if_gre.c revision 1.64 1 1.64 dyoung /* $NetBSD: if_gre.c,v 1.64 2006/09/03 06:10:06 dyoung Exp $ */
2 1.4 thorpej
3 1.1 hwr /*
4 1.4 thorpej * Copyright (c) 1998 The NetBSD Foundation, Inc.
5 1.1 hwr * All rights reserved.
6 1.1 hwr *
7 1.1 hwr * This code is derived from software contributed to The NetBSD Foundation
8 1.1 hwr * by Heiko W.Rupp <hwr (at) pilhuhn.de>
9 1.1 hwr *
10 1.56 is * IPv6-over-GRE contributed by Gert Doering <gert (at) greenie.muc.de>
11 1.56 is *
12 1.1 hwr * Redistribution and use in source and binary forms, with or without
13 1.1 hwr * modification, are permitted provided that the following conditions
14 1.1 hwr * are met:
15 1.1 hwr * 1. Redistributions of source code must retain the above copyright
16 1.1 hwr * notice, this list of conditions and the following disclaimer.
17 1.1 hwr * 2. Redistributions in binary form must reproduce the above copyright
18 1.1 hwr * notice, this list of conditions and the following disclaimer in the
19 1.1 hwr * documentation and/or other materials provided with the distribution.
20 1.1 hwr * 3. All advertising materials mentioning features or use of this software
21 1.1 hwr * must display the following acknowledgement:
22 1.1 hwr * This product includes software developed by the NetBSD
23 1.1 hwr * Foundation, Inc. and its contributors.
24 1.1 hwr * 4. Neither the name of The NetBSD Foundation nor the names of its
25 1.1 hwr * contributors may be used to endorse or promote products derived
26 1.1 hwr * from this software without specific prior written permission.
27 1.1 hwr *
28 1.1 hwr * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
29 1.1 hwr * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
30 1.1 hwr * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
31 1.1 hwr * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
32 1.1 hwr * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
33 1.1 hwr * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
34 1.1 hwr * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
35 1.1 hwr * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
36 1.1 hwr * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
37 1.1 hwr * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
38 1.1 hwr * POSSIBILITY OF SUCH DAMAGE.
39 1.1 hwr */
40 1.1 hwr
41 1.1 hwr /*
42 1.1 hwr * Encapsulate L3 protocols into IP
43 1.1 hwr * See RFC 1701 and 1702 for more details.
44 1.1 hwr * If_gre is compatible with Cisco GRE tunnels, so you can
45 1.1 hwr * have a NetBSD box as the other end of a tunnel interface of a Cisco
46 1.1 hwr * router. See gre(4) for more details.
47 1.6 hwr * Also supported: IP in IP encaps (proto 55) as of RFC 2004
48 1.1 hwr */
49 1.22 lukem
50 1.22 lukem #include <sys/cdefs.h>
51 1.64 dyoung __KERNEL_RCSID(0, "$NetBSD: if_gre.c,v 1.64 2006/09/03 06:10:06 dyoung Exp $");
52 1.1 hwr
53 1.62 dyoung #include "opt_gre.h"
54 1.1 hwr #include "opt_inet.h"
55 1.9 drochner #include "opt_ns.h"
56 1.1 hwr #include "bpfilter.h"
57 1.1 hwr
58 1.54 christos #ifdef INET
59 1.1 hwr #include <sys/param.h>
60 1.62 dyoung #include <sys/file.h>
61 1.62 dyoung #include <sys/filedesc.h>
62 1.1 hwr #include <sys/malloc.h>
63 1.1 hwr #include <sys/mbuf.h>
64 1.13 martin #include <sys/proc.h>
65 1.1 hwr #include <sys/protosw.h>
66 1.1 hwr #include <sys/socket.h>
67 1.62 dyoung #include <sys/socketvar.h>
68 1.1 hwr #include <sys/ioctl.h>
69 1.10 thorpej #include <sys/queue.h>
70 1.1 hwr #if __NetBSD__
71 1.1 hwr #include <sys/systm.h>
72 1.62 dyoung #include <sys/sysctl.h>
73 1.60 elad #include <sys/kauth.h>
74 1.1 hwr #endif
75 1.1 hwr
76 1.62 dyoung #include <sys/kthread.h>
77 1.62 dyoung
78 1.1 hwr #include <machine/cpu.h>
79 1.1 hwr
80 1.1 hwr #include <net/ethertypes.h>
81 1.1 hwr #include <net/if.h>
82 1.1 hwr #include <net/if_types.h>
83 1.1 hwr #include <net/netisr.h>
84 1.1 hwr #include <net/route.h>
85 1.1 hwr
86 1.1 hwr #ifdef INET
87 1.1 hwr #include <netinet/in.h>
88 1.1 hwr #include <netinet/in_systm.h>
89 1.1 hwr #include <netinet/in_var.h>
90 1.1 hwr #include <netinet/ip.h>
91 1.1 hwr #include <netinet/ip_var.h>
92 1.1 hwr #else
93 1.4 thorpej #error "Huh? if_gre without inet?"
94 1.1 hwr #endif
95 1.1 hwr
96 1.1 hwr #ifdef NS
97 1.1 hwr #include <netns/ns.h>
98 1.1 hwr #include <netns/ns_if.h>
99 1.1 hwr #endif
100 1.1 hwr
101 1.1 hwr #ifdef NETATALK
102 1.1 hwr #include <netatalk/at.h>
103 1.1 hwr #include <netatalk/at_var.h>
104 1.1 hwr #include <netatalk/at_extern.h>
105 1.1 hwr #endif
106 1.1 hwr
107 1.1 hwr #if NBPFILTER > 0
108 1.1 hwr #include <sys/time.h>
109 1.1 hwr #include <net/bpf.h>
110 1.1 hwr #endif
111 1.1 hwr
112 1.1 hwr #include <net/if_gre.h>
113 1.1 hwr
114 1.20 itojun /*
115 1.27 martin * It is not easy to calculate the right value for a GRE MTU.
116 1.27 martin * We leave this task to the admin and use the same default that
117 1.27 martin * other vendors use.
118 1.20 itojun */
119 1.27 martin #define GREMTU 1476
120 1.1 hwr
121 1.62 dyoung #ifdef GRE_DEBUG
122 1.62 dyoung #define GRE_DPRINTF(__sc, __fmt, ...) \
123 1.62 dyoung do { \
124 1.62 dyoung if (((__sc)->sc_if.if_flags & IFF_DEBUG) != 0) \
125 1.62 dyoung printf(__fmt, __VA_ARGS__); \
126 1.62 dyoung } while (/*CONSTCOND*/0)
127 1.62 dyoung #else
128 1.62 dyoung #define GRE_DPRINTF(__sc, __fmt, ...) do { } while (/*CONSTCOND*/0)
129 1.62 dyoung #endif /* GRE_DEBUG */
130 1.62 dyoung
131 1.11 thorpej struct gre_softc_head gre_softc_list;
132 1.26 martin int ip_gre_ttl = GRE_TTL;
133 1.1 hwr
134 1.59 thorpej static int gre_clone_create(struct if_clone *, int);
135 1.59 thorpej static int gre_clone_destroy(struct ifnet *);
136 1.10 thorpej
137 1.59 thorpej static struct if_clone gre_cloner =
138 1.10 thorpej IF_CLONE_INITIALIZER("gre", gre_clone_create, gre_clone_destroy);
139 1.1 hwr
140 1.59 thorpej static int gre_output(struct ifnet *, struct mbuf *, struct sockaddr *,
141 1.59 thorpej struct rtentry *);
142 1.59 thorpej static int gre_ioctl(struct ifnet *, u_long, caddr_t);
143 1.1 hwr
