186b645e7SJes Sorensen /* 286b645e7SJes Sorensen * os-posix.c 386b645e7SJes Sorensen * 486b645e7SJes Sorensen * Copyright (c) 2003-2008 Fabrice Bellard 586b645e7SJes Sorensen * Copyright (c) 2010 Red Hat, Inc. 686b645e7SJes Sorensen * 786b645e7SJes Sorensen * Permission is hereby granted, free of charge, to any person obtaining a copy 886b645e7SJes Sorensen * of this software and associated documentation files (the "Software"), to deal 986b645e7SJes Sorensen * in the Software without restriction, including without limitation the rights 1086b645e7SJes Sorensen * to use, copy, modify, merge, publish, distribute, sublicense, and/or sell 1186b645e7SJes Sorensen * copies of the Software, and to permit persons to whom the Software is 1286b645e7SJes Sorensen * furnished to do so, subject to the following conditions: 1386b645e7SJes Sorensen * 1486b645e7SJes Sorensen * The above copyright notice and this permission notice shall be included in 1586b645e7SJes Sorensen * all copies or substantial portions of the Software. 1686b645e7SJes Sorensen * 1786b645e7SJes Sorensen * THE SOFTWARE IS PROVIDED "AS IS", WITHOUT WARRANTY OF ANY KIND, EXPRESS OR 1886b645e7SJes Sorensen * IMPLIED, INCLUDING BUT NOT LIMITED TO THE WARRANTIES OF MERCHANTABILITY, 1986b645e7SJes Sorensen * FITNESS FOR A PARTICULAR PURPOSE AND NONINFRINGEMENT. IN NO EVENT SHALL 2086b645e7SJes Sorensen * THE AUTHORS OR COPYRIGHT HOLDERS BE LIABLE FOR ANY CLAIM, DAMAGES OR OTHER 2186b645e7SJes Sorensen * LIABILITY, WHETHER IN AN ACTION OF CONTRACT, TORT OR OTHERWISE, ARISING FROM, 2286b645e7SJes Sorensen * OUT OF OR IN CONNECTION WITH THE SOFTWARE OR THE USE OR OTHER DEALINGS IN 2386b645e7SJes Sorensen * THE SOFTWARE. 2486b645e7SJes Sorensen */ 2586b645e7SJes Sorensen 2686b645e7SJes Sorensen #include <unistd.h> 2786b645e7SJes Sorensen #include <fcntl.h> 2886b645e7SJes Sorensen #include <signal.h> 298d963e6aSJes Sorensen #include <sys/types.h> 308d963e6aSJes Sorensen #include <sys/wait.h> 3169e8b162SJes Sorensen /*needed for MAP_POPULATE before including qemu-options.h */ 3269e8b162SJes Sorensen #include <sys/mman.h> 338847cfe8SJes Sorensen #include <pwd.h> 34cc4662f9SStefan Hajnoczi #include <grp.h> 356170540bSJes Sorensen #include <libgen.h> 3686b645e7SJes Sorensen 3786b645e7SJes Sorensen /* Needed early for CONFIG_BSD etc. */ 3886b645e7SJes Sorensen #include "config-host.h" 399c17d615SPaolo Bonzini #include "sysemu/sysemu.h" 4059a5264bSJes Sorensen #include "net/slirp.h" 4159a5264bSJes Sorensen #include "qemu-options.h" 42*a59629fcSPaolo Bonzini #include "qemu/rcu.h" 4386b645e7SJes Sorensen 44ce798cf2SJes Sorensen #ifdef CONFIG_LINUX 45ce798cf2SJes Sorensen #include <sys/prctl.h> 46949d31e6SJes Sorensen #endif 47949d31e6SJes Sorensen 488847cfe8SJes Sorensen static struct passwd *user_pwd; 490766379dSJes Sorensen static const char *chroot_dir; 50eb505be1SJes Sorensen static int daemonize; 510be5e436SMichael Tokarev static int daemon_pipe; 528847cfe8SJes Sorensen 53fe98ac14SJes Sorensen