xref: /illumos-gate/usr/src/cmd/halt/halt.c (revision 6bc8bc6a97518e9ec3d440de43fc1a30a7db825f)
17c478bd9Sstevel@tonic-gate /*
27c478bd9Sstevel@tonic-gate  * CDDL HEADER START
37c478bd9Sstevel@tonic-gate  *
47c478bd9Sstevel@tonic-gate  * The contents of this file are subject to the terms of the
53f2f09c1Sdp  * Common Development and Distribution License (the "License").
63f2f09c1Sdp  * You may not use this file except in compliance with the License.
77c478bd9Sstevel@tonic-gate  *
87c478bd9Sstevel@tonic-gate  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
97c478bd9Sstevel@tonic-gate  * or http://www.opensolaris.org/os/licensing.
107c478bd9Sstevel@tonic-gate  * See the License for the specific language governing permissions
117c478bd9Sstevel@tonic-gate  * and limitations under the License.
127c478bd9Sstevel@tonic-gate  *
137c478bd9Sstevel@tonic-gate  * When distributing Covered Code, include this CDDL HEADER in each
147c478bd9Sstevel@tonic-gate  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
157c478bd9Sstevel@tonic-gate  * If applicable, add the following below this CDDL HEADER, with the
167c478bd9Sstevel@tonic-gate  * fields enclosed by brackets "[]" replaced with your own identifying
177c478bd9Sstevel@tonic-gate  * information: Portions Copyright [yyyy] [name of copyright owner]
187c478bd9Sstevel@tonic-gate  *
197c478bd9Sstevel@tonic-gate  * CDDL HEADER END
207c478bd9Sstevel@tonic-gate  */
217c478bd9Sstevel@tonic-gate /*
2219397407SSherry Moore  * Copyright 2008 Sun Microsystems, Inc.  All rights reserved.
237c478bd9Sstevel@tonic-gate  * Use is subject to license terms.
247c478bd9Sstevel@tonic-gate  */
257c478bd9Sstevel@tonic-gate 
267c478bd9Sstevel@tonic-gate /*	Copyright (c) 1984, 1986, 1987, 1988, 1989 AT&T	*/
277c478bd9Sstevel@tonic-gate /*	  All Rights Reserved  	*/
287c478bd9Sstevel@tonic-gate 
297c478bd9Sstevel@tonic-gate /*
307c478bd9Sstevel@tonic-gate  * University Copyright- Copyright (c) 1982, 1986, 1988
317c478bd9Sstevel@tonic-gate  * The Regents of the University of California
327c478bd9Sstevel@tonic-gate  * All Rights Reserved
337c478bd9Sstevel@tonic-gate  *
347c478bd9Sstevel@tonic-gate  * University Acknowledgment- Portions of this document are derived from
357c478bd9Sstevel@tonic-gate  * software developed by the University of California, Berkeley, and its
367c478bd9Sstevel@tonic-gate  * contributors.
377c478bd9Sstevel@tonic-gate  */
387c478bd9Sstevel@tonic-gate 
397c478bd9Sstevel@tonic-gate 
407c478bd9Sstevel@tonic-gate /*
417c478bd9Sstevel@tonic-gate  * Common code for halt(1M), poweroff(1M), and reboot(1M).  We use
427c478bd9Sstevel@tonic-gate  * argv[0] to determine which behavior to exhibit.
437c478bd9Sstevel@tonic-gate  */
447c478bd9Sstevel@tonic-gate 
4519397407SSherry Moore #include <stdio.h>
463f2f09c1Sdp #include <procfs.h>
477c478bd9Sstevel@tonic-gate #include <sys/types.h>
4819397407SSherry Moore #include <sys/elf.h>
4919397407SSherry Moore #include <sys/systeminfo.h>
5019397407SSherry Moore #include <sys/stat.h>
517c478bd9Sstevel@tonic-gate #include <sys/uadmin.h>
5219397407SSherry Moore #include <sys/mntent.h>
5319397407SSherry Moore #include <sys/mnttab.h>
5419397407SSherry Moore #include <sys/mount.h>
557c478bd9Sstevel@tonic-gate #include <alloca.h>
567c478bd9Sstevel@tonic-gate #include <assert.h>
577c478bd9Sstevel@tonic-gate #include <errno.h>
587c478bd9Sstevel@tonic-gate #include <fcntl.h>
597c478bd9Sstevel@tonic-gate #include <libgen.h>
607c478bd9Sstevel@tonic-gate #include <libscf.h>
6119397407SSherry Moore #include <limits.h>
627c478bd9Sstevel@tonic-gate #include <locale.h>
637c478bd9Sstevel@tonic-gate #include <libintl.h>
647c478bd9Sstevel@tonic-gate #include <syslog.h>
657c478bd9Sstevel@tonic-gate #include <signal.h>
667c478bd9Sstevel@tonic-gate #include <strings.h>
677c478bd9Sstevel@tonic-gate #include <unistd.h>
687c478bd9Sstevel@tonic-gate #include <stdlib.h>
697c478bd9Sstevel@tonic-gate #include <stdio.h>
707c478bd9Sstevel@tonic-gate #include <strings.h>
717c478bd9Sstevel@tonic-gate #include <time.h>
724e1f1c13SKonstantin Ananyev #include <wait.h>
734e1f1c13SKonstantin Ananyev #include <ctype.h>
747c478bd9Sstevel@tonic-gate #include <utmpx.h>
757c478bd9Sstevel@tonic-gate #include <pwd.h>
767c478bd9Sstevel@tonic-gate #include <zone.h>
7719397407SSherry Moore 
7819397407SSherry Moore #include <libzfs.h>
7919397407SSherry Moore 
807c478bd9Sstevel@tonic-gate #if !defined(TEXT_DOMAIN)
817c478bd9Sstevel@tonic-gate #define	TEXT_DOMAIN	"SYS_TEST"
827c478bd9Sstevel@tonic-gate #endif
837c478bd9Sstevel@tonic-gate 
8419397407SSherry Moore #if defined(__sparc)
8519397407SSherry Moore #define	CUR_ELFDATA	ELFDATA2MSB
8619397407SSherry Moore #elif defined(__i386)
8719397407SSherry Moore #define	CUR_ELFDATA	ELFDATA2LSB
8819397407SSherry Moore #endif
8919397407SSherry Moore 
9019397407SSherry Moore static libzfs_handle_t *g_zfs;
9119397407SSherry Moore 
927c478bd9Sstevel@tonic-gate extern int audit_halt_setup(int, char **);
937c478bd9Sstevel@tonic-gate extern int audit_halt_success(void);
947c478bd9Sstevel@tonic-gate extern int audit_halt_fail(void);
957c478bd9Sstevel@tonic-gate 
967c478bd9Sstevel@tonic-gate extern int audit_reboot_setup(void);
977c478bd9Sstevel@tonic-gate extern int audit_reboot_success(void);
987c478bd9Sstevel@tonic-gate extern int audit_reboot_fail(void);
997c478bd9Sstevel@tonic-gate 
1003f2f09c1Sdp static char *cmdname;	/* basename(argv[0]), the name of the command */
1013f2f09c1Sdp 
1027c478bd9Sstevel@tonic-gate typedef struct ctidlist_struct {
1037c478bd9Sstevel@tonic-gate 	ctid_t ctid;
1047c478bd9Sstevel@tonic-gate 	struct ctidlist_struct *next;
1057c478bd9Sstevel@tonic-gate } ctidlist_t;
1067c478bd9Sstevel@tonic-gate 
1077c478bd9Sstevel@tonic-gate static ctidlist_t *ctidlist = NULL;
1087c478bd9Sstevel@tonic-gate static ctid_t startdct = -1;
1097c478bd9Sstevel@tonic-gate 
1107c478bd9Sstevel@tonic-gate #define	FMRI_STARTD_CONTRACT \
1117c478bd9Sstevel@tonic-gate 	"svc:/system/svc/restarter:default/:properties/restarter/contract"
1127c478bd9Sstevel@tonic-gate 
11326f665e8Sdstaff #define	ZONEADM_PROG "/usr/sbin/zoneadm"
11426f665e8Sdstaff 
1154e1f1c13SKonstantin Ananyev #define	LUUMOUNT_PROG	"/usr/sbin/luumount"
1164e1f1c13SKonstantin Ananyev #define	LUMOUNT_PROG	"/usr/sbin/lumount"
1174e1f1c13SKonstantin Ananyev 
11819397407SSherry Moore /*
11919397407SSherry Moore  * The length of FASTBOOT_MOUNTPOINT must be less than MAXPATHLEN.
12019397407SSherry Moore  */
12119397407SSherry Moore #define	FASTBOOT_MOUNTPOINT	"/tmp/.fastboot.root"
12219397407SSherry Moore 
12319397407SSherry Moore static char	fastboot_mounted[MAXPATHLEN];
12419397407SSherry Moore 
12519397407SSherry Moore static int validate_ufs_disk(char *, char *);
12619397407SSherry Moore static int validate_zfs_pool(char *, char *);
12719397407SSherry Moore 
1283f2f09c1Sdp static pid_t
1293f2f09c1Sdp get_initpid()
1303f2f09c1Sdp {
1313f2f09c1Sdp 	static int init_pid = -1;
1323f2f09c1Sdp 
1333f2f09c1Sdp 	if (init_pid == -1) {
1343f2f09c1Sdp 		if (zone_getattr(getzoneid(), ZONE_ATTR_INITPID, &init_pid,
1353f2f09c1Sdp 		    sizeof (init_pid)) != sizeof (init_pid)) {
1363f2f09c1Sdp 			assert(errno == ESRCH);
1373f2f09c1Sdp 			init_pid = -1;
1383f2f09c1Sdp 		}
1393f2f09c1Sdp 	}
1403f2f09c1Sdp 	return (init_pid);
1413f2f09c1Sdp }
1423f2f09c1Sdp 
1433f2f09c1Sdp /*
1443f2f09c1Sdp  * Quiesce or resume init using /proc.  When stopping init, we can't send
1453f2f09c1Sdp  * SIGTSTP (since init ignores it) or SIGSTOP (since the kernel won't permit
1463f2f09c1Sdp  * it).
