2 * Copyright (c) 1988, 1990, 1993
3 * The Regents of the University of California. All rights reserved.
4 * Portions copyright (c) 2007 Apple Inc. All rights reserved.
6 * Redistribution and use in source and binary forms, with or without
7 * modification, are permitted provided that the following conditions
9 * 1. Redistributions of source code must retain the above copyright
10 * notice, this list of conditions and the following disclaimer.
11 * 2. Redistributions in binary form must reproduce the above copyright
12 * notice, this list of conditions and the following disclaimer in the
13 * documentation and/or other materials provided with the distribution.
14 * 3. Neither the name of the University nor the names of its contributors
15 * may be used to endorse or promote products derived from this software
16 * without specific prior written permission.
18 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
19 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
20 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
21 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
22 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
23 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
24 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
25 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
26 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
27 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
33 static const char copyright
[] =
34 "@(#) Copyright (c) 1988, 1990, 1993\n\
35 The Regents of the University of California. All rights reserved.\n";
39 static char sccsid
[] = "@(#)shutdown.c 8.4 (Berkeley) 4/28/95";
42 #include <sys/cdefs.h>
44 __FBSDID("$FreeBSD: src/sbin/shutdown/shutdown.c,v 1.28 2005/01/25 08:40:51 delphij Exp $");
47 #include <sys/param.h>
49 #include <sys/resource.h>
50 #include <sys/syslog.h>
67 #include <bsm/libbsm.h>
68 #include <bsm/audit_uevents.h>
70 #include <vproc_priv.h>
72 #include "kextmanager.h"
73 #include <IOKit/kext/kextmanager_types.h>
74 #include <IOKit/pwr_mgt/IOPMLib.h>
75 #include <mach/mach_port.h> // allocate
76 #include <mach/mach.h> // task_self, etc
77 #include <servers/bootstrap.h> // bootstrap
80 #include <sys/sysctl.h>
82 #include "pathnames.h"
83 #endif /* __APPLE__ */
87 #define _PATH_NOLOGIN "./nologin"
93 #define NOLOG_TIME 5*60
95 int timeleft
, timetowait
;
114 static time_t offset
, shuttime
;
116 static int dohalt
, doreboot
, doups
, killflg
, mbuflen
, oflag
;
118 static int dohalt
, dopower
, doreboot
, killflg
, mbuflen
, oflag
;
120 static char mbuf
[BUFSIZ
];
121 static const char *nosync
, *whom
;
128 void log_and_exec_reboot_or_halt(void);
130 void die_you_gravy_sucking_pig_dog(void);
133 void getoffset(char *);
138 void usage(const char *);
140 int audit_shutdown(int);
141 int reserve_reboot(void);
144 extern const char **environ
;
147 main(int argc
, char **argv
)
151 int arglen
, ch
, len
, readstdin
;
155 errx(1, "NOT super-user");
160 while ((ch
= getopt(argc
, argv
, "-hknopr")) != -1)
162 while ((ch
= getopt(argc
, argv
, "-hknorsu")) != -1)
207 if (killflg
+ doreboot
+ dohalt
+ dopower
> 1)
208 usage("incompatible switches -h, -k, -p and -r");
210 if (oflag
&& !(dohalt
|| dopower
|| doreboot
))
211 usage("-o requires -h, -p or -r");
213 if (nosync
!= NULL
&& !oflag
)
214 usage("-n requires -o");
215 #else /* !__APPLE__ */
216 if (killflg
+ doreboot
+ dohalt
+ dosleep
> 1)
217 usage("incompatible switches -h, -k, -r, and -s");
219 if (!(dohalt
|| doreboot
|| dosleep
|| killflg
))
220 usage("-h, -r, -s, or -k is required");
222 if (doups
&& !dohalt
)
223 usage("-u requires -h");
224 #endif /* !__APPLE__ */
229 for (p
= mbuf
, len
= sizeof(mbuf
); *argv
; ++argv
) {
230 arglen
= strlen(*argv
);
231 if ((len
-= arglen
) <= 2)
235 memmove(p
, *argv
, arglen
);
244 endp
= mbuf
+ sizeof(mbuf
) - 2;
246 if (!fgets(p
, endp
- p
+ 1, stdin
))
248 for (; *p
&& p
< endp
; ++p
);
256 mbuflen
= strlen(mbuf
);
259 (void)printf("Shutdown at %.24s.\n", ctime(&shuttime
));
261 (void)printf("Shutdown NOW!\n");
263 if (!(whom
= getlogin()))
264 whom
= (pw
= getpwuid(getuid())) ? pw
->pw_name
: "???";
268 (void)putc('\n', stdout
);
270 (void)setpriority(PRIO_PROCESS
, 0, PRIO_MIN
);
284 errx(0, "[pid %d]", forkpid
);
286 /* 5863185: reboot2() needs to talk to launchd. */
287 if (_vprocmgr_detach_from_console(0) != NULL
)
288 warnx("can't detach from console");
289 #endif /* __APPLE__ */
294 openlog("shutdown", LOG_CONS
, LOG_AUTH
);
306 if (offset
<= NOLOG_TIME
) {
313 if (tp
->timeleft
< offset
)
314 (void)sleep((u_int
)(offset
- tp
->timeleft
));
316 while (tp
->timeleft
&& offset
< tp
->timeleft
)
319 * Warn now, if going to sleep more than a fifth of
320 * the next wait time.
