client.c revision bf08eb90e44ed8717d538442600c4ad11adac61d
f2314fbd7911bacccf87d13562b38fafa1aac9eaMichael Graff/*
c40e033d2170ec5bd55124bbb034528888b1a76fTinderbox User * Copyright (C) 1999 Internet Software Consortium.
40f53fa8d9c6a4fc38c0014495e7a42b08f52481David Lawrence *
0c27b3fe77ac1d5094ba3521e8142d9e7973133fMark Andrews * Permission to use, copy, modify, and distribute this software for any
0c27b3fe77ac1d5094ba3521e8142d9e7973133fMark Andrews * purpose with or without fee is hereby granted, provided that the above
0c27b3fe77ac1d5094ba3521e8142d9e7973133fMark Andrews * copyright notice and this permission notice appear in all copies.
f2314fbd7911bacccf87d13562b38fafa1aac9eaMichael Graff *
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * THE SOFTWARE IS PROVIDED "AS IS" AND INTERNET SOFTWARE CONSORTIUM DISCLAIMS
53f0234c3e3a845245042affb1f20a189d8791b9Automatic Updater * ALL WARRANTIES WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES
9c3531d72aeaad6c5f01efe6a1c82023e1379e4dDavid Lawrence * OF MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL INTERNET SOFTWARE
ab023a65562e62b85a824509d829b6fad87e00b1Rob Austein * CONSORTIUM BE LIABLE FOR ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * SOFTWARE.
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff */
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <config.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <isc/assertions.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <isc/mem.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <isc/mutex.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <isc/result.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <isc/task.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <isc/timer.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <isc/util.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <dns/acl.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <dns/dispatch.h>
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews#include <dns/events.h>
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews#include <dns/message.h>
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews#include <dns/rdata.h>
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews#include <dns/rdatalist.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <dns/rdataset.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <dns/view.h>
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont#include <dns/xfrin.h>
b5252fcde512405a68dd4becfe683d9763bd0feaMukund Sivaraman
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <named/globals.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#include <named/client.h>
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt#include <named/log.h>
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt#include <named/query.h>
dbb012765c735ee0d82dedb116cdc7cf18957814Evan Hunt#include <named/server.h>
dbb012765c735ee0d82dedb116cdc7cf18957814Evan Hunt#include <named/update.h>
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt#include <named/notify.h>
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt#include <named/interfacemgr.h>
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff#define NS_CLIENT_TRACE
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont#ifdef NS_CLIENT_TRACE
22bed621ef87bc8b6c1fea599b02c4b38dd6bf48Mark Andrews#define CTRACE(m) isc_log_write(ns_g_lctx, \
76af83c9adb772f7b045c62cf8b411165bfaa5efMark Andrews NS_LOGCATEGORY_CLIENT, \
76af83c9adb772f7b045c62cf8b411165bfaa5efMark Andrews NS_LOGMODULE_CLIENT, \
76af83c9adb772f7b045c62cf8b411165bfaa5efMark Andrews ISC_LOG_DEBUG(3), \
76af83c9adb772f7b045c62cf8b411165bfaa5efMark Andrews "client %p: %s", client, (m))
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont#define MTRACE(m) isc_log_write(ns_g_lctx, \
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont NS_LOGCATEGORY_GENERAL, \
76af83c9adb772f7b045c62cf8b411165bfaa5efMark Andrews NS_LOGMODULE_CLIENT, \
76af83c9adb772f7b045c62cf8b411165bfaa5efMark Andrews ISC_LOG_DEBUG(3), \
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont "clientmgr %p: %s", manager, (m))
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont#endif
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont#define TCP_CLIENT(c) (((c)->attributes & NS_CLIENTATTR_TCP) != 0)
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont#define SEND_BUFFER_SIZE 2048
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont
76af83c9adb772f7b045c62cf8b411165bfaa5efMark Andrewsstruct ns_clientmgr {
76af83c9adb772f7b045c62cf8b411165bfaa5efMark Andrews /* Unlocked. */
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont unsigned int magic;
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont isc_mem_t * mctx;
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont isc_taskmgr_t * taskmgr;
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont isc_timermgr_t * timermgr;
8e73941f33fad57111142a62d99717abc001912eMark Andrews isc_mutex_t lock;
8e73941f33fad57111142a62d99717abc001912eMark Andrews /* Locked by lock. */
76af83c9adb772f7b045c62cf8b411165bfaa5efMark Andrews isc_boolean_t exiting;
fc63119c8b7aa8827fad9e3e45e50c69bc2630e8Francis Dupont unsigned int nclients;
fc63119c8b7aa8827fad9e3e45e50c69bc2630e8Francis Dupont ISC_LIST(ns_client_t) clients;
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont};
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont#define MANAGER_MAGIC 0x4E53436DU /* NSCm */
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont#define VALID_MANAGER(m) ((m) != NULL && \
76af83c9adb772f7b045c62cf8b411165bfaa5efMark Andrews (m)->magic == MANAGER_MAGIC)
76af83c9adb772f7b045c62cf8b411165bfaa5efMark Andrews
76af83c9adb772f7b045c62cf8b411165bfaa5efMark Andrews
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupontstatic void clientmgr_destroy(ns_clientmgr_t *manager);
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt/***
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt *** Client
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt ***/
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt/*
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt * Important note!
acbb301e648b82fcc38b876a44403cf0fe539cc9Evan Hunt *
acbb301e648b82fcc38b876a44403cf0fe539cc9Evan Hunt * All client state changes, other than that from idle to listening, occur
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt * as a result of events. This guarantees serialization and avoids the
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt * need for locking.
