blob: 0131f10f9254fa4812d5796361650f110f6c33e6 [file] [log] [blame]
Alex Deymoaea4c1c2015-08-19 20:24:43 -07001//
2// Copyright (C) 2012 The Android Open Source Project
3//
4// Licensed under the Apache License, Version 2.0 (the "License");
5// you may not use this file except in compliance with the License.
6// You may obtain a copy of the License at
7//
8// http://www.apache.org/licenses/LICENSE-2.0
9//
10// Unless required by applicable law or agreed to in writing, software
11// distributed under the License is distributed on an "AS IS" BASIS,
12// WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13// See the License for the specific language governing permissions and
14// limitations under the License.
15//
adlr@google.com3defe6a2009-12-04 20:57:17 +000016
Alex Deymo39910dc2015-11-09 17:04:30 -080017#include "update_engine/common/subprocess.h"
Darin Petkova0b9e772011-10-06 05:05:56 -070018
Alex Deymo29b81532015-07-09 11:51:49 -070019#include <fcntl.h>
adlr@google.com3defe6a2009-12-04 20:57:17 +000020#include <stdlib.h>
21#include <string.h>
Kenneth Watersa7fcafa2010-09-21 10:27:03 -070022#include <unistd.h>
Darin Petkova0b9e772011-10-06 05:05:56 -070023
Ben Chan02f7c1d2014-10-18 15:18:02 -070024#include <memory>
Darin Petkova0b9e772011-10-06 05:05:56 -070025#include <string>
Amin Hassania8859542018-03-07 16:24:43 -080026#include <utility>
adlr@google.com3defe6a2009-12-04 20:57:17 +000027#include <vector>
Darin Petkova0b9e772011-10-06 05:05:56 -070028
Alex Deymo29b81532015-07-09 11:51:49 -070029#include <base/bind.h>
Darin Petkova0b9e772011-10-06 05:05:56 -070030#include <base/logging.h>
Alex Deymo29b81532015-07-09 11:51:49 -070031#include <base/posix/eintr_wrapper.h>
Alex Vakulenko75039d72014-03-25 12:36:28 -070032#include <base/strings/string_util.h>
33#include <base/strings/stringprintf.h>
Alex Vakulenko3f39d5c2015-10-13 09:27:13 -070034#include <brillo/process.h>
35#include <brillo/secure_blob.h>
adlr@google.com3defe6a2009-12-04 20:57:17 +000036
Alex Deymo0d298542016-03-30 18:31:49 -070037#include "update_engine/common/utils.h"
38
Alex Vakulenko3f39d5c2015-10-13 09:27:13 -070039using brillo::MessageLoop;
adlr@google.com3defe6a2009-12-04 20:57:17 +000040using std::string;
Ben Chan02f7c1d2014-10-18 15:18:02 -070041using std::unique_ptr;
adlr@google.com3defe6a2009-12-04 20:57:17 +000042using std::vector;
43
44namespace chromeos_update_engine {
45
Alex Deymo461b2592015-07-24 20:10:52 -070046namespace {
Darin Petkov6f03a3b2010-11-10 14:27:14 -080047
Alex Deymo109c28d2016-04-05 23:00:52 +000048bool SetupChild(const std::map<string, string>& env, uint32_t flags) {
Alex Deymo461b2592015-07-24 20:10:52 -070049 // Setup the environment variables.
50 clearenv();
51 for (const auto& key_value : env) {
52 setenv(key_value.first.c_str(), key_value.second.c_str(), 0);
53 }
Darin Petkov6f03a3b2010-11-10 14:27:14 -080054
Alex Deymo461b2592015-07-24 20:10:52 -070055 if ((flags & Subprocess::kRedirectStderrToStdout) != 0) {
56 if (HANDLE_EINTR(dup2(STDOUT_FILENO, STDERR_FILENO)) != STDERR_FILENO)
57 return false;
Alex Deymo29b81532015-07-09 11:51:49 -070058 }
Andrew de los Reyesc1d5c932011-04-20 17:15:47 -070059
Alex Deymo461b2592015-07-24 20:10:52 -070060 int fd = HANDLE_EINTR(open("/dev/null", O_RDONLY));
61 if (fd < 0)
62 return false;
63 if (HANDLE_EINTR(dup2(fd, STDIN_FILENO)) != STDIN_FILENO)
64 return false;
65 IGNORE_EINTR(close(fd));
66
67 return true;
adlr@google.com3defe6a2009-12-04 20:57:17 +000068}
69
Alex Deymo461b2592015-07-24 20:10:52 -070070// Helper function to launch a process with the given Subprocess::Flags.
71// This function only sets up and starts the process according to the |flags|.
72// The caller is responsible for watching the termination of the subprocess.
