1 |
dpavlin |
48 |
package dhcpd; |
2 |
dpavlin |
1 |
|
3 |
dpavlin |
44 |
=head1 dhcpd |
4 |
dpavlin |
1 |
|
5 |
dpavlin |
44 |
start with: |
6 |
|
|
|
7 |
|
|
perl -Ilib/PXElator -Ilib -Mdhcpd -e start |
8 |
|
|
|
9 |
|
|
based on L<http://www.perlmonks.org/index.pl?node_id=325248> |
10 |
|
|
|
11 |
|
|
=cut |
12 |
|
|
|
13 |
dpavlin |
1 |
use strict; |
14 |
|
|
use warnings; |
15 |
|
|
|
16 |
dpavlin |
22 |
use autodie; |
17 |
|
|
|
18 |
dpavlin |
1 |
use IO::Socket::INET; |
19 |
dpavlin |
17 |
use File::Slurp; |
20 |
dpavlin |
1 |
use Data::Dump qw/dump/; |
21 |
|
|
|
22 |
dpavlin |
44 |
use lib '..'; |
23 |
dpavlin |
27 |
use Net::DHCP::Packet; |
24 |
|
|
use Net::DHCP::Constants 0.67; |
25 |
dpavlin |
1 |
|
26 |
dpavlin |
207 |
use CouchDB; |
27 |
dpavlin |
208 |
use format; |
28 |
dpavlin |
207 |
|
29 |
dpavlin |
44 |
use server; |
30 |
dpavlin |
67 |
my $debug = server::debug; |
31 |
dpavlin |
1 |
|
32 |
dpavlin |
44 |
if ( ! $server::ip ) { |
33 |
|
|
my $server_ip = `/sbin/ifconfig`; |
34 |
dpavlin |
22 |
$server_ip =~ s/^.+?addr:([\d\.]+).*$/$1/gs; |
35 |
dpavlin |
44 |
$server::ip = $server_ip; |
36 |
dpavlin |
22 |
} |
37 |
|
|
|
38 |
dpavlin |
110 |
warn "server ip $server::ip range: $server::ip_from - $server::ip_to\n"; |
39 |
dpavlin |
1 |
|
40 |
dpavlin |
168 |
use client; |
41 |
dpavlin |
17 |
|
42 |
dpavlin |
244 |
sub client_mac_ip { |
43 |
|
|
my ( $mac, $request_ip ) = @_; |
44 |
dpavlin |
1 |
|
45 |
dpavlin |
267 |
if ( ! $mac ) { |
46 |
|
|
warn "W: no mac in requiest\n"; |
47 |
|
|
return; |
48 |
|
|
} |
49 |
|
|
|
50 |
dpavlin |
156 |
my $conf = $server::conf; |
51 |
dpavlin |
17 |
mkdir $conf unless -e $conf; |
52 |
dpavlin |
1 |
|
53 |
dpavlin |
177 |
my $ip; |
54 |
|
|
|
55 |
dpavlin |
194 |
if ( $ip = client::ip_from_mac( $mac ) ) { |
56 |
dpavlin |
94 |
print "RENEW $mac $ip\n"; |
57 |
dpavlin |
324 |
client::save_ip_mac( $ip, $mac ); |
58 |
dpavlin |
17 |
return $ip; |
59 |
dpavlin |
413 |
} elsif ( ip::in_dhcp_range( $request_ip ) || $request_ip eq '0.0.0.0' ) { |
60 |
dpavlin |
200 |
$ip = client::next_ip( $mac ); |
61 |
dpavlin |
177 |
print "NEW $mac $ip\n"; |
62 |
dpavlin |
244 |
} else { |
63 |
|
|
$ip = $request_ip; |
64 |
|
|
client::save_ip_mac( $ip, $mac ); |
65 |
dpavlin |
449 |
warn "W: $ip out of server range $server::ip/$server::netmask\n"; |
66 |
dpavlin |
17 |
} |
67 |
dpavlin |
1 |
|
68 |
|
|
return $ip; |
69 |
|
|
} |
70 |
|
|
|
71 |
dpavlin |
110 |
use log; |
72 |
|
|
use config; |
73 |
dpavlin |
129 |
use pxelinux; |
74 |
dpavlin |
160 |
use client; |
75 |
dpavlin |
110 |
|
76 |
|
|
our $file; |
77 |
dpavlin |
44 |
our $transaction = 0; # FIXME predictible transaction numbers |
78 |
dpavlin |
27 |
|
79 |
dpavlin |
