login_manager.py 7.7 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210
  1. # systemctl-mqtt - MQTT client triggering & reporting shutdown on systemd-based systems
  2. #
  3. # Copyright (C) 2020 Fabian Peter Hammerle <fabian@hammerle.me>
  4. #
  5. # This program is free software: you can redistribute it and/or modify
  6. # it under the terms of the GNU General Public License as published by
  7. # the Free Software Foundation, either version 3 of the License, or
  8. # any later version.
  9. #
  10. # This program is distributed in the hope that it will be useful,
  11. # but WITHOUT ANY WARRANTY; without even the implied warranty of
  12. # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  13. # GNU General Public License for more details.
  14. #
  15. # You should have received a copy of the GNU General Public License
  16. # along with this program. If not, see <https://www.gnu.org/licenses/>.
  17. import datetime
  18. import getpass
  19. import json
  20. import logging
  21. import typing
  22. import jeepney
  23. import jeepney.io.blocking
  24. import systemctl_mqtt._dbus
  25. _LOGGER = logging.getLogger(__name__)
  26. _LOGIN_MANAGER_OBJECT_PATH = "/org/freedesktop/login1"
  27. _LOGIN_MANAGER_INTERFACE = "org.freedesktop.login1.Manager"
  28. def _get_username() -> typing.Optional[str]:
  29. try:
  30. return getpass.getuser()
  31. except OSError:
  32. # > Traceback (most recent call last):
  33. # > File "/usr/local/lib/python3.13/getpass.py", line 173, in getuser
  34. # > return pwd.getpwuid(os.getuid())[0]
  35. # > ~~~~~~~~~~~~^^^^^^^^^^^^^
  36. # > KeyError: 'getpwuid(): uid not found: 100'
  37. #
  38. # > The above exception was the direct cause of the following exception:
  39. # > …
  40. # > OSError: No username set in the environment
  41. return None
  42. def get_login_manager_signal_match_rule(member: str) -> jeepney.MatchRule:
  43. return jeepney.MatchRule(
  44. type="signal",
  45. interface=_LOGIN_MANAGER_INTERFACE,
  46. member=member,
  47. path=_LOGIN_MANAGER_OBJECT_PATH,
  48. )
  49. class LoginManager(systemctl_mqtt._dbus.Properties): # pylint: disable=protected-access
  50. """
  51. https://freedesktop.org/wiki/Software/systemd/logind/
  52. $ python3 -m jeepney.bindgen \
  53. --bus unix:path=/var/run/dbus/system_bus_socket \
  54. --name org.freedesktop.login1 --path /org/freedesktop/login1
  55. """
  56. interface = _LOGIN_MANAGER_INTERFACE
  57. def __init__(self):
  58. super().__init__(
  59. object_path=_LOGIN_MANAGER_OBJECT_PATH, bus_name="org.freedesktop.login1"
  60. )
  61. # pylint: disable=invalid-name; inherited method names from Manager object
  62. def ListInhibitors(self) -> jeepney.low_level.Message:
  63. return jeepney.new_method_call(remote_obj=self, method="ListInhibitors")
  64. def LockSessions(self) -> jeepney.low_level.Message:
  65. return jeepney.new_method_call(remote_obj=self, method="LockSessions")
  66. def CanPowerOff(self) -> jeepney.low_level.Message:
  67. return jeepney.new_method_call(remote_obj=self, method="CanPowerOff")
  68. def ScheduleShutdown(
  69. self, *, action: str, time: datetime.datetime
  70. ) -> jeepney.low_level.Message:
  71. return jeepney.new_method_call(
  72. remote_obj=self,
  73. method="ScheduleShutdown",
  74. signature="st",
  75. body=(action, int(time.timestamp() * 1e6)), # (type, usec)
  76. )
  77. def Suspend(self, *, interactive: bool) -> jeepney.low_level.Message:
  78. return jeepney.new_method_call(
  79. remote_obj=self, method="Suspend", signature="b", body=(interactive,)
  80. )
  81. def Inhibit(
  82. self, *, what: str, who: str, why: str, mode: str
  83. ) -> jeepney.low_level.Message:
  84. return jeepney.new_method_call(
  85. remote_obj=self,
  86. method="Inhibit",
  87. signature="ssss",
  88. body=(what, who, why, mode),
  89. )
  90. def get_login_manager_proxy() -> jeepney.io.blocking.Proxy:
  91. # https://jeepney.readthedocs.io/en/latest/integrate.html
  92. # https://gitlab.com/takluyver/jeepney/-/blob/master/examples/aio_notify.py
  93. return jeepney.io.blocking.Proxy(
  94. msggen=LoginManager(),
  95. connection=jeepney.io.blocking.open_dbus_connection(
  96. bus="SYSTEM",
  97. # > dbus-broker[…]: Peer :1.… is being disconnected as it does not
  98. # . support receiving file descriptors it requested.
