blob: 11acd67c2b954a2439e82dbfbbd05b2d0108359b [file] [log] [blame]
Radek Krejci469aab82012-07-22 18:42:20 +02001/*!
2 * \file mod_netconf.c
3 * \brief NETCONF Apache modul for Netopeer
4 * \author Tomas Cejka <cejkat@cesnet.cz>
5 * \author Radek Krejci <rkrejci@cesnet.cz>
6 * \date 2011
7 * \date 2012
8 */
9/*
10 * Copyright (C) 2011-2012 CESNET
11 *
12 * LICENSE TERMS
13 *
14 * Redistribution and use in source and binary forms, with or without
15 * modification, are permitted provided that the following conditions
16 * are met:
17 * 1. Redistributions of source code must retain the above copyright
18 * notice, this list of conditions and the following disclaimer.
19 * 2. Redistributions in binary form must reproduce the above copyright
20 * notice, this list of conditions and the following disclaimer in
21 * the documentation and/or other materials provided with the
22 * distribution.
23 * 3. Neither the name of the Company nor the names of its contributors
24 * may be used to endorse or promote products derived from this
25 * software without specific prior written permission.
26 *
27 * ALTERNATIVELY, provided that this notice is retained in full, this
28 * product may be distributed under the terms of the GNU General Public
29 * License (GPL) version 2 or later, in which case the provisions
30 * of the GPL apply INSTEAD OF those given above.
31 *
32 * This software is provided ``as is'', and any express or implied
33 * warranties, including, but not limited to, the implied warranties of
34 * merchantability and fitness for a particular purpose are disclaimed.
35 * In no event shall the company or contributors be liable for any
36 * direct, indirect, incidental, special, exemplary, or consequential
37 * damages (including, but not limited to, procurement of substitute
38 * goods or services; loss of use, data, or profits; or business
39 * interruption) however caused and on any theory of liability, whether
40 * in contract, strict liability, or tort (including negligence or
41 * otherwise) arising in any way out of the use of this software, even
42 * if advised of the possibility of such damage.
43 *
44 */
45
Radek Krejci7b4ddd02012-07-30 08:09:58 +020046#include <unistd.h>
47#include <poll.h>
Radek Krejci469aab82012-07-22 18:42:20 +020048#include <sys/types.h>
49#include <sys/socket.h>
50#include <sys/un.h>
Radek Krejci7b4ddd02012-07-30 08:09:58 +020051
52#include <unixd.h>
53#include <httpd.h>
54#include <http_log.h>
55#include <http_config.h>
56
57#include <apr_sha1.h>
58#include <apr_hash.h>
59#include <apr_signal.h>
60#include <apr_strings.h>
Radek Krejci469aab82012-07-22 18:42:20 +020061
Radek Krejci8fd1f5e2012-07-24 17:33:36 +020062#include <json/json.h>
63
Radek Krejci469aab82012-07-22 18:42:20 +020064#include <libnetconf.h>
Radek Krejci7b4ddd02012-07-30 08:09:58 +020065
Radek Krejci469aab82012-07-22 18:42:20 +020066
67#define MAX_PROCS 5
Radek Krejci6cb08982012-07-25 18:01:06 +020068#define SOCKET_FILENAME "/tmp/mod_netconf.sock"
Radek Krejci469aab82012-07-22 18:42:20 +020069#define MAX_SOCKET_CL 10
70#define BUFFER_SIZE 4096
71
72/* sleep in master process for non-blocking socket reading */
73#define SLEEP_TIME 200
74
75#ifndef offsetof
76#define offsetof(type, member) ((size_t) ((type *) 0)->member)
77#endif
78
79struct timeval timeout = { 1, 0 };
80
Radek Krejci8fd1f5e2012-07-24 17:33:36 +020081typedef enum MSG_TYPE {
82 REPLY_OK,
83 REPLY_DATA,
84 REPLY_ERROR,
Radek Krejci9e04c7b2012-07-26 15:54:25 +020085 REPLY_INFO,
Radek Krejci8fd1f5e2012-07-24 17:33:36 +020086 MSG_CONNECT,
87 MSG_DISCONNECT,
88 MSG_GET,
89 MSG_GETCONFIG,
90 MSG_EDITCONFIG,
91 MSG_COPYCONFIG,
92 MSG_DELETECONFIG,
93 MSG_LOCK,
94 MSG_UNLOCK,
Radek Krejci9e04c7b2012-07-26 15:54:25 +020095 MSG_KILL,
96 MSG_INFO
Radek Krejci8fd1f5e2012-07-24 17:33:36 +020097} MSG_TYPE;
98
Radek Krejci469aab82012-07-22 18:42:20 +020099#define MSG_OK 0
100#define MSG_OPEN 1
101#define MSG_DATA 2
102#define MSG_CLOSE 3
103#define MSG_ERROR 4
104#define MSG_UNKNOWN 5
105
Radek Krejci469aab82012-07-22 18:42:20 +0200106module AP_MODULE_DECLARE_DATA netconf_module;
107
108typedef struct {
Radek Krejci469aab82012-07-22 18:42:20 +0200109 apr_pool_t *pool;
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200110 apr_proc_t *forkproc;
111 char* sockname;
Radek Krejcif23850c2012-07-23 16:14:17 +0200112} mod_netconf_cfg;
Radek Krejci469aab82012-07-22 18:42:20 +0200113
114volatile int isterminated = 0;
115
116static char* password;
117
118
119static void signal_handler(int sign)
120{
121 switch (sign) {
122 case SIGTERM:
123 isterminated = 1;
Radek Krejci469aab82012-07-22 18:42:20 +0200124 break;
125 }
126}
127
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200128static char* gen_ncsession_hash( const char* hostname, const char* port, const char* sid)
Radek Krejci469aab82012-07-22 18:42:20 +0200129{
Radek Krejcif23850c2012-07-23 16:14:17 +0200130 unsigned char hash_raw[APR_SHA1_DIGESTSIZE];
131 int i;
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200132 char* hash;
Radek Krejcif23850c2012-07-23 16:14:17 +0200133
Radek Krejci469aab82012-07-22 18:42:20 +0200134 apr_sha1_ctx_t sha1_ctx;
135 apr_sha1_init(&sha1_ctx);
136 apr_sha1_update(&sha1_ctx, hostname, strlen(hostname));
137 apr_sha1_update(&sha1_ctx, port, strlen(port));
138 apr_sha1_update(&sha1_ctx, sid, strlen(sid));
Radek Krejcif23850c2012-07-23 16:14:17 +0200139 apr_sha1_final(hash_raw, &sha1_ctx);
Radek Krejci469aab82012-07-22 18:42:20 +0200140
Radek Krejcif23850c2012-07-23 16:14:17 +0200141 /* convert binary hash into hex string, which is printable */
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200142 hash = malloc(sizeof(char) * ((2*APR_SHA1_DIGESTSIZE)+1));
Radek Krejcif23850c2012-07-23 16:14:17 +0200143 for (i = 0; i < APR_SHA1_DIGESTSIZE; i++) {
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200144 snprintf(hash + (2*i), 3, "%02x", hash_raw[i]);
Radek Krejcif23850c2012-07-23 16:14:17 +0200145 }
146 //hash[2*APR_SHA1_DIGESTSIZE] = 0;
Radek Krejci469aab82012-07-22 18:42:20 +0200147
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200148 return (hash);
Radek Krejci469aab82012-07-22 18:42:20 +0200149}
150
151int netconf_callback_ssh_hostkey_check (const char* hostname, int keytype, const char* fingerprint)
152{
153 /* always approve */
154 return (EXIT_SUCCESS);
155}
156
157char* netconf_callback_sshauth_password (const char* username, const char* hostname)
158{
159 char* buf;
160
161 buf = malloc ((strlen(password) + 1) * sizeof(char));
162 apr_cpystrn(buf, password, strlen(password) + 1);
163
164 return (buf);
165}
166
167void netconf_callback_sshauth_interactive (const char* name,
