Home | History | Annotate | Line # | Download | only in net
if_bridge.c revision 1.189.4.3
      1  1.189.4.3    martin /*	$NetBSD: if_bridge.c,v 1.189.4.3 2025/05/15 17:58:18 martin Exp $	*/
      2        1.1   thorpej 
      3        1.1   thorpej /*
      4        1.1   thorpej  * Copyright 2001 Wasabi Systems, Inc.
      5        1.1   thorpej  * All rights reserved.
      6        1.1   thorpej  *
      7        1.1   thorpej  * Written by Jason R. Thorpe for Wasabi Systems, Inc.
      8        1.1   thorpej  *
      9        1.1   thorpej  * Redistribution and use in source and binary forms, with or without
     10        1.1   thorpej  * modification, are permitted provided that the following conditions
     11        1.1   thorpej  * are met:
     12        1.1   thorpej  * 1. Redistributions of source code must retain the above copyright
     13        1.1   thorpej  *    notice, this list of conditions and the following disclaimer.
     14        1.1   thorpej  * 2. Redistributions in binary form must reproduce the above copyright
     15        1.1   thorpej  *    notice, this list of conditions and the following disclaimer in the
     16        1.1   thorpej  *    documentation and/or other materials provided with the distribution.
     17        1.1   thorpej  * 3. All advertising materials mentioning features or use of this software
     18        1.1   thorpej  *    must display the following acknowledgement:
     19        1.1   thorpej  *	This product includes software developed for the NetBSD Project by
     20        1.1   thorpej  *	Wasabi Systems, Inc.
     21        1.1   thorpej  * 4. The name of Wasabi Systems, Inc. may not be used to endorse
     22        1.1   thorpej  *    or promote products derived from this software without specific prior
     23        1.1   thorpej  *    written permission.
     24        1.1   thorpej  *
     25        1.1   thorpej  * THIS SOFTWARE IS PROVIDED BY WASABI SYSTEMS, INC. ``AS IS'' AND
     26        1.1   thorpej  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
     27        1.1   thorpej  * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
     28        1.1   thorpej  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL WASABI SYSTEMS, INC
     29        1.1   thorpej  * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
     30        1.1   thorpej  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
     31        1.1   thorpej  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
     32        1.1   thorpej  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
     33        1.1   thorpej  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
     34        1.1   thorpej  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
     35        1.1   thorpej  * POSSIBILITY OF SUCH DAMAGE.
     36        1.1   thorpej  */
     37        1.1   thorpej 
     38       1.29     perry /*
     39        1.1   thorpej  * Copyright (c) 1999, 2000 Jason L. Wright (jason (at) thought.net)
     40       1.29     perry  * All rights reserved.
     41        1.1   thorpej  *
     42       1.29     perry  * Redistribution and use in source and binary forms, with or without
     43       1.29     perry  * modification, are permitted provided that the following conditions
     44        1.1   thorpej  * are met:
     45        1.1   thorpej  * 1. Redistributions of source code must retain the above copyright
     46        1.1   thorpej  *    notice, this list of conditions and the following disclaimer.
     47        1.1   thorpej  * 2. Redistributions in binary form must reproduce the above copyright
     48        1.1   thorpej  *    notice, this list of conditions and the following disclaimer in the
     49        1.1   thorpej  *    documentation and/or other materials provided with the distribution.
     50        1.1   thorpej  * 3. All advertising materials mentioning features or use of this software
     51        1.1   thorpej  *    must display the following acknowledgement:
     52        1.1   thorpej  *	This product includes software developed by Jason L. Wright
     53        1.1   thorpej  * 4. The name of the author may not be used to endorse or promote products
     54        1.1   thorpej  *    derived from this software without specific prior written permission.
     55        1.1   thorpej  *
     56        1.1   thorpej  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
     57        1.1   thorpej  * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED
     58        1.1   thorpej  * WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
     59        1.1   thorpej  * DISCLAIMED.  IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT,
     60        1.1   thorpej  * INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
     61        1.1   thorpej  * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR
     62        1.1   thorpej  * SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
     63        1.1   thorpej  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT,
     64        1.1   thorpej  * STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN
     65        1.1   thorpej  * ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
     66        1.1   thorpej  * POSSIBILITY OF SUCH DAMAGE.
     67        1.1   thorpej  *
     68        1.1   thorpej  * OpenBSD: if_bridge.c,v 1.60 2001/06/15 03:38:33 itojun Exp
     69        1.1   thorpej  */
     70        1.1   thorpej 
     71        1.1   thorpej /*
     72        1.1   thorpej  * Network interface bridge support.
     73        1.1   thorpej  *
     74        1.1   thorpej  * TODO:
     75        1.1   thorpej  *
     76        1.1   thorpej  *	- Currently only supports Ethernet-like interfaces (Ethernet,
     77        1.1   thorpej  *	  802.11, VLANs on Ethernet, etc.)  Figure out a nice way
     78        1.1   thorpej  *	  to bridge other types of interfaces (FDDI-FDDI, and maybe
     79        1.1   thorpej  *	  consider heterogenous bridges).
     80        1.1   thorpej  */
     81        1.3     lukem 
     82        1.3     lukem #include <sys/cdefs.h>
     83  1.189.4.3    martin __KERNEL_RCSID(0, "$NetBSD: if_bridge.c,v 1.189.4.3 2025/05/15 17:58:18 martin Exp $");
     84        1.1   thorpej 
     85       1.72     pooka #ifdef _KERNEL_OPT
     86       1.16       jdc #include "opt_inet.h"
     87      1.114     ozaki #include "opt_net_mpsafe.h"
     88       1.72     pooka #endif /* _KERNEL_OPT */
     89        1.1   thorpej 
     90       1.29     perry #include <sys/param.h>
     91        1.1   thorpej #include <sys/kernel.h>
     92        1.1   thorpej #include <sys/mbuf.h>
     93        1.1   thorpej #include <sys/queue.h>
     94        1.1   thorpej #include <sys/socket.h>
     95       1.68    bouyer #include <sys/socketvar.h> /* for softnet_lock */
     96        1.1   thorpej #include <sys/sockio.h>
     97        1.1   thorpej #include <sys/systm.h>
     98       1.29     perry #include <sys/proc.h>
     99        1.1   thorpej #include <sys/pool.h>
    100       1.37      elad #include <sys/kauth.h>
    101       1.65    bouyer #include <sys/cpu.h>
    102       1.74       tls #include <sys/cprng.h>
    103       1.86     ozaki #include <sys/mutex.h>
    104       1.93     ozaki #include <sys/kmem.h>
    105  1.189.4.2    martin #include <sys/syslog.h>
    106        1.1   thorpej 
    107        1.1   thorpej #include <net/bpf.h>
    108        1.1   thorpej #include <net/if.h>
    109        1.1   thorpej #include <net/if_dl.h>
    110        1.1   thorpej #include <net/if_types.h>
    111        1.1   thorpej #include <net/if_llc.h>
    112        1.1   thorpej 
    113        1.1   thorpej #include <net/if_ether.h>
    114        1.1   thorpej #include <net/if_bridgevar.h>
    115      1.161       rin #include <net/ether_sw_offload.h>
    116        1.1   thorpej 
    117       1.25  christos /* Used for bridge_ip[6]_checkbasic */
    118        1.9  perseant #include <netinet/in.h>
    119        1.9  perseant #include <netinet/in_systm.h>
    120        1.9  perseant #include <netinet/ip.h>
    121        1.9  perseant #include <netinet/ip_var.h>
    122       1.61   thorpej #include <netinet/ip_private.h>		/* XXX */
    123        1.9  perseant #include <netinet/ip6.h>
    124        1.9  perseant #include <netinet6/in6_var.h>
    125      1.162    martin #include <netinet6/ip6_var.h>
    126       1.61   thorpej #include <netinet6/ip6_private.h>	/* XXX */
    127        1.9  perseant 
    128        1.1   thorpej /*
    129        1.1   thorpej  * Size of the route hash table.  Must be a power of two.
    130        1.1   thorpej  */
    131        1.1   thorpej #ifndef BRIDGE_RTHASH_SIZE
    132        1.1   thorpej #define	BRIDGE_RTHASH_SIZE		1024
    133        1.1   thorpej #endif
    134        1.1   thorpej 
    135        1.1   thorpej #define	BRIDGE_RTHASH_MASK		(BRIDGE_RTHASH_SIZE - 1)
    136        1.1   thorpej 
    137       1.38  liamjfoy #include "carp.h"
    138       1.38  liamjfoy #if NCARP > 0
    139       1.38  liamjfoy #include <netinet/in.h>
    140       1.38  liamjfoy #include <netinet/in_var.h>
    141       1.38  liamjfoy #include <netinet/ip_carp.h>
    142       1.38  liamjfoy #endif
    143       1.38  liamjfoy 
    144      1.101  christos #include "ioconf.h"
    145      1.101  christos 
    146       1.99      matt __CTASSERT(sizeof(struct ifbifconf) == sizeof(struct ifbaconf));
    147       1.99      matt __CTASSERT(offsetof(struct ifbifconf, ifbic_len) == offsetof(struct ifbaconf, ifbac_len));
    148       1.99      matt __CTASSERT(offsetof(struct ifbifconf, ifbic_buf) == offsetof(struct ifbaconf, ifbac_buf));
    149       1.99      matt 
    150        1.1   thorpej /*
    151        1.1   thorpej  * Maximum number of addresses to cache.
    152        1.1   thorpej  */
    153        1.1   thorpej #ifndef BRIDGE_RTABLE_MAX
    154        1.1   thorpej #define	BRIDGE_RTABLE_MAX		100
    155        1.1   thorpej #endif
    156        1.1   thorpej 
    157        1.1   thorpej /*
    158        1.1   thorpej  * Spanning tree defaults.
    159        1.1   thorpej  */
    160        1.1   thorpej #define	BSTP_DEFAULT_MAX_AGE		(20 * 256)
    161        1.1   thorpej #define	BSTP_DEFAULT_HELLO_TIME		(2 * 256)
    162        1.1   thorpej #define	BSTP_DEFAULT_FORWARD_DELAY	(15 * 256)
    163        1.1   thorpej #define	BSTP_DEFAULT_HOLD_TIME		(1 * 256)
    164        1.1   thorpej #define	BSTP_DEFAULT_BRIDGE_PRIORITY	0x8000
    165        1.1   thorpej #define	BSTP_DEFAULT_PORT_PRIORITY	0x80
    166        1.1   thorpej #define	BSTP_DEFAULT_PATH_COST		55
    167        1.1   thorpej 
    168        1.1   thorpej /*
    169        1.1   thorpej  * Timeout (in seconds) for entries learned dynamically.
    170        1.1   thorpej  */
    171        1.1   thorpej #ifndef BRIDGE_RTABLE_TIMEOUT
    172        1.1   thorpej #define	BRIDGE_RTABLE_TIMEOUT		(20 * 60)	/* same as ARP */
    173        1.1   thorpej #endif
    174        1.1   thorpej 
    175        1.1   thorpej /*
    176        1.1   thorpej  * Number of seconds between walks of the route list.
    177        1.1   thorpej  */
    178        1.1   thorpej #ifndef BRIDGE_RTABLE_PRUNE_PERIOD
    179        1.1   thorpej #define	BRIDGE_RTABLE_PRUNE_PERIOD	(5 * 60)
    180        1.1   thorpej #endif
    181        1.1   thorpej 
    182      1.150     ozaki #define BRIDGE_RT_LOCK(_sc)	mutex_enter((_sc)->sc_rtlist_lock)
    183      1.150     ozaki #define BRIDGE_RT_UNLOCK(_sc)	mutex_exit((_sc)->sc_rtlist_lock)
    184      1.150     ozaki #define BRIDGE_RT_LOCKED(_sc)	mutex_owned((_sc)->sc_rtlist_lock)
    185       1.97     ozaki 
    186       1.97     ozaki #define BRIDGE_RT_PSZ_PERFORM(_sc) \
    187      1.153     ozaki 				pserialize_perform((_sc)->sc_rtlist_psz)
    188       1.97     ozaki 
    189      1.108     ozaki #define BRIDGE_RT_RENTER(__s)	do { __s = pserialize_read_enter(); } while (0)
    190      1.108     ozaki #define BRIDGE_RT_REXIT(__s)	do { pserialize_read_exit(__s); } while (0)
    191      1.114     ozaki 
    192      1.152     ozaki #define BRIDGE_RTLIST_READER_FOREACH(_brt, _sc)			\
    193      1.152     ozaki 	PSLIST_READER_FOREACH((_brt), &((_sc)->sc_rtlist),		\
    194      1.152     ozaki 	    struct bridge_rtnode, brt_list)
    195      1.152     ozaki #define BRIDGE_RTLIST_WRITER_FOREACH(_brt, _sc)			\
    196      1.152     ozaki 	PSLIST_WRITER_FOREACH((_brt), &((_sc)->sc_rtlist),		\
    197      1.152     ozaki 	    struct bridge_rtnode, brt_list)
    198      1.152     ozaki #define BRIDGE_RTLIST_WRITER_INSERT_HEAD(_sc, _brt)			\
    199      1.152     ozaki 	PSLIST_WRITER_INSERT_HEAD(&(_sc)->sc_rtlist, brt, brt_list)
    200      1.152     ozaki #define BRIDGE_RTLIST_WRITER_REMOVE(_brt)				\
    201      1.152     ozaki 	PSLIST_WRITER_REMOVE((_brt), brt_list)
    202      1.152     ozaki 
    203      1.152     ozaki #define BRIDGE_RTHASH_READER_FOREACH(_brt, _sc, _hash)			\
    204      1.152     ozaki 	PSLIST_READER_FOREACH((_brt), &(_sc)->sc_rthash[(_hash)],	\
    205      1.152     ozaki 	    struct bridge_rtnode, brt_hash)
    206      1.152     ozaki #define BRIDGE_RTHASH_WRITER_FOREACH(_brt, _sc, _hash)			\
    207      1.152     ozaki 	PSLIST_WRITER_FOREACH((_brt), &(_sc)->sc_rthash[(_hash)],	\
    208      1.152     ozaki 	    struct bridge_rtnode, brt_hash)
    209      1.152     ozaki #define BRIDGE_RTHASH_WRITER_INSERT_HEAD(_sc, _hash, _brt)		\
    210      1.152     ozaki 	PSLIST_WRITER_INSERT_HEAD(&(_sc)->sc_rthash[(_hash)], brt, brt_hash)
    211      1.152     ozaki #define BRIDGE_RTHASH_WRITER_INSERT_AFTER(_brt, _new)			\
    212      1.152     ozaki 	PSLIST_WRITER_INSERT_AFTER((_brt), (_new), brt_hash)
    213      1.152     ozaki #define BRIDGE_RTHASH_WRITER_REMOVE(_brt)				\
    214      1.152     ozaki 	PSLIST_WRITER_REMOVE((_brt), brt_hash)
    215      1.114     ozaki 
    216      1.114     ozaki #ifdef NET_MPSAFE
    217      1.114     ozaki #define DECLARE_LOCK_VARIABLE
    218      1.114     ozaki #define ACQUIRE_GLOBAL_LOCKS()	do { } while (0)
    219      1.114     ozaki #define RELEASE_GLOBAL_LOCKS()	do { } while (0)
    220      1.114     ozaki #else
    221      1.114     ozaki #define DECLARE_LOCK_VARIABLE	int __s
    222      1.114     ozaki #define ACQUIRE_GLOBAL_LOCKS()	do {					\
    223      1.114     ozaki 					KERNEL_LOCK(1, NULL);		\
    224      1.114     ozaki 					mutex_enter(softnet_lock);	\
    225      1.132     ozaki 					__s = splsoftnet();		\
    226      1.114     ozaki 				} while (0)
    227      1.114     ozaki #define RELEASE_GLOBAL_LOCKS()	do {					\
    228      1.114     ozaki 					splx(__s);			\
    229      1.114     ozaki 					mutex_exit(softnet_lock);	\
    230      1.114     ozaki 					KERNEL_UNLOCK_ONE(NULL);	\
    231      1.114     ozaki 				} while (0)
    232      1.114     ozaki #endif
    233       1.97     ozaki 
    234      1.115     ozaki struct psref_class *bridge_psref_class __read_mostly;
    235      1.115     ozaki 
    236        1.1   thorpej int	bridge_rtable_prune_period = BRIDGE_RTABLE_PRUNE_PERIOD;
    237        1.1   thorpej 
    238       1.33   thorpej static struct pool bridge_rtnode_pool;
    239        1.1   thorpej 
    240       1.33   thorpej static int	bridge_clone_create(struct if_clone *, int);
    241       1.33   thorpej static int	bridge_clone_destroy(struct ifnet *);
    242        1.1   thorpej 
    243       1.50  christos static int	bridge_ioctl(struct ifnet *, u_long, void *);
    244       1.33   thorpej static int	bridge_init(struct ifnet *);
    245       1.33   thorpej static void	bridge_stop(struct ifnet *, int);
    246       1.33   thorpej static void	bridge_start(struct ifnet *);
    247      1.183  yamaguch static void	bridge_ifdetach(void *);
    248       1.33   thorpej 
    249       1.81     ozaki static void	bridge_input(struct ifnet *, struct mbuf *);
    250      1.108     ozaki static void	bridge_forward(struct bridge_softc *, struct mbuf *);
    251       1.33   thorpej 
    252       1.33   thorpej static void	bridge_timer(void *);
    253       1.33   thorpej 
    254  1.189.4.2    martin static void	bridge_broadcast(struct bridge_softc *, struct ifnet *, bool,
    255       1.33   thorpej 				 struct mbuf *);
    256       1.33   thorpej 
    257       1.33   thorpej static int	bridge_rtupdate(struct bridge_softc *, const uint8_t *,
    258       1.33   thorpej 				struct ifnet *, int, uint8_t);
    259       1.33   thorpej static struct ifnet *bridge_rtlookup(struct bridge_softc *, const uint8_t *);
    260       1.33   thorpej static void	bridge_rttrim(struct bridge_softc *);
    261       1.33   thorpej static void	bridge_rtage(struct bridge_softc *);
    262       1.97     ozaki static void	bridge_rtage_work(struct work *, void *);
    263       1.33   thorpej static void	bridge_rtflush(struct bridge_softc *, int);
    264       1.33   thorpej static int	bridge_rtdaddr(struct bridge_softc *, const uint8_t *);
    265       1.33   thorpej static void	bridge_rtdelete(struct bridge_softc *, struct ifnet *ifp);
    266       1.33   thorpej 
    267       1.93     ozaki static void	bridge_rtable_init(struct bridge_softc *);
    268       1.33   thorpej static void	bridge_rtable_fini(struct bridge_softc *);
    269       1.33   thorpej 
    270       1.33   thorpej static struct bridge_rtnode *bridge_rtnode_lookup(struct bridge_softc *,
    271       1.33   thorpej 						  const uint8_t *);
    272       1.33   thorpej static int	bridge_rtnode_insert(struct bridge_softc *,
    273       1.33   thorpej 				     struct bridge_rtnode *);
    274       1.97     ozaki static void	bridge_rtnode_remove(struct bridge_softc *,
    275       1.97     ozaki 				     struct bridge_rtnode *);
    276       1.97     ozaki static void	bridge_rtnode_destroy(struct bridge_rtnode *);
    277       1.33   thorpej 
    278       1.33   thorpej static struct bridge_iflist *bridge_lookup_member(struct bridge_softc *,
    279      1.115     ozaki 						  const char *name,
    280      1.115     ozaki 						  struct psref *);
    281       1.33   thorpej static struct bridge_iflist *bridge_lookup_member_if(struct bridge_softc *,
    282      1.115     ozaki 						     struct ifnet *ifp,
    283      1.115     ozaki 						     struct psref *);
    284      1.115     ozaki static void	bridge_release_member(struct bridge_softc *, struct bridge_iflist *,
    285      1.115     ozaki                                       struct psref *);
    286       1.33   thorpej static void	bridge_delete_member(struct bridge_softc *,
    287       1.33   thorpej 				     struct bridge_iflist *);
    288      1.115     ozaki static void	bridge_acquire_member(struct bridge_softc *sc,
    289      1.115     ozaki                                       struct bridge_iflist *,
    290      1.115     ozaki                                       struct psref *);
    291       1.33   thorpej 
    292       1.33   thorpej static int	bridge_ioctl_add(struct bridge_softc *, void *);
    293       1.33   thorpej static int	bridge_ioctl_del(struct bridge_softc *, void *);
    294       1.33   thorpej static int	bridge_ioctl_gifflags(struct bridge_softc *, void *);
    295       1.33   thorpej static int	bridge_ioctl_sifflags(struct bridge_softc *, void *);
    296       1.33   thorpej static int	bridge_ioctl_scache(struct bridge_softc *, void *);
    297       1.33   thorpej static int	bridge_ioctl_gcache(struct bridge_softc *, void *);
    298       1.33   thorpej static int	bridge_ioctl_gifs(struct bridge_softc *, void *);
    299       1.33   thorpej static int	bridge_ioctl_rts(struct bridge_softc *, void *);
    300       1.33   thorpej static int	bridge_ioctl_saddr(struct bridge_softc *, void *);
    301       1.33   thorpej static int	bridge_ioctl_sto(struct bridge_softc *, void *);
    302       1.33   thorpej static int	bridge_ioctl_gto(struct bridge_softc *, void *);
    303       1.33   thorpej static int	bridge_ioctl_daddr(struct bridge_softc *, void *);
    304       1.33   thorpej static int	bridge_ioctl_flush(struct bridge_softc *, void *);
    305       1.33   thorpej static int	bridge_ioctl_gpri(struct bridge_softc *, void *);
    306       1.33   thorpej static int	bridge_ioctl_spri(struct bridge_softc *, void *);
    307       1.33   thorpej static int	bridge_ioctl_ght(struct bridge_softc *, void *);
    308       1.33   thorpej static int	bridge_ioctl_sht(struct bridge_softc *, void *);
    309       1.33   thorpej static int	bridge_ioctl_gfd(struct bridge_softc *, void *);
    310       1.33   thorpej static int	bridge_ioctl_sfd(struct bridge_softc *, void *);
    311       1.33   thorpej static int	bridge_ioctl_gma(struct bridge_softc *, void *);
    312       1.33   thorpej static int	bridge_ioctl_sma(struct bridge_softc *, void *);
    313       1.33   thorpej static int	bridge_ioctl_sifprio(struct bridge_softc *, void *);
    314       1.33   thorpej static int	bridge_ioctl_sifcost(struct bridge_softc *, void *);
    315       1.33   thorpej static int	bridge_ioctl_gfilt(struct bridge_softc *, void *);
    316       1.33   thorpej static int	bridge_ioctl_sfilt(struct bridge_softc *, void *);
    317       1.33   thorpej static int	bridge_ipf(void *, struct mbuf **, struct ifnet *, int);
    318       1.33   thorpej static int	bridge_ip_checkbasic(struct mbuf **mp);
    319        1.9  perseant # ifdef INET6
    320       1.33   thorpej static int	bridge_ip6_checkbasic(struct mbuf **mp);
    321        1.9  perseant # endif /* INET6 */
    322        1.1   thorpej 
    323        1.1   thorpej struct bridge_control {
    324        1.1   thorpej 	int	(*bc_func)(struct bridge_softc *, void *);
    325        1.1   thorpej 	int	bc_argsize;
    326        1.1   thorpej 	int	bc_flags;
    327        1.1   thorpej };
    328        1.1   thorpej 
    329        1.1   thorpej #define	BC_F_COPYIN		0x01	/* copy arguments in */
    330        1.1   thorpej #define	BC_F_COPYOUT		0x02	/* copy arguments out */
    331        1.1   thorpej #define	BC_F_SUSER		0x04	/* do super-user check */
    332       1.99      matt #define BC_F_XLATEIN		0x08	/* xlate arguments in */
    333       1.99      matt #define BC_F_XLATEOUT		0x10	/* xlate arguments out */
    334        1.1   thorpej 
    335       1.33   thorpej static const struct bridge_control bridge_control_table[] = {
    336       1.55    dyoung [BRDGADD] = {bridge_ioctl_add, sizeof(struct ifbreq), BC_F_COPYIN|BC_F_SUSER},
    337      1.188     skrll [BRDGDEL] = {bridge_ioctl_del, sizeof(struct ifbreq), BC_F_COPYIN|BC_F_SUSER},
    338        1.1   thorpej 
    339      1.188     skrll [BRDGGIFFLGS] = {bridge_ioctl_gifflags, sizeof(struct ifbreq), BC_F_COPYIN|BC_F_COPYOUT},
    340      1.188     skrll [BRDGSIFFLGS] = {bridge_ioctl_sifflags, sizeof(struct ifbreq), BC_F_COPYIN|BC_F_SUSER},
    341       1.11    bouyer 
    342      1.188     skrll [BRDGSCACHE] = {bridge_ioctl_scache, sizeof(struct ifbrparam), BC_F_COPYIN|BC_F_SUSER},
    343      1.188     skrll [BRDGGCACHE] = {bridge_ioctl_gcache, sizeof(struct ifbrparam), BC_F_COPYOUT},
    344       1.55    dyoung 
    345      1.188     skrll [OBRDGGIFS] = {bridge_ioctl_gifs, sizeof(struct ifbifconf), BC_F_COPYIN|BC_F_COPYOUT},
    346      1.188     skrll [OBRDGRTS] = {bridge_ioctl_rts, sizeof(struct ifbaconf), BC_F_COPYIN|BC_F_COPYOUT},
    347       1.55    dyoung 
    348      1.188     skrll [BRDGSADDR] = {bridge_ioctl_saddr, sizeof(struct ifbareq), BC_F_COPYIN|BC_F_SUSER},
    349       1.55    dyoung 
    350      1.188     skrll [BRDGSTO] = {bridge_ioctl_sto, sizeof(struct ifbrparam), BC_F_COPYIN|BC_F_SUSER},
    351      1.188     skrll [BRDGGTO] = {bridge_ioctl_gto, sizeof(struct ifbrparam), BC_F_COPYOUT},
    352       1.55    dyoung 
    353      1.188     skrll [BRDGDADDR] = {bridge_ioctl_daddr, sizeof(struct ifbareq), BC_F_COPYIN|BC_F_SUSER},
    354       1.55    dyoung 
    355      1.188     skrll [BRDGFLUSH] = {bridge_ioctl_flush, sizeof(struct ifbreq), BC_F_COPYIN|BC_F_SUSER},
    356       1.55    dyoung 
    357      1.188     skrll [BRDGGPRI] = {bridge_ioctl_gpri, sizeof(struct ifbrparam), BC_F_COPYOUT},
    358      1.188     skrll [BRDGSPRI] = {bridge_ioctl_spri, sizeof(struct ifbrparam), BC_F_COPYIN|BC_F_SUSER},
    359       1.55    dyoung 
    360      1.188     skrll [BRDGGHT] = {bridge_ioctl_ght, sizeof(struct ifbrparam), BC_F_COPYOUT},
    361      1.188     skrll [BRDGSHT] = {bridge_ioctl_sht, sizeof(struct ifbrparam), BC_F_COPYIN|BC_F_SUSER},
    362       1.55    dyoung 
    363      1.188     skrll [BRDGGFD] = {bridge_ioctl_gfd, sizeof(struct ifbrparam), BC_F_COPYOUT},
    364      1.188     skrll [BRDGSFD] = {bridge_ioctl_sfd, sizeof(struct ifbrparam), BC_F_COPYIN|BC_F_SUSER},
    365       1.55    dyoung 
    366      1.188     skrll [BRDGGMA] = {bridge_ioctl_gma, sizeof(struct ifbrparam), BC_F_COPYOUT},
    367      1.188     skrll [BRDGSMA] = {bridge_ioctl_sma, sizeof(struct ifbrparam), BC_F_COPYIN|BC_F_SUSER},
    368       1.55    dyoung 
    369      1.188     skrll [BRDGSIFPRIO] = {bridge_ioctl_sifprio, sizeof(struct ifbreq), BC_F_COPYIN|BC_F_SUSER},
    370       1.55    dyoung 
    371      1.188     skrll [BRDGSIFCOST] = {bridge_ioctl_sifcost, sizeof(struct ifbreq), BC_F_COPYIN|BC_F_SUSER},
    372      1.174      maxv 
    373       1.55    dyoung [BRDGGFILT] = {bridge_ioctl_gfilt, sizeof(struct ifbrparam), BC_F_COPYOUT},
    374       1.55    dyoung [BRDGSFILT] = {bridge_ioctl_sfilt, sizeof(struct ifbrparam), BC_F_COPYIN|BC_F_SUSER},
    375      1.174      maxv 
    376       1.99      matt [BRDGGIFS] = {bridge_ioctl_gifs, sizeof(struct ifbifconf), BC_F_XLATEIN|BC_F_XLATEOUT},
    377       1.99      matt [BRDGRTS] = {bridge_ioctl_rts, sizeof(struct ifbaconf), BC_F_XLATEIN|BC_F_XLATEOUT},
    378        1.1   thorpej };
    379       1.99      matt 
    380       1.49    dyoung static const int bridge_control_table_size = __arraycount(bridge_control_table);
    381        1.1   thorpej 
    382       1.33   thorpej static struct if_clone bridge_cloner =
    383        1.1   thorpej     IF_CLONE_INITIALIZER("bridge", bridge_clone_create, bridge_clone_destroy);
    384        1.1   thorpej 
    385        1.1   thorpej /*
    386        1.1   thorpej  * bridgeattach:
    387        1.1   thorpej  *
    388        1.1   thorpej  *	Pseudo-device attach routine.
