uci: tighten uci set operation error handling
[project/rpcd.git] / uci.c
1 /*
2 * rpcd - UBUS RPC server
3 *
4 * Copyright (C) 2013-2014 Jo-Philipp Wich <jow@openwrt.org>
5 *
6 * Permission to use, copy, modify, and/or distribute this software for any
7 * purpose with or without fee is hereby granted, provided that the above
8 * copyright notice and this permission notice appear in all copies.
9 *
10 * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
11 * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
12 * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
13 * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
14 * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
15 * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
16 * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
17 */
18
19 #include <libgen.h>
20 #include <glob.h>
21
22 #include <libubox/blobmsg.h>
23 #include <libubox/blobmsg_json.h>
24
25 #include <rpcd/uci.h>
26 #include <rpcd/exec.h>
27 #include <rpcd/session.h>
28
29 static struct blob_buf buf;
30 static struct uci_context *cursor;
31 static struct uloop_timeout apply_timer;
32 static struct ubus_context *apply_ctx;
33
34 char apply_sid[RPC_SID_LEN + 1];
35
36 enum {
37 RPC_G_CONFIG,
38 RPC_G_SECTION,
39 RPC_G_OPTION,
40 RPC_G_TYPE,
41 RPC_G_MATCH,
42 RPC_G_SESSION,
43 __RPC_G_MAX,
44 };
45
46 static const struct blobmsg_policy rpc_uci_get_policy[__RPC_G_MAX] = {
47 [RPC_G_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
48 [RPC_G_SECTION] = { .name = "section", .type = BLOBMSG_TYPE_STRING },
49 [RPC_G_OPTION] = { .name = "option", .type = BLOBMSG_TYPE_STRING },
50 [RPC_G_TYPE] = { .name = "type", .type = BLOBMSG_TYPE_STRING },
51 [RPC_G_MATCH] = { .name = "match", .type = BLOBMSG_TYPE_TABLE },
52 [RPC_G_SESSION] = { .name = "ubus_rpc_session",
53 .type = BLOBMSG_TYPE_STRING },
54 };
55
56 enum {
57 RPC_A_CONFIG,
58 RPC_A_TYPE,
59 RPC_A_NAME,
60 RPC_A_VALUES,
61 RPC_A_SESSION,
62 __RPC_A_MAX,
63 };
64
65 static const struct blobmsg_policy rpc_uci_add_policy[__RPC_A_MAX] = {
66 [RPC_A_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
67 [RPC_A_TYPE] = { .name = "type", .type = BLOBMSG_TYPE_STRING },
68 [RPC_A_NAME] = { .name = "name", .type = BLOBMSG_TYPE_STRING },
69 [RPC_A_VALUES] = { .name = "values", .type = BLOBMSG_TYPE_TABLE },
70 [RPC_A_SESSION] = { .name = "ubus_rpc_session",
71 .type = BLOBMSG_TYPE_STRING },
72 };
73
74 enum {
75 RPC_S_CONFIG,
76 RPC_S_SECTION,
77 RPC_S_TYPE,
78 RPC_S_MATCH,
79 RPC_S_VALUES,
80 RPC_S_SESSION,
81 __RPC_S_MAX,
82 };
83
84 static const struct blobmsg_policy rpc_uci_set_policy[__RPC_S_MAX] = {
85 [RPC_S_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
86 [RPC_S_SECTION] = { .name = "section", .type = BLOBMSG_TYPE_STRING },
87 [RPC_S_TYPE] = { .name = "type", .type = BLOBMSG_TYPE_STRING },
88 [RPC_S_MATCH] = { .name = "match", .type = BLOBMSG_TYPE_TABLE },
89 [RPC_S_VALUES] = { .name = "values", .type = BLOBMSG_TYPE_TABLE },
90 [RPC_S_SESSION] = { .name = "ubus_rpc_session",
91 .type = BLOBMSG_TYPE_STRING },
92 };
93
94 enum {
95 RPC_D_CONFIG,
96 RPC_D_SECTION,
97 RPC_D_TYPE,
98 RPC_D_MATCH,
99 RPC_D_OPTION,
100 RPC_D_OPTIONS,
101 RPC_D_SESSION,
102 __RPC_D_MAX,
103 };
104
105 static const struct blobmsg_policy rpc_uci_delete_policy[__RPC_D_MAX] = {
106 [RPC_D_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
107 [RPC_D_SECTION] = { .name = "section", .type = BLOBMSG_TYPE_STRING },
108 [RPC_D_TYPE] = { .name = "type", .type = BLOBMSG_TYPE_STRING },
109 [RPC_D_MATCH] = { .name = "match", .type = BLOBMSG_TYPE_TABLE },
110 [RPC_D_OPTION] = { .name = "option", .type = BLOBMSG_TYPE_STRING },
111 [RPC_D_OPTIONS] = { .name = "options", .type = BLOBMSG_TYPE_ARRAY },
112 [RPC_D_SESSION] = { .name = "ubus_rpc_session",
113 .type = BLOBMSG_TYPE_STRING },
114 };
115
116 enum {
117 RPC_R_CONFIG,
118 RPC_R_SECTION,
119 RPC_R_OPTION,
120 RPC_R_NAME,
121 RPC_R_SESSION,
122 __RPC_R_MAX,
123 };
124
125 static const struct blobmsg_policy rpc_uci_rename_policy[__RPC_R_MAX] = {
126 [RPC_R_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
127 [RPC_R_SECTION] = { .name = "section", .type = BLOBMSG_TYPE_STRING },
128 [RPC_R_OPTION] = { .name = "option", .type = BLOBMSG_TYPE_STRING },
129 [RPC_R_NAME] = { .name = "name", .type = BLOBMSG_TYPE_STRING },
130 [RPC_R_SESSION] = { .name = "ubus_rpc_session",
131 .type = BLOBMSG_TYPE_STRING },
132 };
133
134 enum {
135 RPC_O_CONFIG,
136 RPC_O_SECTIONS,
137 RPC_O_SESSION,
138 __RPC_O_MAX,
139 };
140
141 static const struct blobmsg_policy rpc_uci_order_policy[__RPC_O_MAX] = {
142 [RPC_O_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
143 [RPC_O_SECTIONS] = { .name = "sections", .type = BLOBMSG_TYPE_ARRAY },
144 [RPC_O_SESSION] = { .name = "ubus_rpc_session",
145 .type = BLOBMSG_TYPE_STRING },
146 };
147
148 enum {
149 RPC_C_CONFIG,
150 RPC_C_SESSION,
151 __RPC_C_MAX,
152 };
153
154 static const struct blobmsg_policy rpc_uci_config_policy[__RPC_C_MAX] = {
155 [RPC_C_CONFIG] = { .name = "config", .type = BLOBMSG_TYPE_STRING },
156 [RPC_C_SESSION] = { .name = "ubus_rpc_session",
157 .type = BLOBMSG_TYPE_STRING },
158 };
159
160 enum {
161 RPC_T_ROLLBACK,
162 RPC_T_TIMEOUT,
163 RPC_T_SESSION,
164 __RPC_T_MAX,
165 };
166
167 static const struct blobmsg_policy rpc_uci_apply_policy[__RPC_T_MAX] = {
168 [RPC_T_ROLLBACK] = { .name = "rollback", .type = BLOBMSG_TYPE_BOOL },
169 [RPC_T_TIMEOUT] = { .name = "timeout", .type = BLOBMSG_TYPE_INT32 },
170 [RPC_T_SESSION] = { .name = "ubus_rpc_session",
171 .type = BLOBMSG_TYPE_STRING },
172 };
173
174 enum {
175 RPC_B_SESSION,
176 __RPC_B_MAX,
177 };
178
179 static const struct blobmsg_policy rpc_uci_rollback_policy[__RPC_B_MAX] = {
180 [RPC_B_SESSION] = { .name = "ubus_rpc_session",
181 .type = BLOBMSG_TYPE_STRING },
182 };
183
184 /*
185 * Validate a uci name
186 */
187 static bool
188 rpc_uci_verify_str(const char *name, bool extended, bool type)
189 {
190 const char *c;
191 char *e;
192
193 if (!name || !*name)
194 return false;
195
196 if (extended && *name != '@')
197 extended = false;
198
199 for (c = name + extended; *c; c++)
200 if (!isalnum(*c) && *c != '_' && ((!type && !extended) || *c != '-'))
201 break;
202
203 if (extended) {
204 if (*c != '[')
205 return false;
206
207 strtol(++c, &e, 10);
208
209 return (e > c && *e == ']' && *(e+1) == 0);
210 }
211
212 return (*c == 0);
213 }
214
215 /*
216 * Check that string is a valid, shell compatible uci name
217 */
218 static bool rpc_uci_verify_name(const char *name) {
219 return rpc_uci_verify_str(name, false, false);
220 }
221
222 /*
223 * Check that string is a valid section type name
224 */
225 static bool rpc_uci_verify_type(const char *type) {
226 return rpc_uci_verify_str(type, false, true);
227 }
228
229 /*
230 * Check that the string is a valid section id, optionally in extended
231 * lookup notation
232 */
233 static bool rpc_uci_verify_section(const char *section) {
234 return rpc_uci_verify_str(section, true, false);
235 }
236
237
238 /*
239 * Turn uci error state into ubus return code
240 */
241 static int
242 rpc_uci_status(void)
243 {
244 switch (cursor->err)
245 {
246 case UCI_OK:
247 return UBUS_STATUS_OK;
248
249 case UCI_ERR_INVAL:
250 return UBUS_STATUS_INVALID_ARGUMENT;
251
252 case UCI_ERR_NOTFOUND:
253 return UBUS_STATUS_NOT_FOUND;
254
255 default:
256 return UBUS_STATUS_UNKNOWN_ERROR;
257 }
258 }
259
260 /*
261 * Clear all save directories from the uci cursor and append the given path
262 * as new save directory.
