Home | History | Annotate | Line # | Download | only in netinet
in.c revision 1.161
      1  1.161     ozaki /*	$NetBSD: in.c,v 1.161 2015/08/31 16:46:14 ozaki-r Exp $	*/
      2   1.48    itojun 
      3   1.48    itojun /*
      4   1.48    itojun  * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project.
      5   1.48    itojun  * All rights reserved.
      6   1.77    itojun  *
      7   1.48    itojun  * Redistribution and use in source and binary forms, with or without
      8   1.48    itojun  * modification, are permitted provided that the following conditions
      9   1.48    itojun  * are met:
     10   1.48    itojun  * 1. Redistributions of source code must retain the above copyright
     11   1.48    itojun  *    notice, this list of conditions and the following disclaimer.
     12   1.48    itojun  * 2. Redistributions in binary form must reproduce the above copyright
     13   1.48    itojun  *    notice, this list of conditions and the following disclaimer in the
     14   1.48    itojun  *    documentation and/or other materials provided with the distribution.
     15   1.48    itojun  * 3. Neither the name of the project nor the names of its contributors
     16   1.48    itojun  *    may be used to endorse or promote products derived from this software
     17   1.48    itojun  *    without specific prior written permission.
     18   1.77    itojun  *
     19   1.48    itojun  * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
     20   1.48    itojun  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
     21   1.48    itojun  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
     22   1.48    itojun  * ARE DISCLAIMED.  IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
     23   1.48    itojun  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
     24   1.48    itojun  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
     25   1.48    itojun  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
     26   1.48    itojun  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
     27   1.48    itojun  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
     28   1.48    itojun  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
     29   1.48    itojun  * SUCH DAMAGE.
     30   1.48    itojun  */
     31   1.14       cgd 
     32   1.46   thorpej /*-
     33   1.46   thorpej  * Copyright (c) 1998 The NetBSD Foundation, Inc.
     34   1.46   thorpej  * All rights reserved.
     35   1.46   thorpej  *
     36   1.46   thorpej  * This code is derived from software contributed to The NetBSD Foundation
     37   1.46   thorpej  * by Public Access Networks Corporation ("Panix").  It was developed under
     38   1.46   thorpej  * contract to Panix by Eric Haszlakiewicz and Thor Lancelot Simon.
     39   1.46   thorpej  *
     40   1.46   thorpej  * Redistribution and use in source and binary forms, with or without
     41   1.46   thorpej  * modification, are permitted provided that the following conditions
     42   1.46   thorpej  * are met:
     43   1.46   thorpej  * 1. Redistributions of source code must retain the above copyright
     44   1.46   thorpej  *    notice, this list of conditions and the following disclaimer.
     45   1.46   thorpej  * 2. Redistributions in binary form must reproduce the above copyright
     46   1.46   thorpej  *    notice, this list of conditions and the following disclaimer in the
     47   1.46   thorpej  *    documentation and/or other materials provided with the distribution.
     48   1.46   thorpej  *
     49   1.46   thorpej  * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
     50   1.46   thorpej  * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
     51   1.46   thorpej  * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
     52   1.46   thorpej  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
     53   1.46   thorpej  * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
     54   1.46   thorpej  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
     55   1.46   thorpej  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
     56   1.46   thorpej  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
     57   1.46   thorpej  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
     58   1.46   thorpej  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
     59   1.46   thorpej  * POSSIBILITY OF SUCH DAMAGE.
     60   1.46   thorpej  */
     61   1.46   thorpej 
     62    1.1       cgd /*
     63   1.12   mycroft  * Copyright (c) 1982, 1986, 1991, 1993
     64   1.12   mycroft  *	The Regents of the University of California.  All rights reserved.
     65    1.1       cgd  *
     66    1.1       cgd  * Redistribution and use in source and binary forms, with or without
     67    1.1       cgd  * modification, are permitted provided that the following conditions
     68    1.1       cgd  * are met:
     69    1.1       cgd  * 1. Redistributions of source code must retain the above copyright
     70    1.1       cgd  *    notice, this list of conditions and the following disclaimer.
     71    1.1       cgd  * 2. Redistributions in binary form must reproduce the above copyright
     72    1.1       cgd  *    notice, this list of conditions and the following disclaimer in the
     73    1.1       cgd  *    documentation and/or other materials provided with the distribution.
     74   1.90       agc  * 3. Neither the name of the University nor the names of its contributors
     75    1.1       cgd  *    may be used to endorse or promote products derived from this software
     76    1.1       cgd  *    without specific prior written permission.
     77    1.1       cgd  *
     78    1.1       cgd  * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
     79    1.1       cgd  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
     80    1.1       cgd  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
     81    1.1       cgd  * ARE DISCLAIMED.  IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
     82    1.1       cgd  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
     83    1.1       cgd  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
     84    1.1       cgd  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
     85    1.1       cgd  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
     86    1.1       cgd  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
     87    1.1       cgd  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
     88    1.1       cgd  * SUCH DAMAGE.
     89    1.1       cgd  *
     90   1.36   thorpej  *	@(#)in.c	8.4 (Berkeley) 1/9/95
     91    1.1       cgd  */
     92   1.71     lukem 
     93   1.71     lukem #include <sys/cdefs.h>
     94  1.161     ozaki __KERNEL_RCSID(0, "$NetBSD: in.c,v 1.161 2015/08/31 16:46:14 ozaki-r Exp $");
     95   1.37    scottr 
     96  1.154     joerg #include "arp.h"
     97  1.161     ozaki #include "ether.h"
     98  1.157     pooka 
     99  1.157     pooka #ifdef _KERNEL_OPT
    100   1.41  jonathan #include "opt_inet.h"
    101   1.47  sommerfe #include "opt_inet_conf.h"
    102   1.37    scottr #include "opt_mrouting.h"
    103  1.157     pooka #endif
    104    1.1       cgd 
    105    1.6   mycroft #include <sys/param.h>
    106    1.6   mycroft #include <sys/ioctl.h>
    107   1.12   mycroft #include <sys/errno.h>
    108  1.152       roy #include <sys/kernel.h>
    109   1.12   mycroft #include <sys/malloc.h>
    110    1.6   mycroft #include <sys/socket.h>
    111    1.6   mycroft #include <sys/socketvar.h>
    112  1.114    dyoung #include <sys/sysctl.h>
    113   1.26  christos #include <sys/systm.h>
    114   1.27   mycroft #include <sys/proc.h>
    115   1.72  christos #include <sys/syslog.h>
    116  1.108      elad #include <sys/kauth.h>
    117  1.158     ozaki #include <sys/kmem.h>
    118    1.6   mycroft 
    119  1.141       tls #include <sys/cprng.h>
    120  1.141       tls 
    121    1.6   mycroft #include <net/if.h>
    122    1.6   mycroft #include <net/route.h>
    123  1.144     rmind #include <net/pfil.h>
    124    1.6   mycroft 
    125  1.159     ozaki #include <net/if_arp.h>
    126   1.34        is #include <net/if_ether.h>
    127  1.158     ozaki #include <net/if_types.h>
    128  1.158     ozaki #include <net/if_llatbl.h>
    129  1.158     ozaki #include <net/if_dl.h>
    130   1.34        is 
    131   1.12   mycroft #include <netinet/in_systm.h>
    132    1.6   mycroft #include <netinet/in.h>
    133    1.6   mycroft #include <netinet/in_var.h>
    134   1.84      matt #include <netinet/ip.h>
    135   1.84      matt #include <netinet/ip_var.h>
    136  1.114    dyoung #include <netinet/in_ifattach.h>
    137   1.84      matt #include <netinet/in_pcb.h>
    138  1.158     ozaki #include <netinet/in_selsrc.h>
    139   1.34        is #include <netinet/if_inarp.h>
    140   1.19   mycroft #include <netinet/ip_mroute.h>
    141   1.26  christos #include <netinet/igmp_var.h>
    142   1.13    chopps 
    143  1.114    dyoung #ifdef IPSELSRC
    144  1.114    dyoung #include <netinet/in_selsrc.h>
    145  1.114    dyoung #endif
    146  1.114    dyoung 
    147  1.145     rmind static u_int	in_mask2len(struct in_addr *);
    148  1.145     rmind static void	in_len2mask(struct in_addr *, u_int);
    149  1.145     rmind static int	in_lifaddr_ioctl(struct socket *, u_long, void *,
    150  1.147       rtr 	struct ifnet *);
    151   1.48    itojun 
    152  1.145     rmind static int	in_addprefix(struct in_ifaddr *, int);
    153  1.145     rmind static int	in_scrubprefix(struct in_ifaddr *);
    154  1.145     rmind static void	in_sysctl_init(struct sysctllog **);
    155   1.67    itojun 
    156    1.1       cgd #ifndef SUBNETSARELOCAL
    157    1.1       cgd #define	SUBNETSARELOCAL	1
    158    1.1       cgd #endif
    159   1.47  sommerfe 
    160   1.47  sommerfe #ifndef HOSTZEROBROADCAST
    161   1.47  sommerfe #define HOSTZEROBROADCAST 1
    162   1.47  sommerfe #endif
    163   1.47  sommerfe 
    164  1.146     rmind /* Note: 61, 127, 251, 509, 1021, 2039 are good. */
    165  1.146     rmind #ifndef IN_MULTI_HASH_SIZE
    166  1.146     rmind #define IN_MULTI_HASH_SIZE	509
    167  1.146     rmind #endif
    168  1.146     rmind 
    169  1.145     rmind static int			subnetsarelocal = SUBNETSARELOCAL;
    170  1.145     rmind static int			hostzeroisbroadcast = HOSTZEROBROADCAST;
    171   1.30       mrg 
    172    1.1       cgd /*
    173   1.65     enami  * This list is used to keep track of in_multi chains which belong to
    174   1.65     enami  * deleted interface addresses.  We use in_ifaddr so that a chain head
    175   1.65     enami  * won't be deallocated until all multicast address record are deleted.
