2 * Copyright (c) 2016-2019, 2020-2021 Tracey Emery <tracey@traceyemery.net>
3 * Copyright (c) 2004, 2005 Esben Norby <norby@openbsd.org>
4 * Copyright (c) 2004 Ryan McBride <mcbride@openbsd.org>
5 * Copyright (c) 2002, 2003, 2004 Henning Brauer <henning@openbsd.org>
6 * Copyright (c) 2001 Markus Friedl. All rights reserved.
7 * Copyright (c) 2001 Daniel Hartmeier. All rights reserved.
8 * Copyright (c) 2001 Theo de Raadt. All rights reserved.
10 * Permission to use, copy, modify, and distribute this software for any
11 * purpose with or without fee is hereby granted, provided that the above
12 * copyright notice and this permission notice appear in all copies.
14 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
15 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
16 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
17 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
18 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
19 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
20 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
24 #include <sys/ioctl.h>
25 #include <sys/types.h>
26 #include <sys/queue.h>
27 #include <sys/socket.h>
31 #include <netinet/in.h>
33 #include <arpa/inet.h>
51 #include "got_sockaddr.h"
53 TAILQ_HEAD(files, file) files = TAILQ_HEAD_INITIALIZER(files);
55 TAILQ_ENTRY(file) entry;
61 struct file *newfile(const char *, int);
62 static void closefile(struct file *);
63 int check_file_secrecy(int, const char *);
66 int yyerror(const char *, ...)
67 __attribute__((__format__ (printf, 1, 2)))
68 __attribute__((__nonnull__ (1)));
69 int kw_cmp(const void *, const void *);
75 TAILQ_HEAD(symhead, sym) symhead = TAILQ_HEAD_INITIALIZER(symhead);
77 TAILQ_ENTRY(sym) entry;
84 int symset(const char *, const char *, int);
85 char *symget(const char *);
89 static struct gotwebd *gotwebd;
90 static struct server *new_srv;
91 static struct server *conf_new_server(const char *);
92 int getservice(const char *);
95 int get_addrs(const char *, struct server *, in_port_t);
96 int addr_dup_check(struct addresslist *, struct address *,
97 const char *, const char *);
98 int add_addr(struct server *, struct address *);
99 struct address *host_v4(const char *);
100 struct address *host_v6(const char *);
101 int host_dns(const char *, struct server *,
102 int, in_port_t, const char *, int);
103 int host_if(const char *, struct server *,
104 int, in_port_t, const char *, int);
105 int host(const char *, struct server *,
106 int, in_port_t, const char *, int);
107 int is_if_in_group(const char *, const char *);
120 %token LISTEN WWW_PATH MAX_REPOS SITE_NAME SITE_OWNER SITE_LINK LOGO
121 %token LOGO_URL SHOW_REPO_OWNER SHOW_REPO_AGE SHOW_REPO_DESCRIPTION
122 %token MAX_REPOS_DISPLAY REPOS_PATH MAX_COMMITS_DISPLAY ON ERROR
123 %token SHOW_SITE_OWNER SHOW_REPO_CLONEURL PORT PREFORK RESPECT_EXPORTOK
124 %token UNIX_SOCKET UNIX_SOCKET_NAME SERVER CHROOT CUSTOM_CSS
126 %token <v.string> STRING
127 %type <v.port> fcgiport
128 %token <v.number> NUMBER
129 %type <v.number> boolean
133 grammar : /* empty */
135 | grammar varset '\n'
137 | grammar server '\n'
138 | grammar error '\n' { file->errors++; }
141 varset : STRING '=' STRING {
144 if (isspace((unsigned char)*s)) {
145 yyerror("macro name cannot contain "
152 if (symset($1, $3, 0) == -1)
153 fatal("cannot store variable");
160 if (strcasecmp($1, "1") == 0 ||
161 strcasecmp($1, "yes") == 0 ||
162 strcasecmp($1, "on") == 0)
164 else if (strcasecmp($1, "0") == 0 ||
165 strcasecmp($1, "off") == 0 ||
166 strcasecmp($1, "no") == 0)
169 yyerror("invalid boolean value '%s'", $1);
176 | NUMBER { $$ = $1; }
179 fcgiport : PORT NUMBER {
180 if ($2 <= 0 || $2 > (int)USHRT_MAX) {
181 yyerror("invalid port: %lld", $2);
189 if ((val = getservice($2)) == -1) {
190 yyerror("invalid port: %s", $2);
200 main : PREFORK NUMBER {
201 gotwebd->prefork_gotwebd = $2;
204 n = strlcpy(gotwebd->httpd_chroot, $2,
205 sizeof(gotwebd->httpd_chroot));
206 if (n >= sizeof(gotwebd->httpd_chroot)) {
207 yyerror("%s: httpd_chroot truncated", __func__);
213 | UNIX_SOCKET boolean {
214 gotwebd->unix_socket = $2;
216 | UNIX_SOCKET_NAME STRING {
217 n = snprintf(gotwebd->unix_socket_name,
218 sizeof(gotwebd->unix_socket_name), "%s%s",
219 strlen(gotwebd->httpd_chroot) ?
