002006-06-26 02:48:02 +02005506
5507/*
5508 * This function reads and parses the configuration file given in the argument.
Willy Tarreau058e9072009-07-20 09:30:05 +02005509 * Returns the error code, 0 if OK, or any combination of :
5510 * - ERR_ABORT: must abort ASAP
5511 * - ERR_FATAL: we can continue parsing but not start the service
5512 * - ERR_WARN: a warning has been emitted
5513 * - ERR_ALERT: an alert has been emitted
5514 * Only the two first ones can stop processing, the two others are just
5515 * indicators.
Willy Tarreaubaaee002006-06-26 02:48:02 +02005516 */
Willy Tarreaub17916e2006-10-15 15:17:57 +02005517int readcfgfile(const char *file)
Willy Tarreaubaaee002006-06-26 02:48:02 +02005518{
Krzysztof Piotr Oledzkie6bbd742007-11-01 00:33:12 +01005519 char thisline[LINESIZE];
Willy Tarreaubaaee002006-06-26 02:48:02 +02005520 FILE *f;
5521 int linenum = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005522 int confsect = CFG_NONE;
Willy Tarreau058e9072009-07-20 09:30:05 +02005523 int err_code = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005524
Willy Tarreaubaaee002006-06-26 02:48:02 +02005525 if ((f=fopen(file,"r")) == NULL)
5526 return -1;
5527
Krzysztof Piotr Oledzkie6bbd742007-11-01 00:33:12 +01005528 while (fgets(thisline, sizeof(thisline), f) != NULL) {
Willy Tarreau3842f002009-06-14 11:39:52 +02005529 int arg, kwm = KWM_STD;
Krzysztof Piotr Oledzkie6bbd742007-11-01 00:33:12 +01005530 char *end;
5531 char *args[MAX_LINE_ARGS + 1];
5532 char *line = thisline;
5533
Willy Tarreaubaaee002006-06-26 02:48:02 +02005534 linenum++;
5535
5536 end = line + strlen(line);
5537
Krzysztof Piotr Oledzkie6bbd742007-11-01 00:33:12 +01005538 if (end-line == sizeof(thisline)-1 && *(end-1) != '\n') {
5539 /* Check if we reached the limit and the last char is not \n.
5540 * Watch out for the last line without the terminating '\n'!
5541 */
5542 Alert("parsing [%s:%d]: line too long, limit: %d.\n",
Willy Tarreau5e4a6f12009-04-11 19:42:49 +02005543 file, linenum, (int)sizeof(thisline)-1);
Willy Tarreau058e9072009-07-20 09:30:05 +02005544 err_code |= ERR_ALERT | ERR_FATAL;
Krzysztof Piotr Oledzkie6bbd742007-11-01 00:33:12 +01005545 }
5546
Willy Tarreaubaaee002006-06-26 02:48:02 +02005547 /* skip leading spaces */
Willy Tarreau8f8e6452007-06-17 21:51:38 +02005548 while (isspace((unsigned char)*line))
Willy Tarreaubaaee002006-06-26 02:48:02 +02005549 line++;
5550
5551 arg = 0;
5552 args[arg] = line;
5553
5554 while (*line && arg < MAX_LINE_ARGS) {
5555 /* first, we'll replace \\, \<space>, \#, \r, \n, \t, \xXX with their
5556 * C equivalent value. Other combinations left unchanged (eg: \1).
5557 */
5558 if (*line == '\\') {
5559 int skip = 0;
5560 if (line[1] == ' ' || line[1] == '\\' || line[1] == '#') {
5561 *line = line[1];
5562 skip = 1;
5563 }
5564 else if (line[1] == 'r') {
5565 *line = '\r';
5566 skip = 1;
5567 }
5568 else if (line[1] == 'n') {
5569 *line = '\n';
5570 skip = 1;
5571 }
5572 else if (line[1] == 't') {
5573 *line = '\t';
5574 skip = 1;
5575 }
5576 else if (line[1] == 'x') {
Emeric Brunb982a3d2010-01-04 15:45:53 +01005577 if ((line + 3 < end) && ishex(line[2]) && ishex(line[3])) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005578 unsigned char hex1, hex2;
5579 hex1 = toupper(line[2]) - '0';
5580 hex2 = toupper(line[3]) - '0';
5581 if (hex1 > 9) hex1 -= 'A' - '9' - 1;
5582 if (hex2 > 9) hex2 -= 'A' - '9' - 1;
5583 *line = (hex1<<4) + hex2;
5584 skip = 3;
5585 }
5586 else {
5587 Alert("parsing [%s:%d] : invalid or incomplete '\\x' sequence in '%s'.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +02005588 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005589 }
5590 }
5591 if (skip) {
Cyril Bontédd1b01d2009-12-06 13:43:42 +01005592 memmove(line + 1, line + 1 + skip, end - (line + skip));
Willy Tarreaubaaee002006-06-26 02:48:02 +02005593 end -= skip;
5594 }
5595 line++;
5596 }
5597 else if (*line == '#' || *line == '\n' || *line == '\r') {
5598 /* end of string, end of loop */
5599 *line = 0;
5600 break;
5601 }
Willy Tarreau8f8e6452007-06-17 21:51:38 +02005602 else if (isspace((unsigned char)*line)) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005603 /* a non-escaped space is an argument separator */
Krzysztof Piotr Oledzkie6bbd742007-11-01 00:33:12 +01005604 *line++ = '\0';
Willy Tarreau8f8e6452007-06-17 21:51:38 +02005605 while (isspace((unsigned char)*line))
Willy Tarreaubaaee002006-06-26 02:48:02 +02005606 line++;
5607 args[++arg] = line;
5608 }
5609 else {
5610 line++;
5611 }
5612 }
5613
5614 /* empty line */
5615 if (!**args)
5616 continue;
5617
Willy Tarreau7bb651e2009-11-09 21:16:53 +01005618 if (*line) {
5619 /* we had to stop due to too many args.
5620 * Let's terminate the string, print the offending part then cut the
5621 * last arg.
5622 */
5623 while (*line && *line != '#' && *line != '\n' && *line != '\r')
5624 line++;
5625 *line = '\0';
5626
Krzysztof Piotr Oledzki500b8f02009-12-15 22:34:51 +01005627 Alert("parsing [%s:%d]: line too long, truncating at word %d, position %ld: <%s>.\n",
Willy Tarreau3ccf94e2009-12-17 21:12:16 +01005628 file, linenum, arg + 1, (long)(args[arg] - thisline + 1), args[arg]);
Willy Tarreau7bb651e2009-11-09 21:16:53 +01005629 err_code |= ERR_ALERT | ERR_FATAL;
5630 args[arg] = line;
5631 }
5632
Willy Tarreau540abe42007-05-02 20:50:16 +02005633 /* zero out remaining args and ensure that at least one entry
5634 * is zeroed out.
5635 */
5636 while (++arg <= MAX_LINE_ARGS) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02005637 args[arg] = line;
5638 }
5639
Willy Tarreau3842f002009-06-14 11:39:52 +02005640 /* check for keyword modifiers "no" and "default" */
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01005641 if (!strcmp(args[0], "no")) {
William Lallemand0f99e342011-10-12 17:50:54 +02005642 char *tmp;
5643
Willy Tarreau3842f002009-06-14 11:39:52 +02005644 kwm = KWM_NO;
William Lallemand0f99e342011-10-12 17:50:54 +02005645 tmp = args[0];
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01005646 for (arg=0; *args[arg+1]; arg++)
5647 args[arg] = args[arg+1]; // shift args after inversion
William Lallemand0f99e342011-10-12 17:50:54 +02005648 *tmp = '\0'; // fix the next arg to \0
5649 args[arg] = tmp;
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01005650 }
Willy Tarreau3842f002009-06-14 11:39:52 +02005651 else if (!strcmp(args[0], "default")) {
5652 kwm = KWM_DEF;
5653 for (arg=0; *args[arg+1]; arg++)
5654 args[arg] = args[arg+1]; // shift args after inversion
5655 }
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01005656
William Lallemand0f99e342011-10-12 17:50:54 +02005657 if (kwm != KWM_STD && strcmp(args[0], "option") != 0 && \
5658 strcmp(args[0], "log") != 0) {
5659 Alert("parsing [%s:%d]: negation/default currently supported only for options and log.\n", file, linenum);
Willy Tarreau058e9072009-07-20 09:30:05 +02005660 err_code |= ERR_ALERT | ERR_FATAL;
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01005661 }
5662
Willy Tarreau977b8e42006-12-29 14:19:17 +01005663 if (!strcmp(args[0], "listen") ||
5664 !strcmp(args[0], "frontend") ||
5665 !strcmp(args[0], "backend") ||
5666 !strcmp(args[0], "ruleset") ||
Willy Tarreau6daf3432008-01-22 16:44:08 +01005667 !strcmp(args[0], "defaults")) { /* new proxy */
Willy Tarreaubaaee002006-06-26 02:48:02 +02005668 confsect = CFG_LISTEN;
Willy Tarreaua534fea2008-08-03 12:19:50 +02005669 free(cursection);
Willy Tarreau6daf3432008-01-22 16:44:08 +01005670 cursection = strdup(args[0]);
5671 }
5672 else if (!strcmp(args[0], "global")) { /* global config */
Willy Tarreaubaaee002006-06-26 02:48:02 +02005673 confsect = CFG_GLOBAL;
Willy Tarreaua534fea2008-08-03 12:19:50 +02005674 free(cursection);
Willy Tarreau6daf3432008-01-22 16:44:08 +01005675 cursection = strdup(args[0]);
Emeric Brun32da3c42010-09-23 18:39:19 +02005676 }
5677 else if (!strcmp(args[0], "userlist")) {
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01005678 confsect = CFG_USERLIST;
5679 free(cursection);
5680 cursection = strdup(args[0]);
Willy Tarreau6daf3432008-01-22 16:44:08 +01005681 }
Emeric Brun32da3c42010-09-23 18:39:19 +02005682 else if (!strcmp(args[0], "peers")) {
5683 confsect = CFG_PEERS;
5684 free(cursection);
5685 cursection = strdup(args[0]);
5686 }
5687
Willy Tarreaubaaee002006-06-26 02:48:02 +02005688 /* else it's a section keyword */
5689
5690 switch (confsect) {
5691 case CFG_LISTEN:
Willy Tarreau93893792009-07-23 13:19:11 +02005692 err_code |= cfg_parse_listen(file, linenum, args, kwm);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005693 break;
5694 case CFG_GLOBAL:
Willy Tarreau058e9072009-07-20 09:30:05 +02005695 err_code |= cfg_parse_global(file, linenum, args, kwm);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005696 break;
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01005697 case CFG_USERLIST:
5698 err_code |= cfg_parse_users(file, linenum, args, kwm);
5699 break;
Emeric Brun32da3c42010-09-23 18:39:19 +02005700 case CFG_PEERS:
5701 err_code |= cfg_parse_peers(file, linenum, args, kwm);
5702 break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005703 default:
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01005704 Alert("parsing [%s:%d]: unknown keyword '%s' out of section.\n", file, linenum, args[0]);
Willy Tarreau058e9072009-07-20 09:30:05 +02005705 err_code |= ERR_ALERT | ERR_FATAL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005706 }
Willy Tarreau058e9072009-07-20 09:30:05 +02005707
5708 if (err_code & ERR_ABORT)
5709 break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005710 }
Willy Tarreaua534fea2008-08-03 12:19:50 +02005711 free(cursection);
Willy Tarreau6daf3432008-01-22 16:44:08 +01005712 cursection = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005713 fclose(f);
Willy Tarreau058e9072009-07-20 09:30:05 +02005714 return err_code;
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005715}
5716
Willy Tarreaubb925012009-07-23 13:36:36 +02005717/*
5718 * Returns the error code, 0 if OK, or any combination of :
5719 * - ERR_ABORT: must abort ASAP
5720 * - ERR_FATAL: we can continue parsing but not start the service
5721 * - ERR_WARN: a warning has been emitted
5722 * - ERR_ALERT: an alert has been emitted
5723 * Only the two first ones can stop processing, the two others are just
5724 * indicators.
