if_gif.c revision 1.136 1 1.136 pgoyette /* $NetBSD: if_gif.c,v 1.136 2017/12/09 08:03:06 pgoyette Exp $ */
2 1.34 itojun /* $KAME: if_gif.c,v 1.76 2001/08/20 02:01:02 kjc Exp $ */
3 1.3 itojun
4 1.2 itojun /*
5 1.2 itojun * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project.
6 1.2 itojun * All rights reserved.
7 1.9 itojun *
8 1.2 itojun * Redistribution and use in source and binary forms, with or without
9 1.2 itojun * modification, are permitted provided that the following conditions
10 1.2 itojun * are met:
11 1.2 itojun * 1. Redistributions of source code must retain the above copyright
12 1.2 itojun * notice, this list of conditions and the following disclaimer.
13 1.2 itojun * 2. Redistributions in binary form must reproduce the above copyright
14 1.2 itojun * notice, this list of conditions and the following disclaimer in the
15 1.2 itojun * documentation and/or other materials provided with the distribution.
16 1.2 itojun * 3. Neither the name of the project nor the names of its contributors
17 1.2 itojun * may be used to endorse or promote products derived from this software
18 1.2 itojun * without specific prior written permission.
19 1.9 itojun *
20 1.2 itojun * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
21 1.2 itojun * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
22 1.2 itojun * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
23 1.2 itojun * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
24 1.2 itojun * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
25 1.2 itojun * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
26 1.2 itojun * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
27 1.2 itojun * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
28 1.2 itojun * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
29 1.2 itojun * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
30 1.2 itojun * SUCH DAMAGE.
31 1.2 itojun */
32 1.36 lukem
33 1.36 lukem #include <sys/cdefs.h>
34 1.136 pgoyette __KERNEL_RCSID(0, "$NetBSD: if_gif.c,v 1.136 2017/12/09 08:03:06 pgoyette Exp $");
35 1.2 itojun
36 1.88 pooka #ifdef _KERNEL_OPT
37 1.2 itojun #include "opt_inet.h"
38 1.118 knakahar #include "opt_net_mpsafe.h"
39 1.88 pooka #endif
40 1.2 itojun
41 1.2 itojun #include <sys/param.h>
42 1.2 itojun #include <sys/systm.h>
43 1.2 itojun #include <sys/kernel.h>
44 1.2 itojun #include <sys/mbuf.h>
45 1.2 itojun #include <sys/socket.h>
46 1.2 itojun #include <sys/sockio.h>
47 1.2 itojun #include <sys/errno.h>
48 1.2 itojun #include <sys/ioctl.h>
49 1.2 itojun #include <sys/time.h>
50 1.86 martin #include <sys/socketvar.h>
51 1.2 itojun #include <sys/syslog.h>
52 1.17 martin #include <sys/proc.h>
53 1.72 ad #include <sys/cpu.h>
54 1.72 ad #include <sys/intr.h>
55 1.98 knakahar #include <sys/kmem.h>
56 1.104 knakahar #include <sys/sysctl.h>
57 1.114 knakahar #include <sys/xcall.h>
58 1.120 christos #include <sys/device.h>
59 1.120 christos #include <sys/module.h>
60 1.133 knakahar #include <sys/mutex.h>
61 1.133 knakahar #include <sys/pserialize.h>
62 1.133 knakahar #include <sys/psref.h>
63 1.2 itojun
64 1.2 itojun #include <net/if.h>
65 1.2 itojun #include <net/if_types.h>
66 1.2 itojun #include <net/netisr.h>
67 1.2 itojun #include <net/route.h>
68 1.2 itojun #include <net/bpf.h>
69 1.2 itojun
70 1.2 itojun #include <netinet/in.h>
71 1.2 itojun #include <netinet/in_systm.h>
72 1.15 itojun #include <netinet/ip.h>
73 1.15 itojun #ifdef INET
74 1.2 itojun #include <netinet/in_var.h>
75 1.57 christos #endif /* INET */
76 1.2 itojun #include <netinet/in_gif.h>
77 1.2 itojun
78 1.2 itojun #ifdef INET6
79 1.2 itojun #ifndef INET
80 1.2 itojun #include <netinet/in.h>
81 1.2 itojun #endif
82 1.2 itojun #include <netinet6/in6_var.h>
83 1.2 itojun #include <netinet/ip6.h>
84 1.2 itojun #include <netinet6/ip6_var.h>
85 1.2 itojun #include <netinet6/in6_gif.h>
86 1.2 itojun #endif /* INET6 */
87 1.2 itojun
88 1.9 itojun #include <netinet/ip_encap.h>
89 1.2 itojun #include <net/if_gif.h>
90 1.2 itojun
91 1.87 christos #include <net/net_osdep.h>
92 1.2 itojun
93 1.87 christos #include "ioconf.h"
94 1.4 itojun
95 1.118 knakahar #ifdef NET_MPSAFE
96 1.118 knakahar #define GIF_MPSAFE 1
97 1.118 knakahar #endif
98 1.118 knakahar
99 1.2 itojun /*
100 1.2 itojun * gif global variable definitions
101 1.2 itojun */
102 1.130 knakahar LIST_HEAD(gif_sclist, gif_softc);
103 1.130 knakahar static struct {
104 1.130 knakahar struct gif_sclist list;
105 1.130 knakahar kmutex_t lock;
106 1.130 knakahar } gif_softcs __cacheline_aligned;
107 1.12 thorpej
108 1.133 knakahar pserialize_t gif_psz __read_mostly;
109 1.133 knakahar struct psref_class *gv_psref_class __read_mostly;
110 1.133 knakahar
111 1.129 knakahar static void gif_ro_init_pc(void *, void *, struct cpu_info *);
112 1.129 knakahar static void gif_ro_fini_pc(void *, void *, struct cpu_info *);
113 1.129 knakahar
114 1.131 msaitoh static int gifattach0(struct gif_softc *);
115 1.109 knakahar static int gif_output(struct ifnet *, struct mbuf *,
116 1.109 knakahar const struct sockaddr *, const struct rtentry *);
117 1.111 knakahar static void gif_start(struct ifnet *);
118 1.119 knakahar static int gif_transmit(struct ifnet *, struct mbuf *);
119 1.133 knakahar static int gif_transmit_direct(struct gif_variant *, struct mbuf *);
120 1.109 knakahar static int gif_ioctl(struct ifnet *, u_long, void *);
121 1.109 knakahar static int gif_set_tunnel(struct ifnet *, struct sockaddr *,
122 1.109 knakahar struct sockaddr *);
123 1.109 knakahar static void gif_delete_tunnel(struct ifnet *);
124 1.109 knakahar
125 1.56 thorpej static int gif_clone_create(struct if_clone *, int);
126 1.56 thorpej static int gif_clone_destroy(struct ifnet *);
127 1.95 knakahar static int gif_check_nesting(struct ifnet *, struct mbuf *);
128 1.12 thorpej
129 1.133 knakahar static int gif_encap_attach(struct gif_variant *);
130 1.133 knakahar static int gif_encap_detach(struct gif_variant *);
131 1.133 knakahar
132 1.133 knakahar static void gif_update_variant(struct gif_softc *, struct gif_variant *);
133 1.114 knakahar
134 1.56 thorpej static struct if_clone gif_cloner =
135 1.12 thorpej IF_CLONE_INITIALIZER("gif", gif_clone_create, gif_clone_destroy);
136 1.12 thorpej
137 1.9 itojun #ifndef MAX_GIF_NEST
138 1.9 itojun /*
139 1.9 itojun * This macro controls the upper limitation on nesting of gif tunnels.
140 1.9 itojun * Since, setting a large value to this macro with a careless configuration
141 1.9 itojun * may introduce system crash, we don't allow any nestings by default.
