Home | History | Annotate | Line # | Download | only in net
pfil.c revision 1.1
      1  1.1  mrg /*	$NetBSD: pfil.c,v 1.1 1996/09/14 14:40:20 mrg Exp $	*/
      2  1.1  mrg 
      3  1.1  mrg /*
      4  1.1  mrg  * Copyright (c) 1996 Matthew R. Green
      5  1.1  mrg  * All rights reserved.
      6  1.1  mrg  *
      7  1.1  mrg  * Redistribution and use in source and binary forms, with or without
      8  1.1  mrg  * modification, are permitted provided that the following conditions
      9  1.1  mrg  * are met:
     10  1.1  mrg  * 1. Redistributions of source code must retain the above copyright
     11  1.1  mrg  *    notice, this list of conditions and the following disclaimer.
     12  1.1  mrg  * 2. Redistributions in binary form must reproduce the above copyright
     13  1.1  mrg  *    notice, this list of conditions and the following disclaimer in the
     14  1.1  mrg  *    documentation and/or other materials provided with the distribution.
     15  1.1  mrg  * 3. All advertising materials mentioning features or use of this software
     16  1.1  mrg  *    must display the following acknowledgement:
     17  1.1  mrg  *      This product includes software developed by Matthew R. Green.
     18  1.1  mrg  * 4. The name of the author may not be used to endorse or promote products
     19  1.1  mrg  *    derived from this software without specific prior written permission.
     20  1.1  mrg  *
     21  1.1  mrg  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
     22  1.1  mrg  * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
     23  1.1  mrg  * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
     24  1.1  mrg  * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
     25  1.1  mrg  * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING,
     26  1.1  mrg  * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
     27  1.1  mrg  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED
     28  1.1  mrg  * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
     29  1.1  mrg  * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
     30  1.1  mrg  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
     31  1.1  mrg  * SUCH DAMAGE.
     32  1.1  mrg  */
     33  1.1  mrg 
     34  1.1  mrg #include <sys/param.h>
     35  1.1  mrg #include <sys/errno.h>
     36  1.1  mrg #include <sys/malloc.h>
     37  1.1  mrg #include <sys/socket.h>
     38  1.1  mrg #include <sys/socketvar.h>
     39  1.1  mrg #include <sys/systm.h>
     40  1.1  mrg #include <sys/proc.h>
     41  1.1  mrg #include <sys/queue.h>
     42  1.1  mrg 
     43  1.1  mrg #include <net/if.h>
     44  1.1  mrg #include <net/pfil.h>
     45  1.1  mrg 
     46  1.1  mrg typedef LIST_HEAD(, packet_filter_hook) pfil_list_t;
     47  1.1  mrg pfil_list_t pfil_in_list;
     48  1.1  mrg pfil_list_t pfil_out_list;
     49  1.1  mrg pfil_list_t pfil_bad_list;
     50  1.1  mrg static int done_pfil_init;
     51  1.1  mrg 
     52  1.1  mrg void pfil_init __P((void));
     53  1.1  mrg void pfil_list_add(pfil_list_t *,
     54  1.1  mrg     int (*) __P((void *, int, struct ifnet *, int, struct mbuf **)), int);
     55  1.1  mrg void pfil_list_remove(struct packet_filter_hook *,
     56  1.1  mrg     int (*) __P((void *, int, struct ifnet *, int, struct mbuf **)));
     57  1.1  mrg 
     58  1.1  mrg void
     59  1.1  mrg pfil_init()
     60  1.1  mrg {
     61  1.1  mrg 	LIST_INIT(&pfil_in_list);
     62  1.1  mrg 	LIST_INIT(&pfil_out_list);
     63  1.1  mrg 	LIST_INIT(&pfil_bad_list);
     64  1.1  mrg 	done_pfil_init = 1;
     65  1.1  mrg }
     66  1.1  mrg 
     67  1.1  mrg /*
     68  1.1  mrg  * pfil_add_hook() adds a function to the packet filter hook.  the
     69  1.1  mrg  * flags are:
     70  1.1  mrg  *	PFIL_IN		call me on incoming packets
     71  1.1  mrg  *	PFIL_OUT	call me on outgoing packets
     72  1.1  mrg  *	PFIL_BAD	call me when rejecting a packet (that was
     73  1.1  mrg  *			not already reject by in/out filters).
     74  1.1  mrg  *	PFIL_ALL	call me on all of the above
     75  1.1  mrg  *	PFIL_WAITOK	OK to call malloc with M_WAITOK.
