2 tincctl.c -- Controlling a running tincd
3 Copyright (C) 2007-2015 Guus Sliepen <guus@tinc-vpn.org>
5 This program is free software; you can redistribute it and/or modify
6 it under the terms of the GNU General Public License as published by
7 the Free Software Foundation; either version 2 of the License, or
8 (at your option) any later version.
10 This program is distributed in the hope that it will be useful,
11 but WITHOUT ANY WARRANTY; without even the implied warranty of
12 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
13 GNU General Public License for more details.
15 You should have received a copy of the GNU General Public License along
16 with this program; if not, write to the Free Software Foundation, Inc.,
17 51 Franklin Street, Fifth Floor, Boston, MA 02110-1301 USA.
25 #include "readline/readline.h"
26 #include "readline/history.h"
31 #include "control_common.h"
36 #include "invitation.h"
45 #define MSG_NOSIGNAL 0
48 static char **orig_argv;
51 /* If nonzero, display usage information and exit. */
52 static bool show_help = false;
54 /* If nonzero, print the version on standard output and exit. */
55 static bool show_version = false;
57 static char *name = NULL;
58 static char controlcookie[1025];
59 char *tinc_conf = NULL;
60 char *hosts_dir = NULL;
63 // Horrible global variables...
72 bool confbasegiven = false;
73 bool netnamegiven = false;
74 char *scriptinterpreter = NULL;
75 char *scriptextension = "";
78 static struct option const long_options[] = {
79 {"batch", no_argument, NULL, 'b'},
80 {"config", required_argument, NULL, 'c'},
81 {"net", required_argument, NULL, 'n'},
82 {"help", no_argument, NULL, 1},
83 {"version", no_argument, NULL, 2},
84 {"pidfile", required_argument, NULL, 3},
85 {"force", no_argument, NULL, 4},
89 static void version(void) {
90 printf("%s version %s (built %s %s, protocol %d.%d)\n", PACKAGE,
91 BUILD_VERSION, BUILD_DATE, BUILD_TIME, PROT_MAJOR, PROT_MINOR);
92 printf("Copyright (C) 1998-2015 Ivo Timmermans, Guus Sliepen and others.\n"
93 "See the AUTHORS file for a complete list.\n\n"
94 "tinc comes with ABSOLUTELY NO WARRANTY. This is free software,\n"
95 "and you are welcome to redistribute it under certain conditions;\n"
96 "see the file COPYING for details.\n");
99 static void usage(bool status) {
101 fprintf(stderr, "Try `%s --help\' for more information.\n", program_name);
103 printf("Usage: %s [options] command\n\n", program_name);
104 printf("Valid options are:\n"
105 " -b, --batch Don't ask for anything (non-interactive mode).\n"
106 " -c, --config=DIR Read configuration options from DIR.\n"
107 " -n, --net=NETNAME Connect to net NETNAME.\n"
108 " --pidfile=FILENAME Read control cookie from FILENAME.\n"
109 " --force Force some commands to work despite warnings.\n"
110 " --help Display this help and exit.\n"
111 " --version Output version information and exit.\n"
113 "Valid commands are:\n"
114 " init [name] Create initial configuration files.\n"
115 " get VARIABLE Print current value of VARIABLE\n"
116 " set VARIABLE VALUE Set VARIABLE to VALUE\n"
117 " add VARIABLE VALUE Add VARIABLE with the given VALUE\n"
118 " del VARIABLE [VALUE] Remove VARIABLE [only ones with watching VALUE]\n"
119 " start [tincd options] Start tincd.\n"
120 " stop Stop tincd.\n"
121 " restart [tincd options] Restart tincd.\n"
122 " reload Partially reload configuration of running tincd.\n"
123 " pid Show PID of currently running tincd.\n"
124 #ifdef DISABLE_LEGACY
125 " generate-keys Generate a new Ed25519 public/private keypair.\n"
127 " generate-keys [bits] Generate new RSA and Ed25519 public/private keypairs.\n"
128 " generate-rsa-keys [bits] Generate a new RSA public/private keypair.\n"
130 " generate-ed25519-keys Generate a new Ed25519 public/private keypair.\n"
131 " dump Dump a list of one of the following things:\n"
132 " [reachable] nodes - all known nodes in the VPN\n"
133 " edges - all known connections in the VPN\n"
134 " subnets - all known subnets in the VPN\n"
135 " connections - all meta connections with ourself\n"
136 " [di]graph - graph of the VPN in dotty format\n"
137 " invitations - outstanding invitations\n"
138 " info NODE|SUBNET|ADDRESS Give information about a particular NODE, SUBNET or ADDRESS.\n"
139 " purge Purge unreachable nodes\n"
140 " debug N Set debug level\n"
141 " retry Retry all outgoing connections\n"
142 " disconnect NODE Close meta connection with NODE\n"
144 " top Show real-time statistics\n"
146 " pcap [snaplen] Dump traffic in pcap format [up to snaplen bytes per packet]\n"
147 " log [level] Dump log output [up to the specified level]\n"
148 " export Export host configuration of local node to standard output\n"
149 " export-all Export all host configuration files to standard output\n"
150 " import Import host configuration file(s) from standard input\n"
151 " exchange Same as export followed by import\n"
152 " exchange-all Same as export-all followed by import\n"
153 " invite NODE [...] Generate an invitation for NODE\n"
154 " join INVITATION Join a VPN using an INVITATION\n"
155 " network [NETNAME] List all known networks, or switch to the one named NETNAME.\n"
156 " fsck Check the configuration files for problems.\n"
158 printf("Report bugs to tinc@tinc-vpn.org.\n");
162 static bool parse_options(int argc, char **argv) {
164 int option_index = 0;
166 while((r = getopt_long(argc, argv, "+c:n:", long_options, &option_index)) != EOF) {
168 case 0: /* long option */
175 case 'c': /* config file */
176 confbase = xstrdup(optarg);
177 confbasegiven = true;
180 case 'n': /* net name given */
181 netname = xstrdup(optarg);
184 case 1: /* show help */
188 case 2: /* show version */
192 case 3: /* open control socket here */
193 pidfilename = xstrdup(optarg);
200 case '?': /* wrong options */
209 if(!netname && (netname = getenv("NETNAME")))
210 netname = xstrdup(netname);
212 /* netname "." is special: a "top-level name" */
214 if(netname && (!*netname || !strcmp(netname, "."))) {
219 if(netname && (strpbrk(netname, "\\/") || *netname == '.')) {
220 fprintf(stderr, "Invalid character in netname!\n");
227 /* Open a file with the desired permissions, minus the umask.
228 Also, if we want to create an executable file, we call fchmod()
229 to set the executable bits. */
231 FILE *fopenmask(const char *filename, const char *mode, mode_t perms) {
232 mode_t mask = umask(0);
235 FILE *f = fopen(filename, mode);
238 fprintf(stderr, "Could not open %s: %s\n", filename, strerror(errno));
243 if((perms & 0444) && f)
244 fchmod(fileno(f), perms);
250 static void disable_old_keys(const char *filename, const char *what) {
251 char tmpfile[PATH_MAX] = "";
253 bool disabled = false;
258 r = fopen(filename, "r");
262 snprintf(tmpfile, sizeof tmpfile, "%s.tmp", filename);
264 struct stat st = {.st_mode = 0600};
265 fstat(fileno(r), &st);
266 w = fopenmask(tmpfile, "w", st.st_mode);
268 while(fgets(buf, sizeof buf, r)) {
269 if(!block && !strncmp(buf, "-----BEGIN ", 11)) {
270 if((strstr(buf, " ED25519 ") && strstr(what, "Ed25519")) || (strstr(buf, " RSA ") && strstr(what, "RSA"))) {
276 bool ed25519pubkey = !strncasecmp(buf, "Ed25519PublicKey", 16) && strchr(" \t=", buf[16]) && strstr(what, "Ed25519");
282 if(block || ed25519pubkey)
284 if(fputs(buf, w) < 0) {
290 if(block && !strncmp(buf, "-----END ", 9))
297 if(ferror(r) || fclose(r) < 0)
302 fprintf(stderr, "Warning: old key(s) found, remove them by hand!\n");
309 // We cannot atomically replace files on Windows.
