blob: 3ef8902997ffca02d693974e63d31f95a7fe9920 [file] [log] [blame]
Tom Cherrybac32992015-07-31 12:45:25 -07001/*
2 * Copyright (C) 2015 The Android Open Source Project
3 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
Tom Cherryb1ffb1d2019-06-26 11:22:52 -070017#pragma once
Tom Cherrybac32992015-07-31 12:45:25 -070018
Paul Crowleyc73b2152018-04-13 17:38:57 +000019#include <signal.h>
Tom Cherrybac32992015-07-31 12:45:25 -070020#include <sys/types.h>
21
Tom Cherry73f535e2018-09-27 16:10:46 -070022#include <chrono>
Tom Cherrybac32992015-07-31 12:45:25 -070023#include <memory>
Tom Cherry73f535e2018-09-27 16:10:46 -070024#include <optional>
Wei Wang641ff0a2017-03-27 10:59:11 -070025#include <set>
Tom Cherrybac32992015-07-31 12:45:25 -070026#include <string>
27#include <vector>
28
James Hawkinse78ea772017-03-24 11:43:02 -070029#include <android-base/chrono_utils.h>
Tom Cherry3f5eaae52017-04-06 16:30:22 -070030#include <cutils/iosched_policy.h>
James Hawkinse78ea772017-03-24 11:43:02 -070031
Tom Cherrybac32992015-07-31 12:45:25 -070032#include "action.h"
Jorge Lucangeli Obes24b29132016-10-27 10:33:03 -040033#include "capabilities.h"
Bart Van Assche1693f422022-10-19 16:30:15 -070034#include "interprocess_fifo.h"
Tom Cherryb7349902015-08-26 11:43:36 -070035#include "keyword_map.h"
Jooyung Hanc5fa15e2022-07-14 11:23:59 +090036#include "mount_namespace.h"
Tom Cherry67dee622017-07-27 12:54:48 -070037#include "parser.h"
Vic Yange01ca4d2019-05-29 15:58:32 -070038#include "service_utils.h"
Tom Cherrycb0f9bb2017-09-12 15:58:47 -070039#include "subcontext.h"
Tom Cherrybac32992015-07-31 12:45:25 -070040
Keun-young Park8d01f632017-03-13 11:54:47 -070041#define SVC_DISABLED 0x001 // do not autostart with class
42#define SVC_ONESHOT 0x002 // do not restart on exit
43#define SVC_RUNNING 0x004 // currently active
44#define SVC_RESTARTING 0x008 // waiting to restart
45#define SVC_CONSOLE 0x010 // requires console
Tom Cherryad9e7ea2018-10-15 17:21:48 -070046#define SVC_CRITICAL 0x020 // will reboot into bootloader if keeps crashing
Keun-young Park8d01f632017-03-13 11:54:47 -070047#define SVC_RESET 0x040 // Use when stopping a process,
Tom Cherrybac32992015-07-31 12:45:25 -070048 // but not disabling so it can be restarted with its class.
Keun-young Park8d01f632017-03-13 11:54:47 -070049#define SVC_RC_DISABLED 0x080 // Remember if the disabled flag was set in the rc script.
50#define SVC_RESTART 0x100 // Use to safely restart (stop, wait, start) a service.
Tom Cherrybac32992015-07-31 12:45:25 -070051#define SVC_DISABLED_START 0x200 // A start was requested but it was disabled at the time.
Tom Cherryb27004a2017-03-27 16:27:30 -070052#define SVC_EXEC 0x400 // This service was started by either 'exec' or 'exec_start' and stops
53 // init from processing more commands until it completes
Keun-young Park8d01f632017-03-13 11:54:47 -070054
55#define SVC_SHUTDOWN_CRITICAL 0x800 // This service is critical for shutdown and
56 // should not be killed during shutdown
Tom Cherryb27004a2017-03-27 16:27:30 -070057#define SVC_TEMPORARY 0x1000 // This service was started by 'exec' and should be removed from the
58 // service list once it is reaped.