5725 */
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005726int check_config_validity()
5727{
5728 int cfgerr = 0;
5729 struct proxy *curproxy = NULL;
5730 struct server *newsrv = NULL;
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01005731 struct userlist *curuserlist = NULL;
Willy Tarreaubb925012009-07-23 13:36:36 +02005732 int err_code = 0;
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02005733 unsigned int next_pxid = 1;
Willy Tarreau2a65ff02012-09-13 17:54:29 +02005734 struct bind_conf *bind_conf;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005735
Willy Tarreau2a65ff02012-09-13 17:54:29 +02005736 bind_conf = NULL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005737 /*
5738 * Now, check for the integrity of all that we have collected.
5739 */
5740
5741 /* will be needed further to delay some tasks */
Willy Tarreaub0b37bc2008-06-23 14:00:57 +02005742 tv_update_date(0,1);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005743
Willy Tarreau55bc0f82009-03-15 14:51:53 +01005744 /* first, we will invert the proxy list order */
5745 curproxy = NULL;
5746 while (proxy) {
5747 struct proxy *next;
5748
5749 next = proxy->next;
5750 proxy->next = curproxy;
5751 curproxy = proxy;
5752 if (!next)
5753 break;
5754 proxy = next;
5755 }
5756
Willy Tarreaubaaee002006-06-26 02:48:02 +02005757 while (curproxy != NULL) {
Willy Tarreau55ea7572007-06-17 19:56:27 +02005758 struct switching_rule *rule;
Willy Tarreau4a5cade2012-04-05 21:09:48 +02005759 struct server_rule *srule;
Emeric Brunb982a3d2010-01-04 15:45:53 +01005760 struct sticking_rule *mrule;
Willy Tarreau9ba2dcc2010-06-14 21:04:55 +02005761 struct tcp_rule *trule;
Willy Tarreaue6b98942007-10-29 01:09:36 +01005762 struct listener *listener;
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02005763 unsigned int next_id;
5764
Willy Tarreau050536d2012-10-04 08:47:34 +02005765 if (curproxy->uuid < 0) {
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02005766 /* proxy ID not set, use automatic numbering with first
5767 * spare entry starting with next_pxid.
5768 */
5769 next_pxid = get_next_id(&used_proxy_id, next_pxid);
5770 curproxy->conf.id.key = curproxy->uuid = next_pxid;
5771 eb32_insert(&used_proxy_id, &curproxy->conf.id);
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02005772 }
Krzysztof Piotr Oledzkidf5cb9f2010-02-05 20:58:27 +01005773 next_pxid++;
5774
Willy Tarreau55ea7572007-06-17 19:56:27 +02005775
Willy Tarreaubaaee002006-06-26 02:48:02 +02005776 if (curproxy->state == PR_STSTOPPED) {
Willy Tarreauda250db2008-10-12 12:07:48 +02005777 /* ensure we don't keep listeners uselessly bound */
5778 stop_proxy(curproxy);
Willy Tarreaubaaee002006-06-26 02:48:02 +02005779 curproxy = curproxy->next;
5780 continue;
5781 }
5782
Willy Tarreauff01a212009-03-15 13:46:16 +01005783 switch (curproxy->mode) {
5784 case PR_MODE_HEALTH:
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005785 cfgerr += proxy_cfg_ensure_no_http(curproxy);
Willy Tarreauff01a212009-03-15 13:46:16 +01005786 if (!(curproxy->cap & PR_CAP_FE)) {
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005787 Alert("config : %s '%s' cannot be in health mode as it has no frontend capability.\n",
5788 proxy_type_str(curproxy), curproxy->id);
Willy Tarreauff01a212009-03-15 13:46:16 +01005789 cfgerr++;
5790 }
5791
5792 if (curproxy->srv != NULL)
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005793 Warning("config : servers will be ignored for %s '%s'.\n",
5794 proxy_type_str(curproxy), curproxy->id);
Willy Tarreauff01a212009-03-15 13:46:16 +01005795 break;
5796
5797 case PR_MODE_TCP:
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005798 cfgerr += proxy_cfg_ensure_no_http(curproxy);
Willy Tarreauff01a212009-03-15 13:46:16 +01005799 break;
5800
5801 case PR_MODE_HTTP:
Willy Tarreaua9fb0832009-07-10 20:53:53 +02005802 curproxy->acl_requires |= ACL_USE_L7_ANY;
Willy Tarreauff01a212009-03-15 13:46:16 +01005803 break;
5804 }
5805
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005806 if ((curproxy->cap & PR_CAP_BE) && (curproxy->mode != PR_MODE_HEALTH)) {
Willy Tarreauf3e49f92009-10-03 12:21:20 +02005807 if (curproxy->lbprm.algo & BE_LB_KIND) {
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005808 if (curproxy->options & PR_O_TRANSP) {
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005809 Alert("config : %s '%s' cannot use both transparent and balance mode.\n",
5810 proxy_type_str(curproxy), curproxy->id);
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005811 cfgerr++;
5812 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005813#ifdef WE_DONT_SUPPORT_SERVERLESS_LISTENERS
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005814 else if (curproxy->srv == NULL) {
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005815 Alert("config : %s '%s' needs at least 1 server in balance mode.\n",
5816 proxy_type_str(curproxy), curproxy->id);
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005817 cfgerr++;
5818 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005819#endif
Willy Tarreau1620ec32011-08-06 17:05:02 +02005820 else if (curproxy->options & PR_O_DISPATCH) {
Willy Tarreau915e1eb2009-06-22 15:48:36 +02005821 Warning("config : dispatch address of %s '%s' will be ignored in balance mode.\n",
5822 proxy_type_str(curproxy), curproxy->id);
Willy Tarreaubb925012009-07-23 13:36:36 +02005823 err_code |= ERR_WARN;
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005824 }
5825 }
Willy Tarreau1620ec32011-08-06 17:05:02 +02005826 else if (!(curproxy->options & (PR_O_TRANSP | PR_O_DISPATCH | PR_O_HTTP_PROXY))) {
Willy Tarreau3cd9af22009-03-15 14:06:41 +01005827 /* If no LB algo is set in a backend, and we're not in
5828 * transparent mode, dispatch mode nor proxy mode, we
5829 * want to use balance roundrobin by default.
5830 */
5831 curproxy->lbprm.algo &= ~BE_LB_ALGO;
5832 curproxy->lbprm.algo |= BE_LB_ALGO_RR;
Willy Tarreaubaaee002006-06-26 02:48:02 +02005833 }
5834 }
Willy Tarreau193cf932007-09-17 10:17:23 +02005835
Willy Tarreau1620ec32011-08-06 17:05:02 +02005836 if (curproxy->options & PR_O_DISPATCH)
5837 curproxy->options &= ~(PR_O_TRANSP | PR_O_HTTP_PROXY);
5838 else if (curproxy->options & PR_O_HTTP_PROXY)
5839 curproxy->options &= ~(PR_O_DISPATCH | PR_O_TRANSP);
5840 else if (curproxy->options & PR_O_TRANSP)
5841 curproxy->options &= ~(PR_O_DISPATCH | PR_O_HTTP_PROXY);
Willy Tarreau82936582007-11-30 15:20:09 +01005842
Willy Tarreau1620ec32011-08-06 17:05:02 +02005843 if ((curproxy->options2 & PR_O2_CHK_ANY) != PR_O2_HTTP_CHK) {
5844 if (curproxy->options & PR_O_DISABLE404) {
5845 Warning("config : '%s' will be ignored for %s '%s' (requires 'option httpchk').\n",
5846 "disable-on-404", proxy_type_str(curproxy), curproxy->id);
5847 err_code |= ERR_WARN;
5848 curproxy->options &= ~PR_O_DISABLE404;
5849 }
5850 if (curproxy->options2 & PR_O2_CHK_SNDST) {
5851 Warning("config : '%s' will be ignored for %s '%s' (requires 'option httpchk').\n",
5852 "send-state", proxy_type_str(curproxy), curproxy->id);
5853 err_code |= ERR_WARN;
5854 curproxy->options &= ~PR_O2_CHK_SNDST;
5855 }
Willy Tarreauef781042010-01-27 11:53:01 +01005856 }
5857
Willy Tarreau5fdfb912007-01-01 23:11:07 +01005858 /* if a default backend was specified, let's find it */
5859 if (curproxy->defbe.name) {
5860 struct proxy *target;
5861
Alex Williams96532db2009-11-01 21:27:13 -05005862 target = findproxy_mode(curproxy->defbe.name, curproxy->mode, PR_CAP_BE);
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005863 if (!target) {
5864 Alert("Proxy '%s': unable to find required default_backend: '%s'.\n",
5865 curproxy->id, curproxy->defbe.name);
Willy Tarreau5fdfb912007-01-01 23:11:07 +01005866 cfgerr++;
5867 } else if (target == curproxy) {
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005868 Alert("Proxy '%s': loop detected for default_backend: '%s'.\n",
5869 curproxy->id, curproxy->defbe.name);
Willy Tarreaubb925012009-07-23 13:36:36 +02005870 cfgerr++;
Willy Tarreau5fdfb912007-01-01 23:11:07 +01005871 } else {
5872 free(curproxy->defbe.name);
5873 curproxy->defbe.be = target;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01005874 /* we force the backend to be present on at least all of
5875 * the frontend's processes.
5876 */
5877 target->bind_proc = curproxy->bind_proc ?
