npf_ext_log.c revision 1.1.6.4 1 1.1.6.4 tls /* $NetBSD: npf_ext_log.c,v 1.1.6.4 2013/06/23 06:20:25 tls Exp $ */
2 1.1.6.2 tls
3 1.1.6.2 tls /*-
4 1.1.6.2 tls * Copyright (c) 2010-2012 The NetBSD Foundation, Inc.
5 1.1.6.2 tls * All rights reserved.
6 1.1.6.2 tls *
7 1.1.6.2 tls * This material is based upon work partially supported by The
8 1.1.6.2 tls * NetBSD Foundation under a contract with Mindaugas Rasiukevicius.
9 1.1.6.2 tls *
10 1.1.6.2 tls * Redistribution and use in source and binary forms, with or without
11 1.1.6.2 tls * modification, are permitted provided that the following conditions
12 1.1.6.2 tls * are met:
13 1.1.6.2 tls * 1. Redistributions of source code must retain the above copyright
14 1.1.6.2 tls * notice, this list of conditions and the following disclaimer.
15 1.1.6.2 tls * 2. Redistributions in binary form must reproduce the above copyright
16 1.1.6.2 tls * notice, this list of conditions and the following disclaimer in the
17 1.1.6.2 tls * documentation and/or other materials provided with the distribution.
18 1.1.6.2 tls *
19 1.1.6.2 tls * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
20 1.1.6.2 tls * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
21 1.1.6.2 tls * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
22 1.1.6.2 tls * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
23 1.1.6.2 tls * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
24 1.1.6.2 tls * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
25 1.1.6.2 tls * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
26 1.1.6.2 tls * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
27 1.1.6.2 tls * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
28 1.1.6.2 tls * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
29 1.1.6.2 tls * POSSIBILITY OF SUCH DAMAGE.
30 1.1.6.2 tls */
31 1.1.6.2 tls
32 1.1.6.2 tls /*
33 1.1.6.2 tls * NPF logging extension.
34 1.1.6.2 tls */
35 1.1.6.2 tls
36 1.1.6.2 tls #include <sys/cdefs.h>
37 1.1.6.4 tls __KERNEL_RCSID(0, "$NetBSD: npf_ext_log.c,v 1.1.6.4 2013/06/23 06:20:25 tls Exp $");
38 1.1.6.2 tls
39 1.1.6.2 tls #include <sys/types.h>
40 1.1.6.2 tls #include <sys/module.h>
41 1.1.6.2 tls
42 1.1.6.2 tls #include <sys/conf.h>
43 1.1.6.2 tls #include <sys/kmem.h>
44 1.1.6.2 tls #include <sys/mbuf.h>
45 1.1.6.2 tls #include <sys/mutex.h>
46 1.1.6.2 tls #include <sys/queue.h>
47 1.1.6.2 tls
48 1.1.6.2 tls #include <net/if.h>
49 1.1.6.2 tls #include <net/if_types.h>
50 1.1.6.2 tls #include <net/bpf.h>
51 1.1.6.2 tls
52 1.1.6.2 tls #include "npf_impl.h"
53 1.1.6.2 tls
54 1.1.6.2 tls NPF_EXT_MODULE(npf_ext_log, "");
55 1.1.6.2 tls
56 1.1.6.2 tls #define NPFEXT_LOG_VER 1
57 1.1.6.2 tls
58 1.1.6.2 tls static void * npf_ext_log_id;
59 1.1.6.2 tls
60 1.1.6.2 tls typedef struct {
61 1.1.6.2 tls unsigned int if_idx;
62 1.1.6.2 tls } npf_ext_log_t;
63 1.1.6.2 tls
64 1.1.6.2 tls static int
65 1.1.6.2 tls npf_log_ctor(npf_rproc_t *rp, prop_dictionary_t params)
66 1.1.6.2 tls {
67 1.1.6.2 tls npf_ext_log_t *meta;
