4
0

totemconfig.c 26 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900
  1. /*
  2. * Copyright (c) 2002-2005 MontaVista Software, Inc.
  3. * Copyright (c) 2006-2010 Red Hat, Inc.
  4. *
  5. * All rights reserved.
  6. *
  7. * Author: Steven Dake (sdake@redhat.com)
  8. *
  9. * This software licensed under BSD license, the text of which follows:
  10. *
  11. * Redistribution and use in source and binary forms, with or without
  12. * modification, are permitted provided that the following conditions are met:
  13. *
  14. * - Redistributions of source code must retain the above copyright notice,
  15. * this list of conditions and the following disclaimer.
  16. * - Redistributions in binary form must reproduce the above copyright notice,
  17. * this list of conditions and the following disclaimer in the documentation
  18. * and/or other materials provided with the distribution.
  19. * - Neither the name of the MontaVista Software, Inc. nor the names of its
  20. * contributors may be used to endorse or promote products derived from this
  21. * software without specific prior written permission.
  22. *
  23. * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS"
  24. * AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
  25. * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
  26. * ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE
  27. * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
  28. * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
  29. * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
  30. * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
  31. * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
  32. * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF
  33. * THE POSSIBILITY OF SUCH DAMAGE.
  34. */
  35. #include <config.h>
  36. #include <stdio.h>
  37. #include <string.h>
  38. #include <stdlib.h>
  39. #include <errno.h>
  40. #include <unistd.h>
  41. #include <sys/socket.h>
  42. #include <sys/types.h>
  43. #include <sys/stat.h>
  44. #include <fcntl.h>
  45. #include <netinet/in.h>
  46. #include <arpa/inet.h>
  47. #include <sys/param.h>
  48. #include <corosync/swab.h>
  49. #include <corosync/list.h>
  50. #include <corosync/totem/totem.h>
  51. #include <corosync/engine/objdb.h>
  52. #include <corosync/engine/config.h>
  53. #include <corosync/engine/logsys.h>
  54. #ifdef HAVE_LIBNSS
  55. #include <nss.h>
  56. #include <pk11pub.h>
  57. #include <pkcs11.h>
  58. #include <prerror.h>
  59. #endif
  60. #include "util.h"
  61. #include "totemconfig.h"
  62. #include "tlist.h" /* for HZ */
  63. #define TOKEN_RETRANSMITS_BEFORE_LOSS_CONST 4
  64. #define TOKEN_TIMEOUT 1000
  65. #define TOKEN_RETRANSMIT_TIMEOUT (int)(TOKEN_TIMEOUT / (TOKEN_RETRANSMITS_BEFORE_LOSS_CONST + 0.2))
  66. #define TOKEN_HOLD_TIMEOUT (int)(TOKEN_RETRANSMIT_TIMEOUT * 0.8 - (1000/(int)HZ))
  67. #define JOIN_TIMEOUT 50
  68. #define MERGE_TIMEOUT 200
  69. #define DOWNCHECK_TIMEOUT 1000
  70. #define FAIL_TO_RECV_CONST 50
  71. #define SEQNO_UNCHANGED_CONST 30
  72. #define MINIMUM_TIMEOUT (int)(1000/HZ)*3
  73. #define MAX_NETWORK_DELAY 50
  74. #define WINDOW_SIZE 50
  75. #define MAX_MESSAGES 17
  76. #define RRP_PROBLEM_COUNT_TIMEOUT 2000
  77. #define RRP_PROBLEM_COUNT_THRESHOLD_DEFAULT 10
  78. #define RRP_PROBLEM_COUNT_THRESHOLD_MIN 5
  79. static char error_string_response[512];
  80. static struct objdb_iface_ver0 *global_objdb;
  81. static void add_totem_config_notification(
  82. struct objdb_iface_ver0 *objdb,
  83. struct totem_config *totem_config,
  84. hdb_handle_t totem_object_handle);
  85. /* These just makes the code below a little neater */
  86. static inline int objdb_get_string (
  87. const struct objdb_iface_ver0 *objdb,
  88. hdb_handle_t object_service_handle,
  89. const char *key, const char **value)
  90. {
  91. int res;
  92. *value = NULL;
  93. if ( !(res = objdb->object_key_get (object_service_handle,
  94. key,
  95. strlen (key),
  96. (void *)value,
  97. NULL))) {
  98. if (*value) {
  99. return 0;
  100. }
  101. }
  102. return -1;
  103. }
  104. static inline void objdb_get_int (