    176   1.64    itojun  */
    177  1.146     rmind 
    178  1.146     rmind LIST_HEAD(in_multihashhead, in_multi);		/* Type of the hash head */
    179  1.145     rmind 
    180  1.145     rmind static struct pool		inmulti_pool;
    181  1.145     rmind static u_int			in_multientries;
    182  1.146     rmind static struct in_multihashhead *in_multihashtbl;
    183  1.146     rmind static u_long			in_multihash;
    184  1.146     rmind static krwlock_t		in_multilock;
    185  1.146     rmind 
    186  1.146     rmind #define IN_MULTI_HASH(x, ifp) \
    187  1.146     rmind     (in_multihashtbl[(u_long)((x) ^ (ifp->if_index)) % IN_MULTI_HASH_SIZE])
    188  1.145     rmind 
    189  1.145     rmind struct in_ifaddrhashhead *	in_ifaddrhashtbl;
    190  1.145     rmind u_long				in_ifaddrhash;
    191  1.145     rmind struct in_ifaddrhead		in_ifaddrhead;
    192  1.145     rmind 
    193  1.145     rmind void
    194  1.145     rmind in_init(void)
    195  1.145     rmind {
    196  1.145     rmind 	pool_init(&inmulti_pool, sizeof(struct in_multi), 0, 0, 0, "inmltpl",
    197  1.145     rmind 	    NULL, IPL_SOFTNET);
    198  1.145     rmind 	TAILQ_INIT(&in_ifaddrhead);
    199  1.145     rmind 
    200  1.145     rmind 	in_ifaddrhashtbl = hashinit(IN_IFADDR_HASH_SIZE, HASH_LIST, true,
    201  1.145     rmind 	    &in_ifaddrhash);
    202  1.145     rmind 	in_multihashtbl = hashinit(IN_IFADDR_HASH_SIZE, HASH_LIST, true,
    203  1.145     rmind 	    &in_multihash);
    204  1.146     rmind 	rw_init(&in_multilock);
    205  1.145     rmind 
    206  1.145     rmind 	in_sysctl_init(NULL);
    207  1.145     rmind }
    208   1.64    itojun 
    209   1.64    itojun /*
    210    1.1       cgd  * Return 1 if an internet address is for a ``local'' host
    211    1.1       cgd  * (one to which we have a connection).  If subnetsarelocal
    212    1.1       cgd  * is true, this includes other subnets of the local net.
    213    1.1       cgd  * Otherwise, it includes only the directly-connected (sub)nets.
    214    1.1       cgd  */
    215    1.8   mycroft int
    216  1.103     perry in_localaddr(struct in_addr in)
    217    1.1       cgd {
    218   1.59  augustss 	struct in_ifaddr *ia;
    219    1.1       cgd 
    220    1.1       cgd 	if (subnetsarelocal) {
    221   1.93  jonathan 		TAILQ_FOREACH(ia, &in_ifaddrhead, ia_list)
    222   1.20   mycroft 			if ((in.s_addr & ia->ia_netmask) == ia->ia_net)
    223    1.1       cgd 				return (1);
    224    1.1       cgd 	} else {
    225   1.93  jonathan 		TAILQ_FOREACH(ia, &in_ifaddrhead, ia_list)
    226   1.20   mycroft 			if ((in.s_addr & ia->ia_subnetmask) == ia->ia_subnet)
    227    1.1       cgd 				return (1);
    228    1.1       cgd 	}
    229    1.1       cgd 	return (0);
    230    1.1       cgd }
    231    1.1       cgd 
    232    1.1       cgd /*
    233    1.1       cgd  * Determine whether an IP address is in a reserved set of addresses
    234    1.1       cgd  * that may not be forwarded, or whether datagrams to that destination
    235    1.1       cgd  * may be forwarded.
    236    1.1       cgd  */
    237    1.8   mycroft int
    238  1.103     perry in_canforward(struct in_addr in)
    239    1.1       cgd {
    240   1.59  augustss 	u_int32_t net;
    241    1.1       cgd 
    242   1.20   mycroft 	if (IN_EXPERIMENTAL(in.s_addr) || IN_MULTICAST(in.s_addr))
    243    1.1       cgd 		return (0);
    244   1.20   mycroft 	if (IN_CLASSA(in.s_addr)) {
    245   1.20   mycroft 		net = in.s_addr & IN_CLASSA_NET;
    246   1.20   mycroft 		if (net == 0 || net == htonl(IN_LOOPBACKNET << IN_CLASSA_NSHIFT))
    247    1.1       cgd 			return (0);
    248    1.1       cgd 	}
    249    1.1       cgd 	return (1);
    250    1.1       cgd }
    251    1.1       cgd 
    252   1.12   mycroft /*
    253   1.12   mycroft  * Trim a mask in a sockaddr
    254   1.12   mycroft  */
    255   1.12   mycroft void
    256  1.103     perry in_socktrim(struct sockaddr_in *ap)
    257   1.12   mycroft {
    258   1.59  augustss 	char *cplim = (char *) &ap->sin_addr;
    259   1.59  augustss 	char *cp = (char *) (&ap->sin_addr + 1);
    260   1.12   mycroft 
    261   1.12   mycroft 	ap->sin_len = 0;
    262   1.15   mycroft 	while (--cp >= cplim)
    263   1.12   mycroft 		if (*cp) {
    264   1.12   mycroft 			(ap)->sin_len = cp - (char *) (ap) + 1;
    265   1.12   mycroft 			break;
    266   1.12   mycroft 		}
    267   1.40      matt }
    268   1.40      matt 
    269   1.40      matt /*
    270   1.40      matt  *  Routine to take an Internet address and convert into a
    271   1.40      matt  *  "dotted quad" representation for printing.
    272   1.40      matt  */
    273   1.40      matt const char *
    274  1.103     perry in_fmtaddr(struct in_addr addr)
    275   1.40      matt {
    276   1.40      matt 	static char buf[sizeof("123.456.789.123")];
    277   1.40      matt 
    278   1.40      matt 	addr.s_addr = ntohl(addr.s_addr);
    279   1.40      matt 
    280   1.94    itojun 	snprintf(buf, sizeof(buf), "%d.%d.%d.%d",
    281   1.40      matt 		(addr.s_addr >> 24) & 0xFF,
    282   1.40      matt 		(addr.s_addr >> 16) & 0xFF,
    283   1.40      matt 		(addr.s_addr >>  8) & 0xFF,
    284   1.40      matt 		(addr.s_addr >>  0) & 0xFF);
    285   1.40      matt 	return buf;
    286   1.12   mycroft }
    287   1.12   mycroft 
    288   1.35   thorpej /*
    289   1.35   thorpej  * Maintain the "in_maxmtu" variable, which is the largest
    290   1.35   thorpej  * mtu for non-local interfaces with AF_INET addresses assigned
    291   1.35   thorpej  * to them that are up.
    292   1.35   thorpej  */
    293   1.35   thorpej unsigned long in_maxmtu;
    294   1.35   thorpej 
    295   1.35   thorpej void
    296  1.103     perry in_setmaxmtu(void)
    297   1.35   thorpej {
    298   1.59  augustss 	struct in_ifaddr *ia;
    299   1.59  augustss 	struct ifnet *ifp;
    300   1.35   thorpej 	unsigned long maxmtu = 0;
    301   1.35   thorpej 
    302   1.93  jonathan 	TAILQ_FOREACH(ia, &in_ifaddrhead, ia_list) {
    303   1.35   thorpej 		if ((ifp = ia->ia_ifp) == 0)
    304   1.35   thorpej 			continue;
    305   1.35   thorpej 		if ((ifp->if_flags & (IFF_UP|IFF_LOOPBACK)) != IFF_UP)
    306   1.35   thorpej 			continue;
    307   1.35   thorpej 		if (ifp->if_mtu > maxmtu)
    308   1.38       tls 			maxmtu = ifp->if_mtu;
    309   1.35   thorpej 	}
    310   1.35   thorpej 	if (maxmtu)
    311   1.35   thorpej 		in_maxmtu = maxmtu;
    312   1.35   thorpej }
    313   1.35   thorpej 
    314   1.82   thorpej static u_int
    315  1.103     perry in_mask2len(struct in_addr *mask)
    316   1.48    itojun {
    317   1.82   thorpej 	u_int x, y;
    318   1.48    itojun 	u_char *p;
    319   1.48    itojun 
    320   1.48    itojun 	p = (u_char *)mask;
    321   1.48    itojun 	for (x = 0; x < sizeof(*mask); x++) {
    322   1.48    itojun 		if (p[x] != 0xff)
    323   1.48    itojun 			break;
    324   1.48    itojun 	}
    325   1.48    itojun 	y = 0;
    326   1.48    itojun 	if (x < sizeof(*mask)) {
    327  1.124    dyoung 		for (y = 0; y < NBBY; y++) {
    328   1.48    itojun 			if ((p[x] & (0x80 >> y)) == 0)
    329   1.48    itojun 				break;
    330   1.48    itojun 		}
    331   1.48    itojun 	}
    332  1.124    dyoung 	return x * NBBY + y;
    333   1.48    itojun }
    334   1.48    itojun 
    335   1.48    itojun static void
    336  1.103     perry in_len2mask(struct in_addr *mask, u_int len)
    337   1.48    itojun {
    338   1.82   thorpej 	u_int i;
    339   1.48    itojun 	u_char *p;
    340   1.48    itojun 
    341   1.48    itojun 	p = (u_char *)mask;
    342  1.132    cegger 	memset(mask, 0, sizeof(*mask));
    343  1.124    dyoung 	for (i = 0; i < len / NBBY; i++)
    344   1.48    itojun 		p[i] = 0xff;
    345  1.124    dyoung 	if (len % NBBY)
    346  1.124    dyoung 		p[i] = (0xff00 >> (len % NBBY)) & 0xff;
    347   1.48    itojun }
    348   1.48    itojun 
    349    1.1       cgd /*
    350    1.1       cgd  * Generic internet control operations (ioctl's).
