if_l2tp.c revision 1.15.2.2 1 1.15.2.2 jdolecek /* $NetBSD: if_l2tp.c,v 1.15.2.2 2017/12/03 11:39:02 jdolecek Exp $ */
2 1.15.2.2 jdolecek
3 1.15.2.2 jdolecek /*
4 1.15.2.2 jdolecek * Copyright (c) 2017 Internet Initiative Japan Inc.
5 1.15.2.2 jdolecek * All rights reserved.
6 1.15.2.2 jdolecek *
7 1.15.2.2 jdolecek * Redistribution and use in source and binary forms, with or without
8 1.15.2.2 jdolecek * modification, are permitted provided that the following conditions
9 1.15.2.2 jdolecek * are met:
10 1.15.2.2 jdolecek * 1. Redistributions of source code must retain the above copyright
11 1.15.2.2 jdolecek * notice, this list of conditions and the following disclaimer.
12 1.15.2.2 jdolecek * 2. Redistributions in binary form must reproduce the above copyright
13 1.15.2.2 jdolecek * notice, this list of conditions and the following disclaimer in the
14 1.15.2.2 jdolecek * documentation and/or other materials provided with the distribution.
15 1.15.2.2 jdolecek *
16 1.15.2.2 jdolecek * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
17 1.15.2.2 jdolecek * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
18 1.15.2.2 jdolecek * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
19 1.15.2.2 jdolecek * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
20 1.15.2.2 jdolecek * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
21 1.15.2.2 jdolecek * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
22 1.15.2.2 jdolecek * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
23 1.15.2.2 jdolecek * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
24 1.15.2.2 jdolecek * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
25 1.15.2.2 jdolecek * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
26 1.15.2.2 jdolecek * POSSIBILITY OF SUCH DAMAGE.
27 1.15.2.2 jdolecek */
28 1.15.2.2 jdolecek
29 1.15.2.2 jdolecek /*
30 1.15.2.2 jdolecek * L2TPv3 kernel interface
31 1.15.2.2 jdolecek */
32 1.15.2.2 jdolecek
33 1.15.2.2 jdolecek #include <sys/cdefs.h>
34 1.15.2.2 jdolecek __KERNEL_RCSID(0, "$NetBSD: if_l2tp.c,v 1.15.2.2 2017/12/03 11:39:02 jdolecek Exp $");
35 1.15.2.2 jdolecek
36 1.15.2.2 jdolecek #ifdef _KERNEL_OPT
37 1.15.2.2 jdolecek #include "opt_inet.h"
38 1.15.2.2 jdolecek #endif
39 1.15.2.2 jdolecek
40 1.15.2.2 jdolecek #include <sys/param.h>
41 1.15.2.2 jdolecek #include <sys/systm.h>
42 1.15.2.2 jdolecek #include <sys/kernel.h>
43 1.15.2.2 jdolecek #include <sys/mbuf.h>
44 1.15.2.2 jdolecek #include <sys/socket.h>
45 1.15.2.2 jdolecek #include <sys/sockio.h>
46 1.15.2.2 jdolecek #include <sys/errno.h>
47 1.15.2.2 jdolecek #include <sys/ioctl.h>
48 1.15.2.2 jdolecek #include <sys/time.h>
49 1.15.2.2 jdolecek #include <sys/syslog.h>
50 1.15.2.2 jdolecek #include <sys/proc.h>
51 1.15.2.2 jdolecek #include <sys/conf.h>
52 1.15.2.2 jdolecek #include <sys/kauth.h>
53 1.15.2.2 jdolecek #include <sys/cpu.h>
54 1.15.2.2 jdolecek #include <sys/cprng.h>
55 1.15.2.2 jdolecek #include <sys/intr.h>
56 1.15.2.2 jdolecek #include <sys/kmem.h>
57 1.15.2.2 jdolecek #include <sys/mutex.h>
58 1.15.2.2 jdolecek #include <sys/atomic.h>
59 1.15.2.2 jdolecek #include <sys/pserialize.h>
60 1.15.2.2 jdolecek #include <sys/device.h>
61 1.15.2.2 jdolecek #include <sys/module.h>
62 1.15.2.2 jdolecek
63 1.15.2.2 jdolecek #include <net/if.h>
64 1.15.2.2 jdolecek #include <net/if_dl.h>
65 1.15.2.2 jdolecek #include <net/if_ether.h>
66 1.15.2.2 jdolecek #include <net/if_types.h>
67 1.15.2.2 jdolecek #include <net/netisr.h>
68 1.15.2.2 jdolecek #include <net/route.h>
69 1.15.2.2 jdolecek #include <net/bpf.h>
70 1.15.2.2 jdolecek #include <net/if_vlanvar.h>
71 1.15.2.2 jdolecek
72 1.15.2.2 jdolecek #include <netinet/in.h>
73 1.15.2.2 jdolecek #include <netinet/in_systm.h>
74 1.15.2.2 jdolecek #include <netinet/ip.h>
75 1.15.2.2 jdolecek #include <netinet/ip_encap.h>
76 1.15.2.2 jdolecek #ifdef INET
77 1.15.2.2 jdolecek #include <netinet/in_var.h>
78 1.15.2.2 jdolecek #include <netinet/in_l2tp.h>
79 1.15.2.2 jdolecek #endif /* INET */
80 1.15.2.2 jdolecek #ifdef INET6
81 1.15.2.2 jdolecek #include <netinet6/in6_l2tp.h>
82 1.15.2.2 jdolecek #endif
83 1.15.2.2 jdolecek
84 1.15.2.2 jdolecek #include <net/if_l2tp.h>
85 1.15.2.2 jdolecek
86 1.15.2.2 jdolecek #include <net/if_vlanvar.h>
87 1.15.2.2 jdolecek
88 1.15.2.2 jdolecek /* TODO: IP_TCPMSS support */
89 1.15.2.2 jdolecek #undef IP_TCPMSS
90 1.15.2.2 jdolecek #ifdef IP_TCPMSS
91 1.15.2.2 jdolecek #include <netinet/ip_tcpmss.h>
92 1.15.2.2 jdolecek #endif
93 1.15.2.2 jdolecek
94 1.15.2.2 jdolecek #include <net/bpf.h>
95 1.15.2.2 jdolecek #include <net/net_osdep.h>
96 1.15.2.2 jdolecek
97 1.15.2.2 jdolecek /*
98 1.15.2.2 jdolecek * l2tp global variable definitions
99 1.15.2.2 jdolecek */
100 1.15.2.2 jdolecek LIST_HEAD(l2tp_sclist, l2tp_softc);
101 1.15.2.2 jdolecek static struct {
102 1.15.2.2 jdolecek struct l2tp_sclist list;
103 1.15.2.2 jdolecek kmutex_t lock;
104 1.15.2.2 jdolecek } l2tp_softcs __cacheline_aligned;
105 1.15.2.2 jdolecek
106 1.15.2.2 jdolecek
107 1.15.2.2 jdolecek #if !defined(L2TP_ID_HASH_SIZE)
108 1.15.2.2 jdolecek #define L2TP_ID_HASH_SIZE 64
109 1.15.2.2 jdolecek #endif
110 1.15.2.2 jdolecek static struct {
111 1.15.2.2 jdolecek kmutex_t lock;
112 1.15.2.2 jdolecek struct pslist_head *lists;
113 1.15.2.2 jdolecek u_long mask;
114 1.15.2.2 jdolecek } l2tp_hash __cacheline_aligned = {
115 1.15.2.2 jdolecek .lists = NULL,
116 1.15.2.2 jdolecek };
117 1.15.2.2 jdolecek
118 1.15.2.2 jdolecek pserialize_t l2tp_psz __read_mostly;
119 1.15.2.2 jdolecek struct psref_class *lv_psref_class __read_mostly;
120 1.15.2.2 jdolecek
121 1.15.2.2 jdolecek static void l2tp_ro_init_pc(void *, void *, struct cpu_info *);
122 1.15.2.2 jdolecek static void l2tp_ro_fini_pc(void *, void *, struct cpu_info *);
123 1.15.2.2 jdolecek
124 1.15.2.2 jdolecek static int l2tp_clone_create(struct if_clone *, int);
125 1.15.2.2 jdolecek static int l2tp_clone_destroy(struct ifnet *);
126 1.15.2.2 jdolecek
127 1.15.2.2 jdolecek struct if_clone l2tp_cloner =
128 1.15.2.2 jdolecek IF_CLONE_INITIALIZER("l2tp", l2tp_clone_create, l2tp_clone_destroy);
129 1.15.2.2 jdolecek
130 1.15.2.2 jdolecek static int l2tp_output(struct ifnet *, struct mbuf *,
131 1.15.2.2 jdolecek const struct sockaddr *, const struct rtentry *);
132 1.15.2.2 jdolecek static void l2tpintr(struct l2tp_variant *);
133 1.15.2.2 jdolecek
134 1.15.2.2 jdolecek static void l2tp_hash_init(void);
135 1.15.2.2 jdolecek static int l2tp_hash_fini(void);
136 1.15.2.2 jdolecek
137 1.15.2.2 jdolecek static void l2tp_start(struct ifnet *);
138 1.15.2.2 jdolecek static int l2tp_transmit(struct ifnet *, struct mbuf *);
139 1.15.2.2 jdolecek
140 1.15.2.2 jdolecek static int l2tp_set_tunnel(struct ifnet *, struct sockaddr *,
141 1.15.2.2 jdolecek struct sockaddr *);
142 1.15.2.2 jdolecek static void l2tp_delete_tunnel(struct ifnet *);
143 1.15.2.2 jdolecek
144 1.15.2.2 jdolecek static int id_hash_func(uint32_t, u_long);
145 1.15.2.2 jdolecek
146 1.15.2.2 jdolecek static void l2tp_variant_update(struct l2tp_softc *, struct l2tp_variant *);
147 1.15.2.2 jdolecek static int l2tp_set_session(struct l2tp_softc *, uint32_t, uint32_t);
148 1.15.2.2 jdolecek static int l2tp_clear_session(struct l2tp_softc *);
149 1.15.2.2 jdolecek static int l2tp_set_cookie(struct l2tp_softc *, uint64_t, u_int, uint64_t, u_int);
150 1.15.2.2 jdolecek static void l2tp_clear_cookie(struct l2tp_softc *);
151 1.15.2.2 jdolecek static void l2tp_set_state(struct l2tp_softc *, int);
152 1.15.2.2 jdolecek static int l2tp_encap_attach(struct l2tp_variant *);
153 1.15.2.2 jdolecek static int l2tp_encap_detach(struct l2tp_variant *);
154 1.15.2.2 jdolecek
155 1.15.2.2 jdolecek #ifndef MAX_L2TP_NEST
156 1.15.2.2 jdolecek /*
157 1.15.2.2 jdolecek * This macro controls the upper limitation on nesting of l2tp tunnels.
158 1.15.2.2 jdolecek * Since, setting a large value to this macro with a careless configuration
159 1.15.2.2 jdolecek * may introduce system crash, we don't allow any nestings by default.
160 1.15.2.2 jdolecek * If you need to configure nested l2tp tunnels, you can define this macro
161 1.15.2.2 jdolecek * in your kernel configuration file. However, if you do so, please be
162 1.15.2.2 jdolecek * careful to configure the tunnels so that it won't make a loop.
163 1.15.2.2 jdolecek */
164 1.15.2.2 jdolecek /*
165 1.15.2.2 jdolecek * XXX
166 1.15.2.2 jdolecek * Currently, if in_l2tp_output recursively calls, it causes locking against
167 1.15.2.2 jdolecek * myself of struct l2tp_ro->lr_lock. So, nested l2tp tunnels is prohibited.
168 1.15.2.2 jdolecek */
169 1.15.2.2 jdolecek #define MAX_L2TP_NEST 0
170 1.15.2.2 jdolecek #endif
171 1.15.2.2 jdolecek
172 1.15.2.2 jdolecek static int max_l2tp_nesting = MAX_L2TP_NEST;
173 1.15.2.2 jdolecek
174 1.15.2.2 jdolecek /* ARGSUSED */
175 1.15.2.2 jdolecek void
176 1.15.2.2 jdolecek l2tpattach(int count)
177 1.15.2.2 jdolecek {
178 1.15.2.2 jdolecek /*
179 1.15.2.2 jdolecek * Nothing to do here, initialization is handled by the
180 1.15.2.2 jdolecek * module initialization code in l2tpinit() below).