142 1.9 itojun * If you need to configure nested gif tunnels, you can define this macro
143 1.31 itojun * in your kernel configuration file. However, if you do so, please be
144 1.9 itojun * careful to configure the tunnels so that it won't make a loop.
145 1.9 itojun */
146 1.9 itojun #define MAX_GIF_NEST 1
147 1.9 itojun #endif
148 1.9 itojun static int max_gif_nesting = MAX_GIF_NEST;
149 1.2 itojun
150 1.120 christos static struct sysctllog *gif_sysctl;
151 1.120 christos
152 1.104 knakahar static void
153 1.120 christos gif_sysctl_setup(void)
154 1.104 knakahar {
155 1.120 christos gif_sysctl = NULL;
156 1.104 knakahar
157 1.104 knakahar #ifdef INET
158 1.121 knakahar /*
159 1.121 knakahar * Previously create "net.inet.ip" entry to avoid sysctl_createv error.
160 1.121 knakahar */
161 1.121 knakahar sysctl_createv(NULL, 0, NULL, NULL,
162 1.121 knakahar CTLFLAG_PERMANENT,
163 1.121 knakahar CTLTYPE_NODE, "inet",
164 1.121 knakahar SYSCTL_DESCR("PF_INET related settings"),
165 1.121 knakahar NULL, 0, NULL, 0,
166 1.121 knakahar CTL_NET, PF_INET, CTL_EOL);
167 1.121 knakahar sysctl_createv(NULL, 0, NULL, NULL,
168 1.121 knakahar CTLFLAG_PERMANENT,
169 1.121 knakahar CTLTYPE_NODE, "ip",
170 1.121 knakahar SYSCTL_DESCR("IPv4 related settings"),
171 1.121 knakahar NULL, 0, NULL, 0,
172 1.121 knakahar CTL_NET, PF_INET, IPPROTO_IP, CTL_EOL);
173 1.121 knakahar
174 1.120 christos sysctl_createv(&gif_sysctl, 0, NULL, NULL,
175 1.104 knakahar CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
176 1.104 knakahar CTLTYPE_INT, "gifttl",
177 1.104 knakahar SYSCTL_DESCR("Default TTL for a gif tunnel datagram"),
178 1.104 knakahar NULL, 0, &ip_gif_ttl, 0,
179 1.104 knakahar CTL_NET, PF_INET, IPPROTO_IP,
180 1.104 knakahar IPCTL_GIF_TTL, CTL_EOL);
181 1.104 knakahar #endif
182 1.104 knakahar #ifdef INET6
183 1.121 knakahar /*
184 1.121 knakahar * Previously create "net.inet6.ip6" entry to avoid sysctl_createv error.
185 1.121 knakahar */
186 1.121 knakahar sysctl_createv(NULL, 0, NULL, NULL,
187 1.121 knakahar CTLFLAG_PERMANENT,
188 1.121 knakahar CTLTYPE_NODE, "inet6",
189 1.121 knakahar SYSCTL_DESCR("PF_INET6 related settings"),
190 1.121 knakahar NULL, 0, NULL, 0,
191 1.121 knakahar CTL_NET, PF_INET6, CTL_EOL);
192 1.121 knakahar sysctl_createv(NULL, 0, NULL, NULL,
193 1.121 knakahar CTLFLAG_PERMANENT,
194 1.121 knakahar CTLTYPE_NODE, "ip6",
195 1.121 knakahar SYSCTL_DESCR("IPv6 related settings"),
196 1.121 knakahar NULL, 0, NULL, 0,
197 1.121 knakahar CTL_NET, PF_INET6, IPPROTO_IPV6, CTL_EOL);
198 1.121 knakahar
199 1.120 christos sysctl_createv(&gif_sysctl, 0, NULL, NULL,
200 1.104 knakahar CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
201 1.104 knakahar CTLTYPE_INT, "gifhlim",
202 1.104 knakahar SYSCTL_DESCR("Default hop limit for a gif tunnel datagram"),
203 1.104 knakahar NULL, 0, &ip6_gif_hlim, 0,
204 1.104 knakahar CTL_NET, PF_INET6, IPPROTO_IPV6,
205 1.104 knakahar IPV6CTL_GIF_HLIM, CTL_EOL);
206 1.104 knakahar #endif
207 1.104 knakahar }
208 1.104 knakahar
209 1.12 thorpej /* ARGSUSED */
210 1.2 itojun void
211 1.63 christos gifattach(int count)
212 1.12 thorpej {
213 1.120 christos /*
214 1.120 christos * Nothing to do here, initialization is handled by the
215 1.120 christos * module initialization code in gifinit() below).
216 1.120 christos */
217 1.120 christos }
218 1.120 christos
219 1.120 christos static void
220 1.120 christos gifinit(void)
221 1.120 christos {
222 1.12 thorpej
223 1.130 knakahar mutex_init(&gif_softcs.lock, MUTEX_DEFAULT, IPL_NONE);
224 1.130 knakahar LIST_INIT(&gif_softcs.list);
225 1.12 thorpej if_clone_attach(&gif_cloner);
226 1.104 knakahar
227 1.133 knakahar gif_psz = pserialize_create();
228 1.133 knakahar gv_psref_class = psref_class_create("gifvar", IPL_SOFTNET);
229 1.133 knakahar
230 1.120 christos gif_sysctl_setup();
231 1.120 christos }
232 1.120 christos
233 1.120 christos static int
234 1.120 christos gifdetach(void)
235 1.120 christos {
236 1.120 christos int error = 0;
237 1.120 christos
238 1.130 knakahar mutex_enter(&gif_softcs.lock);
239 1.130 knakahar if (!LIST_EMPTY(&gif_softcs.list)) {
240 1.130 knakahar mutex_exit(&gif_softcs.lock);
241 1.120 christos error = EBUSY;
242 1.130 knakahar }
243 1.120 christos
244 1.120 christos if (error == 0) {
245 1.133 knakahar psref_class_destroy(gv_psref_class);
246 1.133 knakahar pserialize_destroy(gif_psz);
247 1.133 knakahar
248 1.120 christos if_clone_detach(&gif_cloner);
249 1.120 christos sysctl_teardown(&gif_sysctl);
250 1.120 christos }
251 1.120 christos
252 1.120 christos return error;
253 1.12 thorpej }
254 1.12 thorpej
255 1.56 thorpej static int
256 1.56 thorpej gif_clone_create(struct if_clone *ifc, int unit)
257 1.2 itojun {
258 1.12 thorpej struct gif_softc *sc;
259 1.133 knakahar struct gif_variant *var;
260 1.131 msaitoh int rv;
261 1.12 thorpej
262 1.98 knakahar sc = kmem_zalloc(sizeof(struct gif_softc), KM_SLEEP);
263 1.2 itojun
264 1.75 christos if_initname(&sc->gif_if, ifc->ifc_name, unit);
265 1.9 itojun
266 1.131 msaitoh rv = gifattach0(sc);
267 1.131 msaitoh if (rv != 0) {
268 1.131 msaitoh kmem_free(sc, sizeof(struct gif_softc));
269 1.131 msaitoh return rv;
270 1.131 msaitoh }
271 1.31 itojun
272 1.133 knakahar var = kmem_zalloc(sizeof(*var), KM_SLEEP);
273 1.133 knakahar var->gv_softc = sc;
274 1.133 knakahar psref_target_init(&var->gv_psref, gv_psref_class);
275 1.133 knakahar
276 1.133 knakahar sc->gif_var = var;
277 1.133 knakahar mutex_init(&sc->gif_lock, MUTEX_DEFAULT, IPL_NONE);
278 1.129 knakahar sc->gif_ro_percpu = percpu_alloc(sizeof(struct gif_ro));
279 1.129 knakahar percpu_foreach(sc->gif_ro_percpu, gif_ro_init_pc, NULL);
280 1.129 knakahar
281 1.130 knakahar mutex_enter(&gif_softcs.lock);
