1 /*-*- Mode: C; c-basic-offset: 8; indent-tabs-mode: nil -*-*/
4 This file is part of systemd.
6 Copyright 2011 Lennart Poettering
8 systemd is free software; you can redistribute it and/or modify it
9 under the terms of the GNU General Public License as published by
10 the Free Software Foundation; either version 2 of the License, or
11 (at your option) any later version.
13 systemd is distributed in the hope that it will be useful, but
14 WITHOUT ANY WARRANTY; without even the implied warranty of
15 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
16 General Public License for more details.
18 You should have received a copy of the GNU General Public License
19 along with systemd; If not, see <http://www.gnu.org/licenses/>.
25 #include <sys/epoll.h>
28 #include "logind-session.h"
31 #include "cgroup-util.h"
33 #define IDLE_THRESHOLD_USEC (5*USEC_PER_MINUTE)
35 Session* session_new(Manager *m, User *u, const char *id) {
45 s->state_file = strappend("/run/systemd/sessions/", id);
51 s->id = file_name_from_path(s->state_file);
53 if (hashmap_put(m->sessions, s->id, s) < 0) {
63 LIST_PREPEND(Session, sessions_by_user, u->sessions, s);
68 void session_free(Session *s) {
72 LIST_REMOVE(Session, gc_queue, s->manager->session_gc_queue, s);
75 LIST_REMOVE(Session, sessions_by_user, s->user->sessions, s);
77 if (s->user->display == s)
78 s->user->display = NULL;
82 if (s->seat->active == s)
83 s->seat->active = NULL;
85 LIST_REMOVE(Session, sessions_by_seat, s->seat->sessions, s);
89 hashmap_remove(s->manager->cgroups, s->cgroup_path);
92 strv_free(s->controllers);
100 hashmap_remove(s->manager->sessions, s->id);
102 session_remove_fifo(s);
108 int session_save(Session *s) {
118 r = safe_mkdir("/run/systemd/sessions", 0755, 0, 0);
122 r = fopen_temporary(s->state_file, &f, &temp_path);
128 fchmod(fileno(f), 0644);
131 "# This is private data. Do not parse.\n"
136 "KILL_PROCESSES=%i\n",
137 (unsigned long) s->user->uid,
139 session_is_active(s),
146 session_type_to_string(s->type));
188 if (s->seat && seat_can_multi_session(s->seat))
196 (unsigned long) s->leader);
201 (unsigned long long) s->audit_id);
205 if (ferror(f) || rename(temp_path, s->state_file) < 0) {
207 unlink(s->state_file);
216 log_error("Failed to save session data for %s: %s", s->id, strerror(-r));
221 int session_load(Session *s) {
223 *kill_processes = NULL,
234 r = parse_env_file(s->state_file, NEWLINE,
236 "KILL_PROCESSES", &kill_processes,
237 "CGROUP", &s->cgroup_path,
238 "FIFO", &s->fifo_path,
241 "DISPLAY", &s->display,
242 "REMOTE_HOST", &s->remote_host,
243 "REMOTE_USER", &s->remote_user,
244 "SERVICE", &s->service,
254 k = parse_boolean(remote);
259 if (kill_processes) {
260 k = parse_boolean(kill_processes);
262 s->kill_processes = k;
265 if (seat && !s->seat) {
268 o = hashmap_get(s->manager->seats, seat);
270 seat_attach_session(o, s);
273 if (vtnr && s->seat && seat_can_multi_session(s->seat)) {
276 k = safe_atoi(vtnr, &v);
277 if (k >= 0 && v >= 1)
284 k = parse_pid(leader, &pid);
285 if (k >= 0 && pid >= 1) {
288 audit_session_from_pid(pid, &s->audit_id);
295 t = session_type_from_string(type);
303 /* If we open an unopened pipe for reading we will not
304 get an EOF. to trigger an EOF we hence open it for
305 reading, but close it right-away which then will
308 fd = session_create_fifo(s);
310 close_nointr_nofail(fd);
316 free(kill_processes);
325 int session_activate(Session *s) {
336 if (s->seat->active == s)
339 assert(seat_is_vtconsole(s->seat));
345 return seat_set_active(s->seat, s);
348 static int session_link_x11_socket(Session *s) {
354 assert(s->user->runtime_path);
356 if (s->user->display)
359 if (!s->display || !display_is_local(s->display))
362 k = strspn(s->display+1, "0123456789");
363 f = new(char, sizeof("/tmp/.X11-unix/X") + k);
365 log_error("Out of memory");
369 c = stpcpy(f, "/tmp/.X11-unix/X");
370 memcpy(c, s->display+1, k);
373 if (access(f, F_OK) < 0) {
374 log_warning("Session %s has display %s with nonexisting socket %s.", s->id, s->display, f);