44 |
sub process_packet { |
80 |
|
|
my $sock = shift; |
81 |
dpavlin |
1 |
|
82 |
|
|
my $buf; |
83 |
|
|
$sock->recv($buf, 1024); |
84 |
dpavlin |
44 |
my $size = 'empty'; |
85 |
|
|
$size = length($buf) . ' bytes' if defined $buf; |
86 |
dpavlin |
1 |
|
87 |
dpavlin |
94 |
print "packet from ",$sock->peerhost,":",$sock->peerport," $size\n" if $debug; |
88 |
dpavlin |
44 |
return unless $buf; |
89 |
dpavlin |
1 |
|
90 |
dpavlin |
44 |
my $dhcp = Net::DHCP::Packet->new($buf); |
91 |
dpavlin |
1 |
|
92 |
dpavlin |
67 |
warn "recv: ", $dhcp->toString if $debug; |
93 |
dpavlin |
1 |
|
94 |
dpavlin |
260 |
$dhcp->comment( $transaction++ ); |
95 |
|
|
|
96 |
dpavlin |
313 |
my $mac = format::mac( substr($dhcp->chaddr(),0,$dhcp->hlen()*2) ); |
97 |
dpavlin |
244 |
my $ip = client_mac_ip($mac, $dhcp->ciaddr); |
98 |
dpavlin |
1 |
|
99 |
dpavlin |
201 |
my $hostname = $dhcp->getOptionValue(DHO_HOST_NAME); |
100 |
dpavlin |
313 |
print "$ip ", client::conf( $ip => 'hostname', default => $hostname ), " >> /etc/hosts\n" if $hostname; |
101 |
dpavlin |
201 |
|
102 |
dpavlin |
313 |
my $audit = { mac => $mac, ip => $ip, hostname => $hostname, |
103 |
dpavlin |
260 |
options => { |
104 |
|
|
map { |
105 |
|
|
( $_ => $dhcp->getOptionValue( $_ ) ) |
106 |
|
|
} @{ $dhcp->{options_order} } |
107 |
|
|
}, |
108 |
|
|
}; |
109 |
dpavlin |
207 |
|
110 |
dpavlin |
44 |
=for later |
111 |
dpavlin |
6 |
|
112 |
dpavlin |
44 |
my $user_class = $dhcp->getOptionValue(DHO_USER_CLASS()); |
113 |
dpavlin |
1 |
|
114 |
dpavlin |
44 |
if ( $user_class eq 'gPXE' ) { |
115 |
|
|
$file = $gpxe_file; |
116 |
|
|
} elsif ( ! $file ) { |
117 |
|
|
$file = 'undionly.kpxe'; |
118 |
|
|
} |
119 |
dpavlin |
22 |
|
120 |
dpavlin |
44 |
=cut |
121 |
|
|
|
122 |
dpavlin |
110 |
config::for_ip( $ip ); |
123 |
|
|
|
124 |
dpavlin |
457 |
my $server = server::as_hash_for $ip; |
125 |
dpavlin |
456 |
|
126 |
dpavlin |
44 |
my $packet = { |
127 |
|
|
Op => BOOTREPLY(), |
128 |
|
|
Hops => $dhcp->hops(), |
129 |
|
|
Xid => $dhcp->xid(), |
130 |
|
|
Flags => $dhcp->flags(), |
131 |
|
|
Ciaddr => $dhcp->ciaddr(), |
132 |
|
|
Yiaddr => $ip, |
133 |
dpavlin |
456 |
Siaddr => $server->{ip}, |
134 |
dpavlin |
44 |
Giaddr => $dhcp->giaddr(), |
135 |
|
|
Chaddr => $dhcp->chaddr(), |
136 |
dpavlin |
110 |
File => $file, |
137 |
dpavlin |
456 |
DHO_DHCP_SERVER_IDENTIFIER() => $server->{ip}, # busybox/udhcpc needs it but doesn't request |
138 |
dpavlin |
44 |
}; |
139 |
|
|
|
140 |
dpavlin |
160 |
my $options = { |
141 |
dpavlin |
456 |
DHO_SUBNET_MASK() => $server->{netmask}, |
142 |
dpavlin |
464 |
DHO_ROUTERS() => ( $server->{gw} || $server->{ip} ), |
143 |
dpavlin |
456 |
DHO_DOMAIN_NAME() => $server->{domain}, |
