2 * Copyright (c) 2016-2019, 2020-2021 Tracey Emery <tracey@traceyemery.net>
3 * Copyright (c) 2004, 2005 Esben Norby <norby@openbsd.org>
4 * Copyright (c) 2004 Ryan McBride <mcbride@openbsd.org>
5 * Copyright (c) 2002, 2003, 2004 Henning Brauer <henning@openbsd.org>
6 * Copyright (c) 2001 Markus Friedl. All rights reserved.
7 * Copyright (c) 2001 Daniel Hartmeier. All rights reserved.
8 * Copyright (c) 2001 Theo de Raadt. All rights reserved.
10 * Permission to use, copy, modify, and distribute this software for any
11 * purpose with or without fee is hereby granted, provided that the above
12 * copyright notice and this permission notice appear in all copies.
14 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
15 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
16 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
17 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
18 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
19 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
20 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
24 #include <sys/ioctl.h>
25 #include <sys/types.h>
26 #include <sys/queue.h>
27 #include <sys/socket.h>
31 #include <netinet/in.h>
33 #include <arpa/inet.h>
53 TAILQ_HEAD(files, file) files = TAILQ_HEAD_INITIALIZER(files);
55 TAILQ_ENTRY(file) entry;
61 struct file *newfile(const char *, int);
62 static void closefile(struct file *);
63 int check_file_secrecy(int, const char *);
66 int yyerror(const char *, ...)
67 __attribute__((__format__ (printf, 1, 2)))
68 __attribute__((__nonnull__ (1)));
69 int kw_cmp(const void *, const void *);
75 TAILQ_HEAD(symhead, sym) symhead = TAILQ_HEAD_INITIALIZER(symhead);
77 TAILQ_ENTRY(sym) entry;
84 int symset(const char *, const char *, int);
85 char *symget(const char *);
89 static struct gotwebd *gotwebd;
90 static struct server *new_srv;
91 static struct server *conf_new_server(const char *);
92 int getservice(const char *);
95 int get_addrs(const char *, struct addresslist *, in_port_t);
96 struct address *host_v4(const char *);
97 struct address *host_v6(const char *);
98 int host_dns(const char *, struct addresslist *,
99 int, in_port_t, const char *, int);
100 int host_if(const char *, struct addresslist *,
101 int, in_port_t, const char *, int);
102 int host(const char *, struct addresslist *,
103 int, in_port_t, const char *, int);
104 int is_if_in_group(const char *, const char *);
117 %token BIND INTERFACE WWW_PATH MAX_REPOS SITE_NAME SITE_OWNER SITE_LINK LOGO
118 %token LOGO_URL SHOW_REPO_OWNER SHOW_REPO_AGE SHOW_REPO_DESCRIPTION
119 %token MAX_REPOS_DISPLAY REPOS_PATH MAX_COMMITS_DISPLAY ON ERROR
120 %token SHOW_SITE_OWNER SHOW_REPO_CLONEURL PORT PREFORK FCGI_SOCKET
121 %token UNIX_SOCKET UNIX_SOCKET_NAME SERVER CHROOT CUSTOM_CSS
123 %token <v.string> STRING
124 %type <v.port> fcgiport
125 %token <v.number> NUMBER
126 %type <v.number> boolean
133 | grammar server '\n'
137 if (strcasecmp($1, "1") == 0 ||
138 strcasecmp($1, "yes") == 0 ||
139 strcasecmp($1, "on") == 0)
141 else if (strcasecmp($1, "0") == 0 ||
142 strcasecmp($1, "off") == 0 ||
143 strcasecmp($1, "no") == 0)
146 yyerror("invalid boolean value '%s'", $1);
153 | NUMBER { $$ = $1; }
157 if ($1 <= 0 || $1 > (int)USHRT_MAX) {
158 yyerror("invalid port: %lld", $1);
166 if ((val = getservice($1)) == -1) {
167 yyerror("invalid port: %s", $1);
177 main : PREFORK NUMBER {
178 gotwebd->prefork_gotwebd = $2;
181 n = strlcpy(gotwebd->httpd_chroot, $2,
182 sizeof(gotwebd->httpd_chroot));
183 if (n >= sizeof(gotwebd->httpd_chroot)) {
184 yyerror("%s: httpd_chroot truncated", __func__);
190 | FCGI_SOCKET boolean {
191 gotwebd->fcgi_socket = $2;
193 | FCGI_SOCKET boolean {
194 gotwebd->fcgi_socket = $2;
195 } '{' optnl socketopts4 '}'
196 | UNIX_SOCKET boolean {
197 gotwebd->unix_socket = $2;
199 | UNIX_SOCKET_NAME STRING {
200 n = snprintf(gotwebd->unix_socket_name,
201 sizeof(gotwebd->unix_socket_name), "%s%s",
202 strlen(gotwebd->httpd_chroot) ?
