3 # Copyright (c) 2000 The FreeBSD Project
6 # Redistribution and use in source and binary forms, with or without
7 # modification, are permitted provided that the following conditions
9 # 1. Redistributions of source code must retain the above copyright
10 # notice, this list of conditions and the following disclaimer.
11 # 2. Redistributions in binary form must reproduce the above copyright
12 # notice, this list of conditions and the following disclaimer in the
13 # documentation and/or other materials provided with the distribution.
15 # THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND
16 # ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
17 # IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
18 # ARE DISCLAIMED. IN NO EVENT SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE
19 # FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
20 # DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
21 # OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
22 # HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
23 # LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
24 # OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
27 # @(#)rc 5.27 (Berkeley) 6/5/91
31 # System startup script run by init on autoboot
32 # or after single-user.
33 # Output and error are redirected to console by init,
34 # and the console is the controlling terminal.
36 # Note that almost all of the user-configurable behavior is no longer in
37 # this file, but rather in /etc/defaults/rc.conf. Please check that file
38 # first before contemplating any changes here. If you do need to change
39 # this file for some reason, we would like to know about it.
43 # Set shell to ignore SIGINT (2), but not children;
44 # shell catches SIGQUIT (3) and returns to single user after fsck.
47 trap : 3 # shouldn't be needed
52 PATH=/sbin:/bin:/usr/sbin:/usr/bin:/usr/local/sbin
55 # BOOTP diskless boot. We have to run the rc file early in order to
56 # retarget various config files.
58 if [ -r /etc/rc.diskless1 ]; then
59 dlv=`/sbin/sysctl -n vfs.nfs.diskless_valid 2> /dev/null`
60 if [ ${dlv:=0} != 0 ]; then
65 # If there is a global system configuration file, suck it in.
67 if [ -r /etc/defaults/rc.conf ]; then
68 . /etc/defaults/rc.conf
70 elif [ -r /etc/rc.conf ]; then
75 if [ -f "${1}" -a -r "${1}" -a -s "${1}" ]; then
76 # echo "Using ${1} as an entropy file"
77 cat "${1}" | dd of=/dev/random bs=8k 2>/dev/null
87 eval svc_val=\${$svc_var}
88 eval dep_val=\${$dep_var}
97 echo "DEPENDENCY NOTE: ${dep} will be enabled" \
105 chkdepend amd amd_enable portmap portmap_enable
106 chkdepend NFS nfs_server_enable portmap portmap_enable
107 chkdepend NIS nis_server_enable portmap portmap_enable
108 chkdepend NIS nis_client_enable portmap portmap_enable
110 # Enable harvesting of entropy via devices. The sooner this happens the
111 # better so that we can take advantage of the boot process.
113 echo -n 'Entropy harvesting:'
115 case ${harvest_interrupt} in
119 if [ -w /dev/random ]; then
120 /sbin/sysctl -w kern.random.sys.harvest.interrupt=1 >/dev/null
121 echo -n ' interrupts'
126 case ${harvest_ethernet} in
130 if [ -w /dev/random ]; then
131 /sbin/sysctl -w kern.random.sys.harvest.ethernet=1 >/dev/null
137 case ${harvest_p_to_p} in
141 if [ -w /dev/random ]; then
142 /sbin/sysctl -w kern.random.sys.harvest.point_to_point=1 >/dev/null
143 echo -n ' point_to_point'
150 # First pass at reseeding /dev/random.
152 case ${entropy_file} in
156 if [ -w /dev/random ]; then
157 feed_dev_random "${entropy_file}"
162 # XXX temporary until we can get the entropy
164 # Entropy below is not great,
165 # but better than nothing.
166 ( ps -efauxww; sysctl -a; date; df -ib; dmesg; ps -efauxww; ) \
167 | dd of=/dev/random bs=8k 2>/dev/null
168 cat /bin/ls | dd of=/dev/random bs=8k 2>/dev/null
170 # Configure ccd devices.
172 if [ -r /etc/ccd.conf ]; then
176 case ${start_vinum} in
184 # Last chance to do things before potentially waiting for
185 # operator to do fsck related tasks
186 if [ -r /etc/rc.early ]; then
192 echo 'Automatic boot in progress...'
193 case ${background_fsck} in
209 echo 'Reboot failed... help!'
213 case ${fsck_y_enable} in
215 echo 'File system preen failed, trying fsck -y . . .'
221 echo 'Automatic file system check failed . . . help!'
227 echo 'Automatic file system check failed . . . help!'
233 echo 'Reboot interrupted'
237 # interrupt before catcher installed
241 echo 'Unknown error in reboot'
247 echo 'Skipping disk checks ...'