    351    1.1       cgd  * Ifp is 0 if not an interface-specific ioctl.
    352    1.1       cgd  */
    353    1.1       cgd /* ARGSUSED */
    354    1.8   mycroft int
    355  1.147       rtr in_control(struct socket *so, u_long cmd, void *data, struct ifnet *ifp)
    356    1.1       cgd {
    357   1.59  augustss 	struct ifreq *ifr = (struct ifreq *)data;
    358  1.136    dyoung 	struct in_ifaddr *ia = NULL;
    359    1.1       cgd 	struct in_aliasreq *ifra = (struct in_aliasreq *)data;
    360    1.1       cgd 	struct sockaddr_in oldaddr;
    361    1.1       cgd 	int error, hostIsNew, maskIsNew;
    362  1.100      yamt 	int newifaddr = 0;
    363   1.48    itojun 
    364   1.48    itojun 	switch (cmd) {
    365   1.48    itojun 	case SIOCALIFADDR:
    366   1.48    itojun 	case SIOCDLIFADDR:
    367  1.135    dyoung 	case SIOCGLIFADDR:
    368  1.135    dyoung 		if (ifp == NULL)
    369  1.135    dyoung 			return EINVAL;
    370  1.147       rtr 		return in_lifaddr_ioctl(so, cmd, data, ifp);
    371  1.135    dyoung 	case SIOCGIFADDRPREF:
    372  1.114    dyoung 	case SIOCSIFADDRPREF:
    373  1.117    dyoung 		if (ifp == NULL)
    374   1.48    itojun 			return EINVAL;
    375  1.147       rtr 		return ifaddrpref_ioctl(so, cmd, data, ifp);
    376   1.48    itojun 	}
    377   1.48    itojun 
    378    1.1       cgd 	/*
    379    1.1       cgd 	 * Find address for this interface, if it exists.
    380    1.1       cgd 	 */
    381  1.117    dyoung 	if (ifp != NULL)
    382   1.38       tls 		IFP_TO_IA(ifp, ia);
    383    1.1       cgd 
    384  1.153       roy 	hostIsNew = 1;		/* moved here to appease gcc */
    385    1.1       cgd 	switch (cmd) {
    386    1.1       cgd 	case SIOCAIFADDR:
    387    1.1       cgd 	case SIOCDIFADDR:
    388   1.43  christos 	case SIOCGIFALIAS:
    389  1.152       roy 	case SIOCGIFAFLAG_IN:
    390    1.1       cgd 		if (ifra->ifra_addr.sin_family == AF_INET)
    391   1.70      matt 			LIST_FOREACH(ia,
    392   1.70      matt 			    &IN_IFADDR_HASH(ifra->ifra_addr.sin_addr.s_addr),
    393   1.70      matt 			    ia_hash) {
    394  1.117    dyoung 				if (ia->ia_ifp == ifp &&
    395   1.38       tls 				    in_hosteq(ia->ia_addr.sin_addr,
    396   1.38       tls 				    ifra->ifra_addr.sin_addr))
    397   1.28   mycroft 					break;
    398   1.28   mycroft 			}
    399  1.152       roy 		if ((cmd == SIOCDIFADDR ||
    400  1.152       roy 		    cmd == SIOCGIFALIAS ||
    401  1.152       roy 		    cmd == SIOCGIFAFLAG_IN) &&
    402  1.152       roy 		    ia == NULL)
    403  1.105     seanb 			return (EADDRNOTAVAIL);
    404  1.105     seanb 
    405  1.105     seanb 		if (cmd == SIOCDIFADDR &&
    406  1.105     seanb 		    ifra->ifra_addr.sin_family == AF_UNSPEC) {
    407  1.105     seanb 			ifra->ifra_addr.sin_family = AF_INET;
    408  1.105     seanb 		}
    409    1.1       cgd 		/* FALLTHROUGH */
    410    1.1       cgd 	case SIOCSIFADDR:
    411  1.152       roy 		if (ia == NULL || ia->ia_addr.sin_family != AF_INET)
    412  1.152       roy 			;
    413  1.152       roy 		else if (ifra->ifra_addr.sin_len == 0) {
    414  1.152       roy 			ifra->ifra_addr = ia->ia_addr;
    415  1.152       roy 			hostIsNew = 0;
    416  1.152       roy 		} else if (in_hosteq(ia->ia_addr.sin_addr,
    417  1.152       roy 		           ifra->ifra_addr.sin_addr))
    418  1.152       roy 			hostIsNew = 0;
    419  1.152       roy 		/* FALLTHROUGH */
    420   1.52    itojun 	case SIOCSIFDSTADDR:
    421   1.54    itojun 		if (ifra->ifra_addr.sin_family != AF_INET)
    422   1.54    itojun 			return (EAFNOSUPPORT);
    423   1.54    itojun 		/* FALLTHROUGH */
    424    1.1       cgd 	case SIOCSIFNETMASK:
    425  1.117    dyoung 		if (ifp == NULL)
    426   1.44  christos 			panic("in_control");
    427   1.44  christos 
    428  1.152       roy 		if (cmd == SIOCGIFALIAS || cmd == SIOCGIFAFLAG_IN)
    429   1.44  christos 			break;
    430   1.44  christos 
    431  1.100      yamt 		if (ia == NULL &&
    432  1.100      yamt 		    (cmd == SIOCSIFNETMASK || cmd == SIOCSIFDSTADDR))
    433  1.100      yamt 			return (EADDRNOTAVAIL);
    434  1.100      yamt 
    435  1.147       rtr 		if (kauth_authorize_network(curlwp->l_cred, KAUTH_NETWORK_INTERFACE,
    436  1.113      elad 		    KAUTH_REQ_NETWORK_INTERFACE_SETPRIV, ifp, (void *)cmd,
    437  1.113      elad 		    NULL) != 0)
    438    1.1       cgd 			return (EPERM);
    439    1.1       cgd 
    440  1.136    dyoung 		if (ia == NULL) {
    441  1.129    cegger 			ia = malloc(sizeof(*ia), M_IFADDR, M_WAITOK|M_ZERO);
    442  1.136    dyoung 			if (ia == NULL)
    443    1.1       cgd 				return (ENOBUFS);
    444   1.93  jonathan 			TAILQ_INSERT_TAIL(&in_ifaddrhead, ia, ia_list);
    445  1.148     rmind 			ifaref(&ia->ia_ifa);
    446  1.122    dyoung 			ifa_insert(ifp, &ia->ia_ifa);
    447   1.21   mycroft 			ia->ia_ifa.ifa_addr = sintosa(&ia->ia_addr);
    448   1.21   mycroft 			ia->ia_ifa.ifa_dstaddr = sintosa(&ia->ia_dstaddr);
    449   1.21   mycroft 			ia->ia_ifa.ifa_netmask = sintosa(&ia->ia_sockmask);
    450  1.114    dyoung #ifdef IPSELSRC
    451  1.114    dyoung 			ia->ia_ifa.ifa_getifa = in_getifa;
    452  1.114    dyoung #else /* IPSELSRC */
    453  1.114    dyoung 			ia->ia_ifa.ifa_getifa = NULL;
    454  1.114    dyoung #endif /* IPSELSRC */
    455    1.1       cgd 			ia->ia_sockmask.sin_len = 8;
    456  1.149  christos 			ia->ia_sockmask.sin_family = AF_INET;
    457    1.1       cgd 			if (ifp->if_flags & IFF_BROADCAST) {
    458    1.1       cgd 				ia->ia_broadaddr.sin_len = sizeof(ia->ia_addr);
    459    1.1       cgd 				ia->ia_broadaddr.sin_family = AF_INET;
    460    1.1       cgd 			}
    461    1.1       cgd 			ia->ia_ifp = ifp;
    462  1.141       tls 			ia->ia_idsalt = cprng_fast32() % 65535;
    463   1.24   mycroft 			LIST_INIT(&ia->ia_multiaddrs);
    464  1.100      yamt 			newifaddr = 1;
    465   1.81    simonb 		}
    466    1.1       cgd 		break;
    467    1.1       cgd 
    468    1.1       cgd 	case SIOCSIFBRDADDR:
    469  1.147       rtr 		if (kauth_authorize_network(curlwp->l_cred, KAUTH_NETWORK_INTERFACE,
    470  1.113      elad 		    KAUTH_REQ_NETWORK_INTERFACE_SETPRIV, ifp, (void *)cmd,
    471  1.113      elad 		    NULL) != 0)
    472    1.1       cgd 			return (EPERM);
    473    1.1       cgd 		/* FALLTHROUGH */
    474    1.1       cgd 
    475    1.1       cgd 	case SIOCGIFADDR:
    476    1.1       cgd 	case SIOCGIFNETMASK:
    477    1.1       cgd 	case SIOCGIFDSTADDR:
    478    1.1       cgd 	case SIOCGIFBRDADDR:
    479  1.136    dyoung 		if (ia == NULL)
    480    1.1       cgd 			return (EADDRNOTAVAIL);
    481    1.1       cgd 		break;
    482    1.1       cgd 	}
    483  1.100      yamt 	error = 0;
    484    1.1       cgd 	switch (cmd) {
    485    1.1       cgd 
    486    1.1       cgd 	case SIOCGIFADDR:
    487  1.118    dyoung 		ifreq_setaddr(cmd, ifr, sintocsa(&ia->ia_addr));
    488    1.1       cgd 		break;
    489    1.1       cgd 
    490    1.1       cgd 	case SIOCGIFBRDADDR:
    491    1.1       cgd 		if ((ifp->if_flags & IFF_BROADCAST) == 0)
    492    1.1       cgd 			return (EINVAL);
    493  1.118    dyoung 		ifreq_setdstaddr(cmd, ifr, sintocsa(&ia->ia_broadaddr));
    494    1.1       cgd 		break;
    495    1.1       cgd 
    496    1.1       cgd 	case SIOCGIFDSTADDR:
    497    1.1       cgd 		if ((ifp->if_flags & IFF_POINTOPOINT) == 0)
    498    1.1       cgd 			return (EINVAL);
    499  1.118    dyoung 		ifreq_setdstaddr(cmd, ifr, sintocsa(&ia->ia_dstaddr));
    500    1.1       cgd 		break;
    501    1.1       cgd 
    502    1.1       cgd 	case SIOCGIFNETMASK:
    503  1.149  christos 		/*
    504  1.149  christos 		 * We keep the number of trailing zero bytes the sin_len field
    505  1.149  christos 		 * of ia_sockmask, so we fix this before we pass it back to
    506  1.149  christos 		 * userland.
