blob: ae2f5ebf30088319d3fd0ec89a2e2fb07b1cf393 [file] [log] [blame]
Willy Tarreaubaaee002006-06-26 02:48:02 +02001/*
Willy Tarreaua5357cd2021-05-09 06:14:25 +02002 * HAProxy : High Availability-enabled HTTP/TCP proxy
Willy Tarreau2454d6e2022-02-01 18:06:59 +01003 * Copyright 2000-2022 Willy Tarreau <willy@haproxy.org>.
Willy Tarreaubaaee002006-06-26 02:48:02 +02004 *
5 * This program is free software; you can redistribute it and/or
6 * modify it under the terms of the GNU General Public License
7 * as published by the Free Software Foundation; either version
8 * 2 of the License, or (at your option) any later version.
9 *
Ilya Shipitsin46a030c2020-07-05 16:36:08 +050010 * Please refer to RFC7230 - RFC7235 information about HTTP protocol, and
11 * RFC6265 for information about cookies usage. More generally, the IETF HTTP
Willy Tarreaubaaee002006-06-26 02:48:02 +020012 * Working Group's web site should be consulted for protocol related changes :
13 *
14 * http://ftp.ics.uci.edu/pub/ietf/http/
15 *
16 * Pending bugs (may be not fixed because never reproduced) :
17 * - solaris only : sometimes, an HTTP proxy with only a dispatch address causes
18 * the proxy to terminate (no core) if the client breaks the connection during
19 * the response. Seen on 1.1.8pre4, but never reproduced. May not be related to
20 * the snprintf() bug since requests were simple (GET / HTTP/1.0), but may be
21 * related to missing setsid() (fixed in 1.1.15)
22 * - a proxy with an invalid config will prevent the startup even if disabled.
23 *
24 * ChangeLog has moved to the CHANGELOG file.
25 *
Willy Tarreaubaaee002006-06-26 02:48:02 +020026 */
27
David Carlier7ece0962015-12-08 21:43:09 +000028#define _GNU_SOURCE
Willy Tarreaubaaee002006-06-26 02:48:02 +020029#include <stdio.h>
30#include <stdlib.h>
31#include <unistd.h>
32#include <string.h>
33#include <ctype.h>
Maxime de Roucy379d9c72016-05-13 23:52:56 +020034#include <dirent.h>
Maxime de Roucy379d9c72016-05-13 23:52:56 +020035#include <sys/stat.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020036#include <sys/time.h>
37#include <sys/types.h>
38#include <sys/socket.h>
39#include <netinet/tcp.h>
40#include <netinet/in.h>
41#include <arpa/inet.h>
42#include <netdb.h>
43#include <fcntl.h>
44#include <errno.h>
45#include <signal.h>
46#include <stdarg.h>
47#include <sys/resource.h>
Tim Duesterhusdfad6a42020-04-18 16:02:47 +020048#include <sys/utsname.h>
Marc-Antoine Perennou992709b2013-02-12 10:53:52 +010049#include <sys/wait.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +020050#include <time.h>
51#include <syslog.h>
Michael Schererab012dd2013-01-12 18:35:19 +010052#include <grp.h>
Willy Tarreaud10385a2021-10-06 22:22:40 +020053
Willy Tarreau5e03dfa2021-10-06 22:53:51 +020054#ifdef USE_THREAD
55#include <pthread.h>
56#endif
57
Willy Tarreaufc6c0322012-11-16 16:12:27 +010058#ifdef USE_CPU_AFFINITY
Willy Tarreaufc6c0322012-11-16 16:12:27 +010059#include <sched.h>
David Carlier42d9e5a2018-11-12 16:22:19 +000060#if defined(__FreeBSD__) || defined(__DragonFly__)
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +020061#include <sys/param.h>
David Carlier42d9e5a2018-11-12 16:22:19 +000062#ifdef __FreeBSD__
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +020063#include <sys/cpuset.h>
David Carlier42d9e5a2018-11-12 16:22:19 +000064#endif
David Carlier5e4c8e22019-09-13 05:12:58 +010065#endif
Willy Tarreaufc6c0322012-11-16 16:12:27 +010066#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +020067
Willy Tarreau636848a2019-04-15 19:38:50 +020068#if defined(USE_PRCTL)
69#include <sys/prctl.h>
70#endif
71
devnexen@gmail.com21185972021-08-21 09:13:10 +010072#if defined(USE_PROCCTL)
73#include <sys/procctl.h>
74#endif
75
Willy Tarreaubaaee002006-06-26 02:48:02 +020076#ifdef DEBUG_FULL
77#include <assert.h>
78#endif
Tim Duesterhusd6942c82017-11-20 15:58:35 +010079#if defined(USE_SYSTEMD)
80#include <systemd/sd-daemon.h>
81#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +020082
Willy Tarreau6c3a6812020-03-06 18:57:15 +010083#include <import/sha1.h>
84
Willy Tarreaub2551052020-06-09 09:07:15 +020085#include <haproxy/acl.h>
Amaury Denoyelle68fd7e42021-03-25 17:15:52 +010086#include <haproxy/action.h>
Willy Tarreaub2551052020-06-09 09:07:15 +020087#include <haproxy/activity.h>
88#include <haproxy/api.h>
89#include <haproxy/arg.h>
90#include <haproxy/auth.h>
Willy Tarreau8d366972020-05-27 16:10:29 +020091#include <haproxy/base64.h>
Willy Tarreaub2551052020-06-09 09:07:15 +020092#include <haproxy/capture-t.h>
Willy Tarreau66243b42021-07-16 15:39:28 +020093#include <haproxy/cfgcond.h>
Amaury Denoyelle5a6926d2021-03-30 17:34:24 +020094#include <haproxy/cfgdiag.h>
Willy Tarreau6be78492020-06-05 00:00:29 +020095#include <haproxy/cfgparse.h>
Willy Tarreauc13ed532020-06-02 10:22:45 +020096#include <haproxy/chunk.h>
Willy Tarreau83487a82020-06-04 20:19:54 +020097#include <haproxy/cli.h>
Willy Tarreau55542642021-10-08 09:33:24 +020098#include <haproxy/clock.h>
Willy Tarreau7ea393d2020-06-04 18:02:10 +020099#include <haproxy/connection.h>
Amaury Denoyellea6f9c5d2021-04-23 16:58:08 +0200100#ifdef USE_CPU_AFFINITY
Amaury Denoyelle982fb532021-04-21 18:39:58 +0200101#include <haproxy/cpuset.h>
Amaury Denoyellea6f9c5d2021-04-23 16:58:08 +0200102#endif
Willy Tarreaueb92deb2020-06-04 10:53:16 +0200103#include <haproxy/dns.h>
Willy Tarreau2741c8c2020-06-02 11:28:02 +0200104#include <haproxy/dynbuf.h>
Willy Tarreau8d366972020-05-27 16:10:29 +0200105#include <haproxy/errors.h>
Willy Tarreaub2551052020-06-09 09:07:15 +0200106#include <haproxy/fd.h>
Willy Tarreauc7babd82020-06-04 21:29:29 +0200107#include <haproxy/filters.h>
Willy Tarreaub2551052020-06-09 09:07:15 +0200108#include <haproxy/global.h>
Willy Tarreau86416052020-06-04 09:20:54 +0200109#include <haproxy/hlua.h>
Willy Tarreauc761f842020-06-04 11:40:28 +0200110#include <haproxy/http_rules.h>
Willy Tarreau853b2972020-05-27 18:01:47 +0200111#include <haproxy/list.h>
Willy Tarreau213e9902020-06-04 14:58:24 +0200112#include <haproxy/listener.h>
Willy Tarreauaeed4a82020-06-04 22:01:04 +0200113#include <haproxy/log.h>
Willy Tarreaub5abe5b2020-06-04 14:07:37 +0200114#include <haproxy/mworker.h>
Willy Tarreau7a00efb2020-06-02 17:02:59 +0200115#include <haproxy/namespace.h>
Willy Tarreau6131d6a2020-06-02 16:48:09 +0200116#include <haproxy/net_helper.h>
Willy Tarreau6019fab2020-05-27 16:26:00 +0200117#include <haproxy/openssl-compat.h>
Frédéric Lécaille1d96d6e2022-05-23 16:38:14 +0200118#include <haproxy/quic_tp-t.h>
Willy Tarreau225a90a2020-06-04 15:06:28 +0200119#include <haproxy/pattern.h>
Willy Tarreau3c2a7c22020-06-04 18:38:21 +0200120#include <haproxy/peers.h>
Willy Tarreaub2551052020-06-09 09:07:15 +0200121#include <haproxy/pool.h>
122#include <haproxy/protocol.h>
Willy Tarreaubf3b06b2020-08-26 10:23:40 +0200123#include <haproxy/proto_tcp.h>
Willy Tarreaua264d962020-06-04 22:29:18 +0200124#include <haproxy/proxy.h>
Willy Tarreau7cd8b6e2020-06-02 17:32:26 +0200125#include <haproxy/regex.h>
Willy Tarreaub2551052020-06-09 09:07:15 +0200126#include <haproxy/sample.h>
Willy Tarreau1e56f922020-06-04 23:20:13 +0200127#include <haproxy/server.h>
Willy Tarreau48d25b32020-06-04 18:58:52 +0200128#include <haproxy/session.h>
Willy Tarreau3727a8a2020-06-04 17:37:26 +0200129#include <haproxy/signal.h>
Willy Tarreau063d47d2020-08-28 16:29:53 +0200130#include <haproxy/sock.h>
Willy Tarreau25140cc2020-08-28 15:40:33 +0200131#include <haproxy/sock_inet.h>
Willy Tarreau209108d2020-06-04 20:30:20 +0200132#include <haproxy/ssl_sock.h>
Amaury Denoyelleee63d4b2020-10-05 11:49:42 +0200133#include <haproxy/stats-t.h>
Willy Tarreaudfd3de82020-06-04 23:46:14 +0200134#include <haproxy/stream.h>
Willy Tarreaucea0e1b2020-06-04 17:25:40 +0200135#include <haproxy/task.h>
Willy Tarreau3f567e42020-05-28 15:29:19 +0200136#include <haproxy/thread.h>
Willy Tarreaub2551052020-06-09 09:07:15 +0200137#include <haproxy/time.h>
138#include <haproxy/tools.h>
139#include <haproxy/uri_auth-t.h>
Willy Tarreaua1718922020-06-04 16:25:31 +0200140#include <haproxy/vars.h>
Willy Tarreaub2551052020-06-09 09:07:15 +0200141#include <haproxy/version.h>
Frédéric Lécaille92862102022-05-20 16:29:10 +0200142#include <haproxy/xprt_quic-t.h>
Willy Tarreaubaaee002006-06-26 02:48:02 +0200143
Willy Tarreaubaaee002006-06-26 02:48:02 +0200144
Willy Tarreau7b5654f2019-03-29 21:30:17 +0100145/* array of init calls for older platforms */
146DECLARE_INIT_STAGES;
147
Willy Tarreauf4596402021-04-10 16:53:05 +0200148/* create a read_mostly section to hold variables which are accessed a lot
149 * but which almost never change. The purpose is to isolate them in their
150 * own cache lines where they don't risk to be perturbated by write accesses
151 * to neighbor variables. We need to create an empty aligned variable for
152 * this. The fact that the variable is of size zero means that it will be
153 * eliminated at link time if no other variable uses it, but alignment will
154 * be respected.
155 */
156empty_t __read_mostly_align HA_SECTION("read_mostly") ALIGNED(64);
157
Willy Tarreauf0d3b732021-05-06 16:30:32 +0200158#ifdef BUILD_FEATURES
159const char *build_features = BUILD_FEATURES;
160#else
161const char *build_features = "";
162#endif
163
Willy Tarreau477ecd82010-01-03 21:12:30 +0100164/* list of config files */
165static struct list cfg_cfgfiles = LIST_HEAD_INIT(cfg_cfgfiles);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200166int pid; /* current process id */
167
Willy Tarreauef422ce2022-06-28 19:29:29 +0200168static unsigned long stopping_tgroup_mask; /* Thread groups acknowledging stopping */
Willy Tarreauf8ea00e2020-03-12 17:24:53 +0100169
Willy Tarreaubaaee002006-06-26 02:48:02 +0200170/* global options */
171struct global global = {
Cyril Bonté203ec5a2017-03-23 22:44:13 +0100172 .hard_stop_after = TICK_ETERNITY,
Remi Tricot-Le Bretonb5d968d2022-04-08 18:04:18 +0200173 .close_spread_time = TICK_ETERNITY,
174 .close_spread_end = TICK_ETERNITY,
Amaury Denoyelle0f50cb92021-03-26 18:50:33 +0100175 .numa_cpu_mapping = 1,
Willy Tarreau149ab772019-01-26 14:27:06 +0100176 .nbthread = 0,
William Lallemand5f232402012-04-05 18:02:55 +0200177 .req_count = 0,
William Lallemand0f99e342011-10-12 17:50:54 +0200178 .logsrvs = LIST_HEAD_INIT(global.logsrvs),
Willy Tarreau197715a2022-04-25 19:29:10 +0200179 .maxzlibmem = DEFAULT_MAXZLIBMEM * 1024U * 1024U,
William Lallemandd85f9172012-11-09 17:05:39 +0100180 .comp_rate_lim = 0,
Emeric Brun850efd52014-01-29 12:24:34 +0100181 .ssl_server_verify = SSL_SERVER_VERIFY_REQUIRED,
Emeric Bruned760922010-10-22 17:59:25 +0200182 .unix_bind = {
183 .ux = {
184 .uid = -1,
185 .gid = -1,
186 .mode = 0,
187 }
188 },
Willy Tarreau27a674e2009-08-17 07:23:33 +0200189 .tune = {
Willy Tarreau7ac908b2019-02-27 12:02:18 +0100190 .options = GTUNE_LISTENER_MQ,
Willy Tarreauc77d3642018-12-12 06:19:42 +0100191 .bufsize = (BUFSIZE + 2*sizeof(void *) - 1) & -(2*sizeof(void *)),
Christopher Faulet546c4692020-01-22 14:31:21 +0100192 .maxrewrite = MAXREWRITE,
Willy Tarreaua24adf02014-11-27 01:11:56 +0100193 .reserved_bufs = RESERVED_BUFS,
Willy Tarreauf3045d22015-04-29 16:24:50 +0200194 .pattern_cache = DEFAULT_PAT_LRU_SIZE,
Olivier Houchard88698d92019-04-16 19:07:22 +0200195 .pool_low_ratio = 20,
196 .pool_high_ratio = 25,
Christopher Faulet41ba36f2019-07-19 09:36:45 +0200197 .max_http_hdr = MAX_HTTP_HDR,
Emeric Brunfc32aca2012-09-03 12:10:29 +0200198#ifdef USE_OPENSSL
Emeric Brun46635772012-11-14 11:32:56 +0100199 .sslcachesize = SSLCACHESIZE,
Emeric Brunfc32aca2012-09-03 12:10:29 +0200200#endif
William Lallemandf3747832012-11-09 12:33:10 +0100201 .comp_maxlevel = 1,
Willy Tarreau7e312732014-02-12 16:35:14 +0100202#ifdef DEFAULT_IDLE_TIMER
203 .idle_timer = DEFAULT_IDLE_TIMER,
204#else
205 .idle_timer = 1000, /* 1 second */
206#endif
Amaury Denoyelle97e84c62022-04-19 18:26:55 +0200207#ifdef USE_QUIC
Frédéric Lécailleaee67572022-05-23 18:29:39 +0200208 .quic_backend_max_idle_timeout = QUIC_TP_DFLT_BACK_MAX_IDLE_TIMEOUT,
209 .quic_frontend_max_idle_timeout = QUIC_TP_DFLT_FRONT_MAX_IDLE_TIMEOUT,
210 .quic_frontend_max_streams_bidi = QUIC_TP_DFLT_FRONT_MAX_STREAMS_BIDI,
Frédéric Lécaille92862102022-05-20 16:29:10 +0200211 .quic_retry_threshold = QUIC_DFLT_RETRY_THRESHOLD,
Amaury Denoyelle97e84c62022-04-19 18:26:55 +0200212 .quic_streams_buf = 30,
213#endif /* USE_QUIC */
Willy Tarreau27a674e2009-08-17 07:23:33 +0200214 },
Emeric Brun76d88952012-10-05 15:47:31 +0200215#ifdef USE_OPENSSL
216#ifdef DEFAULT_MAXSSLCONN
Willy Tarreau403edff2012-09-06 11:58:37 +0200217 .maxsslconn = DEFAULT_MAXSSLCONN,
218#endif
Emeric Brun76d88952012-10-05 15:47:31 +0200219#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200220 /* others NULL OK */
221};
222
223/*********************************************************************/
224
225int stopping; /* non zero means stopping in progress */
Cyril Bonté203ec5a2017-03-23 22:44:13 +0100226int killed; /* non zero means a hard-stop is triggered */
Willy Tarreauaf7ad002010-08-31 15:39:26 +0200227int jobs = 0; /* number of active jobs (conns, listeners, active tasks, ...) */
William Lallemanda7199262018-11-16 16:57:20 +0100228int unstoppable_jobs = 0; /* number of active jobs that can't be stopped during a soft stop */
Willy Tarreau199ad242018-11-05 16:31:22 +0100229int active_peers = 0; /* number of active peers (connection attempts and connected) */
Willy Tarreau2d372c22018-11-05 17:12:27 +0100230int connected_peers = 0; /* number of connected peers (verified ones) */
Willy Tarreau392524d2022-02-17 18:10:36 +0100231int arg_mode = 0; /* MODE_DEBUG etc as passed on command line ... */
232char *change_dir = NULL; /* set when -C is passed */
233char *check_condition = NULL; /* check condition passed to -cc */
Willy Tarreaubaaee002006-06-26 02:48:02 +0200234
Ilya Shipitsin46a030c2020-07-05 16:36:08 +0500235/* Here we store information about the pids of the processes we may pause
Willy Tarreaubaaee002006-06-26 02:48:02 +0200236 * or kill. We will send them a signal every 10 ms until we can bind to all
237 * our ports. With 200 retries, that's about 2 seconds.
238 */
239#define MAX_START_RETRIES 200
Willy Tarreaubaaee002006-06-26 02:48:02 +0200240static int *oldpids = NULL;
241static int oldpids_sig; /* use USR1 or TERM */
242
Olivier Houchardf73629d2017-04-05 22:33:04 +0200243/* Path to the unix socket we use to retrieve listener sockets from the old process */
244static const char *old_unixsocket;
245
William Lallemandcb11fd22017-06-01 17:38:52 +0200246int atexit_flag = 0;
247
Willy Tarreaubb545b42010-08-25 12:58:59 +0200248int nb_oldpids = 0;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200249const int zero = 0;
250const int one = 1;
Alexandre Cassen87ea5482007-10-11 20:48:58 +0200251const struct linger nolinger = { .l_onoff = 1, .l_linger = 0 };
Willy Tarreaubaaee002006-06-26 02:48:02 +0200252
Willy Tarreau1d21e0a2010-03-12 21:58:54 +0100253char hostname[MAX_HOSTNAME_LEN];
Dragan Dosen4f014152020-06-18 16:56:47 +0200254char *localpeer = NULL;
Willy Tarreau76871a42022-03-08 16:01:40 +0100255static char *kwd_dump = NULL; // list of keyword dumps to produce
Willy Tarreaubaaee002006-06-26 02:48:02 +0200256
William Lallemand00417412020-06-05 14:08:41 +0200257static char **old_argv = NULL; /* previous argv but cleaned up */
William Lallemand73b85e72017-06-01 17:38:51 +0200258
William Lallemandbc193052018-09-11 10:06:26 +0200259struct list proc_list = LIST_HEAD_INIT(proc_list);
260
261int master = 0; /* 1 if in master, 0 if in child */
Willy Tarreaubf696402019-03-01 10:09:28 +0100262unsigned int rlim_fd_cur_at_boot = 0;
263unsigned int rlim_fd_max_at_boot = 0;
William Lallemandbc193052018-09-11 10:06:26 +0200264
Willy Tarreau6c3a6812020-03-06 18:57:15 +0100265/* per-boot randomness */
266unsigned char boot_seed[20]; /* per-boot random seed (160 bits initially) */
267
Willy Tarreau43ab05b2021-09-28 09:43:11 +0200268/* takes the thread config in argument or NULL for any thread */
William Lallemandb3f2be32018-09-11 10:06:18 +0200269static void *run_thread_poll_loop(void *data);
270
Willy Tarreauff055502014-04-28 22:27:06 +0200271/* bitfield of a few warnings to emit just once (WARN_*) */
272unsigned int warned = 0;
273
Amaury Denoyelle484454d2021-05-05 16:18:45 +0200274/* set if experimental features have been used for the current process */
Willy Tarreauedd42682022-02-25 10:10:00 +0100275unsigned int tainted = 0;
Amaury Denoyelle484454d2021-05-05 16:18:45 +0200276
Amaury Denoyelled2e53cd2021-05-06 16:21:39 +0200277unsigned int experimental_directives_allowed = 0;
278
279int check_kw_experimental(struct cfg_keyword *kw, const char *file, int linenum,
280 char **errmsg)
281{
282 if (kw->flags & KWF_EXPERIMENTAL) {
283 if (!experimental_directives_allowed) {
Amaury Denoyelle86c1d0f2021-05-07 15:07:21 +0200284 memprintf(errmsg, "parsing [%s:%d] : '%s' directive is experimental, must be allowed via a global 'expose-experimental-directives'",
Amaury Denoyelled2e53cd2021-05-06 16:21:39 +0200285 file, linenum, kw->kw);
286 return 1;
287 }
288 mark_tainted(TAINTED_CONFIG_EXP_KW_DECLARED);
289 }
290
291 return 0;
292}
293
William Lallemande7361152018-10-26 14:47:36 +0200294/* master CLI configuration (-S flag) */
295struct list mworker_cli_conf = LIST_HEAD_INIT(mworker_cli_conf);
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100296
297/* These are strings to be reported in the output of "haproxy -vv". They may
298 * either be constants (in which case must_free must be zero) or dynamically
299 * allocated strings to pass to free() on exit, and in this case must_free
300 * must be non-zero.
301 */
302struct list build_opts_list = LIST_HEAD_INIT(build_opts_list);
303struct build_opts_str {
304 struct list list;
305 const char *str;
306 int must_free;
307};
308
Willy Tarreaubaaee002006-06-26 02:48:02 +0200309/*********************************************************************/
310/* general purpose functions ***************************************/
311/*********************************************************************/
312
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100313/* used to register some build option strings at boot. Set must_free to
314 * non-zero if the string must be freed upon exit.
315 */
316void hap_register_build_opts(const char *str, int must_free)
317{
318 struct build_opts_str *b;
319
320 b = calloc(1, sizeof(*b));
321 if (!b) {
322 fprintf(stderr, "out of memory\n");
323 exit(1);
324 }
325 b->str = str;
326 b->must_free = must_free;
Willy Tarreau2b718102021-04-21 07:32:39 +0200327 LIST_APPEND(&build_opts_list, &b->list);
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100328}
329
Willy Tarreaua43dfda2021-05-06 07:43:35 +0200330#define VERSION_MAX_ELTS 7
331
332/* This function splits an haproxy version string into an array of integers.
333 * The syntax of the supported version string is the following:
334 *
335 * <a>[.<b>[.<c>[.<d>]]][-{dev,pre,rc}<f>][-*][-<g>]
336 *
337 * This validates for example:
338 * 1.2.1-pre2, 1.2.1, 1.2.10.1, 1.3.16-rc1, 1.4-dev3, 1.5-dev18, 1.5-dev18-43
339 * 2.4-dev18-f6818d-20
340 *
341 * The result is set in a array of <VERSION_MAX_ELTS> elements. Each letter has
342 * one fixed place in the array. The tags take a numeric value called <e> which
343 * defaults to 3. "dev" is 1, "rc" and "pre" are 2. Numbers not encountered are
344 * considered as zero (henxe 1.5 and 1.5.0 are the same).
345 *
346 * The resulting values are:
347 * 1.2.1-pre2 1, 2, 1, 0, 2, 2, 0
348 * 1.2.1 1, 2, 1, 0, 3, 0, 0
349 * 1.2.10.1 1, 2, 10, 1, 3, 0, 0
350 * 1.3.16-rc1 1, 3, 16, 0, 2, 1, 0
351 * 1.4-dev3 1, 4, 0, 0, 1, 3, 0
352 * 1.5-dev18 1, 5, 0, 0, 1, 18, 0
353 * 1.5-dev18-43 1, 5, 0, 0, 1, 18, 43
354 * 2.4-dev18-f6818d-20 2, 4, 0, 0, 1, 18, 20
355 *
356 * The function returns non-zero if the conversion succeeded, or zero if it
357 * failed.
358 */
359int split_version(const char *version, unsigned int *value)
360{
361 const char *p, *s;
362 char *error;
363 int nelts;
364
365 /* Initialize array with zeroes */
366 for (nelts = 0; nelts < VERSION_MAX_ELTS; nelts++)
367 value[nelts] = 0;
368 value[4] = 3;
369
370 p = version;
371
372 /* If the version number is empty, return false */
373 if (*p == '\0')
374 return 0;
375
376 /* Convert first number <a> */
377 value[0] = strtol(p, &error, 10);
378 p = error + 1;
379 if (*error == '\0')
380 return 1;
381 if (*error == '-')
382 goto split_version_tag;
383 if (*error != '.')
384 return 0;
385
386 /* Convert first number <b> */
387 value[1] = strtol(p, &error, 10);
388 p = error + 1;
389 if (*error == '\0')
390 return 1;
391 if (*error == '-')
392 goto split_version_tag;
393 if (*error != '.')
394 return 0;
395
396 /* Convert first number <c> */
397 value[2] = strtol(p, &error, 10);
398 p = error + 1;
399 if (*error == '\0')
400 return 1;
401 if (*error == '-')
402 goto split_version_tag;
403 if (*error != '.')
404 return 0;
405
406 /* Convert first number <d> */
407 value[3] = strtol(p, &error, 10);
408 p = error + 1;
409 if (*error == '\0')
410 return 1;
411 if (*error != '-')
412 return 0;
413
414 split_version_tag:
415 /* Check for commit number */
416 if (*p >= '0' && *p <= '9')
417 goto split_version_commit;
418
419 /* Read tag */
420 if (strncmp(p, "dev", 3) == 0) { value[4] = 1; p += 3; }
421 else if (strncmp(p, "rc", 2) == 0) { value[4] = 2; p += 2; }
422 else if (strncmp(p, "pre", 3) == 0) { value[4] = 2; p += 3; }
423 else
424 goto split_version_commit;
425
426 /* Convert tag number */
427 value[5] = strtol(p, &error, 10);
428 p = error + 1;
429 if (*error == '\0')
430 return 1;
431 if (*error != '-')
432 return 0;
433
434 split_version_commit:
435 /* Search the last "-" */
436 s = strrchr(p, '-');
437 if (s) {
438 s++;
439 if (*s == '\0')
440 return 0;
441 value[6] = strtol(s, &error, 10);
442 if (*error != '\0')
443 value[6] = 0;
444 return 1;
445 }
446
447 /* convert the version */
448 value[6] = strtol(p, &error, 10);
449 if (*error != '\0')
450 value[6] = 0;
451
452 return 1;
453}
454
455/* This function compares the current haproxy version with an arbitrary version
456 * string. It returns:
457 * -1 : the version in argument is older than the current haproxy version
458 * 0 : the version in argument is the same as the current haproxy version
459 * 1 : the version in argument is newer than the current haproxy version
460 *
461 * Or some errors:
462 * -2 : the current haproxy version is not parsable
463 * -3 : the version in argument is not parsable
464 */
465int compare_current_version(const char *version)
466{
467 unsigned int loc[VERSION_MAX_ELTS];
468 unsigned int mod[VERSION_MAX_ELTS];
469 int i;
470
471 /* split versions */
472 if (!split_version(haproxy_version, loc))
473 return -2;
474 if (!split_version(version, mod))
475 return -3;
476
477 /* compare versions */
478 for (i = 0; i < VERSION_MAX_ELTS; i++) {
479 if (mod[i] < loc[i])
480 return -1;
481 else if (mod[i] > loc[i])
482 return 1;
483 }
484 return 0;
485}
486
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100487static void display_version()
Willy Tarreaubaaee002006-06-26 02:48:02 +0200488{
Tim Duesterhusdfad6a42020-04-18 16:02:47 +0200489 struct utsname utsname;
490
Willy Tarreaua5357cd2021-05-09 06:14:25 +0200491 printf("HAProxy version %s %s - https://haproxy.org/\n"
Willy Tarreau08dd2022019-11-21 18:07:30 +0100492 PRODUCT_STATUS "\n", haproxy_version, haproxy_date);
Willy Tarreau47479eb2019-11-21 18:48:20 +0100493
494 if (strlen(PRODUCT_URL_BUGS) > 0) {
495 char base_version[20];
496 int dots = 0;
497 char *del;
498
499 /* only retrieve the base version without distro-specific extensions */
500 for (del = haproxy_version; *del; del++) {
501 if (*del == '.')