322 if ((sltime
= offset
- tp
->timeleft
)) {
323 if (sltime
> (u_int
)(tp
->timetowait
/ 5))
329 timewarn(tp
->timeleft
);
330 if (!logged
&& tp
->timeleft
<= NOLOG_TIME
) {
334 (void)sleep((u_int
)tp
->timetowait
);
339 log_and_exec_reboot_or_halt();
341 die_you_gravy_sucking_pig_dog();
345 static jmp_buf alarmbuf
;
347 static const char *restricted_environ
[] = {
348 "PATH=" _PATH_STDPATH
,
353 timewarn(int timeleft
)
356 static char hostname
[MAXHOSTNAMELEN
+ 1];
358 char wcmd
[MAXPATHLEN
+ 4];
360 /* wall is sometimes missing, e.g. on install media */
361 if (access(_PATH_WALL
, X_OK
) == -1) return;
364 (void)gethostname(hostname
, sizeof(hostname
));
366 /* undoc -n option to wall suppresses normal wall banner */
367 (void)snprintf(wcmd
, sizeof(wcmd
), "%s -n", _PATH_WALL
);
368 environ
= restricted_environ
;
369 if (!(pf
= popen(wcmd
, "w"))) {
370 syslog(LOG_ERR
, "shutdown: can't find %s: %m", _PATH_WALL
);
375 "\007*** %sSystem shutdown message from %s@%s ***\007\n",
376 timeleft
? "": "FINAL ", whom
, hostname
);
378 if (timeleft
> 10*60)
379 (void)fprintf(pf
, "System going down at %5.5s\n\n",
380 ctime(&shuttime
) + 11);
381 else if (timeleft
> 59)
382 (void)fprintf(pf
, "System going down in %d minute%s\n\n",
383 timeleft
/ 60, (timeleft
> 60) ? "s" : "");
385 (void)fprintf(pf
, "System going down in 30 seconds\n\n");
387 (void)fprintf(pf
, "System going down IMMEDIATELY\n\n");
390 (void)fwrite(mbuf
, sizeof(*mbuf
), mbuflen
, pf
);
393 * play some games, just in case wall doesn't come back
394 * probably unnecessary, given that wall is careful.
