uci: tighten uci delete operation error handling
[project/rpcd.git] / uci.c
1 /*
2 * rpcd - UBUS RPC server
3 *
4 * Copyright (C) 2013-2014 Jo-Philipp Wich <jow@openwrt.org>
5 *
6 * Permission to use, copy, modify, and/or distribute this software for any
7 * purpose with or without fee is hereby granted, provided that the above
8 * copyright notice and this permission notice appear in all copies.
9 *
10 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
11 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
12 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
13 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
14 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
15 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
16 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
17 */
18
19 #include <libgen.h>
20 #include <glob.h>
21
22 #include <libubox/blobmsg.h>
23 #include <libubox/blobmsg_json.h>
24
25 #include <rpcd/uci.h>
26 #include <rpcd/exec.h>
27 #include <rpcd/session.h>
28
29 static struct blob_buf buf;
30 static struct uci_context *cursor;
31 static struct uloop_timeout apply_timer;
32 static struct ubus_context *apply_ctx;
33
34 char apply_sid[RPC_SID_LEN + 1];
35
36 enum {
37 RPC_G_CONFIG,
38 RPC_G_SECTION,
39 RPC_G_OPTION,
40 RPC_G_TYPE,
41 RPC_G_MATCH,
42 RPC_G_SESSION,
43 __RPC_G_MAX,
44 };
45
46 static const struct blobmsg_policy rpc_uci_get_policy[__RPC_G_MAX] = {
47 [RPC_G_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
48 [RPC_G_SECTION] = { .name = "section", .type = BLOBMSG_TYPE_STRING },
49 [RPC_G_OPTION] = { .name = "option", .type = BLOBMSG_TYPE_STRING },
50 [RPC_G_TYPE] = { .name = "type", .type = BLOBMSG_TYPE_STRING },
51 [RPC_G_MATCH] = { .name = "match", .type = BLOBMSG_TYPE_TABLE },
52 [RPC_G_SESSION] = { .name = "ubus_rpc_session",
53 .type = BLOBMSG_TYPE_STRING },
54 };
55
56 enum {
57 RPC_A_CONFIG,
58 RPC_A_TYPE,
59 RPC_A_NAME,
60 RPC_A_VALUES,
61 RPC_A_SESSION,
62 __RPC_A_MAX,
63 };
64
65 static const struct blobmsg_policy rpc_uci_add_policy[__RPC_A_MAX] = {
66 [RPC_A_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
67 [RPC_A_TYPE] = { .name = "type", .type = BLOBMSG_TYPE_STRING },
68 [RPC_A_NAME] = { .name = "name", .type = BLOBMSG_TYPE_STRING },
69 [RPC_A_VALUES] = { .name = "values", .type = BLOBMSG_TYPE_TABLE },
70 [RPC_A_SESSION] = { .name = "ubus_rpc_session",
71 .type = BLOBMSG_TYPE_STRING },
72 };
73
74 enum {
75 RPC_S_CONFIG,
76 RPC_S_SECTION,
77 RPC_S_TYPE,
78 RPC_S_MATCH,
79 RPC_S_VALUES,
80 RPC_S_SESSION,
81 __RPC_S_MAX,
82 };
83
84 static const struct blobmsg_policy rpc_uci_set_policy[__RPC_S_MAX] = {
85 [RPC_S_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
86 [RPC_S_SECTION] = { .name = "section", .type = BLOBMSG_TYPE_STRING },
87 [RPC_S_TYPE] = { .name = "type", .type = BLOBMSG_TYPE_STRING },
88 [RPC_S_MATCH] = { .name = "match", .type = BLOBMSG_TYPE_TABLE },
89 [RPC_S_VALUES] = { .name = "values", .type = BLOBMSG_TYPE_TABLE },
90 [RPC_S_SESSION] = { .name = "ubus_rpc_session",
91 .type = BLOBMSG_TYPE_STRING },
92 };
93
94 enum {
95 RPC_D_CONFIG,
96 RPC_D_SECTION,
97 RPC_D_TYPE,
98 RPC_D_MATCH,
99 RPC_D_OPTION,
100 RPC_D_OPTIONS,
101 RPC_D_SESSION,
102 __RPC_D_MAX,
103 };
104
105 static const struct blobmsg_policy rpc_uci_delete_policy[__RPC_D_MAX] = {
106 [RPC_D_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
107 [RPC_D_SECTION] = { .name = "section", .type = BLOBMSG_TYPE_STRING },
108 [RPC_D_TYPE] = { .name = "type", .type = BLOBMSG_TYPE_STRING },
109 [RPC_D_MATCH] = { .name = "match", .type = BLOBMSG_TYPE_TABLE },
110 [RPC_D_OPTION] = { .name = "option", .type = BLOBMSG_TYPE_STRING },
111 [RPC_D_OPTIONS] = { .name = "options", .type = BLOBMSG_TYPE_ARRAY },
112 [RPC_D_SESSION] = { .name = "ubus_rpc_session",
113 .type = BLOBMSG_TYPE_STRING },
114 };
115
116 enum {
117 RPC_R_CONFIG,
118 RPC_R_SECTION,
119 RPC_R_OPTION,
120 RPC_R_NAME,
121 RPC_R_SESSION,
122 __RPC_R_MAX,
123 };
124
125 static const struct blobmsg_policy rpc_uci_rename_policy[__RPC_R_MAX] = {
126 [RPC_R_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
127 [RPC_R_SECTION] = { .name = "section", .type = BLOBMSG_TYPE_STRING },
128 [RPC_R_OPTION] = { .name = "option", .type = BLOBMSG_TYPE_STRING },
129 [RPC_R_NAME] = { .name = "name", .type = BLOBMSG_TYPE_STRING },
130 [RPC_R_SESSION] = { .name = "ubus_rpc_session",
131 .type = BLOBMSG_TYPE_STRING },
132 };
133
134 enum {
135 RPC_O_CONFIG,
136 RPC_O_SECTIONS,
137 RPC_O_SESSION,
138 __RPC_O_MAX,
139 };
140
141 static const struct blobmsg_policy rpc_uci_order_policy[__RPC_O_MAX] = {
142 [RPC_O_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
143 [RPC_O_SECTIONS] = { .name = "sections", .type = BLOBMSG_TYPE_ARRAY },
144 [RPC_O_SESSION] = { .name = "ubus_rpc_session",
145 .type = BLOBMSG_TYPE_STRING },
146 };
147
148 enum {
149 RPC_C_CONFIG,
150 RPC_C_SESSION,
151 __RPC_C_MAX,
152 };
153
154 static const struct blobmsg_policy rpc_uci_config_policy[__RPC_C_MAX] = {
155 [RPC_C_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
156 [RPC_C_SESSION] = { .name = "ubus_rpc_session",
157 .type = BLOBMSG_TYPE_STRING },
158 };
159
160 enum {
161 RPC_T_ROLLBACK,
162 RPC_T_TIMEOUT,
163 RPC_T_SESSION,
164 __RPC_T_MAX,
165 };
166
167 static const struct blobmsg_policy rpc_uci_apply_policy[__RPC_T_MAX] = {
168 [RPC_T_ROLLBACK] = { .name = "rollback", .type = BLOBMSG_TYPE_BOOL },
169 [RPC_T_TIMEOUT] = { .name = "timeout", .type = BLOBMSG_TYPE_INT32 },
170 [RPC_T_SESSION] = { .name = "ubus_rpc_session",
171 .type = BLOBMSG_TYPE_STRING },
172 };
173
174 enum {
175 RPC_B_SESSION,
176 __RPC_B_MAX,
177 };
178
179 static const struct blobmsg_policy rpc_uci_rollback_policy[__RPC_B_MAX] = {
180 [RPC_B_SESSION] = { .name = "ubus_rpc_session",
181 .type = BLOBMSG_TYPE_STRING },
182 };
183
184 /*
185 * Validate a uci name
186 */
187 static bool
188 rpc_uci_verify_str(const char *name, bool extended, bool type)
189 {
190 const char *c;
191 char *e;
192
193 if (!name || !*name)
194 return false;
195
196 if (extended && *name != '@')
197 extended = false;
198
199 for (c = name + extended; *c; c++)
200 if (!isalnum(*c) && *c != '_' && ((!type && !extended) || *c != '-'))
201 break;
202
203 if (extended) {
204 if (*c != '[')
205 return false;
206
207 strtol(++c, &e, 10);
208
209 return (e > c && *e == ']' && *(e+1) == 0);
210 }
211
212 return (*c == 0);
213 }
214
215 /*
216 * Check that string is a valid, shell compatible uci name
217 */
218 static bool rpc_uci_verify_name(const char *name) {
219 return rpc_uci_verify_str(name, false, false);
220 }
221
222 /*
223 * Check that string is a valid section type name
224 */
225 static bool rpc_uci_verify_type(const char *type) {
226 return rpc_uci_verify_str(type, false, true);
227 }
228
229 /*
230 * Check that the string is a valid section id, optionally in extended
231 * lookup notation
232 */
233 static bool rpc_uci_verify_section(const char *section) {
234 return rpc_uci_verify_str(section, true, false);
235 }
236
237
238 /*
239 * Turn uci error state into ubus return code
240 */
241 static int
242 rpc_uci_status(void)
243 {
244 switch (cursor->err)
245 {
246 case UCI_OK:
247 return UBUS_STATUS_OK;
248
249 case UCI_ERR_INVAL:
250 return UBUS_STATUS_INVALID_ARGUMENT;
251
252 case UCI_ERR_NOTFOUND:
253 return UBUS_STATUS_NOT_FOUND;
254
255 default:
256 return UBUS_STATUS_UNKNOWN_ERROR;
257 }
258 }
259
260 /*
261 * Clear all save directories from the uci cursor and append the given path
262 * as new save directory.
