1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273127412751276127712781279128012811282128312841285128612871288128912901291129212931294129512961297129812991300130113021303130413051306130713081309131013111312131313141315131613171318131913201321132213231324132513261327132813291330133113321333133413351336133713381339134013411342134313441345134613471348134913501351135213531354135513561357135813591360136113621363136413651366136713681369137013711372137313741375137613771378137913801381138213831384138513861387138813891390139113921393139413951396139713981399140014011402140314041405140614071408140914101411141214131414141514161417141814191420142114221423142414251426142714281429143014311432143314341435143614371438143914401441144214431444144514461447144814491450145114521453145414551456145714581459146014611462146314641465146614671468146914701471147214731474147514761477147814791480148114821483148414851486148714881489149014911492149314941495149614971498149915001501150215031504150515061507150815091510151115121513151415151516151715181519152015211522152315241525152615271528152915301531153215331534153515361537153815391540154115421543154415451546154715481549155015511552155315541555155615571558155915601561156215631564156515661567156815691570157115721573157415751576157715781579158015811582158315841585158615871588158915901591159215931594159515961597159815991600160116021603160416051606160716081609161016111612161316141615161616171618161916201621162216231624162516261627162816291630163116321633163416351636163716381639164016411642164316441645164616471648164916501651165216531654165516561657165816591660166116621663166416651666166716681669167016711672167316741675167616771678167916801681168216831684168516861687168816891690169116921693169416951696169716981699170017011702170317041705170617071708170917101711171217131714171517161717171817191720172117221723172417251726172717281729173017311732173317341735173617371738173917401741174217431744174517461747174817491750175117521753175417551756175717581759176017611762176317641765176617671768176917701771177217731774177517761777177817791780178117821783178417851786178717881789179017911792179317941795179617971798179918001801180218031804180518061807180818091810181118121813181418151816181718181819182018211822182318241825182618271828182918301831183218331834183518361837183818391840184118421843184418451846184718481849185018511852185318541855185618571858185918601861186218631864186518661867186818691870187118721873187418751876187718781879188018811882188318841885188618871888188918901891189218931894189518961897189818991900190119021903190419051906190719081909191019111912191319141915191619171918191919201921192219231924192519261927192819291930193119321933193419351936193719381939194019411942194319441945194619471948194919501951195219531954195519561957195819591960196119621963196419651966196719681969197019711972197319741975197619771978197919801981198219831984198519861987198819891990199119921993199419951996199719981999200020012002200320042005200620072008200920102011201220132014201520162017201820192020202120222023202420252026202720282029203020312032203320342035203620372038203920402041204220432044204520462047204820492050205120522053205420552056205720582059206020612062206320642065206620672068206920702071207220732074207520762077207820792080208120822083208420852086208720882089209020912092209320942095209620972098209921002101210221032104210521062107210821092110211121122113211421152116211721182119212021212122212321242125212621272128212921302131213221332134213521362137213821392140214121422143214421452146214721482149215021512152215321542155215621572158215921602161216221632164216521662167216821692170217121722173217421752176217721782179218021812182218321842185218621872188218921902191219221932194219521962197219821992200220122022203220422052206220722082209221022112212221322142215221622172218221922202221222222232224222522262227222822292230223122322233223422352236223722382239224022412242224322442245224622472248224922502251225222532254225522562257225822592260226122622263226422652266226722682269227022712272227322742275227622772278227922802281228222832284228522862287228822892290229122922293229422952296229722982299230023012302230323042305230623072308230923102311231223132314231523162317231823192320232123222323232423252326232723282329233023312332233323342335233623372338233923402341234223432344234523462347234823492350235123522353235423552356235723582359236023612362236323642365236623672368236923702371237223732374237523762377237823792380238123822383238423852386238723882389239023912392239323942395239623972398239924002401240224032404240524062407240824092410241124122413241424152416241724182419242024212422242324242425242624272428242924302431243224332434243524362437243824392440244124422443244424452446244724482449245024512452245324542455245624572458245924602461246224632464246524662467246824692470247124722473247424752476247724782479248024812482248324842485248624872488248924902491249224932494249524962497249824992500250125022503250425052506250725082509251025112512251325142515251625172518251925202521252225232524252525262527252825292530253125322533253425352536253725382539254025412542254325442545254625472548254925502551255225532554255525562557255825592560256125622563256425652566256725682569257025712572257325742575257625772578257925802581258225832584258525862587258825892590259125922593259425952596259725982599260026012602260326042605260626072608260926102611261226132614261526162617261826192620262126222623262426252626262726282629263026312632263326342635263626372638263926402641264226432644264526462647264826492650265126522653265426552656265726582659266026612662266326642665266626672668266926702671267226732674267526762677267826792680268126822683268426852686268726882689269026912692269326942695269626972698269927002701270227032704270527062707270827092710271127122713271427152716271727182719272027212722272327242725272627272728272927302731273227332734273527362737273827392740274127422743274427452746274727482749275027512752275327542755275627572758275927602761276227632764276527662767276827692770277127722773277427752776277727782779278027812782278327842785278627872788278927902791279227932794279527962797279827992800280128022803280428052806280728082809281028112812281328142815281628172818281928202821282228232824282528262827282828292830283128322833283428352836283728382839284028412842284328442845284628472848284928502851285228532854285528562857285828592860286128622863286428652866286728682869287028712872287328742875287628772878287928802881288228832884288528862887288828892890289128922893289428952896289728982899290029012902290329042905290629072908290929102911291229132914291529162917291829192920292129222923292429252926292729282929293029312932293329342935293629372938293929402941294229432944294529462947294829492950295129522953295429552956295729582959296029612962296329642965296629672968296929702971297229732974297529762977297829792980298129822983298429852986298729882989299029912992299329942995299629972998299930003001300230033004300530063007300830093010301130123013301430153016301730183019302030213022302330243025302630273028302930303031303230333034303530363037303830393040304130423043304430453046304730483049305030513052305330543055305630573058305930603061306230633064306530663067306830693070307130723073307430753076307730783079308030813082308330843085308630873088308930903091309230933094309530963097309830993100310131023103310431053106310731083109311031113112311331143115311631173118311931203121312231233124312531263127312831293130313131323133313431353136313731383139314031413142314331443145314631473148314931503151315231533154315531563157315831593160316131623163316431653166316731683169317031713172317331743175317631773178317931803181318231833184318531863187318831893190319131923193319431953196319731983199320032013202320332043205320632073208320932103211321232133214321532163217321832193220322132223223322432253226322732283229323032313232323332343235323632373238323932403241324232433244324532463247324832493250325132523253325432553256325732583259326032613262326332643265326632673268326932703271327232733274327532763277327832793280328132823283328432853286328732883289329032913292329332943295329632973298329933003301330233033304330533063307330833093310331133123313331433153316331733183319332033213322332333243325332633273328332933303331333233333334333533363337333833393340334133423343334433453346334733483349335033513352335333543355335633573358335933603361336233633364336533663367336833693370337133723373337433753376337733783379338033813382338333843385338633873388338933903391339233933394339533963397339833993400340134023403340434053406340734083409341034113412341334143415341634173418341934203421342234233424342534263427342834293430343134323433343434353436343734383439344034413442344334443445344634473448344934503451345234533454345534563457345834593460346134623463346434653466346734683469347034713472347334743475347634773478347934803481348234833484348534863487348834893490349134923493349434953496349734983499350035013502350335043505350635073508350935103511351235133514351535163517351835193520352135223523352435253526352735283529353035313532353335343535353635373538353935403541354235433544354535463547354835493550355135523553355435553556355735583559356035613562356335643565356635673568356935703571357235733574357535763577357835793580358135823583358435853586358735883589359035913592359335943595359635973598359936003601360236033604360536063607360836093610361136123613361436153616361736183619362036213622362336243625362636273628362936303631363236333634363536363637363836393640364136423643364436453646364736483649365036513652365336543655365636573658365936603661366236633664366536663667366836693670367136723673367436753676367736783679368036813682368336843685368636873688368936903691369236933694369536963697369836993700370137023703370437053706370737083709371037113712371337143715371637173718371937203721372237233724372537263727372837293730373137323733373437353736373737383739374037413742374337443745374637473748374937503751375237533754375537563757375837593760376137623763376437653766376737683769377037713772377337743775377637773778377937803781378237833784378537863787378837893790379137923793379437953796379737983799380038013802380338043805380638073808380938103811381238133814381538163817381838193820382138223823382438253826382738283829383038313832383338343835383638373838383938403841384238433844384538463847384838493850385138523853385438553856385738583859386038613862386338643865386638673868386938703871387238733874387538763877387838793880388138823883388438853886388738883889389038913892389338943895389638973898389939003901390239033904390539063907390839093910391139123913391439153916391739183919392039213922392339243925392639273928392939303931393239333934393539363937393839393940394139423943394439453946394739483949395039513952395339543955395639573958395939603961396239633964396539663967396839693970397139723973397439753976397739783979398039813982398339843985398639873988398939903991399239933994399539963997399839994000400140024003400440054006400740084009401040114012401340144015401640174018401940204021402240234024402540264027402840294030403140324033403440354036403740384039404040414042404340444045404640474048404940504051405240534054405540564057405840594060406140624063406440654066406740684069407040714072407340744075407640774078407940804081408240834084408540864087408840894090409140924093409440954096409740984099410041014102410341044105410641074108410941104111411241134114411541164117411841194120412141224123412441254126412741284129413041314132413341344135413641374138413941404141414241434144414541464147414841494150415141524153415441554156415741584159416041614162416341644165416641674168416941704171417241734174417541764177417841794180418141824183418441854186418741884189419041914192419341944195419641974198419942004201420242034204420542064207420842094210421142124213421442154216421742184219422042214222422342244225422642274228422942304231423242334234423542364237423842394240424142424243424442454246424742484249425042514252425342544255425642574258425942604261426242634264 |
- const char config_c_id[] = \
- "$Id$";
- #include "or.h"
- #ifdef MS_WINDOWS
- #include <shlobj.h>
- #endif
- #include "../common/aes.h"
- typedef enum config_type_t {
- CONFIG_TYPE_STRING = 0,
- CONFIG_TYPE_UINT,
- CONFIG_TYPE_INTERVAL,
- CONFIG_TYPE_MEMUNIT,
- CONFIG_TYPE_DOUBLE,
- CONFIG_TYPE_BOOL,
- CONFIG_TYPE_ISOTIME,
- CONFIG_TYPE_CSV,
- CONFIG_TYPE_LINELIST,
- CONFIG_TYPE_LINELIST_S,
- CONFIG_TYPE_LINELIST_V,
- CONFIG_TYPE_OBSOLETE,
- } config_type_t;
- typedef struct config_abbrev_t {
- const char *abbreviated;
- const char *full;
- int commandline_only;
- int warn;
- } config_abbrev_t;
- #define PLURAL(tok) { #tok, #tok "s", 0, 0 }
- static config_abbrev_t _option_abbrevs[] = {
- PLURAL(ExitNode),
- PLURAL(EntryNode),
- PLURAL(ExcludeNode),
- PLURAL(FirewallPort),
- PLURAL(LongLivedPort),
- PLURAL(HiddenServiceNode),
- PLURAL(HiddenServiceExcludeNode),
- PLURAL(NumCpu),
- PLURAL(RendNode),
- PLURAL(RendExcludeNode),
- PLURAL(StrictEntryNode),
- PLURAL(StrictExitNode),
- { "l", "Log", 1, 0},
- { "AllowUnverifiedNodes", "AllowInvalidNodes", 0, 0},
- { "BandwidthRateBytes", "BandwidthRate", 0, 0},
- { "BandwidthBurstBytes", "BandwidthBurst", 0, 0},
- { "DirFetchPostPeriod", "StatusFetchPeriod", 0, 0},
- { "MaxConn", "ConnLimit", 0, 1},
- { "ORBindAddress", "ORListenAddress", 0, 0},
- { "DirBindAddress", "DirListenAddress", 0, 0},
- { "SocksBindAddress", "SocksListenAddress", 0, 0},
- { "UseHelperNodes", "UseEntryGuards", 0, 0},
- { "NumHelperNodes", "NumEntryGuards", 0, 0},
- { "UseEntryNodes", "UseEntryGuards", 0, 0},
- { "NumEntryNodes", "NumEntryGuards", 0, 0},
- { "ResolvConf", "ServerDNSResolvConfFile", 0, 1},
- { "SearchDomains", "ServerDNSSearchDomains", 0, 1},
- { NULL, NULL, 0, 0},
- };
- static config_abbrev_t _state_abbrevs[] = {
- { "AccountingBytesReadInterval", "AccountingBytesReadInInterval", 0, 0 },
- { "HelperNode", "EntryGuard", 0, 0 },
- { "HelperNodeDownSince", "EntryGuardDownSince", 0, 0 },
- { "HelperNodeUnlistedSince", "EntryGuardUnlistedSince", 0, 0 },
- { "EntryNode", "EntryGuard", 0, 0 },
- { "EntryNodeDownSince", "EntryGuardDownSince", 0, 0 },
- { "EntryNodeUnlistedSince", "EntryGuardUnlistedSince", 0, 0 },
- { NULL, NULL, 0, 0},
- };
- #undef PLURAL
- typedef struct config_var_t {
- const char *name;
- config_type_t type;
- off_t var_offset;
- const char *initvalue;
- } config_var_t;
- #define STRUCT_VAR_P(st, off) \
- ((void*) ( ((char*)st) + off ) )
- #define VAR(name,conftype,member,initvalue) \
- { name, CONFIG_TYPE_ ## conftype, STRUCT_OFFSET(or_options_t, member), \
- initvalue }
- #define OBSOLETE(name) { name, CONFIG_TYPE_OBSOLETE, 0, NULL }
- static config_var_t _option_vars[] = {
- OBSOLETE("AccountingMaxKB"),
- VAR("AccountingMax", MEMUNIT, AccountingMax, "0 bytes"),
- VAR("AccountingStart", STRING, AccountingStart, NULL),
- VAR("Address", STRING, Address, NULL),
- VAR("__AllDirActionsPrivate",BOOL, AllDirActionsPrivate, "0"),
- VAR("AllowInvalidNodes", CSV, AllowInvalidNodes,
- "middle,rendezvous"),
- VAR("AllowNonRFC953Hostnames", BOOL, AllowNonRFC953Hostnames, "0"),
- VAR("AssumeReachable", BOOL, AssumeReachable, "0"),
- VAR("AuthDirBadExit", LINELIST, AuthDirBadExit, NULL),
- VAR("AuthDirInvalid", LINELIST, AuthDirInvalid, NULL),
- VAR("AuthDirReject", LINELIST, AuthDirReject, NULL),
- VAR("AuthDirRejectUnlisted",BOOL, AuthDirRejectUnlisted,"0"),
- VAR("AuthDirListBadExits", BOOL, AuthDirListBadExits, "0"),
- VAR("AuthoritativeDirectory",BOOL, AuthoritativeDir, "0"),
- VAR("AvoidDiskWrites", BOOL, AvoidDiskWrites, "0"),
