Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1 | /* |
Willy Tarreau | a5357cd | 2021-05-09 06:14:25 +0200 | [diff] [blame] | 2 | * HAProxy : High Availability-enabled HTTP/TCP proxy |
Christopher Faulet | 4c20ccb | 2023-01-27 14:51:36 +0100 | [diff] [blame] | 3 | * Copyright 2000-2023 Willy Tarreau <willy@haproxy.org>. |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 4 | * |
| 5 | * This program is free software; you can redistribute it and/or |
| 6 | * modify it under the terms of the GNU General Public License |
| 7 | * as published by the Free Software Foundation; either version |
| 8 | * 2 of the License, or (at your option) any later version. |
| 9 | * |
Ilya Shipitsin | 46a030c | 2020-07-05 16:36:08 +0500 | [diff] [blame] | 10 | * Please refer to RFC7230 - RFC7235 information about HTTP protocol, and |
| 11 | * RFC6265 for information about cookies usage. More generally, the IETF HTTP |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 12 | * Working Group's web site should be consulted for protocol related changes : |
| 13 | * |
| 14 | * http://ftp.ics.uci.edu/pub/ietf/http/ |
| 15 | * |
| 16 | * Pending bugs (may be not fixed because never reproduced) : |
| 17 | * - solaris only : sometimes, an HTTP proxy with only a dispatch address causes |
| 18 | * the proxy to terminate (no core) if the client breaks the connection during |
| 19 | * the response. Seen on 1.1.8pre4, but never reproduced. May not be related to |
| 20 | * the snprintf() bug since requests were simple (GET / HTTP/1.0), but may be |
| 21 | * related to missing setsid() (fixed in 1.1.15) |
| 22 | * - a proxy with an invalid config will prevent the startup even if disabled. |
| 23 | * |
| 24 | * ChangeLog has moved to the CHANGELOG file. |
| 25 | * |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 26 | */ |
| 27 | |
David Carlier | 7ece096 | 2015-12-08 21:43:09 +0000 | [diff] [blame] | 28 | #define _GNU_SOURCE |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 29 | #include <stdio.h> |
| 30 | #include <stdlib.h> |
| 31 | #include <unistd.h> |
| 32 | #include <string.h> |
| 33 | #include <ctype.h> |
Maxime de Roucy | 379d9c7 | 2016-05-13 23:52:56 +0200 | [diff] [blame] | 34 | #include <dirent.h> |
Maxime de Roucy | 379d9c7 | 2016-05-13 23:52:56 +0200 | [diff] [blame] | 35 | #include <sys/stat.h> |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 36 | #include <sys/time.h> |
| 37 | #include <sys/types.h> |
| 38 | #include <sys/socket.h> |
| 39 | #include <netinet/tcp.h> |
| 40 | #include <netinet/in.h> |
| 41 | #include <arpa/inet.h> |
| 42 | #include <netdb.h> |
| 43 | #include <fcntl.h> |
| 44 | #include <errno.h> |
| 45 | #include <signal.h> |
| 46 | #include <stdarg.h> |
| 47 | #include <sys/resource.h> |
Tim Duesterhus | dfad6a4 | 2020-04-18 16:02:47 +0200 | [diff] [blame] | 48 | #include <sys/utsname.h> |
Marc-Antoine Perennou | 992709b | 2013-02-12 10:53:52 +0100 | [diff] [blame] | 49 | #include <sys/wait.h> |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 50 | #include <time.h> |
| 51 | #include <syslog.h> |
Michael Scherer | ab012dd | 2013-01-12 18:35:19 +0100 | [diff] [blame] | 52 | #include <grp.h> |
Willy Tarreau | fc6c032 | 2012-11-16 16:12:27 +0100 | [diff] [blame] | 53 | #ifdef USE_CPU_AFFINITY |
Willy Tarreau | fc6c032 | 2012-11-16 16:12:27 +0100 | [diff] [blame] | 54 | #include <sched.h> |
David Carlier | 42d9e5a | 2018-11-12 16:22:19 +0000 | [diff] [blame] | 55 | #if defined(__FreeBSD__) || defined(__DragonFly__) |
Pieter Baauw | caa6a1b | 2015-09-17 21:26:40 +0200 | [diff] [blame] | 56 | #include <sys/param.h> |
David Carlier | 42d9e5a | 2018-11-12 16:22:19 +0000 | [diff] [blame] | 57 | #ifdef __FreeBSD__ |
Pieter Baauw | caa6a1b | 2015-09-17 21:26:40 +0200 | [diff] [blame] | 58 | #include <sys/cpuset.h> |
David Carlier | 42d9e5a | 2018-11-12 16:22:19 +0000 | [diff] [blame] | 59 | #endif |
David Carlier | 6d5c841 | 2017-11-29 11:02:32 +0000 | [diff] [blame] | 60 | #include <pthread_np.h> |
Pieter Baauw | caa6a1b | 2015-09-17 21:26:40 +0200 | [diff] [blame] | 61 | #endif |
David Carlier | 5e4c8e2 | 2019-09-13 05:12:58 +0100 | [diff] [blame] | 62 | #ifdef __APPLE__ |
| 63 | #include <mach/mach_types.h> |
| 64 | #include <mach/thread_act.h> |
| 65 | #include <mach/thread_policy.h> |
| 66 | #endif |
Willy Tarreau | fc6c032 | 2012-11-16 16:12:27 +0100 | [diff] [blame] | 67 | #endif |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 68 | |
Willy Tarreau | 636848a | 2019-04-15 19:38:50 +0200 | [diff] [blame] | 69 | #if defined(USE_PRCTL) |
| 70 | #include <sys/prctl.h> |
| 71 | #endif |
| 72 | |
devnexen@gmail.com | 078062b | 2021-08-21 09:13:10 +0100 | [diff] [blame] | 73 | #if defined(USE_PROCCTL) |
| 74 | #include <sys/procctl.h> |
| 75 | #endif |
| 76 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 77 | #ifdef DEBUG_FULL |
| 78 | #include <assert.h> |
| 79 | #endif |
Tim Duesterhus | d6942c8 | 2017-11-20 15:58:35 +0100 | [diff] [blame] | 80 | #if defined(USE_SYSTEMD) |
| 81 | #include <systemd/sd-daemon.h> |
| 82 | #endif |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 83 | |
Willy Tarreau | 6c3a681 | 2020-03-06 18:57:15 +0100 | [diff] [blame] | 84 | #include <import/sha1.h> |
| 85 | |
Willy Tarreau | b255105 | 2020-06-09 09:07:15 +0200 | [diff] [blame] | 86 | #include <haproxy/acl.h> |
Amaury Denoyelle | 68fd7e4 | 2021-03-25 17:15:52 +0100 | [diff] [blame] | 87 | #include <haproxy/action.h> |
Willy Tarreau | b255105 | 2020-06-09 09:07:15 +0200 | [diff] [blame] | 88 | #include <haproxy/activity.h> |
| 89 | #include <haproxy/api.h> |
| 90 | #include <haproxy/arg.h> |
| 91 | #include <haproxy/auth.h> |
Willy Tarreau | 8d36697 | 2020-05-27 16:10:29 +0200 | [diff] [blame] | 92 | #include <haproxy/base64.h> |
Willy Tarreau | b255105 | 2020-06-09 09:07:15 +0200 | [diff] [blame] | 93 | #include <haproxy/capture-t.h> |
Amaury Denoyelle | 5a6926d | 2021-03-30 17:34:24 +0200 | [diff] [blame] | 94 | #include <haproxy/cfgdiag.h> |
Willy Tarreau | 6be7849 | 2020-06-05 00:00:29 +0200 | [diff] [blame] | 95 | #include <haproxy/cfgparse.h> |
Willy Tarreau | c13ed53 | 2020-06-02 10:22:45 +0200 | [diff] [blame] | 96 | #include <haproxy/chunk.h> |
Willy Tarreau | 83487a8 | 2020-06-04 20:19:54 +0200 | [diff] [blame] | 97 | #include <haproxy/cli.h> |
Willy Tarreau | 7ea393d | 2020-06-04 18:02:10 +0200 | [diff] [blame] | 98 | #include <haproxy/connection.h> |
Amaury Denoyelle | a6f9c5d | 2021-04-23 16:58:08 +0200 | [diff] [blame] | 99 | #ifdef USE_CPU_AFFINITY |
Amaury Denoyelle | 982fb53 | 2021-04-21 18:39:58 +0200 | [diff] [blame] | 100 | #include <haproxy/cpuset.h> |
Amaury Denoyelle | a6f9c5d | 2021-04-23 16:58:08 +0200 | [diff] [blame] | 101 | #endif |
Willy Tarreau | eb92deb | 2020-06-04 10:53:16 +0200 | [diff] [blame] | 102 | #include <haproxy/dns.h> |
Willy Tarreau | 2741c8c | 2020-06-02 11:28:02 +0200 | [diff] [blame] | 103 | #include <haproxy/dynbuf.h> |
Willy Tarreau | 8d36697 | 2020-05-27 16:10:29 +0200 | [diff] [blame] | 104 | #include <haproxy/errors.h> |
Willy Tarreau | b255105 | 2020-06-09 09:07:15 +0200 | [diff] [blame] | 105 | #include <haproxy/fd.h> |
Willy Tarreau | c7babd8 | 2020-06-04 21:29:29 +0200 | [diff] [blame] | 106 | #include <haproxy/filters.h> |
Willy Tarreau | b255105 | 2020-06-09 09:07:15 +0200 | [diff] [blame] | 107 | #include <haproxy/global.h> |
Willy Tarreau | 8641605 | 2020-06-04 09:20:54 +0200 | [diff] [blame] | 108 | #include <haproxy/hlua.h> |
Willy Tarreau | c761f84 | 2020-06-04 11:40:28 +0200 | [diff] [blame] | 109 | #include <haproxy/http_rules.h> |
Willy Tarreau | 853b297 | 2020-05-27 18:01:47 +0200 | [diff] [blame] | 110 | #include <haproxy/list.h> |
Willy Tarreau | 213e990 | 2020-06-04 14:58:24 +0200 | [diff] [blame] | 111 | #include <haproxy/listener.h> |
Willy Tarreau | aeed4a8 | 2020-06-04 22:01:04 +0200 | [diff] [blame] | 112 | #include <haproxy/log.h> |
Willy Tarreau | b5abe5b | 2020-06-04 14:07:37 +0200 | [diff] [blame] | 113 | #include <haproxy/mworker.h> |
Willy Tarreau | 7a00efb | 2020-06-02 17:02:59 +0200 | [diff] [blame] | 114 | #include <haproxy/namespace.h> |
Willy Tarreau | 6131d6a | 2020-06-02 16:48:09 +0200 | [diff] [blame] | 115 | #include <haproxy/net_helper.h> |
Willy Tarreau | 6019fab | 2020-05-27 16:26:00 +0200 | [diff] [blame] | 116 | #include <haproxy/openssl-compat.h> |
Willy Tarreau | 225a90a | 2020-06-04 15:06:28 +0200 | [diff] [blame] | 117 | #include <haproxy/pattern.h> |
Willy Tarreau | 3c2a7c2 | 2020-06-04 18:38:21 +0200 | [diff] [blame] | 118 | #include <haproxy/peers.h> |
Willy Tarreau | b255105 | 2020-06-09 09:07:15 +0200 | [diff] [blame] | 119 | #include <haproxy/pool.h> |
| 120 | #include <haproxy/protocol.h> |
Willy Tarreau | bf3b06b | 2020-08-26 10:23:40 +0200 | [diff] [blame] | 121 | #include <haproxy/proto_tcp.h> |
Willy Tarreau | a264d96 | 2020-06-04 22:29:18 +0200 | [diff] [blame] | 122 | #include <haproxy/proxy.h> |
Willy Tarreau | 7cd8b6e | 2020-06-02 17:32:26 +0200 | [diff] [blame] | 123 | #include <haproxy/regex.h> |
Willy Tarreau | b255105 | 2020-06-09 09:07:15 +0200 | [diff] [blame] | 124 | #include <haproxy/sample.h> |
Willy Tarreau | 1e56f92 | 2020-06-04 23:20:13 +0200 | [diff] [blame] | 125 | #include <haproxy/server.h> |
Willy Tarreau | 48d25b3 | 2020-06-04 18:58:52 +0200 | [diff] [blame] | 126 | #include <haproxy/session.h> |
Willy Tarreau | 3727a8a | 2020-06-04 17:37:26 +0200 | [diff] [blame] | 127 | #include <haproxy/signal.h> |
Willy Tarreau | 063d47d | 2020-08-28 16:29:53 +0200 | [diff] [blame] | 128 | #include <haproxy/sock.h> |
Willy Tarreau | 25140cc | 2020-08-28 15:40:33 +0200 | [diff] [blame] | 129 | #include <haproxy/sock_inet.h> |
Willy Tarreau | 209108d | 2020-06-04 20:30:20 +0200 | [diff] [blame] | 130 | #include <haproxy/ssl_sock.h> |
Amaury Denoyelle | ee63d4b | 2020-10-05 11:49:42 +0200 | [diff] [blame] | 131 | #include <haproxy/stats-t.h> |
Willy Tarreau | dfd3de8 | 2020-06-04 23:46:14 +0200 | [diff] [blame] | 132 | #include <haproxy/stream.h> |
Willy Tarreau | cea0e1b | 2020-06-04 17:25:40 +0200 | [diff] [blame] | 133 | #include <haproxy/task.h> |
Willy Tarreau | 3f567e4 | 2020-05-28 15:29:19 +0200 | [diff] [blame] | 134 | #include <haproxy/thread.h> |
Willy Tarreau | b255105 | 2020-06-09 09:07:15 +0200 | [diff] [blame] | 135 | #include <haproxy/time.h> |
| 136 | #include <haproxy/tools.h> |
| 137 | #include <haproxy/uri_auth-t.h> |
Willy Tarreau | a171892 | 2020-06-04 16:25:31 +0200 | [diff] [blame] | 138 | #include <haproxy/vars.h> |
Willy Tarreau | b255105 | 2020-06-09 09:07:15 +0200 | [diff] [blame] | 139 | #include <haproxy/version.h> |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 140 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 141 | |
Willy Tarreau | 7b5654f | 2019-03-29 21:30:17 +0100 | [diff] [blame] | 142 | /* array of init calls for older platforms */ |
| 143 | DECLARE_INIT_STAGES; |
| 144 | |
Willy Tarreau | f459640 | 2021-04-10 16:53:05 +0200 | [diff] [blame] | 145 | /* create a read_mostly section to hold variables which are accessed a lot |
| 146 | * but which almost never change. The purpose is to isolate them in their |
| 147 | * own cache lines where they don't risk to be perturbated by write accesses |
| 148 | * to neighbor variables. We need to create an empty aligned variable for |
| 149 | * this. The fact that the variable is of size zero means that it will be |
| 150 | * eliminated at link time if no other variable uses it, but alignment will |
| 151 | * be respected. |
| 152 | */ |
| 153 | empty_t __read_mostly_align HA_SECTION("read_mostly") ALIGNED(64); |
| 154 | |
Willy Tarreau | f0d3b73 | 2021-05-06 16:30:32 +0200 | [diff] [blame] | 155 | #ifdef BUILD_FEATURES |
| 156 | const char *build_features = BUILD_FEATURES; |
| 157 | #else |
| 158 | const char *build_features = ""; |
| 159 | #endif |
| 160 | |
Willy Tarreau | 477ecd8 | 2010-01-03 21:12:30 +0100 | [diff] [blame] | 161 | /* list of config files */ |
| 162 | static struct list cfg_cfgfiles = LIST_HEAD_INIT(cfg_cfgfiles); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 163 | int pid; /* current process id */ |
Willy Tarreau | 2815664 | 2007-11-26 16:13:36 +0100 | [diff] [blame] | 164 | int relative_pid = 1; /* process id starting at 1 */ |
Willy Tarreau | 387bd4f | 2017-11-10 19:08:14 +0100 | [diff] [blame] | 165 | unsigned long pid_bit = 1; /* bit corresponding to the process id */ |
Willy Tarreau | a38a717 | 2019-02-02 17:11:28 +0100 | [diff] [blame] | 166 | unsigned long all_proc_mask = 1; /* mask of all processes */ |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 167 | |
Willy Tarreau | f8ea00e | 2020-03-12 17:24:53 +0100 | [diff] [blame] | 168 | volatile unsigned long sleeping_thread_mask = 0; /* Threads that are about to sleep in poll() */ |
Willy Tarreau | 4b3f27b | 2020-03-12 17:28:01 +0100 | [diff] [blame] | 169 | volatile unsigned long stopping_thread_mask = 0; /* Threads acknowledged stopping */ |
Willy Tarreau | f8ea00e | 2020-03-12 17:24:53 +0100 | [diff] [blame] | 170 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 171 | /* global options */ |
| 172 | struct global global = { |
Cyril Bonté | 203ec5a | 2017-03-23 22:44:13 +0100 | [diff] [blame] | 173 | .hard_stop_after = TICK_ETERNITY, |
Willy Tarreau | 247a13a | 2012-11-15 17:38:15 +0100 | [diff] [blame] | 174 | .nbproc = 1, |
Amaury Denoyelle | 0f50cb9 | 2021-03-26 18:50:33 +0100 | [diff] [blame] | 175 | .numa_cpu_mapping = 1, |
Willy Tarreau | 149ab77 | 2019-01-26 14:27:06 +0100 | [diff] [blame] | 176 | .nbthread = 0, |
William Lallemand | 5f23240 | 2012-04-05 18:02:55 +0200 | [diff] [blame] | 177 | .req_count = 0, |
William Lallemand | 0f99e34 | 2011-10-12 17:50:54 +0200 | [diff] [blame] | 178 | .logsrvs = LIST_HEAD_INIT(global.logsrvs), |
William Lallemand | 9d5f548 | 2012-11-07 16:12:57 +0100 | [diff] [blame] | 179 | .maxzlibmem = 0, |
William Lallemand | d85f917 | 2012-11-09 17:05:39 +0100 | [diff] [blame] | 180 | .comp_rate_lim = 0, |
Emeric Brun | 850efd5 | 2014-01-29 12:24:34 +0100 | [diff] [blame] | 181 | .ssl_server_verify = SSL_SERVER_VERIFY_REQUIRED, |
Emeric Brun | ed76092 | 2010-10-22 17:59:25 +0200 | [diff] [blame] | 182 | .unix_bind = { |
| 183 | .ux = { |
| 184 | .uid = -1, |
| 185 | .gid = -1, |
| 186 | .mode = 0, |
| 187 | } |
| 188 | }, |
Willy Tarreau | 27a674e | 2009-08-17 07:23:33 +0200 | [diff] [blame] | 189 | .tune = { |
Willy Tarreau | 7ac908b | 2019-02-27 12:02:18 +0100 | [diff] [blame] | 190 | .options = GTUNE_LISTENER_MQ, |
Willy Tarreau | c77d364 | 2018-12-12 06:19:42 +0100 | [diff] [blame] | 191 | .bufsize = (BUFSIZE + 2*sizeof(void *) - 1) & -(2*sizeof(void *)), |
Christopher Faulet | 546c469 | 2020-01-22 14:31:21 +0100 | [diff] [blame] | 192 | .maxrewrite = MAXREWRITE, |
Willy Tarreau | a24adf0 | 2014-11-27 01:11:56 +0100 | [diff] [blame] | 193 | .reserved_bufs = RESERVED_BUFS, |
Willy Tarreau | f3045d2 | 2015-04-29 16:24:50 +0200 | [diff] [blame] | 194 | .pattern_cache = DEFAULT_PAT_LRU_SIZE, |
Olivier Houchard | 88698d9 | 2019-04-16 19:07:22 +0200 | [diff] [blame] | 195 | .pool_low_ratio = 20, |
| 196 | .pool_high_ratio = 25, |
Christopher Faulet | 41ba36f | 2019-07-19 09:36:45 +0200 | [diff] [blame] | 197 | .max_http_hdr = MAX_HTTP_HDR, |
Emeric Brun | fc32aca | 2012-09-03 12:10:29 +0200 | [diff] [blame] | 198 | #ifdef USE_OPENSSL |
Emeric Brun | 4663577 | 2012-11-14 11:32:56 +0100 | [diff] [blame] | 199 | .sslcachesize = SSLCACHESIZE, |
Emeric Brun | fc32aca | 2012-09-03 12:10:29 +0200 | [diff] [blame] | 200 | #endif |
William Lallemand | f374783 | 2012-11-09 12:33:10 +0100 | [diff] [blame] | 201 | .comp_maxlevel = 1, |
Willy Tarreau | 7e31273 | 2014-02-12 16:35:14 +0100 | [diff] [blame] | 202 | #ifdef DEFAULT_IDLE_TIMER |
| 203 | .idle_timer = DEFAULT_IDLE_TIMER, |
| 204 | #else |
| 205 | .idle_timer = 1000, /* 1 second */ |
| 206 | #endif |
Willy Tarreau | 27a674e | 2009-08-17 07:23:33 +0200 | [diff] [blame] | 207 | }, |
Emeric Brun | 76d8895 | 2012-10-05 15:47:31 +0200 | [diff] [blame] | 208 | #ifdef USE_OPENSSL |
| 209 | #ifdef DEFAULT_MAXSSLCONN |
Willy Tarreau | 403edff | 2012-09-06 11:58:37 +0200 | [diff] [blame] | 210 | .maxsslconn = DEFAULT_MAXSSLCONN, |
| 211 | #endif |
Emeric Brun | 76d8895 | 2012-10-05 15:47:31 +0200 | [diff] [blame] | 212 | #endif |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 213 | /* others NULL OK */ |
| 214 | }; |
| 215 | |
| 216 | /*********************************************************************/ |
| 217 | |
| 218 | int stopping; /* non zero means stopping in progress */ |
Cyril Bonté | 203ec5a | 2017-03-23 22:44:13 +0100 | [diff] [blame] | 219 | int killed; /* non zero means a hard-stop is triggered */ |
Willy Tarreau | af7ad00 | 2010-08-31 15:39:26 +0200 | [diff] [blame] | 220 | int jobs = 0; /* number of active jobs (conns, listeners, active tasks, ...) */ |
William Lallemand | a719926 | 2018-11-16 16:57:20 +0100 | [diff] [blame] | 221 | int unstoppable_jobs = 0; /* number of active jobs that can't be stopped during a soft stop */ |
Willy Tarreau | 199ad24 | 2018-11-05 16:31:22 +0100 | [diff] [blame] | 222 | int active_peers = 0; /* number of active peers (connection attempts and connected) */ |
Willy Tarreau | 2d372c2 | 2018-11-05 17:12:27 +0100 | [diff] [blame] | 223 | int connected_peers = 0; /* number of connected peers (verified ones) */ |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 224 | |
Ilya Shipitsin | 46a030c | 2020-07-05 16:36:08 +0500 | [diff] [blame] | 225 | /* Here we store information about the pids of the processes we may pause |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 226 | * or kill. We will send them a signal every 10 ms until we can bind to all |
| 227 | * our ports. With 200 retries, that's about 2 seconds. |
| 228 | */ |
| 229 | #define MAX_START_RETRIES 200 |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 230 | static int *oldpids = NULL; |
| 231 | static int oldpids_sig; /* use USR1 or TERM */ |
| 232 | |
Olivier Houchard | f73629d | 2017-04-05 22:33:04 +0200 | [diff] [blame] | 233 | /* Path to the unix socket we use to retrieve listener sockets from the old process */ |
| 234 | static const char *old_unixsocket; |
| 235 | |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 236 | static char *cur_unixsocket = NULL; |
| 237 | |
William Lallemand | cb11fd2 | 2017-06-01 17:38:52 +0200 | [diff] [blame] | 238 | int atexit_flag = 0; |
| 239 | |
Willy Tarreau | bb545b4 | 2010-08-25 12:58:59 +0200 | [diff] [blame] | 240 | int nb_oldpids = 0; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 241 | const int zero = 0; |
| 242 | const int one = 1; |
Alexandre Cassen | 87ea548 | 2007-10-11 20:48:58 +0200 | [diff] [blame] | 243 | const struct linger nolinger = { .l_onoff = 1, .l_linger = 0 }; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 244 | |
Willy Tarreau | 1d21e0a | 2010-03-12 21:58:54 +0100 | [diff] [blame] | 245 | char hostname[MAX_HOSTNAME_LEN]; |
Dragan Dosen | 4f01415 | 2020-06-18 16:56:47 +0200 | [diff] [blame] | 246 | char *localpeer = NULL; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 247 | |
William Lallemand | 0041741 | 2020-06-05 14:08:41 +0200 | [diff] [blame] | 248 | static char **old_argv = NULL; /* previous argv but cleaned up */ |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 249 | |
William Lallemand | bc19305 | 2018-09-11 10:06:26 +0200 | [diff] [blame] | 250 | struct list proc_list = LIST_HEAD_INIT(proc_list); |
| 251 | |
| 252 | int master = 0; /* 1 if in master, 0 if in child */ |
Willy Tarreau | bf69640 | 2019-03-01 10:09:28 +0100 | [diff] [blame] | 253 | unsigned int rlim_fd_cur_at_boot = 0; |
| 254 | unsigned int rlim_fd_max_at_boot = 0; |
William Lallemand | bc19305 | 2018-09-11 10:06:26 +0200 | [diff] [blame] | 255 | |
Willy Tarreau | 6c3a681 | 2020-03-06 18:57:15 +0100 | [diff] [blame] | 256 | /* per-boot randomness */ |
| 257 | unsigned char boot_seed[20]; /* per-boot random seed (160 bits initially) */ |
| 258 | |
William Lallemand | b3f2be3 | 2018-09-11 10:06:18 +0200 | [diff] [blame] | 259 | static void *run_thread_poll_loop(void *data); |
| 260 | |
Willy Tarreau | ff05550 | 2014-04-28 22:27:06 +0200 | [diff] [blame] | 261 | /* bitfield of a few warnings to emit just once (WARN_*) */ |
| 262 | unsigned int warned = 0; |
| 263 | |
Amaury Denoyelle | 484454d | 2021-05-05 16:18:45 +0200 | [diff] [blame] | 264 | /* set if experimental features have been used for the current process */ |
| 265 | static unsigned int tainted = 0; |
| 266 | |
Amaury Denoyelle | d2e53cd | 2021-05-06 16:21:39 +0200 | [diff] [blame] | 267 | unsigned int experimental_directives_allowed = 0; |
| 268 | |
| 269 | int check_kw_experimental(struct cfg_keyword *kw, const char *file, int linenum, |
| 270 | char **errmsg) |
| 271 | { |
| 272 | if (kw->flags & KWF_EXPERIMENTAL) { |
| 273 | if (!experimental_directives_allowed) { |
Amaury Denoyelle | 86c1d0f | 2021-05-07 15:07:21 +0200 | [diff] [blame] | 274 | memprintf(errmsg, "parsing [%s:%d] : '%s' directive is experimental, must be allowed via a global 'expose-experimental-directives'", |
Amaury Denoyelle | d2e53cd | 2021-05-06 16:21:39 +0200 | [diff] [blame] | 275 | file, linenum, kw->kw); |
| 276 | return 1; |
| 277 | } |
| 278 | mark_tainted(TAINTED_CONFIG_EXP_KW_DECLARED); |
| 279 | } |
| 280 | |
| 281 | return 0; |
| 282 | } |
| 283 | |
William Lallemand | e736115 | 2018-10-26 14:47:36 +0200 | [diff] [blame] | 284 | /* master CLI configuration (-S flag) */ |
| 285 | struct list mworker_cli_conf = LIST_HEAD_INIT(mworker_cli_conf); |
Willy Tarreau | cdb737e | 2016-12-21 18:43:10 +0100 | [diff] [blame] | 286 | |
| 287 | /* These are strings to be reported in the output of "haproxy -vv". They may |
| 288 | * either be constants (in which case must_free must be zero) or dynamically |
| 289 | * allocated strings to pass to free() on exit, and in this case must_free |
| 290 | * must be non-zero. |
| 291 | */ |
| 292 | struct list build_opts_list = LIST_HEAD_INIT(build_opts_list); |
| 293 | struct build_opts_str { |
| 294 | struct list list; |
| 295 | const char *str; |
| 296 | int must_free; |
| 297 | }; |
| 298 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 299 | /*********************************************************************/ |
| 300 | /* general purpose functions ***************************************/ |
| 301 | /*********************************************************************/ |
| 302 | |
Willy Tarreau | cdb737e | 2016-12-21 18:43:10 +0100 | [diff] [blame] | 303 | /* used to register some build option strings at boot. Set must_free to |
| 304 | * non-zero if the string must be freed upon exit. |
| 305 | */ |
| 306 | void hap_register_build_opts(const char *str, int must_free) |
| 307 | { |
| 308 | struct build_opts_str *b; |
| 309 | |
| 310 | b = calloc(1, sizeof(*b)); |
| 311 | if (!b) { |
| 312 | fprintf(stderr, "out of memory\n"); |
| 313 | exit(1); |
| 314 | } |
| 315 | b->str = str; |
| 316 | b->must_free = must_free; |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 317 | LIST_APPEND(&build_opts_list, &b->list); |
Willy Tarreau | cdb737e | 2016-12-21 18:43:10 +0100 | [diff] [blame] | 318 | } |
| 319 | |
Willy Tarreau | a43dfda | 2021-05-06 07:43:35 +0200 | [diff] [blame] | 320 | #define VERSION_MAX_ELTS 7 |
| 321 | |
| 322 | /* This function splits an haproxy version string into an array of integers. |
| 323 | * The syntax of the supported version string is the following: |
| 324 | * |
| 325 | * <a>[.<b>[.<c>[.<d>]]][-{dev,pre,rc}<f>][-*][-<g>] |
| 326 | * |
| 327 | * This validates for example: |
| 328 | * 1.2.1-pre2, 1.2.1, 1.2.10.1, 1.3.16-rc1, 1.4-dev3, 1.5-dev18, 1.5-dev18-43 |
| 329 | * 2.4-dev18-f6818d-20 |
| 330 | * |
| 331 | * The result is set in a array of <VERSION_MAX_ELTS> elements. Each letter has |
| 332 | * one fixed place in the array. The tags take a numeric value called <e> which |
| 333 | * defaults to 3. "dev" is 1, "rc" and "pre" are 2. Numbers not encountered are |
| 334 | * considered as zero (henxe 1.5 and 1.5.0 are the same). |
| 335 | * |
| 336 | * The resulting values are: |
| 337 | * 1.2.1-pre2 1, 2, 1, 0, 2, 2, 0 |
| 338 | * 1.2.1 1, 2, 1, 0, 3, 0, 0 |
| 339 | * 1.2.10.1 1, 2, 10, 1, 3, 0, 0 |
| 340 | * 1.3.16-rc1 1, 3, 16, 0, 2, 1, 0 |
| 341 | * 1.4-dev3 1, 4, 0, 0, 1, 3, 0 |
| 342 | * 1.5-dev18 1, 5, 0, 0, 1, 18, 0 |
| 343 | * 1.5-dev18-43 1, 5, 0, 0, 1, 18, 43 |
| 344 | * 2.4-dev18-f6818d-20 2, 4, 0, 0, 1, 18, 20 |
| 345 | * |
| 346 | * The function returns non-zero if the conversion succeeded, or zero if it |
| 347 | * failed. |
| 348 | */ |
| 349 | int split_version(const char *version, unsigned int *value) |
| 350 | { |
| 351 | const char *p, *s; |
| 352 | char *error; |
| 353 | int nelts; |
| 354 | |
| 355 | /* Initialize array with zeroes */ |
| 356 | for (nelts = 0; nelts < VERSION_MAX_ELTS; nelts++) |
| 357 | value[nelts] = 0; |
| 358 | value[4] = 3; |
| 359 | |
| 360 | p = version; |
| 361 | |
| 362 | /* If the version number is empty, return false */ |
| 363 | if (*p == '\0') |
| 364 | return 0; |
| 365 | |
| 366 | /* Convert first number <a> */ |
| 367 | value[0] = strtol(p, &error, 10); |
| 368 | p = error + 1; |
| 369 | if (*error == '\0') |
| 370 | return 1; |
| 371 | if (*error == '-') |
| 372 | goto split_version_tag; |
| 373 | if (*error != '.') |
| 374 | return 0; |
| 375 | |
| 376 | /* Convert first number <b> */ |
| 377 | value[1] = strtol(p, &error, 10); |
| 378 | p = error + 1; |
| 379 | if (*error == '\0') |
| 380 | return 1; |
| 381 | if (*error == '-') |
| 382 | goto split_version_tag; |
| 383 | if (*error != '.') |
| 384 | return 0; |
| 385 | |
| 386 | /* Convert first number <c> */ |
| 387 | value[2] = strtol(p, &error, 10); |
| 388 | p = error + 1; |
| 389 | if (*error == '\0') |
| 390 | return 1; |
| 391 | if (*error == '-') |
| 392 | goto split_version_tag; |
| 393 | if (*error != '.') |
| 394 | return 0; |
| 395 | |
| 396 | /* Convert first number <d> */ |
| 397 | value[3] = strtol(p, &error, 10); |
| 398 | p = error + 1; |
| 399 | if (*error == '\0') |
| 400 | return 1; |
| 401 | if (*error != '-') |
| 402 | return 0; |
| 403 | |
| 404 | split_version_tag: |
| 405 | /* Check for commit number */ |
| 406 | if (*p >= '0' && *p <= '9') |
| 407 | goto split_version_commit; |
| 408 | |
| 409 | /* Read tag */ |
| 410 | if (strncmp(p, "dev", 3) == 0) { value[4] = 1; p += 3; } |
| 411 | else if (strncmp(p, "rc", 2) == 0) { value[4] = 2; p += 2; } |
| 412 | else if (strncmp(p, "pre", 3) == 0) { value[4] = 2; p += 3; } |
| 413 | else |
| 414 | goto split_version_commit; |
| 415 | |
| 416 | /* Convert tag number */ |
| 417 | value[5] = strtol(p, &error, 10); |
| 418 | p = error + 1; |
| 419 | if (*error == '\0') |
| 420 | return 1; |
| 421 | if (*error != '-') |
| 422 | return 0; |
| 423 | |
| 424 | split_version_commit: |
| 425 | /* Search the last "-" */ |
| 426 | s = strrchr(p, '-'); |
| 427 | if (s) { |
| 428 | s++; |
| 429 | if (*s == '\0') |
| 430 | return 0; |
| 431 | value[6] = strtol(s, &error, 10); |
| 432 | if (*error != '\0') |
| 433 | value[6] = 0; |
| 434 | return 1; |
| 435 | } |
| 436 | |
| 437 | /* convert the version */ |
| 438 | value[6] = strtol(p, &error, 10); |
| 439 | if (*error != '\0') |
| 440 | value[6] = 0; |
| 441 | |
| 442 | return 1; |
| 443 | } |
| 444 | |
| 445 | /* This function compares the current haproxy version with an arbitrary version |
| 446 | * string. It returns: |
| 447 | * -1 : the version in argument is older than the current haproxy version |
| 448 | * 0 : the version in argument is the same as the current haproxy version |
| 449 | * 1 : the version in argument is newer than the current haproxy version |
| 450 | * |
| 451 | * Or some errors: |
| 452 | * -2 : the current haproxy version is not parsable |
| 453 | * -3 : the version in argument is not parsable |
| 454 | */ |
| 455 | int compare_current_version(const char *version) |
| 456 | { |
| 457 | unsigned int loc[VERSION_MAX_ELTS]; |
| 458 | unsigned int mod[VERSION_MAX_ELTS]; |
| 459 | int i; |
| 460 | |
| 461 | /* split versions */ |
| 462 | if (!split_version(haproxy_version, loc)) |
| 463 | return -2; |
| 464 | if (!split_version(version, mod)) |
