Mike Frysinger | f9da3d3 | 2017-09-19 23:41:27 -0400 | [diff] [blame] | 1 | // Copyright 2017 The Chromium OS Authors. All rights reserved. |
| 2 | // Use of this source code is governed by a BSD-style license that can be |
| 3 | // found in the LICENSE file. |
| 4 | |
| 5 | // WARNING: |
| 6 | // This callback is intended to be a legacy entry point. New scripts should not |
| 7 | // be added here. Instead a proper UI should be created to manage the system |
| 8 | // interactions. |
| 9 | |
| 10 | #include "debugd/src/shill_scripts_tool.h" |
| 11 | |
Ben Chan | df88cfa | 2017-09-29 00:36:10 -0700 | [diff] [blame] | 12 | #include <memory> |
Mike Frysinger | f9da3d3 | 2017-09-19 23:41:27 -0400 | [diff] [blame] | 13 | #include <string> |
| 14 | #include <utility> |
| 15 | #include <vector> |
| 16 | |
| 17 | #include <base/files/file_path.h> |
Mike Frysinger | f9da3d3 | 2017-09-19 23:41:27 -0400 | [diff] [blame] | 18 | |
| 19 | #include "debugd/src/error_utils.h" |
| 20 | #include "debugd/src/process_with_id.h" |
| 21 | |
| 22 | namespace debugd { |
| 23 | |
| 24 | namespace { |
| 25 | |
| 26 | const char kUnsupportedShillScriptToolErrorName[] = |
| 27 | "org.chromium.debugd.error.UnsupportedShillScriptTool"; |
| 28 | |
| 29 | const char kUser[] = "shill-scripts"; |
| 30 | const char kGroup[] = "shill-scripts"; |
| 31 | |
| 32 | // Where shill scripts are installed. |
| 33 | const char kScriptsDir[] = "/usr/bin"; |
| 34 | |
| 35 | // clang-format off |
Jorge Lucangeli Obes | 771736f | 2020-08-25 10:30:13 -0400 | [diff] [blame] | 36 | const char * const kAllowedScripts[] = { |
Mike Frysinger | f9da3d3 | 2017-09-19 23:41:27 -0400 | [diff] [blame] | 37 | "connectivity", |
| 38 | "ff_debug", |
| 39 | "modem", |
| 40 | "network_diag", |
| 41 | "set_apn", |
| 42 | "set_arpgw", |
| 43 | "set_cellular_ppp", |
| 44 | "set_wake_on_lan", |
Mike Frysinger | f9da3d3 | 2017-09-19 23:41:27 -0400 | [diff] [blame] | 45 | }; |
| 46 | // clang-format on |
| 47 | |
| 48 | // Only permit certain scripts here. |
Jorge Lucangeli Obes | 771736f | 2020-08-25 10:30:13 -0400 | [diff] [blame] | 49 | bool AllowedScript(const std::string& script, brillo::ErrorPtr* error) { |
| 50 | for (const char* listed : kAllowedScripts) |
Mike Frysinger | f9da3d3 | 2017-09-19 23:41:27 -0400 | [diff] [blame] | 51 | if (script == listed) |
| 52 | return true; |
| 53 | |
| 54 | DEBUGD_ADD_ERROR(error, kUnsupportedShillScriptToolErrorName, script.c_str()); |
| 55 | return false; |
| 56 | } |
| 57 | |
| 58 | } // namespace |
| 59 | |
Eric Caruso | 0b24188 | 2018-04-04 13:43:46 -0700 | [diff] [blame] | 60 | bool ShillScriptsTool::Run(const base::ScopedFD& outfd, |
Mike Frysinger | f9da3d3 | 2017-09-19 23:41:27 -0400 | [diff] [blame] | 61 | const std::string& script, |
| 62 | const std::vector<std::string>& script_args, |
| 63 | std::string* out_id, |
| 64 | brillo::ErrorPtr* error) { |
Jorge Lucangeli Obes | 771736f | 2020-08-25 10:30:13 -0400 | [diff] [blame] | 65 | if (!AllowedScript(script, error)) |
Mike Frysinger | f9da3d3 | 2017-09-19 23:41:27 -0400 | [diff] [blame] | 66 | return false; |
| 67 | |
Ben Chan | df88cfa | 2017-09-29 00:36:10 -0700 | [diff] [blame] | 68 | auto p = std::make_unique<ProcessWithId>(); |
Mike Frysinger | f9da3d3 | 2017-09-19 23:41:27 -0400 | [diff] [blame] | 69 | p->SandboxAs(kUser, kGroup); |
| 70 | p->Init(); |
| 71 | |
| 72 | const base::FilePath dir(kScriptsDir); |
| 73 | p->AddArg(dir.Append(script).value()); |
| 74 | |
| 75 | for (const auto& arg : script_args) |
| 76 | p->AddArg(arg); |
| 77 | |
Eric Caruso | 0b24188 | 2018-04-04 13:43:46 -0700 | [diff] [blame] | 78 | p->BindFd(outfd.get(), STDOUT_FILENO); |
| 79 | p->BindFd(outfd.get(), STDERR_FILENO); |
Mike Frysinger | f9da3d3 | 2017-09-19 23:41:27 -0400 | [diff] [blame] | 80 | *out_id = p->id(); |
| 81 | p->Start(); |
| 82 | |
| 83 | RecordProcess(std::move(p)); |
| 84 | |
| 85 | return true; |
| 86 | } |
| 87 | |
| 88 | } // namespace debugd |