    389        1.1   thorpej  */
    390        1.1   thorpej void
    391       1.45  christos bridgeattach(int n)
    392        1.1   thorpej {
    393        1.1   thorpej 
    394        1.1   thorpej 	pool_init(&bridge_rtnode_pool, sizeof(struct bridge_rtnode),
    395       1.51        ad 	    0, 0, 0, "brtpl", NULL, IPL_NET);
    396        1.1   thorpej 
    397      1.115     ozaki 	bridge_psref_class = psref_class_create("bridge", IPL_SOFTNET);
    398      1.115     ozaki 
    399        1.1   thorpej 	if_clone_attach(&bridge_cloner);
    400        1.1   thorpej }
    401        1.1   thorpej 
    402        1.1   thorpej /*
    403        1.1   thorpej  * bridge_clone_create:
    404        1.1   thorpej  *
    405        1.1   thorpej  *	Create a new bridge instance.
    406        1.1   thorpej  */
    407       1.33   thorpej static int
    408        1.1   thorpej bridge_clone_create(struct if_clone *ifc, int unit)
    409        1.1   thorpej {
    410        1.1   thorpej 	struct bridge_softc *sc;
    411        1.1   thorpej 	struct ifnet *ifp;
    412      1.114     ozaki 	int error;
    413        1.1   thorpej 
    414       1.93     ozaki 	sc = kmem_zalloc(sizeof(*sc),  KM_SLEEP);
    415        1.1   thorpej 	ifp = &sc->sc_if;
    416        1.1   thorpej 
    417        1.1   thorpej 	sc->sc_brtmax = BRIDGE_RTABLE_MAX;
    418        1.1   thorpej 	sc->sc_brttimeout = BRIDGE_RTABLE_TIMEOUT;
    419       1.29     perry 	sc->sc_bridge_max_age = BSTP_DEFAULT_MAX_AGE;
    420        1.1   thorpej 	sc->sc_bridge_hello_time = BSTP_DEFAULT_HELLO_TIME;
    421        1.1   thorpej 	sc->sc_bridge_forward_delay = BSTP_DEFAULT_FORWARD_DELAY;
    422        1.1   thorpej 	sc->sc_bridge_priority = BSTP_DEFAULT_BRIDGE_PRIORITY;
    423        1.1   thorpej 	sc->sc_hold_time = BSTP_DEFAULT_HOLD_TIME;
    424        1.9  perseant 	sc->sc_filter_flags = 0;
    425        1.1   thorpej 
    426        1.1   thorpej 	/* Initialize our routing table. */
    427        1.1   thorpej 	bridge_rtable_init(sc);
    428        1.1   thorpej 
    429       1.97     ozaki 	error = workqueue_create(&sc->sc_rtage_wq, "bridge_rtage",
    430      1.114     ozaki 	    bridge_rtage_work, sc, PRI_SOFTNET, IPL_SOFTNET, WQ_MPSAFE);
    431       1.97     ozaki 	if (error)
    432       1.97     ozaki 		panic("%s: workqueue_create %d\n", __func__, error);
    433       1.97     ozaki 
    434      1.139     ozaki 	callout_init(&sc->sc_brcallout, CALLOUT_MPSAFE);
    435      1.139     ozaki 	callout_init(&sc->sc_bstpcallout, CALLOUT_MPSAFE);
    436        1.1   thorpej 
    437      1.115     ozaki 	mutex_init(&sc->sc_iflist_psref.bip_lock, MUTEX_DEFAULT, IPL_NONE);
    438      1.115     ozaki 	PSLIST_INIT(&sc->sc_iflist_psref.bip_iflist);
    439      1.115     ozaki 	sc->sc_iflist_psref.bip_psz = pserialize_create();
    440        1.1   thorpej 
    441       1.62  christos 	if_initname(ifp, ifc->ifc_name, unit);
    442        1.1   thorpej 	ifp->if_softc = sc;
    443      1.146     ozaki #ifdef NET_MPSAFE
    444      1.175       roy 	ifp->if_extflags = IFEF_MPSAFE;
    445      1.146     ozaki #endif
    446        1.1   thorpej 	ifp->if_mtu = ETHERMTU;
    447        1.1   thorpej 	ifp->if_ioctl = bridge_ioctl;
    448        1.1   thorpej 	ifp->if_output = bridge_output;
    449        1.1   thorpej 	ifp->if_start = bridge_start;
    450        1.1   thorpej 	ifp->if_stop = bridge_stop;
    451        1.1   thorpej 	ifp->if_init = bridge_init;
    452        1.6    itojun 	ifp->if_type = IFT_BRIDGE;
    453        1.1   thorpej 	ifp->if_addrlen = 0;
    454        1.1   thorpej 	ifp->if_dlt = DLT_EN10MB;
    455        1.1   thorpej 	ifp->if_hdrlen = ETHER_HDR_LEN;
    456      1.180  riastrad 	if_initialize(ifp);
    457      1.175       roy 
    458      1.175       roy 	/*
    459      1.175       roy 	 * Set the link state to down.
    460      1.175       roy 	 * When interfaces are added the link state will reflect
    461      1.175       roy 	 * the best link state of the combined interfaces.
    462      1.175       roy 	 */
    463      1.175       roy 	ifp->if_link_state = LINK_STATE_DOWN;
    464      1.175       roy 
    465      1.156     ozaki 	if_alloc_sadl(ifp);
    466      1.106     ozaki 	if_register(ifp);
    467        1.1   thorpej 
    468      1.136   msaitoh 	return 0;
    469        1.1   thorpej }
    470        1.1   thorpej 
    471        1.1   thorpej /*
    472        1.1   thorpej  * bridge_clone_destroy:
    473        1.1   thorpej  *
    474        1.1   thorpej  *	Destroy a bridge instance.
    475        1.1   thorpej  */
    476       1.33   thorpej static int
    477        1.1   thorpej bridge_clone_destroy(struct ifnet *ifp)
    478        1.1   thorpej {
    479        1.1   thorpej 	struct bridge_softc *sc = ifp->if_softc;
    480        1.1   thorpej 	struct bridge_iflist *bif;
    481        1.1   thorpej 
    482      1.148      maxv 	if ((ifp->if_flags & IFF_RUNNING) != 0)
    483      1.148      maxv 		bridge_stop(ifp, 1);
    484        1.1   thorpej 
    485       1.98     ozaki 	BRIDGE_LOCK(sc);
    486      1.112     ozaki 	for (;;) {
    487      1.115     ozaki 		bif = PSLIST_WRITER_FIRST(&sc->sc_iflist_psref.bip_iflist, struct bridge_iflist,
    488      1.112     ozaki 		    bif_next);
    489      1.112     ozaki 		if (bif == NULL)
    490      1.112     ozaki 			break;
    491        1.1   thorpej 		bridge_delete_member(sc, bif);
    492      1.112     ozaki 	}
    493      1.115     ozaki 	PSLIST_DESTROY(&sc->sc_iflist_psref.bip_iflist);
    494       1.98     ozaki 	BRIDGE_UNLOCK(sc);
    495        1.1   thorpej 
    496        1.1   thorpej 	if_detach(ifp);
    497        1.1   thorpej 
    498        1.1   thorpej 	/* Tear down the routing table. */
    499        1.1   thorpej 	bridge_rtable_fini(sc);
    500        1.1   thorpej 
    501      1.115     ozaki 	pserialize_destroy(sc->sc_iflist_psref.bip_psz);
    502      1.115     ozaki 	mutex_destroy(&sc->sc_iflist_psref.bip_lock);
    503      1.136   msaitoh 	callout_destroy(&sc->sc_brcallout);
    504      1.136   msaitoh 	callout_destroy(&sc->sc_bstpcallout);
    505       1.97     ozaki 	workqueue_destroy(sc->sc_rtage_wq);
    506       1.93     ozaki 	kmem_free(sc, sizeof(*sc));
    507       1.27     peter 
    508      1.136   msaitoh 	return 0;
    509        1.1   thorpej }
    510        1.1   thorpej 
    511        1.1   thorpej /*
    512        1.1   thorpej  * bridge_ioctl:
    513        1.1   thorpej  *
    514        1.1   thorpej  *	Handle a control request from the operator.
    515        1.1   thorpej  */
    516       1.33   thorpej static int
    517       1.50  christos bridge_ioctl(struct ifnet *ifp, u_long cmd, void *data)
    518        1.1   thorpej {
    519        1.1   thorpej 	struct bridge_softc *sc = ifp->if_softc;
    520       1.40        ad 	struct lwp *l = curlwp;	/* XXX */
    521        1.1   thorpej 	union {
    522        1.1   thorpej 		struct ifbreq ifbreq;
    523        1.1   thorpej 		struct ifbifconf ifbifconf;
    524        1.1   thorpej 		struct ifbareq ifbareq;
    525        1.1   thorpej 		struct ifbaconf ifbaconf;
    526        1.1   thorpej 		struct ifbrparam ifbrparam;
    527        1.1   thorpej 	} args;
    528        1.1   thorpej 	struct ifdrv *ifd = (struct ifdrv *) data;
    529       1.69      elad 	const struct bridge_control *bc = NULL; /* XXXGCC */
    530      1.189     skrll 	int error = 0;
    531        1.1   thorpej 
    532      1.132     ozaki 	/* Authorize command before calling splsoftnet(). */
    533        1.1   thorpej 	switch (cmd) {
    534        1.1   thorpej 	case SIOCGDRVSPEC:
    535        1.1   thorpej 	case SIOCSDRVSPEC:
    536       1.99      matt 		if (ifd->ifd_cmd >= bridge_control_table_size
    537       1.99      matt 		    || (bc = &bridge_control_table[ifd->ifd_cmd]) == NULL) {
    538        1.1   thorpej 			error = EINVAL;
    539       1.70    cegger 			return error;
    540        1.1   thorpej 		}
    541       1.69      elad 
    542       1.69      elad 		/* We only care about BC_F_SUSER at this point. */
    543       1.69      elad 		if ((bc->bc_flags & BC_F_SUSER) == 0)
    544       1.69      elad 			break;
    545       1.69      elad 
    546       1.75      elad 		error = kauth_authorize_network(l->l_cred,
    547       1.75      elad 		    KAUTH_NETWORK_INTERFACE_BRIDGE,
    548       1.75      elad 		    cmd == SIOCGDRVSPEC ?
    549       1.75      elad 		     KAUTH_REQ_NETWORK_INTERFACE_BRIDGE_GETPRIV :
    550       1.76       wiz 		     KAUTH_REQ_NETWORK_INTERFACE_BRIDGE_SETPRIV,
    551       1.75      elad 		     ifd, NULL, NULL);
    552       1.69      elad 		if (error)
    553      1.136   msaitoh 			return error;
    554       1.69      elad 
    555       1.69      elad 		break;
    556       1.69      elad 	}
    557       1.69      elad 
    558      1.189     skrll 	const int s = splsoftnet();
    559       1.69      elad 
    560       1.69      elad 	switch (cmd) {
    561       1.69      elad 	case SIOCGDRVSPEC:
    562       1.69      elad 	case SIOCSDRVSPEC:
    563       1.70    cegger 		KASSERT(bc != NULL);
    564        1.1   thorpej 		if (cmd == SIOCGDRVSPEC &&
    565       1.99      matt 		    (bc->bc_flags & (BC_F_COPYOUT|BC_F_XLATEOUT)) == 0) {
    566       1.14  kristerw 			error = EINVAL;
    567       1.14  kristerw 			break;
    568       1.14  kristerw 		}
    569        1.1   thorpej 		else if (cmd == SIOCSDRVSPEC &&
    570       1.99      matt 		    (bc->bc_flags & (BC_F_COPYOUT|BC_F_XLATEOUT)) != 0) {
    571       1.14  kristerw 			error = EINVAL;
    572       1.14  kristerw 			break;
    573       1.14  kristerw 		}
    574        1.1   thorpej 
    575      1.132     ozaki 		/* BC_F_SUSER is checked above, before splsoftnet(). */
    576        1.1   thorpej 
    577       1.99      matt 		if ((bc->bc_flags & (BC_F_XLATEIN|BC_F_XLATEOUT)) == 0
    578       1.99      matt 		    && (ifd->ifd_len != bc->bc_argsize
    579       1.99      matt 			|| ifd->ifd_len > sizeof(args))) {
    580        1.1   thorpej 			error = EINVAL;
    581        1.1   thorpej 			break;
    582        1.1   thorpej 		}
    583        1.1   thorpej 
    584       1.35  christos 		memset(&args, 0, sizeof(args));
    585        1.1   thorpej 		if (bc->bc_flags & BC_F_COPYIN) {
    586        1.1   thorpej 			error = copyin(ifd->ifd_data, &args, ifd->ifd_len);
    587        1.1   thorpej 			if (error)
    588        1.1   thorpej 				break;
    589       1.99      matt 		} else if (bc->bc_flags & BC_F_XLATEIN) {
    590       1.99      matt 			args.ifbifconf.ifbic_len = ifd->ifd_len;
    591       1.99      matt 			args.ifbifconf.ifbic_buf = ifd->ifd_data;
    592        1.1   thorpej 		}
    593        1.1   thorpej 
    594        1.1   thorpej 		error = (*bc->bc_func)(sc, &args);
    595        1.1   thorpej 		if (error)
    596        1.1   thorpej 			break;
    597        1.1   thorpej 
    598       1.99      matt 		if (bc->bc_flags & BC_F_COPYOUT) {
    599        1.1   thorpej 			error = copyout(&args, ifd->ifd_data, ifd->ifd_len);
    600       1.99      matt 		} else if (bc->bc_flags & BC_F_XLATEOUT) {
    601       1.99      matt 			ifd->ifd_len = args.ifbifconf.ifbic_len;
    602       1.99      matt 			ifd->ifd_data = args.ifbifconf.ifbic_buf;
    603       1.99      matt 		}
    604        1.1   thorpej 		break;
    605        1.1   thorpej 
    606        1.1   thorpej 	case SIOCSIFFLAGS:
    607       1.63    dyoung 		if ((error = ifioctl_common(ifp, cmd, data)) != 0)
    608       1.63    dyoung 			break;
    609       1.63    dyoung 		switch (ifp->if_flags & (IFF_UP|IFF_RUNNING)) {
    610       1.63    dyoung 		case IFF_RUNNING:
    611        1.1   thorpej 			/*
    612        1.1   thorpej 			 * If interface is marked down and it is running,
    613        1.1   thorpej 			 * then stop and disable it.
    614        1.1   thorpej 			 */
    615      1.184  riastrad 			if_stop(ifp, 1);
    616       1.63    dyoung 			break;
    617       1.63    dyoung 		case IFF_UP:
    618        1.1   thorpej 			/*
    619        1.1   thorpej 			 * If interface is marked up and it is stopped, then
    620        1.1   thorpej 			 * start it.
    621        1.1   thorpej 			 */
    622      1.186  riastrad 			error = if_init(ifp);
    623       1.63    dyoung 			break;
    624       1.63    dyoung 		default:
    625       1.63    dyoung 			break;
    626        1.1   thorpej 		}
    627        1.1   thorpej 		break;
    628        1.1   thorpej 
    629       1.88     ozaki 	case SIOCSIFMTU:
    630       1.88     ozaki 		if ((error = ifioctl_common(ifp, cmd, data)) == ENETRESET)
    631       1.88     ozaki 			error = 0;
    632       1.88     ozaki 		break;
    633       1.88     ozaki 
    634      1.172  jdolecek         case SIOCGIFCAP:
    635      1.172  jdolecek 	    {
    636      1.172  jdolecek 		struct ifcapreq *ifcr = (struct ifcapreq *)data;
    637      1.172  jdolecek                 ifcr->ifcr_capabilities = sc->sc_capenable;
    638      1.172  jdolecek                 ifcr->ifcr_capenable = sc->sc_capenable;
    639      1.172  jdolecek 		break;
    640      1.172  jdolecek 	    }
    641      1.172  jdolecek 
    642        1.1   thorpej 	default:
    643       1.63    dyoung 		error = ifioctl_common(ifp, cmd, data);
    644        1.1   thorpej 		break;
    645        1.1   thorpej 	}
    646        1.1   thorpej 
    647        1.1   thorpej 	splx(s);
    648        1.1   thorpej 
    649      1.136   msaitoh 	return error;
    650        1.1   thorpej }
    651        1.1   thorpej 
    652        1.1   thorpej /*
    653        1.1   thorpej  * bridge_lookup_member:
    654        1.1   thorpej  *
    655       1.87     ozaki  *	Lookup a bridge member interface.