73// Return whether the process was successfully launched and fills in the |proc|
74// Process.
75bool LaunchProcess(const vector<string>& cmd,
76 uint32_t flags,
Alex Deymoe384bb22016-03-29 17:23:33 -070077 const vector<int>& output_pipes,
Alex Vakulenko3f39d5c2015-10-13 09:27:13 -070078 brillo::Process* proc) {
Alex Deymo461b2592015-07-24 20:10:52 -070079 for (const string& arg : cmd)
80 proc->AddArg(arg);
81 proc->SetSearchPath((flags & Subprocess::kSearchPath) != 0);
82
83 // Create an environment for the child process with just the required PATHs.
84 std::map<string, string> env;
85 for (const char* key : {"LD_LIBRARY_PATH", "PATH"}) {
86 const char* value = getenv(key);
87 if (value)
88 env.emplace(key, value);
89 }
90
Alex Deymoe384bb22016-03-29 17:23:33 -070091 for (const int fd : output_pipes) {
92 proc->RedirectUsingPipe(fd, false);
93 }
94 proc->SetCloseUnusedFileDescriptors(true);
Alex Deymo461b2592015-07-24 20:10:52 -070095 proc->RedirectUsingPipe(STDOUT_FILENO, false);
Alex Deymo109c28d2016-04-05 23:00:52 +000096 proc->SetPreExecCallback(base::Bind(&SetupChild, env, flags));
Alex Deymo461b2592015-07-24 20:10:52 -070097
98 return proc->Start();
99}
100
101} // namespace
102
Alex Deymob7ca0962014-10-01 17:58:07 -0700103void Subprocess::Init(
Amin Hassanib2689592019-01-13 17:04:28 -0800104 brillo::AsynchronousSignalHandlerInterface* async_signal_handler) {
Alex Deymo461b2592015-07-24 20:10:52 -0700105 if (subprocess_singleton_ == this)
106 return;
107 CHECK(subprocess_singleton_ == nullptr);
108 subprocess_singleton_ = this;
109
Alex Deymob7ca0962014-10-01 17:58:07 -0700110 process_reaper_.Register(async_signal_handler);
Alex Deymo461b2592015-07-24 20:10:52 -0700111}
112
113Subprocess::~Subprocess() {
114 if (subprocess_singleton_ == this)
115 subprocess_singleton_ = nullptr;
Kenneth Watersa7fcafa2010-09-21 10:27:03 -0700116}
117
Alex Deymo29b81532015-07-09 11:51:49 -0700118void Subprocess::OnStdoutReady(SubprocessRecord* record) {
Darin Petkov6f03a3b2010-11-10 14:27:14 -0800119 char buf[1024];
Alex Deymo0d298542016-03-30 18:31:49 -0700120 size_t bytes_read;
Alex Deymo29b81532015-07-09 11:51:49 -0700121 do {
Alex Deymo0d298542016-03-30 18:31:49 -0700122 bytes_read = 0;
123 bool eof;
124 bool ok = utils::ReadAll(
125 record->stdout_fd, buf, arraysize(buf), &bytes_read, &eof);
126 record->stdout.append(buf, bytes_read);
127 if (!ok || eof) {
128 // There was either an error or an EOF condition, so we are done watching
129 // the file descriptor.
Alex Deymo461b2592015-07-24 20:10:52 -0700130 MessageLoop::current()->CancelTask(record->stdout_task_id);
131 record->stdout_task_id = MessageLoop::kTaskIdNull;
Alex Deymo0d298542016-03-30 18:31:49 -0700132 return;
Alex Deymo29b81532015-07-09 11:51:49 -0700133 }
Alex Deymo0d298542016-03-30 18:31:49 -0700134 } while (bytes_read);
Darin Petkov6f03a3b2010-11-10 14:27:14 -0800135}
136
Alex Deymo461b2592015-07-24 20:10:52 -0700137void Subprocess::ChildExitedCallback(const siginfo_t& info) {
138 auto pid_record = subprocess_records_.find(info.si_pid);
139 if (pid_record == subprocess_records_.end())
140 return;
141 SubprocessRecord* record = pid_record->second.get();
142
143 // Make sure we read any remaining process output and then close the pipe.
144 OnStdoutReady(record);
145
146 MessageLoop::current()->CancelTask(record->stdout_task_id);
147 record->stdout_task_id = MessageLoop::kTaskIdNull;
148
Alex Deymo461b2592015-07-24 20:10:52 -0700149 // Don't print any log if the subprocess exited with exit code 0.
