Blob


1 /*
2 * Copyright (c) 2016-2019, 2020-2021 Tracey Emery <tracey@traceyemery.net>
3 * Copyright (c) 2004, 2005 Esben Norby <norby@openbsd.org>
4 * Copyright (c) 2004 Ryan McBride <mcbride@openbsd.org>
5 * Copyright (c) 2002, 2003, 2004 Henning Brauer <henning@openbsd.org>
6 * Copyright (c) 2001 Markus Friedl. All rights reserved.
7 * Copyright (c) 2001 Daniel Hartmeier. All rights reserved.
8 * Copyright (c) 2001 Theo de Raadt. All rights reserved.
9 *
10 * Permission to use, copy, modify, and distribute this software for any
11 * purpose with or without fee is hereby granted, provided that the above
12 * copyright notice and this permission notice appear in all copies.
13 *
14 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
15 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
16 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
17 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
18 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
19 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
20 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
21 */
23 %{
24 #include <sys/ioctl.h>
25 #include <sys/types.h>
26 #include <sys/queue.h>
27 #include <sys/socket.h>
28 #include <sys/stat.h>
30 #include <net/if.h>
31 #include <netinet/in.h>
33 #include <arpa/inet.h>
35 #include <ctype.h>
36 #include <err.h>
37 #include <errno.h>
38 #include <event.h>
39 #include <ifaddrs.h>
40 #include <limits.h>
41 #include <netdb.h>
42 #include <stdarg.h>
43 #include <stdlib.h>
44 #include <stdio.h>
45 #include <string.h>
46 #include <syslog.h>
47 #include <unistd.h>
49 #include "proc.h"
50 #include "gotwebd.h"
51 #include "got_sockaddr.h"
53 TAILQ_HEAD(files, file) files = TAILQ_HEAD_INITIALIZER(files);
54 static struct file {
55 TAILQ_ENTRY(file) entry;
56 FILE *stream;
57 char *name;
58 int lineno;
59 int errors;
60 } *file;
61 struct file *newfile(const char *, int);
62 static void closefile(struct file *);
63 int check_file_secrecy(int, const char *);
64 int yyparse(void);
65 int yylex(void);
66 int yyerror(const char *, ...)
67 __attribute__((__format__ (printf, 1, 2)))
68 __attribute__((__nonnull__ (1)));
69 int kw_cmp(const void *, const void *);
70 int lookup(char *);
71 int lgetc(int);
72 int lungetc(int);
73 int findeol(void);
75 TAILQ_HEAD(symhead, sym) symhead = TAILQ_HEAD_INITIALIZER(symhead);
76 struct sym {
77 TAILQ_ENTRY(sym) entry;
78 int used;
79 int persist;
80 char *nam;
81 char *val;
82 };
84 int symset(const char *, const char *, int);
85 char *symget(const char *);
87 static int errors;
89 static struct gotwebd *gotwebd;
90 static struct server *new_srv;
91 static struct server *conf_new_server(const char *);
92 int getservice(const char *);
93 int n;
95 int get_addrs(const char *, struct addresslist *, in_port_t);
96 struct address *host_v4(const char *);
97 struct address *host_v6(const char *);
98 int host_dns(const char *, struct addresslist *,
99 int, in_port_t, const char *, int);
100 int host_if(const char *, struct addresslist *,
101 int, in_port_t, const char *, int);
102 int host(const char *, struct addresslist *,
103 int, in_port_t, const char *, int);
104 int is_if_in_group(const char *, const char *);
106 typedef struct {
107 union {
108 long long number;
109 char *string;
110 in_port_t port;
111 } v;
112 int lineno;
113 } YYSTYPE;
115 %}
117 %token BIND INTERFACE WWW_PATH MAX_REPOS SITE_NAME SITE_OWNER SITE_LINK LOGO
118 %token LOGO_URL SHOW_REPO_OWNER SHOW_REPO_AGE SHOW_REPO_DESCRIPTION
119 %token MAX_REPOS_DISPLAY REPOS_PATH MAX_COMMITS_DISPLAY ON ERROR
120 %token SHOW_SITE_OWNER SHOW_REPO_CLONEURL PORT PREFORK FCGI_SOCKET
121 %token UNIX_SOCKET UNIX_SOCKET_NAME SERVER CHROOT CUSTOM_CSS
123 %token <v.string> STRING
124 %type <v.port> fcgiport
125 %token <v.number> NUMBER
126 %type <v.number> boolean
128 %%
130 grammar :
131 | grammar '\n'
132 | grammar main '\n'
133 | grammar server '\n'
136 boolean : STRING {
137 if (strcasecmp($1, "1") == 0 ||
138 strcasecmp($1, "yes") == 0 ||
139 strcasecmp($1, "on") == 0)
140 $$ = 1;
141 else if (strcasecmp($1, "0") == 0 ||
142 strcasecmp($1, "off") == 0 ||
143 strcasecmp($1, "no") == 0)
144 $$ = 0;
145 else {
146 yyerror("invalid boolean value '%s'", $1);
147 free($1);
148 YYERROR;
150 free($1);
152 | ON { $$ = 1; }
153 | NUMBER { $$ = $1; }
156 fcgiport : NUMBER {
157 if ($1 <= 0 || $1 > (int)USHRT_MAX) {
158 yyerror("invalid port: %lld", $1);
159 YYERROR;
161 $$ = htons($1);
163 | STRING {
164 int val;
166 if ((val = getservice($1)) == -1) {
167 yyerror("invalid port: %s", $1);
168 free($1);
169 YYERROR;
171 free($1);
173 $$ = val;
177 main : PREFORK NUMBER {
178 gotwebd->prefork_gotwebd = $2;
180 | CHROOT STRING {
181 n = strlcpy(gotwebd->httpd_chroot, $2,
182 sizeof(gotwebd->httpd_chroot));
183 if (n >= sizeof(gotwebd->httpd_chroot)) {
184 yyerror("%s: httpd_chroot truncated", __func__);
185 free($2);
186 YYERROR;
188 free($2);
190 | FCGI_SOCKET boolean {
191 gotwebd->fcgi_socket = $2;
193 | FCGI_SOCKET boolean {
194 gotwebd->fcgi_socket = $2;
195 } '{' optnl socketopts4 '}'
196 | UNIX_SOCKET boolean {
197 gotwebd->unix_socket = $2;
199 | UNIX_SOCKET_NAME STRING {
200 n = snprintf(gotwebd->unix_socket_name,
201 sizeof(gotwebd->unix_socket_name), "%s%s",
202 strlen(gotwebd->httpd_chroot) ?