  105. const struct objdb_iface_ver0 *objdb,
  106. hdb_handle_t object_service_handle,
  107. const char *key, unsigned int *intvalue)
  108. {
  109. char *value = NULL;
  110. if (!objdb->object_key_get (object_service_handle,
  111. key,
  112. strlen (key),
  113. (void *)&value,
  114. NULL)) {
  115. if (value) {
  116. *intvalue = atoi(value);
  117. }
  118. }
  119. }
  120. static unsigned int totem_handle_find (
  121. struct objdb_iface_ver0 *objdb,
  122. hdb_handle_t *totem_find_handle) {
  123. hdb_handle_t object_find_handle;
  124. unsigned int res;
  125. /*
  126. * Find a network section
  127. */
  128. objdb->object_find_create (
  129. OBJECT_PARENT_HANDLE,
  130. "network",
  131. strlen ("network"),
  132. &object_find_handle);
  133. res = objdb->object_find_next (
  134. object_find_handle,
  135. totem_find_handle);
  136. objdb->object_find_destroy (object_find_handle);
  137. /*
  138. * Network section not found in configuration, checking for totem
  139. */
  140. if (res == -1) {
  141. objdb->object_find_create (
  142. OBJECT_PARENT_HANDLE,
  143. "totem",
  144. strlen ("totem"),
  145. &object_find_handle);
  146. res = objdb->object_find_next (
  147. object_find_handle,
  148. totem_find_handle);
  149. objdb->object_find_destroy (object_find_handle);
  150. }
  151. if (res == -1) {
  152. return (-1);
  153. }
  154. return (0);
  155. }
  156. static void totem_volatile_config_read (
  157. struct objdb_iface_ver0 *objdb,
  158. struct totem_config *totem_config,
  159. hdb_handle_t object_totem_handle)
  160. {
  161. objdb_get_int (objdb,object_totem_handle, "token", &totem_config->token_timeout);
  162. objdb_get_int (objdb,object_totem_handle, "token_retransmit", &totem_config->token_retransmit_timeout);
  163. objdb_get_int (objdb,object_totem_handle, "hold", &totem_config->token_hold_timeout);
  164. objdb_get_int (objdb,object_totem_handle, "token_retransmits_before_loss_const", &totem_config->token_retransmits_before_loss_const);
  165. objdb_get_int (objdb,object_totem_handle, "join", &totem_config->join_timeout);
  166. objdb_get_int (objdb,object_totem_handle, "send_join", &totem_config->send_join_timeout);
  167. objdb_get_int (objdb,object_totem_handle, "consensus", &totem_config->consensus_timeout);
  168. objdb_get_int (objdb,object_totem_handle, "merge", &totem_config->merge_timeout);
  169. objdb_get_int (objdb,object_totem_handle, "downcheck", &totem_config->downcheck_timeout);
  170. objdb_get_int (objdb,object_totem_handle, "fail_recv_const", &totem_config->fail_to_recv_const);
  171. objdb_get_int (objdb,object_totem_handle, "seqno_unchanged_const", &totem_config->seqno_unchanged_const);
  172. objdb_get_int (objdb,object_totem_handle, "rrp_token_expired_timeout", &totem_config->rrp_token_expired_timeout);
  173. objdb_get_int (objdb,object_totem_handle, "rrp_problem_count_timeout", &totem_config->rrp_problem_count_timeout);
  174. objdb_get_int (objdb,object_totem_handle, "rrp_problem_count_threshold", &totem_config->rrp_problem_count_threshold);
  175. objdb_get_int (objdb,object_totem_handle, "heartbeat_failures_allowed", &totem_config->heartbeat_failures_allowed);
  176. objdb_get_int (objdb,object_totem_handle, "max_network_delay", &totem_config->max_network_delay);
  177. objdb_get_int (objdb,object_totem_handle, "window_size", &totem_config->window_size);
  178. objdb_get_string (objdb, object_totem_handle, "vsftype", &totem_config->vsf_type);
  179. objdb_get_int (objdb,object_totem_handle, "max_messages", &totem_config->max_messages);
  180. }
  181. static void totem_get_crypto_type(
  182. const struct objdb_iface_ver0 *objdb,
  183. hdb_handle_t object_totem_handle,
  184. struct totem_config *totem_config)
  185. {
  186. const char *str;
  187. totem_config->crypto_accept = TOTEM_CRYPTO_ACCEPT_OLD;
  188. if (!objdb_get_string (objdb, object_totem_handle, "crypto_accept", &str)) {
  189. if (strcmp(str, "new") == 0) {
  190. totem_config->crypto_accept = TOTEM_CRYPTO_ACCEPT_NEW;
  191. }
  192. }
  193. totem_config->crypto_type = TOTEM_CRYPTO_SOBER;
  194. #ifdef HAVE_LIBNSS
  195. /*
  196. * We must set these even if the key does not exist.