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt *
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt * If a routine is ever created that allows someone other than the client's
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt * task to change the client, then the client will have to be locked.
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt */
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Huntstatic void
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Huntrelease_quotas(ns_client_t *client) {
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt if (client->tcpquota != NULL)
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt isc_quota_detach(&client->tcpquota);
b5252fcde512405a68dd4becfe683d9763bd0feaMukund Sivaraman if (client->recursionquota != NULL)
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt isc_quota_detach(&client->recursionquota);
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt}
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt/*
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt * Free a client immediately if possible, otherwise start
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt * shutting it down and postpone freeing to later.
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt */
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Huntstatic void
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Huntmaybe_free(ns_client_t *client) {
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt isc_boolean_t need_clientmgr_destroy = ISC_FALSE;
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt ns_clientmgr_t *manager = NULL;
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt REQUIRE(NS_CLIENT_VALID(client));
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt /*
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt * When "shuttingdown" is true, either the task has received
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt * its shutdown event or no shutdown event has ever been
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt * set up. Thus, we have no outstanding shutdown
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt * event at this point.
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt */
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt REQUIRE(client->shuttingdown == ISC_TRUE);
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt
ba751492fcc4f161a18b983d4f018a1a52938cb9Evan Hunt if (client->naccepts > 0)
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont isc_socket_cancel(client->tcplistener, client->task,
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont ISC_SOCKCANCEL_ACCEPT);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->nreads > 0)
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_tcpmsg_cancelread(&client->tcpmsg);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->nsends > 0) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff isc_socket_t *socket;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (TCP_CLIENT(client))
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff socket = client->tcpsocket;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff else
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff socket = dns_dispatch_getsocket(client->dispatch);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff isc_socket_cancel(socket, client->task, ISC_SOCKCANCEL_SEND);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff }
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff /*
ab023a65562e62b85a824509d829b6fad87e00b1Rob Austein * We need to detach from the view early, because when shutting
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * down the server, resolver shutdown does not begin until
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * happen until the view refcount goes to zero.
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff */
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->view != NULL)
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_view_detach(&client->view);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (!(client->nreads == 0 && client->naccepts == 0 &&
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff client->nsends == 0 && client->nwaiting == 0)) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff /* Still waiting for events. */
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff return;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff }
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff /* We have received our last event. */
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff ns_interface_detach(&client->interface);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff ns_query_free(client);
b5252fcde512405a68dd4becfe683d9763bd0feaMukund Sivaraman isc_mempool_destroy(&client->sendbufs);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff isc_timer_detach(&client->timer);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
ab023a65562e62b85a824509d829b6fad87e00b1Rob Austein if (client->dispentry != NULL) {
ab023a65562e62b85a824509d829b6fad87e00b1Rob Austein dns_dispatchevent_t **deventp;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->dispevent != NULL)
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff deventp = &client->dispevent;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff else
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff deventp = NULL;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_dispatch_removerequest(client->dispatch,
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff &client->dispentry,
ab023a65562e62b85a824509d829b6fad87e00b1Rob Austein deventp);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff }
ab023a65562e62b85a824509d829b6fad87e00b1Rob Austein if (client->opt != NULL) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff INSIST(dns_rdataset_isassociated(client->opt));
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_rdataset_disassociate(client->opt);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_message_puttemprdataset(client->message, &client->opt);
ab023a65562e62b85a824509d829b6fad87e00b1Rob Austein }
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_message_destroy(&client->message);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->tcpmsg_valid)
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_tcpmsg_invalidate(&client->tcpmsg);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->dispatch != NULL)
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_dispatch_detach(&client->dispatch);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->tcpsocket != NULL)
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff isc_socket_detach(&client->tcpsocket);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->tcplistener != NULL)
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff isc_socket_detach(&client->tcplistener);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->task != NULL)
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff isc_task_detach(&client->task);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->manager != NULL) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff manager = client->manager;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff LOCK(&manager->lock);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff INSIST(manager->nclients > 0);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff manager->nclients--;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (manager->nclients == 0 && manager->exiting)
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff need_clientmgr_destroy = ISC_TRUE;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff ISC_LIST_UNLINK(manager->clients, client, link);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff UNLOCK(&manager->lock);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff }
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff release_quotas(client);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff CTRACE("free");
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff client->magic = 0;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff isc_mem_put(client->mctx, client, sizeof *client);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (need_clientmgr_destroy)
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff clientmgr_destroy(manager);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff}
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff/*
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * The client's task has received a shutdown event.
