Home | History | Annotate | Line # | Download | only in net
if_l2tp.c revision 1.23
      1  1.23  knakahar /*	$NetBSD: if_l2tp.c,v 1.23 2018/04/10 11:44:13 knakahara Exp $	*/
      2   1.1  knakahar 
      3   1.1  knakahar /*
      4   1.1  knakahar  * Copyright (c) 2017 Internet Initiative Japan Inc.
      5   1.1  knakahar  * All rights reserved.
      6   1.1  knakahar  *
      7   1.1  knakahar  * Redistribution and use in source and binary forms, with or without
      8   1.1  knakahar  * modification, are permitted provided that the following conditions
      9   1.1  knakahar  * are met:
     10   1.1  knakahar  * 1. Redistributions of source code must retain the above copyright
     11   1.1  knakahar  *    notice, this list of conditions and the following disclaimer.
     12   1.1  knakahar  * 2. Redistributions in binary form must reproduce the above copyright
     13   1.1  knakahar  *    notice, this list of conditions and the following disclaimer in the
     14   1.1  knakahar  *    documentation and/or other materials provided with the distribution.
     15   1.1  knakahar  *
     16   1.1  knakahar  * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
     17   1.1  knakahar  * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
     18   1.1  knakahar  * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
     19   1.1  knakahar  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
     20   1.1  knakahar  * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
     21   1.1  knakahar  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
     22   1.1  knakahar  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
     23   1.1  knakahar  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
     24   1.1  knakahar  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
     25   1.1  knakahar  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
     26   1.1  knakahar  * POSSIBILITY OF SUCH DAMAGE.
     27   1.1  knakahar  */
     28   1.1  knakahar 
     29   1.1  knakahar /*
     30   1.1  knakahar  * L2TPv3 kernel interface
     31   1.1  knakahar  */
     32   1.1  knakahar 
     33   1.1  knakahar #include <sys/cdefs.h>
     34  1.23  knakahar __KERNEL_RCSID(0, "$NetBSD: if_l2tp.c,v 1.23 2018/04/10 11:44:13 knakahara Exp $");
     35   1.1  knakahar 
     36   1.1  knakahar #ifdef _KERNEL_OPT
     37   1.1  knakahar #include "opt_inet.h"
     38  1.17     ozaki #include "opt_net_mpsafe.h"
     39   1.1  knakahar #endif
     40   1.1  knakahar 
     41   1.1  knakahar #include <sys/param.h>
     42   1.1  knakahar #include <sys/systm.h>
     43   1.1  knakahar #include <sys/kernel.h>
     44   1.1  knakahar #include <sys/mbuf.h>
     45   1.1  knakahar #include <sys/socket.h>
     46   1.1  knakahar #include <sys/sockio.h>
     47   1.1  knakahar #include <sys/errno.h>
     48   1.1  knakahar #include <sys/ioctl.h>
     49   1.1  knakahar #include <sys/time.h>
     50   1.1  knakahar #include <sys/syslog.h>
     51   1.1  knakahar #include <sys/proc.h>
     52   1.1  knakahar #include <sys/conf.h>
     53   1.1  knakahar #include <sys/kauth.h>
     54   1.1  knakahar #include <sys/cpu.h>
     55   1.1  knakahar #include <sys/cprng.h>
     56   1.1  knakahar #include <sys/intr.h>
     57   1.1  knakahar #include <sys/kmem.h>
     58   1.1  knakahar #include <sys/mutex.h>
     59   1.1  knakahar #include <sys/atomic.h>
     60   1.1  knakahar #include <sys/pserialize.h>
     61   1.1  knakahar #include <sys/device.h>
     62   1.1  knakahar #include <sys/module.h>
     63   1.1  knakahar 
     64   1.1  knakahar #include <net/if.h>
     65   1.1  knakahar #include <net/if_dl.h>
     66   1.1  knakahar #include <net/if_ether.h>
     67   1.1  knakahar #include <net/if_types.h>
     68   1.1  knakahar #include <net/netisr.h>
     69   1.1  knakahar #include <net/route.h>
     70   1.1  knakahar #include <net/bpf.h>
     71   1.7     sevan #include <net/if_vlanvar.h>
     72   1.1  knakahar 
     73   1.1  knakahar #include <netinet/in.h>
     74   1.1  knakahar #include <netinet/in_systm.h>
     75   1.1  knakahar #include <netinet/ip.h>
     76   1.1  knakahar #include <netinet/ip_encap.h>
     77   1.1  knakahar #ifdef	INET
     78   1.1  knakahar #include <netinet/in_var.h>
     79   1.1  knakahar #include <netinet/in_l2tp.h>
     80   1.1  knakahar #endif	/* INET */
     81   1.1  knakahar #ifdef INET6
     82   1.1  knakahar #include <netinet6/in6_l2tp.h>
     83   1.1  knakahar #endif
     84   1.1  knakahar 
     85   1.1  knakahar #include <net/if_l2tp.h>
     86   1.1  knakahar 
     87   1.1  knakahar #include <net/if_vlanvar.h>
     88   1.1  knakahar 
     89   1.1  knakahar /* TODO: IP_TCPMSS support */
     90   1.1  knakahar #undef IP_TCPMSS
     91   1.1  knakahar #ifdef IP_TCPMSS
     92   1.1  knakahar #include <netinet/ip_tcpmss.h>
     93   1.1  knakahar #endif
     94   1.1  knakahar 
     95   1.1  knakahar #include <net/bpf.h>
     96   1.1  knakahar #include <net/net_osdep.h>
     97   1.1  knakahar 
     98   1.1  knakahar /*
     99   1.1  knakahar  * l2tp global variable definitions
    100   1.1  knakahar  */
    101   1.1  knakahar LIST_HEAD(l2tp_sclist, l2tp_softc);
    102   1.1  knakahar static struct {
    103   1.1  knakahar 	struct l2tp_sclist list;
    104   1.1  knakahar 	kmutex_t lock;
    105   1.1  knakahar } l2tp_softcs __cacheline_aligned;
    106   1.1  knakahar 
    107   1.1  knakahar 
    108   1.1  knakahar #if !defined(L2TP_ID_HASH_SIZE)
    109   1.1  knakahar #define L2TP_ID_HASH_SIZE 64
    110   1.1  knakahar #endif
    111   1.1  knakahar static struct {
    112   1.1  knakahar 	kmutex_t lock;
    113   1.1  knakahar 	struct pslist_head *lists;
    114   1.9  knakahar 	u_long mask;
    115   1.1  knakahar } l2tp_hash __cacheline_aligned = {
    116   1.1  knakahar 	.lists = NULL,
    117   1.1  knakahar };
    118   1.1  knakahar 
    119   1.1  knakahar pserialize_t l2tp_psz __read_mostly;
    120   1.1  knakahar struct psref_class *lv_psref_class __read_mostly;
    121   1.1  knakahar 
    122   1.1  knakahar static void	l2tp_ro_init_pc(void *, void *, struct cpu_info *);
    123   1.1  knakahar static void	l2tp_ro_fini_pc(void *, void *, struct cpu_info *);
    124   1.1  knakahar 
    125   1.1  knakahar static int	l2tp_clone_create(struct if_clone *, int);
    126   1.1  knakahar static int	l2tp_clone_destroy(struct ifnet *);
    127   1.1  knakahar 
    128   1.1  knakahar struct if_clone l2tp_cloner =
    129   1.1  knakahar     IF_CLONE_INITIALIZER("l2tp", l2tp_clone_create, l2tp_clone_destroy);
    130   1.1  knakahar 
    131   1.1  knakahar static int	l2tp_output(struct ifnet *, struct mbuf *,
    132   1.1  knakahar 		    const struct sockaddr *, const struct rtentry *);
    133   1.1  knakahar static void	l2tpintr(struct l2tp_variant *);
    134   1.1  knakahar 
    135   1.1  knakahar static void	l2tp_hash_init(void);
    136   1.1  knakahar static int	l2tp_hash_fini(void);
    137   1.1  knakahar 
    138   1.1  knakahar static void	l2tp_start(struct ifnet *);
    139   1.1  knakahar static int	l2tp_transmit(struct ifnet *, struct mbuf *);
    140   1.1  knakahar 
    141   1.1  knakahar static int	l2tp_set_tunnel(struct ifnet *, struct sockaddr *,
    142   1.1  knakahar 		    struct sockaddr *);
    143   1.1  knakahar static void	l2tp_delete_tunnel(struct ifnet *);
    144   1.1  knakahar 
    145   1.9  knakahar static int	id_hash_func(uint32_t, u_long);
    146   1.1  knakahar 
    147   1.1  knakahar static void	l2tp_variant_update(struct l2tp_softc *, struct l2tp_variant *);
    148   1.1  knakahar static int	l2tp_set_session(struct l2tp_softc *, uint32_t, uint32_t);
    149   1.1  knakahar static int	l2tp_clear_session(struct l2tp_softc *);
    150   1.1  knakahar static int	l2tp_set_cookie(struct l2tp_softc *, uint64_t, u_int, uint64_t, u_int);
    151   1.1  knakahar static void	l2tp_clear_cookie(struct l2tp_softc *);
    152   1.1  knakahar static void	l2tp_set_state(struct l2tp_softc *, int);
    153   1.1  knakahar static int	l2tp_encap_attach(struct l2tp_variant *);
    154   1.1  knakahar static int	l2tp_encap_detach(struct l2tp_variant *);
    155   1.1  knakahar 
    156   1.1  knakahar #ifndef MAX_L2TP_NEST
    157   1.1  knakahar /*
    158   1.1  knakahar  * This macro controls the upper limitation on nesting of l2tp tunnels.
    159   1.1  knakahar  * Since, setting a large value to this macro with a careless configuration
    160   1.1  knakahar  * may introduce system crash, we don't allow any nestings by default.
    161   1.1  knakahar  * If you need to configure nested l2tp tunnels, you can define this macro
    162   1.1  knakahar  * in your kernel configuration file.  However, if you do so, please be
    163   1.1  knakahar  * careful to configure the tunnels so that it won't make a loop.
    164   1.1  knakahar  */
    165   1.1  knakahar /*
    166   1.1  knakahar  * XXX
    167   1.1  knakahar  * Currently, if in_l2tp_output recursively calls, it causes locking against
    168   1.1  knakahar  * myself of struct l2tp_ro->lr_lock. So, nested l2tp tunnels is prohibited.
    169   1.1  knakahar  */
    170   1.1  knakahar #define MAX_L2TP_NEST 0
    171   1.1  knakahar #endif
    172   1.1  knakahar 
    173   1.1  knakahar static int max_l2tp_nesting = MAX_L2TP_NEST;
    174   1.1  knakahar 
    175   1.1  knakahar /* ARGSUSED */
    176   1.1  knakahar void
    177   1.1  knakahar l2tpattach(int count)
    178   1.1  knakahar {
    179   1.1  knakahar 	/*
    180   1.1  knakahar 	 * Nothing to do here, initialization is handled by the
    181   1.1  knakahar 	 * module initialization code in l2tpinit() below).