168 int name_len,
169 const char* instruction,
170 int instruction_len,
171 int num_prompts,
172 const LIBSSH2_USERAUTH_KBDINT_PROMPT* prompts,
173 LIBSSH2_USERAUTH_KBDINT_RESPONSE* responses,
174 void** abstract)
175{
176 int i;
177
178 for (i=0; i<num_prompts; i++) {
179 responses[i].text = malloc ((strlen(password) + 1) * sizeof(char));
180 apr_cpystrn(responses[i].text, password, strlen(password) + 1);
181 responses[i].length = strlen(responses[i].text) + 1;
182 }
183
184 return;
185}
186
Radek Krejcic11fd862012-07-26 12:41:21 +0200187static json_object *err_reply = NULL;
188void netconf_callback_error_process(const char* tag,
189 const char* type,
190 const char* severity,
191 const char* apptag,
192 const char* path,
193 const char* message,
194 const char* attribute,
195 const char* element,
196 const char* ns,
197 const char* sid)
198{
199 err_reply = json_object_new_object();
200 json_object_object_add(err_reply, "type", json_object_new_int(REPLY_ERROR));
201 if (tag) json_object_object_add(err_reply, "error-tag", json_object_new_string(tag));
202 if (type) json_object_object_add(err_reply, "error-type", json_object_new_string(type));
203 if (severity) json_object_object_add(err_reply, "error-severity", json_object_new_string(severity));
204 if (apptag) json_object_object_add(err_reply, "error-app-tag", json_object_new_string(apptag));
205 if (path) json_object_object_add(err_reply, "error-path", json_object_new_string(path));
206 if (message) json_object_object_add(err_reply, "error-message", json_object_new_string(message));
207 if (attribute) json_object_object_add(err_reply, "bad-attribute", json_object_new_string(attribute));
208 if (element) json_object_object_add(err_reply, "bad-element", json_object_new_string(element));
209 if (ns) json_object_object_add(err_reply, "bad-namespace", json_object_new_string(ns));
210 if (sid) json_object_object_add(err_reply, "session-id", json_object_new_string(sid));
211}
212
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200213static char* netconf_connect(server_rec* server, apr_pool_t* pool, apr_hash_t* conns, const char* host, const char* port, const char* user, const char* pass)
Radek Krejci469aab82012-07-22 18:42:20 +0200214{
Radek Krejci469aab82012-07-22 18:42:20 +0200215 struct nc_session* session;
Radek Krejcif23850c2012-07-23 16:14:17 +0200216 char *session_key;
Radek Krejci469aab82012-07-22 18:42:20 +0200217
218 /* connect to the requested NETCONF server */
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200219 password = (char*)pass;
220 session = nc_session_connect(host, (unsigned short) atoi (port), user, NULL);
Radek Krejci469aab82012-07-22 18:42:20 +0200221
222 /* if connected successful, add session to the list */
223 if (session != NULL) {
224 /* generate hash for the session */
Radek Krejcic11fd862012-07-26 12:41:21 +0200225 session_key = gen_ncsession_hash(
226 (host==NULL) ? "localhost" : host,
227 (port==NULL) ? "830" : port,
Radek Krejcia282bed2012-07-27 14:43:45 +0200228 nc_session_get_id(session));
Radek Krejcif23850c2012-07-23 16:14:17 +0200229 apr_hash_set(conns, apr_pstrdup(pool, session_key), APR_HASH_KEY_STRING, (void *) session);
Radek Krejci469aab82012-07-22 18:42:20 +0200230 ap_log_error(APLOG_MARK, APLOG_NOTICE, 0, server, "NETCONF session established");
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200231 return (session_key);
Radek Krejci469aab82012-07-22 18:42:20 +0200232 } else {
233 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "Connection could not be established");
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200234 return (NULL);
Radek Krejci469aab82012-07-22 18:42:20 +0200235 }
236
Radek Krejci469aab82012-07-22 18:42:20 +0200237}
238
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200239static int netconf_close(server_rec* server, apr_hash_t* conns, char* session_key)
Radek Krejci469aab82012-07-22 18:42:20 +0200240{
241 struct nc_session *ns = NULL;
Radek Krejci469aab82012-07-22 18:42:20 +0200242
Radek Krejcif23850c2012-07-23 16:14:17 +0200243 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "Key in hash to get: %s", session_key);
Radek Krejci469aab82012-07-22 18:42:20 +0200244 ns = (struct nc_session *)apr_hash_get(conns, session_key, APR_HASH_KEY_STRING);
245 if (ns != NULL) {
246 nc_session_close (ns, "NETCONF session closed by client");
247 nc_session_free (ns);
248 ns = NULL;
249
250 /* remove session from the active sessions list */
251 apr_hash_set(conns, session_key, APR_HASH_KEY_STRING, NULL);
252 ap_log_error(APLOG_MARK, APLOG_NOTICE, 0, server, "NETCONF session closed");
Radek Krejcif23850c2012-07-23 16:14:17 +0200253
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200254 return (EXIT_SUCCESS);
Radek Krejci469aab82012-07-22 18:42:20 +0200255 } else {
256 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "Unknown session to close");
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200257 return (EXIT_FAILURE);
Radek Krejci469aab82012-07-22 18:42:20 +0200258 }
259}
260
Radek Krejci8e4632a2012-07-26 13:40:34 +0200261static int netconf_op(server_rec* server, apr_hash_t* conns, char* session_key, nc_rpc* rpc)
Radek Krejci469aab82012-07-22 18:42:20 +0200262{
263 struct nc_session *session = NULL;
Radek Krejci035bf4e2012-07-25 10:59:09 +0200264 nc_reply* reply;
265 int retval = EXIT_SUCCESS;
266
Radek Krejci8e4632a2012-07-26 13:40:34 +0200267 /* check requests */
268 if (rpc == NULL) {
269 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: rpc is not created");
270 return (EXIT_FAILURE);
271 }
272
273 /* get session where send the RPC */
Radek Krejci035bf4e2012-07-25 10:59:09 +0200274 session = (struct nc_session *)apr_hash_get(conns, session_key, APR_HASH_KEY_STRING);
275 if (session != NULL) {
Radek Krejci035bf4e2012-07-25 10:59:09 +0200276 /* send the request and get the reply */
277 nc_session_send_rpc (session, rpc);
Radek Krejci035bf4e2012-07-25 10:59:09 +0200278 if (nc_session_recv_reply (session, &reply) == 0) {
Radek Krejci035bf4e2012-07-25 10:59:09 +0200279 if (nc_session_get_status(session) != NC_SESSION_STATUS_WORKING) {
Radek Krejci035bf4e2012-07-25 10:59:09 +0200280 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: receiving rpc-reply failed");
Radek Krejci035bf4e2012-07-25 10:59:09 +0200281 netconf_close(server, conns, session_key);
Radek Krejci035bf4e2012-07-25 10:59:09 +0200282 return (EXIT_FAILURE);
283 }
284
285 /* there is error handled by callback */
286 return (EXIT_FAILURE);
287 }
Radek Krejci035bf4e2012-07-25 10:59:09 +0200288
289 switch (nc_reply_get_type (reply)) {
290 case NC_REPLY_OK:
291 retval = EXIT_SUCCESS;
292 break;
293 default:
