blob: 303d0ddbefda700cd756d9e5e79443d4b3130b14 [file] [log] [blame]
San Mehatd1830422010-01-15 08:02:39 -08001/*
Luke Huangcfd04b22019-03-18 15:53:21 +08002 * Copyright (C) 2019 The Android Open Source Project
San Mehatd1830422010-01-15 08:02:39 -08003 *
4 * Licensed under the Apache License, Version 2.0 (the "License");
5 * you may not use this file except in compliance with the License.
6 * You may obtain a copy of the License at
7 *
8 * http://www.apache.org/licenses/LICENSE-2.0
9 *
10 * Unless required by applicable law or agreed to in writing, software
11 * distributed under the License is distributed on an "AS IS" BASIS,
12 * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 * See the License for the specific language governing permissions and
14 * limitations under the License.
15 */
16
Luke Huangcfd04b22019-03-18 15:53:21 +080017#include "NdcDispatcher.h"
JP Abgralldb7da582011-09-18 12:57:32 -070018
San Mehatd1830422010-01-15 08:02:39 -080019#include <arpa/inet.h>
20#include <dirent.h>
21#include <errno.h>
San Mehat5c1b8af2010-01-21 15:37:10 -080022#include <linux/if.h>
Luke Huangcfd04b22019-03-18 15:53:21 +080023#include <netinet/in.h>
24#include <stdlib.h>
25#include <string.h>
26#include <sys/socket.h>
27#include <sys/types.h>
San Mehat5c1b8af2010-01-21 15:37:10 -080028
Luke Huangcfd04b22019-03-18 15:53:21 +080029#include <cinttypes>
30#include <string>
31#include <vector>
Matthew Leach2a54d962013-01-14 15:07:12 +000032
Luke Huangcfd04b22019-03-18 15:53:21 +080033#include <android-base/logging.h>
Luke Huang7720e4a2019-02-20 15:09:28 +080034#include <android-base/parseint.h>
Luke Huangcfd04b22019-03-18 15:53:21 +080035#include <android-base/stringprintf.h>
Luke Huang7720e4a2019-02-20 15:09:28 +080036#include <android-base/strings.h>
Luke Huangcfd04b22019-03-18 15:53:21 +080037#include <android/multinetwork.h>
Mike Yuf0e019f2019-03-13 14:43:39 +080038#include <netdutils/ResponseCode.h>
Chenbo Feng7e974052018-02-28 22:57:21 -080039#include <netdutils/Status.h>
40#include <netdutils/StatusOr.h>
Lorenzo Colitti1ed47c42011-09-27 11:10:46 -070041#include <netutils/ifc.h>
San Mehatd1830422010-01-15 08:02:39 -080042
Jeff Sharkey8e188ed2012-07-12 18:32:03 -070043#include "NetdConstants.h"
Luke Huangcfd04b22019-03-18 15:53:21 +080044#include "NetworkController.h"
45#include "Permission.h"
Sreeram Ramachandranb1425cc2014-06-23 18:54:27 -070046#include "UidRanges.h"
Bernie Innocenti189eb502018-10-01 23:10:18 +090047#include "netid_client.h"
San Mehat5c1b8af2010-01-21 15:37:10 -080048
Luke Huang7720e4a2019-02-20 15:09:28 +080049using android::base::Join;
50using android::base::StringPrintf;
51using android::binder::Status;
52
Maciej Żenczykowskiacdc0872020-04-21 18:15:52 -070053#define PARSE_INT_RETURN_IF_FAIL(cli, label, intLabel, errMsg, addErrno) \
54 do { \
55 if (!android::base::ParseInt((label), &(intLabel))) { \
56 errno = EINVAL; \
57 (cli)->sendMsg(ResponseCode::OperationFailed, (errMsg), (addErrno)); \
58 return 0; \
59 } \
Luke Huang7720e4a2019-02-20 15:09:28 +080060 } while (0)
61
Maciej Żenczykowskiacdc0872020-04-21 18:15:52 -070062#define PARSE_UINT_RETURN_IF_FAIL(cli, label, intLabel, errMsg, addErrno) \
63 do { \
64 if (!android::base::ParseUint((label), &(intLabel))) { \
65 errno = EINVAL; \
66 (cli)->sendMsg(ResponseCode::OperationFailed, (errMsg), (addErrno)); \
67 return 0; \
68 } \
Luke Huang7720e4a2019-02-20 15:09:28 +080069 } while (0)
70
Lorenzo Colitti7035f222017-02-13 18:29:00 +090071namespace android {
Pierre Imai1cfa5432016-02-24 18:00:03 +090072
Mike Yuf0e019f2019-03-13 14:43:39 +080073using netdutils::ResponseCode;
74
75namespace net {
Sreeram Ramachandran379bd332014-04-10 19:58:06 -070076namespace {
77
Sreeram Ramachandranbbdde992014-09-05 16:05:03 -070078const unsigned NUM_OEM_IDS = NetworkController::MAX_OEM_ID - NetworkController::MIN_OEM_ID + 1;
79
Sreeram Ramachandran87475a12014-07-15 16:20:28 -070080unsigned stringToNetId(const char* arg) {
81 if (!strcmp(arg, "local")) {
82 return NetworkController::LOCAL_NET_ID;
83 }
Sreeram Ramachandranbbdde992014-09-05 16:05:03 -070084 // OEM NetIds are "oem1", "oem2", .., "oem50".
85 if (!strncmp(arg, "oem", 3)) {
Yi Kongbdfd57e2018-07-25 13:26:10 -070086 unsigned n = strtoul(arg + 3, nullptr, 0);
Sreeram Ramachandranbbdde992014-09-05 16:05:03 -070087 if (1 <= n && n <= NUM_OEM_IDS) {
88 return NetworkController::MIN_OEM_ID + n;
89 }
90 return NETID_UNSET;
Niranjan Pendharkar4c18bd92017-07-24 09:54:07 -070091 } else if (!strncmp(arg, "handle", 6)) {
Yi Kongbdfd57e2018-07-25 13:26:10 -070092 unsigned n = netHandleToNetId((net_handle_t)strtoull(arg + 6, nullptr, 10));
Niranjan Pendharkar4c18bd92017-07-24 09:54:07 -070093 if (NetworkController::MIN_OEM_ID <= n && n <= NetworkController::MAX_OEM_ID) {
94 return n;
95 }
96 return NETID_UNSET;
Sreeram Ramachandranbbdde992014-09-05 16:05:03 -070097 }
Sreeram Ramachandran87475a12014-07-15 16:20:28 -070098 // strtoul() returns 0 on errors, which is fine because 0 is an invalid netId.
Yi Kongbdfd57e2018-07-25 13:26:10 -070099 return strtoul(arg, nullptr, 0);
Sreeram Ramachandran87475a12014-07-15 16:20:28 -0700100}
101
Luke Huang7720e4a2019-02-20 15:09:28 +0800102std::string toStdString(const String16& s) {
103 return std::string(String8(s.string()));
104}
Lorenzo Colittiddf2d5b2016-02-26 11:30:59 +0900105
Luke Huang7720e4a2019-02-20 15:09:28 +0800106int stringToINetdPermission(const char* arg) {
107 if (!strcmp(arg, "NETWORK")) {
108 return INetd::PERMISSION_NETWORK;
Lorenzo Colittiddf2d5b2016-02-26 11:30:59 +0900109 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800110 if (!strcmp(arg, "SYSTEM")) {
111 return INetd::PERMISSION_SYSTEM;
112 }
113 return INetd::PERMISSION_NONE;
114}
Lorenzo Colittiddf2d5b2016-02-26 11:30:59 +0900115
Sreeram Ramachandran379bd332014-04-10 19:58:06 -0700116} // namespace
117
Luke Huangcfd04b22019-03-18 15:53:21 +0800118sp<INetd> NdcDispatcher::mNetd;
119sp<IDnsResolver> NdcDispatcher::mDnsResolver;
Lorenzo Colittiddf2d5b2016-02-26 11:30:59 +0900120
Luke Huangcfd04b22019-03-18 15:53:21 +0800121NdcDispatcher::NdcDispatcher() {
Luke Huang7720e4a2019-02-20 15:09:28 +0800122 sp<IServiceManager> sm = defaultServiceManager();
Luke Huangcfd04b22019-03-18 15:53:21 +0800123 sp<IBinder> binderNetd = sm->getService(String16("netd"));
124 sp<IBinder> binderDnsResolver = sm->getService(String16("dnsresolver"));
125 if ((binderNetd != nullptr) && (binderDnsResolver != nullptr)) {
126 NdcDispatcher::mNetd = interface_cast<INetd>(binderNetd);
127 NdcDispatcher::mDnsResolver = interface_cast<IDnsResolver>(binderDnsResolver);
Luke Huang7720e4a2019-02-20 15:09:28 +0800128 } else {
Luke Huangcfd04b22019-03-18 15:53:21 +0800129 LOG(LOGLEVEL) << "Unable to get binder service";
Luke Huang7720e4a2019-02-20 15:09:28 +0800130 exit(1);
131 }
132 registerCmd(new InterfaceCmd());
133 registerCmd(new IpFwdCmd());
134 registerCmd(new TetherCmd());
135 registerCmd(new NatCmd());
136 registerCmd(new BandwidthControlCmd());
137 registerCmd(new IdletimerControlCmd());
138 registerCmd(new FirewallCmd());
Luke Huang7720e4a2019-02-20 15:09:28 +0800139 registerCmd(new NetworkCommand());
140 registerCmd(new StrictCmd());
San Mehatd1830422010-01-15 08:02:39 -0800141}
142
Luke Huangcfd04b22019-03-18 15:53:21 +0800143void NdcDispatcher::registerCmd(NdcNetdCommand* cmd) {
144 mCommands.push_back(cmd);
San Mehatd1830422010-01-15 08:02:39 -0800145}
146
Luke Huangcfd04b22019-03-18 15:53:21 +0800147int NdcDispatcher::dispatchCommand(int argc, char** argv) {
148 if (argc >= CMD_ARGS_MAX) {
149 mNdc.sendMsg(500, "Command too long", false);
150 }
151
152 for (const auto* c : mCommands) {
153 if (c->getCommand() == argv[0]) {
154 if (c->runCommand(&mNdc, argc, argv)) {
155 mNdc.sendMsg(500, "Handler error", true);
156 }
157 return 0;
158 }
159 }
160 mNdc.sendMsg(500, "Command not recognized", false);