203 gotwebd->httpd_chroot : D_HTTPD_CHROOT, $2);
205 yyerror("%s: unix_socket_name truncated",
214 server : SERVER STRING {
217 TAILQ_FOREACH(srv, gotwebd->servers, entry) {
218 if (strcmp(srv->name, $2) == 0) {
219 yyerror("server name exists '%s'", $2);
225 new_srv = conf_new_server($2);
226 if (new_srv->fcgi_socket)
227 if (get_addrs(new_srv->fcgi_socket_bind,
229 new_srv->fcgi_socket_port) == -1) {
230 yyerror("could not get tcp iface "
234 log_debug("adding server %s", $2);
240 TAILQ_FOREACH(srv, gotwebd->servers, entry) {
241 if (strcmp(srv->name, $2) == 0) {
242 yyerror("server name exists '%s'", $2);
248 new_srv = conf_new_server($2);
249 log_debug("adding server %s", $2);
251 } '{' optnl serveropts2 '}' {
252 if (get_addrs(new_srv->fcgi_socket_bind,
253 new_srv->al, new_srv->fcgi_socket_port) == -1) {
254 yyerror("could not get tcp iface addrs");
260 serveropts1 : REPOS_PATH STRING {
261 n = strlcpy(new_srv->repos_path, $2,
262 sizeof(new_srv->repos_path));
263 if (n >= sizeof(new_srv->repos_path)) {
264 yyerror("%s: repos_path truncated", __func__);
271 n = strlcpy(new_srv->site_name, $2,
272 sizeof(new_srv->site_name));
273 if (n >= sizeof(new_srv->site_name)) {
274 yyerror("%s: site_name truncated", __func__);
280 | SITE_OWNER STRING {
281 n = strlcpy(new_srv->site_owner, $2,
282 sizeof(new_srv->site_owner));
283 if (n >= sizeof(new_srv->site_owner)) {
284 yyerror("%s: site_owner truncated", __func__);
291 n = strlcpy(new_srv->site_link, $2,
292 sizeof(new_srv->site_link));
293 if (n >= sizeof(new_srv->site_link)) {
294 yyerror("%s: site_link truncated", __func__);
301 n = strlcpy(new_srv->logo, $2, sizeof(new_srv->logo));
302 if (n >= sizeof(new_srv->logo)) {
303 yyerror("%s: logo truncated", __func__);
310 n = strlcpy(new_srv->logo_url, $2,
311 sizeof(new_srv->logo_url));
312 if (n >= sizeof(new_srv->logo_url)) {
313 yyerror("%s: logo_url truncated", __func__);
319 | CUSTOM_CSS STRING {
320 n = strlcpy(new_srv->custom_css, $2,
321 sizeof(new_srv->custom_css));
322 if (n >= sizeof(new_srv->custom_css)) {
323 yyerror("%s: custom_css truncated", __func__);
331 new_srv->max_repos = $2;
333 | SHOW_SITE_OWNER boolean {
334 new_srv->show_site_owner = $2;
336 | SHOW_REPO_OWNER boolean {
337 new_srv->show_repo_owner = $2;
339 | SHOW_REPO_AGE boolean {
340 new_srv->show_repo_age = $2;
342 | SHOW_REPO_DESCRIPTION boolean {
343 new_srv->show_repo_description = $2;
345 | SHOW_REPO_CLONEURL boolean {
346 new_srv->show_repo_cloneurl = $2;
348 | MAX_REPOS_DISPLAY NUMBER {
349 new_srv->max_repos_display = $2;
351 | MAX_COMMITS_DISPLAY NUMBER {
353 new_srv->max_commits_display = $2;
355 | FCGI_SOCKET boolean {
356 new_srv->fcgi_socket = $2;
358 | FCGI_SOCKET boolean {
359 new_srv->fcgi_socket = $2;
360 } '{' optnl socketopts2 '}'
361 | UNIX_SOCKET boolean {
362 new_srv->unix_socket = $2;
364 | UNIX_SOCKET_NAME STRING {
365 n = snprintf(new_srv->unix_socket_name,
366 sizeof(new_srv->unix_socket_name), "%s%s",
367 strlen(gotwebd->httpd_chroot) ?