    182   1.1  knakahar 	 */
    183   1.1  knakahar }
    184   1.1  knakahar 
    185   1.1  knakahar static void
    186   1.1  knakahar l2tpinit(void)
    187   1.1  knakahar {
    188   1.1  knakahar 
    189   1.1  knakahar 	mutex_init(&l2tp_softcs.lock, MUTEX_DEFAULT, IPL_NONE);
    190   1.1  knakahar 	LIST_INIT(&l2tp_softcs.list);
    191   1.1  knakahar 
    192   1.1  knakahar 	mutex_init(&l2tp_hash.lock, MUTEX_DEFAULT, IPL_NONE);
    193   1.1  knakahar 	l2tp_psz = pserialize_create();
    194   1.1  knakahar 	lv_psref_class = psref_class_create("l2tpvar", IPL_SOFTNET);
    195   1.1  knakahar 	if_clone_attach(&l2tp_cloner);
    196   1.1  knakahar 
    197   1.1  knakahar 	l2tp_hash_init();
    198   1.1  knakahar }
    199   1.1  knakahar 
    200   1.1  knakahar static int
    201   1.1  knakahar l2tpdetach(void)
    202   1.1  knakahar {
    203   1.1  knakahar 	int error;
    204   1.1  knakahar 
    205   1.1  knakahar 	mutex_enter(&l2tp_softcs.lock);
    206   1.1  knakahar 	if (!LIST_EMPTY(&l2tp_softcs.list)) {
    207   1.1  knakahar 		mutex_exit(&l2tp_softcs.lock);
    208   1.1  knakahar 		return EBUSY;
    209   1.1  knakahar 	}
    210   1.1  knakahar 	mutex_exit(&l2tp_softcs.lock);
    211   1.1  knakahar 
    212   1.1  knakahar 	error = l2tp_hash_fini();
    213   1.1  knakahar 	if (error)
    214   1.1  knakahar 		return error;
    215   1.1  knakahar 
    216   1.1  knakahar 	if_clone_detach(&l2tp_cloner);
    217   1.1  knakahar 	psref_class_destroy(lv_psref_class);
    218   1.1  knakahar 	pserialize_destroy(l2tp_psz);
    219   1.1  knakahar 	mutex_destroy(&l2tp_hash.lock);
    220   1.1  knakahar 
    221   1.4  knakahar 	mutex_destroy(&l2tp_softcs.lock);
    222   1.4  knakahar 
    223   1.1  knakahar 	return error;
    224   1.1  knakahar }
    225   1.1  knakahar 
    226   1.1  knakahar static int
    227   1.1  knakahar l2tp_clone_create(struct if_clone *ifc, int unit)
    228   1.1  knakahar {
    229   1.1  knakahar 	struct l2tp_softc *sc;
    230   1.1  knakahar 	struct l2tp_variant *var;
    231  1.13  knakahar 	int rv;
    232   1.1  knakahar 
    233   1.1  knakahar 	sc = kmem_zalloc(sizeof(struct l2tp_softc), KM_SLEEP);
    234  1.13  knakahar 	if_initname(&sc->l2tp_ec.ec_if, ifc->ifc_name, unit);
    235  1.13  knakahar 	rv = l2tpattach0(sc);
    236  1.13  knakahar 	if (rv != 0) {
    237  1.13  knakahar 		kmem_free(sc, sizeof(struct l2tp_softc));
    238  1.13  knakahar 		return rv;
    239  1.13  knakahar 	}
    240  1.13  knakahar 
    241   1.1  knakahar 	var = kmem_zalloc(sizeof(struct l2tp_variant), KM_SLEEP);
    242   1.1  knakahar 	var->lv_softc = sc;
    243   1.1  knakahar 	var->lv_state = L2TP_STATE_DOWN;
    244   1.1  knakahar 	var->lv_use_cookie = L2TP_COOKIE_OFF;
    245   1.1  knakahar 	psref_target_init(&var->lv_psref, lv_psref_class);
    246   1.1  knakahar 
    247   1.1  knakahar 	sc->l2tp_var = var;
    248   1.1  knakahar 	mutex_init(&sc->l2tp_lock, MUTEX_DEFAULT, IPL_NONE);
    249   1.1  knakahar 	PSLIST_ENTRY_INIT(sc, l2tp_hash);
    250   1.1  knakahar 
    251   1.1  knakahar 	sc->l2tp_ro_percpu = percpu_alloc(sizeof(struct l2tp_ro));
    252   1.1  knakahar 	percpu_foreach(sc->l2tp_ro_percpu, l2tp_ro_init_pc, NULL);
    253   1.1  knakahar 
    254   1.1  knakahar 	mutex_enter(&l2tp_softcs.lock);
    255   1.1  knakahar 	LIST_INSERT_HEAD(&l2tp_softcs.list, sc, l2tp_list);
    256   1.1  knakahar 	mutex_exit(&l2tp_softcs.lock);
    257   1.1  knakahar 
    258   1.1  knakahar 	return (0);
    259   1.1  knakahar }
    260   1.1  knakahar 
    261  1.13  knakahar int
    262   1.1  knakahar l2tpattach0(struct l2tp_softc *sc)
    263   1.1  knakahar {
    264  1.13  knakahar 	int rv;
    265   1.1  knakahar 
    266   1.1  knakahar 	sc->l2tp_ec.ec_if.if_addrlen = 0;
    267   1.1  knakahar 	sc->l2tp_ec.ec_if.if_mtu    = L2TP_MTU;
    268   1.1  knakahar 	sc->l2tp_ec.ec_if.if_flags  = IFF_POINTOPOINT|IFF_MULTICAST|IFF_SIMPLEX;
    269  1.17     ozaki 	sc->l2tp_ec.ec_if.if_extflags = IFEF_NO_LINK_STATE_CHANGE;
    270  1.17     ozaki #ifdef NET_MPSAFE
    271  1.17     ozaki 	sc->l2tp_ec.ec_if.if_extflags |= IFEF_MPSAFE;
    272  1.17     ozaki #endif
    273   1.1  knakahar 	sc->l2tp_ec.ec_if.if_ioctl  = l2tp_ioctl;
    274   1.1  knakahar 	sc->l2tp_ec.ec_if.if_output = l2tp_output;
    275   1.1  knakahar 	sc->l2tp_ec.ec_if.if_type   = IFT_L2TP;
    276   1.1  knakahar 	sc->l2tp_ec.ec_if.if_dlt    = DLT_NULL;
    277   1.1  knakahar 	sc->l2tp_ec.ec_if.if_start  = l2tp_start;
    278   1.1  knakahar 	sc->l2tp_ec.ec_if.if_transmit = l2tp_transmit;
    279   1.1  knakahar 	sc->l2tp_ec.ec_if._if_input = ether_input;
    280   1.1  knakahar 	IFQ_SET_READY(&sc->l2tp_ec.ec_if.if_snd);
    281  1.13  knakahar 	/* XXX
    282  1.13  knakahar 	 * It may improve performance to use if_initialize()/if_register()
    283  1.13  knakahar 	 * so that l2tp_input() calls if_input() instead of
    284  1.13  knakahar 	 * if_percpuq_enqueue(). However, that causes recursive softnet_lock
    285  1.13  knakahar 	 * when NET_MPSAFE is not set.
    286  1.13  knakahar 	 */
    287  1.13  knakahar 	rv = if_attach(&sc->l2tp_ec.ec_if);
    288  1.13  knakahar 	if (rv != 0)
    289  1.13  knakahar 		return rv;
    290   1.1  knakahar 	if_alloc_sadl(&sc->l2tp_ec.ec_if);
    291   1.1  knakahar 	bpf_attach(&sc->l2tp_ec.ec_if, DLT_EN10MB, sizeof(struct ether_header));
    292  1.13  knakahar 
    293  1.13  knakahar 	return 0;
    294   1.1  knakahar }
    295   1.1  knakahar 
    296   1.1  knakahar void
    297   1.1  knakahar l2tp_ro_init_pc(void *p, void *arg __unused, struct cpu_info *ci __unused)
    298   1.1  knakahar {
    299   1.1  knakahar 	struct l2tp_ro *lro = p;
    300   1.1  knakahar 
    301   1.1  knakahar 	mutex_init(&lro->lr_lock, MUTEX_DEFAULT, IPL_NONE);
    302   1.1  knakahar }
    303   1.1  knakahar 
    304   1.1  knakahar void
    305   1.1  knakahar l2tp_ro_fini_pc(void *p, void *arg __unused, struct cpu_info *ci __unused)
    306   1.1  knakahar {
    307   1.1  knakahar 	struct l2tp_ro *lro = p;
    308   1.1  knakahar 
    309   1.1  knakahar 	rtcache_free(&lro->lr_ro);
    310   1.1  knakahar 
    311   1.1  knakahar 	mutex_destroy(&lro->lr_lock);
    312   1.1  knakahar }
    313   1.1  knakahar 
    314   1.1  knakahar static int
    315   1.1  knakahar l2tp_clone_destroy(struct ifnet *ifp)
    316   1.1  knakahar {
    317   1.5  knakahar 	struct l2tp_variant *var;
    318   1.1  knakahar 	struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
    319   1.1  knakahar 	    l2tp_ec.ec_if);
    320   1.1  knakahar 
    321   1.1  knakahar 	l2tp_clear_session(sc);
    322   1.1  knakahar 	l2tp_delete_tunnel(&sc->l2tp_ec.ec_if);
    323   1.3  knakahar 	/*
    324   1.3  knakahar 	 * To avoid for l2tp_transmit() to access sc->l2tp_var after free it.