379 t = strappend(s->user->runtime_path, "/X11-display");
381 log_error("Out of memory");
386 if (link(f, t) < 0) {
387 if (errno == EEXIST) {
394 if (symlink(f, t) < 0) {
396 if (errno == EEXIST) {
399 if (symlink(f, t) >= 0)
403 log_error("Failed to link %s to %s: %m", f, t);
411 log_info("Linked %s to %s.", f, t);
415 s->user->display = s;
420 static int session_create_one_group(Session *s, const char *controller, const char *path) {
428 r = cg_create_and_attach(controller, path, s->leader);
430 r = cg_create(controller, path);
432 r = cg_create(controller, path);
437 r = cg_set_task_access(controller, path, 0644, s->user->uid, s->user->gid, -1);
439 r = cg_set_group_access(controller, path, 0755, s->user->uid, s->user->gid);
444 static int session_create_cgroup(Session *s) {
451 assert(s->user->cgroup_path);
453 if (!s->cgroup_path) {
454 if (asprintf(&p, "%s/%s", s->user->cgroup_path, s->id) < 0) {
455 log_error("Out of memory");
461 r = session_create_one_group(s, SYSTEMD_CGROUP_CONTROLLER, p);
463 log_error("Failed to create "SYSTEMD_CGROUP_CONTROLLER":%s: %s", p, strerror(-r));
465 s->cgroup_path = NULL;
471 STRV_FOREACH(k, s->controllers) {
473 if (strv_contains(s->reset_controllers, *k))
476 r = session_create_one_group(s, *k, p);
478 log_warning("Failed to create %s:%s: %s", *k, p, strerror(-r));
481 STRV_FOREACH(k, s->manager->controllers) {
483 if (strv_contains(s->reset_controllers, *k) ||
484 strv_contains(s->manager->reset_controllers, *k) ||
485 strv_contains(s->controllers, *k))
488 r = session_create_one_group(s, *k, p);
490 log_warning("Failed to create %s:%s: %s", *k, p, strerror(-r));
495 STRV_FOREACH(k, s->reset_controllers) {
496 r = cg_attach(*k, "/", s->leader);
498 log_warning("Failed to reset controller %s: %s", *k, strerror(-r));
502 STRV_FOREACH(k, s->manager->reset_controllers) {
504 if (strv_contains(s->reset_controllers, *k) ||
505 strv_contains(s->controllers, *k))
508 r = cg_attach(*k, "/", s->leader);
510 log_warning("Failed to reset controller %s: %s", *k, strerror(-r));
515 hashmap_put(s->manager->cgroups, s->cgroup_path, s);
520 int session_start(Session *s) {
529 r = user_start(s->user);
533 log_full(s->type == SESSION_TTY || s->type == SESSION_X11 ? LOG_INFO : LOG_DEBUG,
534 "New session %s of user %s.", s->id, s->user->name);
537 r = session_create_cgroup(s);
541 /* Create X11 symlink */
542 session_link_x11_socket(s);
544 dual_timestamp_get(&s->timestamp);
547 seat_read_active_vt(s->seat);
551 /* Save session data */
555 session_send_signal(s, true);
560 if (s->seat->active == s)
561 seat_send_changed(s->seat, "Sessions\0ActiveSession\0");
563 seat_send_changed(s->seat, "Sessions\0");
566 user_send_changed(s->user, "Sessions\0");
571 static bool session_shall_kill(Session *s) {
574 if (!s->kill_processes)
577 if (strv_contains(s->manager->kill_exclude_users, s->user->name))
580 if (strv_isempty(s->manager->kill_only_users))
583 return strv_contains(s->manager->kill_only_users, s->user->name);
586 static int session_terminate_cgroup(Session *s) {
595 cg_trim(SYSTEMD_CGROUP_CONTROLLER, s->cgroup_path, false);
597 if (session_shall_kill(s)) {
599 r = cg_kill_recursive_and_wait(SYSTEMD_CGROUP_CONTROLLER, s->cgroup_path, true);
601 log_error("Failed to kill session cgroup: %s", strerror(-r));
607 /* We still send a HUP to the leader process,
608 * even if we are not supposed to kill the
609 * whole cgroup. But let's first check the
610 * leader still exists and belongs to our
613 r = manager_get_session_by_pid(s->manager, s->leader, &t);
614 if (r > 0 && t == s) {
615 kill(s->leader, SIGTERM); /* for normal processes */
616 kill(s->leader, SIGHUP); /* for shells */
617 kill(s->leader, SIGCONT); /* in case they are stopped */
621 r = cg_is_empty_recursive(SYSTEMD_CGROUP_CONTROLLER, s->cgroup_path, true);
623 log_error("Failed to check session cgroup: %s", strerror(-r));
625 r = cg_delete(SYSTEMD_CGROUP_CONTROLLER, s->cgroup_path);
627 log_error("Failed to delete session cgroup: %s", strerror(-r));
631 STRV_FOREACH(k, s->user->manager->controllers)
