San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 1 | /* |
| 2 | * Copyright (C) 2008 The Android Open Source Project |
| 3 | * |
| 4 | * Licensed under the Apache License, Version 2.0 (the "License"); |
| 5 | * you may not use this file except in compliance with the License. |
| 6 | * You may obtain a copy of the License at |
| 7 | * |
| 8 | * http://www.apache.org/licenses/LICENSE-2.0 |
| 9 | * |
| 10 | * Unless required by applicable law or agreed to in writing, software |
| 11 | * distributed under the License is distributed on an "AS IS" BASIS, |
| 12 | * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. |
| 13 | * See the License for the specific language governing permissions and |
| 14 | * limitations under the License. |
| 15 | */ |
| 16 | |
Bernie Innocenti | 196f1b8 | 2019-05-20 16:34:16 +0900 | [diff] [blame] | 17 | #include <dirent.h> |
| 18 | #include <errno.h> |
| 19 | #include <fcntl.h> |
| 20 | #include <signal.h> |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 21 | #include <stdio.h> |
| 22 | #include <stdlib.h> |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 23 | #include <string.h> |
| 24 | #include <sys/stat.h> |
| 25 | #include <sys/types.h> |
San Mehat | 5c1b8af | 2010-01-21 15:37:10 -0800 | [diff] [blame] | 26 | #include <sys/wait.h> |
Bernie Innocenti | 196f1b8 | 2019-05-20 16:34:16 +0900 | [diff] [blame] | 27 | #include <chrono> |
| 28 | #include <cinttypes> |
| 29 | #include <mutex> |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 30 | |
| 31 | #define LOG_TAG "Netd" |
| 32 | |
Logan Chien | 3f46148 | 2018-04-23 14:31:32 +0800 | [diff] [blame] | 33 | #include "log/log.h" |
Lorenzo Colitti | e4d626e | 2016-02-02 17:19:04 +0900 | [diff] [blame] | 34 | |
Joel Fernandes | a03aced | 2019-01-10 11:24:11 -0500 | [diff] [blame] | 35 | #include <android-base/properties.h> |
Lorenzo Colitti | e4d626e | 2016-02-02 17:19:04 +0900 | [diff] [blame] | 36 | #include <binder/IPCThreadState.h> |
| 37 | #include <binder/IServiceManager.h> |
Mike Yu | e7e332f | 2019-03-13 17:15:48 +0800 | [diff] [blame] | 38 | #include <netdutils/Stopwatch.h> |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 39 | |
Joel Scherpelz | 08b84cd | 2017-05-22 13:11:54 +0900 | [diff] [blame] | 40 | #include "Controllers.h" |
Joel Scherpelz | 08b84cd | 2017-05-22 13:11:54 +0900 | [diff] [blame] | 41 | #include "FwmarkServer.h" |
| 42 | #include "MDnsSdListener.h" |
| 43 | #include "NFLogListener.h" |
Lorenzo Colitti | e4d626e | 2016-02-02 17:19:04 +0900 | [diff] [blame] | 44 | #include "NetdConstants.h" |
Niranjan Pendharkar | 7e08f85 | 2017-07-24 11:40:05 -0700 | [diff] [blame] | 45 | #include "NetdHwService.h" |
Lorenzo Colitti | e4d626e | 2016-02-02 17:19:04 +0900 | [diff] [blame] | 46 | #include "NetdNativeService.h" |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 47 | #include "NetlinkManager.h" |
Erik Kline | 8589004 | 2018-05-25 19:19:11 +0900 | [diff] [blame] | 48 | #include "Process.h" |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 49 | |
Luke Huang | f29fe68 | 2019-03-26 15:15:44 +0800 | [diff] [blame] | 50 | #include "netd_resolv/resolv.h" |
Lorenzo Colitti | afaaa8e | 2018-12-18 19:16:12 +0900 | [diff] [blame] | 51 | #include "netd_resolv/resolv_stub.h" |
| 52 | |
Lorenzo Colitti | e4d626e | 2016-02-02 17:19:04 +0900 | [diff] [blame] | 53 | using android::IPCThreadState; |
Hans Boehm | ccdecaa | 2019-08-26 17:36:42 -0700 | [diff] [blame^] | 54 | using android::sp; |
Bernie Innocenti | a5161a0 | 2019-01-30 22:40:53 +0900 | [diff] [blame] | 55 | using android::status_t; |
