Blame


1 a596b957 2022-07-14 tracey /*
2 a596b957 2022-07-14 tracey * Copyright (c) 2016-2019, 2020-2021 Tracey Emery <tracey@traceyemery.net>
3 a596b957 2022-07-14 tracey * Copyright (c) 2004, 2005 Esben Norby <norby@openbsd.org>
4 a596b957 2022-07-14 tracey * Copyright (c) 2004 Ryan McBride <mcbride@openbsd.org>
5 a596b957 2022-07-14 tracey * Copyright (c) 2002, 2003, 2004 Henning Brauer <henning@openbsd.org>
6 a596b957 2022-07-14 tracey * Copyright (c) 2001 Markus Friedl. All rights reserved.
7 a596b957 2022-07-14 tracey * Copyright (c) 2001 Daniel Hartmeier. All rights reserved.
8 a596b957 2022-07-14 tracey * Copyright (c) 2001 Theo de Raadt. All rights reserved.
9 a596b957 2022-07-14 tracey *
10 a596b957 2022-07-14 tracey * Permission to use, copy, modify, and distribute this software for any
11 a596b957 2022-07-14 tracey * purpose with or without fee is hereby granted, provided that the above
12 a596b957 2022-07-14 tracey * copyright notice and this permission notice appear in all copies.
13 a596b957 2022-07-14 tracey *
14 a596b957 2022-07-14 tracey * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
15 a596b957 2022-07-14 tracey * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
16 a596b957 2022-07-14 tracey * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
17 a596b957 2022-07-14 tracey * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
18 a596b957 2022-07-14 tracey * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
19 a596b957 2022-07-14 tracey * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
20 a596b957 2022-07-14 tracey * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
21 a596b957 2022-07-14 tracey */
22 a596b957 2022-07-14 tracey
23 a596b957 2022-07-14 tracey %{
24 a596b957 2022-07-14 tracey #include <sys/ioctl.h>
25 a596b957 2022-07-14 tracey #include <sys/types.h>
26 a596b957 2022-07-14 tracey #include <sys/queue.h>
27 a596b957 2022-07-14 tracey #include <sys/socket.h>
28 a596b957 2022-07-14 tracey #include <sys/stat.h>
29 a596b957 2022-07-14 tracey
30 a596b957 2022-07-14 tracey #include <net/if.h>
31 a596b957 2022-07-14 tracey #include <netinet/in.h>
32 a596b957 2022-07-14 tracey
33 a596b957 2022-07-14 tracey #include <arpa/inet.h>
34 a596b957 2022-07-14 tracey
35 a596b957 2022-07-14 tracey #include <ctype.h>
36 a596b957 2022-07-14 tracey #include <err.h>
37 a596b957 2022-07-14 tracey #include <errno.h>
38 a596b957 2022-07-14 tracey #include <event.h>
39 a596b957 2022-07-14 tracey #include <ifaddrs.h>
40 a596b957 2022-07-14 tracey #include <imsg.h>
41 a596b957 2022-07-14 tracey #include <limits.h>
42 a596b957 2022-07-14 tracey #include <netdb.h>
43 a596b957 2022-07-14 tracey #include <stdarg.h>
44 a596b957 2022-07-14 tracey #include <stdlib.h>
45 a596b957 2022-07-14 tracey #include <stdio.h>
46 a596b957 2022-07-14 tracey #include <string.h>
47 a596b957 2022-07-14 tracey #include <syslog.h>
48 a596b957 2022-07-14 tracey #include <unistd.h>
49 df2d3cd2 2023-03-11 op
50 df2d3cd2 2023-03-11 op #include "got_sockaddr.h"
51 df2d3cd2 2023-03-11 op #include "got_reference.h"
52 a596b957 2022-07-14 tracey
53 a596b957 2022-07-14 tracey #include "proc.h"
54 a596b957 2022-07-14 tracey #include "gotwebd.h"
55 a596b957 2022-07-14 tracey
56 a596b957 2022-07-14 tracey TAILQ_HEAD(files, file) files = TAILQ_HEAD_INITIALIZER(files);
57 a596b957 2022-07-14 tracey static struct file {
58 a596b957 2022-07-14 tracey TAILQ_ENTRY(file) entry;
59 a596b957 2022-07-14 tracey FILE *stream;
60 a596b957 2022-07-14 tracey char *name;
61 a596b957 2022-07-14 tracey int lineno;
62 a596b957 2022-07-14 tracey int errors;
63 a596b957 2022-07-14 tracey } *file;
64 a596b957 2022-07-14 tracey struct file *newfile(const char *, int);
65 a596b957 2022-07-14 tracey static void closefile(struct file *);
66 a596b957 2022-07-14 tracey int check_file_secrecy(int, const char *);
67 a596b957 2022-07-14 tracey int yyparse(void);
68 a596b957 2022-07-14 tracey int yylex(void);
69 a596b957 2022-07-14 tracey int yyerror(const char *, ...)
70 a596b957 2022-07-14 tracey __attribute__((__format__ (printf, 1, 2)))
71 a596b957 2022-07-14 tracey __attribute__((__nonnull__ (1)));
72 a596b957 2022-07-14 tracey int kw_cmp(const void *, const void *);
73 a596b957 2022-07-14 tracey int lookup(char *);
74 a596b957 2022-07-14 tracey int lgetc(int);
75 a596b957 2022-07-14 tracey int lungetc(int);
76 a596b957 2022-07-14 tracey int findeol(void);
77 a596b957 2022-07-14 tracey
78 a596b957 2022-07-14 tracey TAILQ_HEAD(symhead, sym) symhead = TAILQ_HEAD_INITIALIZER(symhead);
79 a596b957 2022-07-14 tracey struct sym {
80 a596b957 2022-07-14 tracey TAILQ_ENTRY(sym) entry;
81 a596b957 2022-07-14 tracey int used;
82 a596b957 2022-07-14 tracey int persist;
83 a596b957 2022-07-14 tracey char *nam;
84 a596b957 2022-07-14 tracey char *val;
85 a596b957 2022-07-14 tracey };
86 a596b957 2022-07-14 tracey
87 a596b957 2022-07-14 tracey int symset(const char *, const char *, int);
88 a596b957 2022-07-14 tracey char *symget(const char *);
89 a596b957 2022-07-14 tracey
90 a596b957 2022-07-14 tracey static int errors;
91 a596b957 2022-07-14 tracey
92 a596b957 2022-07-14 tracey static struct gotwebd *gotwebd;
93 a596b957 2022-07-14 tracey static struct server *new_srv;
94 a596b957 2022-07-14 tracey static struct server *conf_new_server(const char *);
95 a596b957 2022-07-14 tracey int getservice(const char *);
96 a596b957 2022-07-14 tracey int n;
97 a596b957 2022-07-14 tracey
98 67d8de2a 2022-08-29 stsp int get_addrs(const char *, struct server *, in_port_t);
99 67d8de2a 2022-08-29 stsp int addr_dup_check(struct addresslist *, struct address *,
100 67d8de2a 2022-08-29 stsp const char *, const char *);
101 67d8de2a 2022-08-29 stsp int add_addr(struct server *, struct address *);
102 abf3e3f4 2023-05-29 op int host(const char *, struct server *,
103 a596b957 2022-07-14 tracey int, in_port_t, const char *, int);
104 67d8de2a 2022-08-29 stsp int host_if(const char *, struct server *,
105 a596b957 2022-07-14 tracey int, in_port_t, const char *, int);
106 a596b957 2022-07-14 tracey int is_if_in_group(const char *, const char *);
107 a596b957 2022-07-14 tracey
108 a596b957 2022-07-14 tracey typedef struct {
109 a596b957 2022-07-14 tracey union {
110 a596b957 2022-07-14 tracey long long number;
111 a596b957 2022-07-14 tracey char *string;
112 a596b957 2022-07-14 tracey in_port_t port;
113 a596b957 2022-07-14 tracey } v;
114 a596b957 2022-07-14 tracey int lineno;
115 a596b957 2022-07-14 tracey } YYSTYPE;
116 a596b957 2022-07-14 tracey
117 a596b957 2022-07-14 tracey %}
118 a596b957 2022-07-14 tracey
119 d8473d93 2022-08-11 stsp %token LISTEN WWW_PATH MAX_REPOS SITE_NAME SITE_OWNER SITE_LINK LOGO
120 a596b957 2022-07-14 tracey %token LOGO_URL SHOW_REPO_OWNER SHOW_REPO_AGE SHOW_REPO_DESCRIPTION
121 a596b957 2022-07-14 tracey %token MAX_REPOS_DISPLAY REPOS_PATH MAX_COMMITS_DISPLAY ON ERROR
122 d5996b9e 2022-10-31 landry %token SHOW_SITE_OWNER SHOW_REPO_CLONEURL PORT PREFORK RESPECT_EXPORTOK
123 3a1c1a1b 2023-01-04 op %token UNIX_SOCKET UNIX_SOCKET_NAME SERVER CHROOT CUSTOM_CSS SOCKET
124 a596b957 2022-07-14 tracey
125 a596b957 2022-07-14 tracey %token <v.string> STRING
126 a596b957 2022-07-14 tracey %type <v.port> fcgiport
127 a596b957 2022-07-14 tracey %token <v.number> NUMBER
128 a596b957 2022-07-14 tracey %type <v.number> boolean
129 a596b957 2022-07-14 tracey
130 a596b957 2022-07-14 tracey %%
131 a596b957 2022-07-14 tracey
132 47b307cd 2022-10-02 op grammar : /* empty */
133 a596b957 2022-07-14 tracey | grammar '\n'
134 47b307cd 2022-10-02 op | grammar varset '\n'
135 a596b957 2022-07-14 tracey | grammar main '\n'
136 a596b957 2022-07-14 tracey | grammar server '\n'
137 47b307cd 2022-10-02 op | grammar error '\n' { file->errors++; }
138 47b307cd 2022-10-02 op ;
139 47b307cd 2022-10-02 op
140 47b307cd 2022-10-02 op varset : STRING '=' STRING {
141 47b307cd 2022-10-02 op char *s = $1;
142 47b307cd 2022-10-02 op while (*s++) {
143 47b307cd 2022-10-02 op if (isspace((unsigned char)*s)) {
144 47b307cd 2022-10-02 op yyerror("macro name cannot contain "
145 47b307cd 2022-10-02 op "whitespace");
146 47b307cd 2022-10-02 op free($1);
147 47b307cd 2022-10-02 op free($3);
148 47b307cd 2022-10-02 op YYERROR;
149 47b307cd 2022-10-02 op }
150 47b307cd 2022-10-02 op }
151 47b307cd 2022-10-02 op if (symset($1, $3, 0) == -1)
152 47b307cd 2022-10-02 op fatal("cannot store variable");
153 47b307cd 2022-10-02 op free($1);
154 47b307cd 2022-10-02 op free($3);
155 47b307cd 2022-10-02 op }
156 a596b957 2022-07-14 tracey ;
157 a596b957 2022-07-14 tracey
158 a596b957 2022-07-14 tracey boolean : STRING {
159 a596b957 2022-07-14 tracey if (strcasecmp($1, "1") == 0 ||
160 a596b957 2022-07-14 tracey strcasecmp($1, "yes") == 0 ||
161 a596b957 2022-07-14 tracey strcasecmp($1, "on") == 0)
162 a596b957 2022-07-14 tracey $$ = 1;
163 a596b957 2022-07-14 tracey else if (strcasecmp($1, "0") == 0 ||
164 a596b957 2022-07-14 tracey strcasecmp($1, "off") == 0 ||
165 a596b957 2022-07-14 tracey strcasecmp($1, "no") == 0)
166 a596b957 2022-07-14 tracey $$ = 0;
167 a596b957 2022-07-14 tracey else {