263 */
264 static void
265 rpc_uci_replace_savedir(const char *path)
266 {
267 struct uci_element *e, *tmp;
268
269 uci_foreach_element_safe(&cursor->delta_path, tmp, e) {
270 if (e->name)
271 free(e->name);
272
273 free(e);
274 }
275
276 cursor->delta_path.prev = &cursor->delta_path;
277 cursor->delta_path.next = &cursor->delta_path;
278
279 if (path)
280 uci_set_savedir(cursor, path);
281 }
282
283 /*
284 * Setup per-session delta save directory. If the passed "sid" blob attribute
285 * pointer is NULL then the precedure was not invoked through the ubus-rpc so
286 * we do not perform session isolation and use the default save directory.
287 */
288 static void
289 rpc_uci_set_savedir(struct blob_attr *sid)
290 {
291 char path[PATH_MAX];
292
293 if (!sid)
294 {
295 rpc_uci_replace_savedir("/tmp/.uci");
296 return;
297 }
298
299 snprintf(path, sizeof(path) - 1,
300 RPC_UCI_SAVEDIR_PREFIX "%s", blobmsg_get_string(sid));
301
302 rpc_uci_replace_savedir(path);
303 }
304
305 /*
306 * Test read access to given config. If the passed "sid" blob attribute pointer
307 * is NULL then the precedure was not invoked through the ubus-rpc so we do not
308 * perform access control and always assume true.
309 */
310 static bool
311 rpc_uci_read_access(struct blob_attr *sid, struct blob_attr *config)
312 {
313 rpc_uci_set_savedir(sid);
314
315 if (!sid)
316 return true;
317
318 return rpc_session_access(blobmsg_data(sid), "uci",
319 blobmsg_data(config), "read");
320 }
321
322 /*
323 * Test write access to given config. If the passed "sid" blob attribute pointer
324 * is NULL then the precedure was not invoked through the ubus-rpc so we do not
325 * perform access control and always assume true.
326 */
327 static bool
328 rpc_uci_write_access(struct blob_attr *sid, struct blob_attr *config)
329 {
330 rpc_uci_set_savedir(sid);
331
332 if (!sid)
333 return true;
334
335 return rpc_session_access(blobmsg_data(sid), "uci",
336 blobmsg_data(config), "write");
337 }
338
339 /*
340 * Format applicable blob value as string and place a pointer to the string
341 * buffer in "p". Uses a static string buffer.
342 */
343 static bool
344 rpc_uci_format_blob(struct blob_attr *v, const char **p)
345 {
346 static char buf[21];
347
348 *p = NULL;
349
350 switch (blobmsg_type(v))
351 {
352 case BLOBMSG_TYPE_STRING:
353 *p = blobmsg_data(v);
354 break;
355
356 case BLOBMSG_TYPE_INT64:
357 snprintf(buf, sizeof(buf), "%"PRIu64, blobmsg_get_u64(v));
358 *p = buf;
359 break;
360
361 case BLOBMSG_TYPE_INT32:
362 snprintf(buf, sizeof(buf), "%u", blobmsg_get_u32(v));
363 *p = buf;
364 break;
365
366 case BLOBMSG_TYPE_INT16:
367 snprintf(buf, sizeof(buf), "%u", blobmsg_get_u16(v));
368 *p = buf;
369 break;
370
371 case BLOBMSG_TYPE_INT8:
372 snprintf(buf, sizeof(buf), "%u", !!blobmsg_get_u8(v));
373 *p = buf;
374 break;
375
376 default:
377 break;
378 }
379
380 return !!*p;
381 }
382
383 /*
384 * Lookup the given uci_ptr and enable extended lookup format if the .section
385 * value of the uci_ptr looks like extended syntax. Uses an internal copy
386 * of the given uci_ptr to perform the lookup as failing extended section
387 * lookup operations in libuci will zero our the uci_ptr struct.
388 * Copies the internal uci_ptr back to given the uci_ptr on success.
389 */
390 static int
391 rpc_uci_lookup(struct uci_ptr *ptr)
392 {
393 int rv;
394 struct uci_ptr lookup = *ptr;
395
396 if (!lookup.s && lookup.section && *lookup.section == '@')
397 lookup.flags |= UCI_LOOKUP_EXTENDED;
398
399 rv = uci_lookup_ptr(cursor, &lookup, NULL, true);
400
401 if (!rv)
402 *ptr = lookup;
403
404 return rv;
405 }
406
407 /*
408 * Checks whether the given uci_option object matches the given string value.
409 * 1) If the uci_option is of type list, check whether any of the list elements
410 * equals to the given string
411 * 2) If the uci_option is of type string, parse it into space separated tokens
412 * and check if any of the tokens equals to the given string.
413 * Returns true if a list element or token matched the given string.
414 */
415 static bool
416 rpc_uci_match_option(struct uci_option *o, const char *cmp)
417 {
418 struct uci_element *e;
419 char *s, *p;
420
421 if (o->type == UCI_TYPE_LIST)
422 {
423 uci_foreach_element(&o->v.list, e)
424 if (e->name && !strcmp(e->name, cmp))
425 return true;
426
427 return false;
428 }
429
430 if (!o->v.string)
431 return false;
432
433 s = strdup(o->v.string);
434
435 if (!s)
436 return false;
437
438 for (p = strtok(s, " \t"); p; p = strtok(NULL, " \t"))
439 {
440 if (!strcmp(p, cmp))
441 {
442 free(s);
443 return true;
444 }
445 }
446
447 free(s);
448 return false;
449 }
450
451 /*
452 * Checks whether the given uci_section matches the type and value blob attrs.
453 * 1) Returns false if "type" is given and the section type does not match
454 * the value specified in the "type" string blob attribute, else continue.