220 gotwebd->httpd_chroot : D_HTTPD_CHROOT, $2);
222 (size_t)n >= sizeof(gotwebd->unix_socket_name)) {
223 yyerror("%s: unix_socket_name truncated",
232 server : SERVER STRING {
235 TAILQ_FOREACH(srv, &gotwebd->servers, entry) {
236 if (strcmp(srv->name, $2) == 0) {
237 yyerror("server name exists '%s'", $2);
243 new_srv = conf_new_server($2);
244 log_debug("adding server %s", $2);
250 TAILQ_FOREACH(srv, &gotwebd->servers, entry) {
251 if (strcmp(srv->name, $2) == 0) {
252 yyerror("server name exists '%s'", $2);
258 new_srv = conf_new_server($2);
259 log_debug("adding server %s", $2);
261 } '{' optnl serveropts2 '}' {
265 serveropts1 : REPOS_PATH STRING {
266 n = strlcpy(new_srv->repos_path, $2,
267 sizeof(new_srv->repos_path));
268 if (n >= sizeof(new_srv->repos_path)) {
269 yyerror("%s: repos_path truncated", __func__);
276 n = strlcpy(new_srv->site_name, $2,
277 sizeof(new_srv->site_name));
278 if (n >= sizeof(new_srv->site_name)) {
279 yyerror("%s: site_name truncated", __func__);
285 | SITE_OWNER STRING {
286 n = strlcpy(new_srv->site_owner, $2,
287 sizeof(new_srv->site_owner));
288 if (n >= sizeof(new_srv->site_owner)) {
289 yyerror("%s: site_owner truncated", __func__);
296 n = strlcpy(new_srv->site_link, $2,
297 sizeof(new_srv->site_link));
298 if (n >= sizeof(new_srv->site_link)) {
299 yyerror("%s: site_link truncated", __func__);
306 n = strlcpy(new_srv->logo, $2, sizeof(new_srv->logo));
307 if (n >= sizeof(new_srv->logo)) {
308 yyerror("%s: logo truncated", __func__);
315 n = strlcpy(new_srv->logo_url, $2,
316 sizeof(new_srv->logo_url));
317 if (n >= sizeof(new_srv->logo_url)) {
318 yyerror("%s: logo_url truncated", __func__);
324 | CUSTOM_CSS STRING {
325 n = strlcpy(new_srv->custom_css, $2,
326 sizeof(new_srv->custom_css));
327 if (n >= sizeof(new_srv->custom_css)) {
328 yyerror("%s: custom_css truncated", __func__);
334 | LISTEN ON STRING fcgiport {
335 if (get_addrs($3, new_srv, $4) == -1) {
336 yyerror("could not get addrs");
339 new_srv->fcgi_socket = 1;
343 new_srv->max_repos = $2;
345 | SHOW_SITE_OWNER boolean {
346 new_srv->show_site_owner = $2;
348 | SHOW_REPO_OWNER boolean {
349 new_srv->show_repo_owner = $2;
351 | SHOW_REPO_AGE boolean {
352 new_srv->show_repo_age = $2;
354 | SHOW_REPO_DESCRIPTION boolean {
355 new_srv->show_repo_description = $2;
357 | SHOW_REPO_CLONEURL boolean {
358 new_srv->show_repo_cloneurl = $2;
360 | RESPECT_EXPORTOK boolean {
361 new_srv->respect_exportok = $2;
363 | MAX_REPOS_DISPLAY NUMBER {
364 new_srv->max_repos_display = $2;
366 | MAX_COMMITS_DISPLAY NUMBER {
368 new_srv->max_commits_display = $2;
370 | UNIX_SOCKET boolean {
371 new_srv->unix_socket = $2;
373 | UNIX_SOCKET_NAME STRING {
374 n = snprintf(new_srv->unix_socket_name,
375 sizeof(new_srv->unix_socket_name), "%s%s",
376 strlen(gotwebd->httpd_chroot) ?
