Check insert option when iptables commit
[platform/core/connectivity/stc-manager.git] / src / stc-manager.c
1 /*
2  * Copyright (c) 2016 Samsung Electronics Co., Ltd.
3  *
4  * Licensed under the Apache License, Version 2.0 (the "License");
5  * you may not use this file except in compliance with the License.
6  * You may obtain a copy of the License at
7  *
8  * http://www.apache.org/licenses/LICENSE-2.0
9  *
10  * Unless required by applicable law or agreed to in writing, software
11  * distributed under the License is distributed on an "AS IS" BASIS,
12  * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13  * See the License for the specific language governing permissions and
14  * limitations under the License.
15  */
16
17 #include <signal.h>
18 #include <errno.h>
19 #include <sys/wait.h>
20 #include "stc-manager.h"
21 #include "stc-manager-gdbus.h"
22 #include "stc-db.h"
23 #include "counter.h"
24 #include "table-restrictions.h"
25 #include "helper-cgroup.h"
26 #include "helper-nfacct-rule.h"
27 #include "helper-iptables.h"
28 #include "helper-inotify.h"
29 #include "stc-monitor.h"
30 #include "stc-firewall.h"
31 #include "stc-manager-plugin-appstatus.h"
32 #include "stc-manager-plugin-exception.h"
33 #include "stc-manager-plugin-procfs.h"
34 #include "stc-manager-plugin-tether.h"
35
36 #define BUF_SIZE_FOR_ERR 100
37
38 static stc_s *g_stc = NULL;
39
40 static gboolean __validate_ident(const char *ident)
41 {
42         unsigned int i;
43
44         if (!ident)
45                 return FALSE;
46
47         for (i = 0; i < strlen(ident); ++i)
48                 if (!g_ascii_isprint(ident[i]))
49                         return FALSE;
50
51         return TRUE;
52 }
53
54 static void __stc_inotify_handler(struct inotify_event *event, const char *ident)
55 {
56         if (!ident)
57                 return;
58
59         if (!__validate_ident(ident)) {
60                 STC_LOGE("Invalid ident [%s]", ident);
61                 return;
62         }
63
64         if (!g_strcmp0(ident, INFO_CONFIG)) {
65                 int debug = stc_util_get_config_int(INFO_DEBUGLOG);
66                 stc_util_set_debuglog(debug);
67         }
68 }
69
70 static void __stc_manager_deinit(void)
71 {
72         __STC_LOG_FUNC_ENTER__;
73
74         if (!g_stc) {
75                 STC_LOGE("Memory for manager structure is not allocated");
76                 return;
77         }
78
79         stc_monitor_deinit();
80         stc_deinit_db_guard();
81         stc_db_deinitialize();
82
83         iptables_flush_chains();
84         iptables_deinit();
85
86         stc_manager_gdbus_deinit((gpointer)g_stc);
87
88         stc_firewall_deinit();
89
90         stc_plugin_appstatus_deinit();
91         stc_plugin_exception_deinit();
92         stc_plugin_procfs_deinit();
93         stc_plugin_tether_deinit();
94
95         inotify_deregister(INFO_STORAGE_DIR);
96         inotify_deinitialize();
97
98         STC_LOGI("stc manager deinitialized");
99         FREE(g_stc);
100         __STC_LOG_FUNC_EXIT__;
101 }
102
103 static stc_s *__stc_manager_init(void)
104 {
105         __STC_LOG_FUNC_ENTER__;
106         stc_s *stc;
107         stc_error_e err = STC_ERROR_NONE;
108
109         stc = MALLOC0(stc_s, 1);
110         if (!stc) {
111                 STC_LOGE("Failed to allocate memory for manager structure"); //LCOV_EXCL_LINE
112                 return NULL; //LCOV_EXCL_LINE
113         }
114         g_stc = stc;
115
116         stc_util_initialize_config();
117
118         inotify_initialize();
119         inotify_register(INFO_STORAGE_DIR, __stc_inotify_handler);
120
121         cgroup_set_release_agent(NET_CLS_SUBSYS, NET_RELEASE_AGENT);
122
123         err = stc_db_initialize();
124         if (err != STC_ERROR_NONE) {
125                 STC_LOGD("Failed to initialize stc db"); //LCOV_EXCL_LINE
126                 return NULL; //LCOV_EXCL_LINE
127         }
128
129         stc_plugin_appstatus_init();
130         stc_plugin_exception_init();
131         stc_plugin_procfs_init();
132         stc_plugin_tether_init();
133
134         stc_firewall_init();
135