168 a596b957 2022-07-14 tracey yyerror("invalid boolean value '%s'", $1);
169 a596b957 2022-07-14 tracey free($1);
170 a596b957 2022-07-14 tracey YYERROR;
171 a596b957 2022-07-14 tracey }
172 a596b957 2022-07-14 tracey free($1);
173 a596b957 2022-07-14 tracey }
174 a596b957 2022-07-14 tracey | ON { $$ = 1; }
175 a596b957 2022-07-14 tracey | NUMBER { $$ = $1; }
176 a596b957 2022-07-14 tracey ;
177 a596b957 2022-07-14 tracey
178 17132eaa 2022-08-29 stsp fcgiport : PORT NUMBER {
179 17132eaa 2022-08-29 stsp if ($2 <= 0 || $2 > (int)USHRT_MAX) {
180 17132eaa 2022-08-29 stsp yyerror("invalid port: %lld", $2);
181 a596b957 2022-07-14 tracey YYERROR;
182 a596b957 2022-07-14 tracey }
183 17132eaa 2022-08-29 stsp $$ = $2;
184 a596b957 2022-07-14 tracey }
185 17132eaa 2022-08-29 stsp | PORT STRING {
186 a596b957 2022-07-14 tracey int val;
187 a596b957 2022-07-14 tracey
188 17132eaa 2022-08-29 stsp if ((val = getservice($2)) == -1) {
189 17132eaa 2022-08-29 stsp yyerror("invalid port: %s", $2);
190 17132eaa 2022-08-29 stsp free($2);
191 a596b957 2022-07-14 tracey YYERROR;
192 a596b957 2022-07-14 tracey }
193 17132eaa 2022-08-29 stsp free($2);
194 a596b957 2022-07-14 tracey
195 a596b957 2022-07-14 tracey $$ = val;
196 a596b957 2022-07-14 tracey }
197 a596b957 2022-07-14 tracey ;
198 a596b957 2022-07-14 tracey
199 a596b957 2022-07-14 tracey main : PREFORK NUMBER {
200 a596b957 2022-07-14 tracey gotwebd->prefork_gotwebd = $2;
201 a596b957 2022-07-14 tracey }
202 a596b957 2022-07-14 tracey | CHROOT STRING {
203 a596b957 2022-07-14 tracey n = strlcpy(gotwebd->httpd_chroot, $2,
204 a596b957 2022-07-14 tracey sizeof(gotwebd->httpd_chroot));
205 a596b957 2022-07-14 tracey if (n >= sizeof(gotwebd->httpd_chroot)) {
206 a596b957 2022-07-14 tracey yyerror("%s: httpd_chroot truncated", __func__);
207 a596b957 2022-07-14 tracey free($2);
208 a596b957 2022-07-14 tracey YYERROR;
209 a596b957 2022-07-14 tracey }
210 a596b957 2022-07-14 tracey free($2);
211 a596b957 2022-07-14 tracey }
212 a596b957 2022-07-14 tracey | UNIX_SOCKET boolean {
213 a596b957 2022-07-14 tracey gotwebd->unix_socket = $2;
214 a596b957 2022-07-14 tracey }
215 a596b957 2022-07-14 tracey | UNIX_SOCKET_NAME STRING {
216 a596b957 2022-07-14 tracey n = snprintf(gotwebd->unix_socket_name,
217 a596b957 2022-07-14 tracey sizeof(gotwebd->unix_socket_name), "%s%s",
218 a596b957 2022-07-14 tracey strlen(gotwebd->httpd_chroot) ?
219 a596b957 2022-07-14 tracey gotwebd->httpd_chroot : D_HTTPD_CHROOT, $2);
220 438d0cc3 2022-08-16 op if (n < 0 ||
221 438d0cc3 2022-08-16 op (size_t)n >= sizeof(gotwebd->unix_socket_name)) {
222 a596b957 2022-07-14 tracey yyerror("%s: unix_socket_name truncated",
223 a596b957 2022-07-14 tracey __func__);
224 a596b957 2022-07-14 tracey free($2);
225 a596b957 2022-07-14 tracey YYERROR;
226 a596b957 2022-07-14 tracey }
227 a596b957 2022-07-14 tracey free($2);
228 a596b957 2022-07-14 tracey }
229 a596b957 2022-07-14 tracey ;
230 a596b957 2022-07-14 tracey
231 a596b957 2022-07-14 tracey server : SERVER STRING {
232 a596b957 2022-07-14 tracey struct server *srv;
233 a596b957 2022-07-14 tracey
234 2ad48e9a 2022-08-16 stsp TAILQ_FOREACH(srv, &gotwebd->servers, entry) {
235 a596b957 2022-07-14 tracey if (strcmp(srv->name, $2) == 0) {
236 a596b957 2022-07-14 tracey yyerror("server name exists '%s'", $2);
237 a596b957 2022-07-14 tracey free($2);
238 a596b957 2022-07-14 tracey YYERROR;
239 a596b957 2022-07-14 tracey }
240 a596b957 2022-07-14 tracey }
241 a596b957 2022-07-14 tracey
242 a596b957 2022-07-14 tracey new_srv = conf_new_server($2);
243 a596b957 2022-07-14 tracey log_debug("adding server %s", $2);
244 a596b957 2022-07-14 tracey free($2);
245 a596b957 2022-07-14 tracey }
246 a596b957 2022-07-14 tracey | SERVER STRING {
247 a596b957 2022-07-14 tracey struct server *srv;
248 a596b957 2022-07-14 tracey
249 2ad48e9a 2022-08-16 stsp TAILQ_FOREACH(srv, &gotwebd->servers, entry) {
250 a596b957 2022-07-14 tracey if (strcmp(srv->name, $2) == 0) {
251 a596b957 2022-07-14 tracey yyerror("server name exists '%s'", $2);
252 a596b957 2022-07-14 tracey free($2);
253 a596b957 2022-07-14 tracey YYERROR;
254 a596b957 2022-07-14 tracey }
255 a596b957 2022-07-14 tracey }
256 a596b957 2022-07-14 tracey
257 a596b957 2022-07-14 tracey new_srv = conf_new_server($2);
258 a596b957 2022-07-14 tracey log_debug("adding server %s", $2);
259 a596b957 2022-07-14 tracey free($2);
260 a596b957 2022-07-14 tracey } '{' optnl serveropts2 '}' {
261 a596b957 2022-07-14 tracey }
262 a596b957 2022-07-14 tracey ;
263 a596b957 2022-07-14 tracey
264 a596b957 2022-07-14 tracey serveropts1 : REPOS_PATH STRING {
265 a596b957 2022-07-14 tracey n = strlcpy(new_srv->repos_path, $2,
266 a596b957 2022-07-14 tracey sizeof(new_srv->repos_path));
267 a596b957 2022-07-14 tracey if (n >= sizeof(new_srv->repos_path)) {
268 a596b957 2022-07-14 tracey yyerror("%s: repos_path truncated", __func__);
269 a596b957 2022-07-14 tracey free($2);
270 a596b957 2022-07-14 tracey YYERROR;
271 a596b957 2022-07-14 tracey }
272 a596b957 2022-07-14 tracey free($2);
273 a596b957 2022-07-14 tracey }
274 a596b957 2022-07-14 tracey | SITE_NAME STRING {
275 a596b957 2022-07-14 tracey n = strlcpy(new_srv->site_name, $2,
276 a596b957 2022-07-14 tracey sizeof(new_srv->site_name));
277 a596b957 2022-07-14 tracey if (n >= sizeof(new_srv->site_name)) {
278 a596b957 2022-07-14 tracey yyerror("%s: site_name truncated", __func__);
279 a596b957 2022-07-14 tracey free($2);
280 a596b957 2022-07-14 tracey YYERROR;
281 a596b957 2022-07-14 tracey }
282 a596b957 2022-07-14 tracey free($2);
283 a596b957 2022-07-14 tracey }
284 a596b957 2022-07-14 tracey | SITE_OWNER STRING {
285 a596b957 2022-07-14 tracey n = strlcpy(new_srv->site_owner, $2,
286 a596b957 2022-07-14 tracey sizeof(new_srv->site_owner));
287 a596b957 2022-07-14 tracey if (n >= sizeof(new_srv->site_owner)) {
288 a596b957 2022-07-14 tracey yyerror("%s: site_owner truncated", __func__);
289 a596b957 2022-07-14 tracey free($2);
290 a596b957 2022-07-14 tracey YYERROR;
291 a596b957 2022-07-14 tracey }
292 a596b957 2022-07-14 tracey free($2);
293 a596b957 2022-07-14 tracey }
294 a596b957 2022-07-14 tracey | SITE_LINK STRING {
295 a596b957 2022-07-14 tracey n = strlcpy(new_srv->site_link, $2,
296 a596b957 2022-07-14 tracey sizeof(new_srv->site_link));
297 a596b957 2022-07-14 tracey if (n >= sizeof(new_srv->site_link)) {
298 a596b957 2022-07-14 tracey yyerror("%s: site_link truncated", __func__);
299 a596b957 2022-07-14 tracey free($2);
300 a596b957 2022-07-14 tracey YYERROR;
301 a596b957 2022-07-14 tracey }
302 a596b957 2022-07-14 tracey free($2);
303 a596b957 2022-07-14 tracey }
304 a596b957 2022-07-14 tracey | LOGO STRING {
305 a596b957 2022-07-14 tracey n = strlcpy(new_srv->logo, $2, sizeof(new_srv->logo));
306 a596b957 2022-07-14 tracey if (n >= sizeof(new_srv->logo)) {
307 a596b957 2022-07-14 tracey yyerror("%s: logo truncated", __func__);
308 a596b957 2022-07-14 tracey free($2);
309 a596b957 2022-07-14 tracey YYERROR;
310 a596b957 2022-07-14 tracey }
311 a596b957 2022-07-14 tracey free($2);
312 a596b957 2022-07-14 tracey }
313 a596b957 2022-07-14 tracey | LOGO_URL STRING {
314 a596b957 2022-07-14 tracey n = strlcpy(new_srv->logo_url, $2,
315 a596b957 2022-07-14 tracey sizeof(new_srv->logo_url));
316 a596b957 2022-07-14 tracey if (n >= sizeof(new_srv->logo_url)) {
317 a596b957 2022-07-14 tracey yyerror("%s: logo_url truncated", __func__);
318 a596b957 2022-07-14 tracey free($2);
319 a596b957 2022-07-14 tracey YYERROR;
320 a596b957 2022-07-14 tracey }
321 a596b957 2022-07-14 tracey free($2);
322 a596b957 2022-07-14 tracey }
323 a596b957 2022-07-14 tracey | CUSTOM_CSS STRING {
324 a596b957 2022-07-14 tracey n = strlcpy(new_srv->custom_css, $2,
325 a596b957 2022-07-14 tracey sizeof(new_srv->custom_css));
326 a596b957 2022-07-14 tracey if (n >= sizeof(new_srv->custom_css)) {
327 a596b957 2022-07-14 tracey yyerror("%s: custom_css truncated", __func__);
328 a596b957 2022-07-14 tracey free($2);
329 a596b957 2022-07-14 tracey YYERROR;
330 a596b957 2022-07-14 tracey }
331 a596b957 2022-07-14 tracey free($2);
332 a596b957 2022-07-14 tracey }
333 17132eaa 2022-08-29 stsp | LISTEN ON STRING fcgiport {
334 67d8de2a 2022-08-29 stsp if (get_addrs($3, new_srv, $4) == -1) {
335 67d8de2a 2022-08-29 stsp yyerror("could not get addrs");
336 17132eaa 2022-08-29 stsp YYERROR;
337 17132eaa 2022-08-29 stsp }
338 6c8aa58f 2022-08-30 stsp new_srv->fcgi_socket = 1;
339 17132eaa 2022-08-29 stsp }
340 3a1c1a1b 2023-01-04 op | LISTEN ON SOCKET STRING {
341 3a1c1a1b 2023-01-04 op if (!strcasecmp($4, "off") ||
342 3a1c1a1b 2023-01-04 op !strcasecmp($4, "no")) {
343 3a1c1a1b 2023-01-04 op new_srv->unix_socket = 0;
344 3a1c1a1b 2023-01-04 op free($4);
345 3a1c1a1b 2023-01-04 op YYACCEPT;
346 3a1c1a1b 2023-01-04 op }
347 3a1c1a1b 2023-01-04 op
348 3a1c1a1b 2023-01-04 op new_srv->unix_socket = 1;
349 3a1c1a1b 2023-01-04 op
350 3a1c1a1b 2023-01-04 op n = snprintf(new_srv->unix_socket_name,
351 3a1c1a1b 2023-01-04 op sizeof(new_srv->unix_socket_name), "%s%s",
352 3a1c1a1b 2023-01-04 op strlen(gotwebd->httpd_chroot) ?
