xref: /openbmc/qemu/qga/main.c (revision f7160f32)
1 /*
2  * QEMU Guest Agent
3  *
4  * Copyright IBM Corp. 2011
5  *
6  * Authors:
7  *  Adam Litke        <aglitke@linux.vnet.ibm.com>
8  *  Michael Roth      <mdroth@linux.vnet.ibm.com>
9  *
10  * This work is licensed under the terms of the GNU GPL, version 2 or later.
11  * See the COPYING file in the top-level directory.
12  */
13 
14 #include "qemu/osdep.h"
15 #include <getopt.h>
16 #include <glib/gstdio.h>
17 #ifndef _WIN32
18 #include <syslog.h>
19 #include <sys/wait.h>
20 #endif
21 #include "qemu-common.h"
22 #include "qapi/qmp/json-parser.h"
23 #include "qapi/qmp/qdict.h"
24 #include "qapi/qmp/qjson.h"
25 #include "qapi/qmp/qstring.h"
26 #include "guest-agent-core.h"
27 #include "qga-qapi-init-commands.h"
28 #include "qapi/qmp/qerror.h"
29 #include "qapi/error.h"
30 #include "channel.h"
31 #include "qemu/bswap.h"
32 #include "qemu/help_option.h"
33 #include "qemu/sockets.h"
34 #include "qemu/systemd.h"
35 #include "qemu-version.h"
36 #ifdef _WIN32
37 #include <dbt.h>
38 #include "qga/service-win32.h"
39 #include "qga/vss-win32.h"
40 #endif
41 #ifdef __linux__
42 #include <linux/fs.h>
43 #ifdef FIFREEZE
44 #define CONFIG_FSFREEZE
45 #endif
46 #endif
47 
48 #ifndef _WIN32
49 #define QGA_VIRTIO_PATH_DEFAULT "/dev/virtio-ports/org.qemu.guest_agent.0"
50 #define QGA_STATE_RELATIVE_DIR  "run"
51 #define QGA_SERIAL_PATH_DEFAULT "/dev/ttyS0"
52 #else
53 #define QGA_VIRTIO_PATH_DEFAULT "\\\\.\\Global\\org.qemu.guest_agent.0"
54 #define QGA_STATE_RELATIVE_DIR  "qemu-ga"
55 #define QGA_SERIAL_PATH_DEFAULT "COM1"
56 #endif
57 #ifdef CONFIG_FSFREEZE
58 #define QGA_FSFREEZE_HOOK_DEFAULT CONFIG_QEMU_CONFDIR "/fsfreeze-hook"
59 #endif
60 #define QGA_SENTINEL_BYTE 0xFF
61 #define QGA_CONF_DEFAULT CONFIG_QEMU_CONFDIR G_DIR_SEPARATOR_S "qemu-ga.conf"
62 #define QGA_RETRY_INTERVAL 5
63 
64 static struct {
65     const char *state_dir;
66     const char *pidfile;
67 } dfl_pathnames;
68 
69 typedef struct GAPersistentState {
70 #define QGA_PSTATE_DEFAULT_FD_COUNTER 1000
71     int64_t fd_counter;
72 } GAPersistentState;
73 
74 typedef struct GAConfig GAConfig;
75 
76 struct GAState {
77     JSONMessageParser parser;
78     GMainLoop *main_loop;
79     GAChannel *channel;
80     bool virtio; /* fastpath to check for virtio to deal with poll() quirks */
81     GACommandState *command_state;
82     GLogLevelFlags log_level;
83     FILE *log_file;
84     bool logging_enabled;
85 #ifdef _WIN32
86     GAService service;
87     HANDLE wakeup_event;
88 #endif
89     bool delimit_response;
90     bool frozen;
91     GList *blacklist;
92     char *state_filepath_isfrozen;
93     struct {
94         const char *log_filepath;
95         const char *pid_filepath;
96     } deferred_options;
97 #ifdef CONFIG_FSFREEZE
98     const char *fsfreeze_hook;
99 #endif
100     gchar *pstate_filepath;
101     GAPersistentState pstate;
102     GAConfig *config;
103     int socket_activation;
104     bool force_exit;
105 };
106 
107 struct GAState *ga_state;
108 QmpCommandList ga_commands;
109 
110 /* commands that are safe to issue while filesystems are frozen */
111 static const char *ga_freeze_whitelist[] = {
112     "guest-ping",
113     "guest-info",
114     "guest-sync",
115     "guest-sync-delimited",
116     "guest-fsfreeze-status",
117     "guest-fsfreeze-thaw",
118     NULL
119 };
120 
121 #ifdef _WIN32
122 DWORD WINAPI service_ctrl_handler(DWORD ctrl, DWORD type, LPVOID data,
123                                   LPVOID ctx);
124 DWORD WINAPI handle_serial_device_events(DWORD type, LPVOID data);
125 VOID WINAPI service_main(DWORD argc, TCHAR *argv[]);
126 #endif
127 static int run_agent(GAState *s);
128 static void stop_agent(GAState *s, bool requested);
129 
130 static void
131 init_dfl_pathnames(void)
132 {
133     g_assert(dfl_pathnames.state_dir == NULL);
134     g_assert(dfl_pathnames.pidfile == NULL);
135     dfl_pathnames.state_dir = qemu_get_local_state_pathname(
136       QGA_STATE_RELATIVE_DIR);
137     dfl_pathnames.pidfile   = qemu_get_local_state_pathname(
138       QGA_STATE_RELATIVE_DIR G_DIR_SEPARATOR_S "qemu-ga.pid");
139 }
140 
141 static void quit_handler(int sig)
142 {
143     /* if we're frozen, don't exit unless we're absolutely forced to,
144      * because it's basically impossible for graceful exit to complete
145      * unless all log/pid files are on unfreezable filesystems. there's
146      * also a very likely chance killing the agent before unfreezing
147      * the filesystems is a mistake (or will be viewed as one later).
148      * On Windows the freeze interval is limited to 10 seconds, so
149      * we should quit, but first we should wait for the timeout, thaw
150      * the filesystem and quit.
