1 /*-*- Mode: C; c-basic-offset: 8; indent-tabs-mode: nil -*-*/
4 This file is part of systemd.
6 Copyright 2010 Lennart Poettering
8 systemd is free software; you can redistribute it and/or modify it
9 under the terms of the GNU Lesser General Public License as published by
10 the Free Software Foundation; either version 2.1 of the License, or
11 (at your option) any later version.
13 systemd is distributed in the hope that it will be useful, but
14 WITHOUT ANY WARRANTY; without even the implied warranty of
15 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
16 Lesser General Public License for more details.
18 You should have received a copy of the GNU Lesser General Public License
19 along with systemd; If not, see <http://www.gnu.org/licenses/>.
22 #include <dbus/dbus.h>
28 #include <sys/types.h>
34 #include <sys/prctl.h>
35 #include <sys/mount.h>
39 #include "load-fragment.h"
42 #include "conf-parser.h"
43 #include "bus-errors.h"
51 #include "path-util.h"
52 #include "switch-root.h"
53 #include "capability.h"
56 #include "mount-setup.h"
57 #include "loopback-setup.h"
58 #include "kmod-setup.h"
59 #include "hostname-setup.h"
60 #include "machine-id-setup.h"
61 #include "locale-setup.h"
63 #include "selinux-setup.h"
64 #include "ima-setup.h"
71 ACTION_DUMP_CONFIGURATION_ITEMS,
73 } arg_action = ACTION_RUN;
75 static char *arg_default_unit = NULL;
76 static ManagerRunningAs arg_running_as = _MANAGER_RUNNING_AS_INVALID;
78 static bool arg_dump_core = true;
79 static bool arg_crash_shell = false;
80 static int arg_crash_chvt = -1;
81 static bool arg_confirm_spawn = false;
82 static bool arg_show_status = true;
83 static bool arg_switched_root = false;
84 static char **arg_default_controllers = NULL;
85 static char ***arg_join_controllers = NULL;
86 static ExecOutput arg_default_std_output = EXEC_OUTPUT_JOURNAL;
87 static ExecOutput arg_default_std_error = EXEC_OUTPUT_INHERIT;
88 static usec_t arg_runtime_watchdog = 0;
89 static usec_t arg_shutdown_watchdog = 10 * USEC_PER_MINUTE;
90 static struct rlimit *arg_default_rlimit[RLIMIT_NLIMITS] = {};
91 static uint64_t arg_capability_bounding_set_drop = 0;
92 static nsec_t arg_timer_slack_nsec = (nsec_t) -1;
94 static FILE* serialization = NULL;
96 static void nop_handler(int sig) {
99 _noreturn_ static void crash(int sig) {
102 log_error("Caught <%s>, not dumping core.", signal_to_string(sig));
107 /* We want to wait for the core process, hence let's enable SIGCHLD */
109 sa.sa_handler = nop_handler;
110 sa.sa_flags = SA_NOCLDSTOP|SA_RESTART;
111 assert_se(sigaction(SIGCHLD, &sa, NULL) == 0);
113 if ((pid = fork()) < 0)
114 log_error("Caught <%s>, cannot fork for core dump: %s", signal_to_string(sig), strerror(errno));
119 /* Enable default signal handler for core dump */
121 sa.sa_handler = SIG_DFL;
122 assert_se(sigaction(sig, &sa, NULL) == 0);
124 /* Don't limit the core dump size */
126 rl.rlim_cur = RLIM_INFINITY;
127 rl.rlim_max = RLIM_INFINITY;
128 setrlimit(RLIMIT_CORE, &rl);
130 /* Just to be sure... */
131 assert_se(chdir("/") == 0);
133 /* Raise the signal again */
136 assert_not_reached("We shouldn't be here...");
143 /* Order things nicely. */
144 if ((r = wait_for_terminate(pid, &status)) < 0)
145 log_error("Caught <%s>, waitpid() failed: %s", signal_to_string(sig), strerror(-r));
146 else if (status.si_code != CLD_DUMPED)
147 log_error("Caught <%s>, core dump failed.", signal_to_string(sig));
149 log_error("Caught <%s>, dumped core as pid %lu.", signal_to_string(sig), (unsigned long) pid);
154 chvt(arg_crash_chvt);
156 if (arg_crash_shell) {
160 log_info("Executing crash shell in 10s...");
163 /* Let the kernel reap children for us */
165 sa.sa_handler = SIG_IGN;
166 sa.sa_flags = SA_NOCLDSTOP|SA_NOCLDWAIT|SA_RESTART;
167 assert_se(sigaction(SIGCHLD, &sa, NULL) == 0);
171 log_error("Failed to fork off crash shell: %s", strerror(errno));
173 make_console_stdio();
174 execl("/bin/sh", "/bin/sh", NULL);
176 log_error("execl() failed: %s", strerror(errno));
180 log_info("Successfully spawned crash shell as pid %lu.", (unsigned long) pid);
183 log_info("Freezing execution.");
187 static void install_crash_handler(void) {
192 sa.sa_handler = crash;
193 sa.sa_flags = SA_NODEFER;
195 sigaction_many(&sa, SIGNALS_CRASH_HANDLER, -1);
198 static int console_setup(bool do_reset) {
201 /* If we are init, we connect stdin/stdout/stderr to /dev/null
202 * and make sure we don't have a controlling tty. */
209 tty_fd = open_terminal("/dev/console", O_WRONLY|O_NOCTTY|O_CLOEXEC);
211 log_error("Failed to open /dev/console: %s", strerror(-tty_fd));
215 /* We don't want to force text mode.
