2 * Copyright (c) 1988, 1990, 1993
3 * The Regents of the University of California. All rights reserved.
4 * Portions copyright (c) 2007 Apple Inc. All rights reserved.
6 * Redistribution and use in source and binary forms, with or without
7 * modification, are permitted provided that the following conditions
9 * 1. Redistributions of source code must retain the above copyright
10 * notice, this list of conditions and the following disclaimer.
11 * 2. Redistributions in binary form must reproduce the above copyright
12 * notice, this list of conditions and the following disclaimer in the
13 * documentation and/or other materials provided with the distribution.
14 * 3. Neither the name of the University nor the names of its contributors
15 * may be used to endorse or promote products derived from this software
16 * without specific prior written permission.
18 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
19 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
20 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
21 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
22 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
23 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
24 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
25 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
26 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
27 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
33 static const char copyright
[] =
34 "@(#) Copyright (c) 1988, 1990, 1993\n\
35 The Regents of the University of California. All rights reserved.\n";
39 static char sccsid
[] = "@(#)shutdown.c 8.4 (Berkeley) 4/28/95";
42 #include <sys/cdefs.h>
44 __FBSDID("$FreeBSD: src/sbin/shutdown/shutdown.c,v 1.28 2005/01/25 08:40:51 delphij Exp $");
47 #include <sys/param.h>
49 #include <sys/resource.h>
50 #include <sys/syslog.h>
67 #include <bsm/libbsm.h>
68 #include <bsm/audit_uevents.h>
70 #include <vproc_priv.h>
72 #include "kextmanager.h"
73 #include <IOKit/kext/kextmanager_types.h>
74 #include <IOKit/pwr_mgt/IOPMLib.h>
75 #include <mach/mach_port.h> // allocate
76 #include <mach/mach.h> // task_self, etc
77 #include <servers/bootstrap.h> // bootstrap
78 #include <bootstrap_priv.h>
81 #include <sys/sysctl.h>
83 #include "pathnames.h"
84 #endif /* __APPLE__ */
88 #define _PATH_NOLOGIN "./nologin"
94 #define NOLOG_TIME 5*60
96 int timeleft
, timetowait
;
115 static time_t offset
, shuttime
;
117 static int dohalt
, doreboot
, doups
, killflg
, mbuflen
, oflag
;
119 static int dohalt
, dopower
, doreboot
, killflg
, mbuflen
, oflag
;
121 static char mbuf
[BUFSIZ
];
122 static const char *nosync
, *whom
;
129 void log_and_exec_reboot_or_halt(void);
131 void die_you_gravy_sucking_pig_dog(void);
134 void getoffset(char *);
139 void usage(const char *);
141 int audit_shutdown(int);
142 int reserve_reboot(void);
145 extern const char **environ
;
148 main(int argc
, char **argv
)
152 int arglen
, ch
, len
, readstdin
;
156 errx(1, "NOT super-user");
161 while ((ch
= getopt(argc
, argv
, "-hknopr")) != -1)
163 while ((ch
= getopt(argc
, argv
, "-hknorsu")) != -1)
208 if (killflg
+ doreboot
+ dohalt
+ dopower
> 1)
209 usage("incompatible switches -h, -k, -p and -r");
211 if (oflag
&& !(dohalt
|| dopower
|| doreboot
))
212 usage("-o requires -h, -p or -r");
214 if (nosync
!= NULL
&& !oflag
)
215 usage("-n requires -o");
216 #else /* !__APPLE__ */
217 if (killflg
+ doreboot
+ dohalt
+ dosleep
> 1)
218 usage("incompatible switches -h, -k, -r, and -s");
220 if (!(dohalt
|| doreboot
|| dosleep
|| killflg
))
221 usage("-h, -r, -s, or -k is required");
223 if (doups
&& !dohalt
)
224 usage("-u requires -h");
225 #endif /* !__APPLE__ */
230 for (p
= mbuf
, len
= sizeof(mbuf
); *argv
; ++argv
) {
231 arglen
= strlen(*argv
);
232 if ((len
-= arglen
) <= 2)
236 memmove(p
, *argv
, arglen
);
245 endp
= mbuf
+ sizeof(mbuf
) - 2;
247 if (!fgets(p
, endp
- p
+ 1, stdin
))
249 for (; *p
&& p
< endp
; ++p
);
257 mbuflen
= strlen(mbuf
);
260 (void)printf("Shutdown at %.24s.\n", ctime(&shuttime
));
262 (void)printf("Shutdown NOW!\n");
264 if (!(whom
= getlogin()))
265 whom
= (pw
= getpwuid(getuid())) ? pw
->pw_name
: "???";
269 (void)putc('\n', stdout
);
271 (void)setpriority(PRIO_PROCESS
, 0, PRIO_MIN
);
285 errx(0, "[pid %d]", forkpid
);
287 /* 5863185: reboot2() needs to talk to launchd. */
288 if (_vprocmgr_detach_from_console(0) != NULL
)
289 warnx("can't detach from console");
290 #endif /* __APPLE__ */
295 openlog("shutdown", LOG_CONS
, LOG_AUTH
);
307 if (offset
<= NOLOG_TIME
) {
314 if (tp
->timeleft
< offset
)
315 (void)sleep((u_int
)(offset
- tp
->timeleft
));
317 while (tp
->timeleft
&& offset
< tp
->timeleft
)
320 * Warn now, if going to sleep more than a fifth of
321 * the next wait time.
