0
|
1
|
|
2 /*
|
|
3 * Copyright (C) Igor Sysoev
|
|
4 */
|
|
5
|
|
6
|
|
7 #include <ngx_config.h>
|
|
8 #include <ngx_core.h>
|
|
9 #include <ngx_event.h>
|
|
10
|
|
11
|
|
12 ngx_os_io_t ngx_io;
|
|
13
|
|
14
|
70
|
15 ngx_listening_t *
|
486
|
16 ngx_create_listening(ngx_conf_t *cf, void *sockaddr, socklen_t socklen)
|
0
|
17 {
|
538
|
18 size_t len;
|
486
|
19 ngx_listening_t *ls;
|
|
20 struct sockaddr *sa;
|
|
21 u_char text[NGX_SOCKADDR_STRLEN];
|
0
|
22
|
50
|
23 ls = ngx_array_push(&cf->cycle->listening);
|
|
24 if (ls == NULL) {
|
0
|
25 return NULL;
|
|
26 }
|
|
27
|
|
28 ngx_memzero(ls, sizeof(ngx_listening_t));
|
|
29
|
486
|
30 sa = ngx_palloc(cf->pool, socklen);
|
|
31 if (sa == NULL) {
|
0
|
32 return NULL;
|
|
33 }
|
|
34
|
486
|
35 ngx_memcpy(sa, sockaddr, socklen);
|
0
|
36
|
486
|
37 ls->sockaddr = sa;
|
|
38 ls->socklen = socklen;
|
10
|
39
|
538
|
40 len = ngx_sock_ntop(sa, text, NGX_SOCKADDR_STRLEN, 1);
|
|
41 ls->addr_text.len = len;
|
486
|
42
|
|
43 switch (ls->sockaddr->sa_family) {
|
|
44 #if (NGX_HAVE_INET6)
|
|
45 case AF_INET6:
|
|
46 ls->addr_text_max_len = NGX_INET6_ADDRSTRLEN;
|
|
47 break;
|
|
48 #endif
|
538
|
49 #if (NGX_HAVE_UNIX_DOMAIN)
|
|
50 case AF_UNIX:
|
|
51 ls->addr_text_max_len = NGX_UNIX_ADDRSTRLEN;
|
|
52 len++;
|
|
53 break;
|
|
54 #endif
|
486
|
55 case AF_INET:
|
|
56 ls->addr_text_max_len = NGX_INET_ADDRSTRLEN;
|
|
57 break;
|
|
58 default:
|
|
59 ls->addr_text_max_len = NGX_SOCKADDR_STRLEN;
|
|
60 break;
|
|
61 }
|
|
62
|
538
|
63 ls->addr_text.data = ngx_pnalloc(cf->pool, len);
|
|
64 if (ls->addr_text.data == NULL) {
|
|
65 return NULL;
|
|
66 }
|
|
67
|
|
68 ngx_memcpy(ls->addr_text.data, text, len);
|
|
69
|
|
70 ls->fd = (ngx_socket_t) -1;
|
|
71 ls->type = SOCK_STREAM;
|
|
72
|
486
|
73 ls->backlog = NGX_LISTEN_BACKLOG;
|
|
74 ls->rcvbuf = -1;
|
|
75 ls->sndbuf = -1;
|
0
|
76
|
584
|
77 #if (NGX_HAVE_SETFIB)
|
|
78 ls->setfib = -1;
|
|
79 #endif
|
|
80
|
0
|
81 return ls;
|
|
82 }
|
|
83
|
|
84
|
70
|
85 ngx_int_t
|
|
86 ngx_set_inherited_sockets(ngx_cycle_t *cycle)
|
0
|
87 {
|
72
|
88 size_t len;
|
|
89 ngx_uint_t i;
|
|
90 ngx_listening_t *ls;
|
112
|
91 socklen_t olen;
|
72
|
92 #if (NGX_HAVE_DEFERRED_ACCEPT && defined SO_ACCEPTFILTER)
|
90
|
93 ngx_err_t err;
|
72
|
94 struct accept_filter_arg af;
|
|
95 #endif
|
|
96 #if (NGX_HAVE_DEFERRED_ACCEPT && defined TCP_DEFER_ACCEPT)
|
|
97 int timeout;
|
|
98 #endif
|
0
|
99
|
|
100 ls = cycle->listening.elts;
|
|
101 for (i = 0; i < cycle->listening.nelts; i++) {
|
|
102
|
574
|
103 ls[i].sockaddr = ngx_palloc(cycle->pool, NGX_SOCKADDRLEN);
|
0
|
104 if (ls[i].sockaddr == NULL) {
|
|
105 return NGX_ERROR;
|
|
106 }
|
|
107
|
574
|
108 ls[i].socklen = NGX_SOCKADDRLEN;
|
0
|
109 if (getsockname(ls[i].fd, ls[i].sockaddr, &ls[i].socklen) == -1) {
|
|
110 ngx_log_error(NGX_LOG_CRIT, cycle->log, ngx_socket_errno,
|
|
111 "getsockname() of the inherited "
|
|
112 "socket #%d failed", ls[i].fd);
|
|
113 ls[i].ignore = 1;
|
|
114 continue;
|
|
115 }
|
|
116
|
448
|
117 switch (ls[i].sockaddr->sa_family) {
|
0
|
118
|
448
|
119 #if (NGX_HAVE_INET6)
|
|
120 case AF_INET6:
|
|
121 ls[i].addr_text_max_len = NGX_INET6_ADDRSTRLEN;
|
542
|
122 len = NGX_INET6_ADDRSTRLEN + sizeof(":65535") - 1;
|
|
123 break;
|
|
124 #endif
|
|
125
|
|
126 #if (NGX_HAVE_UNIX_DOMAIN)
|
|
127 case AF_UNIX:
|
|
128 ls[i].addr_text_max_len = NGX_UNIX_ADDRSTRLEN;
|
|
129 len = NGX_UNIX_ADDRSTRLEN;