| 465 | return -3; |
| 466 | |
| 467 | /* compare versions */ |
| 468 | for (i = 0; i < VERSION_MAX_ELTS; i++) { |
| 469 | if (mod[i] < loc[i]) |
| 470 | return -1; |
| 471 | else if (mod[i] > loc[i]) |
| 472 | return 1; |
| 473 | } |
| 474 | return 0; |
| 475 | } |
| 476 | |
Willy Tarreau | 1b5af7c | 2016-12-21 18:19:57 +0100 | [diff] [blame] | 477 | static void display_version() |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 478 | { |
Tim Duesterhus | dfad6a4 | 2020-04-18 16:02:47 +0200 | [diff] [blame] | 479 | struct utsname utsname; |
| 480 | |
Willy Tarreau | a5357cd | 2021-05-09 06:14:25 +0200 | [diff] [blame] | 481 | printf("HAProxy version %s %s - https://haproxy.org/\n" |
Willy Tarreau | 08dd202 | 2019-11-21 18:07:30 +0100 | [diff] [blame] | 482 | PRODUCT_STATUS "\n", haproxy_version, haproxy_date); |
Willy Tarreau | 47479eb | 2019-11-21 18:48:20 +0100 | [diff] [blame] | 483 | |
| 484 | if (strlen(PRODUCT_URL_BUGS) > 0) { |
| 485 | char base_version[20]; |
| 486 | int dots = 0; |
| 487 | char *del; |
| 488 | |
| 489 | /* only retrieve the base version without distro-specific extensions */ |
| 490 | for (del = haproxy_version; *del; del++) { |
| 491 | if (*del == '.') |
| 492 | dots++; |
| 493 | else if (*del < '0' || *del > '9') |
| 494 | break; |
| 495 | } |
| 496 | |
| 497 | strlcpy2(base_version, haproxy_version, del - haproxy_version + 1); |
| 498 | if (dots < 2) |
| 499 | printf("Known bugs: https://github.com/haproxy/haproxy/issues?q=is:issue+is:open\n"); |
| 500 | else |
| 501 | printf("Known bugs: " PRODUCT_URL_BUGS "\n", base_version); |
| 502 | } |
Tim Duesterhus | dfad6a4 | 2020-04-18 16:02:47 +0200 | [diff] [blame] | 503 | |
| 504 | if (uname(&utsname) == 0) { |
| 505 | printf("Running on: %s %s %s %s\n", utsname.sysname, utsname.release, utsname.version, utsname.machine); |
| 506 | } |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 507 | } |
| 508 | |
Willy Tarreau | 1b5af7c | 2016-12-21 18:19:57 +0100 | [diff] [blame] | 509 | static void display_build_opts() |
Willy Tarreau | 7b066db | 2007-12-02 11:28:59 +0100 | [diff] [blame] | 510 | { |
Willy Tarreau | cdb737e | 2016-12-21 18:43:10 +0100 | [diff] [blame] | 511 | struct build_opts_str *item; |
| 512 | |
Willy Tarreau | 7b066db | 2007-12-02 11:28:59 +0100 | [diff] [blame] | 513 | printf("Build options :" |
| 514 | #ifdef BUILD_TARGET |
Willy Tarreau | 9f2b730 | 2008-01-02 20:48:34 +0100 | [diff] [blame] | 515 | "\n TARGET = " BUILD_TARGET |
Willy Tarreau | 7b066db | 2007-12-02 11:28:59 +0100 | [diff] [blame] | 516 | #endif |
| 517 | #ifdef BUILD_CPU |
Willy Tarreau | 9f2b730 | 2008-01-02 20:48:34 +0100 | [diff] [blame] | 518 | "\n CPU = " BUILD_CPU |
Willy Tarreau | 7b066db | 2007-12-02 11:28:59 +0100 | [diff] [blame] | 519 | #endif |
| 520 | #ifdef BUILD_CC |
Willy Tarreau | 9f2b730 | 2008-01-02 20:48:34 +0100 | [diff] [blame] | 521 | "\n CC = " BUILD_CC |
| 522 | #endif |
| 523 | #ifdef BUILD_CFLAGS |
| 524 | "\n CFLAGS = " BUILD_CFLAGS |
Willy Tarreau | 7b066db | 2007-12-02 11:28:59 +0100 | [diff] [blame] | 525 | #endif |
Willy Tarreau | 9f2b730 | 2008-01-02 20:48:34 +0100 | [diff] [blame] | 526 | #ifdef BUILD_OPTIONS |
| 527 | "\n OPTIONS = " BUILD_OPTIONS |
Willy Tarreau | 7b066db | 2007-12-02 11:28:59 +0100 | [diff] [blame] | 528 | #endif |
Tim Duesterhus | c8d1970 | 2020-11-21 18:07:59 +0100 | [diff] [blame] | 529 | #ifdef BUILD_DEBUG |
| 530 | "\n DEBUG = " BUILD_DEBUG |
| 531 | #endif |
Willy Tarreau | 7728ed3 | 2019-03-27 13:20:08 +0100 | [diff] [blame] | 532 | #ifdef BUILD_FEATURES |
| 533 | "\n\nFeature list : " BUILD_FEATURES |
| 534 | #endif |
Willy Tarreau | 27a674e | 2009-08-17 07:23:33 +0200 | [diff] [blame] | 535 | "\n\nDefault settings :" |
Willy Tarreau | ca783d4 | 2019-03-13 10:03:07 +0100 | [diff] [blame] | 536 | "\n bufsize = %d, maxrewrite = %d, maxpollevents = %d" |
Willy Tarreau | 27a674e | 2009-08-17 07:23:33 +0200 | [diff] [blame] | 537 | "\n\n", |
Willy Tarreau | ca783d4 | 2019-03-13 10:03:07 +0100 | [diff] [blame] | 538 | BUFSIZE, MAXREWRITE, MAX_POLL_EVENTS); |
Willy Tarreau | be5b685 | 2009-10-03 18:57:08 +0200 | [diff] [blame] | 539 | |
Willy Tarreau | cdb737e | 2016-12-21 18:43:10 +0100 | [diff] [blame] | 540 | list_for_each_entry(item, &build_opts_list, list) { |
| 541 | puts(item->str); |
| 542 | } |
| 543 | |
Krzysztof Piotr Oledzki | 9610504 | 2010-01-29 17:50:44 +0100 | [diff] [blame] | 544 | putchar('\n'); |
| 545 | |
Willy Tarreau | be5b685 | 2009-10-03 18:57:08 +0200 | [diff] [blame] | 546 | list_pollers(stdout); |
| 547 | putchar('\n'); |
Christopher Faulet | 98d9fe2 | 2018-04-10 14:37:32 +0200 | [diff] [blame] | 548 | list_mux_proto(stdout); |
| 549 | putchar('\n'); |
Willy Tarreau | 679bba1 | 2019-03-19 08:08:10 +0100 | [diff] [blame] | 550 | list_services(stdout); |
| 551 | putchar('\n'); |
Christopher Faulet | b3f4e14 | 2016-03-07 12:46:38 +0100 | [diff] [blame] | 552 | list_filters(stdout); |
| 553 | putchar('\n'); |
Willy Tarreau | 7b066db | 2007-12-02 11:28:59 +0100 | [diff] [blame] | 554 | } |
| 555 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 556 | /* |
| 557 | * This function prints the command line usage and exits |
| 558 | */ |
Willy Tarreau | 1b5af7c | 2016-12-21 18:19:57 +0100 | [diff] [blame] | 559 | static void usage(char *name) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 560 | { |
| 561 | display_version(); |
| 562 | fprintf(stderr, |
Maxime de Roucy | 379d9c7 | 2016-05-13 23:52:56 +0200 | [diff] [blame] | 563 | "Usage : %s [-f <cfgfile|cfgdir>]* [ -vdV" |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 564 | "D ] [ -n <maxconn> ] [ -N <maxpconn> ]\n" |
Willy Tarreau | a088d31 | 2015-10-08 11:58:48 +0200 | [diff] [blame] | 565 | " [ -p <pidfile> ] [ -m <max megs> ] [ -C <dir> ] [-- <cfgfile>*]\n" |
Willy Tarreau | 7b066db | 2007-12-02 11:28:59 +0100 | [diff] [blame] | 566 | " -v displays version ; -vv shows known build options.\n" |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 567 | " -d enters debug mode ; -db only disables background mode.\n" |
Willy Tarreau | 6e06443 | 2012-05-08 15:40:42 +0200 | [diff] [blame] | 568 | " -dM[<byte>] poisons memory with <byte> (defaults to 0x50)\n" |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 569 | " -V enters verbose mode (disables quiet mode)\n" |
Willy Tarreau | 576132e | 2011-09-10 19:26:56 +0200 | [diff] [blame] | 570 | " -D goes daemon ; -C changes to <dir> before loading files.\n" |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 571 | " -W master-worker mode.\n" |
Tim Duesterhus | d6942c8 | 2017-11-20 15:58:35 +0100 | [diff] [blame] | 572 | #if defined(USE_SYSTEMD) |
| 573 | " -Ws master-worker mode with systemd notify support.\n" |
| 574 | #endif |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 575 | " -q quiet mode : don't display messages\n" |
Willy Tarreau | 5d01a63 | 2009-06-22 16:02:30 +0200 | [diff] [blame] | 576 | " -c check mode : only check config files and exit\n" |
Willy Tarreau | ca783d4 | 2019-03-13 10:03:07 +0100 | [diff] [blame] | 577 | " -n sets the maximum total # of connections (uses ulimit -n)\n" |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 578 | " -m limits the usable amount of memory (in MB)\n" |
| 579 | " -N sets the default, per-proxy maximum # of connections (%d)\n" |
Emeric Brun | 2b920a1 | 2010-09-23 18:30:22 +0200 | [diff] [blame] | 580 | " -L set local peer name (default to hostname)\n" |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 581 | " -p writes pids of all children to this file\n" |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 582 | #if defined(USE_EPOLL) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 583 | " -de disables epoll() usage even when available\n" |
| 584 | #endif |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 585 | #if defined(USE_KQUEUE) |
Willy Tarreau | 1e63130a | 2007-04-09 12:03:06 +0200 | [diff] [blame] | 586 | " -dk disables kqueue() usage even when available\n" |
| 587 | #endif |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 588 | #if defined(USE_EVPORTS) |
Emmanuel Hocdet | 0ba4f48 | 2019-04-08 16:53:32 +0000 | [diff] [blame] | 589 | " -dv disables event ports usage even when available\n" |
| 590 | #endif |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 591 | #if defined(USE_POLL) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 592 | " -dp disables poll() usage even when available\n" |
| 593 | #endif |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 594 | #if defined(USE_LINUX_SPLICE) |
Willy Tarreau | 3ab68cf | 2009-01-25 16:03:28 +0100 | [diff] [blame] | 595 | " -dS disables splice usage (broken on old kernels)\n" |
| 596 | #endif |
Nenad Merdanovic | 88afe03 | 2014-04-14 15:56:58 +0200 | [diff] [blame] | 597 | #if defined(USE_GETADDRINFO) |
| 598 | " -dG disables getaddrinfo() usage\n" |
| 599 | #endif |
Lukas Tribus | a0bcbdc | 2016-09-12 21:42:20 +0000 | [diff] [blame] | 600 | #if defined(SO_REUSEPORT) |
| 601 | " -dR disables SO_REUSEPORT usage\n" |
| 602 | #endif |
Willy Tarreau | 0aa9dbe | 2021-12-28 15:43:11 +0100 | [diff] [blame] | 603 | #if defined(HA_HAVE_DUMP_LIBS) |
| 604 | " -dL dumps loaded object files after config checks\n" |
| 605 | #endif |
Willy Tarreau | 3eed10e | 2016-11-07 21:03:16 +0100 | [diff] [blame] | 606 | " -dr ignores server address resolution failures\n" |
Emeric Brun | 850efd5 | 2014-01-29 12:24:34 +0100 | [diff] [blame] | 607 | " -dV disables SSL verify on servers side\n" |
Willy Tarreau | 3eb10b8 | 2020-04-15 16:42:39 +0200 | [diff] [blame] | 608 | " -dW fails if any warning is emitted\n" |
Amaury Denoyelle | 7b01a8d | 2021-03-29 10:29:07 +0200 | [diff] [blame] | 609 | " -dD diagnostic mode : warn about suspicious configuration statements\n" |
Willy Tarreau | c6ca1aa | 2015-10-08 11:32:32 +0200 | [diff] [blame] | 610 | " -sf/-st [pid ]* finishes/terminates old pids.\n" |
Olivier Houchard | f73629d | 2017-04-05 22:33:04 +0200 | [diff] [blame] | 611 | " -x <unix_socket> get listening sockets from a unix socket\n" |
William Lallemand | 63329e3 | 2019-06-13 17:03:37 +0200 | [diff] [blame] | 612 | " -S <bind>[,<bind options>...] new master CLI\n" |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 613 | "\n", |
Willy Tarreau | ca783d4 | 2019-03-13 10:03:07 +0100 | [diff] [blame] | 614 | name, cfg_maxpconn); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 615 | exit(1); |
| 616 | } |
| 617 | |
| 618 | |
| 619 | |
| 620 | /*********************************************************************/ |
| 621 | /* more specific functions ***************************************/ |
| 622 | /*********************************************************************/ |
| 623 | |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 624 | /* sends the signal <sig> to all pids found in <oldpids>. Returns the number of |
| 625 | * pids the signal was correctly delivered to. |
| 626 | */ |
William Lallemand | e25473c | 2019-04-01 11:29:56 +0200 | [diff] [blame] | 627 | int tell_old_pids(int sig) |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 628 | { |
| 629 | int p; |
| 630 | int ret = 0; |
| 631 | for (p = 0; p < nb_oldpids; p++) |
| 632 | if (kill(oldpids[p], sig) == 0) |
| 633 | ret++; |
| 634 | return ret; |
| 635 | } |
| 636 | |
William Lallemand | 75ea0a0 | 2017-11-15 19:02:58 +0100 | [diff] [blame] | 637 | /* |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 638 | * remove a pid forom the olpid array and decrease nb_oldpids |
| 639 | * return 1 pid was found otherwise return 0 |
| 640 | */ |
| 641 | |
| 642 | int delete_oldpid(int pid) |
| 643 | { |
| 644 | int i; |
| 645 | |
| 646 | for (i = 0; i < nb_oldpids; i++) { |
| 647 | if (oldpids[i] == pid) { |
| 648 | oldpids[i] = oldpids[nb_oldpids - 1]; |
| 649 | oldpids[nb_oldpids - 1] = 0; |
| 650 | nb_oldpids--; |
| 651 | return 1; |
| 652 | } |
| 653 | } |
| 654 | return 0; |
| 655 | } |
| 656 | |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 657 | |
| 658 | static void get_cur_unixsocket() |
| 659 | { |
Willy Tarreau | 7b11b7e | 2022-02-01 08:47:41 +0100 | [diff] [blame] | 660 | /* get rid of the one found on the command line for now */ |
| 661 | ha_free(&cur_unixsocket); |
| 662 | |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 663 | /* if -x was used, try to update the stat socket if not available anymore */ |
Willy Tarreau | 4975d14 | 2021-03-13 11:00:33 +0100 | [diff] [blame] | 664 | if (global.cli_fe) { |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 665 | struct bind_conf *bind_conf; |
| 666 | |
| 667 | /* pass through all stats socket */ |
Willy Tarreau | 4975d14 | 2021-03-13 11:00:33 +0100 | [diff] [blame] | 668 | list_for_each_entry(bind_conf, &global.cli_fe->conf.bind, by_fe) { |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 669 | struct listener *l; |
| 670 | |
| 671 | list_for_each_entry(l, &bind_conf->listeners, by_bind) { |
| 672 | |
Willy Tarreau | 3715906 | 2020-08-27 07:48:42 +0200 | [diff] [blame] | 673 | if (l->rx.addr.ss_family == AF_UNIX && |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 674 | (bind_conf->level & ACCESS_FD_LISTENERS)) { |
| 675 | const struct sockaddr_un *un; |
| 676 | |
Willy Tarreau | 3715906 | 2020-08-27 07:48:42 +0200 | [diff] [blame] | 677 | un = (struct sockaddr_un *)&l->rx.addr; |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 678 | /* priority to old_unixsocket */ |
| 679 | if (!cur_unixsocket) { |
| 680 | cur_unixsocket = strdup(un->sun_path); |
| 681 | } else { |
Tim Duesterhus | e5ff141 | 2021-01-02 22:31:53 +0100 | [diff] [blame] | 682 | if (old_unixsocket && strcmp(un->sun_path, old_unixsocket) == 0) { |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 683 | free(cur_unixsocket); |
| 684 | cur_unixsocket = strdup(old_unixsocket); |
| 685 | return; |
| 686 | } |
| 687 | } |
| 688 | } |
| 689 | } |
| 690 | } |
| 691 | } |
| 692 | if (!cur_unixsocket && old_unixsocket) |
| 693 | cur_unixsocket = strdup(old_unixsocket); |
| 694 | } |
| 695 | |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 696 | /* |
| 697 | * When called, this function reexec haproxy with -sf followed by current |
Joseph Herlant | 0342090 | 2018-11-15 10:41:50 -0800 | [diff] [blame] | 698 | * children PIDs and possibly old children PIDs if they didn't leave yet. |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 699 | */ |
William Lallemand | a57b7e3 | 2018-12-14 21:11:31 +0100 | [diff] [blame] | 700 | void mworker_reload() |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 701 | { |
William Lallemand | 0041741 | 2020-06-05 14:08:41 +0200 | [diff] [blame] | 702 | char **next_argv = NULL; |
| 703 | int old_argc = 0; /* previous number of argument */ |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 704 | int next_argc = 0; |
William Lallemand | 0041741 | 2020-06-05 14:08:41 +0200 | [diff] [blame] | 705 | int i = 0; |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 706 | char *msg = NULL; |
Willy Tarreau | 8dca195 | 2019-03-01 10:21:55 +0100 | [diff] [blame] | 707 | struct rlimit limit; |
William Lallemand | 7c756a8 | 2018-11-26 11:53:40 +0100 | [diff] [blame] | 708 | struct per_thread_deinit_fct *ptdf; |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 709 | |
| 710 | mworker_block_signals(); |
Tim Duesterhus | d6942c8 | 2017-11-20 15:58:35 +0100 | [diff] [blame] | 711 | #if defined(USE_SYSTEMD) |
| 712 | if (global.tune.options & GTUNE_USE_SYSTEMD) |
| 713 | sd_notify(0, "RELOADING=1"); |
| 714 | #endif |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 715 | setenv("HAPROXY_MWORKER_REEXEC", "1", 1); |
| 716 | |
William Lallemand | 030571a | 2022-01-28 21:17:30 +0100 | [diff] [blame] | 717 | mworker_cleanup_proc(); |
William Lallemand | bc19305 | 2018-09-11 10:06:26 +0200 | [diff] [blame] | 718 | mworker_proc_list_to_env(); /* put the children description in the env */ |
| 719 | |
William Lallemand | 7c756a8 | 2018-11-26 11:53:40 +0100 | [diff] [blame] | 720 | /* during the reload we must ensure that every FDs that can't be |
| 721 | * reuse (ie those that are not referenced in the proc_list) |
| 722 | * are closed or they will leak. */ |
| 723 | |
| 724 | /* close the listeners FD */ |
| 725 | mworker_cli_proxy_stop(); |
William Lallemand | 1686667 | 2019-06-24 17:40:48 +0200 | [diff] [blame] | 726 | |
| 727 | if (getenv("HAPROXY_MWORKER_WAIT_ONLY") == NULL) { |
| 728 | /* close the poller FD and the thread waker pipe FD */ |
| 729 | list_for_each_entry(ptdf, &per_thread_deinit_list, list) |
| 730 | ptdf->fct(); |
| 731 | if (fdtab) |
| 732 | deinit_pollers(); |
| 733 | } |
Ilya Shipitsin | 98a9e1b | 2021-02-19 23:42:53 +0500 | [diff] [blame] | 734 | #ifdef HAVE_SSL_RAND_KEEP_RANDOM_DEVICES_OPEN |
William Lallemand | 5fdb5b3 | 2019-10-15 14:04:08 +0200 | [diff] [blame] | 735 | /* close random device FDs */ |
| 736 | RAND_keep_random_devices_open(0); |
Rob Allen | 56996da | 2019-05-03 09:11:32 +0100 | [diff] [blame] | 737 | #endif |
William Lallemand | 7c756a8 | 2018-11-26 11:53:40 +0100 | [diff] [blame] | 738 | |
Willy Tarreau | 8dca195 | 2019-03-01 10:21:55 +0100 | [diff] [blame] | 739 | /* restore the initial FD limits */ |
| 740 | limit.rlim_cur = rlim_fd_cur_at_boot; |
| 741 | limit.rlim_max = rlim_fd_max_at_boot; |
| 742 | if (setrlimit(RLIMIT_NOFILE, &limit) == -1) { |
| 743 | getrlimit(RLIMIT_NOFILE, &limit); |
| 744 | ha_warning("Failed to restore initial FD limits (cur=%u max=%u), using cur=%u max=%u\n", |
| 745 | rlim_fd_cur_at_boot, rlim_fd_max_at_boot, |
| 746 | (unsigned int)limit.rlim_cur, (unsigned int)limit.rlim_max); |
| 747 | } |
| 748 | |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 749 | /* compute length */ |
William Lallemand | 0041741 | 2020-06-05 14:08:41 +0200 | [diff] [blame] | 750 | while (old_argv[old_argc]) |
| 751 | old_argc++; |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 752 | |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 753 | /* 1 for haproxy -sf, 2 for -x /socket */ |
William Lallemand | aba7f8b | 2021-04-21 16:55:34 +0200 | [diff] [blame] | 754 | next_argv = calloc(old_argc + 1 + 2 + mworker_child_nb() + 1, |
Tim Duesterhus | e52b6e5 | 2020-09-12 20:26:43 +0200 | [diff] [blame] | 755 | sizeof(*next_argv)); |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 756 | if (next_argv == NULL) |
| 757 | goto alloc_error; |
| 758 | |
William Lallemand | 0041741 | 2020-06-05 14:08:41 +0200 | [diff] [blame] | 759 | /* copy the program name */ |
| 760 | next_argv[next_argc++] = old_argv[0]; |
| 761 | |
| 762 | /* insert the new options just after argv[0] in case we have a -- */ |
| 763 | |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 764 | /* add -sf <PID>* to argv */ |
William Lallemand | 3f12887 | 2019-04-01 11:29:59 +0200 | [diff] [blame] | 765 | if (mworker_child_nb() > 0) { |
| 766 | struct mworker_proc *child; |
| 767 | |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 768 | next_argv[next_argc++] = "-sf"; |
William Lallemand | 3f12887 | 2019-04-01 11:29:59 +0200 | [diff] [blame] | 769 | |
| 770 | list_for_each_entry(child, &proc_list, list) { |
William Lallemand | 677e2f2 | 2019-11-19 17:04:18 +0100 | [diff] [blame] | 771 | if (!(child->options & (PROC_O_TYPE_WORKER|PROC_O_TYPE_PROG)) || child->pid <= -1 ) |
William Lallemand | 3f12887 | 2019-04-01 11:29:59 +0200 | [diff] [blame] | 772 | continue; |
William Lallemand | 0041741 | 2020-06-05 14:08:41 +0200 | [diff] [blame] | 773 | if ((next_argv[next_argc++] = memprintf(&msg, "%d", child->pid)) == NULL) |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 774 | goto alloc_error; |
| 775 | msg = NULL; |
| 776 | } |
| 777 | } |
William Lallemand | 2bf6d62 | 2017-06-20 11:20:23 +0200 | [diff] [blame] | 778 | /* add the -x option with the stat socket */ |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 779 | if (cur_unixsocket) { |
William Lallemand | 2bf6d62 | 2017-06-20 11:20:23 +0200 | [diff] [blame] | 780 | next_argv[next_argc++] = "-x"; |
| 781 | next_argv[next_argc++] = (char *)cur_unixsocket; |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 782 | } |
| 783 | |
William Lallemand | 0041741 | 2020-06-05 14:08:41 +0200 | [diff] [blame] | 784 | /* copy the previous options */ |
| 785 | for (i = 1; i < old_argc; i++) |
| 786 | next_argv[next_argc++] = old_argv[i]; |
| 787 | |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 788 | ha_warning("Reexecuting Master process\n"); |
Willy Tarreau | e0d86e2 | 2019-08-26 10:37:39 +0200 | [diff] [blame] | 789 | signal(SIGPROF, SIG_IGN); |
Tim Duesterhus | 0436ab7 | 2017-11-12 17:39:18 +0100 | [diff] [blame] | 790 | execvp(next_argv[0], next_argv); |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 791 | |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 792 | ha_warning("Failed to reexecute the master process [%d]: %s\n", pid, strerror(errno)); |
Willy Tarreau | 61cfdf4 | 2021-02-20 10:46:51 +0100 | [diff] [blame] | 793 | ha_free(&next_argv); |
William Lallemand | 722d4ca | 2017-11-15 19:02:55 +0100 | [diff] [blame] | 794 | return; |
| 795 | |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 796 | alloc_error: |
Willy Tarreau | 61cfdf4 | 2021-02-20 10:46:51 +0100 | [diff] [blame] | 797 | ha_free(&next_argv); |
Joseph Herlant | 07a0834 | 2018-11-15 10:43:05 -0800 | [diff] [blame] | 798 | ha_warning("Failed to reexecute the master process [%d]: Cannot allocate memory\n", pid); |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 799 | return; |
| 800 | } |
| 801 | |
William Lallemand | b3f2be3 | 2018-09-11 10:06:18 +0200 | [diff] [blame] | 802 | static void mworker_loop() |
| 803 | { |
| 804 | |
| 805 | #if defined(USE_SYSTEMD) |
| 806 | if (global.tune.options & GTUNE_USE_SYSTEMD) |
| 807 | sd_notifyf(0, "READY=1\nMAINPID=%lu", (unsigned long)getpid()); |
| 808 | #endif |
Willy Tarreau | d83b6c1 | 2019-04-18 11:31:36 +0200 | [diff] [blame] | 809 | /* Busy polling makes no sense in the master :-) */ |
| 810 | global.tune.options &= ~GTUNE_BUSY_POLLING; |
William Lallemand | b3f2be3 | 2018-09-11 10:06:18 +0200 | [diff] [blame] | 811 | |
William Lallemand | bc19305 | 2018-09-11 10:06:26 +0200 | [diff] [blame] | 812 | master = 1; |
| 813 | |
Willy Tarreau | d26c9f9 | 2019-12-11 14:24:07 +0100 | [diff] [blame] | 814 | signal_unregister(SIGTTIN); |
| 815 | signal_unregister(SIGTTOU); |
William Lallemand | 0564d41 | 2018-11-20 17:36:53 +0100 | [diff] [blame] | 816 | signal_unregister(SIGUSR1); |
| 817 | signal_unregister(SIGHUP); |
| 818 | signal_unregister(SIGQUIT); |
| 819 | |
William Lallemand | b3f2be3 | 2018-09-11 10:06:18 +0200 | [diff] [blame] | 820 | signal_register_fct(SIGTERM, mworker_catch_sigterm, SIGTERM); |
| 821 | signal_register_fct(SIGUSR1, mworker_catch_sigterm, SIGUSR1); |
Willy Tarreau | d26c9f9 | 2019-12-11 14:24:07 +0100 | [diff] [blame] | 822 | signal_register_fct(SIGTTIN, mworker_broadcast_signal, SIGTTIN); |
| 823 | signal_register_fct(SIGTTOU, mworker_broadcast_signal, SIGTTOU); |
William Lallemand | b3f2be3 | 2018-09-11 10:06:18 +0200 | [diff] [blame] | 824 | signal_register_fct(SIGINT, mworker_catch_sigterm, SIGINT); |
| 825 | signal_register_fct(SIGHUP, mworker_catch_sighup, SIGHUP); |
| 826 | signal_register_fct(SIGUSR2, mworker_catch_sighup, SIGUSR2); |
| 827 | signal_register_fct(SIGCHLD, mworker_catch_sigchld, SIGCHLD); |
| 828 | |
| 829 | mworker_unblock_signals(); |
| 830 | mworker_cleanlisteners(); |
William Lallemand | 27f3fa5 | 2018-12-06 14:05:20 +0100 | [diff] [blame] | 831 | mworker_cleantasks(); |
William Lallemand | b3f2be3 | 2018-09-11 10:06:18 +0200 | [diff] [blame] | 832 | |
William Lallemand | bc19305 | 2018-09-11 10:06:26 +0200 | [diff] [blame] | 833 | mworker_catch_sigchld(NULL); /* ensure we clean the children in case |
| 834 | some SIGCHLD were lost */ |
| 835 | |
William Lallemand | b3f2be3 | 2018-09-11 10:06:18 +0200 | [diff] [blame] | 836 | global.nbthread = 1; |
| 837 | relative_pid = 1; |
| 838 | pid_bit = 1; |
Willy Tarreau | a38a717 | 2019-02-02 17:11:28 +0100 | [diff] [blame] | 839 | all_proc_mask = 1; |
William Lallemand | b3f2be3 | 2018-09-11 10:06:18 +0200 | [diff] [blame] | 840 | |
William Lallemand | 2672eb9 | 2018-12-14 15:52:39 +0100 | [diff] [blame] | 841 | #ifdef USE_THREAD |
| 842 | tid_bit = 1; |
| 843 | all_threads_mask = 1; |
| 844 | #endif |
| 845 | |
William Lallemand | b3f2be3 | 2018-09-11 10:06:18 +0200 | [diff] [blame] | 846 | jobs++; /* this is the "master" job, we want to take care of the |
| 847 | signals even if there is no listener so the poll loop don't |
| 848 | leave */ |
| 849 | |
| 850 | fork_poller(); |
Willy Tarreau | b4f7cc3 | 2019-05-03 09:27:30 +0200 | [diff] [blame] | 851 | run_thread_poll_loop(0); |
William Lallemand | b3f2be3 | 2018-09-11 10:06:18 +0200 | [diff] [blame] | 852 | } |
William Lallemand | cb11fd2 | 2017-06-01 17:38:52 +0200 | [diff] [blame] | 853 | |
| 854 | /* |
| 855 | * Reexec the process in failure mode, instead of exiting |
| 856 | */ |
| 857 | void reexec_on_failure() |
| 858 | { |
| 859 | if (!atexit_flag) |
| 860 | return; |
| 861 | |
| 862 | setenv("HAPROXY_MWORKER_WAIT_ONLY", "1", 1); |
| 863 | |
Willy Tarreau | 96d9a7f | 2022-01-28 18:40:06 +0100 | [diff] [blame] | 864 | /* do not keep unused FDs retrieved from the previous process */ |
| 865 | sock_drop_unused_old_sockets(); |
| 866 | |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 867 | ha_warning("Reexecuting Master process in waitpid mode\n"); |
William Lallemand | cb11fd2 | 2017-06-01 17:38:52 +0200 | [diff] [blame] | 868 | mworker_reload(); |
William Lallemand | cb11fd2 | 2017-06-01 17:38:52 +0200 | [diff] [blame] | 869 | } |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 870 | |
| 871 | |
| 872 | /* |
Willy Tarreau | d0807c3 | 2010-08-27 18:26:11 +0200 | [diff] [blame] | 873 | * upon SIGUSR1, let's have a soft stop. Note that soft_stop() broadcasts |
| 874 | * a signal zero to all subscribers. This means that it's as easy as |
| 875 | * subscribing to signal 0 to get informed about an imminent shutdown. |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 876 | */ |
Willy Tarreau | 1b5af7c | 2016-12-21 18:19:57 +0100 | [diff] [blame] | 877 | static void sig_soft_stop(struct sig_handler *sh) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 878 | { |
| 879 | soft_stop(); |
Willy Tarreau | 24f4efa | 2010-08-27 17:56:48 +0200 | [diff] [blame] | 880 | signal_unregister_handler(sh); |
Willy Tarreau | bafbe01 | 2017-11-24 17:34:44 +0100 | [diff] [blame] | 881 | pool_gc(NULL); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 882 | } |
| 883 | |
| 884 | /* |
| 885 | * upon SIGTTOU, we pause everything |
| 886 | */ |
Willy Tarreau | 1b5af7c | 2016-12-21 18:19:57 +0100 | [diff] [blame] | 887 | static void sig_pause(struct sig_handler *sh) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 888 | { |
Willy Tarreau | 775e001 | 2020-09-24 16:36:26 +0200 | [diff] [blame] | 889 | if (protocol_pause_all() & ERR_FATAL) { |
| 890 | const char *msg = "Some proxies refused to pause, performing soft stop now.\n"; |
Willy Tarreau | 0a002df | 2020-10-09 19:26:27 +0200 | [diff] [blame] | 891 | ha_warning("%s", msg); |
| 892 | send_log(NULL, LOG_WARNING, "%s", msg); |
Willy Tarreau | 775e001 | 2020-09-24 16:36:26 +0200 | [diff] [blame] | 893 | soft_stop(); |
| 894 | } |
Willy Tarreau | bafbe01 | 2017-11-24 17:34:44 +0100 | [diff] [blame] | 895 | pool_gc(NULL); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 896 | } |
| 897 | |
| 898 | /* |
| 899 | * upon SIGTTIN, let's have a soft stop. |
| 900 | */ |
Willy Tarreau | 1b5af7c | 2016-12-21 18:19:57 +0100 | [diff] [blame] | 901 | static void sig_listen(struct sig_handler *sh) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 902 | { |
Willy Tarreau | 775e001 | 2020-09-24 16:36:26 +0200 | [diff] [blame] | 903 | if (protocol_resume_all() & ERR_FATAL) { |
| 904 | const char *msg = "Some proxies refused to resume, probably due to a conflict on a listening port. You may want to try again after the conflicting application is stopped, otherwise a restart might be needed to resume safe operations.\n"; |
Willy Tarreau | 0a002df | 2020-10-09 19:26:27 +0200 | [diff] [blame] | 905 | ha_warning("%s", msg); |
| 906 | send_log(NULL, LOG_WARNING, "%s", msg); |
