Home | History | Annotate | Line # | Download | only in net
if_gre.c revision 1.17.2.6
      1  1.17.2.6   nathanw /*	$NetBSD: if_gre.c,v 1.17.2.6 2002/06/20 03:48:14 nathanw Exp $ */
      2       1.4   thorpej 
      3       1.1       hwr /*
      4       1.4   thorpej  * Copyright (c) 1998 The NetBSD Foundation, Inc.
      5       1.1       hwr  * All rights reserved.
      6       1.1       hwr  *
      7       1.1       hwr  * This code is derived from software contributed to The NetBSD Foundation
      8       1.1       hwr  * by Heiko W.Rupp <hwr (at) pilhuhn.de>
      9       1.1       hwr  *
     10       1.1       hwr  * Redistribution and use in source and binary forms, with or without
     11       1.1       hwr  * modification, are permitted provided that the following conditions
     12       1.1       hwr  * are met:
     13       1.1       hwr  * 1. Redistributions of source code must retain the above copyright
     14       1.1       hwr  *    notice, this list of conditions and the following disclaimer.
     15       1.1       hwr  * 2. Redistributions in binary form must reproduce the above copyright
     16       1.1       hwr  *    notice, this list of conditions and the following disclaimer in the
     17       1.1       hwr  *    documentation and/or other materials provided with the distribution.
     18       1.1       hwr  * 3. All advertising materials mentioning features or use of this software
     19       1.1       hwr  *    must display the following acknowledgement:
     20       1.1       hwr  *        This product includes software developed by the NetBSD
     21       1.1       hwr  *        Foundation, Inc. and its contributors.
     22       1.1       hwr  * 4. Neither the name of The NetBSD Foundation nor the names of its
     23       1.1       hwr  *    contributors may be used to endorse or promote products derived
     24       1.1       hwr  *    from this software without specific prior written permission.
     25       1.1       hwr  *
     26       1.1       hwr  * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
     27       1.1       hwr  * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
     28       1.1       hwr  * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
     29       1.1       hwr  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
     30       1.1       hwr  * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
     31       1.1       hwr  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
     32       1.1       hwr  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
     33       1.1       hwr  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
     34       1.1       hwr  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
     35       1.1       hwr  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
     36       1.1       hwr  * POSSIBILITY OF SUCH DAMAGE.
     37       1.1       hwr  */
     38       1.1       hwr 
     39       1.1       hwr /*
     40       1.1       hwr  * Encapsulate L3 protocols into IP
     41       1.1       hwr  * See RFC 1701 and 1702 for more details.
     42       1.1       hwr  * If_gre is compatible with Cisco GRE tunnels, so you can
     43       1.1       hwr  * have a NetBSD box as the other end of a tunnel interface of a Cisco
     44       1.1       hwr  * router. See gre(4) for more details.
     45       1.6       hwr  * Also supported:  IP in IP encaps (proto 55) as of RFC 2004
     46       1.1       hwr  */
     47       1.1       hwr 
     48  1.17.2.3   nathanw #include <sys/cdefs.h>
     49  1.17.2.6   nathanw __KERNEL_RCSID(0, "$NetBSD: if_gre.c,v 1.17.2.6 2002/06/20 03:48:14 nathanw Exp $");
     50       1.1       hwr 
     51       1.1       hwr #include "opt_inet.h"
     52       1.9  drochner #include "opt_ns.h"
     53       1.1       hwr #include "bpfilter.h"
     54       1.1       hwr 
     55       1.1       hwr #include <sys/param.h>
     56       1.1       hwr #include <sys/malloc.h>
     57       1.1       hwr #include <sys/mbuf.h>
     58  1.17.2.1   nathanw #include <sys/lwp.h>
     59      1.13    martin #include <sys/proc.h>
     60       1.1       hwr #include <sys/protosw.h>
     61       1.1       hwr #include <sys/socket.h>
     62       1.1       hwr #include <sys/ioctl.h>
     63      1.10   thorpej #include <sys/queue.h>
     64       1.1       hwr #if __NetBSD__
     65       1.1       hwr #include <sys/systm.h>
     66       1.1       hwr #endif
     67       1.1       hwr 
     68       1.1       hwr #include <machine/cpu.h>
     69       1.1       hwr 
     70       1.1       hwr #include <net/ethertypes.h>
     71       1.1       hwr #include <net/if.h>
     72       1.1       hwr #include <net/if_types.h>
     73       1.1       hwr #include <net/netisr.h>
     74       1.1       hwr #include <net/route.h>
     75       1.1       hwr 
     76       1.1       hwr #ifdef INET
     77       1.1       hwr #include <netinet/in.h>
     78       1.1       hwr #include <netinet/in_systm.h>
     79       1.1       hwr #include <netinet/in_var.h>
     80       1.1       hwr #include <netinet/ip.h>
     81       1.1       hwr #include <netinet/ip_var.h>
     82       1.1       hwr #else
     83       1.4   thorpej #error "Huh? if_gre without inet?"
