Blob


1 /*
2 * Copyright (c) 2016-2019, 2020-2021 Tracey Emery <tracey@traceyemery.net>
3 * Copyright (c) 2004, 2005 Esben Norby <norby@openbsd.org>
4 * Copyright (c) 2004 Ryan McBride <mcbride@openbsd.org>
5 * Copyright (c) 2002, 2003, 2004 Henning Brauer <henning@openbsd.org>
6 * Copyright (c) 2001 Markus Friedl. All rights reserved.
7 * Copyright (c) 2001 Daniel Hartmeier. All rights reserved.
8 * Copyright (c) 2001 Theo de Raadt. All rights reserved.
9 *
10 * Permission to use, copy, modify, and distribute this software for any
11 * purpose with or without fee is hereby granted, provided that the above
12 * copyright notice and this permission notice appear in all copies.
13 *
14 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
15 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
16 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
17 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
18 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
19 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
20 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
21 */
23 %{
24 #include <sys/ioctl.h>
25 #include <sys/types.h>
26 #include <sys/socket.h>
27 #include <sys/stat.h>
29 #include <net/if.h>
30 #include <netinet/in.h>
32 #include <arpa/inet.h>
34 #include <ctype.h>
35 #include <err.h>
36 #include <errno.h>
37 #include <event.h>
38 #include <ifaddrs.h>
39 #include <limits.h>
40 #include <netdb.h>
41 #include <stdarg.h>
42 #include <stdlib.h>
43 #include <stdio.h>
44 #include <string.h>
45 #include <syslog.h>
46 #include <tls.h>
47 #include <unistd.h>
49 #include "proc.h"
50 #include "gotwebd.h"
51 #include "got_compat.h"
53 TAILQ_HEAD(files, file) files = TAILQ_HEAD_INITIALIZER(files);
54 static struct file {
55 TAILQ_ENTRY(file) entry;
56 FILE *stream;
57 char *name;
58 int lineno;
59 int errors;
60 } *file;
61 struct file *newfile(const char *, int);
62 static void closefile(struct file *);
63 int check_file_secrecy(int, const char *);
64 int yyparse(void);
65 int yylex(void);
66 int yyerror(const char *, ...)
67 __attribute__((__format__ (printf, 1, 2)))
68 __attribute__((__nonnull__ (1)));
69 int kw_cmp(const void *, const void *);
70 int lookup(char *);
71 int lgetc(int);
72 int lungetc(int);
73 int findeol(void);
75 TAILQ_HEAD(symhead, sym) symhead = TAILQ_HEAD_INITIALIZER(symhead);
76 struct sym {
77 TAILQ_ENTRY(sym) entry;
78 int used;
79 int persist;
80 char *nam;
81 char *val;
82 };
84 int symset(const char *, const char *, int);
85 char *symget(const char *);
87 static int errors;
89 static struct gotwebd *gotwebd;
90 static struct server *new_srv;
91 static struct server *conf_new_server(const char *);
92 int getservice(const char *);
93 int n;
95 int get_addrs(const char *, struct addresslist *, in_port_t);
96 struct address *host_v4(const char *);
97 struct address *host_v6(const char *);
98 int host_dns(const char *, struct addresslist *,
99 int, in_port_t, const char *, int);
100 int host_if(const char *, struct addresslist *,
101 int, in_port_t, const char *, int);
102 int host(const char *, struct addresslist *,
103 int, in_port_t, const char *, int);
104 int is_if_in_group(const char *, const char *);
106 typedef struct {
107 union {
108 long long number;
109 char *string;
110 in_port_t port;
111 } v;
112 int lineno;
113 } YYSTYPE;
115 %}
117 %token BIND INTERFACE WWW_PATH MAX_REPOS SITE_NAME SITE_OWNER SITE_LINK LOGO
118 %token LOGO_URL SHOW_REPO_OWNER SHOW_REPO_AGE SHOW_REPO_DESCRIPTION
119 %token MAX_REPOS_DISPLAY REPOS_PATH MAX_COMMITS_DISPLAY ON ERROR
120 %token SHOW_SITE_OWNER SHOW_REPO_CLONEURL PORT PREFORK FCGI_SOCKET
121 %token UNIX_SOCKET UNIX_SOCKET_NAME SERVER CHROOT CUSTOM_CSS
123 %token <v.string> STRING
124 %type <v.port> fcgiport
125 %token <v.number> NUMBER
126 %type <v.number> boolean
128 %%
130 grammar :
131 | grammar '\n'
132 | grammar main '\n'
133 | grammar server '\n'
136 boolean : STRING {
137 if (strcasecmp($1, "1") == 0 ||
138 strcasecmp($1, "yes") == 0 ||
139 strcasecmp($1, "on") == 0)
140 $$ = 1;
141 else if (strcasecmp($1, "0") == 0 ||
142 strcasecmp($1, "off") == 0 ||
143 strcasecmp($1, "no") == 0)
144 $$ = 0;
145 else {
146 yyerror("invalid boolean value '%s'", $1);
147 free($1);
148 YYERROR;
150 free($1);
152 | ON { $$ = 1; }
153 | NUMBER { $$ = $1; }
156 fcgiport : NUMBER {
157 if ($1 <= 0 || $1 > (int)USHRT_MAX) {
158 yyerror("invalid port: %lld", $1);
159 YYERROR;
161 $$ = htons($1);
163 | STRING {
164 int val;
166 if ((val = getservice($1)) == -1) {
167 yyerror("invalid port: %s", $1);
168 free($1);
169 YYERROR;
171 free($1);
173 $$ = val;
177 main : PREFORK NUMBER {
178 gotwebd->prefork_gotwebd = $2;
180 | CHROOT STRING {
181 n = strlcpy(gotwebd->httpd_chroot, $2,
182 sizeof(gotwebd->httpd_chroot));
183 if (n >= sizeof(gotwebd->httpd_chroot)) {
184 yyerror("%s: httpd_chroot truncated", __func__);
185 free($2);
186 YYERROR;
188 free($2);
190 | FCGI_SOCKET boolean {
191 gotwebd->fcgi_socket = $2;
193 | FCGI_SOCKET boolean {
194 gotwebd->fcgi_socket = $2;
195 } '{' optnl socketopts4 '}'
196 | UNIX_SOCKET boolean {
197 gotwebd->unix_socket = $2;
199 | UNIX_SOCKET_NAME STRING {
200 n = snprintf(gotwebd->unix_socket_name,
201 sizeof(gotwebd->unix_socket_name), "%s%s",
202 strlen(gotwebd->httpd_chroot) ?
