3 # freeside-selfservice-server
5 # alas, much false laziness with freeside-queued and fs_signup_server. at
6 # least it is slated to replace fs_{signup,passwd,mailadmin}_server
7 # should probably generalize the version in here, or better yet use
8 # Proc::Daemon or somesuch
11 use vars qw( $Debug %kids $kids $max_kids $shutdown $log_file $ssh_pid
13 use subs qw( lock_write unlock_write );
15 use POSIX qw(:sys_wait_h setsid);
19 use Storable 2.09 qw(nstore_fd fd_retrieve);
20 use Net::SSH qw(sshopen2);
21 use FS::UID qw(adminsuidsetup forksuidsetup);
28 $Debug = 1; # 2 will turn on more logging
29 # 3 will log packet contents, including passwords
33 $keepalives = 0; #let clientd turn it on, so we don't barf on old ones
36 my $user = shift or die &usage;
37 my $machine = shift or die &usage;
38 my $tag = scalar(@ARGV) ? shift : '';
40 # $FS::UID::datasrc not posible
41 my $pid_file = "/var/run/freeside-selfservice-server.$user.$machine.pid";
43 my $lock_file = "/usr/local/etc/freeside/selfservice.$machine.writelock";
47 my $conf = new FS::Conf;
49 my $clientd = "/usr/local/sbin/freeside-selfservice-clientd"; #better name?
53 my($writer,$reader,$error) = (new IO::Handle, new IO::Handle, new IO::Handle);
54 warn "connecting to $machine\n" if $Debug;
56 $ssh_pid = sshopen2($machine,$reader,$writer,$clientd,$tag);
58 # nstore_fd(\*writer, {'hi'=>'there'});
60 warn "entering main loop\n" if $Debug;
62 my $keepalive_count = 0;
63 my $s = IO::Select->new( $reader );
68 warn "waiting for packet from client\n" if $Debug && !$undisp;
70 my @handles = $s->can_read(5);
72 &shutdown if $shutdown;
73 if ( $keepalives && $keepalive_count++ > 10 ) {
76 nstore_fd( { _token => '_keepalive' }, $writer );
84 warn "receiving packet from client\n" if $Debug;
86 my $packet = eval { fd_retrieve($reader); };
88 warn "Storable error receiving packet from client".
89 " (assuming lost connection): $@\n"
92 warn "sending TERM signal to ssh process $ssh_pid\n" if $Debug;
93 kill 'TERM', $ssh_pid;
98 warn "packet received\n".
99 join('', map { " $_=>$packet->{$_}\n" } keys %$packet )
102 if ( $packet->{_packet} eq '_enable_keepalive' ) {
103 warn "enabling keep alives\n" if $Debug;
108 #prevent runaway forking
110 while ( $kids >= $max_kids ) {
111 warn "WARNING: maximum $kids children reached\n" unless $warnkids++;
116 warn "forking child\n" if $Debug;
117 defined( my $pid = fork ) or die "can't fork: $!";
121 warn "child $pid spawned\n" if $Debug;
125 #$FS::UID::dbh->{InactiveDestroy} = 1;
126 #forksuidsetup($user);
129 adminsuidsetup($user);
131 my $type = $packet->{_packet};
132 warn "calling $type handler\n" if $Debug;
133 my $rv = eval { FS::ClientAPI->dispatch($type, $packet); };
135 warn my $error = "WARNING: error dispatching $type: $@";
136 $rv = { _error => $error };
138 $rv->{_token} = $packet->{_token}; #identifier
140 open(LOCKFILE,">$lock_file") or die "can't open $lock_file: $!";
142 warn "sending response\n" if $Debug;
143 nstore_fd($rv, $writer) or die "FATAL: can't send response: $!";
144 $writer->flush or die "FATAL: can't flush: $!";
147 warn "child exiting\n" if $Debug;
153 &shutdown if $shutdown;