    325   1.3  knakahar 	 */
    326   1.3  knakahar 	mutex_enter(&sc->l2tp_lock);
    327   1.5  knakahar 	var = sc->l2tp_var;
    328   1.3  knakahar 	l2tp_variant_update(sc, NULL);
    329   1.3  knakahar 	mutex_exit(&sc->l2tp_lock);
    330   1.1  knakahar 
    331   1.1  knakahar 	mutex_enter(&l2tp_softcs.lock);
    332   1.1  knakahar 	LIST_REMOVE(sc, l2tp_list);
    333   1.1  knakahar 	mutex_exit(&l2tp_softcs.lock);
    334   1.1  knakahar 
    335   1.1  knakahar 	bpf_detach(ifp);
    336   1.1  knakahar 
    337   1.1  knakahar 	if_detach(ifp);
    338   1.1  knakahar 
    339   1.1  knakahar 	percpu_foreach(sc->l2tp_ro_percpu, l2tp_ro_fini_pc, NULL);
    340   1.1  knakahar 	percpu_free(sc->l2tp_ro_percpu, sizeof(struct l2tp_ro));
    341   1.1  knakahar 
    342   1.5  knakahar 	kmem_free(var, sizeof(struct l2tp_variant));
    343   1.1  knakahar 	mutex_destroy(&sc->l2tp_lock);
    344   1.1  knakahar 	kmem_free(sc, sizeof(struct l2tp_softc));
    345   1.1  knakahar 
    346   1.1  knakahar 	return 0;
    347   1.1  knakahar }
    348   1.1  knakahar 
    349   1.1  knakahar static int
    350   1.1  knakahar l2tp_output(struct ifnet *ifp, struct mbuf *m, const struct sockaddr *dst,
    351   1.1  knakahar     const struct rtentry *rt)
    352   1.1  knakahar {
    353   1.1  knakahar 	struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
    354   1.1  knakahar 	    l2tp_ec.ec_if);
    355   1.1  knakahar 	struct l2tp_variant *var;
    356   1.1  knakahar 	struct psref psref;
    357   1.1  knakahar 	int error = 0;
    358   1.1  knakahar 
    359   1.1  knakahar 	var = l2tp_getref_variant(sc, &psref);
    360   1.1  knakahar 	if (var == NULL) {
    361   1.1  knakahar 		m_freem(m);
    362   1.1  knakahar 		return ENETDOWN;
    363   1.1  knakahar 	}
    364   1.1  knakahar 
    365   1.1  knakahar 	IFQ_CLASSIFY(&ifp->if_snd, m, dst->sa_family);
    366   1.1  knakahar 
    367   1.1  knakahar 	m->m_flags &= ~(M_BCAST|M_MCAST);
    368   1.1  knakahar 
    369   1.1  knakahar 	if ((ifp->if_flags & IFF_UP) == 0) {
    370   1.1  knakahar 		m_freem(m);
    371   1.1  knakahar 		error = ENETDOWN;
    372   1.1  knakahar 		goto end;
    373   1.1  knakahar 	}
    374   1.1  knakahar 
    375   1.1  knakahar 	if (var->lv_psrc == NULL || var->lv_pdst == NULL) {
    376   1.1  knakahar 		m_freem(m);
    377   1.1  knakahar 		error = ENETDOWN;
    378   1.1  knakahar 		goto end;
    379   1.1  knakahar 	}
    380   1.1  knakahar 
    381   1.1  knakahar 	/* XXX should we check if our outer source is legal? */
    382   1.1  knakahar 
    383   1.1  knakahar 	/* use DLT_NULL encapsulation here to pass inner af type */
    384   1.1  knakahar 	M_PREPEND(m, sizeof(int), M_DONTWAIT);
    385   1.1  knakahar 	if (!m) {
    386   1.1  knakahar 		error = ENOBUFS;
    387   1.1  knakahar 		goto end;
    388   1.1  knakahar 	}
    389   1.1  knakahar 	*mtod(m, int *) = dst->sa_family;
    390   1.1  knakahar 
    391   1.1  knakahar 	IFQ_ENQUEUE(&ifp->if_snd, m, error);
    392   1.1  knakahar 	if (error)
    393   1.1  knakahar 		goto end;
    394   1.1  knakahar 
    395   1.1  knakahar 	/*
    396   1.1  knakahar 	 * direct call to avoid infinite loop at l2tpintr()
    397   1.1  knakahar 	 */
    398   1.1  knakahar 	l2tpintr(var);
    399   1.1  knakahar 
    400   1.1  knakahar 	error = 0;
    401   1.1  knakahar 
    402   1.1  knakahar end:
    403   1.1  knakahar 	l2tp_putref_variant(var, &psref);
    404   1.1  knakahar 	if (error)
    405   1.1  knakahar 		ifp->if_oerrors++;
    406   1.1  knakahar 
    407   1.1  knakahar 	return error;
    408   1.1  knakahar }
    409   1.1  knakahar 
    410   1.1  knakahar static void
    411   1.1  knakahar l2tpintr(struct l2tp_variant *var)
    412   1.1  knakahar {
    413   1.1  knakahar 	struct l2tp_softc *sc;
    414   1.1  knakahar 	struct ifnet *ifp;
    415   1.1  knakahar 	struct mbuf *m;
    416   1.1  knakahar 	int error;
    417   1.1  knakahar 
    418   1.1  knakahar 	KASSERT(psref_held(&var->lv_psref, lv_psref_class));
    419   1.1  knakahar 
    420   1.1  knakahar 	sc = var->lv_softc;
    421   1.1  knakahar 	ifp = &sc->l2tp_ec.ec_if;
    422   1.1  knakahar 
    423   1.1  knakahar 	/* output processing */
    424   1.1  knakahar 	if (var->lv_my_sess_id == 0 || var->lv_peer_sess_id == 0) {
    425   1.1  knakahar 		IFQ_PURGE(&ifp->if_snd);
    426   1.1  knakahar 		return;
    427   1.1  knakahar 	}
    428   1.1  knakahar 
    429   1.1  knakahar 	for (;;) {
    430   1.1  knakahar 		IFQ_DEQUEUE(&ifp->if_snd, m);
    431   1.1  knakahar 		if (m == NULL)
    432   1.1  knakahar 			break;
    433   1.1  knakahar 		m->m_flags &= ~(M_BCAST|M_MCAST);
    434   1.1  knakahar 		bpf_mtap(ifp, m);
    435   1.1  knakahar 		switch (var->lv_psrc->sa_family) {
    436   1.1  knakahar #ifdef INET
    437   1.1  knakahar 		case AF_INET:
    438   1.1  knakahar 			error = in_l2tp_output(var, m);
    439   1.1  knakahar 			break;
    440   1.1  knakahar #endif
    441   1.1  knakahar #ifdef INET6
    442   1.1  knakahar 		case AF_INET6:
    443   1.1  knakahar 			error = in6_l2tp_output(var, m);
    444   1.1  knakahar 			break;
    445   1.1  knakahar #endif
    446   1.1  knakahar 		default:
    447   1.1  knakahar 			m_freem(m);
    448   1.1  knakahar 			error = ENETDOWN;
    449   1.1  knakahar 			break;
    450   1.1  knakahar 		}
    451   1.1  knakahar 
    452   1.1  knakahar 		if (error)
    453   1.1  knakahar 			ifp->if_oerrors++;
    454   1.1  knakahar 		else {
    455   1.1  knakahar 			ifp->if_opackets++;
    456   1.1  knakahar 			/*
    457   1.1  knakahar 			 * obytes is incremented at ether_output() or
    458   1.1  knakahar 			 * bridge_enqueue().
    459   1.1  knakahar 			 */
    460   1.1  knakahar 		}
    461   1.1  knakahar 	}
    462   1.1  knakahar 
    463   1.1  knakahar }
    464   1.1  knakahar 
    465   1.1  knakahar void
    466   1.1  knakahar l2tp_input(struct mbuf *m, struct ifnet *ifp)
    467   1.1  knakahar {
    468  1.21  knakahar 	vaddr_t addr;
    469   1.1  knakahar 
    470   1.1  knakahar 	KASSERT(ifp != NULL);
    471   1.1  knakahar 
    472  1.21  knakahar 	/*
    473  1.21  knakahar 	 * Currently, l2tp(4) supports only ethernet as inner protocol.
    474  1.21  knakahar 	 */
    475  1.21  knakahar 	if (m->m_pkthdr.len < sizeof(struct ether_header)) {
    476  1.19      maxv 		m_freem(m);
    477  1.19      maxv 		return;
    478  1.19      maxv 	}
    479  1.19      maxv 
    480  1.22  knakahar 	/*
    481  1.22  knakahar 	 * If the head of the payload is not aligned, align it.
    482  1.22  knakahar 	 */
    483  1.21  knakahar 	addr = mtod(m, vaddr_t);
    484  1.23  knakahar 	if ((addr & 0x03) != 0x2) {
    485   1.1  knakahar 		/* copy and align head of payload */
    486   1.1  knakahar 		struct mbuf *m_head;
    487   1.1  knakahar 		int copy_length;
    488  1.23  knakahar 		u_int pad = roundup(sizeof(struct ether_header), 4)
    489  1.23  knakahar 			- sizeof(struct ether_header);
    490   1.1  knakahar 
    491   1.1  knakahar #define L2TP_COPY_LENGTH		60
    492   1.1  knakahar 
    493   1.1  knakahar 		if (m->m_pkthdr.len < L2TP_COPY_LENGTH) {
    494   1.1  knakahar 			copy_length = m->m_pkthdr.len;
    495   1.1  knakahar 		} else {
    496   1.1  knakahar 			copy_length = L2TP_COPY_LENGTH;
    497   1.1  knakahar 		}
    498   1.1  knakahar 
    499   1.1  knakahar 		if (m->m_len < copy_length) {
    500   1.1  knakahar 			m = m_pullup(m, copy_length);
    501   1.1  knakahar 			if (m == NULL)
    502   1.1  knakahar 				return;
    503   1.1  knakahar 		}
    504   1.1  knakahar 
    505   1.1  knakahar 		MGETHDR(m_head, M_DONTWAIT, MT_HEADER);
    506   1.1  knakahar 		if (m_head == NULL) {
    507   1.1  knakahar 			m_freem(m);
    508   1.1  knakahar 			return;
    509   1.1  knakahar 		}
    510   1.1  knakahar 		M_COPY_PKTHDR(m_head, m);
    511   1.1  knakahar 
    512  1.23  knakahar 		/*
    513  1.23  knakahar 		 * m_head should be:
    514  1.23  knakahar 		 *                             L2TP_COPY_LENGTH
    515  1.23  knakahar 		 *                          <-  + roundup(pad, 4) - pad ->
    516  1.23  knakahar 		 *   +-------+--------+-----+--------------+-------------+
    517  1.23  knakahar 		 *   | m_hdr | pkthdr | ... | ether header |   payload   |
    518  1.23  knakahar 		 *   +-------+--------+-----+--------------+-------------+
    519  1.23  knakahar 		 *                          ^              ^
    520  1.23  knakahar 		 *                          m_data         4 byte aligned
    521  1.23  knakahar 		 */
    522  1.23  knakahar 		MH_ALIGN(m_head, L2TP_COPY_LENGTH + roundup(pad, 4));
    523  1.23  knakahar 		m_head->m_data += pad;
    524  1.23  knakahar 
    525  1.18      maxv 		memcpy(mtod(m_head, void *), mtod(m, void *), copy_length);
    526   1.1  knakahar 		m_head->m_len = copy_length;
    527   1.1  knakahar 		m->m_data += copy_length;
    528   1.1  knakahar 		m->m_len -= copy_length;
    529   1.1  knakahar 
    530   1.1  knakahar 		/* construct chain */
    531   1.1  knakahar 		if (m->m_len == 0) {
    532  1.18      maxv 			m_head->m_next = m_free(m);
    533   1.1  knakahar 		} else {
    534   1.1  knakahar 			/*
    535  1.18      maxv 			 * Already copied mtag with M_COPY_PKTHDR.
    536  1.18      maxv 			 * but don't delete mtag in case cut off M_PKTHDR flag
    537   1.1  knakahar 			 */
    538   1.1  knakahar 			m_tag_delete_chain(m, NULL);
    539   1.1  knakahar 			m->m_flags &= ~M_PKTHDR;
    540   1.1  knakahar 			m_head->m_next = m;
    541   1.1  knakahar 		}
    542   1.1  knakahar 
    543   1.1  knakahar 		/* override m */
    544   1.1  knakahar 		m = m_head;
    545   1.1  knakahar 	}
    546   1.1  knakahar 
    547   1.1  knakahar 	m_set_rcvif(m, ifp);
    548   1.1  knakahar 
    549   1.1  knakahar 	/*
    550   1.1  knakahar 	 * bpf_mtap() and ifp->if_ipackets++ is done in if_input()
    551   1.1  knakahar 	 *
    552   1.1  knakahar 	 * obytes is incremented at ether_output() or bridge_enqueue().