1473f2f09c1Sdp  */
1483f2f09c1Sdp static int
1493f2f09c1Sdp direct_init(long command)
1503f2f09c1Sdp {
1513f2f09c1Sdp 	char ctlfile[MAXPATHLEN];
1523f2f09c1Sdp 	pid_t pid;
1533f2f09c1Sdp 	int ctlfd;
1543f2f09c1Sdp 
1553f2f09c1Sdp 	assert(command == PCDSTOP || command == PCRUN);
1563f2f09c1Sdp 	if ((pid = get_initpid()) == -1) {
1573f2f09c1Sdp 		return (-1);
1583f2f09c1Sdp 	}
1593f2f09c1Sdp 
1603f2f09c1Sdp 	(void) snprintf(ctlfile, sizeof (ctlfile), "/proc/%d/ctl", pid);
1613f2f09c1Sdp 	if ((ctlfd = open(ctlfile, O_WRONLY)) == -1)
1623f2f09c1Sdp 		return (-1);
1633f2f09c1Sdp 
1643f2f09c1Sdp 	if (command == PCDSTOP) {
1653f2f09c1Sdp 		if (write(ctlfd, &command, sizeof (long)) == -1) {
1663f2f09c1Sdp 			(void) close(ctlfd);
1673f2f09c1Sdp 			return (-1);
1683f2f09c1Sdp 		}
1693f2f09c1Sdp 	} else {	/* command == PCRUN */
1703f2f09c1Sdp 		long cmds[2];
1713f2f09c1Sdp 		cmds[0] = command;
1723f2f09c1Sdp 		cmds[1] = 0;
1733f2f09c1Sdp 		if (write(ctlfd, cmds, sizeof (cmds)) == -1) {
1743f2f09c1Sdp 			(void) close(ctlfd);
1753f2f09c1Sdp 			return (-1);
1763f2f09c1Sdp 		}
1773f2f09c1Sdp 	}
1783f2f09c1Sdp 	(void) close(ctlfd);
1793f2f09c1Sdp 	return (0);
1803f2f09c1Sdp }
1813f2f09c1Sdp 
1827c478bd9Sstevel@tonic-gate static void
1837c478bd9Sstevel@tonic-gate stop_startd()
1847c478bd9Sstevel@tonic-gate {
1857c478bd9Sstevel@tonic-gate 	scf_handle_t *h;
1867c478bd9Sstevel@tonic-gate 	scf_property_t *prop = NULL;
1877c478bd9Sstevel@tonic-gate 	scf_value_t *val = NULL;
1887c478bd9Sstevel@tonic-gate 	uint64_t uint64;
1897c478bd9Sstevel@tonic-gate 
1903f2f09c1Sdp 	if ((h = scf_handle_create(SCF_VERSION)) == NULL)
1917c478bd9Sstevel@tonic-gate 		return;
1927c478bd9Sstevel@tonic-gate 
1933f2f09c1Sdp 	if ((scf_handle_bind(h) != 0) ||
1943f2f09c1Sdp 	    ((prop = scf_property_create(h)) == NULL) ||
1953f2f09c1Sdp 	    ((val = scf_value_create(h)) == NULL))
1967c478bd9Sstevel@tonic-gate 		goto out;
1977c478bd9Sstevel@tonic-gate 
1983f2f09c1Sdp 	if (scf_handle_decode_fmri(h, FMRI_STARTD_CONTRACT,
1993f2f09c1Sdp 	    NULL, NULL, NULL, NULL, prop, SCF_DECODE_FMRI_EXACT) != 0)
2007c478bd9Sstevel@tonic-gate 		goto out;
2017c478bd9Sstevel@tonic-gate 
2023f2f09c1Sdp 	if (scf_property_is_type(prop, SCF_TYPE_COUNT) != 0 ||
2033f2f09c1Sdp 	    scf_property_get_value(prop, val) != 0 ||
2043f2f09c1Sdp 	    scf_value_get_count(val, &uint64) != 0)
2057c478bd9Sstevel@tonic-gate 		goto out;
2067c478bd9Sstevel@tonic-gate 
2073f2f09c1Sdp 	startdct = (ctid_t)uint64;
2083f2f09c1Sdp 	(void) sigsend(P_CTID, startdct, SIGSTOP);
2097c478bd9Sstevel@tonic-gate 
2107c478bd9Sstevel@tonic-gate out:
2113f2f09c1Sdp 	scf_property_destroy(prop);
2123f2f09c1Sdp 	scf_value_destroy(val);
2137c478bd9Sstevel@tonic-gate 	scf_handle_destroy(h);
2147c478bd9Sstevel@tonic-gate }
2157c478bd9Sstevel@tonic-gate 
2167c478bd9Sstevel@tonic-gate static void
2177c478bd9Sstevel@tonic-gate continue_startd()
2187c478bd9Sstevel@tonic-gate {
2197c478bd9Sstevel@tonic-gate 	if (startdct != -1)
2207c478bd9Sstevel@tonic-gate 		(void) sigsend(P_CTID, startdct, SIGCONT);
2217c478bd9Sstevel@tonic-gate }
2227c478bd9Sstevel@tonic-gate 
2237c478bd9Sstevel@tonic-gate #define	FMRI_RESTARTER_PROP "/:properties/general/restarter"
2247c478bd9Sstevel@tonic-gate #define	FMRI_CONTRACT_PROP "/:properties/restarter/contract"
2257c478bd9Sstevel@tonic-gate 
2267c478bd9Sstevel@tonic-gate static int
2277c478bd9Sstevel@tonic-gate save_ctid(ctid_t ctid)
2287c478bd9Sstevel@tonic-gate {
2297c478bd9Sstevel@tonic-gate 	ctidlist_t *next;
2307c478bd9Sstevel@tonic-gate 
2317c478bd9Sstevel@tonic-gate 	for (next = ctidlist; next != NULL; next = next->next)
2327c478bd9Sstevel@tonic-gate 		if (next->ctid == ctid)
2337c478bd9Sstevel@tonic-gate 			return (-1);
2347c478bd9Sstevel@tonic-gate 
2357c478bd9Sstevel@tonic-gate 	next = (ctidlist_t *)malloc(sizeof (ctidlist_t));
2367c478bd9Sstevel@tonic-gate 	if (next == NULL)
2377c478bd9Sstevel@tonic-gate 		return (-1);
2387c478bd9Sstevel@tonic-gate 
2397c478bd9Sstevel@tonic-gate 	next->ctid = ctid;
2407c478bd9Sstevel@tonic-gate 	next->next = ctidlist;
2417c478bd9Sstevel@tonic-gate 	ctidlist = next;
2427c478bd9Sstevel@tonic-gate 	return (0);
2437c478bd9Sstevel@tonic-gate }
2447c478bd9Sstevel@tonic-gate 
2457c478bd9Sstevel@tonic-gate static void
2467c478bd9Sstevel@tonic-gate stop_delegates()
2477c478bd9Sstevel@tonic-gate {
2487c478bd9Sstevel@tonic-gate 	ctid_t ctid;
2497c478bd9Sstevel@tonic-gate 	scf_handle_t *h;
2507c478bd9Sstevel@tonic-gate 	scf_scope_t *sc = NULL;
2517c478bd9Sstevel@tonic-gate 	scf_service_t *svc = NULL;
2527c478bd9Sstevel@tonic-gate 	scf_instance_t *inst = NULL;
2537c478bd9Sstevel@tonic-gate 	scf_snapshot_t *snap = NULL;
2547c478bd9Sstevel@tonic-gate 	scf_snapshot_t *isnap = NULL;
2557c478bd9Sstevel@tonic-gate 	scf_propertygroup_t *pg = NULL;
2567c478bd9Sstevel@tonic-gate 	scf_property_t *prop = NULL;
2577c478bd9Sstevel@tonic-gate 	scf_value_t *val = NULL;
2587c478bd9Sstevel@tonic-gate 	scf_iter_t *siter = NULL;
2597c478bd9Sstevel@tonic-gate 	scf_iter_t *iiter = NULL;
2607c478bd9Sstevel@tonic-gate 	char *fmri;
2617c478bd9Sstevel@tonic-gate 	ssize_t length;
2627c478bd9Sstevel@tonic-gate 
2637c478bd9Sstevel@tonic-gate 	uint64_t uint64;
2647c478bd9Sstevel@tonic-gate 	ssize_t bytes;
2657c478bd9Sstevel@tonic-gate 
2667c478bd9Sstevel@tonic-gate 	length = scf_limit(SCF_LIMIT_MAX_FMRI_LENGTH);
2677c478bd9Sstevel@tonic-gate 	if (length <= 0)
2687c478bd9Sstevel@tonic-gate 		return;
2697c478bd9Sstevel@tonic-gate 
2707c478bd9Sstevel@tonic-gate 	length++;
2717c478bd9Sstevel@tonic-gate 	fmri = alloca(length * sizeof (char));
2727c478bd9Sstevel@tonic-gate 
2733f2f09c1Sdp 	if ((h = scf_handle_create(SCF_VERSION)) == NULL)
2747c478bd9Sstevel@tonic-gate 		return;
2757c478bd9Sstevel@tonic-gate 
2763f2f09c1Sdp 	if (scf_handle_bind(h) != 0) {
2777c478bd9Sstevel@tonic-gate 		scf_handle_destroy(h);
2787c478bd9Sstevel@tonic-gate 		return;
2797c478bd9Sstevel@tonic-gate 	}
2807c478bd9Sstevel@tonic-gate 
2813f2f09c1Sdp 	if ((sc = scf_scope_create(h)) == NULL ||
2823f2f09c1Sdp 	    (svc = scf_service_create(h)) == NULL ||
2833f2f09c1Sdp 	    (inst = scf_instance_create(h)) == NULL ||
2843f2f09c1Sdp 	    (snap = scf_snapshot_create(h)) == NULL ||
2853f2f09c1Sdp 	    (pg = scf_pg_create(h)) == NULL ||
2863f2f09c1Sdp 	    (prop = scf_property_create(h)) == NULL ||
2873f2f09c1Sdp 	    (val = scf_value_create(h)) == NULL ||
2883f2f09c1Sdp 	    (siter = scf_iter_create(h)) == NULL ||
2893f2f09c1Sdp 	    (iiter = scf_iter_create(h)) == NULL)
2907c478bd9Sstevel@tonic-gate 		goto out;
2917c478bd9Sstevel@tonic-gate 
2923f2f09c1Sdp 	if (scf_handle_get_scope(h, SCF_SCOPE_LOCAL, sc) != 0)
2937c478bd9Sstevel@tonic-gate 		goto out;
2947c478bd9Sstevel@tonic-gate 
2953f2f09c1Sdp 	if (scf_iter_scope_services(siter, sc) != 0)
2967c478bd9Sstevel@tonic-gate 		goto out;
2977c478bd9Sstevel@tonic-gate 
2987c478bd9Sstevel@tonic-gate 	while (scf_iter_next_service(siter, svc) == 1) {
2997c478bd9Sstevel@tonic-gate 
3003f2f09c1Sdp 		if (scf_iter_service_instances(iiter, svc) != 0)
3017c478bd9Sstevel@tonic-gate 			continue;
3027c478bd9Sstevel@tonic-gate 
3037c478bd9Sstevel@tonic-gate 		while (scf_iter_next_instance(iiter, inst) == 1) {
3047c478bd9Sstevel@tonic-gate 
3053f2f09c1Sdp 			if ((scf_instance_get_snapshot(inst, "running",
3063f2f09c1Sdp 			    snap)) != 0)
3073f2f09c1Sdp 				isnap = NULL;
3083f2f09c1Sdp 			else
3093f2f09c1Sdp 				isnap = snap;
3107c478bd9Sstevel@tonic-gate 
3113f2f09c1Sdp 			if (scf_instance_get_pg_composed(inst, isnap,
3123f2f09c1Sdp 			    SCF_PG_GENERAL, pg) != 0)
3137c478bd9Sstevel@tonic-gate 				continue;
3147c478bd9Sstevel@tonic-gate 
3153f2f09c1Sdp 			if (scf_pg_get_property(pg, SCF_PROPERTY_RESTARTER,
3163f2f09c1Sdp 			    prop) != 0 ||
3173f2f09c1Sdp 			    scf_property_get_value(prop, val) != 0)
3187c478bd9Sstevel@tonic-gate 				continue;
3197c478bd9Sstevel@tonic-gate 
3207c478bd9Sstevel@tonic-gate 			bytes = scf_value_get_astring(val, fmri, length);
3217c478bd9Sstevel@tonic-gate 			if (bytes <= 0 || bytes >= length)
3227c478bd9Sstevel@tonic-gate 				continue;
3237c478bd9Sstevel@tonic-gate 
3247c478bd9Sstevel@tonic-gate 			if (strlcat(fmri, FMRI_CONTRACT_PROP, length) >=
3257c478bd9Sstevel@tonic-gate 			    length)
3267c478bd9Sstevel@tonic-gate 				continue;
3277c478bd9Sstevel@tonic-gate 
3283f2f09c1Sdp 			if (scf_handle_decode_fmri(h, fmri, NULL, NULL,
3293f2f09c1Sdp 			    NULL, NULL, prop, SCF_DECODE_FMRI_EXACT) != 0)
3307c478bd9Sstevel@tonic-gate 				continue;
3317c478bd9Sstevel@tonic-gate 
3323f2f09c1Sdp 			if (scf_property_is_type(prop, SCF_TYPE_COUNT) != 0 ||
3333f2f09c1Sdp 			    scf_property_get_value(prop, val) != 0 ||
3343f2f09c1Sdp 			    scf_value_get_count(val, &uint64) != 0)
3357c478bd9Sstevel@tonic-gate 				continue;
3367c478bd9Sstevel@tonic-gate 
3377c478bd9Sstevel@tonic-gate 			ctid = (ctid_t)uint64;
3387c478bd9Sstevel@tonic-gate 			if (save_ctid(ctid) == 0) {
3397c478bd9Sstevel@tonic-gate 				(void) sigsend(P_CTID, ctid, SIGSTOP);
3407c478bd9Sstevel@tonic-gate 			}
3417c478bd9Sstevel@tonic-gate 		}
3427c478bd9Sstevel@tonic-gate 	}
3437c478bd9Sstevel@tonic-gate out:
3443f2f09c1Sdp 	scf_scope_destroy(sc);
3453f2f09c1Sdp 	scf_service_destroy(svc);
3463f2f09c1Sdp 	scf_instance_destroy(inst);
3473f2f09c1Sdp 	scf_snapshot_destroy(snap);
3483f2f09c1Sdp 	scf_pg_destroy(pg);
3493f2f09c1Sdp 	scf_property_destroy(prop);
3503f2f09c1Sdp 	scf_value_destroy(val);
3513f2f09c1Sdp 	scf_iter_destroy(siter);
3523f2f09c1Sdp 	scf_iter_destroy(iiter);
3537c478bd9Sstevel@tonic-gate 
3547c478bd9Sstevel@tonic-gate 	(void) scf_handle_unbind(h);
3557c478bd9Sstevel@tonic-gate 	scf_handle_destroy(h);
3567c478bd9Sstevel@tonic-gate }
3577c478bd9Sstevel@tonic-gate 
3587c478bd9Sstevel@tonic-gate static void
3597c478bd9Sstevel@tonic-gate continue_delegates()
3607c478bd9Sstevel@tonic-gate {
3617c478bd9Sstevel@tonic-gate 	ctidlist_t *next;
3627c478bd9Sstevel@tonic-gate 	for (next = ctidlist; next != NULL; next = next->next)
3637c478bd9Sstevel@tonic-gate 		(void) sigsend(P_CTID, next->ctid, SIGCONT);
3647c478bd9Sstevel@tonic-gate }
3657c478bd9Sstevel@tonic-gate 
3667c478bd9Sstevel@tonic-gate static void
3677c478bd9Sstevel@tonic-gate stop_restarters()
3687c478bd9Sstevel@tonic-gate {
3697c478bd9Sstevel@tonic-gate 	stop_startd();
3707c478bd9Sstevel@tonic-gate 	stop_delegates();
3717c478bd9Sstevel@tonic-gate }
3727c478bd9Sstevel@tonic-gate 
3737c478bd9Sstevel@tonic-gate static void
3747c478bd9Sstevel@tonic-gate continue_restarters()
3757c478bd9Sstevel@tonic-gate {
3767c478bd9Sstevel@tonic-gate 	continue_startd();
3777c478bd9Sstevel@tonic-gate 	continue_delegates();
3787c478bd9Sstevel@tonic-gate }
3797c478bd9Sstevel@tonic-gate 
3807c478bd9Sstevel@tonic-gate /*
3817c478bd9Sstevel@tonic-gate  * Copy an array of strings into buf, separated by spaces.  Returns 0 on
3827c478bd9Sstevel@tonic-gate  * success.