377 gotwebd->httpd_chroot : D_HTTPD_CHROOT, $2);
379 (size_t)n >= sizeof(new_srv->unix_socket_name)) {
380 yyerror("%s: unix_socket_name truncated",
389 serveropts2 : serveropts2 serveropts1 nl
396 optnl : '\n' optnl /* zero or more newlines */
408 yyerror(const char *fmt, ...)
415 if (vasprintf(&msg, fmt, ap) == -1)
416 fatalx("yyerror vasprintf");
418 logit(LOG_CRIT, "%s:%d: %s", file->name, yylval.lineno, msg);
424 kw_cmp(const void *k, const void *e)
426 return (strcmp(k, ((const struct keywords *)e)->k_name));
432 /* This has to be sorted always. */
433 static const struct keywords keywords[] = {
434 { "chroot", CHROOT },
435 { "custom_css", CUSTOM_CSS },
436 { "listen", LISTEN },
438 { "logo_url" , LOGO_URL },
439 { "max_commits_display", MAX_COMMITS_DISPLAY },
440 { "max_repos", MAX_REPOS },
441 { "max_repos_display", MAX_REPOS_DISPLAY },
444 { "prefork", PREFORK },
445 { "repos_path", REPOS_PATH },
446 { "respect_exportok", RESPECT_EXPORTOK },
447 { "server", SERVER },
448 { "show_repo_age", SHOW_REPO_AGE },
449 { "show_repo_cloneurl", SHOW_REPO_CLONEURL },
450 { "show_repo_description", SHOW_REPO_DESCRIPTION },
451 { "show_repo_owner", SHOW_REPO_OWNER },
452 { "show_site_owner", SHOW_SITE_OWNER },
453 { "site_link", SITE_LINK },
454 { "site_name", SITE_NAME },
455 { "site_owner", SITE_OWNER },
456 { "unix_socket", UNIX_SOCKET },
457 { "unix_socket_name", UNIX_SOCKET_NAME },
459 const struct keywords *p;
461 p = bsearch(s, keywords, sizeof(keywords)/sizeof(keywords[0]),
462 sizeof(keywords[0]), kw_cmp);
470 #define MAXPUSHBACK 128
472 unsigned char *parsebuf;
474 unsigned char pushback_buffer[MAXPUSHBACK];
475 int pushback_index = 0;
483 /* Read character from the parsebuffer instead of input. */
484 if (parseindex >= 0) {
485 c = parsebuf[parseindex++];
494 return (pushback_buffer[--pushback_index]);
497 c = getc(file->stream);
499 yyerror("reached end of file while parsing "
504 c = getc(file->stream);
506 next = getc(file->stream);
511 yylval.lineno = file->lineno;
513 c = getc(file->stream);
529 if (pushback_index < MAXPUSHBACK-1)
530 return (pushback_buffer[pushback_index++] = c);
542 /* Skip to either EOF or the first real EOL. */
545 c = pushback_buffer[--pushback_index];
561 unsigned char buf[8096];
562 unsigned char *p, *val;
569 while (c == ' ' || c == '\t')
570 c = lgetc(0); /* nothing */
572 yylval.lineno = file->lineno;
575 while (c != '\n' && c != EOF)
576 c = lgetc(0); /* nothing */
578 if (c == '$' && parsebuf == NULL) {
584 if (p + 1 >= buf + sizeof(buf) - 1) {
585 yyerror("string too long");
588 if (isalnum(c) || c == '_') {
598 yyerror("macro '%s' not defined", buf);
617 } else if (c == '\\') {
618 next = lgetc(quotec);
621 if (next == quotec || c == ' ' || c == '\t')
623 else if (next == '\n') {
628 } else if (c == quotec) {
631 } else if (c == '\0') {
632 yyerror("syntax error");
635 if (p + 1 >= buf + sizeof(buf) - 1) {
636 yyerror("string too long");
641 yylval.v.string = strdup(buf);
642 if (yylval.v.string == NULL)
643 err(1, "yylex: strdup");
647 #define allowed_to_end_number(x) \
648 (isspace(x) || x == ')' || x ==',' || x == '/' || x == '}' || x == '=')
