rawlog.c revision b8d232d88018c5cafd2f3be5a181d318137a45f2
/* Copyright (c) 2002-2008 Dovecot authors, see the included COPYING file */
#include "lib.h"
#include "ioloop.h"
#include "network.h"
#include "write-full.h"
#include "istream.h"
#include "ostream.h"
#include "process-title.h"
#include "restrict-access.h"
#include <stdlib.h>
#include <unistd.h>
#include <fcntl.h>
#include <sys/stat.h>
#include <sys/socket.h>
#define MAX_PROXY_INPUT_SIZE 4096
#define OUTBUF_THRESHOLD 1024
#define TIMESTAMP_WAIT_TIME 5
#define TIMESTAMP_FORMAT "* OK [RAWLOG TIMESTAMP] %Y-%m-%d %H:%M:%S\n"
static struct ioloop *ioloop;
enum rawlog_flags {
RAWLOG_FLAG_LOG_INPUT = 0x01,
RAWLOG_FLAG_LOG_OUTPUT = 0x02,
RAWLOG_FLAG_LOG_TIMESTAMPS = 0x04,
RAWLOG_FLAG_LOG_BOUNDARIES = 0X10
};
struct rawlog_proxy {
int client_in_fd, client_out_fd, server_fd;
struct io *client_io, *server_io;
struct istream *server_input;
struct ostream *client_output, *server_output;
int fd_in, fd_out;
enum rawlog_flags flags;
time_t last_write;
unsigned int last_out_lf:1;
};
static void rawlog_proxy_destroy(struct rawlog_proxy *proxy)
{
if (proxy->fd_in != -1) {
if (close(proxy->fd_in) < 0)
i_error("close(in) failed: %m");
}
if (proxy->fd_out != -1) {
if (close(proxy->fd_out) < 0)
i_error("close(out) failed: %m");
}
if (proxy->client_io != NULL)
io_remove(&proxy->client_io);
if (proxy->server_io != NULL)
io_remove(&proxy->server_io);
i_stream_destroy(&proxy->server_input);
o_stream_destroy(&proxy->client_output);
o_stream_destroy(&proxy->server_output);
if (close(proxy->client_in_fd) < 0)
i_error("close(client_in_fd) failed: %m");
if (close(proxy->client_out_fd) < 0)
i_error("close(client_out_fd) failed: %m");
if (close(proxy->server_fd) < 0)
i_error("close(server_fd) failed: %m");
i_free(proxy);
io_loop_stop(ioloop);
}
static void proxy_write_in(struct rawlog_proxy *proxy,
const void *data, size_t size)
{
if (proxy->fd_in == -1 || size == 0)
return;
if ((proxy->flags & RAWLOG_FLAG_LOG_BOUNDARIES) != 0)
write_full(proxy->fd_in, "<<<", 3);
if (write_full(proxy->fd_in, data, size) < 0) {
/* failed, disable logging */
i_error("write(in) failed: %m");
(void)close(proxy->fd_in);
proxy->fd_in = -1;
} else if ((proxy->flags & RAWLOG_FLAG_LOG_BOUNDARIES) != 0) {
write_full(proxy->fd_in, ">>>\n", 4);
}
}
static void proxy_write_out(struct rawlog_proxy *proxy,
const void *data, size_t size)
{
struct tm *tm;
char buf[256];
if (proxy->fd_out == -1 || size == 0)
return;
if (proxy->last_out_lf &&
(proxy->flags & RAWLOG_FLAG_LOG_TIMESTAMPS) != 0 &&
ioloop_time - proxy->last_write >= TIMESTAMP_WAIT_TIME) {
tm = localtime(&ioloop_time);
if (strftime(buf, sizeof(buf), TIMESTAMP_FORMAT, tm) <= 0)
i_fatal("strftime() failed");
if (write_full(proxy->fd_out, buf, strlen(buf)) < 0)
i_fatal("Can't write to log file: %m");
}
if ((proxy->flags & RAWLOG_FLAG_LOG_BOUNDARIES) != 0)
write_full(proxy->fd_out, "<<<", 3);
if (write_full(proxy->fd_out, data, size) < 0) {
/* failed, disable logging */
i_error("write(out) failed: %m");
(void)close(proxy->fd_out);
proxy->fd_out = -1;
} else if ((proxy->flags & RAWLOG_FLAG_LOG_BOUNDARIES) != 0) {
write_full(proxy->fd_out, ">>>\n", 4);
}
proxy->last_write = ioloop_time;
proxy->last_out_lf = ((const unsigned char *)buf)[size-1] == '\n' ||
(proxy->flags & RAWLOG_FLAG_LOG_BOUNDARIES) != 0;
}
static void server_input(struct rawlog_proxy *proxy)
{
unsigned char buf[OUTBUF_THRESHOLD];
ssize_t ret;
if (o_stream_get_buffer_used_size(proxy->client_output) >
OUTBUF_THRESHOLD) {
/* client's output buffer is already quite full.
