tunnel.c revision 1.10 1 1.10 dyoung /* $NetBSD: tunnel.c,v 1.10 2008/05/06 04:33:42 dyoung Exp $ */
2 1.1 thorpej
3 1.1 thorpej /*
4 1.1 thorpej * Copyright (c) 1983, 1993
5 1.1 thorpej * The Regents of the University of California. All rights reserved.
6 1.1 thorpej *
7 1.1 thorpej * Redistribution and use in source and binary forms, with or without
8 1.1 thorpej * modification, are permitted provided that the following conditions
9 1.1 thorpej * are met:
10 1.1 thorpej * 1. Redistributions of source code must retain the above copyright
11 1.1 thorpej * notice, this list of conditions and the following disclaimer.
12 1.1 thorpej * 2. Redistributions in binary form must reproduce the above copyright
13 1.1 thorpej * notice, this list of conditions and the following disclaimer in the
14 1.1 thorpej * documentation and/or other materials provided with the distribution.
15 1.1 thorpej * 3. Neither the name of the University nor the names of its contributors
16 1.1 thorpej * may be used to endorse or promote products derived from this software
17 1.1 thorpej * without specific prior written permission.
18 1.1 thorpej *
19 1.1 thorpej * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
20 1.1 thorpej * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
21 1.1 thorpej * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
22 1.1 thorpej * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
23 1.1 thorpej * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
24 1.1 thorpej * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
25 1.1 thorpej * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
26 1.1 thorpej * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
27 1.1 thorpej * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
28 1.1 thorpej * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
29 1.1 thorpej * SUCH DAMAGE.
30 1.1 thorpej */
31 1.1 thorpej
32 1.1 thorpej #include <sys/cdefs.h>
33 1.1 thorpej #ifndef lint
34 1.10 dyoung __RCSID("$NetBSD: tunnel.c,v 1.10 2008/05/06 04:33:42 dyoung Exp $");
35 1.1 thorpej #endif /* not lint */
36 1.1 thorpej
37 1.1 thorpej #include <sys/param.h>
38 1.1 thorpej #include <sys/ioctl.h>
39 1.1 thorpej #include <sys/socket.h>
40 1.1 thorpej
41 1.1 thorpej #include <net/if.h>
42 1.1 thorpej
43 1.1 thorpej #ifdef INET6
44 1.1 thorpej #include <netinet/in.h>
45 1.1 thorpej #endif
46 1.1 thorpej
47 1.1 thorpej #include <ctype.h>
48 1.1 thorpej #include <err.h>
49 1.10 dyoung #include <errno.h>
50 1.1 thorpej #include <netdb.h>
51 1.1 thorpej #include <string.h>
52 1.1 thorpej #include <stdlib.h>
53 1.1 thorpej #include <stdio.h>
54 1.7 christos #include <util.h>
55 1.1 thorpej
56 1.10 dyoung #include "parse.h"
57 1.10 dyoung #include "env.h"
58 1.10 dyoung #include "util.h"
59 1.1 thorpej #include "tunnel.h"
60 1.1 thorpej
61 1.2 yamt #ifdef INET6
62 1.5 thorpej #include "af_inet6.h"
63 1.2 yamt #endif
64 1.1 thorpej
65 1.10 dyoung struct paddr tundst = PADDR_INITIALIZER(&tundst, "tundst", settunnel,