    553   1.1  knakahar 	 */
    554   1.1  knakahar 	if_percpuq_enqueue(ifp->if_percpuq, m);
    555   1.1  knakahar }
    556   1.1  knakahar 
    557   1.1  knakahar void
    558   1.1  knakahar l2tp_start(struct ifnet *ifp)
    559   1.1  knakahar {
    560   1.1  knakahar 	struct psref psref;
    561   1.1  knakahar 	struct l2tp_variant *var;
    562   1.1  knakahar 	struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
    563   1.1  knakahar 	    l2tp_ec.ec_if);
    564   1.1  knakahar 
    565   1.1  knakahar 	var = l2tp_getref_variant(sc, &psref);
    566   1.1  knakahar 	if (var == NULL)
    567   1.1  knakahar 		return;
    568   1.1  knakahar 
    569   1.1  knakahar 	if (var->lv_psrc == NULL || var->lv_pdst == NULL)
    570   1.1  knakahar 		return;
    571   1.1  knakahar 
    572   1.1  knakahar 	l2tpintr(var);
    573   1.1  knakahar 	l2tp_putref_variant(var, &psref);
    574   1.1  knakahar }
    575   1.1  knakahar 
    576   1.1  knakahar int
    577   1.1  knakahar l2tp_transmit(struct ifnet *ifp, struct mbuf *m)
    578   1.1  knakahar {
    579   1.1  knakahar 	int error;
    580   1.1  knakahar 	struct psref psref;
    581   1.1  knakahar 	struct l2tp_variant *var;
    582   1.1  knakahar 	struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
    583   1.1  knakahar 	    l2tp_ec.ec_if);
    584   1.1  knakahar 
    585   1.1  knakahar 	var = l2tp_getref_variant(sc, &psref);
    586   1.1  knakahar 	if (var == NULL) {
    587   1.1  knakahar 		m_freem(m);
    588   1.1  knakahar 		return ENETDOWN;
    589   1.1  knakahar 	}
    590   1.1  knakahar 
    591   1.1  knakahar 	if (var->lv_psrc == NULL || var->lv_pdst == NULL) {
    592   1.1  knakahar 		m_freem(m);
    593   1.1  knakahar 		error = ENETDOWN;
    594   1.1  knakahar 		goto out;
    595   1.1  knakahar 	}
    596   1.1  knakahar 
    597   1.1  knakahar 	m->m_flags &= ~(M_BCAST|M_MCAST);
    598   1.1  knakahar 	bpf_mtap(ifp, m);
    599   1.1  knakahar 	switch (var->lv_psrc->sa_family) {
    600   1.1  knakahar #ifdef INET
    601   1.1  knakahar 	case AF_INET:
    602   1.1  knakahar 		error = in_l2tp_output(var, m);
    603   1.1  knakahar 		break;
    604   1.1  knakahar #endif
    605   1.1  knakahar #ifdef INET6
    606   1.1  knakahar 	case AF_INET6:
    607   1.1  knakahar 		error = in6_l2tp_output(var, m);
    608   1.1  knakahar 		break;
    609   1.1  knakahar #endif
    610   1.1  knakahar 	default:
    611   1.1  knakahar 		m_freem(m);
    612   1.1  knakahar 		error = ENETDOWN;
    613   1.1  knakahar 		break;
    614   1.1  knakahar 	}
    615   1.1  knakahar 
    616   1.1  knakahar 	if (error)
    617   1.1  knakahar 		ifp->if_oerrors++;
    618   1.1  knakahar 	else {
    619   1.1  knakahar 		ifp->if_opackets++;
    620   1.1  knakahar 		/*
    621   1.1  knakahar 		 * obytes is incremented at ether_output() or bridge_enqueue().
    622   1.1  knakahar 		 */
    623   1.1  knakahar 	}
    624   1.1  knakahar 
    625   1.1  knakahar out:
    626   1.1  knakahar 	l2tp_putref_variant(var, &psref);
    627   1.1  knakahar 	return error;
    628   1.1  knakahar }
    629   1.1  knakahar 
    630   1.1  knakahar /* XXX how should we handle IPv6 scope on SIOC[GS]IFPHYADDR? */
    631   1.1  knakahar int
    632   1.1  knakahar l2tp_ioctl(struct ifnet *ifp, u_long cmd, void *data)
    633   1.1  knakahar {
    634   1.1  knakahar 	struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
    635   1.1  knakahar 	    l2tp_ec.ec_if);
    636   1.1  knakahar 	struct l2tp_variant *var, *var_tmp;
    637   1.1  knakahar 	struct ifreq     *ifr = data;
    638   1.1  knakahar 	int error = 0, size;
    639   1.1  knakahar 	struct sockaddr *dst, *src;
    640   1.1  knakahar 	struct l2tp_req l2tpr;
    641   1.1  knakahar 	u_long mtu;
    642   1.1  knakahar 	int bound;
    643   1.1  knakahar 	struct psref psref;
    644   1.1  knakahar 
    645   1.1  knakahar 	switch (cmd) {
    646   1.1  knakahar 	case SIOCSIFADDR:
    647   1.1  knakahar 		ifp->if_flags |= IFF_UP;
    648   1.1  knakahar 		break;
    649   1.1  knakahar 
    650   1.1  knakahar 	case SIOCSIFDSTADDR:
    651   1.1  knakahar 		break;
    652   1.1  knakahar 
    653   1.1  knakahar 	case SIOCADDMULTI:
    654   1.1  knakahar 	case SIOCDELMULTI:
    655   1.1  knakahar 		switch (ifr->ifr_addr.sa_family) {
    656   1.1  knakahar #ifdef INET
    657   1.1  knakahar 		case AF_INET:	/* IP supports Multicast */
    658   1.1  knakahar 			break;
    659   1.1  knakahar #endif /* INET */
    660   1.1  knakahar #ifdef INET6
    661   1.1  knakahar 		case AF_INET6:	/* IP6 supports Multicast */
    662   1.1  knakahar 			break;
    663   1.1  knakahar #endif /* INET6 */
    664   1.1  knakahar 		default:  /* Other protocols doesn't support Multicast */
    665   1.1  knakahar 			error = EAFNOSUPPORT;
    666   1.1  knakahar 			break;
    667   1.1  knakahar 		}
    668   1.1  knakahar 		break;
    669   1.1  knakahar 
    670   1.1  knakahar 	case SIOCSIFMTU:
    671   1.1  knakahar 		mtu = ifr->ifr_mtu;
    672   1.1  knakahar 		if (mtu < L2TP_MTU_MIN || mtu > L2TP_MTU_MAX)
    673   1.1  knakahar 			return (EINVAL);
    674   1.1  knakahar 		ifp->if_mtu = mtu;
    675   1.1  knakahar 		break;
    676   1.1  knakahar 
    677   1.1  knakahar #ifdef INET
    678   1.1  knakahar 	case SIOCSIFPHYADDR:
    679   1.1  knakahar 		src = (struct sockaddr *)
    680   1.1  knakahar 			&(((struct in_aliasreq *)data)->ifra_addr);
    681   1.1  knakahar 		dst = (struct sockaddr *)
    682   1.1  knakahar 			&(((struct in_aliasreq *)data)->ifra_dstaddr);
    683   1.1  knakahar 		if (src->sa_family != AF_INET || dst->sa_family != AF_INET)
    684   1.1  knakahar 			return EAFNOSUPPORT;
    685   1.1  knakahar 		else if (src->sa_len != sizeof(struct sockaddr_in)
    686   1.1  knakahar 		    || dst->sa_len != sizeof(struct sockaddr_in))
    687   1.1  knakahar 			return EINVAL;
    688   1.1  knakahar 
    689   1.1  knakahar 		error = l2tp_set_tunnel(&sc->l2tp_ec.ec_if, src, dst);
    690   1.1  knakahar 		break;
    691   1.1  knakahar 
    692   1.1  knakahar #endif /* INET */
    693   1.1  knakahar #ifdef INET6
    694   1.1  knakahar 	case SIOCSIFPHYADDR_IN6:
    695   1.1  knakahar 		src = (struct sockaddr *)
    696   1.1  knakahar 			&(((struct in6_aliasreq *)data)->ifra_addr);
    697   1.1  knakahar 		dst = (struct sockaddr *)
    698   1.1  knakahar 			&(((struct in6_aliasreq *)data)->ifra_dstaddr);
    699   1.1  knakahar 		if (src->sa_family != AF_INET6 || dst->sa_family != AF_INET6)
    700   1.1  knakahar 			return EAFNOSUPPORT;
    701   1.1  knakahar 		else if (src->sa_len != sizeof(struct sockaddr_in6)
    702   1.1  knakahar 		    || dst->sa_len != sizeof(struct sockaddr_in6))
    703   1.1  knakahar 			return EINVAL;
    704   1.1  knakahar 
    705   1.1  knakahar 		error = l2tp_set_tunnel(&sc->l2tp_ec.ec_if, src, dst);
    706   1.1  knakahar 		break;
    707   1.1  knakahar 
    708   1.1  knakahar #endif /* INET6 */
    709   1.1  knakahar 	case SIOCSLIFPHYADDR:
    710   1.1  knakahar 		src = (struct sockaddr *)
    711   1.1  knakahar 			&(((struct if_laddrreq *)data)->addr);
    712   1.1  knakahar 		dst = (struct sockaddr *)
    713   1.1  knakahar 			&(((struct if_laddrreq *)data)->dstaddr);
    714   1.1  knakahar 		if (src->sa_family != dst->sa_family)
    715   1.1  knakahar 			return EINVAL;
    716   1.1  knakahar 		else if (src->sa_family == AF_INET
    717   1.1  knakahar 		    && src->sa_len != sizeof(struct sockaddr_in))
    718   1.1  knakahar 			return EINVAL;
    719   1.1  knakahar 		else if (src->sa_family == AF_INET6
    720   1.1  knakahar 		    && src->sa_len != sizeof(struct sockaddr_in6))
    721   1.1  knakahar 			return EINVAL;
    722   1.1  knakahar 		else if (dst->sa_family == AF_INET
    723   1.1  knakahar 		    && dst->sa_len != sizeof(struct sockaddr_in))
    724   1.1  knakahar 			return EINVAL;
    725   1.1  knakahar 		else if (dst->sa_family == AF_INET6
    726   1.1  knakahar 		    && dst->sa_len != sizeof(struct sockaddr_in6))
    727   1.1  knakahar 			return EINVAL;
    728   1.1  knakahar 
    729   1.1  knakahar 		error = l2tp_set_tunnel(&sc->l2tp_ec.ec_if, src, dst);
    730   1.1  knakahar 		break;
    731   1.1  knakahar 
    732   1.1  knakahar 	case SIOCDIFPHYADDR:
    733   1.1  knakahar 		l2tp_delete_tunnel(&sc->l2tp_ec.ec_if);
    734   1.1  knakahar 		break;
    735   1.1  knakahar 
    736   1.1  knakahar 	case SIOCGIFPSRCADDR:
    737   1.1  knakahar #ifdef INET6
    738   1.1  knakahar 	case SIOCGIFPSRCADDR_IN6:
    739   1.1  knakahar #endif /* INET6 */
    740   1.1  knakahar 		bound = curlwp_bind();
    741   1.1  knakahar 		var = l2tp_getref_variant(sc, &psref);
    742   1.1  knakahar 		if (var == NULL) {
    743   1.1  knakahar 			curlwp_bindx(bound);
    744   1.1  knakahar 			error = EADDRNOTAVAIL;
    745   1.1  knakahar 			goto bad;
    746   1.1  knakahar 		}
    747   1.1  knakahar 		if (var->lv_psrc == NULL) {
    748   1.1  knakahar 			l2tp_putref_variant(var, &psref);
    749   1.1  knakahar 			curlwp_bindx(bound);
    750   1.1  knakahar 			error = EADDRNOTAVAIL;
    751   1.1  knakahar 			goto bad;
    752   1.1  knakahar 		}
    753   1.1  knakahar 		src = var->lv_psrc;
    754   1.1  knakahar 		switch (cmd) {
    755   1.1  knakahar #ifdef INET
    756   1.1  knakahar 		case SIOCGIFPSRCADDR:
    757   1.1  knakahar 			dst = &ifr->ifr_addr;
    758   1.1  knakahar 			size = sizeof(ifr->ifr_addr);
    759   1.1  knakahar 			break;
    760   1.1  knakahar #endif /* INET */
    761   1.1  knakahar #ifdef INET6
    762   1.1  knakahar 		case SIOCGIFPSRCADDR_IN6:
    763   1.1  knakahar 			dst = (struct sockaddr *)
    764   1.1  knakahar 				&(((struct in6_ifreq *)data)->ifr_addr);
    765   1.1  knakahar 			size = sizeof(((struct in6_ifreq *)data)->ifr_addr);
    766   1.1  knakahar 			break;