455 * 2) Tests whether any key in the "matches" table blob attribute exists in
456 * the given uci_section and whether each value is contained in the
457 * corresponding uci option value (see rpc_uci_match_option()).
458 * 3) A missing or empty "matches" table blob attribute is always considered
459 * to be a match.
460 * Returns true if "type" matches or is NULL and "matches" matches or is NULL.
461 */
462 static bool
463 rpc_uci_match_section(struct uci_section *s,
464 struct blob_attr *type, struct blob_attr *matches)
465 {
466 struct uci_element *e;
467 struct blob_attr *cur;
468 const char *cmp;
469 bool match = false;
470 bool empty = true;
471 int rem;
472
473 if (type && strcmp(s->type, blobmsg_data(type)))
474 return false;
475
476 if (!matches)
477 return true;
478
479 blobmsg_for_each_attr(cur, matches, rem)
480 {
481 if (!rpc_uci_format_blob(cur, &cmp))
482 continue;
483
484 uci_foreach_element(&s->options, e)
485 {
486 if (strcmp(e->name, blobmsg_name(cur)))
487 continue;
488
489 if (!rpc_uci_match_option(uci_to_option(e), cmp))
490 return false;
491
492 match = true;
493 }
494
495 empty = false;
496 }
497
498 return (empty || match);
499 }
500
501 /*
502 * Dump the given uci_option value into the global blobmsg buffer and use
503 * given "name" as key.
504 * 1) If the uci_option is of type list, put a table into the blob buffer and
505 * add each list item as string to it.
506 * 2) If the uci_option is of type string, put its value directly into the blob
507 * buffer.
508 */
509 static void
510 rpc_uci_dump_option(struct uci_option *o, const char *name)
511 {
512 void *c;
513 struct uci_element *e;
514
515 switch (o->type)
516 {
517 case UCI_TYPE_STRING:
518 blobmsg_add_string(&buf, name, o->v.string);
519 break;
520
521 case UCI_TYPE_LIST:
522 c = blobmsg_open_array(&buf, name);
523
524 uci_foreach_element(&o->v.list, e)
525 blobmsg_add_string(&buf, NULL, e->name);
526
527 blobmsg_close_array(&buf, c);
528 break;
529
530 default:
531 break;
532 }
533 }
534
535 /*
536 * Dump the given uci_section object into the global blobmsg buffer and use
537 * given "name" as key.
538 * Puts a table into the blob buffer and puts each section option member value
539 * as value into the table using the option name as key.
540 * Adds three special keys ".anonymous", ".type" and ".name" which specify the
541 * corresponding section properties.
542 */
543 static void
544 rpc_uci_dump_section(struct uci_section *s, const char *name, int index)
545 {
546 void *c;
547 struct uci_option *o;
548 struct uci_element *e;
549
550 c = blobmsg_open_table(&buf, name);
551
552 blobmsg_add_u8(&buf, ".anonymous", s->anonymous);
553 blobmsg_add_string(&buf, ".type", s->type);
554 blobmsg_add_string(&buf, ".name", s->e.name);
555
556 if (index >= 0)
557 blobmsg_add_u32(&buf, ".index", index);
558
559 uci_foreach_element(&s->options, e)
560 {
561 o = uci_to_option(e);
562 rpc_uci_dump_option(o, o->e.name);
563 }
564
565 blobmsg_close_table(&buf, c);
566 }
567
568 /*
569 * Dump the given uci_package object into the global blobmsg buffer and use
570 * given "name" as key.
571 * Puts a table into the blob buffer and puts each package section member as
572 * value into the table using the section name as key.
573 * Only dumps sections matching the given "type" and "matches", see explaination
574 * of rpc_uci_match_section() for details.
575 */
576 static void
577 rpc_uci_dump_package(struct uci_package *p, const char *name,
578 struct blob_attr *type, struct blob_attr *matches)
579 {
580 void *c;
581 struct uci_element *e;
582 int i = -1;
583
584 c = blobmsg_open_table(&buf, name);
585
586 uci_foreach_element(&p->sections, e)
587 {
588 i++;
589
590 if (!rpc_uci_match_section(uci_to_section(e), type, matches))
591 continue;
592
593 rpc_uci_dump_section(uci_to_section(e), e->name, i);
594 }
595
596 blobmsg_close_table(&buf, c);
597 }
598
599
600 static int
601 rpc_uci_getcommon(struct ubus_context *ctx, struct ubus_request_data *req,
602 struct blob_attr *msg, bool use_state)
603 {
604 struct blob_attr *tb[__RPC_G_MAX];
605 struct uci_package *p = NULL;
606 struct uci_ptr ptr = { 0 };
607
608 blobmsg_parse(rpc_uci_get_policy, __RPC_G_MAX, tb,
609 blob_data(msg), blob_len(msg));
610
611 if (!tb[RPC_G_CONFIG])
612 return UBUS_STATUS_INVALID_ARGUMENT;
613
614 if (!rpc_uci_read_access(tb[RPC_G_SESSION], tb[RPC_G_CONFIG]))
615 return UBUS_STATUS_PERMISSION_DENIED;
616
617 ptr.package = blobmsg_data(tb[RPC_G_CONFIG]);
618
619 if (use_state)
620 uci_set_savedir(cursor, "/var/state");
621
622 if (uci_load(cursor, ptr.package, &p))
623 return rpc_uci_status();
624
625 if (tb[RPC_G_SECTION])
626 {
627 ptr.section = blobmsg_data(tb[RPC_G_SECTION]);
628
629 if (tb[RPC_G_OPTION])
630 ptr.option = blobmsg_data(tb[RPC_G_OPTION]);
631 }
632
633 if (rpc_uci_lookup(&ptr) || !(ptr.flags & UCI_LOOKUP_COMPLETE))
634 goto out;
635
636 blob_buf_init(&buf, 0);
637
638 switch (ptr.last->type)
639 {
640 case UCI_TYPE_PACKAGE:
641 rpc_uci_dump_package(ptr.p, "values", tb[RPC_G_TYPE], tb[RPC_G_MATCH]);
642 break;
643
644 case UCI_TYPE_SECTION:
645 rpc_uci_dump_section(ptr.s, "values", -1);
646 break;
647
648 case UCI_TYPE_OPTION:
649 rpc_uci_dump_option(ptr.o, "value");
650 break;
651
652 default:
653 break;
654 }
655
656 ubus_send_reply(ctx, req, buf.head);
657
658 out:
659 uci_unload(cursor, p);
660
661 return rpc_uci_status();
662 }
663
664 static int
665 rpc_uci_get(struct ubus_context *ctx, struct ubus_object *obj,
666 struct ubus_request_data *req, const char *method,
667 struct blob_attr *msg)
668 {
669 return rpc_uci_getcommon(ctx, req, msg, false);
670 }
671
672 static int
673 rpc_uci_state(struct ubus_context *ctx, struct ubus_object *obj,
