pfil.h revision 1.23 1 1.23 itojun /* $NetBSD: pfil.h,v 1.23 2004/06/22 12:50:41 itojun Exp $ */
2 1.1 mrg
3 1.1 mrg /*
4 1.1 mrg * Copyright (c) 1996 Matthew R. Green
5 1.1 mrg * All rights reserved.
6 1.1 mrg *
7 1.1 mrg * Redistribution and use in source and binary forms, with or without
8 1.1 mrg * modification, are permitted provided that the following conditions
9 1.1 mrg * are met:
10 1.1 mrg * 1. Redistributions of source code must retain the above copyright
11 1.1 mrg * notice, this list of conditions and the following disclaimer.
12 1.1 mrg * 2. Redistributions in binary form must reproduce the above copyright
13 1.1 mrg * notice, this list of conditions and the following disclaimer in the
14 1.1 mrg * documentation and/or other materials provided with the distribution.
15 1.8 mrg * 3. The name of the author may not be used to endorse or promote products
16 1.1 mrg * derived from this software without specific prior written permission.
17 1.1 mrg *
18 1.1 mrg * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
19 1.1 mrg * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
20 1.1 mrg * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
21 1.1 mrg * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
22 1.1 mrg * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING,
23 1.1 mrg * BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
24 1.1 mrg * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED
25 1.1 mrg * AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY,
26 1.1 mrg * OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
27 1.1 mrg * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
28 1.1 mrg * SUCH DAMAGE.
29 1.1 mrg */
30 1.1 mrg
31 1.1 mrg #ifndef _NET_PFIL_H_
32 1.1 mrg #define _NET_PFIL_H_
33 1.21 martin
34 1.22 martin #ifdef _KERNEL_OPT
35 1.21 martin #include "opt_pfil_hooks.h"
36 1.22 martin #endif
37 1.1 mrg
38 1.10 darrenr #include <sys/queue.h>
39 1.15 thorpej #include <net/dlt.h>
40 1.19 itojun #include <sys/null.h>
41 1.1 mrg
42 1.10 darrenr struct mbuf;
43 1.10 darrenr struct ifnet;
44 1.1 mrg
45 1.1 mrg /*
46 1.1 mrg * The packet filter hooks are designed for anything to call them to
47 1.1 mrg * possibly intercept the packet.
48 1.1 mrg */
49 1.1 mrg struct packet_filter_hook {
50 1.9 mrg TAILQ_ENTRY(packet_filter_hook) pfil_link;
51 1.14 thorpej int (*pfil_func)(void *, struct mbuf **, struct ifnet *, int);
52 1.14 thorpej void *pfil_arg;
53 1.1 mrg int pfil_flags;
54 1.1 mrg };
55 1.1 mrg
56 1.1 mrg #define PFIL_IN 0x00000001
57 1.1 mrg #define PFIL_OUT 0x00000002
58 1.23 itojun #define PFIL_ALL (PFIL_IN|PFIL_OUT)
59 1.10 darrenr #define PFIL_WAITOK 0x00000004
60 1.23 itojun #define PFIL_IFADDR 0x00000008
61 1.23 itojun #define PFIL_NEWIF 0x00000010
62 1.1 mrg
63 1.10 darrenr typedef TAILQ_HEAD(pfil_list, packet_filter_hook) pfil_list_t;
64 1.10 darrenr
65 1.18 thorpej #define PFIL_TYPE_AF 1 /* key is AF_* type */
66 1.18 thorpej #define PFIL_TYPE_IFNET 2 /* key is ifnet pointer */
67 1.18 thorpej
68 1.10 darrenr struct pfil_head {
69 1.10 darrenr pfil_list_t ph_in;
70 1.10 darrenr pfil_list_t ph_out;
71 1.23 itojun pfil_list_t ph_ifaddr;
72 1.23 itojun pfil_list_t ph_newif;
73 1.18 thorpej int ph_type;
74 1.18 thorpej union {
75 1.18 thorpej u_long phu_val;
76 1.18 thorpej void *phu_ptr;
77 1.18 thorpej } ph_un;
78 1.18 thorpej #define ph_af ph_un.phu_val
79 1.18 thorpej #define ph_ifnet ph_un.phu_ptr
80 1.14 thorpej LIST_ENTRY(pfil_head) ph_list;
81 1.13 itojun };
82 1.13 itojun typedef struct pfil_head pfil_head_t;
83 1.10 darrenr
84 1.14 thorpej int pfil_run_hooks(struct pfil_head *, struct mbuf **, struct ifnet *,
85 1.14 thorpej int);
86 1.14 thorpej
87 1.14 thorpej int pfil_add_hook(int (*func)(void *, struct mbuf **,
88 1.14 thorpej struct ifnet *, int), void *, int, struct pfil_head *);
89 1.14 thorpej int pfil_remove_hook(int (*func)(void *, struct mbuf **,
90 1.14 thorpej struct ifnet *, int), void *, int, struct pfil_head *);
91 1.14 thorpej
92 1.14 thorpej int pfil_head_register(struct pfil_head *);
93 1.14 thorpej int pfil_head_unregister(struct pfil_head *);
94 1.14 thorpej
95 1.18 thorpej struct pfil_head *pfil_head_get(int, u_long);
96 1.14 thorpej
97 1.14 thorpej static __inline struct packet_filter_hook *
98 1.14 thorpej pfil_hook_get(int dir, struct pfil_head *ph)
99 1.14 thorpej {
100 1.14 thorpej
101 1.14 thorpej if (dir == PFIL_IN)
102 1.14 thorpej return (TAILQ_FIRST(&ph->ph_in));
103 1.14 thorpej else if (dir == PFIL_OUT)
104 1.14 thorpej return (TAILQ_FIRST(&ph->ph_out));
105 1.23 itojun else if (dir == PFIL_IFADDR)
106 1.23 itojun return (TAILQ_FIRST(&ph->ph_ifaddr));
107 1.23 itojun else if (dir == PFIL_NEWIF)
108 1.23 itojun return (TAILQ_FIRST(&ph->ph_newif));
109 1.14 thorpej else
110 1.14 thorpej return (NULL);
111 1.14 thorpej }
112 1.4 mrg
113 1.4 mrg /* XXX */
114 1.20 mrg #if defined(_KERNEL_OPT)
115 1.4 mrg #include "ipfilter.h"
116 1.5 scottr #endif
117 1.4 mrg
118 1.4 mrg #if NIPFILTER > 0
119 1.6 scottr #ifdef PFIL_HOOKS
120 1.6 scottr #undef PFIL_HOOKS
121 1.6 scottr #endif
122 1.4 mrg #define PFIL_HOOKS
123 1.4 mrg #endif /* NIPFILTER */
124 1.1 mrg
125 1.23 itojun #ifdef _KERNEL
126 1.23 itojun /* in sys/net/if.c */
127 1.23 itojun extern struct pfil_head if_pfil; /* packet filtering hook for interfaces */
128 1.23 itojun #endif
129 1.23 itojun
130 1.1 mrg #endif /* _NET_PFIL_H_ */
131