150 if (info.si_code != CLD_EXITED) {
151 LOG(INFO) << "Subprocess terminated with si_code " << info.si_code;
152 } else if (info.si_status != 0) {
153 LOG(INFO) << "Subprocess exited with si_status: " << info.si_status;
adlr@google.com3defe6a2009-12-04 20:57:17 +0000154 }
Andrew de los Reyes3270f742010-07-15 22:28:14 -0700155
Alex Deymo461b2592015-07-24 20:10:52 -0700156 if (!record->stdout.empty()) {
157 LOG(INFO) << "Subprocess output:\n" << record->stdout;
Andrew de los Reyes3270f742010-07-15 22:28:14 -0700158 }
Alex Deymo461b2592015-07-24 20:10:52 -0700159 if (!record->callback.is_null()) {
160 record->callback.Run(info.si_status, record->stdout);
Andrew de los Reyes3270f742010-07-15 22:28:14 -0700161 }
Alex Deymoe384bb22016-03-29 17:23:33 -0700162 // Release and close all the pipes after calling the callback so our
163 // redirected pipes are still alive. Releasing the process first makes
164 // Reset(0) not attempt to kill the process, which is already a zombie at this
165 // point.
166 record->proc.Release();
167 record->proc.Reset(0);
168
Alex Deymo461b2592015-07-24 20:10:52 -0700169 subprocess_records_.erase(pid_record);
Alex Deymo29b81532015-07-09 11:51:49 -0700170}
171
Alex Deymo461b2592015-07-24 20:10:52 -0700172pid_t Subprocess::Exec(const vector<string>& cmd,
173 const ExecCallback& callback) {
Alex Deymo109c28d2016-04-05 23:00:52 +0000174 return ExecFlags(cmd, kRedirectStderrToStdout, {}, callback);
Alex Deymo461b2592015-07-24 20:10:52 -0700175}
Andrew de los Reyes08c4e272010-04-15 14:02:17 -0700176
Alex Deymo461b2592015-07-24 20:10:52 -0700177pid_t Subprocess::ExecFlags(const vector<string>& cmd,
178 uint32_t flags,
Alex Deymoe384bb22016-03-29 17:23:33 -0700179 const vector<int>& output_pipes,
Alex Deymo461b2592015-07-24 20:10:52 -0700180 const ExecCallback& callback) {
181 unique_ptr<SubprocessRecord> record(new SubprocessRecord(callback));
182
Alex Deymo109c28d2016-04-05 23:00:52 +0000183 if (!LaunchProcess(cmd, flags, output_pipes, &record->proc)) {
Alex Deymo461b2592015-07-24 20:10:52 -0700184 LOG(ERROR) << "Failed to launch subprocess";
Chris Masonec6c57a52010-09-23 13:06:14 -0700185 return 0;
186 }
adlr@google.com3defe6a2009-12-04 20:57:17 +0000187
Alex Deymo461b2592015-07-24 20:10:52 -0700188 pid_t pid = record->proc.pid();
Amin Hassanib2689592019-01-13 17:04:28 -0800189 CHECK(process_reaper_.WatchForChild(
190 FROM_HERE,
191 pid,
192 base::Bind(&Subprocess::ChildExitedCallback, base::Unretained(this))));
Darin Petkov6f03a3b2010-11-10 14:27:14 -0800193
Alex Deymo461b2592015-07-24 20:10:52 -0700194 record->stdout_fd = record->proc.GetPipe(STDOUT_FILENO);
Alex Deymo29b81532015-07-09 11:51:49 -0700195 // Capture the subprocess output. Make our end of the pipe non-blocking.
Alex Deymo461b2592015-07-24 20:10:52 -0700196 int fd_flags = fcntl(record->stdout_fd, F_GETFL, 0) | O_NONBLOCK;
Alex Deymo29b81532015-07-09 11:51:49 -0700197 if (HANDLE_EINTR(fcntl(record->stdout_fd, F_SETFL, fd_flags)) < 0) {
198 LOG(ERROR) << "Unable to set non-blocking I/O mode on fd "
199 << record->stdout_fd << ".";
200 }
201
Alex Deymo461b2592015-07-24 20:10:52 -0700202 record->stdout_task_id = MessageLoop::current()->WatchFileDescriptor(
Alex Deymo29b81532015-07-09 11:51:49 -0700203 FROM_HERE,
204 record->stdout_fd,
205 MessageLoop::WatchMode::kWatchRead,
206 true,
207 base::Bind(&Subprocess::OnStdoutReady, record.get()));
208
Alex Vakulenkoce8c8ee2016-04-08 08:59:26 -0700209 subprocess_records_[pid] = std::move(record);
Alex Deymo461b2592015-07-24 20:10:52 -0700210 return pid;
adlr@google.com3defe6a2009-12-04 20:57:17 +0000211}
212
Alex Deymo461b2592015-07-24 20:10:52 -0700213void Subprocess::KillExec(pid_t pid) {
214 auto pid_record = subprocess_records_.find(pid);
215 if (pid_record == subprocess_records_.end())
Alex Deymo29b81532015-07-09 11:51:49 -0700216 return;
Alex Deymo461b2592015-07-24 20:10:52 -0700217 pid_record->second->callback.Reset();
Sen Jiang1d3b8632016-05-13 12:32:10 -0700218 // We don't care about output/return code, so we use SIGKILL here to ensure it
219 // will be killed, SIGTERM might lead to leaked subprocess.
