4 use vars qw( $FREESIDE_LOG $FREESIDE_LOCK );
5 use vars qw( $Debug %kids $kids $max_kids $ssh_pid %old_ssh_pid $keepalives );
6 use subs qw( lock_write unlock_write myshutdown usage );
8 use POSIX qw(:sys_wait_h);
12 use Storable 2.09 qw(nstore_fd fd_retrieve);
13 use Net::SSH qw(sshopen2);
14 use FS::Daemon qw(daemonize1 drop_root logfile daemonize2 sigint sigterm);
15 use FS::UID qw(adminsuidsetup forksuidsetup);
22 $FREESIDE_LOG = "%%%FREESIDE_LOG%%%";
23 $FREESIDE_LOCK = "%%%FREESIDE_LOCK%%%";
25 $Debug = 1; # 2 will turn on more logging
26 # 3 will log packet contents, including passwords
29 $keepalives = 0; #let clientd turn it on, so we don't barf on old ones
32 my $user = shift or die &usage;
33 my $machine = shift or die &usage;
34 my $tag = scalar(@ARGV) ? shift : '';
36 my $lock_file = "$FREESIDE_LOCK/selfservice.$machine.writelock";
38 # to keep pid files unique w/multi machines (and installs!)
39 # $FS::UID::datasrc not posible
40 daemonize1("freeside-selfservice-server","$user.$machine");
42 #false laziness w/Daemon::drop_root
43 my $freeside_gid = scalar(getgrnam('freeside'))
44 or die "can't find freeside group\n";
46 open(LOCKFILE,">$lock_file") or die "can't open $lock_file: $!";
47 chown $FS::UID::freeside_uid, $freeside_gid, $lock_file;
51 $ENV{HOME} = (getpwuid($>))[7]; #for ssh
55 #logfile("/usr/local/etc/freeside/selfservice.". $FS::UID::datasrc); #MACHINE
56 logfile("$FREESIDE_LOG/selfservice.$machine.log");
60 my $conf = new FS::Conf;
62 my $clientd = "/usr/local/sbin/freeside-selfservice-clientd"; #better name?
66 my($writer,$reader,$error) = (new IO::Handle, new IO::Handle, new IO::Handle);
67 warn "connecting to $machine\n" if $Debug;
69 $ssh_pid = sshopen2($machine,$reader,$writer,$clientd,$tag);
71 # nstore_fd(\*writer, {'hi'=>'there'});
73 warn "entering main loop\n" if $Debug;
75 my $keepalive_count = 0;
76 my $s = IO::Select->new( $reader );
81 warn "waiting for packet from client\n" if $Debug && !$undisp;
83 my @handles = $s->can_read(5);
85 myshutdown() if sigint() || sigterm();
86 if ( $keepalives && $keepalive_count++ > 10 ) {
89 nstore_fd( { _token => '_keepalive' }, $writer );
97 warn "receiving packet from client\n" if $Debug;
99 my $packet = eval { fd_retrieve($reader); };
101 warn "Storable error receiving packet from client".
102 " (assuming lost connection): $@\n"
105 warn "sending TERM signal to ssh process $ssh_pid\n" if $Debug;
106 kill 'TERM', $ssh_pid;
107 $old_ssh_pid{$ssh_pid} = 1;
112 warn "packet received\n".
113 join('', map { " $_=>$packet->{$_}\n" } keys %$packet )
116 if ( $packet->{_packet} eq '_enable_keepalive' ) {
117 warn "enabling keep alives\n" if $Debug;
122 #prevent runaway forking
124 while ( $kids >= $max_kids ) {
125 warn "WARNING: maximum $kids children reached\n" unless $warnkids++;
130 warn "forking child\n" if $Debug;
131 defined( my $pid = fork ) or die "can't fork: $!";
135 warn "child $pid spawned\n" if $Debug;
139 $FS::UID::dbh->{InactiveDestroy} = 1;
140 forksuidsetup($user);
143 #adminsuidsetup($user);
145 my $type = $packet->{_packet};
146 warn "calling $type handler\n" if $Debug;
147 my $rv = eval { FS::ClientAPI->dispatch($type, $packet); };
149 warn my $error = "WARNING: error dispatching $type: $@";
150 $rv = { _error => $error };
152 $rv->{_token} = $packet->{_token}; #identifier
154 open(LOCKFILE,">$lock_file") or die "can't open $lock_file: $!";
156 warn "sending response\n" if $Debug;
157 nstore_fd($rv, $writer) or die "FATAL: can't send response: $!";
158 $writer->flush or die "FATAL: can't flush: $!";
161 warn "child exiting\n" if $Debug;
167 myshutdown if sigint() || sigterm();
168 warn "connection lost, reconnecting\n" if $Debug;
174 # utility subroutines
178 #warn "reaping kids\n";
179 foreach my $pid ( keys %kids ) {
180 my $kid = waitpid($pid, WNOHANG);
187 foreach my $pid ( keys %old_ssh_pid ) {
188 waitpid($pid, WNOHANG) and delete $old_ssh_pid{$pid};
190 #warn "done reaping\n";
195 my $wait = 12; #wait up to 1 minute
196 while ( $kids > 0 && $wait-- ) {
197 warn "waiting for $kids children to terminate";
201 warn "abandoning $kids children" if $kids;
202 kill 'TERM', $ssh_pid if $ssh_pid;
207 warn "locking $lock_file mutex for write to write stream\n" if $Debug > 1;
210 #flock($writer, LOCK_EX) or die "FATAL: can't lock write stream: $!";
212 flock(LOCKFILE, LOCK_EX) or die "FATAL: can't lock $lock_file: $!";
217 warn "unlocking $lock_file mutex\n" if $Debug > 1;
220 #flock($writer, LOCK_UN) or die "WARNING: can't release write lock: $!";
222 flock(LOCKFILE, LOCK_UN) or die "FATAL: can't unlock $lock_file: $!";
227 die "Usage:\n\n freeside-selfservice-server user machine\n";