blob: ac1c277425c63d2c47ea61e61295e9359493d690 [file] [log] [blame]
Mattias Falk89c1e972011-04-29 14:48:51 +02001/*
2 * Copyright (C) 2011 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
17#define LOG_TAG "ResolverController"
18#define DBG 0
19
Pierre Imaibeedec32016-04-13 06:44:51 +090020#include <algorithm>
21#include <cstdlib>
Ben Schwartze7601812017-04-28 16:38:29 -040022#include <map>
23#include <mutex>
24#include <set>
Pierre Imaibeedec32016-04-13 06:44:51 +090025#include <string>
Ben Schwartze7601812017-04-28 16:38:29 -040026#include <thread>
27#include <utility>
Pierre Imaibeedec32016-04-13 06:44:51 +090028#include <vector>
Logan Chien3f461482018-04-23 14:31:32 +080029#include <log/log.h>
Elliott Hughes970274a2012-09-11 18:56:36 -070030#include <net/if.h>
Pierre Imaibeedec32016-04-13 06:44:51 +090031#include <sys/socket.h>
32#include <netdb.h>
David 'Digit' Turner4da10dd2012-01-13 13:43:43 +010033
Ben Schwartze7601812017-04-28 16:38:29 -040034#include <arpa/inet.h>
Pierre Imaibeedec32016-04-13 06:44:51 +090035
Pierre Imai3a272072016-04-19 16:17:07 +090036#include <android-base/strings.h>
Ben Schwartzcbdd64a2017-08-23 18:21:46 -040037#include <android-base/thread_annotations.h>
Pierre Imaibeedec32016-04-13 06:44:51 +090038#include <android/net/INetd.h>
dalyk6250dbd2017-12-28 16:20:04 -050039#include <android/net/metrics/INetdEventListener.h>
Mattias Falk89c1e972011-04-29 14:48:51 +020040
Mike Yua46fae72018-11-01 20:07:00 +080041#include "Controllers.h"
Pierre Imai3a272072016-04-19 16:17:07 +090042#include "DumpWriter.h"
dalyk6250dbd2017-12-28 16:20:04 -050043#include "EventReporter.h"
Mike Yu2cc198a2018-11-02 13:30:04 +080044#include "Fwmark.h"
Ben Schwartze7601812017-04-28 16:38:29 -040045#include "NetdConstants.h"
Mike Yu2cc198a2018-11-02 13:30:04 +080046#include "Permission.h"
Mattias Falk89c1e972011-04-29 14:48:51 +020047#include "ResolverController.h"
Pierre Imaibeedec32016-04-13 06:44:51 +090048#include "ResolverStats.h"
Bernie Innocenti189eb502018-10-01 23:10:18 +090049#include "netd_resolv/params.h"
50#include "netd_resolv/resolv.h"
Lorenzo Colittiafaaa8e2018-12-18 19:16:12 +090051#include "netd_resolv/resolv_stub.h"
Bernie Innocenti189eb502018-10-01 23:10:18 +090052#include "netd_resolv/stats.h"
Mattias Falk89c1e972011-04-29 14:48:51 +020053
Lorenzo Colitti7035f222017-02-13 18:29:00 +090054namespace android {
Erik Klined739c212018-04-24 23:09:39 +090055namespace net {
Mike Yua46fae72018-11-01 20:07:00 +080056
Ben Schwartze7601812017-04-28 16:38:29 -040057namespace {
58
Ben Schwartz4204ecf2017-10-02 12:35:48 -040059std::string addrToString(const sockaddr_storage* addr) {
60 char out[INET6_ADDRSTRLEN] = {0};
61 getnameinfo((const sockaddr*)addr, sizeof(sockaddr_storage), out,
Yi Kongbdfd57e2018-07-25 13:26:10 -070062 INET6_ADDRSTRLEN, nullptr, 0, NI_NUMERICHOST);
Ben Schwartz4204ecf2017-10-02 12:35:48 -040063 return std::string(out);
64}
Ben Schwartze7601812017-04-28 16:38:29 -040065
Erik Kline1564d482018-03-07 17:09:35 +090066const char* getPrivateDnsModeString(PrivateDnsMode mode) {
67 switch (mode) {
Mike Yua46fae72018-11-01 20:07:00 +080068 case PrivateDnsMode::OFF:
69 return "OFF";
70 case PrivateDnsMode::OPPORTUNISTIC:
71 return "OPPORTUNISTIC";
72 case PrivateDnsMode::STRICT:
73 return "STRICT";
Erik Kline1564d482018-03-07 17:09:35 +090074 }
75}
76
Mike Yua46fae72018-11-01 20:07:00 +080077constexpr const char* validationStatusToString(Validation value) {
