Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 1 | /* |
| 2 | * Copyright (C) 2012-2014 The Android Open Source Project |
| 3 | * |
| 4 | * Licensed under the Apache License, Version 2.0 (the "License"); |
| 5 | * you may not use this file except in compliance with the License. |
| 6 | * You may obtain a copy of the License at |
| 7 | * |
| 8 | * http://www.apache.org/licenses/LICENSE-2.0 |
| 9 | * |
| 10 | * Unless required by applicable law or agreed to in writing, software |
| 11 | * distributed under the License is distributed on an "AS IS" BASIS, |
| 12 | * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 13 | * See the License for the specific language governing permissions and |
| 14 | * limitations under the License. |
| 15 | */ |
| 16 | |
Mark Salyzyn | c4e4823 | 2017-05-04 13:54:46 -0700 | [diff] [blame] | 17 | #include <ctype.h> |
Mark Salyzyn | e0fa291 | 2014-04-28 16:39:04 -0700 | [diff] [blame] | 18 | #include <limits.h> |
Mark Salyzyn | c4e4823 | 2017-05-04 13:54:46 -0700 | [diff] [blame] | 19 | #include <stdio.h> |
Mark Salyzyn | 4690640 | 2016-01-12 10:08:03 -0800 | [diff] [blame] | 20 | #include <sys/cdefs.h> |
Mark Salyzyn | 8daa9af | 2014-04-28 14:07:23 -0700 | [diff] [blame] | 21 | #include <sys/prctl.h> |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 22 | #include <sys/socket.h> |
| 23 | #include <sys/types.h> |
| 24 | #include <sys/un.h> |
| 25 | #include <unistd.h> |
| 26 | |
| 27 | #include <cutils/sockets.h> |
Mark Salyzyn | e3aeeee | 2015-03-17 07:56:32 -0700 | [diff] [blame] | 28 | #include <private/android_filesystem_config.h> |
Mark Salyzyn | b5f6e45 | 2015-01-16 13:38:07 -0800 | [diff] [blame] | 29 | #include <private/android_logger.h> |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 30 | |
Mark Salyzyn | 2ad0bd0 | 2016-02-23 08:55:43 -0800 | [diff] [blame] | 31 | #include "LogBuffer.h" |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 32 | #include "LogListener.h" |
Mark Salyzyn | 083b037 | 2015-12-04 10:59:45 -0800 | [diff] [blame] | 33 | #include "LogUtils.h" |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 34 | |
Chenjie Luo | fafea32 | 2017-04-27 16:49:09 -0700 | [diff] [blame] | 35 | LogListener::LogListener(LogBufferInterface* buf, LogReader* reader) |
Mark Salyzyn | 501c373 | 2017-03-10 14:31:54 -0800 | [diff] [blame] | 36 | : SocketListener(getLogSocket(), false), logbuf(buf), reader(reader) { |
Mark Salyzyn | 7718778 | 2015-05-12 15:21:31 -0700 | [diff] [blame] | 37 | } |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 38 | |
Mark Salyzyn | 501c373 | 2017-03-10 14:31:54 -0800 | [diff] [blame] | 39 | bool LogListener::onDataAvailable(SocketClient* cli) { |
Mark Salyzyn | e3aeeee | 2015-03-17 07:56:32 -0700 | [diff] [blame] | 40 | static bool name_set; |
| 41 | if (!name_set) { |
| 42 | prctl(PR_SET_NAME, "logd.writer"); |
| 43 | name_set = true; |
| 44 | } |
Mark Salyzyn | 8daa9af | 2014-04-28 14:07:23 -0700 | [diff] [blame] | 45 | |
Paul Elliott | c6ed8f3 | 2017-11-07 11:11:41 +0000 | [diff] [blame] | 46 | // + 1 to ensure null terminator if MAX_PAYLOAD buffer is received |
Mark Salyzyn | 501c373 | 2017-03-10 14:31:54 -0800 | [diff] [blame] | 47 | char buffer[sizeof_log_id_t + sizeof(uint16_t) + sizeof(log_time) + |
Paul Elliott | c6ed8f3 | 2017-11-07 11:11:41 +0000 | [diff] [blame] | 48 | LOGGER_ENTRY_MAX_PAYLOAD + 1]; |
| 49 | struct iovec iov = { buffer, sizeof(buffer) - 1 }; |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 50 | |