    507  1.149  christos 		 */
    508  1.149  christos 		oldaddr = ia->ia_sockmask;
    509  1.149  christos 		oldaddr.sin_len = sizeof(struct sockaddr_in);
    510  1.149  christos 		ifreq_setaddr(cmd, ifr, (const void *)&oldaddr);
    511    1.1       cgd 		break;
    512    1.1       cgd 
    513    1.1       cgd 	case SIOCSIFDSTADDR:
    514    1.1       cgd 		if ((ifp->if_flags & IFF_POINTOPOINT) == 0)
    515    1.1       cgd 			return (EINVAL);
    516    1.1       cgd 		oldaddr = ia->ia_dstaddr;
    517  1.118    dyoung 		ia->ia_dstaddr = *satocsin(ifreq_getdstaddr(cmd, ifr));
    518  1.139    dyoung 		if ((error = if_addr_init(ifp, &ia->ia_ifa, false)) != 0) {
    519    1.1       cgd 			ia->ia_dstaddr = oldaddr;
    520  1.117    dyoung 			return error;
    521    1.1       cgd 		}
    522    1.1       cgd 		if (ia->ia_flags & IFA_ROUTE) {
    523   1.21   mycroft 			ia->ia_ifa.ifa_dstaddr = sintosa(&oldaddr);
    524  1.117    dyoung 			rtinit(&ia->ia_ifa, RTM_DELETE, RTF_HOST);
    525   1.21   mycroft 			ia->ia_ifa.ifa_dstaddr = sintosa(&ia->ia_dstaddr);
    526  1.117    dyoung 			rtinit(&ia->ia_ifa, RTM_ADD, RTF_HOST|RTF_UP);
    527    1.1       cgd 		}
    528    1.1       cgd 		break;
    529    1.1       cgd 
    530    1.1       cgd 	case SIOCSIFBRDADDR:
    531    1.1       cgd 		if ((ifp->if_flags & IFF_BROADCAST) == 0)
    532  1.117    dyoung 			return EINVAL;
    533  1.118    dyoung 		ia->ia_broadaddr = *satocsin(ifreq_getbroadaddr(cmd, ifr));
    534    1.1       cgd 		break;
    535    1.1       cgd 
    536    1.1       cgd 	case SIOCSIFADDR:
    537  1.118    dyoung 		error = in_ifinit(ifp, ia, satocsin(ifreq_getaddr(cmd, ifr)),
    538  1.152       roy 		    1, hostIsNew);
    539  1.144     rmind 		if (error == 0) {
    540  1.144     rmind 			(void)pfil_run_hooks(if_pfil,
    541   1.96    itojun 			    (struct mbuf **)SIOCSIFADDR, ifp, PFIL_IFADDR);
    542  1.144     rmind 		}
    543  1.100      yamt 		break;
    544    1.1       cgd 
    545    1.1       cgd 	case SIOCSIFNETMASK:
    546   1.97   mycroft 		in_ifscrub(ifp, ia);
    547  1.118    dyoung 		ia->ia_sockmask = *satocsin(ifreq_getaddr(cmd, ifr));
    548   1.97   mycroft 		ia->ia_subnetmask = ia->ia_sockmask.sin_addr.s_addr;
    549  1.152       roy 		error = in_ifinit(ifp, ia, NULL, 0, 0);
    550  1.100      yamt 		break;
    551    1.1       cgd 
    552    1.1       cgd 	case SIOCAIFADDR:
    553    1.1       cgd 		maskIsNew = 0;
    554    1.1       cgd 		if (ifra->ifra_mask.sin_len) {
    555  1.142       roy 			/* Only scrub if we control the prefix route,
    556  1.142       roy 			 * otherwise userland gets a bogus message */
    557  1.142       roy 			if ((ia->ia_flags & IFA_ROUTE))
    558  1.142       roy 				in_ifscrub(ifp, ia);
    559    1.1       cgd 			ia->ia_sockmask = ifra->ifra_mask;
    560   1.20   mycroft 			ia->ia_subnetmask = ia->ia_sockmask.sin_addr.s_addr;
    561    1.1       cgd 			maskIsNew = 1;
    562    1.1       cgd 		}
    563    1.1       cgd 		if ((ifp->if_flags & IFF_POINTOPOINT) &&
    564    1.1       cgd 		    (ifra->ifra_dstaddr.sin_family == AF_INET)) {
    565  1.142       roy 			/* Only scrub if we control the prefix route,
    566  1.142       roy 			 * otherwise userland gets a bogus message */
    567  1.142       roy 			if ((ia->ia_flags & IFA_ROUTE))
    568  1.142       roy 				in_ifscrub(ifp, ia);
    569    1.1       cgd 			ia->ia_dstaddr = ifra->ifra_dstaddr;
    570    1.1       cgd 			maskIsNew  = 1; /* We lie; but the effect's the same */
    571    1.1       cgd 		}
    572    1.1       cgd 		if (ifra->ifra_addr.sin_family == AF_INET &&
    573   1.56    itojun 		    (hostIsNew || maskIsNew)) {
    574  1.152       roy 			error = in_ifinit(ifp, ia, &ifra->ifra_addr, 0,
    575  1.152       roy 			    hostIsNew);
    576   1.56    itojun 		}
    577    1.1       cgd 		if ((ifp->if_flags & IFF_BROADCAST) &&
    578    1.1       cgd 		    (ifra->ifra_broadaddr.sin_family == AF_INET))
    579    1.1       cgd 			ia->ia_broadaddr = ifra->ifra_broadaddr;
    580  1.117    dyoung 		if (error == 0)
    581  1.144     rmind 			(void)pfil_run_hooks(if_pfil,
    582   1.99      yamt 			    (struct mbuf **)SIOCAIFADDR, ifp, PFIL_IFADDR);
    583  1.100      yamt 		break;
    584   1.43  christos 
    585   1.43  christos 	case SIOCGIFALIAS:
    586   1.43  christos 		ifra->ifra_mask = ia->ia_sockmask;
    587   1.43  christos 		if ((ifp->if_flags & IFF_POINTOPOINT) &&
    588   1.43  christos 		    (ia->ia_dstaddr.sin_family == AF_INET))
    589   1.43  christos 			ifra->ifra_dstaddr = ia->ia_dstaddr;
    590   1.43  christos 		else if ((ifp->if_flags & IFF_BROADCAST) &&
    591   1.43  christos 		    (ia->ia_broadaddr.sin_family == AF_INET))
    592   1.43  christos 			ifra->ifra_broadaddr = ia->ia_broadaddr;
    593   1.43  christos 		else
    594  1.117    dyoung 			memset(&ifra->ifra_broadaddr, 0,
    595   1.48    itojun 			      sizeof(ifra->ifra_broadaddr));
    596  1.100      yamt 		break;
    597    1.1       cgd 
    598  1.152       roy 	case SIOCGIFAFLAG_IN:
    599  1.152       roy 		ifr->ifr_addrflags = ia->ia4_flags;
    600  1.152       roy 		break;
    601  1.152       roy 
    602    1.1       cgd 	case SIOCDIFADDR:
    603  1.121    dyoung 		in_purgeaddr(&ia->ia_ifa);
    604  1.144     rmind 		(void)pfil_run_hooks(if_pfil, (struct mbuf **)SIOCDIFADDR,
    605   1.96    itojun 		    ifp, PFIL_IFADDR);
    606    1.1       cgd 		break;
    607   1.19   mycroft 
    608   1.19   mycroft #ifdef MROUTING
    609   1.19   mycroft 	case SIOCGETVIFCNT:
    610   1.19   mycroft 	case SIOCGETSGCNT:
    611  1.100      yamt 		error = mrt_ioctl(so, cmd, data);
    612  1.100      yamt 		break;
    613   1.19   mycroft #endif /* MROUTING */
    614    1.1       cgd 
    615    1.1       cgd 	default:
    616  1.128    dyoung 		return ENOTTY;
    617  1.100      yamt 	}
    618  1.100      yamt 
    619  1.117    dyoung 	if (error != 0 && newifaddr) {
    620  1.100      yamt 		KASSERT(ia != NULL);
    621  1.121    dyoung 		in_purgeaddr(&ia->ia_ifa);
    622    1.1       cgd 	}
    623  1.100      yamt 
    624  1.100      yamt 	return error;
    625   1.50   thorpej }
    626   1.50   thorpej 
    627  1.150       roy /* Add ownaddr as loopback rtentry. */
    628  1.150       roy static void
    629  1.150       roy in_ifaddlocal(struct ifaddr *ifa)
    630  1.150       roy {
    631  1.151       roy 	struct in_ifaddr *ia;
    632  1.151       roy 
    633  1.151       roy 	ia = (struct in_ifaddr *)ifa;
    634  1.151       roy 	if (ia->ia_addr.sin_addr.s_addr == INADDR_ANY ||
    635  1.151       roy 	    (ia->ia_ifp->if_flags & IFF_POINTOPOINT &&