Erik Klinefb757532018-01-18 20:12:06 +090078 switch (value) {
Mike Yua46fae72018-11-01 20:07:00 +080079 case Validation::in_process:
80 return "in_process";
81 case Validation::success:
82 return "success";
83 case Validation::fail:
84 return "fail";
85 case Validation::unknown_server:
86 return "unknown_server";
87 case Validation::unknown_netid:
88 return "unknown_netid";
89 default:
90 return "unknown_status";
Erik Klinefb757532018-01-18 20:12:06 +090091 }
92}
93
Mike Yua46fae72018-11-01 20:07:00 +080094void onPrivateDnsValidation(unsigned netId, const char* server, const char* hostname,
95 bool success) {
96 // Send a validation event to NetdEventListenerService.
97 const auto netdEventListener = net::gCtls->eventReporter.getNetdEventListener();
98 if (netdEventListener != nullptr) {
99 netdEventListener->onPrivateDnsValidationEvent(netId, android::String16(server),
100 android::String16(hostname), success);
Erik Klined739c212018-04-24 23:09:39 +0900101 if (DBG) {
Mike Yua46fae72018-11-01 20:07:00 +0800102 ALOGD("Sending validation %s event on netId %u for %s with hostname %s",
103 success ? "success" : "failure", netId, server, hostname);
Erik Klined739c212018-04-24 23:09:39 +0900104 }
105
Mike Yua46fae72018-11-01 20:07:00 +0800106 } else {
107 ALOGE("Validation event not sent since NetdEventListenerService is unavailable.");
Erik Klined739c212018-04-24 23:09:39 +0900108 }
Mike Yua46fae72018-11-01 20:07:00 +0800109}
Erik Klined739c212018-04-24 23:09:39 +0900110
Mike Yu0ae31af2018-11-15 21:58:19 +0800111void getNetworkContextCallback(uint32_t netId, uint32_t uid, android_net_context* netcontext) {
112 net::gCtls->netCtrl.getNetworkContext(netId, uid, netcontext);
113}
114
115bool getDns64PrefixCallback(unsigned netId, in6_addr* v6addr, uint8_t* prefix_len) {
116 netdutils::IPPrefix prefix{};
117 if (net::gCtls->resolverCtrl.getPrefix64(netId, &prefix) != 0) {
118 return false;
119 }
120 *v6addr = prefix.addr6();
121 *prefix_len = prefix.length();
122 return true;
123}
124
125bool checkCallingPermissionCallback(const char* permission) {
126 return checkCallingPermission(String16(permission));
127}
128
Erik Klined26a2c22018-05-11 19:33:19 +0900129bool allIPv6Only(const std::vector<std::string>& servers) {
130 for (const auto& server : servers) {
131 if (server.find(':') == std::string::npos) return false;
132 }
133 return !servers.empty();
134}
135
Ben Schwartze7601812017-04-28 16:38:29 -0400136} // namespace
137
Pierre Imai95f5f942016-03-09 18:09:25 +0900138int ResolverController::setDnsServers(unsigned netId, const char* searchDomains,
139 const char** servers, int numservers, const __res_params* params) {
Mattias Falk89c1e972011-04-29 14:48:51 +0200140 if (DBG) {
Ben Schwartz4204ecf2017-10-02 12:35:48 -0400141 ALOGD("setDnsServers netId = %u, numservers = %d", netId, numservers);
Mattias Falk89c1e972011-04-29 14:48:51 +0200142 }
Lorenzo Colittiafaaa8e2018-12-18 19:16:12 +0900143 return -RESOLV_STUB.resolv_set_nameservers_for_net(netId, servers, numservers, searchDomains,
144 params);
Mattias Falk89c1e972011-04-29 14:48:51 +0200145}
Paul Jensen6a46f332014-08-06 18:42:27 +0000146
Lorenzo Colittidadc5f82014-11-29 13:54:25 +0900147int ResolverController::clearDnsServers(unsigned netId) {
Mike Yu4fe1b9c2019-01-29 17:50:19 +0800148 // It will create the cache if it doesn't exist.
