/[pxelator]/lib/PXElator/dhcpd.pm
This is repository of my old source code which isn't updated any more. Go to git.rot13.org for current projects!
ViewVC logotype

Annotation of /lib/PXElator/dhcpd.pm

Parent Directory Parent Directory | Revision Log Revision Log


Revision 260 - (hide annotations)
Wed Aug 19 10:56:04 2009 UTC (14 years, 8 months ago) by dpavlin
File size: 6084 byte(s)
record all dhcp request options in audit log
1 dpavlin 48 package dhcpd;
2 dpavlin 1
3 dpavlin 44 =head1 dhcpd
4 dpavlin 1
5 dpavlin 44 start with:
6    
7     perl -Ilib/PXElator -Ilib -Mdhcpd -e start
8    
9     based on L<http://www.perlmonks.org/index.pl?node_id=325248>
10    
11     =cut
12    
13 dpavlin 1 use strict;
14     use warnings;
15    
16 dpavlin 22 use autodie;
17    
18 dpavlin 1 use IO::Socket::INET;
19 dpavlin 17 use File::Slurp;
20 dpavlin 1 use Data::Dump qw/dump/;
21    
22 dpavlin 44 use lib '..';
23 dpavlin 27 use Net::DHCP::Packet;
24     use Net::DHCP::Constants 0.67;
25 dpavlin 1
26 dpavlin 207 use CouchDB;
27 dpavlin 208 use format;
28 dpavlin 207
29 dpavlin 44 use server;
30 dpavlin 67 my $debug = server::debug;
31 dpavlin 1
32 dpavlin 44 if ( ! $server::ip ) {
33     my $server_ip = `/sbin/ifconfig`;
34 dpavlin 22 $server_ip =~ s/^.+?addr:([\d\.]+).*$/$1/gs;
35 dpavlin 44 $server::ip = $server_ip;
36 dpavlin 22 }
37    
38 dpavlin 110 warn "server ip $server::ip range: $server::ip_from - $server::ip_to\n";
39 dpavlin 1
40 dpavlin 168 use client;
41 dpavlin 17
42 dpavlin 244 sub client_mac_ip {
43     my ( $mac, $request_ip ) = @_;
44 dpavlin 1
45 dpavlin 156 my $conf = $server::conf;
46 dpavlin 17 mkdir $conf unless -e $conf;
47 dpavlin 1
48 dpavlin 177 my $ip;
49    
50 dpavlin 194 if ( $ip = client::ip_from_mac( $mac ) ) {
51 dpavlin 94 print "RENEW $mac $ip\n";
52 dpavlin 17 return $ip;
53 dpavlin 244 } elsif ( in_our_range( $request_ip ) ) {
54 dpavlin 200 $ip = client::next_ip( $mac );
55 dpavlin 177 print "NEW $mac $ip\n";
56 dpavlin 244 } else {
57     $ip = $request_ip;
58     client::save_ip_mac( $ip, $mac );
59     warn "W: $ip our of server range $server::ip $server::netmask\n";
60 dpavlin 17 }
61 dpavlin 1
62     return $ip;
63     }
64    
65 dpavlin 110 use log;
66     use config;
67 dpavlin 129 use pxelinux;
68 dpavlin 160 use client;
69 dpavlin 110
70     our $file;
71 dpavlin 44 our $transaction = 0; # FIXME predictible transaction numbers
72 dpavlin 27
73 dpavlin 244 sub ip2bin { pack('C*', split(/\./, $_[0])) };
74     sub in_our_range {
75     my $ip = shift;
76     return 1 if $ip eq '0.0.0.0';
77     return 1 if (
78     ( ip2bin($ip) & ip2bin($server::netmask) )
79     eq
80     ( ip2bin($server::ip) & ip2bin($server::netmask) )
81     );
82     }
83    
84 dpavlin 44 sub process_packet {
85     my $sock = shift;
86 dpavlin 1
87 dpavlin 128 server->refresh;
88    
89 dpavlin 1 my $buf;
90     $sock->recv($buf, 1024);
91 dpavlin 44 my $size = 'empty';
92     $size = length($buf) . ' bytes' if defined $buf;
93 dpavlin 1