216 * plymouth may be showing pictures already from initrd. */
217 r = reset_terminal_fd(tty_fd, false);
219 log_error("Failed to reset /dev/console: %s", strerror(-r));
221 close_nointr_nofail(tty_fd);
225 static int set_default_unit(const char *u) {
234 free(arg_default_unit);
235 arg_default_unit = c;
240 static int parse_proc_cmdline_word(const char *word) {
242 static const char * const rlmap[] = {
243 "emergency", SPECIAL_EMERGENCY_TARGET,
244 "-b", SPECIAL_EMERGENCY_TARGET,
245 "single", SPECIAL_RESCUE_TARGET,
246 "-s", SPECIAL_RESCUE_TARGET,
247 "s", SPECIAL_RESCUE_TARGET,
248 "S", SPECIAL_RESCUE_TARGET,
249 "1", SPECIAL_RESCUE_TARGET,
250 "2", SPECIAL_RUNLEVEL2_TARGET,
251 "3", SPECIAL_RUNLEVEL3_TARGET,
252 "4", SPECIAL_RUNLEVEL4_TARGET,
253 "5", SPECIAL_RUNLEVEL5_TARGET,
258 if (startswith(word, "systemd.unit=")) {
261 return set_default_unit(word + 13);
263 } else if (startswith(word, "rd.systemd.unit=")) {
266 return set_default_unit(word + 16);
268 } else if (startswith(word, "systemd.log_target=")) {
270 if (log_set_target_from_string(word + 19) < 0)
271 log_warning("Failed to parse log target %s. Ignoring.", word + 19);
273 } else if (startswith(word, "systemd.log_level=")) {
275 if (log_set_max_level_from_string(word + 18) < 0)
276 log_warning("Failed to parse log level %s. Ignoring.", word + 18);
278 } else if (startswith(word, "systemd.log_color=")) {
280 if (log_show_color_from_string(word + 18) < 0)
281 log_warning("Failed to parse log color setting %s. Ignoring.", word + 18);
283 } else if (startswith(word, "systemd.log_location=")) {
285 if (log_show_location_from_string(word + 21) < 0)
286 log_warning("Failed to parse log location setting %s. Ignoring.", word + 21);
288 } else if (startswith(word, "systemd.dump_core=")) {
291 if ((r = parse_boolean(word + 18)) < 0)
292 log_warning("Failed to parse dump core switch %s. Ignoring.", word + 18);
296 } else if (startswith(word, "systemd.crash_shell=")) {
299 if ((r = parse_boolean(word + 20)) < 0)
300 log_warning("Failed to parse crash shell switch %s. Ignoring.", word + 20);
304 } else if (startswith(word, "systemd.confirm_spawn=")) {
307 if ((r = parse_boolean(word + 22)) < 0)
308 log_warning("Failed to parse confirm spawn switch %s. Ignoring.", word + 22);
310 arg_confirm_spawn = r;
312 } else if (startswith(word, "systemd.crash_chvt=")) {
315 if (safe_atoi(word + 19, &k) < 0)
316 log_warning("Failed to parse crash chvt switch %s. Ignoring.", word + 19);
320 } else if (startswith(word, "systemd.show_status=")) {
323 if ((r = parse_boolean(word + 20)) < 0)
324 log_warning("Failed to parse show status switch %s. Ignoring.", word + 20);
327 } else if (startswith(word, "systemd.default_standard_output=")) {
330 if ((r = exec_output_from_string(word + 32)) < 0)
331 log_warning("Failed to parse default standard output switch %s. Ignoring.", word + 32);
333 arg_default_std_output = r;
334 } else if (startswith(word, "systemd.default_standard_error=")) {
337 if ((r = exec_output_from_string(word + 31)) < 0)
338 log_warning("Failed to parse default standard error switch %s. Ignoring.", word + 31);
340 arg_default_std_error = r;
341 } else if (startswith(word, "systemd.setenv=")) {
345 cenv = strdup(word + 15);
349 eq = strchr(cenv, '=');
353 log_warning("unsetenv failed %s. Ignoring.", strerror(errno));
356 r = setenv(cenv, eq + 1, 1);
358 log_warning("setenv failed %s. Ignoring.", strerror(errno));
362 } else if (startswith(word, "systemd.") ||
363 (in_initrd() && startswith(word, "rd.systemd."))) {
365 log_warning("Unknown kernel switch %s. Ignoring.", word);
367 log_info("Supported kernel switches:\n"
368 "systemd.unit=UNIT Default unit to start\n"
369 "rd.systemd.unit=UNIT Default unit to start when run in initrd\n"
370 "systemd.dump_core=0|1 Dump core on crash\n"
371 "systemd.crash_shell=0|1 Run shell on crash\n"
372 "systemd.crash_chvt=N Change to VT #N on crash\n"
373 "systemd.confirm_spawn=0|1 Confirm every process spawn\n"
374 "systemd.show_status=0|1 Show status updates on the console during bootup\n"
375 "systemd.log_target=console|kmsg|journal|journal-or-kmsg|syslog|syslog-or-kmsg|null\n"
377 "systemd.log_level=LEVEL Log level\n"
378 "systemd.log_color=0|1 Highlight important log messages\n"
379 "systemd.log_location=0|1 Include code location in log messages\n"
380 "systemd.default_standard_output=null|tty|syslog|syslog+console|kmsg|kmsg+console|journal|journal+console\n"
381 " Set default log output for services\n"
382 "systemd.default_standard_error=null|tty|syslog|syslog+console|kmsg|kmsg+console|journal|journal+console\n"
383 " Set default log error output for services\n"
384 "systemd.setenv=ASSIGNMENT Set an environment variable for all spawned processes\n");
386 } else if (streq(word, "quiet"))
387 arg_show_status = false;
388 else if (!in_initrd()) {
391 /* SysV compatibility */
392 for (i = 0; i < ELEMENTSOF(rlmap); i += 2)