144 1.59 thorpej static int gre_compute_route(struct gre_softc *sc);
145 1.59 thorpej
146 1.62 dyoung static int gre_getsockname(struct socket *, struct mbuf *, struct lwp *);
147 1.62 dyoung static int gre_getpeername(struct socket *, struct mbuf *, struct lwp *);
148 1.62 dyoung static int gre_getnames(struct socket *, struct lwp *, struct sockaddr_in *,
149 1.62 dyoung struct sockaddr_in *);
150 1.62 dyoung
151 1.62 dyoung static void
152 1.62 dyoung gre_stop(int *running)
153 1.62 dyoung {
154 1.62 dyoung *running = 0;
155 1.62 dyoung wakeup(running);
156 1.62 dyoung }
157 1.62 dyoung
158 1.62 dyoung static void
159 1.62 dyoung gre_join(int *running)
160 1.62 dyoung {
161 1.62 dyoung int s;
162 1.62 dyoung
163 1.62 dyoung s = splnet();
164 1.62 dyoung while (*running != 0) {
165 1.62 dyoung splx(s);
166 1.62 dyoung tsleep(running, PSOCK, "grejoin", 0);
167 1.62 dyoung s = splnet();
168 1.62 dyoung }
169 1.62 dyoung splx(s);
170 1.62 dyoung }
171 1.62 dyoung
172 1.62 dyoung static void
173 1.62 dyoung gre_wakeup(struct gre_softc *sc)
174 1.62 dyoung {
175 1.62 dyoung GRE_DPRINTF(sc, "%s: enter\n", __func__);
176 1.62 dyoung sc->sc_waitchan = 1;
177 1.62 dyoung wakeup(&sc->sc_waitchan);
178 1.62 dyoung }
179 1.62 dyoung
180 1.59 thorpej static int
181 1.59 thorpej gre_clone_create(struct if_clone *ifc, int unit)
182 1.1 hwr {
183 1.8 explorer struct gre_softc *sc;
184 1.1 hwr
185 1.10 thorpej sc = malloc(sizeof(struct gre_softc), M_DEVBUF, M_WAITOK);
186 1.10 thorpej memset(sc, 0, sizeof(struct gre_softc));
187 1.10 thorpej
188 1.50 itojun snprintf(sc->sc_if.if_xname, sizeof(sc->sc_if.if_xname), "%s%d",
189 1.50 itojun ifc->ifc_name, unit);
190 1.10 thorpej sc->sc_if.if_softc = sc;
191 1.51 tron sc->sc_if.if_type = IFT_TUNNEL;
192 1.34 itojun sc->sc_if.if_addrlen = 0;
193 1.10 thorpej sc->sc_if.if_hdrlen = 24; /* IP + GRE */
194 1.15 thorpej sc->sc_if.if_dlt = DLT_NULL;
195 1.20 itojun sc->sc_if.if_mtu = GREMTU;
196 1.10 thorpej sc->sc_if.if_flags = IFF_POINTOPOINT|IFF_MULTICAST;
197 1.10 thorpej sc->sc_if.if_output = gre_output;
198 1.10 thorpej sc->sc_if.if_ioctl = gre_ioctl;
199 1.10 thorpej sc->g_dst.s_addr = sc->g_src.s_addr = INADDR_ANY;
200 1.62 dyoung sc->g_dstport = sc->g_srcport = 0;
201 1.10 thorpej sc->g_proto = IPPROTO_GRE;
202 1.64 dyoung sc->sc_snd.ifq_maxlen = 256;
203 1.35 itojun sc->sc_if.if_flags |= IFF_LINK0;
204 1.10 thorpej if_attach(&sc->sc_if);
205 1.16 thorpej if_alloc_sadl(&sc->sc_if);
206 1.1 hwr #if NBPFILTER > 0
207 1.14 thorpej bpfattach(&sc->sc_if, DLT_NULL, sizeof(u_int32_t));
208 1.1 hwr #endif
209 1.10 thorpej LIST_INSERT_HEAD(&gre_softc_list, sc, sc_list);
210 1.10 thorpej return (0);
211 1.10 thorpej }
212 1.1 hwr
213 1.59 thorpej static int
214 1.59 thorpej gre_clone_destroy(struct ifnet *ifp)
215 1.10 thorpej {
216 1.10 thorpej struct gre_softc *sc = ifp->if_softc;
217 1.10 thorpej
218 1.10 thorpej LIST_REMOVE(sc, sc_list);
219 1.10 thorpej #if NBPFILTER > 0
220 1.10 thorpej bpfdetach(ifp);
221 1.10 thorpej #endif
222 1.10 thorpej if_detach(ifp);
223 1.62 dyoung gre_wakeup(sc);
224 1.62 dyoung gre_join(&sc->sc_thread);
225 1.62 dyoung if (sc->sc_fp != NULL) {
226 1.62 dyoung closef(sc->sc_fp, curlwp);
227 1.62 dyoung sc->sc_fp = NULL;
228 1.62 dyoung }
229 1.10 thorpej free(sc, M_DEVBUF);
230 1.53 peter
231 1.53 peter return (0);
232 1.1 hwr }
233 1.1 hwr
234 1.62 dyoung static void
235 1.62 dyoung gre_receive(struct socket *so, caddr_t arg, int waitflag)
236 1.62 dyoung {
237 1.62 dyoung struct gre_softc *sc = (struct gre_softc *)arg;
238 1.62 dyoung
239 1.62 dyoung GRE_DPRINTF(sc, "%s: enter\n", __func__);
240 1.62 dyoung
241 1.62 dyoung gre_wakeup(sc);
242 1.62 dyoung }
243 1.62 dyoung
244 1.62 dyoung static void
245 1.62 dyoung gre_upcall_add(struct socket *so, caddr_t arg)
246 1.62 dyoung {
247 1.62 dyoung /* XXX What if the kernel already set an upcall? */
248 1.62 dyoung so->so_upcallarg = arg;
249 1.62 dyoung so->so_upcall = gre_receive;
250 1.62 dyoung so->so_rcv.sb_flags |= SB_UPCALL;
251 1.62 dyoung }
252 1.62 dyoung
253 1.62 dyoung static void
254 1.62 dyoung gre_upcall_remove(struct socket *so)
255 1.62 dyoung {
256 1.62 dyoung /* XXX What if the kernel already set an upcall? */
257 1.62 dyoung so->so_rcv.sb_flags &= ~SB_UPCALL;
258 1.62 dyoung so->so_upcallarg = NULL;
259 1.62 dyoung so->so_upcall = NULL;
260 1.62 dyoung }
261 1.62 dyoung
262 1.62 dyoung static void
263 1.62 dyoung gre_sodestroy(struct socket **sop)
264 1.62 dyoung {
265 1.62 dyoung gre_upcall_remove(*sop);
266 1.62 dyoung soshutdown(*sop, SHUT_RDWR);
267 1.62 dyoung soclose(*sop);
268 1.62 dyoung *sop = NULL;
269 1.62 dyoung }
270 1.62 dyoung
271 1.62 dyoung static struct mbuf *
272 1.62 dyoung gre_getsockmbuf(struct socket *so)
273 1.62 dyoung {
274 1.62 dyoung struct mbuf *m;
275 1.62 dyoung
276 1.62 dyoung m = m_get(M_WAIT, MT_SONAME);
277 1.62 dyoung if (m != NULL)
278 1.62 dyoung MCLAIM(m, so->so_mowner);
279 1.62 dyoung return m;
280 1.62 dyoung }
281 1.62 dyoung
282 1.62 dyoung static int
283 1.62 dyoung gre_socreate1(struct gre_softc *sc, struct lwp *l, struct gre_soparm *sp,
284 1.62 dyoung struct socket **sop)
285 1.62 dyoung {
286 1.62 dyoung int rc;
287 1.62 dyoung struct mbuf *m;
288 1.62 dyoung struct sockaddr_in *sin;
289 1.62 dyoung struct socket *so;
290 1.62 dyoung
291 1.62 dyoung GRE_DPRINTF(sc, "%s: enter\n", __func__);
292 1.62 dyoung rc = socreate(AF_INET, sop, SOCK_DGRAM, IPPROTO_UDP, l);
293 1.62 dyoung if (rc != 0) {
294 1.62 dyoung GRE_DPRINTF(sc, "%s: socreate failed\n", __func__);
295 1.62 dyoung return rc;
296 1.62 dyoung }
297 1.62 dyoung
298 1.62 dyoung so = *sop;
299 1.62 dyoung
300 1.62 dyoung gre_upcall_add(so, (caddr_t)sc);
301 1.62 dyoung if ((m = gre_getsockmbuf(so)) == NULL) {
302 1.62 dyoung rc = ENOBUFS;
303 1.62 dyoung goto out;
304 1.62 dyoung }
305 1.62 dyoung sin = mtod(m, struct sockaddr_in *);
306 1.62 dyoung sin->sin_len = m->m_len = sizeof(struct sockaddr_in);
307 1.62 dyoung sin->sin_family = AF_INET;