203 gotwebd->httpd_chroot : D_HTTPD_CHROOT, $2);
204 if (n < 0) {
205 yyerror("%s: unix_socket_name truncated",
206 __func__);
207 free($2);
208 YYERROR;
210 free($2);
214 server : SERVER STRING {
215 struct server *srv;
217 TAILQ_FOREACH(srv, gotwebd->servers, entry) {
218 if (strcmp(srv->name, $2) == 0) {
219 yyerror("server name exists '%s'", $2);
220 free($2);
221 YYERROR;
225 new_srv = conf_new_server($2);
226 if (new_srv->fcgi_socket)
227 if (get_addrs(new_srv->fcgi_socket_bind,
228 new_srv->al,
229 new_srv->fcgi_socket_port) == -1) {
230 yyerror("could not get tcp iface "
231 "addrs");
232 YYERROR;
234 log_debug("adding server %s", $2);
235 free($2);
237 | SERVER STRING {
238 struct server *srv;
240 TAILQ_FOREACH(srv, gotwebd->servers, entry) {
241 if (strcmp(srv->name, $2) == 0) {
242 yyerror("server name exists '%s'", $2);
243 free($2);
244 YYERROR;
248 new_srv = conf_new_server($2);
249 log_debug("adding server %s", $2);
250 free($2);
251 } '{' optnl serveropts2 '}' {
252 if (get_addrs(new_srv->fcgi_socket_bind,
253 new_srv->al, new_srv->fcgi_socket_port) == -1) {
254 yyerror("could not get tcp iface addrs");
255 YYERROR;
260 serveropts1 : REPOS_PATH STRING {
261 n = strlcpy(new_srv->repos_path, $2,
262 sizeof(new_srv->repos_path));
263 if (n >= sizeof(new_srv->repos_path)) {
264 yyerror("%s: repos_path truncated", __func__);
265 free($2);
266 YYERROR;
268 free($2);
270 | SITE_NAME STRING {
271 n = strlcpy(new_srv->site_name, $2,
272 sizeof(new_srv->site_name));
273 if (n >= sizeof(new_srv->site_name)) {
274 yyerror("%s: site_name truncated", __func__);
275 free($2);
276 YYERROR;
278 free($2);
280 | SITE_OWNER STRING {
281 n = strlcpy(new_srv->site_owner, $2,
282 sizeof(new_srv->site_owner));
283 if (n >= sizeof(new_srv->site_owner)) {
284 yyerror("%s: site_owner truncated", __func__);
285 free($2);
286 YYERROR;
288 free($2);
290 | SITE_LINK STRING {
291 n = strlcpy(new_srv->site_link, $2,
292 sizeof(new_srv->site_link));
293 if (n >= sizeof(new_srv->site_link)) {
294 yyerror("%s: site_link truncated", __func__);
295 free($2);
296 YYERROR;
298 free($2);
300 | LOGO STRING {
301 n = strlcpy(new_srv->logo, $2, sizeof(new_srv->logo));
302 if (n >= sizeof(new_srv->logo)) {
303 yyerror("%s: logo truncated", __func__);
304 free($2);
305 YYERROR;
307 free($2);
309 | LOGO_URL STRING {
310 n = strlcpy(new_srv->logo_url, $2,
311 sizeof(new_srv->logo_url));
312 if (n >= sizeof(new_srv->logo_url)) {
313 yyerror("%s: logo_url truncated", __func__);
314 free($2);
315 YYERROR;
317 free($2);
319 | CUSTOM_CSS STRING {
320 n = strlcpy(new_srv->custom_css, $2,
321 sizeof(new_srv->custom_css));
322 if (n >= sizeof(new_srv->custom_css)) {
323 yyerror("%s: custom_css truncated", __func__);
324 free($2);
325 YYERROR;
327 free($2);
329 | MAX_REPOS NUMBER {
330 if ($2 > 0)
331 new_srv->max_repos = $2;
333 | SHOW_SITE_OWNER boolean {
334 new_srv->show_site_owner = $2;
336 | SHOW_REPO_OWNER boolean {
337 new_srv->show_repo_owner = $2;
339 | SHOW_REPO_AGE boolean {
340 new_srv->show_repo_age = $2;
342 | SHOW_REPO_DESCRIPTION boolean {
343 new_srv->show_repo_description = $2;
345 | SHOW_REPO_CLONEURL boolean {
346 new_srv->show_repo_cloneurl = $2;
348 | MAX_REPOS_DISPLAY NUMBER {
349 new_srv->max_repos_display = $2;
351 | MAX_COMMITS_DISPLAY NUMBER {
352 if ($2 > 0)
353 new_srv->max_commits_display = $2;
355 | FCGI_SOCKET boolean {
356 new_srv->fcgi_socket = $2;
358 | FCGI_SOCKET boolean {
359 new_srv->fcgi_socket = $2;
360 } '{' optnl socketopts2 '}'
361 | UNIX_SOCKET boolean {
362 new_srv->unix_socket = $2;
364 | UNIX_SOCKET_NAME STRING {
365 n = snprintf(new_srv->unix_socket_name,
366 sizeof(new_srv->unix_socket_name), "%s%s",
367 strlen(gotwebd->httpd_chroot) ?