5878 (target->bind_proc | curproxy->bind_proc) : 0;
Willy Tarreauff678132012-02-13 14:32:34 +01005879
5880 /* Emit a warning if this proxy also has some servers */
5881 if (curproxy->srv) {
5882 Warning("In proxy '%s', the 'default_backend' rule always has precedence over the servers, which will never be used.\n",
5883 curproxy->id);
5884 err_code |= ERR_WARN;
5885 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02005886 }
5887 }
5888
Willy Tarreau5fdfb912007-01-01 23:11:07 +01005889 /* find the target proxy in setbe */
Willy Tarreaua496b602006-12-17 23:15:24 +01005890 if (curproxy->mode == PR_MODE_HTTP && curproxy->req_exp != NULL) {
5891 /* map jump target for ACT_SETBE in req_rep chain */
5892 struct hdr_exp *exp;
Willy Tarreaua496b602006-12-17 23:15:24 +01005893 for (exp = curproxy->req_exp; exp != NULL; exp = exp->next) {
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005894 struct proxy *target;
5895
Willy Tarreaua496b602006-12-17 23:15:24 +01005896 if (exp->action != ACT_SETBE)
5897 continue;
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005898
Alex Williams96532db2009-11-01 21:27:13 -05005899 target = findproxy_mode(exp->replace, PR_MODE_HTTP, PR_CAP_BE);
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005900 if (!target) {
5901 Alert("Proxy '%s': unable to find required setbe: '%s'.\n",
5902 curproxy->id, exp->replace);
Willy Tarreaua496b602006-12-17 23:15:24 +01005903 cfgerr++;
5904 } else if (target == curproxy) {
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005905 Alert("Proxy '%s': loop detected for setbe: '%s'.\n",
5906 curproxy->id, exp->replace);
Willy Tarreau977b8e42006-12-29 14:19:17 +01005907 cfgerr++;
Willy Tarreaua496b602006-12-17 23:15:24 +01005908 } else {
5909 free((void *)exp->replace);
5910 exp->replace = (const char *)target;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01005911 /* we force the backend to be present on at least all of
5912 * the frontend's processes.
5913 */
5914 target->bind_proc = curproxy->bind_proc ?
5915 (target->bind_proc | curproxy->bind_proc) : 0;
Willy Tarreaua496b602006-12-17 23:15:24 +01005916 }
5917 }
5918 }
Willy Tarreau55ea7572007-06-17 19:56:27 +02005919
5920 /* find the target proxy for 'use_backend' rules */
5921 list_for_each_entry(rule, &curproxy->switching_rules, list) {
Willy Tarreau55ea7572007-06-17 19:56:27 +02005922 struct proxy *target;
5923
Alex Williams96532db2009-11-01 21:27:13 -05005924 target = findproxy_mode(rule->be.name, curproxy->mode, PR_CAP_BE);
Willy Tarreau55ea7572007-06-17 19:56:27 +02005925
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005926 if (!target) {
5927 Alert("Proxy '%s': unable to find required use_backend: '%s'.\n",
5928 curproxy->id, rule->be.name);
Willy Tarreau55ea7572007-06-17 19:56:27 +02005929 cfgerr++;
5930 } else if (target == curproxy) {
Krzysztof Piotr Oledzki6eb730d2007-11-03 23:41:58 +01005931 Alert("Proxy '%s': loop detected for use_backend: '%s'.\n",
5932 curproxy->id, rule->be.name);
Willy Tarreau55ea7572007-06-17 19:56:27 +02005933 cfgerr++;
5934 } else {
5935 free((void *)rule->be.name);
5936 rule->be.backend = target;
Willy Tarreau0b9c02c2009-02-04 22:05:05 +01005937 /* we force the backend to be present on at least all of
5938 * the frontend's processes.
5939 */
5940 target->bind_proc = curproxy->bind_proc ?
5941 (target->bind_proc | curproxy->bind_proc) : 0;
Willy Tarreau55ea7572007-06-17 19:56:27 +02005942 }
Willy Tarreau4a5cade2012-04-05 21:09:48 +02005943 }
5944
5945 /* find the target proxy for 'use_backend' rules */
5946 list_for_each_entry(srule, &curproxy->server_rules, list) {
5947 struct server *target = findserver(curproxy, srule->srv.name);
5948
5949 if (!target) {
5950 Alert("config : %s '%s' : unable to find server '%s' referenced in a 'use-server' rule.\n",
5951 proxy_type_str(curproxy), curproxy->id, srule->srv.name);
5952 cfgerr++;
5953 continue;
5954 }
5955 free((void *)srule->srv.name);
5956 srule->srv.ptr = target;
Willy Tarreau55ea7572007-06-17 19:56:27 +02005957 }
5958
Emeric Brunb982a3d2010-01-04 15:45:53 +01005959 /* find the target table for 'stick' rules */
5960 list_for_each_entry(mrule, &curproxy->sticking_rules, list) {
5961 struct proxy *target;
5962
Emeric Brun1d33b292010-01-04 15:47:17 +01005963 curproxy->be_req_ana |= AN_REQ_STICKING_RULES;
5964 if (mrule->flags & STK_IS_STORE)
5965 curproxy->be_rsp_ana |= AN_RES_STORE_RULES;
5966
Emeric Brunb982a3d2010-01-04 15:45:53 +01005967 if (mrule->table.name)
Willy Tarreauc00cdc22010-06-06 16:48:26 +02005968 target = findproxy(mrule->table.name, 0);
Emeric Brunb982a3d2010-01-04 15:45:53 +01005969 else
5970 target = curproxy;
5971
5972 if (!target) {
5973 Alert("Proxy '%s': unable to find stick-table '%s'.\n",
5974 curproxy->id, mrule->table.name);
5975 cfgerr++;
5976 }
5977 else if (target->table.size == 0) {
5978 Alert("Proxy '%s': stick-table '%s' used but not configured.\n",
5979 curproxy->id, mrule->table.name ? mrule->table.name : curproxy->id);
5980 cfgerr++;
5981 }
Willy Tarreau12785782012-04-27 21:37:17 +02005982 else if (!stktable_compatible_sample(mrule->expr, target->table.type)) {
5983 Alert("Proxy '%s': type of fetch not usable with type of stick-table '%s'.\n",
Emeric Brunb982a3d2010-01-04 15:45:53 +01005984 curproxy->id, mrule->table.name ? mrule->table.name : curproxy->id);
5985 cfgerr++;
5986 }
5987 else {
5988 free((void *)mrule->table.name);
5989 mrule->table.t = &(target->table);
Willy Tarreau888617d2010-06-20 09:11:39 +02005990 stktable_alloc_data_type(&target->table, STKTABLE_DT_SERVER_ID, NULL);
Emeric Brunb982a3d2010-01-04 15:45:53 +01005991 }
5992 }
5993
5994 /* find the target table for 'store response' rules */
5995 list_for_each_entry(mrule, &curproxy->storersp_rules, list) {
5996 struct proxy *target;
5997
Emeric Brun1d33b292010-01-04 15:47:17 +01005998 curproxy->be_rsp_ana |= AN_RES_STORE_RULES;
5999
Emeric Brunb982a3d2010-01-04 15:45:53 +01006000 if (mrule->table.name)
Willy Tarreauc00cdc22010-06-06 16:48:26 +02006001 target = findproxy(mrule->table.name, 0);
Emeric Brunb982a3d2010-01-04 15:45:53 +01006002 else
6003 target = curproxy;
6004
6005 if (!target) {
6006 Alert("Proxy '%s': unable to find store table '%s'.\n",
6007 curproxy->id, mrule->table.name);
6008 cfgerr++;
6009 }
6010 else if (target->table.size == 0) {
6011 Alert("Proxy '%s': stick-table '%s' used but not configured.\n",
6012 curproxy->id, mrule->table.name ? mrule->table.name : curproxy->id);
6013 cfgerr++;
6014 }
Willy Tarreau12785782012-04-27 21:37:17 +02006015 else if (!stktable_compatible_sample(mrule->expr, target->table.type)) {
6016 Alert("Proxy '%s': type of fetch not usable with type of stick-table '%s'.\n",
Emeric Brunb982a3d2010-01-04 15:45:53 +01006017 curproxy->id, mrule->table.name ? mrule->table.name : curproxy->id);
6018 cfgerr++;
6019 }
6020 else {
6021 free((void *)mrule->table.name);
6022 mrule->table.t = &(target->table);
Willy Tarreau888617d2010-06-20 09:11:39 +02006023 stktable_alloc_data_type(&target->table, STKTABLE_DT_SERVER_ID, NULL);
Emeric Brunb982a3d2010-01-04 15:45:53 +01006024 }
6025 }
6026
Willy Tarreau9ba2dcc2010-06-14 21:04:55 +02006027 /* find the target table for 'tcp-request' layer 4 rules */
6028 list_for_each_entry(trule, &curproxy->tcp_req.l4_rules, list) {
6029 struct proxy *target;
6030
Willy Tarreau56123282010-08-06 19:06:56 +02006031 if (trule->action != TCP_ACT_TRK_SC1 && trule->action != TCP_ACT_TRK_SC2)
Willy Tarreau9ba2dcc2010-06-14 21:04:55 +02006032 continue;
6033
6034 if (trule->act_prm.trk_ctr.table.n)
6035 target = findproxy(trule->act_prm.trk_ctr.table.n, 0);
6036 else
6037 target = curproxy;
6038
6039 if (!target) {
Willy Tarreau56123282010-08-06 19:06:56 +02006040 Alert("Proxy '%s': unable to find table '%s' referenced by track-sc%d.\n",
6041 curproxy->id, trule->act_prm.trk_ctr.table.n,
6042 trule->action == TCP_ACT_TRK_SC1 ? 1 : 2);
Willy Tarreau9ba2dcc2010-06-14 21:04:55 +02006043 cfgerr++;
6044 }
6045 else if (target->table.size == 0) {
6046 Alert("Proxy '%s': table '%s' used but not configured.\n",
6047 curproxy->id, trule->act_prm.trk_ctr.table.n ? trule->act_prm.trk_ctr.table.n : curproxy->id);
6048 cfgerr++;
6049 }
6050 else if (trule->act_prm.trk_ctr.type != target->table.type) {
Willy Tarreau56123282010-08-06 19:06:56 +02006051 Alert("Proxy '%s': type of tracking key for sticky counter not usable with type of stick-table '%s'.\n",
Willy Tarreau9ba2dcc2010-06-14 21:04:55 +02006052 curproxy->id, trule->act_prm.trk_ctr.table.n ? trule->act_prm.trk_ctr.table.n : curproxy->id);
6053 cfgerr++;
6054 }
6055 else {
6056 free(trule->act_prm.trk_ctr.table.n);
6057 trule->act_prm.trk_ctr.table.t = &target->table;
Willy Tarreau56123282010-08-06 19:06:56 +02006058 /* Note: if we decide to enhance the track-sc syntax, we may be able
Willy Tarreau9ba2dcc2010-06-14 21:04:55 +02006059 * to pass a list of counters to track and allocate them right here using
6060 * stktable_alloc_data_type().