66 1.10 dyoung "tundst", NULL, NULL, NULL, &command_root.pb_parser);
67 1.10 dyoung
68 1.10 dyoung struct paddr tunsrc = PADDR_INITIALIZER(&tunsrc, "tunsrc", NULL,
69 1.10 dyoung "tunsrc", NULL, NULL, NULL, &tundst.pa_parser);
70 1.10 dyoung
71 1.10 dyoung int
72 1.10 dyoung settunnel(prop_dictionary_t env, prop_dictionary_t xenv)
73 1.1 thorpej {
74 1.10 dyoung const struct paddr_prefix *srcpfx, *dstpfx;
75 1.1 thorpej struct if_laddrreq req;
76 1.10 dyoung int s;
77 1.10 dyoung prop_data_t srcdata, dstdata;
78 1.10 dyoung const char *ifname;
79 1.10 dyoung
80 1.10 dyoung if ((s = getsock(AF_UNSPEC)) == -1)
81 1.10 dyoung err(EXIT_FAILURE, "%s: getsock", __func__);
82 1.10 dyoung
83 1.10 dyoung if ((ifname = getifname(env)) == NULL)
84 1.10 dyoung return -1;
85 1.10 dyoung
86 1.10 dyoung srcdata = (prop_data_t)prop_dictionary_get(env, "tunsrc");
87 1.10 dyoung dstdata = (prop_data_t)prop_dictionary_get(env, "tundst");
88 1.10 dyoung
89 1.10 dyoung if (srcdata == NULL || dstdata == NULL) {
90 1.10 dyoung warnx("%s.%d", __func__, __LINE__);
91 1.10 dyoung errno = ENOENT;
92 1.10 dyoung return -1;
93 1.10 dyoung }
94 1.1 thorpej
95 1.10 dyoung srcpfx = prop_data_data_nocopy(srcdata);
96 1.10 dyoung dstpfx = prop_data_data_nocopy(dstdata);
97 1.1 thorpej
98 1.10 dyoung if (srcpfx->pfx_addr.sa_family != dstpfx->pfx_addr.sa_family)
99 1.1 thorpej errx(EXIT_FAILURE,
100 1.1 thorpej "source and destination address families do not match");
101 1.1 thorpej
102 1.1 thorpej memset(&req, 0, sizeof(req));
103 1.10 dyoung estrlcpy(req.iflr_name, ifname, sizeof(req.iflr_name));
104 1.10 dyoung memcpy(&req.addr, &srcpfx->pfx_addr,
105 1.10 dyoung MIN(sizeof(req.addr), srcpfx->pfx_addr.sa_len));
106 1.10 dyoung memcpy(&req.dstaddr, &dstpfx->pfx_addr,
107 1.10 dyoung MIN(sizeof(req.dstaddr), dstpfx->pfx_addr.sa_len));
108 1.1 thorpej
109 1.1 thorpej #ifdef INET6
110 1.1 thorpej if (req.addr.ss_family == AF_INET6) {
111 1.1 thorpej struct sockaddr_in6 *s6, *d;
112 1.1 thorpej
113 1.1 thorpej s6 = (struct sockaddr_in6 *)&req.addr;
114 1.1 thorpej d = (struct sockaddr_in6 *)&req.dstaddr;
115 1.1 thorpej if (s6->sin6_scope_id != d->sin6_scope_id) {
116 1.1 thorpej errx(EXIT_FAILURE, "scope mismatch");
117 1.1 thorpej /* NOTREACHED */
118 1.1 thorpej }
119 1.1 thorpej /* embed scopeid */
120 1.1 thorpej if (s6->sin6_scope_id &&
121 1.1 thorpej (IN6_IS_ADDR_LINKLOCAL(&s6->sin6_addr) ||
122 1.1 thorpej IN6_IS_ADDR_MC_LINKLOCAL(&s6->sin6_addr))) {
123 1.1 thorpej *(u_int16_t *)&s6->sin6_addr.s6_addr[2] =
124 1.1 thorpej htons(s6->sin6_scope_id);
125 1.1 thorpej }
126 1.1 thorpej if (d->sin6_scope_id &&
127 1.1 thorpej (IN6_IS_ADDR_LINKLOCAL(&d->sin6_addr) ||
128 1.1 thorpej IN6_IS_ADDR_MC_LINKLOCAL(&d->sin6_addr))) {
129 1.1 thorpej *(u_int16_t *)&d->sin6_addr.s6_addr[2] =
130 1.1 thorpej htons(d->sin6_scope_id);
131 1.1 thorpej }
132 1.1 thorpej }
133 1.1 thorpej #endif /* INET6 */
134 1.1 thorpej
135 1.1 thorpej if (ioctl(s, SIOCSLIFPHYADDR, &req) == -1)