393 if (streq(word, rlmap[i]))
394 return set_default_unit(rlmap[i+1]);
400 static int config_parse_level2(
401 const char *filename,
414 log_set_max_level_from_string(rvalue);
418 static int config_parse_target(
419 const char *filename,
432 log_set_target_from_string(rvalue);
436 static int config_parse_color(
437 const char *filename,
450 log_show_color_from_string(rvalue);
454 static int config_parse_location(
455 const char *filename,
468 log_show_location_from_string(rvalue);
472 static int config_parse_cpu_affinity2(
473 const char *filename,
492 FOREACH_WORD_QUOTED(w, l, rvalue, state) {
497 if (!(t = strndup(w, l)))
500 r = safe_atou(t, &cpu);
504 if (!(c = cpu_set_malloc(&ncpus)))
507 if (r < 0 || cpu >= ncpus) {
508 log_error("[%s:%u] Failed to parse CPU affinity: %s", filename, line, rvalue);
513 CPU_SET_S(cpu, CPU_ALLOC_SIZE(ncpus), c);
517 if (sched_setaffinity(0, CPU_ALLOC_SIZE(ncpus), c) < 0)
518 log_warning("Failed to set CPU affinity: %m");
526 static void strv_free_free(char ***l) {
538 static void free_join_controllers(void) {
539 if (!arg_join_controllers)
542 strv_free_free(arg_join_controllers);
543 arg_join_controllers = NULL;
546 static int config_parse_join_controllers(
547 const char *filename,
564 free_join_controllers();
566 FOREACH_WORD_QUOTED(w, length, rvalue, state) {
569 s = strndup(w, length);
573 l = strv_split(s, ",");
578 if (strv_length(l) <= 1) {
583 if (!arg_join_controllers) {
584 arg_join_controllers = new(char**, 2);
585 if (!arg_join_controllers) {
590 arg_join_controllers[0] = l;
591 arg_join_controllers[1] = NULL;
598 t = new0(char**, n+2);
606 for (a = arg_join_controllers; *a; a++) {
608 if (strv_overlap(*a, l)) {
611 c = strv_merge(*a, l);
634 t[n++] = strv_uniq(l);
636 strv_free_free(arg_join_controllers);
637 arg_join_controllers = t;
644 static int parse_config_file(void) {
646 const ConfigTableItem items[] = {
647 { "Manager", "LogLevel", config_parse_level2, 0, NULL },
648 { "Manager", "LogTarget", config_parse_target, 0, NULL },
649 { "Manager", "LogColor", config_parse_color, 0, NULL },
650 { "Manager", "LogLocation", config_parse_location, 0, NULL },
651 { "Manager", "DumpCore", config_parse_bool, 0, &arg_dump_core },
652 { "Manager", "CrashShell", config_parse_bool, 0, &arg_crash_shell },
653 { "Manager", "ShowStatus", config_parse_bool, 0, &arg_show_status },
654 { "Manager", "CrashChVT", config_parse_int, 0, &arg_crash_chvt },
655 { "Manager", "CPUAffinity", config_parse_cpu_affinity2, 0, NULL },
656 { "Manager", "DefaultControllers", config_parse_strv, 0, &arg_default_controllers },
657 { "Manager", "DefaultStandardOutput", config_parse_output, 0, &arg_default_std_output },
658 { "Manager", "DefaultStandardError", config_parse_output, 0, &arg_default_std_error },
659 { "Manager", "JoinControllers", config_parse_join_controllers, 0, &arg_join_controllers },
660 { "Manager", "RuntimeWatchdogSec", config_parse_usec, 0, &arg_runtime_watchdog },
661 { "Manager", "ShutdownWatchdogSec", config_parse_usec, 0, &arg_shutdown_watchdog },
662 { "Manager", "CapabilityBoundingSet", config_parse_bounding_set, 0, &arg_capability_bounding_set_drop },
663 { "Manager", "TimerSlackNSec", config_parse_nsec, 0, &arg_timer_slack_nsec },
664 { "Manager", "DefaultLimitCPU", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_CPU]},
665 { "Manager", "DefaultLimitFSIZE", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_FSIZE]},
666 { "Manager", "DefaultLimitDATA", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_DATA]},
667 { "Manager", "DefaultLimitSTACK", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_STACK]},
668 { "Manager", "DefaultLimitCORE", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_CORE]},
669 { "Manager", "DefaultLimitRSS", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_RSS]},
670 { "Manager", "DefaultLimitNOFILE", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_NOFILE]},
671 { "Manager", "DefaultLimitAS", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_AS]},
672 { "Manager", "DefaultLimitNPROC", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_NPROC]},
673 { "Manager", "DefaultLimitMEMLOCK", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_MEMLOCK]},
674 { "Manager", "DefaultLimitLOCKS", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_LOCKS]},
675 { "Manager", "DefaultLimitSIGPENDING",config_parse_limit, 0, &arg_default_rlimit[RLIMIT_SIGPENDING]},
676 { "Manager", "DefaultLimitMSGQUEUE", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_MSGQUEUE]},
677 { "Manager", "DefaultLimitNICE", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_NICE]},
678 { "Manager", "DefaultLimitRTPRIO", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_RTPRIO]},
679 { "Manager", "DefaultLimitRTTIME", config_parse_limit, 0, &arg_default_rlimit[RLIMIT_RTTIME]},
680 { NULL, NULL, NULL, 0, NULL }