  197. * Encryption type can be set on-the-fly using CFG
  198. */
  199. totem_config->crypto_crypt_type = CKM_AES_CBC_PAD;
  200. totem_config->crypto_sign_type = CKM_SHA256_RSA_PKCS;
  201. #endif
  202. if (!objdb_get_string (objdb, object_totem_handle, "crypto_type", &str)) {
  203. if (strcmp(str, "sober") == 0) {
  204. return;
  205. }
  206. #ifdef HAVE_LIBNSS
  207. if (strcmp(str, "nss") == 0) {
  208. totem_config->crypto_type = TOTEM_CRYPTO_NSS;
  209. }
  210. #endif
  211. }
  212. }
  213. extern int totem_config_read (
  214. struct objdb_iface_ver0 *objdb,
  215. struct totem_config *totem_config,
  216. const char **error_string)
  217. {
  218. int res = 0;
  219. hdb_handle_t object_totem_handle;
  220. hdb_handle_t object_interface_handle;
  221. const char *str;
  222. unsigned int ringnumber = 0;
  223. hdb_handle_t object_find_interface_handle;
  224. const char *transport_type;
  225. res = totem_handle_find (objdb, &object_totem_handle);
  226. if (res == -1) {
  227. printf ("couldn't find totem handle\n");
  228. return (-1);
  229. }
  230. memset (totem_config, 0, sizeof (struct totem_config));
  231. totem_config->interfaces = malloc (sizeof (struct totem_interface) * INTERFACE_MAX);
  232. if (totem_config->interfaces == 0) {
  233. *error_string = "Out of memory trying to allocate ethernet interface storage area";
  234. return -1;
  235. }
  236. memset (totem_config->interfaces, 0,
  237. sizeof (struct totem_interface) * INTERFACE_MAX);
  238. totem_config->secauth = 1;
  239. strcpy (totem_config->rrp_mode, "none");
  240. if (!objdb_get_string (objdb, object_totem_handle, "version", &str)) {
  241. if (strcmp (str, "2") == 0) {
  242. totem_config->version = 2;
  243. }
  244. }
  245. if (!objdb_get_string (objdb, object_totem_handle, "secauth", &str)) {
  246. if (strcmp (str, "on") == 0) {
  247. totem_config->secauth = 1;
  248. }
  249. if (strcmp (str, "off") == 0) {
  250. totem_config->secauth = 0;
  251. }
  252. }
  253. if (totem_config->secauth == 1) {
  254. totem_get_crypto_type(objdb, object_totem_handle, totem_config);
  255. }
  256. if (!objdb_get_string (objdb, object_totem_handle, "rrp_mode", &str)) {
  257. strcpy (totem_config->rrp_mode, str);
  258. }
  259. /*
  260. * Get interface node id
  261. */
  262. objdb_get_int (objdb, object_totem_handle, "nodeid", &totem_config->node_id);
  263. totem_config->clear_node_high_bit = 0;
  264. if (!objdb_get_string (objdb,object_totem_handle, "clear_node_high_bit", &str)) {
  265. if (strcmp (str, "yes") == 0) {
  266. totem_config->clear_node_high_bit = 1;
  267. }
  268. }
  269. objdb_get_int (objdb,object_totem_handle, "threads", &totem_config->threads);
  270. objdb_get_int (objdb,object_totem_handle, "netmtu", &totem_config->net_mtu);
  271. /*
  272. * Get things that might change in the future
  273. */
  274. totem_volatile_config_read (objdb, totem_config, object_totem_handle);
  275. objdb->object_find_create (
  276. object_totem_handle,
  277. "interface",
  278. strlen ("interface"),
  279. &object_find_interface_handle);
  280. while (objdb->object_find_next (
  281. object_find_interface_handle,
  282. &object_interface_handle) == 0) {
  283. objdb_get_int (objdb, object_interface_handle, "ringnumber", &ringnumber);
  284. /*
  285. * Get interface multicast address
  286. */
  287. if (!objdb_get_string (objdb, object_interface_handle, "mcastaddr", &str)) {
  288. res = totemip_parse (&totem_config->interfaces[ringnumber].mcast_addr, str, 0);
  289. }
  290. totem_config->broadcast_use = 0;