252 trap "echo 'Reboot interrupted'; exit 1" 3
254 # root normally must be read/write, but if this is a BOOTP NFS
255 # diskless boot it does not have to be.
257 case ${root_rw_mount} in
261 if ! mount -u -o rw / ; then
262 echo 'Mounting root filesystem rw failed, startup aborted'
268 umount -a >/dev/null 2>&1
270 # Mount everything except nfs filesystems.
277 echo 'Mounting /etc/fstab filesystems failed, startup aborted'
282 # Run custom disk mounting function here
284 if [ -n "${diskless_mount}" -a -r "${diskless_mount}" ]; then
288 # Reseed /dev/random with previously stored entropy.
289 case ${entropy_dir} in
293 entropy_dir=${entropy_dir:-/var/db/entropy}
294 if [ -d "${entropy_dir}" ]; then
295 if [ -w /dev/random ]; then
296 for seedfile in ${entropy_dir}/*; do
297 feed_dev_random "${seedfile}"
304 case ${entropy_file} in
308 if [ -w /dev/random ]; then
309 feed_dev_random "${entropy_file}"
319 if [ $# -eq 0 ]; then
325 cd "$dir" && for file in .* *
327 [ ."$file" = .. -o ."$file" = ... ] && continue
328 if [ -d "$file" -a ! -L "$file" ]
341 if [ ! -f /var/run/clean_var ]; then
342 purgedir /var/run /var/spool/lock
343 rm -rf /var/spool/uucp/.Temp/*
344 # Keep a copy of the boot messages around
345 dmesg >/var/run/dmesg.boot
346 # And an initial utmp file
347 (cd /var/run && cp /dev/null utmp && chmod 644 utmp;)
352 if [ -d /var/run -a -d /var/spool/lock -a -d /var/spool/uucp/.Temp ]; then
353 # network_pass1() *may* end up writing stuff to /var - we don't want to
354 # remove it immediately afterwards - *nor* to we want to fail to clean
355 # an nfs-mounted /var.
359 # Add additional swapfile, if configured.
365 if [ -w "${swapfile}" -a -c /dev/mdctl ]; then
366 echo "Adding ${swapfile} as additional swap"
367 mdev=`mdconfig -a -t vnode -f ${swapfile}` && swapon /dev/${mdev}
372 # Set sysctl variables as early as we can
374 if [ -r /etc/rc.sysctl ]; then
378 # Configure serial devices
380 if [ -r /etc/rc.serial ]; then
384 # Start up PC-card configuration
386 if [ -r /etc/rc.pccard ]; then
390 # Start up the initial network configuration.
392 if [ -r /etc/rc.network ]; then
393 . /etc/rc.network # We only need to do this once.
397 case ${ipv6_enable} in
399 if [ -r /etc/rc.network6 ]; then
400 . /etc/rc.network6 # We only need to do this once also.
406 # Mount NFS filesystems if present in /etc/fstab
407 case "`mount -d -a -t nfs 2> /dev/null`" in
409 # Handle absent nfs client support
410 nfsclient_in_kernel=0
411 if sysctl vfs.nfs >/dev/null 2>&1; then
412 nfsclient_in_kernel=1
414 kldload nfsclient && nfsclient_in_kernel=1
417 case ${nfsclient_in_kernel} in
419 echo -n 'Mounting NFS file systems:'
424 echo 'Warning: nfs mount requested, but no nfs client in kernel'
430 # Whack the pty perms back into shape.
432 if ls /dev/tty[pqrsPQRS]* > /dev/null 2>&1; then
433 chflags 0 /dev/tty[pqrsPQRS]*
434 chmod 666 /dev/tty[pqrsPQRS]*
435 chown root:wheel /dev/tty[pqrsPQRS]*
438 # Clean up left-over files
440 clean_var # If it hasn't already been done
441 rm /var/run/clean_var
443 # Clearing /tmp at boot-time seems to have a long tradition. It doesn't
444 # help in any way for long-living systems, and it might accidentally
445 # clobber files you would rather like to have preserved after a crash
446 # (if not using mfs /tmp anyway).
448 # See also the example of another cleanup policy in /etc/periodic/daily.
450 case ${clear_tmp_enable} in
452 echo -n 'Clearing /tmp:'
453 # prune quickly with one rm, then use find to clean up /tmp/[lq]*
454 # (not needed with mfs /tmp, but doesn't hurt there...)
455 (cd /tmp && rm -rf [a-km-pr-zA-Z]* &&
456 find -d . ! -name . ! -name lost+found ! -name quota.user \
457 ! -name quota.group -exec rm -rf -- {} \;)
462 # Remove X lock files, since they will prevent you from restarting X11
463 # after a system crash.