    636  1.151       roy 	    in_hosteq(ia->ia_dstaddr.sin_addr, ia->ia_addr.sin_addr)))
    637  1.151       roy 	{
    638  1.151       roy 		rt_newaddrmsg(RTM_NEWADDR, ifa, 0, NULL);
    639  1.151       roy 		return;
    640  1.151       roy 	}
    641  1.150       roy 
    642  1.150       roy 	rt_ifa_addlocal(ifa);
    643  1.150       roy }
    644  1.150       roy 
    645  1.150       roy /* Rempve loopback entry of ownaddr */
    646  1.150       roy static void
    647  1.150       roy in_ifremlocal(struct ifaddr *ifa)
    648  1.150       roy {
    649  1.150       roy 	struct in_ifaddr *ia, *p;
    650  1.150       roy 	struct ifaddr *alt_ifa = NULL;
    651  1.150       roy 	int ia_count = 0;
    652  1.150       roy 
    653  1.150       roy 	ia = (struct in_ifaddr *)ifa;
    654  1.150       roy 	/* Delete the entry if exactly one ifaddr matches the
    655  1.150       roy 	 * address, ifa->ifa_addr. */
    656  1.150       roy 	TAILQ_FOREACH(p, &in_ifaddrhead, ia_list) {
    657  1.150       roy 		if (!in_hosteq(p->ia_addr.sin_addr, ia->ia_addr.sin_addr))
    658  1.150       roy 			continue;
    659  1.150       roy 		if (p->ia_ifp != ia->ia_ifp)
    660  1.150       roy 			alt_ifa = &p->ia_ifa;
    661  1.150       roy 		if (++ia_count > 1 && alt_ifa != NULL)
    662  1.150       roy 			break;
    663  1.150       roy 	}
    664  1.150       roy 
    665  1.150       roy 	if (ia_count == 0)
    666  1.150       roy 		return;
    667  1.150       roy 
    668  1.150       roy 	rt_ifa_remlocal(ifa, ia_count == 1 ? NULL : alt_ifa);
    669  1.150       roy }
    670  1.150       roy 
    671   1.50   thorpej void
    672  1.121    dyoung in_purgeaddr(struct ifaddr *ifa)
    673   1.50   thorpej {
    674  1.121    dyoung 	struct ifnet *ifp = ifa->ifa_ifp;
    675   1.50   thorpej 	struct in_ifaddr *ia = (void *) ifa;
    676   1.50   thorpej 
    677  1.154     joerg 	/* stop DAD processing */
    678  1.156       roy 	if (ia->ia_dad_stop != NULL)
    679  1.156       roy 		ia->ia_dad_stop(ifa);
    680  1.152       roy 
    681   1.50   thorpej 	in_ifscrub(ifp, ia);
    682  1.150       roy 	in_ifremlocal(ifa);
    683   1.50   thorpej 	LIST_REMOVE(ia, ia_hash);
    684  1.122    dyoung 	ifa_remove(ifp, &ia->ia_ifa);
    685   1.93  jonathan 	TAILQ_REMOVE(&in_ifaddrhead, ia, ia_list);
    686   1.65     enami 	if (ia->ia_allhosts != NULL)
    687   1.65     enami 		in_delmulti(ia->ia_allhosts);
    688  1.148     rmind 	ifafree(&ia->ia_ifa);
    689   1.50   thorpej 	in_setmaxmtu();
    690   1.51   thorpej }
    691   1.51   thorpej 
    692   1.51   thorpej void
    693  1.111       tls in_purgeif(struct ifnet *ifp)		/* MUST be called at splsoftnet() */
    694   1.51   thorpej {
    695  1.121    dyoung 	if_purgeaddrs(ifp, AF_INET, in_purgeaddr);
    696  1.111       tls 	igmp_purgeif(ifp);		/* manipulates pools */
    697   1.89    itojun #ifdef MROUTING
    698   1.89    itojun 	ip_mrouter_detach(ifp);
    699   1.89    itojun #endif
    700   1.48    itojun }
    701   1.48    itojun 
    702   1.48    itojun /*
    703   1.48    itojun  * SIOC[GAD]LIFADDR.
    704   1.48    itojun  *	SIOCGLIFADDR: get first address. (???)
    705   1.48    itojun  *	SIOCGLIFADDR with IFLR_PREFIX:
    706   1.48    itojun  *		get first address that matches the specified prefix.
    707   1.48    itojun  *	SIOCALIFADDR: add the specified address.
    708   1.48    itojun  *	SIOCALIFADDR with IFLR_PREFIX:
    709   1.48    itojun  *		EINVAL since we can't deduce hostid part of the address.
    710   1.48    itojun  *	SIOCDLIFADDR: delete the specified address.
    711   1.48    itojun  *	SIOCDLIFADDR with IFLR_PREFIX:
    712   1.48    itojun  *		delete the first address that matches the specified prefix.
    713   1.48    itojun  * return values:
    714   1.48    itojun  *	EINVAL on invalid parameters
    715   1.48    itojun  *	EADDRNOTAVAIL on prefix match failed/specified address not found
    716   1.48    itojun  *	other values may be returned from in_ioctl()
    717   1.48    itojun  */
    718   1.48    itojun static int
    719  1.116  christos in_lifaddr_ioctl(struct socket *so, u_long cmd, void *data,
    720  1.147       rtr     struct ifnet *ifp)
    721   1.48    itojun {
    722   1.48    itojun 	struct if_laddrreq *iflr = (struct if_laddrreq *)data;
    723   1.48    itojun 	struct ifaddr *ifa;
    724   1.49    itojun 	struct sockaddr *sa;
    725   1.48    itojun 
    726   1.48    itojun 	/* sanity checks */
    727  1.119    dyoung 	if (data == NULL || ifp == NULL) {
    728   1.48    itojun 		panic("invalid argument to in_lifaddr_ioctl");
    729   1.48    itojun 		/*NOTRECHED*/
    730   1.48    itojun 	}
    731   1.48    itojun 
    732   1.48    itojun 	switch (cmd) {
    733   1.48    itojun 	case SIOCGLIFADDR:
    734   1.48    itojun 		/* address must be specified on GET with IFLR_PREFIX */
    735   1.48    itojun 		if ((iflr->flags & IFLR_PREFIX) == 0)
    736   1.48    itojun 			break;
    737   1.48    itojun 		/*FALLTHROUGH*/
    738   1.48    itojun 	case SIOCALIFADDR:
    739   1.48    itojun 	case SIOCDLIFADDR:
    740   1.48    itojun 		/* address must be specified on ADD and DELETE */
    741   1.49    itojun 		sa = (struct sockaddr *)&iflr->addr;
    742   1.49    itojun 		if (sa->sa_family != AF_INET)
    743   1.48    itojun 			return EINVAL;
    744   1.49    itojun 		if (sa->sa_len != sizeof(struct sockaddr_in))
    745   1.48    itojun 			return EINVAL;
    746   1.48    itojun 		/* XXX need improvement */
    747   1.49    itojun 		sa = (struct sockaddr *)&iflr->dstaddr;
    748  1.126    dyoung 		if (sa->sa_family != AF_UNSPEC && sa->sa_family != AF_INET)
    749   1.48    itojun 			return EINVAL;
    750  1.126    dyoung 		if (sa->sa_len != 0 && sa->sa_len != sizeof(struct sockaddr_in))
    751   1.48    itojun 			return EINVAL;
    752   1.48    itojun 		break;
    753   1.48    itojun 	default: /*shouldn't happen*/
    754   1.48    itojun #if 0
    755   1.48    itojun 		panic("invalid cmd to in_lifaddr_ioctl");
    756   1.48    itojun 		/*NOTREACHED*/
    757   1.48    itojun #else
    758   1.48    itojun 		return EOPNOTSUPP;
    759   1.48    itojun #endif
    760   1.48    itojun 	}
    761  1.124    dyoung 	if (sizeof(struct in_addr) * NBBY < iflr->prefixlen)
    762   1.48    itojun 		return EINVAL;
    763   1.48    itojun 
    764   1.48    itojun 	switch (cmd) {
    765   1.48    itojun 	case SIOCALIFADDR:
    766   1.48    itojun 	    {
    767   1.48    itojun 		struct in_aliasreq ifra;
    768   1.48    itojun 
    769   1.48    itojun 		if (iflr->flags & IFLR_PREFIX)
    770   1.48    itojun 			return EINVAL;
    771   1.48    itojun 
    772  1.110      elad 		/* copy args to in_aliasreq, perform ioctl(SIOCAIFADDR). */