6061 */
6062 }
6063 }
6064
Willy Tarreaud1f96522010-08-03 19:34:32 +02006065 /* find the target table for 'tcp-request' layer 6 rules */
6066 list_for_each_entry(trule, &curproxy->tcp_req.inspect_rules, list) {
6067 struct proxy *target;
6068
Willy Tarreau56123282010-08-06 19:06:56 +02006069 if (trule->action != TCP_ACT_TRK_SC1 && trule->action != TCP_ACT_TRK_SC2)
Willy Tarreaud1f96522010-08-03 19:34:32 +02006070 continue;
6071
6072 if (trule->act_prm.trk_ctr.table.n)
6073 target = findproxy(trule->act_prm.trk_ctr.table.n, 0);
6074 else
6075 target = curproxy;
6076
6077 if (!target) {
Willy Tarreau56123282010-08-06 19:06:56 +02006078 Alert("Proxy '%s': unable to find table '%s' referenced by track-sc%d.\n",
6079 curproxy->id, trule->act_prm.trk_ctr.table.n,
6080 trule->action == TCP_ACT_TRK_SC1 ? 1 : 2);
Willy Tarreaud1f96522010-08-03 19:34:32 +02006081 cfgerr++;
6082 }
6083 else if (target->table.size == 0) {
6084 Alert("Proxy '%s': table '%s' used but not configured.\n",
6085 curproxy->id, trule->act_prm.trk_ctr.table.n ? trule->act_prm.trk_ctr.table.n : curproxy->id);
6086 cfgerr++;
6087 }
6088 else if (trule->act_prm.trk_ctr.type != target->table.type) {
Willy Tarreau56123282010-08-06 19:06:56 +02006089 Alert("Proxy '%s': type of tracking key for sticky counter not usable with type of stick-table '%s'.\n",
Willy Tarreaud1f96522010-08-03 19:34:32 +02006090 curproxy->id, trule->act_prm.trk_ctr.table.n ? trule->act_prm.trk_ctr.table.n : curproxy->id);
6091 cfgerr++;
6092 }
6093 else {
6094 free(trule->act_prm.trk_ctr.table.n);
6095 trule->act_prm.trk_ctr.table.t = &target->table;
Willy Tarreau56123282010-08-06 19:06:56 +02006096 /* Note: if we decide to enhance the track-sc syntax, we may be able
Willy Tarreaud1f96522010-08-03 19:34:32 +02006097 * to pass a list of counters to track and allocate them right here using
6098 * stktable_alloc_data_type().
6099 */
6100 }
6101 }
6102
Emeric Brun32da3c42010-09-23 18:39:19 +02006103 if (curproxy->table.peers.name) {
6104 struct peers *curpeers = peers;
6105
6106 for (curpeers = peers; curpeers; curpeers = curpeers->next) {
6107 if (strcmp(curpeers->id, curproxy->table.peers.name) == 0) {
6108 free((void *)curproxy->table.peers.name);
6109 curproxy->table.peers.p = peers;
6110 break;
6111 }
6112 }
6113
6114 if (!curpeers) {
6115 Alert("Proxy '%s': unable to find sync peers '%s'.\n",
6116 curproxy->id, curproxy->table.peers.name);
Willy Tarreaud66bf962011-10-28 14:16:49 +02006117 free((void *)curproxy->table.peers.name);
6118 curproxy->table.peers.p = NULL;
Emeric Brun32da3c42010-09-23 18:39:19 +02006119 cfgerr++;
6120 }
6121 else if (!curpeers->peers_fe) {
Willy Tarreau122541c2011-09-07 21:24:49 +02006122 Alert("Proxy '%s': unable to find local peer '%s' in peers section '%s'.\n",
6123 curproxy->id, localpeer, curpeers->id);
Willy Tarreaud66bf962011-10-28 14:16:49 +02006124 curproxy->table.peers.p = NULL;
Emeric Brun32da3c42010-09-23 18:39:19 +02006125 cfgerr++;
6126 }
6127 }
6128
Krzysztof Piotr Oledzki329f74d2010-02-22 20:27:23 +01006129 if (curproxy->uri_auth && !(curproxy->uri_auth->flags & ST_CONVDONE) &&
Willy Tarreauff011f22011-01-06 17:51:27 +01006130 !LIST_ISEMPTY(&curproxy->uri_auth->http_req_rules) &&
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006131 (curproxy->uri_auth->userlist || curproxy->uri_auth->auth_realm )) {
6132 Alert("%s '%s': stats 'auth'/'realm' and 'http-request' can't be used at the same time.\n",
6133 "proxy", curproxy->id);
6134 cfgerr++;
6135 goto out_uri_auth_compat;
6136 }
6137
Krzysztof Piotr Oledzki329f74d2010-02-22 20:27:23 +01006138 if (curproxy->uri_auth && curproxy->uri_auth->userlist && !(curproxy->uri_auth->flags & ST_CONVDONE)) {
Willy Tarreau95fa4692010-02-01 13:05:50 +01006139 const char *uri_auth_compat_req[10];
Willy Tarreauff011f22011-01-06 17:51:27 +01006140 struct http_req_rule *rule;
Willy Tarreau95fa4692010-02-01 13:05:50 +01006141 int i = 0;
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006142
Willy Tarreau95fa4692010-02-01 13:05:50 +01006143 /* build the ACL condition from scratch. We're relying on anonymous ACLs for that */
6144 uri_auth_compat_req[i++] = "auth";
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006145
6146 if (curproxy->uri_auth->auth_realm) {
Willy Tarreau95fa4692010-02-01 13:05:50 +01006147 uri_auth_compat_req[i++] = "realm";
6148 uri_auth_compat_req[i++] = curproxy->uri_auth->auth_realm;
6149 }
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006150
Willy Tarreau95fa4692010-02-01 13:05:50 +01006151 uri_auth_compat_req[i++] = "unless";
6152 uri_auth_compat_req[i++] = "{";
6153 uri_auth_compat_req[i++] = "http_auth(.internal-stats-userlist)";
6154 uri_auth_compat_req[i++] = "}";
6155 uri_auth_compat_req[i++] = "";
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006156
Willy Tarreauff011f22011-01-06 17:51:27 +01006157 rule = parse_http_req_cond(uri_auth_compat_req, "internal-stats-auth-compat", 0, curproxy);
6158 if (!rule) {
Willy Tarreau95fa4692010-02-01 13:05:50 +01006159 cfgerr++;
6160 break;
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006161 }
6162
Willy Tarreauff011f22011-01-06 17:51:27 +01006163 LIST_ADDQ(&curproxy->uri_auth->http_req_rules, &rule->list);
Willy Tarreau95fa4692010-02-01 13:05:50 +01006164
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006165 if (curproxy->uri_auth->auth_realm) {
6166 free(curproxy->uri_auth->auth_realm);
6167 curproxy->uri_auth->auth_realm = NULL;
6168 }
Krzysztof Piotr Oledzki329f74d2010-02-22 20:27:23 +01006169
6170 curproxy->uri_auth->flags |= ST_CONVDONE;
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01006171 }
6172out_uri_auth_compat:
6173
Krzysztof Piotr Oledzkif9423ae2010-01-29 19:26:18 +01006174 cfgerr += acl_find_targets(curproxy);
6175
Willy Tarreau2738a142006-07-08 17:28:09 +02006176 if ((curproxy->mode == PR_MODE_TCP || curproxy->mode == PR_MODE_HTTP) &&
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006177 (((curproxy->cap & PR_CAP_FE) && !curproxy->timeout.client) ||
Willy Tarreaud825eef2007-05-12 22:35:00 +02006178 ((curproxy->cap & PR_CAP_BE) && (curproxy->srv) &&
Willy Tarreauce887fd2012-05-12 12:50:00 +02006179 (!curproxy->timeout.connect ||
6180 (!curproxy->timeout.server && (curproxy->mode == PR_MODE_HTTP || !curproxy->timeout.tunnel)))))) {
Willy Tarreau915e1eb2009-06-22 15:48:36 +02006181 Warning("config : missing timeouts for %s '%s'.\n"
Willy Tarreau2738a142006-07-08 17:28:09 +02006182 " | While not properly invalid, you will certainly encounter various problems\n"
6183 " | with such a configuration. To fix this, please ensure that all following\n"
Willy Tarreau0f68eac2008-01-20 23:25:06 +01006184 " | timeouts are set to a non-zero value: 'client', 'connect', 'server'.\n",
Willy Tarreau915e1eb2009-06-22 15:48:36 +02006185 proxy_type_str(curproxy), curproxy->id);
Willy Tarreaubb925012009-07-23 13:36:36 +02006186 err_code |= ERR_WARN;
Willy Tarreau2738a142006-07-08 17:28:09 +02006187 }
Willy Tarreauf3c69202006-07-09 16:42:34 +02006188
Willy Tarreau1fa31262007-12-03 00:36:16 +01006189 /* Historically, the tarpit and queue timeouts were inherited from contimeout.
6190 * We must still support older configurations, so let's find out whether those
6191 * parameters have been set or must be copied from contimeouts.
6192 */
6193 if (curproxy != &defproxy) {
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006194 if (!curproxy->timeout.tarpit ||
6195 curproxy->timeout.tarpit == defproxy.timeout.tarpit) {
Willy Tarreau1fa31262007-12-03 00:36:16 +01006196 /* tarpit timeout not set. We search in the following order:
6197 * default.tarpit, curr.connect, default.connect.
6198 */
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006199 if (defproxy.timeout.tarpit)
Willy Tarreau1fa31262007-12-03 00:36:16 +01006200 curproxy->timeout.tarpit = defproxy.timeout.tarpit;
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006201 else if (curproxy->timeout.connect)
Willy Tarreaud7c30f92007-12-03 01:38:36 +01006202 curproxy->timeout.tarpit = curproxy->timeout.connect;
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006203 else if (defproxy.timeout.connect)
Willy Tarreaud7c30f92007-12-03 01:38:36 +01006204 curproxy->timeout.tarpit = defproxy.timeout.connect;
Willy Tarreau1fa31262007-12-03 00:36:16 +01006205 }
6206 if ((curproxy->cap & PR_CAP_BE) &&
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006207 (!curproxy->timeout.queue ||
6208 curproxy->timeout.queue == defproxy.timeout.queue)) {
Willy Tarreau1fa31262007-12-03 00:36:16 +01006209 /* queue timeout not set. We search in the following order:
6210 * default.queue, curr.connect, default.connect.
