main.cpp 20 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571
  1. /*
  2. * Copyright (c) 2018-2021, Andreas Kling <kling@serenityos.org>
  3. * Copyright (c) 2021, Peter Elliott <pelliott@serenityos.org>
  4. *
  5. * SPDX-License-Identifier: BSD-2-Clause
  6. */
  7. #include "Service.h"
  8. #include <AK/Assertions.h>
  9. #include <AK/ByteBuffer.h>
  10. #include <AK/Debug.h>
  11. #include <AK/String.h>
  12. #include <Kernel/API/DeviceEvent.h>
  13. #include <LibCore/ArgsParser.h>
  14. #include <LibCore/ConfigFile.h>
  15. #include <LibCore/DirIterator.h>
  16. #include <LibCore/Event.h>
  17. #include <LibCore/EventLoop.h>
  18. #include <LibCore/File.h>
  19. #include <LibCore/System.h>
  20. #include <LibMain/Main.h>
  21. #include <errno.h>
  22. #include <fcntl.h>
  23. #include <grp.h>
  24. #include <signal.h>
  25. #include <stdio.h>
  26. #include <sys/stat.h>
  27. #include <sys/sysmacros.h>
  28. #include <sys/types.h>
  29. #include <sys/wait.h>
  30. #include <unistd.h>
  31. DeprecatedString g_system_mode = "graphical";
  32. Vector<NonnullRefPtr<Service>> g_services;
  33. // NOTE: This handler ensures that the destructor of g_services is called.
  34. static void sigterm_handler(int)
  35. {
  36. exit(0);
  37. }
  38. static void sigchld_handler(int)
  39. {
  40. for (;;) {
  41. int status = 0;
  42. pid_t pid = waitpid(-1, &status, WNOHANG);
  43. if (pid < 0) {
  44. perror("waitpid");
  45. break;
  46. }
  47. if (pid == 0)
  48. break;
  49. dbgln_if(SYSTEMSERVER_DEBUG, "Reaped child with pid {}, exit status {}", pid, status);
  50. Service* service = Service::find_by_pid(pid);
  51. if (service == nullptr) {
  52. // This can happen for multi-instance services.
  53. continue;
  54. }
  55. if (auto result = service->did_exit(status); result.is_error())
  56. dbgln("{}: {}", service->name(), result.release_error());
  57. }
  58. }
  59. static ErrorOr<void> determine_system_mode()
  60. {
  61. ArmedScopeGuard declare_text_mode_on_failure([&] {
  62. // Note: Only if the mode is not set to self-test, degrade it to text mode.
  63. if (g_system_mode != "self-test")
  64. g_system_mode = "text";
  65. });
  66. auto file_or_error = Core::File::open("/sys/kernel/constants/system_mode"sv, Core::File::OpenMode::Read);
  67. if (file_or_error.is_error()) {
  68. dbgln("Failed to read system_mode: {}", file_or_error.error());
  69. // Continue and assume "text" mode.
  70. return {};
  71. }
  72. auto const system_mode_buf_or_error = file_or_error.value()->read_until_eof();
  73. if (system_mode_buf_or_error.is_error()) {
  74. dbgln("Failed to read system_mode: {}", system_mode_buf_or_error.error());
  75. // Continue and assume "text" mode.