263 */
264 static void
265 rpc_uci_replace_savedir(const char *path)
266 {
267 struct uci_element *e, *tmp;
268
269 uci_foreach_element_safe(&cursor->delta_path, tmp, e) {
270 if (e->name)
271 free(e->name);
272
273 free(e);
274 }
275
276 cursor->delta_path.prev = &cursor->delta_path;
277 cursor->delta_path.next = &cursor->delta_path;
278
279 if (path)
280 uci_set_savedir(cursor, path);
281 }
282
283 /*
284 * Setup per-session delta save directory. If the passed "sid" blob attribute
285 * pointer is NULL then the precedure was not invoked through the ubus-rpc so
286 * we do not perform session isolation and use the default save directory.
287 */
288 static void
289 rpc_uci_set_savedir(struct blob_attr *sid)
290 {
291 char path[PATH_MAX];
292
293 if (!sid)
294 {
295 rpc_uci_replace_savedir("/tmp/.uci");
296 return;
297 }
298
299 snprintf(path, sizeof(path) - 1,
300 RPC_UCI_SAVEDIR_PREFIX "%s", blobmsg_get_string(sid));
301
302 rpc_uci_replace_savedir(path);
303 }
304
305 /*
306 * Test read access to given config. If the passed "sid" blob attribute pointer
307 * is NULL then the precedure was not invoked through the ubus-rpc so we do not
308 * perform access control and always assume true.
309 */
310 static bool
311 rpc_uci_read_access(struct blob_attr *sid, struct blob_attr *config)
312 {
313 rpc_uci_set_savedir(sid);
314
315 if (!sid)
316 return true;
317
318 return rpc_session_access(blobmsg_data(sid), "uci",
319 blobmsg_data(config), "read");
320 }
321
322 /*
323 * Test write access to given config. If the passed "sid" blob attribute pointer
324 * is NULL then the precedure was not invoked through the ubus-rpc so we do not
325 * perform access control and always assume true.
326 */
327 static bool
328 rpc_uci_write_access(struct blob_attr *sid, struct blob_attr *config)
329 {
330 rpc_uci_set_savedir(sid);
331
332 if (!sid)
333 return true;
334
335 return rpc_session_access(blobmsg_data(sid), "uci",
336 blobmsg_data(config), "write");
337 }
338
339 /*
340 * Format applicable blob value as string and place a pointer to the string
341 * buffer in "p". Uses a static string buffer.
342 */
343 static bool
344 rpc_uci_format_blob(struct blob_attr *v, const char **p)
345 {
346 static char buf[21];
347
348 *p = NULL;
349
350 switch (blobmsg_type(v))
351 {
352 case BLOBMSG_TYPE_STRING:
353 *p = blobmsg_data(v);
354 break;
355
356 case BLOBMSG_TYPE_INT64:
357 snprintf(buf, sizeof(buf), "%"PRIu64, blobmsg_get_u64(v));
358 *p = buf;
359 break;
360
361 case BLOBMSG_TYPE_INT32:
362 snprintf(buf, sizeof(buf), "%u", blobmsg_get_u32(v));
363 *p = buf;
364 break;
365
366 case BLOBMSG_TYPE_INT16:
367 snprintf(buf, sizeof(buf), "%u", blobmsg_get_u16(v));
368 *p = buf;
369 break;
370
371 case BLOBMSG_TYPE_INT8:
372 snprintf(buf, sizeof(buf), "%u", !!blobmsg_get_u8(v));
373 *p = buf;
374 break;
375
376 default:
377 break;
378 }
379
380 return !!*p;
381 }
382
383 /*
384 * Lookup the given uci_ptr and enable extended lookup format if the .section
385 * value of the uci_ptr looks like extended syntax. Uses an internal copy
386 * of the given uci_ptr to perform the lookup as failing extended section
387 * lookup operations in libuci will zero our the uci_ptr struct.
388 * Copies the internal uci_ptr back to given the uci_ptr on success.
389 */
390 static int
391 rpc_uci_lookup(struct uci_ptr *ptr)
392 {
393 int rv;
394 struct uci_ptr lookup = *ptr;
395
396 if (!lookup.s && lookup.section && *lookup.section == '@')
397 lookup.flags |= UCI_LOOKUP_EXTENDED;
398
399 rv = uci_lookup_ptr(cursor, &lookup, NULL, true);
400
401 if (!rv)
402 *ptr = lookup;
403
404 return rv;
405 }
406
407 /*
408 * Checks whether the given uci_option object matches the given string value.
409 * 1) If the uci_option is of type list, check whether any of the list elements
410 * equals to the given string
411 * 2) If the uci_option is of type string, parse it into space separated tokens
412 * and check if any of the tokens equals to the given string.
413 * Returns true if a list element or token matched the given string.
414 */
415 static bool
416 rpc_uci_match_option(struct uci_option *o, const char *cmp)
417 {
418 struct uci_element *e;
419 char *s, *p;
420
421 if (o->type == UCI_TYPE_LIST)
422 {
423 uci_foreach_element(&o->v.list, e)
424 if (e->name && !strcmp(e->name, cmp))
425 return true;
426
427 return false;
428 }
429
430 if (!o->v.string)
431 return false;
432
433 s = strdup(o->v.string);
434
435 if (!s)
436 return false;
437
438 for (p = strtok(s, " \t"); p; p = strtok(NULL, " \t"))
439 {
440 if (!strcmp(p, cmp))
441 {
442 free(s);
443 return true;
444 }
445 }
446
447 free(s);
448 return false;
449 }
450
451 /*
452 * Checks whether the given uci_section matches the type and value blob attrs.
453 * 1) Returns false if "type" is given and the section type does not match
454 * the value specified in the "type" string blob attribute, else continue.
455 * 2) Tests whether any key in the "matches" table blob attribute exists in
456 * the given uci_section and whether each value is contained in the
457 * corresponding uci option value (see rpc_uci_match_option()).
458 * 3) A missing or empty "matches" table blob attribute is always considered
459 * to be a match.