310 char bakfile[PATH_MAX] = "";
311 snprintf(bakfile, sizeof bakfile, "%s.bak", filename);
312 if(rename(filename, bakfile) || rename(tmpfile, filename)) {
313 rename(bakfile, filename);
315 if(rename(tmpfile, filename)) {
317 fprintf(stderr, "Warning: old key(s) found, remove them by hand!\n");
322 fprintf(stderr, "Warning: old key(s) found and disabled.\n");
329 static FILE *ask_and_open(const char *filename, const char *what, const char *mode, bool ask, mode_t perms) {
335 /* Check stdin and stdout */
337 /* Ask for a file and/or directory name. */
338 fprintf(stderr, "Please enter a file to save %s to [%s]: ", what, filename);
340 if(fgets(buf, sizeof buf, stdin) == NULL) {
341 fprintf(stderr, "Error while reading stdin: %s\n", strerror(errno));
345 size_t len = strlen(buf);
354 if(filename[0] != '\\' && filename[0] != '/' && !strchr(filename, ':')) {
356 if(filename[0] != '/') {
358 /* The directory is a relative path or a filename. */
359 directory = get_current_dir_name();
360 snprintf(buf2, sizeof buf2, "%s" SLASH "%s", directory, filename);
364 disable_old_keys(filename, what);
366 /* Open it first to keep the inode busy */
368 r = fopenmask(filename, mode, perms);
371 fprintf(stderr, "Error opening file `%s': %s\n", filename, strerror(errno));
379 Generate a public/private Ed25519 keypair, and ask for a file to store
382 static bool ed25519_keygen(bool ask) {
385 char fname[PATH_MAX];
387 fprintf(stderr, "Generating Ed25519 keypair:\n");
389 if(!(key = ecdsa_generate())) {
390 fprintf(stderr, "Error during key generation!\n");
393 fprintf(stderr, "Done.\n");
395 snprintf(fname, sizeof fname, "%s" SLASH "ed25519_key.priv", confbase);
396 f = ask_and_open(fname, "private Ed25519 key", "a", ask, 0600);
401 if(!ecdsa_write_pem_private_key(key, f)) {
402 fprintf(stderr, "Error writing private key!\n");
409 snprintf(fname, sizeof fname, "%s" SLASH "hosts" SLASH "%s", confbase, name);
411 snprintf(fname, sizeof fname, "%s" SLASH "ed25519_key.pub", confbase);
413 f = ask_and_open(fname, "public Ed25519 key", "a", ask, 0666);
418 char *pubkey = ecdsa_get_base64_public_key(key);
419 fprintf(f, "Ed25519PublicKey = %s\n", pubkey);
434 #ifndef DISABLE_LEGACY
436 Generate a public/private RSA keypair, and ask for a file to store
439 static bool rsa_keygen(int bits, bool ask) {
442 char fname[PATH_MAX];
444 // Make sure the key size is a multiple of 8 bits.
447 // Force them to be between 1024 and 8192 bits long.
453 fprintf(stderr, "Generating %d bits keys:\n", bits);
455 if(!(key = rsa_generate(bits, 0x10001))) {
456 fprintf(stderr, "Error during key generation!\n");
459 fprintf(stderr, "Done.\n");
461 snprintf(fname, sizeof fname, "%s" SLASH "rsa_key.priv", confbase);
462 f = ask_and_open(fname, "private RSA key", "a", ask, 0600);
467 if(!rsa_write_pem_private_key(key, f)) {
468 fprintf(stderr, "Error writing private key!\n");
475 snprintf(fname, sizeof fname, "%s" SLASH "hosts" SLASH "%s", confbase, name);
477 snprintf(fname, sizeof fname, "%s" SLASH "rsa_key.pub", confbase);
479 f = ask_and_open(fname, "public RSA key", "a", ask, 0666);
484 if(!rsa_write_pem_public_key(key, f)) {
485 fprintf(stderr, "Error writing public key!\n");
505 bool recvline(int fd, char *line, size_t len) {
506 char *newline = NULL;
511 while(!(newline = memchr(buffer, '\n', blen))) {
512 int result = recv(fd, buffer + blen, sizeof buffer - blen, 0);
513 if(result == -1 && sockerrno == EINTR)
520 if(newline - buffer >= len)
523 len = newline - buffer;
525 memcpy(line, buffer, len);
527 memmove(buffer, newline + 1, blen - len - 1);
533 bool recvdata(int fd, char *data, size_t len) {
538 int result = recv(fd, buffer + blen, sizeof buffer - blen, 0);
539 if(result == -1 && sockerrno == EINTR)
546 memcpy(data, buffer, len);
547 memmove(buffer, buffer + len, blen - len);
553 bool sendline(int fd, char *format, ...) {
554 static char buffer[4096];
559 va_start(ap, format);
560 blen = vsnprintf(buffer, sizeof buffer, format, ap);
563 if(blen < 1 || blen >= sizeof buffer)
570 int result = send(fd, p, blen, MSG_NOSIGNAL);
571 if(result == -1 && sockerrno == EINTR)
582 static void pcap(int fd, FILE *out, int snaplen) {
583 sendline(fd, "%d %d %d", CONTROL, REQ_PCAP, snaplen);
591 uint32_t tz_accuracy;
598 snaplen ?: sizeof data,
611 fwrite(&header, sizeof header, 1, out);
615 while(recvline(fd, line, sizeof line)) {
617 int n = sscanf(line, "%d %d %d", &code, &req, &len);
618 gettimeofday(&tv, NULL);
619 if(n != 3 || code != CONTROL || req != REQ_PCAP || len < 0 || len > sizeof data)
621 if(!recvdata(fd, data, len))
623 packet.tv_sec = tv.tv_sec;
624 packet.tv_usec = tv.tv_usec;
626 packet.origlen = len;
627 fwrite(&packet, sizeof packet, 1, out);
628 fwrite(data, len, 1, out);
633 static void logcontrol(int fd, FILE *out, int level) {
634 sendline(fd, "%d %d %d", CONTROL, REQ_LOG, level);
638 while(recvline(fd, line, sizeof line)) {
640 int n = sscanf(line, "%d %d %d", &code, &req, &len);
641 if(n != 3 || code != CONTROL || req != REQ_LOG || len < 0 || len > sizeof data)
643 if(!recvdata(fd, data, len))
645 fwrite(data, len, 1, out);
652 static bool remove_service(void) {
653 SC_HANDLE manager = NULL;
654 SC_HANDLE service = NULL;
655 SERVICE_STATUS status = {0};
657 manager = OpenSCManager(NULL, NULL, SC_MANAGER_ALL_ACCESS);
659 fprintf(stderr, "Could not open service manager: %s\n", winerror(GetLastError()));
663 service = OpenService(manager, identname, SERVICE_ALL_ACCESS);
