blob: 47020ffbf22ae783be0cdaba78bbf7d79fdf6ec9 [file] [log] [blame]
William Lallemand74c24fb2016-11-21 17:18:36 +01001/*
2 * Functions dedicated to statistics output and the stats socket
3 *
4 * Copyright 2000-2012 Willy Tarreau <w@1wt.eu>
5 * Copyright 2007-2009 Krzysztof Piotr Oledzki <ole@ans.pl>
6 *
7 * This program is free software; you can redistribute it and/or
8 * modify it under the terms of the GNU General Public License
9 * as published by the Free Software Foundation; either version
10 * 2 of the License, or (at your option) any later version.
11 *
12 */
13
14#include <ctype.h>
15#include <errno.h>
16#include <fcntl.h>
17#include <stdio.h>
18#include <stdlib.h>
19#include <string.h>
20#include <pwd.h>
21#include <grp.h>
22
23#include <sys/socket.h>
24#include <sys/stat.h>
25#include <sys/types.h>
26
Olivier Houchardf886e342017-04-05 22:24:59 +020027#include <net/if.h>
28
William Lallemand74c24fb2016-11-21 17:18:36 +010029#include <common/cfgparse.h>
30#include <common/compat.h>
31#include <common/config.h>
32#include <common/debug.h>
33#include <common/memory.h>
34#include <common/mini-clist.h>
35#include <common/standard.h>
36#include <common/ticks.h>
37#include <common/time.h>
38#include <common/uri_auth.h>
39#include <common/version.h>
40#include <common/base64.h>
41
42#include <types/applet.h>
William Lallemand9ed62032016-11-21 17:49:11 +010043#include <types/cli.h>
William Lallemand74c24fb2016-11-21 17:18:36 +010044#include <types/global.h>
45#include <types/dns.h>
William Lallemand9ed62032016-11-21 17:49:11 +010046#include <types/stats.h>
William Lallemand74c24fb2016-11-21 17:18:36 +010047
48#include <proto/backend.h>
49#include <proto/channel.h>
50#include <proto/checks.h>
51#include <proto/compression.h>
William Lallemand9ed62032016-11-21 17:49:11 +010052#include <proto/stats.h>
William Lallemand74c24fb2016-11-21 17:18:36 +010053#include <proto/fd.h>
54#include <proto/freq_ctr.h>
55#include <proto/frontend.h>
56#include <proto/log.h>
57#include <proto/pattern.h>
58#include <proto/pipe.h>
59#include <proto/listener.h>
60#include <proto/map.h>
William Lallemand74c24fb2016-11-21 17:18:36 +010061#include <proto/proto_uxst.h>
62#include <proto/proxy.h>
63#include <proto/sample.h>
64#include <proto/session.h>
65#include <proto/stream.h>
66#include <proto/server.h>
William Lallemand74c24fb2016-11-21 17:18:36 +010067#include <proto/stream_interface.h>
68#include <proto/task.h>
Willy Tarreau7a4a0ac2017-07-25 19:32:50 +020069#include <proto/proto_udp.h>
William Lallemand74c24fb2016-11-21 17:18:36 +010070
William Lallemand74c24fb2016-11-21 17:18:36 +010071static struct applet cli_applet;
72
73static const char stats_sock_usage_msg[] =
74 "Unknown command. Please enter one of the following commands only :\n"
William Lallemand74c24fb2016-11-21 17:18:36 +010075 " help : this message\n"
76 " prompt : toggle interactive mode with prompt\n"
77 " quit : disconnect\n"
William Lallemand74c24fb2016-11-21 17:18:36 +010078 "";
79
80static const char stats_permission_denied_msg[] =
81 "Permission denied\n"
82 "";
83
84
85static char *dynamic_usage_msg = NULL;
86
87/* List head of cli keywords */
88static struct cli_kw_list cli_keywords = {
89 .list = LIST_HEAD_INIT(cli_keywords.list)
90};
91
92extern const char *stat_status_codes[];
93
94char *cli_gen_usage_msg()
95{
96 struct cli_kw_list *kw_list;
97 struct cli_kw *kw;
98 struct chunk *tmp = get_trash_chunk();
99 struct chunk out;
100
101 free(dynamic_usage_msg);
102 dynamic_usage_msg = NULL;
103
104 if (LIST_ISEMPTY(&cli_keywords.list))
105 return NULL;
106
107 chunk_reset(tmp);
108 chunk_strcat(tmp, stats_sock_usage_msg);
109 list_for_each_entry(kw_list, &cli_keywords.list, list) {
110 kw = &kw_list->kw[0];
111 while (kw->usage) {
112 chunk_appendf(tmp, " %s\n", kw->usage);
113 kw++;
114 }
115 }
116 chunk_init(&out, NULL, 0);
117 chunk_dup(&out, tmp);
118 dynamic_usage_msg = out.str;
119 return dynamic_usage_msg;
120}
121
122struct cli_kw* cli_find_kw(char **args)
123{
124 struct cli_kw_list *kw_list;
125 struct cli_kw *kw;/* current cli_kw */
126 char **tmp_args;
127 const char **tmp_str_kw;
128 int found = 0;
129
130 if (LIST_ISEMPTY(&cli_keywords.list))
131 return NULL;
132
133 list_for_each_entry(kw_list, &cli_keywords.list, list) {
134 kw = &kw_list->kw[0];
135 while (*kw->str_kw) {
136 tmp_args = args;
137 tmp_str_kw = kw->str_kw;
138 while (*tmp_str_kw) {
139 if (strcmp(*tmp_str_kw, *tmp_args) == 0) {
140 found = 1;
141 } else {
142 found = 0;
143 break;
144 }
145 tmp_args++;
146 tmp_str_kw++;
147 }
148 if (found)
149 return (kw);
150 kw++;
151 }
152 }
153 return NULL;
154}
155
156void cli_register_kw(struct cli_kw_list *kw_list)
157{
158 LIST_ADDQ(&cli_keywords.list, &kw_list->list);
159}
160
161
162/* allocate a new stats frontend named <name>, and return it
163 * (or NULL in case of lack of memory).
164 */
165static struct proxy *alloc_stats_fe(const char *name, const char *file, int line)
166{
167 struct proxy *fe;
168
169 fe = calloc(1, sizeof(*fe));
170 if (!fe)
171 return NULL;
172
173 init_new_proxy(fe);
174 fe->next = proxy;
175 proxy = fe;
176 fe->last_change = now.tv_sec;
177 fe->id = strdup("GLOBAL");
178 fe->cap = PR_CAP_FE;
179 fe->maxconn = 10; /* default to 10 concurrent connections */
180 fe->timeout.client = MS_TO_TICKS(10000); /* default timeout of 10 seconds */
181 fe->conf.file = strdup(file);
182 fe->conf.line = line;
183 fe->accept = frontend_accept;
184 fe->default_target = &cli_applet.obj_type;
185
186 /* the stats frontend is the only one able to assign ID #0 */
187 fe->conf.id.key = fe->uuid = 0;
188 eb32_insert(&used_proxy_id, &fe->conf.id);
189 return fe;
190}
191
192/* This function parses a "stats" statement in the "global" section. It returns
193 * -1 if there is any error, otherwise zero. If it returns -1, it will write an
194 * error message into the <err> buffer which will be preallocated. The trailing
195 * '\n' must not be written. The function must be called with <args> pointing to
196 * the first word after "stats".