294 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: unexpected rpc-reply");
295 retval = EXIT_FAILURE;
296 break;
297 }
298 nc_reply_free(reply);
299 return (retval);
300 } else {
301 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "Unknown session to process.");
302 return (EXIT_FAILURE);
303 }
304}
Radek Krejci8e4632a2012-07-26 13:40:34 +0200305static char* netconf_opdata(server_rec* server, apr_hash_t* conns, char* session_key, nc_rpc* rpc)
306{
307 struct nc_session *session = NULL;
308 nc_reply* reply;
309 char* data;
310
311 /* check requests */
312 if (rpc == NULL) {
313 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: rpc is not created");
314 return (NULL);
315 }
316
317 /* get session where send the RPC */
318 session = (struct nc_session *)apr_hash_get(conns, session_key, APR_HASH_KEY_STRING);
319 if (session != NULL) {
320 /* send the request and get the reply */
321 nc_session_send_rpc (session, rpc);
322 if (nc_session_recv_reply (session, &reply) == 0) {
323 nc_rpc_free (rpc);
324 if (nc_session_get_status(session) != NC_SESSION_STATUS_WORKING) {
325 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: receiving rpc-reply failed");
326 netconf_close(server, conns, session_key);
327 return (NULL);
328 }
329
330 /* there is error handled by callback */
331 return (NULL);
332 }
333 nc_rpc_free (rpc);
334
335 switch (nc_reply_get_type (reply)) {
336 case NC_REPLY_DATA:
337 if ((data = nc_reply_get_data (reply)) == NULL) {
338 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: no data from reply");
339 return (NULL);
340 }
341 break;
342 default:
343 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: unexpected rpc-reply");
344 return (NULL);
345 }
346 nc_reply_free(reply);
347
348 return (data);
349 } else {
350 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "Unknown session to process.");
351 return (NULL);
352 }
353}
354
355static char* netconf_getconfig(server_rec* server, apr_hash_t* conns, char* session_key, NC_DATASTORE source, const char* filter)
356{
357 nc_rpc* rpc;
358 struct nc_filter *f = NULL;
359 char* data = NULL;
360
361 /* create filter if set */
362 if (filter != NULL) {
363 f = nc_filter_new(NC_FILTER_SUBTREE, filter);
364 }
365
366 /* create requests */
367 rpc = nc_rpc_getconfig (source, f);
368 nc_filter_free(f);
369 if (rpc == NULL) {
370 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: creating rpc request failed");
371 return (NULL);
372 }
373
374 data = netconf_opdata(server, conns, session_key, rpc);
375 nc_rpc_free (rpc);
376 return (data);
377}
378
379static char* netconf_get(server_rec* server, apr_hash_t* conns, char* session_key, const char* filter)
380{
381 nc_rpc* rpc;
382 struct nc_filter *f = NULL;
383 char* data = NULL;
384
385 /* create filter if set */
386 if (filter != NULL) {
387 f = nc_filter_new(NC_FILTER_SUBTREE, filter);
388 }
389
390 /* create requests */
391 rpc = nc_rpc_get (f);
392 nc_filter_free(f);
393 if (rpc == NULL) {
394 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: creating rpc request failed");
395 return (NULL);
396 }
397
398 data = netconf_opdata(server, conns, session_key, rpc);
399 nc_rpc_free (rpc);
400 return (data);
401}
402
403static int netconf_copyconfig(server_rec* server, apr_hash_t* conns, char* session_key, NC_DATASTORE source, NC_DATASTORE target, const char* config)
404{
405 nc_rpc* rpc;
406 int retval = EXIT_SUCCESS;
407
408 /* create requests */
409 rpc = nc_rpc_copyconfig(source, target, config);
410 if (rpc == NULL) {
411 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: creating rpc request failed");
412 return (EXIT_FAILURE);
413 }
414
415 retval = netconf_op(server, conns, session_key, rpc);
416 nc_rpc_free (rpc);
417 return (retval);
418}
Radek Krejci035bf4e2012-07-25 10:59:09 +0200419
Radek Krejci62ab34b2012-07-26 13:42:05 +0200420static int netconf_editconfig(server_rec* server, apr_hash_t* conns, char* session_key, NC_DATASTORE target, NC_EDIT_DEFOP_TYPE defop, NC_EDIT_ERROPT_TYPE erropt, const char* config)
421{
422 nc_rpc* rpc;
423 int retval = EXIT_SUCCESS;
424
425 /* create requests */
426 rpc = nc_rpc_editconfig(target, defop, erropt, config);
427 if (rpc == NULL) {
428 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: creating rpc request failed");
429 return (EXIT_FAILURE);
430 }
431
432 retval = netconf_op(server, conns, session_key, rpc);
433 nc_rpc_free (rpc);
434 return (retval);
435}
436
Radek Krejcie34d3eb2012-07-26 15:05:53 +0200437static int netconf_killsession(server_rec* server, apr_hash_t* conns, char* session_key, const char* sid)
438{
439 nc_rpc* rpc;
440 int retval = EXIT_SUCCESS;
441
442 /* create requests */
443 rpc = nc_rpc_killsession(sid);
444 if (rpc == NULL) {
445 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: creating rpc request failed");
446 return (EXIT_FAILURE);
447 }
448
449 retval = netconf_op(server, conns, session_key, rpc);
450 nc_rpc_free (rpc);
451 return (retval);
452}
453
Radek Krejci5cd7d422012-07-26 14:50:29 +0200454static int netconf_onlytargetop(server_rec* server, apr_hash_t* conns, char* session_key, NC_DATASTORE target, nc_rpc* (*op_func)(NC_DATASTORE))
Radek Krejci2f318372012-07-26 14:22:35 +0200455{
456 nc_rpc* rpc;
457 int retval = EXIT_SUCCESS;
458
459 /* create requests */
Radek Krejci5cd7d422012-07-26 14:50:29 +0200460 rpc = op_func(target);
Radek Krejci2f318372012-07-26 14:22:35 +0200461 if (rpc == NULL) {
462 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "mod_netconf: creating rpc request failed");
463 return (EXIT_FAILURE);
464 }
465
466 retval = netconf_op(server, conns, session_key, rpc);
467 nc_rpc_free (rpc);
468 return (retval);
469}
470
Radek Krejci5cd7d422012-07-26 14:50:29 +0200471static int netconf_deleteconfig(server_rec* server, apr_hash_t* conns, char* session_key, NC_DATASTORE target)
472{
473 return (netconf_onlytargetop(server, conns, session_key, target, nc_rpc_deleteconfig));
474}
475
476static int netconf_lock(server_rec* server, apr_hash_t* conns, char* session_key, NC_DATASTORE target)
477{
478 return (netconf_onlytargetop(server, conns, session_key, target, nc_rpc_lock));
479}
480
481static int netconf_unlock(server_rec* server, apr_hash_t* conns, char* session_key, NC_DATASTORE target)
482{
483 return (netconf_onlytargetop(server, conns, session_key, target, nc_rpc_unlock));
484}
485
Radek Krejci469aab82012-07-22 18:42:20 +0200486server_rec* clb_print_server;
487int clb_print(const char* msg)
488{
489 ap_log_error(APLOG_MARK, APLOG_INFO, 0, clb_print_server, msg);
490 return (0);
491}
492
Radek Krejcif23850c2012-07-23 16:14:17 +0200493/*
494 * This is actually implementation of NETCONF client
