mount_nfs.c revision 230226
1/*
2 * Copyright (c) 1992, 1993, 1994
3 *	The Regents of the University of California.  All rights reserved.
4 *
5 * This code is derived from software contributed to Berkeley by
6 * Rick Macklem at The University of Guelph.
7 *
8 * Redistribution and use in source and binary forms, with or without
9 * modification, are permitted provided that the following conditions
10 * are met:
11 * 1. Redistributions of source code must retain the above copyright
12 *    notice, this list of conditions and the following disclaimer.
13 * 2. Redistributions in binary form must reproduce the above copyright
14 *    notice, this list of conditions and the following disclaimer in the
15 *    documentation and/or other materials provided with the distribution.
16 * 4. Neither the name of the University nor the names of its contributors
17 *    may be used to endorse or promote products derived from this software
18 *    without specific prior written permission.
19 *
20 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
21 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23 * ARE DISCLAIMED.  IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
24 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
25 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
26 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
27 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
28 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
29 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
30 * SUCH DAMAGE.
31 */
32
33#if 0
34#ifndef lint
35static const char copyright[] =
36"@(#) Copyright (c) 1992, 1993, 1994\n\
37	The Regents of the University of California.  All rights reserved.\n";
38#endif /* not lint */
39
40#ifndef lint
41static char sccsid[] = "@(#)mount_nfs.c	8.11 (Berkeley) 5/4/95";
42#endif /* not lint */
43#endif
44#include <sys/cdefs.h>
45__FBSDID("$FreeBSD: head/sbin/mount_nfs/mount_nfs.c 230226 2012-01-16 19:34:21Z jh $");
46
47#include <sys/param.h>
48#include <sys/linker.h>
49#include <sys/module.h>
50#include <sys/mount.h>
51#include <sys/socket.h>
52#include <sys/stat.h>
53#include <sys/syslog.h>
54#include <sys/uio.h>
55
56#include <rpc/rpc.h>
57#include <rpc/pmap_clnt.h>
58#include <rpc/pmap_prot.h>
59#include <rpcsvc/nfs_prot.h>
60#include <rpcsvc/mount.h>
61
62#include <nfsclient/nfs.h>
63
64#include <arpa/inet.h>
65
66#include <ctype.h>
67#include <err.h>
68#include <errno.h>
69#include <fcntl.h>
70#include <netdb.h>
71#include <stdio.h>
72#include <stdlib.h>
73#include <string.h>
74#include <strings.h>
75#include <sysexits.h>
76#include <unistd.h>
77
78#include "mntopts.h"
79#include "mounttab.h"
80
81/* Table for af,sotype -> netid conversions. */
82struct nc_protos {
83	const char *netid;
84	int af;
85	int sotype;
86} nc_protos[] = {
87	{"udp",		AF_INET,	SOCK_DGRAM},
88	{"tcp",		AF_INET,	SOCK_STREAM},
89	{"udp6",	AF_INET6,	SOCK_DGRAM},
90	{"tcp6",	AF_INET6,	SOCK_STREAM},
91	{NULL,		0,		0}
92};
93
94struct nfhret {
95	u_long		stat;
96	long		vers;
97	long		auth;
98	long		fhsize;
99	u_char		nfh[NFS3_FHSIZE];
100};
101#define	BGRND	1
102#define	ISBGRND	2
103#define	OF_NOINET4	4
104#define	OF_NOINET6	8
105int retrycnt = -1;
106int opflags = 0;
107int nfsproto = IPPROTO_TCP;
108int mnttcp_ok = 1;
109int noconn = 0;
110char *portspec = NULL;	/* Server nfs port; NULL means look up via rpcbind. */
111struct sockaddr *addr;
112int addrlen = 0;
113u_char *fh = NULL;
114int fhsize = 0;
115int secflavor = -1;
116int got_principal = 0;
117
118enum mountmode {
119	ANY,
120	V2,
121	V3,
122	V4
123} mountmode = ANY;
124
125/* Return codes for nfs_tryproto. */
126enum tryret {
127	TRYRET_SUCCESS,
128	TRYRET_TIMEOUT,		/* No response received. */
129	TRYRET_REMOTEERR,	/* Error received from remote server. */
130	TRYRET_LOCALERR		/* Local failure. */
131};
132
133static int	fallback_mount(struct iovec *iov, int iovlen, int mntflags);
134static int	sec_name_to_num(char *sec);
135static char	*sec_num_to_name(int num);
136static int	getnfsargs(char *, struct iovec **iov, int *iovlen);
137/* void	set_rpc_maxgrouplist(int); */
138static struct netconfig *getnetconf_cached(const char *netid);
139static const char	*netidbytype(int af, int sotype);
140static void	usage(void) __dead2;
141static int	xdr_dir(XDR *, char *);
142static int	xdr_fh(XDR *, struct nfhret *);
143static enum tryret nfs_tryproto(struct addrinfo *ai, char *hostp, char *spec,
144    char **errstr, struct iovec **iov, int *iovlen);
145static enum tryret returncode(enum clnt_stat stat, struct rpc_err *rpcerr);