368 gotwebd->httpd_chroot : D_HTTPD_CHROOT, $2);
369 if (n < 0) {
370 yyerror("%s: unix_socket_name truncated",
371 __func__);
372 free($2);
373 YYERROR;
375 free($2);
379 serveropts2 : serveropts2 serveropts1 nl
380 | serveropts1 optnl
383 socketopts1 : BIND INTERFACE STRING {
384 n = strlcpy(new_srv->fcgi_socket_bind, $3,
385 sizeof(new_srv->fcgi_socket_bind));
386 if (n >= sizeof(new_srv->fcgi_socket_bind)) {
387 yyerror("%s: fcgi_socket_bind truncated",
388 __func__);
389 free($3);
390 YYERROR;
392 free($3);
394 | PORT fcgiport {
395 struct server *srv;
397 TAILQ_FOREACH(srv, gotwebd->servers, entry) {
398 if (srv->fcgi_socket_port == $2) {
399 yyerror("port already assigned");
400 YYERROR;
403 new_srv->fcgi_socket_port = $2;
407 socketopts2 : socketopts2 socketopts1 nl
408 | socketopts1 optnl
411 socketopts3 : BIND INTERFACE STRING {
412 n = strlcpy(gotwebd->fcgi_socket_bind, $3,
413 sizeof(gotwebd->fcgi_socket_bind));
414 if (n >= sizeof(gotwebd->fcgi_socket_bind)) {
415 yyerror("%s: fcgi_socket_bind truncated",
416 __func__);
417 free($3);
418 YYERROR;
420 free($3);
422 | PORT fcgiport {
423 gotwebd->fcgi_socket_port = $2;
427 socketopts4 : socketopts4 socketopts3 nl
428 | socketopts3 optnl
431 nl : '\n' optnl
434 optnl : '\n' optnl /* zero or more newlines */
435 | /* empty */
438 %%
440 struct keywords {
441 const char *k_name;
442 int k_val;
443 };
445 int
446 yyerror(const char *fmt, ...)
448 va_list ap;
449 char *msg;
451 file->errors++;
452 va_start(ap, fmt);
453 if (vasprintf(&msg, fmt, ap) == -1)
454 fatalx("yyerror vasprintf");
455 va_end(ap);
456 logit(LOG_CRIT, "%s:%d: %s", file->name, yylval.lineno, msg);
457 free(msg);
458 return (0);
461 int
462 kw_cmp(const void *k, const void *e)
464 return (strcmp(k, ((const struct keywords *)e)->k_name));
467 int
468 lookup(char *s)
470 /* This has to be sorted always. */
471 static const struct keywords keywords[] = {
472 { "bind", BIND },
473 { "chroot", CHROOT },
474 { "custom_css", CUSTOM_CSS },
475 { "fcgi_socket", FCGI_SOCKET },
476 { "interface", INTERFACE },
477 { "logo", LOGO },
478 { "logo_url" , LOGO_URL },
479 { "max_commits_display", MAX_COMMITS_DISPLAY },
480 { "max_repos", MAX_REPOS },
481 { "max_repos_display", MAX_REPOS_DISPLAY },
482 { "port", PORT },
483 { "prefork", PREFORK },
484 { "repos_path", REPOS_PATH },
485 { "server", SERVER },
486 { "show_repo_age", SHOW_REPO_AGE },
487 { "show_repo_cloneurl", SHOW_REPO_CLONEURL },
488 { "show_repo_description", SHOW_REPO_DESCRIPTION },
489 { "show_repo_owner", SHOW_REPO_OWNER },
490 { "show_site_owner", SHOW_SITE_OWNER },
491 { "site_link", SITE_LINK },
492 { "site_name", SITE_NAME },
493 { "site_owner", SITE_OWNER },
494 { "unix_socket", UNIX_SOCKET },
495 { "unix_socket_name", UNIX_SOCKET_NAME },
496 };
497 const struct keywords *p;
499 p = bsearch(s, keywords, sizeof(keywords)/sizeof(keywords[0]),
500 sizeof(keywords[0]), kw_cmp);
502 if (p)
503 return (p->k_val);
504 else
505 return (STRING);
508 #define MAXPUSHBACK 128
510 unsigned char *parsebuf;
511 int parseindex;
512 unsigned char pushback_buffer[MAXPUSHBACK];
513 int pushback_index = 0;
515 int
516 lgetc(int quotec)
518 int c, next;
520 if (parsebuf) {
521 /* Read character from the parsebuffer instead of input. */
522 if (parseindex >= 0) {
523 c = parsebuf[parseindex++];
524 if (c != '\0')
525 return (c);
526 parsebuf = NULL;
527 } else
528 parseindex++;
531 if (pushback_index)
532 return (pushback_buffer[--pushback_index]);
534 if (quotec) {
535 c = getc(file->stream);
536 if (c == EOF)
537 yyerror("reached end of file while parsing "
538 "quoted string");
539 return (c);
542 c = getc(file->stream);
543 while (c == '\\') {
544 next = getc(file->stream);
545 if (next != '\n') {
546 c = next;
547 break;
549 yylval.lineno = file->lineno;
550 file->lineno++;
551 c = getc(file->stream);
554 return (c);