687 fn = arg_running_as == MANAGER_SYSTEM ? SYSTEM_CONFIG_FILE : USER_CONFIG_FILE;
693 log_warning("Failed to open configuration file '%s': %m", fn);
697 r = config_parse(fn, f, "Manager\0", config_item_table_lookup, (void*) items, false, NULL);
699 log_warning("Failed to parse configuration file: %s", strerror(-r));
706 static int parse_proc_cmdline(void) {
707 char *line, *w, *state;
711 /* Don't read /proc/cmdline if we are in a container, since
712 * that is only relevant for the host system */
713 if (detect_container(NULL) > 0)
716 if ((r = read_one_line_file("/proc/cmdline", &line)) < 0) {
717 log_warning("Failed to read /proc/cmdline, ignoring: %s", strerror(-r));
721 FOREACH_WORD_QUOTED(w, l, line, state) {
724 if (!(word = strndup(w, l))) {
729 r = parse_proc_cmdline_word(word);
743 static int parse_argv(int argc, char *argv[]) {
746 ARG_LOG_LEVEL = 0x100,
755 ARG_DUMP_CONFIGURATION_ITEMS,
763 ARG_DEFAULT_STD_OUTPUT,
764 ARG_DEFAULT_STD_ERROR
767 static const struct option options[] = {
768 { "log-level", required_argument, NULL, ARG_LOG_LEVEL },
769 { "log-target", required_argument, NULL, ARG_LOG_TARGET },
770 { "log-color", optional_argument, NULL, ARG_LOG_COLOR },
771 { "log-location", optional_argument, NULL, ARG_LOG_LOCATION },
772 { "unit", required_argument, NULL, ARG_UNIT },
773 { "system", no_argument, NULL, ARG_SYSTEM },
774 { "user", no_argument, NULL, ARG_USER },
775 { "test", no_argument, NULL, ARG_TEST },
776 { "help", no_argument, NULL, 'h' },
777 { "version", no_argument, NULL, ARG_VERSION },
778 { "dump-configuration-items", no_argument, NULL, ARG_DUMP_CONFIGURATION_ITEMS },
779 { "dump-core", optional_argument, NULL, ARG_DUMP_CORE },
780 { "crash-shell", optional_argument, NULL, ARG_CRASH_SHELL },
781 { "confirm-spawn", optional_argument, NULL, ARG_CONFIRM_SPAWN },
782 { "show-status", optional_argument, NULL, ARG_SHOW_STATUS },
783 { "deserialize", required_argument, NULL, ARG_DESERIALIZE },
784 { "switched-root", no_argument, NULL, ARG_SWITCHED_ROOT },
785 { "introspect", optional_argument, NULL, ARG_INTROSPECT },
786 { "default-standard-output", required_argument, NULL, ARG_DEFAULT_STD_OUTPUT, },
787 { "default-standard-error", required_argument, NULL, ARG_DEFAULT_STD_ERROR, },
799 while ((c = getopt_long(argc, argv, "hDbsz:", options, NULL)) >= 0)
804 if ((r = log_set_max_level_from_string(optarg)) < 0) {
805 log_error("Failed to parse log level %s.", optarg);
813 if ((r = log_set_target_from_string(optarg)) < 0) {
814 log_error("Failed to parse log target %s.", optarg);
823 if ((r = log_show_color_from_string(optarg)) < 0) {
824 log_error("Failed to parse log color setting %s.", optarg);
828 log_show_color(true);
832 case ARG_LOG_LOCATION:
835 if ((r = log_show_location_from_string(optarg)) < 0) {
836 log_error("Failed to parse log location setting %s.", optarg);
840 log_show_location(true);
844 case ARG_DEFAULT_STD_OUTPUT:
846 if ((r = exec_output_from_string(optarg)) < 0) {
847 log_error("Failed to parse default standard output setting %s.", optarg);
850 arg_default_std_output = r;
853 case ARG_DEFAULT_STD_ERROR:
855 if ((r = exec_output_from_string(optarg)) < 0) {
856 log_error("Failed to parse default standard error output setting %s.", optarg);
859 arg_default_std_error = r;
864 if ((r = set_default_unit(optarg)) < 0) {
865 log_error("Failed to set default unit %s: %s", optarg, strerror(-r));
872 arg_running_as = MANAGER_SYSTEM;
876 arg_running_as = MANAGER_USER;
880 arg_action = ACTION_TEST;
884 arg_action = ACTION_VERSION;
887 case ARG_DUMP_CONFIGURATION_ITEMS:
888 arg_action = ACTION_DUMP_CONFIGURATION_ITEMS;
892 r = optarg ? parse_boolean(optarg) : 1;
894 log_error("Failed to parse dump core boolean %s.", optarg);
900 case ARG_CRASH_SHELL:
901 r = optarg ? parse_boolean(optarg) : 1;
903 log_error("Failed to parse crash shell boolean %s.", optarg);
909 case ARG_CONFIRM_SPAWN:
910 r = optarg ? parse_boolean(optarg) : 1;
912 log_error("Failed to parse confirm spawn boolean %s.", optarg);
915 arg_confirm_spawn = r;
918 case ARG_SHOW_STATUS:
919 r = optarg ? parse_boolean(optarg) : 1;
921 log_error("Failed to parse show status boolean %s.", optarg);
927 case ARG_DESERIALIZE: {
931 if ((r = safe_atoi(optarg, &fd)) < 0 || fd < 0) {
932 log_error("Failed to parse deserialize option %s.", optarg);
936 if (!(f = fdopen(fd, "r"))) {
937 log_error("Failed to open serialization fd: %m");
942 fclose(serialization);
949 case ARG_SWITCHED_ROOT:
950 arg_switched_root = true;
953 case ARG_INTROSPECT: {
954 const char * const * i = NULL;
956 for (i = bus_interface_table; *i; i += 2)
957 if (!optarg || streq(i[0], optarg)) {
958 fputs(DBUS_INTROSPECT_1_0_XML_DOCTYPE_DECL_NODE
961 fputs("</node>\n", stdout);
968 log_error("Unknown interface %s.", optarg);
970 arg_action = ACTION_DONE;
975 arg_action = ACTION_HELP;
979 log_set_max_level(LOG_DEBUG);