203 gotwebd->httpd_chroot : D_HTTPD_CHROOT, $2);
204 if (n < 0) {
205 yyerror("%s: unix_socket_name truncated",
206 __func__);
207 free($2);
208 YYERROR;
210 free($2);
214 server : SERVER STRING {
215 struct server *srv;
217 TAILQ_FOREACH(srv, gotwebd->servers, entry) {
218 if (strcmp(srv->name, $2) == 0) {
219 yyerror("server name exists '%s'", $2);
220 free($2);
221 YYERROR;
225 new_srv = conf_new_server($2);
226 if (new_srv->fcgi_socket)
227 if (get_addrs(new_srv->fcgi_socket_bind,
228 new_srv->al,
229 new_srv->fcgi_socket_port) == -1) {
230 yyerror("could not get tcp iface "
231 "addrs");
232 YYERROR;
234 log_debug("adding server %s", $2);
235 free($2);
237 | SERVER STRING {
238 struct server *srv;
240 TAILQ_FOREACH(srv, gotwebd->servers, entry) {
241 if (strcmp(srv->name, $2) == 0) {
242 yyerror("server name exists '%s'", $2);
243 free($2);
244 YYERROR;
248 new_srv = conf_new_server($2);
249 log_debug("adding server %s", $2);
250 free($2);
251 } '{' optnl serveropts2 '}' {
252 if (get_addrs(new_srv->fcgi_socket_bind,
253 new_srv->al, new_srv->fcgi_socket_port) == -1) {
254 yyerror("could not get tcp iface addrs");
255 YYERROR;
260 serveropts1 : REPOS_PATH STRING {
261 n = strlcpy(new_srv->repos_path, $2,
262 sizeof(new_srv->repos_path));
263 if (n >= sizeof(new_srv->repos_path)) {
264 yyerror("%s: repos_path truncated", __func__);
265 free($2);
266 YYERROR;
268 free($2);
270 | SITE_NAME STRING {
271 n = strlcpy(new_srv->site_name, $2,
272 sizeof(new_srv->site_name));
273 if (n >= sizeof(new_srv->site_name)) {
274 yyerror("%s: site_name truncated", __func__);
275 free($2);
276 YYERROR;
278 free($2);
280 | SITE_OWNER STRING {
281 n = strlcpy(new_srv->site_owner, $2,
282 sizeof(new_srv->site_owner));
283 if (n >= sizeof(new_srv->site_owner)) {
284 yyerror("%s: site_owner truncated", __func__);
285 free($2);
286 YYERROR;
288 free($2);
290 | SITE_LINK STRING {
291 n = strlcpy(new_srv->site_link, $2,
292 sizeof(new_srv->site_link));
293 if (n >= sizeof(new_srv->site_link)) {
294 yyerror("%s: site_link truncated", __func__);
295 free($2);
296 YYERROR;
298 free($2);
300 | LOGO STRING {
301 n = strlcpy(new_srv->logo, $2, sizeof(new_srv->logo));
302 if (n >= sizeof(new_srv->logo)) {
303 yyerror("%s: logo truncated", __func__);
304 free($2);
305 YYERROR;
307 free($2);
309 | LOGO_URL STRING {
310 n = strlcpy(new_srv->logo_url, $2,
311 sizeof(new_srv->logo_url));
312 if (n >= sizeof(new_srv->logo_url)) {
313 yyerror("%s: logo_url truncated", __func__);
314 free($2);
315 YYERROR;
317 free($2);
319 | CUSTOM_CSS STRING {
320 n = strlcpy(new_srv->custom_css, $2,
321 sizeof(new_srv->custom_css));
322 if (n >= sizeof(new_srv->custom_css)) {
323 yyerror("%s: custom_css truncated", __func__);
324 free($2);
325 YYERROR;
327 free($2);
329 | MAX_REPOS NUMBER {
330 if ($2 > 0)
331 new_srv->max_repos = $2;
333 | SHOW_SITE_OWNER boolean {
334 new_srv->show_site_owner = $2;
336 | SHOW_REPO_OWNER boolean {
337 new_srv->show_repo_owner = $2;
339 | SHOW_REPO_AGE boolean {
340 new_srv->show_repo_age = $2;
342 | SHOW_REPO_DESCRIPTION boolean {
343 new_srv->show_repo_description = $2;
345 | SHOW_REPO_CLONEURL boolean {
346 new_srv->show_repo_cloneurl = $2;
348 | MAX_REPOS_DISPLAY NUMBER {
349 new_srv->max_repos_display = $2;
351 | MAX_COMMITS_DISPLAY NUMBER {
352 if ($2 > 0)
353 new_srv->max_commits_display = $2;
355 | FCGI_SOCKET boolean {
356 new_srv->fcgi_socket = $2;
358 | FCGI_SOCKET boolean {
359 new_srv->fcgi_socket = $2;
360 } '{' optnl socketopts2 '}'
361 | UNIX_SOCKET boolean {
362 new_srv->unix_socket = $2;
364 | UNIX_SOCKET_NAME STRING {
365 n = snprintf(new_srv->unix_socket_name,