144 |
|
|
DHO_NAME_SERVERS() => $server->{ip}, |
145 |
dpavlin |
464 |
DHO_DOMAIN_NAME_SERVERS() => ( $server->{dns} || $server->{ip} ), |
146 |
dpavlin |
160 |
DHO_HOST_NAME() => client::conf( $ip, 'hostname' ), |
147 |
dpavlin |
456 |
DHO_BROADCAST_ADDRESS() => $server->{bcast}, |
148 |
dpavlin |
160 |
# DHO_NTP_SERVERS() => '', |
149 |
|
|
}; |
150 |
|
|
|
151 |
|
|
my @requested = split(/\s/, $dhcp->getOptionValue(DHO_DHCP_PARAMETER_REQUEST_LIST)); |
152 |
dpavlin |
167 |
warn "options ",dump( $options ), ' requested: ',dump( @requested ) if $debug; |
153 |
|
|
|
154 |
|
|
my @missing; |
155 |
dpavlin |
160 |
foreach ( @requested ) { |
156 |
dpavlin |
167 |
if ( defined $options->{$_} ) { |
157 |
|
|
$packet->{$_} = $options->{$_}; |
158 |
|
|
} else { |
159 |
|
|
push @missing, $_; |
160 |
|
|
} |
161 |
dpavlin |
160 |
} |
162 |
|
|
|
163 |
dpavlin |
168 |
warn "W: options requested but missing: ",dump( @missing ),$/; |
164 |
dpavlin |
207 |
$audit->{requested} = [ @requested ]; |
165 |
|
|
$audit->{missing} = [ @missing ]; |
166 |
dpavlin |
167 |
|
167 |
dpavlin |
129 |
foreach my $opt ( 'magic', 'config_file', 'path_prefix', 'reboot_time' ) { |
168 |
|
|
my $DH0 = eval 'DHO_PXELINUX_' . uc $opt; |
169 |
|
|
warn "DH0: $@" if $@; |
170 |
|
|
my $v = eval "\$pxelinux::$opt"; |
171 |
|
|
warn "v: $@" if $@; |
172 |
|
|
next unless defined $v; |
173 |
dpavlin |
167 |
warn "pxelinux dhcp option $opt = $DH0 = $v\n" if $debug; |
174 |
dpavlin |
129 |
$packet->{ $DH0 } = $v; |
175 |
|
|
} |
176 |
|
|
|
177 |
dpavlin |
44 |
my $messagetype = $dhcp->getOptionValue(DHO_DHCP_MESSAGE_TYPE()); |
178 |
|
|
|
179 |
dpavlin |
423 |
my @type; |
180 |
|
|
|
181 |
dpavlin |
44 |
if ($messagetype eq DHCPDISCOVER()) { |
182 |
|
|
$packet->{Comment} = $dhcp->comment(); |
183 |
|
|
$packet->{DHO_DHCP_MESSAGE_TYPE()} = DHCPOFFER(); |
184 |
dpavlin |
424 |
@type = qw( discover offer ); |
185 |
dpavlin |
44 |
} elsif ($messagetype eq DHCPREQUEST()) { |
186 |
dpavlin |
423 |
@type = qw( request ); |
187 |
|
|
my $requested_ip = $dhcp->getOptionValue(DHO_DHCP_REQUESTED_ADDRESS()) || $dhcp->ciaddr(); |
188 |
dpavlin |
44 |
if ( $ip eq $requested_ip ) { |
189 |
|
|
$packet->{DHO_DHCP_MESSAGE_TYPE()} = DHCPACK(); |
190 |
|
|
$packet->{DHO_DHCP_LEASE_TIME()} = 5 * 60; # 5 min |
191 |
|
|
# $packet->{DHO_ROOT_PATH()} = '/exports/foobar'; |
192 |
dpavlin |
423 |
$type[1] = 'ack'; |
193 |
dpavlin |
27 |
} else { |
194 |
dpavlin |
44 |
$packet->{DHO_DHCP_MESSAGE_TYPE()} = DHCPNAK(); |
195 |
dpavlin |
423 |
$packet->{DHO_DHCP_MESSAGE()} = "Bad request, expected $ip got $requested_ip"; |
196 |
|
|
$type[1] = 'nak'; |
197 |
dpavlin |
27 |
} |
198 |
dpavlin |
44 |
} elsif ($messagetype eq DHCPINFORM()) { |