146
147int
148main(int argc, char *argv[])
149{
150	int c;
151	struct iovec *iov;
152	int mntflags, num, iovlen;
153	int osversion;
154	char *name, *p, *spec, *fstype;
155	char mntpath[MAXPATHLEN], errmsg[255];
156	char hostname[MAXHOSTNAMELEN + 1], *gssname, gssn[MAXHOSTNAMELEN + 50];
157
158	mntflags = 0;
159	iov = NULL;
160	iovlen = 0;
161	memset(errmsg, 0, sizeof(errmsg));
162	gssname = NULL;
163
164	fstype = strrchr(argv[0], '_');
165	if (fstype == NULL)
166		errx(EX_USAGE, "argv[0] must end in _fstype");
167
168	++fstype;
169
170	while ((c = getopt(argc, argv,
171	    "23a:bcdD:g:I:iLlNo:PR:r:sTt:w:x:U")) != -1)
172		switch (c) {
173		case '2':
174			mountmode = V2;
175			break;
176		case '3':
177			mountmode = V3;
178			break;
179		case 'a':
180			printf("-a deprecated, use -o readahead=<value>\n");
181			build_iovec(&iov, &iovlen, "readahead", optarg, (size_t)-1);
182			break;
183		case 'b':
184			opflags |= BGRND;
185			break;
186		case 'c':
187			printf("-c deprecated, use -o noconn\n");
188			build_iovec(&iov, &iovlen, "noconn", NULL, 0);
189			noconn = 1;
190			break;
191		case 'D':
192			printf("-D deprecated, use -o deadthresh=<value>\n");
193			build_iovec(&iov, &iovlen, "deadthresh", optarg, (size_t)-1);
194			break;
195		case 'd':
196			printf("-d deprecated, use -o dumbtimer");
197			build_iovec(&iov, &iovlen, "dumbtimer", NULL, 0);
198			break;
199		case 'g':
200			printf("-g deprecated, use -o maxgroups");
201			num = strtol(optarg, &p, 10);
202			if (*p || num <= 0)
203				errx(1, "illegal -g value -- %s", optarg);
204			//set_rpc_maxgrouplist(num);
205			build_iovec(&iov, &iovlen, "maxgroups", optarg, (size_t)-1);
206			break;
207		case 'I':
208			printf("-I deprecated, use -o readdirsize=<value>\n");
209			build_iovec(&iov, &iovlen, "readdirsize", optarg, (size_t)-1);
210			break;
211		case 'i':
212			printf("-i deprecated, use -o intr\n");
213			build_iovec(&iov, &iovlen, "intr", NULL, 0);
214			break;
215		case 'L':
216			printf("-L deprecated, use -o nolockd\n");
217			build_iovec(&iov, &iovlen, "nolockd", NULL, 0);
218			break;
219		case 'l':
220			printf("-l deprecated, -o rdirplus\n");
221			build_iovec(&iov, &iovlen, "rdirplus", NULL, 0);
222			break;
223		case 'N':
224			printf("-N deprecated, do not specify -o resvport\n");
225			break;
226		case 'o': {
227			int pass_flag_to_nmount;
228			char *opt = optarg;
229			while (opt) {
230				char *pval = NULL;
231				char *pnextopt = NULL;
232				char *val = "";
233				pass_flag_to_nmount = 1;
234				pnextopt = strchr(opt, ',');
235				if (pnextopt != NULL) {
236					*pnextopt = '\0';
237					pnextopt++;
238				}
239				pval = strchr(opt, '=');
240				if (pval != NULL) {
241					*pval = '\0';
242					val = pval + 1;
243				}
244				if (strcmp(opt, "bg") == 0) {
245					opflags |= BGRND;
246					pass_flag_to_nmount=0;
247				} else if (strcmp(opt, "fg") == 0) {
248					/* same as not specifying -o bg */
249					pass_flag_to_nmount=0;
250				} else if (strcmp(opt, "gssname") == 0) {
251					pass_flag_to_nmount = 0;
252					gssname = val;
253				} else if (strcmp(opt, "mntudp") == 0) {
254					mnttcp_ok = 0;
255					nfsproto = IPPROTO_UDP;
256				} else if (strcmp(opt, "udp") == 0) {
257					nfsproto = IPPROTO_UDP;
258				} else if (strcmp(opt, "tcp") == 0) {
259					nfsproto = IPPROTO_TCP;
260				} else if (strcmp(opt, "noinet4") == 0) {
261					pass_flag_to_nmount=0;
262					opflags |= OF_NOINET4;
263				} else if (strcmp(opt, "noinet6") == 0) {
264					pass_flag_to_nmount=0;
265					opflags |= OF_NOINET6;
266				} else if (strcmp(opt, "noconn") == 0) {
267					noconn = 1;
268				} else if (strcmp(opt, "nfsv2") == 0) {
269					pass_flag_to_nmount=0;
270					mountmode = V2;
271				} else if (strcmp(opt, "nfsv3") == 0) {
272					mountmode = V3;
273				} else if (strcmp(opt, "nfsv4") == 0) {
274					pass_flag_to_nmount=0;
275					mountmode = V4;
276					fstype = "nfs";
277					nfsproto = IPPROTO_TCP;
278					if (portspec == NULL)
279						portspec = "2049";
280				} else if (strcmp(opt, "port") == 0) {
281					pass_flag_to_nmount=0;
282					asprintf(&portspec, "%d",
283					    atoi(val));
284					if (portspec == NULL)
285						err(1, "asprintf");
286				} else if (strcmp(opt, "principal") == 0) {
287					got_principal = 1;
288				} else if (strcmp(opt, "sec") == 0) {
289					/*
290					 * Don't add this option to
291					 * the iovec yet - we will
292					 * negotiate which sec flavor
293					 * to use with the remote
294					 * mountd.