197 */
198static int stats_parse_global(char **args, int section_type, struct proxy *curpx,
199 struct proxy *defpx, const char *file, int line,
200 char **err)
201{
202 struct bind_conf *bind_conf;
203 struct listener *l;
204
205 if (!strcmp(args[1], "socket")) {
206 int cur_arg;
207
208 if (*args[2] == 0) {
209 memprintf(err, "'%s %s' in global section expects an address or a path to a UNIX socket", args[0], args[1]);
210 return -1;
211 }
212
213 if (!global.stats_fe) {
214 if ((global.stats_fe = alloc_stats_fe("GLOBAL", file, line)) == NULL) {
215 memprintf(err, "'%s %s' : out of memory trying to allocate a frontend", args[0], args[1]);
216 return -1;
217 }
218 }
219
Willy Tarreaua261e9b2016-12-22 20:44:00 +0100220 bind_conf = bind_conf_alloc(global.stats_fe, file, line, args[2], xprt_get(XPRT_RAW));
William Lallemand07a62f72017-05-24 00:57:40 +0200221 bind_conf->level &= ~ACCESS_LVL_MASK;
222 bind_conf->level |= ACCESS_LVL_OPER; /* default access level */
William Lallemand74c24fb2016-11-21 17:18:36 +0100223
224 if (!str2listener(args[2], global.stats_fe, bind_conf, file, line, err)) {
225 memprintf(err, "parsing [%s:%d] : '%s %s' : %s\n",
226 file, line, args[0], args[1], err && *err ? *err : "error");
227 return -1;
228 }
229
230 cur_arg = 3;
231 while (*args[cur_arg]) {
232 static int bind_dumped;
233 struct bind_kw *kw;
234
235 kw = bind_find_kw(args[cur_arg]);
236 if (kw) {
237 if (!kw->parse) {
238 memprintf(err, "'%s %s' : '%s' option is not implemented in this version (check build options).",
239 args[0], args[1], args[cur_arg]);
240 return -1;
241 }
242
243 if (kw->parse(args, cur_arg, global.stats_fe, bind_conf, err) != 0) {
244 if (err && *err)
245 memprintf(err, "'%s %s' : '%s'", args[0], args[1], *err);
246 else
247 memprintf(err, "'%s %s' : error encountered while processing '%s'",
248 args[0], args[1], args[cur_arg]);
249 return -1;
250 }
251
252 cur_arg += 1 + kw->skip;
253 continue;
254 }
255
256 if (!bind_dumped) {
257 bind_dump_kws(err);
258 indent_msg(err, 4);
259 bind_dumped = 1;
260 }
261
262 memprintf(err, "'%s %s' : unknown keyword '%s'.%s%s",
263 args[0], args[1], args[cur_arg],
264 err && *err ? " Registered keywords :" : "", err && *err ? *err : "");
265 return -1;
266 }
267
268 list_for_each_entry(l, &bind_conf->listeners, by_bind) {
269 l->maxconn = global.stats_fe->maxconn;
270 l->backlog = global.stats_fe->backlog;
271 l->accept = session_accept_fd;
William Lallemand74c24fb2016-11-21 17:18:36 +0100272 l->default_target = global.stats_fe->default_target;
273 l->options |= LI_O_UNLIMITED; /* don't make the peers subject to global limits */
274 l->nice = -64; /* we want to boost priority for local stats */
275 global.maxsock += l->maxconn;
276 }
277 }
278 else if (!strcmp(args[1], "timeout")) {
279 unsigned timeout;
280 const char *res = parse_time_err(args[2], &timeout, TIME_UNIT_MS);
281
282 if (res) {
283 memprintf(err, "'%s %s' : unexpected character '%c'", args[0], args[1], *res);
284 return -1;
285 }
286
287 if (!timeout) {
288 memprintf(err, "'%s %s' expects a positive value", args[0], args[1]);
289 return -1;
290 }
291 if (!global.stats_fe) {
292 if ((global.stats_fe = alloc_stats_fe("GLOBAL", file, line)) == NULL) {
293 memprintf(err, "'%s %s' : out of memory trying to allocate a frontend", args[0], args[1]);
294 return -1;
295 }
296 }
297 global.stats_fe->timeout.client = MS_TO_TICKS(timeout);
298 }
299 else if (!strcmp(args[1], "maxconn")) {
300 int maxconn = atol(args[2]);
301
302 if (maxconn <= 0) {
303 memprintf(err, "'%s %s' expects a positive value", args[0], args[1]);
304 return -1;
305 }
306
307 if (!global.stats_fe) {
308 if ((global.stats_fe = alloc_stats_fe("GLOBAL", file, line)) == NULL) {
309 memprintf(err, "'%s %s' : out of memory trying to allocate a frontend", args[0], args[1]);
310 return -1;
311 }
312 }
313 global.stats_fe->maxconn = maxconn;
314 }
315 else if (!strcmp(args[1], "bind-process")) { /* enable the socket only on some processes */
316 int cur_arg = 2;
317 unsigned long set = 0;
318
319 if (!global.stats_fe) {
320 if ((global.stats_fe = alloc_stats_fe("GLOBAL", file, line)) == NULL) {
321 memprintf(err, "'%s %s' : out of memory trying to allocate a frontend", args[0], args[1]);
322 return -1;
323 }
324 }
325
326 while (*args[cur_arg]) {
327 unsigned int low, high;
328
329 if (strcmp(args[cur_arg], "all") == 0) {
330 set = 0;
331 break;
332 }
333 else if (strcmp(args[cur_arg], "odd") == 0) {
334 set |= ~0UL/3UL; /* 0x555....555 */
335 }
336 else if (strcmp(args[cur_arg], "even") == 0) {
337 set |= (~0UL/3UL) << 1; /* 0xAAA...AAA */
338 }
339 else if (isdigit((int)*args[cur_arg])) {
340 char *dash = strchr(args[cur_arg], '-');
341
342 low = high = str2uic(args[cur_arg]);
343 if (dash)
344 high = str2uic(dash + 1);
345
346 if (high < low) {
347 unsigned int swap = low;
348 low = high;
349 high = swap;
350 }
351
352 if (low < 1 || high > LONGBITS) {
353 memprintf(err, "'%s %s' supports process numbers from 1 to %d.\n",
354 args[0], args[1], LONGBITS);
355 return -1;
356 }
357 while (low <= high)
358 set |= 1UL << (low++ - 1);
359 }
360 else {
361 memprintf(err,
362 "'%s %s' expects 'all', 'odd', 'even', or a list of process ranges with numbers from 1 to %d.\n",
363 args[0], args[1], LONGBITS);
364 return -1;
365 }
366 cur_arg++;
367 }
368 global.stats_fe->bind_proc = set;
369 }
370 else {
371 memprintf(err, "'%s' only supports 'socket', 'maxconn', 'bind-process' and 'timeout' (got '%s')", args[0], args[1]);
372 return -1;
373 }
374 return 0;
375}
376
Willy Tarreaude57a572016-11-23 17:01:39 +0100377/* Verifies that the CLI at least has a level at least as high as <level>
378 * (typically ACCESS_LVL_ADMIN). Returns 1 if OK, otherwise 0. In case of
379 * failure, an error message is prepared and the appctx's state is adjusted
380 * to print it so that a return 1 is enough to abort any processing.
381 */
382int cli_has_level(struct appctx *appctx, int level)
383{
384 struct stream_interface *si = appctx->owner;
385 struct stream *s = si_strm(si);
386
William Lallemand07a62f72017-05-24 00:57:40 +0200387 if ((strm_li(s)->bind_conf->level & ACCESS_LVL_MASK) < level) {
Willy Tarreaude57a572016-11-23 17:01:39 +0100388 appctx->ctx.cli.msg = stats_permission_denied_msg;
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100389 appctx->st0 = CLI_ST_PRINT;
Willy Tarreaude57a572016-11-23 17:01:39 +0100390 return 0;
391 }
William Lallemand74c24fb2016-11-21 17:18:36 +0100392 return 1;
393}
394
William Lallemand74c24fb2016-11-21 17:18:36 +0100395
Willy Tarreau41908562016-11-24 16:23:38 +0100396/* Processes the CLI interpreter on the stats socket. This function is called
397 * from the CLI's IO handler running in an appctx context. The function returns 1
398 * if the request was understood, otherwise zero. It is called with appctx->st0
399 * set to CLI_ST_GETREQ and presets ->st2 to 0 so that parsers don't have to do
400 * it. It will possilbly leave st0 to CLI_ST_CALLBACK if the keyword needs to
401 * have its own I/O handler called again. Most of the time, parsers will only
402 * set st0 to CLI_ST_PRINT and put their message to be displayed into cli.msg.
Willy Tarreaueaffde32016-12-16 17:59:25 +0100403 * If a keyword parser is NULL and an I/O handler is declared, the I/O handler
404 * will automatically be used.