136         err = stc_monitor_init();
137         if (err != STC_ERROR_NONE) {
138                 STC_LOGD("Failed to initialize stc manager"); //LCOV_EXCL_LINE
139                 return NULL; //LCOV_EXCL_LINE
140         }
141
142         stc_plugin_procfs_load_pid();
143         stc_manager_gdbus_init((gpointer)stc);
144
145         STC_LOGI("stc manager initialized");
146         __STC_LOG_FUNC_EXIT__;
147         return stc;
148 }
149
150 stc_s *stc_get_manager(void)
151 {
152         return g_stc;
153 }
154
155 void stc_stop_manager(void)
156 {
157         if (g_stc && g_stc->main_loop)
158                 g_main_loop_quit(g_stc->main_loop);
159 }
160
161 int stc_commit_iptables(char *cmd, int *err_num, char **err_str)
162 {
163         pid_t pid = 0;
164         int status = 0;
165         int ret = 0;
166         char err_buf[BUF_SIZE_FOR_ERR] = { 0, };
167         gchar **args = NULL;
168
169         if (cmd == NULL) {
170                 STC_LOGE("Invalid arguments");
171                 return STC_ERROR_INVALID_PARAMETER;
172         }
173
174         args = g_strsplit_set(cmd, " ", -1);
175
176         errno = 0;
177         pid = fork();
178
179         if (pid == 0) {
180                 errno = 0;
181
182                 if (!g_strcmp0(args[1], STC_CMD_INSERT)) {
183                         STC_LOGE("Invalid arguments");
184                         g_strfreev(args);
185                         exit(-1);
186                 }
187
188                 if (execv(args[0], args) == -1) {
189                         STC_LOGE("Failed to execute [%s]", *err_str);
190                         g_strfreev(args);
191                         exit(-1);
192                 }
193         } else if (pid > 0) {
194                 if (waitpid(pid, &status, 0) == -1)
195                         STC_LOGD("wait pid [%u] status [%d] ", pid, status);
196
197                 if (WIFEXITED(status)) {
198                         ret = WEXITSTATUS(status);
199                         STC_LOGD("exited, status [%d]", status);
200                 } else if (WIFSIGNALED(status)) {
201                         STC_LOGD("killed by signal [%d]", WTERMSIG(status));
202                 } else if (WIFSTOPPED(status)) {
203                         STC_LOGD("stopped by signal [%d]", WSTOPSIG(status));
204                 } else if (WIFCONTINUED(status)) {
205                         STC_LOGD("continued");
206                 }
207
208                 *err_num = ret;
209                 *err_str = strerror_r(ret, err_buf, BUF_SIZE_FOR_ERR);
210                 STC_LOGD("return err_num [%d] err_str [%s]", *err_num, *err_str);
211
212                 g_strfreev(args);
213                 if (ret == 0)
214                         return STC_ERROR_NONE;
215                 else
216                         return STC_ERROR_FAIL;
217         }
218
219         *err_num = errno;
220         *err_str = strerror_r(errno, err_buf, BUF_SIZE_FOR_ERR);
221         STC_LOGD("Failed to fork [%d:%s]", *err_num, *err_str);
222
223         g_strfreev(args);
224         return STC_ERROR_FAIL;
225 }
226
227 gint32 main(gint32 argc, gchar *argv[])
228 {
229         GMainLoop *main_loop = NULL;
230         gint32 ret = -1;
231
232         STC_LOGI("Smart Traffic Control Manager");
233
234 #ifdef TIZEN_GTESTS
235         setenv("GCOV_PREFIX", "/tmp/daemon", 1);
236 #endif
237
238         if (daemon(0, 0) != 0)
239                 STC_LOGE("Can't start daemon"); //LCOV_EXCL_LINE
240
241         /* Initialize required subsystems */
242 #if !GLIB_CHECK_VERSION(2, 35, 0)
243         g_type_init();
244 #endif
245
246         /* Crate the GLIB main loop */
247         main_loop = g_main_loop_new(NULL, FALSE);
248
249         g_stc = __stc_manager_init();
250         if (!g_stc)
251                 goto fail;
252
253         g_stc->main_loop = main_loop;
254
255         /* Run the main loop */
256         g_main_loop_run(main_loop);
257
258         ret = 0;
259
260 fail:
261         __stc_manager_deinit();
262
263         if (main_loop)
264                 g_main_loop_unref(main_loop);
265
266         return ret;
267 }