Daniel Rosenbergde766882022-12-01 15:44:31 -080059#define SVC_GENTLE_KILL 0x2000 // This service should be stopped with SIGTERM instead of SIGKILL
60 // Will still be SIGKILLed after timeout period of 200 ms
Tom Cherrybac32992015-07-31 12:45:25 -070061
62#define NR_SVC_SUPP_GIDS 12 // twelve supplementary groups
63
Tom Cherry81f5d3e2017-06-22 12:53:17 -070064namespace android {
65namespace init {
Tom Cherrybac32992015-07-31 12:45:25 -070066
Tom Cherrybac32992015-07-31 12:45:25 -070067class Service {
Tom Cherryb1ffb1d2019-06-26 11:22:52 -070068 friend class ServiceParser;
69
Wei Wang641ff0a2017-03-27 10:59:11 -070070 public:
Tom Cherrycb0f9bb2017-09-12 15:58:47 -070071 Service(const std::string& name, Subcontext* subcontext_for_restart_commands,
Deyao Rendf40ed12022-07-14 22:51:10 +000072 const std::string& filename, const std::vector<std::string>& args);
Tom Cherrybac32992015-07-31 12:45:25 -070073
Wei Wang641ff0a2017-03-27 10:59:11 -070074 Service(const std::string& name, unsigned flags, uid_t uid, gid_t gid,
Tom Cherry247ffbf2019-07-08 15:09:36 -070075 const std::vector<gid_t>& supp_gids, int namespace_flags, const std::string& seclabel,
Deyao Rendf40ed12022-07-14 22:51:10 +000076 Subcontext* subcontext_for_restart_commands, const std::string& filename,
77 const std::vector<std::string>& args);
Bart Van Assche0bb47572022-12-05 10:43:00 -080078 Service(const Service&) = delete;
79 void operator=(const Service&) = delete;
Tom Cherrybac32992015-07-31 12:45:25 -070080
Tom Cherry4772f1d2019-07-30 09:34:41 -070081 static Result<std::unique_ptr<Service>> MakeTemporaryOneshotService(
82 const std::vector<std::string>& args);
Tom Cherry3b81f2d2017-07-28 14:48:41 -070083
Keun-young Park8d01f632017-03-13 11:54:47 -070084 bool IsRunning() { return (flags_ & SVC_RUNNING) != 0; }
Nikita Ioffe3f4b0d62019-10-09 15:23:02 +010085 bool IsEnabled() { return (flags_ & SVC_DISABLED) == 0; }
Tom Cherry832f9f12020-03-10 11:47:24 -070086 Result<void> ExecStart();
87 Result<void> Start();
88 Result<void> StartIfNotDisabled();
Tom Cherry832f9f12020-03-10 11:47:24 -070089 Result<void> Enable();
Tom Cherrybac32992015-07-31 12:45:25 -070090 void Reset();
91 void Stop();
Bertrand SIMONNETb7e03e82015-12-18 11:39:59 -080092 void Terminate();
Tom Cherry73f535e2018-09-27 16:10:46 -070093 void Timeout();
Tom Cherry832f9f12020-03-10 11:47:24 -070094 void Restart();
Paul Crowleyc73b2152018-04-13 17:38:57 +000095 void Reap(const siginfo_t& siginfo);
Tom Cherrybac32992015-07-31 12:45:25 -070096 void DumpState() const;
Keun-young Park8d01f632017-03-13 11:54:47 -070097 void SetShutdownCritical() { flags_ |= SVC_SHUTDOWN_CRITICAL; }
Wei Wang641ff0a2017-03-27 10:59:11 -070098 bool IsShutdownCritical() const { return (flags_ & SVC_SHUTDOWN_CRITICAL) != 0; }
Tom Cherry3b81f2d2017-07-28 14:48:41 -070099 void UnSetExec() {
100 is_exec_service_running_ = false;
101 flags_ &= ~SVC_EXEC;
102 }
Paul Crowleyc73b2152018-04-13 17:38:57 +0000103 void AddReapCallback(std::function<void(const siginfo_t& siginfo)> callback) {
104 reap_callbacks_.emplace_back(std::move(callback));
105 }
David Anderson0e5ad5a2021-07-21 21:53:28 -0700106 void SetStartedInFirstStage(pid_t pid);
107 bool MarkSocketPersistent(const std::string& socket_name);
Tom Cherry6737a6b2019-08-05 15:03:58 -0700108 size_t CheckAllCommands() const { return onrestart_.CheckAllCommands(); }
Tom Cherry3b81f2d2017-07-28 14:48:41 -0700109
110 static bool is_exec_service_running() { return is_exec_service_running_; }
Tom Cherrybac32992015-07-31 12:45:25 -0700111
112 const std::string& name() const { return name_; }
Wei Wang641ff0a2017-03-27 10:59:11 -0700113 const std::set<std::string>& classnames() const { return classnames_; }
Tom Cherrybac32992015-07-31 12:45:25 -0700114 unsigned flags() const { return flags_; }
115 pid_t pid() const { return pid_; }
Tom Cherryd269e3a2017-07-31 13:23:18 -0700116 android::base::boot_clock::time_point time_started() const { return time_started_; }
Tom Cherry7da54852017-05-01 14:16:41 -0700117 int crash_count() const { return crash_count_; }
Vic Yange01ca4d2019-05-29 15:58:32 -0700118 uid_t uid() const { return proc_attr_.uid; }
119 gid_t gid() const { return proc_attr_.gid; }
Tom Cherry247ffbf2019-07-08 15:09:36 -0700120 int namespace_flags() const { return namespaces_.flags; }
Vic Yange01ca4d2019-05-29 15:58:32 -0700121 const std::vector<gid_t>& supp_gids() const { return proc_attr_.supp_gids; }
Tom Cherrybac32992015-07-31 12:45:25 -0700122 const std::string& seclabel() const { return seclabel_; }
123 const std::vector<int>& keycodes() const { return keycodes_; }
Vic Yange01ca4d2019-05-29 15:58:32 -0700124 IoSchedClass ioprio_class() const { return proc_attr_.ioprio_class; }