666 fprintf(stderr, "Could not open %s service: %s\n", identname, winerror(GetLastError()));
670 if(!ControlService(service, SERVICE_CONTROL_STOP, &status))
671 fprintf(stderr, "Could not stop %s service: %s\n", identname, winerror(GetLastError()));
673 fprintf(stderr, "%s service stopped\n", identname);
675 if(!DeleteService(service)) {
676 fprintf(stderr, "Could not remove %s service: %s\n", identname, winerror(GetLastError()));
680 fprintf(stderr, "%s service removed\n", identname);
686 bool connect_tincd(bool verbose) {
691 struct timeval tv = {0, 0};
692 if(select(fd + 1, &r, NULL, NULL, &tv)) {
693 fprintf(stderr, "Previous connection to tincd lost, reconnecting.\n");
701 FILE *f = fopen(pidfilename, "r");
704 fprintf(stderr, "Could not open pid file %s: %s\n", pidfilename, strerror(errno));
711 if(fscanf(f, "%20d %1024s %128s port %128s", &pid, controlcookie, host, port) != 4) {
713 fprintf(stderr, "Could not parse pid file %s\n", pidfilename);
721 struct sockaddr_un sa;
722 sa.sun_family = AF_UNIX;
723 strncpy(sa.sun_path, unixsocketname, sizeof sa.sun_path);
725 fd = socket(AF_UNIX, SOCK_STREAM, 0);
728 fprintf(stderr, "Cannot create UNIX socket: %s\n", sockstrerror(sockerrno));
732 if(connect(fd, (struct sockaddr *)&sa, sizeof sa) < 0) {
734 fprintf(stderr, "Cannot connect to UNIX socket %s: %s\n", unixsocketname, sockstrerror(sockerrno));
740 struct addrinfo hints = {
741 .ai_family = AF_UNSPEC,
742 .ai_socktype = SOCK_STREAM,
743 .ai_protocol = IPPROTO_TCP,
747 struct addrinfo *res = NULL;
749 if(getaddrinfo(host, port, &hints, &res) || !res) {
751 fprintf(stderr, "Cannot resolve %s port %s: %s", host, port, sockstrerror(sockerrno));
755 fd = socket(res->ai_family, SOCK_STREAM, IPPROTO_TCP);
758 fprintf(stderr, "Cannot create TCP socket: %s\n", sockstrerror(sockerrno));
763 unsigned long arg = 0;
765 if(ioctlsocket(fd, FIONBIO, &arg) != 0) {
767 fprintf(stderr, "ioctlsocket failed: %s", sockstrerror(sockerrno));
771 if(connect(fd, res->ai_addr, res->ai_addrlen) < 0) {
773 fprintf(stderr, "Cannot connect to %s port %s: %s\n", host, port, sockstrerror(sockerrno));
783 static const int one = 1;
784 setsockopt(fd, SOL_SOCKET, SO_NOSIGPIPE, (void *)&one, sizeof one);
790 if(!recvline(fd, line, sizeof line) || sscanf(line, "%d %s %d", &code, data, &version) != 3 || code != 0) {
792 fprintf(stderr, "Cannot read greeting from control socket: %s\n", sockstrerror(sockerrno));
798 sendline(fd, "%d ^%s %d", ID, controlcookie, TINC_CTL_VERSION_CURRENT);
800 if(!recvline(fd, line, sizeof line) || sscanf(line, "%d %d %d", &code, &version, &pid) != 3 || code != 4 || version != TINC_CTL_VERSION_CURRENT) {
802 fprintf(stderr, "Could not fully establish control socket connection\n");
812 static int cmd_start(int argc, char *argv[]) {
813 if(connect_tincd(false)) {
815 fprintf(stderr, "A tincd is already running for net `%s' with pid %d.\n", netname, pid);
817 fprintf(stderr, "A tincd is already running with pid %d.\n", pid);
822 char *slash = strrchr(program_name, '/');
825 if ((c = strrchr(program_name, '\\')) > slash)
830 xasprintf(&c, "%.*stincd", (int)(slash - program_name), program_name);
835 char **nargv = xzalloc((optind + argc) * sizeof *nargv);
840 Windows has no real concept of an "argv array". A command line is just one string.
841 The CRT of the new process will decode the command line string to generate argv before calling main(), and (by convention)
842 it uses quotes to handle spaces in arguments.
843 Therefore we need to quote all arguments that might contain spaces. No, execvp() won't do that for us (see MSDN).
844 If we don't do that, then execvp() will run fine but any spaces in the filename contained in arg0 will bleed
845 into the next arguments when the spawned process' CRT parses its command line, resulting in chaos.
847 xasprintf(&arg0, "\"%s\"", arg0);
849 nargv[nargc++] = arg0;
850 for(int i = 1; i < optind; i++)
851 nargv[nargc++] = orig_argv[i];
852 for(int i = 1; i < argc; i++)
853 nargv[nargc++] = argv[i];
856 int status = spawnvp(_P_WAIT, c, nargv);
858 fprintf(stderr, "Error starting %s: %s\n", c, strerror(errno));
863 int pfd[2] = {-1, -1};
864 if(socketpair(AF_UNIX, SOCK_STREAM, 0, pfd)) {
865 fprintf(stderr, "Could not create umbilical socket: %s\n", strerror(errno));
872 fprintf(stderr, "Could not fork: %s\n", strerror(errno));
880 snprintf(buf, sizeof buf, "%d", pfd[1]);
881 setenv("TINC_UMBILICAL", buf, true);
882 exit(execvp(c, nargv));
889 int status = -1, result;
891 signal(SIGINT, SIG_IGN);
894 // Pass all log messages from the umbilical to stderr.
895 // A nul-byte right before closure means tincd started succesfully.
900 while((len = read(pfd[0], buf, sizeof buf)) > 0) {
901 failure = buf[len - 1];
912 // Make sure the child process is really gone.
913 result = waitpid(pid, &status, 0);
916 signal(SIGINT, SIG_DFL);
919 if(failure || result != pid || !WIFEXITED(status) || WEXITSTATUS(status)) {
920 fprintf(stderr, "Error starting %s\n", c);
928 static int cmd_stop(int argc, char *argv[]) {
930 fprintf(stderr, "Too many arguments!\n");
935 if(!connect_tincd(true)) {
937 if(kill(pid, SIGTERM)) {
938 fprintf(stderr, "Could not send TERM signal to process with PID %u: %s\n", pid, strerror(errno));
942 fprintf(stderr, "Sent TERM signal to process with PID %u.\n", pid);
943 waitpid(pid, NULL, 0);
950 sendline(fd, "%d %d", CONTROL, REQ_STOP);
952 while(recvline(fd, line, sizeof line)) {
953 // Wait for tincd to close the connection...