6211 */
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006212 if (defproxy.timeout.queue)
Willy Tarreau1fa31262007-12-03 00:36:16 +01006213 curproxy->timeout.queue = defproxy.timeout.queue;
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006214 else if (curproxy->timeout.connect)
Willy Tarreaud7c30f92007-12-03 01:38:36 +01006215 curproxy->timeout.queue = curproxy->timeout.connect;
Willy Tarreau0c303ee2008-07-07 00:09:58 +02006216 else if (defproxy.timeout.connect)
Willy Tarreaud7c30f92007-12-03 01:38:36 +01006217 curproxy->timeout.queue = defproxy.timeout.connect;
Willy Tarreau1fa31262007-12-03 00:36:16 +01006218 }
6219 }
6220
Willy Tarreau1620ec32011-08-06 17:05:02 +02006221 if ((curproxy->options2 & PR_O2_CHK_ANY) == PR_O2_SSL3_CHK) {
Willy Tarreau137325d2010-02-01 16:38:17 +01006222 curproxy->check_len = sizeof(sslv3_client_hello_pkt) - 1;
6223 curproxy->check_req = (char *)malloc(curproxy->check_len);
6224 memcpy(curproxy->check_req, sslv3_client_hello_pkt, curproxy->check_len);
Willy Tarreauf3c69202006-07-09 16:42:34 +02006225 }
6226
Willy Tarreaucf7f3202007-05-13 22:46:04 +02006227 /* The small pools required for the capture lists */
Willy Tarreau9a54e132012-03-24 08:33:05 +01006228 if (curproxy->nb_req_cap) {
6229 if (curproxy->mode == PR_MODE_HTTP) {
6230 curproxy->req_cap_pool = create_pool("ptrcap",
6231 curproxy->nb_req_cap * sizeof(char *),
6232 MEM_F_SHARED);
6233 } else {
6234 Warning("config : 'capture request header' ignored for %s '%s' as it requires HTTP mode.\n",
6235 proxy_type_str(curproxy), curproxy->id);
6236 err_code |= ERR_WARN;
6237 curproxy->to_log &= ~LW_REQHDR;
6238 curproxy->nb_req_cap = 0;
6239 }
6240 }
6241
6242 if (curproxy->nb_rsp_cap) {
6243 if (curproxy->mode == PR_MODE_HTTP) {
6244 curproxy->rsp_cap_pool = create_pool("ptrcap",
6245 curproxy->nb_rsp_cap * sizeof(char *),
6246 MEM_F_SHARED);
6247 } else {
6248 Warning("config : 'capture response header' ignored for %s '%s' as it requires HTTP mode.\n",
6249 proxy_type_str(curproxy), curproxy->id);
6250 err_code |= ERR_WARN;
6251 curproxy->to_log &= ~LW_REQHDR;
6252 curproxy->nb_rsp_cap = 0;
6253 }
6254 }
Willy Tarreaucf7f3202007-05-13 22:46:04 +02006255
Willy Tarreau196729e2012-05-31 19:30:26 +02006256 /* compile the log format */
Willy Tarreau99a7ca22012-05-31 19:39:23 +02006257 if (!(curproxy->cap & PR_CAP_FE)) {
6258 if (curproxy->logformat_string != default_http_log_format &&
6259 curproxy->logformat_string != default_tcp_log_format &&
6260 curproxy->logformat_string != clf_http_log_format)
6261 free(curproxy->logformat_string);
6262 curproxy->logformat_string = NULL;
6263 }
6264
Willy Tarreau196729e2012-05-31 19:30:26 +02006265 if (curproxy->logformat_string)
6266 parse_logformat_string(curproxy->logformat_string, curproxy, &curproxy->logformat, curproxy->mode);
6267
6268 if (curproxy->uniqueid_format_string)
6269 parse_logformat_string(curproxy->uniqueid_format_string, curproxy, &curproxy->format_unique_id, PR_MODE_HTTP);
6270
Willy Tarreaubaaee002006-06-26 02:48:02 +02006271 /* first, we will invert the servers list order */
6272 newsrv = NULL;
6273 while (curproxy->srv) {
6274 struct server *next;
6275
6276 next = curproxy->srv->next;
6277 curproxy->srv->next = newsrv;
6278 newsrv = curproxy->srv;
6279 if (!next)
6280 break;
6281 curproxy->srv = next;
6282 }
6283
Willy Tarreaudd701652010-05-25 23:03:02 +02006284 /* assign automatic UIDs to servers which don't have one yet */
6285 next_id = 1;
6286 newsrv = curproxy->srv;
6287 while (newsrv != NULL) {
6288 if (!newsrv->puid) {
6289 /* server ID not set, use automatic numbering with first
6290 * spare entry starting with next_svid.
6291 */
6292 next_id = get_next_id(&curproxy->conf.used_server_id, next_id);
6293 newsrv->conf.id.key = newsrv->puid = next_id;
6294 eb32_insert(&curproxy->conf.used_server_id, &newsrv->conf.id);
6295 }
6296 next_id++;
6297 newsrv = newsrv->next;
6298 }
6299
Willy Tarreau20697042007-11-15 23:26:18 +01006300 curproxy->lbprm.wmult = 1; /* default weight multiplier */
Willy Tarreau5dc2fa62007-11-19 19:10:18 +01006301 curproxy->lbprm.wdiv = 1; /* default weight divider */
Willy Tarreaubaaee002006-06-26 02:48:02 +02006302
Willy Tarreau62c3be22012-01-20 13:12:32 +01006303 /*
6304 * If this server supports a maxconn parameter, it needs a dedicated
6305 * tasks to fill the emptied slots when a connection leaves.
6306 * Also, resolve deferred tracking dependency if needed.
6307 */
6308 newsrv = curproxy->srv;
6309 while (newsrv != NULL) {
6310 if (newsrv->minconn > newsrv->maxconn) {
6311 /* Only 'minconn' was specified, or it was higher than or equal
6312 * to 'maxconn'. Let's turn this into maxconn and clean it, as
6313 * this will avoid further useless expensive computations.
6314 */
6315 newsrv->maxconn = newsrv->minconn;
6316 } else if (newsrv->maxconn && !newsrv->minconn) {
6317 /* minconn was not specified, so we set it to maxconn */
6318 newsrv->minconn = newsrv->maxconn;
6319 }
6320
Emeric Brun01f8e2f2012-05-18 16:02:00 +02006321#ifdef USE_OPENSSL
6322#ifndef SSL_OP_NO_COMPRESSION /* needs OpenSSL >= 0.9.9 */
6323#define SSL_OP_NO_COMPRESSION 0
6324#endif
6325#ifndef SSL_MODE_RELEASE_BUFFERS /* needs OpenSSL >= 1.0.0 */
6326#define SSL_MODE_RELEASE_BUFFERS 0
6327#endif
6328#ifndef SSL_OP_NO_COMPRESSION /* needs OpenSSL >= 0.9.9 */
6329#define SSL_OP_NO_COMPRESSION 0
6330#endif
Emeric Brunc0ff4922012-09-28 19:37:02 +02006331#ifndef SSL_OP_NO_TLSv1_1 /* needs OpenSSL >= 1.0.1 */
6332#define SSL_OP_NO_TLSv1_1 0
6333#endif
6334#ifndef SSL_OP_NO_TLSv1_2 /* needs OpenSSL >= 1.0.1 */
6335#define SSL_OP_NO_TLSv1_2 0
6336#endif
Willy Tarreauf4288ee2012-09-28 18:13:10 +02006337 if (newsrv->use_ssl || newsrv->check.use_ssl) {
Emeric Brun01f8e2f2012-05-18 16:02:00 +02006338 int ssloptions =
6339 SSL_OP_ALL | /* all known workarounds for bugs */
6340 SSL_OP_NO_SSLv2 |
6341 SSL_OP_NO_COMPRESSION;
6342 int sslmode =
6343 SSL_MODE_ENABLE_PARTIAL_WRITE |
6344 SSL_MODE_ACCEPT_MOVING_WRITE_BUFFER |
6345 SSL_MODE_RELEASE_BUFFERS;
6346
6347 /* Initiate SSL context for current server */
6348 newsrv->ssl_ctx.reused_sess = NULL;
Willy Tarreauf4288ee2012-09-28 18:13:10 +02006349 if (newsrv->use_ssl)
6350 newsrv->xprt = &ssl_sock;
Willy Tarreauf1503172012-09-28 19:39:36 +02006351 if (newsrv->check.use_ssl)
6352 newsrv->check.xprt = &ssl_sock;
Emeric Brun01f8e2f2012-05-18 16:02:00 +02006353 newsrv->ssl_ctx.ctx = SSL_CTX_new(SSLv23_client_method());
6354 if(!newsrv->ssl_ctx.ctx) {
6355
6356 Alert("config : %s '%s', server '%s': unable to allocate ssl context.\n",
6357 proxy_type_str(curproxy), curproxy->id,
6358 newsrv->id);
6359 cfgerr++;
6360 goto next_srv;
6361 }
6362
Emeric Brun89675492012-10-05 13:48:26 +02006363 if (newsrv->ssl_ctx.options & SRV_SSL_O_NO_SSLV3)
Willy Tarreauc230b8b2012-09-03 23:55:16 +02006364 ssloptions |= SSL_OP_NO_SSLv3;
Emeric Brun89675492012-10-05 13:48:26 +02006365 if (newsrv->ssl_ctx.options & SRV_SSL_O_NO_TLSV10)
Willy Tarreauc230b8b2012-09-03 23:55:16 +02006366 ssloptions |= SSL_OP_NO_TLSv1;
Emeric Brun89675492012-10-05 13:48:26 +02006367 if (newsrv->ssl_ctx.options & SRV_SSL_O_NO_TLSV11)
Emeric Brunc0ff4922012-09-28 19:37:02 +02006368 ssloptions |= SSL_OP_NO_TLSv1_1;
Emeric Brun89675492012-10-05 13:48:26 +02006369 if (newsrv->ssl_ctx.options & SRV_SSL_O_NO_TLSV12)
Emeric Brunc0ff4922012-09-28 19:37:02 +02006370 ssloptions |= SSL_OP_NO_TLSv1_2;
Emeric Brun01f8e2f2012-05-18 16:02:00 +02006371 SSL_CTX_set_options(newsrv->ssl_ctx.ctx, ssloptions);
6372 SSL_CTX_set_mode(newsrv->ssl_ctx.ctx, sslmode);
6373 SSL_CTX_set_verify(newsrv->ssl_ctx.ctx, SSL_VERIFY_NONE, NULL);
6374 SSL_CTX_set_session_cache_mode(newsrv->ssl_ctx.ctx, SSL_SESS_CACHE_OFF);
Willy Tarreaud7aacbf2012-09-03 23:34:19 +02006375 if (newsrv->ssl_ctx.ciphers &&
6376 !SSL_CTX_set_cipher_list(newsrv->ssl_ctx.ctx, newsrv->ssl_ctx.ciphers)) {
6377 Alert("Proxy '%s', server '%s' [%s:%d] : unable to set SSL cipher list to '%s'.\n",
6378 curproxy->id, newsrv->id,
6379 newsrv->conf.file, newsrv->conf.line, newsrv->ssl_ctx.ciphers);
6380 cfgerr++;
6381 goto next_srv;
6382 }
Emeric Brun01f8e2f2012-05-18 16:02:00 +02006383 }
6384#endif /* USE_OPENSSL */
Willy Tarreau62c3be22012-01-20 13:12:32 +01006385 if (newsrv->trackit) {
6386 struct proxy *px;
6387 struct server *srv;
6388 char *pname, *sname;
6389
6390 pname = newsrv->trackit;
6391 sname = strrchr(pname, '/');
6392
6393 if (sname)
6394 *sname++ = '\0';
6395 else {
6396 sname = pname;
6397 pname = NULL;
6398 }
6399
6400 if (pname) {
6401 px = findproxy(pname, PR_CAP_BE);
6402 if (!px) {
6403 Alert("config : %s '%s', server '%s': unable to find required proxy '%s' for tracking.\n",
6404 proxy_type_str(curproxy), curproxy->id,
6405 newsrv->id, pname);
6406 cfgerr++;
6407 goto next_srv;
6408 }
6409 } else
6410 px = curproxy;
6411
6412 srv = findserver(px, sname);
6413 if (!srv) {
6414 Alert("config : %s '%s', server '%s': unable to find required server '%s' for tracking.\n",
6415 proxy_type_str(curproxy), curproxy->id,
6416 newsrv->id, sname);
6417 cfgerr++;
6418 goto next_srv;
6419 }
6420
6421 if (!(srv->state & SRV_CHECKED)) {
6422 Alert("config : %s '%s', server '%s': unable to use %s/%s for "
6423 "tracking as it does not have checks enabled.\n",
6424 proxy_type_str(curproxy), curproxy->id,
6425 newsrv->id, px->id, srv->id);
6426 cfgerr++;
6427 goto next_srv;
6428 }
6429
6430 if (curproxy != px &&
6431 (curproxy->options & PR_O_DISABLE404) != (px->options & PR_O_DISABLE404)) {
6432 Alert("config : %s '%s', server '%s': unable to use %s/%s for"
6433 "tracking: disable-on-404 option inconsistency.\n",
6434 proxy_type_str(curproxy), curproxy->id,
6435 newsrv->id, px->id, srv->id);
6436 cfgerr++;
6437 goto next_srv;
6438 }
6439
6440 /* if the other server is forced disabled, we have to do the same here */
6441 if (srv->state & SRV_MAINTAIN) {
6442 newsrv->state |= SRV_MAINTAIN;
6443 newsrv->state &= ~SRV_RUNNING;
6444 newsrv->health = 0;
6445 }
6446
6447 newsrv->track = srv;
6448 newsrv->tracknext = srv->tracknext;
6449 srv->tracknext = newsrv;
6450
6451 free(newsrv->trackit);
6452 newsrv->trackit = NULL;
6453 }
6454 next_srv:
6455 newsrv = newsrv->next;
6456 }
6457
Willy Tarreauf3e49f92009-10-03 12:21:20 +02006458 /* We have to initialize the server lookup mechanism depending
6459 * on what LB algorithm was choosen.