366 sizeof(new_srv->unix_socket_name), "%s%s",
367 strlen(gotwebd->httpd_chroot) ?
368 gotwebd->httpd_chroot : D_HTTPD_CHROOT, $2);
369 if (n < 0) {
370 yyerror("%s: unix_socket_name truncated",
371 __func__);
372 free($2);
373 YYERROR;
375 free($2);
379 serveropts2 : serveropts2 serveropts1 nl
380 | serveropts1 optnl
383 socketopts1 : BIND INTERFACE STRING {
384 n = strlcpy(new_srv->fcgi_socket_bind, $3,
385 sizeof(new_srv->fcgi_socket_bind));
386 if (n >= sizeof(new_srv->fcgi_socket_bind)) {
387 yyerror("%s: fcgi_socket_bind truncated",
388 __func__);
389 free($3);
390 YYERROR;
392 free($3);
394 | PORT fcgiport {
395 struct server *srv;
397 TAILQ_FOREACH(srv, gotwebd->servers, entry) {
398 if (srv->fcgi_socket_port == $2) {
399 yyerror("port already assigned");
400 YYERROR;
403 new_srv->fcgi_socket_port = $2;
407 socketopts2 : socketopts2 socketopts1 nl
408 | socketopts1 optnl
411 socketopts3 : BIND INTERFACE STRING {
412 n = strlcpy(gotwebd->fcgi_socket_bind, $3,
413 sizeof(gotwebd->fcgi_socket_bind));
414 if (n >= sizeof(gotwebd->fcgi_socket_bind)) {
415 yyerror("%s: fcgi_socket_bind truncated",
416 __func__);
417 free($3);
418 YYERROR;
420 free($3);
422 | PORT fcgiport {
423 gotwebd->fcgi_socket_port = $2;
427 socketopts4 : socketopts4 socketopts3 nl
428 | socketopts3 optnl
431 nl : '\n' optnl
434 optnl : '\n' optnl /* zero or more newlines */
435 | /* empty */
438 %%
440 struct keywords {
441 const char *k_name;
442 int k_val;
443 };
445 int
446 yyerror(const char *fmt, ...)
448 va_list ap;
449 char *msg;
451 file->errors++;
452 va_start(ap, fmt);
453 if (vasprintf(&msg, fmt, ap) == -1)
454 fatalx("yyerror vasprintf");
455 va_end(ap);
456 logit(LOG_CRIT, "%s:%d: %s", file->name, yylval.lineno, msg);
457 free(msg);
458 return (0);
461 int
462 kw_cmp(const void *k, const void *e)
464 return (strcmp(k, ((const struct keywords *)e)->k_name));
467 int
468 lookup(char *s)
470 /* This has to be sorted always. */
471 static const struct keywords keywords[] = {
472 { "bind", BIND },
473 { "chroot", CHROOT },
474 { "custom_css", CUSTOM_CSS },
475 { "fcgi_socket", FCGI_SOCKET },
476 { "interface", INTERFACE },
477 { "logo", LOGO },
478 { "logo_url" , LOGO_URL },
479 { "max_commits_display", MAX_COMMITS_DISPLAY },
480 { "max_repos", MAX_REPOS },
481 { "max_repos_display", MAX_REPOS_DISPLAY },
482 { "port", PORT },
483 { "prefork", PREFORK },
484 { "repos_path", REPOS_PATH },
485 { "server", SERVER },
486 { "show_repo_age", SHOW_REPO_AGE },
487 { "show_repo_cloneurl", SHOW_REPO_CLONEURL },
488 { "show_repo_description", SHOW_REPO_DESCRIPTION },
489 { "show_repo_owner", SHOW_REPO_OWNER },
490 { "show_site_owner", SHOW_SITE_OWNER },
491 { "site_link", SITE_LINK },
492 { "site_name", SITE_NAME },
493 { "site_owner", SITE_OWNER },
494 { "unix_socket", UNIX_SOCKET },
495 { "unix_socket_name", UNIX_SOCKET_NAME },
496 };
497 const struct keywords *p;
499 p = bsearch(s, keywords, sizeof(keywords)/sizeof(keywords[0]),
500 sizeof(keywords[0]), kw_cmp);
502 if (p)
503 return (p->k_val);
504 else
505 return (STRING);
508 #define MAXPUSHBACK 128
510 unsigned char *parsebuf;
511 int parseindex;
512 unsigned char pushback_buffer[MAXPUSHBACK];
513 int pushback_index = 0;
515 int
516 lgetc(int quotec)
518 int c, next;
520 if (parsebuf) {
521 /* Read character from the parsebuffer instead of input. */
522 if (parseindex >= 0) {
523 c = parsebuf[parseindex++];
524 if (c != '\0')
525 return (c);
526 parsebuf = NULL;
527 } else
528 parseindex++;
531 if (pushback_index)
532 return (pushback_buffer[--pushback_index]);
534 if (quotec) {
535 c = getc(file->stream);