220 if (kill(pid, SIGKILL) != 0) {
221 PLOG(WARNING) << "Error sending SIGKILL to " << pid;
Alex Deymod15c5462016-03-09 18:11:12 -0800222 }
223 // Release the pid now so we don't try to kill it if Subprocess is destroyed
224 // before the corresponding ChildExitedCallback() is called.
225 pid_record->second->proc.Release();
adlr@google.com3defe6a2009-12-04 20:57:17 +0000226}
227
Alex Deymoe384bb22016-03-29 17:23:33 -0700228int Subprocess::GetPipeFd(pid_t pid, int fd) const {
229 auto pid_record = subprocess_records_.find(pid);
230 if (pid_record == subprocess_records_.end())
231 return -1;
232 return pid_record->second->proc.GetPipe(fd);
233}
234
Alex Deymof329b932014-10-30 01:37:48 -0700235bool Subprocess::SynchronousExec(const vector<string>& cmd,
Darin Petkov85d02b72011-05-17 13:25:51 -0700236 int* return_code,
Alex Deymof329b932014-10-30 01:37:48 -0700237 string* stdout) {
Alex Deymo461b2592015-07-24 20:10:52 -0700238 // The default for SynchronousExec is to use kSearchPath since the code relies
239 // on that.
240 return SynchronousExecFlags(
Amin Hassanib2689592019-01-13 17:04:28 -0800241 cmd, kRedirectStderrToStdout | kSearchPath, return_code, stdout);
Alex Deymo461b2592015-07-24 20:10:52 -0700242}
243
244bool Subprocess::SynchronousExecFlags(const vector<string>& cmd,
245 uint32_t flags,
246 int* return_code,
247 string* stdout) {
Alex Vakulenko3f39d5c2015-10-13 09:27:13 -0700248 brillo::ProcessImpl proc;
Alex Deymoe384bb22016-03-29 17:23:33 -0700249 // It doesn't make sense to redirect some pipes in the synchronous case
250 // because we won't be reading on our end, so we don't expose the output_pipes
251 // in this case.
Alex Deymo109c28d2016-04-05 23:00:52 +0000252 if (!LaunchProcess(cmd, flags, {}, &proc)) {
Alex Deymo461b2592015-07-24 20:10:52 -0700253 LOG(ERROR) << "Failed to launch subprocess";
254 return false;
255 }
256
257 if (stdout) {
258 stdout->clear();
259 }
260
261 int fd = proc.GetPipe(STDOUT_FILENO);
262 vector<char> buffer(32 * 1024);
263 while (true) {
264 int rc = HANDLE_EINTR(read(fd, buffer.data(), buffer.size()));
265 if (rc < 0) {
266 PLOG(ERROR) << "Reading from child's output";
267 break;
268 } else if (rc == 0) {
269 break;
270 } else {
271 if (stdout)
272 stdout->append(buffer.data(), rc);
273 }
274 }
275 // At this point, the subprocess already closed the output, so we only need to
276 // wait for it to finish.
277 int proc_return_code = proc.Wait();
278 if (return_code)
279 *return_code = proc_return_code;
Alex Vakulenko3f39d5c2015-10-13 09:27:13 -0700280 return proc_return_code != brillo::Process::kErrorExitStatus;
Darin Petkov85d02b72011-05-17 13:25:51 -0700281}
282
Amin Hassania8859542018-03-07 16:24:43 -0800283void Subprocess::FlushBufferedLogsAtExit() {
284 if (!subprocess_records_.empty()) {
285 LOG(INFO) << "We are exiting, but there are still in flight subprocesses!";
286 for (auto& pid_record : subprocess_records_) {
287 SubprocessRecord* record = pid_record.second.get();
288 // Make sure we read any remaining process output.
289 OnStdoutReady(record);
290 if (!record->stdout.empty()) {
291 LOG(INFO) << "Subprocess(" << pid_record.first << ") output:\n"
292 << record->stdout;
293 }
294 }
295 }
296}
297
Alex Vakulenko88b591f2014-08-28 16:48:57 -0700298Subprocess* Subprocess::subprocess_singleton_ = nullptr;
adlr@google.com3defe6a2009-12-04 20:57:17 +0000299
300} // namespace chromeos_update_engine