Deleted Added
full compact
kern_mib.c (149351) kern_mib.c (168545)
1/*-
2 * Copyright (c) 1982, 1986, 1989, 1993
3 * The Regents of the University of California. All rights reserved.
4 *
5 * This code is derived from software contributed to Berkeley by
6 * Mike Karels at Berkeley Software Design, Inc.
7 *
8 * Quite extensively rewritten by Poul-Henning Kamp of the FreeBSD
9 * project, to make these variables more userfriendly.
10 *
11 * Redistribution and use in source and binary forms, with or without
12 * modification, are permitted provided that the following conditions
13 * are met:
14 * 1. Redistributions of source code must retain the above copyright
15 * notice, this list of conditions and the following disclaimer.
16 * 2. Redistributions in binary form must reproduce the above copyright
17 * notice, this list of conditions and the following disclaimer in the
18 * documentation and/or other materials provided with the distribution.
19 * 4. Neither the name of the University nor the names of its contributors
20 * may be used to endorse or promote products derived from this software
21 * without specific prior written permission.
22 *
23 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
24 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
25 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
26 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
27 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
28 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
29 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
30 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
31 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
32 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
33 * SUCH DAMAGE.
34 *
35 * @(#)kern_sysctl.c 8.4 (Berkeley) 4/14/94
36 */
37
38#include <sys/cdefs.h>
1/*-
2 * Copyright (c) 1982, 1986, 1989, 1993
3 * The Regents of the University of California. All rights reserved.
4 *
5 * This code is derived from software contributed to Berkeley by
6 * Mike Karels at Berkeley Software Design, Inc.
7 *
8 * Quite extensively rewritten by Poul-Henning Kamp of the FreeBSD
9 * project, to make these variables more userfriendly.
10 *
11 * Redistribution and use in source and binary forms, with or without
12 * modification, are permitted provided that the following conditions
13 * are met:
14 * 1. Redistributions of source code must retain the above copyright
15 * notice, this list of conditions and the following disclaimer.
16 * 2. Redistributions in binary form must reproduce the above copyright
17 * notice, this list of conditions and the following disclaimer in the
18 * documentation and/or other materials provided with the distribution.
19 * 4. Neither the name of the University nor the names of its contributors
20 * may be used to endorse or promote products derived from this software
21 * without specific prior written permission.
22 *
23 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
24 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
25 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
26 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
27 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
28 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
29 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
30 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
31 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
32 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
33 * SUCH DAMAGE.
34 *
35 * @(#)kern_sysctl.c 8.4 (Berkeley) 4/14/94
36 */
37
38#include <sys/cdefs.h>