  291. if (!objdb_get_string (objdb, object_interface_handle, "broadcast", &str)) {
  292. if (strcmp (str, "yes") == 0) {
  293. totem_config->broadcast_use = 1;
  294. totemip_parse (
  295. &totem_config->interfaces[ringnumber].mcast_addr,
  296. "255.255.255.255", 0);
  297. }
  298. }
  299. /*
  300. * Get mcast port
  301. */
  302. if (!objdb_get_string (objdb, object_interface_handle, "mcastport", &str)) {
  303. totem_config->interfaces[ringnumber].ip_port = atoi (str);
  304. }
  305. /*
  306. * Get the bind net address
  307. */
  308. if (!objdb_get_string (objdb, object_interface_handle, "bindnetaddr", &str)) {
  309. res = totemip_parse (&totem_config->interfaces[ringnumber].bindnet, str,
  310. totem_config->interfaces[ringnumber].mcast_addr.family);
  311. }
  312. totem_config->interface_count++;
  313. }
  314. objdb->object_find_destroy (object_find_interface_handle);
  315. add_totem_config_notification(objdb, totem_config, object_totem_handle);
  316. totem_config->transport_number = 0;
  317. objdb_get_string (objdb, object_totem_handle, "transport", &transport_type);
  318. if (transport_type) {
  319. if (strcmp (transport_type, "iba") == 0) {
  320. totem_config->transport_number = 1;
  321. }
  322. }
  323. return 0;
  324. }
  325. int totem_config_validate (
  326. struct totem_config *totem_config,
  327. const char **error_string)
  328. {
  329. static char local_error_reason[512];
  330. char parse_error[512];
  331. const char *error_reason = local_error_reason;
  332. int i;
  333. unsigned int interface_max = INTERFACE_MAX;
  334. if (totem_config->interface_count == 0) {
  335. error_reason = "No interfaces defined";
  336. goto parse_error;
  337. }
  338. for (i = 0; i < totem_config->interface_count; i++) {
  339. /*
  340. * Some error checking of parsed data to make sure its valid
  341. */
  342. struct totem_ip_address null_addr;
  343. memset (&null_addr, 0, sizeof (struct totem_ip_address));
  344. if (memcmp (&totem_config->interfaces[i].mcast_addr, &null_addr,
  345. sizeof (struct totem_ip_address)) == 0) {
  346. error_reason = "No multicast address specified";
  347. goto parse_error;
  348. }
  349. if (totem_config->interfaces[i].ip_port == 0) {
  350. error_reason = "No multicast port specified";
  351. goto parse_error;
  352. }
  353. if (totem_config->interfaces[i].mcast_addr.family == AF_INET6 &&
  354. totem_config->node_id == 0) {
  355. error_reason = "An IPV6 network requires that a node ID be specified.";
  356. goto parse_error;
  357. }
  358. if (totem_config->broadcast_use == 0) {
  359. if (totem_config->interfaces[i].mcast_addr.family != totem_config->interfaces[i].bindnet.family) {
  360. error_reason = "Multicast address family does not match bind address family";
  361. goto parse_error;
  362. }
  363. if (totem_config->interfaces[i].mcast_addr.family != totem_config->interfaces[i].bindnet.family) {
  364. error_reason = "Not all bind address belong to the same IP family";
  365. goto parse_error;
  366. }
  367. }
  368. }
  369. if (totem_config->version != 2) {
  370. error_reason = "This totem parser can only parse version 2 configurations.";
  371. goto parse_error;
  372. }
  373. if (totem_config->token_retransmits_before_loss_const == 0) {
  374. totem_config->token_retransmits_before_loss_const =
  375. TOKEN_RETRANSMITS_BEFORE_LOSS_CONST;
  376. }
  377. /*
  378. * Setup timeout values that are not setup by user
  379. */
  380. if (totem_config->token_timeout == 0) {
  381. totem_config->token_timeout = TOKEN_TIMEOUT;