- VAR("BandwidthBurst", MEMUNIT, BandwidthBurst, "6 MB"),
- VAR("BandwidthRate", MEMUNIT, BandwidthRate, "3 MB"),
- VAR("CircuitBuildTimeout", INTERVAL, CircuitBuildTimeout, "1 minute"),
- VAR("CircuitIdleTimeout", INTERVAL, CircuitIdleTimeout, "1 hour"),
- VAR("ClientOnly", BOOL, ClientOnly, "0"),
- VAR("ConnLimit", UINT, ConnLimit, "1000"),
- VAR("ContactInfo", STRING, ContactInfo, NULL),
- VAR("ControlListenAddress",LINELIST, ControlListenAddress, NULL),
- VAR("ControlPort", UINT, ControlPort, "0"),
- VAR("CookieAuthentication",BOOL, CookieAuthentication, "0"),
- VAR("DataDirectory", STRING, DataDirectory, NULL),
- OBSOLETE("DebugLogFile"),
- VAR("DirAllowPrivateAddresses",BOOL, DirAllowPrivateAddresses, NULL),
- VAR("DirListenAddress", LINELIST, DirListenAddress, NULL),
- OBSOLETE("DirFetchPeriod"),
- VAR("DirPolicy", LINELIST, DirPolicy, NULL),
- VAR("DirPort", UINT, DirPort, "0"),
- OBSOLETE("DirPostPeriod"),
- VAR("DirServer", LINELIST, DirServers, NULL),
- VAR("EnforceDistinctSubnets", BOOL, EnforceDistinctSubnets,"1"),
- VAR("EntryNodes", STRING, EntryNodes, NULL),
- VAR("ExcludeNodes", STRING, ExcludeNodes, NULL),
- VAR("ExitNodes", STRING, ExitNodes, NULL),
- VAR("ExitPolicy", LINELIST, ExitPolicy, NULL),
- VAR("ExitPolicyRejectPrivate", BOOL, ExitPolicyRejectPrivate, "1"),
- VAR("FascistFirewall", BOOL, FascistFirewall, "0"),
- VAR("FirewallPorts", CSV, FirewallPorts, ""),
- VAR("FastFirstHopPK", BOOL, FastFirstHopPK, "1"),
- VAR("FetchServerDescriptors",BOOL, FetchServerDescriptors,"1"),
- VAR("FetchHidServDescriptors",BOOL, FetchHidServDescriptors, "1"),
- VAR("FetchUselessDescriptors",BOOL, FetchUselessDescriptors, "0"),
- VAR("Group", STRING, Group, NULL),
- VAR("HardwareAccel", BOOL, HardwareAccel, "0"),
- VAR("HashedControlPassword",STRING, HashedControlPassword, NULL),
- VAR("HiddenServiceDir", LINELIST_S, RendConfigLines, NULL),
- VAR("HiddenServiceExcludeNodes", LINELIST_S, RendConfigLines, NULL),
- VAR("HiddenServiceNodes", LINELIST_S, RendConfigLines, NULL),
- VAR("HiddenServiceOptions",LINELIST_V, RendConfigLines, NULL),
- VAR("HiddenServicePort", LINELIST_S, RendConfigLines, NULL),
- VAR("HSAuthoritativeDir", BOOL, HSAuthoritativeDir, "0"),
- VAR("HttpProxy", STRING, HttpProxy, NULL),
- VAR("HttpProxyAuthenticator",STRING, HttpProxyAuthenticator,NULL),
- VAR("HttpsProxy", STRING, HttpsProxy, NULL),
- VAR("HttpsProxyAuthenticator",STRING,HttpsProxyAuthenticator,NULL),
- OBSOLETE("IgnoreVersion"),
- VAR("KeepalivePeriod", INTERVAL, KeepalivePeriod, "5 minutes"),
- VAR("Log", LINELIST, Logs, NULL),
- OBSOLETE("LinkPadding"),
- OBSOLETE("LogLevel"),
- OBSOLETE("LogFile"),
- VAR("LongLivedPorts", CSV, LongLivedPorts,
- "21,22,706,1863,5050,5190,5222,5223,6667,6697,8300"),
- VAR("MapAddress", LINELIST, AddressMap, NULL),
- VAR("MaxAdvertisedBandwidth",MEMUNIT,MaxAdvertisedBandwidth,"128 TB"),
- VAR("MaxCircuitDirtiness", INTERVAL, MaxCircuitDirtiness, "10 minutes"),
- VAR("MaxOnionsPending", UINT, MaxOnionsPending, "100"),
- OBSOLETE("MonthlyAccountingStart"),
- VAR("MyFamily", STRING, MyFamily, NULL),
- VAR("NewCircuitPeriod", INTERVAL, NewCircuitPeriod, "30 seconds"),
- VAR("NamingAuthoritativeDirectory",BOOL, NamingAuthoritativeDir, "0"),
- VAR("NatdListenAddress", LINELIST, NatdListenAddress, NULL),
- VAR("NatdPort", UINT, NatdPort, "0"),
- VAR("Nickname", STRING, Nickname, NULL),
- VAR("NoPublish", BOOL, NoPublish, "0"),
- VAR("NodeFamily", LINELIST, NodeFamilies, NULL),
- VAR("NumCpus", UINT, NumCpus, "1"),
- VAR("NumEntryGuards", UINT, NumEntryGuards, "3"),
- VAR("ORListenAddress", LINELIST, ORListenAddress, NULL),
- VAR("ORPort", UINT, ORPort, "0"),
- VAR("OutboundBindAddress", STRING, OutboundBindAddress, NULL),
-
- VAR("PathlenCoinWeight", DOUBLE, PathlenCoinWeight, "0.3"),
- VAR("PidFile", STRING, PidFile, NULL),
- VAR("PreferTunneledDirConns", BOOL, PreferTunneledDirConns, "0"),
- VAR("ProtocolWarnings", BOOL, ProtocolWarnings, "0"),
- VAR("PublishServerDescriptor",BOOL, PublishServerDescriptor,"1"),
- VAR("PublishHidServDescriptors",BOOL,PublishHidServDescriptors, "1"),
- VAR("ReachableAddresses", LINELIST, ReachableAddresses, NULL),
- VAR("ReachableDirAddresses",LINELIST,ReachableDirAddresses,NULL),
- VAR("ReachableORAddresses",LINELIST, ReachableORAddresses, NULL),
- VAR("RecommendedVersions", LINELIST, RecommendedVersions, NULL),
- VAR("RecommendedClientVersions", LINELIST, RecommendedClientVersions, NULL),
- VAR("RecommendedServerVersions", LINELIST, RecommendedServerVersions, NULL),
- VAR("RedirectExit", LINELIST, RedirectExit, NULL)
-
- VAR("RelayBandwidthBurst", MEMUNIT, RelayBandwidthBurst, "0"),
- VAR("RelayBandwidthRate", MEMUNIT, RelayBandwidthRate, "0"),
- VAR("RendExcludeNodes", STRING, RendExcludeNodes, NULL),
- VAR("RendNodes", STRING, RendNodes, NULL),
- VAR("RendPostPeriod", INTERVAL, RendPostPeriod, "1 hour"),
- VAR("RephistTrackTime", INTERVAL, RephistTrackTime, "24 hours"),
- OBSOLETE("RouterFile"),
- VAR("RunAsDaemon", BOOL, RunAsDaemon, "0"),
- VAR("RunTesting", BOOL, RunTesting, "0"),
- VAR("SafeLogging", BOOL, SafeLogging, "1"),
- VAR("SafeSocks", BOOL, SafeSocks, "0"),
- VAR("ServerDNSAllowNonRFC953Hostnames",
- BOOL, ServerDNSAllowNonRFC953Hostnames, "0"),
- VAR("ServerDNSDetectHijacking",BOOL, ServerDNSDetectHijacking,"1"),
- VAR("ServerDNSResolvConfFile", STRING, ServerDNSResolvConfFile, NULL),
- VAR("ServerDNSSearchDomains", BOOL, ServerDNSSearchDomains, "0"),
- VAR("ServerDNSTestAddresses", CSV, ServerDNSTestAddresses,
- "www.google.com,www.mit.edu,www.yahoo.com,www.slashdot.org"),
- VAR("ShutdownWaitLength", INTERVAL, ShutdownWaitLength, "30 seconds"),
- VAR("SocksListenAddress", LINELIST, SocksListenAddress, NULL),
- VAR("SocksPolicy", LINELIST, SocksPolicy, NULL),
- VAR("SocksPort", UINT, SocksPort, "9050"),
- VAR("SocksTimeout", INTERVAL, SocksTimeout, "2 minutes"),
- OBSOLETE("StatusFetchPeriod"),
- VAR("StrictEntryNodes", BOOL, StrictEntryNodes, "0"),
- VAR("StrictExitNodes", BOOL, StrictExitNodes, "0"),
- OBSOLETE("SysLog"),
- VAR("TestSocks", BOOL, TestSocks, "0"),
- VAR("TestVia", STRING, TestVia, NULL),
- VAR("TrackHostExits", CSV, TrackHostExits, NULL),
- VAR("TrackHostExitsExpire",INTERVAL, TrackHostExitsExpire, "30 minutes"),
- OBSOLETE("TrafficShaping"),
- VAR("TransListenAddress", LINELIST, TransListenAddress, NULL),
- VAR("TransPort", UINT, TransPort, "0"),
- VAR("TunnelDirConns", BOOL, TunnelDirConns, "0"),
- VAR("UseEntryGuards", BOOL, UseEntryGuards, "1"),
- VAR("User", STRING, User, NULL),
- VAR("V1AuthoritativeDirectory",BOOL, V1AuthoritativeDir, "0"),
- VAR("VersioningAuthoritativeDirectory",BOOL,VersioningAuthoritativeDir, "0"),
- VAR("VirtualAddrNetwork", STRING, VirtualAddrNetwork, "127.192.0.0/10"),
- VAR("__LeaveStreamsUnattached", BOOL,LeaveStreamsUnattached, "0"),
- { NULL, CONFIG_TYPE_OBSOLETE, 0, NULL }
- };
- #undef VAR
- #define VAR(name,conftype,member,initvalue) \
- { name, CONFIG_TYPE_ ## conftype, STRUCT_OFFSET(or_state_t, member), \
- initvalue }
- static config_var_t _state_vars[] = {
- VAR("AccountingBytesReadInInterval", MEMUNIT,
- AccountingBytesReadInInterval, NULL),
- VAR("AccountingBytesWrittenInInterval", MEMUNIT,
- AccountingBytesWrittenInInterval, NULL),
- VAR("AccountingExpectedUsage", MEMUNIT, AccountingExpectedUsage, NULL),
- VAR("AccountingIntervalStart", ISOTIME, AccountingIntervalStart, NULL),
- VAR("AccountingSecondsActive", INTERVAL, AccountingSecondsActive, NULL),
- VAR("EntryGuard", LINELIST_S, EntryGuards, NULL),
- VAR("EntryGuardDownSince", LINELIST_S, EntryGuards, NULL),
- VAR("EntryGuardUnlistedSince", LINELIST_S, EntryGuards, NULL),
- VAR("EntryGuards", LINELIST_V, EntryGuards, NULL),
- VAR("BWHistoryReadEnds", ISOTIME, BWHistoryReadEnds, NULL),
- VAR("BWHistoryReadInterval", UINT, BWHistoryReadInterval, "900"),
- VAR("BWHistoryReadValues", CSV, BWHistoryReadValues, ""),
- VAR("BWHistoryWriteEnds", ISOTIME, BWHistoryWriteEnds, NULL),
- VAR("BWHistoryWriteInterval", UINT, BWHistoryWriteInterval, "900"),
- VAR("BWHistoryWriteValues", CSV, BWHistoryWriteValues, ""),
- VAR("TorVersion", STRING, TorVersion, NULL),
- VAR("LastRotatedOnionKey", ISOTIME, LastRotatedOnionKey, NULL),
- VAR("LastWritten", ISOTIME, LastWritten, NULL),
- { NULL, CONFIG_TYPE_OBSOLETE, 0, NULL }
- };
- #undef VAR
- #undef OBSOLETE
- typedef struct config_var_description_t {
- const char *name;
- const char *description;
- } config_var_description_t;
- static config_var_description_t options_description[] = {
-
- { "AvoidDiskWrites", "If non-zero, try to write to disk less frequently than"
- " we would otherwise." },
- { "BandwidthRate", "A token bucket limits the average incoming bandwidth on "
- "this node to the specified number of bytes per second." },
- { "BandwidthBurst", "Limit the maximum token buffer size (also known as "
- "burst) to the given number of bytes." },
- { "ConnLimit", "Maximum number of simultaneous sockets allowed." },
-
- { "ControlPort", "If set, Tor will accept connections from the same machine "
- "(localhost only) on this port, and allow those connections to control "
- "the Tor process using the Tor Control Protocol (described in"
- "control-spec.txt).", },
- { "CookieAuthentication", "If this option is set to 1, don't allow any "
- "connections to the control port except when the connecting process "
- "can read a file that Tor creates in its data directory." },
- { "DataDirectory", "Store working data, state, keys, and caches here." },
- { "DirServer", "Tor only trusts directories signed with one of these "
- "servers' keys. Used to override the standard list of directory "
- "authorities." },
-
-
- { "Group", "On startup, setgid to this group." },
- { "HardwareAccel", "If set, Tor tries to use hardware crypto accelerators "
- "when it can." },
-
- { "HTTPProxy", "Force Tor to make all HTTP directory requests through this "
- "host:port (or host:80 if port is not set)." },
- { "HTTPProxyAuthenticator", "A username:password pair to be used with "
- "HTTPProxy." },
- { "HTTPSProxy", "Force Tor to make all TLS (SSL) connectinos through this "
- "host:port (or host:80 if port is not set)." },
- { "HTTPSProxyAuthenticator", "A username:password pair to be used with "
- "HTTPSProxy." },
- { "KeepalivePeriod", "Send a padding cell every N seconds to keep firewalls "
- "from closing our connections while Tor is not in use." },
- { "Log", "Where to send logging messages. Format is "
- "minSeverity[-maxSeverity] (stderr|stdout|syslog|file FILENAME)." },
- { "OutboundBindAddress", "Make all outbound connections originate from the "
- "provided IP address (only useful for multiple network interfaces)." },
- { "PIDFile", "On startup, write our PID to this file. On clean shutdown, "
- "remove the file." },
- { "PreferTunneledDirConns", "If non-zero, avoid directory servers that "
- "don't support tunneled conncetions." },
-
-
-
- { "RunAsDaemon", "If set, Tor forks and daemonizes to the background when "
- "started. Unix only." },
- { "SafeLogging", "If set to 0, Tor logs potentially sensitive strings "
- "rather than replacing them with the string [scrubbed]." },
- { "TunnelDirConns", "If non-zero, when a directory server we contact "
- "supports it, we will build a one-hop circuit and make an encrypted "
- "connection via its ORPort." },
- { "User", "On startup, setuid to this user" },
-
- { "AllowInvalidNodes", "Where on our circuits should Tor allow servers "
- "that the directory authorities haven't called \"valid\"?" },
- { "AllowNonRFC953Hostnames", "If set to 1, we don't automatically reject "
- "hostnames for having invalid characters." },
-
- { "ClientOnly", "If set to 1, Tor will under no circumstances run as a "
- "server, even if ORPort is enabled." },
- { "EntryNodes", "A list of preferred entry nodes to use for the first hop "
- "in circuits, when possible." },
-
- { "ExitNodes", "A list of preferred nodes to use for the last hop in "
- "circuits, when possible." },
- { "ExcludeNodes", "A list of nodes never to use when building a circuit." },
- { "FascistFirewall", "If set, Tor will only create outgoing connections to "
- "servers running on the ports listed in FirewallPorts." },
- { "FirewallPorts", "A list of ports that we can connect to. Only used "
- "when FascistFirewall is set." },
- { "LongLivedPorts", "A list of ports for services that tend to require "
- "high-uptime connections." },
- { "MapAddress", "Force Tor to treat all requests for one address as if "
- "they were for another." },
- { "NewCircuitPeriod", "Force Tor to consider whether to build a new circuit "
- "every NUM seconds." },
- { "MaxCircuitDirtiness", "Do not attach new streams to a circuit that has "
- "been used more than this many seconds ago." },
-
- { "NodeFamily", "A list of servers that constitute a 'family' and should "
- "never be used in the same circuit." },
- { "NumEntryGuards", "How many entry guards should we keep at a time?" },
-
- { "ReachableAddresses", "Addresses we can connect to, as IP/bits:port-port. "
- "By default, we assume all addresses are reachable." },
-
- { "RendNodes", "A list of preferred nodes to use for a rendezvous point, "
- "when possible." },
- { "RendExcludenodes", "A list of nodes never to use as rendezvous points." },
-
- { "SOCKSPort", "The port where we listen for SOCKS connections from "
- "applications." },
- { "SOCKSListenAddress", "Bind to this address to listen to connections from "
- "SOCKS-speaking applications." },
- { "SOCKSPolicy", "Set an entry policy to limit which addresses can connect "
- "to the SOCKSPort." },
-
- { "StrictExitNodes", "If set, Tor will fail to operate when none of the "
- "configured ExitNodes can be used." },
- { "StrictEntryNodes", "If set, Tor will fail to operate when none of the "
- "configured EntryNodes can be used." },
-
- { "TrackHostsExit", "Hosts and domains which should, if possible, be "
- "accessed from the same exit node each time we connect to them." },
- { "TrackHostsExitExpire", "Time after which we forget which exit we were "
- "using to connect to hosts in TrackHostsExit." },
-
- { "UseEntryGuards", "Set to 0 if we want to pick from the whole set of "
- "servers for the first position in each circuit, rather than picking a "
- "set of 'Guards' to prevent profiling attacks." },
-
- { "Address", "The advertised (external) address we should use." },
-
-
- { "ContactInfo", "Administrative contact information to advertise for this "
- "server." },
- { "ExitPolicy", "Address/port ranges for which to accept or reject outgoing "
- "connections on behalf of Tor users." },
-
- { "MaxAdvertisedBandwidth", "If set, we will not advertise more than this "
- "amount of bandwidth for our bandwidth rate, regardless of how much "
- "bandwidth we actually detect." },
- { "MaxOnionsPending", "Reject new attempts to extend circuits when we "
- "already have this many pending." },
- { "MyFamily", "Declare a list of other servers as belonging to the same "
- "family as this one, so that clients will not use two from the same "
- "family in the same circuit." },
- { "Nickname", "Set the server nickname." },
- { "NoPublish", "{DEPRECATED}" },
- { "NumCPUs", "How many processes to use at once for public-key crypto." },
- { "ORPort", "Advertise this port to listen for connections from Tor clients "
- "and servers." },
- { "ORListenAddress", "Bind to this address to listen for connections from "
- "clients and servers, instead of the default 0.0.0.0:ORPort." },
- { "PublishServerDescriptors", "Set to 0 in order to keep the server from "