674 struct ubus_request_data *req, const char *method,
675 struct blob_attr *msg)
676 {
677 return rpc_uci_getcommon(ctx, req, msg, true);
678 }
679
680 static int
681 rpc_uci_add(struct ubus_context *ctx, struct ubus_object *obj,
682 struct ubus_request_data *req, const char *method,
683 struct blob_attr *msg)
684 {
685 struct blob_attr *tb[__RPC_A_MAX];
686 struct blob_attr *cur, *elem;
687 struct uci_package *p = NULL;
688 struct uci_section *s;
689 struct uci_ptr ptr = { 0 };
690 int rem, rem2, err = 0;
691
692 blobmsg_parse(rpc_uci_add_policy, __RPC_A_MAX, tb,
693 blob_data(msg), blob_len(msg));
694
695 if (!tb[RPC_A_CONFIG] || !tb[RPC_A_TYPE])
696 return UBUS_STATUS_INVALID_ARGUMENT;
697
698 if (!rpc_uci_write_access(tb[RPC_A_SESSION], tb[RPC_A_CONFIG]))
699 return UBUS_STATUS_PERMISSION_DENIED;
700
701 if (!rpc_uci_verify_type(blobmsg_data(tb[RPC_A_TYPE])))
702 return UBUS_STATUS_INVALID_ARGUMENT;
703
704 if (tb[RPC_A_NAME] &&
705 !rpc_uci_verify_name(blobmsg_data(tb[RPC_A_NAME])))
706 return UBUS_STATUS_INVALID_ARGUMENT;
707
708 ptr.package = blobmsg_data(tb[RPC_A_CONFIG]);
709
710 if (uci_load(cursor, ptr.package, &p))
711 return rpc_uci_status();
712
713 /* add named section */
714 if (tb[RPC_A_NAME])
715 {
716 ptr.section = blobmsg_data(tb[RPC_A_NAME]);
717 ptr.value = blobmsg_data(tb[RPC_A_TYPE]);
718 ptr.option = NULL;
719
720 if (rpc_uci_lookup(&ptr) || uci_set(cursor, &ptr))
721 goto out;
722 }
723
724 /* add anon section */
725 else
726 {
727 if (uci_add_section(cursor, p, blobmsg_data(tb[RPC_A_TYPE]), &s) || !s)
728 goto out;
729
730 ptr.section = s->e.name;
731 }
732
733 if (tb[RPC_A_VALUES])
734 {
735 blobmsg_for_each_attr(cur, tb[RPC_A_VALUES], rem)
736 {
737 ptr.o = NULL;
738 ptr.option = blobmsg_name(cur);
739
740 if (!rpc_uci_verify_name(ptr.option))
741 {
742 if (!err)
743 err = UBUS_STATUS_INVALID_ARGUMENT;
744
745 continue;
746 }
747
748 if (rpc_uci_lookup(&ptr) || !ptr.s)
749 {
750 if (!err)
751 err = UBUS_STATUS_NOT_FOUND;
752
753 continue;
754 }
755
756 switch (blobmsg_type(cur))
757 {
758 case BLOBMSG_TYPE_ARRAY:
759 blobmsg_for_each_attr(elem, cur, rem2)
760 {
761 if (!rpc_uci_format_blob(elem, &ptr.value))
762 {
763 if (!err)
764 err = UBUS_STATUS_INVALID_ARGUMENT;
765
766 continue;
767 }
768
769 uci_add_list(cursor, &ptr);
770 }
771
772 break;
773
774 default:
775 if (!rpc_uci_format_blob(cur, &ptr.value))
776 {
777 if (!err)
778 err = UBUS_STATUS_INVALID_ARGUMENT;
779 }
780 else
781 {
782 uci_set(cursor, &ptr);
783 }
784
785 break;
786 }
787 }
788 }
789
790 if (!err)
791 {
792 uci_save(cursor, p);
793
794 blob_buf_init(&buf, 0);
795 blobmsg_add_string(&buf, "section", ptr.section);
796 ubus_send_reply(ctx, req, buf.head);
797 }
798
799 out:
800 uci_unload(cursor, p);
801
802 return err ? err : rpc_uci_status();
803 }
804
805 /*
806 * Turn value from a blob attribute into uci set operation
807 * 1) if the blob is of type array, delete existing option (if any) and
808 * emit uci add_list operations for each element
809 * 2) if the blob is not an array but an option of type list exists,
810 * delete existing list and emit uci set operation for the blob value
811 * 3) in all other cases only emit a set operation if there is no existing
812 * option of if the existing options value differs from the blob value
813 */
814 static int
815 rpc_uci_merge_set(struct blob_attr *opt, struct uci_ptr *ptr)
816 {
817 struct blob_attr *cur;
818 int rem, rv;
819
820 ptr->o = NULL;
821 ptr->option = blobmsg_name(opt);
822 ptr->value = NULL;
823
824 if (!rpc_uci_verify_name(ptr->option))
825 return UBUS_STATUS_INVALID_ARGUMENT;
826
827 if (rpc_uci_lookup(ptr) || !ptr->s)
828 return UBUS_STATUS_NOT_FOUND;
829
830 if (blobmsg_type(opt) == BLOBMSG_TYPE_ARRAY)
831 {
832 if (ptr->o)
833 uci_delete(cursor, ptr);
834
835 rv = UBUS_STATUS_INVALID_ARGUMENT;
836
837 blobmsg_for_each_attr(cur, opt, rem)
838 {
839 if (!rpc_uci_format_blob(cur, &ptr->value))
840 continue;
841
842 uci_add_list(cursor, ptr);
843 rv = 0;
844 }
845
846 return rv;
847 }
848 else if (ptr->o && ptr->o->type == UCI_TYPE_LIST)
849 {
850 uci_delete(cursor, ptr);
851
852 if (!rpc_uci_format_blob(opt, &ptr->value))
853 return UBUS_STATUS_INVALID_ARGUMENT;
854
855 uci_set(cursor, ptr);
856 }
857 else
858 {
859 if (!rpc_uci_format_blob(opt, &ptr->value))
860 return UBUS_STATUS_INVALID_ARGUMENT;
861
862 if (!ptr->o || !ptr->o->v.string || strcmp(ptr->o->v.string, ptr->value))
863 uci_set(cursor, ptr);
864 }
865
866 return 0;
867 }
868
869 static int
870 rpc_uci_set(struct ubus_context *ctx, struct ubus_object *obj,
871 struct ubus_request_data *req, const char *method,
872 struct blob_attr *msg)
873 {
874 struct blob_attr *tb[__RPC_S_MAX];
875 struct blob_attr *cur;
876 struct uci_package *p = NULL;
877 struct uci_element *e;
878 struct uci_ptr ptr = { 0 };
879 int rem, rv, err = 0;
880
881 blobmsg_parse(rpc_uci_set_policy, __RPC_S_MAX, tb,
882 blob_data(msg), blob_len(msg));
883
884 if (!tb[RPC_S_CONFIG] || !tb[RPC_S_VALUES] ||
885 (!tb[RPC_S_SECTION] && !tb[RPC_S_TYPE] && !tb[RPC_S_MATCH]))
886 return UBUS_STATUS_INVALID_ARGUMENT;
887
888 if (!rpc_uci_write_access(tb[RPC_S_SESSION], tb[RPC_S_CONFIG]))
889 return UBUS_STATUS_PERMISSION_DENIED;
890
891 if (tb[RPC_S_SECTION] &&
892 !rpc_uci_verify_section(blobmsg_data(tb[RPC_S_SECTION])))
893 return UBUS_STATUS_INVALID_ARGUMENT;
894
895 ptr.package = blobmsg_data(tb[RPC_S_CONFIG]);
896
897 if (uci_load(cursor, ptr.package, &p))
898 return rpc_uci_status();
899
900 if (tb[RPC_S_SECTION])
901 {
902 ptr.section = blobmsg_data(tb[RPC_S_SECTION]);
903 blobmsg_for_each_attr(cur, tb[RPC_S_VALUES], rem)
904 {
905 rv = rpc_uci_merge_set(cur, &ptr);
906
907 if (rv)
908 err = rv;
909 }
910 }
