pfil.c revision 1.1 1 1.1 mrg /* $NetBSD: pfil.c,v 1.1 1996/09/14 14:40:20 mrg Exp $ */
2 1.1 mrg
3 1.1 mrg /*
4 1.1 mrg * Copyright (c) 1996 Matthew R. Green
5 1.1 mrg * All rights reserved.
6 1.1 mrg *
7 1.1 mrg * Redistribution and use in source and binary forms, with or without
8 1.1 mrg * modification, are permitted provided that the following conditions
9 1.1 mrg * are met:
10 1.1 mrg * 1. Redistributions of source code must retain the above copyright
11 1.1 mrg * notice, this list of conditions and the following disclaimer.
12 1.1 mrg * 2. Redistributions in binary form must reproduce the above copyright
13 1.1 mrg * notice, this list of conditions and the following disclaimer in the
14 1.1 mrg * documentation and/or other materials provided with the distribution.
15 1.1 mrg * 3. All advertising materials mentioning features or use of this software
16 1.1 mrg * must display the following acknowledgement:
17 1.1 mrg * This product includes software developed by Matthew R. Green.
18 1.1 mrg * 4. The name of the author may not be used to endorse or promote products
19 1.1 mrg * derived from this software without specific prior written permission.
20 1.1 mrg *
21 1.1 mrg * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
22 1.1 mrg * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
23 1.1 mrg * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
24 1.1 mrg * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
25 1.1 mrg * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING,
26 1.1 mrg * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
27 1.1 mrg * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED
28 1.1 mrg * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
29 1.1 mrg * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
30 1.1 mrg * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
31 1.1 mrg * SUCH DAMAGE.
32 1.1 mrg */
33 1.1 mrg
34 1.1 mrg #include <sys/param.h>
35 1.1 mrg #include <sys/errno.h>
36 1.1 mrg #include <sys/malloc.h>
37 1.1 mrg #include <sys/socket.h>
38 1.1 mrg #include <sys/socketvar.h>
39 1.1 mrg #include <sys/systm.h>
40 1.1 mrg #include <sys/proc.h>
41 1.1 mrg #include <sys/queue.h>
42 1.1 mrg
43 1.1 mrg #include <net/if.h>
44 1.1 mrg #include <net/pfil.h>
45 1.1 mrg
46 1.1 mrg typedef LIST_HEAD(, packet_filter_hook) pfil_list_t;
47 1.1 mrg pfil_list_t pfil_in_list;
48 1.1 mrg pfil_list_t pfil_out_list;
49 1.1 mrg pfil_list_t pfil_bad_list;
50 1.1 mrg static int done_pfil_init;
51 1.1 mrg
52 1.1 mrg void pfil_init __P((void));
53 1.1 mrg void pfil_list_add(pfil_list_t *,
54 1.1 mrg int (*) __P((void *, int, struct ifnet *, int, struct mbuf **)), int);
55 1.1 mrg void pfil_list_remove(struct packet_filter_hook *,
56 1.1 mrg int (*) __P((void *, int, struct ifnet *, int, struct mbuf **)));
57 1.1 mrg
58 1.1 mrg void
59 1.1 mrg pfil_init()
60 1.1 mrg {
61 1.1 mrg LIST_INIT(&pfil_in_list);
62 1.1 mrg LIST_INIT(&pfil_out_list);
63 1.1 mrg LIST_INIT(&pfil_bad_list);
64 1.1 mrg done_pfil_init = 1;
65 1.1 mrg }
66 1.1 mrg
67 1.1 mrg /*
68 1.1 mrg * pfil_add_hook() adds a function to the packet filter hook. the
69 1.1 mrg * flags are:
70 1.1 mrg * PFIL_IN call me on incoming packets
71 1.1 mrg * PFIL_OUT call me on outgoing packets
72 1.1 mrg * PFIL_BAD call me when rejecting a packet (that was
73 1.1 mrg * not already reject by in/out filters).
74 1.1 mrg * PFIL_ALL call me on all of the above
75 1.1 mrg * PFIL_WAITOK OK to call malloc with M_WAITOK.