|
448
|
130 break;
|
|
131 #endif
|
|
132
|
|
133 case AF_INET:
|
|
134 ls[i].addr_text_max_len = NGX_INET_ADDRSTRLEN;
|
542
|
135 len = NGX_INET_ADDRSTRLEN + sizeof(":65535") - 1;
|
448
|
136 break;
|
|
137
|
|
138 default:
|
0
|
139 ngx_log_error(NGX_LOG_CRIT, cycle->log, ngx_socket_errno,
|
|
140 "the inherited socket #%d has "
|
448
|
141 "an unsupported protocol family", ls[i].fd);
|
0
|
142 ls[i].ignore = 1;
|
|
143 continue;
|
|
144 }
|
10
|
145
|
448
|
146 ls[i].addr_text.data = ngx_pnalloc(cycle->pool, len);
|
0
|
147 if (ls[i].addr_text.data == NULL) {
|
|
148 return NGX_ERROR;
|
|
149 }
|
|
150
|
448
|
151 len = ngx_sock_ntop(ls[i].sockaddr, ls[i].addr_text.data, len, 1);
|
10
|
152 if (len == 0) {
|
0
|
153 return NGX_ERROR;
|
|
154 }
|
10
|
155
|
448
|
156 ls[i].addr_text.len = len;
|
72
|
157
|
326
|
158 ls[i].backlog = NGX_LISTEN_BACKLOG;
|
86
|
159
|
112
|
160 olen = sizeof(int);
|
|
161
|
|
162 if (getsockopt(ls[i].fd, SOL_SOCKET, SO_RCVBUF, (void *) &ls[i].rcvbuf,
|
|
163 &olen)
|
|
164 == -1)
|
|
165 {
|
|
166 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
|
167 "getsockopt(SO_RCVBUF) %V failed, ignored",
|
|
168 &ls[i].addr_text);
|
|
169
|
|
170 ls[i].rcvbuf = -1;
|
|
171 }
|
|
172
|
|
173 olen = sizeof(int);
|
|
174
|
|
175 if (getsockopt(ls[i].fd, SOL_SOCKET, SO_SNDBUF, (void *) &ls[i].sndbuf,
|
|
176 &olen)
|
|
177 == -1)
|
|
178 {
|
|
179 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
|
180 "getsockopt(SO_SNDBUF) %V failed, ignored",
|
|
181 &ls[i].addr_text);
|
|
182
|
|
183 ls[i].sndbuf = -1;
|
|
184 }
|
|
185
|
584
|
186 #if 0
|
|
187 /* SO_SETFIB is currently a set only option */
|
|
188
|
|
189 #if (NGX_HAVE_SETFIB)
|
|
190
|
|
191 if (getsockopt(ls[i].setfib, SOL_SOCKET, SO_SETFIB,
|
|
192 (void *) &ls[i].setfib, &olen)
|
|
193 == -1)
|
|
194 {
|
|
195 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
|
196 "getsockopt(SO_SETFIB) %V failed, ignored",
|
|
197 &ls[i].addr_text);
|
|
198
|
|
199 ls[i].setfib = -1;
|
|
200 }
|
|
201
|
|
202 #endif
|
|
203 #endif
|
|
204
|
72
|
205 #if (NGX_HAVE_DEFERRED_ACCEPT && defined SO_ACCEPTFILTER)
|
|
206
|
|
207 ngx_memzero(&af, sizeof(struct accept_filter_arg));
|
112
|
208 olen = sizeof(struct accept_filter_arg);
|
72
|
209
|
112
|
210 if (getsockopt(ls[i].fd, SOL_SOCKET, SO_ACCEPTFILTER, &af, &olen)
|
72
|
211 == -1)
|
|
212 {
|
90
|
213 err = ngx_errno;
|
|
214
|
|
215 if (err == NGX_EINVAL) {
|
|
216 continue;
|
|
217 }
|
|
218
|
|
219 ngx_log_error(NGX_LOG_NOTICE, cycle->log, err,
|
72
|
220 "getsockopt(SO_ACCEPTFILTER) for %V failed, ignored",
|
|
221 &ls[i].addr_text);
|
|
222 continue;
|
|
223 }
|
|
224
|
112
|
225 if (olen < sizeof(struct accept_filter_arg) || af.af_name[0] == '\0') {
|
72
|
226 continue;
|
|
227 }
|
|
228
|
|
229 ls[i].accept_filter = ngx_palloc(cycle->pool, 16);
|
|
230 if (ls[i].accept_filter == NULL) {
|
|
231 return NGX_ERROR;
|
|
232 }
|
|
233
|
|
234 (void) ngx_cpystrn((u_char *) ls[i].accept_filter,
|
|
235 (u_char *) af.af_name, 16);
|
|
236 #endif
|
|
237
|
|
238 #if (NGX_HAVE_DEFERRED_ACCEPT && defined TCP_DEFER_ACCEPT)
|
|
239
|
|
240 timeout = 0;
|
112
|
241 olen = sizeof(int);
|
72
|
242
|
112
|
243 if (getsockopt(ls[i].fd, IPPROTO_TCP, TCP_DEFER_ACCEPT, &timeout, &olen)
|
72
|
244 == -1)
|
|
245 {
|
|
246 ngx_log_error(NGX_LOG_NOTICE, cycle->log, ngx_errno,
|
|
247 "getsockopt(TCP_DEFER_ACCEPT) for %V failed, ignored",
|
|
