pfil.c revision 1.7 1 1.7 mrg /* $NetBSD: pfil.c,v 1.7 1998/03/19 15:45:30 mrg Exp $ */
2 1.1 mrg
3 1.1 mrg /*
4 1.1 mrg * Copyright (c) 1996 Matthew R. Green
5 1.1 mrg * All rights reserved.
6 1.1 mrg *
7 1.1 mrg * Redistribution and use in source and binary forms, with or without
8 1.1 mrg * modification, are permitted provided that the following conditions
9 1.1 mrg * are met:
10 1.1 mrg * 1. Redistributions of source code must retain the above copyright
11 1.1 mrg * notice, this list of conditions and the following disclaimer.
12 1.1 mrg * 2. Redistributions in binary form must reproduce the above copyright
13 1.1 mrg * notice, this list of conditions and the following disclaimer in the
14 1.1 mrg * documentation and/or other materials provided with the distribution.
15 1.6 mrg * 3. The name of the author may not be used to endorse or promote products
16 1.1 mrg * derived from this software without specific prior written permission.
17 1.1 mrg *
18 1.1 mrg * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
19 1.1 mrg * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
20 1.1 mrg * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
21 1.1 mrg * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
22 1.1 mrg * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING,
23 1.1 mrg * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
24 1.1 mrg * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED
25 1.1 mrg * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
26 1.1 mrg * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
27 1.1 mrg * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
28 1.1 mrg * SUCH DAMAGE.
29 1.1 mrg */
30 1.1 mrg
31 1.1 mrg #include <sys/param.h>
32 1.1 mrg #include <sys/errno.h>
33 1.1 mrg #include <sys/malloc.h>
34 1.1 mrg #include <sys/socket.h>
35 1.1 mrg #include <sys/socketvar.h>
36 1.1 mrg #include <sys/systm.h>
37 1.1 mrg #include <sys/proc.h>
38 1.1 mrg #include <sys/queue.h>
39 1.1 mrg
40 1.1 mrg #include <net/if.h>
41 1.1 mrg #include <net/pfil.h>
42 1.1 mrg
43 1.7 mrg typedef TAILQ_HEAD(, packet_filter_hook) pfil_list_t;
44 1.1 mrg pfil_list_t pfil_in_list;
45 1.1 mrg pfil_list_t pfil_out_list;
46 1.1 mrg static int done_pfil_init;
47 1.1 mrg
48 1.7 mrg static void pfil_init __P((void));
49 1.7 mrg static void pfil_list_add(pfil_list_t *,
50 1.1 mrg int (*) __P((void *, int, struct ifnet *, int, struct mbuf **)), int);
51 1.7 mrg static void pfil_list_remove(pfil_list_t,
52 1.1 mrg int (*) __P((void *, int, struct ifnet *, int, struct mbuf **)));
53 1.1 mrg
54 1.7 mrg static void
55 1.1 mrg pfil_init()
56 1.1 mrg {
57 1.7 mrg
58 1.7 mrg TAILQ_INIT(&pfil_in_list);
59 1.7 mrg TAILQ_INIT(&pfil_out_list);
60 1.1 mrg done_pfil_init = 1;
61 1.1 mrg }
62 1.1 mrg
63 1.1 mrg /*
64 1.1 mrg * pfil_add_hook() adds a function to the packet filter hook. the
65 1.1 mrg * flags are:
66 1.1 mrg * PFIL_IN call me on incoming packets
67 1.1 mrg * PFIL_OUT call me on outgoing packets
68 1.1 mrg * PFIL_ALL call me on all of the above
69 1.1 mrg * PFIL_WAITOK OK to call malloc with M_WAITOK.