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff */
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graffstatic void
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graffclient_shutdown(isc_task_t *task, isc_event_t *event) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff ns_client_t *client;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff REQUIRE(event != NULL);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff REQUIRE(event->type == ISC_TASKEVENT_SHUTDOWN);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff client = event->arg;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff REQUIRE(NS_CLIENT_VALID(client));
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff REQUIRE(task == client->task);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff CTRACE("shutdown");
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff client->shuttingdown = ISC_TRUE;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->shutdown != NULL)
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff (client->shutdown)(client->shutdown_arg);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff maybe_free(client);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff isc_event_free(&event);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff}
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graffstatic void client_read(ns_client_t *client);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graffstatic void client_accept(ns_client_t *client);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graffvoid
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graffns_client_next(ns_client_t *client, isc_result_t result) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff REQUIRE(NS_CLIENT_VALID(client));
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff CTRACE("next");
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->next != NULL) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff (client->next)(client, result);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff client->next = NULL;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff }
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff /*
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * XXXRTH If result != ISC_R_SUCCESS:
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * Log result if there is interest in doing so.
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff */
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->view != NULL)
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_view_detach(&client->view);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->opt != NULL) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff INSIST(dns_rdataset_isassociated(client->opt));
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_rdataset_disassociate(client->opt);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_message_puttemprdataset(client->message, &client->opt);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff }
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
ab023a65562e62b85a824509d829b6fad87e00b1Rob Austein client->udpsize = 512;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_message_reset(client->message, DNS_MESSAGE_INTENTPARSE);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff release_quotas(client);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->mortal) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff /*
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * This client object is supposed to die now, but if we
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * have fewer client objects than planned due to
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * quota exhaustion, don't.
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff */
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff isc_boolean_t need_another_client = ISC_FALSE;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (TCP_CLIENT(client)) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff LOCK(&client->interface->lock);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->interface->ntcpcurrent <
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff client->interface->ntcptarget)
e851ea826066ac5a5b01c2c23218faa0273a12e8Evan Hunt need_another_client = ISC_TRUE;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff UNLOCK(&client->interface->lock);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff } else {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff /*
e851ea826066ac5a5b01c2c23218faa0273a12e8Evan Hunt * The UDP client quota is enforced by making
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * requests fail rather than by not listening
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * for new ones. Therefore, there is always a
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * full set of UDP clients listening.
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff */
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff }
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (! need_another_client) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff /* XXX should put in "idle client pool" instead. */
e851ea826066ac5a5b01c2c23218faa0273a12e8Evan Hunt isc_task_shutdown(client->task);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff return;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff }
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff client->mortal = ISC_FALSE;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff }
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->dispevent != NULL) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff /*
e851ea826066ac5a5b01c2c23218faa0273a12e8Evan Hunt * Give the processed dispatch event back to the dispatch.
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * This tells the dispatch that we are ready to receive
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * the next event.
ab023a65562e62b85a824509d829b6fad87e00b1Rob Austein */
40f53fa8d9c6a4fc38c0014495e7a42b08f52481David Lawrence dns_dispatch_freeevent(client->dispatch, client->dispentry,
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff &client->dispevent);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff } else if (TCP_CLIENT(client)) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (result == ISC_R_SUCCESS) {
1ee3b153b698e888e55dc944560c845ab6e2879aBrian Wellington client_read(client);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff } else {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff /*
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * There was an error processing a TCP request.
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * It may have have left the connection out of
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * sync. Close the connection and listen for a
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * new one.
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff */
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff if (client->tcpsocket != NULL) {
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff /*
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * There should be no outstanding read
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * request on the TCP socket at this point,
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff * therefore invalidating the tcpmsg is safe.
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff */
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff INSIST(client->nreads == 0);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff INSIST(client->tcpmsg_valid == ISC_TRUE);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff dns_tcpmsg_invalidate(&client->tcpmsg);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff client->tcpmsg_valid = ISC_FALSE;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff isc_socket_detach(&client->tcpsocket);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff }
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff client_accept(client);
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff }
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff }
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff}
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graffstatic void
e851ea826066ac5a5b01c2c23218faa0273a12e8Evan Huntclient_senddone(isc_task_t *task, isc_event_t *event) {
b5252fcde512405a68dd4becfe683d9763bd0feaMukund Sivaraman ns_client_t *client;
bb2d54f1b3654857b8cb0209612ed847afbd9d3cMichael Graff isc_socketevent_t *sevent = (isc_socketevent_t *)event;
c1d7e0562f6a72ecc07ab5140cf2b88183adbd08Francis Dupont
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews REQUIRE(sevent != NULL);
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont REQUIRE(sevent->type == ISC_SOCKEVENT_SENDDONE);
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont client = sevent->arg;
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont REQUIRE(NS_CLIENT_VALID(client));
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont REQUIRE(task == client->task);
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont CTRACE("senddone");
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont INSIST(client->nsends > 0);
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont client->nsends--;
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont isc_mempool_put(client->sendbufs, sevent->region.base);
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont isc_event_free(&event);
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont /*
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont * If all of its sendbufs buffers were busy, the client might be
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont * waiting for one to become available.