68 1.1.6.2 tls
69 1.1.6.2 tls meta = kmem_zalloc(sizeof(npf_ext_log_t), KM_SLEEP);
70 1.1.6.2 tls prop_dictionary_get_uint32(params, "log-interface", &meta->if_idx);
71 1.1.6.2 tls npf_rproc_assign(rp, meta);
72 1.1.6.2 tls return 0;
73 1.1.6.2 tls }
74 1.1.6.2 tls
75 1.1.6.2 tls static void
76 1.1.6.2 tls npf_log_dtor(npf_rproc_t *rp, void *meta)
77 1.1.6.2 tls {
78 1.1.6.2 tls kmem_free(meta, sizeof(npf_ext_log_t));
79 1.1.6.2 tls }
80 1.1.6.2 tls
81 1.1.6.2 tls static void
82 1.1.6.2 tls npf_log(npf_cache_t *npc, nbuf_t *nbuf, void *meta, int *decision)
83 1.1.6.2 tls {
84 1.1.6.3 tls struct mbuf *m = nbuf_head_mbuf(nbuf);
85 1.1.6.2 tls const npf_ext_log_t *log = meta;
86 1.1.6.2 tls ifnet_t *ifp;
87 1.1.6.2 tls int family;
88 1.1.6.2 tls
89 1.1.6.2 tls /* Set the address family. */
90 1.1.6.2 tls if (npf_iscached(npc, NPC_IP4)) {
91 1.1.6.2 tls family = AF_INET;
92 1.1.6.2 tls } else if (npf_iscached(npc, NPC_IP6)) {
93 1.1.6.2 tls family = AF_INET6;
94 1.1.6.2 tls } else {
95 1.1.6.2 tls family = AF_UNSPEC;
96 1.1.6.2 tls }
97 1.1.6.2 tls
98 1.1.6.2 tls KERNEL_LOCK(1, NULL);
99 1.1.6.2 tls
100 1.1.6.2 tls /* Find a pseudo-interface to log. */
101 1.1.6.2 tls ifp = if_byindex(log->if_idx);
102 1.1.6.2 tls if (ifp == NULL) {
103 1.1.6.2 tls /* No interface. */
104 1.1.6.2 tls KERNEL_UNLOCK_ONE(NULL);
105 1.1.6.2 tls return;
106 1.1.6.2 tls }
107 1.1.6.2 tls
108 1.1.6.2 tls /* Pass through BPF. */
109 1.1.6.2 tls ifp->if_opackets++;
110 1.1.6.2 tls ifp->if_obytes += m->m_pkthdr.len;
111 1.1.6.2 tls bpf_mtap_af(ifp, family, m);
112 1.1.6.2 tls KERNEL_UNLOCK_ONE(NULL);
113 1.1.6.2 tls }
114 1.1.6.2 tls
115 1.1.6.2 tls /*
116 1.1.6.2 tls * Module interface.
117 1.1.6.2 tls */
118 1.1.6.2 tls static int
119 1.1.6.2 tls npf_ext_log_modcmd(modcmd_t cmd, void *arg)
120 1.1.6.2 tls {
121 1.1.6.2 tls static const npf_ext_ops_t npf_log_ops = {
122 1.1.6.2 tls .version = NPFEXT_LOG_VER,
123 1.1.6.2 tls .ctx = NULL,
124 1.1.6.2 tls .ctor = npf_log_ctor,
125 1.1.6.2 tls .dtor = npf_log_dtor,
126 1.1.6.2 tls .proc = npf_log
127 1.1.6.2 tls };
128 1.1.6.2 tls int error;
129 1.1.6.2 tls
130 1.1.6.2 tls switch (cmd) {
131 1.1.6.2 tls case MODULE_CMD_INIT:
132 1.1.6.2 tls /*
133 1.1.6.2 tls * Initialise the NPF logging extension.
134 1.1.6.2 tls */
135 1.1.6.2 tls npf_ext_log_id = npf_ext_register("log", &npf_log_ops);
136 1.1.6.2 tls if (!npf_ext_log_id) {
137 1.1.6.2 tls return EEXIST;
138 1.1.6.2 tls }
139 1.1.6.2 tls break;
140 1.1.6.2 tls
141 1.1.6.2 tls case MODULE_CMD_FINI:
142 1.1.6.2 tls error = npf_ext_unregister(npf_ext_log_id);
143 1.1.6.2 tls if (error) {
144 1.1.6.2 tls return error;
145 1.1.6.2 tls }
146 1.1.6.2 tls break;
147 1.1.6.2 tls
148 1.1.6.2 tls case MODULE_CMD_AUTOUNLOAD:
149 1.1.6.2 tls /* Allow auto-unload only if NPF permits it. */
150 1.1.6.2 tls return npf_autounload_p() ? 0 : EBUSY;
151 1.1.6.2 tls
152 1.1.6.2 tls default:
153 1.1.6.2 tls return ENOTTY;
154 1.1.6.2 tls }
155 1.1.6.2 tls return 0;
156 1.1.6.2 tls }
157