151      */
152     if (ga_is_frozen(ga_state)) {
153 #ifdef _WIN32
154         int i = 0;
155         Error *err = NULL;
156         HANDLE hEventTimeout;
157 
158         g_debug("Thawing filesystems before exiting");
159 
160         hEventTimeout = OpenEvent(EVENT_ALL_ACCESS, FALSE, EVENT_NAME_TIMEOUT);
161         if (hEventTimeout) {
162             WaitForSingleObject(hEventTimeout, 0);
163             CloseHandle(hEventTimeout);
164         }
165         qga_vss_fsfreeze(&i, false, NULL, &err);
166         if (err) {
167             g_debug("Error unfreezing filesystems prior to exiting: %s",
168                 error_get_pretty(err));
169             error_free(err);
170         }
171 #else
172         return;
173 #endif
174     }
175     g_debug("received signal num %d, quitting", sig);
176 
177     stop_agent(ga_state, true);
178 }
179 
180 #ifndef _WIN32
181 static gboolean register_signal_handlers(void)
182 {
183     struct sigaction sigact;
184     int ret;
185 
186     memset(&sigact, 0, sizeof(struct sigaction));
187     sigact.sa_handler = quit_handler;
188 
189     ret = sigaction(SIGINT, &sigact, NULL);
190     if (ret == -1) {
191         g_error("error configuring signal handler: %s", strerror(errno));
192     }
193     ret = sigaction(SIGTERM, &sigact, NULL);
194     if (ret == -1) {
195         g_error("error configuring signal handler: %s", strerror(errno));
196     }
197 
198     sigact.sa_handler = SIG_IGN;
199     if (sigaction(SIGPIPE, &sigact, NULL) != 0) {
200         g_error("error configuring SIGPIPE signal handler: %s",
201                 strerror(errno));
202     }
203 
204     return true;
205 }
206 
207 /* TODO: use this in place of all post-fork() fclose(std*) callers */
208 void reopen_fd_to_null(int fd)
209 {
210     int nullfd;
211 
212     nullfd = open("/dev/null", O_RDWR);
213     if (nullfd < 0) {
214         return;
215     }
216 
217     dup2(nullfd, fd);
218 
219     if (nullfd != fd) {
220         close(nullfd);
221     }
222 }
223 #endif
224 
225 static void usage(const char *cmd)
226 {
227     printf(
228 "Usage: %s [-m <method> -p <path>] [<options>]\n"
229 "QEMU Guest Agent " QEMU_FULL_VERSION "\n"
230 QEMU_COPYRIGHT "\n"
231 "\n"
232 "  -m, --method      transport method: one of unix-listen, virtio-serial,\n"
233 "                    isa-serial, or vsock-listen (virtio-serial is the default)\n"
234 "  -p, --path        device/socket path (the default for virtio-serial is:\n"
235 "                    %s,\n"
236 "                    the default for isa-serial is:\n"
237 "                    %s).\n"
238 "                    Socket addresses for vsock-listen are written as\n"
239 "                    <cid>:<port>.\n"
240 "  -l, --logfile     set logfile path, logs to stderr by default\n"
241 "  -f, --pidfile     specify pidfile (default is %s)\n"
242 #ifdef CONFIG_FSFREEZE
243 "  -F, --fsfreeze-hook\n"
244 "                    enable fsfreeze hook. Accepts an optional argument that\n"
245 "                    specifies script to run on freeze/thaw. Script will be\n"
246 "                    called with 'freeze'/'thaw' arguments accordingly.\n"
247 "                    (default is %s)\n"
248 "                    If using -F with an argument, do not follow -F with a\n"
249 "                    space.\n"
250 "                    (for example: -F/var/run/fsfreezehook.sh)\n"
251 #endif
252 "  -t, --statedir    specify dir to store state information (absolute paths\n"
253 "                    only, default is %s)\n"
254 "  -v, --verbose     log extra debugging information\n"
255 "  -V, --version     print version information and exit\n"
256 "  -d, --daemonize   become a daemon\n"
257 #ifdef _WIN32
258 "  -s, --service     service commands: install, uninstall, vss-install, vss-uninstall\n"
259 #endif
260 "  -b, --blacklist   comma-separated list of RPCs to disable (no spaces, \"?\"\n"
261 "                    to list available RPCs)\n"
262 "  -D, --dump-conf   dump a qemu-ga config file based on current config\n"
263 "                    options / command-line parameters to stdout\n"
264 "  -r, --retry-path  attempt re-opening path if it's unavailable or closed\n"
265 "                    due to an error which may be recoverable in the future\n"
266 "                    (virtio-serial driver re-install, serial device hot\n"
267 "                    plug/unplug, etc.)\n"
268 "  -h, --help        display this help and exit\n"
269 "\n"
270 QEMU_HELP_BOTTOM "\n"
271     , cmd, QGA_VIRTIO_PATH_DEFAULT, QGA_SERIAL_PATH_DEFAULT,
272     dfl_pathnames.pidfile,
273 #ifdef CONFIG_FSFREEZE
274     QGA_FSFREEZE_HOOK_DEFAULT,
275 #endif
276     dfl_pathnames.state_dir);
277 }
278 
279 static const char *ga_log_level_str(GLogLevelFlags level)
280 {
281     switch (level & G_LOG_LEVEL_MASK) {
282         case G_LOG_LEVEL_ERROR:
283             return "error";
284         case G_LOG_LEVEL_CRITICAL:
285             return "critical";
286         case G_LOG_LEVEL_WARNING:
287             return "warning";
288         case G_LOG_LEVEL_MESSAGE:
289             return "message";
290         case G_LOG_LEVEL_INFO:
291             return "info";
292         case G_LOG_LEVEL_DEBUG:
293             return "debug";
294         default:
295             return "user";
296     }
297 }
298 
299 bool ga_logging_enabled(GAState *s)
300 {
301     return s->logging_enabled;
302 }
303 
304 void ga_disable_logging(GAState *s)
305 {
306     s->logging_enabled = false;
307 }
308 
309 void ga_enable_logging(GAState *s)
310 {
311     s->logging_enabled = true;
312 }
313 
314 static void ga_log(const gchar *domain, GLogLevelFlags level,
315                    const gchar *msg, gpointer opaque)
316 {
317     GAState *s = opaque;
318     GTimeVal time;
319     const char *level_str = ga_log_level_str(level);
320 
321     if (!ga_logging_enabled(s)) {
322         return;
323     }
324 
325     level &= G_LOG_LEVEL_MASK;
326 #ifndef _WIN32
327     if (g_strcmp0(domain, "syslog") == 0) {
328         syslog(LOG_INFO, "%s: %s", level_str, msg);
329     } else if (level & s->log_level) {
330 #else
331     if (level & s->log_level) {
332 #endif
333         g_get_current_time(&time);
334         fprintf(s->log_file,
335                 "%lu.%lu: %s: %s\n", time.tv_sec, time.tv_usec, level_str, msg);
336         fflush(s->log_file);
337     }
338 }
339 
340 void ga_set_response_delimited(GAState *s)
341 {
342     s->delimit_response = true;
343 }
344 
345 static FILE *ga_open_logfile(const char *logfile)
346 {
347     FILE *f;
348 
349     f = fopen(logfile, "a");
350     if (!f) {
351         return NULL;
352     }
353 
354     qemu_set_cloexec(fileno(f));
355     return f;
356 }
357 
358 static gint ga_strcmp(gconstpointer str1, gconstpointer str2)
359 {
360     return strcmp(str1, str2);
361 }
362 
363 /* disable commands that aren't safe for fsfreeze */
364 static void ga_disable_non_whitelisted(const QmpCommand *cmd, void *opaque)
365 {
366     bool whitelisted = false;
367     int i = 0;
368     const char *name = qmp_command_name(cmd);
369 
370     while (ga_freeze_whitelist[i] != NULL) {
371         if (strcmp(name, ga_freeze_whitelist[i]) == 0) {
372             whitelisted = true;
373         }
374         i++;
375     }
376     if (!whitelisted) {
377         g_debug("disabling command: %s", name);
378         qmp_disable_command(&ga_commands, name);
379     }
380 }
381 
382 /* [re-]enable all commands, except those explicitly blacklisted by user */
