FwmarkClient.cpp revision d1df597001aadd5d83c9a3d1fe8bbde2bc9256ca
1f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran/*
2f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran * Copyright (C) 2014 The Android Open Source Project
3f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran *
4f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran * Licensed under the Apache License, Version 2.0 (the "License");
5f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran * you may not use this file except in compliance with the License.
6f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran * You may obtain a copy of the License at
7f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran *
8f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran *      http://www.apache.org/licenses/LICENSE-2.0
9f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran *
10f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran * Unless required by applicable law or agreed to in writing, software
11f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran * distributed under the License is distributed on an "AS IS" BASIS,
12f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran * See the License for the specific language governing permissions and
14f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran * limitations under the License.
15f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran */
16f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
17f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran#include "FwmarkClient.h"
18f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
19d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen#include "FwmarkCommand.h"
20d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen
2127aacc0d49dbc5c3721ae5ca6f6033be6537c4c3Elliott Hughes#include <errno.h>
22f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran#include <stdlib.h>
23bb881e28e62bc5048f4a62d21104aa25da13b0f1Elliott Hughes#include <string.h>
24f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran#include <sys/socket.h>
25f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran#include <sys/un.h>
26f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran#include <unistd.h>
27f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
28f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandrannamespace {
29f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
30f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandranconst sockaddr_un FWMARK_SERVER_PATH = {AF_UNIX, "/dev/socket/fwmarkd"};
31f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
32f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran}  // namespace
33f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
345fc275794ab41d110abbdb7683ed9db45918985fSreeram Ramachandranbool FwmarkClient::shouldSetFwmark(int family) {
355fc275794ab41d110abbdb7683ed9db45918985fSreeram Ramachandran    return (family == AF_INET || family == AF_INET6) && !getenv("ANDROID_NO_USE_FWMARK_CLIENT");
36f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran}
37f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
38f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram RamachandranFwmarkClient::FwmarkClient() : mChannel(-1) {
39f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran}
40f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
41f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram RamachandranFwmarkClient::~FwmarkClient() {
42f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    if (mChannel >= 0) {
43f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran        close(mChannel);
44f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    }
45f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran}
46f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
47d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensenint FwmarkClient::send(FwmarkCommand* data, int fd) {
4853ea9cadf6cc5f8be1c16b5b6b660cd7366fd3f0Nick Kralevich    mChannel = socket(AF_UNIX, SOCK_STREAM | SOCK_CLOEXEC, 0);
49f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    if (mChannel == -1) {
503a069e6a76752a0ee73c60f276ae362d1c01467fSreeram Ramachandran        return -errno;
51f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    }
52f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
53f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    if (TEMP_FAILURE_RETRY(connect(mChannel, reinterpret_cast<const sockaddr*>(&FWMARK_SERVER_PATH),
54f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran                                   sizeof(FWMARK_SERVER_PATH))) == -1) {
55f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran        // If we are unable to connect to the fwmark server, assume there's no error. This protects
56f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran        // against future changes if the fwmark server goes away.
5731f4210e6fc5c9b749468a2af0bac94992352010Sreeram Ramachandran        return 0;
58f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    }
59f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
60f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    iovec iov;
61f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    iov.iov_base = data;
62d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen    iov.iov_len = sizeof(*data);
63f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
64f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    msghdr message;
65f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    memset(&message, 0, sizeof(message));
66f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    message.msg_iov = &iov;
67f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    message.msg_iovlen = 1;
68f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
69d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen    if (data->cmdId != FwmarkCommand::QUERY_USER_ACCESS) {
70d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen        union {
71d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen            cmsghdr cmh;
72d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen            char cmsg[CMSG_SPACE(sizeof(fd))];
73d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen        } cmsgu;
74d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen
75d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen        memset(cmsgu.cmsg, 0, sizeof(cmsgu.cmsg));
76d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen        message.msg_control = cmsgu.cmsg;
77d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen        message.msg_controllen = sizeof(cmsgu.cmsg);
78d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen
79d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen        cmsghdr* const cmsgh = CMSG_FIRSTHDR(&message);
80d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen        cmsgh->cmsg_len = CMSG_LEN(sizeof(fd));
81d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen        cmsgh->cmsg_level = SOL_SOCKET;
82d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen        cmsgh->cmsg_type = SCM_RIGHTS;
83d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen        memcpy(CMSG_DATA(cmsgh), &fd, sizeof(fd));
84d1df597001aadd5d83c9a3d1fe8bbde2bc9256caPaul Jensen    }
85f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
86f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    if (TEMP_FAILURE_RETRY(sendmsg(mChannel, &message, 0)) == -1) {
873a069e6a76752a0ee73c60f276ae362d1c01467fSreeram Ramachandran        return -errno;
88f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    }
89f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
90f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    int error = 0;
9131f4210e6fc5c9b749468a2af0bac94992352010Sreeram Ramachandran
92f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    if (TEMP_FAILURE_RETRY(recv(mChannel, &error, sizeof(error), 0)) == -1) {
933a069e6a76752a0ee73c60f276ae362d1c01467fSreeram Ramachandran        return -errno;
94f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran    }
95f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran
9631f4210e6fc5c9b749468a2af0bac94992352010Sreeram Ramachandran    return error;
97f4cfad361175a7f9ccf4d41e76a9b289c3c3da22Sreeram Ramachandran}
98