Home | History | Annotate | Line # | Download | only in net
if_gif.c revision 1.139
      1  1.139      maxv /*	$NetBSD: if_gif.c,v 1.139 2018/02/12 15:38:14 maxv Exp $	*/
      2   1.34    itojun /*	$KAME: if_gif.c,v 1.76 2001/08/20 02:01:02 kjc Exp $	*/
      3    1.3    itojun 
      4    1.2    itojun /*
      5    1.2    itojun  * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project.
      6    1.2    itojun  * All rights reserved.
      7    1.9    itojun  *
      8    1.2    itojun  * Redistribution and use in source and binary forms, with or without
      9    1.2    itojun  * modification, are permitted provided that the following conditions
     10    1.2    itojun  * are met:
     11    1.2    itojun  * 1. Redistributions of source code must retain the above copyright
     12    1.2    itojun  *    notice, this list of conditions and the following disclaimer.
     13    1.2    itojun  * 2. Redistributions in binary form must reproduce the above copyright
     14    1.2    itojun  *    notice, this list of conditions and the following disclaimer in the
     15    1.2    itojun  *    documentation and/or other materials provided with the distribution.
     16    1.2    itojun  * 3. Neither the name of the project nor the names of its contributors
     17    1.2    itojun  *    may be used to endorse or promote products derived from this software
     18    1.2    itojun  *    without specific prior written permission.
     19    1.9    itojun  *
     20    1.2    itojun  * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
     21    1.2    itojun  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
     22    1.2    itojun  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
     23    1.2    itojun  * ARE DISCLAIMED.  IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
     24    1.2    itojun  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
     25    1.2    itojun  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
     26    1.2    itojun  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
     27    1.2    itojun  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
     28    1.2    itojun  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
     29    1.2    itojun  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
     30    1.2    itojun  * SUCH DAMAGE.
     31    1.2    itojun  */
     32   1.36     lukem 
     33   1.36     lukem #include <sys/cdefs.h>
     34  1.139      maxv __KERNEL_RCSID(0, "$NetBSD: if_gif.c,v 1.139 2018/02/12 15:38:14 maxv Exp $");
     35    1.2    itojun 
     36   1.88     pooka #ifdef _KERNEL_OPT
     37    1.2    itojun #include "opt_inet.h"
     38  1.118  knakahar #include "opt_net_mpsafe.h"
     39   1.88     pooka #endif
     40    1.2    itojun 
     41    1.2    itojun #include <sys/param.h>
     42    1.2    itojun #include <sys/systm.h>
     43    1.2    itojun #include <sys/kernel.h>
     44    1.2    itojun #include <sys/mbuf.h>
     45    1.2    itojun #include <sys/socket.h>
     46    1.2    itojun #include <sys/sockio.h>
     47    1.2    itojun #include <sys/errno.h>
     48    1.2    itojun #include <sys/ioctl.h>
     49    1.2    itojun #include <sys/time.h>
     50   1.86    martin #include <sys/socketvar.h>
     51    1.2    itojun #include <sys/syslog.h>
     52   1.17    martin #include <sys/proc.h>
     53   1.72        ad #include <sys/cpu.h>
     54   1.72        ad #include <sys/intr.h>
     55   1.98  knakahar #include <sys/kmem.h>
     56  1.104  knakahar #include <sys/sysctl.h>
     57  1.114  knakahar #include <sys/xcall.h>
     58  1.120  christos #include <sys/device.h>
     59  1.120  christos #include <sys/module.h>
     60  1.133  knakahar #include <sys/mutex.h>
     61  1.133  knakahar #include <sys/pserialize.h>
     62  1.133  knakahar #include <sys/psref.h>
     63    1.2    itojun 
     64    1.2    itojun #include <net/if.h>
     65    1.2    itojun #include <net/if_types.h>
     66    1.2    itojun #include <net/netisr.h>
     67    1.2    itojun #include <net/route.h>
     68    1.2    itojun #include <net/bpf.h>
     69    1.2    itojun 
     70    1.2    itojun #include <netinet/in.h>
     71    1.2    itojun #include <netinet/in_systm.h>
     72   1.15    itojun #include <netinet/ip.h>
     73   1.15    itojun #ifdef	INET
     74    1.2    itojun #include <netinet/in_var.h>
     75   1.57  christos #endif	/* INET */
     76    1.2    itojun #include <netinet/in_gif.h>
     77    1.2    itojun 
     78    1.2    itojun #ifdef INET6
     79    1.2    itojun #ifndef INET
     80    1.2    itojun #include <netinet/in.h>
     81    1.2    itojun #endif
     82    1.2    itojun #include <netinet6/in6_var.h>
     83    1.2    itojun #include <netinet/ip6.h>
     84    1.2    itojun #include <netinet6/ip6_var.h>
     85    1.2    itojun #include <netinet6/in6_gif.h>
     86    1.2    itojun #endif /* INET6 */
     87    1.2    itojun 
     88    1.9    itojun #include <netinet/ip_encap.h>
     89    1.2    itojun #include <net/if_gif.h>
     90    1.2    itojun 
     91   1.87  christos #include <net/net_osdep.h>
     92    1.2    itojun 
     93   1.87  christos #include "ioconf.h"
     94    1.4    itojun 
     95  1.118  knakahar #ifdef NET_MPSAFE
     96  1.118  knakahar #define GIF_MPSAFE	1
     97  1.118  knakahar #endif
     98  1.118  knakahar 
     99    1.2    itojun /*
    100    1.2    itojun  * gif global variable definitions
    101    1.2    itojun  */
    102  1.130  knakahar LIST_HEAD(gif_sclist, gif_softc);
    103  1.130  knakahar static struct {
    104  1.130  knakahar 	struct gif_sclist list;
    105  1.130  knakahar 	kmutex_t lock;
    106  1.130  knakahar } gif_softcs __cacheline_aligned;
    107   1.12   thorpej 
    108  1.133  knakahar pserialize_t gif_psz __read_mostly;
    109  1.133  knakahar struct psref_class *gv_psref_class __read_mostly;
    110  1.133  knakahar 
    111  1.129  knakahar static void	gif_ro_init_pc(void *, void *, struct cpu_info *);
    112  1.129  knakahar static void	gif_ro_fini_pc(void *, void *, struct cpu_info *);
    113  1.129  knakahar 
    114  1.131   msaitoh static int	gifattach0(struct gif_softc *);
    115  1.109  knakahar static int	gif_output(struct ifnet *, struct mbuf *,
    116  1.109  knakahar 			   const struct sockaddr *, const struct rtentry *);
    117  1.111  knakahar static void	gif_start(struct ifnet *);
    118  1.119  knakahar static int	gif_transmit(struct ifnet *, struct mbuf *);
    119  1.133  knakahar static int	gif_transmit_direct(struct gif_variant *, struct mbuf *);
    120  1.109  knakahar static int	gif_ioctl(struct ifnet *, u_long, void *);
    121  1.109  knakahar static int	gif_set_tunnel(struct ifnet *, struct sockaddr *,
    122  1.109  knakahar 			       struct sockaddr *);
    123  1.109  knakahar static void	gif_delete_tunnel(struct ifnet *);
    124  1.109  knakahar 
    125   1.56   thorpej static int	gif_clone_create(struct if_clone *, int);
    126   1.56   thorpej static int	gif_clone_destroy(struct ifnet *);
    127   1.95  knakahar static int	gif_check_nesting(struct ifnet *, struct mbuf *);
    128   1.12   thorpej 
    129  1.133  knakahar static int	gif_encap_attach(struct gif_variant *);
    130  1.133  knakahar static int	gif_encap_detach(struct gif_variant *);
    131  1.133  knakahar 
    132  1.133  knakahar static void	gif_update_variant(struct gif_softc *, struct gif_variant *);
    133  1.114  knakahar 
    134   1.56   thorpej static struct if_clone gif_cloner =
    135   1.12   thorpej     IF_CLONE_INITIALIZER("gif", gif_clone_create, gif_clone_destroy);
    136   1.12   thorpej 
    137    1.9    itojun #ifndef MAX_GIF_NEST
    138    1.9    itojun /*
    139    1.9    itojun  * This macro controls the upper limitation on nesting of gif tunnels.
    140    1.9    itojun  * Since, setting a large value to this macro with a careless configuration
    141    1.9    itojun  * may introduce system crash, we don't allow any nestings by default.
    142    1.9    itojun  * If you need to configure nested gif tunnels, you can define this macro
    143   1.31    itojun  * in your kernel configuration file.  However, if you do so, please be
    144    1.9    itojun  * careful to configure the tunnels so that it won't make a loop.