- "uploading info to the directory authorities." },
-
-
- { "ShutdownWaitLength", "Wait this long for clients to finish when "
- "shutting down because of a SIGINT." },
-
-
- { "DirPort", "Serve directory information from this port, and act as a "
- "directory cache." },
- { "DirListenAddress", "Bind to this address to listen for connections from "
- "clients and servers, instead of the default 0.0.0.0:DirPort." },
- { "DirPolicy", "Set a policy to limit who can connect to the directory "
- "port" },
-
-
-
- { NULL, NULL },
- };
- static config_var_description_t state_description[] = {
- { "AccountingBytesReadInInterval",
- "How many bytes have we read in this accounting period?" },
- { "AccountingBytesWrittenInInterval",
- "How many bytes have we written in this accounting period?" },
- { "AccountingExpectedUsage",
- "How many bytes did we expect to use per minute? (0 for no estimate.)" },
- { "AccountingIntervalStart", "When did this accounting period begin?" },
- { "AccountingSecondsActive", "How long have we been awake in this period?" },
- { "BWHistoryReadEnds", "When does the last-recorded read-interval end?" },
- { "BWHistoryReadInterval", "How long is each read-interval (in seconds)?" },
- { "BWHistoryReadValues", "Number of bytes read in each interval." },
- { "BWHistoryWriteEnds", "When does the last-recorded write-interval end?" },
- { "BWHistoryWriteInterval", "How long is each write-interval (in seconds)?"},
- { "BWHistoryWriteValues", "Number of bytes written in each interval." },
- { "EntryGuard", "One of the nodes we have chosen as a fixed entry" },
- { "EntryGuardDownSince",
- "The last entry guard has been unreachable since this time." },
- { "EntryGuardUnlistedSince",
- "The last entry guard has been unusable since this time." },
- { "LastRotatedOnionKey",
- "The last time at which we changed the medium-term private key used for "
- "building circuits." },
- { "LastWritten", "When was this state file last regenerated?" },
- { "TorVersion", "Which version of Tor generated this state file?" },
- { NULL, NULL },
- };
- typedef int (*validate_fn_t)(void*,void*,int,char**);
- typedef struct {
- size_t size;
- uint32_t magic;
- off_t magic_offset;
- config_abbrev_t *abbrevs;
- config_var_t *vars;
- validate_fn_t validate_fn;
- config_var_description_t *descriptions;
-
- config_var_t *extra;
- } config_format_t;
- #define CHECK(fmt, cfg) do { \
- tor_assert(fmt && cfg); \
- tor_assert((fmt)->magic == \
- *(uint32_t*)STRUCT_VAR_P(cfg,fmt->magic_offset)); \
- } while (0)
- static void config_line_append(config_line_t **lst,
- const char *key, const char *val);
- static void option_clear(config_format_t *fmt, or_options_t *options,
- config_var_t *var);
- static void option_reset(config_format_t *fmt, or_options_t *options,
- config_var_t *var, int use_defaults);
- static void config_free(config_format_t *fmt, void *options);
- static int option_is_same(config_format_t *fmt,
- or_options_t *o1, or_options_t *o2,
- const char *name);
- static or_options_t *options_dup(config_format_t *fmt, or_options_t *old);
- static int options_validate(or_options_t *old_options, or_options_t *options,
- int from_setconf, char **msg);
- static int options_act_reversible(or_options_t *old_options, char **msg);
- static int options_act(or_options_t *old_options);
- static int options_transition_allowed(or_options_t *old, or_options_t *new,
- char **msg);
- static int options_transition_affects_workers(or_options_t *old_options,
- or_options_t *new_options);
- static int options_transition_affects_descriptor(or_options_t *old_options,
- or_options_t *new_options);
- static int check_nickname_list(const char *lst, const char *name, char **msg);
- static void config_register_addressmaps(or_options_t *options);
- static int parse_dir_server_line(const char *line, int validate_only);
- static int parse_redirect_line(smartlist_t *result,
- config_line_t *line, char **msg);
- static int parse_log_severity_range(const char *range, int *min_out,
- int *max_out);
- static int validate_data_directory(or_options_t *options);
- static int write_configuration_file(const char *fname, or_options_t *options);
- static config_line_t *get_assigned_option(config_format_t *fmt,
- or_options_t *options, const char *key);
- static void config_init(config_format_t *fmt, void *options);
- static int or_state_validate(or_state_t *old_options, or_state_t *options,
- int from_setconf, char **msg);
- static uint64_t config_parse_memunit(const char *s, int *ok);
- static int config_parse_interval(const char *s, int *ok);
- static void print_svn_version(void);
- static void init_libevent(void);
- static int opt_streq(const char *s1, const char *s2);
- typedef enum {
-
- LE_OLD=0, LE_10C, LE_10D, LE_10E, LE_11, LE_11A, LE_11B, LE_12, LE_12A,
- LE_OTHER
- } le_version_t;
- static le_version_t decode_libevent_version(void);
- #if defined(HAVE_EVENT_GET_VERSION) && defined(HAVE_EVENT_GET_METHOD)
- static void check_libevent_version(const char *m, int server);
- #endif
- or_options_t *options_new(void);
- #define OR_OPTIONS_MAGIC 9090909
- static config_format_t options_format = {
- sizeof(or_options_t),
- OR_OPTIONS_MAGIC,
- STRUCT_OFFSET(or_options_t, _magic),
- _option_abbrevs,
- _option_vars,
- (validate_fn_t)options_validate,
- options_description,
- NULL
- };
- #define OR_STATE_MAGIC 0x57A73f57
- static config_var_t state_extra_var = {
- "__extra", CONFIG_TYPE_LINELIST, STRUCT_OFFSET(or_state_t, ExtraLines), NULL
- };
- static config_format_t state_format = {
- sizeof(or_state_t),
- OR_STATE_MAGIC,
- STRUCT_OFFSET(or_state_t, _magic),
- _state_abbrevs,
- _state_vars,
- (validate_fn_t)or_state_validate,
- state_description,
- &state_extra_var,
- };
- static or_options_t *global_options = NULL;
- static char *torrc_fname = NULL;
- static or_state_t *global_state = NULL;
- static void *
- config_alloc(config_format_t *fmt)
- {
- void *opts = tor_malloc_zero(fmt->size);
- *(uint32_t*)STRUCT_VAR_P(opts, fmt->magic_offset) = fmt->magic;
- CHECK(fmt, opts);
- return opts;
- }
- or_options_t *
- get_options(void)
- {
- tor_assert(global_options);
- return global_options;
- }
- int
- set_options(or_options_t *new_val, char **msg)
- {
- or_options_t *old_options = global_options;
- global_options = new_val;
-
- if (options_act_reversible(old_options, msg)<0) {
- tor_assert(*msg);
- global_options = old_options;
- return -1;
- }
- if (options_act(old_options) < 0) {
- log_err(LD_BUG,
- "Acting on config options left us in a broken state. Dying.");
- exit(1);
- }
- if (old_options)
- config_free(&options_format, old_options);
- return 0;
- }
- void
- config_free_all(void)
- {
- if (global_options) {
- config_free(&options_format, global_options);
- global_options = NULL;
- }
- if (global_state) {
- config_free(&state_format, global_state);
- global_state = NULL;
- }
- tor_free(torrc_fname);
- }
- const char *
- safe_str(const char *address)
- {
- if (get_options()->SafeLogging)
- return "[scrubbed]";
- else
- return address;
- }
- const char *
- escaped_safe_str(const char *address)
- {
- if (get_options()->SafeLogging)
- return "[scrubbed]";
- else
- return escaped(address);
- }
- static void
- add_default_trusted_dirservers(void)
- {
- int i;
- const char *dirservers[] = {
-
- "moria1 v1 orport=9001 18.244.0.188:9031 "
- "FFCB 46DB 1339 DA84 674C 70D7 CB58 6434 C437 0441",
- "moria2 v1 orport=443 18.244.0.114:80 "
- "719B E45D E224 B607 C537 07D0 E214 3E2D 423E 74CF",
- "tor26 v1 orport=443 86.59.21.38:80 "
- "847B 1F85 0344 D787 6491 A548 92F9 0493 4E4E B85D",
- "lefkada orport=443 140.247.60.64:80 "
- "38D4 F5FC F7B1 0232 28B8 95EA 56ED E7D5 CCDC AF32",
- "dizum 194.109.206.212:80 "
- "7EA6 EAD6 FD83 083C 538F 4403 8BBF A077 587D D755",
- NULL
- };
- for (i=0; dirservers[i]; i++)
- parse_dir_server_line(dirservers[i], 0);
- }
- static int
- options_act_reversible(or_options_t *old_options, char **msg)
- {
- smartlist_t *new_listeners = smartlist_create();
- smartlist_t *replaced_listeners = smartlist_create();
- static int libevent_initialized = 0;
- or_options_t *options = get_options();
- int running_tor = options->command == CMD_RUN_TOR;
- int set_conn_limit = 0;
- int r = -1;
- int logs_marked = 0;
- if (running_tor && options->RunAsDaemon) {
-
- start_daemon();
- }
-
- if (options->User || options->Group) {
- if (switch_id(options->User, options->Group) != 0) {
-
- *msg = tor_strdup("Problem with User or Group value. "
- "See logs for details.");
- goto done;
- }
- }
-
- if (running_tor && !libevent_initialized) {
- init_libevent();
- libevent_initialized = 1;
- }
-
- if (check_private_dir(options->DataDirectory, CPD_CREATE)<0) {
- char buf[1024];
- int tmp = tor_snprintf(buf, sizeof(buf),
- "Couldn't access/create private data directory \"%s\"",
- options->DataDirectory);
- *msg = tor_strdup(tmp >= 0 ? buf : "internal error");
- goto done;
-
- }
-
- if (options->command != CMD_RUN_TOR)
- goto commit;
- options->_ConnLimit =
- set_max_file_descriptors((unsigned)options->ConnLimit, MAXCONNECTIONS);
- if (options->_ConnLimit < 0) {
- *msg = tor_strdup("Problem with ConnLimit value. See logs for details.");
- goto rollback;
- }
- set_conn_limit = 1;
- if (retry_all_listeners(0, replaced_listeners, new_listeners) < 0) {
- *msg = tor_strdup("Failed to bind one of the listener ports.");
- goto rollback;
- }
- mark_logs_temp();
- logs_marked = 1;
- if (options_init_logs(options, 0)<0) {
- *msg = tor_strdup("Failed to init Log options. See logs for details.");
- goto rollback;
- }
- commit:
- r = 0;
- if (logs_marked) {
- close_temp_logs();
- add_callback_log(LOG_ERR, LOG_ERR, control_event_logmsg);
- control_adjust_event_log_severity();
- }
- SMARTLIST_FOREACH(replaced_listeners, connection_t *, conn,
- {
- log_notice(LD_NET, "Closing old %s on %s:%d",
- conn_type_to_string(conn->type), conn->address, conn->port);
- connection_close_immediate(conn);
- connection_mark_for_close(conn);
- });
- goto done;
- rollback:
- r = -1;
- tor_assert(*msg);
- if (logs_marked) {
- rollback_log_changes();
- control_adjust_event_log_severity();
- }
- if (set_conn_limit && old_options)
- set_max_file_descriptors((unsigned)old_options->ConnLimit,MAXCONNECTIONS);
- SMARTLIST_FOREACH(new_listeners, connection_t *, conn,
- {
- log_notice(LD_NET, "Closing partially-constructed listener %s on %s:%d",
- conn_type_to_string(conn->type), conn->address, conn->port);
- connection_close_immediate(conn);
- connection_mark_for_close(conn);
- });
- done:
- smartlist_free(new_listeners);
- smartlist_free(replaced_listeners);
- return r;
- }
- static int
- options_act(or_options_t *old_options)
- {
- config_line_t *cl;
- char *fn;
- size_t len;
- or_options_t *options = get_options();
- int running_tor = options->command == CMD_RUN_TOR;
- char *msg;
- clear_trusted_dir_servers();
- if (options->DirServers) {
- for (cl = options->DirServers; cl; cl = cl->next) {
- if (parse_dir_server_line(cl->value, 0)<0) {
- log_err(LD_BUG,
- "Bug: Previously validated DirServer line could not be added!");
- return -1;
- }
- }
- } else {
- add_default_trusted_dirservers();
- }
- if (running_tor && rend_config_services(options, 0)<0) {
- log_err(LD_BUG,
- "Bug: Previously validated hidden services line could not be added!");
- return -1;
- }
- if (running_tor) {
- len = strlen(options->DataDirectory)+32;
- fn = tor_malloc(len);
- tor_snprintf(fn, len, "%s/cached-status", options->DataDirectory);
- if (check_private_dir(fn, CPD_CREATE) != 0) {
- log_err(LD_CONFIG,
- "Couldn't access/create private data directory \"%s\"", fn);
- tor_free(fn);
- return -1;
- }
- tor_free(fn);
- }
-
- if (! global_state)
- if (or_state_load())
- return -1;
-
- if (options->command != CMD_RUN_TOR)
- return 0;
- {
- smartlist_t *sl = smartlist_create();
- char *errmsg = NULL;
- for (cl = options->RedirectExit; cl; cl = cl->next) {
- if (parse_redirect_line(sl, cl, &errmsg)<0) {
- log_warn(LD_CONFIG, "%s", errmsg);
- tor_free(errmsg);
- return -1;
- }
- }
- set_exit_redirects(sl);
- }
-
- if (running_tor && options->RunAsDaemon) {
-
- finish_daemon(options->DataDirectory);
- }
-
- if (running_tor && options->PidFile)
- write_pidfile(options->PidFile);
-
- config_register_addressmaps(options);
- parse_virtual_addr_network(options->VirtualAddrNetwork, 0, &msg);
-
- policies_parse_from_options(options);
- init_cookie_authentication(options->CookieAuthentication);
-
- if (rend_service_load_keys()<0) {
- log_err(LD_GENERAL,"Error loading rendezvous service keys");
- return -1;
- }
-
- if (accounting_parse_options(options, 0)<0) {
- log_err(LD_CONFIG,"Error in accounting options");
- return -1;
- }
- if (accounting_is_enabled(options))
- configure_accounting(time(NULL));
- if (!running_tor)
- return 0;
-
- if (old_options) {
- if (options->UseEntryGuards && !old_options->UseEntryGuards) {
- log_info(LD_CIRC,
- "Switching to entry guards; abandoning previous circuits");
- circuit_mark_all_unused_circs();
- circuit_expire_all_dirty_circs();
- }
- if (options_transition_affects_workers(old_options, options)) {
- log_info(LD_GENERAL,
- "Worker-related options changed. Rotating workers.");
- if (server_mode(options) && !server_mode(old_options)) {
- if (init_keys() < 0) {
- log_err(LD_BUG,"Error initializing keys; exiting");
- return -1;
- }
- ip_address_changed(0);
- if (has_completed_circuit || !any_predicted_circuits(time(NULL)))
- inform_testing_reachability();
- }
- cpuworkers_rotate();
- dns_reset();
- }
- #ifdef USE_EVENTDNS
- else {
- dns_reset();
- }
- #endif
- }
-
- if (options->EntryNodes &&
- (!old_options ||
- !opt_streq(old_options->EntryNodes, options->EntryNodes)))
- entry_nodes_should_be_added();
-
- if (!old_options ||
- options_transition_affects_descriptor(old_options, options))
- mark_my_descriptor_dirty();
- return 0;
- }
- static const char *
- expand_abbrev(config_format_t *fmt, const char *option, int command_line,
- int warn_obsolete)
- {
- int i;
- if (! fmt->abbrevs)
- return option;
- for (i=0; fmt->abbrevs[i].abbreviated; ++i) {
-
- if (!strcasecmp(option,fmt->abbrevs[i].abbreviated) &&
- (command_line || !fmt->abbrevs[i].commandline_only)) {
- if (warn_obsolete && fmt->abbrevs[i].warn) {
- log_warn(LD_CONFIG,
- "The configuration option '%s' is deprecated; "
- "use '%s' instead.",
- fmt->abbrevs[i].abbreviated,
- fmt->abbrevs[i].full);
- }
- return fmt->abbrevs[i].full;
- }
- }
- return option;
- }
- static int
- config_get_commandlines(int argc, char **argv, config_line_t **result)
- {
- config_line_t *front = NULL;
- config_line_t **new = &front;
- char *s;
- int i = 1;
- while (i < argc) {
- if (!strcmp(argv[i],"-f") ||
- !strcmp(argv[i],"--hash-password")) {
- i += 2;
- continue;
- } else if (!strcmp(argv[i],"--list-fingerprint") ||
- !strcmp(argv[i],"--verify-config")) {
- i += 1;
- continue;
- } else if (!strcmp(argv[i],"--nt-service") ||
- !strcmp(argv[i],"-nt-service")) {
- i += 1;
- continue;
- }
- if (i == argc-1) {
- log_warn(LD_CONFIG,"Command-line option '%s' with no value. Failing.",
- argv[i]);
- config_free_lines(front);
- return -1;
- }
- *new = tor_malloc_zero(sizeof(config_line_t));
- s = argv[i];
- while (*s == '-')
- s++;
- (*new)->key = tor_strdup(expand_abbrev(&options_format, s, 1, 1));
- (*new)->value = tor_strdup(argv[i+1]);
- (*new)->next = NULL;
- log(LOG_DEBUG, LD_CONFIG, "Commandline: parsed keyword '%s', value '%s'",
- (*new)->key, (*new)->value);
- new = &((*new)->next);
- i += 2;
- }
- *result = front;
- return 0;
- }
- static void
- config_line_append(config_line_t **lst,
- const char *key,
- const char *val)
- {
- config_line_t *newline;