Willy Tarreau | 775e001 | 2020-09-24 16:36:26 +0200 | [diff] [blame] | 907 | } |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 908 | } |
| 909 | |
| 910 | /* |
| 911 | * this function dumps every server's state when the process receives SIGHUP. |
| 912 | */ |
Willy Tarreau | 1b5af7c | 2016-12-21 18:19:57 +0100 | [diff] [blame] | 913 | static void sig_dump_state(struct sig_handler *sh) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 914 | { |
Olivier Houchard | fbc74e8 | 2017-11-24 16:54:05 +0100 | [diff] [blame] | 915 | struct proxy *p = proxies_list; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 916 | |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 917 | ha_warning("SIGHUP received, dumping servers states.\n"); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 918 | while (p) { |
| 919 | struct server *s = p->srv; |
| 920 | |
| 921 | send_log(p, LOG_NOTICE, "SIGHUP received, dumping servers states for proxy %s.\n", p->id); |
| 922 | while (s) { |
Willy Tarreau | 19d14ef | 2012-10-29 16:51:55 +0100 | [diff] [blame] | 923 | chunk_printf(&trash, |
| 924 | "SIGHUP: Server %s/%s is %s. Conn: %d act, %d pend, %lld tot.", |
| 925 | p->id, s->id, |
Emeric Brun | 52a91d3 | 2017-08-31 14:41:55 +0200 | [diff] [blame] | 926 | (s->cur_state != SRV_ST_STOPPED) ? "UP" : "DOWN", |
Willy Tarreau | 19d14ef | 2012-10-29 16:51:55 +0100 | [diff] [blame] | 927 | s->cur_sess, s->nbpend, s->counters.cum_sess); |
Willy Tarreau | 843b7cb | 2018-07-13 10:54:26 +0200 | [diff] [blame] | 928 | ha_warning("%s\n", trash.area); |
| 929 | send_log(p, LOG_NOTICE, "%s\n", trash.area); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 930 | s = s->next; |
| 931 | } |
| 932 | |
Willy Tarreau | 5fcc8f1 | 2007-09-17 11:27:09 +0200 | [diff] [blame] | 933 | /* FIXME: those info are a bit outdated. We should be able to distinguish between FE and BE. */ |
| 934 | if (!p->srv) { |
Willy Tarreau | 19d14ef | 2012-10-29 16:51:55 +0100 | [diff] [blame] | 935 | chunk_printf(&trash, |
| 936 | "SIGHUP: Proxy %s has no servers. Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.", |
| 937 | p->id, |
| 938 | p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn); |
Willy Tarreau | 5fcc8f1 | 2007-09-17 11:27:09 +0200 | [diff] [blame] | 939 | } else if (p->srv_act == 0) { |
Willy Tarreau | 19d14ef | 2012-10-29 16:51:55 +0100 | [diff] [blame] | 940 | chunk_printf(&trash, |
| 941 | "SIGHUP: Proxy %s %s ! Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.", |
| 942 | p->id, |
| 943 | (p->srv_bck) ? "is running on backup servers" : "has no server available", |
| 944 | p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 945 | } else { |
Willy Tarreau | 19d14ef | 2012-10-29 16:51:55 +0100 | [diff] [blame] | 946 | chunk_printf(&trash, |
| 947 | "SIGHUP: Proxy %s has %d active servers and %d backup servers available." |
| 948 | " Conn: act(FE+BE): %d+%d, %d pend (%d unass), tot(FE+BE): %lld+%lld.", |
| 949 | p->id, p->srv_act, p->srv_bck, |
| 950 | p->feconn, p->beconn, p->totpend, p->nbpend, p->fe_counters.cum_conn, p->be_counters.cum_conn); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 951 | } |
Willy Tarreau | 843b7cb | 2018-07-13 10:54:26 +0200 | [diff] [blame] | 952 | ha_warning("%s\n", trash.area); |
| 953 | send_log(p, LOG_NOTICE, "%s\n", trash.area); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 954 | |
| 955 | p = p->next; |
| 956 | } |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 957 | } |
| 958 | |
Willy Tarreau | 1b5af7c | 2016-12-21 18:19:57 +0100 | [diff] [blame] | 959 | static void dump(struct sig_handler *sh) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 960 | { |
Willy Tarreau | c6ca1a0 | 2007-05-13 19:43:47 +0200 | [diff] [blame] | 961 | /* dump memory usage then free everything possible */ |
| 962 | dump_pools(); |
Willy Tarreau | bafbe01 | 2017-11-24 17:34:44 +0100 | [diff] [blame] | 963 | pool_gc(NULL); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 964 | } |
| 965 | |
William Lallemand | e134041 | 2017-12-28 16:09:36 +0100 | [diff] [blame] | 966 | /* |
| 967 | * This function dup2 the stdio FDs (0,1,2) with <fd>, then closes <fd> |
| 968 | * If <fd> < 0, it opens /dev/null and use it to dup |
| 969 | * |
| 970 | * In the case of chrooting, you have to open /dev/null before the chroot, and |
| 971 | * pass the <fd> to this function |
| 972 | */ |
| 973 | static void stdio_quiet(int fd) |
| 974 | { |
| 975 | if (fd < 0) |
| 976 | fd = open("/dev/null", O_RDWR, 0); |
| 977 | |
| 978 | if (fd > -1) { |
| 979 | fclose(stdin); |
| 980 | fclose(stdout); |
| 981 | fclose(stderr); |
| 982 | |
| 983 | dup2(fd, 0); |
| 984 | dup2(fd, 1); |
| 985 | dup2(fd, 2); |
| 986 | if (fd > 2) |
| 987 | close(fd); |
| 988 | return; |
| 989 | } |
| 990 | |
| 991 | ha_alert("Cannot open /dev/null\n"); |
| 992 | exit(EXIT_FAILURE); |
| 993 | } |
| 994 | |
| 995 | |
Joseph Herlant | 0342090 | 2018-11-15 10:41:50 -0800 | [diff] [blame] | 996 | /* This function checks if cfg_cfgfiles contains directories. |
| 997 | * If it finds one, it adds all the files (and only files) it contains |
| 998 | * in cfg_cfgfiles in place of the directory (and removes the directory). |
| 999 | * It adds the files in lexical order. |
| 1000 | * It adds only files with .cfg extension. |
Maxime de Roucy | 379d9c7 | 2016-05-13 23:52:56 +0200 | [diff] [blame] | 1001 | * It doesn't add files with name starting with '.' |
| 1002 | */ |
Willy Tarreau | 1b5af7c | 2016-12-21 18:19:57 +0100 | [diff] [blame] | 1003 | static void cfgfiles_expand_directories(void) |
Maxime de Roucy | 379d9c7 | 2016-05-13 23:52:56 +0200 | [diff] [blame] | 1004 | { |
| 1005 | struct wordlist *wl, *wlb; |
| 1006 | char *err = NULL; |
| 1007 | |
| 1008 | list_for_each_entry_safe(wl, wlb, &cfg_cfgfiles, list) { |
| 1009 | struct stat file_stat; |
| 1010 | struct dirent **dir_entries = NULL; |
| 1011 | int dir_entries_nb; |
| 1012 | int dir_entries_it; |
| 1013 | |
| 1014 | if (stat(wl->s, &file_stat)) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1015 | ha_alert("Cannot open configuration file/directory %s : %s\n", |
| 1016 | wl->s, |
| 1017 | strerror(errno)); |
Maxime de Roucy | 379d9c7 | 2016-05-13 23:52:56 +0200 | [diff] [blame] | 1018 | exit(1); |
| 1019 | } |
| 1020 | |
| 1021 | if (!S_ISDIR(file_stat.st_mode)) |
| 1022 | continue; |
| 1023 | |
| 1024 | /* from this point wl->s is a directory */ |
| 1025 | |
| 1026 | dir_entries_nb = scandir(wl->s, &dir_entries, NULL, alphasort); |
| 1027 | if (dir_entries_nb < 0) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1028 | ha_alert("Cannot open configuration directory %s : %s\n", |
| 1029 | wl->s, |
| 1030 | strerror(errno)); |
Maxime de Roucy | 379d9c7 | 2016-05-13 23:52:56 +0200 | [diff] [blame] | 1031 | exit(1); |
| 1032 | } |
| 1033 | |
| 1034 | /* for each element in the directory wl->s */ |
| 1035 | for (dir_entries_it = 0; dir_entries_it < dir_entries_nb; dir_entries_it++) { |
| 1036 | struct dirent *dir_entry = dir_entries[dir_entries_it]; |
| 1037 | char *filename = NULL; |
| 1038 | char *d_name_cfgext = strstr(dir_entry->d_name, ".cfg"); |
| 1039 | |
| 1040 | /* don't add filename that begin with . |
Joseph Herlant | 0342090 | 2018-11-15 10:41:50 -0800 | [diff] [blame] | 1041 | * only add filename with .cfg extension |
Maxime de Roucy | 379d9c7 | 2016-05-13 23:52:56 +0200 | [diff] [blame] | 1042 | */ |
| 1043 | if (dir_entry->d_name[0] == '.' || |
| 1044 | !(d_name_cfgext && d_name_cfgext[4] == '\0')) |
| 1045 | goto next_dir_entry; |
| 1046 | |
| 1047 | if (!memprintf(&filename, "%s/%s", wl->s, dir_entry->d_name)) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1048 | ha_alert("Cannot load configuration files %s : out of memory.\n", |
| 1049 | filename); |
Maxime de Roucy | 379d9c7 | 2016-05-13 23:52:56 +0200 | [diff] [blame] | 1050 | exit(1); |
| 1051 | } |
| 1052 | |
| 1053 | if (stat(filename, &file_stat)) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1054 | ha_alert("Cannot open configuration file %s : %s\n", |
| 1055 | wl->s, |
| 1056 | strerror(errno)); |
Maxime de Roucy | 379d9c7 | 2016-05-13 23:52:56 +0200 | [diff] [blame] | 1057 | exit(1); |
| 1058 | } |
| 1059 | |
| 1060 | /* don't add anything else than regular file in cfg_cfgfiles |
| 1061 | * this way we avoid loops |
| 1062 | */ |
| 1063 | if (!S_ISREG(file_stat.st_mode)) |
| 1064 | goto next_dir_entry; |
| 1065 | |
| 1066 | if (!list_append_word(&wl->list, filename, &err)) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1067 | ha_alert("Cannot load configuration files %s : %s\n", |
| 1068 | filename, |
| 1069 | err); |
Maxime de Roucy | 379d9c7 | 2016-05-13 23:52:56 +0200 | [diff] [blame] | 1070 | exit(1); |
| 1071 | } |
| 1072 | |
| 1073 | next_dir_entry: |
| 1074 | free(filename); |
| 1075 | free(dir_entry); |
| 1076 | } |
| 1077 | |
| 1078 | free(dir_entries); |
| 1079 | |
| 1080 | /* remove the current directory (wl) from cfg_cfgfiles */ |
| 1081 | free(wl->s); |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 1082 | LIST_DELETE(&wl->list); |
Maxime de Roucy | 379d9c7 | 2016-05-13 23:52:56 +0200 | [diff] [blame] | 1083 | free(wl); |
| 1084 | } |
| 1085 | |
| 1086 | free(err); |
| 1087 | } |
| 1088 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1089 | /* |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 1090 | * copy and cleanup the current argv |
William Lallemand | df6c5a8 | 2020-06-04 17:40:23 +0200 | [diff] [blame] | 1091 | * Remove the -sf /-st / -x parameters |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 1092 | * Return an allocated copy of argv |
| 1093 | */ |
| 1094 | |
| 1095 | static char **copy_argv(int argc, char **argv) |
| 1096 | { |
William Lallemand | df6c5a8 | 2020-06-04 17:40:23 +0200 | [diff] [blame] | 1097 | char **newargv, **retargv; |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 1098 | |
Tim Duesterhus | e52b6e5 | 2020-09-12 20:26:43 +0200 | [diff] [blame] | 1099 | newargv = calloc(argc + 2, sizeof(*newargv)); |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 1100 | if (newargv == NULL) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1101 | ha_warning("Cannot allocate memory\n"); |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 1102 | return NULL; |
| 1103 | } |
William Lallemand | df6c5a8 | 2020-06-04 17:40:23 +0200 | [diff] [blame] | 1104 | retargv = newargv; |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 1105 | |
William Lallemand | df6c5a8 | 2020-06-04 17:40:23 +0200 | [diff] [blame] | 1106 | /* first copy argv[0] */ |
| 1107 | *newargv++ = *argv++; |
| 1108 | argc--; |
| 1109 | |
| 1110 | while (argc > 0) { |
| 1111 | if (**argv != '-') { |
| 1112 | /* non options are copied but will fail in the argument parser */ |
| 1113 | *newargv++ = *argv++; |
| 1114 | argc--; |
| 1115 | |
| 1116 | } else { |
| 1117 | char *flag; |
| 1118 | |
| 1119 | flag = *argv + 1; |
| 1120 | |
| 1121 | if (flag[0] == '-' && flag[1] == 0) { |
| 1122 | /* "--\0" copy every arguments till the end of argv */ |
| 1123 | *newargv++ = *argv++; |
| 1124 | argc--; |
| 1125 | |
| 1126 | while (argc > 0) { |
| 1127 | *newargv++ = *argv++; |
| 1128 | argc--; |
| 1129 | } |
| 1130 | } else { |
| 1131 | switch (*flag) { |
| 1132 | case 's': |
| 1133 | /* -sf / -st and their parameters are ignored */ |
| 1134 | if (flag[1] == 'f' || flag[1] == 't') { |
| 1135 | argc--; |
| 1136 | argv++; |
| 1137 | /* The list can't contain a negative value since the only |
| 1138 | way to know the end of this list is by looking for the |
| 1139 | next option or the end of the options */ |
| 1140 | while (argc > 0 && argv[0][0] != '-') { |
| 1141 | argc--; |
| 1142 | argv++; |
| 1143 | } |
William Lallemand | 398da62 | 2020-09-02 16:12:23 +0200 | [diff] [blame] | 1144 | } else { |
| 1145 | argc--; |
| 1146 | argv++; |
| 1147 | |
William Lallemand | df6c5a8 | 2020-06-04 17:40:23 +0200 | [diff] [blame] | 1148 | } |
| 1149 | break; |
| 1150 | |
| 1151 | case 'x': |
| 1152 | /* this option and its parameter are ignored */ |
| 1153 | argc--; |
| 1154 | argv++; |
| 1155 | if (argc > 0) { |
| 1156 | argc--; |
| 1157 | argv++; |
| 1158 | } |
| 1159 | break; |
| 1160 | |
| 1161 | case 'C': |
| 1162 | case 'n': |
| 1163 | case 'm': |
| 1164 | case 'N': |
| 1165 | case 'L': |
| 1166 | case 'f': |
| 1167 | case 'p': |
| 1168 | case 'S': |
| 1169 | /* these options have only 1 parameter which must be copied and can start with a '-' */ |
| 1170 | *newargv++ = *argv++; |
| 1171 | argc--; |
| 1172 | if (argc == 0) |
| 1173 | goto error; |
| 1174 | *newargv++ = *argv++; |
| 1175 | argc--; |
| 1176 | break; |
| 1177 | default: |
| 1178 | /* for other options just copy them without parameters, this is also done |
| 1179 | * for options like "--foo", but this will fail in the argument parser. |
| 1180 | * */ |
| 1181 | *newargv++ = *argv++; |
| 1182 | argc--; |
| 1183 | break; |
| 1184 | } |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 1185 | } |
| 1186 | } |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 1187 | } |
William Lallemand | 2bf6d62 | 2017-06-20 11:20:23 +0200 | [diff] [blame] | 1188 | |
William Lallemand | df6c5a8 | 2020-06-04 17:40:23 +0200 | [diff] [blame] | 1189 | return retargv; |
| 1190 | |
| 1191 | error: |
| 1192 | free(retargv); |
| 1193 | return NULL; |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 1194 | } |
| 1195 | |
Willy Tarreau | 6c3a681 | 2020-03-06 18:57:15 +0100 | [diff] [blame] | 1196 | |
| 1197 | /* Performs basic random seed initialization. The main issue with this is that |
| 1198 | * srandom_r() only takes 32 bits and purposely provides a reproducible sequence, |
| 1199 | * which means that there will only be 4 billion possible random sequences once |
| 1200 | * srandom() is called, regardless of the internal state. Not calling it is |
| 1201 | * even worse as we'll always produce the same randoms sequences. What we do |
| 1202 | * here is to create an initial sequence from various entropy sources, hash it |
| 1203 | * using SHA1 and keep the resulting 160 bits available globally. |
| 1204 | * |
| 1205 | * We initialize the current process with the first 32 bits before starting the |
| 1206 | * polling loop, where all this will be changed to have process specific and |
| 1207 | * thread specific sequences. |
Willy Tarreau | 52bf839 | 2020-03-08 00:42:37 +0100 | [diff] [blame] | 1208 | * |
| 1209 | * Before starting threads, it's still possible to call random() as srandom() |
| 1210 | * is initialized from this, but after threads and/or processes are started, |
| 1211 | * only ha_random() is expected to be used to guarantee distinct sequences. |
Willy Tarreau | 6c3a681 | 2020-03-06 18:57:15 +0100 | [diff] [blame] | 1212 | */ |
| 1213 | static void ha_random_boot(char *const *argv) |
| 1214 | { |
| 1215 | unsigned char message[256]; |
| 1216 | unsigned char *m = message; |
| 1217 | struct timeval tv; |
| 1218 | blk_SHA_CTX ctx; |
| 1219 | unsigned long l; |
| 1220 | int fd; |
| 1221 | int i; |
| 1222 | |
| 1223 | /* start with current time as pseudo-random seed */ |
| 1224 | gettimeofday(&tv, NULL); |
| 1225 | write_u32(m, tv.tv_sec); m += 4; |
| 1226 | write_u32(m, tv.tv_usec); m += 4; |
| 1227 | |
| 1228 | /* PID and PPID add some OS-based randomness */ |
| 1229 | write_u16(m, getpid()); m += 2; |
| 1230 | write_u16(m, getppid()); m += 2; |
| 1231 | |
| 1232 | /* take up to 160 bits bytes from /dev/urandom if available (non-blocking) */ |
| 1233 | fd = open("/dev/urandom", O_RDONLY); |
| 1234 | if (fd >= 0) { |
| 1235 | i = read(fd, m, 20); |
| 1236 | if (i > 0) |
| 1237 | m += i; |
| 1238 | close(fd); |
| 1239 | } |
| 1240 | |
| 1241 | /* take up to 160 bits bytes from openssl (non-blocking) */ |
| 1242 | #ifdef USE_OPENSSL |
| 1243 | if (RAND_bytes(m, 20) == 1) |
| 1244 | m += 20; |
| 1245 | #endif |
| 1246 | |
| 1247 | /* take 160 bits from existing random in case it was already initialized */ |
| 1248 | for (i = 0; i < 5; i++) { |
| 1249 | write_u32(m, random()); |
| 1250 | m += 4; |
| 1251 | } |
| 1252 | |
| 1253 | /* stack address (benefit form operating system's ASLR) */ |
| 1254 | l = (unsigned long)&m; |
| 1255 | memcpy(m, &l, sizeof(l)); m += sizeof(l); |
| 1256 | |
| 1257 | /* argv address (benefit form operating system's ASLR) */ |
| 1258 | l = (unsigned long)&argv; |
| 1259 | memcpy(m, &l, sizeof(l)); m += sizeof(l); |
| 1260 | |
| 1261 | /* use tv_usec again after all the operations above */ |
| 1262 | gettimeofday(&tv, NULL); |
| 1263 | write_u32(m, tv.tv_usec); m += 4; |
| 1264 | |
| 1265 | /* |
| 1266 | * At this point, ~84-92 bytes have been used |
| 1267 | */ |
| 1268 | |
| 1269 | /* finish with the hostname */ |
| 1270 | strncpy((char *)m, hostname, message + sizeof(message) - m); |
| 1271 | m += strlen(hostname); |
| 1272 | |
| 1273 | /* total message length */ |
| 1274 | l = m - message; |
| 1275 | |
| 1276 | memset(&ctx, 0, sizeof(ctx)); |
| 1277 | blk_SHA1_Init(&ctx); |
| 1278 | blk_SHA1_Update(&ctx, message, l); |
| 1279 | blk_SHA1_Final(boot_seed, &ctx); |
| 1280 | |
| 1281 | srandom(read_u32(boot_seed)); |
Willy Tarreau | 52bf839 | 2020-03-08 00:42:37 +0100 | [diff] [blame] | 1282 | ha_random_seed(boot_seed, sizeof(boot_seed)); |
Willy Tarreau | 6c3a681 | 2020-03-06 18:57:15 +0100 | [diff] [blame] | 1283 | } |
| 1284 | |
Willy Tarreau | 5a023f0 | 2019-03-01 14:19:31 +0100 | [diff] [blame] | 1285 | /* considers splicing proxies' maxconn, computes the ideal global.maxpipes |
| 1286 | * setting, and returns it. It may return -1 meaning "unlimited" if some |
| 1287 | * unlimited proxies have been found and the global.maxconn value is not yet |
| 1288 | * set. It may also return a value greater than maxconn if it's not yet set. |
| 1289 | * Note that a value of zero means there is no need for pipes. -1 is never |
| 1290 | * returned if global.maxconn is valid. |
| 1291 | */ |
| 1292 | static int compute_ideal_maxpipes() |
| 1293 | { |
| 1294 | struct proxy *cur; |
| 1295 | int nbfe = 0, nbbe = 0; |
| 1296 | int unlimited = 0; |
| 1297 | int pipes; |
| 1298 | int max; |
| 1299 | |
| 1300 | for (cur = proxies_list; cur; cur = cur->next) { |
| 1301 | if (cur->options2 & (PR_O2_SPLIC_ANY)) { |
| 1302 | if (cur->cap & PR_CAP_FE) { |
| 1303 | max = cur->maxconn; |
| 1304 | nbfe += max; |
| 1305 | if (!max) { |
| 1306 | unlimited = 1; |
| 1307 | break; |
| 1308 | } |
| 1309 | } |
| 1310 | if (cur->cap & PR_CAP_BE) { |
| 1311 | max = cur->fullconn ? cur->fullconn : global.maxconn; |
| 1312 | nbbe += max; |
| 1313 | if (!max) { |
| 1314 | unlimited = 1; |
| 1315 | break; |
| 1316 | } |
| 1317 | } |
| 1318 | } |
| 1319 | } |
| 1320 | |
| 1321 | pipes = MAX(nbfe, nbbe); |
| 1322 | if (global.maxconn) { |
| 1323 | if (pipes > global.maxconn || unlimited) |
| 1324 | pipes = global.maxconn; |
| 1325 | } else if (unlimited) { |
| 1326 | pipes = -1; |
| 1327 | } |
| 1328 | |
| 1329 | return pipes >= 4 ? pipes / 4 : pipes; |
| 1330 | } |
| 1331 | |
Willy Tarreau | ac35093 | 2019-03-01 15:43:14 +0100 | [diff] [blame] | 1332 | /* considers global.maxsocks, global.maxpipes, async engines, SSL frontends and |
| 1333 | * rlimits and computes an ideal maxconn. It's meant to be called only when |
| 1334 | * maxsock contains the sum of listening FDs, before it is updated based on |
Willy Tarreau | df23c0c | 2019-03-13 10:10:49 +0100 | [diff] [blame] | 1335 | * maxconn and pipes. If there are not enough FDs left, DEFAULT_MAXCONN (by |
| 1336 | * default 100) is returned as it is expected that it will even run on tight |
| 1337 | * environments, and will maintain compatibility with previous packages that |
| 1338 | * used to rely on this value as the default one. The system will emit a |
| 1339 | * warning indicating how many FDs are missing anyway if needed. |
Willy Tarreau | ac35093 | 2019-03-01 15:43:14 +0100 | [diff] [blame] | 1340 | */ |
| 1341 | static int compute_ideal_maxconn() |
| 1342 | { |
| 1343 | int ssl_sides = !!global.ssl_used_frontend + !!global.ssl_used_backend; |
| 1344 | int engine_fds = global.ssl_used_async_engines * ssl_sides; |
| 1345 | int pipes = compute_ideal_maxpipes(); |
Willy Tarreau | b1beaa3 | 2020-03-06 10:25:31 +0100 | [diff] [blame] | 1346 | int remain = MAX(rlim_fd_cur_at_boot, rlim_fd_max_at_boot); |
Willy Tarreau | ac35093 | 2019-03-01 15:43:14 +0100 | [diff] [blame] | 1347 | int maxconn; |
| 1348 | |
| 1349 | /* we have to take into account these elements : |
| 1350 | * - number of engine_fds, which inflates the number of FD needed per |
| 1351 | * connection by this number. |
| 1352 | * - number of pipes per connection on average : for the unlimited |
| 1353 | * case, this is 0.5 pipe FDs per connection, otherwise it's a |
| 1354 | * fixed value of 2*pipes. |
| 1355 | * - two FDs per connection |
| 1356 | */ |
| 1357 | |
| 1358 | /* subtract listeners and checks */ |
| 1359 | remain -= global.maxsock; |
| 1360 | |
Willy Tarreau | 3f20085 | 2019-03-14 19:13:17 +0100 | [diff] [blame] | 1361 | /* one epoll_fd/kqueue_fd per thread */ |
| 1362 | remain -= global.nbthread; |
| 1363 | |
| 1364 | /* one wake-up pipe (2 fd) per thread */ |
| 1365 | remain -= 2 * global.nbthread; |
| 1366 | |
Willy Tarreau | ac35093 | 2019-03-01 15:43:14 +0100 | [diff] [blame] | 1367 | /* Fixed pipes values : we only subtract them if they're not larger |
| 1368 | * than the remaining FDs because pipes are optional. |
| 1369 | */ |
| 1370 | if (pipes >= 0 && pipes * 2 < remain) |
| 1371 | remain -= pipes * 2; |
| 1372 | |
| 1373 | if (pipes < 0) { |
| 1374 | /* maxsock = maxconn * 2 + maxconn/4 * 2 + maxconn * engine_fds. |
| 1375 | * = maxconn * (2 + 0.5 + engine_fds) |
| 1376 | * = maxconn * (4 + 1 + 2*engine_fds) / 2 |
| 1377 | */ |
| 1378 | maxconn = 2 * remain / (5 + 2 * engine_fds); |
| 1379 | } else { |
| 1380 | /* maxsock = maxconn * 2 + maxconn * engine_fds. |
| 1381 | * = maxconn * (2 + engine_fds) |
| 1382 | */ |
| 1383 | maxconn = remain / (2 + engine_fds); |
| 1384 | } |
| 1385 | |
Willy Tarreau | df23c0c | 2019-03-13 10:10:49 +0100 | [diff] [blame] | 1386 | return MAX(maxconn, DEFAULT_MAXCONN); |
Willy Tarreau | ac35093 | 2019-03-01 15:43:14 +0100 | [diff] [blame] | 1387 | } |
| 1388 | |
Willy Tarreau | a409f30 | 2020-03-10 17:08:53 +0100 | [diff] [blame] | 1389 | /* computes the estimated maxsock value for the given maxconn based on the |
| 1390 | * possibly set global.maxpipes and existing partial global.maxsock. It may |
| 1391 | * temporarily change global.maxconn for the time needed to propagate the |
| 1392 | * computations, and will reset it. |
| 1393 | */ |
| 1394 | static int compute_ideal_maxsock(int maxconn) |
| 1395 | { |
| 1396 | int maxpipes = global.maxpipes; |
| 1397 | int maxsock = global.maxsock; |
| 1398 | |
| 1399 | |
| 1400 | if (!maxpipes) { |
| 1401 | int old_maxconn = global.maxconn; |
| 1402 | |
| 1403 | global.maxconn = maxconn; |
| 1404 | maxpipes = compute_ideal_maxpipes(); |
| 1405 | global.maxconn = old_maxconn; |
| 1406 | } |
| 1407 | |
| 1408 | maxsock += maxconn * 2; /* each connection needs two sockets */ |
| 1409 | maxsock += maxpipes * 2; /* each pipe needs two FDs */ |
| 1410 | maxsock += global.nbthread; /* one epoll_fd/kqueue_fd per thread */ |
| 1411 | maxsock += 2 * global.nbthread; /* one wake-up pipe (2 fd) per thread */ |
| 1412 | |
| 1413 | /* compute fd used by async engines */ |
| 1414 | if (global.ssl_used_async_engines) { |
| 1415 | int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend; |
| 1416 | |
| 1417 | maxsock += maxconn * sides * global.ssl_used_async_engines; |
| 1418 | } |
| 1419 | return maxsock; |
| 1420 | } |
| 1421 | |
Thayne McCombs | 8f0cc5c | 2021-01-07 21:35:52 -0700 | [diff] [blame] | 1422 | /* Tests if it is possible to set the current process's RLIMIT_NOFILE to |
Willy Tarreau | 304e17e | 2020-03-10 17:54:54 +0100 | [diff] [blame] | 1423 | * <maxsock>, then sets it back to the previous value. Returns non-zero if the |
| 1424 | * value is accepted, non-zero otherwise. This is used to determine if an |
| 1425 | * automatic limit may be applied or not. When it is not, the caller knows that |
| 1426 | * the highest we can do is the rlim_max at boot. In case of error, we return |
| 1427 | * that the setting is possible, so that we defer the error processing to the |
| 1428 | * final stage in charge of enforcing this. |
| 1429 | */ |
| 1430 | static int check_if_maxsock_permitted(int maxsock) |
| 1431 | { |
| 1432 | struct rlimit orig_limit, test_limit; |
| 1433 | int ret; |
| 1434 | |
| 1435 | if (getrlimit(RLIMIT_NOFILE, &orig_limit) != 0) |
| 1436 | return 1; |
| 1437 | |
| 1438 | /* don't go further if we can't even set to what we have */ |
| 1439 | if (setrlimit(RLIMIT_NOFILE, &orig_limit) != 0) |
| 1440 | return 1; |
| 1441 | |
| 1442 | test_limit.rlim_max = MAX(maxsock, orig_limit.rlim_max); |
| 1443 | test_limit.rlim_cur = test_limit.rlim_max; |
| 1444 | ret = setrlimit(RLIMIT_NOFILE, &test_limit); |
| 1445 | |
| 1446 | if (setrlimit(RLIMIT_NOFILE, &orig_limit) != 0) |
| 1447 | return 1; |
| 1448 | |
| 1449 | return ret == 0; |
| 1450 | } |
| 1451 | |
Amaury Denoyelle | 484454d | 2021-05-05 16:18:45 +0200 | [diff] [blame] | 1452 | void mark_tainted(const enum tainted_flags flag) |
| 1453 | { |
| 1454 | HA_ATOMIC_OR(&tainted, flag); |
| 1455 | } |
| 1456 | |
| 1457 | unsigned int get_tainted() |
| 1458 | { |
| 1459 | int tainted_state; |
| 1460 | HA_ATOMIC_STORE(&tainted_state, tainted); |
| 1461 | return tainted_state; |
| 1462 | } |
Willy Tarreau | 304e17e | 2020-03-10 17:54:54 +0100 | [diff] [blame] | 1463 | |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 1464 | /* |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1465 | * This function initializes all the necessary variables. It only returns |
| 1466 | * if everything is OK. If something fails, it exits. |
| 1467 | */ |
Willy Tarreau | 1b5af7c | 2016-12-21 18:19:57 +0100 | [diff] [blame] | 1468 | static void init(int argc, char **argv) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1469 | { |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1470 | int arg_mode = 0; /* MODE_DEBUG, ... */ |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1471 | char *tmp; |
| 1472 | char *cfg_pidfile = NULL; |
Willy Tarreau | 058e907 | 2009-07-20 09:30:05 +0200 | [diff] [blame] | 1473 | int err_code = 0; |
Maxime de Roucy | 0f50392 | 2016-05-13 23:52:55 +0200 | [diff] [blame] | 1474 | char *err_msg = NULL; |
Willy Tarreau | 477ecd8 | 2010-01-03 21:12:30 +0100 | [diff] [blame] | 1475 | struct wordlist *wl; |
Kevinm | 48936af | 2010-12-22 16:08:21 +0000 | [diff] [blame] | 1476 | char *progname; |
Willy Tarreau | 576132e | 2011-09-10 19:26:56 +0200 | [diff] [blame] | 1477 | char *change_dir = NULL; |
Christopher Faulet | d7c9196 | 2015-04-30 11:48:27 +0200 | [diff] [blame] | 1478 | struct proxy *px; |
Willy Tarreau | e694573 | 2016-12-21 19:57:00 +0100 | [diff] [blame] | 1479 | struct post_check_fct *pcf; |
Willy Tarreau | ac35093 | 2019-03-01 15:43:14 +0100 | [diff] [blame] | 1480 | int ideal_maxconn; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1481 | |
William Lallemand | a48f51b | 2023-02-21 14:07:05 +0100 | [diff] [blame] | 1482 | setenv("HAPROXY_STARTUP_VERSION", HAPROXY_VERSION, 0); |
Christopher Faulet | e3a5e35 | 2017-10-24 13:53:54 +0200 | [diff] [blame] | 1483 | global.mode = MODE_STARTING; |
William Lallemand | 0041741 | 2020-06-05 14:08:41 +0200 | [diff] [blame] | 1484 | old_argv = copy_argv(argc, argv); |
| 1485 | if (!old_argv) { |
William Lallemand | df6c5a8 | 2020-06-04 17:40:23 +0200 | [diff] [blame] | 1486 | ha_alert("failed to copy argv.\n"); |
| 1487 | exit(1); |
| 1488 | } |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 1489 | |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 1490 | if (!init_trash_buffers(1)) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1491 | ha_alert("failed to initialize trash buffers.\n"); |
Christopher Faulet | 748919a | 2017-07-26 14:59:46 +0200 | [diff] [blame] | 1492 | exit(1); |
| 1493 | } |
David du Colombier | 7af4605 | 2012-05-16 14:16:48 +0200 | [diff] [blame] | 1494 | |