536 if (c == EOF)
537 yyerror("reached end of file while parsing "
538 "quoted string");
539 return (c);
542 c = getc(file->stream);
543 while (c == '\\') {
544 next = getc(file->stream);
545 if (next != '\n') {
546 c = next;
547 break;
549 yylval.lineno = file->lineno;
550 file->lineno++;
551 c = getc(file->stream);
554 return (c);
557 int
558 lungetc(int c)
560 if (c == EOF)
561 return (EOF);
562 if (parsebuf) {
563 parseindex--;
564 if (parseindex >= 0)
565 return (c);
567 if (pushback_index < MAXPUSHBACK-1)
568 return (pushback_buffer[pushback_index++] = c);
569 else
570 return (EOF);
573 int
574 findeol(void)
576 int c;
578 parsebuf = NULL;
580 /* Skip to either EOF or the first real EOL. */
581 while (1) {
582 if (pushback_index)
583 c = pushback_buffer[--pushback_index];
584 else
585 c = lgetc(0);
586 if (c == '\n') {
587 file->lineno++;
588 break;
590 if (c == EOF)
591 break;
593 return (ERROR);
596 int
597 yylex(void)
599 unsigned char buf[8096];
600 unsigned char *p, *val;
601 int quotec, next, c;
602 int token;
604 top:
605 p = buf;
606 c = lgetc(0);
607 while (c == ' ' || c == '\t')
608 c = lgetc(0); /* nothing */
610 yylval.lineno = file->lineno;
611 if (c == '#') {
612 c = lgetc(0);
613 while (c != '\n' && c != EOF)
614 c = lgetc(0); /* nothing */
616 if (c == '$' && parsebuf == NULL) {
617 while (1) {
618 c = lgetc(0);
619 if (c == EOF)
620 return (0);
622 if (p + 1 >= buf + sizeof(buf) - 1) {
623 yyerror("string too long");
624 return (findeol());
626 if (isalnum(c) || c == '_') {
627 *p++ = c;
628 continue;
630 *p = '\0';
631 lungetc(c);
632 break;
634 val = symget(buf);
635 if (val == NULL) {
636 yyerror("macro '%s' not defined", buf);
637 return (findeol());
639 parsebuf = val;
640 parseindex = 0;
641 goto top;
644 switch (c) {
645 case '\'':
646 case '"':
647 quotec = c;
648 while (1) {
649 c = lgetc(quotec);
650 if (c == EOF)
651 return (0);
652 if (c == '\n') {
653 file->lineno++;
654 continue;
655 } else if (c == '\\') {
656 next = lgetc(quotec);
657 if (next == EOF)
658 return (0);
659 if (next == quotec || c == ' ' || c == '\t')
660 c = next;
661 else if (next == '\n') {
662 file->lineno++;
663 continue;
664 } else
665 lungetc(next);
666 } else if (c == quotec) {
667 *p = '\0';
668 break;
669 } else if (c == '\0') {
670 yyerror("syntax error");
671 return (findeol());
673 if (p + 1 >= buf + sizeof(buf) - 1) {
674 yyerror("string too long");
675 return (findeol());
677 *p++ = c;
679 yylval.v.string = strdup(buf);
680 if (yylval.v.string == NULL)
681 err(1, "yylex: strdup");
682 return (STRING);
685 #define allowed_to_end_number(x) \
686 (isspace(x) || x == ')' || x ==',' || x == '/' || x == '}' || x == '=')
688 if (c == '-' || isdigit(c)) {
689 do {
690 *p++ = c;
691 if ((unsigned)(p-buf) >= sizeof(buf)) {
692 yyerror("string too long");
693 return (findeol());
695 c = lgetc(0);
696 } while (c != EOF && isdigit(c));
697 lungetc(c);
698 if (p == buf + 1 && buf[0] == '-')
699 goto nodigits;
700 if (c == EOF || allowed_to_end_number(c)) {
701 const char *errstr = NULL;
703 *p = '\0';
704 yylval.v.number = strtonum(buf, LLONG_MIN,
705 LLONG_MAX, &errstr);
706 if (errstr) {
707 yyerror("\"%s\" invalid number: %s",
708 buf, errstr);
709 return (findeol());
711 return (NUMBER);
712 } else {
713 nodigits:
714 while (p > buf + 1)
715 lungetc(*--p);
716 c = *--p;
717 if (c == '-')
718 return (c);
722 #define allowed_in_string(x) \
723 (isalnum(x) || (ispunct(x) && x != '(' && x != ')' && \
724 x != '{' && x != '}' && \
725 x != '!' && x != '=' && x != '#' && \
726 x != ','))
728 if (isalnum(c) || c == ':' || c == '_') {
729 do {