181 1.15.2.2 jdolecek */
182 1.15.2.2 jdolecek }
183 1.15.2.2 jdolecek
184 1.15.2.2 jdolecek static void
185 1.15.2.2 jdolecek l2tpinit(void)
186 1.15.2.2 jdolecek {
187 1.15.2.2 jdolecek
188 1.15.2.2 jdolecek mutex_init(&l2tp_softcs.lock, MUTEX_DEFAULT, IPL_NONE);
189 1.15.2.2 jdolecek LIST_INIT(&l2tp_softcs.list);
190 1.15.2.2 jdolecek
191 1.15.2.2 jdolecek mutex_init(&l2tp_hash.lock, MUTEX_DEFAULT, IPL_NONE);
192 1.15.2.2 jdolecek l2tp_psz = pserialize_create();
193 1.15.2.2 jdolecek lv_psref_class = psref_class_create("l2tpvar", IPL_SOFTNET);
194 1.15.2.2 jdolecek if_clone_attach(&l2tp_cloner);
195 1.15.2.2 jdolecek
196 1.15.2.2 jdolecek l2tp_hash_init();
197 1.15.2.2 jdolecek }
198 1.15.2.2 jdolecek
199 1.15.2.2 jdolecek static int
200 1.15.2.2 jdolecek l2tpdetach(void)
201 1.15.2.2 jdolecek {
202 1.15.2.2 jdolecek int error;
203 1.15.2.2 jdolecek
204 1.15.2.2 jdolecek mutex_enter(&l2tp_softcs.lock);
205 1.15.2.2 jdolecek if (!LIST_EMPTY(&l2tp_softcs.list)) {
206 1.15.2.2 jdolecek mutex_exit(&l2tp_softcs.lock);
207 1.15.2.2 jdolecek return EBUSY;
208 1.15.2.2 jdolecek }
209 1.15.2.2 jdolecek mutex_exit(&l2tp_softcs.lock);
210 1.15.2.2 jdolecek
211 1.15.2.2 jdolecek error = l2tp_hash_fini();
212 1.15.2.2 jdolecek if (error)
213 1.15.2.2 jdolecek return error;
214 1.15.2.2 jdolecek
215 1.15.2.2 jdolecek if_clone_detach(&l2tp_cloner);
216 1.15.2.2 jdolecek psref_class_destroy(lv_psref_class);
217 1.15.2.2 jdolecek pserialize_destroy(l2tp_psz);
218 1.15.2.2 jdolecek mutex_destroy(&l2tp_hash.lock);
219 1.15.2.2 jdolecek
220 1.15.2.2 jdolecek mutex_destroy(&l2tp_softcs.lock);
221 1.15.2.2 jdolecek
222 1.15.2.2 jdolecek return error;
223 1.15.2.2 jdolecek }
224 1.15.2.2 jdolecek
225 1.15.2.2 jdolecek static int
226 1.15.2.2 jdolecek l2tp_clone_create(struct if_clone *ifc, int unit)
227 1.15.2.2 jdolecek {
228 1.15.2.2 jdolecek struct l2tp_softc *sc;
229 1.15.2.2 jdolecek struct l2tp_variant *var;
230 1.15.2.2 jdolecek int rv;
231 1.15.2.2 jdolecek
232 1.15.2.2 jdolecek sc = kmem_zalloc(sizeof(struct l2tp_softc), KM_SLEEP);
233 1.15.2.2 jdolecek if_initname(&sc->l2tp_ec.ec_if, ifc->ifc_name, unit);
234 1.15.2.2 jdolecek rv = l2tpattach0(sc);
235 1.15.2.2 jdolecek if (rv != 0) {
236 1.15.2.2 jdolecek kmem_free(sc, sizeof(struct l2tp_softc));
237 1.15.2.2 jdolecek return rv;
238 1.15.2.2 jdolecek }
239 1.15.2.2 jdolecek
240 1.15.2.2 jdolecek var = kmem_zalloc(sizeof(struct l2tp_variant), KM_SLEEP);
241 1.15.2.2 jdolecek var->lv_softc = sc;
242 1.15.2.2 jdolecek var->lv_state = L2TP_STATE_DOWN;
243 1.15.2.2 jdolecek var->lv_use_cookie = L2TP_COOKIE_OFF;
244 1.15.2.2 jdolecek psref_target_init(&var->lv_psref, lv_psref_class);
245 1.15.2.2 jdolecek
246 1.15.2.2 jdolecek sc->l2tp_var = var;
247 1.15.2.2 jdolecek mutex_init(&sc->l2tp_lock, MUTEX_DEFAULT, IPL_NONE);
248 1.15.2.2 jdolecek PSLIST_ENTRY_INIT(sc, l2tp_hash);
249 1.15.2.2 jdolecek
250 1.15.2.2 jdolecek sc->l2tp_ro_percpu = percpu_alloc(sizeof(struct l2tp_ro));
251 1.15.2.2 jdolecek percpu_foreach(sc->l2tp_ro_percpu, l2tp_ro_init_pc, NULL);
252 1.15.2.2 jdolecek
253 1.15.2.2 jdolecek mutex_enter(&l2tp_softcs.lock);
254 1.15.2.2 jdolecek LIST_INSERT_HEAD(&l2tp_softcs.list, sc, l2tp_list);
255 1.15.2.2 jdolecek mutex_exit(&l2tp_softcs.lock);
256 1.15.2.2 jdolecek
257 1.15.2.2 jdolecek return (0);
258 1.15.2.2 jdolecek }
259 1.15.2.2 jdolecek
260 1.15.2.2 jdolecek int
261 1.15.2.2 jdolecek l2tpattach0(struct l2tp_softc *sc)
262 1.15.2.2 jdolecek {
263 1.15.2.2 jdolecek int rv;
264 1.15.2.2 jdolecek
265 1.15.2.2 jdolecek sc->l2tp_ec.ec_if.if_addrlen = 0;
266 1.15.2.2 jdolecek sc->l2tp_ec.ec_if.if_mtu = L2TP_MTU;
267 1.15.2.2 jdolecek sc->l2tp_ec.ec_if.if_flags = IFF_POINTOPOINT|IFF_MULTICAST|IFF_SIMPLEX;
268 1.15.2.2 jdolecek sc->l2tp_ec.ec_if.if_extflags = IFEF_MPSAFE | IFEF_NO_LINK_STATE_CHANGE;
269 1.15.2.2 jdolecek sc->l2tp_ec.ec_if.if_ioctl = l2tp_ioctl;
270 1.15.2.2 jdolecek sc->l2tp_ec.ec_if.if_output = l2tp_output;
271 1.15.2.2 jdolecek sc->l2tp_ec.ec_if.if_type = IFT_L2TP;
272 1.15.2.2 jdolecek sc->l2tp_ec.ec_if.if_dlt = DLT_NULL;
273 1.15.2.2 jdolecek sc->l2tp_ec.ec_if.if_start = l2tp_start;
274 1.15.2.2 jdolecek sc->l2tp_ec.ec_if.if_transmit = l2tp_transmit;
275 1.15.2.2 jdolecek sc->l2tp_ec.ec_if._if_input = ether_input;
276 1.15.2.2 jdolecek IFQ_SET_READY(&sc->l2tp_ec.ec_if.if_snd);
277 1.15.2.2 jdolecek /* XXX
278 1.15.2.2 jdolecek * It may improve performance to use if_initialize()/if_register()
279 1.15.2.2 jdolecek * so that l2tp_input() calls if_input() instead of
280 1.15.2.2 jdolecek * if_percpuq_enqueue(). However, that causes recursive softnet_lock
281 1.15.2.2 jdolecek * when NET_MPSAFE is not set.
282 1.15.2.2 jdolecek */
283 1.15.2.2 jdolecek rv = if_attach(&sc->l2tp_ec.ec_if);
284 1.15.2.2 jdolecek if (rv != 0)
285 1.15.2.2 jdolecek return rv;
286 1.15.2.2 jdolecek if_alloc_sadl(&sc->l2tp_ec.ec_if);
287 1.15.2.2 jdolecek bpf_attach(&sc->l2tp_ec.ec_if, DLT_EN10MB, sizeof(struct ether_header));
288 1.15.2.2 jdolecek
289 1.15.2.2 jdolecek return 0;
290 1.15.2.2 jdolecek }
291 1.15.2.2 jdolecek
292 1.15.2.2 jdolecek void
293 1.15.2.2 jdolecek l2tp_ro_init_pc(void *p, void *arg __unused, struct cpu_info *ci __unused)
294 1.15.2.2 jdolecek {
295 1.15.2.2 jdolecek struct l2tp_ro *lro = p;
296 1.15.2.2 jdolecek
297 1.15.2.2 jdolecek mutex_init(&lro->lr_lock, MUTEX_DEFAULT, IPL_NONE);
298 1.15.2.2 jdolecek }
299 1.15.2.2 jdolecek
300 1.15.2.2 jdolecek void
301 1.15.2.2 jdolecek l2tp_ro_fini_pc(void *p, void *arg __unused, struct cpu_info *ci __unused)
302 1.15.2.2 jdolecek {
303 1.15.2.2 jdolecek struct l2tp_ro *lro = p;
304 1.15.2.2 jdolecek
305 1.15.2.2 jdolecek rtcache_free(&lro->lr_ro);
306 1.15.2.2 jdolecek
307 1.15.2.2 jdolecek mutex_destroy(&lro->lr_lock);
308 1.15.2.2 jdolecek }
309 1.15.2.2 jdolecek
310 1.15.2.2 jdolecek static int
311 1.15.2.2 jdolecek l2tp_clone_destroy(struct ifnet *ifp)
312 1.15.2.2 jdolecek {
313 1.15.2.2 jdolecek struct l2tp_variant *var;
314 1.15.2.2 jdolecek struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
315 1.15.2.2 jdolecek l2tp_ec.ec_if);
316 1.15.2.2 jdolecek
317 1.15.2.2 jdolecek l2tp_clear_session(sc);
318 1.15.2.2 jdolecek l2tp_delete_tunnel(&sc->l2tp_ec.ec_if);
319 1.15.2.2 jdolecek /*
320 1.15.2.2 jdolecek * To avoid for l2tp_transmit() to access sc->l2tp_var after free it.