    773  1.132    cegger 		memset(&ifra, 0, sizeof(ifra));
    774  1.134   tsutsui 		memcpy(ifra.ifra_name, iflr->iflr_name,
    775   1.48    itojun 			sizeof(ifra.ifra_name));
    776   1.48    itojun 
    777  1.134   tsutsui 		memcpy(&ifra.ifra_addr, &iflr->addr,
    778   1.49    itojun 			((struct sockaddr *)&iflr->addr)->sa_len);
    779   1.48    itojun 
    780   1.49    itojun 		if (((struct sockaddr *)&iflr->dstaddr)->sa_family) {	/*XXX*/
    781  1.134   tsutsui 			memcpy(&ifra.ifra_dstaddr, &iflr->dstaddr,
    782   1.49    itojun 				((struct sockaddr *)&iflr->dstaddr)->sa_len);
    783   1.48    itojun 		}
    784   1.48    itojun 
    785   1.48    itojun 		ifra.ifra_mask.sin_family = AF_INET;
    786   1.48    itojun 		ifra.ifra_mask.sin_len = sizeof(struct sockaddr_in);
    787   1.48    itojun 		in_len2mask(&ifra.ifra_mask.sin_addr, iflr->prefixlen);
    788   1.48    itojun 
    789  1.147       rtr 		return in_control(so, SIOCAIFADDR, &ifra, ifp);
    790   1.48    itojun 	    }
    791   1.48    itojun 	case SIOCGLIFADDR:
    792   1.48    itojun 	case SIOCDLIFADDR:
    793   1.48    itojun 	    {
    794   1.48    itojun 		struct in_ifaddr *ia;
    795   1.48    itojun 		struct in_addr mask, candidate, match;
    796   1.48    itojun 		struct sockaddr_in *sin;
    797   1.48    itojun 		int cmp;
    798   1.48    itojun 
    799  1.132    cegger 		memset(&mask, 0, sizeof(mask));
    800  1.132    cegger 		memset(&match, 0, sizeof(match));	/* XXX gcc */
    801   1.48    itojun 		if (iflr->flags & IFLR_PREFIX) {
    802   1.48    itojun 			/* lookup a prefix rather than address. */
    803   1.48    itojun 			in_len2mask(&mask, iflr->prefixlen);
    804   1.48    itojun 
    805   1.48    itojun 			sin = (struct sockaddr_in *)&iflr->addr;
    806   1.48    itojun 			match.s_addr = sin->sin_addr.s_addr;
    807   1.48    itojun 			match.s_addr &= mask.s_addr;
    808   1.48    itojun 
    809   1.48    itojun 			/* if you set extra bits, that's wrong */
    810   1.48    itojun 			if (match.s_addr != sin->sin_addr.s_addr)
    811   1.48    itojun 				return EINVAL;
    812   1.48    itojun 
    813   1.48    itojun 			cmp = 1;
    814   1.48    itojun 		} else {
    815   1.48    itojun 			if (cmd == SIOCGLIFADDR) {
    816   1.48    itojun 				/* on getting an address, take the 1st match */
    817   1.48    itojun 				cmp = 0;	/*XXX*/
    818   1.48    itojun 			} else {
    819   1.48    itojun 				/* on deleting an address, do exact match */
    820   1.48    itojun 				in_len2mask(&mask, 32);
    821   1.48    itojun 				sin = (struct sockaddr_in *)&iflr->addr;
    822   1.48    itojun 				match.s_addr = sin->sin_addr.s_addr;
    823   1.48    itojun 
    824   1.48    itojun 				cmp = 1;
    825   1.48    itojun 			}
    826   1.48    itojun 		}
    827   1.48    itojun 
    828  1.101      matt 		IFADDR_FOREACH(ifa, ifp) {
    829   1.95    itojun 			if (ifa->ifa_addr->sa_family != AF_INET)
    830   1.48    itojun 				continue;
    831  1.119    dyoung 			if (cmp == 0)
    832   1.48    itojun 				break;
    833  1.143       gdt 			candidate.s_addr = ((struct sockaddr_in *)ifa->ifa_addr)->sin_addr.s_addr;
    834   1.48    itojun 			candidate.s_addr &= mask.s_addr;
    835   1.48    itojun 			if (candidate.s_addr == match.s_addr)
    836   1.48    itojun 				break;
    837   1.48    itojun 		}
    838  1.119    dyoung 		if (ifa == NULL)
    839   1.48    itojun 			return EADDRNOTAVAIL;
    840   1.48    itojun 		ia = (struct in_ifaddr *)ifa;
    841   1.48    itojun 
    842   1.48    itojun 		if (cmd == SIOCGLIFADDR) {
    843   1.48    itojun 			/* fill in the if_laddrreq structure */
    844  1.134   tsutsui 			memcpy(&iflr->addr, &ia->ia_addr, ia->ia_addr.sin_len);
    845   1.48    itojun 
    846   1.48    itojun 			if ((ifp->if_flags & IFF_POINTOPOINT) != 0) {
    847  1.134   tsutsui 				memcpy(&iflr->dstaddr, &ia->ia_dstaddr,
    848   1.48    itojun 					ia->ia_dstaddr.sin_len);
    849   1.48    itojun 			} else
    850  1.132    cegger 				memset(&iflr->dstaddr, 0, sizeof(iflr->dstaddr));
    851   1.48    itojun 
    852   1.48    itojun 			iflr->prefixlen =
    853   1.48    itojun 				in_mask2len(&ia->ia_sockmask.sin_addr);
    854   1.48    itojun 
    855   1.48    itojun 			iflr->flags = 0;	/*XXX*/
    856   1.48    itojun 
    857   1.48    itojun 			return 0;
    858   1.48    itojun 		} else {
    859   1.48    itojun 			struct in_aliasreq ifra;
    860   1.48    itojun 
    861  1.110      elad 			/* fill in_aliasreq and do ioctl(SIOCDIFADDR) */
    862  1.132    cegger 			memset(&ifra, 0, sizeof(ifra));
    863  1.134   tsutsui 			memcpy(ifra.ifra_name, iflr->iflr_name,
    864   1.48    itojun 				sizeof(ifra.ifra_name));
    865   1.48    itojun 
    866  1.134   tsutsui 			memcpy(&ifra.ifra_addr, &ia->ia_addr,
    867   1.48    itojun 				ia->ia_addr.sin_len);
    868   1.48    itojun 			if ((ifp->if_flags & IFF_POINTOPOINT) != 0) {
    869  1.134   tsutsui 				memcpy(&ifra.ifra_dstaddr, &ia->ia_dstaddr,
    870   1.48    itojun 					ia->ia_dstaddr.sin_len);
    871   1.48    itojun 			}
    872  1.134   tsutsui 			memcpy(&ifra.ifra_dstaddr, &ia->ia_sockmask,
    873   1.48    itojun 				ia->ia_sockmask.sin_len);
    874   1.48    itojun 
    875  1.147       rtr 			return in_control(so, SIOCDIFADDR, &ifra, ifp);
    876   1.48    itojun 		}
    877   1.48    itojun 	    }
    878   1.48    itojun 	}
    879   1.48    itojun 
    880   1.48    itojun 	return EOPNOTSUPP;	/*just for safety*/
    881    1.1       cgd }
    882    1.1       cgd 
    883    1.1       cgd /*
    884    1.1       cgd  * Delete any existing route for an interface.
    885    1.1       cgd  */
    886   1.12   mycroft void
    887  1.115  christos in_ifscrub(struct ifnet *ifp, struct in_ifaddr *ia)
    888    1.1       cgd {
    889    1.1       cgd 
    890   1.67    itojun 	in_scrubprefix(ia);
    891    1.1       cgd }
    892    1.1       cgd 
    893    1.1       cgd /*
    894    1.1       cgd  * Initialize an interface's internet address
    895    1.1       cgd  * and routing table entry.
    896    1.1       cgd  */
    897   1.12   mycroft int
    898  1.103     perry in_ifinit(struct ifnet *ifp, struct in_ifaddr *ia,
    899  1.152       roy     const struct sockaddr_in *sin, int scrub, int hostIsNew)
    900    1.1       cgd {
    901   1.97   mycroft 	u_int32_t i;
    902    1.1       cgd 	struct sockaddr_in oldaddr;
    903   1.66   thorpej 	int s = splnet(), flags = RTF_UP, error;
    904    1.1       cgd 
    905  1.118    dyoung 	if (sin == NULL)
    906   1.97   mycroft 		sin = &ia->ia_addr;
    907   1.97   mycroft 
    908   1.32   mycroft 	/*
    909   1.32   mycroft 	 * Set up new addresses.