308 1.62 dyoung sin->sin_addr = sc->g_src;
309 1.62 dyoung sin->sin_port = sc->g_srcport;
310 1.62 dyoung
311 1.62 dyoung GRE_DPRINTF(sc, "%s: bind 0x%08" PRIx32 " port %d\n", __func__,
312 1.62 dyoung sin->sin_addr.s_addr, ntohs(sin->sin_port));
313 1.62 dyoung if ((rc = sobind(so, m, l)) != 0) {
314 1.62 dyoung GRE_DPRINTF(sc, "%s: sobind failed\n", __func__);
315 1.62 dyoung goto out;
316 1.62 dyoung }
317 1.62 dyoung
318 1.62 dyoung if (sc->g_srcport == 0) {
319 1.62 dyoung if (gre_getsockname(so, m, l) != 0) {
320 1.62 dyoung GRE_DPRINTF(sc, "%s: gre_getsockname failed\n",
321 1.62 dyoung __func__);
322 1.62 dyoung goto out;
323 1.62 dyoung }
324 1.62 dyoung sc->g_srcport = sin->sin_port;
325 1.62 dyoung }
326 1.62 dyoung
327 1.62 dyoung sin->sin_addr = sc->g_dst;
328 1.62 dyoung sin->sin_port = sc->g_dstport;
329 1.62 dyoung
330 1.62 dyoung rc = soconnect(so, m, l);
331 1.62 dyoung
332 1.62 dyoung if (rc != 0) {
333 1.62 dyoung GRE_DPRINTF(sc, "%s: soconnect failed\n", __func__);
334 1.62 dyoung goto out;
335 1.62 dyoung }
336 1.62 dyoung
337 1.62 dyoung *mtod(m, int *) = ip_gre_ttl;
338 1.62 dyoung rc = (*so->so_proto->pr_ctloutput)(PRCO_SETOPT, so, IPPROTO_IP, IP_TTL,
339 1.62 dyoung &m);
340 1.62 dyoung m = NULL;
341 1.62 dyoung if (rc != 0) {
342 1.62 dyoung printf("%s: setopt ttl failed\n", __func__);
343 1.62 dyoung rc = 0;
344 1.62 dyoung }
345 1.62 dyoung out:
346 1.62 dyoung m_freem(m);
347 1.62 dyoung
348 1.62 dyoung if (rc != 0)
349 1.62 dyoung gre_sodestroy(sop);
350 1.62 dyoung else
351 1.63 dyoung *sp = sc->sc_soparm;
352 1.62 dyoung
353 1.62 dyoung return rc;
354 1.62 dyoung }
355 1.62 dyoung
356 1.62 dyoung static void
357 1.62 dyoung gre_thread1(struct gre_softc *sc, struct lwp *l)
358 1.62 dyoung {
359 1.62 dyoung int flags, rc, s;
360 1.62 dyoung const struct gre_h *gh;
361 1.62 dyoung struct ifnet *ifp = &sc->sc_if;
362 1.62 dyoung struct mbuf *m;
363 1.62 dyoung struct socket *so = NULL;
364 1.62 dyoung struct uio uio;
365 1.62 dyoung struct gre_soparm sp;
366 1.62 dyoung
367 1.62 dyoung GRE_DPRINTF(sc, "%s: enter\n", __func__);
368 1.62 dyoung s = splnet();
369 1.62 dyoung
370 1.62 dyoung sc->sc_waitchan = 1;
371 1.62 dyoung
372 1.62 dyoung memset(&sp, 0, sizeof(sp));
373 1.62 dyoung memset(&uio, 0, sizeof(uio));
374 1.62 dyoung
375 1.62 dyoung ifp->if_flags |= IFF_RUNNING;
376 1.62 dyoung
377 1.62 dyoung for (;;) {
378 1.62 dyoung while (sc->sc_waitchan == 0) {
379 1.62 dyoung splx(s);
380 1.62 dyoung GRE_DPRINTF(sc, "%s: sleeping\n", __func__);
381 1.62 dyoung tsleep(&sc->sc_waitchan, PSOCK, "grewait", 0);
382 1.62 dyoung s = splnet();
383 1.62 dyoung }
384 1.62 dyoung sc->sc_waitchan = 0;
385 1.62 dyoung GRE_DPRINTF(sc, "%s: awake\n", __func__);
386 1.62 dyoung if ((ifp->if_flags & IFF_UP) != IFF_UP) {
387 1.62 dyoung GRE_DPRINTF(sc, "%s: not up & running; exiting\n",
388 1.62 dyoung __func__);
389 1.62 dyoung break;
390 1.62 dyoung }
391 1.62 dyoung if (sc->g_proto != IPPROTO_UDP) {
392 1.62 dyoung GRE_DPRINTF(sc, "%s: not udp; exiting\n", __func__);
393 1.62 dyoung break;
394 1.62 dyoung }
395 1.62 dyoung /* XXX optimize */
396 1.63 dyoung if (memcmp(&sp, &sc->sc_soparm, sizeof(sp)) != 0) {
397 1.62 dyoung GRE_DPRINTF(sc, "%s: parameters changed\n", __func__);
398 1.62 dyoung
399 1.62 dyoung if (sp.sp_fp != NULL) {
400 1.62 dyoung FILE_UNUSE(sp.sp_fp, NULL);
401 1.62 dyoung sp.sp_fp = NULL;
402 1.62 dyoung so = NULL;
403 1.62 dyoung } else if (so != NULL)
404 1.62 dyoung gre_sodestroy(&so);
405 1.62 dyoung
406 1.62 dyoung if (sc->sc_fp != NULL) {
407 1.62 dyoung so = (struct socket *)sc->sc_fp->f_data;
408 1.62 dyoung gre_upcall_add(so, (caddr_t)sc);
409 1.63 dyoung sp = sc->sc_soparm;
410 1.62 dyoung FILE_USE(sp.sp_fp);
411 1.62 dyoung } else if (gre_socreate1(sc, l, &sp, &so) != 0)
412 1.62 dyoung goto out;
413 1.62 dyoung }
414 1.62 dyoung for (;;) {
415 1.62 dyoung flags = MSG_DONTWAIT;
416 1.62 dyoung uio.uio_resid = 1000000;
417 1.62 dyoung rc = (*so->so_receive)(so, NULL, &uio, &m, NULL,
418 1.62 dyoung &flags);
419 1.62 dyoung /* TBD Back off if ECONNREFUSED (indicates
420 1.62 dyoung * ICMP Port Unreachable)?
421 1.62 dyoung */
422 1.62 dyoung if (rc == EWOULDBLOCK) {
423 1.62 dyoung GRE_DPRINTF(sc, "%s: so_receive EWOULDBLOCK\n",
424 1.62 dyoung __func__);
425 1.62 dyoung break;
426 1.62 dyoung } else if (rc != 0 || m == NULL) {
427 1.62 dyoung GRE_DPRINTF(sc, "%s: rc %d m %p\n",
428 1.62 dyoung ifp->if_xname, rc, (void *)m);
429 1.62 dyoung continue;
430 1.62 dyoung } else
431 1.62 dyoung GRE_DPRINTF(sc, "%s: so_receive ok\n",
432 1.62 dyoung __func__);
433 1.62 dyoung if (m->m_len < sizeof(*gh) &&
434 1.62 dyoung (m = m_pullup(m, sizeof(*gh))) == NULL) {
435 1.62 dyoung GRE_DPRINTF(sc, "%s: m_pullup failed\n",
436 1.62 dyoung __func__);
437 1.62 dyoung continue;
438 1.62 dyoung }
439 1.62 dyoung gh = mtod(m, const struct gre_h *);
440 1.62 dyoung
441 1.62 dyoung if (gre_input3(sc, m, 0, IPPROTO_GRE, gh) == 0) {
442 1.62 dyoung GRE_DPRINTF(sc, "%s: dropping unsupported\n",
443 1.62 dyoung __func__);
444 1.62 dyoung ifp->if_ierrors++;
445 1.62 dyoung m_freem(m);
446 1.62 dyoung }
447 1.62 dyoung }
448 1.62 dyoung for (;;) {
449 1.62 dyoung IF_DEQUEUE(&sc->sc_snd, m);
450 1.62 dyoung if (m == NULL)
451 1.62 dyoung break;
452 1.62 dyoung GRE_DPRINTF(sc, "%s: dequeue\n", __func__);
453 1.62 dyoung if ((so->so_state & SS_ISCONNECTED) == 0) {
454 1.62 dyoung GRE_DPRINTF(sc, "%s: not connected\n",
455 1.62 dyoung __func__);
456 1.62 dyoung m_freem(m);
457 1.62 dyoung continue;
458 1.62 dyoung }
459 1.62 dyoung rc = (*so->so_send)(so, NULL, NULL, m, NULL, 0, l);
460 1.62 dyoung /* XXX handle ENOBUFS? */
461 1.62 dyoung if (rc != 0)
462 1.62 dyoung GRE_DPRINTF(sc, "%s: so_send failed\n",
463 1.62 dyoung __func__);
464 1.62 dyoung }
465 1.62 dyoung /* Give the software interrupt queues a chance to
466 1.62 dyoung * run, or else when I send a ping from gre0 to gre1 on
467 1.62 dyoung * the same host, gre0 will not wake for the reply.