282 1.130 knakahar LIST_INSERT_HEAD(&gif_softcs.list, sc, gif_list);
283 1.130 knakahar mutex_exit(&gif_softcs.lock);
284 1.131 msaitoh return 0;
285 1.31 itojun }
286 1.31 itojun
287 1.131 msaitoh static int
288 1.56 thorpej gifattach0(struct gif_softc *sc)
289 1.31 itojun {
290 1.131 msaitoh int rv;
291 1.31 itojun
292 1.31 itojun sc->gif_if.if_addrlen = 0;
293 1.12 thorpej sc->gif_if.if_mtu = GIF_MTU;
294 1.12 thorpej sc->gif_if.if_flags = IFF_POINTOPOINT | IFF_MULTICAST;
295 1.113 knakahar sc->gif_if.if_extflags = IFEF_NO_LINK_STATE_CHANGE;
296 1.122 knakahar #ifdef GIF_MPSAFE
297 1.132 ozaki sc->gif_if.if_extflags |= IFEF_MPSAFE;
298 1.122 knakahar #endif
299 1.12 thorpej sc->gif_if.if_ioctl = gif_ioctl;
300 1.12 thorpej sc->gif_if.if_output = gif_output;
301 1.119 knakahar sc->gif_if.if_start = gif_start;
302 1.119 knakahar sc->gif_if.if_transmit = gif_transmit;
303 1.12 thorpej sc->gif_if.if_type = IFT_GIF;
304 1.19 thorpej sc->gif_if.if_dlt = DLT_NULL;
305 1.76 dyoung sc->gif_if.if_softc = sc;
306 1.34 itojun IFQ_SET_READY(&sc->gif_if.if_snd);
307 1.131 msaitoh rv = if_initialize(&sc->gif_if);
308 1.131 msaitoh if (rv != 0)
309 1.131 msaitoh return rv;
310 1.131 msaitoh
311 1.112 knakahar if_register(&sc->gif_if);
312 1.20 thorpej if_alloc_sadl(&sc->gif_if);
313 1.78 joerg bpf_attach(&sc->gif_if, DLT_NULL, sizeof(u_int));
314 1.131 msaitoh return 0;
315 1.12 thorpej }
316 1.12 thorpej
317 1.129 knakahar static void
318 1.129 knakahar gif_ro_init_pc(void *p, void *arg __unused, struct cpu_info *ci __unused)
319 1.129 knakahar {
320 1.129 knakahar struct gif_ro *gro = p;
321 1.129 knakahar
322 1.129 knakahar mutex_init(&gro->gr_lock, MUTEX_DEFAULT, IPL_NONE);
323 1.129 knakahar }
324 1.129 knakahar
325 1.129 knakahar static void
326 1.129 knakahar gif_ro_fini_pc(void *p, void *arg __unused, struct cpu_info *ci __unused)
327 1.129 knakahar {
328 1.129 knakahar struct gif_ro *gro = p;
329 1.129 knakahar
330 1.129 knakahar rtcache_free(&gro->gr_ro);
331 1.129 knakahar
332 1.129 knakahar mutex_destroy(&gro->gr_lock);
333 1.129 knakahar }
334 1.129 knakahar
335 1.124 knakahar void
336 1.124 knakahar gif_rtcache_free_pc(void *p, void *arg __unused, struct cpu_info *ci __unused)
337 1.124 knakahar {
338 1.129 knakahar struct gif_ro *gro = p;
339 1.124 knakahar
340 1.129 knakahar rtcache_free(&gro->gr_ro);
341 1.124 knakahar }
342 1.124 knakahar
343 1.56 thorpej static int
344 1.56 thorpej gif_clone_destroy(struct ifnet *ifp)
345 1.12 thorpej {
346 1.12 thorpej struct gif_softc *sc = (void *) ifp;
347 1.133 knakahar struct gif_variant *var;
348 1.12 thorpej
349 1.12 thorpej LIST_REMOVE(sc, gif_list);
350 1.12 thorpej
351 1.94 knakahar gif_delete_tunnel(&sc->gif_if);
352 1.78 joerg bpf_detach(ifp);
353 1.69 dyoung if_detach(ifp);
354 1.129 knakahar
355 1.129 knakahar percpu_foreach(sc->gif_ro_percpu, gif_ro_fini_pc, NULL);
356 1.129 knakahar percpu_free(sc->gif_ro_percpu, sizeof(struct gif_ro));
357 1.129 knakahar
358 1.133 knakahar mutex_destroy(&sc->gif_lock);
359 1.133 knakahar
360 1.133 knakahar var = sc->gif_var;
361 1.133 knakahar kmem_free(var, sizeof(*var));
362 1.98 knakahar kmem_free(sc, sizeof(struct gif_softc));
363 1.47 peter
364 1.131 msaitoh return 0;
365 1.9 itojun }
366 1.9 itojun
367 1.42 itojun #ifdef GIF_ENCAPCHECK
368 1.31 itojun int
369 1.56 thorpej gif_encapcheck(struct mbuf *m, int off, int proto, void *arg)
370 1.9 itojun {
371 1.9 itojun struct ip ip;
372 1.9 itojun struct gif_softc *sc;
373 1.133 knakahar struct gif_variant *var;
374 1.133 knakahar struct psref psref;
375 1.133 knakahar int ret = 0;
376 1.9 itojun
377 1.76 dyoung sc = arg;
378 1.9 itojun if (sc == NULL)
379 1.9 itojun return 0;
380 1.9 itojun
381 1.134 knakahar if ((sc->gif_if.if_flags & IFF_UP) == 0)
382 1.9 itojun return 0;
383 1.9 itojun
384 1.133 knakahar var = gif_getref_variant(sc, &psref);
385 1.133 knakahar if (var->gv_psrc == NULL || var->gv_pdst == NULL)
386 1.133 knakahar goto out;
387 1.133 knakahar
388 1.9 itojun /* no physical address */
389 1.133 knakahar if (!var->gv_psrc || !var->gv_pdst)
390 1.133 knakahar goto out;
391 1.9 itojun
392 1.9 itojun switch (proto) {
393 1.9 itojun #ifdef INET
394 1.9 itojun case IPPROTO_IPV4:
395 1.9 itojun break;
396 1.9 itojun #endif
397 1.9 itojun #ifdef INET6
398 1.9 itojun case IPPROTO_IPV6:
399 1.9 itojun break;
400 1.9 itojun #endif
401 1.9 itojun default:
402 1.133 knakahar goto out;
403 1.9 itojun }
404 1.40 christos
405 1.40 christos /* Bail on short packets */
406 1.40 christos KASSERT(m->m_flags & M_PKTHDR);
407 1.40 christos if (m->m_pkthdr.len < sizeof(ip))
408 1.133 knakahar goto out;
409 1.9 itojun
410 1.76 dyoung m_copydata(m, 0, sizeof(ip), &ip);
411 1.9 itojun
412 1.9 itojun switch (ip.ip_v) {
413 1.9 itojun #ifdef INET
414 1.9 itojun case 4:
415 1.133 knakahar if (var->gv_psrc->sa_family != AF_INET ||
416 1.133 knakahar var->gv_pdst->sa_family != AF_INET)
417 1.133 knakahar goto out;
418 1.133 knakahar ret = gif_encapcheck4(m, off, proto, var);
419 1.133 knakahar break;
420 1.9 itojun #endif
421 1.9 itojun #ifdef INET6
422 1.9 itojun case 6:
423 1.41 itojun if (m->m_pkthdr.len < sizeof(struct ip6_hdr))
424 1.133 knakahar goto out;
425 1.133 knakahar if (var->gv_psrc->sa_family != AF_INET6 ||
426 1.133 knakahar var->gv_pdst->sa_family != AF_INET6)
427 1.133 knakahar goto out;
428 1.133 knakahar ret = gif_encapcheck6(m, off, proto, var);
429 1.133 knakahar break;
430 1.9 itojun #endif
431 1.9 itojun default:
432 1.133 knakahar goto out;
433 1.2 itojun }
434 1.133 knakahar
435 1.133 knakahar out:
436 1.133 knakahar gif_putref_variant(var, &psref);
437 1.133 knakahar return ret;
438 1.2 itojun }
439 1.42 itojun #endif
440 1.2 itojun
441 1.95 knakahar /*
442 1.95 knakahar * gif may cause infinite recursion calls when misconfigured.