39__FBSDID("$FreeBSD: head/sys/kern/kern_mib.c 149351 2005-08-21 18:03:31Z pjd $");
39__FBSDID("$FreeBSD: head/sys/kern/kern_mib.c 168545 2007-04-09 19:18:09Z pjd $");
40
41#include "opt_posix.h"
42
43#include <sys/param.h>
44#include <sys/kernel.h>
45#include <sys/systm.h>
46#include <sys/sysctl.h>
47#include <sys/proc.h>
48#include <sys/lock.h>
49#include <sys/mutex.h>
50#include <sys/jail.h>
51#include <sys/smp.h>
52#include <sys/unistd.h>
53
54SYSCTL_NODE(, 0, sysctl, CTLFLAG_RW, 0,
55 "Sysctl internal magic");
56SYSCTL_NODE(, CTL_KERN, kern, CTLFLAG_RW, 0,
57 "High kernel, proc, limits &c");
58SYSCTL_NODE(, CTL_VM, vm, CTLFLAG_RW, 0,
59 "Virtual memory");
60SYSCTL_NODE(, CTL_VFS, vfs, CTLFLAG_RW, 0,
61 "File system");
62SYSCTL_NODE(, CTL_NET, net, CTLFLAG_RW, 0,
63 "Network, (see socket.h)");
64SYSCTL_NODE(, CTL_DEBUG, debug, CTLFLAG_RW, 0,
65 "Debugging");
66SYSCTL_NODE(_debug, OID_AUTO, sizeof, CTLFLAG_RW, 0,
67 "Sizeof various things");
68SYSCTL_NODE(, CTL_HW, hw, CTLFLAG_RW, 0,
69 "hardware");
70SYSCTL_NODE(, CTL_MACHDEP, machdep, CTLFLAG_RW, 0,
71 "machine dependent");
72SYSCTL_NODE(, CTL_USER, user, CTLFLAG_RW, 0,
73 "user-level");
74SYSCTL_NODE(, CTL_P1003_1B, p1003_1b, CTLFLAG_RW, 0,
75 "p1003_1b, (see p1003_1b.h)");
76
77SYSCTL_NODE(, OID_AUTO, compat, CTLFLAG_RW, 0,
78 "Compatibility code");
79SYSCTL_NODE(, OID_AUTO, security, CTLFLAG_RW, 0,
80 "Security");
81#ifdef REGRESSION
82SYSCTL_NODE(, OID_AUTO, regression, CTLFLAG_RW, 0,
83 "Regression test MIB");
84#endif
85
86SYSCTL_STRING(_kern, OID_AUTO, ident, CTLFLAG_RD,
87 kern_ident, 0, "Kernel identifier");
88
89SYSCTL_STRING(_kern, KERN_OSRELEASE, osrelease, CTLFLAG_RD,
90 osrelease, 0, "Operating system release");
91
92SYSCTL_INT(_kern, KERN_OSREV, osrevision, CTLFLAG_RD,
93 0, BSD, "Operating system revision");
94
95SYSCTL_STRING(_kern, KERN_VERSION, version, CTLFLAG_RD,
96 version, 0, "Kernel version");
97
98SYSCTL_STRING(_kern, KERN_OSTYPE, ostype, CTLFLAG_RD,
99 ostype, 0, "Operating system type");
100
101/*
102 * NOTICE: The *userland* release date is available in
103 * /usr/include/osreldate.h
104 */
105extern int osreldate;
106SYSCTL_INT(_kern, KERN_OSRELDATE, osreldate, CTLFLAG_RD,
107 &osreldate, 0, "Kernel release date");
108
109SYSCTL_INT(_kern, KERN_MAXPROC, maxproc, CTLFLAG_RDTUN,
110 &maxproc, 0, "Maximum number of processes");
111
112SYSCTL_INT(_kern, KERN_MAXPROCPERUID, maxprocperuid, CTLFLAG_RW,
113 &maxprocperuid, 0, "Maximum processes allowed per userid");
114
115SYSCTL_INT(_kern, OID_AUTO, maxusers, CTLFLAG_RDTUN,
116 &maxusers, 0, "Hint for kernel tuning");
117
118SYSCTL_INT(_kern, KERN_ARGMAX, argmax, CTLFLAG_RD,
119 0, ARG_MAX, "Maximum bytes of argument to execve(2)");
120
121SYSCTL_INT(_kern, KERN_POSIX1, posix1version, CTLFLAG_RD,
122 0, _POSIX_VERSION, "Version of POSIX attempting to comply to");
123
124SYSCTL_INT(_kern, KERN_NGROUPS, ngroups, CTLFLAG_RD,
125 0, NGROUPS_MAX, "Maximum number of groups a user can belong to");
126
127SYSCTL_INT(_kern, KERN_JOB_CONTROL, job_control, CTLFLAG_RD,
128 0, 1, "Whether job control is available");
129
130#ifdef _POSIX_SAVED_IDS
131SYSCTL_INT(_kern, KERN_SAVED_IDS, saved_ids, CTLFLAG_RD,
132 0, 1, "Whether saved set-group/user ID is available");
133#else
134SYSCTL_INT(_kern, KERN_SAVED_IDS, saved_ids, CTLFLAG_RD,
135 0, 0, "Whether saved set-group/user ID is available");
136#endif
137
138char kernelname[MAXPATHLEN] = "/kernel"; /* XXX bloat */
139
140SYSCTL_STRING(_kern, KERN_BOOTFILE, bootfile, CTLFLAG_RW,
141 kernelname, sizeof kernelname, "Name of kernel file booted");
142
143SYSCTL_INT(_hw, HW_NCPU, ncpu, CTLFLAG_RD,