Luke Huang | f29fe68 | 2019-03-26 15:15:44 +0800 | [diff] [blame] | 56 | using android::String16; |
Lorenzo Colitti | 7035f22 | 2017-02-13 18:29:00 +0900 | [diff] [blame] | 57 | using android::net::FwmarkServer; |
Luke Huang | f29fe68 | 2019-03-26 15:15:44 +0800 | [diff] [blame] | 58 | using android::net::gCtls; |
| 59 | using android::net::gLog; |
Bernie Innocenti | a5161a0 | 2019-01-30 22:40:53 +0900 | [diff] [blame] | 60 | using android::net::makeNFLogListener; |
Niranjan Pendharkar | 7e08f85 | 2017-07-24 11:40:05 -0700 | [diff] [blame] | 61 | using android::net::NetdHwService; |
Lorenzo Colitti | e4d626e | 2016-02-02 17:19:04 +0900 | [diff] [blame] | 62 | using android::net::NetdNativeService; |
Lorenzo Colitti | 7035f22 | 2017-02-13 18:29:00 +0900 | [diff] [blame] | 63 | using android::net::NetlinkManager; |
Joel Scherpelz | 08b84cd | 2017-05-22 13:11:54 +0900 | [diff] [blame] | 64 | using android::net::NFLogListener; |
Mike Yu | e7e332f | 2019-03-13 17:15:48 +0800 | [diff] [blame] | 65 | using android::netdutils::Stopwatch; |
Lorenzo Colitti | e4d626e | 2016-02-02 17:19:04 +0900 | [diff] [blame] | 66 | |
Robert Greenwalt | 347f693 | 2014-10-31 18:54:06 -0700 | [diff] [blame] | 67 | const char* const PID_FILE_PATH = "/data/misc/net/netd_pid"; |
Mike Yu | 0ae31af | 2018-11-15 21:58:19 +0800 | [diff] [blame] | 68 | constexpr const char DNSPROXYLISTENER_SOCKET_NAME[] = "dnsproxyd"; |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 69 | |
Luke Huang | d1ee462 | 2018-06-29 13:49:58 +0800 | [diff] [blame] | 70 | std::mutex android::net::gBigNetdLock; |
Lorenzo Colitti | e4d626e | 2016-02-02 17:19:04 +0900 | [diff] [blame] | 71 | |
Luke Huang | f29fe68 | 2019-03-26 15:15:44 +0800 | [diff] [blame] | 72 | namespace { |
| 73 | |
| 74 | void getNetworkContextCallback(uint32_t netId, uint32_t uid, android_net_context* netcontext) { |
| 75 | gCtls->netCtrl.getNetworkContext(netId, uid, netcontext); |
| 76 | } |
| 77 | |
| 78 | bool checkCallingPermissionCallback(const char* permission) { |
| 79 | return checkCallingPermission(String16(permission)); |
| 80 | } |
| 81 | |
| 82 | void logCallback(const char* msg) { |
| 83 | gLog.info(std::string(msg)); |
| 84 | } |
| 85 | |
Praveen Moongalam Thyagarajan | f7b003d | 2019-09-04 15:08:22 -0700 | [diff] [blame] | 86 | int tagSocketCallback(int sockFd, uint32_t tag, uid_t uid, pid_t) { |
Sehee Park | b953a91 | 2019-07-04 13:53:45 +0900 | [diff] [blame] | 87 | return gCtls->trafficCtrl.tagSocket(sockFd, tag, uid, geteuid()); |
| 88 | } |
| 89 | |
Felipe Mosso Ferfoglia | feafd18 | 2019-10-31 10:31:25 -0300 | [diff] [blame] | 90 | bool evaluateDomainNameCallback(const android_net_context&, const char* /*name*/) { |
| 91 | return true; |
| 92 | } |
| 93 | |
Luke Huang | f29fe68 | 2019-03-26 15:15:44 +0800 | [diff] [blame] | 94 | bool initDnsResolver() { |
| 95 | ResolverNetdCallbacks callbacks = { |
Nick Desaulniers | 6b35750 | 2019-10-11 09:26:44 -0700 | [diff] [blame] | 96 | .check_calling_permission = &checkCallingPermissionCallback, |
Luke Huang | f29fe68 | 2019-03-26 15:15:44 +0800 | [diff] [blame] | 97 | .get_network_context = &getNetworkContextCallback, |
| 98 | .log = &logCallback, |
Sehee Park | b953a91 | 2019-07-04 13:53:45 +0900 | [diff] [blame] | 99 | .tagSocket = &tagSocketCallback, |
Felipe Mosso Ferfoglia | feafd18 | 2019-10-31 10:31:25 -0300 | [diff] [blame] | 100 | .evaluate_domain_name = &evaluateDomainNameCallback, |
Luke Huang | f29fe68 | 2019-03-26 15:15:44 +0800 | [diff] [blame] | 101 | }; |
| 102 | return RESOLV_STUB.resolv_init(callbacks); |
| 103 | } |
| 104 | |
| 105 | } // namespace |
| 106 | |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 107 | int main() { |