383 static void ga_enable_non_blacklisted(const QmpCommand *cmd, void *opaque)
384 {
385     GList *blacklist = opaque;
386     const char *name = qmp_command_name(cmd);
387 
388     if (g_list_find_custom(blacklist, name, ga_strcmp) == NULL &&
389         !qmp_command_is_enabled(cmd)) {
390         g_debug("enabling command: %s", name);
391         qmp_enable_command(&ga_commands, name);
392     }
393 }
394 
395 static bool ga_create_file(const char *path)
396 {
397     int fd = open(path, O_CREAT | O_WRONLY, S_IWUSR | S_IRUSR);
398     if (fd == -1) {
399         g_warning("unable to open/create file %s: %s", path, strerror(errno));
400         return false;
401     }
402     close(fd);
403     return true;
404 }
405 
406 static bool ga_delete_file(const char *path)
407 {
408     int ret = unlink(path);
409     if (ret == -1) {
410         g_warning("unable to delete file: %s: %s", path, strerror(errno));
411         return false;
412     }
413 
414     return true;
415 }
416 
417 bool ga_is_frozen(GAState *s)
418 {
419     return s->frozen;
420 }
421 
422 void ga_set_frozen(GAState *s)
423 {
424     if (ga_is_frozen(s)) {
425         return;
426     }
427     /* disable all non-whitelisted (for frozen state) commands */
428     qmp_for_each_command(&ga_commands, ga_disable_non_whitelisted, NULL);
429     g_warning("disabling logging due to filesystem freeze");
430     ga_disable_logging(s);
431     s->frozen = true;
432     if (!ga_create_file(s->state_filepath_isfrozen)) {
433         g_warning("unable to create %s, fsfreeze may not function properly",
434                   s->state_filepath_isfrozen);
435     }
436 }
437 
438 void ga_unset_frozen(GAState *s)
439 {
440     if (!ga_is_frozen(s)) {
441         return;
442     }
443 
444     /* if we delayed creation/opening of pid/log files due to being
445      * in a frozen state at start up, do it now
446      */
447     if (s->deferred_options.log_filepath) {
448         s->log_file = ga_open_logfile(s->deferred_options.log_filepath);
449         if (!s->log_file) {
450             s->log_file = stderr;
451         }
452         s->deferred_options.log_filepath = NULL;
453     }
454     ga_enable_logging(s);
455     g_warning("logging re-enabled due to filesystem unfreeze");
456     if (s->deferred_options.pid_filepath) {
457         Error *err = NULL;
458 
459         if (!qemu_write_pidfile(s->deferred_options.pid_filepath, &err)) {
460             g_warning("%s", error_get_pretty(err));
461             error_free(err);
462         }
463         s->deferred_options.pid_filepath = NULL;
464     }
465 
466     /* enable all disabled, non-blacklisted commands */
467     qmp_for_each_command(&ga_commands, ga_enable_non_blacklisted, s->blacklist);
468     s->frozen = false;
469     if (!ga_delete_file(s->state_filepath_isfrozen)) {
470         g_warning("unable to delete %s, fsfreeze may not function properly",
471                   s->state_filepath_isfrozen);
472     }
473 }
474 
475 #ifdef CONFIG_FSFREEZE
476 const char *ga_fsfreeze_hook(GAState *s)
477 {
478     return s->fsfreeze_hook;
479 }
480 #endif
481 
482 static void become_daemon(const char *pidfile)
483 {
484 #ifndef _WIN32
485     pid_t pid, sid;
486 
487     pid = fork();
488     if (pid < 0) {
489         exit(EXIT_FAILURE);
490     }
491     if (pid > 0) {
492         exit(EXIT_SUCCESS);
493     }
494 
495     if (pidfile) {
496         Error *err = NULL;
497 
498         if (!qemu_write_pidfile(pidfile, &err)) {
499             g_critical("%s", error_get_pretty(err));
500             error_free(err);
501             exit(EXIT_FAILURE);
502         }
503     }
504 
505     umask(S_IRWXG | S_IRWXO);
506     sid = setsid();
507     if (sid < 0) {
508         goto fail;
509     }
510     if ((chdir("/")) < 0) {
511         goto fail;
512     }
513 
514     reopen_fd_to_null(STDIN_FILENO);
515     reopen_fd_to_null(STDOUT_FILENO);
516     reopen_fd_to_null(STDERR_FILENO);
517     return;
518 
519 fail:
520     if (pidfile) {
521         unlink(pidfile);
522     }
523     g_critical("failed to daemonize");
524     exit(EXIT_FAILURE);
525 #endif
526 }
527 
528 static int send_response(GAState *s, const QDict *rsp)
529 {
530     const char *buf;
531     QString *payload_qstr, *response_qstr;
532     GIOStatus status;
533 
534     g_assert(s->channel);
535 
536     if (!rsp) {
537         return 0;
538     }
539 
540     payload_qstr = qobject_to_json(QOBJECT(rsp));
541     if (!payload_qstr) {
542         return -EINVAL;
543     }
544 
545     if (s->delimit_response) {
546         s->delimit_response = false;
547         response_qstr = qstring_new();
548         qstring_append_chr(response_qstr, QGA_SENTINEL_BYTE);
549         qstring_append(response_qstr, qstring_get_str(payload_qstr));
550         qobject_unref(payload_qstr);
551     } else {
552         response_qstr = payload_qstr;
553     }
554 
555     qstring_append_chr(response_qstr, '\n');
556     buf = qstring_get_str(response_qstr);
557     status = ga_channel_write_all(s->channel, buf, strlen(buf));
558     qobject_unref(response_qstr);
559     if (status != G_IO_STATUS_NORMAL) {
560         return -EIO;
561     }
562 
563     return 0;
564 }
565 
566 /* handle requests/control events coming in over the channel */
567 static void process_event(void *opaque, QObject *obj, Error *err)
568 {
569     GAState *s = opaque;
570     QDict *rsp;
571     int ret;
572 
573     g_debug("process_event: called");
574     assert(!obj != !err);
575     if (err) {
576         rsp = qmp_error_response(err);
577         goto end;
578     }
579 
580     g_debug("processing command");
581     rsp = qmp_dispatch(&ga_commands, obj, false);
582 
583 end:
584     ret = send_response(s, rsp);
585     if (ret < 0) {
586         g_warning("error sending error response: %s", strerror(-ret));
587     }
588     qobject_unref(rsp);
589     qobject_unref(obj);
590 }
591 
592 /* false return signals GAChannel to close the current client connection */
593 static gboolean channel_event_cb(GIOCondition condition, gpointer data)
594 {
595     GAState *s = data;
596     gchar buf[QGA_READ_COUNT_DEFAULT+1];
597     gsize count;
598     GIOStatus status = ga_channel_read(s->channel, buf, QGA_READ_COUNT_DEFAULT, &count);
599     switch (status) {
600     case G_IO_STATUS_ERROR:
601         g_warning("error reading channel");
602         stop_agent(s, false);
603         return false;
604     case G_IO_STATUS_NORMAL:
605         buf[count] = 0;
606         g_debug("read data, count: %d, data: %s", (int)count, buf);
607         json_message_parser_feed(&s->parser, (char *)buf, (int)count);
608         break;
609     case G_IO_STATUS_EOF:
610         g_debug("received EOF");
611         if (!s->virtio) {
612             return false;
613         }
614         /* fall through */
615     case G_IO_STATUS_AGAIN:
616         /* virtio causes us to spin here when no process is attached to
617          * host-side chardev. sleep a bit to mitigate this
618          */
619         if (s->virtio) {
620             usleep(100*1000);
621         }
622         return true;
623     default:
624         g_warning("unknown channel read status, closing");
625         return false;
626     }
627     return true;
628 }
629 
630 static gboolean channel_init(GAState *s, const gchar *method, const gchar *path,
631                              int listen_fd)
632 {
633     GAChannelMethod channel_method;
634 
635     if (strcmp(method, "virtio-serial") == 0) {