557 int
558 lungetc(int c)
560 if (c == EOF)
561 return (EOF);
562 if (parsebuf) {
563 parseindex--;
564 if (parseindex >= 0)
565 return (c);
567 if (pushback_index < MAXPUSHBACK-1)
568 return (pushback_buffer[pushback_index++] = c);
569 else
570 return (EOF);
573 int
574 findeol(void)
576 int c;
578 parsebuf = NULL;
580 /* Skip to either EOF or the first real EOL. */
581 while (1) {
582 if (pushback_index)
583 c = pushback_buffer[--pushback_index];
584 else
585 c = lgetc(0);
586 if (c == '\n') {
587 file->lineno++;
588 break;
590 if (c == EOF)
591 break;
593 return (ERROR);
596 int
597 yylex(void)
599 unsigned char buf[8096];
600 unsigned char *p, *val;
601 int quotec, next, c;
602 int token;
604 top:
605 p = buf;
606 c = lgetc(0);
607 while (c == ' ' || c == '\t')
608 c = lgetc(0); /* nothing */
610 yylval.lineno = file->lineno;
611 if (c == '#') {
612 c = lgetc(0);
613 while (c != '\n' && c != EOF)
614 c = lgetc(0); /* nothing */
616 if (c == '$' && parsebuf == NULL) {
617 while (1) {
618 c = lgetc(0);
619 if (c == EOF)
620 return (0);
622 if (p + 1 >= buf + sizeof(buf) - 1) {
623 yyerror("string too long");
624 return (findeol());
626 if (isalnum(c) || c == '_') {
627 *p++ = c;
628 continue;
630 *p = '\0';
631 lungetc(c);
632 break;
634 val = symget(buf);
635 if (val == NULL) {
636 yyerror("macro '%s' not defined", buf);
637 return (findeol());
639 parsebuf = val;
640 parseindex = 0;
641 goto top;
644 switch (c) {
645 case '\'':
646 case '"':
647 quotec = c;
648 while (1) {
649 c = lgetc(quotec);
650 if (c == EOF)
651 return (0);
652 if (c == '\n') {
653 file->lineno++;
654 continue;
655 } else if (c == '\\') {
656 next = lgetc(quotec);
657 if (next == EOF)
658 return (0);
659 if (next == quotec || c == ' ' || c == '\t')
660 c = next;
661 else if (next == '\n') {
662 file->lineno++;
663 continue;
664 } else
665 lungetc(next);
666 } else if (c == quotec) {
667 *p = '\0';
668 break;
669 } else if (c == '\0') {
670 yyerror("syntax error");
671 return (findeol());
673 if (p + 1 >= buf + sizeof(buf) - 1) {
674 yyerror("string too long");
675 return (findeol());
677 *p++ = c;
679 yylval.v.string = strdup(buf);
680 if (yylval.v.string == NULL)
681 err(1, "yylex: strdup");
682 return (STRING);
685 #define allowed_to_end_number(x) \
686 (isspace(x) || x == ')' || x ==',' || x == '/' || x == '}' || x == '=')
688 if (c == '-' || isdigit(c)) {
689 do {
690 *p++ = c;
691 if ((unsigned)(p-buf) >= sizeof(buf)) {
692 yyerror("string too long");
693 return (findeol());
695 c = lgetc(0);
696 } while (c != EOF && isdigit(c));
697 lungetc(c);
698 if (p == buf + 1 && buf[0] == '-')
699 goto nodigits;
700 if (c == EOF || allowed_to_end_number(c)) {
701 const char *errstr = NULL;
703 *p = '\0';
704 yylval.v.number = strtonum(buf, LLONG_MIN,
705 LLONG_MAX, &errstr);
706 if (errstr) {
707 yyerror("\"%s\" invalid number: %s",
708 buf, errstr);
709 return (findeol());
711 return (NUMBER);
712 } else {
713 nodigits:
714 while (p > buf + 1)
715 lungetc(*--p);
716 c = *--p;
717 if (c == '-')
718 return (c);
722 #define allowed_in_string(x) \
723 (isalnum(x) || (ispunct(x) && x != '(' && x != ')' && \
724 x != '{' && x != '}' && \
725 x != '!' && x != '=' && x != '#' && \
726 x != ','))
728 if (isalnum(c) || c == ':' || c == '_') {
729 do {
730 *p++ = c;
731 if ((unsigned)(p-buf) >= sizeof(buf)) {
732 yyerror("string too long");
733 return (findeol());
735 c = lgetc(0);
736 } while (c != EOF && (allowed_in_string(c)));
737 lungetc(c);
738 *p = '\0';
739 token = lookup(buf);
740 if (token == STRING) {
741 yylval.v.string = strdup(buf);
742 if (yylval.v.string == NULL)
743 err(1, "yylex: strdup");
745 return (token);
747 if (c == '\n') {
748 yylval.lineno = file->lineno;
749 file->lineno++;
751 if (c == EOF)
752 return (0);
753 return (c);
756 int
757 check_file_secrecy(int fd, const char *fname)
759 struct stat st;