    767   1.1  knakahar #endif /* INET6 */
    768   1.1  knakahar 		default:
    769   1.1  knakahar 			l2tp_putref_variant(var, &psref);
    770   1.1  knakahar 			curlwp_bindx(bound);
    771   1.1  knakahar 			error = EADDRNOTAVAIL;
    772   1.1  knakahar 			goto bad;
    773   1.1  knakahar 		}
    774   1.1  knakahar 		if (src->sa_len > size) {
    775   1.1  knakahar 			l2tp_putref_variant(var, &psref);
    776   1.1  knakahar 			curlwp_bindx(bound);
    777   1.1  knakahar 			return EINVAL;
    778   1.1  knakahar 		}
    779   1.1  knakahar 		sockaddr_copy(dst, src->sa_len, src);
    780   1.1  knakahar 		l2tp_putref_variant(var, &psref);
    781   1.1  knakahar 		curlwp_bindx(bound);
    782   1.1  knakahar 		break;
    783   1.1  knakahar 
    784   1.1  knakahar 	case SIOCGIFPDSTADDR:
    785   1.1  knakahar #ifdef INET6
    786   1.1  knakahar 	case SIOCGIFPDSTADDR_IN6:
    787   1.1  knakahar #endif /* INET6 */
    788   1.1  knakahar 		bound = curlwp_bind();
    789   1.1  knakahar 		var = l2tp_getref_variant(sc, &psref);
    790   1.1  knakahar 		if (var == NULL) {
    791   1.1  knakahar 			curlwp_bindx(bound);
    792   1.1  knakahar 			error = EADDRNOTAVAIL;
    793   1.1  knakahar 			goto bad;
    794   1.1  knakahar 		}
    795   1.1  knakahar 		if (var->lv_pdst == NULL) {
    796   1.1  knakahar 			l2tp_putref_variant(var, &psref);
    797   1.1  knakahar 			curlwp_bindx(bound);
    798   1.1  knakahar 			error = EADDRNOTAVAIL;
    799   1.1  knakahar 			goto bad;
    800   1.1  knakahar 		}
    801   1.1  knakahar 		src = var->lv_pdst;
    802   1.1  knakahar 		switch (cmd) {
    803   1.1  knakahar #ifdef INET
    804   1.1  knakahar 		case SIOCGIFPDSTADDR:
    805   1.1  knakahar 			dst = &ifr->ifr_addr;
    806   1.1  knakahar 			size = sizeof(ifr->ifr_addr);
    807   1.1  knakahar 			break;
    808   1.1  knakahar #endif /* INET */
    809   1.1  knakahar #ifdef INET6
    810   1.1  knakahar 		case SIOCGIFPDSTADDR_IN6:
    811   1.1  knakahar 			dst = (struct sockaddr *)
    812   1.1  knakahar 				&(((struct in6_ifreq *)data)->ifr_addr);
    813   1.1  knakahar 			size = sizeof(((struct in6_ifreq *)data)->ifr_addr);
    814   1.1  knakahar 			break;
    815   1.1  knakahar #endif /* INET6 */
    816   1.1  knakahar 		default:
    817   1.1  knakahar 			l2tp_putref_variant(var, &psref);
    818   1.1  knakahar 			curlwp_bindx(bound);
    819   1.1  knakahar 			error = EADDRNOTAVAIL;
    820   1.1  knakahar 			goto bad;
    821   1.1  knakahar 		}
    822   1.1  knakahar 		if (src->sa_len > size) {
    823   1.1  knakahar 			l2tp_putref_variant(var, &psref);
    824   1.1  knakahar 			curlwp_bindx(bound);
    825   1.1  knakahar 			return EINVAL;
    826   1.1  knakahar 		}
    827   1.1  knakahar 		sockaddr_copy(dst, src->sa_len, src);
    828   1.1  knakahar 		l2tp_putref_variant(var, &psref);
    829   1.1  knakahar 		curlwp_bindx(bound);
    830   1.1  knakahar 		break;
    831   1.1  knakahar 
    832   1.1  knakahar 	case SIOCGLIFPHYADDR:
    833   1.1  knakahar 		bound = curlwp_bind();
    834   1.1  knakahar 		var = l2tp_getref_variant(sc, &psref);
    835   1.1  knakahar 		if (var == NULL) {
    836   1.1  knakahar 			curlwp_bindx(bound);
    837   1.1  knakahar 			error = EADDRNOTAVAIL;
    838   1.1  knakahar 			goto bad;
    839   1.1  knakahar 		}
    840   1.1  knakahar 		if (var->lv_psrc == NULL || var->lv_pdst == NULL) {
    841   1.1  knakahar 			l2tp_putref_variant(var, &psref);
    842   1.1  knakahar 			curlwp_bindx(bound);
    843   1.1  knakahar 			error = EADDRNOTAVAIL;
    844   1.1  knakahar 			goto bad;
    845   1.1  knakahar 		}
    846   1.1  knakahar 
    847   1.1  knakahar 		/* copy src */
    848   1.1  knakahar 		src = var->lv_psrc;
    849   1.1  knakahar 		dst = (struct sockaddr *)
    850   1.1  knakahar 			&(((struct if_laddrreq *)data)->addr);
    851   1.1  knakahar 		size = sizeof(((struct if_laddrreq *)data)->addr);
    852   1.1  knakahar 		if (src->sa_len > size) {
    853   1.1  knakahar 			l2tp_putref_variant(var, &psref);
    854   1.1  knakahar 			curlwp_bindx(bound);
    855   1.1  knakahar 			return EINVAL;
    856   1.1  knakahar                 }
    857   1.1  knakahar 		sockaddr_copy(dst, src->sa_len, src);
    858   1.1  knakahar 
    859   1.1  knakahar 		/* copy dst */
    860   1.1  knakahar 		src = var->lv_pdst;
    861   1.1  knakahar 		dst = (struct sockaddr *)
    862   1.1  knakahar 			&(((struct if_laddrreq *)data)->dstaddr);
    863   1.1  knakahar 		size = sizeof(((struct if_laddrreq *)data)->dstaddr);
    864   1.1  knakahar 		if (src->sa_len > size) {
    865   1.1  knakahar 			l2tp_putref_variant(var, &psref);
    866   1.1  knakahar 			curlwp_bindx(bound);
    867   1.1  knakahar 			return EINVAL;
    868   1.1  knakahar                 }
    869   1.1  knakahar 		sockaddr_copy(dst, src->sa_len, src);
    870   1.1  knakahar 		l2tp_putref_variant(var, &psref);
    871   1.1  knakahar 		curlwp_bindx(bound);
    872   1.1  knakahar 		break;
    873   1.1  knakahar 
    874   1.1  knakahar 	case SIOCSL2TPSESSION:
    875   1.1  knakahar 		if ((error = copyin(ifr->ifr_data, &l2tpr, sizeof(l2tpr))) != 0)
    876   1.1  knakahar 			break;
    877   1.1  knakahar 
    878   1.1  knakahar 		/* session id must not zero */
    879   1.1  knakahar 		if (l2tpr.my_sess_id == 0 || l2tpr.peer_sess_id == 0)
    880   1.1  knakahar 			return EINVAL;
    881   1.1  knakahar 
    882   1.1  knakahar 		bound = curlwp_bind();
    883   1.1  knakahar 		var_tmp = l2tp_lookup_session_ref(l2tpr.my_sess_id, &psref);
    884   1.1  knakahar 		if (var_tmp != NULL) {
    885   1.1  knakahar 			/* duplicate session id */
    886   1.1  knakahar 			log(LOG_WARNING, "%s: duplicate session id %" PRIu32 " of %s\n",
    887   1.1  knakahar 				sc->l2tp_ec.ec_if.if_xname, l2tpr.my_sess_id,
    888   1.1  knakahar 				var_tmp->lv_softc->l2tp_ec.ec_if.if_xname);
    889   1.1  knakahar 			psref_release(&psref, &var_tmp->lv_psref,
    890   1.1  knakahar 			    lv_psref_class);
    891   1.1  knakahar 			curlwp_bindx(bound);
    892   1.1  knakahar 			return EINVAL;
    893   1.1  knakahar 		}
    894   1.1  knakahar 		curlwp_bindx(bound);
    895   1.1  knakahar 
    896   1.1  knakahar 		error = l2tp_set_session(sc, l2tpr.my_sess_id, l2tpr.peer_sess_id);
    897   1.1  knakahar 		break;
    898   1.1  knakahar 	case SIOCDL2TPSESSION:
    899   1.1  knakahar 		l2tp_clear_session(sc);
    900   1.1  knakahar 		break;
    901   1.1  knakahar 	case SIOCSL2TPCOOKIE:
    902   1.1  knakahar 		if ((error = copyin(ifr->ifr_data, &l2tpr, sizeof(l2tpr))) != 0)
    903   1.1  knakahar 			break;
    904   1.1  knakahar 
    905   1.1  knakahar 		error = l2tp_set_cookie(sc, l2tpr.my_cookie, l2tpr.my_cookie_len,
    906   1.1  knakahar 		    l2tpr.peer_cookie, l2tpr.peer_cookie_len);
    907   1.1  knakahar 		break;
    908   1.1  knakahar 	case SIOCDL2TPCOOKIE:
    909   1.1  knakahar 		l2tp_clear_cookie(sc);
    910   1.1  knakahar 		break;
    911   1.1  knakahar 	case SIOCSL2TPSTATE:
    912   1.1  knakahar 		if ((error = copyin(ifr->ifr_data, &l2tpr, sizeof(l2tpr))) != 0)
    913   1.1  knakahar 			break;
    914   1.1  knakahar 
    915   1.1  knakahar 		l2tp_set_state(sc, l2tpr.state);
    916   1.1  knakahar 		break;
    917   1.1  knakahar 	case SIOCGL2TP:
    918   1.1  knakahar 		/* get L2TPV3 session info */
    919   1.1  knakahar 		memset(&l2tpr, 0, sizeof(l2tpr));
    920   1.1  knakahar 
    921   1.1  knakahar 		bound = curlwp_bind();
    922   1.1  knakahar 		var = l2tp_getref_variant(sc, &psref);
    923   1.1  knakahar 		if (var == NULL) {
    924   1.1  knakahar 			curlwp_bindx(bound);
    925   1.1  knakahar 			error = EADDRNOTAVAIL;
    926   1.1  knakahar 			goto bad;
    927   1.1  knakahar 		}
    928   1.1  knakahar 
    929   1.1  knakahar 		l2tpr.state = var->lv_state;
    930   1.1  knakahar 		l2tpr.my_sess_id = var->lv_my_sess_id;
    931   1.1  knakahar 		l2tpr.peer_sess_id = var->lv_peer_sess_id;
    932   1.1  knakahar 		l2tpr.my_cookie = var->lv_my_cookie;
    933   1.1  knakahar 		l2tpr.my_cookie_len = var->lv_my_cookie_len;
    934   1.1  knakahar 		l2tpr.peer_cookie = var->lv_peer_cookie;
    935   1.1  knakahar 		l2tpr.peer_cookie_len = var->lv_peer_cookie_len;
    936   1.1  knakahar 		l2tp_putref_variant(var, &psref);
    937   1.1  knakahar 		curlwp_bindx(bound);
    938   1.1  knakahar 
    939   1.1  knakahar 		error = copyout(&l2tpr, ifr->ifr_data, sizeof(l2tpr));
    940   1.1  knakahar 		break;
    941   1.1  knakahar 
    942   1.1  knakahar 	default:
    943   1.1  knakahar 		error =	ifioctl_common(ifp, cmd, data);
    944   1.1  knakahar 		break;
    945   1.1  knakahar 	}
    946   1.1  knakahar  bad:
    947   1.1  knakahar 	return error;
    948   1.1  knakahar }
    949   1.1  knakahar 
    950   1.1  knakahar static int
    951   1.1  knakahar l2tp_set_tunnel(struct ifnet *ifp, struct sockaddr *src, struct sockaddr *dst)
    952   1.1  knakahar {
    953   1.1  knakahar 	struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
    954   1.1  knakahar 	    l2tp_ec.ec_if);
    955   1.1  knakahar 	struct sockaddr *osrc, *odst;
    956   1.1  knakahar 	struct sockaddr *nsrc, *ndst;
    957   1.1  knakahar 	struct l2tp_variant *ovar, *nvar;
    958   1.1  knakahar 	int error;
    959   1.1  knakahar 
    960   1.1  knakahar 	nsrc = sockaddr_dup(src, M_WAITOK);
    961   1.1  knakahar 	ndst = sockaddr_dup(dst, M_WAITOK);
    962   1.1  knakahar 
    963   1.1  knakahar 	nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
    964   1.1  knakahar 
    965   1.1  knakahar 	error = encap_lock_enter();
    966   1.1  knakahar 	if (error)
    967   1.1  knakahar 		goto error;
    968   1.1  knakahar 
    969   1.1  knakahar 	mutex_enter(&sc->l2tp_lock);
    970   1.1  knakahar 
    971   1.1  knakahar 	ovar = sc->l2tp_var;