636         s->virtio = true; /* virtio requires special handling in some cases */
637         channel_method = GA_CHANNEL_VIRTIO_SERIAL;
638     } else if (strcmp(method, "isa-serial") == 0) {
639         channel_method = GA_CHANNEL_ISA_SERIAL;
640     } else if (strcmp(method, "unix-listen") == 0) {
641         channel_method = GA_CHANNEL_UNIX_LISTEN;
642     } else if (strcmp(method, "vsock-listen") == 0) {
643         channel_method = GA_CHANNEL_VSOCK_LISTEN;
644     } else {
645         g_critical("unsupported channel method/type: %s", method);
646         return false;
647     }
648 
649     s->channel = ga_channel_new(channel_method, path, listen_fd,
650                                 channel_event_cb, s);
651     if (!s->channel) {
652         g_critical("failed to create guest agent channel");
653         return false;
654     }
655 
656     return true;
657 }
658 
659 #ifdef _WIN32
660 DWORD WINAPI handle_serial_device_events(DWORD type, LPVOID data)
661 {
662     DWORD ret = NO_ERROR;
663     PDEV_BROADCAST_HDR broadcast_header = (PDEV_BROADCAST_HDR)data;
664 
665     if (broadcast_header->dbch_devicetype == DBT_DEVTYP_DEVICEINTERFACE) {
666         switch (type) {
667             /* Device inserted */
668         case DBT_DEVICEARRIVAL:
669             /* Start QEMU-ga's service */
670             if (!SetEvent(ga_state->wakeup_event)) {
671                 ret = GetLastError();
672             }
673             break;
674             /* Device removed */
675         case DBT_DEVICEQUERYREMOVE:
676         case DBT_DEVICEREMOVEPENDING:
677         case DBT_DEVICEREMOVECOMPLETE:
678             /* Stop QEMU-ga's service */
679             if (!ResetEvent(ga_state->wakeup_event)) {
680                 ret = GetLastError();
681             }
682             break;
683         default:
684             ret = ERROR_CALL_NOT_IMPLEMENTED;
685         }
686     }
687     return ret;
688 }
689 
690 DWORD WINAPI service_ctrl_handler(DWORD ctrl, DWORD type, LPVOID data,
691                                   LPVOID ctx)
692 {
693     DWORD ret = NO_ERROR;
694     GAService *service = &ga_state->service;
695 
696     switch (ctrl)
697     {
698         case SERVICE_CONTROL_STOP:
699         case SERVICE_CONTROL_SHUTDOWN:
700             quit_handler(SIGTERM);
701             SetEvent(ga_state->wakeup_event);
702             service->status.dwCurrentState = SERVICE_STOP_PENDING;
703             SetServiceStatus(service->status_handle, &service->status);
704             break;
705         case SERVICE_CONTROL_DEVICEEVENT:
706             handle_serial_device_events(type, data);
707             break;
708 
709         default:
710             ret = ERROR_CALL_NOT_IMPLEMENTED;
711     }
712     return ret;
713 }
714 
715 VOID WINAPI service_main(DWORD argc, TCHAR *argv[])
716 {
717     GAService *service = &ga_state->service;
718 
719     service->status_handle = RegisterServiceCtrlHandlerEx(QGA_SERVICE_NAME,
720         service_ctrl_handler, NULL);
721 
722     if (service->status_handle == 0) {
723         g_critical("Failed to register extended requests function!\n");
724         return;
725     }
726 
727     service->status.dwServiceType = SERVICE_WIN32;
728     service->status.dwCurrentState = SERVICE_RUNNING;
729     service->status.dwControlsAccepted = SERVICE_ACCEPT_STOP | SERVICE_ACCEPT_SHUTDOWN;
730     service->status.dwWin32ExitCode = NO_ERROR;
731     service->status.dwServiceSpecificExitCode = NO_ERROR;
732     service->status.dwCheckPoint = 0;
733     service->status.dwWaitHint = 0;
734     DEV_BROADCAST_DEVICEINTERFACE notification_filter;
735     ZeroMemory(&notification_filter, sizeof(notification_filter));
736     notification_filter.dbcc_devicetype = DBT_DEVTYP_DEVICEINTERFACE;
737     notification_filter.dbcc_size = sizeof(DEV_BROADCAST_DEVICEINTERFACE);
738     notification_filter.dbcc_classguid = GUID_VIOSERIAL_PORT;
739 
740     service->device_notification_handle =
741         RegisterDeviceNotification(service->status_handle,
742             &notification_filter, DEVICE_NOTIFY_SERVICE_HANDLE);
743     if (!service->device_notification_handle) {
744         g_critical("Failed to register device notification handle!\n");
745         return;
746     }
747     SetServiceStatus(service->status_handle, &service->status);
748 
749     run_agent(ga_state);
750 
751     UnregisterDeviceNotification(service->device_notification_handle);
752     service->status.dwCurrentState = SERVICE_STOPPED;
753     SetServiceStatus(service->status_handle, &service->status);
754 }
755 #endif
756 
757 static void set_persistent_state_defaults(GAPersistentState *pstate)
758 {
759     g_assert(pstate);
760     pstate->fd_counter = QGA_PSTATE_DEFAULT_FD_COUNTER;
761 }
762 
763 static void persistent_state_from_keyfile(GAPersistentState *pstate,
764                                           GKeyFile *keyfile)
765 {
766     g_assert(pstate);
767     g_assert(keyfile);
768     /* if any fields are missing, either because the file was tampered with
769      * by agents of chaos, or because the field wasn't present at the time the
770      * file was created, the best we can ever do is start over with the default
771      * values. so load them now, and ignore any errors in accessing key-value
772      * pairs
773      */
774     set_persistent_state_defaults(pstate);
775 
776     if (g_key_file_has_key(keyfile, "global", "fd_counter", NULL)) {
777         pstate->fd_counter =
778             g_key_file_get_integer(keyfile, "global", "fd_counter", NULL);
779     }
780 }
781 
782 static void persistent_state_to_keyfile(const GAPersistentState *pstate,
783                                         GKeyFile *keyfile)
784 {
785     g_assert(pstate);
786     g_assert(keyfile);
787 
788     g_key_file_set_integer(keyfile, "global", "fd_counter", pstate->fd_counter);
789 }
790 
791 static gboolean write_persistent_state(const GAPersistentState *pstate,
792                                        const gchar *path)
793 {
794     GKeyFile *keyfile = g_key_file_new();
795     GError *gerr = NULL;
796     gboolean ret = true;
797     gchar *data = NULL;
798     gsize data_len;
799 
800     g_assert(pstate);
801 
802     persistent_state_to_keyfile(pstate, keyfile);
803     data = g_key_file_to_data(keyfile, &data_len, &gerr);
804     if (gerr) {
805         g_critical("failed to convert persistent state to string: %s",
806                    gerr->message);
807         ret = false;
808         goto out;
809     }
810 
811     g_file_set_contents(path, data, data_len, &gerr);
812     if (gerr) {
813         g_critical("failed to write persistent state to %s: %s",
814                     path, gerr->message);
815         ret = false;
816         goto out;
817     }
818 
819 out:
820     if (gerr) {
821         g_error_free(gerr);
822     }
823     if (keyfile) {
824         g_key_file_free(keyfile);
825     }
826     g_free(data);
827     return ret;
828 }
829 
830 static gboolean read_persistent_state(GAPersistentState *pstate,
831                                       const gchar *path, gboolean frozen)
832 {
833     GKeyFile *keyfile = NULL;
834     GError *gerr = NULL;
835     struct stat st;
836     gboolean ret = true;
837 
838     g_assert(pstate);
839 
840     if (stat(path, &st) == -1) {
841         /* it's okay if state file doesn't exist, but any other error
842          * indicates a permissions issue or some other misconfiguration
843          * that we likely won't be able to recover from.