Lorenzo Colittiafaaa8e2018-12-18 19:16:12 +0900149 RESOLV_STUB.resolv_set_nameservers_for_net(netId, nullptr, 0, "", nullptr);
Lorenzo Colittidadc5f82014-11-29 13:54:25 +0900150 if (DBG) {
151 ALOGD("clearDnsServers netId = %u\n", netId);
152 }
Erik Klined26a2c22018-05-11 19:33:19 +0900153 mDns64Configuration.stopPrefixDiscovery(netId);
Lorenzo Colittiafaaa8e2018-12-18 19:16:12 +0900154 RESOLV_STUB.resolv_delete_private_dns_for_net(netId);
Lorenzo Colittidadc5f82014-11-29 13:54:25 +0900155 return 0;
156}
157
Pierre Imaibeedec32016-04-13 06:44:51 +0900158int ResolverController::getDnsInfo(unsigned netId, std::vector<std::string>* servers,
Ken Chen2a429352018-12-22 21:46:55 +0800159 std::vector<std::string>* domains, __res_params* params,
160 std::vector<android::net::ResolverStats>* stats,
161 std::vector<int32_t>* wait_for_pending_req_timeout_count) {
Pierre Imaibeedec32016-04-13 06:44:51 +0900162 using android::net::ResolverStats;
163 using android::net::INetd;
164 static_assert(ResolverStats::STATS_SUCCESSES == INetd::RESOLVER_STATS_SUCCESSES &&
165 ResolverStats::STATS_ERRORS == INetd::RESOLVER_STATS_ERRORS &&
166 ResolverStats::STATS_TIMEOUTS == INetd::RESOLVER_STATS_TIMEOUTS &&
167 ResolverStats::STATS_INTERNAL_ERRORS == INetd::RESOLVER_STATS_INTERNAL_ERRORS &&
168 ResolverStats::STATS_RTT_AVG == INetd::RESOLVER_STATS_RTT_AVG &&
169 ResolverStats::STATS_LAST_SAMPLE_TIME == INetd::RESOLVER_STATS_LAST_SAMPLE_TIME &&
170 ResolverStats::STATS_USABLE == INetd::RESOLVER_STATS_USABLE &&
171 ResolverStats::STATS_COUNT == INetd::RESOLVER_STATS_COUNT,
172 "AIDL and ResolverStats.h out of sync");
173 int nscount = -1;
174 sockaddr_storage res_servers[MAXNS];
175 int dcount = -1;
176 char res_domains[MAXDNSRCH][MAXDNSRCHPATH];
Bernie Innocenti189eb502018-10-01 23:10:18 +0900177 res_stats res_stats[MAXNS];
Pierre Imaibeedec32016-04-13 06:44:51 +0900178 servers->clear();
179 domains->clear();
180 *params = __res_params{};
181 stats->clear();
Ken Chen2a429352018-12-22 21:46:55 +0800182 int res_wait_for_pending_req_timeout_count;
Lorenzo Colittiafaaa8e2018-12-18 19:16:12 +0900183 int revision_id = RESOLV_STUB.android_net_res_stats_get_info_for_net(
Ken Chen2a429352018-12-22 21:46:55 +0800184 netId, &nscount, res_servers, &dcount, res_domains, params, res_stats,
185 &res_wait_for_pending_req_timeout_count);
Pierre Imaibeedec32016-04-13 06:44:51 +0900186
187 // If the netId is unknown (which can happen for valid net IDs for which no DNS servers have
188 // yet been configured), there is no revision ID. In this case there is no data to return.