353 3a1c1a1b 2023-01-04 op gotwebd->httpd_chroot : D_HTTPD_CHROOT, $4);
354 3a1c1a1b 2023-01-04 op if (n < 0 ||
355 3a1c1a1b 2023-01-04 op (size_t)n >= sizeof(new_srv->unix_socket_name)) {
356 3a1c1a1b 2023-01-04 op yyerror("%s: unix_socket_name truncated",
357 3a1c1a1b 2023-01-04 op __func__);
358 3a1c1a1b 2023-01-04 op free($4);
359 3a1c1a1b 2023-01-04 op YYERROR;
360 3a1c1a1b 2023-01-04 op }
361 3a1c1a1b 2023-01-04 op free($4);
362 3a1c1a1b 2023-01-04 op }
363 a596b957 2022-07-14 tracey | MAX_REPOS NUMBER {
364 a596b957 2022-07-14 tracey if ($2 > 0)
365 a596b957 2022-07-14 tracey new_srv->max_repos = $2;
366 a596b957 2022-07-14 tracey }
367 a596b957 2022-07-14 tracey | SHOW_SITE_OWNER boolean {
368 a596b957 2022-07-14 tracey new_srv->show_site_owner = $2;
369 a596b957 2022-07-14 tracey }
370 a596b957 2022-07-14 tracey | SHOW_REPO_OWNER boolean {
371 a596b957 2022-07-14 tracey new_srv->show_repo_owner = $2;
372 a596b957 2022-07-14 tracey }
373 a596b957 2022-07-14 tracey | SHOW_REPO_AGE boolean {
374 a596b957 2022-07-14 tracey new_srv->show_repo_age = $2;
375 a596b957 2022-07-14 tracey }
376 a596b957 2022-07-14 tracey | SHOW_REPO_DESCRIPTION boolean {
377 a596b957 2022-07-14 tracey new_srv->show_repo_description = $2;
378 a596b957 2022-07-14 tracey }
379 a596b957 2022-07-14 tracey | SHOW_REPO_CLONEURL boolean {
380 a596b957 2022-07-14 tracey new_srv->show_repo_cloneurl = $2;
381 a596b957 2022-07-14 tracey }
382 d5996b9e 2022-10-31 landry | RESPECT_EXPORTOK boolean {
383 d5996b9e 2022-10-31 landry new_srv->respect_exportok = $2;
384 d5996b9e 2022-10-31 landry }
385 a596b957 2022-07-14 tracey | MAX_REPOS_DISPLAY NUMBER {
386 a596b957 2022-07-14 tracey new_srv->max_repos_display = $2;
387 a596b957 2022-07-14 tracey }
388 a596b957 2022-07-14 tracey | MAX_COMMITS_DISPLAY NUMBER {
389 a596b957 2022-07-14 tracey if ($2 > 0)
390 a596b957 2022-07-14 tracey new_srv->max_commits_display = $2;
391 a596b957 2022-07-14 tracey }
392 a596b957 2022-07-14 tracey ;
393 a596b957 2022-07-14 tracey
394 a596b957 2022-07-14 tracey serveropts2 : serveropts2 serveropts1 nl
395 a596b957 2022-07-14 tracey | serveropts1 optnl
396 a596b957 2022-07-14 tracey ;
397 a596b957 2022-07-14 tracey
398 a596b957 2022-07-14 tracey nl : '\n' optnl
399 a596b957 2022-07-14 tracey ;
400 a596b957 2022-07-14 tracey
401 a596b957 2022-07-14 tracey optnl : '\n' optnl /* zero or more newlines */
402 a596b957 2022-07-14 tracey | /* empty */
403 a596b957 2022-07-14 tracey ;
404 a596b957 2022-07-14 tracey
405 a596b957 2022-07-14 tracey %%
406 a596b957 2022-07-14 tracey
407 a596b957 2022-07-14 tracey struct keywords {
408 a596b957 2022-07-14 tracey const char *k_name;
409 a596b957 2022-07-14 tracey int k_val;
410 a596b957 2022-07-14 tracey };
411 a596b957 2022-07-14 tracey
412 a596b957 2022-07-14 tracey int
413 a596b957 2022-07-14 tracey yyerror(const char *fmt, ...)
414 a596b957 2022-07-14 tracey {
415 a596b957 2022-07-14 tracey va_list ap;
416 a596b957 2022-07-14 tracey char *msg;
417 a596b957 2022-07-14 tracey
418 a596b957 2022-07-14 tracey file->errors++;
419 a596b957 2022-07-14 tracey va_start(ap, fmt);
420 a596b957 2022-07-14 tracey if (vasprintf(&msg, fmt, ap) == -1)
421 a596b957 2022-07-14 tracey fatalx("yyerror vasprintf");
422 a596b957 2022-07-14 tracey va_end(ap);
423 a596b957 2022-07-14 tracey logit(LOG_CRIT, "%s:%d: %s", file->name, yylval.lineno, msg);
424 a596b957 2022-07-14 tracey free(msg);
425 a596b957 2022-07-14 tracey return (0);
426 a596b957 2022-07-14 tracey }
427 a596b957 2022-07-14 tracey
428 a596b957 2022-07-14 tracey int
429 a596b957 2022-07-14 tracey kw_cmp(const void *k, const void *e)
430 a596b957 2022-07-14 tracey {
431 a596b957 2022-07-14 tracey return (strcmp(k, ((const struct keywords *)e)->k_name));
432 a596b957 2022-07-14 tracey }
433 a596b957 2022-07-14 tracey
434 a596b957 2022-07-14 tracey int
435 a596b957 2022-07-14 tracey lookup(char *s)
436 a596b957 2022-07-14 tracey {
437 a596b957 2022-07-14 tracey /* This has to be sorted always. */
438 a596b957 2022-07-14 tracey static const struct keywords keywords[] = {
439 a596b957 2022-07-14 tracey { "chroot", CHROOT },
440 a596b957 2022-07-14 tracey { "custom_css", CUSTOM_CSS },
441 d8473d93 2022-08-11 stsp { "listen", LISTEN },
442 a596b957 2022-07-14 tracey { "logo", LOGO },
443 8556b86b 2023-01-02 op { "logo_url", LOGO_URL },
444 a596b957 2022-07-14 tracey { "max_commits_display", MAX_COMMITS_DISPLAY },
445 a596b957 2022-07-14 tracey { "max_repos", MAX_REPOS },
446 a596b957 2022-07-14 tracey { "max_repos_display", MAX_REPOS_DISPLAY },
447 d8473d93 2022-08-11 stsp { "on", ON },
448 a596b957 2022-07-14 tracey { "port", PORT },
449 a596b957 2022-07-14 tracey { "prefork", PREFORK },
450 a596b957 2022-07-14 tracey { "repos_path", REPOS_PATH },
451 d5996b9e 2022-10-31 landry { "respect_exportok", RESPECT_EXPORTOK },
452 a596b957 2022-07-14 tracey { "server", SERVER },
453 a596b957 2022-07-14 tracey { "show_repo_age", SHOW_REPO_AGE },
454 a596b957 2022-07-14 tracey { "show_repo_cloneurl", SHOW_REPO_CLONEURL },
455 a596b957 2022-07-14 tracey { "show_repo_description", SHOW_REPO_DESCRIPTION },
456 a596b957 2022-07-14 tracey { "show_repo_owner", SHOW_REPO_OWNER },
457 a596b957 2022-07-14 tracey { "show_site_owner", SHOW_SITE_OWNER },
458 a596b957 2022-07-14 tracey { "site_link", SITE_LINK },
459 a596b957 2022-07-14 tracey { "site_name", SITE_NAME },
460 a596b957 2022-07-14 tracey { "site_owner", SITE_OWNER },
461 3a1c1a1b 2023-01-04 op { "socket", SOCKET },
462 a596b957 2022-07-14 tracey { "unix_socket", UNIX_SOCKET },
463 a596b957 2022-07-14 tracey { "unix_socket_name", UNIX_SOCKET_NAME },
464 a596b957 2022-07-14 tracey };
465 a596b957 2022-07-14 tracey const struct keywords *p;
466 a596b957 2022-07-14 tracey
467 a596b957 2022-07-14 tracey p = bsearch(s, keywords, sizeof(keywords)/sizeof(keywords[0]),
468 a596b957 2022-07-14 tracey sizeof(keywords[0]), kw_cmp);
469 a596b957 2022-07-14 tracey
470 a596b957 2022-07-14 tracey if (p)
471 a596b957 2022-07-14 tracey return (p->k_val);
472 a596b957 2022-07-14 tracey else
473 a596b957 2022-07-14 tracey return (STRING);
474 a596b957 2022-07-14 tracey }
475 a596b957 2022-07-14 tracey
476 a596b957 2022-07-14 tracey #define MAXPUSHBACK 128
477 a596b957 2022-07-14 tracey
478 a596b957 2022-07-14 tracey unsigned char *parsebuf;
479 a596b957 2022-07-14 tracey int parseindex;
480 a596b957 2022-07-14 tracey unsigned char pushback_buffer[MAXPUSHBACK];
481 a596b957 2022-07-14 tracey int pushback_index = 0;
482 a596b957 2022-07-14 tracey
483 a596b957 2022-07-14 tracey int
484 a596b957 2022-07-14 tracey lgetc(int quotec)
485 a596b957 2022-07-14 tracey {
486 a596b957 2022-07-14 tracey int c, next;
487 a596b957 2022-07-14 tracey
488 a596b957 2022-07-14 tracey if (parsebuf) {
489 a596b957 2022-07-14 tracey /* Read character from the parsebuffer instead of input. */
490 a596b957 2022-07-14 tracey if (parseindex >= 0) {
491 a596b957 2022-07-14 tracey c = parsebuf[parseindex++];
492 a596b957 2022-07-14 tracey if (c != '\0')
493 a596b957 2022-07-14 tracey return (c);
494 a596b957 2022-07-14 tracey parsebuf = NULL;
495 a596b957 2022-07-14 tracey } else
496 a596b957 2022-07-14 tracey parseindex++;
497 a596b957 2022-07-14 tracey }
498 a596b957 2022-07-14 tracey
499 a596b957 2022-07-14 tracey if (pushback_index)
500 a596b957 2022-07-14 tracey return (pushback_buffer[--pushback_index]);
501 a596b957 2022-07-14 tracey
502 a596b957 2022-07-14 tracey if (quotec) {
503 a596b957 2022-07-14 tracey c = getc(file->stream);
504 a596b957 2022-07-14 tracey if (c == EOF)
505 a596b957 2022-07-14 tracey yyerror("reached end of file while parsing "
506 a596b957 2022-07-14 tracey "quoted string");
507 a596b957 2022-07-14 tracey return (c);
508 a596b957 2022-07-14 tracey }
509 a596b957 2022-07-14 tracey
510 a596b957 2022-07-14 tracey c = getc(file->stream);