844          */
845         if (errno != ENOENT) {
846             g_critical("unable to access state file at path %s: %s",
847                        path, strerror(errno));
848             ret = false;
849             goto out;
850         }
851 
852         /* file doesn't exist. initialize state to default values and
853          * attempt to save now. (we could wait till later when we have
854          * modified state we need to commit, but if there's a problem,
855          * such as a missing parent directory, we want to catch it now)
856          *
857          * there is a potential scenario where someone either managed to
858          * update the agent from a version that didn't use a key store
859          * while qemu-ga thought the filesystem was frozen, or
860          * deleted the key store prior to issuing a fsfreeze, prior
861          * to restarting the agent. in this case we go ahead and defer
862          * initial creation till we actually have modified state to
863          * write, otherwise fail to recover from freeze.
864          */
865         set_persistent_state_defaults(pstate);
866         if (!frozen) {
867             ret = write_persistent_state(pstate, path);
868             if (!ret) {
869                 g_critical("unable to create state file at path %s", path);
870                 ret = false;
871                 goto out;
872             }
873         }
874         ret = true;
875         goto out;
876     }
877 
878     keyfile = g_key_file_new();
879     g_key_file_load_from_file(keyfile, path, 0, &gerr);
880     if (gerr) {
881         g_critical("error loading persistent state from path: %s, %s",
882                    path, gerr->message);
883         ret = false;
884         goto out;
885     }
886 
887     persistent_state_from_keyfile(pstate, keyfile);
888 
889 out:
890     if (keyfile) {
891         g_key_file_free(keyfile);
892     }
893     if (gerr) {
894         g_error_free(gerr);
895     }
896 
897     return ret;
898 }
899 
900 int64_t ga_get_fd_handle(GAState *s, Error **errp)
901 {
902     int64_t handle;
903 
904     g_assert(s->pstate_filepath);
905     /* we blacklist commands and avoid operations that potentially require
906      * writing to disk when we're in a frozen state. this includes opening
907      * new files, so we should never get here in that situation
908      */
909     g_assert(!ga_is_frozen(s));
910 
911     handle = s->pstate.fd_counter++;
912 
913     /* This should never happen on a reasonable timeframe, as guest-file-open
914      * would have to be issued 2^63 times */
915     if (s->pstate.fd_counter == INT64_MAX) {
916         abort();
917     }
918 
919     if (!write_persistent_state(&s->pstate, s->pstate_filepath)) {
920         error_setg(errp, "failed to commit persistent state to disk");
921         return -1;
922     }
923 
924     return handle;
925 }
926 
927 static void ga_print_cmd(const QmpCommand *cmd, void *opaque)
928 {
929     printf("%s\n", qmp_command_name(cmd));
930 }
931 
932 static GList *split_list(const gchar *str, const gchar *delim)
933 {
934     GList *list = NULL;
935     int i;
936     gchar **strv;
937 
938     strv = g_strsplit(str, delim, -1);
939     for (i = 0; strv[i]; i++) {
940         list = g_list_prepend(list, strv[i]);
941     }
942     g_free(strv);
943 
944     return list;
945 }
946 
947 struct GAConfig {
948     char *channel_path;
949     char *method;
950     char *log_filepath;
951     char *pid_filepath;
952 #ifdef CONFIG_FSFREEZE
953     char *fsfreeze_hook;
954 #endif
955     char *state_dir;
956 #ifdef _WIN32
957     const char *service;
958 #endif
959     gchar *bliststr; /* blacklist may point to this string */
960     GList *blacklist;
961     int daemonize;
962     GLogLevelFlags log_level;
963     int dumpconf;
964     bool retry_path;
965 };
966 
967 static void config_load(GAConfig *config)
968 {
969     GError *gerr = NULL;
970     GKeyFile *keyfile;
971     const char *conf = g_getenv("QGA_CONF") ?: QGA_CONF_DEFAULT;
972 
973     /* read system config */
974     keyfile = g_key_file_new();
975     if (!g_key_file_load_from_file(keyfile, conf, 0, &gerr)) {
976         goto end;
977     }
978     if (g_key_file_has_key(keyfile, "general", "daemon", NULL)) {
979         config->daemonize =
980             g_key_file_get_boolean(keyfile, "general", "daemon", &gerr);
981     }
982     if (g_key_file_has_key(keyfile, "general", "method", NULL)) {
983         config->method =
984             g_key_file_get_string(keyfile, "general", "method", &gerr);
985     }
986     if (g_key_file_has_key(keyfile, "general", "path", NULL)) {
987         config->channel_path =
988             g_key_file_get_string(keyfile, "general", "path", &gerr);
989     }
990     if (g_key_file_has_key(keyfile, "general", "logfile", NULL)) {
991         config->log_filepath =
992             g_key_file_get_string(keyfile, "general", "logfile", &gerr);
993     }
994     if (g_key_file_has_key(keyfile, "general", "pidfile", NULL)) {
995         config->pid_filepath =
996             g_key_file_get_string(keyfile, "general", "pidfile", &gerr);
997     }
998 #ifdef CONFIG_FSFREEZE
999     if (g_key_file_has_key(keyfile, "general", "fsfreeze-hook", NULL)) {
1000         config->fsfreeze_hook =
1001             g_key_file_get_string(keyfile,
1002                                   "general", "fsfreeze-hook", &gerr);
1003     }
1004 #endif
1005     if (g_key_file_has_key(keyfile, "general", "statedir", NULL)) {
1006         config->state_dir =
1007             g_key_file_get_string(keyfile, "general", "statedir", &gerr);
1008     }
1009     if (g_key_file_has_key(keyfile, "general", "verbose", NULL) &&
1010         g_key_file_get_boolean(keyfile, "general", "verbose", &gerr)) {
1011         /* enable all log levels */
1012         config->log_level = G_LOG_LEVEL_MASK;
1013     }
1014     if (g_key_file_has_key(keyfile, "general", "retry-path", NULL)) {
1015         config->retry_path =
1016             g_key_file_get_boolean(keyfile, "general", "retry-path", &gerr);
1017     }
1018     if (g_key_file_has_key(keyfile, "general", "blacklist", NULL)) {
1019         config->bliststr =
1020             g_key_file_get_string(keyfile, "general", "blacklist", &gerr);
1021         config->blacklist = g_list_concat(config->blacklist,