     76  1.1  mrg  */
     77  1.1  mrg void
     78  1.1  mrg pfil_add_hook(func, flags)
     79  1.1  mrg 	int	(*func) __P((void *, int, struct ifnet *, int,
     80  1.1  mrg 			     struct mbuf **));
     81  1.1  mrg 	int	flags;
     82  1.1  mrg {
     83  1.1  mrg 
     84  1.1  mrg 	if (done_pfil_init == 0)
     85  1.1  mrg 		pfil_init();
     86  1.1  mrg 
     87  1.1  mrg 	if (flags & PFIL_IN)
     88  1.1  mrg 		pfil_list_add(&pfil_in_list, func, flags);
     89  1.1  mrg 	if (flags & PFIL_OUT)
     90  1.1  mrg 		pfil_list_add(&pfil_out_list, func, flags);
     91  1.1  mrg 	if (flags & PFIL_BAD)
     92  1.1  mrg 		pfil_list_add(&pfil_bad_list, func, flags);
     93  1.1  mrg }
     94  1.1  mrg 
     95  1.1  mrg void
     96  1.1  mrg pfil_list_add(list, func, flags)
     97  1.1  mrg 	pfil_list_t *list;
     98  1.1  mrg 	int	(*func) __P((void *, int, struct ifnet *, int,
     99  1.1  mrg 			     struct mbuf **));
    100  1.1  mrg 	int	flags;
    101  1.1  mrg {
    102  1.1  mrg 	struct packet_filter_hook *pfh;
    103  1.1  mrg 
    104  1.1  mrg 	pfh = (struct packet_filter_hook *)malloc(sizeof(*pfh), M_IFADDR,
    105  1.1  mrg 	    flags & PFIL_WAITOK ? M_WAITOK : M_NOWAIT);
    106  1.1  mrg 	if (pfh == NULL)
    107  1.1  mrg 		panic("no memory for packet filter hook");
    108  1.1  mrg 
    109  1.1  mrg 	pfh->pfil_func = func;
    110  1.1  mrg 	LIST_INSERT_HEAD(list, pfh, pfil_link);
    111  1.1  mrg }
    112  1.1  mrg 
    113  1.1  mrg /*
    114  1.1  mrg  * pfil_remove_hook removes a specific function from the packet filter
    115  1.1  mrg  * hook list.
    116  1.1  mrg  */
    117  1.1  mrg void
    118  1.1  mrg pfil_remove_hook(func, flags)
    119  1.1  mrg 	int	(*func) __P((void *, int, struct ifnet *, int,
    120  1.1  mrg 			     struct mbuf **));
    121  1.1  mrg 	int	flags;
    122  1.1  mrg {
    123  1.1  mrg 
    124  1.1  mrg 	if (done_pfil_init == 0)
    125  1.1  mrg 		pfil_init();
    126  1.1  mrg 
    127  1.1  mrg 	if (flags & PFIL_IN)
    128  1.1  mrg 		pfil_list_remove(pfil_in_list.lh_first, func);
    129  1.1  mrg 	if (flags & PFIL_OUT)
    130  1.1  mrg 		pfil_list_remove(pfil_out_list.lh_first, func);
    131  1.1  mrg 	if (flags & PFIL_BAD)
    132  1.1  mrg 		pfil_list_remove(pfil_bad_list.lh_first, func);
    133  1.1  mrg }
    134  1.1  mrg 
    135  1.1  mrg /*
    136  1.1  mrg  * pfil_list_remove is an internal function that takes a function off the
    137  1.1  mrg  * specified list.
    138  1.1  mrg  */
    139  1.1  mrg void
    140  1.1  mrg pfil_list_remove(list, func)
    141  1.1  mrg 	struct packet_filter_hook *list;
    142  1.1  mrg 	int	(*func) __P((void *, int, struct ifnet *, int,
    143  1.1  mrg 			     struct mbuf **));
    144  1.1  mrg {
    145  1.1  mrg 	struct packet_filter_hook *pfh;
    146  1.1  mrg 
    147  1.1  mrg 	for (pfh = list; pfh; pfh = pfh->pfil_link.le_next)
    148  1.1  mrg 		if (pfh->pfil_func == func) {
    149  1.1  mrg 			LIST_REMOVE(pfh, pfil_link);
    150  1.1  mrg 			free(pfh, M_IFADDR);
    151  1.1  mrg 			return;
    152  1.1  mrg 		}
    153  1.1  mrg 	printf("pfil_list_remove:  no function on list\n");
    154  1.1  mrg #ifdef DIAGNOSTIC
    155  1.1  mrg 	panic("pfil_list_remove");
    156  1.1  mrg #endif
    157  1.1  mrg }
    158  1.1  mrg 
    159  1.1  mrg struct packet_filter_hook *
    160  1.1  mrg pfil_hook_get(flag)
    161  1.1  mrg 	int flag;
    162  1.1  mrg {
    163  1.1  mrg 	if (done_pfil_init)
    164  1.1  mrg 		switch (flag) {
    165  1.1  mrg 		case PFIL_IN:
    166  1.1  mrg 			return (pfil_in_list.lh_first);
    167  1.1  mrg 		case PFIL_OUT:
    168  1.1  mrg 			return (pfil_out_list.lh_first);
    169  1.1  mrg 		case PFIL_BAD:
    170  1.1  mrg 			return (pfil_bad_list.lh_first);
    171  1.1  mrg 		}
    172  1.1  mrg 	return NULL;
    173  1.1  mrg }
    174