321 1.15.2.2 jdolecek */
322 1.15.2.2 jdolecek mutex_enter(&sc->l2tp_lock);
323 1.15.2.2 jdolecek var = sc->l2tp_var;
324 1.15.2.2 jdolecek l2tp_variant_update(sc, NULL);
325 1.15.2.2 jdolecek mutex_exit(&sc->l2tp_lock);
326 1.15.2.2 jdolecek
327 1.15.2.2 jdolecek mutex_enter(&l2tp_softcs.lock);
328 1.15.2.2 jdolecek LIST_REMOVE(sc, l2tp_list);
329 1.15.2.2 jdolecek mutex_exit(&l2tp_softcs.lock);
330 1.15.2.2 jdolecek
331 1.15.2.2 jdolecek bpf_detach(ifp);
332 1.15.2.2 jdolecek
333 1.15.2.2 jdolecek if_detach(ifp);
334 1.15.2.2 jdolecek
335 1.15.2.2 jdolecek percpu_foreach(sc->l2tp_ro_percpu, l2tp_ro_fini_pc, NULL);
336 1.15.2.2 jdolecek percpu_free(sc->l2tp_ro_percpu, sizeof(struct l2tp_ro));
337 1.15.2.2 jdolecek
338 1.15.2.2 jdolecek kmem_free(var, sizeof(struct l2tp_variant));
339 1.15.2.2 jdolecek mutex_destroy(&sc->l2tp_lock);
340 1.15.2.2 jdolecek kmem_free(sc, sizeof(struct l2tp_softc));
341 1.15.2.2 jdolecek
342 1.15.2.2 jdolecek return 0;
343 1.15.2.2 jdolecek }
344 1.15.2.2 jdolecek
345 1.15.2.2 jdolecek static int
346 1.15.2.2 jdolecek l2tp_output(struct ifnet *ifp, struct mbuf *m, const struct sockaddr *dst,
347 1.15.2.2 jdolecek const struct rtentry *rt)
348 1.15.2.2 jdolecek {
349 1.15.2.2 jdolecek struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
350 1.15.2.2 jdolecek l2tp_ec.ec_if);
351 1.15.2.2 jdolecek struct l2tp_variant *var;
352 1.15.2.2 jdolecek struct psref psref;
353 1.15.2.2 jdolecek int error = 0;
354 1.15.2.2 jdolecek
355 1.15.2.2 jdolecek var = l2tp_getref_variant(sc, &psref);
356 1.15.2.2 jdolecek if (var == NULL) {
357 1.15.2.2 jdolecek m_freem(m);
358 1.15.2.2 jdolecek return ENETDOWN;
359 1.15.2.2 jdolecek }
360 1.15.2.2 jdolecek
361 1.15.2.2 jdolecek IFQ_CLASSIFY(&ifp->if_snd, m, dst->sa_family);
362 1.15.2.2 jdolecek
363 1.15.2.2 jdolecek m->m_flags &= ~(M_BCAST|M_MCAST);
364 1.15.2.2 jdolecek
365 1.15.2.2 jdolecek if ((ifp->if_flags & IFF_UP) == 0) {
366 1.15.2.2 jdolecek m_freem(m);
367 1.15.2.2 jdolecek error = ENETDOWN;
368 1.15.2.2 jdolecek goto end;
369 1.15.2.2 jdolecek }
370 1.15.2.2 jdolecek
371 1.15.2.2 jdolecek if (var->lv_psrc == NULL || var->lv_pdst == NULL) {
372 1.15.2.2 jdolecek m_freem(m);
373 1.15.2.2 jdolecek error = ENETDOWN;
374 1.15.2.2 jdolecek goto end;
375 1.15.2.2 jdolecek }
376 1.15.2.2 jdolecek
377 1.15.2.2 jdolecek /* XXX should we check if our outer source is legal? */
378 1.15.2.2 jdolecek
379 1.15.2.2 jdolecek /* use DLT_NULL encapsulation here to pass inner af type */
380 1.15.2.2 jdolecek M_PREPEND(m, sizeof(int), M_DONTWAIT);
381 1.15.2.2 jdolecek if (!m) {
382 1.15.2.2 jdolecek error = ENOBUFS;
383 1.15.2.2 jdolecek goto end;
384 1.15.2.2 jdolecek }
385 1.15.2.2 jdolecek *mtod(m, int *) = dst->sa_family;
386 1.15.2.2 jdolecek
387 1.15.2.2 jdolecek IFQ_ENQUEUE(&ifp->if_snd, m, error);
388 1.15.2.2 jdolecek if (error)
389 1.15.2.2 jdolecek goto end;
390 1.15.2.2 jdolecek
391 1.15.2.2 jdolecek /*
392 1.15.2.2 jdolecek * direct call to avoid infinite loop at l2tpintr()
393 1.15.2.2 jdolecek */
394 1.15.2.2 jdolecek l2tpintr(var);
395 1.15.2.2 jdolecek
396 1.15.2.2 jdolecek error = 0;
397 1.15.2.2 jdolecek
398 1.15.2.2 jdolecek end:
399 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
400 1.15.2.2 jdolecek if (error)
401 1.15.2.2 jdolecek ifp->if_oerrors++;
402 1.15.2.2 jdolecek
403 1.15.2.2 jdolecek return error;
404 1.15.2.2 jdolecek }
405 1.15.2.2 jdolecek
406 1.15.2.2 jdolecek static void
407 1.15.2.2 jdolecek l2tpintr(struct l2tp_variant *var)
408 1.15.2.2 jdolecek {
409 1.15.2.2 jdolecek struct l2tp_softc *sc;
410 1.15.2.2 jdolecek struct ifnet *ifp;
411 1.15.2.2 jdolecek struct mbuf *m;
412 1.15.2.2 jdolecek int error;
413 1.15.2.2 jdolecek
414 1.15.2.2 jdolecek KASSERT(psref_held(&var->lv_psref, lv_psref_class));
415 1.15.2.2 jdolecek
416 1.15.2.2 jdolecek sc = var->lv_softc;
417 1.15.2.2 jdolecek ifp = &sc->l2tp_ec.ec_if;
418 1.15.2.2 jdolecek
419 1.15.2.2 jdolecek /* output processing */
420 1.15.2.2 jdolecek if (var->lv_my_sess_id == 0 || var->lv_peer_sess_id == 0) {
421 1.15.2.2 jdolecek IFQ_PURGE(&ifp->if_snd);
422 1.15.2.2 jdolecek return;
423 1.15.2.2 jdolecek }
424 1.15.2.2 jdolecek
425 1.15.2.2 jdolecek for (;;) {
426 1.15.2.2 jdolecek IFQ_DEQUEUE(&ifp->if_snd, m);
427 1.15.2.2 jdolecek if (m == NULL)
428 1.15.2.2 jdolecek break;
429 1.15.2.2 jdolecek m->m_flags &= ~(M_BCAST|M_MCAST);
430 1.15.2.2 jdolecek bpf_mtap(ifp, m);
431 1.15.2.2 jdolecek switch (var->lv_psrc->sa_family) {
432 1.15.2.2 jdolecek #ifdef INET
433 1.15.2.2 jdolecek case AF_INET:
434 1.15.2.2 jdolecek error = in_l2tp_output(var, m);
435 1.15.2.2 jdolecek break;
436 1.15.2.2 jdolecek #endif
437 1.15.2.2 jdolecek #ifdef INET6
438 1.15.2.2 jdolecek case AF_INET6:
439 1.15.2.2 jdolecek error = in6_l2tp_output(var, m);
440 1.15.2.2 jdolecek break;
441 1.15.2.2 jdolecek #endif
442 1.15.2.2 jdolecek default:
443 1.15.2.2 jdolecek m_freem(m);
444 1.15.2.2 jdolecek error = ENETDOWN;
445 1.15.2.2 jdolecek break;
446 1.15.2.2 jdolecek }
447 1.15.2.2 jdolecek
448 1.15.2.2 jdolecek if (error)
449 1.15.2.2 jdolecek ifp->if_oerrors++;
450 1.15.2.2 jdolecek else {
451 1.15.2.2 jdolecek ifp->if_opackets++;
452 1.15.2.2 jdolecek /*
453 1.15.2.2 jdolecek * obytes is incremented at ether_output() or
454 1.15.2.2 jdolecek * bridge_enqueue().
455 1.15.2.2 jdolecek */
456 1.15.2.2 jdolecek }
457 1.15.2.2 jdolecek }
458 1.15.2.2 jdolecek
459 1.15.2.2 jdolecek }
460 1.15.2.2 jdolecek
461 1.15.2.2 jdolecek void
462 1.15.2.2 jdolecek l2tp_input(struct mbuf *m, struct ifnet *ifp)
463 1.15.2.2 jdolecek {
464 1.15.2.2 jdolecek
465 1.15.2.2 jdolecek KASSERT(ifp != NULL);
466 1.15.2.2 jdolecek
467 1.15.2.2 jdolecek if (0 == (mtod(m, u_long) & 0x03)) {
468 1.15.2.2 jdolecek /* copy and align head of payload */
469 1.15.2.2 jdolecek struct mbuf *m_head;
470 1.15.2.2 jdolecek int copy_length;
471 1.15.2.2 jdolecek
472 1.15.2.2 jdolecek #define L2TP_COPY_LENGTH 60
473 1.15.2.2 jdolecek #define L2TP_LINK_HDR_ROOM (MHLEN - L2TP_COPY_LENGTH - 4/*round4(2)*/)
474 1.15.2.2 jdolecek
475 1.15.2.2 jdolecek if (m->m_pkthdr.len < L2TP_COPY_LENGTH) {
476 1.15.2.2 jdolecek copy_length = m->m_pkthdr.len;
477 1.15.2.2 jdolecek } else {
478 1.15.2.2 jdolecek copy_length = L2TP_COPY_LENGTH;
479 1.15.2.2 jdolecek }
480 1.15.2.2 jdolecek
481 1.15.2.2 jdolecek if (m->m_len < copy_length) {
482 1.15.2.2 jdolecek m = m_pullup(m, copy_length);
483 1.15.2.2 jdolecek if (m == NULL)
484 1.15.2.2 jdolecek return;
485 1.15.2.2 jdolecek }
486 1.15.2.2 jdolecek
487 1.15.2.2 jdolecek MGETHDR(m_head, M_DONTWAIT, MT_HEADER);
488 1.15.2.2 jdolecek if (m_head == NULL) {
489 1.15.2.2 jdolecek m_freem(m);
490 1.15.2.2 jdolecek return;
491 1.15.2.2 jdolecek }
492 1.15.2.2 jdolecek M_COPY_PKTHDR(m_head, m);
493 1.15.2.2 jdolecek
494 1.15.2.2 jdolecek m_head->m_data += 2 /* align */ + L2TP_LINK_HDR_ROOM;
495 1.15.2.2 jdolecek memcpy(m_head->m_data, m->m_data, copy_length);
496 1.15.2.2 jdolecek m_head->m_len = copy_length;
497 1.15.2.2 jdolecek m->m_data += copy_length;
498 1.15.2.2 jdolecek m->m_len -= copy_length;
499 1.15.2.2 jdolecek
500 1.15.2.2 jdolecek /* construct chain */
501 1.15.2.2 jdolecek if (m->m_len == 0) {
502 1.15.2.2 jdolecek m_head->m_next = m_free(m); /* not m_freem */
503 1.15.2.2 jdolecek } else {
504 1.15.2.2 jdolecek /*
505 1.15.2.2 jdolecek * copyed mtag in previous call M_COPY_PKTHDR
506 1.15.2.2 jdolecek * but don't delete mtag in case cutt of M_PKTHDR flag
507 1.15.2.2 jdolecek */
508 1.15.2.2 jdolecek m_tag_delete_chain(m, NULL);
509 1.15.2.2 jdolecek m->m_flags &= ~M_PKTHDR;
510 1.15.2.2 jdolecek m_head->m_next = m;
511 1.15.2.2 jdolecek }
512 1.15.2.2 jdolecek
513 1.15.2.2 jdolecek /* override m */
514 1.15.2.2 jdolecek m = m_head;
515 1.15.2.2 jdolecek }
516 1.15.2.2 jdolecek
517 1.15.2.2 jdolecek m_set_rcvif(m, ifp);
518 1.15.2.2 jdolecek
519 1.15.2.2 jdolecek /*
520 1.15.2.2 jdolecek * bpf_mtap() and ifp->if_ipackets++ is done in if_input()
521 1.15.2.2 jdolecek *
522 1.15.2.2 jdolecek * obytes is incremented at ether_output() or bridge_enqueue().
523 1.15.2.2 jdolecek */
524 1.15.2.2 jdolecek if_percpuq_enqueue(ifp->if_percpuq, m);
525 1.15.2.2 jdolecek }
526 1.15.2.2 jdolecek
527 1.15.2.2 jdolecek void
528 1.15.2.2 jdolecek l2tp_start(struct ifnet *ifp)
529 1.15.2.2 jdolecek {
530 1.15.2.2 jdolecek struct psref psref;
531 1.15.2.2 jdolecek struct l2tp_variant *var;
532 1.15.2.2 jdolecek struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
533 1.15.2.2 jdolecek l2tp_ec.ec_if);
534 1.15.2.2 jdolecek
535 1.15.2.2 jdolecek var = l2tp_getref_variant(sc, &psref);
536 1.15.2.2 jdolecek if (var == NULL)
537 1.15.2.2 jdolecek return;
538 1.15.2.2 jdolecek
539 1.15.2.2 jdolecek if (var->lv_psrc == NULL || var->lv_pdst == NULL)
540 1.15.2.2 jdolecek return;
541 1.15.2.2 jdolecek
542 1.15.2.2 jdolecek l2tpintr(var);
543 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
544 1.15.2.2 jdolecek }
545 1.15.2.2 jdolecek
546 1.15.2.2 jdolecek int
547 1.15.2.2 jdolecek l2tp_transmit(struct ifnet *ifp, struct mbuf *m)
548 1.15.2.2 jdolecek {
549 1.15.2.2 jdolecek int error;
550 1.15.2.2 jdolecek struct psref psref;
551 1.15.2.2 jdolecek struct l2tp_variant *var;
552 1.15.2.2 jdolecek struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
553 1.15.2.2 jdolecek l2tp_ec.ec_if);
554 1.15.2.2 jdolecek
555 1.15.2.2 jdolecek var = l2tp_getref_variant(sc, &psref);
556 1.15.2.2 jdolecek if (var == NULL) {
557 1.15.2.2 jdolecek m_freem(m);
558 1.15.2.2 jdolecek return ENETDOWN;
559 1.15.2.2 jdolecek }
560 1.15.2.2 jdolecek
561 1.15.2.2 jdolecek if (var->lv_psrc == NULL || var->lv_pdst == NULL) {
562 1.15.2.2 jdolecek m_freem(m);
563 1.15.2.2 jdolecek error = ENETDOWN;
564 1.15.2.2 jdolecek goto out;
565 1.15.2.2 jdolecek }
566 1.15.2.2 jdolecek
567 1.15.2.2 jdolecek m->m_flags &= ~(M_BCAST|M_MCAST);
568 1.15.2.2 jdolecek bpf_mtap(ifp, m);
569 1.15.2.2 jdolecek switch (var->lv_psrc->sa_family) {
570 1.15.2.2 jdolecek #ifdef INET
571 1.15.2.2 jdolecek case AF_INET:
572 1.15.2.2 jdolecek error = in_l2tp_output(var, m);
573 1.15.2.2 jdolecek break;
574 1.15.2.2 jdolecek #endif
575 1.15.2.2 jdolecek #ifdef INET6
576 1.15.2.2 jdolecek case AF_INET6:
577 1.15.2.2 jdolecek error = in6_l2tp_output(var, m);
578 1.15.2.2 jdolecek break;
579 1.15.2.2 jdolecek #endif
580 1.15.2.2 jdolecek default:
581 1.15.2.2 jdolecek m_freem(m);
582 1.15.2.2 jdolecek error = ENETDOWN;
583 1.15.2.2 jdolecek break;
584 1.15.2.2 jdolecek }
585 1.15.2.2 jdolecek
586 1.15.2.2 jdolecek if (error)
587 1.15.2.2 jdolecek ifp->if_oerrors++;
588 1.15.2.2 jdolecek else {
589 1.15.2.2 jdolecek ifp->if_opackets++;
590 1.15.2.2 jdolecek /*
591 1.15.2.2 jdolecek * obytes is incremented at ether_output() or bridge_enqueue().