460 * Returns true if "type" matches or is NULL and "matches" matches or is NULL.
461 */
462 static bool
463 rpc_uci_match_section(struct uci_section *s,
464 struct blob_attr *type, struct blob_attr *matches)
465 {
466 struct uci_element *e;
467 struct blob_attr *cur;
468 const char *cmp;
469 bool match = false;
470 bool empty = true;
471 int rem;
472
473 if (type && strcmp(s->type, blobmsg_data(type)))
474 return false;
475
476 if (!matches)
477 return true;
478
479 blobmsg_for_each_attr(cur, matches, rem)
480 {
481 if (!rpc_uci_format_blob(cur, &cmp))
482 continue;
483
484 uci_foreach_element(&s->options, e)
485 {
486 if (strcmp(e->name, blobmsg_name(cur)))
487 continue;
488
489 if (!rpc_uci_match_option(uci_to_option(e), cmp))
490 return false;
491
492 match = true;
493 }
494
495 empty = false;
496 }
497
498 return (empty || match);
499 }
500
501 /*
502 * Dump the given uci_option value into the global blobmsg buffer and use
503 * given "name" as key.
504 * 1) If the uci_option is of type list, put a table into the blob buffer and
505 * add each list item as string to it.
506 * 2) If the uci_option is of type string, put its value directly into the blob
507 * buffer.
508 */
509 static void
510 rpc_uci_dump_option(struct uci_option *o, const char *name)
511 {
512 void *c;
513 struct uci_element *e;
514
515 switch (o->type)
516 {
517 case UCI_TYPE_STRING:
518 blobmsg_add_string(&buf, name, o->v.string);
519 break;
520
521 case UCI_TYPE_LIST:
522 c = blobmsg_open_array(&buf, name);
523
524 uci_foreach_element(&o->v.list, e)
525 blobmsg_add_string(&buf, NULL, e->name);
526
527 blobmsg_close_array(&buf, c);
528 break;
529
530 default:
531 break;
532 }
533 }
534
535 /*
536 * Dump the given uci_section object into the global blobmsg buffer and use
537 * given "name" as key.
538 * Puts a table into the blob buffer and puts each section option member value
539 * as value into the table using the option name as key.
540 * Adds three special keys ".anonymous", ".type" and ".name" which specify the
541 * corresponding section properties.
542 */
543 static void
544 rpc_uci_dump_section(struct uci_section *s, const char *name, int index)
545 {
546 void *c;
547 struct uci_option *o;
548 struct uci_element *e;
549
550 c = blobmsg_open_table(&buf, name);
551
552 blobmsg_add_u8(&buf, ".anonymous", s->anonymous);
553 blobmsg_add_string(&buf, ".type", s->type);
554 blobmsg_add_string(&buf, ".name", s->e.name);
555
556 if (index >= 0)
557 blobmsg_add_u32(&buf, ".index", index);
558
559 uci_foreach_element(&s->options, e)
560 {
561 o = uci_to_option(e);
562 rpc_uci_dump_option(o, o->e.name);
563 }
564
565 blobmsg_close_table(&buf, c);
566 }
567
568 /*
569 * Dump the given uci_package object into the global blobmsg buffer and use
570 * given "name" as key.
571 * Puts a table into the blob buffer and puts each package section member as
572 * value into the table using the section name as key.
573 * Only dumps sections matching the given "type" and "matches", see explaination
574 * of rpc_uci_match_section() for details.
575 */
576 static void
577 rpc_uci_dump_package(struct uci_package *p, const char *name,
578 struct blob_attr *type, struct blob_attr *matches)
579 {
580 void *c;
581 struct uci_element *e;
582 int i = -1;
583
584 c = blobmsg_open_table(&buf, name);
585
586 uci_foreach_element(&p->sections, e)
587 {
588 i++;
589
590 if (!rpc_uci_match_section(uci_to_section(e), type, matches))
591 continue;
592
593 rpc_uci_dump_section(uci_to_section(e), e->name, i);
594 }
595
596 blobmsg_close_table(&buf, c);
597 }
598
599
600 static int
601 rpc_uci_getcommon(struct ubus_context *ctx, struct ubus_request_data *req,
602 struct blob_attr *msg, bool use_state)
603 {
604 struct blob_attr *tb[__RPC_G_MAX];
605 struct uci_package *p = NULL;
606 struct uci_ptr ptr = { 0 };
607
608 blobmsg_parse(rpc_uci_get_policy, __RPC_G_MAX, tb,
609 blob_data(msg), blob_len(msg));
610
611 if (!tb[RPC_G_CONFIG])
612 return UBUS_STATUS_INVALID_ARGUMENT;
613
614 if (!rpc_uci_read_access(tb[RPC_G_SESSION], tb[RPC_G_CONFIG]))
615 return UBUS_STATUS_PERMISSION_DENIED;
616
617 ptr.package = blobmsg_data(tb[RPC_G_CONFIG]);
618
619 if (use_state)
620 uci_set_savedir(cursor, "/var/state");
621
622 if (uci_load(cursor, ptr.package, &p))
623 return rpc_uci_status();
624
625 if (tb[RPC_G_SECTION])
626 {
627 ptr.section = blobmsg_data(tb[RPC_G_SECTION]);
628
629 if (tb[RPC_G_OPTION])
630 ptr.option = blobmsg_data(tb[RPC_G_OPTION]);
631 }
632
633 if (rpc_uci_lookup(&ptr) || !(ptr.flags & UCI_LOOKUP_COMPLETE))
634 goto out;
635
636 blob_buf_init(&buf, 0);
637
638 switch (ptr.last->type)
639 {
640 case UCI_TYPE_PACKAGE:
641 rpc_uci_dump_package(ptr.p, "values", tb[RPC_G_TYPE], tb[RPC_G_MATCH]);
642 break;
643
644 case UCI_TYPE_SECTION:
645 rpc_uci_dump_section(ptr.s, "values", -1);
646 break;
647
648 case UCI_TYPE_OPTION:
649 rpc_uci_dump_option(ptr.o, "value");
650 break;
651
652 default:
653 break;
654 }
655
656 ubus_send_reply(ctx, req, buf.head);
657
658 out:
659 uci_unload(cursor, p);
660
661 return rpc_uci_status();
662 }
663
664 static int
665 rpc_uci_get(struct ubus_context *ctx, struct ubus_object *obj,
666 struct ubus_request_data *req, const char *method,
667 struct blob_attr *msg)
668 {
669 return rpc_uci_getcommon(ctx, req, msg, false);
670 }
671
672 static int
673 rpc_uci_state(struct ubus_context *ctx, struct ubus_object *obj,
674 struct ubus_request_data *req, const char *method,
675 struct blob_attr *msg)
676 {
677 return rpc_uci_getcommon(ctx, req, msg, true);
678 }
679
680 static int
681 rpc_uci_add(struct ubus_context *ctx, struct ubus_object *obj,
682 struct ubus_request_data *req, const char *method,
683 struct blob_attr *msg)
684 {
685 struct blob_attr *tb[__RPC_A_MAX];
686 struct blob_attr *cur, *elem;