495 * - requests are received from UNIX socket in the predefined format
496 * - results are replied through the same way
497 * - the daemon run as a separate process, but it is started and stopped
498 * automatically by Apache.
499 *
500 */
Radek Krejci469aab82012-07-22 18:42:20 +0200501static void forked_proc(apr_pool_t * pool, server_rec * server)
502{
503 struct sockaddr_un local, remote;
504 int lsock, client;
505 socklen_t len, len2;
506 struct pollfd fds;
507 int status;
Radek Krejciae021c12012-07-25 18:03:52 +0200508 mod_netconf_cfg *cfg;
Radek Krejci9e04c7b2012-07-26 15:54:25 +0200509 json_object *request, *reply, *json_obj;
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200510 int operation;
511 char* session_key, *data;
Radek Krejcia282bed2012-07-27 14:43:45 +0200512 const char *msgtext, *cpbltstr;
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200513 const char *host, *port, *user, *pass;
Radek Krejcie34d3eb2012-07-26 15:05:53 +0200514 const char *target, *source, *filter, *config, *defop, *erropt, *sid;
Radek Krejci9e04c7b2012-07-26 15:54:25 +0200515 struct nc_session *session = NULL;
516 struct nc_cpblts* cpblts;
Radek Krejcifa891e72012-07-26 14:04:27 +0200517 NC_DATASTORE ds_type_s, ds_type_t;
Radek Krejci62ab34b2012-07-26 13:42:05 +0200518 NC_EDIT_DEFOP_TYPE defop_type = 0;
519 NC_EDIT_ERROPT_TYPE erropt_type = 0;
Radek Krejci469aab82012-07-22 18:42:20 +0200520
521 apr_hash_t *netconf_sessions_list;
522 char buffer[BUFFER_SIZE];
Radek Krejci469aab82012-07-22 18:42:20 +0200523
Radek Krejcif23850c2012-07-23 16:14:17 +0200524 /* change uid and gid of process for security reasons */
Radek Krejci469aab82012-07-22 18:42:20 +0200525 unixd_setup_child();
526
Radek Krejciae021c12012-07-25 18:03:52 +0200527 cfg = ap_get_module_config(server->module_config, &netconf_module);
528 if (cfg == NULL) {
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200529 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "Getting mod_netconf configuration failed");
530 return;
531 }
Radek Krejci469aab82012-07-22 18:42:20 +0200532
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200533 /* create listening UNIX socket to accept incoming connections */
Radek Krejci469aab82012-07-22 18:42:20 +0200534 if ((lsock = socket(PF_UNIX, SOCK_STREAM, 0)) == -1) {
535 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "Creating socket failed (%s)", strerror(errno));
536 return;
537 }
538
539 local.sun_family = AF_UNIX;
Radek Krejciae021c12012-07-25 18:03:52 +0200540 strncpy(local.sun_path, cfg->sockname, sizeof(local.sun_path));
Radek Krejci469aab82012-07-22 18:42:20 +0200541 unlink(local.sun_path);
542 len = offsetof(struct sockaddr_un, sun_path) + strlen(local.sun_path);
543
544 if (bind(lsock, (struct sockaddr *) &local, len) == -1) {
545 if (errno == EADDRINUSE) {
546 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "mod_netconf socket address already in use");
547 close(lsock);
548 exit(0);
549 }
550 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "Binding socket failed (%s)", strerror(errno));
551 close(lsock);
552 return;
553 }
554
555 if (listen(lsock, MAX_SOCKET_CL) == -1) {
556 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "Setting up listen socket failed (%s)", strerror(errno));
557 close(lsock);
558 return;
559 }
560
561 /* prepare internal lists */
562 netconf_sessions_list = apr_hash_make(pool);
563
564 /* setup libnetconf's callbacks */
565 nc_verbosity(NC_VERB_DEBUG);
566 clb_print_server = server;
567 nc_callback_print(clb_print);
568 nc_callback_ssh_host_authenticity_check(netconf_callback_ssh_hostkey_check);
569 nc_callback_sshauth_interactive(netconf_callback_sshauth_interactive);
570 nc_callback_sshauth_password(netconf_callback_sshauth_password);
Radek Krejcic11fd862012-07-26 12:41:21 +0200571 nc_callback_error_reply(netconf_callback_error_process);
Radek Krejci469aab82012-07-22 18:42:20 +0200572
573 /* disable publickey authentication */
574 nc_ssh_pref(NC_SSH_AUTH_PUBLIC_KEYS, -1);
575
576 while (isterminated == 0) {
577 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "waiting for another client's request");
578
579 /* open incoming connection if any */
580 len2 = sizeof(remote);
581 client = accept(lsock, (struct sockaddr *) &remote, &len2);
582 if (client == -1 && (errno == EAGAIN || errno == EWOULDBLOCK)) {
583 apr_sleep(SLEEP_TIME);
584 continue;
585 } else if (client == -1 && (errno == EINTR)) {
586 continue;
587 } else if (client == -1) {
588 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "Accepting mod_netconf client connection failed (%s)", strerror(errno));
589 continue;
590 }
591 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "client's socket accepted.");
592
593 /* set client's socket as non-blocking */
Radek Krejcif23850c2012-07-23 16:14:17 +0200594 //fcntl(client, F_SETFL, fcntl(client, F_GETFL, 0) | O_NONBLOCK);
Radek Krejci469aab82012-07-22 18:42:20 +0200595
596 while (1) {
597 fds.fd = client;
598 fds.events = POLLIN;
599 fds.revents = 0;
600
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200601 status = poll(&fds, 1, 1000);
Radek Krejci469aab82012-07-22 18:42:20 +0200602
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200603 if (status == 0 || (status == -1 && (errno == EAGAIN || (errno == EINTR && isterminated == 0)))) {
Radek Krejci469aab82012-07-22 18:42:20 +0200604 /* poll was interrupted - check if the isterminated is set and if not, try poll again */
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200605 //ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "poll interrupted");
Radek Krejci469aab82012-07-22 18:42:20 +0200606 continue;
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200607 } else if (status < 0) {
Radek Krejci469aab82012-07-22 18:42:20 +0200608 /* 0: poll time outed
609 * close socket and ignore this request from the client, it can try it again
610 * -1: poll failed
611 * something wrong happend, close this socket and wait for another request
612 */
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200613 //ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "poll failed, status %d(%d: %s)", status, errno, strerror(errno));
Radek Krejci469aab82012-07-22 18:42:20 +0200614 close(client);
615 break;
616 }
617 /* status > 0 */
618
619 /* check the status of the socket */
620
621 /* if nothing to read and POLLHUP (EOF) or POLLERR set */
622 if ((fds.revents & POLLHUP) || (fds.revents & POLLERR)) {
623 /* close client's socket (it's probably already closed by client */
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200624 //ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "socket error (%d)", fds.revents);