    910   1.32   mycroft 	 */
    911    1.1       cgd 	oldaddr = ia->ia_addr;
    912   1.38       tls 	if (ia->ia_addr.sin_family == AF_INET)
    913   1.38       tls 		LIST_REMOVE(ia, ia_hash);
    914    1.1       cgd 	ia->ia_addr = *sin;
    915   1.38       tls 	LIST_INSERT_HEAD(&IN_IFADDR_HASH(ia->ia_addr.sin_addr.s_addr), ia, ia_hash);
    916   1.38       tls 
    917  1.156       roy 	/* Set IN_IFF flags early for if_addr_init() */
    918  1.152       roy 	if (hostIsNew && if_do_dad(ifp) && !in_nullhost(ia->ia_addr.sin_addr)) {
    919  1.152       roy 		if (ifp->if_link_state == LINK_STATE_DOWN)
    920  1.152       roy 			ia->ia4_flags |= IN_IFF_DETACHED;
    921  1.152       roy 		else
    922  1.156       roy 			/* State the intent to try DAD if possible */
    923  1.156       roy 			ia->ia4_flags |= IN_IFF_TRYTENTATIVE;
    924  1.152       roy 	}
    925  1.152       roy 
    926    1.1       cgd 	/*
    927    1.1       cgd 	 * Give the interface a chance to initialize
    928    1.1       cgd 	 * if this is its first address,
    929    1.1       cgd 	 * and to validate the address if necessary.
    930    1.1       cgd 	 */
    931  1.139    dyoung 	if ((error = if_addr_init(ifp, &ia->ia_ifa, true)) != 0)
    932   1.32   mycroft 		goto bad;
    933  1.156       roy 	/* Now clear the try tentative flag, it's job is done. */
    934  1.156       roy 	ia->ia4_flags &= ~IN_IFF_TRYTENTATIVE;
    935    1.1       cgd 	splx(s);
    936  1.156       roy 
    937    1.1       cgd 	if (scrub) {
    938   1.21   mycroft 		ia->ia_ifa.ifa_addr = sintosa(&oldaddr);
    939    1.1       cgd 		in_ifscrub(ifp, ia);
    940   1.21   mycroft 		ia->ia_ifa.ifa_addr = sintosa(&ia->ia_addr);
    941    1.1       cgd 	}
    942   1.35   thorpej 
    943  1.150       roy 	/* Add the local route to the address */
    944  1.150       roy 	in_ifaddlocal(&ia->ia_ifa);
    945  1.150       roy 
    946   1.97   mycroft 	i = ia->ia_addr.sin_addr.s_addr;
    947    1.1       cgd 	if (IN_CLASSA(i))
    948    1.1       cgd 		ia->ia_netmask = IN_CLASSA_NET;
    949    1.1       cgd 	else if (IN_CLASSB(i))
    950    1.1       cgd 		ia->ia_netmask = IN_CLASSB_NET;
    951    1.1       cgd 	else
    952    1.1       cgd 		ia->ia_netmask = IN_CLASSC_NET;
    953    1.1       cgd 	/*
    954   1.12   mycroft 	 * The subnet mask usually includes at least the standard network part,
    955   1.12   mycroft 	 * but may may be smaller in the case of supernetting.
    956   1.12   mycroft 	 * If it is set, we believe it.
    957    1.1       cgd 	 */
    958   1.12   mycroft 	if (ia->ia_subnetmask == 0) {
    959   1.12   mycroft 		ia->ia_subnetmask = ia->ia_netmask;
    960   1.20   mycroft 		ia->ia_sockmask.sin_addr.s_addr = ia->ia_subnetmask;
    961   1.12   mycroft 	} else
    962   1.12   mycroft 		ia->ia_netmask &= ia->ia_subnetmask;
    963   1.35   thorpej 
    964   1.12   mycroft 	ia->ia_net = i & ia->ia_netmask;
    965    1.1       cgd 	ia->ia_subnet = i & ia->ia_subnetmask;
    966   1.12   mycroft 	in_socktrim(&ia->ia_sockmask);
    967   1.35   thorpej 	/* re-calculate the "in_maxmtu" value */
    968   1.35   thorpej 	in_setmaxmtu();
    969    1.1       cgd 	/*
    970    1.1       cgd 	 * Add route for the network.
    971    1.1       cgd 	 */
    972   1.12   mycroft 	ia->ia_ifa.ifa_metric = ifp->if_metric;
    973    1.1       cgd 	if (ifp->if_flags & IFF_BROADCAST) {
    974   1.12   mycroft 		ia->ia_broadaddr.sin_addr.s_addr =
    975   1.20   mycroft 			ia->ia_subnet | ~ia->ia_subnetmask;
    976    1.1       cgd 		ia->ia_netbroadcast.s_addr =
    977   1.20   mycroft 			ia->ia_net | ~ia->ia_netmask;
    978    1.1       cgd 	} else if (ifp->if_flags & IFF_LOOPBACK) {
    979   1.83      onoe 		ia->ia_dstaddr = ia->ia_addr;
    980    1.1       cgd 		flags |= RTF_HOST;
    981    1.1       cgd 	} else if (ifp->if_flags & IFF_POINTOPOINT) {
    982    1.1       cgd 		if (ia->ia_dstaddr.sin_family != AF_INET)
    983    1.1       cgd 			return (0);
    984    1.1       cgd 		flags |= RTF_HOST;
    985    1.1       cgd 	}
    986   1.67    itojun 	error = in_addprefix(ia, flags);
    987    1.5   hpeyerl 	/*
    988    1.5   hpeyerl 	 * If the interface supports multicast, join the "all hosts"
    989    1.5   hpeyerl 	 * multicast group on that interface.
    990    1.5   hpeyerl 	 */
    991   1.65     enami 	if ((ifp->if_flags & IFF_MULTICAST) != 0 && ia->ia_allhosts == NULL) {
    992    1.5   hpeyerl 		struct in_addr addr;
    993    1.5   hpeyerl 
    994   1.20   mycroft 		addr.s_addr = INADDR_ALLHOSTS_GROUP;
    995   1.65     enami 		ia->ia_allhosts = in_addmulti(&addr, ifp);
    996    1.5   hpeyerl 	}
    997  1.152       roy 
    998  1.152       roy 	if (hostIsNew && if_do_dad(ifp) &&
    999  1.152       roy 	    !in_nullhost(ia->ia_addr.sin_addr) &&
   1000  1.152       roy 	    ia->ia4_flags & IN_IFF_TENTATIVE)
   1001  1.156       roy 		ia->ia_dad_start((struct ifaddr *)ia);
   1002  1.152       roy 
   1003    1.1       cgd 	return (error);
   1004   1.32   mycroft bad:
   1005   1.32   mycroft 	splx(s);
   1006   1.38       tls 	LIST_REMOVE(ia, ia_hash);
   1007   1.32   mycroft 	ia->ia_addr = oldaddr;
   1008   1.38       tls 	if (ia->ia_addr.sin_family == AF_INET)
   1009   1.38       tls 		LIST_INSERT_HEAD(&IN_IFADDR_HASH(ia->ia_addr.sin_addr.s_addr),
   1010   1.38       tls 		    ia, ia_hash);
   1011   1.32   mycroft 	return (error);
   1012    1.1       cgd }
   1013   1.67    itojun 
   1014   1.67    itojun #define rtinitflags(x) \
   1015   1.68    itojun 	((((x)->ia_ifp->if_flags & (IFF_LOOPBACK | IFF_POINTOPOINT)) != 0) \
   1016   1.68    itojun 	    ? RTF_HOST : 0)
   1017   1.67    itojun 
   1018   1.67    itojun /*
   1019   1.67    itojun  * add a route to prefix ("connected route" in cisco terminology).
   1020   1.67    itojun  * does nothing if there's some interface address with the same prefix already.
   1021   1.67    itojun  */
   1022   1.67    itojun static int
   1023  1.103     perry in_addprefix(struct in_ifaddr *target, int flags)
   1024   1.67    itojun {
   1025   1.67    itojun 	struct in_ifaddr *ia;
   1026   1.67    itojun 	struct in_addr prefix, mask, p;
   1027   1.67    itojun 	int error;
   1028   1.67    itojun 
   1029   1.67    itojun 	if ((flags & RTF_HOST) != 0)
   1030   1.67    itojun 		prefix = target->ia_dstaddr.sin_addr;
   1031   1.85    itojun 	else {
   1032   1.67    itojun 		prefix = target->ia_addr.sin_addr;
   1033   1.85    itojun 		mask = target->ia_sockmask.sin_addr;
   1034   1.85    itojun 		prefix.s_addr &= mask.s_addr;
   1035   1.85    itojun 	}
   1036   1.67    itojun 
   1037   1.93  jonathan 	TAILQ_FOREACH(ia, &in_ifaddrhead, ia_list) {
   1038   1.67    itojun 		if (rtinitflags(ia))
   1039   1.67    itojun 			p = ia->ia_dstaddr.sin_addr;
   1040   1.85    itojun 		else {
   1041   1.67    itojun 			p = ia->ia_addr.sin_addr;
   1042   1.85    itojun 			p.s_addr &= ia->ia_sockmask.sin_addr.s_addr;
   1043   1.85    itojun 		}
   1044   1.85    itojun 
   1045   1.67    itojun 		if (prefix.s_addr != p.s_addr)
   1046   1.67    itojun 			continue;
   1047   1.67    itojun 
   1048   1.67    itojun 		/*
   1049   1.67    itojun 		 * if we got a matching prefix route inserted by other
   1050   1.69    martin 		 * interface address, we don't need to bother
   1051  1.114    dyoung 		 *
   1052  1.114    dyoung 		 * XXX RADIX_MPATH implications here? -dyoung
   1053   1.67    itojun 		 */
   1054  1.150       roy 		if (ia->ia_flags & IFA_ROUTE)
   1055   1.67    itojun 			return 0;
   1056   1.67    itojun 	}
   1057   1.67    itojun 
   1058   1.67    itojun 	/*
   1059   1.67    itojun 	 * noone seem to have prefix route.  insert it.