687 struct uci_package *p = NULL;
688 struct uci_section *s;
689 struct uci_ptr ptr = { 0 };
690 int rem, rem2, err = 0;
691
692 blobmsg_parse(rpc_uci_add_policy, __RPC_A_MAX, tb,
693 blob_data(msg), blob_len(msg));
694
695 if (!tb[RPC_A_CONFIG] || !tb[RPC_A_TYPE])
696 return UBUS_STATUS_INVALID_ARGUMENT;
697
698 if (!rpc_uci_write_access(tb[RPC_A_SESSION], tb[RPC_A_CONFIG]))
699 return UBUS_STATUS_PERMISSION_DENIED;
700
701 if (!rpc_uci_verify_type(blobmsg_data(tb[RPC_A_TYPE])))
702 return UBUS_STATUS_INVALID_ARGUMENT;
703
704 if (tb[RPC_A_NAME] &&
705 !rpc_uci_verify_name(blobmsg_data(tb[RPC_A_NAME])))
706 return UBUS_STATUS_INVALID_ARGUMENT;
707
708 ptr.package = blobmsg_data(tb[RPC_A_CONFIG]);
709
710 if (uci_load(cursor, ptr.package, &p))
711 return rpc_uci_status();
712
713 /* add named section */
714 if (tb[RPC_A_NAME])
715 {
716 ptr.section = blobmsg_data(tb[RPC_A_NAME]);
717 ptr.value = blobmsg_data(tb[RPC_A_TYPE]);
718 ptr.option = NULL;
719
720 if (rpc_uci_lookup(&ptr) || uci_set(cursor, &ptr))
721 goto out;
722 }
723
724 /* add anon section */
725 else
726 {
727 if (uci_add_section(cursor, p, blobmsg_data(tb[RPC_A_TYPE]), &s) || !s)
728 goto out;
729
730 ptr.section = s->e.name;
731 }
732
733 if (tb[RPC_A_VALUES])
734 {
735 blobmsg_for_each_attr(cur, tb[RPC_A_VALUES], rem)
736 {
737 ptr.o = NULL;
738 ptr.option = blobmsg_name(cur);
739
740 if (!rpc_uci_verify_name(ptr.option))
741 {
742 if (!err)
743 err = UBUS_STATUS_INVALID_ARGUMENT;
744
745 continue;
746 }
747
748 if (rpc_uci_lookup(&ptr) || !ptr.s)
749 {
750 if (!err)
751 err = UBUS_STATUS_NOT_FOUND;
752
753 continue;
754 }
755
756 switch (blobmsg_type(cur))
757 {
758 case BLOBMSG_TYPE_ARRAY:
759 blobmsg_for_each_attr(elem, cur, rem2)
760 {
761 if (!rpc_uci_format_blob(elem, &ptr.value))
762 {
763 if (!err)
764 err = UBUS_STATUS_INVALID_ARGUMENT;
765
766 continue;
767 }
768
769 uci_add_list(cursor, &ptr);
770 }
771
772 break;
773
774 default:
775 if (!rpc_uci_format_blob(cur, &ptr.value))
776 {
777 if (!err)
778 err = UBUS_STATUS_INVALID_ARGUMENT;
779 }
780 else
781 {
782 uci_set(cursor, &ptr);
783 }
784
785 break;
786 }
787 }
788 }
789
790 if (!err)
791 {
792 uci_save(cursor, p);
793
794 blob_buf_init(&buf, 0);
795 blobmsg_add_string(&buf, "section", ptr.section);
796 ubus_send_reply(ctx, req, buf.head);
797 }
798
799 out:
800 uci_unload(cursor, p);
801
802 return err ? err : rpc_uci_status();
803 }
804
805 /*
806 * Turn value from a blob attribute into uci set operation
807 * 1) if the blob is of type array, delete existing option (if any) and
808 * emit uci add_list operations for each element
809 * 2) if the blob is not an array but an option of type list exists,
810 * delete existing list and emit uci set operation for the blob value
811 * 3) in all other cases only emit a set operation if there is no existing
812 * option of if the existing options value differs from the blob value
813 */
814 static int
815 rpc_uci_merge_set(struct blob_attr *opt, struct uci_ptr *ptr)
816 {
817 struct blob_attr *cur;
818 int rem, rv;
819
820 ptr->o = NULL;
821 ptr->option = blobmsg_name(opt);
822 ptr->value = NULL;
823
824 if (!rpc_uci_verify_name(ptr->option))
825 return UBUS_STATUS_INVALID_ARGUMENT;
826
827 if (rpc_uci_lookup(ptr) || !ptr->s)
828 return UBUS_STATUS_NOT_FOUND;
829
830 if (blobmsg_type(opt) == BLOBMSG_TYPE_ARRAY)
831 {
832 if (ptr->o)
833 uci_delete(cursor, ptr);
834
835 rv = UBUS_STATUS_INVALID_ARGUMENT;
836
837 blobmsg_for_each_attr(cur, opt, rem)
838 {
839 if (!rpc_uci_format_blob(cur, &ptr->value))
840 continue;
841
842 uci_add_list(cursor, ptr);
843 rv = 0;
844 }
845
846 return rv;
847 }
848 else if (ptr->o && ptr->o->type == UCI_TYPE_LIST)
849 {
850 uci_delete(cursor, ptr);
851
852 if (!rpc_uci_format_blob(opt, &ptr->value))
853 return UBUS_STATUS_INVALID_ARGUMENT;
854
855 uci_set(cursor, ptr);
856 }
857 else
858 {
859 if (!rpc_uci_format_blob(opt, &ptr->value))
860 return UBUS_STATUS_INVALID_ARGUMENT;
861
862 if (!ptr->o || !ptr->o->v.string || strcmp(ptr->o->v.string, ptr->value))
863 uci_set(cursor, ptr);
864 }
865
866 return 0;
867 }
868
869 static int
870 rpc_uci_set(struct ubus_context *ctx, struct ubus_object *obj,
871 struct ubus_request_data *req, const char *method,
872 struct blob_attr *msg)
873 {
874 struct blob_attr *tb[__RPC_S_MAX];
875 struct blob_attr *cur;
876 struct uci_package *p = NULL;
877 struct uci_element *e;
878 struct uci_ptr ptr = { 0 };
879 int rem, rv, err = 0;
880
881 blobmsg_parse(rpc_uci_set_policy, __RPC_S_MAX, tb,
882 blob_data(msg), blob_len(msg));
883
884 if (!tb[RPC_S_CONFIG] || !tb[RPC_S_VALUES] ||
885 (!tb[RPC_S_SECTION] && !tb[RPC_S_TYPE] && !tb[RPC_S_MATCH]))
886 return UBUS_STATUS_INVALID_ARGUMENT;
887
888 if (!rpc_uci_write_access(tb[RPC_S_SESSION], tb[RPC_S_CONFIG]))
889 return UBUS_STATUS_PERMISSION_DENIED;
890
891 if (tb[RPC_S_SECTION] &&
892 !rpc_uci_verify_section(blobmsg_data(tb[RPC_S_SECTION])))
893 return UBUS_STATUS_INVALID_ARGUMENT;
894
895 ptr.package = blobmsg_data(tb[RPC_S_CONFIG]);
896
897 if (uci_load(cursor, ptr.package, &p))
898 return rpc_uci_status();
899
900 if (tb[RPC_S_SECTION])
901 {
902 ptr.section = blobmsg_data(tb[RPC_S_SECTION]);
903 blobmsg_for_each_attr(cur, tb[RPC_S_VALUES], rem)
904 {
905 rv = rpc_uci_merge_set(cur, &ptr);
906
907 if (rv)
908 err = rv;
909 }
910 }
911 else
912 {
913 uci_foreach_element(&p->sections, e)
914 {
915 if (!rpc_uci_match_section(uci_to_section(e),
916 tb[RPC_S_TYPE], tb[RPC_S_MATCH]))
917 continue;
918
919 ptr.s = NULL;
920 ptr.section = e->name;
921
922 blobmsg_for_each_attr(cur, tb[RPC_S_VALUES], rem)
923 {
924 rv = rpc_uci_merge_set(cur, &ptr);
925
926 if (rv)
927 err = rv;
928 }
929 }
930 }
931
932 if (!err && !ptr.s)
933 err = UBUS_STATUS_NOT_FOUND;
934
935 if (!err)
936 uci_save(cursor, p);