William Lallemand74c24fb2016-11-21 17:18:36 +0100405 */
Willy Tarreau41908562016-11-24 16:23:38 +0100406static int cli_parse_request(struct appctx *appctx, char *line)
William Lallemand74c24fb2016-11-21 17:18:36 +0100407{
William Lallemand74c24fb2016-11-21 17:18:36 +0100408 char *args[MAX_STATS_ARGS + 1];
409 struct cli_kw *kw;
410 int arg;
411 int i, j;
412
413 while (isspace((unsigned char)*line))
414 line++;
415
416 arg = 0;
417 args[arg] = line;
418
419 while (*line && arg < MAX_STATS_ARGS) {
420 if (*line == '\\') {
421 line++;
422 if (*line == '\0')
423 break;
424 }
425 else if (isspace((unsigned char)*line)) {
426 *line++ = '\0';
427
428 while (isspace((unsigned char)*line))
429 line++;
430
431 args[++arg] = line;
432 continue;
433 }
434
435 line++;
436 }
437
438 while (++arg <= MAX_STATS_ARGS)
439 args[arg] = line;
440
Dragan Dosena1c35ab2016-11-24 11:33:12 +0100441 /* unescape '\' */
William Lallemand74c24fb2016-11-21 17:18:36 +0100442 arg = 0;
443 while (*args[arg] != '\0') {
444 j = 0;
445 for (i=0; args[arg][i] != '\0'; i++) {
Dragan Dosena1c35ab2016-11-24 11:33:12 +0100446 if (args[arg][i] == '\\') {
447 if (args[arg][i+1] == '\\')
448 i++;
449 else
450 continue;
451 }
William Lallemand74c24fb2016-11-21 17:18:36 +0100452 args[arg][j] = args[arg][i];
453 j++;
454 }
455 args[arg][j] = '\0';
456 arg++;
457 }
458
Willy Tarreau41908562016-11-24 16:23:38 +0100459 appctx->st2 = 0;
Willy Tarreaua2d58722016-12-16 12:37:03 +0100460 memset(&appctx->ctx.cli, 0, sizeof(appctx->ctx.cli));
Willy Tarreau41908562016-11-24 16:23:38 +0100461
462 kw = cli_find_kw(args);
Willy Tarreaueaffde32016-12-16 17:59:25 +0100463 if (!kw)
Willy Tarreau41908562016-11-24 16:23:38 +0100464 return 0;
465
466 appctx->io_handler = kw->io_handler;
Emeric Brund6871f72017-06-29 19:54:13 +0200467 appctx->io_release = kw->io_release;
468 /* kw->parse could set its own io_handler or ip_release handler */
Willy Tarreaueaffde32016-12-16 17:59:25 +0100469 if ((!kw->parse || kw->parse(args, appctx, kw->private) == 0) && appctx->io_handler) {
Willy Tarreau41908562016-11-24 16:23:38 +0100470 appctx->st0 = CLI_ST_CALLBACK;
William Lallemand74c24fb2016-11-21 17:18:36 +0100471 }
Willy Tarreau41908562016-11-24 16:23:38 +0100472 return 1;
William Lallemand74c24fb2016-11-21 17:18:36 +0100473}
474
475/* This I/O handler runs as an applet embedded in a stream interface. It is
476 * used to processes I/O from/to the stats unix socket. The system relies on a
477 * state machine handling requests and various responses. We read a request,
478 * then we process it and send the response, and we possibly display a prompt.
479 * Then we can read again. The state is stored in appctx->st0 and is one of the
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100480 * CLI_ST_* constants. appctx->st1 is used to indicate whether prompt is enabled
William Lallemand74c24fb2016-11-21 17:18:36 +0100481 * or not.
482 */
483static void cli_io_handler(struct appctx *appctx)
484{
485 struct stream_interface *si = appctx->owner;
486 struct channel *req = si_oc(si);
487 struct channel *res = si_ic(si);
488 int reql;
489 int len;
490
491 if (unlikely(si->state == SI_ST_DIS || si->state == SI_ST_CLO))
492 goto out;
493
Christopher Fauleta73e59b2016-12-09 17:30:18 +0100494 /* Check if the input buffer is avalaible. */
495 if (res->buf->size == 0) {
496 si_applet_cant_put(si);
497 goto out;
498 }
499
William Lallemand74c24fb2016-11-21 17:18:36 +0100500 while (1) {
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100501 if (appctx->st0 == CLI_ST_INIT) {
William Lallemand74c24fb2016-11-21 17:18:36 +0100502 /* Stats output not initialized yet */
503 memset(&appctx->ctx.stats, 0, sizeof(appctx->ctx.stats));
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100504 appctx->st0 = CLI_ST_GETREQ;
William Lallemand74c24fb2016-11-21 17:18:36 +0100505 }
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100506 else if (appctx->st0 == CLI_ST_END) {
William Lallemand74c24fb2016-11-21 17:18:36 +0100507 /* Let's close for real now. We just close the request
508 * side, the conditions below will complete if needed.
509 */
510 si_shutw(si);
511 break;
512 }
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100513 else if (appctx->st0 == CLI_ST_GETREQ) {
William Lallemand74c24fb2016-11-21 17:18:36 +0100514 /* ensure we have some output room left in the event we
515 * would want to return some info right after parsing.
516 */
517 if (buffer_almost_full(si_ib(si))) {
518 si_applet_cant_put(si);
519 break;
520 }
521
522 reql = bo_getline(si_oc(si), trash.str, trash.size);
523 if (reql <= 0) { /* closed or EOL not found */
524 if (reql == 0)
525 break;
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100526 appctx->st0 = CLI_ST_END;
William Lallemand74c24fb2016-11-21 17:18:36 +0100527 continue;
528 }
529
530 /* seek for a possible unescaped semi-colon. If we find
531 * one, we replace it with an LF and skip only this part.
532 */
533 for (len = 0; len < reql; len++) {
534 if (trash.str[len] == '\\') {
535 len++;
536 continue;
537 }
538 if (trash.str[len] == ';') {
539 trash.str[len] = '\n';
540 reql = len + 1;
541 break;
542 }
543 }
544
545 /* now it is time to check that we have a full line,
546 * remove the trailing \n and possibly \r, then cut the
547 * line.
548 */
549 len = reql - 1;
550 if (trash.str[len] != '\n') {
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100551 appctx->st0 = CLI_ST_END;
William Lallemand74c24fb2016-11-21 17:18:36 +0100552 continue;
553 }
554
555 if (len && trash.str[len-1] == '\r')
556 len--;
557
558 trash.str[len] = '\0';
559
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100560 appctx->st0 = CLI_ST_PROMPT;
William Lallemand74c24fb2016-11-21 17:18:36 +0100561 if (len) {
562 if (strcmp(trash.str, "quit") == 0) {
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100563 appctx->st0 = CLI_ST_END;
William Lallemand74c24fb2016-11-21 17:18:36 +0100564 continue;
565 }
566 else if (strcmp(trash.str, "prompt") == 0)
567 appctx->st1 = !appctx->st1;
568 else if (strcmp(trash.str, "help") == 0 ||
Willy Tarreau41908562016-11-24 16:23:38 +0100569 !cli_parse_request(appctx, trash.str)) {
William Lallemand74c24fb2016-11-21 17:18:36 +0100570 cli_gen_usage_msg();
571 if (dynamic_usage_msg)
572 appctx->ctx.cli.msg = dynamic_usage_msg;
573 else
574 appctx->ctx.cli.msg = stats_sock_usage_msg;
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100575 appctx->st0 = CLI_ST_PRINT;
William Lallemand74c24fb2016-11-21 17:18:36 +0100576 }
577 /* NB: stats_sock_parse_request() may have put
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100578 * another CLI_ST_O_* into appctx->st0.
William Lallemand74c24fb2016-11-21 17:18:36 +0100579 */
580 }
581 else if (!appctx->st1) {
582 /* if prompt is disabled, print help on empty lines,
583 * so that the user at least knows how to enable
584 * prompt and find help.