511 a596b957 2022-07-14 tracey while (c == '\\') {
512 a596b957 2022-07-14 tracey next = getc(file->stream);
513 a596b957 2022-07-14 tracey if (next != '\n') {
514 a596b957 2022-07-14 tracey c = next;
515 a596b957 2022-07-14 tracey break;
516 a596b957 2022-07-14 tracey }
517 a596b957 2022-07-14 tracey yylval.lineno = file->lineno;
518 a596b957 2022-07-14 tracey file->lineno++;
519 a596b957 2022-07-14 tracey c = getc(file->stream);
520 a596b957 2022-07-14 tracey }
521 a596b957 2022-07-14 tracey
522 a596b957 2022-07-14 tracey return (c);
523 a596b957 2022-07-14 tracey }
524 a596b957 2022-07-14 tracey
525 a596b957 2022-07-14 tracey int
526 a596b957 2022-07-14 tracey lungetc(int c)
527 a596b957 2022-07-14 tracey {
528 a596b957 2022-07-14 tracey if (c == EOF)
529 a596b957 2022-07-14 tracey return (EOF);
530 a596b957 2022-07-14 tracey if (parsebuf) {
531 a596b957 2022-07-14 tracey parseindex--;
532 a596b957 2022-07-14 tracey if (parseindex >= 0)
533 a596b957 2022-07-14 tracey return (c);
534 a596b957 2022-07-14 tracey }
535 a596b957 2022-07-14 tracey if (pushback_index < MAXPUSHBACK-1)
536 a596b957 2022-07-14 tracey return (pushback_buffer[pushback_index++] = c);
537 a596b957 2022-07-14 tracey else
538 a596b957 2022-07-14 tracey return (EOF);
539 a596b957 2022-07-14 tracey }
540 a596b957 2022-07-14 tracey
541 a596b957 2022-07-14 tracey int
542 a596b957 2022-07-14 tracey findeol(void)
543 a596b957 2022-07-14 tracey {
544 a596b957 2022-07-14 tracey int c;
545 a596b957 2022-07-14 tracey
546 a596b957 2022-07-14 tracey parsebuf = NULL;
547 a596b957 2022-07-14 tracey
548 a596b957 2022-07-14 tracey /* Skip to either EOF or the first real EOL. */
549 a596b957 2022-07-14 tracey while (1) {
550 a596b957 2022-07-14 tracey if (pushback_index)
551 a596b957 2022-07-14 tracey c = pushback_buffer[--pushback_index];
552 a596b957 2022-07-14 tracey else
553 a596b957 2022-07-14 tracey c = lgetc(0);
554 a596b957 2022-07-14 tracey if (c == '\n') {
555 a596b957 2022-07-14 tracey file->lineno++;
556 a596b957 2022-07-14 tracey break;
557 a596b957 2022-07-14 tracey }
558 a596b957 2022-07-14 tracey if (c == EOF)
559 a596b957 2022-07-14 tracey break;
560 a596b957 2022-07-14 tracey }
561 a596b957 2022-07-14 tracey return (ERROR);
562 a596b957 2022-07-14 tracey }
563 a596b957 2022-07-14 tracey
564 a596b957 2022-07-14 tracey int
565 a596b957 2022-07-14 tracey yylex(void)
566 a596b957 2022-07-14 tracey {
567 a596b957 2022-07-14 tracey unsigned char buf[8096];
568 a596b957 2022-07-14 tracey unsigned char *p, *val;
569 a596b957 2022-07-14 tracey int quotec, next, c;
570 a596b957 2022-07-14 tracey int token;
571 a596b957 2022-07-14 tracey
572 a596b957 2022-07-14 tracey top:
573 a596b957 2022-07-14 tracey p = buf;
574 a596b957 2022-07-14 tracey c = lgetc(0);
575 a596b957 2022-07-14 tracey while (c == ' ' || c == '\t')
576 a596b957 2022-07-14 tracey c = lgetc(0); /* nothing */
577 a596b957 2022-07-14 tracey
578 a596b957 2022-07-14 tracey yylval.lineno = file->lineno;
579 a596b957 2022-07-14 tracey if (c == '#') {
580 a596b957 2022-07-14 tracey c = lgetc(0);
581 a596b957 2022-07-14 tracey while (c != '\n' && c != EOF)
582 a596b957 2022-07-14 tracey c = lgetc(0); /* nothing */
583 a596b957 2022-07-14 tracey }
584 a596b957 2022-07-14 tracey if (c == '$' && parsebuf == NULL) {
585 a596b957 2022-07-14 tracey while (1) {
586 a596b957 2022-07-14 tracey c = lgetc(0);
587 a596b957 2022-07-14 tracey if (c == EOF)
588 a596b957 2022-07-14 tracey return (0);
589 a596b957 2022-07-14 tracey
590 a596b957 2022-07-14 tracey if (p + 1 >= buf + sizeof(buf) - 1) {
591 a596b957 2022-07-14 tracey yyerror("string too long");
592 a596b957 2022-07-14 tracey return (findeol());
593 a596b957 2022-07-14 tracey }
594 a596b957 2022-07-14 tracey if (isalnum(c) || c == '_') {
595 a596b957 2022-07-14 tracey *p++ = c;
596 a596b957 2022-07-14 tracey continue;
597 a596b957 2022-07-14 tracey }
598 a596b957 2022-07-14 tracey *p = '\0';
599 a596b957 2022-07-14 tracey lungetc(c);
600 a596b957 2022-07-14 tracey break;
601 a596b957 2022-07-14 tracey }
602 a596b957 2022-07-14 tracey val = symget(buf);
603 a596b957 2022-07-14 tracey if (val == NULL) {
604 a596b957 2022-07-14 tracey yyerror("macro '%s' not defined", buf);
605 a596b957 2022-07-14 tracey return (findeol());
606 a596b957 2022-07-14 tracey }
607 a596b957 2022-07-14 tracey parsebuf = val;
608 a596b957 2022-07-14 tracey parseindex = 0;
609 a596b957 2022-07-14 tracey goto top;
610 a596b957 2022-07-14 tracey }
611 a596b957 2022-07-14 tracey
612 a596b957 2022-07-14 tracey switch (c) {
613 a596b957 2022-07-14 tracey case '\'':
614 a596b957 2022-07-14 tracey case '"':
615 a596b957 2022-07-14 tracey quotec = c;
616 a596b957 2022-07-14 tracey while (1) {
617 a596b957 2022-07-14 tracey c = lgetc(quotec);
618 a596b957 2022-07-14 tracey if (c == EOF)
619 a596b957 2022-07-14 tracey return (0);
620 a596b957 2022-07-14 tracey if (c == '\n') {
621 a596b957 2022-07-14 tracey file->lineno++;
622 a596b957 2022-07-14 tracey continue;
623 a596b957 2022-07-14 tracey } else if (c == '\\') {
624 a596b957 2022-07-14 tracey next = lgetc(quotec);
625 a596b957 2022-07-14 tracey if (next == EOF)
626 a596b957 2022-07-14 tracey return (0);
627 a596b957 2022-07-14 tracey if (next == quotec || c == ' ' || c == '\t')
628 a596b957 2022-07-14 tracey c = next;
629 a596b957 2022-07-14 tracey else if (next == '\n') {
630 a596b957 2022-07-14 tracey file->lineno++;
631 a596b957 2022-07-14 tracey continue;
632 a596b957 2022-07-14 tracey } else
633 a596b957 2022-07-14 tracey lungetc(next);
634 a596b957 2022-07-14 tracey } else if (c == quotec) {
635 a596b957 2022-07-14 tracey *p = '\0';
636 a596b957 2022-07-14 tracey break;
637 a596b957 2022-07-14 tracey } else if (c == '\0') {
638 a596b957 2022-07-14 tracey yyerror("syntax error");
639 a596b957 2022-07-14 tracey return (findeol());
640 a596b957 2022-07-14 tracey }
641 a596b957 2022-07-14 tracey if (p + 1 >= buf + sizeof(buf) - 1) {
642 a596b957 2022-07-14 tracey yyerror("string too long");
643 a596b957 2022-07-14 tracey return (findeol());
644 a596b957 2022-07-14 tracey }
645 a596b957 2022-07-14 tracey *p++ = c;
646 a596b957 2022-07-14 tracey }
647 a596b957 2022-07-14 tracey yylval.v.string = strdup(buf);
648 a596b957 2022-07-14 tracey if (yylval.v.string == NULL)
649 a596b957 2022-07-14 tracey err(1, "yylex: strdup");
650 a596b957 2022-07-14 tracey return (STRING);
651 a596b957 2022-07-14 tracey }
652 a596b957 2022-07-14 tracey
653 a596b957 2022-07-14 tracey #define allowed_to_end_number(x) \
654 a596b957 2022-07-14 tracey (isspace(x) || x == ')' || x ==',' || x == '/' || x == '}' || x == '=')
655 a596b957 2022-07-14 tracey
656 a596b957 2022-07-14 tracey if (c == '-' || isdigit(c)) {
657 a596b957 2022-07-14 tracey do {
658 a596b957 2022-07-14 tracey *p++ = c;
659 a596b957 2022-07-14 tracey if ((unsigned)(p-buf) >= sizeof(buf)) {
660 a596b957 2022-07-14 tracey yyerror("string too long");
661 a596b957 2022-07-14 tracey return (findeol());
662 a596b957 2022-07-14 tracey }
663 a596b957 2022-07-14 tracey c = lgetc(0);
664 a596b957 2022-07-14 tracey } while (c != EOF && isdigit(c));
665 a596b957 2022-07-14 tracey lungetc(c);
666 a596b957 2022-07-14 tracey if (p == buf + 1 && buf[0] == '-')
667 a596b957 2022-07-14 tracey goto nodigits;
668 a596b957 2022-07-14 tracey if (c == EOF || allowed_to_end_number(c)) {
669 a596b957 2022-07-14 tracey const char *errstr = NULL;
670 a596b957 2022-07-14 tracey
671 a596b957 2022-07-14 tracey *p = '\0';
672 a596b957 2022-07-14 tracey yylval.v.number = strtonum(buf, LLONG_MIN,
673 a596b957 2022-07-14 tracey LLONG_MAX, &errstr);
674 a596b957 2022-07-14 tracey if (errstr) {
675 a596b957 2022-07-14 tracey yyerror("\"%s\" invalid number: %s",
676 a596b957 2022-07-14 tracey buf, errstr);
677 a596b957 2022-07-14 tracey return (findeol());