937
938 uci_unload(cursor, p);
939
940 return err ? err : rpc_uci_status();
941 }
942
943 /*
944 * Delete option or section from uci specified by given blob attribute pointer
945 * 1) if the blob is of type array, delete any option named after each element
946 * 2) if the blob is of type string, delete the option named after its value
947 * 3) if the blob is NULL, delete entire section
948 */
949 static int
950 rpc_uci_merge_delete(struct blob_attr *opt, struct uci_ptr *ptr)
951 {
952 struct blob_attr *cur;
953 int rem, rv;
954
955 if (rpc_uci_lookup(ptr) || !ptr->s)
956 return UBUS_STATUS_NOT_FOUND;
957
958 if (!opt)
959 {
960 ptr->o = NULL;
961 ptr->option = NULL;
962
963 uci_delete(cursor, ptr);
964 return 0;
965 }
966 else if (blobmsg_type(opt) == BLOBMSG_TYPE_ARRAY)
967 {
968 rv = UBUS_STATUS_NOT_FOUND;
969
970 blobmsg_for_each_attr(cur, opt, rem)
971 {
972 if (blobmsg_type(cur) != BLOBMSG_TYPE_STRING)
973 continue;
974
975 ptr->o = NULL;
976 ptr->option = blobmsg_data(cur);
977
978 if (rpc_uci_lookup(ptr) || !ptr->o)
979 continue;
980
981 uci_delete(cursor, ptr);
982 rv = 0;
983 }
984
985 return rv;
986 }
987 else if (blobmsg_type(opt) == BLOBMSG_TYPE_STRING)
988 {
989 ptr->o = NULL;
990 ptr->option = blobmsg_data(opt);
991
992 if (rpc_uci_lookup(ptr) || !ptr->o)
993 return UBUS_STATUS_NOT_FOUND;
994
995 uci_delete(cursor, ptr);
996 return 0;
997 }
998
999 return UBUS_STATUS_INVALID_ARGUMENT;
1000 }
1001
1002 static int
1003 rpc_uci_delete(struct ubus_context *ctx, struct ubus_object *obj,
1004 struct ubus_request_data *req, const char *method,
1005 struct blob_attr *msg)
1006 {
1007 struct blob_attr *tb[__RPC_D_MAX];
1008 struct uci_package *p = NULL;
1009 struct uci_element *e, *tmp;
1010 struct uci_ptr ptr = { 0 };
1011 int err = 0;
1012
1013 blobmsg_parse(rpc_uci_delete_policy, __RPC_D_MAX, tb,
1014 blob_data(msg), blob_len(msg));
1015
1016 if (!tb[RPC_D_CONFIG] ||
1017 (!tb[RPC_D_SECTION] && !tb[RPC_D_TYPE] && !tb[RPC_D_MATCH]))
1018 return UBUS_STATUS_INVALID_ARGUMENT;
1019
1020 if (!rpc_uci_write_access(tb[RPC_D_SESSION], tb[RPC_D_CONFIG]))
1021 return UBUS_STATUS_PERMISSION_DENIED;
1022
1023 if (tb[RPC_D_TYPE] &&
1024 !rpc_uci_verify_type(blobmsg_data(tb[RPC_D_TYPE])))
1025 return UBUS_STATUS_INVALID_ARGUMENT;
1026
1027 if (tb[RPC_D_SECTION] &&
1028 !rpc_uci_verify_section(blobmsg_data(tb[RPC_D_SECTION])))
1029 return UBUS_STATUS_INVALID_ARGUMENT;
1030
1031 ptr.package = blobmsg_data(tb[RPC_D_CONFIG]);
1032
1033 if (uci_load(cursor, ptr.package, &p))
1034 return rpc_uci_status();
1035
1036 if (tb[RPC_D_SECTION])
1037 {
1038 ptr.section = blobmsg_data(tb[RPC_D_SECTION]);
1039
1040 if (tb[RPC_D_OPTIONS])
1041 err = rpc_uci_merge_delete(tb[RPC_D_OPTIONS], &ptr);
1042 else
1043 err = rpc_uci_merge_delete(tb[RPC_D_OPTION], &ptr);
1044 }
1045 else
1046 {
1047 uci_foreach_element_safe(&p->sections, tmp, e)
1048 {
1049 if (!rpc_uci_match_section(uci_to_section(e),
1050 tb[RPC_D_TYPE], tb[RPC_D_MATCH]))
1051 continue;
1052
1053 ptr.s = NULL;
1054 ptr.section = e->name;
1055
1056 if (tb[RPC_D_OPTIONS])
1057 err = rpc_uci_merge_delete(tb[RPC_D_OPTIONS], &ptr);
1058 else
1059 err = rpc_uci_merge_delete(tb[RPC_D_OPTION], &ptr);
1060 }
1061
1062 if (!err && !ptr.section)
1063 err = UBUS_STATUS_NOT_FOUND;
1064 }
1065
1066 if (!err)
1067 uci_save(cursor, p);
1068
1069 uci_unload(cursor, p);
1070
1071 return err ? err : rpc_uci_status();
1072 }
1073
1074 static int
1075 rpc_uci_rename(struct ubus_context *ctx, struct ubus_object *obj,
1076 struct ubus_request_data *req, const char *method,
1077 struct blob_attr *msg)
1078 {
1079 struct blob_attr *tb[__RPC_R_MAX];
1080 struct uci_package *p = NULL;
1081 struct uci_ptr ptr = { 0 };
1082
1083 blobmsg_parse(rpc_uci_rename_policy, __RPC_R_MAX, tb,
1084 blob_data(msg), blob_len(msg));
1085
1086 if (!tb[RPC_R_CONFIG] || !tb[RPC_R_SECTION] || !tb[RPC_R_NAME])
1087 return UBUS_STATUS_INVALID_ARGUMENT;
1088
1089 if (!rpc_uci_write_access(tb[RPC_R_SESSION], tb[RPC_R_CONFIG]))
1090 return UBUS_STATUS_PERMISSION_DENIED;
1091
1092 ptr.package = blobmsg_data(tb[RPC_R_CONFIG]);
1093 ptr.section = blobmsg_data(tb[RPC_R_SECTION]);
1094 ptr.value = blobmsg_data(tb[RPC_R_NAME]);
1095
1096 if (!rpc_uci_verify_name(ptr.value))
1097 return UBUS_STATUS_INVALID_ARGUMENT;
1098
1099 if (tb[RPC_R_OPTION])
1100 ptr.option = blobmsg_data(tb[RPC_R_OPTION]);
1101
1102 if (uci_load(cursor, ptr.package, &p))
1103 return rpc_uci_status();
1104
1105 if (uci_lookup_ptr(cursor, &ptr, NULL, true))
1106 goto out;
1107
1108 if ((ptr.option && !ptr.o) || !ptr.s)
1109 {
1110 cursor->err = UCI_ERR_NOTFOUND;
1111 goto out;
1112 }
1113
1114 if (uci_rename(cursor, &ptr))
1115 goto out;
1116
1117 uci_save(cursor, p);
1118
1119 out:
1120 uci_unload(cursor, p);
1121
1122 return rpc_uci_status();
1123 }
1124
1125 static int
1126 rpc_uci_order(struct ubus_context *ctx, struct ubus_object *obj,
1127 struct ubus_request_data *req, const char *method,
1128 struct blob_attr *msg)
1129 {
1130 struct blob_attr *tb[__RPC_O_MAX];
1131 struct blob_attr *cur;
1132 struct uci_package *p = NULL;
1133 struct uci_ptr ptr = { 0 };
1134 int rem, i = 0;
1135
1136 blobmsg_parse(rpc_uci_order_policy, __RPC_O_MAX, tb,
1137 blob_data(msg), blob_len(msg));
1138
1139 if (!tb[RPC_O_CONFIG] || !tb[RPC_O_SECTIONS])
1140 return UBUS_STATUS_INVALID_ARGUMENT;
1141
1142 if (!rpc_uci_write_access(tb[RPC_O_SESSION], tb[RPC_O_CONFIG]))
1143 return UBUS_STATUS_PERMISSION_DENIED;
1144
1145 ptr.package = blobmsg_data(tb[RPC_O_CONFIG]);
1146
1147 if (uci_load(cursor, ptr.package, &p))
1148 return rpc_uci_status();
1149
1150 blobmsg_for_each_attr(cur, tb[RPC_O_SECTIONS], rem)
1151 {
1152 if (blobmsg_type(cur) != BLOBMSG_TYPE_STRING)
1153 continue;
1154
1155 ptr.s = NULL;
1156 ptr.section = blobmsg_data(cur);