956 if(!remove_service())
966 static int cmd_restart(int argc, char *argv[]) {
968 return cmd_start(argc, argv);
971 static int cmd_reload(int argc, char *argv[]) {
973 fprintf(stderr, "Too many arguments!\n");
977 if(!connect_tincd(true))
980 sendline(fd, "%d %d", CONTROL, REQ_RELOAD);
981 if(!recvline(fd, line, sizeof line) || sscanf(line, "%d %d %d", &code, &req, &result) != 3 || code != CONTROL || req != REQ_RELOAD || result) {
982 fprintf(stderr, "Could not reload configuration.\n");
990 static int dump_invitations(void) {
991 char dname[PATH_MAX];
992 snprintf(dname, sizeof dname, "%s" SLASH "invitations", confbase);
993 DIR *dir = opendir(dname);
995 if(errno == ENOENT) {
996 fprintf(stderr, "No outstanding invitations.\n");
1000 fprintf(stderr, "Cannot not read directory %s: %s\n", dname, strerror(errno));
1007 while((ent = readdir(dir))) {
1008 char buf[MAX_STRING_SIZE];
1009 if(b64decode(ent->d_name, buf, 24) != 18)
1012 char fname[PATH_MAX];
1013 snprintf(fname, sizeof fname, "%s" SLASH "%s", dname, ent->d_name);
1014 FILE *f = fopen(fname, "r");
1016 fprintf(stderr, "Cannot open %s: %s\n", fname, strerror(errno));
1022 if(!fgets(buf, sizeof buf, f)) {
1023 fprintf(stderr, "Invalid invitation file %s", fname);
1029 char *eol = buf + strlen(buf);
1030 while(strchr("\t \r\n", *--eol))
1032 if(strncmp(buf, "Name = ", 7) || !check_id(buf + 7)) {
1033 fprintf(stderr, "Invalid invitation file %s", fname);
1038 printf("%s %s\n", ent->d_name, buf + 7);
1044 fprintf(stderr, "No outstanding invitations.\n");
1049 static int cmd_dump(int argc, char *argv[]) {
1050 bool only_reachable = false;
1052 if(argc > 2 && !strcasecmp(argv[1], "reachable")) {
1053 if(strcasecmp(argv[2], "nodes")) {
1054 fprintf(stderr, "`reachable' only supported for nodes.\n");
1058 only_reachable = true;
1064 fprintf(stderr, "Invalid number of arguments.\n");
1069 if(!strcasecmp(argv[1], "invitations"))
1070 return dump_invitations();
1072 if(!connect_tincd(true))
1077 if(!strcasecmp(argv[1], "nodes"))
1078 sendline(fd, "%d %d", CONTROL, REQ_DUMP_NODES);
1079 else if(!strcasecmp(argv[1], "edges"))
1080 sendline(fd, "%d %d", CONTROL, REQ_DUMP_EDGES);
1081 else if(!strcasecmp(argv[1], "subnets"))
1082 sendline(fd, "%d %d", CONTROL, REQ_DUMP_SUBNETS);
1083 else if(!strcasecmp(argv[1], "connections"))
1084 sendline(fd, "%d %d", CONTROL, REQ_DUMP_CONNECTIONS);
1085 else if(!strcasecmp(argv[1], "graph")) {
1086 sendline(fd, "%d %d", CONTROL, REQ_DUMP_NODES);
1087 sendline(fd, "%d %d", CONTROL, REQ_DUMP_EDGES);
1089 } else if(!strcasecmp(argv[1], "digraph")) {
1090 sendline(fd, "%d %d", CONTROL, REQ_DUMP_NODES);
1091 sendline(fd, "%d %d", CONTROL, REQ_DUMP_EDGES);
1094 fprintf(stderr, "Unknown dump type '%s'.\n", argv[1]);
1100 printf("graph {\n");
1101 else if(do_graph == 2)
1102 printf("digraph {\n");
1104 while(recvline(fd, line, sizeof line)) {
1105 char node1[4096], node2[4096];
1106 int n = sscanf(line, "%d %d %s %s", &code, &req, node1, node2);
1108 if(do_graph && req == REQ_DUMP_NODES)
1126 char local_host[4096];
1127 char local_port[4096];
1130 int cipher, digest, maclength, compression, distance, socket, weight;
1131 short int pmtu, minmtu, maxmtu;
1132 unsigned int options, status_int;
1133 node_status_t status;
1134 long int last_state_change;
1137 case REQ_DUMP_NODES: {
1138 int n = sscanf(line, "%*d %*d %s %s %s port %s %d %d %d %d %x %x %s %s %d %hd %hd %hd %ld", node, id, host, port, &cipher, &digest, &maclength, &compression, &options, &status_int, nexthop, via, &distance, &pmtu, &minmtu, &maxmtu, &last_state_change);
1140 fprintf(stderr, "Unable to parse node dump from tincd: %s\n", line);
1144 memcpy(&status, &status_int, sizeof status);
1147 const char *color = "black";
1148 if(!strcmp(host, "MYSELF"))
1150 else if(!status.reachable)
1152 else if(strcmp(via, node))
1154 else if(!status.validkey)
1158 printf(" %s [label = \"%s\", color = \"%s\"%s];\n", node, node, color, strcmp(host, "MYSELF") ? "" : ", style = \"filled\"");
1160 if(only_reachable && !status.reachable)
1162 printf("%s id %s at %s port %s cipher %d digest %d maclength %d compression %d options %x status %04x nexthop %s via %s distance %d pmtu %hd (min %hd max %hd)\n",
1163 node, id, host, port, cipher, digest, maclength, compression, options, status_int, nexthop, via, distance, pmtu, minmtu, maxmtu);
1167 case REQ_DUMP_EDGES: {
1168 int n = sscanf(line, "%*d %*d %s %s %s port %s %s port %s %x %d", from, to, host, port, local_host, local_port, &options, &weight);
1170 fprintf(stderr, "Unable to parse edge dump from tincd.\n");
1175 float w = 1 + 65536.0 / weight;
1176 if(do_graph == 1 && strcmp(node1, node2) > 0)
1177 printf(" %s -- %s [w = %f, weight = %f];\n", node1, node2, w, w);
1178 else if(do_graph == 2)
1179 printf(" %s -> %s [w = %f, weight = %f];\n", node1, node2, w, w);
1181 printf("%s to %s at %s port %s local %s port %s options %x weight %d\n", from, to, host, port, local_host, local_port, options, weight);
1185 case REQ_DUMP_SUBNETS: {
1186 int n = sscanf(line, "%*d %*d %s %s", subnet, node);
1188 fprintf(stderr, "Unable to parse subnet dump from tincd.\n");
1191 printf("%s owner %s\n", strip_weight(subnet), node);
1194 case REQ_DUMP_CONNECTIONS: {
1195 int n = sscanf(line, "%*d %*d %s %s port %s %x %d %x", node, host, port, &options, &socket, &status_int);
1197 fprintf(stderr, "Unable to parse connection dump from tincd.\n");
1200 printf("%s at %s port %s options %x socket %d status %x\n", node, host, port, options, socket, status_int);
1204 fprintf(stderr, "Unable to parse dump from tincd.\n");
1209 fprintf(stderr, "Error receiving dump.\n");
1213 static int cmd_purge(int argc, char *argv[]) {
1215 fprintf(stderr, "Too many arguments!\n");
1219 if(!connect_tincd(true))
1222 sendline(fd, "%d %d", CONTROL, REQ_PURGE);
1223 if(!recvline(fd, line, sizeof line) || sscanf(line, "%d %d %d", &code, &req, &result) != 3 || code != CONTROL || req != REQ_PURGE || result) {
1224 fprintf(stderr, "Could not purge old information.\n");
1231 static int cmd_debug(int argc, char *argv[]) {
1233 fprintf(stderr, "Invalid number of arguments.\n");
1237 if(!connect_tincd(true))
1240 int debuglevel = atoi(argv[1]);
1243 sendline(fd, "%d %d %d", CONTROL, REQ_SET_DEBUG, debuglevel);
1244 if(!recvline(fd, line, sizeof line) || sscanf(line, "%d %d %d", &code, &req, &origlevel) != 3 || code != CONTROL || req != REQ_SET_DEBUG) {
1245 fprintf(stderr, "Could not set debug level.\n");
1249 fprintf(stderr, "Old level %d, new level %d.\n", origlevel, debuglevel);