3837c478bd9Sstevel@tonic-gate  */
3847c478bd9Sstevel@tonic-gate static int
3857c478bd9Sstevel@tonic-gate gather_args(char **args, char *buf, size_t buf_sz)
3867c478bd9Sstevel@tonic-gate {
3877c478bd9Sstevel@tonic-gate 	if (strlcpy(buf, *args, buf_sz) >= buf_sz)
3887c478bd9Sstevel@tonic-gate 		return (-1);
3897c478bd9Sstevel@tonic-gate 
3907c478bd9Sstevel@tonic-gate 	for (++args; *args != NULL; ++args) {
3917c478bd9Sstevel@tonic-gate 		if (strlcat(buf, " ", buf_sz) >= buf_sz)
3927c478bd9Sstevel@tonic-gate 			return (-1);
3937c478bd9Sstevel@tonic-gate 		if (strlcat(buf, *args, buf_sz) >= buf_sz)
3947c478bd9Sstevel@tonic-gate 			return (-1);
3957c478bd9Sstevel@tonic-gate 	}
3967c478bd9Sstevel@tonic-gate 
3977c478bd9Sstevel@tonic-gate 	return (0);
3987c478bd9Sstevel@tonic-gate }
3997c478bd9Sstevel@tonic-gate 
40026f665e8Sdstaff /*
40126f665e8Sdstaff  * Halt every zone on the system.  We are committed to doing a shutdown
40226f665e8Sdstaff  * even if something goes wrong here. If something goes wrong, we just
40326f665e8Sdstaff  * continue with the shutdown.  Return non-zero if we need to wait for zones to
40426f665e8Sdstaff  * halt later on.
40526f665e8Sdstaff  */
40626f665e8Sdstaff static int
4073f2f09c1Sdp halt_zones()
40826f665e8Sdstaff {
40926f665e8Sdstaff 	pid_t pid;
41026f665e8Sdstaff 	zoneid_t *zones;
4113f2f09c1Sdp 	size_t nz = 0, old_nz;
41226f665e8Sdstaff 	int i;
41326f665e8Sdstaff 	char zname[ZONENAME_MAX];
41426f665e8Sdstaff 
41526f665e8Sdstaff 	/*
41626f665e8Sdstaff 	 * Get a list of zones. If the number of zones changes in between the
41726f665e8Sdstaff 	 * two zone_list calls, try again.
41826f665e8Sdstaff 	 */
41926f665e8Sdstaff 
42026f665e8Sdstaff 	for (;;) {
42126f665e8Sdstaff 		(void) zone_list(NULL, &nz);
42226f665e8Sdstaff 		if (nz == 1)
42326f665e8Sdstaff 			return (0);
42426f665e8Sdstaff 		old_nz = nz;
42526f665e8Sdstaff 		zones = calloc(sizeof (zoneid_t), nz);
42626f665e8Sdstaff 		if (zones == NULL) {
42726f665e8Sdstaff 			(void) fprintf(stderr,
42826f665e8Sdstaff 			    gettext("%s: Could not halt zones"
4293f2f09c1Sdp 			    " (out of memory).\n"), cmdname);
43026f665e8Sdstaff 			return (0);
43126f665e8Sdstaff 		}
43226f665e8Sdstaff 
43326f665e8Sdstaff 		(void) zone_list(zones, &nz);
43426f665e8Sdstaff 		if (old_nz == nz)
43526f665e8Sdstaff 			break;
43626f665e8Sdstaff 		free(zones);
43726f665e8Sdstaff 	}
43826f665e8Sdstaff 
43926f665e8Sdstaff 	if (nz == 2) {
4403f2f09c1Sdp 		(void) fprintf(stderr, gettext("%s: Halting 1 zone.\n"),
4413f2f09c1Sdp 		    cmdname);
44226f665e8Sdstaff 	} else {
4433f2f09c1Sdp 		(void) fprintf(stderr, gettext("%s: Halting %i zones.\n"),
4443f2f09c1Sdp 		    cmdname, nz - 1);
44526f665e8Sdstaff 	}
44626f665e8Sdstaff 
44726f665e8Sdstaff 	for (i = 0; i < nz; i++) {
44826f665e8Sdstaff 		if (zones[i] == GLOBAL_ZONEID)
44926f665e8Sdstaff 			continue;
45026f665e8Sdstaff 		if (getzonenamebyid(zones[i], zname, sizeof (zname)) < 0) {
45126f665e8Sdstaff 			/*
45226f665e8Sdstaff 			 * getzonenamebyid should only fail if we raced with
45326f665e8Sdstaff 			 * another process trying to shut down the zone.
45426f665e8Sdstaff 			 * We assume this happened and ignore the error.
45526f665e8Sdstaff 			 */
45626f665e8Sdstaff 			if (errno != EINVAL) {
45726f665e8Sdstaff 				(void) fprintf(stderr,
45826f665e8Sdstaff 				    gettext("%s: Unexpected error while "
45926f665e8Sdstaff 				    "looking up zone %ul: %s.\n"),
4603f2f09c1Sdp 				    cmdname, zones[i], strerror(errno));
46126f665e8Sdstaff 			}
46226f665e8Sdstaff 
46326f665e8Sdstaff 			continue;
46426f665e8Sdstaff 		}
46526f665e8Sdstaff 		pid = fork();
46626f665e8Sdstaff 		if (pid < 0) {
46726f665e8Sdstaff 			(void) fprintf(stderr,
46826f665e8Sdstaff 			    gettext("%s: Zone \"%s\" could not be"
46926f665e8Sdstaff 			    " halted (could not fork(): %s).\n"),
4703f2f09c1Sdp 			    cmdname, zname, strerror(errno));
47126f665e8Sdstaff 			continue;
47226f665e8Sdstaff 		}
47326f665e8Sdstaff 		if (pid == 0) {
47426f665e8Sdstaff 			(void) execl(ZONEADM_PROG, ZONEADM_PROG,
47526f665e8Sdstaff 			    "-z", zname, "halt", NULL);
47626f665e8Sdstaff 			(void) fprintf(stderr,
47726f665e8Sdstaff 			    gettext("%s: Zone \"%s\" could not be halted"
47826f665e8Sdstaff 			    " (cannot exec(" ZONEADM_PROG "): %s).\n"),
4793f2f09c1Sdp 			    cmdname, zname, strerror(errno));
48026f665e8Sdstaff 			exit(0);
48126f665e8Sdstaff 		}
48226f665e8Sdstaff 	}
48326f665e8Sdstaff 
48426f665e8Sdstaff 	return (1);
48526f665e8Sdstaff }
48626f665e8Sdstaff 
48726f665e8Sdstaff /*
48826f665e8Sdstaff  * This function tries to wait for all non-global zones to go away.
48926f665e8Sdstaff  * It will timeout if no progress is made for 5 seconds, or a total of
49026f665e8Sdstaff  * 30 seconds elapses.
49126f665e8Sdstaff  */
49226f665e8Sdstaff 
49326f665e8Sdstaff static void
4943f2f09c1Sdp check_zones_haltedness()
49526f665e8Sdstaff {
49626f665e8Sdstaff 	int t = 0, t_prog = 0;
49726f665e8Sdstaff 	size_t nz = 0, last_nz;
49826f665e8Sdstaff 
49926f665e8Sdstaff 	do {
50026f665e8Sdstaff 		last_nz = nz;
50126f665e8Sdstaff 		(void) zone_list(NULL, &nz);
50226f665e8Sdstaff 		if (nz == 1)
50326f665e8Sdstaff 			return;
50426f665e8Sdstaff 
50526f665e8Sdstaff 		(void) sleep(1);
50626f665e8Sdstaff 
50726f665e8Sdstaff 		if (last_nz > nz)
50826f665e8Sdstaff 			t_prog = 0;
50926f665e8Sdstaff 
51026f665e8Sdstaff 		t++;
51126f665e8Sdstaff 		t_prog++;
51226f665e8Sdstaff 
51326f665e8Sdstaff 		if (t == 10) {
51426f665e8Sdstaff 			if (nz == 2) {
51526f665e8Sdstaff 				(void) fprintf(stderr,
51626f665e8Sdstaff 				    gettext("%s: Still waiting for 1 zone to "
51726f665e8Sdstaff 				    "halt. Will wait up to 20 seconds.\n"),
5183f2f09c1Sdp 				    cmdname);
51926f665e8Sdstaff 			} else {
52026f665e8Sdstaff 				(void) fprintf(stderr,
52126f665e8Sdstaff 				    gettext("%s: Still waiting for %i zones "
52226f665e8Sdstaff 				    "to halt. Will wait up to 20 seconds.\n"),
5233f2f09c1Sdp 				    cmdname, nz - 1);
52426f665e8Sdstaff 			}
52526f665e8Sdstaff 		}
52626f665e8Sdstaff 
52726f665e8Sdstaff 	} while ((t < 30) && (t_prog < 5));
52826f665e8Sdstaff }
52926f665e8Sdstaff 
53019397407SSherry Moore 
53119397407SSherry Moore /*
53219397407SSherry Moore  * Validate that this is a root disk or dataset
53319397407SSherry Moore  * Returns 0 if it is a root disk or dataset;
53419397407SSherry Moore  * returns 1 if it is a disk argument or dataset, but not valid or not root;
53519397407SSherry Moore  * returns -1 if it is not a valid argument or a disk argument.
53619397407SSherry Moore  */
53719397407SSherry Moore static int
53819397407SSherry Moore validate_disk(char *arg, char *mountpoint)
53919397407SSherry Moore {
54019397407SSherry Moore 	static char root_dev_path[] = "/dev/dsk";
54119397407SSherry Moore 	char kernpath[MAXPATHLEN];
54219397407SSherry Moore 	struct stat buf;
54319397407SSherry Moore 	struct stat64 statbuf;
54419397407SSherry Moore 	int rc = 0;
54519397407SSherry Moore 
54619397407SSherry Moore 	if (strlen(arg) > MAXPATHLEN) {
54719397407SSherry Moore 		(void) fprintf(stderr,
54819397407SSherry Moore 		    gettext("%s: argument is too long\n"), cmdname);
54919397407SSherry Moore 		return (-1);
55019397407SSherry Moore 	}
55119397407SSherry Moore 
55219397407SSherry Moore 	bcopy(FASTBOOT_MOUNTPOINT, mountpoint, sizeof (FASTBOOT_MOUNTPOINT));
55319397407SSherry Moore 
55419397407SSherry Moore 	/*
55519397407SSherry Moore 	 * Do a force umount just in case some other filesystem has
55619397407SSherry Moore 	 * been mounted there.