678 a596b957 2022-07-14 tracey }
679 a596b957 2022-07-14 tracey return (NUMBER);
680 a596b957 2022-07-14 tracey } else {
681 a596b957 2022-07-14 tracey nodigits:
682 a596b957 2022-07-14 tracey while (p > buf + 1)
683 a596b957 2022-07-14 tracey lungetc(*--p);
684 a596b957 2022-07-14 tracey c = *--p;
685 a596b957 2022-07-14 tracey if (c == '-')
686 a596b957 2022-07-14 tracey return (c);
687 a596b957 2022-07-14 tracey }
688 a596b957 2022-07-14 tracey }
689 a596b957 2022-07-14 tracey
690 a596b957 2022-07-14 tracey #define allowed_in_string(x) \
691 a596b957 2022-07-14 tracey (isalnum(x) || (ispunct(x) && x != '(' && x != ')' && \
692 a596b957 2022-07-14 tracey x != '{' && x != '}' && \
693 a596b957 2022-07-14 tracey x != '!' && x != '=' && x != '#' && \
694 a596b957 2022-07-14 tracey x != ','))
695 a596b957 2022-07-14 tracey
696 a596b957 2022-07-14 tracey if (isalnum(c) || c == ':' || c == '_') {
697 a596b957 2022-07-14 tracey do {
698 a596b957 2022-07-14 tracey *p++ = c;
699 a596b957 2022-07-14 tracey if ((unsigned)(p-buf) >= sizeof(buf)) {
700 a596b957 2022-07-14 tracey yyerror("string too long");
701 a596b957 2022-07-14 tracey return (findeol());
702 a596b957 2022-07-14 tracey }
703 a596b957 2022-07-14 tracey c = lgetc(0);
704 a596b957 2022-07-14 tracey } while (c != EOF && (allowed_in_string(c)));
705 a596b957 2022-07-14 tracey lungetc(c);
706 a596b957 2022-07-14 tracey *p = '\0';
707 a596b957 2022-07-14 tracey token = lookup(buf);
708 a596b957 2022-07-14 tracey if (token == STRING) {
709 a596b957 2022-07-14 tracey yylval.v.string = strdup(buf);
710 a596b957 2022-07-14 tracey if (yylval.v.string == NULL)
711 a596b957 2022-07-14 tracey err(1, "yylex: strdup");
712 a596b957 2022-07-14 tracey }
713 a596b957 2022-07-14 tracey return (token);
714 a596b957 2022-07-14 tracey }
715 a596b957 2022-07-14 tracey if (c == '\n') {
716 a596b957 2022-07-14 tracey yylval.lineno = file->lineno;
717 a596b957 2022-07-14 tracey file->lineno++;
718 a596b957 2022-07-14 tracey }
719 a596b957 2022-07-14 tracey if (c == EOF)
720 a596b957 2022-07-14 tracey return (0);
721 a596b957 2022-07-14 tracey return (c);
722 a596b957 2022-07-14 tracey }
723 a596b957 2022-07-14 tracey
724 a596b957 2022-07-14 tracey int
725 a596b957 2022-07-14 tracey check_file_secrecy(int fd, const char *fname)
726 a596b957 2022-07-14 tracey {
727 a596b957 2022-07-14 tracey struct stat st;
728 a596b957 2022-07-14 tracey
729 a596b957 2022-07-14 tracey if (fstat(fd, &st)) {
730 a596b957 2022-07-14 tracey log_warn("cannot stat %s", fname);
731 a596b957 2022-07-14 tracey return (-1);
732 a596b957 2022-07-14 tracey }
733 a596b957 2022-07-14 tracey if (st.st_uid != 0 && st.st_uid != getuid()) {
734 a596b957 2022-07-14 tracey log_warnx("%s: owner not root or current user", fname);
735 a596b957 2022-07-14 tracey return (-1);
736 a596b957 2022-07-14 tracey }
737 a596b957 2022-07-14 tracey if (st.st_mode & (S_IWGRP | S_IXGRP | S_IRWXO)) {
738 a596b957 2022-07-14 tracey log_warnx("%s: group writable or world read/writable", fname);
739 a596b957 2022-07-14 tracey return (-1);
740 a596b957 2022-07-14 tracey }
741 a596b957 2022-07-14 tracey return (0);
742 a596b957 2022-07-14 tracey }
743 a596b957 2022-07-14 tracey
744 a596b957 2022-07-14 tracey struct file *
745 a596b957 2022-07-14 tracey newfile(const char *name, int secret)
746 a596b957 2022-07-14 tracey {
747 a596b957 2022-07-14 tracey struct file *nfile;
748 a596b957 2022-07-14 tracey
749 a596b957 2022-07-14 tracey nfile = calloc(1, sizeof(struct file));
750 a596b957 2022-07-14 tracey if (nfile == NULL) {
751 a596b957 2022-07-14 tracey log_warn("calloc");
752 a596b957 2022-07-14 tracey return (NULL);
753 a596b957 2022-07-14 tracey }
754 a596b957 2022-07-14 tracey nfile->name = strdup(name);
755 a596b957 2022-07-14 tracey if (nfile->name == NULL) {
756 a596b957 2022-07-14 tracey log_warn("strdup");
757 a596b957 2022-07-14 tracey free(nfile);
758 a596b957 2022-07-14 tracey return (NULL);
759 a596b957 2022-07-14 tracey }
760 a596b957 2022-07-14 tracey nfile->stream = fopen(nfile->name, "r");
761 a596b957 2022-07-14 tracey if (nfile->stream == NULL) {
762 a596b957 2022-07-14 tracey /* no warning, we don't require a conf file */
763 a596b957 2022-07-14 tracey free(nfile->name);
764 a596b957 2022-07-14 tracey free(nfile);
765 a596b957 2022-07-14 tracey return (NULL);
766 a596b957 2022-07-14 tracey } else if (secret &&
767 a596b957 2022-07-14 tracey check_file_secrecy(fileno(nfile->stream), nfile->name)) {
768 a596b957 2022-07-14 tracey fclose(nfile->stream);
769 a596b957 2022-07-14 tracey free(nfile->name);
770 a596b957 2022-07-14 tracey free(nfile);
771 a596b957 2022-07-14 tracey return (NULL);
772 a596b957 2022-07-14 tracey }
773 a596b957 2022-07-14 tracey nfile->lineno = 1;
774 a596b957 2022-07-14 tracey return (nfile);
775 a596b957 2022-07-14 tracey }
776 a596b957 2022-07-14 tracey
777 a596b957 2022-07-14 tracey static void
778 a596b957 2022-07-14 tracey closefile(struct file *xfile)
779 a596b957 2022-07-14 tracey {
780 a596b957 2022-07-14 tracey fclose(xfile->stream);
781 a596b957 2022-07-14 tracey free(xfile->name);
782 a596b957 2022-07-14 tracey free(xfile);
783 a596b957 2022-07-14 tracey }
784 a596b957 2022-07-14 tracey
785 a0037b73 2022-08-03 stsp static void
786 a0037b73 2022-08-03 stsp add_default_server(void)
787 a0037b73 2022-08-03 stsp {
788 a0037b73 2022-08-03 stsp new_srv = conf_new_server(D_SITENAME);
789 a0037b73 2022-08-03 stsp log_debug("%s: adding default server %s", __func__, D_SITENAME);
790 a0037b73 2022-08-03 stsp }
791 a0037b73 2022-08-03 stsp
792 a596b957 2022-07-14 tracey int
793 a596b957 2022-07-14 tracey parse_config(const char *filename, struct gotwebd *env)
794 a596b957 2022-07-14 tracey {
795 a596b957 2022-07-14 tracey struct sym *sym, *next;
796 a596b957 2022-07-14 tracey
797 a596b957 2022-07-14 tracey if (config_init(env) == -1)
798 a596b957 2022-07-14 tracey fatalx("failed to initialize configuration");
799 a596b957 2022-07-14 tracey
800 a596b957 2022-07-14 tracey gotwebd = env;
801 a0037b73 2022-08-03 stsp
802 a0037b73 2022-08-03 stsp file = newfile(filename, 0);
803 a0037b73 2022-08-03 stsp if (file == NULL) {
804 a0037b73 2022-08-03 stsp add_default_server();
805 a0037b73 2022-08-03 stsp sockets_parse_sockets(env);
806 a0037b73 2022-08-03 stsp /* just return, as we don't require a conf file */
807 a0037b73 2022-08-03 stsp return (0);
808 a0037b73 2022-08-03 stsp }
809 a596b957 2022-07-14 tracey
810 a596b957 2022-07-14 tracey yyparse();
811 a596b957 2022-07-14 tracey errors = file->errors;
812 a596b957 2022-07-14 tracey closefile(file);
813 a596b957 2022-07-14 tracey
814 a596b957 2022-07-14 tracey /* Free macros and check which have not been used. */
815 a596b957 2022-07-14 tracey TAILQ_FOREACH_SAFE(sym, &symhead, entry, next) {
816 a596b957 2022-07-14 tracey if ((gotwebd->gotwebd_verbose > 1) && !sym->used)
817 a596b957 2022-07-14 tracey fprintf(stderr, "warning: macro '%s' not used\n",
818 a596b957 2022-07-14 tracey sym->nam);
819 a596b957 2022-07-14 tracey if (!sym->persist) {
820 a596b957 2022-07-14 tracey free(sym->nam);
821 a596b957 2022-07-14 tracey free(sym->val);
822 a596b957 2022-07-14 tracey TAILQ_REMOVE(&symhead, sym, entry);
823 a596b957 2022-07-14 tracey free(sym);
824 a596b957 2022-07-14 tracey }
825 a596b957 2022-07-14 tracey }
826 a596b957 2022-07-14 tracey
827 a596b957 2022-07-14 tracey if (errors)
828 a596b957 2022-07-14 tracey return (-1);
829 a596b957 2022-07-14 tracey
830 a596b957 2022-07-14 tracey /* just add default server if no config specified */
831 a0037b73 2022-08-03 stsp if (gotwebd->server_cnt == 0)
832 a0037b73 2022-08-03 stsp add_default_server();
833 a596b957 2022-07-14 tracey
834 a596b957 2022-07-14 tracey /* setup our listening sockets */
835 a596b957 2022-07-14 tracey sockets_parse_sockets(env);