void os_setup_early_signal_handling(void) 5486b645e7SJes Sorensen { 5586b645e7SJes Sorensen struct sigaction act; 5686b645e7SJes Sorensen sigfillset(&act.sa_mask); 5786b645e7SJes Sorensen act.sa_flags = 0; 5886b645e7SJes Sorensen act.sa_handler = SIG_IGN; 5986b645e7SJes Sorensen sigaction(SIGPIPE, &act, NULL); 6086b645e7SJes Sorensen } 618d963e6aSJes Sorensen 62f64622c4SGleb Natapov static void termsig_handler(int signal, siginfo_t *info, void *c) 638d963e6aSJes Sorensen { 64f64622c4SGleb Natapov qemu_system_killed(info->si_signo, info->si_pid); 658d963e6aSJes Sorensen } 668d963e6aSJes Sorensen 678d963e6aSJes Sorensen void os_setup_signal_handling(void) 688d963e6aSJes Sorensen { 698d963e6aSJes Sorensen struct sigaction act; 708d963e6aSJes Sorensen 718d963e6aSJes Sorensen memset(&act, 0, sizeof(act)); 72f64622c4SGleb Natapov act.sa_sigaction = termsig_handler; 73f64622c4SGleb Natapov act.sa_flags = SA_SIGINFO; 748d963e6aSJes Sorensen sigaction(SIGINT, &act, NULL); 758d963e6aSJes Sorensen sigaction(SIGHUP, &act, NULL); 768d963e6aSJes Sorensen sigaction(SIGTERM, &act, NULL); 778d963e6aSJes Sorensen } 786170540bSJes Sorensen 796170540bSJes Sorensen /* Find a likely location for support files using the location of the binary. 806170540bSJes Sorensen For installed binaries this will be "$bindir/../share/qemu". When 816170540bSJes Sorensen running from the build tree this will be "$bindir/../pc-bios". */ 826170540bSJes Sorensen #define SHARE_SUFFIX "/share/qemu" 836170540bSJes Sorensen #define BUILD_SUFFIX "/pc-bios" 8410f5bff6SFam Zheng char *os_find_datadir(void) 856170540bSJes Sorensen { 8610f5bff6SFam Zheng char *dir, *exec_dir; 876170540bSJes Sorensen char *res; 886170540bSJes Sorensen size_t max_len; 896170540bSJes Sorensen 9010f5bff6SFam Zheng exec_dir = qemu_get_exec_dir(); 9110f5bff6SFam Zheng if (exec_dir == NULL) { 926170540bSJes Sorensen return NULL; 936170540bSJes Sorensen } 9410f5bff6SFam Zheng dir = dirname(exec_dir); 956170540bSJes Sorensen 966170540bSJes Sorensen max_len = strlen(dir) + 976170540bSJes Sorensen MAX(strlen(SHARE_SUFFIX), strlen(BUILD_SUFFIX)) + 1; 987267c094SAnthony Liguori res = g_malloc0(max_len); 996170540bSJes Sorensen snprintf(res, max_len, "%s%s", dir, SHARE_SUFFIX); 1006170540bSJes Sorensen if (access(res, R_OK)) { 1016170540bSJes Sorensen snprintf(res, max_len, "%s%s", dir, BUILD_SUFFIX); 1026170540bSJes Sorensen if (access(res, R_OK)) { 1037267c094SAnthony Liguori g_free(res); 1046170540bSJes Sorensen res = NULL; 1056170540bSJes Sorensen } 1066170540bSJes Sorensen } 1076170540bSJes Sorensen 10810f5bff6SFam Zheng g_free(exec_dir); 1096170540bSJes Sorensen return res; 1106170540bSJes Sorensen } 1116170540bSJes Sorensen #undef SHARE_SUFFIX 1126170540bSJes Sorensen #undef BUILD_SUFFIX 11359a5264bSJes Sorensen 114ce798cf2SJes Sorensen void os_set_proc_name(const char *s) 115ce798cf2SJes Sorensen { 116ce798cf2SJes Sorensen #if defined(PR_SET_NAME) 117ce798cf2SJes Sorensen char name[16]; 118ce798cf2SJes Sorensen if (!s) 119ce798cf2SJes Sorensen return; 1203eadc68eSJim Meyering pstrcpy(name, sizeof(name), s); 121ce798cf2SJes Sorensen /* Could rewrite argv[0] too, but that's a bit more complicated. 