Emeric Brun | 2b920a1 | 2010-09-23 18:30:22 +0200 | [diff] [blame] | 1495 | /* NB: POSIX does not make it mandatory for gethostname() to NULL-terminate |
| 1496 | * the string in case of truncation, and at least FreeBSD appears not to do |
| 1497 | * it. |
| 1498 | */ |
| 1499 | memset(hostname, 0, sizeof(hostname)); |
| 1500 | gethostname(hostname, sizeof(hostname) - 1); |
Dragan Dosen | 4f01415 | 2020-06-18 16:56:47 +0200 | [diff] [blame] | 1501 | |
| 1502 | if ((localpeer = strdup(hostname)) == NULL) { |
| 1503 | ha_alert("Cannot allocate memory for local peer.\n"); |
| 1504 | exit(EXIT_FAILURE); |
| 1505 | } |
William Lallemand | daf4cd2 | 2018-04-17 16:46:13 +0200 | [diff] [blame] | 1506 | setenv("HAPROXY_LOCALPEER", localpeer, 1); |
Emeric Brun | 2b920a1 | 2010-09-23 18:30:22 +0200 | [diff] [blame] | 1507 | |
William Lallemand | 24c928c | 2020-01-14 17:58:18 +0100 | [diff] [blame] | 1508 | /* we were in mworker mode, we should restart in mworker mode */ |
| 1509 | if (getenv("HAPROXY_MWORKER_REEXEC") != NULL) |
| 1510 | global.mode |= MODE_MWORKER; |
| 1511 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1512 | /* |
| 1513 | * Initialize the previously static variables. |
| 1514 | */ |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 1515 | |
Willy Tarreau | 173d995 | 2018-01-26 21:48:23 +0100 | [diff] [blame] | 1516 | totalconn = actconn = listeners = stopping = 0; |
Cyril Bonté | 203ec5a | 2017-03-23 22:44:13 +0100 | [diff] [blame] | 1517 | killed = 0; |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 1518 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1519 | |
| 1520 | #ifdef HAPROXY_MEMMAX |
Willy Tarreau | 7006045 | 2015-12-14 12:46:07 +0100 | [diff] [blame] | 1521 | global.rlimit_memmax_all = HAPROXY_MEMMAX; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1522 | #endif |
| 1523 | |
Benoit GARNIER | b413c2a | 2016-03-27 11:08:03 +0200 | [diff] [blame] | 1524 | tzset(); |
Willy Tarreau | c4c80fb | 2021-04-11 15:00:34 +0200 | [diff] [blame] | 1525 | tv_init_process_date(); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1526 | start_date = now; |
| 1527 | |
Willy Tarreau | 6c3a681 | 2020-03-06 18:57:15 +0100 | [diff] [blame] | 1528 | ha_random_boot(argv); |
Willy Tarreau | 84310e2 | 2014-02-14 11:59:04 +0100 | [diff] [blame] | 1529 | |
Willy Tarreau | 8ed669b | 2013-01-11 15:49:37 +0100 | [diff] [blame] | 1530 | if (init_acl() != 0) |
| 1531 | exit(1); |
Willy Tarreau | b6b3df3 | 2018-11-26 16:31:20 +0100 | [diff] [blame] | 1532 | |
Thierry FOURNIER | 6f1fd48 | 2015-01-23 14:06:13 +0100 | [diff] [blame] | 1533 | /* Initialise lua. */ |
| 1534 | hlua_init(); |
Thierry FOURNIER | 6f1fd48 | 2015-01-23 14:06:13 +0100 | [diff] [blame] | 1535 | |
Christopher Faulet | ff2613e | 2016-11-09 11:36:17 +0100 | [diff] [blame] | 1536 | /* Initialize process vars */ |
Willy Tarreau | cfc4f24 | 2021-05-08 11:41:28 +0200 | [diff] [blame] | 1537 | vars_init(&proc_vars, SCOPE_PROC); |
Christopher Faulet | ff2613e | 2016-11-09 11:36:17 +0100 | [diff] [blame] | 1538 | |
Willy Tarreau | 43b7899 | 2009-01-25 15:42:27 +0100 | [diff] [blame] | 1539 | global.tune.options |= GTUNE_USE_SELECT; /* select() is always available */ |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 1540 | #if defined(USE_POLL) |
Willy Tarreau | 43b7899 | 2009-01-25 15:42:27 +0100 | [diff] [blame] | 1541 | global.tune.options |= GTUNE_USE_POLL; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1542 | #endif |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 1543 | #if defined(USE_EPOLL) |
Willy Tarreau | 43b7899 | 2009-01-25 15:42:27 +0100 | [diff] [blame] | 1544 | global.tune.options |= GTUNE_USE_EPOLL; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1545 | #endif |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 1546 | #if defined(USE_KQUEUE) |
Willy Tarreau | 43b7899 | 2009-01-25 15:42:27 +0100 | [diff] [blame] | 1547 | global.tune.options |= GTUNE_USE_KQUEUE; |
Willy Tarreau | 1e63130a | 2007-04-09 12:03:06 +0200 | [diff] [blame] | 1548 | #endif |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 1549 | #if defined(USE_EVPORTS) |
Emmanuel Hocdet | 0ba4f48 | 2019-04-08 16:53:32 +0000 | [diff] [blame] | 1550 | global.tune.options |= GTUNE_USE_EVPORTS; |
| 1551 | #endif |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 1552 | #if defined(USE_LINUX_SPLICE) |
Willy Tarreau | 3ab68cf | 2009-01-25 16:03:28 +0100 | [diff] [blame] | 1553 | global.tune.options |= GTUNE_USE_SPLICE; |
| 1554 | #endif |
Nenad Merdanovic | 88afe03 | 2014-04-14 15:56:58 +0200 | [diff] [blame] | 1555 | #if defined(USE_GETADDRINFO) |
| 1556 | global.tune.options |= GTUNE_USE_GAI; |
| 1557 | #endif |
Lukas Tribus | a0bcbdc | 2016-09-12 21:42:20 +0000 | [diff] [blame] | 1558 | #if defined(SO_REUSEPORT) |
| 1559 | global.tune.options |= GTUNE_USE_REUSEPORT; |
| 1560 | #endif |
Willy Tarreau | 76cc699 | 2020-07-01 18:49:24 +0200 | [diff] [blame] | 1561 | #ifdef USE_THREAD |
| 1562 | global.tune.options |= GTUNE_IDLE_POOL_SHARED; |
| 1563 | #endif |
William Dauchy | a519460 | 2020-03-28 19:29:58 +0100 | [diff] [blame] | 1564 | global.tune.options |= GTUNE_STRICT_LIMITS; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1565 | |
| 1566 | pid = getpid(); |
| 1567 | progname = *argv; |
| 1568 | while ((tmp = strchr(progname, '/')) != NULL) |
| 1569 | progname = tmp + 1; |
| 1570 | |
Kevinm | 48936af | 2010-12-22 16:08:21 +0000 | [diff] [blame] | 1571 | /* the process name is used for the logs only */ |
Eric Salama | 7cea606 | 2020-10-02 11:58:19 +0200 | [diff] [blame] | 1572 | chunk_initlen(&global.log_tag, strdup(progname), strlen(progname), strlen(progname)); |
| 1573 | if (b_orig(&global.log_tag) == NULL) { |
| 1574 | chunk_destroy(&global.log_tag); |
| 1575 | ha_alert("Cannot allocate memory for log_tag.\n"); |
| 1576 | exit(EXIT_FAILURE); |
| 1577 | } |
Kevinm | 48936af | 2010-12-22 16:08:21 +0000 | [diff] [blame] | 1578 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1579 | argc--; argv++; |
| 1580 | while (argc > 0) { |
| 1581 | char *flag; |
| 1582 | |
| 1583 | if (**argv == '-') { |
| 1584 | flag = *argv+1; |
| 1585 | |
| 1586 | /* 1 arg */ |
| 1587 | if (*flag == 'v') { |
| 1588 | display_version(); |
Willy Tarreau | 7b066db | 2007-12-02 11:28:59 +0100 | [diff] [blame] | 1589 | if (flag[1] == 'v') /* -vv */ |
| 1590 | display_build_opts(); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1591 | exit(0); |
| 1592 | } |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 1593 | #if defined(USE_EPOLL) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1594 | else if (*flag == 'd' && flag[1] == 'e') |
Willy Tarreau | 43b7899 | 2009-01-25 15:42:27 +0100 | [diff] [blame] | 1595 | global.tune.options &= ~GTUNE_USE_EPOLL; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1596 | #endif |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 1597 | #if defined(USE_POLL) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1598 | else if (*flag == 'd' && flag[1] == 'p') |
Willy Tarreau | 43b7899 | 2009-01-25 15:42:27 +0100 | [diff] [blame] | 1599 | global.tune.options &= ~GTUNE_USE_POLL; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1600 | #endif |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 1601 | #if defined(USE_KQUEUE) |
Willy Tarreau | 1e63130a | 2007-04-09 12:03:06 +0200 | [diff] [blame] | 1602 | else if (*flag == 'd' && flag[1] == 'k') |
Willy Tarreau | 43b7899 | 2009-01-25 15:42:27 +0100 | [diff] [blame] | 1603 | global.tune.options &= ~GTUNE_USE_KQUEUE; |
Willy Tarreau | 1e63130a | 2007-04-09 12:03:06 +0200 | [diff] [blame] | 1604 | #endif |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 1605 | #if defined(USE_EVPORTS) |
Emmanuel Hocdet | 0ba4f48 | 2019-04-08 16:53:32 +0000 | [diff] [blame] | 1606 | else if (*flag == 'd' && flag[1] == 'v') |
| 1607 | global.tune.options &= ~GTUNE_USE_EVPORTS; |
| 1608 | #endif |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 1609 | #if defined(USE_LINUX_SPLICE) |
Willy Tarreau | 3ab68cf | 2009-01-25 16:03:28 +0100 | [diff] [blame] | 1610 | else if (*flag == 'd' && flag[1] == 'S') |
| 1611 | global.tune.options &= ~GTUNE_USE_SPLICE; |
| 1612 | #endif |
Nenad Merdanovic | 88afe03 | 2014-04-14 15:56:58 +0200 | [diff] [blame] | 1613 | #if defined(USE_GETADDRINFO) |
| 1614 | else if (*flag == 'd' && flag[1] == 'G') |
| 1615 | global.tune.options &= ~GTUNE_USE_GAI; |
| 1616 | #endif |
Lukas Tribus | a0bcbdc | 2016-09-12 21:42:20 +0000 | [diff] [blame] | 1617 | #if defined(SO_REUSEPORT) |
| 1618 | else if (*flag == 'd' && flag[1] == 'R') |
| 1619 | global.tune.options &= ~GTUNE_USE_REUSEPORT; |
| 1620 | #endif |
Emeric Brun | 850efd5 | 2014-01-29 12:24:34 +0100 | [diff] [blame] | 1621 | else if (*flag == 'd' && flag[1] == 'V') |
| 1622 | global.ssl_server_verify = SSL_SERVER_VERIFY_NONE; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1623 | else if (*flag == 'V') |
| 1624 | arg_mode |= MODE_VERBOSE; |
| 1625 | else if (*flag == 'd' && flag[1] == 'b') |
| 1626 | arg_mode |= MODE_FOREGROUND; |
Amaury Denoyelle | 7b01a8d | 2021-03-29 10:29:07 +0200 | [diff] [blame] | 1627 | else if (*flag == 'd' && flag[1] == 'D') |
| 1628 | arg_mode |= MODE_DIAG; |
Willy Tarreau | 3eb10b8 | 2020-04-15 16:42:39 +0200 | [diff] [blame] | 1629 | else if (*flag == 'd' && flag[1] == 'W') |
| 1630 | arg_mode |= MODE_ZERO_WARNING; |
Willy Tarreau | 6e06443 | 2012-05-08 15:40:42 +0200 | [diff] [blame] | 1631 | else if (*flag == 'd' && flag[1] == 'M') |
| 1632 | mem_poison_byte = flag[2] ? strtol(flag + 2, NULL, 0) : 'P'; |
Willy Tarreau | 3eed10e | 2016-11-07 21:03:16 +0100 | [diff] [blame] | 1633 | else if (*flag == 'd' && flag[1] == 'r') |
| 1634 | global.tune.options |= GTUNE_RESOLVE_DONTFAIL; |
Willy Tarreau | 0aa9dbe | 2021-12-28 15:43:11 +0100 | [diff] [blame] | 1635 | #if defined(HA_HAVE_DUMP_LIBS) |
| 1636 | else if (*flag == 'd' && flag[1] == 'L') |
| 1637 | arg_mode |= MODE_DUMP_LIBS; |
| 1638 | #endif |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1639 | else if (*flag == 'd') |
| 1640 | arg_mode |= MODE_DEBUG; |
| 1641 | else if (*flag == 'c') |
| 1642 | arg_mode |= MODE_CHECK; |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 1643 | else if (*flag == 'D') |
Willy Tarreau | 6bde87b | 2009-05-18 16:29:51 +0200 | [diff] [blame] | 1644 | arg_mode |= MODE_DAEMON; |
Tim Duesterhus | d6942c8 | 2017-11-20 15:58:35 +0100 | [diff] [blame] | 1645 | else if (*flag == 'W' && flag[1] == 's') { |
Lukas Tribus | f46bf95 | 2017-11-21 12:39:34 +0100 | [diff] [blame] | 1646 | arg_mode |= MODE_MWORKER | MODE_FOREGROUND; |
Tim Duesterhus | d6942c8 | 2017-11-20 15:58:35 +0100 | [diff] [blame] | 1647 | #if defined(USE_SYSTEMD) |
| 1648 | global.tune.options |= GTUNE_USE_SYSTEMD; |
| 1649 | #else |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1650 | ha_alert("master-worker mode with systemd support (-Ws) requested, but not compiled. Use master-worker mode (-W) if you are not using Type=notify in your unit file or recompile with USE_SYSTEMD=1.\n\n"); |
Tim Duesterhus | d6942c8 | 2017-11-20 15:58:35 +0100 | [diff] [blame] | 1651 | usage(progname); |
| 1652 | #endif |
| 1653 | } |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 1654 | else if (*flag == 'W') |
| 1655 | arg_mode |= MODE_MWORKER; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1656 | else if (*flag == 'q') |
| 1657 | arg_mode |= MODE_QUIET; |
Olivier Houchard | f73629d | 2017-04-05 22:33:04 +0200 | [diff] [blame] | 1658 | else if (*flag == 'x') { |
William Lallemand | 4f71d30 | 2020-06-04 23:41:29 +0200 | [diff] [blame] | 1659 | if (argc <= 1) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1660 | ha_alert("Unix socket path expected with the -x flag\n\n"); |
William Lallemand | 45eff44 | 2017-06-19 15:57:55 +0200 | [diff] [blame] | 1661 | usage(progname); |
Olivier Houchard | f73629d | 2017-04-05 22:33:04 +0200 | [diff] [blame] | 1662 | } |
William Lallemand | 4fc0969 | 2017-06-19 16:37:19 +0200 | [diff] [blame] | 1663 | if (old_unixsocket) |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1664 | ha_warning("-x option already set, overwriting the value\n"); |
Olivier Houchard | f73629d | 2017-04-05 22:33:04 +0200 | [diff] [blame] | 1665 | old_unixsocket = argv[1]; |
William Lallemand | 4fc0969 | 2017-06-19 16:37:19 +0200 | [diff] [blame] | 1666 | |
Willy Tarreau | 7b11b7e | 2022-02-01 08:47:41 +0100 | [diff] [blame] | 1667 | /* preset it now for early aborts */ |
| 1668 | free(cur_unixsocket); |
| 1669 | cur_unixsocket = strdup(old_unixsocket); |
| 1670 | |
Olivier Houchard | f73629d | 2017-04-05 22:33:04 +0200 | [diff] [blame] | 1671 | argv++; |
| 1672 | argc--; |
| 1673 | } |
William Lallemand | e736115 | 2018-10-26 14:47:36 +0200 | [diff] [blame] | 1674 | else if (*flag == 'S') { |
| 1675 | struct wordlist *c; |
| 1676 | |
William Lallemand | a6b3249 | 2020-06-04 23:49:20 +0200 | [diff] [blame] | 1677 | if (argc <= 1) { |
William Lallemand | e736115 | 2018-10-26 14:47:36 +0200 | [diff] [blame] | 1678 | ha_alert("Socket and optional bind parameters expected with the -S flag\n"); |
| 1679 | usage(progname); |
| 1680 | } |
| 1681 | if ((c = malloc(sizeof(*c))) == NULL || (c->s = strdup(argv[1])) == NULL) { |
| 1682 | ha_alert("Cannot allocate memory\n"); |
| 1683 | exit(EXIT_FAILURE); |
| 1684 | } |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 1685 | LIST_INSERT(&mworker_cli_conf, &c->list); |
William Lallemand | e736115 | 2018-10-26 14:47:36 +0200 | [diff] [blame] | 1686 | |
| 1687 | argv++; |
| 1688 | argc--; |
| 1689 | } |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1690 | else if (*flag == 's' && (flag[1] == 'f' || flag[1] == 't')) { |
| 1691 | /* list of pids to finish ('f') or terminate ('t') */ |
| 1692 | |
| 1693 | if (flag[1] == 'f') |
| 1694 | oldpids_sig = SIGUSR1; /* finish then exit */ |
| 1695 | else |
| 1696 | oldpids_sig = SIGTERM; /* terminate immediately */ |
Willy Tarreau | c6ca1aa | 2015-10-08 11:32:32 +0200 | [diff] [blame] | 1697 | while (argc > 1 && argv[1][0] != '-') { |
Chris Lane | 236062f | 2018-02-05 23:15:44 +0000 | [diff] [blame] | 1698 | char * endptr = NULL; |
Willy Tarreau | c6ca1aa | 2015-10-08 11:32:32 +0200 | [diff] [blame] | 1699 | oldpids = realloc(oldpids, (nb_oldpids + 1) * sizeof(int)); |
| 1700 | if (!oldpids) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1701 | ha_alert("Cannot allocate old pid : out of memory.\n"); |
Willy Tarreau | c6ca1aa | 2015-10-08 11:32:32 +0200 | [diff] [blame] | 1702 | exit(1); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1703 | } |
Willy Tarreau | c6ca1aa | 2015-10-08 11:32:32 +0200 | [diff] [blame] | 1704 | argc--; argv++; |
Chris Lane | 236062f | 2018-02-05 23:15:44 +0000 | [diff] [blame] | 1705 | errno = 0; |
| 1706 | oldpids[nb_oldpids] = strtol(*argv, &endptr, 10); |
| 1707 | if (errno) { |
| 1708 | ha_alert("-%2s option: failed to parse {%s}: %s\n", |
| 1709 | flag, |
| 1710 | *argv, strerror(errno)); |
| 1711 | exit(1); |
| 1712 | } else if (endptr && strlen(endptr)) { |
Willy Tarreau | 9080711 | 2020-02-25 08:16:33 +0100 | [diff] [blame] | 1713 | while (isspace((unsigned char)*endptr)) endptr++; |
Aurélien Nephtali | 39b8988 | 2018-02-17 20:53:11 +0100 | [diff] [blame] | 1714 | if (*endptr != 0) { |
Chris Lane | 236062f | 2018-02-05 23:15:44 +0000 | [diff] [blame] | 1715 | ha_alert("-%2s option: some bytes unconsumed in PID list {%s}\n", |
| 1716 | flag, endptr); |
| 1717 | exit(1); |
Aurélien Nephtali | 39b8988 | 2018-02-17 20:53:11 +0100 | [diff] [blame] | 1718 | } |
Chris Lane | 236062f | 2018-02-05 23:15:44 +0000 | [diff] [blame] | 1719 | } |
Willy Tarreau | c6ca1aa | 2015-10-08 11:32:32 +0200 | [diff] [blame] | 1720 | if (oldpids[nb_oldpids] <= 0) |
| 1721 | usage(progname); |
| 1722 | nb_oldpids++; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1723 | } |
| 1724 | } |
Willy Tarreau | a088d31 | 2015-10-08 11:58:48 +0200 | [diff] [blame] | 1725 | else if (flag[0] == '-' && flag[1] == 0) { /* "--" */ |
| 1726 | /* now that's a cfgfile list */ |
| 1727 | argv++; argc--; |
| 1728 | while (argc > 0) { |
Maxime de Roucy | 0f50392 | 2016-05-13 23:52:55 +0200 | [diff] [blame] | 1729 | if (!list_append_word(&cfg_cfgfiles, *argv, &err_msg)) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1730 | ha_alert("Cannot load configuration file/directory %s : %s\n", |
| 1731 | *argv, |
| 1732 | err_msg); |
Willy Tarreau | a088d31 | 2015-10-08 11:58:48 +0200 | [diff] [blame] | 1733 | exit(1); |
| 1734 | } |
Willy Tarreau | a088d31 | 2015-10-08 11:58:48 +0200 | [diff] [blame] | 1735 | argv++; argc--; |
| 1736 | } |
| 1737 | break; |
| 1738 | } |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1739 | else { /* >=2 args */ |
| 1740 | argv++; argc--; |
| 1741 | if (argc == 0) |
Willy Tarreau | 3bafcdc | 2011-09-10 19:20:23 +0200 | [diff] [blame] | 1742 | usage(progname); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1743 | |
| 1744 | switch (*flag) { |
Willy Tarreau | 576132e | 2011-09-10 19:26:56 +0200 | [diff] [blame] | 1745 | case 'C' : change_dir = *argv; break; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1746 | case 'n' : cfg_maxconn = atol(*argv); break; |
Willy Tarreau | 7006045 | 2015-12-14 12:46:07 +0100 | [diff] [blame] | 1747 | case 'm' : global.rlimit_memmax_all = atol(*argv); break; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1748 | case 'N' : cfg_maxpconn = atol(*argv); break; |
William Lallemand | daf4cd2 | 2018-04-17 16:46:13 +0200 | [diff] [blame] | 1749 | case 'L' : |
Dragan Dosen | 4f01415 | 2020-06-18 16:56:47 +0200 | [diff] [blame] | 1750 | free(localpeer); |
| 1751 | if ((localpeer = strdup(*argv)) == NULL) { |
| 1752 | ha_alert("Cannot allocate memory for local peer.\n"); |
| 1753 | exit(EXIT_FAILURE); |
| 1754 | } |
William Lallemand | daf4cd2 | 2018-04-17 16:46:13 +0200 | [diff] [blame] | 1755 | setenv("HAPROXY_LOCALPEER", localpeer, 1); |
Dragan Dosen | 13cd54c | 2020-06-18 18:24:05 +0200 | [diff] [blame] | 1756 | global.localpeer_cmdline = 1; |
William Lallemand | daf4cd2 | 2018-04-17 16:46:13 +0200 | [diff] [blame] | 1757 | break; |
Willy Tarreau | 5d01a63 | 2009-06-22 16:02:30 +0200 | [diff] [blame] | 1758 | case 'f' : |
Maxime de Roucy | 0f50392 | 2016-05-13 23:52:55 +0200 | [diff] [blame] | 1759 | if (!list_append_word(&cfg_cfgfiles, *argv, &err_msg)) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1760 | ha_alert("Cannot load configuration file/directory %s : %s\n", |
| 1761 | *argv, |
| 1762 | err_msg); |
Willy Tarreau | 5d01a63 | 2009-06-22 16:02:30 +0200 | [diff] [blame] | 1763 | exit(1); |
| 1764 | } |
Willy Tarreau | 5d01a63 | 2009-06-22 16:02:30 +0200 | [diff] [blame] | 1765 | break; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1766 | case 'p' : cfg_pidfile = *argv; break; |
Willy Tarreau | 3bafcdc | 2011-09-10 19:20:23 +0200 | [diff] [blame] | 1767 | default: usage(progname); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1768 | } |
| 1769 | } |
| 1770 | } |
| 1771 | else |
Willy Tarreau | 3bafcdc | 2011-09-10 19:20:23 +0200 | [diff] [blame] | 1772 | usage(progname); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1773 | argv++; argc--; |
| 1774 | } |
| 1775 | |
Christopher Faulet | e3a5e35 | 2017-10-24 13:53:54 +0200 | [diff] [blame] | 1776 | global.mode |= (arg_mode & (MODE_DAEMON | MODE_MWORKER | MODE_FOREGROUND | MODE_VERBOSE |
Amaury Denoyelle | 7b01a8d | 2021-03-29 10:29:07 +0200 | [diff] [blame] | 1777 | | MODE_QUIET | MODE_CHECK | MODE_DEBUG | MODE_ZERO_WARNING |
Willy Tarreau | 0aa9dbe | 2021-12-28 15:43:11 +0100 | [diff] [blame] | 1778 | | MODE_DIAG | MODE_DUMP_LIBS)); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1779 | |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 1780 | if (getenv("HAPROXY_MWORKER_WAIT_ONLY")) { |
William Lallemand | cb11fd2 | 2017-06-01 17:38:52 +0200 | [diff] [blame] | 1781 | unsetenv("HAPROXY_MWORKER_WAIT_ONLY"); |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 1782 | global.mode |= MODE_MWORKER_WAIT; |
| 1783 | global.mode &= ~MODE_MWORKER; |
William Lallemand | cb11fd2 | 2017-06-01 17:38:52 +0200 | [diff] [blame] | 1784 | } |
| 1785 | |
Willy Tarreau | 7a534eb | 2021-07-21 10:01:36 +0200 | [diff] [blame] | 1786 | if ((global.mode & (MODE_MWORKER | MODE_CHECK)) == MODE_MWORKER && |
| 1787 | (getenv("HAPROXY_MWORKER_REEXEC") != NULL)) { |
William Lallemand | cb11fd2 | 2017-06-01 17:38:52 +0200 | [diff] [blame] | 1788 | atexit_flag = 1; |
| 1789 | atexit(reexec_on_failure); |
| 1790 | } |
| 1791 | |
Willy Tarreau | 576132e | 2011-09-10 19:26:56 +0200 | [diff] [blame] | 1792 | if (change_dir && chdir(change_dir) < 0) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1793 | ha_alert("Could not change to directory %s : %s\n", change_dir, strerror(errno)); |
Willy Tarreau | 576132e | 2011-09-10 19:26:56 +0200 | [diff] [blame] | 1794 | exit(1); |
| 1795 | } |
| 1796 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1797 | global.maxsock = 10; /* reserve 10 fds ; will be incremented by socket eaters */ |
Willy Tarreau | 915e1eb | 2009-06-22 15:48:36 +0200 | [diff] [blame] | 1798 | |
Amaury Denoyelle | a6f9c5d | 2021-04-23 16:58:08 +0200 | [diff] [blame] | 1799 | #ifdef USE_CPU_AFFINITY |
| 1800 | { |
| 1801 | int i; |
| 1802 | for (i = 0; i < MAX_PROCS; ++i) { |
Amaury Denoyelle | fc6ac53 | 2021-04-27 10:46:36 +0200 | [diff] [blame] | 1803 | ha_cpuset_zero(&cpu_map.proc[i]); |
| 1804 | ha_cpuset_zero(&cpu_map.proc_t1[i]); |
Willy Tarreau | 26f42a0 | 2021-05-14 08:26:38 +0200 | [diff] [blame] | 1805 | } |
| 1806 | for (i = 0; i < MAX_THREADS; ++i) { |
Amaury Denoyelle | fc6ac53 | 2021-04-27 10:46:36 +0200 | [diff] [blame] | 1807 | ha_cpuset_zero(&cpu_map.thread[i]); |
Amaury Denoyelle | a6f9c5d | 2021-04-23 16:58:08 +0200 | [diff] [blame] | 1808 | } |
Amaury Denoyelle | 982fb53 | 2021-04-21 18:39:58 +0200 | [diff] [blame] | 1809 | } |
Amaury Denoyelle | a6f9c5d | 2021-04-23 16:58:08 +0200 | [diff] [blame] | 1810 | #endif |
Amaury Denoyelle | 982fb53 | 2021-04-21 18:39:58 +0200 | [diff] [blame] | 1811 | |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 1812 | /* in wait mode, we don't try to read the configuration files */ |
| 1813 | if (!(global.mode & MODE_MWORKER_WAIT)) { |
Christopher Faulet | 4e36682 | 2021-01-12 18:57:38 +0100 | [diff] [blame] | 1814 | char *env_cfgfiles = NULL; |
| 1815 | int env_err = 0; |
Willy Tarreau | c438242 | 2009-12-06 13:10:44 +0100 | [diff] [blame] | 1816 | |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 1817 | /* handle cfgfiles that are actually directories */ |
| 1818 | cfgfiles_expand_directories(); |
| 1819 | |
| 1820 | if (LIST_ISEMPTY(&cfg_cfgfiles)) |
| 1821 | usage(progname); |
| 1822 | |
| 1823 | |
| 1824 | list_for_each_entry(wl, &cfg_cfgfiles, list) { |
| 1825 | int ret; |
| 1826 | |
Christopher Faulet | 4e36682 | 2021-01-12 18:57:38 +0100 | [diff] [blame] | 1827 | if (env_err == 0) { |
| 1828 | if (!memprintf(&env_cfgfiles, "%s%s%s", |
| 1829 | (env_cfgfiles ? env_cfgfiles : ""), |
| 1830 | (env_cfgfiles ? ";" : ""), wl->s)) |
| 1831 | env_err = 1; |
| 1832 | } |
William Lallemand | 7b302d8 | 2019-05-20 11:15:37 +0200 | [diff] [blame] | 1833 | |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 1834 | ret = readcfgfile(wl->s); |
| 1835 | if (ret == -1) { |
| 1836 | ha_alert("Could not open configuration file %s : %s\n", |
| 1837 | wl->s, strerror(errno)); |
Christopher Faulet | 4e36682 | 2021-01-12 18:57:38 +0100 | [diff] [blame] | 1838 | free(env_cfgfiles); |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 1839 | exit(1); |
| 1840 | } |
| 1841 | if (ret & (ERR_ABORT|ERR_FATAL)) |
| 1842 | ha_alert("Error(s) found in configuration file : %s\n", wl->s); |
| 1843 | err_code |= ret; |
Christopher Faulet | 4e36682 | 2021-01-12 18:57:38 +0100 | [diff] [blame] | 1844 | if (err_code & ERR_ABORT) { |
| 1845 | free(env_cfgfiles); |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 1846 | exit(1); |
Christopher Faulet | 4e36682 | 2021-01-12 18:57:38 +0100 | [diff] [blame] | 1847 | } |
Willy Tarreau | c438242 | 2009-12-06 13:10:44 +0100 | [diff] [blame] | 1848 | } |
Krzysztof Oledzki | b304dc7 | 2007-10-14 23:40:01 +0200 | [diff] [blame] | 1849 | |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 1850 | /* do not try to resolve arguments nor to spot inconsistencies when |
| 1851 | * the configuration contains fatal errors caused by files not found |
| 1852 | * or failed memory allocations. |
| 1853 | */ |
| 1854 | if (err_code & (ERR_ABORT|ERR_FATAL)) { |
| 1855 | ha_alert("Fatal errors found in configuration.\n"); |
Christopher Faulet | 4e36682 | 2021-01-12 18:57:38 +0100 | [diff] [blame] | 1856 | free(env_cfgfiles); |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 1857 | exit(1); |
| 1858 | } |
Christopher Faulet | 4e36682 | 2021-01-12 18:57:38 +0100 | [diff] [blame] | 1859 | if (env_err) { |
| 1860 | ha_alert("Could not allocate memory for HAPROXY_CFGFILES env variable\n"); |
| 1861 | exit(1); |
| 1862 | } |
| 1863 | setenv("HAPROXY_CFGFILES", env_cfgfiles, 1); |
| 1864 | free(env_cfgfiles); |
William Lallemand | 7b302d8 | 2019-05-20 11:15:37 +0200 | [diff] [blame] | 1865 | |
Willy Tarreau | b83dc3d | 2017-04-19 11:24:07 +0200 | [diff] [blame] | 1866 | } |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 1867 | if (global.mode & MODE_MWORKER) { |
| 1868 | int proc; |
William Lallemand | 16dd1b3 | 2018-11-19 18:46:18 +0100 | [diff] [blame] | 1869 | struct mworker_proc *tmproc; |
| 1870 | |
William Lallemand | 482f9a9 | 2019-04-12 16:15:00 +0200 | [diff] [blame] | 1871 | setenv("HAPROXY_MWORKER", "1", 1); |
| 1872 | |
William Lallemand | 16dd1b3 | 2018-11-19 18:46:18 +0100 | [diff] [blame] | 1873 | if (getenv("HAPROXY_MWORKER_REEXEC") == NULL) { |
| 1874 | |
William Lallemand | f3a8683 | 2019-04-01 11:29:58 +0200 | [diff] [blame] | 1875 | tmproc = calloc(1, sizeof(*tmproc)); |
William Lallemand | 16dd1b3 | 2018-11-19 18:46:18 +0100 | [diff] [blame] | 1876 | if (!tmproc) { |
| 1877 | ha_alert("Cannot allocate process structures.\n"); |
| 1878 | exit(EXIT_FAILURE); |
| 1879 | } |
William Lallemand | 8f7069a | 2019-04-12 16:09:23 +0200 | [diff] [blame] | 1880 | tmproc->options |= PROC_O_TYPE_MASTER; /* master */ |
William Lallemand | 16dd1b3 | 2018-11-19 18:46:18 +0100 | [diff] [blame] | 1881 | tmproc->reloads = 0; |
| 1882 | tmproc->relative_pid = 0; |
| 1883 | tmproc->pid = pid; |
| 1884 | tmproc->timestamp = start_date.tv_sec; |
| 1885 | tmproc->ipc_fd[0] = -1; |
| 1886 | tmproc->ipc_fd[1] = -1; |
| 1887 | |
| 1888 | proc_self = tmproc; |
| 1889 | |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 1890 | LIST_APPEND(&proc_list, &tmproc->list); |
William Lallemand | 16dd1b3 | 2018-11-19 18:46:18 +0100 | [diff] [blame] | 1891 | } |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 1892 | |
| 1893 | for (proc = 0; proc < global.nbproc; proc++) { |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 1894 | |
William Lallemand | f3a8683 | 2019-04-01 11:29:58 +0200 | [diff] [blame] | 1895 | tmproc = calloc(1, sizeof(*tmproc)); |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 1896 | if (!tmproc) { |
| 1897 | ha_alert("Cannot allocate process structures.\n"); |
| 1898 | exit(EXIT_FAILURE); |
| 1899 | } |
| 1900 | |
William Lallemand | 8f7069a | 2019-04-12 16:09:23 +0200 | [diff] [blame] | 1901 | tmproc->options |= PROC_O_TYPE_WORKER; /* worker */ |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 1902 | tmproc->pid = -1; |
| 1903 | tmproc->reloads = 0; |
William Lallemand | e368330 | 2018-11-19 18:46:17 +0100 | [diff] [blame] | 1904 | tmproc->timestamp = -1; |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 1905 | tmproc->relative_pid = 1 + proc; |
William Lallemand | 550db6d | 2018-11-06 17:37:12 +0100 | [diff] [blame] | 1906 | tmproc->ipc_fd[0] = -1; |
| 1907 | tmproc->ipc_fd[1] = -1; |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 1908 | |
| 1909 | if (mworker_cli_sockpair_new(tmproc, proc) < 0) { |
| 1910 | exit(EXIT_FAILURE); |
| 1911 | } |
| 1912 | |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 1913 | LIST_APPEND(&proc_list, &tmproc->list); |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 1914 | } |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 1915 | } |