911 else
912 {
913 uci_foreach_element(&p->sections, e)
914 {
915 if (!rpc_uci_match_section(uci_to_section(e),
916 tb[RPC_S_TYPE], tb[RPC_S_MATCH]))
917 continue;
918
919 ptr.s = NULL;
920 ptr.section = e->name;
921
922 blobmsg_for_each_attr(cur, tb[RPC_S_VALUES], rem)
923 {
924 rv = rpc_uci_merge_set(cur, &ptr);
925
926 if (rv)
927 err = rv;
928 }
929 }
930 }
931
932 if (!err && !ptr.s)
933 err = UBUS_STATUS_NOT_FOUND;
934
935 if (!err)
936 uci_save(cursor, p);
937
938 uci_unload(cursor, p);
939
940 return err ? err : rpc_uci_status();
941 }
942
943 /*
944 * Delete option or section from uci specified by given blob attribute pointer
945 * 1) if the blob is of type array, delete any option named after each element
946 * 2) if the blob is of type string, delete the option named after its value
947 * 3) if the blob is NULL, delete entire section
948 */
949 static void
950 rpc_uci_merge_delete(struct blob_attr *opt, struct uci_ptr *ptr)
951 {
952 struct blob_attr *cur;
953 int rem;
954
955 if (rpc_uci_lookup(ptr) || !ptr->s)
956 return;
957
958 if (!opt)
959 {
960 ptr->o = NULL;
961 ptr->option = NULL;
962
963 uci_delete(cursor, ptr);
964 }
965 else if (blobmsg_type(opt) == BLOBMSG_TYPE_ARRAY)
966 {
967 blobmsg_for_each_attr(cur, opt, rem)
968 {
969 if (blobmsg_type(cur) != BLOBMSG_TYPE_STRING)
970 continue;
971
972 ptr->o = NULL;
973 ptr->option = blobmsg_data(cur);
974
975 if (rpc_uci_lookup(ptr) || !ptr->o)
976 continue;
977
978 uci_delete(cursor, ptr);
979 }
980 }
981 else if (blobmsg_type(opt) == BLOBMSG_TYPE_STRING)
982 {
983 ptr->o = NULL;
984 ptr->option = blobmsg_data(opt);
985
986 if (rpc_uci_lookup(ptr) || !ptr->o)
987 return;
988
989 uci_delete(cursor, ptr);
990 }
991 }
992
993 static int
994 rpc_uci_delete(struct ubus_context *ctx, struct ubus_object *obj,
995 struct ubus_request_data *req, const char *method,
996 struct blob_attr *msg)
997 {
998 struct blob_attr *tb[__RPC_D_MAX];
999 struct uci_package *p = NULL;
1000 struct uci_element *e, *tmp;
1001 struct uci_ptr ptr = { 0 };
1002
1003 blobmsg_parse(rpc_uci_delete_policy, __RPC_D_MAX, tb,
1004 blob_data(msg), blob_len(msg));
1005
1006 if (!tb[RPC_D_CONFIG] ||
1007 (!tb[RPC_D_SECTION] && !tb[RPC_D_TYPE] && !tb[RPC_D_MATCH]))
1008 return UBUS_STATUS_INVALID_ARGUMENT;
1009
1010 if (!rpc_uci_write_access(tb[RPC_D_SESSION], tb[RPC_D_CONFIG]))
1011 return UBUS_STATUS_PERMISSION_DENIED;
1012
1013 ptr.package = blobmsg_data(tb[RPC_D_CONFIG]);
1014
1015 if (uci_load(cursor, ptr.package, &p))
1016 return rpc_uci_status();
1017
1018 if (tb[RPC_D_SECTION])
1019 {
1020 ptr.section = blobmsg_data(tb[RPC_D_SECTION]);
1021
1022 if (tb[RPC_D_OPTIONS])
1023 rpc_uci_merge_delete(tb[RPC_D_OPTIONS], &ptr);
1024 else
1025 rpc_uci_merge_delete(tb[RPC_D_OPTION], &ptr);
1026 }
1027 else
1028 {
1029 uci_foreach_element_safe(&p->sections, tmp, e)
1030 {
1031 if (!rpc_uci_match_section(uci_to_section(e),
1032 tb[RPC_D_TYPE], tb[RPC_D_MATCH]))
1033 continue;
1034
1035 ptr.s = NULL;
1036 ptr.section = e->name;
1037
1038 if (tb[RPC_D_OPTIONS])
1039 rpc_uci_merge_delete(tb[RPC_D_OPTIONS], &ptr);
1040 else
1041 rpc_uci_merge_delete(tb[RPC_D_OPTION], &ptr);
1042 }
1043 }
1044
1045 uci_save(cursor, p);
1046 uci_unload(cursor, p);
1047
1048 return rpc_uci_status();
1049 }
1050
1051 static int
1052 rpc_uci_rename(struct ubus_context *ctx, struct ubus_object *obj,
1053 struct ubus_request_data *req, const char *method,
1054 struct blob_attr *msg)
1055 {
1056 struct blob_attr *tb[__RPC_R_MAX];
1057 struct uci_package *p = NULL;
1058 struct uci_ptr ptr = { 0 };
1059
1060 blobmsg_parse(rpc_uci_rename_policy, __RPC_R_MAX, tb,
1061 blob_data(msg), blob_len(msg));
1062
1063 if (!tb[RPC_R_CONFIG] || !tb[RPC_R_SECTION] || !tb[RPC_R_NAME])
1064 return UBUS_STATUS_INVALID_ARGUMENT;
1065
1066 if (!rpc_uci_write_access(tb[RPC_R_SESSION], tb[RPC_R_CONFIG]))
1067 return UBUS_STATUS_PERMISSION_DENIED;
1068
1069 ptr.package = blobmsg_data(tb[RPC_R_CONFIG]);
1070 ptr.section = blobmsg_data(tb[RPC_R_SECTION]);
1071 ptr.value = blobmsg_data(tb[RPC_R_NAME]);
1072
1073 if (!rpc_uci_verify_name(ptr.value))
1074 return UBUS_STATUS_INVALID_ARGUMENT;
1075
1076 if (tb[RPC_R_OPTION])
1077 ptr.option = blobmsg_data(tb[RPC_R_OPTION]);
1078
1079 if (uci_load(cursor, ptr.package, &p))
1080 return rpc_uci_status();
1081
1082 if (uci_lookup_ptr(cursor, &ptr, NULL, true))
1083 goto out;
1084
1085 if ((ptr.option && !ptr.o) || !ptr.s)
1086 {
1087 cursor->err = UCI_ERR_NOTFOUND;
1088 goto out;
1089 }
1090
1091 if (uci_rename(cursor, &ptr))
1092 goto out;
1093
1094 uci_save(cursor, p);
1095
1096 out:
1097 uci_unload(cursor, p);
1098
1099 return rpc_uci_status();
1100 }
1101
1102 static int
1103 rpc_uci_order(struct ubus_context *ctx, struct ubus_object *obj,
1104 struct ubus_request_data *req, const char *method,
1105 struct blob_attr *msg)
1106 {
1107 struct blob_attr *tb[__RPC_O_MAX];
1108 struct blob_attr *cur;
1109 struct uci_package *p = NULL;
1110 struct uci_ptr ptr = { 0 };
1111 int rem, i = 0;
1112
1113 blobmsg_parse(rpc_uci_order_policy, __RPC_O_MAX, tb,
1114 blob_data(msg), blob_len(msg));
1115
1116 if (!tb[RPC_O_CONFIG] || !tb[RPC_O_SECTIONS])
1117 return UBUS_STATUS_INVALID_ARGUMENT;
1118
1119 if (!rpc_uci_write_access(tb[RPC_O_SESSION], tb[RPC_O_CONFIG]))
1120 return UBUS_STATUS_PERMISSION_DENIED;
1121
1122 ptr.package = blobmsg_data(tb[RPC_O_CONFIG]);
1123
1124 if (uci_load(cursor, ptr.package, &p))
1125 return rpc_uci_status();
1126
1127 blobmsg_for_each_attr(cur, tb[RPC_O_SECTIONS], rem)
1128 {
1129 if (blobmsg_type(cur) != BLOBMSG_TYPE_STRING)
1130 continue;
1131
1132 ptr.s = NULL;
1133 ptr.section = blobmsg_data(cur);
1134
1135 if (uci_lookup_ptr(cursor, &ptr, NULL, true) || !ptr.s)