     84       1.1       hwr #endif
     85       1.1       hwr 
     86       1.1       hwr #ifdef NS
     87       1.1       hwr #include <netns/ns.h>
     88       1.1       hwr #include <netns/ns_if.h>
     89       1.1       hwr #endif
     90       1.1       hwr 
     91       1.1       hwr #ifdef NETATALK
     92       1.1       hwr #include <netatalk/at.h>
     93       1.1       hwr #include <netatalk/at_var.h>
     94       1.1       hwr #include <netatalk/at_extern.h>
     95       1.1       hwr #endif
     96       1.1       hwr 
     97       1.1       hwr #if NBPFILTER > 0
     98       1.1       hwr #include <sys/time.h>
     99       1.1       hwr #include <net/bpf.h>
    100       1.1       hwr #endif
    101       1.1       hwr 
    102       1.1       hwr #include <net/if_gre.h>
    103       1.1       hwr 
    104  1.17.2.2   nathanw /*
    105  1.17.2.6   nathanw  * It is not easy to calculate the right value for a GRE MTU.
    106  1.17.2.6   nathanw  * We leave this task to the admin and use the same default that
    107  1.17.2.6   nathanw  * other vendors use.
    108  1.17.2.2   nathanw  */
    109  1.17.2.6   nathanw #define GREMTU 1476
    110       1.1       hwr 
    111      1.11   thorpej struct gre_softc_head gre_softc_list;
    112  1.17.2.5   nathanw int ip_gre_ttl = GRE_TTL;
    113       1.1       hwr 
    114      1.10   thorpej int	gre_clone_create __P((struct if_clone *, int));
    115      1.10   thorpej void	gre_clone_destroy __P((struct ifnet *));
    116      1.10   thorpej 
    117      1.10   thorpej struct if_clone gre_cloner =
    118      1.10   thorpej     IF_CLONE_INITIALIZER("gre", gre_clone_create, gre_clone_destroy);
    119       1.1       hwr 
    120  1.17.2.4   nathanw int gre_compute_route(struct gre_softc *sc);
    121       1.1       hwr 
    122      1.10   thorpej void	greattach __P((int));
    123      1.10   thorpej 
    124      1.10   thorpej /* ARGSUSED */
    125       1.8  explorer void
    126      1.10   thorpej greattach(count)
    127      1.10   thorpej 	int count;
    128      1.10   thorpej {
    129      1.10   thorpej 
    130      1.10   thorpej 	LIST_INIT(&gre_softc_list);
    131      1.10   thorpej 	if_clone_attach(&gre_cloner);
    132      1.10   thorpej }
    133      1.10   thorpej 
    134      1.10   thorpej int
    135      1.10   thorpej gre_clone_create(ifc, unit)
    136      1.10   thorpej 	struct if_clone *ifc;
    137      1.10   thorpej 	int unit;
    138       1.1       hwr {
    139       1.8  explorer 	struct gre_softc *sc;
    140       1.1       hwr 
    141      1.10   thorpej 	sc = malloc(sizeof(struct gre_softc), M_DEVBUF, M_WAITOK);
    142      1.10   thorpej 	memset(sc, 0, sizeof(struct gre_softc));
    143      1.10   thorpej 
    144      1.10   thorpej 	sprintf(sc->sc_if.if_xname, "%s%d", ifc->ifc_name, unit);
    145      1.10   thorpej 	sc->sc_if.if_softc = sc;
    146  1.17.2.6   nathanw 	sc->sc_if.if_type = IFT_OTHER;
    147  1.17.2.6   nathanw 	sc->sc_if.if_addrlen = 0;
    148      1.10   thorpej 	sc->sc_if.if_hdrlen = 24; /* IP + GRE */
    149      1.15   thorpej 	sc->sc_if.if_dlt = DLT_NULL;
    150  1.17.2.2   nathanw 	sc->sc_if.if_mtu = GREMTU;
    151      1.10   thorpej 	sc->sc_if.if_flags = IFF_POINTOPOINT|IFF_MULTICAST;
    152      1.10   thorpej 	sc->sc_if.if_output = gre_output;
    153      1.10   thorpej 	sc->sc_if.if_ioctl = gre_ioctl;
    154      1.10   thorpej 	sc->g_dst.s_addr = sc->g_src.s_addr = INADDR_ANY;
    155      1.10   thorpej 	sc->g_proto = IPPROTO_GRE;
    156  1.17.2.6   nathanw 	sc->sc_if.if_flags |= IFF_LINK0;
    157      1.10   thorpej 	if_attach(&sc->sc_if);
    158      1.16   thorpej 	if_alloc_sadl(&sc->sc_if);
    159       1.1       hwr #if NBPFILTER > 0