| 1916 | if (global.mode & (MODE_MWORKER|MODE_MWORKER_WAIT)) { |
| 1917 | struct wordlist *it, *c; |
| 1918 | |
Remi Tricot-Le Breton | d90aa34 | 2021-05-19 10:45:12 +0200 | [diff] [blame] | 1919 | /* get the info of the children in the env */ |
| 1920 | if (mworker_env_to_proc_list() < 0) { |
| 1921 | exit(EXIT_FAILURE); |
| 1922 | } |
William Lallemand | e736115 | 2018-10-26 14:47:36 +0200 | [diff] [blame] | 1923 | |
William Lallemand | 550db6d | 2018-11-06 17:37:12 +0100 | [diff] [blame] | 1924 | if (!LIST_ISEMPTY(&mworker_cli_conf)) { |
William Lallemand | e736115 | 2018-10-26 14:47:36 +0200 | [diff] [blame] | 1925 | |
William Lallemand | 550db6d | 2018-11-06 17:37:12 +0100 | [diff] [blame] | 1926 | if (mworker_cli_proxy_create() < 0) { |
William Lallemand | e736115 | 2018-10-26 14:47:36 +0200 | [diff] [blame] | 1927 | ha_alert("Can't create the master's CLI.\n"); |
| 1928 | exit(EXIT_FAILURE); |
| 1929 | } |
William Lallemand | e736115 | 2018-10-26 14:47:36 +0200 | [diff] [blame] | 1930 | |
William Lallemand | 550db6d | 2018-11-06 17:37:12 +0100 | [diff] [blame] | 1931 | list_for_each_entry_safe(c, it, &mworker_cli_conf, list) { |
| 1932 | |
| 1933 | if (mworker_cli_proxy_new_listener(c->s) < 0) { |
| 1934 | ha_alert("Can't create the master's CLI.\n"); |
| 1935 | exit(EXIT_FAILURE); |
| 1936 | } |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 1937 | LIST_DELETE(&c->list); |
William Lallemand | 550db6d | 2018-11-06 17:37:12 +0100 | [diff] [blame] | 1938 | free(c->s); |
| 1939 | free(c); |
| 1940 | } |
| 1941 | } |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 1942 | } |
| 1943 | |
Eric Salama | 5ba8335 | 2021-03-16 15:11:17 +0100 | [diff] [blame] | 1944 | if (!LIST_ISEMPTY(&mworker_cli_conf) && !(arg_mode & MODE_MWORKER)) { |
| 1945 | ha_warning("a master CLI socket was defined, but master-worker mode (-W) is not enabled.\n"); |
| 1946 | } |
| 1947 | |
Willy Tarreau | f42d794 | 2020-10-20 11:54:49 +0200 | [diff] [blame] | 1948 | if (global.nbproc > 1 && !global.nbthread) { |
| 1949 | ha_warning("nbproc is deprecated!\n" |
| 1950 | " | For suffering many limitations, the 'nbproc' directive is now deprecated\n" |
| 1951 | " | and scheduled for removal in 2.5. Just comment it out: haproxy will use\n" |
| 1952 | " | threads and will run on all allocated processors. You may also switch to\n" |
| 1953 | " | 'nbthread %d' to keep the same number of processors. If you absolutely\n" |
| 1954 | " | want to run in multi-process mode, you can silence this warning by adding\n" |
| 1955 | " | 'nbthread 1', but then please report your use case to developers.\n", |
| 1956 | global.nbproc); |
| 1957 | } |
| 1958 | |
Willy Tarreau | e90904d | 2021-02-12 14:08:31 +0100 | [diff] [blame] | 1959 | /* defaults sections are not needed anymore */ |
| 1960 | proxy_destroy_all_defaults(); |
| 1961 | |
Willy Tarreau | c690ca4 | 2023-05-17 09:02:21 +0200 | [diff] [blame] | 1962 | /* update the ready date that will be used to count the startup time |
| 1963 | * during config checks (e.g. to schedule certain tasks if needed) |
| 1964 | */ |
Willy Tarreau | ef0d92d | 2023-05-17 15:15:26 +0200 | [diff] [blame] | 1965 | gettimeofday(&date, NULL); |
Willy Tarreau | c690ca4 | 2023-05-17 09:02:21 +0200 | [diff] [blame] | 1966 | ready_date = date; |
| 1967 | |
| 1968 | /* Note: global.nbthread will be initialized as part of this call */ |
Willy Tarreau | bb92501 | 2009-07-23 13:36:36 +0200 | [diff] [blame] | 1969 | err_code |= check_config_validity(); |
Willy Tarreau | c690ca4 | 2023-05-17 09:02:21 +0200 | [diff] [blame] | 1970 | |
| 1971 | /* update the ready date to also account for the check time */ |
Willy Tarreau | ef0d92d | 2023-05-17 15:15:26 +0200 | [diff] [blame] | 1972 | gettimeofday(&date, NULL); |
Willy Tarreau | c690ca4 | 2023-05-17 09:02:21 +0200 | [diff] [blame] | 1973 | ready_date = date; |
| 1974 | |
Christopher Faulet | c169296 | 2019-08-12 09:51:07 +0200 | [diff] [blame] | 1975 | for (px = proxies_list; px; px = px->next) { |
| 1976 | struct server *srv; |
| 1977 | struct post_proxy_check_fct *ppcf; |
| 1978 | struct post_server_check_fct *pscf; |
| 1979 | |
Christopher Faulet | d5bd824 | 2020-11-02 16:20:13 +0100 | [diff] [blame] | 1980 | if (px->disabled) |
| 1981 | continue; |
| 1982 | |
Christopher Faulet | c169296 | 2019-08-12 09:51:07 +0200 | [diff] [blame] | 1983 | list_for_each_entry(pscf, &post_server_check_list, list) { |
| 1984 | for (srv = px->srv; srv; srv = srv->next) |
| 1985 | err_code |= pscf->fct(srv); |
| 1986 | } |
| 1987 | list_for_each_entry(ppcf, &post_proxy_check_list, list) |
| 1988 | err_code |= ppcf->fct(px); |
| 1989 | } |
Willy Tarreau | bb92501 | 2009-07-23 13:36:36 +0200 | [diff] [blame] | 1990 | if (err_code & (ERR_ABORT|ERR_FATAL)) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 1991 | ha_alert("Fatal errors found in configuration.\n"); |
Willy Tarreau | 915e1eb | 2009-06-22 15:48:36 +0200 | [diff] [blame] | 1992 | exit(1); |
| 1993 | } |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 1994 | |
Carl Henrik Lunde | f91ac19 | 2020-02-27 16:45:50 +0100 | [diff] [blame] | 1995 | err_code |= pattern_finalize_config(); |
| 1996 | if (err_code & (ERR_ABORT|ERR_FATAL)) { |
| 1997 | ha_alert("Failed to finalize pattern config.\n"); |
| 1998 | exit(1); |
| 1999 | } |
Willy Tarreau | 0f93672 | 2019-04-11 14:47:08 +0200 | [diff] [blame] | 2000 | |
Willy Tarreau | 7006045 | 2015-12-14 12:46:07 +0100 | [diff] [blame] | 2001 | /* recompute the amount of per-process memory depending on nbproc and |
| 2002 | * the shared SSL cache size (allowed to exist in all processes). |
| 2003 | */ |
| 2004 | if (global.rlimit_memmax_all) { |
| 2005 | #if defined (USE_OPENSSL) && !defined(USE_PRIVATE_CACHE) |
| 2006 | int64_t ssl_cache_bytes = global.tune.sslcachesize * 200LL; |
| 2007 | |
| 2008 | global.rlimit_memmax = |
| 2009 | ((((int64_t)global.rlimit_memmax_all * 1048576LL) - |
| 2010 | ssl_cache_bytes) / global.nbproc + |
| 2011 | ssl_cache_bytes + 1048575LL) / 1048576LL; |
| 2012 | #else |
| 2013 | global.rlimit_memmax = global.rlimit_memmax_all / global.nbproc; |
| 2014 | #endif |
| 2015 | } |
| 2016 | |
Willy Tarreau | e573323 | 2019-05-22 19:24:06 +0200 | [diff] [blame] | 2017 | #ifdef USE_NS |
KOVACS Krisztian | b3e54fe | 2014-11-17 15:11:45 +0100 | [diff] [blame] | 2018 | err_code |= netns_init(); |
| 2019 | if (err_code & (ERR_ABORT|ERR_FATAL)) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 2020 | ha_alert("Failed to initialize namespace support.\n"); |
KOVACS Krisztian | b3e54fe | 2014-11-17 15:11:45 +0100 | [diff] [blame] | 2021 | exit(1); |
| 2022 | } |
| 2023 | #endif |
| 2024 | |
Baptiste Assmann | 4215d7d | 2016-11-02 15:33:15 +0100 | [diff] [blame] | 2025 | /* Apply server states */ |
| 2026 | apply_server_state(); |
| 2027 | |
Olivier Houchard | fbc74e8 | 2017-11-24 16:54:05 +0100 | [diff] [blame] | 2028 | for (px = proxies_list; px; px = px->next) |
Baptiste Assmann | 4215d7d | 2016-11-02 15:33:15 +0100 | [diff] [blame] | 2029 | srv_compute_all_admin_states(px); |
| 2030 | |
Baptiste Assmann | 83cbaa5 | 2016-11-02 15:34:05 +0100 | [diff] [blame] | 2031 | /* Apply servers' configured address */ |
| 2032 | err_code |= srv_init_addr(); |
| 2033 | if (err_code & (ERR_ABORT|ERR_FATAL)) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 2034 | ha_alert("Failed to initialize server(s) addr.\n"); |
Baptiste Assmann | 83cbaa5 | 2016-11-02 15:34:05 +0100 | [diff] [blame] | 2035 | exit(1); |
| 2036 | } |
| 2037 | |
Willy Tarreau | 3eb10b8 | 2020-04-15 16:42:39 +0200 | [diff] [blame] | 2038 | if (warned & WARN_ANY && global.mode & MODE_ZERO_WARNING) { |
| 2039 | ha_alert("Some warnings were found and 'zero-warning' is set. Aborting.\n"); |
| 2040 | exit(1); |
| 2041 | } |
| 2042 | |
Willy Tarreau | 0aa9dbe | 2021-12-28 15:43:11 +0100 | [diff] [blame] | 2043 | #if defined(HA_HAVE_DUMP_LIBS) |
| 2044 | if (global.mode & MODE_DUMP_LIBS) { |
| 2045 | qfprintf(stdout, "List of loaded object files:\n"); |
| 2046 | chunk_reset(&trash); |
| 2047 | if (dump_libs(&trash, 0)) |
| 2048 | printf("%s", trash.area); |
| 2049 | } |
| 2050 | #endif |
| 2051 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2052 | if (global.mode & MODE_CHECK) { |
Willy Tarreau | 8b15ba1 | 2012-02-02 17:48:18 +0100 | [diff] [blame] | 2053 | struct peers *pr; |
| 2054 | struct proxy *px; |
| 2055 | |
Willy Tarreau | bebd212 | 2020-04-15 16:06:11 +0200 | [diff] [blame] | 2056 | if (warned & WARN_ANY) |
| 2057 | qfprintf(stdout, "Warnings were found.\n"); |
| 2058 | |
Frédéric Lécaille | ed2b4a6 | 2017-07-13 09:07:09 +0200 | [diff] [blame] | 2059 | for (pr = cfg_peers; pr; pr = pr->next) |
Willy Tarreau | 8b15ba1 | 2012-02-02 17:48:18 +0100 | [diff] [blame] | 2060 | if (pr->peers_fe) |
| 2061 | break; |
| 2062 | |
Olivier Houchard | fbc74e8 | 2017-11-24 16:54:05 +0100 | [diff] [blame] | 2063 | for (px = proxies_list; px; px = px->next) |
Willy Tarreau | c3914d4 | 2020-09-24 08:39:22 +0200 | [diff] [blame] | 2064 | if (!px->disabled && px->li_all) |
Willy Tarreau | 8b15ba1 | 2012-02-02 17:48:18 +0100 | [diff] [blame] | 2065 | break; |
| 2066 | |
Emeric Brun | 3a9c000 | 2021-08-13 09:32:50 +0200 | [diff] [blame] | 2067 | if (!px) { |
| 2068 | /* We may only have log-forward section */ |
| 2069 | for (px = cfg_log_forward; px; px = px->next) |
| 2070 | if (!px->disabled && px->li_all) |
| 2071 | break; |
| 2072 | } |
| 2073 | |
Willy Tarreau | 8b15ba1 | 2012-02-02 17:48:18 +0100 | [diff] [blame] | 2074 | if (pr || px) { |
| 2075 | /* At least one peer or one listener has been found */ |
| 2076 | qfprintf(stdout, "Configuration file is valid\n"); |
Tim Duesterhus | 0a3b43d | 2020-06-14 00:37:42 +0200 | [diff] [blame] | 2077 | deinit_and_exit(0); |
Willy Tarreau | 8b15ba1 | 2012-02-02 17:48:18 +0100 | [diff] [blame] | 2078 | } |
| 2079 | qfprintf(stdout, "Configuration file has no error but will not start (no listener) => exit(2).\n"); |
| 2080 | exit(2); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2081 | } |
Willy Tarreau | e9b2602 | 2011-08-01 20:57:55 +0200 | [diff] [blame] | 2082 | |
Amaury Denoyelle | 5a6926d | 2021-03-30 17:34:24 +0200 | [diff] [blame] | 2083 | if (global.mode & MODE_DIAG) { |
| 2084 | cfg_run_diagnostics(); |
| 2085 | } |
| 2086 | |
Willy Tarreau | 8263d2b | 2012-08-28 00:06:31 +0200 | [diff] [blame] | 2087 | /* now we know the buffer size, we can initialize the channels and buffers */ |
Willy Tarreau | 9b28e03 | 2012-10-12 23:49:43 +0200 | [diff] [blame] | 2088 | init_buffer(); |
Willy Tarreau | 8280d64 | 2009-09-23 23:37:52 +0200 | [diff] [blame] | 2089 | |
Willy Tarreau | e694573 | 2016-12-21 19:57:00 +0100 | [diff] [blame] | 2090 | list_for_each_entry(pcf, &post_check_list, list) { |
| 2091 | err_code |= pcf->fct(); |
| 2092 | if (err_code & (ERR_ABORT|ERR_FATAL)) |
| 2093 | exit(1); |
| 2094 | } |
| 2095 | |
William Lallemand | e9eb249 | 2022-06-21 11:11:50 +0200 | [diff] [blame] | 2096 | /* set the default maxconn in the master, but let it be rewritable with -n */ |
| 2097 | if (global.mode & MODE_MWORKER_WAIT) |
| 2098 | global.maxconn = DEFAULT_MAXCONN; |
| 2099 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2100 | if (cfg_maxconn > 0) |
| 2101 | global.maxconn = cfg_maxconn; |
| 2102 | |
Willy Tarreau | 4975d14 | 2021-03-13 11:00:33 +0100 | [diff] [blame] | 2103 | if (global.cli_fe) |
| 2104 | global.maxsock += global.cli_fe->maxconn; |
Willy Tarreau | 8d687d8 | 2019-03-01 09:39:42 +0100 | [diff] [blame] | 2105 | |
| 2106 | if (cfg_peers) { |
| 2107 | /* peers also need to bypass global maxconn */ |
| 2108 | struct peers *p = cfg_peers; |
| 2109 | |
| 2110 | for (p = cfg_peers; p; p = p->next) |
| 2111 | if (p->peers_fe) |
| 2112 | global.maxsock += p->peers_fe->maxconn; |
| 2113 | } |
| 2114 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2115 | if (cfg_pidfile) { |
Willy Tarreau | a534fea | 2008-08-03 12:19:50 +0200 | [diff] [blame] | 2116 | free(global.pidfile); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2117 | global.pidfile = strdup(cfg_pidfile); |
| 2118 | } |
| 2119 | |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2120 | /* Now we want to compute the maxconn and possibly maxsslconn values. |
Willy Tarreau | ac35093 | 2019-03-01 15:43:14 +0100 | [diff] [blame] | 2121 | * It's a bit tricky. Maxconn defaults to the pre-computed value based |
| 2122 | * on rlim_fd_cur and the number of FDs in use due to the configuration, |
| 2123 | * and maxsslconn defaults to DEFAULT_MAXSSLCONN. On top of that we can |
| 2124 | * enforce a lower limit based on memmax. |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2125 | * |
| 2126 | * If memmax is set, then it depends on which values are set. If |
| 2127 | * maxsslconn is set, we use memmax to determine how many cleartext |
| 2128 | * connections may be added, and set maxconn to the sum of the two. |
| 2129 | * If maxconn is set and not maxsslconn, maxsslconn is computed from |
| 2130 | * the remaining amount of memory between memmax and the cleartext |
| 2131 | * connections. If neither are set, then it is considered that all |
| 2132 | * connections are SSL-capable, and maxconn is computed based on this, |
| 2133 | * then maxsslconn accordingly. We need to know if SSL is used on the |
| 2134 | * frontends, backends, or both, because when it's used on both sides, |
| 2135 | * we need twice the value for maxsslconn, but we only count the |
| 2136 | * handshake once since it is not performed on the two sides at the |
| 2137 | * same time (frontend-side is terminated before backend-side begins). |
| 2138 | * The SSL stack is supposed to have filled ssl_session_cost and |
Willy Tarreau | 474b96a | 2015-01-28 19:03:21 +0100 | [diff] [blame] | 2139 | * ssl_handshake_cost during its initialization. In any case, if |
| 2140 | * SYSTEM_MAXCONN is set, we still enforce it as an upper limit for |
| 2141 | * maxconn in order to protect the system. |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2142 | */ |
Willy Tarreau | ac35093 | 2019-03-01 15:43:14 +0100 | [diff] [blame] | 2143 | ideal_maxconn = compute_ideal_maxconn(); |
| 2144 | |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2145 | if (!global.rlimit_memmax) { |
| 2146 | if (global.maxconn == 0) { |
Willy Tarreau | ac35093 | 2019-03-01 15:43:14 +0100 | [diff] [blame] | 2147 | global.maxconn = ideal_maxconn; |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2148 | if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) |
| 2149 | fprintf(stderr, "Note: setting global.maxconn to %d.\n", global.maxconn); |
| 2150 | } |
| 2151 | } |
| 2152 | #ifdef USE_OPENSSL |
| 2153 | else if (!global.maxconn && !global.maxsslconn && |
| 2154 | (global.ssl_used_frontend || global.ssl_used_backend)) { |
| 2155 | /* memmax is set, compute everything automatically. Here we want |
| 2156 | * to ensure that all SSL connections will be served. We take |
| 2157 | * care of the number of sides where SSL is used, and consider |
| 2158 | * the worst case : SSL used on both sides and doing a handshake |
| 2159 | * simultaneously. Note that we can't have more than maxconn |
| 2160 | * handshakes at a time by definition, so for the worst case of |
| 2161 | * two SSL conns per connection, we count a single handshake. |
| 2162 | */ |
| 2163 | int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend; |
| 2164 | int64_t mem = global.rlimit_memmax * 1048576ULL; |
Willy Tarreau | 304e17e | 2020-03-10 17:54:54 +0100 | [diff] [blame] | 2165 | int retried = 0; |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2166 | |
| 2167 | mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry |
| 2168 | mem -= global.maxzlibmem; |
| 2169 | mem = mem * MEM_USABLE_RATIO; |
| 2170 | |
Willy Tarreau | 304e17e | 2020-03-10 17:54:54 +0100 | [diff] [blame] | 2171 | /* Principle: we test once to set maxconn according to the free |
| 2172 | * memory. If it results in values the system rejects, we try a |
| 2173 | * second time by respecting rlim_fd_max. If it fails again, we |
| 2174 | * go back to the initial value and will let the final code |
| 2175 | * dealing with rlimit report the error. That's up to 3 attempts. |
| 2176 | */ |
| 2177 | do { |
| 2178 | global.maxconn = mem / |
| 2179 | ((STREAM_MAX_COST + 2 * global.tune.bufsize) + // stream + 2 buffers per stream |
| 2180 | sides * global.ssl_session_max_cost + // SSL buffers, one per side |
| 2181 | global.ssl_handshake_max_cost); // 1 handshake per connection max |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2182 | |
Willy Tarreau | 304e17e | 2020-03-10 17:54:54 +0100 | [diff] [blame] | 2183 | if (retried == 1) |
| 2184 | global.maxconn = MIN(global.maxconn, ideal_maxconn); |
| 2185 | global.maxconn = round_2dig(global.maxconn); |
Willy Tarreau | 474b96a | 2015-01-28 19:03:21 +0100 | [diff] [blame] | 2186 | #ifdef SYSTEM_MAXCONN |
Willy Tarreau | 304e17e | 2020-03-10 17:54:54 +0100 | [diff] [blame] | 2187 | if (global.maxconn > SYSTEM_MAXCONN) |
| 2188 | global.maxconn = SYSTEM_MAXCONN; |
Willy Tarreau | 474b96a | 2015-01-28 19:03:21 +0100 | [diff] [blame] | 2189 | #endif /* SYSTEM_MAXCONN */ |
Willy Tarreau | 304e17e | 2020-03-10 17:54:54 +0100 | [diff] [blame] | 2190 | global.maxsslconn = sides * global.maxconn; |
| 2191 | |
| 2192 | if (check_if_maxsock_permitted(compute_ideal_maxsock(global.maxconn))) |
| 2193 | break; |
| 2194 | } while (retried++ < 2); |
| 2195 | |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2196 | if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) |
| 2197 | fprintf(stderr, "Note: setting global.maxconn to %d and global.maxsslconn to %d.\n", |
| 2198 | global.maxconn, global.maxsslconn); |
| 2199 | } |
| 2200 | else if (!global.maxsslconn && |
| 2201 | (global.ssl_used_frontend || global.ssl_used_backend)) { |
| 2202 | /* memmax and maxconn are known, compute maxsslconn automatically. |
| 2203 | * maxsslconn being forced, we don't know how many of it will be |
| 2204 | * on each side if both sides are being used. The worst case is |
| 2205 | * when all connections use only one SSL instance because |
| 2206 | * handshakes may be on two sides at the same time. |
| 2207 | */ |
| 2208 | int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend; |
| 2209 | int64_t mem = global.rlimit_memmax * 1048576ULL; |
| 2210 | int64_t sslmem; |
| 2211 | |
| 2212 | mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry |
| 2213 | mem -= global.maxzlibmem; |
| 2214 | mem = mem * MEM_USABLE_RATIO; |
| 2215 | |
Willy Tarreau | 87b0966 | 2015-04-03 00:22:06 +0200 | [diff] [blame] | 2216 | sslmem = mem - global.maxconn * (int64_t)(STREAM_MAX_COST + 2 * global.tune.bufsize); |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2217 | global.maxsslconn = sslmem / (global.ssl_session_max_cost + global.ssl_handshake_max_cost); |
| 2218 | global.maxsslconn = round_2dig(global.maxsslconn); |
| 2219 | |
| 2220 | if (sslmem <= 0 || global.maxsslconn < sides) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 2221 | ha_alert("Cannot compute the automatic maxsslconn because global.maxconn is already too " |
| 2222 | "high for the global.memmax value (%d MB). The absolute maximum possible value " |
| 2223 | "without SSL is %d, but %d was found and SSL is in use.\n", |
| 2224 | global.rlimit_memmax, |
| 2225 | (int)(mem / (STREAM_MAX_COST + 2 * global.tune.bufsize)), |
| 2226 | global.maxconn); |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2227 | exit(1); |
| 2228 | } |
| 2229 | |
| 2230 | if (global.maxsslconn > sides * global.maxconn) |
| 2231 | global.maxsslconn = sides * global.maxconn; |
| 2232 | |
| 2233 | if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) |
| 2234 | fprintf(stderr, "Note: setting global.maxsslconn to %d\n", global.maxsslconn); |
| 2235 | } |
| 2236 | #endif |
| 2237 | else if (!global.maxconn) { |
| 2238 | /* memmax and maxsslconn are known/unused, compute maxconn automatically */ |
| 2239 | int sides = !!global.ssl_used_frontend + !!global.ssl_used_backend; |
| 2240 | int64_t mem = global.rlimit_memmax * 1048576ULL; |
| 2241 | int64_t clearmem; |
Willy Tarreau | 304e17e | 2020-03-10 17:54:54 +0100 | [diff] [blame] | 2242 | int retried = 0; |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2243 | |
| 2244 | if (global.ssl_used_frontend || global.ssl_used_backend) |
| 2245 | mem -= global.tune.sslcachesize * 200; // about 200 bytes per SSL cache entry |
| 2246 | |
| 2247 | mem -= global.maxzlibmem; |
| 2248 | mem = mem * MEM_USABLE_RATIO; |
| 2249 | |
| 2250 | clearmem = mem; |
| 2251 | if (sides) |
| 2252 | clearmem -= (global.ssl_session_max_cost + global.ssl_handshake_max_cost) * (int64_t)global.maxsslconn; |
| 2253 | |
Willy Tarreau | 304e17e | 2020-03-10 17:54:54 +0100 | [diff] [blame] | 2254 | /* Principle: we test once to set maxconn according to the free |
| 2255 | * memory. If it results in values the system rejects, we try a |
| 2256 | * second time by respecting rlim_fd_max. If it fails again, we |
| 2257 | * go back to the initial value and will let the final code |
| 2258 | * dealing with rlimit report the error. That's up to 3 attempts. |
| 2259 | */ |
| 2260 | do { |
| 2261 | global.maxconn = clearmem / (STREAM_MAX_COST + 2 * global.tune.bufsize); |
| 2262 | if (retried == 1) |
| 2263 | global.maxconn = MIN(global.maxconn, ideal_maxconn); |
| 2264 | global.maxconn = round_2dig(global.maxconn); |
Willy Tarreau | 474b96a | 2015-01-28 19:03:21 +0100 | [diff] [blame] | 2265 | #ifdef SYSTEM_MAXCONN |
Willy Tarreau | 304e17e | 2020-03-10 17:54:54 +0100 | [diff] [blame] | 2266 | if (global.maxconn > SYSTEM_MAXCONN) |
| 2267 | global.maxconn = SYSTEM_MAXCONN; |
Willy Tarreau | 474b96a | 2015-01-28 19:03:21 +0100 | [diff] [blame] | 2268 | #endif /* SYSTEM_MAXCONN */ |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2269 | |
Willy Tarreau | 304e17e | 2020-03-10 17:54:54 +0100 | [diff] [blame] | 2270 | if (clearmem <= 0 || !global.maxconn) { |
| 2271 | ha_alert("Cannot compute the automatic maxconn because global.maxsslconn is already too " |
| 2272 | "high for the global.memmax value (%d MB). The absolute maximum possible value " |
| 2273 | "is %d, but %d was found.\n", |
| 2274 | global.rlimit_memmax, |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 2275 | (int)(mem / (global.ssl_session_max_cost + global.ssl_handshake_max_cost)), |
Willy Tarreau | 304e17e | 2020-03-10 17:54:54 +0100 | [diff] [blame] | 2276 | global.maxsslconn); |
| 2277 | exit(1); |
| 2278 | } |
| 2279 | |
| 2280 | if (check_if_maxsock_permitted(compute_ideal_maxsock(global.maxconn))) |
| 2281 | break; |
| 2282 | } while (retried++ < 2); |
Willy Tarreau | d025648 | 2015-01-15 21:45:22 +0100 | [diff] [blame] | 2283 | |
| 2284 | if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) { |
| 2285 | if (sides && global.maxsslconn > sides * global.maxconn) { |
| 2286 | fprintf(stderr, "Note: global.maxsslconn is forced to %d which causes global.maxconn " |
| 2287 | "to be limited to %d. Better reduce global.maxsslconn to get more " |
| 2288 | "room for extra connections.\n", global.maxsslconn, global.maxconn); |
| 2289 | } |
| 2290 | fprintf(stderr, "Note: setting global.maxconn to %d\n", global.maxconn); |
| 2291 | } |
Willy Tarreau | 66aa61f | 2009-01-18 21:44:07 +0100 | [diff] [blame] | 2292 | } |
| 2293 | |
Willy Tarreau | a409f30 | 2020-03-10 17:08:53 +0100 | [diff] [blame] | 2294 | global.maxsock = compute_ideal_maxsock(global.maxconn); |
| 2295 | global.hardmaxconn = global.maxconn; |
Willy Tarreau | a4818db | 2020-06-19 16:20:59 +0200 | [diff] [blame] | 2296 | if (!global.maxpipes) |
| 2297 | global.maxpipes = compute_ideal_maxpipes(); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2298 | |
Olivier Houchard | 88698d9 | 2019-04-16 19:07:22 +0200 | [diff] [blame] | 2299 | /* update connection pool thresholds */ |
| 2300 | global.tune.pool_low_count = ((long long)global.maxsock * global.tune.pool_low_ratio + 99) / 100; |
| 2301 | global.tune.pool_high_count = ((long long)global.maxsock * global.tune.pool_high_ratio + 99) / 100; |
| 2302 | |
Willy Tarreau | c8d5b95 | 2019-02-27 17:25:52 +0100 | [diff] [blame] | 2303 | proxy_adjust_all_maxconn(); |
| 2304 | |
Willy Tarreau | 1db3771 | 2007-06-03 17:16:49 +0200 | [diff] [blame] | 2305 | if (global.tune.maxpollevents <= 0) |
| 2306 | global.tune.maxpollevents = MAX_POLL_EVENTS; |
| 2307 | |
Willy Tarreau | 060a761 | 2021-03-10 11:06:26 +0100 | [diff] [blame] | 2308 | if (global.tune.runqueue_depth <= 0) { |
| 2309 | /* tests on various thread counts from 1 to 64 have shown an |
| 2310 | * optimal queue depth following roughly 1/sqrt(threads). |
| 2311 | */ |
| 2312 | int s = my_flsl(global.nbthread); |
| 2313 | s += (global.nbthread / s); // roughly twice the sqrt. |
| 2314 | global.tune.runqueue_depth = RUNQUEUE_DEPTH * 2 / s; |
| 2315 | } |
Olivier Houchard | 1599b80 | 2018-05-24 18:59:04 +0200 | [diff] [blame] | 2316 | |
Willy Tarreau | 6f4a82c | 2009-03-21 20:43:57 +0100 | [diff] [blame] | 2317 | if (global.tune.recv_enough == 0) |
| 2318 | global.tune.recv_enough = MIN_RECV_AT_ONCE_ENOUGH; |
| 2319 | |
Willy Tarreau | 27a674e | 2009-08-17 07:23:33 +0200 | [diff] [blame] | 2320 | if (global.tune.maxrewrite >= global.tune.bufsize / 2) |
| 2321 | global.tune.maxrewrite = global.tune.bufsize / 2; |
| 2322 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2323 | if (arg_mode & (MODE_DEBUG | MODE_FOREGROUND)) { |
| 2324 | /* command line debug mode inhibits configuration mode */ |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 2325 | global.mode &= ~(MODE_DAEMON | MODE_QUIET); |
Willy Tarreau | 772f0dd | 2012-10-26 16:04:28 +0200 | [diff] [blame] | 2326 | global.mode |= (arg_mode & (MODE_DEBUG | MODE_FOREGROUND)); |
| 2327 | } |
| 2328 | |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 2329 | if (arg_mode & MODE_DAEMON) { |
Willy Tarreau | 772f0dd | 2012-10-26 16:04:28 +0200 | [diff] [blame] | 2330 | /* command line daemon mode inhibits foreground and debug modes mode */ |
| 2331 | global.mode &= ~(MODE_DEBUG | MODE_FOREGROUND); |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 2332 | global.mode |= arg_mode & MODE_DAEMON; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2333 | } |
Willy Tarreau | 772f0dd | 2012-10-26 16:04:28 +0200 | [diff] [blame] | 2334 | |
| 2335 | global.mode |= (arg_mode & (MODE_QUIET | MODE_VERBOSE)); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2336 | |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 2337 | if ((global.mode & MODE_DEBUG) && (global.mode & (MODE_DAEMON | MODE_QUIET))) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 2338 | ha_warning("<debug> mode incompatible with <quiet> and <daemon>. Keeping <debug> only.\n"); |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 2339 | global.mode &= ~(MODE_DAEMON | MODE_QUIET); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2340 | } |
| 2341 | |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 2342 | if ((global.nbproc > 1) && !(global.mode & (MODE_DAEMON | MODE_MWORKER))) { |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2343 | if (!(global.mode & (MODE_FOREGROUND | MODE_DEBUG))) |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 2344 | ha_warning("<nbproc> is only meaningful in daemon mode or master-worker mode. Setting limit to 1 process.\n"); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2345 | global.nbproc = 1; |
| 2346 | } |
| 2347 | |
| 2348 | if (global.nbproc < 1) |
| 2349 | global.nbproc = 1; |
| 2350 | |
Christopher Faulet | be0faa2 | 2017-08-29 15:37:10 +0200 | [diff] [blame] | 2351 | if (global.nbthread < 1) |
| 2352 | global.nbthread = 1; |
| 2353 | |
Christopher Faulet | 3ef2639 | 2017-08-29 16:46:57 +0200 | [diff] [blame] | 2354 | /* Realloc trash buffers because global.tune.bufsize may have changed */ |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 2355 | if (!init_trash_buffers(0)) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 2356 | ha_alert("failed to initialize trash buffers.\n"); |
Christopher Faulet | 3ef2639 | 2017-08-29 16:46:57 +0200 | [diff] [blame] | 2357 | exit(1); |
| 2358 | } |
| 2359 | |