468 1.62 dyoung */
469 1.62 dyoung splx(s);
470 1.62 dyoung s = splnet();
471 1.62 dyoung }
472 1.62 dyoung if (sp.sp_fp != NULL) {
473 1.62 dyoung GRE_DPRINTF(sc, "%s: removing upcall\n", __func__);
474 1.62 dyoung gre_upcall_remove(so);
475 1.62 dyoung FILE_UNUSE(sp.sp_fp, NULL);
476 1.62 dyoung sp.sp_fp = NULL;
477 1.62 dyoung } else
478 1.62 dyoung gre_sodestroy(&so);
479 1.62 dyoung out:
480 1.62 dyoung GRE_DPRINTF(sc, "%s: stopping\n", __func__);
481 1.62 dyoung if (sc->g_proto == IPPROTO_UDP)
482 1.62 dyoung ifp->if_flags &= ~IFF_RUNNING;
483 1.64 dyoung while (!IF_IS_EMPTY(&sc->sc_snd)) {
484 1.64 dyoung IF_DEQUEUE(&sc->sc_snd, m);
485 1.64 dyoung m_freem(m);
486 1.64 dyoung }
487 1.62 dyoung gre_stop(&sc->sc_thread);
488 1.62 dyoung /* must not touch sc after this! */
489 1.62 dyoung GRE_DPRINTF(sc, "%s: restore ipl\n", __func__);
490 1.62 dyoung splx(s);
491 1.62 dyoung }
492 1.62 dyoung
493 1.62 dyoung static void
494 1.62 dyoung gre_thread(void *arg)
495 1.62 dyoung {
496 1.62 dyoung struct gre_softc *sc = (struct gre_softc *)arg;
497 1.62 dyoung
498 1.62 dyoung gre_thread1(sc, curlwp);
499 1.62 dyoung /* must not touch sc after this! */
500 1.62 dyoung kthread_exit(0);
501 1.62 dyoung }
502 1.62 dyoung
503 1.62 dyoung int
504 1.62 dyoung gre_input3(struct gre_softc *sc, struct mbuf *m, int hlen, u_char proto,
505 1.62 dyoung const struct gre_h *gh)
506 1.62 dyoung {
507 1.62 dyoung u_int16_t flags;
508 1.62 dyoung #if NBPFILTER > 0
509 1.62 dyoung u_int32_t af = AF_INET; /* af passed to BPF tap */
510 1.62 dyoung #endif
511 1.62 dyoung int s, isr;
512 1.62 dyoung struct ifqueue *ifq;
513 1.62 dyoung
514 1.62 dyoung sc->sc_if.if_ipackets++;
515 1.62 dyoung sc->sc_if.if_ibytes += m->m_pkthdr.len;
516 1.62 dyoung
517 1.62 dyoung switch (proto) {
518 1.62 dyoung case IPPROTO_GRE:
519 1.62 dyoung hlen += sizeof(struct gre_h);
520 1.62 dyoung
521 1.62 dyoung /* process GRE flags as packet can be of variable len */
522 1.62 dyoung flags = ntohs(gh->flags);
523 1.62 dyoung
524 1.62 dyoung /* Checksum & Offset are present */
525 1.62 dyoung if ((flags & GRE_CP) | (flags & GRE_RP))
526 1.62 dyoung hlen += 4;
527 1.62 dyoung /* We don't support routing fields (variable length) */
528 1.62 dyoung if (flags & GRE_RP)
529 1.62 dyoung return (0);
530 1.62 dyoung if (flags & GRE_KP)
531 1.62 dyoung hlen += 4;
532 1.62 dyoung if (flags & GRE_SP)
533 1.62 dyoung hlen += 4;
534 1.62 dyoung
535 1.62 dyoung switch (ntohs(gh->ptype)) { /* ethertypes */
536 1.62 dyoung case ETHERTYPE_IP: /* shouldn't need a schednetisr(), as */
537 1.62 dyoung ifq = &ipintrq; /* we are in ip_input */
538 1.62 dyoung isr = NETISR_IP;
539 1.62 dyoung break;
540 1.62 dyoung #ifdef NS
541 1.62 dyoung case ETHERTYPE_NS:
542 1.62 dyoung ifq = &nsintrq;
543 1.62 dyoung isr = NETISR_NS;
544 1.62 dyoung #if NBPFILTER > 0
545 1.62 dyoung af = AF_NS;
546 1.62 dyoung #endif
547 1.62 dyoung break;
548 1.62 dyoung #endif
549 1.62 dyoung #ifdef NETATALK
550 1.62 dyoung case ETHERTYPE_ATALK:
551 1.62 dyoung ifq = &atintrq1;
552 1.62 dyoung isr = NETISR_ATALK;
553 1.62 dyoung #if NBPFILTER > 0
554 1.62 dyoung af = AF_APPLETALK;
555 1.62 dyoung #endif
556 1.62 dyoung break;
557 1.62 dyoung #endif
558 1.62 dyoung #ifdef INET6
559 1.62 dyoung case ETHERTYPE_IPV6:
560 1.62 dyoung GRE_DPRINTF(sc, "%s: IPv6 packet\n", __func__);
561 1.62 dyoung ifq = &ip6intrq;
562 1.62 dyoung isr = NETISR_IPV6;
563 1.62 dyoung #if NBPFILTER > 0
564 1.62 dyoung af = AF_INET6;
565 1.62 dyoung #endif
566 1.62 dyoung break;
567 1.62 dyoung #endif
568 1.62 dyoung default: /* others not yet supported */
569 1.62 dyoung printf("%s: unhandled ethertype 0x%04x\n", __func__,
570 1.62 dyoung ntohs(gh->ptype));
571 1.62 dyoung return (0);
572 1.62 dyoung }
573 1.62 dyoung break;
574 1.62 dyoung default:
575 1.62 dyoung /* others not yet supported */
576 1.62 dyoung return (0);
577 1.62 dyoung }
578 1.62 dyoung
579 1.62 dyoung if (hlen > m->m_pkthdr.len) {
580 1.62 dyoung m_freem(m);
581 1.62 dyoung sc->sc_if.if_ierrors++;
582 1.62 dyoung return (EINVAL);
583 1.62 dyoung }
584 1.62 dyoung m_adj(m, hlen);
585 1.62 dyoung
586 1.62 dyoung #if NBPFILTER > 0
587 1.62 dyoung if (sc->sc_if.if_bpf != NULL)
588 1.62 dyoung bpf_mtap_af(sc->sc_if.if_bpf, af, m);
589 1.62 dyoung #endif /*NBPFILTER > 0*/
590 1.62 dyoung
591 1.62 dyoung m->m_pkthdr.rcvif = &sc->sc_if;
592 1.62 dyoung
593 1.62 dyoung s = splnet(); /* possible */
594 1.62 dyoung if (IF_QFULL(ifq)) {
595 1.62 dyoung IF_DROP(ifq);
596 1.62 dyoung m_freem(m);
597 1.62 dyoung } else {
598 1.62 dyoung IF_ENQUEUE(ifq, m);
599 1.62 dyoung }
600 1.62 dyoung /* we need schednetisr since the address family may change */
601 1.62 dyoung schednetisr(isr);
602 1.62 dyoung splx(s);
603 1.62 dyoung
604 1.62 dyoung return (1); /* packet is done, no further processing needed */
605 1.62 dyoung }
606 1.62 dyoung
607 1.20 itojun /*
608 1.1 hwr * The output routine. Takes a packet and encapsulates it in the protocol
609 1.6 hwr * given by sc->g_proto. See also RFC 1701 and RFC 2004
610 1.1 hwr */
611 1.59 thorpej static int
612 1.8 explorer gre_output(struct ifnet *ifp, struct mbuf *m, struct sockaddr *dst,
613 1.8 explorer struct rtentry *rt)
614 1.1 hwr {
615 1.62 dyoung int error = 0, hlen;
616 1.10 thorpej struct gre_softc *sc = ifp->if_softc;
617 1.62 dyoung struct greip *gi;
618 1.62 dyoung struct gre_h *gh;
619 1.62 dyoung struct ip *eip, *ip;
620 1.56 is u_int8_t ip_tos = 0;
621 1.48 itojun u_int16_t etype = 0;
622 1.20 itojun struct mobile_h mob_h;
623 1.24 martin
624 1.39 itojun if ((ifp->if_flags & (IFF_UP | IFF_RUNNING)) == 0 ||
625 1.37 itojun sc->g_src.s_addr == INADDR_ANY || sc->g_dst.s_addr == INADDR_ANY) {
626 1.37 itojun m_freem(m);
627 1.38 itojun error = ENETDOWN;
628 1.38 itojun goto end;
629 1.37 itojun }
630 1.1 hwr
631 1.62 dyoung gi = NULL;
632 1.41 itojun ip = NULL;
633 1.1 hwr
634 1.1 hwr #if NBPFILTER >0
635 1.52 christos if (ifp->if_bpf)
636 1.52 christos bpf_mtap_af(ifp->if_bpf, dst->sa_family, m);
637 1.1 hwr #endif
638 1.1 hwr
639 1.26 martin m->m_flags &= ~(M_BCAST|M_MCAST);
640 1.1 hwr
641 1.62 dyoung switch (sc->g_proto) {
642 1.62 dyoung case IPPROTO_MOBILE:
643 1.3 hwr if (dst->sa_family == AF_INET) {
644 1.3 hwr int msiz;
645 1.3 hwr
646 1.62 dyoung if (M_UNWRITABLE(m, sizeof(*ip)) &&
647 1.62 dyoung (m = m_pullup(m, sizeof(*ip))) == NULL) {
648 1.62 dyoung error = ENOBUFS;
649 1.62 dyoung goto end;
650 1.62 dyoung }
651 1.41 itojun ip = mtod(m, struct ip *);
652 1.3 hwr
653 1.8 explorer memset(&mob_h, 0, MOB_H_SIZ_L);
654 1.41 itojun mob_h.proto = (ip->ip_p) << 8;
655 1.41 itojun mob_h.odst = ip->ip_dst.s_addr;
656 1.41 itojun ip->ip_dst.s_addr = sc->g_dst.s_addr;
657 1.3 hwr
658 1.3 hwr /*
659 1.8 explorer * If the packet comes from our host, we only change
660 1.8 explorer * the destination address in the IP header.