1136 continue;
1137
1138 uci_reorder_section(cursor, ptr.s, i++);
1139 }
1140
1141 uci_save(cursor, p);
1142 uci_unload(cursor, p);
1143
1144 return rpc_uci_status();
1145 }
1146
1147 static void
1148 rpc_uci_dump_change(struct uci_delta *d)
1149 {
1150 void *c;
1151 const char *types[] = {
1152 [UCI_CMD_REORDER] = "order",
1153 [UCI_CMD_REMOVE] = "remove",
1154 [UCI_CMD_RENAME] = "rename",
1155 [UCI_CMD_ADD] = "add",
1156 [UCI_CMD_LIST_ADD] = "list-add",
1157 [UCI_CMD_LIST_DEL] = "list-del",
1158 [UCI_CMD_CHANGE] = "set",
1159 };
1160
1161 if (!d->section)
1162 return;
1163
1164 c = blobmsg_open_array(&buf, NULL);
1165
1166 blobmsg_add_string(&buf, NULL, types[d->cmd]);
1167 blobmsg_add_string(&buf, NULL, d->section);
1168
1169 if (d->e.name)
1170 blobmsg_add_string(&buf, NULL, d->e.name);
1171
1172 if (d->value)
1173 {
1174 if (d->cmd == UCI_CMD_REORDER)
1175 blobmsg_add_u32(&buf, NULL, strtoul(d->value, NULL, 10));
1176 else
1177 blobmsg_add_string(&buf, NULL, d->value);
1178 }
1179
1180 blobmsg_close_array(&buf, c);
1181 }
1182
1183 static int
1184 rpc_uci_changes(struct ubus_context *ctx, struct ubus_object *obj,
1185 struct ubus_request_data *req, const char *method,
1186 struct blob_attr *msg)
1187 {
1188 struct blob_attr *tb[__RPC_C_MAX];
1189 struct uci_package *p = NULL;
1190 struct uci_element *e;
1191 char **configs;
1192 void *c, *d;
1193 int i;
1194
1195 blobmsg_parse(rpc_uci_config_policy, __RPC_C_MAX, tb,
1196 blob_data(msg), blob_len(msg));
1197
1198 if (tb[RPC_C_CONFIG])
1199 {
1200 if (!rpc_uci_read_access(tb[RPC_C_SESSION], tb[RPC_C_CONFIG]))
1201 return UBUS_STATUS_PERMISSION_DENIED;
1202
1203 if (uci_load(cursor, blobmsg_data(tb[RPC_C_CONFIG]), &p))
1204 return rpc_uci_status();
1205
1206 blob_buf_init(&buf, 0);
1207 c = blobmsg_open_array(&buf, "changes");
1208
1209 uci_foreach_element(&p->saved_delta, e)
1210 rpc_uci_dump_change(uci_to_delta(e));
1211
1212 blobmsg_close_array(&buf, c);
1213
1214 uci_unload(cursor, p);
1215
1216 ubus_send_reply(ctx, req, buf.head);
1217
1218 return rpc_uci_status();
1219 }
1220
1221 rpc_uci_set_savedir(tb[RPC_C_SESSION]);
1222
1223 if (uci_list_configs(cursor, &configs))
1224 return rpc_uci_status();
1225
1226 blob_buf_init(&buf, 0);
1227
1228 c = blobmsg_open_table(&buf, "changes");
1229
1230 for (i = 0; configs[i]; i++)
1231 {
1232 if (tb[RPC_C_SESSION] &&
1233 !rpc_session_access(blobmsg_data(tb[RPC_C_SESSION]), "uci",
1234 configs[i], "read"))
1235 continue;
1236
1237 if (uci_load(cursor, configs[i], &p))
1238 continue;
1239
1240 if (!uci_list_empty(&p->saved_delta))
1241 {
1242 d = blobmsg_open_array(&buf, configs[i]);
1243
1244 uci_foreach_element(&p->saved_delta, e)
1245 rpc_uci_dump_change(uci_to_delta(e));
1246
1247 blobmsg_close_array(&buf, d);
1248 }
1249
1250 uci_unload(cursor, p);
1251 }
1252
1253 blobmsg_close_table(&buf, c);
1254
1255 ubus_send_reply(ctx, req, buf.head);
1256
1257 return 0;
1258 }
1259
1260 static void
1261 rpc_uci_trigger_event(struct ubus_context *ctx, const char *config)
1262 {
1263 char *pkg = strdup(config);
1264 static struct blob_buf b;
1265 uint32_t id;
1266
1267 if (!ubus_lookup_id(ctx, "service", &id)) {
1268 void *c;
1269
1270 blob_buf_init(&b, 0);
1271 blobmsg_add_string(&b, "type", "config.change");
1272 c = blobmsg_open_table(&b, "data");
1273 blobmsg_add_string(&b, "package", pkg);
1274 blobmsg_close_table(&b, c);
1275 ubus_invoke(ctx, id, "event", b.head, NULL, 0, 1000);
1276 }
1277 free(pkg);
1278 }
1279
1280 static int
1281 rpc_uci_revert_commit(struct ubus_context *ctx, struct blob_attr *msg, bool commit)
1282 {
1283 struct blob_attr *tb[__RPC_C_MAX];
1284 struct uci_package *p = NULL;
1285 struct uci_ptr ptr = { 0 };
1286
1287 if (apply_sid[0])
1288 return UBUS_STATUS_PERMISSION_DENIED;
1289
1290 blobmsg_parse(rpc_uci_config_policy, __RPC_C_MAX, tb,
1291 blob_data(msg), blob_len(msg));
1292
1293 if (!tb[RPC_C_CONFIG])
1294 return UBUS_STATUS_INVALID_ARGUMENT;
1295
1296 if (!rpc_uci_write_access(tb[RPC_C_SESSION], tb[RPC_C_CONFIG]))
1297 return UBUS_STATUS_PERMISSION_DENIED;
1298
1299 ptr.package = blobmsg_data(tb[RPC_C_CONFIG]);
1300
1301 if (commit)
1302 {
1303 if (!uci_load(cursor, ptr.package, &p))
1304 {
1305 uci_commit(cursor, &p, false);
1306 uci_unload(cursor, p);
1307 rpc_uci_trigger_event(ctx, blobmsg_get_string(tb[RPC_C_CONFIG]));
1308 }
1309 }
1310 else
1311 {
1312 if (!uci_lookup_ptr(cursor, &ptr, NULL, true) && ptr.p)
1313 {
1314 uci_revert(cursor, &ptr);
1315 uci_unload(cursor, ptr.p);
1316 }
1317 }
1318
1319 return rpc_uci_status();
1320 }
1321
1322 static int
1323 rpc_uci_revert(struct ubus_context *ctx, struct ubus_object *obj,
1324 struct ubus_request_data *req, const char *method,
1325 struct blob_attr *msg)
1326 {
1327 return rpc_uci_revert_commit(ctx, msg, false);
1328 }
1329
1330 static int
1331 rpc_uci_commit(struct ubus_context *ctx, struct ubus_object *obj,
1332 struct ubus_request_data *req, const char *method,
1333 struct blob_attr *msg)
1334 {
1335 return rpc_uci_revert_commit(ctx, msg, true);
1336 }
1337
1338 static int
1339 rpc_uci_configs(struct ubus_context *ctx, struct ubus_object *obj,
1340 struct ubus_request_data *req, const char *method,
1341 struct blob_attr *msg)
1342 {
1343 char **configs;
1344 void *c;
1345 int i;
1346
1347 if (uci_list_configs(cursor, &configs))
1348 goto out;
1349
1350 blob_buf_init(&buf, 0);
1351
1352 c = blobmsg_open_array(&buf, "configs");
1353
1354 for (i = 0; configs[i]; i++)
1355 blobmsg_add_string(&buf, NULL, configs[i]);
1356
1357 blobmsg_close_array(&buf, c);
1358
1359 ubus_send_reply(ctx, req, buf.head);
1360
1361 out:
1362 return rpc_uci_status();
1363 }
1364
1365
1366 /*
1367 * Remove given delta save directory (if any).