144 &mp_ncpus, 0, "Number of active CPUs");
145
146SYSCTL_INT(_hw, HW_BYTEORDER, byteorder, CTLFLAG_RD,
147 0, BYTE_ORDER, "System byte order");
148
149SYSCTL_INT(_hw, HW_PAGESIZE, pagesize, CTLFLAG_RD,
150 0, PAGE_SIZE, "System memory page size");
151
152static int
153sysctl_hw_physmem(SYSCTL_HANDLER_ARGS)
154{
155 u_long val;
156
157 val = ctob(physmem);
158 return (sysctl_handle_long(oidp, &val, 0, req));
159}
160
161SYSCTL_PROC(_hw, HW_PHYSMEM, physmem, CTLTYPE_ULONG | CTLFLAG_RD,
162 0, 0, sysctl_hw_physmem, "LU", "");
163
164static int
165sysctl_hw_realmem(SYSCTL_HANDLER_ARGS)
166{
167 u_long val;
168 val = ctob(realmem);
169 return (sysctl_handle_long(oidp, &val, 0, req));
170}
171SYSCTL_PROC(_hw, HW_REALMEM, realmem, CTLTYPE_ULONG | CTLFLAG_RD,
172 0, 0, sysctl_hw_realmem, "LU", "");
173static int
174sysctl_hw_usermem(SYSCTL_HANDLER_ARGS)
175{
176 u_long val;
177
178 val = ctob(physmem - cnt.v_wire_count);
179 return (sysctl_handle_long(oidp, &val, 0, req));
180}
181
182SYSCTL_PROC(_hw, HW_USERMEM, usermem, CTLTYPE_ULONG | CTLFLAG_RD,
183 0, 0, sysctl_hw_usermem, "LU", "");
184
185SYSCTL_ULONG(_hw, OID_AUTO, availpages, CTLFLAG_RD, &physmem, 0, "");
186
187static char machine_arch[] = MACHINE_ARCH;
188SYSCTL_STRING(_hw, HW_MACHINE_ARCH, machine_arch, CTLFLAG_RD,
189 machine_arch, 0, "System architecture");
190
191char hostname[MAXHOSTNAMELEN];
192
193static int
194sysctl_hostname(SYSCTL_HANDLER_ARGS)
195{
196 struct prison *pr;
197 char tmphostname[MAXHOSTNAMELEN];
198 int error;
199
200 pr = req->td->td_ucred->cr_prison;
201 if (pr != NULL) {
202 if (!jail_set_hostname_allowed && req->newptr)
203 return (EPERM);
204 /*
205 * Process is in jail, so make a local copy of jail
206 * hostname to get/set so we don't have to hold the jail
207 * mutex during the sysctl copyin/copyout activities.
208 */
209 mtx_lock(&pr->pr_mtx);
210 bcopy(pr->pr_host, tmphostname, MAXHOSTNAMELEN);
211 mtx_unlock(&pr->pr_mtx);
212
213 error = sysctl_handle_string(oidp, tmphostname,
214 sizeof pr->pr_host, req);
215
216 if (req->newptr != NULL && error == 0) {
217 /*
218 * Copy the locally set hostname to the jail, if
219 * appropriate.
220 */
221 mtx_lock(&pr->pr_mtx);
222 bcopy(tmphostname, pr->pr_host, MAXHOSTNAMELEN);
223 mtx_unlock(&pr->pr_mtx);
224 }
225 } else
226 error = sysctl_handle_string(oidp,
227 hostname, sizeof hostname, req);
228 return (error);
229}
230
231SYSCTL_PROC(_kern, KERN_HOSTNAME, hostname,
232 CTLTYPE_STRING|CTLFLAG_RW|CTLFLAG_PRISON,
233 0, 0, sysctl_hostname, "A", "Hostname");
234
235static int regression_securelevel_nonmonotonic = 0;
236
237#ifdef REGRESSION
238SYSCTL_INT(_regression, OID_AUTO, securelevel_nonmonotonic, CTLFLAG_RW,
239 &regression_securelevel_nonmonotonic, 0, "securelevel may be lowered");
240#endif
241
242int securelevel = -1;
243static struct mtx securelevel_mtx;
244
245MTX_SYSINIT(securelevel_lock, &securelevel_mtx, "securelevel mutex lock",
246 MTX_DEF);
247
248static int
249sysctl_kern_securelvl(SYSCTL_HANDLER_ARGS)
250{
251 struct prison *pr;
252 int error, level;
253
254 pr = req->td->td_ucred->cr_prison;
255
256 /*
257 * If the process is in jail, return the maximum of the global and
258 * local levels; otherwise, return the global level. Perform a
259 * lockless read since the securelevel is an integer.
260 */
261 if (pr != NULL)
262 level = imax(securelevel, pr->pr_securelevel);
263 else
264 level = securelevel;
265 error = sysctl_handle_int(oidp, &level, 0, req);
266 if (error || !req->newptr)
267 return (error);
268 /*
269 * Permit update only if the new securelevel exceeds the
270 * global level, and local level if any.