161 return 0;
162}
163
164NdcDispatcher::InterfaceCmd::InterfaceCmd() : NdcNetdCommand("interface") {}
165
166int NdcDispatcher::InterfaceCmd::runCommand(NdcClient* cli, int argc, char** argv) const {
San Mehat5c1b8af2010-01-21 15:37:10 -0800167 if (argc < 2) {
168 cli->sendMsg(ResponseCode::CommandSyntaxError, "Missing argument", false);
169 return 0;
170 }
171
172 if (!strcmp(argv[1], "list")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800173 std::vector<std::string> interfaceGetList;
174 Status status = mNetd->interfaceGetList(&interfaceGetList);
175
176 if (!status.isOk()) {
177 errno = status.serviceSpecificErrorCode();
Chenbo Feng7e974052018-02-28 22:57:21 -0800178 cli->sendMsg(ResponseCode::OperationFailed, "Failed to get interface list", true);
San Mehat5c1b8af2010-01-21 15:37:10 -0800179 return 0;
180 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800181 for (const auto& iface : interfaceGetList) {
182 cli->sendMsg(ResponseCode::InterfaceListResult, iface.c_str(), false);
San Mehat5c1b8af2010-01-21 15:37:10 -0800183 }
Chenbo Feng7e974052018-02-28 22:57:21 -0800184
San Mehat5c1b8af2010-01-21 15:37:10 -0800185 cli->sendMsg(ResponseCode::CommandOkay, "Interface list completed", false);
186 return 0;
187 } else {
188 /*
189 * These commands take a minimum of 3 arguments
190 */
191 if (argc < 3) {
192 cli->sendMsg(ResponseCode::CommandSyntaxError, "Missing argument", false);
193 return 0;
194 }
Robert Greenwalte019b652011-05-10 14:57:03 -0700195
San Mehat5c1b8af2010-01-21 15:37:10 -0800196 if (!strcmp(argv[1], "getcfg")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800197 InterfaceConfigurationParcel interfaceCfgResult;
198 Status status = mNetd->interfaceGetCfg(std::string(argv[2]), &interfaceCfgResult);
San Mehat5c1b8af2010-01-21 15:37:10 -0800199
Luke Huang7720e4a2019-02-20 15:09:28 +0800200 if (!status.isOk()) {
201 errno = status.serviceSpecificErrorCode();
San Mehat5c1b8af2010-01-21 15:37:10 -0800202 cli->sendMsg(ResponseCode::OperationFailed, "Interface not found", true);
203 return 0;
204 }
205
Luke Huang7720e4a2019-02-20 15:09:28 +0800206 std::string flags = Join(interfaceCfgResult.flags, " ");
San Mehat5c1b8af2010-01-21 15:37:10 -0800207
Luke Huang7720e4a2019-02-20 15:09:28 +0800208 std::string msg = StringPrintf("%s %s %d %s", interfaceCfgResult.hwAddr.c_str(),
209 interfaceCfgResult.ipv4Addr.c_str(),
210 interfaceCfgResult.prefixLength, flags.c_str());
San Mehat5c1b8af2010-01-21 15:37:10 -0800211
Luke Huang7720e4a2019-02-20 15:09:28 +0800212 cli->sendMsg(ResponseCode::InterfaceGetCfgResult, msg.c_str(), false);
San Mehat5c1b8af2010-01-21 15:37:10 -0800213
San Mehat5c1b8af2010-01-21 15:37:10 -0800214 return 0;
215 } else if (!strcmp(argv[1], "setcfg")) {
Dmitry Shmidt778ffe42012-06-20 12:59:21 -0700216 // arglist: iface [addr prefixLength] flags
217 if (argc < 4) {
San Mehat5c1b8af2010-01-21 15:37:10 -0800218 cli->sendMsg(ResponseCode::CommandSyntaxError, "Missing argument", false);
219 return 0;
220 }
Luke Huangcfd04b22019-03-18 15:53:21 +0800221 LOG(LOGLEVEL) << "Setting iface cfg";
San Mehat5c1b8af2010-01-21 15:37:10 -0800222
Robert Greenwalt1d93e172011-02-01 13:54:35 -0800223 struct in_addr addr;
Dmitry Shmidt778ffe42012-06-20 12:59:21 -0700224 int index = 5;
Luke Huang7720e4a2019-02-20 15:09:28 +0800225 InterfaceConfigurationParcel interfaceCfg;
226 interfaceCfg.ifName = argv[2];
227 interfaceCfg.hwAddr = "";
San Mehat5c1b8af2010-01-21 15:37:10 -0800228
Dmitry Shmidt778ffe42012-06-20 12:59:21 -0700229 if (!inet_aton(argv[3], &addr)) {
230 // Handle flags only case
231 index = 3;
Luke Huang7720e4a2019-02-20 15:09:28 +0800232 interfaceCfg.ipv4Addr = "";
233 interfaceCfg.prefixLength = 0;
Dmitry Shmidt778ffe42012-06-20 12:59:21 -0700234 } else {
Erik Kline5e69c7f2016-02-05 18:06:15 +0900235 if (addr.s_addr != 0) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800236 interfaceCfg.ipv4Addr = argv[3];
237 PARSE_INT_RETURN_IF_FAIL(cli, argv[4], interfaceCfg.prefixLength,
238 "Failed to set address", true);
239 Status status = mNetd->interfaceSetCfg(interfaceCfg);
240 if (!status.isOk()) {
241 errno = status.serviceSpecificErrorCode();
Erik Kline5e69c7f2016-02-05 18:06:15 +0900242 cli->sendMsg(ResponseCode::OperationFailed, "Failed to set address", true);
Erik Kline5e69c7f2016-02-05 18:06:15 +0900243 return 0;
244 }
245 }
San Mehat5c1b8af2010-01-21 15:37:10 -0800246 }
247
248 /* Process flags */
Dmitry Shmidt778ffe42012-06-20 12:59:21 -0700249 for (int i = index; i < argc; i++) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800250 char* flag = argv[i];
Robert Greenwalte7b94222010-02-18 10:54:08 -0800251 if (!strcmp(flag, "up")) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800252 LOG(LOGLEVEL) << "Trying to bring up " << argv[2];
Luke Huang7720e4a2019-02-20 15:09:28 +0800253 interfaceCfg.flags.push_back(toStdString(INetd::IF_STATE_UP()));
254 Status status = mNetd->interfaceSetCfg(interfaceCfg);
255 if (!status.isOk()) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800256 LOG(LOGLEVEL) << "Error upping interface";
Luke Huang7720e4a2019-02-20 15:09:28 +0800257 errno = status.serviceSpecificErrorCode();
San Mehat5c1b8af2010-01-21 15:37:10 -0800258 cli->sendMsg(ResponseCode::OperationFailed, "Failed to up interface", true);
Irfan Sheriffe734edd2011-06-16 10:28:47 -0700259 ifc_close();
San Mehat5c1b8af2010-01-21 15:37:10 -0800260 return 0;
261 }
Robert Greenwalte7b94222010-02-18 10:54:08 -0800262 } else if (!strcmp(flag, "down")) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800263 LOG(LOGLEVEL) << "Trying to bring down " << argv[2];
Luke Huang7720e4a2019-02-20 15:09:28 +0800264 interfaceCfg.flags.push_back(toStdString(INetd::IF_STATE_DOWN()));
265 Status status = mNetd->interfaceSetCfg(interfaceCfg);
266 if (!status.isOk()) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800267 LOG(LOGLEVEL) << "Error downing interface";
Luke Huang7720e4a2019-02-20 15:09:28 +0800268 errno = status.serviceSpecificErrorCode();
Luke Huangcfd04b22019-03-18 15:53:21 +0800269 cli->sendMsg(ResponseCode::OperationFailed, "Failed to down interface",
270 true);
San Mehat5c1b8af2010-01-21 15:37:10 -0800271 return 0;
272 }
Maciej Żenczykowskidd03cb02020-04-22 09:45:56 -0700273 } else if (!strcmp(flag, "broadcast") || !strcmp(flag, "multicast") ||
274 !strcmp(flag, "running") || !strcmp(flag, "loopback") ||
275 !strcmp(flag, "point-to-point")) {
Jeff Sharkey7c2ddd82011-12-01 15:25:28 -0800276 // currently ignored
San Mehat5c1b8af2010-01-21 15:37:10 -0800277 } else {
278 cli->sendMsg(ResponseCode::CommandParameterError, "Flag unsupported", false);
279 return 0;
280 }
281 }
Irfan Sheriffe734edd2011-06-16 10:28:47 -0700282
San Mehat5c1b8af2010-01-21 15:37:10 -0800283 cli->sendMsg(ResponseCode::CommandOkay, "Interface configuration set", false);
Irfan Sheriffe734edd2011-06-16 10:28:47 -0700284 return 0;
285 } else if (!strcmp(argv[1], "clearaddrs")) {
286 // arglist: iface
Luke Huangcfd04b22019-03-18 15:53:21 +0800287 LOG(LOGLEVEL) << "Clearing all IP addresses on " << argv[2];
Irfan Sheriffe734edd2011-06-16 10:28:47 -0700288
Luke Huang7720e4a2019-02-20 15:09:28 +0800289 mNetd->interfaceClearAddrs(std::string(argv[2]));
Lorenzo Colitti1ed47c42011-09-27 11:10:46 -0700290
Irfan Sheriffe734edd2011-06-16 10:28:47 -0700291 cli->sendMsg(ResponseCode::CommandOkay, "Interface IP addresses cleared", false);
San Mehat5c1b8af2010-01-21 15:37:10 -0800292 return 0;
Irfan Sheriff32a9dc62011-09-14 12:32:47 -0700293 } else if (!strcmp(argv[1], "ipv6privacyextensions")) {
294 if (argc != 4) {
295 cli->sendMsg(ResponseCode::CommandSyntaxError,
Luke Huangcfd04b22019-03-18 15:53:21 +0800296 "Usage: interface ipv6privacyextensions <interface> <enable|disable>",
297 false);
Irfan Sheriff32a9dc62011-09-14 12:32:47 -0700298 return 0;
299 }
