0
|
1
|
|
2 /*
|
|
3 * Copyright (C) Igor Sysoev
|
644
|
4 * Copyright (C) Nginx, Inc.
|
0
|
5 */
|
|
6
|
|
7
|
|
8 #include <ngx_config.h>
|
|
9 #include <ngx_core.h>
|
|
10 #include <ngx_event.h>
|
|
11
|
|
12
|
|
13 ngx_os_io_t ngx_io;
|
|
14
|
|
15
|
618
|
16 static void ngx_drain_connections(void);
|
|
17
|
|
18
|
70
|
19 ngx_listening_t *
|
486
|
20 ngx_create_listening(ngx_conf_t *cf, void *sockaddr, socklen_t socklen)
|
0
|
21 {
|
538
|
22 size_t len;
|
486
|
23 ngx_listening_t *ls;
|
|
24 struct sockaddr *sa;
|
|
25 u_char text[NGX_SOCKADDR_STRLEN];
|
0
|
26
|
50
|
27 ls = ngx_array_push(&cf->cycle->listening);
|
|
28 if (ls == NULL) {
|
0
|
29 return NULL;
|
|
30 }
|
|
31
|
|
32 ngx_memzero(ls, sizeof(ngx_listening_t));
|
|
33
|
486
|
34 sa = ngx_palloc(cf->pool, socklen);
|
|
35 if (sa == NULL) {
|
0
|
36 return NULL;
|
|
37 }
|
|
38
|
486
|
39 ngx_memcpy(sa, sockaddr, socklen);
|
0
|
40
|
486
|
41 ls->sockaddr = sa;
|
|
42 ls->socklen = socklen;
|
10
|
43
|
538
|
44 len = ngx_sock_ntop(sa, text, NGX_SOCKADDR_STRLEN, 1);
|
|
45 ls->addr_text.len = len;
|
486
|
46
|
|
47 switch (ls->sockaddr->sa_family) {
|
|
48 #if (NGX_HAVE_INET6)
|
|
49 case AF_INET6:
|
|
50 ls->addr_text_max_len = NGX_INET6_ADDRSTRLEN;
|
|
51 break;
|
|
52 #endif
|
538
|
53 #if (NGX_HAVE_UNIX_DOMAIN)
|
|
54 case AF_UNIX:
|
|
55 ls->addr_text_max_len = NGX_UNIX_ADDRSTRLEN;
|
|
56 len++;
|
|
57 break;
|
|
58 #endif
|
486
|
59 case AF_INET:
|
|
60 ls->addr_text_max_len = NGX_INET_ADDRSTRLEN;
|
|
61 break;
|
|
62 default:
|
|
63 ls->addr_text_max_len = NGX_SOCKADDR_STRLEN;
|
|
64 break;
|
|
65 }
|
|
66
|
538
|
67 ls->addr_text.data = ngx_pnalloc(cf->pool, len);
|
|
68 if (ls->addr_text.data == NULL) {
|
|
69 return NULL;
|
|
70 }
|
|
71
|
|
72 ngx_memcpy(ls->addr_text.data, text, len);
|
|
73
|
|
74 ls->fd = (ngx_socket_t) -1;
|
|
75 ls->type = SOCK_STREAM;
|
|
76
|
486
|
77 ls->backlog = NGX_LISTEN_BACKLOG;
|
|
78 ls->rcvbuf = -1;
|
|
79 ls->sndbuf = -1;
|
0
|
80
|
584
|
81 #if (NGX_HAVE_SETFIB)
|
|
82 ls->setfib = -1;
|
|
83 #endif
|
|
84
|
0
|
85 return ls;
|
|
86 }
|
|
87
|
|
88
|
70
|
89 ngx_int_t
|
|
90 ngx_set_inherited_sockets(ngx_cycle_t *cycle)
|
0
|
91 {
|
72
|
92 size_t len;
|
|
93 ngx_uint_t i;
|
|
94 ngx_listening_t *ls;
|
112
|
95 socklen_t olen;
|
72
|
96 #if (NGX_HAVE_DEFERRED_ACCEPT && defined SO_ACCEPTFILTER)
|
90
|
97 ngx_err_t err;
|
72
|
98 struct accept_filter_arg af;
|
|
99 #endif
|
|
100 #if (NGX_HAVE_DEFERRED_ACCEPT && defined TCP_DEFER_ACCEPT)
|
|
101 int timeout;
|
|
102 #endif
|
0
|
103
|
|
104 ls = cycle->listening.elts;
|
|
105 for (i = 0; i < cycle->listening.nelts; i++) {
|
|
106
|
574
|
107 ls[i].sockaddr = ngx_palloc(cycle->pool, NGX_SOCKADDRLEN);
|
0
|
108 if (ls[i].sockaddr == NULL) {
|
|
109 return NGX_ERROR;
|
|
110 }
|
|
111
|
574
|
112 ls[i].socklen = NGX_SOCKADDRLEN;
|
0
|
113 if (getsockname(ls[i].fd, ls[i].sockaddr, &ls[i].socklen) == -1) {
|
|
114 ngx_log_error(NGX_LOG_CRIT, cycle->log, ngx_socket_errno,
|
|
115 "getsockname() of the inherited "
|
|
116 "socket #%d failed", ls[i].fd);
|
|
117 ls[i].ignore = 1;
|
|
118 continue;
|
|
119 }
|
|
120
|
448
|
121 switch (ls[i].sockaddr->sa_family) {
|
0
|
122
|
448
|
123 #if (NGX_HAVE_INET6)
|
|
124 case AF_INET6:
|
|
125 ls[i].addr_text_max_len = NGX_INET6_ADDRSTRLEN;
|
542
|
126 len = NGX_INET6_ADDRSTRLEN + sizeof(":65535") - 1;
|
|
127 break;
|
|
128 #endif
|
|
129
|
|
130 #if (NGX_HAVE_UNIX_DOMAIN)
|
|
131 case AF_UNIX:
|
|
132 ls[i].addr_text_max_len = NGX_UNIX_ADDRSTRLEN;
|
|
133 len = NGX_UNIX_ADDRSTRLEN;
|
448
|
134 break;
|
|
135 #endif
|
|
136
|
|
137 case AF_INET:
|
|