248 &ls[i].addr_text);
|
|
249 continue;
|
|
250 }
|
|
251
|
114
|
252 if (olen < sizeof(int) || timeout == 0) {
|
72
|
253 continue;
|
|
254 }
|
|
255
|
|
256 ls[i].deferred_accept = 1;
|
|
257 #endif
|
0
|
258 }
|
|
259
|
|
260 return NGX_OK;
|
|
261 }
|
|
262
|
|
263
|
70
|
264 ngx_int_t
|
|
265 ngx_open_listening_sockets(ngx_cycle_t *cycle)
|
0
|
266 {
|
112
|
267 int reuseaddr;
|
|
268 ngx_uint_t i, tries, failed;
|
0
|
269 ngx_err_t err;
|
|
270 ngx_log_t *log;
|
|
271 ngx_socket_t s;
|
|
272 ngx_listening_t *ls;
|
|
273
|
|
274 reuseaddr = 1;
|
|
275 #if (NGX_SUPPRESS_WARN)
|
|
276 failed = 0;
|
|
277 #endif
|
|
278
|
|
279 log = cycle->log;
|
|
280
|
112
|
281 /* TODO: configurable try number */
|
0
|
282
|
378
|
283 for (tries = 5; tries; tries--) {
|
0
|
284 failed = 0;
|
|
285
|
|
286 /* for each listening socket */
|
|
287
|
|
288 ls = cycle->listening.elts;
|
|
289 for (i = 0; i < cycle->listening.nelts; i++) {
|
|
290
|
|
291 if (ls[i].ignore) {
|
|
292 continue;
|
|
293 }
|
|
294
|
|
295 if (ls[i].fd != -1) {
|
|
296 continue;
|
|
297 }
|
|
298
|
|
299 if (ls[i].inherited) {
|
|
300
|
|
301 /* TODO: close on exit */
|
|
302 /* TODO: nonblocking */
|
|
303 /* TODO: deferred accept */
|
|
304
|
|
305 continue;
|
|
306 }
|
|
307
|
400
|
308 s = ngx_socket(ls[i].sockaddr->sa_family, ls[i].type, 0);
|
0
|
309
|
|
310 if (s == -1) {
|
|
311 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
10
|
312 ngx_socket_n " %V failed", &ls[i].addr_text);
|
0
|
313 return NGX_ERROR;
|
|
314 }
|
|
315
|
|
316 if (setsockopt(s, SOL_SOCKET, SO_REUSEADDR,
|
112
|
317 (const void *) &reuseaddr, sizeof(int))
|
|
318 == -1)
|
|
319 {
|
0
|
320 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
10
|
321 "setsockopt(SO_REUSEADDR) %V failed",
|
|
322 &ls[i].addr_text);
|
112
|
323
|
306
|
324 if (ngx_close_socket(s) == -1) {
|
112
|
325 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
|
326 ngx_close_socket_n " %V failed",
|
|
327 &ls[i].addr_text);
|
306
|
328 }
|
112
|
329
|
0
|
330 return NGX_ERROR;
|
|
331 }
|
|
332
|
460
|
333 #if (NGX_HAVE_INET6 && defined IPV6_V6ONLY)
|
|
334
|
|
335 if (ls[i].sockaddr->sa_family == AF_INET6 && ls[i].ipv6only) {
|
|
336 int ipv6only;
|
|
337
|
|
338 ipv6only = (ls[i].ipv6only == 1);
|
|
339
|
|
340 if (setsockopt(s, IPPROTO_IPV6, IPV6_V6ONLY,
|
|
341 (const void *) &ipv6only, sizeof(int))
|
|
342 == -1)
|
|
343 {
|
486
|
344 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
460
|
345 "setsockopt(IPV6_V6ONLY) %V failed, ignored",
|
|
346 &ls[i].addr_text);
|
|
347 }
|
|
348 }
|
|
349 #endif
|
0
|
350 /* TODO: close on exit */
|
|
351
|
|
352 if (!(ngx_event_flags & NGX_USE_AIO_EVENT)) {
|
|
353 if (ngx_nonblocking(s) == -1) {
|
|
354 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
10
|
355 ngx_nonblocking_n " %V failed",
|
|
356 &ls[i].addr_text);
|
112
|
357
|
306
|
358 if (ngx_close_socket(s) == -1) {
|
112
|
359 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
|
360 ngx_close_socket_n " %V failed",
|
|
361 &ls[i].addr_text);
|
306
|
362 }
|
112
|
363
|
0
|
364 return NGX_ERROR;
|
|
365 }
|
|
366 }
|
|
367
|
486
|
368 ngx_log_debug2(NGX_LOG_DEBUG_CORE, log, 0,
|
142
|
369 "bind() %V #%d ", &ls[i].addr_text, s);
|
|
370
|
0
|
371 if (bind(s, ls[i].sockaddr, ls[i].socklen) == -1) {
|
|
372 err = ngx_socket_errno;
|
112
|
373
|
|
374 if (err == NGX_EADDRINUSE && ngx_test_config) {
|
|
375 continue;
|
|
376 }
|