836 a596b957 2022-07-14 tracey
837 a596b957 2022-07-14 tracey return (0);
838 a596b957 2022-07-14 tracey }
839 a596b957 2022-07-14 tracey
840 a596b957 2022-07-14 tracey struct server *
841 a596b957 2022-07-14 tracey conf_new_server(const char *name)
842 a596b957 2022-07-14 tracey {
843 a596b957 2022-07-14 tracey struct server *srv = NULL;
844 a596b957 2022-07-14 tracey
845 a596b957 2022-07-14 tracey srv = calloc(1, sizeof(*srv));
846 a596b957 2022-07-14 tracey if (srv == NULL)
847 a596b957 2022-07-14 tracey fatalx("%s: calloc", __func__);
848 a596b957 2022-07-14 tracey
849 a596b957 2022-07-14 tracey n = strlcpy(srv->name, name, sizeof(srv->name));
850 a596b957 2022-07-14 tracey if (n >= sizeof(srv->name))
851 a596b957 2022-07-14 tracey fatalx("%s: strlcpy", __func__);
852 a596b957 2022-07-14 tracey n = snprintf(srv->unix_socket_name,
853 a596b957 2022-07-14 tracey sizeof(srv->unix_socket_name), "%s%s", D_HTTPD_CHROOT,
854 a596b957 2022-07-14 tracey D_UNIX_SOCKET);
855 438d0cc3 2022-08-16 op if (n < 0 || (size_t)n >= sizeof(srv->unix_socket_name))
856 a596b957 2022-07-14 tracey fatalx("%s: snprintf", __func__);
857 a596b957 2022-07-14 tracey n = strlcpy(srv->repos_path, D_GOTPATH,
858 a596b957 2022-07-14 tracey sizeof(srv->repos_path));
859 a596b957 2022-07-14 tracey if (n >= sizeof(srv->repos_path))
860 a596b957 2022-07-14 tracey fatalx("%s: strlcpy", __func__);
861 a596b957 2022-07-14 tracey n = strlcpy(srv->site_name, D_SITENAME,
862 a596b957 2022-07-14 tracey sizeof(srv->site_name));
863 a596b957 2022-07-14 tracey if (n >= sizeof(srv->site_name))
864 a596b957 2022-07-14 tracey fatalx("%s: strlcpy", __func__);
865 a596b957 2022-07-14 tracey n = strlcpy(srv->site_owner, D_SITEOWNER,
866 a596b957 2022-07-14 tracey sizeof(srv->site_owner));
867 a596b957 2022-07-14 tracey if (n >= sizeof(srv->site_owner))
868 a596b957 2022-07-14 tracey fatalx("%s: strlcpy", __func__);
869 a596b957 2022-07-14 tracey n = strlcpy(srv->site_link, D_SITELINK,
870 a596b957 2022-07-14 tracey sizeof(srv->site_link));
871 a596b957 2022-07-14 tracey if (n >= sizeof(srv->site_link))
872 a596b957 2022-07-14 tracey fatalx("%s: strlcpy", __func__);
873 a596b957 2022-07-14 tracey n = strlcpy(srv->logo, D_GOTLOGO,
874 a596b957 2022-07-14 tracey sizeof(srv->logo));
875 a596b957 2022-07-14 tracey if (n >= sizeof(srv->logo))
876 a596b957 2022-07-14 tracey fatalx("%s: strlcpy", __func__);
877 a596b957 2022-07-14 tracey n = strlcpy(srv->logo_url, D_GOTURL, sizeof(srv->logo_url));
878 a596b957 2022-07-14 tracey if (n >= sizeof(srv->logo_url))
879 a596b957 2022-07-14 tracey fatalx("%s: strlcpy", __func__);
880 a596b957 2022-07-14 tracey n = strlcpy(srv->custom_css, D_GOTWEBCSS, sizeof(srv->custom_css));
881 a596b957 2022-07-14 tracey if (n >= sizeof(srv->custom_css))
882 a596b957 2022-07-14 tracey fatalx("%s: strlcpy", __func__);
883 a596b957 2022-07-14 tracey
884 a596b957 2022-07-14 tracey srv->show_site_owner = D_SHOWSOWNER;
885 a596b957 2022-07-14 tracey srv->show_repo_owner = D_SHOWROWNER;
886 a596b957 2022-07-14 tracey srv->show_repo_age = D_SHOWAGE;
887 a596b957 2022-07-14 tracey srv->show_repo_description = D_SHOWDESC;
888 a596b957 2022-07-14 tracey srv->show_repo_cloneurl = D_SHOWURL;
889 d5996b9e 2022-10-31 landry srv->respect_exportok = D_RESPECTEXPORTOK;
890 a596b957 2022-07-14 tracey
891 a596b957 2022-07-14 tracey srv->max_repos_display = D_MAXREPODISP;
892 a596b957 2022-07-14 tracey srv->max_commits_display = D_MAXCOMMITDISP;
893 a596b957 2022-07-14 tracey srv->max_repos = D_MAXREPO;
894 a596b957 2022-07-14 tracey
895 a596b957 2022-07-14 tracey srv->unix_socket = 1;
896 6c8aa58f 2022-08-30 stsp srv->fcgi_socket = 0;
897 a596b957 2022-07-14 tracey
898 e087e1f6 2022-08-16 stsp TAILQ_INIT(&srv->al);
899 2ad48e9a 2022-08-16 stsp TAILQ_INSERT_TAIL(&gotwebd->servers, srv, entry);
900 a596b957 2022-07-14 tracey gotwebd->server_cnt++;
901 a596b957 2022-07-14 tracey
902 a596b957 2022-07-14 tracey return srv;
903 a596b957 2022-07-14 tracey };
904 a596b957 2022-07-14 tracey
905 a596b957 2022-07-14 tracey int
906 a596b957 2022-07-14 tracey symset(const char *nam, const char *val, int persist)
907 a596b957 2022-07-14 tracey {
908 a596b957 2022-07-14 tracey struct sym *sym;
909 a596b957 2022-07-14 tracey
910 a596b957 2022-07-14 tracey TAILQ_FOREACH(sym, &symhead, entry) {
911 a596b957 2022-07-14 tracey if (strcmp(nam, sym->nam) == 0)
912 a596b957 2022-07-14 tracey break;
913 a596b957 2022-07-14 tracey }
914 a596b957 2022-07-14 tracey
915 a596b957 2022-07-14 tracey if (sym != NULL) {
916 a596b957 2022-07-14 tracey if (sym->persist == 1)
917 a596b957 2022-07-14 tracey return (0);
918 a596b957 2022-07-14 tracey else {
919 a596b957 2022-07-14 tracey free(sym->nam);
920 a596b957 2022-07-14 tracey free(sym->val);
921 a596b957 2022-07-14 tracey TAILQ_REMOVE(&symhead, sym, entry);
922 a596b957 2022-07-14 tracey free(sym);
923 a596b957 2022-07-14 tracey }
924 a596b957 2022-07-14 tracey }
925 a596b957 2022-07-14 tracey sym = calloc(1, sizeof(*sym));
926 a596b957 2022-07-14 tracey if (sym == NULL)
927 a596b957 2022-07-14 tracey return (-1);
928 a596b957 2022-07-14 tracey
929 a596b957 2022-07-14 tracey sym->nam = strdup(nam);
930 a596b957 2022-07-14 tracey if (sym->nam == NULL) {
931 a596b957 2022-07-14 tracey free(sym);
932 a596b957 2022-07-14 tracey return (-1);
933 a596b957 2022-07-14 tracey }
934 a596b957 2022-07-14 tracey sym->val = strdup(val);
935 a596b957 2022-07-14 tracey if (sym->val == NULL) {
936 a596b957 2022-07-14 tracey free(sym->nam);
937 a596b957 2022-07-14 tracey free(sym);
938 a596b957 2022-07-14 tracey return (-1);
939 a596b957 2022-07-14 tracey }
940 a596b957 2022-07-14 tracey sym->used = 0;
941 a596b957 2022-07-14 tracey sym->persist = persist;
942 a596b957 2022-07-14 tracey TAILQ_INSERT_TAIL(&symhead, sym, entry);
943 a596b957 2022-07-14 tracey return (0);
944 a596b957 2022-07-14 tracey }
945 a596b957 2022-07-14 tracey
946 a596b957 2022-07-14 tracey int
947 a596b957 2022-07-14 tracey cmdline_symset(char *s)
948 a596b957 2022-07-14 tracey {
949 a596b957 2022-07-14 tracey char *sym, *val;
950 a596b957 2022-07-14 tracey int ret;
951 a596b957 2022-07-14 tracey
952 a596b957 2022-07-14 tracey val = strrchr(s, '=');
953 a596b957 2022-07-14 tracey if (val == NULL)
954 a596b957 2022-07-14 tracey return (-1);
955 a596b957 2022-07-14 tracey
956 4cdd299d 2022-09-05 op sym = strndup(s, val - s);
957 a596b957 2022-07-14 tracey if (sym == NULL)
958 4cdd299d 2022-09-05 op fatal("%s: strndup", __func__);
959 a596b957 2022-07-14 tracey
960 a596b957 2022-07-14 tracey ret = symset(sym, val + 1, 1);
961 a596b957 2022-07-14 tracey free(sym);
962 a596b957 2022-07-14 tracey
963 a596b957 2022-07-14 tracey return (ret);
964 a596b957 2022-07-14 tracey }
965 a596b957 2022-07-14 tracey
966 a596b957 2022-07-14 tracey char *
967 a596b957 2022-07-14 tracey symget(const char *nam)
968 a596b957 2022-07-14 tracey {
969 a596b957 2022-07-14 tracey struct sym *sym;
970 a596b957 2022-07-14 tracey
971 a596b957 2022-07-14 tracey TAILQ_FOREACH(sym, &symhead, entry) {
972 a596b957 2022-07-14 tracey if (strcmp(nam, sym->nam) == 0) {
973 a596b957 2022-07-14 tracey sym->used = 1;
974 a596b957 2022-07-14 tracey return (sym->val);
975 a596b957 2022-07-14 tracey }
976 a596b957 2022-07-14 tracey }
977 a596b957 2022-07-14 tracey return (NULL);
978 a596b957 2022-07-14 tracey }
979 a596b957 2022-07-14 tracey
980 a596b957 2022-07-14 tracey int
981 a596b957 2022-07-14 tracey getservice(const char *n)
982 a596b957 2022-07-14 tracey {
983 a596b957 2022-07-14 tracey struct servent *s;
984 a596b957 2022-07-14 tracey const char *errstr;
985 a596b957 2022-07-14 tracey long long llval;
986 a596b957 2022-07-14 tracey
987 a596b957 2022-07-14 tracey llval = strtonum(n, 0, UINT16_MAX, &errstr);
988 a596b957 2022-07-14 tracey if (errstr) {