    145    1.9    itojun  */
    146    1.9    itojun #define MAX_GIF_NEST 1
    147    1.9    itojun #endif
    148    1.9    itojun static int max_gif_nesting = MAX_GIF_NEST;
    149    1.2    itojun 
    150  1.120  christos static struct sysctllog *gif_sysctl;
    151  1.120  christos 
    152  1.104  knakahar static void
    153  1.120  christos gif_sysctl_setup(void)
    154  1.104  knakahar {
    155  1.120  christos 	gif_sysctl = NULL;
    156  1.104  knakahar 
    157  1.104  knakahar #ifdef INET
    158  1.121  knakahar 	/*
    159  1.121  knakahar 	 * Previously create "net.inet.ip" entry to avoid sysctl_createv error.
    160  1.121  knakahar 	 */
    161  1.121  knakahar 	sysctl_createv(NULL, 0, NULL, NULL,
    162  1.121  knakahar 		       CTLFLAG_PERMANENT,
    163  1.121  knakahar 		       CTLTYPE_NODE, "inet",
    164  1.121  knakahar 		       SYSCTL_DESCR("PF_INET related settings"),
    165  1.121  knakahar 		       NULL, 0, NULL, 0,
    166  1.121  knakahar 		       CTL_NET, PF_INET, CTL_EOL);
    167  1.121  knakahar 	sysctl_createv(NULL, 0, NULL, NULL,
    168  1.121  knakahar 		       CTLFLAG_PERMANENT,
    169  1.121  knakahar 		       CTLTYPE_NODE, "ip",
    170  1.121  knakahar 		       SYSCTL_DESCR("IPv4 related settings"),
    171  1.121  knakahar 		       NULL, 0, NULL, 0,
    172  1.121  knakahar 		       CTL_NET, PF_INET, IPPROTO_IP, CTL_EOL);
    173  1.121  knakahar 
    174  1.120  christos 	sysctl_createv(&gif_sysctl, 0, NULL, NULL,
    175  1.104  knakahar 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
    176  1.104  knakahar 		       CTLTYPE_INT, "gifttl",
    177  1.104  knakahar 		       SYSCTL_DESCR("Default TTL for a gif tunnel datagram"),
    178  1.104  knakahar 		       NULL, 0, &ip_gif_ttl, 0,
    179  1.104  knakahar 		       CTL_NET, PF_INET, IPPROTO_IP,
    180  1.104  knakahar 		       IPCTL_GIF_TTL, CTL_EOL);
    181  1.104  knakahar #endif
    182  1.104  knakahar #ifdef INET6
    183  1.121  knakahar 	/*
    184  1.121  knakahar 	 * Previously create "net.inet6.ip6" entry to avoid sysctl_createv error.
    185  1.121  knakahar 	 */
    186  1.121  knakahar 	sysctl_createv(NULL, 0, NULL, NULL,
    187  1.121  knakahar 		       CTLFLAG_PERMANENT,
    188  1.121  knakahar 		       CTLTYPE_NODE, "inet6",
    189  1.121  knakahar 		       SYSCTL_DESCR("PF_INET6 related settings"),
    190  1.121  knakahar 		       NULL, 0, NULL, 0,
    191  1.121  knakahar 		       CTL_NET, PF_INET6, CTL_EOL);
    192  1.121  knakahar 	sysctl_createv(NULL, 0, NULL, NULL,
    193  1.121  knakahar 		       CTLFLAG_PERMANENT,
    194  1.121  knakahar 		       CTLTYPE_NODE, "ip6",
    195  1.121  knakahar 		       SYSCTL_DESCR("IPv6 related settings"),
    196  1.121  knakahar 		       NULL, 0, NULL, 0,
    197  1.121  knakahar 		       CTL_NET, PF_INET6, IPPROTO_IPV6, CTL_EOL);
    198  1.121  knakahar 
    199  1.120  christos 	sysctl_createv(&gif_sysctl, 0, NULL, NULL,
    200  1.104  knakahar 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
    201  1.104  knakahar 		       CTLTYPE_INT, "gifhlim",
    202  1.104  knakahar 		       SYSCTL_DESCR("Default hop limit for a gif tunnel datagram"),
    203  1.104  knakahar 		       NULL, 0, &ip6_gif_hlim, 0,
    204  1.104  knakahar 		       CTL_NET, PF_INET6, IPPROTO_IPV6,
    205  1.104  knakahar 		       IPV6CTL_GIF_HLIM, CTL_EOL);
    206  1.104  knakahar #endif
    207  1.104  knakahar }
    208  1.104  knakahar 
    209   1.12   thorpej /* ARGSUSED */
    210    1.2    itojun void
    211   1.63  christos gifattach(int count)
    212   1.12   thorpej {
    213  1.120  christos 	/*
    214  1.120  christos 	 * Nothing to do here, initialization is handled by the
    215  1.120  christos 	 * module initialization code in gifinit() below).
    216  1.120  christos 	 */
    217  1.120  christos }
    218  1.120  christos 
    219  1.120  christos static void
    220  1.120  christos gifinit(void)
    221  1.120  christos {
    222   1.12   thorpej 
    223  1.130  knakahar 	mutex_init(&gif_softcs.lock, MUTEX_DEFAULT, IPL_NONE);
    224  1.130  knakahar 	LIST_INIT(&gif_softcs.list);
    225   1.12   thorpej 	if_clone_attach(&gif_cloner);
    226  1.104  knakahar 
    227  1.133  knakahar 	gif_psz = pserialize_create();
    228  1.133  knakahar 	gv_psref_class = psref_class_create("gifvar", IPL_SOFTNET);
    229  1.133  knakahar 
    230  1.120  christos 	gif_sysctl_setup();
    231  1.120  christos }
    232  1.120  christos 
    233  1.120  christos static int
    234  1.120  christos gifdetach(void)
    235  1.120  christos {
    236  1.120  christos 	int error = 0;
    237  1.120  christos 
    238  1.130  knakahar 	mutex_enter(&gif_softcs.lock);
    239  1.130  knakahar 	if (!LIST_EMPTY(&gif_softcs.list)) {
    240  1.130  knakahar 		mutex_exit(&gif_softcs.lock);
    241  1.120  christos 		error = EBUSY;
    242  1.130  knakahar 	}
    243  1.120  christos 
    244  1.120  christos 	if (error == 0) {
    245  1.133  knakahar 		psref_class_destroy(gv_psref_class);
    246  1.133  knakahar 		pserialize_destroy(gif_psz);
    247  1.133  knakahar 
    248  1.120  christos 		if_clone_detach(&gif_cloner);
    249  1.120  christos 		sysctl_teardown(&gif_sysctl);
    250  1.120  christos 	}
    251  1.120  christos 
    252  1.120  christos 	return error;
    253   1.12   thorpej }
    254   1.12   thorpej 
    255   1.56   thorpej static int
    256   1.56   thorpej gif_clone_create(struct if_clone *ifc, int unit)
    257    1.2    itojun {
    258   1.12   thorpej 	struct gif_softc *sc;
    259  1.133  knakahar 	struct gif_variant *var;
    260  1.131   msaitoh 	int rv;
    261   1.12   thorpej 
    262   1.98  knakahar 	sc = kmem_zalloc(sizeof(struct gif_softc), KM_SLEEP);
    263    1.2    itojun 
    264   1.75  christos 	if_initname(&sc->gif_if, ifc->ifc_name, unit);
    265    1.9    itojun 
    266  1.131   msaitoh 	rv = gifattach0(sc);
    267  1.131   msaitoh 	if (rv != 0) {
    268  1.131   msaitoh 		kmem_free(sc, sizeof(struct gif_softc));
    269  1.131   msaitoh 		return rv;
    270  1.131   msaitoh 	}
    271   1.31    itojun 
    272  1.133  knakahar 	var = kmem_zalloc(sizeof(*var), KM_SLEEP);
    273  1.133  knakahar 	var->gv_softc = sc;
    274  1.133  knakahar 	psref_target_init(&var->gv_psref, gv_psref_class);
    275  1.133  knakahar 
    276  1.133  knakahar 	sc->gif_var = var;
    277  1.133  knakahar 	mutex_init(&sc->gif_lock, MUTEX_DEFAULT, IPL_NONE);
    278  1.129  knakahar 	sc->gif_ro_percpu = percpu_alloc(sizeof(struct gif_ro));
    279  1.129  knakahar 	percpu_foreach(sc->gif_ro_percpu, gif_ro_init_pc, NULL);
    280  1.129  knakahar 
    281  1.130  knakahar 	mutex_enter(&gif_softcs.lock);
    282  1.130  knakahar 	LIST_INSERT_HEAD(&gif_softcs.list, sc, gif_list);
    283  1.130  knakahar 	mutex_exit(&gif_softcs.lock);
    284  1.131   msaitoh 	return 0;