- newline = tor_malloc(sizeof(config_line_t));
- newline->key = tor_strdup(key);
- newline->value = tor_strdup(val);
- newline->next = NULL;
- while (*lst)
- lst = &((*lst)->next);
- (*lst) = newline;
- }
- int
- config_get_lines(char *string, config_line_t **result)
- {
- config_line_t *list = NULL, **next;
- char *k, *v;
- next = &list;
- do {
- string = parse_line_from_str(string, &k, &v);
- if (!string) {
- config_free_lines(list);
- return -1;
- }
- if (k && v) {
-
- *next = tor_malloc(sizeof(config_line_t));
- (*next)->key = tor_strdup(k);
- (*next)->value = tor_strdup(v);
- (*next)->next = NULL;
- next = &((*next)->next);
- }
- } while (*string);
- *result = list;
- return 0;
- }
- void
- config_free_lines(config_line_t *front)
- {
- config_line_t *tmp;
- while (front) {
- tmp = front;
- front = tmp->next;
- tor_free(tmp->key);
- tor_free(tmp->value);
- tor_free(tmp);
- }
- }
- static const char *
- config_find_description(config_format_t *fmt, const char *name)
- {
- int i;
- for (i=0; fmt->descriptions[i].name; ++i) {
- if (!strcasecmp(name, fmt->descriptions[i].name))
- return fmt->descriptions[i].description;
- }
- return NULL;
- }
- static config_var_t *
- config_find_option(config_format_t *fmt, const char *key)
- {
- int i;
- size_t keylen = strlen(key);
- if (!keylen)
- return NULL;
-
- for (i=0; fmt->vars[i].name; ++i) {
- if (!strcasecmp(key, fmt->vars[i].name)) {
- return &fmt->vars[i];
- }
- }
-
- for (i=0; fmt->vars[i].name; ++i) {
- if (!strncasecmp(key, fmt->vars[i].name, keylen)) {
- log_warn(LD_CONFIG, "The abbreviation '%s' is deprecated. "
- "Please use '%s' instead",
- key, fmt->vars[i].name);
- return &fmt->vars[i];
- }
- }
-
- return NULL;
- }
- static int
- config_assign_value(config_format_t *fmt, or_options_t *options,
- config_line_t *c, char **msg)
- {
- int i, r, ok;
- char buf[1024];
- config_var_t *var;
- void *lvalue;
- CHECK(fmt, options);
- var = config_find_option(fmt, c->key);
- tor_assert(var);
- lvalue = STRUCT_VAR_P(options, var->var_offset);
- switch (var->type) {
- case CONFIG_TYPE_UINT:
- i = tor_parse_long(c->value, 10, 0, INT_MAX, &ok, NULL);
- if (!ok) {
- r = tor_snprintf(buf, sizeof(buf),
- "Int keyword '%s %s' is malformed or out of bounds.",
- c->key, c->value);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- *(int *)lvalue = i;
- break;
- case CONFIG_TYPE_INTERVAL: {
- i = config_parse_interval(c->value, &ok);
- if (!ok) {
- r = tor_snprintf(buf, sizeof(buf),
- "Interval '%s %s' is malformed or out of bounds.",
- c->key, c->value);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- *(int *)lvalue = i;
- break;
- }
- case CONFIG_TYPE_MEMUNIT: {
- uint64_t u64 = config_parse_memunit(c->value, &ok);
- if (!ok) {
- r = tor_snprintf(buf, sizeof(buf),
- "Value '%s %s' is malformed or out of bounds.",
- c->key, c->value);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- *(uint64_t *)lvalue = u64;
- break;
- }
- case CONFIG_TYPE_BOOL:
- i = tor_parse_long(c->value, 10, 0, 1, &ok, NULL);
- if (!ok) {
- r = tor_snprintf(buf, sizeof(buf),
- "Boolean '%s %s' expects 0 or 1.",
- c->key, c->value);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- *(int *)lvalue = i;
- break;
- case CONFIG_TYPE_STRING:
- tor_free(*(char **)lvalue);
- *(char **)lvalue = tor_strdup(c->value);
- break;
- case CONFIG_TYPE_DOUBLE:
- *(double *)lvalue = atof(c->value);
- break;
- case CONFIG_TYPE_ISOTIME:
- if (parse_iso_time(c->value, (time_t *)lvalue)) {
- r = tor_snprintf(buf, sizeof(buf),
- "Invalid time '%s' for keyword '%s'", c->value, c->key);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- break;
- case CONFIG_TYPE_CSV:
- if (*(smartlist_t**)lvalue) {
- SMARTLIST_FOREACH(*(smartlist_t**)lvalue, char *, cp, tor_free(cp));
- smartlist_clear(*(smartlist_t**)lvalue);
- } else {
- *(smartlist_t**)lvalue = smartlist_create();
- }
- smartlist_split_string(*(smartlist_t**)lvalue, c->value, ",",
- SPLIT_SKIP_SPACE|SPLIT_IGNORE_BLANK, 0);
- break;
- case CONFIG_TYPE_LINELIST:
- case CONFIG_TYPE_LINELIST_S:
- config_line_append((config_line_t**)lvalue, c->key, c->value);
- break;
- case CONFIG_TYPE_OBSOLETE:
- log_warn(LD_CONFIG, "Skipping obsolete configuration option '%s'", c->key);
- break;
- case CONFIG_TYPE_LINELIST_V:
- r = tor_snprintf(buf, sizeof(buf),
- "You may not provide a value for virtual option '%s'", c->key);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- default:
- tor_assert(0);
- break;
- }
- return 0;
- }
- static int
- config_assign_line(config_format_t *fmt, or_options_t *options,
- config_line_t *c, int use_defaults,
- int clear_first, char **msg)
- {
- config_var_t *var;
- CHECK(fmt, options);
- var = config_find_option(fmt, c->key);
- if (!var) {
- if (fmt->extra) {
- void *lvalue = STRUCT_VAR_P(options, fmt->extra->var_offset);
- log_info(LD_CONFIG,
- "Found unrecognized option '%s'; saving it.", c->key);
- config_line_append((config_line_t**)lvalue, c->key, c->value);
- return 0;
- } else {
- char buf[1024];
- int tmp = tor_snprintf(buf, sizeof(buf),
- "Unknown option '%s'. Failing.", c->key);
- *msg = tor_strdup(tmp >= 0 ? buf : "internal error");
- return -1;
- }
- }
-
- if (strcmp(var->name, c->key)) {
- tor_free(c->key);
- c->key = tor_strdup(var->name);
- }
- if (!strlen(c->value)) {
-
- if (!clear_first) {
- if (var->type == CONFIG_TYPE_LINELIST ||
- var->type == CONFIG_TYPE_LINELIST_S) {
-
- log_warn(LD_CONFIG,
- "Linelist option '%s' has no value. Skipping.", c->key);
- } else {
- option_reset(fmt, options, var, use_defaults);
- }
- }
- return 0;
- }
- if (config_assign_value(fmt, options, c, msg) < 0)
- return -2;
- return 0;
- }
- static void
- config_reset_line(config_format_t *fmt, or_options_t *options,
- const char *key, int use_defaults)
- {
- config_var_t *var;
- CHECK(fmt, options);
- var = config_find_option(fmt, key);
- if (!var)
- return;
- option_reset(fmt, options, var, use_defaults);
- }
- int
- option_is_recognized(const char *key)
- {
- config_var_t *var = config_find_option(&options_format, key);
- return (var != NULL);
- }
- const char *
- option_get_canonical_name(const char *key)
- {
- config_var_t *var = config_find_option(&options_format, key);
- return var->name;
- }
- config_line_t *
- option_get_assignment(or_options_t *options, const char *key)
- {
- return get_assigned_option(&options_format, options, key);
- }
- static config_line_t *
- config_lines_dup(const config_line_t *inp)
- {
- config_line_t *result = NULL;
- config_line_t **next_out = &result;
- while (inp) {
- *next_out = tor_malloc(sizeof(config_line_t));
- (*next_out)->key = tor_strdup(inp->key);
- (*next_out)->value = tor_strdup(inp->value);
- inp = inp->next;
- next_out = &((*next_out)->next);
- }
- (*next_out) = NULL;
- return result;
- }
- static config_line_t *
- get_assigned_option(config_format_t *fmt, or_options_t *options,
- const char *key)
- {
- config_var_t *var;
- const void *value;
- char buf[32];
- config_line_t *result;
- tor_assert(options && key);
- CHECK(fmt, options);
- var = config_find_option(fmt, key);
- if (!var) {
- log_warn(LD_CONFIG, "Unknown option '%s'. Failing.", key);
- return NULL;
- }
- value = STRUCT_VAR_P(options, var->var_offset);
- result = tor_malloc_zero(sizeof(config_line_t));
- result->key = tor_strdup(var->name);
- switch (var->type)
- {
- case CONFIG_TYPE_STRING:
- if (*(char**)value) {
- result->value = tor_strdup(*(char**)value);
- } else {
- tor_free(result->key);
- tor_free(result);
- return NULL;
- }
- break;
- case CONFIG_TYPE_ISOTIME:
- if (*(time_t*)value) {
- result->value = tor_malloc(ISO_TIME_LEN+1);
- format_iso_time(result->value, *(time_t*)value);
- } else {
- tor_free(result->key);
- tor_free(result);
- }
- break;
- case CONFIG_TYPE_INTERVAL:
- case CONFIG_TYPE_UINT:
-
- tor_snprintf(buf, sizeof(buf), "%d", *(int*)value);
- result->value = tor_strdup(buf);
- break;
- case CONFIG_TYPE_MEMUNIT:
- tor_snprintf(buf, sizeof(buf), U64_FORMAT,
- U64_PRINTF_ARG(*(uint64_t*)value));
- result->value = tor_strdup(buf);
- break;
- case CONFIG_TYPE_DOUBLE:
- tor_snprintf(buf, sizeof(buf), "%f", *(double*)value);
- result->value = tor_strdup(buf);
- break;
- case CONFIG_TYPE_BOOL:
- result->value = tor_strdup(*(int*)value ? "1" : "0");
- break;
- case CONFIG_TYPE_CSV:
- if (*(smartlist_t**)value)
- result->value =
- smartlist_join_strings(*(smartlist_t**)value, ",", 0, NULL);
- else
- result->value = tor_strdup("");
- break;
- case CONFIG_TYPE_OBSOLETE:
- log_warn(LD_CONFIG,
- "You asked me for the value of an obsolete config option '%s'.",
- key);
- tor_free(result->key);
- tor_free(result);
- return NULL;
- case CONFIG_TYPE_LINELIST_S:
- log_warn(LD_CONFIG,
- "Can't return context-sensitive '%s' on its own", key);
- tor_free(result->key);
- tor_free(result);
- return NULL;
- case CONFIG_TYPE_LINELIST:
- case CONFIG_TYPE_LINELIST_V:
- tor_free(result->key);
- tor_free(result);
- return config_lines_dup(*(const config_line_t**)value);
- default:
- tor_free(result->key);
- tor_free(result);
- log_warn(LD_BUG,"Bug: unknown type %d for known key '%s'",
- var->type, key);
- return NULL;
- }
- return result;
- }
- static int
- config_assign(config_format_t *fmt, void *options, config_line_t *list,
- int use_defaults, int clear_first, char **msg)
- {
- config_line_t *p;
- CHECK(fmt, options);
-
- for (p = list; p; p = p->next) {
- const char *full = expand_abbrev(fmt, p->key, 0, 1);
- if (strcmp(full,p->key)) {
- tor_free(p->key);
- p->key = tor_strdup(full);
- }
- }
-
- if (clear_first) {
- for (p = list; p; p = p->next)
- config_reset_line(fmt, options, p->key, use_defaults);
- }
-
- while (list) {
- int r;
- if ((r=config_assign_line(fmt, options, list, use_defaults,
- clear_first, msg)))
- return r;
- list = list->next;
- }
- return 0;
- }
- int
- options_trial_assign(config_line_t *list, int use_defaults,
- int clear_first, char **msg)
- {
- int r;
- or_options_t *trial_options = options_dup(&options_format, get_options());
- if ((r=config_assign(&options_format, trial_options,
- list, use_defaults, clear_first, msg)) < 0) {
- config_free(&options_format, trial_options);
- return r;
- }
- if (options_validate(get_options(), trial_options, 1, msg) < 0) {
- config_free(&options_format, trial_options);
- return -2;
- }
- if (options_transition_allowed(get_options(), trial_options, msg) < 0) {
- config_free(&options_format, trial_options);
- return -3;
- }
- if (set_options(trial_options, msg)<0) {
- config_free(&options_format, trial_options);
- return -4;
- }
-
- return 0;
- }
- static void
- option_clear(config_format_t *fmt, or_options_t *options, config_var_t *var)
- {
- void *lvalue = STRUCT_VAR_P(options, var->var_offset);
- (void)fmt;
- switch (var->type) {
- case CONFIG_TYPE_STRING:
- tor_free(*(char**)lvalue);
- break;
- case CONFIG_TYPE_DOUBLE:
- *(double*)lvalue = 0.0;
- break;
- case CONFIG_TYPE_ISOTIME:
- *(time_t*)lvalue = 0;
- case CONFIG_TYPE_INTERVAL:
- case CONFIG_TYPE_UINT:
- case CONFIG_TYPE_BOOL:
- *(int*)lvalue = 0;
- break;
- case CONFIG_TYPE_MEMUNIT:
- *(uint64_t*)lvalue = 0;
- break;
- case CONFIG_TYPE_CSV:
- if (*(smartlist_t**)lvalue) {
- SMARTLIST_FOREACH(*(smartlist_t **)lvalue, char *, cp, tor_free(cp));
- smartlist_free(*(smartlist_t **)lvalue);
- *(smartlist_t **)lvalue = NULL;
- }
- break;
- case CONFIG_TYPE_LINELIST:
- case CONFIG_TYPE_LINELIST_S:
- config_free_lines(*(config_line_t **)lvalue);
- *(config_line_t **)lvalue = NULL;
- break;
- case CONFIG_TYPE_LINELIST_V:
-
- break;
- case CONFIG_TYPE_OBSOLETE:
- break;
- }
- }
- static void
- option_reset(config_format_t *fmt, or_options_t *options,
- config_var_t *var, int use_defaults)
- {
- config_line_t *c;
- char *msg = NULL;
- CHECK(fmt, options);
- option_clear(fmt, options, var);
- if (!use_defaults)
- return;
- if (var->initvalue) {
- c = tor_malloc_zero(sizeof(config_line_t));
- c->key = tor_strdup(var->name);
- c->value = tor_strdup(var->initvalue);
- if (config_assign_value(fmt, options, c, &msg) < 0) {
- log_warn(LD_BUG, "Failed to assign default: %s", msg);
- tor_free(msg);
- }
- config_free_lines(c);
- }
- }
- static void
- print_usage(void)
- {
- printf(
- "Copyright 2001-2006 Roger Dingledine, Nick Mathewson.\n\n"
- "tor -f <torrc> [args]\n"
- "See man page for options, or http://tor.eff.org/ for documentation.\n");
- }
- static void
- list_torrc_options(void)
- {
- int i;
- smartlist_t *lines = smartlist_create();
- for (i = 0; _option_vars[i].name; ++i) {
- config_var_t *var = &_option_vars[i];
- const char *desc;
- if (var->type == CONFIG_TYPE_OBSOLETE ||
- var->type == CONFIG_TYPE_LINELIST_V)
- continue;
- desc = config_find_description(&options_format, var->name);
- printf("%s\n", var->name);
- if (desc) {
- wrap_string(lines, desc, 76, " ", " ");
- SMARTLIST_FOREACH(lines, char *, cp, {
- printf("%s", cp);
- tor_free(cp);
- });
- smartlist_clear(lines);
- }
- }
- }
- static uint32_t last_resolved_addr = 0;
- int
- resolve_my_address(int warn_severity, or_options_t *options,
- uint32_t *addr_out, char **hostname_out)
- {
- struct in_addr in;
- struct hostent *rent;
- char hostname[256];
- int explicit_ip=1;
- int explicit_hostname=1;
- int from_interface=0;
- char tmpbuf[INET_NTOA_BUF_LEN];
- const char *address = options->Address;
- int notice_severity = warn_severity <= LOG_NOTICE ?
- LOG_NOTICE : warn_severity;
- tor_assert(addr_out);
- if (address && *address) {
- strlcpy(hostname, address, sizeof(hostname));
- } else {
- explicit_ip = 0;
- explicit_hostname = 0;
- if (gethostname(hostname, sizeof(hostname)) < 0) {
- log_fn(warn_severity, LD_NET,"Error obtaining local hostname");
- return -1;
- }
- log_debug(LD_CONFIG,"Guessed local host name as '%s'",hostname);
- }
-
- if (tor_inet_aton(hostname, &in) == 0) {
-
- explicit_ip = 0;
- rent = (struct hostent *)gethostbyname(hostname);
- if (!rent) {
- uint32_t interface_ip;
- if (explicit_hostname) {
- log_fn(warn_severity, LD_CONFIG,
- "Could not resolve local Address '%s'. Failing.", hostname);
- return -1;
- }
- log_fn(notice_severity, LD_CONFIG,
- "Could not resolve guessed local hostname '%s'. "
- "Trying something else.", hostname);
- if (get_interface_address(warn_severity, &interface_ip)) {
- log_fn(warn_severity, LD_CONFIG,
- "Could not get local interface IP address. Failing.");
- return -1;
- }
- from_interface = 1;
- in.s_addr = htonl(interface_ip);
- tor_inet_ntoa(&in,tmpbuf,sizeof(tmpbuf));
- log_fn(notice_severity, LD_CONFIG, "Learned IP address '%s' for "
- "local interface. Using that.", tmpbuf);
- strlcpy(hostname, "<guessed from interfaces>", sizeof(hostname));
- } else {
- tor_assert(rent->h_length == 4);
- memcpy(&in.s_addr, rent->h_addr, rent->h_length);
- if (!explicit_hostname &&
- is_internal_IP(ntohl(in.s_addr), 0)) {
- uint32_t interface_ip;
- tor_inet_ntoa(&in,tmpbuf,sizeof(tmpbuf));
- log_fn(notice_severity, LD_CONFIG, "Guessed local hostname '%s' "
- "resolves to a private IP address (%s). Trying something "
- "else.", hostname, tmpbuf);
- if (get_interface_address(warn_severity, &interface_ip)) {
- log_fn(warn_severity, LD_CONFIG,
- "Could not get local interface IP address. Too bad.");
- } else if (is_internal_IP(interface_ip, 0)) {
- struct in_addr in2;
- in2.s_addr = htonl(interface_ip);
- tor_inet_ntoa(&in2,tmpbuf,sizeof(tmpbuf));
- log_fn(notice_severity, LD_CONFIG,
- "Interface IP address '%s' is a private address too. "
- "Ignoring.", tmpbuf);
- } else {
- from_interface = 1;
- in.s_addr = htonl(interface_ip);
- tor_inet_ntoa(&in,tmpbuf,sizeof(tmpbuf));
- log_fn(notice_severity, LD_CONFIG,
- "Learned IP address '%s' for local interface."