189 if (revision_id < 0) {
190 return 0;
191 }
192
193 // Verify that the returned data is sane.
194 if (nscount < 0 || nscount > MAXNS || dcount < 0 || dcount > MAXDNSRCH) {
195 ALOGE("%s: nscount=%d, dcount=%d", __FUNCTION__, nscount, dcount);
196 return -ENOTRECOVERABLE;
197 }
198
199 // Determine which servers are considered usable by the resolver.
200 bool valid_servers[MAXNS];
201 std::fill_n(valid_servers, MAXNS, false);
Lorenzo Colittiafaaa8e2018-12-18 19:16:12 +0900202 RESOLV_STUB.android_net_res_stats_get_usable_servers(params, res_stats, nscount, valid_servers);
Pierre Imaibeedec32016-04-13 06:44:51 +0900203
204 // Convert the server sockaddr structures to std::string.
205 stats->resize(nscount);
206 for (int i = 0 ; i < nscount ; ++i) {
207 char hbuf[NI_MAXHOST];
208 int rv = getnameinfo(reinterpret_cast<const sockaddr*>(&res_servers[i]),
209 sizeof(res_servers[i]), hbuf, sizeof(hbuf), nullptr, 0, NI_NUMERICHOST);
210 std::string server_str;
211 if (rv == 0) {
212 server_str.assign(hbuf);
213 } else {
214 ALOGE("getnameinfo() failed for server #%d: %s", i, gai_strerror(rv));
215 server_str.assign("<invalid>");
216 }
217 servers->push_back(std::move(server_str));
218 android::net::ResolverStats& cur_stats = (*stats)[i];
Lorenzo Colittiafaaa8e2018-12-18 19:16:12 +0900219 RESOLV_STUB.android_net_res_stats_aggregate(
220 &res_stats[i], &cur_stats.successes, &cur_stats.errors, &cur_stats.timeouts,
221 &cur_stats.internal_errors, &cur_stats.rtt_avg, &cur_stats.last_sample_time);
Pierre Imaibeedec32016-04-13 06:44:51 +0900222 cur_stats.usable = valid_servers[i];
223 }
224
225 // Convert the stack-allocated search domain strings to std::string.
226 for (int i = 0 ; i < dcount ; ++i) {
227 domains->push_back(res_domains[i]);
228 }
Ken Chen2a429352018-12-22 21:46:55 +0800229
230 (*wait_for_pending_req_timeout_count)[0] = res_wait_for_pending_req_timeout_count;
Pierre Imaibeedec32016-04-13 06:44:51 +0900231 return 0;
232}
233
234int ResolverController::setResolverConfiguration(int32_t netId,
235 const std::vector<std::string>& servers, const std::vector<std::string>& domains,
Erik Klinea1476fb2018-03-04 21:01:56 +0900236 const std::vector<int32_t>& params, const std::string& tlsName,
237 const std::vector<std::string>& tlsServers,
Ben Schwartz4204ecf2017-10-02 12:35:48 -0400238 const std::set<std::vector<uint8_t>>& tlsFingerprints) {
Pierre Imaibeedec32016-04-13 06:44:51 +0900239 using android::net::INetd;
Bernie Innocenticc93c372018-08-06 15:18:59 +0900240 // TODO: make RESOLVER_PARAMS_BASE_TIMEOUT_MSEC a mandatory parameter once all callers
241 // have been updated to specify it.