    160      1.14   thorpej 	bpfattach(&sc->sc_if, DLT_NULL, sizeof(u_int32_t));
    161       1.1       hwr #endif
    162      1.10   thorpej 	LIST_INSERT_HEAD(&gre_softc_list, sc, sc_list);
    163      1.10   thorpej 	return (0);
    164      1.10   thorpej }
    165       1.1       hwr 
    166      1.10   thorpej void
    167      1.10   thorpej gre_clone_destroy(ifp)
    168      1.10   thorpej 	struct ifnet *ifp;
    169      1.10   thorpej {
    170      1.10   thorpej 	struct gre_softc *sc = ifp->if_softc;
    171      1.10   thorpej 
    172      1.10   thorpej 	LIST_REMOVE(sc, sc_list);
    173      1.10   thorpej #if NBPFILTER > 0
    174      1.10   thorpej 	bpfdetach(ifp);
    175      1.10   thorpej #endif
    176      1.10   thorpej 	if_detach(ifp);
    177      1.10   thorpej 	free(sc, M_DEVBUF);
    178       1.1       hwr }
    179       1.1       hwr 
    180  1.17.2.2   nathanw /*
    181       1.1       hwr  * The output routine. Takes a packet and encapsulates it in the protocol
    182       1.6       hwr  * given by sc->g_proto. See also RFC 1701 and RFC 2004
    183       1.1       hwr  */
    184       1.1       hwr int
    185       1.8  explorer gre_output(struct ifnet *ifp, struct mbuf *m, struct sockaddr *dst,
    186       1.8  explorer 	   struct rtentry *rt)
    187       1.1       hwr {
    188       1.8  explorer 	int error = 0;
    189      1.10   thorpej 	struct gre_softc *sc = ifp->if_softc;
    190       1.1       hwr 	struct greip *gh;
    191       1.1       hwr 	struct ip *inp;
    192  1.17.2.5   nathanw 	u_char osrc;
    193       1.8  explorer 	u_short etype = 0;
    194  1.17.2.2   nathanw 	struct mobile_h mob_h;
    195       1.1       hwr 
    196  1.17.2.6   nathanw 	if ((ifp->if_flags & (IFF_UP | IFF_RUNNING)) == 0 ||
    197  1.17.2.6   nathanw 	    sc->g_src.s_addr == INADDR_ANY || sc->g_dst.s_addr == INADDR_ANY) {
    198  1.17.2.6   nathanw 		m_freem(m);
    199  1.17.2.6   nathanw 		error = ENETDOWN;
    200  1.17.2.6   nathanw 		goto end;
    201  1.17.2.6   nathanw 	}
    202  1.17.2.4   nathanw 
    203       1.8  explorer 	gh = NULL;
    204       1.8  explorer 	inp = NULL;
    205       1.8  explorer 	osrc = 0;
    206       1.1       hwr 
    207       1.1       hwr #if NBPFILTER >0
    208      1.14   thorpej 	if (ifp->if_bpf) {
    209       1.1       hwr 		/* see comment of other if_foo.c files */
    210       1.1       hwr 		struct mbuf m0;
    211      1.17    itojun 		u_int32_t af = dst->sa_family;
    212       1.1       hwr 
    213       1.8  explorer 		m0.m_next = m;
    214       1.8  explorer 		m0.m_len = 4;
    215       1.1       hwr 		m0.m_data = (char *)&af;
    216  1.17.2.2   nathanw 
    217      1.14   thorpej 		bpf_mtap(ifp->if_bpf, &m0);
    218       1.1       hwr 	}
    219       1.1       hwr #endif
    220       1.1       hwr 
    221  1.17.2.5   nathanw 	m->m_flags &= ~(M_BCAST|M_MCAST);
    222       1.1       hwr 
    223       1.5   thorpej 	if (sc->g_proto == IPPROTO_MOBILE) {
    224       1.3       hwr 		if (dst->sa_family == AF_INET) {
    225       1.3       hwr 			struct mbuf *m0;
    226       1.3       hwr 			int msiz;
    227       1.3       hwr 
    228       1.8  explorer 			inp = mtod(m, struct ip *);
    229       1.3       hwr 
    230       1.8  explorer 			memset(&mob_h, 0, MOB_H_SIZ_L);
    231       1.8  explorer 			mob_h.proto = (inp->ip_p) << 8;
    232       1.8  explorer 			mob_h.odst = inp->ip_dst.s_addr;
    233       1.8  explorer 			inp->ip_dst.s_addr = sc->g_dst.s_addr;
    234       1.3       hwr 
    235       1.3       hwr 			/*
    236       1.8  explorer 			 * If the packet comes from our host, we only change
    237       1.8  explorer 			 * the destination address in the IP header.