1253 static int cmd_retry(int argc, char *argv[]) {
1255 fprintf(stderr, "Too many arguments!\n");
1259 if(!connect_tincd(true))
1262 sendline(fd, "%d %d", CONTROL, REQ_RETRY);
1263 if(!recvline(fd, line, sizeof line) || sscanf(line, "%d %d %d", &code, &req, &result) != 3 || code != CONTROL || req != REQ_RETRY || result) {
1264 fprintf(stderr, "Could not retry outgoing connections.\n");
1271 static int cmd_connect(int argc, char *argv[]) {
1273 fprintf(stderr, "Invalid number of arguments.\n");
1277 if(!check_id(argv[1])) {
1278 fprintf(stderr, "Invalid name for node.\n");
1282 if(!connect_tincd(true))
1285 sendline(fd, "%d %d %s", CONTROL, REQ_CONNECT, argv[1]);
1286 if(!recvline(fd, line, sizeof line) || sscanf(line, "%d %d %d", &code, &req, &result) != 3 || code != CONTROL || req != REQ_CONNECT || result) {
1287 fprintf(stderr, "Could not connect to %s.\n", argv[1]);
1294 static int cmd_disconnect(int argc, char *argv[]) {
1296 fprintf(stderr, "Invalid number of arguments.\n");
1300 if(!check_id(argv[1])) {
1301 fprintf(stderr, "Invalid name for node.\n");
1305 if(!connect_tincd(true))
1308 sendline(fd, "%d %d %s", CONTROL, REQ_DISCONNECT, argv[1]);
1309 if(!recvline(fd, line, sizeof line) || sscanf(line, "%d %d %d", &code, &req, &result) != 3 || code != CONTROL || req != REQ_DISCONNECT || result) {
1310 fprintf(stderr, "Could not disconnect %s.\n", argv[1]);
1317 static int cmd_top(int argc, char *argv[]) {
1319 fprintf(stderr, "Too many arguments!\n");
1324 if(!connect_tincd(true))
1330 fprintf(stderr, "This version of tinc was compiled without support for the curses library.\n");
1335 static int cmd_pcap(int argc, char *argv[]) {
1337 fprintf(stderr, "Too many arguments!\n");
1341 if(!connect_tincd(true))
1344 pcap(fd, stdout, argc > 1 ? atoi(argv[1]) : 0);
1349 static void sigint_handler(int sig) {
1350 fprintf(stderr, "\n");
1351 shutdown(fd, SHUT_RDWR);
1355 static int cmd_log(int argc, char *argv[]) {
1357 fprintf(stderr, "Too many arguments!\n");
1361 if(!connect_tincd(true))
1365 signal(SIGINT, sigint_handler);
1368 logcontrol(fd, stdout, argc > 1 ? atoi(argv[1]) : -1);
1371 signal(SIGINT, SIG_DFL);
1379 static int cmd_pid(int argc, char *argv[]) {
1381 fprintf(stderr, "Too many arguments!\n");
1385 if(!connect_tincd(true) && !pid)
1388 printf("%d\n", pid);
1392 int rstrip(char *value) {
1393 int len = strlen(value);
1394 while(len && strchr("\t\r\n ", value[len - 1]))
1399 char *get_my_name(bool verbose) {
1400 FILE *f = fopen(tinc_conf, "r");
1403 fprintf(stderr, "Could not open %s: %s\n", tinc_conf, strerror(errno));
1409 while(fgets(buf, sizeof buf, f)) {
1410 int len = strcspn(buf, "\t =");
1412 value += strspn(value, "\t ");
1415 value += strspn(value, "\t ");
1420 if(strcasecmp(buf, "Name"))
1424 return replace_name(value);
1430 fprintf(stderr, "Could not find Name in %s.\n", tinc_conf);
1434 const var_t variables[] = {
1435 /* Server configuration */
1436 {"AddressFamily", VAR_SERVER},
1437 {"AutoConnect", VAR_SERVER | VAR_SAFE},
1438 {"BindToAddress", VAR_SERVER | VAR_MULTIPLE},
1439 {"BindToInterface", VAR_SERVER},
1440 {"Broadcast", VAR_SERVER | VAR_SAFE},
1441 {"BroadcastSubnet", VAR_SERVER | VAR_MULTIPLE | VAR_SAFE},
1442 {"ConnectTo", VAR_SERVER | VAR_MULTIPLE | VAR_SAFE},
1443 {"DecrementTTL", VAR_SERVER},
1444 {"Device", VAR_SERVER},
1445 {"DeviceStandby", VAR_SERVER},
1446 {"DeviceType", VAR_SERVER},
1447 {"DirectOnly", VAR_SERVER},
1448 {"Ed25519PrivateKeyFile", VAR_SERVER},
1449 {"ExperimentalProtocol", VAR_SERVER},
1450 {"Forwarding", VAR_SERVER},
1451 {"GraphDumpFile", VAR_SERVER | VAR_OBSOLETE},
1452 {"Hostnames", VAR_SERVER},
1453 {"IffOneQueue", VAR_SERVER},
1454 {"Interface", VAR_SERVER},
1455 {"KeyExpire", VAR_SERVER},
1456 {"ListenAddress", VAR_SERVER | VAR_MULTIPLE},
1457 {"LocalDiscovery", VAR_SERVER},
1458 {"MACExpire", VAR_SERVER},
1459 {"MaxConnectionBurst", VAR_SERVER},
1460 {"MaxOutputBufferSize", VAR_SERVER},
1461 {"MaxTimeout", VAR_SERVER},
1462 {"Mode", VAR_SERVER | VAR_SAFE},
1463 {"Name", VAR_SERVER},
1464 {"PingInterval", VAR_SERVER},
1465 {"PingTimeout", VAR_SERVER},
1466 {"PriorityInheritance", VAR_SERVER},
1467 {"PrivateKey", VAR_SERVER | VAR_OBSOLETE},
1468 {"PrivateKeyFile", VAR_SERVER},
1469 {"ProcessPriority", VAR_SERVER},
1470 {"Proxy", VAR_SERVER},
1471 {"ReplayWindow", VAR_SERVER},
1472 {"ScriptsExtension", VAR_SERVER},
1473 {"ScriptsInterpreter", VAR_SERVER},
1474 {"StrictSubnets", VAR_SERVER},
1475 {"TunnelServer", VAR_SERVER},
1476 {"UDPDiscovery", VAR_SERVER},
1477 {"UDPDiscoveryKeepaliveInterval", VAR_SERVER},
1478 {"UDPDiscoveryInterval", VAR_SERVER},
1479 {"UDPDiscoveryTimeout", VAR_SERVER},
1480 {"MTUInfoInterval", VAR_SERVER},
1481 {"UDPInfoInterval", VAR_SERVER},
1482 {"UDPRcvBuf", VAR_SERVER},
1483 {"UDPSndBuf", VAR_SERVER},
1484 {"VDEGroup", VAR_SERVER},
1485 {"VDEPort", VAR_SERVER},
1486 /* Host configuration */
1487 {"Address", VAR_HOST | VAR_MULTIPLE},
1488 {"Cipher", VAR_SERVER | VAR_HOST},
1489 {"ClampMSS", VAR_SERVER | VAR_HOST},
1490 {"Compression", VAR_SERVER | VAR_HOST},
1491 {"Digest", VAR_SERVER | VAR_HOST},
1492 {"Ed25519PublicKey", VAR_HOST},
1493 {"Ed25519PublicKeyFile", VAR_SERVER | VAR_HOST},
1494 {"IndirectData", VAR_SERVER | VAR_HOST},
1495 {"MACLength", VAR_SERVER | VAR_HOST},
1496 {"PMTU", VAR_SERVER | VAR_HOST},
1497 {"PMTUDiscovery", VAR_SERVER | VAR_HOST},
1499 {"PublicKey", VAR_HOST | VAR_OBSOLETE},
1500 {"PublicKeyFile", VAR_SERVER | VAR_HOST | VAR_OBSOLETE},
1501 {"Subnet", VAR_HOST | VAR_MULTIPLE | VAR_SAFE},
1502 {"TCPOnly", VAR_SERVER | VAR_HOST},
1503 {"Weight", VAR_HOST | VAR_SAFE},
1507 static int cmd_config(int argc, char *argv[]) {
1509 fprintf(stderr, "Invalid number of arguments.\n");
1513 if(strcasecmp(argv[0], "config"))
1517 if(!strcasecmp(argv[1], "get")) {
1519 } else if(!strcasecmp(argv[1], "add")) {
1520 argv++, argc--, action = 1;
1521 } else if(!strcasecmp(argv[1], "del")) {
1522 argv++, argc--, action = -1;
1523 } else if(!strcasecmp(argv[1], "replace") || !strcasecmp(argv[1], "set") || !strcasecmp(argv[1], "change")) {
1524 argv++, argc--, action = 0;
1528 fprintf(stderr, "Invalid number of arguments.\n");
1532 // Concatenate the rest of the command line
1533 strncpy(line, argv[1], sizeof line - 1);
1534 for(int i = 2; i < argc; i++) {
1535 strncat(line, " ", sizeof line - 1 - strlen(line));
1536 strncat(line, argv[i], sizeof line - 1 - strlen(line));
1539 // Liberal parsing into node name, variable name and value.