295					 */
296					pass_flag_to_nmount=0;
297					secflavor = sec_name_to_num(val);
298					if (secflavor < 0) {
299						errx(1,
300						    "illegal sec value -- %s",
301						    val);
302					}
303				} else if (strcmp(opt, "retrycnt") == 0) {
304					pass_flag_to_nmount=0;
305					num = strtol(val, &p, 10);
306					if (*p || num < 0)
307						errx(1, "illegal retrycnt value -- %s", val);
308					retrycnt = num;
309				} else if (strcmp(opt, "maxgroups") == 0) {
310					num = strtol(val, &p, 10);
311					if (*p || num <= 0)
312						errx(1, "illegal maxgroups value -- %s", val);
313					//set_rpc_maxgrouplist(num);
314				}
315				if (pass_flag_to_nmount)
316					build_iovec(&iov, &iovlen, opt, val,
317					    strlen(val) + 1);
318				opt = pnextopt;
319			}
320			}
321			break;
322		case 'P':
323			/* obsolete for -o noresvport now default */
324			printf("-P deprecated, use -o noresvport\n");
325			build_iovec(&iov, &iovlen, "noresvport", NULL, 0);
326			break;
327		case 'R':
328			printf("-R deprecated, use -o retrycnt=<retrycnt>\n");
329			num = strtol(optarg, &p, 10);
330			if (*p || num < 0)
331				errx(1, "illegal -R value -- %s", optarg);
332			retrycnt = num;
333			break;
334		case 'r':
335			printf("-r deprecated, use -o rsize=<rsize>\n");
336			build_iovec(&iov, &iovlen, "rsize", optarg, (size_t)-1);
337			break;
338		case 's':
339			printf("-s deprecated, use -o soft\n");
340			build_iovec(&iov, &iovlen, "soft", NULL, 0);
341			break;
342		case 'T':
343			nfsproto = IPPROTO_TCP;
344			printf("-T deprecated, use -o tcp\n");
345			break;
346		case 't':
347			printf("-t deprecated, use -o timeout=<value>\n");
348			build_iovec(&iov, &iovlen, "timeout", optarg, (size_t)-1);
349			break;
350		case 'w':
351			printf("-w deprecated, use -o wsize=<value>\n");
352			build_iovec(&iov, &iovlen, "wsize", optarg, (size_t)-1);
353			break;
354		case 'x':
355			printf("-x deprecated, use -o retrans=<value>\n");
356			build_iovec(&iov, &iovlen, "retrans", optarg, (size_t)-1);
357			break;
358		case 'U':
359			printf("-U deprecated, use -o mntudp\n");
360			mnttcp_ok = 0;
361			nfsproto = IPPROTO_UDP;
362			build_iovec(&iov, &iovlen, "mntudp", NULL, 0);
363			break;
364		default:
365			usage();
366			break;
367		}
368	argc -= optind;
369	argv += optind;
370
371	if (argc != 2) {
372		usage();
373		/* NOTREACHED */
374	}
375
376	spec = *argv++;
377	name = *argv;
378
379	if (retrycnt == -1)
380		/* The default is to keep retrying forever. */
381		retrycnt = 0;
382
383	/*
384	 * If the fstye is "oldnfs", run the old NFS client unless the
385	 * "nfsv4" option was specified.
386	 */
387	if (strcmp(fstype, "nfs") == 0) {
388		if (modfind("nfscl") < 0) {
389			/* Not present in kernel, try loading it */
390			if (kldload("nfscl") < 0 ||
391			    modfind("nfscl") < 0)
392				errx(1, "nfscl is not available");
393		}
394	}
395
396	/*
397	 * Add the fqdn to the gssname, as required.
398	 */
399	if (gssname != NULL) {
400		if (strchr(gssname, '@') == NULL &&
401		    gethostname(hostname, MAXHOSTNAMELEN) == 0) {
402			snprintf(gssn, sizeof (gssn), "%s@%s", gssname,
403			    hostname);
404			gssname = gssn;
405		}
406		build_iovec(&iov, &iovlen, "gssname", gssname,
407		    strlen(gssname) + 1);
408	}
409
410	if (!getnfsargs(spec, &iov, &iovlen))
411		exit(1);
412
413	/* resolve the mountpoint with realpath(3) */
414	if (checkpath(name, mntpath) != 0)
415		err(1, "%s", mntpath);
416
417	build_iovec(&iov, &iovlen, "fstype", fstype, (size_t)-1);
418	build_iovec(&iov, &iovlen, "fspath", mntpath, (size_t)-1);
419	build_iovec(&iov, &iovlen, "errmsg", errmsg, sizeof(errmsg));
420
421	/*
422	 * XXX:
423	 * Backwards compatibility routines for older kernels.
424	 * Remove this and fallback_mount() code when we do not need to support
425	 * NFS mounts against older kernels which still need
426	 * struct nfs_args to be passed in via nmount().
427	 */
428	osversion = getosreldate();
429	if (osversion >= 702100) {
430		if (nmount(iov, iovlen, mntflags))
431			err(1, "%s, %s", mntpath, errmsg);
432	} else {
433		if (fallback_mount(iov, iovlen, mntflags))
434			err(1, "%s, %s", mntpath, errmsg);
435	}
436
437	exit(0);
438}
439
440static int
441findopt(struct iovec *iov, int iovlen, const char *name,
442    char **valuep, int *lenp)
443{
444	int i;
445
446	for (i = 0; i < iovlen/2; i++, iov += 2) {
447		if (strcmp(name, iov[0].iov_base) == 0) {
448			if (valuep)
449				*valuep = iov[1].iov_base;
450			if (lenp)
451				*lenp = iov[1].iov_len;
452			return (0);
453		}
454	}
455	return (ENOENT);
456}
457
458static void
459copyopt(struct iovec **newiov, int *newiovlen,
460    struct iovec *iov, int iovlen, const char *name)
461{
462	char *value;
463	int len;
464
465	if (findopt(iov, iovlen, name, &value, &len) == 0)
466		build_iovec(newiov, newiovlen, name, value, len);
467}
468
469/*
470 * XXX: This function is provided for backwards
471 *      compatibility with older kernels which did not support
472 *      passing NFS mount options to nmount() as individual
473 *      parameters.  It should be eventually be removed.