  99. enable_fds=True,
  100. ),
  101. )
  102. def _log_shutdown_inhibitors(login_manager_proxy: jeepney.io.blocking.Proxy) -> None:
  103. if _LOGGER.getEffectiveLevel() > logging.DEBUG:
  104. return
  105. found_inhibitor = False
  106. try:
  107. # https://www.freedesktop.org/wiki/Software/systemd/inhibit/
  108. (inhibitors,) = login_manager_proxy.ListInhibitors()
  109. for what, who, why, mode, uid, pid in inhibitors:
  110. if "shutdown" in what:
  111. found_inhibitor = True
  112. _LOGGER.debug(
  113. "detected shutdown inhibitor %s (pid=%u, uid=%u, mode=%s): %s",
  114. who,
  115. pid,
  116. uid,
  117. mode,
  118. why,
  119. )
  120. except jeepney.wrappers.DBusErrorResponse as exc:
  121. _LOGGER.warning("failed to fetch shutdown inhibitors: %s", exc)
  122. return
  123. if not found_inhibitor:
  124. _LOGGER.debug("no shutdown inhibitor locks found")
  125. def schedule_shutdown(*, action: str, delay: datetime.timedelta) -> None:
  126. # https://github.com/systemd/systemd/blob/v237/src/systemctl/systemctl.c#L8553
  127. assert action in ["poweroff", "reboot"], action
  128. time = datetime.datetime.now() + delay
  129. # datetime.datetime.isoformat(timespec=) not available in python3.5
  130. # https://github.com/python/cpython/blob/v3.5.9/Lib/datetime.py#L1552
  131. _LOGGER.info("scheduling %s for %s", action, time.strftime("%Y-%m-%d %H:%M:%S"))
  132. login_manager = get_login_manager_proxy()
  133. try:
  134. # $ gdbus introspect --system --dest org.freedesktop.login1 \
  135. # --object-path /org/freedesktop/login1 | grep -A 1 ScheduleShutdown
  136. # ScheduleShutdown(in s arg_0,
  137. # in t arg_1);
  138. # $ gdbus call --system --dest org.freedesktop.login1 \
  139. # --object-path /org/freedesktop/login1 \
  140. # --method org.freedesktop.login1.Manager.ScheduleShutdown \
  141. # poweroff "$(date --date=10min +%s)000000"
  142. # $ dbus-send --type=method_call --print-reply --system --dest=org.freedesktop.login1 \
  143. # /org/freedesktop/login1 \
  144. # org.freedesktop.login1.Manager.ScheduleShutdown \
  145. # string:poweroff "uint64:$(date --date=10min +%s)000000"
  146. login_manager.ScheduleShutdown(action=action, time=time)
  147. except jeepney.wrappers.DBusErrorResponse as exc:
  148. if (
  149. exc.name == "org.freedesktop.DBus.Error.InteractiveAuthorizationRequired"
  150. and exc.data == ("Interactive authentication required.",)
  151. ):
  152. _LOGGER.error(
  153. """failed to schedule %s: interactive authorization required
  154. create %s and insert the following rule:
  155. polkit.addRule(function(action, subject) {
  156. if(action.id === %s && subject.user === %s) {
  157. return polkit.Result.YES;
  158. }
  159. });
  160. """,
  161. action,
  162. "/etc/polkit-1/rules.d/50-systemctl-mqtt.rules",
  163. # org.freedesktop.login1.lock-sessions
  164. json.dumps("org.freedesktop.login1.power-off"),
  165. json.dumps(_get_username() or "USERNAME"),
  166. )
  167. else:
  168. _LOGGER.error("failed to schedule %s: %s", action, exc)
  169. _log_shutdown_inhibitors(login_manager)
  170. def suspend() -> None:
  171. _LOGGER.info("suspending system")
  172. get_login_manager_proxy().Suspend(interactive=False)
  173. def lock_all_sessions() -> None:
  174. """
  175. $ loginctl lock-sessions
  176. """
  177. _LOGGER.info("instruct all sessions to activate screen locks")
  178. get_login_manager_proxy().LockSessions()