Lorenzo Colitti | 4362bb2 | 2017-01-21 15:00:36 +0900 | [diff] [blame] | 108 | Stopwatch s; |
Erik Kline | b31fd69 | 2018-06-06 20:50:11 +0900 | [diff] [blame] | 109 | gLog.info("netd 1.0 starting"); |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 110 | |
Erik Kline | 8589004 | 2018-05-25 19:19:11 +0900 | [diff] [blame] | 111 | android::net::process::removePidFile(PID_FILE_PATH); |
| 112 | android::net::process::blockSigPipe(); |
San Mehat | 5c1b8af | 2010-01-21 15:37:10 -0800 | [diff] [blame] | 113 | |
Lorenzo Colitti | 548bbd4 | 2017-08-28 23:05:12 +0900 | [diff] [blame] | 114 | // Before we do anything that could fork, mark CLOEXEC the UNIX sockets that we get from init. |
| 115 | // FrameworkListener does this on initialization as well, but we only initialize these |
| 116 | // components after having initialized other subsystems that can fork. |
Maciej Żenczykowski | 3875839 | 2019-05-09 05:47:59 +0000 | [diff] [blame] | 117 | for (const auto& sock : |
| 118 | {DNSPROXYLISTENER_SOCKET_NAME, FwmarkServer::SOCKET_NAME, MDnsSdListener::SOCKET_NAME}) { |
Lorenzo Colitti | 548bbd4 | 2017-08-28 23:05:12 +0900 | [diff] [blame] | 119 | setCloseOnExec(sock); |
| 120 | } |
| 121 | |
Lorenzo Colitti | afaaa8e | 2018-12-18 19:16:12 +0900 | [diff] [blame] | 122 | // Before we start any threads, populate the resolver stub pointers. |
| 123 | resolv_stub_init(); |
| 124 | |
Joel Fernandes | a03aced | 2019-01-10 11:24:11 -0500 | [diff] [blame] | 125 | // Make sure BPF programs are loaded before doing anything |
| 126 | while (!android::base::WaitForProperty("bpf.progs_loaded", "1", |
| 127 | std::chrono::seconds(5))) { |
| 128 | ALOGD("netd waited 5s for bpf.progs_loaded, still waiting..."); |
| 129 | } |
| 130 | |
Pierre Imai | 1cfa543 | 2016-02-24 18:00:03 +0900 | [diff] [blame] | 131 | NetlinkManager *nm = NetlinkManager::Instance(); |
| 132 | if (nm == nullptr) { |
Steve Block | 5ea0c05 | 2012-01-06 19:18:11 +0000 | [diff] [blame] | 133 | ALOGE("Unable to create NetlinkManager"); |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 134 | exit(1); |
| 135 | }; |
| 136 | |
Pierre Imai | 1cfa543 | 2016-02-24 18:00:03 +0900 | [diff] [blame] | 137 | gCtls = new android::net::Controllers(); |
Lorenzo Colitti | 1ed96e2 | 2017-02-02 12:21:56 +0900 | [diff] [blame] | 138 | gCtls->init(); |
| 139 | |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 140 | if (nm->start()) { |
Steve Block | 5ea0c05 | 2012-01-06 19:18:11 +0000 | [diff] [blame] | 141 | ALOGE("Unable to start NetlinkManager (%s)", strerror(errno)); |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 142 | exit(1); |
| 143 | } |
| 144 | |
Joel Scherpelz | 685deb5 | 2017-06-14 10:27:47 +0900 | [diff] [blame] | 145 | std::unique_ptr<NFLogListener> logListener; |
| 146 | { |
| 147 | auto result = makeNFLogListener(); |
| 148 | if (!isOk(result)) { |
| 149 | ALOGE("Unable to create NFLogListener: %s", toString(result).c_str()); |
| 150 | exit(1); |
| 151 | } |
| 152 | logListener = std::move(result.value()); |
| 153 | auto status = gCtls->wakeupCtrl.init(logListener.get()); |
| 154 | if (!isOk(result)) { |
Erik Kline | b31fd69 | 2018-06-06 20:50:11 +0900 | [diff] [blame] | 155 | gLog.error("Unable to init WakeupController: %s", toString(result).c_str()); |
Joel Scherpelz | 685deb5 | 2017-06-14 10:27:47 +0900 | [diff] [blame] | 156 | // We can still continue without wakeup packet logging. |
| 157 | } |
| 158 | } |
| 159 | |
Brad Fitzpatrick | 007e987 | 2010-10-27 11:39:52 -0700 | [diff] [blame] | 160 | // Set local DNS mode, to prevent bionic from proxying |
