add uci support for "proxy-dnssec" in dnsmasq
[openwrt/svn-archive/archive.git] / package / network / services / dnsmasq / files / dnsmasq.init
1 #!/bin/sh /etc/rc.common
2 # Copyright (C) 2007-2012 OpenWrt.org
3
4 START=60
5
6 SERVICE_USE_PID=1
7
8 DNS_SERVERS=""
9 DOMAIN=""
10
11 ADD_LOCAL_DOMAIN=1
12 ADD_LOCAL_HOSTNAME=1
13
14 CONFIGFILE="/var/etc/dnsmasq.conf"
15
16 xappend() {
17 local value="$1"
18
19 echo "${value#--}" >> $CONFIGFILE
20 }
21
22 dhcp_calc() {
23 local ip="$1"
24 local res=0
25
26 while [ -n "$ip" ]; do
27 part="${ip%%.*}"
28 res="$(($res * 256))"
29 res="$(($res + $part))"
30 [ "${ip%.*}" != "$ip" ] && ip="${ip#*.}" || ip=
31 done
32 echo "$res"
33 }
34
35 append_bool() {
36 local section="$1"
37 local option="$2"
38 local value="$3"
39 local _loctmp
40 config_get_bool _loctmp "$section" "$option" 0
41 [ $_loctmp -gt 0 ] && xappend "$value"
42 }
43
44 append_parm() {
45 local section="$1"
46 local option="$2"
47 local switch="$3"
48 local _loctmp
49 config_get _loctmp "$section" "$option"
50 [ -z "$_loctmp" ] && return 0
51 xappend "$switch=$_loctmp"
52 }
53
54 append_server() {
55 xappend "--server=$1"
56 }
57
58 append_address() {
59 xappend "--address=$1"
60 }
61
62 append_interface() {
63 local ifname=$(uci_get_state network "$1" ifname "$1")
64 xappend "--interface=$ifname"
65 }
66
67 append_notinterface() {
68 local ifname=$(uci_get_state network "$1" ifname "$1")
69 xappend "--except-interface=$ifname"
70 }
71
72 append_addnhosts() {
73 xappend "--addn-hosts=$1"
74 }
75
76 append_bogusnxdomain() {
77 xappend "--bogus-nxdomain=$1"
78 }
79
80 dnsmasq() {
81 local cfg="$1"
82 append_bool "$cfg" authoritative "--dhcp-authoritative"
83 append_bool "$cfg" nodaemon "--no-daemon"
84 append_bool "$cfg" domainneeded "--domain-needed"
85 append_bool "$cfg" filterwin2k "--filterwin2k"
86 append_bool "$cfg" nohosts "--no-hosts"
87 append_bool "$cfg" nonegcache "--no-negcache"
88 append_bool "$cfg" strictorder "--strict-order"
89 append_bool "$cfg" logqueries "--log-queries"
90 append_bool "$cfg" noresolv "--no-resolv"
91 append_bool "$cfg" localise_queries "--localise-queries"
92 append_bool "$cfg" readethers "--read-ethers"
93 append_bool "$cfg" dbus "--enable-dbus"
94 append_bool "$cfg" boguspriv "--bogus-priv"
95 append_bool "$cfg" expandhosts "--expand-hosts"
96 append_bool "$cfg" enable_tftp "--enable-tftp"
97 append_bool "$cfg" nonwildcard "--bind-interfaces"
98 append_bool "$cfg" fqdn "--dhcp-fqdn"
99 append_bool "$cfg" proxydnssec "--proxy-dnssec"
100
101 append_parm "$cfg" dhcpscript "--dhcp-script"
102 append_parm "$cfg" cachesize "--cache-size"
103 append_parm "$cfg" dnsforwardmax "--dns-forward-max"
104 append_parm "$cfg" port "--port"
105 append_parm "$cfg" ednspacket_max "--edns-packet-max"
106 append_parm "$cfg" dhcpleasemax "--dhcp-lease-max"
107 append_parm "$cfg" "queryport" "--query-port"
108 append_parm "$cfg" "domain" "--domain"
109 append_parm "$cfg" "local" "--server"
110 config_list_foreach "$cfg" "server" append_server
111 config_list_foreach "$cfg" "address" append_address
112 config_list_foreach "$cfg" "interface" append_interface
113 config_list_foreach "$cfg" "notinterface" append_notinterface
114 config_list_foreach "$cfg" "addnhosts" append_addnhosts
115 config_list_foreach "$cfg" "bogusnxdomain" append_bogusnxdomain
116 append_parm "$cfg" "leasefile" "--dhcp-leasefile"
117 append_parm "$cfg" "resolvfile" "--resolv-file"
118 append_parm "$cfg" "tftp_root" "--tftp-root"
119 append_parm "$cfg" "dhcp_boot" "--dhcp-boot"
120 append_parm "$cfg" "local_ttl" "--local-ttl"
121
122 config_get DOMAIN "$cfg" domain
123
124 config_get_bool ADD_LOCAL_DOMAIN "$cfg" add_local_domain 1
125 config_get_bool ADD_LOCAL_HOSTNAME "$cfg" add_local_hostname 1
126
127 config_get_bool readethers "$cfg" readethers
128 [ "$readethers" = "1" -a \! -e "/etc/ethers" ] && touch /etc/ethers
129
130 config_get leasefile $cfg leasefile
131 [ -n "$leasefile" -a \! -e "$leasefile" ] && touch "$leasefile"
132 config_get_bool cachelocal "$cfg" cachelocal 1
133
134 config_get hostsfile "$cfg" dhcphostsfile
135 [ -e "$hostsfile" ] && xappend "--dhcp-hostsfile=$hostsfile"
136
137 local rebind
138 config_get_bool rebind "$cfg" rebind_protection 1
139 [ $rebind -gt 0 ] && {
140 logger -t dnsmasq \
141 "DNS rebinding protection is active," \
142 "will discard upstream RFC1918 responses!"