396 if (!setjmp(alarmbuf
)) {
397 (void)signal(SIGALRM
, timeout
);
398 (void)alarm((u_int
)30);
400 (void)alarm((u_int
)0);
401 (void)signal(SIGALRM
, SIG_DFL
);
406 timeout(int signo __unused
)
408 longjmp(alarmbuf
, 1);
413 log_and_exec_reboot_or_halt()
415 die_you_gravy_sucking_pig_dog()
419 char *empty_environ
[] = { NULL
};
421 if ((errno
= reserve_reboot())) {
422 warn("couldn't lock for reboot");
427 syslog(LOG_NOTICE
, "%s%s by %s: %s",
429 doreboot
? "reboot" : dohalt
? "halt" : dopower
? "power-down" :
431 doreboot
? "reboot" : dohalt
? "halt" : dosleep
? "sleep" :
433 "shutdown", doups
?" with UPS delay":"", whom
, mbuf
);
438 (void)printf("\r\nSystem shutdown time has arrived\007\007\r\n");
440 (void)printf("\rbut you'll have to do it yourself\r\n");
445 (void)printf("reboot");
447 (void)printf("halt");
450 (void)printf("power-down");
452 (void)printf(" no sync");
455 (void)printf("sleep");
457 (void)printf("\nkill -HUP 1\n");
463 kern_return_t kr
= IOMasterPort(bootstrap_port
, &mp
);
464 if (kr
== kIOReturnSuccess
) {
465 fb
= IOPMFindPowerManagement(mp
);
466 if (fb
!= IO_OBJECT_NULL
) {
467 IOReturn err
= IOPMSleepSystem(fb
);
468 if (err
!= kIOReturnSuccess
) {
469 fprintf(stderr
, "shutdown: sleep failed (0x%08x)\n", err
);
477 #if defined(__APPLE__)
480 bzero(&utx
, sizeof(utx
));
481 utx
.ut_type
= SHUTDOWN_TIME
;
482 gettimeofday(&utx
.ut_tv
, NULL
);
486 sysctlbyname("kern.willshutdown", NULL
, NULL
, &newvalue
, sizeof(newvalue
));
489 logwtmp("~", "shutdown", "");
492 if (dohalt
) howto
|= RB_HALT
;
493 if (doups
) howto
|= RB_UPSDELAY
;
494 if (nosync
) howto
|= RB_NOSYNC
;
496 // launchd(8) handles reboot. This call returns NULL on success.
497 if (reboot2(howto
)) {
498 syslog(LOG_ERR
, "shutdown: launchd reboot failed.");
501 #else /* __APPLE__ */
503 (void)kill(1, doreboot
? SIGINT
: /* reboot */
504 dohalt
? SIGUSR1
: /* halt */
505 dopower
? SIGUSR2
: /* power-down */
506 SIGTERM
); /* single-user */
509 execle(_PATH_REBOOT
, "reboot", "-l", nosync
,
510 (char *)NULL
, empty_environ
);
511 syslog(LOG_ERR
, "shutdown: can't exec %s: %m.",
516 execle(_PATH_HALT
, "halt", "-l", nosync
,
517 (char *)NULL
, empty_environ
);
518 syslog(LOG_ERR
, "shutdown: can't exec %s: %m.",
523 execle(_PATH_HALT
, "halt", "-l", "-p", nosync
,
524 (char *)NULL
, empty_environ
);
525 syslog(LOG_ERR
, "shutdown: can't exec %s: %m.",
529 (void)kill(1, SIGTERM
); /* to single-user */
531 #endif /* __APPLE__ */
536 #define ATOI2(p) (p[0] - '0') * 10 + (p[1] - '0'); p += 2;
539 getoffset(char *timearg
)
548 if (!strcasecmp(timearg
, "now")) { /* now */
554 if (*timearg
== '+') { /* +minutes */
555 if (!isdigit(*++timearg
))
557 if ((offset
= atoi(timearg
) * 60) < 0)
559 shuttime
= now
+ offset
;
563 /* handle hh:mm by getting rid of the colon */
564 for (p
= timearg
; *p
; ++p
)
565 if (!isascii(*p
) || !isdigit(*p
)) {
566 if (*p
== ':' && strlen(p
) == 3) {
575 unsetenv("TZ"); /* OUR timezone */
576 lt
= localtime(&now
); /* current time val */
578 switch(strlen(timearg
)) {
580 this_year
= lt
->tm_year
;
581 lt
->tm_year
= ATOI2(timearg
);
583 * check if the specified year is in the next century.
584 * allow for one year of user error as many people will
585 * enter n - 1 at the start of year n.
