You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

rspamd.h 12KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370
  1. /*-
  2. * Copyright 2016-2017 Vsevolod Stakhov
  3. *
  4. * Licensed under the Apache License, Version 2.0 (the "License");
  5. * you may not use this file except in compliance with the License.
  6. * You may obtain a copy of the License at
  7. *
  8. * http://www.apache.org/licenses/LICENSE-2.0
  9. *
  10. * Unless required by applicable law or agreed to in writing, software
  11. * distributed under the License is distributed on an "AS IS" BASIS,
  12. * WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
  13. * See the License for the specific language governing permissions and
  14. * limitations under the License.
  15. */
  16. #ifndef RSPAMD_MAIN_H
  17. #define RSPAMD_MAIN_H
  18. #include "config.h"
  19. #include "libutil/fstring.h"
  20. #include "libutil/mem_pool.h"
  21. #include "libutil/util.h"
  22. #include "libutil/logger.h"
  23. #include "libutil/http_connection.h"
  24. #include "libutil/upstream.h"
  25. #include "libutil/radix.h"
  26. #include "libserver/url.h"
  27. #include "libserver/protocol.h"
  28. #include "libserver/async_session.h"
  29. #include "libserver/roll_history.h"
  30. #include "libserver/task.h"
  31. #include <openssl/ssl.h>
  32. #include <magic.h>
  33. /* Default values */
  34. #define FIXED_CONFIG_FILE RSPAMD_CONFDIR "/rspamd.conf"
  35. /* Time in seconds to exit for old worker */
  36. #define SOFT_SHUTDOWN_TIME 10
  37. /* Spam subject */
  38. #define SPAM_SUBJECT "*** SPAM *** %s"
  39. #ifdef CRLF
  40. #undef CRLF
  41. #undef CR
  42. #undef LF
  43. #endif
  44. #define CRLF "\r\n"
  45. #define CR '\r'
  46. #define LF '\n'
  47. enum rspamd_worker_flags {
  48. RSPAMD_WORKER_HAS_SOCKET = (1 << 0),
  49. RSPAMD_WORKER_UNIQUE = (1 << 1),
  50. RSPAMD_WORKER_THREADED = (1 << 2),
  51. RSPAMD_WORKER_KILLABLE = (1 << 3),
  52. RSPAMD_WORKER_ALWAYS_START = (1 << 4),
  53. RSPAMD_WORKER_SCANNER = (1 << 5),
  54. RSPAMD_WORKER_CONTROLLER = (1 << 6),
  55. };
  56. struct rspamd_worker_accept_event {
  57. ev_io accept_ev;
  58. ev_timer throttling_ev;
  59. struct ev_loop *event_loop;
  60. struct rspamd_worker_accept_event *prev, *next;
  61. };
  62. typedef void (*rspamd_worker_term_cb)(EV_P_ ev_child *, struct rspamd_main *,
  63. struct rspamd_worker *);
  64. /**
  65. * Worker process structure
  66. */
  67. struct rspamd_worker {
  68. pid_t pid; /**< pid of worker */
  69. pid_t ppid; /**< pid of parent */
  70. guint index; /**< index number */
  71. guint nconns; /**< current connections count */
  72. gboolean wanna_die; /**< worker is terminating */
  73. gboolean cores_throttled; /**< set to true if cores throttling took place */
  74. gdouble start_time; /**< start time */
  75. struct rspamd_main *srv; /**< pointer to server structure */
  76. GQuark type; /**< process type */
  77. GHashTable *signal_events; /**< signal events */
  78. struct rspamd_worker_accept_event *accept_events; /**< socket events */
  79. struct rspamd_worker_conf *cf; /**< worker config data */
  80. gpointer ctx; /**< worker's specific data */
  81. enum rspamd_worker_flags flags; /**< worker's flags */
  82. gint control_pipe[2]; /**< control pipe. [0] is used by main process,
  83. [1] is used by a worker */
  84. gint srv_pipe[2]; /**< used by workers to request something from the
  85. main process. [0] - main, [1] - worker */
  86. ev_io srv_ev; /**< used by main for read workers' requests */
  87. gpointer control_data; /**< used by control protocol to handle commands */
  88. gpointer tmp_data; /**< used to avoid race condition to deal with control messages */
  89. GPtrArray *finish_actions; /**< called when worker is terminated */
  90. ev_child cld_ev; /**< to allow reaping */
  91. rspamd_worker_term_cb term_handler; /**< custom term handler */
  92. };
  93. struct rspamd_abstract_worker_ctx {
  94. guint64 magic;
  95. /* Events base */
  96. struct ev_loop *event_loop;
  97. /* DNS resolver */
  98. struct rspamd_dns_resolver *resolver;
  99. /* Config */