585 */
586 cli_gen_usage_msg();
587 if (dynamic_usage_msg)
588 appctx->ctx.cli.msg = dynamic_usage_msg;
589 else
590 appctx->ctx.cli.msg = stats_sock_usage_msg;
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100591 appctx->st0 = CLI_ST_PRINT;
William Lallemand74c24fb2016-11-21 17:18:36 +0100592 }
593
594 /* re-adjust req buffer */
595 bo_skip(si_oc(si), reql);
596 req->flags |= CF_READ_DONTWAIT; /* we plan to read small requests */
597 }
598 else { /* output functions */
599 switch (appctx->st0) {
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100600 case CLI_ST_PROMPT:
William Lallemand74c24fb2016-11-21 17:18:36 +0100601 break;
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100602 case CLI_ST_PRINT:
William Lallemand74c24fb2016-11-21 17:18:36 +0100603 if (bi_putstr(si_ic(si), appctx->ctx.cli.msg) != -1)
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100604 appctx->st0 = CLI_ST_PROMPT;
William Lallemand74c24fb2016-11-21 17:18:36 +0100605 else
606 si_applet_cant_put(si);
607 break;
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100608 case CLI_ST_PRINT_FREE:
William Lallemand74c24fb2016-11-21 17:18:36 +0100609 if (bi_putstr(si_ic(si), appctx->ctx.cli.err) != -1) {
610 free(appctx->ctx.cli.err);
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100611 appctx->st0 = CLI_ST_PROMPT;
William Lallemand74c24fb2016-11-21 17:18:36 +0100612 }
613 else
614 si_applet_cant_put(si);
615 break;
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100616 case CLI_ST_CALLBACK: /* use custom pointer */
William Lallemand74c24fb2016-11-21 17:18:36 +0100617 if (appctx->io_handler)
618 if (appctx->io_handler(appctx)) {
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100619 appctx->st0 = CLI_ST_PROMPT;
William Lallemand74c24fb2016-11-21 17:18:36 +0100620 if (appctx->io_release) {
621 appctx->io_release(appctx);
622 appctx->io_release = NULL;
623 }
624 }
625 break;
626 default: /* abnormal state */
627 si->flags |= SI_FL_ERR;
628 break;
629 }
630
631 /* The post-command prompt is either LF alone or LF + '> ' in interactive mode */
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100632 if (appctx->st0 == CLI_ST_PROMPT) {
William Lallemand74c24fb2016-11-21 17:18:36 +0100633 if (bi_putstr(si_ic(si), appctx->st1 ? "\n> " : "\n") != -1)
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100634 appctx->st0 = CLI_ST_GETREQ;
William Lallemand74c24fb2016-11-21 17:18:36 +0100635 else
636 si_applet_cant_put(si);
637 }
638
639 /* If the output functions are still there, it means they require more room. */
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100640 if (appctx->st0 >= CLI_ST_OUTPUT)
William Lallemand74c24fb2016-11-21 17:18:36 +0100641 break;
642
643 /* Now we close the output if one of the writers did so,
644 * or if we're not in interactive mode and the request
645 * buffer is empty. This still allows pipelined requests
646 * to be sent in non-interactive mode.
647 */
648 if ((res->flags & (CF_SHUTW|CF_SHUTW_NOW)) || (!appctx->st1 && !req->buf->o)) {
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100649 appctx->st0 = CLI_ST_END;
William Lallemand74c24fb2016-11-21 17:18:36 +0100650 continue;
651 }
652
653 /* switch state back to GETREQ to read next requests */
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100654 appctx->st0 = CLI_ST_GETREQ;
William Lallemand74c24fb2016-11-21 17:18:36 +0100655 }
656 }
657
658 if ((res->flags & CF_SHUTR) && (si->state == SI_ST_EST)) {
659 DPRINTF(stderr, "%s@%d: si to buf closed. req=%08x, res=%08x, st=%d\n",
660 __FUNCTION__, __LINE__, req->flags, res->flags, si->state);
661 /* Other side has closed, let's abort if we have no more processing to do
662 * and nothing more to consume. This is comparable to a broken pipe, so
663 * we forward the close to the request side so that it flows upstream to
664 * the client.
665 */
666 si_shutw(si);
667 }
668
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100669 if ((req->flags & CF_SHUTW) && (si->state == SI_ST_EST) && (appctx->st0 < CLI_ST_OUTPUT)) {
William Lallemand74c24fb2016-11-21 17:18:36 +0100670 DPRINTF(stderr, "%s@%d: buf to si closed. req=%08x, res=%08x, st=%d\n",
671 __FUNCTION__, __LINE__, req->flags, res->flags, si->state);
672 /* We have no more processing to do, and nothing more to send, and
673 * the client side has closed. So we'll forward this state downstream
674 * on the response buffer.
675 */
676 si_shutr(si);
677 res->flags |= CF_READ_NULL;
678 }
679
680 out:
681 DPRINTF(stderr, "%s@%d: st=%d, rqf=%x, rpf=%x, rqh=%d, rqs=%d, rh=%d, rs=%d\n",
682 __FUNCTION__, __LINE__,
683 si->state, req->flags, res->flags, req->buf->i, req->buf->o, res->buf->i, res->buf->o);
684}
685
William Lallemand74c24fb2016-11-21 17:18:36 +0100686/* This is called when the stream interface is closed. For instance, upon an
687 * external abort, we won't call the i/o handler anymore so we may need to
688 * remove back references to the stream currently being dumped.
689 */
690static void cli_release_handler(struct appctx *appctx)
691{
692 if (appctx->io_release) {
693 appctx->io_release(appctx);
694 appctx->io_release = NULL;
695 }
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100696 else if (appctx->st0 == CLI_ST_PRINT_FREE) {
William Lallemand74c24fb2016-11-21 17:18:36 +0100697 free(appctx->ctx.cli.err);
698 appctx->ctx.cli.err = NULL;
699 }
William Lallemand74c24fb2016-11-21 17:18:36 +0100700}
701
702/* This function dumps all environmnent variables to the buffer. It returns 0
703 * if the output buffer is full and it needs to be called again, otherwise
Willy Tarreauf6710f82016-12-16 17:45:44 +0100704 * non-zero. Dumps only one entry if st2 == STAT_ST_END. It uses cli.p0 as the
705 * pointer to the current variable.
William Lallemand74c24fb2016-11-21 17:18:36 +0100706 */
Willy Tarreau0a739292016-11-22 20:21:23 +0100707static int cli_io_handler_show_env(struct appctx *appctx)
William Lallemand74c24fb2016-11-21 17:18:36 +0100708{
Willy Tarreau0a739292016-11-22 20:21:23 +0100709 struct stream_interface *si = appctx->owner;
Willy Tarreauf6710f82016-12-16 17:45:44 +0100710 char **var = appctx->ctx.cli.p0;
William Lallemand74c24fb2016-11-21 17:18:36 +0100711
712 if (unlikely(si_ic(si)->flags & (CF_WRITE_ERROR|CF_SHUTW)))
713 return 1;
714
715 chunk_reset(&trash);
716
717 /* we have two inner loops here, one for the proxy, the other one for
718 * the buffer.
719 */
Willy Tarreauf6710f82016-12-16 17:45:44 +0100720 while (*var) {
721 chunk_printf(&trash, "%s\n", *var);
William Lallemand74c24fb2016-11-21 17:18:36 +0100722
723 if (bi_putchk(si_ic(si), &trash) == -1) {
724 si_applet_cant_put(si);
725 return 0;
726 }
727 if (appctx->st2 == STAT_ST_END)
728 break;
Willy Tarreauf6710f82016-12-16 17:45:44 +0100729 var++;
730 appctx->ctx.cli.p0 = var;
William Lallemand74c24fb2016-11-21 17:18:36 +0100731 }
732
733 /* dump complete */
734 return 1;
735}
736
Willy Tarreau7a4a0ac2017-07-25 19:32:50 +0200737/* This function dumps all file descriptors states (or the requested one) to
738 * the buffer. It returns 0 if the output buffer is full and it needs to be
739 * called again, otherwise non-zero. Dumps only one entry if st2 == STAT_ST_END.
740 * It uses cli.i0 as the fd number to restart from.