138 ls[i].addr_text_max_len = NGX_INET_ADDRSTRLEN;
|
542
|
139 len = NGX_INET_ADDRSTRLEN + sizeof(":65535") - 1;
|
448
|
140 break;
|
|
141
|
|
142 default:
|
0
|
143 ngx_log_error(NGX_LOG_CRIT, cycle->log, ngx_socket_errno,
|
|
144 "the inherited socket #%d has "
|
448
|
145 "an unsupported protocol family", ls[i].fd);
|
0
|
146 ls[i].ignore = 1;
|
|
147 continue;
|
|
148 }
|
10
|
149
|
448
|
150 ls[i].addr_text.data = ngx_pnalloc(cycle->pool, len);
|
0
|
151 if (ls[i].addr_text.data == NULL) {
|
|
152 return NGX_ERROR;
|
|
153 }
|
|
154
|
448
|
155 len = ngx_sock_ntop(ls[i].sockaddr, ls[i].addr_text.data, len, 1);
|
10
|
156 if (len == 0) {
|
0
|
157 return NGX_ERROR;
|
|
158 }
|
10
|
159
|
448
|
160 ls[i].addr_text.len = len;
|
72
|
161
|
326
|
162 ls[i].backlog = NGX_LISTEN_BACKLOG;
|
86
|
163
|
112
|
164 olen = sizeof(int);
|
|
165
|
|
166 if (getsockopt(ls[i].fd, SOL_SOCKET, SO_RCVBUF, (void *) &ls[i].rcvbuf,
|
|
167 &olen)
|
|
168 == -1)
|
|
169 {
|
|
170 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
|
171 "getsockopt(SO_RCVBUF) %V failed, ignored",
|
|
172 &ls[i].addr_text);
|
|
173
|
|
174 ls[i].rcvbuf = -1;
|
|
175 }
|
|
176
|
|
177 olen = sizeof(int);
|
|
178
|
|
179 if (getsockopt(ls[i].fd, SOL_SOCKET, SO_SNDBUF, (void *) &ls[i].sndbuf,
|
|
180 &olen)
|
|
181 == -1)
|
|
182 {
|
|
183 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
|
184 "getsockopt(SO_SNDBUF) %V failed, ignored",
|
|
185 &ls[i].addr_text);
|
|
186
|
|
187 ls[i].sndbuf = -1;
|
|
188 }
|
|
189
|
584
|
190 #if 0
|
|
191 /* SO_SETFIB is currently a set only option */
|
|
192
|
|
193 #if (NGX_HAVE_SETFIB)
|
|
194
|
|
195 if (getsockopt(ls[i].setfib, SOL_SOCKET, SO_SETFIB,
|
|
196 (void *) &ls[i].setfib, &olen)
|
|
197 == -1)
|
|
198 {
|
|
199 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
|
200 "getsockopt(SO_SETFIB) %V failed, ignored",
|
|
201 &ls[i].addr_text);
|
|
202
|
|
203 ls[i].setfib = -1;
|
|
204 }
|
|
205
|
|
206 #endif
|
|
207 #endif
|
|
208
|
72
|
209 #if (NGX_HAVE_DEFERRED_ACCEPT && defined SO_ACCEPTFILTER)
|
|
210
|
|
211 ngx_memzero(&af, sizeof(struct accept_filter_arg));
|
112
|
212 olen = sizeof(struct accept_filter_arg);
|
72
|
213
|
112
|
214 if (getsockopt(ls[i].fd, SOL_SOCKET, SO_ACCEPTFILTER, &af, &olen)
|
72
|
215 == -1)
|
|
216 {
|
90
|
217 err = ngx_errno;
|
|
218
|
|
219 if (err == NGX_EINVAL) {
|
|
220 continue;
|
|
221 }
|
|
222
|
|
223 ngx_log_error(NGX_LOG_NOTICE, cycle->log, err,
|
72
|
224 "getsockopt(SO_ACCEPTFILTER) for %V failed, ignored",
|
|
225 &ls[i].addr_text);
|
|
226 continue;
|
|
227 }
|
|
228
|
112
|
229 if (olen < sizeof(struct accept_filter_arg) || af.af_name[0] == '\0') {
|
72
|
230 continue;
|
|
231 }
|
|
232
|
|
233 ls[i].accept_filter = ngx_palloc(cycle->pool, 16);
|
|
234 if (ls[i].accept_filter == NULL) {
|
|
235 return NGX_ERROR;
|
|
236 }
|
|
237
|
|
238 (void) ngx_cpystrn((u_char *) ls[i].accept_filter,
|
|
239 (u_char *) af.af_name, 16);
|
|
240 #endif
|
|
241
|
|
242 #if (NGX_HAVE_DEFERRED_ACCEPT && defined TCP_DEFER_ACCEPT)
|
|
243
|
|
244 timeout = 0;
|
112
|
245 olen = sizeof(int);
|
72
|
246
|
112
|
247 if (getsockopt(ls[i].fd, IPPROTO_TCP, TCP_DEFER_ACCEPT, &timeout, &olen)
|
72
|
248 == -1)
|
|
249 {
|
|
250 ngx_log_error(NGX_LOG_NOTICE, cycle->log, ngx_errno,
|
|
251 "getsockopt(TCP_DEFER_ACCEPT) for %V failed, ignored",
|
|
252 &ls[i].addr_text);
|
|
253 continue;
|
|
254 }
|
|
255
|
114
|
256 if (olen < sizeof(int) || timeout == 0) {
|
72
|
257 continue;
|
|
258 }
|
|
259
|
|
260 ls[i].deferred_accept = 1;
|
|
261 #endif
|
0
|
262 }
|
|
263
|
|
264 return NGX_OK;
|
|
265 }
|
|
266
|
|
267