474 */
475static int
476fallback_mount(struct iovec *iov, int iovlen, int mntflags)
477{
478	struct nfs_args args = {
479	    .version = NFS_ARGSVERSION,
480	    .addr = NULL,
481	    .addrlen = sizeof (struct sockaddr_in),
482	    .sotype = SOCK_STREAM,
483	    .proto = 0,
484	    .fh = NULL,
485	    .fhsize = 0,
486	    .flags = NFSMNT_RESVPORT,
487	    .wsize = NFS_WSIZE,
488	    .rsize = NFS_RSIZE,
489	    .readdirsize = NFS_READDIRSIZE,
490	    .timeo = 10,
491	    .retrans = NFS_RETRANS,
492	    .maxgrouplist = NFS_MAXGRPS,
493	    .readahead = NFS_DEFRAHEAD,
494	    .wcommitsize = 0,			/* was: NQ_DEFLEASE */
495	    .deadthresh = NFS_MAXDEADTHRESH,	/* was: NQ_DEADTHRESH */
496	    .hostname = NULL,
497	    /* args version 4 */
498	    .acregmin = NFS_MINATTRTIMO,
499	    .acregmax = NFS_MAXATTRTIMO,
500	    .acdirmin = NFS_MINDIRATTRTIMO,
501	    .acdirmax = NFS_MAXDIRATTRTIMO,
502	};
503	int ret;
504	char *opt;
505	struct iovec *newiov;
506	int newiovlen;
507
508	if (findopt(iov, iovlen, "dumbtimer", NULL, NULL) == 0)
509		args.flags |= NFSMNT_DUMBTIMR;
510	if (findopt(iov, iovlen, "noconn", NULL, NULL) == 0)
511		args.flags |= NFSMNT_NOCONN;
512	if (findopt(iov, iovlen, "conn", NULL, NULL) == 0)
513		args.flags |= NFSMNT_NOCONN;
514	if (findopt(iov, iovlen, "nolockd", NULL, NULL) == 0)
515		args.flags |= NFSMNT_NOLOCKD;
516	if (findopt(iov, iovlen, "lockd", NULL, NULL) == 0)
517		args.flags &= ~NFSMNT_NOLOCKD;
518	if (findopt(iov, iovlen, "intr", NULL, NULL) == 0)
519		args.flags |= NFSMNT_INT;
520	if (findopt(iov, iovlen, "rdirplus", NULL, NULL) == 0)
521		args.flags |= NFSMNT_RDIRPLUS;
522	if (findopt(iov, iovlen, "resvport", NULL, NULL) == 0)
523		args.flags |= NFSMNT_RESVPORT;
524	if (findopt(iov, iovlen, "noresvport", NULL, NULL) == 0)
525		args.flags &= ~NFSMNT_RESVPORT;
526	if (findopt(iov, iovlen, "soft", NULL, NULL) == 0)
527		args.flags |= NFSMNT_SOFT;
528	if (findopt(iov, iovlen, "hard", NULL, NULL) == 0)
529		args.flags &= ~NFSMNT_SOFT;
530	if (findopt(iov, iovlen, "mntudp", NULL, NULL) == 0)
531		args.sotype = SOCK_DGRAM;
532	if (findopt(iov, iovlen, "udp", NULL, NULL) == 0)
533		args.sotype = SOCK_DGRAM;
534	if (findopt(iov, iovlen, "tcp", NULL, NULL) == 0)
535		args.sotype = SOCK_STREAM;
536	if (findopt(iov, iovlen, "nfsv3", NULL, NULL) == 0)
537		args.flags |= NFSMNT_NFSV3;
538	if (findopt(iov, iovlen, "readdirsize", &opt, NULL) == 0) {
539		if (opt == NULL) {
540			errx(1, "illegal readdirsize");
541		}
542		ret = sscanf(opt, "%d", &args.readdirsize);
543		if (ret != 1 || args.readdirsize <= 0) {
544			errx(1, "illegal readdirsize: %s", opt);
545		}
546		args.flags |= NFSMNT_READDIRSIZE;
547	}
548	if (findopt(iov, iovlen, "readahead", &opt, NULL) == 0) {
549		if (opt == NULL) {
550			errx(1, "illegal readahead");
551		}
552		ret = sscanf(opt, "%d", &args.readahead);
553		if (ret != 1 || args.readahead <= 0) {
554			errx(1, "illegal readahead: %s", opt);
555		}
556		args.flags |= NFSMNT_READAHEAD;
557	}
558	if (findopt(iov, iovlen, "wsize", &opt, NULL) == 0) {
559		if (opt == NULL) {
560			errx(1, "illegal wsize");
561		}
562		ret = sscanf(opt, "%d", &args.wsize);
563		if (ret != 1 || args.wsize <= 0) {
564			errx(1, "illegal wsize: %s", opt);
565		}
566		args.flags |= NFSMNT_WSIZE;
567	}
568	if (findopt(iov, iovlen, "rsize", &opt, NULL) == 0) {
569		if (opt == NULL) {
570			errx(1, "illegal rsize");
571		}
572		ret = sscanf(opt, "%d", &args.rsize);
573		if (ret != 1 || args.rsize <= 0) {
574			errx(1, "illegal wsize: %s", opt);
575		}
576		args.flags |= NFSMNT_RSIZE;
577	}
578	if (findopt(iov, iovlen, "retrans", &opt, NULL) == 0) {
579		if (opt == NULL) {
580			errx(1, "illegal retrans");
581		}
582		ret = sscanf(opt, "%d", &args.retrans);
583		if (ret != 1 || args.retrans <= 0) {
584			errx(1, "illegal retrans: %s", opt);
585		}
586		args.flags |= NFSMNT_RETRANS;
587	}
588	if (findopt(iov, iovlen, "acregmin", &opt, NULL) == 0) {
589		ret = sscanf(opt, "%d", &args.acregmin);
590		if (ret != 1 || args.acregmin < 0) {
591			errx(1, "illegal acregmin: %s", opt);
592		}
593		args.flags |= NFSMNT_ACREGMIN;
594	}
595	if (findopt(iov, iovlen, "acregmax", &opt, NULL) == 0) {
596		ret = sscanf(opt, "%d", &args.acregmax);
597		if (ret != 1 || args.acregmax < 0) {
598			errx(1, "illegal acregmax: %s", opt);
599		}
600		args.flags |= NFSMNT_ACREGMAX;
601	}
602	if (findopt(iov, iovlen, "acdirmin", &opt, NULL) == 0) {
603		ret = sscanf(opt, "%d", &args.acdirmin);
604		if (ret != 1 || args.acdirmin < 0) {
605			errx(1, "illegal acdirmin: %s", opt);
606		}
607		args.flags |= NFSMNT_ACDIRMIN;
608	}
609	if (findopt(iov, iovlen, "acdirmax", &opt, NULL) == 0) {
610		ret = sscanf(opt, "%d", &args.acdirmax);
611		if (ret != 1 || args.acdirmax < 0) {
612			errx(1, "illegal acdirmax: %s", opt);
613		}