741 */
742static int cli_io_handler_show_fd(struct appctx *appctx)
743{
744 struct stream_interface *si = appctx->owner;
745 int fd = appctx->ctx.cli.i0;
746
747 if (unlikely(si_ic(si)->flags & (CF_WRITE_ERROR|CF_SHUTW)))
748 return 1;
749
750 chunk_reset(&trash);
751
752 /* we have two inner loops here, one for the proxy, the other one for
753 * the buffer.
754 */
755 while (fd < maxfd) {
756 struct fdtab fdt;
Willy Tarreau286ec682017-08-09 16:35:44 +0200757 struct listener *li = NULL;
758 struct server *sv = NULL;
759 struct proxy *px = NULL;
760 uint32_t conn_flags = 0;
Willy Tarreau7a4a0ac2017-07-25 19:32:50 +0200761
762 fdt = fdtab[fd];
763
764 if (fdt.iocb == conn_fd_handler) {
765 conn_flags = ((struct connection *)fdt.owner)->flags;
766 li = objt_listener(((struct connection *)fdt.owner)->target);
767 sv = objt_server(((struct connection *)fdt.owner)->target);
768 px = objt_proxy(((struct connection *)fdt.owner)->target);
769 }
770 else if (fdt.iocb == listener_accept)
771 li = fdt.owner;
772
773 if (!fdt.owner)
774 goto skip; // closed
775
776 chunk_printf(&trash,
777 " %5d : st=0x%02x(R:%c%c%c W:%c%c%c) ev=0x%02x(%c%c%c%c%c) [%c%c%c%c] cache=%u owner=%p iocb=%p(%s)",
778 fd,
779 fdt.state,
780 (fdt.state & FD_EV_POLLED_R) ? 'P' : 'p',
781 (fdt.state & FD_EV_READY_R) ? 'R' : 'r',
782 (fdt.state & FD_EV_ACTIVE_R) ? 'A' : 'a',
783 (fdt.state & FD_EV_POLLED_W) ? 'P' : 'p',
784 (fdt.state & FD_EV_READY_W) ? 'R' : 'r',
785 (fdt.state & FD_EV_ACTIVE_W) ? 'A' : 'a',
786 fdt.ev,
787 (fdt.ev & FD_POLL_HUP) ? 'H' : 'h',
788 (fdt.ev & FD_POLL_ERR) ? 'E' : 'e',
789 (fdt.ev & FD_POLL_OUT) ? 'O' : 'o',
790 (fdt.ev & FD_POLL_PRI) ? 'P' : 'p',
791 (fdt.ev & FD_POLL_IN) ? 'I' : 'i',
792 fdt.new ? 'N' : 'n',
793 fdt.updated ? 'U' : 'u',
794 fdt.linger_risk ? 'L' : 'l',
795 fdt.cloned ? 'C' : 'c',
796 fdt.cache,
797 fdt.owner,
798 fdt.iocb,
799 (fdt.iocb == conn_fd_handler) ? "conn_fd_handler" :
800 (fdt.iocb == dgram_fd_handler) ? "dgram_fd_handler" :
801 (fdt.iocb == listener_accept) ? "listener_accept" :
802 "unknown");
803
804 if (fdt.iocb == conn_fd_handler) {
805 chunk_appendf(&trash, " cflg=0x%08x", conn_flags);
806 if (px)
807 chunk_appendf(&trash, " px=%s", px->id);
808 else if (sv)
809 chunk_appendf(&trash, " sv=%s/%s", sv->id, sv->proxy->id);
810 else if (li)
811 chunk_appendf(&trash, " fe=%s", li->bind_conf->frontend->id);
812 }
813 else if (fdt.iocb == listener_accept) {
814 chunk_appendf(&trash, " l.st=%s fe=%s",
815 listener_state_str(li),
816 li->bind_conf->frontend->id);
817 }
818
819 chunk_appendf(&trash, "\n");
820
821 if (bi_putchk(si_ic(si), &trash) == -1) {
822 si_applet_cant_put(si);
823 return 0;
824 }
825 skip:
826 if (appctx->st2 == STAT_ST_END)
827 break;
828
829 fd++;
830 appctx->ctx.cli.i0 = fd;
831 }
832
833 /* dump complete */
834 return 1;
835}
836
William Lallemandeceddf72016-12-15 18:06:44 +0100837/*
Willy Tarreau3af9d832016-12-16 12:58:09 +0100838 * CLI IO handler for `show cli sockets`.
839 * Uses ctx.cli.p0 to store the restart pointer.
William Lallemandeceddf72016-12-15 18:06:44 +0100840 */
841static int cli_io_handler_show_cli_sock(struct appctx *appctx)
842{
843 struct bind_conf *bind_conf;
844 struct stream_interface *si = appctx->owner;
845
846 chunk_reset(&trash);
847
848 switch (appctx->st2) {
849 case STAT_ST_INIT:
850 chunk_printf(&trash, "# socket lvl processes\n");
851 if (bi_putchk(si_ic(si), &trash) == -1) {
852 si_applet_cant_put(si);
853 return 0;
854 }
William Lallemandeceddf72016-12-15 18:06:44 +0100855 appctx->st2 = STAT_ST_LIST;
856
857 case STAT_ST_LIST:
858 if (global.stats_fe) {
859 list_for_each_entry(bind_conf, &global.stats_fe->conf.bind, by_fe) {
860 struct listener *l;
861
862 /*
Willy Tarreau3af9d832016-12-16 12:58:09 +0100863 * get the latest dumped node in appctx->ctx.cli.p0
William Lallemandeceddf72016-12-15 18:06:44 +0100864 * if the current node is the first of the list
865 */
866
Willy Tarreau3af9d832016-12-16 12:58:09 +0100867 if (appctx->ctx.cli.p0 &&
868 &bind_conf->by_fe == (&global.stats_fe->conf.bind)->n) {
William Lallemandeceddf72016-12-15 18:06:44 +0100869 /* change the current node to the latest dumped and continue the loop */
Willy Tarreau3af9d832016-12-16 12:58:09 +0100870 bind_conf = LIST_ELEM(appctx->ctx.cli.p0, typeof(bind_conf), by_fe);
William Lallemandeceddf72016-12-15 18:06:44 +0100871 continue;
872 }
873
874 list_for_each_entry(l, &bind_conf->listeners, by_bind) {
875
876 char addr[46];
877 char port[6];
878
879 if (l->addr.ss_family == AF_UNIX) {
880 const struct sockaddr_un *un;
881
882 un = (struct sockaddr_un *)&l->addr;
883 chunk_appendf(&trash, "%s ", un->sun_path);
884 } else if (l->addr.ss_family == AF_INET) {
885 addr_to_str(&l->addr, addr, sizeof(addr));
886 port_to_str(&l->addr, port, sizeof(port));
887 chunk_appendf(&trash, "%s:%s ", addr, port);
888 } else if (l->addr.ss_family == AF_INET6) {
889 addr_to_str(&l->addr, addr, sizeof(addr));
890 port_to_str(&l->addr, port, sizeof(port));
891 chunk_appendf(&trash, "[%s]:%s ", addr, port);
892 } else
893 continue;
894
William Lallemand07a62f72017-05-24 00:57:40 +0200895 if ((bind_conf->level & ACCESS_LVL_MASK) == ACCESS_LVL_ADMIN)
William Lallemandeceddf72016-12-15 18:06:44 +0100896 chunk_appendf(&trash, "admin ");
William Lallemand07a62f72017-05-24 00:57:40 +0200897 else if ((bind_conf->level & ACCESS_LVL_MASK) == ACCESS_LVL_OPER)
898 chunk_appendf(&trash, "operator ");
899 else if ((bind_conf->level & ACCESS_LVL_MASK) == ACCESS_LVL_USER)
900 chunk_appendf(&trash, "user ");
William Lallemandeceddf72016-12-15 18:06:44 +0100901 else
902 chunk_appendf(&trash, " ");
903
904 if (bind_conf->bind_proc != 0) {
905 int pos;
Willy Tarreau20c5e522016-12-16 12:50:55 +0100906 for (pos = 0; pos < 8 * sizeof(bind_conf->bind_proc); pos++) {
Willy Tarreau4305ac72016-12-16 12:56:31 +0100907 if (bind_conf->bind_proc & (1UL << pos)) {
William Lallemandeceddf72016-12-15 18:06:44 +0100908 chunk_appendf(&trash, "%d,", pos+1);
909 }
910 }
911 /* replace the latest comma by a newline */
912 trash.str[trash.len-1] = '\n';
913
914 } else {
915 chunk_appendf(&trash, "all\n");
916 }
917
918 if (bi_putchk(si_ic(si), &trash) == -1) {
919 si_applet_cant_put(si);
920 return 0;
921 }
922 }
Willy Tarreau3af9d832016-12-16 12:58:09 +0100923 appctx->ctx.cli.p0 = &bind_conf->by_fe; /* store the latest list node dumped */
William Lallemandeceddf72016-12-15 18:06:44 +0100924 }
925 }
926 default:
927 appctx->st2 = STAT_ST_FIN;
928 return 1;
929 }
930}
931
932
Willy Tarreau0a739292016-11-22 20:21:23 +0100933/* parse a "show env" CLI request. Returns 0 if it needs to continue, 1 if it
Willy Tarreauf6710f82016-12-16 17:45:44 +0100934 * wants to stop here. It puts the variable to be dumped into cli.p0 if a single
935 * variable is requested otherwise puts environ there.