761 if (fstat(fd, &st)) {
762 log_warn("cannot stat %s", fname);
763 return (-1);
765 if (st.st_uid != 0 && st.st_uid != getuid()) {
766 log_warnx("%s: owner not root or current user", fname);
767 return (-1);
769 if (st.st_mode & (S_IWGRP | S_IXGRP | S_IRWXO)) {
770 log_warnx("%s: group writable or world read/writable", fname);
771 return (-1);
773 return (0);
776 struct file *
777 newfile(const char *name, int secret)
779 struct file *nfile;
781 nfile = calloc(1, sizeof(struct file));
782 if (nfile == NULL) {
783 log_warn("calloc");
784 return (NULL);
786 nfile->name = strdup(name);
787 if (nfile->name == NULL) {
788 log_warn("strdup");
789 free(nfile);
790 return (NULL);
792 nfile->stream = fopen(nfile->name, "r");
793 if (nfile->stream == NULL) {
794 /* no warning, we don't require a conf file */
795 free(nfile->name);
796 free(nfile);
797 return (NULL);
798 } else if (secret &&
799 check_file_secrecy(fileno(nfile->stream), nfile->name)) {
800 fclose(nfile->stream);
801 free(nfile->name);
802 free(nfile);
803 return (NULL);
805 nfile->lineno = 1;
806 return (nfile);
809 static void
810 closefile(struct file *xfile)
812 fclose(xfile->stream);
813 free(xfile->name);
814 free(xfile);
817 int
818 parse_config(const char *filename, struct gotwebd *env)
820 struct sym *sym, *next;
822 file = newfile(filename, 0);
823 if (file == NULL)
824 /* just return, as we don't require a conf file */
825 return (0);
827 if (config_init(env) == -1)
828 fatalx("failed to initialize configuration");
830 gotwebd = env;
832 yyparse();
833 errors = file->errors;
834 closefile(file);
836 /* Free macros and check which have not been used. */
837 TAILQ_FOREACH_SAFE(sym, &symhead, entry, next) {
838 if ((gotwebd->gotwebd_verbose > 1) && !sym->used)
839 fprintf(stderr, "warning: macro '%s' not used\n",
840 sym->nam);
841 if (!sym->persist) {
842 free(sym->nam);
843 free(sym->val);
844 TAILQ_REMOVE(&symhead, sym, entry);
845 free(sym);
849 if (errors)
850 return (-1);
852 /* just add default server if no config specified */
853 if (gotwebd->server_cnt == 0) {
854 new_srv = conf_new_server(D_SITENAME);
855 log_debug("%s: adding default server %s", __func__, D_SITENAME);
858 /* setup our listening sockets */
859 sockets_parse_sockets(env);
861 return (0);
864 struct server *
865 conf_new_server(const char *name)
867 struct server *srv = NULL;
868 int val;
870 srv = calloc(1, sizeof(*srv));
871 if (srv == NULL)
872 fatalx("%s: calloc", __func__);
874 n = strlcpy(srv->name, name, sizeof(srv->name));
875 if (n >= sizeof(srv->name))
876 fatalx("%s: strlcpy", __func__);
877 n = snprintf(srv->unix_socket_name,
878 sizeof(srv->unix_socket_name), "%s%s", D_HTTPD_CHROOT,
879 D_UNIX_SOCKET);
880 if (n < 0)
881 fatalx("%s: snprintf", __func__);
882 n = strlcpy(srv->repos_path, D_GOTPATH,
883 sizeof(srv->repos_path));
884 if (n >= sizeof(srv->repos_path))
885 fatalx("%s: strlcpy", __func__);
886 n = strlcpy(srv->site_name, D_SITENAME,
887 sizeof(srv->site_name));
888 if (n >= sizeof(srv->site_name))
889 fatalx("%s: strlcpy", __func__);
890 n = strlcpy(srv->site_owner, D_SITEOWNER,
891 sizeof(srv->site_owner));
892 if (n >= sizeof(srv->site_owner))
893 fatalx("%s: strlcpy", __func__);
894 n = strlcpy(srv->site_link, D_SITELINK,
895 sizeof(srv->site_link));
896 if (n >= sizeof(srv->site_link))
897 fatalx("%s: strlcpy", __func__);
898 n = strlcpy(srv->logo, D_GOTLOGO,
899 sizeof(srv->logo));
900 if (n >= sizeof(srv->logo))
901 fatalx("%s: strlcpy", __func__);
902 n = strlcpy(srv->logo_url, D_GOTURL, sizeof(srv->logo_url));
903 if (n >= sizeof(srv->logo_url))
904 fatalx("%s: strlcpy", __func__);
905 n = strlcpy(srv->custom_css, D_GOTWEBCSS, sizeof(srv->custom_css));
906 if (n >= sizeof(srv->custom_css))
907 fatalx("%s: strlcpy", __func__);
909 val = getservice(D_FCGI_PORT);
910 srv->fcgi_socket_port = gotwebd->fcgi_socket_port ?