55719397407SSherry Moore 	 */
55819397407SSherry Moore 	(void) umount2(mountpoint, MS_FORCE);
55919397407SSherry Moore 
56019397407SSherry Moore 	/* Create the directory if it doesn't already exist */
56119397407SSherry Moore 	if (lstat(mountpoint, &buf) != 0) {
56219397407SSherry Moore 		if (mkdirp(mountpoint, 0755) != 0) {
56319397407SSherry Moore 			(void) fprintf(stderr,
56419397407SSherry Moore 			    gettext("failed to create mountpoint %s\n"),
56519397407SSherry Moore 			    mountpoint);
56619397407SSherry Moore 			return (-1);
56719397407SSherry Moore 		}
56819397407SSherry Moore 	}
56919397407SSherry Moore 
57019397407SSherry Moore 	if (strncmp(arg, root_dev_path, strlen(root_dev_path)) == 0) {
57119397407SSherry Moore 		/* ufs root disk argument */
57219397407SSherry Moore 		rc = validate_ufs_disk(arg, mountpoint);
57319397407SSherry Moore 	} else {
57419397407SSherry Moore 		/* zfs root pool argument */
57519397407SSherry Moore 		rc = validate_zfs_pool(arg, mountpoint);
57619397407SSherry Moore 	}
57719397407SSherry Moore 
57819397407SSherry Moore 	if (rc != 0)
57919397407SSherry Moore 		return (rc);
58019397407SSherry Moore 
58119397407SSherry Moore 	(void) snprintf(kernpath, MAXPATHLEN, "%s/platform/i86pc/kernel/unix",
58219397407SSherry Moore 	    mountpoint);
58319397407SSherry Moore 
58419397407SSherry Moore 	if (stat64(kernpath, &statbuf) != 0) {
58519397407SSherry Moore 		(void) fprintf(stderr,
58619397407SSherry Moore 		    gettext("%s: %s is not a root disk or dataset\n"),
58719397407SSherry Moore 		    cmdname, arg);
58819397407SSherry Moore 		return (1);
58919397407SSherry Moore 	}
59019397407SSherry Moore 
59119397407SSherry Moore 	return (0);
59219397407SSherry Moore }
59319397407SSherry Moore 
59419397407SSherry Moore 
59519397407SSherry Moore static int
59619397407SSherry Moore validate_ufs_disk(char *arg, char *mountpoint)
59719397407SSherry Moore {
59819397407SSherry Moore 	char mntopts[MNT_LINE_MAX] = { '\0' };
59919397407SSherry Moore 
60019397407SSherry Moore 	/* perform the mount */
60119397407SSherry Moore 	if (mount(arg, mountpoint, MS_DATA|MS_OPTIONSTR,
60219397407SSherry Moore 	    MNTTYPE_UFS, NULL, 0, mntopts, sizeof (mntopts)) != 0) {
60319397407SSherry Moore 		perror(cmdname);
60419397407SSherry Moore 		(void) fprintf(stderr,
60519397407SSherry Moore 		    gettext("%s: failed to mount %s\n"), cmdname, arg);
60619397407SSherry Moore 		return (-1);
60719397407SSherry Moore 	}
60819397407SSherry Moore 
60919397407SSherry Moore 	return (0);
61019397407SSherry Moore }
61119397407SSherry Moore 
61219397407SSherry Moore static int
61319397407SSherry Moore validate_zfs_pool(char *arg, char *mountpoint)
61419397407SSherry Moore {
61519397407SSherry Moore 	zfs_handle_t *zhp = NULL;
61619397407SSherry Moore 	char mntopts[MNT_LINE_MAX] = { '\0' };
61719397407SSherry Moore 	int rc = 0;
61819397407SSherry Moore 
61919397407SSherry Moore 	if ((g_zfs = libzfs_init()) == NULL) {
62019397407SSherry Moore 		(void) fprintf(stderr, gettext("internal error: failed to "
62119397407SSherry Moore 		    "initialize ZFS library\n"));
62219397407SSherry Moore 		return (-1);
62319397407SSherry Moore 	}
62419397407SSherry Moore 
62519397407SSherry Moore 	/* Try to open the dataset */
62619397407SSherry Moore 	if ((zhp = zfs_open(g_zfs, arg,
62719397407SSherry Moore 	    ZFS_TYPE_FILESYSTEM | ZFS_TYPE_DATASET)) == NULL)
62819397407SSherry Moore 		return (-1);
62919397407SSherry Moore 
63019397407SSherry Moore 	/* perform the mount */
63119397407SSherry Moore 	if (mount(zfs_get_name(zhp), mountpoint, MS_DATA|MS_OPTIONSTR,
63219397407SSherry Moore 	    MNTTYPE_ZFS, NULL, 0, mntopts, sizeof (mntopts)) != 0) {
63319397407SSherry Moore 		perror(cmdname);
63419397407SSherry Moore 		(void) fprintf(stderr,
63519397407SSherry Moore 		    gettext("%s: failed to mount %s\n"), cmdname, arg);
63619397407SSherry Moore 		rc = -1;
63719397407SSherry Moore 	}
63819397407SSherry Moore 
63919397407SSherry Moore validate_zfs_err_out:
64019397407SSherry Moore 	if (zhp != NULL)
64119397407SSherry Moore 		zfs_close(zhp);
64219397407SSherry Moore 
64319397407SSherry Moore 	libzfs_fini(g_zfs);
64419397407SSherry Moore 	return (rc);
64519397407SSherry Moore }
64619397407SSherry Moore 
64719397407SSherry Moore /*
64819397407SSherry Moore  * Return 0 if not zfs, or is zfs and have successfully constructed the
64919397407SSherry Moore  * boot argument; returns non-zero otherwise.
65019397407SSherry Moore  * At successful completion fpth contains pointer where mount point ends.
65119397407SSherry Moore  * NOTE: arg is supposed to be the resolved path
65219397407SSherry Moore  */
65319397407SSherry Moore static int
65419397407SSherry Moore get_zfs_bootfs_arg(const char *arg, const char ** fpth, int *is_zfs,
65519397407SSherry Moore 		char *bootfs_arg)
65619397407SSherry Moore {
65719397407SSherry Moore 	zfs_handle_t *zhp = NULL;
65819397407SSherry Moore 	zpool_handle_t *zpoolp = NULL;
65919397407SSherry Moore 	FILE *mtabp = NULL;
66019397407SSherry Moore 	struct mnttab mnt;
66119397407SSherry Moore 	char *poolname = NULL;
66219397407SSherry Moore 	char physpath[MAXNAMELEN];
66319397407SSherry Moore 	char mntsp[ZPOOL_MAXNAMELEN];
66419397407SSherry Moore 	char bootfs[ZPOOL_MAXNAMELEN];
66519397407SSherry Moore 	int rc = 0;
66619397407SSherry Moore 	size_t mntlen = 0;
66719397407SSherry Moore 	size_t msz;
66819397407SSherry Moore 
66919397407SSherry Moore 	*fpth = arg;
67019397407SSherry Moore 	*is_zfs = 0;
67119397407SSherry Moore 
67219397407SSherry Moore 	bzero(physpath, sizeof (physpath));
67319397407SSherry Moore 	bzero(bootfs, sizeof (bootfs));
67419397407SSherry Moore 
67519397407SSherry Moore 	if ((mtabp = fopen(MNTTAB, "r")) == NULL) {
67619397407SSherry Moore 		return (-1);
67719397407SSherry Moore 	}
67819397407SSherry Moore 
67919397407SSherry Moore 	while (getmntent(mtabp, &mnt) == 0) {
68019397407SSherry Moore 		if (strstr(arg, mnt.mnt_mountp) == arg &&
68119397407SSherry Moore 		    (msz = strlen(mnt.mnt_mountp)) > mntlen) {
68219397407SSherry Moore 			mntlen = msz;
68319397407SSherry Moore 			*is_zfs = strcmp(MNTTYPE_ZFS, mnt.mnt_fstype) == 0;
68419397407SSherry Moore 			(void) strlcpy(mntsp, mnt.mnt_special, sizeof (mntsp));
68519397407SSherry Moore 		}
68619397407SSherry Moore 	}
68719397407SSherry Moore 
68819397407SSherry Moore 	(void) fclose(mtabp);
68919397407SSherry Moore 
69019397407SSherry Moore 	if (mntlen > 1)
69119397407SSherry Moore 		*fpth += mntlen;
69219397407SSherry Moore 
69319397407SSherry Moore 	if (!*is_zfs)
69419397407SSherry Moore 		return (0);
69519397407SSherry Moore 
69619397407SSherry Moore 	if ((g_zfs = libzfs_init()) == NULL)
69719397407SSherry Moore 		return (-1);
69819397407SSherry Moore 
69919397407SSherry Moore 	/* Try to open the dataset */
70019397407SSherry Moore 	if ((zhp = zfs_open(g_zfs, mntsp,
70119397407SSherry Moore 	    ZFS_TYPE_FILESYSTEM | ZFS_TYPE_DATASET)) == NULL) {
70219397407SSherry Moore 		(void) fprintf(stderr, gettext("cannot open %s\n"), mntsp);
70319397407SSherry Moore 		rc = -1;
70419397407SSherry Moore 		goto validate_zfs_err_out;
70519397407SSherry Moore 	}
70619397407SSherry Moore 
70719397407SSherry Moore 	(void) strlcpy(bootfs, mntsp, sizeof (bootfs));
70819397407SSherry Moore 
70919397407SSherry Moore 	if ((poolname = strtok(mntsp, "/")) == NULL) {
71019397407SSherry Moore 		rc = -1;
71119397407SSherry Moore 		goto validate_zfs_err_out;
71219397407SSherry Moore 	}
71319397407SSherry Moore 
71419397407SSherry Moore 	if ((zpoolp = zpool_open(g_zfs, poolname)) == NULL) {
71519397407SSherry Moore 		(void) fprintf(stderr, gettext("cannot open %s\n"), poolname);
71619397407SSherry Moore 		rc = -1;
71719397407SSherry Moore 		goto validate_zfs_err_out;
71819397407SSherry Moore 	}
71919397407SSherry Moore 
72019397407SSherry Moore 	if (zpool_get_physpath(zpoolp, physpath) != 0) {
72119397407SSherry Moore 		(void) fprintf(stderr, gettext("cannot find phys_path\n"));
72219397407SSherry Moore 		rc = -1;
72319397407SSherry Moore 		goto validate_zfs_err_out;
72419397407SSherry Moore 	}
72519397407SSherry Moore 
72619397407SSherry Moore 	if (zpool_set_prop(zpoolp, "bootfs", bootfs) != 0) {
72719397407SSherry Moore 		(void) fprintf(stderr, gettext("cannot set bootfs to %s\n"),
72819397407SSherry Moore 		    bootfs);
72919397407SSherry Moore 		rc = -1;
73019397407SSherry Moore 		goto validate_zfs_err_out;
73119397407SSherry Moore 	}
73219397407SSherry Moore 
73319397407SSherry Moore 	(void) snprintf(bootfs_arg, BOOTARGS_MAX,
73419397407SSherry Moore 	    "-B zfs-bootfs=%s,bootpath=\"%s\"", bootfs, physpath);
73519397407SSherry Moore 
73619397407SSherry Moore validate_zfs_err_out:
73719397407SSherry Moore 	if (zhp != NULL)
73819397407SSherry Moore 		zfs_close(zhp);
73919397407SSherry Moore 
74019397407SSherry Moore 	if (zpoolp != NULL)
74119397407SSherry Moore 		zpool_close(zpoolp);
74219397407SSherry Moore 
74319397407SSherry Moore 	libzfs_fini(g_zfs);
74419397407SSherry Moore 	return (rc);
74519397407SSherry Moore }
74619397407SSherry Moore 
74719397407SSherry Moore /*
74819397407SSherry Moore  * Validate that the file exists, and is an ELF file.
74919397407SSherry Moore  * Returns 0 on success, -1 on failure.