614		args.flags |= NFSMNT_ACDIRMAX;
615	}
616	if (findopt(iov, iovlen, "wcommitsize", &opt, NULL) == 0) {
617		ret = sscanf(opt, "%d", &args.wcommitsize);
618		if (ret != 1 || args.wcommitsize < 0) {
619			errx(1, "illegal wcommitsize: %s", opt);
620		}
621		args.flags |= NFSMNT_WCOMMITSIZE;
622	}
623	if (findopt(iov, iovlen, "deadthresh", &opt, NULL) == 0) {
624		ret = sscanf(opt, "%d", &args.deadthresh);
625		if (ret != 1 || args.deadthresh <= 0) {
626			errx(1, "illegal deadthresh: %s", opt);
627		}
628		args.flags |= NFSMNT_DEADTHRESH;
629	}
630	if (findopt(iov, iovlen, "timeout", &opt, NULL) == 0) {
631		ret = sscanf(opt, "%d", &args.timeo);
632		if (ret != 1 || args.timeo <= 0) {
633			errx(1, "illegal timeout: %s", opt);
634		}
635		args.flags |= NFSMNT_TIMEO;
636	}
637	if (findopt(iov, iovlen, "maxgroups", &opt, NULL) == 0) {
638		ret = sscanf(opt, "%d", &args.maxgrouplist);
639		if (ret != 1 || args.timeo <= 0) {
640			errx(1, "illegal maxgroups: %s", opt);
641		}
642		args.flags |= NFSMNT_MAXGRPS;
643	}
644	if (findopt(iov, iovlen, "addr", &opt,
645		&args.addrlen) == 0) {
646		args.addr = (struct sockaddr *) opt;
647	}
648	if (findopt(iov, iovlen, "fh", &opt, &args.fhsize) == 0) {
649		args.fh = opt;
650	}
651	if (findopt(iov, iovlen, "hostname", &args.hostname,
652		NULL) == 0) {
653	}
654	if (args.hostname == NULL) {
655		errx(1, "Invalid hostname");
656	}
657
658	newiov = NULL;
659	newiovlen = 0;
660
661	build_iovec(&newiov, &newiovlen, "nfs_args", &args, sizeof(args));
662	copyopt(&newiov, &newiovlen, iov, iovlen, "fstype");
663	copyopt(&newiov, &newiovlen, iov, iovlen, "fspath");
664	copyopt(&newiov, &newiovlen, iov, iovlen, "errmsg");
665
666	return nmount(newiov, newiovlen, mntflags);
667}
668
669static int
670sec_name_to_num(char *sec)
671{
672	if (!strcmp(sec, "krb5"))
673		return (RPCSEC_GSS_KRB5);
674	if (!strcmp(sec, "krb5i"))
675		return (RPCSEC_GSS_KRB5I);
676	if (!strcmp(sec, "krb5p"))
677		return (RPCSEC_GSS_KRB5P);
678	if (!strcmp(sec, "sys"))
679		return (AUTH_SYS);
680	return (-1);
681}
682
683static char *
684sec_num_to_name(int flavor)
685{
686	switch (flavor) {
687	case RPCSEC_GSS_KRB5:
688		return ("krb5");
689	case RPCSEC_GSS_KRB5I:
690		return ("krb5i");
691	case RPCSEC_GSS_KRB5P:
692		return ("krb5p");
693	case AUTH_SYS:
694		return ("sys");
695	}
696	return (NULL);
697}
698
699static int
700getnfsargs(char *spec, struct iovec **iov, int *iovlen)
701{
702	struct addrinfo hints, *ai_nfs, *ai;
703	enum tryret ret;
704	int ecode, speclen, remoteerr, offset, have_bracket = 0;
705	char *hostp, *delimp, *errstr;
706	size_t len;
707	static char nam[MNAMELEN + 1], pname[MAXHOSTNAMELEN + 5];
708
709	if (*spec == '[' && (delimp = strchr(spec + 1, ']')) != NULL &&
710	    *(delimp + 1) == ':') {
711		hostp = spec + 1;
712		spec = delimp + 2;
713		have_bracket = 1;
714	} else if ((delimp = strrchr(spec, ':')) != NULL) {
715		hostp = spec;
716		spec = delimp + 1;
717	} else if ((delimp = strrchr(spec, '@')) != NULL) {
718		warnx("path@server syntax is deprecated, use server:path");
719		hostp = delimp + 1;
720	} else {
721		warnx("no <host>:<dirpath> nfs-name");
722		return (0);
723	}
724	*delimp = '\0';
725
726	/*
727	 * If there has been a trailing slash at mounttime it seems
728	 * that some mountd implementations fail to remove the mount
729	 * entries from their mountlist while unmounting.
730	 */
731	for (speclen = strlen(spec);
732		speclen > 1 && spec[speclen - 1] == '/';
733		speclen--)
734		spec[speclen - 1] = '\0';
735	if (strlen(hostp) + strlen(spec) + 1 > MNAMELEN) {
736		warnx("%s:%s: %s", hostp, spec, strerror(ENAMETOOLONG));
737		return (0);
738	}
739	/* Make both '@' and ':' notations equal */
740	if (*hostp != '\0') {
741		len = strlen(hostp);
742		offset = 0;
743		if (have_bracket)
744			nam[offset++] = '[';
745		memmove(nam + offset, hostp, len);
746		if (have_bracket)
747			nam[len + offset++] = ']';
748		nam[len + offset++] = ':';
749		memmove(nam + len + offset, spec, speclen);
750		nam[len + speclen + offset] = '\0';
751	}
752
753	/*
754	 * Handle an internet host address.
755	 */
756	memset(&hints, 0, sizeof hints);
757	hints.ai_flags = AI_NUMERICHOST;
758	if (nfsproto == IPPROTO_TCP)
759		hints.ai_socktype = SOCK_STREAM;
760	else if (nfsproto == IPPROTO_UDP)
761		hints.ai_socktype = SOCK_DGRAM;
762
763	if (getaddrinfo(hostp, portspec, &hints, &ai_nfs) != 0) {
764		hints.ai_flags = AI_CANONNAME;
765		if ((ecode = getaddrinfo(hostp, portspec, &hints, &ai_nfs))
766		    != 0) {
767			if (portspec == NULL)
768				errx(1, "%s: %s", hostp, gai_strerror(ecode));
769			else
770				errx(1, "%s:%s: %s", hostp, portspec,
771				    gai_strerror(ecode));
772			return (0);
773		}
774
775		/*
776		 * For a Kerberized nfs mount where the "principal"
777		 * argument has not been set, add it here.