661 1.8 explorer * Else we also need to save and change the source
662 1.3 hwr */
663 1.41 itojun if (in_hosteq(ip->ip_src, sc->g_src)) {
664 1.8 explorer msiz = MOB_H_SIZ_S;
665 1.3 hwr } else {
666 1.3 hwr mob_h.proto |= MOB_H_SBIT;
667 1.41 itojun mob_h.osrc = ip->ip_src.s_addr;
668 1.41 itojun ip->ip_src.s_addr = sc->g_src.s_addr;
669 1.8 explorer msiz = MOB_H_SIZ_L;
670 1.3 hwr }
671 1.3 hwr HTONS(mob_h.proto);
672 1.48 itojun mob_h.hcrc = gre_in_cksum((u_int16_t *)&mob_h, msiz);
673 1.3 hwr
674 1.62 dyoung M_PREPEND(m, msiz, M_DONTWAIT);
675 1.62 dyoung if (m == NULL) {
676 1.62 dyoung error = ENOBUFS;
677 1.62 dyoung goto end;
678 1.3 hwr }
679 1.62 dyoung /* XXX Assuming that ip does not dangle after
680 1.62 dyoung * M_PREPEND. In practice, that's true, but
681 1.62 dyoung * that's in M_PREPEND's contract.
682 1.62 dyoung */
683 1.62 dyoung memmove(mtod(m, caddr_t), ip, sizeof(*ip));
684 1.41 itojun ip = mtod(m, struct ip *);
685 1.41 itojun memcpy((caddr_t)(ip + 1), &mob_h, (unsigned)msiz);
686 1.42 itojun ip->ip_len = htons(ntohs(ip->ip_len) + msiz);
687 1.3 hwr } else { /* AF_INET */
688 1.3 hwr IF_DROP(&ifp->if_snd);
689 1.3 hwr m_freem(m);
690 1.38 itojun error = EINVAL;
691 1.38 itojun goto end;
692 1.3 hwr }
693 1.62 dyoung break;
694 1.62 dyoung case IPPROTO_UDP:
695 1.62 dyoung case IPPROTO_GRE:
696 1.62 dyoung GRE_DPRINTF(sc, "%s: dst->sa_family=%d\n", __func__,
697 1.62 dyoung dst->sa_family);
698 1.20 itojun switch (dst->sa_family) {
699 1.1 hwr case AF_INET:
700 1.41 itojun ip = mtod(m, struct ip *);
701 1.56 is ip_tos = ip->ip_tos;
702 1.8 explorer etype = ETHERTYPE_IP;
703 1.1 hwr break;
704 1.1 hwr #ifdef NETATALK
705 1.1 hwr case AF_APPLETALK:
706 1.8 explorer etype = ETHERTYPE_ATALK;
707 1.1 hwr break;
708 1.1 hwr #endif
709 1.1 hwr #ifdef NS
710 1.1 hwr case AF_NS:
711 1.8 explorer etype = ETHERTYPE_NS;
712 1.1 hwr break;
713 1.1 hwr #endif
714 1.56 is #ifdef INET6
715 1.56 is case AF_INET6:
716 1.56 is etype = ETHERTYPE_IPV6;
717 1.56 is break;
718 1.56 is #endif
719 1.1 hwr default:
720 1.1 hwr IF_DROP(&ifp->if_snd);
721 1.1 hwr m_freem(m);
722 1.38 itojun error = EAFNOSUPPORT;
723 1.38 itojun goto end;
724 1.1 hwr }
725 1.62 dyoung break;
726 1.62 dyoung default:
727 1.1 hwr IF_DROP(&ifp->if_snd);
728 1.1 hwr m_freem(m);
729 1.38 itojun error = EINVAL;
730 1.38 itojun goto end;
731 1.1 hwr }
732 1.1 hwr
733 1.62 dyoung switch (sc->g_proto) {
734 1.62 dyoung case IPPROTO_GRE:
735 1.62 dyoung hlen = sizeof(struct greip);
736 1.62 dyoung break;
737 1.62 dyoung case IPPROTO_UDP:
738 1.62 dyoung hlen = sizeof(struct gre_h);
739 1.62 dyoung break;
740 1.62 dyoung default:
741 1.62 dyoung hlen = 0;
742 1.62 dyoung break;
743 1.62 dyoung }
744 1.62 dyoung
745 1.62 dyoung M_PREPEND(m, hlen, M_DONTWAIT);
746 1.62 dyoung
747 1.62 dyoung if (m == NULL) {
748 1.1 hwr IF_DROP(&ifp->if_snd);
749 1.38 itojun error = ENOBUFS;
750 1.38 itojun goto end;
751 1.1 hwr }
752 1.1 hwr
753 1.62 dyoung switch (sc->g_proto) {
754 1.62 dyoung case IPPROTO_UDP:
755 1.62 dyoung gh = mtod(m, struct gre_h *);
756 1.62 dyoung memset(gh, 0, sizeof(*gh));
757 1.62 dyoung gh->ptype = htons(etype);
758 1.62 dyoung /* XXX Need to handle IP ToS. Look at how I handle IP TTL. */
759 1.62 dyoung break;
760 1.62 dyoung case IPPROTO_GRE:
761 1.62 dyoung gi = mtod(m, struct greip *);
762 1.62 dyoung gh = &gi->gi_g;
763 1.62 dyoung eip = &gi->gi_i;
764 1.1 hwr /* we don't have any GRE flags for now */
765 1.62 dyoung memset(gh, 0, sizeof(*gh));
766 1.62 dyoung gh->ptype = htons(etype);
767 1.62 dyoung eip->ip_src = sc->g_src;
768 1.62 dyoung eip->ip_dst = sc->g_dst;
769 1.62 dyoung eip->ip_hl = (sizeof(struct ip)) >> 2;
770 1.62 dyoung eip->ip_ttl = ip_gre_ttl;
771 1.62 dyoung eip->ip_tos = ip_tos;
772 1.62 dyoung eip->ip_len = htons(m->m_pkthdr.len);
773 1.62 dyoung eip->ip_p = sc->g_proto;
774 1.62 dyoung break;
775 1.62 dyoung case IPPROTO_MOBILE:
776 1.62 dyoung eip = mtod(m, struct ip *);
777 1.62 dyoung eip->ip_p = sc->g_proto;
778 1.62 dyoung break;
779 1.62 dyoung default:
780 1.62 dyoung error = EPROTONOSUPPORT;
781 1.62 dyoung m_freem(m);
782 1.62 dyoung goto end;
783 1.3 hwr }
784 1.1 hwr
785 1.1 hwr ifp->if_opackets++;
786 1.8 explorer ifp->if_obytes += m->m_pkthdr.len;
787 1.62 dyoung
788 1.1 hwr /* send it off */
789 1.62 dyoung if (sc->g_proto == IPPROTO_UDP) {
790 1.62 dyoung if (IF_QFULL(&sc->sc_snd)) {
791 1.62 dyoung IF_DROP(&sc->sc_snd);
792 1.62 dyoung error = ENOBUFS;
793 1.62 dyoung m_freem(m);
794 1.62 dyoung } else {
795 1.62 dyoung IF_ENQUEUE(&sc->sc_snd, m);
796 1.62 dyoung gre_wakeup(sc);
797 1.62 dyoung error = 0;
798 1.62 dyoung }
799 1.62 dyoung } else {
800 1.62 dyoung error = ip_output(m, NULL, &sc->route, 0,
801 1.62 dyoung (struct ip_moptions *)NULL, (struct socket *)NULL);
802 1.62 dyoung }
803 1.38 itojun end:
804 1.8 explorer if (error)
805 1.1 hwr ifp->if_oerrors++;
806 1.8 explorer return (error);
807 1.1 hwr }
808 1.1 hwr
809 1.62 dyoung /* Must be called at IPL_NET. */
810 1.62 dyoung static int
811 1.62 dyoung gre_kick(struct gre_softc *sc)
812 1.62 dyoung {
813 1.62 dyoung int rc;
814 1.62 dyoung struct ifnet *ifp = &sc->sc_if;
815 1.62 dyoung
816 1.62 dyoung if (sc->g_proto == IPPROTO_UDP && (ifp->if_flags & IFF_UP) == IFF_UP &&
817 1.62 dyoung !sc->sc_thread) {
818 1.62 dyoung sc->sc_thread = 1;
819 1.62 dyoung rc = kthread_create1(gre_thread, (void *)sc, NULL,