Elliott Hughes | 5f4a946 | 2016-06-06 19:56:24 -0700 | [diff] [blame] | 51 | alignas(4) char control[CMSG_SPACE(sizeof(struct ucred))]; |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 52 | struct msghdr hdr = { |
Mark Salyzyn | 501c373 | 2017-03-10 14:31:54 -0800 | [diff] [blame] | 53 | NULL, 0, &iov, 1, control, sizeof(control), 0, |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 54 | }; |
| 55 | |
| 56 | int socket = cli->getSocket(); |
| 57 | |
Mark Salyzyn | 1d9c7e7 | 2015-12-15 12:30:46 -0800 | [diff] [blame] | 58 | // To clear the entire buffer is secure/safe, but this contributes to 1.68% |
Paul Elliott | c6ed8f3 | 2017-11-07 11:11:41 +0000 | [diff] [blame] | 59 | // overhead under logging load. We are safe because we check counts, but |
| 60 | // still need to clear null terminator |
Mark Salyzyn | 1d9c7e7 | 2015-12-15 12:30:46 -0800 | [diff] [blame] | 61 | // memset(buffer, 0, sizeof(buffer)); |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 62 | ssize_t n = recvmsg(socket, &hdr, 0); |
Mark Salyzyn | b5f6e45 | 2015-01-16 13:38:07 -0800 | [diff] [blame] | 63 | if (n <= (ssize_t)(sizeof(android_log_header_t))) { |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 64 | return false; |
| 65 | } |
| 66 | |
Paul Elliott | c6ed8f3 | 2017-11-07 11:11:41 +0000 | [diff] [blame] | 67 | buffer[n] = 0; |
| 68 | |
Mark Salyzyn | 501c373 | 2017-03-10 14:31:54 -0800 | [diff] [blame] | 69 | struct ucred* cred = NULL; |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 70 | |
Mark Salyzyn | 501c373 | 2017-03-10 14:31:54 -0800 | [diff] [blame] | 71 | struct cmsghdr* cmsg = CMSG_FIRSTHDR(&hdr); |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 72 | while (cmsg != NULL) { |
Mark Salyzyn | 501c373 | 2017-03-10 14:31:54 -0800 | [diff] [blame] | 73 | if (cmsg->cmsg_level == SOL_SOCKET && |
| 74 | cmsg->cmsg_type == SCM_CREDENTIALS) { |
| 75 | cred = (struct ucred*)CMSG_DATA(cmsg); |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 76 | break; |
| 77 | } |
| 78 | cmsg = CMSG_NXTHDR(&hdr, cmsg); |
| 79 | } |
| 80 | |
Mark Salyzyn | c4e4823 | 2017-05-04 13:54:46 -0700 | [diff] [blame] | 81 | struct ucred fake_cred; |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 82 | if (cred == NULL) { |
Mark Salyzyn | c4e4823 | 2017-05-04 13:54:46 -0700 | [diff] [blame] | 83 | cred = &fake_cred; |
| 84 | cred->pid = 0; |
| 85 | cred->uid = DEFAULT_OVERFLOWUID; |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 86 | } |
| 87 | |
Mark Salyzyn | e3aeeee | 2015-03-17 07:56:32 -0700 | [diff] [blame] | 88 | if (cred->uid == AID_LOGD) { |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 89 | // ignore log messages we send to ourself. |
| 90 | // Such log messages are often generated by libraries we depend on |
| 91 | // which use standard Android logging. |
| 92 | return false; |
| 93 | } |
| 94 | |
Mark Salyzyn | 501c373 | 2017-03-10 14:31:54 -0800 | [diff] [blame] | 95 | android_log_header_t* header = |
| 96 | reinterpret_cast<android_log_header_t*>(buffer); |
Hao Wang | f6e2296 | 2017-12-04 14:10:40 +0800 | [diff] [blame^] | 97 | log_id_t logId = static_cast<log_id_t>(header->id); |
| 98 | if (/* logId < LOG_ID_MIN || */ logId >= LOG_ID_MAX || |
| 99 | logId == LOG_ID_KERNEL) { |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 100 | return false; |
| 101 | } |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 102 | |
Hao Wang | f6e2296 | 2017-12-04 14:10:40 +0800 | [diff] [blame^] | 103 | if ((logId == LOG_ID_SECURITY) && |
Mark Salyzyn | 501c373 | 2017-03-10 14:31:54 -0800 | [diff] [blame] | 104 | (!__android_log_security() || |