Willy Tarreau0a739292016-11-22 20:21:23 +0100936 */
937static int cli_parse_show_env(char **args, struct appctx *appctx, void *private)
938{
939 extern char **environ;
Willy Tarreauf6710f82016-12-16 17:45:44 +0100940 char **var;
Willy Tarreau0a739292016-11-22 20:21:23 +0100941
942 if (!cli_has_level(appctx, ACCESS_LVL_OPER))
943 return 1;
944
Willy Tarreauf6710f82016-12-16 17:45:44 +0100945 var = environ;
Willy Tarreau0a739292016-11-22 20:21:23 +0100946
947 if (*args[2]) {
948 int len = strlen(args[2]);
949
Willy Tarreauf6710f82016-12-16 17:45:44 +0100950 for (; *var; var++) {
951 if (strncmp(*var, args[2], len) == 0 &&
952 (*var)[len] == '=')
Willy Tarreau0a739292016-11-22 20:21:23 +0100953 break;
954 }
Willy Tarreauf6710f82016-12-16 17:45:44 +0100955 if (!*var) {
Willy Tarreau0a739292016-11-22 20:21:23 +0100956 appctx->ctx.cli.msg = "Variable not found\n";
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100957 appctx->st0 = CLI_ST_PRINT;
Willy Tarreau0a739292016-11-22 20:21:23 +0100958 return 1;
959 }
960 appctx->st2 = STAT_ST_END;
961 }
Willy Tarreauf6710f82016-12-16 17:45:44 +0100962 appctx->ctx.cli.p0 = var;
Willy Tarreau0a739292016-11-22 20:21:23 +0100963 return 0;
964}
965
Willy Tarreau7a4a0ac2017-07-25 19:32:50 +0200966/* parse a "show fd" CLI request. Returns 0 if it needs to continue, 1 if it
967 * wants to stop here. It puts the FD number into cli.i0 if a specific FD is
968 * requested and sets st2 to STAT_ST_END, otherwise leaves 0 in i0.
969 */
970static int cli_parse_show_fd(char **args, struct appctx *appctx, void *private)
971{
972 if (!cli_has_level(appctx, ACCESS_LVL_OPER))
973 return 1;
974
975 appctx->ctx.cli.i0 = 0;
976
977 if (*args[2]) {
978 appctx->ctx.cli.i0 = atoi(args[2]);
979 appctx->st2 = STAT_ST_END;
980 }
981 return 0;
982}
983
Willy Tarreau599852e2016-11-22 20:33:32 +0100984/* parse a "set timeout" CLI request. It always returns 1. */
985static int cli_parse_set_timeout(char **args, struct appctx *appctx, void *private)
986{
987 struct stream_interface *si = appctx->owner;
988 struct stream *s = si_strm(si);
989
990 if (strcmp(args[2], "cli") == 0) {
991 unsigned timeout;
992 const char *res;
993
994 if (!*args[3]) {
995 appctx->ctx.cli.msg = "Expects an integer value.\n";
Willy Tarreau3b6e5472016-11-24 15:53:53 +0100996 appctx->st0 = CLI_ST_PRINT;
Willy Tarreau599852e2016-11-22 20:33:32 +0100997 return 1;
998 }
999
1000 res = parse_time_err(args[3], &timeout, TIME_UNIT_S);
1001 if (res || timeout < 1) {
1002 appctx->ctx.cli.msg = "Invalid timeout value.\n";
Willy Tarreau3b6e5472016-11-24 15:53:53 +01001003 appctx->st0 = CLI_ST_PRINT;
Willy Tarreau599852e2016-11-22 20:33:32 +01001004 return 1;
1005 }
1006
1007 s->req.rto = s->res.wto = 1 + MS_TO_TICKS(timeout*1000);
1008 task_wakeup(s->task, TASK_WOKEN_MSG); // recompute timeouts
1009 return 1;
1010 }
1011 else {
1012 appctx->ctx.cli.msg = "'set timeout' only supports 'cli'.\n";
Willy Tarreau3b6e5472016-11-24 15:53:53 +01001013 appctx->st0 = CLI_ST_PRINT;
Willy Tarreau599852e2016-11-22 20:33:32 +01001014 return 1;
1015 }
1016}
1017
Willy Tarreau2af99412016-11-23 11:10:59 +01001018/* parse a "set maxconn global" command. It always returns 1. */
1019static int cli_parse_set_maxconn_global(char **args, struct appctx *appctx, void *private)
1020{
1021 int v;
1022
1023 if (!cli_has_level(appctx, ACCESS_LVL_ADMIN))
1024 return 1;
1025
1026 if (!*args[3]) {
1027 appctx->ctx.cli.msg = "Expects an integer value.\n";
Willy Tarreau3b6e5472016-11-24 15:53:53 +01001028 appctx->st0 = CLI_ST_PRINT;
Willy Tarreau2af99412016-11-23 11:10:59 +01001029 return 1;
1030 }
1031
1032 v = atoi(args[3]);
1033 if (v > global.hardmaxconn) {
1034 appctx->ctx.cli.msg = "Value out of range.\n";
Willy Tarreau3b6e5472016-11-24 15:53:53 +01001035 appctx->st0 = CLI_ST_PRINT;
Willy Tarreau2af99412016-11-23 11:10:59 +01001036 return 1;
1037 }
1038
1039 /* check for unlimited values */
1040 if (v <= 0)
1041 v = global.hardmaxconn;
1042
1043 global.maxconn = v;
1044
1045 /* Dequeues all of the listeners waiting for a resource */
1046 if (!LIST_ISEMPTY(&global_listener_queue))
1047 dequeue_all_listeners(&global_listener_queue);
1048
1049 return 1;
1050}
1051
William Lallemandeceddf72016-12-15 18:06:44 +01001052
1053int cli_parse_default(char **args, struct appctx *appctx, void *private)
1054{
1055 return 0;
1056}
1057
Willy Tarreau45c742b2016-11-24 14:51:17 +01001058/* parse a "set rate-limit" command. It always returns 1. */
1059static int cli_parse_set_ratelimit(char **args, struct appctx *appctx, void *private)
1060{
1061 int v;
1062 int *res;
1063 int mul = 1;
1064
1065 if (!cli_has_level(appctx, ACCESS_LVL_ADMIN))
1066 return 1;
1067
1068 if (strcmp(args[2], "connections") == 0 && strcmp(args[3], "global") == 0)
1069 res = &global.cps_lim;
1070 else if (strcmp(args[2], "sessions") == 0 && strcmp(args[3], "global") == 0)
1071 res = &global.sps_lim;
1072#ifdef USE_OPENSSL
1073 else if (strcmp(args[2], "ssl-sessions") == 0 && strcmp(args[3], "global") == 0)
1074 res = &global.ssl_lim;
1075#endif
1076 else if (strcmp(args[2], "http-compression") == 0 && strcmp(args[3], "global") == 0) {
1077 res = &global.comp_rate_lim;
1078 mul = 1024;
1079 }
1080 else {
1081 appctx->ctx.cli.msg =
1082 "'set rate-limit' only supports :\n"
1083 " - 'connections global' to set the per-process maximum connection rate\n"
1084 " - 'sessions global' to set the per-process maximum session rate\n"
1085#ifdef USE_OPENSSL
1086 " - 'ssl-session global' to set the per-process maximum SSL session rate\n"