143 xappend "--stop-dns-rebind"
144
145 local rebind_localhost
146 config_get_bool rebind_localhost "$cfg" rebind_localhost 0
147 [ $rebind_localhost -gt 0 ] && {
148 logger -t dnsmasq "Allowing 127.0.0.0/8 responses"
149 xappend "--rebind-localhost-ok"
150 }
151
152 append_rebind_domain() {
153 logger -t dnsmasq "Allowing RFC1918 responses for domain $1"
154 xappend "--rebind-domain-ok=$1"
155 }
156
157 config_list_foreach "$cfg" rebind_domain append_rebind_domain
158 }
159
160 dhcp_option_add "$cfg" "" 0
161
162 echo >> $CONFIGFILE
163 }
164
165 dhcp_subscrid_add() {
166 local cfg="$1"
167
168 config_get networkid "$cfg" networkid
169 [ -n "$networkid" ] || return 0
170
171 config_get subscriberid "$cfg" subscriberid
172 [ -n "$subscriberid" ] || return 0
173
174 xappend "--dhcp-subscrid=$networkid,$subscriberid"
175
176 config_get_bool force "$cfg" force 0
177
178 dhcp_option_add "$cfg" "$networkid" "$force"
179 }
180
181 dhcp_remoteid_add() {
182 local cfg="$1"
183
184 config_get networkid "$cfg" networkid
185 [ -n "$networkid" ] || return 0
186
187 config_get remoteid "$cfg" remoteid
188 [ -n "$remoteid" ] || return 0
189
190 xappend "--dhcp-remoteid=$networkid,$remoteid"
191
192 config_get_bool force "$cfg" force 0
193
194 dhcp_option_add "$cfg" "$networkid" "$force"
195 }
196
197 dhcp_circuitid_add() {
198 local cfg="$1"
199
200 config_get networkid "$cfg" networkid
201 [ -n "$networkid" ] || return 0
202
203 config_get circuitid "$cfg" circuitid
204 [ -n "$circuitid" ] || return 0
205
206 xappend "--dhcp-circuitid=$networkid,$circuitid"
207
208 config_get_bool force "$cfg" force 0
209
210 dhcp_option_add "$cfg" "$networkid" "$force"
211 }
212
213 dhcp_userclass_add() {
214 local cfg="$1"
215
216 config_get networkid "$cfg" networkid
217 [ -n "$networkid" ] || return 0
218
219 config_get userclass "$cfg" userclass
220 [ -n "$userclass" ] || return 0
221
222 xappend "--dhcp-userclass=$networkid,$userclass"
223
224 config_get_bool force "$cfg" force 0
225
226 dhcp_option_add "$cfg" "$networkid" "$force"
227 }
228
229 dhcp_vendorclass_add() {
230 local cfg="$1"
231
232 config_get networkid "$cfg" networkid
233 [ -n "$networkid" ] || return 0
234
235 config_get vendorclass "$cfg" vendorclass
236 [ -n "$vendorclass" ] || return 0
237
238 xappend "--dhcp-vendorclass=$networkid,$vendorclass"
239
240 config_get_bool force "$cfg" force 0
241
242 dhcp_option_add "$cfg" "$networkid" "$force"
243 }
244
245 dhcp_host_add() {
246 local cfg="$1"
247
248 config_get_bool force "$cfg" force 0
249
250 config_get networkid "$cfg" networkid
251 [ -n "$networkid" ] && dhcp_option_add "$cfg" "$networkid" "$force"
252
253 config_get name "$cfg" name
254 config_get ip "$cfg" ip
255 [ -n "$ip" -o -n "$name" ] || return 0
256
257 config_get mac "$cfg" mac
258 [ -z "$mac" ] && {
259 [ -n "$name" ] || return 0
260 mac="$name"
261 name=""
262 }
263
264 macs=""
265 for m in $mac; do append macs "$m" ","; done
266
267 config_get tag "$cfg" tag
268
269 xappend "--dhcp-host=$macs${networkid:+,net:$networkid}${tag:+,set:$tag}${ip:+,$ip}${name:+,$name}"
270 }
271
272 dhcp_tag_add() {
273 local cfg="$1"
274
275 tag="$cfg"
276
277 [ -n "$tag" ] || return 0
278
279 config_get_bool force "$cfg" force 0
280 [ "$force" = "0" ] && force=
281