Christopher Faulet | 96d4483 | 2017-11-14 22:02:30 +0100 | [diff] [blame] | 2360 | if (!init_log_buffers()) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 2361 | ha_alert("failed to initialize log buffers.\n"); |
Christopher Faulet | 96d4483 | 2017-11-14 22:02:30 +0100 | [diff] [blame] | 2362 | exit(1); |
| 2363 | } |
| 2364 | |
Willy Tarreau | ef1d1f8 | 2007-04-16 00:25:25 +0200 | [diff] [blame] | 2365 | /* |
| 2366 | * Note: we could register external pollers here. |
| 2367 | * Built-in pollers have been registered before main(). |
| 2368 | */ |
Willy Tarreau | 4f60f16 | 2007-04-08 16:39:58 +0200 | [diff] [blame] | 2369 | |
Willy Tarreau | 43b7899 | 2009-01-25 15:42:27 +0100 | [diff] [blame] | 2370 | if (!(global.tune.options & GTUNE_USE_KQUEUE)) |
Willy Tarreau | 1e63130a | 2007-04-09 12:03:06 +0200 | [diff] [blame] | 2371 | disable_poller("kqueue"); |
| 2372 | |
Emmanuel Hocdet | 0ba4f48 | 2019-04-08 16:53:32 +0000 | [diff] [blame] | 2373 | if (!(global.tune.options & GTUNE_USE_EVPORTS)) |
| 2374 | disable_poller("evports"); |
| 2375 | |
Willy Tarreau | 43b7899 | 2009-01-25 15:42:27 +0100 | [diff] [blame] | 2376 | if (!(global.tune.options & GTUNE_USE_EPOLL)) |
Willy Tarreau | 4f60f16 | 2007-04-08 16:39:58 +0200 | [diff] [blame] | 2377 | disable_poller("epoll"); |
| 2378 | |
Willy Tarreau | 43b7899 | 2009-01-25 15:42:27 +0100 | [diff] [blame] | 2379 | if (!(global.tune.options & GTUNE_USE_POLL)) |
Willy Tarreau | 4f60f16 | 2007-04-08 16:39:58 +0200 | [diff] [blame] | 2380 | disable_poller("poll"); |
| 2381 | |
Willy Tarreau | 43b7899 | 2009-01-25 15:42:27 +0100 | [diff] [blame] | 2382 | if (!(global.tune.options & GTUNE_USE_SELECT)) |
Willy Tarreau | 4f60f16 | 2007-04-08 16:39:58 +0200 | [diff] [blame] | 2383 | disable_poller("select"); |
| 2384 | |
| 2385 | /* Note: we could disable any poller by name here */ |
| 2386 | |
Christopher Faulet | b3f4e14 | 2016-03-07 12:46:38 +0100 | [diff] [blame] | 2387 | if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) { |
Willy Tarreau | 2ff7622 | 2007-04-09 19:29:56 +0200 | [diff] [blame] | 2388 | list_pollers(stderr); |
Christopher Faulet | b3f4e14 | 2016-03-07 12:46:38 +0100 | [diff] [blame] | 2389 | fprintf(stderr, "\n"); |
| 2390 | list_filters(stderr); |
| 2391 | } |
Willy Tarreau | 2ff7622 | 2007-04-09 19:29:56 +0200 | [diff] [blame] | 2392 | |
Willy Tarreau | 4f60f16 | 2007-04-08 16:39:58 +0200 | [diff] [blame] | 2393 | if (!init_pollers()) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 2394 | ha_alert("No polling mechanism available.\n" |
| 2395 | " It is likely that haproxy was built with TARGET=generic and that FD_SETSIZE\n" |
| 2396 | " is too low on this platform to support maxconn and the number of listeners\n" |
| 2397 | " and servers. You should rebuild haproxy specifying your system using TARGET=\n" |
| 2398 | " in order to support other polling systems (poll, epoll, kqueue) or reduce the\n" |
| 2399 | " global maxconn setting to accommodate the system's limitation. For reference,\n" |
| 2400 | " FD_SETSIZE=%d on this system, global.maxconn=%d resulting in a maximum of\n" |
| 2401 | " %d file descriptors. You should thus reduce global.maxconn by %d. Also,\n" |
| 2402 | " check build settings using 'haproxy -vv'.\n\n", |
| 2403 | FD_SETSIZE, global.maxconn, global.maxsock, (global.maxsock + 1 - FD_SETSIZE) / 2); |
Willy Tarreau | 4f60f16 | 2007-04-08 16:39:58 +0200 | [diff] [blame] | 2404 | exit(1); |
| 2405 | } |
Willy Tarreau | 2ff7622 | 2007-04-09 19:29:56 +0200 | [diff] [blame] | 2406 | if (global.mode & (MODE_VERBOSE|MODE_DEBUG)) { |
| 2407 | printf("Using %s() as the polling mechanism.\n", cur_poller.name); |
Willy Tarreau | 4f60f16 | 2007-04-08 16:39:58 +0200 | [diff] [blame] | 2408 | } |
| 2409 | |
Krzysztof Piotr Oledzki | 48cb2ae | 2009-10-02 22:51:14 +0200 | [diff] [blame] | 2410 | if (!global.node) |
| 2411 | global.node = strdup(hostname); |
| 2412 | |
Willy Tarreau | 02b092f | 2020-10-07 18:36:54 +0200 | [diff] [blame] | 2413 | /* stop disabled proxies */ |
| 2414 | for (px = proxies_list; px; px = px->next) { |
Willy Tarreau | c3914d4 | 2020-09-24 08:39:22 +0200 | [diff] [blame] | 2415 | if (px->disabled) |
Willy Tarreau | 02b092f | 2020-10-07 18:36:54 +0200 | [diff] [blame] | 2416 | stop_proxy(px); |
| 2417 | } |
| 2418 | |
Thierry FOURNIER | a4a0f3d | 2015-01-23 12:08:30 +0100 | [diff] [blame] | 2419 | if (!hlua_post_init()) |
| 2420 | exit(1); |
Thomas Holmes | 6abded4 | 2015-05-12 16:23:58 +0100 | [diff] [blame] | 2421 | |
Maxime de Roucy | 0f50392 | 2016-05-13 23:52:55 +0200 | [diff] [blame] | 2422 | free(err_msg); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2423 | } |
| 2424 | |
Cyril Bonté | 203ec5a | 2017-03-23 22:44:13 +0100 | [diff] [blame] | 2425 | void deinit(void) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2426 | { |
Olivier Houchard | fbc74e8 | 2017-11-24 16:54:05 +0100 | [diff] [blame] | 2427 | struct proxy *p = proxies_list, *p0; |
Willy Tarreau | deb9ed8 | 2010-01-03 21:03:22 +0100 | [diff] [blame] | 2428 | struct wordlist *wl, *wlb; |
Krzysztof Piotr Oledzki | 8001d61 | 2008-05-31 13:53:23 +0200 | [diff] [blame] | 2429 | struct uri_auth *uap, *ua = NULL; |
William Lallemand | 0f99e34 | 2011-10-12 17:50:54 +0200 | [diff] [blame] | 2430 | struct logsrv *log, *logb; |
Willy Tarreau | cdb737e | 2016-12-21 18:43:10 +0100 | [diff] [blame] | 2431 | struct build_opts_str *bol, *bolb; |
Tim Duesterhus | fdf904a | 2020-07-04 11:49:48 +0200 | [diff] [blame] | 2432 | struct post_deinit_fct *pdf, *pdfb; |
Tim Duesterhus | 17e363f | 2020-07-04 11:49:47 +0200 | [diff] [blame] | 2433 | struct proxy_deinit_fct *pxdf, *pxdfb; |
Tim Duesterhus | 0837eb1 | 2020-07-04 11:49:49 +0200 | [diff] [blame] | 2434 | struct server_deinit_fct *srvdf, *srvdfb; |
Tim Duesterhus | f0c25d2 | 2020-09-10 19:46:41 +0200 | [diff] [blame] | 2435 | struct per_thread_init_fct *tif, *tifb; |
| 2436 | struct per_thread_deinit_fct *tdf, *tdfb; |
| 2437 | struct per_thread_alloc_fct *taf, *tafb; |
| 2438 | struct per_thread_free_fct *tff, *tffb; |
Tim Duesterhus | 34bef07 | 2020-07-04 11:49:50 +0200 | [diff] [blame] | 2439 | struct post_server_check_fct *pscf, *pscfb; |
Tim Duesterhus | fc85494 | 2020-09-10 19:46:42 +0200 | [diff] [blame] | 2440 | struct post_check_fct *pcf, *pcfb; |
Tim Duesterhus | 53508d6 | 2020-09-10 19:46:40 +0200 | [diff] [blame] | 2441 | struct post_proxy_check_fct *ppcf, *ppcfb; |
Willy Tarreau | ae7bc4a | 2020-09-23 16:46:22 +0200 | [diff] [blame] | 2442 | int cur_fd; |
| 2443 | |
| 2444 | /* At this point the listeners state is weird: |
| 2445 | * - most listeners are still bound and referenced in their protocol |
| 2446 | * - some might be zombies that are not in their proto anymore, but |
| 2447 | * still appear in their proxy's listeners with a valid FD. |
| 2448 | * - some might be stopped and still appear in their proxy as FD #-1 |
| 2449 | * - among all of them, some might be inherited hence shared and we're |
| 2450 | * not allowed to pause them or whatever, we must just close them. |
| 2451 | * - finally some are not listeners (pipes, logs, stdout, etc) and |
| 2452 | * must be left intact. |
| 2453 | * |
| 2454 | * The safe way to proceed is to unbind (and close) whatever is not yet |
| 2455 | * unbound so that no more receiver/listener remains alive. Then close |
| 2456 | * remaining listener FDs, which correspond to zombie listeners (those |
| 2457 | * belonging to disabled proxies that were in another process). |
| 2458 | * objt_listener() would be cleaner here but not converted yet. |
| 2459 | */ |
| 2460 | protocol_unbind_all(); |
| 2461 | |
| 2462 | for (cur_fd = 0; cur_fd < global.maxsock; cur_fd++) { |
Willy Tarreau | 1a3770c | 2020-10-14 12:13:51 +0200 | [diff] [blame] | 2463 | if (!fdtab || !fdtab[cur_fd].owner) |
Willy Tarreau | ae7bc4a | 2020-09-23 16:46:22 +0200 | [diff] [blame] | 2464 | continue; |
| 2465 | |
Willy Tarreau | a74cb38 | 2020-10-15 21:29:49 +0200 | [diff] [blame] | 2466 | if (fdtab[cur_fd].iocb == &sock_accept_iocb) { |
Willy Tarreau | ae7bc4a | 2020-09-23 16:46:22 +0200 | [diff] [blame] | 2467 | struct listener *l = fdtab[cur_fd].owner; |
| 2468 | |
| 2469 | BUG_ON(l->state != LI_INIT); |
| 2470 | unbind_listener(l); |
| 2471 | } |
| 2472 | } |
Krzysztof Piotr Oledzki | 8001d61 | 2008-05-31 13:53:23 +0200 | [diff] [blame] | 2473 | |
Willy Tarreau | 24f4efa | 2010-08-27 17:56:48 +0200 | [diff] [blame] | 2474 | deinit_signals(); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2475 | while (p) { |
Krzysztof Piotr Oledzki | 8001d61 | 2008-05-31 13:53:23 +0200 | [diff] [blame] | 2476 | /* build a list of unique uri_auths */ |
| 2477 | if (!ua) |
| 2478 | ua = p->uri_auth; |
| 2479 | else { |
| 2480 | /* check if p->uri_auth is unique */ |
| 2481 | for (uap = ua; uap; uap=uap->next) |
| 2482 | if (uap == p->uri_auth) |
| 2483 | break; |
| 2484 | |
Willy Tarreau | accc4e1 | 2008-06-24 11:14:45 +0200 | [diff] [blame] | 2485 | if (!uap && p->uri_auth) { |
Krzysztof Piotr Oledzki | 8001d61 | 2008-05-31 13:53:23 +0200 | [diff] [blame] | 2486 | /* add it, if it is */ |
| 2487 | p->uri_auth->next = ua; |
| 2488 | ua = p->uri_auth; |
| 2489 | } |
William Lallemand | 0f99e34 | 2011-10-12 17:50:54 +0200 | [diff] [blame] | 2490 | } |
| 2491 | |
Willy Tarreau | 4d2d098 | 2007-05-14 00:39:29 +0200 | [diff] [blame] | 2492 | p0 = p; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2493 | p = p->next; |
Amaury Denoyelle | 27fefa1 | 2021-03-24 16:13:20 +0100 | [diff] [blame] | 2494 | free_proxy(p0); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2495 | }/* end while(p) */ |
Willy Tarreau | dd81598 | 2007-10-16 12:25:14 +0200 | [diff] [blame] | 2496 | |
Aurelien DARRAGON | f879603 | 2023-03-09 12:07:09 +0100 | [diff] [blame] | 2497 | |
| 2498 | /* we don't need to free sink_proxies_list proxies since it is |
| 2499 | * already handled in sink_deinit() |
| 2500 | */ |
Aurelien DARRAGON | 5526ddc | 2023-03-09 12:21:12 +0100 | [diff] [blame] | 2501 | p = cfg_log_forward; |
| 2502 | /* we need to manually clean cfg_log_forward proxy list */ |
| 2503 | while (p) { |
| 2504 | p0 = p; |
| 2505 | p = p->next; |
| 2506 | free_proxy(p0); |
| 2507 | } |
Aurelien DARRAGON | f879603 | 2023-03-09 12:07:09 +0100 | [diff] [blame] | 2508 | |
Krzysztof Piotr Oledzki | 8001d61 | 2008-05-31 13:53:23 +0200 | [diff] [blame] | 2509 | while (ua) { |
Tim Duesterhus | 00f00cf | 2020-09-10 19:46:38 +0200 | [diff] [blame] | 2510 | struct stat_scope *scope, *scopep; |
| 2511 | |
Krzysztof Piotr Oledzki | 8001d61 | 2008-05-31 13:53:23 +0200 | [diff] [blame] | 2512 | uap = ua; |
| 2513 | ua = ua->next; |
| 2514 | |
Willy Tarreau | a534fea | 2008-08-03 12:19:50 +0200 | [diff] [blame] | 2515 | free(uap->uri_prefix); |
| 2516 | free(uap->auth_realm); |
Krzysztof Piotr Oledzki | 48cb2ae | 2009-10-02 22:51:14 +0200 | [diff] [blame] | 2517 | free(uap->node); |
| 2518 | free(uap->desc); |
Krzysztof Piotr Oledzki | 8001d61 | 2008-05-31 13:53:23 +0200 | [diff] [blame] | 2519 | |
Krzysztof Piotr Oledzki | 8c8bd45 | 2010-01-29 19:29:32 +0100 | [diff] [blame] | 2520 | userlist_free(uap->userlist); |
Amaury Denoyelle | 68fd7e4 | 2021-03-25 17:15:52 +0100 | [diff] [blame] | 2521 | free_act_rules(&uap->http_req_rules); |
Krzysztof Piotr Oledzki | 8c8bd45 | 2010-01-29 19:29:32 +0100 | [diff] [blame] | 2522 | |
Tim Duesterhus | 00f00cf | 2020-09-10 19:46:38 +0200 | [diff] [blame] | 2523 | scope = uap->scope; |
| 2524 | while (scope) { |
| 2525 | scopep = scope; |
| 2526 | scope = scope->next; |
| 2527 | |
| 2528 | free(scopep->px_id); |
| 2529 | free(scopep); |
| 2530 | } |
| 2531 | |
Krzysztof Piotr Oledzki | 8001d61 | 2008-05-31 13:53:23 +0200 | [diff] [blame] | 2532 | free(uap); |
| 2533 | } |
| 2534 | |
Krzysztof Piotr Oledzki | 9610504 | 2010-01-29 17:50:44 +0100 | [diff] [blame] | 2535 | userlist_free(userlist); |
| 2536 | |
David Carlier | 834cb2e | 2015-09-25 12:02:25 +0100 | [diff] [blame] | 2537 | cfg_unregister_sections(); |
| 2538 | |
Christopher Faulet | 0132d06 | 2017-07-26 15:33:35 +0200 | [diff] [blame] | 2539 | deinit_log_buffers(); |
David Carlier | 834cb2e | 2015-09-25 12:02:25 +0100 | [diff] [blame] | 2540 | |
Willy Tarreau | 05554e6 | 2016-12-21 20:46:26 +0100 | [diff] [blame] | 2541 | list_for_each_entry(pdf, &post_deinit_list, list) |
| 2542 | pdf->fct(); |
| 2543 | |
Willy Tarreau | 61cfdf4 | 2021-02-20 10:46:51 +0100 | [diff] [blame] | 2544 | ha_free(&global.log_send_hostname); |
Dragan Dosen | 43885c7 | 2015-10-01 13:18:13 +0200 | [diff] [blame] | 2545 | chunk_destroy(&global.log_tag); |
Willy Tarreau | 61cfdf4 | 2021-02-20 10:46:51 +0100 | [diff] [blame] | 2546 | ha_free(&global.chroot); |
| 2547 | ha_free(&global.pidfile); |
| 2548 | ha_free(&global.node); |
| 2549 | ha_free(&global.desc); |
| 2550 | ha_free(&oldpids); |
| 2551 | ha_free(&old_argv); |
| 2552 | ha_free(&localpeer); |
| 2553 | ha_free(&global.server_state_base); |
| 2554 | ha_free(&global.server_state_file); |
Olivier Houchard | 3f795f7 | 2019-04-17 22:51:06 +0200 | [diff] [blame] | 2555 | task_destroy(idle_conn_task); |
Olivier Houchard | 9ea5d36 | 2019-02-14 18:29:09 +0100 | [diff] [blame] | 2556 | idle_conn_task = NULL; |
Krzysztof Piotr Oledzki | 8001d61 | 2008-05-31 13:53:23 +0200 | [diff] [blame] | 2557 | |
William Lallemand | 0f99e34 | 2011-10-12 17:50:54 +0200 | [diff] [blame] | 2558 | list_for_each_entry_safe(log, logb, &global.logsrvs, list) { |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2559 | LIST_DELETE(&log->list); |
Amaury Denoyelle | d688e01 | 2021-04-20 17:05:47 +0200 | [diff] [blame] | 2560 | free(log->conf.file); |
William Lallemand | 0f99e34 | 2011-10-12 17:50:54 +0200 | [diff] [blame] | 2561 | free(log); |
| 2562 | } |
Willy Tarreau | 477ecd8 | 2010-01-03 21:12:30 +0100 | [diff] [blame] | 2563 | list_for_each_entry_safe(wl, wlb, &cfg_cfgfiles, list) { |
Maxime de Roucy | 0f50392 | 2016-05-13 23:52:55 +0200 | [diff] [blame] | 2564 | free(wl->s); |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2565 | LIST_DELETE(&wl->list); |
Willy Tarreau | 477ecd8 | 2010-01-03 21:12:30 +0100 | [diff] [blame] | 2566 | free(wl); |
| 2567 | } |
| 2568 | |
Willy Tarreau | cdb737e | 2016-12-21 18:43:10 +0100 | [diff] [blame] | 2569 | list_for_each_entry_safe(bol, bolb, &build_opts_list, list) { |
| 2570 | if (bol->must_free) |
| 2571 | free((void *)bol->str); |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2572 | LIST_DELETE(&bol->list); |
Willy Tarreau | cdb737e | 2016-12-21 18:43:10 +0100 | [diff] [blame] | 2573 | free(bol); |
| 2574 | } |
| 2575 | |
Tim Duesterhus | 17e363f | 2020-07-04 11:49:47 +0200 | [diff] [blame] | 2576 | list_for_each_entry_safe(pxdf, pxdfb, &proxy_deinit_list, list) { |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2577 | LIST_DELETE(&pxdf->list); |
Tim Duesterhus | 17e363f | 2020-07-04 11:49:47 +0200 | [diff] [blame] | 2578 | free(pxdf); |
| 2579 | } |
| 2580 | |
Tim Duesterhus | fdf904a | 2020-07-04 11:49:48 +0200 | [diff] [blame] | 2581 | list_for_each_entry_safe(pdf, pdfb, &post_deinit_list, list) { |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2582 | LIST_DELETE(&pdf->list); |
Tim Duesterhus | fdf904a | 2020-07-04 11:49:48 +0200 | [diff] [blame] | 2583 | free(pdf); |
| 2584 | } |
| 2585 | |
Tim Duesterhus | 0837eb1 | 2020-07-04 11:49:49 +0200 | [diff] [blame] | 2586 | list_for_each_entry_safe(srvdf, srvdfb, &server_deinit_list, list) { |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2587 | LIST_DELETE(&srvdf->list); |
Tim Duesterhus | 0837eb1 | 2020-07-04 11:49:49 +0200 | [diff] [blame] | 2588 | free(srvdf); |
| 2589 | } |
| 2590 | |
Tim Duesterhus | fc85494 | 2020-09-10 19:46:42 +0200 | [diff] [blame] | 2591 | list_for_each_entry_safe(pcf, pcfb, &post_check_list, list) { |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2592 | LIST_DELETE(&pcf->list); |
Tim Duesterhus | fc85494 | 2020-09-10 19:46:42 +0200 | [diff] [blame] | 2593 | free(pcf); |
| 2594 | } |
| 2595 | |
Tim Duesterhus | 34bef07 | 2020-07-04 11:49:50 +0200 | [diff] [blame] | 2596 | list_for_each_entry_safe(pscf, pscfb, &post_server_check_list, list) { |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2597 | LIST_DELETE(&pscf->list); |
Tim Duesterhus | 34bef07 | 2020-07-04 11:49:50 +0200 | [diff] [blame] | 2598 | free(pscf); |
| 2599 | } |
| 2600 | |
Tim Duesterhus | 53508d6 | 2020-09-10 19:46:40 +0200 | [diff] [blame] | 2601 | list_for_each_entry_safe(ppcf, ppcfb, &post_proxy_check_list, list) { |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2602 | LIST_DELETE(&ppcf->list); |
Tim Duesterhus | 53508d6 | 2020-09-10 19:46:40 +0200 | [diff] [blame] | 2603 | free(ppcf); |
| 2604 | } |
| 2605 | |
Tim Duesterhus | f0c25d2 | 2020-09-10 19:46:41 +0200 | [diff] [blame] | 2606 | list_for_each_entry_safe(tif, tifb, &per_thread_init_list, list) { |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2607 | LIST_DELETE(&tif->list); |
Tim Duesterhus | f0c25d2 | 2020-09-10 19:46:41 +0200 | [diff] [blame] | 2608 | free(tif); |
| 2609 | } |
| 2610 | |
| 2611 | list_for_each_entry_safe(tdf, tdfb, &per_thread_deinit_list, list) { |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2612 | LIST_DELETE(&tdf->list); |
Tim Duesterhus | f0c25d2 | 2020-09-10 19:46:41 +0200 | [diff] [blame] | 2613 | free(tdf); |
| 2614 | } |
| 2615 | |
| 2616 | list_for_each_entry_safe(taf, tafb, &per_thread_alloc_list, list) { |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2617 | LIST_DELETE(&taf->list); |
Tim Duesterhus | f0c25d2 | 2020-09-10 19:46:41 +0200 | [diff] [blame] | 2618 | free(taf); |
| 2619 | } |
| 2620 | |
| 2621 | list_for_each_entry_safe(tff, tffb, &per_thread_free_list, list) { |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 2622 | LIST_DELETE(&tff->list); |
Tim Duesterhus | f0c25d2 | 2020-09-10 19:46:41 +0200 | [diff] [blame] | 2623 | free(tff); |
| 2624 | } |
| 2625 | |
Willy Tarreau | cfc4f24 | 2021-05-08 11:41:28 +0200 | [diff] [blame] | 2626 | vars_prune(&proc_vars, NULL, NULL); |
Willy Tarreau | 2455ceb | 2018-11-26 15:57:34 +0100 | [diff] [blame] | 2627 | pool_destroy_all(); |
Krzysztof Piotr Oledzki | a643baf | 2008-05-29 23:53:44 +0200 | [diff] [blame] | 2628 | deinit_pollers(); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2629 | } /* end deinit() */ |
| 2630 | |
Willy Tarreau | f3ca5a0 | 2020-06-15 18:43:46 +0200 | [diff] [blame] | 2631 | __attribute__((noreturn)) void deinit_and_exit(int status) |
Tim Duesterhus | 2654055 | 2020-06-14 00:37:41 +0200 | [diff] [blame] | 2632 | { |
Amaury Denoyelle | 890f4be | 2021-08-09 15:02:56 +0200 | [diff] [blame] | 2633 | global.mode |= MODE_STOPPING; |
Tim Duesterhus | 2654055 | 2020-06-14 00:37:41 +0200 | [diff] [blame] | 2634 | deinit(); |
| 2635 | exit(status); |
| 2636 | } |
William Lallemand | 7216032 | 2018-11-06 17:37:16 +0100 | [diff] [blame] | 2637 | |
Willy Tarreau | 918ff60 | 2011-07-25 16:33:49 +0200 | [diff] [blame] | 2638 | /* Runs the polling loop */ |
Willy Tarreau | 3ebd55e | 2020-03-03 14:59:56 +0100 | [diff] [blame] | 2639 | void run_poll_loop() |
Willy Tarreau | 4f60f16 | 2007-04-08 16:39:58 +0200 | [diff] [blame] | 2640 | { |
Willy Tarreau | 2ae84e4 | 2019-05-28 16:44:05 +0200 | [diff] [blame] | 2641 | int next, wake; |
Willy Tarreau | 4f60f16 | 2007-04-08 16:39:58 +0200 | [diff] [blame] | 2642 | |
Willy Tarreau | b0b37bc | 2008-06-23 14:00:57 +0200 | [diff] [blame] | 2643 | tv_update_date(0,1); |
Willy Tarreau | 4f60f16 | 2007-04-08 16:39:58 +0200 | [diff] [blame] | 2644 | while (1) { |
Willy Tarreau | c49ba52 | 2019-12-11 08:12:23 +0100 | [diff] [blame] | 2645 | wake_expired_tasks(); |
| 2646 | |
William Lallemand | 1aab50b | 2018-06-07 09:46:01 +0200 | [diff] [blame] | 2647 | /* check if we caught some signals and process them in the |
| 2648 | first thread */ |
Willy Tarreau | a7ad4ae | 2020-06-19 12:06:34 +0200 | [diff] [blame] | 2649 | if (signal_queue_len && tid == 0) { |
| 2650 | activity[tid].wake_signal++; |
William Lallemand | 1aab50b | 2018-06-07 09:46:01 +0200 | [diff] [blame] | 2651 | signal_process_queue(); |
Willy Tarreau | a7ad4ae | 2020-06-19 12:06:34 +0200 | [diff] [blame] | 2652 | } |
| 2653 | |
| 2654 | /* Process a few tasks */ |
| 2655 | process_runnable_tasks(); |
Willy Tarreau | 2985794 | 2009-05-10 09:01:21 +0200 | [diff] [blame] | 2656 | |
Willy Tarreau | 7067b3a | 2019-06-02 11:11:29 +0200 | [diff] [blame] | 2657 | /* also stop if we failed to cleanly stop all tasks */ |
| 2658 | if (killed > 1) |
| 2659 | break; |
| 2660 | |
Matthias Wirth | 6b933fc | 2022-09-09 10:21:00 +0200 | [diff] [blame] | 2661 | /* expire immediately if events or signals are pending */ |
Willy Tarreau | 2ae84e4 | 2019-05-28 16:44:05 +0200 | [diff] [blame] | 2662 | wake = 1; |
Olivier Houchard | 305d5ab | 2019-07-24 18:07:06 +0200 | [diff] [blame] | 2663 | if (thread_has_tasks()) |
Willy Tarreau | d80cb4e | 2018-01-20 19:30:13 +0100 | [diff] [blame] | 2664 | activity[tid].wake_tasks++; |
Olivier Houchard | 79321b9 | 2018-07-26 17:55:11 +0200 | [diff] [blame] | 2665 | else { |
Olivier Houchard | b23a61f | 2019-03-08 18:51:17 +0100 | [diff] [blame] | 2666 | _HA_ATOMIC_OR(&sleeping_thread_mask, tid_bit); |
| 2667 | __ha_barrier_atomic_store(); |
Willy Tarreau | 95abd5b | 2020-03-23 09:33:32 +0100 | [diff] [blame] | 2668 | if (thread_has_tasks()) { |
Olivier Houchard | 79321b9 | 2018-07-26 17:55:11 +0200 | [diff] [blame] | 2669 | activity[tid].wake_tasks++; |
Olivier Houchard | b23a61f | 2019-03-08 18:51:17 +0100 | [diff] [blame] | 2670 | _HA_ATOMIC_AND(&sleeping_thread_mask, ~tid_bit); |
Matthias Wirth | 6b933fc | 2022-09-09 10:21:00 +0200 | [diff] [blame] | 2671 | } else if (signal_queue_len) { |
| 2672 | /* this check is required to avoid |
| 2673 | * a race with wakeup on signals using wake_threads() */ |
| 2674 | _HA_ATOMIC_AND(&sleeping_thread_mask, ~tid_bit); |
Olivier Houchard | 79321b9 | 2018-07-26 17:55:11 +0200 | [diff] [blame] | 2675 | } else |
Willy Tarreau | 2ae84e4 | 2019-05-28 16:44:05 +0200 | [diff] [blame] | 2676 | wake = 0; |
Olivier Houchard | 79321b9 | 2018-07-26 17:55:11 +0200 | [diff] [blame] | 2677 | } |
Willy Tarreau | 10146c9 | 2015-04-13 20:44:19 +0200 | [diff] [blame] | 2678 | |
Willy Tarreau | 4f46a35 | 2020-03-23 09:27:28 +0100 | [diff] [blame] | 2679 | if (!wake) { |
Willy Tarreau | d7a6b2f | 2020-05-13 13:51:01 +0200 | [diff] [blame] | 2680 | int i; |
| 2681 | |
| 2682 | if (stopping) { |
Ilya Shipitsin | 3df5989 | 2021-05-10 12:50:00 +0500 | [diff] [blame] | 2683 | /* stop muxes before acknowledging stopping */ |
Amaury Denoyelle | d3a88c1 | 2021-05-03 10:47:51 +0200 | [diff] [blame] | 2684 | if (!(stopping_thread_mask & tid_bit)) { |
| 2685 | task_wakeup(mux_stopping_data[tid].task, TASK_WOKEN_OTHER); |
| 2686 | wake = 1; |
| 2687 | } |
| 2688 | |
Willy Tarreau | 1db4273 | 2021-04-06 11:44:07 +0200 | [diff] [blame] | 2689 | if (_HA_ATOMIC_OR_FETCH(&stopping_thread_mask, tid_bit) == tid_bit) { |
Willy Tarreau | d645574 | 2020-05-13 14:30:25 +0200 | [diff] [blame] | 2690 | /* notify all threads that stopping was just set */ |
| 2691 | for (i = 0; i < global.nbthread; i++) |
Willy Tarreau | 369a2ef | 2020-06-29 19:23:19 +0200 | [diff] [blame] | 2692 | if (((all_threads_mask & ~stopping_thread_mask) >> i) & 1) |
Willy Tarreau | d645574 | 2020-05-13 14:30:25 +0200 | [diff] [blame] | 2693 | wake_thread(i); |
| 2694 | } |
Willy Tarreau | d7a6b2f | 2020-05-13 13:51:01 +0200 | [diff] [blame] | 2695 | } |
Willy Tarreau | 4f46a35 | 2020-03-23 09:27:28 +0100 | [diff] [blame] | 2696 | |
| 2697 | /* stop when there's nothing left to do */ |
| 2698 | if ((jobs - unstoppable_jobs) == 0 && |
Willy Tarreau | d7a6b2f | 2020-05-13 13:51:01 +0200 | [diff] [blame] | 2699 | (stopping_thread_mask & all_threads_mask) == all_threads_mask) { |
| 2700 | /* wake all threads waiting on jobs==0 */ |
| 2701 | for (i = 0; i < global.nbthread; i++) |
| 2702 | if (((all_threads_mask & ~tid_bit) >> i) & 1) |
| 2703 | wake_thread(i); |
Willy Tarreau | 4f46a35 | 2020-03-23 09:27:28 +0100 | [diff] [blame] | 2704 | break; |
Willy Tarreau | d7a6b2f | 2020-05-13 13:51:01 +0200 | [diff] [blame] | 2705 | } |
Willy Tarreau | 4f46a35 | 2020-03-23 09:27:28 +0100 | [diff] [blame] | 2706 | } |
| 2707 | |
Willy Tarreau | c49ba52 | 2019-12-11 08:12:23 +0100 | [diff] [blame] | 2708 | /* If we have to sleep, measure how long */ |
| 2709 | next = wake ? TICK_ETERNITY : next_timer_expiry(); |
| 2710 | |
Willy Tarreau | 58b458d | 2008-06-29 22:40:23 +0200 | [diff] [blame] | 2711 | /* The poller will ensure it returns around <next> */ |
Willy Tarreau | 2ae84e4 | 2019-05-28 16:44:05 +0200 | [diff] [blame] | 2712 | cur_poller.poll(&cur_poller, next, wake); |
Emeric Brun | 64cc49c | 2017-10-03 14:46:45 +0200 | [diff] [blame] | 2713 | |
Willy Tarreau | d80cb4e | 2018-01-20 19:30:13 +0100 | [diff] [blame] | 2714 | activity[tid].loops++; |
Willy Tarreau | 4f60f16 | 2007-04-08 16:39:58 +0200 | [diff] [blame] | 2715 | } |
| 2716 | } |
| 2717 | |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 2718 | static void *run_thread_poll_loop(void *data) |
| 2719 | { |
Willy Tarreau | 082b628 | 2019-05-22 14:42:12 +0200 | [diff] [blame] | 2720 | struct per_thread_alloc_fct *ptaf; |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 2721 | struct per_thread_init_fct *ptif; |
| 2722 | struct per_thread_deinit_fct *ptdf; |
Willy Tarreau | 082b628 | 2019-05-22 14:42:12 +0200 | [diff] [blame] | 2723 | struct per_thread_free_fct *ptff; |
Willy Tarreau | 34a150c | 2019-06-11 09:16:41 +0200 | [diff] [blame] | 2724 | static int init_left = 0; |
Willy Tarreau | af613e8 | 2020-06-05 08:40:51 +0200 | [diff] [blame] | 2725 | __decl_thread(static pthread_mutex_t init_mutex = PTHREAD_MUTEX_INITIALIZER); |
| 2726 | __decl_thread(static pthread_cond_t init_cond = PTHREAD_COND_INITIALIZER); |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 2727 | |
Willy Tarreau | b4f7cc3 | 2019-05-03 09:27:30 +0200 | [diff] [blame] | 2728 | ha_set_tid((unsigned long)data); |
Willy Tarreau | d022e9c | 2019-09-24 08:25:15 +0200 | [diff] [blame] | 2729 | sched = &task_per_thread[tid]; |
Willy Tarreau | 91e6df0 | 2019-05-03 17:21:18 +0200 | [diff] [blame] | 2730 | |
Willy Tarreau | f617824 | 2019-05-21 19:46:58 +0200 | [diff] [blame] | 2731 | #if (_POSIX_TIMERS > 0) && defined(_POSIX_THREAD_CPUTIME) |
Willy Tarreau | 91e6df0 | 2019-05-03 17:21:18 +0200 | [diff] [blame] | 2732 | #ifdef USE_THREAD |
Willy Tarreau | 8323a37 | 2019-05-20 18:57:53 +0200 | [diff] [blame] | 2733 | pthread_getcpuclockid(pthread_self(), &ti->clock_id); |
Willy Tarreau | 624dcbf | 2019-05-20 20:23:06 +0200 | [diff] [blame] | 2734 | #else |
Willy Tarreau | 8323a37 | 2019-05-20 18:57:53 +0200 | [diff] [blame] | 2735 | ti->clock_id = CLOCK_THREAD_CPUTIME_ID; |
Willy Tarreau | 91e6df0 | 2019-05-03 17:21:18 +0200 | [diff] [blame] | 2736 | #endif |
Willy Tarreau | 663fda4 | 2019-05-21 15:14:08 +0200 | [diff] [blame] | 2737 | #endif |
Willy Tarreau | 6ec902a | 2019-06-07 14:41:11 +0200 | [diff] [blame] | 2738 | /* Now, initialize one thread init at a time. This is better since |
| 2739 | * some init code is a bit tricky and may release global resources |
| 2740 | * after reallocating them locally. This will also ensure there is |
| 2741 | * no race on file descriptors allocation. |
| 2742 | */ |
Willy Tarreau | 34a150c | 2019-06-11 09:16:41 +0200 | [diff] [blame] | 2743 | #ifdef USE_THREAD |
| 2744 | pthread_mutex_lock(&init_mutex); |
| 2745 | #endif |
| 2746 | /* The first thread must set the number of threads left */ |
| 2747 | if (!init_left) |
| 2748 | init_left = global.nbthread; |
| 2749 | init_left--; |
Willy Tarreau | 91e6df0 | 2019-05-03 17:21:18 +0200 | [diff] [blame] | 2750 | |
Willy Tarreau | c4c80fb | 2021-04-11 15:00:34 +0200 | [diff] [blame] | 2751 | tv_init_thread_date(); |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 2752 | |
Willy Tarreau | 082b628 | 2019-05-22 14:42:12 +0200 | [diff] [blame] | 2753 | /* per-thread alloc calls performed here are not allowed to snoop on |
| 2754 | * other threads, so they are free to initialize at their own rhythm |
| 2755 | * as long as they act as if they were alone. None of them may rely |
| 2756 | * on resources initialized by the other ones. |