    285   1.31    itojun }
    286   1.31    itojun 
    287  1.131   msaitoh static int
    288   1.56   thorpej gifattach0(struct gif_softc *sc)
    289   1.31    itojun {
    290  1.131   msaitoh 	int rv;
    291   1.31    itojun 
    292   1.31    itojun 	sc->gif_if.if_addrlen = 0;
    293   1.12   thorpej 	sc->gif_if.if_mtu    = GIF_MTU;
    294   1.12   thorpej 	sc->gif_if.if_flags  = IFF_POINTOPOINT | IFF_MULTICAST;
    295  1.113  knakahar 	sc->gif_if.if_extflags  = IFEF_NO_LINK_STATE_CHANGE;
    296  1.122  knakahar #ifdef GIF_MPSAFE
    297  1.132     ozaki 	sc->gif_if.if_extflags  |= IFEF_MPSAFE;
    298  1.122  knakahar #endif
    299   1.12   thorpej 	sc->gif_if.if_ioctl  = gif_ioctl;
    300   1.12   thorpej 	sc->gif_if.if_output = gif_output;
    301  1.119  knakahar 	sc->gif_if.if_start = gif_start;
    302  1.119  knakahar 	sc->gif_if.if_transmit = gif_transmit;
    303   1.12   thorpej 	sc->gif_if.if_type   = IFT_GIF;
    304   1.19   thorpej 	sc->gif_if.if_dlt    = DLT_NULL;
    305   1.76    dyoung 	sc->gif_if.if_softc  = sc;
    306   1.34    itojun 	IFQ_SET_READY(&sc->gif_if.if_snd);
    307  1.131   msaitoh 	rv = if_initialize(&sc->gif_if);
    308  1.131   msaitoh 	if (rv != 0)
    309  1.131   msaitoh 		return rv;
    310  1.131   msaitoh 
    311  1.112  knakahar 	if_register(&sc->gif_if);
    312   1.20   thorpej 	if_alloc_sadl(&sc->gif_if);
    313   1.78     joerg 	bpf_attach(&sc->gif_if, DLT_NULL, sizeof(u_int));
    314  1.131   msaitoh 	return 0;
    315   1.12   thorpej }
    316   1.12   thorpej 
    317  1.129  knakahar static void
    318  1.129  knakahar gif_ro_init_pc(void *p, void *arg __unused, struct cpu_info *ci __unused)
    319  1.129  knakahar {
    320  1.129  knakahar 	struct gif_ro *gro = p;
    321  1.129  knakahar 
    322  1.129  knakahar 	mutex_init(&gro->gr_lock, MUTEX_DEFAULT, IPL_NONE);
    323  1.129  knakahar }
    324  1.129  knakahar 
    325  1.129  knakahar static void
    326  1.129  knakahar gif_ro_fini_pc(void *p, void *arg __unused, struct cpu_info *ci __unused)
    327  1.129  knakahar {
    328  1.129  knakahar 	struct gif_ro *gro = p;
    329  1.129  knakahar 
    330  1.129  knakahar 	rtcache_free(&gro->gr_ro);
    331  1.129  knakahar 
    332  1.129  knakahar 	mutex_destroy(&gro->gr_lock);
    333  1.129  knakahar }
    334  1.129  knakahar 
    335  1.124  knakahar void
    336  1.124  knakahar gif_rtcache_free_pc(void *p, void *arg __unused, struct cpu_info *ci __unused)
    337  1.124  knakahar {
    338  1.129  knakahar 	struct gif_ro *gro = p;
    339  1.124  knakahar 
    340  1.129  knakahar 	rtcache_free(&gro->gr_ro);
    341  1.124  knakahar }
    342  1.124  knakahar 
    343   1.56   thorpej static int
    344   1.56   thorpej gif_clone_destroy(struct ifnet *ifp)
    345   1.12   thorpej {
    346   1.12   thorpej 	struct gif_softc *sc = (void *) ifp;
    347  1.133  knakahar 	struct gif_variant *var;
    348   1.12   thorpej 
    349   1.12   thorpej 	LIST_REMOVE(sc, gif_list);
    350   1.12   thorpej 
    351   1.94  knakahar 	gif_delete_tunnel(&sc->gif_if);
    352   1.78     joerg 	bpf_detach(ifp);
    353   1.69    dyoung 	if_detach(ifp);
    354  1.129  knakahar 
    355  1.129  knakahar 	percpu_foreach(sc->gif_ro_percpu, gif_ro_fini_pc, NULL);
    356  1.129  knakahar 	percpu_free(sc->gif_ro_percpu, sizeof(struct gif_ro));
    357  1.129  knakahar 
    358  1.133  knakahar 	mutex_destroy(&sc->gif_lock);
    359  1.133  knakahar 
    360  1.133  knakahar 	var = sc->gif_var;
    361  1.133  knakahar 	kmem_free(var, sizeof(*var));
    362   1.98  knakahar 	kmem_free(sc, sizeof(struct gif_softc));
    363   1.47     peter 
    364  1.131   msaitoh 	return 0;
    365    1.9    itojun }
    366    1.9    itojun 
    367   1.42    itojun #ifdef GIF_ENCAPCHECK
    368   1.31    itojun int
    369   1.56   thorpej gif_encapcheck(struct mbuf *m, int off, int proto, void *arg)
    370    1.9    itojun {
    371    1.9    itojun 	struct ip ip;
    372    1.9    itojun 	struct gif_softc *sc;
    373  1.133  knakahar 	struct gif_variant *var;
    374  1.133  knakahar 	struct psref psref;
    375  1.133  knakahar 	int ret = 0;
    376    1.9    itojun 
    377   1.76    dyoung 	sc = arg;
    378    1.9    itojun 	if (sc == NULL)
    379    1.9    itojun 		return 0;
    380    1.9    itojun 
    381  1.134  knakahar 	if ((sc->gif_if.if_flags & IFF_UP) == 0)
    382    1.9    itojun 		return 0;
    383    1.9    itojun 
    384  1.133  knakahar 	var = gif_getref_variant(sc, &psref);
    385  1.137  knakahar 	/* no physical address */
    386  1.133  knakahar 	if (var->gv_psrc == NULL || var->gv_pdst == NULL)
    387  1.133  knakahar 		goto out;
    388  1.133  knakahar 
    389    1.9    itojun 	switch (proto) {
    390    1.9    itojun #ifdef INET
    391    1.9    itojun 	case IPPROTO_IPV4:
    392    1.9    itojun 		break;
    393    1.9    itojun #endif
    394    1.9    itojun #ifdef INET6
    395    1.9    itojun 	case IPPROTO_IPV6:
    396    1.9    itojun 		break;
    397    1.9    itojun #endif
    398    1.9    itojun 	default:
    399  1.133  knakahar 		goto out;
    400    1.9    itojun 	}
    401   1.40  christos 
    402   1.40  christos 	/* Bail on short packets */
    403   1.40  christos 	KASSERT(m->m_flags & M_PKTHDR);
    404   1.40  christos 	if (m->m_pkthdr.len < sizeof(ip))
    405  1.133  knakahar 		goto  out;
    406    1.9    itojun 
    407   1.76    dyoung 	m_copydata(m, 0, sizeof(ip), &ip);
    408    1.9    itojun 
    409    1.9    itojun 	switch (ip.ip_v) {
    410    1.9    itojun #ifdef INET
    411    1.9    itojun 	case 4:
    412  1.133  knakahar 		if (var->gv_psrc->sa_family != AF_INET ||
    413  1.133  knakahar 		    var->gv_pdst->sa_family != AF_INET)
    414  1.133  knakahar 			goto out;
    415  1.133  knakahar 		ret = gif_encapcheck4(m, off, proto, var);
    416  1.133  knakahar 		break;
    417    1.9    itojun #endif
    418    1.9    itojun #ifdef INET6
    419    1.9    itojun 	case 6:
    420   1.41    itojun 		if (m->m_pkthdr.len < sizeof(struct ip6_hdr))
    421  1.133  knakahar 			goto out;
    422  1.133  knakahar 		if (var->gv_psrc->sa_family != AF_INET6 ||
    423  1.133  knakahar 		    var->gv_pdst->sa_family != AF_INET6)
    424  1.133  knakahar 			goto out;
    425  1.133  knakahar 		ret = gif_encapcheck6(m, off, proto, var);
    426  1.133  knakahar 		break;
    427    1.9    itojun #endif
    428    1.9    itojun 	default:
    429  1.133  knakahar 		goto out;
    430    1.2    itojun 	}
    431  1.133  knakahar 
    432  1.133  knakahar out:
    433  1.133  knakahar 	gif_putref_variant(var, &psref);
    434  1.133  knakahar 	return ret;
    435    1.2    itojun }
    436   1.42    itojun #endif
    437    1.2    itojun 
    438   1.95  knakahar /*
    439   1.95  knakahar  * gif may cause infinite recursion calls when misconfigured.