271 */
272 if (pr != NULL) {
273 mtx_lock(&pr->pr_mtx);
274 if (!regression_securelevel_nonmonotonic &&
275 (level < imax(securelevel, pr->pr_securelevel))) {
276 mtx_unlock(&pr->pr_mtx);
277 return (EPERM);
278 }
279 pr->pr_securelevel = level;
280 mtx_unlock(&pr->pr_mtx);
281 } else {
282 mtx_lock(&securelevel_mtx);
283 if (!regression_securelevel_nonmonotonic &&
284 (level < securelevel)) {
285 mtx_unlock(&securelevel_mtx);
286 return (EPERM);
287 }
288 securelevel = level;
289 mtx_unlock(&securelevel_mtx);
290 }
291 return (error);
292}
293
294SYSCTL_PROC(_kern, KERN_SECURELVL, securelevel,
295 CTLTYPE_INT|CTLFLAG_RW|CTLFLAG_PRISON, 0, 0, sysctl_kern_securelvl,
296 "I", "Current secure level");
297
298char domainname[MAXHOSTNAMELEN];
299SYSCTL_STRING(_kern, KERN_NISDOMAINNAME, domainname, CTLFLAG_RW,
300 &domainname, sizeof(domainname), "Name of the current YP/NIS domain");
301
302u_long hostid;
303SYSCTL_ULONG(_kern, KERN_HOSTID, hostid, CTLFLAG_RW, &hostid, 0, "Host ID");
40
41#include "opt_posix.h"
42
43#include <sys/param.h>
44#include <sys/kernel.h>
45#include <sys/systm.h>
46#include <sys/sysctl.h>
47#include <sys/proc.h>
48#include <sys/lock.h>
49#include <sys/mutex.h>
50#include <sys/jail.h>
51#include <sys/smp.h>
52#include <sys/unistd.h>
53
54SYSCTL_NODE(, 0, sysctl, CTLFLAG_RW, 0,
55 "Sysctl internal magic");
56SYSCTL_NODE(, CTL_KERN, kern, CTLFLAG_RW, 0,
57 "High kernel, proc, limits &c");
58SYSCTL_NODE(, CTL_VM, vm, CTLFLAG_RW, 0,
59 "Virtual memory");
60SYSCTL_NODE(, CTL_VFS, vfs, CTLFLAG_RW, 0,
61 "File system");
62SYSCTL_NODE(, CTL_NET, net, CTLFLAG_RW, 0,
63 "Network, (see socket.h)");
64SYSCTL_NODE(, CTL_DEBUG, debug, CTLFLAG_RW, 0,
65 "Debugging");
66SYSCTL_NODE(_debug, OID_AUTO, sizeof, CTLFLAG_RW, 0,
67 "Sizeof various things");
68SYSCTL_NODE(, CTL_HW, hw, CTLFLAG_RW, 0,
69 "hardware");
70SYSCTL_NODE(, CTL_MACHDEP, machdep, CTLFLAG_RW, 0,
71 "machine dependent");
72SYSCTL_NODE(, CTL_USER, user, CTLFLAG_RW, 0,
73 "user-level");
74SYSCTL_NODE(, CTL_P1003_1B, p1003_1b, CTLFLAG_RW, 0,
75 "p1003_1b, (see p1003_1b.h)");
76
77SYSCTL_NODE(, OID_AUTO, compat, CTLFLAG_RW, 0,
78 "Compatibility code");
79SYSCTL_NODE(, OID_AUTO, security, CTLFLAG_RW, 0,
80 "Security");
81#ifdef REGRESSION
82SYSCTL_NODE(, OID_AUTO, regression, CTLFLAG_RW, 0,
83 "Regression test MIB");
84#endif
85
86SYSCTL_STRING(_kern, OID_AUTO, ident, CTLFLAG_RD,
87 kern_ident, 0, "Kernel identifier");
88
89SYSCTL_STRING(_kern, KERN_OSRELEASE, osrelease, CTLFLAG_RD,
90 osrelease, 0, "Operating system release");
91
92SYSCTL_INT(_kern, KERN_OSREV, osrevision, CTLFLAG_RD,
93 0, BSD, "Operating system revision");
94
95SYSCTL_STRING(_kern, KERN_VERSION, version, CTLFLAG_RD,
96 version, 0, "Kernel version");
97
98SYSCTL_STRING(_kern, KERN_OSTYPE, ostype, CTLFLAG_RD,
99 ostype, 0, "Operating system type");
100
101/*
102 * NOTICE: The *userland* release date is available in
103 * /usr/include/osreldate.h
104 */
105extern int osreldate;
106SYSCTL_INT(_kern, KERN_OSRELDATE, osreldate, CTLFLAG_RD,
107 &osreldate, 0, "Kernel release date");
108
109SYSCTL_INT(_kern, KERN_MAXPROC, maxproc, CTLFLAG_RDTUN,
110 &maxproc, 0, "Maximum number of processes");
111
112SYSCTL_INT(_kern, KERN_MAXPROCPERUID, maxprocperuid, CTLFLAG_RW,
113 &maxprocperuid, 0, "Maximum processes allowed per userid");
