add uci support for "proxy-dnssec" in dnsmasq
[openwrt.git] / package / network / services / dnsmasq / files / dnsmasq.init
1 #!/bin/sh /etc/rc.common
2 # Copyright (C) 2007-2012 OpenWrt.org
3
4 START=60
5
6 SERVICE_USE_PID=1
7
8 DNS_SERVERS=""
9 DOMAIN=""
10
11 ADD_LOCAL_DOMAIN=1
12 ADD_LOCAL_HOSTNAME=1
13
14 CONFIGFILE="/var/etc/dnsmasq.conf"
15
16 xappend() {
17         local value="$1"
18
19         echo "${value#--}" >> $CONFIGFILE
20 }
21
22 dhcp_calc() {
23         local ip="$1"
24         local res=0
25
26         while [ -n "$ip" ]; do
27                 part="${ip%%.*}"
28                 res="$(($res * 256))"
29                 res="$(($res + $part))"
30                 [ "${ip%.*}" != "$ip" ] && ip="${ip#*.}" || ip=
31         done
32         echo "$res"
33 }
34
35 append_bool() {
36         local section="$1"
37         local option="$2"
38         local value="$3"
39         local _loctmp
40         config_get_bool _loctmp "$section" "$option" 0
41         [ $_loctmp -gt 0 ] && xappend "$value"
42 }
43
44 append_parm() {
45         local section="$1"
46         local option="$2"
47         local switch="$3"
48         local _loctmp
49         config_get _loctmp "$section" "$option"
50         [ -z "$_loctmp" ] && return 0
51         xappend "$switch=$_loctmp"
52 }
53
54 append_server() {
55         xappend "--server=$1"
56 }
57
58 append_address() {
59         xappend "--address=$1"
60 }
61
62 append_interface() {
63         local ifname=$(uci_get_state network "$1" ifname "$1")
64         xappend "--interface=$ifname"
65 }
66
67 append_notinterface() {
68         local ifname=$(uci_get_state network "$1" ifname "$1")
69         xappend "--except-interface=$ifname"
70 }
71
72 append_addnhosts() {
73         xappend "--addn-hosts=$1"
74 }
75
76 append_bogusnxdomain() {
77        xappend "--bogus-nxdomain=$1"
78 }
79
80 dnsmasq() {
81         local cfg="$1"
82         append_bool "$cfg" authoritative "--dhcp-authoritative"
83         append_bool "$cfg" nodaemon "--no-daemon"
84         append_bool "$cfg" domainneeded "--domain-needed"
85         append_bool "$cfg" filterwin2k "--filterwin2k"
86         append_bool "$cfg" nohosts "--no-hosts"
87         append_bool "$cfg" nonegcache "--no-negcache"
88         append_bool "$cfg" strictorder "--strict-order"
89         append_bool "$cfg" logqueries "--log-queries"
90         append_bool "$cfg" noresolv "--no-resolv"
91         append_bool "$cfg" localise_queries "--localise-queries"
92         append_bool "$cfg" readethers "--read-ethers"
93         append_bool "$cfg" dbus "--enable-dbus"
94         append_bool "$cfg" boguspriv "--bogus-priv"
95         append_bool "$cfg" expandhosts "--expand-hosts"
96         append_bool "$cfg" enable_tftp "--enable-tftp"
97         append_bool "$cfg" nonwildcard "--bind-interfaces"
98         append_bool "$cfg" fqdn "--dhcp-fqdn"
99         append_bool "$cfg" proxydnssec "--proxy-dnssec"
100
101         append_parm "$cfg" dhcpscript "--dhcp-script"
102         append_parm "$cfg" cachesize "--cache-size"
103         append_parm "$cfg" dnsforwardmax "--dns-forward-max"
104         append_parm "$cfg" port "--port"
105         append_parm "$cfg" ednspacket_max "--edns-packet-max"
106         append_parm "$cfg" dhcpleasemax "--dhcp-lease-max"
107         append_parm "$cfg" "queryport" "--query-port"
108         append_parm "$cfg" "domain" "--domain"
109         append_parm "$cfg" "local" "--server"
110         config_list_foreach "$cfg" "server" append_server
111         config_list_foreach "$cfg" "address" append_address
112         config_list_foreach "$cfg" "interface" append_interface
113         config_list_foreach "$cfg" "notinterface" append_notinterface
114         config_list_foreach "$cfg" "addnhosts" append_addnhosts
115         config_list_foreach "$cfg" "bogusnxdomain" append_bogusnxdomain
116         append_parm "$cfg" "leasefile" "--dhcp-leasefile"
117         append_parm "$cfg" "resolvfile" "--resolv-file"
118         append_parm "$cfg" "tftp_root" "--tftp-root"
119         append_parm "$cfg" "dhcp_boot" "--dhcp-boot"
120         append_parm "$cfg" "local_ttl" "--local-ttl"
121
122         config_get DOMAIN "$cfg" domain
123
124         config_get_bool ADD_LOCAL_DOMAIN "$cfg" add_local_domain 1
125         config_get_bool ADD_LOCAL_HOSTNAME "$cfg" add_local_hostname 1
126
127         config_get_bool readethers "$cfg" readethers
128         [ "$readethers" = "1" -a \! -e "/etc/ethers" ] && touch /etc/ethers
129
130         config_get leasefile $cfg leasefile
131         [ -n "$leasefile" -a \! -e "$leasefile" ] && touch "$leasefile"
132         config_get_bool cachelocal "$cfg" cachelocal 1
133
134         config_get hostsfile "$cfg" dhcphostsfile
135         [ -e "$hostsfile" ] && xappend "--dhcp-hostsfile=$hostsfile"
136
137         local rebind
138         config_get_bool rebind "$cfg" rebind_protection 1
139         [ $rebind -gt 0 ] && {
140                 logger -t dnsmasq \
141                         "DNS rebinding protection is active," \
142                         "will discard upstream RFC1918 responses!"