76 1.1 mrg */
77 1.1 mrg void
78 1.1 mrg pfil_add_hook(func, flags)
79 1.1 mrg int (*func) __P((void *, int, struct ifnet *, int,
80 1.1 mrg struct mbuf **));
81 1.1 mrg int flags;
82 1.1 mrg {
83 1.1 mrg
84 1.1 mrg if (done_pfil_init == 0)
85 1.1 mrg pfil_init();
86 1.1 mrg
87 1.1 mrg if (flags & PFIL_IN)
88 1.1 mrg pfil_list_add(&pfil_in_list, func, flags);
89 1.1 mrg if (flags & PFIL_OUT)
90 1.1 mrg pfil_list_add(&pfil_out_list, func, flags);
91 1.1 mrg if (flags & PFIL_BAD)
92 1.1 mrg pfil_list_add(&pfil_bad_list, func, flags);
93 1.1 mrg }
94 1.1 mrg
95 1.1 mrg void
96 1.1 mrg pfil_list_add(list, func, flags)
97 1.1 mrg pfil_list_t *list;
98 1.1 mrg int (*func) __P((void *, int, struct ifnet *, int,
99 1.1 mrg struct mbuf **));
100 1.1 mrg int flags;
101 1.1 mrg {
102 1.1 mrg struct packet_filter_hook *pfh;
103 1.1 mrg
104 1.1 mrg pfh = (struct packet_filter_hook *)malloc(sizeof(*pfh), M_IFADDR,
105 1.1 mrg flags & PFIL_WAITOK ? M_WAITOK : M_NOWAIT);
106 1.1 mrg if (pfh == NULL)
107 1.1 mrg panic("no memory for packet filter hook");
108 1.1 mrg
109 1.1 mrg pfh->pfil_func = func;
110 1.1 mrg LIST_INSERT_HEAD(list, pfh, pfil_link);
111 1.1 mrg }
112 1.1 mrg
113 1.1 mrg /*
114 1.1 mrg * pfil_remove_hook removes a specific function from the packet filter
115 1.1 mrg * hook list.
116 1.1 mrg */
117 1.1 mrg void
118 1.1 mrg pfil_remove_hook(func, flags)
119 1.1 mrg int (*func) __P((void *, int, struct ifnet *, int,
120 1.1 mrg struct mbuf **));
121 1.1 mrg int flags;
122 1.1 mrg {
123 1.1 mrg
124 1.1 mrg if (done_pfil_init == 0)
125 1.1 mrg pfil_init();
126 1.1 mrg
127 1.1 mrg if (flags & PFIL_IN)
128 1.1 mrg pfil_list_remove(pfil_in_list.lh_first, func);
129 1.1 mrg if (flags & PFIL_OUT)
130 1.1 mrg pfil_list_remove(pfil_out_list.lh_first, func);
131 1.1 mrg if (flags & PFIL_BAD)
132 1.1 mrg pfil_list_remove(pfil_bad_list.lh_first, func);
133 1.1 mrg }
134 1.1 mrg
135 1.1 mrg /*
136 1.1 mrg * pfil_list_remove is an internal function that takes a function off the
137 1.1 mrg * specified list.
138 1.1 mrg */
139 1.1 mrg void
140 1.1 mrg pfil_list_remove(list, func)
141 1.1 mrg struct packet_filter_hook *list;
142 1.1 mrg int (*func) __P((void *, int, struct ifnet *, int,
143 1.1 mrg struct mbuf **));
144 1.1 mrg {
145 1.1 mrg struct packet_filter_hook *pfh;
146 1.1 mrg
147 1.1 mrg for (pfh = list; pfh; pfh = pfh->pfil_link.le_next)
148 1.1 mrg if (pfh->pfil_func == func) {
149 1.1 mrg LIST_REMOVE(pfh, pfil_link);
150 1.1 mrg free(pfh, M_IFADDR);
151 1.1 mrg return;
152 1.1 mrg }
153 1.1 mrg printf("pfil_list_remove: no function on list\n");
154 1.1 mrg #ifdef DIAGNOSTIC
155 1.1 mrg panic("pfil_list_remove");
156 1.1 mrg #endif
157 1.1 mrg }
158 1.1 mrg
159 1.1 mrg struct packet_filter_hook *
160 1.1 mrg pfil_hook_get(flag)
161 1.1 mrg int flag;
162 1.1 mrg {
163 1.1 mrg if (done_pfil_init)
164 1.1 mrg switch (flag) {
165 1.1 mrg case PFIL_IN:
166 1.1 mrg return (pfil_in_list.lh_first);
167 1.1 mrg case PFIL_OUT:
168 1.1 mrg return (pfil_out_list.lh_first);
169 1.1 mrg case PFIL_BAD:
170 1.1 mrg return (pfil_bad_list.lh_first);
171 1.1 mrg }
172 1.1 mrg return NULL;
173 1.1 mrg }
174