114
115SYSCTL_INT(_kern, OID_AUTO, maxusers, CTLFLAG_RDTUN,
116 &maxusers, 0, "Hint for kernel tuning");
117
118SYSCTL_INT(_kern, KERN_ARGMAX, argmax, CTLFLAG_RD,
119 0, ARG_MAX, "Maximum bytes of argument to execve(2)");
120
121SYSCTL_INT(_kern, KERN_POSIX1, posix1version, CTLFLAG_RD,
122 0, _POSIX_VERSION, "Version of POSIX attempting to comply to");
123
124SYSCTL_INT(_kern, KERN_NGROUPS, ngroups, CTLFLAG_RD,
125 0, NGROUPS_MAX, "Maximum number of groups a user can belong to");
126
127SYSCTL_INT(_kern, KERN_JOB_CONTROL, job_control, CTLFLAG_RD,
128 0, 1, "Whether job control is available");
129
130#ifdef _POSIX_SAVED_IDS
131SYSCTL_INT(_kern, KERN_SAVED_IDS, saved_ids, CTLFLAG_RD,
132 0, 1, "Whether saved set-group/user ID is available");
133#else
134SYSCTL_INT(_kern, KERN_SAVED_IDS, saved_ids, CTLFLAG_RD,
135 0, 0, "Whether saved set-group/user ID is available");
136#endif
137
138char kernelname[MAXPATHLEN] = "/kernel"; /* XXX bloat */
139
140SYSCTL_STRING(_kern, KERN_BOOTFILE, bootfile, CTLFLAG_RW,
141 kernelname, sizeof kernelname, "Name of kernel file booted");
142
143SYSCTL_INT(_hw, HW_NCPU, ncpu, CTLFLAG_RD,
144 &mp_ncpus, 0, "Number of active CPUs");
145
146SYSCTL_INT(_hw, HW_BYTEORDER, byteorder, CTLFLAG_RD,
147 0, BYTE_ORDER, "System byte order");
148
149SYSCTL_INT(_hw, HW_PAGESIZE, pagesize, CTLFLAG_RD,
150 0, PAGE_SIZE, "System memory page size");
151
152static int
153sysctl_hw_physmem(SYSCTL_HANDLER_ARGS)
154{
155 u_long val;
156
157 val = ctob(physmem);
158 return (sysctl_handle_long(oidp, &val, 0, req));
159}
160
161SYSCTL_PROC(_hw, HW_PHYSMEM, physmem, CTLTYPE_ULONG | CTLFLAG_RD,
162 0, 0, sysctl_hw_physmem, "LU", "");
163
164static int
165sysctl_hw_realmem(SYSCTL_HANDLER_ARGS)
166{
167 u_long val;
168 val = ctob(realmem);
169 return (sysctl_handle_long(oidp, &val, 0, req));
170}
171SYSCTL_PROC(_hw, HW_REALMEM, realmem, CTLTYPE_ULONG | CTLFLAG_RD,
172 0, 0, sysctl_hw_realmem, "LU", "");
173static int
174sysctl_hw_usermem(SYSCTL_HANDLER_ARGS)
175{
176 u_long val;
177
178 val = ctob(physmem - cnt.v_wire_count);
179 return (sysctl_handle_long(oidp, &val, 0, req));
180}
181
182SYSCTL_PROC(_hw, HW_USERMEM, usermem, CTLTYPE_ULONG | CTLFLAG_RD,
183 0, 0, sysctl_hw_usermem, "LU", "");
184
185SYSCTL_ULONG(_hw, OID_AUTO, availpages, CTLFLAG_RD, &physmem, 0, "");
186
187static char machine_arch[] = MACHINE_ARCH;
188SYSCTL_STRING(_hw, HW_MACHINE_ARCH, machine_arch, CTLFLAG_RD,
189 machine_arch, 0, "System architecture");
190
191char hostname[MAXHOSTNAMELEN];
192
193static int
194sysctl_hostname(SYSCTL_HANDLER_ARGS)
195{
196 struct prison *pr;
197 char tmphostname[MAXHOSTNAMELEN];
198 int error;
199
200 pr = req->td->td_ucred->cr_prison;
201 if (pr != NULL) {
202 if (!jail_set_hostname_allowed && req->newptr)
203 return (EPERM);
204 /*
205 * Process is in jail, so make a local copy of jail
206 * hostname to get/set so we don't have to hold the jail
207 * mutex during the sysctl copyin/copyout activities.
208 */
209 mtx_lock(&pr->pr_mtx);
210 bcopy(pr->pr_host, tmphostname, MAXHOSTNAMELEN);
211 mtx_unlock(&pr->pr_mtx);
212
213 error = sysctl_handle_string(oidp, tmphostname,
214 sizeof pr->pr_host, req);
215
216 if (req->newptr != NULL && error == 0) {
217 /*
218 * Copy the locally set hostname to the jail, if
219 * appropriate.