143                 xappend "--stop-dns-rebind"
144
145                 local rebind_localhost
146                 config_get_bool rebind_localhost "$cfg" rebind_localhost 0
147                 [ $rebind_localhost -gt 0 ] && {
148                         logger -t dnsmasq "Allowing 127.0.0.0/8 responses"
149                         xappend "--rebind-localhost-ok"
150                 }
151
152                 append_rebind_domain() {
153                         logger -t dnsmasq "Allowing RFC1918 responses for domain $1"
154                         xappend "--rebind-domain-ok=$1"
155                 }
156
157                 config_list_foreach "$cfg" rebind_domain append_rebind_domain
158         }
159
160         dhcp_option_add "$cfg" "" 0
161
162         echo >> $CONFIGFILE
163 }
164
165 dhcp_subscrid_add() {
166         local cfg="$1"
167
168         config_get networkid "$cfg" networkid
169         [ -n "$networkid" ] || return 0
170
171         config_get subscriberid "$cfg" subscriberid
172         [ -n "$subscriberid" ] || return 0
173
174         xappend "--dhcp-subscrid=$networkid,$subscriberid"
175
176         config_get_bool force "$cfg" force 0
177
178         dhcp_option_add "$cfg" "$networkid" "$force"
179 }
180
181 dhcp_remoteid_add() {
182         local cfg="$1"
183
184         config_get networkid "$cfg" networkid
185         [ -n "$networkid" ] || return 0
186
187         config_get remoteid "$cfg" remoteid
188         [ -n "$remoteid" ] || return 0
189
190         xappend "--dhcp-remoteid=$networkid,$remoteid"
191
192         config_get_bool force "$cfg" force 0
193
194         dhcp_option_add "$cfg" "$networkid" "$force"
195 }
196
197 dhcp_circuitid_add() {
198         local cfg="$1"
199
200         config_get networkid "$cfg" networkid
201         [ -n "$networkid" ] || return 0
202
203         config_get circuitid "$cfg" circuitid
204         [ -n "$circuitid" ] || return 0
205
206         xappend "--dhcp-circuitid=$networkid,$circuitid"
207
208         config_get_bool force "$cfg" force 0
209
210         dhcp_option_add "$cfg" "$networkid" "$force"
211 }
212
213 dhcp_userclass_add() {
214         local cfg="$1"
215
216         config_get networkid "$cfg" networkid
217         [ -n "$networkid" ] || return 0
218
219         config_get userclass "$cfg" userclass
220         [ -n "$userclass" ] || return 0
221
222         xappend "--dhcp-userclass=$networkid,$userclass"
223
224         config_get_bool force "$cfg" force 0
225
226         dhcp_option_add "$cfg" "$networkid" "$force"
227 }
228
229 dhcp_vendorclass_add() {
230         local cfg="$1"
231
232         config_get networkid "$cfg" networkid
233         [ -n "$networkid" ] || return 0
234
235         config_get vendorclass "$cfg" vendorclass
236         [ -n "$vendorclass" ] || return 0
237
238         xappend "--dhcp-vendorclass=$networkid,$vendorclass"
239
240         config_get_bool force "$cfg" force 0
241
242         dhcp_option_add "$cfg" "$networkid" "$force"
243 }
244
245 dhcp_host_add() {
246         local cfg="$1"
247
248         config_get_bool force "$cfg" force 0
249
250         config_get networkid "$cfg" networkid
251         [ -n "$networkid" ] && dhcp_option_add "$cfg" "$networkid" "$force"
252
253         config_get name "$cfg" name
254         config_get ip "$cfg" ip
255         [ -n "$ip" -o -n "$name" ] || return 0
256
257         config_get mac "$cfg" mac
258         [ -z "$mac" ] && {
259                 [ -n "$name" ] || return 0
260                 mac="$name"
261                 name=""
262         }
263
264         macs=""
265         for m in $mac; do append macs "$m" ","; done
266
267         config_get tag "$cfg" tag
268
269         xappend "--dhcp-host=$macs${networkid:+,net:$networkid}${tag:+,set:$tag}${ip:+,$ip}${name:+,$name}"
270 }
271
272 dhcp_tag_add() {
273         local cfg="$1"
274
275         tag="$cfg"
276
277         [ -n "$tag" ] || return 0
278
279         config_get_bool force "$cfg" force 0
280         [ "$force" = "0" ] && force=
281
282         config_get option "$cfg" dhcp_option
283         for o in $option; do
