From 44e85544e4dc336c090473ad157e83b5511eb268 Mon Sep 17 00:00:00 2001 From: Roger Dingledine Date: Wed, 8 Jun 2005 20:32:22 +0000 Subject: [PATCH] absolutely refuse to let people pick internal IP addresses if they're using the default dirservers. we're getting a big pile of a dozen or so servers that have picked private IP addresses despite the warning (presumably they don't even know they have logs) svn:r4354 --- src/or/config.c | 26 +++++++++++++++++++------- 1 file changed, 19 insertions(+), 7 deletions(-) diff --git a/src/or/config.c b/src/or/config.c index 345d032b3d..0bd96d71ee 100644 --- a/src/or/config.c +++ b/src/or/config.c @@ -944,8 +944,9 @@ print_usage(void) } /** - * Based on address, guess our public IP address and put it - * in addr. + * Based on options-\>Address, guess our public IP address and put it + * in *addr. Return 0 if all is well, or -1 if we can't find a + * suitable public IP address. */ int resolve_my_address(or_options_t *options, uint32_t *addr) @@ -994,12 +995,23 @@ resolve_my_address(or_options_t *options, uint32_t *addr) } tor_inet_ntoa(&in,tmpbuf,sizeof(tmpbuf)); - if (!explicit_ip && is_internal_IP(htonl(in.s_addr))) { - log_fn(LOG_WARN,"Address '%s' resolves to private IP '%s'. " - "Please set the Address config option to be the IP you want to use.", - hostname, tmpbuf); - if (!options->NoPublish) + if (is_internal_IP(htonl(in.s_addr)) && !options->NoPublish) { + /* make sure we're ok with publishing an internal IP */ + if (!options->DirServers) { + /* if they are using the default dirservers, disallow internal IPs always. */ + log_fn(LOG_WARN,"Address '%s' resolves to private IP '%s'. " + "Servers must use public IP addresses.", + hostname, tmpbuf); return -1; + } + if (!explicit_ip) { + /* even if they've set their own dirservers, require an explicit IP if + * they're using an internal address. */ + log_fn(LOG_WARN,"Address '%s' resolves to private IP '%s'. " + "Please set the Address config option to be the IP you want to use.", + hostname, tmpbuf); + return -1; + } } log_fn(LOG_DEBUG, "Resolved Address to %s.", tmpbuf);