    440   1.95  knakahar  * We'll prevent this by introducing upper limit.
    441   1.95  knakahar  */
    442   1.95  knakahar static int
    443   1.95  knakahar gif_check_nesting(struct ifnet *ifp, struct mbuf *m)
    444   1.95  knakahar {
    445   1.95  knakahar 
    446  1.135  knakahar 	return if_tunnel_check_nesting(ifp, m, max_gif_nesting);
    447   1.95  knakahar }
    448   1.95  knakahar 
    449  1.109  knakahar static int
    450   1.65    dyoung gif_output(struct ifnet *ifp, struct mbuf *m, const struct sockaddr *dst,
    451  1.108     ozaki     const struct rtentry *rt)
    452    1.2    itojun {
    453   1.76    dyoung 	struct gif_softc *sc = ifp->if_softc;
    454  1.133  knakahar 	struct gif_variant *var = NULL;
    455  1.133  knakahar 	struct psref psref;
    456    1.2    itojun 	int error = 0;
    457   1.33    itojun 
    458  1.107  knakahar 	IFQ_CLASSIFY(&ifp->if_snd, m, dst->sa_family);
    459    1.2    itojun 
    460   1.95  knakahar 	if ((error = gif_check_nesting(ifp, m)) != 0) {
    461  1.139      maxv 		m_freem(m);
    462    1.2    itojun 		goto end;
    463    1.2    itojun 	}
    464    1.2    itojun 
    465  1.134  knakahar 	if ((ifp->if_flags & IFF_UP) == 0) {
    466    1.2    itojun 		m_freem(m);
    467    1.2    itojun 		error = ENETDOWN;
    468    1.2    itojun 		goto end;
    469    1.2    itojun 	}
    470    1.2    itojun 
    471  1.133  knakahar 	var = gif_getref_variant(sc, &psref);
    472  1.133  knakahar 	if (var->gv_psrc == NULL || var->gv_pdst == NULL) {
    473  1.133  knakahar 		m_freem(m);
    474  1.133  knakahar 		error = ENETDOWN;
    475  1.133  knakahar 		goto end;
    476  1.133  knakahar 	}
    477    1.9    itojun 	/* XXX should we check if our outer source is legal? */
    478    1.2    itojun 
    479  1.133  knakahar 	m->m_flags &= ~(M_BCAST|M_MCAST);
    480  1.133  knakahar 
    481   1.33    itojun 	/* use DLT_NULL encapsulation here to pass inner af type */
    482   1.33    itojun 	M_PREPEND(m, sizeof(int), M_DONTWAIT);
    483   1.33    itojun 	if (!m) {
    484   1.33    itojun 		error = ENOBUFS;
    485   1.33    itojun 		goto end;
    486   1.33    itojun 	}
    487   1.33    itojun 	*mtod(m, int *) = dst->sa_family;
    488   1.33    itojun 
    489   1.79    dyoung 	/* Clear checksum-offload flags. */
    490   1.79    dyoung 	m->m_pkthdr.csum_flags = 0;
    491   1.79    dyoung 	m->m_pkthdr.csum_data = 0;
    492   1.79    dyoung 
    493  1.133  knakahar 	error = gif_transmit_direct(var, m);
    494  1.133  knakahar end:
    495  1.133  knakahar 	if (var != NULL)
    496  1.133  knakahar 		gif_putref_variant(var, &psref);
    497   1.31    itojun 	if (error)
    498   1.31    itojun 		ifp->if_oerrors++;
    499    1.2    itojun 	return error;
    500    1.2    itojun }
    501    1.2    itojun 
    502   1.56   thorpej static void
    503  1.111  knakahar gif_start(struct ifnet *ifp)
    504   1.33    itojun {
    505   1.33    itojun 	struct gif_softc *sc;
    506  1.133  knakahar 	struct gif_variant *var;
    507   1.33    itojun 	struct mbuf *m;
    508  1.133  knakahar 	struct psref psref;
    509   1.33    itojun 	int family;
    510   1.33    itojun 	int len;
    511   1.33    itojun 	int error;
    512   1.33    itojun 
    513  1.111  knakahar 	sc = ifp->if_softc;
    514  1.133  knakahar 	var = gif_getref_variant(sc, &psref);
    515  1.133  knakahar 
    516  1.133  knakahar 	KASSERT(var->gv_output != NULL);
    517  1.102  knakahar 
    518   1.33    itojun 	/* output processing */
    519   1.33    itojun 	while (1) {
    520   1.34    itojun 		IFQ_DEQUEUE(&sc->gif_if.if_snd, m);
    521   1.33    itojun 		if (m == NULL)
    522   1.33    itojun 			break;
    523   1.33    itojun 
    524   1.33    itojun 		/* grab and chop off inner af type */
    525   1.33    itojun 		if (sizeof(int) > m->m_len) {
    526   1.33    itojun 			m = m_pullup(m, sizeof(int));
    527   1.33    itojun 			if (!m) {
    528   1.33    itojun 				ifp->if_oerrors++;
    529   1.33    itojun 				continue;
    530   1.33    itojun 			}
    531   1.33    itojun 		}
    532   1.33    itojun 		family = *mtod(m, int *);
    533   1.78     joerg 		bpf_mtap(ifp, m);
    534   1.33    itojun 		m_adj(m, sizeof(int));
    535   1.33    itojun 
    536   1.33    itojun 		len = m->m_pkthdr.len;
    537   1.33    itojun 
    538  1.133  knakahar 		error = var->gv_output(var, family, m);
    539   1.33    itojun 		if (error)
    540   1.33    itojun 			ifp->if_oerrors++;
    541   1.33    itojun 		else {
    542   1.50     perry 			ifp->if_opackets++;
    543   1.33    itojun 			ifp->if_obytes += len;
    544   1.33    itojun 		}
    545   1.33    itojun 	}
    546  1.133  knakahar 
    547  1.133  knakahar 	gif_putref_variant(var, &psref);
    548   1.33    itojun }
    549   1.33    itojun 
    550  1.119  knakahar static int
    551  1.119  knakahar gif_transmit(struct ifnet *ifp, struct mbuf *m)
    552  1.119  knakahar {
    553  1.119  knakahar 	struct gif_softc *sc;
    554  1.133  knakahar 	struct gif_variant *var;
    555  1.133  knakahar 	struct psref psref;
    556  1.119  knakahar 	int error;
    557  1.119  knakahar 
    558  1.119  knakahar 	sc = ifp->if_softc;
    559  1.119  knakahar 
    560  1.119  knakahar 	/* output processing */
    561  1.119  knakahar 	if (m == NULL)
    562  1.119  knakahar 		return EINVAL;
    563  1.119  knakahar 
    564  1.133  knakahar 	var = gif_getref_variant(sc, &psref);
    565  1.133  knakahar 	error = gif_transmit_direct(var, m);
    566  1.133  knakahar 	gif_putref_variant(var, &psref);
    567  1.133  knakahar 
    568  1.133  knakahar 	return error;
    569  1.133  knakahar }
    570  1.133  knakahar 
    571  1.133  knakahar static int
    572  1.133  knakahar gif_transmit_direct(struct gif_variant *var, struct mbuf *m)
    573  1.133  knakahar {
    574  1.133  knakahar 	struct ifnet *ifp = &var->gv_softc->gif_if;
    575  1.133  knakahar 	int error;
    576  1.133  knakahar 	int family;
    577  1.133  knakahar 	int len;
    578  1.133  knakahar 
    579  1.133  knakahar 	KASSERT(gif_heldref_variant(var));
    580  1.133  knakahar 	KASSERT(var->gv_output != NULL);
    581  1.133  knakahar 
    582  1.119  knakahar 	/* grab and chop off inner af type */
    583  1.119  knakahar 	if (sizeof(int) > m->m_len) {
    584  1.119  knakahar 		m = m_pullup(m, sizeof(int));
    585  1.119  knakahar 		if (!m) {
    586  1.119  knakahar 			ifp->if_oerrors++;
    587  1.119  knakahar 			return ENOBUFS;
    588  1.119  knakahar 		}
    589  1.119  knakahar 	}
    590  1.119  knakahar 	family = *mtod(m, int *);
    591  1.119  knakahar 	bpf_mtap(ifp, m);
    592  1.119  knakahar 	m_adj(m, sizeof(int));
    593  1.119  knakahar 
    594  1.119  knakahar 	len = m->m_pkthdr.len;
    595  1.119  knakahar 
    596  1.133  knakahar 	error = var->gv_output(var, family, m);
    597  1.119  knakahar 	if (error)
    598  1.119  knakahar 		ifp->if_oerrors++;
    599  1.119  knakahar 	else {
    600  1.119  knakahar 		ifp->if_opackets++;
    601  1.119  knakahar 		ifp->if_obytes += len;
    602  1.119  knakahar 	}
    603  1.119  knakahar 
    604  1.119  knakahar 	return error;
    605  1.119  knakahar }
    606  1.119  knakahar 
    607   1.33    itojun void
    608   1.56   thorpej gif_input(struct mbuf *m, int af, struct ifnet *ifp)
    609    1.2    itojun {
    610   1.83     rmind 	pktqueue_t *pktq;
    611   1.83     rmind 	size_t pktlen;
    612    1.2    itojun 
    613   1.33    itojun 	if (ifp == NULL) {
    614    1.2    itojun 		/* just in case */
    615    1.2    itojun 		m_freem(m);
    616    1.2    itojun 		return;
    617    1.2    itojun 	}
    618    1.2    itojun 
    619  1.110     ozaki 	m_set_rcvif(m, ifp);
    620   1.83     rmind 	pktlen = m->m_pkthdr.len;
    621   1.50     perry 
    622   1.78     joerg 	bpf_mtap_af(ifp, af, m);
    623    1.2    itojun 
    624    1.2    itojun 	/*
    625    1.2    itojun 	 * Put the packet to the network layer input queue according to the
    626   1.83     rmind 	 * specified address family.  Note: we avoid direct call to the
    627   1.83     rmind 	 * input function of the network layer in order to avoid recursion.