989 a596b957 2022-07-14 tracey s = getservbyname(n, "tcp");
990 a596b957 2022-07-14 tracey if (s == NULL)
991 a596b957 2022-07-14 tracey s = getservbyname(n, "udp");
992 a596b957 2022-07-14 tracey if (s == NULL)
993 a596b957 2022-07-14 tracey return (-1);
994 859aa9f4 2022-08-19 stsp return ntohs(s->s_port);
995 a596b957 2022-07-14 tracey }
996 a596b957 2022-07-14 tracey
997 859aa9f4 2022-08-19 stsp return (unsigned short)llval;
998 a596b957 2022-07-14 tracey }
999 a596b957 2022-07-14 tracey
1000 a596b957 2022-07-14 tracey int
1001 abf3e3f4 2023-05-29 op host(const char *s, struct server *new_srv, int max,
1002 a596b957 2022-07-14 tracey in_port_t port, const char *ifname, int ipproto)
1003 a596b957 2022-07-14 tracey {
1004 a596b957 2022-07-14 tracey struct addrinfo hints, *res0, *res;
1005 a596b957 2022-07-14 tracey int error, cnt = 0;
1006 a596b957 2022-07-14 tracey struct sockaddr_in *sain;
1007 a596b957 2022-07-14 tracey struct sockaddr_in6 *sin6;
1008 a596b957 2022-07-14 tracey struct address *h;
1009 a596b957 2022-07-14 tracey
1010 67d8de2a 2022-08-29 stsp if ((cnt = host_if(s, new_srv, max, port, ifname, ipproto)) != 0)
1011 a596b957 2022-07-14 tracey return (cnt);
1012 a596b957 2022-07-14 tracey
1013 a596b957 2022-07-14 tracey memset(&hints, 0, sizeof(hints));
1014 fb307946 2023-05-29 op hints.ai_family = AF_UNSPEC;
1015 fb307946 2023-05-29 op hints.ai_socktype = SOCK_STREAM; /* DUMMY */
1016 a596b957 2022-07-14 tracey hints.ai_flags = AI_ADDRCONFIG;
1017 a596b957 2022-07-14 tracey error = getaddrinfo(s, NULL, &hints, &res0);
1018 a596b957 2022-07-14 tracey if (error == EAI_AGAIN || error == EAI_NODATA || error == EAI_NONAME)
1019 a596b957 2022-07-14 tracey return (0);
1020 a596b957 2022-07-14 tracey if (error) {
1021 a596b957 2022-07-14 tracey log_warnx("%s: could not parse \"%s\": %s", __func__, s,
1022 a596b957 2022-07-14 tracey gai_strerror(error));
1023 a596b957 2022-07-14 tracey return (-1);
1024 a596b957 2022-07-14 tracey }
1025 a596b957 2022-07-14 tracey
1026 a596b957 2022-07-14 tracey for (res = res0; res && cnt < max; res = res->ai_next) {
1027 a596b957 2022-07-14 tracey if (res->ai_family != AF_INET &&
1028 a596b957 2022-07-14 tracey res->ai_family != AF_INET6)
1029 a596b957 2022-07-14 tracey continue;
1030 a596b957 2022-07-14 tracey if ((h = calloc(1, sizeof(*h))) == NULL)
1031 a596b957 2022-07-14 tracey fatal(__func__);
1032 a596b957 2022-07-14 tracey
1033 a596b957 2022-07-14 tracey if (port)
1034 a596b957 2022-07-14 tracey h->port = port;
1035 a596b957 2022-07-14 tracey if (ifname != NULL) {
1036 a596b957 2022-07-14 tracey if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1037 a596b957 2022-07-14 tracey sizeof(h->ifname)) {
1038 a596b957 2022-07-14 tracey log_warnx("%s: interface name truncated",
1039 a596b957 2022-07-14 tracey __func__);
1040 a596b957 2022-07-14 tracey freeaddrinfo(res0);
1041 a596b957 2022-07-14 tracey free(h);
1042 a596b957 2022-07-14 tracey return (-1);
1043 a596b957 2022-07-14 tracey }
1044 a596b957 2022-07-14 tracey }
1045 a596b957 2022-07-14 tracey if (ipproto != -1)
1046 a596b957 2022-07-14 tracey h->ipproto = ipproto;
1047 a596b957 2022-07-14 tracey h->ss.ss_family = res->ai_family;
1048 a596b957 2022-07-14 tracey
1049 a596b957 2022-07-14 tracey if (res->ai_family == AF_INET) {
1050 86b4b772 2022-07-29 stsp struct sockaddr_in *ra;
1051 a596b957 2022-07-14 tracey sain = (struct sockaddr_in *)&h->ss;
1052 86b4b772 2022-07-29 stsp ra = (struct sockaddr_in *)res->ai_addr;
1053 86b4b772 2022-07-29 stsp got_sockaddr_inet_init(sain, &ra->sin_addr);
1054 a596b957 2022-07-14 tracey } else {
1055 86b4b772 2022-07-29 stsp struct sockaddr_in6 *ra;
1056 a596b957 2022-07-14 tracey sin6 = (struct sockaddr_in6 *)&h->ss;
1057 86b4b772 2022-07-29 stsp ra = (struct sockaddr_in6 *)res->ai_addr;
1058 86b4b772 2022-07-29 stsp got_sockaddr_inet6_init(sin6, &ra->sin6_addr, 0);
1059 a596b957 2022-07-14 tracey }
1060 a596b957 2022-07-14 tracey
1061 67d8de2a 2022-08-29 stsp if (add_addr(new_srv, h))
1062 67d8de2a 2022-08-29 stsp return -1;
1063 a596b957 2022-07-14 tracey cnt++;
1064 a596b957 2022-07-14 tracey }
1065 a596b957 2022-07-14 tracey if (cnt == max && res) {
1066 a596b957 2022-07-14 tracey log_warnx("%s: %s resolves to more than %d hosts", __func__,
1067 a596b957 2022-07-14 tracey s, max);
1068 a596b957 2022-07-14 tracey }
1069 a596b957 2022-07-14 tracey freeaddrinfo(res0);
1070 a596b957 2022-07-14 tracey return (cnt);
1071 a596b957 2022-07-14 tracey }
1072 a596b957 2022-07-14 tracey
1073 a596b957 2022-07-14 tracey int
1074 67d8de2a 2022-08-29 stsp host_if(const char *s, struct server *new_srv, int max,
1075 a596b957 2022-07-14 tracey in_port_t port, const char *ifname, int ipproto)
1076 a596b957 2022-07-14 tracey {
1077 a596b957 2022-07-14 tracey struct ifaddrs *ifap, *p;
1078 a596b957 2022-07-14 tracey struct sockaddr_in *sain;
1079 a596b957 2022-07-14 tracey struct sockaddr_in6 *sin6;
1080 a596b957 2022-07-14 tracey struct address *h;
1081 a596b957 2022-07-14 tracey int cnt = 0, af;
1082 a596b957 2022-07-14 tracey
1083 a596b957 2022-07-14 tracey if (getifaddrs(&ifap) == -1)
1084 a596b957 2022-07-14 tracey fatal("getifaddrs");
1085 a596b957 2022-07-14 tracey
1086 a596b957 2022-07-14 tracey /* First search for IPv4 addresses */
1087 a596b957 2022-07-14 tracey af = AF_INET;
1088 a596b957 2022-07-14 tracey
1089 a596b957 2022-07-14 tracey nextaf:
1090 a596b957 2022-07-14 tracey for (p = ifap; p != NULL && cnt < max; p = p->ifa_next) {
1091 a596b957 2022-07-14 tracey if (p->ifa_addr == NULL ||
1092 a596b957 2022-07-14 tracey p->ifa_addr->sa_family != af ||
1093 a596b957 2022-07-14 tracey (strcmp(s, p->ifa_name) != 0 &&
1094 a596b957 2022-07-14 tracey !is_if_in_group(p->ifa_name, s)))
1095 a596b957 2022-07-14 tracey continue;
1096 a596b957 2022-07-14 tracey if ((h = calloc(1, sizeof(*h))) == NULL)
1097 a596b957 2022-07-14 tracey fatal("calloc");
1098 a596b957 2022-07-14 tracey
1099 a596b957 2022-07-14 tracey if (port)
1100 a596b957 2022-07-14 tracey h->port = port;
1101 a596b957 2022-07-14 tracey if (ifname != NULL) {
1102 a596b957 2022-07-14 tracey if (strlcpy(h->ifname, ifname, sizeof(h->ifname)) >=
1103 a596b957 2022-07-14 tracey sizeof(h->ifname)) {
1104 a596b957 2022-07-14 tracey log_warnx("%s: interface name truncated",
1105 a596b957 2022-07-14 tracey __func__);
1106 a596b957 2022-07-14 tracey free(h);
1107 a596b957 2022-07-14 tracey freeifaddrs(ifap);
1108 a596b957 2022-07-14 tracey return (-1);
1109 a596b957 2022-07-14 tracey }
1110 a596b957 2022-07-14 tracey }
1111 a596b957 2022-07-14 tracey if (ipproto != -1)
1112 a596b957 2022-07-14 tracey h->ipproto = ipproto;
1113 a596b957 2022-07-14 tracey h->ss.ss_family = af;
1114 a596b957 2022-07-14 tracey
1115 a596b957 2022-07-14 tracey if (af == AF_INET) {
1116 86b4b772 2022-07-29 stsp struct sockaddr_in *ra;
1117 a596b957 2022-07-14 tracey sain = (struct sockaddr_in *)&h->ss;
1118 86b4b772 2022-07-29 stsp ra = (struct sockaddr_in *)p->ifa_addr;
1119 86b4b772 2022-07-29 stsp got_sockaddr_inet_init(sain, &ra->sin_addr);
1120 a596b957 2022-07-14 tracey } else {
1121 86b4b772 2022-07-29 stsp struct sockaddr_in6 *ra;
1122 a596b957 2022-07-14 tracey sin6 = (struct sockaddr_in6 *)&h->ss;
1123 86b4b772 2022-07-29 stsp ra = (struct sockaddr_in6 *)p->ifa_addr;
1124 86b4b772 2022-07-29 stsp got_sockaddr_inet6_init(sin6, &ra->sin6_addr,
1125 86b4b772 2022-07-29 stsp ra->sin6_scope_id);
1126 a596b957 2022-07-14 tracey }
1127 a596b957 2022-07-14 tracey
1128 67d8de2a 2022-08-29 stsp if (add_addr(new_srv, h))
1129 67d8de2a 2022-08-29 stsp return -1;
1130 a596b957 2022-07-14 tracey cnt++;
1131 a596b957 2022-07-14 tracey }
1132 a596b957 2022-07-14 tracey if (af == AF_INET) {
1133 a596b957 2022-07-14 tracey /* Next search for IPv6 addresses */
1134 a596b957 2022-07-14 tracey af = AF_INET6;