    656        1.1   thorpej  */
    657       1.33   thorpej static struct bridge_iflist *
    658      1.115     ozaki bridge_lookup_member(struct bridge_softc *sc, const char *name, struct psref *psref)
    659        1.1   thorpej {
    660        1.1   thorpej 	struct bridge_iflist *bif;
    661        1.1   thorpej 	struct ifnet *ifp;
    662       1.95     ozaki 	int s;
    663        1.1   thorpej 
    664       1.95     ozaki 	BRIDGE_PSZ_RENTER(s);
    665       1.87     ozaki 
    666      1.115     ozaki 	BRIDGE_IFLIST_READER_FOREACH(bif, sc) {
    667        1.1   thorpej 		ifp = bif->bif_ifp;
    668        1.1   thorpej 		if (strcmp(ifp->if_xname, name) == 0)
    669       1.87     ozaki 			break;
    670        1.1   thorpej 	}
    671      1.115     ozaki 	if (bif != NULL)
    672      1.115     ozaki 		bridge_acquire_member(sc, bif, psref);
    673        1.1   thorpej 
    674       1.95     ozaki 	BRIDGE_PSZ_REXIT(s);
    675       1.87     ozaki 
    676       1.87     ozaki 	return bif;
    677        1.1   thorpej }
    678        1.1   thorpej 
    679        1.1   thorpej /*
    680        1.8    martin  * bridge_lookup_member_if:
    681        1.8    martin  *
    682       1.87     ozaki  *	Lookup a bridge member interface by ifnet*.
    683        1.8    martin  */
    684       1.33   thorpej static struct bridge_iflist *
    685      1.115     ozaki bridge_lookup_member_if(struct bridge_softc *sc, struct ifnet *member_ifp,
    686      1.115     ozaki     struct psref *psref)
    687        1.8    martin {
    688        1.8    martin 	struct bridge_iflist *bif;
    689       1.95     ozaki 	int s;
    690        1.8    martin 
    691       1.95     ozaki 	BRIDGE_PSZ_RENTER(s);
    692       1.87     ozaki 
    693       1.87     ozaki 	bif = member_ifp->if_bridgeif;
    694      1.115     ozaki 	if (bif != NULL) {
    695      1.115     ozaki 		psref_acquire(psref, &bif->bif_psref,
    696      1.115     ozaki 		    bridge_psref_class);
    697      1.115     ozaki 	}
    698       1.95     ozaki 
    699       1.95     ozaki 	BRIDGE_PSZ_REXIT(s);
    700       1.95     ozaki 
    701       1.95     ozaki 	return bif;
    702       1.95     ozaki }
    703       1.87     ozaki 
    704      1.115     ozaki static void
    705      1.115     ozaki bridge_acquire_member(struct bridge_softc *sc, struct bridge_iflist *bif,
    706      1.115     ozaki     struct psref *psref)
    707       1.95     ozaki {
    708      1.114     ozaki 
    709      1.115     ozaki 	psref_acquire(psref, &bif->bif_psref, bridge_psref_class);
    710       1.87     ozaki }
    711       1.87     ozaki 
    712       1.87     ozaki /*
    713       1.87     ozaki  * bridge_release_member:
    714       1.87     ozaki  *
    715       1.87     ozaki  *	Release the specified member interface.
    716       1.87     ozaki  */
    717       1.87     ozaki static void
    718      1.115     ozaki bridge_release_member(struct bridge_softc *sc, struct bridge_iflist *bif,
    719      1.115     ozaki     struct psref *psref)
    720       1.87     ozaki {
    721       1.95     ozaki 
    722      1.115     ozaki 	psref_release(psref, &bif->bif_psref, bridge_psref_class);
    723        1.8    martin }
    724        1.8    martin 
    725        1.8    martin /*
    726        1.1   thorpej  * bridge_delete_member:
    727        1.1   thorpej  *
    728        1.1   thorpej  *	Delete the specified member interface.
    729        1.1   thorpej  */
    730       1.33   thorpej static void
    731        1.1   thorpej bridge_delete_member(struct bridge_softc *sc, struct bridge_iflist *bif)
    732        1.1   thorpej {
    733        1.1   thorpej 	struct ifnet *ifs = bif->bif_ifp;
    734        1.1   thorpej 
    735       1.98     ozaki 	KASSERT(BRIDGE_LOCKED(sc));
    736        1.1   thorpej 
    737      1.106     ozaki 	ifs->_if_input = ether_input;
    738        1.1   thorpej 	ifs->if_bridge = NULL;
    739       1.87     ozaki 	ifs->if_bridgeif = NULL;
    740       1.87     ozaki 
    741      1.112     ozaki 	PSLIST_WRITER_REMOVE(bif, bif_next);
    742       1.95     ozaki 	BRIDGE_PSZ_PERFORM(sc);
    743      1.182  yamaguch 
    744      1.182  yamaguch 	if_linkstate_change_disestablish(ifs,
    745      1.182  yamaguch 	    bif->bif_linkstate_hook, BRIDGE_LOCK_OBJ(sc));
    746      1.183  yamaguch 	ether_ifdetachhook_disestablish(ifs,
    747      1.183  yamaguch 	    bif->bif_ifdetach_hook, BRIDGE_LOCK_OBJ(sc));
    748      1.182  yamaguch 
    749      1.115     ozaki 	BRIDGE_UNLOCK(sc);
    750       1.95     ozaki 
    751      1.164       rin 	switch (ifs->if_type) {
    752      1.164       rin 	case IFT_ETHER:
    753      1.164       rin 	case IFT_L2TP:
    754      1.164       rin 		/*
    755      1.164       rin 		 * Take the interface out of promiscuous mode.
    756      1.164       rin 		 * Don't call it with holding a spin lock.
    757      1.164       rin 		 */
    758      1.164       rin 		(void) ifpromisc(ifs, 0);
    759      1.164       rin 		IFNET_LOCK(ifs);
    760      1.164       rin 		(void) ether_disable_vlan_mtu(ifs);
    761      1.164       rin 		IFNET_UNLOCK(ifs);
    762      1.164       rin 		break;
    763      1.164       rin 	default:
    764      1.164       rin #ifdef DIAGNOSTIC
    765      1.164       rin 		panic("%s: impossible", __func__);
    766      1.164       rin #endif
    767      1.164       rin 		break;
    768      1.164       rin 	}
    769      1.164       rin 
    770      1.115     ozaki 	psref_target_destroy(&bif->bif_psref, bridge_psref_class);
    771        1.1   thorpej 
    772      1.113     ozaki 	PSLIST_ENTRY_DESTROY(bif, bif_next);
    773       1.93     ozaki 	kmem_free(bif, sizeof(*bif));
    774       1.98     ozaki 
    775       1.98     ozaki 	BRIDGE_LOCK(sc);
    776        1.1   thorpej }
    777        1.1   thorpej 
    778      1.161       rin /*
    779      1.161       rin  * bridge_calc_csum_flags:
    780      1.161       rin  *
    781      1.161       rin  *	Calculate logical and b/w csum flags each member interface supports.
    782      1.161       rin  */
    783      1.161       rin void
    784      1.161       rin bridge_calc_csum_flags(struct bridge_softc *sc)
    785      1.161       rin {
    786      1.161       rin 	struct bridge_iflist *bif;
    787      1.173  jdolecek 	struct ifnet *ifs = NULL;
    788      1.161       rin 	int flags = ~0;
    789      1.172  jdolecek 	int capenable = ~0;
    790      1.161       rin 
    791      1.161       rin 	BRIDGE_LOCK(sc);
    792      1.161       rin 	BRIDGE_IFLIST_READER_FOREACH(bif, sc) {
    793      1.161       rin 		ifs = bif->bif_ifp;
    794      1.161       rin 		flags &= ifs->if_csum_flags_tx;
    795      1.172  jdolecek 		capenable &= ifs->if_capenable;
    796      1.161       rin 	}
    797      1.161       rin 	sc->sc_csum_flags_tx = flags;
    798      1.173  jdolecek 	sc->sc_capenable = (ifs != NULL) ? capenable : 0;
    799      1.161       rin 	BRIDGE_UNLOCK(sc);
    800      1.161       rin }
    801      1.161       rin 
    802      1.175       roy /*
    803      1.175       roy  * bridge_calc_link_state:
    804      1.175       roy  *
    805      1.175       roy  *	Calculate the link state based on each member interface.
    806      1.175       roy  */
    807      1.182  yamaguch static void
    808      1.182  yamaguch bridge_calc_link_state(void *xsc)
    809      1.175       roy {
    810      1.182  yamaguch 	struct bridge_softc *sc = xsc;
    811      1.175       roy 	struct bridge_iflist *bif;
    812      1.175       roy 	struct ifnet *ifs;
    813      1.175       roy 	int link_state = LINK_STATE_DOWN;
    814      1.175       roy 
    815      1.175       roy 	BRIDGE_LOCK(sc);
    816      1.175       roy 	BRIDGE_IFLIST_READER_FOREACH(bif, sc) {
    817      1.175       roy 		ifs = bif->bif_ifp;
    818      1.175       roy 		if (ifs->if_link_state == LINK_STATE_UP) {
    819      1.175       roy 			link_state = LINK_STATE_UP;
    820      1.175       roy 			break;
    821      1.175       roy 		}
    822      1.175       roy 		if (ifs->if_link_state == LINK_STATE_UNKNOWN)
    823      1.175       roy 			link_state = LINK_STATE_UNKNOWN;
    824      1.175       roy 	}
    825      1.175       roy 	if_link_state_change(&sc->sc_if, link_state);
    826      1.175       roy 	BRIDGE_UNLOCK(sc);
    827      1.175       roy }
    828      1.175       roy 
    829       1.33   thorpej static int
    830        1.1   thorpej bridge_ioctl_add(struct bridge_softc *sc, void *arg)
    831        1.1   thorpej {
    832        1.1   thorpej 	struct ifbreq *req = arg;
    833        1.1   thorpej 	struct bridge_iflist *bif = NULL;
    834        1.1   thorpej 	struct ifnet *ifs;
    835        1.1   thorpej 	int error = 0;
    836      1.123     ozaki 	struct psref psref;
    837        1.1   thorpej 
    838      1.123     ozaki 	ifs = if_get(req->ifbr_ifsname, &psref);
    839        1.1   thorpej 	if (ifs == NULL)
    840      1.136   msaitoh 		return ENOENT;
    841        1.7    itojun 
    842      1.123     ozaki 	if (ifs->if_bridge == sc) {
    843      1.123     ozaki 		error = EEXIST;
    844      1.123     ozaki 		goto out;
    845      1.123     ozaki 	}
    846        1.1   thorpej 
    847      1.123     ozaki 	if (ifs->if_bridge != NULL) {
    848      1.123     ozaki 		error = EBUSY;
    849      1.123     ozaki 		goto out;
    850      1.123     ozaki 	}
    851        1.1   thorpej 
    852      1.123     ozaki 	if (ifs->_if_input != ether_input) {
    853      1.123     ozaki 		error = EINVAL;
    854      1.123     ozaki 		goto out;
    855      1.123     ozaki 	}
    856       1.81     ozaki 
    857       1.91     ozaki 	/* FIXME: doesn't work with non-IFF_SIMPLEX interfaces */
    858      1.123     ozaki 	if ((ifs->if_flags & IFF_SIMPLEX) == 0) {
    859      1.123     ozaki 		error = EINVAL;
    860      1.123     ozaki 		goto out;
    861      1.123     ozaki 	}
    862       1.91     ozaki 
    863       1.93     ozaki 	bif = kmem_alloc(sizeof(*bif), KM_SLEEP);
    864        1.1   thorpej 
    865        1.1   thorpej 	switch (ifs->if_type) {
    866        1.1   thorpej 	case IFT_ETHER:
    867      1.133  knakahar 		if (sc->sc_if.if_mtu != ifs->if_mtu) {
    868      1.171  jdolecek 			/* Change MTU of added interface to bridge MTU */
    869      1.171  jdolecek 			struct ifreq ifr;
    870      1.171  jdolecek 			memset(&ifr, 0, sizeof(ifr));
    871      1.171  jdolecek 			ifr.ifr_mtu = sc->sc_if.if_mtu;
    872      1.171  jdolecek 			IFNET_LOCK(ifs);
    873      1.185  riastrad 			error = if_ioctl(ifs, SIOCSIFMTU, &ifr);
    874      1.171  jdolecek 			IFNET_UNLOCK(ifs);
    875      1.171  jdolecek 			if (error != 0)
    876      1.171  jdolecek 				goto out;
    877      1.133  knakahar 		}
    878      1.133  knakahar 		/* FALLTHROUGH */
    879      1.133  knakahar 	case IFT_L2TP:
    880      1.145     ozaki 		IFNET_LOCK(ifs);
    881      1.144     ozaki 		error = ether_enable_vlan_mtu(ifs);
    882      1.145     ozaki 		IFNET_UNLOCK(ifs);
    883      1.142     ozaki 		if (error > 0)
    884      1.105  christos 			goto out;
    885        1.1   thorpej 		/*
    886        1.1   thorpej 		 * Place the interface into promiscuous mode.
    887        1.1   thorpej 		 */
    888        1.1   thorpej 		error = ifpromisc(ifs, 1);
    889        1.1   thorpej 		if (error)
    890        1.1   thorpej 			goto out;
    891        1.1   thorpej 		break;
    892        1.1   thorpej 	default:
    893        1.5  jdolecek 		error = EINVAL;
    894        1.5  jdolecek 		goto out;
    895        1.1   thorpej 	}
    896        1.1   thorpej 
    897        1.1   thorpej 	bif->bif_ifp = ifs;
    898        1.1   thorpej 	bif->bif_flags = IFBIF_LEARNING | IFBIF_DISCOVER;
    899        1.1   thorpej 	bif->bif_priority = BSTP_DEFAULT_PORT_PRIORITY;
    900        1.1   thorpej 	bif->bif_path_cost = BSTP_DEFAULT_PATH_COST;
    901      1.182  yamaguch 	bif->bif_linkstate_hook = if_linkstate_change_establish(ifs,
    902      1.182  yamaguch 	    bridge_calc_link_state, sc);
    903      1.112     ozaki 	PSLIST_ENTRY_INIT(bif, bif_next);
    904      1.115     ozaki 	psref_target_init(&bif->bif_psref, bridge_psref_class);
    905       1.87     ozaki 
    906       1.87     ozaki 	BRIDGE_LOCK(sc);
    907        1.1   thorpej 
    908        1.1   thorpej 	ifs->if_bridge = sc;
    909       1.87     ozaki 	ifs->if_bridgeif = bif;
    910      1.115     ozaki 	PSLIST_WRITER_INSERT_HEAD(&sc->sc_iflist_psref.bip_iflist, bif, bif_next);
    911      1.106     ozaki 	ifs->_if_input = bridge_input;
    912        1.1   thorpej 
    913       1.87     ozaki 	BRIDGE_UNLOCK(sc);
    914       1.87     ozaki 
    915      1.183  yamaguch 	bif->bif_ifdetach_hook = ether_ifdetachhook_establish(ifs,
    916      1.183  yamaguch 	    bridge_ifdetach, (void *)ifs);
    917      1.183  yamaguch 
    918      1.161       rin 	bridge_calc_csum_flags(sc);
    919      1.175       roy 	bridge_calc_link_state(sc);
    920      1.161       rin 
    921        1.1   thorpej 	if (sc->sc_if.if_flags & IFF_RUNNING)
    922        1.1   thorpej 		bstp_initialization(sc);
    923        1.1   thorpej 	else
    924        1.1   thorpej 		bstp_stop(sc);
    925        1.1   thorpej 
    926      1.161       rin out:
    927      1.123     ozaki 	if_put(ifs, &psref);
    928        1.1   thorpej 	if (error) {
    929        1.1   thorpej 		if (bif != NULL)
    930       1.93     ozaki 			kmem_free(bif, sizeof(*bif));
    931        1.1   thorpej 	}
    932      1.136   msaitoh 	return error;
    933        1.1   thorpej }
    934        1.1   thorpej 
    935       1.33   thorpej static int
    936        1.1   thorpej bridge_ioctl_del(struct bridge_softc *sc, void *arg)
    937        1.1   thorpej {
    938        1.1   thorpej 	struct ifbreq *req = arg;
    939       1.87     ozaki 	const char *name = req->ifbr_ifsname;
    940        1.1   thorpej 	struct bridge_iflist *bif;
    941       1.87     ozaki 	struct ifnet *ifs;
    942        1.1   thorpej 
    943       1.87     ozaki 	BRIDGE_LOCK(sc);
    944       1.87     ozaki 
    945       1.87     ozaki 	/*
    946       1.87     ozaki 	 * Don't use bridge_lookup_member. We want to get a member
    947       1.87     ozaki 	 * with bif_refs == 0.
    948       1.87     ozaki 	 */
    949      1.115     ozaki 	BRIDGE_IFLIST_WRITER_FOREACH(bif, sc) {
    950       1.87     ozaki 		ifs = bif->bif_ifp;
    951       1.87     ozaki 		if (strcmp(ifs->if_xname, name) == 0)
    952       1.87     ozaki 			break;
    953       1.87     ozaki 	}
    954       1.87     ozaki 
    955       1.87     ozaki 	if (bif == NULL) {
    956       1.87     ozaki 		BRIDGE_UNLOCK(sc);
    957       1.87     ozaki 		return ENOENT;
    958       1.87     ozaki 	}
    959        1.1   thorpej 
    960        1.1   thorpej 	bridge_delete_member(sc, bif);
    961        1.1   thorpej 
    962       1.98     ozaki 	BRIDGE_UNLOCK(sc);
    963       1.87     ozaki 
    964       1.87     ozaki 	bridge_rtdelete(sc, ifs);
    965      1.161       rin 	bridge_calc_csum_flags(sc);
    966      1.175       roy 	bridge_calc_link_state(sc);
    967       1.87     ozaki 
    968       1.87     ozaki 	if (sc->sc_if.if_flags & IFF_RUNNING)
    969       1.87     ozaki 		bstp_initialization(sc);
    970       1.87     ozaki 
    971       1.87     ozaki 	return 0;
    972        1.1   thorpej }
    973        1.1   thorpej 
    974       1.33   thorpej static int
    975        1.1   thorpej bridge_ioctl_gifflags(struct bridge_softc *sc, void *arg)
    976        1.1   thorpej {
    977        1.1   thorpej 	struct ifbreq *req = arg;
    978        1.1   thorpej 	struct bridge_iflist *bif;
    979      1.115     ozaki 	struct psref psref;
    980        1.1   thorpej 
    981      1.115     ozaki 	bif = bridge_lookup_member(sc, req->ifbr_ifsname, &psref);
    982        1.1   thorpej 	if (bif == NULL)
    983      1.136   msaitoh 		return ENOENT;
    984        1.1   thorpej 
    985        1.1   thorpej 	req->ifbr_ifsflags = bif->bif_flags;
    986        1.1   thorpej 	req->ifbr_state = bif->bif_state;
    987        1.1   thorpej 	req->ifbr_priority = bif->bif_priority;
    988       1.11    bouyer 	req->ifbr_path_cost = bif->bif_path_cost;
    989        1.1   thorpej 	req->ifbr_portno = bif->bif_ifp->if_index & 0xff;
    990        1.1   thorpej 
    991      1.115     ozaki 	bridge_release_member(sc, bif, &psref);
    992       1.87     ozaki 
    993      1.136   msaitoh 	return 0;
    994        1.1   thorpej }
    995        1.1   thorpej 
    996       1.33   thorpej static int
    997        1.1   thorpej bridge_ioctl_sifflags(struct bridge_softc *sc, void *arg)
    998        1.1   thorpej {
    999        1.1   thorpej 	struct ifbreq *req = arg;
   1000        1.1   thorpej 	struct bridge_iflist *bif;
   1001      1.115     ozaki 	struct psref psref;
   1002        1.1   thorpej 
   1003      1.115     ozaki 	bif = bridge_lookup_member(sc, req->ifbr_ifsname, &psref);
   1004        1.1   thorpej 	if (bif == NULL)
   1005      1.136   msaitoh 		return ENOENT;
   1006        1.1   thorpej 
   1007        1.1   thorpej 	if (req->ifbr_ifsflags & IFBIF_STP) {
   1008        1.1   thorpej 		switch (bif->bif_ifp->if_type) {
   1009        1.1   thorpej 		case IFT_ETHER:
   1010      1.133  knakahar 		case IFT_L2TP:
   1011        1.1   thorpej 			/* These can do spanning tree. */
   1012        1.1   thorpej 			break;
   1013        1.1   thorpej 
   1014        1.1   thorpej 		default:
   1015        1.1   thorpej 			/* Nothing else can. */
   1016      1.115     ozaki 			bridge_release_member(sc, bif, &psref);
   1017      1.136   msaitoh 			return EINVAL;
   1018        1.1   thorpej 		}
   1019        1.1   thorpej 	}
   1020        1.1   thorpej 
   1021  1.189.4.2    martin 	if (bif->bif_flags & IFBIF_PROTECTED) {
   1022  1.189.4.2    martin 		if ((req->ifbr_ifsflags & IFBIF_PROTECTED) == 0) {
   1023  1.189.4.2    martin 			log(LOG_INFO, "%s: disabling protection on %s\n",
   1024  1.189.4.2    martin 			    sc->sc_if.if_xname, bif->bif_ifp->if_xname);
   1025  1.189.4.2    martin 		}
   1026  1.189.4.2    martin 	} else {
   1027  1.189.4.2    martin 		if (req->ifbr_ifsflags & IFBIF_PROTECTED) {
   1028  1.189.4.2    martin 			log(LOG_INFO, "%s: enabling protection on %s\n",
   1029  1.189.4.2    martin 			    sc->sc_if.if_xname, bif->bif_ifp->if_xname);
   1030  1.189.4.2    martin 		}
   1031  1.189.4.2    martin 	}
   1032  1.189.4.2    martin 
   1033        1.1   thorpej 	bif->bif_flags = req->ifbr_ifsflags;
   1034        1.1   thorpej 
   1035      1.115     ozaki 	bridge_release_member(sc, bif, &psref);
   1036       1.87     ozaki 
   1037        1.1   thorpej 	if (sc->sc_if.if_flags & IFF_RUNNING)
   1038        1.1   thorpej 		bstp_initialization(sc);
   1039        1.1   thorpej 
   1040      1.136   msaitoh 	return 0;
   1041        1.1   thorpej }
   1042        1.1   thorpej 
   1043       1.33   thorpej static int
   1044        1.1   thorpej bridge_ioctl_scache(struct bridge_softc *sc, void *arg)
   1045        1.1   thorpej {
   1046        1.1   thorpej 	struct ifbrparam *param = arg;
   1047        1.1   thorpej 
   1048        1.1   thorpej 	sc->sc_brtmax = param->ifbrp_csize;
   1049        1.1   thorpej 	bridge_rttrim(sc);
   1050        1.1   thorpej 
   1051      1.136   msaitoh 	return 0;
   1052        1.1   thorpej }
   1053        1.1   thorpej 
   1054       1.33   thorpej static int
   1055        1.1   thorpej bridge_ioctl_gcache(struct bridge_softc *sc, void *arg)
   1056        1.1   thorpej {
   1057        1.1   thorpej 	struct ifbrparam *param = arg;
   1058        1.1   thorpej 
   1059        1.1   thorpej 	param->ifbrp_csize = sc->sc_brtmax;
   1060        1.1   thorpej 
   1061      1.136   msaitoh 	return 0;
   1062        1.1   thorpej }
   1063        1.1   thorpej 
   1064       1.33   thorpej static int
   1065        1.1   thorpej bridge_ioctl_gifs(struct bridge_softc *sc, void *arg)
   1066        1.1   thorpej {
   1067        1.1   thorpej 	struct ifbifconf *bifc = arg;
   1068        1.1   thorpej 	struct bridge_iflist *bif;
   1069       1.90     ozaki 	struct ifbreq *breqs;
   1070       1.90     ozaki 	int i, count, error = 0;
   1071        1.1   thorpej 
   1072       1.93     ozaki retry:
   1073       1.87     ozaki 	BRIDGE_LOCK(sc);
   1074        1.1   thorpej 	count = 0;
   1075      1.115     ozaki 	BRIDGE_IFLIST_WRITER_FOREACH(bif, sc)
   1076        1.1   thorpej 		count++;
   1077       1.93     ozaki 	BRIDGE_UNLOCK(sc);
   1078       1.93     ozaki 
   1079       1.93     ozaki 	if (count == 0) {
   1080       1.93     ozaki 		bifc->ifbic_len = 0;
   1081       1.93     ozaki 		return 0;
   1082       1.93     ozaki 	}
   1083        1.1   thorpej 
   1084       1.90     ozaki 	if (bifc->ifbic_len == 0 || bifc->ifbic_len < (sizeof(*breqs) * count)) {
   1085       1.90     ozaki 		/* Tell that a larger buffer is needed */
   1086       1.90     ozaki 		bifc->ifbic_len = sizeof(*breqs) * count;
   1087       1.90     ozaki 		return 0;
   1088        1.1   thorpej 	}
   1089        1.1   thorpej 
   1090       1.93     ozaki 	breqs = kmem_alloc(sizeof(*breqs) * count, KM_SLEEP);
   1091       1.93     ozaki 
   1092       1.93     ozaki 	BRIDGE_LOCK(sc);
   1093       1.93     ozaki 
   1094       1.93     ozaki 	i = 0;
   1095      1.115     ozaki 	BRIDGE_IFLIST_WRITER_FOREACH(bif, sc)
   1096       1.93     ozaki 		i++;
   1097       1.93     ozaki 	if (i > count) {
   1098       1.93     ozaki 		/*
   1099       1.93     ozaki 		 * The number of members has been increased.