1022                                           split_list(config->bliststr, ","));
1023     }
1024 
1025 end:
1026     g_key_file_free(keyfile);
1027     if (gerr &&
1028         !(gerr->domain == G_FILE_ERROR && gerr->code == G_FILE_ERROR_NOENT)) {
1029         g_critical("error loading configuration from path: %s, %s",
1030                    QGA_CONF_DEFAULT, gerr->message);
1031         exit(EXIT_FAILURE);
1032     }
1033     g_clear_error(&gerr);
1034 }
1035 
1036 static gchar *list_join(GList *list, const gchar separator)
1037 {
1038     GString *str = g_string_new("");
1039 
1040     while (list) {
1041         str = g_string_append(str, (gchar *)list->data);
1042         list = g_list_next(list);
1043         if (list) {
1044             str = g_string_append_c(str, separator);
1045         }
1046     }
1047 
1048     return g_string_free(str, FALSE);
1049 }
1050 
1051 static void config_dump(GAConfig *config)
1052 {
1053     GError *error = NULL;
1054     GKeyFile *keyfile;
1055     gchar *tmp;
1056 
1057     keyfile = g_key_file_new();
1058     g_assert(keyfile);
1059 
1060     g_key_file_set_boolean(keyfile, "general", "daemon", config->daemonize);
1061     g_key_file_set_string(keyfile, "general", "method", config->method);
1062     if (config->channel_path) {
1063         g_key_file_set_string(keyfile, "general", "path", config->channel_path);
1064     }
1065     if (config->log_filepath) {
1066         g_key_file_set_string(keyfile, "general", "logfile",
1067                               config->log_filepath);
1068     }
1069     g_key_file_set_string(keyfile, "general", "pidfile", config->pid_filepath);
1070 #ifdef CONFIG_FSFREEZE
1071     if (config->fsfreeze_hook) {
1072         g_key_file_set_string(keyfile, "general", "fsfreeze-hook",
1073                               config->fsfreeze_hook);
1074     }
1075 #endif
1076     g_key_file_set_string(keyfile, "general", "statedir", config->state_dir);
1077     g_key_file_set_boolean(keyfile, "general", "verbose",
1078                            config->log_level == G_LOG_LEVEL_MASK);
1079     g_key_file_set_boolean(keyfile, "general", "retry-path",
1080                            config->retry_path);
1081     tmp = list_join(config->blacklist, ',');
1082     g_key_file_set_string(keyfile, "general", "blacklist", tmp);
1083     g_free(tmp);
1084 
1085     tmp = g_key_file_to_data(keyfile, NULL, &error);
1086     if (error) {
1087         g_critical("Failed to dump keyfile: %s", error->message);
1088         g_clear_error(&error);
1089     } else {
1090         printf("%s", tmp);
1091     }
1092 
1093     g_free(tmp);
1094     g_key_file_free(keyfile);
1095 }
1096 
1097 static void config_parse(GAConfig *config, int argc, char **argv)
1098 {
1099     const char *sopt = "hVvdm:p:l:f:F::b:s:t:Dr";
1100     int opt_ind = 0, ch;
1101     const struct option lopt[] = {
1102         { "help", 0, NULL, 'h' },
1103         { "version", 0, NULL, 'V' },
1104         { "dump-conf", 0, NULL, 'D' },
1105         { "logfile", 1, NULL, 'l' },
1106         { "pidfile", 1, NULL, 'f' },
1107 #ifdef CONFIG_FSFREEZE
1108         { "fsfreeze-hook", 2, NULL, 'F' },
1109 #endif
1110         { "verbose", 0, NULL, 'v' },
1111         { "method", 1, NULL, 'm' },
1112         { "path", 1, NULL, 'p' },
1113         { "daemonize", 0, NULL, 'd' },
1114         { "blacklist", 1, NULL, 'b' },
1115 #ifdef _WIN32
1116         { "service", 1, NULL, 's' },
1117 #endif
1118         { "statedir", 1, NULL, 't' },
1119         { "retry-path", 0, NULL, 'r' },
1120         { NULL, 0, NULL, 0 }
1121     };
1122 
1123     while ((ch = getopt_long(argc, argv, sopt, lopt, &opt_ind)) != -1) {
1124         switch (ch) {
1125         case 'm':
1126             g_free(config->method);
1127             config->method = g_strdup(optarg);
1128             break;
1129         case 'p':
1130             g_free(config->channel_path);
1131             config->channel_path = g_strdup(optarg);
1132             break;
1133         case 'l':
1134             g_free(config->log_filepath);
1135             config->log_filepath = g_strdup(optarg);
1136             break;
1137         case 'f':
1138             g_free(config->pid_filepath);
1139             config->pid_filepath = g_strdup(optarg);
1140             break;
1141 #ifdef CONFIG_FSFREEZE
1142         case 'F':
1143             g_free(config->fsfreeze_hook);
1144             config->fsfreeze_hook = g_strdup(optarg ?: QGA_FSFREEZE_HOOK_DEFAULT);
1145             break;
1146 #endif
1147         case 't':
1148             g_free(config->state_dir);
1149             config->state_dir = g_strdup(optarg);
1150             break;
1151         case 'v':
1152             /* enable all log levels */
1153             config->log_level = G_LOG_LEVEL_MASK;
1154             break;
1155         case 'V':
1156             printf("QEMU Guest Agent %s\n", QEMU_VERSION);
1157             exit(EXIT_SUCCESS);
1158         case 'd':
1159             config->daemonize = 1;
1160             break;
1161         case 'D':
1162             config->dumpconf = 1;
1163             break;
1164         case 'r':
1165             config->retry_path = true;
1166             break;
1167         case 'b': {
1168             if (is_help_option(optarg)) {
1169                 qmp_for_each_command(&ga_commands, ga_print_cmd, NULL);
1170                 exit(EXIT_SUCCESS);
1171             }
1172             config->blacklist = g_list_concat(config->blacklist,
1173                                              split_list(optarg, ","));
1174             break;
1175         }
1176 #ifdef _WIN32
1177         case 's':
1178             config->service = optarg;
1179             if (strcmp(config->service, "install") == 0) {
1180                 if (ga_install_vss_provider()) {
1181                     exit(EXIT_FAILURE);
1182                 }
1183                 if (ga_install_service(config->channel_path,
1184                                        config->log_filepath, config->state_dir)) {
1185                     exit(EXIT_FAILURE);
1186                 }
1187                 exit(EXIT_SUCCESS);
1188             } else if (strcmp(config->service, "uninstall") == 0) {
1189                 ga_uninstall_vss_provider();
1190                 exit(ga_uninstall_service());
1191             } else if (strcmp(config->service, "vss-install") == 0) {