368 gotwebd->httpd_chroot : D_HTTPD_CHROOT, $2);
370 yyerror("%s: unix_socket_name truncated",
379 serveropts2 : serveropts2 serveropts1 nl
383 socketopts1 : BIND INTERFACE STRING {
384 n = strlcpy(new_srv->fcgi_socket_bind, $3,
385 sizeof(new_srv->fcgi_socket_bind));
386 if (n >= sizeof(new_srv->fcgi_socket_bind)) {
387 yyerror("%s: fcgi_socket_bind truncated",
397 TAILQ_FOREACH(srv, gotwebd->servers, entry) {
398 if (srv->fcgi_socket_port == $2) {
399 yyerror("port already assigned");
403 new_srv->fcgi_socket_port = $2;
407 socketopts2 : socketopts2 socketopts1 nl
411 socketopts3 : BIND INTERFACE STRING {
412 n = strlcpy(gotwebd->fcgi_socket_bind, $3,
413 sizeof(gotwebd->fcgi_socket_bind));
414 if (n >= sizeof(gotwebd->fcgi_socket_bind)) {
415 yyerror("%s: fcgi_socket_bind truncated",
423 gotwebd->fcgi_socket_port = $2;
427 socketopts4 : socketopts4 socketopts3 nl
434 optnl : '\n' optnl /* zero or more newlines */
446 yyerror(const char *fmt, ...)
453 if (vasprintf(&msg, fmt, ap) == -1)
454 fatalx("yyerror vasprintf");
456 logit(LOG_CRIT, "%s:%d: %s", file->name, yylval.lineno, msg);
462 kw_cmp(const void *k, const void *e)
464 return (strcmp(k, ((const struct keywords *)e)->k_name));
470 /* This has to be sorted always. */
471 static const struct keywords keywords[] = {
473 { "chroot", CHROOT },
474 { "custom_css", CUSTOM_CSS },
475 { "fcgi_socket", FCGI_SOCKET },
476 { "interface", INTERFACE },
478 { "logo_url" , LOGO_URL },
479 { "max_commits_display", MAX_COMMITS_DISPLAY },
480 { "max_repos", MAX_REPOS },
481 { "max_repos_display", MAX_REPOS_DISPLAY },
483 { "prefork", PREFORK },
484 { "repos_path", REPOS_PATH },
485 { "server", SERVER },
486 { "show_repo_age", SHOW_REPO_AGE },
487 { "show_repo_cloneurl", SHOW_REPO_CLONEURL },
488 { "show_repo_description", SHOW_REPO_DESCRIPTION },
489 { "show_repo_owner", SHOW_REPO_OWNER },
490 { "show_site_owner", SHOW_SITE_OWNER },
491 { "site_link", SITE_LINK },
492 { "site_name", SITE_NAME },
493 { "site_owner", SITE_OWNER },
494 { "unix_socket", UNIX_SOCKET },
495 { "unix_socket_name", UNIX_SOCKET_NAME },
497 const struct keywords *p;
499 p = bsearch(s, keywords, sizeof(keywords)/sizeof(keywords[0]),
500 sizeof(keywords[0]), kw_cmp);
508 #define MAXPUSHBACK 128
510 unsigned char *parsebuf;
512 unsigned char pushback_buffer[MAXPUSHBACK];
513 int pushback_index = 0;
521 /* Read character from the parsebuffer instead of input. */
522 if (parseindex >= 0) {
523 c = parsebuf[parseindex++];
532 return (pushback_buffer[--pushback_index]);
535 c = getc(file->stream);
537 yyerror("reached end of file while parsing "
542 c = getc(file->stream);
544 next = getc(file->stream);
549 yylval.lineno = file->lineno;
551 c = getc(file->stream);
567 if (pushback_index < MAXPUSHBACK-1)
568 return (pushback_buffer[pushback_index++] = c);
580 /* Skip to either EOF or the first real EOL. */
583 c = pushback_buffer[--pushback_index];
599 unsigned char buf[8096];
600 unsigned char *p, *val;
607 while (c == ' ' || c == '\t')
608 c = lgetc(0); /* nothing */
610 yylval.lineno = file->lineno;
613 while (c != '\n' && c != EOF)