75019397407SSherry Moore  */
75119397407SSherry Moore static int
75219397407SSherry Moore validate_unix(char *arg, int *mplen, int *is_zfs, char *bootfs_arg,
75319397407SSherry Moore     int *failsafe)
75419397407SSherry Moore {
75519397407SSherry Moore 	const char *location;
75619397407SSherry Moore 	int class, format;
75719397407SSherry Moore 	unsigned char ident[EI_NIDENT];
75819397407SSherry Moore 	char physpath[MAXPATHLEN];
75919397407SSherry Moore 	int elffd = -1;
76019397407SSherry Moore 	size_t	sz;
76119397407SSherry Moore 
76219397407SSherry Moore 	if ((sz = resolvepath(arg, physpath, sizeof (physpath) - 1)) ==
76319397407SSherry Moore 	    (size_t)-1) {
76419397407SSherry Moore 		(void) fprintf(stderr,
76519397407SSherry Moore 		    gettext("cannot resolve path for %s: %s\n"),
76619397407SSherry Moore 		    arg, strerror(errno));
76719397407SSherry Moore 		return (-1);
76819397407SSherry Moore 	}
76919397407SSherry Moore 	(void) strlcpy(arg, physpath, sz + 1);
77019397407SSherry Moore 
77119397407SSherry Moore 	if (strlen(arg) > MAXPATHLEN) {
77219397407SSherry Moore 		(void) fprintf(stderr,
77319397407SSherry Moore 		    gettext("%s: new kernel name is too long\n"), cmdname);
77419397407SSherry Moore 		return (-1);
77519397407SSherry Moore 	}
77619397407SSherry Moore 
77719397407SSherry Moore 	if (strncmp(basename(arg), "unix", 4) != 0) {
77819397407SSherry Moore 		(void) fprintf(stderr,
77919397407SSherry Moore 		    gettext("%s: %s: kernel name must be unix\n"),
78019397407SSherry Moore 		    cmdname, arg);
78119397407SSherry Moore 		return (-1);
78219397407SSherry Moore 	}
78319397407SSherry Moore 
78419397407SSherry Moore 	if (get_zfs_bootfs_arg(arg, &location, is_zfs, bootfs_arg) != 0)
78519397407SSherry Moore 		goto err_out;
78619397407SSherry Moore 
78719397407SSherry Moore 	*mplen = location - arg;
78819397407SSherry Moore 
78919397407SSherry Moore 	if ((strstr(location, "/boot/platform")) == location)
79019397407SSherry Moore 		*failsafe = 1;
79119397407SSherry Moore 	else if ((strstr(location, "/platform")) == location)
79219397407SSherry Moore 		*failsafe = 0;
79319397407SSherry Moore 	else	{
79419397407SSherry Moore 		(void) fprintf(stderr,
79519397407SSherry Moore 		    gettext("%s: %s: no /boot/platform or /platform in"
79619397407SSherry Moore 		    " file name\n"), cmdname, arg);
79719397407SSherry Moore 			goto err_out;
79819397407SSherry Moore 	}
79919397407SSherry Moore 
80019397407SSherry Moore 	if ((elffd = open64(arg, O_RDONLY)) < 0 ||
80119397407SSherry Moore 	    (pread64(elffd, ident, EI_NIDENT, 0) != EI_NIDENT)) {
80219397407SSherry Moore 		(void) fprintf(stderr, "%s: %s: %s\n",
80319397407SSherry Moore 		    cmdname, arg, strerror(errno));
80419397407SSherry Moore 		goto err_out;
80519397407SSherry Moore 	}
80619397407SSherry Moore 
80719397407SSherry Moore 	class = ident[EI_CLASS];
80819397407SSherry Moore 
80919397407SSherry Moore 	if ((class != ELFCLASS32 && class != ELFCLASS64) ||
81019397407SSherry Moore 	    ident[EI_MAG0] != ELFMAG0 || ident[EI_MAG1] != ELFMAG1 ||
81119397407SSherry Moore 	    ident[EI_MAG2] != ELFMAG2 || ident[EI_MAG3] != ELFMAG3) {
81219397407SSherry Moore 		(void) fprintf(stderr,
81319397407SSherry Moore 		    gettext("%s: %s: not a valid ELF file\n"),
81419397407SSherry Moore 		    cmdname, arg);
81519397407SSherry Moore 		goto err_out;
81619397407SSherry Moore 	}
81719397407SSherry Moore 
81819397407SSherry Moore 	format = ident[EI_DATA];
81919397407SSherry Moore 
82019397407SSherry Moore 	if (format != CUR_ELFDATA) {
82119397407SSherry Moore 		(void) fprintf(stderr, gettext("%s: %s: invalid data format\n"),
82219397407SSherry Moore 		    cmdname, arg);
82319397407SSherry Moore 		goto err_out;
82419397407SSherry Moore 	}
82519397407SSherry Moore 
82619397407SSherry Moore 	return (0);
82719397407SSherry Moore 
82819397407SSherry Moore err_out:
82919397407SSherry Moore 	if (elffd >= 0) {
83019397407SSherry Moore 		(void) close(elffd);
83119397407SSherry Moore 		elffd = -1;
83219397407SSherry Moore 	}
83319397407SSherry Moore 	return (-1);
83419397407SSherry Moore }
83519397407SSherry Moore 
83619397407SSherry Moore #ifndef	__i386
83719397407SSherry Moore /* ARGSUSED */
83819397407SSherry Moore #endif	/* __i386 */
83919397407SSherry Moore static int
84019397407SSherry Moore is_fastboot_default(uid_t uid)
84119397407SSherry Moore {
84219397407SSherry Moore #if defined(__i386)
84319397407SSherry Moore 	int		ret;
84419397407SSherry Moore 	struct stat	st;
84519397407SSherry Moore 	static const char	fastboot_default[] = "/etc/fastreboot";
84619397407SSherry Moore 
84719397407SSherry Moore 	ret = (lstat(fastboot_default, &st) == 0 &&
84819397407SSherry Moore 	    S_ISREG(st.st_mode) &&
84919397407SSherry Moore 	    (st.st_mode & S_IRUSR) != 0 &&
85019397407SSherry Moore 	    uid == st.st_uid);
85119397407SSherry Moore 
85219397407SSherry Moore 	return (ret);
85319397407SSherry Moore #else
85419397407SSherry Moore 	return (0);
85519397407SSherry Moore #endif	/* __i386 */
85619397407SSherry Moore }
85719397407SSherry Moore 
8584e1f1c13SKonstantin Ananyev static int
8594e1f1c13SKonstantin Ananyev halt_exec(const char *path, ...)
8604e1f1c13SKonstantin Ananyev {
8614e1f1c13SKonstantin Ananyev 	pid_t		pid;
8624e1f1c13SKonstantin Ananyev 	int		i;
8634e1f1c13SKonstantin Ananyev 	int		st;
8644e1f1c13SKonstantin Ananyev 	const char	*arg;
8654e1f1c13SKonstantin Ananyev 	va_list	vp;
8664e1f1c13SKonstantin Ananyev 	const char	*argv[256];
8674e1f1c13SKonstantin Ananyev 
8684e1f1c13SKonstantin Ananyev 	if ((pid = fork()) == -1) {
8694e1f1c13SKonstantin Ananyev 		return (errno);
8704e1f1c13SKonstantin Ananyev 	} else if (pid == 0) {
8714e1f1c13SKonstantin Ananyev 		(void) fclose(stdout);
8724e1f1c13SKonstantin Ananyev 		(void) fclose(stderr);
8734e1f1c13SKonstantin Ananyev 
8744e1f1c13SKonstantin Ananyev 		argv[0] = path;
8754e1f1c13SKonstantin Ananyev 		i = 1;
8764e1f1c13SKonstantin Ananyev 
8774e1f1c13SKonstantin Ananyev 		va_start(vp, path);
8784e1f1c13SKonstantin Ananyev 
8794e1f1c13SKonstantin Ananyev 		do {
8804e1f1c13SKonstantin Ananyev 			arg = va_arg(vp, const char *);
8814e1f1c13SKonstantin Ananyev 			argv[i] = arg;
8824e1f1c13SKonstantin Ananyev 		} while (arg != NULL &&
8834e1f1c13SKonstantin Ananyev 		    ++i != sizeof (argv) / sizeof (argv[0]));
8844e1f1c13SKonstantin Ananyev 
8854e1f1c13SKonstantin Ananyev 		va_end(vp);
8864e1f1c13SKonstantin Ananyev 
8874e1f1c13SKonstantin Ananyev 		(void) execve(path, (char * const *)argv, NULL);
8884e1f1c13SKonstantin Ananyev 		(void) fprintf(stderr, gettext("cannot execute %s: %s\n"),
8894e1f1c13SKonstantin Ananyev 		    path, strerror(errno));
8904e1f1c13SKonstantin Ananyev 		exit(-1);
8914e1f1c13SKonstantin Ananyev 	} else {
8924e1f1c13SKonstantin Ananyev 		if (waitpid(pid, &st, 0) == pid &&
8934e1f1c13SKonstantin Ananyev 		    !WIFSIGNALED(st) && WIFEXITED(st))
8944e1f1c13SKonstantin Ananyev 			st = WEXITSTATUS(st);
8954e1f1c13SKonstantin Ananyev 		else
8964e1f1c13SKonstantin Ananyev 			st = -1;
8974e1f1c13SKonstantin Ananyev 	}
8984e1f1c13SKonstantin Ananyev 	return (st);
8994e1f1c13SKonstantin Ananyev }
9004e1f1c13SKonstantin Ananyev 
9014e1f1c13SKonstantin Ananyev /*
9024e1f1c13SKonstantin Ananyev  * Invokes lumount for bename.
9034e1f1c13SKonstantin Ananyev  * At successfull completion returns zero and copies contents of bename
9044e1f1c13SKonstantin Ananyev  * into mountpoint[]
9054e1f1c13SKonstantin Ananyev  */
90619397407SSherry Moore static int
90719397407SSherry Moore fastboot_bename(const char *bename, char *mountpoint, size_t mpsz)
90819397407SSherry Moore {
90919397407SSherry Moore 	int rc;
91019397407SSherry Moore 
9114e1f1c13SKonstantin Ananyev 	(void) halt_exec(LUUMOUNT_PROG, "-n", bename, NULL);
91219397407SSherry Moore 
9134e1f1c13SKonstantin Ananyev 	if ((rc = halt_exec(LUMOUNT_PROG, "-n", bename, FASTBOOT_MOUNTPOINT,
9144e1f1c13SKonstantin Ananyev 	    NULL)) != 0)
91519397407SSherry Moore 		(void) fprintf(stderr, gettext("%s: cannot mount BE %s\n"),
91619397407SSherry Moore 		    cmdname, bename);
91719397407SSherry Moore 	else
91819397407SSherry Moore 		(void) strlcpy(mountpoint, FASTBOOT_MOUNTPOINT, mpsz);
91919397407SSherry Moore 
92019397407SSherry Moore 	return (rc);
92119397407SSherry Moore }
92219397407SSherry Moore 
92319397407SSherry Moore /*
92419397407SSherry Moore  * Returns 0 on successful parsing of the arguments;
92519397407SSherry Moore  * retuens non-zero on failure.
92619397407SSherry Moore  */
92719397407SSherry Moore static int
92819397407SSherry Moore parse_fastboot_args(char *bootargs_buf, int *is_dryrun, const char *bename,
92919397407SSherry Moore     int *failsafe)
93019397407SSherry Moore {
93119397407SSherry Moore 	char mountpoint[MAXPATHLEN];
93219397407SSherry Moore 	char bootargs_saved[BOOTARGS_MAX];
93319397407SSherry Moore 	char bootargs_scratch[BOOTARGS_MAX];
93419397407SSherry Moore 	char bootfs_arg[BOOTARGS_MAX];
93519397407SSherry Moore 	char unixfile[BOOTARGS_MAX];
93619397407SSherry Moore 	char *head, *newarg;
93719397407SSherry Moore 	int buflen;		/* length of the bootargs_buf */
93819397407SSherry Moore 	int mplen;		/* length of the mount point */
93919397407SSherry Moore 	int rootlen = 0;	/* length of the root argument */
94019397407SSherry Moore 	int unixlen = 0;	/* length of the unix argument */
94119397407SSherry Moore 	int off = 0;		/* offset into the new boot argument */
94219397407SSherry Moore 	int is_zfs = 0;
94319397407SSherry Moore 	int rc = 0;
94419397407SSherry Moore 
94519397407SSherry Moore 	bzero(mountpoint, sizeof (mountpoint));
94619397407SSherry Moore 
94719397407SSherry Moore 	/*
94819397407SSherry Moore 	 * If argc is not 0, buflen is length of the argument being passed in;
94919397407SSherry Moore 	 * else it is 0 as bootargs_buf has been initialized to all 0's.