1545 len = strcspn(line, "\t =");
1547 value += strspn(value, "\t ");
1550 value += strspn(value, "\t ");
1553 variable = strchr(line, '.');
1562 fprintf(stderr, "No variable given.\n");
1566 if(action >= 0 && !*value) {
1567 fprintf(stderr, "No value for variable given.\n");
1571 if(action < -1 && *value)
1574 /* Some simple checks. */
1576 bool warnonremove = false;
1578 for(int i = 0; variables[i].name; i++) {
1579 if(strcasecmp(variables[i].name, variable))
1583 variable = (char *)variables[i].name;
1585 /* Discourage use of obsolete variables. */
1587 if(variables[i].type & VAR_OBSOLETE && action >= 0) {
1589 fprintf(stderr, "Warning: %s is an obsolete variable!\n", variable);
1591 fprintf(stderr, "%s is an obsolete variable! Use --force to use it anyway.\n", variable);
1596 /* Don't put server variables in host config files */
1598 if(node && !(variables[i].type & VAR_HOST) && action >= 0) {
1600 fprintf(stderr, "Warning: %s is not a host configuration variable!\n", variable);
1602 fprintf(stderr, "%s is not a host configuration variable! Use --force to use it anyway.\n", variable);
1607 /* Should this go into our own host config file? */
1609 if(!node && !(variables[i].type & VAR_SERVER)) {
1610 node = get_my_name(true);
1615 /* Change "add" into "set" for variables that do not allow multiple occurences.
1616 Turn on warnings when it seems variables might be removed unintentionally. */
1618 if(action == 1 && !(variables[i].type & VAR_MULTIPLE)) {
1619 warnonremove = true;
1621 } else if(action == 0 && (variables[i].type & VAR_MULTIPLE)) {
1622 warnonremove = true;
1628 if(node && !check_id(node)) {
1629 fprintf(stderr, "Invalid name for node.\n");
1634 if(force || action < 0) {
1635 fprintf(stderr, "Warning: %s is not a known configuration variable!\n", variable);
1637 fprintf(stderr, "%s: is not a known configuration variable! Use --force to use it anyway.\n", variable);
1642 // Open the right configuration file.
1643 char filename[PATH_MAX];
1645 snprintf(filename, sizeof filename, "%s" SLASH "%s", hosts_dir, node);
1647 snprintf(filename, sizeof filename, "%s", tinc_conf);
1649 FILE *f = fopen(filename, "r");
1651 fprintf(stderr, "Could not open configuration file %s: %s\n", filename, strerror(errno));
1655 char tmpfile[PATH_MAX];
1659 snprintf(tmpfile, sizeof tmpfile, "%s.config.tmp", filename);
1660 tf = fopen(tmpfile, "w");
1662 fprintf(stderr, "Could not open temporary file %s: %s\n", tmpfile, strerror(errno));
1668 // Copy the file, making modifications on the fly, unless we are just getting a value.
1672 bool removed = false;
1675 while(fgets(buf1, sizeof buf1, f)) {
1676 buf1[sizeof buf1 - 1] = 0;
1677 strncpy(buf2, buf1, sizeof buf2);
1679 // Parse line in a simple way
1683 len = strcspn(buf2, "\t =");
1684 bvalue = buf2 + len;
1685 bvalue += strspn(bvalue, "\t ");
1686 if(*bvalue == '=') {
1688 bvalue += strspn(bvalue, "\t ");
1694 if(!strcasecmp(buf2, variable)) {
1698 printf("%s\n", bvalue);
1700 } else if(action == -1) {
1701 if(!*value || !strcasecmp(bvalue, value)) {
1706 } else if(action == 0) {
1707 // Warn if "set" was used for variables that can occur multiple times
1708 if(warnonremove && strcasecmp(bvalue, value))
1709 fprintf(stderr, "Warning: removing %s = %s\n", variable, bvalue);
1711 // Already set? Delete the rest...
1715 // Otherwise, replace.
1716 if(fprintf(tf, "%s = %s\n", variable, value) < 0) {
1717 fprintf(stderr, "Error writing to temporary file %s: %s\n", tmpfile, strerror(errno));
1723 } else if(action > 0) {
1724 // Check if we've already seen this variable with the same value
1725 if(!strcasecmp(bvalue, value))
1731 // Copy original line...
1732 if(fputs(buf1, tf) < 0) {
1733 fprintf(stderr, "Error writing to temporary file %s: %s\n", tmpfile, strerror(errno));
1737 // Add newline if it is missing...
1738 if(*buf1 && buf1[strlen(buf1) - 1] != '\n') {
1739 if(fputc('\n', tf) < 0) {
1740 fprintf(stderr, "Error writing to temporary file %s: %s\n", tmpfile, strerror(errno));
1747 // Make sure we read everything...
1748 if(ferror(f) || !feof(f)) {
1749 fprintf(stderr, "Error while reading from configuration file %s: %s\n", filename, strerror(errno));
1754 fprintf(stderr, "Error closing configuration file %s: %s\n", filename, strerror(errno));
1758 // Add new variable if necessary.
1759 if((action > 0 && !found)|| (action == 0 && !set)) {
1760 if(fprintf(tf, "%s = %s\n", variable, value) < 0) {
1761 fprintf(stderr, "Error writing to temporary file %s: %s\n", tmpfile, strerror(errno));
1770 fprintf(stderr, "No matching configuration variables found.\n");
1775 // Make sure we wrote everything...
1777 fprintf(stderr, "Error closing temporary file %s: %s\n", tmpfile, strerror(errno));
1781 // Could we find what we had to remove?
1782 if(action < 0 && !removed) {
1784 fprintf(stderr, "No configuration variables deleted.\n");
1788 // Replace the configuration file with the new one
1790 if(remove(filename)) {
1791 fprintf(stderr, "Error replacing file %s: %s\n", filename, strerror(errno));
1795 if(rename(tmpfile, filename)) {
1796 fprintf(stderr, "Error renaming temporary file %s to configuration file %s: %s\n", tmpfile, filename, strerror(errno));
1800 // Silently try notifying a running tincd of changes.