465 rm -f /tmp/.X*-lock /tmp/.X11-unix/*
467 # Snapshot any kernel -c changes back to disk here <someday>.
468 # This has changed with ELF and /kernel.config.
470 echo -n 'Additional daemons:'
472 # Start system logging and name service. Named needs to start before syslogd
473 # if you don't have a /etc/resolv.conf.
475 case ${syslogd_enable} in
477 # Transitional symlink (for the next couple of years :) until all
478 # binaries have had a chance to move towards /var/run/log.
479 if [ ! -L /dev/log ]; then
480 # might complain for r/o root f/s
481 ln -sf /var/run/log /dev/log
486 ${syslogd_program:-/usr/sbin/syslogd} ${syslogd_flags}
492 # Build device name databases if we are not using DEVFS
494 if sysctl vfs.devfs.generation > /dev/null 2>&1 ; then
495 rm -f /var/run/dev.db
500 # Enable dumpdev so that savecore can see it.
501 # /var/crash should be a directory or a symbolic link
502 # to the crash directory if core dumps are to be saved.
514 if [ -e "${dumpdev}" -a -d "${dumpdir}" ]; then
515 /sbin/dumpon -v ${dumpdev}
516 echo -n 'Checking for core dump: '
517 /sbin/savecore ${savecore_flags} "${dumpdir}"
522 if [ -n "${network_pass1_done}" ]; then
526 # Enable/Check the quotas (must be after ypbind if using NIS)
528 case ${enable_quotas} in
530 case ${check_quotas} in
532 echo -n 'Checking quotas:'
538 echo -n 'Enabling quotas:'
544 if [ -n "${network_pass2_done}" ]; then
548 # Check the password temp/lock file
550 if [ -e /etc/ptmp ]; then
551 logger -s -p auth.err \
552 "password file may be incorrect -- /etc/ptmp exists"
555 case ${accounting_enable} in
557 if [ -d /var/account ]; then
558 echo 'Turning on accounting:'
559 if [ ! -e /var/account/acct ]; then
560 touch /var/account/acct
562 accton /var/account/acct
567 # Make shared lib searching a little faster. Leave /usr/lib first if you
568 # add your own entries or you may come to grief.
570 ldconfig="/sbin/ldconfig"
571 case ${ldconfig_insecure} in
573 ldconfig="${ldconfig} -i"
576 if [ -x /sbin/ldconfig ]; then
577 case `/usr/bin/objformat` in
580 for i in ${ldconfig_paths}; do
581 if [ -d "${i}" ]; then
585 echo 'ELF ldconfig path:' ${_LDC}
586 ${ldconfig} -elf ${_LDC}
590 # Legacy aout support for i386 only
591 case `sysctl -n hw.machine` in
593 # Default the a.out ldconfig path.
594 : ${ldconfig_paths_aout=${ldconfig_paths}}
596 for i in ${ldconfig_paths_aout}; do
597 if [ -d "${i}" ]; then
601 echo 'a.out ldconfig path:' ${_LDC}
602 ${ldconfig} -aout ${_LDC}
607 # Now start up miscellaneous daemons that don't belong anywhere else
609 echo -n 'Starting standard daemons:'
610 case ${inetd_enable} in
614 echo -n ' inetd'; ${inetd_program:-/usr/sbin/inetd} ${inetd_flags}
618 case ${cron_enable} in
622 echo -n ' cron'; ${cron_program:-/usr/sbin/cron} ${cron_flags}
626 case ${lpd_enable} in
628 echo -n ' printer'; ${lpd_program:-/usr/sbin/lpd} ${lpd_flags}
632 case ${sshd_enable} in
634 if [ -x ${sshd_program:-/usr/sbin/sshd} ]; then
636 ${sshd_program:-/usr/sbin/sshd} ${sshd_flags}
641 case ${usbd_enable} in
643 echo -n ' usbd'; /usr/sbin/usbd ${usbd_flags}
647 if [ -r /etc/mail/sendmail.cf ]; then
648 case ${sendmail_enable} in
651 /usr/sbin/sendmail ${sendmail_flags}
654 case ${sendmail_outbound_enable} in
657 /usr/sbin/sendmail ${sendmail_outbound_flags}
666 # Recover vi editor files.
667 find /var/tmp/vi.recover ! -type f -a ! -type d -delete
668 vibackup=`echo /var/tmp/vi.recover/vi.*`
669 if [ "${vibackup}" != '/var/tmp/vi.recover/vi.*' ]; then
670 echo -n 'Recovering vi editor sessions:'
671 for i in /var/tmp/vi.recover/vi.*; do
672 # Only test files that are readable.