95019397407SSherry Moore 	 */
95119397407SSherry Moore 	buflen = strlen(bootargs_buf);
95219397407SSherry Moore 
95319397407SSherry Moore 	/* Save a copy of the original argument */
95419397407SSherry Moore 	bcopy(bootargs_buf, bootargs_saved, buflen);
95519397407SSherry Moore 	bzero(&bootargs_saved[buflen], sizeof (bootargs_saved) - buflen);
95619397407SSherry Moore 
95719397407SSherry Moore 	/* Save another copy to be used by strtok */
95819397407SSherry Moore 	bcopy(bootargs_buf, bootargs_scratch, buflen);
95919397407SSherry Moore 	bzero(&bootargs_scratch[buflen], sizeof (bootargs_scratch) - buflen);
96019397407SSherry Moore 	head = &bootargs_scratch[0];
96119397407SSherry Moore 
96219397407SSherry Moore 	/* Zero out the boot argument buffer as we will reconstruct it */
96319397407SSherry Moore 	bzero(bootargs_buf, BOOTARGS_MAX);
96419397407SSherry Moore 	bzero(bootfs_arg, BOOTARGS_MAX);
96519397407SSherry Moore 	bzero(unixfile, sizeof (unixfile));
96619397407SSherry Moore 
96719397407SSherry Moore 	/* Get the first argument */
96819397407SSherry Moore 	newarg = strtok(bootargs_scratch, " ");
96919397407SSherry Moore 
97019397407SSherry Moore 	/*
97119397407SSherry Moore 	 * If this is a dry run request, verify that the drivers can handle
97219397407SSherry Moore 	 * fast reboot.
97319397407SSherry Moore 	 */
97419397407SSherry Moore 	if (newarg && strncasecmp(newarg, "dryrun", strlen("dryrun")) == 0) {
97519397407SSherry Moore 		*is_dryrun = 1;
97619397407SSherry Moore 		(void) system("/usr/sbin/devfsadm");
97719397407SSherry Moore 	}
97819397407SSherry Moore 
97919397407SSherry Moore 	/*
98019397407SSherry Moore 	 * Always perform a dry run to identify all the drivers that
98119397407SSherry Moore 	 * need to implement devo_reset().
98219397407SSherry Moore 	 */
98319397407SSherry Moore 	if (uadmin(A_SHUTDOWN, AD_FASTREBOOT_DRYRUN,
98419397407SSherry Moore 	    (uintptr_t)bootargs_saved) != 0) {
98519397407SSherry Moore 		(void) fprintf(stderr, gettext("%s: not all drivers "
98619397407SSherry Moore 		    "have implemented quiesce(9E)\n"), cmdname);
98719397407SSherry Moore 	} else if (*is_dryrun) {
98819397407SSherry Moore 		(void) fprintf(stderr, gettext("%s: all drivers have "
98919397407SSherry Moore 		    "implemented quiesce(9E)\n"), cmdname);
99019397407SSherry Moore 	}
99119397407SSherry Moore 
99219397407SSherry Moore 	/*
99319397407SSherry Moore 	 * Return if it is a true dry run.
99419397407SSherry Moore 	 */
99519397407SSherry Moore 	if (*is_dryrun)
99619397407SSherry Moore 		return (rc);
99719397407SSherry Moore 
99819397407SSherry Moore 	if (bename && (rc = fastboot_bename(bename, mountpoint,
99919397407SSherry Moore 	    sizeof (mountpoint))) != 0)
100019397407SSherry Moore 		return (rc);
100119397407SSherry Moore 
100219397407SSherry Moore 	/*
100319397407SSherry Moore 	 * If BE is not specified, look for disk argument to construct
100419397407SSherry Moore 	 * mountpoint; if BE has been specified, mountpoint has already been
100519397407SSherry Moore 	 * constructed.
100619397407SSherry Moore 	 */
100719397407SSherry Moore 	if (newarg && newarg[0] != '-' && !bename) {
100819397407SSherry Moore 		int tmprc;
100919397407SSherry Moore 
101019397407SSherry Moore 		if ((tmprc = validate_disk(newarg, mountpoint)) == 0) {
101119397407SSherry Moore 			/*
101219397407SSherry Moore 			 * The first argument is a valid root argument.
101319397407SSherry Moore 			 * Get the next argument.
101419397407SSherry Moore 			 */
101519397407SSherry Moore 			newarg = strtok(NULL, " ");
101619397407SSherry Moore 			rootlen = (newarg) ? (newarg - head) : buflen;
101719397407SSherry Moore 			(void) strlcpy(fastboot_mounted, mountpoint,
101819397407SSherry Moore 			    sizeof (fastboot_mounted));
101919397407SSherry Moore 
102019397407SSherry Moore 		} else if (tmprc == -1) {
102119397407SSherry Moore 			/*
102219397407SSherry Moore 			 * Not a disk argument.  Use / as default root.
102319397407SSherry Moore 			 */
102419397407SSherry Moore 			bcopy("/", mountpoint, 1);
102519397407SSherry Moore 			bzero(&mountpoint[1], sizeof (mountpoint) - 1);
102619397407SSherry Moore 		} else {
102719397407SSherry Moore 			/*
102819397407SSherry Moore 			 * Disk argument, but not valid or not root.
102919397407SSherry Moore 			 * Return failure.
103019397407SSherry Moore 			 */
103119397407SSherry Moore 			return (EINVAL);
103219397407SSherry Moore 		}
103319397407SSherry Moore 	}
103419397407SSherry Moore 
103519397407SSherry Moore 	/*
103619397407SSherry Moore 	 * Make mountpoint the first part of unixfile.
103719397407SSherry Moore 	 * If there is not disk argument, and BE has not been specified,
103819397407SSherry Moore 	 * mountpoint could be empty.
103919397407SSherry Moore 	 */
104019397407SSherry Moore 	mplen = strlen(mountpoint);
104119397407SSherry Moore 	bcopy(mountpoint, unixfile, mplen);
104219397407SSherry Moore 
104319397407SSherry Moore 	/*
104419397407SSherry Moore 	 * Look for unix argument
104519397407SSherry Moore 	 */
104619397407SSherry Moore 	if (newarg && newarg[0] != '-') {
104719397407SSherry Moore 		bcopy(newarg, &unixfile[mplen], strlen(newarg));
104819397407SSherry Moore 		newarg = strtok(NULL, " ");
104919397407SSherry Moore 		rootlen = (newarg) ? (newarg - head) : buflen;
105019397407SSherry Moore 	} else if (mplen != 0) {
105119397407SSherry Moore 		/*
105219397407SSherry Moore 		 * No unix argument, but mountpoint is not empty, use
105319397407SSherry Moore 		 * /platform/i86pc/$ISADIR/kernel/unix as default.
105419397407SSherry Moore 		 */
105519397407SSherry Moore 		char isa[20];
105619397407SSherry Moore 
105719397407SSherry Moore 		if (sysinfo(SI_ARCHITECTURE_64, isa, sizeof (isa)) != -1)
105819397407SSherry Moore 			(void) snprintf(&unixfile[mplen],
105919397407SSherry Moore 			    sizeof (unixfile) - mplen,
106019397407SSherry Moore 			    "/platform/i86pc/kernel/%s/unix", isa);
106119397407SSherry Moore 		else if (sysinfo(SI_ARCHITECTURE_32, isa, sizeof (isa)) != -1) {
106219397407SSherry Moore 			(void) snprintf(&unixfile[mplen],
106319397407SSherry Moore 			    sizeof (unixfile) - mplen,
106419397407SSherry Moore 			    "/platform/i86pc/kernel/unix");
106519397407SSherry Moore 		} else {
106619397407SSherry Moore 			(void) fprintf(stderr,
106719397407SSherry Moore 			    gettext("%s: unknown architecture"), cmdname);
106819397407SSherry Moore 			return (EINVAL);
106919397407SSherry Moore 		}
107019397407SSherry Moore 	}
107119397407SSherry Moore 
107219397407SSherry Moore 	/*
107319397407SSherry Moore 	 * We now have the complete unix argument.  Verify that it exists and
107419397407SSherry Moore 	 * is an ELF file.  Split the argument up into mountpoint and unix
107519397407SSherry Moore 	 * portions again.  This is necessary to handle cases where mountpoint
107619397407SSherry Moore 	 * is specified on the command line as part of the unix argument,
107719397407SSherry Moore 	 * such as this:
107819397407SSherry Moore 	 *	# reboot -f /.alt/platform/i86pc/kernel/amd64/unix
107919397407SSherry Moore 	 */
108019397407SSherry Moore 	unixlen = strlen(unixfile);
108119397407SSherry Moore 	if (unixlen > 0) {
108219397407SSherry Moore 		if (validate_unix(unixfile, &mplen, &is_zfs,
108319397407SSherry Moore 		    bootfs_arg, failsafe) != 0) {
108419397407SSherry Moore 			/* Not a valid unix file */
108519397407SSherry Moore 			return (EINVAL);
108619397407SSherry Moore 		} else {
1087*6bc8bc6aSSherry Moore 			int space = 0;
108819397407SSherry Moore 			/*
108919397407SSherry Moore 			 * Construct boot argument.
109019397407SSherry Moore 			 */
109119397407SSherry Moore 			unixlen = strlen(unixfile);
1092*6bc8bc6aSSherry Moore 
1093*6bc8bc6aSSherry Moore 			/*
1094*6bc8bc6aSSherry Moore 			 * mdep cannot start with space because bootadm
1095*6bc8bc6aSSherry Moore 			 * creates bogus menu entries if it does.