    628   1.83     rmind 	 * This may be revisited in the future.
    629    1.2    itojun 	 */
    630    1.2    itojun 	switch (af) {
    631    1.2    itojun #ifdef INET
    632    1.2    itojun 	case AF_INET:
    633   1.83     rmind 		pktq = ip_pktq;
    634    1.2    itojun 		break;
    635    1.2    itojun #endif
    636    1.2    itojun #ifdef INET6
    637    1.2    itojun 	case AF_INET6:
    638   1.83     rmind 		pktq = ip6_pktq;
    639    1.2    itojun 		break;
    640    1.2    itojun #endif
    641    1.2    itojun 	default:
    642    1.2    itojun 		m_freem(m);
    643    1.2    itojun 		return;
    644    1.2    itojun 	}
    645    1.2    itojun 
    646  1.127  knakahar #ifdef GIF_MPSAFE
    647  1.127  knakahar 	const u_int h = curcpu()->ci_index;
    648  1.127  knakahar #else
    649  1.127  knakahar 	const uint32_t h = pktq_rps_hash(m);
    650  1.127  knakahar #endif
    651  1.127  knakahar 	if (__predict_true(pktq_enqueue(pktq, m, h))) {
    652   1.83     rmind 		ifp->if_ibytes += pktlen;
    653   1.83     rmind 		ifp->if_ipackets++;
    654   1.83     rmind 	} else {
    655    1.2    itojun 		m_freem(m);
    656    1.2    itojun 	}
    657    1.2    itojun }
    658    1.2    itojun 
    659    1.9    itojun /* XXX how should we handle IPv6 scope on SIOC[GS]IFPHYADDR? */
    660  1.109  knakahar static int
    661   1.67  christos gif_ioctl(struct ifnet *ifp, u_long cmd, void *data)
    662    1.2    itojun {
    663   1.76    dyoung 	struct gif_softc *sc  = ifp->if_softc;
    664    1.2    itojun 	struct ifreq     *ifr = (struct ifreq*)data;
    665   1.84       roy 	struct ifaddr    *ifa = (struct ifaddr*)data;
    666  1.133  knakahar 	int error = 0, size, bound;
    667    1.9    itojun 	struct sockaddr *dst, *src;
    668  1.133  knakahar 	struct gif_variant *var;
    669  1.133  knakahar 	struct psref psref;
    670   1.31    itojun 
    671    1.2    itojun 	switch (cmd) {
    672   1.76    dyoung 	case SIOCINITIFADDR:
    673   1.32    itojun 		ifp->if_flags |= IFF_UP;
    674   1.84       roy 		ifa->ifa_rtrequest = p2p_rtrequest;
    675    1.2    itojun 		break;
    676   1.50     perry 
    677    1.2    itojun 	case SIOCADDMULTI:
    678    1.2    itojun 	case SIOCDELMULTI:
    679    1.2    itojun 		switch (ifr->ifr_addr.sa_family) {
    680    1.2    itojun #ifdef INET
    681    1.2    itojun 		case AF_INET:	/* IP supports Multicast */
    682    1.2    itojun 			break;
    683    1.2    itojun #endif /* INET */
    684    1.2    itojun #ifdef INET6
    685    1.2    itojun 		case AF_INET6:	/* IP6 supports Multicast */
    686    1.2    itojun 			break;
    687    1.2    itojun #endif /* INET6 */
    688    1.2    itojun 		default:  /* Other protocols doesn't support Multicast */
    689    1.2    itojun 			error = EAFNOSUPPORT;
    690    1.2    itojun 			break;
    691    1.2    itojun 		}
    692    1.2    itojun 		break;
    693    1.2    itojun 
    694    1.2    itojun 	case SIOCSIFMTU:
    695   1.73    dyoung 		if (ifr->ifr_mtu < GIF_MTU_MIN || ifr->ifr_mtu > GIF_MTU_MAX)
    696   1.73    dyoung 			return EINVAL;
    697   1.73    dyoung 		else if ((error = ifioctl_common(ifp, cmd, data)) == ENETRESET)
    698   1.73    dyoung 			error = 0;
    699    1.2    itojun 		break;
    700    1.2    itojun 
    701   1.31    itojun #ifdef INET
    702    1.2    itojun 	case SIOCSIFPHYADDR:
    703   1.31    itojun #endif
    704    1.2    itojun #ifdef INET6
    705    1.2    itojun 	case SIOCSIFPHYADDR_IN6:
    706    1.2    itojun #endif /* INET6 */
    707   1.25    itojun 	case SIOCSLIFPHYADDR:
    708   1.11    itojun 		switch (cmd) {
    709   1.15    itojun #ifdef INET
    710   1.11    itojun 		case SIOCSIFPHYADDR:
    711   1.11    itojun 			src = (struct sockaddr *)
    712   1.11    itojun 				&(((struct in_aliasreq *)data)->ifra_addr);
    713   1.11    itojun 			dst = (struct sockaddr *)
    714   1.11    itojun 				&(((struct in_aliasreq *)data)->ifra_dstaddr);
    715   1.11    itojun 			break;
    716   1.15    itojun #endif
    717   1.11    itojun #ifdef INET6
    718   1.11    itojun 		case SIOCSIFPHYADDR_IN6:
    719   1.11    itojun 			src = (struct sockaddr *)
    720   1.11    itojun 				&(((struct in6_aliasreq *)data)->ifra_addr);
    721   1.11    itojun 			dst = (struct sockaddr *)
    722   1.11    itojun 				&(((struct in6_aliasreq *)data)->ifra_dstaddr);
    723   1.25    itojun 			break;
    724   1.25    itojun #endif
    725   1.25    itojun 		case SIOCSLIFPHYADDR:
    726   1.25    itojun 			src = (struct sockaddr *)
    727   1.25    itojun 				&(((struct if_laddrreq *)data)->addr);
    728   1.25    itojun 			dst = (struct sockaddr *)
    729   1.25    itojun 				&(((struct if_laddrreq *)data)->dstaddr);
    730   1.31    itojun 			break;
    731   1.31    itojun 		default:
    732   1.31    itojun 			return EINVAL;
    733   1.25    itojun 		}
    734   1.25    itojun 
    735   1.25    itojun 		/* sa_family must be equal */
    736   1.25    itojun 		if (src->sa_family != dst->sa_family)
    737   1.25    itojun 			return EINVAL;
    738   1.25    itojun 
    739   1.25    itojun 		/* validate sa_len */
    740   1.25    itojun 		switch (src->sa_family) {
    741   1.25    itojun #ifdef INET
    742   1.25    itojun 		case AF_INET:
    743   1.25    itojun 			if (src->sa_len != sizeof(struct sockaddr_in))
    744   1.16    itojun 				return EINVAL;
    745   1.11    itojun 			break;
    746   1.11    itojun #endif
    747   1.25    itojun #ifdef INET6
    748   1.25    itojun 		case AF_INET6:
    749   1.25    itojun 			if (src->sa_len != sizeof(struct sockaddr_in6))
    750   1.25    itojun 				return EINVAL;
    751   1.25    itojun 			break;
    752   1.25    itojun #endif
    753   1.25    itojun 		default:
    754   1.25    itojun 			return EAFNOSUPPORT;
    755   1.25    itojun 		}
    756   1.25    itojun 		switch (dst->sa_family) {
    757   1.25    itojun #ifdef INET
    758   1.25    itojun 		case AF_INET:
    759   1.25    itojun 			if (dst->sa_len != sizeof(struct sockaddr_in))
    760   1.25    itojun 				return EINVAL;
    761   1.25    itojun 			break;
    762   1.25    itojun #endif
    763   1.25    itojun #ifdef INET6
    764   1.25    itojun 		case AF_INET6:
    765   1.25    itojun 			if (dst->sa_len != sizeof(struct sockaddr_in6))
    766   1.25    itojun 				return EINVAL;