don't send more until we're below threshold. */
io_remove(&proxy->server_io);
return;
}
ret = net_receive(proxy->server_fd, buf, sizeof(buf));
if (ret > 0) {
(void)o_stream_send(proxy->client_output, buf, ret);
proxy_write_out(proxy, buf, ret);
} else if (ret <= 0)
rawlog_proxy_destroy(proxy);
}
static void client_input(struct rawlog_proxy *proxy)
{
unsigned char buf[OUTBUF_THRESHOLD];
ssize_t ret;
if (o_stream_get_buffer_used_size(proxy->server_output) >
OUTBUF_THRESHOLD) {
/* proxy's output buffer is already quite full.
don't send more until we're below threshold. */
io_remove(&proxy->client_io);
return;
}
ret = net_receive(proxy->client_in_fd, buf, sizeof(buf));
if (ret > 0) {
(void)o_stream_send(proxy->server_output, buf, ret);
proxy_write_in(proxy, buf, ret);
} else if (ret < 0)
rawlog_proxy_destroy(proxy);
}
static int server_output(struct rawlog_proxy *proxy)
{
if (o_stream_flush(proxy->server_output) < 0) {
rawlog_proxy_destroy(proxy);
return 1;
}
if (proxy->client_io == NULL &&
o_stream_get_buffer_used_size(proxy->server_output) <
OUTBUF_THRESHOLD) {
/* there's again space in proxy's output buffer, so we can
read more from client. */
proxy->client_io = io_add(proxy->client_in_fd, IO_READ,
client_input, proxy);
}
return 1;
}
static int client_output(struct rawlog_proxy *proxy)
{
if (o_stream_flush(proxy->client_output) < 0) {
rawlog_proxy_destroy(proxy);
return 1;
}
if (proxy->server_io == NULL &&
o_stream_get_buffer_used_size(proxy->client_output) <
OUTBUF_THRESHOLD) {
/* there's again space in client's output buffer, so we can
read more from proxy. */
proxy->server_io =
io_add(proxy->server_fd, IO_READ, server_input, proxy);
}
return 1;
}
static void proxy_open_logs(struct rawlog_proxy *proxy, const char *path)
{
time_t now;
struct tm *tm;
const char *fname;
char timestamp[50];
now = time(NULL);
tm = localtime(&now);
if (strftime(timestamp, sizeof(timestamp), "%Y%m%d-%H%M%S", tm) <= 0)
i_fatal("strftime() failed");
if ((proxy->flags & RAWLOG_FLAG_LOG_INPUT) != 0) {
fname = t_strdup_printf("%s/%s-%s.in", path, timestamp,
dec2str(getpid()));
proxy->fd_in = open(fname, O_CREAT|O_EXCL|O_WRONLY, 0600);
if (proxy->fd_in == -1) {
i_error("rawlog_open: open() failed for %s: %m", fname);
return;
}
}
if ((proxy->flags & RAWLOG_FLAG_LOG_OUTPUT) != 0) {
fname = t_strdup_printf("%s/%s-%s.out", path, timestamp,
dec2str(getpid()));
proxy->fd_out = open(fname, O_CREAT|O_EXCL|O_WRONLY, 0600);
if (proxy->fd_out == -1) {
i_error("rawlog_open: open() failed for %s: %m", fname);
(void)close(proxy->fd_in);
proxy->fd_in = -1;
return;
}
}
}
static struct rawlog_proxy *
rawlog_proxy_create(int client_in_fd, int client_out_fd, int server_fd,
const char *path, enum rawlog_flags flags)
{
struct rawlog_proxy *proxy;
proxy = i_new(struct rawlog_proxy, 1);
proxy->server_fd = server_fd;
proxy->server_input =