125 int ioprio_pri() const { return proc_attr_.ioprio_pri; }
Steven Morelande055d732017-10-05 18:50:22 -0700126 const std::set<std::string>& interfaces() const { return interfaces_; }
Vic Yange01ca4d2019-05-29 15:58:32 -0700127 int priority() const { return proc_attr_.priority; }
Tom Cherry7da54852017-05-01 14:16:41 -0700128 int oom_score_adjust() const { return oom_score_adjust_; }
Steven Moreland6f5333a2017-11-13 15:31:54 -0800129 bool is_override() const { return override_; }
Tom Cherry33838b12017-05-04 11:32:36 -0700130 bool process_cgroup_empty() const { return process_cgroup_empty_; }
Tom Cherry59383792017-07-26 16:09:09 -0700131 unsigned long start_order() const { return start_order_; }
Tom Cherry8f380482018-04-17 14:48:44 -0700132 void set_sigstop(bool value) { sigstop_ = value; }
Tom Cherry73f535e2018-09-27 16:10:46 -0700133 std::chrono::seconds restart_period() const { return restart_period_; }
134 std::optional<std::chrono::seconds> timeout_period() const { return timeout_period_; }
Tom Cherrybac32992015-07-31 12:45:25 -0700135 const std::vector<std::string>& args() const { return args_; }
Jiyong Park80aa4472018-11-12 12:08:41 +0900136 bool is_updatable() const { return updatable_; }
Martijn Coenen70788f92019-04-23 16:26:01 +0200137 bool is_post_data() const { return post_data_; }
Deyao Rendf40ed12022-07-14 22:51:10 +0000138 bool is_from_apex() const { return base::StartsWith(filename_, "/apex/"); }
Tom Cherrybdbf5042020-03-04 10:52:08 -0800139 void set_oneshot(bool value) {
140 if (value) {
141 flags_ |= SVC_ONESHOT;
142 } else {
143 flags_ &= ~SVC_ONESHOT;
144 }
145 }
Bart Van Asschebfcf4372022-11-14 11:24:12 -0800146 const Subcontext* subcontext() const { return subcontext_; }
Deyao Ren07595e12022-07-15 22:02:14 +0000147 const std::string& filename() const { return filename_; }
148 void set_filename(const std::string& name) { filename_ = name; }
Tom Cherrybac32992015-07-31 12:45:25 -0700149
Wei Wang641ff0a2017-03-27 10:59:11 -0700150 private:
Tom Cherrybac32992015-07-31 12:45:25 -0700151 void NotifyStateChange(const std::string& new_state) const;
152 void StopOrReset(int how);
Tom Cherryd89ed132019-11-19 14:19:40 -0800153 void KillProcessGroup(int signal, bool report_oneshot = false);
Bart Van Assche01e66692022-11-14 16:45:47 -0800154 void SetProcessAttributesAndCaps(InterprocessFifo setsid_finished);
David Anderson0e5ad5a2021-07-21 21:53:28 -0700155 void ResetFlagsForStart();
Bart Van Assche847b80a2022-02-25 23:28:59 +0000156 Result<void> CheckConsole();
Bart Van Asschef2222aa2022-02-25 22:44:40 +0000157 void ConfigureMemcg();
Bart Van Assche01e66692022-11-14 16:45:47 -0800158 void RunService(const std::vector<Descriptor>& descriptors, InterprocessFifo cgroups_activated,
159 InterprocessFifo setsid_finished);
Jooyung Hanc5fa15e2022-07-14 11:23:59 +0900160 void SetMountNamespace();
Tom Cherry59383792017-07-26 16:09:09 -0700161 static unsigned long next_start_order_;
Tom Cherry3b81f2d2017-07-28 14:48:41 -0700162 static bool is_exec_service_running_;
Tom Cherry59383792017-07-26 16:09:09 -0700163
Bart Van Asschebfcf4372022-11-14 11:24:12 -0800164 const std::string name_;
Wei Wang641ff0a2017-03-27 10:59:11 -0700165 std::set<std::string> classnames_;
Tom Cherrybac32992015-07-31 12:45:25 -0700166
167 unsigned flags_;
168 pid_t pid_;
James Hawkinse78ea772017-03-24 11:43:02 -0700169 android::base::boot_clock::time_point time_started_; // time of last start
170 android::base::boot_clock::time_point time_crashed_; // first crash within inspection window
Elliott Hughes9605a942016-11-10 17:43:47 -0800171 int crash_count_; // number of times crashed within window
Florian Mayer2ef47f82022-05-10 17:55:08 -0700172 bool upgraded_mte_ = false; // whether we upgraded async MTE -> sync MTE before
Woody Lin45215ae2019-12-26 22:22:28 +0800173 std::chrono::minutes fatal_crash_window_ = 4min; // fatal() when more than 4 crashes in it
174 std::optional<std::string> fatal_reboot_target_; // reboot target of fatal handler
Tom Cherrybac32992015-07-31 12:45:25 -0700175
Tom Cherry1cd082d2019-02-06 10:45:56 -0800176 std::optional<CapSet> capabilities_;
Vic Yange01ca4d2019-05-29 15:58:32 -0700177 ProcessAttributes proc_attr_;
178 NamespaceInfo namespaces_;
Tom Cherrybac32992015-07-31 12:45:25 -0700179
180 std::string seclabel_;
181
Tom Cherry2e4c85f2019-07-09 13:33:36 -0700182 std::vector<SocketDescriptor> sockets_;
183 std::vector<FileDescriptor> files_;
Tom Cherry6de21f12017-08-22 15:41:03 -0700184 std::vector<std::pair<std::string, std::string>> environment_vars_;
Florian Mayer2ef47f82022-05-10 17:55:08 -0700185 // Environment variables that only get applied to the next run.