  76. return {};
  77. }
  78. DeprecatedString const system_mode = DeprecatedString::copy(system_mode_buf_or_error.value(), Chomp);
  79. g_system_mode = system_mode;
  80. declare_text_mode_on_failure.disarm();
  81. dbgln("Read system_mode: {}", g_system_mode);
  82. struct stat file_state;
  83. int rc = lstat("/dev/gpu/connector0", &file_state);
  84. if (rc != 0 && g_system_mode == "graphical") {
  85. dbgln("WARNING: No device nodes at /dev/gpu/ directory. This is probably a sign of disabled graphics functionality.");
  86. dbgln("To cope with this, I'll turn off graphical mode.");
  87. g_system_mode = "text";
  88. }
  89. return {};
  90. }
  91. static ErrorOr<void> chown_all_matching_device_nodes_under_specific_directory(StringView directory, group const& group)
  92. {
  93. struct stat cur_file_stat;
  94. Core::DirIterator di(directory, Core::DirIterator::SkipParentAndBaseDir);
  95. if (di.has_error())
  96. VERIFY_NOT_REACHED();
  97. while (di.has_next()) {
  98. auto entry_name = di.next_full_path();
  99. auto rc = stat(entry_name.characters(), &cur_file_stat);
  100. if (rc < 0)
  101. continue;
  102. TRY(Core::System::chown(entry_name, 0, group.gr_gid));
  103. }
  104. return {};
  105. }
  106. static ErrorOr<void> chown_all_matching_device_nodes(group const& group, unsigned major_number)
  107. {
  108. struct stat cur_file_stat;
  109. Core::DirIterator di("/dev/", Core::DirIterator::SkipParentAndBaseDir);
  110. if (di.has_error())
  111. VERIFY_NOT_REACHED();
  112. while (di.has_next()) {
  113. auto entry_name = di.next_full_path();
  114. auto rc = stat(entry_name.characters(), &cur_file_stat);
  115. if (rc < 0)
  116. continue;
  117. if (major(cur_file_stat.st_rdev) != major_number)
  118. continue;
  119. TRY(Core::System::chown(entry_name, 0, group.gr_gid));
  120. }
  121. return {};
  122. }
  123. inline char offset_character_with_number(char base_char, u8 offset)
  124. {
  125. char offsetted_char = base_char;
  126. VERIFY(static_cast<size_t>(offsetted_char) + static_cast<size_t>(offset) < 256);
  127. offsetted_char += offset;
  128. return offsetted_char;
  129. }
  130. static ErrorOr<void> create_devtmpfs_block_device(StringView name, mode_t mode, unsigned major, unsigned minor)
  131. {
  132. return Core::System::mknod(name, mode | S_IFBLK, makedev(major, minor));
  133. }
  134. static ErrorOr<void> create_devtmpfs_char_device(StringView name, mode_t mode, unsigned major, unsigned minor)
  135. {
  136. return Core::System::mknod(name, mode | S_IFCHR, makedev(major, minor));
  137. }
  138. static ErrorOr<void> populate_devtmpfs_char_devices_based_on_sysfs()
  139. {
  140. Core::DirIterator di("/sys/dev/char/", Core::DirIterator::SkipParentAndBaseDir);
  141. if (di.has_error()) {
  142. auto error = di.error();
  143. warnln("Failed to open /sys/dev/char - {}", error);
  144. return error;
  145. }
  146. while (di.has_next()) {
  147. auto entry_name = di.next_path().split(':');
  148. VERIFY(entry_name.size() == 2);
  149. auto major_number = entry_name[0].to_uint<unsigned>().value();
  150. auto minor_number = entry_name[1].to_uint<unsigned>().value();
  151. switch (major_number) {
  152. case 2: {
  153. switch (minor_number) {
  154. case 10: {
  155. TRY(create_devtmpfs_char_device("/dev/devctl"sv, 0660, 2, 10));
  156. break;
  157. }
  158. default:
  159. warnln("Unknown character device {}:{}", major_number, minor_number);
  160. }
  161. break;
  162. }
  163. default:
  164. break;
  165. }
  166. }
  167. return {};
  168. }
  169. static ErrorOr<bool> read_one_or_eof(NonnullOwnPtr<Core::File>& file, DeviceEvent& event)
  170. {
  171. auto const read_buf = TRY(file->read_some({ (u8*)&event, sizeof(DeviceEvent) }));
  172. if (read_buf.size() == sizeof(DeviceEvent)) {
  173. // Good! We could read another DeviceEvent.
  174. return true;
  175. }
  176. if (file->is_eof()) {
  177. // Good! We have reached the "natural" end of the file.
  178. return false;
  179. }
  180. // Bad! Kernel and SystemServer apparently disagree on the record size,
  181. // which means that previous data is likely to be invalid.