778		 */
779		if (got_principal == 0 && secflavor >= 0 &&
780		    secflavor != AUTH_SYS && ai_nfs->ai_canonname != NULL) {
781			snprintf(pname, sizeof (pname), "nfs@%s",
782			    ai_nfs->ai_canonname);
783			build_iovec(iov, iovlen, "principal", pname,
784			    strlen(pname) + 1);
785		}
786	}
787
788	ret = TRYRET_LOCALERR;
789	for (;;) {
790		/*
791		 * Try each entry returned by getaddrinfo(). Note the
792		 * occurrence of remote errors by setting `remoteerr'.
793		 */
794		remoteerr = 0;
795		for (ai = ai_nfs; ai != NULL; ai = ai->ai_next) {
796			if ((ai->ai_family == AF_INET6) &&
797			    (opflags & OF_NOINET6))
798				continue;
799			if ((ai->ai_family == AF_INET) &&
800			    (opflags & OF_NOINET4))
801				continue;
802			ret = nfs_tryproto(ai, hostp, spec, &errstr, iov,
803			    iovlen);
804			if (ret == TRYRET_SUCCESS)
805				break;
806			if (ret != TRYRET_LOCALERR)
807				remoteerr = 1;
808			if ((opflags & ISBGRND) == 0)
809				fprintf(stderr, "%s\n", errstr);
810		}
811		if (ret == TRYRET_SUCCESS)
812			break;
813
814		/* Exit if all errors were local. */
815		if (!remoteerr)
816			exit(1);
817
818		/*
819		 * If retrycnt == 0, we are to keep retrying forever.
820		 * Otherwise decrement it, and exit if it hits zero.
821		 */
822		if (retrycnt != 0 && --retrycnt == 0)
823			exit(1);
824
825		if ((opflags & (BGRND | ISBGRND)) == BGRND) {
826			warnx("Cannot immediately mount %s:%s, backgrounding",
827			    hostp, spec);
828			opflags |= ISBGRND;
829			if (daemon(0, 0) != 0)
830				err(1, "daemon");
831		}
832		sleep(60);
833	}
834	freeaddrinfo(ai_nfs);
835
836	build_iovec(iov, iovlen, "hostname", nam, (size_t)-1);
837	/* Add mounted file system to PATH_MOUNTTAB */
838	if (!add_mtab(hostp, spec))
839		warnx("can't update %s for %s:%s", PATH_MOUNTTAB, hostp, spec);
840	return (1);
841}
842
843/*
844 * Try to set up the NFS arguments according to the address
845 * family, protocol (and possibly port) specified in `ai'.
846 *
847 * Returns TRYRET_SUCCESS if successful, or:
848 *   TRYRET_TIMEOUT		The server did not respond.
849 *   TRYRET_REMOTEERR		The server reported an error.
850 *   TRYRET_LOCALERR		Local failure.
851 *
852 * In all error cases, *errstr will be set to a statically-allocated string
853 * describing the error.
854 */
855static enum tryret
856nfs_tryproto(struct addrinfo *ai, char *hostp, char *spec, char **errstr,
857    struct iovec **iov, int *iovlen)
858{
859	static char errbuf[256];
860	struct sockaddr_storage nfs_ss;
861	struct netbuf nfs_nb;
862	struct nfhret nfhret;
863	struct timeval try;
864	struct rpc_err rpcerr;
865	CLIENT *clp;
866	struct netconfig *nconf, *nconf_mnt;
867	const char *netid, *netid_mnt;
868	char *secname;
869	int doconnect, nfsvers, mntvers, sotype;
870	enum clnt_stat stat;
871	enum mountmode trymntmode;
872
873	sotype = 0;
874	trymntmode = mountmode;
875	errbuf[0] = '\0';
876	*errstr = errbuf;
877
878	if (nfsproto == IPPROTO_TCP)
879		sotype = SOCK_STREAM;
880	else if (nfsproto == IPPROTO_UDP)
881		sotype = SOCK_DGRAM;
882
883	if ((netid = netidbytype(ai->ai_family, sotype)) == NULL) {
884		snprintf(errbuf, sizeof errbuf,
885		    "af %d sotype %d not supported", ai->ai_family, sotype);
886		return (TRYRET_LOCALERR);
887	}
888	if ((nconf = getnetconf_cached(netid)) == NULL) {
889		snprintf(errbuf, sizeof errbuf, "%s: %s", netid, nc_sperror());
890		return (TRYRET_LOCALERR);
891	}
892	/* The RPCPROG_MNT netid may be different. */
893	if (mnttcp_ok) {
894		netid_mnt = netid;
895		nconf_mnt = nconf;
896	} else {
897		if ((netid_mnt = netidbytype(ai->ai_family, SOCK_DGRAM))
898		     == NULL) {
899			snprintf(errbuf, sizeof errbuf,
900			    "af %d sotype SOCK_DGRAM not supported",
901			     ai->ai_family);
902			return (TRYRET_LOCALERR);
903		}
904		if ((nconf_mnt = getnetconf_cached(netid_mnt)) == NULL) {
905			snprintf(errbuf, sizeof errbuf, "%s: %s", netid_mnt,
906			    nc_sperror());
907			return (TRYRET_LOCALERR);
908		}
909	}
910
911tryagain:
912	if (trymntmode == V4) {
913		nfsvers = 4;
914	} else if (trymntmode == V2) {
915		nfsvers = 2;
916		mntvers = 1;
917	} else {
918		nfsvers = 3;
919		mntvers = 3;
920	}
921
922	if (portspec != NULL) {
923		/* `ai' contains the complete nfsd sockaddr. */
924		nfs_nb.buf = ai->ai_addr;
925		nfs_nb.len = nfs_nb.maxlen = ai->ai_addrlen;
926	} else {
927		/* Ask the remote rpcbind. */
928		nfs_nb.buf = &nfs_ss;
929		nfs_nb.len = nfs_nb.maxlen = sizeof nfs_ss;
930
931		if (!rpcb_getaddr(NFS_PROGRAM, nfsvers, nconf, &nfs_nb,
932		    hostp)) {
933			if (rpc_createerr.cf_stat == RPC_PROGVERSMISMATCH &&
934			    trymntmode == ANY) {
935				trymntmode = V2;
936				goto tryagain;
937			}
938			snprintf(errbuf, sizeof errbuf, "[%s] %s:%s: %s",
939			    netid, hostp, spec,
940			    clnt_spcreateerror("RPCPROG_NFS"));
941			return (returncode(rpc_createerr.cf_stat,
942			    &rpc_createerr.cf_error));
943		}
944	}
945
946	/* Check that the server (nfsd) responds on the port we have chosen. */
947	clp = clnt_tli_create(RPC_ANYFD, nconf, &nfs_nb, NFS_PROGRAM, nfsvers,
948	    0, 0);
949	if (clp == NULL) {
950		snprintf(errbuf, sizeof errbuf, "[%s] %s:%s: %s", netid,
951		    hostp, spec, clnt_spcreateerror("nfsd: RPCPROG_NFS"));
952		return (returncode(rpc_createerr.cf_stat,
953		    &rpc_createerr.cf_error));
954	}
955	if (sotype == SOCK_DGRAM && noconn == 0) {
956		/*
957		 * Use connect(), to match what the kernel does. This
958		 * catches cases where the server responds from the
959		 * wrong source address.