94 dpavlin 94 print "packet from ",$sock->peerhost,":",$sock->peerport," $size\n" if $debug;
95 dpavlin 44 return unless $buf;
96 dpavlin 1
97 dpavlin 44 my $dhcp = Net::DHCP::Packet->new($buf);
98 dpavlin 1
99 dpavlin 67 warn "recv: ", $dhcp->toString if $debug;
100 dpavlin 1
101 dpavlin 260 $dhcp->comment( $transaction++ );
102    
103 dpavlin 44 my $mac = substr($dhcp->chaddr(),0,$dhcp->hlen()*2);
104 dpavlin 244 my $ip = client_mac_ip($mac, $dhcp->ciaddr);
105 dpavlin 1
106 dpavlin 201 my $hostname = $dhcp->getOptionValue(DHO_HOST_NAME);
107     print "$ip ", client::conf( $ip => 'hostname', default => $hostname ), " >> /etc/hosts\n";
108    
109 dpavlin 260 my $audit = { mac => format::mac($mac), ip => $ip, hostname => $hostname,
110     options => {
111     map {
112     ( $_ => $dhcp->getOptionValue( $_ ) )
113     } @{ $dhcp->{options_order} }
114     },
115     };
116 dpavlin 207
117 dpavlin 44 =for later
118 dpavlin 6
119 dpavlin 44 my $user_class = $dhcp->getOptionValue(DHO_USER_CLASS());
120 dpavlin 1
121 dpavlin 44 if ( $user_class eq 'gPXE' ) {
122     $file = $gpxe_file;
123     } elsif ( ! $file ) {
124     $file = 'undionly.kpxe';
125     }
126 dpavlin 22
127 dpavlin 44 =cut
128    
129 dpavlin 110 config::for_ip( $ip );
130    
131 dpavlin 44 my $packet = {
132     Op => BOOTREPLY(),
133     Hops => $dhcp->hops(),
134     Xid => $dhcp->xid(),
135     Flags => $dhcp->flags(),
136     Ciaddr => $dhcp->ciaddr(),
137     Yiaddr => $ip,
138     Siaddr => $server::ip,
139     Giaddr => $dhcp->giaddr(),
140     Chaddr => $dhcp->chaddr(),
141 dpavlin 110 File => $file,
142 dpavlin 160 DHO_DHCP_SERVER_IDENTIFIER() => $server::ip, # busybox/udhcpc needs it but doesn't request
143 dpavlin 44 };
144    
145 dpavlin 160 my $options = {
146     DHO_SUBNET_MASK() => $server::netmask,
147     DHO_ROUTERS() => $server::ip,
148     DHO_DOMAIN_NAME() => $server::domain_name,
149     DHO_NAME_SERVERS() => $server::ip,
150     DHO_DOMAIN_NAME_SERVERS() => $server::ip,
151     DHO_HOST_NAME() => client::conf( $ip, 'hostname' ),
152     DHO_BROADCAST_ADDRESS() => $server::bcast,
153     # DHO_NTP_SERVERS() => '',
154     };
155    
156     my @requested = split(/\s/, $dhcp->getOptionValue(DHO_DHCP_PARAMETER_REQUEST_LIST));
157 dpavlin 167 warn "options ",dump( $options ), ' requested: ',dump( @requested ) if $debug;
158    
159     my @missing;
160 dpavlin 160 foreach ( @requested ) {
161 dpavlin 167 if ( defined $options->{$_} ) {
162     $packet->{$_} = $options->{$_};
163     } else {
164     push @missing, $_;
165     }
166 dpavlin 160 }
167    
168 dpavlin 168 warn "W: options requested but missing: ",dump( @missing ),$/;
169 dpavlin 207 $audit->{requested} = [ @requested ];
170     $audit->{missing} = [ @missing ];
171 dpavlin 167
172 dpavlin 129 foreach my $opt ( 'magic', 'config_file', 'path_prefix', 'reboot_time' ) {
173     my $DH0 = eval 'DHO_PXELINUX_' . uc $opt;
174     warn "DH0: $@" if $@;
175     my $v = eval "\$pxelinux::$opt";
176     warn "v: $@" if $@;
177     next unless defined $v;