911 gotwebd->fcgi_socket_port: htons(val);
913 srv->show_site_owner = D_SHOWSOWNER;
914 srv->show_repo_owner = D_SHOWROWNER;
915 srv->show_repo_age = D_SHOWAGE;
916 srv->show_repo_description = D_SHOWDESC;
917 srv->show_repo_cloneurl = D_SHOWURL;
919 srv->max_repos_display = D_MAXREPODISP;
920 srv->max_commits_display = D_MAXCOMMITDISP;
921 srv->max_repos = D_MAXREPO;
923 srv->unix_socket = 1;
924 srv->fcgi_socket = gotwebd->fcgi_socket ? gotwebd->fcgi_socket : 0;
926 if ((srv->al = calloc(1, sizeof(*srv->al))) == NULL)
927 fatalx("%s: calloc", __func__);
929 TAILQ_INIT(srv->al);
930 TAILQ_INSERT_TAIL(gotwebd->servers, srv, entry);
931 gotwebd->server_cnt++;
933 return srv;
934 };
936 int
937 symset(const char *nam, const char *val, int persist)
939 struct sym *sym;
941 TAILQ_FOREACH(sym, &symhead, entry) {
942 if (strcmp(nam, sym->nam) == 0)
943 break;
946 if (sym != NULL) {
947 if (sym->persist == 1)
948 return (0);
949 else {
950 free(sym->nam);
951 free(sym->val);
952 TAILQ_REMOVE(&symhead, sym, entry);
953 free(sym);
956 sym = calloc(1, sizeof(*sym));
957 if (sym == NULL)
958 return (-1);
960 sym->nam = strdup(nam);
961 if (sym->nam == NULL) {
962 free(sym);
963 return (-1);
965 sym->val = strdup(val);
966 if (sym->val == NULL) {
967 free(sym->nam);
968 free(sym);
969 return (-1);
971 sym->used = 0;
972 sym->persist = persist;
973 TAILQ_INSERT_TAIL(&symhead, sym, entry);
974 return (0);
977 int
978 cmdline_symset(char *s)
980 char *sym, *val;
981 int ret;
982 size_t len;
984 val = strrchr(s, '=');
985 if (val == NULL)
986 return (-1);
988 len = strlen(s) - strlen(val) + 1;
989 sym = malloc(len);
990 if (sym == NULL)
991 fatal("%s: malloc", __func__);
993 memcpy(&sym, s, len);
995 ret = symset(sym, val + 1, 1);
996 free(sym);
998 return (ret);
1001 char *
1002 symget(const char *nam)
1004 struct sym *sym;
1006 TAILQ_FOREACH(sym, &symhead, entry) {
1007 if (strcmp(nam, sym->nam) == 0) {
1008 sym->used = 1;
1009 return (sym->val);
1012 return (NULL);
1015 int
1016 getservice(const char *n)
1018 struct servent *s;
1019 const char *errstr;
1020 long long llval;
1022 llval = strtonum(n, 0, UINT16_MAX, &errstr);
1023 if (errstr) {
1024 s = getservbyname(n, "tcp");
1025 if (s == NULL)
1026 s = getservbyname(n, "udp");
1027 if (s == NULL)
1028 return (-1);
1029 return (s->s_port);
1032 return (htons((unsigned short)llval));
1035 struct address *
1036 host_v4(const char *s)
1038 struct in_addr ina;
1039 struct sockaddr_in *sain;
1040 struct address *h;
1042 memset(&ina, 0, sizeof(ina));
1043 if (inet_pton(AF_INET, s, &ina) != 1)
1044 return (NULL);
1046 if ((h = calloc(1, sizeof(*h))) == NULL)
1047 fatal(__func__);
1048 sain = (struct sockaddr_in *)&h->ss;
1049 /* TA: Iffy... */
1050 #ifndef __linux__
1051 sain->sin_len = sizeof(struct sockaddr_in);
1052 #endif
1053 sain->sin_family = AF_INET;
1054 sain->sin_addr.s_addr = ina.s_addr;
1055 if (sain->sin_addr.s_addr == INADDR_ANY)
1056 h->prefixlen = 0; /* 0.0.0.0 address */
1057 else
1058 h->prefixlen = -1; /* host address */
1059 return (h);
1062 struct address *
1063 host_v6(const char *s)
1065 struct addrinfo hints, *res;
1066 struct sockaddr_in6 *sa_in6;
1067 struct address *h = NULL;
1069 memset(&hints, 0, sizeof(hints));
1070 hints.ai_family = AF_INET6;
1071 hints.ai_socktype = SOCK_DGRAM; /* dummy */
1072 hints.ai_flags = AI_NUMERICHOST;
1073 if (getaddrinfo(s, "0", &hints, &res) == 0) {
1074 if ((h = calloc(1, sizeof(*h))) == NULL)
1075 fatal(__func__);
1076 sa_in6 = (struct sockaddr_in6 *)&h->ss;
1077 /* TA: Iffy... */