  182. return Error::from_string_view("File ended after incomplete record? /dev/devctl seems broken!"sv);
  183. }
  184. static ErrorOr<void> populate_devtmpfs_devices_based_on_devctl()
  185. {
  186. auto file_or_error = Core::File::open("/dev/devctl"sv, Core::File::OpenMode::Read);
  187. if (file_or_error.is_error()) {
  188. warnln("Failed to open /dev/devctl - {}", file_or_error.error());
  189. VERIFY_NOT_REACHED();
  190. }
  191. auto file = file_or_error.release_value();
  192. DeviceEvent event;
  193. while (TRY(read_one_or_eof(file, event))) {
  194. if (event.state != DeviceEvent::Inserted)
  195. continue;
  196. auto major_number = event.major_number;
  197. auto minor_number = event.minor_number;
  198. bool is_block_device = (event.is_block_device == 1);
  199. switch (major_number) {
  200. case 116: {
  201. if (!is_block_device) {
  202. auto name = TRY(String::formatted("/dev/audio/{}", minor_number));
  203. TRY(create_devtmpfs_char_device(name.bytes_as_string_view(), 0220, 116, minor_number));
  204. break;
  205. }
  206. break;
  207. }
  208. case 28: {
  209. auto name = TRY(String::formatted("/dev/gpu/render{}", minor_number));
  210. TRY(create_devtmpfs_block_device(name.bytes_as_string_view(), 0666, 28, minor_number));
  211. break;
  212. }
  213. case 226: {
  214. auto name = TRY(String::formatted("/dev/gpu/connector{}", minor_number));
  215. TRY(create_devtmpfs_char_device(name.bytes_as_string_view(), 0666, 226, minor_number));
  216. break;
  217. }
  218. case 229: {
  219. if (!is_block_device) {
  220. auto name = TRY(String::formatted("/dev/hvc0p{}", minor_number));
  221. TRY(create_devtmpfs_char_device(name.bytes_as_string_view(), 0666, 229, minor_number));
  222. }
  223. break;
  224. }
  225. case 10: {
  226. if (!is_block_device) {
  227. switch (minor_number) {
  228. case 0: {
  229. TRY(create_devtmpfs_char_device("/dev/input/mouse/0"sv, 0666, 10, 0));
  230. break;
  231. }
  232. default:
  233. warnln("Unknown character device {}:{}", major_number, minor_number);
  234. }
  235. }
  236. break;
  237. }
  238. case 85: {
  239. if (!is_block_device) {
  240. switch (minor_number) {
  241. case 0: {
  242. TRY(create_devtmpfs_char_device("/dev/input/keyboard/0"sv, 0666, 85, 0));
  243. break;
  244. }
  245. default:
  246. warnln("Unknown character device {}:{}", major_number, minor_number);
  247. }
  248. }
  249. break;
  250. }
  251. case 1: {
  252. if (!is_block_device) {
  253. switch (minor_number) {
  254. case 5: {
  255. TRY(create_devtmpfs_char_device("/dev/zero"sv, 0666, 1, 5));
  256. break;
  257. }
  258. case 1: {
  259. TRY(create_devtmpfs_char_device("/dev/mem"sv, 0666, 1, 1));
  260. break;
  261. }
  262. case 3: {
  263. TRY(create_devtmpfs_char_device("/dev/null"sv, 0666, 1, 3));
  264. break;
  265. }
  266. case 7: {
  267. TRY(create_devtmpfs_char_device("/dev/full"sv, 0666, 1, 7));
  268. break;
  269. }
  270. case 8: {
  271. TRY(create_devtmpfs_char_device("/dev/random"sv, 0666, 1, 8));
  272. break;
  273. }
  274. default:
  275. warnln("Unknown character device {}:{}", major_number, minor_number);
  276. break;
  277. }
  278. }
  279. break;
  280. }