    238       1.8  explorer 			 * Else we also need to save and change the source
    239       1.3       hwr 			 */
    240       1.3       hwr 			if (in_hosteq(inp->ip_src, sc->g_src)) {
    241       1.8  explorer 				msiz = MOB_H_SIZ_S;
    242       1.3       hwr 			} else {
    243       1.3       hwr 				mob_h.proto |= MOB_H_SBIT;
    244       1.8  explorer 				mob_h.osrc = inp->ip_src.s_addr;
    245       1.8  explorer 				inp->ip_src.s_addr = sc->g_src.s_addr;
    246       1.8  explorer 				msiz = MOB_H_SIZ_L;
    247       1.3       hwr 			}
    248       1.3       hwr 			HTONS(mob_h.proto);
    249       1.8  explorer 			mob_h.hcrc = gre_in_cksum((u_short *)&mob_h, msiz);
    250       1.3       hwr 
    251       1.3       hwr 			if ((m->m_data - msiz) < m->m_pktdat) {
    252       1.3       hwr 				/* need new mbuf */
    253       1.3       hwr 				MGETHDR(m0, M_DONTWAIT, MT_HEADER);
    254       1.8  explorer 				if (m0 == NULL) {
    255       1.3       hwr 					IF_DROP(&ifp->if_snd);
    256       1.3       hwr 					m_freem(m);
    257  1.17.2.6   nathanw 					error = ENOBUFS;
    258  1.17.2.6   nathanw 					goto end;
    259       1.3       hwr 				}
    260       1.8  explorer 				m0->m_next = m;
    261       1.3       hwr 				m->m_data += sizeof(struct ip);
    262       1.3       hwr 				m->m_len -= sizeof(struct ip);
    263       1.8  explorer 				m0->m_pkthdr.len = m->m_pkthdr.len + msiz;
    264       1.3       hwr 				m0->m_len = msiz + sizeof(struct ip);
    265       1.3       hwr 				m0->m_data += max_linkhdr;
    266       1.8  explorer 				memcpy(mtod(m0, caddr_t), (caddr_t)inp,
    267       1.8  explorer 				       sizeof(struct ip));
    268       1.8  explorer 				m = m0;
    269  1.17.2.2   nathanw 			} else {  /* we have some space left in the old one */
    270       1.8  explorer 				m->m_data -= msiz;
    271       1.8  explorer 				m->m_len += msiz;
    272       1.8  explorer 				m->m_pkthdr.len += msiz;
    273       1.8  explorer 				memmove(mtod(m, caddr_t), inp,
    274       1.8  explorer 					sizeof(struct ip));
    275       1.3       hwr 			}
    276  1.17.2.6   nathanw 			inp = mtod(m, struct ip *);
    277       1.8  explorer 			memcpy((caddr_t)(inp + 1), &mob_h, (unsigned)msiz);
    278       1.3       hwr 			NTOHS(inp->ip_len);
    279       1.8  explorer 			inp->ip_len += msiz;
    280       1.3       hwr 		} else {  /* AF_INET */
    281       1.3       hwr 			IF_DROP(&ifp->if_snd);
    282       1.3       hwr 			m_freem(m);
    283  1.17.2.6   nathanw 			error = EINVAL;
    284  1.17.2.6   nathanw 			goto end;
    285       1.3       hwr 		}
    286       1.1       hwr 	} else if (sc->g_proto == IPPROTO_GRE) {
    287  1.17.2.2   nathanw 		switch (dst->sa_family) {
    288       1.1       hwr 		case AF_INET:
    289       1.8  explorer 			inp = mtod(m, struct ip *);
    290       1.8  explorer 			etype = ETHERTYPE_IP;
    291       1.1       hwr 			break;
    292       1.1       hwr #ifdef NETATALK
    293       1.1       hwr 		case AF_APPLETALK:
    294       1.8  explorer 			etype = ETHERTYPE_ATALK;
    295       1.1       hwr 			break;
    296       1.1       hwr #endif
    297       1.1       hwr #ifdef NS
    298       1.1       hwr 		case AF_NS:
    299       1.8  explorer 			etype = ETHERTYPE_NS;
    300       1.1       hwr 			break;
    301       1.1       hwr #endif
    302       1.1       hwr 		default:
    303       1.1       hwr 			IF_DROP(&ifp->if_snd);
    304       1.1       hwr 			m_freem(m);
    305  1.17.2.6   nathanw 			error = EAFNOSUPPORT;
    306  1.17.2.6   nathanw 			goto end;
    307       1.1       hwr 		}
    308       1.8  explorer 		M_PREPEND(m, sizeof(struct greip), M_DONTWAIT);
    309       1.1       hwr 	} else {
    310       1.1       hwr 		IF_DROP(&ifp->if_snd);
    311       1.1       hwr 		m_freem(m);
    312  1.17.2.6   nathanw 		error = EINVAL;
    313  1.17.2.6   nathanw 		goto end;
    314       1.1       hwr 	}