    972   1.1  knakahar 	osrc = ovar->lv_psrc;
    973   1.1  knakahar 	odst = ovar->lv_pdst;
    974   1.1  knakahar 	*nvar = *ovar;
    975   1.1  knakahar 	psref_target_init(&nvar->lv_psref, lv_psref_class);
    976   1.1  knakahar 	nvar->lv_psrc = nsrc;
    977   1.1  knakahar 	nvar->lv_pdst = ndst;
    978   1.1  knakahar 	error = l2tp_encap_attach(nvar);
    979   1.1  knakahar 	if (error) {
    980   1.1  knakahar 		mutex_exit(&sc->l2tp_lock);
    981   1.1  knakahar 		encap_lock_exit();
    982   1.1  knakahar 		goto error;
    983   1.1  knakahar 	}
    984   1.1  knakahar 	membar_producer();
    985   1.1  knakahar 	l2tp_variant_update(sc, nvar);
    986   1.1  knakahar 
    987   1.1  knakahar 	mutex_exit(&sc->l2tp_lock);
    988   1.1  knakahar 
    989   1.1  knakahar 	(void)l2tp_encap_detach(ovar);
    990   1.1  knakahar 	encap_lock_exit();
    991   1.1  knakahar 
    992   1.1  knakahar 	if (osrc)
    993   1.1  knakahar 		sockaddr_free(osrc);
    994   1.1  knakahar 	if (odst)
    995   1.1  knakahar 		sockaddr_free(odst);
    996   1.1  knakahar 	kmem_free(ovar, sizeof(*ovar));
    997   1.1  knakahar 
    998   1.1  knakahar 	return 0;
    999   1.1  knakahar 
   1000   1.1  knakahar error:
   1001   1.1  knakahar 	sockaddr_free(nsrc);
   1002   1.1  knakahar 	sockaddr_free(ndst);
   1003   1.1  knakahar 	kmem_free(nvar, sizeof(*nvar));
   1004   1.1  knakahar 
   1005   1.1  knakahar 	return error;
   1006   1.1  knakahar }
   1007   1.1  knakahar 
   1008   1.1  knakahar static void
   1009   1.1  knakahar l2tp_delete_tunnel(struct ifnet *ifp)
   1010   1.1  knakahar {
   1011   1.1  knakahar 	struct l2tp_softc *sc = container_of(ifp, struct l2tp_softc,
   1012   1.1  knakahar 	    l2tp_ec.ec_if);
   1013   1.1  knakahar 	struct sockaddr *osrc, *odst;
   1014   1.1  knakahar 	struct l2tp_variant *ovar, *nvar;
   1015   1.1  knakahar 	int error;
   1016   1.1  knakahar 
   1017   1.1  knakahar 	nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
   1018   1.1  knakahar 
   1019   1.1  knakahar 	error = encap_lock_enter();
   1020   1.1  knakahar 	if (error) {
   1021   1.1  knakahar 		kmem_free(nvar, sizeof(*nvar));
   1022   1.1  knakahar 		return;
   1023   1.1  knakahar 	}
   1024   1.1  knakahar 	mutex_enter(&sc->l2tp_lock);
   1025   1.1  knakahar 
   1026   1.1  knakahar 	ovar = sc->l2tp_var;
   1027   1.1  knakahar 	osrc = ovar->lv_psrc;
   1028   1.1  knakahar 	odst = ovar->lv_pdst;
   1029   1.1  knakahar 	*nvar = *ovar;
   1030   1.1  knakahar 	psref_target_init(&nvar->lv_psref, lv_psref_class);
   1031   1.1  knakahar 	nvar->lv_psrc = NULL;
   1032   1.1  knakahar 	nvar->lv_pdst = NULL;
   1033   1.1  knakahar 	membar_producer();
   1034   1.1  knakahar 	l2tp_variant_update(sc, nvar);
   1035   1.1  knakahar 
   1036   1.1  knakahar 	mutex_exit(&sc->l2tp_lock);
   1037   1.1  knakahar 
   1038   1.1  knakahar 	(void)l2tp_encap_detach(ovar);
   1039   1.1  knakahar 	encap_lock_exit();
   1040   1.1  knakahar 
   1041   1.1  knakahar 	if (osrc)
   1042   1.1  knakahar 		sockaddr_free(osrc);
   1043   1.1  knakahar 	if (odst)
   1044   1.1  knakahar 		sockaddr_free(odst);
   1045   1.1  knakahar 	kmem_free(ovar, sizeof(*ovar));
   1046   1.1  knakahar }
   1047   1.1  knakahar 
   1048   1.2  knakahar static int
   1049   1.9  knakahar id_hash_func(uint32_t id, u_long mask)
   1050   1.1  knakahar {
   1051   1.1  knakahar 	uint32_t hash;
   1052   1.1  knakahar 
   1053   1.1  knakahar 	hash = (id >> 16) ^ id;
   1054   1.1  knakahar 	hash = (hash >> 4) ^ hash;
   1055   1.1  knakahar 
   1056   1.9  knakahar 	return hash & mask;
   1057   1.1  knakahar }
   1058   1.1  knakahar 
   1059   1.1  knakahar static void
   1060   1.1  knakahar l2tp_hash_init(void)
   1061   1.1  knakahar {
   1062   1.1  knakahar 
   1063   1.1  knakahar 	l2tp_hash.lists = hashinit(L2TP_ID_HASH_SIZE, HASH_PSLIST, true,
   1064   1.9  knakahar 	    &l2tp_hash.mask);
   1065   1.1  knakahar }
   1066   1.1  knakahar 
   1067   1.1  knakahar static int
   1068   1.1  knakahar l2tp_hash_fini(void)
   1069   1.1  knakahar {
   1070   1.1  knakahar 	int i;
   1071   1.1  knakahar 
   1072   1.1  knakahar 	mutex_enter(&l2tp_hash.lock);
   1073   1.1  knakahar 
   1074   1.9  knakahar 	for (i = 0; i < l2tp_hash.mask + 1; i++) {
   1075   1.1  knakahar 		if (PSLIST_WRITER_FIRST(&l2tp_hash.lists[i], struct l2tp_softc,
   1076   1.1  knakahar 			l2tp_hash) != NULL) {
   1077   1.1  knakahar 			mutex_exit(&l2tp_hash.lock);
   1078   1.1  knakahar 			return EBUSY;
   1079   1.1  knakahar 		}
   1080   1.1  knakahar 	}
   1081   1.9  knakahar 	for (i = 0; i < l2tp_hash.mask + 1; i++)
   1082   1.1  knakahar 		PSLIST_DESTROY(&l2tp_hash.lists[i]);
   1083   1.1  knakahar 
   1084   1.1  knakahar 	mutex_exit(&l2tp_hash.lock);
   1085   1.1  knakahar 
   1086   1.9  knakahar 	hashdone(l2tp_hash.lists, HASH_PSLIST, l2tp_hash.mask);
   1087   1.1  knakahar 
   1088   1.1  knakahar 	return 0;
   1089   1.1  knakahar }
   1090   1.1  knakahar 
   1091   1.1  knakahar static int
   1092   1.1  knakahar l2tp_set_session(struct l2tp_softc *sc, uint32_t my_sess_id,
   1093   1.1  knakahar     uint32_t peer_sess_id)
   1094   1.1  knakahar {
   1095   1.1  knakahar 	uint32_t idx;
   1096   1.1  knakahar 	struct l2tp_variant *nvar;
   1097   1.1  knakahar 	struct l2tp_variant *ovar;
   1098   1.1  knakahar 	struct ifnet *ifp = &sc->l2tp_ec.ec_if;
   1099   1.1  knakahar 
   1100   1.1  knakahar 	nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
   1101   1.1  knakahar 
   1102   1.1  knakahar 	mutex_enter(&sc->l2tp_lock);
   1103   1.1  knakahar 	ovar = sc->l2tp_var;
   1104   1.1  knakahar 	*nvar = *ovar;
   1105   1.1  knakahar 	psref_target_init(&nvar->lv_psref, lv_psref_class);
   1106   1.1  knakahar 	nvar->lv_my_sess_id = my_sess_id;
   1107   1.1  knakahar 	nvar->lv_peer_sess_id = peer_sess_id;
   1108   1.1  knakahar 	membar_producer();
   1109   1.1  knakahar 
   1110   1.1  knakahar 	mutex_enter(&l2tp_hash.lock);
   1111   1.1  knakahar 	if (ovar->lv_my_sess_id > 0 && ovar->lv_peer_sess_id > 0) {
   1112   1.1  knakahar 		PSLIST_WRITER_REMOVE(sc, l2tp_hash);
   1113   1.1  knakahar 		pserialize_perform(l2tp_psz);
   1114   1.1  knakahar 	}
   1115   1.1  knakahar 	mutex_exit(&l2tp_hash.lock);
   1116  1.12  knakahar 	PSLIST_ENTRY_DESTROY(sc, l2tp_hash);
   1117   1.1  knakahar 
   1118   1.1  knakahar 	l2tp_variant_update(sc, nvar);
   1119   1.1  knakahar 	mutex_exit(&sc->l2tp_lock);
   1120   1.1  knakahar 
   1121   1.9  knakahar 	idx = id_hash_func(nvar->lv_my_sess_id, l2tp_hash.mask);
   1122   1.1  knakahar 	if ((ifp->if_flags & IFF_DEBUG) != 0)
   1123   1.1  knakahar 		log(LOG_DEBUG, "%s: add hash entry: sess_id=%" PRIu32 ", idx=%" PRIu32 "\n",
   1124   1.1  knakahar 		    sc->l2tp_ec.ec_if.if_xname, nvar->lv_my_sess_id, idx);
   1125   1.1  knakahar 
   1126  1.12  knakahar 	PSLIST_ENTRY_INIT(sc, l2tp_hash);
   1127   1.1  knakahar 	mutex_enter(&l2tp_hash.lock);
   1128   1.1  knakahar 	PSLIST_WRITER_INSERT_HEAD(&l2tp_hash.lists[idx], sc, l2tp_hash);
   1129   1.1  knakahar 	mutex_exit(&l2tp_hash.lock);
   1130   1.1  knakahar 
   1131   1.1  knakahar 	kmem_free(ovar, sizeof(*ovar));
   1132   1.1  knakahar 	return 0;
   1133   1.1  knakahar }
   1134   1.1  knakahar 
   1135   1.1  knakahar static int
   1136   1.1  knakahar l2tp_clear_session(struct l2tp_softc *sc)
   1137   1.1  knakahar {
   1138   1.1  knakahar 	struct l2tp_variant *nvar;
   1139   1.1  knakahar 	struct l2tp_variant *ovar;
   1140   1.1  knakahar 
   1141   1.1  knakahar 	nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
   1142   1.1  knakahar 
   1143   1.1  knakahar 	mutex_enter(&sc->l2tp_lock);
   1144   1.1  knakahar 	ovar = sc->l2tp_var;
   1145   1.1  knakahar 	*nvar = *ovar;
   1146   1.1  knakahar 	psref_target_init(&nvar->lv_psref, lv_psref_class);
   1147   1.1  knakahar 	nvar->lv_my_sess_id = 0;
   1148   1.1  knakahar 	nvar->lv_peer_sess_id = 0;
   1149   1.1  knakahar 	membar_producer();
   1150   1.1  knakahar 
   1151   1.1  knakahar 	mutex_enter(&l2tp_hash.lock);
   1152   1.1  knakahar 	if (ovar->lv_my_sess_id > 0 && ovar->lv_peer_sess_id > 0) {
   1153   1.1  knakahar 		PSLIST_WRITER_REMOVE(sc, l2tp_hash);
   1154   1.1  knakahar 		pserialize_perform(l2tp_psz);
   1155   1.1  knakahar 	}
   1156   1.1  knakahar 	mutex_exit(&l2tp_hash.lock);
   1157   1.1  knakahar 
   1158   1.1  knakahar 	l2tp_variant_update(sc, nvar);
   1159   1.1  knakahar 	mutex_exit(&sc->l2tp_lock);
   1160   1.1  knakahar 	kmem_free(ovar, sizeof(*ovar));
   1161   1.1  knakahar 	return 0;
   1162   1.1  knakahar }
   1163   1.1  knakahar 
   1164   1.1  knakahar struct l2tp_variant *
   1165   1.1  knakahar l2tp_lookup_session_ref(uint32_t id, struct psref *psref)
   1166   1.1  knakahar {
   1167   1.1  knakahar 	int idx;
   1168   1.1  knakahar 	int s;
   1169   1.1  knakahar 	struct l2tp_softc *sc;
   1170   1.1  knakahar 
   1171   1.9  knakahar 	idx = id_hash_func(id, l2tp_hash.mask);
   1172   1.1  knakahar 
   1173   1.1  knakahar 	s = pserialize_read_enter();
   1174   1.1  knakahar 	PSLIST_READER_FOREACH(sc, &l2tp_hash.lists[idx], struct l2tp_softc,
   1175   1.1  knakahar 	    l2tp_hash) {
   1176   1.1  knakahar 		struct l2tp_variant *var = sc->l2tp_var;
   1177   1.1  knakahar 		if (var == NULL)
   1178   1.1  knakahar 			continue;
   1179   1.1  knakahar 		if (var->lv_my_sess_id != id)
   1180   1.1  knakahar 			continue;
   1181   1.1  knakahar 		psref_acquire(psref, &var->lv_psref, lv_psref_class);
   1182   1.1  knakahar 		pserialize_read_exit(s);
   1183   1.1  knakahar 		return var;
   1184   1.1  knakahar 	}
   1185   1.1  knakahar 	pserialize_read_exit(s);
   1186   1.1  knakahar 	return NULL;
   1187   1.1  knakahar }
   1188   1.1  knakahar 
   1189   1.1  knakahar /*
   1190   1.1  knakahar  * l2tp_variant update API.