|
70
|
268 ngx_int_t
|
|
269 ngx_open_listening_sockets(ngx_cycle_t *cycle)
|
0
|
270 {
|
112
|
271 int reuseaddr;
|
|
272 ngx_uint_t i, tries, failed;
|
0
|
273 ngx_err_t err;
|
|
274 ngx_log_t *log;
|
|
275 ngx_socket_t s;
|
|
276 ngx_listening_t *ls;
|
|
277
|
|
278 reuseaddr = 1;
|
|
279 #if (NGX_SUPPRESS_WARN)
|
|
280 failed = 0;
|
|
281 #endif
|
|
282
|
|
283 log = cycle->log;
|
|
284
|
112
|
285 /* TODO: configurable try number */
|
0
|
286
|
378
|
287 for (tries = 5; tries; tries--) {
|
0
|
288 failed = 0;
|
|
289
|
|
290 /* for each listening socket */
|
|
291
|
|
292 ls = cycle->listening.elts;
|
|
293 for (i = 0; i < cycle->listening.nelts; i++) {
|
|
294
|
|
295 if (ls[i].ignore) {
|
|
296 continue;
|
|
297 }
|
|
298
|
|
299 if (ls[i].fd != -1) {
|
|
300 continue;
|
|
301 }
|
|
302
|
|
303 if (ls[i].inherited) {
|
|
304
|
|
305 /* TODO: close on exit */
|
|
306 /* TODO: nonblocking */
|
|
307 /* TODO: deferred accept */
|
|
308
|
|
309 continue;
|
|
310 }
|
|
311
|
400
|
312 s = ngx_socket(ls[i].sockaddr->sa_family, ls[i].type, 0);
|
0
|
313
|
|
314 if (s == -1) {
|
|
315 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
10
|
316 ngx_socket_n " %V failed", &ls[i].addr_text);
|
0
|
317 return NGX_ERROR;
|
|
318 }
|
|
319
|
|
320 if (setsockopt(s, SOL_SOCKET, SO_REUSEADDR,
|
112
|
321 (const void *) &reuseaddr, sizeof(int))
|
|
322 == -1)
|
|
323 {
|
0
|
324 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
10
|
325 "setsockopt(SO_REUSEADDR) %V failed",
|
|
326 &ls[i].addr_text);
|
112
|
327
|
306
|
328 if (ngx_close_socket(s) == -1) {
|
112
|
329 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
|
330 ngx_close_socket_n " %V failed",
|
|
331 &ls[i].addr_text);
|
306
|
332 }
|
112
|
333
|
0
|
334 return NGX_ERROR;
|
|
335 }
|
|
336
|
460
|
337 #if (NGX_HAVE_INET6 && defined IPV6_V6ONLY)
|
|
338
|
|
339 if (ls[i].sockaddr->sa_family == AF_INET6 && ls[i].ipv6only) {
|
|
340 int ipv6only;
|
|
341
|
|
342 ipv6only = (ls[i].ipv6only == 1);
|
|
343
|
|
344 if (setsockopt(s, IPPROTO_IPV6, IPV6_V6ONLY,
|
|
345 (const void *) &ipv6only, sizeof(int))
|
|
346 == -1)
|
|
347 {
|
486
|
348 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
460
|
349 "setsockopt(IPV6_V6ONLY) %V failed, ignored",
|
|
350 &ls[i].addr_text);
|
|
351 }
|
|
352 }
|
|
353 #endif
|
0
|
354 /* TODO: close on exit */
|
|
355
|
|
356 if (!(ngx_event_flags & NGX_USE_AIO_EVENT)) {
|
|
357 if (ngx_nonblocking(s) == -1) {
|
|
358 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
10
|
359 ngx_nonblocking_n " %V failed",
|
|
360 &ls[i].addr_text);
|
112
|
361
|
306
|
362 if (ngx_close_socket(s) == -1) {
|
112
|
363 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
|
364 ngx_close_socket_n " %V failed",
|
|
365 &ls[i].addr_text);
|
306
|
366 }
|
112
|
367
|
0
|
368 return NGX_ERROR;
|
|
369 }
|
|
370 }
|
|
371
|
486
|
372 ngx_log_debug2(NGX_LOG_DEBUG_CORE, log, 0,
|
142
|
373 "bind() %V #%d ", &ls[i].addr_text, s);
|
|
374
|
0
|
375 if (bind(s, ls[i].sockaddr, ls[i].socklen) == -1) {
|
|
376 err = ngx_socket_errno;
|
112
|
377
|
|
378 if (err == NGX_EADDRINUSE && ngx_test_config) {
|
|
379 continue;
|
|
380 }
|
|
381
|
0
|
382 ngx_log_error(NGX_LOG_EMERG, log, err,
|
10
|
383 "bind() to %V failed", &ls[i].addr_text);
|
0
|
384
|
306
|
385 if (ngx_close_socket(s) == -1) {
|
0
|
386 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
10
|
387 ngx_close_socket_n " %V failed",
|
|
388 &ls[i].addr_text);
|
306
|
389 }
|
0
|
390
|
112
|
391 if (err != NGX_EADDRINUSE) {
|
|
392 return NGX_ERROR;
|
|
393 }
|
|
394
|
0
|
395 failed = 1;
|
112
|
396
|
0
|
397 continue;