   1100       1.93     ozaki 		 * We need more memory!
   1101       1.93     ozaki 		 */
   1102       1.93     ozaki 		BRIDGE_UNLOCK(sc);
   1103       1.93     ozaki 		kmem_free(breqs, sizeof(*breqs) * count);
   1104       1.93     ozaki 		goto retry;
   1105       1.93     ozaki 	}
   1106       1.90     ozaki 
   1107       1.90     ozaki 	i = 0;
   1108      1.115     ozaki 	BRIDGE_IFLIST_WRITER_FOREACH(bif, sc) {
   1109       1.90     ozaki 		struct ifbreq *breq = &breqs[i++];
   1110       1.90     ozaki 		memset(breq, 0, sizeof(*breq));
   1111       1.90     ozaki 
   1112       1.90     ozaki 		strlcpy(breq->ifbr_ifsname, bif->bif_ifp->if_xname,
   1113       1.90     ozaki 		    sizeof(breq->ifbr_ifsname));
   1114       1.90     ozaki 		breq->ifbr_ifsflags = bif->bif_flags;
   1115       1.90     ozaki 		breq->ifbr_state = bif->bif_state;
   1116       1.90     ozaki 		breq->ifbr_priority = bif->bif_priority;
   1117       1.90     ozaki 		breq->ifbr_path_cost = bif->bif_path_cost;
   1118       1.90     ozaki 		breq->ifbr_portno = bif->bif_ifp->if_index & 0xff;
   1119       1.90     ozaki 	}
   1120       1.90     ozaki 
   1121       1.90     ozaki 	/* Don't call copyout with holding the mutex */
   1122       1.90     ozaki 	BRIDGE_UNLOCK(sc);
   1123        1.1   thorpej 
   1124       1.90     ozaki 	for (i = 0; i < count; i++) {
   1125       1.90     ozaki 		error = copyout(&breqs[i], bifc->ifbic_req + i, sizeof(*breqs));
   1126        1.1   thorpej 		if (error)
   1127        1.1   thorpej 			break;
   1128        1.1   thorpej 	}
   1129       1.90     ozaki 	bifc->ifbic_len = sizeof(*breqs) * i;
   1130        1.1   thorpej 
   1131       1.93     ozaki 	kmem_free(breqs, sizeof(*breqs) * count);
   1132       1.87     ozaki 
   1133       1.90     ozaki 	return error;
   1134        1.1   thorpej }
   1135        1.1   thorpej 
   1136       1.33   thorpej static int
   1137        1.1   thorpej bridge_ioctl_rts(struct bridge_softc *sc, void *arg)
   1138        1.1   thorpej {
   1139        1.1   thorpej 	struct ifbaconf *bac = arg;
   1140        1.1   thorpej 	struct bridge_rtnode *brt;
   1141        1.1   thorpej 	struct ifbareq bareq;
   1142        1.1   thorpej 	int count = 0, error = 0, len;
   1143        1.1   thorpej 
   1144        1.1   thorpej 	if (bac->ifbac_len == 0)
   1145      1.136   msaitoh 		return 0;
   1146        1.1   thorpej 
   1147      1.108     ozaki 	BRIDGE_RT_LOCK(sc);
   1148       1.87     ozaki 
   1149      1.160     ozaki 	/* The passed buffer is not enough, tell a required size. */
   1150      1.160     ozaki 	if (bac->ifbac_len < (sizeof(bareq) * sc->sc_brtcnt)) {
   1151      1.160     ozaki 		count = sc->sc_brtcnt;
   1152      1.160     ozaki 		goto out;
   1153      1.160     ozaki 	}
   1154      1.160     ozaki 
   1155        1.1   thorpej 	len = bac->ifbac_len;
   1156      1.152     ozaki 	BRIDGE_RTLIST_WRITER_FOREACH(brt, sc) {
   1157        1.1   thorpej 		if (len < sizeof(bareq))
   1158        1.1   thorpej 			goto out;
   1159       1.35  christos 		memset(&bareq, 0, sizeof(bareq));
   1160       1.13    itojun 		strlcpy(bareq.ifba_ifsname, brt->brt_ifp->if_xname,
   1161       1.13    itojun 		    sizeof(bareq.ifba_ifsname));
   1162        1.1   thorpej 		memcpy(bareq.ifba_dst, brt->brt_addr, sizeof(brt->brt_addr));
   1163       1.39    kardel 		if ((brt->brt_flags & IFBAF_TYPEMASK) == IFBAF_DYNAMIC) {
   1164       1.39    kardel 			bareq.ifba_expire = brt->brt_expire - time_uptime;
   1165       1.39    kardel 		} else
   1166        1.2   thorpej 			bareq.ifba_expire = 0;
   1167        1.1   thorpej 		bareq.ifba_flags = brt->brt_flags;
   1168        1.1   thorpej 
   1169        1.1   thorpej 		error = copyout(&bareq, bac->ifbac_req + count, sizeof(bareq));
   1170        1.1   thorpej 		if (error)
   1171        1.1   thorpej 			goto out;
   1172        1.1   thorpej 		count++;
   1173        1.1   thorpej 		len -= sizeof(bareq);
   1174        1.1   thorpej 	}
   1175      1.161       rin out:
   1176      1.108     ozaki 	BRIDGE_RT_UNLOCK(sc);
   1177       1.87     ozaki 
   1178        1.1   thorpej 	bac->ifbac_len = sizeof(bareq) * count;
   1179      1.136   msaitoh 	return error;
   1180        1.1   thorpej }
   1181        1.1   thorpej 
   1182       1.33   thorpej static int
   1183        1.1   thorpej bridge_ioctl_saddr(struct bridge_softc *sc, void *arg)
   1184        1.1   thorpej {
   1185        1.1   thorpej 	struct ifbareq *req = arg;
   1186        1.1   thorpej 	struct bridge_iflist *bif;
   1187        1.1   thorpej 	int error;
   1188      1.115     ozaki 	struct psref psref;
   1189        1.1   thorpej 
   1190      1.115     ozaki 	bif = bridge_lookup_member(sc, req->ifba_ifsname, &psref);
   1191        1.1   thorpej 	if (bif == NULL)
   1192      1.136   msaitoh 		return ENOENT;
   1193        1.1   thorpej 
   1194        1.1   thorpej 	error = bridge_rtupdate(sc, req->ifba_dst, bif->bif_ifp, 1,
   1195        1.1   thorpej 	    req->ifba_flags);
   1196        1.1   thorpej 
   1197      1.115     ozaki 	bridge_release_member(sc, bif, &psref);
   1198       1.87     ozaki 
   1199      1.136   msaitoh 	return error;
   1200        1.1   thorpej }
   1201        1.1   thorpej 
   1202       1.33   thorpej static int
   1203        1.1   thorpej bridge_ioctl_sto(struct bridge_softc *sc, void *arg)
   1204        1.1   thorpej {
   1205        1.1   thorpej 	struct ifbrparam *param = arg;
   1206        1.1   thorpej 
   1207        1.1   thorpej 	sc->sc_brttimeout = param->ifbrp_ctime;
   1208        1.1   thorpej 
   1209      1.136   msaitoh 	return 0;
   1210        1.1   thorpej }
   1211        1.1   thorpej 
   1212       1.33   thorpej static int
   1213        1.1   thorpej bridge_ioctl_gto(struct bridge_softc *sc, void *arg)
   1214        1.1   thorpej {
   1215        1.1   thorpej 	struct ifbrparam *param = arg;
   1216        1.1   thorpej 
   1217        1.1   thorpej 	param->ifbrp_ctime = sc->sc_brttimeout;
   1218        1.1   thorpej 
   1219      1.136   msaitoh 	return 0;
   1220        1.1   thorpej }
   1221        1.1   thorpej 
   1222       1.33   thorpej static int
   1223        1.1   thorpej bridge_ioctl_daddr(struct bridge_softc *sc, void *arg)
   1224        1.1   thorpej {
   1225        1.1   thorpej 	struct ifbareq *req = arg;
   1226        1.1   thorpej 
   1227        1.1   thorpej 	return (bridge_rtdaddr(sc, req->ifba_dst));
   1228        1.1   thorpej }
   1229        1.1   thorpej 
   1230       1.33   thorpej static int
   1231        1.1   thorpej bridge_ioctl_flush(struct bridge_softc *sc, void *arg)
   1232        1.1   thorpej {
   1233        1.1   thorpej 	struct ifbreq *req = arg;
   1234        1.1   thorpej 
   1235        1.1   thorpej 	bridge_rtflush(sc, req->ifbr_ifsflags);
   1236        1.1   thorpej 
   1237      1.136   msaitoh 	return 0;
   1238        1.1   thorpej }
   1239        1.1   thorpej 
   1240       1.33   thorpej static int
   1241        1.1   thorpej bridge_ioctl_gpri(struct bridge_softc *sc, void *arg)
   1242        1.1   thorpej {
   1243        1.1   thorpej 	struct ifbrparam *param = arg;
   1244        1.1   thorpej 
   1245        1.1   thorpej 	param->ifbrp_prio = sc->sc_bridge_priority;
   1246        1.1   thorpej 
   1247      1.136   msaitoh 	return 0;
   1248        1.1   thorpej }
   1249        1.1   thorpej 
   1250       1.33   thorpej static int
   1251        1.1   thorpej bridge_ioctl_spri(struct bridge_softc *sc, void *arg)
   1252        1.1   thorpej {
   1253        1.1   thorpej 	struct ifbrparam *param = arg;
   1254        1.1   thorpej 
   1255        1.1   thorpej 	sc->sc_bridge_priority = param->ifbrp_prio;
   1256        1.1   thorpej 
   1257        1.1   thorpej 	if (sc->sc_if.if_flags & IFF_RUNNING)
   1258        1.1   thorpej 		bstp_initialization(sc);
   1259        1.1   thorpej 
   1260      1.136   msaitoh 	return 0;
   1261        1.1   thorpej }
   1262        1.1   thorpej 
   1263       1.33   thorpej static int
   1264        1.1   thorpej bridge_ioctl_ght(struct bridge_softc *sc, void *arg)
   1265        1.1   thorpej {
   1266        1.1   thorpej 	struct ifbrparam *param = arg;
   1267        1.1   thorpej 
   1268        1.1   thorpej 	param->ifbrp_hellotime = sc->sc_bridge_hello_time >> 8;
   1269        1.1   thorpej 
   1270      1.136   msaitoh 	return 0;
   1271        1.1   thorpej }
   1272        1.1   thorpej 
   1273       1.33   thorpej static int
   1274        1.1   thorpej bridge_ioctl_sht(struct bridge_softc *sc, void *arg)
   1275        1.1   thorpej {
   1276        1.1   thorpej 	struct ifbrparam *param = arg;
   1277        1.1   thorpej 
   1278        1.1   thorpej 	if (param->ifbrp_hellotime == 0)
   1279      1.136   msaitoh 		return EINVAL;
   1280        1.1   thorpej 	sc->sc_bridge_hello_time = param->ifbrp_hellotime << 8;
   1281        1.1   thorpej 
   1282        1.1   thorpej 	if (sc->sc_if.if_flags & IFF_RUNNING)
   1283        1.1   thorpej 		bstp_initialization(sc);
   1284        1.1   thorpej 
   1285      1.136   msaitoh 	return 0;
   1286        1.1   thorpej }
   1287        1.1   thorpej 
   1288       1.33   thorpej static int
   1289        1.1   thorpej bridge_ioctl_gfd(struct bridge_softc *sc, void *arg)
   1290        1.1   thorpej {
   1291        1.1   thorpej 	struct ifbrparam *param = arg;
   1292        1.1   thorpej 
   1293        1.1   thorpej 	param->ifbrp_fwddelay = sc->sc_bridge_forward_delay >> 8;
   1294        1.1   thorpej 
   1295      1.136   msaitoh 	return 0;
   1296        1.1   thorpej }
   1297        1.1   thorpej 
   1298       1.33   thorpej static int
   1299        1.1   thorpej bridge_ioctl_sfd(struct bridge_softc *sc, void *arg)
   1300        1.1   thorpej {
   1301       1.29     perry 	struct ifbrparam *param = arg;
   1302        1.1   thorpej 
   1303        1.1   thorpej 	if (param->ifbrp_fwddelay == 0)
   1304      1.136   msaitoh 		return EINVAL;
   1305        1.1   thorpej 	sc->sc_bridge_forward_delay = param->ifbrp_fwddelay << 8;
   1306        1.1   thorpej 
   1307        1.1   thorpej 	if (sc->sc_if.if_flags & IFF_RUNNING)
   1308        1.1   thorpej 		bstp_initialization(sc);
   1309        1.1   thorpej 
   1310      1.136   msaitoh 	return 0;
   1311        1.1   thorpej }
   1312        1.1   thorpej 
   1313       1.33   thorpej static int
   1314        1.1   thorpej bridge_ioctl_gma(struct bridge_softc *sc, void *arg)
   1315        1.1   thorpej {
   1316        1.1   thorpej 	struct ifbrparam *param = arg;
   1317        1.1   thorpej 
   1318        1.1   thorpej 	param->ifbrp_maxage = sc->sc_bridge_max_age >> 8;
   1319        1.1   thorpej 
   1320      1.136   msaitoh 	return 0;
   1321        1.1   thorpej }
   1322        1.1   thorpej 
   1323       1.33   thorpej static int
   1324        1.1   thorpej bridge_ioctl_sma(struct bridge_softc *sc, void *arg)
   1325        1.1   thorpej {
   1326        1.1   thorpej 	struct ifbrparam *param = arg;
   1327        1.1   thorpej 
   1328        1.1   thorpej 	if (param->ifbrp_maxage == 0)
   1329      1.136   msaitoh 		return EINVAL;
   1330        1.1   thorpej 	sc->sc_bridge_max_age = param->ifbrp_maxage << 8;
   1331        1.1   thorpej 
   1332        1.1   thorpej 	if (sc->sc_if.if_flags & IFF_RUNNING)
   1333        1.1   thorpej 		bstp_initialization(sc);
   1334        1.1   thorpej 
   1335      1.136   msaitoh 	return 0;
   1336        1.1   thorpej }
   1337        1.1   thorpej 
   1338       1.33   thorpej static int
   1339        1.1   thorpej bridge_ioctl_sifprio(struct bridge_softc *sc, void *arg)
   1340        1.1   thorpej {
   1341        1.1   thorpej 	struct ifbreq *req = arg;
   1342        1.1   thorpej 	struct bridge_iflist *bif;
   1343      1.115     ozaki 	struct psref psref;
   1344        1.1   thorpej 
   1345      1.115     ozaki 	bif = bridge_lookup_member(sc, req->ifbr_ifsname, &psref);
   1346        1.1   thorpej 	if (bif == NULL)
   1347      1.136   msaitoh 		return ENOENT;
   1348        1.1   thorpej 
   1349        1.1   thorpej 	bif->bif_priority = req->ifbr_priority;
   1350        1.1   thorpej 
   1351        1.1   thorpej 	if (sc->sc_if.if_flags & IFF_RUNNING)
   1352        1.1   thorpej 		bstp_initialization(sc);
   1353        1.1   thorpej 
   1354      1.115     ozaki 	bridge_release_member(sc, bif, &psref);
   1355       1.87     ozaki 
   1356      1.136   msaitoh 	return 0;
   1357        1.1   thorpej }
   1358        1.1   thorpej 
   1359       1.33   thorpej static int
   1360        1.9  perseant bridge_ioctl_gfilt(struct bridge_softc *sc, void *arg)
   1361        1.9  perseant {
   1362        1.9  perseant 	struct ifbrparam *param = arg;
   1363        1.9  perseant 
   1364        1.9  perseant 	param->ifbrp_filter = sc->sc_filter_flags;
   1365        1.9  perseant 
   1366      1.136   msaitoh 	return 0;
   1367        1.9  perseant }
   1368        1.9  perseant 
   1369       1.33   thorpej static int
   1370        1.9  perseant bridge_ioctl_sfilt(struct bridge_softc *sc, void *arg)
   1371        1.9  perseant {
   1372       1.29     perry 	struct ifbrparam *param = arg;
   1373        1.9  perseant 	uint32_t nflags, oflags;
   1374        1.9  perseant 
   1375        1.9  perseant 	if (param->ifbrp_filter & ~IFBF_FILT_MASK)
   1376      1.136   msaitoh 		return EINVAL;
   1377        1.9  perseant 
   1378        1.9  perseant 	nflags = param->ifbrp_filter;
   1379        1.9  perseant 	oflags = sc->sc_filter_flags;
   1380        1.9  perseant 
   1381        1.9  perseant 	if ((nflags & IFBF_FILT_USEIPF) && !(oflags & IFBF_FILT_USEIPF)) {
   1382        1.9  perseant 		pfil_add_hook((void *)bridge_ipf, NULL, PFIL_IN|PFIL_OUT,
   1383       1.77     rmind 			sc->sc_if.if_pfil);
   1384        1.9  perseant 	}
   1385        1.9  perseant 	if (!(nflags & IFBF_FILT_USEIPF) && (oflags & IFBF_FILT_USEIPF)) {
   1386        1.9  perseant 		pfil_remove_hook((void *)bridge_ipf, NULL, PFIL_IN|PFIL_OUT,
   1387       1.77     rmind 			sc->sc_if.if_pfil);
   1388        1.9  perseant 	}
   1389        1.9  perseant 
   1390        1.9  perseant 	sc->sc_filter_flags = nflags;
   1391        1.9  perseant 
   1392      1.136   msaitoh 	return 0;
   1393        1.9  perseant }
   1394        1.9  perseant 
   1395       1.33   thorpej static int
   1396       1.11    bouyer bridge_ioctl_sifcost(struct bridge_softc *sc, void *arg)
   1397       1.11    bouyer {
   1398       1.11    bouyer 	struct ifbreq *req = arg;
   1399       1.11    bouyer 	struct bridge_iflist *bif;
   1400      1.115     ozaki 	struct psref psref;
   1401       1.11    bouyer 
   1402      1.115     ozaki 	bif = bridge_lookup_member(sc, req->ifbr_ifsname, &psref);
   1403       1.11    bouyer 	if (bif == NULL)
   1404      1.136   msaitoh 		return ENOENT;
   1405       1.11    bouyer 
   1406       1.11    bouyer 	bif->bif_path_cost = req->ifbr_path_cost;
   1407       1.11    bouyer 
   1408       1.11    bouyer 	if (sc->sc_if.if_flags & IFF_RUNNING)
   1409       1.11    bouyer 		bstp_initialization(sc);
   1410       1.11    bouyer 
   1411      1.115     ozaki 	bridge_release_member(sc, bif, &psref);
   1412       1.87     ozaki 
   1413      1.136   msaitoh 	return 0;
   1414       1.11    bouyer }
   1415       1.11    bouyer 
   1416        1.1   thorpej /*
   1417        1.1   thorpej  * bridge_ifdetach:
   1418        1.1   thorpej  *
   1419        1.1   thorpej  *	Detach an interface from a bridge.  Called when a member
   1420        1.1   thorpej  *	interface is detaching.
   1421        1.1   thorpej  */
   1422      1.183  yamaguch static void
   1423      1.183  yamaguch bridge_ifdetach(void *xifs)
   1424        1.1   thorpej {
   1425      1.183  yamaguch 	struct ifnet *ifs;
   1426      1.183  yamaguch 	struct bridge_softc *sc;
   1427        1.1   thorpej 	struct ifbreq breq;
   1428        1.1   thorpej 
   1429      1.183  yamaguch 	ifs = (struct ifnet *)xifs;
   1430      1.183  yamaguch 	sc = ifs->if_bridge;
   1431      1.183  yamaguch 
   1432       1.87     ozaki 	/* ioctl_lock should prevent this from happening */
   1433       1.87     ozaki 	KASSERT(sc != NULL);
   1434       1.87     ozaki 
   1435        1.1   thorpej 	memset(&breq, 0, sizeof(breq));
   1436      1.183  yamaguch 	strlcpy(breq.ifbr_ifsname, ifs->if_xname, sizeof(breq.ifbr_ifsname));
   1437        1.1   thorpej 
   1438        1.1   thorpej 	(void) bridge_ioctl_del(sc, &breq);
   1439        1.1   thorpej }
   1440        1.1   thorpej 
   1441        1.1   thorpej /*
   1442        1.1   thorpej  * bridge_init:
   1443        1.1   thorpej  *
   1444        1.1   thorpej  *	Initialize a bridge interface.
   1445        1.1   thorpej  */
   1446       1.33   thorpej static int
   1447        1.1   thorpej bridge_init(struct ifnet *ifp)
   1448        1.1   thorpej {
   1449        1.1   thorpej 	struct bridge_softc *sc = ifp->if_softc;
   1450        1.1   thorpej 
   1451      1.143     ozaki 	KASSERT((ifp->if_flags & IFF_RUNNING) == 0);
   1452        1.1   thorpej 
   1453  1.189.4.3    martin 	BRIDGE_LOCK(sc);
   1454  1.189.4.3    martin 	sc->sc_stopping = false;
   1455  1.189.4.3    martin 	BRIDGE_UNLOCK(sc);
   1456  1.189.4.3    martin 
   1457        1.1   thorpej 	callout_reset(&sc->sc_brcallout, bridge_rtable_prune_period * hz,
   1458        1.1   thorpej 	    bridge_timer, sc);
   1459      1.143     ozaki 	bstp_initialization(sc);
   1460        1.1   thorpej 
   1461        1.1   thorpej 	ifp->if_flags |= IFF_RUNNING;
   1462      1.136   msaitoh 	return 0;
   1463        1.1   thorpej }
   1464        1.1   thorpej 
   1465        1.1   thorpej /*
   1466        1.1   thorpej  * bridge_stop:
   1467        1.1   thorpej  *
   1468        1.1   thorpej  *	Stop the bridge interface.