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont */
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont if (client->waiting_for_bufs == ISC_TRUE) {
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont client->waiting_for_bufs = ISC_FALSE;
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont ns_client_send(client);
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont return;
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont }
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont /* XXXRTH need to add exit draining mode. */
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont}
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupontvoid
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupontns_client_send(ns_client_t *client) {
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont isc_result_t result;
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont unsigned char *data;
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont isc_buffer_t buffer;
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont isc_buffer_t tcpbuffer;
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont isc_region_t r;
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont isc_socket_t *socket;
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont isc_sockaddr_t *address;
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont unsigned int bufsize = 512;
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont REQUIRE(NS_CLIENT_VALID(client));
2d387429a1706fd87d3db295001f4134883522d8Francis Dupont
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont CTRACE("send");
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews if ((client->attributes & NS_CLIENTATTR_RA) != 0)
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews client->message->flags |= DNS_MESSAGEFLAG_RA;
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews data = isc_mempool_get(client->sendbufs);
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews if (data == NULL) {
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews CTRACE("no buffers available");
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews if (client->nsends > 0) {
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews /*
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews * We couldn't get memory, but there is at least one
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Dupont * send outstanding. We arrange to be restarted when a
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews * send completes.
c40906dfad6dd6e3a3e3c94b8c8847bc9bc064e5Mark Andrews */
CTRACE("waiting");
client->waiting_for_bufs = ISC_TRUE;
} else
ns_client_next(client, ISC_R_NOMEMORY);
return;
}
/*
* XXXRTH The following doesn't deal with TSIGs, TCP buffer resizing,
* or ENDS1 more data packets.
*/
if (TCP_CLIENT(client)) {
/*
* XXXRTH "tcpbuffer" is a hack to get things working.
*/
isc_buffer_init(&tcpbuffer, data, SEND_BUFFER_SIZE,
ISC_BUFFERTYPE_BINARY);
isc_buffer_init(&buffer, data + 2, SEND_BUFFER_SIZE - 2,
ISC_BUFFERTYPE_BINARY);
} else {
if (client->udpsize < SEND_BUFFER_SIZE)
bufsize = client->udpsize;
else
bufsize = SEND_BUFFER_SIZE;
isc_buffer_init(&buffer, data, bufsize, ISC_BUFFERTYPE_BINARY);
}
result = dns_message_renderbegin(client->message, &buffer);
if (result != ISC_R_SUCCESS)
goto done;
if (client->opt != NULL) {
result = dns_message_setopt(client->message, client->opt);
if (result != ISC_R_SUCCESS)
goto done;
/*
* XXXRTH dns_message_setopt() should probably do this...
*/
client->opt = NULL;
}
result = dns_message_rendersection(client->message,
DNS_SECTION_QUESTION, 0);
if (result != ISC_R_SUCCESS)
goto done;
result = dns_message_rendersection(client->message,
DNS_SECTION_ANSWER, 0);
if (result == ISC_R_NOSPACE) {
client->message->flags |= DNS_MESSAGEFLAG_TC;
goto renderend;
}
if (result != ISC_R_SUCCESS)
goto done;
result = dns_message_rendersection(client->message,
DNS_SECTION_AUTHORITY, 0);
if (result == ISC_R_NOSPACE) {
client->message->flags |= DNS_MESSAGEFLAG_TC;
goto renderend;
}
if (result != ISC_R_SUCCESS)
goto done;
result = dns_message_rendersection(client->message,
DNS_SECTION_ADDITIONAL, 0);
if (result != ISC_R_SUCCESS && result != ISC_R_NOSPACE)
goto done;
renderend:
result = dns_message_renderend(client->message);
if (result != ISC_R_SUCCESS)
goto done;
if (TCP_CLIENT(client)) {
socket = client->tcpsocket;
address = NULL;
isc_buffer_used(&buffer, &r);
isc_buffer_putuint16(&tcpbuffer, (isc_uint16_t)r.length);
isc_buffer_add(&tcpbuffer, r.length);
isc_buffer_used(&tcpbuffer, &r);
} else {
socket = dns_dispatch_getsocket(client->dispatch);
address = &client->dispevent->addr;
isc_buffer_used(&buffer, &r);
}
CTRACE("sendto");
result = isc_socket_sendto(socket, &r, client->task, client_senddone,
client, address, NULL);
if (result == ISC_R_SUCCESS)
client->nsends++;
done:
if (result != ISC_R_SUCCESS)
isc_mempool_put(client->sendbufs, data);
ns_client_next(client, result);
}
void
ns_client_error(ns_client_t *client, isc_result_t result) {
dns_rcode_t rcode;
dns_message_t *message;
REQUIRE(NS_CLIENT_VALID(client));
CTRACE("error");
message = client->message;
rcode = dns_result_torcode(result);
/*
* message may be an in-progress reply that we had trouble
* with, in which case QR will be set. We need to clear QR before
* calling dns_message_reply() to avoid triggering an assertion.