242 if (params.size() < INetd::RESOLVER_PARAMS_BASE_TIMEOUT_MSEC ||
243 params.size() > INetd::RESOLVER_PARAMS_COUNT) {
Pierre Imaibeedec32016-04-13 06:44:51 +0900244 ALOGE("%s: params.size()=%zu", __FUNCTION__, params.size());
245 return -EINVAL;
246 }
247
Mike Yua46fae72018-11-01 20:07:00 +0800248 std::vector<const char*> server_ptrs;
249 size_t count = std::min<size_t>(MAXNS, tlsServers.size());
250 server_ptrs.reserve(count);
251 for (size_t i = 0; i < count; i++) {
252 server_ptrs.push_back(tlsServers[i].data());
253 }
254
255 std::vector<const uint8_t*> fingerprint_ptrs;
256 count = tlsFingerprints.size();
257 fingerprint_ptrs.reserve(count);
258 for (const auto& fp : tlsFingerprints) {
259 fingerprint_ptrs.push_back(fp.data());
260 }
261
Mike Yu2cc198a2018-11-02 13:30:04 +0800262 // At private DNS validation time, we only know the netId, so we have to guess/compute the
263 // corresponding socket mark.
264 Fwmark fwmark;
265 fwmark.netId = netId;
266 fwmark.explicitlySelected = true;
267 fwmark.protectedFromVpn = true;
268 fwmark.permission = PERMISSION_SYSTEM;
269
Lorenzo Colittiafaaa8e2018-12-18 19:16:12 +0900270 const int err = RESOLV_STUB.resolv_set_private_dns_for_net(
Mike Yua46fae72018-11-01 20:07:00 +0800271 netId, fwmark.intValue, server_ptrs.data(), server_ptrs.size(), tlsName.c_str(),
272 fingerprint_ptrs.data(), fingerprint_ptrs.size());
Erik Kline1564d482018-03-07 17:09:35 +0900273 if (err != 0) {
274 return err;
Ben Schwartz4204ecf2017-10-02 12:35:48 -0400275 }
Lorenzo Colittiafaaa8e2018-12-18 19:16:12 +0900276 RESOLV_STUB.resolv_register_private_dns_callback(&onPrivateDnsValidation);
Ben Schwartz4204ecf2017-10-02 12:35:48 -0400277
Erik Kline1564d482018-03-07 17:09:35 +0900278 // Convert network-assigned server list to bionic's format.
Mike Yua46fae72018-11-01 20:07:00 +0800279 server_ptrs.clear();
280 count = std::min<size_t>(MAXNS, servers.size());
281 server_ptrs.reserve(count);
282 for (size_t i = 0; i < count; ++i) {
Erik Kline1564d482018-03-07 17:09:35 +0900283 server_ptrs.push_back(servers[i].c_str());
Pierre Imaibeedec32016-04-13 06:44:51 +0900284 }
285
286 std::string domains_str;
287 if (!domains.empty()) {
288 domains_str = domains[0];
Mike Yuda77e8e2018-11-26 13:26:21 +0900289 count = std::min<size_t>(MAXDNSRCH, domains.size());
290 for (size_t i = 1; i < count; ++i) {
Pierre Imaibeedec32016-04-13 06:44:51 +0900291 domains_str += " " + domains[i];
292 }
293 }
294
Bernie Innocenticc93c372018-08-06 15:18:59 +0900295 __res_params res_params = {};
Pierre Imaibeedec32016-04-13 06:44:51 +0900296 res_params.sample_validity = params[INetd::RESOLVER_PARAMS_SAMPLE_VALIDITY];
297 res_params.success_threshold = params[INetd::RESOLVER_PARAMS_SUCCESS_THRESHOLD];
298 res_params.min_samples = params[INetd::RESOLVER_PARAMS_MIN_SAMPLES];
299 res_params.max_samples = params[INetd::RESOLVER_PARAMS_MAX_SAMPLES];
Bernie Innocenticc93c372018-08-06 15:18:59 +0900300 if (params.size() > INetd::RESOLVER_PARAMS_BASE_TIMEOUT_MSEC) {
301 res_params.base_timeout_msec = params[INetd::RESOLVER_PARAMS_BASE_TIMEOUT_MSEC];
302 }
waynemad193e4d2019-02-18 17:47:59 +0800303 if (params.size() > INetd::RESOLVER_PARAMS_RETRY_COUNT) {
304 res_params.retry_count = params[INetd::RESOLVER_PARAMS_RETRY_COUNT];
305 }
Erik Klined26a2c22018-05-11 19:33:19 +0900306
307 const auto rval = setDnsServers(netId, domains_str.c_str(), server_ptrs.data(),
308 server_ptrs.size(), &res_params);
309
310 if (rval == 0) {
311 // Start DNS64 discovery after successfully setting any new DNS servers
312 // as the cache may have been cleared (if the nameservers differ), and
313 // we might discover a different DNS64 prefix. If the cache has not been
314 // cleared, we may quickly rediscover the same prefix.