443 1.95 knakahar * We'll prevent this by introducing upper limit.
444 1.95 knakahar */
445 1.95 knakahar static int
446 1.95 knakahar gif_check_nesting(struct ifnet *ifp, struct mbuf *m)
447 1.95 knakahar {
448 1.95 knakahar
449 1.135 knakahar return if_tunnel_check_nesting(ifp, m, max_gif_nesting);
450 1.95 knakahar }
451 1.95 knakahar
452 1.109 knakahar static int
453 1.65 dyoung gif_output(struct ifnet *ifp, struct mbuf *m, const struct sockaddr *dst,
454 1.108 ozaki const struct rtentry *rt)
455 1.2 itojun {
456 1.76 dyoung struct gif_softc *sc = ifp->if_softc;
457 1.133 knakahar struct gif_variant *var = NULL;
458 1.133 knakahar struct psref psref;
459 1.2 itojun int error = 0;
460 1.33 itojun
461 1.107 knakahar IFQ_CLASSIFY(&ifp->if_snd, m, dst->sa_family);
462 1.2 itojun
463 1.95 knakahar if ((error = gif_check_nesting(ifp, m)) != 0) {
464 1.95 knakahar m_free(m);
465 1.2 itojun goto end;
466 1.2 itojun }
467 1.2 itojun
468 1.134 knakahar if ((ifp->if_flags & IFF_UP) == 0) {
469 1.2 itojun m_freem(m);
470 1.2 itojun error = ENETDOWN;
471 1.2 itojun goto end;
472 1.2 itojun }
473 1.2 itojun
474 1.133 knakahar var = gif_getref_variant(sc, &psref);
475 1.133 knakahar if (var->gv_psrc == NULL || var->gv_pdst == NULL) {
476 1.133 knakahar m_freem(m);
477 1.133 knakahar error = ENETDOWN;
478 1.133 knakahar goto end;
479 1.133 knakahar }
480 1.9 itojun /* XXX should we check if our outer source is legal? */
481 1.2 itojun
482 1.133 knakahar m->m_flags &= ~(M_BCAST|M_MCAST);
483 1.133 knakahar
484 1.33 itojun /* use DLT_NULL encapsulation here to pass inner af type */
485 1.33 itojun M_PREPEND(m, sizeof(int), M_DONTWAIT);
486 1.33 itojun if (!m) {
487 1.33 itojun error = ENOBUFS;
488 1.33 itojun goto end;
489 1.33 itojun }
490 1.33 itojun *mtod(m, int *) = dst->sa_family;
491 1.33 itojun
492 1.79 dyoung /* Clear checksum-offload flags. */
493 1.79 dyoung m->m_pkthdr.csum_flags = 0;
494 1.79 dyoung m->m_pkthdr.csum_data = 0;
495 1.79 dyoung
496 1.133 knakahar error = gif_transmit_direct(var, m);
497 1.133 knakahar end:
498 1.133 knakahar if (var != NULL)
499 1.133 knakahar gif_putref_variant(var, &psref);
500 1.31 itojun if (error)
501 1.31 itojun ifp->if_oerrors++;
502 1.2 itojun return error;
503 1.2 itojun }
504 1.2 itojun
505 1.56 thorpej static void
506 1.111 knakahar gif_start(struct ifnet *ifp)
507 1.33 itojun {
508 1.33 itojun struct gif_softc *sc;
509 1.133 knakahar struct gif_variant *var;
510 1.33 itojun struct mbuf *m;
511 1.133 knakahar struct psref psref;
512 1.33 itojun int family;
513 1.33 itojun int len;
514 1.33 itojun int error;
515 1.33 itojun
516 1.111 knakahar sc = ifp->if_softc;
517 1.133 knakahar var = gif_getref_variant(sc, &psref);
518 1.133 knakahar
519 1.133 knakahar KASSERT(var->gv_output != NULL);
520 1.102 knakahar
521 1.33 itojun /* output processing */
522 1.33 itojun while (1) {
523 1.34 itojun IFQ_DEQUEUE(&sc->gif_if.if_snd, m);
524 1.33 itojun if (m == NULL)
525 1.33 itojun break;
526 1.33 itojun
527 1.33 itojun /* grab and chop off inner af type */
528 1.33 itojun if (sizeof(int) > m->m_len) {
529 1.33 itojun m = m_pullup(m, sizeof(int));
530 1.33 itojun if (!m) {
531 1.33 itojun ifp->if_oerrors++;
532 1.33 itojun continue;
533 1.33 itojun }
534 1.33 itojun }
535 1.33 itojun family = *mtod(m, int *);
536 1.78 joerg bpf_mtap(ifp, m);
537 1.33 itojun m_adj(m, sizeof(int));
538 1.33 itojun
539 1.33 itojun len = m->m_pkthdr.len;
540 1.33 itojun
541 1.133 knakahar error = var->gv_output(var, family, m);
542 1.33 itojun if (error)
543 1.33 itojun ifp->if_oerrors++;
544 1.33 itojun else {
545 1.50 perry ifp->if_opackets++;
546 1.33 itojun ifp->if_obytes += len;
547 1.33 itojun }
548 1.33 itojun }
549 1.133 knakahar
550 1.133 knakahar gif_putref_variant(var, &psref);
551 1.33 itojun }
552 1.33 itojun
553 1.119 knakahar static int
554 1.119 knakahar gif_transmit(struct ifnet *ifp, struct mbuf *m)
555 1.119 knakahar {
556 1.119 knakahar struct gif_softc *sc;
557 1.133 knakahar struct gif_variant *var;
558 1.133 knakahar struct psref psref;
559 1.119 knakahar int error;
560 1.119 knakahar
561 1.119 knakahar sc = ifp->if_softc;
562 1.119 knakahar
563 1.119 knakahar /* output processing */
564 1.119 knakahar if (m == NULL)
565 1.119 knakahar return EINVAL;
566 1.119 knakahar
567 1.133 knakahar var = gif_getref_variant(sc, &psref);
568 1.133 knakahar error = gif_transmit_direct(var, m);
569 1.133 knakahar gif_putref_variant(var, &psref);
570 1.133 knakahar
571 1.133 knakahar return error;
572 1.133 knakahar }
573 1.133 knakahar
574 1.133 knakahar static int
575 1.133 knakahar gif_transmit_direct(struct gif_variant *var, struct mbuf *m)
576 1.133 knakahar {
577 1.133 knakahar struct ifnet *ifp = &var->gv_softc->gif_if;
578 1.133 knakahar int error;
579 1.133 knakahar int family;
580 1.133 knakahar int len;
581 1.133 knakahar
582 1.133 knakahar KASSERT(gif_heldref_variant(var));
583 1.133 knakahar KASSERT(var->gv_output != NULL);
584 1.133 knakahar
585 1.119 knakahar /* grab and chop off inner af type */
586 1.119 knakahar if (sizeof(int) > m->m_len) {
587 1.119 knakahar m = m_pullup(m, sizeof(int));
588 1.119 knakahar if (!m) {
589 1.119 knakahar ifp->if_oerrors++;
590 1.119 knakahar return ENOBUFS;
591 1.119 knakahar }
592 1.119 knakahar }
593 1.119 knakahar family = *mtod(m, int *);
594 1.119 knakahar bpf_mtap(ifp, m);
595 1.119 knakahar m_adj(m, sizeof(int));
596 1.119 knakahar
597 1.119 knakahar len = m->m_pkthdr.len;
598 1.119 knakahar
599 1.133 knakahar error = var->gv_output(var, family, m);
600 1.119 knakahar if (error)
601 1.119 knakahar ifp->if_oerrors++;
602 1.119 knakahar else {
603 1.119 knakahar ifp->if_opackets++;
604 1.119 knakahar ifp->if_obytes += len;
605 1.119 knakahar }
606 1.119 knakahar
607 1.119 knakahar return error;
608 1.119 knakahar }
609 1.119 knakahar
610 1.33 itojun void
611 1.56 thorpej gif_input(struct mbuf *m, int af, struct ifnet *ifp)
612 1.2 itojun {
613 1.83 rmind pktqueue_t *pktq;
614 1.83 rmind size_t pktlen;
615 1.2 itojun
616 1.33 itojun if (ifp == NULL) {
617 1.2 itojun /* just in case */
618 1.2 itojun m_freem(m);
619 1.2 itojun return;
620 1.2 itojun }
621 1.2 itojun
622 1.110 ozaki m_set_rcvif(m, ifp);
623 1.83 rmind pktlen = m->m_pkthdr.len;
624 1.50 perry
625 1.78 joerg bpf_mtap_af(ifp, af, m);
626 1.2 itojun
627 1.2 itojun /*
628 1.2 itojun * Put the packet to the network layer input queue according to the
629 1.83 rmind * specified address family. Note: we avoid direct call to the
630 1.83 rmind * input function of the network layer in order to avoid recursion.