673 if [ ! -r "${i}" ]; then
677 # Unmodified nvi editor backup files either have the
678 # execute bit set or are zero length. Delete them.
679 if [ -x "${i}" -o ! -s "${i}" ]; then
684 # It is possible to get incomplete recovery files, if the editor
685 # crashes at the right time.
686 virecovery=`echo /var/tmp/vi.recover/recover.*`
687 if [ "${virecovery}" != "/var/tmp/vi.recover/recover.*" ]; then
688 for i in /var/tmp/vi.recover/recover.*; do
689 # Only test files that are readable.
690 if [ ! -r "${i}" ]; then
694 # Delete any recovery files that are zero length,
695 # corrupted, or that have no corresponding backup file.
696 # Else send mail to the user.
697 recfile=`awk '/^X-vi-recover-path:/{print $2}' < "${i}"`
698 if [ -n "${recfile}" -a -s "${recfile}" ]; then
708 # Make a bounds file for msgs(1) if there isn't one already
710 if [ -d /var/msgs -a ! -f /var/msgs/bounds -a ! -L /var/msgs/bounds ]; then
711 echo 0 > /var/msgs/bounds
714 case ${update_motd} in
718 if T=`mktemp /tmp/_motd.XXXXXX`; then
719 uname -v | sed -e 's,^\([^#]*\) #\(.* [1-2][0-9][0-9][0-9]\).*/\([^\]*\) $,\1 (\3) #\2,' > ${T}
720 awk '{if (NR == 1) {if ($1 == "FreeBSD") {next} else {print "\n"$0}} else {print}}' < /etc/motd >> ${T}
721 cmp -s ${T} /etc/motd || {
730 # Run rc.devfs if readable to customize devfs
732 if [ -r /etc/rc.devfs ]; then
736 # Configure implementation specific stuff
739 if [ -r /etc/rc.${arch} ]; then
743 # Configure the system console
745 if [ -r /etc/rc.syscons ]; then
749 echo -n 'Additional ABI support:'
751 # Load the SysV IPC API if requested.
752 case ${sysvipc_enable} in
755 kldload sysvmsg >/dev/null 2>&1
756 kldload sysvsem >/dev/null 2>&1
757 kldload sysvshm >/dev/null 2>&1
761 # Start the Linux binary compatibility if requested.
763 case ${linux_enable} in
766 if ! kldstat -v | grep -E 'linux(aout|elf)' > /dev/null; then
767 kldload linux > /dev/null 2>&1
769 if [ -x /compat/linux/sbin/ldconfig ]; then
770 /compat/linux/sbin/ldconfig
775 # Start the SysVR4 binary emulation if requested.
777 case ${svr4_enable} in
779 echo -n ' svr4'; kldload svr4 > /dev/null 2>&1
785 # Do traditional (but rather obsolete) rc.local file if it exists. If you
786 # use this file and want to make it programmatic, source /etc/defaults/rc.conf
787 # in /etc/rc.local and add your custom variables to /etc/rc.conf, as
788 # shown below. Please do not put local extensions into /etc/rc itself.
792 # if [ -r /etc/defaults/rc.conf ]; then
793 # . /etc/defaults/rc.conf
795 # elif [ -r /etc/rc.conf ]; then
799 # ... additional startup conditionals ...
802 if [ -r /etc/rc.local ]; then
803 echo -n 'Starting local daemons:'
808 # For each valid dir in $local_startup, search for init scripts matching *.sh
810 case ${local_startup} in
814 echo -n 'Local package initialization:'
816 for dir in ${local_startup}; do
817 if [ -d "${dir}" ]; then
818 for script in ${dir}/*.sh; do
819 slist="${slist}${script_name_sep}${script}"
823 script_save_sep="$IFS"
824 IFS="${script_name_sep}"
825 for script in ${slist}; do
826 if [ -x "${script}" ]; then
830 elif [ -f "${script}" -o -L "${script}" ]; then
831 echo -n " (skipping ${script##*/}, not executable)"
834 IFS="${script_save_sep}"
839 if [ -n "${network_pass3_done}" ]; then
843 # Raise kernel security level. This should be done only after `fsck' has
844 # repaired local file systems if you want the securelevel to be greater than 1.
846 case ${kern_securelevel_enable} in
848 if [ "${kern_securelevel}" -ge 0 ]; then
849 echo 'Raising kernel security level: '
850 sysctl -w kern.securelevel=${kern_securelevel}
855 # Start background fsck checks if necessary
856 case ${background_fsck} in
858 echo 'Starting background filesystem checks'
859 nice -4 fsck -B -p 2>&1 | logger -p daemon.notice &