    315       1.1       hwr 
    316  1.17.2.6   nathanw 	if (m == NULL) {	/* impossible */
    317       1.1       hwr 		IF_DROP(&ifp->if_snd);
    318  1.17.2.6   nathanw 		error = ENOBUFS;
    319  1.17.2.6   nathanw 		goto end;
    320       1.1       hwr 	}
    321       1.1       hwr 
    322       1.8  explorer 	gh = mtod(m, struct greip *);
    323       1.8  explorer 	if (sc->g_proto == IPPROTO_GRE) {
    324       1.1       hwr 		/* we don't have any GRE flags for now */
    325       1.1       hwr 
    326       1.8  explorer 		memset((void *)&gh->gi_g, 0, sizeof(struct gre_h));
    327       1.8  explorer 		gh->gi_ptype = htons(etype);
    328       1.1       hwr 	}
    329       1.1       hwr 
    330       1.1       hwr 	gh->gi_pr = sc->g_proto;
    331       1.3       hwr 	if (sc->g_proto != IPPROTO_MOBILE) {
    332       1.3       hwr 		gh->gi_src = sc->g_src;
    333       1.3       hwr 		gh->gi_dst = sc->g_dst;
    334  1.17.2.2   nathanw 		((struct ip*)gh)->ip_hl = (sizeof(struct ip)) >> 2;
    335  1.17.2.5   nathanw 		((struct ip*)gh)->ip_ttl = ip_gre_ttl;
    336       1.8  explorer 		((struct ip*)gh)->ip_tos = inp->ip_tos;
    337  1.17.2.2   nathanw 		gh->gi_len = m->m_pkthdr.len;
    338       1.3       hwr 	}
    339       1.1       hwr 
    340       1.1       hwr 	ifp->if_opackets++;
    341       1.8  explorer 	ifp->if_obytes += m->m_pkthdr.len;
    342       1.1       hwr 	/* send it off */
    343       1.8  explorer 	error = ip_output(m, NULL, &sc->route, 0, NULL);
    344  1.17.2.6   nathanw   end:
    345       1.8  explorer 	if (error)
    346       1.1       hwr 		ifp->if_oerrors++;
    347       1.8  explorer 	return (error);
    348       1.1       hwr }
    349       1.1       hwr 
    350       1.1       hwr int
    351       1.8  explorer gre_ioctl(struct ifnet *ifp, u_long cmd, caddr_t data)
    352       1.1       hwr {
    353  1.17.2.1   nathanw 	struct proc *p = curproc->l_proc;	/* XXX */
    354       1.8  explorer 	struct ifreq *ifr = (struct ifreq *)data;
    355  1.17.2.6   nathanw 	struct if_laddrreq *lifr = (struct if_laddrreq *)data;
    356       1.8  explorer 	struct gre_softc *sc = ifp->if_softc;
    357       1.1       hwr 	int s;
    358       1.1       hwr 	struct sockaddr_in si;
    359       1.8  explorer 	struct sockaddr *sa = NULL;
    360       1.1       hwr 	int error;
    361       1.1       hwr 
    362       1.8  explorer 	error = 0;
    363       1.1       hwr 
    364  1.17.2.2   nathanw 	s = splnet();
    365  1.17.2.2   nathanw 	switch (cmd) {
    366  1.17.2.2   nathanw 	case SIOCSIFADDR:
    367  1.17.2.6   nathanw 		ifp->if_flags |= IFF_UP;
    368  1.17.2.6   nathanw 		break;
    369  1.17.2.2   nathanw 	case SIOCSIFDSTADDR:
    370       1.1       hwr 		break;
    371       1.1       hwr 	case SIOCSIFFLAGS:
    372      1.13    martin 		if ((error = suser(p->p_ucred, &p->p_acflag)) != 0)
    373      1.13    martin 			break;
    374  1.17.2.6   nathanw 		if ((ifr->ifr_flags & IFF_LINK0) != 0)
    375  1.17.2.6   nathanw 			sc->g_proto = IPPROTO_GRE;
    376  1.17.2.6   nathanw 		else
    377  1.17.2.6   nathanw 			sc->g_proto = IPPROTO_MOBILE;
    378       1.1       hwr 		break;
    379  1.17.2.2   nathanw 	case SIOCSIFMTU:
    380      1.13    martin 		if ((error = suser(p->p_ucred, &p->p_acflag)) != 0)
    381      1.13    martin 			break;
    382  1.17.2.6   nathanw 		if (ifr->ifr_mtu < 576) {
    383       1.1       hwr 			error = EINVAL;
    384       1.1       hwr 			break;
    385       1.1       hwr 		}
    386       1.1       hwr 		ifp->if_mtu = ifr->ifr_mtu;
    387       1.1       hwr 		break;
    388       1.1       hwr 	case SIOCGIFMTU:
    389       1.1       hwr 		ifr->ifr_mtu = sc->sc_if.if_mtu;
    390       1.1       hwr 		break;
    391       1.1       hwr 	case SIOCADDMULTI:
    392       1.1       hwr 	case SIOCDELMULTI:
    393      1.13    martin 		if ((error = suser(p->p_ucred, &p->p_acflag)) != 0)
    394      1.13    martin 			break;