650 if (c == '-' || isdigit(c)) {
653 if ((unsigned)(p-buf) >= sizeof(buf)) {
654 yyerror("string too long");
658 } while (c != EOF && isdigit(c));
660 if (p == buf + 1 && buf[0] == '-')
662 if (c == EOF || allowed_to_end_number(c)) {
663 const char *errstr = NULL;
666 yylval.v.number = strtonum(buf, LLONG_MIN,
669 yyerror("\"%s\" invalid number: %s",
684 #define allowed_in_string(x) \
685 (isalnum(x) || (ispunct(x) && x != '(' && x != ')' && \
686 x != '{' && x != '}' && \
687 x != '!' && x != '=' && x != '#' && \
690 if (isalnum(c) || c == ':' || c == '_') {
693 if ((unsigned)(p-buf) >= sizeof(buf)) {
694 yyerror("string too long");
698 } while (c != EOF && (allowed_in_string(c)));
702 if (token == STRING) {
703 yylval.v.string = strdup(buf);
704 if (yylval.v.string == NULL)
705 err(1, "yylex: strdup");
710 yylval.lineno = file->lineno;
719 check_file_secrecy(int fd, const char *fname)
723 if (fstat(fd, &st)) {
724 log_warn("cannot stat %s", fname);
727 if (st.st_uid != 0 && st.st_uid != getuid()) {
728 log_warnx("%s: owner not root or current user", fname);
731 if (st.st_mode & (S_IWGRP | S_IXGRP | S_IRWXO)) {
732 log_warnx("%s: group writable or world read/writable", fname);
739 newfile(const char *name, int secret)
743 nfile = calloc(1, sizeof(struct file));
748 nfile->name = strdup(name);
749 if (nfile->name == NULL) {
754 nfile->stream = fopen(nfile->name, "r");
755 if (nfile->stream == NULL) {
756 /* no warning, we don't require a conf file */
761 check_file_secrecy(fileno(nfile->stream), nfile->name)) {
762 fclose(nfile->stream);
772 closefile(struct file *xfile)
774 fclose(xfile->stream);
780 add_default_server(void)
782 new_srv = conf_new_server(D_SITENAME);
783 log_debug("%s: adding default server %s", __func__, D_SITENAME);
787 parse_config(const char *filename, struct gotwebd *env)
789 struct sym *sym, *next;
791 if (config_init(env) == -1)
792 fatalx("failed to initialize configuration");
796 file = newfile(filename, 0);
798 add_default_server();
799 sockets_parse_sockets(env);
800 /* just return, as we don't require a conf file */
805 errors = file->errors;
808 /* Free macros and check which have not been used. */
809 TAILQ_FOREACH_SAFE(sym, &symhead, entry, next) {
810 if ((gotwebd->gotwebd_verbose > 1) && !sym->used)
811 fprintf(stderr, "warning: macro '%s' not used\n",
816 TAILQ_REMOVE(&symhead, sym, entry);
824 /* just add default server if no config specified */
825 if (gotwebd->server_cnt == 0)
826 add_default_server();
828 /* setup our listening sockets */
829 sockets_parse_sockets(env);
835 conf_new_server(const char *name)
837 struct server *srv = NULL;
839 srv = calloc(1, sizeof(*srv));
841 fatalx("%s: calloc", __func__);
843 n = strlcpy(srv->name, name, sizeof(srv->name));
844 if (n >= sizeof(srv->name))
845 fatalx("%s: strlcpy", __func__);
846 n = snprintf(srv->unix_socket_name,
847 sizeof(srv->unix_socket_name), "%s%s", D_HTTPD_CHROOT,
849 if (n < 0 || (size_t)n >= sizeof(srv->unix_socket_name))
850 fatalx("%s: snprintf", __func__);
851 n = strlcpy(srv->repos_path, D_GOTPATH,
852 sizeof(srv->repos_path));
853 if (n >= sizeof(srv->repos_path))
854 fatalx("%s: strlcpy", __func__);