186 std::vector<std::pair<std::string, std::string>> once_environment_vars_;
Tom Cherrybac32992015-07-31 12:45:25 -0700187
Bart Van Asschebfcf4372022-11-14 11:24:12 -0800188 const Subcontext* const subcontext_;
Tom Cherrybac32992015-07-31 12:45:25 -0700189 Action onrestart_; // Commands to execute on restart.
190
191 std::vector<std::string> writepid_files_;
192
Suren Baghdasaryanc9c0bba2020-04-30 11:58:39 -0700193 std::vector<std::string> task_profiles_;
194
Steven Morelande055d732017-10-05 18:50:22 -0700195 std::set<std::string> interfaces_; // e.g. some.package.foo@1.0::IBaz/instance-name
196
Mark Salyzyn13857252018-05-18 15:25:15 -0700197 // keycodes for triggering this service via /dev/input/input*
Tom Cherrybac32992015-07-31 12:45:25 -0700198 std::vector<int> keycodes_;
Tom Cherrybac32992015-07-31 12:45:25 -0700199
Marco Nelissen310f6702016-07-22 12:07:06 -0700200 int oom_score_adjust_;
201
Peter Collingbourned7157c22018-10-30 15:49:33 -0700202 int swappiness_ = -1;
203 int soft_limit_in_bytes_ = -1;
204
205 int limit_in_bytes_ = -1;
206 int limit_percent_ = -1;
207 std::string limit_property_;
Robert Benead4852262017-07-16 19:38:11 -0700208
Tom Cherry33838b12017-05-04 11:32:36 -0700209 bool process_cgroup_empty_ = false;
210
Steven Moreland6f5333a2017-11-13 15:31:54 -0800211 bool override_ = false;
212
Tom Cherry59383792017-07-26 16:09:09 -0700213 unsigned long start_order_;
214
Tom Cherry8f380482018-04-17 14:48:44 -0700215 bool sigstop_ = false;
216
Tom Cherry73f535e2018-09-27 16:10:46 -0700217 std::chrono::seconds restart_period_ = 5s;
218 std::optional<std::chrono::seconds> timeout_period_;
219
Jiyong Park80aa4472018-11-12 12:08:41 +0900220 bool updatable_ = false;
221
Bart Van Asschebfcf4372022-11-14 11:24:12 -0800222 const std::vector<std::string> args_;
Paul Crowleyc73b2152018-04-13 17:38:57 +0000223
224 std::vector<std::function<void(const siginfo_t& siginfo)>> reap_callbacks_;
Jiyong Park68660412019-01-16 23:00:59 +0900225
Jooyung Hanc5fa15e2022-07-14 11:23:59 +0900226 std::optional<MountNamespace> mount_namespace_;
Martijn Coenen70788f92019-04-23 16:26:01 +0200227
228 bool post_data_ = false;
Martijn Coenenacc45aa2019-05-15 22:04:13 +0200229
Tom Cherry60971e62019-09-10 10:40:47 -0700230 std::optional<std::string> on_failure_reboot_target_;
Nikita Ioffe091c4d12019-12-05 12:35:19 +0000231
Deyao Rendf40ed12022-07-14 22:51:10 +0000232 std::string filename_;
Tom Cherrybac32992015-07-31 12:45:25 -0700233};
234
Tom Cherry81f5d3e2017-06-22 12:53:17 -0700235} // namespace init
236} // namespace android