1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227 228 229 230 231 232 233 234 235 236 237 238 239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255 256 257 258 259 260 261 262 263 264 265 266 267 268 269 270 271 272 273 274 275 276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301 302 303 304 305 306 307 308 309 310 311 312 313 314 315 316 317 318 319 320 321 322
|
/*
* Copyright (c) 2023 One Identity LLC.
* Copyright (c) 2002-2013 Balabit
* Copyright (c) 1998-2013 Balázs Scheidler
*
* This library is free software; you can redistribute it and/or
* modify it under the terms of the GNU Lesser General Public
* License as published by the Free Software Foundation; either
* version 2.1 of the License, or (at your option) any later version.
*
* This library is distributed in the hope that it will be useful,
* but WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
* Lesser General Public License for more details.
*
* You should have received a copy of the GNU Lesser General Public
* License along with this library; if not, write to the Free Software
* Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
*
* As an additional exemption you are allowed to compile & link against the
* OpenSSL libraries as published by the OpenSSL project. See the file
* COPYING for details.
*/
#include "transport-socket.h"
#include "messages.h"
#include <errno.h>
#include <string.h>
#include <unistd.h>
static gint
_determine_address_family(gint fd)
{
struct sockaddr_storage sas;
socklen_t len = sizeof(sas);
if (getsockname(fd, (struct sockaddr *) &sas, &len) < 0)
return 0;
return sas.ss_family;
}
static gint
_determine_proto_value_based_on_so_protocol(gint fd)
{
#if defined(SO_PROTOCOL)
gint ipproto;
socklen_t ipproto_len = sizeof(ipproto);
/* supported by Linux and FreeBSD */
if (getsockopt(fd, SOL_SOCKET, SO_PROTOCOL, &ipproto, &ipproto_len) >= 0)
return ipproto;
#endif
return 0;
}
static gint
_determine_proto_value_based_on_so_domain_and_type(gint fd, gint address_family)
{
gint type;
socklen_t len = sizeof(type);
if (getsockopt(fd, SOL_SOCKET, SO_TYPE, &type, &len) < 0)
return 0;
switch (address_family)
{
case AF_INET:
case AF_INET6:
if (type == SOCK_DGRAM)
return IPPROTO_UDP;
else if (type == SOCK_STREAM)
return IPPROTO_TCP;
break;
case AF_UNIX:
break;
default:
g_assert_not_reached();
}
return 0;
}
static gint
_determine_proto(gint fd, gint address_family)
{
gint result = _determine_proto_value_based_on_so_protocol(fd);
if (!result)
result = _determine_proto_value_based_on_so_domain_and_type(fd, address_family);
return result;
}
gboolean
_extract_timestamp_from_cmsg(struct cmsghdr *cmsg, struct timespec *timestamp)
{
#ifdef SCM_TIMESTAMPNS
if (cmsg->cmsg_level == SOL_SOCKET && cmsg->cmsg_type == SCM_TIMESTAMPNS)
{
memcpy(timestamp, CMSG_DATA(cmsg), sizeof(struct timespec));
return TRUE;
}
#endif
return FALSE;
}
void
log_transport_socket_parse_cmsg_method(LogTransportSocket *s, struct cmsghdr *cmsg, LogTransportAuxData *aux)
{
struct timespec timestamp;
if (_extract_timestamp_from_cmsg(cmsg, ×tamp))
{
log_transport_aux_data_set_timestamp(aux, ×tamp);
return;
}
}
static void
_setup_fd(LogTransportSocket *self, gint fd)
{
#ifdef SO_TIMESTAMPNS
gint on = 1;
setsockopt(fd, SOL_SOCKET, SO_TIMESTAMPNS, &on, sizeof(on));
#endif
}
#if defined(SYSLOG_NG_HAVE_CTRLBUF_IN_MSGHDR)
static void
_parse_cmsg_to_aux(LogTransportSocket *self, struct msghdr *msg, LogTransportAuxData *aux)
{
struct cmsghdr *cmsg;
if (G_UNLIKELY(msg->msg_flags & MSG_CTRUNC))
{
msg_warning_once("WARNING: recvmsg() returned truncated control data, the size of the control data buffer needs to be increased",
evt_tag_int("control_len", msg->msg_controllen));
return;
}
if (!self->parse_cmsg || !aux)
return;
for (cmsg = CMSG_FIRSTHDR(msg); cmsg != NULL; cmsg = CMSG_NXTHDR(msg, cmsg))
{
self->parse_cmsg(self, cmsg, aux);
}
}
#else
#define _parse_cmsg_to_aux(s, m, a)
#endif
static void
_extract_from_msghdr_method(LogTransportSocket *self, struct msghdr *msg, LogTransportAuxData *aux)
{
if (msg->msg_namelen && aux)
log_transport_aux_data_set_peer_addr_ref(aux, g_sockaddr_new((struct sockaddr *) msg->msg_name, msg->msg_namelen));