1087#endif
1088 " - 'http-compression global' to set the per-process maximum compression speed in kB/s\n";
Willy Tarreau3b6e5472016-11-24 15:53:53 +01001089 appctx->st0 = CLI_ST_PRINT;
Willy Tarreau45c742b2016-11-24 14:51:17 +01001090 return 1;
1091 }
1092
1093 if (!*args[4]) {
1094 appctx->ctx.cli.msg = "Expects an integer value.\n";
Willy Tarreau3b6e5472016-11-24 15:53:53 +01001095 appctx->st0 = CLI_ST_PRINT;
Willy Tarreau45c742b2016-11-24 14:51:17 +01001096 return 1;
1097 }
1098
1099 v = atoi(args[4]);
1100 if (v < 0) {
1101 appctx->ctx.cli.msg = "Value out of range.\n";
Willy Tarreau3b6e5472016-11-24 15:53:53 +01001102 appctx->st0 = CLI_ST_PRINT;
Willy Tarreau45c742b2016-11-24 14:51:17 +01001103 return 1;
1104 }
1105
1106 *res = v * mul;
1107
1108 /* Dequeues all of the listeners waiting for a resource */
1109 if (!LIST_ISEMPTY(&global_listener_queue))
1110 dequeue_all_listeners(&global_listener_queue);
1111
1112 return 1;
1113}
1114
William Lallemandf6975e92017-05-26 17:42:10 +02001115/* parse the "expose-fd" argument on the bind lines */
1116static int bind_parse_expose_fd(char **args, int cur_arg, struct proxy *px, struct bind_conf *conf, char **err)
1117{
1118 if (!*args[cur_arg + 1]) {
1119 memprintf(err, "'%s' : missing fd type", args[cur_arg]);
1120 return ERR_ALERT | ERR_FATAL;
1121 }
1122 if (!strcmp(args[cur_arg+1], "listeners")) {
1123 conf->level |= ACCESS_FD_LISTENERS;
1124 } else {
1125 memprintf(err, "'%s' only supports 'listeners' (got '%s')",
1126 args[cur_arg], args[cur_arg+1]);
1127 return ERR_ALERT | ERR_FATAL;
1128 }
1129
1130 return 0;
1131}
1132
William Lallemand74c24fb2016-11-21 17:18:36 +01001133/* parse the "level" argument on the bind lines */
1134static int bind_parse_level(char **args, int cur_arg, struct proxy *px, struct bind_conf *conf, char **err)
1135{
1136 if (!*args[cur_arg + 1]) {
1137 memprintf(err, "'%s' : missing level", args[cur_arg]);
1138 return ERR_ALERT | ERR_FATAL;
1139 }
1140
William Lallemand07a62f72017-05-24 00:57:40 +02001141 if (!strcmp(args[cur_arg+1], "user")) {
1142 conf->level &= ~ACCESS_LVL_MASK;
1143 conf->level |= ACCESS_LVL_USER;
1144 } else if (!strcmp(args[cur_arg+1], "operator")) {
1145 conf->level &= ~ACCESS_LVL_MASK;
1146 conf->level |= ACCESS_LVL_OPER;
1147 } else if (!strcmp(args[cur_arg+1], "admin")) {
1148 conf->level &= ~ACCESS_LVL_MASK;
1149 conf->level |= ACCESS_LVL_ADMIN;
1150 } else {
William Lallemand74c24fb2016-11-21 17:18:36 +01001151 memprintf(err, "'%s' only supports 'user', 'operator', and 'admin' (got '%s')",
1152 args[cur_arg], args[cur_arg+1]);
1153 return ERR_ALERT | ERR_FATAL;
1154 }
1155
1156 return 0;
1157}
1158
Olivier Houchardf886e342017-04-05 22:24:59 +02001159/* Send all the bound sockets, always returns 1 */
1160static int _getsocks(char **args, struct appctx *appctx, void *private)
1161{
1162 char *cmsgbuf = NULL;
1163 unsigned char *tmpbuf = NULL;
1164 struct cmsghdr *cmsg;
1165 struct stream_interface *si = appctx->owner;
William Lallemandf6975e92017-05-26 17:42:10 +02001166 struct stream *s = si_strm(si);
Olivier Houchardf886e342017-04-05 22:24:59 +02001167 struct connection *remote = objt_conn(si_opposite(si)->end);
1168 struct msghdr msghdr;
1169 struct iovec iov;
Olivier Houchard54740872017-04-06 14:45:14 +02001170 struct timeval tv = { .tv_sec = 1, .tv_usec = 0 };
Olivier Houchardf886e342017-04-05 22:24:59 +02001171 int *tmpfd;
1172 int tot_fd_nb = 0;
1173 struct proxy *px;
1174 int i = 0;
Willy Tarreau585744b2017-08-24 14:31:19 +02001175 int fd = remote->handle.fd;
Olivier Houchardf886e342017-04-05 22:24:59 +02001176 int curoff = 0;
1177 int old_fcntl;
1178 int ret;
1179
1180 /* Temporary set the FD in blocking mode, that will make our life easier */
1181 old_fcntl = fcntl(fd, F_GETFL);
1182 if (old_fcntl < 0) {
1183 Warning("Couldn't get the flags for the unix socket\n");
1184 goto out;
1185 }
1186 cmsgbuf = malloc(CMSG_SPACE(sizeof(int) * MAX_SEND_FD));
1187 if (!cmsgbuf) {
1188 Warning("Failed to allocate memory to send sockets\n");
1189 goto out;
1190 }
1191 if (fcntl(fd, F_SETFL, old_fcntl &~ O_NONBLOCK) == -1) {
1192 Warning("Cannot make the unix socket blocking\n");
1193 goto out;
1194 }
Olivier Houchard54740872017-04-06 14:45:14 +02001195 setsockopt(fd, SOL_SOCKET, SO_RCVTIMEO, (void *)&tv, sizeof(tv));
Olivier Houchardf886e342017-04-05 22:24:59 +02001196 iov.iov_base = &tot_fd_nb;
1197 iov.iov_len = sizeof(tot_fd_nb);
William Lallemandf6975e92017-05-26 17:42:10 +02001198 if (!(strm_li(s)->bind_conf->level & ACCESS_FD_LISTENERS))
Olivier Houchardf886e342017-04-05 22:24:59 +02001199 goto out;
1200 memset(&msghdr, 0, sizeof(msghdr));
1201 /*
1202 * First, calculates the total number of FD, so that we can let
1203 * the caller know how much he should expects.
1204 */
1205 px = proxy;
1206 while (px) {
1207 struct listener *l;
1208
1209 list_for_each_entry(l, &px->conf.listeners, by_fe) {
Olivier Houchard1fc05162017-04-06 01:05:05 +02001210 /* Only transfer IPv4/IPv6/UNIX sockets */
1211 if (l->state >= LI_ZOMBIE &&
1212 (l->proto->sock_family == AF_INET ||
Olivier Houchardf886e342017-04-05 22:24:59 +02001213 l->proto->sock_family == AF_INET6 ||
Olivier Houchard1fc05162017-04-06 01:05:05 +02001214 l->proto->sock_family == AF_UNIX))
Olivier Houchardf886e342017-04-05 22:24:59 +02001215 tot_fd_nb++;
1216 }
1217 px = px->next;
1218 }
1219 if (tot_fd_nb == 0)
1220 goto out;
1221
1222 /* First send the total number of file descriptors, so that the
1223 * receiving end knows what to expect.