502 dots++;
503 else if (*del < '0' || *del > '9')
504 break;
505 }
506
507 strlcpy2(base_version, haproxy_version, del - haproxy_version + 1);
508 if (dots < 2)
509 printf("Known bugs: https://github.com/haproxy/haproxy/issues?q=is:issue+is:open\n");
510 else
511 printf("Known bugs: " PRODUCT_URL_BUGS "\n", base_version);
512 }
Tim Duesterhusdfad6a42020-04-18 16:02:47 +0200513
514 if (uname(&utsname) == 0) {
515 printf("Running on: %s %s %s %s\n", utsname.sysname, utsname.release, utsname.version, utsname.machine);
516 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200517}
518
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100519static void display_build_opts()
Willy Tarreau7b066db2007-12-02 11:28:59 +0100520{
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100521 struct build_opts_str *item;
522
Willy Tarreau7b066db2007-12-02 11:28:59 +0100523 printf("Build options :"
524#ifdef BUILD_TARGET
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100525 "\n TARGET = " BUILD_TARGET
Willy Tarreau7b066db2007-12-02 11:28:59 +0100526#endif
527#ifdef BUILD_CPU
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100528 "\n CPU = " BUILD_CPU
Willy Tarreau7b066db2007-12-02 11:28:59 +0100529#endif
530#ifdef BUILD_CC
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100531 "\n CC = " BUILD_CC
532#endif
533#ifdef BUILD_CFLAGS
534 "\n CFLAGS = " BUILD_CFLAGS
Willy Tarreau7b066db2007-12-02 11:28:59 +0100535#endif
Willy Tarreau9f2b7302008-01-02 20:48:34 +0100536#ifdef BUILD_OPTIONS
537 "\n OPTIONS = " BUILD_OPTIONS
Willy Tarreau7b066db2007-12-02 11:28:59 +0100538#endif
Tim Duesterhusc8d19702020-11-21 18:07:59 +0100539#ifdef BUILD_DEBUG
540 "\n DEBUG = " BUILD_DEBUG
541#endif
Willy Tarreau7728ed32019-03-27 13:20:08 +0100542#ifdef BUILD_FEATURES
543 "\n\nFeature list : " BUILD_FEATURES
544#endif
Willy Tarreau27a674e2009-08-17 07:23:33 +0200545 "\n\nDefault settings :"
Willy Tarreauca783d42019-03-13 10:03:07 +0100546 "\n bufsize = %d, maxrewrite = %d, maxpollevents = %d"
Willy Tarreau27a674e2009-08-17 07:23:33 +0200547 "\n\n",
Willy Tarreauca783d42019-03-13 10:03:07 +0100548 BUFSIZE, MAXREWRITE, MAX_POLL_EVENTS);
Willy Tarreaube5b6852009-10-03 18:57:08 +0200549
Willy Tarreaucdb737e2016-12-21 18:43:10 +0100550 list_for_each_entry(item, &build_opts_list, list) {
551 puts(item->str);
552 }
553
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +0100554 putchar('\n');
555
Willy Tarreaube5b6852009-10-03 18:57:08 +0200556 list_pollers(stdout);
557 putchar('\n');
Christopher Faulet98d9fe22018-04-10 14:37:32 +0200558 list_mux_proto(stdout);
559 putchar('\n');
Willy Tarreau679bba12019-03-19 08:08:10 +0100560 list_services(stdout);
561 putchar('\n');
Christopher Fauletb3f4e142016-03-07 12:46:38 +0100562 list_filters(stdout);
563 putchar('\n');
Willy Tarreau7b066db2007-12-02 11:28:59 +0100564}
565
Willy Tarreaubaaee002006-06-26 02:48:02 +0200566/*
567 * This function prints the command line usage and exits
568 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100569static void usage(char *name)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200570{
571 display_version();
572 fprintf(stderr,
Maxime de Roucy379d9c72016-05-13 23:52:56 +0200573 "Usage : %s [-f <cfgfile|cfgdir>]* [ -vdV"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200574 "D ] [ -n <maxconn> ] [ -N <maxpconn> ]\n"
Willy Tarreaua088d312015-10-08 11:58:48 +0200575 " [ -p <pidfile> ] [ -m <max megs> ] [ -C <dir> ] [-- <cfgfile>*]\n"
Willy Tarreau7b066db2007-12-02 11:28:59 +0100576 " -v displays version ; -vv shows known build options.\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200577 " -d enters debug mode ; -db only disables background mode.\n"
Willy Tarreauf4b79c42022-02-23 15:20:53 +0100578 " -dM[<byte>,help,...] debug memory (default: poison with <byte>/0x50)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200579 " -V enters verbose mode (disables quiet mode)\n"
Willy Tarreau576132e2011-09-10 19:26:56 +0200580 " -D goes daemon ; -C changes to <dir> before loading files.\n"
William Lallemand095ba4c2017-06-01 17:38:50 +0200581 " -W master-worker mode.\n"
Tim Duesterhusd6942c82017-11-20 15:58:35 +0100582#if defined(USE_SYSTEMD)
583 " -Ws master-worker mode with systemd notify support.\n"
584#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +0200585 " -q quiet mode : don't display messages\n"
Willy Tarreau5d01a632009-06-22 16:02:30 +0200586 " -c check mode : only check config files and exit\n"
Maximilian Maderfc0cceb2021-06-06 00:50:22 +0200587 " -cc check condition : evaluate a condition and exit\n"
Willy Tarreauca783d42019-03-13 10:03:07 +0100588 " -n sets the maximum total # of connections (uses ulimit -n)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200589 " -m limits the usable amount of memory (in MB)\n"
590 " -N sets the default, per-proxy maximum # of connections (%d)\n"
Emeric Brun2b920a12010-09-23 18:30:22 +0200591 " -L set local peer name (default to hostname)\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200592 " -p writes pids of all children to this file\n"
Erwan Le Goasb0c05012022-09-14 17:51:55 +0200593 " -dC[key] display the configure file, if there is a key, the file will be anonymise\n"
Willy Tarreaue5733232019-05-22 19:24:06 +0200594#if defined(USE_EPOLL)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200595 " -de disables epoll() usage even when available\n"
596#endif
Willy Tarreaue5733232019-05-22 19:24:06 +0200597#if defined(USE_KQUEUE)
Willy Tarreau1e63130a2007-04-09 12:03:06 +0200598 " -dk disables kqueue() usage even when available\n"
599#endif
Willy Tarreaue5733232019-05-22 19:24:06 +0200600#if defined(USE_EVPORTS)
Emmanuel Hocdet0ba4f482019-04-08 16:53:32 +0000601 " -dv disables event ports usage even when available\n"
602#endif
Willy Tarreaue5733232019-05-22 19:24:06 +0200603#if defined(USE_POLL)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200604 " -dp disables poll() usage even when available\n"
605#endif
Willy Tarreaue5733232019-05-22 19:24:06 +0200606#if defined(USE_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +0100607 " -dS disables splice usage (broken on old kernels)\n"
608#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +0200609#if defined(USE_GETADDRINFO)
610 " -dG disables getaddrinfo() usage\n"
611#endif
Lukas Tribusa0bcbdc2016-09-12 21:42:20 +0000612#if defined(SO_REUSEPORT)
613 " -dR disables SO_REUSEPORT usage\n"
614#endif
Willy Tarreau654726d2021-12-28 15:43:11 +0100615#if defined(HA_HAVE_DUMP_LIBS)
616 " -dL dumps loaded object files after config checks\n"
617#endif
Willy Tarreau76871a42022-03-08 16:01:40 +0100618 " -dK{class[,...]} dump registered keywords (use 'help' for list)\n"
Willy Tarreau3eed10e2016-11-07 21:03:16 +0100619 " -dr ignores server address resolution failures\n"
Emeric Brun850efd52014-01-29 12:24:34 +0100620 " -dV disables SSL verify on servers side\n"
Willy Tarreau3eb10b82020-04-15 16:42:39 +0200621 " -dW fails if any warning is emitted\n"
Amaury Denoyelle7b01a8d2021-03-29 10:29:07 +0200622 " -dD diagnostic mode : warn about suspicious configuration statements\n"
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +0200623 " -sf/-st [pid ]* finishes/terminates old pids.\n"
Olivier Houchardf73629d2017-04-05 22:33:04 +0200624 " -x <unix_socket> get listening sockets from a unix socket\n"
William Lallemand63329e32019-06-13 17:03:37 +0200625 " -S <bind>[,<bind options>...] new master CLI\n"
Willy Tarreaubaaee002006-06-26 02:48:02 +0200626 "\n",
Willy Tarreauca783d42019-03-13 10:03:07 +0100627 name, cfg_maxpconn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200628 exit(1);
629}
630
631
632
633/*********************************************************************/
634/* more specific functions ***************************************/
635/*********************************************************************/
636
William Lallemand73b85e72017-06-01 17:38:51 +0200637/* sends the signal <sig> to all pids found in <oldpids>. Returns the number of
638 * pids the signal was correctly delivered to.
639 */
William Lallemande25473c2019-04-01 11:29:56 +0200640int tell_old_pids(int sig)
William Lallemand73b85e72017-06-01 17:38:51 +0200641{
642 int p;
643 int ret = 0;
644 for (p = 0; p < nb_oldpids; p++)
645 if (kill(oldpids[p], sig) == 0)
646 ret++;
647 return ret;
648}
649
William Lallemand75ea0a02017-11-15 19:02:58 +0100650/*
William Lallemand73b85e72017-06-01 17:38:51 +0200651 * remove a pid forom the olpid array and decrease nb_oldpids
652 * return 1 pid was found otherwise return 0
653 */
654
655int delete_oldpid(int pid)
656{
657 int i;
658
659 for (i = 0; i < nb_oldpids; i++) {
660 if (oldpids[i] == pid) {
661 oldpids[i] = oldpids[nb_oldpids - 1];
662 oldpids[nb_oldpids - 1] = 0;
663 nb_oldpids--;
664 return 1;
665 }
666 }
667 return 0;
668}
669
William Lallemand85b0bd92017-06-01 17:38:53 +0200670
William Lallemand73b85e72017-06-01 17:38:51 +0200671/*
672 * When called, this function reexec haproxy with -sf followed by current
Joseph Herlant03420902018-11-15 10:41:50 -0800673 * children PIDs and possibly old children PIDs if they didn't leave yet.
William Lallemand73b85e72017-06-01 17:38:51 +0200674 */
William Lallemandfab0fdc2021-11-09 18:01:22 +0100675static void mworker_reexec()
William Lallemand73b85e72017-06-01 17:38:51 +0200676{
William Lallemand00417412020-06-05 14:08:41 +0200677 char **next_argv = NULL;
678 int old_argc = 0; /* previous number of argument */
William Lallemand73b85e72017-06-01 17:38:51 +0200679 int next_argc = 0;
William Lallemand00417412020-06-05 14:08:41 +0200680 int i = 0;
William Lallemand73b85e72017-06-01 17:38:51 +0200681 char *msg = NULL;
Willy Tarreau8dca1952019-03-01 10:21:55 +0100682 struct rlimit limit;
William Lallemand2be557f2021-11-24 18:45:37 +0100683 struct mworker_proc *current_child = NULL;
William Lallemand73b85e72017-06-01 17:38:51 +0200684
685 mworker_block_signals();
William Lallemand73b85e72017-06-01 17:38:51 +0200686 setenv("HAPROXY_MWORKER_REEXEC", "1", 1);
687
William Lallemand55a921c2022-01-28 21:17:30 +0100688 mworker_cleanup_proc();
William Lallemandbc193052018-09-11 10:06:26 +0200689 mworker_proc_list_to_env(); /* put the children description in the env */
690
William Lallemandc4810b82021-11-18 10:51:30 +0100691 /* ensure that we close correctly every listeners before reexecuting */
692 mworker_cleanlisteners();
693
William Lallemand7c756a82018-11-26 11:53:40 +0100694 /* during the reload we must ensure that every FDs that can't be
695 * reuse (ie those that are not referenced in the proc_list)
696 * are closed or they will leak. */
697
698 /* close the listeners FD */
699 mworker_cli_proxy_stop();
William Lallemand16866672019-06-24 17:40:48 +0200700
William Lallemand67e371e2021-11-25 10:03:44 +0100701 if (fdtab)
702 deinit_pollers();
William Lallemandefd95472021-11-26 14:43:57 +0100703
Ilya Shipitsin98a9e1b2021-02-19 23:42:53 +0500704#ifdef HAVE_SSL_RAND_KEEP_RANDOM_DEVICES_OPEN
William Lallemand5fdb5b32019-10-15 14:04:08 +0200705 /* close random device FDs */
706 RAND_keep_random_devices_open(0);
Rob Allen56996da2019-05-03 09:11:32 +0100707#endif
William Lallemand7c756a82018-11-26 11:53:40 +0100708
Willy Tarreau8dca1952019-03-01 10:21:55 +0100709 /* restore the initial FD limits */
710 limit.rlim_cur = rlim_fd_cur_at_boot;
711 limit.rlim_max = rlim_fd_max_at_boot;
712 if (setrlimit(RLIMIT_NOFILE, &limit) == -1) {
713 getrlimit(RLIMIT_NOFILE, &limit);
714 ha_warning("Failed to restore initial FD limits (cur=%u max=%u), using cur=%u max=%u\n",
715 rlim_fd_cur_at_boot, rlim_fd_max_at_boot,
716 (unsigned int)limit.rlim_cur, (unsigned int)limit.rlim_max);
717 }
718
William Lallemand73b85e72017-06-01 17:38:51 +0200719 /* compute length */
William Lallemand00417412020-06-05 14:08:41 +0200720 while (old_argv[old_argc])
721 old_argc++;
William Lallemand73b85e72017-06-01 17:38:51 +0200722
William Lallemand85b0bd92017-06-01 17:38:53 +0200723 /* 1 for haproxy -sf, 2 for -x /socket */
William Lallemandaba7f8b2021-04-21 16:55:34 +0200724 next_argv = calloc(old_argc + 1 + 2 + mworker_child_nb() + 1,
Tim Duesterhuse52b6e52020-09-12 20:26:43 +0200725 sizeof(*next_argv));
William Lallemand73b85e72017-06-01 17:38:51 +0200726 if (next_argv == NULL)
727 goto alloc_error;
728
William Lallemand00417412020-06-05 14:08:41 +0200729 /* copy the program name */
730 next_argv[next_argc++] = old_argv[0];
731
732 /* insert the new options just after argv[0] in case we have a -- */
733
William Lallemandbefab9e2021-11-25 00:49:19 +0100734 if (getenv("HAPROXY_MWORKER_WAIT_ONLY") == NULL) {
735 /* add -sf <PID>* to argv */
736 if (mworker_child_nb() > 0) {
737 struct mworker_proc *child;
William Lallemand3f128872019-04-01 11:29:59 +0200738
William Lallemandbefab9e2021-11-25 00:49:19 +0100739 next_argv[next_argc++] = "-sf";
William Lallemand3f128872019-04-01 11:29:59 +0200740
William Lallemandbefab9e2021-11-25 00:49:19 +0100741 list_for_each_entry(child, &proc_list, list) {
742 if (!(child->options & PROC_O_LEAVING) && (child->options & PROC_O_TYPE_WORKER))
743 current_child = child;
William Lallemand2be557f2021-11-24 18:45:37 +0100744
William Lallemandbefab9e2021-11-25 00:49:19 +0100745 if (!(child->options & (PROC_O_TYPE_WORKER|PROC_O_TYPE_PROG)) || child->pid <= -1)
746 continue;
747 if ((next_argv[next_argc++] = memprintf(&msg, "%d", child->pid)) == NULL)
748 goto alloc_error;
749 msg = NULL;
750 }
William Lallemand73b85e72017-06-01 17:38:51 +0200751 }
William Lallemand2be557f2021-11-24 18:45:37 +0100752
753 if (current_child) {
754 /* add the -x option with the socketpair of the current worker */
755 next_argv[next_argc++] = "-x";
756 if ((next_argv[next_argc++] = memprintf(&msg, "sockpair@%d", current_child->ipc_fd[0])) == NULL)
757 goto alloc_error;
758 msg = NULL;
759 }
William Lallemand85b0bd92017-06-01 17:38:53 +0200760 }
761
William Lallemand00417412020-06-05 14:08:41 +0200762 /* copy the previous options */
763 for (i = 1; i < old_argc; i++)
764 next_argv[next_argc++] = old_argv[i];
765
Willy Tarreaue0d86e22019-08-26 10:37:39 +0200766 signal(SIGPROF, SIG_IGN);
Tim Duesterhus0436ab72017-11-12 17:39:18 +0100767 execvp(next_argv[0], next_argv);
Christopher Faulet767a84b2017-11-24 16:50:31 +0100768 ha_warning("Failed to reexecute the master process [%d]: %s\n", pid, strerror(errno));
Willy Tarreau61cfdf42021-02-20 10:46:51 +0100769 ha_free(&next_argv);
William Lallemand722d4ca2017-11-15 19:02:55 +0100770 return;
771
William Lallemand73b85e72017-06-01 17:38:51 +0200772alloc_error:
Willy Tarreau61cfdf42021-02-20 10:46:51 +0100773 ha_free(&next_argv);
Joseph Herlant07a08342018-11-15 10:43:05 -0800774 ha_warning("Failed to reexecute the master process [%d]: Cannot allocate memory\n", pid);
William Lallemand73b85e72017-06-01 17:38:51 +0200775 return;
776}
777
William Lallemandfab0fdc2021-11-09 18:01:22 +0100778/* reexec haproxy in waitmode */
779static void mworker_reexec_waitmode()
780{
781 setenv("HAPROXY_MWORKER_WAIT_ONLY", "1", 1);
782 mworker_reexec();
783}
784
785/* reload haproxy and emit a warning */
786void mworker_reload()
787{
William Lallemandad221f42021-11-09 18:43:59 +0100788 struct mworker_proc *child;
William Lallemandefd95472021-11-26 14:43:57 +0100789 struct per_thread_deinit_fct *ptdf;
William Lallemandad221f42021-11-09 18:43:59 +0100790
William Lallemand836bda22021-11-09 18:16:47 +0100791 ha_notice("Reloading HAProxy\n");
William Lallemandad221f42021-11-09 18:43:59 +0100792
William Lallemandefd95472021-11-26 14:43:57 +0100793 /* close the poller FD and the thread waker pipe FD */
794 list_for_each_entry(ptdf, &per_thread_deinit_list, list)
795 ptdf->fct();
796
William Lallemandad221f42021-11-09 18:43:59 +0100797 /* increment the number of reloads */
798 list_for_each_entry(child, &proc_list, list) {
799 child->reloads++;
800 }
801
William Lallemanda46a99e2022-07-07 14:00:36 +0200802#if defined(USE_SYSTEMD)
803 if (global.tune.options & GTUNE_USE_SYSTEMD)
804 sd_notify(0, "RELOADING=1\nSTATUS=Reloading Configuration.\n");
805#endif
William Lallemandfab0fdc2021-11-09 18:01:22 +0100806 mworker_reexec();
807}
808
William Lallemandb3f2be32018-09-11 10:06:18 +0200809static void mworker_loop()
810{
811
Willy Tarreaud83b6c12019-04-18 11:31:36 +0200812 /* Busy polling makes no sense in the master :-) */
813 global.tune.options &= ~GTUNE_BUSY_POLLING;
William Lallemandb3f2be32018-09-11 10:06:18 +0200814
William Lallemandbc193052018-09-11 10:06:26 +0200815
Willy Tarreaud26c9f92019-12-11 14:24:07 +0100816 signal_unregister(SIGTTIN);
817 signal_unregister(SIGTTOU);
William Lallemand0564d412018-11-20 17:36:53 +0100818 signal_unregister(SIGUSR1);
819 signal_unregister(SIGHUP);
820 signal_unregister(SIGQUIT);
821
William Lallemandb3f2be32018-09-11 10:06:18 +0200822 signal_register_fct(SIGTERM, mworker_catch_sigterm, SIGTERM);
823 signal_register_fct(SIGUSR1, mworker_catch_sigterm, SIGUSR1);
Willy Tarreaud26c9f92019-12-11 14:24:07 +0100824 signal_register_fct(SIGTTIN, mworker_broadcast_signal, SIGTTIN);
825 signal_register_fct(SIGTTOU, mworker_broadcast_signal, SIGTTOU);
William Lallemandb3f2be32018-09-11 10:06:18 +0200826 signal_register_fct(SIGINT, mworker_catch_sigterm, SIGINT);
827 signal_register_fct(SIGHUP, mworker_catch_sighup, SIGHUP);
828 signal_register_fct(SIGUSR2, mworker_catch_sighup, SIGUSR2);
829 signal_register_fct(SIGCHLD, mworker_catch_sigchld, SIGCHLD);
830
831 mworker_unblock_signals();
William Lallemand27f3fa52018-12-06 14:05:20 +0100832 mworker_cleantasks();
William Lallemandb3f2be32018-09-11 10:06:18 +0200833
William Lallemandbc193052018-09-11 10:06:26 +0200834 mworker_catch_sigchld(NULL); /* ensure we clean the children in case
835 some SIGCHLD were lost */
836
William Lallemandb3f2be32018-09-11 10:06:18 +0200837 jobs++; /* this is the "master" job, we want to take care of the
838 signals even if there is no listener so the poll loop don't
839 leave */
840
841 fork_poller();
Willy Tarreau43ab05b2021-09-28 09:43:11 +0200842 run_thread_poll_loop(NULL);
William Lallemandb3f2be32018-09-11 10:06:18 +0200843}
William Lallemandcb11fd22017-06-01 17:38:52 +0200844
845/*
846 * Reexec the process in failure mode, instead of exiting
847 */
848void reexec_on_failure()
849{
William Lallemand68836742021-11-10 10:49:06 +0100850 struct mworker_proc *child;
851
William Lallemandcb11fd22017-06-01 17:38:52 +0200852 if (!atexit_flag)
853 return;
William Lallemand68836742021-11-10 10:49:06 +0100854
855 /* get the info of the children in the env */
856 if (mworker_env_to_proc_list() < 0) {
857 exit(EXIT_FAILURE);
858 }
859
860 /* increment the number of failed reloads */
861 list_for_each_entry(child, &proc_list, list) {
862 child->failedreloads++;
863 }
864
Willy Tarreaue08acae2022-01-28 18:40:06 +0100865 /* do not keep unused FDs retrieved from the previous process */
866 sock_drop_unused_old_sockets();
867
William Lallemandfab0fdc2021-11-09 18:01:22 +0100868 usermsgs_clr(NULL);
William Lallemand836bda22021-11-09 18:16:47 +0100869 ha_warning("Loading failure!\n");
William Lallemanda46a99e2022-07-07 14:00:36 +0200870#if defined(USE_SYSTEMD)
871 /* the sd_notify API is not able to send a reload failure signal. So
872 * the READY=1 signal still need to be sent */
873 if (global.tune.options & GTUNE_USE_SYSTEMD)
874 sd_notify(0, "READY=1\nSTATUS=Reload failed!\n");
875#endif
876
William Lallemandfab0fdc2021-11-09 18:01:22 +0100877 mworker_reexec_waitmode();
William Lallemandcb11fd22017-06-01 17:38:52 +0200878}
William Lallemand73b85e72017-06-01 17:38:51 +0200879
880
881/*
Willy Tarreaud0807c32010-08-27 18:26:11 +0200882 * upon SIGUSR1, let's have a soft stop. Note that soft_stop() broadcasts
883 * a signal zero to all subscribers. This means that it's as easy as
884 * subscribing to signal 0 to get informed about an imminent shutdown.
Willy Tarreaubaaee002006-06-26 02:48:02 +0200885 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100886static void sig_soft_stop(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200887{
888 soft_stop();
Willy Tarreau24f4efa2010-08-27 17:56:48 +0200889 signal_unregister_handler(sh);
Willy Tarreaubafbe012017-11-24 17:34:44 +0100890 pool_gc(NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200891}
892
893/*
894 * upon SIGTTOU, we pause everything
895 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100896static void sig_pause(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200897{
Willy Tarreau775e0012020-09-24 16:36:26 +0200898 if (protocol_pause_all() & ERR_FATAL) {
899 const char *msg = "Some proxies refused to pause, performing soft stop now.\n";
Willy Tarreau0a002df2020-10-09 19:26:27 +0200900 ha_warning("%s", msg);
901 send_log(NULL, LOG_WARNING, "%s", msg);
Willy Tarreau775e0012020-09-24 16:36:26 +0200902 soft_stop();
903 }
Willy Tarreaubafbe012017-11-24 17:34:44 +0100904 pool_gc(NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200905}
906
907/*
908 * upon SIGTTIN, let's have a soft stop.
909 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100910static void sig_listen(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200911{
Willy Tarreau775e0012020-09-24 16:36:26 +0200912 if (protocol_resume_all() & ERR_FATAL) {
913 const char *msg = "Some proxies refused to resume, probably due to a conflict on a listening port. You may want to try again after the conflicting application is stopped, otherwise a restart might be needed to resume safe operations.\n";
Willy Tarreau0a002df2020-10-09 19:26:27 +0200914 ha_warning("%s", msg);
915 send_log(NULL, LOG_WARNING, "%s", msg);
Willy Tarreau775e0012020-09-24 16:36:26 +0200916 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200917}
918
919/*
920 * this function dumps every server's state when the process receives SIGHUP.