- " Using that.", tmpbuf);
- strlcpy(hostname, "<guessed from interfaces>", sizeof(hostname));
- }
- }
- }
- }
- tor_inet_ntoa(&in,tmpbuf,sizeof(tmpbuf));
- if (is_internal_IP(ntohl(in.s_addr), 0) &&
- options->PublishServerDescriptor) {
-
- if (!options->DirServers) {
-
- log_fn(warn_severity, LD_CONFIG,
- "Address '%s' resolves to private IP address '%s'. "
- "Tor servers that use the default DirServers must have public "
- "IP addresses.", hostname, tmpbuf);
- return -1;
- }
- if (!explicit_ip) {
-
- log_fn(warn_severity, LD_CONFIG, "Address '%s' resolves to private "
- "IP address '%s'. Please set the Address config option to be "
- "the IP address you want to use.", hostname, tmpbuf);
- return -1;
- }
- }
- log_debug(LD_CONFIG, "Resolved Address to '%s'.", tmpbuf);
- *addr_out = ntohl(in.s_addr);
- if (last_resolved_addr && last_resolved_addr != *addr_out) {
-
- log_notice(LD_NET, "Your IP address seems to have changed. Updating.");
- ip_address_changed(0);
- }
- if (last_resolved_addr != *addr_out) {
- const char *method;
- const char *h = hostname;
- if (explicit_ip) {
- method = "CONFIGURED";
- h = NULL;
- } else if (explicit_hostname) {
- method = "RESOLVED";
- } else if (from_interface) {
- method = "INTERFACE";
- h = NULL;
- } else {
- method = "GETHOSTNAME";
- }
- control_event_server_status(LOG_NOTICE,
- "EXTERNAL_ADDRESS ADDRESS=%s METHOD=%s %s%s",
- tmpbuf, method, h?"HOSTNAME=":"", h);
- }
- last_resolved_addr = *addr_out;
- if (hostname_out)
- *hostname_out = tor_strdup(hostname);
- return 0;
- }
- int
- is_local_IP(uint32_t ip)
- {
- if (is_internal_IP(ip, 0))
- return 1;
-
- if (get_options()->EnforceDistinctSubnets == 0)
- return 0;
-
- if ((last_resolved_addr & 0xffffff00ul) == (ip & 0xffffff00ul))
- return 1;
- return 0;
- }
- static char *
- get_default_nickname(void)
- {
- static const char * const bad_default_nicknames[] = {
- "localhost",
- NULL,
- };
- char localhostname[256];
- char *cp, *out, *outp;
- int i;
- if (gethostname(localhostname, sizeof(localhostname)) < 0)
- return NULL;
-
- if ((cp = strchr(localhostname, '.')))
- *cp = '\0';
- tor_strlower(localhostname);
-
- cp = localhostname;
- out = outp = tor_malloc(strlen(localhostname) + 1);
- while (*cp) {
- if (strchr(LEGAL_NICKNAME_CHARACTERS, *cp))
- *outp++ = *cp++;
- else
- cp++;
- }
- *outp = '\0';
-
- if (strlen(out) > MAX_NICKNAME_LEN)
- out[MAX_NICKNAME_LEN]='\0';
-
- for (i = 0; bad_default_nicknames[i]; ++i) {
- if (!strcmp(out, bad_default_nicknames[i])) {
- tor_free(out);
- return NULL;
- }
- }
- return out;
- }
- static void
- config_free(config_format_t *fmt, void *options)
- {
- int i;
- tor_assert(options);
- for (i=0; fmt->vars[i].name; ++i)
- option_clear(fmt, options, &(fmt->vars[i]));
- if (fmt->extra) {
- config_line_t **linep = STRUCT_VAR_P(options, fmt->extra->var_offset);
- config_free_lines(*linep);
- *linep = NULL;
- }
- tor_free(options);
- }
- static int
- config_lines_eq(config_line_t *a, config_line_t *b)
- {
- while (a && b) {
- if (strcasecmp(a->key, b->key) || strcmp(a->value, b->value))
- return 0;
- a = a->next;
- b = b->next;
- }
- if (a || b)
- return 0;
- return 1;
- }
- static int
- option_is_same(config_format_t *fmt,
- or_options_t *o1, or_options_t *o2, const char *name)
- {
- config_line_t *c1, *c2;
- int r = 1;
- CHECK(fmt, o1);
- CHECK(fmt, o2);
- c1 = get_assigned_option(fmt, o1, name);
- c2 = get_assigned_option(fmt, o2, name);
- r = config_lines_eq(c1, c2);
- config_free_lines(c1);
- config_free_lines(c2);
- return r;
- }
- static or_options_t *
- options_dup(config_format_t *fmt, or_options_t *old)
- {
- or_options_t *newopts;
- int i;
- config_line_t *line;
- newopts = config_alloc(fmt);
- for (i=0; fmt->vars[i].name; ++i) {
- if (fmt->vars[i].type == CONFIG_TYPE_LINELIST_S)
- continue;
- if (fmt->vars[i].type == CONFIG_TYPE_OBSOLETE)
- continue;
- line = get_assigned_option(fmt, old, fmt->vars[i].name);
- if (line) {
- char *msg = NULL;
- if (config_assign(fmt, newopts, line, 0, 0, &msg) < 0) {
- log_err(LD_BUG, "Bug: config_get_assigned_option() generated "
- "something we couldn't config_assign(): %s", msg);
- tor_free(msg);
- tor_assert(0);
- }
- }
- config_free_lines(line);
- }
- return newopts;
- }
- or_options_t *
- options_new(void)
- {
- return config_alloc(&options_format);
- }
- void
- options_init(or_options_t *options)
- {
- config_init(&options_format, options);
- }
- static void
- config_init(config_format_t *fmt, void *options)
- {
- int i;
- config_var_t *var;
- CHECK(fmt, options);
- for (i=0; fmt->vars[i].name; ++i) {
- var = &fmt->vars[i];
- if (!var->initvalue)
- continue;
- option_reset(fmt, options, var, 1);
- }
- }
- static char *
- config_dump(config_format_t *fmt, void *options, int minimal,
- int comment_defaults)
- {
- smartlist_t *elements;
- or_options_t *defaults;
- config_line_t *line, *assigned;
- char *result;
- int i;
- const char *desc;
- char *msg = NULL;
- defaults = config_alloc(fmt);
- config_init(fmt, defaults);
-
- if (fmt->validate_fn(NULL,defaults, 1, &msg) < 0) {
- log_err(LD_BUG, "Failed to validate default config.");
- tor_free(msg);
- tor_assert(0);
- }
- elements = smartlist_create();
- for (i=0; fmt->vars[i].name; ++i) {
- int comment_option = 0;
- if (fmt->vars[i].type == CONFIG_TYPE_OBSOLETE ||
- fmt->vars[i].type == CONFIG_TYPE_LINELIST_S)
- continue;
-
- if (!strcmpstart(fmt->vars[i].name, "__"))
- continue;
- if (minimal && option_is_same(fmt, options, defaults, fmt->vars[i].name))
- continue;
- else if (comment_defaults &&
- option_is_same(fmt, options, defaults, fmt->vars[i].name))
- comment_option = 1;
- desc = config_find_description(fmt, fmt->vars[i].name);
- line = assigned = get_assigned_option(fmt, options, fmt->vars[i].name);
- if (line && desc) {
-
- wrap_string(elements, desc, 78, "# ", "# ");
- }
- for (; line; line = line->next) {
- size_t len = strlen(line->key) + strlen(line->value) + 5;
- char *tmp;
- tmp = tor_malloc(len);
- if (tor_snprintf(tmp, len, "%s%s %s\n",
- comment_option ? "# " : "",
- line->key, line->value)<0) {
- log_err(LD_BUG,"Internal error writing option value");
- tor_assert(0);
- }
- smartlist_add(elements, tmp);
- }
- config_free_lines(assigned);
- }
- if (fmt->extra) {
- line = *(config_line_t**)STRUCT_VAR_P(options, fmt->extra->var_offset);
- for (; line; line = line->next) {
- size_t len = strlen(line->key) + strlen(line->value) + 3;
- char *tmp;
- tmp = tor_malloc(len);
- if (tor_snprintf(tmp, len, "%s %s\n", line->key, line->value)<0) {
- log_err(LD_BUG,"Internal error writing option value");
- tor_assert(0);
- }
- smartlist_add(elements, tmp);
- }
- }
- result = smartlist_join_strings(elements, "", 0, NULL);
- SMARTLIST_FOREACH(elements, char *, cp, tor_free(cp));
- smartlist_free(elements);
- config_free(fmt, defaults);
- return result;
- }
- char *
- options_dump(or_options_t *options, int minimal)
- {
- return config_dump(&options_format, options, minimal, 0);
- }
- static int
- validate_ports_csv(smartlist_t *sl, const char *name, char **msg)
- {
- int i;
- char buf[1024];
- tor_assert(name);
- if (!sl)
- return 0;
- SMARTLIST_FOREACH(sl, const char *, cp,
- {
- i = atoi(cp);
- if (i < 1 || i > 65535) {
- int r = tor_snprintf(buf, sizeof(buf),
- "Port '%s' out of range in %s", cp, name);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- });
- return 0;
- }
- #define MIN_REND_POST_PERIOD (5*60)
- #define MAX_DIR_PERIOD (MIN_ONION_KEY_LIFETIME/2)
- static int
- options_validate(or_options_t *old_options, or_options_t *options,
- int from_setconf, char **msg)
- {
- int i, r;
- config_line_t *cl;
- const char *uname = get_uname();
- char buf[1024];
- #define REJECT(arg) \
- do { *msg = tor_strdup(arg); return -1; } while (0)
- #define COMPLAIN(arg) do { log(LOG_WARN, LD_CONFIG, arg); } while (0)
- tor_assert(msg);
- *msg = NULL;
- if (options->ORPort < 0 || options->ORPort > 65535)
- REJECT("ORPort option out of bounds.");
- if (server_mode(options) &&
- (!strcmpstart(uname, "Windows 95") ||
- !strcmpstart(uname, "Windows 98") ||
- !strcmpstart(uname, "Windows Me"))) {
- log(LOG_WARN, LD_CONFIG, "Tor is running as a server, but you are "
- "running %s; this probably won't work. See "
- "http://wiki.noreply.org/noreply/TheOnionRouter/TorFAQ#ServerOS "
- "for details.", uname);
- }
- if (options->ORPort == 0 && options->ORListenAddress != NULL)
- REJECT("ORPort must be defined if ORListenAddress is defined.");
- if (options->DirPort == 0 && options->DirListenAddress != NULL)
- REJECT("DirPort must be defined if DirListenAddress is defined.");
- if (options->ControlPort == 0 && options->ControlListenAddress != NULL)
- REJECT("ControlPort must be defined if ControlListenAddress is defined.");
- if (options->TransPort == 0 && options->TransListenAddress != NULL)
- REJECT("TransPort must be defined if TransListenAddress is defined.");
- if (options->NatdPort == 0 && options->NatdListenAddress != NULL)
- REJECT("NatdPort must be defined if NatdListenAddress is defined.");
-
- for (i = 0; i < 3; ++i) {
- int is_socks = i==0;
- int is_trans = i==1;
- config_line_t *line, *opt, *old;
- const char *tp;
- if (is_socks) {
- opt = options->SocksListenAddress;
- old = old_options ? old_options->SocksListenAddress : NULL;
- tp = "SOCKS proxy";
- } else if (is_trans) {
- opt = options->TransListenAddress;
- old = old_options ? old_options->TransListenAddress : NULL;
- tp = "transparent proxy";
- } else {
- opt = options->NatdListenAddress;
- old = old_options ? old_options->NatdListenAddress : NULL;
- tp = "natd proxy";
- }
- for (line = opt; line; line = line->next) {
- char *address = NULL;
- uint16_t port;
- uint32_t addr;
- if (parse_addr_port(LOG_WARN, line->value, &address, &addr, &port)<0)
- continue;
- if (!is_internal_IP(addr, 1) &&
- (!old_options || !config_lines_eq(old, opt))) {
- log_warn(LD_CONFIG,
- "You specified a public address '%s' for a %s. Other "
- "people on the Internet might find your computer and use it as "
- "an open %s. Please don't allow this unless you have "
- "a good reason.", address, tp, tp);
- }
- tor_free(address);
- }
- }
- if (validate_data_directory(options)<0)
- REJECT("Invalid DataDirectory");
- if (options->Nickname == NULL) {
- if (server_mode(options)) {
- if (!(options->Nickname = get_default_nickname())) {
- log_notice(LD_CONFIG, "Couldn't pick a nickname based on "
- "our hostname; using %s instead.", UNNAMED_ROUTER_NICKNAME);
- options->Nickname = tor_strdup(UNNAMED_ROUTER_NICKNAME);
- } else {
- log_notice(LD_CONFIG, "Choosing default nickname '%s'",
- options->Nickname);
- }
- }
- } else {
- if (!is_legal_nickname(options->Nickname)) {
- r = tor_snprintf(buf, sizeof(buf),
- "Nickname '%s' is wrong length or contains illegal characters.",
- options->Nickname);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- }
- if (server_mode(options) && !options->ContactInfo)
- log(LOG_NOTICE, LD_CONFIG, "Your ContactInfo config option is not set. "
- "Please consider setting it, so we can contact you if your server is "
- "misconfigured or something else goes wrong.");
-
- if (!options->Logs && !options->RunAsDaemon && !from_setconf)
- config_line_append(&options->Logs, "Log", "notice stdout");
- if (options_init_logs(options, 1)<0)
- REJECT("Failed to validate Log options. See logs for details.");
- if (options->NoPublish) {
- log(LOG_WARN, LD_CONFIG,
- "NoPublish is obsolete. Use PublishServerDescriptor instead.");
- options->PublishServerDescriptor = 0;
- }
- if (authdir_mode(options)) {
-
- uint32_t tmp;
- if (resolve_my_address(LOG_WARN, options, &tmp, NULL) < 0)
- REJECT("Failed to resolve/guess local address. See logs for details.");
- }
- #ifndef MS_WINDOWS
- if (options->RunAsDaemon && torrc_fname && path_is_relative(torrc_fname))
- REJECT("Can't use a relative path to torrc when RunAsDaemon is set.");
- #endif
- if (options->SocksPort < 0 || options->SocksPort > 65535)
- REJECT("SocksPort option out of bounds.");
- if (options->TransPort < 0 || options->TransPort > 65535)
- REJECT("TransPort option out of bounds.");
- if (options->NatdPort < 0 || options->NatdPort > 65535)
- REJECT("NatdPort option out of bounds.");
- if (options->SocksPort == 0 && options->TransPort == 0 &&
- options->NatdPort == 0 && options->ORPort == 0)
- REJECT("SocksPort, TransPort, NatdPort, and ORPort are all undefined? "
- "Quitting.");
- if (options->ControlPort < 0 || options->ControlPort > 65535)
- REJECT("ControlPort option out of bounds.");
- if (options->DirPort < 0 || options->DirPort > 65535)
- REJECT("DirPort option out of bounds.");
- #ifndef USE_TRANSPARENT
- if (options->TransPort || options->TransListenAddress)
- REJECT("TransPort and TransListenAddress are disabled in this build.");
- #endif
- if (options->StrictExitNodes &&
- (!options->ExitNodes || !strlen(options->ExitNodes)) &&
- (!old_options ||
- (old_options->StrictExitNodes != options->StrictExitNodes) ||
- (!opt_streq(old_options->ExitNodes, options->ExitNodes))))
- COMPLAIN("StrictExitNodes set, but no ExitNodes listed.");
- if (options->StrictEntryNodes &&
- (!options->EntryNodes || !strlen(options->EntryNodes)) &&
- (!old_options ||
- (old_options->StrictEntryNodes != options->StrictEntryNodes) ||
- (!opt_streq(old_options->EntryNodes, options->EntryNodes))))
- COMPLAIN("StrictEntryNodes set, but no EntryNodes listed.");
- if (options->AuthoritativeDir) {
- if (!options->ContactInfo)
- REJECT("Authoritative directory servers must set ContactInfo");
- if (options->V1AuthoritativeDir && !options->RecommendedVersions)
- REJECT("V1 auth dir servers must set RecommendedVersions.");
- if (!options->RecommendedClientVersions)
- options->RecommendedClientVersions =
- config_lines_dup(options->RecommendedVersions);
- if (!options->RecommendedServerVersions)
- options->RecommendedServerVersions =
- config_lines_dup(options->RecommendedVersions);
- if (options->VersioningAuthoritativeDir &&
- (!options->RecommendedClientVersions ||
- !options->RecommendedServerVersions))
- REJECT("Versioning auth dir servers must set Recommended*Versions.");
- if (options->UseEntryGuards) {
- log_info(LD_CONFIG, "Authoritative directory servers can't set "
- "UseEntryGuards. Disabling.");
- options->UseEntryGuards = 0;
- }
- }
- if (options->AuthoritativeDir && !options->DirPort)
- REJECT("Running as authoritative directory, but no DirPort set.");
- if (options->AuthoritativeDir && !options->ORPort)
- REJECT("Running as authoritative directory, but no ORPort set.");
- if (options->AuthoritativeDir && options->ClientOnly)
- REJECT("Running as authoritative directory, but ClientOnly also set.");
- if (options->ConnLimit <= 0) {
- r = tor_snprintf(buf, sizeof(buf),
- "ConnLimit must be greater than 0, but was set to %d",
- options->ConnLimit);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- if (validate_ports_csv(options->FirewallPorts, "FirewallPorts", msg) < 0)
- return -1;
- if (validate_ports_csv(options->LongLivedPorts, "LongLivedPorts", msg) < 0)
- return -1;
- if (options->FascistFirewall && !options->ReachableAddresses) {
- if (options->FirewallPorts && smartlist_len(options->FirewallPorts)) {
-
- smartlist_t *instead = smartlist_create();
- config_line_t *new_line = tor_malloc_zero(sizeof(config_line_t));
- new_line->key = tor_strdup("ReachableAddresses");
-
- SMARTLIST_FOREACH(options->FirewallPorts, const char *, portno,
- {
- int p = atoi(portno);
- char *s;
- if (p<0) continue;
- s = tor_malloc(16);
- tor_snprintf(s, 16, "*:%d", p);
- smartlist_add(instead, s);
- });
- new_line->value = smartlist_join_strings(instead,",",0,NULL);
-
- log(LOG_NOTICE, LD_CONFIG,
- "Converting FascistFirewall and FirewallPorts "
- "config options to new format: \"ReachableAddresses %s\"",
- new_line->value);
- options->ReachableAddresses = new_line;
- SMARTLIST_FOREACH(instead, char *, cp, tor_free(cp));
- smartlist_free(instead);
- } else {
-
- if (!options->ReachableDirAddresses) {
- config_line_t *new_line = tor_malloc_zero(sizeof(config_line_t));
- new_line->key = tor_strdup("ReachableDirAddresses");
- new_line->value = tor_strdup("*:80");
- options->ReachableDirAddresses = new_line;
- log(LOG_NOTICE, LD_CONFIG, "Converting FascistFirewall config option "
- "to new format: \"ReachableDirAddresses *:80\"");
- }
- if (!options->ReachableORAddresses) {
- config_line_t *new_line = tor_malloc_zero(sizeof(config_line_t));
- new_line->key = tor_strdup("ReachableORAddresses");
- new_line->value = tor_strdup("*:443");
- options->ReachableORAddresses = new_line;
- log(LOG_NOTICE, LD_CONFIG, "Converting FascistFirewall config option "
- "to new format: \"ReachableORAddresses *:443\"");
- }
- }
- }
- for (i=0; i<3; i++) {
- config_line_t **linep =
- (i==0) ? &options->ReachableAddresses :
- (i==1) ? &options->ReachableORAddresses :
- &options->ReachableDirAddresses;
- if (!*linep)
- continue;
-
- for (;;) {
- if (!strcmp((*linep)->value, "reject *:*"))
- break;
- linep = &((*linep)->next);
- if (!*linep) {
- *linep = tor_malloc_zero(sizeof(config_line_t));
- (*linep)->key = tor_strdup(
- (i==0) ? "ReachableAddresses" :
- (i==1) ? "ReachableORAddresses" :
- "ReachableDirAddresses");
- (*linep)->value = tor_strdup("reject *:*");
- break;
- }
- }
- }
- if ((options->ReachableAddresses ||
- options->ReachableORAddresses ||
- options->ReachableDirAddresses) &&
- server_mode(options))
- REJECT("Servers must be able to freely connect to the rest "
- "of the Internet, so they must not set Reachable*Addresses "
- "or FascistFirewall.");
- options->_AllowInvalid = 0;
- if (options->AllowInvalidNodes) {
- SMARTLIST_FOREACH(options->AllowInvalidNodes, const char *, cp, {
- if (!strcasecmp(cp, "entry"))
- options->_AllowInvalid |= ALLOW_INVALID_ENTRY;
- else if (!strcasecmp(cp, "exit"))
- options->_AllowInvalid |= ALLOW_INVALID_EXIT;
- else if (!strcasecmp(cp, "middle"))
- options->_AllowInvalid |= ALLOW_INVALID_MIDDLE;
- else if (!strcasecmp(cp, "introduction"))
- options->_AllowInvalid |= ALLOW_INVALID_INTRODUCTION;
- else if (!strcasecmp(cp, "rendezvous"))
- options->_AllowInvalid |= ALLOW_INVALID_RENDEZVOUS;
- else {
- r = tor_snprintf(buf, sizeof(buf),
- "Unrecognized value '%s' in AllowInvalidNodes", cp);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- });
- }
- if (options->SocksPort >= 1 &&
- (options->PathlenCoinWeight < 0.0 || options->PathlenCoinWeight >= 1.0))
- REJECT("PathlenCoinWeight option must be >=0.0 and <1.0.");
- if (options->RendPostPeriod < MIN_REND_POST_PERIOD) {
- log(LOG_WARN,LD_CONFIG,"RendPostPeriod option must be at least %d seconds."