|
|
398 }
|
|
399
|
540
|
400 #if (NGX_HAVE_UNIX_DOMAIN)
|
|
401
|
554
|
402 if (ls[i].sockaddr->sa_family == AF_UNIX) {
|
|
403 mode_t mode;
|
|
404 u_char *name;
|
|
405
|
|
406 name = ls[i].addr_text.data + sizeof("unix:") - 1;
|
|
407 mode = (S_IRUSR|S_IWUSR|S_IRGRP|S_IWGRP|S_IROTH|S_IWOTH);
|
540
|
408
|
554
|
409 if (chmod((char *) name, mode) == -1) {
|
|
410 ngx_log_error(NGX_LOG_EMERG, cycle->log, ngx_errno,
|
|
411 "chmod() \"%s\" failed", name);
|
|
412 }
|
|
413
|
|
414 if (ngx_test_config) {
|
|
415 if (ngx_delete_file(name) == -1) {
|
|
416 ngx_log_error(NGX_LOG_EMERG, cycle->log, ngx_errno,
|
|
417 ngx_delete_file_n " %s failed", name);
|
|
418 }
|
540
|
419 }
|
|
420 }
|
|
421 #endif
|
|
422
|
306
|
423 if (listen(s, ls[i].backlog) == -1) {
|
|
424 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
|
425 "listen() to %V, backlog %d failed",
|
|
426 &ls[i].addr_text, ls[i].backlog);
|
|
427
|
|
428 if (ngx_close_socket(s) == -1) {
|
|
429 ngx_log_error(NGX_LOG_EMERG, log, ngx_socket_errno,
|
|
430 ngx_close_socket_n " %V failed",
|
|
431 &ls[i].addr_text);
|
|
432 }
|
|
433
|
|
434 return NGX_ERROR;
|
|
435 }
|
|
436
|
112
|
437 ls[i].listen = 1;
|
0
|
438
|
|
439 ls[i].fd = s;
|
|
440 }
|
|
441
|
112
|
442 if (!failed) {
|
0
|
443 break;
|
112
|
444 }
|
0
|
445
|
|
446 /* TODO: delay configurable */
|
|
447
|
|
448 ngx_log_error(NGX_LOG_NOTICE, log, 0,
|
|
449 "try again to bind() after 500ms");
|
112
|
450
|
0
|
451 ngx_msleep(500);
|
|
452 }
|
|
453
|
|
454 if (failed) {
|
26
|
455 ngx_log_error(NGX_LOG_EMERG, log, 0, "still could not bind()");
|
0
|
456 return NGX_ERROR;
|
|
457 }
|
|
458
|
|
459 return NGX_OK;
|
|
460 }
|
|
461
|
|
462
|
70
|
463 void
|
486
|
464 ngx_configure_listening_sockets(ngx_cycle_t *cycle)
|
112
|
465 {
|
|
466 ngx_uint_t i;
|
|
467 ngx_listening_t *ls;
|
|
468
|
|
469 #if (NGX_HAVE_DEFERRED_ACCEPT && defined SO_ACCEPTFILTER)
|
|
470 struct accept_filter_arg af;
|
|
471 #endif
|
|
472 #if (NGX_HAVE_DEFERRED_ACCEPT && defined TCP_DEFER_ACCEPT)
|
|
473 int timeout;
|
|
474 #endif
|
|
475
|
|
476 ls = cycle->listening.elts;
|
|
477 for (i = 0; i < cycle->listening.nelts; i++) {
|
|
478
|
486
|
479 ls[i].log = *ls[i].logp;
|
|
480
|
112
|
481 if (ls[i].rcvbuf != -1) {
|
|
482 if (setsockopt(ls[i].fd, SOL_SOCKET, SO_RCVBUF,
|
|
483 (const void *) &ls[i].rcvbuf, sizeof(int))
|
|
484 == -1)
|
|
485 {
|
|
486 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
118
|
487 "setsockopt(SO_RCVBUF, %d) %V failed, ignored",
|
|
488 ls[i].rcvbuf, &ls[i].addr_text);
|
112
|
489 }
|
|
490 }
|
|
491
|
|
492 if (ls[i].sndbuf != -1) {
|
|
493 if (setsockopt(ls[i].fd, SOL_SOCKET, SO_SNDBUF,
|
|
494 (const void *) &ls[i].sndbuf, sizeof(int))
|
|
495 == -1)
|
|
496 {
|
|
497 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
118
|
498 "setsockopt(SO_SNDBUF, %d) %V failed, ignored",
|
|
499 ls[i].sndbuf, &ls[i].addr_text);
|
112
|
500 }
|
|
501 }
|
|
502
|
584
|
503 #if (NGX_HAVE_SETFIB)
|
|
504 if (ls[i].setfib != -1) {
|
|
505 if (setsockopt(ls[i].fd, SOL_SOCKET, SO_SETFIB,
|
|
506 (const void *) &ls[i].setfib, sizeof(int))
|
|
507 == -1)
|
|
508 {
|
|
509 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
|
510 "setsockopt(SO_SETFIB, %d) %V failed, ignored",
|
|
511 ls[i].setfib, &ls[i].addr_text);
|
|
512 }
|
|
513 }
|
|
514 #endif
|
|
515
|
184
|
516 #if 0
|
|
517 if (1) {
|
|
518 int tcp_nodelay = 1;
|
|
519
|
|
520 if (setsockopt(ls[i].fd, IPPROTO_TCP, TCP_NODELAY,
|
|
521 (const void *) &tcp_nodelay, sizeof(int))
|
|
522 == -1)
|
|
523 {
|
|
524 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
|