  281. case 30: {
  282. if (!is_block_device) {
  283. auto name = TRY(String::formatted("/dev/kcov{}", minor_number));
  284. TRY(create_devtmpfs_char_device(name.bytes_as_string_view(), 0666, 30, minor_number));
  285. }
  286. break;
  287. }
  288. case 3: {
  289. if (is_block_device) {
  290. auto name = TRY(String::formatted("/dev/hd{}", offset_character_with_number('a', minor_number)));
  291. TRY(create_devtmpfs_block_device(name.bytes_as_string_view(), 0600, 3, minor_number));
  292. }
  293. break;
  294. }
  295. case 5: {
  296. if (!is_block_device) {
  297. switch (minor_number) {
  298. case 1: {
  299. TRY(create_devtmpfs_char_device("/dev/console"sv, 0666, 5, 1));
  300. break;
  301. }
  302. case 2: {
  303. TRY(create_devtmpfs_char_device("/dev/ptmx"sv, 0666, 5, 2));
  304. break;
  305. }
  306. case 0: {
  307. TRY(create_devtmpfs_char_device("/dev/tty"sv, 0666, 5, 0));
  308. break;
  309. }
  310. default:
  311. warnln("Unknown character device {}:{}", major_number, minor_number);
  312. }
  313. }
  314. break;
  315. }
  316. case 4: {
  317. if (!is_block_device) {
  318. switch (minor_number) {
  319. case 0: {
  320. TRY(create_devtmpfs_char_device("/dev/tty0"sv, 0620, 4, 0));
  321. break;
  322. }
  323. case 1: {
  324. TRY(create_devtmpfs_char_device("/dev/tty1"sv, 0620, 4, 1));
  325. break;
  326. }
  327. case 2: {
  328. TRY(create_devtmpfs_char_device("/dev/tty2"sv, 0620, 4, 2));
  329. break;
  330. }
  331. case 3: {
  332. TRY(create_devtmpfs_char_device("/dev/tty3"sv, 0620, 4, 3));
  333. break;
  334. }
  335. case 64: {
  336. TRY(create_devtmpfs_char_device("/dev/ttyS0"sv, 0620, 4, 64));
  337. break;
  338. }
  339. case 65: {
  340. TRY(create_devtmpfs_char_device("/dev/ttyS1"sv, 0620, 4, 65));
  341. break;
  342. }
  343. case 66: {
  344. TRY(create_devtmpfs_char_device("/dev/ttyS2"sv, 0620, 4, 66));
  345. break;
  346. }
  347. case 67: {
  348. TRY(create_devtmpfs_char_device("/dev/ttyS3"sv, 0666, 4, 67));
  349. break;
  350. }
  351. default:
  352. warnln("Unknown character device {}:{}", major_number, minor_number);
  353. }
  354. }
  355. break;
  356. }
  357. default:
  358. if (!is_block_device)
  359. warnln("Unknown character device {}:{}", major_number, minor_number);
  360. else
  361. warnln("Unknown block device {}:{}", major_number, minor_number);
  362. break;
  363. }
  364. }
  365. return {};
  366. }
  367. static ErrorOr<void> populate_devtmpfs()
  368. {
  369. mode_t old_mask = umask(0);
  370. printf("Changing umask %#o\n", old_mask);
  371. TRY(populate_devtmpfs_char_devices_based_on_sysfs());
  372. TRY(populate_devtmpfs_devices_based_on_devctl());
  373. umask(old_mask);
  374. return {};
  375. }
  376. static ErrorOr<void> prepare_synthetic_filesystems()
  377. {
  378. // FIXME: Don't hardcode the fs type as the ext2 filesystem and once there's
  379. // more than this filesystem implementation (which is suitable for usage on
  380. // physical storage), find a way to detect it.
  381. TRY(Core::System::mount(-1, "/"sv, "ext2"sv, MS_REMOUNT | MS_NODEV | MS_NOSUID | MS_RDONLY));
  382. // FIXME: Find a better way to all of this stuff, without hardcoding all of this!