|
377
|
0
|
378 ngx_log_error(NGX_LOG_EMERG, log, err,
|
10
|
379 "bind() to %V failed", &ls[i].addr_text);
|
0
|
380
|
306
|
381 if (ngx_close_socket(s) == -1) {
|
0
|
382 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
10
|
383 ngx_close_socket_n " %V failed",
|
|
384 &ls[i].addr_text);
|
306
|
385 }
|
0
|
386
|
112
|
387 if (err != NGX_EADDRINUSE) {
|
|
388 return NGX_ERROR;
|
|
389 }
|
|
390
|
0
|
391 failed = 1;
|
112
|
392
|
0
|
393 continue;
|
|
394 }
|
|
395
|
540
|
396 #if (NGX_HAVE_UNIX_DOMAIN)
|
|
397
|
554
|
398 if (ls[i].sockaddr->sa_family == AF_UNIX) {
|
|
399 mode_t mode;
|
|
400 u_char *name;
|
|
401
|
|
402 name = ls[i].addr_text.data + sizeof("unix:") - 1;
|
|
403 mode = (S_IRUSR|S_IWUSR|S_IRGRP|S_IWGRP|S_IROTH|S_IWOTH);
|
540
|
404
|
554
|
405 if (chmod((char *) name, mode) == -1) {
|
|
406 ngx_log_error(NGX_LOG_EMERG, cycle->log, ngx_errno,
|
|
407 "chmod() \"%s\" failed", name);
|
|
408 }
|
|
409
|
|
410 if (ngx_test_config) {
|
|
411 if (ngx_delete_file(name) == -1) {
|
|
412 ngx_log_error(NGX_LOG_EMERG, cycle->log, ngx_errno,
|
|
413 ngx_delete_file_n " %s failed", name);
|
|
414 }
|
540
|
415 }
|
|
416 }
|
|
417 #endif
|
|
418
|
306
|
419 if (listen(s, ls[i].backlog) == -1) {
|
|
420 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
|
421 "listen() to %V, backlog %d failed",
|
|
422 &ls[i].addr_text, ls[i].backlog);
|
|
423
|
|
424 if (ngx_close_socket(s) == -1) {
|
|
425 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
|
426 ngx_close_socket_n " %V failed",
|
|
427 &ls[i].addr_text);
|
|
428 }
|
|
429
|
|
430 return NGX_ERROR;
|
|
431 }
|
|
432
|
112
|
433 ls[i].listen = 1;
|
0
|
434
|
|
435 ls[i].fd = s;
|
|
436 }
|
|
437
|
112
|
438 if (!failed) {
|
0
|
439 break;
|
112
|
440 }
|
0
|
441
|
|
442 /* TODO: delay configurable */
|
|
443
|
|
444 ngx_log_error(NGX_LOG_NOTICE, log, 0,
|
|
445 "try again to bind() after 500ms");
|
112
|
446
|
0
|
447 ngx_msleep(500);
|
|
448 }
|
|
449
|
|
450 if (failed) {
|
26
|
451 ngx_log_error(NGX_LOG_EMERG, log, 0, "still could not bind()");
|
0
|
452 return NGX_ERROR;
|
|
453 }
|
|
454
|
|
455 return NGX_OK;
|
|
456 }
|
|
457
|
|
458
|
70
|
459 void
|
486
|
460 ngx_configure_listening_sockets(ngx_cycle_t *cycle)
|
112
|
461 {
|
|
462 ngx_uint_t i;
|
|
463 ngx_listening_t *ls;
|
|
464
|
|
465 #if (NGX_HAVE_DEFERRED_ACCEPT && defined SO_ACCEPTFILTER)
|
|
466 struct accept_filter_arg af;
|
|
467 #endif
|
|
468 #if (NGX_HAVE_DEFERRED_ACCEPT && defined TCP_DEFER_ACCEPT)
|
|
469 int timeout;
|
|
470 #endif
|
|
471
|
|
472 ls = cycle->listening.elts;
|
|
473 for (i = 0; i < cycle->listening.nelts; i++) {
|
|
474
|
486
|
475 ls[i].log = *ls[i].logp;
|
|
476
|
112
|
477 if (ls[i].rcvbuf != -1) {
|
|
478 if (setsockopt(ls[i].fd, SOL_SOCKET, SO_RCVBUF,
|
|
479 (const void *) &ls[i].rcvbuf, sizeof(int))
|
|
480 == -1)
|
|
481 {
|
|
482 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
118
|
483 "setsockopt(SO_RCVBUF, %d) %V failed, ignored",
|
|
484 ls[i].rcvbuf, &ls[i].addr_text);
|
112
|
485 }
|
|
486 }
|
|
487
|
|
488 if (ls[i].sndbuf != -1) {
|
|
489 if (setsockopt(ls[i].fd, SOL_SOCKET, SO_SNDBUF,
|
|
490 (const void *) &ls[i].sndbuf, sizeof(int))
|
|
491 == -1)
|
|
492 {
|
|
493 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
118
|
494 "setsockopt(SO_SNDBUF, %d) %V failed, ignored",
|
|
495 ls[i].sndbuf, &ls[i].addr_text);
|
112
|
496 }
|
|
497 }
|
|
498
|
584
|
499 #if (NGX_HAVE_SETFIB)