282 config_get option "$cfg" dhcp_option
283 for o in $option; do
284 xappend "--dhcp-option${force:+-force}=tag:$tag,$o"
285 done
286 }
287
288 dhcp_mac_add() {
289 local cfg="$1"
290
291 config_get networkid "$cfg" networkid
292 [ -n "$networkid" ] || return 0
293
294 config_get mac "$cfg" mac
295 [ -n "$mac" ] || return 0
296
297 xappend "--dhcp-mac=$networkid,$mac"
298
299 dhcp_option_add "$cfg" "$networkid"
300 }
301
302 dhcp_boot_add() {
303 local cfg="$1"
304
305 config_get networkid "$cfg" networkid
306
307 config_get filename "$cfg" filename
308 [ -n "$filename" ] || return 0
309
310 config_get servername "$cfg" servername
311 [ -n "$servername" ] || return 0
312
313 config_get serveraddress "$cfg" serveraddress
314 [ -n "$serveraddress" ] || return 0
315
316 xappend "--dhcp-boot=${networkid:+net:$networkid,}$filename,$servername,$serveraddress"
317
318 config_get_bool force "$cfg" force 0
319
320 dhcp_option_add "$cfg" "$networkid" "$force"
321 }
322
323
324 dhcp_add() {
325 local cfg="$1"
326 config_get net "$cfg" interface
327 [ -n "$net" ] || return 0
328
329 config_get networkid "$cfg" networkid
330 [ -n "$networkid" ] || networkid="$net"
331
332 config_get ifname "$net" ifname
333 [ -n "$ifname" ] || return 0
334
335 config_get dnsserver "$net" dns
336 [ "$cachelocal" = "0" -a -n "$dnsserver" ] && {
337 DNS_SERVERS="$DNS_SERVERS $dnsserver"
338 }
339
340 append_bool "$cfg" ignore "--no-dhcp-interface=$ifname" && return 0
341
342 config_get proto "$net" proto
343 [ static = "$proto" ] || return 0
344
345 config_get ipaddr "$net" ipaddr
346 config_get netmask "$cfg" netmask
347 [ -n "$netmask" ] || config_get netmask "$net" netmask
348
349 #check for an already active dhcp server on the interface, unless 'force' is set
350 config_get_bool force "$cfg" force 0
351 [ $force -gt 0 ] || {
352 udhcpc -n -q -s /bin/true -t 1 -i $ifname >&- && {
353 logger -t dnsmasq \
354 "found already running DHCP-server on interface '$ifname'" \
355 "refusing to start, use 'option force 1' to override"
356 return 0
357 }
358 }
359
360 config_get start "$cfg" start
361 config_get limit "$cfg" limit
362 config_get leasetime "$cfg" leasetime
363 config_get options "$cfg" options
364 config_get_bool dynamicdhcp "$cfg" dynamicdhcp 1
365
366 leasetime="${leasetime:-12h}"
367 start="$(dhcp_calc "${start:-100}")"
368 limit="${limit:-150}"
369 [ "$limit" -gt 0 ] && limit=$((limit-1))
370 eval "$(ipcalc.sh $ipaddr $netmask $start $limit)"
371 if [ "$dynamicdhcp" = "0" ]; then END="static"; fi
372 xappend "--dhcp-range=$networkid,$START,$END,$NETMASK,$leasetime${options:+ $options}"
373
374 dhcp_option_add "$cfg" "$networkid"
375 }
376
377 dhcp_option_add() {
378 local cfg="$1"
379 local networkid="$2"
380 local force="$3"
381
382 [ "$force" = "0" ] && force=
383
384 config_get dhcp_option "$cfg" dhcp_option
385 for o in $dhcp_option; do
386 xappend "--dhcp-option${force:+-force}=${networkid:+$networkid,}$o"
387 done
388
389 }
390
391 dhcp_domain_add() {
392 local cfg="$1"
393 local ip name names
394
395 config_get names "$cfg" name "$2"
396 [ -n "$names" ] || return 0
397
398 config_get ip "$cfg" ip "$3"
399 [ -n "$ip" ] || return 0
400
401 local oIFS="$IFS"; IFS="."; set -- $ip; IFS="$oIFS"
402 local raddr="${4:+$4.$3.$2.$1.in-addr.arpa}"