1096*6bc8bc6aSSherry Moore 			 */
1097*6bc8bc6aSSherry Moore 			if (mplen > 0) {
1098*6bc8bc6aSSherry Moore 				bcopy(unixfile, bootargs_buf, mplen);
1099*6bc8bc6aSSherry Moore 				(void) strcat(bootargs_buf, " ");
1100*6bc8bc6aSSherry Moore 				space = 1;
1101*6bc8bc6aSSherry Moore 			}
1102*6bc8bc6aSSherry Moore 			bcopy(&unixfile[mplen], &bootargs_buf[mplen + space],
110319397407SSherry Moore 			    unixlen - mplen);
110419397407SSherry Moore 			(void) strcat(bootargs_buf, " ");
1105*6bc8bc6aSSherry Moore 			off += unixlen + space + 1;
110619397407SSherry Moore 		}
110719397407SSherry Moore 	} else {
110819397407SSherry Moore 		/* Check to see if root is zfs */
110919397407SSherry Moore 		const char	*dp;
111019397407SSherry Moore 		(void) get_zfs_bootfs_arg("/", &dp, &is_zfs, bootfs_arg);
111119397407SSherry Moore 	}
111219397407SSherry Moore 
111319397407SSherry Moore 	if (is_zfs && (buflen != 0 || bename != NULL))	{
111419397407SSherry Moore 		/* LINTED E_SEC_SPRINTF_UNBOUNDED_COPY */
111519397407SSherry Moore 		off += sprintf(bootargs_buf + off, "%s ", bootfs_arg);
111619397407SSherry Moore 	}
111719397407SSherry Moore 
111819397407SSherry Moore 	/*
111919397407SSherry Moore 	 * Copy the rest of the arguments
112019397407SSherry Moore 	 */
112119397407SSherry Moore 	bcopy(&bootargs_saved[rootlen], &bootargs_buf[off], buflen - rootlen);
112219397407SSherry Moore 
112319397407SSherry Moore 	return (rc);
112419397407SSherry Moore }
112519397407SSherry Moore 
11267c478bd9Sstevel@tonic-gate int
11277c478bd9Sstevel@tonic-gate main(int argc, char *argv[])
11287c478bd9Sstevel@tonic-gate {
11297c478bd9Sstevel@tonic-gate 	char *ttyn = ttyname(STDERR_FILENO);
11307c478bd9Sstevel@tonic-gate 
113119397407SSherry Moore 	uid_t	euid;
11327c478bd9Sstevel@tonic-gate 	int qflag = 0, needlog = 1, nosync = 0;
113319397407SSherry Moore 	int fast_reboot = 0;
11347c478bd9Sstevel@tonic-gate 	uintptr_t mdep = NULL;
11357c478bd9Sstevel@tonic-gate 	int cmd, fcn, c, aval, r;
11367c478bd9Sstevel@tonic-gate 	const char *usage;
11377c478bd9Sstevel@tonic-gate 	zoneid_t zoneid = getzoneid();
11383f2f09c1Sdp 	int need_check_zones = 0;
11393f2f09c1Sdp 	char bootargs_buf[BOOTARGS_MAX];
114019397407SSherry Moore 	int failsafe = 0;
114119397407SSherry Moore 	char *bename = NULL;
11427c478bd9Sstevel@tonic-gate 
11437c478bd9Sstevel@tonic-gate 	const char * const resetting = "/etc/svc/volatile/resetting";
11447c478bd9Sstevel@tonic-gate 
11457c478bd9Sstevel@tonic-gate 	(void) setlocale(LC_ALL, "");
11467c478bd9Sstevel@tonic-gate 	(void) textdomain(TEXT_DOMAIN);
11477c478bd9Sstevel@tonic-gate 
11483f2f09c1Sdp 	cmdname = basename(argv[0]);
11493f2f09c1Sdp 
11507c478bd9Sstevel@tonic-gate 	if (strcmp(cmdname, "halt") == 0) {
11517c478bd9Sstevel@tonic-gate 		(void) audit_halt_setup(argc, argv);
11527c478bd9Sstevel@tonic-gate 		usage = gettext("usage: %s [ -dlnqy ]\n");
11537c478bd9Sstevel@tonic-gate 		cmd = A_SHUTDOWN;
11547c478bd9Sstevel@tonic-gate 		fcn = AD_HALT;
11557c478bd9Sstevel@tonic-gate 	} else if (strcmp(cmdname, "poweroff") == 0) {
11567c478bd9Sstevel@tonic-gate 		(void) audit_halt_setup(argc, argv);
11577c478bd9Sstevel@tonic-gate 		usage = gettext("usage: %s [ -dlnqy ]\n");
11587c478bd9Sstevel@tonic-gate 		cmd = A_SHUTDOWN;
11597c478bd9Sstevel@tonic-gate 		fcn = AD_POWEROFF;
11607c478bd9Sstevel@tonic-gate 	} else if (strcmp(cmdname, "reboot") == 0) {
11617c478bd9Sstevel@tonic-gate 		(void) audit_reboot_setup();
116219397407SSherry Moore #if defined(__i386)
116319397407SSherry Moore 		usage = gettext("usage: %s [ -dlnqfe: ] [ boot args ]\n");
116419397407SSherry Moore #else
11657c478bd9Sstevel@tonic-gate 		usage = gettext("usage: %s [ -dlnq ] [ boot args ]\n");
116619397407SSherry Moore #endif
11677c478bd9Sstevel@tonic-gate 		cmd = A_SHUTDOWN;
11687c478bd9Sstevel@tonic-gate 		fcn = AD_BOOT;
11697c478bd9Sstevel@tonic-gate 	} else {
11707c478bd9Sstevel@tonic-gate 		(void) fprintf(stderr,
11717c478bd9Sstevel@tonic-gate 		    gettext("%s: not installed properly\n"), cmdname);
11727c478bd9Sstevel@tonic-gate 		return (1);
11737c478bd9Sstevel@tonic-gate 	}
11747c478bd9Sstevel@tonic-gate 
117519397407SSherry Moore 	while ((c = getopt(argc, argv, "dlnqyfe:")) != EOF) {
11767c478bd9Sstevel@tonic-gate 		switch (c) {
11777c478bd9Sstevel@tonic-gate 		case 'd':
11787c478bd9Sstevel@tonic-gate 			if (zoneid == GLOBAL_ZONEID)
11797c478bd9Sstevel@tonic-gate 				cmd = A_DUMP;
11807c478bd9Sstevel@tonic-gate 			else {
11817c478bd9Sstevel@tonic-gate 				(void) fprintf(stderr,
11827c478bd9Sstevel@tonic-gate 				    gettext("%s: -d only valid from global"
11837c478bd9Sstevel@tonic-gate 				    " zone\n"), cmdname);
11847c478bd9Sstevel@tonic-gate 				return (1);
11857c478bd9Sstevel@tonic-gate 			}
11867c478bd9Sstevel@tonic-gate 			break;
11877c478bd9Sstevel@tonic-gate 		case 'l':
11887c478bd9Sstevel@tonic-gate 			needlog = 0;
11897c478bd9Sstevel@tonic-gate 			break;
11907c478bd9Sstevel@tonic-gate 		case 'n':
11917c478bd9Sstevel@tonic-gate 			nosync = 1;
11927c478bd9Sstevel@tonic-gate 			break;
11937c478bd9Sstevel@tonic-gate 		case 'q':
11947c478bd9Sstevel@tonic-gate 			qflag = 1;
11957c478bd9Sstevel@tonic-gate 			break;
11967c478bd9Sstevel@tonic-gate 		case 'y':
11977c478bd9Sstevel@tonic-gate 			ttyn = NULL;
11987c478bd9Sstevel@tonic-gate 			break;
119919397407SSherry Moore #if defined(__i386)
120019397407SSherry Moore 		case 'f':
120119397407SSherry Moore 			fast_reboot = 1;
120219397407SSherry Moore 			break;
120319397407SSherry Moore 		case 'e':
120419397407SSherry Moore 			bename = optarg;
120519397407SSherry Moore 			break;
120619397407SSherry Moore #endif
12077c478bd9Sstevel@tonic-gate 		default:
12087c478bd9Sstevel@tonic-gate 			/*
12097c478bd9Sstevel@tonic-gate 			 * TRANSLATION_NOTE
12107c478bd9Sstevel@tonic-gate 			 * Don't translate the words "halt" or "reboot"
12117c478bd9Sstevel@tonic-gate 			 */
12127c478bd9Sstevel@tonic-gate 			(void) fprintf(stderr, usage, cmdname);
12137c478bd9Sstevel@tonic-gate 			return (1);
12147c478bd9Sstevel@tonic-gate 		}
12157c478bd9Sstevel@tonic-gate 	}
12167c478bd9Sstevel@tonic-gate 
12177c478bd9Sstevel@tonic-gate 	argc -= optind;
12187c478bd9Sstevel@tonic-gate 	argv += optind;
12197c478bd9Sstevel@tonic-gate 
12207c478bd9Sstevel@tonic-gate 	if (argc != 0) {
12217c478bd9Sstevel@tonic-gate 		if (fcn != AD_BOOT) {
12227c478bd9Sstevel@tonic-gate 			(void) fprintf(stderr, usage, cmdname);
12237c478bd9Sstevel@tonic-gate 			return (1);
12247c478bd9Sstevel@tonic-gate 		}
12257c478bd9Sstevel@tonic-gate 
12267c478bd9Sstevel@tonic-gate 		/* Gather the arguments into bootargs_buf. */
12277c478bd9Sstevel@tonic-gate 		if (gather_args(argv, bootargs_buf, sizeof (bootargs_buf)) !=
12287c478bd9Sstevel@tonic-gate 		    0) {
12297c478bd9Sstevel@tonic-gate 			(void) fprintf(stderr,
12307c478bd9Sstevel@tonic-gate 			    gettext("%s: Boot arguments too long.\n"), cmdname);
12317c478bd9Sstevel@tonic-gate 			return (1);
12327c478bd9Sstevel@tonic-gate 		}
123319397407SSherry Moore 
12347c478bd9Sstevel@tonic-gate 		mdep = (uintptr_t)bootargs_buf;
123519397407SSherry Moore 	} else {
123619397407SSherry Moore 		/*
123719397407SSherry Moore 		 * Initialize it to 0 in case of fastboot, the buffer
123819397407SSherry Moore 		 * will be used.
123919397407SSherry Moore 		 */
124019397407SSherry Moore 		bzero(bootargs_buf, sizeof (bootargs_buf));
12417c478bd9Sstevel@tonic-gate 	}
12427c478bd9Sstevel@tonic-gate 
124319397407SSherry Moore 	if ((euid = geteuid()) != 0) {
12447c478bd9Sstevel@tonic-gate 		(void) fprintf(stderr,
12457c478bd9Sstevel@tonic-gate 		    gettext("%s: permission denied\n"), cmdname);
12467c478bd9Sstevel@tonic-gate 		goto fail;
12477c478bd9Sstevel@tonic-gate 	}
12487c478bd9Sstevel@tonic-gate 
124919397407SSherry Moore 	/*
125019397407SSherry Moore 	 * Check whether fast  reboot is the default operating mode
125119397407SSherry Moore 	 */
125219397407SSherry Moore 	if (!fast_reboot)
125319397407SSherry Moore 		fast_reboot = is_fastboot_default(euid);
125419397407SSherry Moore 
125519397407SSherry Moore 	if (bename && !fast_reboot)	{
125619397407SSherry Moore 		(void) fprintf(stderr, gettext("%s: -e only valid with -f\n"),
125719397407SSherry Moore 		    cmdname);
125819397407SSherry Moore 		return (EINVAL);
125919397407SSherry Moore 	}
126019397407SSherry Moore 
126119397407SSherry Moore 
126219397407SSherry Moore 	/*
126319397407SSherry Moore 	 * If fast reboot, do some sanity check on the argument
126419397407SSherry Moore 	 */
126519397407SSherry Moore 	if (fast_reboot) {
126619397407SSherry Moore 		int rc;
126719397407SSherry Moore 		int is_dryrun = 0;
126819397407SSherry Moore 
126919397407SSherry Moore 		if (zoneid != GLOBAL_ZONEID)	{
127019397407SSherry Moore 			(void) fprintf(stderr,
127119397407SSherry Moore 			    gettext("%s: fast reboot only valid from global"
127219397407SSherry Moore 			    " zone\n"), cmdname);
127319397407SSherry Moore 			return (EINVAL);
127419397407SSherry Moore 		}
127519397407SSherry Moore 
127619397407SSherry Moore 		rc = parse_fastboot_args(bootargs_buf, &is_dryrun,
127719397407SSherry Moore 		    bename, &failsafe);
127819397407SSherry Moore 
127919397407SSherry Moore 		/*
128019397407SSherry Moore 		 * If dry run, or if arguments are invalid, return.
128119397407SSherry Moore 		 */
128219397407SSherry Moore 		if (is_dryrun)
128319397407SSherry Moore 			return (rc);
128419397407SSherry Moore 		else if (rc != 0)
128519397407SSherry Moore 			goto fail;
128619397407SSherry Moore 
128719397407SSherry Moore 		/*
128819397407SSherry Moore 		 * For all the other errors, we continue on in case user
128919397407SSherry Moore 		 * user want to force fast reboot.
129019397407SSherry Moore 		 */
129119397407SSherry Moore 		if (strlen(bootargs_buf) != 0)
129219397407SSherry Moore 			mdep = (uintptr_t)bootargs_buf;
129319397407SSherry Moore 	}
129419397407SSherry Moore 
129519397407SSherry Moore #if 0	/* For debugging */
129619397407SSherry Moore 	if (mdep != NULL)
129719397407SSherry Moore 		(void) fprintf(stderr, "mdep = %s\n", (char *)mdep);
129819397407SSherry Moore #endif
129919397407SSherry Moore 
13007c478bd9Sstevel@tonic-gate 	if (fcn != AD_BOOT && ttyn != NULL &&
13017c478bd9Sstevel@tonic-gate 	    strncmp(ttyn, "/dev/term/", strlen("/dev/term/")) == 0) {
13027c478bd9Sstevel@tonic-gate 		/*
13037c478bd9Sstevel@tonic-gate 		 * TRANSLATION_NOTE
13047c478bd9Sstevel@tonic-gate 		 * Don't translate ``halt -y''
13057c478bd9Sstevel@tonic-gate 		 */
13067c478bd9Sstevel@tonic-gate 		(void) fprintf(stderr,
13077c478bd9Sstevel@tonic-gate 		    gettext("%s: dangerous on a dialup;"), cmdname);
13087c478bd9Sstevel@tonic-gate 		(void) fprintf(stderr,
13097c478bd9Sstevel@tonic-gate 		    gettext("use ``%s -y'' if you are really sure\n"), cmdname);
13107c478bd9Sstevel@tonic-gate 		goto fail;
13117c478bd9Sstevel@tonic-gate 	}
13127c478bd9Sstevel@tonic-gate 
13137c478bd9Sstevel@tonic-gate 	if (needlog) {
13147c478bd9Sstevel@tonic-gate 		char *user = getlogin();
13157c478bd9Sstevel@tonic-gate 		struct passwd *pw;
1316f040a7a6Ssetje 		char *tty;
13177c478bd9Sstevel@tonic-gate 
13187c478bd9Sstevel@tonic-gate 		openlog(cmdname, 0, LOG_AUTH);
13197c478bd9Sstevel@tonic-gate 		if (user == NULL && (pw = getpwuid(getuid())) != NULL)
13207c478bd9Sstevel@tonic-gate 			user = pw->pw_name;
13217c478bd9Sstevel@tonic-gate 		if (user == NULL)
13227c478bd9Sstevel@tonic-gate 			user = "root";
1323f040a7a6Ssetje 
1324f040a7a6Ssetje 		tty = ttyname(1);
1325f040a7a6Ssetje 
1326f040a7a6Ssetje 		if (tty == NULL)
1327f040a7a6Ssetje 			syslog(LOG_CRIT, "initiated by %s", user);
1328f040a7a6Ssetje 		else
1329f040a7a6Ssetje 			syslog(LOG_CRIT, "initiated by %s on %s", user, tty);
13307c478bd9Sstevel@tonic-gate 	}
13317c478bd9Sstevel@tonic-gate 
13327c478bd9Sstevel@tonic-gate 	/*
13337c478bd9Sstevel@tonic-gate 	 * We must assume success and log it before auditd is terminated.