    767   1.25    itojun 			break;
    768   1.25    itojun #endif
    769   1.25    itojun 		default:
    770   1.25    itojun 			return EAFNOSUPPORT;
    771   1.25    itojun 		}
    772   1.25    itojun 
    773   1.25    itojun 		/* check sa_family looks sane for the cmd */
    774   1.25    itojun 		switch (cmd) {
    775   1.25    itojun 		case SIOCSIFPHYADDR:
    776   1.25    itojun 			if (src->sa_family == AF_INET)
    777   1.25    itojun 				break;
    778   1.25    itojun 			return EAFNOSUPPORT;
    779   1.25    itojun #ifdef INET6
    780   1.25    itojun 		case SIOCSIFPHYADDR_IN6:
    781   1.25    itojun 			if (src->sa_family == AF_INET6)
    782   1.25    itojun 				break;
    783   1.25    itojun 			return EAFNOSUPPORT;
    784   1.25    itojun #endif /* INET6 */
    785   1.25    itojun 		case SIOCSLIFPHYADDR:
    786   1.25    itojun 			/* checks done in the above */
    787   1.25    itojun 			break;
    788   1.11    itojun 		}
    789  1.133  knakahar 		/*
    790  1.133  knakahar 		 * calls gif_getref_variant() for other softcs to check
    791  1.133  knakahar 		 * address pair duplicattion
    792  1.133  knakahar 		 */
    793  1.133  knakahar 		bound = curlwp_bind();
    794   1.31    itojun 		error = gif_set_tunnel(&sc->gif_if, src, dst);
    795  1.133  knakahar 		curlwp_bindx(bound);
    796    1.9    itojun 		break;
    797    1.9    itojun 
    798    1.9    itojun #ifdef SIOCDIFPHYADDR
    799    1.9    itojun 	case SIOCDIFPHYADDR:
    800  1.133  knakahar 		bound = curlwp_bind();
    801   1.31    itojun 		gif_delete_tunnel(&sc->gif_if);
    802  1.133  knakahar 		curlwp_bindx(bound);
    803    1.2    itojun 		break;
    804    1.9    itojun #endif
    805   1.50     perry 
    806    1.2    itojun 	case SIOCGIFPSRCADDR:
    807    1.2    itojun #ifdef INET6
    808    1.2    itojun 	case SIOCGIFPSRCADDR_IN6:
    809    1.2    itojun #endif /* INET6 */
    810  1.133  knakahar 		bound = curlwp_bind();
    811  1.133  knakahar 		var = gif_getref_variant(sc, &psref);
    812  1.133  knakahar 		if (var->gv_psrc == NULL) {
    813  1.133  knakahar 			gif_putref_variant(var, &psref);
    814  1.133  knakahar 			curlwp_bindx(bound);
    815    1.2    itojun 			error = EADDRNOTAVAIL;
    816    1.2    itojun 			goto bad;
    817    1.2    itojun 		}
    818  1.133  knakahar 		src = var->gv_psrc;
    819   1.16    itojun 		switch (cmd) {
    820    1.2    itojun #ifdef INET
    821   1.16    itojun 		case SIOCGIFPSRCADDR:
    822    1.2    itojun 			dst = &ifr->ifr_addr;
    823   1.16    itojun 			size = sizeof(ifr->ifr_addr);
    824    1.2    itojun 			break;
    825    1.2    itojun #endif /* INET */
    826    1.2    itojun #ifdef INET6
    827   1.16    itojun 		case SIOCGIFPSRCADDR_IN6:
    828    1.2    itojun 			dst = (struct sockaddr *)
    829    1.2    itojun 				&(((struct in6_ifreq *)data)->ifr_addr);
    830   1.16    itojun 			size = sizeof(((struct in6_ifreq *)data)->ifr_addr);
    831    1.2    itojun 			break;
    832    1.2    itojun #endif /* INET6 */
    833    1.2    itojun 		default:
    834  1.133  knakahar 			gif_putref_variant(var, &psref);
    835  1.133  knakahar 			curlwp_bindx(bound);
    836    1.2    itojun 			error = EADDRNOTAVAIL;
    837    1.2    itojun 			goto bad;
    838    1.2    itojun 		}
    839  1.133  knakahar 		if (src->sa_len > size) {
    840  1.133  knakahar 			gif_putref_variant(var, &psref);
    841  1.133  knakahar 			curlwp_bindx(bound);
    842   1.16    itojun 			return EINVAL;
    843  1.133  knakahar 		}
    844   1.68    dyoung 		memcpy(dst, src, src->sa_len);
    845  1.133  knakahar 		gif_putref_variant(var, &psref);
    846  1.133  knakahar 		curlwp_bindx(bound);
    847    1.2    itojun 		break;
    848   1.50     perry 
    849    1.2    itojun 	case SIOCGIFPDSTADDR:
    850    1.2    itojun #ifdef INET6
    851    1.2    itojun 	case SIOCGIFPDSTADDR_IN6:
    852    1.2    itojun #endif /* INET6 */
    853  1.133  knakahar 		bound = curlwp_bind();
    854  1.133  knakahar 		var = gif_getref_variant(sc, &psref);
    855  1.133  knakahar 		if (var->gv_pdst == NULL) {
    856  1.133  knakahar 			gif_putref_variant(var, &psref);
    857  1.133  knakahar 			curlwp_bindx(bound);
    858    1.2    itojun 			error = EADDRNOTAVAIL;
    859    1.2    itojun 			goto bad;
    860    1.2    itojun 		}
    861  1.133  knakahar 		src = var->gv_pdst;
    862   1.16    itojun 		switch (cmd) {
    863    1.2    itojun #ifdef INET
    864   1.16    itojun 		case SIOCGIFPDSTADDR:
    865    1.2    itojun 			dst = &ifr->ifr_addr;
    866   1.16    itojun 			size = sizeof(ifr->ifr_addr);
    867    1.2    itojun 			break;
    868    1.2    itojun #endif /* INET */
    869    1.2    itojun #ifdef INET6
    870   1.16    itojun 		case SIOCGIFPDSTADDR_IN6:
    871    1.2    itojun 			dst = (struct sockaddr *)
    872    1.2    itojun 				&(((struct in6_ifreq *)data)->ifr_addr);
    873   1.16    itojun 			size = sizeof(((struct in6_ifreq *)data)->ifr_addr);
    874    1.2    itojun 			break;
    875    1.2    itojun #endif /* INET6 */
    876    1.2    itojun 		default:
    877  1.133  knakahar 			gif_putref_variant(var, &psref);
    878  1.133  knakahar 			curlwp_bindx(bound);
    879    1.2    itojun 			error = EADDRNOTAVAIL;
    880    1.2    itojun 			goto bad;
    881    1.2    itojun 		}
    882  1.133  knakahar 		if (src->sa_len > size) {
    883  1.133  knakahar 			gif_putref_variant(var, &psref);
    884  1.133  knakahar 			curlwp_bindx(bound);
    885   1.25    itojun 			return EINVAL;
    886  1.133  knakahar 		}
    887   1.68    dyoung 		memcpy(dst, src, src->sa_len);
    888  1.133  knakahar 		gif_putref_variant(var, &psref);
    889  1.133  knakahar 		curlwp_bindx(bound);
    890   1.25    itojun 		break;
    891   1.25    itojun 
    892   1.25    itojun 	case SIOCGLIFPHYADDR:
    893  1.133  knakahar 		bound = curlwp_bind();
    894  1.133  knakahar 		var = gif_getref_variant(sc, &psref);
    895  1.133  knakahar 		if (var->gv_psrc == NULL || var->gv_pdst == NULL) {
    896  1.133  knakahar 			gif_putref_variant(var, &psref);
    897  1.133  knakahar 			curlwp_bindx(bound);
    898   1.25    itojun 			error = EADDRNOTAVAIL;
    899   1.25    itojun 			goto bad;
    900   1.25    itojun 		}
    901   1.25    itojun 
    902   1.25    itojun 		/* copy src */
    903  1.133  knakahar 		src = var->gv_psrc;