730 *p++ = c;
731 if ((unsigned)(p-buf) >= sizeof(buf)) {
732 yyerror("string too long");
733 return (findeol());
735 c = lgetc(0);
736 } while (c != EOF && (allowed_in_string(c)));
737 lungetc(c);
738 *p = '\0';
739 token = lookup(buf);
740 if (token == STRING) {
741 yylval.v.string = strdup(buf);
742 if (yylval.v.string == NULL)
743 err(1, "yylex: strdup");
745 return (token);
747 if (c == '\n') {
748 yylval.lineno = file->lineno;
749 file->lineno++;
751 if (c == EOF)
752 return (0);
753 return (c);
756 int
757 check_file_secrecy(int fd, const char *fname)
759 struct stat st;
761 if (fstat(fd, &st)) {
762 log_warn("cannot stat %s", fname);
763 return (-1);
765 if (st.st_uid != 0 && st.st_uid != getuid()) {
766 log_warnx("%s: owner not root or current user", fname);
767 return (-1);
769 if (st.st_mode & (S_IWGRP | S_IXGRP | S_IRWXO)) {
770 log_warnx("%s: group writable or world read/writable", fname);
771 return (-1);
773 return (0);
776 struct file *
777 newfile(const char *name, int secret)
779 struct file *nfile;
781 nfile = calloc(1, sizeof(struct file));
782 if (nfile == NULL) {
783 log_warn("calloc");
784 return (NULL);
786 nfile->name = strdup(name);
787 if (nfile->name == NULL) {
788 log_warn("strdup");
789 free(nfile);
790 return (NULL);
792 nfile->stream = fopen(nfile->name, "r");
793 if (nfile->stream == NULL) {
794 /* no warning, we don't require a conf file */
795 free(nfile->name);
796 free(nfile);
797 return (NULL);
798 } else if (secret &&
799 check_file_secrecy(fileno(nfile->stream), nfile->name)) {
800 fclose(nfile->stream);
801 free(nfile->name);
802 free(nfile);
803 return (NULL);
805 nfile->lineno = 1;
806 return (nfile);
809 static void
810 closefile(struct file *xfile)
812 fclose(xfile->stream);
813 free(xfile->name);
814 free(xfile);
817 static void
818 add_default_server(void)
820 new_srv = conf_new_server(D_SITENAME);
821 log_debug("%s: adding default server %s", __func__, D_SITENAME);
824 int
825 parse_config(const char *filename, struct gotwebd *env)
827 struct sym *sym, *next;
829 if (config_init(env) == -1)
830 fatalx("failed to initialize configuration");
832 gotwebd = env;
834 file = newfile(filename, 0);
835 if (file == NULL) {
836 add_default_server();
837 sockets_parse_sockets(env);
838 /* just return, as we don't require a conf file */
839 return (0);
842 yyparse();
843 errors = file->errors;
844 closefile(file);
846 /* Free macros and check which have not been used. */
847 TAILQ_FOREACH_SAFE(sym, &symhead, entry, next) {
848 if ((gotwebd->gotwebd_verbose > 1) && !sym->used)
849 fprintf(stderr, "warning: macro '%s' not used\n",
850 sym->nam);
851 if (!sym->persist) {
852 free(sym->nam);
853 free(sym->val);
854 TAILQ_REMOVE(&symhead, sym, entry);
855 free(sym);
859 if (errors)
860 return (-1);
862 /* just add default server if no config specified */
863 if (gotwebd->server_cnt == 0)
864 add_default_server();
866 /* setup our listening sockets */
867 sockets_parse_sockets(env);
869 return (0);
872 struct server *
873 conf_new_server(const char *name)
875 struct server *srv = NULL;
876 int val;
878 srv = calloc(1, sizeof(*srv));
879 if (srv == NULL)
880 fatalx("%s: calloc", __func__);
882 n = strlcpy(srv->name, name, sizeof(srv->name));
883 if (n >= sizeof(srv->name))
884 fatalx("%s: strlcpy", __func__);
885 n = snprintf(srv->unix_socket_name,
886 sizeof(srv->unix_socket_name), "%s%s", D_HTTPD_CHROOT,
887 D_UNIX_SOCKET);
888 if (n < 0)
889 fatalx("%s: snprintf", __func__);
890 n = strlcpy(srv->repos_path, D_GOTPATH,
891 sizeof(srv->repos_path));
892 if (n >= sizeof(srv->repos_path))
893 fatalx("%s: strlcpy", __func__);