154 warn "connection lost, reconnecting\n" if $Debug;
160 # utility subroutines
164 #warn "reaping kids\n";
165 foreach my $pid ( keys %kids ) {
166 my $kid = waitpid($pid, WNOHANG);
172 #warn "done reaping\n";
178 chdir "/" or die "Can't chdir to /: $!";
179 open STDIN, '/dev/null' or die "Can't read /dev/null: $!";
180 defined(my $pid = fork) or die "Can't fork: $!";
182 print "freeside-selfservice-server to $machine started with pid $pid\n"; #logging to $log_file
183 exit unless $pid_file;
184 my $pidfh = new IO::File ">$pid_file" or exit;
185 print $pidfh "$pid\n";
189 # sub REAPER { my $pid = wait; $SIG{CHLD} = \&REAPER; $kids--; }
190 # #sub REAPER { my $pid = wait; $kids--; $SIG{CHLD} = \&REAPER; }
191 # $SIG{CHLD} = \&REAPER;
194 $SIG{HUP} = sub { warn "SIGHUP received; shutting down\n"; $shutdown++; };
195 $SIG{INT} = sub { warn "SIGINT received; shutting down\n"; $shutdown++; };
196 $SIG{TERM} = sub { warn "SIGTERM received; shutting down\n"; $shutdown++; };
197 $SIG{QUIT} = sub { warn "SIGQUIT received; shutting down\n"; $shutdown++; };
198 $SIG{PIPE} = sub { warn "SIGPIPE received; shutting down\n"; $shutdown++; };
200 #false laziness w/freeside-queued
201 my $freeside_gid = scalar(getgrnam('freeside'))
202 or die "can't setgid to freeside group\n";
204 open(LOCKFILE,">$lock_file") or die "can't open $lock_file: $!";
205 chown $FS::UID::freeside_uid, $freeside_gid, $lock_file;
209 #if freebsd can't setuid(), presumably it can't setgid() either. grr fleabsd
213 $> = $FS::UID::freeside_uid;
214 $< = $FS::UID::freeside_uid;
215 #freebsd is sofa king broken, won't setuid()
217 $> = $FS::UID::freeside_uid;
220 $ENV{HOME} = (getpwuid($>))[7]; #for ssh
221 adminsuidsetup $user;
223 #$log_file = "/usr/local/etc/freeside/selfservice.". $FS::UID::datasrc; #MACHINE NAME
224 $log_file = "/usr/local/etc/freeside/selfservice.$machine.log";
226 open STDOUT, '>/dev/null'
227 or die "Can't write to /dev/null: $!";
228 setsid or die "Can't start a new session: $!";
229 open STDERR, '>&STDOUT' or die "Can't dup stdout: $!";
231 $SIG{__DIE__} = \&_die;
232 $SIG{__WARN__} = \&_logmsg;
234 warn "freeside-selfservice-server starting\n";
240 my $wait = 12; #wait up to 1 minute
241 while ( $kids > 0 && $wait-- ) {
242 warn "waiting for $kids children to terminate";
246 warn "abandoning $kids children" if $kids;
247 kill 'TERM', $ssh_pid if $ssh_pid;
253 unlink $pid_file if -e $pid_file;
258 chomp( my $msg = shift );
259 _do_logmsg( "[server] [". scalar(localtime). "] [$$] $msg\n" );
263 chomp( my $msg = shift );
264 my $log = new IO::File ">>$log_file";
265 flock($log, LOCK_EX);
268 flock($log, LOCK_UN);
273 warn "locking $lock_file mutex for write to write stream\n" if $Debug > 1;
276 #flock($writer, LOCK_EX) or die "FATAL: can't lock write stream: $!";
278 flock(LOCKFILE, LOCK_EX) or die "FATAL: can't lock $lock_file: $!";
283 warn "unlocking $lock_file mutex\n" if $Debug > 1;
286 #flock($writer, LOCK_UN) or die "WARNING: can't release write lock: $!";
288 flock(LOCKFILE, LOCK_UN) or die "FATAL: can't unlock $lock_file: $!";
293 die "Usage:\n\n freeside-selfservice-server user machine\n";