199 |
dpavlin |
423 |
@type = qw( inform ignored ); |
200 |
dpavlin |
44 |
} else { |
201 |
dpavlin |
423 |
@type = ( $messagetype, 'ignored' ); |
202 |
dpavlin |
44 |
} |
203 |
dpavlin |
27 |
|
204 |
dpavlin |
423 |
warn "# type ",dump @type; |
205 |
|
|
$audit->{type} = [ @type ]; |
206 |
|
|
|
207 |
dpavlin |
207 |
$audit->{response} = $packet; |
208 |
dpavlin |
27 |
|
209 |
dpavlin |
44 |
$packet = new Net::DHCP::Packet( %$packet ); |
210 |
dpavlin |
67 |
warn "send ",$packet->toString() if $debug; |
211 |
dpavlin |
27 |
|
212 |
dpavlin |
413 |
if ( ip::in_dhcp_range( $ip ) ) { |
213 |
dpavlin |
244 |
my $buff = $packet->serialize(); |
214 |
dpavlin |
207 |
|
215 |
dpavlin |
244 |
my $reply = IO::Socket::INET->new( |
216 |
dpavlin |
456 |
LocalAddr => $server->{ip}, |
217 |
dpavlin |
244 |
LocalPort => 67, |
218 |
|
|
Proto => "udp", |
219 |
|
|
Broadcast => 1, |
220 |
dpavlin |
428 |
# PeerAddr => '255.255.255.255', |
221 |
dpavlin |
456 |
PeerAddr => $server->{bcast}, |
222 |
dpavlin |
244 |
PeerPort => 68, |
223 |
|
|
Reuse => 1, |
224 |
|
|
) or die "socket: $@"; |
225 |
dpavlin |
1 |
|
226 |
dpavlin |
244 |
$reply->send( $buff, 0 ) or die "Error sending: $!\n"; |
227 |
dpavlin |
456 |
warn ">> $mac == $ip server: $server->{ip}", $file ? " file: $file\n" : "\n"; |
228 |
dpavlin |
244 |
} else { |
229 |
dpavlin |
449 |
$audit->{error} = "$ip not in server range $server::ip $server::netmask - no packet sent"; |
230 |
dpavlin |
413 |
warn $audit->{error}; |
231 |
dpavlin |
244 |
} |
232 |
dpavlin |
1 |
|
233 |
dpavlin |
423 |
CouchDB::audit( @type, $audit ); |
234 |
dpavlin |
244 |
|
235 |
dpavlin |
44 |
# system("arp -s $ip $mac"), |
236 |
dpavlin |
1 |
|
237 |
dpavlin |
44 |
} |
238 |
dpavlin |
1 |
|
239 |
dpavlin |
44 |
sub start { |
240 |
|
|
|
241 |
|
|
my $sock = IO::Socket::INET->new( |
242 |
|
|
LocalPort => 67, |
243 |
|
|
# LocalAddr => 'localhost', |
244 |
|
|
# LocalAddr => '10.0.0.100', |
245 |
|
|
LocalAddr => '0.0.0.0', |
246 |
|
|
Proto => 'udp', |
247 |
|
|
ReuseAddr => 1, |
248 |
|
|
# PeerPort => getservbyname('bootpc', 'udp'), |
249 |
|
|
Broadcast => 1, |
250 |
|
|
Type => SOCK_DGRAM, |
251 |
|
|
) or die "Failed to bind to socket: $@"; |
252 |
|
|
|
253 |
|
|
print "DHCP listen on ",$sock->sockhost,":",$sock->sockport,"\n"; |
254 |
|
|
|
255 |
dpavlin |
232 |
CouchDB::audit( 'start', { addr => $sock->sockhost, port => $sock->sockport } ); |
256 |
dpavlin |
207 |
|
257 |
dpavlin |
44 |
while (1) { |
258 |
dpavlin |
428 |
server->refresh; |
259 |
dpavlin |
44 |
process_packet $sock; |
260 |
dpavlin |
1 |
} |
261 |
dpavlin |
44 |
} |
262 |
dpavlin |
1 |
|
263 |
dpavlin |
45 |
warn "loaded"; |
264 |
|
|
|
265 |
dpavlin |
44 |
1; |