summaryrefslogtreecommitdiffstats
path: root/wallace
diff options
context:
space:
mode:
authorJeroen van Meeuwen (Kolab Systems) <vanmeeuwen@kolabsys.com>2012-05-29 10:47:39 +0200
committerJeroen van Meeuwen (Kolab Systems) <vanmeeuwen@kolabsys.com>2012-05-29 10:53:09 +0200
commitfed1128ba32918f31bd7a3ccda4b8a2db9d9c94a (patch)
tree20e4f2fefe4faeef20cf3f29392cbf52853cb444 /wallace
parent7002e11db67d863ab8f5aaa7af01c56e11afdfec (diff)
downloadpykolab-fed1128ba32918f31bd7a3ccda4b8a2db9d9c94a.tar.gz
Make sure we use no functions that have been introduced in Python > 2.6 (#803)
Conflicts: kolabd/__init__.py wallace/__init__.py
Diffstat (limited to 'wallace')
-rw-r--r--wallace/__init__.py179
1 files changed, 136 insertions, 43 deletions
diff --git a/wallace/__init__.py b/wallace/__init__.py
index 6677613..05d536e 100644
--- a/wallace/__init__.py
+++ b/wallace/__init__.py
@@ -53,6 +53,16 @@ class WallaceDaemon(object):
)
daemon_group.add_option(
+ "-g",
+ "--group",
+ dest = "process_groupname",
+ action = "store",
+ default = "kolab",
+ help = _("Run as group GROUPNAME"),
+ metavar = "GROUPNAME"
+ )
+
+ daemon_group.add_option(
"-p", "--pid-file",
dest = "pidfile",
action = "store",
@@ -68,6 +78,16 @@ class WallaceDaemon(object):
help = _("Port that Wallace is supposed to use.")
)
+ daemon_group.add_option(
+ "-u",
+ "--user",
+ dest = "process_username",
+ action = "store",
+ default = "kolab",
+ help = _("Run as user USERNAME"),
+ metavar = "USERNAME"
+ )
+
conf.finalize_conf()
import modules
@@ -184,49 +204,6 @@ class WallaceDaemon(object):
log.debug(_("Executing module %s") % (module), level=8)
modules.execute(module, filename)
- def run(self):
- """
- Run the SASL authentication daemon.
- """
-
- exitcode = 0
-
- try:
- pid = 1
- if conf.fork_mode:
- self.thread_count += 1
- self.write_pid()
- self.set_signal_handlers()
- pid = os.fork()
-
- if pid == 0:
- log.remove_stdout_handler()
-
- self.do_wallace()
-
- except SystemExit, e:
- exitcode = e
- except KeyboardInterrupt:
- exitcode = 1
- log.info(_("Interrupted by user"))
- except AttributeError, e:
- exitcode = 1
- traceback.print_exc()
- print >> sys.stderr, _("Traceback occurred, please report a " + \
- "bug at http://bugzilla.kolabsys.com")
-
- except TypeError, e:
- exitcode = 1
- traceback.print_exc()
- log.error(_("Type Error: %s") % e)
- except:
- exitcode = 2
- traceback.print_exc()
- print >> sys.stderr, _("Traceback occurred, please report a " + \
- "bug at http://bugzilla.kolabsys.com")
-
- sys.exit(exitcode)
-
def pickup_defer(self):
wallace_modules = conf.get_list('wallace', 'modules')
@@ -440,6 +417,122 @@ class WallaceDaemon(object):
os.remove(conf.pidfile)
raise SystemExit
+ def run(self):
+ """
+ Run the Wallace daemon.
+ """
+
+ exitcode = 0
+
+ try:
+ try:
+ (ruid, euid, suid) = os.getresuid()
+ (rgid, egid, sgid) = os.getresgid()
+ except AttributeError, errmsg:
+ ruid = os.getuid()
+ rgid = os.getgid()
+
+ if ruid == 0:
+ # Means we can setreuid() / setregid() / setgroups()
+ if rgid == 0:
+ # Get group entry details
+ try:
+ (
+ group_name,
+ group_password,
+ group_gid,
+ group_members
+ ) = grp.getgrnam(conf.process_groupname)
+
+ except KeyError:
+ print >> sys.stderr, _("Group %s does not exist") % (
+ conf.process_groupname
+ )
+
+ sys.exit(1)
+
+ # Set real and effective group if not the same as current.
+ if not group_gid == rgid:
+ log.debug(
+ _("Switching real and effective group id to %d") % (
+ group_gid
+ ),
+ level=8
+ )
+
+ os.setregid(group_gid, group_gid)
+
+ if ruid == 0:
+ # Means we haven't switched yet.
+ try:
+ (
+ user_name,
+ user_password,
+ user_uid,
+ user_gid,
+ user_gecos,
+ user_homedir,
+ user_shell
+ ) = pwd.getpwnam(conf.process_username)
+
+ except KeyError:
+ print >> sys.stderr, _("User %s does not exist") % (
+ conf.process_username
+ )
+
+ sys.exit(1)
+
+
+ # Set real and effective user if not the same as current.
+ if not user_uid == ruid:
+ log.debug(
+ _("Switching real and effective user id to %d") % (
+ user_uid
+ ),
+ level=8
+ )
+
+ os.setreuid(user_uid, user_uid)
+
+ except:
+ log.error(_("Could not change real and effective uid and/or gid"))
+
+ try:
+ pid = 1
+ if conf.fork_mode:
+ self.thread_count += 1
+ self.write_pid()
+ self.set_signal_handlers()
+ pid = os.fork()
+
+ if pid == 0:
+ log.remove_stdout_handler()
+
+ self.do_wallace()
+
+ except SystemExit, e:
+ exitcode = e
+ except KeyboardInterrupt:
+ exitcode = 1
+ log.info(_("Interrupted by user"))
+ except AttributeError, e:
+ exitcode = 1
+ traceback.print_exc()
+ print >> sys.stderr, _("Traceback occurred, please report a " + \
+ "bug at http://bugzilla.kolabsys.com")
+
+ except TypeError, e:
+ exitcode = 1
+ traceback.print_exc()
+ log.error(_("Type Error: %s") % e)
+ except:
+ exitcode = 2
+ traceback.print_exc()
+ print >> sys.stderr, _("Traceback occurred, please report a " + \
+ "bug at http://bugzilla.kolabsys.com")
+
+ sys.exit(exitcode)
+
def set_signal_handlers(self):
import signal
signal.signal(signal.SIGHUP, self.reload_config)