631 1.83 rmind * This may be revisited in the future.
632 1.2 itojun */
633 1.2 itojun switch (af) {
634 1.2 itojun #ifdef INET
635 1.2 itojun case AF_INET:
636 1.83 rmind pktq = ip_pktq;
637 1.2 itojun break;
638 1.2 itojun #endif
639 1.2 itojun #ifdef INET6
640 1.2 itojun case AF_INET6:
641 1.83 rmind pktq = ip6_pktq;
642 1.2 itojun break;
643 1.2 itojun #endif
644 1.2 itojun default:
645 1.2 itojun m_freem(m);
646 1.2 itojun return;
647 1.2 itojun }
648 1.2 itojun
649 1.127 knakahar #ifdef GIF_MPSAFE
650 1.127 knakahar const u_int h = curcpu()->ci_index;
651 1.127 knakahar #else
652 1.127 knakahar const uint32_t h = pktq_rps_hash(m);
653 1.127 knakahar #endif
654 1.127 knakahar if (__predict_true(pktq_enqueue(pktq, m, h))) {
655 1.83 rmind ifp->if_ibytes += pktlen;
656 1.83 rmind ifp->if_ipackets++;
657 1.83 rmind } else {
658 1.2 itojun m_freem(m);
659 1.2 itojun }
660 1.2 itojun }
661 1.2 itojun
662 1.9 itojun /* XXX how should we handle IPv6 scope on SIOC[GS]IFPHYADDR? */
663 1.109 knakahar static int
664 1.67 christos gif_ioctl(struct ifnet *ifp, u_long cmd, void *data)
665 1.2 itojun {
666 1.76 dyoung struct gif_softc *sc = ifp->if_softc;
667 1.2 itojun struct ifreq *ifr = (struct ifreq*)data;
668 1.84 roy struct ifaddr *ifa = (struct ifaddr*)data;
669 1.133 knakahar int error = 0, size, bound;
670 1.9 itojun struct sockaddr *dst, *src;
671 1.133 knakahar struct gif_variant *var;
672 1.133 knakahar struct psref psref;
673 1.31 itojun
674 1.2 itojun switch (cmd) {
675 1.76 dyoung case SIOCINITIFADDR:
676 1.32 itojun ifp->if_flags |= IFF_UP;
677 1.84 roy ifa->ifa_rtrequest = p2p_rtrequest;
678 1.2 itojun break;
679 1.50 perry
680 1.2 itojun case SIOCADDMULTI:
681 1.2 itojun case SIOCDELMULTI:
682 1.2 itojun switch (ifr->ifr_addr.sa_family) {
683 1.2 itojun #ifdef INET
684 1.2 itojun case AF_INET: /* IP supports Multicast */
685 1.2 itojun break;
686 1.2 itojun #endif /* INET */
687 1.2 itojun #ifdef INET6
688 1.2 itojun case AF_INET6: /* IP6 supports Multicast */
689 1.2 itojun break;
690 1.2 itojun #endif /* INET6 */
691 1.2 itojun default: /* Other protocols doesn't support Multicast */
692 1.2 itojun error = EAFNOSUPPORT;
693 1.2 itojun break;
694 1.2 itojun }
695 1.2 itojun break;
696 1.2 itojun
697 1.2 itojun case SIOCSIFMTU:
698 1.73 dyoung if (ifr->ifr_mtu < GIF_MTU_MIN || ifr->ifr_mtu > GIF_MTU_MAX)
699 1.73 dyoung return EINVAL;
700 1.73 dyoung else if ((error = ifioctl_common(ifp, cmd, data)) == ENETRESET)
701 1.73 dyoung error = 0;
702 1.2 itojun break;
703 1.2 itojun
704 1.31 itojun #ifdef INET
705 1.2 itojun case SIOCSIFPHYADDR:
706 1.31 itojun #endif
707 1.2 itojun #ifdef INET6
708 1.2 itojun case SIOCSIFPHYADDR_IN6:
709 1.2 itojun #endif /* INET6 */
710 1.25 itojun case SIOCSLIFPHYADDR:
711 1.11 itojun switch (cmd) {
712 1.15 itojun #ifdef INET
713 1.11 itojun case SIOCSIFPHYADDR:
714 1.11 itojun src = (struct sockaddr *)
715 1.11 itojun &(((struct in_aliasreq *)data)->ifra_addr);
716 1.11 itojun dst = (struct sockaddr *)
717 1.11 itojun &(((struct in_aliasreq *)data)->ifra_dstaddr);
718 1.11 itojun break;
719 1.15 itojun #endif
720 1.11 itojun #ifdef INET6
721 1.11 itojun case SIOCSIFPHYADDR_IN6:
722 1.11 itojun src = (struct sockaddr *)
723 1.11 itojun &(((struct in6_aliasreq *)data)->ifra_addr);
724 1.11 itojun dst = (struct sockaddr *)
725 1.11 itojun &(((struct in6_aliasreq *)data)->ifra_dstaddr);
726 1.25 itojun break;
727 1.25 itojun #endif
728 1.25 itojun case SIOCSLIFPHYADDR:
729 1.25 itojun src = (struct sockaddr *)
730 1.25 itojun &(((struct if_laddrreq *)data)->addr);
731 1.25 itojun dst = (struct sockaddr *)
732 1.25 itojun &(((struct if_laddrreq *)data)->dstaddr);
733 1.31 itojun break;
734 1.31 itojun default:
735 1.31 itojun return EINVAL;
736 1.25 itojun }
737 1.25 itojun
738 1.25 itojun /* sa_family must be equal */
739 1.25 itojun if (src->sa_family != dst->sa_family)
740 1.25 itojun return EINVAL;
741 1.25 itojun
742 1.25 itojun /* validate sa_len */
743 1.25 itojun switch (src->sa_family) {
744 1.25 itojun #ifdef INET
745 1.25 itojun case AF_INET:
746 1.25 itojun if (src->sa_len != sizeof(struct sockaddr_in))
747 1.16 itojun return EINVAL;
748 1.11 itojun break;
749 1.11 itojun #endif
750 1.25 itojun #ifdef INET6
751 1.25 itojun case AF_INET6:
752 1.25 itojun if (src->sa_len != sizeof(struct sockaddr_in6))
753 1.25 itojun return EINVAL;
754 1.25 itojun break;
755 1.25 itojun #endif
756 1.25 itojun default:
757 1.25 itojun return EAFNOSUPPORT;
758 1.25 itojun }
759 1.25 itojun switch (dst->sa_family) {
760 1.25 itojun #ifdef INET
761 1.25 itojun case AF_INET:
762 1.25 itojun if (dst->sa_len != sizeof(struct sockaddr_in))
763 1.25 itojun return EINVAL;
764 1.25 itojun break;
765 1.25 itojun #endif
766 1.25 itojun #ifdef INET6
767 1.25 itojun case AF_INET6:
768 1.25 itojun if (dst->sa_len != sizeof(struct sockaddr_in6))
769 1.25 itojun return EINVAL;
770 1.25 itojun break;
771 1.25 itojun #endif
772 1.25 itojun default:
773 1.25 itojun return EAFNOSUPPORT;
774 1.25 itojun }
775 1.25 itojun
776 1.25 itojun /* check sa_family looks sane for the cmd */
777 1.25 itojun switch (cmd) {