  382. if (totem_config->token_retransmits_before_loss_const == 0) {
  383. totem_config->token_retransmits_before_loss_const = TOKEN_RETRANSMITS_BEFORE_LOSS_CONST;
  384. }
  385. if (totem_config->token_retransmit_timeout == 0) {
  386. totem_config->token_retransmit_timeout =
  387. (int)(totem_config->token_timeout /
  388. (totem_config->token_retransmits_before_loss_const + 0.2));
  389. }
  390. if (totem_config->token_hold_timeout == 0) {
  391. totem_config->token_hold_timeout =
  392. (int)(totem_config->token_retransmit_timeout * 0.8 -
  393. (1000/HZ));
  394. }
  395. }
  396. if (totem_config->max_network_delay == 0) {
  397. totem_config->max_network_delay = MAX_NETWORK_DELAY;
  398. }
  399. if (totem_config->max_network_delay < MINIMUM_TIMEOUT) {
  400. snprintf (local_error_reason, sizeof(local_error_reason),
  401. "The max_network_delay parameter (%d ms) may not be less then (%d ms).",
  402. totem_config->max_network_delay, MINIMUM_TIMEOUT);
  403. goto parse_error;
  404. }
  405. if (totem_config->window_size == 0) {
  406. totem_config->window_size = WINDOW_SIZE;
  407. }
  408. if (totem_config->max_messages == 0) {
  409. totem_config->max_messages = MAX_MESSAGES;
  410. }
  411. if (totem_config->token_timeout < MINIMUM_TIMEOUT) {
  412. snprintf (local_error_reason, sizeof(local_error_reason),
  413. "The token timeout parameter (%d ms) may not be less then (%d ms).",
  414. totem_config->token_timeout, MINIMUM_TIMEOUT);
  415. goto parse_error;
  416. }
  417. if (totem_config->token_retransmit_timeout == 0) {
  418. totem_config->token_retransmit_timeout =
  419. (int)(totem_config->token_timeout /
  420. (totem_config->token_retransmits_before_loss_const + 0.2));
  421. }
  422. if (totem_config->token_hold_timeout == 0) {
  423. totem_config->token_hold_timeout =
  424. (int)(totem_config->token_retransmit_timeout * 0.8 -
  425. (1000/HZ));
  426. }
  427. if (totem_config->token_retransmit_timeout < MINIMUM_TIMEOUT) {
  428. snprintf (local_error_reason, sizeof(local_error_reason),
  429. "The token retransmit timeout parameter (%d ms) may not be less then (%d ms).",
  430. totem_config->token_retransmit_timeout, MINIMUM_TIMEOUT);
  431. goto parse_error;
  432. }
  433. if (totem_config->token_hold_timeout == 0) {
  434. totem_config->token_hold_timeout = TOKEN_HOLD_TIMEOUT;
  435. }
  436. if (totem_config->token_hold_timeout < MINIMUM_TIMEOUT) {
  437. snprintf (local_error_reason, sizeof(local_error_reason),
  438. "The token hold timeout parameter (%d ms) may not be less then (%d ms).",
  439. totem_config->token_hold_timeout, MINIMUM_TIMEOUT);
  440. goto parse_error;
  441. }
  442. if (totem_config->join_timeout == 0) {
  443. totem_config->join_timeout = JOIN_TIMEOUT;
  444. }
  445. if (totem_config->join_timeout < MINIMUM_TIMEOUT) {
  446. snprintf (local_error_reason, sizeof(local_error_reason),
  447. "The join timeout parameter (%d ms) may not be less then (%d ms).",
  448. totem_config->join_timeout, MINIMUM_TIMEOUT);
  449. goto parse_error;
  450. }
  451. if (totem_config->consensus_timeout == 0) {
  452. totem_config->consensus_timeout = (int)(float)(1.2 * totem_config->token_timeout);
  453. }
  454. if (totem_config->consensus_timeout < MINIMUM_TIMEOUT) {
  455. snprintf (local_error_reason, sizeof(local_error_reason),
  456. "The consensus timeout parameter (%d ms) may not be less then (%d ms).",
  457. totem_config->consensus_timeout, MINIMUM_TIMEOUT);
  458. goto parse_error;
  459. }
  460. if (totem_config->consensus_timeout < 1.2 * totem_config->token_timeout) {