1192                 if (ga_install_vss_provider()) {
1193                     exit(EXIT_FAILURE);
1194                 }
1195                 exit(EXIT_SUCCESS);
1196             } else if (strcmp(config->service, "vss-uninstall") == 0) {
1197                 ga_uninstall_vss_provider();
1198                 exit(EXIT_SUCCESS);
1199             } else {
1200                 printf("Unknown service command.\n");
1201                 exit(EXIT_FAILURE);
1202             }
1203             break;
1204 #endif
1205         case 'h':
1206             usage(argv[0]);
1207             exit(EXIT_SUCCESS);
1208         case '?':
1209             g_print("Unknown option, try '%s --help' for more information.\n",
1210                     argv[0]);
1211             exit(EXIT_FAILURE);
1212         }
1213     }
1214 }
1215 
1216 static void config_free(GAConfig *config)
1217 {
1218     g_free(config->method);
1219     g_free(config->log_filepath);
1220     g_free(config->pid_filepath);
1221     g_free(config->state_dir);
1222     g_free(config->channel_path);
1223     g_free(config->bliststr);
1224 #ifdef CONFIG_FSFREEZE
1225     g_free(config->fsfreeze_hook);
1226 #endif
1227     g_list_free_full(config->blacklist, g_free);
1228     g_free(config);
1229 }
1230 
1231 static bool check_is_frozen(GAState *s)
1232 {
1233 #ifndef _WIN32
1234     /* check if a previous instance of qemu-ga exited with filesystems' state
1235      * marked as frozen. this could be a stale value (a non-qemu-ga process
1236      * or reboot may have since unfrozen them), but better to require an
1237      * uneeded unfreeze than to risk hanging on start-up
1238      */
1239     struct stat st;
1240     if (stat(s->state_filepath_isfrozen, &st) == -1) {
1241         /* it's okay if the file doesn't exist, but if we can't access for
1242          * some other reason, such as permissions, there's a configuration
1243          * that needs to be addressed. so just bail now before we get into
1244          * more trouble later
1245          */
1246         if (errno != ENOENT) {
1247             g_critical("unable to access state file at path %s: %s",
1248                        s->state_filepath_isfrozen, strerror(errno));
1249             return EXIT_FAILURE;
1250         }
1251     } else {
1252         g_warning("previous instance appears to have exited with frozen"
1253                   " filesystems. deferring logging/pidfile creation and"
1254                   " disabling non-fsfreeze-safe commands until"
1255                   " guest-fsfreeze-thaw is issued, or filesystems are"
1256                   " manually unfrozen and the file %s is removed",
1257                   s->state_filepath_isfrozen);
1258         return true;
1259     }
1260 #endif
1261     return false;
1262 }
1263 
1264 static GAState *initialize_agent(GAConfig *config, int socket_activation)
1265 {
1266     GAState *s = g_new0(GAState, 1);
1267 
1268     g_assert(ga_state == NULL);
1269 
1270     s->log_level = config->log_level;
1271     s->log_file = stderr;
1272 #ifdef CONFIG_FSFREEZE
1273     s->fsfreeze_hook = config->fsfreeze_hook;
1274 #endif
1275     s->pstate_filepath = g_strdup_printf("%s/qga.state", config->state_dir);
1276     s->state_filepath_isfrozen = g_strdup_printf("%s/qga.state.isfrozen",
1277                                                  config->state_dir);
1278     s->frozen = check_is_frozen(s);
1279 
1280     g_log_set_default_handler(ga_log, s);
1281     g_log_set_fatal_mask(NULL, G_LOG_LEVEL_ERROR);
1282     ga_enable_logging(s);
1283 
1284 #ifdef _WIN32
1285     /* On win32 the state directory is application specific (be it the default
1286      * or a user override). We got past the command line parsing; let's create
1287      * the directory (with any intermediate directories). If we run into an
1288      * error later on, we won't try to clean up the directory, it is considered
1289      * persistent.
1290      */
1291     if (g_mkdir_with_parents(config->state_dir, S_IRWXU) == -1) {
1292         g_critical("unable to create (an ancestor of) the state directory"
1293                    " '%s': %s", config->state_dir, strerror(errno));
1294         return NULL;
1295     }
1296 #endif
1297 
1298     if (ga_is_frozen(s)) {
1299         if (config->daemonize) {
1300             /* delay opening/locking of pidfile till filesystems are unfrozen */
1301             s->deferred_options.pid_filepath = config->pid_filepath;
1302             become_daemon(NULL);
1303         }
1304         if (config->log_filepath) {
1305             /* delay opening the log file till filesystems are unfrozen */
1306             s->deferred_options.log_filepath = config->log_filepath;
1307         }
1308         ga_disable_logging(s);
1309         qmp_for_each_command(&ga_commands, ga_disable_non_whitelisted, NULL);
1310     } else {
1311         if (config->daemonize) {
1312             become_daemon(config->pid_filepath);
1313         }
1314         if (config->log_filepath) {
1315             FILE *log_file = ga_open_logfile(config->log_filepath);
1316             if (!log_file) {
1317                 g_critical("unable to open specified log file: %s",
1318                            strerror(errno));
1319                 return NULL;
1320             }
1321             s->log_file = log_file;
1322         }
1323     }
1324 
1325     /* load persistent state from disk */
1326     if (!read_persistent_state(&s->pstate,
1327                                s->pstate_filepath,
1328                                ga_is_frozen(s))) {
1329         g_critical("failed to load persistent state");
1330         return NULL;
1331     }
1332 
1333     config->blacklist = ga_command_blacklist_init(config->blacklist);
1334     if (config->blacklist) {
1335         GList *l = config->blacklist;
1336         s->blacklist = config->blacklist;
1337         do {
1338             g_debug("disabling command: %s", (char *)l->data);
1339             qmp_disable_command(&ga_commands, l->data);
1340             l = g_list_next(l);
1341         } while (l);
1342     }
1343     s->command_state = ga_command_state_new();
1344     ga_command_state_init(s, s->command_state);
1345     ga_command_state_init_all(s->command_state);
1346     json_message_parser_init(&s->parser, process_event, s, NULL);
1347 
1348 #ifndef _WIN32