960		 */
961		doconnect = 1;
962		if (!clnt_control(clp, CLSET_CONNECT, (char *)&doconnect)) {
963			clnt_destroy(clp);
964			snprintf(errbuf, sizeof errbuf,
965			    "[%s] %s:%s: CLSET_CONNECT failed", netid, hostp,
966			    spec);
967			return (TRYRET_LOCALERR);
968		}
969	}
970
971	try.tv_sec = 10;
972	try.tv_usec = 0;
973	stat = clnt_call(clp, NFSPROC_NULL, (xdrproc_t)xdr_void, NULL,
974			 (xdrproc_t)xdr_void, NULL, try);
975	if (stat != RPC_SUCCESS) {
976		if (stat == RPC_PROGVERSMISMATCH && trymntmode == ANY) {
977			clnt_destroy(clp);
978			trymntmode = V2;
979			goto tryagain;
980		}
981		clnt_geterr(clp, &rpcerr);
982		snprintf(errbuf, sizeof errbuf, "[%s] %s:%s: %s", netid,
983		    hostp, spec, clnt_sperror(clp, "NFSPROC_NULL"));
984		clnt_destroy(clp);
985		return (returncode(stat, &rpcerr));
986	}
987	clnt_destroy(clp);
988
989	/*
990	 * For NFSv4, there is no mount protocol.
991	 */
992	if (trymntmode == V4) {
993		/*
994		 * Store the server address in nfsargsp, making
995		 * sure to copy any locally allocated structures.
996		 */
997		addrlen = nfs_nb.len;
998		addr = malloc(addrlen);
999		if (addr == NULL)
1000			err(1, "malloc");
1001		bcopy(nfs_nb.buf, addr, addrlen);
1002
1003		build_iovec(iov, iovlen, "addr", addr, addrlen);
1004		secname = sec_num_to_name(secflavor);
1005		if (secname != NULL)
1006			build_iovec(iov, iovlen, "sec", secname, (size_t)-1);
1007		build_iovec(iov, iovlen, "nfsv4", NULL, 0);
1008		build_iovec(iov, iovlen, "dirpath", spec, (size_t)-1);
1009
1010		return (TRYRET_SUCCESS);
1011	}
1012
1013	/* Send the MOUNTPROC_MNT RPC to get the root filehandle. */
1014	try.tv_sec = 10;
1015	try.tv_usec = 0;
1016	clp = clnt_tp_create(hostp, MOUNTPROG, mntvers, nconf_mnt);
1017	if (clp == NULL) {
1018		snprintf(errbuf, sizeof errbuf, "[%s] %s:%s: %s", netid_mnt,
1019		    hostp, spec, clnt_spcreateerror("RPCMNT: clnt_create"));
1020		return (returncode(rpc_createerr.cf_stat,
1021		    &rpc_createerr.cf_error));
1022	}
1023	clp->cl_auth = authsys_create_default();
1024	nfhret.auth = secflavor;
1025	nfhret.vers = mntvers;
1026	stat = clnt_call(clp, MOUNTPROC_MNT, (xdrproc_t)xdr_dir, spec,
1027			 (xdrproc_t)xdr_fh, &nfhret,
1028	    try);
1029	auth_destroy(clp->cl_auth);
1030	if (stat != RPC_SUCCESS) {
1031		if (stat == RPC_PROGVERSMISMATCH && trymntmode == ANY) {
1032			clnt_destroy(clp);
1033			trymntmode = V2;
1034			goto tryagain;
1035		}
1036		clnt_geterr(clp, &rpcerr);
1037		snprintf(errbuf, sizeof errbuf, "[%s] %s:%s: %s", netid_mnt,
1038		    hostp, spec, clnt_sperror(clp, "RPCPROG_MNT"));
1039		clnt_destroy(clp);
1040		return (returncode(stat, &rpcerr));
1041	}
1042	clnt_destroy(clp);
1043
1044	if (nfhret.stat != 0) {
1045		snprintf(errbuf, sizeof errbuf, "[%s] %s:%s: %s", netid_mnt,
1046		    hostp, spec, strerror(nfhret.stat));
1047		return (TRYRET_REMOTEERR);
1048	}
1049
1050	/*
1051	 * Store the filehandle and server address in nfsargsp, making
1052	 * sure to copy any locally allocated structures.