315 //
316 // Operators may choose to use a longer TTL in order to reduce repeated
317 // resolution (see also https://tools.ietf.org/html/rfc7050#section-5).
318 if (allIPv6Only(servers)) {
Erik Kline603df202018-09-10 18:16:26 +0900319 // TODO: Keep any existing discovered prefix around for use while
320 // re-discovery is in progress. Otherwise, whenever DNS servers are
321 // pushed to netd there can be gaps where it would appear there was
322 // no prefix64 when in fact we had previously discovered one (and
323 // are highly likely to rediscover the same one).
Erik Klined26a2c22018-05-11 19:33:19 +0900324 mDns64Configuration.startPrefixDiscovery(netId);
325 } else {
326 mDns64Configuration.stopPrefixDiscovery(netId);
327 }
328 }
329
330 return rval;
Pierre Imaibeedec32016-04-13 06:44:51 +0900331}
332
333int ResolverController::getResolverInfo(int32_t netId, std::vector<std::string>* servers,
Mike Yuda77e8e2018-11-26 13:26:21 +0900334 std::vector<std::string>* domains,
335 std::vector<std::string>* tlsServers,
Ken Chen2a429352018-12-22 21:46:55 +0800336 std::vector<int32_t>* params, std::vector<int32_t>* stats,
337 std::vector<int32_t>* wait_for_pending_req_timeout_count) {
Pierre Imaibeedec32016-04-13 06:44:51 +0900338 using android::net::ResolverStats;
339 using android::net::INetd;
340 __res_params res_params;
341 std::vector<ResolverStats> res_stats;
Ken Chen2a429352018-12-22 21:46:55 +0800342 int ret = getDnsInfo(netId, servers, domains, &res_params, &res_stats,
343 wait_for_pending_req_timeout_count);
Pierre Imaibeedec32016-04-13 06:44:51 +0900344 if (ret != 0) {
345 return ret;
346 }
347
348 // Serialize the information for binder.