985 /* Just to eat away the sysvinit kernel
986 * cmdline args without getopt() error
987 * messages that we'll parse in
988 * parse_proc_cmdline_word() or ignore. */
993 log_error("Unknown option code %c", c);
1000 if (optind < argc && getpid() != 1) {
1001 /* Hmm, when we aren't run as init system
1002 * let's complain about excess arguments */
1004 log_error("Excess arguments.");
1008 if (detect_container(NULL) > 0) {
1011 /* All /proc/cmdline arguments the kernel didn't
1012 * understand it passed to us. We're not really
1013 * interested in that usually since /proc/cmdline is
1014 * more interesting and complete. With one exception:
1015 * if we are run in a container /proc/cmdline is not
1016 * relevant for the container, hence we rely on argv[]
1019 for (a = argv; a < argv + argc; a++)
1020 if ((r = parse_proc_cmdline_word(*a)) < 0)
1027 static int help(void) {
1029 printf("%s [OPTIONS...]\n\n"
1030 "Starts up and maintains the system or user services.\n\n"
1031 " -h --help Show this help\n"
1032 " --test Determine startup sequence, dump it and exit\n"
1033 " --dump-configuration-items Dump understood unit configuration items\n"
1034 " --introspect[=INTERFACE] Extract D-Bus interface data\n"
1035 " --unit=UNIT Set default unit\n"
1036 " --system Run a system instance, even if PID != 1\n"
1037 " --user Run a user instance\n"
1038 " --dump-core[=0|1] Dump core on crash\n"
1039 " --crash-shell[=0|1] Run shell on crash\n"
1040 " --confirm-spawn[=0|1] Ask for confirmation when spawning processes\n"
1041 " --show-status[=0|1] Show status updates on the console during bootup\n"
1042 " --log-target=TARGET Set log target (console, journal, syslog, kmsg, journal-or-kmsg, syslog-or-kmsg, null)\n"
1043 " --log-level=LEVEL Set log level (debug, info, notice, warning, err, crit, alert, emerg)\n"
1044 " --log-color[=0|1] Highlight important log messages\n"
1045 " --log-location[=0|1] Include code location in log messages\n"
1046 " --default-standard-output= Set default standard output for services\n"
1047 " --default-standard-error= Set default standard error output for services\n",
1048 program_invocation_short_name);
1053 static int version(void) {
1054 puts(PACKAGE_STRING);
1056 puts(SYSTEMD_FEATURES);
1061 static int prepare_reexecute(Manager *m, FILE **_f, FDSet **_fds) {
1070 /* Make sure nothing is really destructed when we shut down */
1073 if ((r = manager_open_serialization(m, &f)) < 0) {
1074 log_error("Failed to create serialization file: %s", strerror(-r));
1078 if (!(fds = fdset_new())) {
1080 log_error("Failed to allocate fd set: %s", strerror(-r));
1084 if ((r = manager_serialize(m, f, fds)) < 0) {
1085 log_error("Failed to serialize state: %s", strerror(-r));
1089 if (fseeko(f, 0, SEEK_SET) < 0) {
1090 log_error("Failed to rewind serialization fd: %m");
1094 if ((r = fd_cloexec(fileno(f), false)) < 0) {
1095 log_error("Failed to disable O_CLOEXEC for serialization: %s", strerror(-r));
1099 if ((r = fdset_cloexec(fds, false)) < 0) {
1100 log_error("Failed to disable O_CLOEXEC for serialization fds: %s", strerror(-r));
1118 static struct dual_timestamp* parse_initrd_timestamp(struct dual_timestamp *t) {
1120 unsigned long long a, b;
1124 e = getenv("RD_TIMESTAMP");
1128 if (sscanf(e, "%llu %llu", &a, &b) != 2)
1131 t->realtime = (usec_t) a;
1132 t->monotonic = (usec_t) b;
1137 static void test_mtab(void) {
1140 /* Check that /etc/mtab is a symlink */
1142 if (readlink_malloc("/etc/mtab", &p) >= 0) {
1145 b = streq(p, "/proc/self/mounts") || streq(p, "/proc/mounts");
1152 log_warning("/etc/mtab is not a symlink or not pointing to /proc/self/mounts. "
1153 "This is not supported anymore. "
1154 "Please make sure to replace this file by a symlink to avoid incorrect or misleading mount(8) output.");
1157 static void test_usr(void) {
1159 /* Check that /usr is not a separate fs */
1161 if (dir_is_empty("/usr") <= 0)
1164 log_warning("/usr appears to be on its own filesytem and is not already mounted. This is not a supported setup. "
1165 "Some things will probably break (sometimes even silently) in mysterious ways. "
1166 "Consult http://freedesktop.org/wiki/Software/systemd/separate-usr-is-broken for more information.");
1169 static void test_cgroups(void) {
1171 if (access("/proc/cgroups", F_OK) >= 0)
1174 log_warning("CONFIG_CGROUPS was not set when your kernel was compiled. "
1175 "Systems without control groups are not supported. "
1176 "We will now sleep for 10s, and then continue boot-up. "
1177 "Expect breakage and please do not file bugs. "
1178 "Instead fix your kernel and enable CONFIG_CGROUPS. "
1179 "Consult http://0pointer.de/blog/projects/cgroups-vs-cgroups.html for more information.");
1184 int main(int argc, char *argv[]) {
1186 int r, retval = EXIT_FAILURE;
1187 usec_t before_startup, after_startup;
1188 char timespan[FORMAT_TIMESPAN_MAX];
1190 bool reexecute = false;