122ce798cf2SJes Sorensen This simple way is enough for `top'. */ 123ce798cf2SJes Sorensen if (prctl(PR_SET_NAME, name)) { 124ce798cf2SJes Sorensen perror("unable to change process name"); 125ce798cf2SJes Sorensen exit(1); 126ce798cf2SJes Sorensen } 127ce798cf2SJes Sorensen #else 128ce798cf2SJes Sorensen fprintf(stderr, "Change of process name not supported by your OS\n"); 129ce798cf2SJes Sorensen exit(1); 130ce798cf2SJes Sorensen #endif 131ce798cf2SJes Sorensen } 132ce798cf2SJes Sorensen 13359a5264bSJes Sorensen /* 13459a5264bSJes Sorensen * Parse OS specific command line options. 13559a5264bSJes Sorensen * return 0 if option handled, -1 otherwise 13659a5264bSJes Sorensen */ 13759a5264bSJes Sorensen void os_parse_cmd_args(int index, const char *optarg) 13859a5264bSJes Sorensen { 13959a5264bSJes Sorensen switch (index) { 14059a5264bSJes Sorensen #ifdef CONFIG_SLIRP 14159a5264bSJes Sorensen case QEMU_OPTION_smb: 14259a5264bSJes Sorensen if (net_slirp_smb(optarg) < 0) 14359a5264bSJes Sorensen exit(1); 14459a5264bSJes Sorensen break; 14559a5264bSJes Sorensen #endif 1468847cfe8SJes Sorensen case QEMU_OPTION_runas: 1478847cfe8SJes Sorensen user_pwd = getpwnam(optarg); 1488847cfe8SJes Sorensen if (!user_pwd) { 1498847cfe8SJes Sorensen fprintf(stderr, "User \"%s\" doesn't exist\n", optarg); 1508847cfe8SJes Sorensen exit(1); 1518847cfe8SJes Sorensen } 1528847cfe8SJes Sorensen break; 1530766379dSJes Sorensen case QEMU_OPTION_chroot: 1540766379dSJes Sorensen chroot_dir = optarg; 1550766379dSJes Sorensen break; 156eb505be1SJes Sorensen case QEMU_OPTION_daemonize: 157eb505be1SJes Sorensen daemonize = 1; 158eb505be1SJes Sorensen break; 15970678b82SAnthony Liguori #if defined(CONFIG_LINUX) 16070678b82SAnthony Liguori case QEMU_OPTION_enablefips: 16170678b82SAnthony Liguori fips_set_state(true); 16270678b82SAnthony Liguori break; 16370678b82SAnthony Liguori #endif 16459a5264bSJes Sorensen } 16559a5264bSJes Sorensen } 1668847cfe8SJes Sorensen 167e06eb601SJes Sorensen static void change_process_uid(void) 1688847cfe8SJes Sorensen { 1698847cfe8SJes Sorensen if (user_pwd) { 1708847cfe8SJes Sorensen if (setgid(user_pwd->pw_gid) < 0) { 1718847cfe8SJes Sorensen fprintf(stderr, "Failed to setgid(%d)\n", user_pwd->pw_gid); 1728847cfe8SJes Sorensen exit(1); 1738847cfe8SJes Sorensen } 174cc4662f9SStefan Hajnoczi if (initgroups(user_pwd->pw_name, user_pwd->pw_gid) < 0) { 175cc4662f9SStefan Hajnoczi fprintf(stderr, "Failed to initgroups(\"%s\", %d)\n", 176cc4662f9SStefan Hajnoczi user_pwd->pw_name, user_pwd->pw_gid); 177cc4662f9SStefan Hajnoczi exit(1); 178cc4662f9SStefan Hajnoczi } 1798847cfe8SJes Sorensen if (setuid(user_pwd->pw_uid) < 0) { 1808847cfe8SJes Sorensen fprintf(stderr, "Failed to setuid(%d)\n", user_pwd->pw_uid); 1818847cfe8SJes Sorensen exit(1); 1828847cfe8SJes