    395       1.8  explorer 		if (ifr == 0) {
    396       1.1       hwr 			error = EAFNOSUPPORT;
    397       1.1       hwr 			break;
    398       1.1       hwr 		}
    399       1.8  explorer 		switch (ifr->ifr_addr.sa_family) {
    400       1.1       hwr #ifdef INET
    401       1.1       hwr 		case AF_INET:
    402       1.1       hwr 			break;
    403       1.1       hwr #endif
    404       1.1       hwr 		default:
    405       1.1       hwr 			error = EAFNOSUPPORT;
    406       1.1       hwr 			break;
    407       1.1       hwr 		}
    408       1.1       hwr 		break;
    409       1.1       hwr 	case GRESPROTO:
    410      1.13    martin 		if ((error = suser(p->p_ucred, &p->p_acflag)) != 0)
    411      1.13    martin 			break;
    412       1.1       hwr 		sc->g_proto = ifr->ifr_flags;
    413       1.1       hwr 		switch (sc->g_proto) {
    414  1.17.2.6   nathanw 		case IPPROTO_GRE:
    415       1.3       hwr 			ifp->if_flags |= IFF_LINK0;
    416       1.1       hwr 			break;
    417  1.17.2.6   nathanw 		case IPPROTO_MOBILE:
    418  1.17.2.6   nathanw 			ifp->if_flags &= ~IFF_LINK0;
    419       1.1       hwr 			break;
    420       1.1       hwr 		default:
    421  1.17.2.6   nathanw 			error = EPROTONOSUPPORT;
    422  1.17.2.6   nathanw 			break;
    423       1.1       hwr 		}
    424       1.1       hwr 		break;
    425       1.1       hwr 	case GREGPROTO:
    426       1.1       hwr 		ifr->ifr_flags = sc->g_proto;
    427       1.1       hwr 		break;
    428       1.1       hwr 	case GRESADDRS:
    429       1.1       hwr 	case GRESADDRD:
    430      1.13    martin 		if ((error = suser(p->p_ucred, &p->p_acflag)) != 0)
    431      1.13    martin 			break;
    432       1.1       hwr 		/*
    433  1.17.2.2   nathanw 		 * set tunnel endpoints, compute a less specific route
    434  1.17.2.2   nathanw 		 * to the remote end and mark if as up
    435  1.17.2.2   nathanw 		 */
    436       1.1       hwr 		sa = &ifr->ifr_addr;
    437  1.17.2.6   nathanw 		if (cmd == GRESADDRS)
    438       1.1       hwr 			sc->g_src = (satosin(sa))->sin_addr;
    439  1.17.2.6   nathanw 		if (cmd == GRESADDRD)
    440       1.1       hwr 			sc->g_dst = (satosin(sa))->sin_addr;
    441  1.17.2.6   nathanw 	recompute:
    442       1.1       hwr 		if ((sc->g_src.s_addr != INADDR_ANY) &&
    443       1.1       hwr 		    (sc->g_dst.s_addr != INADDR_ANY)) {
    444       1.1       hwr 			if (sc->route.ro_rt != 0) /* free old route */
    445       1.1       hwr 				RTFREE(sc->route.ro_rt);
    446  1.17.2.4   nathanw 			if (gre_compute_route(sc) == 0)
    447  1.17.2.6   nathanw 				ifp->if_flags |= IFF_RUNNING;
    448  1.17.2.6   nathanw 			else
    449  1.17.2.6   nathanw 				ifp->if_flags &= ~IFF_RUNNING;
    450       1.1       hwr 		}
    451       1.1       hwr 		break;
    452       1.1       hwr 	case GREGADDRS:
    453  1.17.2.6   nathanw 		memset(&si, 0, sizeof(si));
    454  1.17.2.6   nathanw 		si.sin_family = AF_INET;
    455  1.17.2.6   nathanw 		si.sin_len = sizeof(struct sockaddr_in);
    456       1.1       hwr 		si.sin_addr.s_addr = sc->g_src.s_addr;
    457       1.8  explorer 		sa = sintosa(&si);
    458       1.1       hwr 		ifr->ifr_addr = *sa;
    459       1.1       hwr 		break;
    460       1.1       hwr 	case GREGADDRD:
    461  1.17.2.6   nathanw 		memset(&si, 0, sizeof(si));
    462  1.17.2.6   nathanw 		si.sin_family = AF_INET;
    463  1.17.2.6   nathanw 		si.sin_len = sizeof(struct sockaddr_in);
    464       1.1       hwr 		si.sin_addr.s_addr = sc->g_dst.s_addr;
    465       1.8  explorer 		sa = sintosa(&si);
    466       1.1       hwr 		ifr->ifr_addr = *sa;
    467       1.1       hwr 		break;
    468  1.17.2.6   nathanw 	case SIOCSLIFPHYADDR:
    469  1.17.2.6   nathanw 		if ((error = suser(p->p_ucred, &p->p_acflag)) != 0)
    470  1.17.2.6   nathanw 			break;
    471  1.17.2.6   nathanw 		if (lifr->addr.ss_family != AF_INET ||
    472  1.17.2.6   nathanw 		    lifr->dstaddr.ss_family != AF_INET) {