220 */
221 mtx_lock(&pr->pr_mtx);
222 bcopy(tmphostname, pr->pr_host, MAXHOSTNAMELEN);
223 mtx_unlock(&pr->pr_mtx);
224 }
225 } else
226 error = sysctl_handle_string(oidp,
227 hostname, sizeof hostname, req);
228 return (error);
229}
230
231SYSCTL_PROC(_kern, KERN_HOSTNAME, hostname,
232 CTLTYPE_STRING|CTLFLAG_RW|CTLFLAG_PRISON,
233 0, 0, sysctl_hostname, "A", "Hostname");
234
235static int regression_securelevel_nonmonotonic = 0;
236
237#ifdef REGRESSION
238SYSCTL_INT(_regression, OID_AUTO, securelevel_nonmonotonic, CTLFLAG_RW,
239 &regression_securelevel_nonmonotonic, 0, "securelevel may be lowered");
240#endif
241
242int securelevel = -1;
243static struct mtx securelevel_mtx;
244
245MTX_SYSINIT(securelevel_lock, &securelevel_mtx, "securelevel mutex lock",
246 MTX_DEF);
247
248static int
249sysctl_kern_securelvl(SYSCTL_HANDLER_ARGS)
250{
251 struct prison *pr;
252 int error, level;
253
254 pr = req->td->td_ucred->cr_prison;
255
256 /*
257 * If the process is in jail, return the maximum of the global and
258 * local levels; otherwise, return the global level. Perform a
259 * lockless read since the securelevel is an integer.
260 */
261 if (pr != NULL)
262 level = imax(securelevel, pr->pr_securelevel);
263 else
264 level = securelevel;
265 error = sysctl_handle_int(oidp, &level, 0, req);
266 if (error || !req->newptr)
267 return (error);
268 /*
269 * Permit update only if the new securelevel exceeds the
270 * global level, and local level if any.
271 */
272 if (pr != NULL) {
273 mtx_lock(&pr->pr_mtx);
274 if (!regression_securelevel_nonmonotonic &&
275 (level < imax(securelevel, pr->pr_securelevel))) {
276 mtx_unlock(&pr->pr_mtx);
277 return (EPERM);
278 }
279 pr->pr_securelevel = level;
280 mtx_unlock(&pr->pr_mtx);
281 } else {
282 mtx_lock(&securelevel_mtx);
283 if (!regression_securelevel_nonmonotonic &&
284 (level < securelevel)) {
285 mtx_unlock(&securelevel_mtx);
286 return (EPERM);
287 }
288 securelevel = level;
289 mtx_unlock(&securelevel_mtx);
290 }
291 return (error);
292}
293
294SYSCTL_PROC(_kern, KERN_SECURELVL, securelevel,
295 CTLTYPE_INT|CTLFLAG_RW|CTLFLAG_PRISON, 0, 0, sysctl_kern_securelvl,
296 "I", "Current secure level");
297
298char domainname[MAXHOSTNAMELEN];
299SYSCTL_STRING(_kern, KERN_NISDOMAINNAME, domainname, CTLFLAG_RW,
300 &domainname, sizeof(domainname), "Name of the current YP/NIS domain");
301
302u_long hostid;
303SYSCTL_ULONG(_kern, KERN_HOSTID, hostid, CTLFLAG_RW, &hostid, 0, "Host ID");
304char hostuuid[64] = "00000000-0000-0000-0000-000000000000";
305SYSCTL_STRING(_kern, KERN_HOSTUUID, hostuuid, CTLFLAG_RW, hostuuid,
306 sizeof(hostuuid), "Host UUID");
304
305/*
306 * This is really cheating. These actually live in the libc, something
307 * which I'm not quite sure is a good idea anyway, but in order for
308 * getnext and friends to actually work, we define dummies here.