  383. TRY(Core::System::mount(-1, "/proc"sv, "proc"sv, MS_NOSUID));
  384. TRY(Core::System::mount(-1, "/sys"sv, "sys"sv, 0));
  385. TRY(Core::System::mount(-1, "/dev"sv, "ram"sv, MS_NOSUID | MS_NOEXEC | MS_NOREGULAR));
  386. TRY(Core::System::mount(-1, "/tmp"sv, "ram"sv, MS_NOSUID | MS_NODEV));
  387. // NOTE: Set /tmp to have a sticky bit with 0777 permissions.
  388. TRY(Core::System::chmod("/tmp"sv, 01777));
  389. TRY(Core::System::mkdir("/dev/audio"sv, 0755));
  390. TRY(Core::System::mkdir("/dev/input"sv, 0755));
  391. TRY(Core::System::mkdir("/dev/input/keyboard"sv, 0755));
  392. TRY(Core::System::mkdir("/dev/input/mouse"sv, 0755));
  393. TRY(Core::System::symlink("/proc/self/fd/0"sv, "/dev/stdin"sv));
  394. TRY(Core::System::symlink("/proc/self/fd/1"sv, "/dev/stdout"sv));
  395. TRY(Core::System::symlink("/proc/self/fd/2"sv, "/dev/stderr"sv));
  396. TRY(Core::System::mkdir("/dev/gpu"sv, 0755));
  397. TRY(populate_devtmpfs());
  398. TRY(Core::System::mkdir("/dev/pts"sv, 0755));
  399. TRY(Core::System::mount(-1, "/dev/pts"sv, "devpts"sv, 0));
  400. TRY(Core::System::symlink("/dev/random"sv, "/dev/urandom"sv));
  401. TRY(Core::System::chmod("/dev/urandom"sv, 0666));
  402. auto phys_group = TRY(Core::System::getgrnam("phys"sv));
  403. VERIFY(phys_group.has_value());
  404. // FIXME: Try to find a way to not hardcode the major number of display connector device nodes.
  405. TRY(chown_all_matching_device_nodes(phys_group.value(), 29));
  406. auto const filter_chown_ENOENT = [](ErrorOr<void> result) -> ErrorOr<void> {
  407. auto const chown_enoent = Error::from_syscall("chown"sv, -ENOENT);
  408. if (result.is_error() && result.error() == chown_enoent) {
  409. dbgln("{}", result.release_error());
  410. return {};
  411. }
  412. return result;
  413. };
  414. TRY(filter_chown_ENOENT(Core::System::chown("/dev/input/keyboard/0"sv, 0, phys_group.value().gr_gid)));
  415. TRY(filter_chown_ENOENT(Core::System::chown("/dev/input/mouse/0"sv, 0, phys_group.value().gr_gid)));
  416. auto tty_group = TRY(Core::System::getgrnam("tty"sv));
  417. VERIFY(tty_group.has_value());
  418. // FIXME: Try to find a way to not hardcode the major number of tty nodes.
  419. TRY(chown_all_matching_device_nodes(tty_group.release_value(), 4));
  420. auto audio_group = TRY(Core::System::getgrnam("audio"sv));
  421. VERIFY(audio_group.has_value());
  422. TRY(Core::System::chown("/dev/audio"sv, 0, audio_group->gr_gid));
  423. TRY(chown_all_matching_device_nodes_under_specific_directory("/dev/audio"sv, audio_group.release_value()));
  424. // Note: We open the /dev/null device and set file descriptors 0, 1, 2 to it
  425. // because otherwise these file descriptors won't have a custody, making
  426. // the ProcFS file descriptor links (at /proc/PID/fd/{0,1,2}) to have an
  427. // absolute path of "device:1,3" instead of something like "/dev/null".
  428. // This affects also every other process that inherits the file descriptors
  429. // from SystemServer, so it is important for other things (also for ProcFS
  430. // tests that are running in CI mode).