Radek Krejci469aab82012-07-22 18:42:20 +0200625 close(client);
626 break;
627 }
628
629 if ((len2 = recv(client, buffer, BUFFER_SIZE, 0)) <= 0) {
630 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "receiving failed %d (%s)", errno, strerror(errno));
631 continue;
632 } else {
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200633 request = json_tokener_parse(buffer);
634 operation = json_object_get_int(json_object_object_get(request, "type"));
Radek Krejci469aab82012-07-22 18:42:20 +0200635
Radek Krejci035bf4e2012-07-25 10:59:09 +0200636 session_key = (char*) json_object_get_string(json_object_object_get(request, "session"));
637 /* DO NOT FREE session_key HERE, IT IS PART OF REQUEST */
638 if (operation != MSG_CONNECT && session_key == NULL) {
639 reply = json_object_new_object();
640 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
641 json_object_object_add(reply, "error-message", json_object_new_string("Missing session specification."));
642 msgtext = json_object_to_json_string(reply);
643 send(client, msgtext, strlen(msgtext) + 1, 0);
644 json_object_put(reply);
645 /* there is some stupid client, so close the connection to give a chance to some other client */
646 close(client);
647 break;
648 }
649
Radek Krejcifa891e72012-07-26 14:04:27 +0200650 /* get parameters */
651 ds_type_t = -1;
652 if ((target = json_object_get_string(json_object_object_get(request, "target"))) != NULL) {
653 if (strcmp(target, "running") == 0) {
654 ds_type_t = NC_DATASTORE_RUNNING;
655 } else if (strcmp(target, "startup") == 0) {
656 ds_type_t = NC_DATASTORE_STARTUP;
657 } else if (strcmp(target, "candidate") == 0) {
658 ds_type_t = NC_DATASTORE_CANDIDATE;
659 }
660 }
661 ds_type_s = -1;
662 if ((source = json_object_get_string(json_object_object_get(request, "source"))) != NULL) {
663 if (strcmp(source, "running") == 0) {
664 ds_type_s = NC_DATASTORE_RUNNING;
665 } else if (strcmp(source, "startup") == 0) {
666 ds_type_s = NC_DATASTORE_STARTUP;
667 } else if (strcmp(source, "candidate") == 0) {
668 ds_type_s = NC_DATASTORE_CANDIDATE;
669 }
670 }
671
Radek Krejcic11fd862012-07-26 12:41:21 +0200672 /* null global JSON error-reply */
673 err_reply = NULL;
674
Radek Krejci9e04c7b2012-07-26 15:54:25 +0200675 /* prepare reply envelope */
676 reply = json_object_new_object();
677
Radek Krejcic11fd862012-07-26 12:41:21 +0200678 /* process required operation */
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200679 switch (operation) {
680 case MSG_CONNECT:
681 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "Request: Connect");
682
683 host = json_object_get_string(json_object_object_get(request, "host"));
684 port = json_object_get_string(json_object_object_get(request, "port"));
685 user = json_object_get_string(json_object_object_get(request, "user"));
686 pass = json_object_get_string(json_object_object_get(request, "pass"));
687 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "host: %s, port: %s, user: %s", host, port, user);
688 session_key = netconf_connect(server, pool, netconf_sessions_list, host, port, user, pass);
689 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "hash: %s", session_key);
690
691 reply = json_object_new_object();
692 if (session_key == NULL) {
693 /* negative reply */
Radek Krejcic11fd862012-07-26 12:41:21 +0200694 if (err_reply == NULL) {
695 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
696 json_object_object_add(reply, "error-message", json_object_new_string("Connecting NETCONF server failed."));
697 } else {
698 /* use filled err_reply from libnetconf's callback */
699 json_object_put(reply);
700 reply = err_reply;
701 }
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200702 } else {
703 /* positive reply */
704 json_object_object_add(reply, "type", json_object_new_int(REPLY_OK));
705 json_object_object_add(reply, "session", json_object_new_string(session_key));
Radek Krejcie31ad212012-07-26 12:51:15 +0200706
707 free(session_key);
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200708 }
709
Radek Krejci469aab82012-07-22 18:42:20 +0200710 break;
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200711 case MSG_GET:
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200712 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "Request: get-config (session %s)", session_key);
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200713
714 filter = json_object_get_string(json_object_object_get(request, "filter"));
715
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200716 if ((data = netconf_get(server, netconf_sessions_list, session_key, filter)) == NULL) {
Radek Krejcic11fd862012-07-26 12:41:21 +0200717 if (err_reply == NULL) {
718 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
719 json_object_object_add(reply, "error-message", json_object_new_string("get failed."));
720 } else {
721 /* use filled err_reply from libnetconf's callback */
722 json_object_put(reply);
723 reply = err_reply;
724 }
Radek Krejci035bf4e2012-07-25 10:59:09 +0200725 } else {
726 json_object_object_add(reply, "type", json_object_new_int(REPLY_DATA));
727 json_object_object_add(reply, "data", json_object_new_string(data));
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200728 }
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200729 break;
730 case MSG_GETCONFIG:
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200731 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "Request: get-config (session %s)", session_key);
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200732
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200733 filter = json_object_get_string(json_object_object_get(request, "filter"));
734
Radek Krejcifa891e72012-07-26 14:04:27 +0200735 if (ds_type_s == -1) {
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200736 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
Radek Krejci035bf4e2012-07-25 10:59:09 +0200737 json_object_object_add(reply, "error-message", json_object_new_string("Invalid source repository type requested."));
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200738 break;
739 }
740
Radek Krejcifa891e72012-07-26 14:04:27 +0200741 if ((data = netconf_getconfig(server, netconf_sessions_list, session_key, ds_type_s, filter)) == NULL) {
Radek Krejcic11fd862012-07-26 12:41:21 +0200742 if (err_reply == NULL) {
743 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
744 json_object_object_add(reply, "error-message", json_object_new_string("get-config failed."));
745 } else {
746 /* use filled err_reply from libnetconf's callback */
747 json_object_put(reply);
748 reply = err_reply;
749 }