  461. snprintf (local_error_reason, sizeof(local_error_reason),
  462. "The consensus timeout parameter (%d ms) must be atleast 1.2 * token (%d ms).",
  463. totem_config->consensus_timeout, (int) ((float)1.2 * totem_config->token_timeout));
  464. goto parse_error;
  465. }
  466. if (totem_config->merge_timeout == 0) {
  467. totem_config->merge_timeout = MERGE_TIMEOUT;
  468. }
  469. if (totem_config->merge_timeout < MINIMUM_TIMEOUT) {
  470. snprintf (local_error_reason, sizeof(local_error_reason),
  471. "The merge timeout parameter (%d ms) may not be less then (%d ms).",
  472. totem_config->merge_timeout, MINIMUM_TIMEOUT);
  473. goto parse_error;
  474. }
  475. if (totem_config->downcheck_timeout == 0) {
  476. totem_config->downcheck_timeout = DOWNCHECK_TIMEOUT;
  477. }
  478. if (totem_config->downcheck_timeout < MINIMUM_TIMEOUT) {
  479. snprintf (local_error_reason, sizeof(local_error_reason),
  480. "The downcheck timeout parameter (%d ms) may not be less then (%d ms).",
  481. totem_config->downcheck_timeout, MINIMUM_TIMEOUT);
  482. goto parse_error;
  483. }
  484. /*
  485. * RRP values validation
  486. */
  487. if (strcmp (totem_config->rrp_mode, "none") &&
  488. strcmp (totem_config->rrp_mode, "active") &&
  489. strcmp (totem_config->rrp_mode, "passive")) {
  490. snprintf (local_error_reason, sizeof(local_error_reason),
  491. "The RRP mode \"%s\" specified is invalid. It must be none, active, or passive.\n", totem_config->rrp_mode);
  492. goto parse_error;
  493. }
  494. if (totem_config->rrp_problem_count_timeout == 0) {
  495. totem_config->rrp_problem_count_timeout = RRP_PROBLEM_COUNT_TIMEOUT;
  496. }
  497. if (totem_config->rrp_problem_count_timeout < MINIMUM_TIMEOUT) {
  498. snprintf (local_error_reason, sizeof(local_error_reason),
  499. "The RRP problem count timeout parameter (%d ms) may not be less then (%d ms).",
  500. totem_config->rrp_problem_count_timeout, MINIMUM_TIMEOUT);
  501. goto parse_error;
  502. }
  503. if (totem_config->rrp_problem_count_threshold == 0) {
  504. totem_config->rrp_problem_count_threshold = RRP_PROBLEM_COUNT_THRESHOLD_DEFAULT;
  505. }
  506. if (totem_config->rrp_problem_count_threshold < RRP_PROBLEM_COUNT_THRESHOLD_MIN) {
  507. snprintf (local_error_reason, sizeof(local_error_reason),
  508. "The RRP problem count threshold (%d problem count) may not be less then (%d problem count).",
  509. totem_config->rrp_problem_count_threshold, RRP_PROBLEM_COUNT_THRESHOLD_MIN);
  510. goto parse_error;
  511. }
  512. if (totem_config->rrp_token_expired_timeout == 0) {
  513. totem_config->rrp_token_expired_timeout =
  514. totem_config->token_retransmit_timeout;
  515. }
  516. if (totem_config->rrp_token_expired_timeout < MINIMUM_TIMEOUT) {
  517. snprintf (local_error_reason, sizeof(local_error_reason),
  518. "The RRP token expired timeout parameter (%d ms) may not be less then (%d ms).",
  519. totem_config->rrp_token_expired_timeout, MINIMUM_TIMEOUT);
  520. goto parse_error;
  521. }
  522. if (strcmp (totem_config->rrp_mode, "none") == 0) {
  523. interface_max = 1;
  524. }
  525. if (interface_max < totem_config->interface_count) {
  526. snprintf (parse_error, sizeof(parse_error),
  527. "%d is too many configured interfaces for the rrp_mode setting %s.",
  528. totem_config->interface_count,
  529. totem_config->rrp_mode);
  530. error_reason = parse_error;
  531. goto parse_error;
  532. }
  533. if (totem_config->fail_to_recv_const == 0) {
  534. totem_config->fail_to_recv_const = FAIL_TO_RECV_CONST;
  535. }