|
|
500 if (ls[i].setfib != -1) {
|
|
501 if (setsockopt(ls[i].fd, SOL_SOCKET, SO_SETFIB,
|
|
502 (const void *) &ls[i].setfib, sizeof(int))
|
|
503 == -1)
|
|
504 {
|
|
505 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
|
506 "setsockopt(SO_SETFIB, %d) %V failed, ignored",
|
|
507 ls[i].setfib, &ls[i].addr_text);
|
|
508 }
|
|
509 }
|
|
510 #endif
|
|
511
|
184
|
512 #if 0
|
|
513 if (1) {
|
|
514 int tcp_nodelay = 1;
|
|
515
|
|
516 if (setsockopt(ls[i].fd, IPPROTO_TCP, TCP_NODELAY,
|
|
517 (const void *) &tcp_nodelay, sizeof(int))
|
|
518 == -1)
|
|
519 {
|
|
520 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
|
521 "setsockopt(TCP_NODELAY) %V failed, ignored",
|
|
522 &ls[i].addr_text);
|
|
523 }
|
|
524 }
|
|
525 #endif
|
|
526
|
112
|
527 if (ls[i].listen) {
|
306
|
528
|
|
529 /* change backlog via listen() */
|
|
530
|
112
|
531 if (listen(ls[i].fd, ls[i].backlog) == -1) {
|
|
532 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
306
|
533 "listen() to %V, backlog %d failed, ignored",
|
112
|
534 &ls[i].addr_text, ls[i].backlog);
|
|
535 }
|
|
536 }
|
|
537
|
|
538 /*
|
|
539 * setting deferred mode should be last operation on socket,
|
|
540 * because code may prematurely continue cycle on failure
|
|
541 */
|
|
542
|
|
543 #if (NGX_HAVE_DEFERRED_ACCEPT)
|
|
544
|
|
545 #ifdef SO_ACCEPTFILTER
|
|
546
|
176
|
547 if (ls[i].delete_deferred) {
|
|
548 if (setsockopt(ls[i].fd, SOL_SOCKET, SO_ACCEPTFILTER, NULL, 0)
|
|
549 == -1)
|
112
|
550 {
|
|
551 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_errno,
|
|
552 "setsockopt(SO_ACCEPTFILTER, NULL) "
|
|
553 "for %V failed, ignored",
|
176
|
554 &ls[i].addr_text);
|
112
|
555
|
176
|
556 if (ls[i].accept_filter) {
|
112
|
557 ngx_log_error(NGX_LOG_ALERT, cycle->log, 0,
|
|
558 "could not change the accept filter "
|
|
559 "to \"%s\" for %V, ignored",
|
176
|
560 ls[i].accept_filter, &ls[i].addr_text);
|
112
|
561 }
|
|
562
|
|
563 continue;
|
|
564 }
|
|
565
|
176
|
566 ls[i].deferred_accept = 0;
|
112
|
567 }
|
|
568
|
176
|
569 if (ls[i].add_deferred) {
|
112
|
570 ngx_memzero(&af, sizeof(struct accept_filter_arg));
|
|
571 (void) ngx_cpystrn((u_char *) af.af_name,
|
176
|
572 (u_char *) ls[i].accept_filter, 16);
|
112
|
573
|
176
|
574 if (setsockopt(ls[i].fd, SOL_SOCKET, SO_ACCEPTFILTER,
|
112
|
575 &af, sizeof(struct accept_filter_arg))
|
|
576 == -1)
|
|
577 {
|
|
578 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_errno,
|
|
579 "setsockopt(SO_ACCEPTFILTER, \"%s\") "
|
|
580 " for %V failed, ignored",
|
176
|
581 ls[i].accept_filter, &ls[i].addr_text);
|
112
|
582 continue;
|
|
583 }
|
|
584
|
176
|
585 ls[i].deferred_accept = 1;
|
112
|
586 }
|
|
587
|
|
588 #endif
|
|
589
|
|
590 #ifdef TCP_DEFER_ACCEPT
|
|
591
|
176
|
592 if (ls[i].add_deferred || ls[i].delete_deferred) {
|
112
|
593
|
176
|
594 if (ls[i].add_deferred) {
|
|
595 timeout = (int) (ls[i].post_accept_timeout / 1000);
|
112
|
596
|
|
597 } else {
|
|
598 timeout = 0;
|
|
599 }
|
|
600
|
176
|
601 if (setsockopt(ls[i].fd, IPPROTO_TCP, TCP_DEFER_ACCEPT,
|
112
|
602 &timeout, sizeof(int))
|
|
603 == -1)
|
|
604 {
|
|
605 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_errno,
|
|
606 "setsockopt(TCP_DEFER_ACCEPT, %d) for %V failed, "
|
|
607 "ignored",
|
176
|
608 timeout, &ls[i].addr_text);
|
112
|
609
|
|
610 continue;
|
|
611 }
|
|
612 }
|
|
613
|
176
|
614 if (ls[i].add_deferred) {
|
|