855 n = strlcpy(srv->site_name, D_SITENAME,
856 sizeof(srv->site_name));
857 if (n >= sizeof(srv->site_name))
858 fatalx("%s: strlcpy", __func__);
859 n = strlcpy(srv->site_owner, D_SITEOWNER,
860 sizeof(srv->site_owner));
861 if (n >= sizeof(srv->site_owner))
862 fatalx("%s: strlcpy", __func__);
863 n = strlcpy(srv->site_link, D_SITELINK,
864 sizeof(srv->site_link));
865 if (n >= sizeof(srv->site_link))
866 fatalx("%s: strlcpy", __func__);
867 n = strlcpy(srv->logo, D_GOTLOGO,
869 if (n >= sizeof(srv->logo))
870 fatalx("%s: strlcpy", __func__);
871 n = strlcpy(srv->logo_url, D_GOTURL, sizeof(srv->logo_url));
872 if (n >= sizeof(srv->logo_url))
873 fatalx("%s: strlcpy", __func__);
874 n = strlcpy(srv->custom_css, D_GOTWEBCSS, sizeof(srv->custom_css));
875 if (n >= sizeof(srv->custom_css))
876 fatalx("%s: strlcpy", __func__);
878 srv->show_site_owner = D_SHOWSOWNER;
879 srv->show_repo_owner = D_SHOWROWNER;
880 srv->show_repo_age = D_SHOWAGE;
881 srv->show_repo_description = D_SHOWDESC;
882 srv->show_repo_cloneurl = D_SHOWURL;
883 srv->respect_exportok = D_RESPECTEXPORTOK;
885 srv->max_repos_display = D_MAXREPODISP;
886 srv->max_commits_display = D_MAXCOMMITDISP;
887 srv->max_repos = D_MAXREPO;
889 srv->unix_socket = 1;
890 srv->fcgi_socket = 0;
892 TAILQ_INIT(&srv->al);
893 TAILQ_INSERT_TAIL(&gotwebd->servers, srv, entry);
894 gotwebd->server_cnt++;
900 symset(const char *nam, const char *val, int persist)
904 TAILQ_FOREACH(sym, &symhead, entry) {
905 if (strcmp(nam, sym->nam) == 0)
910 if (sym->persist == 1)
915 TAILQ_REMOVE(&symhead, sym, entry);
919 sym = calloc(1, sizeof(*sym));
923 sym->nam = strdup(nam);
924 if (sym->nam == NULL) {
928 sym->val = strdup(val);
929 if (sym->val == NULL) {
935 sym->persist = persist;
936 TAILQ_INSERT_TAIL(&symhead, sym, entry);
941 cmdline_symset(char *s)
946 val = strrchr(s, '=');
950 sym = strndup(s, val - s);
952 fatal("%s: strndup", __func__);
954 ret = symset(sym, val + 1, 1);
961 symget(const char *nam)
965 TAILQ_FOREACH(sym, &symhead, entry) {
966 if (strcmp(nam, sym->nam) == 0) {
975 getservice(const char *n)
981 llval = strtonum(n, 0, UINT16_MAX, &errstr);
983 s = getservbyname(n, "tcp");
985 s = getservbyname(n, "udp");
988 return ntohs(s->s_port);
991 return (unsigned short)llval;
995 host_v4(const char *s)
998 struct sockaddr_in *sain;
1001 memset(&ina, 0, sizeof(ina));
1002 if (inet_pton(AF_INET, s, &ina) != 1)
1005 if ((h = calloc(1, sizeof(*h))) == NULL)
1007 sain = (struct sockaddr_in *)&h->ss;
1008 got_sockaddr_inet_init(sain, &ina);
1009 if (sain->sin_addr.s_addr == INADDR_ANY)
1010 h->prefixlen = 0; /* 0.0.0.0 address */
1012 h->prefixlen = -1; /* host address */
1017 host_v6(const char *s)
1019 struct addrinfo hints, *res;
1020 struct sockaddr_in6 *sa_in6, *ra;
1021 struct address *h = NULL;
1023 memset(&hints, 0, sizeof(hints));
1024 hints.ai_family = AF_INET6;
1025 hints.ai_socktype = SOCK_DGRAM; /* dummy */
1026 hints.ai_flags = AI_NUMERICHOST;
1027 if (getaddrinfo(s, "0", &hints, &res) == 0) {
1028 if ((h = calloc(1, sizeof(*h))) == NULL)
1030 sa_in6 = (struct sockaddr_in6 *)&h->ss;
1031 ra = (struct sockaddr_in6 *)res->ai_addr;