1191 const char *shutdown_verb = NULL;
1192 dual_timestamp initrd_timestamp = { 0ULL, 0ULL };
1193 static char systemd[] = "systemd";
1194 bool skip_setup = false;
1196 bool loaded_policy = false;
1197 bool arm_reboot_watchdog = false;
1198 bool queue_default_job = false;
1199 char *switch_root_dir = NULL, *switch_root_init = NULL;
1201 #ifdef HAVE_SYSV_COMPAT
1202 if (getpid() != 1 && strstr(program_invocation_short_name, "init")) {
1203 /* This is compatibility support for SysV, where
1204 * calling init as a user is identical to telinit. */
1207 execv(SYSTEMCTL_BINARY_PATH, argv);
1208 log_error("Failed to exec " SYSTEMCTL_BINARY_PATH ": %m");
1213 /* Determine if this is a reexecution or normal bootup. We do
1214 * the full command line parsing much later, so let's just
1215 * have a quick peek here. */
1216 for (j = 1; j < argc; j++)
1217 if (streq(argv[j], "--deserialize")) {
1222 /* If we have switched root, do all the special setup
1224 for (j = 1; j < argc; j++)
1225 if (streq(argv[j], "--switched-root")) {
1230 /* If we get started via the /sbin/init symlink then we are
1231 called 'init'. After a subsequent reexecution we are then
1232 called 'systemd'. That is confusing, hence let's call us
1233 systemd right-away. */
1234 program_invocation_short_name = systemd;
1235 prctl(PR_SET_NAME, systemd);
1240 log_show_color(isatty(STDERR_FILENO) > 0);
1241 log_show_location(false);
1242 log_set_max_level(LOG_INFO);
1244 if (getpid() == 1) {
1246 char *rd_timestamp = NULL;
1248 dual_timestamp_get(&initrd_timestamp);
1249 asprintf(&rd_timestamp, "%llu %llu",
1250 (unsigned long long) initrd_timestamp.realtime,
1251 (unsigned long long) initrd_timestamp.monotonic);
1253 setenv("RD_TIMESTAMP", rd_timestamp, 1);
1258 arg_running_as = MANAGER_SYSTEM;
1259 log_set_target(detect_container(NULL) > 0 ? LOG_TARGET_JOURNAL : LOG_TARGET_JOURNAL_OR_KMSG);
1262 if (selinux_setup(&loaded_policy) < 0)
1264 if (ima_setup() < 0)
1270 if (label_init(NULL) < 0)
1274 if (hwclock_is_localtime() > 0) {
1277 r = hwclock_apply_localtime_delta(&min);
1279 log_error("Failed to apply local time delta, ignoring: %s", strerror(-r));
1281 log_info("RTC configured in localtime, applying delta of %i minutes to system time.", min);
1285 arg_running_as = MANAGER_USER;
1286 log_set_target(LOG_TARGET_AUTO);
1290 /* Initialize default unit */
1291 if (set_default_unit(SPECIAL_DEFAULT_TARGET) < 0)
1294 /* By default, mount "cpu" and "cpuacct" together */
1295 arg_join_controllers = new(char**, 2);
1296 if (!arg_join_controllers)
1299 arg_join_controllers[0] = strv_new("cpu", "cpuacct", NULL);
1300 arg_join_controllers[1] = NULL;
1302 if (!arg_join_controllers[0])
1305 /* Mount /proc, /sys and friends, so that /proc/cmdline and
1306 * /proc/$PID/fd is available. */
1307 if (geteuid() == 0 && !getenv("SYSTEMD_SKIP_API_MOUNTS")) {
1308 r = mount_setup(loaded_policy);
1313 /* Reset all signal handlers. */
1314 assert_se(reset_all_signal_handlers() == 0);
1316 /* If we are init, we can block sigkill. Yay. */
1317 ignore_signals(SIGNALS_IGNORE, -1);
1319 if (parse_config_file() < 0)
1322 if (arg_running_as == MANAGER_SYSTEM)
1323 if (parse_proc_cmdline() < 0)
1326 log_parse_environment();
1328 if (parse_argv(argc, argv) < 0)
1331 if (arg_action == ACTION_TEST && geteuid() == 0) {
1332 log_error("Don't run test mode as root.");
1336 if (arg_running_as == MANAGER_SYSTEM &&
1337 arg_action == ACTION_RUN &&
1338 running_in_chroot() > 0) {
1339 log_error("Cannot be run in a chroot() environment.");
1343 if (arg_action == ACTION_HELP) {
1346 } else if (arg_action == ACTION_VERSION) {
1349 } else if (arg_action == ACTION_DUMP_CONFIGURATION_ITEMS) {
1350 unit_dump_config_items(stdout);
1351 retval = EXIT_SUCCESS;
1353 } else if (arg_action == ACTION_DONE) {
1354 retval = EXIT_SUCCESS;
1358 assert_se(arg_action == ACTION_RUN || arg_action == ACTION_TEST);
1360 /* Close logging fds, in order not to confuse fdset below */
1363 /* Remember open file descriptors for later deserialization */
1364 if (serialization) {
1365 r = fdset_new_fill(&fds);
1367 log_error("Failed to allocate fd set: %s", strerror(-r));
1371 assert_se(fdset_remove(fds, fileno(serialization)) >= 0);
1373 close_all_fds(NULL, 0);
1375 /* Set up PATH unless it is already set */
1377 #ifdef HAVE_SPLIT_USR
1378 "/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin",
1380 "/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin",
1382 arg_running_as == MANAGER_SYSTEM);
1384 if (arg_running_as == MANAGER_SYSTEM) {
1385 /* Parse the data passed to us. We leave this
1386 * variables set, but the manager later on will not
1387 * pass them on to our children. */
1389 parse_initrd_timestamp(&initrd_timestamp);
1391 /* Unset some environment variables passed in from the
1392 * kernel that don't really make sense for us. */
1396 /* When we are invoked by a shell, these might be set,