525 "setsockopt(TCP_NODELAY) %V failed, ignored",
|
|
526 &ls[i].addr_text);
|
|
527 }
|
|
528 }
|
|
529 #endif
|
|
530
|
112
|
531 if (ls[i].listen) {
|
306
|
532
|
|
533 /* change backlog via listen() */
|
|
534
|
112
|
535 if (listen(ls[i].fd, ls[i].backlog) == -1) {
|
|
536 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_socket_errno,
|
306
|
537 "listen() to %V, backlog %d failed, ignored",
|
112
|
538 &ls[i].addr_text, ls[i].backlog);
|
|
539 }
|
|
540 }
|
|
541
|
|
542 /*
|
|
543 * setting deferred mode should be last operation on socket,
|
|
544 * because code may prematurely continue cycle on failure
|
|
545 */
|
|
546
|
|
547 #if (NGX_HAVE_DEFERRED_ACCEPT)
|
|
548
|
|
549 #ifdef SO_ACCEPTFILTER
|
|
550
|
176
|
551 if (ls[i].delete_deferred) {
|
|
552 if (setsockopt(ls[i].fd, SOL_SOCKET, SO_ACCEPTFILTER, NULL, 0)
|
|
553 == -1)
|
112
|
554 {
|
|
555 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_errno,
|
|
556 "setsockopt(SO_ACCEPTFILTER, NULL) "
|
|
557 "for %V failed, ignored",
|
176
|
558 &ls[i].addr_text);
|
112
|
559
|
176
|
560 if (ls[i].accept_filter) {
|
112
|
561 ngx_log_error(NGX_LOG_ALERT, cycle->log, 0,
|
|
562 "could not change the accept filter "
|
|
563 "to \"%s\" for %V, ignored",
|
176
|
564 ls[i].accept_filter, &ls[i].addr_text);
|
112
|
565 }
|
|
566
|
|
567 continue;
|
|
568 }
|
|
569
|
176
|
570 ls[i].deferred_accept = 0;
|
112
|
571 }
|
|
572
|
176
|
573 if (ls[i].add_deferred) {
|
112
|
574 ngx_memzero(&af, sizeof(struct accept_filter_arg));
|
|
575 (void) ngx_cpystrn((u_char *) af.af_name,
|
176
|
576 (u_char *) ls[i].accept_filter, 16);
|
112
|
577
|
176
|
578 if (setsockopt(ls[i].fd, SOL_SOCKET, SO_ACCEPTFILTER,
|
112
|
579 &af, sizeof(struct accept_filter_arg))
|
|
580 == -1)
|
|
581 {
|
|
582 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_errno,
|
|
583 "setsockopt(SO_ACCEPTFILTER, \"%s\") "
|
638
|
584 "for %V failed, ignored",
|
176
|
585 ls[i].accept_filter, &ls[i].addr_text);
|
112
|
586 continue;
|
|
587 }
|
|
588
|
176
|
589 ls[i].deferred_accept = 1;
|
112
|
590 }
|
|
591
|
|
592 #endif
|
|
593
|
|
594 #ifdef TCP_DEFER_ACCEPT
|
|
595
|
176
|
596 if (ls[i].add_deferred || ls[i].delete_deferred) {
|
112
|
597
|
176
|
598 if (ls[i].add_deferred) {
|
|
599 timeout = (int) (ls[i].post_accept_timeout / 1000);
|
112
|
600
|
|
601 } else {
|
|
602 timeout = 0;
|
|
603 }
|
|
604
|
176
|
605 if (setsockopt(ls[i].fd, IPPROTO_TCP, TCP_DEFER_ACCEPT,
|
112
|
606 &timeout, sizeof(int))
|
|
607 == -1)
|
|
608 {
|
|
609 ngx_log_error(NGX_LOG_ALERT, cycle->log, ngx_errno,
|
|
610 "setsockopt(TCP_DEFER_ACCEPT, %d) for %V failed, "
|
|
611 "ignored",
|
176
|
612 timeout, &ls[i].addr_text);
|
112
|
613
|
|
614 continue;
|
|
615 }
|
|
616 }
|
|
617
|
176
|
618 if (ls[i].add_deferred) {
|
|
619 ls[i].deferred_accept = 1;
|
112
|
620 }
|
|
621
|
|
622 #endif
|
|
623
|
|
624 #endif /* NGX_HAVE_DEFERRED_ACCEPT */
|
|
625 }
|
|
626
|
|
627 return;
|
|
628 }
|
|
629
|
|
630
|
|
631 void
|
70
|
632 ngx_close_listening_sockets(ngx_cycle_t *cycle)
|
0
|
633 {
|
92
|
634 ngx_uint_t i;
|
|
635 ngx_listening_t *ls;
|
|
636 ngx_connection_t *c;
|
0
|
637
|
|
638 if (ngx_event_flags & NGX_USE_IOCP_EVENT) {
|
|
639 return;
|
|
640 }
|
|
641
|
|
642 ngx_accept_mutex_held = 0;
|
160
|
643 ngx_use_accept_mutex = 0;
|
0
|
644
|
|
645 ls = cycle->listening.elts;
|
|
646 for (i = 0; i < cycle->listening.nelts; i++) {
|
|
647
|
92
|
648 c = ls[i].connection;
|
0
|
649
|
480
|
650 if (c) {
|
|
651 if (c->read->active) {
|
|
652 if (ngx_event_flags & NGX_USE_RTSIG_EVENT) {
|
|
653 ngx_del_conn(c, NGX_CLOSE_EVENT);
|
362
|
654
|
480