592 1.15.2.2 jdolecek */
593 1.15.2.2 jdolecek }
594 1.15.2.2 jdolecek
595 1.15.2.2 jdolecek out:
596 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
597 1.15.2.2 jdolecek return error;
598 1.15.2.2 jdolecek }
599 1.15.2.2 jdolecek
600 1.15.2.2 jdolecek /* XXX how should we handle IPv6 scope on SIOC[GS]IFPHYADDR? */
601 1.15.2.2 jdolecek int
602 1.15.2.2 jdolecek l2tp_ioctl(struct ifnet *ifp, u_long cmd, void *data)
603 1.15.2.2 jdolecek {
604 1.15.2.2 jdolecek struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
605 1.15.2.2 jdolecek l2tp_ec.ec_if);
606 1.15.2.2 jdolecek struct l2tp_variant *var, *var_tmp;
607 1.15.2.2 jdolecek struct ifreq *ifr = data;
608 1.15.2.2 jdolecek int error = 0, size;
609 1.15.2.2 jdolecek struct sockaddr *dst, *src;
610 1.15.2.2 jdolecek struct l2tp_req l2tpr;
611 1.15.2.2 jdolecek u_long mtu;
612 1.15.2.2 jdolecek int bound;
613 1.15.2.2 jdolecek struct psref psref;
614 1.15.2.2 jdolecek
615 1.15.2.2 jdolecek switch (cmd) {
616 1.15.2.2 jdolecek case SIOCSIFADDR:
617 1.15.2.2 jdolecek ifp->if_flags |= IFF_UP;
618 1.15.2.2 jdolecek break;
619 1.15.2.2 jdolecek
620 1.15.2.2 jdolecek case SIOCSIFDSTADDR:
621 1.15.2.2 jdolecek break;
622 1.15.2.2 jdolecek
623 1.15.2.2 jdolecek case SIOCADDMULTI:
624 1.15.2.2 jdolecek case SIOCDELMULTI:
625 1.15.2.2 jdolecek switch (ifr->ifr_addr.sa_family) {
626 1.15.2.2 jdolecek #ifdef INET
627 1.15.2.2 jdolecek case AF_INET: /* IP supports Multicast */
628 1.15.2.2 jdolecek break;
629 1.15.2.2 jdolecek #endif /* INET */
630 1.15.2.2 jdolecek #ifdef INET6
631 1.15.2.2 jdolecek case AF_INET6: /* IP6 supports Multicast */
632 1.15.2.2 jdolecek break;
633 1.15.2.2 jdolecek #endif /* INET6 */
634 1.15.2.2 jdolecek default: /* Other protocols doesn't support Multicast */
635 1.15.2.2 jdolecek error = EAFNOSUPPORT;
636 1.15.2.2 jdolecek break;
637 1.15.2.2 jdolecek }
638 1.15.2.2 jdolecek break;
639 1.15.2.2 jdolecek
640 1.15.2.2 jdolecek case SIOCSIFMTU:
641 1.15.2.2 jdolecek mtu = ifr->ifr_mtu;
642 1.15.2.2 jdolecek if (mtu < L2TP_MTU_MIN || mtu > L2TP_MTU_MAX)
643 1.15.2.2 jdolecek return (EINVAL);
644 1.15.2.2 jdolecek ifp->if_mtu = mtu;
645 1.15.2.2 jdolecek break;
646 1.15.2.2 jdolecek
647 1.15.2.2 jdolecek #ifdef INET
648 1.15.2.2 jdolecek case SIOCSIFPHYADDR:
649 1.15.2.2 jdolecek src = (struct sockaddr *)
650 1.15.2.2 jdolecek &(((struct in_aliasreq *)data)->ifra_addr);
651 1.15.2.2 jdolecek dst = (struct sockaddr *)
652 1.15.2.2 jdolecek &(((struct in_aliasreq *)data)->ifra_dstaddr);
653 1.15.2.2 jdolecek if (src->sa_family != AF_INET || dst->sa_family != AF_INET)
654 1.15.2.2 jdolecek return EAFNOSUPPORT;
655 1.15.2.2 jdolecek else if (src->sa_len != sizeof(struct sockaddr_in)
656 1.15.2.2 jdolecek || dst->sa_len != sizeof(struct sockaddr_in))
657 1.15.2.2 jdolecek return EINVAL;
658 1.15.2.2 jdolecek
659 1.15.2.2 jdolecek error = l2tp_set_tunnel(&sc->l2tp_ec.ec_if, src, dst);
660 1.15.2.2 jdolecek break;
661 1.15.2.2 jdolecek
662 1.15.2.2 jdolecek #endif /* INET */
663 1.15.2.2 jdolecek #ifdef INET6
664 1.15.2.2 jdolecek case SIOCSIFPHYADDR_IN6:
665 1.15.2.2 jdolecek src = (struct sockaddr *)
666 1.15.2.2 jdolecek &(((struct in6_aliasreq *)data)->ifra_addr);
667 1.15.2.2 jdolecek dst = (struct sockaddr *)
668 1.15.2.2 jdolecek &(((struct in6_aliasreq *)data)->ifra_dstaddr);
669 1.15.2.2 jdolecek if (src->sa_family != AF_INET6 || dst->sa_family != AF_INET6)
670 1.15.2.2 jdolecek return EAFNOSUPPORT;
671 1.15.2.2 jdolecek else if (src->sa_len != sizeof(struct sockaddr_in6)
672 1.15.2.2 jdolecek || dst->sa_len != sizeof(struct sockaddr_in6))
673 1.15.2.2 jdolecek return EINVAL;
674 1.15.2.2 jdolecek
675 1.15.2.2 jdolecek error = l2tp_set_tunnel(&sc->l2tp_ec.ec_if, src, dst);
676 1.15.2.2 jdolecek break;
677 1.15.2.2 jdolecek
678 1.15.2.2 jdolecek #endif /* INET6 */
679 1.15.2.2 jdolecek case SIOCSLIFPHYADDR:
680 1.15.2.2 jdolecek src = (struct sockaddr *)
681 1.15.2.2 jdolecek &(((struct if_laddrreq *)data)->addr);
682 1.15.2.2 jdolecek dst = (struct sockaddr *)
683 1.15.2.2 jdolecek &(((struct if_laddrreq *)data)->dstaddr);
684 1.15.2.2 jdolecek if (src->sa_family != dst->sa_family)
685 1.15.2.2 jdolecek return EINVAL;
686 1.15.2.2 jdolecek else if (src->sa_family == AF_INET
687 1.15.2.2 jdolecek && src->sa_len != sizeof(struct sockaddr_in))
688 1.15.2.2 jdolecek return EINVAL;
689 1.15.2.2 jdolecek else if (src->sa_family == AF_INET6
690 1.15.2.2 jdolecek && src->sa_len != sizeof(struct sockaddr_in6))
691 1.15.2.2 jdolecek return EINVAL;
692 1.15.2.2 jdolecek else if (dst->sa_family == AF_INET
693 1.15.2.2 jdolecek && dst->sa_len != sizeof(struct sockaddr_in))
694 1.15.2.2 jdolecek return EINVAL;
695 1.15.2.2 jdolecek else if (dst->sa_family == AF_INET6
696 1.15.2.2 jdolecek && dst->sa_len != sizeof(struct sockaddr_in6))
697 1.15.2.2 jdolecek return EINVAL;
698 1.15.2.2 jdolecek
699 1.15.2.2 jdolecek error = l2tp_set_tunnel(&sc->l2tp_ec.ec_if, src, dst);
700 1.15.2.2 jdolecek break;
701 1.15.2.2 jdolecek
702 1.15.2.2 jdolecek case SIOCDIFPHYADDR:
703 1.15.2.2 jdolecek l2tp_delete_tunnel(&sc->l2tp_ec.ec_if);
704 1.15.2.2 jdolecek break;
705 1.15.2.2 jdolecek
706 1.15.2.2 jdolecek case SIOCGIFPSRCADDR:
707 1.15.2.2 jdolecek #ifdef INET6
708 1.15.2.2 jdolecek case SIOCGIFPSRCADDR_IN6:
709 1.15.2.2 jdolecek #endif /* INET6 */
710 1.15.2.2 jdolecek bound = curlwp_bind();
711 1.15.2.2 jdolecek var = l2tp_getref_variant(sc, &psref);
712 1.15.2.2 jdolecek if (var == NULL) {
713 1.15.2.2 jdolecek curlwp_bindx(bound);
714 1.15.2.2 jdolecek error = EADDRNOTAVAIL;
715 1.15.2.2 jdolecek goto bad;
716 1.15.2.2 jdolecek }
717 1.15.2.2 jdolecek if (var->lv_psrc == NULL) {
718 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
719 1.15.2.2 jdolecek curlwp_bindx(bound);
720 1.15.2.2 jdolecek error = EADDRNOTAVAIL;
721 1.15.2.2 jdolecek goto bad;
722 1.15.2.2 jdolecek }
723 1.15.2.2 jdolecek src = var->lv_psrc;
724 1.15.2.2 jdolecek switch (cmd) {
725 1.15.2.2 jdolecek #ifdef INET
726 1.15.2.2 jdolecek case SIOCGIFPSRCADDR:
727 1.15.2.2 jdolecek dst = &ifr->ifr_addr;
728 1.15.2.2 jdolecek size = sizeof(ifr->ifr_addr);
729 1.15.2.2 jdolecek break;
730 1.15.2.2 jdolecek #endif /* INET */
731 1.15.2.2 jdolecek #ifdef INET6
732 1.15.2.2 jdolecek case SIOCGIFPSRCADDR_IN6:
733 1.15.2.2 jdolecek dst = (struct sockaddr *)
734 1.15.2.2 jdolecek &(((struct in6_ifreq *)data)->ifr_addr);
735 1.15.2.2 jdolecek size = sizeof(((struct in6_ifreq *)data)->ifr_addr);
736 1.15.2.2 jdolecek break;
737 1.15.2.2 jdolecek #endif /* INET6 */
738 1.15.2.2 jdolecek default:
739 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
740 1.15.2.2 jdolecek curlwp_bindx(bound);
741 1.15.2.2 jdolecek error = EADDRNOTAVAIL;
742 1.15.2.2 jdolecek goto bad;
743 1.15.2.2 jdolecek }
744 1.15.2.2 jdolecek if (src->sa_len > size) {
745 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
746 1.15.2.2 jdolecek curlwp_bindx(bound);
747 1.15.2.2 jdolecek return EINVAL;
748 1.15.2.2 jdolecek }
749 1.15.2.2 jdolecek sockaddr_copy(dst, src->sa_len, src);
750 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
751 1.15.2.2 jdolecek curlwp_bindx(bound);
752 1.15.2.2 jdolecek break;
753 1.15.2.2 jdolecek
754 1.15.2.2 jdolecek case SIOCGIFPDSTADDR:
755 1.15.2.2 jdolecek #ifdef INET6
756 1.15.2.2 jdolecek case SIOCGIFPDSTADDR_IN6:
757 1.15.2.2 jdolecek #endif /* INET6 */
758 1.15.2.2 jdolecek bound = curlwp_bind();
759 1.15.2.2 jdolecek var = l2tp_getref_variant(sc, &psref);
760 1.15.2.2 jdolecek if (var == NULL) {
761 1.15.2.2 jdolecek curlwp_bindx(bound);
762 1.15.2.2 jdolecek error = EADDRNOTAVAIL;
763 1.15.2.2 jdolecek goto bad;
764 1.15.2.2 jdolecek }
765 1.15.2.2 jdolecek if (var->lv_pdst == NULL) {
766 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
767 1.15.2.2 jdolecek curlwp_bindx(bound);
768 1.15.2.2 jdolecek error = EADDRNOTAVAIL;
769 1.15.2.2 jdolecek goto bad;
770 1.15.2.2 jdolecek }
771 1.15.2.2 jdolecek src = var->lv_pdst;
772 1.15.2.2 jdolecek switch (cmd) {
773 1.15.2.2 jdolecek #ifdef INET
774 1.15.2.2 jdolecek case SIOCGIFPDSTADDR:
775 1.15.2.2 jdolecek dst = &ifr->ifr_addr;
776 1.15.2.2 jdolecek size = sizeof(ifr->ifr_addr);
777 1.15.2.2 jdolecek break;
778 1.15.2.2 jdolecek #endif /* INET */
779 1.15.2.2 jdolecek #ifdef INET6
780 1.15.2.2 jdolecek case SIOCGIFPDSTADDR_IN6:
781 1.15.2.2 jdolecek dst = (struct sockaddr *)