1397 * but make little sense to pass on */
1402 /* When we are invoked by a chroot-like tool such as
1403 * nspawn, these might be set, but make little sense
1406 unsetenv("LOGNAME");
1408 /* All other variables are left as is, so that clients
1409 * can still read them via /proc/1/environ */
1412 /* Move out of the way, so that we won't block unmounts */
1413 assert_se(chdir("/") == 0);
1415 if (arg_running_as == MANAGER_SYSTEM) {
1416 /* Become a session leader if we aren't one yet. */
1419 /* Disable the umask logic */
1423 /* Make sure D-Bus doesn't fiddle with the SIGPIPE handlers */
1424 dbus_connection_set_change_sigpipe(FALSE);
1426 /* Reset the console, but only if this is really init and we
1427 * are freshly booted */
1428 if (arg_running_as == MANAGER_SYSTEM && arg_action == ACTION_RUN) {
1429 console_setup(getpid() == 1 && !skip_setup);
1433 /* Open the logging devices, if possible and necessary */
1436 /* Make sure we leave a core dump without panicing the
1439 install_crash_handler();
1441 if (geteuid() == 0 && !getenv("SYSTEMD_SKIP_API_MOUNTS")) {
1442 r = mount_cgroup_controllers(arg_join_controllers);
1447 if (arg_running_as == MANAGER_SYSTEM) {
1448 const char *virtualization = NULL;
1450 log_info(PACKAGE_STRING " running in system mode. (" SYSTEMD_FEATURES "; " DISTRIBUTION ")");
1452 detect_virtualization(&virtualization);
1454 log_info("Detected virtualization '%s'.", virtualization);
1457 log_info("Running in initial RAM disk.");
1460 log_debug(PACKAGE_STRING " running in user mode. (" SYSTEMD_FEATURES "; " DISTRIBUTION ")");
1462 if (arg_running_as == MANAGER_SYSTEM && !skip_setup) {
1465 if (arg_show_status || plymouth_running())
1478 if (arg_running_as == MANAGER_SYSTEM && arg_runtime_watchdog > 0)
1479 watchdog_set_timeout(&arg_runtime_watchdog);
1481 if (arg_timer_slack_nsec != (nsec_t) -1)
1482 if (prctl(PR_SET_TIMERSLACK, arg_timer_slack_nsec) < 0)
1483 log_error("Failed to adjust timer slack: %m");
1485 if (arg_capability_bounding_set_drop) {
1486 r = capability_bounding_set_drop(arg_capability_bounding_set_drop, true);
1488 log_error("Failed to drop capability bounding set: %s", strerror(-r));
1491 r = capability_bounding_set_drop_usermode(arg_capability_bounding_set_drop);
1493 log_error("Failed to drop capability bounding set of usermode helpers: %s", strerror(-r));
1498 r = manager_new(arg_running_as, &m);
1500 log_error("Failed to allocate manager object: %s", strerror(-r));
1504 m->confirm_spawn = arg_confirm_spawn;
1505 m->default_std_output = arg_default_std_output;
1506 m->default_std_error = arg_default_std_error;
1507 m->runtime_watchdog = arg_runtime_watchdog;
1508 m->shutdown_watchdog = arg_shutdown_watchdog;
1510 manager_set_default_rlimits(m, arg_default_rlimit);
1512 if (dual_timestamp_is_set(&initrd_timestamp))
1513 m->initrd_timestamp = initrd_timestamp;
1515 if (arg_default_controllers)
1516 manager_set_default_controllers(m, arg_default_controllers);
1518 manager_set_show_status(m, arg_show_status);
1520 /* Remember whether we should queue the default job */
1521 queue_default_job = !serialization || arg_switched_root;
1523 before_startup = now(CLOCK_MONOTONIC);
1525 r = manager_startup(m, serialization, fds);
1527 log_error("Failed to fully start up daemon: %s", strerror(-r));
1529 /* This will close all file descriptors that were opened, but
1530 * not claimed by any unit. */
1536 if (serialization) {
1537 fclose(serialization);
1538 serialization = NULL;
1541 if (queue_default_job) {
1543 Unit *target = NULL;
1544 Job *default_unit_job;
1546 dbus_error_init(&error);
1548 log_debug("Activating default unit: %s", arg_default_unit);
1550 r = manager_load_unit(m, arg_default_unit, NULL, &error, &target);
1552 log_error("Failed to load default target: %s", bus_error(&error, r));
1553 dbus_error_free(&error);
1554 } else if (target->load_state == UNIT_ERROR)
1555 log_error("Failed to load default target: %s", strerror(-target->load_error));
1556 else if (target->load_state == UNIT_MASKED)
1557 log_error("Default target masked.");
1559 if (!target || target->load_state != UNIT_LOADED) {
1560 log_info("Trying to load rescue target...");
1562 r = manager_load_unit(m, SPECIAL_RESCUE_TARGET, NULL, &error, &target);
1564 log_error("Failed to load rescue target: %s", bus_error(&error, r));
1565 dbus_error_free(&error);
1567 } else if (target->load_state == UNIT_ERROR) {
1568 log_error("Failed to load rescue target: %s", strerror(-target->load_error));
1570 } else if (target->load_state == UNIT_MASKED) {
1571 log_error("Rescue target masked.");
1576 assert(target->load_state == UNIT_LOADED);
1578 if (arg_action == ACTION_TEST) {
1579 printf("-> By units:\n");
1580 manager_dump_units(m, stdout, "\t");
1583 r = manager_add_job(m, JOB_START, target, JOB_REPLACE, false, &error, &default_unit_job);
1585 log_error("Failed to start default target: %s", bus_error(&error, r));