921 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100922static void sig_dump_state(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200923{
Olivier Houchardfbc74e82017-11-24 16:54:05 +0100924 struct proxy *p = proxies_list;
Willy Tarreaubaaee002006-06-26 02:48:02 +0200925
Christopher Faulet767a84b2017-11-24 16:50:31 +0100926 ha_warning("SIGHUP received, dumping servers states.\n");
Willy Tarreaubaaee002006-06-26 02:48:02 +0200927 while (p) {
928 struct server *s = p->srv;
929
930 send_log(p, LOG_NOTICE, "SIGHUP received, dumping servers states for proxy %s.\n", p->id);
931 while (s) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100932 chunk_printf(&trash,
933 "SIGHUP: Server %s/%s is %s. Conn: %d act, %d pend, %lld tot.",
934 p->id, s->id,
Emeric Brun52a91d32017-08-31 14:41:55 +0200935 (s->cur_state != SRV_ST_STOPPED) ? "UP" : "DOWN",
Willy Tarreaua0570452021-06-18 09:30:30 +0200936 s->cur_sess, s->queue.length, s->counters.cum_sess);
Willy Tarreau843b7cb2018-07-13 10:54:26 +0200937 ha_warning("%s\n", trash.area);
938 send_log(p, LOG_NOTICE, "%s\n", trash.area);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200939 s = s->next;
940 }
941
Willy Tarreau5fcc8f12007-09-17 11:27:09 +0200942 /* FIXME: those info are a bit outdated. We should be able to distinguish between FE and BE. */
943 if (!p->srv) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100944 chunk_printf(&trash,
945 "SIGHUP: Proxy %s has no servers. Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
946 p->id,
Willy Tarreau7f3c1df2021-06-18 09:22:21 +0200947 p->feconn, p->beconn, p->totpend, p->queue.length, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreau5fcc8f12007-09-17 11:27:09 +0200948 } else if (p->srv_act == 0) {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100949 chunk_printf(&trash,
950 "SIGHUP: Proxy %s %s ! Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
951 p->id,
952 (p->srv_bck) ? "is running on backup servers" : "has no server available",
Willy Tarreau7f3c1df2021-06-18 09:22:21 +0200953 p->feconn, p->beconn, p->totpend, p->queue.length, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200954 } else {
Willy Tarreau19d14ef2012-10-29 16:51:55 +0100955 chunk_printf(&trash,
956 "SIGHUP: Proxy %s has %d active servers and %d backup servers available."
957 " Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.",
958 p->id, p->srv_act, p->srv_bck,
Willy Tarreau7f3c1df2021-06-18 09:22:21 +0200959 p->feconn, p->beconn, p->totpend, p->queue.length, p->fe_counters.cum_conn, p->be_counters.cum_conn);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200960 }
Willy Tarreau843b7cb2018-07-13 10:54:26 +0200961 ha_warning("%s\n", trash.area);
962 send_log(p, LOG_NOTICE, "%s\n", trash.area);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200963
964 p = p->next;
965 }
Willy Tarreaubaaee002006-06-26 02:48:02 +0200966}
967
Willy Tarreau1b5af7c2016-12-21 18:19:57 +0100968static void dump(struct sig_handler *sh)
Willy Tarreaubaaee002006-06-26 02:48:02 +0200969{
Willy Tarreauc6ca1a02007-05-13 19:43:47 +0200970 /* dump memory usage then free everything possible */
971 dump_pools();
Willy Tarreaubafbe012017-11-24 17:34:44 +0100972 pool_gc(NULL);
Willy Tarreaubaaee002006-06-26 02:48:02 +0200973}
974
William Lallemande1340412017-12-28 16:09:36 +0100975/*
976 * This function dup2 the stdio FDs (0,1,2) with <fd>, then closes <fd>
977 * If <fd> < 0, it opens /dev/null and use it to dup
978 *
979 * In the case of chrooting, you have to open /dev/null before the chroot, and
980 * pass the <fd> to this function
981 */
982static void stdio_quiet(int fd)
983{
984 if (fd < 0)
985 fd = open("/dev/null", O_RDWR, 0);
986
987 if (fd > -1) {
988 fclose(stdin);
989 fclose(stdout);
990 fclose(stderr);
991
992 dup2(fd, 0);
993 dup2(fd, 1);
994 dup2(fd, 2);
995 if (fd > 2)
996 close(fd);
997 return;
998 }
999
1000 ha_alert("Cannot open /dev/null\n");
1001 exit(EXIT_FAILURE);
1002}
1003
1004
Joseph Herlant03420902018-11-15 10:41:50 -08001005/* This function checks if cfg_cfgfiles contains directories.
1006 * If it finds one, it adds all the files (and only files) it contains
1007 * in cfg_cfgfiles in place of the directory (and removes the directory).
1008 * It adds the files in lexical order.
1009 * It adds only files with .cfg extension.
Maxime de Roucy379d9c72016-05-13 23:52:56 +02001010 * It doesn't add files with name starting with '.'
1011 */
Willy Tarreau1b5af7c2016-12-21 18:19:57 +01001012static void cfgfiles_expand_directories(void)
Maxime de Roucy379d9c72016-05-13 23:52:56 +02001013{
1014 struct wordlist *wl, *wlb;
1015 char *err = NULL;
1016
1017 list_for_each_entry_safe(wl, wlb, &cfg_cfgfiles, list) {
1018 struct stat file_stat;
1019 struct dirent **dir_entries = NULL;
1020 int dir_entries_nb;
1021 int dir_entries_it;
1022
1023 if (stat(wl->s, &file_stat)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001024 ha_alert("Cannot open configuration file/directory %s : %s\n",
1025 wl->s,
1026 strerror(errno));
Maxime de Roucy379d9c72016-05-13 23:52:56 +02001027 exit(1);
1028 }
1029
1030 if (!S_ISDIR(file_stat.st_mode))
1031 continue;
1032
1033 /* from this point wl->s is a directory */
1034
1035 dir_entries_nb = scandir(wl->s, &dir_entries, NULL, alphasort);
1036 if (dir_entries_nb < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001037 ha_alert("Cannot open configuration directory %s : %s\n",
1038 wl->s,
1039 strerror(errno));
Maxime de Roucy379d9c72016-05-13 23:52:56 +02001040 exit(1);
1041 }
1042
1043 /* for each element in the directory wl->s */
1044 for (dir_entries_it = 0; dir_entries_it < dir_entries_nb; dir_entries_it++) {
1045 struct dirent *dir_entry = dir_entries[dir_entries_it];
1046 char *filename = NULL;
1047 char *d_name_cfgext = strstr(dir_entry->d_name, ".cfg");
1048
1049 /* don't add filename that begin with .
Joseph Herlant03420902018-11-15 10:41:50 -08001050 * only add filename with .cfg extension
Maxime de Roucy379d9c72016-05-13 23:52:56 +02001051 */
1052 if (dir_entry->d_name[0] == '.' ||
1053 !(d_name_cfgext && d_name_cfgext[4] == '\0'))
1054 goto next_dir_entry;
1055
1056 if (!memprintf(&filename, "%s/%s", wl->s, dir_entry->d_name)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001057 ha_alert("Cannot load configuration files %s : out of memory.\n",
1058 filename);
Maxime de Roucy379d9c72016-05-13 23:52:56 +02001059 exit(1);
1060 }
1061
1062 if (stat(filename, &file_stat)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001063 ha_alert("Cannot open configuration file %s : %s\n",
1064 wl->s,
1065 strerror(errno));
Maxime de Roucy379d9c72016-05-13 23:52:56 +02001066 exit(1);
1067 }
1068
1069 /* don't add anything else than regular file in cfg_cfgfiles
1070 * this way we avoid loops
1071 */
1072 if (!S_ISREG(file_stat.st_mode))
1073 goto next_dir_entry;
1074
1075 if (!list_append_word(&wl->list, filename, &err)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001076 ha_alert("Cannot load configuration files %s : %s\n",
1077 filename,
1078 err);
Maxime de Roucy379d9c72016-05-13 23:52:56 +02001079 exit(1);
1080 }
1081
1082next_dir_entry:
1083 free(filename);
1084 free(dir_entry);
1085 }
1086
1087 free(dir_entries);
1088
1089 /* remove the current directory (wl) from cfg_cfgfiles */
1090 free(wl->s);
Willy Tarreau2b718102021-04-21 07:32:39 +02001091 LIST_DELETE(&wl->list);
Maxime de Roucy379d9c72016-05-13 23:52:56 +02001092 free(wl);
1093 }
1094
1095 free(err);
1096}
1097
Willy Tarreaubaaee002006-06-26 02:48:02 +02001098/*
William Lallemand73b85e72017-06-01 17:38:51 +02001099 * copy and cleanup the current argv
William Lallemanddf6c5a82020-06-04 17:40:23 +02001100 * Remove the -sf /-st / -x parameters
William Lallemand73b85e72017-06-01 17:38:51 +02001101 * Return an allocated copy of argv
1102 */
1103
1104static char **copy_argv(int argc, char **argv)
1105{
William Lallemanddf6c5a82020-06-04 17:40:23 +02001106 char **newargv, **retargv;
William Lallemand73b85e72017-06-01 17:38:51 +02001107
Tim Duesterhuse52b6e52020-09-12 20:26:43 +02001108 newargv = calloc(argc + 2, sizeof(*newargv));
William Lallemand73b85e72017-06-01 17:38:51 +02001109 if (newargv == NULL) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001110 ha_warning("Cannot allocate memory\n");
William Lallemand73b85e72017-06-01 17:38:51 +02001111 return NULL;
1112 }
William Lallemanddf6c5a82020-06-04 17:40:23 +02001113 retargv = newargv;
William Lallemand73b85e72017-06-01 17:38:51 +02001114
William Lallemanddf6c5a82020-06-04 17:40:23 +02001115 /* first copy argv[0] */
1116 *newargv++ = *argv++;
1117 argc--;
1118
1119 while (argc > 0) {
1120 if (**argv != '-') {
1121 /* non options are copied but will fail in the argument parser */
1122 *newargv++ = *argv++;
1123 argc--;
1124
1125 } else {
1126 char *flag;
1127
1128 flag = *argv + 1;
1129
1130 if (flag[0] == '-' && flag[1] == 0) {
1131 /* "--\0" copy every arguments till the end of argv */
1132 *newargv++ = *argv++;
1133 argc--;
1134
1135 while (argc > 0) {
1136 *newargv++ = *argv++;
1137 argc--;
1138 }
1139 } else {
1140 switch (*flag) {
1141 case 's':
1142 /* -sf / -st and their parameters are ignored */
1143 if (flag[1] == 'f' || flag[1] == 't') {
1144 argc--;
1145 argv++;
1146 /* The list can't contain a negative value since the only
1147 way to know the end of this list is by looking for the
1148 next option or the end of the options */
1149 while (argc > 0 && argv[0][0] != '-') {
1150 argc--;
1151 argv++;
1152 }
William Lallemand398da622020-09-02 16:12:23 +02001153 } else {
1154 argc--;
1155 argv++;
1156
William Lallemanddf6c5a82020-06-04 17:40:23 +02001157 }
1158 break;
1159
1160 case 'x':
1161 /* this option and its parameter are ignored */
1162 argc--;
1163 argv++;
1164 if (argc > 0) {
1165 argc--;
1166 argv++;
1167 }
1168 break;
1169
1170 case 'C':
1171 case 'n':
1172 case 'm':
1173 case 'N':
1174 case 'L':
1175 case 'f':
1176 case 'p':
1177 case 'S':
1178 /* these options have only 1 parameter which must be copied and can start with a '-' */
1179 *newargv++ = *argv++;
1180 argc--;
1181 if (argc == 0)
1182 goto error;
1183 *newargv++ = *argv++;
1184 argc--;
1185 break;
1186 default:
1187 /* for other options just copy them without parameters, this is also done
1188 * for options like "--foo", but this will fail in the argument parser.
1189 * */
1190 *newargv++ = *argv++;
1191 argc--;
1192 break;
1193 }
William Lallemand73b85e72017-06-01 17:38:51 +02001194 }
1195 }
William Lallemand73b85e72017-06-01 17:38:51 +02001196 }
William Lallemand2bf6d622017-06-20 11:20:23 +02001197
William Lallemanddf6c5a82020-06-04 17:40:23 +02001198 return retargv;
1199
1200error:
1201 free(retargv);
1202 return NULL;
William Lallemand73b85e72017-06-01 17:38:51 +02001203}
1204
Willy Tarreau6c3a6812020-03-06 18:57:15 +01001205
1206/* Performs basic random seed initialization. The main issue with this is that
1207 * srandom_r() only takes 32 bits and purposely provides a reproducible sequence,
1208 * which means that there will only be 4 billion possible random sequences once
1209 * srandom() is called, regardless of the internal state. Not calling it is
1210 * even worse as we'll always produce the same randoms sequences. What we do
1211 * here is to create an initial sequence from various entropy sources, hash it
1212 * using SHA1 and keep the resulting 160 bits available globally.
1213 *
1214 * We initialize the current process with the first 32 bits before starting the
1215 * polling loop, where all this will be changed to have process specific and
1216 * thread specific sequences.
Willy Tarreau52bf8392020-03-08 00:42:37 +01001217 *
1218 * Before starting threads, it's still possible to call random() as srandom()
1219 * is initialized from this, but after threads and/or processes are started,
1220 * only ha_random() is expected to be used to guarantee distinct sequences.
Willy Tarreau6c3a6812020-03-06 18:57:15 +01001221 */
1222static void ha_random_boot(char *const *argv)
1223{
1224 unsigned char message[256];
1225 unsigned char *m = message;
1226 struct timeval tv;
1227 blk_SHA_CTX ctx;
1228 unsigned long l;
1229 int fd;
1230 int i;
1231
1232 /* start with current time as pseudo-random seed */
1233 gettimeofday(&tv, NULL);
1234 write_u32(m, tv.tv_sec); m += 4;
1235 write_u32(m, tv.tv_usec); m += 4;
1236
1237 /* PID and PPID add some OS-based randomness */
1238 write_u16(m, getpid()); m += 2;
1239 write_u16(m, getppid()); m += 2;
1240
1241 /* take up to 160 bits bytes from /dev/urandom if available (non-blocking) */
1242 fd = open("/dev/urandom", O_RDONLY);
1243 if (fd >= 0) {
1244 i = read(fd, m, 20);
1245 if (i > 0)
1246 m += i;
1247 close(fd);
1248 }
1249
1250 /* take up to 160 bits bytes from openssl (non-blocking) */
1251#ifdef USE_OPENSSL
1252 if (RAND_bytes(m, 20) == 1)
1253 m += 20;
1254#endif
1255
1256 /* take 160 bits from existing random in case it was already initialized */
1257 for (i = 0; i < 5; i++) {
1258 write_u32(m, random());
1259 m += 4;
1260 }
1261
1262 /* stack address (benefit form operating system's ASLR) */
1263 l = (unsigned long)&m;
1264 memcpy(m, &l, sizeof(l)); m += sizeof(l);
1265
1266 /* argv address (benefit form operating system's ASLR) */
1267 l = (unsigned long)&argv;
1268 memcpy(m, &l, sizeof(l)); m += sizeof(l);
1269
1270 /* use tv_usec again after all the operations above */
1271 gettimeofday(&tv, NULL);
1272 write_u32(m, tv.tv_usec); m += 4;
1273
1274 /*
1275 * At this point, ~84-92 bytes have been used
1276 */
1277
1278 /* finish with the hostname */
1279 strncpy((char *)m, hostname, message + sizeof(message) - m);
1280 m += strlen(hostname);
1281
1282 /* total message length */
1283 l = m - message;
1284
1285 memset(&ctx, 0, sizeof(ctx));
1286 blk_SHA1_Init(&ctx);
1287 blk_SHA1_Update(&ctx, message, l);
1288 blk_SHA1_Final(boot_seed, &ctx);
1289
1290 srandom(read_u32(boot_seed));
Willy Tarreau52bf8392020-03-08 00:42:37 +01001291 ha_random_seed(boot_seed, sizeof(boot_seed));
Willy Tarreau6c3a6812020-03-06 18:57:15 +01001292}
1293
Willy Tarreau5a023f02019-03-01 14:19:31 +01001294/* considers splicing proxies' maxconn, computes the ideal global.maxpipes
1295 * setting, and returns it. It may return -1 meaning "unlimited" if some
1296 * unlimited proxies have been found and the global.maxconn value is not yet
1297 * set. It may also return a value greater than maxconn if it's not yet set.
1298 * Note that a value of zero means there is no need for pipes. -1 is never
1299 * returned if global.maxconn is valid.
1300 */
1301static int compute_ideal_maxpipes()
1302{
1303 struct proxy *cur;
1304 int nbfe = 0, nbbe = 0;
1305 int unlimited = 0;
1306 int pipes;
1307 int max;
1308
1309 for (cur = proxies_list; cur; cur = cur->next) {
1310 if (cur->options2 & (PR_O2_SPLIC_ANY)) {
1311 if (cur->cap & PR_CAP_FE) {
1312 max = cur->maxconn;
1313 nbfe += max;
1314 if (!max) {
1315 unlimited = 1;
1316 break;
1317 }
1318 }
1319 if (cur->cap & PR_CAP_BE) {
1320 max = cur->fullconn ? cur->fullconn : global.maxconn;
1321 nbbe += max;
1322 if (!max) {
1323 unlimited = 1;
1324 break;
1325 }
1326 }
1327 }
1328 }
1329
1330 pipes = MAX(nbfe, nbbe);
1331 if (global.maxconn) {
1332 if (pipes > global.maxconn || unlimited)
1333 pipes = global.maxconn;
1334 } else if (unlimited) {
1335 pipes = -1;
1336 }
1337
1338 return pipes >= 4 ? pipes / 4 : pipes;
1339}
1340
Willy Tarreauac350932019-03-01 15:43:14 +01001341/* considers global.maxsocks, global.maxpipes, async engines, SSL frontends and
1342 * rlimits and computes an ideal maxconn. It's meant to be called only when
1343 * maxsock contains the sum of listening FDs, before it is updated based on
Willy Tarreaudf23c0c2019-03-13 10:10:49 +01001344 * maxconn and pipes. If there are not enough FDs left, DEFAULT_MAXCONN (by
1345 * default 100) is returned as it is expected that it will even run on tight
1346 * environments, and will maintain compatibility with previous packages that
1347 * used to rely on this value as the default one. The system will emit a
1348 * warning indicating how many FDs are missing anyway if needed.
Willy Tarreauac350932019-03-01 15:43:14 +01001349 */
1350static int compute_ideal_maxconn()
1351{
1352 int ssl_sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
1353 int engine_fds = global.ssl_used_async_engines * ssl_sides;
1354 int pipes = compute_ideal_maxpipes();
Willy Tarreaub1beaa32020-03-06 10:25:31 +01001355 int remain = MAX(rlim_fd_cur_at_boot, rlim_fd_max_at_boot);
Willy Tarreauac350932019-03-01 15:43:14 +01001356 int maxconn;
1357
1358 /* we have to take into account these elements :
1359 * - number of engine_fds, which inflates the number of FD needed per
1360 * connection by this number.
1361 * - number of pipes per connection on average : for the unlimited
1362 * case, this is 0.5 pipe FDs per connection, otherwise it's a
1363 * fixed value of 2*pipes.
1364 * - two FDs per connection
1365 */
1366
Willy Tarreau2df1fbf2022-04-25 18:02:03 +02001367 if (global.fd_hard_limit && remain > global.fd_hard_limit)
1368 remain = global.fd_hard_limit;
1369
Willy Tarreauac350932019-03-01 15:43:14 +01001370 /* subtract listeners and checks */
1371 remain -= global.maxsock;
1372
Willy Tarreau3f200852019-03-14 19:13:17 +01001373 /* one epoll_fd/kqueue_fd per thread */
1374 remain -= global.nbthread;
1375
1376 /* one wake-up pipe (2 fd) per thread */
1377 remain -= 2 * global.nbthread;
1378
Willy Tarreauac350932019-03-01 15:43:14 +01001379 /* Fixed pipes values : we only subtract them if they're not larger
1380 * than the remaining FDs because pipes are optional.
1381 */
1382 if (pipes >= 0 && pipes * 2 < remain)
1383 remain -= pipes * 2;
1384
1385 if (pipes < 0) {
1386 /* maxsock = maxconn * 2 + maxconn/4 * 2 + maxconn * engine_fds.
1387 * = maxconn * (2 + 0.5 + engine_fds)
1388 * = maxconn * (4 + 1 + 2*engine_fds) / 2
1389 */
1390 maxconn = 2 * remain / (5 + 2 * engine_fds);
1391 } else {
1392 /* maxsock = maxconn * 2 + maxconn * engine_fds.
1393 * = maxconn * (2 + engine_fds)
1394 */
1395 maxconn = remain / (2 + engine_fds);
1396 }
1397
Willy Tarreaudf23c0c2019-03-13 10:10:49 +01001398 return MAX(maxconn, DEFAULT_MAXCONN);
Willy Tarreauac350932019-03-01 15:43:14 +01001399}
1400
Willy Tarreaua409f302020-03-10 17:08:53 +01001401/* computes the estimated maxsock value for the given maxconn based on the
1402 * possibly set global.maxpipes and existing partial global.maxsock. It may
1403 * temporarily change global.maxconn for the time needed to propagate the
1404 * computations, and will reset it.
1405 */
1406static int compute_ideal_maxsock(int maxconn)
1407{
1408 int maxpipes = global.maxpipes;
1409 int maxsock = global.maxsock;
1410
1411
1412 if (!maxpipes) {
1413 int old_maxconn = global.maxconn;
1414
1415 global.maxconn = maxconn;
1416 maxpipes = compute_ideal_maxpipes();
1417 global.maxconn = old_maxconn;
1418 }
1419
1420 maxsock += maxconn * 2; /* each connection needs two sockets */
1421 maxsock += maxpipes * 2; /* each pipe needs two FDs */
1422 maxsock += global.nbthread; /* one epoll_fd/kqueue_fd per thread */
1423 maxsock += 2 * global.nbthread; /* one wake-up pipe (2 fd) per thread */
1424
1425 /* compute fd used by async engines */
1426 if (global.ssl_used_async_engines) {
1427 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
1428
1429 maxsock += maxconn * sides * global.ssl_used_async_engines;
1430 }
1431 return maxsock;
1432}
1433
Thayne McCombs8f0cc5c2021-01-07 21:35:52 -07001434/* Tests if it is possible to set the current process's RLIMIT_NOFILE to
Willy Tarreau304e17e2020-03-10 17:54:54 +01001435 * <maxsock>, then sets it back to the previous value. Returns non-zero if the
1436 * value is accepted, non-zero otherwise. This is used to determine if an
1437 * automatic limit may be applied or not. When it is not, the caller knows that
1438 * the highest we can do is the rlim_max at boot. In case of error, we return
1439 * that the setting is possible, so that we defer the error processing to the
1440 * final stage in charge of enforcing this.
1441 */
1442static int check_if_maxsock_permitted(int maxsock)
1443{
1444 struct rlimit orig_limit, test_limit;
1445 int ret;
1446
Willy Tarreau2df1fbf2022-04-25 18:02:03 +02001447 if (global.fd_hard_limit && maxsock > global.fd_hard_limit)
1448 return 0;
1449
Willy Tarreau304e17e2020-03-10 17:54:54 +01001450 if (getrlimit(RLIMIT_NOFILE, &orig_limit) != 0)
1451 return 1;
1452
1453 /* don't go further if we can't even set to what we have */
1454 if (setrlimit(RLIMIT_NOFILE, &orig_limit) != 0)
1455 return 1;
1456
1457 test_limit.rlim_max = MAX(maxsock, orig_limit.rlim_max);
1458 test_limit.rlim_cur = test_limit.rlim_max;
1459 ret = setrlimit(RLIMIT_NOFILE, &test_limit);
1460
1461 if (setrlimit(RLIMIT_NOFILE, &orig_limit) != 0)
1462 return 1;
1463
1464 return ret == 0;
1465}
1466
Willy Tarreau34527d52022-02-17 17:45:58 +01001467/* This performs th every basic early initialization at the end of the PREPARE
1468 * init stage. It may only assume that list heads are initialized, but not that
1469 * anything else is correct. It will initialize a number of variables that
1470 * depend on command line and will pre-parse the command line. If it fails, it
1471 * directly exits.
Willy Tarreaubaaee002006-06-26 02:48:02 +02001472 */
Willy Tarreau34527d52022-02-17 17:45:58 +01001473static void init_early(int argc, char **argv)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001474{
Kevinm48936af2010-12-22 16:08:21 +00001475 char *progname;
Willy Tarreau34527d52022-02-17 17:45:58 +01001476 char *tmp;
1477 int len;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001478
Willy Tarreau34527d52022-02-17 17:45:58 +01001479 /* First, let's initialize most global variables */
1480 totalconn = actconn = listeners = stopping = 0;
1481 killed = pid = 0;
1482
1483 global.maxsock = 10; /* reserve 10 fds ; will be incremented by socket eaters */
1484 global.rlimit_memmax_all = HAPROXY_MEMMAX;
Christopher Faulete3a5e352017-10-24 13:53:54 +02001485 global.mode = MODE_STARTING;
William Lallemand73b85e72017-06-01 17:38:51 +02001486
Willy Tarreau34527d52022-02-17 17:45:58 +01001487 /* if we were in mworker mode, we should restart in mworker mode */
1488 if (getenv("HAPROXY_MWORKER_REEXEC") != NULL)
1489 global.mode |= MODE_MWORKER;
David du Colombier7af46052012-05-16 14:16:48 +02001490
Willy Tarreau34527d52022-02-17 17:45:58 +01001491 /* initialize date, time, and pid */
1492 tzset();
1493 clock_init_process_date();
1494 start_date = now;
1495 pid = getpid();
1496
1497 /* Set local host name and adjust some environment variables.
1498 * NB: POSIX does not make it mandatory for gethostname() to
1499 * NULL-terminate the string in case of truncation, and at least
1500 * FreeBSD appears not to do it.
Emeric Brun2b920a12010-09-23 18:30:22 +02001501 */
1502 memset(hostname, 0, sizeof(hostname));
1503 gethostname(hostname, sizeof(hostname) - 1);
Dragan Dosen4f014152020-06-18 16:56:47 +02001504
Willy Tarreau34527d52022-02-17 17:45:58 +01001505 /* preset some environment variables */
1506 localpeer = strdup(hostname);
1507 if (!localpeer || setenv("HAPROXY_LOCALPEER", localpeer, 1) < 0) {
Dragan Dosen4f014152020-06-18 16:56:47 +02001508 ha_alert("Cannot allocate memory for local peer.\n");
1509 exit(EXIT_FAILURE);
1510 }
Emeric Brun2b920a12010-09-23 18:30:22 +02001511
Willy Tarreau34527d52022-02-17 17:45:58 +01001512 /* Some CPU affinity stuff may have to be initialized */
1513#ifdef USE_CPU_AFFINITY
1514 {
Willy Tarreau5b093412022-07-08 09:38:30 +02001515 int g, i;
1516
1517 for (g = 0; g < MAX_TGROUPS; g++) {
1518 ha_cpuset_zero(&cpu_map[g].proc);
1519 ha_cpuset_zero(&cpu_map[g].proc_t1);
1520 for (i = 0; i < MAX_THREADS_PER_GROUP; ++i) {
1521 ha_cpuset_zero(&cpu_map[g].thread[i]);
1522 }
Willy Tarreau34527d52022-02-17 17:45:58 +01001523 }
1524 }
1525#endif
Christopher Fauletcd7879a2017-10-27 13:53:47 +02001526
Willy Tarreau34527d52022-02-17 17:45:58 +01001527 /* extract the program name from argv[0], it will be used for the logs
1528 * and error messages.
1529 */
1530 progname = *argv;
1531 while ((tmp = strchr(progname, '/')) != NULL)
1532 progname = tmp + 1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001533
Willy Tarreau34527d52022-02-17 17:45:58 +01001534 len = strlen(progname);
1535 progname = strdup(progname);
1536 if (!progname) {
1537 ha_alert("Cannot allocate memory for log_tag.\n");
1538 exit(EXIT_FAILURE);
1539 }
Willy Tarreau84310e22014-02-14 11:59:04 +01001540
Willy Tarreau34527d52022-02-17 17:45:58 +01001541 chunk_initlen(&global.log_tag, progname, len, len);
1542}
Willy Tarreaub6b3df32018-11-26 16:31:20 +01001543
Willy Tarreau392524d2022-02-17 18:10:36 +01001544/* handles program arguments. Very minimal parsing is performed, variables are
1545 * fed with some values, and lists are completed with other ones. In case of
1546 * error, it will exit.