Maciej Żenczykowski9a1ca522020-04-22 02:46:40 +0000300 int enable = !strcmp(argv[3], "enable");
Luke Huang7720e4a2019-02-20 15:09:28 +0800301 Status status = mNetd->interfaceSetIPv6PrivacyExtensions(std::string(argv[2]), enable);
302 if (status.isOk()) {
Lorenzo Colitti70afde62013-03-04 17:58:40 +0900303 cli->sendMsg(ResponseCode::CommandOkay, "IPv6 privacy extensions changed", false);
304 } else {
Luke Huang7720e4a2019-02-20 15:09:28 +0800305 errno = status.serviceSpecificErrorCode();
Luke Huangcfd04b22019-03-18 15:53:21 +0800306 cli->sendMsg(ResponseCode::OperationFailed, "Failed to set ipv6 privacy extensions",
307 true);
Irfan Sheriff32a9dc62011-09-14 12:32:47 -0700308 }
Irfan Sheriff32a9dc62011-09-14 12:32:47 -0700309 return 0;
repo syncc1b38702011-09-29 16:10:42 -0700310 } else if (!strcmp(argv[1], "ipv6")) {
311 if (argc != 4) {
312 cli->sendMsg(ResponseCode::CommandSyntaxError,
Luke Huangcfd04b22019-03-18 15:53:21 +0800313 "Usage: interface ipv6 <interface> <enable|disable>", false);
repo syncc1b38702011-09-29 16:10:42 -0700314 return 0;
315 }
316
Maciej Żenczykowski9a1ca522020-04-22 02:46:40 +0000317 int enable = !strcmp(argv[3], "enable");
Luke Huang7720e4a2019-02-20 15:09:28 +0800318 Status status = mNetd->interfaceSetEnableIPv6(std::string(argv[2]), enable);
319 if (status.isOk()) {
Lorenzo Colitti70afde62013-03-04 17:58:40 +0900320 cli->sendMsg(ResponseCode::CommandOkay, "IPv6 state changed", false);
321 } else {
Luke Huang7720e4a2019-02-20 15:09:28 +0800322 errno = status.serviceSpecificErrorCode();
Luke Huangcfd04b22019-03-18 15:53:21 +0800323 cli->sendMsg(ResponseCode::OperationFailed, "Failed to change IPv6 state", true);
repo syncc1b38702011-09-29 16:10:42 -0700324 }
repo syncc1b38702011-09-29 16:10:42 -0700325 return 0;
Dmitry Shmidt6d6c0e62013-06-11 16:18:06 -0700326 } else if (!strcmp(argv[1], "setmtu")) {
327 if (argc != 4) {
328 cli->sendMsg(ResponseCode::CommandSyntaxError,
Luke Huangcfd04b22019-03-18 15:53:21 +0800329 "Usage: interface setmtu <interface> <val>", false);
Dmitry Shmidt6d6c0e62013-06-11 16:18:06 -0700330 return 0;
331 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800332
333 int mtuValue = 0;
334 PARSE_INT_RETURN_IF_FAIL(cli, argv[3], mtuValue, "Failed to set MTU", true);
335 Status status = mNetd->interfaceSetMtu(std::string(argv[2]), mtuValue);
336 if (status.isOk()) {
Dmitry Shmidt6d6c0e62013-06-11 16:18:06 -0700337 cli->sendMsg(ResponseCode::CommandOkay, "MTU changed", false);
338 } else {
Luke Huang7720e4a2019-02-20 15:09:28 +0800339 errno = status.serviceSpecificErrorCode();
Luke Huangcfd04b22019-03-18 15:53:21 +0800340 cli->sendMsg(ResponseCode::OperationFailed, "Failed to set MTU", true);
Dmitry Shmidt6d6c0e62013-06-11 16:18:06 -0700341 }
342 return 0;
San Mehat5c1b8af2010-01-21 15:37:10 -0800343 } else {
344 cli->sendMsg(ResponseCode::CommandSyntaxError, "Unknown interface cmd", false);
345 return 0;
346 }
347 }
San Mehatd1830422010-01-15 08:02:39 -0800348 return 0;
349}
350
Luke Huangcfd04b22019-03-18 15:53:21 +0800351NdcDispatcher::IpFwdCmd::IpFwdCmd() : NdcNetdCommand("ipfwd") {}
San Mehatd1830422010-01-15 08:02:39 -0800352
Luke Huangcfd04b22019-03-18 15:53:21 +0800353int NdcDispatcher::IpFwdCmd::runCommand(NdcClient* cli, int argc, char** argv) const {
Lorenzo Colitti32d76872015-02-26 01:26:53 +0900354 bool matched = false;
Luke Huang7720e4a2019-02-20 15:09:28 +0800355 Status status;
San Mehat9d10b342010-01-18 09:51:02 -0800356
Lorenzo Colitti32d76872015-02-26 01:26:53 +0900357 if (argc == 2) {
358 // 0 1
359 // ipfwd status
360 if (!strcmp(argv[1], "status")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800361 bool ipfwdEnabled;
362 mNetd->ipfwdEnabled(&ipfwdEnabled);
363 std::string msg = StringPrintf("Forwarding %s", ipfwdEnabled ? "enabled" : "disabled");
364 cli->sendMsg(ResponseCode::IpFwdStatusResult, msg.c_str(), false);
Lorenzo Colitti32d76872015-02-26 01:26:53 +0900365 return 0;
366 }
367 } else if (argc == 3) {
368 // 0 1 2
369 // ipfwd enable <requester>
370 // ipfwd disable <requester>
371 if (!strcmp(argv[1], "enable")) {
372 matched = true;
Luke Huang7720e4a2019-02-20 15:09:28 +0800373 status = mNetd->ipfwdEnableForwarding(argv[2]);
Lorenzo Colitti32d76872015-02-26 01:26:53 +0900374 } else if (!strcmp(argv[1], "disable")) {
375 matched = true;
Luke Huang7720e4a2019-02-20 15:09:28 +0800376 status = mNetd->ipfwdDisableForwarding(argv[2]);
Lorenzo Colitti32d76872015-02-26 01:26:53 +0900377 }
378 } else if (argc == 4) {
379 // 0 1 2 3
380 // ipfwd add wlan0 dummy0
381 // ipfwd remove wlan0 dummy0
Lorenzo Colitti32d76872015-02-26 01:26:53 +0900382 if (!strcmp(argv[1], "add")) {
383 matched = true;
Luke Huang7720e4a2019-02-20 15:09:28 +0800384 status = mNetd->ipfwdAddInterfaceForward(argv[2], argv[3]);
Lorenzo Colitti32d76872015-02-26 01:26:53 +0900385 } else if (!strcmp(argv[1], "remove")) {
386 matched = true;
Luke Huang7720e4a2019-02-20 15:09:28 +0800387 status = mNetd->ipfwdRemoveInterfaceForward(argv[2], argv[3]);
Lorenzo Colitti32d76872015-02-26 01:26:53 +0900388 }
San Mehat9d10b342010-01-18 09:51:02 -0800389 }
390
Lorenzo Colitti32d76872015-02-26 01:26:53 +0900391 if (!matched) {
San Mehat9d10b342010-01-18 09:51:02 -0800392 cli->sendMsg(ResponseCode::CommandSyntaxError, "Unknown ipfwd cmd", false);
393 return 0;
394 }
395
Luke Huang7720e4a2019-02-20 15:09:28 +0800396 if (status.isOk()) {
San Mehat9d10b342010-01-18 09:51:02 -0800397 cli->sendMsg(ResponseCode::CommandOkay, "ipfwd operation succeeded", false);
398 } else {
Luke Huang7720e4a2019-02-20 15:09:28 +0800399 errno = status.serviceSpecificErrorCode();
San Mehat9d10b342010-01-18 09:51:02 -0800400 cli->sendMsg(ResponseCode::OperationFailed, "ipfwd operation failed", true);
401 }
San Mehatd1830422010-01-15 08:02:39 -0800402 return 0;
403}
404
Luke Huangcfd04b22019-03-18 15:53:21 +0800405NdcDispatcher::TetherCmd::TetherCmd() : NdcNetdCommand("tether") {}
San Mehatd1830422010-01-15 08:02:39 -0800406
Luke Huangcfd04b22019-03-18 15:53:21 +0800407int NdcDispatcher::TetherCmd::runCommand(NdcClient* cli, int argc, char** argv) const {
Luke Huang7720e4a2019-02-20 15:09:28 +0800408 Status status;
San Mehat9d10b342010-01-18 09:51:02 -0800409
San Mehatd1830422010-01-15 08:02:39 -0800410 if (argc < 2) {
411 cli->sendMsg(ResponseCode::CommandSyntaxError, "Missing argument", false);
412 return 0;
413 }
414
San Mehat9d10b342010-01-18 09:51:02 -0800415 if (!strcmp(argv[1], "stop")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800416 status = mNetd->tetherStop();
San Mehatd1830422010-01-15 08:02:39 -0800417 } else if (!strcmp(argv[1], "status")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800418 bool tetherEnabled;
419 mNetd->tetherIsEnabled(&tetherEnabled);
420 std::string msg =
421 StringPrintf("Tethering services %s", tetherEnabled ? "started" : "stopped");
422 cli->sendMsg(ResponseCode::TetherStatusResult, msg.c_str(), false);
San Mehatd1830422010-01-15 08:02:39 -0800423 return 0;
JP Abgrall36971a62013-03-18 13:04:17 -0700424 } else if (argc == 3) {
425 if (!strcmp(argv[1], "interface") && !strcmp(argv[2], "list")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800426 std::vector<std::string> ifList;
427 mNetd->tetherInterfaceList(&ifList);
428 for (const auto& ifname : ifList) {
Erik Kline2c5aaa12016-06-08 13:24:45 +0900429 cli->sendMsg(ResponseCode::TetherInterfaceListResult, ifname.c_str(), false);
JP Abgrall36971a62013-03-18 13:04:17 -0700430 }
JP Abgrall20f95ed2013-03-15 20:11:56 -0700431 }
Remi NGUYEN VANedbf5f62018-08-06 15:03:18 +0900432 } else if (!strcmp(argv[1], "start")) {
433 if (argc % 2 == 1) {
434 cli->sendMsg(ResponseCode::CommandSyntaxError, "Bad number of arguments", false);
435 return 0;
436 }
437
Luke Huang7720e4a2019-02-20 15:09:28 +0800438 std::vector<std::string> dhcpRanges;
439 // We do the checking of the pairs & addr invalidation in binderService/tetherController.