349 ResolverStats::encodeAll(res_stats, stats);
350
Mike Yuda77e8e2018-11-26 13:26:21 +0900351 ExternalPrivateDnsStatus privateDnsStatus = {PrivateDnsMode::OFF, 0, {}};
Lorenzo Colittiafaaa8e2018-12-18 19:16:12 +0900352 RESOLV_STUB.resolv_get_private_dns_status_for_net(netId, &privateDnsStatus);
Bernie Innocenti45238a12018-12-04 14:57:48 +0900353 for (int i = 0; i < privateDnsStatus.numServers; i++) {
Mike Yuda77e8e2018-11-26 13:26:21 +0900354 std::string tlsServer_str = addrToString(&(privateDnsStatus.serverStatus[i].ss));
355 tlsServers->push_back(std::move(tlsServer_str));
356 }
357
Pierre Imaibeedec32016-04-13 06:44:51 +0900358 params->resize(INetd::RESOLVER_PARAMS_COUNT);
359 (*params)[INetd::RESOLVER_PARAMS_SAMPLE_VALIDITY] = res_params.sample_validity;
360 (*params)[INetd::RESOLVER_PARAMS_SUCCESS_THRESHOLD] = res_params.success_threshold;
361 (*params)[INetd::RESOLVER_PARAMS_MIN_SAMPLES] = res_params.min_samples;
362 (*params)[INetd::RESOLVER_PARAMS_MAX_SAMPLES] = res_params.max_samples;
Bernie Innocenticc93c372018-08-06 15:18:59 +0900363 (*params)[INetd::RESOLVER_PARAMS_BASE_TIMEOUT_MSEC] = res_params.base_timeout_msec;
waynemad193e4d2019-02-18 17:47:59 +0800364 (*params)[INetd::RESOLVER_PARAMS_RETRY_COUNT] = res_params.retry_count;
Pierre Imaibeedec32016-04-13 06:44:51 +0900365 return 0;
366}
Pierre Imai3a272072016-04-19 16:17:07 +0900367
nuccachenf52f7a52018-07-17 18:07:23 +0800368// TODO: use StatusOr<T> to wrap the result.
369int ResolverController::getPrefix64(unsigned netId, netdutils::IPPrefix* prefix) {
370 netdutils::IPPrefix p = mDns64Configuration.getPrefix64(netId);
371 if (p.family() != AF_INET6 || p.length() == 0) {
372 ALOGE("No valid NAT64 prefix (%d,%s)\n", netId, p.toString().c_str());
373 return -ENOENT;
374 }
375 *prefix = p;
376 return 0;
377}
378
379void ResolverController::sendNat64PrefixEvent(const Dns64Configuration::Nat64PrefixInfo& args) {
380 const auto netdEventListener = net::gCtls->eventReporter.getNetdEventListener();
381 if (netdEventListener == nullptr) {
382 gLog.error("getNetdEventListener() returned nullptr. dropping NAT64 prefix event");
383 return;
384 }
385 netdEventListener->onNat64PrefixEvent(args.netId, args.added, args.prefixString,
386 args.prefixLength);
387}
388
Mike Yu0ae31af2018-11-15 21:58:19 +0800389bool ResolverController::initResolver() {
390 dnsproxylistener_callbacks callbacks = {
391 .get_network_context = &getNetworkContextCallback,
392 .get_dns64_prefix = &getDns64PrefixCallback,
393 .check_calling_permission = &checkCallingPermissionCallback,
394 };
395 return RESOLV_STUB.resolv_init(callbacks);
396}
397
Pierre Imai3a272072016-04-19 16:17:07 +0900398void ResolverController::dump(DumpWriter& dw, unsigned netId) {
399 // No lock needed since Bionic's resolver locks all accessed data structures internally.