782 1.15.2.2 jdolecek &(((struct in6_ifreq *)data)->ifr_addr);
783 1.15.2.2 jdolecek size = sizeof(((struct in6_ifreq *)data)->ifr_addr);
784 1.15.2.2 jdolecek break;
785 1.15.2.2 jdolecek #endif /* INET6 */
786 1.15.2.2 jdolecek default:
787 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
788 1.15.2.2 jdolecek curlwp_bindx(bound);
789 1.15.2.2 jdolecek error = EADDRNOTAVAIL;
790 1.15.2.2 jdolecek goto bad;
791 1.15.2.2 jdolecek }
792 1.15.2.2 jdolecek if (src->sa_len > size) {
793 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
794 1.15.2.2 jdolecek curlwp_bindx(bound);
795 1.15.2.2 jdolecek return EINVAL;
796 1.15.2.2 jdolecek }
797 1.15.2.2 jdolecek sockaddr_copy(dst, src->sa_len, src);
798 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
799 1.15.2.2 jdolecek curlwp_bindx(bound);
800 1.15.2.2 jdolecek break;
801 1.15.2.2 jdolecek
802 1.15.2.2 jdolecek case SIOCGLIFPHYADDR:
803 1.15.2.2 jdolecek bound = curlwp_bind();
804 1.15.2.2 jdolecek var = l2tp_getref_variant(sc, &psref);
805 1.15.2.2 jdolecek if (var == NULL) {
806 1.15.2.2 jdolecek curlwp_bindx(bound);
807 1.15.2.2 jdolecek error = EADDRNOTAVAIL;
808 1.15.2.2 jdolecek goto bad;
809 1.15.2.2 jdolecek }
810 1.15.2.2 jdolecek if (var->lv_psrc == NULL || var->lv_pdst == NULL) {
811 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
812 1.15.2.2 jdolecek curlwp_bindx(bound);
813 1.15.2.2 jdolecek error = EADDRNOTAVAIL;
814 1.15.2.2 jdolecek goto bad;
815 1.15.2.2 jdolecek }
816 1.15.2.2 jdolecek
817 1.15.2.2 jdolecek /* copy src */
818 1.15.2.2 jdolecek src = var->lv_psrc;
819 1.15.2.2 jdolecek dst = (struct sockaddr *)
820 1.15.2.2 jdolecek &(((struct if_laddrreq *)data)->addr);
821 1.15.2.2 jdolecek size = sizeof(((struct if_laddrreq *)data)->addr);
822 1.15.2.2 jdolecek if (src->sa_len > size) {
823 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
824 1.15.2.2 jdolecek curlwp_bindx(bound);
825 1.15.2.2 jdolecek return EINVAL;
826 1.15.2.2 jdolecek }
827 1.15.2.2 jdolecek sockaddr_copy(dst, src->sa_len, src);
828 1.15.2.2 jdolecek
829 1.15.2.2 jdolecek /* copy dst */
830 1.15.2.2 jdolecek src = var->lv_pdst;
831 1.15.2.2 jdolecek dst = (struct sockaddr *)
832 1.15.2.2 jdolecek &(((struct if_laddrreq *)data)->dstaddr);
833 1.15.2.2 jdolecek size = sizeof(((struct if_laddrreq *)data)->dstaddr);
834 1.15.2.2 jdolecek if (src->sa_len > size) {
835 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
836 1.15.2.2 jdolecek curlwp_bindx(bound);
837 1.15.2.2 jdolecek return EINVAL;
838 1.15.2.2 jdolecek }
839 1.15.2.2 jdolecek sockaddr_copy(dst, src->sa_len, src);
840 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
841 1.15.2.2 jdolecek curlwp_bindx(bound);
842 1.15.2.2 jdolecek break;
843 1.15.2.2 jdolecek
844 1.15.2.2 jdolecek case SIOCSL2TPSESSION:
845 1.15.2.2 jdolecek if ((error = copyin(ifr->ifr_data, &l2tpr, sizeof(l2tpr))) != 0)
846 1.15.2.2 jdolecek break;
847 1.15.2.2 jdolecek
848 1.15.2.2 jdolecek /* session id must not zero */
849 1.15.2.2 jdolecek if (l2tpr.my_sess_id == 0 || l2tpr.peer_sess_id == 0)
850 1.15.2.2 jdolecek return EINVAL;
851 1.15.2.2 jdolecek
852 1.15.2.2 jdolecek bound = curlwp_bind();
853 1.15.2.2 jdolecek var_tmp = l2tp_lookup_session_ref(l2tpr.my_sess_id, &psref);
854 1.15.2.2 jdolecek if (var_tmp != NULL) {
855 1.15.2.2 jdolecek /* duplicate session id */
856 1.15.2.2 jdolecek log(LOG_WARNING, "%s: duplicate session id %" PRIu32 " of %s\n",
857 1.15.2.2 jdolecek sc->l2tp_ec.ec_if.if_xname, l2tpr.my_sess_id,
858 1.15.2.2 jdolecek var_tmp->lv_softc->l2tp_ec.ec_if.if_xname);
859 1.15.2.2 jdolecek psref_release(&psref, &var_tmp->lv_psref,
860 1.15.2.2 jdolecek lv_psref_class);
861 1.15.2.2 jdolecek curlwp_bindx(bound);
862 1.15.2.2 jdolecek return EINVAL;
863 1.15.2.2 jdolecek }
864 1.15.2.2 jdolecek curlwp_bindx(bound);
865 1.15.2.2 jdolecek
866 1.15.2.2 jdolecek error = l2tp_set_session(sc, l2tpr.my_sess_id, l2tpr.peer_sess_id);
867 1.15.2.2 jdolecek break;
868 1.15.2.2 jdolecek case SIOCDL2TPSESSION:
869 1.15.2.2 jdolecek l2tp_clear_session(sc);
870 1.15.2.2 jdolecek break;
871 1.15.2.2 jdolecek case SIOCSL2TPCOOKIE:
872 1.15.2.2 jdolecek if ((error = copyin(ifr->ifr_data, &l2tpr, sizeof(l2tpr))) != 0)
873 1.15.2.2 jdolecek break;
874 1.15.2.2 jdolecek
875 1.15.2.2 jdolecek error = l2tp_set_cookie(sc, l2tpr.my_cookie, l2tpr.my_cookie_len,
876 1.15.2.2 jdolecek l2tpr.peer_cookie, l2tpr.peer_cookie_len);
877 1.15.2.2 jdolecek break;
878 1.15.2.2 jdolecek case SIOCDL2TPCOOKIE:
879 1.15.2.2 jdolecek l2tp_clear_cookie(sc);
880 1.15.2.2 jdolecek break;
881 1.15.2.2 jdolecek case SIOCSL2TPSTATE:
882 1.15.2.2 jdolecek if ((error = copyin(ifr->ifr_data, &l2tpr, sizeof(l2tpr))) != 0)
883 1.15.2.2 jdolecek break;
884 1.15.2.2 jdolecek
885 1.15.2.2 jdolecek l2tp_set_state(sc, l2tpr.state);
886 1.15.2.2 jdolecek break;
887 1.15.2.2 jdolecek case SIOCGL2TP:
888 1.15.2.2 jdolecek /* get L2TPV3 session info */
889 1.15.2.2 jdolecek memset(&l2tpr, 0, sizeof(l2tpr));
890 1.15.2.2 jdolecek
891 1.15.2.2 jdolecek bound = curlwp_bind();
892 1.15.2.2 jdolecek var = l2tp_getref_variant(sc, &psref);
893 1.15.2.2 jdolecek if (var == NULL) {
894 1.15.2.2 jdolecek curlwp_bindx(bound);
895 1.15.2.2 jdolecek error = EADDRNOTAVAIL;
896 1.15.2.2 jdolecek goto bad;
897 1.15.2.2 jdolecek }
898 1.15.2.2 jdolecek
899 1.15.2.2 jdolecek l2tpr.state = var->lv_state;
900 1.15.2.2 jdolecek l2tpr.my_sess_id = var->lv_my_sess_id;
901 1.15.2.2 jdolecek l2tpr.peer_sess_id = var->lv_peer_sess_id;
902 1.15.2.2 jdolecek l2tpr.my_cookie = var->lv_my_cookie;
903 1.15.2.2 jdolecek l2tpr.my_cookie_len = var->lv_my_cookie_len;
904 1.15.2.2 jdolecek l2tpr.peer_cookie = var->lv_peer_cookie;
905 1.15.2.2 jdolecek l2tpr.peer_cookie_len = var->lv_peer_cookie_len;
906 1.15.2.2 jdolecek l2tp_putref_variant(var, &psref);
907 1.15.2.2 jdolecek curlwp_bindx(bound);
908 1.15.2.2 jdolecek
909 1.15.2.2 jdolecek error = copyout(&l2tpr, ifr->ifr_data, sizeof(l2tpr));
910 1.15.2.2 jdolecek break;
911 1.15.2.2 jdolecek
912 1.15.2.2 jdolecek default:
913 1.15.2.2 jdolecek error = ifioctl_common(ifp, cmd, data);
914 1.15.2.2 jdolecek break;
915 1.15.2.2 jdolecek }
916 1.15.2.2 jdolecek bad:
917 1.15.2.2 jdolecek return error;
918 1.15.2.2 jdolecek }
919 1.15.2.2 jdolecek
920 1.15.2.2 jdolecek static int
921 1.15.2.2 jdolecek l2tp_set_tunnel(struct ifnet *ifp, struct sockaddr *src, struct sockaddr *dst)
922 1.15.2.2 jdolecek {
923 1.15.2.2 jdolecek struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
924 1.15.2.2 jdolecek l2tp_ec.ec_if);
925 1.15.2.2 jdolecek struct sockaddr *osrc, *odst;
926 1.15.2.2 jdolecek struct sockaddr *nsrc, *ndst;
927 1.15.2.2 jdolecek struct l2tp_variant *ovar, *nvar;
928 1.15.2.2 jdolecek int error;
929 1.15.2.2 jdolecek
930 1.15.2.2 jdolecek nsrc = sockaddr_dup(src, M_WAITOK);
931 1.15.2.2 jdolecek ndst = sockaddr_dup(dst, M_WAITOK);
932 1.15.2.2 jdolecek
933 1.15.2.2 jdolecek nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
934 1.15.2.2 jdolecek
935 1.15.2.2 jdolecek error = encap_lock_enter();
936 1.15.2.2 jdolecek if (error)
937 1.15.2.2 jdolecek goto error;
938 1.15.2.2 jdolecek
939 1.15.2.2 jdolecek mutex_enter(&sc->l2tp_lock);
940 1.15.2.2 jdolecek
941 1.15.2.2 jdolecek ovar = sc->l2tp_var;
942 1.15.2.2 jdolecek osrc = ovar->lv_psrc;
943 1.15.2.2 jdolecek odst = ovar->lv_pdst;
944 1.15.2.2 jdolecek *nvar = *ovar;
945 1.15.2.2 jdolecek psref_target_init(&nvar->lv_psref, lv_psref_class);
946 1.15.2.2 jdolecek nvar->lv_psrc = nsrc;
947 1.15.2.2 jdolecek nvar->lv_pdst = ndst;
948 1.15.2.2 jdolecek error = l2tp_encap_attach(nvar);
949 1.15.2.2 jdolecek if (error) {
950 1.15.2.2 jdolecek mutex_exit(&sc->l2tp_lock);
951 1.15.2.2 jdolecek encap_lock_exit();
952 1.15.2.2 jdolecek goto error;
953 1.15.2.2 jdolecek }
954 1.15.2.2 jdolecek membar_producer();
955 1.15.2.2 jdolecek l2tp_variant_update(sc, nvar);
956 1.15.2.2 jdolecek
957 1.15.2.2 jdolecek mutex_exit(&sc->l2tp_lock);
958 1.15.2.2 jdolecek
959 1.15.2.2 jdolecek (void)l2tp_encap_detach(ovar);
960 1.15.2.2 jdolecek encap_lock_exit();
961 1.15.2.2 jdolecek
962 1.15.2.2 jdolecek if (osrc)
963 1.15.2.2 jdolecek sockaddr_free(osrc);
964 1.15.2.2 jdolecek if (odst)
965 1.15.2.2 jdolecek sockaddr_free(odst);
966 1.15.2.2 jdolecek kmem_free(ovar, sizeof(*ovar));
967 1.15.2.2 jdolecek
968 1.15.2.2 jdolecek return 0;