1224 */
1225 msghdr.msg_iov = &iov;
1226 msghdr.msg_iovlen = 1;
1227 ret = sendmsg(fd, &msghdr, 0);
1228 if (ret != sizeof(tot_fd_nb)) {
1229 Warning("Failed to send the number of sockets to send\n");
1230 goto out;
1231 }
1232
1233 /* Now send the fds */
1234 msghdr.msg_control = cmsgbuf;
1235 msghdr.msg_controllen = CMSG_SPACE(sizeof(int) * MAX_SEND_FD);
1236 cmsg = CMSG_FIRSTHDR(&msghdr);
1237 cmsg->cmsg_len = CMSG_LEN(MAX_SEND_FD * sizeof(int));
1238 cmsg->cmsg_level = SOL_SOCKET;
1239 cmsg->cmsg_type = SCM_RIGHTS;
1240 tmpfd = (int *)CMSG_DATA(cmsg);
1241
1242 px = proxy;
1243 /* For each socket, e message is sent, containing the following :
1244 * Size of the namespace name (or 0 if none), as an unsigned char.
1245 * The namespace name, if any
1246 * Size of the interface name (or 0 if none), as an unsigned char
1247 * The interface name, if any
1248 * Listener options, as an int.
1249 */
1250 /* We will send sockets MAX_SEND_FD per MAX_SEND_FD, allocate a
1251 * buffer big enough to store the socket informations.
1252 */
1253 tmpbuf = malloc(MAX_SEND_FD * (1 + NAME_MAX + 1 + IFNAMSIZ + sizeof(int)));
1254 if (tmpbuf == NULL) {
1255 Warning("Failed to allocate memory to transfer socket informations\n");
1256 goto out;
1257 }
1258 iov.iov_base = tmpbuf;
1259 while (px) {
1260 struct listener *l;
1261
1262 list_for_each_entry(l, &px->conf.listeners, by_fe) {
1263 int ret;
1264 /* Only transfer IPv4/IPv6 sockets */
Olivier Houchard1fc05162017-04-06 01:05:05 +02001265 if (l->state >= LI_ZOMBIE &&
Olivier Houchardf886e342017-04-05 22:24:59 +02001266 (l->proto->sock_family == AF_INET ||
1267 l->proto->sock_family == AF_INET6 ||
1268 l->proto->sock_family == AF_UNIX)) {
1269 memcpy(&tmpfd[i % MAX_SEND_FD], &l->fd, sizeof(l->fd));
1270 if (!l->netns)
1271 tmpbuf[curoff++] = 0;
1272#ifdef CONFIG_HAP_NS
1273 else {
1274 char *name = l->netns->node.key;
1275 unsigned char len = l->netns->name_len;
1276 tmpbuf[curoff++] = len;
1277 memcpy(tmpbuf + curoff, name, len);
1278 curoff += len;
1279 }
1280#endif
1281 if (l->interface) {
1282 unsigned char len = strlen(l->interface);
1283 tmpbuf[curoff++] = len;
1284 memcpy(tmpbuf + curoff, l->interface, len);
1285 curoff += len;
1286 } else
1287 tmpbuf[curoff++] = 0;
1288 memcpy(tmpbuf + curoff, &l->options,
1289 sizeof(l->options));
1290 curoff += sizeof(l->options);
1291
1292
1293 i++;
1294 } else
1295 continue;
1296 if ((!(i % MAX_SEND_FD))) {
1297 iov.iov_len = curoff;
1298 if (sendmsg(fd, &msghdr, 0) != curoff) {
1299 Warning("Failed to transfer sockets\n");
1300 printf("errno %d\n", errno);
1301 goto out;
1302 }
1303 /* Wait for an ack */
1304 do {
1305 ret = recv(fd, &tot_fd_nb,
1306 sizeof(tot_fd_nb), 0);
1307 } while (ret == -1 && errno == EINTR);
1308 if (ret <= 0) {
1309 Warning("Unexpected error while transferring sockets\n");
1310 goto out;
1311 }
1312 curoff = 0;
1313 }
1314
1315 }
1316 px = px->next;
1317 }
1318 if (i % MAX_SEND_FD) {
1319 iov.iov_len = curoff;
1320 cmsg->cmsg_len = CMSG_LEN((i % MAX_SEND_FD) * sizeof(int));
1321 msghdr.msg_controllen = CMSG_SPACE(sizeof(int) * (i % MAX_SEND_FD));
1322 if (sendmsg(fd, &msghdr, 0) != curoff) {
1323 Warning("Failed to transfer sockets\n");
1324 goto out;
1325 }
1326 }
1327
1328out:
1329 if (old_fcntl >= 0 && fcntl(fd, F_SETFL, old_fcntl) == -1) {
1330 Warning("Cannot make the unix socket non-blocking\n");
1331 goto out;
1332 }
1333 appctx->st0 = CLI_ST_END;
1334 free(cmsgbuf);
1335 free(tmpbuf);
1336 return 1;
1337}
1338
1339
1340
William Lallemand74c24fb2016-11-21 17:18:36 +01001341static struct applet cli_applet = {
1342 .obj_type = OBJ_TYPE_APPLET,
1343 .name = "<CLI>", /* used for logging */
1344 .fct = cli_io_handler,
1345 .release = cli_release_handler,
1346};
1347
Willy Tarreau0a739292016-11-22 20:21:23 +01001348/* register cli keywords */
1349static struct cli_kw_list cli_kws = {{ },{
Willy Tarreau2af99412016-11-23 11:10:59 +01001350 { { "set", "maxconn", "global", NULL }, "set maxconn global : change the per-process maxconn setting", cli_parse_set_maxconn_global, NULL },
Willy Tarreau45c742b2016-11-24 14:51:17 +01001351 { { "set", "rate-limit", NULL }, "set rate-limit : change a rate limiting value", cli_parse_set_ratelimit, NULL },
Willy Tarreau599852e2016-11-22 20:33:32 +01001352 { { "set", "timeout", NULL }, "set timeout : change a timeout setting", cli_parse_set_timeout, NULL, NULL },
Willy Tarreau0a739292016-11-22 20:21:23 +01001353 { { "show", "env", NULL }, "show env [var] : dump environment variables known to the process", cli_parse_show_env, cli_io_handler_show_env, NULL },
William Lallemandeceddf72016-12-15 18:06:44 +01001354 { { "show", "cli", "sockets", NULL }, "show cli sockets : dump list of cli sockets", cli_parse_default, cli_io_handler_show_cli_sock, NULL },
Willy Tarreau7a4a0ac2017-07-25 19:32:50 +02001355 { { "show", "fd", NULL }, "show fd [num] : dump list of file descriptors in use", cli_parse_show_fd, cli_io_handler_show_fd, NULL },
Olivier Houchardf886e342017-04-05 22:24:59 +02001356 { { "_getsocks", NULL }, NULL, _getsocks, NULL },
Willy Tarreau0a739292016-11-22 20:21:23 +01001357 {{},}
1358}};
1359
William Lallemand74c24fb2016-11-21 17:18:36 +01001360static struct cfg_kw_list cfg_kws = {ILH, {
1361 { CFG_GLOBAL, "stats", stats_parse_global },
1362 { 0, NULL, NULL },
1363}};
1364
1365static struct bind_kw_list bind_kws = { "STAT", { }, {
William Lallemandf6975e92017-05-26 17:42:10 +02001366 { "level", bind_parse_level, 1 }, /* set the unix socket admin level */
1367 { "expose-fd", bind_parse_expose_fd, 1 }, /* set the unix socket expose fd rights */
William Lallemand74c24fb2016-11-21 17:18:36 +01001368 { NULL, NULL, 0 },
1369}};
1370
1371__attribute__((constructor))
1372static void __dumpstats_module_init(void)
1373{
1374 cfg_register_keywords(&cfg_kws);
Willy Tarreau0a739292016-11-22 20:21:23 +01001375 cli_register_kw(&cli_kws);
William Lallemand74c24fb2016-11-21 17:18:36 +01001376 bind_register_keywords(&bind_kws);
1377}
1378
1379/*
1380 * Local variables:
1381 * c-indent-level: 8
1382 * c-basic-offset: 8
1383 * End:
1384 */