323 if ((sltime
= offset
- tp
->timeleft
)) {
324 if (sltime
> (u_int
)(tp
->timetowait
/ 5))
330 timewarn(tp
->timeleft
);
331 if (!logged
&& tp
->timeleft
<= NOLOG_TIME
) {
335 (void)sleep((u_int
)tp
->timetowait
);
340 log_and_exec_reboot_or_halt();
342 die_you_gravy_sucking_pig_dog();
346 static jmp_buf alarmbuf
;
348 static const char *restricted_environ
[] = {
349 "PATH=" _PATH_STDPATH
,
354 timewarn(int timeleft
)
357 static char hostname
[MAXHOSTNAMELEN
+ 1];
359 char wcmd
[MAXPATHLEN
+ 4];
361 /* wall is sometimes missing, e.g. on install media */
362 if (access(_PATH_WALL
, X_OK
) == -1) return;
365 (void)gethostname(hostname
, sizeof(hostname
));
367 /* undoc -n option to wall suppresses normal wall banner */
368 (void)snprintf(wcmd
, sizeof(wcmd
), "%s -n", _PATH_WALL
);
369 environ
= restricted_environ
;
370 if (!(pf
= popen(wcmd
, "w"))) {
371 syslog(LOG_ERR
, "shutdown: can't find %s: %m", _PATH_WALL
);
376 "\007*** %sSystem shutdown message from %s@%s ***\007\n",
377 timeleft
? "": "FINAL ", whom
, hostname
);
379 if (timeleft
> 10*60)
380 (void)fprintf(pf
, "System going down at %5.5s\n\n",
381 ctime(&shuttime
) + 11);
382 else if (timeleft
> 59)
383 (void)fprintf(pf
, "System going down in %d minute%s\n\n",
384 timeleft
/ 60, (timeleft
> 60) ? "s" : "");
386 (void)fprintf(pf
, "System going down in 30 seconds\n\n");
388 (void)fprintf(pf
, "System going down IMMEDIATELY\n\n");
391 (void)fwrite(mbuf
, sizeof(*mbuf
), mbuflen
, pf
);
394 * play some games, just in case wall doesn't come back
395 * probably unnecessary, given that wall is careful.