1368 */
1369 static void
1370 rpc_uci_purge_dir(const char *path)
1371 {
1372 DIR *d;
1373 struct stat s;
1374 struct dirent *e;
1375 char file[PATH_MAX];
1376
1377 if (stat(path, &s) || !S_ISDIR(s.st_mode))
1378 return;
1379
1380 if ((d = opendir(path)) != NULL)
1381 {
1382 while ((e = readdir(d)) != NULL)
1383 {
1384 snprintf(file, sizeof(file) - 1, "%s/%s", path, e->d_name);
1385
1386 if (stat(file, &s) || !S_ISREG(s.st_mode))
1387 continue;
1388
1389 unlink(file);
1390 }
1391
1392 closedir(d);
1393
1394 rmdir(path);
1395 }
1396 }
1397
1398 static int
1399 rpc_uci_apply_config(struct ubus_context *ctx, char *config)
1400 {
1401 struct uci_package *p = NULL;
1402
1403 if (!uci_load(cursor, config, &p)) {
1404 uci_commit(cursor, &p, false);
1405 uci_unload(cursor, p);
1406 }
1407 rpc_uci_trigger_event(ctx, config);
1408
1409 return 0;
1410 }
1411
1412 static void
1413 rpc_uci_copy_file(const char *src, const char *target, const char *file)
1414 {
1415 char tmp[256];
1416 FILE *in, *out;
1417
1418 snprintf(tmp, sizeof(tmp), "%s%s", src, file);
1419 in = fopen(tmp, "rb");
1420 snprintf(tmp, sizeof(tmp), "%s%s", target, file);
1421 out = fopen(tmp, "wb+");
1422 if (in && out)
1423 while (!feof(in)) {
1424 int len = fread(tmp, 1, sizeof(tmp), in);
1425
1426 if(len > 0)
1427 fwrite(tmp, 1, len, out);
1428 }
1429 if(in)
1430 fclose(in);
1431 if(out)
1432 fclose(out);
1433 }
1434
1435 static int
1436 rpc_uci_apply_access(const char *sid, glob_t *gl)
1437 {
1438 struct stat s;
1439 int i, c = 0;
1440
1441 if (gl->gl_pathc < 3)
1442 return UBUS_STATUS_NO_DATA;
1443
1444 for (i = 0; i < gl->gl_pathc; i++) {
1445 char *config = basename(gl->gl_pathv[i]);
1446
1447 if (*config == '.')
1448 continue;
1449 if (stat(gl->gl_pathv[i], &s) || !s.st_size)
1450 continue;
1451 if (!rpc_session_access(sid, "uci", config, "write"))
1452 return UBUS_STATUS_PERMISSION_DENIED;
1453 c++;
1454 }
1455
1456 if (!c)
1457 return UBUS_STATUS_NO_DATA;
1458
1459 return 0;
1460 }
1461
1462 static void
1463 rpc_uci_do_rollback(struct ubus_context *ctx, glob_t *gl)
1464 {
1465 int i, deny;
1466 char tmp[PATH_MAX];
1467
1468 /* Test apply permission to see if the initiator session still exists.
1469 * If it does, restore the delta files as well, else just restore the
1470 * main configuration files. */
1471 deny = apply_sid[0]
1472 ? rpc_uci_apply_access(apply_sid, gl) : UBUS_STATUS_NOT_FOUND;
1473
1474 if (!deny) {
1475 snprintf(tmp, sizeof(tmp), RPC_UCI_SAVEDIR_PREFIX "%s/", apply_sid);
1476 mkdir(tmp, 0700);
1477 }
1478
1479 /* avoid merging unrelated uci changes when restoring old configs */
1480 rpc_uci_replace_savedir("/dev/null");
1481
1482 for (i = 0; i < gl->gl_pathc; i++) {
1483 char *config = basename(gl->gl_pathv[i]);
1484
1485 if (*config == '.')
1486 continue;
1487
1488 rpc_uci_copy_file(RPC_SNAPSHOT_FILES, RPC_UCI_DIR, config);
1489 rpc_uci_apply_config(ctx, config);
1490
1491 if (deny)
1492 continue;
1493
1494 rpc_uci_copy_file(RPC_SNAPSHOT_DELTA, tmp, config);
1495 }
1496
1497 rpc_uci_purge_dir(RPC_SNAPSHOT_FILES);
1498 rpc_uci_purge_dir(RPC_SNAPSHOT_DELTA);
1499
1500 uloop_timeout_cancel(&apply_timer);
1501 memset(apply_sid, 0, sizeof(apply_sid));
1502 apply_ctx = NULL;
1503 }
1504
1505 static void
1506 rpc_uci_apply_timeout(struct uloop_timeout *t)
1507 {
1508 glob_t gl;
1509 char tmp[PATH_MAX];
1510
1511 snprintf(tmp, sizeof(tmp), "%s/*", RPC_SNAPSHOT_FILES);
1512 if (glob(tmp, GLOB_PERIOD, NULL, &gl) < 0)
1513 return;
1514
1515 rpc_uci_do_rollback(apply_ctx, &gl);
1516
1517 globfree(&gl);
1518 }
1519
1520 static int
1521 rpc_uci_apply(struct ubus_context *ctx, struct ubus_object *obj,
1522 struct ubus_request_data *req, const char *method,
1523 struct blob_attr *msg)
1524 {
1525 struct blob_attr *tb[__RPC_T_MAX];
1526 int timeout = RPC_APPLY_TIMEOUT;
1527 char tmp[PATH_MAX];
1528 bool rollback = false;
1529 int ret, i;
1530 char *sid;
1531 glob_t gl;
1532
1533 blobmsg_parse(rpc_uci_apply_policy, __RPC_T_MAX, tb,
1534 blob_data(msg), blob_len(msg));
1535
1536 if (tb[RPC_T_ROLLBACK])
1537 rollback = blobmsg_get_bool(tb[RPC_T_ROLLBACK]);
1538
1539 if (apply_sid[0] && rollback)
1540 return UBUS_STATUS_PERMISSION_DENIED;
1541
1542 if (!tb[RPC_T_SESSION])
1543 return UBUS_STATUS_INVALID_ARGUMENT;
1544
1545 sid = blobmsg_data(tb[RPC_T_SESSION]);
1546
1547 if (tb[RPC_T_TIMEOUT])
1548 timeout = blobmsg_get_u32(tb[RPC_T_TIMEOUT]);
1549
1550 rpc_uci_purge_dir(RPC_SNAPSHOT_FILES);
1551 rpc_uci_purge_dir(RPC_SNAPSHOT_DELTA);
1552
1553 if (!apply_sid[0]) {
1554 rpc_uci_set_savedir(tb[RPC_T_SESSION]);
1555
1556 mkdir(RPC_SNAPSHOT_FILES, 0700);
1557 mkdir(RPC_SNAPSHOT_DELTA, 0700);
1558
1559 snprintf(tmp, sizeof(tmp), RPC_UCI_SAVEDIR_PREFIX "%s/*", sid);
1560 if (glob(tmp, GLOB_PERIOD, NULL, &gl) < 0)
1561 return UBUS_STATUS_NOT_FOUND;
1562
1563 snprintf(tmp, sizeof(tmp), RPC_UCI_SAVEDIR_PREFIX "%s/", sid);
1564
1565 ret = rpc_uci_apply_access(sid, &gl);
1566 if (ret) {
1567 globfree(&gl);
1568 return ret;
1569 }
1570
1571 /* copy SID early because rpc_uci_apply_config() will clobber buf */
1572 if (rollback)
1573 strncpy(apply_sid, sid, RPC_SID_LEN);
1574
1575 for (i = 0; i < gl.gl_pathc; i++) {
1576 char *config = basename(gl.gl_pathv[i]);
1577 struct stat s;
1578
1579 if (*config == '.')