Radek Krejci035bf4e2012-07-25 10:59:09 +0200750 } else {
751 json_object_object_add(reply, "type", json_object_new_int(REPLY_DATA));
752 json_object_object_add(reply, "data", json_object_new_string(data));
753 }
754 break;
Radek Krejci62ab34b2012-07-26 13:42:05 +0200755 case MSG_EDITCONFIG:
756 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "Request: edit-config (session %s)", session_key);
757
Radek Krejci62ab34b2012-07-26 13:42:05 +0200758 defop = json_object_get_string(json_object_object_get(request, "default-operation"));
759 if (defop != NULL) {
760 if (strcmp(defop, "merge") == 0) {
761 defop_type = NC_EDIT_DEFOP_MERGE;
762 } else if (strcmp(defop, "replace") == 0) {
763 defop_type = NC_EDIT_DEFOP_REPLACE;
764 } else if (strcmp(defop, "none") == 0) {
765 defop_type = NC_EDIT_DEFOP_NONE;
766 } else {
767 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
768 json_object_object_add(reply, "error-message", json_object_new_string("Invalid default-operation parameter."));
769 break;
770 }
771 } else {
772 defop_type = 0;
773 }
774
775 erropt = json_object_get_string(json_object_object_get(request, "error-option"));
776 if (erropt != NULL) {
777 if (strcmp(erropt, "continue-on-error") == 0) {
778 erropt_type = NC_EDIT_ERROPT_CONT;
779 } else if (strcmp(erropt, "stop-on-error") == 0) {
780 erropt_type = NC_EDIT_ERROPT_STOP;
781 } else if (strcmp(erropt, "rollback-on-error") == 0) {
782 erropt_type = NC_EDIT_ERROPT_ROLLBACK;
783 } else {
784 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
785 json_object_object_add(reply, "error-message", json_object_new_string("Invalid error-option parameter."));
786 break;
787 }
788 } else {
789 erropt_type = 0;
790 }
791
Radek Krejcifa891e72012-07-26 14:04:27 +0200792 if (ds_type_t == -1) {
Radek Krejci62ab34b2012-07-26 13:42:05 +0200793 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
794 json_object_object_add(reply, "error-message", json_object_new_string("Invalid target repository type requested."));
795 break;
796 }
797
798 config = json_object_get_string(json_object_object_get(request, "config"));
799 if (config == NULL) {
800 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
801 json_object_object_add(reply, "error-message", json_object_new_string("Invalid config data parameter."));
802 break;
803 }
804
Radek Krejcifa891e72012-07-26 14:04:27 +0200805 if (netconf_editconfig(server, netconf_sessions_list, session_key, ds_type_t, defop_type, erropt_type, config) != EXIT_SUCCESS) {
Radek Krejci62ab34b2012-07-26 13:42:05 +0200806 if (err_reply == NULL) {
807 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
808 json_object_object_add(reply, "error-message", json_object_new_string("edit-config failed."));
809 } else {
810 /* use filled err_reply from libnetconf's callback */
811 json_object_put(reply);
812 reply = err_reply;
813 }
814 } else {
815 json_object_object_add(reply, "type", json_object_new_int(REPLY_OK));
816 }
817 break;
Radek Krejci035bf4e2012-07-25 10:59:09 +0200818 case MSG_COPYCONFIG:
819 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "Request: copy-config (session %s)", session_key);
Radek Krejcicebb7af2012-07-26 14:58:12 +0200820 config = NULL;
Radek Krejci035bf4e2012-07-25 10:59:09 +0200821
Radek Krejcifa891e72012-07-26 14:04:27 +0200822 if (source == NULL) {
823 /* no explicit source specified -> use config data */
824 ds_type_s = NC_DATASTORE_NONE;
Radek Krejciae021c12012-07-25 18:03:52 +0200825 config = json_object_get_string(json_object_object_get(request, "config"));
Radek Krejcifa891e72012-07-26 14:04:27 +0200826 } else if (ds_type_s == -1) {
827 /* source datastore specified, but it is invalid */
828 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
829 json_object_object_add(reply, "error-message", json_object_new_string("Invalid source repository type requested."));
830 break;
Radek Krejci035bf4e2012-07-25 10:59:09 +0200831 }
Radek Krejciae021c12012-07-25 18:03:52 +0200832
Radek Krejcifa891e72012-07-26 14:04:27 +0200833 if (ds_type_t == -1) {
834 /* invalid target datastore specified */
Radek Krejci035bf4e2012-07-25 10:59:09 +0200835 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
836 json_object_object_add(reply, "error-message", json_object_new_string("Invalid target repository type requested."));
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200837 break;
838 }
839
Radek Krejcifa891e72012-07-26 14:04:27 +0200840 if (source == NULL && config == NULL) {
Radek Krejci035bf4e2012-07-25 10:59:09 +0200841 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
Radek Krejcifa891e72012-07-26 14:04:27 +0200842 json_object_object_add(reply, "error-message", json_object_new_string("invalid input parameters - one of source and config is required."));
Radek Krejci035bf4e2012-07-25 10:59:09 +0200843 } else {
Radek Krejcifa891e72012-07-26 14:04:27 +0200844 if (netconf_copyconfig(server, netconf_sessions_list, session_key, ds_type_s, ds_type_t, config) != EXIT_SUCCESS) {
Radek Krejcic11fd862012-07-26 12:41:21 +0200845 if (err_reply == NULL) {
846 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
847 json_object_object_add(reply, "error-message", json_object_new_string("copy-config failed."));
848 } else {
849 /* use filled err_reply from libnetconf's callback */
850 json_object_put(reply);
851 reply = err_reply;
852 }
Radek Krejciae021c12012-07-25 18:03:52 +0200853 } else {
854 json_object_object_add(reply, "type", json_object_new_int(REPLY_OK));
855 }
Radek Krejci035bf4e2012-07-25 10:59:09 +0200856 }
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200857 break;
Radek Krejci2f318372012-07-26 14:22:35 +0200858 case MSG_DELETECONFIG:
859 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "Request: delete-config (session %s)", session_key);
Radek Krejci5cd7d422012-07-26 14:50:29 +0200860 /* no break - unifying code */
861 case MSG_LOCK:
862 if (operation == MSG_LOCK) {
863 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "Request: lock (session %s)", session_key);
864 }
865 /* no break - unifying code */
866 case MSG_UNLOCK:
867 if (operation == MSG_UNLOCK) {
868 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "Request: unlock (session %s)", session_key);
869 }
Radek Krejci2f318372012-07-26 14:22:35 +0200870
Radek Krejci2f318372012-07-26 14:22:35 +0200871 if (ds_type_t == -1) {
872 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
873 json_object_object_add(reply, "error-message", json_object_new_string("Invalid target repository type requested."));
874 break;
875 }
876
Radek Krejci5cd7d422012-07-26 14:50:29 +0200877 switch(operation) {
878 case MSG_DELETECONFIG:
879 status = netconf_deleteconfig(server, netconf_sessions_list, session_key, ds_type_t);