*/
message->flags &= ~DNS_MESSAGEFLAG_QR;
/*
* AA and AD shouldn't be set.
*/
message->flags &= ~(DNS_MESSAGEFLAG_AA | DNS_MESSAGEFLAG_AD);
result = dns_message_reply(message, ISC_TRUE);
if (result != ISC_R_SUCCESS) {
/*
* It could be that we've got a query with a good header,
* but a bad question section, so we try again with
* want_question_section set to ISC_FALSE.
*/
result = dns_message_reply(message, ISC_FALSE);
if (result != ISC_R_SUCCESS) {
/*
* There's no hope of replying to this request.
*
* XXXRTH Mark this client to that if it is a
* TCP session, the session will be closed.
*/
ns_client_next(client, result);
return;
}
}
message->rcode = rcode;
ns_client_send(client);
}
static inline isc_result_t
client_addopt(ns_client_t *client) {
dns_rdataset_t *rdataset;
dns_rdatalist_t *rdatalist;
dns_rdata_t *rdata;
isc_result_t result;
REQUIRE(client->opt == NULL); /* XXXRTH free old. */
rdatalist = NULL;
result = dns_message_gettemprdatalist(client->message, &rdatalist);
if (result != ISC_R_SUCCESS)
return (result);
rdata = NULL;
result = dns_message_gettemprdata(client->message, &rdata);
if (result != ISC_R_SUCCESS)
return (result);
rdataset = NULL;
result = dns_message_gettemprdataset(client->message, &rdataset);
if (result != ISC_R_SUCCESS)
return (result);
dns_rdataset_init(rdataset);
rdatalist->type = dns_rdatatype_opt;
rdatalist->covers = 0;
/*
* Set Maximum UDP buffer size.
*/
rdatalist->rdclass = SEND_BUFFER_SIZE;
/*
* Set EXTENDED-RCODE, VERSION, and Z to 0.
*/
rdatalist->ttl = 0;
/*
* No ENDS options.
*/
rdata->data = NULL;
rdata->length = 0;
ISC_LIST_INIT(rdatalist->rdata);
ISC_LIST_APPEND(rdatalist->rdata, rdata, link);
dns_rdatalist_tordataset(rdatalist, rdataset);
client->opt = rdataset;
return (ISC_R_SUCCESS);
}
/*
* Handle an incoming request event from the dispatch (UDP case)
* or tcpmsg (TCP case).
*/
static void
client_request(isc_task_t *task, isc_event_t *event) {
ns_client_t *client;
dns_dispatchevent_t *devent;
isc_result_t result;
isc_buffer_t *buffer;
dns_view_t *view;
dns_rdataset_t *opt;
isc_boolean_t ra; /* Recursion available. */
REQUIRE(event != NULL);
client = event->arg;
REQUIRE(NS_CLIENT_VALID(client));
REQUIRE(task == client->task);
INSIST(client->recursionquota == NULL);
if (event->type == DNS_EVENT_DISPATCH) {
devent = (dns_dispatchevent_t *)event;
REQUIRE(client->dispentry != NULL);
client->dispevent = devent;
buffer = &devent->buffer;
result = devent->result;
} else {
REQUIRE(event->type == DNS_EVENT_TCPMSG);
REQUIRE(event->sender == &client->tcpmsg);
buffer = &client->tcpmsg.buffer;
result = client->tcpmsg.result;
INSIST(client->nreads == 1);
client->nreads--;
}
CTRACE("request");
if (client->shuttingdown) {
maybe_free(client);
return;
}
isc_stdtime_get(&client->requesttime);
client->now = client->requesttime;
if (result != ISC_R_SUCCESS) {
if (TCP_CLIENT(client))
ns_client_next(client, result);
else
isc_task_shutdown(client->task);
return;
}
result = dns_message_parse(client->message, buffer, ISC_FALSE);
if (result != ISC_R_SUCCESS) {
ns_client_error(client, result);
return;
}
/*
* We expect a query, not a response. Unexpected UDP responses
* are discarded early by the dispatcher, but TCP responses
* bypass the dispatcher and must be discarded here.
*/
if ((client->message->flags & DNS_MESSAGEFLAG_QR) != 0) {
CTRACE("unexpected response");
ns_client_next(client, DNS_R_FORMERR);
return;
}
/*
* Deal with EDNS.
*/
opt = dns_message_getopt(client->message);
if (opt != NULL) {
unsigned int version;
/*
* Set the client's UDP buffer size.
*/
client->udpsize = opt->rdclass;
/*
* Create an OPT for our reply.
*/
result = client_addopt(client);
if (result != ISC_R_SUCCESS) {
ns_client_error(client, result);
return;
}
/*
* Do we understand this version of ENDS?
*
* XXXRTH need library support for this!
*/
version = (opt->ttl & 0x00FF0000) >> 16;
if (version != 0) {
ns_client_error(client, DNS_R_BADVERS);
return;
}
}
/*
* XXXRTH View list management code will be moving to its own module
* soon.