- " Clipping.", MIN_REND_POST_PERIOD);
- options->RendPostPeriod = MIN_REND_POST_PERIOD;
- }
- if (options->RendPostPeriod > MAX_DIR_PERIOD) {
- log(LOG_WARN, LD_CONFIG, "RendPostPeriod is too large; clipping to %ds.",
- MAX_DIR_PERIOD);
- options->RendPostPeriod = MAX_DIR_PERIOD;
- }
- if (options->KeepalivePeriod < 1)
- REJECT("KeepalivePeriod option must be positive.");
- if (options->BandwidthRate > INT_MAX) {
- r = tor_snprintf(buf, sizeof(buf),
- "BandwidthRate must be less than %d",INT_MAX);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- if (options->BandwidthBurst > INT_MAX) {
- r = tor_snprintf(buf, sizeof(buf),
- "BandwidthBurst must be less than %d",INT_MAX);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- if (server_mode(options) &&
- options->BandwidthRate < ROUTER_REQUIRED_MIN_BANDWIDTH*2) {
- r = tor_snprintf(buf, sizeof(buf),
- "BandwidthRate is set to %d bytes/second. "
- "For servers, it must be at least %d.",
- (int)options->BandwidthRate,
- ROUTER_REQUIRED_MIN_BANDWIDTH*2);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- if (options->BandwidthRate > options->BandwidthBurst)
- REJECT("BandwidthBurst must be at least equal to BandwidthRate.");
- if (accounting_parse_options(options, 1)<0)
- REJECT("Failed to parse accounting options. See logs for details.");
- if (options->HttpProxy) {
- if (parse_addr_port(LOG_WARN, options->HttpProxy, NULL,
- &options->HttpProxyAddr, &options->HttpProxyPort) < 0)
- REJECT("HttpProxy failed to parse or resolve. Please fix.");
- if (options->HttpProxyPort == 0) {
- options->HttpProxyPort = 80;
- }
- }
- if (options->HttpProxyAuthenticator) {
- if (strlen(options->HttpProxyAuthenticator) >= 48)
- REJECT("HttpProxyAuthenticator is too long (>= 48 chars).");
- }
- if (options->HttpsProxy) {
- if (parse_addr_port(LOG_WARN, options->HttpsProxy, NULL,
- &options->HttpsProxyAddr, &options->HttpsProxyPort) <0)
- REJECT("HttpsProxy failed to parse or resolve. Please fix.");
- if (options->HttpsProxyPort == 0) {
- options->HttpsProxyPort = 443;
- }
- }
- if (options->HttpsProxyAuthenticator) {
- if (strlen(options->HttpsProxyAuthenticator) >= 48)
- REJECT("HttpsProxyAuthenticator is too long (>= 48 chars).");
- }
- if (options->HashedControlPassword) {
- if (decode_hashed_password(NULL, options->HashedControlPassword)<0)
- REJECT("Bad HashedControlPassword: wrong length or bad encoding");
- }
- if (options->HashedControlPassword && options->CookieAuthentication)
- REJECT("Cannot set both HashedControlPassword and CookieAuthentication");
- if (options->UseEntryGuards && ! options->NumEntryGuards)
- REJECT("Cannot enable UseEntryGuards with NumEntryGuards set to 0");
- #ifndef USE_EVENTDNS
- if (options->ServerDNSResolvConfFile)
- log(LOG_WARN, LD_CONFIG,
- "ServerDNSResolvConfFile only works when eventdns support is enabled.");
- #endif
- if (check_nickname_list(options->ExitNodes, "ExitNodes", msg))
- return -1;
- if (check_nickname_list(options->EntryNodes, "EntryNodes", msg))
- return -1;
- if (check_nickname_list(options->ExcludeNodes, "ExcludeNodes", msg))
- return -1;
- if (check_nickname_list(options->RendNodes, "RendNodes", msg))
- return -1;
- if (check_nickname_list(options->RendNodes, "RendExcludeNodes", msg))
- return -1;
- if (check_nickname_list(options->TestVia, "TestVia", msg))
- return -1;
- if (check_nickname_list(options->MyFamily, "MyFamily", msg))
- return -1;
- for (cl = options->NodeFamilies; cl; cl = cl->next) {
- if (check_nickname_list(cl->value, "NodeFamily", msg))
- return -1;
- }
- if (validate_addr_policies(options, msg) < 0)
- return -1;
- for (cl = options->RedirectExit; cl; cl = cl->next) {
- if (parse_redirect_line(NULL, cl, msg)<0)
- return -1;
- }
- if (options->DirServers) {
- if (!old_options ||
- !config_lines_eq(options->DirServers, old_options->DirServers))
- COMPLAIN("You have used DirServer to specify directory authorities in "
- "your configuration. This is potentially dangerous: it can "
- "make you look different from all other Tor users, and hurt "
- "your anonymity. Even if you've specified the same "
- "authorities as Tor uses by default, the defaults could "
- "change in the future. Be sure you know what you're doing.");
- for (cl = options->DirServers; cl; cl = cl->next) {
- if (parse_dir_server_line(cl->value, 1)<0)
- REJECT("DirServer line did not parse. See logs for details.");
- }
- }
- if (rend_config_services(options, 1) < 0)
- REJECT("Failed to configure rendezvous options. See logs for details.");
- if (parse_virtual_addr_network(options->VirtualAddrNetwork, 1, NULL)<0)
- return -1;
- if (options->PreferTunneledDirConns && !options->TunnelDirConns)
- REJECT("Must set TunnelDirConns if PreferTunneledDirConns is set.");
- return 0;
- #undef REJECT
- #undef COMPLAIN
- }
- static int
- opt_streq(const char *s1, const char *s2)
- {
- if (!s1 && !s2)
- return 1;
- else if (s1 && s2 && !strcmp(s1,s2))
- return 1;
- else
- return 0;
- }
- static int
- options_transition_allowed(or_options_t *old, or_options_t *new_val,
- char **msg)
- {
- if (!old)
- return 0;
- if (!opt_streq(old->PidFile, new_val->PidFile)) {
- *msg = tor_strdup("PidFile is not allowed to change.");
- return -1;
- }
- if (old->RunAsDaemon != new_val->RunAsDaemon) {
- *msg = tor_strdup("While Tor is running, changing RunAsDaemon "
- "is not allowed.");
- return -1;
- }
- if (strcmp(old->DataDirectory,new_val->DataDirectory)!=0) {
- char buf[1024];
- int r = tor_snprintf(buf, sizeof(buf),
- "While Tor is running, changing DataDirectory "
- "(\"%s\"->\"%s\") is not allowed.",
- old->DataDirectory, new_val->DataDirectory);
- *msg = tor_strdup(r >= 0 ? buf : "internal error");
- return -1;
- }
- if (!opt_streq(old->User, new_val->User)) {
- *msg = tor_strdup("While Tor is running, changing User is not allowed.");
- return -1;
- }
- if (!opt_streq(old->Group, new_val->Group)) {
- *msg = tor_strdup("While Tor is running, changing Group is not allowed.");
- return -1;
- }
- if (old->HardwareAccel != new_val->HardwareAccel) {
- *msg = tor_strdup("While Tor is running, changing HardwareAccel is "
- "not allowed.");
- return -1;
- }
- return 0;
- }
- static int
- options_transition_affects_workers(or_options_t *old_options,
- or_options_t *new_options)
- {
- if (!opt_streq(old_options->DataDirectory, new_options->DataDirectory) ||
- old_options->NumCpus != new_options->NumCpus ||
- old_options->ORPort != new_options->ORPort ||
- old_options->ServerDNSSearchDomains !=
- new_options->ServerDNSSearchDomains ||
- old_options->SafeLogging != new_options->SafeLogging ||
- !config_lines_eq(old_options->Logs, new_options->Logs))
- return 1;
-
-
- return 0;
- }
- static int
- options_transition_affects_descriptor(or_options_t *old_options,
- or_options_t *new_options)
- {
- if (!opt_streq(old_options->DataDirectory, new_options->DataDirectory) ||
- !opt_streq(old_options->Nickname,new_options->Nickname) ||
- !opt_streq(old_options->Address,new_options->Address) ||
- !config_lines_eq(old_options->ExitPolicy,new_options->ExitPolicy) ||
- old_options->ORPort != new_options->ORPort ||
- old_options->DirPort != new_options->DirPort ||
- old_options->ClientOnly != new_options->ClientOnly ||
- old_options->NoPublish != new_options->NoPublish ||
- old_options->PublishServerDescriptor !=
- new_options->PublishServerDescriptor ||
- old_options->BandwidthRate != new_options->BandwidthRate ||
- old_options->BandwidthBurst != new_options->BandwidthBurst ||
- !opt_streq(old_options->ContactInfo, new_options->ContactInfo) ||
- !opt_streq(old_options->MyFamily, new_options->MyFamily) ||
- !opt_streq(old_options->AccountingStart, new_options->AccountingStart) ||
- old_options->AccountingMax != new_options->AccountingMax)
- return 1;
- return 0;
- }
- #ifdef MS_WINDOWS
- static char *
- get_windows_conf_root(void)
- {
- static int is_set = 0;
- static char path[MAX_PATH+1];
- LPITEMIDLIST idl;
- IMalloc *m;
- HRESULT result;
- if (is_set)
- return path;
-
- if (!SUCCEEDED(SHGetSpecialFolderLocation(NULL, CSIDL_APPDATA,
- &idl))) {
- GetCurrentDirectory(MAX_PATH, path);
- is_set = 1;
- log_warn(LD_CONFIG,
- "I couldn't find your application data folder: are you "
- "running an ancient version of Windows 95? Defaulting to \"%s\"",
- path);
- return path;
- }
-
- result = SHGetPathFromIDList(idl, path);
-
- SHGetMalloc(&m);
- if (m) {
- m->lpVtbl->Free(m, idl);
- m->lpVtbl->Release(m);
- }
- if (!SUCCEEDED(result)) {
- return NULL;
- }
- strlcat(path,"\\tor",MAX_PATH);
- is_set = 1;
- return path;
- }
- #endif
- static const char *
- get_default_conf_file(void)
- {
- #ifdef MS_WINDOWS
- static char path[MAX_PATH+1];
- strlcpy(path, get_windows_conf_root(), MAX_PATH);
- strlcat(path,"\\torrc",MAX_PATH);
- return path;
- #else
- return (CONFDIR "/torrc");
- #endif
- }
- static int
- check_nickname_list(const char *lst, const char *name, char **msg)
- {
- int r = 0;
- smartlist_t *sl;
- if (!lst)
- return 0;
- sl = smartlist_create();
- smartlist_split_string(sl, lst, ",", SPLIT_SKIP_SPACE|SPLIT_IGNORE_BLANK, 0);
- SMARTLIST_FOREACH(sl, const char *, s,
- {
- if (!is_legal_nickname_or_hexdigest(s)) {
- char buf[1024];
- int tmp = tor_snprintf(buf, sizeof(buf),
- "Invalid nickname '%s' in %s line", s, name);
- *msg = tor_strdup(tmp >= 0 ? buf : "internal error");
- r = -1;
- break;
- }
- });
- SMARTLIST_FOREACH(sl, char *, s, tor_free(s));
- smartlist_free(sl);
- return r;
- }
- int
- options_init_from_torrc(int argc, char **argv)
- {
- or_options_t *oldoptions, *newoptions;
- config_line_t *cl;
- char *cf=NULL, *fname=NULL, *errmsg=NULL;
- int i, retval;
- int using_default_torrc;
- static char **backup_argv;
- static int backup_argc;
- if (argv) {
- backup_argv = argv;
- backup_argc = argc;
- oldoptions = NULL;
- } else {
- argv = backup_argv;
- argc = backup_argc;
- oldoptions = get_options();
- }
- if (argc > 1 && (!strcmp(argv[1], "-h") || !strcmp(argv[1],"--help"))) {
- print_usage();
- exit(0);
- }
- if (argc > 1 && !strcmp(argv[1], "--list-torrc-options")) {
-
- list_torrc_options();
- exit(0);
- }
- if (argc > 1 && (!strcmp(argv[1],"--version"))) {
- printf("Tor version %s.\n",VERSION);
- if (argc > 2 && (!strcmp(argv[2],"--version"))) {
- print_svn_version();
- }
- exit(0);
- }
- newoptions = tor_malloc_zero(sizeof(or_options_t));
- newoptions->_magic = OR_OPTIONS_MAGIC;
- options_init(newoptions);
-
- fname = NULL;
- using_default_torrc = 1;
- newoptions->command = CMD_RUN_TOR;
- for (i = 1; i < argc; ++i) {
- if (i < argc-1 && !strcmp(argv[i],"-f")) {
- if (fname) {
- log(LOG_WARN, LD_CONFIG, "Duplicate -f options on command line.");
- tor_free(fname);
- }
- fname = tor_strdup(argv[i+1]);
- using_default_torrc = 0;
- ++i;
- } else if (!strcmp(argv[i],"--list-fingerprint")) {
- newoptions->command = CMD_LIST_FINGERPRINT;
- } else if (!strcmp(argv[i],"--hash-password")) {
- newoptions->command = CMD_HASH_PASSWORD;
- newoptions->command_arg = tor_strdup( (i < argc-1) ? argv[i+1] : "");
- ++i;
- } else if (!strcmp(argv[i],"--verify-config")) {
- newoptions->command = CMD_VERIFY_CONFIG;
- }
- }
- if (using_default_torrc) {
-
- const char *dflt = get_default_conf_file();
- if (dflt && file_status(dflt) == FN_FILE) {
- fname = tor_strdup(dflt);
- } else {
- #ifndef MS_WINDOWS
- char *fn;
- fn = expand_filename("~/.torrc");
- if (fn && file_status(fn) == FN_FILE) {
- fname = fn;
- } else {
- tor_free(fn);
- fname = tor_strdup(dflt);
- }
- #else
- fname = tor_strdup(dflt);
- #endif
- }
- }
- tor_assert(fname);
- log(LOG_DEBUG, LD_CONFIG, "Opening config file \"%s\"", fname);
- tor_free(torrc_fname);
- torrc_fname = fname;
-
- if (file_status(fname) != FN_FILE ||
- !(cf = read_file_to_str(fname,0,NULL))) {
- if (using_default_torrc == 1) {
- log(LOG_NOTICE, LD_CONFIG, "Configuration file \"%s\" not present, "
- "using reasonable defaults.", fname);
- tor_free(fname);
- torrc_fname = NULL;
- } else {
- log(LOG_WARN, LD_CONFIG,
- "Unable to open configuration file \"%s\".", fname);
- goto err;
- }
- } else {
- retval = config_get_lines(cf, &cl);
- tor_free(cf);
- if (retval < 0)
- goto err;
- retval = config_assign(&options_format, newoptions, cl, 0, 0, &errmsg);
- config_free_lines(cl);
- if (retval < 0)
- goto err;
- }
-
- if (config_get_commandlines(argc, argv, &cl) < 0)
- goto err;
- retval = config_assign(&options_format, newoptions, cl, 0, 0, &errmsg);
- config_free_lines(cl);
- if (retval < 0)
- goto err;
-
- if (options_validate(oldoptions, newoptions, 0, &errmsg) < 0)
- goto err;
- if (options_transition_allowed(oldoptions, newoptions, &errmsg) < 0)
- goto err;
- if (set_options(newoptions, &errmsg))
- goto err;
- return 0;
- err:
- tor_free(fname);
- torrc_fname = NULL;
- config_free(&options_format, newoptions);
- if (errmsg) {
- log(LOG_WARN,LD_CONFIG,"Failed to parse/validate config: %s", errmsg);
- tor_free(errmsg);
- }
- return -1;
- }
- const char *
- get_torrc_fname(void)
- {
- if (torrc_fname)
- return torrc_fname;
- else
- return get_default_conf_file();
- }
- static void
- config_register_addressmaps(or_options_t *options)
- {
- smartlist_t *elts;
- config_line_t *opt;
- char *from, *to;
- addressmap_clear_configured();
- elts = smartlist_create();
- for (opt = options->AddressMap; opt; opt = opt->next) {