1032 got_sockaddr_inet6_init(sa_in6, &ra->sin6_addr,
1034 if (memcmp(&sa_in6->sin6_addr, &in6addr_any,
1035 sizeof(sa_in6->sin6_addr)) == 0)
1036 h->prefixlen = 0; /* any address */
1038 h->prefixlen = -1; /* host address */
1046 host_dns(const char *s, struct server *new_srv, int max,
1047 in_port_t port, const char *ifname, int ipproto)
1049 struct addrinfo hints, *res0, *res;
1051 struct sockaddr_in *sain;
1052 struct sockaddr_in6 *sin6;
1055 if ((cnt = host_if(s, new_srv, max, port, ifname, ipproto)) != 0)
1058 memset(&hints, 0, sizeof(hints));
1059 hints.ai_family = PF_UNSPEC;
1060 hints.ai_socktype = SOCK_DGRAM; /* DUMMY */
1061 hints.ai_flags = AI_ADDRCONFIG;
1062 error = getaddrinfo(s, NULL, &hints, &res0);
1063 if (error == EAI_AGAIN || error == EAI_NODATA || error == EAI_NONAME)
1066 log_warnx("%s: could not parse \"%s\": %s", __func__, s,
1067 gai_strerror(error));
1071 for (res = res0; res && cnt < max; res = res->ai_next) {
1072 if (res->ai_family != AF_INET &&
1073 res->ai_family != AF_INET6)
1075 if ((h = calloc(1, sizeof(*h))) == NULL)
1080 if (ifname != NULL) {
1081 if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1082 sizeof(h->ifname)) {
1083 log_warnx("%s: interface name truncated",
1091 h->ipproto = ipproto;
1092 h->ss.ss_family = res->ai_family;
1093 h->prefixlen = -1; /* host address */
1095 if (res->ai_family == AF_INET) {
1096 struct sockaddr_in *ra;
1097 sain = (struct sockaddr_in *)&h->ss;
1098 ra = (struct sockaddr_in *)res->ai_addr;
1099 got_sockaddr_inet_init(sain, &ra->sin_addr);
1101 struct sockaddr_in6 *ra;
1102 sin6 = (struct sockaddr_in6 *)&h->ss;
1103 ra = (struct sockaddr_in6 *)res->ai_addr;
1104 got_sockaddr_inet6_init(sin6, &ra->sin6_addr, 0);
1107 if (add_addr(new_srv, h))
1111 if (cnt == max && res) {
1112 log_warnx("%s: %s resolves to more than %d hosts", __func__,
1120 host_if(const char *s, struct server *new_srv, int max,
1121 in_port_t port, const char *ifname, int ipproto)
1123 struct ifaddrs *ifap, *p;
1124 struct sockaddr_in *sain;
1125 struct sockaddr_in6 *sin6;
1129 if (getifaddrs(&ifap) == -1)
1130 fatal("getifaddrs");
1132 /* First search for IPv4 addresses */
1136 for (p = ifap; p != NULL && cnt < max; p = p->ifa_next) {
1137 if (p->ifa_addr == NULL ||
1138 p->ifa_addr->sa_family != af ||
1139 (strcmp(s, p->ifa_name) != 0 &&
1140 !is_if_in_group(p->ifa_name, s)))
1142 if ((h = calloc(1, sizeof(*h))) == NULL)
1147 if (ifname != NULL) {
1148 if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1149 sizeof(h->ifname)) {
1150 log_warnx("%s: interface name truncated",
1158 h->ipproto = ipproto;
1159 h->ss.ss_family = af;
1160 h->prefixlen = -1; /* host address */
1162 if (af == AF_INET) {
1163 struct sockaddr_in *ra;
1164 sain = (struct sockaddr_in *)&h->ss;
1165 ra = (struct sockaddr_in *)p->ifa_addr;
1166 got_sockaddr_inet_init(sain, &ra->sin_addr);
1168 struct sockaddr_in6 *ra;
1169 sin6 = (struct sockaddr_in6 *)&h->ss;
1170 ra = (struct sockaddr_in6 *)p->ifa_addr;
1171 got_sockaddr_inet6_init(sin6, &ra->sin6_addr,
1175 if (add_addr(new_srv, h))
1179 if (af == AF_INET) {
1180 /* Next search for IPv6 addresses */
1186 log_warnx("%s: %s resolves to more than %d hosts", __func__,