880 break;
881 case MSG_LOCK:
882 status = netconf_lock(server, netconf_sessions_list, session_key, ds_type_t);
883 break;
884 case MSG_UNLOCK:
885 status = netconf_unlock(server, netconf_sessions_list, session_key, ds_type_t);
886 break;
887 default:
888 status = -1;
889 break;
890 }
891
892 if (status != EXIT_SUCCESS) {
Radek Krejci2f318372012-07-26 14:22:35 +0200893 if (err_reply == NULL) {
894 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
Radek Krejci5cd7d422012-07-26 14:50:29 +0200895 json_object_object_add(reply, "error-message", json_object_new_string("operation failed."));
Radek Krejci2f318372012-07-26 14:22:35 +0200896 } else {
897 /* use filled err_reply from libnetconf's callback */
898 json_object_put(reply);
899 reply = err_reply;
900 }
901 } else {
902 json_object_object_add(reply, "type", json_object_new_int(REPLY_OK));
903 }
904 break;
Radek Krejcie34d3eb2012-07-26 15:05:53 +0200905 case MSG_KILL:
906 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "Request: kill-session, session %s", session_key);
907
908 sid = json_object_get_string(json_object_object_get(request, "session-id"));
909
Radek Krejcie34d3eb2012-07-26 15:05:53 +0200910 if (sid == NULL) {
911 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
912 json_object_object_add(reply, "error-message", json_object_new_string("Missing session-id parameter."));
913 break;
914 }
915
916 if (netconf_killsession(server, netconf_sessions_list, session_key, sid) != EXIT_SUCCESS) {
917 if (err_reply == NULL) {
918 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
919 json_object_object_add(reply, "error-message", json_object_new_string("kill-session failed."));
920 } else {
921 /* use filled err_reply from libnetconf's callback */
922 json_object_put(reply);
923 reply = err_reply;
924 }
925 } else {
926 json_object_object_add(reply, "type", json_object_new_int(REPLY_OK));
927 }
928 break;
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200929 case MSG_DISCONNECT:
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200930 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "Request: Disconnect session %s", session_key);
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200931
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200932 if (netconf_close(server, netconf_sessions_list, session_key) != EXIT_SUCCESS) {
Radek Krejcic11fd862012-07-26 12:41:21 +0200933 if (err_reply == NULL) {
934 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
935 json_object_object_add(reply, "error-message", json_object_new_string("Invalid session identifier."));
936 } else {
937 /* use filled err_reply from libnetconf's callback */
938 json_object_put(reply);
939 reply = err_reply;
940 }
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200941 } else {
942 json_object_object_add(reply, "type", json_object_new_int(REPLY_OK));
943 }
944 break;
Radek Krejci9e04c7b2012-07-26 15:54:25 +0200945 case MSG_INFO:
946 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, server, "Request: get info about session %s", session_key);
947
948 session = (struct nc_session *)apr_hash_get(netconf_sessions_list, session_key, APR_HASH_KEY_STRING);
949 if (session != NULL) {
Radek Krejcia282bed2012-07-27 14:43:45 +0200950 json_object_object_add(reply, "sid", json_object_new_string(nc_session_get_id(session)));
Radek Krejci9e04c7b2012-07-26 15:54:25 +0200951 json_object_object_add(reply, "version", json_object_new_string((nc_session_get_version(session) == 0)?"1.0":"1.1"));
Radek Krejcia282bed2012-07-27 14:43:45 +0200952 json_object_object_add(reply, "host", json_object_new_string(nc_session_get_host(session)));
953 json_object_object_add(reply, "port", json_object_new_string(nc_session_get_port(session)));
954 json_object_object_add(reply, "user", json_object_new_string(nc_session_get_user(session)));
Radek Krejci9e04c7b2012-07-26 15:54:25 +0200955 cpblts = nc_session_get_cpblts (session);
956 if (cpblts != NULL) {
957 json_obj = json_object_new_array();
958 nc_cpblts_iter_start (cpblts);
Radek Krejcia282bed2012-07-27 14:43:45 +0200959 while ((cpbltstr = nc_cpblts_iter_next (cpblts)) != NULL) {
960 json_object_array_add(json_obj, json_object_new_string(cpbltstr));
Radek Krejci9e04c7b2012-07-26 15:54:25 +0200961 }
962 json_object_object_add(reply, "capabilities", json_obj);
963 }
964 } else {
965 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
966 json_object_object_add(reply, "error-message", json_object_new_string("Invalid session identifier."));
967 }
968
969 break;
Radek Krejci8fd1f5e2012-07-24 17:33:36 +0200970 default:
971 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "Unknown mod_netconf operation requested (%d)", operation);
972 reply = json_object_new_object();
973 json_object_object_add(reply, "type", json_object_new_int(REPLY_ERROR));
974 json_object_object_add(reply, "error-message", json_object_new_string("Operation not supported."));
975 break;
976 }
977 json_object_put(request);
978
979 /* send reply to caller */
980 if (reply != NULL) {
981 msgtext = json_object_to_json_string(reply);
982 send(client, msgtext, strlen(msgtext) + 1, 0);
983 json_object_put(reply);
984 } else {
985 break;
986 }
Radek Krejci469aab82012-07-22 18:42:20 +0200987 }
988 }
989 }
990
991 close(lsock);
992
993 ap_log_error(APLOG_MARK, APLOG_ERR, 0, server, "Exiting from the mod_netconf daemon");
994
995 exit(APR_SUCCESS);
996}
997
Radek Krejcif23850c2012-07-23 16:14:17 +0200998static void *mod_netconf_create_conf(apr_pool_t * pool, server_rec * s)
Radek Krejci469aab82012-07-22 18:42:20 +0200999{
Radek Krejcif23850c2012-07-23 16:14:17 +02001000 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, s, "Init netconf module config");
1001
1002 mod_netconf_cfg *config = apr_pcalloc(pool, sizeof(mod_netconf_cfg));
1003 apr_pool_create(&config->pool, pool);
1004 config->forkproc = NULL;
Radek Krejci8fd1f5e2012-07-24 17:33:36 +02001005 config->sockname = SOCKET_FILENAME;
Radek Krejcif23850c2012-07-23 16:14:17 +02001006
1007 return (void *)config;
Radek Krejci469aab82012-07-22 18:42:20 +02001008}
1009
1010static int mod_netconf_master_init(apr_pool_t * pconf, apr_pool_t * ptemp,
1011 apr_pool_t * plog, server_rec * s)
1012{
Radek Krejcif23850c2012-07-23 16:14:17 +02001013 mod_netconf_cfg *config;
1014 apr_status_t res;
1015
Radek Krejci469aab82012-07-22 18:42:20 +02001016 /* These two help ensure that we only init once. */
1017 void *data;
Radek Krejcif23850c2012-07-23 16:14:17 +02001018 const char *userdata_key = "netconf_ipc_init";
Radek Krejci469aab82012-07-22 18:42:20 +02001019
1020 /*
1021 * The following checks if this routine has been called before.