if (aux)
aux->proto = self->proto;
_parse_cmsg_to_aux(self, msg, aux);
}
static gssize
log_transport_socket_read_method(LogTransport *s, gpointer buf, gsize buflen, LogTransportAuxData *aux)
{
LogTransportSocket *self = (LogTransportSocket *) s;
gint rc;
struct msghdr msg;
struct iovec iov[1];
struct sockaddr_storage ss;
#if defined(SYSLOG_NG_HAVE_CTRLBUF_IN_MSGHDR)
gchar ctlbuf[256];
msg.msg_control = ctlbuf;
msg.msg_controllen = sizeof(ctlbuf);
#endif
msg.msg_name = (struct sockaddr *) &ss;
msg.msg_namelen = sizeof(ss);
msg.msg_iovlen = 1;
msg.msg_iov = iov;
iov[0].iov_base = buf;
iov[0].iov_len = buflen;
do
{
rc = recvmsg(self->super.fd, &msg, 0);
}
while (rc == -1 && errno == EINTR);
if (rc > 0)
_extract_from_msghdr_method(self, &msg, aux);
return rc;
}
static gssize
log_transport_socket_write_method(LogTransport *s, const gpointer buf, gsize buflen)
{
LogTransportSocket *self = (LogTransportSocket *) s;
gint rc;
do
{
rc = send(self->super.fd, buf, buflen, 0);
}
while (rc == -1 && errno == EINTR);
return rc;
}
static void
log_transport_socket_init_instance(LogTransportSocket *self, gint fd)
{
log_transport_init_instance(&self->super, fd);
self->super.read = log_transport_socket_read_method;
self->super.write = log_transport_socket_write_method;
self->address_family = _determine_address_family(fd);
self->proto = _determine_proto(fd, self->address_family);
self->parse_cmsg = log_transport_socket_parse_cmsg_method;
_setup_fd(self, fd);
}
static void
log_transport_socket_free_method(LogTransport *s)
{
LogTransportSocket *self = (LogTransportSocket *) s;
if (self->proxy)
{
log_transport_socket_proxy_free(self->proxy);
self->proxy = NULL;
}
log_transport_free_method(s);
}
static gssize
log_transport_dgram_socket_read_method(LogTransport *s, gpointer buf, gsize buflen, LogTransportAuxData *aux)
{
gssize rc = log_transport_socket_read_method(s, buf, buflen, aux);
if (rc == 0)
{
/* DGRAM sockets should never return EOF, they just need to be read again */
rc = -1;
errno = EAGAIN;
}
return rc;
}
static gssize
log_transport_dgram_socket_write_method(LogTransport *s, const gpointer buf, gsize buflen)
{
gint rc;
rc = log_transport_socket_write_method(s, buf, buflen);
/* NOTE: FreeBSD returns ENOBUFS on send() failure instead of indicating
* this conditions via poll(). The return of ENOBUFS actually is a send
* error and is calculated in IP statistics, so the best is to handle it as
* a success. The only alternative would be to return EAGAIN, which could
* cause syslog-ng to spin as long as buffer space is unavailable. Since
* I'm not sure how much time that would take and I think spinning the CPU
* is not a good idea in general, I just drop the packet in this case.
* UDP is lossy anyway */
if (rc < 0 && errno == ENOBUFS)
return buflen;
return rc;
}
void
log_transport_socket_set_proxied(LogTransportSocket *self, LogTransportSocketProxy *proxy)
{
g_assert(self->proto == IPPROTO_TCP);
g_assert(self->proxy == NULL && "Transport socket already proxied");
self->proxy = proxy;
}
void
log_transport_dgram_socket_init_instance(LogTransportSocket *self, gint fd)
{
log_transport_socket_init_instance(self, fd);
self->super.read = log_transport_dgram_socket_read_method;
self->super.write = log_transport_dgram_socket_write_method;
}
LogTransport *
log_transport_dgram_socket_new(gint fd)
{
LogTransportSocket *self = g_new0(LogTransportSocket, 1);
log_transport_dgram_socket_init_instance(self, fd);
return &self->super;
}
void
log_transport_stream_socket_free_method(LogTransport *s)
{
if (s->fd != -1)
shutdown(s->fd, SHUT_RDWR);
log_transport_socket_free_method(s);
}
void
log_transport_stream_socket_init_instance(LogTransportSocket *self, gint fd)
{
g_assert(self->proxy == NULL
&& "log_transport_stream_socket_init_instance must be called before log_transport_socket_set_proxied ");
log_transport_socket_init_instance(self, fd);
self->super.free_fn = log_transport_stream_socket_free_method;
}
LogTransport *
log_transport_stream_socket_new(gint fd)
{
LogTransportSocket *self = g_new0(LogTransportSocket, 1);
log_transport_stream_socket_init_instance(self, fd);
return &self->super;
}
|