1078 #ifndef __linux__
1079 sa_in6->sin6_len = sizeof(struct sockaddr_in6);
1080 #endif
1081 sa_in6->sin6_family = AF_INET6;
1082 memcpy(&sa_in6->sin6_addr,
1083 &((struct sockaddr_in6 *)res->ai_addr)->sin6_addr,
1084 sizeof(sa_in6->sin6_addr));
1085 sa_in6->sin6_scope_id =
1086 ((struct sockaddr_in6 *)res->ai_addr)->sin6_scope_id;
1087 if (memcmp(&sa_in6->sin6_addr, &in6addr_any,
1088 sizeof(sa_in6->sin6_addr)) == 0)
1089 h->prefixlen = 0; /* any address */
1090 else
1091 h->prefixlen = -1; /* host address */
1092 freeaddrinfo(res);
1095 return (h);
1098 int
1099 host_dns(const char *s, struct addresslist *al, int max,
1100 in_port_t port, const char *ifname, int ipproto)
1102 struct addrinfo hints, *res0, *res;
1103 int error, cnt = 0;
1104 struct sockaddr_in *sain;
1105 struct sockaddr_in6 *sin6;
1106 struct address *h;
1108 if ((cnt = host_if(s, al, max, port, ifname, ipproto)) != 0)
1109 return (cnt);
1111 memset(&hints, 0, sizeof(hints));
1112 hints.ai_family = PF_UNSPEC;
1113 hints.ai_socktype = SOCK_DGRAM; /* DUMMY */
1114 hints.ai_flags = AI_ADDRCONFIG;
1115 error = getaddrinfo(s, NULL, &hints, &res0);
1116 if (error == EAI_AGAIN || error == EAI_NODATA || error == EAI_NONAME)
1117 return (0);
1118 if (error) {
1119 log_warnx("%s: could not parse \"%s\": %s", __func__, s,
1120 gai_strerror(error));
1121 return (-1);
1124 for (res = res0; res && cnt < max; res = res->ai_next) {
1125 if (res->ai_family != AF_INET &&
1126 res->ai_family != AF_INET6)
1127 continue;
1128 if ((h = calloc(1, sizeof(*h))) == NULL)
1129 fatal(__func__);
1131 if (port)
1132 h->port = port;
1133 if (ifname != NULL) {
1134 if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1135 sizeof(h->ifname)) {
1136 log_warnx("%s: interface name truncated",
1137 __func__);
1138 freeaddrinfo(res0);
1139 free(h);
1140 return (-1);
1143 if (ipproto != -1)
1144 h->ipproto = ipproto;
1145 h->ss.ss_family = res->ai_family;
1146 h->prefixlen = -1; /* host address */
1148 if (res->ai_family == AF_INET) {
1149 sain = (struct sockaddr_in *)&h->ss;
1150 /* TA: Iffy... */
1151 #ifndef __linux__
1152 sain->sin_len = sizeof(struct sockaddr_in);
1153 #endif
1154 sain->sin_addr.s_addr = ((struct sockaddr_in *)
1155 res->ai_addr)->sin_addr.s_addr;
1156 } else {
1157 sin6 = (struct sockaddr_in6 *)&h->ss;
1158 /* TA: Iffy... */
1159 #ifndef __linux__
1160 sin6->sin6_len = sizeof(struct sockaddr_in6);
1161 #endif
1162 memcpy(&sin6->sin6_addr, &((struct sockaddr_in6 *)
1163 res->ai_addr)->sin6_addr, sizeof(struct in6_addr));
1166 TAILQ_INSERT_HEAD(al, h, entry);
1167 cnt++;
1169 if (cnt == max && res) {
1170 log_warnx("%s: %s resolves to more than %d hosts", __func__,
1171 s, max);
1173 freeaddrinfo(res0);
1174 return (cnt);
1177 int
1178 host_if(const char *s, struct addresslist *al, int max,
1179 in_port_t port, const char *ifname, int ipproto)
1181 struct ifaddrs *ifap, *p;
1182 struct sockaddr_in *sain;
1183 struct sockaddr_in6 *sin6;
1184 struct address *h;
1185 int cnt = 0, af;
1187 if (getifaddrs(&ifap) == -1)
1188 fatal("getifaddrs");
1190 /* First search for IPv4 addresses */
1191 af = AF_INET;
1193 nextaf:
1194 for (p = ifap; p != NULL && cnt < max; p = p->ifa_next) {
1195 if (p->ifa_addr == NULL ||
1196 p->ifa_addr->sa_family != af ||
1197 (strcmp(s, p->ifa_name) != 0 &&
1198 !is_if_in_group(p->ifa_name, s)))
1199 continue;
1200 if ((h = calloc(1, sizeof(*h))) == NULL)
1201 fatal("calloc");
1203 if (port)
1204 h->port = port;
1205 if (ifname != NULL) {
1206 if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1207 sizeof(h->ifname)) {