i_stream_create_fd(server_fd, MAX_PROXY_INPUT_SIZE, FALSE);
proxy->server_output = o_stream_create_fd(server_fd, (size_t)-1, FALSE);
proxy->server_io = io_add(server_fd, IO_READ, server_input, proxy);
o_stream_set_flush_callback(proxy->server_output, server_output, proxy);
proxy->client_in_fd = client_in_fd;
proxy->client_out_fd = client_out_fd;
proxy->client_output =
o_stream_create_fd(client_out_fd, (size_t)-1, FALSE);
proxy->client_io = io_add(proxy->client_in_fd, IO_READ,
client_input, proxy);
o_stream_set_flush_callback(proxy->client_output, client_output, proxy);
proxy->last_out_lf = TRUE;
proxy->flags = flags;
proxy->fd_in = proxy->fd_out = -1;
proxy_open_logs(proxy, path);
return proxy;
}
static void rawlog_open(enum rawlog_flags flags)
{
const char *chroot_dir, *home, *path;
struct stat st;
int sfd[2];
pid_t pid;
chroot_dir = getenv("RESTRICT_CHROOT");
home = getenv("HOME");
if (chroot_dir != NULL)
home = t_strconcat(chroot_dir, home, NULL);
else if (home == NULL)
home = ".";
/* see if we want rawlog */
path = t_strconcat(home, "/dovecot.rawlog", NULL);
if (lstat(path, &st) < 0) {
if (errno != ENOENT)
i_warning("lstat() failed for %s: %m", path);
return;
}
if (!S_ISDIR(st.st_mode))
return;
if (chroot_dir != NULL) {
/* we'll chroot soon. skip over the chroot in the path. */
path += strlen(chroot_dir);
}
if (socketpair(AF_UNIX, SOCK_STREAM, 0, sfd) < 0)
i_fatal("socketpair() failed: %m");
pid = fork();
if (pid < 0)
i_fatal("fork() failed: %m");
if (pid > 0) {
/* parent */
if (dup2(sfd[1], 0) < 0)
i_fatal("dup2(sfd, 0)");
if (dup2(sfd[1], 1) < 0)
i_fatal("dup2(sfd, 1)");
(void)close(sfd[0]);
(void)close(sfd[1]);
return;
}
(void)close(sfd[1]);
restrict_access_by_env(TRUE);
process_title_set(t_strdup_printf("[%s:%s rawlog]", getenv("USER"),
dec2str(getppid())));
ioloop = io_loop_create();
rawlog_proxy_create(0, 1, sfd[0], path, flags);
io_loop_run(ioloop);
io_loop_destroy(&ioloop);
lib_deinit();
exit(0);
}
int main(int argc, char *argv[], char *envp[])
{
char *executable, *p;
enum rawlog_flags flags;
flags = RAWLOG_FLAG_LOG_INPUT | RAWLOG_FLAG_LOG_OUTPUT;
lib_init();
process_title_init(argv, envp);
argc--;
argv++;
while (argc > 0 && *argv[0] == '-') {
if (strcmp(argv[0], "-i") == 0)
flags &= ~RAWLOG_FLAG_LOG_OUTPUT;
else if (strcmp(argv[0], "-o") == 0)
flags &= ~RAWLOG_FLAG_LOG_INPUT;
else if (strcmp(argv[0], "-b") == 0)
flags |= RAWLOG_FLAG_LOG_BOUNDARIES;
else {
argc = 0;
break;
}
argc--;
argv++;
}
if (argc < 1)
i_fatal("Usage: rawlog [-i | -o] [-b] <binary> <arguments>");
executable = argv[0];
if (strstr(executable, "/imap") != NULL)
flags |= RAWLOG_FLAG_LOG_TIMESTAMPS;
rawlog_open(flags);
/* hide the executable path, it's ugly */
p = strrchr(argv[0], '/');
if (p != NULL) argv[0] = p+1;
execv(executable, argv);
i_fatal_status(FATAL_EXEC, "execv(%s) failed: %m", executable);
/* not reached */
return FATAL_EXEC;
}