| 2757 | */ |
| 2758 | list_for_each_entry(ptaf, &per_thread_alloc_list, list) { |
| 2759 | if (!ptaf->fct()) { |
| 2760 | ha_alert("failed to allocate resources for thread %u.\n", tid); |
| 2761 | exit(1); |
| 2762 | } |
| 2763 | } |
| 2764 | |
Willy Tarreau | 3078e9f | 2019-05-20 10:50:43 +0200 | [diff] [blame] | 2765 | /* per-thread init calls performed here are not allowed to snoop on |
| 2766 | * other threads, so they are free to initialize at their own rhythm |
| 2767 | * as long as they act as if they were alone. |
| 2768 | */ |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 2769 | list_for_each_entry(ptif, &per_thread_init_list, list) { |
| 2770 | if (!ptif->fct()) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 2771 | ha_alert("failed to initialize thread %u.\n", tid); |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 2772 | exit(1); |
| 2773 | } |
| 2774 | } |
| 2775 | |
Willy Tarreau | 7109282 | 2019-06-10 09:51:04 +0200 | [diff] [blame] | 2776 | /* enabling protocols will result in fd_insert() calls to be performed, |
| 2777 | * we want all threads to have already allocated their local fd tables |
Willy Tarreau | 34a150c | 2019-06-11 09:16:41 +0200 | [diff] [blame] | 2778 | * before doing so, thus only the last thread does it. |
Willy Tarreau | 7109282 | 2019-06-10 09:51:04 +0200 | [diff] [blame] | 2779 | */ |
Willy Tarreau | 34a150c | 2019-06-11 09:16:41 +0200 | [diff] [blame] | 2780 | if (init_left == 0) |
Willy Tarreau | e4d7c9d | 2019-06-10 10:14:52 +0200 | [diff] [blame] | 2781 | protocol_enable_all(); |
Willy Tarreau | 6ec902a | 2019-06-07 14:41:11 +0200 | [diff] [blame] | 2782 | |
Willy Tarreau | 34a150c | 2019-06-11 09:16:41 +0200 | [diff] [blame] | 2783 | #ifdef USE_THREAD |
| 2784 | pthread_cond_broadcast(&init_cond); |
| 2785 | pthread_mutex_unlock(&init_mutex); |
| 2786 | |
| 2787 | /* now wait for other threads to finish starting */ |
| 2788 | pthread_mutex_lock(&init_mutex); |
| 2789 | while (init_left) |
| 2790 | pthread_cond_wait(&init_cond, &init_mutex); |
| 2791 | pthread_mutex_unlock(&init_mutex); |
| 2792 | #endif |
Willy Tarreau | 3078e9f | 2019-05-20 10:50:43 +0200 | [diff] [blame] | 2793 | |
Willy Tarreau | a45a8b5 | 2019-12-06 16:31:45 +0100 | [diff] [blame] | 2794 | #if defined(PR_SET_NO_NEW_PRIVS) && defined(USE_PRCTL) |
| 2795 | /* Let's refrain from using setuid executables. This way the impact of |
| 2796 | * an eventual vulnerability in a library remains limited. It may |
| 2797 | * impact external checks but who cares about them anyway ? In the |
| 2798 | * worst case it's possible to disable the option. Obviously we do this |
| 2799 | * in workers only. We can't hard-fail on this one as it really is |
| 2800 | * implementation dependent though we're interested in feedback, hence |
| 2801 | * the warning. |
| 2802 | */ |
| 2803 | if (!(global.tune.options & GTUNE_INSECURE_SETUID) && !master) { |
| 2804 | static int warn_fail; |
Willy Tarreau | 1851572 | 2021-04-06 11:57:41 +0200 | [diff] [blame] | 2805 | if (prctl(PR_SET_NO_NEW_PRIVS, 1, 0, 0, 0) == -1 && !_HA_ATOMIC_FETCH_ADD(&warn_fail, 1)) { |
Willy Tarreau | a45a8b5 | 2019-12-06 16:31:45 +0100 | [diff] [blame] | 2806 | ha_warning("Failed to disable setuid, please report to developers with detailed " |
| 2807 | "information about your operating system. You can silence this warning " |
| 2808 | "by adding 'insecure-setuid-wanted' in the 'global' section.\n"); |
| 2809 | } |
| 2810 | } |
| 2811 | #endif |
| 2812 | |
Willy Tarreau | d96f112 | 2019-12-03 07:07:36 +0100 | [diff] [blame] | 2813 | #if defined(RLIMIT_NPROC) |
| 2814 | /* all threads have started, it's now time to prevent any new thread |
| 2815 | * or process from starting. Obviously we do this in workers only. We |
| 2816 | * can't hard-fail on this one as it really is implementation dependent |
| 2817 | * though we're interested in feedback, hence the warning. |
| 2818 | */ |
| 2819 | if (!(global.tune.options & GTUNE_INSECURE_FORK) && !master) { |
| 2820 | struct rlimit limit = { .rlim_cur = 0, .rlim_max = 0 }; |
| 2821 | static int warn_fail; |
| 2822 | |
Willy Tarreau | 1851572 | 2021-04-06 11:57:41 +0200 | [diff] [blame] | 2823 | if (setrlimit(RLIMIT_NPROC, &limit) == -1 && !_HA_ATOMIC_FETCH_ADD(&warn_fail, 1)) { |
Willy Tarreau | d96f112 | 2019-12-03 07:07:36 +0100 | [diff] [blame] | 2824 | ha_warning("Failed to disable forks, please report to developers with detailed " |
| 2825 | "information about your operating system. You can silence this warning " |
| 2826 | "by adding 'insecure-fork-wanted' in the 'global' section.\n"); |
| 2827 | } |
| 2828 | } |
| 2829 | #endif |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 2830 | run_poll_loop(); |
| 2831 | |
| 2832 | list_for_each_entry(ptdf, &per_thread_deinit_list, list) |
| 2833 | ptdf->fct(); |
| 2834 | |
Willy Tarreau | 082b628 | 2019-05-22 14:42:12 +0200 | [diff] [blame] | 2835 | list_for_each_entry(ptff, &per_thread_free_list, list) |
| 2836 | ptff->fct(); |
| 2837 | |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 2838 | #ifdef USE_THREAD |
Olivier Houchard | b23a61f | 2019-03-08 18:51:17 +0100 | [diff] [blame] | 2839 | _HA_ATOMIC_AND(&all_threads_mask, ~tid_bit); |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 2840 | if (tid > 0) |
| 2841 | pthread_exit(NULL); |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 2842 | #endif |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 2843 | return NULL; |
| 2844 | } |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 2845 | |
William Dauchy | f9af9d7 | 2019-11-17 15:47:16 +0100 | [diff] [blame] | 2846 | /* set uid/gid depending on global settings */ |
| 2847 | static void set_identity(const char *program_name) |
| 2848 | { |
| 2849 | if (global.gid) { |
| 2850 | if (getgroups(0, NULL) > 0 && setgroups(0, NULL) == -1) |
| 2851 | ha_warning("[%s.main()] Failed to drop supplementary groups. Using 'gid'/'group'" |
| 2852 | " without 'uid'/'user' is generally useless.\n", program_name); |
| 2853 | |
| 2854 | if (setgid(global.gid) == -1) { |
| 2855 | ha_alert("[%s.main()] Cannot set gid %d.\n", program_name, global.gid); |
| 2856 | protocol_unbind_all(); |
| 2857 | exit(1); |
| 2858 | } |
| 2859 | } |
| 2860 | |
| 2861 | if (global.uid && setuid(global.uid) == -1) { |
| 2862 | ha_alert("[%s.main()] Cannot set uid %d.\n", program_name, global.uid); |
| 2863 | protocol_unbind_all(); |
| 2864 | exit(1); |
| 2865 | } |
| 2866 | } |
| 2867 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2868 | int main(int argc, char **argv) |
| 2869 | { |
| 2870 | int err, retry; |
| 2871 | struct rlimit limit; |
Willy Tarreau | 269ab31 | 2012-09-05 08:02:48 +0200 | [diff] [blame] | 2872 | int pidfd = -1; |
Willy Tarreau | 08293ed | 2021-07-14 17:54:01 +0200 | [diff] [blame] | 2873 | int intovf = (unsigned char)argc + 1; /* let the compiler know it's strictly positive */ |
| 2874 | |
Willy Tarreau | fa32d20 | 2022-07-21 09:55:22 +0200 | [diff] [blame] | 2875 | /* Catch broken toolchains */ |
| 2876 | if (sizeof(long) != sizeof(void *) || (intovf + 0x7FFFFFFF >= intovf)) { |
| 2877 | const char *msg; |
| 2878 | |
| 2879 | if (sizeof(long) != sizeof(void *)) |
| 2880 | /* Apparently MingW64 was not made for us and can also break openssl */ |
| 2881 | msg = "The compiler this program was built with uses unsupported integral type sizes.\n" |
| 2882 | "Most likely it follows the unsupported LLP64 model. Never try to link HAProxy\n" |
| 2883 | "against libraries built with that compiler either! Please only use a compiler\n" |
| 2884 | "producing ILP32 or LP64 programs for both programs and libraries.\n"; |
| 2885 | else if (intovf + 0x7FFFFFFF >= intovf) |
| 2886 | /* Catch forced CFLAGS that miss 2-complement integer overflow */ |
| 2887 | msg = "The source code was miscompiled by the compiler, which usually indicates that\n" |
| 2888 | "some of the CFLAGS needed to work around overzealous compiler optimizations\n" |
| 2889 | "were overwritten at build time. Please do not force CFLAGS, and read Makefile\n" |
| 2890 | "and INSTALL files to decide on the best way to pass your local build options.\n"; |
| 2891 | else |
| 2892 | msg = "Bug in the compiler bug detection code, please report it to developers!\n"; |
| 2893 | |
Willy Tarreau | 08293ed | 2021-07-14 17:54:01 +0200 | [diff] [blame] | 2894 | fprintf(stderr, |
| 2895 | "FATAL ERROR: invalid code detected -- cannot go further, please recompile!\n" |
Willy Tarreau | fa32d20 | 2022-07-21 09:55:22 +0200 | [diff] [blame] | 2896 | "%s" |
| 2897 | "\nBuild options :" |
Willy Tarreau | 08293ed | 2021-07-14 17:54:01 +0200 | [diff] [blame] | 2898 | #ifdef BUILD_TARGET |
Willy Tarreau | fa32d20 | 2022-07-21 09:55:22 +0200 | [diff] [blame] | 2899 | "\n TARGET = " BUILD_TARGET |
Willy Tarreau | 08293ed | 2021-07-14 17:54:01 +0200 | [diff] [blame] | 2900 | #endif |
| 2901 | #ifdef BUILD_CPU |
Willy Tarreau | fa32d20 | 2022-07-21 09:55:22 +0200 | [diff] [blame] | 2902 | "\n CPU = " BUILD_CPU |
Willy Tarreau | 08293ed | 2021-07-14 17:54:01 +0200 | [diff] [blame] | 2903 | #endif |
| 2904 | #ifdef BUILD_CC |
Willy Tarreau | fa32d20 | 2022-07-21 09:55:22 +0200 | [diff] [blame] | 2905 | "\n CC = " BUILD_CC |
Willy Tarreau | 08293ed | 2021-07-14 17:54:01 +0200 | [diff] [blame] | 2906 | #endif |
| 2907 | #ifdef BUILD_CFLAGS |
Willy Tarreau | fa32d20 | 2022-07-21 09:55:22 +0200 | [diff] [blame] | 2908 | "\n CFLAGS = " BUILD_CFLAGS |
Willy Tarreau | 08293ed | 2021-07-14 17:54:01 +0200 | [diff] [blame] | 2909 | #endif |
| 2910 | #ifdef BUILD_OPTIONS |
Willy Tarreau | fa32d20 | 2022-07-21 09:55:22 +0200 | [diff] [blame] | 2911 | "\n OPTIONS = " BUILD_OPTIONS |
Willy Tarreau | 08293ed | 2021-07-14 17:54:01 +0200 | [diff] [blame] | 2912 | #endif |
| 2913 | #ifdef BUILD_DEBUG |
Willy Tarreau | fa32d20 | 2022-07-21 09:55:22 +0200 | [diff] [blame] | 2914 | "\n DEBUG = " BUILD_DEBUG |
Willy Tarreau | 08293ed | 2021-07-14 17:54:01 +0200 | [diff] [blame] | 2915 | #endif |
Willy Tarreau | fa32d20 | 2022-07-21 09:55:22 +0200 | [diff] [blame] | 2916 | "\n\n", msg); |
| 2917 | |
Willy Tarreau | 08293ed | 2021-07-14 17:54:01 +0200 | [diff] [blame] | 2918 | return 1; |
| 2919 | } |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2920 | |
Olivier Houchard | 5fa300d | 2018-02-03 15:15:21 +0100 | [diff] [blame] | 2921 | setvbuf(stdout, NULL, _IONBF, 0); |
Willy Tarreau | 5794fb0 | 2018-11-25 18:43:29 +0100 | [diff] [blame] | 2922 | |
Willy Tarreau | ff9c914 | 2019-02-07 10:39:36 +0100 | [diff] [blame] | 2923 | /* this can only safely be done here, though it's optimized away by |
| 2924 | * the compiler. |
| 2925 | */ |
| 2926 | if (MAX_PROCS < 1 || MAX_PROCS > LONGBITS) { |
| 2927 | ha_alert("MAX_PROCS value must be between 1 and %d inclusive; " |
| 2928 | "HAProxy was built with value %d, please fix it and rebuild.\n", |
| 2929 | LONGBITS, MAX_PROCS); |
| 2930 | exit(1); |
| 2931 | } |
| 2932 | |
Willy Tarreau | bf69640 | 2019-03-01 10:09:28 +0100 | [diff] [blame] | 2933 | /* take a copy of initial limits before we possibly change them */ |
| 2934 | getrlimit(RLIMIT_NOFILE, &limit); |
Willy Tarreau | 2bd0f81 | 2020-10-13 15:36:08 +0200 | [diff] [blame] | 2935 | |
| 2936 | if (limit.rlim_max == RLIM_INFINITY) |
| 2937 | limit.rlim_max = limit.rlim_cur; |
Willy Tarreau | bf69640 | 2019-03-01 10:09:28 +0100 | [diff] [blame] | 2938 | rlim_fd_cur_at_boot = limit.rlim_cur; |
| 2939 | rlim_fd_max_at_boot = limit.rlim_max; |
| 2940 | |
Willy Tarreau | 5794fb0 | 2018-11-25 18:43:29 +0100 | [diff] [blame] | 2941 | /* process all initcalls in order of potential dependency */ |
| 2942 | RUN_INITCALLS(STG_PREPARE); |
| 2943 | RUN_INITCALLS(STG_LOCK); |
| 2944 | RUN_INITCALLS(STG_ALLOC); |
| 2945 | RUN_INITCALLS(STG_POOL); |
| 2946 | RUN_INITCALLS(STG_REGISTER); |
| 2947 | RUN_INITCALLS(STG_INIT); |
| 2948 | |
Emeric Brun | cf20bf1 | 2010-10-22 16:06:11 +0200 | [diff] [blame] | 2949 | init(argc, argv); |
Willy Tarreau | 24f4efa | 2010-08-27 17:56:48 +0200 | [diff] [blame] | 2950 | signal_register_fct(SIGQUIT, dump, SIGQUIT); |
| 2951 | signal_register_fct(SIGUSR1, sig_soft_stop, SIGUSR1); |
| 2952 | signal_register_fct(SIGHUP, sig_dump_state, SIGHUP); |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 2953 | signal_register_fct(SIGUSR2, NULL, 0); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2954 | |
Willy Tarreau | e437c44 | 2010-03-17 18:02:46 +0100 | [diff] [blame] | 2955 | /* Always catch SIGPIPE even on platforms which define MSG_NOSIGNAL. |
| 2956 | * Some recent FreeBSD setups report broken pipes, and MSG_NOSIGNAL |
| 2957 | * was defined there, so let's stay on the safe side. |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2958 | */ |
Willy Tarreau | 24f4efa | 2010-08-27 17:56:48 +0200 | [diff] [blame] | 2959 | signal_register_fct(SIGPIPE, NULL, 0); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 2960 | |
Willy Tarreau | dc23a92 | 2011-02-16 11:10:36 +0100 | [diff] [blame] | 2961 | /* ulimits */ |
| 2962 | if (!global.rlimit_nofile) |
| 2963 | global.rlimit_nofile = global.maxsock; |
| 2964 | |
| 2965 | if (global.rlimit_nofile) { |
Willy Tarreau | e5cfdac | 2019-03-01 10:32:05 +0100 | [diff] [blame] | 2966 | limit.rlim_cur = global.rlimit_nofile; |
| 2967 | limit.rlim_max = MAX(rlim_fd_max_at_boot, limit.rlim_cur); |
| 2968 | |
Willy Tarreau | dc23a92 | 2011-02-16 11:10:36 +0100 | [diff] [blame] | 2969 | if (setrlimit(RLIMIT_NOFILE, &limit) == -1) { |
Willy Tarreau | ef63547 | 2016-06-21 11:48:18 +0200 | [diff] [blame] | 2970 | getrlimit(RLIMIT_NOFILE, &limit); |
William Dauchy | 0fec3ab | 2019-10-27 20:08:11 +0100 | [diff] [blame] | 2971 | if (global.tune.options & GTUNE_STRICT_LIMITS) { |
| 2972 | ha_alert("[%s.main()] Cannot raise FD limit to %d, limit is %d.\n", |
| 2973 | argv[0], global.rlimit_nofile, (int)limit.rlim_cur); |
Jerome Magnin | 50f757c | 2021-01-12 20:19:38 +0100 | [diff] [blame] | 2974 | exit(1); |
William Dauchy | 0fec3ab | 2019-10-27 20:08:11 +0100 | [diff] [blame] | 2975 | } |
| 2976 | else { |
| 2977 | /* try to set it to the max possible at least */ |
| 2978 | limit.rlim_cur = limit.rlim_max; |
| 2979 | if (setrlimit(RLIMIT_NOFILE, &limit) != -1) |
| 2980 | getrlimit(RLIMIT_NOFILE, &limit); |
Willy Tarreau | 164dd0b | 2016-06-21 11:51:59 +0200 | [diff] [blame] | 2981 | |
William Dauchy | a519460 | 2020-03-28 19:29:58 +0100 | [diff] [blame] | 2982 | ha_warning("[%s.main()] Cannot raise FD limit to %d, limit is %d.\n", |
William Dauchy | 0fec3ab | 2019-10-27 20:08:11 +0100 | [diff] [blame] | 2983 | argv[0], global.rlimit_nofile, (int)limit.rlim_cur); |
| 2984 | global.rlimit_nofile = limit.rlim_cur; |
| 2985 | } |
Willy Tarreau | dc23a92 | 2011-02-16 11:10:36 +0100 | [diff] [blame] | 2986 | } |
| 2987 | } |
| 2988 | |
| 2989 | if (global.rlimit_memmax) { |
| 2990 | limit.rlim_cur = limit.rlim_max = |
Willy Tarreau | 7006045 | 2015-12-14 12:46:07 +0100 | [diff] [blame] | 2991 | global.rlimit_memmax * 1048576ULL; |
Willy Tarreau | dc23a92 | 2011-02-16 11:10:36 +0100 | [diff] [blame] | 2992 | #ifdef RLIMIT_AS |
| 2993 | if (setrlimit(RLIMIT_AS, &limit) == -1) { |
William Dauchy | 0fec3ab | 2019-10-27 20:08:11 +0100 | [diff] [blame] | 2994 | if (global.tune.options & GTUNE_STRICT_LIMITS) { |
| 2995 | ha_alert("[%s.main()] Cannot fix MEM limit to %d megs.\n", |
| 2996 | argv[0], global.rlimit_memmax); |
Jerome Magnin | 50f757c | 2021-01-12 20:19:38 +0100 | [diff] [blame] | 2997 | exit(1); |
William Dauchy | 0fec3ab | 2019-10-27 20:08:11 +0100 | [diff] [blame] | 2998 | } |
| 2999 | else |
William Dauchy | a519460 | 2020-03-28 19:29:58 +0100 | [diff] [blame] | 3000 | ha_warning("[%s.main()] Cannot fix MEM limit to %d megs.\n", |
William Dauchy | 0fec3ab | 2019-10-27 20:08:11 +0100 | [diff] [blame] | 3001 | argv[0], global.rlimit_memmax); |
Willy Tarreau | dc23a92 | 2011-02-16 11:10:36 +0100 | [diff] [blame] | 3002 | } |
| 3003 | #else |
| 3004 | if (setrlimit(RLIMIT_DATA, &limit) == -1) { |
William Dauchy | 0fec3ab | 2019-10-27 20:08:11 +0100 | [diff] [blame] | 3005 | if (global.tune.options & GTUNE_STRICT_LIMITS) { |
| 3006 | ha_alert("[%s.main()] Cannot fix MEM limit to %d megs.\n", |
| 3007 | argv[0], global.rlimit_memmax); |
Jerome Magnin | 50f757c | 2021-01-12 20:19:38 +0100 | [diff] [blame] | 3008 | exit(1); |
William Dauchy | 0fec3ab | 2019-10-27 20:08:11 +0100 | [diff] [blame] | 3009 | } |
| 3010 | else |
William Dauchy | a519460 | 2020-03-28 19:29:58 +0100 | [diff] [blame] | 3011 | ha_warning("[%s.main()] Cannot fix MEM limit to %d megs.\n", |
William Dauchy | 0fec3ab | 2019-10-27 20:08:11 +0100 | [diff] [blame] | 3012 | argv[0], global.rlimit_memmax); |
Willy Tarreau | dc23a92 | 2011-02-16 11:10:36 +0100 | [diff] [blame] | 3013 | } |
| 3014 | #endif |
| 3015 | } |
| 3016 | |
William Lallemand | 9993c17 | 2022-01-07 18:19:42 +0100 | [diff] [blame] | 3017 | /* Try to get the listeners FD from the previous process using |
| 3018 | * _getsocks on the stat socket, it must never been done in wait mode |
| 3019 | * and check mode |
| 3020 | */ |
| 3021 | if (old_unixsocket && |
| 3022 | !(global.mode & (MODE_MWORKER_WAIT|MODE_CHECK))) { |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 3023 | if (strcmp("/dev/null", old_unixsocket) != 0) { |
Willy Tarreau | 4296174 | 2020-08-28 18:42:45 +0200 | [diff] [blame] | 3024 | if (sock_get_old_sockets(old_unixsocket) != 0) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 3025 | ha_alert("Failed to get the sockets from the old process!\n"); |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 3026 | if (!(global.mode & MODE_MWORKER)) |
| 3027 | exit(1); |
| 3028 | } |
Olivier Houchard | f73629d | 2017-04-05 22:33:04 +0200 | [diff] [blame] | 3029 | } |
| 3030 | } |
William Lallemand | 85b0bd9 | 2017-06-01 17:38:53 +0200 | [diff] [blame] | 3031 | get_cur_unixsocket(); |
| 3032 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3033 | /* We will loop at most 100 times with 10 ms delay each time. |
| 3034 | * That's at most 1 second. We only send a signal to old pids |
| 3035 | * if we cannot grab at least one port. |
| 3036 | */ |
| 3037 | retry = MAX_START_RETRIES; |
| 3038 | err = ERR_NONE; |
| 3039 | while (retry >= 0) { |
| 3040 | struct timeval w; |
Willy Tarreau | e91bff2 | 2020-09-02 11:11:43 +0200 | [diff] [blame] | 3041 | err = protocol_bind_all(retry == 0 || nb_oldpids == 0); |
Willy Tarreau | e13e925 | 2007-12-20 23:05:50 +0100 | [diff] [blame] | 3042 | /* exit the loop on no error or fatal error */ |
| 3043 | if ((err & (ERR_RETRYABLE|ERR_FATAL)) != ERR_RETRYABLE) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3044 | break; |
Willy Tarreau | bb545b4 | 2010-08-25 12:58:59 +0200 | [diff] [blame] | 3045 | if (nb_oldpids == 0 || retry == 0) |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3046 | break; |
| 3047 | |
| 3048 | /* FIXME-20060514: Solaris and OpenBSD do not support shutdown() on |
| 3049 | * listening sockets. So on those platforms, it would be wiser to |
| 3050 | * simply send SIGUSR1, which will not be undoable. |
| 3051 | */ |
Willy Tarreau | bb545b4 | 2010-08-25 12:58:59 +0200 | [diff] [blame] | 3052 | if (tell_old_pids(SIGTTOU) == 0) { |
| 3053 | /* no need to wait if we can't contact old pids */ |
| 3054 | retry = 0; |
| 3055 | continue; |
| 3056 | } |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3057 | /* give some time to old processes to stop listening */ |
| 3058 | w.tv_sec = 0; |
| 3059 | w.tv_usec = 10*1000; |
| 3060 | select(0, NULL, NULL, NULL, &w); |
| 3061 | retry--; |
| 3062 | } |
| 3063 | |
Willy Tarreau | e91bff2 | 2020-09-02 11:11:43 +0200 | [diff] [blame] | 3064 | /* Note: protocol_bind_all() sends an alert when it fails. */ |
Willy Tarreau | 0a3b9d9 | 2009-02-04 17:05:23 +0100 | [diff] [blame] | 3065 | if ((err & ~ERR_WARN) != ERR_NONE) { |
Willy Tarreau | e91bff2 | 2020-09-02 11:11:43 +0200 | [diff] [blame] | 3066 | ha_alert("[%s.main()] Some protocols failed to start their listeners! Exiting.\n", argv[0]); |
Willy Tarreau | f68da46 | 2009-06-09 14:36:00 +0200 | [diff] [blame] | 3067 | if (retry != MAX_START_RETRIES && nb_oldpids) { |
| 3068 | protocol_unbind_all(); /* cleanup everything we can */ |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3069 | tell_old_pids(SIGTTIN); |
Willy Tarreau | f68da46 | 2009-06-09 14:36:00 +0200 | [diff] [blame] | 3070 | } |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3071 | exit(1); |
| 3072 | } |
| 3073 | |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3074 | if (!(global.mode & MODE_MWORKER_WAIT) && listeners == 0) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 3075 | ha_alert("[%s.main()] No enabled listener found (check for 'bind' directives) ! Exiting.\n", argv[0]); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3076 | /* Note: we don't have to send anything to the old pids because we |
| 3077 | * never stopped them. */ |
| 3078 | exit(1); |
| 3079 | } |
| 3080 | |
Willy Tarreau | e91bff2 | 2020-09-02 11:11:43 +0200 | [diff] [blame] | 3081 | /* Ok, all listeners should now be bound, close any leftover sockets |
Olivier Houchard | f73629d | 2017-04-05 22:33:04 +0200 | [diff] [blame] | 3082 | * the previous process gave us, we don't need them anymore |
| 3083 | */ |
Willy Tarreau | 9f77576 | 2022-01-28 18:28:18 +0100 | [diff] [blame] | 3084 | sock_drop_unused_old_sockets(); |
Willy Tarreau | dd81598 | 2007-10-16 12:25:14 +0200 | [diff] [blame] | 3085 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3086 | /* prepare pause/play signals */ |
Willy Tarreau | 24f4efa | 2010-08-27 17:56:48 +0200 | [diff] [blame] | 3087 | signal_register_fct(SIGTTOU, sig_pause, SIGTTOU); |
| 3088 | signal_register_fct(SIGTTIN, sig_listen, SIGTTIN); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3089 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3090 | /* MODE_QUIET can inhibit alerts and warnings below this line */ |
| 3091 | |
PiBa-NL | 149a81a | 2017-12-25 21:03:31 +0100 | [diff] [blame] | 3092 | if (getenv("HAPROXY_MWORKER_REEXEC") != NULL) { |
| 3093 | /* either stdin/out/err are already closed or should stay as they are. */ |
| 3094 | if ((global.mode & MODE_DAEMON)) { |
| 3095 | /* daemon mode re-executing, stdin/stdout/stderr are already closed so keep quiet */ |
| 3096 | global.mode &= ~MODE_VERBOSE; |
| 3097 | global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */ |
| 3098 | } |
| 3099 | } else { |
| 3100 | if ((global.mode & MODE_QUIET) && !(global.mode & MODE_VERBOSE)) { |
| 3101 | /* detach from the tty */ |
William Lallemand | e134041 | 2017-12-28 16:09:36 +0100 | [diff] [blame] | 3102 | stdio_quiet(-1); |
PiBa-NL | 149a81a | 2017-12-25 21:03:31 +0100 | [diff] [blame] | 3103 | } |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3104 | } |
| 3105 | |
| 3106 | /* open log & pid files before the chroot */ |
William Lallemand | 7af8e1d | 2022-02-14 09:02:14 +0100 | [diff] [blame] | 3107 | if ((global.mode & MODE_DAEMON || global.mode & MODE_MWORKER) && |
| 3108 | !(global.mode & MODE_MWORKER_WAIT) && global.pidfile != NULL) { |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3109 | unlink(global.pidfile); |
| 3110 | pidfd = open(global.pidfile, O_CREAT | O_WRONLY | O_TRUNC, 0644); |
| 3111 | if (pidfd < 0) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 3112 | ha_alert("[%s.main()] Cannot create pidfile %s\n", argv[0], global.pidfile); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3113 | if (nb_oldpids) |
| 3114 | tell_old_pids(SIGTTIN); |
Willy Tarreau | dd81598 | 2007-10-16 12:25:14 +0200 | [diff] [blame] | 3115 | protocol_unbind_all(); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3116 | exit(1); |
| 3117 | } |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3118 | } |
| 3119 | |
Willy Tarreau | b38651a | 2007-03-24 17:24:39 +0100 | [diff] [blame] | 3120 | if ((global.last_checks & LSTCHK_NETADM) && global.uid) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 3121 | ha_alert("[%s.main()] Some configuration options require full privileges, so global.uid cannot be changed.\n" |
| 3122 | "", argv[0]); |
Willy Tarreau | dd81598 | 2007-10-16 12:25:14 +0200 | [diff] [blame] | 3123 | protocol_unbind_all(); |
Willy Tarreau | b38651a | 2007-03-24 17:24:39 +0100 | [diff] [blame] | 3124 | exit(1); |
| 3125 | } |
| 3126 | |
Jackie Tapia | 749f74c | 2020-07-22 18:59:40 -0500 | [diff] [blame] | 3127 | /* If the user is not root, we'll still let them try the configuration |
| 3128 | * but we inform them that unexpected behaviour may occur. |
Willy Tarreau | 4e30ed7 | 2009-02-04 18:02:48 +0100 | [diff] [blame] | 3129 | */ |
| 3130 | if ((global.last_checks & LSTCHK_NETADM) && getuid()) |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 3131 | ha_warning("[%s.main()] Some options which require full privileges" |
| 3132 | " might not work well.\n" |
| 3133 | "", argv[0]); |
Willy Tarreau | 4e30ed7 | 2009-02-04 18:02:48 +0100 | [diff] [blame] | 3134 | |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 3135 | if ((global.mode & (MODE_MWORKER|MODE_DAEMON)) == 0) { |
| 3136 | |
| 3137 | /* chroot if needed */ |
| 3138 | if (global.chroot != NULL) { |
| 3139 | if (chroot(global.chroot) == -1 || chdir("/") == -1) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 3140 | ha_alert("[%s.main()] Cannot chroot(%s).\n", argv[0], global.chroot); |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 3141 | if (nb_oldpids) |
| 3142 | tell_old_pids(SIGTTIN); |
| 3143 | protocol_unbind_all(); |
| 3144 | exit(1); |
| 3145 | } |
Willy Tarreau | f223cc0 | 2007-10-15 18:57:08 +0200 | [diff] [blame] | 3146 | } |
Willy Tarreau | f223cc0 | 2007-10-15 18:57:08 +0200 | [diff] [blame] | 3147 | } |
| 3148 | |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3149 | if (nb_oldpids && !(global.mode & MODE_MWORKER_WAIT)) |
Willy Tarreau | bb545b4 | 2010-08-25 12:58:59 +0200 | [diff] [blame] | 3150 | nb_oldpids = tell_old_pids(oldpids_sig); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3151 | |
William Lallemand | 27edc4b | 2019-05-07 17:49:33 +0200 | [diff] [blame] | 3152 | /* send a SIGTERM to workers who have a too high reloads number */ |
| 3153 | if ((global.mode & MODE_MWORKER) && !(global.mode & MODE_MWORKER_WAIT)) |
| 3154 | mworker_kill_max_reloads(SIGTERM); |
| 3155 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3156 | /* Note that any error at this stage will be fatal because we will not |
| 3157 | * be able to restart the old pids. |
| 3158 | */ |
| 3159 | |
William Dauchy | f9af9d7 | 2019-11-17 15:47:16 +0100 | [diff] [blame] | 3160 | if ((global.mode & (MODE_MWORKER | MODE_DAEMON)) == 0) |
| 3161 | set_identity(argv[0]); |
Willy Tarreau | 636848a | 2019-04-15 19:38:50 +0200 | [diff] [blame] | 3162 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3163 | /* check ulimits */ |
| 3164 | limit.rlim_cur = limit.rlim_max = 0; |
| 3165 | getrlimit(RLIMIT_NOFILE, &limit); |
| 3166 | if (limit.rlim_cur < global.maxsock) { |
William Dauchy | 0fec3ab | 2019-10-27 20:08:11 +0100 | [diff] [blame] | 3167 | if (global.tune.options & GTUNE_STRICT_LIMITS) { |
| 3168 | ha_alert("[%s.main()] FD limit (%d) too low for maxconn=%d/maxsock=%d. " |
| 3169 | "Please raise 'ulimit-n' to %d or more to avoid any trouble.\n", |
| 3170 | argv[0], (int)limit.rlim_cur, global.maxconn, global.maxsock, |
| 3171 | global.maxsock); |
Jerome Magnin | 50f757c | 2021-01-12 20:19:38 +0100 | [diff] [blame] | 3172 | exit(1); |
William Dauchy | 0fec3ab | 2019-10-27 20:08:11 +0100 | [diff] [blame] | 3173 | } |
| 3174 | else |
| 3175 | ha_alert("[%s.main()] FD limit (%d) too low for maxconn=%d/maxsock=%d. " |
William Dauchy | a519460 | 2020-03-28 19:29:58 +0100 | [diff] [blame] | 3176 | "Please raise 'ulimit-n' to %d or more to avoid any trouble.\n", |
William Dauchy | 0fec3ab | 2019-10-27 20:08:11 +0100 | [diff] [blame] | 3177 | argv[0], (int)limit.rlim_cur, global.maxconn, global.maxsock, |
| 3178 | global.maxsock); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3179 | } |
| 3180 | |
Willy Tarreau | c690ca4 | 2023-05-17 09:02:21 +0200 | [diff] [blame] | 3181 | /* update the ready date a last time to also account for final setup time */ |