614 c = lgetc(0); /* nothing */
616 if (c == '$' && parsebuf == NULL) {
622 if (p + 1 >= buf + sizeof(buf) - 1) {
623 yyerror("string too long");
626 if (isalnum(c) || c == '_') {
636 yyerror("macro '%s' not defined", buf);
655 } else if (c == '\\') {
656 next = lgetc(quotec);
659 if (next == quotec || c == ' ' || c == '\t')
661 else if (next == '\n') {
666 } else if (c == quotec) {
669 } else if (c == '\0') {
670 yyerror("syntax error");
673 if (p + 1 >= buf + sizeof(buf) - 1) {
674 yyerror("string too long");
679 yylval.v.string = strdup(buf);
680 if (yylval.v.string == NULL)
681 err(1, "yylex: strdup");
685 #define allowed_to_end_number(x) \
686 (isspace(x) || x == ')' || x ==',' || x == '/' || x == '}' || x == '=')
688 if (c == '-' || isdigit(c)) {
691 if ((unsigned)(p-buf) >= sizeof(buf)) {
692 yyerror("string too long");
696 } while (c != EOF && isdigit(c));
698 if (p == buf + 1 && buf[0] == '-')
700 if (c == EOF || allowed_to_end_number(c)) {
701 const char *errstr = NULL;
704 yylval.v.number = strtonum(buf, LLONG_MIN,
707 yyerror("\"%s\" invalid number: %s",
722 #define allowed_in_string(x) \
723 (isalnum(x) || (ispunct(x) && x != '(' && x != ')' && \
724 x != '{' && x != '}' && \
725 x != '!' && x != '=' && x != '#' && \
728 if (isalnum(c) || c == ':' || c == '_') {
731 if ((unsigned)(p-buf) >= sizeof(buf)) {
732 yyerror("string too long");
736 } while (c != EOF && (allowed_in_string(c)));
740 if (token == STRING) {
741 yylval.v.string = strdup(buf);
742 if (yylval.v.string == NULL)
743 err(1, "yylex: strdup");
748 yylval.lineno = file->lineno;
757 check_file_secrecy(int fd, const char *fname)
761 if (fstat(fd, &st)) {
762 log_warn("cannot stat %s", fname);
765 if (st.st_uid != 0 && st.st_uid != getuid()) {
766 log_warnx("%s: owner not root or current user", fname);
769 if (st.st_mode & (S_IWGRP | S_IXGRP | S_IRWXO)) {
770 log_warnx("%s: group writable or world read/writable", fname);
777 newfile(const char *name, int secret)
781 nfile = calloc(1, sizeof(struct file));
786 nfile->name = strdup(name);
787 if (nfile->name == NULL) {
792 nfile->stream = fopen(nfile->name, "r");
793 if (nfile->stream == NULL) {
794 /* no warning, we don't require a conf file */
799 check_file_secrecy(fileno(nfile->stream), nfile->name)) {
800 fclose(nfile->stream);
810 closefile(struct file *xfile)
812 fclose(xfile->stream);
818 parse_config(const char *filename, struct gotwebd *env)
820 struct sym *sym, *next;
822 file = newfile(filename, 0);
824 /* just return, as we don't require a conf file */
827 if (config_init(env) == -1)
828 fatalx("failed to initialize configuration");
833 errors = file->errors;
836 /* Free macros and check which have not been used. */
837 TAILQ_FOREACH_SAFE(sym, &symhead, entry, next) {
838 if ((gotwebd->gotwebd_verbose > 1) && !sym->used)
839 fprintf(stderr, "warning: macro '%s' not used\n",
844 TAILQ_REMOVE(&symhead, sym, entry);
852 /* just add default server if no config specified */
853 if (gotwebd->server_cnt == 0) {
854 new_srv = conf_new_server(D_SITENAME);
855 log_debug("%s: adding default server %s", __func__, D_SITENAME);