  100. struct rspamd_config *cfg;
  101. char data[];
  102. };
  103. struct rspamd_worker_signal_handler;
  104. typedef gboolean (*rspamd_worker_signal_handler) (
  105. struct rspamd_worker_signal_handler *, void *ud);
  106. struct rspamd_worker_signal_cb {
  107. rspamd_worker_signal_handler handler;
  108. void *handler_data;
  109. struct rspamd_worker_signal_cb *next, *prev;
  110. };
  111. struct rspamd_worker_signal_handler {
  112. gint signo;
  113. gboolean enabled;
  114. ev_signal ev_sig;
  115. struct ev_loop *event_loop;
  116. struct rspamd_worker *worker;
  117. struct rspamd_worker_signal_cb *cb;
  118. };
  119. struct rspamd_controller_pbkdf {
  120. const char *name;
  121. const char *alias;
  122. const char *description;
  123. enum rspamd_cryptobox_pbkdf_type type;
  124. gint id;
  125. guint complexity;
  126. gsize salt_len;
  127. gsize key_len;
  128. };
  129. /**
  130. * Common structure representing C module context
  131. */
  132. struct module_s;
  133. struct module_ctx {
  134. gint (*filter)(struct rspamd_task *task); /**< pointer to headers process function */
  135. struct module_s *mod; /**< module pointer */
  136. gboolean enabled; /**< true if module is enabled in configuration */
  137. };
  138. #ifndef WITH_HYPERSCAN
  139. #define RSPAMD_FEATURE_HYPERSCAN "0"
  140. #else
  141. #define RSPAMD_FEATURE_HYPERSCAN "1"
  142. #endif
  143. #ifndef WITH_PCRE2
  144. #define RSPAMD_FEATURE_PCRE2 "0"
  145. #else
  146. #define RSPAMD_FEATURE_PCRE2 "1"
  147. #endif
  148. #ifndef WITH_FANN
  149. #define RSPAMD_FEATURE_FANN "0"
  150. #else
  151. #define RSPAMD_FEATURE_FANN "1"
  152. #endif
  153. #ifndef WITH_SNOWBALL
  154. #define RSPAMD_FEATURE_SNOWBALL "0"
  155. #else
  156. #define RSPAMD_FEATURE_SNOWBALL "1"
  157. #endif
  158. #define RSPAMD_CUR_MODULE_VERSION 0x1
  159. #define RSPAMD_CUR_WORKER_VERSION 0x2
  160. #define RSPAMD_FEATURES \
  161. RSPAMD_FEATURE_HYPERSCAN RSPAMD_FEATURE_PCRE2 \
  162. RSPAMD_FEATURE_FANN RSPAMD_FEATURE_SNOWBALL
  163. #define RSPAMD_MODULE_VER \
  164. RSPAMD_CUR_MODULE_VERSION, /* Module version */ \
  165. RSPAMD_VERSION_NUM, /* Rspamd version */ \
  166. RSPAMD_FEATURES /* Compilation features */ \
  167. #define RSPAMD_WORKER_VER \
  168. RSPAMD_CUR_WORKER_VERSION, /* Worker version */ \
  169. RSPAMD_VERSION_NUM, /* Rspamd version */ \
  170. RSPAMD_FEATURES /* Compilation features */ \
  171. /**
  172. * Module
  173. */
  174. typedef struct module_s {
  175. const gchar *name;
  176. int (*module_init_func)(struct rspamd_config *cfg, struct module_ctx **ctx);
  177. int (*module_config_func)(struct rspamd_config *cfg);
  178. int (*module_reconfig_func)(struct rspamd_config *cfg);
  179. int (*module_attach_controller_func)(struct module_ctx *ctx,
  180. GHashTable *custom_commands);
  181. guint module_version;
  182. guint64 rspamd_version;
  183. const gchar *rspamd_features;
  184. guint ctx_offset;
  185. } module_t;
  186. enum rspamd_worker_socket_type {
  187. RSPAMD_WORKER_SOCKET_NONE = 0,
  188. RSPAMD_WORKER_SOCKET_TCP = (1 << 0),
  189. RSPAMD_WORKER_SOCKET_UDP = (1 << 1),
  190. };
  191. struct rspamd_worker_listen_socket {
  192. const rspamd_inet_addr_t *addr;
  193. gint fd;
  194. enum rspamd_worker_socket_type type;
  195. };
  196. typedef struct worker_s {
  197. const gchar *name;
  198. gpointer (*worker_init_func)(struct rspamd_config *cfg);
  199. void (*worker_start_func)(struct rspamd_worker *worker);
  200. enum rspamd_worker_flags flags;
  201. enum rspamd_worker_socket_type listen_type;
  202. guint worker_version;
  203. guint64 rspamd_version;
  204. const gchar *rspamd_features;
  205. } worker_t;
  206. /**
  207. * Check if loaded worker is compatible with rspamd
  208. * @param cfg
  209. * @param wrk
  210. * @return
  211. */
  212. gboolean rspamd_check_worker (struct rspamd_config *cfg, worker_t *wrk);
  213. /**
  214. * Check if loaded module is compatible with rspamd
  215. * @param cfg
  216. * @param wrk
  217. * @return
  218. */
  219. gboolean rspamd_check_module (struct rspamd_config *cfg, module_t *wrk);
  220. struct pidfh;