   1191   1.1  knakahar  *
   1192   1.1  knakahar  * Assumption:
   1193   1.1  knakahar  * reader side dereferences sc->l2tp_var in reader critical section only,
   1194   1.1  knakahar  * that is, all of reader sides do not reader the sc->l2tp_var after
   1195   1.1  knakahar  * pserialize_perform().
   1196   1.1  knakahar  */
   1197   1.1  knakahar static void
   1198   1.1  knakahar l2tp_variant_update(struct l2tp_softc *sc, struct l2tp_variant *nvar)
   1199   1.1  knakahar {
   1200   1.1  knakahar 	struct ifnet *ifp = &sc->l2tp_ec.ec_if;
   1201   1.1  knakahar 	struct l2tp_variant *ovar = sc->l2tp_var;
   1202   1.1  knakahar 
   1203   1.1  knakahar 	KASSERT(mutex_owned(&sc->l2tp_lock));
   1204   1.1  knakahar 
   1205   1.1  knakahar 	sc->l2tp_var = nvar;
   1206   1.1  knakahar 	pserialize_perform(l2tp_psz);
   1207   1.1  knakahar 	psref_target_destroy(&ovar->lv_psref, lv_psref_class);
   1208   1.1  knakahar 
   1209   1.1  knakahar 	/*
   1210   1.1  knakahar 	 * In the manual of atomic_swap_ptr(3), there is no mention if 2nd
   1211   1.1  knakahar 	 * argument is rewrite or not. So, use sc->l2tp_var instead of nvar.
   1212   1.1  knakahar 	 */
   1213   1.5  knakahar 	if (sc->l2tp_var != NULL) {
   1214   1.5  knakahar 		if (sc->l2tp_var->lv_psrc != NULL
   1215   1.5  knakahar 		    && sc->l2tp_var->lv_pdst != NULL)
   1216   1.5  knakahar 			ifp->if_flags |= IFF_RUNNING;
   1217   1.5  knakahar 		else
   1218   1.5  knakahar 			ifp->if_flags &= ~IFF_RUNNING;
   1219   1.5  knakahar 	}
   1220   1.1  knakahar }
   1221   1.1  knakahar 
   1222   1.1  knakahar static int
   1223   1.1  knakahar l2tp_set_cookie(struct l2tp_softc *sc, uint64_t my_cookie, u_int my_cookie_len,
   1224   1.1  knakahar     uint64_t peer_cookie, u_int peer_cookie_len)
   1225   1.1  knakahar {
   1226   1.1  knakahar 	struct l2tp_variant *nvar;
   1227   1.1  knakahar 
   1228   1.1  knakahar 	if (my_cookie == 0 || peer_cookie == 0)
   1229   1.1  knakahar 		return EINVAL;
   1230   1.1  knakahar 
   1231   1.1  knakahar 	if (my_cookie_len != 4 && my_cookie_len != 8
   1232   1.1  knakahar 	    && peer_cookie_len != 4 && peer_cookie_len != 8)
   1233   1.1  knakahar 		return EINVAL;
   1234   1.1  knakahar 
   1235   1.1  knakahar 	nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
   1236   1.1  knakahar 
   1237   1.1  knakahar 	mutex_enter(&sc->l2tp_lock);
   1238   1.1  knakahar 
   1239   1.1  knakahar 	*nvar = *sc->l2tp_var;
   1240   1.1  knakahar 	psref_target_init(&nvar->lv_psref, lv_psref_class);
   1241   1.1  knakahar 	nvar->lv_my_cookie = my_cookie;
   1242   1.1  knakahar 	nvar->lv_my_cookie_len = my_cookie_len;
   1243   1.1  knakahar 	nvar->lv_peer_cookie = peer_cookie;
   1244   1.1  knakahar 	nvar->lv_peer_cookie_len = peer_cookie_len;
   1245   1.1  knakahar 	nvar->lv_use_cookie = L2TP_COOKIE_ON;
   1246   1.1  knakahar 	membar_producer();
   1247   1.1  knakahar 	l2tp_variant_update(sc, nvar);
   1248   1.1  knakahar 
   1249   1.1  knakahar 	mutex_exit(&sc->l2tp_lock);
   1250   1.1  knakahar 
   1251   1.1  knakahar 	struct ifnet *ifp = &sc->l2tp_ec.ec_if;
   1252   1.1  knakahar 	if ((ifp->if_flags & IFF_DEBUG) != 0) {
   1253   1.1  knakahar 		log(LOG_DEBUG,
   1254   1.1  knakahar 		    "%s: set cookie: "
   1255   1.1  knakahar 		    "local cookie_len=%u local cookie=%" PRIu64 ", "
   1256   1.1  knakahar 		    "remote cookie_len=%u remote cookie=%" PRIu64 "\n",
   1257   1.1  knakahar 		    ifp->if_xname, my_cookie_len, my_cookie,
   1258   1.1  knakahar 		    peer_cookie_len, peer_cookie);
   1259   1.1  knakahar 	}
   1260   1.1  knakahar 
   1261   1.1  knakahar 	return 0;
   1262   1.1  knakahar }
   1263   1.1  knakahar 
   1264   1.1  knakahar static void
   1265   1.1  knakahar l2tp_clear_cookie(struct l2tp_softc *sc)
   1266   1.1  knakahar {
   1267   1.1  knakahar 	struct l2tp_variant *nvar;
   1268   1.1  knakahar 
   1269   1.1  knakahar 	nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
   1270   1.1  knakahar 
   1271   1.1  knakahar 	mutex_enter(&sc->l2tp_lock);
   1272   1.1  knakahar 
   1273   1.1  knakahar 	*nvar = *sc->l2tp_var;
   1274   1.1  knakahar 	psref_target_init(&nvar->lv_psref, lv_psref_class);
   1275   1.1  knakahar 	nvar->lv_my_cookie = 0;
   1276   1.1  knakahar 	nvar->lv_my_cookie_len = 0;
   1277   1.1  knakahar 	nvar->lv_peer_cookie = 0;
   1278   1.1  knakahar 	nvar->lv_peer_cookie_len = 0;
   1279   1.1  knakahar 	nvar->lv_use_cookie = L2TP_COOKIE_OFF;
   1280   1.1  knakahar 	membar_producer();
   1281   1.1  knakahar 	l2tp_variant_update(sc, nvar);
   1282   1.1  knakahar 
   1283   1.1  knakahar 	mutex_exit(&sc->l2tp_lock);
   1284   1.1  knakahar }
   1285   1.1  knakahar 
   1286   1.1  knakahar static void
   1287   1.1  knakahar l2tp_set_state(struct l2tp_softc *sc, int state)
   1288   1.1  knakahar {
   1289   1.1  knakahar 	struct ifnet *ifp = &sc->l2tp_ec.ec_if;
   1290   1.1  knakahar 	struct l2tp_variant *nvar;
   1291   1.1  knakahar 
   1292   1.1  knakahar 	nvar = kmem_alloc(sizeof(*nvar), KM_SLEEP);
   1293   1.1  knakahar 
   1294   1.1  knakahar 	mutex_enter(&sc->l2tp_lock);
   1295   1.1  knakahar 
   1296   1.1  knakahar 	*nvar = *sc->l2tp_var;
   1297   1.1  knakahar 	psref_target_init(&nvar->lv_psref, lv_psref_class);
   1298   1.1  knakahar 	nvar->lv_state = state;
   1299   1.1  knakahar 	membar_producer();
   1300   1.1  knakahar 	l2tp_variant_update(sc, nvar);
   1301   1.1  knakahar 
   1302   1.1  knakahar 	if (nvar->lv_state == L2TP_STATE_UP) {
   1303   1.1  knakahar 		ifp->if_link_state = LINK_STATE_UP;
   1304   1.1  knakahar 	} else {
   1305   1.1  knakahar 		ifp->if_link_state = LINK_STATE_DOWN;
   1306   1.1  knakahar 	}
   1307   1.1  knakahar 
   1308   1.1  knakahar 	mutex_exit(&sc->l2tp_lock);
   1309   1.1  knakahar 
   1310   1.1  knakahar #ifdef NOTYET
   1311   1.1  knakahar 	vlan_linkstate_notify(ifp, ifp->if_link_state);
   1312   1.1  knakahar #endif
   1313   1.1  knakahar }
   1314   1.1  knakahar 
   1315   1.1  knakahar static int
   1316   1.1  knakahar l2tp_encap_attach(struct l2tp_variant *var)
   1317   1.1  knakahar {
   1318   1.1  knakahar 	int error;
   1319   1.1  knakahar 
   1320   1.1  knakahar 	if (var == NULL || var->lv_psrc == NULL)
   1321   1.1  knakahar 		return EINVAL;
   1322   1.1  knakahar 
   1323   1.1  knakahar 	switch (var->lv_psrc->sa_family) {
   1324   1.1  knakahar #ifdef INET
   1325   1.1  knakahar 	case AF_INET:
   1326   1.1  knakahar 		error = in_l2tp_attach(var);
   1327   1.1  knakahar 		break;
   1328   1.1  knakahar #endif
   1329   1.1  knakahar #ifdef INET6
   1330   1.1  knakahar 	case AF_INET6:
   1331   1.1  knakahar 		error = in6_l2tp_attach(var);
   1332   1.1  knakahar 		break;
   1333   1.1  knakahar #endif
   1334   1.1  knakahar 	default:
   1335   1.1  knakahar 		error = EINVAL;
   1336   1.1  knakahar 		break;
   1337   1.1  knakahar 	}
   1338   1.1  knakahar 
   1339   1.1  knakahar 	return error;
   1340   1.1  knakahar }
   1341   1.1  knakahar 
   1342   1.1  knakahar static int
   1343   1.1  knakahar l2tp_encap_detach(struct l2tp_variant *var)
   1344   1.1  knakahar {
   1345   1.1  knakahar 	int error;
   1346   1.1  knakahar 
   1347   1.1  knakahar 	if (var == NULL || var->lv_psrc == NULL)
   1348   1.1  knakahar 		return EINVAL;
   1349   1.1  knakahar 
   1350   1.1  knakahar 	switch (var->lv_psrc->sa_family) {
   1351   1.1  knakahar #ifdef INET
   1352   1.1  knakahar 	case AF_INET:
   1353   1.1  knakahar 		error = in_l2tp_detach(var);
   1354   1.1  knakahar 		break;
   1355   1.1  knakahar #endif
   1356   1.1  knakahar #ifdef INET6