Willy Tarreau | ef0d92d | 2023-05-17 15:15:26 +0200 | [diff] [blame] | 3182 | gettimeofday(&date, NULL); |
Willy Tarreau | c690ca4 | 2023-05-17 09:02:21 +0200 | [diff] [blame] | 3183 | ready_date = date; |
| 3184 | |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3185 | if (global.mode & (MODE_DAEMON | MODE_MWORKER | MODE_MWORKER_WAIT)) { |
Willy Tarreau | 0b9c02c | 2009-02-04 22:05:05 +0100 | [diff] [blame] | 3186 | struct proxy *px; |
Willy Tarreau | f83d3fe | 2015-05-01 19:13:41 +0200 | [diff] [blame] | 3187 | struct peers *curpeers; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3188 | int ret = 0; |
| 3189 | int proc; |
William Lallemand | e134041 | 2017-12-28 16:09:36 +0100 | [diff] [blame] | 3190 | int devnullfd = -1; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3191 | |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 3192 | /* |
| 3193 | * if daemon + mworker: must fork here to let a master |
| 3194 | * process live in background before forking children |
| 3195 | */ |
William Lallemand | 73b85e7 | 2017-06-01 17:38:51 +0200 | [diff] [blame] | 3196 | |
| 3197 | if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL) |
| 3198 | && (global.mode & MODE_MWORKER) |
| 3199 | && (global.mode & MODE_DAEMON)) { |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 3200 | ret = fork(); |
| 3201 | if (ret < 0) { |
Christopher Faulet | 767a84b | 2017-11-24 16:50:31 +0100 | [diff] [blame] | 3202 | ha_alert("[%s.main()] Cannot fork.\n", argv[0]); |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 3203 | protocol_unbind_all(); |
| 3204 | exit(1); /* there has been an error */ |
William Lallemand | bfd8eb5 | 2018-07-04 15:31:23 +0200 | [diff] [blame] | 3205 | } else if (ret > 0) { /* parent leave to daemonize */ |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 3206 | exit(0); |
William Lallemand | bfd8eb5 | 2018-07-04 15:31:23 +0200 | [diff] [blame] | 3207 | } else /* change the process group ID in the child (master process) */ |
| 3208 | setsid(); |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 3209 | } |
William Lallemand | e20b6a6 | 2017-06-01 17:38:55 +0200 | [diff] [blame] | 3210 | |
William Lallemand | e20b6a6 | 2017-06-01 17:38:55 +0200 | [diff] [blame] | 3211 | |
William Lallemand | deed780 | 2017-11-06 11:00:04 +0100 | [diff] [blame] | 3212 | /* if in master-worker mode, write the PID of the father */ |
| 3213 | if (global.mode & MODE_MWORKER) { |
| 3214 | char pidstr[100]; |
Willy Tarreau | 76a80c7 | 2019-06-22 07:41:38 +0200 | [diff] [blame] | 3215 | snprintf(pidstr, sizeof(pidstr), "%d\n", (int)getpid()); |
Willy Tarreau | 46ec48b | 2018-01-23 19:20:19 +0100 | [diff] [blame] | 3216 | if (pidfd >= 0) |
Willy Tarreau | 2e8ab6b | 2020-03-14 11:03:20 +0100 | [diff] [blame] | 3217 | DISGUISE(write(pidfd, pidstr, strlen(pidstr))); |
William Lallemand | deed780 | 2017-11-06 11:00:04 +0100 | [diff] [blame] | 3218 | } |
| 3219 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3220 | /* the father launches the required number of processes */ |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3221 | if (!(global.mode & MODE_MWORKER_WAIT)) { |
William Lallemand | 9a1ee7a | 2019-04-01 11:30:02 +0200 | [diff] [blame] | 3222 | if (global.mode & MODE_MWORKER) |
| 3223 | mworker_ext_launch_all(); |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3224 | for (proc = 0; proc < global.nbproc; proc++) { |
| 3225 | ret = fork(); |
| 3226 | if (ret < 0) { |
| 3227 | ha_alert("[%s.main()] Cannot fork.\n", argv[0]); |
| 3228 | protocol_unbind_all(); |
| 3229 | exit(1); /* there has been an error */ |
| 3230 | } |
Willy Tarreau | 52bf839 | 2020-03-08 00:42:37 +0100 | [diff] [blame] | 3231 | else if (ret == 0) { /* child breaks here */ |
Willy Tarreau | a9274a1 | 2021-07-21 10:17:02 +0200 | [diff] [blame] | 3232 | /* This one must not be exported, it's internal! */ |
| 3233 | unsetenv("HAPROXY_MWORKER_REEXEC"); |
Willy Tarreau | 52bf839 | 2020-03-08 00:42:37 +0100 | [diff] [blame] | 3234 | ha_random_jump96(relative_pid); |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3235 | break; |
Willy Tarreau | 52bf839 | 2020-03-08 00:42:37 +0100 | [diff] [blame] | 3236 | } |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3237 | if (pidfd >= 0 && !(global.mode & MODE_MWORKER)) { |
| 3238 | char pidstr[100]; |
| 3239 | snprintf(pidstr, sizeof(pidstr), "%d\n", ret); |
Willy Tarreau | 2e8ab6b | 2020-03-14 11:03:20 +0100 | [diff] [blame] | 3240 | DISGUISE(write(pidfd, pidstr, strlen(pidstr))); |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3241 | } |
| 3242 | if (global.mode & MODE_MWORKER) { |
| 3243 | struct mworker_proc *child; |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 3244 | |
William Lallemand | 220567e | 2018-11-21 18:04:53 +0100 | [diff] [blame] | 3245 | ha_notice("New worker #%d (%d) forked\n", relative_pid, ret); |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3246 | /* find the right mworker_proc */ |
| 3247 | list_for_each_entry(child, &proc_list, list) { |
| 3248 | if (child->relative_pid == relative_pid && |
William Lallemand | 7768c2d | 2022-07-21 00:52:43 +0200 | [diff] [blame] | 3249 | child->reloads == 0 && child->options & PROC_O_TYPE_WORKER && |
| 3250 | child->pid == -1) { |
William Lallemand | 512df05 | 2023-02-17 16:23:52 +0100 | [diff] [blame] | 3251 | child->timestamp = date.tv_sec; |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3252 | child->pid = ret; |
William Lallemand | 1dc6963 | 2019-06-12 19:11:33 +0200 | [diff] [blame] | 3253 | child->version = strdup(haproxy_version); |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3254 | break; |
| 3255 | } |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 3256 | } |
| 3257 | } |
William Lallemand | bc19305 | 2018-09-11 10:06:26 +0200 | [diff] [blame] | 3258 | |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3259 | relative_pid++; /* each child will get a different one */ |
| 3260 | pid_bit <<= 1; |
| 3261 | } |
| 3262 | } else { |
| 3263 | /* wait mode */ |
| 3264 | global.nbproc = 1; |
| 3265 | proc = 1; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3266 | } |
Willy Tarreau | fc6c032 | 2012-11-16 16:12:27 +0100 | [diff] [blame] | 3267 | |
| 3268 | #ifdef USE_CPU_AFFINITY |
| 3269 | if (proc < global.nbproc && /* child */ |
Willy Tarreau | ff9c914 | 2019-02-07 10:39:36 +0100 | [diff] [blame] | 3270 | proc < MAX_PROCS && /* only the first 32/64 processes may be pinned */ |
Amaury Denoyelle | fc6ac53 | 2021-04-27 10:46:36 +0200 | [diff] [blame] | 3271 | ha_cpuset_count(&cpu_map.proc[proc])) { /* only do this if the process has a CPU map */ |
Olivier Houchard | 97148f6 | 2017-08-16 17:29:11 +0200 | [diff] [blame] | 3272 | |
Amaury Denoyelle | 982fb53 | 2021-04-21 18:39:58 +0200 | [diff] [blame] | 3273 | #ifdef __FreeBSD__ |
Amaury Denoyelle | fc6ac53 | 2021-04-27 10:46:36 +0200 | [diff] [blame] | 3274 | struct hap_cpuset *set = &cpu_map.proc[proc]; |
Amaury Denoyelle | 982fb53 | 2021-04-21 18:39:58 +0200 | [diff] [blame] | 3275 | ret = cpuset_setaffinity(CPU_LEVEL_WHICH, CPU_WHICH_PID, -1, sizeof(set->cpuset), &set->cpuset); |
David Carlier | 2d0493a | 2020-12-02 21:14:51 +0000 | [diff] [blame] | 3276 | #elif defined(__linux__) || defined(__DragonFly__) |
Amaury Denoyelle | fc6ac53 | 2021-04-27 10:46:36 +0200 | [diff] [blame] | 3277 | struct hap_cpuset *set = &cpu_map.proc[proc]; |
Amaury Denoyelle | 982fb53 | 2021-04-21 18:39:58 +0200 | [diff] [blame] | 3278 | sched_setaffinity(0, sizeof(set->cpuset), &set->cpuset); |
Willy Tarreau | fc6c032 | 2012-11-16 16:12:27 +0100 | [diff] [blame] | 3279 | #endif |
Amaury Denoyelle | 982fb53 | 2021-04-21 18:39:58 +0200 | [diff] [blame] | 3280 | } |
Pieter Baauw | caa6a1b | 2015-09-17 21:26:40 +0200 | [diff] [blame] | 3281 | #endif |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3282 | /* close the pidfile both in children and father */ |
Willy Tarreau | 269ab31 | 2012-09-05 08:02:48 +0200 | [diff] [blame] | 3283 | if (pidfd >= 0) { |
| 3284 | //lseek(pidfd, 0, SEEK_SET); /* debug: emulate eglibc bug */ |
| 3285 | close(pidfd); |
| 3286 | } |
Willy Tarreau | d137dd3 | 2010-08-25 12:49:05 +0200 | [diff] [blame] | 3287 | |
| 3288 | /* We won't ever use this anymore */ |
Willy Tarreau | 61cfdf4 | 2021-02-20 10:46:51 +0100 | [diff] [blame] | 3289 | ha_free(&global.pidfile); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3290 | |
Willy Tarreau | edaff0a | 2015-05-01 17:01:08 +0200 | [diff] [blame] | 3291 | if (proc == global.nbproc) { |
William Lallemand | 944e619 | 2018-11-21 15:48:31 +0100 | [diff] [blame] | 3292 | if (global.mode & (MODE_MWORKER|MODE_MWORKER_WAIT)) { |
PiBa-NL | baf6ea4 | 2017-11-28 23:26:08 +0100 | [diff] [blame] | 3293 | |
| 3294 | if ((!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE)) && |
| 3295 | (global.mode & MODE_DAEMON)) { |
| 3296 | /* detach from the tty, this is required to properly daemonize. */ |
William Lallemand | e134041 | 2017-12-28 16:09:36 +0100 | [diff] [blame] | 3297 | if ((getenv("HAPROXY_MWORKER_REEXEC") == NULL)) |
| 3298 | stdio_quiet(-1); |
| 3299 | |
PiBa-NL | baf6ea4 | 2017-11-28 23:26:08 +0100 | [diff] [blame] | 3300 | global.mode &= ~MODE_VERBOSE; |
| 3301 | global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */ |
PiBa-NL | baf6ea4 | 2017-11-28 23:26:08 +0100 | [diff] [blame] | 3302 | } |
| 3303 | |
William Lallemand | b3f2be3 | 2018-09-11 10:06:18 +0200 | [diff] [blame] | 3304 | mworker_loop(); |
William Lallemand | 1499b9b | 2017-06-07 15:04:47 +0200 | [diff] [blame] | 3305 | /* should never get there */ |
| 3306 | exit(EXIT_FAILURE); |
Willy Tarreau | edaff0a | 2015-05-01 17:01:08 +0200 | [diff] [blame] | 3307 | } |
William Lallemand | cf4e496 | 2017-06-08 19:05:48 +0200 | [diff] [blame] | 3308 | #if defined(USE_OPENSSL) && !defined(OPENSSL_NO_DH) |
Grant Zhang | 872f9c2 | 2017-01-21 01:10:18 +0000 | [diff] [blame] | 3309 | ssl_free_dh(); |
| 3310 | #endif |
William Lallemand | 1499b9b | 2017-06-07 15:04:47 +0200 | [diff] [blame] | 3311 | exit(0); /* parent must leave */ |
Willy Tarreau | edaff0a | 2015-05-01 17:01:08 +0200 | [diff] [blame] | 3312 | } |
| 3313 | |
William Lallemand | cb11fd2 | 2017-06-01 17:38:52 +0200 | [diff] [blame] | 3314 | /* child must never use the atexit function */ |
| 3315 | atexit_flag = 0; |
| 3316 | |
William Lallemand | bc19305 | 2018-09-11 10:06:26 +0200 | [diff] [blame] | 3317 | /* close useless master sockets */ |
| 3318 | if (global.mode & MODE_MWORKER) { |
| 3319 | struct mworker_proc *child, *it; |
| 3320 | master = 0; |
| 3321 | |
William Lallemand | 309dc9a | 2018-10-26 14:47:45 +0200 | [diff] [blame] | 3322 | mworker_cli_proxy_stop(); |
| 3323 | |
William Lallemand | bc19305 | 2018-09-11 10:06:26 +0200 | [diff] [blame] | 3324 | /* free proc struct of other processes */ |
| 3325 | list_for_each_entry_safe(child, it, &proc_list, list) { |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 3326 | /* close the FD of the master side for all |
| 3327 | * workers, we don't need to close the worker |
| 3328 | * side of other workers since it's done with |
| 3329 | * the bind_proc */ |
Tim Duesterhus | 742e0f9 | 2018-11-25 20:03:39 +0100 | [diff] [blame] | 3330 | if (child->ipc_fd[0] >= 0) |
| 3331 | close(child->ipc_fd[0]); |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 3332 | if (child->relative_pid == relative_pid && |
William Lallemand | 7768c2d | 2022-07-21 00:52:43 +0200 | [diff] [blame] | 3333 | child->reloads == 0 && |
| 3334 | child->pid == -1) { |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 3335 | /* keep this struct if this is our pid */ |
| 3336 | proc_self = child; |
William Lallemand | bc19305 | 2018-09-11 10:06:26 +0200 | [diff] [blame] | 3337 | continue; |
William Lallemand | ce83b4a | 2018-10-26 14:47:30 +0200 | [diff] [blame] | 3338 | } |
Willy Tarreau | 2b71810 | 2021-04-21 07:32:39 +0200 | [diff] [blame] | 3339 | LIST_DELETE(&child->list); |
Tim Duesterhus | 9b7a976 | 2019-05-16 20:23:22 +0200 | [diff] [blame] | 3340 | mworker_free_child(child); |
| 3341 | child = NULL; |
William Lallemand | bc19305 | 2018-09-11 10:06:26 +0200 | [diff] [blame] | 3342 | } |
| 3343 | } |
Willy Tarreau | 1605c7a | 2018-01-23 19:01:49 +0100 | [diff] [blame] | 3344 | |
William Lallemand | e134041 | 2017-12-28 16:09:36 +0100 | [diff] [blame] | 3345 | if (!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE)) { |
| 3346 | devnullfd = open("/dev/null", O_RDWR, 0); |
| 3347 | if (devnullfd < 0) { |
| 3348 | ha_alert("Cannot open /dev/null\n"); |
| 3349 | exit(EXIT_FAILURE); |
| 3350 | } |
| 3351 | } |
| 3352 | |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 3353 | /* Must chroot and setgid/setuid in the children */ |
| 3354 | /* chroot if needed */ |
| 3355 | if (global.chroot != NULL) { |
| 3356 | if (chroot(global.chroot) == -1 || chdir("/") == -1) { |
Willy Tarreau | 4631737 | 2021-06-15 08:59:19 +0200 | [diff] [blame] | 3357 | ha_alert("[%s.main()] Cannot chroot(%s).\n", argv[0], global.chroot); |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 3358 | if (nb_oldpids) |
| 3359 | tell_old_pids(SIGTTIN); |
| 3360 | protocol_unbind_all(); |
| 3361 | exit(1); |
| 3362 | } |
| 3363 | } |
| 3364 | |
Willy Tarreau | 61cfdf4 | 2021-02-20 10:46:51 +0100 | [diff] [blame] | 3365 | ha_free(&global.chroot); |
William Dauchy | f9af9d7 | 2019-11-17 15:47:16 +0100 | [diff] [blame] | 3366 | set_identity(argv[0]); |
William Lallemand | 095ba4c | 2017-06-01 17:38:50 +0200 | [diff] [blame] | 3367 | |
William Lallemand | 7f80eb2 | 2017-05-26 18:19:55 +0200 | [diff] [blame] | 3368 | |
Willy Tarreau | 0b9c02c | 2009-02-04 22:05:05 +0100 | [diff] [blame] | 3369 | /* we might have to unbind some proxies from some processes */ |
Olivier Houchard | fbc74e8 | 2017-11-24 16:54:05 +0100 | [diff] [blame] | 3370 | px = proxies_list; |
Willy Tarreau | 0b9c02c | 2009-02-04 22:05:05 +0100 | [diff] [blame] | 3371 | while (px != NULL) { |
Willy Tarreau | c3914d4 | 2020-09-24 08:39:22 +0200 | [diff] [blame] | 3372 | if (px->bind_proc && !px->disabled) { |
Willy Tarreau | 337c835 | 2020-09-24 10:51:29 +0200 | [diff] [blame] | 3373 | if (!(px->bind_proc & (1UL << proc))) |
| 3374 | stop_proxy(px); |
Willy Tarreau | 0b9c02c | 2009-02-04 22:05:05 +0100 | [diff] [blame] | 3375 | } |
| 3376 | px = px->next; |
| 3377 | } |
| 3378 | |
Emeric Brun | c47ba59 | 2020-10-07 10:13:10 +0200 | [diff] [blame] | 3379 | /* we might have to unbind some log forward proxies from some processes */ |
| 3380 | px = cfg_log_forward; |
| 3381 | while (px != NULL) { |
Willy Tarreau | c3914d4 | 2020-09-24 08:39:22 +0200 | [diff] [blame] | 3382 | if (px->bind_proc && !px->disabled) { |
Willy Tarreau | 337c835 | 2020-09-24 10:51:29 +0200 | [diff] [blame] | 3383 | if (!(px->bind_proc & (1UL << proc))) |
| 3384 | stop_proxy(px); |
Emeric Brun | c47ba59 | 2020-10-07 10:13:10 +0200 | [diff] [blame] | 3385 | } |
| 3386 | px = px->next; |
| 3387 | } |
| 3388 | |
Willy Tarreau | f83d3fe | 2015-05-01 19:13:41 +0200 | [diff] [blame] | 3389 | /* we might have to unbind some peers sections from some processes */ |
Frédéric Lécaille | ed2b4a6 | 2017-07-13 09:07:09 +0200 | [diff] [blame] | 3390 | for (curpeers = cfg_peers; curpeers; curpeers = curpeers->next) { |
Willy Tarreau | f83d3fe | 2015-05-01 19:13:41 +0200 | [diff] [blame] | 3391 | if (!curpeers->peers_fe) |
| 3392 | continue; |
| 3393 | |
| 3394 | if (curpeers->peers_fe->bind_proc & (1UL << proc)) |
| 3395 | continue; |
| 3396 | |
| 3397 | stop_proxy(curpeers->peers_fe); |
| 3398 | /* disable this peer section so that it kills itself */ |
Willy Tarreau | 47c8c02 | 2015-09-28 16:39:25 +0200 | [diff] [blame] | 3399 | signal_unregister_handler(curpeers->sighandler); |
Olivier Houchard | 3f795f7 | 2019-04-17 22:51:06 +0200 | [diff] [blame] | 3400 | task_destroy(curpeers->sync_task); |
Willy Tarreau | 47c8c02 | 2015-09-28 16:39:25 +0200 | [diff] [blame] | 3401 | curpeers->sync_task = NULL; |
Olivier Houchard | 3f795f7 | 2019-04-17 22:51:06 +0200 | [diff] [blame] | 3402 | task_destroy(curpeers->peers_fe->task); |
Willy Tarreau | 47c8c02 | 2015-09-28 16:39:25 +0200 | [diff] [blame] | 3403 | curpeers->peers_fe->task = NULL; |
Willy Tarreau | f83d3fe | 2015-05-01 19:13:41 +0200 | [diff] [blame] | 3404 | curpeers->peers_fe = NULL; |
| 3405 | } |
| 3406 | |
William Lallemand | 2e8fad9 | 2018-11-13 16:18:23 +0100 | [diff] [blame] | 3407 | /* |
| 3408 | * This is only done in daemon mode because we might want the |
| 3409 | * logs on stdout in mworker mode. If we're NOT in QUIET mode, |
| 3410 | * we should now close the 3 first FDs to ensure that we can |
| 3411 | * detach from the TTY. We MUST NOT do it in other cases since |
| 3412 | * it would have already be done, and 0-2 would have been |
| 3413 | * affected to listening sockets |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3414 | */ |
William Lallemand | 2e8fad9 | 2018-11-13 16:18:23 +0100 | [diff] [blame] | 3415 | if ((global.mode & MODE_DAEMON) && |
| 3416 | (!(global.mode & MODE_QUIET) || (global.mode & MODE_VERBOSE))) { |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3417 | /* detach from the tty */ |
William Lallemand | e134041 | 2017-12-28 16:09:36 +0100 | [diff] [blame] | 3418 | stdio_quiet(devnullfd); |
Willy Tarreau | 106cb76 | 2008-11-16 07:40:34 +0100 | [diff] [blame] | 3419 | global.mode &= ~MODE_VERBOSE; |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3420 | global.mode |= MODE_QUIET; /* ensure that we won't say anything from now */ |
| 3421 | } |
| 3422 | pid = getpid(); /* update child's pid */ |
William Lallemand | bfd8eb5 | 2018-07-04 15:31:23 +0200 | [diff] [blame] | 3423 | if (!(global.mode & MODE_MWORKER)) /* in mworker mode we don't want a new pgid for the children */ |
| 3424 | setsid(); |
Willy Tarreau | 2ff7622 | 2007-04-09 19:29:56 +0200 | [diff] [blame] | 3425 | fork_poller(); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3426 | } |
| 3427 | |
William Lallemand | def2f95 | 2023-11-20 10:49:05 +0100 | [diff] [blame] | 3428 | /* pass through every cli socket, and check if it's bound to |
| 3429 | * the current process and if it exposes listeners sockets. |
| 3430 | * Caution: the GTUNE_SOCKET_TRANSFER is now set after the fork. |
| 3431 | * */ |
| 3432 | |
| 3433 | if (global.cli_fe) { |
| 3434 | struct bind_conf *bind_conf; |
| 3435 | |
| 3436 | list_for_each_entry(bind_conf, &global.cli_fe->conf.bind, by_fe) { |
| 3437 | if (bind_conf->level & ACCESS_FD_LISTENERS) { |
| 3438 | if (!bind_conf->settings.bind_proc || bind_conf->settings.bind_proc & pid_bit) { |
| 3439 | global.tune.options |= GTUNE_SOCKET_TRANSFER; |
| 3440 | break; |
| 3441 | } |
| 3442 | } |
| 3443 | } |
| 3444 | } |
| 3445 | |
William Dauchy | e039f26 | 2019-11-17 15:47:15 +0100 | [diff] [blame] | 3446 | /* try our best to re-enable core dumps depending on system capabilities. |
| 3447 | * What is addressed here : |
| 3448 | * - remove file size limits |
| 3449 | * - remove core size limits |
| 3450 | * - mark the process dumpable again if it lost it due to user/group |
| 3451 | */ |
| 3452 | if (global.tune.options & GTUNE_SET_DUMPABLE) { |
| 3453 | limit.rlim_cur = limit.rlim_max = RLIM_INFINITY; |
| 3454 | |
| 3455 | #if defined(RLIMIT_FSIZE) |
| 3456 | if (setrlimit(RLIMIT_FSIZE, &limit) == -1) { |
| 3457 | if (global.tune.options & GTUNE_STRICT_LIMITS) { |
| 3458 | ha_alert("[%s.main()] Failed to set the raise the maximum " |
| 3459 | "file size.\n", argv[0]); |
Jerome Magnin | 50f757c | 2021-01-12 20:19:38 +0100 | [diff] [blame] | 3460 | exit(1); |
William Dauchy | e039f26 | 2019-11-17 15:47:15 +0100 | [diff] [blame] | 3461 | } |
| 3462 | else |
| 3463 | ha_warning("[%s.main()] Failed to set the raise the maximum " |
William Dauchy | a519460 | 2020-03-28 19:29:58 +0100 | [diff] [blame] | 3464 | "file size.\n", argv[0]); |
William Dauchy | e039f26 | 2019-11-17 15:47:15 +0100 | [diff] [blame] | 3465 | } |
| 3466 | #endif |
| 3467 | |
| 3468 | #if defined(RLIMIT_CORE) |
| 3469 | if (setrlimit(RLIMIT_CORE, &limit) == -1) { |
| 3470 | if (global.tune.options & GTUNE_STRICT_LIMITS) { |
| 3471 | ha_alert("[%s.main()] Failed to set the raise the core " |
| 3472 | "dump size.\n", argv[0]); |
Jerome Magnin | 50f757c | 2021-01-12 20:19:38 +0100 | [diff] [blame] | 3473 | exit(1); |
William Dauchy | e039f26 | 2019-11-17 15:47:15 +0100 | [diff] [blame] | 3474 | } |
| 3475 | else |
| 3476 | ha_warning("[%s.main()] Failed to set the raise the core " |
William Dauchy | a519460 | 2020-03-28 19:29:58 +0100 | [diff] [blame] | 3477 | "dump size.\n", argv[0]); |
William Dauchy | e039f26 | 2019-11-17 15:47:15 +0100 | [diff] [blame] | 3478 | } |
| 3479 | #endif |
| 3480 | |
| 3481 | #if defined(USE_PRCTL) |
| 3482 | if (prctl(PR_SET_DUMPABLE, 1, 0, 0, 0) == -1) |
| 3483 | ha_warning("[%s.main()] Failed to set the dumpable flag, " |
| 3484 | "no core will be dumped.\n", argv[0]); |
devnexen@gmail.com | 078062b | 2021-08-21 09:13:10 +0100 | [diff] [blame] | 3485 | #elif defined(USE_PROCCTL) |
| 3486 | int traceable = PROC_TRACE_CTL_ENABLE; |
| 3487 | if (procctl(P_PID, getpid(), PROC_TRACE_CTL, &traceable) == -1) |
| 3488 | ha_warning("[%s.main()] Failed to set the traceable flag, " |
| 3489 | "no core will be dumped.\n", argv[0]); |
William Dauchy | e039f26 | 2019-11-17 15:47:15 +0100 | [diff] [blame] | 3490 | #endif |
| 3491 | } |
| 3492 | |
Christopher Faulet | e3a5e35 | 2017-10-24 13:53:54 +0200 | [diff] [blame] | 3493 | global.mode &= ~MODE_STARTING; |
Willy Tarreau | 4f60f16 | 2007-04-08 16:39:58 +0200 | [diff] [blame] | 3494 | /* |
| 3495 | * That's it : the central polling loop. Run until we stop. |
| 3496 | */ |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 3497 | #ifdef USE_THREAD |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 3498 | { |
William Lallemand | 1aab50b | 2018-06-07 09:46:01 +0200 | [diff] [blame] | 3499 | sigset_t blocked_sig, old_sig; |
Willy Tarreau | c40efc1 | 2019-05-03 09:22:44 +0200 | [diff] [blame] | 3500 | int i; |
| 3501 | |
William Lallemand | 1aab50b | 2018-06-07 09:46:01 +0200 | [diff] [blame] | 3502 | /* ensure the signals will be blocked in every thread */ |
| 3503 | sigfillset(&blocked_sig); |
| 3504 | sigdelset(&blocked_sig, SIGPROF); |
| 3505 | sigdelset(&blocked_sig, SIGBUS); |
| 3506 | sigdelset(&blocked_sig, SIGFPE); |
| 3507 | sigdelset(&blocked_sig, SIGILL); |
| 3508 | sigdelset(&blocked_sig, SIGSEGV); |
| 3509 | pthread_sigmask(SIG_SETMASK, &blocked_sig, &old_sig); |
| 3510 | |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 3511 | /* Create nbthread-1 thread. The first thread is the current process */ |
David Carlier | a92c5ce | 2019-09-13 05:03:12 +0100 | [diff] [blame] | 3512 | ha_thread_info[0].pthread = pthread_self(); |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 3513 | for (i = 1; i < global.nbthread; i++) |
David Carlier | a92c5ce | 2019-09-13 05:03:12 +0100 | [diff] [blame] | 3514 | pthread_create(&ha_thread_info[i].pthread, NULL, &run_thread_poll_loop, (void *)(long)i); |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 3515 | |
Christopher Faulet | 6251902 | 2017-10-16 15:49:32 +0200 | [diff] [blame] | 3516 | #ifdef USE_CPU_AFFINITY |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 3517 | /* Now the CPU affinity for all threads */ |
Amaury Denoyelle | af02c57 | 2021-04-15 16:29:58 +0200 | [diff] [blame] | 3518 | |
| 3519 | /* If on multiprocess, use proc_t1 except for the first process. |
| 3520 | */ |
| 3521 | if ((relative_pid - 1) > 0) |
Amaury Denoyelle | fc6ac53 | 2021-04-27 10:46:36 +0200 | [diff] [blame] | 3522 | cpu_map.thread[0] = cpu_map.proc_t1[relative_pid-1]; |
Willy Tarreau | 7764a57 | 2019-07-16 15:10:34 +0200 | [diff] [blame] | 3523 | |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 3524 | for (i = 0; i < global.nbthread; i++) { |
Amaury Denoyelle | fc6ac53 | 2021-04-27 10:46:36 +0200 | [diff] [blame] | 3525 | if (ha_cpuset_count(&cpu_map.proc[relative_pid-1])) |
| 3526 | ha_cpuset_and(&cpu_map.thread[i], &cpu_map.proc[relative_pid-1]); |
Christopher Faulet | 6251902 | 2017-10-16 15:49:32 +0200 | [diff] [blame] | 3527 | |
Willy Tarreau | 421f02e | 2018-01-20 18:19:22 +0100 | [diff] [blame] | 3528 | if (i < MAX_THREADS && /* only the first 32/64 threads may be pinned */ |
Amaury Denoyelle | fc6ac53 | 2021-04-27 10:46:36 +0200 | [diff] [blame] | 3529 | ha_cpuset_count(&cpu_map.thread[i])) {/* only do this if the thread has a THREAD map */ |
David Carlier | 5e4c8e2 | 2019-09-13 05:12:58 +0100 | [diff] [blame] | 3530 | #if defined(__APPLE__) |
| 3531 | int j; |
Amaury Denoyelle | 8f685c1 | 2021-04-27 16:45:29 +0200 | [diff] [blame] | 3532 | unsigned long set = cpu_map.thread[i].cpuset; |
David Carlier | 5e4c8e2 | 2019-09-13 05:12:58 +0100 | [diff] [blame] | 3533 | |
Amaury Denoyelle | 8f685c1 | 2021-04-27 16:45:29 +0200 | [diff] [blame] | 3534 | while ((j = ffsl(set)) > 0) { |
David Carlier | 5e4c8e2 | 2019-09-13 05:12:58 +0100 | [diff] [blame] | 3535 | thread_affinity_policy_data_t cpu_set = { j - 1 }; |
| 3536 | thread_port_t mthread = pthread_mach_thread_np(ha_thread_info[i].pthread); |
| 3537 | thread_policy_set(mthread, THREAD_AFFINITY_POLICY, (thread_policy_t)&cpu_set, 1); |
Amaury Denoyelle | 8f685c1 | 2021-04-27 16:45:29 +0200 | [diff] [blame] | 3538 | set &= ~(1UL << (j - 1)); |
David Carlier | 5e4c8e2 | 2019-09-13 05:12:58 +0100 | [diff] [blame] | 3539 | } |
| 3540 | #else |
Amaury Denoyelle | fc6ac53 | 2021-04-27 10:46:36 +0200 | [diff] [blame] | 3541 | struct hap_cpuset *set = &cpu_map.thread[i]; |
David Carlier | a92c5ce | 2019-09-13 05:03:12 +0100 | [diff] [blame] | 3542 | pthread_setaffinity_np(ha_thread_info[i].pthread, |
Amaury Denoyelle | 982fb53 | 2021-04-21 18:39:58 +0200 | [diff] [blame] | 3543 | sizeof(set->cpuset), &set->cpuset); |
David Carlier | 5e4c8e2 | 2019-09-13 05:12:58 +0100 | [diff] [blame] | 3544 | #endif |
Olivier Houchard | 829aa24 | 2017-12-01 18:19:43 +0100 | [diff] [blame] | 3545 | } |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 3546 | } |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 3547 | #endif /* !USE_CPU_AFFINITY */ |
| 3548 | |
William Lallemand | 1aab50b | 2018-06-07 09:46:01 +0200 | [diff] [blame] | 3549 | /* when multithreading we need to let only the thread 0 handle the signals */ |
William Lallemand | d3801c1 | 2018-09-11 10:06:23 +0200 | [diff] [blame] | 3550 | haproxy_unblock_signals(); |
William Lallemand | 1aab50b | 2018-06-07 09:46:01 +0200 | [diff] [blame] | 3551 | |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 3552 | /* Finally, start the poll loop for the first thread */ |
Willy Tarreau | b4f7cc3 | 2019-05-03 09:27:30 +0200 | [diff] [blame] | 3553 | run_thread_poll_loop(0); |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 3554 | |
| 3555 | /* Wait the end of other threads */ |
| 3556 | for (i = 1; i < global.nbthread; i++) |
David Carlier | a92c5ce | 2019-09-13 05:03:12 +0100 | [diff] [blame] | 3557 | pthread_join(ha_thread_info[i].pthread, NULL); |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 3558 | |
Christopher Faulet | b79a94c | 2017-05-30 15:34:30 +0200 | [diff] [blame] | 3559 | #if defined(DEBUG_THREAD) || defined(DEBUG_FULL) |
| 3560 | show_lock_stats(); |
| 3561 | #endif |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 3562 | } |
Christopher Faulet | cd7879a | 2017-10-27 13:53:47 +0200 | [diff] [blame] | 3563 | #else /* ! USE_THREAD */ |
William Lallemand | d3801c1 | 2018-09-11 10:06:23 +0200 | [diff] [blame] | 3564 | haproxy_unblock_signals(); |
Willy Tarreau | b4f7cc3 | 2019-05-03 09:27:30 +0200 | [diff] [blame] | 3565 | run_thread_poll_loop(0); |
Christopher Faulet | 6251902 | 2017-10-16 15:49:32 +0200 | [diff] [blame] | 3566 | #endif |
Christopher Faulet | 1d17c10 | 2017-08-29 15:38:48 +0200 | [diff] [blame] | 3567 | |
Tim Duesterhus | 0a3b43d | 2020-06-14 00:37:42 +0200 | [diff] [blame] | 3568 | deinit_and_exit(0); |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3569 | } |
| 3570 | |
Willy Tarreau | baaee00 | 2006-06-26 02:48:02 +0200 | [diff] [blame] | 3571 | /* |
| 3572 | * Local variables: |
| 3573 | * c-indent-level: 8 |
| 3574 | * c-basic-offset: 8 |
| 3575 | * End: |
| 3576 | */ |