  431. int stdin_new_fd = TRY(Core::System::open("/dev/null"sv, O_NONBLOCK));
  432. TRY(Core::System::dup2(stdin_new_fd, 0));
  433. TRY(Core::System::dup2(stdin_new_fd, 1));
  434. TRY(Core::System::dup2(stdin_new_fd, 2));
  435. TRY(Core::System::endgrent());
  436. return {};
  437. }
  438. static ErrorOr<void> mount_all_filesystems()
  439. {
  440. dbgln("Spawning mount -a to mount all filesystems.");
  441. pid_t pid = TRY(Core::System::fork());
  442. if (pid == 0)
  443. TRY(Core::System::exec("/bin/mount"sv, Vector { "mount"sv, "-a"sv }, Core::System::SearchInPath::No));
  444. wait(nullptr);
  445. return {};
  446. }
  447. static ErrorOr<void> create_tmp_coredump_directory()
  448. {
  449. dbgln("Creating /tmp/coredump directory");
  450. auto old_umask = umask(0);
  451. // FIXME: the coredump directory should be made read-only once CrashDaemon is no longer responsible for compressing coredumps
  452. TRY(Core::System::mkdir("/tmp/coredump"sv, 0777));
  453. umask(old_umask);
  454. return {};
  455. }
  456. static ErrorOr<void> set_default_coredump_directory()
  457. {
  458. dbgln("Setting /tmp/coredump as the coredump directory");
  459. auto sysfs_coredump_directory_variable_fd = TRY(Core::System::open("/sys/kernel/variables/coredump_directory"sv, O_RDWR));
  460. ScopeGuard close_on_exit([&] {
  461. close(sysfs_coredump_directory_variable_fd);
  462. });
  463. auto tmp_coredump_directory_path = "/tmp/coredump"sv;
  464. auto nwritten = TRY(Core::System::write(sysfs_coredump_directory_variable_fd, tmp_coredump_directory_path.bytes()));
  465. VERIFY(static_cast<size_t>(nwritten) == tmp_coredump_directory_path.length());
  466. return {};
  467. }
  468. static ErrorOr<void> create_tmp_semaphore_directory()
  469. {
  470. dbgln("Creating /tmp/semaphore directory");
  471. auto old_umask = umask(0);
  472. TRY(Core::System::mkdir("/tmp/semaphore"sv, 0777));
  473. umask(old_umask);
  474. return {};
  475. }
  476. ErrorOr<int> serenity_main(Main::Arguments arguments)
  477. {
  478. bool user = false;
  479. Core::ArgsParser args_parser;
  480. args_parser.add_option(user, "Run in user-mode", "user", 'u');
  481. args_parser.parse(arguments);
  482. if (!user) {
  483. TRY(mount_all_filesystems());
  484. TRY(prepare_synthetic_filesystems());
  485. }
  486. TRY(Core::System::pledge("stdio proc exec tty accept unix rpath wpath cpath chown fattr id sigaction"));
  487. if (!user) {
  488. TRY(create_tmp_coredump_directory());
  489. TRY(set_default_coredump_directory());
  490. TRY(create_tmp_semaphore_directory());
  491. TRY(determine_system_mode());
  492. }
  493. Core::EventLoop event_loop;
  494. event_loop.register_signal(SIGCHLD, sigchld_handler);
  495. event_loop.register_signal(SIGTERM, sigterm_handler);
  496. // Read our config and instantiate services.
  497. // This takes care of setting up sockets.
  498. auto config = (user)
  499. ? TRY(Core::ConfigFile::open_for_app("SystemServer"))
  500. : TRY(Core::ConfigFile::open_for_system("SystemServer"));
  501. for (auto const& name : config->groups()) {
  502. auto service = TRY(Service::try_create(*config, name));
  503. if (service->is_enabled())
  504. g_services.append(move(service));
  505. }
  506. // After we've set them all up, activate them!
  507. dbgln("Activating {} services...", g_services.size());
  508. for (auto& service : g_services) {
  509. if (auto result = service->activate(); result.is_error())
  510. dbgln("{}: {}", service->name(), result.release_error());
  511. }
  512. return event_loop.exec();
  513. }