    473  1.17.2.6   nathanw 			error = EAFNOSUPPORT;
    474  1.17.2.6   nathanw 			break;
    475  1.17.2.6   nathanw 		}
    476  1.17.2.6   nathanw 		if (lifr->addr.ss_len != sizeof(si) ||
    477  1.17.2.6   nathanw 		    lifr->dstaddr.ss_len != sizeof(si)) {
    478  1.17.2.6   nathanw 			error = EINVAL;
    479  1.17.2.6   nathanw 			break;
    480  1.17.2.6   nathanw 		}
    481  1.17.2.6   nathanw 		sc->g_src = (satosin((struct sockadrr *)&lifr->addr))->sin_addr;
    482  1.17.2.6   nathanw 		sc->g_dst =
    483  1.17.2.6   nathanw 		    (satosin((struct sockadrr *)&lifr->dstaddr))->sin_addr;
    484  1.17.2.6   nathanw 		goto recompute;
    485  1.17.2.6   nathanw 	case SIOCDIFPHYADDR:
    486  1.17.2.6   nathanw 		if ((error = suser(p->p_ucred, &p->p_acflag)) != 0)
    487  1.17.2.6   nathanw 			break;
    488  1.17.2.6   nathanw 		sc->g_src.s_addr = INADDR_ANY;
    489  1.17.2.6   nathanw 		sc->g_dst.s_addr = INADDR_ANY;
    490  1.17.2.6   nathanw 		break;
    491  1.17.2.6   nathanw 	case SIOCGLIFPHYADDR:
    492  1.17.2.6   nathanw 		if (sc->g_src.s_addr == INADDR_ANY ||
    493  1.17.2.6   nathanw 		    sc->g_dst.s_addr == INADDR_ANY) {
    494  1.17.2.6   nathanw 			error = EADDRNOTAVAIL;
    495  1.17.2.6   nathanw 			break;
    496  1.17.2.6   nathanw 		}
    497  1.17.2.6   nathanw 		memset(&si, 0, sizeof(si));
    498  1.17.2.6   nathanw 		si.sin_family = AF_INET;
    499  1.17.2.6   nathanw 		si.sin_len = sizeof(struct sockaddr_in);
    500  1.17.2.6   nathanw 		si.sin_addr.s_addr = sc->g_src.s_addr;
    501  1.17.2.6   nathanw 		memcpy(&lifr->addr, &si, sizeof(si));
    502  1.17.2.6   nathanw 		si.sin_addr.s_addr = sc->g_dst.s_addr;
    503  1.17.2.6   nathanw 		memcpy(&lifr->dstaddr, &si, sizeof(si));
    504  1.17.2.6   nathanw 		break;
    505       1.1       hwr 	default:
    506       1.1       hwr 		error = EINVAL;
    507  1.17.2.6   nathanw 		break;
    508       1.1       hwr 	}
    509       1.1       hwr 
    510       1.1       hwr 	splx(s);
    511       1.8  explorer 	return (error);
    512       1.1       hwr }
    513       1.1       hwr 
    514  1.17.2.2   nathanw /*
    515       1.1       hwr  * computes a route to our destination that is not the one
    516       1.1       hwr  * which would be taken by ip_output(), as this one will loop back to
    517       1.1       hwr  * us. If the interface is p2p as  a--->b, then a routing entry exists
    518       1.1       hwr  * If we now send a packet to b (e.g. ping b), this will come down here
    519  1.17.2.2   nathanw  * gets src=a, dst=b tacked on and would from ip_ouput() sent back to
    520       1.1       hwr  * if_gre.
    521       1.1       hwr  * Goal here is to compute a route to b that is less specific than
    522       1.1       hwr  * a-->b. We know that this one exists as in normal operation we have
    523       1.1       hwr  * at least a default route which matches.
    524       1.1       hwr  */
    525  1.17.2.4   nathanw int
    526       1.8  explorer gre_compute_route(struct gre_softc *sc)
    527       1.1       hwr {
    528       1.1       hwr 	struct route *ro;
    529       1.8  explorer 	u_int32_t a, b, c;
    530       1.1       hwr 
    531       1.8  explorer 	ro = &sc->route;
    532  1.17.2.2   nathanw 
    533       1.8  explorer 	memset(ro, 0, sizeof(struct route));
    534       1.8  explorer 	((struct sockaddr_in *)&ro->ro_dst)->sin_addr = sc->g_dst;
    535       1.8  explorer 	ro->ro_dst.sa_family = AF_INET;
    536       1.8  explorer 	ro->ro_dst.sa_len = sizeof(ro->ro_dst);
    537       1.8  explorer 
    538       1.1       hwr 	/*
    539       1.1       hwr 	 * toggle last bit, so our interface is not found, but a less
    540  1.17.2.2   nathanw 	 * specific route. I'd rather like to specify a shorter mask,
    541  1.17.2.2   nathanw 	 * but this is not possible. Should work though. XXX
    542       1.1       hwr 	 * there is a simpler way ...