| 105 | !clientHasLogCredentials(cred->uid, cred->gid, cred->pid))) { |
Mark Salyzyn | 083b037 | 2015-12-04 10:59:45 -0800 | [diff] [blame] | 106 | return false; |
| 107 | } |
| 108 | |
Mark Salyzyn | c4e4823 | 2017-05-04 13:54:46 -0700 | [diff] [blame] | 109 | // Check credential validity, acquire corrected details if not supplied. |
| 110 | if (cred->pid == 0) { |
| 111 | cred->pid = logbuf ? logbuf->tidToPid(header->tid) |
| 112 | : android::tidToPid(header->tid); |
| 113 | if (cred->pid == getpid()) { |
| 114 | // We expect that /proc/<tid>/ is accessible to self even without |
| 115 | // readproc group, so that we will always drop messages that come |
| 116 | // from any of our logd threads and their library calls. |
| 117 | return false; // ignore self |
| 118 | } |
| 119 | } |
| 120 | if (cred->uid == DEFAULT_OVERFLOWUID) { |
| 121 | uid_t uid = |
| 122 | logbuf ? logbuf->pidToUid(cred->pid) : android::pidToUid(cred->pid); |
| 123 | if (uid == AID_LOGD) { |
| 124 | uid = logbuf ? logbuf->pidToUid(header->tid) |
| 125 | : android::pidToUid(cred->pid); |
| 126 | } |
| 127 | if (uid != AID_LOGD) cred->uid = uid; |
| 128 | } |
| 129 | |
Mark Salyzyn | 501c373 | 2017-03-10 14:31:54 -0800 | [diff] [blame] | 130 | char* msg = ((char*)buffer) + sizeof(android_log_header_t); |
Mark Salyzyn | b5f6e45 | 2015-01-16 13:38:07 -0800 | [diff] [blame] | 131 | n -= sizeof(android_log_header_t); |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 132 | |
Mark Salyzyn | 22e287d | 2014-03-21 13:12:16 -0700 | [diff] [blame] | 133 | // NB: hdr.msg_flags & MSG_TRUNC is not tested, silently passing a |
| 134 | // truncated message to the logs. |
Mark Salyzyn | e0fa291 | 2014-04-28 16:39:04 -0700 | [diff] [blame] | 135 | |
Chenjie Luo | fafea32 | 2017-04-27 16:49:09 -0700 | [diff] [blame] | 136 | if (logbuf != nullptr) { |
| 137 | int res = logbuf->log( |
Hao Wang | f6e2296 | 2017-12-04 14:10:40 +0800 | [diff] [blame^] | 138 | logId, header->realtime, cred->uid, cred->pid, header->tid, msg, |
Chenjie Luo | fafea32 | 2017-04-27 16:49:09 -0700 | [diff] [blame] | 139 | ((size_t)n <= USHRT_MAX) ? (unsigned short)n : USHRT_MAX); |
| 140 | if (res > 0 && reader != nullptr) { |
Hao Wang | f6e2296 | 2017-12-04 14:10:40 +0800 | [diff] [blame^] | 141 | reader->notifyNewLog(static_cast<log_mask_t>(1 << logId)); |
Chenjie Luo | fafea32 | 2017-04-27 16:49:09 -0700 | [diff] [blame] | 142 | } |
Mark Salyzyn | 202e153 | 2015-02-09 08:21:05 -0800 | [diff] [blame] | 143 | } |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 144 | |
| 145 | return true; |
| 146 | } |
| 147 | |
| 148 | int LogListener::getLogSocket() { |
Mark Salyzyn | dfc47e8 | 2014-03-24 10:26:47 -0700 | [diff] [blame] | 149 | static const char socketName[] = "logdw"; |
| 150 | int sock = android_get_control_socket(socketName); |
| 151 | |
Mark Salyzyn | 54d8ff1 | 2017-05-05 15:32:10 -0700 | [diff] [blame] | 152 | if (sock < 0) { // logd started up in init.sh |
Mark Salyzyn | 501c373 | 2017-03-10 14:31:54 -0800 | [diff] [blame] | 153 | sock = socket_local_server( |
| 154 | socketName, ANDROID_SOCKET_NAMESPACE_RESERVED, SOCK_DGRAM); |
Mark Salyzyn | dfc47e8 | 2014-03-24 10:26:47 -0700 | [diff] [blame] | 155 | |
Mark Salyzyn | 54d8ff1 | 2017-05-05 15:32:10 -0700 | [diff] [blame] | 156 | int on = 1; |
| 157 | if (setsockopt(sock, SOL_SOCKET, SO_PASSCRED, &on, sizeof(on))) { |
| 158 | return -1; |
| 159 | } |
Mark Salyzyn | 0175b07 | 2014-02-26 09:50:16 -0800 | [diff] [blame] | 160 | } |
| 161 | return sock; |
| 162 | } |