820 1.62 dyoung ifp->if_xname);
821 1.62 dyoung if (rc != 0)
822 1.62 dyoung gre_stop(&sc->sc_thread);
823 1.62 dyoung return rc;
824 1.62 dyoung } else {
825 1.62 dyoung gre_wakeup(sc);
826 1.62 dyoung return 0;
827 1.62 dyoung }
828 1.62 dyoung }
829 1.62 dyoung
830 1.62 dyoung static int
831 1.62 dyoung gre_getname(struct socket *so, int req, struct mbuf *nam, struct lwp *l)
832 1.62 dyoung {
833 1.62 dyoung int s, error;
834 1.62 dyoung
835 1.62 dyoung s = splsoftnet();
836 1.62 dyoung error = (*so->so_proto->pr_usrreq)(so, req, (struct mbuf *)0,
837 1.62 dyoung nam, (struct mbuf *)0, l);
838 1.62 dyoung splx(s);
839 1.62 dyoung return error;
840 1.62 dyoung }
841 1.62 dyoung
842 1.62 dyoung static int
843 1.62 dyoung gre_getsockname(struct socket *so, struct mbuf *nam, struct lwp *l)
844 1.62 dyoung {
845 1.62 dyoung return gre_getname(so, PRU_SOCKADDR, nam, l);
846 1.62 dyoung }
847 1.62 dyoung
848 1.62 dyoung static int
849 1.62 dyoung gre_getpeername(struct socket *so, struct mbuf *nam, struct lwp *l)
850 1.62 dyoung {
851 1.62 dyoung return gre_getname(so, PRU_PEERADDR, nam, l);
852 1.62 dyoung }
853 1.62 dyoung
854 1.62 dyoung static int
855 1.62 dyoung gre_getnames(struct socket *so, struct lwp *l, struct sockaddr_in *src,
856 1.62 dyoung struct sockaddr_in *dst)
857 1.62 dyoung {
858 1.62 dyoung struct mbuf *m;
859 1.62 dyoung struct sockaddr_in *sin;
860 1.62 dyoung int rc;
861 1.62 dyoung
862 1.62 dyoung if ((m = gre_getsockmbuf(so)) == NULL)
863 1.62 dyoung return ENOBUFS;
864 1.62 dyoung
865 1.62 dyoung sin = mtod(m, struct sockaddr_in *);
866 1.62 dyoung
867 1.62 dyoung if ((rc = gre_getsockname(so, m, l)) != 0)
868 1.62 dyoung goto out;
869 1.62 dyoung if (sin->sin_family != AF_INET) {
870 1.62 dyoung rc = EAFNOSUPPORT;
871 1.62 dyoung goto out;
872 1.62 dyoung }
873 1.62 dyoung *src = *sin;
874 1.62 dyoung
875 1.62 dyoung if ((rc = gre_getpeername(so, m, l)) != 0)
876 1.62 dyoung goto out;
877 1.62 dyoung if (sin->sin_family != AF_INET) {
878 1.62 dyoung rc = EAFNOSUPPORT;
879 1.62 dyoung goto out;
880 1.62 dyoung }
881 1.62 dyoung *dst = *sin;
882 1.62 dyoung
883 1.62 dyoung out:
884 1.62 dyoung m_freem(m);
885 1.62 dyoung return rc;
886 1.62 dyoung }
887 1.62 dyoung
888 1.59 thorpej static int
889 1.8 explorer gre_ioctl(struct ifnet *ifp, u_long cmd, caddr_t data)
890 1.1 hwr {
891 1.62 dyoung u_char oproto;
892 1.62 dyoung struct file *fp, *ofp;
893 1.62 dyoung struct socket *so;
894 1.62 dyoung struct sockaddr_in dst, src;
895 1.62 dyoung struct proc *p = curproc; /* XXX */
896 1.61 ad struct lwp *l = curlwp; /* XXX */
897 1.8 explorer struct ifreq *ifr = (struct ifreq *)data;
898 1.28 itojun struct if_laddrreq *lifr = (struct if_laddrreq *)data;
899 1.8 explorer struct gre_softc *sc = ifp->if_softc;
900 1.1 hwr int s;
901 1.1 hwr struct sockaddr_in si;
902 1.8 explorer struct sockaddr *sa = NULL;
903 1.1 hwr int error;
904 1.1 hwr
905 1.61 ad switch (cmd) {
906 1.61 ad case SIOCSIFFLAGS:
907 1.61 ad case SIOCSIFMTU:
908 1.61 ad case GRESPROTO:
909 1.61 ad case GRESADDRD:
910 1.61 ad case GRESADDRS:
911 1.62 dyoung case GRESSOCK:
912 1.62 dyoung case GREDSOCK:
913 1.61 ad case SIOCSLIFPHYADDR:
914 1.61 ad case SIOCDIFPHYADDR:
915 1.61 ad if ((error = kauth_authorize_generic(l->l_cred,
916 1.61 ad KAUTH_GENERIC_ISSUSER, &l->l_acflag)) != 0)
917 1.61 ad return (error);
918 1.61 ad break;
919 1.61 ad default:
920 1.61 ad error = 0;
921 1.61 ad break;
922 1.61 ad }
923 1.1 hwr
924 1.18 thorpej s = splnet();
925 1.20 itojun switch (cmd) {
926 1.20 itojun case SIOCSIFADDR:
927 1.36 itojun ifp->if_flags |= IFF_UP;
928 1.62 dyoung error = gre_kick(sc);
929 1.36 itojun break;
930 1.55 perry case SIOCSIFDSTADDR:
931 1.1 hwr break;
932 1.1 hwr case SIOCSIFFLAGS:
933 1.62 dyoung oproto = sc->g_proto;
934 1.62 dyoung switch (ifr->ifr_flags & (IFF_LINK0|IFF_LINK2)) {
935 1.62 dyoung case IFF_LINK0|IFF_LINK2:
936 1.62 dyoung sc->g_proto = IPPROTO_UDP;
937 1.62 dyoung if (oproto != IPPROTO_UDP)
938 1.62 dyoung ifp->if_flags &= ~IFF_RUNNING;
939 1.62 dyoung error = gre_kick(sc);
940 1.62 dyoung break;
941 1.62 dyoung case IFF_LINK0:
942 1.35 itojun sc->g_proto = IPPROTO_GRE;
943 1.62 dyoung gre_wakeup(sc);
944 1.62 dyoung goto recompute;
945 1.62 dyoung case 0:
946 1.35 itojun sc->g_proto = IPPROTO_MOBILE;
947 1.62 dyoung gre_wakeup(sc);
948 1.62 dyoung goto recompute;
949 1.62 dyoung }
950 1.1 hwr break;
951 1.20 itojun case SIOCSIFMTU:
952 1.27 martin if (ifr->ifr_mtu < 576) {
953 1.1 hwr error = EINVAL;
954 1.1 hwr break;
955 1.1 hwr }
956 1.1 hwr ifp->if_mtu = ifr->ifr_mtu;
957 1.1 hwr break;
958 1.1 hwr case SIOCGIFMTU:
959 1.1 hwr ifr->ifr_mtu = sc->sc_if.if_mtu;
960 1.1 hwr break;
961 1.1 hwr case SIOCADDMULTI:
962 1.1 hwr case SIOCDELMULTI:
963 1.8 explorer if (ifr == 0) {
964 1.1 hwr error = EAFNOSUPPORT;
965 1.1 hwr break;
966 1.1 hwr }
967 1.8 explorer switch (ifr->ifr_addr.sa_family) {
968 1.1 hwr #ifdef INET
969 1.1 hwr case AF_INET:
970 1.1 hwr break;
971 1.1 hwr #endif
972 1.56 is #ifdef INET6
973 1.56 is case AF_INET6:
974 1.56 is break;
975 1.56 is #endif
976 1.1 hwr default:
977 1.1 hwr error = EAFNOSUPPORT;
978 1.1 hwr break;
979 1.1 hwr }
980 1.1 hwr break;
981 1.1 hwr case GRESPROTO:
982 1.62 dyoung oproto = sc->g_proto;
983 1.1 hwr sc->g_proto = ifr->ifr_flags;
984 1.1 hwr switch (sc->g_proto) {
985 1.62 dyoung case IPPROTO_UDP:
986 1.62 dyoung ifp->if_flags |= IFF_LINK0|IFF_LINK2;