309 */
310SYSCTL_STRING(_user, USER_CS_PATH, cs_path, CTLFLAG_RD,
311 "", 0, "PATH that finds all the standard utilities");
312SYSCTL_INT(_user, USER_BC_BASE_MAX, bc_base_max, CTLFLAG_RD,
313 0, 0, "Max ibase/obase values in bc(1)");
314SYSCTL_INT(_user, USER_BC_DIM_MAX, bc_dim_max, CTLFLAG_RD,
315 0, 0, "Max array size in bc(1)");
316SYSCTL_INT(_user, USER_BC_SCALE_MAX, bc_scale_max, CTLFLAG_RD,
317 0, 0, "Max scale value in bc(1)");
318SYSCTL_INT(_user, USER_BC_STRING_MAX, bc_string_max, CTLFLAG_RD,
319 0, 0, "Max string length in bc(1)");
320SYSCTL_INT(_user, USER_COLL_WEIGHTS_MAX, coll_weights_max, CTLFLAG_RD,
321 0, 0, "Maximum number of weights assigned to an LC_COLLATE locale entry");
322SYSCTL_INT(_user, USER_EXPR_NEST_MAX, expr_nest_max, CTLFLAG_RD, 0, 0, "");
323SYSCTL_INT(_user, USER_LINE_MAX, line_max, CTLFLAG_RD,
324 0, 0, "Max length (bytes) of a text-processing utility's input line");
325SYSCTL_INT(_user, USER_RE_DUP_MAX, re_dup_max, CTLFLAG_RD,
326 0, 0, "Maximum number of repeats of a regexp permitted");
327SYSCTL_INT(_user, USER_POSIX2_VERSION, posix2_version, CTLFLAG_RD,
328 0, 0,
329 "The version of POSIX 1003.2 with which the system attempts to comply");
330SYSCTL_INT(_user, USER_POSIX2_C_BIND, posix2_c_bind, CTLFLAG_RD,
331 0, 0, "Whether C development supports the C bindings option");
332SYSCTL_INT(_user, USER_POSIX2_C_DEV, posix2_c_dev, CTLFLAG_RD,
333 0, 0, "Whether system supports the C development utilities option");
334SYSCTL_INT(_user, USER_POSIX2_CHAR_TERM, posix2_char_term, CTLFLAG_RD,
335 0, 0, "");
336SYSCTL_INT(_user, USER_POSIX2_FORT_DEV, posix2_fort_dev, CTLFLAG_RD,
337 0, 0, "Whether system supports FORTRAN development utilities");
338SYSCTL_INT(_user, USER_POSIX2_FORT_RUN, posix2_fort_run, CTLFLAG_RD,
339 0, 0, "Whether system supports FORTRAN runtime utilities");
340SYSCTL_INT(_user, USER_POSIX2_LOCALEDEF, posix2_localedef, CTLFLAG_RD,
341 0, 0, "Whether system supports creation of locales");
342SYSCTL_INT(_user, USER_POSIX2_SW_DEV, posix2_sw_dev, CTLFLAG_RD,
343 0, 0, "Whether system supports software development utilities");
344SYSCTL_INT(_user, USER_POSIX2_UPE, posix2_upe, CTLFLAG_RD,
345 0, 0, "Whether system supports the user portability utilities");
346SYSCTL_INT(_user, USER_STREAM_MAX, stream_max, CTLFLAG_RD,
347 0, 0, "Min Maximum number of streams a process may have open at one time");
348SYSCTL_INT(_user, USER_TZNAME_MAX, tzname_max, CTLFLAG_RD,
349 0, 0, "Min Maximum number of types supported for timezone names");
350
351#include <sys/vnode.h>
352SYSCTL_INT(_debug_sizeof, OID_AUTO, vnode, CTLFLAG_RD,
353 0, sizeof(struct vnode), "sizeof(struct vnode)");
354
355SYSCTL_INT(_debug_sizeof, OID_AUTO, proc, CTLFLAG_RD,
356 0, sizeof(struct proc), "sizeof(struct proc)");
357
358#include <sys/bio.h>
359#include <sys/buf.h>
360SYSCTL_INT(_debug_sizeof, OID_AUTO, bio, CTLFLAG_RD,
361 0, sizeof(struct bio), "sizeof(struct bio)");
362SYSCTL_INT(_debug_sizeof, OID_AUTO, buf, CTLFLAG_RD,
363 0, sizeof(struct buf), "sizeof(struct buf)");
364
365#include <sys/user.h>
366SYSCTL_INT(_debug_sizeof, OID_AUTO, kinfo_proc, CTLFLAG_RD,
367 0, sizeof(struct kinfo_proc), "sizeof(struct kinfo_proc)");
368
369/* XXX compatibility, remove for 6.0 */
370#include <sys/imgact.h>
371#include <sys/imgact_elf.h>
372SYSCTL_INT(_kern, OID_AUTO, fallback_elf_brand, CTLFLAG_RW,
373 &__elfN(fallback_brand), sizeof(__elfN(fallback_brand)),
374 "compatibility for kern.fallback_elf_brand");
307
308/*
309 * This is really cheating. These actually live in the libc, something
310 * which I'm not quite sure is a good idea anyway, but in order for
311 * getnext and friends to actually work, we define dummies here.