1157
1158 if (uci_lookup_ptr(cursor, &ptr, NULL, true) || !ptr.s)
1159 continue;
1160
1161 uci_reorder_section(cursor, ptr.s, i++);
1162 }
1163
1164 uci_save(cursor, p);
1165 uci_unload(cursor, p);
1166
1167 return rpc_uci_status();
1168 }
1169
1170 static void
1171 rpc_uci_dump_change(struct uci_delta *d)
1172 {
1173 void *c;
1174 const char *types[] = {
1175 [UCI_CMD_REORDER] = "order",
1176 [UCI_CMD_REMOVE] = "remove",
1177 [UCI_CMD_RENAME] = "rename",
1178 [UCI_CMD_ADD] = "add",
1179 [UCI_CMD_LIST_ADD] = "list-add",
1180 [UCI_CMD_LIST_DEL] = "list-del",
1181 [UCI_CMD_CHANGE] = "set",
1182 };
1183
1184 if (!d->section)
1185 return;
1186
1187 c = blobmsg_open_array(&buf, NULL);
1188
1189 blobmsg_add_string(&buf, NULL, types[d->cmd]);
1190 blobmsg_add_string(&buf, NULL, d->section);
1191
1192 if (d->e.name)
1193 blobmsg_add_string(&buf, NULL, d->e.name);
1194
1195 if (d->value)
1196 {
1197 if (d->cmd == UCI_CMD_REORDER)
1198 blobmsg_add_u32(&buf, NULL, strtoul(d->value, NULL, 10));
1199 else
1200 blobmsg_add_string(&buf, NULL, d->value);
1201 }
1202
1203 blobmsg_close_array(&buf, c);
1204 }
1205
1206 static int
1207 rpc_uci_changes(struct ubus_context *ctx, struct ubus_object *obj,
1208 struct ubus_request_data *req, const char *method,
1209 struct blob_attr *msg)
1210 {
1211 struct blob_attr *tb[__RPC_C_MAX];
1212 struct uci_package *p = NULL;
1213 struct uci_element *e;
1214 char **configs;
1215 void *c, *d;
1216 int i;
1217
1218 blobmsg_parse(rpc_uci_config_policy, __RPC_C_MAX, tb,
1219 blob_data(msg), blob_len(msg));
1220
1221 if (tb[RPC_C_CONFIG])
1222 {
1223 if (!rpc_uci_read_access(tb[RPC_C_SESSION], tb[RPC_C_CONFIG]))
1224 return UBUS_STATUS_PERMISSION_DENIED;
1225
1226 if (uci_load(cursor, blobmsg_data(tb[RPC_C_CONFIG]), &p))
1227 return rpc_uci_status();
1228
1229 blob_buf_init(&buf, 0);
1230 c = blobmsg_open_array(&buf, "changes");
1231
1232 uci_foreach_element(&p->saved_delta, e)
1233 rpc_uci_dump_change(uci_to_delta(e));
1234
1235 blobmsg_close_array(&buf, c);
1236
1237 uci_unload(cursor, p);
1238
1239 ubus_send_reply(ctx, req, buf.head);
1240
1241 return rpc_uci_status();
1242 }
1243
1244 rpc_uci_set_savedir(tb[RPC_C_SESSION]);
1245
1246 if (uci_list_configs(cursor, &configs))
1247 return rpc_uci_status();
1248
1249 blob_buf_init(&buf, 0);
1250
1251 c = blobmsg_open_table(&buf, "changes");
1252
1253 for (i = 0; configs[i]; i++)
1254 {
1255 if (tb[RPC_C_SESSION] &&
1256 !rpc_session_access(blobmsg_data(tb[RPC_C_SESSION]), "uci",
1257 configs[i], "read"))
1258 continue;
1259
1260 if (uci_load(cursor, configs[i], &p))
1261 continue;
1262
1263 if (!uci_list_empty(&p->saved_delta))
1264 {
1265 d = blobmsg_open_array(&buf, configs[i]);
1266
1267 uci_foreach_element(&p->saved_delta, e)
1268 rpc_uci_dump_change(uci_to_delta(e));
1269
1270 blobmsg_close_array(&buf, d);
1271 }
1272
1273 uci_unload(cursor, p);
1274 }
1275
1276 blobmsg_close_table(&buf, c);
1277
1278 ubus_send_reply(ctx, req, buf.head);
1279
1280 return 0;
1281 }
1282
1283 static void
1284 rpc_uci_trigger_event(struct ubus_context *ctx, const char *config)
1285 {
1286 char *pkg = strdup(config);
1287 static struct blob_buf b;
1288 uint32_t id;
1289
1290 if (!ubus_lookup_id(ctx, "service", &id)) {
1291 void *c;
1292
1293 blob_buf_init(&b, 0);
1294 blobmsg_add_string(&b, "type", "config.change");
1295 c = blobmsg_open_table(&b, "data");
1296 blobmsg_add_string(&b, "package", pkg);
1297 blobmsg_close_table(&b, c);
1298 ubus_invoke(ctx, id, "event", b.head, NULL, 0, 1000);
1299 }
1300 free(pkg);
1301 }
1302
1303 static int
1304 rpc_uci_revert_commit(struct ubus_context *ctx, struct blob_attr *msg, bool commit)
1305 {
1306 struct blob_attr *tb[__RPC_C_MAX];
1307 struct uci_package *p = NULL;
1308 struct uci_ptr ptr = { 0 };
1309
1310 if (apply_sid[0])
1311 return UBUS_STATUS_PERMISSION_DENIED;
1312
1313 blobmsg_parse(rpc_uci_config_policy, __RPC_C_MAX, tb,
1314 blob_data(msg), blob_len(msg));
1315
1316 if (!tb[RPC_C_CONFIG])
1317 return UBUS_STATUS_INVALID_ARGUMENT;
1318
1319 if (!rpc_uci_write_access(tb[RPC_C_SESSION], tb[RPC_C_CONFIG]))
1320 return UBUS_STATUS_PERMISSION_DENIED;
1321
1322 ptr.package = blobmsg_data(tb[RPC_C_CONFIG]);
1323
1324 if (commit)
1325 {
1326 if (!uci_load(cursor, ptr.package, &p))
1327 {
1328 uci_commit(cursor, &p, false);
1329 uci_unload(cursor, p);
1330 rpc_uci_trigger_event(ctx, blobmsg_get_string(tb[RPC_C_CONFIG]));
1331 }
1332 }
1333 else
1334 {
1335 if (!uci_lookup_ptr(cursor, &ptr, NULL, true) && ptr.p)
1336 {
1337 uci_revert(cursor, &ptr);
1338 uci_unload(cursor, ptr.p);
1339 }
1340 }
1341
1342 return rpc_uci_status();
1343 }
1344
1345 static int
1346 rpc_uci_revert(struct ubus_context *ctx, struct ubus_object *obj,
1347 struct ubus_request_data *req, const char *method,
1348 struct blob_attr *msg)
1349 {
1350 return rpc_uci_revert_commit(ctx, msg, false);
1351 }
1352
1353 static int
1354 rpc_uci_commit(struct ubus_context *ctx, struct ubus_object *obj,
1355 struct ubus_request_data *req, const char *method,
1356 struct blob_attr *msg)
1357 {
1358 return rpc_uci_revert_commit(ctx, msg, true);
1359 }
1360
1361 static int
1362 rpc_uci_configs(struct ubus_context *ctx, struct ubus_object *obj,
1363 struct ubus_request_data *req, const char *method,
1364 struct blob_attr *msg)
1365 {
1366 char **configs;
1367 void *c;
1368 int i;
1369
1370 if (uci_list_configs(cursor, &configs))
1371 goto out;
1372
1373 blob_buf_init(&buf, 0);
1374
1375 c = blobmsg_open_array(&buf, "configs");
1376
1377 for (i = 0; configs[i]; i++)
1378 blobmsg_add_string(&buf, NULL, configs[i]);
1379
1380 blobmsg_close_array(&buf, c);
1381
1382 ubus_send_reply(ctx, req, buf.head);
1383
1384 out:
1385 return rpc_uci_status();
1386 }
1387
1388
1389 /*
1390 * Remove given delta save directory (if any).