615 ls[i].deferred_accept = 1;
|
112
|
616 }
|
|
617
|
|
618 #endif
|
|
619
|
|
620 #endif /* NGX_HAVE_DEFERRED_ACCEPT */
|
|
621 }
|
|
622
|
|
623 return;
|
|
624 }
|
|
625
|
|
626
|
|
627 void
|
70
|
628 ngx_close_listening_sockets(ngx_cycle_t *cycle)
|
0
|
629 {
|
92
|
630 ngx_uint_t i;
|
|
631 ngx_listening_t *ls;
|
|
632 ngx_connection_t *c;
|
0
|
633
|
|
634 if (ngx_event_flags & NGX_USE_IOCP_EVENT) {
|
|
635 return;
|
|
636 }
|
|
637
|
|
638 ngx_accept_mutex_held = 0;
|
160
|
639 ngx_use_accept_mutex = 0;
|
0
|
640
|
|
641 ls = cycle->listening.elts;
|
|
642 for (i = 0; i < cycle->listening.nelts; i++) {
|
|
643
|
92
|
644 c = ls[i].connection;
|
0
|
645
|
480
|
646 if (c) {
|
|
647 if (c->read->active) {
|
|
648 if (ngx_event_flags & NGX_USE_RTSIG_EVENT) {
|
|
649 ngx_del_conn(c, NGX_CLOSE_EVENT);
|
362
|
650
|
480
|
651 } else if (ngx_event_flags & NGX_USE_EPOLL_EVENT) {
|
0
|
652
|
480
|
653 /*
|
|
654 * it seems that Linux-2.6.x OpenVZ sends events
|
|
655 * for closed shared listening sockets unless
|
|
656 * the events was explicity deleted
|
|
657 */
|
362
|
658
|
480
|
659 ngx_del_event(c->read, NGX_READ_EVENT, 0);
|
362
|
660
|
480
|
661 } else {
|
|
662 ngx_del_event(c->read, NGX_READ_EVENT, NGX_CLOSE_EVENT);
|
|
663 }
|
0
|
664 }
|
480
|
665
|
|
666 ngx_free_connection(c);
|
|
667
|
|
668 c->fd = (ngx_socket_t) -1;
|
0
|
669 }
|
|
670
|
112
|
671 ngx_log_debug2(NGX_LOG_DEBUG_CORE, cycle->log, 0,
|
|
672 "close listening %V #%d ", &ls[i].addr_text, ls[i].fd);
|
|
673
|
92
|
674 if (ngx_close_socket(ls[i].fd) == -1) {
|
0
|
675 ngx_log_error(NGX_LOG_EMERG, cycle->log, ngx_socket_errno,
|
10
|
676 ngx_close_socket_n " %V failed", &ls[i].addr_text);
|
0
|
677 }
|
498
|
678
|
538
|
679 #if (NGX_HAVE_UNIX_DOMAIN)
|
|
680
|
|
681 if (ls[i].sockaddr->sa_family == AF_UNIX
|
552
|
682 && ngx_process <= NGX_PROCESS_MASTER
|
540
|
683 && ngx_new_binary == 0)
|
538
|
684 {
|
|
685 u_char *name = ls[i].addr_text.data + sizeof("unix:") - 1;
|
|
686
|
|
687 if (ngx_delete_file(name) == -1) {
|
|
688 ngx_log_error(NGX_LOG_EMERG, cycle->log, ngx_socket_errno,
|
|
689 ngx_delete_file_n " %s failed", name);
|
|
690 }
|
|
691 }
|
|
692
|
|
693 #endif
|
|
694
|
498
|
695 ls[i].fd = (ngx_socket_t) -1;
|
92
|
696 }
|
|
697 }
|
0
|
698
|
92
|
699
|
|
700 ngx_connection_t *
|
|
701 ngx_get_connection(ngx_socket_t s, ngx_log_t *log)
|
|
702 {
|
110
|
703 ngx_uint_t instance;
|
|
704 ngx_event_t *rev, *wev;
|
|
705 ngx_connection_t *c;
|
92
|
706
|
|
707 /* disable warning: Win32 SOCKET is u_int while UNIX socket is int */
|
|
708
|
|
709 if (ngx_cycle->files && (ngx_uint_t) s >= ngx_cycle->files_n) {
|
|
710 ngx_log_error(NGX_LOG_ALERT, log, 0,
|
|
711 "the new socket has number %d, "
|
|
712 "but only %ui files are available",
|
|
713 s, ngx_cycle->files_n);
|
|
714 return NULL;
|
|
715 }
|
|
716
|
|
717 /* ngx_mutex_lock */
|
|
718
|
|
719 c = ngx_cycle->free_connections;
|
|
720
|
|
721 if (c == NULL) {
|
|
722 ngx_log_error(NGX_LOG_ALERT, log, 0,
|
412
|
723 "%ui worker_connections are not enough",
|
92
|
724 ngx_cycle->connection_n);
|
|
725
|
|
726 /* ngx_mutex_unlock */
|
|
727
|
|
728 return NULL;
|
|
729 }
|
|
730
|
|
731 ngx_cycle->free_connections = c->data;
|
|
732 ngx_cycle->free_connection_n--;
|
|
733
|
|
734 /* ngx_mutex_unlock */
|
|
735
|
|
736 if (ngx_cycle->files) {
|
|
737 ngx_cycle->files[s] = c;
|
|
738 }
|
|
739
|
110
|
740 rev = c->read;
|
|
741 wev = c->write;