|
655 } else if (ngx_event_flags & NGX_USE_EPOLL_EVENT) {
|
0
|
656
|
480
|
657 /*
|
|
658 * it seems that Linux-2.6.x OpenVZ sends events
|
|
659 * for closed shared listening sockets unless
|
|
660 * the events was explicity deleted
|
|
661 */
|
362
|
662
|
480
|
663 ngx_del_event(c->read, NGX_READ_EVENT, 0);
|
362
|
664
|
480
|
665 } else {
|
|
666 ngx_del_event(c->read, NGX_READ_EVENT, NGX_CLOSE_EVENT);
|
|
667 }
|
0
|
668 }
|
480
|
669
|
|
670 ngx_free_connection(c);
|
|
671
|
|
672 c->fd = (ngx_socket_t) -1;
|
0
|
673 }
|
|
674
|
112
|
675 ngx_log_debug2(NGX_LOG_DEBUG_CORE, cycle->log, 0,
|
|
676 "close listening %V #%d ", &ls[i].addr_text, ls[i].fd);
|
|
677
|
92
|
678 if (ngx_close_socket(ls[i].fd) == -1) {
|
0
|
679 ngx_log_error(NGX_LOG_EMERG, cycle->log, ngx_socket_errno,
|
10
|
680 ngx_close_socket_n " %V failed", &ls[i].addr_text);
|
0
|
681 }
|
498
|
682
|
538
|
683 #if (NGX_HAVE_UNIX_DOMAIN)
|
|
684
|
|
685 if (ls[i].sockaddr->sa_family == AF_UNIX
|
552
|
686 && ngx_process <= NGX_PROCESS_MASTER
|
540
|
687 && ngx_new_binary == 0)
|
538
|
688 {
|
|
689 u_char *name = ls[i].addr_text.data + sizeof("unix:") - 1;
|
|
690
|
|
691 if (ngx_delete_file(name) == -1) {
|
|
692 ngx_log_error(NGX_LOG_EMERG, cycle->log, ngx_socket_errno,
|
|
693 ngx_delete_file_n " %s failed", name);
|
|
694 }
|
|
695 }
|
|
696
|
|
697 #endif
|
|
698
|
498
|
699 ls[i].fd = (ngx_socket_t) -1;
|
92
|
700 }
|
|
701 }
|
0
|
702
|
92
|
703
|
|
704 ngx_connection_t *
|
|
705 ngx_get_connection(ngx_socket_t s, ngx_log_t *log)
|
|
706 {
|
110
|
707 ngx_uint_t instance;
|
|
708 ngx_event_t *rev, *wev;
|
|
709 ngx_connection_t *c;
|
92
|
710
|
|
711 /* disable warning: Win32 SOCKET is u_int while UNIX socket is int */
|
|
712
|
|
713 if (ngx_cycle->files && (ngx_uint_t) s >= ngx_cycle->files_n) {
|
|
714 ngx_log_error(NGX_LOG_ALERT, log, 0,
|
|
715 "the new socket has number %d, "
|
|
716 "but only %ui files are available",
|
|
717 s, ngx_cycle->files_n);
|
|
718 return NULL;
|
|
719 }
|
|
720
|
|
721 /* ngx_mutex_lock */
|
|
722
|
|
723 c = ngx_cycle->free_connections;
|
|
724
|
|
725 if (c == NULL) {
|
618
|
726 ngx_drain_connections();
|
|
727 c = ngx_cycle->free_connections;
|
|
728 }
|
|
729
|
|
730 if (c == NULL) {
|
92
|
731 ngx_log_error(NGX_LOG_ALERT, log, 0,
|
412
|
732 "%ui worker_connections are not enough",
|
92
|
733 ngx_cycle->connection_n);
|
|
734
|
|
735 /* ngx_mutex_unlock */
|
|
736
|
|
737 return NULL;
|
|
738 }
|
|
739
|
|
740 ngx_cycle->free_connections = c->data;
|
|
741 ngx_cycle->free_connection_n--;
|
|
742
|
|
743 /* ngx_mutex_unlock */
|
|
744
|
|
745 if (ngx_cycle->files) {
|
|
746 ngx_cycle->files[s] = c;
|
|
747 }
|
|
748
|
110
|
749 rev = c->read;
|
|
750 wev = c->write;
|
|
751
|
|
752 ngx_memzero(c, sizeof(ngx_connection_t));
|
|
753
|
|
754 c->read = rev;
|
|
755 c->write = wev;
|
|
756 c->fd = s;
|
|
757 c->log = log;
|
|
758
|
|
759 instance = rev->instance;
|
|
760
|
|
761 ngx_memzero(rev, sizeof(ngx_event_t));
|
|
762 ngx_memzero(wev, sizeof(ngx_event_t));
|
|
763
|
|
764 rev->instance = !instance;
|
|
765 wev->instance = !instance;
|
|
766
|
|
767 rev->index = NGX_INVALID_INDEX;
|
|
768 wev->index = NGX_INVALID_INDEX;
|
|
769
|
|
770 rev->data = c;
|
|
771 wev->data = c;
|
|
772
|
|
773 wev->write = 1;
|
|
774
|
92
|
775 return c;
|
|
776 }
|
|
777
|
|
778
|
|
779 void
|
|
780 ngx_free_connection(ngx_connection_t *c)
|
|
781 {
|
|
782 /* ngx_mutex_lock */
|
|
783
|
|
784 c->data = ngx_cycle->free_connections;
|
|
785 ngx_cycle->free_connections = c;
|
|
786 ngx_cycle->free_connection_n++;
|
|
787
|
|
788 /* ngx_mutex_unlock */