1801 if(connect_tincd(false))
1802 sendline(fd, "%d %d", CONTROL, REQ_RELOAD);
1807 static bool try_bind(int port) {
1808 struct addrinfo *ai = NULL, *aip;
1809 struct addrinfo hint = {
1810 .ai_flags = AI_PASSIVE,
1811 .ai_family = AF_UNSPEC,
1812 .ai_socktype = SOCK_STREAM,
1813 .ai_protocol = IPPROTO_TCP,
1816 bool success = true;
1818 snprintf(portstr, sizeof portstr, "%d", port);
1820 if(getaddrinfo(NULL, portstr, &hint, &ai) || !ai)
1823 for(aip = ai; aip; aip = aip->ai_next) {
1824 int fd = socket(ai->ai_family, SOCK_STREAM, IPPROTO_TCP);
1830 int result = bind(fd, ai->ai_addr, ai->ai_addrlen);
1842 int check_port(char *name) {
1846 fprintf(stderr, "Warning: could not bind to port 655. ");
1848 for(int i = 0; i < 100; i++) {
1849 int port = 0x1000 + (rand() & 0x7fff);
1850 if(try_bind(port)) {
1851 char filename[PATH_MAX];
1852 snprintf(filename, sizeof filename, "%s" SLASH "hosts" SLASH "%s", confbase, name);
1853 FILE *f = fopen(filename, "a");
1855 fprintf(stderr, "Could not open %s: %s\n", filename, strerror(errno));
1856 fprintf(stderr, "Please change tinc's Port manually.\n");
1860 fprintf(f, "Port = %d\n", port);
1862 fprintf(stderr, "Tinc will instead listen on port %d.\n", port);
1867 fprintf(stderr, "Please change tinc's Port manually.\n");
1871 static int cmd_init(int argc, char *argv[]) {
1872 if(!access(tinc_conf, F_OK)) {
1873 fprintf(stderr, "Configuration file %s already exists!\n", tinc_conf);
1878 fprintf(stderr, "Too many arguments!\n");
1880 } else if(argc < 2) {
1883 fprintf(stderr, "Enter the Name you want your tinc node to have: ");
1884 if(!fgets(buf, sizeof buf, stdin)) {
1885 fprintf(stderr, "Error while reading stdin: %s\n", strerror(errno));
1888 int len = rstrip(buf);
1890 fprintf(stderr, "No name given!\n");
1895 fprintf(stderr, "No Name given!\n");
1899 name = strdup(argv[1]);
1901 fprintf(stderr, "No Name given!\n");
1906 if(!check_id(name)) {
1907 fprintf(stderr, "Invalid Name! Only a-z, A-Z, 0-9 and _ are allowed characters.\n");
1911 if(!confbase_given && mkdir(confdir, 0755) && errno != EEXIST) {
1912 fprintf(stderr, "Could not create directory %s: %s\n", confdir, strerror(errno));
1916 if(mkdir(confbase, 0777) && errno != EEXIST) {
1917 fprintf(stderr, "Could not create directory %s: %s\n", confbase, strerror(errno));
1921 if(mkdir(hosts_dir, 0777) && errno != EEXIST) {
1922 fprintf(stderr, "Could not create directory %s: %s\n", hosts_dir, strerror(errno));
1926 FILE *f = fopen(tinc_conf, "w");
1928 fprintf(stderr, "Could not create file %s: %s\n", tinc_conf, strerror(errno));
1932 fprintf(f, "Name = %s\n", name);
1935 #ifndef DISABLE_LEGACY
1936 if(!rsa_keygen(2048, false))
1940 if(!ed25519_keygen(false))
1946 char filename[PATH_MAX];
1947 snprintf(filename, sizeof filename, "%s" SLASH "tinc-up", confbase);
1948 if(access(filename, F_OK)) {
1949 FILE *f = fopenmask(filename, "w", 0777);
1951 fprintf(stderr, "Could not create file %s: %s\n", filename, strerror(errno));
1954 fprintf(f, "#!/bin/sh\n\necho 'Unconfigured tinc-up script, please edit '$0'!'\n\n#ifconfig $INTERFACE <your vpn IP address> netmask <netmask of whole VPN>\n");
1963 static int cmd_generate_keys(int argc, char *argv[]) {
1964 #ifdef DISABLE_LEGACY
1969 fprintf(stderr, "Too many arguments!\n");
1974 name = get_my_name(false);
1976 #ifndef DISABLE_LEGACY
1977 if(!rsa_keygen(argc > 1 ? atoi(argv[1]) : 2048, true))
1981 if(!ed25519_keygen(true))
1987 #ifndef DISABLE_LEGACY
1988 static int cmd_generate_rsa_keys(int argc, char *argv[]) {
1990 fprintf(stderr, "Too many arguments!\n");
1995 name = get_my_name(false);
1997 return !rsa_keygen(argc > 1 ? atoi(argv[1]) : 2048, true);
2001 static int cmd_generate_ed25519_keys(int argc, char *argv[]) {
2003 fprintf(stderr, "Too many arguments!\n");
2008 name = get_my_name(false);
2010 return !ed25519_keygen(true);
2013 static int cmd_help(int argc, char *argv[]) {
2018 static int cmd_version(int argc, char *argv[]) {
2020 fprintf(stderr, "Too many arguments!\n");
2028 static int cmd_info(int argc, char *argv[]) {
2030 fprintf(stderr, "Invalid number of arguments.\n");
2034 if(!connect_tincd(true))
2037 return info(fd, argv[1]);
2040 static const char *conffiles[] = {
2051 static int cmd_edit(int argc, char *argv[]) {
2053 fprintf(stderr, "Invalid number of arguments.\n");
2057 char filename[PATH_MAX] = "";
2059 if(strncmp(argv[1], "hosts" SLASH, 6)) {
2060 for(int i = 0; conffiles[i]; i++) {
2061 if(!strcmp(argv[1], conffiles[i])) {
2062 snprintf(filename, sizeof filename, "%s" SLASH "%s", confbase, argv[1]);
2071 snprintf(filename, sizeof filename, "%s" SLASH "%s", hosts_dir, argv[1]);
2072 char *dash = strchr(argv[1], '-');
2075 if((strcmp(dash, "up") && strcmp(dash, "down")) || !check_id(argv[1])) {
2076 fprintf(stderr, "Invalid configuration filename.\n");
2084 xasprintf(&command, "\"%s\" \"%s\"", getenv("VISUAL") ?: getenv("EDITOR") ?: "vi", filename);
2086 xasprintf(&command, "edit \"%s\"", filename);
2088 int result = system(command);
2093 // Silently try notifying a running tincd of changes.
2094 if(connect_tincd(false))
2095 sendline(fd, "%d %d", CONTROL, REQ_RELOAD);
2100 static int export(const char *name, FILE *out) {
2101 char filename[PATH_MAX];
2102 snprintf(filename, sizeof filename, "%s" SLASH "%s", hosts_dir, name);
2103 FILE *in = fopen(filename, "r");
2105 fprintf(stderr, "Could not open configuration file %s: %s\n", filename, strerror(errno));
2109 fprintf(out, "Name = %s\n", name);
2111 while(fgets(buf, sizeof buf, in)) {
2112 if(strcspn(buf, "\t =") != 4 || strncasecmp(buf, "Name", 4))
2117 fprintf(stderr, "Error while reading configuration file %s: %s\n", filename, strerror(errno));
2126 static int cmd_export(int argc, char *argv[]) {
2128 fprintf(stderr, "Too many arguments!\n");
2132 char *name = get_my_name(true);
2136 int result = export(name, stdout);
2144 static int cmd_export_all(int argc, char *argv[]) {
2146 fprintf(stderr, "Too many arguments!\n");
2150 DIR *dir = opendir(hosts_dir);
2152 fprintf(stderr, "Could not open host configuration directory %s: %s\n", hosts_dir, strerror(errno));
2160 while((ent = readdir(dir))) {
2161 if(!check_id(ent->d_name))
2167 printf("#---------------------------------------------------------------#\n");
2169 result |= export(ent->d_name, stdout);
2178 static int cmd_import(int argc, char *argv[]) {
2180 fprintf(stderr, "Too many arguments!\n");
2189 char filename[PATH_MAX] = "";
2191 bool firstline = true;
2193 while(fgets(buf, sizeof buf, in)) {
2194 if(sscanf(buf, "Name = %s", name) == 1) {
2197 if(!check_id(name)) {
2198 fprintf(stderr, "Invalid Name in input!\n");
2205 snprintf(filename, sizeof filename, "%s" SLASH "%s", hosts_dir, name);
2207 if(!force && !access(filename, F_OK)) {
2208 fprintf(stderr, "Host configuration file %s already exists, skipping.\n", filename);
2213 out = fopen(filename, "w");
2215 fprintf(stderr, "Error creating configuration file %s: %s\n", filename, strerror(errno));
2221 } else if(firstline) {
2222 fprintf(stderr, "Junk at the beginning of the input, ignoring.\n");
2227 if(!strcmp(buf, "#---------------------------------------------------------------#\n"))
2231 if(fputs(buf, out) < 0) {
2232 fprintf(stderr, "Error writing to host configuration file %s: %s\n", filename, strerror(errno));
2242 fprintf(stderr, "Imported %d host configuration files.\n", count);
2245 fprintf(stderr, "No host configuration files imported.\n");
2250 static int cmd_exchange(int argc, char *argv[]) {
2251 return cmd_export(argc, argv) ?: cmd_import(argc, argv);
2254 static int cmd_exchange_all(int argc, char *argv[]) {
2255 return cmd_export_all(argc, argv) ?: cmd_import(argc, argv);
2258 static int switch_network(char *name) {
2270 free(unixsocketname);
2271 unixsocketname = NULL;
2277 netname = strcmp(name, ".") ? xstrdup(name) : NULL;
2279 xasprintf(&tinc_conf, "%s" SLASH "tinc.conf", confbase);
2280 xasprintf(&hosts_dir, "%s" SLASH "hosts", confbase);
2281 xasprintf(&prompt, "%s> ", identname);
2286 static int cmd_network(int argc, char *argv[]) {
2288 fprintf(stderr, "Too many arguments!\n");
2293 return switch_network(argv[1]);
2295 DIR *dir = opendir(confdir);
2297 fprintf(stderr, "Could not read directory %s: %s\n", confdir, strerror(errno));
2302 while((ent = readdir(dir))) {
2303 if(*ent->d_name == '.')