778 1.25 itojun case SIOCSIFPHYADDR:
779 1.25 itojun if (src->sa_family == AF_INET)
780 1.25 itojun break;
781 1.25 itojun return EAFNOSUPPORT;
782 1.25 itojun #ifdef INET6
783 1.25 itojun case SIOCSIFPHYADDR_IN6:
784 1.25 itojun if (src->sa_family == AF_INET6)
785 1.25 itojun break;
786 1.25 itojun return EAFNOSUPPORT;
787 1.25 itojun #endif /* INET6 */
788 1.25 itojun case SIOCSLIFPHYADDR:
789 1.25 itojun /* checks done in the above */
790 1.25 itojun break;
791 1.11 itojun }
792 1.133 knakahar /*
793 1.133 knakahar * calls gif_getref_variant() for other softcs to check
794 1.133 knakahar * address pair duplicattion
795 1.133 knakahar */
796 1.133 knakahar bound = curlwp_bind();
797 1.31 itojun error = gif_set_tunnel(&sc->gif_if, src, dst);
798 1.133 knakahar curlwp_bindx(bound);
799 1.9 itojun break;
800 1.9 itojun
801 1.9 itojun #ifdef SIOCDIFPHYADDR
802 1.9 itojun case SIOCDIFPHYADDR:
803 1.133 knakahar bound = curlwp_bind();
804 1.31 itojun gif_delete_tunnel(&sc->gif_if);
805 1.133 knakahar curlwp_bindx(bound);
806 1.2 itojun break;
807 1.9 itojun #endif
808 1.50 perry
809 1.2 itojun case SIOCGIFPSRCADDR:
810 1.2 itojun #ifdef INET6
811 1.2 itojun case SIOCGIFPSRCADDR_IN6:
812 1.2 itojun #endif /* INET6 */
813 1.133 knakahar bound = curlwp_bind();
814 1.133 knakahar var = gif_getref_variant(sc, &psref);
815 1.133 knakahar if (var->gv_psrc == NULL) {
816 1.133 knakahar gif_putref_variant(var, &psref);
817 1.133 knakahar curlwp_bindx(bound);
818 1.2 itojun error = EADDRNOTAVAIL;
819 1.2 itojun goto bad;
820 1.2 itojun }
821 1.133 knakahar src = var->gv_psrc;
822 1.16 itojun switch (cmd) {
823 1.2 itojun #ifdef INET
824 1.16 itojun case SIOCGIFPSRCADDR:
825 1.2 itojun dst = &ifr->ifr_addr;
826 1.16 itojun size = sizeof(ifr->ifr_addr);
827 1.2 itojun break;
828 1.2 itojun #endif /* INET */
829 1.2 itojun #ifdef INET6
830 1.16 itojun case SIOCGIFPSRCADDR_IN6:
831 1.2 itojun dst = (struct sockaddr *)
832 1.2 itojun &(((struct in6_ifreq *)data)->ifr_addr);
833 1.16 itojun size = sizeof(((struct in6_ifreq *)data)->ifr_addr);
834 1.2 itojun break;
835 1.2 itojun #endif /* INET6 */
836 1.2 itojun default:
837 1.133 knakahar gif_putref_variant(var, &psref);
838 1.133 knakahar curlwp_bindx(bound);
839 1.2 itojun error = EADDRNOTAVAIL;
840 1.2 itojun goto bad;
841 1.2 itojun }
842 1.133 knakahar if (src->sa_len > size) {
843 1.133 knakahar gif_putref_variant(var, &psref);
844 1.133 knakahar curlwp_bindx(bound);
845 1.16 itojun return EINVAL;
846 1.133 knakahar }
847 1.68 dyoung memcpy(dst, src, src->sa_len);
848 1.133 knakahar gif_putref_variant(var, &psref);
849 1.133 knakahar curlwp_bindx(bound);
850 1.2 itojun break;
851 1.50 perry
852 1.2 itojun case SIOCGIFPDSTADDR:
853 1.2 itojun #ifdef INET6
854 1.2 itojun case SIOCGIFPDSTADDR_IN6:
855 1.2 itojun #endif /* INET6 */
856 1.133 knakahar bound = curlwp_bind();
857 1.133 knakahar var = gif_getref_variant(sc, &psref);
858 1.133 knakahar if (var->gv_pdst == NULL) {
859 1.133 knakahar gif_putref_variant(var, &psref);
860 1.133 knakahar curlwp_bindx(bound);
861 1.2 itojun error = EADDRNOTAVAIL;
862 1.2 itojun goto bad;
863 1.2 itojun }
864 1.133 knakahar src = var->gv_pdst;
865 1.16 itojun switch (cmd) {
866 1.2 itojun #ifdef INET
867 1.16 itojun case SIOCGIFPDSTADDR:
868 1.2 itojun dst = &ifr->ifr_addr;
869 1.16 itojun size = sizeof(ifr->ifr_addr);
870 1.2 itojun break;
871 1.2 itojun #endif /* INET */
872 1.2 itojun #ifdef INET6
873 1.16 itojun case SIOCGIFPDSTADDR_IN6:
874 1.2 itojun dst = (struct sockaddr *)
875 1.2 itojun &(((struct in6_ifreq *)data)->ifr_addr);
876 1.16 itojun size = sizeof(((struct in6_ifreq *)data)->ifr_addr);
877 1.2 itojun break;
878 1.2 itojun #endif /* INET6 */
879 1.2 itojun default:
880 1.133 knakahar gif_putref_variant(var, &psref);
881 1.133 knakahar curlwp_bindx(bound);
882 1.2 itojun error = EADDRNOTAVAIL;
883 1.2 itojun goto bad;
884 1.2 itojun }
885 1.133 knakahar if (src->sa_len > size) {
886 1.133 knakahar gif_putref_variant(var, &psref);
887 1.133 knakahar curlwp_bindx(bound);
888 1.25 itojun return EINVAL;
889 1.133 knakahar }
890 1.68 dyoung memcpy(dst, src, src->sa_len);
891 1.133 knakahar gif_putref_variant(var, &psref);
892 1.133 knakahar curlwp_bindx(bound);
893 1.25 itojun break;
894 1.25 itojun
895 1.25 itojun case SIOCGLIFPHYADDR:
896 1.133 knakahar bound = curlwp_bind();
897 1.133 knakahar var = gif_getref_variant(sc, &psref);
898 1.133 knakahar if (var->gv_psrc == NULL || var->gv_pdst == NULL) {
899 1.133 knakahar gif_putref_variant(var, &psref);
900 1.133 knakahar curlwp_bindx(bound);
901 1.25 itojun error = EADDRNOTAVAIL;
902 1.25 itojun goto bad;
903 1.25 itojun }
904 1.25 itojun
905 1.25 itojun /* copy src */
906 1.133 knakahar src = var->gv_psrc;
907 1.25 itojun dst = (struct sockaddr *)
908 1.25 itojun &(((struct if_laddrreq *)data)->addr);
909 1.25 itojun size = sizeof(((struct if_laddrreq *)data)->addr);
910 1.133 knakahar if (src->sa_len > size) {
911 1.133 knakahar gif_putref_variant(var, &psref);
912 1.133 knakahar curlwp_bindx(bound);
913 1.25 itojun return EINVAL;
914 1.133 knakahar }
915 1.68 dyoung memcpy(dst, src, src->sa_len);