Remi NGUYEN VANedbf5f62018-08-06 15:03:18 +0900440 for (int arg_index = 2; arg_index < argc; arg_index++) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800441 dhcpRanges.push_back(argv[arg_index]);
Remi NGUYEN VANedbf5f62018-08-06 15:03:18 +0900442 }
443
Luke Huang7720e4a2019-02-20 15:09:28 +0800444 status = mNetd->tetherStart(dhcpRanges);
San Mehat9d10b342010-01-18 09:51:02 -0800445 } else {
446 /*
447 * These commands take a minimum of 4 arguments
448 */
449 if (argc < 4) {
450 cli->sendMsg(ResponseCode::CommandSyntaxError, "Missing argument", false);
451 return 0;
452 }
453
Remi NGUYEN VANedbf5f62018-08-06 15:03:18 +0900454 if (!strcmp(argv[1], "interface")) {
San Mehat9d10b342010-01-18 09:51:02 -0800455 if (!strcmp(argv[2], "add")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800456 status = mNetd->tetherInterfaceAdd(argv[3]);
San Mehat9d10b342010-01-18 09:51:02 -0800457 } else if (!strcmp(argv[2], "remove")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800458 status = mNetd->tetherInterfaceRemove(argv[3]);
459 /* else if (!strcmp(argv[2], "list")) handled above */
San Mehat9d10b342010-01-18 09:51:02 -0800460 } else {
461 cli->sendMsg(ResponseCode::CommandParameterError,
462 "Unknown tether interface operation", false);
463 return 0;
464 }
465 } else if (!strcmp(argv[1], "dns")) {
466 if (!strcmp(argv[2], "set")) {
Lorenzo Colitti667c4772014-08-26 14:13:07 -0700467 if (argc < 5) {
468 cli->sendMsg(ResponseCode::CommandSyntaxError, "Missing argument", false);
469 return 0;
470 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800471 std::vector<std::string> tetherDnsAddrs;
Lorenzo Colitti667c4772014-08-26 14:13:07 -0700472 unsigned netId = stringToNetId(argv[3]);
Luke Huang7720e4a2019-02-20 15:09:28 +0800473 for (int arg_index = 4; arg_index < argc; arg_index++) {
474 tetherDnsAddrs.push_back(argv[arg_index]);
475 }
476 status = mNetd->tetherDnsSet(netId, tetherDnsAddrs);
477 /* else if (!strcmp(argv[2], "list")) handled above */
San Mehat9d10b342010-01-18 09:51:02 -0800478 } else {
479 cli->sendMsg(ResponseCode::CommandParameterError,
480 "Unknown tether interface operation", false);
481 return 0;
482 }
483 } else {
484 cli->sendMsg(ResponseCode::CommandSyntaxError, "Unknown tether cmd", false);
485 return 0;
486 }
487 }
488
Luke Huang7720e4a2019-02-20 15:09:28 +0800489 if (status.isOk()) {
San Mehat9d10b342010-01-18 09:51:02 -0800490 cli->sendMsg(ResponseCode::CommandOkay, "Tether operation succeeded", false);
491 } else {
Luke Huang7720e4a2019-02-20 15:09:28 +0800492 errno = status.serviceSpecificErrorCode();
San Mehat9d10b342010-01-18 09:51:02 -0800493 cli->sendMsg(ResponseCode::OperationFailed, "Tether operation failed", true);
San Mehatd1830422010-01-15 08:02:39 -0800494 }
495
496 return 0;
497}
498
Luke Huangcfd04b22019-03-18 15:53:21 +0800499NdcDispatcher::NatCmd::NatCmd() : NdcNetdCommand("nat") {}
San Mehatd1830422010-01-15 08:02:39 -0800500
Luke Huangcfd04b22019-03-18 15:53:21 +0800501int NdcDispatcher::NatCmd::runCommand(NdcClient* cli, int argc, char** argv) const {
Luke Huang7720e4a2019-02-20 15:09:28 +0800502 Status status;
San Mehat9d10b342010-01-18 09:51:02 -0800503
Robert Greenwaltfc97b822011-11-02 16:48:36 -0700504 if (argc < 5) {
San Mehat9d10b342010-01-18 09:51:02 -0800505 cli->sendMsg(ResponseCode::CommandSyntaxError, "Missing argument", false);
506 return 0;
507 }
508
Sreeram Ramachandran87475a12014-07-15 16:20:28 -0700509 // 0 1 2 3
510 // nat enable intiface extiface
511 // nat disable intiface extiface
512 if (!strcmp(argv[1], "enable") && argc >= 4) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800513 status = mNetd->tetherAddForward(argv[2], argv[3]);
Sreeram Ramachandran87475a12014-07-15 16:20:28 -0700514 } else if (!strcmp(argv[1], "disable") && argc >= 4) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800515 status = mNetd->tetherRemoveForward(argv[2], argv[3]);
San Mehat9d10b342010-01-18 09:51:02 -0800516 } else {
517 cli->sendMsg(ResponseCode::CommandSyntaxError, "Unknown nat cmd", false);
518 return 0;
519 }
520
Luke Huang7720e4a2019-02-20 15:09:28 +0800521 if (status.isOk()) {
San Mehat9d10b342010-01-18 09:51:02 -0800522 cli->sendMsg(ResponseCode::CommandOkay, "Nat operation succeeded", false);
523 } else {
Luke Huang7720e4a2019-02-20 15:09:28 +0800524 errno = status.serviceSpecificErrorCode();
San Mehat9d10b342010-01-18 09:51:02 -0800525 cli->sendMsg(ResponseCode::OperationFailed, "Nat operation failed", true);
526 }
San Mehatd1830422010-01-15 08:02:39 -0800527
528 return 0;
529}
530
Luke Huangcfd04b22019-03-18 15:53:21 +0800531NdcDispatcher::BandwidthControlCmd::BandwidthControlCmd() : NdcNetdCommand("bandwidth") {}
JP Abgrall4a5f5ca2011-06-15 18:37:39 -0700532
Luke Huangcfd04b22019-03-18 15:53:21 +0800533void NdcDispatcher::BandwidthControlCmd::sendGenericSyntaxError(NdcClient* cli,
534 const char* usageMsg) const {
535 char* msg;
JP Abgralldb7da582011-09-18 12:57:32 -0700536 asprintf(&msg, "Usage: bandwidth %s", usageMsg);
537 cli->sendMsg(ResponseCode::CommandSyntaxError, msg, false);
538 free(msg);
539}
540
Luke Huangcfd04b22019-03-18 15:53:21 +0800541void NdcDispatcher::BandwidthControlCmd::sendGenericOkFail(NdcClient* cli, int cond) const {
JP Abgralldb7da582011-09-18 12:57:32 -0700542 if (!cond) {
543 cli->sendMsg(ResponseCode::CommandOkay, "Bandwidth command succeeeded", false);
544 } else {
545 cli->sendMsg(ResponseCode::OperationFailed, "Bandwidth command failed", false);
546 }
547}
548
Luke Huangcfd04b22019-03-18 15:53:21 +0800549void NdcDispatcher::BandwidthControlCmd::sendGenericOpFailed(NdcClient* cli,
550 const char* errMsg) const {
JP Abgralldb7da582011-09-18 12:57:32 -0700551 cli->sendMsg(ResponseCode::OperationFailed, errMsg, false);
552}
553
Luke Huangcfd04b22019-03-18 15:53:21 +0800554int NdcDispatcher::BandwidthControlCmd::runCommand(NdcClient* cli, int argc, char** argv) const {
JP Abgrall4a5f5ca2011-06-15 18:37:39 -0700555 if (argc < 2) {
JP Abgralldb7da582011-09-18 12:57:32 -0700556 sendGenericSyntaxError(cli, "<cmds> <args...>");
JP Abgrall4a5f5ca2011-06-15 18:37:39 -0700557 return 0;
558 }
559
Luke Huangcfd04b22019-03-18 15:53:21 +0800560 LOG(LOGLEVEL) << StringPrintf("bwctrlcmd: argc=%d %s %s ...", argc, argv[0], argv[1]).c_str();
JP Abgrall0dad7c22011-06-24 11:58:14 -0700561
JP Abgralldb7da582011-09-18 12:57:32 -0700562 if (!strcmp(argv[1], "removeiquota") || !strcmp(argv[1], "riq")) {
563 if (argc != 3) {
564 sendGenericSyntaxError(cli, "removeiquota <interface>");
565 return 0;
566 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800567 int rc = !mNetd->bandwidthRemoveInterfaceQuota(argv[2]).isOk();
JP Abgralldb7da582011-09-18 12:57:32 -0700568 sendGenericOkFail(cli, rc);
569 return 0;
JP Abgralldb7da582011-09-18 12:57:32 -0700570 }
571 if (!strcmp(argv[1], "setiquota") || !strcmp(argv[1], "siq")) {
572 if (argc != 4) {
573 sendGenericSyntaxError(cli, "setiquota <interface> <bytes>");
574 return 0;
575 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800576 int64_t bytes = 0;
577 PARSE_INT_RETURN_IF_FAIL(cli, argv[3], bytes, "Bandwidth command failed", false);
578 int rc = !mNetd->bandwidthSetInterfaceQuota(argv[2], bytes).isOk();
JP Abgralldb7da582011-09-18 12:57:32 -0700579 sendGenericOkFail(cli, rc);
580 return 0;
JP Abgralldb7da582011-09-18 12:57:32 -0700581 }
582 if (!strcmp(argv[1], "addnaughtyapps") || !strcmp(argv[1], "ana")) {
583 if (argc < 3) {
584 sendGenericSyntaxError(cli, "addnaughtyapps <appUid> ...");
585 return 0;
586 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800587 int rc = 0;
588 for (int arg_index = 2; arg_index < argc; arg_index++) {
589 uid_t uid = 0;
590 PARSE_UINT_RETURN_IF_FAIL(cli, argv[arg_index], uid, "Bandwidth command failed", false);
591 rc = !mNetd->bandwidthAddNaughtyApp(uid).isOk();
592 if (rc) break;
593 }
JP Abgralldb7da582011-09-18 12:57:32 -0700594 sendGenericOkFail(cli, rc);
595 return 0;
JP Abgralldb7da582011-09-18 12:57:32 -0700596 }
597 if (!strcmp(argv[1], "removenaughtyapps") || !strcmp(argv[1], "rna")) {
598 if (argc < 3) {
599 sendGenericSyntaxError(cli, "removenaughtyapps <appUid> ...");
600 return 0;
601 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800602 int rc = 0;
603 for (int arg_index = 2; arg_index < argc; arg_index++) {
604 uid_t uid = 0;
605 PARSE_UINT_RETURN_IF_FAIL(cli, argv[arg_index], uid, "Bandwidth command failed", false);
606 rc = !mNetd->bandwidthRemoveNaughtyApp(uid).isOk();
607 if (rc) break;
608 }
JP Abgralldb7da582011-09-18 12:57:32 -0700609 sendGenericOkFail(cli, rc);
610 return 0;
JP Abgralle4788732013-07-02 20:28:45 -0700611 }
JP Abgralle4788732013-07-02 20:28:45 -0700612 if (!strcmp(argv[1], "addniceapps") || !strcmp(argv[1], "aha")) {
613 if (argc < 3) {
614 sendGenericSyntaxError(cli, "addniceapps <appUid> ...");
615 return 0;