|
|
742
|
|
743 ngx_memzero(c, sizeof(ngx_connection_t));
|
|
744
|
|
745 c->read = rev;
|
|
746 c->write = wev;
|
|
747 c->fd = s;
|
|
748 c->log = log;
|
|
749
|
|
750 instance = rev->instance;
|
|
751
|
|
752 ngx_memzero(rev, sizeof(ngx_event_t));
|
|
753 ngx_memzero(wev, sizeof(ngx_event_t));
|
|
754
|
|
755 rev->instance = !instance;
|
|
756 wev->instance = !instance;
|
|
757
|
|
758 rev->index = NGX_INVALID_INDEX;
|
|
759 wev->index = NGX_INVALID_INDEX;
|
|
760
|
|
761 rev->data = c;
|
|
762 wev->data = c;
|
|
763
|
|
764 wev->write = 1;
|
|
765
|
92
|
766 return c;
|
|
767 }
|
|
768
|
|
769
|
|
770 void
|
|
771 ngx_free_connection(ngx_connection_t *c)
|
|
772 {
|
|
773 /* ngx_mutex_lock */
|
|
774
|
|
775 c->data = ngx_cycle->free_connections;
|
|
776 ngx_cycle->free_connections = c;
|
|
777 ngx_cycle->free_connection_n++;
|
|
778
|
|
779 /* ngx_mutex_unlock */
|
|
780
|
|
781 if (ngx_cycle->files) {
|
|
782 ngx_cycle->files[c->fd] = NULL;
|
0
|
783 }
|
|
784 }
|
|
785
|
|
786
|
70
|
787 void
|
|
788 ngx_close_connection(ngx_connection_t *c)
|
0
|
789 {
|
366
|
790 ngx_err_t err;
|
|
791 ngx_uint_t log_error, level;
|
0
|
792 ngx_socket_t fd;
|
|
793
|
28
|
794 if (c->fd == -1) {
|
0
|
795 ngx_log_error(NGX_LOG_ALERT, c->log, 0, "connection already closed");
|
|
796 return;
|
|
797 }
|
|
798
|
|
799 if (c->read->timer_set) {
|
|
800 ngx_del_timer(c->read);
|
|
801 }
|
126
|
802
|
0
|
803 if (c->write->timer_set) {
|
|
804 ngx_del_timer(c->write);
|
|
805 }
|
126
|
806
|
0
|
807 if (ngx_del_conn) {
|
|
808 ngx_del_conn(c, NGX_CLOSE_EVENT);
|
|
809
|
|
810 } else {
|
|
811 if (c->read->active || c->read->disabled) {
|
|
812 ngx_del_event(c->read, NGX_READ_EVENT, NGX_CLOSE_EVENT);
|
|
813 }
|
|
814
|
|
815 if (c->write->active || c->write->disabled) {
|
|
816 ngx_del_event(c->write, NGX_WRITE_EVENT, NGX_CLOSE_EVENT);
|
|
817 }
|
|
818 }
|
|
819
|
|
820 #if (NGX_THREADS)
|
|
821
|
|
822 /*
|
|
823 * we have to clean the connection information before the closing
|
|
824 * because another thread may reopen the same file descriptor
|
|
825 * before we clean the connection
|
|
826 */
|
|
827
|
112
|
828 ngx_mutex_lock(ngx_posted_events_mutex);
|
0
|
829
|
112
|
830 if (c->read->prev) {
|
|
831 ngx_delete_posted_event(c->read);
|
|
832 }
|
0
|
833
|
112
|
834 if (c->write->prev) {
|
|
835 ngx_delete_posted_event(c->write);
|
|
836 }
|
0
|
837
|
112
|
838 c->read->closed = 1;
|
|
839 c->write->closed = 1;
|
0
|
840
|
112
|
841 if (c->single_connection) {
|
|
842 ngx_unlock(&c->lock);
|
|
843 c->read->locked = 0;
|
|
844 c->write->locked = 0;
|
|
845 }
|
0
|
846
|
112
|
847 ngx_mutex_unlock(ngx_posted_events_mutex);
|
0
|
848
|
|
849 #else
|
|
850
|
|
851 if (c->read->prev) {
|
|
852 ngx_delete_posted_event(c->read);
|
|
853 }
|
|
854
|
|
855 if (c->write->prev) {
|
|
856 ngx_delete_posted_event(c->write);
|
|
857 }
|
|
858
|
|
859 c->read->closed = 1;
|
|
860 c->write->closed = 1;
|
|
861
|
|
862 #endif
|
|
863
|
366
|
864 log_error = c->log_error;
|
|
865
|
92
|
866 ngx_free_connection(c);
|
|
867
|
0
|
868 fd = c->fd;
|
|
869 c->fd = (ngx_socket_t) -1;
|
|
870
|
|
871 if (ngx_close_socket(fd) == -1) {
|
|
872
|
366
|
873 err = ngx_socket_errno;
|
|
874
|
|
875 if (err == NGX_ECONNRESET || err == NGX_ENOTCONN) {
|
|
876
|
|
877 switch (log_error) {
|
|
878
|
|
879 case NGX_ERROR_INFO:
|
|
880 level = NGX_LOG_INFO;
|
|
881 break;
|
|
882
|
|
883 case NGX_ERROR_ERR:
|
|
884 level = NGX_LOG_ERR;
|
|
885 break;
|
|
886
|
|
887 default:
|
|
888 level = NGX_LOG_CRIT;
|
|
889 }
|
|
890
|
|
891 } else {
|
|
892 level = NGX_LOG_CRIT;
|
|
893 }
|
|
894
|
0
|
895 /* we use ngx_cycle->log because c->log was in c->pool */
|
|
896
|
366
|
897 ngx_log_error(level, ngx_cycle->log, err,
|
332
|
898 ngx_close_socket_n " %d failed", fd);
|
0
|
899 }
|
|
900 }
|
|
901
|
|
902
|
70
|
903 ngx_int_t
|
492
|
904 ngx_connection_local_sockaddr(ngx_connection_t *c, ngx_str_t *s,
|
|
905 ngx_uint_t port)
|
|
906 {
|
|
907 socklen_t len;
|
|
908 ngx_uint_t addr;
|
|
909 u_char sa[NGX_SOCKADDRLEN];
|
|
910 struct sockaddr_in *sin;
|
|
911 #if (NGX_HAVE_INET6)
|
|
912 ngx_uint_t i;
|
|
913 struct sockaddr_in6 *sin6;
|
|
914 #endif
|
|
915
|
|
916 switch (c->local_sockaddr->sa_family) {
|
|
917
|
|
918 #if (NGX_HAVE_INET6)
|
|
919 case AF_INET6:
|
|
920 sin6 = (struct sockaddr_in6 *) c->local_sockaddr;
|
|
921
|
|
922 for (addr = 0, i = 0; addr == 0 && i < 16; i++) {
|
|
923 addr |= sin6->sin6_addr.s6_addr[i];
|
|
924 }
|
|
925
|
|
926 break;
|
|
927 #endif
|
|
928
|
|
929 default: /* AF_INET */
|
|
930 sin = (struct sockaddr_in *) c->local_sockaddr;
|
|
931 addr = sin->sin_addr.s_addr;
|
|
932 break;
|
|
933 }
|
|
934
|
|
935 if (addr == 0) {
|
|
936
|
|
937 len = NGX_SOCKADDRLEN;
|
|
938
|
|
939 if (getsockname(c->fd, (struct sockaddr *) &sa, &len) == -1) {
|
|
940 ngx_connection_error(c, ngx_socket_errno, "getsockname() failed");
|
|
941 return NGX_ERROR;
|
|
942 }
|
|
943
|
|
944 c->local_sockaddr = ngx_palloc(c->pool, len);
|
|
945 if (c->local_sockaddr == NULL) {
|
|
946 return NGX_ERROR;
|
|
947 }
|
|
948
|
|
949 ngx_memcpy(c->local_sockaddr, &sa, len);
|
|
950 }
|
|
951
|
|
952 if (s == NULL) {
|
|
953 return NGX_OK;
|
|
954 }
|
|
955
|
|
956 s->len = ngx_sock_ntop(c->local_sockaddr, s->data, s->len, port);
|
|
957
|
|
958 return NGX_OK;
|
|
959 }
|
|
960
|
|
961
|
|
962 ngx_int_t
|
70
|
963 ngx_connection_error(ngx_connection_t *c, ngx_err_t err, char *text)
|
0
|
964 {
|
|
965 ngx_uint_t level;
|
|
966
|
484
|
967 /* Winsock may return NGX_ECONNABORTED instead of NGX_ECONNRESET */
|
|
968
|
|
969 if ((err == NGX_ECONNRESET
|
|
970 #if (NGX_WIN32)
|
|
971 || err == NGX_ECONNABORTED
|
|
972 #endif
|
|
973 ) && c->log_error == NGX_ERROR_IGNORE_ECONNRESET)
|
|
974 {
|
0
|
975 return 0;
|
|
976 }
|
|
977
|
460
|
978 #if (NGX_SOLARIS)
|
|
979 if (err == NGX_EINVAL && c->log_error == NGX_ERROR_IGNORE_EINVAL) {
|
|
980 return 0;
|
|
981 }
|
|
982 #endif
|
|
983
|
86
|
984 if (err == 0
|
|
985 || err == NGX_ECONNRESET
|
484
|
986 #if (NGX_WIN32)
|
|
987 || err == NGX_ECONNABORTED
|
|
988 #else
|
0
|
989 || err == NGX_EPIPE
|
|
990 #endif
|
|
991 || err == NGX_ENOTCONN
|
136
|
992 || err == NGX_ETIMEDOUT
|
0
|
993 || err == NGX_ECONNREFUSED
|
364
|
994 || err == NGX_ENETDOWN
|
|
995 || err == NGX_ENETUNREACH
|
|
996 || err == NGX_EHOSTDOWN
|
0
|
997 || err == NGX_EHOSTUNREACH)
|
|
998 {
|
|
999 switch (c->log_error) {
|
|
1000
|
460
|
1001 case NGX_ERROR_IGNORE_EINVAL:
|
0
|
1002 case NGX_ERROR_IGNORE_ECONNRESET:
|
|
1003 case NGX_ERROR_INFO:
|
|
1004 level = NGX_LOG_INFO;
|
|
1005 break;
|
|
1006
|
530
|
1007 default:
|
0
|
1008 level = NGX_LOG_ERR;
|
|
1009 }
|
|
1010
|
|
1011 } else {
|
366
|
1012 level = NGX_LOG_ALERT;
|
0
|
1013 }
|
|
1014
|
|
1015 ngx_log_error(level, c->log, err, text);
|
|
1016
|
|
1017 return NGX_ERROR;
|
|
1018 }
|