1208 log_warnx("%s: interface name truncated",
1209 __func__);
1210 free(h);
1211 freeifaddrs(ifap);
1212 return (-1);
1215 if (ipproto != -1)
1216 h->ipproto = ipproto;
1217 h->ss.ss_family = af;
1218 h->prefixlen = -1; /* host address */
1220 if (af == AF_INET) {
1221 sain = (struct sockaddr_in *)&h->ss;
1222 /* TA: Iffy... */
1223 #ifndef __linux__
1224 sain->sin_len = sizeof(struct sockaddr_in);
1225 #endif
1226 sain->sin_addr.s_addr = ((struct sockaddr_in *)
1227 p->ifa_addr)->sin_addr.s_addr;
1228 } else {
1229 sin6 = (struct sockaddr_in6 *)&h->ss;
1230 /* TA: Iffy... */
1231 #ifndef __linux__
1232 sin6->sin6_len = sizeof(struct sockaddr_in6);
1233 #endif
1234 memcpy(&sin6->sin6_addr, &((struct sockaddr_in6 *)
1235 p->ifa_addr)->sin6_addr, sizeof(struct in6_addr));
1236 sin6->sin6_scope_id = ((struct sockaddr_in6 *)
1237 p->ifa_addr)->sin6_scope_id;
1240 TAILQ_INSERT_HEAD(al, h, entry);
1241 cnt++;
1243 if (af == AF_INET) {
1244 /* Next search for IPv6 addresses */
1245 af = AF_INET6;
1246 goto nextaf;
1249 if (cnt > max) {
1250 log_warnx("%s: %s resolves to more than %d hosts", __func__,
1251 s, max);
1253 freeifaddrs(ifap);
1254 return (cnt);
1257 int
1258 host(const char *s, struct addresslist *al, int max,
1259 in_port_t port, const char *ifname, int ipproto)
1261 struct address *h;
1263 h = host_v4(s);
1265 /* IPv6 address? */
1266 if (h == NULL)
1267 h = host_v6(s);
1269 if (h != NULL) {
1270 if (port)
1271 h->port = port;
1272 if (ifname != NULL) {
1273 if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1274 sizeof(h->ifname)) {
1275 log_warnx("%s: interface name truncated",
1276 __func__);
1277 free(h);
1278 return (-1);
1281 if (ipproto != -1)
1282 h->ipproto = ipproto;
1284 TAILQ_INSERT_HEAD(al, h, entry);
1285 return (1);
1288 return (host_dns(s, al, max, port, ifname, ipproto));
1291 int
1292 is_if_in_group(const char *ifname, const char *groupname)
1294 /* TA: Check this... */
1295 #ifdef HAVE_STRUCT_IFGROUPREQ
1296 unsigned int len;
1297 struct ifgroupreq ifgr;
1298 struct ifg_req *ifg;
1299 int s;
1300 int ret = 0;
1302 if ((s = socket(AF_INET, SOCK_DGRAM, 0)) == -1)
1303 err(1, "socket");
1305 memset(&ifgr, 0, sizeof(ifgr));
1306 if (strlcpy(ifgr.ifgr_name, ifname, IFNAMSIZ) >= IFNAMSIZ)
1307 err(1, "IFNAMSIZ");
1308 if (ioctl(s, SIOCGIFGROUP, (caddr_t)&ifgr) == -1) {
1309 if (errno == EINVAL || errno == ENOTTY)
1310 goto end;
1311 err(1, "SIOCGIFGROUP");
1314 len = ifgr.ifgr_len;
1315 ifgr.ifgr_groups = calloc(len / sizeof(struct ifg_req),
1316 sizeof(struct ifg_req));
1317 if (ifgr.ifgr_groups == NULL)
1318 err(1, "getifgroups");
1319 if (ioctl(s, SIOCGIFGROUP, (caddr_t)&ifgr) == -1)
1320 err(1, "SIOCGIFGROUP");
1322 ifg = ifgr.ifgr_groups;
1323 for (; ifg && len >= sizeof(struct ifg_req); ifg++) {
1324 len -= sizeof(struct ifg_req);
1325 if (strcmp(ifg->ifgrq_group, groupname) == 0) {
1326 ret = 1;
1327 break;
1330 free(ifgr.ifgr_groups);
1332 end:
1333 close(s);
1334 return (ret);
1335 #else
1336 return (0);
1337 #endif
1340 int
1341 get_addrs(const char *addr, struct addresslist *al, in_port_t port)
1343 if (strcmp("", addr) == 0) {
1344 if (host("0.0.0.0", al, 1, port, "0.0.0.0", -1) <= 0) {
1345 yyerror("invalid listen ip: %s",
1346 "0.0.0.0");
1347 return (-1);
1349 if (host("::", al, 1, port, "::", -1) <= 0) {
1350 yyerror("invalid listen ip: %s", "::");
1351 return (-1);
1353 } else {
1354 if (host(addr, al, GOTWEBD_MAXIFACE, port, addr,
1355 -1) <= 0) {
1356 yyerror("invalid listen ip: %s", addr);
1357 return (-1);
1360 return (0);