summaryrefslogtreecommitdiffstats
path: root/etc/rc.d/pflog
blob: 8f6bcb419554157968e22d617d020125b812cf24 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
#!/bin/sh
#
# $FreeBSD$
#

# PROVIDE: pflog
# REQUIRE: FILESYSTEMS netif
# KEYWORD: nojail

. /etc/rc.subr

name="pflog"
rcvar="pflog_enable"
command="/sbin/pflogd"
pidfile="/var/run/pflogd.pid"
start_precmd="pflog_prestart"
stop_postcmd="pflog_poststop"
extra_commands="reload resync"

# for backward compatibility
resync_cmd="pflog_resync"

pflog_prestart()
{
	load_kld pflog || return 1

	# create pflog_dev interface if needed
	if ! ifconfig $pflog_dev > /dev/null 2>&1; then
		if ! ifconfig $pflog_dev create; then
			warn "could not create $pflog_dev."
			return 1
		fi
	fi

	# set pflog_dev interface to up state
	if ! ifconfig $pflog_dev up; then
		warn "could not bring up $pflog_dev."
		return 1
	fi

	# -p flag requires stripping pidfile's leading /var/run and trailing .pid
	pidfile=$(echo $pidfile | sed -e 's|/var/run/||' -e 's|.pid$||')

	# prepare the command line for pflogd
	rc_flags="-p $pidfile -f $pflog_logfile -i $pflog_dev $rc_flags"

	# report we're ready to run pflogd
	return 0
}

pflog_poststop()
{
	if ! ifconfig $pflog_dev down; then
		warn "could not bring down $pflog_dev."
		return 1
	fi

	if [ "$pflog_instances" ] && [ -n "$pflog_instances" ]; then
		rm $pidfile
	fi

	return 0
}

# for backward compatibility
pflog_resync()
{
	run_rc_command reload
}

load_rc_config $name

# Check if spawning multiple pflogd and told what to spawn
if [ -n "$2" ]; then
	# Set required variables
	eval pflog_dev=\$pflog_${2}_dev
	eval pflog_logfile=\$pflog_${2}_logfile
	eval pflog_flags=\$pflog_${2}_flags
	# Check that required vars have non-zero length, warn if not.
	if [ -z $pflog_dev ]; then
		warn "pflog_dev not set"
		continue
	fi
	if [ -z $pflog_logfile ]; then
		warn "pflog_logfile not set"
		continue
	fi

	# Provide a unique pidfile name for pflogd -p <pidfile> flag
	pidfile="/var/run/pflogd.$2.pid"

	# Override service name and execute command
	name=$pflog_dev
	run_rc_command "$1"
# Check if spawning multiple pflogd and not told what to spawn
elif [ "$pflog_instances" ] && [ -n "$pflog_instances" ]; then
	# Interate through requested instances.
	for i in $pflog_instances; do
		/etc/rc.d/pflog $1 $i
	done
else
	# Typical case, spawn single instance only.
	pflog_dev=${pflog_dev:-"pflog0"}
	run_rc_command "$1"
fi
OpenPOWER on IntegriCloud