2306 if(!strcmp(ent->d_name, "tinc.conf")) {
2311 char fname[PATH_MAX];
2312 snprintf(fname, sizeof fname, "%s/%s/tinc.conf", confdir, ent->d_name);
2313 if(!access(fname, R_OK))
2314 printf("%s\n", ent->d_name);
2322 static int cmd_fsck(int argc, char *argv[]) {
2324 fprintf(stderr, "Too many arguments!\n");
2328 return fsck(orig_argv[0]);
2331 static const struct {
2332 const char *command;
2333 int (*function)(int argc, char *argv[]);
2336 {"start", cmd_start},
2338 {"restart", cmd_restart},
2339 {"reload", cmd_reload},
2342 {"purge", cmd_purge},
2343 {"debug", cmd_debug},
2344 {"retry", cmd_retry},
2345 {"connect", cmd_connect},
2346 {"disconnect", cmd_disconnect},
2351 {"config", cmd_config, true},
2352 {"add", cmd_config},
2353 {"del", cmd_config},
2354 {"get", cmd_config},
2355 {"set", cmd_config},
2357 {"generate-keys", cmd_generate_keys},
2358 #ifndef DISABLE_LEGACY
2359 {"generate-rsa-keys", cmd_generate_rsa_keys},
2361 {"generate-ed25519-keys", cmd_generate_ed25519_keys},
2363 {"version", cmd_version},
2366 {"export", cmd_export},
2367 {"export-all", cmd_export_all},
2368 {"import", cmd_import},
2369 {"exchange", cmd_exchange},
2370 {"exchange-all", cmd_exchange_all},
2371 {"invite", cmd_invite},
2373 {"network", cmd_network},
2378 #ifdef HAVE_READLINE
2379 static char *complete_command(const char *text, int state) {
2387 while(commands[i].command) {
2388 if(!commands[i].hidden && !strncasecmp(commands[i].command, text, strlen(text)))
2389 return xstrdup(commands[i].command);
2396 static char *complete_dump(const char *text, int state) {
2397 const char *matches[] = {"reachable", "nodes", "edges", "subnets", "connections", "graph", NULL};
2406 if(!strncasecmp(matches[i], text, strlen(text)))
2407 return xstrdup(matches[i]);
2414 static char *complete_config(const char *text, int state) {
2422 while(variables[i].name) {
2423 char *dot = strchr(text, '.');
2425 if((variables[i].type & VAR_HOST) && !strncasecmp(variables[i].name, dot + 1, strlen(dot + 1))) {
2427 xasprintf(&match, "%.*s.%s", (int)(dot - text), text, variables[i].name);
2431 if(!strncasecmp(variables[i].name, text, strlen(text)))
2432 return xstrdup(variables[i].name);
2440 static char *complete_info(const char *text, int state) {
2444 if(!connect_tincd(false))
2446 // Check the list of nodes
2447 sendline(fd, "%d %d", CONTROL, REQ_DUMP_NODES);
2448 sendline(fd, "%d %d", CONTROL, REQ_DUMP_SUBNETS);
2451 while(recvline(fd, line, sizeof line)) {
2453 int n = sscanf(line, "%d %d %s", &code, &req, item);
2463 fprintf(stderr, "Unable to parse dump from tincd, n = %d, i = %d.\n", n, i);
2467 if(!strncmp(item, text, strlen(text)))
2468 return xstrdup(strip_weight(item));
2474 static char *complete_nothing(const char *text, int state) {
2478 static char **completion (const char *text, int start, int end) {
2479 char **matches = NULL;
2482 matches = rl_completion_matches(text, complete_command);
2483 else if(!strncasecmp(rl_line_buffer, "dump ", 5))
2484 matches = rl_completion_matches(text, complete_dump);
2485 else if(!strncasecmp(rl_line_buffer, "add ", 4))
2486 matches = rl_completion_matches(text, complete_config);
2487 else if(!strncasecmp(rl_line_buffer, "del ", 4))
2488 matches = rl_completion_matches(text, complete_config);
2489 else if(!strncasecmp(rl_line_buffer, "get ", 4))
2490 matches = rl_completion_matches(text, complete_config);
2491 else if(!strncasecmp(rl_line_buffer, "set ", 4))
2492 matches = rl_completion_matches(text, complete_config);
2493 else if(!strncasecmp(rl_line_buffer, "info ", 5))
2494 matches = rl_completion_matches(text, complete_info);
2500 static int cmd_shell(int argc, char *argv[]) {
2501 xasprintf(&prompt, "%s> ", identname);
2505 int maxargs = argc + 16;
2506 char **nargv = xmalloc(maxargs * sizeof *nargv);
2508 for(int i = 0; i < argc; i++)
2511 #ifdef HAVE_READLINE
2512 rl_readline_name = "tinc";
2513 rl_completion_entry_function = complete_nothing;
2514 rl_attempted_completion_function = completion;
2515 rl_filename_completion_desired = 0;
2520 #ifdef HAVE_READLINE
2524 rl_basic_word_break_characters = "\t\n ";
2525 line = readline(prompt);
2527 copy = xstrdup(line);
2529 line = fgets(buf, sizeof buf, stdin);
2533 fputs(prompt, stdout);
2535 line = fgets(buf, sizeof buf, stdin);
2541 /* Ignore comments */
2549 char *p = line + strspn(line, " \t\n");
2550 char *next = strtok(p, " \t\n");
2553 if(nargc >= maxargs) {
2554 fprintf(stderr, "next %p '%s', p %p '%s'\n", next, next, p, p);
2557 nargv = xrealloc(nargv, maxargs * sizeof *nargv);
2562 next = strtok(NULL, " \t\n");
2568 if(!strcasecmp(nargv[argc], "exit") || !strcasecmp(nargv[argc], "quit"))
2573 for(int i = 0; commands[i].command; i++) {
2574 if(!strcasecmp(nargv[argc], commands[i].command)) {
2575 result |= commands[i].function(nargc - argc - 1, nargv + argc + 1);
2581 #ifdef HAVE_READLINE
2587 fprintf(stderr, "Unknown command `%s'.\n", nargv[argc]);
2600 int main(int argc, char *argv[]) {
2601 program_name = argv[0];
2604 tty = isatty(0) && isatty(1);
2606 if(!parse_options(argc, argv))
2610 xasprintf(&tinc_conf, "%s" SLASH "tinc.conf", confbase);
2611 xasprintf(&hosts_dir, "%s" SLASH "hosts", confbase);
2624 static struct WSAData wsa_state;
2626 if(WSAStartup(MAKEWORD(2, 2), &wsa_state)) {
2627 fprintf(stderr, "System call `%s' failed: %s", "WSAStartup", winerror(GetLastError()));
2636 return cmd_shell(argc, argv);
2638 for(int i = 0; commands[i].command; i++) {
2639 if(!strcasecmp(argv[optind], commands[i].command))
2640 return commands[i].function(argc - optind, argv + optind);
2643 fprintf(stderr, "Unknown command `%s'.\n", argv[optind]);