284                 xappend "--dhcp-option${force:+-force}=tag:$tag,$o"
285         done
286 }
287
288 dhcp_mac_add() {
289         local cfg="$1"
290
291         config_get networkid "$cfg" networkid
292         [ -n "$networkid" ] || return 0
293
294         config_get mac "$cfg" mac
295         [ -n "$mac" ] || return 0
296
297         xappend "--dhcp-mac=$networkid,$mac"
298
299         dhcp_option_add "$cfg" "$networkid"
300 }
301
302 dhcp_boot_add() {
303         local cfg="$1"
304
305         config_get networkid "$cfg" networkid
306
307         config_get filename "$cfg" filename
308         [ -n "$filename" ] || return 0
309
310         config_get servername "$cfg" servername
311         [ -n "$servername" ] || return 0
312
313         config_get serveraddress "$cfg" serveraddress
314         [ -n "$serveraddress" ] || return 0
315
316         xappend "--dhcp-boot=${networkid:+net:$networkid,}$filename,$servername,$serveraddress"
317
318         config_get_bool force "$cfg" force 0
319
320         dhcp_option_add "$cfg" "$networkid" "$force"
321 }
322
323
324 dhcp_add() {
325         local cfg="$1"
326         config_get net "$cfg" interface
327         [ -n "$net" ] || return 0
328
329         config_get networkid "$cfg" networkid
330         [ -n "$networkid" ] || networkid="$net"
331
332         config_get ifname "$net" ifname
333         [ -n "$ifname" ] || return 0
334
335         config_get dnsserver "$net" dns
336         [ "$cachelocal" = "0" -a -n "$dnsserver" ] && {
337                 DNS_SERVERS="$DNS_SERVERS $dnsserver"
338         }
339
340         append_bool "$cfg" ignore "--no-dhcp-interface=$ifname" && return 0
341
342         config_get proto "$net" proto
343         [ static = "$proto" ] || return 0
344
345         config_get ipaddr "$net" ipaddr
346         config_get netmask "$cfg" netmask
347         [ -n "$netmask" ] || config_get netmask "$net" netmask
348
349         #check for an already active dhcp server on the interface, unless 'force' is set
350         config_get_bool force "$cfg" force 0
351         [ $force -gt 0 ] || {
352                 udhcpc -n -q -s /bin/true -t 1 -i $ifname >&- && {
353                         logger -t dnsmasq \
354                                 "found already running DHCP-server on interface '$ifname'" \
355                                 "refusing to start, use 'option force 1' to override"
356                         return 0
357                 }
358         }
359
360         config_get start "$cfg" start
361         config_get limit "$cfg" limit
362         config_get leasetime "$cfg" leasetime
363         config_get options "$cfg" options
364         config_get_bool dynamicdhcp "$cfg" dynamicdhcp 1
365
366         leasetime="${leasetime:-12h}"
367         start="$(dhcp_calc "${start:-100}")"
368         limit="${limit:-150}"
369         [ "$limit" -gt 0 ] && limit=$((limit-1))
370         eval "$(ipcalc.sh $ipaddr $netmask $start $limit)"
371         if [ "$dynamicdhcp" = "0" ]; then END="static"; fi
372         xappend "--dhcp-range=$networkid,$START,$END,$NETMASK,$leasetime${options:+ $options}"
373
374         dhcp_option_add "$cfg" "$networkid"
375 }
376
377 dhcp_option_add() {
378         local cfg="$1"
379         local networkid="$2"
380         local force="$3"
381
382         [ "$force" = "0" ] && force=
383
384         config_get dhcp_option "$cfg" dhcp_option
385         for o in $dhcp_option; do
386                 xappend "--dhcp-option${force:+-force}=${networkid:+$networkid,}$o"
387         done
388
389 }
390
391 dhcp_domain_add() {
392         local cfg="$1"
393         local ip name names
394
395         config_get names "$cfg" name "$2"
396         [ -n "$names" ] || return 0
397
398         config_get ip "$cfg" ip "$3"
399         [ -n "$ip" ] || return 0
400
401         local oIFS="$IFS"; IFS="."; set -- $ip; IFS="$oIFS"
402         local raddr="${4:+$4.$3.$2.$1.in-addr.arpa}"
403
404         for name in $names; do
405                 local fqdn="$name"
406
407                 [ "${fqdn%.*}" == "$fqdn" ] && \