    904   1.25    itojun 		dst = (struct sockaddr *)
    905   1.25    itojun 			&(((struct if_laddrreq *)data)->addr);
    906   1.25    itojun 		size = sizeof(((struct if_laddrreq *)data)->addr);
    907  1.133  knakahar 		if (src->sa_len > size) {
    908  1.133  knakahar 			gif_putref_variant(var, &psref);
    909  1.133  knakahar 			curlwp_bindx(bound);
    910   1.25    itojun 			return EINVAL;
    911  1.133  knakahar 		}
    912   1.68    dyoung 		memcpy(dst, src, src->sa_len);
    913   1.25    itojun 
    914   1.25    itojun 		/* copy dst */
    915  1.133  knakahar 		src = var->gv_pdst;
    916   1.25    itojun 		dst = (struct sockaddr *)
    917   1.25    itojun 			&(((struct if_laddrreq *)data)->dstaddr);
    918   1.25    itojun 		size = sizeof(((struct if_laddrreq *)data)->dstaddr);
    919  1.133  knakahar 		if (src->sa_len > size) {
    920  1.133  knakahar 			gif_putref_variant(var, &psref);
    921  1.133  knakahar 			curlwp_bindx(bound);
    922   1.16    itojun 			return EINVAL;
    923  1.133  knakahar 		}
    924   1.68    dyoung 		memcpy(dst, src, src->sa_len);
    925  1.133  knakahar 		gif_putref_variant(var, &psref);
    926  1.133  knakahar 		curlwp_bindx(bound);
    927    1.2    itojun 		break;
    928    1.2    itojun 
    929    1.2    itojun 	default:
    930   1.76    dyoung 		return ifioctl_common(ifp, cmd, data);
    931    1.2    itojun 	}
    932    1.2    itojun  bad:
    933    1.2    itojun 	return error;
    934   1.12   thorpej }
    935   1.12   thorpej 
    936   1.97  knakahar static int
    937  1.133  knakahar gif_encap_attach(struct gif_variant *var)
    938   1.97  knakahar {
    939   1.97  knakahar 	int error;
    940   1.97  knakahar 
    941  1.133  knakahar 	if (var == NULL || var->gv_psrc == NULL)
    942   1.97  knakahar 		return EINVAL;
    943   1.97  knakahar 
    944  1.133  knakahar 	switch (var->gv_psrc->sa_family) {
    945   1.97  knakahar #ifdef INET
    946   1.97  knakahar 	case AF_INET:
    947  1.133  knakahar 		error = in_gif_attach(var);
    948   1.97  knakahar 		break;
    949   1.97  knakahar #endif
    950   1.97  knakahar #ifdef INET6
    951   1.97  knakahar 	case AF_INET6:
    952  1.133  knakahar 		error = in6_gif_attach(var);
    953   1.97  knakahar 		break;
    954   1.97  knakahar #endif
    955   1.97  knakahar 	default:
    956   1.97  knakahar 		error = EINVAL;
    957   1.97  knakahar 		break;
    958   1.97  knakahar 	}
    959   1.97  knakahar 
    960   1.97  knakahar 	return error;
    961   1.97  knakahar }
    962   1.97  knakahar 
    963   1.97  knakahar static int
    964  1.133  knakahar gif_encap_detach(struct gif_variant *var)
    965   1.97  knakahar {
    966   1.97  knakahar 	int error;
    967   1.97  knakahar 
    968  1.133  knakahar 	if (var == NULL || var->gv_psrc == NULL)
    969   1.97  knakahar 		return EINVAL;
    970   1.97  knakahar 
    971  1.133  knakahar 	switch (var->gv_psrc->sa_family) {
    972   1.97  knakahar #ifdef INET
    973   1.97  knakahar 	case AF_INET:
    974  1.133  knakahar 		error = in_gif_detach(var);
    975   1.97  knakahar 		break;
    976   1.97  knakahar #endif
    977   1.97  knakahar #ifdef INET6
    978   1.97  knakahar 	case AF_INET6:
    979  1.133  knakahar 		error = in6_gif_detach(var);
    980   1.97  knakahar 		break;
    981   1.97  knakahar #endif
    982   1.97  knakahar 	default:
    983   1.97  knakahar 		error = EINVAL;
    984   1.97  knakahar 		break;
    985   1.97  knakahar 	}
    986   1.97  knakahar 
    987   1.97  knakahar 	return error;
    988   1.97  knakahar }
    989   1.97  knakahar 
    990  1.109  knakahar static int
    991   1.56   thorpej gif_set_tunnel(struct ifnet *ifp, struct sockaddr *src, struct sockaddr *dst)
    992   1.31    itojun {
    993   1.76    dyoung 	struct gif_softc *sc = ifp->if_softc;
    994   1.31    itojun 	struct gif_softc *sc2;
    995  1.133  knakahar 	struct gif_variant *ovar, *nvar;
    996   1.71    dyoung 	struct sockaddr *osrc, *odst;
    997   1.96  knakahar 	struct sockaddr *nsrc, *ndst;
    998  1.118  knakahar 	int error;
    999  1.118  knakahar #ifndef GIF_MPSAFE
   1000   1.31    itojun 	int s;
   1001   1.31    itojun 
   1002   1.31    itojun 	s = splsoftnet();
   1003  1.118  knakahar #endif
   1004  1.117  knakahar 	error = encap_lock_enter();
   1005  1.117  knakahar 	if (error) {
   1006  1.118  knakahar #ifndef GIF_MPSAFE
   1007  1.117  knakahar 		splx(s);
   1008  1.118  knakahar #endif
   1009  1.117  knakahar 		return error;
   1010  1.117  knakahar 	}
   1011   1.31    itojun 
   1012  1.133  knakahar 	nsrc = sockaddr_dup(src, M_WAITOK);
   1013  1.133  knakahar 	ndst = sockaddr_dup(dst, M_WAITOK);
   1014  1.133  knakahar 	nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
   1015  1.133  knakahar 
   1016  1.133  knakahar 	mutex_enter(&sc->gif_lock);
   1017  1.133  knakahar 
   1018  1.133  knakahar 	ovar = sc->gif_var;
   1019  1.133  knakahar 
   1020  1.133  knakahar 	if ((ovar->gv_pdst && sockaddr_cmp(ovar->gv_pdst, dst) == 0) &&
   1021  1.133  knakahar 	    (ovar->gv_psrc && sockaddr_cmp(ovar->gv_psrc, src) == 0)) {
   1022  1.133  knakahar 		/* address and port pair not changed. */
   1023  1.133  knakahar 		error = 0;
   1024  1.133  knakahar 		goto out;
   1025  1.133  knakahar 	}
   1026  1.133  knakahar 
   1027  1.130  knakahar 	mutex_enter(&gif_softcs.lock);
   1028  1.130  knakahar 	LIST_FOREACH(sc2, &gif_softcs.list, gif_list) {
   1029  1.133  knakahar 		struct gif_variant *var2;
   1030  1.133  knakahar 		struct psref psref;
   1031  1.133  knakahar 
   1032   1.31    itojun 		if (sc2 == sc)
   1033   1.31    itojun 			continue;
   1034  1.133  knakahar 		var2 = gif_getref_variant(sc, &psref);
   1035  1.133  knakahar 		if (!var2->gv_pdst || !var2->gv_psrc) {
   1036  1.133  knakahar 			gif_putref_variant(var2, &psref);
   1037   1.31    itojun 			continue;
   1038  1.133  knakahar 		}
   1039   1.31    itojun 		/* can't configure same pair of address onto two gifs */
   1040  1.133  knakahar 		if (sockaddr_cmp(var2->gv_pdst, dst) == 0 &&
   1041  1.133  knakahar 		    sockaddr_cmp(var2->gv_psrc, src) == 0) {
   1042   1.91  knakahar 			/* continue to use the old configureation. */
   1043  1.133  knakahar 			gif_putref_variant(var2, &psref);
   1044  1.130  knakahar 			mutex_exit(&gif_softcs.lock);
   1045  1.118  knakahar 			error =  EADDRNOTAVAIL;