6460 */
6461
6462 curproxy->lbprm.algo &= ~(BE_LB_LKUP | BE_LB_PROP_DYN);
6463 switch (curproxy->lbprm.algo & BE_LB_KIND) {
6464 case BE_LB_KIND_RR:
Willy Tarreau9757a382009-10-03 12:56:50 +02006465 if ((curproxy->lbprm.algo & BE_LB_PARM) == BE_LB_RR_STATIC) {
6466 curproxy->lbprm.algo |= BE_LB_LKUP_MAP;
6467 init_server_map(curproxy);
6468 } else {
6469 curproxy->lbprm.algo |= BE_LB_LKUP_RRTREE | BE_LB_PROP_DYN;
6470 fwrr_init_server_groups(curproxy);
6471 }
Willy Tarreauf3e49f92009-10-03 12:21:20 +02006472 break;
Willy Tarreau6b2e11b2009-10-01 07:52:15 +02006473
Willy Tarreau3ebb1162012-02-13 16:57:44 +01006474 case BE_LB_KIND_CB:
Willy Tarreauf09c6602012-02-13 17:12:08 +01006475 if ((curproxy->lbprm.algo & BE_LB_PARM) == BE_LB_CB_LC) {
6476 curproxy->lbprm.algo |= BE_LB_LKUP_LCTREE | BE_LB_PROP_DYN;
6477 fwlc_init_server_tree(curproxy);
6478 } else {
6479 curproxy->lbprm.algo |= BE_LB_LKUP_FSTREE | BE_LB_PROP_DYN;
6480 fas_init_server_tree(curproxy);
6481 }
Willy Tarreauf3e49f92009-10-03 12:21:20 +02006482 break;
Willy Tarreau6b2e11b2009-10-01 07:52:15 +02006483
Willy Tarreauf3e49f92009-10-03 12:21:20 +02006484 case BE_LB_KIND_HI:
Willy Tarreau6b2e11b2009-10-01 07:52:15 +02006485 if ((curproxy->lbprm.algo & BE_LB_HASH_TYPE) == BE_LB_HASH_CONS) {
6486 curproxy->lbprm.algo |= BE_LB_LKUP_CHTREE | BE_LB_PROP_DYN;
6487 chash_init_server_tree(curproxy);
6488 } else {
6489 curproxy->lbprm.algo |= BE_LB_LKUP_MAP;
6490 init_server_map(curproxy);
6491 }
Willy Tarreauf3e49f92009-10-03 12:21:20 +02006492 break;
6493 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02006494
6495 if (curproxy->options & PR_O_LOGASAP)
6496 curproxy->to_log &= ~LW_BYTES;
6497
Willy Tarreaue7ded1f2009-08-09 10:11:45 +02006498 if ((curproxy->mode == PR_MODE_TCP || curproxy->mode == PR_MODE_HTTP) &&
William Lallemand0f99e342011-10-12 17:50:54 +02006499 (curproxy->cap & PR_CAP_FE) && curproxy->to_log && LIST_ISEMPTY(&curproxy->logsrvs)) {
Willy Tarreaue7ded1f2009-08-09 10:11:45 +02006500 Warning("config : log format ignored for %s '%s' since it has no log address.\n",
6501 proxy_type_str(curproxy), curproxy->id);
6502 err_code |= ERR_WARN;
6503 }
6504
Willy Tarreaue24fdfb2010-03-25 07:22:56 +01006505 if (curproxy->mode != PR_MODE_HTTP) {
6506 int optnum;
6507
Willy Tarreaue24fdfb2010-03-25 07:22:56 +01006508 if (curproxy->uri_auth) {
6509 Warning("config : 'stats' statement ignored for %s '%s' as it requires HTTP mode.\n",
6510 proxy_type_str(curproxy), curproxy->id);
6511 err_code |= ERR_WARN;
6512 curproxy->uri_auth = NULL;
6513 }
6514
Willy Tarreau87cf5142011-08-19 22:57:24 +02006515 if (curproxy->options & (PR_O_FWDFOR | PR_O_FF_ALWAYS)) {
Willy Tarreaue24fdfb2010-03-25 07:22:56 +01006516 Warning("config : 'option %s' ignored for %s '%s' as it requires HTTP mode.\n",
6517 "forwardfor", proxy_type_str(curproxy), curproxy->id);
6518 err_code |= ERR_WARN;
Willy Tarreau87cf5142011-08-19 22:57:24 +02006519 curproxy->options &= ~(PR_O_FWDFOR | PR_O_FF_ALWAYS);
Willy Tarreaue24fdfb2010-03-25 07:22:56 +01006520 }
6521
6522 if (curproxy->options & PR_O_ORGTO) {
6523 Warning("config : 'option %s' ignored for %s '%s' as it requires HTTP mode.\n",
6524 "originalto", proxy_type_str(curproxy), curproxy->id);
6525 err_code |= ERR_WARN;
6526 curproxy->options &= ~PR_O_ORGTO;
6527 }
6528
6529 for (optnum = 0; cfg_opts[optnum].name; optnum++) {
6530 if (cfg_opts[optnum].mode == PR_MODE_HTTP &&
6531 (curproxy->cap & cfg_opts[optnum].cap) &&
6532 (curproxy->options & cfg_opts[optnum].val)) {
6533 Warning("config : 'option %s' ignored for %s '%s' as it requires HTTP mode.\n",
6534 cfg_opts[optnum].name, proxy_type_str(curproxy), curproxy->id);
6535 err_code |= ERR_WARN;
6536 curproxy->options &= ~cfg_opts[optnum].val;
6537 }
6538 }
6539
6540 for (optnum = 0; cfg_opts2[optnum].name; optnum++) {
6541 if (cfg_opts2[optnum].mode == PR_MODE_HTTP &&
6542 (curproxy->cap & cfg_opts2[optnum].cap) &&
6543 (curproxy->options2 & cfg_opts2[optnum].val)) {
6544 Warning("config : 'option %s' ignored for %s '%s' as it requires HTTP mode.\n",
6545 cfg_opts2[optnum].name, proxy_type_str(curproxy), curproxy->id);
6546 err_code |= ERR_WARN;
6547 curproxy->options2 &= ~cfg_opts2[optnum].val;
6548 }
6549 }
Willy Tarreaubce70882009-09-07 11:51:47 +02006550
Willy Tarreauefa5f512010-03-30 20:13:29 +02006551#if defined(CONFIG_HAP_CTTPROXY) || defined(CONFIG_HAP_LINUX_TPROXY)
Willy Tarreaubce70882009-09-07 11:51:47 +02006552 if (curproxy->bind_hdr_occ) {
6553 curproxy->bind_hdr_occ = 0;
6554 Warning("config : %s '%s' : ignoring use of header %s as source IP in non-HTTP mode.\n",
6555 proxy_type_str(curproxy), curproxy->id, curproxy->bind_hdr_name);
6556 err_code |= ERR_WARN;
6557 }
Willy Tarreauefa5f512010-03-30 20:13:29 +02006558#endif
Willy Tarreaue24fdfb2010-03-25 07:22:56 +01006559 }
6560
Willy Tarreaubaaee002006-06-26 02:48:02 +02006561 /*
Willy Tarreau21d2af32008-02-14 20:25:24 +01006562 * ensure that we're not cross-dressing a TCP server into HTTP.