1053	 */
1054	addrlen = nfs_nb.len;
1055	addr = malloc(addrlen);
1056	fhsize = nfhret.fhsize;
1057	fh = malloc(fhsize);
1058	if (addr == NULL || fh == NULL)
1059		err(1, "malloc");
1060	bcopy(nfs_nb.buf, addr, addrlen);
1061	bcopy(nfhret.nfh, fh, fhsize);
1062
1063	build_iovec(iov, iovlen, "addr", addr, addrlen);
1064	build_iovec(iov, iovlen, "fh", fh, fhsize);
1065	secname = sec_num_to_name(nfhret.auth);
1066	if (secname)
1067		build_iovec(iov, iovlen, "sec", secname, (size_t)-1);
1068	if (nfsvers == 3)
1069		build_iovec(iov, iovlen, "nfsv3", NULL, 0);
1070
1071	return (TRYRET_SUCCESS);
1072}
1073
1074/*
1075 * Catagorise a RPC return status and error into an `enum tryret'
1076 * return code.
1077 */
1078static enum tryret
1079returncode(enum clnt_stat stat, struct rpc_err *rpcerr)
1080{
1081	switch (stat) {
1082	case RPC_TIMEDOUT:
1083		return (TRYRET_TIMEOUT);
1084	case RPC_PMAPFAILURE:
1085	case RPC_PROGNOTREGISTERED:
1086	case RPC_PROGVERSMISMATCH:
1087	/* XXX, these can be local or remote. */
1088	case RPC_CANTSEND:
1089	case RPC_CANTRECV:
1090		return (TRYRET_REMOTEERR);
1091	case RPC_SYSTEMERROR:
1092		switch (rpcerr->re_errno) {
1093		case ETIMEDOUT:
1094			return (TRYRET_TIMEOUT);
1095		case ENOMEM:
1096			break;
1097		default:
1098			return (TRYRET_REMOTEERR);
1099		}
1100		/* FALLTHROUGH */
1101	default:
1102		break;
1103	}
1104	return (TRYRET_LOCALERR);
1105}
1106
1107/*
1108 * Look up a netid based on an address family and socket type.
1109 * `af' is the address family, and `sotype' is SOCK_DGRAM or SOCK_STREAM.
1110 *
1111 * XXX there should be a library function for this.
1112 */
1113static const char *
1114netidbytype(int af, int sotype)
1115{
1116	struct nc_protos *p;
1117
1118	for (p = nc_protos; p->netid != NULL; p++) {
1119		if (af != p->af || sotype != p->sotype)
1120			continue;
1121		return (p->netid);
1122	}
1123	return (NULL);
1124}
1125
1126/*
1127 * Look up a netconfig entry based on a netid, and cache the result so
1128 * that we don't need to remember to call freenetconfigent().
1129 *
1130 * Otherwise it behaves just like getnetconfigent(), so nc_*error()
1131 * work on failure.
1132 */
1133static struct netconfig *
1134getnetconf_cached(const char *netid)
1135{
1136	static struct nc_entry {
1137		struct netconfig *nconf;
1138		struct nc_entry *next;
1139	} *head;
1140	struct nc_entry *p;
1141	struct netconfig *nconf;
1142
1143	for (p = head; p != NULL; p = p->next)
1144		if (strcmp(netid, p->nconf->nc_netid) == 0)
1145			return (p->nconf);
1146
1147	if ((nconf = getnetconfigent(netid)) == NULL)
1148		return (NULL);
1149	if ((p = malloc(sizeof(*p))) == NULL)
1150		err(1, "malloc");
1151	p->nconf = nconf;
1152	p->next = head;
1153	head = p;
1154
1155	return (p->nconf);
1156}
1157
1158/*
1159 * xdr routines for mount rpc's
1160 */
1161static int
1162xdr_dir(XDR *xdrsp, char *dirp)
1163{
1164	return (xdr_string(xdrsp, &dirp, MNTPATHLEN));
1165}
1166
1167static int
1168xdr_fh(XDR *xdrsp, struct nfhret *np)
1169{
1170	int i;
1171	long auth, authcnt, authfnd = 0;
1172
1173	if (!xdr_u_long(xdrsp, &np->stat))
1174		return (0);
1175	if (np->stat)
1176		return (1);
1177	switch (np->vers) {
1178	case 1:
1179		np->fhsize = NFS_FHSIZE;
1180		return (xdr_opaque(xdrsp, (caddr_t)np->nfh, NFS_FHSIZE));
1181	case 3:
1182		if (!xdr_long(xdrsp, &np->fhsize))
1183			return (0);
1184		if (np->fhsize <= 0 || np->fhsize > NFS3_FHSIZE)
1185			return (0);
1186		if (!xdr_opaque(xdrsp, (caddr_t)np->nfh, np->fhsize))
1187			return (0);
1188		if (!xdr_long(xdrsp, &authcnt))
1189			return (0);
1190		for (i = 0; i < authcnt; i++) {
1191			if (!xdr_long(xdrsp, &auth))
1192				return (0);
1193			if (np->auth == -1) {
1194				np->auth = auth;
1195				authfnd++;
1196			} else if (auth == np->auth) {
1197				authfnd++;
1198			}
1199		}
1200		/*
1201		 * Some servers, such as DEC's OSF/1 return a nil authenticator
1202		 * list to indicate RPCAUTH_UNIX.
1203		 */
1204		if (authcnt == 0 && np->auth == -1)
1205			np->auth = AUTH_SYS;
1206		if (!authfnd && (authcnt > 0 || np->auth != AUTH_SYS))
1207			np->stat = EAUTH;
1208		return (1);
1209	};
1210	return (0);
1211}
1212
1213static void
1214usage(void)
1215{
1216	(void)fprintf(stderr, "%s\n%s\n%s\n%s\n",
1217"usage: mount_nfs [-23bcdiLlNPsTU] [-a maxreadahead] [-D deadthresh]",
1218"                 [-g maxgroups] [-I readdirsize] [-o options] [-R retrycnt]",
1219"                 [-r readsize] [-t timeout] [-w writesize] [-x retrans]",
1220"                 rhost:path node");
1221	exit(1);
1222}
1223