Home | History | Annotate | Line # | Download | only in net
pfil.c revision 1.9
      1  1.9       mrg /*	$NetBSD: pfil.c,v 1.9 1999/10/10 09:07:32 mrg Exp $	*/
      2  1.1       mrg 
      3  1.1       mrg /*
      4  1.1       mrg  * Copyright (c) 1996 Matthew R. Green
      5  1.1       mrg  * All rights reserved.
      6  1.1       mrg  *
      7  1.1       mrg  * Redistribution and use in source and binary forms, with or without
      8  1.1       mrg  * modification, are permitted provided that the following conditions
      9  1.1       mrg  * are met:
     10  1.1       mrg  * 1. Redistributions of source code must retain the above copyright
     11  1.1       mrg  *    notice, this list of conditions and the following disclaimer.
     12  1.1       mrg  * 2. Redistributions in binary form must reproduce the above copyright
     13  1.1       mrg  *    notice, this list of conditions and the following disclaimer in the
     14  1.1       mrg  *    documentation and/or other materials provided with the distribution.
     15  1.6       mrg  * 3. The name of the author may not be used to endorse or promote products
     16  1.1       mrg  *    derived from this software without specific prior written permission.
     17  1.1       mrg  *
     18  1.1       mrg  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
     19  1.1       mrg  * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
     20  1.1       mrg  * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
     21  1.1       mrg  * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
     22  1.1       mrg  * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING,
     23  1.1       mrg  * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
     24  1.1       mrg  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED
     25  1.1       mrg  * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
     26  1.1       mrg  * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
     27  1.1       mrg  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
     28  1.1       mrg  * SUCH DAMAGE.
     29  1.1       mrg  */
     30  1.1       mrg 
     31  1.1       mrg #include <sys/param.h>
     32  1.1       mrg #include <sys/errno.h>
     33  1.1       mrg #include <sys/malloc.h>
     34  1.1       mrg #include <sys/socket.h>
     35  1.1       mrg #include <sys/socketvar.h>
     36  1.1       mrg #include <sys/systm.h>
     37  1.1       mrg #include <sys/proc.h>
     38  1.1       mrg #include <sys/queue.h>
     39  1.1       mrg 
     40  1.1       mrg #include <net/if.h>
     41  1.1       mrg #include <net/pfil.h>
     42  1.1       mrg 
     43  1.7       mrg typedef TAILQ_HEAD(, packet_filter_hook) pfil_list_t;
     44  1.1       mrg pfil_list_t pfil_in_list;
     45  1.1       mrg pfil_list_t pfil_out_list;
     46  1.1       mrg static int done_pfil_init;
     47  1.1       mrg 
     48  1.7       mrg static void pfil_init __P((void));
     49  1.7       mrg static void pfil_list_add(pfil_list_t *,
     50  1.1       mrg     int (*) __P((void *, int, struct ifnet *, int, struct mbuf **)), int);
     51  1.9       mrg static void pfil_list_remove(pfil_list_t *,
     52  1.1       mrg     int (*) __P((void *, int, struct ifnet *, int, struct mbuf **)));
     53  1.1       mrg 
     54  1.7       mrg static void
     55  1.1       mrg pfil_init()
     56  1.1       mrg {
     57  1.7       mrg 
     58  1.7       mrg 	TAILQ_INIT(&pfil_in_list);
     59  1.7       mrg 	TAILQ_INIT(&pfil_out_list);
     60  1.1       mrg 	done_pfil_init = 1;
     61  1.1       mrg }
     62  1.1       mrg 
     63  1.1       mrg /*
     64  1.1       mrg  * pfil_add_hook() adds a function to the packet filter hook.  the
     65  1.1       mrg  * flags are:
     66  1.1       mrg  *	PFIL_IN		call me on incoming packets
     67  1.1       mrg  *	PFIL_OUT	call me on outgoing packets
     68  1.1       mrg  *	PFIL_ALL	call me on all of the above
     69  1.1       mrg  *	PFIL_WAITOK	OK to call malloc with M_WAITOK.