616 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800617 int rc = 0;
618 for (int arg_index = 2; arg_index < argc; arg_index++) {
619 uid_t uid = 0;
620 PARSE_UINT_RETURN_IF_FAIL(cli, argv[arg_index], uid, "Bandwidth command failed", false);
621 rc = !mNetd->bandwidthAddNiceApp(uid).isOk();
622 if (rc) break;
623 }
JP Abgralle4788732013-07-02 20:28:45 -0700624 sendGenericOkFail(cli, rc);
625 return 0;
626 }
627 if (!strcmp(argv[1], "removeniceapps") || !strcmp(argv[1], "rha")) {
628 if (argc < 3) {
629 sendGenericSyntaxError(cli, "removeniceapps <appUid> ...");
630 return 0;
631 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800632 int rc = 0;
633 for (int arg_index = 2; arg_index < argc; arg_index++) {
634 uid_t uid = 0;
635 PARSE_UINT_RETURN_IF_FAIL(cli, argv[arg_index], uid, "Bandwidth command failed", false);
636 rc = !mNetd->bandwidthRemoveNiceApp(uid).isOk();
637 if (rc) break;
638 }
JP Abgralle4788732013-07-02 20:28:45 -0700639 sendGenericOkFail(cli, rc);
640 return 0;
JP Abgralldb7da582011-09-18 12:57:32 -0700641 }
642 if (!strcmp(argv[1], "setglobalalert") || !strcmp(argv[1], "sga")) {
643 if (argc != 3) {
644 sendGenericSyntaxError(cli, "setglobalalert <bytes>");
645 return 0;
646 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800647 int64_t bytes = 0;
648 PARSE_INT_RETURN_IF_FAIL(cli, argv[2], bytes, "Bandwidth command failed", false);
649 int rc = !mNetd->bandwidthSetGlobalAlert(bytes).isOk();
JP Abgralldb7da582011-09-18 12:57:32 -0700650 sendGenericOkFail(cli, rc);
651 return 0;
JP Abgralldb7da582011-09-18 12:57:32 -0700652 }
JP Abgralldb7da582011-09-18 12:57:32 -0700653 if (!strcmp(argv[1], "setinterfacealert") || !strcmp(argv[1], "sia")) {
654 if (argc != 4) {
655 sendGenericSyntaxError(cli, "setinterfacealert <interface> <bytes>");
656 return 0;
657 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800658 int64_t bytes = 0;
659 PARSE_INT_RETURN_IF_FAIL(cli, argv[3], bytes, "Bandwidth command failed", false);
660 int rc = !mNetd->bandwidthSetInterfaceAlert(argv[2], bytes).isOk();
JP Abgralldb7da582011-09-18 12:57:32 -0700661 sendGenericOkFail(cli, rc);
662 return 0;
JP Abgralldb7da582011-09-18 12:57:32 -0700663 }
664 if (!strcmp(argv[1], "removeinterfacealert") || !strcmp(argv[1], "ria")) {
665 if (argc != 3) {
666 sendGenericSyntaxError(cli, "removeinterfacealert <interface>");
667 return 0;
668 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800669 int rc = !mNetd->bandwidthRemoveInterfaceAlert(argv[2]).isOk();
JP Abgralldb7da582011-09-18 12:57:32 -0700670 sendGenericOkFail(cli, rc);
671 return 0;
JP Abgralldb7da582011-09-18 12:57:32 -0700672 }
JP Abgrall4a5f5ca2011-06-15 18:37:39 -0700673
JP Abgralldb7da582011-09-18 12:57:32 -0700674 cli->sendMsg(ResponseCode::CommandSyntaxError, "Unknown bandwidth cmd", false);
JP Abgrall4a5f5ca2011-06-15 18:37:39 -0700675 return 0;
676}
JP Abgrall0031cea2012-04-17 16:38:23 -0700677
Luke Huangcfd04b22019-03-18 15:53:21 +0800678NdcDispatcher::IdletimerControlCmd::IdletimerControlCmd() : NdcNetdCommand("idletimer") {}
JP Abgrall0031cea2012-04-17 16:38:23 -0700679
Luke Huangcfd04b22019-03-18 15:53:21 +0800680int NdcDispatcher::IdletimerControlCmd::runCommand(NdcClient* cli, int argc, char** argv) const {
681 // TODO(ashish): Change the error statements
JP Abgrall0031cea2012-04-17 16:38:23 -0700682 if (argc < 2) {
683 cli->sendMsg(ResponseCode::CommandSyntaxError, "Missing argument", false);
684 return 0;
685 }
686
Luke Huangcfd04b22019-03-18 15:53:21 +0800687 LOG(LOGLEVEL)
688 << StringPrintf("idletimerctrlcmd: argc=%d %s %s ...", argc, argv[0], argv[1]).c_str();
JP Abgrall0031cea2012-04-17 16:38:23 -0700689
JP Abgrall0031cea2012-04-17 16:38:23 -0700690 if (!strcmp(argv[1], "add")) {
Haoyu Bai98f65d32012-06-28 16:16:51 -0700691 if (argc != 5) {
JP Abgrall0031cea2012-04-17 16:38:23 -0700692 cli->sendMsg(ResponseCode::CommandSyntaxError, "Missing argument", false);
693 return 0;
694 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800695
696 int timeout = 0;
697 PARSE_INT_RETURN_IF_FAIL(cli, argv[3], timeout, "Failed to add interface", false);
698 Status status = mNetd->idletimerAddInterface(argv[2], timeout, argv[4]);
699 if (!status.isOk()) {
waynemaa08e2142018-11-08 10:42:57 +0800700 cli->sendMsg(ResponseCode::OperationFailed, "Failed to add interface", false);
JP Abgrall0031cea2012-04-17 16:38:23 -0700701 } else {
Luke Huangcfd04b22019-03-18 15:53:21 +0800702 cli->sendMsg(ResponseCode::CommandOkay, "Add success", false);
JP Abgrall0031cea2012-04-17 16:38:23 -0700703 }
704 return 0;
705 }
706 if (!strcmp(argv[1], "remove")) {
Haoyu Bai98f65d32012-06-28 16:16:51 -0700707 if (argc != 5) {
JP Abgrall0031cea2012-04-17 16:38:23 -0700708 cli->sendMsg(ResponseCode::CommandSyntaxError, "Missing argument", false);
709 return 0;
710 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800711 int timeout = 0;
712 PARSE_INT_RETURN_IF_FAIL(cli, argv[3], timeout, "Failed to remove interface", false);
713 Status status = mNetd->idletimerRemoveInterface(argv[2], timeout, argv[4]);
714 if (!status.isOk()) {
waynemaa08e2142018-11-08 10:42:57 +0800715 cli->sendMsg(ResponseCode::OperationFailed, "Failed to remove interface", false);
JP Abgrall0031cea2012-04-17 16:38:23 -0700716 } else {
Luke Huangcfd04b22019-03-18 15:53:21 +0800717 cli->sendMsg(ResponseCode::CommandOkay, "Remove success", false);
JP Abgrall0031cea2012-04-17 16:38:23 -0700718 }
719 return 0;
720 }
721
722 cli->sendMsg(ResponseCode::CommandSyntaxError, "Unknown idletimer cmd", false);
723 return 0;
724}
Jeff Sharkeyd8c64022012-07-13 18:04:07 -0700725
Luke Huangcfd04b22019-03-18 15:53:21 +0800726NdcDispatcher::FirewallCmd::FirewallCmd() : NdcNetdCommand("firewall") {}
Jeff Sharkeyd8c64022012-07-13 18:04:07 -0700727
Luke Huangcfd04b22019-03-18 15:53:21 +0800728int NdcDispatcher::FirewallCmd::sendGenericOkFail(NdcClient* cli, int cond) const {
Jeff Sharkeyd8c64022012-07-13 18:04:07 -0700729 if (!cond) {
730 cli->sendMsg(ResponseCode::CommandOkay, "Firewall command succeeded", false);
731 } else {
732 cli->sendMsg(ResponseCode::OperationFailed, "Firewall command failed", false);
733 }
734 return 0;
735}
736
Luke Huangcfd04b22019-03-18 15:53:21 +0800737int NdcDispatcher::FirewallCmd::parseRule(const char* arg) {
Jeff Sharkeyd8c64022012-07-13 18:04:07 -0700738 if (!strcmp(arg, "allow")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800739 return INetd::FIREWALL_RULE_ALLOW;
Amith Yamasani390e4ea2015-04-25 19:08:57 -0700740 } else if (!strcmp(arg, "deny")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800741 return INetd::FIREWALL_RULE_DENY;
Amith Yamasani390e4ea2015-04-25 19:08:57 -0700742 } else {
Luke Huangcfd04b22019-03-18 15:53:21 +0800743 LOG(LOGLEVEL) << "failed to parse uid rule " << arg;
Luke Huang7720e4a2019-02-20 15:09:28 +0800744 return INetd::FIREWALL_RULE_ALLOW;
Amith Yamasani390e4ea2015-04-25 19:08:57 -0700745 }
746}
747
Luke Huangcfd04b22019-03-18 15:53:21 +0800748int NdcDispatcher::FirewallCmd::parseFirewallType(const char* arg) {
Lorenzo Colitticdd79f12020-07-30 12:03:40 +0900749 if (!strcmp(arg, "allowlist")) {
Jooyung Hanf3e8bbc2021-01-07 15:38:40 +0900750 return INetd::FIREWALL_ALLOWLIST;
Lorenzo Colitticdd79f12020-07-30 12:03:40 +0900751 } else if (!strcmp(arg, "denylist")) {
Jooyung Hanf3e8bbc2021-01-07 15:38:40 +0900752 return INetd::FIREWALL_DENYLIST;
Amith Yamasani390e4ea2015-04-25 19:08:57 -0700753 } else {
Luke Huangcfd04b22019-03-18 15:53:21 +0800754 LOG(LOGLEVEL) << "failed to parse firewall type " << arg;
Jooyung Hanf3e8bbc2021-01-07 15:38:40 +0900755 return INetd::FIREWALL_DENYLIST;
Jeff Sharkeyd8c64022012-07-13 18:04:07 -0700756 }
757}
758
Luke Huangcfd04b22019-03-18 15:53:21 +0800759int NdcDispatcher::FirewallCmd::parseChildChain(const char* arg) {
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700760 if (!strcmp(arg, "dozable")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800761 return INetd::FIREWALL_CHAIN_DOZABLE;
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700762 } else if (!strcmp(arg, "standby")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800763 return INetd::FIREWALL_CHAIN_STANDBY;
Felipe Leme3f624342016-02-10 18:12:39 -0800764 } else if (!strcmp(arg, "powersave")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800765 return INetd::FIREWALL_CHAIN_POWERSAVE;
Patrick Rohrfa0036f2020-12-02 16:22:28 +0100766 } else if (!strcmp(arg, "restricted")) {
767 return INetd::FIREWALL_CHAIN_RESTRICTED;
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700768 } else if (!strcmp(arg, "none")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800769 return INetd::FIREWALL_CHAIN_NONE;
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700770 } else {
Luke Huangcfd04b22019-03-18 15:53:21 +0800771 LOG(LOGLEVEL) << "failed to parse child firewall chain " << arg;