1391 */
1392 static void
1393 rpc_uci_purge_dir(const char *path)
1394 {
1395 DIR *d;
1396 struct stat s;
1397 struct dirent *e;
1398 char file[PATH_MAX];
1399
1400 if (stat(path, &s) || !S_ISDIR(s.st_mode))
1401 return;
1402
1403 if ((d = opendir(path)) != NULL)
1404 {
1405 while ((e = readdir(d)) != NULL)
1406 {
1407 snprintf(file, sizeof(file) - 1, "%s/%s", path, e->d_name);
1408
1409 if (stat(file, &s) || !S_ISREG(s.st_mode))
1410 continue;
1411
1412 unlink(file);
1413 }
1414
1415 closedir(d);
1416
1417 rmdir(path);
1418 }
1419 }
1420
1421 static int
1422 rpc_uci_apply_config(struct ubus_context *ctx, char *config)
1423 {
1424 struct uci_package *p = NULL;
1425
1426 if (!uci_load(cursor, config, &p)) {
1427 uci_commit(cursor, &p, false);
1428 uci_unload(cursor, p);
1429 }
1430 rpc_uci_trigger_event(ctx, config);
1431
1432 return 0;
1433 }
1434
1435 static void
1436 rpc_uci_copy_file(const char *src, const char *target, const char *file)
1437 {
1438 char tmp[256];
1439 FILE *in, *out;
1440
1441 snprintf(tmp, sizeof(tmp), "%s%s", src, file);
1442 in = fopen(tmp, "rb");
1443 snprintf(tmp, sizeof(tmp), "%s%s", target, file);
1444 out = fopen(tmp, "wb+");
1445 if (in && out)
1446 while (!feof(in)) {
1447 int len = fread(tmp, 1, sizeof(tmp), in);
1448
1449 if(len > 0)
1450 fwrite(tmp, 1, len, out);
1451 }
1452 if(in)
1453 fclose(in);
1454 if(out)
1455 fclose(out);
1456 }
1457
1458 static int
1459 rpc_uci_apply_access(const char *sid, glob_t *gl)
1460 {
1461 struct stat s;
1462 int i, c = 0;
1463
1464 if (gl->gl_pathc < 3)
1465 return UBUS_STATUS_NO_DATA;
1466
1467 for (i = 0; i < gl->gl_pathc; i++) {
1468 char *config = basename(gl->gl_pathv[i]);
1469
1470 if (*config == '.')
1471 continue;
1472 if (stat(gl->gl_pathv[i], &s) || !s.st_size)
1473 continue;
1474 if (!rpc_session_access(sid, "uci", config, "write"))
1475 return UBUS_STATUS_PERMISSION_DENIED;
1476 c++;
1477 }
1478
1479 if (!c)
1480 return UBUS_STATUS_NO_DATA;
1481
1482 return 0;
1483 }
1484
1485 static void
1486 rpc_uci_do_rollback(struct ubus_context *ctx, glob_t *gl)
1487 {
1488 int i, deny;
1489 char tmp[PATH_MAX];
1490
1491 /* Test apply permission to see if the initiator session still exists.
1492 * If it does, restore the delta files as well, else just restore the
1493 * main configuration files. */
1494 deny = apply_sid[0]
1495 ? rpc_uci_apply_access(apply_sid, gl) : UBUS_STATUS_NOT_FOUND;
1496
1497 if (!deny) {
1498 snprintf(tmp, sizeof(tmp), RPC_UCI_SAVEDIR_PREFIX "%s/", apply_sid);
1499 mkdir(tmp, 0700);
1500 }
1501
1502 /* avoid merging unrelated uci changes when restoring old configs */
1503 rpc_uci_replace_savedir("/dev/null");
1504
1505 for (i = 0; i < gl->gl_pathc; i++) {
1506 char *config = basename(gl->gl_pathv[i]);
1507
1508 if (*config == '.')
1509 continue;
1510
1511 rpc_uci_copy_file(RPC_SNAPSHOT_FILES, RPC_UCI_DIR, config);
1512 rpc_uci_apply_config(ctx, config);
1513
1514 if (deny)
1515 continue;
1516
1517 rpc_uci_copy_file(RPC_SNAPSHOT_DELTA, tmp, config);
1518 }
1519
1520 rpc_uci_purge_dir(RPC_SNAPSHOT_FILES);
1521 rpc_uci_purge_dir(RPC_SNAPSHOT_DELTA);
1522
1523 uloop_timeout_cancel(&apply_timer);
1524 memset(apply_sid, 0, sizeof(apply_sid));
1525 apply_ctx = NULL;
1526 }
1527
1528 static void
1529 rpc_uci_apply_timeout(struct uloop_timeout *t)
1530 {
1531 glob_t gl;
1532 char tmp[PATH_MAX];
1533
1534 snprintf(tmp, sizeof(tmp), "%s/*", RPC_SNAPSHOT_FILES);
1535 if (glob(tmp, GLOB_PERIOD, NULL, &gl) < 0)
1536 return;
1537
1538 rpc_uci_do_rollback(apply_ctx, &gl);
1539
1540 globfree(&gl);
1541 }
1542
1543 static int
1544 rpc_uci_apply(struct ubus_context *ctx, struct ubus_object *obj,
1545 struct ubus_request_data *req, const char *method,
1546 struct blob_attr *msg)
1547 {
1548 struct blob_attr *tb[__RPC_T_MAX];
1549 int timeout = RPC_APPLY_TIMEOUT;
1550 char tmp[PATH_MAX];
1551 bool rollback = false;
1552 int ret, i;
1553 char *sid;
1554 glob_t gl;
1555
1556 blobmsg_parse(rpc_uci_apply_policy, __RPC_T_MAX, tb,
1557 blob_data(msg), blob_len(msg));
1558
1559 if (tb[RPC_T_ROLLBACK])
1560 rollback = blobmsg_get_bool(tb[RPC_T_ROLLBACK]);
1561
1562 if (apply_sid[0] && rollback)
1563 return UBUS_STATUS_PERMISSION_DENIED;
1564
1565 if (!tb[RPC_T_SESSION])
1566 return UBUS_STATUS_INVALID_ARGUMENT;
1567
1568 sid = blobmsg_data(tb[RPC_T_SESSION]);
1569
1570 if (tb[RPC_T_TIMEOUT])
1571 timeout = blobmsg_get_u32(tb[RPC_T_TIMEOUT]);
1572
1573 rpc_uci_purge_dir(RPC_SNAPSHOT_FILES);
1574 rpc_uci_purge_dir(RPC_SNAPSHOT_DELTA);
1575
1576 if (!apply_sid[0]) {
1577 rpc_uci_set_savedir(tb[RPC_T_SESSION]);
1578
1579 mkdir(RPC_SNAPSHOT_FILES, 0700);
1580 mkdir(RPC_SNAPSHOT_DELTA, 0700);
1581
1582 snprintf(tmp, sizeof(tmp), RPC_UCI_SAVEDIR_PREFIX "%s/*", sid);
1583 if (glob(tmp, GLOB_PERIOD, NULL, &gl) < 0)
1584 return UBUS_STATUS_NOT_FOUND;
1585
1586 snprintf(tmp, sizeof(tmp), RPC_UCI_SAVEDIR_PREFIX "%s/", sid);
1587
1588 ret = rpc_uci_apply_access(sid, &gl);
1589 if (ret) {
1590 globfree(&gl);
1591 return ret;
1592 }
1593
1594 /* copy SID early because rpc_uci_apply_config() will clobber buf */
1595 if (rollback)
1596 strncpy(apply_sid, sid, RPC_SID_LEN);
1597
1598 for (i = 0; i < gl.gl_pathc; i++) {
1599 char *config = basename(gl.gl_pathv[i]);
1600 struct stat s;
1601
1602 if (*config == '.')