Willy Tarreau34527d52022-02-17 17:45:58 +01001547 */
Willy Tarreau392524d2022-02-17 18:10:36 +01001548static void init_args(int argc, char **argv)
Willy Tarreau34527d52022-02-17 17:45:58 +01001549{
Willy Tarreau34527d52022-02-17 17:45:58 +01001550 char *progname = global.log_tag.area;
Willy Tarreau392524d2022-02-17 18:10:36 +01001551 char *err_msg = NULL;
Thierry FOURNIER6f1fd482015-01-23 14:06:13 +01001552
Willy Tarreau34527d52022-02-17 17:45:58 +01001553 /* pre-fill in the global tuning options before we let the cmdline
1554 * change them.
1555 */
Willy Tarreau43b78992009-01-25 15:42:27 +01001556 global.tune.options |= GTUNE_USE_SELECT; /* select() is always available */
Willy Tarreaue5733232019-05-22 19:24:06 +02001557#if defined(USE_POLL)
Willy Tarreau43b78992009-01-25 15:42:27 +01001558 global.tune.options |= GTUNE_USE_POLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001559#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001560#if defined(USE_EPOLL)
Willy Tarreau43b78992009-01-25 15:42:27 +01001561 global.tune.options |= GTUNE_USE_EPOLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001562#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001563#if defined(USE_KQUEUE)
Willy Tarreau43b78992009-01-25 15:42:27 +01001564 global.tune.options |= GTUNE_USE_KQUEUE;
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001565#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001566#if defined(USE_EVPORTS)
Emmanuel Hocdet0ba4f482019-04-08 16:53:32 +00001567 global.tune.options |= GTUNE_USE_EVPORTS;
1568#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001569#if defined(USE_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +01001570 global.tune.options |= GTUNE_USE_SPLICE;
1571#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +02001572#if defined(USE_GETADDRINFO)
1573 global.tune.options |= GTUNE_USE_GAI;
1574#endif
Lukas Tribusa0bcbdc2016-09-12 21:42:20 +00001575#if defined(SO_REUSEPORT)
1576 global.tune.options |= GTUNE_USE_REUSEPORT;
1577#endif
Willy Tarreau76cc6992020-07-01 18:49:24 +02001578#ifdef USE_THREAD
1579 global.tune.options |= GTUNE_IDLE_POOL_SHARED;
1580#endif
William Dauchya5194602020-03-28 19:29:58 +01001581 global.tune.options |= GTUNE_STRICT_LIMITS;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001582
Willy Tarreau392524d2022-02-17 18:10:36 +01001583 /* keep a copy of original arguments for the master process */
1584 old_argv = copy_argv(argc, argv);
1585 if (!old_argv) {
1586 ha_alert("failed to copy argv.\n");
1587 exit(EXIT_FAILURE);
1588 }
1589
1590 /* skip program name and start */
Willy Tarreaubaaee002006-06-26 02:48:02 +02001591 argc--; argv++;
1592 while (argc > 0) {
1593 char *flag;
1594
1595 if (**argv == '-') {
1596 flag = *argv+1;
1597
1598 /* 1 arg */
1599 if (*flag == 'v') {
1600 display_version();
Willy Tarreau7b066db2007-12-02 11:28:59 +01001601 if (flag[1] == 'v') /* -vv */
1602 display_build_opts();
Tim Duesterhus77b3db02022-04-27 00:08:11 +02001603 deinit_and_exit(0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001604 }
Willy Tarreaue5733232019-05-22 19:24:06 +02001605#if defined(USE_EPOLL)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001606 else if (*flag == 'd' && flag[1] == 'e')
Willy Tarreau43b78992009-01-25 15:42:27 +01001607 global.tune.options &= ~GTUNE_USE_EPOLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001608#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001609#if defined(USE_POLL)
Willy Tarreaubaaee002006-06-26 02:48:02 +02001610 else if (*flag == 'd' && flag[1] == 'p')
Willy Tarreau43b78992009-01-25 15:42:27 +01001611 global.tune.options &= ~GTUNE_USE_POLL;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001612#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001613#if defined(USE_KQUEUE)
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001614 else if (*flag == 'd' && flag[1] == 'k')
Willy Tarreau43b78992009-01-25 15:42:27 +01001615 global.tune.options &= ~GTUNE_USE_KQUEUE;
Willy Tarreau1e63130a2007-04-09 12:03:06 +02001616#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001617#if defined(USE_EVPORTS)
Emmanuel Hocdet0ba4f482019-04-08 16:53:32 +00001618 else if (*flag == 'd' && flag[1] == 'v')
1619 global.tune.options &= ~GTUNE_USE_EVPORTS;
1620#endif
Willy Tarreaue5733232019-05-22 19:24:06 +02001621#if defined(USE_LINUX_SPLICE)
Willy Tarreau3ab68cf2009-01-25 16:03:28 +01001622 else if (*flag == 'd' && flag[1] == 'S')
1623 global.tune.options &= ~GTUNE_USE_SPLICE;
1624#endif
Nenad Merdanovic88afe032014-04-14 15:56:58 +02001625#if defined(USE_GETADDRINFO)
1626 else if (*flag == 'd' && flag[1] == 'G')
1627 global.tune.options &= ~GTUNE_USE_GAI;
1628#endif
Lukas Tribusa0bcbdc2016-09-12 21:42:20 +00001629#if defined(SO_REUSEPORT)
1630 else if (*flag == 'd' && flag[1] == 'R')
1631 global.tune.options &= ~GTUNE_USE_REUSEPORT;
1632#endif
Emeric Brun850efd52014-01-29 12:24:34 +01001633 else if (*flag == 'd' && flag[1] == 'V')
1634 global.ssl_server_verify = SSL_SERVER_VERIFY_NONE;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001635 else if (*flag == 'V')
1636 arg_mode |= MODE_VERBOSE;
Erwan Le Goasb0c05012022-09-14 17:51:55 +02001637 else if (*flag == 'd' && flag[1] == 'C') {
1638 arg_mode |= MODE_DUMP_CFG;
1639 HA_ATOMIC_STORE(&global.anon_key, atoll(flag + 2));
1640 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001641 else if (*flag == 'd' && flag[1] == 'b')
1642 arg_mode |= MODE_FOREGROUND;
Amaury Denoyelle7b01a8d2021-03-29 10:29:07 +02001643 else if (*flag == 'd' && flag[1] == 'D')
1644 arg_mode |= MODE_DIAG;
Willy Tarreau3eb10b82020-04-15 16:42:39 +02001645 else if (*flag == 'd' && flag[1] == 'W')
1646 arg_mode |= MODE_ZERO_WARNING;
Willy Tarreauef301b72022-02-23 14:15:18 +01001647 else if (*flag == 'd' && flag[1] == 'M') {
Willy Tarreau1408b1f2022-02-18 18:54:40 +01001648 int ret = pool_parse_debugging(flag + 2, &err_msg);
1649
1650 if (ret <= -1) {
1651 if (ret < -1)
1652 ha_alert("-dM: %s\n", err_msg);
1653 else
1654 printf("%s\n", err_msg);
1655 ha_free(&err_msg);
1656 exit(ret < -1 ? EXIT_FAILURE : 0);
1657 } else if (ret == 0) {
1658 ha_warning("-dM: %s\n", err_msg);
1659 ha_free(&err_msg);
1660 }
Willy Tarreauef301b72022-02-23 14:15:18 +01001661 }
Willy Tarreau3eed10e2016-11-07 21:03:16 +01001662 else if (*flag == 'd' && flag[1] == 'r')
1663 global.tune.options |= GTUNE_RESOLVE_DONTFAIL;
Willy Tarreau654726d2021-12-28 15:43:11 +01001664#if defined(HA_HAVE_DUMP_LIBS)
1665 else if (*flag == 'd' && flag[1] == 'L')
1666 arg_mode |= MODE_DUMP_LIBS;
1667#endif
Willy Tarreau76871a42022-03-08 16:01:40 +01001668 else if (*flag == 'd' && flag[1] == 'K') {
1669 arg_mode |= MODE_DUMP_KWD;
1670 kwd_dump = flag + 2;
1671 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001672 else if (*flag == 'd')
1673 arg_mode |= MODE_DEBUG;
Maximilian Maderfc0cceb2021-06-06 00:50:22 +02001674 else if (*flag == 'c' && flag[1] == 'c') {
1675 arg_mode |= MODE_CHECK_CONDITION;
1676 argv++;
1677 argc--;
1678 check_condition = *argv;
1679 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001680 else if (*flag == 'c')
1681 arg_mode |= MODE_CHECK;
William Lallemand095ba4c2017-06-01 17:38:50 +02001682 else if (*flag == 'D')
Willy Tarreau6bde87b2009-05-18 16:29:51 +02001683 arg_mode |= MODE_DAEMON;
Tim Duesterhusd6942c82017-11-20 15:58:35 +01001684 else if (*flag == 'W' && flag[1] == 's') {
Lukas Tribusf46bf952017-11-21 12:39:34 +01001685 arg_mode |= MODE_MWORKER | MODE_FOREGROUND;
Tim Duesterhusd6942c82017-11-20 15:58:35 +01001686#if defined(USE_SYSTEMD)
1687 global.tune.options |= GTUNE_USE_SYSTEMD;
1688#else
Christopher Faulet767a84b2017-11-24 16:50:31 +01001689 ha_alert("master-worker mode with systemd support (-Ws) requested, but not compiled. Use master-worker mode (-W) if you are not using Type=notify in your unit file or recompile with USE_SYSTEMD=1.\n\n");
Tim Duesterhusd6942c82017-11-20 15:58:35 +01001690 usage(progname);
1691#endif
1692 }
William Lallemand095ba4c2017-06-01 17:38:50 +02001693 else if (*flag == 'W')
1694 arg_mode |= MODE_MWORKER;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001695 else if (*flag == 'q')
1696 arg_mode |= MODE_QUIET;
Olivier Houchardf73629d2017-04-05 22:33:04 +02001697 else if (*flag == 'x') {
William Lallemand4f71d302020-06-04 23:41:29 +02001698 if (argc <= 1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001699 ha_alert("Unix socket path expected with the -x flag\n\n");
William Lallemand45eff442017-06-19 15:57:55 +02001700 usage(progname);
Olivier Houchardf73629d2017-04-05 22:33:04 +02001701 }
William Lallemand4fc09692017-06-19 16:37:19 +02001702 if (old_unixsocket)
Christopher Faulet767a84b2017-11-24 16:50:31 +01001703 ha_warning("-x option already set, overwriting the value\n");
Olivier Houchardf73629d2017-04-05 22:33:04 +02001704 old_unixsocket = argv[1];
William Lallemand4fc09692017-06-19 16:37:19 +02001705
Olivier Houchardf73629d2017-04-05 22:33:04 +02001706 argv++;
1707 argc--;
1708 }
William Lallemande7361152018-10-26 14:47:36 +02001709 else if (*flag == 'S') {
1710 struct wordlist *c;
1711
William Lallemanda6b32492020-06-04 23:49:20 +02001712 if (argc <= 1) {
William Lallemande7361152018-10-26 14:47:36 +02001713 ha_alert("Socket and optional bind parameters expected with the -S flag\n");
1714 usage(progname);
1715 }
1716 if ((c = malloc(sizeof(*c))) == NULL || (c->s = strdup(argv[1])) == NULL) {
1717 ha_alert("Cannot allocate memory\n");
1718 exit(EXIT_FAILURE);
1719 }
Willy Tarreau2b718102021-04-21 07:32:39 +02001720 LIST_INSERT(&mworker_cli_conf, &c->list);
William Lallemande7361152018-10-26 14:47:36 +02001721
1722 argv++;
1723 argc--;
1724 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001725 else if (*flag == 's' && (flag[1] == 'f' || flag[1] == 't')) {
1726 /* list of pids to finish ('f') or terminate ('t') */
1727
1728 if (flag[1] == 'f')
1729 oldpids_sig = SIGUSR1; /* finish then exit */
1730 else
1731 oldpids_sig = SIGTERM; /* terminate immediately */
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001732 while (argc > 1 && argv[1][0] != '-') {
Chris Lane236062f2018-02-05 23:15:44 +00001733 char * endptr = NULL;
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001734 oldpids = realloc(oldpids, (nb_oldpids + 1) * sizeof(int));
1735 if (!oldpids) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001736 ha_alert("Cannot allocate old pid : out of memory.\n");
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001737 exit(1);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001738 }
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001739 argc--; argv++;
Chris Lane236062f2018-02-05 23:15:44 +00001740 errno = 0;
1741 oldpids[nb_oldpids] = strtol(*argv, &endptr, 10);
1742 if (errno) {
1743 ha_alert("-%2s option: failed to parse {%s}: %s\n",
1744 flag,
1745 *argv, strerror(errno));
1746 exit(1);
1747 } else if (endptr && strlen(endptr)) {
Willy Tarreau90807112020-02-25 08:16:33 +01001748 while (isspace((unsigned char)*endptr)) endptr++;
Aurélien Nephtali39b89882018-02-17 20:53:11 +01001749 if (*endptr != 0) {
Chris Lane236062f2018-02-05 23:15:44 +00001750 ha_alert("-%2s option: some bytes unconsumed in PID list {%s}\n",
1751 flag, endptr);
1752 exit(1);
Aurélien Nephtali39b89882018-02-17 20:53:11 +01001753 }
Chris Lane236062f2018-02-05 23:15:44 +00001754 }
Willy Tarreauc6ca1aa2015-10-08 11:32:32 +02001755 if (oldpids[nb_oldpids] <= 0)
1756 usage(progname);
1757 nb_oldpids++;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001758 }
1759 }
Willy Tarreaua088d312015-10-08 11:58:48 +02001760 else if (flag[0] == '-' && flag[1] == 0) { /* "--" */
1761 /* now that's a cfgfile list */
1762 argv++; argc--;
1763 while (argc > 0) {
Maxime de Roucy0f503922016-05-13 23:52:55 +02001764 if (!list_append_word(&cfg_cfgfiles, *argv, &err_msg)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001765 ha_alert("Cannot load configuration file/directory %s : %s\n",
1766 *argv,
1767 err_msg);
Willy Tarreaua088d312015-10-08 11:58:48 +02001768 exit(1);
1769 }
Willy Tarreaua088d312015-10-08 11:58:48 +02001770 argv++; argc--;
1771 }
1772 break;
1773 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02001774 else { /* >=2 args */
1775 argv++; argc--;
1776 if (argc == 0)
Willy Tarreau3bafcdc2011-09-10 19:20:23 +02001777 usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001778
1779 switch (*flag) {
Willy Tarreau576132e2011-09-10 19:26:56 +02001780 case 'C' : change_dir = *argv; break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001781 case 'n' : cfg_maxconn = atol(*argv); break;
Willy Tarreau70060452015-12-14 12:46:07 +01001782 case 'm' : global.rlimit_memmax_all = atol(*argv); break;
Willy Tarreaubaaee002006-06-26 02:48:02 +02001783 case 'N' : cfg_maxpconn = atol(*argv); break;
William Lallemanddaf4cd22018-04-17 16:46:13 +02001784 case 'L' :
Dragan Dosen4f014152020-06-18 16:56:47 +02001785 free(localpeer);
1786 if ((localpeer = strdup(*argv)) == NULL) {
1787 ha_alert("Cannot allocate memory for local peer.\n");
1788 exit(EXIT_FAILURE);
1789 }
William Lallemanddaf4cd22018-04-17 16:46:13 +02001790 setenv("HAPROXY_LOCALPEER", localpeer, 1);
Dragan Dosen13cd54c2020-06-18 18:24:05 +02001791 global.localpeer_cmdline = 1;
William Lallemanddaf4cd22018-04-17 16:46:13 +02001792 break;
Willy Tarreau5d01a632009-06-22 16:02:30 +02001793 case 'f' :
Maxime de Roucy0f503922016-05-13 23:52:55 +02001794 if (!list_append_word(&cfg_cfgfiles, *argv, &err_msg)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001795 ha_alert("Cannot load configuration file/directory %s : %s\n",
1796 *argv,
1797 err_msg);
Willy Tarreau5d01a632009-06-22 16:02:30 +02001798 exit(1);
1799 }
Willy Tarreau5d01a632009-06-22 16:02:30 +02001800 break;
Willy Tarreau392524d2022-02-17 18:10:36 +01001801 case 'p' :
1802 free(global.pidfile);
1803 if ((global.pidfile = strdup(*argv)) == NULL) {
1804 ha_alert("Cannot allocate memory for pidfile.\n");
1805 exit(EXIT_FAILURE);
1806 }
1807 break;
Willy Tarreau3bafcdc2011-09-10 19:20:23 +02001808 default: usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001809 }
1810 }
1811 }
1812 else
Willy Tarreau3bafcdc2011-09-10 19:20:23 +02001813 usage(progname);
Willy Tarreaubaaee002006-06-26 02:48:02 +02001814 argv++; argc--;
1815 }
Willy Tarreau392524d2022-02-17 18:10:36 +01001816 free(err_msg);
1817}
1818
Willy Tarreau76871a42022-03-08 16:01:40 +01001819/* call the various keyword dump functions based on the comma-delimited list of
1820 * classes in kwd_dump.
1821 */
1822static void dump_registered_keywords(void)
1823{
1824 char *end;
1825 int all __maybe_unused = 0;
1826
1827 for (; kwd_dump && *kwd_dump; kwd_dump = end) {
1828 end = strchr(kwd_dump, ',');
1829 if (end)
1830 *(end++) = 0;
1831
1832 if (strcmp(kwd_dump, "help") == 0) {
1833 printf("# List of supported keyword classes:\n");
1834 printf("all: list all keywords\n");
Willy Tarreau6ff7d1b2022-03-29 15:36:56 +02001835 printf("acl: ACL keywords\n");
Willy Tarreauca1acd62022-03-29 15:02:44 +02001836 printf("cfg: configuration keywords\n");
Willy Tarreau06d0e2e2022-03-29 15:25:30 +02001837 printf("cli: CLI keywords\n");
Willy Tarreau29d799d2022-03-29 16:59:49 +02001838 printf("cnv: sample converter keywords\n");
Willy Tarreau3b65e142022-03-29 15:03:09 +02001839 printf("flt: filter names\n");
Willy Tarreauf78813f2022-03-29 16:51:29 +02001840 printf("smp: sample fetch functions\n");
Willy Tarreau5fcc1002022-03-29 15:10:44 +02001841 printf("svc: service names\n");
Willy Tarreau76871a42022-03-08 16:01:40 +01001842 continue;
1843 }
1844 else if (strcmp(kwd_dump, "all") == 0) {
1845 all = 1;
1846 }
Willy Tarreauca1acd62022-03-29 15:02:44 +02001847
Willy Tarreau6ff7d1b2022-03-29 15:36:56 +02001848 if (all || strcmp(kwd_dump, "acl") == 0) {
1849 printf("# List of registered ACL keywords:\n");
1850 acl_dump_kwd();
1851 }
1852
Willy Tarreauca1acd62022-03-29 15:02:44 +02001853 if (all || strcmp(kwd_dump, "cfg") == 0) {
1854 printf("# List of registered configuration keywords:\n");
1855 cfg_dump_registered_keywords();
1856 }
Willy Tarreau3b65e142022-03-29 15:03:09 +02001857
Willy Tarreau06d0e2e2022-03-29 15:25:30 +02001858 if (all || strcmp(kwd_dump, "cli") == 0) {
1859 printf("# List of registered CLI keywords:\n");
1860 cli_list_keywords();
1861 }
1862
Willy Tarreau29d799d2022-03-29 16:59:49 +02001863 if (all || strcmp(kwd_dump, "cnv") == 0) {
1864 printf("# List of registered sample converter functions:\n");
1865 smp_dump_conv_kw();
1866 }
1867
Willy Tarreau3b65e142022-03-29 15:03:09 +02001868 if (all || strcmp(kwd_dump, "flt") == 0) {
1869 printf("# List of registered filter names:\n");
1870 flt_dump_kws(NULL);
1871 }
Willy Tarreau5fcc1002022-03-29 15:10:44 +02001872
Willy Tarreauf78813f2022-03-29 16:51:29 +02001873 if (all || strcmp(kwd_dump, "smp") == 0) {
1874 printf("# List of registered sample fetch functions:\n");
1875 smp_dump_fetch_kw();
1876 }
1877
Willy Tarreau5fcc1002022-03-29 15:10:44 +02001878 if (all || strcmp(kwd_dump, "svc") == 0) {
1879 printf("# List of registered service names:\n");
1880 list_services(NULL);
1881 }
Willy Tarreau76871a42022-03-08 16:01:40 +01001882 }
1883}
1884
Willy Tarreau392524d2022-02-17 18:10:36 +01001885/*
1886 * This function initializes all the necessary variables. It only returns
1887 * if everything is OK. If something fails, it exits.
1888 */
1889static void init(int argc, char **argv)
1890{
1891 char *progname = global.log_tag.area;
1892 int err_code = 0;
1893 struct wordlist *wl;
1894 struct proxy *px;
1895 struct post_check_fct *pcf;
William Lallemandb53eb872022-04-21 18:02:53 +02001896 struct pre_check_fct *prcf;
Willy Tarreau392524d2022-02-17 18:10:36 +01001897 int ideal_maxconn;
1898
1899 if (!init_trash_buffers(1)) {
1900 ha_alert("failed to initialize trash buffers.\n");
1901 exit(1);
1902 }
1903
1904 if (init_acl() != 0)
1905 exit(1);
1906
1907 /* Initialise lua. */
1908 hlua_init();
Willy Tarreaubaaee002006-06-26 02:48:02 +02001909
Christopher Faulete3a5e352017-10-24 13:53:54 +02001910 global.mode |= (arg_mode & (MODE_DAEMON | MODE_MWORKER | MODE_FOREGROUND | MODE_VERBOSE
Amaury Denoyelle7b01a8d2021-03-29 10:29:07 +02001911 | MODE_QUIET | MODE_CHECK | MODE_DEBUG | MODE_ZERO_WARNING
Erwan Le Goasb0c05012022-09-14 17:51:55 +02001912 | MODE_DIAG | MODE_CHECK_CONDITION | MODE_DUMP_LIBS | MODE_DUMP_KWD | MODE_DUMP_CFG));
Willy Tarreaubaaee002006-06-26 02:48:02 +02001913
William Lallemand944e6192018-11-21 15:48:31 +01001914 if (getenv("HAPROXY_MWORKER_WAIT_ONLY")) {
William Lallemandcb11fd22017-06-01 17:38:52 +02001915 unsetenv("HAPROXY_MWORKER_WAIT_ONLY");
William Lallemand944e6192018-11-21 15:48:31 +01001916 global.mode |= MODE_MWORKER_WAIT;
1917 global.mode &= ~MODE_MWORKER;
William Lallemandcb11fd22017-06-01 17:38:52 +02001918 }
1919
Willy Tarreau26146192021-07-21 10:01:36 +02001920 if ((global.mode & (MODE_MWORKER | MODE_CHECK | MODE_CHECK_CONDITION)) == MODE_MWORKER &&
1921 (getenv("HAPROXY_MWORKER_REEXEC") != NULL)) {
William Lallemandcb11fd22017-06-01 17:38:52 +02001922 atexit_flag = 1;
1923 atexit(reexec_on_failure);
1924 }
1925
Willy Tarreau576132e2011-09-10 19:26:56 +02001926 if (change_dir && chdir(change_dir) < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01001927 ha_alert("Could not change to directory %s : %s\n", change_dir, strerror(errno));
Willy Tarreau576132e2011-09-10 19:26:56 +02001928 exit(1);
1929 }
1930
Amaury Denoyelle11124302021-06-04 18:22:08 +02001931 usermsgs_clr("config");
1932
Maximilian Maderfc0cceb2021-06-06 00:50:22 +02001933 if (global.mode & MODE_CHECK_CONDITION) {
1934 int result;
1935
1936 uint32_t err;
1937 const char *errptr;
1938 char *errmsg = NULL;
1939
1940 char *args[MAX_LINE_ARGS+1];
1941 int arg = sizeof(args) / sizeof(*args);
William Lallemand89e236f2022-05-06 17:22:36 +02001942 size_t outlen;
Willy Tarreauc8194c32021-07-16 16:38:58 +02001943 char *w;
Maximilian Maderfc0cceb2021-06-06 00:50:22 +02001944
William Lallemand89e236f2022-05-06 17:22:36 +02001945 if (!check_condition)
1946 usage(progname);
1947
1948 outlen = strlen(check_condition) + 1;
Maximilian Maderfc0cceb2021-06-06 00:50:22 +02001949 err = parse_line(check_condition, check_condition, &outlen, args, &arg,
Willy Tarreaua87e7822021-07-16 19:14:54 +02001950 PARSE_OPT_ENV | PARSE_OPT_WORD_EXPAND | PARSE_OPT_DQUOTE | PARSE_OPT_SQUOTE | PARSE_OPT_BKSLASH,
Maximilian Maderfc0cceb2021-06-06 00:50:22 +02001951 &errptr);
1952
1953 if (err & PARSE_ERR_QUOTE) {
1954 ha_alert("Syntax Error in condition: Unmatched quote.\n");
1955 exit(2);
1956 }
1957
1958 if (err & PARSE_ERR_HEX) {
1959 ha_alert("Syntax Error in condition: Truncated or invalid hexadecimal sequence.\n");
1960 exit(2);
1961 }
1962
1963 if (err & (PARSE_ERR_TOOLARGE|PARSE_ERR_OVERLAP)) {
1964 ha_alert("Error in condition: Line too long.\n");
1965 exit(2);
1966 }
1967
Willy Tarreauc8194c32021-07-16 16:38:58 +02001968 if (err & PARSE_ERR_TOOMANY) {
Maximilian Maderfc0cceb2021-06-06 00:50:22 +02001969 ha_alert("Error in condition: Too many words.\n");
1970 exit(2);
1971 }
1972
1973 if (err) {
1974 ha_alert("Unhandled error in condition, please report this to the developers.\n");
1975 exit(2);
1976 }
1977
Willy Tarreauc8194c32021-07-16 16:38:58 +02001978 /* remerge all words into a single expression */
1979 for (w = *args; (w += strlen(w)) < check_condition + outlen - 1; *w = ' ')
1980 ;
1981
Maximilian Maderfc0cceb2021-06-06 00:50:22 +02001982 result = cfg_eval_condition(args, &errmsg, &errptr);
1983
1984 if (result < 0) {
1985 if (errmsg)
1986 ha_alert("Failed to evaluate condition: %s\n", errmsg);
1987
1988 exit(2);
1989 }
1990
1991 exit(result ? 0 : 1);
1992 }
1993
William Lallemand944e6192018-11-21 15:48:31 +01001994 /* in wait mode, we don't try to read the configuration files */
1995 if (!(global.mode & MODE_MWORKER_WAIT)) {
Christopher Faulet4e366822021-01-12 18:57:38 +01001996 char *env_cfgfiles = NULL;
1997 int env_err = 0;
Willy Tarreauc4382422009-12-06 13:10:44 +01001998
William Lallemand944e6192018-11-21 15:48:31 +01001999 /* handle cfgfiles that are actually directories */
2000 cfgfiles_expand_directories();
2001
2002 if (LIST_ISEMPTY(&cfg_cfgfiles))
2003 usage(progname);
2004
2005
2006 list_for_each_entry(wl, &cfg_cfgfiles, list) {
2007 int ret;
2008
Christopher Faulet4e366822021-01-12 18:57:38 +01002009 if (env_err == 0) {
2010 if (!memprintf(&env_cfgfiles, "%s%s%s",
2011 (env_cfgfiles ? env_cfgfiles : ""),
2012 (env_cfgfiles ? ";" : ""), wl->s))
2013 env_err = 1;
2014 }
William Lallemand7b302d82019-05-20 11:15:37 +02002015
William Lallemand944e6192018-11-21 15:48:31 +01002016 ret = readcfgfile(wl->s);
2017 if (ret == -1) {
2018 ha_alert("Could not open configuration file %s : %s\n",
2019 wl->s, strerror(errno));
Christopher Faulet4e366822021-01-12 18:57:38 +01002020 free(env_cfgfiles);
William Lallemand944e6192018-11-21 15:48:31 +01002021 exit(1);
2022 }
2023 if (ret & (ERR_ABORT|ERR_FATAL))
2024 ha_alert("Error(s) found in configuration file : %s\n", wl->s);
2025 err_code |= ret;
Christopher Faulet4e366822021-01-12 18:57:38 +01002026 if (err_code & ERR_ABORT) {
2027 free(env_cfgfiles);
William Lallemand944e6192018-11-21 15:48:31 +01002028 exit(1);
Christopher Faulet4e366822021-01-12 18:57:38 +01002029 }
Willy Tarreauc4382422009-12-06 13:10:44 +01002030 }
Krzysztof Oledzkib304dc72007-10-14 23:40:01 +02002031
William Lallemand944e6192018-11-21 15:48:31 +01002032 /* do not try to resolve arguments nor to spot inconsistencies when
2033 * the configuration contains fatal errors caused by files not found
2034 * or failed memory allocations.