969 1.15.2.2 jdolecek
970 1.15.2.2 jdolecek error:
971 1.15.2.2 jdolecek sockaddr_free(nsrc);
972 1.15.2.2 jdolecek sockaddr_free(ndst);
973 1.15.2.2 jdolecek kmem_free(nvar, sizeof(*nvar));
974 1.15.2.2 jdolecek
975 1.15.2.2 jdolecek return error;
976 1.15.2.2 jdolecek }
977 1.15.2.2 jdolecek
978 1.15.2.2 jdolecek static void
979 1.15.2.2 jdolecek l2tp_delete_tunnel(struct ifnet *ifp)
980 1.15.2.2 jdolecek {
981 1.15.2.2 jdolecek struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
982 1.15.2.2 jdolecek l2tp_ec.ec_if);
983 1.15.2.2 jdolecek struct sockaddr *osrc, *odst;
984 1.15.2.2 jdolecek struct l2tp_variant *ovar, *nvar;
985 1.15.2.2 jdolecek int error;
986 1.15.2.2 jdolecek
987 1.15.2.2 jdolecek nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
988 1.15.2.2 jdolecek
989 1.15.2.2 jdolecek error = encap_lock_enter();
990 1.15.2.2 jdolecek if (error) {
991 1.15.2.2 jdolecek kmem_free(nvar, sizeof(*nvar));
992 1.15.2.2 jdolecek return;
993 1.15.2.2 jdolecek }
994 1.15.2.2 jdolecek mutex_enter(&sc->l2tp_lock);
995 1.15.2.2 jdolecek
996 1.15.2.2 jdolecek ovar = sc->l2tp_var;
997 1.15.2.2 jdolecek osrc = ovar->lv_psrc;
998 1.15.2.2 jdolecek odst = ovar->lv_pdst;
999 1.15.2.2 jdolecek *nvar = *ovar;
1000 1.15.2.2 jdolecek psref_target_init(&nvar->lv_psref, lv_psref_class);
1001 1.15.2.2 jdolecek nvar->lv_psrc = NULL;
1002 1.15.2.2 jdolecek nvar->lv_pdst = NULL;
1003 1.15.2.2 jdolecek membar_producer();
1004 1.15.2.2 jdolecek l2tp_variant_update(sc, nvar);
1005 1.15.2.2 jdolecek
1006 1.15.2.2 jdolecek mutex_exit(&sc->l2tp_lock);
1007 1.15.2.2 jdolecek
1008 1.15.2.2 jdolecek (void)l2tp_encap_detach(ovar);
1009 1.15.2.2 jdolecek encap_lock_exit();
1010 1.15.2.2 jdolecek
1011 1.15.2.2 jdolecek if (osrc)
1012 1.15.2.2 jdolecek sockaddr_free(osrc);
1013 1.15.2.2 jdolecek if (odst)
1014 1.15.2.2 jdolecek sockaddr_free(odst);
1015 1.15.2.2 jdolecek kmem_free(ovar, sizeof(*ovar));
1016 1.15.2.2 jdolecek }
1017 1.15.2.2 jdolecek
1018 1.15.2.2 jdolecek static int
1019 1.15.2.2 jdolecek id_hash_func(uint32_t id, u_long mask)
1020 1.15.2.2 jdolecek {
1021 1.15.2.2 jdolecek uint32_t hash;
1022 1.15.2.2 jdolecek
1023 1.15.2.2 jdolecek hash = (id >> 16) ^ id;
1024 1.15.2.2 jdolecek hash = (hash >> 4) ^ hash;
1025 1.15.2.2 jdolecek
1026 1.15.2.2 jdolecek return hash & mask;
1027 1.15.2.2 jdolecek }
1028 1.15.2.2 jdolecek
1029 1.15.2.2 jdolecek static void
1030 1.15.2.2 jdolecek l2tp_hash_init(void)
1031 1.15.2.2 jdolecek {
1032 1.15.2.2 jdolecek
1033 1.15.2.2 jdolecek l2tp_hash.lists = hashinit(L2TP_ID_HASH_SIZE, HASH_PSLIST, true,
1034 1.15.2.2 jdolecek &l2tp_hash.mask);
1035 1.15.2.2 jdolecek }
1036 1.15.2.2 jdolecek
1037 1.15.2.2 jdolecek static int
1038 1.15.2.2 jdolecek l2tp_hash_fini(void)
1039 1.15.2.2 jdolecek {
1040 1.15.2.2 jdolecek int i;
1041 1.15.2.2 jdolecek
1042 1.15.2.2 jdolecek mutex_enter(&l2tp_hash.lock);
1043 1.15.2.2 jdolecek
1044 1.15.2.2 jdolecek for (i = 0; i < l2tp_hash.mask + 1; i++) {
1045 1.15.2.2 jdolecek if (PSLIST_WRITER_FIRST(&l2tp_hash.lists[i], struct l2tp_softc,
1046 1.15.2.2 jdolecek l2tp_hash) != NULL) {
1047 1.15.2.2 jdolecek mutex_exit(&l2tp_hash.lock);
1048 1.15.2.2 jdolecek return EBUSY;
1049 1.15.2.2 jdolecek }
1050 1.15.2.2 jdolecek }
1051 1.15.2.2 jdolecek for (i = 0; i < l2tp_hash.mask + 1; i++)
1052 1.15.2.2 jdolecek PSLIST_DESTROY(&l2tp_hash.lists[i]);
1053 1.15.2.2 jdolecek
1054 1.15.2.2 jdolecek mutex_exit(&l2tp_hash.lock);
1055 1.15.2.2 jdolecek
1056 1.15.2.2 jdolecek hashdone(l2tp_hash.lists, HASH_PSLIST, l2tp_hash.mask);
1057 1.15.2.2 jdolecek
1058 1.15.2.2 jdolecek return 0;
1059 1.15.2.2 jdolecek }
1060 1.15.2.2 jdolecek
1061 1.15.2.2 jdolecek static int
1062 1.15.2.2 jdolecek l2tp_set_session(struct l2tp_softc *sc, uint32_t my_sess_id,
1063 1.15.2.2 jdolecek uint32_t peer_sess_id)
1064 1.15.2.2 jdolecek {
1065 1.15.2.2 jdolecek uint32_t idx;
1066 1.15.2.2 jdolecek struct l2tp_variant *nvar;
1067 1.15.2.2 jdolecek struct l2tp_variant *ovar;
1068 1.15.2.2 jdolecek struct ifnet *ifp = &sc->l2tp_ec.ec_if;
1069 1.15.2.2 jdolecek
1070 1.15.2.2 jdolecek nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
1071 1.15.2.2 jdolecek
1072 1.15.2.2 jdolecek mutex_enter(&sc->l2tp_lock);
1073 1.15.2.2 jdolecek ovar = sc->l2tp_var;
1074 1.15.2.2 jdolecek *nvar = *ovar;
1075 1.15.2.2 jdolecek psref_target_init(&nvar->lv_psref, lv_psref_class);
1076 1.15.2.2 jdolecek nvar->lv_my_sess_id = my_sess_id;
1077 1.15.2.2 jdolecek nvar->lv_peer_sess_id = peer_sess_id;
1078 1.15.2.2 jdolecek membar_producer();
1079 1.15.2.2 jdolecek
1080 1.15.2.2 jdolecek mutex_enter(&l2tp_hash.lock);
1081 1.15.2.2 jdolecek if (ovar->lv_my_sess_id > 0 && ovar->lv_peer_sess_id > 0) {
1082 1.15.2.2 jdolecek PSLIST_WRITER_REMOVE(sc, l2tp_hash);
1083 1.15.2.2 jdolecek pserialize_perform(l2tp_psz);
1084 1.15.2.2 jdolecek }
1085 1.15.2.2 jdolecek mutex_exit(&l2tp_hash.lock);
1086 1.15.2.2 jdolecek PSLIST_ENTRY_DESTROY(sc, l2tp_hash);
1087 1.15.2.2 jdolecek
1088 1.15.2.2 jdolecek l2tp_variant_update(sc, nvar);
1089 1.15.2.2 jdolecek mutex_exit(&sc->l2tp_lock);
1090 1.15.2.2 jdolecek
1091 1.15.2.2 jdolecek idx = id_hash_func(nvar->lv_my_sess_id, l2tp_hash.mask);
1092 1.15.2.2 jdolecek if ((ifp->if_flags & IFF_DEBUG) != 0)
1093 1.15.2.2 jdolecek log(LOG_DEBUG, "%s: add hash entry: sess_id=%" PRIu32 ", idx=%" PRIu32 "\n",
1094 1.15.2.2 jdolecek sc->l2tp_ec.ec_if.if_xname, nvar->lv_my_sess_id, idx);
1095 1.15.2.2 jdolecek
1096 1.15.2.2 jdolecek PSLIST_ENTRY_INIT(sc, l2tp_hash);
1097 1.15.2.2 jdolecek mutex_enter(&l2tp_hash.lock);
1098 1.15.2.2 jdolecek PSLIST_WRITER_INSERT_HEAD(&l2tp_hash.lists[idx], sc, l2tp_hash);
1099 1.15.2.2 jdolecek mutex_exit(&l2tp_hash.lock);
1100 1.15.2.2 jdolecek
1101 1.15.2.2 jdolecek kmem_free(ovar, sizeof(*ovar));
1102 1.15.2.2 jdolecek return 0;
1103 1.15.2.2 jdolecek }
1104 1.15.2.2 jdolecek
1105 1.15.2.2 jdolecek static int
1106 1.15.2.2 jdolecek l2tp_clear_session(struct l2tp_softc *sc)
1107 1.15.2.2 jdolecek {
1108 1.15.2.2 jdolecek struct l2tp_variant *nvar;
1109 1.15.2.2 jdolecek struct l2tp_variant *ovar;
1110 1.15.2.2 jdolecek
1111 1.15.2.2 jdolecek nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
1112 1.15.2.2 jdolecek
1113 1.15.2.2 jdolecek mutex_enter(&sc->l2tp_lock);
1114 1.15.2.2 jdolecek ovar = sc->l2tp_var;
1115 1.15.2.2 jdolecek *nvar = *ovar;
1116 1.15.2.2 jdolecek psref_target_init(&nvar->lv_psref, lv_psref_class);
1117 1.15.2.2 jdolecek nvar->lv_my_sess_id = 0;
1118 1.15.2.2 jdolecek nvar->lv_peer_sess_id = 0;
1119 1.15.2.2 jdolecek membar_producer();
1120 1.15.2.2 jdolecek
1121 1.15.2.2 jdolecek mutex_enter(&l2tp_hash.lock);
1122 1.15.2.2 jdolecek if (ovar->lv_my_sess_id > 0 && ovar->lv_peer_sess_id > 0) {
1123 1.15.2.2 jdolecek PSLIST_WRITER_REMOVE(sc, l2tp_hash);
1124 1.15.2.2 jdolecek pserialize_perform(l2tp_psz);
1125 1.15.2.2 jdolecek }
1126 1.15.2.2 jdolecek mutex_exit(&l2tp_hash.lock);
1127 1.15.2.2 jdolecek
1128 1.15.2.2 jdolecek l2tp_variant_update(sc, nvar);
1129 1.15.2.2 jdolecek mutex_exit(&sc->l2tp_lock);
1130 1.15.2.2 jdolecek kmem_free(ovar, sizeof(*ovar));
1131 1.15.2.2 jdolecek return 0;
1132 1.15.2.2 jdolecek }
1133 1.15.2.2 jdolecek
1134 1.15.2.2 jdolecek struct l2tp_variant *
1135 1.15.2.2 jdolecek l2tp_lookup_session_ref(uint32_t id, struct psref *psref)
1136 1.15.2.2 jdolecek {
1137 1.15.2.2 jdolecek int idx;
1138 1.15.2.2 jdolecek int s;
1139 1.15.2.2 jdolecek struct l2tp_softc *sc;
1140 1.15.2.2 jdolecek
1141 1.15.2.2 jdolecek idx = id_hash_func(id, l2tp_hash.mask);
1142 1.15.2.2 jdolecek
1143 1.15.2.2 jdolecek s = pserialize_read_enter();
1144 1.15.2.2 jdolecek PSLIST_READER_FOREACH(sc, &l2tp_hash.lists[idx], struct l2tp_softc,
1145 1.15.2.2 jdolecek l2tp_hash) {
1146 1.15.2.2 jdolecek struct l2tp_variant *var = sc->l2tp_var;
1147 1.15.2.2 jdolecek if (var == NULL)
1148 1.15.2.2 jdolecek continue;
1149 1.15.2.2 jdolecek if (var->lv_my_sess_id != id)
1150 1.15.2.2 jdolecek continue;
1151 1.15.2.2 jdolecek psref_acquire(psref, &var->lv_psref, lv_psref_class);
1152 1.15.2.2 jdolecek pserialize_read_exit(s);
1153 1.15.2.2 jdolecek return var;
1154 1.15.2.2 jdolecek }
1155 1.15.2.2 jdolecek pserialize_read_exit(s);
1156 1.15.2.2 jdolecek return NULL;
1157 1.15.2.2 jdolecek }
1158 1.15.2.2 jdolecek
1159 1.15.2.2 jdolecek /*
1160 1.15.2.2 jdolecek * l2tp_variant update API.