916 1.25 itojun
917 1.25 itojun /* copy dst */
918 1.133 knakahar src = var->gv_pdst;
919 1.25 itojun dst = (struct sockaddr *)
920 1.25 itojun &(((struct if_laddrreq *)data)->dstaddr);
921 1.25 itojun size = sizeof(((struct if_laddrreq *)data)->dstaddr);
922 1.133 knakahar if (src->sa_len > size) {
923 1.133 knakahar gif_putref_variant(var, &psref);
924 1.133 knakahar curlwp_bindx(bound);
925 1.16 itojun return EINVAL;
926 1.133 knakahar }
927 1.68 dyoung memcpy(dst, src, src->sa_len);
928 1.133 knakahar gif_putref_variant(var, &psref);
929 1.133 knakahar curlwp_bindx(bound);
930 1.2 itojun break;
931 1.2 itojun
932 1.2 itojun default:
933 1.76 dyoung return ifioctl_common(ifp, cmd, data);
934 1.2 itojun }
935 1.2 itojun bad:
936 1.2 itojun return error;
937 1.12 thorpej }
938 1.12 thorpej
939 1.97 knakahar static int
940 1.133 knakahar gif_encap_attach(struct gif_variant *var)
941 1.97 knakahar {
942 1.97 knakahar int error;
943 1.97 knakahar
944 1.133 knakahar if (var == NULL || var->gv_psrc == NULL)
945 1.97 knakahar return EINVAL;
946 1.97 knakahar
947 1.133 knakahar switch (var->gv_psrc->sa_family) {
948 1.97 knakahar #ifdef INET
949 1.97 knakahar case AF_INET:
950 1.133 knakahar error = in_gif_attach(var);
951 1.97 knakahar break;
952 1.97 knakahar #endif
953 1.97 knakahar #ifdef INET6
954 1.97 knakahar case AF_INET6:
955 1.133 knakahar error = in6_gif_attach(var);
956 1.97 knakahar break;
957 1.97 knakahar #endif
958 1.97 knakahar default:
959 1.97 knakahar error = EINVAL;
960 1.97 knakahar break;
961 1.97 knakahar }
962 1.97 knakahar
963 1.97 knakahar return error;
964 1.97 knakahar }
965 1.97 knakahar
966 1.97 knakahar static int
967 1.133 knakahar gif_encap_detach(struct gif_variant *var)
968 1.97 knakahar {
969 1.97 knakahar int error;
970 1.97 knakahar
971 1.133 knakahar if (var == NULL || var->gv_psrc == NULL)
972 1.97 knakahar return EINVAL;
973 1.97 knakahar
974 1.133 knakahar switch (var->gv_psrc->sa_family) {
975 1.97 knakahar #ifdef INET
976 1.97 knakahar case AF_INET:
977 1.133 knakahar error = in_gif_detach(var);
978 1.97 knakahar break;
979 1.97 knakahar #endif
980 1.97 knakahar #ifdef INET6
981 1.97 knakahar case AF_INET6:
982 1.133 knakahar error = in6_gif_detach(var);
983 1.97 knakahar break;
984 1.97 knakahar #endif
985 1.97 knakahar default:
986 1.97 knakahar error = EINVAL;
987 1.97 knakahar break;
988 1.97 knakahar }
989 1.97 knakahar
990 1.97 knakahar return error;
991 1.97 knakahar }
992 1.97 knakahar
993 1.109 knakahar static int
994 1.56 thorpej gif_set_tunnel(struct ifnet *ifp, struct sockaddr *src, struct sockaddr *dst)
995 1.31 itojun {
996 1.76 dyoung struct gif_softc *sc = ifp->if_softc;
997 1.31 itojun struct gif_softc *sc2;
998 1.133 knakahar struct gif_variant *ovar, *nvar;
999 1.71 dyoung struct sockaddr *osrc, *odst;
1000 1.96 knakahar struct sockaddr *nsrc, *ndst;
1001 1.118 knakahar int error;
1002 1.118 knakahar #ifndef GIF_MPSAFE
1003 1.31 itojun int s;
1004 1.31 itojun
1005 1.31 itojun s = splsoftnet();
1006 1.118 knakahar #endif
1007 1.117 knakahar error = encap_lock_enter();
1008 1.117 knakahar if (error) {
1009 1.118 knakahar #ifndef GIF_MPSAFE
1010 1.117 knakahar splx(s);
1011 1.118 knakahar #endif
1012 1.117 knakahar return error;
1013 1.117 knakahar }
1014 1.31 itojun
1015 1.133 knakahar nsrc = sockaddr_dup(src, M_WAITOK);
1016 1.133 knakahar ndst = sockaddr_dup(dst, M_WAITOK);
1017 1.133 knakahar nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
1018 1.133 knakahar
1019 1.133 knakahar mutex_enter(&sc->gif_lock);
1020 1.133 knakahar
1021 1.133 knakahar ovar = sc->gif_var;
1022 1.133 knakahar
1023 1.133 knakahar if ((ovar->gv_pdst && sockaddr_cmp(ovar->gv_pdst, dst) == 0) &&
1024 1.133 knakahar (ovar->gv_psrc && sockaddr_cmp(ovar->gv_psrc, src) == 0)) {
1025 1.133 knakahar /* address and port pair not changed. */
1026 1.133 knakahar error = 0;
1027 1.133 knakahar goto out;
1028 1.133 knakahar }
1029 1.133 knakahar
1030 1.130 knakahar mutex_enter(&gif_softcs.lock);
1031 1.130 knakahar LIST_FOREACH(sc2, &gif_softcs.list, gif_list) {
1032 1.133 knakahar struct gif_variant *var2;
1033 1.133 knakahar struct psref psref;
1034 1.133 knakahar
1035 1.31 itojun if (sc2 == sc)
1036 1.31 itojun continue;
1037 1.133 knakahar var2 = gif_getref_variant(sc, &psref);
1038 1.133 knakahar if (!var2->gv_pdst || !var2->gv_psrc) {
1039 1.133 knakahar gif_putref_variant(var2, &psref);
1040 1.31 itojun continue;
1041 1.133 knakahar }
1042 1.31 itojun /* can't configure same pair of address onto two gifs */
1043 1.133 knakahar if (sockaddr_cmp(var2->gv_pdst, dst) == 0 &&
1044 1.133 knakahar sockaddr_cmp(var2->gv_psrc, src) == 0) {
1045 1.91 knakahar /* continue to use the old configureation. */
1046 1.133 knakahar gif_putref_variant(var2, &psref);
1047 1.130 knakahar mutex_exit(&gif_softcs.lock);
1048 1.118 knakahar error = EADDRNOTAVAIL;
1049 1.118 knakahar goto out;
1050 1.31 itojun }
1051 1.133 knakahar gif_putref_variant(var2, &psref);
1052 1.31 itojun /* XXX both end must be valid? (I mean, not 0.0.0.0) */
1053 1.31 itojun }
1054 1.130 knakahar mutex_exit(&gif_softcs.lock);