1586 dbus_error_free(&error);
1589 m->default_unit_job_id = default_unit_job->id;
1591 after_startup = now(CLOCK_MONOTONIC);
1592 log_full(arg_action == ACTION_TEST ? LOG_INFO : LOG_DEBUG,
1593 "Loaded units and determined initial transaction in %s.",
1594 format_timespan(timespan, sizeof(timespan), after_startup - before_startup));
1596 if (arg_action == ACTION_TEST) {
1597 printf("-> By jobs:\n");
1598 manager_dump_jobs(m, stdout, "\t");
1599 retval = EXIT_SUCCESS;
1605 r = manager_loop(m);
1607 log_error("Failed to run mainloop: %s", strerror(-r));
1611 switch (m->exit_code) {
1614 retval = EXIT_SUCCESS;
1618 case MANAGER_RELOAD:
1619 log_info("Reloading.");
1620 r = manager_reload(m);
1622 log_error("Failed to reload: %s", strerror(-r));
1625 case MANAGER_REEXECUTE:
1627 if (prepare_reexecute(m, &serialization, &fds) < 0)
1631 log_notice("Reexecuting.");
1634 case MANAGER_SWITCH_ROOT:
1635 /* Steal the switch root parameters */
1636 switch_root_dir = m->switch_root;
1637 switch_root_init = m->switch_root_init;
1638 m->switch_root = m->switch_root_init = NULL;
1640 if (!switch_root_init)
1641 if (prepare_reexecute(m, &serialization, &fds) < 0)
1645 log_notice("Switching root.");
1648 case MANAGER_REBOOT:
1649 case MANAGER_POWEROFF:
1651 case MANAGER_KEXEC: {
1652 static const char * const table[_MANAGER_EXIT_CODE_MAX] = {
1653 [MANAGER_REBOOT] = "reboot",
1654 [MANAGER_POWEROFF] = "poweroff",
1655 [MANAGER_HALT] = "halt",
1656 [MANAGER_KEXEC] = "kexec"
1659 assert_se(shutdown_verb = table[m->exit_code]);
1660 arm_reboot_watchdog = m->exit_code == MANAGER_REBOOT;
1662 log_notice("Shutting down.");
1667 assert_not_reached("Unknown exit code.");
1675 for (j = 0; j < RLIMIT_NLIMITS; j++)
1676 free (arg_default_rlimit[j]);
1678 free(arg_default_unit);
1679 strv_free(arg_default_controllers);
1680 free_join_controllers();
1687 unsigned i, args_size;
1689 /* Close and disarm the watchdog, so that the new
1690 * instance can reinitialize it, but doesn't get
1691 * rebooted while we do that */
1692 watchdog_close(true);
1694 if (switch_root_dir) {
1695 /* Kill all remaining processes from the
1696 * initrd, but don't wait for them, so that we
1697 * can handle the SIGCHLD for them after
1699 broadcast_signal(SIGTERM, false);
1701 /* And switch root */
1702 r = switch_root(switch_root_dir);
1704 log_error("Failed to switch root, ignoring: %s", strerror(-r));
1707 args_size = MAX(6, argc+1);
1708 args = newa(const char*, args_size);
1710 if (!switch_root_init) {
1713 /* First try to spawn ourselves with the right
1714 * path, and with full serialization. We do
1715 * this only if the user didn't specify an
1716 * explicit init to spawn. */
1718 assert(serialization);
1721 snprintf(sfd, sizeof(sfd), "%i", fileno(serialization));
1725 args[i++] = SYSTEMD_BINARY_PATH;
1726 if (switch_root_dir)
1727 args[i++] = "--switched-root";
1728 args[i++] = arg_running_as == MANAGER_SYSTEM ? "--system" : "--user";
1729 args[i++] = "--deserialize";
1733 assert(i <= args_size);
1734 execv(args[0], (char* const*) args);
1737 /* Try the fallback, if there is any, without any
1738 * serialization. We pass the original argv[] and
1739 * envp[]. (Well, modulo the ordering changes due to
1740 * getopt() in argv[], and some cleanups in envp[],
1741 * but let's hope that doesn't matter.) */
1743 if (serialization) {
1744 fclose(serialization);
1745 serialization = NULL;
1753 /* Reopen the console */
1754 make_console_stdio();
1756 for (j = 1, i = 1; j < argc; j++)
1757 args[i++] = argv[j];
1759 assert(i <= args_size);
1761 if (switch_root_init) {
1762 args[0] = switch_root_init;
1763 execv(args[0], (char* const*) args);
1764 log_warning("Failed to execute configured init, trying fallback: %m");
1767 args[0] = "/sbin/init";
1768 execv(args[0], (char* const*) args);
1770 if (errno == ENOENT) {
1771 log_warning("No /sbin/init, trying fallback");
1773 args[0] = "/bin/sh";
1775 execv(args[0], (char* const*) args);
1776 log_error("Failed to execute /bin/sh, giving up: %m");
1778 log_warning("Failed to execute /sbin/init, giving up: %m");
1782 fclose(serialization);
1787 if (shutdown_verb) {
1788 const char * command_line[] = {
1789 SYSTEMD_SHUTDOWN_BINARY_PATH,
1795 if (arm_reboot_watchdog && arg_shutdown_watchdog > 0) {
1798 /* If we reboot let's set the shutdown
1799 * watchdog and tell the shutdown binary to
1800 * repeatedly ping it */
1801 watchdog_set_timeout(&arg_shutdown_watchdog);
1802 watchdog_close(false);
1804 /* Tell the binary how often to ping */
1805 snprintf(e, sizeof(e), "WATCHDOG_USEC=%llu", (unsigned long long) arg_shutdown_watchdog);
1808 env_block = strv_append(environ, e);
1810 env_block = strv_copy(environ);
1811 watchdog_close(true);
1814 execve(SYSTEMD_SHUTDOWN_BINARY_PATH, (char **) command_line, env_block);
1816 log_error("Failed to execute shutdown binary, freezing: %m");