408                         fqdn="$fqdn${DOMAIN:+.$DOMAIN}"
409
410                 xappend "--address=/$fqdn/$ip"
411
412                 [ -n "$raddr" ] && {
413                         xappend "--ptr-record=$raddr,$fqdn"
414                         raddr=""
415                 }
416         done
417 }
418
419 dhcp_srv_add() {
420         local cfg="$1"
421
422         config_get srv "$cfg" srv
423         [ -n "$srv" ] || return 0
424
425         config_get target "$cfg" target
426         [ -n "$target" ] || return 0
427
428         config_get port "$cfg" port
429         [ -n "$port" ] || return 0
430
431         config_get class "$cfg" class
432         config_get weight "$cfg" weight
433
434         local service="$srv,$target,$port${class:+,$class${weight:+,$weight}}"
435
436         xappend "--srv-host=$service"
437 }
438
439 dhcp_mx_add() {
440         local cfg="$1"
441         local domain relay pref
442
443         config_get domain "$cfg" domain
444         [ -n "$domain" ] || return 0
445
446         config_get relay "$cfg" relay
447         [ -n "$relay" ] || return 0
448
449         config_get pref "$cfg" pref 0
450
451         local service="$domain,$relay,$pref"
452
453         xappend "--mx-host=$service"
454 }
455
456 dhcp_cname_add() {
457         local cfg="$1"
458         local cname target
459
460         config_get cname "$cfg" cname
461         [ -n "$cname" ] || return 0
462
463         config_get target "$cfg" target
464         [ -n "$target" ] || return 0
465
466         xappend "--cname=${cname},${target}"
467 }
468
469 start() {
470         include /lib/network
471         scan_interfaces
472
473         local lanaddr
474         config_get lanaddr "lan" ipaddr
475
476         config_load dhcp
477
478         # before we can call xappend
479         mkdir -p $(dirname $CONFIGFILE)
480
481         echo "# auto-generated config file from /etc/config/dhcp" > $CONFIGFILE
482
483         # if we did this last, we could override auto-generated config
484         [ -f /etc/dnsmasq.conf ] && {
485                 xappend "--conf-file=/etc/dnsmasq.conf"
486         }
487
488         args=""
489         config_foreach dnsmasq dnsmasq
490         config_foreach dhcp_host_add host
491         echo >> $CONFIGFILE
492         config_foreach dhcp_boot_add boot
493         config_foreach dhcp_mac_add mac
494         config_foreach dhcp_tag_add tag
495         config_foreach dhcp_vendorclass_add vendorclass
496         config_foreach dhcp_userclass_add userclass
497         config_foreach dhcp_circuitid_add circuitid
498         config_foreach dhcp_remoteid_add remoteid
499         config_foreach dhcp_subscrid_add subscrid
500         config_foreach dhcp_domain_add domain
501         echo >> $CONFIGFILE
502         config_foreach dhcp_srv_add srvhost
503         config_foreach dhcp_mx_add mxhost
504         echo >> $CONFIGFILE
505         config_foreach dhcp_add dhcp
506         echo >> $CONFIGFILE
507         config_foreach dhcp_cname_add cname
508         echo >> $CONFIGFILE
509
510         # add own hostname
511         [ $ADD_LOCAL_HOSTNAME -eq 1 ] && [ -n "$lanaddr" ] && {
512                 local hostname="$(uci_get system.@system[0].hostname)"
513                 dhcp_domain_add "" "${hostname:-OpenWrt}" "$lanaddr"
514         }
515
516         service_start /usr/sbin/dnsmasq -C $CONFIGFILE && {
517                 rm -f /tmp/resolv.conf
518                 [ $ADD_LOCAL_DOMAIN -eq 1 ] && [ -n "$DOMAIN" ] && {
519                         echo "search $DOMAIN" >> /tmp/resolv.conf
520                 }
521                 DNS_SERVERS="$DNS_SERVERS 127.0.0.1"
522                 for DNS_SERVER in $DNS_SERVERS ; do
523                         echo "nameserver $DNS_SERVER" >> /tmp/resolv.conf
524                 done
525         }
526 }
527
528 stop() {
529         service_stop /usr/sbin/dnsmasq && {
530                 [ -f /tmp/resolv.conf ] && {
531                         rm -f /tmp/resolv.conf
532                         ln -s /tmp/resolv.conf.auto /tmp/resolv.conf
533                 }
534         }
535 }