397 if (!setjmp(alarmbuf
)) {
398 (void)signal(SIGALRM
, timeout
);
399 (void)alarm((u_int
)30);
401 (void)alarm((u_int
)0);
402 (void)signal(SIGALRM
, SIG_DFL
);
407 timeout(int signo __unused
)
409 longjmp(alarmbuf
, 1);
414 log_and_exec_reboot_or_halt()
416 die_you_gravy_sucking_pig_dog()
420 char *empty_environ
[] = { NULL
};
422 if ((errno
= reserve_reboot())) {
423 warn("couldn't lock for reboot");
428 syslog(LOG_NOTICE
, "%s%s by %s: %s",
430 doreboot
? "reboot" : dohalt
? "halt" : dopower
? "power-down" :
432 doreboot
? "reboot" : dohalt
? "halt" : dosleep
? "sleep" :
434 "shutdown", doups
?" with UPS delay":"", whom
, mbuf
);
439 (void)printf("\r\nSystem shutdown time has arrived\007\007\r\n");
441 (void)printf("\rbut you'll have to do it yourself\r\n");
446 (void)printf("reboot");
448 (void)printf("halt");
451 (void)printf("power-down");
453 (void)printf(" no sync");
456 (void)printf("sleep");
458 (void)printf("\nkill -HUP 1\n");
464 kern_return_t kr
= IOMasterPort(bootstrap_port
, &mp
);
465 if (kr
== kIOReturnSuccess
) {
466 fb
= IOPMFindPowerManagement(mp
);
467 if (fb
!= IO_OBJECT_NULL
) {
468 IOReturn err
= IOPMSleepSystem(fb
);
469 if (err
!= kIOReturnSuccess
) {
470 fprintf(stderr
, "shutdown: sleep failed (0x%08x)\n", err
);
478 #if defined(__APPLE__)
481 bzero(&utx
, sizeof(utx
));
482 utx
.ut_type
= SHUTDOWN_TIME
;
483 gettimeofday(&utx
.ut_tv
, NULL
);
487 sysctlbyname("kern.willshutdown", NULL
, NULL
, &newvalue
, sizeof(newvalue
));
490 logwtmp("~", "shutdown", "");
493 if (dohalt
) howto
|= RB_HALT
;
494 if (doups
) howto
|= RB_UPSDELAY
;
495 if (nosync
) howto
|= RB_NOSYNC
;
497 // launchd(8) handles reboot. This call returns NULL on success.
498 if (reboot2(howto
)) {
499 syslog(LOG_ERR
, "shutdown: launchd reboot failed.");
502 #else /* __APPLE__ */
504 (void)kill(1, doreboot
? SIGINT
: /* reboot */
505 dohalt
? SIGUSR1
: /* halt */
506 dopower
? SIGUSR2
: /* power-down */
507 SIGTERM
); /* single-user */
510 execle(_PATH_REBOOT
, "reboot", "-l", nosync
,
511 (char *)NULL
, empty_environ
);
512 syslog(LOG_ERR
, "shutdown: can't exec %s: %m.",
517 execle(_PATH_HALT
, "halt", "-l", nosync
,
518 (char *)NULL
, empty_environ
);
519 syslog(LOG_ERR
, "shutdown: can't exec %s: %m.",
524 execle(_PATH_HALT
, "halt", "-l", "-p", nosync
,
525 (char *)NULL
, empty_environ
);
526 syslog(LOG_ERR
, "shutdown: can't exec %s: %m.",
530 (void)kill(1, SIGTERM
); /* to single-user */
532 #endif /* __APPLE__ */
537 #define ATOI2(p) (p[0] - '0') * 10 + (p[1] - '0'); p += 2;
540 getoffset(char *timearg
)
549 if (!strcasecmp(timearg
, "now")) { /* now */
555 if (*timearg
== '+') { /* +minutes */
556 if (!isdigit(*++timearg
))
558 if ((offset
= atoi(timearg
) * 60) < 0)
560 shuttime
= now
+ offset
;
564 /* handle hh:mm by getting rid of the colon */
565 for (p
= timearg
; *p
; ++p
)
566 if (!isascii(*p
) || !isdigit(*p
)) {
567 if (*p
== ':' && strlen(p
) == 3) {
576 unsetenv("TZ"); /* OUR timezone */
577 lt
= localtime(&now
); /* current time val */
579 switch(strlen(timearg
)) {
581 this_year
= lt
->tm_year
;
582 lt
->tm_year
= ATOI2(timearg
);
584 * check if the specified year is in the next century.
585 * allow for one year of user error as many people will
586 * enter n - 1 at the start of year n.