858 /* setup our listening sockets */
859 sockets_parse_sockets(env);
865 conf_new_server(const char *name)
867 struct server *srv = NULL;
870 srv = calloc(1, sizeof(*srv));
872 fatalx("%s: calloc", __func__);
874 n = strlcpy(srv->name, name, sizeof(srv->name));
875 if (n >= sizeof(srv->name))
876 fatalx("%s: strlcpy", __func__);
877 n = snprintf(srv->unix_socket_name,
878 sizeof(srv->unix_socket_name), "%s%s", D_HTTPD_CHROOT,
881 fatalx("%s: snprintf", __func__);
882 n = strlcpy(srv->repos_path, D_GOTPATH,
883 sizeof(srv->repos_path));
884 if (n >= sizeof(srv->repos_path))
885 fatalx("%s: strlcpy", __func__);
886 n = strlcpy(srv->site_name, D_SITENAME,
887 sizeof(srv->site_name));
888 if (n >= sizeof(srv->site_name))
889 fatalx("%s: strlcpy", __func__);
890 n = strlcpy(srv->site_owner, D_SITEOWNER,
891 sizeof(srv->site_owner));
892 if (n >= sizeof(srv->site_owner))
893 fatalx("%s: strlcpy", __func__);
894 n = strlcpy(srv->site_link, D_SITELINK,
895 sizeof(srv->site_link));
896 if (n >= sizeof(srv->site_link))
897 fatalx("%s: strlcpy", __func__);
898 n = strlcpy(srv->logo, D_GOTLOGO,
900 if (n >= sizeof(srv->logo))
901 fatalx("%s: strlcpy", __func__);
902 n = strlcpy(srv->logo_url, D_GOTURL, sizeof(srv->logo_url));
903 if (n >= sizeof(srv->logo_url))
904 fatalx("%s: strlcpy", __func__);
905 n = strlcpy(srv->custom_css, D_GOTWEBCSS, sizeof(srv->custom_css));
906 if (n >= sizeof(srv->custom_css))
907 fatalx("%s: strlcpy", __func__);
909 val = getservice(D_FCGI_PORT);
910 srv->fcgi_socket_port = gotwebd->fcgi_socket_port ?
911 gotwebd->fcgi_socket_port: htons(val);
913 srv->show_site_owner = D_SHOWSOWNER;
914 srv->show_repo_owner = D_SHOWROWNER;
915 srv->show_repo_age = D_SHOWAGE;
916 srv->show_repo_description = D_SHOWDESC;
917 srv->show_repo_cloneurl = D_SHOWURL;
919 srv->max_repos_display = D_MAXREPODISP;
920 srv->max_commits_display = D_MAXCOMMITDISP;
921 srv->max_repos = D_MAXREPO;
923 srv->unix_socket = 1;
924 srv->fcgi_socket = gotwebd->fcgi_socket ? gotwebd->fcgi_socket : 0;
926 if ((srv->al = calloc(1, sizeof(*srv->al))) == NULL)
927 fatalx("%s: calloc", __func__);
930 TAILQ_INSERT_TAIL(gotwebd->servers, srv, entry);
931 gotwebd->server_cnt++;
937 symset(const char *nam, const char *val, int persist)
941 TAILQ_FOREACH(sym, &symhead, entry) {
942 if (strcmp(nam, sym->nam) == 0)
947 if (sym->persist == 1)
952 TAILQ_REMOVE(&symhead, sym, entry);
956 sym = calloc(1, sizeof(*sym));
960 sym->nam = strdup(nam);
961 if (sym->nam == NULL) {
965 sym->val = strdup(val);
966 if (sym->val == NULL) {
972 sym->persist = persist;
973 TAILQ_INSERT_TAIL(&symhead, sym, entry);
978 cmdline_symset(char *s)
984 val = strrchr(s, '=');
988 len = strlen(s) - strlen(val) + 1;
991 fatal("%s: malloc", __func__);
993 memcpy(&sym, s, len);
995 ret = symset(sym, val + 1, 1);
1002 symget(const char *nam)
1006 TAILQ_FOREACH(sym, &symhead, entry) {
1007 if (strcmp(nam, sym->nam) == 0) {
1016 getservice(const char *n)
1022 llval = strtonum(n, 0, UINT16_MAX, &errstr);
1024 s = getservbyname(n, "tcp");
1026 s = getservbyname(n, "udp");
1032 return (htons((unsigned short)llval));