Luke Huang7720e4a2019-02-20 15:09:28 +0800772 return -1;
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700773 }
774}
775
Luke Huangcfd04b22019-03-18 15:53:21 +0800776int NdcDispatcher::FirewallCmd::runCommand(NdcClient* cli, int argc, char** argv) const {
Jeff Sharkeyd8c64022012-07-13 18:04:07 -0700777 if (argc < 2) {
778 cli->sendMsg(ResponseCode::CommandSyntaxError, "Missing command", false);
779 return 0;
780 }
781
782 if (!strcmp(argv[1], "enable")) {
Amith Yamasani390e4ea2015-04-25 19:08:57 -0700783 if (argc != 3) {
784 cli->sendMsg(ResponseCode::CommandSyntaxError,
Lorenzo Colitticdd79f12020-07-30 12:03:40 +0900785 "Usage: firewall enable <allowlist|denylist>", false);
Amith Yamasani390e4ea2015-04-25 19:08:57 -0700786 return 0;
787 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800788 int res = !mNetd->firewallSetFirewallType(parseFirewallType(argv[2])).isOk();
Jeff Sharkeyd8c64022012-07-13 18:04:07 -0700789 return sendGenericOkFail(cli, res);
790 }
791
792 if (!strcmp(argv[1], "set_interface_rule")) {
793 if (argc != 4) {
794 cli->sendMsg(ResponseCode::CommandSyntaxError,
795 "Usage: firewall set_interface_rule <rmnet0> <allow|deny>", false);
796 return 0;
797 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800798 int res = !mNetd->firewallSetInterfaceRule(argv[2], parseRule(argv[3])).isOk();
Jeff Sharkeyd8c64022012-07-13 18:04:07 -0700799 return sendGenericOkFail(cli, res);
800 }
801
Jeff Sharkeyd8c64022012-07-13 18:04:07 -0700802 if (!strcmp(argv[1], "set_uid_rule")) {
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700803 if (argc != 5) {
Jeff Sharkeyd8c64022012-07-13 18:04:07 -0700804 cli->sendMsg(ResponseCode::CommandSyntaxError,
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700805 "Usage: firewall set_uid_rule <dozable|standby|none> <1000> <allow|deny>",
Jeff Sharkeyd8c64022012-07-13 18:04:07 -0700806 false);
807 return 0;
808 }
809
Luke Huang7720e4a2019-02-20 15:09:28 +0800810 int childChain = parseChildChain(argv[2]);
811 if (childChain == -1) {
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700812 cli->sendMsg(ResponseCode::CommandSyntaxError,
Luke Huangcfd04b22019-03-18 15:53:21 +0800813 "Invalid chain name. Valid names are: <dozable|standby|none>", false);
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700814 return 0;
815 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800816 uid_t uid = 0;
817 PARSE_UINT_RETURN_IF_FAIL(cli, argv[3], uid, "Firewall command failed", false);
818 int res = !mNetd->firewallSetUidRule(childChain, uid, parseRule(argv[4])).isOk();
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700819 return sendGenericOkFail(cli, res);
820 }
821
822 if (!strcmp(argv[1], "enable_chain")) {
823 if (argc != 3) {
824 cli->sendMsg(ResponseCode::CommandSyntaxError,
Luke Huangcfd04b22019-03-18 15:53:21 +0800825 "Usage: firewall enable_chain <dozable|standby>", false);
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700826 return 0;
827 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800828 int res = !mNetd->firewallEnableChildChain(parseChildChain(argv[2]), true).isOk();
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700829 return sendGenericOkFail(cli, res);
830 }
831
832 if (!strcmp(argv[1], "disable_chain")) {
833 if (argc != 3) {
834 cli->sendMsg(ResponseCode::CommandSyntaxError,
Luke Huangcfd04b22019-03-18 15:53:21 +0800835 "Usage: firewall disable_chain <dozable|standby>", false);
Xiaohui Chen1cdfa9a2015-06-08 16:28:12 -0700836 return 0;
837 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800838 int res = !mNetd->firewallEnableChildChain(parseChildChain(argv[2]), false).isOk();
Jeff Sharkeyd8c64022012-07-13 18:04:07 -0700839 return sendGenericOkFail(cli, res);
840 }
841
842 cli->sendMsg(ResponseCode::CommandSyntaxError, "Unknown command", false);
843 return 0;
844}
Daniel Drown0da73fc2012-06-20 16:51:39 -0500845
Luke Huangcfd04b22019-03-18 15:53:21 +0800846NdcDispatcher::StrictCmd::StrictCmd() : NdcNetdCommand("strict") {}
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700847
Luke Huangcfd04b22019-03-18 15:53:21 +0800848int NdcDispatcher::StrictCmd::sendGenericOkFail(NdcClient* cli, int cond) const {
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700849 if (!cond) {
850 cli->sendMsg(ResponseCode::CommandOkay, "Strict command succeeded", false);
851 } else {
852 cli->sendMsg(ResponseCode::OperationFailed, "Strict command failed", false);
853 }
854 return 0;
855}
856
Luke Huangcfd04b22019-03-18 15:53:21 +0800857int NdcDispatcher::StrictCmd::parsePenalty(const char* arg) {
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700858 if (!strcmp(arg, "reject")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800859 return INetd::PENALTY_POLICY_REJECT;
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700860 } else if (!strcmp(arg, "log")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800861 return INetd::PENALTY_POLICY_LOG;
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700862 } else if (!strcmp(arg, "accept")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800863 return INetd::PENALTY_POLICY_ACCEPT;
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700864 } else {
Luke Huang7720e4a2019-02-20 15:09:28 +0800865 return -1;
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700866 }
867}
868
Luke Huangcfd04b22019-03-18 15:53:21 +0800869int NdcDispatcher::StrictCmd::runCommand(NdcClient* cli, int argc, char** argv) const {
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700870 if (argc < 2) {
871 cli->sendMsg(ResponseCode::CommandSyntaxError, "Missing command", false);
872 return 0;
873 }
874
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700875 if (!strcmp(argv[1], "set_uid_cleartext_policy")) {
876 if (argc != 4) {
877 cli->sendMsg(ResponseCode::CommandSyntaxError,
Luke Huangcfd04b22019-03-18 15:53:21 +0800878 "Usage: strict set_uid_cleartext_policy <uid> <accept|log|reject>", false);
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700879 return 0;
880 }
881
882 errno = 0;
Luke Huang7720e4a2019-02-20 15:09:28 +0800883 uid_t uid = 0;
884 PARSE_UINT_RETURN_IF_FAIL(cli, argv[2], uid, "Invalid UID", false);
885 if (uid > UID_MAX) {
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700886 cli->sendMsg(ResponseCode::CommandSyntaxError, "Invalid UID", false);
887 return 0;
888 }
889
Luke Huang7720e4a2019-02-20 15:09:28 +0800890 int penalty = parsePenalty(argv[3]);
891 if (penalty == -1) {
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700892 cli->sendMsg(ResponseCode::CommandSyntaxError, "Invalid penalty argument", false);
893 return 0;
894 }
895
Luke Huang7720e4a2019-02-20 15:09:28 +0800896 int res = !mNetd->strictUidCleartextPenalty(uid, penalty).isOk();
Jeff Sharkeyfbe497f2014-10-28 16:50:07 -0700897 return sendGenericOkFail(cli, res);
898 }
899
900 cli->sendMsg(ResponseCode::CommandSyntaxError, "Unknown command", false);
901 return 0;
902}
903
Luke Huangcfd04b22019-03-18 15:53:21 +0800904NdcDispatcher::NetworkCommand::NetworkCommand() : NdcNetdCommand("network") {}
Sreeram Ramachandrand736d4b2014-03-26 18:33:47 -0700905
Luke Huangcfd04b22019-03-18 15:53:21 +0800906int NdcDispatcher::NetworkCommand::syntaxError(NdcClient* cli, const char* message) const {
907 cli->sendMsg(ResponseCode::CommandSyntaxError, message, false);
Sreeram Ramachandrand736d4b2014-03-26 18:33:47 -0700908 return 0;
909}
910
Luke Huangcfd04b22019-03-18 15:53:21 +0800911int NdcDispatcher::NetworkCommand::operationError(NdcClient* cli, const char* message,
912 int ret) const {
Luke Huang7720e4a2019-02-20 15:09:28 +0800913 errno = ret;
Luke Huangcfd04b22019-03-18 15:53:21 +0800914 cli->sendMsg(ResponseCode::OperationFailed, message, true);
Sreeram Ramachandran5c181bf2014-04-07 14:10:04 -0700915 return 0;
916}
917
Luke Huangcfd04b22019-03-18 15:53:21 +0800918int NdcDispatcher::NetworkCommand::success(NdcClient* cli) const {
919 cli->sendMsg(ResponseCode::CommandOkay, "success", false);
Sreeram Ramachandran5c181bf2014-04-07 14:10:04 -0700920 return 0;
921}
922
Luke Huangcfd04b22019-03-18 15:53:21 +0800923int NdcDispatcher::NetworkCommand::runCommand(NdcClient* cli, int argc, char** argv) const {
Sreeram Ramachandrand736d4b2014-03-26 18:33:47 -0700924 if (argc < 2) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800925 return syntaxError(cli, "Missing argument");
Sreeram Ramachandrand736d4b2014-03-26 18:33:47 -0700926 }
Sreeram Ramachandran5c181bf2014-04-07 14:10:04 -0700927
Lorenzo Colitti4c95a122014-09-18 16:01:50 +0900928 // 0 1 2 3 4 5 6 7 8
929 // network route [legacy <uid>] add <netId> <interface> <destination> [nexthop]
930 // network route [legacy <uid>] remove <netId> <interface> <destination> [nexthop]
931 //
932 // nexthop may be either an IPv4/IPv6 address or one of "unreachable" or "throw".