894 n = strlcpy(srv->site_name, D_SITENAME,
895 sizeof(srv->site_name));
896 if (n >= sizeof(srv->site_name))
897 fatalx("%s: strlcpy", __func__);
898 n = strlcpy(srv->site_owner, D_SITEOWNER,
899 sizeof(srv->site_owner));
900 if (n >= sizeof(srv->site_owner))
901 fatalx("%s: strlcpy", __func__);
902 n = strlcpy(srv->site_link, D_SITELINK,
903 sizeof(srv->site_link));
904 if (n >= sizeof(srv->site_link))
905 fatalx("%s: strlcpy", __func__);
906 n = strlcpy(srv->logo, D_GOTLOGO,
907 sizeof(srv->logo));
908 if (n >= sizeof(srv->logo))
909 fatalx("%s: strlcpy", __func__);
910 n = strlcpy(srv->logo_url, D_GOTURL, sizeof(srv->logo_url));
911 if (n >= sizeof(srv->logo_url))
912 fatalx("%s: strlcpy", __func__);
913 n = strlcpy(srv->custom_css, D_GOTWEBCSS, sizeof(srv->custom_css));
914 if (n >= sizeof(srv->custom_css))
915 fatalx("%s: strlcpy", __func__);
917 val = getservice(D_FCGI_PORT);
918 srv->fcgi_socket_port = gotwebd->fcgi_socket_port ?
919 gotwebd->fcgi_socket_port: htons(val);
921 srv->show_site_owner = D_SHOWSOWNER;
922 srv->show_repo_owner = D_SHOWROWNER;
923 srv->show_repo_age = D_SHOWAGE;
924 srv->show_repo_description = D_SHOWDESC;
925 srv->show_repo_cloneurl = D_SHOWURL;
927 srv->max_repos_display = D_MAXREPODISP;
928 srv->max_commits_display = D_MAXCOMMITDISP;
929 srv->max_repos = D_MAXREPO;
931 srv->unix_socket = 1;
932 srv->fcgi_socket = gotwebd->fcgi_socket ? gotwebd->fcgi_socket : 0;
934 if ((srv->al = calloc(1, sizeof(*srv->al))) == NULL)
935 fatalx("%s: calloc", __func__);
937 TAILQ_INIT(srv->al);
938 TAILQ_INSERT_TAIL(gotwebd->servers, srv, entry);
939 gotwebd->server_cnt++;
941 return srv;
942 };
944 int
945 symset(const char *nam, const char *val, int persist)
947 struct sym *sym;
949 TAILQ_FOREACH(sym, &symhead, entry) {
950 if (strcmp(nam, sym->nam) == 0)
951 break;
954 if (sym != NULL) {
955 if (sym->persist == 1)
956 return (0);
957 else {
958 free(sym->nam);
959 free(sym->val);
960 TAILQ_REMOVE(&symhead, sym, entry);
961 free(sym);
964 sym = calloc(1, sizeof(*sym));
965 if (sym == NULL)
966 return (-1);
968 sym->nam = strdup(nam);
969 if (sym->nam == NULL) {
970 free(sym);
971 return (-1);
973 sym->val = strdup(val);
974 if (sym->val == NULL) {
975 free(sym->nam);
976 free(sym);
977 return (-1);
979 sym->used = 0;
980 sym->persist = persist;
981 TAILQ_INSERT_TAIL(&symhead, sym, entry);
982 return (0);
985 int
986 cmdline_symset(char *s)
988 char *sym, *val;
989 int ret;
990 size_t len;
992 val = strrchr(s, '=');
993 if (val == NULL)
994 return (-1);
996 len = strlen(s) - strlen(val) + 1;
997 sym = malloc(len);
998 if (sym == NULL)
999 fatal("%s: malloc", __func__);
1001 memcpy(&sym, s, len);
1003 ret = symset(sym, val + 1, 1);
1004 free(sym);
1006 return (ret);
1009 char *
1010 symget(const char *nam)
1012 struct sym *sym;
1014 TAILQ_FOREACH(sym, &symhead, entry) {
1015 if (strcmp(nam, sym->nam) == 0) {
1016 sym->used = 1;
1017 return (sym->val);
1020 return (NULL);
1023 int
1024 getservice(const char *n)
1026 struct servent *s;
1027 const char *errstr;
1028 long long llval;
1030 llval = strtonum(n, 0, UINT16_MAX, &errstr);
1031 if (errstr) {
1032 s = getservbyname(n, "tcp");
1033 if (s == NULL)
1034 s = getservbyname(n, "udp");
1035 if (s == NULL)
1036 return (-1);
1037 return (s->s_port);
1040 return (htons((unsigned short)llval));
1043 struct address *
1044 host_v4(const char *s)
1046 struct in_addr ina;
1047 struct sockaddr_in *sain;
1048 struct address *h;
1050 memset(&ina, 0, sizeof(ina));
1051 if (inet_pton(AF_INET, s, &ina) != 1)
1052 return (NULL);
1054 if ((h = calloc(1, sizeof(*h))) == NULL)
1055 fatal(__func__);