1022 * This is necessary because the parent process gets initialized
1023 * a couple of times as the server starts up.
1024 */
1025 apr_pool_userdata_get(&data, userdata_key, s->process->pool);
1026 if (!data) {
1027 apr_pool_userdata_set((const void *)1, userdata_key, apr_pool_cleanup_null, s->process->pool);
1028 return (OK);
1029 }
1030
Radek Krejcif23850c2012-07-23 16:14:17 +02001031 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, s, "creating mod_netconf daemon");
1032 config = ap_get_module_config(s->module_config, &netconf_module);
Radek Krejcidfaa6ea2012-07-23 09:04:43 +02001033
Radek Krejcif23850c2012-07-23 16:14:17 +02001034 if (config && config->forkproc == NULL) {
1035 config->forkproc = apr_pcalloc(config->pool, sizeof(apr_proc_t));
1036 res = apr_proc_fork(config->forkproc, config->pool);
Radek Krejci469aab82012-07-22 18:42:20 +02001037 switch (res) {
1038 case APR_INCHILD:
1039 /* set signal handler */
Radek Krejcif23850c2012-07-23 16:14:17 +02001040 apr_signal_init(config->pool);
Radek Krejci469aab82012-07-22 18:42:20 +02001041 apr_signal(SIGTERM, signal_handler);
1042
1043 /* log start of the separated NETCONF communication process */
Radek Krejcif23850c2012-07-23 16:14:17 +02001044 ap_log_error(APLOG_MARK, APLOG_NOTICE, 0, s, "mod_netconf daemon started (PID %d)", getpid());
Radek Krejci469aab82012-07-22 18:42:20 +02001045
1046 /* start main loop providing NETCONF communication */
Radek Krejcif23850c2012-07-23 16:14:17 +02001047 forked_proc(config->pool, s);
Radek Krejci469aab82012-07-22 18:42:20 +02001048
Radek Krejcif23850c2012-07-23 16:14:17 +02001049 /* I never should be here, wtf?!? */
1050 ap_log_error(APLOG_MARK, APLOG_ERR, 0, s, "mod_netconf daemon unexpectedly stopped");
Radek Krejci469aab82012-07-22 18:42:20 +02001051 exit(APR_EGENERAL);
1052 break;
1053 case APR_INPARENT:
1054 /* register child to be killed (SIGTERM) when the module config's pool dies */
Radek Krejcif23850c2012-07-23 16:14:17 +02001055 apr_pool_note_subprocess(config->pool, config->forkproc, APR_KILL_AFTER_TIMEOUT);
Radek Krejci469aab82012-07-22 18:42:20 +02001056 break;
1057 default:
1058 ap_log_error(APLOG_MARK, APLOG_ERR, 0, s, "apr_proc_fork() failed");
1059 break;
1060 }
Radek Krejcif23850c2012-07-23 16:14:17 +02001061 } else {
1062 ap_log_error(APLOG_MARK, APLOG_DEBUG, 0, s, "mod_netconf misses configuration structure");
Radek Krejci469aab82012-07-22 18:42:20 +02001063 }
1064
1065 return OK;
1066}
1067
Radek Krejci469aab82012-07-22 18:42:20 +02001068/**
1069 * Register module hooks
1070 */
1071static void mod_netconf_register_hooks(apr_pool_t * p)
1072{
Radek Krejcif23850c2012-07-23 16:14:17 +02001073 ap_hook_post_config(mod_netconf_master_init, NULL, NULL, APR_HOOK_LAST);
Radek Krejci469aab82012-07-22 18:42:20 +02001074}
1075
Radek Krejci8fd1f5e2012-07-24 17:33:36 +02001076static const char* cfg_set_socket_path(cmd_parms* cmd, void* cfg, const char* arg)
1077{
1078 ((mod_netconf_cfg*)cfg)->sockname = apr_pstrdup(cmd->pool, arg);
1079 return NULL;
1080}
1081
1082static const command_rec netconf_cmds[] = {
1083 AP_INIT_TAKE1("NetconfSocket", cfg_set_socket_path, NULL, OR_ALL, "UNIX socket path for mod_netconf communication."),
1084 {NULL}
1085};
1086
Radek Krejci469aab82012-07-22 18:42:20 +02001087/* Dispatch list for API hooks */
1088module AP_MODULE_DECLARE_DATA netconf_module = {
1089 STANDARD20_MODULE_STUFF,
1090 NULL, /* create per-dir config structures */
1091 NULL, /* merge per-dir config structures */
Radek Krejcif23850c2012-07-23 16:14:17 +02001092 mod_netconf_create_conf, /* create per-server config structures */
Radek Krejci469aab82012-07-22 18:42:20 +02001093 NULL, /* merge per-server config structures */
Radek Krejci8fd1f5e2012-07-24 17:33:36 +02001094 netconf_cmds, /* table of config file commands */
Radek Krejci469aab82012-07-22 18:42:20 +02001095 mod_netconf_register_hooks /* register hooks */
1096};