1161 1.15.2.2 jdolecek *
1162 1.15.2.2 jdolecek * Assumption:
1163 1.15.2.2 jdolecek * reader side dereferences sc->l2tp_var in reader critical section only,
1164 1.15.2.2 jdolecek * that is, all of reader sides do not reader the sc->l2tp_var after
1165 1.15.2.2 jdolecek * pserialize_perform().
1166 1.15.2.2 jdolecek */
1167 1.15.2.2 jdolecek static void
1168 1.15.2.2 jdolecek l2tp_variant_update(struct l2tp_softc *sc, struct l2tp_variant *nvar)
1169 1.15.2.2 jdolecek {
1170 1.15.2.2 jdolecek struct ifnet *ifp = &sc->l2tp_ec.ec_if;
1171 1.15.2.2 jdolecek struct l2tp_variant *ovar = sc->l2tp_var;
1172 1.15.2.2 jdolecek
1173 1.15.2.2 jdolecek KASSERT(mutex_owned(&sc->l2tp_lock));
1174 1.15.2.2 jdolecek
1175 1.15.2.2 jdolecek sc->l2tp_var = nvar;
1176 1.15.2.2 jdolecek pserialize_perform(l2tp_psz);
1177 1.15.2.2 jdolecek psref_target_destroy(&ovar->lv_psref, lv_psref_class);
1178 1.15.2.2 jdolecek
1179 1.15.2.2 jdolecek /*
1180 1.15.2.2 jdolecek * In the manual of atomic_swap_ptr(3), there is no mention if 2nd
1181 1.15.2.2 jdolecek * argument is rewrite or not. So, use sc->l2tp_var instead of nvar.
1182 1.15.2.2 jdolecek */
1183 1.15.2.2 jdolecek if (sc->l2tp_var != NULL) {
1184 1.15.2.2 jdolecek if (sc->l2tp_var->lv_psrc != NULL
1185 1.15.2.2 jdolecek && sc->l2tp_var->lv_pdst != NULL)
1186 1.15.2.2 jdolecek ifp->if_flags |= IFF_RUNNING;
1187 1.15.2.2 jdolecek else
1188 1.15.2.2 jdolecek ifp->if_flags &= ~IFF_RUNNING;
1189 1.15.2.2 jdolecek }
1190 1.15.2.2 jdolecek }
1191 1.15.2.2 jdolecek
1192 1.15.2.2 jdolecek static int
1193 1.15.2.2 jdolecek l2tp_set_cookie(struct l2tp_softc *sc, uint64_t my_cookie, u_int my_cookie_len,
1194 1.15.2.2 jdolecek uint64_t peer_cookie, u_int peer_cookie_len)
1195 1.15.2.2 jdolecek {
1196 1.15.2.2 jdolecek struct l2tp_variant *nvar;
1197 1.15.2.2 jdolecek
1198 1.15.2.2 jdolecek if (my_cookie == 0 || peer_cookie == 0)
1199 1.15.2.2 jdolecek return EINVAL;
1200 1.15.2.2 jdolecek
1201 1.15.2.2 jdolecek if (my_cookie_len != 4 && my_cookie_len != 8
1202 1.15.2.2 jdolecek && peer_cookie_len != 4 && peer_cookie_len != 8)
1203 1.15.2.2 jdolecek return EINVAL;
1204 1.15.2.2 jdolecek
1205 1.15.2.2 jdolecek nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
1206 1.15.2.2 jdolecek
1207 1.15.2.2 jdolecek mutex_enter(&sc->l2tp_lock);
1208 1.15.2.2 jdolecek
1209 1.15.2.2 jdolecek *nvar = *sc->l2tp_var;
1210 1.15.2.2 jdolecek psref_target_init(&nvar->lv_psref, lv_psref_class);
1211 1.15.2.2 jdolecek nvar->lv_my_cookie = my_cookie;
1212 1.15.2.2 jdolecek nvar->lv_my_cookie_len = my_cookie_len;
1213 1.15.2.2 jdolecek nvar->lv_peer_cookie = peer_cookie;
1214 1.15.2.2 jdolecek nvar->lv_peer_cookie_len = peer_cookie_len;
1215 1.15.2.2 jdolecek nvar->lv_use_cookie = L2TP_COOKIE_ON;
1216 1.15.2.2 jdolecek membar_producer();
1217 1.15.2.2 jdolecek l2tp_variant_update(sc, nvar);
1218 1.15.2.2 jdolecek
1219 1.15.2.2 jdolecek mutex_exit(&sc->l2tp_lock);
1220 1.15.2.2 jdolecek
1221 1.15.2.2 jdolecek struct ifnet *ifp = &sc->l2tp_ec.ec_if;
1222 1.15.2.2 jdolecek if ((ifp->if_flags & IFF_DEBUG) != 0) {
1223 1.15.2.2 jdolecek log(LOG_DEBUG,
1224 1.15.2.2 jdolecek "%s: set cookie: "
1225 1.15.2.2 jdolecek "local cookie_len=%u local cookie=%" PRIu64 ", "
1226 1.15.2.2 jdolecek "remote cookie_len=%u remote cookie=%" PRIu64 "\n",
1227 1.15.2.2 jdolecek ifp->if_xname, my_cookie_len, my_cookie,
1228 1.15.2.2 jdolecek peer_cookie_len, peer_cookie);
1229 1.15.2.2 jdolecek }
1230 1.15.2.2 jdolecek
1231 1.15.2.2 jdolecek return 0;
1232 1.15.2.2 jdolecek }
1233 1.15.2.2 jdolecek
1234 1.15.2.2 jdolecek static void
1235 1.15.2.2 jdolecek l2tp_clear_cookie(struct l2tp_softc *sc)
1236 1.15.2.2 jdolecek {
1237 1.15.2.2 jdolecek struct l2tp_variant *nvar;
1238 1.15.2.2 jdolecek
1239 1.15.2.2 jdolecek nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
1240 1.15.2.2 jdolecek
1241 1.15.2.2 jdolecek mutex_enter(&sc->l2tp_lock);
1242 1.15.2.2 jdolecek
1243 1.15.2.2 jdolecek *nvar = *sc->l2tp_var;
1244 1.15.2.2 jdolecek psref_target_init(&nvar->lv_psref, lv_psref_class);
1245 1.15.2.2 jdolecek nvar->lv_my_cookie = 0;
1246 1.15.2.2 jdolecek nvar->lv_my_cookie_len = 0;
1247 1.15.2.2 jdolecek nvar->lv_peer_cookie = 0;
1248 1.15.2.2 jdolecek nvar->lv_peer_cookie_len = 0;
1249 1.15.2.2 jdolecek nvar->lv_use_cookie = L2TP_COOKIE_OFF;
1250 1.15.2.2 jdolecek membar_producer();
1251 1.15.2.2 jdolecek l2tp_variant_update(sc, nvar);
1252 1.15.2.2 jdolecek
1253 1.15.2.2 jdolecek mutex_exit(&sc->l2tp_lock);
1254 1.15.2.2 jdolecek }
1255 1.15.2.2 jdolecek
1256 1.15.2.2 jdolecek static void
1257 1.15.2.2 jdolecek l2tp_set_state(struct l2tp_softc *sc, int state)
1258 1.15.2.2 jdolecek {
1259 1.15.2.2 jdolecek struct ifnet *ifp = &sc->l2tp_ec.ec_if;
1260 1.15.2.2 jdolecek struct l2tp_variant *nvar;
1261 1.15.2.2 jdolecek
1262 1.15.2.2 jdolecek nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
1263 1.15.2.2 jdolecek
1264 1.15.2.2 jdolecek mutex_enter(&sc->l2tp_lock);
1265 1.15.2.2 jdolecek
1266 1.15.2.2 jdolecek *nvar = *sc->l2tp_var;
1267 1.15.2.2 jdolecek psref_target_init(&nvar->lv_psref, lv_psref_class);
1268 1.15.2.2 jdolecek nvar->lv_state = state;
1269 1.15.2.2 jdolecek membar_producer();
1270 1.15.2.2 jdolecek l2tp_variant_update(sc, nvar);
1271 1.15.2.2 jdolecek
1272 1.15.2.2 jdolecek if (nvar->lv_state == L2TP_STATE_UP) {
1273 1.15.2.2 jdolecek ifp->if_link_state = LINK_STATE_UP;
1274 1.15.2.2 jdolecek } else {
1275 1.15.2.2 jdolecek ifp->if_link_state = LINK_STATE_DOWN;
1276 1.15.2.2 jdolecek }
1277 1.15.2.2 jdolecek
1278 1.15.2.2 jdolecek mutex_exit(&sc->l2tp_lock);
1279 1.15.2.2 jdolecek
1280 1.15.2.2 jdolecek #ifdef NOTYET
1281 1.15.2.2 jdolecek vlan_linkstate_notify(ifp, ifp->if_link_state);
1282 1.15.2.2 jdolecek #endif
1283 1.15.2.2 jdolecek }
1284 1.15.2.2 jdolecek
1285 1.15.2.2 jdolecek static int
1286 1.15.2.2 jdolecek l2tp_encap_attach(struct l2tp_variant *var)
1287 1.15.2.2 jdolecek {
1288 1.15.2.2 jdolecek int error;
1289 1.15.2.2 jdolecek
1290 1.15.2.2 jdolecek if (var == NULL || var->lv_psrc == NULL)
1291 1.15.2.2 jdolecek return EINVAL;
1292 1.15.2.2 jdolecek
1293 1.15.2.2 jdolecek switch (var->lv_psrc->sa_family) {
1294 1.15.2.2 jdolecek #ifdef INET
1295 1.15.2.2 jdolecek case AF_INET:
1296 1.15.2.2 jdolecek error = in_l2tp_attach(var);
1297 1.15.2.2 jdolecek break;
1298 1.15.2.2 jdolecek #endif
1299 1.15.2.2 jdolecek #ifdef INET6
1300 1.15.2.2 jdolecek case AF_INET6:
1301 1.15.2.2 jdolecek error = in6_l2tp_attach(var);
1302 1.15.2.2 jdolecek break;
1303 1.15.2.2 jdolecek #endif
1304 1.15.2.2 jdolecek default:
1305 1.15.2.2 jdolecek error = EINVAL;
1306 1.15.2.2 jdolecek break;
1307 1.15.2.2 jdolecek }
1308 1.15.2.2 jdolecek
1309 1.15.2.2 jdolecek return error;
1310 1.15.2.2 jdolecek }
1311 1.15.2.2 jdolecek
1312 1.15.2.2 jdolecek static int
1313 1.15.2.2 jdolecek l2tp_encap_detach(struct l2tp_variant *var)
1314 1.15.2.2 jdolecek {
1315 1.15.2.2 jdolecek int error;
1316 1.15.2.2 jdolecek
1317 1.15.2.2 jdolecek if (var == NULL || var->lv_psrc == NULL)
1318 1.15.2.2 jdolecek return EINVAL;
1319 1.15.2.2 jdolecek
1320 1.15.2.2 jdolecek switch (var->lv_psrc->sa_family) {
1321 1.15.2.2 jdolecek #ifdef INET
1322 1.15.2.2 jdolecek case AF_INET:
1323 1.15.2.2 jdolecek error = in_l2tp_detach(var);
1324 1.15.2.2 jdolecek break;
1325 1.15.2.2 jdolecek #endif
1326 1.15.2.2 jdolecek #ifdef INET6
1327 1.15.2.2 jdolecek case AF_INET6:
1328 1.15.2.2 jdolecek error = in6_l2tp_detach(var);
1329 1.15.2.2 jdolecek break;
1330 1.15.2.2 jdolecek #endif
1331 1.15.2.2 jdolecek default:
1332 1.15.2.2 jdolecek error = EINVAL;
1333 1.15.2.2 jdolecek break;
1334 1.15.2.2 jdolecek }
1335 1.15.2.2 jdolecek
1336 1.15.2.2 jdolecek return error;
1337 1.15.2.2 jdolecek }
1338 1.15.2.2 jdolecek
1339 1.15.2.2 jdolecek /*
1340 1.15.2.2 jdolecek * TODO:
1341 1.15.2.2 jdolecek * unify with gif_check_nesting().