     70  1.1       mrg  */
     71  1.1       mrg void
     72  1.1       mrg pfil_add_hook(func, flags)
     73  1.1       mrg 	int	(*func) __P((void *, int, struct ifnet *, int,
     74  1.1       mrg 			     struct mbuf **));
     75  1.1       mrg 	int	flags;
     76  1.1       mrg {
     77  1.1       mrg 
     78  1.1       mrg 	if (done_pfil_init == 0)
     79  1.1       mrg 		pfil_init();
     80  1.1       mrg 
     81  1.1       mrg 	if (flags & PFIL_IN)
     82  1.9       mrg 		pfil_list_add(&pfil_in_list, func, PFIL_IN |
     83  1.9       mrg 		    (flags & PFIL_WAITOK));
     84  1.1       mrg 	if (flags & PFIL_OUT)
     85  1.9       mrg 		pfil_list_add(&pfil_out_list, func, PFIL_OUT |
     86  1.9       mrg 		    (flags & PFIL_WAITOK));
     87  1.1       mrg }
     88  1.1       mrg 
     89  1.7       mrg static void
     90  1.1       mrg pfil_list_add(list, func, flags)
     91  1.1       mrg 	pfil_list_t *list;
     92  1.1       mrg 	int	(*func) __P((void *, int, struct ifnet *, int,
     93  1.1       mrg 			     struct mbuf **));
     94  1.1       mrg 	int	flags;
     95  1.1       mrg {
     96  1.1       mrg 	struct packet_filter_hook *pfh;
     97  1.1       mrg 
     98  1.1       mrg 	pfh = (struct packet_filter_hook *)malloc(sizeof(*pfh), M_IFADDR,
     99  1.1       mrg 	    flags & PFIL_WAITOK ? M_WAITOK : M_NOWAIT);
    100  1.1       mrg 	if (pfh == NULL)
    101  1.1       mrg 		panic("no memory for packet filter hook");
    102  1.1       mrg 
    103  1.1       mrg 	pfh->pfil_func = func;
    104  1.7       mrg 	/*
    105  1.7       mrg 	 * insert the input list in reverse order of the output list
    106  1.7       mrg 	 * so that the same path is followed in or out of the kernel.
    107  1.7       mrg 	 */
    108  1.7       mrg 	if (flags & PFIL_IN)
    109  1.7       mrg 		TAILQ_INSERT_HEAD(list, pfh, pfil_link);
    110  1.7       mrg 	else
    111  1.7       mrg 		TAILQ_INSERT_TAIL(list, pfh, pfil_link);
    112  1.1       mrg }
    113  1.1       mrg 
    114  1.1       mrg /*
    115  1.1       mrg  * pfil_remove_hook removes a specific function from the packet filter
    116  1.1       mrg  * hook list.
    117  1.1       mrg  */
    118  1.1       mrg void
    119  1.1       mrg pfil_remove_hook(func, flags)
    120  1.1       mrg 	int	(*func) __P((void *, int, struct ifnet *, int,
    121  1.1       mrg 			     struct mbuf **));
    122  1.1       mrg 	int	flags;
    123  1.1       mrg {
    124  1.1       mrg 
    125  1.1       mrg 	if (done_pfil_init == 0)
    126  1.1       mrg 		pfil_init();
    127  1.1       mrg 
    128  1.1       mrg 	if (flags & PFIL_IN)
    129  1.9       mrg 		pfil_list_remove(&pfil_in_list, func);
    130  1.1       mrg 	if (flags & PFIL_OUT)
    131  1.9       mrg 		pfil_list_remove(&pfil_out_list, func);
    132  1.1       mrg }
    133  1.1       mrg 
    134  1.1       mrg /*
    135  1.1       mrg  * pfil_list_remove is an internal function that takes a function off the
    136  1.1       mrg  * specified list.
    137  1.1       mrg  */
    138  1.7       mrg static void
    139  1.1       mrg pfil_list_remove(list, func)
    140  1.9       mrg 	pfil_list_t *list;
    141  1.1       mrg 	int	(*func) __P((void *, int, struct ifnet *, int,
    142  1.1       mrg 			     struct mbuf **));
    143  1.1       mrg {
    144  1.1       mrg 	struct packet_filter_hook *pfh;
    145  1.1       mrg 
    146  1.9       mrg 	for (pfh = list->tqh_first; pfh; pfh = pfh->pfil_link.tqe_next)
    147  1.1       mrg 		if (pfh->pfil_func == func) {
    148  1.9       mrg 			TAILQ_REMOVE(list, pfh, pfil_link);
    149  1.1       mrg 			free(pfh, M_IFADDR);
    150  1.1       mrg 			return;
    151  1.1       mrg 		}
    152  1.4  christos 	printf("pfil_list_remove:  no function on list\n");
    153  1.1       mrg #ifdef DIAGNOSTIC
    154  1.1       mrg 	panic("pfil_list_remove");
    155  1.1       mrg #endif
    156  1.1       mrg }
    157  1.1       mrg 
    158  1.1       mrg struct packet_filter_hook *
    159  1.1       mrg pfil_hook_get(flag)
    160  1.1       mrg 	int flag;
    161  1.1       mrg {
    162  1.7       mrg 
    163  1.1       mrg 	if (done_pfil_init)
    164  1.1       mrg 		switch (flag) {
    165  1.1       mrg 		case PFIL_IN:
    166  1.7       mrg 			return (pfil_in_list.tqh_first);
    167  1.1       mrg 		case PFIL_OUT:
    168  1.7       mrg 			return (pfil_out_list.tqh_first);
    169  1.1       mrg 		}
    170  1.1       mrg 	return NULL;
    171  1.1       mrg }
    172