| 161 | // back to this service, recursively. |
Mike Yu | 0ae31af | 2018-11-15 21:58:19 +0800 | [diff] [blame] | 162 | // TODO: Check if we could remove it since resolver cache no loger |
| 163 | // checks this environment variable after aosp/838050. |
Brad Fitzpatrick | 007e987 | 2010-10-27 11:39:52 -0700 | [diff] [blame] | 164 | setenv("ANDROID_DNS_MODE", "local", 1); |
Luke Huang | f29fe68 | 2019-03-26 15:15:44 +0800 | [diff] [blame] | 165 | // Note that only call initDnsResolver after gCtls initializing. |
| 166 | if (!initDnsResolver()) { |
Mike Yu | 0ae31af | 2018-11-15 21:58:19 +0800 | [diff] [blame] | 167 | ALOGE("Unable to init resolver"); |
Brad Fitzpatrick | 007e987 | 2010-10-27 11:39:52 -0700 | [diff] [blame] | 168 | exit(1); |
| 169 | } |
| 170 | |
Pierre Imai | 1cfa543 | 2016-02-24 18:00:03 +0900 | [diff] [blame] | 171 | MDnsSdListener mdnsl; |
| 172 | if (mdnsl.startListener()) { |
Robert Greenwalt | 745e09f | 2012-03-29 14:45:54 -0700 | [diff] [blame] | 173 | ALOGE("Unable to start MDnsSdListener (%s)", strerror(errno)); |
| 174 | exit(1); |
| 175 | } |
Sreeram Ramachandran | 030b36e | 2014-05-11 21:04:03 -0700 | [diff] [blame] | 176 | |
Chenbo Feng | 9944ba8 | 2017-10-10 17:33:20 -0700 | [diff] [blame] | 177 | FwmarkServer fwmarkServer(&gCtls->netCtrl, &gCtls->eventReporter, &gCtls->trafficCtrl); |
Pierre Imai | 1cfa543 | 2016-02-24 18:00:03 +0900 | [diff] [blame] | 178 | if (fwmarkServer.startListener()) { |
Sreeram Ramachandran | 030b36e | 2014-05-11 21:04:03 -0700 | [diff] [blame] | 179 | ALOGE("Unable to start FwmarkServer (%s)", strerror(errno)); |
| 180 | exit(1); |
| 181 | } |
| 182 | |
Luke Huang | cfd04b2 | 2019-03-18 15:53:21 +0800 | [diff] [blame] | 183 | Stopwatch subTime; |
| 184 | status_t ret; |
| 185 | if ((ret = NetdNativeService::start()) != android::OK) { |
| 186 | ALOGE("Unable to start NetdNativeService: %d", ret); |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 187 | exit(1); |
| 188 | } |
Bernie Innocenti | 196f1b8 | 2019-05-20 16:34:16 +0900 | [diff] [blame] | 189 | gLog.info("Registering NetdNativeService: %" PRId64 "us", subTime.getTimeAndResetUs()); |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 190 | |
Erik Kline | 8589004 | 2018-05-25 19:19:11 +0900 | [diff] [blame] | 191 | android::net::process::ScopedPidFile pidFile(PID_FILE_PATH); |
Robert Greenwalt | 347f693 | 2014-10-31 18:54:06 -0700 | [diff] [blame] | 192 | |
Hans Boehm | ccdecaa | 2019-08-26 17:36:42 -0700 | [diff] [blame^] | 193 | // Now that netd is ready to process commands, advertise service availability for HAL clients. |
| 194 | sp<NetdHwService> mHwSvc(new NetdHwService()); |
| 195 | if ((ret = mHwSvc->start()) != android::OK) { |
Niranjan Pendharkar | 7e08f85 | 2017-07-24 11:40:05 -0700 | [diff] [blame] | 196 | ALOGE("Unable to start NetdHwService: %d", ret); |
| 197 | exit(1); |
| 198 | } |
Bernie Innocenti | 196f1b8 | 2019-05-20 16:34:16 +0900 | [diff] [blame] | 199 | gLog.info("Registering NetdHwService: %" PRId64 "us", subTime.getTimeAndResetUs()); |
| 200 | gLog.info("Netd started in %" PRId64 "us", s.timeTakenUs()); |
Lorenzo Colitti | 4362bb2 | 2017-01-21 15:00:36 +0900 | [diff] [blame] | 201 | |
Lorenzo Colitti | e4851de | 2016-03-17 13:23:28 +0900 | [diff] [blame] | 202 | IPCThreadState::self()->joinThreadPool(); |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 203 | |
Erik Kline | b31fd69 | 2018-06-06 20:50:11 +0900 | [diff] [blame] | 204 | gLog.info("netd exiting"); |
Lorenzo Colitti | e4d626e | 2016-02-02 17:19:04 +0900 | [diff] [blame] | 205 | |
San Mehat | d183042 | 2010-01-15 08:02:39 -0800 | [diff] [blame] | 206 | exit(0); |
| 207 | } |