987 1.62 dyoung if (oproto != IPPROTO_UDP)
988 1.62 dyoung ifp->if_flags &= ~IFF_RUNNING;
989 1.62 dyoung error = gre_kick(sc);
990 1.62 dyoung break;
991 1.40 itojun case IPPROTO_GRE:
992 1.3 hwr ifp->if_flags |= IFF_LINK0;
993 1.62 dyoung ifp->if_flags &= ~IFF_LINK2;
994 1.62 dyoung goto recompute;
995 1.40 itojun case IPPROTO_MOBILE:
996 1.62 dyoung ifp->if_flags &= ~(IFF_LINK0|IFF_LINK2);
997 1.62 dyoung goto recompute;
998 1.1 hwr default:
999 1.40 itojun error = EPROTONOSUPPORT;
1000 1.35 itojun break;
1001 1.1 hwr }
1002 1.1 hwr break;
1003 1.1 hwr case GREGPROTO:
1004 1.1 hwr ifr->ifr_flags = sc->g_proto;
1005 1.1 hwr break;
1006 1.1 hwr case GRESADDRS:
1007 1.1 hwr case GRESADDRD:
1008 1.1 hwr /*
1009 1.20 itojun * set tunnel endpoints, compute a less specific route
1010 1.20 itojun * to the remote end and mark if as up
1011 1.20 itojun */
1012 1.1 hwr sa = &ifr->ifr_addr;
1013 1.62 dyoung if (cmd == GRESADDRS) {
1014 1.1 hwr sc->g_src = (satosin(sa))->sin_addr;
1015 1.62 dyoung sc->g_srcport = satosin(sa)->sin_port;
1016 1.62 dyoung }
1017 1.62 dyoung if (cmd == GRESADDRD) {
1018 1.62 dyoung if (sc->g_proto == IPPROTO_UDP &&
1019 1.62 dyoung satosin(sa)->sin_port == 0) {
1020 1.62 dyoung error = EINVAL;
1021 1.62 dyoung break;
1022 1.62 dyoung }
1023 1.1 hwr sc->g_dst = (satosin(sa))->sin_addr;
1024 1.62 dyoung sc->g_dstport = satosin(sa)->sin_port;
1025 1.62 dyoung }
1026 1.30 itojun recompute:
1027 1.62 dyoung if (sc->g_proto == IPPROTO_UDP ||
1028 1.62 dyoung (sc->g_src.s_addr != INADDR_ANY &&
1029 1.62 dyoung sc->g_dst.s_addr != INADDR_ANY)) {
1030 1.62 dyoung if (sc->sc_fp != NULL) {
1031 1.62 dyoung closef(sc->sc_fp, l);
1032 1.62 dyoung sc->sc_fp = NULL;
1033 1.62 dyoung }
1034 1.62 dyoung if (sc->route.ro_rt != NULL) {
1035 1.1 hwr RTFREE(sc->route.ro_rt);
1036 1.62 dyoung sc->route.ro_rt = NULL;
1037 1.62 dyoung }
1038 1.62 dyoung if (sc->g_proto == IPPROTO_UDP)
1039 1.62 dyoung error = gre_kick(sc);
1040 1.62 dyoung else if (gre_compute_route(sc) == 0)
1041 1.39 itojun ifp->if_flags |= IFF_RUNNING;
1042 1.39 itojun else
1043 1.39 itojun ifp->if_flags &= ~IFF_RUNNING;
1044 1.1 hwr }
1045 1.1 hwr break;
1046 1.1 hwr case GREGADDRS:
1047 1.33 itojun memset(&si, 0, sizeof(si));
1048 1.28 itojun si.sin_family = AF_INET;
1049 1.28 itojun si.sin_len = sizeof(struct sockaddr_in);
1050 1.1 hwr si.sin_addr.s_addr = sc->g_src.s_addr;
1051 1.8 explorer sa = sintosa(&si);
1052 1.1 hwr ifr->ifr_addr = *sa;
1053 1.1 hwr break;
1054 1.1 hwr case GREGADDRD:
1055 1.33 itojun memset(&si, 0, sizeof(si));
1056 1.28 itojun si.sin_family = AF_INET;
1057 1.28 itojun si.sin_len = sizeof(struct sockaddr_in);
1058 1.1 hwr si.sin_addr.s_addr = sc->g_dst.s_addr;
1059 1.8 explorer sa = sintosa(&si);
1060 1.1 hwr ifr->ifr_addr = *sa;
1061 1.28 itojun break;
1062 1.62 dyoung case GREDSOCK:
1063 1.62 dyoung if (sc->g_proto != IPPROTO_UDP)
1064 1.62 dyoung return EINVAL;
1065 1.63 dyoung if (sc->sc_fp != NULL) {
1066 1.63 dyoung closef(sc->sc_fp, l);
1067 1.63 dyoung sc->sc_fp = NULL;
1068 1.63 dyoung error = gre_kick(sc);
1069 1.63 dyoung }
1070 1.62 dyoung break;
1071 1.62 dyoung case GRESSOCK:
1072 1.62 dyoung if (sc->g_proto != IPPROTO_UDP)
1073 1.62 dyoung return EINVAL;
1074 1.62 dyoung /* getsock() will FILE_USE() the descriptor for us */
1075 1.62 dyoung if ((error = getsock(p->p_fd, (int)ifr->ifr_value, &fp)) != 0)
1076 1.62 dyoung break;
1077 1.62 dyoung so = (struct socket *)fp->f_data;
1078 1.62 dyoung if (so->so_type != SOCK_DGRAM) {
1079 1.62 dyoung FILE_UNUSE(fp, NULL);
1080 1.62 dyoung error = EINVAL;
1081 1.62 dyoung break;
1082 1.62 dyoung }
1083 1.62 dyoung /* check address */
1084 1.62 dyoung if ((error = gre_getnames(so, curlwp, &src, &dst)) != 0) {
1085 1.62 dyoung FILE_UNUSE(fp, NULL);
1086 1.62 dyoung break;
1087 1.62 dyoung }
1088 1.62 dyoung
1089 1.62 dyoung fp->f_count++;
1090 1.62 dyoung
1091 1.62 dyoung ofp = sc->sc_fp;
1092 1.62 dyoung sc->sc_fp = fp;
1093 1.62 dyoung if ((error = gre_kick(sc)) != 0) {
1094 1.62 dyoung closef(fp, l);
1095 1.62 dyoung sc->sc_fp = ofp;
1096 1.62 dyoung break;
1097 1.62 dyoung }
1098 1.62 dyoung sc->g_src = src.sin_addr;
1099 1.62 dyoung sc->g_srcport = src.sin_port;
1100 1.62 dyoung sc->g_dst = dst.sin_addr;
1101 1.62 dyoung sc->g_dstport = dst.sin_port;
1102 1.62 dyoung if (ofp != NULL)
1103 1.62 dyoung closef(ofp, l);
1104 1.62 dyoung break;
1105 1.28 itojun case SIOCSLIFPHYADDR:
1106 1.28 itojun if (lifr->addr.ss_family != AF_INET ||
1107 1.31 itojun lifr->dstaddr.ss_family != AF_INET) {
1108 1.31 itojun error = EAFNOSUPPORT;
1109 1.31 itojun break;
1110 1.31 itojun }
1111 1.28 itojun if (lifr->addr.ss_len != sizeof(si) ||
1112 1.31 itojun lifr->dstaddr.ss_len != sizeof(si)) {
1113 1.31 itojun error = EINVAL;
1114 1.31 itojun break;
1115 1.31 itojun }
1116 1.62 dyoung sc->g_src = satosin(&lifr->addr)->sin_addr;
1117 1.62 dyoung sc->g_dst = satosin(&lifr->dstaddr)->sin_addr;
1118 1.62 dyoung sc->g_srcport = satosin(&lifr->addr)->sin_port;
1119 1.62 dyoung sc->g_dstport = satosin(&lifr->dstaddr)->sin_port;
1120 1.30 itojun goto recompute;
1121 1.28 itojun case SIOCDIFPHYADDR:
1122 1.28 itojun sc->g_src.s_addr = INADDR_ANY;
1123 1.28 itojun sc->g_dst.s_addr = INADDR_ANY;
1124 1.62 dyoung sc->g_srcport = 0;
1125 1.62 dyoung sc->g_dstport = 0;
1126 1.62 dyoung goto recompute;
1127 1.28 itojun case SIOCGLIFPHYADDR:
1128 1.28 itojun if (sc->g_src.s_addr == INADDR_ANY ||