  221. struct rspamd_config;
  222. struct tokenizer;
  223. struct rspamd_stat_classifier;
  224. struct rspamd_classifier_config;
  225. struct rspamd_mime_part;
  226. struct rspamd_dns_resolver;
  227. struct rspamd_task;
  228. struct rspamd_cryptobox_library_ctx;
  229. /**
  230. * Server statistics
  231. */
  232. struct rspamd_stat {
  233. guint messages_scanned; /**< total number of messages scanned */
  234. guint actions_stat[METRIC_ACTION_MAX]; /**< statistic for each action */
  235. guint connections_count; /**< total connections count */
  236. guint control_connections_count; /**< connections count to control interface */
  237. guint messages_learned; /**< messages learned */
  238. };
  239. /**
  240. * Struct that determine main server object (for logging purposes)
  241. */
  242. struct rspamd_main {
  243. struct rspamd_config *cfg; /**< pointer to config structure */
  244. pid_t pid; /**< main pid */
  245. /* Pid file structure */
  246. rspamd_pidfh_t *pfh; /**< struct pidfh for pidfile */
  247. GQuark type; /**< process type */
  248. struct rspamd_stat *stat; /**< pointer to statistics */
  249. rspamd_mempool_t *server_pool; /**< server's memory pool */
  250. rspamd_mempool_mutex_t *start_mtx; /**< server is starting up */
  251. GHashTable *workers; /**< workers pool indexed by pid */
  252. GHashTable *spairs; /**< socket pairs requested by workers */
  253. rspamd_logger_t *logger;
  254. uid_t workers_uid; /**< worker's uid running to */
  255. gid_t workers_gid; /**< worker's gid running to */
  256. gboolean is_privilleged; /**< true if run in privilleged mode */
  257. gboolean wanna_die; /**< no respawn of processes */
  258. gboolean cores_throttling; /**< turn off cores when limits are exceeded */
  259. struct roll_history *history; /**< rolling history */
  260. struct ev_loop *event_loop;
  261. ev_signal term_ev, int_ev, hup_ev, usr1_ev; /**< signals */
  262. struct rspamd_http_context *http_ctx;
  263. };
  264. enum rspamd_exception_type {
  265. RSPAMD_EXCEPTION_NEWLINE = 0,
  266. RSPAMD_EXCEPTION_URL,
  267. RSPAMD_EXCEPTION_GENERIC,
  268. };
  269. /**
  270. * Structure to point exception in text from processing
  271. */
  272. struct rspamd_process_exception {
  273. goffset pos;
  274. guint len;
  275. gpointer ptr;
  276. enum rspamd_exception_type type;
  277. };
  278. /**
  279. * Control session object
  280. */
  281. struct controller_command;
  282. struct controller_session;
  283. typedef gboolean (*controller_func_t)(gchar **args,
  284. struct controller_session *session);
  285. struct controller_session {
  286. struct rspamd_worker *worker; /**< pointer to worker structure (controller in fact) */
  287. gint sock; /**< socket descriptor */
  288. struct controller_command *cmd; /**< real command */
  289. struct rspamd_config *cfg; /**< pointer to config file */
  290. GList *parts; /**< extracted mime parts */
  291. struct rspamd_async_session * s; /**< async session object */
  292. struct rspamd_dns_resolver *resolver; /**< DNS resolver */
  293. struct ev_loop *ev_base; /**< Event base */
  294. };
  295. struct zstd_dictionary {
  296. void *dict;
  297. gsize size;
  298. guint id;
  299. };
  300. struct rspamd_radix_map_helper;
  301. struct rspamd_external_libs_ctx {
  302. magic_t libmagic;
  303. struct rspamd_radix_map_helper **local_addrs;
  304. struct rspamd_cryptobox_library_ctx *crypto_ctx;
  305. struct ottery_config *ottery_cfg;
  306. SSL_CTX *ssl_ctx;
  307. SSL_CTX *ssl_ctx_noverify;
  308. struct zstd_dictionary *in_dict;
  309. struct zstd_dictionary *out_dict;
  310. void *out_zstream;
  311. void *in_zstream;
  312. ref_entry_t ref;
  313. };
  314. /**
  315. * Register custom controller function
  316. */
  317. void register_custom_controller_command (const gchar *name,
  318. controller_func_t handler,
  319. gboolean privilleged,
  320. gboolean require_message);
  321. enum rspamd_pbkdf_version_id {
  322. RSPAMD_PBKDF_ID_V1 = 1,
  323. RSPAMD_PBKDF_ID_V2= 2,
  324. RSPAMD_PBKDF_ID_MAX
  325. };
  326. extern const struct rspamd_controller_pbkdf pbkdf_list[];
  327. #endif