403
404 for name in $names; do
405 local fqdn="$name"
406
407 [ "${fqdn%.*}" == "$fqdn" ] && \
408 fqdn="$fqdn${DOMAIN:+.$DOMAIN}"
409
410 xappend "--address=/$fqdn/$ip"
411
412 [ -n "$raddr" ] && {
413 xappend "--ptr-record=$raddr,$fqdn"
414 raddr=""
415 }
416 done
417 }
418
419 dhcp_srv_add() {
420 local cfg="$1"
421
422 config_get srv "$cfg" srv
423 [ -n "$srv" ] || return 0
424
425 config_get target "$cfg" target
426 [ -n "$target" ] || return 0
427
428 config_get port "$cfg" port
429 [ -n "$port" ] || return 0
430
431 config_get class "$cfg" class
432 config_get weight "$cfg" weight
433
434 local service="$srv,$target,$port${class:+,$class${weight:+,$weight}}"
435
436 xappend "--srv-host=$service"
437 }
438
439 dhcp_mx_add() {
440 local cfg="$1"
441 local domain relay pref
442
443 config_get domain "$cfg" domain
444 [ -n "$domain" ] || return 0
445
446 config_get relay "$cfg" relay
447 [ -n "$relay" ] || return 0
448
449 config_get pref "$cfg" pref 0
450
451 local service="$domain,$relay,$pref"
452
453 xappend "--mx-host=$service"
454 }
455
456 dhcp_cname_add() {
457 local cfg="$1"
458 local cname target
459
460 config_get cname "$cfg" cname
461 [ -n "$cname" ] || return 0
462
463 config_get target "$cfg" target
464 [ -n "$target" ] || return 0
465
466 xappend "--cname=${cname},${target}"
467 }
468
469 start() {
470 include /lib/network
471 scan_interfaces
472
473 local lanaddr
474 config_get lanaddr "lan" ipaddr
475
476 config_load dhcp
477
478 # before we can call xappend
479 mkdir -p $(dirname $CONFIGFILE)
480
481 echo "# auto-generated config file from /etc/config/dhcp" > $CONFIGFILE
482
483 # if we did this last, we could override auto-generated config
484 [ -f /etc/dnsmasq.conf ] && {
485 xappend "--conf-file=/etc/dnsmasq.conf"
486 }
487
488 args=""
489 config_foreach dnsmasq dnsmasq
490 config_foreach dhcp_host_add host
491 echo >> $CONFIGFILE
492 config_foreach dhcp_boot_add boot
493 config_foreach dhcp_mac_add mac
494 config_foreach dhcp_tag_add tag
495 config_foreach dhcp_vendorclass_add vendorclass
496 config_foreach dhcp_userclass_add userclass
497 config_foreach dhcp_circuitid_add circuitid
498 config_foreach dhcp_remoteid_add remoteid
499 config_foreach dhcp_subscrid_add subscrid
500 config_foreach dhcp_domain_add domain
501 echo >> $CONFIGFILE
502 config_foreach dhcp_srv_add srvhost
503 config_foreach dhcp_mx_add mxhost
504 echo >> $CONFIGFILE
505 config_foreach dhcp_add dhcp
506 echo >> $CONFIGFILE
507 config_foreach dhcp_cname_add cname
508 echo >> $CONFIGFILE
509
510 # add own hostname
511 [ $ADD_LOCAL_HOSTNAME -eq 1 ] && [ -n "$lanaddr" ] && {
512 local hostname="$(uci_get system.@system[0].hostname)"
513 dhcp_domain_add "" "${hostname:-OpenWrt}" "$lanaddr"
514 }
515
516 service_start /usr/sbin/dnsmasq -C $CONFIGFILE && {
517 rm -f /tmp/resolv.conf
518 [ $ADD_LOCAL_DOMAIN -eq 1 ] && [ -n "$DOMAIN" ] && {
519 echo "search $DOMAIN" >> /tmp/resolv.conf
520 }
521 DNS_SERVERS="$DNS_SERVERS 127.0.0.1"
522 for DNS_SERVER in $DNS_SERVERS ; do
523 echo "nameserver $DNS_SERVER" >> /tmp/resolv.conf
524 done
525 }
526 }
527
528 stop() {
529 service_stop /usr/sbin/dnsmasq && {
530 [ -f /tmp/resolv.conf ] && {
531 rm -f /tmp/resolv.conf
532 ln -s /tmp/resolv.conf.auto /tmp/resolv.conf
533 }
534 }
535 }