*/
RWLOCK(&ns_g_server->viewlock, isc_rwlocktype_read);
for (view = ISC_LIST_HEAD(ns_g_server->viewlist);
view != NULL;
view = ISC_LIST_NEXT(view, link)) {
/*
* XXXRTH View matching will become more powerful later.
*/
if (client->message->rdclass == view->rdclass) {
dns_view_attach(view, &client->view);
break;
}
}
RWUNLOCK(&ns_g_server->viewlock, isc_rwlocktype_read);
if (view == NULL) {
CTRACE("no view");
ns_client_error(client, DNS_R_REFUSED);
return;
}
/*
* Check for a signature. We log bad signatures regardless of
* whether they ultimately cause the request to be rejected or
* not. We do not log the lack of a signature unless we are
* debugging.
*/
result = dns_message_checksig(client->message, client->view);
if (result != ISC_R_SUCCESS) {
ns_client_error(client, result);
return;
}
client->signer = NULL;
dns_name_init(&client->signername, NULL);
result = dns_message_signer(client->message, &client->signername);
if (result == DNS_R_SUCCESS) {
isc_log_write(dns_lctx, DNS_LOGCATEGORY_SECURITY,
NS_LOGMODULE_CLIENT, ISC_LOG_DEBUG(3),
"request has valid signature");
client->signer = &client->signername;
} else if (result == DNS_R_NOTFOUND) {
isc_log_write(dns_lctx, DNS_LOGCATEGORY_SECURITY,
NS_LOGMODULE_CLIENT, ISC_LOG_DEBUG(3),
"request is not signed");
} else if (result == DNS_R_NOIDENTITY) {
isc_log_write(dns_lctx, DNS_LOGCATEGORY_SECURITY,
NS_LOGMODULE_CLIENT, ISC_LOG_DEBUG(3),
"request is signed by a nonauthoritative key");
} else {
/* There is a signature, but it is bad. */
isc_log_write(dns_lctx, DNS_LOGCATEGORY_SECURITY,
NS_LOGMODULE_CLIENT, ISC_LOG_ERROR,
"request has invalid signature: %s",
isc_result_totext(result));
}
/*
* Decide whether recursive service is available to this client.
* We do this here rather than in the query code so that we can
* set the RA bit correctly on all kinds of responses, not just
* responses to ordinary queries.
*/
if (client->view->resolver == NULL) {
ra = ISC_FALSE;
} else {
ra = ISC_TRUE;
if (ns_g_server->recursion == ISC_TRUE) {
/* XXX ACL should be view specific. */
/* XXX this will log too much too early */
result = dns_acl_checkrequest(client->signer,
ns_client_getsockaddr(client),
"recursion",
ns_g_server->recursionacl,
NULL, ISC_TRUE);
if (result != DNS_R_SUCCESS)
ra = ISC_FALSE;
}
}
if (ra == ISC_TRUE)
client->attributes |= NS_CLIENTATTR_RA;
/*
* Dispatch the request.
*/
switch (client->message->opcode) {
case dns_opcode_query:
CTRACE("query");
ns_query_start(client);
break;
case dns_opcode_update:
CTRACE("update");
ns_update_start(client);
break;
case dns_opcode_notify:
CTRACE("notify");
ns_notify_start(client);
break;
case dns_opcode_iquery:
CTRACE("iquery");
ns_client_error(client, DNS_R_NOTIMP);
default:
CTRACE("unknown opcode");
ns_client_error(client, DNS_R_NOTIMP);
}
}
static void
client_timeout(isc_task_t *task, isc_event_t *event) {
ns_client_t *client;
REQUIRE(event != NULL);
REQUIRE(event->type == ISC_TIMEREVENT_LIFE ||
event->type == ISC_TIMEREVENT_IDLE);
client = event->arg;
REQUIRE(NS_CLIENT_VALID(client));
REQUIRE(task == client->task);
REQUIRE(client->timer != NULL);
CTRACE("timeout");
isc_event_free(&event);
ns_client_next(client, ISC_R_TIMEDOUT);
}
static isc_result_t
client_create(ns_clientmgr_t *manager,
ns_interface_t *ifp, ns_client_t **clientp)
{
ns_client_t *client;
isc_result_t result;
/*
* Caller must be holding the manager lock.
*
* Note: creating a client does not add the client to the
* manager's client list or set the client's manager pointer.
* The caller is responsible for that.