1055 1.31 itojun
1056 1.133 knakahar osrc = ovar->gv_psrc;
1057 1.133 knakahar odst = ovar->gv_pdst;
1058 1.96 knakahar
1059 1.133 knakahar *nvar = *ovar;
1060 1.133 knakahar nvar->gv_psrc = nsrc;
1061 1.133 knakahar nvar->gv_pdst = ndst;
1062 1.133 knakahar nvar->gv_encap_cookie4 = NULL;
1063 1.133 knakahar nvar->gv_encap_cookie6 = NULL;
1064 1.133 knakahar error = gif_encap_attach(nvar);
1065 1.133 knakahar if (error)
1066 1.133 knakahar goto out;
1067 1.133 knakahar psref_target_init(&nvar->gv_psref, gv_psref_class);
1068 1.133 knakahar membar_producer();
1069 1.133 knakahar gif_update_variant(sc, nvar);
1070 1.114 knakahar
1071 1.133 knakahar mutex_exit(&sc->gif_lock);
1072 1.31 itojun
1073 1.133 knakahar (void)gif_encap_detach(ovar);
1074 1.133 knakahar encap_lock_exit();
1075 1.31 itojun
1076 1.31 itojun if (osrc)
1077 1.71 dyoung sockaddr_free(osrc);
1078 1.31 itojun if (odst)
1079 1.71 dyoung sockaddr_free(odst);
1080 1.133 knakahar kmem_free(ovar, sizeof(*ovar));
1081 1.31 itojun
1082 1.133 knakahar #ifndef GIF_MPSAFE
1083 1.133 knakahar splx(s);
1084 1.133 knakahar #endif
1085 1.133 knakahar return 0;
1086 1.92 knakahar
1087 1.118 knakahar out:
1088 1.133 knakahar sockaddr_free(nsrc);
1089 1.133 knakahar sockaddr_free(ndst);
1090 1.133 knakahar kmem_free(nvar, sizeof(*nvar));
1091 1.133 knakahar
1092 1.133 knakahar mutex_exit(&sc->gif_lock);
1093 1.115 knakahar encap_lock_exit();
1094 1.118 knakahar #ifndef GIF_MPSAFE
1095 1.31 itojun splx(s);
1096 1.118 knakahar #endif
1097 1.31 itojun return error;
1098 1.31 itojun }
1099 1.31 itojun
1100 1.109 knakahar static void
1101 1.56 thorpej gif_delete_tunnel(struct ifnet *ifp)
1102 1.12 thorpej {
1103 1.76 dyoung struct gif_softc *sc = ifp->if_softc;
1104 1.133 knakahar struct gif_variant *ovar, *nvar;
1105 1.133 knakahar struct sockaddr *osrc, *odst;
1106 1.118 knakahar int error;
1107 1.118 knakahar #ifndef GIF_MPSAFE
1108 1.12 thorpej int s;
1109 1.12 thorpej
1110 1.12 thorpej s = splsoftnet();
1111 1.118 knakahar #endif
1112 1.117 knakahar error = encap_lock_enter();
1113 1.117 knakahar if (error) {
1114 1.118 knakahar #ifndef GIF_MPSAFE
1115 1.117 knakahar splx(s);
1116 1.118 knakahar #endif
1117 1.117 knakahar return;
1118 1.117 knakahar }
1119 1.12 thorpej
1120 1.133 knakahar nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
1121 1.133 knakahar
1122 1.133 knakahar mutex_enter(&sc->gif_lock);
1123 1.133 knakahar
1124 1.133 knakahar ovar = sc->gif_var;
1125 1.133 knakahar osrc = ovar->gv_psrc;
1126 1.133 knakahar odst = ovar->gv_pdst;
1127 1.133 knakahar if (osrc == NULL || odst == NULL) {
1128 1.133 knakahar /* address pair not changed. */
1129 1.133 knakahar mutex_exit(&sc->gif_lock);
1130 1.133 knakahar encap_lock_exit();
1131 1.133 knakahar kmem_free(nvar, sizeof(*nvar));
1132 1.133 knakahar return;
1133 1.12 thorpej }
1134 1.12 thorpej
1135 1.133 knakahar *nvar = *ovar;
1136 1.133 knakahar nvar->gv_psrc = NULL;
1137 1.133 knakahar nvar->gv_pdst = NULL;
1138 1.133 knakahar nvar->gv_encap_cookie4 = NULL;
1139 1.133 knakahar nvar->gv_encap_cookie6 = NULL;
1140 1.133 knakahar nvar->gv_output = NULL;
1141 1.133 knakahar psref_target_init(&nvar->gv_psref, gv_psref_class);
1142 1.133 knakahar membar_producer();
1143 1.133 knakahar gif_update_variant(sc, nvar);
1144 1.133 knakahar
1145 1.133 knakahar mutex_exit(&sc->gif_lock);
1146 1.114 knakahar
1147 1.133 knakahar gif_encap_detach(ovar);
1148 1.115 knakahar encap_lock_exit();
1149 1.133 knakahar
1150 1.133 knakahar sockaddr_free(osrc);
1151 1.133 knakahar sockaddr_free(odst);
1152 1.133 knakahar kmem_free(ovar, sizeof(*ovar));
1153 1.133 knakahar
1154 1.118 knakahar #ifndef GIF_MPSAFE
1155 1.12 thorpej splx(s);
1156 1.118 knakahar #endif
1157 1.2 itojun }
1158 1.120 christos
1159 1.120 christos /*
1160 1.133 knakahar * gif_variant update API.
1161 1.133 knakahar *
1162 1.133 knakahar * Assumption:
1163 1.133 knakahar * reader side dereferences sc->gif_var in reader critical section only,
1164 1.133 knakahar * that is, all of reader sides do not reader the sc->gif_var after
1165 1.133 knakahar * pserialize_perform().
1166 1.133 knakahar */
1167 1.133 knakahar static void
1168 1.133 knakahar gif_update_variant(struct gif_softc *sc, struct gif_variant *nvar)
1169 1.133 knakahar {
1170 1.133 knakahar struct ifnet *ifp = &sc->gif_if;
1171 1.133 knakahar struct gif_variant *ovar = sc->gif_var;
1172 1.133 knakahar
1173 1.133 knakahar KASSERT(mutex_owned(&sc->gif_lock));
1174 1.133 knakahar
1175 1.133 knakahar sc->gif_var = nvar;
1176 1.133 knakahar pserialize_perform(gif_psz);
1177 1.133 knakahar psref_target_destroy(&ovar->gv_psref, gv_psref_class);
1178 1.133 knakahar
1179 1.133 knakahar if (nvar->gv_psrc != NULL && nvar->gv_pdst != NULL)
1180 1.133 knakahar ifp->if_flags |= IFF_RUNNING;
1181 1.133 knakahar else
1182 1.133 knakahar ifp->if_flags &= ~IFF_RUNNING;
1183 1.133 knakahar }
1184 1.133 knakahar
1185 1.133 knakahar /*
1186 1.120 christos * Module infrastructure
1187 1.120 christos */
1188 1.120 christos #include "if_module.h"
1189 1.120 christos
1190 1.136 pgoyette IF_MODULE(MODULE_CLASS_DRIVER, gif, "ip_ecn")
1191