400 using android::net::ResolverStats;
401 std::vector<std::string> servers;
402 std::vector<std::string> domains;
Bernie Innocenticc93c372018-08-06 15:18:59 +0900403 __res_params params = {};
Pierre Imai3a272072016-04-19 16:17:07 +0900404 std::vector<ResolverStats> stats;
Ken Chen2a429352018-12-22 21:46:55 +0800405 std::vector<int32_t> wait_for_pending_req_timeout_count(1, 0);
Pierre Imai3a272072016-04-19 16:17:07 +0900406 time_t now = time(nullptr);
Ken Chen2a429352018-12-22 21:46:55 +0800407 int rv = getDnsInfo(netId, &servers, &domains, &params, &stats,
408 &wait_for_pending_req_timeout_count);
Pierre Imai3a272072016-04-19 16:17:07 +0900409 dw.incIndent();
410 if (rv != 0) {
411 dw.println("getDnsInfo() failed for netid %u", netId);
412 } else {
413 if (servers.empty()) {
414 dw.println("No DNS servers defined");
415 } else {
416 dw.println("DNS servers: # IP (total, successes, errors, timeouts, internal errors, "
417 "RTT avg, last sample)");
418 dw.incIndent();
419 for (size_t i = 0 ; i < servers.size() ; ++i) {
420 if (i < stats.size()) {
421 const ResolverStats& s = stats[i];
422 int total = s.successes + s.errors + s.timeouts + s.internal_errors;
423 if (total > 0) {
424 int time_delta = (s.last_sample_time > 0) ? now - s.last_sample_time : -1;
425 dw.println("%s (%d, %d, %d, %d, %d, %dms, %ds)%s", servers[i].c_str(),
426 total, s.successes, s.errors, s.timeouts, s.internal_errors,
427 s.rtt_avg, time_delta, s.usable ? "" : " BROKEN");
428 } else {
429 dw.println("%s <no data>", servers[i].c_str());
430 }
431 } else {
432 dw.println("%s <no stats>", servers[i].c_str());
433 }
434 }
435 dw.decIndent();
436 }
437 if (domains.empty()) {
438 dw.println("No search domains defined");
439 } else {
440 std::string domains_str = android::base::Join(domains, ", ");
441 dw.println("search domains: %s", domains_str.c_str());
442 }
443 if (params.sample_validity != 0) {
Bernie Innocenticc93c372018-08-06 15:18:59 +0900444 dw.println(
445 "DNS parameters: sample validity = %us, success threshold = %u%%, "
446 "samples (min, max) = (%u, %u), base_timeout = %dmsec",
447 params.sample_validity, static_cast<unsigned>(params.success_threshold),
Pierre Imai3a272072016-04-19 16:17:07 +0900448 static_cast<unsigned>(params.min_samples),
Bernie Innocenticc93c372018-08-06 15:18:59 +0900449 static_cast<unsigned>(params.max_samples), params.base_timeout_msec);
Pierre Imai3a272072016-04-19 16:17:07 +0900450 }
Erik Klined739c212018-04-24 23:09:39 +0900451
Erik Klined26a2c22018-05-11 19:33:19 +0900452 mDns64Configuration.dump(dw, netId);
Mike Yua46fae72018-11-01 20:07:00 +0800453 ExternalPrivateDnsStatus privateDnsStatus = {PrivateDnsMode::OFF, 0, {}};
Lorenzo Colittiafaaa8e2018-12-18 19:16:12 +0900454 RESOLV_STUB.resolv_get_private_dns_status_for_net(netId, &privateDnsStatus);
Mike Yua46fae72018-11-01 20:07:00 +0800455 dw.println("Private DNS mode: %s",
456 getPrivateDnsModeString(static_cast<PrivateDnsMode>(privateDnsStatus.mode)));
457 if (!privateDnsStatus.numServers) {
458 dw.println("No Private DNS servers configured");
459 } else {
460 dw.println("Private DNS configuration (%u entries)", privateDnsStatus.numServers);
461 dw.incIndent();
Bernie Innocenti45238a12018-12-04 14:57:48 +0900462 for (int i = 0; i < privateDnsStatus.numServers; i++) {
Mike Yua46fae72018-11-01 20:07:00 +0800463 dw.println("%s name{%s} status{%s}",
464 addrToString(&(privateDnsStatus.serverStatus[i].ss)).c_str(),
465 privateDnsStatus.serverStatus[i].hostname,
466 validationStatusToString(static_cast<Validation>(
467 privateDnsStatus.serverStatus[i].validation)));
468 }
469 dw.decIndent();
470 }
Ken Chen2a429352018-12-22 21:46:55 +0800471 dw.println("Concurrent DNS query timeout: %d", wait_for_pending_req_timeout_count[0]);
Pierre Imai3a272072016-04-19 16:17:07 +0900472 }
473 dw.decIndent();
474}
Lorenzo Colitti7035f222017-02-13 18:29:00 +0900475
476} // namespace net
477} // namespace android