178 dpavlin 167 warn "pxelinux dhcp option $opt = $DH0 = $v\n" if $debug;
179 dpavlin 129 $packet->{ $DH0 } = $v;
180     }
181    
182 dpavlin 44 my $messagetype = $dhcp->getOptionValue(DHO_DHCP_MESSAGE_TYPE());
183    
184     if ($messagetype eq DHCPDISCOVER()) {
185 dpavlin 207 $audit->{type} = 'discover';
186 dpavlin 44 $packet->{Comment} = $dhcp->comment();
187     $packet->{DHO_DHCP_MESSAGE_TYPE()} = DHCPOFFER();
188     } elsif ($messagetype eq DHCPREQUEST()) {
189     my $requested_ip = $dhcp->getOptionValue(DHO_DHCP_REQUESTED_ADDRESS());
190 dpavlin 207 $audit->{type} = 'request';
191 dpavlin 44 if ( $ip eq $requested_ip ) {
192     $packet->{DHO_DHCP_MESSAGE_TYPE()} = DHCPACK();
193     $packet->{DHO_DHCP_LEASE_TIME()} = 5 * 60; # 5 min
194     # $packet->{DHO_ROOT_PATH()} = '/exports/foobar';
195 dpavlin 27 } else {
196 dpavlin 44 $packet->{DHO_DHCP_MESSAGE_TYPE()} = DHCPNAK();
197     $packet->{DHO_DHCP_MESSAGE()} = "Bad request, expected $ip";
198 dpavlin 27 }
199 dpavlin 44 } elsif ($messagetype eq DHCPINFORM()) {
200 dpavlin 207 $audit->{type} = 'inform';
201 dpavlin 44 } else {
202 dpavlin 207 $audit->{type} = sprintf('ignored %x', $messagetype);
203 dpavlin 44 }
204 dpavlin 27
205 dpavlin 110 warn ">> $mac == $ip server: $server::ip", $file ? " file: $file\n" : "\n" if $debug;
206 dpavlin 207 $audit->{response} = $packet;
207 dpavlin 27
208 dpavlin 44 $packet = new Net::DHCP::Packet( %$packet );
209 dpavlin 67 warn "send ",$packet->toString() if $debug;
210 dpavlin 27
211 dpavlin 244 if ( in_our_range( $ip ) ) {
212     my $buff = $packet->serialize();
213 dpavlin 207
214 dpavlin 244 my $reply = IO::Socket::INET->new(
215     LocalAddr => $server::ip,
216     LocalPort => 67,
217     Proto => "udp",
218     Broadcast => 1,
219     PeerAddr => '255.255.255.255',
220     PeerPort => 68,
221     Reuse => 1,
222     ) or die "socket: $@";
223 dpavlin 1
224 dpavlin 244 $reply->send( $buff, 0 ) or die "Error sending: $!\n";
225     } else {
226     $audit->{error} = "$ip our of our range $server::ip $server::netmask";
227     }
228 dpavlin 1
229 dpavlin 244 CouchDB::audit( $audit->{type}, $audit );
230    
231 dpavlin 44 # system("arp -s $ip $mac"),
232 dpavlin 1
233 dpavlin 44 }
234 dpavlin 1
235 dpavlin 44 sub start {
236    
237     my $sock = IO::Socket::INET->new(
238     LocalPort => 67,
239     # LocalAddr => 'localhost',
240     # LocalAddr => '10.0.0.100',
241     LocalAddr => '0.0.0.0',
242     Proto => 'udp',
243     ReuseAddr => 1,
244     # PeerPort => getservbyname('bootpc', 'udp'),
245     Broadcast => 1,
246     Type => SOCK_DGRAM,
247     ) or die "Failed to bind to socket: $@";
248    
249     print "DHCP listen on ",$sock->sockhost,":",$sock->sockport,"\n";
250    
251 dpavlin 232 CouchDB::audit( 'start', { addr => $sock->sockhost, port => $sock->sockport } );
252 dpavlin 207
253 dpavlin 44 while (1) {
254     process_packet $sock;
255 dpavlin 1 }
256 dpavlin 44 }
257 dpavlin 1
258 dpavlin 45 warn "loaded";
259    
260 dpavlin 44 1;

  ViewVC Help
Powered by ViewVC 1.1.26