1194 host(const char *s, struct server *new_srv, int max,
1195 in_port_t port, const char *ifname, int ipproto)
1208 if (ifname != NULL) {
1209 if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1210 sizeof(h->ifname)) {
1211 log_warnx("%s: interface name truncated",
1218 h->ipproto = ipproto;
1220 if (add_addr(new_srv, h))
1225 return (host_dns(s, new_srv, max, port, ifname, ipproto));
1229 is_if_in_group(const char *ifname, const char *groupname)
1231 /* TA: Check this... */
1232 #ifdef HAVE_STRUCT_IFGROUPREQ
1234 struct ifgroupreq ifgr;
1235 struct ifg_req *ifg;
1239 if ((s = socket(AF_INET, SOCK_DGRAM, 0)) == -1)
1242 memset(&ifgr, 0, sizeof(ifgr));
1243 if (strlcpy(ifgr.ifgr_name, ifname, IFNAMSIZ) >= IFNAMSIZ)
1245 if (ioctl(s, SIOCGIFGROUP, (caddr_t)&ifgr) == -1) {
1246 if (errno == EINVAL || errno == ENOTTY)
1248 err(1, "SIOCGIFGROUP");
1251 len = ifgr.ifgr_len;
1252 ifgr.ifgr_groups = calloc(len / sizeof(struct ifg_req),
1253 sizeof(struct ifg_req));
1254 if (ifgr.ifgr_groups == NULL)
1255 err(1, "getifgroups");
1256 if (ioctl(s, SIOCGIFGROUP, (caddr_t)&ifgr) == -1)
1257 err(1, "SIOCGIFGROUP");
1259 ifg = ifgr.ifgr_groups;
1260 for (; ifg && len >= sizeof(struct ifg_req); ifg++) {
1261 len -= sizeof(struct ifg_req);
1262 if (strcmp(ifg->ifgrq_group, groupname) == 0) {
1267 free(ifgr.ifgr_groups);
1278 get_addrs(const char *addr, struct server *new_srv, in_port_t port)
1280 if (strcmp("", addr) == 0) {
1281 if (host("127.0.0.1", new_srv, 1, port, "127.0.0.1",
1283 yyerror("invalid listen ip: %s",
1287 if (host("::1", new_srv, 1, port, "::1", -1) <= 0) {
1288 yyerror("invalid listen ip: %s", "::1");
1292 if (host(addr, new_srv, GOTWEBD_MAXIFACE, port, addr,
1294 yyerror("invalid listen ip: %s", addr);
1302 addr_dup_check(struct addresslist *al, struct address *h, const char *new_srv,
1303 const char *other_srv)
1307 char buf[INET6_ADDRSTRLEN];
1308 const char *addrstr;
1310 TAILQ_FOREACH(a, al, entry) {
1311 if (memcmp(&a->ss, &h->ss, sizeof(h->ss)) != 0 ||
1315 switch (h->ss.ss_family) {
1317 ia = &((struct sockaddr_in *)(&h->ss))->sin_addr;
1320 ia = &((struct sockaddr_in6 *)(&h->ss))->sin6_addr;
1323 yyerror("unknown address family: %d", h->ss.ss_family);
1326 addrstr = inet_ntop(h->ss.ss_family, ia, buf, sizeof(buf));
1329 yyerror("server %s: duplicate fcgi listen "
1330 "address %s:%d, already used by server %s",
1331 new_srv, addrstr, h->port, other_srv);
1333 log_warnx("server: %s: duplicate fcgi listen "
1334 "address %s:%d", new_srv, addrstr, h->port);
1338 yyerror("server: %s: duplicate fcgi listen "
1339 "address, already used by server %s",
1340 new_srv, other_srv);
1342 log_warnx("server %s: duplicate fcgi listen "
1343 "address", new_srv);
1354 add_addr(struct server *new_srv, struct address *h)
1358 /* Address cannot be shared between different servers. */
1359 TAILQ_FOREACH(srv, &gotwebd->servers, entry) {
1362 if (addr_dup_check(&srv->al, h, new_srv->name, srv->name))
1366 /* Tolerate duplicate address lines within the scope of a server. */
1367 if (addr_dup_check(&new_srv->al, h, NULL, NULL) == 0)
1368 TAILQ_INSERT_TAIL(&new_srv->al, h, entry);