136 1.1 thorpej warn("SIOCSLIFPHYADDR");
137 1.10 dyoung return 0;
138 1.1 thorpej }
139 1.1 thorpej
140 1.10 dyoung int
141 1.10 dyoung deletetunnel(prop_dictionary_t env, prop_dictionary_t xenv)
142 1.1 thorpej {
143 1.10 dyoung int s;
144 1.10 dyoung struct ifreq ifr;
145 1.10 dyoung const char *ifname;
146 1.10 dyoung
147 1.10 dyoung if ((s = getsock(AF_UNSPEC)) == -1)
148 1.10 dyoung err(EXIT_FAILURE, "%s: getsock", __func__);
149 1.10 dyoung
150 1.10 dyoung if ((ifname = getifname(env)) == NULL)
151 1.10 dyoung return -1;
152 1.1 thorpej
153 1.10 dyoung memset(&ifr, 0, sizeof(ifr));
154 1.10 dyoung
155 1.10 dyoung estrlcpy(ifr.ifr_name, ifname, sizeof(ifr.ifr_name));
156 1.1 thorpej if (ioctl(s, SIOCDIFPHYADDR, &ifr) == -1)
157 1.1 thorpej err(EXIT_FAILURE, "SIOCDIFPHYADDR");
158 1.10 dyoung return 0;
159 1.1 thorpej }
160 1.1 thorpej
161 1.1 thorpej void
162 1.10 dyoung tunnel_status(prop_dictionary_t env)
163 1.1 thorpej {
164 1.8 dyoung char dstserv[sizeof(",65535")];
165 1.8 dyoung char srcserv[sizeof(",65535")];
166 1.1 thorpej char psrcaddr[NI_MAXHOST];
167 1.1 thorpej char pdstaddr[NI_MAXHOST];
168 1.9 dyoung const int niflag = NI_NUMERICHOST|NI_NUMERICSERV;
169 1.1 thorpej struct if_laddrreq req;
170 1.4 thorpej const struct afswtch *lafp;
171 1.10 dyoung int s;
172 1.10 dyoung const char *ifname;
173 1.10 dyoung
174 1.10 dyoung if ((s = getsock(AF_UNSPEC)) == -1)
175 1.10 dyoung err(EXIT_FAILURE, "%s: getsock", __func__);
176 1.1 thorpej
177 1.1 thorpej psrcaddr[0] = pdstaddr[0] = '\0';
178 1.1 thorpej
179 1.10 dyoung if ((ifname = getifname(env)) == NULL)
180 1.10 dyoung err(EXIT_FAILURE, "%s: getifname", __func__);
181 1.10 dyoung
182 1.1 thorpej memset(&req, 0, sizeof(req));
183 1.10 dyoung estrlcpy(req.iflr_name, ifname, IFNAMSIZ);
184 1.1 thorpej if (ioctl(s, SIOCGLIFPHYADDR, &req) == -1)
185 1.1 thorpej return;
186 1.3 thorpej lafp = lookup_af_bynum(req.addr.ss_family);
187 1.1 thorpej #ifdef INET6
188 1.3 thorpej if (req.addr.ss_family == AF_INET6)
189 1.1 thorpej in6_fillscopeid((struct sockaddr_in6 *)&req.addr);
190 1.1 thorpej #endif /* INET6 */
191 1.1 thorpej getnameinfo((struct sockaddr *)&req.addr, req.addr.ss_len,
192 1.8 dyoung psrcaddr, sizeof(psrcaddr), &srcserv[1], sizeof(srcserv) - 1,
193 1.8 dyoung niflag);
194 1.1 thorpej
195 1.1 thorpej #ifdef INET6
196 1.1 thorpej if (req.dstaddr.ss_family == AF_INET6)
197 1.1 thorpej in6_fillscopeid((struct sockaddr_in6 *)&req.dstaddr);
198 1.1 thorpej #endif
199 1.1 thorpej getnameinfo((struct sockaddr *)&req.dstaddr, req.dstaddr.ss_len,
200 1.8 dyoung pdstaddr, sizeof(pdstaddr), &dstserv[1], sizeof(dstserv) - 1,
201 1.8 dyoung niflag);
202 1.8 dyoung
203 1.8 dyoung srcserv[0] = (strcmp(&srcserv[1], "0") == 0) ? '\0' : ',';
204 1.8 dyoung dstserv[0] = (strcmp(&dstserv[1], "0") == 0) ? '\0' : ',';
205 1.1 thorpej
206 1.8 dyoung printf("\ttunnel %s %s%s --> %s%s\n", lafp ? lafp->af_name : "???",
207 1.8 dyoung psrcaddr, srcserv, pdstaddr, dstserv);
208 1.1 thorpej }
209