   1469        1.1   thorpej  */
   1470       1.33   thorpej static void
   1471       1.45  christos bridge_stop(struct ifnet *ifp, int disable)
   1472        1.1   thorpej {
   1473        1.1   thorpej 	struct bridge_softc *sc = ifp->if_softc;
   1474        1.1   thorpej 
   1475      1.143     ozaki 	KASSERT((ifp->if_flags & IFF_RUNNING) != 0);
   1476      1.143     ozaki 	ifp->if_flags &= ~IFF_RUNNING;
   1477        1.1   thorpej 
   1478  1.189.4.3    martin 	BRIDGE_LOCK(sc);
   1479  1.189.4.3    martin 	sc->sc_stopping = true;
   1480  1.189.4.3    martin 	BRIDGE_UNLOCK(sc);
   1481  1.189.4.3    martin 
   1482      1.147     ozaki 	callout_halt(&sc->sc_brcallout, NULL);
   1483      1.147     ozaki 	workqueue_wait(sc->sc_rtage_wq, &sc->sc_rtage_wk);
   1484        1.1   thorpej 	bstp_stop(sc);
   1485        1.1   thorpej 	bridge_rtflush(sc, IFBF_FLUSHDYN);
   1486        1.1   thorpej }
   1487        1.1   thorpej 
   1488        1.1   thorpej /*
   1489        1.1   thorpej  * bridge_enqueue:
   1490        1.1   thorpej  *
   1491        1.1   thorpej  *	Enqueue a packet on a bridge member interface.
   1492        1.1   thorpej  */
   1493       1.33   thorpej void
   1494       1.18       jdc bridge_enqueue(struct bridge_softc *sc, struct ifnet *dst_ifp, struct mbuf *m,
   1495       1.18       jdc     int runfilt)
   1496        1.1   thorpej {
   1497        1.1   thorpej 	int len, error;
   1498        1.1   thorpej 	short mflags;
   1499        1.1   thorpej 
   1500       1.18       jdc 	if (runfilt) {
   1501       1.77     rmind 		if (pfil_run_hooks(sc->sc_if.if_pfil, &m,
   1502       1.22       jdc 		    dst_ifp, PFIL_OUT) != 0) {
   1503       1.22       jdc 			if (m != NULL)
   1504       1.22       jdc 				m_freem(m);
   1505       1.18       jdc 			return;
   1506       1.18       jdc 		}
   1507       1.22       jdc 		if (m == NULL)
   1508       1.22       jdc 			return;
   1509        1.9  perseant 	}
   1510        1.9  perseant 
   1511        1.1   thorpej #ifdef ALTQ
   1512      1.126  knakahar 	KERNEL_LOCK(1, NULL);
   1513        1.1   thorpej 	/*
   1514        1.1   thorpej 	 * If ALTQ is enabled on the member interface, do
   1515        1.1   thorpej 	 * classification; the queueing discipline might
   1516        1.1   thorpej 	 * not require classification, but might require
   1517        1.1   thorpej 	 * the address family/header pointer in the pktattr.
   1518        1.1   thorpej 	 */
   1519        1.1   thorpej 	if (ALTQ_IS_ENABLED(&dst_ifp->if_snd)) {
   1520        1.1   thorpej 		/* XXX IFT_ETHER */
   1521      1.116  knakahar 		altq_etherclassify(&dst_ifp->if_snd, m);
   1522        1.1   thorpej 	}
   1523      1.126  knakahar 	KERNEL_UNLOCK_ONE(NULL);
   1524        1.1   thorpej #endif /* ALTQ */
   1525        1.1   thorpej 
   1526      1.187  yamaguch 	if (vlan_has_tag(m) &&
   1527      1.187  yamaguch 	    !vlan_is_hwtag_enabled(dst_ifp)) {
   1528      1.187  yamaguch 		(void)ether_inject_vlantag(&m, ETHERTYPE_VLAN,
   1529      1.187  yamaguch 		    vlan_get_tag(m));
   1530      1.187  yamaguch 		if (m == NULL) {
   1531      1.187  yamaguch 			if_statinc(&sc->sc_if, if_oerrors);
   1532      1.187  yamaguch 			return;
   1533      1.187  yamaguch 		}
   1534      1.187  yamaguch 	}
   1535      1.187  yamaguch 
   1536        1.1   thorpej 	len = m->m_pkthdr.len;
   1537        1.1   thorpej 	mflags = m->m_flags;
   1538       1.87     ozaki 
   1539      1.129  knakahar 	error = if_transmit_lock(dst_ifp, m);
   1540        1.1   thorpej 	if (error) {
   1541        1.1   thorpej 		/* mbuf is already freed */
   1542      1.166   thorpej 		if_statinc(&sc->sc_if, if_oerrors);
   1543        1.1   thorpej 		return;
   1544        1.1   thorpej 	}
   1545        1.1   thorpej 
   1546      1.166   thorpej 	net_stat_ref_t nsr = IF_STAT_GETREF(&sc->sc_if);
   1547      1.166   thorpej 	if_statinc_ref(nsr, if_opackets);
   1548      1.166   thorpej 	if_statadd_ref(nsr, if_obytes, len);
   1549      1.121  knakahar 	if (mflags & M_MCAST)
   1550      1.166   thorpej 		if_statinc_ref(nsr, if_omcasts);
   1551      1.166   thorpej 	IF_STAT_PUTREF(&sc->sc_if);
   1552        1.1   thorpej }
   1553        1.1   thorpej 
   1554        1.1   thorpej /*
   1555        1.1   thorpej  * bridge_output:
   1556        1.1   thorpej  *
   1557        1.1   thorpej  *	Send output from a bridge member interface.  This
   1558        1.1   thorpej  *	performs the bridging function for locally originated
   1559        1.1   thorpej  *	packets.
   1560        1.1   thorpej  *
   1561        1.1   thorpej  *	The mbuf has the Ethernet header already attached.  We must
   1562        1.1   thorpej  *	enqueue or free the mbuf before returning.
   1563        1.1   thorpej  */
   1564        1.1   thorpej int
   1565       1.48    dyoung bridge_output(struct ifnet *ifp, struct mbuf *m, const struct sockaddr *sa,
   1566      1.120     ozaki     const struct rtentry *rt)
   1567        1.1   thorpej {
   1568        1.1   thorpej 	struct ether_header *eh;
   1569        1.1   thorpej 	struct ifnet *dst_if;
   1570        1.1   thorpej 	struct bridge_softc *sc;
   1571      1.161       rin 	struct mbuf *n;
   1572  1.189.4.1    martin 	int s, bound;
   1573        1.1   thorpej 
   1574      1.128  knakahar 	/*
   1575      1.128  knakahar 	 * bridge_output() is called from ether_output(), furthermore
   1576      1.128  knakahar 	 * ifp argument doesn't point to bridge(4). So, don't assert
   1577      1.140     ozaki 	 * IFEF_MPSAFE here.
   1578      1.128  knakahar 	 */
   1579      1.128  knakahar 
   1580      1.170  jdolecek 	KASSERT(m->m_len >= ETHER_HDR_LEN);
   1581        1.1   thorpej 
   1582        1.1   thorpej 	eh = mtod(m, struct ether_header *);
   1583        1.1   thorpej 	sc = ifp->if_bridge;
   1584        1.1   thorpej 
   1585      1.122       roy 	if (ETHER_IS_MULTICAST(eh->ether_dhost)) {
   1586      1.122       roy 		if (memcmp(etherbroadcastaddr,
   1587      1.122       roy 		    eh->ether_dhost, ETHER_ADDR_LEN) == 0)
   1588      1.122       roy 			m->m_flags |= M_BCAST;
   1589      1.122       roy 		else
   1590      1.122       roy 			m->m_flags |= M_MCAST;
   1591      1.122       roy 	}
   1592      1.122       roy 
   1593        1.1   thorpej 	/*
   1594        1.1   thorpej 	 * If bridge is down, but the original output interface is up,
   1595        1.1   thorpej 	 * go ahead and send out that interface.  Otherwise, the packet
   1596        1.1   thorpej 	 * is dropped below.
   1597        1.1   thorpej 	 */
   1598       1.87     ozaki 	if (__predict_false(sc == NULL) ||
   1599       1.87     ozaki 	    (sc->sc_if.if_flags & IFF_RUNNING) == 0) {
   1600        1.1   thorpej 		dst_if = ifp;
   1601      1.161       rin 		goto unicast_asis;
   1602        1.1   thorpej 	}
   1603        1.1   thorpej 
   1604        1.1   thorpej 	/*
   1605        1.1   thorpej 	 * If the packet is a multicast, or we don't know a better way to
   1606        1.1   thorpej 	 * get there, send to all interfaces.
   1607        1.1   thorpej 	 */
   1608      1.122       roy 	if ((m->m_flags & (M_MCAST | M_BCAST)) != 0)
   1609        1.1   thorpej 		dst_if = NULL;
   1610        1.1   thorpej 	else
   1611        1.1   thorpej 		dst_if = bridge_rtlookup(sc, eh->ether_dhost);
   1612      1.161       rin 
   1613      1.161       rin 	/*
   1614      1.161       rin 	 * In general, we need to handle TX offload in software before
   1615      1.161       rin 	 * enqueueing a packet. However, we can send it as is in the
   1616      1.161       rin 	 * cases of unicast via (1) the source interface, or (2) an
   1617      1.161       rin 	 * interface which supports the specified offload options.
   1618      1.161       rin 	 * For multicast or broadcast, send it as is only if (3) all
   1619      1.161       rin 	 * the member interfaces support the specified options.
   1620      1.161       rin 	 */
   1621      1.161       rin 
   1622      1.161       rin 	/*
   1623      1.161       rin 	 * Unicast via the source interface.
   1624      1.161       rin 	 */
   1625      1.161       rin 	if (dst_if == ifp)
   1626      1.161       rin 		goto unicast_asis;
   1627      1.161       rin 
   1628      1.161       rin 	/*
   1629      1.161       rin 	 * Unicast via other interface.
   1630      1.161       rin 	 */
   1631      1.161       rin 	if (dst_if != NULL) {
   1632      1.161       rin 		KASSERT(m->m_flags & M_PKTHDR);
   1633      1.161       rin 		if (TX_OFFLOAD_SUPPORTED(dst_if->if_csum_flags_tx,
   1634      1.161       rin 		    m->m_pkthdr.csum_flags)) {
   1635      1.161       rin 			/*
   1636      1.161       rin 			 * Unicast via an interface which supports the
   1637      1.161       rin 			 * specified offload options.
   1638      1.161       rin 			 */
   1639      1.161       rin 			goto unicast_asis;
   1640      1.161       rin 		}
   1641      1.161       rin 
   1642      1.161       rin 		/*
   1643      1.161       rin 		 * Handle TX offload in software. For TSO, a packet is
   1644      1.161       rin 		 * split into multiple chunks. Thus, the return value of
   1645      1.163       rin 		 * ether_sw_offload_tx() is mbuf queue consists of them.
   1646      1.161       rin 		 */
   1647      1.161       rin 		m = ether_sw_offload_tx(ifp, m);
   1648      1.161       rin 		if (m == NULL)
   1649      1.161       rin 			return 0;
   1650      1.161       rin 
   1651      1.161       rin 		do {
   1652      1.161       rin 			n = m->m_nextpkt;
   1653      1.161       rin 			if ((dst_if->if_flags & IFF_RUNNING) == 0)
   1654      1.161       rin 				m_freem(m);
   1655      1.161       rin 			else
   1656      1.161       rin 				bridge_enqueue(sc, dst_if, m, 0);
   1657      1.161       rin 			m = n;
   1658      1.161       rin 		} while (m != NULL);
   1659      1.161       rin 
   1660      1.161       rin 		return 0;
   1661      1.161       rin 	}
   1662      1.161       rin 
   1663      1.161       rin 	/*
   1664      1.161       rin 	 * Multicast or broadcast.
   1665      1.161       rin 	 */
   1666      1.161       rin 	if (TX_OFFLOAD_SUPPORTED(sc->sc_csum_flags_tx,
   1667      1.161       rin 	    m->m_pkthdr.csum_flags)) {
   1668      1.161       rin 		/*
   1669      1.161       rin 		 * Specified TX offload options are supported by all
   1670      1.161       rin 		 * the member interfaces of this bridge.
   1671      1.161       rin 		 */
   1672      1.161       rin 		m->m_nextpkt = NULL;	/* XXX */
   1673      1.161       rin 	} else {
   1674      1.161       rin 		/*
   1675      1.161       rin 		 * Otherwise, handle TX offload in software.
   1676      1.161       rin 		 */
   1677      1.161       rin 		m = ether_sw_offload_tx(ifp, m);
   1678      1.161       rin 		if (m == NULL)
   1679      1.161       rin 			return 0;
   1680      1.161       rin 	}
   1681      1.161       rin 
   1682  1.189.4.1    martin 	/*
   1683  1.189.4.1    martin 	 * When we use pppoe over bridge, bridge_output() can be called
   1684  1.189.4.1    martin 	 * in a lwp context by pppoe_timeout_wk().
   1685  1.189.4.1    martin 	 */
   1686  1.189.4.1    martin 	bound = curlwp_bind();
   1687      1.161       rin 	do {
   1688      1.122       roy 		/* XXX Should call bridge_broadcast, but there are locking
   1689      1.122       roy 		 * issues which need resolving first. */
   1690        1.1   thorpej 		struct bridge_iflist *bif;
   1691        1.1   thorpej 		struct mbuf *mc;
   1692      1.118       roy 		bool used = false;
   1693        1.1   thorpej 
   1694      1.161       rin 		n = m->m_nextpkt;
   1695      1.161       rin 
   1696      1.114     ozaki 		BRIDGE_PSZ_RENTER(s);
   1697      1.115     ozaki 		BRIDGE_IFLIST_READER_FOREACH(bif, sc) {
   1698      1.115     ozaki 			struct psref psref;
   1699      1.115     ozaki 
   1700      1.115     ozaki 			bridge_acquire_member(sc, bif, &psref);
   1701      1.114     ozaki 			BRIDGE_PSZ_REXIT(s);
   1702       1.87     ozaki 
   1703        1.1   thorpej 			dst_if = bif->bif_ifp;
   1704        1.1   thorpej 			if ((dst_if->if_flags & IFF_RUNNING) == 0)
   1705       1.95     ozaki 				goto next;
   1706        1.1   thorpej 
   1707        1.1   thorpej 			/*
   1708        1.1   thorpej 			 * If this is not the original output interface,
   1709        1.1   thorpej 			 * and the interface is participating in spanning
   1710        1.1   thorpej 			 * tree, make sure the port is in a state that
   1711        1.1   thorpej 			 * allows forwarding.
   1712        1.1   thorpej 			 */
   1713        1.1   thorpej 			if (dst_if != ifp &&
   1714        1.1   thorpej 			    (bif->bif_flags & IFBIF_STP) != 0) {
   1715        1.1   thorpej 				switch (bif->bif_state) {
   1716        1.1   thorpej 				case BSTP_IFSTATE_BLOCKING:
   1717        1.1   thorpej 				case BSTP_IFSTATE_LISTENING:
   1718        1.1   thorpej 				case BSTP_IFSTATE_DISABLED:
   1719       1.95     ozaki 					goto next;
   1720        1.1   thorpej 				}
   1721        1.1   thorpej 			}
   1722        1.1   thorpej 
   1723      1.112     ozaki 			if (PSLIST_READER_NEXT(bif, struct bridge_iflist,
   1724      1.122       roy 			    bif_next) == NULL &&
   1725      1.122       roy 			    ((m->m_flags & (M_MCAST | M_BCAST)) == 0 ||
   1726      1.122       roy 			    dst_if == ifp))
   1727      1.122       roy 			{
   1728      1.118       roy 				used = true;
   1729        1.1   thorpej 				mc = m;
   1730        1.1   thorpej 			} else {
   1731      1.159   msaitoh 				mc = m_copypacket(m, M_DONTWAIT);
   1732        1.1   thorpej 				if (mc == NULL) {
   1733      1.166   thorpej 					if_statinc(&sc->sc_if, if_oerrors);
   1734       1.95     ozaki 					goto next;
   1735        1.1   thorpej 				}
   1736        1.1   thorpej 			}
   1737        1.1   thorpej 
   1738       1.18       jdc 			bridge_enqueue(sc, dst_if, mc, 0);
   1739      1.122       roy 
   1740      1.122       roy 			if ((m->m_flags & (M_MCAST | M_BCAST)) != 0 &&
   1741      1.122       roy 			    dst_if != ifp)
   1742      1.122       roy 			{
   1743      1.122       roy 				if (PSLIST_READER_NEXT(bif,
   1744      1.122       roy 				    struct bridge_iflist, bif_next) == NULL)
   1745      1.122       roy 				{
   1746      1.122       roy 					used = true;
   1747      1.122       roy 					mc = m;
   1748      1.122       roy 				} else {
   1749      1.159   msaitoh 					mc = m_copypacket(m, M_DONTWAIT);
   1750      1.122       roy 					if (mc == NULL) {
   1751      1.166   thorpej 						if_statinc(&sc->sc_if,
   1752      1.166   thorpej 						    if_oerrors);
   1753      1.122       roy 						goto next;
   1754      1.122       roy 					}
   1755      1.122       roy 				}
   1756      1.122       roy 
   1757      1.124     ozaki 				m_set_rcvif(mc, dst_if);
   1758      1.122       roy 				mc->m_flags &= ~M_PROMISC;
   1759      1.122       roy 
   1760      1.189     skrll 				const int _s = splsoftnet();
   1761      1.155     ozaki 				KERNEL_LOCK_UNLESS_IFP_MPSAFE(dst_if);
   1762      1.122       roy 				ether_input(dst_if, mc);
   1763      1.155     ozaki 				KERNEL_UNLOCK_UNLESS_IFP_MPSAFE(dst_if);
   1764      1.189     skrll 				splx(_s);
   1765      1.122       roy 			}
   1766      1.122       roy 
   1767       1.95     ozaki next:
   1768      1.114     ozaki 			BRIDGE_PSZ_RENTER(s);
   1769      1.115     ozaki 			bridge_release_member(sc, bif, &psref);
   1770      1.118       roy 
   1771      1.118       roy 			/* Guarantee we don't re-enter the loop as we already
   1772      1.118       roy 			 * decided we're at the end. */
   1773      1.118       roy 			if (used)
   1774      1.118       roy 				break;
   1775        1.1   thorpej 		}
   1776      1.114     ozaki 		BRIDGE_PSZ_REXIT(s);
   1777       1.87     ozaki 
   1778      1.118       roy 		if (!used)
   1779        1.1   thorpej 			m_freem(m);
   1780        1.1   thorpej 
   1781      1.161       rin 		m = n;
   1782      1.161       rin 	} while (m != NULL);
   1783  1.189.4.1    martin 	curlwp_bindx(bound);
   1784  1.189.4.1    martin 
   1785      1.161       rin 	return 0;
   1786      1.161       rin 
   1787      1.161       rin unicast_asis:
   1788        1.1   thorpej 	/*
   1789        1.1   thorpej 	 * XXX Spanning tree consideration here?
   1790        1.1   thorpej 	 */
   1791      1.161       rin 	if ((dst_if->if_flags & IFF_RUNNING) == 0)
   1792        1.1   thorpej 		m_freem(m);
   1793      1.161       rin 	else
   1794      1.161       rin 		bridge_enqueue(sc, dst_if, m, 0);
   1795      1.136   msaitoh 	return 0;
   1796        1.1   thorpej }
   1797        1.1   thorpej 
   1798        1.1   thorpej /*
   1799        1.1   thorpej  * bridge_start:
   1800        1.1   thorpej  *
   1801        1.1   thorpej  *	Start output on a bridge.
   1802        1.1   thorpej  *
   1803        1.1   thorpej  *	NOTE: This routine should never be called in this implementation.
   1804        1.1   thorpej  */
   1805       1.33   thorpej static void
   1806        1.1   thorpej bridge_start(struct ifnet *ifp)
   1807        1.1   thorpej {
   1808        1.1   thorpej 
   1809        1.1   thorpej 	printf("%s: bridge_start() called\n", ifp->if_xname);
   1810        1.1   thorpej }
   1811        1.1   thorpej 
   1812        1.1   thorpej /*
   1813        1.1   thorpej  * bridge_forward:
   1814        1.1   thorpej  *
   1815       1.21  augustss  *	The forwarding function of the bridge.
   1816        1.1   thorpej  */
   1817       1.33   thorpej static void
   1818      1.108     ozaki bridge_forward(struct bridge_softc *sc, struct mbuf *m)
   1819        1.1   thorpej {
   1820        1.1   thorpej 	struct bridge_iflist *bif;
   1821        1.1   thorpej 	struct ifnet *src_if, *dst_if;
   1822        1.1   thorpej 	struct ether_header *eh;
   1823      1.115     ozaki 	struct psref psref;
   1824      1.125     ozaki 	struct psref psref_src;
   1825      1.114     ozaki 	DECLARE_LOCK_VARIABLE;
   1826  1.189.4.2    martin 	bool src_if_protected;
   1827        1.1   thorpej 
   1828      1.114     ozaki 	if ((sc->sc_if.if_flags & IFF_RUNNING) == 0)
   1829       1.65    bouyer 		return;
   1830       1.65    bouyer 
   1831      1.125     ozaki 	src_if = m_get_rcvif_psref(m, &psref_src);
   1832      1.125     ozaki 	if (src_if == NULL) {
   1833      1.125     ozaki 		/* Interface is being destroyed? */
   1834      1.125     ozaki 		m_freem(m);
   1835      1.125     ozaki 		goto out;
   1836      1.125     ozaki 	}
   1837        1.1   thorpej 
   1838      1.166   thorpej 	if_statadd2(&sc->sc_if, if_ipackets, 1, if_ibytes, m->m_pkthdr.len);
   1839       1.65    bouyer 
   1840      1.108     ozaki 	/*
   1841      1.108     ozaki 	 * Look up the bridge_iflist.