Sorensen } 1838847cfe8SJes Sorensen if (setuid(0) != -1) { 1848847cfe8SJes Sorensen fprintf(stderr, "Dropping privileges failed\n"); 1858847cfe8SJes Sorensen exit(1); 1868847cfe8SJes Sorensen } 1878847cfe8SJes Sorensen } 1888847cfe8SJes Sorensen } 1890766379dSJes Sorensen 190e06eb601SJes Sorensen static void change_root(void) 1910766379dSJes Sorensen { 1920766379dSJes Sorensen if (chroot_dir) { 1930766379dSJes Sorensen if (chroot(chroot_dir) < 0) { 1940766379dSJes Sorensen fprintf(stderr, "chroot failed\n"); 1950766379dSJes Sorensen exit(1); 1960766379dSJes Sorensen } 1970766379dSJes Sorensen if (chdir("/")) { 1980766379dSJes Sorensen perror("not able to chdir to /"); 1990766379dSJes Sorensen exit(1); 2000766379dSJes Sorensen } 2010766379dSJes Sorensen } 2020766379dSJes Sorensen 2030766379dSJes Sorensen } 204eb505be1SJes Sorensen 205eb505be1SJes Sorensen void os_daemonize(void) 206eb505be1SJes Sorensen { 207eb505be1SJes Sorensen if (daemonize) { 208eb505be1SJes Sorensen pid_t pid; 2090be5e436SMichael Tokarev int fds[2]; 210eb505be1SJes Sorensen 21163ce8e15SGonglei if (pipe(fds) == -1) { 212eb505be1SJes Sorensen exit(1); 21363ce8e15SGonglei } 214eb505be1SJes Sorensen 215eb505be1SJes Sorensen pid = fork(); 216eb505be1SJes Sorensen if (pid > 0) { 217eb505be1SJes Sorensen uint8_t status; 218eb505be1SJes Sorensen ssize_t len; 219eb505be1SJes Sorensen 220eb505be1SJes Sorensen close(fds[1]); 221eb505be1SJes Sorensen 222ccea25f1SMichael Tokarev do { 223eb505be1SJes Sorensen len = read(fds[0], &status, 1); 224ccea25f1SMichael Tokarev } while (len < 0 && errno == EINTR); 225fee78fd6SMichael Tokarev 226fee78fd6SMichael Tokarev /* only exit successfully if our child actually wrote 227fee78fd6SMichael Tokarev * a one-byte zero to our pipe, upon successful init */ 228fee78fd6SMichael Tokarev exit(len == 1 && status == 0 ? 0 : 1); 229fee78fd6SMichael Tokarev 23063ce8e15SGonglei } else if (pid < 0) { 231eb505be1SJes Sorensen exit(1); 23263ce8e15SGonglei } 233eb505be1SJes Sorensen 234eb505be1SJes Sorensen close(fds[0]); 2350be5e436SMichael Tokarev daemon_pipe = fds[1]; 2360be5e436SMichael Tokarev qemu_set_cloexec(daemon_pipe); 237eb505be1SJes Sorensen 238eb505be1SJes Sorensen setsid(); 239eb505be1SJes Sorensen 240eb505be1SJes Sorensen pid = fork(); 24163ce8e15SGonglei if (pid > 0) { 242eb505be1SJes Sorensen exit(0); 24363ce8e15SGonglei } else if (pid < 0) { 244eb505be1SJes Sorensen exit(1); 24563ce8e15SGonglei } 246eb505be1SJes Sorensen umask(027); 247eb505be1SJes Sorensen 248eb505be1SJes Sorensen signal(SIGTSTP, SIG_IGN); 249eb505be1SJes Sorensen signal(SIGTTOU, SIG_IGN); 250eb505be1SJes Sorensen signal(SIGTTIN, SIG_IGN); 251*a59629fcSPaolo Bonzini rcu_after_fork(); 252eb505be1SJes Sorensen } 253eb505be1SJes Sorensen } 254eb505be1SJes Sorensen 255eb505be1SJes Sorensen void os_setup_post(void) 256eb505be1SJes Sorensen { 257eb505be1SJes Sorensen int fd = 0; 258eb505be1SJes Sorensen 259eb505be1SJes Sorensen if (daemonize) { 260eb505be1SJes Sorensen