    543  1.17.2.2   nathanw 	 */
    544       1.8  explorer 	if ((sc->sc_if.if_flags & IFF_LINK1) == 0) {
    545       1.8  explorer 		a = ntohl(sc->g_dst.s_addr);
    546       1.8  explorer 		b = a & 0x01;
    547       1.8  explorer 		c = a & 0xfffffffe;
    548       1.8  explorer 		b = b ^ 0x01;
    549       1.8  explorer 		a = b | c;
    550       1.8  explorer 		((struct sockaddr_in *)&ro->ro_dst)->sin_addr.s_addr
    551  1.17.2.2   nathanw 		    = htonl(a);
    552       1.8  explorer 	}
    553       1.1       hwr 
    554       1.1       hwr #ifdef DIAGNOSTIC
    555  1.17.2.2   nathanw 	printf("%s: searching a route to %s", sc->sc_if.if_xname,
    556  1.17.2.2   nathanw 	    inet_ntoa(((struct sockaddr_in *)&ro->ro_dst)->sin_addr));
    557       1.1       hwr #endif
    558       1.1       hwr 
    559       1.1       hwr 	rtalloc(ro);
    560       1.1       hwr 
    561       1.1       hwr 	/*
    562  1.17.2.4   nathanw 	 * check if this returned a route at all and this route is no
    563  1.17.2.4   nathanw 	 * recursion to ourself
    564  1.17.2.4   nathanw 	 */
    565  1.17.2.4   nathanw 	if (ro->ro_rt == NULL || ro->ro_rt->rt_ifp->if_softc == sc) {
    566  1.17.2.4   nathanw #ifdef DIAGNOSTIC
    567  1.17.2.4   nathanw 		if (ro->ro_rt == NULL)
    568  1.17.2.4   nathanw 			printf(" - no route found!\n");
    569  1.17.2.4   nathanw 		else
    570  1.17.2.4   nathanw 			printf(" - route loops back to ourself!\n");
    571  1.17.2.4   nathanw #endif
    572  1.17.2.4   nathanw 		return EADDRNOTAVAIL;
    573  1.17.2.4   nathanw 	}
    574  1.17.2.4   nathanw 
    575  1.17.2.4   nathanw 	/*
    576  1.17.2.2   nathanw 	 * now change it back - else ip_output will just drop
    577  1.17.2.2   nathanw 	 * the route and search one to this interface ...
    578  1.17.2.2   nathanw 	 */
    579       1.8  explorer 	if ((sc->sc_if.if_flags & IFF_LINK1) == 0)
    580       1.8  explorer 		((struct sockaddr_in *)&ro->ro_dst)->sin_addr = sc->g_dst;
    581       1.1       hwr 
    582       1.1       hwr #ifdef DIAGNOSTIC
    583  1.17.2.2   nathanw 	printf(", choosing %s with gateway %s", ro->ro_rt->rt_ifp->if_xname,
    584  1.17.2.2   nathanw 	    inet_ntoa(((struct sockaddr_in *)(ro->ro_rt->rt_gateway))->sin_addr));
    585       1.8  explorer 	printf("\n");
    586       1.1       hwr #endif
    587  1.17.2.4   nathanw 
    588  1.17.2.4   nathanw 	return 0;
    589       1.1       hwr }
    590       1.1       hwr 
    591       1.3       hwr /*
    592  1.17.2.2   nathanw  * do a checksum of a buffer - much like in_cksum, which operates on
    593  1.17.2.2   nathanw  * mbufs.
    594       1.3       hwr  */
    595       1.3       hwr u_short
    596       1.8  explorer gre_in_cksum(u_short *p, u_int len)
    597       1.3       hwr {
    598  1.17.2.2   nathanw 	u_int sum = 0;
    599       1.3       hwr 	int nwords = len >> 1;
    600  1.17.2.2   nathanw 
    601       1.3       hwr 	while (nwords-- != 0)
    602       1.3       hwr 		sum += *p++;
    603       1.3       hwr 
    604  1.17.2.2   nathanw 	if (len & 1) {
    605  1.17.2.2   nathanw 		union {
    606  1.17.2.2   nathanw 			u_short w;
    607  1.17.2.2   nathanw 			u_char c[2];
    608  1.17.2.2   nathanw 		} u;
    609  1.17.2.2   nathanw 		u.c[0] = *(u_char *)p;
    610  1.17.2.2   nathanw 		u.c[1] = 0;
    611  1.17.2.2   nathanw 		sum += u.w;
    612  1.17.2.2   nathanw 	}
    613       1.1       hwr 
    614  1.17.2.2   nathanw 	/* end-around-carry */
    615  1.17.2.2   nathanw 	sum = (sum >> 16) + (sum & 0xffff);
    616  1.17.2.2   nathanw 	sum += (sum >> 16);
    617  1.17.2.2   nathanw 	return (~sum);
    618       1.1       hwr }
    619