   1842      1.108     ozaki 	 */
   1843      1.115     ozaki 	bif = bridge_lookup_member_if(sc, src_if, &psref);
   1844      1.108     ozaki 	if (bif == NULL) {
   1845      1.108     ozaki 		/* Interface is not a bridge member (anymore?) */
   1846      1.108     ozaki 		m_freem(m);
   1847      1.108     ozaki 		goto out;
   1848      1.108     ozaki 	}
   1849        1.1   thorpej 
   1850      1.108     ozaki 	if (bif->bif_flags & IFBIF_STP) {
   1851      1.108     ozaki 		switch (bif->bif_state) {
   1852      1.108     ozaki 		case BSTP_IFSTATE_BLOCKING:
   1853      1.108     ozaki 		case BSTP_IFSTATE_LISTENING:
   1854      1.108     ozaki 		case BSTP_IFSTATE_DISABLED:
   1855       1.65    bouyer 			m_freem(m);
   1856      1.115     ozaki 			bridge_release_member(sc, bif, &psref);
   1857      1.108     ozaki 			goto out;
   1858       1.65    bouyer 		}
   1859      1.108     ozaki 	}
   1860        1.1   thorpej 
   1861      1.108     ozaki 	eh = mtod(m, struct ether_header *);
   1862       1.87     ozaki 
   1863      1.108     ozaki 	/*
   1864      1.108     ozaki 	 * If the interface is learning, and the source
   1865      1.108     ozaki 	 * address is valid and not multicast, record
   1866      1.108     ozaki 	 * the address.
   1867      1.108     ozaki 	 */
   1868      1.108     ozaki 	if ((bif->bif_flags & IFBIF_LEARNING) != 0 &&
   1869      1.108     ozaki 	    ETHER_IS_MULTICAST(eh->ether_shost) == 0 &&
   1870      1.108     ozaki 	    (eh->ether_shost[0] == 0 &&
   1871      1.108     ozaki 	     eh->ether_shost[1] == 0 &&
   1872      1.108     ozaki 	     eh->ether_shost[2] == 0 &&
   1873      1.108     ozaki 	     eh->ether_shost[3] == 0 &&
   1874      1.108     ozaki 	     eh->ether_shost[4] == 0 &&
   1875      1.108     ozaki 	     eh->ether_shost[5] == 0) == 0) {
   1876      1.108     ozaki 		(void) bridge_rtupdate(sc, eh->ether_shost,
   1877      1.108     ozaki 		    src_if, 0, IFBAF_DYNAMIC);
   1878      1.108     ozaki 	}
   1879        1.1   thorpej 
   1880      1.108     ozaki 	if ((bif->bif_flags & IFBIF_STP) != 0 &&
   1881      1.108     ozaki 	    bif->bif_state == BSTP_IFSTATE_LEARNING) {
   1882      1.108     ozaki 		m_freem(m);
   1883      1.115     ozaki 		bridge_release_member(sc, bif, &psref);
   1884      1.108     ozaki 		goto out;
   1885      1.108     ozaki 	}
   1886        1.1   thorpej 
   1887  1.189.4.2    martin 	src_if_protected = ((bif->bif_flags & IFBIF_PROTECTED) != 0);
   1888  1.189.4.2    martin 
   1889      1.115     ozaki 	bridge_release_member(sc, bif, &psref);
   1890        1.9  perseant 
   1891      1.108     ozaki 	/*
   1892      1.108     ozaki 	 * At this point, the port either doesn't participate
   1893      1.108     ozaki 	 * in spanning tree or it is in the forwarding state.
   1894      1.108     ozaki 	 */
   1895        1.1   thorpej 
   1896      1.108     ozaki 	/*
   1897      1.108     ozaki 	 * If the packet is unicast, destined for someone on
   1898      1.108     ozaki 	 * "this" side of the bridge, drop it.
   1899      1.108     ozaki 	 */
   1900      1.108     ozaki 	if ((m->m_flags & (M_BCAST|M_MCAST)) == 0) {
   1901      1.108     ozaki 		dst_if = bridge_rtlookup(sc, eh->ether_dhost);
   1902      1.108     ozaki 		if (src_if == dst_if) {
   1903       1.65    bouyer 			m_freem(m);
   1904      1.108     ozaki 			goto out;
   1905       1.65    bouyer 		}
   1906      1.108     ozaki 	} else {
   1907      1.108     ozaki 		/* ...forward it to all interfaces. */
   1908      1.166   thorpej 		if_statinc(&sc->sc_if, if_imcasts);
   1909      1.108     ozaki 		dst_if = NULL;
   1910      1.108     ozaki 	}
   1911       1.87     ozaki 
   1912      1.125     ozaki 	if (pfil_run_hooks(sc->sc_if.if_pfil, &m, src_if, PFIL_IN) != 0) {
   1913      1.108     ozaki 		if (m != NULL)
   1914       1.65    bouyer 			m_freem(m);
   1915      1.108     ozaki 		goto out;
   1916      1.108     ozaki 	}
   1917      1.108     ozaki 	if (m == NULL)
   1918      1.108     ozaki 		goto out;
   1919      1.108     ozaki 
   1920      1.108     ozaki 	if (dst_if == NULL) {
   1921  1.189.4.2    martin 		bridge_broadcast(sc, src_if, src_if_protected, m);
   1922      1.108     ozaki 		goto out;
   1923      1.108     ozaki 	}
   1924      1.108     ozaki 
   1925      1.125     ozaki 	m_put_rcvif_psref(src_if, &psref_src);
   1926      1.125     ozaki 	src_if = NULL;
   1927      1.125     ozaki 
   1928      1.108     ozaki 	/*
   1929      1.108     ozaki 	 * At this point, we're dealing with a unicast frame
   1930      1.108     ozaki 	 * going to a different interface.
   1931      1.108     ozaki 	 */
   1932      1.108     ozaki 	if ((dst_if->if_flags & IFF_RUNNING) == 0) {
   1933      1.108     ozaki 		m_freem(m);
   1934      1.108     ozaki 		goto out;
   1935      1.108     ozaki 	}
   1936      1.108     ozaki 
   1937      1.115     ozaki 	bif = bridge_lookup_member_if(sc, dst_if, &psref);
   1938      1.108     ozaki 	if (bif == NULL) {
   1939      1.108     ozaki 		/* Not a member of the bridge (anymore?) */
   1940      1.108     ozaki 		m_freem(m);
   1941      1.108     ozaki 		goto out;
   1942      1.108     ozaki 	}
   1943        1.1   thorpej 
   1944      1.108     ozaki 	if (bif->bif_flags & IFBIF_STP) {
   1945      1.108     ozaki 		switch (bif->bif_state) {
   1946      1.108     ozaki 		case BSTP_IFSTATE_DISABLED:
   1947      1.108     ozaki 		case BSTP_IFSTATE_BLOCKING:
   1948      1.108     ozaki 			m_freem(m);
   1949      1.115     ozaki 			bridge_release_member(sc, bif, &psref);
   1950      1.108     ozaki 			goto out;
   1951        1.1   thorpej 		}
   1952      1.108     ozaki 	}
   1953       1.65    bouyer 
   1954  1.189.4.2    martin 	if ((bif->bif_flags & IFBIF_PROTECTED) && src_if_protected) {
   1955  1.189.4.2    martin 		m_freem(m);
   1956  1.189.4.2    martin 		bridge_release_member(sc, bif, &psref);
   1957  1.189.4.2    martin 		goto out;
   1958  1.189.4.2    martin 	}
   1959  1.189.4.2    martin 
   1960      1.115     ozaki 	bridge_release_member(sc, bif, &psref);
   1961       1.87     ozaki 
   1962      1.157   msaitoh 	/*
   1963      1.158   msaitoh 	 * Before enqueueing this packet to the destination interface,
   1964      1.158   msaitoh 	 * clear any in-bound checksum flags to prevent them from being
   1965      1.158   msaitoh 	 * misused as out-bound flags.
   1966      1.157   msaitoh 	 */
   1967      1.157   msaitoh 	m->m_pkthdr.csum_flags = 0;
   1968      1.157   msaitoh 
   1969      1.114     ozaki 	ACQUIRE_GLOBAL_LOCKS();
   1970      1.108     ozaki 	bridge_enqueue(sc, dst_if, m, 1);
   1971      1.114     ozaki 	RELEASE_GLOBAL_LOCKS();
   1972      1.108     ozaki out:
   1973      1.125     ozaki 	if (src_if != NULL)
   1974      1.125     ozaki 		m_put_rcvif_psref(src_if, &psref_src);
   1975      1.108     ozaki 	return;
   1976        1.1   thorpej }
   1977        1.1   thorpej 
   1978       1.82     ozaki static bool
   1979       1.82     ozaki bstp_state_before_learning(struct bridge_iflist *bif)
   1980       1.82     ozaki {
   1981       1.82     ozaki 	if (bif->bif_flags & IFBIF_STP) {
   1982       1.82     ozaki 		switch (bif->bif_state) {
   1983       1.82     ozaki 		case BSTP_IFSTATE_BLOCKING:
   1984       1.82     ozaki 		case BSTP_IFSTATE_LISTENING:
   1985       1.82     ozaki 		case BSTP_IFSTATE_DISABLED:
   1986       1.82     ozaki 			return true;
   1987       1.82     ozaki 		}
   1988       1.82     ozaki 	}
   1989       1.82     ozaki 	return false;
   1990       1.82     ozaki }
   1991       1.82     ozaki 
   1992       1.82     ozaki static bool
   1993       1.82     ozaki bridge_ourether(struct bridge_iflist *bif, struct ether_header *eh, int src)
   1994       1.82     ozaki {
   1995       1.82     ozaki 	uint8_t *ether = src ? eh->ether_shost : eh->ether_dhost;
   1996       1.82     ozaki 
   1997       1.82     ozaki 	if (memcmp(CLLADDR(bif->bif_ifp->if_sadl), ether, ETHER_ADDR_LEN) == 0
   1998       1.82     ozaki #if NCARP > 0
   1999       1.82     ozaki 	    || (bif->bif_ifp->if_carp &&
   2000       1.82     ozaki 	        carp_ourether(bif->bif_ifp->if_carp, eh, IFT_ETHER, src) != NULL)
   2001       1.82     ozaki #endif /* NCARP > 0 */
   2002       1.82     ozaki 	    )
   2003       1.82     ozaki 		return true;
   2004       1.82     ozaki 
   2005       1.82     ozaki 	return false;
   2006       1.82     ozaki }
   2007       1.82     ozaki 
   2008        1.1   thorpej /*
   2009        1.1   thorpej  * bridge_input:
   2010        1.1   thorpej  *
   2011        1.1   thorpej  *	Receive input from a member interface.  Queue the packet for
   2012        1.1   thorpej  *	bridging if it is not for us.
   2013        1.1   thorpej  */
   2014       1.81     ozaki static void
   2015        1.1   thorpej bridge_input(struct ifnet *ifp, struct mbuf *m)
   2016        1.1   thorpej {
   2017        1.1   thorpej 	struct bridge_softc *sc = ifp->if_bridge;
   2018        1.1   thorpej 	struct bridge_iflist *bif;
   2019        1.1   thorpej 	struct ether_header *eh;
   2020      1.115     ozaki 	struct psref psref;
   2021      1.135     ozaki 	int bound;
   2022      1.114     ozaki 	DECLARE_LOCK_VARIABLE;
   2023        1.1   thorpej 
   2024      1.106     ozaki 	KASSERT(!cpu_intr_p());
   2025      1.106     ozaki 
   2026       1.87     ozaki 	if (__predict_false(sc == NULL) ||
   2027       1.87     ozaki 	    (sc->sc_if.if_flags & IFF_RUNNING) == 0) {
   2028      1.114     ozaki 		ACQUIRE_GLOBAL_LOCKS();
   2029       1.81     ozaki 		ether_input(ifp, m);
   2030      1.114     ozaki 		RELEASE_GLOBAL_LOCKS();
   2031       1.81     ozaki 		return;
   2032       1.81     ozaki 	}
   2033        1.1   thorpej 
   2034      1.135     ozaki 	bound = curlwp_bind();
   2035      1.115     ozaki 	bif = bridge_lookup_member_if(sc, ifp, &psref);
   2036       1.81     ozaki 	if (bif == NULL) {
   2037      1.135     ozaki 		curlwp_bindx(bound);
   2038      1.114     ozaki 		ACQUIRE_GLOBAL_LOCKS();
   2039       1.81     ozaki 		ether_input(ifp, m);
   2040      1.114     ozaki 		RELEASE_GLOBAL_LOCKS();
   2041       1.81     ozaki 		return;
   2042       1.81     ozaki 	}
   2043        1.1   thorpej 
   2044        1.1   thorpej 	eh = mtod(m, struct ether_header *);
   2045        1.1   thorpej 
   2046       1.81     ozaki 	if (ETHER_IS_MULTICAST(eh->ether_dhost)) {
   2047       1.81     ozaki 		if (memcmp(etherbroadcastaddr,
   2048       1.81     ozaki 		    eh->ether_dhost, ETHER_ADDR_LEN) == 0)
   2049       1.81     ozaki 			m->m_flags |= M_BCAST;
   2050       1.81     ozaki 		else
   2051       1.81     ozaki 			m->m_flags |= M_MCAST;
   2052       1.81     ozaki 	}
   2053       1.81     ozaki 
   2054       1.83     ozaki 	/*
   2055       1.83     ozaki 	 * A 'fast' path for packets addressed to interfaces that are
   2056       1.83     ozaki 	 * part of this bridge.
   2057       1.83     ozaki 	 */
   2058       1.83     ozaki 	if (!(m->m_flags & (M_BCAST|M_MCAST)) &&
   2059       1.83     ozaki 	    !bstp_state_before_learning(bif)) {
   2060       1.83     ozaki 		struct bridge_iflist *_bif;
   2061       1.92     ozaki 		struct ifnet *_ifp = NULL;
   2062       1.95     ozaki 		int s;
   2063      1.115     ozaki 		struct psref _psref;
   2064       1.83     ozaki 
   2065       1.95     ozaki 		BRIDGE_PSZ_RENTER(s);
   2066      1.115     ozaki 		BRIDGE_IFLIST_READER_FOREACH(_bif, sc) {
   2067       1.83     ozaki 			/* It is destined for us. */
   2068       1.83     ozaki 			if (bridge_ourether(_bif, eh, 0)) {
   2069      1.115     ozaki 				bridge_acquire_member(sc, _bif, &_psref);
   2070       1.95     ozaki 				BRIDGE_PSZ_REXIT(s);
   2071       1.83     ozaki 				if (_bif->bif_flags & IFBIF_LEARNING)
   2072       1.83     ozaki 					(void) bridge_rtupdate(sc,
   2073       1.83     ozaki 					    eh->ether_shost, ifp, 0, IFBAF_DYNAMIC);
   2074      1.124     ozaki 				m_set_rcvif(m, _bif->bif_ifp);
   2075      1.124     ozaki 				_ifp = _bif->bif_ifp;
   2076      1.115     ozaki 				bridge_release_member(sc, _bif, &_psref);
   2077       1.95     ozaki 				goto out;
   2078       1.64       mrg 			}
   2079        1.1   thorpej 
   2080       1.83     ozaki 			/* We just received a packet that we sent out. */
   2081       1.92     ozaki 			if (bridge_ourether(_bif, eh, 1))
   2082       1.87     ozaki 				break;
   2083        1.1   thorpej 		}
   2084       1.95     ozaki 		BRIDGE_PSZ_REXIT(s);
   2085       1.95     ozaki out:
   2086       1.87     ozaki 
   2087       1.87     ozaki 		if (_bif != NULL) {
   2088      1.115     ozaki 			bridge_release_member(sc, bif, &psref);
   2089      1.135     ozaki 			curlwp_bindx(bound);
   2090      1.100     ozaki 			if (_ifp != NULL) {
   2091      1.100     ozaki 				m->m_flags &= ~M_PROMISC;
   2092      1.114     ozaki 				ACQUIRE_GLOBAL_LOCKS();
   2093       1.92     ozaki 				ether_input(_ifp, m);
   2094      1.114     ozaki 				RELEASE_GLOBAL_LOCKS();
   2095      1.100     ozaki 			} else
   2096       1.92     ozaki 				m_freem(m);
   2097       1.87     ozaki 			return;
   2098       1.87     ozaki 		}
   2099       1.83     ozaki 	}
   2100        1.1   thorpej 
   2101       1.83     ozaki 	/* Tap off 802.1D packets; they do not get forwarded. */
   2102       1.83     ozaki 	if (bif->bif_flags & IFBIF_STP &&
   2103       1.83     ozaki 	    memcmp(eh->ether_dhost, bstp_etheraddr, ETHER_ADDR_LEN) == 0) {
   2104       1.83     ozaki 		bstp_input(sc, bif, m);
   2105      1.115     ozaki 		bridge_release_member(sc, bif, &psref);
   2106      1.135     ozaki 		curlwp_bindx(bound);
   2107       1.81     ozaki 		return;
   2108        1.1   thorpej 	}
   2109        1.1   thorpej 
   2110       1.83     ozaki 	/*
   2111       1.83     ozaki 	 * A normal switch would discard the packet here, but that's not what
   2112       1.83     ozaki 	 * we've done historically. This also prevents some obnoxious behaviour.
   2113       1.83     ozaki 	 */
   2114       1.82     ozaki 	if (bstp_state_before_learning(bif)) {
   2115      1.115     ozaki 		bridge_release_member(sc, bif, &psref);
   2116      1.135     ozaki 		curlwp_bindx(bound);
   2117      1.114     ozaki 		ACQUIRE_GLOBAL_LOCKS();
   2118       1.82     ozaki 		ether_input(ifp, m);
   2119      1.114     ozaki 		RELEASE_GLOBAL_LOCKS();
   2120       1.82     ozaki 		return;
   2121        1.1   thorpej 	}
   2122        1.1   thorpej 
   2123      1.115     ozaki 	bridge_release_member(sc, bif, &psref);
   2124       1.87     ozaki 
   2125      1.108     ozaki 	bridge_forward(sc, m);
   2126      1.135     ozaki 
   2127      1.135     ozaki 	curlwp_bindx(bound);
   2128        1.1   thorpej }
   2129        1.1   thorpej 
   2130        1.1   thorpej /*
   2131        1.1   thorpej  * bridge_broadcast:
   2132        1.1   thorpej  *
   2133        1.1   thorpej  *	Send a frame to all interfaces that are members of
   2134        1.1   thorpej  *	the bridge, except for the one on which the packet
   2135        1.1   thorpej  *	arrived.
   2136        1.1   thorpej  */
   2137       1.33   thorpej static void
   2138        1.1   thorpej bridge_broadcast(struct bridge_softc *sc, struct ifnet *src_if,
   2139  1.189.4.2    martin     bool src_if_protected, struct mbuf *m)
   2140        1.1   thorpej {
   2141        1.1   thorpej 	struct bridge_iflist *bif;
   2142        1.1   thorpej 	struct mbuf *mc;
   2143        1.1   thorpej 	struct ifnet *dst_if;
   2144      1.100     ozaki 	bool bmcast;
   2145       1.95     ozaki 	int s;
   2146      1.114     ozaki 	DECLARE_LOCK_VARIABLE;
   2147       1.83     ozaki 
   2148      1.100     ozaki 	bmcast = m->m_flags & (M_BCAST|M_MCAST);
   2149        1.1   thorpej 
   2150       1.95     ozaki 	BRIDGE_PSZ_RENTER(s);
   2151      1.115     ozaki 	BRIDGE_IFLIST_READER_FOREACH(bif, sc) {
   2152      1.115     ozaki 		struct psref psref;
   2153      1.115     ozaki 
   2154      1.115     ozaki 		bridge_acquire_member(sc, bif, &psref);
   2155       1.95     ozaki 		BRIDGE_PSZ_REXIT(s);
   2156       1.87     ozaki 
   2157        1.1   thorpej 		dst_if = bif->bif_ifp;
   2158        1.1   thorpej 
   2159        1.1   thorpej 		if (bif->bif_flags & IFBIF_STP) {
   2160        1.1   thorpej 			switch (bif->bif_state) {
   2161        1.1   thorpej 			case BSTP_IFSTATE_BLOCKING:
   2162        1.1   thorpej 			case BSTP_IFSTATE_DISABLED:
   2163       1.95     ozaki 				goto next;
   2164        1.1   thorpej 			}
   2165        1.1   thorpej 		}
   2166        1.1   thorpej 
   2167       1.83     ozaki 		if ((bif->bif_flags & IFBIF_DISCOVER) == 0 && !bmcast)
   2168       1.95     ozaki 			goto next;
   2169        1.1   thorpej 
   2170        1.1   thorpej 		if ((dst_if->if_flags & IFF_RUNNING) == 0)
   2171       1.95     ozaki 			goto next;
   2172        1.1   thorpej 
   2173      1.100     ozaki 		if (dst_if != src_if) {
   2174  1.189.4.2    martin 			if ((bif->bif_flags & IFBIF_PROTECTED) &&
   2175  1.189.4.2    martin 			    src_if_protected) {
   2176  1.189.4.2    martin 				goto next;
   2177  1.189.4.2    martin 			}
   2178  1.189.4.2    martin 
   2179      1.159   msaitoh 			mc = m_copypacket(m, M_DONTWAIT);
   2180        1.1   thorpej 			if (mc == NULL) {
   2181      1.166   thorpej 				if_statinc(&sc->sc_if, if_oerrors);
   2182       1.95     ozaki 				goto next;
   2183        1.1   thorpej 			}
   2184      1.157   msaitoh 			/*
   2185      1.158   msaitoh 			 * Before enqueueing this packet to the destination
   2186      1.158   msaitoh 			 * interface, clear any in-bound checksum flags to
   2187      1.158   msaitoh 			 * prevent them from being misused as out-bound flags.
   2188      1.157   msaitoh 			 */
   2189      1.158   msaitoh 			mc->m_pkthdr.csum_flags = 0;
   2190      1.157   msaitoh 
   2191      1.114     ozaki 			ACQUIRE_GLOBAL_LOCKS();
   2192      1.100     ozaki 			bridge_enqueue(sc, dst_if, mc, 1);
   2193      1.114     ozaki 			RELEASE_GLOBAL_LOCKS();
   2194        1.1   thorpej 		}
   2195        1.1   thorpej 
   2196      1.100     ozaki 		if (bmcast) {
   2197      1.159   msaitoh 			mc = m_copypacket(m, M_DONTWAIT);
   2198      1.100     ozaki 			if (mc == NULL) {
   2199      1.166   thorpej 				if_statinc(&sc->sc_if, if_oerrors);
   2200      1.100     ozaki 				goto next;
   2201      1.100     ozaki 			}
   2202      1.169  jdolecek 			/*
   2203      1.169  jdolecek 			 * Before enqueueing this packet to the destination
   2204      1.169  jdolecek 			 * interface, clear any in-bound checksum flags to
   2205      1.169  jdolecek 			 * prevent them from being misused as out-bound flags.