1580 continue;
1581
1582 if (stat(gl.gl_pathv[i], &s) || !s.st_size)
1583 continue;
1584
1585 rpc_uci_copy_file(RPC_UCI_DIR, RPC_SNAPSHOT_FILES, config);
1586 rpc_uci_copy_file(tmp, RPC_SNAPSHOT_DELTA, config);
1587 rpc_uci_apply_config(ctx, config);
1588 }
1589
1590 globfree(&gl);
1591
1592 if (rollback) {
1593 apply_timer.cb = rpc_uci_apply_timeout;
1594 uloop_timeout_set(&apply_timer, timeout * 1000);
1595 apply_ctx = ctx;
1596 }
1597 }
1598
1599 return 0;
1600 }
1601
1602 static int
1603 rpc_uci_confirm(struct ubus_context *ctx, struct ubus_object *obj,
1604 struct ubus_request_data *req, const char *method,
1605 struct blob_attr *msg)
1606 {
1607 struct blob_attr *tb[__RPC_B_MAX];
1608 char *sid;
1609
1610 blobmsg_parse(rpc_uci_rollback_policy, __RPC_B_MAX, tb,
1611 blob_data(msg), blob_len(msg));
1612
1613 if (!tb[RPC_B_SESSION])
1614 return UBUS_STATUS_INVALID_ARGUMENT;
1615
1616 sid = blobmsg_data(tb[RPC_B_SESSION]);
1617
1618 if (!apply_sid[0])
1619 return UBUS_STATUS_NO_DATA;
1620
1621 if (strcmp(apply_sid, sid))
1622 return UBUS_STATUS_PERMISSION_DENIED;
1623
1624 rpc_uci_purge_dir(RPC_SNAPSHOT_FILES);
1625 rpc_uci_purge_dir(RPC_SNAPSHOT_DELTA);
1626
1627 uloop_timeout_cancel(&apply_timer);
1628 memset(apply_sid, 0, sizeof(apply_sid));
1629 apply_ctx = NULL;
1630
1631 return 0;
1632 }
1633
1634 static int
1635 rpc_uci_rollback(struct ubus_context *ctx, struct ubus_object *obj,
1636 struct ubus_request_data *req, const char *method,
1637 struct blob_attr *msg)
1638 {
1639 struct blob_attr *tb[__RPC_B_MAX];
1640 char tmp[PATH_MAX];
1641 glob_t gl;
1642 char *sid;
1643
1644 blobmsg_parse(rpc_uci_rollback_policy, __RPC_B_MAX, tb,
1645 blob_data(msg), blob_len(msg));
1646
1647 if (!apply_sid[0])
1648 return UBUS_STATUS_NO_DATA;
1649
1650 if (!tb[RPC_B_SESSION])
1651 return UBUS_STATUS_INVALID_ARGUMENT;
1652
1653 sid = blobmsg_data(tb[RPC_B_SESSION]);
1654
1655 if (strcmp(apply_sid, sid))
1656 return UBUS_STATUS_PERMISSION_DENIED;
1657
1658 snprintf(tmp, sizeof(tmp), "%s/*", RPC_SNAPSHOT_FILES);
1659 if (glob(tmp, GLOB_PERIOD, NULL, &gl) < 0)
1660 return UBUS_STATUS_NOT_FOUND;
1661
1662 rpc_uci_do_rollback(ctx, &gl);
1663
1664 globfree(&gl);
1665
1666 return 0;
1667 }
1668
1669 static int
1670 rpc_uci_reload(struct ubus_context *ctx, struct ubus_object *obj,
1671 struct ubus_request_data *req, const char *method,
1672 struct blob_attr *msg)
1673 {
1674 char * const cmd[2] = { "/sbin/reload_config", NULL };
1675
1676 if (!fork()) {
1677 /* wait for the RPC call to complete */
1678 sleep(2);
1679 return execv(cmd[0], cmd);
1680 }
1681
1682 return 0;
1683 }
1684
1685 /*
1686 * Session destroy callback to purge associated delta directory.
1687 */
1688 static void
1689 rpc_uci_purge_savedir_cb(struct rpc_session *ses, void *priv)
1690 {
1691 char path[PATH_MAX];
1692
1693 snprintf(path, sizeof(path) - 1, RPC_UCI_SAVEDIR_PREFIX "%s", ses->id);
1694 rpc_uci_purge_dir(path);
1695 }
1696
1697 /*
1698 * Removes all delta directories which match the RPC_UCI_SAVEDIR_PREFIX.
1699 * This is used to clean up garbage when starting rpcd.
1700 */
1701 void rpc_uci_purge_savedirs(void)
1702 {
1703 int i;
1704 glob_t gl;
1705
1706 if (!glob(RPC_UCI_SAVEDIR_PREFIX "*", 0, NULL, &gl))
1707 {
1708 for (i = 0; i < gl.gl_pathc; i++)
1709 rpc_uci_purge_dir(gl.gl_pathv[i]);
1710
1711 globfree(&gl);
1712 }
1713 }
1714
1715 int rpc_uci_api_init(struct ubus_context *ctx)
1716 {
1717 static const struct ubus_method uci_methods[] = {
1718 { .name = "configs", .handler = rpc_uci_configs },
1719 UBUS_METHOD("get", rpc_uci_get, rpc_uci_get_policy),
1720 UBUS_METHOD("state", rpc_uci_state, rpc_uci_get_policy),
1721 UBUS_METHOD("add", rpc_uci_add, rpc_uci_add_policy),
1722 UBUS_METHOD("set", rpc_uci_set, rpc_uci_set_policy),
1723 UBUS_METHOD("delete", rpc_uci_delete, rpc_uci_delete_policy),
1724 UBUS_METHOD("rename", rpc_uci_rename, rpc_uci_rename_policy),
1725 UBUS_METHOD("order", rpc_uci_order, rpc_uci_order_policy),
1726 UBUS_METHOD("changes", rpc_uci_changes, rpc_uci_config_policy),
1727 UBUS_METHOD("revert", rpc_uci_revert, rpc_uci_config_policy),
1728 UBUS_METHOD("commit", rpc_uci_commit, rpc_uci_config_policy),
1729 UBUS_METHOD("apply", rpc_uci_apply, rpc_uci_apply_policy),
1730 UBUS_METHOD("confirm", rpc_uci_confirm, rpc_uci_rollback_policy),
1731 UBUS_METHOD("rollback", rpc_uci_rollback, rpc_uci_rollback_policy),
1732 UBUS_METHOD_NOARG("reload_config", rpc_uci_reload),
1733 };
1734
1735 static struct ubus_object_type uci_type =
1736 UBUS_OBJECT_TYPE("luci-rpc-uci", uci_methods);
1737
1738 static struct ubus_object obj = {
1739 .name = "uci",
1740 .type = &uci_type,
1741 .methods = uci_methods,
1742 .n_methods = ARRAY_SIZE(uci_methods),
1743 };
1744
1745 static struct rpc_session_cb cb = {
1746 .cb = rpc_uci_purge_savedir_cb
1747 };
1748
1749 cursor = uci_alloc_context();
1750
1751 if (!cursor)
1752 return UBUS_STATUS_UNKNOWN_ERROR;
1753
1754 rpc_session_destroy_cb(&cb);
1755
1756 return ubus_add_object(ctx, &obj);
1757 }