6563 */
6564 newsrv = curproxy->srv;
6565 while (newsrv != NULL) {
Willy Tarreau0cec3312011-10-31 13:49:26 +01006566 if ((curproxy->mode != PR_MODE_HTTP) && newsrv->rdr_len) {
Willy Tarreau915e1eb2009-06-22 15:48:36 +02006567 Alert("config : %s '%s' : server cannot have cookie or redirect prefix in non-HTTP mode.\n",
6568 proxy_type_str(curproxy), curproxy->id);
Willy Tarreaubb925012009-07-23 13:36:36 +02006569 cfgerr++;
Willy Tarreau21d2af32008-02-14 20:25:24 +01006570 }
Willy Tarreaubce70882009-09-07 11:51:47 +02006571
Willy Tarreau0cec3312011-10-31 13:49:26 +01006572 if ((curproxy->mode != PR_MODE_HTTP) && newsrv->cklen) {
6573 Warning("config : %s '%s' : ignoring cookie for server '%s' as HTTP mode is disabled.\n",
6574 proxy_type_str(curproxy), curproxy->id, newsrv->id);
6575 err_code |= ERR_WARN;
6576 }
6577
Willy Tarreauefa5f512010-03-30 20:13:29 +02006578#if defined(CONFIG_HAP_CTTPROXY) || defined(CONFIG_HAP_LINUX_TPROXY)
Willy Tarreaubce70882009-09-07 11:51:47 +02006579 if (curproxy->mode != PR_MODE_HTTP && newsrv->bind_hdr_occ) {
6580 newsrv->bind_hdr_occ = 0;
6581 Warning("config : %s '%s' : server %s cannot use header %s as source IP in non-HTTP mode.\n",
6582 proxy_type_str(curproxy), curproxy->id, newsrv->id, newsrv->bind_hdr_name);
6583 err_code |= ERR_WARN;
6584 }
Willy Tarreauefa5f512010-03-30 20:13:29 +02006585#endif
Willy Tarreau21d2af32008-02-14 20:25:24 +01006586 newsrv = newsrv->next;
6587 }
6588
Willy Tarreauc1a21672009-08-16 22:37:44 +02006589 if (curproxy->cap & PR_CAP_FE) {
Willy Tarreau050536d2012-10-04 08:47:34 +02006590 if (!curproxy->accept)
6591 curproxy->accept = frontend_accept;
Willy Tarreau81f9aa32010-06-01 17:45:26 +02006592
Willy Tarreauc1a21672009-08-16 22:37:44 +02006593 if (curproxy->tcp_req.inspect_delay ||
6594 !LIST_ISEMPTY(&curproxy->tcp_req.inspect_rules))
Willy Tarreaufb356202010-08-03 14:02:05 +02006595 curproxy->fe_req_ana |= AN_REQ_INSPECT_FE;
Willy Tarreauc1a21672009-08-16 22:37:44 +02006596
Willy Tarreau4e5b8282009-08-16 22:57:50 +02006597 if (curproxy->mode == PR_MODE_HTTP) {
Willy Tarreauc1a21672009-08-16 22:37:44 +02006598 curproxy->fe_req_ana |= AN_REQ_WAIT_HTTP | AN_REQ_HTTP_PROCESS_FE;
Willy Tarreaub37c27e2009-10-18 22:53:08 +02006599 curproxy->fe_rsp_ana |= AN_RES_WAIT_HTTP | AN_RES_HTTP_PROCESS_FE;
Willy Tarreau4e5b8282009-08-16 22:57:50 +02006600 }
Willy Tarreauc1a21672009-08-16 22:37:44 +02006601
6602 /* both TCP and HTTP must check switching rules */
6603 curproxy->fe_req_ana |= AN_REQ_SWITCHING_RULES;
6604 }
6605
6606 if (curproxy->cap & PR_CAP_BE) {
Willy Tarreaufb356202010-08-03 14:02:05 +02006607 if (curproxy->tcp_req.inspect_delay ||
6608 !LIST_ISEMPTY(&curproxy->tcp_req.inspect_rules))
6609 curproxy->be_req_ana |= AN_REQ_INSPECT_BE;
6610
Emeric Brun97679e72010-09-23 17:56:44 +02006611 if (!LIST_ISEMPTY(&curproxy->tcp_rep.inspect_rules))
6612 curproxy->be_rsp_ana |= AN_RES_INSPECT;
6613
Willy Tarreau4e5b8282009-08-16 22:57:50 +02006614 if (curproxy->mode == PR_MODE_HTTP) {
Willy Tarreauc1a21672009-08-16 22:37:44 +02006615 curproxy->be_req_ana |= AN_REQ_WAIT_HTTP | AN_REQ_HTTP_INNER | AN_REQ_HTTP_PROCESS_BE;
Willy Tarreaub37c27e2009-10-18 22:53:08 +02006616 curproxy->be_rsp_ana |= AN_RES_WAIT_HTTP | AN_RES_HTTP_PROCESS_BE;
Willy Tarreau4e5b8282009-08-16 22:57:50 +02006617 }
Willy Tarreauc1a21672009-08-16 22:37:44 +02006618
6619 /* If the backend does requires RDP cookie persistence, we have to
6620 * enable the corresponding analyser.
6621 */
6622 if (curproxy->options2 & PR_O2_RDPC_PRST)
6623 curproxy->be_req_ana |= AN_REQ_PRST_RDP_COOKIE;
6624 }
6625
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006626 /* Configure SSL for each bind line.
6627 * Note: if configuration fails at some point, the ->ctx member
6628 * remains NULL so that listeners can later detach.
6629 */
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006630 list_for_each_entry(bind_conf, &curproxy->conf.bind, by_fe) {
6631 if (!bind_conf->is_ssl)
6632 continue;
6633#ifdef USE_OPENSSL
6634 if (!bind_conf->default_ctx) {
Emeric Brunfc0421f2012-09-07 17:30:07 +02006635 Alert("Proxy '%s': no SSL certificate specified for bind '%s' at [%s:%d] (use 'crt').\n",
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006636 curproxy->id, bind_conf->arg, bind_conf->file, bind_conf->line);
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006637 cfgerr++;
6638 continue;
6639 }
6640
Emeric Brun4b3091e2012-09-24 15:48:52 +02006641 if (shared_context_init(global.tune.sslcachesize, (global.nbproc > 1) ? 1 : 0) < 0) {
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006642 Alert("Unable to allocate SSL session cache.\n");
6643 cfgerr++;
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006644 continue;
6645 }
6646
Emeric Brunfc0421f2012-09-07 17:30:07 +02006647 /* initialize all certificate contexts */
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006648 cfgerr += ssl_sock_prepare_all_ctx(bind_conf, curproxy);
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006649#endif /* USE_OPENSSL */
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006650 }
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006651
Willy Tarreaue6b98942007-10-29 01:09:36 +01006652 /* adjust this proxy's listeners */
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02006653 next_id = 1;
Willy Tarreau4348fad2012-09-20 16:48:07 +02006654 list_for_each_entry(listener, &curproxy->conf.listeners, by_fe) {
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02006655 if (!listener->luid) {
6656 /* listener ID not set, use automatic numbering with first
6657 * spare entry starting with next_luid.
6658 */
6659 next_id = get_next_id(&curproxy->conf.used_listener_id, next_id);
6660 listener->conf.id.key = listener->luid = next_id;
6661 eb32_insert(&curproxy->conf.used_listener_id, &listener->conf.id);
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02006662 }
Krzysztof Piotr Oledzkidf5cb9f2010-02-05 20:58:27 +01006663 next_id++;
Willy Tarreau53fb4ae2009-10-04 23:04:08 +02006664
Krzysztof Piotr Oledzkiaeebf9b2009-10-04 15:43:17 +02006665 /* enable separate counters */
6666 if (curproxy->options2 & PR_O2_SOCKSTAT) {
6667 listener->counters = (struct licounters *)calloc(1, sizeof(struct licounters));
6668 if (!listener->name) {
6669 sprintf(trash, "sock-%d", listener->luid);
6670 listener->name = strdup(trash);
6671 }
6672 }
Willy Tarreau81796be2012-09-22 19:11:47 +02006673
Willy Tarreaue6b98942007-10-29 01:09:36 +01006674 if (curproxy->options & PR_O_TCP_NOLING)
6675 listener->options |= LI_O_NOLINGER;
Willy Tarreau32368ce2012-09-06 11:10:55 +02006676 if (!listener->maxconn)
6677 listener->maxconn = curproxy->maxconn;
6678 if (!listener->backlog)
6679 listener->backlog = curproxy->backlog;
Willy Tarreaud7c30f92007-12-03 01:38:36 +01006680 listener->timeout = &curproxy->timeout.client;
Willy Tarreau81f9aa32010-06-01 17:45:26 +02006681 listener->accept = session_accept;
Willy Tarreau3bc13772008-12-07 11:50:35 +01006682 listener->handler = process_session;
Willy Tarreauc1a21672009-08-16 22:37:44 +02006683 listener->analysers |= curproxy->fe_req_ana;
Willy Tarreau3bc13772008-12-07 11:50:35 +01006684
Willy Tarreaua5c0ab22010-05-31 10:30:33 +02006685 if (!LIST_ISEMPTY(&curproxy->tcp_req.l4_rules))
6686 listener->options |= LI_O_TCP_RULES;
6687
Willy Tarreaude3041d2010-05-31 10:56:17 +02006688 if (curproxy->mon_mask.s_addr)
6689 listener->options |= LI_O_CHK_MONNET;
6690
Willy Tarreau9ea05a72009-06-14 12:07:01 +02006691 /* smart accept mode is automatic in HTTP mode */
6692 if ((curproxy->options2 & PR_O2_SMARTACC) ||
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006693 ((curproxy->mode == PR_MODE_HTTP || listener->bind_conf->is_ssl) &&
Willy Tarreau9ea05a72009-06-14 12:07:01 +02006694 !(curproxy->no_options2 & PR_O2_SMARTACC)))
6695 listener->options |= LI_O_NOQUICKACK;
Willy Tarreaue6b98942007-10-29 01:09:36 +01006696 }
6697
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006698 /* Release unused SSL configs */
6699 list_for_each_entry(bind_conf, &curproxy->conf.bind, by_fe) {
6700 if (bind_conf->is_ssl)
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006701 continue;
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006702#ifdef USE_OPENSSL
6703 ssl_sock_free_all_ctx(bind_conf);
Emeric Brunfb510ea2012-10-05 12:00:26 +02006704 free(bind_conf->ca_file);
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006705 free(bind_conf->ciphers);
Emeric Brun2b58d042012-09-20 17:10:03 +02006706 free(bind_conf->ecdhe);
Emeric Brunfb510ea2012-10-05 12:00:26 +02006707 free(bind_conf->crl_file);
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006708#endif /* USE_OPENSSL */
Willy Tarreau2a65ff02012-09-13 17:54:29 +02006709 }
Willy Tarreauf5ae8f72012-09-07 16:58:00 +02006710
Cyril Bonté02ff8ef2010-12-14 22:48:49 +01006711 /* Check multi-process mode compatibility for the current proxy */
6712 if (global.nbproc > 1) {
6713 int nbproc = 0;
6714 if (curproxy->bind_proc) {
6715 int proc;
6716 for (proc = 0; proc < global.nbproc; proc++) {
6717 if (curproxy->bind_proc & (1 << proc)) {
6718 nbproc++;
6719 }
6720 }
6721 } else {
6722 nbproc = global.nbproc;
6723 }
6724 if (curproxy->table.peers.name) {
6725 Alert("Proxy '%s': peers can't be used in multi-process mode (nbproc > 1).\n",
6726 curproxy->id);
6727 cfgerr++;
6728 }
6729 if (nbproc > 1) {
6730 if (curproxy->uri_auth) {
6731 Warning("Proxy '%s': in multi-process mode, stats will be limited to process assigned to the current request.\n",
6732 curproxy->id);
6733 if (!LIST_ISEMPTY(&curproxy->uri_auth->admin_rules)) {
6734 Warning("Proxy '%s': stats admin will not work correctly in multi-process mode.\n",
6735 curproxy->id);
6736 }
6737 }
6738 if (curproxy->appsession_name) {
6739 Warning("Proxy '%s': appsession will not work correctly in multi-process mode.\n",
6740 curproxy->id);
6741 }
6742 if (!LIST_ISEMPTY(&curproxy->sticking_rules)) {
6743 Warning("Proxy '%s': sticking rules will not work correctly in multi-process mode.\n",
6744 curproxy->id);
6745 }
6746 }
6747 }
Willy Tarreau918ff602011-07-25 16:33:49 +02006748
6749 /* create the task associated with the proxy */
6750 curproxy->task = task_new();
6751 if (curproxy->task) {
6752 curproxy->task->context = curproxy;
6753 curproxy->task->process = manage_proxy;
6754 /* no need to queue, it will be done automatically if some
6755 * listener gets limited.