   2206      1.169  jdolecek 			 */
   2207      1.169  jdolecek 			mc->m_pkthdr.csum_flags = 0;
   2208      1.100     ozaki 
   2209      1.124     ozaki 			m_set_rcvif(mc, dst_if);
   2210      1.100     ozaki 			mc->m_flags &= ~M_PROMISC;
   2211      1.114     ozaki 
   2212      1.114     ozaki 			ACQUIRE_GLOBAL_LOCKS();
   2213      1.100     ozaki 			ether_input(dst_if, mc);
   2214      1.114     ozaki 			RELEASE_GLOBAL_LOCKS();
   2215      1.100     ozaki 		}
   2216       1.95     ozaki next:
   2217       1.95     ozaki 		BRIDGE_PSZ_RENTER(s);
   2218      1.115     ozaki 		bridge_release_member(sc, bif, &psref);
   2219        1.1   thorpej 	}
   2220       1.95     ozaki 	BRIDGE_PSZ_REXIT(s);
   2221       1.83     ozaki 
   2222      1.100     ozaki 	m_freem(m);
   2223        1.1   thorpej }
   2224        1.1   thorpej 
   2225       1.97     ozaki static int
   2226       1.97     ozaki bridge_rtalloc(struct bridge_softc *sc, const uint8_t *dst,
   2227       1.97     ozaki     struct bridge_rtnode **brtp)
   2228       1.97     ozaki {
   2229       1.97     ozaki 	struct bridge_rtnode *brt;
   2230       1.97     ozaki 	int error;
   2231       1.97     ozaki 
   2232       1.97     ozaki 	if (sc->sc_brtcnt >= sc->sc_brtmax)
   2233       1.97     ozaki 		return ENOSPC;
   2234       1.97     ozaki 
   2235       1.97     ozaki 	/*
   2236       1.97     ozaki 	 * Allocate a new bridge forwarding node, and
   2237       1.97     ozaki 	 * initialize the expiration time and Ethernet
   2238       1.97     ozaki 	 * address.
   2239       1.97     ozaki 	 */
   2240       1.97     ozaki 	brt = pool_get(&bridge_rtnode_pool, PR_NOWAIT);
   2241       1.97     ozaki 	if (brt == NULL)
   2242       1.97     ozaki 		return ENOMEM;
   2243       1.97     ozaki 
   2244       1.97     ozaki 	memset(brt, 0, sizeof(*brt));
   2245       1.97     ozaki 	brt->brt_expire = time_uptime + sc->sc_brttimeout;
   2246       1.97     ozaki 	brt->brt_flags = IFBAF_DYNAMIC;
   2247       1.97     ozaki 	memcpy(brt->brt_addr, dst, ETHER_ADDR_LEN);
   2248      1.154     ozaki 	PSLIST_ENTRY_INIT(brt, brt_list);
   2249      1.154     ozaki 	PSLIST_ENTRY_INIT(brt, brt_hash);
   2250       1.97     ozaki 
   2251      1.108     ozaki 	BRIDGE_RT_LOCK(sc);
   2252       1.97     ozaki 	error = bridge_rtnode_insert(sc, brt);
   2253      1.108     ozaki 	BRIDGE_RT_UNLOCK(sc);
   2254       1.97     ozaki 
   2255       1.97     ozaki 	if (error != 0) {
   2256       1.97     ozaki 		pool_put(&bridge_rtnode_pool, brt);
   2257       1.97     ozaki 		return error;
   2258       1.97     ozaki 	}
   2259       1.97     ozaki 
   2260       1.97     ozaki 	*brtp = brt;
   2261       1.97     ozaki 	return 0;
   2262       1.97     ozaki }
   2263       1.97     ozaki 
   2264        1.1   thorpej /*
   2265        1.1   thorpej  * bridge_rtupdate:
   2266        1.1   thorpej  *
   2267        1.1   thorpej  *	Add a bridge routing entry.
   2268        1.1   thorpej  */
   2269       1.33   thorpej static int
   2270        1.1   thorpej bridge_rtupdate(struct bridge_softc *sc, const uint8_t *dst,
   2271        1.1   thorpej     struct ifnet *dst_if, int setflags, uint8_t flags)
   2272        1.1   thorpej {
   2273        1.1   thorpej 	struct bridge_rtnode *brt;
   2274       1.97     ozaki 	int s;
   2275        1.1   thorpej 
   2276       1.97     ozaki again:
   2277        1.1   thorpej 	/*
   2278        1.1   thorpej 	 * A route for this destination might already exist.  If so,
   2279        1.1   thorpej 	 * update it, otherwise create a new one.
   2280        1.1   thorpej 	 */
   2281       1.97     ozaki 	BRIDGE_RT_RENTER(s);
   2282       1.97     ozaki 	brt = bridge_rtnode_lookup(sc, dst);
   2283        1.1   thorpej 
   2284       1.97     ozaki 	if (brt != NULL) {
   2285       1.97     ozaki 		brt->brt_ifp = dst_if;
   2286       1.97     ozaki 		if (setflags) {
   2287       1.97     ozaki 			brt->brt_flags = flags;
   2288       1.97     ozaki 			if (flags & IFBAF_STATIC)
   2289       1.97     ozaki 				brt->brt_expire = 0;
   2290       1.97     ozaki 			else
   2291       1.97     ozaki 				brt->brt_expire = time_uptime + sc->sc_brttimeout;
   2292       1.97     ozaki 		} else {
   2293       1.97     ozaki 			if ((brt->brt_flags & IFBAF_TYPEMASK) == IFBAF_DYNAMIC)
   2294       1.97     ozaki 				brt->brt_expire = time_uptime + sc->sc_brttimeout;
   2295       1.87     ozaki 		}
   2296       1.97     ozaki 	}
   2297       1.97     ozaki 	BRIDGE_RT_REXIT(s);
   2298        1.1   thorpej 
   2299       1.97     ozaki 	if (brt == NULL) {
   2300       1.97     ozaki 		int r;
   2301        1.1   thorpej 
   2302       1.97     ozaki 		r = bridge_rtalloc(sc, dst, &brt);
   2303       1.97     ozaki 		if (r != 0)
   2304       1.97     ozaki 			return r;
   2305       1.97     ozaki 		goto again;
   2306        1.1   thorpej 	}
   2307        1.1   thorpej 
   2308       1.97     ozaki 	return 0;
   2309        1.1   thorpej }
   2310        1.1   thorpej 
   2311        1.1   thorpej /*
   2312        1.1   thorpej  * bridge_rtlookup:
   2313        1.1   thorpej  *
   2314        1.1   thorpej  *	Lookup the destination interface for an address.
   2315        1.1   thorpej  */
   2316       1.33   thorpej static struct ifnet *
   2317        1.1   thorpej bridge_rtlookup(struct bridge_softc *sc, const uint8_t *addr)
   2318        1.1   thorpej {
   2319        1.1   thorpej 	struct bridge_rtnode *brt;
   2320       1.87     ozaki 	struct ifnet *ifs = NULL;
   2321       1.97     ozaki 	int s;
   2322       1.87     ozaki 
   2323       1.97     ozaki 	BRIDGE_RT_RENTER(s);
   2324       1.87     ozaki 	brt = bridge_rtnode_lookup(sc, addr);
   2325       1.87     ozaki 	if (brt != NULL)
   2326       1.87     ozaki 		ifs = brt->brt_ifp;
   2327       1.97     ozaki 	BRIDGE_RT_REXIT(s);
   2328       1.97     ozaki 
   2329       1.97     ozaki 	return ifs;
   2330       1.97     ozaki }
   2331       1.97     ozaki 
   2332       1.97     ozaki typedef bool (*bridge_iterate_cb_t)
   2333       1.97     ozaki     (struct bridge_softc *, struct bridge_rtnode *, bool *, void *);
   2334       1.97     ozaki 
   2335       1.97     ozaki /*
   2336       1.97     ozaki  * bridge_rtlist_iterate_remove:
   2337       1.97     ozaki  *
   2338       1.97     ozaki  *	It iterates on sc->sc_rtlist and removes rtnodes of it which func
   2339       1.97     ozaki  *	callback judges to remove. Removals of rtnodes are done in a manner
   2340       1.97     ozaki  *	of pserialize. To this end, all kmem_* operations are placed out of
   2341       1.97     ozaki  *	mutexes.
   2342       1.97     ozaki  */
   2343       1.97     ozaki static void
   2344       1.97     ozaki bridge_rtlist_iterate_remove(struct bridge_softc *sc, bridge_iterate_cb_t func, void *arg)
   2345       1.97     ozaki {
   2346      1.152     ozaki 	struct bridge_rtnode *brt;
   2347       1.97     ozaki 	struct bridge_rtnode **brt_list;
   2348       1.97     ozaki 	int i, count;
   2349        1.1   thorpej 
   2350       1.97     ozaki retry:
   2351       1.97     ozaki 	count = sc->sc_brtcnt;
   2352       1.97     ozaki 	if (count == 0)
   2353       1.97     ozaki 		return;
   2354      1.104      maxv 	brt_list = kmem_alloc(sizeof(*brt_list) * count, KM_SLEEP);
   2355       1.97     ozaki 
   2356       1.97     ozaki 	BRIDGE_RT_LOCK(sc);
   2357       1.97     ozaki 	if (__predict_false(sc->sc_brtcnt > count)) {
   2358       1.97     ozaki 		/* The rtnodes increased, we need more memory */
   2359       1.97     ozaki 		BRIDGE_RT_UNLOCK(sc);
   2360       1.97     ozaki 		kmem_free(brt_list, sizeof(*brt_list) * count);
   2361       1.97     ozaki 		goto retry;
   2362       1.97     ozaki 	}
   2363       1.97     ozaki 
   2364       1.97     ozaki 	i = 0;
   2365      1.152     ozaki 	/*
   2366      1.152     ozaki 	 * We don't need to use a _SAFE variant here because we know
   2367      1.152     ozaki 	 * that a removed item keeps its next pointer as-is thanks to
   2368      1.152     ozaki 	 * pslist(9) and isn't freed in the loop.
   2369      1.152     ozaki 	 */
   2370      1.152     ozaki 	BRIDGE_RTLIST_WRITER_FOREACH(brt, sc) {
   2371       1.97     ozaki 		bool need_break = false;
   2372       1.97     ozaki 		if (func(sc, brt, &need_break, arg)) {
   2373       1.97     ozaki 			bridge_rtnode_remove(sc, brt);
   2374       1.97     ozaki 			brt_list[i++] = brt;
   2375       1.97     ozaki 		}
   2376       1.97     ozaki 		if (need_break)
   2377       1.97     ozaki 			break;
   2378       1.97     ozaki 	}
   2379       1.97     ozaki 
   2380       1.97     ozaki 	if (i > 0)
   2381       1.97     ozaki 		BRIDGE_RT_PSZ_PERFORM(sc);
   2382       1.97     ozaki 	BRIDGE_RT_UNLOCK(sc);
   2383       1.97     ozaki 
   2384       1.97     ozaki 	while (--i >= 0)
   2385       1.97     ozaki 		bridge_rtnode_destroy(brt_list[i]);
   2386       1.97     ozaki 
   2387       1.97     ozaki 	kmem_free(brt_list, sizeof(*brt_list) * count);
   2388       1.97     ozaki }
   2389       1.97     ozaki 
   2390       1.97     ozaki static bool
   2391       1.97     ozaki bridge_rttrim0_cb(struct bridge_softc *sc, struct bridge_rtnode *brt,
   2392       1.97     ozaki     bool *need_break, void *arg)
   2393       1.97     ozaki {
   2394       1.97     ozaki 	if ((brt->brt_flags & IFBAF_TYPEMASK) == IFBAF_DYNAMIC) {
   2395       1.97     ozaki 		/* Take into account of the subsequent removal */
   2396       1.97     ozaki 		if ((sc->sc_brtcnt - 1) <= sc->sc_brtmax)
   2397       1.97     ozaki 			*need_break = true;
   2398       1.97     ozaki 		return true;
   2399       1.97     ozaki 	} else
   2400       1.97     ozaki 		return false;
   2401       1.97     ozaki }
   2402        1.1   thorpej 
   2403       1.97     ozaki static void
   2404       1.97     ozaki bridge_rttrim0(struct bridge_softc *sc)
   2405       1.97     ozaki {
   2406       1.97     ozaki 	bridge_rtlist_iterate_remove(sc, bridge_rttrim0_cb, NULL);
   2407        1.1   thorpej }
   2408        1.1   thorpej 
   2409        1.1   thorpej /*
   2410        1.1   thorpej  * bridge_rttrim:
   2411        1.1   thorpej  *
   2412        1.1   thorpej  *	Trim the routine table so that we have a number
   2413        1.1   thorpej  *	of routing entries less than or equal to the
   2414        1.1   thorpej  *	maximum number.
   2415        1.1   thorpej  */
   2416       1.33   thorpej static void
   2417        1.1   thorpej bridge_rttrim(struct bridge_softc *sc)
   2418        1.1   thorpej {
   2419       1.87     ozaki 
   2420        1.1   thorpej 	/* Make sure we actually need to do this. */
   2421        1.1   thorpej 	if (sc->sc_brtcnt <= sc->sc_brtmax)
   2422       1.97     ozaki 		return;
   2423        1.1   thorpej 
   2424        1.1   thorpej 	/* Force an aging cycle; this might trim enough addresses. */
   2425        1.1   thorpej 	bridge_rtage(sc);
   2426        1.1   thorpej 	if (sc->sc_brtcnt <= sc->sc_brtmax)
   2427       1.97     ozaki 		return;
   2428        1.1   thorpej 
   2429       1.97     ozaki 	bridge_rttrim0(sc);
   2430       1.87     ozaki 
   2431       1.87     ozaki 	return;
   2432        1.1   thorpej }
   2433        1.1   thorpej 
   2434        1.1   thorpej /*
   2435        1.1   thorpej  * bridge_timer:
   2436        1.1   thorpej  *
   2437        1.1   thorpej  *	Aging timer for the bridge.
   2438        1.1   thorpej  */
   2439       1.33   thorpej static void
   2440        1.1   thorpej bridge_timer(void *arg)
   2441        1.1   thorpej {
   2442        1.1   thorpej 	struct bridge_softc *sc = arg;
   2443        1.1   thorpej 
   2444      1.107     ozaki 	workqueue_enqueue(sc->sc_rtage_wq, &sc->sc_rtage_wk, NULL);
   2445       1.97     ozaki }
   2446       1.97     ozaki 
   2447       1.97     ozaki static void
   2448       1.97     ozaki bridge_rtage_work(struct work *wk, void *arg)
   2449       1.97     ozaki {
   2450       1.97     ozaki 	struct bridge_softc *sc = arg;
   2451       1.97     ozaki 
   2452      1.107     ozaki 	KASSERT(wk == &sc->sc_rtage_wk);
   2453       1.87     ozaki 
   2454        1.1   thorpej 	bridge_rtage(sc);
   2455        1.1   thorpej 
   2456  1.189.4.3    martin 	BRIDGE_LOCK(sc);
   2457  1.189.4.3    martin 	if (!sc->sc_stopping) {
   2458        1.1   thorpej 		callout_reset(&sc->sc_brcallout,
   2459        1.1   thorpej 		    bridge_rtable_prune_period * hz, bridge_timer, sc);
   2460  1.189.4.3    martin 	}
   2461  1.189.4.3    martin 	BRIDGE_UNLOCK(sc);
   2462       1.97     ozaki }
   2463       1.87     ozaki 
   2464       1.97     ozaki static bool
   2465       1.97     ozaki bridge_rtage_cb(struct bridge_softc *sc, struct bridge_rtnode *brt,
   2466       1.97     ozaki     bool *need_break, void *arg)
   2467       1.97     ozaki {
   2468       1.97     ozaki 	if ((brt->brt_flags & IFBAF_TYPEMASK) == IFBAF_DYNAMIC &&
   2469       1.97     ozaki 	    time_uptime >= brt->brt_expire)
   2470       1.97     ozaki 		return true;
   2471       1.97     ozaki 	else
   2472       1.97     ozaki 		return false;
   2473        1.1   thorpej }
   2474        1.1   thorpej 
   2475        1.1   thorpej /*
   2476        1.1   thorpej  * bridge_rtage:
   2477        1.1   thorpej  *
   2478        1.1   thorpej  *	Perform an aging cycle.
   2479        1.1   thorpej  */
   2480       1.33   thorpej static void
   2481        1.1   thorpej bridge_rtage(struct bridge_softc *sc)
   2482        1.1   thorpej {
   2483       1.97     ozaki 	bridge_rtlist_iterate_remove(sc, bridge_rtage_cb, NULL);
   2484       1.97     ozaki }
   2485       1.97     ozaki 
   2486        1.1   thorpej 
   2487       1.97     ozaki static bool
   2488       1.97     ozaki bridge_rtflush_cb(struct bridge_softc *sc, struct bridge_rtnode *brt,
   2489       1.97     ozaki     bool *need_break, void *arg)
   2490       1.97     ozaki {
   2491       1.97     ozaki 	int full = *(int*)arg;
   2492       1.87     ozaki 
   2493       1.97     ozaki 	if (full || (brt->brt_flags & IFBAF_TYPEMASK) == IFBAF_DYNAMIC)
   2494       1.97     ozaki 		return true;
   2495       1.97     ozaki 	else
   2496       1.97     ozaki 		return false;
   2497        1.1   thorpej }
   2498        1.1   thorpej 
   2499        1.1   thorpej /*
   2500        1.1   thorpej  * bridge_rtflush:
   2501        1.1   thorpej  *
   2502        1.1   thorpej  *	Remove all dynamic addresses from the bridge.
   2503        1.1   thorpej  */
   2504       1.33   thorpej static void
   2505        1.1   thorpej bridge_rtflush(struct bridge_softc *sc, int full)
   2506        1.1   thorpej {
   2507       1.97     ozaki 	bridge_rtlist_iterate_remove(sc, bridge_rtflush_cb, &full);
   2508        1.1   thorpej }
   2509        1.1   thorpej 
   2510        1.1   thorpej /*
   2511        1.1   thorpej  * bridge_rtdaddr:
   2512        1.1   thorpej  *
   2513        1.1   thorpej  *	Remove an address from the table.
   2514        1.1   thorpej  */
   2515       1.33   thorpej static int
   2516        1.1   thorpej bridge_rtdaddr(struct bridge_softc *sc, const uint8_t *addr)
   2517        1.1   thorpej {
   2518        1.1   thorpej 	struct bridge_rtnode *brt;
   2519        1.1   thorpej 
   2520       1.97     ozaki 	BRIDGE_RT_LOCK(sc);
   2521       1.87     ozaki 	if ((brt = bridge_rtnode_lookup(sc, addr)) == NULL) {
   2522       1.97     ozaki 		BRIDGE_RT_UNLOCK(sc);
   2523       1.97     ozaki 		return ENOENT;
   2524       1.87     ozaki 	}
   2525       1.97     ozaki 	bridge_rtnode_remove(sc, brt);
   2526       1.97     ozaki 	BRIDGE_RT_PSZ_PERFORM(sc);
   2527       1.97     ozaki 	BRIDGE_RT_UNLOCK(sc);
   2528        1.1   thorpej 
   2529       1.97     ozaki 	bridge_rtnode_destroy(brt);
   2530       1.87     ozaki 
   2531       1.97     ozaki 	return 0;
   2532        1.1   thorpej }
   2533        1.1   thorpej 
   2534        1.1   thorpej /*
   2535        1.1   thorpej  * bridge_rtdelete:
   2536        1.1   thorpej  *
   2537        1.1   thorpej  *	Delete routes to a speicifc member interface.
   2538        1.1   thorpej  */
   2539       1.33   thorpej static void
   2540        1.1   thorpej bridge_rtdelete(struct bridge_softc *sc, struct ifnet *ifp)
   2541        1.1   thorpej {
   2542      1.110     ozaki 	struct bridge_rtnode *brt;
   2543        1.1   thorpej 
   2544      1.149     ozaki 	/* XXX pserialize_perform for each entry is slow */
   2545      1.149     ozaki again:
   2546       1.97     ozaki 	BRIDGE_RT_LOCK(sc);
   2547      1.152     ozaki 	BRIDGE_RTLIST_WRITER_FOREACH(brt, sc) {
   2548        1.1   thorpej 		if (brt->brt_ifp == ifp)
   2549       1.97     ozaki 			break;
   2550        1.1   thorpej 	}
   2551       1.97     ozaki 	if (brt == NULL) {
   2552       1.97     ozaki 		BRIDGE_RT_UNLOCK(sc);
   2553       1.97     ozaki 		return;
   2554       1.97     ozaki 	}
   2555       1.97     ozaki 	bridge_rtnode_remove(sc, brt);
   2556       1.97     ozaki 	BRIDGE_RT_PSZ_PERFORM(sc);
   2557       1.97     ozaki 	BRIDGE_RT_UNLOCK(sc);
   2558       1.87     ozaki 
   2559       1.97     ozaki 	bridge_rtnode_destroy(brt);
   2560      1.149     ozaki 
   2561      1.149     ozaki 	goto again;
   2562        1.1   thorpej }
   2563        1.1   thorpej 
   2564        1.1   thorpej /*
   2565        1.1   thorpej  * bridge_rtable_init:
   2566        1.1   thorpej  *
   2567        1.1   thorpej  *	Initialize the route table for this bridge.
   2568        1.1   thorpej  */
   2569       1.93     ozaki static void
   2570        1.1   thorpej bridge_rtable_init(struct bridge_softc *sc)
   2571        1.1   thorpej {
   2572        1.1   thorpej 	int i;
   2573        1.1   thorpej 
   2574       1.93     ozaki 	sc->sc_rthash = kmem_alloc(sizeof(*sc->sc_rthash) * BRIDGE_RTHASH_SIZE,
   2575       1.93     ozaki 	    KM_SLEEP);
   2576        1.1   thorpej 
   2577        1.1   thorpej 	for (i = 0; i < BRIDGE_RTHASH_SIZE; i++)
   2578      1.152     ozaki 		PSLIST_INIT(&sc->sc_rthash[i]);
   2579        1.1   thorpej 
   2580       1.74       tls 	sc->sc_rthash_key = cprng_fast32();
   2581        1.1   thorpej 
   2582      1.152     ozaki 	PSLIST_INIT(&sc->sc_rtlist);
   2583        1.1   thorpej 
   2584       1.97     ozaki 	sc->sc_rtlist_psz = pserialize_create();
   2585       1.97     ozaki 	sc->sc_rtlist_lock = mutex_obj_alloc(MUTEX_DEFAULT, IPL_SOFTNET);
   2586        1.1   thorpej }
   2587        1.1   thorpej 
   2588        1.1   thorpej /*
   2589        1.1   thorpej  * bridge_rtable_fini:
   2590        1.1   thorpej  *
   2591        1.1   thorpej  *	Deconstruct the route table for this bridge.
   2592        1.1   thorpej  */
   2593       1.33   thorpej static void
   2594        1.1   thorpej bridge_rtable_fini(struct bridge_softc *sc)
   2595        1.1   thorpej {
   2596        1.1   thorpej 
   2597       1.93     ozaki 	kmem_free(sc->sc_rthash, sizeof(*sc->sc_rthash) * BRIDGE_RTHASH_SIZE);
   2598      1.150     ozaki 	mutex_obj_free(sc->sc_rtlist_lock);
   2599      1.150     ozaki 	pserialize_destroy(sc->sc_rtlist_psz);
   2600        1.1   thorpej }
   2601        1.1   thorpej 
   2602        1.1   thorpej /*
   2603        1.1   thorpej  * The following hash function is adapted from "Hash Functions" by Bob Jenkins
   2604        1.1   thorpej  * ("Algorithm Alley", Dr. Dobbs Journal, September 1997).