1056 sain = (struct sockaddr_in *)&h->ss;
1057 got_sockaddr_inet_init(sain, &ina);
1058 if (sain->sin_addr.s_addr == INADDR_ANY)
1059 h->prefixlen = 0; /* 0.0.0.0 address */
1060 else
1061 h->prefixlen = -1; /* host address */
1062 return (h);
1065 struct address *
1066 host_v6(const char *s)
1068 struct addrinfo hints, *res;
1069 struct sockaddr_in6 *sa_in6, *ra;
1070 struct address *h = NULL;
1072 memset(&hints, 0, sizeof(hints));
1073 hints.ai_family = AF_INET6;
1074 hints.ai_socktype = SOCK_DGRAM; /* dummy */
1075 hints.ai_flags = AI_NUMERICHOST;
1076 if (getaddrinfo(s, "0", &hints, &res) == 0) {
1077 if ((h = calloc(1, sizeof(*h))) == NULL)
1078 fatal(__func__);
1079 sa_in6 = (struct sockaddr_in6 *)&h->ss;
1080 ra = (struct sockaddr_in6 *)res->ai_addr;
1081 got_sockaddr_inet6_init(sa_in6, &ra->sin6_addr,
1082 ra->sin6_scope_id);
1083 if (memcmp(&sa_in6->sin6_addr, &in6addr_any,
1084 sizeof(sa_in6->sin6_addr)) == 0)
1085 h->prefixlen = 0; /* any address */
1086 else
1087 h->prefixlen = -1; /* host address */
1088 freeaddrinfo(res);
1091 return (h);
1094 int
1095 host_dns(const char *s, struct addresslist *al, int max,
1096 in_port_t port, const char *ifname, int ipproto)
1098 struct addrinfo hints, *res0, *res;
1099 int error, cnt = 0;
1100 struct sockaddr_in *sain;
1101 struct sockaddr_in6 *sin6;
1102 struct address *h;
1104 if ((cnt = host_if(s, al, max, port, ifname, ipproto)) != 0)
1105 return (cnt);
1107 memset(&hints, 0, sizeof(hints));
1108 hints.ai_family = PF_UNSPEC;
1109 hints.ai_socktype = SOCK_DGRAM; /* DUMMY */
1110 hints.ai_flags = AI_ADDRCONFIG;
1111 error = getaddrinfo(s, NULL, &hints, &res0);
1112 if (error == EAI_AGAIN || error == EAI_NODATA || error == EAI_NONAME)
1113 return (0);
1114 if (error) {
1115 log_warnx("%s: could not parse \"%s\": %s", __func__, s,
1116 gai_strerror(error));
1117 return (-1);
1120 for (res = res0; res && cnt < max; res = res->ai_next) {
1121 if (res->ai_family != AF_INET &&
1122 res->ai_family != AF_INET6)
1123 continue;
1124 if ((h = calloc(1, sizeof(*h))) == NULL)
1125 fatal(__func__);
1127 if (port)
1128 h->port = port;
1129 if (ifname != NULL) {
1130 if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1131 sizeof(h->ifname)) {
1132 log_warnx("%s: interface name truncated",
1133 __func__);
1134 freeaddrinfo(res0);
1135 free(h);
1136 return (-1);
1139 if (ipproto != -1)
1140 h->ipproto = ipproto;
1141 h->ss.ss_family = res->ai_family;
1142 h->prefixlen = -1; /* host address */
1144 if (res->ai_family == AF_INET) {
1145 struct sockaddr_in *ra;
1146 sain = (struct sockaddr_in *)&h->ss;
1147 ra = (struct sockaddr_in *)res->ai_addr;
1148 got_sockaddr_inet_init(sain, &ra->sin_addr);
1149 } else {
1150 struct sockaddr_in6 *ra;
1151 sin6 = (struct sockaddr_in6 *)&h->ss;
1152 ra = (struct sockaddr_in6 *)res->ai_addr;
1153 got_sockaddr_inet6_init(sin6, &ra->sin6_addr, 0);
1156 TAILQ_INSERT_HEAD(al, h, entry);
1157 cnt++;
1159 if (cnt == max && res) {
1160 log_warnx("%s: %s resolves to more than %d hosts", __func__,
1161 s, max);
1163 freeaddrinfo(res0);
1164 return (cnt);
1167 int
1168 host_if(const char *s, struct addresslist *al, int max,
1169 in_port_t port, const char *ifname, int ipproto)
1171 struct ifaddrs *ifap, *p;
1172 struct sockaddr_in *sain;
1173 struct sockaddr_in6 *sin6;
1174 struct address *h;
1175 int cnt = 0, af;
1177 if (getifaddrs(&ifap) == -1)
1178 fatal("getifaddrs");
1180 /* First search for IPv4 addresses */
1181 af = AF_INET;
1183 nextaf:
1184 for (p = ifap; p != NULL && cnt < max; p = p->ifa_next) {
1185 if (p->ifa_addr == NULL ||
1186 p->ifa_addr->sa_family != af ||