632 cg_trim(*k, s->cgroup_path, true);
634 hashmap_remove(s->manager->cgroups, s->cgroup_path);
636 free(s->cgroup_path);
637 s->cgroup_path = NULL;
642 static int session_unlink_x11_socket(Session *s) {
649 if (s->user->display != s)
652 s->user->display = NULL;
654 t = strappend(s->user->runtime_path, "/X11-display");
656 log_error("Out of memory");
663 return r < 0 ? -errno : 0;
666 int session_stop(Session *s) {
672 log_full(s->type == SESSION_TTY || s->type == SESSION_X11 ? LOG_INFO : LOG_DEBUG,
673 "Removed session %s.", s->id);
676 k = session_terminate_cgroup(s);
680 /* Remove X11 symlink */
681 session_unlink_x11_socket(s);
683 unlink(s->state_file);
684 session_add_to_gc_queue(s);
685 user_add_to_gc_queue(s->user);
688 session_send_signal(s, false);
691 if (s->seat->active == s)
692 seat_set_active(s->seat, NULL);
694 seat_send_changed(s->seat, "Sessions\0");
697 user_send_changed(s->user, "Sessions\0");
704 bool session_is_active(Session *s) {
710 return s->seat->active == s;
713 int session_get_idle_hint(Session *s, dual_timestamp *t) {
724 *t = s->idle_hint_timestamp;
732 if (s->tty[0] != '/') {
733 p = strappend("/dev/", s->tty);
739 if (!startswith(p ? p : s->tty, "/dev/")) {
744 k = lstat(p ? p : s->tty, &st);
750 u = timespec_load(&st.st_atim);
751 n = now(CLOCK_REALTIME);
752 b = u + IDLE_THRESHOLD_USEC < n;
755 dual_timestamp_from_realtime(t, u + b ? IDLE_THRESHOLD_USEC : 0);
761 *t = s->idle_hint_timestamp;
766 void session_set_idle_hint(Session *s, bool b) {
769 if (s->idle_hint == b)
773 dual_timestamp_get(&s->idle_hint_timestamp);
775 session_send_changed(s,
778 "IdleSinceHintMonotonic\0");
781 seat_send_changed(s->seat,
784 "IdleSinceHintMonotonic\0");
786 user_send_changed(s->user,
789 "IdleSinceHintMonotonic\0");
791 manager_send_changed(s->manager,
794 "IdleSinceHintMonotonic\0");
797 int session_create_fifo(Session *s) {
804 r = safe_mkdir("/run/systemd/sessions", 0755, 0, 0);
808 if (asprintf(&s->fifo_path, "/run/systemd/sessions/%s.ref", s->id) < 0)
811 if (mkfifo(s->fifo_path, 0600) < 0 && errno != EEXIST)
815 /* Open reading side */
816 if (s->fifo_fd < 0) {
817 struct epoll_event ev;
819 s->fifo_fd = open(s->fifo_path, O_RDONLY|O_CLOEXEC|O_NDELAY);
823 r = hashmap_put(s->manager->fifo_fds, INT_TO_PTR(s->fifo_fd + 1), s);
829 ev.data.u32 = FD_FIFO_BASE + s->fifo_fd;
831 if (epoll_ctl(s->manager->epoll_fd, EPOLL_CTL_ADD, s->fifo_fd, &ev) < 0)
835 /* Open writing side */
836 r = open(s->fifo_path, O_WRONLY|O_CLOEXEC|O_NDELAY);
843 void session_remove_fifo(Session *s) {
846 if (s->fifo_fd >= 0) {
847 assert_se(hashmap_remove(s->manager->fifo_fds, INT_TO_PTR(s->fifo_fd + 1)) == s);
848 assert_se(epoll_ctl(s->manager->epoll_fd, EPOLL_CTL_DEL, s->fifo_fd, NULL) == 0);
849 close_nointr_nofail(s->fifo_fd);
854 unlink(s->fifo_path);
860 int session_check_gc(Session *s, bool drop_not_started) {
865 if (drop_not_started && !s->started)
868 if (s->fifo_fd >= 0) {
870 r = pipe_eof(s->fifo_fd);
878 if (s->cgroup_path) {
880 r = cg_is_empty_recursive(SYSTEMD_CGROUP_CONTROLLER, s->cgroup_path, false);
891 void session_add_to_gc_queue(Session *s) {
897 LIST_PREPEND(Session, gc_queue, s->manager->session_gc_queue, s);
898 s->in_gc_queue = true;
901 int session_kill(Session *s, KillWho who, int signo) {
910 if (s->leader <= 0 && who == KILL_LEADER)
914 if (kill(s->leader, signo) < 0)
917 if (who == KILL_ALL) {
920 pid_set = set_new(trivial_hash_func, trivial_compare_func);
925 q = set_put(pid_set, LONG_TO_PTR(s->leader));
930 q = cg_kill_recursive(SYSTEMD_CGROUP_CONTROLLER, s->cgroup_path, signo, false, true, false, pid_set);
932 if (q != -EAGAIN && q != -ESRCH && q != -ENOENT)
942 static const char* const session_type_table[_SESSION_TYPE_MAX] = {
943 [SESSION_TTY] = "tty",
944 [SESSION_X11] = "x11",
945 [SESSION_UNSPECIFIED] = "unspecified"
948 DEFINE_STRING_TABLE_LOOKUP(session_type, SessionType);
950 static const char* const kill_who_table[_KILL_WHO_MAX] = {
951 [KILL_LEADER] = "leader",
955 DEFINE_STRING_TABLE_LOOKUP(kill_who, KillWho);