2035 */
2036 if (err_code & (ERR_ABORT|ERR_FATAL)) {
2037 ha_alert("Fatal errors found in configuration.\n");
Christopher Faulet4e366822021-01-12 18:57:38 +01002038 free(env_cfgfiles);
William Lallemand944e6192018-11-21 15:48:31 +01002039 exit(1);
2040 }
Christopher Faulet4e366822021-01-12 18:57:38 +01002041 if (env_err) {
2042 ha_alert("Could not allocate memory for HAPROXY_CFGFILES env variable\n");
2043 exit(1);
2044 }
2045 setenv("HAPROXY_CFGFILES", env_cfgfiles, 1);
2046 free(env_cfgfiles);
William Lallemand7b302d82019-05-20 11:15:37 +02002047
Willy Tarreaub83dc3d2017-04-19 11:24:07 +02002048 }
William Lallemandce83b4a2018-10-26 14:47:30 +02002049 if (global.mode & MODE_MWORKER) {
William Lallemand16dd1b32018-11-19 18:46:18 +01002050 struct mworker_proc *tmproc;
2051
William Lallemand482f9a92019-04-12 16:15:00 +02002052 setenv("HAPROXY_MWORKER", "1", 1);
2053
William Lallemand16dd1b32018-11-19 18:46:18 +01002054 if (getenv("HAPROXY_MWORKER_REEXEC") == NULL) {
2055
William Lallemand56be0e02022-01-28 21:11:41 +01002056 tmproc = mworker_proc_new();
William Lallemand16dd1b32018-11-19 18:46:18 +01002057 if (!tmproc) {
2058 ha_alert("Cannot allocate process structures.\n");
2059 exit(EXIT_FAILURE);
2060 }
William Lallemand8f7069a2019-04-12 16:09:23 +02002061 tmproc->options |= PROC_O_TYPE_MASTER; /* master */
William Lallemand16dd1b32018-11-19 18:46:18 +01002062 tmproc->pid = pid;
2063 tmproc->timestamp = start_date.tv_sec;
William Lallemand16dd1b32018-11-19 18:46:18 +01002064 proc_self = tmproc;
2065
Willy Tarreau2b718102021-04-21 07:32:39 +02002066 LIST_APPEND(&proc_list, &tmproc->list);
William Lallemand16dd1b32018-11-19 18:46:18 +01002067 }
William Lallemandce83b4a2018-10-26 14:47:30 +02002068
William Lallemand56be0e02022-01-28 21:11:41 +01002069 tmproc = mworker_proc_new();
Willy Tarreau6185a032021-06-15 08:02:06 +02002070 if (!tmproc) {
2071 ha_alert("Cannot allocate process structures.\n");
2072 exit(EXIT_FAILURE);
2073 }
Willy Tarreau6185a032021-06-15 08:02:06 +02002074 tmproc->options |= PROC_O_TYPE_WORKER; /* worker */
William Lallemandce83b4a2018-10-26 14:47:30 +02002075
Willy Tarreau6185a032021-06-15 08:02:06 +02002076 if (mworker_cli_sockpair_new(tmproc, 0) < 0) {
2077 exit(EXIT_FAILURE);
William Lallemandce83b4a2018-10-26 14:47:30 +02002078 }
Willy Tarreau6185a032021-06-15 08:02:06 +02002079
2080 LIST_APPEND(&proc_list, &tmproc->list);
William Lallemand944e6192018-11-21 15:48:31 +01002081 }
Willy Tarreau53bfac82022-07-22 17:35:49 +02002082
2083 if (global.mode & MODE_MWORKER_WAIT) {
2084 /* in exec mode, there's always exactly one thread. Failure to
2085 * set these ones now will result in nbthread being detected
2086 * automatically.
2087 */
2088 global.nbtgroups = 1;
2089 global.nbthread = 1;
2090 }
2091
William Lallemand944e6192018-11-21 15:48:31 +01002092 if (global.mode & (MODE_MWORKER|MODE_MWORKER_WAIT)) {
2093 struct wordlist *it, *c;
2094
Remi Tricot-Le Breton1f4fa902021-05-19 10:45:12 +02002095 /* get the info of the children in the env */
2096 if (mworker_env_to_proc_list() < 0) {
2097 exit(EXIT_FAILURE);
2098 }
William Lallemande7361152018-10-26 14:47:36 +02002099
William Lallemand550db6d2018-11-06 17:37:12 +01002100 if (!LIST_ISEMPTY(&mworker_cli_conf)) {
William Lallemande7361152018-10-26 14:47:36 +02002101
William Lallemand550db6d2018-11-06 17:37:12 +01002102 if (mworker_cli_proxy_create() < 0) {
William Lallemande7361152018-10-26 14:47:36 +02002103 ha_alert("Can't create the master's CLI.\n");
2104 exit(EXIT_FAILURE);
2105 }
William Lallemande7361152018-10-26 14:47:36 +02002106
William Lallemand550db6d2018-11-06 17:37:12 +01002107 list_for_each_entry_safe(c, it, &mworker_cli_conf, list) {
2108
2109 if (mworker_cli_proxy_new_listener(c->s) < 0) {
2110 ha_alert("Can't create the master's CLI.\n");
2111 exit(EXIT_FAILURE);
2112 }
Willy Tarreau2b718102021-04-21 07:32:39 +02002113 LIST_DELETE(&c->list);
William Lallemand550db6d2018-11-06 17:37:12 +01002114 free(c->s);
2115 free(c);
2116 }
2117 }
William Lallemandce83b4a2018-10-26 14:47:30 +02002118 }
2119
Eric Salama5ba83352021-03-16 15:11:17 +01002120 if (!LIST_ISEMPTY(&mworker_cli_conf) && !(arg_mode & MODE_MWORKER)) {
2121 ha_warning("a master CLI socket was defined, but master-worker mode (-W) is not enabled.\n");
2122 }
2123
Christopher Faulet27c8d202021-10-13 09:50:53 +02002124 /* destroy unreferenced defaults proxies */
2125 proxy_destroy_all_unref_defaults();
2126
William Lallemandb53eb872022-04-21 18:02:53 +02002127 list_for_each_entry(prcf, &pre_check_list, list)
2128 err_code |= prcf->fct();
Willy Tarreaue90904d2021-02-12 14:08:31 +01002129
William Lallemand8b9a2df2022-05-04 14:29:46 +02002130 if (err_code & (ERR_ABORT|ERR_FATAL)) {
2131 ha_alert("Fatal errors found in configuration.\n");
2132 exit(1);
2133 }
2134
Willy Tarreaubb925012009-07-23 13:36:36 +02002135 err_code |= check_config_validity();
Christopher Fauletc1692962019-08-12 09:51:07 +02002136 for (px = proxies_list; px; px = px->next) {
2137 struct server *srv;
2138 struct post_proxy_check_fct *ppcf;
2139 struct post_server_check_fct *pscf;
2140
Christopher Fauletdfd10ab2021-10-06 14:24:19 +02002141 if (px->flags & (PR_FL_DISABLED|PR_FL_STOPPED))
Christopher Fauletd5bd8242020-11-02 16:20:13 +01002142 continue;
2143
Christopher Fauletc1692962019-08-12 09:51:07 +02002144 list_for_each_entry(pscf, &post_server_check_list, list) {
2145 for (srv = px->srv; srv; srv = srv->next)
2146 err_code |= pscf->fct(srv);
2147 }
2148 list_for_each_entry(ppcf, &post_proxy_check_list, list)
2149 err_code |= ppcf->fct(px);
2150 }
Willy Tarreaubb925012009-07-23 13:36:36 +02002151 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002152 ha_alert("Fatal errors found in configuration.\n");
Willy Tarreau915e1eb2009-06-22 15:48:36 +02002153 exit(1);
2154 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02002155
Carl Henrik Lundef91ac192020-02-27 16:45:50 +01002156 err_code |= pattern_finalize_config();
2157 if (err_code & (ERR_ABORT|ERR_FATAL)) {
2158 ha_alert("Failed to finalize pattern config.\n");
2159 exit(1);
2160 }
Willy Tarreau0f936722019-04-11 14:47:08 +02002161
Willy Tarreau79c9bdf2021-07-17 12:31:08 +02002162 if (global.rlimit_memmax_all)
2163 global.rlimit_memmax = global.rlimit_memmax_all;
2164
Willy Tarreaue5733232019-05-22 19:24:06 +02002165#ifdef USE_NS
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +01002166 err_code |= netns_init();
2167 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002168 ha_alert("Failed to initialize namespace support.\n");
KOVACS Krisztianb3e54fe2014-11-17 15:11:45 +01002169 exit(1);
2170 }
2171#endif
2172
Baptiste Assmann4215d7d2016-11-02 15:33:15 +01002173 /* Apply server states */
2174 apply_server_state();
2175
Olivier Houchardfbc74e82017-11-24 16:54:05 +01002176 for (px = proxies_list; px; px = px->next)
Baptiste Assmann4215d7d2016-11-02 15:33:15 +01002177 srv_compute_all_admin_states(px);
2178
Baptiste Assmann83cbaa52016-11-02 15:34:05 +01002179 /* Apply servers' configured address */
2180 err_code |= srv_init_addr();
2181 if (err_code & (ERR_ABORT|ERR_FATAL)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002182 ha_alert("Failed to initialize server(s) addr.\n");
Baptiste Assmann83cbaa52016-11-02 15:34:05 +01002183 exit(1);
2184 }
2185
Willy Tarreau3eb10b82020-04-15 16:42:39 +02002186 if (warned & WARN_ANY && global.mode & MODE_ZERO_WARNING) {
2187 ha_alert("Some warnings were found and 'zero-warning' is set. Aborting.\n");
2188 exit(1);
2189 }
2190
Willy Tarreau654726d2021-12-28 15:43:11 +01002191#if defined(HA_HAVE_DUMP_LIBS)
2192 if (global.mode & MODE_DUMP_LIBS) {
2193 qfprintf(stdout, "List of loaded object files:\n");
2194 chunk_reset(&trash);
2195 if (dump_libs(&trash, 0))
2196 printf("%s", trash.area);
2197 }
2198#endif
2199
Willy Tarreau76871a42022-03-08 16:01:40 +01002200 if (global.mode & MODE_DUMP_KWD)
2201 dump_registered_keywords();
2202
Willy Tarreaubaaee002006-06-26 02:48:02 +02002203 if (global.mode & MODE_CHECK) {
Willy Tarreau8b15ba12012-02-02 17:48:18 +01002204 struct peers *pr;
2205 struct proxy *px;
2206
Willy Tarreaubebd2122020-04-15 16:06:11 +02002207 if (warned & WARN_ANY)
2208 qfprintf(stdout, "Warnings were found.\n");
2209
Frédéric Lécailleed2b4a62017-07-13 09:07:09 +02002210 for (pr = cfg_peers; pr; pr = pr->next)
Willy Tarreau8b15ba12012-02-02 17:48:18 +01002211 if (pr->peers_fe)
2212 break;
2213
Olivier Houchardfbc74e82017-11-24 16:54:05 +01002214 for (px = proxies_list; px; px = px->next)
Christopher Fauletdfd10ab2021-10-06 14:24:19 +02002215 if (!(px->flags & (PR_FL_DISABLED|PR_FL_STOPPED)) && px->li_all)
Willy Tarreau8b15ba12012-02-02 17:48:18 +01002216 break;
2217
Emeric Brunbc5c8212021-08-13 09:32:50 +02002218 if (!px) {
2219 /* We may only have log-forward section */
2220 for (px = cfg_log_forward; px; px = px->next)
Christopher Fauletdfd10ab2021-10-06 14:24:19 +02002221 if (!(px->flags & (PR_FL_DISABLED|PR_FL_STOPPED)) && px->li_all)
Emeric Brunbc5c8212021-08-13 09:32:50 +02002222 break;
2223 }
2224
Willy Tarreau8b15ba12012-02-02 17:48:18 +01002225 if (pr || px) {
2226 /* At least one peer or one listener has been found */
2227 qfprintf(stdout, "Configuration file is valid\n");
Tim Duesterhus0a3b43d2020-06-14 00:37:42 +02002228 deinit_and_exit(0);
Willy Tarreau8b15ba12012-02-02 17:48:18 +01002229 }
2230 qfprintf(stdout, "Configuration file has no error but will not start (no listener) => exit(2).\n");
2231 exit(2);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002232 }
Willy Tarreaue9b26022011-08-01 20:57:55 +02002233
Erwan Le Goasb0c05012022-09-14 17:51:55 +02002234 if (global.mode & MODE_DUMP_CFG)
2235 deinit_and_exit(0);
2236
Amaury Denoyelle5a6926d2021-03-30 17:34:24 +02002237 if (global.mode & MODE_DIAG) {
2238 cfg_run_diagnostics();
2239 }
2240
Remi Tricot-Le Breton51944462022-05-16 16:24:31 +02002241#ifdef USE_OPENSSL
William Lallemand3b8bafd2022-07-19 18:13:29 +02002242 /* Initialize the error strings of OpenSSL */
2243 SSL_load_error_strings();
2244
Remi Tricot-Le Breton51944462022-05-16 16:24:31 +02002245 /* Initialize SSL random generator. Must be called before chroot for
2246 * access to /dev/urandom, and before ha_random_boot() which may use
2247 * RAND_bytes().
2248 */
2249 if (!ssl_initialize_random()) {
2250 ha_alert("OpenSSL random data generator initialization failed.\n");
2251 exit(EXIT_FAILURE);
2252 }
2253#endif
2254 ha_random_boot(argv); // the argv pointer brings some kernel-fed entropy
2255
Willy Tarreau8263d2b2012-08-28 00:06:31 +02002256 /* now we know the buffer size, we can initialize the channels and buffers */
Willy Tarreau9b28e032012-10-12 23:49:43 +02002257 init_buffer();
Willy Tarreau8280d642009-09-23 23:37:52 +02002258
Willy Tarreaue6945732016-12-21 19:57:00 +01002259 list_for_each_entry(pcf, &post_check_list, list) {
2260 err_code |= pcf->fct();
2261 if (err_code & (ERR_ABORT|ERR_FATAL))
2262 exit(1);
2263 }
2264
William Lallemand0a012aa2022-06-21 11:11:50 +02002265 /* set the default maxconn in the master, but let it be rewritable with -n */
2266 if (global.mode & MODE_MWORKER_WAIT)
2267 global.maxconn = DEFAULT_MAXCONN;
2268
Willy Tarreaubaaee002006-06-26 02:48:02 +02002269 if (cfg_maxconn > 0)
2270 global.maxconn = cfg_maxconn;
2271
Willy Tarreau4975d142021-03-13 11:00:33 +01002272 if (global.cli_fe)
2273 global.maxsock += global.cli_fe->maxconn;
Willy Tarreau8d687d82019-03-01 09:39:42 +01002274
2275 if (cfg_peers) {
2276 /* peers also need to bypass global maxconn */
2277 struct peers *p = cfg_peers;
2278
2279 for (p = cfg_peers; p; p = p->next)
2280 if (p->peers_fe)
2281 global.maxsock += p->peers_fe->maxconn;
2282 }
2283
Willy Tarreaud0256482015-01-15 21:45:22 +01002284 /* Now we want to compute the maxconn and possibly maxsslconn values.
Willy Tarreauac350932019-03-01 15:43:14 +01002285 * It's a bit tricky. Maxconn defaults to the pre-computed value based
2286 * on rlim_fd_cur and the number of FDs in use due to the configuration,
2287 * and maxsslconn defaults to DEFAULT_MAXSSLCONN. On top of that we can
2288 * enforce a lower limit based on memmax.
Willy Tarreaud0256482015-01-15 21:45:22 +01002289 *
2290 * If memmax is set, then it depends on which values are set. If
2291 * maxsslconn is set, we use memmax to determine how many cleartext
2292 * connections may be added, and set maxconn to the sum of the two.
2293 * If maxconn is set and not maxsslconn, maxsslconn is computed from
2294 * the remaining amount of memory between memmax and the cleartext
2295 * connections. If neither are set, then it is considered that all
2296 * connections are SSL-capable, and maxconn is computed based on this,
2297 * then maxsslconn accordingly. We need to know if SSL is used on the
2298 * frontends, backends, or both, because when it's used on both sides,
2299 * we need twice the value for maxsslconn, but we only count the
2300 * handshake once since it is not performed on the two sides at the
2301 * same time (frontend-side is terminated before backend-side begins).
2302 * The SSL stack is supposed to have filled ssl_session_cost and
Willy Tarreau474b96a2015-01-28 19:03:21 +01002303 * ssl_handshake_cost during its initialization. In any case, if
2304 * SYSTEM_MAXCONN is set, we still enforce it as an upper limit for
2305 * maxconn in order to protect the system.
Willy Tarreaud0256482015-01-15 21:45:22 +01002306 */
Willy Tarreauac350932019-03-01 15:43:14 +01002307 ideal_maxconn = compute_ideal_maxconn();
2308
Willy Tarreaud0256482015-01-15 21:45:22 +01002309 if (!global.rlimit_memmax) {
2310 if (global.maxconn == 0) {
Willy Tarreauac350932019-03-01 15:43:14 +01002311 global.maxconn = ideal_maxconn;
Willy Tarreaud0256482015-01-15 21:45:22 +01002312 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
2313 fprintf(stderr, "Note: setting global.maxconn to %d.\n", global.maxconn);
2314 }
2315 }
2316#ifdef USE_OPENSSL
2317 else if (!global.maxconn && !global.maxsslconn &&
2318 (global.ssl_used_frontend || global.ssl_used_backend)) {
2319 /* memmax is set, compute everything automatically. Here we want
2320 * to ensure that all SSL connections will be served. We take
2321 * care of the number of sides where SSL is used, and consider
2322 * the worst case : SSL used on both sides and doing a handshake
2323 * simultaneously. Note that we can't have more than maxconn
2324 * handshakes at a time by definition, so for the worst case of
2325 * two SSL conns per connection, we count a single handshake.
2326 */
2327 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
2328 int64_t mem = global.rlimit_memmax * 1048576ULL;
Willy Tarreau304e17e2020-03-10 17:54:54 +01002329 int retried = 0;
Willy Tarreaud0256482015-01-15 21:45:22 +01002330
Willy Tarreau2cb3be72022-05-24 07:43:57 +02002331 mem -= global.tune.sslcachesize * 200ULL; // about 200 bytes per SSL cache entry
Willy Tarreaud0256482015-01-15 21:45:22 +01002332 mem -= global.maxzlibmem;
2333 mem = mem * MEM_USABLE_RATIO;
2334
Willy Tarreau304e17e2020-03-10 17:54:54 +01002335 /* Principle: we test once to set maxconn according to the free
2336 * memory. If it results in values the system rejects, we try a
2337 * second time by respecting rlim_fd_max. If it fails again, we
2338 * go back to the initial value and will let the final code
2339 * dealing with rlimit report the error. That's up to 3 attempts.
2340 */
2341 do {
2342 global.maxconn = mem /
2343 ((STREAM_MAX_COST + 2 * global.tune.bufsize) + // stream + 2 buffers per stream
2344 sides * global.ssl_session_max_cost + // SSL buffers, one per side
2345 global.ssl_handshake_max_cost); // 1 handshake per connection max
Willy Tarreaud0256482015-01-15 21:45:22 +01002346
Willy Tarreau304e17e2020-03-10 17:54:54 +01002347 if (retried == 1)
2348 global.maxconn = MIN(global.maxconn, ideal_maxconn);
2349 global.maxconn = round_2dig(global.maxconn);
Willy Tarreau474b96a2015-01-28 19:03:21 +01002350#ifdef SYSTEM_MAXCONN
Willy Tarreau304e17e2020-03-10 17:54:54 +01002351 if (global.maxconn > SYSTEM_MAXCONN)
2352 global.maxconn = SYSTEM_MAXCONN;
Willy Tarreau474b96a2015-01-28 19:03:21 +01002353#endif /* SYSTEM_MAXCONN */
Willy Tarreau304e17e2020-03-10 17:54:54 +01002354 global.maxsslconn = sides * global.maxconn;
2355
2356 if (check_if_maxsock_permitted(compute_ideal_maxsock(global.maxconn)))
2357 break;
2358 } while (retried++ < 2);
2359
Willy Tarreaud0256482015-01-15 21:45:22 +01002360 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
2361 fprintf(stderr, "Note: setting global.maxconn to %d and global.maxsslconn to %d.\n",
2362 global.maxconn, global.maxsslconn);
2363 }
2364 else if (!global.maxsslconn &&
2365 (global.ssl_used_frontend || global.ssl_used_backend)) {
2366 /* memmax and maxconn are known, compute maxsslconn automatically.
2367 * maxsslconn being forced, we don't know how many of it will be
2368 * on each side if both sides are being used. The worst case is
2369 * when all connections use only one SSL instance because
2370 * handshakes may be on two sides at the same time.
2371 */
2372 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
2373 int64_t mem = global.rlimit_memmax * 1048576ULL;
2374 int64_t sslmem;
2375
Willy Tarreau8e5b9582022-05-26 08:55:05 +02002376 mem -= global.tune.sslcachesize * 200ULL; // about 200 bytes per SSL cache entry
Willy Tarreaud0256482015-01-15 21:45:22 +01002377 mem -= global.maxzlibmem;
2378 mem = mem * MEM_USABLE_RATIO;
2379
Willy Tarreau87b09662015-04-03 00:22:06 +02002380 sslmem = mem - global.maxconn * (int64_t)(STREAM_MAX_COST + 2 * global.tune.bufsize);
Willy Tarreaud0256482015-01-15 21:45:22 +01002381 global.maxsslconn = sslmem / (global.ssl_session_max_cost + global.ssl_handshake_max_cost);
2382 global.maxsslconn = round_2dig(global.maxsslconn);
2383
2384 if (sslmem <= 0 || global.maxsslconn < sides) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002385 ha_alert("Cannot compute the automatic maxsslconn because global.maxconn is already too "
2386 "high for the global.memmax value (%d MB). The absolute maximum possible value "
2387 "without SSL is %d, but %d was found and SSL is in use.\n",
2388 global.rlimit_memmax,
2389 (int)(mem / (STREAM_MAX_COST + 2 * global.tune.bufsize)),
2390 global.maxconn);
Willy Tarreaud0256482015-01-15 21:45:22 +01002391 exit(1);
2392 }
2393
2394 if (global.maxsslconn > sides * global.maxconn)
2395 global.maxsslconn = sides * global.maxconn;
2396
2397 if (global.mode & (MODE_VERBOSE|MODE_DEBUG))
2398 fprintf(stderr, "Note: setting global.maxsslconn to %d\n", global.maxsslconn);
2399 }
2400#endif
2401 else if (!global.maxconn) {
2402 /* memmax and maxsslconn are known/unused, compute maxconn automatically */
2403 int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend;
2404 int64_t mem = global.rlimit_memmax * 1048576ULL;
2405 int64_t clearmem;
Willy Tarreau304e17e2020-03-10 17:54:54 +01002406 int retried = 0;
Willy Tarreaud0256482015-01-15 21:45:22 +01002407
2408 if (global.ssl_used_frontend || global.ssl_used_backend)
Willy Tarreau8e5b9582022-05-26 08:55:05 +02002409 mem -= global.tune.sslcachesize * 200ULL; // about 200 bytes per SSL cache entry
Willy Tarreaud0256482015-01-15 21:45:22 +01002410
2411 mem -= global.maxzlibmem;
2412 mem = mem * MEM_USABLE_RATIO;
2413
2414 clearmem = mem;
2415 if (sides)
2416 clearmem -= (global.ssl_session_max_cost + global.ssl_handshake_max_cost) * (int64_t)global.maxsslconn;
2417
Willy Tarreau304e17e2020-03-10 17:54:54 +01002418 /* Principle: we test once to set maxconn according to the free
2419 * memory. If it results in values the system rejects, we try a
2420 * second time by respecting rlim_fd_max. If it fails again, we
2421 * go back to the initial value and will let the final code
2422 * dealing with rlimit report the error. That's up to 3 attempts.
2423 */
2424 do {
2425 global.maxconn = clearmem / (STREAM_MAX_COST + 2 * global.tune.bufsize);
2426 if (retried == 1)
2427 global.maxconn = MIN(global.maxconn, ideal_maxconn);
2428 global.maxconn = round_2dig(global.maxconn);
Willy Tarreau474b96a2015-01-28 19:03:21 +01002429#ifdef SYSTEM_MAXCONN
Willy Tarreau304e17e2020-03-10 17:54:54 +01002430 if (global.maxconn > SYSTEM_MAXCONN)
2431 global.maxconn = SYSTEM_MAXCONN;
Willy Tarreau474b96a2015-01-28 19:03:21 +01002432#endif /* SYSTEM_MAXCONN */
Willy Tarreaud0256482015-01-15 21:45:22 +01002433
Willy Tarreau304e17e2020-03-10 17:54:54 +01002434 if (clearmem <= 0 || !global.maxconn) {
2435 ha_alert("Cannot compute the automatic maxconn because global.maxsslconn is already too "
2436 "high for the global.memmax value (%d MB). The absolute maximum possible value "
2437 "is %d, but %d was found.\n",
2438 global.rlimit_memmax,
Christopher Faulet767a84b2017-11-24 16:50:31 +01002439 (int)(mem / (global.ssl_session_max_cost + global.ssl_handshake_max_cost)),
Willy Tarreau304e17e2020-03-10 17:54:54 +01002440 global.maxsslconn);
2441 exit(1);
2442 }
2443
2444 if (check_if_maxsock_permitted(compute_ideal_maxsock(global.maxconn)))
2445 break;
2446 } while (retried++ < 2);
Willy Tarreaud0256482015-01-15 21:45:22 +01002447
2448 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
2449 if (sides && global.maxsslconn > sides * global.maxconn) {
2450 fprintf(stderr, "Note: global.maxsslconn is forced to %d which causes global.maxconn "
2451 "to be limited to %d. Better reduce global.maxsslconn to get more "
2452 "room for extra connections.\n", global.maxsslconn, global.maxconn);
2453 }
2454 fprintf(stderr, "Note: setting global.maxconn to %d\n", global.maxconn);
2455 }
Willy Tarreau66aa61f2009-01-18 21:44:07 +01002456 }
2457
Willy Tarreaua409f302020-03-10 17:08:53 +01002458 global.maxsock = compute_ideal_maxsock(global.maxconn);
2459 global.hardmaxconn = global.maxconn;
Willy Tarreaua4818db2020-06-19 16:20:59 +02002460 if (!global.maxpipes)
2461 global.maxpipes = compute_ideal_maxpipes();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002462
Olivier Houchard88698d92019-04-16 19:07:22 +02002463 /* update connection pool thresholds */
2464 global.tune.pool_low_count = ((long long)global.maxsock * global.tune.pool_low_ratio + 99) / 100;
2465 global.tune.pool_high_count = ((long long)global.maxsock * global.tune.pool_high_ratio + 99) / 100;
2466
Willy Tarreauc8d5b952019-02-27 17:25:52 +01002467 proxy_adjust_all_maxconn();
2468
Willy Tarreau1db37712007-06-03 17:16:49 +02002469 if (global.tune.maxpollevents <= 0)
2470 global.tune.maxpollevents = MAX_POLL_EVENTS;
2471
Willy Tarreau060a7612021-03-10 11:06:26 +01002472 if (global.tune.runqueue_depth <= 0) {
2473 /* tests on various thread counts from 1 to 64 have shown an
2474 * optimal queue depth following roughly 1/sqrt(threads).