1135 a596b957 2022-07-14 tracey goto nextaf;
1136 a596b957 2022-07-14 tracey }
1137 a596b957 2022-07-14 tracey
1138 a596b957 2022-07-14 tracey if (cnt > max) {
1139 a596b957 2022-07-14 tracey log_warnx("%s: %s resolves to more than %d hosts", __func__,
1140 a596b957 2022-07-14 tracey s, max);
1141 a596b957 2022-07-14 tracey }
1142 a596b957 2022-07-14 tracey freeifaddrs(ifap);
1143 a596b957 2022-07-14 tracey return (cnt);
1144 a596b957 2022-07-14 tracey }
1145 a596b957 2022-07-14 tracey
1146 a596b957 2022-07-14 tracey int
1147 a596b957 2022-07-14 tracey is_if_in_group(const char *ifname, const char *groupname)
1148 a596b957 2022-07-14 tracey {
1149 a596b957 2022-07-14 tracey unsigned int len;
1150 a596b957 2022-07-14 tracey struct ifgroupreq ifgr;
1151 a596b957 2022-07-14 tracey struct ifg_req *ifg;
1152 a596b957 2022-07-14 tracey int s;
1153 a596b957 2022-07-14 tracey int ret = 0;
1154 a596b957 2022-07-14 tracey
1155 a596b957 2022-07-14 tracey if ((s = socket(AF_INET, SOCK_DGRAM, 0)) == -1)
1156 a596b957 2022-07-14 tracey err(1, "socket");
1157 a596b957 2022-07-14 tracey
1158 a596b957 2022-07-14 tracey memset(&ifgr, 0, sizeof(ifgr));
1159 a596b957 2022-07-14 tracey if (strlcpy(ifgr.ifgr_name, ifname, IFNAMSIZ) >= IFNAMSIZ)
1160 a596b957 2022-07-14 tracey err(1, "IFNAMSIZ");
1161 a596b957 2022-07-14 tracey if (ioctl(s, SIOCGIFGROUP, (caddr_t)&ifgr) == -1) {
1162 a596b957 2022-07-14 tracey if (errno == EINVAL || errno == ENOTTY)
1163 a596b957 2022-07-14 tracey goto end;
1164 a596b957 2022-07-14 tracey err(1, "SIOCGIFGROUP");
1165 a596b957 2022-07-14 tracey }
1166 a596b957 2022-07-14 tracey
1167 a596b957 2022-07-14 tracey len = ifgr.ifgr_len;
1168 a596b957 2022-07-14 tracey ifgr.ifgr_groups = calloc(len / sizeof(struct ifg_req),
1169 a596b957 2022-07-14 tracey sizeof(struct ifg_req));
1170 a596b957 2022-07-14 tracey if (ifgr.ifgr_groups == NULL)
1171 a596b957 2022-07-14 tracey err(1, "getifgroups");
1172 a596b957 2022-07-14 tracey if (ioctl(s, SIOCGIFGROUP, (caddr_t)&ifgr) == -1)
1173 a596b957 2022-07-14 tracey err(1, "SIOCGIFGROUP");
1174 a596b957 2022-07-14 tracey
1175 a596b957 2022-07-14 tracey ifg = ifgr.ifgr_groups;
1176 a596b957 2022-07-14 tracey for (; ifg && len >= sizeof(struct ifg_req); ifg++) {
1177 a596b957 2022-07-14 tracey len -= sizeof(struct ifg_req);
1178 a596b957 2022-07-14 tracey if (strcmp(ifg->ifgrq_group, groupname) == 0) {
1179 a596b957 2022-07-14 tracey ret = 1;
1180 a596b957 2022-07-14 tracey break;
1181 a596b957 2022-07-14 tracey }
1182 a596b957 2022-07-14 tracey }
1183 a596b957 2022-07-14 tracey free(ifgr.ifgr_groups);
1184 a596b957 2022-07-14 tracey
1185 a596b957 2022-07-14 tracey end:
1186 a596b957 2022-07-14 tracey close(s);
1187 a596b957 2022-07-14 tracey return (ret);
1188 a596b957 2022-07-14 tracey }
1189 a596b957 2022-07-14 tracey
1190 a596b957 2022-07-14 tracey int
1191 67d8de2a 2022-08-29 stsp get_addrs(const char *addr, struct server *new_srv, in_port_t port)
1192 a596b957 2022-07-14 tracey {
1193 a596b957 2022-07-14 tracey if (strcmp("", addr) == 0) {
1194 67d8de2a 2022-08-29 stsp if (host("127.0.0.1", new_srv, 1, port, "127.0.0.1",
1195 67d8de2a 2022-08-29 stsp -1) <= 0) {
1196 a596b957 2022-07-14 tracey yyerror("invalid listen ip: %s",
1197 2fb25d87 2022-08-19 stsp "127.0.0.1");
1198 a596b957 2022-07-14 tracey return (-1);
1199 a596b957 2022-07-14 tracey }
1200 67d8de2a 2022-08-29 stsp if (host("::1", new_srv, 1, port, "::1", -1) <= 0) {
1201 2fb25d87 2022-08-19 stsp yyerror("invalid listen ip: %s", "::1");
1202 a596b957 2022-07-14 tracey return (-1);
1203 a596b957 2022-07-14 tracey }
1204 a596b957 2022-07-14 tracey } else {
1205 67d8de2a 2022-08-29 stsp if (host(addr, new_srv, GOTWEBD_MAXIFACE, port, addr,
1206 a596b957 2022-07-14 tracey -1) <= 0) {
1207 a596b957 2022-07-14 tracey yyerror("invalid listen ip: %s", addr);
1208 a596b957 2022-07-14 tracey return (-1);
1209 a596b957 2022-07-14 tracey }
1210 a596b957 2022-07-14 tracey }
1211 a596b957 2022-07-14 tracey return (0);
1212 67d8de2a 2022-08-29 stsp }
1213 67d8de2a 2022-08-29 stsp
1214 67d8de2a 2022-08-29 stsp int
1215 67d8de2a 2022-08-29 stsp addr_dup_check(struct addresslist *al, struct address *h, const char *new_srv,
1216 67d8de2a 2022-08-29 stsp const char *other_srv)
1217 67d8de2a 2022-08-29 stsp {
1218 67d8de2a 2022-08-29 stsp struct address *a;
1219 67d8de2a 2022-08-29 stsp void *ia;
1220 67d8de2a 2022-08-29 stsp char buf[INET6_ADDRSTRLEN];
1221 67d8de2a 2022-08-29 stsp const char *addrstr;
1222 67d8de2a 2022-08-29 stsp
1223 67d8de2a 2022-08-29 stsp TAILQ_FOREACH(a, al, entry) {
1224 67d8de2a 2022-08-29 stsp if (memcmp(&a->ss, &h->ss, sizeof(h->ss)) != 0 ||
1225 67d8de2a 2022-08-29 stsp a->port != h->port)
1226 67d8de2a 2022-08-29 stsp continue;
1227 67d8de2a 2022-08-29 stsp
1228 67d8de2a 2022-08-29 stsp switch (h->ss.ss_family) {
1229 67d8de2a 2022-08-29 stsp case AF_INET:
1230 67d8de2a 2022-08-29 stsp ia = &((struct sockaddr_in *)(&h->ss))->sin_addr;
1231 67d8de2a 2022-08-29 stsp break;
1232 67d8de2a 2022-08-29 stsp case AF_INET6:
1233 67d8de2a 2022-08-29 stsp ia = &((struct sockaddr_in6 *)(&h->ss))->sin6_addr;
1234 67d8de2a 2022-08-29 stsp break;
1235 67d8de2a 2022-08-29 stsp default:
1236 67d8de2a 2022-08-29 stsp yyerror("unknown address family: %d", h->ss.ss_family);
1237 67d8de2a 2022-08-29 stsp return -1;
1238 67d8de2a 2022-08-29 stsp }
1239 67d8de2a 2022-08-29 stsp addrstr = inet_ntop(h->ss.ss_family, ia, buf, sizeof(buf));
1240 67d8de2a 2022-08-29 stsp if (addrstr) {
1241 67d8de2a 2022-08-29 stsp if (other_srv) {
1242 67d8de2a 2022-08-29 stsp yyerror("server %s: duplicate fcgi listen "
1243 67d8de2a 2022-08-29 stsp "address %s:%d, already used by server %s",
1244 67d8de2a 2022-08-29 stsp new_srv, addrstr, h->port, other_srv);
1245 67d8de2a 2022-08-29 stsp } else {
1246 67d8de2a 2022-08-29 stsp log_warnx("server: %s: duplicate fcgi listen "
1247 67d8de2a 2022-08-29 stsp "address %s:%d", new_srv, addrstr, h->port);
1248 67d8de2a 2022-08-29 stsp }
1249 67d8de2a 2022-08-29 stsp } else {
1250 67d8de2a 2022-08-29 stsp if (other_srv) {
1251 67d8de2a 2022-08-29 stsp yyerror("server: %s: duplicate fcgi listen "
1252 67d8de2a 2022-08-29 stsp "address, already used by server %s",
1253 67d8de2a 2022-08-29 stsp new_srv, other_srv);
1254 67d8de2a 2022-08-29 stsp } else {
1255 67d8de2a 2022-08-29 stsp log_warnx("server %s: duplicate fcgi listen "
1256 67d8de2a 2022-08-29 stsp "address", new_srv);
1257 67d8de2a 2022-08-29 stsp }
1258 67d8de2a 2022-08-29 stsp }
1259 67d8de2a 2022-08-29 stsp
1260 67d8de2a 2022-08-29 stsp return -1;
1261 67d8de2a 2022-08-29 stsp }
1262 67d8de2a 2022-08-29 stsp
1263 67d8de2a 2022-08-29 stsp return 0;
1264 a596b957 2022-07-14 tracey }
1265 67d8de2a 2022-08-29 stsp
1266 67d8de2a 2022-08-29 stsp int
1267 67d8de2a 2022-08-29 stsp add_addr(struct server *new_srv, struct address *h)
1268 67d8de2a 2022-08-29 stsp {
1269 67d8de2a 2022-08-29 stsp struct server *srv;
1270 67d8de2a 2022-08-29 stsp
1271 67d8de2a 2022-08-29 stsp /* Address cannot be shared between different servers. */
1272 67d8de2a 2022-08-29 stsp TAILQ_FOREACH(srv, &gotwebd->servers, entry) {
1273 67d8de2a 2022-08-29 stsp if (srv == new_srv)
1274 67d8de2a 2022-08-29 stsp continue;
1275 67d8de2a 2022-08-29 stsp if (addr_dup_check(&srv->al, h, new_srv->name, srv->name))
1276 67d8de2a 2022-08-29 stsp return -1;
1277 67d8de2a 2022-08-29 stsp }
1278 67d8de2a 2022-08-29 stsp
1279 67d8de2a 2022-08-29 stsp /* Tolerate duplicate address lines within the scope of a server. */
1280 67d8de2a 2022-08-29 stsp if (addr_dup_check(&new_srv->al, h, NULL, NULL) == 0)
1281 67d8de2a 2022-08-29 stsp TAILQ_INSERT_TAIL(&new_srv->al, h, entry);
1282 67d8de2a 2022-08-29 stsp else
1283 67d8de2a 2022-08-29 stsp free(h);
1284 67d8de2a 2022-08-29 stsp
1285 67d8de2a 2022-08-29 stsp return 0;
1286 67d8de2a 2022-08-29 stsp }