|
|
789
|
|
790 if (ngx_cycle->files) {
|
|
791 ngx_cycle->files[c->fd] = NULL;
|
0
|
792 }
|
|
793 }
|
|
794
|
|
795
|
70
|
796 void
|
|
797 ngx_close_connection(ngx_connection_t *c)
|
0
|
798 {
|
366
|
799 ngx_err_t err;
|
|
800 ngx_uint_t log_error, level;
|
0
|
801 ngx_socket_t fd;
|
|
802
|
28
|
803 if (c->fd == -1) {
|
0
|
804 ngx_log_error(NGX_LOG_ALERT, c->log, 0, "connection already closed");
|
|
805 return;
|
|
806 }
|
|
807
|
|
808 if (c->read->timer_set) {
|
|
809 ngx_del_timer(c->read);
|
|
810 }
|
126
|
811
|
0
|
812 if (c->write->timer_set) {
|
|
813 ngx_del_timer(c->write);
|
|
814 }
|
126
|
815
|
0
|
816 if (ngx_del_conn) {
|
|
817 ngx_del_conn(c, NGX_CLOSE_EVENT);
|
|
818
|
|
819 } else {
|
|
820 if (c->read->active || c->read->disabled) {
|
|
821 ngx_del_event(c->read, NGX_READ_EVENT, NGX_CLOSE_EVENT);
|
|
822 }
|
|
823
|
|
824 if (c->write->active || c->write->disabled) {
|
|
825 ngx_del_event(c->write, NGX_WRITE_EVENT, NGX_CLOSE_EVENT);
|
|
826 }
|
|
827 }
|
|
828
|
|
829 #if (NGX_THREADS)
|
|
830
|
|
831 /*
|
|
832 * we have to clean the connection information before the closing
|
|
833 * because another thread may reopen the same file descriptor
|
|
834 * before we clean the connection
|
|
835 */
|
|
836
|
112
|
837 ngx_mutex_lock(ngx_posted_events_mutex);
|
0
|
838
|
112
|
839 if (c->read->prev) {
|
|
840 ngx_delete_posted_event(c->read);
|
|
841 }
|
0
|
842
|
112
|
843 if (c->write->prev) {
|
|
844 ngx_delete_posted_event(c->write);
|
|
845 }
|
0
|
846
|
112
|
847 c->read->closed = 1;
|
|
848 c->write->closed = 1;
|
0
|
849
|
112
|
850 if (c->single_connection) {
|
|
851 ngx_unlock(&c->lock);
|
|
852 c->read->locked = 0;
|
|
853 c->write->locked = 0;
|
|
854 }
|
0
|
855
|
112
|
856 ngx_mutex_unlock(ngx_posted_events_mutex);
|
0
|
857
|
|
858 #else
|
|
859
|
|
860 if (c->read->prev) {
|
|
861 ngx_delete_posted_event(c->read);
|
|
862 }
|
|
863
|
|
864 if (c->write->prev) {
|
|
865 ngx_delete_posted_event(c->write);
|
|
866 }
|
|
867
|
|
868 c->read->closed = 1;
|
|
869 c->write->closed = 1;
|
|
870
|
|
871 #endif
|
|
872
|
618
|
873 ngx_reusable_connection(c, 0);
|
|
874
|
366
|
875 log_error = c->log_error;
|
|
876
|
92
|
877 ngx_free_connection(c);
|
|
878
|
0
|
879 fd = c->fd;
|
|
880 c->fd = (ngx_socket_t) -1;
|
|
881
|
|
882 if (ngx_close_socket(fd) == -1) {
|
|
883
|
366
|
884 err = ngx_socket_errno;
|
|
885
|
|
886 if (err == NGX_ECONNRESET || err == NGX_ENOTCONN) {
|
|
887
|
|
888 switch (log_error) {
|
|
889
|
|
890 case NGX_ERROR_INFO:
|
|
891 level = NGX_LOG_INFO;
|
|
892 break;
|
|
893
|
|
894 case NGX_ERROR_ERR:
|
|
895 level = NGX_LOG_ERR;
|
|
896 break;
|
|
897
|
|
898 default:
|
|
899 level = NGX_LOG_CRIT;
|
|
900 }
|
|
901
|
|
902 } else {
|
|
903 level = NGX_LOG_CRIT;
|
|
904 }
|
|
905
|
0
|
906 /* we use ngx_cycle->log because c->log was in c->pool */
|
|
907
|
366
|
908 ngx_log_error(level, ngx_cycle->log, err,
|
332
|
909 ngx_close_socket_n " %d failed", fd);
|
0
|
910 }
|
|
911 }
|
|
912
|
|
913
|
618
|
914 void
|
|
915 ngx_reusable_connection(ngx_connection_t *c, ngx_uint_t reusable)
|
|
916 {
|
|
917 ngx_log_debug1(NGX_LOG_DEBUG_CORE, c->log, 0,
|
|
918 "reusable connection: %ui", reusable);
|
|
919
|
|
920 if (c->reusable) {
|
|
921 ngx_queue_remove(&c->queue);
|
|
922 }
|
|
923
|
|
924 c->reusable = reusable;
|
|
925
|
|
926 if (reusable) {
|
|
927 /* need cast as ngx_cycle is volatile */
|
|
928
|
|
929 ngx_queue_insert_head(
|
|
930 (ngx_queue_t *) &ngx_cycle->reusable_connections_queue, &c->queue);
|
|
931 }
|
|
932 }
|
|
933
|
|
934
|
|
935 static void
|
|
936 ngx_drain_connections(void)
|
|