1187 (strcmp(s, p->ifa_name) != 0 &&
1188 !is_if_in_group(p->ifa_name, s)))
1189 continue;
1190 if ((h = calloc(1, sizeof(*h))) == NULL)
1191 fatal("calloc");
1193 if (port)
1194 h->port = port;
1195 if (ifname != NULL) {
1196 if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1197 sizeof(h->ifname)) {
1198 log_warnx("%s: interface name truncated",
1199 __func__);
1200 free(h);
1201 freeifaddrs(ifap);
1202 return (-1);
1205 if (ipproto != -1)
1206 h->ipproto = ipproto;
1207 h->ss.ss_family = af;
1208 h->prefixlen = -1; /* host address */
1210 if (af == AF_INET) {
1211 struct sockaddr_in *ra;
1212 sain = (struct sockaddr_in *)&h->ss;
1213 ra = (struct sockaddr_in *)p->ifa_addr;
1214 got_sockaddr_inet_init(sain, &ra->sin_addr);
1215 } else {
1216 struct sockaddr_in6 *ra;
1217 sin6 = (struct sockaddr_in6 *)&h->ss;
1218 ra = (struct sockaddr_in6 *)p->ifa_addr;
1219 got_sockaddr_inet6_init(sin6, &ra->sin6_addr,
1220 ra->sin6_scope_id);
1223 TAILQ_INSERT_HEAD(al, h, entry);
1224 cnt++;
1226 if (af == AF_INET) {
1227 /* Next search for IPv6 addresses */
1228 af = AF_INET6;
1229 goto nextaf;
1232 if (cnt > max) {
1233 log_warnx("%s: %s resolves to more than %d hosts", __func__,
1234 s, max);
1236 freeifaddrs(ifap);
1237 return (cnt);
1240 int
1241 host(const char *s, struct addresslist *al, int max,
1242 in_port_t port, const char *ifname, int ipproto)
1244 struct address *h;
1246 h = host_v4(s);
1248 /* IPv6 address? */
1249 if (h == NULL)
1250 h = host_v6(s);
1252 if (h != NULL) {
1253 if (port)
1254 h->port = port;
1255 if (ifname != NULL) {
1256 if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1257 sizeof(h->ifname)) {
1258 log_warnx("%s: interface name truncated",
1259 __func__);
1260 free(h);
1261 return (-1);
1264 if (ipproto != -1)
1265 h->ipproto = ipproto;
1267 TAILQ_INSERT_HEAD(al, h, entry);
1268 return (1);
1271 return (host_dns(s, al, max, port, ifname, ipproto));
1274 int
1275 is_if_in_group(const char *ifname, const char *groupname)
1277 /* TA: Check this... */
1278 #ifdef HAVE_STRUCT_IFGROUPREQ
1279 unsigned int len;
1280 struct ifgroupreq ifgr;
1281 struct ifg_req *ifg;
1282 int s;
1283 int ret = 0;
1285 if ((s = socket(AF_INET, SOCK_DGRAM, 0)) == -1)
1286 err(1, "socket");
1288 memset(&ifgr, 0, sizeof(ifgr));
1289 if (strlcpy(ifgr.ifgr_name, ifname, IFNAMSIZ) >= IFNAMSIZ)
1290 err(1, "IFNAMSIZ");
1291 if (ioctl(s, SIOCGIFGROUP, (caddr_t)&ifgr) == -1) {
1292 if (errno == EINVAL || errno == ENOTTY)
1293 goto end;
1294 err(1, "SIOCGIFGROUP");
1297 len = ifgr.ifgr_len;
1298 ifgr.ifgr_groups = calloc(len / sizeof(struct ifg_req),
1299 sizeof(struct ifg_req));
1300 if (ifgr.ifgr_groups == NULL)
1301 err(1, "getifgroups");
1302 if (ioctl(s, SIOCGIFGROUP, (caddr_t)&ifgr) == -1)
1303 err(1, "SIOCGIFGROUP");
1305 ifg = ifgr.ifgr_groups;
1306 for (; ifg && len >= sizeof(struct ifg_req); ifg++) {
1307 len -= sizeof(struct ifg_req);
1308 if (strcmp(ifg->ifgrq_group, groupname) == 0) {
1309 ret = 1;
1310 break;
1313 free(ifgr.ifgr_groups);
1315 end:
1316 close(s);
1317 return (ret);
1318 #else
1319 return (0);
1320 #endif
1323 int
1324 get_addrs(const char *addr, struct addresslist *al, in_port_t port)
1326 if (strcmp("", addr) == 0) {
1327 if (host("0.0.0.0", al, 1, port, "0.0.0.0", -1) <= 0) {
1328 yyerror("invalid listen ip: %s",
1329 "0.0.0.0");
1330 return (-1);
1332 if (host("::", al, 1, port, "::", -1) <= 0) {
1333 yyerror("invalid listen ip: %s", "::");
1334 return (-1);
1336 } else {
1337 if (host(addr, al, GOTWEBD_MAXIFACE, port, addr,
1338 -1) <= 0) {
1339 yyerror("invalid listen ip: %s", addr);
1340 return (-1);
1343 return (0);