2475 */
2476 int s = my_flsl(global.nbthread);
2477 s += (global.nbthread / s); // roughly twice the sqrt.
2478 global.tune.runqueue_depth = RUNQUEUE_DEPTH * 2 / s;
2479 }
Olivier Houchard1599b802018-05-24 18:59:04 +02002480
Willy Tarreau6f4a82c2009-03-21 20:43:57 +01002481 if (global.tune.recv_enough == 0)
2482 global.tune.recv_enough = MIN_RECV_AT_ONCE_ENOUGH;
2483
Willy Tarreau27a674e2009-08-17 07:23:33 +02002484 if (global.tune.maxrewrite >= global.tune.bufsize / 2)
2485 global.tune.maxrewrite = global.tune.bufsize / 2;
2486
Amaury Denoyelle11124302021-06-04 18:22:08 +02002487 usermsgs_clr(NULL);
2488
Willy Tarreaubaaee002006-06-26 02:48:02 +02002489 if (arg_mode & (MODE_DEBUG | MODE_FOREGROUND)) {
2490 /* command line debug mode inhibits configuration mode */
William Lallemand095ba4c2017-06-01 17:38:50 +02002491 global.mode &= ~(MODE_DAEMON | MODE_QUIET);
Willy Tarreau772f0dd2012-10-26 16:04:28 +02002492 global.mode |= (arg_mode & (MODE_DEBUG | MODE_FOREGROUND));
2493 }
2494
William Lallemand095ba4c2017-06-01 17:38:50 +02002495 if (arg_mode & MODE_DAEMON) {
Willy Tarreau772f0dd2012-10-26 16:04:28 +02002496 /* command line daemon mode inhibits foreground and debug modes mode */
2497 global.mode &= ~(MODE_DEBUG | MODE_FOREGROUND);
William Lallemand095ba4c2017-06-01 17:38:50 +02002498 global.mode |= arg_mode & MODE_DAEMON;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002499 }
Willy Tarreau772f0dd2012-10-26 16:04:28 +02002500
2501 global.mode |= (arg_mode & (MODE_QUIET | MODE_VERBOSE));
Willy Tarreaubaaee002006-06-26 02:48:02 +02002502
William Lallemand095ba4c2017-06-01 17:38:50 +02002503 if ((global.mode & MODE_DEBUG) && (global.mode & (MODE_DAEMON | MODE_QUIET))) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002504 ha_warning("<debug> mode incompatible with <quiet> and <daemon>. Keeping <debug> only.\n");
William Lallemand095ba4c2017-06-01 17:38:50 +02002505 global.mode &= ~(MODE_DAEMON | MODE_QUIET);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002506 }
2507
Christopher Fauletbe0faa22017-08-29 15:37:10 +02002508 if (global.nbthread < 1)
2509 global.nbthread = 1;
2510
Christopher Faulet3ef26392017-08-29 16:46:57 +02002511 /* Realloc trash buffers because global.tune.bufsize may have changed */
Christopher Fauletcd7879a2017-10-27 13:53:47 +02002512 if (!init_trash_buffers(0)) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002513 ha_alert("failed to initialize trash buffers.\n");
Christopher Faulet3ef26392017-08-29 16:46:57 +02002514 exit(1);
2515 }
2516
Christopher Faulet96d44832017-11-14 22:02:30 +01002517 if (!init_log_buffers()) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002518 ha_alert("failed to initialize log buffers.\n");
Christopher Faulet96d44832017-11-14 22:02:30 +01002519 exit(1);
2520 }
2521
Willy Tarreauef1d1f82007-04-16 00:25:25 +02002522 /*
2523 * Note: we could register external pollers here.
2524 * Built-in pollers have been registered before main().
2525 */
Willy Tarreau4f60f162007-04-08 16:39:58 +02002526
Willy Tarreau43b78992009-01-25 15:42:27 +01002527 if (!(global.tune.options & GTUNE_USE_KQUEUE))
Willy Tarreau1e63130a2007-04-09 12:03:06 +02002528 disable_poller("kqueue");
2529
Emmanuel Hocdet0ba4f482019-04-08 16:53:32 +00002530 if (!(global.tune.options & GTUNE_USE_EVPORTS))
2531 disable_poller("evports");
2532
Willy Tarreau43b78992009-01-25 15:42:27 +01002533 if (!(global.tune.options & GTUNE_USE_EPOLL))
Willy Tarreau4f60f162007-04-08 16:39:58 +02002534 disable_poller("epoll");
2535
Willy Tarreau43b78992009-01-25 15:42:27 +01002536 if (!(global.tune.options & GTUNE_USE_POLL))
Willy Tarreau4f60f162007-04-08 16:39:58 +02002537 disable_poller("poll");
2538
Willy Tarreau43b78992009-01-25 15:42:27 +01002539 if (!(global.tune.options & GTUNE_USE_SELECT))
Willy Tarreau4f60f162007-04-08 16:39:58 +02002540 disable_poller("select");
2541
2542 /* Note: we could disable any poller by name here */
2543
Christopher Fauletb3f4e142016-03-07 12:46:38 +01002544 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
Willy Tarreau2ff76222007-04-09 19:29:56 +02002545 list_pollers(stderr);
Christopher Fauletb3f4e142016-03-07 12:46:38 +01002546 fprintf(stderr, "\n");
2547 list_filters(stderr);
2548 }
Willy Tarreau2ff76222007-04-09 19:29:56 +02002549
Willy Tarreau4f60f162007-04-08 16:39:58 +02002550 if (!init_pollers()) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002551 ha_alert("No polling mechanism available.\n"
Willy Tarreaue5715bf2022-07-09 23:38:46 +02002552 " This may happen when using thread-groups with old pollers (poll/select), or\n"
2553 " it is possible that haproxy was built with TARGET=generic and that FD_SETSIZE\n"
Christopher Faulet767a84b2017-11-24 16:50:31 +01002554 " is too low on this platform to support maxconn and the number of listeners\n"
2555 " and servers. You should rebuild haproxy specifying your system using TARGET=\n"
2556 " in order to support other polling systems (poll, epoll, kqueue) or reduce the\n"
2557 " global maxconn setting to accommodate the system's limitation. For reference,\n"
2558 " FD_SETSIZE=%d on this system, global.maxconn=%d resulting in a maximum of\n"
2559 " %d file descriptors. You should thus reduce global.maxconn by %d. Also,\n"
2560 " check build settings using 'haproxy -vv'.\n\n",
2561 FD_SETSIZE, global.maxconn, global.maxsock, (global.maxsock + 1 - FD_SETSIZE) / 2);
Willy Tarreau4f60f162007-04-08 16:39:58 +02002562 exit(1);
2563 }
Willy Tarreau2ff76222007-04-09 19:29:56 +02002564 if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) {
2565 printf("Using %s() as the polling mechanism.\n", cur_poller.name);
Willy Tarreau4f60f162007-04-08 16:39:58 +02002566 }
2567
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02002568 if (!global.node)
2569 global.node = strdup(hostname);
2570
Willy Tarreau02b092f2020-10-07 18:36:54 +02002571 /* stop disabled proxies */
2572 for (px = proxies_list; px; px = px->next) {
Christopher Fauletdfd10ab2021-10-06 14:24:19 +02002573 if (px->flags & (PR_FL_DISABLED|PR_FL_STOPPED))
Willy Tarreau02b092f2020-10-07 18:36:54 +02002574 stop_proxy(px);
2575 }
2576
Thierry FOURNIERa4a0f3d2015-01-23 12:08:30 +01002577 if (!hlua_post_init())
2578 exit(1);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002579}
2580
Cyril Bonté203ec5a2017-03-23 22:44:13 +01002581void deinit(void)
Willy Tarreaubaaee002006-06-26 02:48:02 +02002582{
Olivier Houchardfbc74e82017-11-24 16:54:05 +01002583 struct proxy *p = proxies_list, *p0;
Willy Tarreaudeb9ed82010-01-03 21:03:22 +01002584 struct wordlist *wl, *wlb;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002585 struct uri_auth *uap, *ua = NULL;
William Lallemand0f99e342011-10-12 17:50:54 +02002586 struct logsrv *log, *logb;
Willy Tarreaucdb737e2016-12-21 18:43:10 +01002587 struct build_opts_str *bol, *bolb;
Tim Duesterhusfdf904a2020-07-04 11:49:48 +02002588 struct post_deinit_fct *pdf, *pdfb;
Tim Duesterhus17e363f2020-07-04 11:49:47 +02002589 struct proxy_deinit_fct *pxdf, *pxdfb;
Tim Duesterhus0837eb12020-07-04 11:49:49 +02002590 struct server_deinit_fct *srvdf, *srvdfb;
Tim Duesterhusf0c25d22020-09-10 19:46:41 +02002591 struct per_thread_init_fct *tif, *tifb;
2592 struct per_thread_deinit_fct *tdf, *tdfb;
2593 struct per_thread_alloc_fct *taf, *tafb;
2594 struct per_thread_free_fct *tff, *tffb;
Tim Duesterhus34bef072020-07-04 11:49:50 +02002595 struct post_server_check_fct *pscf, *pscfb;
Tim Duesterhusfc854942020-09-10 19:46:42 +02002596 struct post_check_fct *pcf, *pcfb;
Tim Duesterhus53508d62020-09-10 19:46:40 +02002597 struct post_proxy_check_fct *ppcf, *ppcfb;
Willy Tarreau65009eb2022-04-27 18:02:54 +02002598 struct pre_check_fct *prcf, *prcfb;
Willy Tarreau226866e2022-04-27 18:07:24 +02002599 struct cfg_postparser *pprs, *pprsb;
Willy Tarreauae7bc4a2020-09-23 16:46:22 +02002600 int cur_fd;
2601
2602 /* At this point the listeners state is weird:
2603 * - most listeners are still bound and referenced in their protocol
2604 * - some might be zombies that are not in their proto anymore, but
2605 * still appear in their proxy's listeners with a valid FD.
2606 * - some might be stopped and still appear in their proxy as FD #-1
2607 * - among all of them, some might be inherited hence shared and we're
2608 * not allowed to pause them or whatever, we must just close them.
2609 * - finally some are not listeners (pipes, logs, stdout, etc) and
2610 * must be left intact.
2611 *
2612 * The safe way to proceed is to unbind (and close) whatever is not yet
2613 * unbound so that no more receiver/listener remains alive. Then close
2614 * remaining listener FDs, which correspond to zombie listeners (those
2615 * belonging to disabled proxies that were in another process).
2616 * objt_listener() would be cleaner here but not converted yet.
2617 */
2618 protocol_unbind_all();
2619
2620 for (cur_fd = 0; cur_fd < global.maxsock; cur_fd++) {
Willy Tarreau1a3770c2020-10-14 12:13:51 +02002621 if (!fdtab || !fdtab[cur_fd].owner)
Willy Tarreauae7bc4a2020-09-23 16:46:22 +02002622 continue;
2623
Willy Tarreaua74cb382020-10-15 21:29:49 +02002624 if (fdtab[cur_fd].iocb == &sock_accept_iocb) {
Willy Tarreauae7bc4a2020-09-23 16:46:22 +02002625 struct listener *l = fdtab[cur_fd].owner;
2626
2627 BUG_ON(l->state != LI_INIT);
2628 unbind_listener(l);
2629 }
2630 }
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002631
Willy Tarreau24f4efa2010-08-27 17:56:48 +02002632 deinit_signals();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002633 while (p) {
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002634 /* build a list of unique uri_auths */
2635 if (!ua)
2636 ua = p->uri_auth;
2637 else {
2638 /* check if p->uri_auth is unique */
2639 for (uap = ua; uap; uap=uap->next)
2640 if (uap == p->uri_auth)
2641 break;
2642
Willy Tarreauaccc4e12008-06-24 11:14:45 +02002643 if (!uap && p->uri_auth) {
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002644 /* add it, if it is */
2645 p->uri_auth->next = ua;
2646 ua = p->uri_auth;
2647 }
William Lallemand0f99e342011-10-12 17:50:54 +02002648 }
2649
Willy Tarreau4d2d0982007-05-14 00:39:29 +02002650 p0 = p;
Willy Tarreaubaaee002006-06-26 02:48:02 +02002651 p = p->next;
Amaury Denoyelle27fefa12021-03-24 16:13:20 +01002652 free_proxy(p0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02002653 }/* end while(p) */
Willy Tarreaudd815982007-10-16 12:25:14 +02002654
Christopher Faulet27c8d202021-10-13 09:50:53 +02002655 /* destroy all referenced defaults proxies */
2656 proxy_destroy_all_unref_defaults();
2657
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002658 while (ua) {
Tim Duesterhus00f00cf2020-09-10 19:46:38 +02002659 struct stat_scope *scope, *scopep;
2660
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002661 uap = ua;
2662 ua = ua->next;
2663
Willy Tarreaua534fea2008-08-03 12:19:50 +02002664 free(uap->uri_prefix);
2665 free(uap->auth_realm);
Krzysztof Piotr Oledzki48cb2ae2009-10-02 22:51:14 +02002666 free(uap->node);
2667 free(uap->desc);
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002668
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01002669 userlist_free(uap->userlist);
Amaury Denoyelle68fd7e42021-03-25 17:15:52 +01002670 free_act_rules(&uap->http_req_rules);
Krzysztof Piotr Oledzki8c8bd452010-01-29 19:29:32 +01002671
Tim Duesterhus00f00cf2020-09-10 19:46:38 +02002672 scope = uap->scope;
2673 while (scope) {
2674 scopep = scope;
2675 scope = scope->next;
2676
2677 free(scopep->px_id);
2678 free(scopep);
2679 }
2680
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002681 free(uap);
2682 }
2683
Krzysztof Piotr Oledzki96105042010-01-29 17:50:44 +01002684 userlist_free(userlist);
2685
David Carlier834cb2e2015-09-25 12:02:25 +01002686 cfg_unregister_sections();
2687
Christopher Faulet0132d062017-07-26 15:33:35 +02002688 deinit_log_buffers();
David Carlier834cb2e2015-09-25 12:02:25 +01002689
Willy Tarreau05554e62016-12-21 20:46:26 +01002690 list_for_each_entry(pdf, &post_deinit_list, list)
2691 pdf->fct();
2692
Willy Tarreau61cfdf42021-02-20 10:46:51 +01002693 ha_free(&global.log_send_hostname);
Dragan Dosen43885c72015-10-01 13:18:13 +02002694 chunk_destroy(&global.log_tag);
Willy Tarreau61cfdf42021-02-20 10:46:51 +01002695 ha_free(&global.chroot);
Frédéric Lécaille372508c2022-05-06 08:53:16 +02002696 ha_free(&global.cluster_secret);
Willy Tarreau61cfdf42021-02-20 10:46:51 +01002697 ha_free(&global.pidfile);
2698 ha_free(&global.node);
2699 ha_free(&global.desc);
2700 ha_free(&oldpids);
2701 ha_free(&old_argv);
2702 ha_free(&localpeer);
2703 ha_free(&global.server_state_base);
2704 ha_free(&global.server_state_file);
Olivier Houchard3f795f72019-04-17 22:51:06 +02002705 task_destroy(idle_conn_task);
Olivier Houchard9ea5d362019-02-14 18:29:09 +01002706 idle_conn_task = NULL;
Krzysztof Piotr Oledzki8001d612008-05-31 13:53:23 +02002707
William Lallemand0f99e342011-10-12 17:50:54 +02002708 list_for_each_entry_safe(log, logb, &global.logsrvs, list) {
Willy Tarreau2b718102021-04-21 07:32:39 +02002709 LIST_DELETE(&log->list);
Amaury Denoyelled688e012021-04-20 17:05:47 +02002710 free(log->conf.file);
William Lallemand0f99e342011-10-12 17:50:54 +02002711 free(log);
2712 }
Willy Tarreau477ecd82010-01-03 21:12:30 +01002713 list_for_each_entry_safe(wl, wlb, &cfg_cfgfiles, list) {
Maxime de Roucy0f503922016-05-13 23:52:55 +02002714 free(wl->s);
Willy Tarreau2b718102021-04-21 07:32:39 +02002715 LIST_DELETE(&wl->list);
Willy Tarreau477ecd82010-01-03 21:12:30 +01002716 free(wl);
2717 }
2718
Willy Tarreaucdb737e2016-12-21 18:43:10 +01002719 list_for_each_entry_safe(bol, bolb, &build_opts_list, list) {
2720 if (bol->must_free)
2721 free((void *)bol->str);
Willy Tarreau2b718102021-04-21 07:32:39 +02002722 LIST_DELETE(&bol->list);
Willy Tarreaucdb737e2016-12-21 18:43:10 +01002723 free(bol);
2724 }
2725
Tim Duesterhus17e363f2020-07-04 11:49:47 +02002726 list_for_each_entry_safe(pxdf, pxdfb, &proxy_deinit_list, list) {
Willy Tarreau2b718102021-04-21 07:32:39 +02002727 LIST_DELETE(&pxdf->list);
Tim Duesterhus17e363f2020-07-04 11:49:47 +02002728 free(pxdf);
2729 }
2730
Tim Duesterhusfdf904a2020-07-04 11:49:48 +02002731 list_for_each_entry_safe(pdf, pdfb, &post_deinit_list, list) {
Willy Tarreau2b718102021-04-21 07:32:39 +02002732 LIST_DELETE(&pdf->list);
Tim Duesterhusfdf904a2020-07-04 11:49:48 +02002733 free(pdf);
2734 }
2735
Tim Duesterhus0837eb12020-07-04 11:49:49 +02002736 list_for_each_entry_safe(srvdf, srvdfb, &server_deinit_list, list) {
Willy Tarreau2b718102021-04-21 07:32:39 +02002737 LIST_DELETE(&srvdf->list);
Tim Duesterhus0837eb12020-07-04 11:49:49 +02002738 free(srvdf);
2739 }
2740
Tim Duesterhusfc854942020-09-10 19:46:42 +02002741 list_for_each_entry_safe(pcf, pcfb, &post_check_list, list) {
Willy Tarreau2b718102021-04-21 07:32:39 +02002742 LIST_DELETE(&pcf->list);
Tim Duesterhusfc854942020-09-10 19:46:42 +02002743 free(pcf);
2744 }
2745
Tim Duesterhus34bef072020-07-04 11:49:50 +02002746 list_for_each_entry_safe(pscf, pscfb, &post_server_check_list, list) {
Willy Tarreau2b718102021-04-21 07:32:39 +02002747 LIST_DELETE(&pscf->list);
Tim Duesterhus34bef072020-07-04 11:49:50 +02002748 free(pscf);
2749 }
2750
Tim Duesterhus53508d62020-09-10 19:46:40 +02002751 list_for_each_entry_safe(ppcf, ppcfb, &post_proxy_check_list, list) {
Willy Tarreau2b718102021-04-21 07:32:39 +02002752 LIST_DELETE(&ppcf->list);
Tim Duesterhus53508d62020-09-10 19:46:40 +02002753 free(ppcf);
2754 }
2755
Willy Tarreau65009eb2022-04-27 18:02:54 +02002756 list_for_each_entry_safe(prcf, prcfb, &pre_check_list, list) {
2757 LIST_DELETE(&prcf->list);
2758 free(prcf);
2759 }
2760
Tim Duesterhusf0c25d22020-09-10 19:46:41 +02002761 list_for_each_entry_safe(tif, tifb, &per_thread_init_list, list) {
Willy Tarreau2b718102021-04-21 07:32:39 +02002762 LIST_DELETE(&tif->list);
Tim Duesterhusf0c25d22020-09-10 19:46:41 +02002763 free(tif);
2764 }
2765
2766 list_for_each_entry_safe(tdf, tdfb, &per_thread_deinit_list, list) {
Willy Tarreau2b718102021-04-21 07:32:39 +02002767 LIST_DELETE(&tdf->list);
Tim Duesterhusf0c25d22020-09-10 19:46:41 +02002768 free(tdf);
2769 }
2770
2771 list_for_each_entry_safe(taf, tafb, &per_thread_alloc_list, list) {
Willy Tarreau2b718102021-04-21 07:32:39 +02002772 LIST_DELETE(&taf->list);
Tim Duesterhusf0c25d22020-09-10 19:46:41 +02002773 free(taf);
2774 }
2775
2776 list_for_each_entry_safe(tff, tffb, &per_thread_free_list, list) {
Willy Tarreau2b718102021-04-21 07:32:39 +02002777 LIST_DELETE(&tff->list);
Tim Duesterhusf0c25d22020-09-10 19:46:41 +02002778 free(tff);
2779 }
2780
Willy Tarreau226866e2022-04-27 18:07:24 +02002781 list_for_each_entry_safe(pprs, pprsb, &postparsers, list) {
2782 LIST_DELETE(&pprs->list);
2783 free(pprs);
2784 }
2785
Willy Tarreaucfc4f242021-05-08 11:41:28 +02002786 vars_prune(&proc_vars, NULL, NULL);
Willy Tarreau2455ceb2018-11-26 15:57:34 +01002787 pool_destroy_all();
Krzysztof Piotr Oledzkia643baf2008-05-29 23:53:44 +02002788 deinit_pollers();
Willy Tarreaubaaee002006-06-26 02:48:02 +02002789} /* end deinit() */
2790
Willy Tarreauf3ca5a02020-06-15 18:43:46 +02002791__attribute__((noreturn)) void deinit_and_exit(int status)
Tim Duesterhus26540552020-06-14 00:37:41 +02002792{
Amaury Denoyelle7afa5c12021-08-09 15:02:56 +02002793 global.mode |= MODE_STOPPING;
Tim Duesterhus26540552020-06-14 00:37:41 +02002794 deinit();
2795 exit(status);
2796}
William Lallemand72160322018-11-06 17:37:16 +01002797
Willy Tarreau918ff602011-07-25 16:33:49 +02002798/* Runs the polling loop */
Willy Tarreau3ebd55e2020-03-03 14:59:56 +01002799void run_poll_loop()
Willy Tarreau4f60f162007-04-08 16:39:58 +02002800{
Willy Tarreau2ae84e42019-05-28 16:44:05 +02002801 int next, wake;
Willy Tarreau4f60f162007-04-08 16:39:58 +02002802
Willy Tarreau55542642021-10-08 09:33:24 +02002803 clock_update_date(0,1);
Willy Tarreau4f60f162007-04-08 16:39:58 +02002804 while (1) {
Willy Tarreauc49ba522019-12-11 08:12:23 +01002805 wake_expired_tasks();
2806
William Lallemand1aab50b2018-06-07 09:46:01 +02002807 /* check if we caught some signals and process them in the
2808 first thread */
Willy Tarreaua7ad4ae2020-06-19 12:06:34 +02002809 if (signal_queue_len && tid == 0) {
2810 activity[tid].wake_signal++;
William Lallemand1aab50b2018-06-07 09:46:01 +02002811 signal_process_queue();
Willy Tarreaua7ad4ae2020-06-19 12:06:34 +02002812 }
2813
2814 /* Process a few tasks */
2815 process_runnable_tasks();
Willy Tarreau29857942009-05-10 09:01:21 +02002816
Willy Tarreau7067b3a2019-06-02 11:11:29 +02002817 /* also stop if we failed to cleanly stop all tasks */
2818 if (killed > 1)
2819 break;
2820
Matthias Wirtheea152e2022-09-09 10:21:00 +02002821 /* expire immediately if events or signals are pending */
Willy Tarreau2ae84e42019-05-28 16:44:05 +02002822 wake = 1;
Olivier Houchard305d5ab2019-07-24 18:07:06 +02002823 if (thread_has_tasks())
Willy Tarreaud80cb4e2018-01-20 19:30:13 +01002824 activity[tid].wake_tasks++;
Olivier Houchard79321b92018-07-26 17:55:11 +02002825 else {
Willy Tarreaue7475c82022-06-20 09:23:24 +02002826 _HA_ATOMIC_OR(&th_ctx->flags, TH_FL_SLEEPING);
Willy Tarreaudce4ad72022-06-22 15:38:38 +02002827 _HA_ATOMIC_AND(&th_ctx->flags, ~TH_FL_NOTIFIED);
Olivier Houchardb23a61f2019-03-08 18:51:17 +01002828 __ha_barrier_atomic_store();
Willy Tarreau95abd5b2020-03-23 09:33:32 +01002829 if (thread_has_tasks()) {
Olivier Houchard79321b92018-07-26 17:55:11 +02002830 activity[tid].wake_tasks++;
Willy Tarreaue7475c82022-06-20 09:23:24 +02002831 _HA_ATOMIC_AND(&th_ctx->flags, ~TH_FL_SLEEPING);
Matthias Wirtheea152e2022-09-09 10:21:00 +02002832 } else if (signal_queue_len) {
2833 /* this check is required after setting TH_FL_SLEEPING to avoid
2834 * a race with wakeup on signals using wake_threads() */
2835 _HA_ATOMIC_AND(&th_ctx->flags, ~TH_FL_SLEEPING);
Olivier Houchard79321b92018-07-26 17:55:11 +02002836 } else
Willy Tarreau2ae84e42019-05-28 16:44:05 +02002837 wake = 0;
Olivier Houchard79321b92018-07-26 17:55:11 +02002838 }
Willy Tarreau10146c92015-04-13 20:44:19 +02002839
Willy Tarreau4f46a352020-03-23 09:27:28 +01002840 if (!wake) {
Willy Tarreaud7a6b2f2020-05-13 13:51:01 +02002841 int i;
2842
2843 if (stopping) {
Ilya Shipitsin3df59892021-05-10 12:50:00 +05002844 /* stop muxes before acknowledging stopping */
Willy Tarreau24cfc9f2022-07-04 14:07:29 +02002845 if (!(tg_ctx->stopping_threads & ti->ltid_bit)) {
Amaury Denoyelled3a88c12021-05-03 10:47:51 +02002846 task_wakeup(mux_stopping_data[tid].task, TASK_WOKEN_OTHER);
2847 wake = 1;
2848 }
2849
Willy Tarreauef422ce2022-06-28 19:29:29 +02002850 if (_HA_ATOMIC_OR_FETCH(&tg_ctx->stopping_threads, ti->ltid_bit) == ti->ltid_bit &&
2851 _HA_ATOMIC_OR_FETCH(&stopping_tgroup_mask, tg->tgid_bit) == tg->tgid_bit) {
2852 /* first one to detect it, notify all threads that stopping was just set */
2853 for (i = 0; i < global.nbthread; i++) {
2854 if (ha_thread_info[i].tg->threads_enabled &
2855 ha_thread_info[i].ltid_bit &
2856 ~_HA_ATOMIC_LOAD(&ha_thread_info[i].tg_ctx->stopping_threads))
Willy Tarreaud6455742020-05-13 14:30:25 +02002857 wake_thread(i);
Willy Tarreauef422ce2022-06-28 19:29:29 +02002858 }
Willy Tarreaud6455742020-05-13 14:30:25 +02002859 }
Willy Tarreaud7a6b2f2020-05-13 13:51:01 +02002860 }
Willy Tarreau4f46a352020-03-23 09:27:28 +01002861
2862 /* stop when there's nothing left to do */
2863 if ((jobs - unstoppable_jobs) == 0 &&
Willy Tarreauef422ce2022-06-28 19:29:29 +02002864 (_HA_ATOMIC_LOAD(&stopping_tgroup_mask) & all_tgroups_mask) == all_tgroups_mask) {
2865 /* check that all threads are aware of the stopping status */
2866 for (i = 0; i < global.nbtgroups; i++)
Willy Tarreauf34a3fa2022-07-06 10:13:05 +02002867 if ((_HA_ATOMIC_LOAD(&ha_tgroup_ctx[i].stopping_threads) & ha_tgroup_info[i].threads_enabled) !=
2868 ha_tgroup_info[i].threads_enabled)
Willy Tarreauef422ce2022-06-28 19:29:29 +02002869 break;
2870#ifdef USE_THREAD
2871 if (i == global.nbtgroups) {
2872 /* all are OK, let's wake them all and stop */
2873 for (i = 0; i < global.nbthread; i++)
2874 if (i != tid && ha_thread_info[i].tg->threads_enabled & ha_thread_info[i].ltid_bit)
2875 wake_thread(i);
2876 break;
2877 }
2878#endif
Willy Tarreaud7a6b2f2020-05-13 13:51:01 +02002879 }
Willy Tarreau4f46a352020-03-23 09:27:28 +01002880 }
2881
Willy Tarreauc49ba522019-12-11 08:12:23 +01002882 /* If we have to sleep, measure how long */
2883 next = wake ? TICK_ETERNITY : next_timer_expiry();
2884
Willy Tarreau58b458d2008-06-29 22:40:23 +02002885 /* The poller will ensure it returns around <next> */
Willy Tarreau2ae84e42019-05-28 16:44:05 +02002886 cur_poller.poll(&cur_poller, next, wake);
Emeric Brun64cc49c2017-10-03 14:46:45 +02002887
Willy Tarreaud80cb4e2018-01-20 19:30:13 +01002888 activity[tid].loops++;
Willy Tarreau4f60f162007-04-08 16:39:58 +02002889 }
2890}
2891
Christopher Faulet1d17c102017-08-29 15:38:48 +02002892static void *run_thread_poll_loop(void *data)
2893{
Willy Tarreau082b6282019-05-22 14:42:12 +02002894 struct per_thread_alloc_fct *ptaf;
Christopher Faulet1d17c102017-08-29 15:38:48 +02002895 struct per_thread_init_fct *ptif;
2896 struct per_thread_deinit_fct *ptdf;
Willy Tarreau082b6282019-05-22 14:42:12 +02002897 struct per_thread_free_fct *ptff;
Willy Tarreau34a150c2019-06-11 09:16:41 +02002898 static int init_left = 0;
Willy Tarreauaf613e82020-06-05 08:40:51 +02002899 __decl_thread(static pthread_mutex_t init_mutex = PTHREAD_MUTEX_INITIALIZER);
2900 __decl_thread(static pthread_cond_t init_cond = PTHREAD_COND_INITIALIZER);
Christopher Faulet1d17c102017-08-29 15:38:48 +02002901
Willy Tarreau43ab05b2021-09-28 09:43:11 +02002902 ha_set_thread(data);
Willy Tarreaufb641d72021-09-28 10:15:47 +02002903 set_thread_cpu_affinity();
Willy Tarreau44c58da2021-10-08 12:27:54 +02002904 clock_set_local_source();
Willy Tarreau91e6df02019-05-03 17:21:18 +02002905
Willy Tarreau6ec902a2019-06-07 14:41:11 +02002906 /* Now, initialize one thread init at a time. This is better since
2907 * some init code is a bit tricky and may release global resources
2908 * after reallocating them locally. This will also ensure there is
2909 * no race on file descriptors allocation.