- smartlist_split_string(elts, opt->value, NULL,
- SPLIT_SKIP_SPACE|SPLIT_IGNORE_BLANK, 2);
- if (smartlist_len(elts) >= 2) {
- from = smartlist_get(elts,0);
- to = smartlist_get(elts,1);
- if (address_is_invalid_destination(to, 1)) {
- log_warn(LD_CONFIG,
- "Skipping invalid argument '%s' to MapAddress", to);
- } else {
- addressmap_register(from, tor_strdup(to), 0);
- if (smartlist_len(elts)>2) {
- log_warn(LD_CONFIG,"Ignoring extra arguments to MapAddress.");
- }
- }
- } else {
- log_warn(LD_CONFIG,"MapAddress '%s' has too few arguments. Ignoring.",
- opt->value);
- }
- SMARTLIST_FOREACH(elts, char*, cp, tor_free(cp));
- smartlist_clear(elts);
- }
- smartlist_free(elts);
- }
- static int
- parse_log_severity_range(const char *range, int *min_out, int *max_out)
- {
- int levelMin, levelMax;
- const char *cp;
- cp = strchr(range, '-');
- if (cp) {
- if (cp == range) {
- levelMin = LOG_DEBUG;
- } else {
- char *tmp_sev = tor_strndup(range, cp - range);
- levelMin = parse_log_level(tmp_sev);
- if (levelMin < 0) {
- log_warn(LD_CONFIG, "Unrecognized minimum log severity '%s': must be "
- "one of err|warn|notice|info|debug", tmp_sev);
- tor_free(tmp_sev);
- return -1;
- }
- tor_free(tmp_sev);
- }
- if (!*(cp+1)) {
- levelMax = LOG_ERR;
- } else {
- levelMax = parse_log_level(cp+1);
- if (levelMax < 0) {
- log_warn(LD_CONFIG, "Unrecognized maximum log severity '%s': must be "
- "one of err|warn|notice|info|debug", cp+1);
- return -1;
- }
- }
- } else {
- levelMin = parse_log_level(range);
- if (levelMin < 0) {
- log_warn(LD_CONFIG, "Unrecognized log severity '%s': must be one of "
- "err|warn|notice|info|debug", range);
- return -1;
- }
- levelMax = LOG_ERR;
- }
- *min_out = levelMin;
- *max_out = levelMax;
- return 0;
- }
- int
- options_init_logs(or_options_t *options, int validate_only)
- {
- config_line_t *opt;
- int ok;
- smartlist_t *elts;
- int daemon =
- #ifdef MS_WINDOWS
- 0;
- #else
- options->RunAsDaemon;
- #endif
- ok = 1;
- elts = smartlist_create();
- for (opt = options->Logs; opt; opt = opt->next) {
- int levelMin=LOG_DEBUG, levelMax=LOG_ERR;
- smartlist_split_string(elts, opt->value, NULL,
- SPLIT_SKIP_SPACE|SPLIT_IGNORE_BLANK, 3);
- if (smartlist_len(elts) == 0) {
- log_warn(LD_CONFIG, "No arguments to Log option 'Log %s'", opt->value);
- ok = 0; goto cleanup;
- }
- if (parse_log_severity_range(smartlist_get(elts,0), &levelMin,
- &levelMax)) {
- ok = 0; goto cleanup;
- }
- if (smartlist_len(elts) < 2) {
- if (!validate_only) {
- if (daemon) {
- log_warn(LD_CONFIG,
- "Can't log to stdout with RunAsDaemon set; skipping stdout");
- } else {
- add_stream_log(levelMin, levelMax, "<stdout>", stdout);
- }
- }
- goto cleanup;
- }
- if (!strcasecmp(smartlist_get(elts,1), "file")) {
- if (smartlist_len(elts) != 3) {
- log_warn(LD_CONFIG, "Bad syntax on file Log option 'Log %s'",
- opt->value);
- ok = 0; goto cleanup;
- }
- if (!validate_only) {
- if (add_file_log(levelMin, levelMax, smartlist_get(elts, 2)) < 0) {
- log_warn(LD_CONFIG, "Couldn't open file for 'Log %s'", opt->value);
- ok = 0;
- }
- }
- goto cleanup;
- }
- if (smartlist_len(elts) != 2) {
- log_warn(LD_CONFIG, "Wrong number of arguments on Log option 'Log %s'",
- opt->value);
- ok = 0; goto cleanup;
- }
- if (!strcasecmp(smartlist_get(elts,1), "stdout")) {
- if (daemon) {
- log_warn(LD_CONFIG, "Can't log to stdout with RunAsDaemon set.");
- ok = 0; goto cleanup;
- }
- if (!validate_only) {
- add_stream_log(levelMin, levelMax, "<stdout>", stdout);
- }
- } else if (!strcasecmp(smartlist_get(elts,1), "stderr")) {
- if (daemon) {
- log_warn(LD_CONFIG, "Can't log to stderr with RunAsDaemon set.");
- ok = 0; goto cleanup;
- }
- if (!validate_only) {
- add_stream_log(levelMin, levelMax, "<stderr>", stderr);
- }
- } else if (!strcasecmp(smartlist_get(elts,1), "syslog")) {
- #ifdef HAVE_SYSLOG_H
- if (!validate_only)
- add_syslog_log(levelMin, levelMax);
- #else
- log_warn(LD_CONFIG, "Syslog is not supported on this system. Sorry.");
- #endif
- } else {
- log_warn(LD_CONFIG, "Unrecognized log type %s",
- (const char*)smartlist_get(elts,1));
- if (strchr(smartlist_get(elts,1), '/') ||
- strchr(smartlist_get(elts,1), '\\')) {
- log_warn(LD_CONFIG, "Did you mean to say 'Log %s file %s' ?",
- (const char *)smartlist_get(elts,0),
- (const char *)smartlist_get(elts,1));
- }
- ok = 0; goto cleanup;
- }
- cleanup:
- SMARTLIST_FOREACH(elts, char*, cp, tor_free(cp));
- smartlist_clear(elts);
- }
- smartlist_free(elts);
- return ok?0:-1;
- }
- static int
- parse_redirect_line(smartlist_t *result, config_line_t *line, char **msg)
- {
- smartlist_t *elements = NULL;
- exit_redirect_t *r;
- tor_assert(line);
- r = tor_malloc_zero(sizeof(exit_redirect_t));
- elements = smartlist_create();
- smartlist_split_string(elements, line->value, NULL,
- SPLIT_SKIP_SPACE|SPLIT_IGNORE_BLANK, 0);
- if (smartlist_len(elements) != 2) {
- *msg = tor_strdup("Wrong number of elements in RedirectExit line");
- goto err;
- }
- if (parse_addr_and_port_range(smartlist_get(elements,0),&r->addr,&r->mask,
- &r->port_min,&r->port_max)) {
- *msg = tor_strdup("Error parsing source address in RedirectExit line");
- goto err;
- }
- if (0==strcasecmp(smartlist_get(elements,1), "pass")) {
- r->is_redirect = 0;
- } else {
- if (parse_addr_port(LOG_WARN, smartlist_get(elements,1),NULL,
- &r->addr_dest, &r->port_dest)) {
- *msg = tor_strdup("Error parsing dest address in RedirectExit line");
- goto err;
- }
- r->is_redirect = 1;
- }
- goto done;
- err:
- tor_free(r);
- done:
- SMARTLIST_FOREACH(elements, char *, cp, tor_free(cp));
- smartlist_free(elements);
- if (r) {
- if (result)
- smartlist_add(result, r);
- else
- tor_free(r);
- return 0;
- } else {
- tor_assert(*msg);
- return -1;
- }
- }
- static int
- parse_dir_server_line(const char *line, int validate_only)
- {
- smartlist_t *items = NULL;
- int r;
- char *addrport=NULL, *address=NULL, *nickname=NULL, *fingerprint=NULL;
- uint16_t dir_port = 0, or_port = 0;
- char digest[DIGEST_LEN];
- int is_v1_authority = 0, is_hidserv_authority = 0,
- is_not_hidserv_authority = 0, is_v2_authority = 1;
- items = smartlist_create();
- smartlist_split_string(items, line, NULL,
- SPLIT_SKIP_SPACE|SPLIT_IGNORE_BLANK, -1);
- if (smartlist_len(items) < 1) {
- log_warn(LD_CONFIG, "No arguments on DirServer line.");
- goto err;
- }
- if (is_legal_nickname(smartlist_get(items, 0))) {
- nickname = smartlist_get(items, 0);
- smartlist_del_keeporder(items, 0);
- }
- while (smartlist_len(items)) {
- char *flag = smartlist_get(items, 0);
- if (TOR_ISDIGIT(flag[0]))
- break;
- if (!strcasecmp(flag, "v1")) {
- is_v1_authority = is_hidserv_authority = 1;
- } else if (!strcasecmp(flag, "hs")) {
- is_hidserv_authority = 1;
- } else if (!strcasecmp(flag, "no-hs")) {
- is_not_hidserv_authority = 1;
- } else if (!strcasecmp(flag, "no-v2")) {
- is_v2_authority = 0;
- } else if (!strcasecmpstart(flag, "orport=")) {
- int ok;
- char *portstring = flag + strlen("orport=");
- or_port = (uint16_t) tor_parse_long(portstring, 10, 1, 65535, &ok, NULL);
- if (!ok)
- log_warn(LD_CONFIG, "Invalid orport '%s' on DirServer line.",
- portstring);
- } else {
- log_warn(LD_CONFIG, "Unrecognized flag '%s' on DirServer line",
- flag);
- }
- tor_free(flag);
- smartlist_del_keeporder(items, 0);
- }
- if (is_not_hidserv_authority)
- is_hidserv_authority = 0;
- if (smartlist_len(items) < 2) {
- log_warn(LD_CONFIG, "Too few arguments to DirServer line.");
- goto err;
- }
- addrport = smartlist_get(items, 0);
- smartlist_del_keeporder(items, 0);
- if (parse_addr_port(LOG_WARN, addrport, &address, NULL, &dir_port)<0) {
- log_warn(LD_CONFIG, "Error parsing DirServer address '%s'", addrport);
- goto err;
- }
- if (!dir_port) {
- log_warn(LD_CONFIG, "Missing port in DirServer address '%s'",addrport);
- goto err;
- }
- fingerprint = smartlist_join_strings(items, "", 0, NULL);
- if (strlen(fingerprint) != HEX_DIGEST_LEN) {
- log_warn(LD_CONFIG, "Key digest for DirServer is wrong length.");
- goto err;
- }
- if (base16_decode(digest, DIGEST_LEN, fingerprint, HEX_DIGEST_LEN)<0) {
- log_warn(LD_CONFIG, "Unable to decode DirServer key digest.");
- goto err;
- }
- if (!validate_only) {
- log_debug(LD_DIR, "Trusted dirserver at %s:%d (%s)", address,
- (int)dir_port,
- (char*)smartlist_get(items,1));
- add_trusted_dir_server(nickname, address, dir_port, or_port, digest,
- is_v1_authority,
- is_v2_authority, is_hidserv_authority);
- }
- r = 0;
- goto done;
- err:
- r = -1;
- done:
- SMARTLIST_FOREACH(items, char*, s, tor_free(s));
- smartlist_free(items);
- tor_free(addrport);
- tor_free(address);
- tor_free(nickname);
- tor_free(fingerprint);
- return r;
- }
- static int
- normalize_data_directory(or_options_t *options)
- {
- #ifdef MS_WINDOWS
- char *p;
- if (options->DataDirectory)
- return 0;
- p = tor_malloc(MAX_PATH);
- strlcpy(p,get_windows_conf_root(),MAX_PATH);
- options->DataDirectory = p;
- return 0;
- #else
- const char *d = options->DataDirectory;
- if (!d)
- d = "~/.tor";
- if (strncmp(d,"~/",2) == 0) {
- char *fn = expand_filename(d);
- if (!fn) {
- log_err(LD_CONFIG,"Failed to expand filename \"%s\".", d);
- return -1;
- }
- if (!options->DataDirectory && !strcmp(fn,"/.tor")) {
-
-
- log_warn(LD_CONFIG,
- "Default DataDirectory is \"~/.tor\". This expands to "
- "\"%s\", which is probably not what you want. Using \"%s/tor\" "
- "instead", fn, LOCALSTATEDIR);
- tor_free(fn);
- fn = tor_strdup(LOCALSTATEDIR"/tor");
- }
- tor_free(options->DataDirectory);
- options->DataDirectory = fn;
- }
- return 0;
- #endif
- }
- static int
- validate_data_directory(or_options_t *options)
- {
- if (normalize_data_directory(options) < 0)
- return -1;
- tor_assert(options->DataDirectory);
- if (strlen(options->DataDirectory) > (512-128)) {
- log_err(LD_CONFIG, "DataDirectory is too long.");
- return -1;
- }
- return 0;
- }
- #define GENERATED_FILE_PREFIX "# This file was generated by Tor; " \
- "if you edit it, comments will not be preserved"
- #define GENERATED_FILE_COMMENT "# The old torrc file was renamed " \
- "to torrc.orig.1 or similar, and Tor will ignore it"
- static int
- write_configuration_file(const char *fname, or_options_t *options)
- {
- char *old_val=NULL, *new_val=NULL, *new_conf=NULL;
- int rename_old = 0, r;
- size_t len;
- if (fname) {
- switch (file_status(fname)) {
- case FN_FILE:
- old_val = read_file_to_str(fname, 0, NULL);
- if (strcmpstart(old_val, GENERATED_FILE_PREFIX)) {
- rename_old = 1;
- }
- tor_free(old_val);
- break;
- case FN_NOENT:
- break;
- case FN_ERROR:
- case FN_DIR:
- default:
- log_warn(LD_CONFIG,
- "Config file \"%s\" is not a file? Failing.", fname);
- return -1;
- }
- }
- if (!(new_conf = options_dump(options, 1))) {
- log_warn(LD_BUG, "Couldn't get configuration string");
- goto err;
- }
- len = strlen(new_conf)+256;
- new_val = tor_malloc(len);
- tor_snprintf(new_val, len, "%s\n%s\n\n%s",
- GENERATED_FILE_PREFIX, GENERATED_FILE_COMMENT, new_conf);
- if (rename_old) {
- int i = 1;
- size_t fn_tmp_len = strlen(fname)+32;
- char *fn_tmp;
- tor_assert(fn_tmp_len > strlen(fname));
- fn_tmp = tor_malloc(fn_tmp_len);
- while (1) {
- if (tor_snprintf(fn_tmp, fn_tmp_len, "%s.orig.%d", fname, i)<0) {
- log_warn(LD_BUG, "tor_snprintf failed inexplicably");
- tor_free(fn_tmp);
- goto err;
- }
- if (file_status(fn_tmp) == FN_NOENT)
- break;
- ++i;
- }
- log_notice(LD_CONFIG, "Renaming old configuration file to \"%s\"", fn_tmp);
- if (rename(fname, fn_tmp) < 0) {
- log_warn(LD_FS,
- "Couldn't rename configuration file \"%s\" to \"%s\": %s",
- fname, fn_tmp, strerror(errno));
- tor_free(fn_tmp);
- goto err;
- }
- tor_free(fn_tmp);
- }
- if (write_str_to_file(fname, new_val, 0) < 0)
- goto err;
- r = 0;
- goto done;
- err:
- r = -1;
- done:
- tor_free(new_val);
- tor_free(new_conf);
- return r;
- }
- int
- options_save_current(void)
- {
- if (torrc_fname) {
-
- return write_configuration_file(torrc_fname, get_options());
- }
- return write_configuration_file(get_default_conf_file(), get_options());
- }
- struct unit_table_t {
- const char *unit;
- uint64_t multiplier;
- };
- static struct unit_table_t memory_units[] = {
- { "", 1 },
- { "b", 1<< 0 },
- { "byte", 1<< 0 },
- { "bytes", 1<< 0 },
- { "kb", 1<<10 },
- { "kilobyte", 1<<10 },
- { "kilobytes", 1<<10 },
- { "m", 1<<20 },
- { "mb", 1<<20 },
- { "megabyte", 1<<20 },
- { "megabytes", 1<<20 },
- { "gb", 1<<30 },
- { "gigabyte", 1<<30 },
- { "gigabytes", 1<<30 },
- { "tb", U64_LITERAL(1)<<40 },
- { "terabyte", U64_LITERAL(1)<<40 },
- { "terabytes", U64_LITERAL(1)<<40 },
- { NULL, 0 },
- };
- static struct unit_table_t time_units[] = {
- { "", 1 },
- { "second", 1 },
- { "seconds", 1 },
- { "minute", 60 },
- { "minutes", 60 },
- { "hour", 60*60 },
- { "hours", 60*60 },
- { "day", 24*60*60 },
- { "days", 24*60*60 },
- { "week", 7*24*60*60 },
- { "weeks", 7*24*60*60 },
- { NULL, 0 },
- };
- static uint64_t
- config_parse_units(const char *val, struct unit_table_t *u, int *ok)
- {
- uint64_t v;
- char *cp;
- tor_assert(ok);
- v = tor_parse_uint64(val, 10, 0, UINT64_MAX, ok, &cp);
- if (!*ok)
- return 0;
- if (!cp) {
- *ok = 1;
- return v;
- }
- while (TOR_ISSPACE(*cp))
- ++cp;
- for ( ;u->unit;++u) {
- if (!strcasecmp(u->unit, cp)) {
- v *= u->multiplier;
- *ok = 1;
- return v;