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -0700933 if (!strcmp(argv[1], "route")) {
934 if (argc < 6 || argc > 9) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800935 return syntaxError(cli, "Incorrect number of arguments");
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -0700936 }
937
938 int nextArg = 2;
939 bool legacy = false;
940 uid_t uid = 0;
941 if (!strcmp(argv[nextArg], "legacy")) {
942 ++nextArg;
943 legacy = true;
Luke Huangcfd04b22019-03-18 15:53:21 +0800944 PARSE_UINT_RETURN_IF_FAIL(cli, argv[nextArg++], uid, "Unknown argument", false);
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -0700945 }
946
947 bool add = false;
948 if (!strcmp(argv[nextArg], "add")) {
949 add = true;
Maciej Żenczykowski85eaa8b2020-04-21 19:33:12 -0700950 } else if (strcmp(argv[nextArg], "remove") != 0) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800951 return syntaxError(cli, "Unknown argument");
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -0700952 }
953 ++nextArg;
954
Sreeram Ramachandrande5d5df2014-07-26 18:43:25 -0700955 if (argc < nextArg + 3 || argc > nextArg + 4) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800956 return syntaxError(cli, "Incorrect number of arguments");
Sreeram Ramachandrande5d5df2014-07-26 18:43:25 -0700957 }
958
Sreeram Ramachandran87475a12014-07-15 16:20:28 -0700959 unsigned netId = stringToNetId(argv[nextArg++]);
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -0700960 const char* interface = argv[nextArg++];
961 const char* destination = argv[nextArg++];
Luke Huang7720e4a2019-02-20 15:09:28 +0800962 const char* nexthop = argc > nextArg ? argv[nextArg] : "";
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -0700963
Luke Huang7720e4a2019-02-20 15:09:28 +0800964 Status status;
965 if (legacy) {
966 status = add ? mNetd->networkAddLegacyRoute(netId, interface, destination, nexthop, uid)
967
968 : mNetd->networkRemoveLegacyRoute(netId, interface, destination, nexthop,
969 uid);
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -0700970 } else {
Luke Huang7720e4a2019-02-20 15:09:28 +0800971 status = add ? mNetd->networkAddRoute(netId, interface, destination, nexthop)
972 : mNetd->networkRemoveRoute(netId, interface, destination, nexthop);
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -0700973 }
Luke Huang7720e4a2019-02-20 15:09:28 +0800974
975 if (!status.isOk()) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800976 return operationError(cli, add ? "addRoute() failed" : "removeRoute() failed",
Luke Huang7720e4a2019-02-20 15:09:28 +0800977 status.serviceSpecificErrorCode());
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -0700978 }
979
Luke Huangcfd04b22019-03-18 15:53:21 +0800980 return success(cli);
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -0700981 }
982
Sreeram Ramachandran87475a12014-07-15 16:20:28 -0700983 // 0 1 2 3 4
984 // network interface add <netId> <interface>
985 // network interface remove <netId> <interface>
986 if (!strcmp(argv[1], "interface")) {
987 if (argc != 5) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800988 return syntaxError(cli, "Missing argument");
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -0700989 }
Sreeram Ramachandran87475a12014-07-15 16:20:28 -0700990 unsigned netId = stringToNetId(argv[3]);
991 if (!strcmp(argv[2], "add")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800992 if (Status status = mNetd->networkAddInterface(netId, argv[4]); !status.isOk()) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800993 return operationError(cli, "addInterfaceToNetwork() failed",
Luke Huang7720e4a2019-02-20 15:09:28 +0800994 status.serviceSpecificErrorCode());
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -0700995 }
Sreeram Ramachandran87475a12014-07-15 16:20:28 -0700996 } else if (!strcmp(argv[2], "remove")) {
Luke Huang7720e4a2019-02-20 15:09:28 +0800997 if (Status status = mNetd->networkRemoveInterface(netId, argv[4]); !status.isOk()) {
Luke Huangcfd04b22019-03-18 15:53:21 +0800998 return operationError(cli, "removeInterfaceFromNetwork() failed",
Luke Huang7720e4a2019-02-20 15:09:28 +0800999 status.serviceSpecificErrorCode());
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -07001000 }
Sreeram Ramachandran87475a12014-07-15 16:20:28 -07001001 } else {
Luke Huangcfd04b22019-03-18 15:53:21 +08001002 return syntaxError(cli, "Unknown argument");
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -07001003 }
Luke Huangcfd04b22019-03-18 15:53:21 +08001004 return success(cli);
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -07001005 }
1006
Sreeram Ramachandraned4bd1f2014-07-05 12:31:05 -07001007 // 0 1 2 3
1008 // network create <netId> [permission]
Sreeram Ramachandran4043f012014-06-23 12:41:37 -07001009 //
cken67cd14c2018-12-05 17:26:59 +09001010 // 0 1 2 3 4
1011 // network create <netId> vpn <secure>
Sreeram Ramachandrand736d4b2014-03-26 18:33:47 -07001012 if (!strcmp(argv[1], "create")) {
Paul Jensenae37e8a2014-04-28 10:35:51 -04001013 if (argc < 3) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001014 return syntaxError(cli, "Missing argument");
Sreeram Ramachandrand736d4b2014-03-26 18:33:47 -07001015 }
Sreeram Ramachandran87475a12014-07-15 16:20:28 -07001016 unsigned netId = stringToNetId(argv[2]);
Ken Chen6e76dda2021-04-12 14:08:22 +08001017 if (argc == 5 && !strcmp(argv[3], "vpn")) {
cken67cd14c2018-12-05 17:26:59 +09001018 bool secure = strtol(argv[4], nullptr, 2);
Ken Chenab5f3472021-04-04 11:28:06 +08001019#pragma clang diagnostic push
1020#pragma clang diagnostic ignored "-Wdeprecated-declarations"
Luke Huang7720e4a2019-02-20 15:09:28 +08001021 if (Status status = mNetd->networkCreateVpn(netId, secure); !status.isOk()) {
Ken Chenab5f3472021-04-04 11:28:06 +08001022#pragma clang diagnostic pop
Luke Huangcfd04b22019-03-18 15:53:21 +08001023 return operationError(cli, "createVirtualNetwork() failed",
Luke Huang7720e4a2019-02-20 15:09:28 +08001024 status.serviceSpecificErrorCode());
Sreeram Ramachandran4043f012014-06-23 12:41:37 -07001025 }
Sreeram Ramachandraned4bd1f2014-07-05 12:31:05 -07001026 } else if (argc > 4) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001027 return syntaxError(cli, "Unknown trailing argument(s)");
Sreeram Ramachandran4043f012014-06-23 12:41:37 -07001028 } else {
Luke Huang7720e4a2019-02-20 15:09:28 +08001029 int permission = INetd::PERMISSION_NONE;
Sreeram Ramachandraned4bd1f2014-07-05 12:31:05 -07001030 if (argc == 4) {
Luke Huang7720e4a2019-02-20 15:09:28 +08001031 permission = stringToINetdPermission(argv[3]);
1032 if (permission == INetd::PERMISSION_NONE) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001033 return syntaxError(cli, "Unknown permission");
Sreeram Ramachandraned4bd1f2014-07-05 12:31:05 -07001034 }
Sreeram Ramachandran4043f012014-06-23 12:41:37 -07001035 }
Ken Chenab5f3472021-04-04 11:28:06 +08001036#pragma clang diagnostic push
1037#pragma clang diagnostic ignored "-Wdeprecated-declarations"
Luke Huang7720e4a2019-02-20 15:09:28 +08001038 if (Status status = mNetd->networkCreatePhysical(netId, permission); !status.isOk()) {
Ken Chenab5f3472021-04-04 11:28:06 +08001039#pragma clang diagnostic pop
Luke Huangcfd04b22019-03-18 15:53:21 +08001040 return operationError(cli, "createPhysicalNetwork() failed",
Luke Huang7720e4a2019-02-20 15:09:28 +08001041 status.serviceSpecificErrorCode());
Sreeram Ramachandran4043f012014-06-23 12:41:37 -07001042 }
Sreeram Ramachandran5c181bf2014-04-07 14:10:04 -07001043 }
Luke Huangcfd04b22019-03-18 15:53:21 +08001044 return success(cli);
Sreeram Ramachandrand736d4b2014-03-26 18:33:47 -07001045 }
Sreeram Ramachandran5c181bf2014-04-07 14:10:04 -07001046
Sreeram Ramachandrand736d4b2014-03-26 18:33:47 -07001047 // 0 1 2
1048 // network destroy <netId>
1049 if (!strcmp(argv[1], "destroy")) {
Sreeram Ramachandran379bd332014-04-10 19:58:06 -07001050 if (argc != 3) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001051 return syntaxError(cli, "Incorrect number of arguments");
Sreeram Ramachandrand736d4b2014-03-26 18:33:47 -07001052 }
Sreeram Ramachandran87475a12014-07-15 16:20:28 -07001053 unsigned netId = stringToNetId(argv[2]);
Erik Klinec8b6a9c2018-01-15 17:06:48 +09001054 // Both of these functions manage their own locking internally.