*/
REQUIRE(clientp != NULL && *clientp == NULL);
client = isc_mem_get(manager->mctx, sizeof *client);
if (client == NULL)
return (ISC_R_NOMEMORY);
client->task = NULL;
result = isc_task_create(manager->taskmgr, manager->mctx, 0,
&client->task);
if (result != ISC_R_SUCCESS)
goto cleanup_client;
result = isc_task_onshutdown(client->task, client_shutdown, client);
if (result != ISC_R_SUCCESS)
goto cleanup_task;
client->timer = NULL;
result = isc_timer_create(manager->timermgr, isc_timertype_inactive,
NULL, NULL, client->task, client_timeout,
client, &client->timer);
if (result != ISC_R_SUCCESS)
goto cleanup_task;
client->message = NULL;
result = dns_message_create(manager->mctx, DNS_MESSAGE_INTENTPARSE,
&client->message);
if (result != ISC_R_SUCCESS)
goto cleanup_timer;
/* XXXRTH Hardwired constants */
client->sendbufs = NULL;
result = isc_mempool_create(manager->mctx, SEND_BUFFER_SIZE,
&client->sendbufs);
if (result != ISC_R_SUCCESS)
goto cleanup_message;
isc_mempool_setfreemax(client->sendbufs, 3);
isc_mempool_setmaxalloc(client->sendbufs, 3);
client->magic = NS_CLIENT_MAGIC;
client->mctx = manager->mctx;
client->manager = NULL;
client->shuttingdown = ISC_FALSE;
client->waiting_for_bufs = ISC_FALSE;
client->naccepts = 0;
client->nreads = 0;
client->nsends = 0;
client->nwaiting = 0;
client->attributes = 0;
client->view = NULL;
client->dispatch = NULL;
client->dispentry = NULL;
client->dispevent = NULL;
client->tcplistener = NULL;
client->tcpsocket = NULL;
client->tcpmsg_valid = ISC_FALSE;
client->opt = NULL;
client->udpsize = 512;
client->next = NULL;
client->shutdown = NULL;
client->shutdown_arg = NULL;
dns_name_init(&client->signername, NULL);
client->mortal = ISC_FALSE;
client->tcpquota = NULL;
client->recursionquota = NULL;
client->interface = NULL;
ISC_LINK_INIT(client, link);
/*
* We call the init routines for the various kinds of client here,
* after we have created an otherwise valid client, because some
* of them call routines that REQUIRE(NS_CLIENT_VALID(client)).
*/
result = ns_query_init(client);
if (result != ISC_R_SUCCESS)
goto cleanup_sendbufs;
ns_interface_attach(ifp, &client->interface);
CTRACE("create");
*clientp = client;
return (ISC_R_SUCCESS);
cleanup_sendbufs:
isc_mempool_destroy(&client->sendbufs);
client->magic = 0;
cleanup_message:
dns_message_destroy(&client->message);
cleanup_timer:
isc_timer_detach(&client->timer);
cleanup_task:
isc_task_detach(&client->task);
cleanup_client:
isc_mem_put(manager->mctx, client, sizeof *client);
return (result);
}
static void
client_read(ns_client_t *client) {
isc_result_t result;
CTRACE("read");
result = dns_tcpmsg_readmessage(&client->tcpmsg, client->task,
client_request, client);
if (result != ISC_R_SUCCESS)
ns_client_next(client, result);
INSIST(client->nreads == 0);
client->nreads++;
}
static void
client_newconn(isc_task_t *task, isc_event_t *event) {
ns_client_t *client = event->arg;
isc_socket_newconnev_t *nevent = (isc_socket_newconnev_t *)event;
isc_result_t result;
REQUIRE(event->type == ISC_SOCKEVENT_NEWCONN);
REQUIRE(NS_CLIENT_VALID(client));
REQUIRE(client->task == task);
CTRACE("newconn");
INSIST(client->naccepts == 1);
client->naccepts--;
LOCK(&client->interface->lock);
INSIST(client->interface->ntcpcurrent > 0);
client->interface->ntcpcurrent--;
UNLOCK(&client->interface->lock);
if (client->shuttingdown) {
maybe_free(client);
} else if (nevent->result == ISC_R_SUCCESS) {
client->tcpsocket = nevent->newsocket;
INSIST(client->tcpmsg_valid == ISC_FALSE);
dns_tcpmsg_init(client->mctx, client->tcpsocket,
&client->tcpmsg);
client->tcpmsg_valid = ISC_TRUE;
/*
* Let a new client take our place immediately, before
* we wait for a request packet. If we don't,
* telnetting to port 35 (once per CPU) will
* deny service to legititmate TCP clients.
*/
result = isc_quota_attach(&ns_g_server->tcpquota,
&client->tcpquota);
if (result == ISC_R_SUCCESS)
result = ns_client_replace(client);
if (result != ISC_R_SUCCESS) {
isc_log_write(ns_g_lctx, NS_LOGCATEGORY_CLIENT,
NS_LOGMODULE_CLIENT, ISC_LOG_WARNING,
"no more TCP clients: %s",
isc_result_totext(result));
}
client_read(client);
} else {
/*
* XXXRTH What should we do? We're trying to accept but
* it didn't work. If we just give up, then TCP
* service may eventually stop.
*
* For now, we just go idle.
*
* Going idle is probably the right thing if the
* I/O was canceled.
*/
}
isc_event_free(&event);
}
static void
client_accept(ns_client_t *client) {
isc_result_t result;
CTRACE("accept");
result = isc_socket_accept(client->tcplistener, client->task,
client_newconn, client);
if (result != ISC_R_SUCCESS) {
UNEXPECTED_ERROR(__FILE__, __LINE__,
"isc_socket_accept() failed: %s",
isc_result_totext(result));
/*
* XXXRTH What should we do? We're trying to accept but
* it didn't work. If we just give up, then TCP
* service may eventually stop.
*
* For now, we just go idle.