- }
- }
- log_warn(LD_CONFIG, "Unknown unit '%s'.", cp);
- *ok = 0;
- return 0;
- }
- static uint64_t
- config_parse_memunit(const char *s, int *ok)
- {
- return config_parse_units(s, memory_units, ok);
- }
- static int
- config_parse_interval(const char *s, int *ok)
- {
- uint64_t r;
- r = config_parse_units(s, time_units, ok);
- if (!ok)
- return -1;
- if (r > INT_MAX) {
- log_warn(LD_CONFIG, "Interval '%s' is too long", s);
- *ok = 0;
- return -1;
- }
- return (int)r;
- }
- static void
- init_libevent(void)
- {
- configure_libevent_logging();
-
- suppress_libevent_log_msg("Function not implemented");
- #ifdef __APPLE__
- if (decode_libevent_version() < LE_11B) {
- setenv("EVENT_NOKQUEUE","1",1);
- } else if (!getenv("EVENT_NOKQUEUE")) {
- const char *ver = NULL;
- #ifdef HAVE_EVENT_GET_VERSION
- ver = event_get_version();
- #endif
-
- tor_assert(ver);
- log(LOG_NOTICE, LD_GENERAL, "Enabling experimental OS X kqueue support "
- "with libevent %s. If this turns out to not work, "
- "set the environment variable EVENT_NOKQUEUE, and tell the Tor "
- "developers.", ver);
- }
- #endif
- event_init();
- suppress_libevent_log_msg(NULL);
- #if defined(HAVE_EVENT_GET_VERSION) && defined(HAVE_EVENT_GET_METHOD)
-
- log(LOG_NOTICE, LD_GENERAL,
- "Initialized libevent version %s using method %s. Good.",
- event_get_version(), event_get_method());
- check_libevent_version(event_get_method(), get_options()->ORPort != 0);
- #else
- log(LOG_NOTICE, LD_GENERAL,
- "Initialized old libevent (version 1.0b or earlier).");
- log(LOG_WARN, LD_GENERAL,
- "You have a *VERY* old version of libevent. It is likely to be buggy; "
- "please build Tor with a more recent version.");
- #endif
- }
- #if defined(HAVE_EVENT_GET_VERSION) && defined(HAVE_EVENT_GET_METHOD)
- static const struct {
- const char *name; le_version_t version;
- } le_version_table[] = {
-
- { "1.0c", LE_10C },
- { "1.0d", LE_10D },
- { "1.0e", LE_10E },
- { "1.1", LE_11 },
- { "1.1a", LE_11A },
- { "1.1b", LE_11B },
- { "1.2", LE_12 },
- { "1.2a", LE_12A },
- { NULL, LE_OTHER }
- };
- static le_version_t
- decode_libevent_version(void)
- {
- const char *v = event_get_version();
- int i;
- for (i=0; le_version_table[i].name; ++i) {
- if (!strcmp(le_version_table[i].name, v)) {
- return le_version_table[i].version;
- }
- }
- return LE_OTHER;
- }
- static void
- check_libevent_version(const char *m, int server)
- {
- int buggy = 0, iffy = 0, slow = 0;
- le_version_t version;
- const char *v = event_get_version();
- const char *badness = NULL;
- version = decode_libevent_version();
-
-
- if (!strcmp(m, "kqueue")) {
- if (version < LE_11B)
- buggy = 1;
- } else if (!strcmp(m, "epoll")) {
- if (version < LE_11)
- iffy = 1;
- } else if (!strcmp(m, "poll")) {
- if (version < LE_10E)
- buggy = 1;
- else if (version < LE_11)
- slow = 1;
- } else if (!strcmp(m, "select")) {
- if (version < LE_11)
- slow = 1;
- } else if (!strcmp(m, "win32")) {
- if (version < LE_11B)
- buggy = 1;
- }
- if (buggy) {
- log(LOG_WARN, LD_GENERAL,
- "There are known bugs in using %s with libevent %s. "
- "Please use the latest version of libevent.", m, v);
- badness = "BROKEN";
- } else if (iffy) {
- log(LOG_WARN, LD_GENERAL,
- "There are minor bugs in using %s with libevent %s. "
- "You may want to use the latest version of libevent.", m, v);
- badness = "BUGGY";
- } else if (slow && server) {
- log(LOG_WARN, LD_GENERAL,
- "libevent %s can be very slow with %s. "
- "When running a server, please use the latest version of libevent.",
- v,m);
- badness = "SLOW";
- }
- if (badness) {
- control_event_general_status(LOG_WARN,
- "BAD_LIBEVENT VERSION=%s METHOD=%s BADNESS=%s RECOVERED=NO",
- v, m, badness);
- }
- }
- #else
- static le_version_t
- decode_libevent_version(void)
- {
- return LE_OLD;
- }
- #endif
- or_state_t *
- get_or_state(void)
- {
- tor_assert(global_state);
- return global_state;
- }
- static char *
- get_or_state_fname(void)
- {
- char *fname = NULL;
- or_options_t *options = get_options();
- size_t len = strlen(options->DataDirectory) + 16;
- fname = tor_malloc(len);
- tor_snprintf(fname, len, "%s/state", options->DataDirectory);
- return fname;
- }
- static int
- or_state_validate(or_state_t *old_state, or_state_t *state,
- int from_setconf, char **msg)
- {
-
- (void) from_setconf;
- (void) old_state;
- if (entry_guards_parse_state(state, 0, msg)<0) {
- return -1;
- }
- if (state->TorVersion) {
- tor_version_t v;
- if (tor_version_parse(state->TorVersion, &v)) {
- log_warn(LD_GENERAL, "Can't parse Tor version '%s' from your state "
- "file. Proceeding anyway.", state->TorVersion);
- } else {
- if (tor_version_as_new_as(state->TorVersion, "0.1.1.10-alpha") &&
- !tor_version_as_new_as(state->TorVersion, "0.1.1.16-rc-cvs")) {
- log_notice(LD_CONFIG, "Detected state file from buggy version '%s'. "
- "Enabling workaround to choose working entry guards.",
- state->TorVersion);
- config_free_lines(state->EntryGuards);
- state->EntryGuards = NULL;
- }
- }
- }
- return 0;
- }
- static void
- or_state_set(or_state_t *new_state)
- {
- char *err = NULL;
- tor_assert(new_state);
- if (global_state)
- config_free(&state_format, global_state);
- global_state = new_state;
- if (entry_guards_parse_state(global_state, 1, &err)<0) {
- log_warn(LD_GENERAL,"%s",err);
- tor_free(err);
- }
- if (rep_hist_load_state(global_state, &err)<0) {
- log_warn(LD_GENERAL,"Unparseable bandwidth history state: %s",err);
- tor_free(err);
- }
- }
- int
- or_state_load(void)
- {
- or_state_t *new_state = NULL;
- char *contents = NULL, *fname;
- char *errmsg = NULL;
- int r = -1, badstate = 0;
- fname = get_or_state_fname();
- switch (file_status(fname)) {
- case FN_FILE:
- if (!(contents = read_file_to_str(fname, 0, NULL))) {
- log_warn(LD_FS, "Unable to read state file \"%s\"", fname);
- goto done;
- }
- break;
- case FN_NOENT:
- break;
- case FN_ERROR:
- case FN_DIR:
- default:
- log_warn(LD_GENERAL,"State file \"%s\" is not a file? Failing.", fname);
- goto done;
- }
- new_state = tor_malloc_zero(sizeof(or_state_t));
- new_state->_magic = OR_STATE_MAGIC;
- config_init(&state_format, new_state);
- if (contents) {
- config_line_t *lines=NULL;
- int assign_retval;
- if (config_get_lines(contents, &lines)<0)
- goto done;
- assign_retval = config_assign(&state_format, new_state,
- lines, 0, 0, &errmsg);
- config_free_lines(lines);
- if (assign_retval<0)
- badstate = 1;
- if (errmsg) {
- log_warn(LD_GENERAL, "%s", errmsg);
- tor_free(errmsg);
- }
- }
- if (!badstate && or_state_validate(NULL, new_state, 1, &errmsg) < 0)
- badstate = 1;
- if (errmsg) {
- log_warn(LD_GENERAL, "%s", errmsg);
- tor_free(errmsg);
- }
- if (badstate && !contents) {
- log_warn(LD_BUG, "Uh oh. We couldn't even validate our own default state."
- " This is a bug in Tor.");
- goto done;
- } else if (badstate && contents) {
- int i;
- file_status_t status;
- size_t len = strlen(fname)+16;
- char *fname2 = tor_malloc(len);
- for (i = 0; i < 100; ++i) {
- tor_snprintf(fname2, len, "%s.%d", fname, i);
- status = file_status(fname2);
- if (status == FN_NOENT)
- break;
- }
- if (i == 100) {
- log_warn(LD_BUG, "Unable to parse state in \"%s\"; too many saved bad "
- "state files to move aside. Discarding the old state file.",
- fname);
- unlink(fname);
- } else {
- log_warn(LD_BUG, "Unable to parse state in \"%s\". Moving it aside "
- "to \"%s\". This could be a bug in Tor; please tell "
- "the developers.", fname, fname2);
- rename(fname, fname2);
- }
- tor_free(fname2);
- tor_free(contents);
- config_free(&state_format, new_state);
- new_state = tor_malloc_zero(sizeof(or_state_t));
- new_state->_magic = OR_STATE_MAGIC;
- config_init(&state_format, new_state);
- } else if (contents) {
- log_info(LD_GENERAL, "Loaded state from \"%s\"", fname);
- } else {
- log_info(LD_GENERAL, "Initialized state");
- }
- or_state_set(new_state);
- new_state = NULL;
- if (!contents) {
- global_state->next_write = 0;
- or_state_save(time(NULL));
- }
- r = 0;
- done:
- tor_free(fname);
- tor_free(contents);
- if (new_state)
- config_free(&state_format, new_state);
- return r;
- }
- int
- or_state_save(time_t now)
- {
- char *state, *contents;
- char tbuf[ISO_TIME_LEN+1];
- size_t len;
- char *fname;
- tor_assert(global_state);
- if (global_state->next_write > now)
- return 0;
-
- entry_guards_update_state(global_state);
- rep_hist_update_state(global_state);
- if (accounting_is_enabled(get_options()))
- accounting_run_housekeeping(now);
- global_state->LastWritten = time(NULL);
- tor_free(global_state->TorVersion);
- global_state->TorVersion = tor_strdup("Tor " VERSION);
- state = config_dump(&state_format, global_state, 1, 0);
- len = strlen(state)+256;
- contents = tor_malloc(len);
- format_local_iso_time(tbuf, time(NULL));
- tor_snprintf(contents, len,
- "# Tor state file last generated on %s local time\n"
- "# Other times below are in GMT\n"
- "# You *do not* need to edit this file.\n\n%s",
- tbuf, state);
- tor_free(state);
- fname = get_or_state_fname();
- if (write_str_to_file(fname, contents, 0)<0) {
- log_warn(LD_FS, "Unable to write state to file \"%s\"", fname);
- tor_free(fname);
- tor_free(contents);
- return -1;
- }
- log_info(LD_GENERAL, "Saved state to \"%s\"", fname);
- tor_free(fname);
- tor_free(contents);
- global_state->next_write = TIME_MAX;
- return 0;
- }
- int
- getinfo_helper_config(control_connection_t *conn,
- const char *question, char **answer)
- {
- (void) conn;
- if (!strcmp(question, "config/names")) {
- smartlist_t *sl = smartlist_create();
- int i;
- for (i = 0; _option_vars[i].name; ++i) {
- config_var_t *var = &_option_vars[i];
- const char *type, *desc;
- char *line;
- size_t len;
- desc = config_find_description(&options_format, var->name);
- switch (var->type) {
- case CONFIG_TYPE_STRING: type = "String"; break;
- case CONFIG_TYPE_UINT: type = "Integer"; break;
- case CONFIG_TYPE_INTERVAL: type = "TimeInterval"; break;
- case CONFIG_TYPE_MEMUNIT: type = "DataSize"; break;
- case CONFIG_TYPE_DOUBLE: type = "Float"; break;
- case CONFIG_TYPE_BOOL: type = "Boolean"; break;
- case CONFIG_TYPE_ISOTIME: type = "Time"; break;
- case CONFIG_TYPE_CSV: type = "CommaList"; break;
- case CONFIG_TYPE_LINELIST: type = "LineList"; break;
- case CONFIG_TYPE_LINELIST_S: type = "Dependant"; break;
- case CONFIG_TYPE_LINELIST_V: type = "Virtual"; break;
- default:
- case CONFIG_TYPE_OBSOLETE:
- type = NULL; break;
- }
- if (!type)
- continue;
- len = strlen(var->name)+strlen(type)+16;
- if (desc)
- len += strlen(desc);
- line = tor_malloc(len);
- if (desc)
- tor_snprintf(line, len, "%s %s %s\n",var->name,type,desc);
- else
- tor_snprintf(line, len, "%s %s\n",var->name,type);
- smartlist_add(sl, line);
- }
- *answer = smartlist_join_strings(sl, "", 0, NULL);
- SMARTLIST_FOREACH(sl, char *, c, tor_free(c));
- smartlist_free(sl);
- }
- return 0;
- }
- #include "../common/ht.h"
- #include "../common/test.h"
- extern const char aes_c_id[];
- extern const char compat_c_id[];
- extern const char container_c_id[];
- extern const char crypto_c_id[];
- extern const char log_c_id[];
- extern const char torgzip_c_id[];
- extern const char tortls_c_id[];
- extern const char util_c_id[];
- extern const char buffers_c_id[];
- extern const char circuitbuild_c_id[];
- extern const char circuitlist_c_id[];
- extern const char circuituse_c_id[];
- extern const char command_c_id[];
- extern const char connection_c_id[];
- extern const char connection_edge_c_id[];
- extern const char connection_or_c_id[];
- extern const char control_c_id[];
- extern const char cpuworker_c_id[];
- extern const char directory_c_id[];
- extern const char dirserv_c_id[];
- extern const char dns_c_id[];
- extern const char hibernate_c_id[];
- extern const char main_c_id[];
- extern const char onion_c_id[];
- extern const char policies_c_id[];
- extern const char relay_c_id[];
- extern const char rendclient_c_id[];
- extern const char rendcommon_c_id[];
- extern const char rendmid_c_id[];
- extern const char rendservice_c_id[];
- extern const char rephist_c_id[];
- extern const char router_c_id[];
- extern const char routerlist_c_id[];
- extern const char routerparse_c_id[];
- static void
- print_svn_version(void)
- {
- puts(AES_H_ID);
- puts(COMPAT_H_ID);
- puts(CONTAINER_H_ID);
- puts(CRYPTO_H_ID);
- puts(HT_H_ID);
- puts(TEST_H_ID);
- puts(LOG_H_ID);
- puts(TORGZIP_H_ID);
- puts(TORINT_H_ID);
- puts(TORTLS_H_ID);
- puts(UTIL_H_ID);
- puts(aes_c_id);
- puts(compat_c_id);
- puts(container_c_id);
- puts(crypto_c_id);
- puts(log_c_id);
- puts(torgzip_c_id);
- puts(tortls_c_id);
- puts(util_c_id);
- puts(OR_H_ID);
- puts(buffers_c_id);
- puts(circuitbuild_c_id);
- puts(circuitlist_c_id);
- puts(circuituse_c_id);
- puts(command_c_id);
- puts(config_c_id);
- puts(connection_c_id);
- puts(connection_edge_c_id);
- puts(connection_or_c_id);
- puts(control_c_id);
- puts(cpuworker_c_id);
- puts(directory_c_id);
- puts(dirserv_c_id);
- puts(dns_c_id);
- puts(hibernate_c_id);
- puts(main_c_id);
- puts(onion_c_id);
- puts(policies_c_id);
- puts(relay_c_id);
- puts(rendclient_c_id);
- puts(rendcommon_c_id);
- puts(rendmid_c_id);
- puts(rendservice_c_id);
- puts(rephist_c_id);
- puts(router_c_id);
- puts(routerlist_c_id);
- puts(routerparse_c_id);
- }
|