6756 */
6757 curproxy->task->expire = TICK_ETERNITY;
6758 } else {
6759 Alert("Proxy '%s': no more memory when trying to allocate the management task\n",
6760 curproxy->id);
6761 cfgerr++;
6762 }
6763
Willy Tarreaubaaee002006-06-26 02:48:02 +02006764 curproxy = curproxy->next;
6765 }
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01006766
Cyril Bonté02ff8ef2010-12-14 22:48:49 +01006767 /* Check multi-process mode compatibility */
6768 if (global.nbproc > 1) {
6769 if (global.stats_fe) {
6770 Warning("stats socket will not work correctly in multi-process mode (nbproc > 1).\n");
6771 }
6772 }
6773
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006774 for (curuserlist = userlist; curuserlist; curuserlist = curuserlist->next) {
6775 struct auth_users *curuser;
6776 int g;
6777
6778 for (curuser = curuserlist->users; curuser; curuser = curuser->next) {
6779 unsigned int group_mask = 0;
6780 char *group = NULL;
6781
Willy Tarreaub4c06b72010-02-02 11:28:20 +01006782 if (!curuser->u.groups)
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006783 continue;
6784
Willy Tarreaub4c06b72010-02-02 11:28:20 +01006785 while ((group = strtok(group?NULL:curuser->u.groups, ","))) {
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006786
6787 for (g = 0; g < curuserlist->grpcnt; g++)
6788 if (!strcmp(curuserlist->groups[g], group))
6789 break;
6790
6791 if (g == curuserlist->grpcnt) {
6792 Alert("userlist '%s': no such group '%s' specified in user '%s'\n",
6793 curuserlist->name, group, curuser->user);
6794 err_code |= ERR_ALERT | ERR_FATAL;
6795 goto out;
6796 }
6797
6798 group_mask |= (1 << g);
6799 }
6800
Willy Tarreaub4c06b72010-02-02 11:28:20 +01006801 free(curuser->u.groups);
6802 curuser->u.group_mask = group_mask;
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006803 }
6804
6805 for (g = 0; g < curuserlist->grpcnt; g++) {
6806 char *user = NULL;
6807
6808 if (!curuserlist->groupusers[g])
6809 continue;
6810
6811 while ((user = strtok(user?NULL:curuserlist->groupusers[g], ","))) {
6812 for (curuser = curuserlist->users; curuser; curuser = curuser->next)
6813 if (!strcmp(curuser->user, user))
6814 break;
6815
6816 if (!curuser) {
6817 Alert("userlist '%s': no such user '%s' specified in group '%s'\n",
6818 curuserlist->name, user, curuserlist->groups[g]);
6819 err_code |= ERR_ALERT | ERR_FATAL;
6820 goto out;
6821 }
6822
Willy Tarreaub4c06b72010-02-02 11:28:20 +01006823 curuser->u.group_mask |= (1 << g);
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006824 }
6825
6826 free(curuserlist->groupusers[g]);
6827 }
6828
6829 free(curuserlist->groupusers);
6830
6831#ifdef DEBUG_AUTH
6832 for (g = 0; g < curuserlist->grpcnt; g++) {
6833 fprintf(stderr, "group %s, id %d, mask %08X, users:", curuserlist->groups[g], g , 1 << g);
6834
6835 for (curuser = curuserlist->users; curuser; curuser = curuser->next) {
Willy Tarreaub9509592012-05-10 23:25:35 +02006836 if (curuser->u.group_mask & (1 << g))
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006837 fprintf(stderr, " %s", curuser->user);
6838 }
6839
6840 fprintf(stderr, "\n");
6841 }
6842#endif
6843
Willy Tarreaufbb78422011-06-05 15:38:35 +02006844 }
6845
6846 /* automatically compute fullconn if not set. We must not do it in the
6847 * loop above because cross-references are not yet fully resolved.
6848 */
6849 for (curproxy = proxy; curproxy; curproxy = curproxy->next) {
6850 /* If <fullconn> is not set, let's set it to 10% of the sum of
6851 * the possible incoming frontend's maxconns.
6852 */
6853 if (!curproxy->fullconn && (curproxy->cap & PR_CAP_BE)) {
6854 struct proxy *fe;
6855 int total = 0;
6856
6857 /* sum up the number of maxconns of frontends which
6858 * reference this backend at least once or which are
6859 * the same one ('listen').
6860 */
6861 for (fe = proxy; fe; fe = fe->next) {
6862 struct switching_rule *rule;
6863 struct hdr_exp *exp;
6864 int found = 0;
6865
6866 if (!(fe->cap & PR_CAP_FE))
6867 continue;
6868
6869 if (fe == curproxy) /* we're on a "listen" instance */
6870 found = 1;
6871
6872 if (fe->defbe.be == curproxy) /* "default_backend" */
6873 found = 1;
6874
6875 /* check if a "use_backend" rule matches */
6876 if (!found) {
6877 list_for_each_entry(rule, &fe->switching_rules, list) {
6878 if (rule->be.backend == curproxy) {
6879 found = 1;
6880 break;
6881 }
6882 }
6883 }
6884
6885 /* check if a "reqsetbe" rule matches */
6886 for (exp = fe->req_exp; !found && exp; exp = exp->next) {
6887 if (exp->action == ACT_SETBE &&
6888 (struct proxy *)exp->replace == curproxy) {
6889 found = 1;
6890 break;
6891 }
6892 }
6893
6894 /* now we've checked all possible ways to reference a backend
6895 * from a frontend.
6896 */
Willy Tarreaufbb78422011-06-05 15:38:35 +02006897 if (!found)
6898 continue;
6899 total += fe->maxconn;
Willy Tarreaufbb78422011-06-05 15:38:35 +02006900 }
Willy Tarreaufbb78422011-06-05 15:38:35 +02006901 /* we have the sum of the maxconns in <total>. We only
6902 * keep 10% of that sum to set the default fullconn, with
6903 * a hard minimum of 1 (to avoid a divide by zero).
6904 */
6905 curproxy->fullconn = (total + 9) / 10;
6906 if (!curproxy->fullconn)
6907 curproxy->fullconn = 1;
6908 }
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01006909 }
6910
Willy Tarreau056f5682010-06-06 15:51:11 +02006911 /* initialize stick-tables on backend capable proxies. This must not
6912 * be done earlier because the data size may be discovered while parsing
6913 * other proxies.
6914 */
6915 for (curproxy = proxy; curproxy; curproxy = curproxy->next)
Willy Tarreauc00cdc22010-06-06 16:48:26 +02006916 stktable_init(&curproxy->table);
Willy Tarreau056f5682010-06-06 15:51:11 +02006917
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01006918 /*
6919 * Recount currently required checks.
6920 */
6921
6922 for (curproxy=proxy; curproxy; curproxy=curproxy->next) {
6923 int optnum;
6924
Willy Tarreau66aa61f2009-01-18 21:44:07 +01006925 for (optnum = 0; cfg_opts[optnum].name; optnum++)
6926 if (curproxy->options & cfg_opts[optnum].val)
6927 global.last_checks |= cfg_opts[optnum].checks;
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01006928
Willy Tarreau66aa61f2009-01-18 21:44:07 +01006929 for (optnum = 0; cfg_opts2[optnum].name; optnum++)
6930 if (curproxy->options2 & cfg_opts2[optnum].val)
6931 global.last_checks |= cfg_opts2[optnum].checks;
Krzysztof Oledzki336d4752007-12-25 02:40:22 +01006932 }
6933
Willy Tarreau122541c2011-09-07 21:24:49 +02006934 if (peers) {
6935 struct peers *curpeers = peers, **last;
6936 struct peer *p, *pb;
6937
6938 /* Remove all peers sections which don't have a valid listener.
6939 * This can happen when a peers section is never referenced and
6940 * does not contain a local peer.
6941 */
6942 last = &peers;
6943 while (*last) {
6944 curpeers = *last;
6945 if (curpeers->peers_fe) {
6946 last = &curpeers->next;
6947 continue;
6948 }
6949
6950 Warning("Removing incomplete section 'peers %s' (no peer named '%s').\n",
6951 curpeers->id, localpeer);
6952
6953 p = curpeers->remote;
6954 while (p) {
6955 pb = p->next;
6956 free(p->id);
6957 free(p);
6958 p = pb;
6959 }
6960
6961 /* Destroy and unlink this curpeers section.
6962 * Note: curpeers is backed up into *last.
6963 */
6964 free(curpeers->id);
6965 curpeers = curpeers->next;
6966 free(*last);
6967 *last = curpeers;
6968 }
6969 }
6970
Willy Tarreauac1932d2011-10-24 19:14:41 +02006971 if (!global.tune.max_http_hdr)
6972 global.tune.max_http_hdr = MAX_HTTP_HDR;
6973
Willy Tarreau34eb6712011-10-24 18:15:04 +02006974 pool2_hdr_idx = create_pool("hdr_idx",
Willy Tarreauac1932d2011-10-24 19:14:41 +02006975 global.tune.max_http_hdr * sizeof(struct hdr_idx_elem),
Willy Tarreau34eb6712011-10-24 18:15:04 +02006976 MEM_F_SHARED);
6977
Willy Tarreaubb925012009-07-23 13:36:36 +02006978 if (cfgerr > 0)
6979 err_code |= ERR_ALERT | ERR_FATAL;
6980 out:
6981 return err_code;
Willy Tarreaubaaee002006-06-26 02:48:02 +02006982}
6983
Willy Tarreau5b2c3362008-07-09 19:39:06 +02006984/*
6985 * Registers the CFG keyword list <kwl> as a list of valid keywords for next
6986 * parsing sessions.
6987 */
6988void cfg_register_keywords(struct cfg_kw_list *kwl)
6989{
6990 LIST_ADDQ(&cfg_keywords.list, &kwl->list);
6991}
Willy Tarreaubaaee002006-06-26 02:48:02 +02006992
Willy Tarreau5b2c3362008-07-09 19:39:06 +02006993/*
6994 * Unregisters the CFG keyword list <kwl> from the list of valid keywords.
6995 */
6996void cfg_unregister_keywords(struct cfg_kw_list *kwl)
6997{
6998 LIST_DEL(&kwl->list);
6999 LIST_INIT(&kwl->list);
7000}
Willy Tarreaubaaee002006-06-26 02:48:02 +02007001
7002/*
7003 * Local variables:
7004 * c-indent-level: 8
7005 * c-basic-offset: 8
7006 * End:
7007 */