1036 host_v4(const char *s)
1039 struct sockaddr_in *sain;
1042 memset(&ina, 0, sizeof(ina));
1043 if (inet_pton(AF_INET, s, &ina) != 1)
1046 if ((h = calloc(1, sizeof(*h))) == NULL)
1048 sain = (struct sockaddr_in *)&h->ss;
1049 sain->sin_len = sizeof(struct sockaddr_in);
1050 sain->sin_family = AF_INET;
1051 sain->sin_addr.s_addr = ina.s_addr;
1052 if (sain->sin_addr.s_addr == INADDR_ANY)
1053 h->prefixlen = 0; /* 0.0.0.0 address */
1055 h->prefixlen = -1; /* host address */
1060 host_v6(const char *s)
1062 struct addrinfo hints, *res;
1063 struct sockaddr_in6 *sa_in6;
1064 struct address *h = NULL;
1066 memset(&hints, 0, sizeof(hints));
1067 hints.ai_family = AF_INET6;
1068 hints.ai_socktype = SOCK_DGRAM; /* dummy */
1069 hints.ai_flags = AI_NUMERICHOST;
1070 if (getaddrinfo(s, "0", &hints, &res) == 0) {
1071 if ((h = calloc(1, sizeof(*h))) == NULL)
1073 sa_in6 = (struct sockaddr_in6 *)&h->ss;
1074 sa_in6->sin6_len = sizeof(struct sockaddr_in6);
1075 sa_in6->sin6_family = AF_INET6;
1076 memcpy(&sa_in6->sin6_addr,
1077 &((struct sockaddr_in6 *)res->ai_addr)->sin6_addr,
1078 sizeof(sa_in6->sin6_addr));
1079 sa_in6->sin6_scope_id =
1080 ((struct sockaddr_in6 *)res->ai_addr)->sin6_scope_id;
1081 if (memcmp(&sa_in6->sin6_addr, &in6addr_any,
1082 sizeof(sa_in6->sin6_addr)) == 0)
1083 h->prefixlen = 0; /* any address */
1085 h->prefixlen = -1; /* host address */
1093 host_dns(const char *s, struct addresslist *al, int max,
1094 in_port_t port, const char *ifname, int ipproto)
1096 struct addrinfo hints, *res0, *res;
1098 struct sockaddr_in *sain;
1099 struct sockaddr_in6 *sin6;
1102 if ((cnt = host_if(s, al, max, port, ifname, ipproto)) != 0)
1105 memset(&hints, 0, sizeof(hints));
1106 hints.ai_family = PF_UNSPEC;
1107 hints.ai_socktype = SOCK_DGRAM; /* DUMMY */
1108 hints.ai_flags = AI_ADDRCONFIG;
1109 error = getaddrinfo(s, NULL, &hints, &res0);
1110 if (error == EAI_AGAIN || error == EAI_NODATA || error == EAI_NONAME)
1113 log_warnx("%s: could not parse \"%s\": %s", __func__, s,
1114 gai_strerror(error));
1118 for (res = res0; res && cnt < max; res = res->ai_next) {
1119 if (res->ai_family != AF_INET &&
1120 res->ai_family != AF_INET6)
1122 if ((h = calloc(1, sizeof(*h))) == NULL)
1127 if (ifname != NULL) {
1128 if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1129 sizeof(h->ifname)) {
1130 log_warnx("%s: interface name truncated",
1138 h->ipproto = ipproto;
1139 h->ss.ss_family = res->ai_family;
1140 h->prefixlen = -1; /* host address */
1142 if (res->ai_family == AF_INET) {
1143 sain = (struct sockaddr_in *)&h->ss;
1144 sain->sin_len = sizeof(struct sockaddr_in);
1145 sain->sin_addr.s_addr = ((struct sockaddr_in *)
1146 res->ai_addr)->sin_addr.s_addr;
1148 sin6 = (struct sockaddr_in6 *)&h->ss;
1149 sin6->sin6_len = sizeof(struct sockaddr_in6);
1150 memcpy(&sin6->sin6_addr, &((struct sockaddr_in6 *)
1151 res->ai_addr)->sin6_addr, sizeof(struct in6_addr));
1154 TAILQ_INSERT_HEAD(al, h, entry);
1157 if (cnt == max && res) {
1158 log_warnx("%s: %s resolves to more than %d hosts", __func__,
1166 host_if(const char *s, struct addresslist *al, int max,