  536. if (totem_config->seqno_unchanged_const == 0) {
  537. totem_config->seqno_unchanged_const = SEQNO_UNCHANGED_CONST;
  538. }
  539. if (totem_config->net_mtu == 0) {
  540. totem_config->net_mtu = 1500;
  541. }
  542. if ((MESSAGE_QUEUE_MAX) < totem_config->max_messages) {
  543. snprintf (local_error_reason, sizeof(local_error_reason),
  544. "The max_messages parameter (%d messages) may not be greater then (%d messages).",
  545. totem_config->max_messages, MESSAGE_QUEUE_MAX);
  546. goto parse_error;
  547. }
  548. if (totem_config->threads > SEND_THREADS_MAX) {
  549. totem_config->threads = SEND_THREADS_MAX;
  550. }
  551. if (totem_config->secauth == 0) {
  552. totem_config->threads = 0;
  553. }
  554. if (totem_config->net_mtu > FRAME_SIZE_MAX) {
  555. error_reason = "This net_mtu parameter is greater then the maximum frame size";
  556. goto parse_error;
  557. }
  558. if (totem_config->vsf_type == NULL) {
  559. totem_config->vsf_type = "none";
  560. }
  561. return (0);
  562. parse_error:
  563. snprintf (error_string_response, sizeof(error_string_response),
  564. "parse error in config: %s\n", error_reason);
  565. *error_string = error_string_response;
  566. return (-1);
  567. }
  568. static int read_keyfile (
  569. const char *key_location,
  570. struct totem_config *totem_config,
  571. const char **error_string)
  572. {
  573. int fd;
  574. int res;
  575. ssize_t expected_key_len = sizeof (totem_config->private_key);
  576. int saved_errno;
  577. char error_str[100];
  578. fd = open (key_location, O_RDONLY);
  579. if (fd == -1) {
  580. strerror_r (errno, error_str, 100);
  581. snprintf (error_string_response, sizeof(error_string_response),
  582. "Could not open %s: %s\n",
  583. key_location, error_str);
  584. goto parse_error;
  585. }
  586. res = read (fd, totem_config->private_key, expected_key_len);
  587. saved_errno = errno;
  588. close (fd);
  589. if (res == -1) {
  590. strerror_r (errno, error_str, 100);
  591. snprintf (error_string_response, sizeof(error_string_response),
  592. "Could not read %s: %s\n",
  593. key_location, error_str);
  594. goto parse_error;
  595. }
  596. totem_config->private_key_len = expected_key_len;
  597. if (res != expected_key_len) {
  598. snprintf (error_string_response, sizeof(error_string_response),
  599. "Could only read %d bits of 1024 bits from %s.\n",
  600. res * 8, key_location);
  601. goto parse_error;
  602. }
  603. return 0;
  604. parse_error:
  605. *error_string = error_string_response;
  606. return (-1);
  607. }
  608. int totem_config_keyread (
  609. struct objdb_iface_ver0 *objdb,
  610. struct totem_config *totem_config,
  611. const char **error_string)
  612. {
  613. int got_key = 0;
  614. const char *key_location = NULL;
  615. hdb_handle_t object_totem_handle;
  616. int res;
  617. memset (totem_config->private_key, 0, 128);
  618. totem_config->private_key_len = 128;
  619. if (totem_config->secauth == 0) {
  620. return (0);
  621. }
  622. res = totem_handle_find (objdb, &object_totem_handle);
  623. if (res == -1) {
  624. return (-1);
  625. }
  626. /* objdb may store the location of the key file */
  627. if (!objdb_get_string (objdb,object_totem_handle, "keyfile", &key_location)
  628. && key_location) {
  629. res = read_keyfile(key_location, totem_config, error_string);
  630. if (res) {
  631. goto key_error;
  632. }
  633. got_key = 1;
  634. } else { /* Or the key itself may be in the objdb */
  635. char *key = NULL;
  636. size_t key_len;
  637. res = objdb->object_key_get (object_totem_handle,