588 if (lt
->tm_year
< (this_year
% 100) - 1)
590 /* adjust for the year 2000 and beyond */
591 lt
->tm_year
+= (this_year
- (this_year
% 100));
594 lt
->tm_mon
= ATOI2(timearg
);
595 if (--lt
->tm_mon
< 0 || lt
->tm_mon
> 11)
599 lt
->tm_mday
= ATOI2(timearg
);
600 if (lt
->tm_mday
< 1 || lt
->tm_mday
> 31)
604 lt
->tm_hour
= ATOI2(timearg
);
605 if (lt
->tm_hour
< 0 || lt
->tm_hour
> 23)
607 lt
->tm_min
= ATOI2(timearg
);
608 if (lt
->tm_min
< 0 || lt
->tm_min
> 59)
611 if ((shuttime
= mktime(lt
)) == -1)
613 if ((offset
= shuttime
- now
) < 0)
614 errx(1, "that time is already past.");
621 #define NOMSG "\n\nNO LOGINS: System going down at "
628 (void)unlink(_PATH_NOLOGIN
); /* in case linked to another file */
629 (void)signal(SIGINT
, finish
);
630 (void)signal(SIGHUP
, finish
);
631 (void)signal(SIGQUIT
, finish
);
632 (void)signal(SIGTERM
, finish
);
633 if ((logfd
= open(_PATH_NOLOGIN
, O_WRONLY
|O_CREAT
|O_TRUNC
,
635 (void)write(logfd
, NOMSG
, sizeof(NOMSG
) - 1);
636 ct
= ctime(&shuttime
);
637 (void)write(logfd
, ct
+ 11, 5);
638 (void)write(logfd
, "\n\n", 2);
639 (void)write(logfd
, mbuf
, strlen(mbuf
));
645 finish(int signo __unused
)
648 (void)unlink(_PATH_NOLOGIN
);
655 errx(1, "bad time format");
659 usage(const char *cp
)
663 (void)fprintf(stderr
,
665 "usage: shutdown [-] [-h [-u] [-n] | -r [-n] | -s | -k]"
667 "usage: shutdown [-] [-h | -p | -r | -k] [-o [-n]]"
669 " time [warning-message ...]\n");
675 * The following tokens are included in the audit record for shutdown
680 int audit_shutdown(int exitstatus
)
686 /* If we are not auditing, don't cut an audit record; just return */
687 if (auditon(A_GETCOND
, &au_cond
, sizeof(long)) < 0) {
688 fprintf(stderr
, "shutdown: Could not determine audit condition\n");
691 if (au_cond
== AUC_NOAUDIT
)
694 if((aufd
= au_open()) == -1) {
695 fprintf(stderr
, "shutdown: Audit Error: au_open() failed\n");
699 /* The subject that performed the operation */
700 if((tok
= au_to_me()) == NULL
) {
701 fprintf(stderr
, "shutdown: Audit Error: au_to_me() failed\n");
706 /* success and failure status */
707 if((tok
= au_to_return32(exitstatus
, errno
)) == NULL
) {
708 fprintf(stderr
, "shutdown: Audit Error: au_to_return32() failed\n");
713 if(au_close(aufd
, 1, AUE_shutdown
) == -1) {
714 fprintf(stderr
, "shutdown: Audit Error: au_close() failed\n");
721 // XX copied from reboot.tproj/reboot.c; it would be nice to share the code
723 #define WAITFORLOCK 1
725 * contact kextd to lock for reboot
730 int rval
= ELAST
+ 1;
731 kern_return_t macherr
= KERN_FAILURE
;
732 mach_port_t kxport
, tport
= MACH_PORT_NULL
, myport
= MACH_PORT_NULL
;
733 int busyStatus
= ELAST
+ 1;
734 mountpoint_t busyVol
;
736 macherr
= bootstrap_look_up2(bootstrap_port
, KEXTD_SERVER_NAME
, &kxport
, 0, BOOTSTRAP_PRIVILEGED_SERVER
);
737 if (macherr
) goto finish
;
739 // allocate a port to pass to kextd (in case we die)
740 tport
= mach_task_self();
741 if (tport
== MACH_PORT_NULL
) goto finish
;
742 macherr
= mach_port_allocate(tport
, MACH_PORT_RIGHT_RECEIVE
, &myport
);
743 if (macherr
) goto finish
;
745 // try to lock for reboot
746 macherr
= kextmanager_lock_reboot(kxport
, myport
, !WAITFORLOCK
, busyVol
,
748 if (macherr
) goto finish
;
750 if (busyStatus
== EBUSY
) {
751 warnx("%s is busy updating; waiting for lock", busyVol
);
752 macherr
= kextmanager_lock_reboot(kxport
, myport
, WAITFORLOCK
,
753 busyVol
, &busyStatus
);
754 if (macherr
) goto finish
;
757 if (busyStatus
== EALREADY
) {
758 // reboot already in progress
765 // in general, we want to err on the side of allowing the reboot
767 if (macherr
!= BOOTSTRAP_UNKNOWN_SERVICE
)
768 warnx("WARNING: couldn't lock kext manager for reboot: %s",
769 mach_error_string(macherr
));
772 // unless we got the lock, clean up our port
773 if (busyStatus
!= 0 && myport
!= MACH_PORT_NULL
)
774 mach_port_mod_refs(tport
, myport
, MACH_PORT_RIGHT_RECEIVE
, -1);
778 #endif /* __APPLE__ */