1349     if (!register_signal_handlers()) {
1350         g_critical("failed to register signal handlers");
1351         return NULL;
1352     }
1353 #endif
1354 
1355     s->main_loop = g_main_loop_new(NULL, false);
1356 
1357     s->config = config;
1358     s->socket_activation = socket_activation;
1359 
1360 #ifdef _WIN32
1361     s->wakeup_event = CreateEvent(NULL, TRUE, FALSE, TEXT("WakeUp"));
1362     if (s->wakeup_event == NULL) {
1363         g_critical("CreateEvent failed");
1364         return NULL;
1365     }
1366 #endif
1367 
1368     ga_state = s;
1369     return s;
1370 }
1371 
1372 static void cleanup_agent(GAState *s)
1373 {
1374 #ifdef _WIN32
1375     CloseHandle(s->wakeup_event);
1376 #endif
1377     if (s->command_state) {
1378         ga_command_state_cleanup_all(s->command_state);
1379         ga_command_state_free(s->command_state);
1380         json_message_parser_destroy(&s->parser);
1381     }
1382     g_free(s->pstate_filepath);
1383     g_free(s->state_filepath_isfrozen);
1384     if (s->main_loop) {
1385         g_main_loop_unref(s->main_loop);
1386     }
1387     g_free(s);
1388     ga_state = NULL;
1389 }
1390 
1391 static int run_agent_once(GAState *s)
1392 {
1393     if (!channel_init(s, s->config->method, s->config->channel_path,
1394                       s->socket_activation ? FIRST_SOCKET_ACTIVATION_FD : -1)) {
1395         g_critical("failed to initialize guest agent channel");
1396         return EXIT_FAILURE;
1397     }
1398 
1399     g_main_loop_run(ga_state->main_loop);
1400 
1401     if (s->channel) {
1402         ga_channel_free(s->channel);
1403     }
1404 
1405     return EXIT_SUCCESS;
1406 }
1407 
1408 static void wait_for_channel_availability(GAState *s)
1409 {
1410     g_warning("waiting for channel path...");
1411 #ifndef _WIN32
1412     sleep(QGA_RETRY_INTERVAL);
1413 #else
1414     DWORD dwWaitResult;
1415 
1416     dwWaitResult = WaitForSingleObject(s->wakeup_event, INFINITE);
1417 
1418     switch (dwWaitResult) {
1419     case WAIT_OBJECT_0:
1420         break;
1421     case WAIT_TIMEOUT:
1422         break;
1423     default:
1424         g_critical("WaitForSingleObject failed");
1425     }
1426 #endif
1427 }
1428 
1429 static int run_agent(GAState *s)
1430 {
1431     int ret = EXIT_SUCCESS;
1432 
1433     s->force_exit = false;
1434 
1435     do {
1436         ret = run_agent_once(s);
1437         if (s->config->retry_path && !s->force_exit) {
1438             g_warning("agent stopped unexpectedly, restarting...");
1439             wait_for_channel_availability(s);
1440         }
1441     } while (s->config->retry_path && !s->force_exit);
1442 
1443     return ret;
1444 }
1445 
1446 static void stop_agent(GAState *s, bool requested)
1447 {
1448     if (!s->force_exit) {
1449         s->force_exit = requested;
1450     }
1451 
1452     if (g_main_loop_is_running(s->main_loop)) {
1453         g_main_loop_quit(s->main_loop);
1454     }
1455 }
1456 
1457 int main(int argc, char **argv)
1458 {
1459     int ret = EXIT_SUCCESS;
1460     GAState *s;
1461     GAConfig *config = g_new0(GAConfig, 1);
1462     int socket_activation;
1463 
1464     config->log_level = G_LOG_LEVEL_ERROR | G_LOG_LEVEL_CRITICAL;
1465 
1466     qga_qmp_init_marshal(&ga_commands);
1467 
1468     init_dfl_pathnames();
1469     config_load(config);
1470     config_parse(config, argc, argv);
1471 
1472     if (config->pid_filepath == NULL) {
1473         config->pid_filepath = g_strdup(dfl_pathnames.pidfile);
1474     }
1475 
1476     if (config->state_dir == NULL) {
1477         config->state_dir = g_strdup(dfl_pathnames.state_dir);
1478     }
1479 
1480     if (config->method == NULL) {
1481         config->method = g_strdup("virtio-serial");
1482     }
1483 
1484     socket_activation = check_socket_activation();
1485     if (socket_activation > 1) {
1486         g_critical("qemu-ga only supports listening on one socket");
1487         ret = EXIT_FAILURE;
1488         goto end;
1489     }
1490     if (socket_activation) {
1491         SocketAddress *addr;
1492 
1493         g_free(config->method);
1494         g_free(config->channel_path);
1495         config->method = NULL;
1496         config->channel_path = NULL;
1497 
1498         addr = socket_local_address(FIRST_SOCKET_ACTIVATION_FD, NULL);
1499         if (addr) {
1500             if (addr->type == SOCKET_ADDRESS_TYPE_UNIX) {
1501                 config->method = g_strdup("unix-listen");
1502             } else if (addr->type == SOCKET_ADDRESS_TYPE_VSOCK) {
1503                 config->method = g_strdup("vsock-listen");
1504             }
1505 
1506             qapi_free_SocketAddress(addr);
1507         }
1508 
1509         if (!config->method) {
1510             g_critical("unsupported listen fd type");
1511             ret = EXIT_FAILURE;
1512             goto end;
1513         }
1514     } else if (config->channel_path == NULL) {
1515         if (strcmp(config->method, "virtio-serial") == 0) {
1516             /* try the default path for the virtio-serial port */
1517             config->channel_path = g_strdup(QGA_VIRTIO_PATH_DEFAULT);
1518         } else if (strcmp(config->method, "isa-serial") == 0) {
1519             /* try the default path for the serial port - COM1 */
1520             config->channel_path = g_strdup(QGA_SERIAL_PATH_DEFAULT);
1521         } else {
1522             g_critical("must specify a path for this channel");
1523             ret = EXIT_FAILURE;
1524             goto end;
1525         }
1526     }
1527 
1528     if (config->dumpconf) {
1529         config_dump(config);
1530         goto end;
1531     }
1532 
1533     s = initialize_agent(config, socket_activation);
1534     if (!s) {
1535         g_critical("error initializing guest agent");
1536         goto end;
1537     }
1538 
1539 #ifdef _WIN32
1540     if (config->daemonize) {
1541         SERVICE_TABLE_ENTRY service_table[] = {
1542             { (char *)QGA_SERVICE_NAME, service_main }, { NULL, NULL } };
1543         StartServiceCtrlDispatcher(service_table);
1544     } else {
1545         ret = run_agent(s);
1546     }
1547 #else
1548     ret = run_agent(s);
1549 #endif
1550 
1551     cleanup_agent(s);
1552 
1553 end:
1554     if (config->daemonize) {
1555         unlink(config->pid_filepath);
1556     }
1557 
1558     config_free(config);
1559 
1560     return ret;
1561 }
1562