937 {
|
|
938 ngx_int_t i;
|
|
939 ngx_queue_t *q;
|
|
940 ngx_connection_t *c;
|
|
941
|
|
942 for (i = 0; i < 32; i++) {
|
|
943 if (ngx_queue_empty(&ngx_cycle->reusable_connections_queue)) {
|
|
944 break;
|
|
945 }
|
|
946
|
|
947 q = ngx_queue_last(&ngx_cycle->reusable_connections_queue);
|
|
948 c = ngx_queue_data(q, ngx_connection_t, queue);
|
|
949
|
|
950 ngx_log_debug0(NGX_LOG_DEBUG_CORE, c->log, 0,
|
|
951 "reusing connection");
|
|
952
|
|
953 c->close = 1;
|
|
954 c->read->handler(c->read);
|
|
955 }
|
|
956 }
|
|
957
|
|
958
|
70
|
959 ngx_int_t
|
492
|
960 ngx_connection_local_sockaddr(ngx_connection_t *c, ngx_str_t *s,
|
|
961 ngx_uint_t port)
|
|
962 {
|
|
963 socklen_t len;
|
|
964 ngx_uint_t addr;
|
|
965 u_char sa[NGX_SOCKADDRLEN];
|
|
966 struct sockaddr_in *sin;
|
|
967 #if (NGX_HAVE_INET6)
|
|
968 ngx_uint_t i;
|
|
969 struct sockaddr_in6 *sin6;
|
|
970 #endif
|
|
971
|
|
972 switch (c->local_sockaddr->sa_family) {
|
|
973
|
|
974 #if (NGX_HAVE_INET6)
|
|
975 case AF_INET6:
|
|
976 sin6 = (struct sockaddr_in6 *) c->local_sockaddr;
|
|
977
|
|
978 for (addr = 0, i = 0; addr == 0 && i < 16; i++) {
|
|
979 addr |= sin6->sin6_addr.s6_addr[i];
|
|
980 }
|
|
981
|
|
982 break;
|
|
983 #endif
|
|
984
|
|
985 default: /* AF_INET */
|
|
986 sin = (struct sockaddr_in *) c->local_sockaddr;
|
|
987 addr = sin->sin_addr.s_addr;
|
|
988 break;
|
|
989 }
|
|
990
|
|
991 if (addr == 0) {
|
|
992
|
|
993 len = NGX_SOCKADDRLEN;
|
|
994
|
|
995 if (getsockname(c->fd, (struct sockaddr *) &sa, &len) == -1) {
|
|
996 ngx_connection_error(c, ngx_socket_errno, "getsockname() failed");
|
|
997 return NGX_ERROR;
|
|
998 }
|
|
999
|
|
1000 c->local_sockaddr = ngx_palloc(c->pool, len);
|
|
1001 if (c->local_sockaddr == NULL) {
|
|
1002 return NGX_ERROR;
|
|
1003 }
|
|
1004
|
|
1005 ngx_memcpy(c->local_sockaddr, &sa, len);
|
|
1006 }
|
|
1007
|
|
1008 if (s == NULL) {
|
|
1009 return NGX_OK;
|
|
1010 }
|
|
1011
|
|
1012 s->len = ngx_sock_ntop(c->local_sockaddr, s->data, s->len, port);
|
|
1013
|
|
1014 return NGX_OK;
|
|
1015 }
|
|
1016
|
|
1017
|
|
1018 ngx_int_t
|
70
|
1019 ngx_connection_error(ngx_connection_t *c, ngx_err_t err, char *text)
|
0
|
1020 {
|
|
1021 ngx_uint_t level;
|
|
1022
|
484
|
1023 /* Winsock may return NGX_ECONNABORTED instead of NGX_ECONNRESET */
|
|
1024
|
|
1025 if ((err == NGX_ECONNRESET
|
|
1026 #if (NGX_WIN32)
|
|
1027 || err == NGX_ECONNABORTED
|
|
1028 #endif
|
|
1029 ) && c->log_error == NGX_ERROR_IGNORE_ECONNRESET)
|
|
1030 {
|
0
|
1031 return 0;
|
|
1032 }
|
|
1033
|
460
|
1034 #if (NGX_SOLARIS)
|
|
1035 if (err == NGX_EINVAL && c->log_error == NGX_ERROR_IGNORE_EINVAL) {
|
|
1036 return 0;
|
|
1037 }
|
|
1038 #endif
|
|
1039
|
86
|
1040 if (err == 0
|
|
1041 || err == NGX_ECONNRESET
|
484
|
1042 #if (NGX_WIN32)
|
|
1043 || err == NGX_ECONNABORTED
|
|
1044 #else
|
0
|
1045 || err == NGX_EPIPE
|
|
1046 #endif
|
|
1047 || err == NGX_ENOTCONN
|
136
|
1048 || err == NGX_ETIMEDOUT
|
0
|
1049 || err == NGX_ECONNREFUSED
|
364
|
1050 || err == NGX_ENETDOWN
|
|
1051 || err == NGX_ENETUNREACH
|
|
1052 || err == NGX_EHOSTDOWN
|
0
|
1053 || err == NGX_EHOSTUNREACH)
|
|
1054 {
|
|
1055 switch (c->log_error) {
|
|
1056
|
460
|
1057 case NGX_ERROR_IGNORE_EINVAL:
|
0
|
1058 case NGX_ERROR_IGNORE_ECONNRESET:
|
|
1059 case NGX_ERROR_INFO:
|
|
1060 level = NGX_LOG_INFO;
|
|
1061 break;
|
|
1062
|
530
|
1063 default:
|
0
|
1064 level = NGX_LOG_ERR;
|
|
1065 }
|
|
1066
|
|
1067 } else {
|
366
|
1068 level = NGX_LOG_ALERT;
|
0
|
1069 }
|
|
1070
|
|
1071 ngx_log_error(level, c->log, err, text);
|
|
1072
|
|
1073 return NGX_ERROR;
|
|
1074 }
|