2910 */
Willy Tarreau34a150c2019-06-11 09:16:41 +02002911#ifdef USE_THREAD
2912 pthread_mutex_lock(&init_mutex);
2913#endif
2914 /* The first thread must set the number of threads left */
2915 if (!init_left)
2916 init_left = global.nbthread;
2917 init_left--;
Willy Tarreau91e6df02019-05-03 17:21:18 +02002918
Willy Tarreau55542642021-10-08 09:33:24 +02002919 clock_init_thread_date();
Christopher Faulet1d17c102017-08-29 15:38:48 +02002920
Willy Tarreau082b6282019-05-22 14:42:12 +02002921 /* per-thread alloc calls performed here are not allowed to snoop on
2922 * other threads, so they are free to initialize at their own rhythm
2923 * as long as they act as if they were alone. None of them may rely
2924 * on resources initialized by the other ones.
2925 */
2926 list_for_each_entry(ptaf, &per_thread_alloc_list, list) {
2927 if (!ptaf->fct()) {
2928 ha_alert("failed to allocate resources for thread %u.\n", tid);
Willy Tarreaub3c4a8f2021-07-22 14:42:32 +02002929#ifdef USE_THREAD
jenny-cheung048368e2021-07-18 16:40:57 +08002930 pthread_mutex_unlock(&init_mutex);
Willy Tarreaub3c4a8f2021-07-22 14:42:32 +02002931#endif
Willy Tarreau082b6282019-05-22 14:42:12 +02002932 exit(1);
2933 }
2934 }
2935
Willy Tarreau3078e9f2019-05-20 10:50:43 +02002936 /* per-thread init calls performed here are not allowed to snoop on
2937 * other threads, so they are free to initialize at their own rhythm
2938 * as long as they act as if they were alone.
2939 */
Christopher Faulet1d17c102017-08-29 15:38:48 +02002940 list_for_each_entry(ptif, &per_thread_init_list, list) {
2941 if (!ptif->fct()) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01002942 ha_alert("failed to initialize thread %u.\n", tid);
Willy Tarreaub3c4a8f2021-07-22 14:42:32 +02002943#ifdef USE_THREAD
jenny-cheung048368e2021-07-18 16:40:57 +08002944 pthread_mutex_unlock(&init_mutex);
Willy Tarreaub3c4a8f2021-07-22 14:42:32 +02002945#endif
Christopher Faulet1d17c102017-08-29 15:38:48 +02002946 exit(1);
2947 }
2948 }
2949
Willy Tarreau71092822019-06-10 09:51:04 +02002950 /* enabling protocols will result in fd_insert() calls to be performed,
2951 * we want all threads to have already allocated their local fd tables
Willy Tarreau34a150c2019-06-11 09:16:41 +02002952 * before doing so, thus only the last thread does it.
Willy Tarreau71092822019-06-10 09:51:04 +02002953 */
Willy Tarreau34a150c2019-06-11 09:16:41 +02002954 if (init_left == 0)
Willy Tarreaue4d7c9d2019-06-10 10:14:52 +02002955 protocol_enable_all();
Willy Tarreau6ec902a2019-06-07 14:41:11 +02002956
Willy Tarreau34a150c2019-06-11 09:16:41 +02002957#ifdef USE_THREAD
2958 pthread_cond_broadcast(&init_cond);
2959 pthread_mutex_unlock(&init_mutex);
2960
2961 /* now wait for other threads to finish starting */
2962 pthread_mutex_lock(&init_mutex);
2963 while (init_left)
2964 pthread_cond_wait(&init_cond, &init_mutex);
2965 pthread_mutex_unlock(&init_mutex);
2966#endif
Willy Tarreau3078e9f2019-05-20 10:50:43 +02002967
Willy Tarreaua45a8b52019-12-06 16:31:45 +01002968#if defined(PR_SET_NO_NEW_PRIVS) && defined(USE_PRCTL)
2969 /* Let's refrain from using setuid executables. This way the impact of
2970 * an eventual vulnerability in a library remains limited. It may
2971 * impact external checks but who cares about them anyway ? In the
2972 * worst case it's possible to disable the option. Obviously we do this
2973 * in workers only. We can't hard-fail on this one as it really is
2974 * implementation dependent though we're interested in feedback, hence
2975 * the warning.
2976 */
2977 if (!(global.tune.options & GTUNE_INSECURE_SETUID) && !master) {
2978 static int warn_fail;
Willy Tarreau18515722021-04-06 11:57:41 +02002979 if (prctl(PR_SET_NO_NEW_PRIVS, 1, 0, 0, 0) == -1 && !_HA_ATOMIC_FETCH_ADD(&warn_fail, 1)) {
Willy Tarreaua45a8b52019-12-06 16:31:45 +01002980 ha_warning("Failed to disable setuid, please report to developers with detailed "
2981 "information about your operating system. You can silence this warning "
2982 "by adding 'insecure-setuid-wanted' in the 'global' section.\n");
2983 }
2984 }
2985#endif
2986
Willy Tarreaud96f1122019-12-03 07:07:36 +01002987#if defined(RLIMIT_NPROC)
2988 /* all threads have started, it's now time to prevent any new thread
2989 * or process from starting. Obviously we do this in workers only. We
2990 * can't hard-fail on this one as it really is implementation dependent
2991 * though we're interested in feedback, hence the warning.
2992 */
2993 if (!(global.tune.options & GTUNE_INSECURE_FORK) && !master) {
2994 struct rlimit limit = { .rlim_cur = 0, .rlim_max = 0 };
2995 static int warn_fail;
2996
Willy Tarreau18515722021-04-06 11:57:41 +02002997 if (setrlimit(RLIMIT_NPROC, &limit) == -1 && !_HA_ATOMIC_FETCH_ADD(&warn_fail, 1)) {
Willy Tarreaud96f1122019-12-03 07:07:36 +01002998 ha_warning("Failed to disable forks, please report to developers with detailed "
2999 "information about your operating system. You can silence this warning "
3000 "by adding 'insecure-fork-wanted' in the 'global' section.\n");
3001 }
3002 }
3003#endif
Christopher Faulet1d17c102017-08-29 15:38:48 +02003004 run_poll_loop();
3005
3006 list_for_each_entry(ptdf, &per_thread_deinit_list, list)
3007 ptdf->fct();
3008
Willy Tarreau082b6282019-05-22 14:42:12 +02003009 list_for_each_entry(ptff, &per_thread_free_list, list)
3010 ptff->fct();
3011
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003012#ifdef USE_THREAD
Willy Tarreau291f6ff2022-07-04 13:36:16 +02003013 if (!_HA_ATOMIC_AND_FETCH(&ha_tgroup_info[ti->tgid-1].threads_enabled, ~ti->ltid_bit))
Willy Tarreaucce203a2022-06-24 15:55:11 +02003014 _HA_ATOMIC_AND(&all_tgroups_mask, ~tg->tgid_bit);
Willy Tarreauad92fdf2022-07-06 10:17:21 +02003015 if (!_HA_ATOMIC_AND_FETCH(&tg_ctx->stopping_threads, ~ti->ltid_bit))
3016 _HA_ATOMIC_AND(&stopping_tgroup_mask, ~tg->tgid_bit);
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003017 if (tid > 0)
3018 pthread_exit(NULL);
Christopher Faulet1d17c102017-08-29 15:38:48 +02003019#endif
Christopher Fauletcd7879a2017-10-27 13:53:47 +02003020 return NULL;
3021}
Christopher Faulet1d17c102017-08-29 15:38:48 +02003022
William Dauchyf9af9d72019-11-17 15:47:16 +01003023/* set uid/gid depending on global settings */
3024static void set_identity(const char *program_name)
3025{
3026 if (global.gid) {
3027 if (getgroups(0, NULL) > 0 && setgroups(0, NULL) == -1)
3028 ha_warning("[%s.main()] Failed to drop supplementary groups. Using 'gid'/'group'"
3029 " without 'uid'/'user' is generally useless.\n", program_name);
3030
3031 if (setgid(global.gid) == -1) {
3032 ha_alert("[%s.main()] Cannot set gid %d.\n", program_name, global.gid);
3033 protocol_unbind_all();
3034 exit(1);
3035 }
3036 }
3037
3038 if (global.uid && setuid(global.uid) == -1) {
3039 ha_alert("[%s.main()] Cannot set uid %d.\n", program_name, global.uid);
3040 protocol_unbind_all();
3041 exit(1);
3042 }
3043}
3044
Willy Tarreaubaaee002006-06-26 02:48:02 +02003045int main(int argc, char **argv)
3046{
3047 int err, retry;
3048 struct rlimit limit;
Willy Tarreau269ab312012-09-05 08:02:48 +02003049 int pidfd = -1;
Willy Tarreau1335da32021-07-14 17:54:01 +02003050 int intovf = (unsigned char)argc + 1; /* let the compiler know it's strictly positive */
3051
Willy Tarreau41afd902022-07-21 09:55:22 +02003052 /* Catch broken toolchains */
3053 if (sizeof(long) != sizeof(void *) || (intovf + 0x7FFFFFFF >= intovf)) {
3054 const char *msg;
3055
3056 if (sizeof(long) != sizeof(void *))
3057 /* Apparently MingW64 was not made for us and can also break openssl */
3058 msg = "The compiler this program was built with uses unsupported integral type sizes.\n"
3059 "Most likely it follows the unsupported LLP64 model. Never try to link HAProxy\n"
3060 "against libraries built with that compiler either! Please only use a compiler\n"
3061 "producing ILP32 or LP64 programs for both programs and libraries.\n";
3062 else if (intovf + 0x7FFFFFFF >= intovf)
3063 /* Catch forced CFLAGS that miss 2-complement integer overflow */
3064 msg = "The source code was miscompiled by the compiler, which usually indicates that\n"
3065 "some of the CFLAGS needed to work around overzealous compiler optimizations\n"
3066 "were overwritten at build time. Please do not force CFLAGS, and read Makefile\n"
3067 "and INSTALL files to decide on the best way to pass your local build options.\n";
3068 else
3069 msg = "Bug in the compiler bug detection code, please report it to developers!\n";
3070
Willy Tarreau1335da32021-07-14 17:54:01 +02003071 fprintf(stderr,
3072 "FATAL ERROR: invalid code detected -- cannot go further, please recompile!\n"
Willy Tarreau41afd902022-07-21 09:55:22 +02003073 "%s"
3074 "\nBuild options :"
Willy Tarreau1335da32021-07-14 17:54:01 +02003075#ifdef BUILD_TARGET
Willy Tarreau41afd902022-07-21 09:55:22 +02003076 "\n TARGET = " BUILD_TARGET
Willy Tarreau1335da32021-07-14 17:54:01 +02003077#endif
3078#ifdef BUILD_CPU
Willy Tarreau41afd902022-07-21 09:55:22 +02003079 "\n CPU = " BUILD_CPU
Willy Tarreau1335da32021-07-14 17:54:01 +02003080#endif
3081#ifdef BUILD_CC
Willy Tarreau41afd902022-07-21 09:55:22 +02003082 "\n CC = " BUILD_CC
Willy Tarreau1335da32021-07-14 17:54:01 +02003083#endif
3084#ifdef BUILD_CFLAGS
Willy Tarreau41afd902022-07-21 09:55:22 +02003085 "\n CFLAGS = " BUILD_CFLAGS
Willy Tarreau1335da32021-07-14 17:54:01 +02003086#endif
3087#ifdef BUILD_OPTIONS
Willy Tarreau41afd902022-07-21 09:55:22 +02003088 "\n OPTIONS = " BUILD_OPTIONS
Willy Tarreau1335da32021-07-14 17:54:01 +02003089#endif
3090#ifdef BUILD_DEBUG
Willy Tarreau41afd902022-07-21 09:55:22 +02003091 "\n DEBUG = " BUILD_DEBUG
Willy Tarreau1335da32021-07-14 17:54:01 +02003092#endif
Willy Tarreau41afd902022-07-21 09:55:22 +02003093 "\n\n", msg);
3094
Willy Tarreau1335da32021-07-14 17:54:01 +02003095 return 1;
3096 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003097
Olivier Houchard5fa300d2018-02-03 15:15:21 +01003098 setvbuf(stdout, NULL, _IONBF, 0);
Willy Tarreau5794fb02018-11-25 18:43:29 +01003099
Willy Tarreaubf696402019-03-01 10:09:28 +01003100 /* take a copy of initial limits before we possibly change them */
3101 getrlimit(RLIMIT_NOFILE, &limit);
Willy Tarreau2bd0f812020-10-13 15:36:08 +02003102
3103 if (limit.rlim_max == RLIM_INFINITY)
3104 limit.rlim_max = limit.rlim_cur;
Willy Tarreaubf696402019-03-01 10:09:28 +01003105 rlim_fd_cur_at_boot = limit.rlim_cur;
3106 rlim_fd_max_at_boot = limit.rlim_max;
3107
Willy Tarreau5794fb02018-11-25 18:43:29 +01003108 /* process all initcalls in order of potential dependency */
3109 RUN_INITCALLS(STG_PREPARE);
3110 RUN_INITCALLS(STG_LOCK);
Willy Tarreau3ebe4d92022-02-18 14:51:49 +01003111 RUN_INITCALLS(STG_REGISTER);
Willy Tarreau34527d52022-02-17 17:45:58 +01003112
3113 /* now's time to initialize early boot variables */
3114 init_early(argc, argv);
3115
Willy Tarreau18f96d02022-02-23 17:25:00 +01003116 /* handles argument parsing */
3117 init_args(argc, argv);
3118
Willy Tarreau5794fb02018-11-25 18:43:29 +01003119 RUN_INITCALLS(STG_ALLOC);
3120 RUN_INITCALLS(STG_POOL);
Willy Tarreau5794fb02018-11-25 18:43:29 +01003121 RUN_INITCALLS(STG_INIT);
3122
Willy Tarreau34527d52022-02-17 17:45:58 +01003123 /* this is the late init where the config is parsed */
Emeric Bruncf20bf12010-10-22 16:06:11 +02003124 init(argc, argv);
Willy Tarreau34527d52022-02-17 17:45:58 +01003125
Willy Tarreau24f4efa2010-08-27 17:56:48 +02003126 signal_register_fct(SIGQUIT, dump, SIGQUIT);
3127 signal_register_fct(SIGUSR1, sig_soft_stop, SIGUSR1);
3128 signal_register_fct(SIGHUP, sig_dump_state, SIGHUP);
William Lallemand73b85e72017-06-01 17:38:51 +02003129 signal_register_fct(SIGUSR2, NULL, 0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003130
Willy Tarreaue437c442010-03-17 18:02:46 +01003131 /* Always catch SIGPIPE even on platforms which define MSG_NOSIGNAL.
3132 * Some recent FreeBSD setups report broken pipes, and MSG_NOSIGNAL
3133 * was defined there, so let's stay on the safe side.
Willy Tarreaubaaee002006-06-26 02:48:02 +02003134 */
Willy Tarreau24f4efa2010-08-27 17:56:48 +02003135 signal_register_fct(SIGPIPE, NULL, 0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003136
Willy Tarreaudc23a922011-02-16 11:10:36 +01003137 /* ulimits */
3138 if (!global.rlimit_nofile)
3139 global.rlimit_nofile = global.maxsock;
3140
3141 if (global.rlimit_nofile) {
Willy Tarreaue5cfdac2019-03-01 10:32:05 +01003142 limit.rlim_cur = global.rlimit_nofile;
3143 limit.rlim_max = MAX(rlim_fd_max_at_boot, limit.rlim_cur);
3144
Willy Tarreau2df1fbf2022-04-25 18:02:03 +02003145 if ((global.fd_hard_limit && limit.rlim_cur > global.fd_hard_limit) ||
3146 setrlimit(RLIMIT_NOFILE, &limit) == -1) {
Willy Tarreauef635472016-06-21 11:48:18 +02003147 getrlimit(RLIMIT_NOFILE, &limit);
Willy Tarreau2df1fbf2022-04-25 18:02:03 +02003148 if (global.fd_hard_limit && limit.rlim_cur > global.fd_hard_limit)
3149 limit.rlim_cur = global.fd_hard_limit;
3150
William Dauchy0fec3ab2019-10-27 20:08:11 +01003151 if (global.tune.options & GTUNE_STRICT_LIMITS) {
3152 ha_alert("[%s.main()] Cannot raise FD limit to %d, limit is %d.\n",
3153 argv[0], global.rlimit_nofile, (int)limit.rlim_cur);
Jerome Magnin50f757c2021-01-12 20:19:38 +01003154 exit(1);
William Dauchy0fec3ab2019-10-27 20:08:11 +01003155 }
3156 else {
3157 /* try to set it to the max possible at least */
3158 limit.rlim_cur = limit.rlim_max;
Willy Tarreau2df1fbf2022-04-25 18:02:03 +02003159 if (global.fd_hard_limit && limit.rlim_cur > global.fd_hard_limit)
3160 limit.rlim_cur = global.fd_hard_limit;
3161
William Dauchy0fec3ab2019-10-27 20:08:11 +01003162 if (setrlimit(RLIMIT_NOFILE, &limit) != -1)
3163 getrlimit(RLIMIT_NOFILE, &limit);
Willy Tarreau164dd0b2016-06-21 11:51:59 +02003164
William Dauchya5194602020-03-28 19:29:58 +01003165 ha_warning("[%s.main()] Cannot raise FD limit to %d, limit is %d.\n",
William Dauchy0fec3ab2019-10-27 20:08:11 +01003166 argv[0], global.rlimit_nofile, (int)limit.rlim_cur);
3167 global.rlimit_nofile = limit.rlim_cur;
3168 }
Willy Tarreaudc23a922011-02-16 11:10:36 +01003169 }
3170 }
3171
3172 if (global.rlimit_memmax) {
3173 limit.rlim_cur = limit.rlim_max =
Willy Tarreau70060452015-12-14 12:46:07 +01003174 global.rlimit_memmax * 1048576ULL;
Willy Tarreaudc23a922011-02-16 11:10:36 +01003175#ifdef RLIMIT_AS
3176 if (setrlimit(RLIMIT_AS, &limit) == -1) {
William Dauchy0fec3ab2019-10-27 20:08:11 +01003177 if (global.tune.options & GTUNE_STRICT_LIMITS) {
3178 ha_alert("[%s.main()] Cannot fix MEM limit to %d megs.\n",
3179 argv[0], global.rlimit_memmax);
Jerome Magnin50f757c2021-01-12 20:19:38 +01003180 exit(1);
William Dauchy0fec3ab2019-10-27 20:08:11 +01003181 }
3182 else
William Dauchya5194602020-03-28 19:29:58 +01003183 ha_warning("[%s.main()] Cannot fix MEM limit to %d megs.\n",
William Dauchy0fec3ab2019-10-27 20:08:11 +01003184 argv[0], global.rlimit_memmax);
Willy Tarreaudc23a922011-02-16 11:10:36 +01003185 }
3186#else
3187 if (setrlimit(RLIMIT_DATA, &limit) == -1) {
William Dauchy0fec3ab2019-10-27 20:08:11 +01003188 if (global.tune.options & GTUNE_STRICT_LIMITS) {
3189 ha_alert("[%s.main()] Cannot fix MEM limit to %d megs.\n",
3190 argv[0], global.rlimit_memmax);
Jerome Magnin50f757c2021-01-12 20:19:38 +01003191 exit(1);
William Dauchy0fec3ab2019-10-27 20:08:11 +01003192 }
3193 else
William Dauchya5194602020-03-28 19:29:58 +01003194 ha_warning("[%s.main()] Cannot fix MEM limit to %d megs.\n",
William Dauchy0fec3ab2019-10-27 20:08:11 +01003195 argv[0], global.rlimit_memmax);
Willy Tarreaudc23a922011-02-16 11:10:36 +01003196 }
3197#endif
3198 }
3199
William Lallemandf82afbb2022-01-07 18:19:42 +01003200 /* Try to get the listeners FD from the previous process using
3201 * _getsocks on the stat socket, it must never been done in wait mode
3202 * and check mode
3203 */
3204 if (old_unixsocket &&
3205 !(global.mode & (MODE_MWORKER_WAIT|MODE_CHECK|MODE_CHECK_CONDITION))) {
William Lallemand85b0bd92017-06-01 17:38:53 +02003206 if (strcmp("/dev/null", old_unixsocket) != 0) {
Willy Tarreau42961742020-08-28 18:42:45 +02003207 if (sock_get_old_sockets(old_unixsocket) != 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003208 ha_alert("Failed to get the sockets from the old process!\n");
William Lallemand85b0bd92017-06-01 17:38:53 +02003209 if (!(global.mode & MODE_MWORKER))
3210 exit(1);
3211 }
Olivier Houchardf73629d2017-04-05 22:33:04 +02003212 }
3213 }
William Lallemand85b0bd92017-06-01 17:38:53 +02003214
Willy Tarreaubaaee002006-06-26 02:48:02 +02003215 /* We will loop at most 100 times with 10 ms delay each time.
3216 * That's at most 1 second. We only send a signal to old pids
3217 * if we cannot grab at least one port.
3218 */
3219 retry = MAX_START_RETRIES;
3220 err = ERR_NONE;
3221 while (retry >= 0) {
3222 struct timeval w;
Willy Tarreaue91bff22020-09-02 11:11:43 +02003223 err = protocol_bind_all(retry == 0 || nb_oldpids == 0);
Willy Tarreaue13e9252007-12-20 23:05:50 +01003224 /* exit the loop on no error or fatal error */
3225 if ((err & (ERR_RETRYABLE|ERR_FATAL)) != ERR_RETRYABLE)
Willy Tarreaubaaee002006-06-26 02:48:02 +02003226 break;
Willy Tarreaubb545b42010-08-25 12:58:59 +02003227 if (nb_oldpids == 0 || retry == 0)
Willy Tarreaubaaee002006-06-26 02:48:02 +02003228 break;
3229
3230 /* FIXME-20060514: Solaris and OpenBSD do not support shutdown() on
3231 * listening sockets. So on those platforms, it would be wiser to
3232 * simply send SIGUSR1, which will not be undoable.