1342 1.15.2.2 jdolecek */
1343 1.15.2.2 jdolecek int
1344 1.15.2.2 jdolecek l2tp_check_nesting(struct ifnet *ifp, struct mbuf *m)
1345 1.15.2.2 jdolecek {
1346 1.15.2.2 jdolecek struct m_tag *mtag;
1347 1.15.2.2 jdolecek int *count;
1348 1.15.2.2 jdolecek
1349 1.15.2.2 jdolecek mtag = m_tag_find(m, PACKET_TAG_TUNNEL_INFO, NULL);
1350 1.15.2.2 jdolecek if (mtag != NULL) {
1351 1.15.2.2 jdolecek count = (int *)(mtag + 1);
1352 1.15.2.2 jdolecek if (++(*count) > max_l2tp_nesting) {
1353 1.15.2.2 jdolecek log(LOG_NOTICE,
1354 1.15.2.2 jdolecek "%s: recursively called too many times(%d)\n",
1355 1.15.2.2 jdolecek if_name(ifp),
1356 1.15.2.2 jdolecek *count);
1357 1.15.2.2 jdolecek return EIO;
1358 1.15.2.2 jdolecek }
1359 1.15.2.2 jdolecek } else {
1360 1.15.2.2 jdolecek mtag = m_tag_get(PACKET_TAG_TUNNEL_INFO, sizeof(*count),
1361 1.15.2.2 jdolecek M_NOWAIT);
1362 1.15.2.2 jdolecek if (mtag != NULL) {
1363 1.15.2.2 jdolecek m_tag_prepend(m, mtag);
1364 1.15.2.2 jdolecek count = (int *)(mtag + 1);
1365 1.15.2.2 jdolecek *count = 0;
1366 1.15.2.2 jdolecek }
1367 1.15.2.2 jdolecek #ifdef L2TP_DEBUG
1368 1.15.2.2 jdolecek else {
1369 1.15.2.2 jdolecek log(LOG_DEBUG,
1370 1.15.2.2 jdolecek "%s: m_tag_get() failed, recursion calls are not prevented.\n",
1371 1.15.2.2 jdolecek if_name(ifp));
1372 1.15.2.2 jdolecek }
1373 1.15.2.2 jdolecek #endif
1374 1.15.2.2 jdolecek }
1375 1.15.2.2 jdolecek
1376 1.15.2.2 jdolecek return 0;
1377 1.15.2.2 jdolecek }
1378 1.15.2.2 jdolecek
1379 1.15.2.2 jdolecek /*
1380 1.15.2.2 jdolecek * Module infrastructure
1381 1.15.2.2 jdolecek */
1382 1.15.2.2 jdolecek #include "if_module.h"
1383 1.15.2.2 jdolecek
1384 1.15.2.2 jdolecek IF_MODULE(MODULE_CLASS_DRIVER, l2tp, "")
1385 1.15.2.2 jdolecek
1386 1.15.2.2 jdolecek
1387 1.15.2.2 jdolecek /* TODO: IP_TCPMSS support */
1388 1.15.2.2 jdolecek #ifdef IP_TCPMSS
1389 1.15.2.2 jdolecek static int l2tp_need_tcpmss_clamp(struct ifnet *);
1390 1.15.2.2 jdolecek #ifdef INET
1391 1.15.2.2 jdolecek static struct mbuf *l2tp_tcpmss4_clamp(struct ifnet *, struct mbuf *);
1392 1.15.2.2 jdolecek #endif
1393 1.15.2.2 jdolecek #ifdef INET6
1394 1.15.2.2 jdolecek static struct mbuf *l2tp_tcpmss6_clamp(struct ifnet *, struct mbuf *);
1395 1.15.2.2 jdolecek #endif
1396 1.15.2.2 jdolecek
1397 1.15.2.2 jdolecek struct mbuf *
1398 1.15.2.2 jdolecek l2tp_tcpmss_clamp(struct ifnet *ifp, struct mbuf *m)
1399 1.15.2.2 jdolecek {
1400 1.15.2.2 jdolecek
1401 1.15.2.2 jdolecek if (l2tp_need_tcpmss_clamp(ifp)) {
1402 1.15.2.2 jdolecek struct ether_header *eh;
1403 1.15.2.2 jdolecek struct ether_vlan_header evh;
1404 1.15.2.2 jdolecek
1405 1.15.2.2 jdolecek /* save ether header */
1406 1.15.2.2 jdolecek m_copydata(m, 0, sizeof(evh), (void *)&evh);
1407 1.15.2.2 jdolecek eh = (struct ether_header *)&evh;
1408 1.15.2.2 jdolecek
1409 1.15.2.2 jdolecek switch (ntohs(eh->ether_type)) {
1410 1.15.2.2 jdolecek case ETHERTYPE_VLAN: /* Ether + VLAN */
1411 1.15.2.2 jdolecek if (m->m_pkthdr.len <= sizeof(struct ether_vlan_header))
1412 1.15.2.2 jdolecek break;
1413 1.15.2.2 jdolecek m_adj(m, sizeof(struct ether_vlan_header));
1414 1.15.2.2 jdolecek switch (ntohs(evh.evl_proto)) {
1415 1.15.2.2 jdolecek #ifdef INET
1416 1.15.2.2 jdolecek case ETHERTYPE_IP: /* Ether + VLAN + IPv4 */
1417 1.15.2.2 jdolecek m = l2tp_tcpmss4_clamp(ifp, m);
1418 1.15.2.2 jdolecek if (m == NULL)
1419 1.15.2.2 jdolecek return NULL;
1420 1.15.2.2 jdolecek break;
1421 1.15.2.2 jdolecek #endif /* INET */
1422 1.15.2.2 jdolecek #ifdef INET6
1423 1.15.2.2 jdolecek case ETHERTYPE_IPV6: /* Ether + VLAN + IPv6 */
1424 1.15.2.2 jdolecek m = l2tp_tcpmss6_clamp(ifp, m);
1425 1.15.2.2 jdolecek if (m == NULL)
1426 1.15.2.2 jdolecek return NULL;
1427 1.15.2.2 jdolecek break;
1428 1.15.2.2 jdolecek #endif /* INET6 */
1429 1.15.2.2 jdolecek default:
1430 1.15.2.2 jdolecek break;
1431 1.15.2.2 jdolecek }
1432 1.15.2.2 jdolecek /* restore ether header */
1433 1.15.2.2 jdolecek M_PREPEND(m, sizeof(struct ether_vlan_header),
1434 1.15.2.2 jdolecek M_DONTWAIT);
1435 1.15.2.2 jdolecek if (m == NULL)
1436 1.15.2.2 jdolecek return NULL;
1437 1.15.2.2 jdolecek *mtod(m, struct ether_vlan_header *) = evh;
1438 1.15.2.2 jdolecek break;
1439 1.15.2.2 jdolecek #ifdef INET
1440 1.15.2.2 jdolecek case ETHERTYPE_IP: /* Ether + IPv4 */
1441 1.15.2.2 jdolecek if (m->m_pkthdr.len <= sizeof(struct ether_header))
1442 1.15.2.2 jdolecek break;
1443 1.15.2.2 jdolecek m_adj(m, sizeof(struct ether_header));
1444 1.15.2.2 jdolecek m = l2tp_tcpmss4_clamp(ifp, m);
1445 1.15.2.2 jdolecek if (m == NULL)
1446 1.15.2.2 jdolecek return NULL;
1447 1.15.2.2 jdolecek /* restore ether header */
1448 1.15.2.2 jdolecek M_PREPEND(m, sizeof(struct ether_header), M_DONTWAIT);
1449 1.15.2.2 jdolecek if (m == NULL)
1450 1.15.2.2 jdolecek return NULL;
1451 1.15.2.2 jdolecek *mtod(m, struct ether_header *) = *eh;
1452 1.15.2.2 jdolecek break;
1453 1.15.2.2 jdolecek #endif /* INET */
1454 1.15.2.2 jdolecek #ifdef INET6
1455 1.15.2.2 jdolecek case ETHERTYPE_IPV6: /* Ether + IPv6 */
1456 1.15.2.2 jdolecek if (m->m_pkthdr.len <= sizeof(struct ether_header))
1457 1.15.2.2 jdolecek break;
1458 1.15.2.2 jdolecek m_adj(m, sizeof(struct ether_header));
1459 1.15.2.2 jdolecek m = l2tp_tcpmss6_clamp(ifp, m);
1460 1.15.2.2 jdolecek if (m == NULL)
1461 1.15.2.2 jdolecek return NULL;
1462 1.15.2.2 jdolecek /* restore ether header */
1463 1.15.2.2 jdolecek M_PREPEND(m, sizeof(struct ether_header), M_DONTWAIT);
1464 1.15.2.2 jdolecek if (m == NULL)
1465 1.15.2.2 jdolecek return NULL;
1466 1.15.2.2 jdolecek *mtod(m, struct ether_header *) = *eh;
1467 1.15.2.2 jdolecek break;
1468 1.15.2.2 jdolecek #endif /* INET6 */
1469 1.15.2.2 jdolecek default:
1470 1.15.2.2 jdolecek break;
1471 1.15.2.2 jdolecek }
1472 1.15.2.2 jdolecek }
1473 1.15.2.2 jdolecek
1474 1.15.2.2 jdolecek return m;
1475 1.15.2.2 jdolecek }
1476 1.15.2.2 jdolecek
1477 1.15.2.2 jdolecek static int
1478 1.15.2.2 jdolecek l2tp_need_tcpmss_clamp(struct ifnet *ifp)
1479 1.15.2.2 jdolecek {
1480 1.15.2.2 jdolecek int ret = 0;
1481 1.15.2.2 jdolecek
1482 1.15.2.2 jdolecek #ifdef INET
1483 1.15.2.2 jdolecek if (ifp->if_tcpmss != 0)
1484 1.15.2.2 jdolecek ret = 1;
1485 1.15.2.2 jdolecek #endif /* INET */
1486 1.15.2.2 jdolecek
1487 1.15.2.2 jdolecek #ifdef INET6
1488 1.15.2.2 jdolecek if (ifp->if_tcpmss6 != 0)
1489 1.15.2.2 jdolecek ret = 1;
1490 1.15.2.2 jdolecek #endif /* INET6 */
1491 1.15.2.2 jdolecek
1492 1.15.2.2 jdolecek return ret;
1493 1.15.2.2 jdolecek }
1494 1.15.2.2 jdolecek
1495 1.15.2.2 jdolecek #ifdef INET
1496 1.15.2.2 jdolecek static struct mbuf *
1497 1.15.2.2 jdolecek l2tp_tcpmss4_clamp(struct ifnet *ifp, struct mbuf *m)
1498 1.15.2.2 jdolecek {
1499 1.15.2.2 jdolecek
1500 1.15.2.2 jdolecek if (ifp->if_tcpmss != 0) {
1501 1.15.2.2 jdolecek return ip_tcpmss(m, (ifp->if_tcpmss < 0) ?
1502 1.15.2.2 jdolecek ifp->if_mtu - IP_TCPMSS_EXTLEN :
1503 1.15.2.2 jdolecek ifp->if_tcpmss);
1504 1.15.2.2 jdolecek }
1505 1.15.2.2 jdolecek return m;
1506 1.15.2.2 jdolecek }
1507 1.15.2.2 jdolecek #endif /* INET */
1508 1.15.2.2 jdolecek
1509 1.15.2.2 jdolecek #ifdef INET6
1510 1.15.2.2 jdolecek static struct mbuf *
1511 1.15.2.2 jdolecek l2tp_tcpmss6_clamp(struct ifnet *ifp, struct mbuf *m)
1512 1.15.2.2 jdolecek {
1513 1.15.2.2 jdolecek int ip6hdrlen;
1514 1.15.2.2 jdolecek
1515 1.15.2.2 jdolecek if (ifp->if_tcpmss6 != 0 &&
1516 1.15.2.2 jdolecek ip6_tcpmss_applicable(m, &ip6hdrlen)) {
1517 1.15.2.2 jdolecek return ip6_tcpmss(m, ip6hdrlen,
1518 1.15.2.2 jdolecek (ifp->if_tcpmss6 < 0) ?
1519 1.15.2.2 jdolecek ifp->if_mtu - IP6_TCPMSS_EXTLEN :
1520 1.15.2.2 jdolecek ifp->if_tcpmss6);
1521 1.15.2.2 jdolecek }
1522 1.15.2.2 jdolecek return m;
1523 1.15.2.2 jdolecek }
1524 1.15.2.2 jdolecek #endif /* INET6 */
1525 1.15.2.2 jdolecek
1526 1.15.2.2 jdolecek #endif /* IP_TCPMSS */
1527