1603 continue;
1604
1605 if (stat(gl.gl_pathv[i], &s) || !s.st_size)
1606 continue;
1607
1608 rpc_uci_copy_file(RPC_UCI_DIR, RPC_SNAPSHOT_FILES, config);
1609 rpc_uci_copy_file(tmp, RPC_SNAPSHOT_DELTA, config);
1610 rpc_uci_apply_config(ctx, config);
1611 }
1612
1613 globfree(&gl);
1614
1615 if (rollback) {
1616 apply_timer.cb = rpc_uci_apply_timeout;
1617 uloop_timeout_set(&apply_timer, timeout * 1000);
1618 apply_ctx = ctx;
1619 }
1620 }
1621
1622 return 0;
1623 }
1624
1625 static int
1626 rpc_uci_confirm(struct ubus_context *ctx, struct ubus_object *obj,
1627 struct ubus_request_data *req, const char *method,
1628 struct blob_attr *msg)
1629 {
1630 struct blob_attr *tb[__RPC_B_MAX];
1631 char *sid;
1632
1633 blobmsg_parse(rpc_uci_rollback_policy, __RPC_B_MAX, tb,
1634 blob_data(msg), blob_len(msg));
1635
1636 if (!tb[RPC_B_SESSION])
1637 return UBUS_STATUS_INVALID_ARGUMENT;
1638
1639 sid = blobmsg_data(tb[RPC_B_SESSION]);
1640
1641 if (!apply_sid[0])
1642 return UBUS_STATUS_NO_DATA;
1643
1644 if (strcmp(apply_sid, sid))
1645 return UBUS_STATUS_PERMISSION_DENIED;
1646
1647 rpc_uci_purge_dir(RPC_SNAPSHOT_FILES);
1648 rpc_uci_purge_dir(RPC_SNAPSHOT_DELTA);
1649
1650 uloop_timeout_cancel(&apply_timer);
1651 memset(apply_sid, 0, sizeof(apply_sid));
1652 apply_ctx = NULL;
1653
1654 return 0;
1655 }
1656
1657 static int
1658 rpc_uci_rollback(struct ubus_context *ctx, struct ubus_object *obj,
1659 struct ubus_request_data *req, const char *method,
1660 struct blob_attr *msg)
1661 {
1662 struct blob_attr *tb[__RPC_B_MAX];
1663 char tmp[PATH_MAX];
1664 glob_t gl;
1665 char *sid;
1666
1667 blobmsg_parse(rpc_uci_rollback_policy, __RPC_B_MAX, tb,
1668 blob_data(msg), blob_len(msg));
1669
1670 if (!apply_sid[0])
1671 return UBUS_STATUS_NO_DATA;
1672
1673 if (!tb[RPC_B_SESSION])
1674 return UBUS_STATUS_INVALID_ARGUMENT;
1675
1676 sid = blobmsg_data(tb[RPC_B_SESSION]);
1677
1678 if (strcmp(apply_sid, sid))
1679 return UBUS_STATUS_PERMISSION_DENIED;
1680
1681 snprintf(tmp, sizeof(tmp), "%s/*", RPC_SNAPSHOT_FILES);
1682 if (glob(tmp, GLOB_PERIOD, NULL, &gl) < 0)
1683 return UBUS_STATUS_NOT_FOUND;
1684
1685 rpc_uci_do_rollback(ctx, &gl);
1686
1687 globfree(&gl);
1688
1689 return 0;
1690 }
1691
1692 static int
1693 rpc_uci_reload(struct ubus_context *ctx, struct ubus_object *obj,
1694 struct ubus_request_data *req, const char *method,
1695 struct blob_attr *msg)
1696 {
1697 char * const cmd[2] = { "/sbin/reload_config", NULL };
1698
1699 if (!fork()) {
1700 /* wait for the RPC call to complete */
1701 sleep(2);
1702 return execv(cmd[0], cmd);
1703 }
1704
1705 return 0;
1706 }
1707
1708 /*
1709 * Session destroy callback to purge associated delta directory.
1710 */
1711 static void
1712 rpc_uci_purge_savedir_cb(struct rpc_session *ses, void *priv)
1713 {
1714 char path[PATH_MAX];
1715
1716 snprintf(path, sizeof(path) - 1, RPC_UCI_SAVEDIR_PREFIX "%s", ses->id);
1717 rpc_uci_purge_dir(path);
1718 }
1719
1720 /*
1721 * Removes all delta directories which match the RPC_UCI_SAVEDIR_PREFIX.
1722 * This is used to clean up garbage when starting rpcd.
1723 */
1724 void rpc_uci_purge_savedirs(void)
1725 {
1726 int i;
1727 glob_t gl;
1728
1729 if (!glob(RPC_UCI_SAVEDIR_PREFIX "*", 0, NULL, &gl))
1730 {
1731 for (i = 0; i < gl.gl_pathc; i++)
1732 rpc_uci_purge_dir(gl.gl_pathv[i]);
1733
1734 globfree(&gl);
1735 }
1736 }
1737
1738 int rpc_uci_api_init(struct ubus_context *ctx)
1739 {
1740 static const struct ubus_method uci_methods[] = {
1741 { .name = "configs", .handler = rpc_uci_configs },
1742 UBUS_METHOD("get", rpc_uci_get, rpc_uci_get_policy),
1743 UBUS_METHOD("state", rpc_uci_state, rpc_uci_get_policy),
1744 UBUS_METHOD("add", rpc_uci_add, rpc_uci_add_policy),
1745 UBUS_METHOD("set", rpc_uci_set, rpc_uci_set_policy),
1746 UBUS_METHOD("delete", rpc_uci_delete, rpc_uci_delete_policy),
1747 UBUS_METHOD("rename", rpc_uci_rename, rpc_uci_rename_policy),
1748 UBUS_METHOD("order", rpc_uci_order, rpc_uci_order_policy),
1749 UBUS_METHOD("changes", rpc_uci_changes, rpc_uci_config_policy),
1750 UBUS_METHOD("revert", rpc_uci_revert, rpc_uci_config_policy),
1751 UBUS_METHOD("commit", rpc_uci_commit, rpc_uci_config_policy),
1752 UBUS_METHOD("apply", rpc_uci_apply, rpc_uci_apply_policy),
1753 UBUS_METHOD("confirm", rpc_uci_confirm, rpc_uci_rollback_policy),
1754 UBUS_METHOD("rollback", rpc_uci_rollback, rpc_uci_rollback_policy),
1755 UBUS_METHOD_NOARG("reload_config", rpc_uci_reload),
1756 };
1757
1758 static struct ubus_object_type uci_type =
1759 UBUS_OBJECT_TYPE("luci-rpc-uci", uci_methods);
1760
1761 static struct ubus_object obj = {
1762 .name = "uci",
1763 .type = &uci_type,
1764 .methods = uci_methods,
1765 .n_methods = ARRAY_SIZE(uci_methods),
1766 };
1767
1768 static struct rpc_session_cb cb = {
1769 .cb = rpc_uci_purge_savedir_cb
1770 };
1771
1772 cursor = uci_alloc_context();
1773
1774 if (!cursor)
1775 return UBUS_STATUS_UNKNOWN_ERROR;
1776
1777 rpc_session_destroy_cb(&cb);
1778
1779 return ubus_add_object(ctx, &obj);
1780 }