*/
return;
}
INSIST(client->naccepts == 0);
client->naccepts++;
LOCK(&client->interface->lock);
client->interface->ntcpcurrent++;
UNLOCK(&client->interface->lock);
}
void
ns_client_wait(ns_client_t *client) {
client->nwaiting++;
}
isc_boolean_t
ns_client_shuttingdown(ns_client_t *client) {
return (client->shuttingdown);
}
void
ns_client_unwait(ns_client_t *client) {
client->nwaiting--;
INSIST(client->nwaiting >= 0);
if (client->shuttingdown)
maybe_free(client);
}
isc_result_t
ns_client_replace(ns_client_t *client) {
isc_result_t result;
CTRACE("replace");
result = ns_clientmgr_createclients(client->manager,
1, client->interface,
(TCP_CLIENT(client) ?
ISC_TRUE : ISC_FALSE));
if (result != ISC_R_SUCCESS)
return (result);
/*
* The responsibility for listening for new requests is hereby
* transferred to the new client. Therefore, the old client
* should refrain from listening for any more requests.
*/
client->mortal = ISC_TRUE;
return (ISC_R_SUCCESS);
}
/***
*** Client Manager
***/
static void
clientmgr_destroy(ns_clientmgr_t *manager) {
REQUIRE(manager->nclients == 0);
REQUIRE(ISC_LIST_EMPTY(manager->clients));
MTRACE("clientmgr_destroy");
manager->magic = 0;
isc_mem_put(manager->mctx, manager, sizeof *manager);
}
isc_result_t
ns_clientmgr_create(isc_mem_t *mctx, isc_taskmgr_t *taskmgr,
isc_timermgr_t *timermgr, ns_clientmgr_t **managerp)
{
ns_clientmgr_t *manager;
isc_result_t result;
manager = isc_mem_get(mctx, sizeof *manager);
if (manager == NULL)
return (ISC_R_NOMEMORY);
result = isc_mutex_init(&manager->lock);
if (result != ISC_R_SUCCESS)
goto cleanup_manager;
manager->mctx = mctx;
manager->taskmgr = taskmgr;
manager->timermgr = timermgr;
manager->exiting = ISC_FALSE;
manager->nclients = 0;
ISC_LIST_INIT(manager->clients);
manager->magic = MANAGER_MAGIC;
MTRACE("create");
*managerp = manager;
return (ISC_R_SUCCESS);
cleanup_manager:
isc_mem_put(manager->mctx, manager, sizeof *manager);
return (result);
}
void
ns_clientmgr_destroy(ns_clientmgr_t **managerp) {
ns_clientmgr_t *manager;
ns_client_t *client;
isc_boolean_t need_destroy = ISC_FALSE;
REQUIRE(managerp != NULL);
manager = *managerp;
REQUIRE(VALID_MANAGER(manager));
MTRACE("destroy");
LOCK(&manager->lock);
manager->exiting = ISC_TRUE;
for (client = ISC_LIST_HEAD(manager->clients);
client != NULL;
client = ISC_LIST_NEXT(client, link))
isc_task_shutdown(client->task);
if (ISC_LIST_EMPTY(manager->clients))
need_destroy = ISC_TRUE;
UNLOCK(&manager->lock);
if (need_destroy)
clientmgr_destroy(manager);
*managerp = NULL;
}
isc_result_t
ns_clientmgr_createclients(ns_clientmgr_t *manager, unsigned int n,
ns_interface_t *ifp, isc_boolean_t tcp)
{
isc_result_t result = ISC_R_SUCCESS;
unsigned int i;
ns_client_t *client;
REQUIRE(VALID_MANAGER(manager));
REQUIRE(n > 0);
MTRACE("createclients");
/*
* We MUST lock the manager lock for the entire client creation
* process. If we didn't do this, then a client could get a
* shutdown event and disappear out from under us.
*/
LOCK(&manager->lock);
for (i = 0; i < n; i++) {
client = NULL;
result = client_create(manager, ifp, &client);
if (result != ISC_R_SUCCESS)
break;
if (tcp) {
client->attributes |= NS_CLIENTATTR_TCP;
isc_socket_attach(ifp->tcpsocket, &client->tcplistener);
client_accept(client);
} else {
dns_dispatch_attach(ifp->udpdispatch, &client->dispatch);
result = dns_dispatch_addrequest(client->dispatch,
client->task,
client_request,
client, &client->dispentry);
if (result != ISC_R_SUCCESS) {
isc_log_write(dns_lctx, DNS_LOGCATEGORY_SECURITY,
NS_LOGMODULE_CLIENT, ISC_LOG_DEBUG(3),
"dns_dispatch_addrequest() failed: %s",
isc_result_totext(result));
isc_task_shutdown(client->task);
break;
}
}
client->manager = manager;
ISC_LIST_APPEND(manager->clients, client, link);
manager->nclients++;
}
if (i != 0) {
/*
* We managed to create at least one client, so we
* declare victory.
*/
result = ISC_R_SUCCESS;
}
UNLOCK(&manager->lock);
return (result);
}
isc_sockaddr_t *
ns_client_getsockaddr(ns_client_t *client) {
if (TCP_CLIENT(client))
return (&client->tcpmsg.address);
else
return (&client->dispevent->addr);
}