   1046  1.118  knakahar 			goto out;
   1047   1.31    itojun 		}
   1048  1.133  knakahar 		gif_putref_variant(var2, &psref);
   1049   1.31    itojun 		/* XXX both end must be valid? (I mean, not 0.0.0.0) */
   1050   1.31    itojun 	}
   1051  1.130  knakahar 	mutex_exit(&gif_softcs.lock);
   1052   1.31    itojun 
   1053  1.133  knakahar 	osrc = ovar->gv_psrc;
   1054  1.133  knakahar 	odst = ovar->gv_pdst;
   1055   1.96  knakahar 
   1056  1.133  knakahar 	*nvar = *ovar;
   1057  1.133  knakahar 	nvar->gv_psrc = nsrc;
   1058  1.133  knakahar 	nvar->gv_pdst = ndst;
   1059  1.133  knakahar 	nvar->gv_encap_cookie4 = NULL;
   1060  1.133  knakahar 	nvar->gv_encap_cookie6 = NULL;
   1061  1.133  knakahar 	error = gif_encap_attach(nvar);
   1062  1.133  knakahar 	if (error)
   1063  1.133  knakahar 		goto out;
   1064  1.133  knakahar 	psref_target_init(&nvar->gv_psref, gv_psref_class);
   1065  1.133  knakahar 	membar_producer();
   1066  1.133  knakahar 	gif_update_variant(sc, nvar);
   1067  1.114  knakahar 
   1068  1.133  knakahar 	mutex_exit(&sc->gif_lock);
   1069   1.31    itojun 
   1070  1.133  knakahar 	(void)gif_encap_detach(ovar);
   1071  1.133  knakahar 	encap_lock_exit();
   1072   1.31    itojun 
   1073   1.31    itojun 	if (osrc)
   1074   1.71    dyoung 		sockaddr_free(osrc);
   1075   1.31    itojun 	if (odst)
   1076   1.71    dyoung 		sockaddr_free(odst);
   1077  1.133  knakahar 	kmem_free(ovar, sizeof(*ovar));
   1078   1.31    itojun 
   1079  1.133  knakahar #ifndef GIF_MPSAFE
   1080  1.133  knakahar 	splx(s);
   1081  1.133  knakahar #endif
   1082  1.133  knakahar 	return 0;
   1083   1.92  knakahar 
   1084  1.118  knakahar  out:
   1085  1.133  knakahar 	sockaddr_free(nsrc);
   1086  1.133  knakahar 	sockaddr_free(ndst);
   1087  1.133  knakahar 	kmem_free(nvar, sizeof(*nvar));
   1088  1.133  knakahar 
   1089  1.133  knakahar 	mutex_exit(&sc->gif_lock);
   1090  1.115  knakahar 	encap_lock_exit();
   1091  1.118  knakahar #ifndef GIF_MPSAFE
   1092   1.31    itojun 	splx(s);
   1093  1.118  knakahar #endif
   1094   1.31    itojun 	return error;
   1095   1.31    itojun }
   1096   1.31    itojun 
   1097  1.109  knakahar static void
   1098   1.56   thorpej gif_delete_tunnel(struct ifnet *ifp)
   1099   1.12   thorpej {
   1100   1.76    dyoung 	struct gif_softc *sc = ifp->if_softc;
   1101  1.133  knakahar 	struct gif_variant *ovar, *nvar;
   1102  1.133  knakahar 	struct sockaddr *osrc, *odst;
   1103  1.118  knakahar 	int error;
   1104  1.118  knakahar #ifndef GIF_MPSAFE
   1105   1.12   thorpej 	int s;
   1106   1.12   thorpej 
   1107   1.12   thorpej 	s = splsoftnet();
   1108  1.118  knakahar #endif
   1109  1.117  knakahar 	error = encap_lock_enter();
   1110  1.117  knakahar 	if (error) {
   1111  1.118  knakahar #ifndef GIF_MPSAFE
   1112  1.117  knakahar 		splx(s);
   1113  1.118  knakahar #endif
   1114  1.117  knakahar 		return;
   1115  1.117  knakahar 	}
   1116   1.12   thorpej 
   1117  1.133  knakahar 	nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
   1118  1.133  knakahar 
   1119  1.133  knakahar 	mutex_enter(&sc->gif_lock);
   1120  1.133  knakahar 
   1121  1.133  knakahar 	ovar = sc->gif_var;
   1122  1.133  knakahar 	osrc = ovar->gv_psrc;
   1123  1.133  knakahar 	odst = ovar->gv_pdst;
   1124  1.133  knakahar 	if (osrc == NULL || odst == NULL) {
   1125  1.133  knakahar 		/* address pair not changed. */
   1126  1.133  knakahar 		mutex_exit(&sc->gif_lock);
   1127  1.133  knakahar 		encap_lock_exit();
   1128  1.133  knakahar 		kmem_free(nvar, sizeof(*nvar));
   1129  1.138      maxv #ifndef GIF_MPSAFE
   1130  1.138      maxv 		splx(s);
   1131  1.138      maxv #endif
   1132  1.133  knakahar 		return;
   1133   1.12   thorpej 	}
   1134   1.12   thorpej 
   1135  1.133  knakahar 	*nvar = *ovar;
   1136  1.133  knakahar 	nvar->gv_psrc = NULL;
   1137  1.133  knakahar 	nvar->gv_pdst = NULL;
   1138  1.133  knakahar 	nvar->gv_encap_cookie4 = NULL;
   1139  1.133  knakahar 	nvar->gv_encap_cookie6 = NULL;
   1140  1.133  knakahar 	nvar->gv_output = NULL;
   1141  1.133  knakahar 	psref_target_init(&nvar->gv_psref, gv_psref_class);
   1142  1.133  knakahar 	membar_producer();
   1143  1.133  knakahar 	gif_update_variant(sc, nvar);
   1144  1.133  knakahar 
   1145  1.133  knakahar 	mutex_exit(&sc->gif_lock);
   1146  1.114  knakahar 
   1147  1.133  knakahar 	gif_encap_detach(ovar);
   1148  1.115  knakahar 	encap_lock_exit();
   1149  1.133  knakahar 
   1150  1.133  knakahar 	sockaddr_free(osrc);
   1151  1.133  knakahar 	sockaddr_free(odst);
   1152  1.133  knakahar 	kmem_free(ovar, sizeof(*ovar));
   1153  1.133  knakahar 
   1154  1.118  knakahar #ifndef GIF_MPSAFE
   1155   1.12   thorpej 	splx(s);
   1156  1.118  knakahar #endif
   1157    1.2    itojun }
   1158  1.120  christos 
   1159  1.120  christos /*
   1160  1.133  knakahar  * gif_variant update API.
   1161  1.133  knakahar  *
   1162  1.133  knakahar  * Assumption:
   1163  1.133  knakahar  * reader side dereferences sc->gif_var in reader critical section only,
   1164  1.133  knakahar  * that is, all of reader sides do not reader the sc->gif_var after
   1165  1.133  knakahar  * pserialize_perform().
   1166  1.133  knakahar  */
   1167  1.133  knakahar static void
   1168  1.133  knakahar gif_update_variant(struct gif_softc *sc, struct gif_variant *nvar)
   1169  1.133  knakahar {
   1170  1.133  knakahar 	struct ifnet *ifp = &sc->gif_if;
   1171  1.133  knakahar 	struct gif_variant *ovar = sc->gif_var;
   1172  1.133  knakahar 
   1173  1.133  knakahar 	KASSERT(mutex_owned(&sc->gif_lock));
   1174  1.133  knakahar 
   1175  1.133  knakahar 	sc->gif_var = nvar;
   1176  1.133  knakahar 	pserialize_perform(gif_psz);
   1177  1.133  knakahar 	psref_target_destroy(&ovar->gv_psref, gv_psref_class);
   1178  1.133  knakahar 
   1179  1.133  knakahar 	if (nvar->gv_psrc != NULL && nvar->gv_pdst != NULL)
   1180  1.133  knakahar 		ifp->if_flags |= IFF_RUNNING;
   1181  1.133  knakahar 	else
   1182  1.133  knakahar 		ifp->if_flags &= ~IFF_RUNNING;
   1183  1.133  knakahar }
   1184  1.133  knakahar 
   1185  1.133  knakahar /*
   1186  1.120  christos  * Module infrastructure
   1187  1.120  christos  */
   1188  1.120  christos #include "if_module.h"
   1189  1.120  christos 
   1190  1.136  pgoyette IF_MODULE(MODULE_CLASS_DRIVER, gif, "ip_ecn")
   1191