587 if (lt
->tm_year
< (this_year
% 100) - 1)
589 /* adjust for the year 2000 and beyond */
590 lt
->tm_year
+= (this_year
- (this_year
% 100));
593 lt
->tm_mon
= ATOI2(timearg
);
594 if (--lt
->tm_mon
< 0 || lt
->tm_mon
> 11)
598 lt
->tm_mday
= ATOI2(timearg
);
599 if (lt
->tm_mday
< 1 || lt
->tm_mday
> 31)
603 lt
->tm_hour
= ATOI2(timearg
);
604 if (lt
->tm_hour
< 0 || lt
->tm_hour
> 23)
606 lt
->tm_min
= ATOI2(timearg
);
607 if (lt
->tm_min
< 0 || lt
->tm_min
> 59)
610 if ((shuttime
= mktime(lt
)) == -1)
612 if ((offset
= shuttime
- now
) < 0)
613 errx(1, "that time is already past.");
620 #define NOMSG "\n\nNO LOGINS: System going down at "
627 (void)unlink(_PATH_NOLOGIN
); /* in case linked to another file */
628 (void)signal(SIGINT
, finish
);
629 (void)signal(SIGHUP
, finish
);
630 (void)signal(SIGQUIT
, finish
);
631 (void)signal(SIGTERM
, finish
);
632 if ((logfd
= open(_PATH_NOLOGIN
, O_WRONLY
|O_CREAT
|O_TRUNC
,
634 (void)write(logfd
, NOMSG
, sizeof(NOMSG
) - 1);
635 ct
= ctime(&shuttime
);
636 (void)write(logfd
, ct
+ 11, 5);
637 (void)write(logfd
, "\n\n", 2);
638 (void)write(logfd
, mbuf
, strlen(mbuf
));
644 finish(int signo __unused
)
647 (void)unlink(_PATH_NOLOGIN
);
654 errx(1, "bad time format");
658 usage(const char *cp
)
662 (void)fprintf(stderr
,
664 "usage: shutdown [-] [-h [-u] [-n] | -r [-n] | -s | -k]"
666 "usage: shutdown [-] [-h | -p | -r | -k] [-o [-n]]"
668 " time [warning-message ...]\n");
674 * The following tokens are included in the audit record for shutdown
679 int audit_shutdown(int exitstatus
)
685 /* If we are not auditing, don't cut an audit record; just return */
686 if (auditon(A_GETCOND
, &au_cond
, sizeof(long)) < 0) {
687 fprintf(stderr
, "shutdown: Could not determine audit condition\n");
690 if (au_cond
== AUC_NOAUDIT
)
693 if((aufd
= au_open()) == -1) {
694 fprintf(stderr
, "shutdown: Audit Error: au_open() failed\n");
698 /* The subject that performed the operation */
699 if((tok
= au_to_me()) == NULL
) {
700 fprintf(stderr
, "shutdown: Audit Error: au_to_me() failed\n");
705 /* success and failure status */
706 if((tok
= au_to_return32(exitstatus
, errno
)) == NULL
) {
707 fprintf(stderr
, "shutdown: Audit Error: au_to_return32() failed\n");
712 if(au_close(aufd
, 1, AUE_shutdown
) == -1) {
713 fprintf(stderr
, "shutdown: Audit Error: au_close() failed\n");
720 // XX copied from reboot.tproj/reboot.c; it would be nice to share the code
722 #define WAITFORLOCK 1
724 * contact kextd to lock for reboot
729 int rval
= ELAST
+ 1;
730 kern_return_t macherr
= KERN_FAILURE
;
731 mach_port_t kxport
, tport
= MACH_PORT_NULL
, myport
= MACH_PORT_NULL
;
732 int busyStatus
= ELAST
+ 1;
733 mountpoint_t busyVol
;
735 macherr
= bootstrap_look_up(bootstrap_port
, KEXTD_SERVER_NAME
, &kxport
);
736 if (macherr
) goto finish
;
738 // allocate a port to pass to kextd (in case we die)
739 tport
= mach_task_self();
740 if (tport
== MACH_PORT_NULL
) goto finish
;
741 macherr
= mach_port_allocate(tport
, MACH_PORT_RIGHT_RECEIVE
, &myport
);
742 if (macherr
) goto finish
;
744 // try to lock for reboot
745 macherr
= kextmanager_lock_reboot(kxport
, myport
, !WAITFORLOCK
, busyVol
,
747 if (macherr
) goto finish
;
749 if (busyStatus
== EBUSY
) {
750 warnx("%s is busy updating; waiting for lock", busyVol
);
751 macherr
= kextmanager_lock_reboot(kxport
, myport
, WAITFORLOCK
,
752 busyVol
, &busyStatus
);
753 if (macherr
) goto finish
;
756 if (busyStatus
== EALREADY
) {
757 // reboot already in progress
764 // in general, we want to err on the side of allowing the reboot
766 if (macherr
!= BOOTSTRAP_UNKNOWN_SERVICE
)
767 warnx("WARNING: couldn't lock kext manager for reboot: %s",
768 mach_error_string(macherr
));
771 // unless we got the lock, clean up our port
772 if (busyStatus
!= 0 && myport
!= MACH_PORT_NULL
)
773 mach_port_mod_refs(tport
, myport
, MACH_PORT_RIGHT_RECEIVE
, -1);
777 #endif /* __APPLE__ */