312 */
313SYSCTL_STRING(_user, USER_CS_PATH, cs_path, CTLFLAG_RD,
314 "", 0, "PATH that finds all the standard utilities");
315SYSCTL_INT(_user, USER_BC_BASE_MAX, bc_base_max, CTLFLAG_RD,
316 0, 0, "Max ibase/obase values in bc(1)");
317SYSCTL_INT(_user, USER_BC_DIM_MAX, bc_dim_max, CTLFLAG_RD,
318 0, 0, "Max array size in bc(1)");
319SYSCTL_INT(_user, USER_BC_SCALE_MAX, bc_scale_max, CTLFLAG_RD,
320 0, 0, "Max scale value in bc(1)");
321SYSCTL_INT(_user, USER_BC_STRING_MAX, bc_string_max, CTLFLAG_RD,
322 0, 0, "Max string length in bc(1)");
323SYSCTL_INT(_user, USER_COLL_WEIGHTS_MAX, coll_weights_max, CTLFLAG_RD,
324 0, 0, "Maximum number of weights assigned to an LC_COLLATE locale entry");
325SYSCTL_INT(_user, USER_EXPR_NEST_MAX, expr_nest_max, CTLFLAG_RD, 0, 0, "");
326SYSCTL_INT(_user, USER_LINE_MAX, line_max, CTLFLAG_RD,
327 0, 0, "Max length (bytes) of a text-processing utility's input line");
328SYSCTL_INT(_user, USER_RE_DUP_MAX, re_dup_max, CTLFLAG_RD,
329 0, 0, "Maximum number of repeats of a regexp permitted");
330SYSCTL_INT(_user, USER_POSIX2_VERSION, posix2_version, CTLFLAG_RD,
331 0, 0,
332 "The version of POSIX 1003.2 with which the system attempts to comply");
333SYSCTL_INT(_user, USER_POSIX2_C_BIND, posix2_c_bind, CTLFLAG_RD,
334 0, 0, "Whether C development supports the C bindings option");
335SYSCTL_INT(_user, USER_POSIX2_C_DEV, posix2_c_dev, CTLFLAG_RD,
336 0, 0, "Whether system supports the C development utilities option");
337SYSCTL_INT(_user, USER_POSIX2_CHAR_TERM, posix2_char_term, CTLFLAG_RD,
338 0, 0, "");
339SYSCTL_INT(_user, USER_POSIX2_FORT_DEV, posix2_fort_dev, CTLFLAG_RD,
340 0, 0, "Whether system supports FORTRAN development utilities");
341SYSCTL_INT(_user, USER_POSIX2_FORT_RUN, posix2_fort_run, CTLFLAG_RD,
342 0, 0, "Whether system supports FORTRAN runtime utilities");
343SYSCTL_INT(_user, USER_POSIX2_LOCALEDEF, posix2_localedef, CTLFLAG_RD,
344 0, 0, "Whether system supports creation of locales");
345SYSCTL_INT(_user, USER_POSIX2_SW_DEV, posix2_sw_dev, CTLFLAG_RD,
346 0, 0, "Whether system supports software development utilities");
347SYSCTL_INT(_user, USER_POSIX2_UPE, posix2_upe, CTLFLAG_RD,
348 0, 0, "Whether system supports the user portability utilities");
349SYSCTL_INT(_user, USER_STREAM_MAX, stream_max, CTLFLAG_RD,
350 0, 0, "Min Maximum number of streams a process may have open at one time");
351SYSCTL_INT(_user, USER_TZNAME_MAX, tzname_max, CTLFLAG_RD,
352 0, 0, "Min Maximum number of types supported for timezone names");
353
354#include <sys/vnode.h>
355SYSCTL_INT(_debug_sizeof, OID_AUTO, vnode, CTLFLAG_RD,
356 0, sizeof(struct vnode), "sizeof(struct vnode)");
357
358SYSCTL_INT(_debug_sizeof, OID_AUTO, proc, CTLFLAG_RD,
359 0, sizeof(struct proc), "sizeof(struct proc)");
360
361#include <sys/bio.h>
362#include <sys/buf.h>
363SYSCTL_INT(_debug_sizeof, OID_AUTO, bio, CTLFLAG_RD,
364 0, sizeof(struct bio), "sizeof(struct bio)");
365SYSCTL_INT(_debug_sizeof, OID_AUTO, buf, CTLFLAG_RD,
366 0, sizeof(struct buf), "sizeof(struct buf)");
367
368#include <sys/user.h>
369SYSCTL_INT(_debug_sizeof, OID_AUTO, kinfo_proc, CTLFLAG_RD,
370 0, sizeof(struct kinfo_proc), "sizeof(struct kinfo_proc)");
371
372/* XXX compatibility, remove for 6.0 */
373#include <sys/imgact.h>
374#include <sys/imgact_elf.h>
375SYSCTL_INT(_kern, OID_AUTO, fallback_elf_brand, CTLFLAG_RW,
376 &__elfN(fallback_brand), sizeof(__elfN(fallback_brand)),
377 "compatibility for kern.fallback_elf_brand");