70 1.1 mrg */
71 1.1 mrg void
72 1.1 mrg pfil_add_hook(func, flags)
73 1.1 mrg int (*func) __P((void *, int, struct ifnet *, int,
74 1.1 mrg struct mbuf **));
75 1.1 mrg int flags;
76 1.1 mrg {
77 1.1 mrg
78 1.1 mrg if (done_pfil_init == 0)
79 1.1 mrg pfil_init();
80 1.1 mrg
81 1.1 mrg if (flags & PFIL_IN)
82 1.1 mrg pfil_list_add(&pfil_in_list, func, flags);
83 1.1 mrg if (flags & PFIL_OUT)
84 1.1 mrg pfil_list_add(&pfil_out_list, func, flags);
85 1.1 mrg }
86 1.1 mrg
87 1.7 mrg static void
88 1.1 mrg pfil_list_add(list, func, flags)
89 1.1 mrg pfil_list_t *list;
90 1.1 mrg int (*func) __P((void *, int, struct ifnet *, int,
91 1.1 mrg struct mbuf **));
92 1.1 mrg int flags;
93 1.1 mrg {
94 1.1 mrg struct packet_filter_hook *pfh;
95 1.1 mrg
96 1.1 mrg pfh = (struct packet_filter_hook *)malloc(sizeof(*pfh), M_IFADDR,
97 1.1 mrg flags & PFIL_WAITOK ? M_WAITOK : M_NOWAIT);
98 1.1 mrg if (pfh == NULL)
99 1.1 mrg panic("no memory for packet filter hook");
100 1.1 mrg
101 1.1 mrg pfh->pfil_func = func;
102 1.7 mrg /*
103 1.7 mrg * insert the input list in reverse order of the output list
104 1.7 mrg * so that the same path is followed in or out of the kernel.
105 1.7 mrg */
106 1.7 mrg if (flags & PFIL_IN)
107 1.7 mrg TAILQ_INSERT_HEAD(list, pfh, pfil_link);
108 1.7 mrg else
109 1.7 mrg TAILQ_INSERT_TAIL(list, pfh, pfil_link);
110 1.1 mrg }
111 1.1 mrg
112 1.1 mrg /*
113 1.1 mrg * pfil_remove_hook removes a specific function from the packet filter
114 1.1 mrg * hook list.
115 1.1 mrg */
116 1.1 mrg void
117 1.1 mrg pfil_remove_hook(func, flags)
118 1.1 mrg int (*func) __P((void *, int, struct ifnet *, int,
119 1.1 mrg struct mbuf **));
120 1.1 mrg int flags;
121 1.1 mrg {
122 1.1 mrg
123 1.1 mrg if (done_pfil_init == 0)
124 1.1 mrg pfil_init();
125 1.1 mrg
126 1.1 mrg if (flags & PFIL_IN)
127 1.7 mrg pfil_list_remove(pfil_in_list, func);
128 1.1 mrg if (flags & PFIL_OUT)
129 1.7 mrg pfil_list_remove(pfil_out_list, func);
130 1.1 mrg }
131 1.1 mrg
132 1.1 mrg /*
133 1.1 mrg * pfil_list_remove is an internal function that takes a function off the
134 1.1 mrg * specified list.
135 1.1 mrg */
136 1.7 mrg static void
137 1.1 mrg pfil_list_remove(list, func)
138 1.7 mrg pfil_list_t list;
139 1.1 mrg int (*func) __P((void *, int, struct ifnet *, int,
140 1.1 mrg struct mbuf **));
141 1.1 mrg {
142 1.1 mrg struct packet_filter_hook *pfh;
143 1.1 mrg
144 1.7 mrg for (pfh = list.tqh_first; pfh; pfh = pfh->pfil_link.tqe_next)
145 1.1 mrg if (pfh->pfil_func == func) {
146 1.7 mrg TAILQ_REMOVE(&list, pfh, pfil_link);
147 1.1 mrg free(pfh, M_IFADDR);
148 1.1 mrg return;
149 1.1 mrg }
150 1.4 christos printf("pfil_list_remove: no function on list\n");
151 1.1 mrg #ifdef DIAGNOSTIC
152 1.1 mrg panic("pfil_list_remove");
153 1.1 mrg #endif
154 1.1 mrg }
155 1.1 mrg
156 1.1 mrg struct packet_filter_hook *
157 1.1 mrg pfil_hook_get(flag)
158 1.1 mrg int flag;
159 1.1 mrg {
160 1.7 mrg
161 1.1 mrg if (done_pfil_init)
162 1.1 mrg switch (flag) {
163 1.1 mrg case PFIL_IN:
164 1.7 mrg return (pfil_in_list.tqh_first);
165 1.1 mrg case PFIL_OUT:
166 1.7 mrg return (pfil_out_list.tqh_first);
167 1.1 mrg }
168 1.1 mrg return NULL;
169 1.1 mrg }
170