   2605        1.1   thorpej  */
   2606        1.1   thorpej #define	mix(a, b, c)							\
   2607        1.1   thorpej do {									\
   2608        1.1   thorpej 	a -= b; a -= c; a ^= (c >> 13);					\
   2609        1.1   thorpej 	b -= c; b -= a; b ^= (a << 8);					\
   2610        1.1   thorpej 	c -= a; c -= b; c ^= (b >> 13);					\
   2611        1.1   thorpej 	a -= b; a -= c; a ^= (c >> 12);					\
   2612        1.1   thorpej 	b -= c; b -= a; b ^= (a << 16);					\
   2613        1.1   thorpej 	c -= a; c -= b; c ^= (b >> 5);					\
   2614        1.1   thorpej 	a -= b; a -= c; a ^= (c >> 3);					\
   2615        1.1   thorpej 	b -= c; b -= a; b ^= (a << 10);					\
   2616        1.1   thorpej 	c -= a; c -= b; c ^= (b >> 15);					\
   2617        1.1   thorpej } while (/*CONSTCOND*/0)
   2618        1.1   thorpej 
   2619       1.34     perry static inline uint32_t
   2620        1.1   thorpej bridge_rthash(struct bridge_softc *sc, const uint8_t *addr)
   2621        1.1   thorpej {
   2622        1.1   thorpej 	uint32_t a = 0x9e3779b9, b = 0x9e3779b9, c = sc->sc_rthash_key;
   2623        1.1   thorpej 
   2624        1.1   thorpej 	b += addr[5] << 8;
   2625        1.1   thorpej 	b += addr[4];
   2626      1.165   msaitoh 	a += (uint32_t)addr[3] << 24;
   2627        1.1   thorpej 	a += addr[2] << 16;
   2628        1.1   thorpej 	a += addr[1] << 8;
   2629        1.1   thorpej 	a += addr[0];
   2630        1.1   thorpej 
   2631        1.1   thorpej 	mix(a, b, c);
   2632        1.1   thorpej 
   2633        1.1   thorpej 	return (c & BRIDGE_RTHASH_MASK);
   2634        1.1   thorpej }
   2635        1.1   thorpej 
   2636        1.1   thorpej #undef mix
   2637        1.1   thorpej 
   2638        1.1   thorpej /*
   2639        1.1   thorpej  * bridge_rtnode_lookup:
   2640        1.1   thorpej  *
   2641        1.1   thorpej  *	Look up a bridge route node for the specified destination.
   2642        1.1   thorpej  */
   2643       1.33   thorpej static struct bridge_rtnode *
   2644        1.1   thorpej bridge_rtnode_lookup(struct bridge_softc *sc, const uint8_t *addr)
   2645        1.1   thorpej {
   2646        1.1   thorpej 	struct bridge_rtnode *brt;
   2647        1.1   thorpej 	uint32_t hash;
   2648        1.1   thorpej 	int dir;
   2649        1.1   thorpej 
   2650        1.1   thorpej 	hash = bridge_rthash(sc, addr);
   2651      1.152     ozaki 	BRIDGE_RTHASH_READER_FOREACH(brt, sc, hash) {
   2652        1.1   thorpej 		dir = memcmp(addr, brt->brt_addr, ETHER_ADDR_LEN);
   2653        1.1   thorpej 		if (dir == 0)
   2654      1.136   msaitoh 			return brt;
   2655        1.1   thorpej 		if (dir > 0)
   2656      1.136   msaitoh 			return NULL;
   2657        1.1   thorpej 	}
   2658        1.1   thorpej 
   2659      1.136   msaitoh 	return NULL;
   2660        1.1   thorpej }
   2661        1.1   thorpej 
   2662        1.1   thorpej /*
   2663        1.1   thorpej  * bridge_rtnode_insert:
   2664        1.1   thorpej  *
   2665        1.1   thorpej  *	Insert the specified bridge node into the route table.  We
   2666        1.1   thorpej  *	assume the entry is not already in the table.
   2667        1.1   thorpej  */
   2668       1.33   thorpej static int
   2669        1.1   thorpej bridge_rtnode_insert(struct bridge_softc *sc, struct bridge_rtnode *brt)
   2670        1.1   thorpej {
   2671      1.151     ozaki 	struct bridge_rtnode *lbrt, *prev = NULL;
   2672        1.1   thorpej 	uint32_t hash;
   2673        1.1   thorpej 
   2674      1.108     ozaki 	KASSERT(BRIDGE_RT_LOCKED(sc));
   2675       1.87     ozaki 
   2676        1.1   thorpej 	hash = bridge_rthash(sc, brt->brt_addr);
   2677      1.152     ozaki 	BRIDGE_RTHASH_WRITER_FOREACH(lbrt, sc, hash) {
   2678      1.151     ozaki 		int dir = memcmp(brt->brt_addr, lbrt->brt_addr, ETHER_ADDR_LEN);
   2679        1.1   thorpej 		if (dir == 0)
   2680      1.136   msaitoh 			return EEXIST;
   2681      1.151     ozaki 		if (dir > 0)
   2682      1.151     ozaki 			break;
   2683      1.151     ozaki 		prev = lbrt;
   2684      1.151     ozaki 	}
   2685      1.151     ozaki 	if (prev == NULL)
   2686      1.152     ozaki 		BRIDGE_RTHASH_WRITER_INSERT_HEAD(sc, hash, brt);
   2687      1.151     ozaki 	else
   2688      1.152     ozaki 		BRIDGE_RTHASH_WRITER_INSERT_AFTER(prev, brt);
   2689        1.1   thorpej 
   2690      1.152     ozaki 	BRIDGE_RTLIST_WRITER_INSERT_HEAD(sc, brt);
   2691        1.1   thorpej 	sc->sc_brtcnt++;
   2692        1.1   thorpej 
   2693      1.136   msaitoh 	return 0;
   2694        1.1   thorpej }
   2695        1.1   thorpej 
   2696        1.1   thorpej /*
   2697       1.97     ozaki  * bridge_rtnode_remove:
   2698        1.1   thorpej  *
   2699       1.97     ozaki  *	Remove a bridge rtnode from the rthash and the rtlist of a bridge.
   2700        1.1   thorpej  */
   2701       1.33   thorpej static void
   2702       1.97     ozaki bridge_rtnode_remove(struct bridge_softc *sc, struct bridge_rtnode *brt)
   2703        1.1   thorpej {
   2704       1.87     ozaki 
   2705      1.108     ozaki 	KASSERT(BRIDGE_RT_LOCKED(sc));
   2706        1.1   thorpej 
   2707      1.152     ozaki 	BRIDGE_RTHASH_WRITER_REMOVE(brt);
   2708      1.152     ozaki 	BRIDGE_RTLIST_WRITER_REMOVE(brt);
   2709        1.1   thorpej 	sc->sc_brtcnt--;
   2710       1.97     ozaki }
   2711       1.97     ozaki 
   2712       1.97     ozaki /*
   2713       1.97     ozaki  * bridge_rtnode_destroy:
   2714       1.97     ozaki  *
   2715       1.97     ozaki  *	Destroy a bridge rtnode.
   2716       1.97     ozaki  */
   2717       1.97     ozaki static void
   2718       1.97     ozaki bridge_rtnode_destroy(struct bridge_rtnode *brt)
   2719       1.97     ozaki {
   2720       1.97     ozaki 
   2721      1.154     ozaki 	PSLIST_ENTRY_DESTROY(brt, brt_list);
   2722      1.154     ozaki 	PSLIST_ENTRY_DESTROY(brt, brt_hash);
   2723        1.1   thorpej 	pool_put(&bridge_rtnode_pool, brt);
   2724        1.1   thorpej }
   2725        1.9  perseant 
   2726       1.77     rmind extern pfil_head_t *inet_pfil_hook;                 /* XXX */
   2727       1.77     rmind extern pfil_head_t *inet6_pfil_hook;                /* XXX */
   2728        1.9  perseant 
   2729        1.9  perseant /*
   2730        1.9  perseant  * Send bridge packets through IPF if they are one of the types IPF can deal
   2731        1.9  perseant  * with, or if they are ARP or REVARP.  (IPF will pass ARP and REVARP without
   2732        1.9  perseant  * question.)
   2733        1.9  perseant  */
   2734       1.33   thorpej static int
   2735       1.45  christos bridge_ipf(void *arg, struct mbuf **mp, struct ifnet *ifp, int dir)
   2736        1.9  perseant {
   2737       1.22       jdc 	int snap, error;
   2738       1.22       jdc 	struct ether_header *eh1, eh2;
   2739       1.31       jdc 	struct llc llc1;
   2740       1.56      matt 	uint16_t ether_type;
   2741        1.9  perseant 
   2742        1.9  perseant 	snap = 0;
   2743       1.22       jdc 	error = -1;	/* Default error if not error == 0 */
   2744       1.22       jdc 	eh1 = mtod(*mp, struct ether_header *);
   2745       1.22       jdc 	ether_type = ntohs(eh1->ether_type);
   2746        1.9  perseant 
   2747        1.9  perseant 	/*
   2748        1.9  perseant 	 * Check for SNAP/LLC.
   2749        1.9  perseant 	 */
   2750      1.130     ozaki 	if (ether_type < ETHERMTU) {
   2751      1.130     ozaki 		struct llc *llc2 = (struct llc *)(eh1 + 1);
   2752       1.29     perry 
   2753      1.130     ozaki 		if ((*mp)->m_len >= ETHER_HDR_LEN + 8 &&
   2754      1.130     ozaki 		    llc2->llc_dsap == LLC_SNAP_LSAP &&
   2755      1.130     ozaki 		    llc2->llc_ssap == LLC_SNAP_LSAP &&
   2756      1.130     ozaki 		    llc2->llc_control == LLC_UI) {
   2757      1.130     ozaki 			ether_type = htons(llc2->llc_un.type_snap.ether_type);
   2758        1.9  perseant 			snap = 1;
   2759      1.130     ozaki 		}
   2760      1.130     ozaki 	}
   2761        1.9  perseant 
   2762      1.187  yamaguch 	/* drop VLAN traffic untagged by hardware offloading */
   2763      1.187  yamaguch 	if (vlan_has_tag(*mp))
   2764      1.187  yamaguch 		goto bad;
   2765      1.187  yamaguch 
   2766        1.9  perseant 	/*
   2767        1.9  perseant 	 * If we're trying to filter bridge traffic, don't look at anything
   2768        1.9  perseant 	 * other than IP and ARP traffic.  If the filter doesn't understand
   2769        1.9  perseant 	 * IPv6, don't allow IPv6 through the bridge either.  This is lame
   2770        1.9  perseant 	 * since if we really wanted, say, an AppleTalk filter, we are hosed,
   2771        1.9  perseant 	 * but of course we don't have an AppleTalk filter to begin with.
   2772        1.9  perseant 	 * (Note that since IPF doesn't understand ARP it will pass *ALL*
   2773        1.9  perseant 	 * ARP traffic.)
   2774        1.9  perseant 	 */
   2775        1.9  perseant 	switch (ether_type) {
   2776        1.9  perseant 		case ETHERTYPE_ARP:
   2777        1.9  perseant 		case ETHERTYPE_REVARP:
   2778        1.9  perseant 			return 0; /* Automatically pass */
   2779        1.9  perseant 		case ETHERTYPE_IP:
   2780        1.9  perseant # ifdef INET6
   2781        1.9  perseant 		case ETHERTYPE_IPV6:
   2782        1.9  perseant # endif /* INET6 */
   2783        1.9  perseant 			break;
   2784        1.9  perseant 		default:
   2785        1.9  perseant 			goto bad;
   2786        1.9  perseant 	}
   2787        1.9  perseant 
   2788       1.22       jdc 	/* Strip off the Ethernet header and keep a copy. */
   2789       1.50  christos 	m_copydata(*mp, 0, ETHER_HDR_LEN, (void *) &eh2);
   2790       1.22       jdc 	m_adj(*mp, ETHER_HDR_LEN);
   2791       1.22       jdc 
   2792        1.9  perseant 	/* Strip off snap header, if present */
   2793        1.9  perseant 	if (snap) {
   2794       1.50  christos 		m_copydata(*mp, 0, sizeof(struct llc), (void *) &llc1);
   2795       1.22       jdc 		m_adj(*mp, sizeof(struct llc));
   2796       1.19  christos 	}
   2797        1.9  perseant 
   2798        1.9  perseant 	/*
   2799       1.22       jdc 	 * Check basic packet sanity and run IPF through pfil.
   2800        1.9  perseant 	 */
   2801       1.65    bouyer 	KASSERT(!cpu_intr_p());
   2802       1.22       jdc 	switch (ether_type)
   2803       1.22       jdc 	{
   2804       1.22       jdc 	case ETHERTYPE_IP :
   2805      1.131  christos 		error = bridge_ip_checkbasic(mp);
   2806       1.22       jdc 		if (error == 0)
   2807       1.77     rmind 			error = pfil_run_hooks(inet_pfil_hook, mp, ifp, dir);
   2808       1.22       jdc 		break;
   2809        1.9  perseant # ifdef INET6
   2810       1.22       jdc 	case ETHERTYPE_IPV6 :
   2811      1.131  christos 		error = bridge_ip6_checkbasic(mp);
   2812       1.22       jdc 		if (error == 0)
   2813       1.77     rmind 			error = pfil_run_hooks(inet6_pfil_hook, mp, ifp, dir);
   2814       1.22       jdc 		break;
   2815       1.22       jdc # endif
   2816       1.22       jdc 	default :
   2817       1.22       jdc 		error = 0;
   2818       1.22       jdc 		break;
   2819        1.9  perseant 	}
   2820       1.22       jdc 
   2821       1.22       jdc 	if (*mp == NULL)
   2822       1.22       jdc 		return error;
   2823       1.22       jdc 	if (error != 0)
   2824       1.22       jdc 		goto bad;
   2825       1.22       jdc 
   2826       1.22       jdc 	error = -1;
   2827        1.9  perseant 
   2828        1.9  perseant 	/*
   2829        1.9  perseant 	 * Finally, put everything back the way it was and return
   2830        1.9  perseant 	 */
   2831       1.18       jdc 	if (snap) {
   2832       1.22       jdc 		M_PREPEND(*mp, sizeof(struct llc), M_DONTWAIT);
   2833       1.22       jdc 		if (*mp == NULL)
   2834       1.22       jdc 			return error;
   2835       1.50  christos 		bcopy(&llc1, mtod(*mp, void *), sizeof(struct llc));
   2836       1.18       jdc 	}
   2837       1.18       jdc 
   2838       1.22       jdc 	M_PREPEND(*mp, ETHER_HDR_LEN, M_DONTWAIT);
   2839       1.22       jdc 	if (*mp == NULL)
   2840       1.22       jdc 		return error;
   2841       1.50  christos 	bcopy(&eh2, mtod(*mp, void *), ETHER_HDR_LEN);
   2842       1.22       jdc 
   2843        1.9  perseant 	return 0;
   2844        1.9  perseant 
   2845        1.9  perseant     bad:
   2846        1.9  perseant 	m_freem(*mp);
   2847        1.9  perseant 	*mp = NULL;
   2848        1.9  perseant 	return error;
   2849        1.9  perseant }
   2850        1.9  perseant 
   2851        1.9  perseant /*
   2852        1.9  perseant  * Perform basic checks on header size since
   2853        1.9  perseant  * IPF assumes ip_input has already processed
   2854        1.9  perseant  * it for it.  Cut-and-pasted from ip_input.c.
   2855        1.9  perseant  * Given how simple the IPv6 version is,
   2856        1.9  perseant  * does the IPv4 version really need to be
   2857        1.9  perseant  * this complicated?
   2858        1.9  perseant  *
   2859        1.9  perseant  * XXX Should we update ipstat here, or not?
   2860        1.9  perseant  * XXX Right now we update ipstat but not
   2861        1.9  perseant  * XXX csum_counter.
   2862        1.9  perseant  */
   2863        1.9  perseant static int
   2864        1.9  perseant bridge_ip_checkbasic(struct mbuf **mp)
   2865        1.9  perseant {
   2866        1.9  perseant 	struct mbuf *m = *mp;
   2867        1.9  perseant 	struct ip *ip;
   2868        1.9  perseant 	int len, hlen;
   2869        1.9  perseant 
   2870        1.9  perseant 	if (*mp == NULL)
   2871        1.9  perseant 		return -1;
   2872        1.9  perseant 
   2873      1.179  christos 	if (M_GET_ALIGNED_HDR(&m, struct ip, true) != 0) {
   2874      1.178  christos 		/* XXXJRT new stat, please */
   2875      1.178  christos 		ip_statinc(IP_STAT_TOOSMALL);
   2876      1.178  christos 		goto bad;
   2877        1.9  perseant 	}
   2878        1.9  perseant 	ip = mtod(m, struct ip *);
   2879        1.9  perseant 	if (ip == NULL) goto bad;
   2880        1.9  perseant 
   2881        1.9  perseant 	if (ip->ip_v != IPVERSION) {
   2882       1.59   thorpej 		ip_statinc(IP_STAT_BADVERS);
   2883        1.9  perseant 		goto bad;
   2884        1.9  perseant 	}
   2885        1.9  perseant 	hlen = ip->ip_hl << 2;
   2886        1.9  perseant 	if (hlen < sizeof(struct ip)) { /* minimum header length */
   2887       1.59   thorpej 		ip_statinc(IP_STAT_BADHLEN);
   2888        1.9  perseant 		goto bad;
   2889        1.9  perseant 	}
   2890        1.9  perseant 	if (hlen > m->m_len) {
   2891        1.9  perseant 		if ((m = m_pullup(m, hlen)) == 0) {
   2892       1.59   thorpej 			ip_statinc(IP_STAT_BADHLEN);
   2893        1.9  perseant 			goto bad;
   2894        1.9  perseant 		}
   2895        1.9  perseant 		ip = mtod(m, struct ip *);
   2896        1.9  perseant 		if (ip == NULL) goto bad;
   2897        1.9  perseant 	}
   2898        1.9  perseant 
   2899      1.130     ozaki 	switch (m->m_pkthdr.csum_flags &
   2900      1.130     ozaki 	        ((m_get_rcvif_NOMPSAFE(m)->if_csum_flags_rx & M_CSUM_IPv4) |
   2901      1.130     ozaki 	         M_CSUM_IPv4_BAD)) {
   2902      1.130     ozaki 	case M_CSUM_IPv4|M_CSUM_IPv4_BAD:
   2903      1.130     ozaki 		/* INET_CSUM_COUNTER_INCR(&ip_hwcsum_bad); */
   2904      1.130     ozaki 		goto bad;
   2905      1.130     ozaki 
   2906      1.130     ozaki 	case M_CSUM_IPv4:
   2907      1.130     ozaki 		/* Checksum was okay. */
   2908      1.130     ozaki 		/* INET_CSUM_COUNTER_INCR(&ip_hwcsum_ok); */
   2909      1.130     ozaki 		break;
   2910      1.130     ozaki 
   2911      1.130     ozaki 	default:
   2912      1.130     ozaki 		/* Must compute it ourselves. */
   2913      1.130     ozaki 		/* INET_CSUM_COUNTER_INCR(&ip_swcsum); */
   2914      1.130     ozaki 		if (in_cksum(m, hlen) != 0)
   2915      1.130     ozaki 			goto bad;
   2916      1.130     ozaki 		break;
   2917      1.130     ozaki 	}
   2918      1.130     ozaki 
   2919      1.130     ozaki 	/* Retrieve the packet length. */
   2920      1.130     ozaki 	len = ntohs(ip->ip_len);
   2921      1.130     ozaki 
   2922      1.130     ozaki 	/*
   2923      1.130     ozaki 	 * Check for additional length bogosity
   2924      1.130     ozaki 	 */
   2925      1.130     ozaki 	if (len < hlen) {
   2926       1.59   thorpej 		ip_statinc(IP_STAT_BADLEN);
   2927      1.130     ozaki 		goto bad;
   2928      1.130     ozaki 	}
   2929        1.9  perseant 
   2930      1.130     ozaki 	/*
   2931      1.130     ozaki 	 * Check that the amount of data in the buffers
   2932      1.130     ozaki 	 * is as at least much as the IP header would have us expect.
   2933      1.130     ozaki 	 * Drop packet if shorter than we expect.
   2934      1.130     ozaki 	 */
   2935      1.130     ozaki 	if (m->m_pkthdr.len < len) {
   2936       1.59   thorpej 		ip_statinc(IP_STAT_TOOSHORT);
   2937      1.130     ozaki 		goto bad;
   2938      1.130     ozaki 	}
   2939        1.9  perseant 
   2940        1.9  perseant 	/* Checks out, proceed */
   2941        1.9  perseant 	*mp = m;
   2942        1.9  perseant 	return 0;
   2943        1.9  perseant 
   2944        1.9  perseant     bad:
   2945        1.9  perseant 	*mp = m;
   2946        1.9  perseant 	return -1;
   2947        1.9  perseant }
   2948        1.9  perseant 
   2949        1.9  perseant # ifdef INET6
   2950        1.9  perseant /*
   2951        1.9  perseant  * Same as above, but for IPv6.
   2952        1.9  perseant  * Cut-and-pasted from ip6_input.c.
   2953        1.9  perseant  * XXX Should we update ip6stat, or not?
   2954        1.9  perseant  */
   2955        1.9  perseant static int
   2956        1.9  perseant bridge_ip6_checkbasic(struct mbuf **mp)
   2957        1.9  perseant {
   2958        1.9  perseant 	struct mbuf *m = *mp;
   2959       1.16       jdc 	struct ip6_hdr *ip6;
   2960        1.9  perseant 
   2961      1.130     ozaki 	/*
   2962      1.130     ozaki 	 * If the IPv6 header is not aligned, slurp it up into a new
   2963      1.130     ozaki 	 * mbuf with space for link headers, in the event we forward
   2964      1.130     ozaki 	 * it.  Otherwise, if it is aligned, make sure the entire base
   2965      1.130     ozaki 	 * IPv6 header is in the first mbuf of the chain.
   2966      1.130     ozaki 	 */
   2967      1.179  christos 	if (M_GET_ALIGNED_HDR(&m, struct ip6_hdr, true) != 0) {
   2968      1.130     ozaki 		struct ifnet *inifp = m_get_rcvif_NOMPSAFE(m);
   2969      1.178  christos 		/* XXXJRT new stat, please */
   2970      1.178  christos 		ip6_statinc(IP6_STAT_TOOSMALL);
   2971      1.178  christos 		in6_ifstat_inc(inifp, ifs6_in_hdrerr);
   2972      1.178  christos 		goto bad;
   2973      1.130     ozaki 	}
   2974        1.9  perseant 
   2975      1.130     ozaki 	ip6 = mtod(m, struct ip6_hdr *);
   2976        1.9  perseant 
   2977      1.130     ozaki 	if ((ip6->ip6_vfc & IPV6_VERSION_MASK) != IPV6_VERSION) {
   2978       1.61   thorpej 		ip6_statinc(IP6_STAT_BADVERS);
   2979      1.130     ozaki 		in6_ifstat_inc(m_get_rcvif_NOMPSAFE(m), ifs6_in_hdrerr);
   2980      1.130     ozaki 		goto bad;
   2981      1.130     ozaki 	}
   2982        1.9  perseant 
   2983        1.9  perseant 	/* Checks out, proceed */
   2984        1.9  perseant 	*mp = m;
   2985        1.9  perseant 	return 0;
   2986        1.9  perseant 
   2987        1.9  perseant     bad:
   2988        1.9  perseant 	*mp = m;
   2989        1.9  perseant 	return -1;
   2990        1.9  perseant }
   2991        1.9  perseant # endif /* INET6 */
   2992