  638. "key",
  639. strlen ("key"),
  640. (void *)&key,
  641. &key_len);
  642. if (res == 0 && key) {
  643. if (key_len > sizeof (totem_config->private_key)) {
  644. goto key_error;
  645. }
  646. memcpy(totem_config->private_key, key, key_len);
  647. totem_config->private_key_len = key_len;
  648. got_key = 1;
  649. }
  650. }
  651. /* In desperation we read the default filename */
  652. if (!got_key) {
  653. const char *filename = getenv("COROSYNC_TOTEM_AUTHKEY_FILE");
  654. if (!filename)
  655. filename = COROSYSCONFDIR "/authkey";
  656. res = read_keyfile(filename, totem_config, error_string);
  657. if (res)
  658. goto key_error;
  659. }
  660. return (0);
  661. key_error:
  662. *error_string = error_string_response;
  663. return (-1);
  664. }
  665. static void totem_key_change_notify(object_change_type_t change_type,
  666. hdb_handle_t parent_object_handle,
  667. hdb_handle_t object_handle,
  668. const void *object_name_pt, size_t object_name_len,
  669. const void *key_name_pt, size_t key_len,
  670. const void *key_value_pt, size_t key_value_len,
  671. void *priv_data_pt)
  672. {
  673. struct totem_config *totem_config = priv_data_pt;
  674. if (memcmp(object_name_pt, "totem", object_name_len) == 0)
  675. totem_volatile_config_read(global_objdb,
  676. totem_config,
  677. object_handle); // CHECK
  678. }
  679. static void totem_objdb_reload_notify(objdb_reload_notify_type_t type, int flush,
  680. void *priv_data_pt)
  681. {
  682. struct totem_config *totem_config = priv_data_pt;
  683. hdb_handle_t totem_object_handle;
  684. if (totem_config == NULL)
  685. return;
  686. /*
  687. * A new totem {} key might exist, cancel the
  688. * existing notification at the start of reload,
  689. * and start a new one on the new object when
  690. * it's all settled.
  691. */
  692. if (type == OBJDB_RELOAD_NOTIFY_START) {
  693. global_objdb->object_track_stop(
  694. totem_key_change_notify,
  695. NULL,
  696. NULL,
  697. NULL,
  698. totem_config);
  699. }
  700. if (type == OBJDB_RELOAD_NOTIFY_END ||
  701. type == OBJDB_RELOAD_NOTIFY_FAILED) {
  702. if (!totem_handle_find(global_objdb,
  703. &totem_object_handle)) {
  704. global_objdb->object_track_start(totem_object_handle,
  705. 1,
  706. totem_key_change_notify,
  707. NULL, // object_create_notify,
  708. NULL, // object_destroy_notify,
  709. NULL, // object_reload_notify
  710. totem_config); // priv_data
  711. /*
  712. * Reload the configuration
  713. */
  714. totem_volatile_config_read(global_objdb,
  715. totem_config,
  716. totem_object_handle);
  717. }
  718. else {
  719. log_printf(LOGSYS_LEVEL_ERROR, "totem objdb tracking stopped, cannot find totem{} handle on objdb\n");
  720. }
  721. }
  722. }
  723. static void add_totem_config_notification(
  724. struct objdb_iface_ver0 *objdb,
  725. struct totem_config *totem_config,
  726. hdb_handle_t totem_object_handle)
  727. {
  728. global_objdb = objdb;
  729. objdb->object_track_start(totem_object_handle,
  730. 1,
  731. totem_key_change_notify,
  732. NULL, // object_create_notify,
  733. NULL, // object_destroy_notify,
  734. NULL, // object_reload_notify
  735. totem_config); // priv_data
  736. /*
  737. * Reload notify must be on the parent object
  738. */
  739. objdb->object_track_start(OBJECT_PARENT_HANDLE,
  740. 1,
  741. NULL, // key_change_notify,
  742. NULL, // object_create_notify,
  743. NULL, // object_destroy_notify,
  744. totem_objdb_reload_notify, // object_reload_notify
  745. totem_config); // priv_data
  746. }