Luke Huang7720e4a2019-02-20 15:09:28 +08001055 if (Status status = mNetd->networkDestroy(netId); !status.isOk()) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001056 return operationError(cli, "destroyNetwork() failed",
Luke Huang7720e4a2019-02-20 15:09:28 +08001057 status.serviceSpecificErrorCode());
Sreeram Ramachandran5c181bf2014-04-07 14:10:04 -07001058 }
Luke Huangdfe3f0a2019-04-09 17:54:09 +08001059 mDnsResolver->destroyNetworkCache(netId);
Luke Huangcfd04b22019-03-18 15:53:21 +08001060 return success(cli);
Sreeram Ramachandrand736d4b2014-03-26 18:33:47 -07001061 }
Sreeram Ramachandran5c181bf2014-04-07 14:10:04 -07001062
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -07001063 // 0 1 2 3
1064 // network default set <netId>
1065 // network default clear
1066 if (!strcmp(argv[1], "default")) {
1067 if (argc < 3) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001068 return syntaxError(cli, "Missing argument");
Paul Jensenae37e8a2014-04-28 10:35:51 -04001069 }
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -07001070 unsigned netId = NETID_UNSET;
1071 if (!strcmp(argv[2], "set")) {
1072 if (argc < 4) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001073 return syntaxError(cli, "Missing netId");
Paul Jensenae37e8a2014-04-28 10:35:51 -04001074 }
Sreeram Ramachandran87475a12014-07-15 16:20:28 -07001075 netId = stringToNetId(argv[3]);
Maciej Żenczykowski85eaa8b2020-04-21 19:33:12 -07001076 } else if (strcmp(argv[2], "clear") != 0) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001077 return syntaxError(cli, "Unknown argument");
Sreeram Ramachandranf4f6c8d2014-06-23 09:54:06 -07001078 }
Luke Huang33a92792019-05-28 16:59:25 +08001079 if (Status status = mNetd->networkSetDefault(netId); !status.isOk()) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001080 return operationError(cli, "setDefaultNetwork() failed",
Luke Huang7720e4a2019-02-20 15:09:28 +08001081 status.serviceSpecificErrorCode());
Paul Jensenae37e8a2014-04-28 10:35:51 -04001082 }
Luke Huangcfd04b22019-03-18 15:53:21 +08001083 return success(cli);
Paul Jensenae37e8a2014-04-28 10:35:51 -04001084 }
1085
Sreeram Ramachandraned4bd1f2014-07-05 12:31:05 -07001086 // 0 1 2 3 4 5
1087 // network permission user set <permission> <uid> ...
1088 // network permission user clear <uid> ...
1089 // network permission network set <permission> <netId> ...
1090 // network permission network clear <netId> ...
Sreeram Ramachandran379bd332014-04-10 19:58:06 -07001091 if (!strcmp(argv[1], "permission")) {
1092 if (argc < 5) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001093 return syntaxError(cli, "Missing argument");
Sreeram Ramachandran379bd332014-04-10 19:58:06 -07001094 }
1095 int nextArg = 4;
Luke Huang7720e4a2019-02-20 15:09:28 +08001096 int permission = INetd::PERMISSION_NONE;
Sreeram Ramachandran379bd332014-04-10 19:58:06 -07001097 if (!strcmp(argv[3], "set")) {
Luke Huang7720e4a2019-02-20 15:09:28 +08001098 permission = stringToINetdPermission(argv[4]);
1099 if (permission == INetd::PERMISSION_NONE) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001100 return syntaxError(cli, "Unknown permission");
Sreeram Ramachandraned4bd1f2014-07-05 12:31:05 -07001101 }
1102 nextArg = 5;
Maciej Żenczykowski85eaa8b2020-04-21 19:33:12 -07001103 } else if (strcmp(argv[3], "clear") != 0) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001104 return syntaxError(cli, "Unknown argument");
Sreeram Ramachandran379bd332014-04-10 19:58:06 -07001105 }
Sreeram Ramachandraned4bd1f2014-07-05 12:31:05 -07001106 if (nextArg == argc) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001107 return syntaxError(cli, "Missing id");
Sreeram Ramachandraned4bd1f2014-07-05 12:31:05 -07001108 }
Erik Kline9adc9f32015-01-20 13:36:05 +09001109
1110 bool userPermissions = !strcmp(argv[2], "user");
1111 bool networkPermissions = !strcmp(argv[2], "network");
1112 if (!userPermissions && !networkPermissions) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001113 return syntaxError(cli, "Unknown argument");
Erik Kline9adc9f32015-01-20 13:36:05 +09001114 }
1115
Luke Huang7720e4a2019-02-20 15:09:28 +08001116 std::vector<int32_t> ids;
Sreeram Ramachandran379bd332014-04-10 19:58:06 -07001117 for (; nextArg < argc; ++nextArg) {
Erik Kline9adc9f32015-01-20 13:36:05 +09001118 if (userPermissions) {
1119 char* endPtr;
1120 unsigned id = strtoul(argv[nextArg], &endPtr, 0);
1121 if (!*argv[nextArg] || *endPtr) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001122 return syntaxError(cli, "Invalid id");
Erik Kline9adc9f32015-01-20 13:36:05 +09001123 }
1124 ids.push_back(id);
1125 } else {
1126 // networkPermissions
1127 ids.push_back(stringToNetId(argv[nextArg]));
Sreeram Ramachandran379bd332014-04-10 19:58:06 -07001128 }
Sreeram Ramachandran379bd332014-04-10 19:58:06 -07001129 }
Erik Kline9adc9f32015-01-20 13:36:05 +09001130 if (userPermissions) {
Luke Huang7720e4a2019-02-20 15:09:28 +08001131 mNetd->networkSetPermissionForUser(permission, ids);
Erik Kline9adc9f32015-01-20 13:36:05 +09001132 } else {
1133 // networkPermissions
Luke Huang7720e4a2019-02-20 15:09:28 +08001134 for (auto netId : ids) {
1135 Status status = mNetd->networkSetPermissionForNetwork(netId, permission);
1136 if (!status.isOk())
Luke Huangcfd04b22019-03-18 15:53:21 +08001137 return operationError(cli, "setPermissionForNetworks() failed",
Luke Huang7720e4a2019-02-20 15:09:28 +08001138 status.serviceSpecificErrorCode());
Sreeram Ramachandran379bd332014-04-10 19:58:06 -07001139 }
Sreeram Ramachandran379bd332014-04-10 19:58:06 -07001140 }
Erik Kline9adc9f32015-01-20 13:36:05 +09001141
Luke Huangcfd04b22019-03-18 15:53:21 +08001142 return success(cli);
Sreeram Ramachandran379bd332014-04-10 19:58:06 -07001143 }
1144
Sreeram Ramachandranb1425cc2014-06-23 18:54:27 -07001145 // 0 1 2 3 4
1146 // network users add <netId> [<uid>[-<uid>]] ...
1147 // network users remove <netId> [<uid>[-<uid>]] ...
1148 if (!strcmp(argv[1], "users")) {
1149 if (argc < 4) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001150 return syntaxError(cli, "Missing argument");
Sreeram Ramachandranb1425cc2014-06-23 18:54:27 -07001151 }
Sreeram Ramachandran87475a12014-07-15 16:20:28 -07001152 unsigned netId = stringToNetId(argv[3]);
Sreeram Ramachandranb1425cc2014-06-23 18:54:27 -07001153 UidRanges uidRanges;
1154 if (!uidRanges.parseFrom(argc - 4, argv + 4)) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001155 return syntaxError(cli, "Invalid UIDs");
Sreeram Ramachandranb1425cc2014-06-23 18:54:27 -07001156 }
1157 if (!strcmp(argv[2], "add")) {
Luke Huang7720e4a2019-02-20 15:09:28 +08001158 if (Status status = mNetd->networkAddUidRanges(netId, uidRanges.getRanges());
1159 !status.isOk()) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001160 return operationError(cli, "addUsersToNetwork() failed",
Luke Huang7720e4a2019-02-20 15:09:28 +08001161 status.serviceSpecificErrorCode());
Sreeram Ramachandranb1425cc2014-06-23 18:54:27 -07001162 }
1163 } else if (!strcmp(argv[2], "remove")) {
Luke Huang7720e4a2019-02-20 15:09:28 +08001164 if (Status status = mNetd->networkRemoveUidRanges(netId, uidRanges.getRanges());
1165 !status.isOk()) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001166 return operationError(cli, "removeUsersFromNetwork() failed",
Luke Huang7720e4a2019-02-20 15:09:28 +08001167 status.serviceSpecificErrorCode());
Sreeram Ramachandranb1425cc2014-06-23 18:54:27 -07001168 }
1169 } else {
Luke Huangcfd04b22019-03-18 15:53:21 +08001170 return syntaxError(cli, "Unknown argument");
Sreeram Ramachandranb1425cc2014-06-23 18:54:27 -07001171 }
Luke Huangcfd04b22019-03-18 15:53:21 +08001172 return success(cli);
Sreeram Ramachandranb1425cc2014-06-23 18:54:27 -07001173 }
1174
Sreeram Ramachandran89dad012014-07-02 10:09:49 -07001175 // 0 1 2 3
1176 // network protect allow <uid> ...
1177 // network protect deny <uid> ...
1178 if (!strcmp(argv[1], "protect")) {
1179 if (argc < 4) {
Luke Huangcfd04b22019-03-18 15:53:21 +08001180 return syntaxError(cli, "Missing argument");
Sreeram Ramachandran89dad012014-07-02 10:09:49 -07001181 }
1182 std::vector<uid_t> uids;
1183 for (int i = 3; i < argc; ++i) {
Luke Huang7720e4a2019-02-20 15:09:28 +08001184 uid_t uid = 0;
Luke Huangcfd04b22019-03-18 15:53:21 +08001185 PARSE_UINT_RETURN_IF_FAIL(cli, argv[i], uid, "Unknown argument", false);
Luke Huang7720e4a2019-02-20 15:09:28 +08001186 uids.push_back(uid);
Sreeram Ramachandran89dad012014-07-02 10:09:49 -07001187 }
1188 if (!strcmp(argv[2], "allow")) {
Luke Huang7720e4a2019-02-20 15:09:28 +08001189 for (auto uid : uids) {
1190 mNetd->networkSetProtectAllow(uid);
1191 }
Sreeram Ramachandran89dad012014-07-02 10:09:49 -07001192 } else if (!strcmp(argv[2], "deny")) {
Luke Huang7720e4a2019-02-20 15:09:28 +08001193 for (auto uid : uids) {
1194 mNetd->networkSetProtectDeny(uid);
1195 }
Sreeram Ramachandran89dad012014-07-02 10:09:49 -07001196 } else {
Luke Huangcfd04b22019-03-18 15:53:21 +08001197 return syntaxError(cli, "Unknown argument");
Sreeram Ramachandran89dad012014-07-02 10:09:49 -07001198 }
Luke Huangcfd04b22019-03-18 15:53:21 +08001199 return success(cli);
Sreeram Ramachandran89dad012014-07-02 10:09:49 -07001200 }
1201
Luke Huangcfd04b22019-03-18 15:53:21 +08001202 return syntaxError(cli, "Unknown argument");
Sreeram Ramachandrand736d4b2014-03-26 18:33:47 -07001203}
Lorenzo Colitti7035f222017-02-13 18:29:00 +09001204
1205} // namespace net
1206} // namespace android