if (chdir("/")) { 261eb505be1SJes Sorensen perror("not able to chdir to /"); 262eb505be1SJes Sorensen exit(1); 263eb505be1SJes Sorensen } 264eb505be1SJes Sorensen TFR(fd = qemu_open("/dev/null", O_RDWR)); 26563ce8e15SGonglei if (fd == -1) { 266eb505be1SJes Sorensen exit(1); 267eb505be1SJes Sorensen } 26863ce8e15SGonglei } 269eb505be1SJes Sorensen 270e06eb601SJes Sorensen change_root(); 271e06eb601SJes Sorensen change_process_uid(); 272eb505be1SJes Sorensen 273eb505be1SJes Sorensen if (daemonize) { 27425cec2b8SMichael Tokarev uint8_t status = 0; 27525cec2b8SMichael Tokarev ssize_t len; 27625cec2b8SMichael Tokarev 277eb505be1SJes Sorensen dup2(fd, 0); 278eb505be1SJes Sorensen dup2(fd, 1); 279eb505be1SJes Sorensen dup2(fd, 2); 280eb505be1SJes Sorensen 281eb505be1SJes Sorensen close(fd); 28225cec2b8SMichael Tokarev 28325cec2b8SMichael Tokarev do { 28425cec2b8SMichael Tokarev len = write(daemon_pipe, &status, 1); 28525cec2b8SMichael Tokarev } while (len < 0 && errno == EINTR); 28625cec2b8SMichael Tokarev if (len != 1) { 28725cec2b8SMichael Tokarev exit(1); 28825cec2b8SMichael Tokarev } 289eb505be1SJes Sorensen } 290eb505be1SJes Sorensen } 291eb505be1SJes Sorensen 2929156d763SJes Sorensen void os_set_line_buffering(void) 2939156d763SJes Sorensen { 2949156d763SJes Sorensen setvbuf(stdout, NULL, _IOLBF, 0); 2959156d763SJes Sorensen } 296949d31e6SJes Sorensen 297bc4a957cSJes Sorensen int qemu_create_pidfile(const char *filename) 298bc4a957cSJes Sorensen { 299bc4a957cSJes Sorensen char buffer[128]; 300bc4a957cSJes Sorensen int len; 301bc4a957cSJes Sorensen int fd; 302bc4a957cSJes Sorensen 303bc4a957cSJes Sorensen fd = qemu_open(filename, O_RDWR | O_CREAT, 0600); 304bc4a957cSJes Sorensen if (fd == -1) { 305bc4a957cSJes Sorensen return -1; 306bc4a957cSJes Sorensen } 307bc4a957cSJes Sorensen if (lockf(fd, F_TLOCK, 0) == -1) { 3081bbd1592SMarkus Armbruster close(fd); 309bc4a957cSJes Sorensen return -1; 310bc4a957cSJes Sorensen } 311953ffe0fSAndreas Färber len = snprintf(buffer, sizeof(buffer), FMT_pid "\n", getpid()); 312bc4a957cSJes Sorensen if (write(fd, buffer, len) != len) { 3131bbd1592SMarkus Armbruster close(fd); 314bc4a957cSJes Sorensen return -1; 315bc4a957cSJes Sorensen } 316bc4a957cSJes Sorensen 31793dd748bSLaszlo Ersek /* keep pidfile open & locked forever */ 318bc4a957cSJes Sorensen return 0; 319bc4a957cSJes Sorensen } 320995ee2bfSHitoshi Mitake 321995ee2bfSHitoshi Mitake bool is_daemonized(void) 322995ee2bfSHitoshi Mitake { 323995ee2bfSHitoshi Mitake return daemonize; 324995ee2bfSHitoshi Mitake } 325888a6bc6SSatoru Moriya 326888a6bc6SSatoru Moriya int os_mlock(void) 327888a6bc6SSatoru Moriya { 328888a6bc6SSatoru Moriya int ret = 0; 329888a6bc6SSatoru Moriya 330888a6bc6SSatoru Moriya ret = mlockall(MCL_CURRENT | MCL_FUTURE); 331888a6bc6SSatoru Moriya if (ret < 0) { 332888a6bc6SSatoru Moriya perror("mlockall"); 333888a6bc6SSatoru Moriya } 334888a6bc6SSatoru Moriya 335888a6bc6SSatoru Moriya return ret; 336888a6bc6SSatoru Moriya } 337