13347c478bd9Sstevel@tonic-gate 	 */
13357c478bd9Sstevel@tonic-gate 	if (fcn == AD_BOOT)
13367c478bd9Sstevel@tonic-gate 		aval = audit_reboot_success();
13377c478bd9Sstevel@tonic-gate 	else
13387c478bd9Sstevel@tonic-gate 		aval = audit_halt_success();
13397c478bd9Sstevel@tonic-gate 
13407c478bd9Sstevel@tonic-gate 	if (aval == -1) {
13417c478bd9Sstevel@tonic-gate 		(void) fprintf(stderr,
13427c478bd9Sstevel@tonic-gate 		    gettext("%s: can't turn off auditd\n"), cmdname);
13437c478bd9Sstevel@tonic-gate 		if (needlog)
13447c478bd9Sstevel@tonic-gate 			(void) sleep(5); /* Give syslogd time to record this */
13457c478bd9Sstevel@tonic-gate 	}
13467c478bd9Sstevel@tonic-gate 
13477c478bd9Sstevel@tonic-gate 	(void) signal(SIGHUP, SIG_IGN);	/* for remote connections */
13487c478bd9Sstevel@tonic-gate 
134926f665e8Sdstaff 	/*
135026f665e8Sdstaff 	 * We start to fork a bunch of zoneadms to halt any active zones.
135126f665e8Sdstaff 	 * This will proceed with halt in parallel until we call
135226f665e8Sdstaff 	 * check_zone_haltedness later on.
135326f665e8Sdstaff 	 */
135426f665e8Sdstaff 	if (zoneid == GLOBAL_ZONEID && cmd != A_DUMP) {
13553f2f09c1Sdp 		need_check_zones = halt_zones();
135626f665e8Sdstaff 	}
135726f665e8Sdstaff 
135826f665e8Sdstaff 
13597c478bd9Sstevel@tonic-gate 	/* sync boot archive in the global zone */
13603f2f09c1Sdp 	if (zoneid == GLOBAL_ZONEID && !nosync) {
136119397407SSherry Moore 		if (fast_reboot)
136219397407SSherry Moore 			(void) system("/sbin/bootadm -a update_all fastboot");
136319397407SSherry Moore 		else
136419397407SSherry Moore 			(void) system("/sbin/bootadm -a update_all");
13657c478bd9Sstevel@tonic-gate 	}
13667c478bd9Sstevel@tonic-gate 
13677c478bd9Sstevel@tonic-gate 	/*
13687c478bd9Sstevel@tonic-gate 	 * If we're not forcing a crash dump, mark the system as quiescing for
13697c478bd9Sstevel@tonic-gate 	 * smf(5)'s benefit, and idle the init process.
13707c478bd9Sstevel@tonic-gate 	 */
13717c478bd9Sstevel@tonic-gate 	if (cmd != A_DUMP) {
13723f2f09c1Sdp 		if (direct_init(PCDSTOP) == -1) {
13737c478bd9Sstevel@tonic-gate 			/*
13747c478bd9Sstevel@tonic-gate 			 * TRANSLATION_NOTE
13757c478bd9Sstevel@tonic-gate 			 * Don't translate the word "init"
13767c478bd9Sstevel@tonic-gate 			 */
13777c478bd9Sstevel@tonic-gate 			(void) fprintf(stderr,
13787c478bd9Sstevel@tonic-gate 			    gettext("%s: can't idle init\n"), cmdname);
13797c478bd9Sstevel@tonic-gate 			goto fail;
13807c478bd9Sstevel@tonic-gate 		}
13817c478bd9Sstevel@tonic-gate 
13827c478bd9Sstevel@tonic-gate 		if (creat(resetting, 0755) == -1)
13837c478bd9Sstevel@tonic-gate 			(void) fprintf(stderr,
13847c478bd9Sstevel@tonic-gate 			    gettext("%s: could not create %s.\n"),
13857c478bd9Sstevel@tonic-gate 			    cmdname, resetting);
13867c478bd9Sstevel@tonic-gate 
13877c478bd9Sstevel@tonic-gate 		/*
13887c478bd9Sstevel@tonic-gate 		 * Stop all restarters so they do not try to restart services
13897c478bd9Sstevel@tonic-gate 		 * that are terminated.
13907c478bd9Sstevel@tonic-gate 		 */
13917c478bd9Sstevel@tonic-gate 		stop_restarters();
139226f665e8Sdstaff 
139326f665e8Sdstaff 		/*
139426f665e8Sdstaff 		 * Wait a little while for zones to shutdown.
139526f665e8Sdstaff 		 */
139626f665e8Sdstaff 		if (need_check_zones) {
13973f2f09c1Sdp 			check_zones_haltedness();
139826f665e8Sdstaff 
139926f665e8Sdstaff 			(void) fprintf(stderr,
140026f665e8Sdstaff 			    gettext("%s: Completing system halt.\n"),
140126f665e8Sdstaff 			    cmdname);
140226f665e8Sdstaff 		}
14037c478bd9Sstevel@tonic-gate 	}
14047c478bd9Sstevel@tonic-gate 
14057c478bd9Sstevel@tonic-gate 	/*
14067c478bd9Sstevel@tonic-gate 	 * Make sure we don't get stopped by a jobcontrol shell
14077c478bd9Sstevel@tonic-gate 	 * once we start killing everybody.
14087c478bd9Sstevel@tonic-gate 	 */
14097c478bd9Sstevel@tonic-gate 	(void) signal(SIGTSTP, SIG_IGN);
14107c478bd9Sstevel@tonic-gate 	(void) signal(SIGTTIN, SIG_IGN);
14117c478bd9Sstevel@tonic-gate 	(void) signal(SIGTTOU, SIG_IGN);
14127c478bd9Sstevel@tonic-gate 	(void) signal(SIGTERM, SIG_IGN);
14137c478bd9Sstevel@tonic-gate 
14147c478bd9Sstevel@tonic-gate 	/*
14157c478bd9Sstevel@tonic-gate 	 * If we're not forcing a crash dump, give everyone 5 seconds to
14167c478bd9Sstevel@tonic-gate 	 * handle a SIGTERM and clean up properly.
14177c478bd9Sstevel@tonic-gate 	 */
14187c478bd9Sstevel@tonic-gate 	if (cmd != A_DUMP) {
14197c478bd9Sstevel@tonic-gate 		(void) kill(-1, SIGTERM);
14207c478bd9Sstevel@tonic-gate 		(void) sleep(5);
14217c478bd9Sstevel@tonic-gate 	}
14227c478bd9Sstevel@tonic-gate 
14237c478bd9Sstevel@tonic-gate 	if (!qflag && !nosync) {
14247c478bd9Sstevel@tonic-gate 		struct utmpx wtmpx;
14257c478bd9Sstevel@tonic-gate 
14267c478bd9Sstevel@tonic-gate 		bzero(&wtmpx, sizeof (struct utmpx));
14277c478bd9Sstevel@tonic-gate 		(void) strcpy(wtmpx.ut_line, "~");
14287c478bd9Sstevel@tonic-gate 		(void) time(&wtmpx.ut_tv.tv_sec);
14297c478bd9Sstevel@tonic-gate 
14307c478bd9Sstevel@tonic-gate 		if (cmd == A_DUMP)
14317c478bd9Sstevel@tonic-gate 			(void) strcpy(wtmpx.ut_name, "crash dump");
14327c478bd9Sstevel@tonic-gate 		else
14337c478bd9Sstevel@tonic-gate 			(void) strcpy(wtmpx.ut_name, "shutdown");
14347c478bd9Sstevel@tonic-gate 
14357c478bd9Sstevel@tonic-gate 		(void) updwtmpx(WTMPX_FILE, &wtmpx);
14367c478bd9Sstevel@tonic-gate 		sync();
14377c478bd9Sstevel@tonic-gate 	}
14387c478bd9Sstevel@tonic-gate 
14397c478bd9Sstevel@tonic-gate 	if (cmd == A_DUMP && nosync != 0)
14407c478bd9Sstevel@tonic-gate 		(void) uadmin(A_DUMP, AD_NOSYNC, NULL);
14417c478bd9Sstevel@tonic-gate 
144219397407SSherry Moore 	if (fast_reboot) {
144319397407SSherry Moore 		if (failsafe)
144419397407SSherry Moore 			(void) fprintf(stderr, "Fast reboot - failsafe.\n");
144519397407SSherry Moore 		else
144619397407SSherry Moore 			(void) fprintf(stderr, "Fast reboot.\n");
144719397407SSherry Moore 
144819397407SSherry Moore 		fcn = AD_FASTREBOOT;
144919397407SSherry Moore 	}
145019397407SSherry Moore 
14513f2f09c1Sdp 	if (uadmin(cmd, fcn, mdep) == -1)
14523f2f09c1Sdp 		(void) fprintf(stderr, "%s: uadmin failed: %s\n",
14533f2f09c1Sdp 		    cmdname, strerror(errno));
14543f2f09c1Sdp 	else
14553f2f09c1Sdp 		(void) fprintf(stderr, "%s: uadmin unexpectedly returned 0\n",
14563f2f09c1Sdp 		    cmdname);
14573f2f09c1Sdp 
14583f2f09c1Sdp 	do {
14597c478bd9Sstevel@tonic-gate 		r = remove(resetting);
14603f2f09c1Sdp 	} while (r != 0 && errno == EINTR);
14613f2f09c1Sdp 
14627c478bd9Sstevel@tonic-gate 	if (r != 0 && errno != ENOENT)
14637c478bd9Sstevel@tonic-gate 		(void) fprintf(stderr, gettext("%s: could not remove %s.\n"),
14647c478bd9Sstevel@tonic-gate 		    cmdname, resetting);
14657c478bd9Sstevel@tonic-gate 
14663f2f09c1Sdp 	if (direct_init(PCRUN) == -1) {
14673f2f09c1Sdp 		/*
14683f2f09c1Sdp 		 * TRANSLATION_NOTE
14693f2f09c1Sdp 		 * Don't translate the word "init"
14703f2f09c1Sdp 		 */
14713f2f09c1Sdp 		(void) fprintf(stderr,
14723f2f09c1Sdp 		    gettext("%s: can't resume init\n"), cmdname);
14733f2f09c1Sdp 	}
14743f2f09c1Sdp 
14757c478bd9Sstevel@tonic-gate 	continue_restarters();
14767c478bd9Sstevel@tonic-gate 
14773f2f09c1Sdp 	if (get_initpid() != -1)
14787c478bd9Sstevel@tonic-gate 		/* tell init to restate current level */
14793f2f09c1Sdp 		(void) kill(get_initpid(), SIGHUP);
14807c478bd9Sstevel@tonic-gate 
14817c478bd9Sstevel@tonic-gate fail:
14827c478bd9Sstevel@tonic-gate 	if (fcn == AD_BOOT)
14837c478bd9Sstevel@tonic-gate 		(void) audit_reboot_fail();
14847c478bd9Sstevel@tonic-gate 	else
14857c478bd9Sstevel@tonic-gate 		(void) audit_halt_fail();
14867c478bd9Sstevel@tonic-gate 
148719397407SSherry Moore 	if (fast_reboot) {
148819397407SSherry Moore 		if (bename) {
14894e1f1c13SKonstantin Ananyev 			(void) halt_exec(LUUMOUNT_PROG, "-n", bename, NULL);
149019397407SSherry Moore 
149119397407SSherry Moore 		} else if (strlen(fastboot_mounted) != 0) {
149219397407SSherry Moore 			(void) umount(fastboot_mounted);
149319397407SSherry Moore 		}
149419397407SSherry Moore 	}
149519397407SSherry Moore 
14967c478bd9Sstevel@tonic-gate 	return (1);
14977c478bd9Sstevel@tonic-gate }
1498