1129 1.28 itojun sc->g_dst.s_addr == INADDR_ANY) {
1130 1.28 itojun error = EADDRNOTAVAIL;
1131 1.28 itojun break;
1132 1.28 itojun }
1133 1.33 itojun memset(&si, 0, sizeof(si));
1134 1.28 itojun si.sin_family = AF_INET;
1135 1.28 itojun si.sin_len = sizeof(struct sockaddr_in);
1136 1.62 dyoung si.sin_addr = sc->g_src;
1137 1.62 dyoung if (sc->g_proto == IPPROTO_UDP)
1138 1.62 dyoung si.sin_port = sc->g_srcport;
1139 1.33 itojun memcpy(&lifr->addr, &si, sizeof(si));
1140 1.62 dyoung si.sin_addr = sc->g_dst;
1141 1.62 dyoung if (sc->g_proto == IPPROTO_UDP)
1142 1.62 dyoung si.sin_port = sc->g_dstport;
1143 1.33 itojun memcpy(&lifr->dstaddr, &si, sizeof(si));
1144 1.1 hwr break;
1145 1.1 hwr default:
1146 1.1 hwr error = EINVAL;
1147 1.31 itojun break;
1148 1.1 hwr }
1149 1.1 hwr splx(s);
1150 1.8 explorer return (error);
1151 1.1 hwr }
1152 1.1 hwr
1153 1.20 itojun /*
1154 1.1 hwr * computes a route to our destination that is not the one
1155 1.1 hwr * which would be taken by ip_output(), as this one will loop back to
1156 1.1 hwr * us. If the interface is p2p as a--->b, then a routing entry exists
1157 1.1 hwr * If we now send a packet to b (e.g. ping b), this will come down here
1158 1.43 wiz * gets src=a, dst=b tacked on and would from ip_output() sent back to
1159 1.1 hwr * if_gre.
1160 1.1 hwr * Goal here is to compute a route to b that is less specific than
1161 1.1 hwr * a-->b. We know that this one exists as in normal operation we have
1162 1.1 hwr * at least a default route which matches.
1163 1.1 hwr */
1164 1.59 thorpej static int
1165 1.8 explorer gre_compute_route(struct gre_softc *sc)
1166 1.1 hwr {
1167 1.1 hwr struct route *ro;
1168 1.8 explorer u_int32_t a, b, c;
1169 1.1 hwr
1170 1.8 explorer ro = &sc->route;
1171 1.20 itojun
1172 1.8 explorer memset(ro, 0, sizeof(struct route));
1173 1.8 explorer ((struct sockaddr_in *)&ro->ro_dst)->sin_addr = sc->g_dst;
1174 1.8 explorer ro->ro_dst.sa_family = AF_INET;
1175 1.8 explorer ro->ro_dst.sa_len = sizeof(ro->ro_dst);
1176 1.8 explorer
1177 1.1 hwr /*
1178 1.1 hwr * toggle last bit, so our interface is not found, but a less
1179 1.20 itojun * specific route. I'd rather like to specify a shorter mask,
1180 1.20 itojun * but this is not possible. Should work though. XXX
1181 1.1 hwr * there is a simpler way ...
1182 1.20 itojun */
1183 1.8 explorer if ((sc->sc_if.if_flags & IFF_LINK1) == 0) {
1184 1.8 explorer a = ntohl(sc->g_dst.s_addr);
1185 1.8 explorer b = a & 0x01;
1186 1.8 explorer c = a & 0xfffffffe;
1187 1.8 explorer b = b ^ 0x01;
1188 1.8 explorer a = b | c;
1189 1.8 explorer ((struct sockaddr_in *)&ro->ro_dst)->sin_addr.s_addr
1190 1.20 itojun = htonl(a);
1191 1.8 explorer }
1192 1.1 hwr
1193 1.1 hwr #ifdef DIAGNOSTIC
1194 1.45 grant printf("%s: searching for a route to %s", sc->sc_if.if_xname,
1195 1.19 itojun inet_ntoa(((struct sockaddr_in *)&ro->ro_dst)->sin_addr));
1196 1.1 hwr #endif
1197 1.1 hwr
1198 1.1 hwr rtalloc(ro);
1199 1.1 hwr
1200 1.1 hwr /*
1201 1.25 martin * check if this returned a route at all and this route is no
1202 1.25 martin * recursion to ourself
1203 1.25 martin */
1204 1.25 martin if (ro->ro_rt == NULL || ro->ro_rt->rt_ifp->if_softc == sc) {
1205 1.25 martin #ifdef DIAGNOSTIC
1206 1.25 martin if (ro->ro_rt == NULL)
1207 1.25 martin printf(" - no route found!\n");
1208 1.25 martin else
1209 1.25 martin printf(" - route loops back to ourself!\n");
1210 1.25 martin #endif
1211 1.25 martin return EADDRNOTAVAIL;
1212 1.25 martin }
1213 1.25 martin
1214 1.25 martin /*
1215 1.20 itojun * now change it back - else ip_output will just drop
1216 1.20 itojun * the route and search one to this interface ...
1217 1.20 itojun */
1218 1.8 explorer if ((sc->sc_if.if_flags & IFF_LINK1) == 0)
1219 1.8 explorer ((struct sockaddr_in *)&ro->ro_dst)->sin_addr = sc->g_dst;
1220 1.1 hwr
1221 1.1 hwr #ifdef DIAGNOSTIC
1222 1.62 dyoung printf(", choosing %s with gateway %s\n", ro->ro_rt->rt_ifp->if_xname,
1223 1.19 itojun inet_ntoa(((struct sockaddr_in *)(ro->ro_rt->rt_gateway))->sin_addr));
1224 1.1 hwr #endif
1225 1.25 martin
1226 1.25 martin return 0;
1227 1.1 hwr }
1228 1.1 hwr
1229 1.3 hwr /*
1230 1.20 itojun * do a checksum of a buffer - much like in_cksum, which operates on
1231 1.20 itojun * mbufs.
1232 1.3 hwr */
1233 1.48 itojun u_int16_t
1234 1.48 itojun gre_in_cksum(u_int16_t *p, u_int len)
1235 1.3 hwr {
1236 1.48 itojun u_int32_t sum = 0;
1237 1.3 hwr int nwords = len >> 1;
1238 1.20 itojun
1239 1.3 hwr while (nwords-- != 0)
1240 1.3 hwr sum += *p++;
1241 1.20 itojun
1242 1.20 itojun if (len & 1) {
1243 1.20 itojun union {
1244 1.20 itojun u_short w;
1245 1.20 itojun u_char c[2];
1246 1.20 itojun } u;
1247 1.20 itojun u.c[0] = *(u_char *)p;
1248 1.20 itojun u.c[1] = 0;
1249 1.20 itojun sum += u.w;
1250 1.20 itojun }
1251 1.20 itojun
1252 1.20 itojun /* end-around-carry */
1253 1.20 itojun sum = (sum >> 16) + (sum & 0xffff);
1254 1.20 itojun sum += (sum >> 16);
1255 1.20 itojun return (~sum);
1256 1.3 hwr }
1257 1.54 christos #endif
1258 1.54 christos
1259 1.59 thorpej void greattach(int);
1260 1.54 christos
1261 1.54 christos /* ARGSUSED */
1262 1.54 christos void
1263 1.59 thorpej greattach(int count)
1264 1.54 christos {
1265 1.54 christos #ifdef INET
1266 1.54 christos LIST_INIT(&gre_softc_list);
1267 1.54 christos if_clone_attach(&gre_cloner);
1268 1.54 christos #endif
1269 1.54 christos }
1270