pfil.h revision 1.21 1 1.21 martin /* $NetBSD: pfil.h,v 1.21 2003/06/23 11:02:11 martin Exp $ */
2 1.1 mrg
3 1.1 mrg /*
4 1.1 mrg * Copyright (c) 1996 Matthew R. Green
5 1.1 mrg * All rights reserved.
6 1.1 mrg *
7 1.1 mrg * Redistribution and use in source and binary forms, with or without
8 1.1 mrg * modification, are permitted provided that the following conditions
9 1.1 mrg * are met:
10 1.1 mrg * 1. Redistributions of source code must retain the above copyright
11 1.1 mrg * notice, this list of conditions and the following disclaimer.
12 1.1 mrg * 2. Redistributions in binary form must reproduce the above copyright
13 1.1 mrg * notice, this list of conditions and the following disclaimer in the
14 1.1 mrg * documentation and/or other materials provided with the distribution.
15 1.8 mrg * 3. The name of the author may not be used to endorse or promote products
16 1.1 mrg * derived from this software without specific prior written permission.
17 1.1 mrg *
18 1.1 mrg * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
19 1.1 mrg * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
20 1.1 mrg * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
21 1.1 mrg * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
22 1.1 mrg * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING,
23 1.1 mrg * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
24 1.1 mrg * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED
25 1.1 mrg * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
26 1.1 mrg * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
27 1.1 mrg * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
28 1.1 mrg * SUCH DAMAGE.
29 1.1 mrg */
30 1.1 mrg
31 1.1 mrg #ifndef _NET_PFIL_H_
32 1.1 mrg #define _NET_PFIL_H_
33 1.21 martin
34 1.21 martin #include "opt_pfil_hooks.h"
35 1.1 mrg
36 1.10 darrenr #include <sys/queue.h>
37 1.15 thorpej #include <net/dlt.h>
38 1.19 itojun #include <sys/null.h>
39 1.1 mrg
40 1.10 darrenr struct mbuf;
41 1.10 darrenr struct ifnet;
42 1.1 mrg
43 1.1 mrg /*
44 1.1 mrg * The packet filter hooks are designed for anything to call them to
45 1.1 mrg * possibly intercept the packet.
46 1.1 mrg */
47 1.1 mrg struct packet_filter_hook {
48 1.9 mrg TAILQ_ENTRY(packet_filter_hook) pfil_link;
49 1.14 thorpej int (*pfil_func)(void *, struct mbuf **, struct ifnet *, int);
50 1.14 thorpej void *pfil_arg;
51 1.1 mrg int pfil_flags;
52 1.1 mrg };
53 1.1 mrg
54 1.1 mrg #define PFIL_IN 0x00000001
55 1.1 mrg #define PFIL_OUT 0x00000002
56 1.10 darrenr #define PFIL_WAITOK 0x00000004
57 1.3 mrg #define PFIL_ALL (PFIL_IN|PFIL_OUT)
58 1.1 mrg
59 1.10 darrenr typedef TAILQ_HEAD(pfil_list, packet_filter_hook) pfil_list_t;
60 1.10 darrenr
61 1.18 thorpej #define PFIL_TYPE_AF 1 /* key is AF_* type */
62 1.18 thorpej #define PFIL_TYPE_IFNET 2 /* key is ifnet pointer */
63 1.18 thorpej
64 1.10 darrenr struct pfil_head {
65 1.10 darrenr pfil_list_t ph_in;
66 1.10 darrenr pfil_list_t ph_out;
67 1.18 thorpej int ph_type;
68 1.18 thorpej union {
69 1.18 thorpej u_long phu_val;
70 1.18 thorpej void *phu_ptr;
71 1.18 thorpej } ph_un;
72 1.18 thorpej #define ph_af ph_un.phu_val
73 1.18 thorpej #define ph_ifnet ph_un.phu_ptr
74 1.14 thorpej LIST_ENTRY(pfil_head) ph_list;
75 1.13 itojun };
76 1.13 itojun typedef struct pfil_head pfil_head_t;
77 1.10 darrenr
78 1.14 thorpej int pfil_run_hooks(struct pfil_head *, struct mbuf **, struct ifnet *,
79 1.14 thorpej int);
80 1.14 thorpej
81 1.14 thorpej int pfil_add_hook(int (*func)(void *, struct mbuf **,
82 1.14 thorpej struct ifnet *, int), void *, int, struct pfil_head *);
83 1.14 thorpej int pfil_remove_hook(int (*func)(void *, struct mbuf **,
84 1.14 thorpej struct ifnet *, int), void *, int, struct pfil_head *);
85 1.14 thorpej
86 1.14 thorpej int pfil_head_register(struct pfil_head *);
87 1.14 thorpej int pfil_head_unregister(struct pfil_head *);
88 1.14 thorpej
89 1.18 thorpej struct pfil_head *pfil_head_get(int, u_long);
90 1.14 thorpej
91 1.14 thorpej static __inline struct packet_filter_hook *
92 1.14 thorpej pfil_hook_get(int dir, struct pfil_head *ph)
93 1.14 thorpej {
94 1.14 thorpej
95 1.14 thorpej if (dir == PFIL_IN)
96 1.14 thorpej return (TAILQ_FIRST(&ph->ph_in));
97 1.14 thorpej else if (dir == PFIL_OUT)
98 1.14 thorpej return (TAILQ_FIRST(&ph->ph_out));
99 1.14 thorpej else
100 1.14 thorpej return (NULL);
101 1.14 thorpej }
102 1.4 mrg
103 1.4 mrg /* XXX */
104 1.20 mrg #if defined(_KERNEL_OPT)
105 1.4 mrg #include "ipfilter.h"
106 1.5 scottr #endif
107 1.4 mrg
108 1.4 mrg #if NIPFILTER > 0
109 1.6 scottr #ifdef PFIL_HOOKS
110 1.6 scottr #undef PFIL_HOOKS
111 1.6 scottr #endif
112 1.4 mrg #define PFIL_HOOKS
113 1.4 mrg #endif /* NIPFILTER */
114 1.1 mrg
115 1.1 mrg #endif /* _NET_PFIL_H_ */
116