   1357   1.1  knakahar 	case AF_INET6:
   1358   1.1  knakahar 		error = in6_l2tp_detach(var);
   1359   1.1  knakahar 		break;
   1360   1.1  knakahar #endif
   1361   1.1  knakahar 	default:
   1362   1.1  knakahar 		error = EINVAL;
   1363   1.1  knakahar 		break;
   1364   1.1  knakahar 	}
   1365   1.1  knakahar 
   1366   1.1  knakahar 	return error;
   1367   1.1  knakahar }
   1368   1.1  knakahar 
   1369   1.1  knakahar int
   1370   1.1  knakahar l2tp_check_nesting(struct ifnet *ifp, struct mbuf *m)
   1371   1.1  knakahar {
   1372   1.1  knakahar 
   1373  1.16  knakahar 	return if_tunnel_check_nesting(ifp, m, max_l2tp_nesting);
   1374   1.1  knakahar }
   1375   1.1  knakahar 
   1376   1.1  knakahar /*
   1377   1.1  knakahar  * Module infrastructure
   1378   1.1  knakahar  */
   1379   1.1  knakahar #include "if_module.h"
   1380   1.1  knakahar 
   1381   1.1  knakahar IF_MODULE(MODULE_CLASS_DRIVER, l2tp, "")
   1382   1.1  knakahar 
   1383   1.1  knakahar 
   1384   1.1  knakahar /* TODO: IP_TCPMSS support */
   1385   1.1  knakahar #ifdef IP_TCPMSS
   1386   1.1  knakahar static int l2tp_need_tcpmss_clamp(struct ifnet *);
   1387   1.1  knakahar #ifdef INET
   1388   1.1  knakahar static struct mbuf *l2tp_tcpmss4_clamp(struct ifnet *, struct mbuf *);
   1389   1.1  knakahar #endif
   1390   1.1  knakahar #ifdef INET6
   1391   1.1  knakahar static struct mbuf *l2tp_tcpmss6_clamp(struct ifnet *, struct mbuf *);
   1392   1.1  knakahar #endif
   1393   1.1  knakahar 
   1394   1.1  knakahar struct mbuf *
   1395  1.18      maxv l2tp_tcpmss_clamp(struct ifnet *ifp, struct mbuf *m)
   1396   1.1  knakahar {
   1397  1.18      maxv 	struct ether_header *eh;
   1398  1.18      maxv 	struct ether_vlan_header evh;
   1399   1.1  knakahar 
   1400  1.18      maxv 	if (!l2tp_need_tcpmss_clamp(ifp)) {
   1401  1.18      maxv 		return m;
   1402  1.18      maxv 	}
   1403  1.18      maxv 
   1404  1.19      maxv 	if (m->m_pkthdr.len < sizeof(evh)) {
   1405  1.19      maxv 		m_freem(m);
   1406  1.19      maxv 		return NULL;
   1407  1.19      maxv 	}
   1408  1.19      maxv 
   1409  1.18      maxv 	/* save ether header */
   1410  1.18      maxv 	m_copydata(m, 0, sizeof(evh), (void *)&evh);
   1411  1.18      maxv 	eh = (struct ether_header *)&evh;
   1412  1.18      maxv 
   1413  1.18      maxv 	switch (ntohs(eh->ether_type)) {
   1414  1.18      maxv 	case ETHERTYPE_VLAN: /* Ether + VLAN */
   1415  1.18      maxv 		if (m->m_pkthdr.len <= sizeof(struct ether_vlan_header))
   1416   1.1  knakahar 			break;
   1417  1.18      maxv 		m_adj(m, sizeof(struct ether_vlan_header));
   1418  1.18      maxv 		switch (ntohs(evh.evl_proto)) {
   1419   1.1  knakahar #ifdef INET
   1420  1.18      maxv 		case ETHERTYPE_IP: /* Ether + VLAN + IPv4 */
   1421   1.1  knakahar 			m = l2tp_tcpmss4_clamp(ifp, m);
   1422   1.1  knakahar 			if (m == NULL)
   1423   1.1  knakahar 				return NULL;
   1424   1.1  knakahar 			break;
   1425   1.1  knakahar #endif /* INET */
   1426   1.1  knakahar #ifdef INET6
   1427  1.18      maxv 		case ETHERTYPE_IPV6: /* Ether + VLAN + IPv6 */
   1428   1.1  knakahar 			m = l2tp_tcpmss6_clamp(ifp, m);
   1429   1.1  knakahar 			if (m == NULL)
   1430   1.1  knakahar 				return NULL;
   1431   1.1  knakahar 			break;
   1432   1.1  knakahar #endif /* INET6 */
   1433   1.1  knakahar 		default:
   1434   1.1  knakahar 			break;
   1435   1.1  knakahar 		}
   1436  1.18      maxv 
   1437  1.18      maxv 		/* restore ether header */
   1438  1.18      maxv 		M_PREPEND(m, sizeof(struct ether_vlan_header),
   1439  1.18      maxv 		    M_DONTWAIT);
   1440  1.18      maxv 		if (m == NULL)
   1441  1.18      maxv 			return NULL;
   1442  1.18      maxv 		*mtod(m, struct ether_vlan_header *) = evh;
   1443  1.18      maxv 		break;
   1444  1.18      maxv 
   1445  1.18      maxv #ifdef INET
   1446  1.18      maxv 	case ETHERTYPE_IP: /* Ether + IPv4 */
   1447  1.18      maxv 		if (m->m_pkthdr.len <= sizeof(struct ether_header))
   1448  1.18      maxv 			break;
   1449  1.18      maxv 		m_adj(m, sizeof(struct ether_header));
   1450  1.18      maxv 		m = l2tp_tcpmss4_clamp(ifp, m);
   1451  1.18      maxv 		if (m == NULL)
   1452  1.18      maxv 			return NULL;
   1453  1.18      maxv 		/* restore ether header */
   1454  1.18      maxv 		M_PREPEND(m, sizeof(struct ether_header), M_DONTWAIT);
   1455  1.18      maxv 		if (m == NULL)
   1456  1.18      maxv 			return NULL;
   1457  1.18      maxv 		*mtod(m, struct ether_header *) = *eh;
   1458  1.18      maxv 		break;
   1459  1.18      maxv #endif /* INET */
   1460  1.18      maxv 
   1461  1.18      maxv #ifdef INET6
   1462  1.18      maxv 	case ETHERTYPE_IPV6: /* Ether + IPv6 */
   1463  1.18      maxv 		if (m->m_pkthdr.len <= sizeof(struct ether_header))
   1464  1.18      maxv 			break;
   1465  1.18      maxv 		m_adj(m, sizeof(struct ether_header));
   1466  1.18      maxv 		m = l2tp_tcpmss6_clamp(ifp, m);
   1467  1.18      maxv 		if (m == NULL)
   1468  1.18      maxv 			return NULL;
   1469  1.18      maxv 		/* restore ether header */
   1470  1.18      maxv 		M_PREPEND(m, sizeof(struct ether_header), M_DONTWAIT);
   1471  1.18      maxv 		if (m == NULL)
   1472  1.18      maxv 			return NULL;
   1473  1.18      maxv 		*mtod(m, struct ether_header *) = *eh;
   1474  1.18      maxv 		break;
   1475  1.18      maxv #endif /* INET6 */
   1476  1.18      maxv 
   1477  1.18      maxv 	default:
   1478  1.18      maxv 		break;
   1479   1.1  knakahar 	}
   1480   1.1  knakahar 
   1481   1.1  knakahar 	return m;
   1482   1.1  knakahar }
   1483   1.1  knakahar 
   1484   1.1  knakahar static int
   1485   1.1  knakahar l2tp_need_tcpmss_clamp(struct ifnet *ifp)
   1486   1.1  knakahar {
   1487   1.1  knakahar 	int ret = 0;
   1488   1.1  knakahar 
   1489   1.1  knakahar #ifdef INET
   1490   1.1  knakahar 	if (ifp->if_tcpmss != 0)
   1491   1.1  knakahar 		ret = 1;
   1492  1.18      maxv #endif
   1493   1.1  knakahar 
   1494   1.1  knakahar #ifdef INET6
   1495   1.1  knakahar 	if (ifp->if_tcpmss6 != 0)
   1496   1.1  knakahar 		ret = 1;
   1497  1.18      maxv #endif
   1498   1.1  knakahar 
   1499   1.1  knakahar 	return ret;
   1500   1.1  knakahar }
   1501   1.1  knakahar 
   1502   1.1  knakahar #ifdef INET
   1503   1.1  knakahar static struct mbuf *
   1504   1.1  knakahar l2tp_tcpmss4_clamp(struct ifnet *ifp, struct mbuf *m)
   1505   1.1  knakahar {
   1506   1.1  knakahar 
   1507   1.1  knakahar 	if (ifp->if_tcpmss != 0) {
   1508   1.1  knakahar 		return ip_tcpmss(m, (ifp->if_tcpmss < 0) ?
   1509   1.1  knakahar 			ifp->if_mtu - IP_TCPMSS_EXTLEN :
   1510   1.1  knakahar 			ifp->if_tcpmss);
   1511   1.1  knakahar 	}
   1512   1.1  knakahar 	return m;
   1513   1.1  knakahar }
   1514   1.1  knakahar #endif /* INET */
   1515   1.1  knakahar 
   1516   1.1  knakahar #ifdef INET6
   1517   1.1  knakahar static struct mbuf *
   1518   1.1  knakahar l2tp_tcpmss6_clamp(struct ifnet *ifp, struct mbuf *m)
   1519   1.1  knakahar {
   1520   1.1  knakahar 	int ip6hdrlen;
   1521   1.1  knakahar 
   1522   1.1  knakahar 	if (ifp->if_tcpmss6 != 0 &&
   1523   1.1  knakahar 	    ip6_tcpmss_applicable(m, &ip6hdrlen)) {
   1524   1.1  knakahar 		return ip6_tcpmss(m, ip6hdrlen,
   1525   1.1  knakahar 			(ifp->if_tcpmss6 < 0) ?
   1526   1.1  knakahar 			ifp->if_mtu - IP6_TCPMSS_EXTLEN :
   1527   1.1  knakahar 			ifp->if_tcpmss6);
   1528   1.1  knakahar 	}
   1529   1.1  knakahar 	return m;
   1530   1.1  knakahar }
   1531   1.1  knakahar #endif /* INET6 */
   1532   1.1  knakahar 
   1533   1.1  knakahar #endif /* IP_TCPMSS */
   1534