1167 in_port_t port, const char *ifname, int ipproto)
1169 struct ifaddrs *ifap, *p;
1170 struct sockaddr_in *sain;
1171 struct sockaddr_in6 *sin6;
1175 if (getifaddrs(&ifap) == -1)
1176 fatal("getifaddrs");
1178 /* First search for IPv4 addresses */
1182 for (p = ifap; p != NULL && cnt < max; p = p->ifa_next) {
1183 if (p->ifa_addr == NULL ||
1184 p->ifa_addr->sa_family != af ||
1185 (strcmp(s, p->ifa_name) != 0 &&
1186 !is_if_in_group(p->ifa_name, s)))
1188 if ((h = calloc(1, sizeof(*h))) == NULL)
1193 if (ifname != NULL) {
1194 if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1195 sizeof(h->ifname)) {
1196 log_warnx("%s: interface name truncated",
1204 h->ipproto = ipproto;
1205 h->ss.ss_family = af;
1206 h->prefixlen = -1; /* host address */
1208 if (af == AF_INET) {
1209 sain = (struct sockaddr_in *)&h->ss;
1210 sain->sin_len = sizeof(struct sockaddr_in);
1211 sain->sin_addr.s_addr = ((struct sockaddr_in *)
1212 p->ifa_addr)->sin_addr.s_addr;
1214 sin6 = (struct sockaddr_in6 *)&h->ss;
1215 sin6->sin6_len = sizeof(struct sockaddr_in6);
1216 memcpy(&sin6->sin6_addr, &((struct sockaddr_in6 *)
1217 p->ifa_addr)->sin6_addr, sizeof(struct in6_addr));
1218 sin6->sin6_scope_id = ((struct sockaddr_in6 *)
1219 p->ifa_addr)->sin6_scope_id;
1222 TAILQ_INSERT_HEAD(al, h, entry);
1225 if (af == AF_INET) {
1226 /* Next search for IPv6 addresses */
1232 log_warnx("%s: %s resolves to more than %d hosts", __func__,
1240 host(const char *s, struct addresslist *al, int max,
1241 in_port_t port, const char *ifname, int ipproto)
1254 if (ifname != NULL) {
1255 if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1256 sizeof(h->ifname)) {
1257 log_warnx("%s: interface name truncated",
1264 h->ipproto = ipproto;
1266 TAILQ_INSERT_HEAD(al, h, entry);
1270 return (host_dns(s, al, max, port, ifname, ipproto));
1274 is_if_in_group(const char *ifname, const char *groupname)
1277 struct ifgroupreq ifgr;
1278 struct ifg_req *ifg;
1282 if ((s = socket(AF_INET, SOCK_DGRAM, 0)) == -1)
1285 memset(&ifgr, 0, sizeof(ifgr));
1286 if (strlcpy(ifgr.ifgr_name, ifname, IFNAMSIZ) >= IFNAMSIZ)
1288 if (ioctl(s, SIOCGIFGROUP, (caddr_t)&ifgr) == -1) {
1289 if (errno == EINVAL || errno == ENOTTY)
1291 err(1, "SIOCGIFGROUP");
1294 len = ifgr.ifgr_len;
1295 ifgr.ifgr_groups = calloc(len / sizeof(struct ifg_req),
1296 sizeof(struct ifg_req));
1297 if (ifgr.ifgr_groups == NULL)
1298 err(1, "getifgroups");
1299 if (ioctl(s, SIOCGIFGROUP, (caddr_t)&ifgr) == -1)
1300 err(1, "SIOCGIFGROUP");
1302 ifg = ifgr.ifgr_groups;
1303 for (; ifg && len >= sizeof(struct ifg_req); ifg++) {
1304 len -= sizeof(struct ifg_req);
1305 if (strcmp(ifg->ifgrq_group, groupname) == 0) {
1310 free(ifgr.ifgr_groups);
1318 get_addrs(const char *addr, struct addresslist *al, in_port_t port)
1320 if (strcmp("", addr) == 0) {
1321 if (host("0.0.0.0", al, 1, port, "0.0.0.0", -1) <= 0) {
1322 yyerror("invalid listen ip: %s",
1326 if (host("::", al, 1, port, "::", -1) <= 0) {
1327 yyerror("invalid listen ip: %s", "::");
1331 if (host(addr, al, GOTWEBD_MAXIFACE, port, addr,
1333 yyerror("invalid listen ip: %s", addr);