3233 */
Willy Tarreaubb545b42010-08-25 12:58:59 +02003234 if (tell_old_pids(SIGTTOU) == 0) {
3235 /* no need to wait if we can't contact old pids */
3236 retry = 0;
3237 continue;
3238 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003239 /* give some time to old processes to stop listening */
3240 w.tv_sec = 0;
3241 w.tv_usec = 10*1000;
3242 select(0, NULL, NULL, NULL, &w);
3243 retry--;
3244 }
3245
Willy Tarreaue91bff22020-09-02 11:11:43 +02003246 /* Note: protocol_bind_all() sends an alert when it fails. */
Willy Tarreau0a3b9d92009-02-04 17:05:23 +01003247 if ((err & ~ERR_WARN) != ERR_NONE) {
Willy Tarreaue91bff22020-09-02 11:11:43 +02003248 ha_alert("[%s.main()] Some protocols failed to start their listeners! Exiting.\n", argv[0]);
Willy Tarreauf68da462009-06-09 14:36:00 +02003249 if (retry != MAX_START_RETRIES && nb_oldpids) {
3250 protocol_unbind_all(); /* cleanup everything we can */
Willy Tarreaubaaee002006-06-26 02:48:02 +02003251 tell_old_pids(SIGTTIN);
Willy Tarreauf68da462009-06-09 14:36:00 +02003252 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003253 exit(1);
3254 }
3255
William Lallemand944e6192018-11-21 15:48:31 +01003256 if (!(global.mode & MODE_MWORKER_WAIT) && listeners == 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003257 ha_alert("[%s.main()] No enabled listener found (check for 'bind' directives) ! Exiting.\n", argv[0]);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003258 /* Note: we don't have to send anything to the old pids because we
3259 * never stopped them. */
3260 exit(1);
3261 }
3262
Willy Tarreaue91bff22020-09-02 11:11:43 +02003263 /* Ok, all listeners should now be bound, close any leftover sockets
Olivier Houchardf73629d2017-04-05 22:33:04 +02003264 * the previous process gave us, we don't need them anymore
3265 */
Willy Tarreaub5101162022-01-28 18:28:18 +01003266 sock_drop_unused_old_sockets();
Willy Tarreaudd815982007-10-16 12:25:14 +02003267
Willy Tarreaubaaee002006-06-26 02:48:02 +02003268 /* prepare pause/play signals */
Willy Tarreau24f4efa2010-08-27 17:56:48 +02003269 signal_register_fct(SIGTTOU, sig_pause, SIGTTOU);
3270 signal_register_fct(SIGTTIN, sig_listen, SIGTTIN);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003271
Willy Tarreaubaaee002006-06-26 02:48:02 +02003272 /* MODE_QUIET can inhibit alerts and warnings below this line */
3273
PiBa-NL149a81a2017-12-25 21:03:31 +01003274 if (getenv("HAPROXY_MWORKER_REEXEC") != NULL) {
3275 /* either stdin/out/err are already closed or should stay as they are. */
3276 if ((global.mode & MODE_DAEMON)) {
3277 /* daemon mode re-executing, stdin/stdout/stderr are already closed so keep quiet */
3278 global.mode &= ~MODE_VERBOSE;
3279 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
3280 }
3281 } else {
3282 if ((global.mode & MODE_QUIET) && !(global.mode & MODE_VERBOSE)) {
3283 /* detach from the tty */
William Lallemande1340412017-12-28 16:09:36 +01003284 stdio_quiet(-1);
PiBa-NL149a81a2017-12-25 21:03:31 +01003285 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003286 }
3287
3288 /* open log & pid files before the chroot */
William Lallemand7b820a62022-02-14 09:02:14 +01003289 if ((global.mode & MODE_DAEMON || global.mode & MODE_MWORKER) &&
3290 !(global.mode & MODE_MWORKER_WAIT) && global.pidfile != NULL) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02003291 unlink(global.pidfile);
3292 pidfd = open(global.pidfile, O_CREAT | O_WRONLY | O_TRUNC, 0644);
3293 if (pidfd < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003294 ha_alert("[%s.main()] Cannot create pidfile %s\n", argv[0], global.pidfile);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003295 if (nb_oldpids)
3296 tell_old_pids(SIGTTIN);
Willy Tarreaudd815982007-10-16 12:25:14 +02003297 protocol_unbind_all();
Willy Tarreaubaaee002006-06-26 02:48:02 +02003298 exit(1);
3299 }
Willy Tarreaubaaee002006-06-26 02:48:02 +02003300 }
3301
Willy Tarreaub38651a2007-03-24 17:24:39 +01003302 if ((global.last_checks & LSTCHK_NETADM) && global.uid) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003303 ha_alert("[%s.main()] Some configuration options require full privileges, so global.uid cannot be changed.\n"
3304 "", argv[0]);
Willy Tarreaudd815982007-10-16 12:25:14 +02003305 protocol_unbind_all();
Willy Tarreaub38651a2007-03-24 17:24:39 +01003306 exit(1);
3307 }
3308
Jackie Tapia749f74c2020-07-22 18:59:40 -05003309 /* If the user is not root, we'll still let them try the configuration
3310 * but we inform them that unexpected behaviour may occur.
Willy Tarreau4e30ed72009-02-04 18:02:48 +01003311 */
3312 if ((global.last_checks & LSTCHK_NETADM) && getuid())
Christopher Faulet767a84b2017-11-24 16:50:31 +01003313 ha_warning("[%s.main()] Some options which require full privileges"
3314 " might not work well.\n"
3315 "", argv[0]);
Willy Tarreau4e30ed72009-02-04 18:02:48 +01003316
William Lallemand095ba4c2017-06-01 17:38:50 +02003317 if ((global.mode & (MODE_MWORKER|MODE_DAEMON)) == 0) {
3318
3319 /* chroot if needed */
3320 if (global.chroot != NULL) {
3321 if (chroot(global.chroot) == -1 || chdir("/") == -1) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003322 ha_alert("[%s.main()] Cannot chroot(%s).\n", argv[0], global.chroot);
William Lallemand095ba4c2017-06-01 17:38:50 +02003323 if (nb_oldpids)
3324 tell_old_pids(SIGTTIN);
3325 protocol_unbind_all();
3326 exit(1);
3327 }
Willy Tarreauf223cc02007-10-15 18:57:08 +02003328 }
Willy Tarreauf223cc02007-10-15 18:57:08 +02003329 }
3330
William Lallemand944e6192018-11-21 15:48:31 +01003331 if (nb_oldpids && !(global.mode & MODE_MWORKER_WAIT))
Willy Tarreaubb545b42010-08-25 12:58:59 +02003332 nb_oldpids = tell_old_pids(oldpids_sig);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003333
William Lallemand27edc4b2019-05-07 17:49:33 +02003334 /* send a SIGTERM to workers who have a too high reloads number */
3335 if ((global.mode & MODE_MWORKER) && !(global.mode & MODE_MWORKER_WAIT))
3336 mworker_kill_max_reloads(SIGTERM);
3337
Willy Tarreaubaaee002006-06-26 02:48:02 +02003338 /* Note that any error at this stage will be fatal because we will not
3339 * be able to restart the old pids.
3340 */
3341
William Dauchyf9af9d72019-11-17 15:47:16 +01003342 if ((global.mode & (MODE_MWORKER | MODE_DAEMON)) == 0)
3343 set_identity(argv[0]);
Willy Tarreau636848a2019-04-15 19:38:50 +02003344
Willy Tarreaubaaee002006-06-26 02:48:02 +02003345 /* check ulimits */
3346 limit.rlim_cur = limit.rlim_max = 0;
3347 getrlimit(RLIMIT_NOFILE, &limit);
3348 if (limit.rlim_cur < global.maxsock) {
William Dauchy0fec3ab2019-10-27 20:08:11 +01003349 if (global.tune.options & GTUNE_STRICT_LIMITS) {
3350 ha_alert("[%s.main()] FD limit (%d) too low for maxconn=%d/maxsock=%d. "
3351 "Please raise 'ulimit-n' to %d or more to avoid any trouble.\n",
3352 argv[0], (int)limit.rlim_cur, global.maxconn, global.maxsock,
3353 global.maxsock);
Jerome Magnin50f757c2021-01-12 20:19:38 +01003354 exit(1);
William Dauchy0fec3ab2019-10-27 20:08:11 +01003355 }
3356 else
3357 ha_alert("[%s.main()] FD limit (%d) too low for maxconn=%d/maxsock=%d. "
William Dauchya5194602020-03-28 19:29:58 +01003358 "Please raise 'ulimit-n' to %d or more to avoid any trouble.\n",
William Dauchy0fec3ab2019-10-27 20:08:11 +01003359 argv[0], (int)limit.rlim_cur, global.maxconn, global.maxsock,
3360 global.maxsock);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003361 }
3362
William Lallemand944e6192018-11-21 15:48:31 +01003363 if (global.mode & (MODE_DAEMON | MODE_MWORKER | MODE_MWORKER_WAIT)) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02003364 int ret = 0;
Willy Tarreaud67ff342021-06-15 07:58:09 +02003365 int in_parent = 0;
William Lallemande1340412017-12-28 16:09:36 +01003366 int devnullfd = -1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003367
William Lallemand095ba4c2017-06-01 17:38:50 +02003368 /*
3369 * if daemon + mworker: must fork here to let a master
3370 * process live in background before forking children
3371 */
William Lallemand73b85e72017-06-01 17:38:51 +02003372
3373 if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL)
3374 && (global.mode & MODE_MWORKER)
3375 && (global.mode & MODE_DAEMON)) {
William Lallemand095ba4c2017-06-01 17:38:50 +02003376 ret = fork();
3377 if (ret < 0) {
Christopher Faulet767a84b2017-11-24 16:50:31 +01003378 ha_alert("[%s.main()] Cannot fork.\n", argv[0]);
William Lallemand095ba4c2017-06-01 17:38:50 +02003379 protocol_unbind_all();
3380 exit(1); /* there has been an error */
William Lallemandbfd8eb52018-07-04 15:31:23 +02003381 } else if (ret > 0) { /* parent leave to daemonize */
William Lallemand095ba4c2017-06-01 17:38:50 +02003382 exit(0);
William Lallemandbfd8eb52018-07-04 15:31:23 +02003383 } else /* change the process group ID in the child (master process) */
3384 setsid();
William Lallemand095ba4c2017-06-01 17:38:50 +02003385 }
William Lallemande20b6a62017-06-01 17:38:55 +02003386
William Lallemande20b6a62017-06-01 17:38:55 +02003387
William Lallemanddeed7802017-11-06 11:00:04 +01003388 /* if in master-worker mode, write the PID of the father */
3389 if (global.mode & MODE_MWORKER) {
3390 char pidstr[100];
Willy Tarreau76a80c72019-06-22 07:41:38 +02003391 snprintf(pidstr, sizeof(pidstr), "%d\n", (int)getpid());
Willy Tarreau46ec48b2018-01-23 19:20:19 +01003392 if (pidfd >= 0)
Willy Tarreau2e8ab6b2020-03-14 11:03:20 +01003393 DISGUISE(write(pidfd, pidstr, strlen(pidstr)));
William Lallemanddeed7802017-11-06 11:00:04 +01003394 }
3395
Willy Tarreaubaaee002006-06-26 02:48:02 +02003396 /* the father launches the required number of processes */
William Lallemand944e6192018-11-21 15:48:31 +01003397 if (!(global.mode & MODE_MWORKER_WAIT)) {
William Lallemand9a1ee7a2019-04-01 11:30:02 +02003398 if (global.mode & MODE_MWORKER)
3399 mworker_ext_launch_all();
Willy Tarreaud67ff342021-06-15 07:58:09 +02003400
3401 ret = fork();
3402 if (ret < 0) {
3403 ha_alert("[%s.main()] Cannot fork.\n", argv[0]);
3404 protocol_unbind_all();
3405 exit(1); /* there has been an error */
3406 }
3407 else if (ret == 0) { /* child breaks here */
Willy Tarreau3c032f22021-07-21 10:17:02 +02003408 /* This one must not be exported, it's internal! */
3409 unsetenv("HAPROXY_MWORKER_REEXEC");
Willy Tarreaue8422bf2021-06-15 09:08:18 +02003410 ha_random_jump96(1);
Willy Tarreaud67ff342021-06-15 07:58:09 +02003411 }
3412 else { /* parent here */
3413 in_parent = 1;
3414
William Lallemand944e6192018-11-21 15:48:31 +01003415 if (pidfd >= 0 && !(global.mode & MODE_MWORKER)) {
3416 char pidstr[100];
3417 snprintf(pidstr, sizeof(pidstr), "%d\n", ret);
Willy Tarreau2e8ab6b2020-03-14 11:03:20 +01003418 DISGUISE(write(pidfd, pidstr, strlen(pidstr)));
William Lallemand944e6192018-11-21 15:48:31 +01003419 }
3420 if (global.mode & MODE_MWORKER) {
3421 struct mworker_proc *child;
William Lallemandce83b4a2018-10-26 14:47:30 +02003422
William Lallemand5d71a6b2021-11-09 15:25:31 +01003423 ha_notice("New worker (%d) forked\n", ret);
William Lallemand944e6192018-11-21 15:48:31 +01003424 /* find the right mworker_proc */
3425 list_for_each_entry(child, &proc_list, list) {
William Lallemandd4835a92022-07-21 00:52:43 +02003426 if (child->reloads == 0 &&
3427 child->options & PROC_O_TYPE_WORKER &&
3428 child->pid == -1) {
William Lallemand944e6192018-11-21 15:48:31 +01003429 child->timestamp = now.tv_sec;
3430 child->pid = ret;
William Lallemand1dc69632019-06-12 19:11:33 +02003431 child->version = strdup(haproxy_version);
William Lallemand944e6192018-11-21 15:48:31 +01003432 break;
3433 }
William Lallemandce83b4a2018-10-26 14:47:30 +02003434 }
3435 }
William Lallemand944e6192018-11-21 15:48:31 +01003436 }
Willy Tarreaud67ff342021-06-15 07:58:09 +02003437
William Lallemand944e6192018-11-21 15:48:31 +01003438 } else {
3439 /* wait mode */
Willy Tarreaud67ff342021-06-15 07:58:09 +02003440 in_parent = 1;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003441 }
Willy Tarreaufc6c0322012-11-16 16:12:27 +01003442
3443#ifdef USE_CPU_AFFINITY
Willy Tarreau5b093412022-07-08 09:38:30 +02003444 if (!in_parent && ha_cpuset_count(&cpu_map[0].proc)) { /* only do this if the process has a CPU map */
Olivier Houchard97148f62017-08-16 17:29:11 +02003445
David CARLIERdf91cbd2022-01-06 18:53:50 +00003446#if defined(CPUSET_USE_CPUSET) || defined(__DragonFly__)
Willy Tarreau5b093412022-07-08 09:38:30 +02003447 struct hap_cpuset *set = &cpu_map[0].proc;
Amaury Denoyelle982fb532021-04-21 18:39:58 +02003448 sched_setaffinity(0, sizeof(set->cpuset), &set->cpuset);
David CARLIERdf91cbd2022-01-06 18:53:50 +00003449#elif defined(__FreeBSD__)
Willy Tarreau5b093412022-07-08 09:38:30 +02003450 struct hap_cpuset *set = &cpu_map[0].proc;
David CARLIERdf91cbd2022-01-06 18:53:50 +00003451 ret = cpuset_setaffinity(CPU_LEVEL_WHICH, CPU_WHICH_PID, -1, sizeof(set->cpuset), &set->cpuset);
Willy Tarreaufc6c0322012-11-16 16:12:27 +01003452#endif
Amaury Denoyelle982fb532021-04-21 18:39:58 +02003453 }
Pieter Baauwcaa6a1b2015-09-17 21:26:40 +02003454#endif
Willy Tarreaubaaee002006-06-26 02:48:02 +02003455 /* close the pidfile both in children and father */
Willy Tarreau269ab312012-09-05 08:02:48 +02003456 if (pidfd >= 0) {
3457 //lseek(pidfd, 0, SEEK_SET); /* debug: emulate eglibc bug */
3458 close(pidfd);
3459 }
Willy Tarreaud137dd32010-08-25 12:49:05 +02003460
3461 /* We won't ever use this anymore */
Willy Tarreau61cfdf42021-02-20 10:46:51 +01003462 ha_free(&global.pidfile);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003463
Willy Tarreaud67ff342021-06-15 07:58:09 +02003464 if (in_parent) {
William Lallemand944e6192018-11-21 15:48:31 +01003465 if (global.mode & (MODE_MWORKER|MODE_MWORKER_WAIT)) {
William Lallemandfab0fdc2021-11-09 18:01:22 +01003466 master = 1;
PiBa-NLbaf6ea42017-11-28 23:26:08 +01003467
3468 if ((!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE)) &&
3469 (global.mode & MODE_DAEMON)) {
3470 /* detach from the tty, this is required to properly daemonize. */
William Lallemande1340412017-12-28 16:09:36 +01003471 if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL))
3472 stdio_quiet(-1);
3473
PiBa-NLbaf6ea42017-11-28 23:26:08 +01003474 global.mode &= ~MODE_VERBOSE;
3475 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
PiBa-NLbaf6ea42017-11-28 23:26:08 +01003476 }
3477
William Lallemandfab0fdc2021-11-09 18:01:22 +01003478 if (global.mode & MODE_MWORKER_WAIT) {
3479 /* only the wait mode handles the master CLI */
3480 mworker_loop();
3481 } else {
3482
William Lallemanda46a99e2022-07-07 14:00:36 +02003483#if defined(USE_SYSTEMD)
3484 if (global.tune.options & GTUNE_USE_SYSTEMD)
3485 sd_notifyf(0, "READY=1\nMAINPID=%lu\nSTATUS=Ready.\n", (unsigned long)getpid());
3486#endif
William Lallemandfab0fdc2021-11-09 18:01:22 +01003487 /* if not in wait mode, reload in wait mode to free the memory */
William Lallemand836bda22021-11-09 18:16:47 +01003488 ha_notice("Loading success.\n");
William Lallemand68836742021-11-10 10:49:06 +01003489 proc_self->failedreloads = 0; /* reset the number of failure */
William Lallemandfab0fdc2021-11-09 18:01:22 +01003490 mworker_reexec_waitmode();
3491 }
William Lallemand1499b9b2017-06-07 15:04:47 +02003492 /* should never get there */
3493 exit(EXIT_FAILURE);
Willy Tarreauedaff0a2015-05-01 17:01:08 +02003494 }
William Lallemandcf4e4962017-06-08 19:05:48 +02003495#if defined(USE_OPENSSL) && !defined(OPENSSL_NO_DH)
Grant Zhang872f9c22017-01-21 01:10:18 +00003496 ssl_free_dh();
3497#endif
William Lallemand1499b9b2017-06-07 15:04:47 +02003498 exit(0); /* parent must leave */
Willy Tarreauedaff0a2015-05-01 17:01:08 +02003499 }
3500
William Lallemandcb11fd22017-06-01 17:38:52 +02003501 /* child must never use the atexit function */
3502 atexit_flag = 0;
3503
William Lallemandbc193052018-09-11 10:06:26 +02003504 /* close useless master sockets */
3505 if (global.mode & MODE_MWORKER) {
3506 struct mworker_proc *child, *it;
3507 master = 0;
3508
William Lallemand309dc9a2018-10-26 14:47:45 +02003509 mworker_cli_proxy_stop();
3510
William Lallemandbc193052018-09-11 10:06:26 +02003511 /* free proc struct of other processes */
3512 list_for_each_entry_safe(child, it, &proc_list, list) {
William Lallemandce83b4a2018-10-26 14:47:30 +02003513 /* close the FD of the master side for all
3514 * workers, we don't need to close the worker
3515 * side of other workers since it's done with
3516 * the bind_proc */
William Lallemand7e018782022-01-28 21:56:24 +01003517 if (child->ipc_fd[0] >= 0) {
Tim Duesterhus742e0f92018-11-25 20:03:39 +01003518 close(child->ipc_fd[0]);
William Lallemand7e018782022-01-28 21:56:24 +01003519 child->ipc_fd[0] = -1;
3520 }
Willy Tarreaue8422bf2021-06-15 09:08:18 +02003521 if (child->options & PROC_O_TYPE_WORKER &&
William Lallemandd4835a92022-07-21 00:52:43 +02003522 child->reloads == 0 &&
3523 child->pid == -1) {
William Lallemandce83b4a2018-10-26 14:47:30 +02003524 /* keep this struct if this is our pid */
3525 proc_self = child;
William Lallemandbc193052018-09-11 10:06:26 +02003526 continue;
William Lallemandce83b4a2018-10-26 14:47:30 +02003527 }
Willy Tarreau2b718102021-04-21 07:32:39 +02003528 LIST_DELETE(&child->list);
Tim Duesterhus9b7a9762019-05-16 20:23:22 +02003529 mworker_free_child(child);
3530 child = NULL;
William Lallemandbc193052018-09-11 10:06:26 +02003531 }
3532 }
Willy Tarreau1605c7a2018-01-23 19:01:49 +01003533
William Lallemande1340412017-12-28 16:09:36 +01003534 if (!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE)) {
3535 devnullfd = open("/dev/null", O_RDWR, 0);
3536 if (devnullfd < 0) {
3537 ha_alert("Cannot open /dev/null\n");
3538 exit(EXIT_FAILURE);
3539 }
3540 }
3541
William Lallemand095ba4c2017-06-01 17:38:50 +02003542 /* Must chroot and setgid/setuid in the children */
3543 /* chroot if needed */
3544 if (global.chroot != NULL) {
3545 if (chroot(global.chroot) == -1 || chdir("/") == -1) {
Willy Tarreaue34cf282021-06-15 08:59:19 +02003546 ha_alert("[%s.main()] Cannot chroot(%s).\n", argv[0], global.chroot);
William Lallemand095ba4c2017-06-01 17:38:50 +02003547 if (nb_oldpids)
3548 tell_old_pids(SIGTTIN);
3549 protocol_unbind_all();
3550 exit(1);
3551 }
3552 }
3553
Willy Tarreau61cfdf42021-02-20 10:46:51 +01003554 ha_free(&global.chroot);
William Dauchyf9af9d72019-11-17 15:47:16 +01003555 set_identity(argv[0]);
William Lallemand095ba4c2017-06-01 17:38:50 +02003556
William Lallemand7f80eb22017-05-26 18:19:55 +02003557 /* pass through every cli socket, and check if it's bound to
3558 * the current process and if it exposes listeners sockets.
3559 * Caution: the GTUNE_SOCKET_TRANSFER is now set after the fork.
3560 * */
3561
Willy Tarreau4975d142021-03-13 11:00:33 +01003562 if (global.cli_fe) {
William Lallemand7f80eb22017-05-26 18:19:55 +02003563 struct bind_conf *bind_conf;
3564
Willy Tarreau4975d142021-03-13 11:00:33 +01003565 list_for_each_entry(bind_conf, &global.cli_fe->conf.bind, by_fe) {
William Lallemand7f80eb22017-05-26 18:19:55 +02003566 if (bind_conf->level & ACCESS_FD_LISTENERS) {
Willy Tarreau72faef32021-06-15 08:36:30 +02003567 global.tune.options |= GTUNE_SOCKET_TRANSFER;
3568 break;
William Lallemand7f80eb22017-05-26 18:19:55 +02003569 }
3570 }
Willy Tarreauf83d3fe2015-05-01 19:13:41 +02003571 }
3572
William Lallemand2e8fad92018-11-13 16:18:23 +01003573 /*
3574 * This is only done in daemon mode because we might want the
3575 * logs on stdout in mworker mode. If we're NOT in QUIET mode,
3576 * we should now close the 3 first FDs to ensure that we can
3577 * detach from the TTY. We MUST NOT do it in other cases since
3578 * it would have already be done, and 0-2 would have been
3579 * affected to listening sockets
Willy Tarreaubaaee002006-06-26 02:48:02 +02003580 */
William Lallemand2e8fad92018-11-13 16:18:23 +01003581 if ((global.mode & MODE_DAEMON) &&
3582 (!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE))) {
Willy Tarreaubaaee002006-06-26 02:48:02 +02003583 /* detach from the tty */
William Lallemande1340412017-12-28 16:09:36 +01003584 stdio_quiet(devnullfd);
Willy Tarreau106cb762008-11-16 07:40:34 +01003585 global.mode &= ~MODE_VERBOSE;
Willy Tarreaubaaee002006-06-26 02:48:02 +02003586 global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */
3587 }
3588 pid = getpid(); /* update child's pid */
William Lallemandbfd8eb52018-07-04 15:31:23 +02003589 if (!(global.mode & MODE_MWORKER)) /* in mworker mode we don't want a new pgid for the children */
3590 setsid();
Willy Tarreau2ff76222007-04-09 19:29:56 +02003591 fork_poller();
Willy Tarreaubaaee002006-06-26 02:48:02 +02003592 }
3593
William Dauchye039f262019-11-17 15:47:15 +01003594 /* try our best to re-enable core dumps depending on system capabilities.
3595 * What is addressed here :
3596 * - remove file size limits
3597 * - remove core size limits
3598 * - mark the process dumpable again if it lost it due to user/group
3599 */
3600 if (global.tune.options & GTUNE_SET_DUMPABLE) {
3601 limit.rlim_cur = limit.rlim_max = RLIM_INFINITY;
3602
3603#if defined(RLIMIT_FSIZE)
3604 if (setrlimit(RLIMIT_FSIZE, &limit) == -1) {
3605 if (global.tune.options & GTUNE_STRICT_LIMITS) {
3606 ha_alert("[%s.main()] Failed to set the raise the maximum "
3607 "file size.\n", argv[0]);
Jerome Magnin50f757c2021-01-12 20:19:38 +01003608 exit(1);
William Dauchye039f262019-11-17 15:47:15 +01003609 }
3610 else
3611 ha_warning("[%s.main()] Failed to set the raise the maximum "
William Dauchya5194602020-03-28 19:29:58 +01003612 "file size.\n", argv[0]);
William Dauchye039f262019-11-17 15:47:15 +01003613 }
3614#endif
3615
3616#if defined(RLIMIT_CORE)
3617 if (setrlimit(RLIMIT_CORE, &limit) == -1) {
3618 if (global.tune.options & GTUNE_STRICT_LIMITS) {
3619 ha_alert("[%s.main()] Failed to set the raise the core "
3620 "dump size.\n", argv[0]);
Jerome Magnin50f757c2021-01-12 20:19:38 +01003621 exit(1);
William Dauchye039f262019-11-17 15:47:15 +01003622 }
3623 else
3624 ha_warning("[%s.main()] Failed to set the raise the core "
William Dauchya5194602020-03-28 19:29:58 +01003625 "dump size.\n", argv[0]);
William Dauchye039f262019-11-17 15:47:15 +01003626 }
3627#endif
3628
3629#if defined(USE_PRCTL)
3630 if (prctl(PR_SET_DUMPABLE, 1, 0, 0, 0) == -1)
3631 ha_warning("[%s.main()] Failed to set the dumpable flag, "
3632 "no core will be dumped.\n", argv[0]);
devnexen@gmail.com21185972021-08-21 09:13:10 +01003633#elif defined(USE_PROCCTL)
Willy Tarreau28345c62021-10-08 15:55:13 +02003634 {
3635 int traceable = PROC_TRACE_CTL_ENABLE;
3636 if (procctl(P_PID, getpid(), PROC_TRACE_CTL, &traceable) == -1)
3637 ha_warning("[%s.main()] Failed to set the traceable flag, "
3638 "no core will be dumped.\n", argv[0]);
3639 }
William Dauchye039f262019-11-17 15:47:15 +01003640#endif
3641 }
3642
Christopher Faulete3a5e352017-10-24 13:53:54 +02003643 global.mode &= ~MODE_STARTING;
Amaury Denoyelle6af81f82021-05-27 15:45:28 +02003644 reset_usermsgs_ctx();
3645
Willy Tarreau2d5d4e02021-09-28 10:36:57 +02003646 /* start threads 2 and above */
Willy Tarreaud10385a2021-10-06 22:22:40 +02003647 setup_extra_threads(&run_thread_poll_loop);
William Lallemand1aab50b2018-06-07 09:46:01 +02003648
Willy Tarreau2d5d4e02021-09-28 10:36:57 +02003649 /* when multithreading we need to let only the thread 0 handle the signals */
William Lallemandd3801c12018-09-11 10:06:23 +02003650 haproxy_unblock_signals();
Willy Tarreau2d5d4e02021-09-28 10:36:57 +02003651
3652 /* Finally, start the poll loop for the first thread */
Willy Tarreau43ab05b2021-09-28 09:43:11 +02003653 run_thread_poll_loop(&ha_thread_info[0]);
Willy Tarreau2d5d4e02021-09-28 10:36:57 +02003654
3655 /* wait for all threads to terminate */
3656 wait_for_threads_completion();
Christopher Faulet1d17c102017-08-29 15:38:48 +02003657
Tim Duesterhus0a3b43d2020-06-14 00:37:42 +02003658 deinit_and_exit(0);
Willy Tarreaubaaee002006-06-26 02:48:02 +02003659}
3660
Willy Tarreaubaaee002006-06-26 02:48:02 +02003661/*
3662 * Local variables:
3663 * c-indent-level: 8
3664 * c-basic-offset: 8
3665 * End:
3666 */