   1060   1.67    itojun 	 */
   1061  1.119    dyoung 	error = rtinit(&target->ia_ifa, RTM_ADD, flags);
   1062  1.119    dyoung 	if (error == 0)
   1063   1.67    itojun 		target->ia_flags |= IFA_ROUTE;
   1064  1.130       roy 	else if (error == EEXIST) {
   1065  1.150       roy 		/*
   1066  1.130       roy 		 * the fact the route already exists is not an error.
   1067  1.150       roy 		 */
   1068  1.130       roy 		error = 0;
   1069  1.130       roy 	}
   1070   1.67    itojun 	return error;
   1071   1.67    itojun }
   1072   1.67    itojun 
   1073   1.67    itojun /*
   1074   1.67    itojun  * remove a route to prefix ("connected route" in cisco terminology).
   1075   1.67    itojun  * re-installs the route by using another interface address, if there's one
   1076   1.67    itojun  * with the same prefix (otherwise we lose the route mistakenly).
   1077   1.67    itojun  */
   1078   1.67    itojun static int
   1079  1.103     perry in_scrubprefix(struct in_ifaddr *target)
   1080   1.67    itojun {
   1081   1.67    itojun 	struct in_ifaddr *ia;
   1082   1.67    itojun 	struct in_addr prefix, mask, p;
   1083   1.67    itojun 	int error;
   1084   1.67    itojun 
   1085  1.142       roy 	/* If we don't have IFA_ROUTE we should still inform userland */
   1086  1.150       roy 	if ((target->ia_flags & IFA_ROUTE) == 0)
   1087   1.67    itojun 		return 0;
   1088   1.67    itojun 
   1089   1.67    itojun 	if (rtinitflags(target))
   1090   1.67    itojun 		prefix = target->ia_dstaddr.sin_addr;
   1091   1.85    itojun 	else {
   1092   1.67    itojun 		prefix = target->ia_addr.sin_addr;
   1093   1.85    itojun 		mask = target->ia_sockmask.sin_addr;
   1094   1.85    itojun 		prefix.s_addr &= mask.s_addr;
   1095   1.85    itojun 	}
   1096   1.67    itojun 
   1097   1.93  jonathan 	TAILQ_FOREACH(ia, &in_ifaddrhead, ia_list) {
   1098   1.67    itojun 		if (rtinitflags(ia))
   1099   1.67    itojun 			p = ia->ia_dstaddr.sin_addr;
   1100   1.85    itojun 		else {
   1101   1.67    itojun 			p = ia->ia_addr.sin_addr;
   1102   1.85    itojun 			p.s_addr &= ia->ia_sockmask.sin_addr.s_addr;
   1103   1.85    itojun 		}
   1104   1.85    itojun 
   1105   1.67    itojun 		if (prefix.s_addr != p.s_addr)
   1106   1.67    itojun 			continue;
   1107   1.67    itojun 
   1108   1.67    itojun 		/*
   1109   1.67    itojun 		 * if we got a matching prefix route, move IFA_ROUTE to him
   1110   1.67    itojun 		 */
   1111   1.67    itojun 		if ((ia->ia_flags & IFA_ROUTE) == 0) {
   1112  1.119    dyoung 			rtinit(&target->ia_ifa, RTM_DELETE,
   1113   1.67    itojun 			    rtinitflags(target));
   1114   1.67    itojun 			target->ia_flags &= ~IFA_ROUTE;
   1115   1.67    itojun 
   1116  1.119    dyoung 			error = rtinit(&ia->ia_ifa, RTM_ADD,
   1117   1.67    itojun 			    rtinitflags(ia) | RTF_UP);
   1118   1.67    itojun 			if (error == 0)
   1119   1.67    itojun 				ia->ia_flags |= IFA_ROUTE;
   1120   1.67    itojun 			return error;
   1121   1.67    itojun 		}
   1122   1.67    itojun 	}
   1123   1.67    itojun 
   1124   1.67    itojun 	/*
   1125   1.67    itojun 	 * noone seem to have prefix route.  remove it.
   1126   1.67    itojun 	 */
   1127  1.119    dyoung 	rtinit(&target->ia_ifa, RTM_DELETE, rtinitflags(target));
   1128   1.67    itojun 	target->ia_flags &= ~IFA_ROUTE;
   1129   1.67    itojun 	return 0;
   1130   1.67    itojun }
   1131   1.67    itojun 
   1132   1.67    itojun #undef rtinitflags
   1133    1.1       cgd 
   1134    1.1       cgd /*
   1135    1.1       cgd  * Return 1 if the address might be a local broadcast address.
   1136    1.1       cgd  */
   1137    1.8   mycroft int
   1138  1.103     perry in_broadcast(struct in_addr in, struct ifnet *ifp)
   1139    1.1       cgd {
   1140   1.59  augustss 	struct ifaddr *ifa;
   1141    1.1       cgd 
   1142   1.12   mycroft 	if (in.s_addr == INADDR_BROADCAST ||
   1143   1.32   mycroft 	    in_nullhost(in))
   1144   1.12   mycroft 		return 1;
   1145   1.12   mycroft 	if ((ifp->if_flags & IFF_BROADCAST) == 0)
   1146   1.12   mycroft 		return 0;
   1147    1.1       cgd 	/*
   1148    1.1       cgd 	 * Look through the list of addresses for a match
   1149    1.1       cgd 	 * with a broadcast address.
   1150    1.1       cgd 	 */
   1151   1.22   mycroft #define ia (ifatoia(ifa))
   1152  1.101      matt 	IFADDR_FOREACH(ifa, ifp)
   1153   1.12   mycroft 		if (ifa->ifa_addr->sa_family == AF_INET &&
   1154   1.75    itojun 		    !in_hosteq(in, ia->ia_addr.sin_addr) &&
   1155   1.32   mycroft 		    (in_hosteq(in, ia->ia_broadaddr.sin_addr) ||
   1156   1.32   mycroft 		     in_hosteq(in, ia->ia_netbroadcast) ||
   1157   1.77    itojun 		     (hostzeroisbroadcast &&
   1158   1.47  sommerfe 		      /*
   1159   1.47  sommerfe 		       * Check for old-style (host 0) broadcast.
   1160   1.47  sommerfe 		       */
   1161   1.47  sommerfe 		      (in.s_addr == ia->ia_subnet ||
   1162   1.47  sommerfe 		       in.s_addr == ia->ia_net))))
   1163   1.47  sommerfe 			return 1;
   1164    1.1       cgd 	return (0);
   1165   1.12   mycroft #undef ia
   1166   1.64    itojun }
   1167   1.64    itojun 
   1168   1.64    itojun /*
   1169  1.152       roy  * perform DAD when interface becomes IFF_UP.
   1170  1.152       roy  */
   1171  1.152       roy void
   1172  1.152       roy in_if_link_up(struct ifnet *ifp)
   1173  1.152       roy {
   1174  1.152       roy 	struct ifaddr *ifa;
   1175  1.152       roy 	struct in_ifaddr *ia;
   1176  1.152       roy 
   1177  1.152       roy 	/* Ensure it's sane to run DAD */
   1178  1.152       roy 	if (ifp->if_link_state == LINK_STATE_DOWN)
   1179  1.152       roy 		return;
   1180  1.152       roy 	if ((ifp->if_flags & (IFF_UP|IFF_RUNNING)) != (IFF_UP|IFF_RUNNING))
   1181  1.152       roy 		return;
   1182  1.152       roy 
   1183  1.152       roy 	IFADDR_FOREACH(ifa, ifp) {
   1184  1.152       roy 		if (ifa->ifa_addr->sa_family != AF_INET)
   1185  1.152       roy 			continue;
   1186  1.152       roy 		ia = (struct in_ifaddr *)ifa;
   1187  1.152       roy 
   1188  1.152       roy 		/* If detached then mark as tentative */
   1189  1.152       roy 		if (ia->ia4_flags & IN_IFF_DETACHED) {
   1190  1.152       roy 			ia->ia4_flags &= ~IN_IFF_DETACHED;
   1191  1.156       roy 			if (if_do_dad(ifp) && ia->ia_dad_start != NULL)
   1192  1.152       roy 				ia->ia4_flags |= IN_IFF_TENTATIVE;
   1193  1.156       roy 			else if ((ia->ia4_flags & IN_IFF_TENTATIVE) == 0)
   1194  1.152       roy 				rt_newaddrmsg(RTM_NEWADDR, ifa, 0, NULL);
   1195  1.152       roy 		}
   1196  1.152       roy 
   1197  1.152       roy 		if (ia->ia4_flags & IN_IFF_TENTATIVE) {
   1198  1.152       roy 			/* Clear the duplicated flag as we're starting DAD. */
   1199  1.152       roy 			ia->ia4_flags &= ~IN_IFF_DUPLICATED;
   1200  1.156       roy 			ia->ia_dad_start(ifa);
   1201  1.152       roy 		}
   1202  1.152       roy 	}
   1203  1.152       roy }
   1204  1.152       roy 
   1205  1.152       roy void
   1206  1.152       roy in_if_up(struct ifnet *ifp)
   1207  1.152       roy {
   1208  1.152       roy 
   1209  1.152       roy 	/* interface may not support link state, so bring it up also */
   1210  1.152       roy 	in_if_link_up(ifp);
   1211  1.152       roy }
   1212  1.152       roy 
   1213  1.152       roy /*
   1214  1.152       roy  * Mark all addresses as detached.
   1215  1.152       roy  */
   1216  1.152       roy void
   1217  1.152       roy in_if_link_down(struct ifnet *ifp)
   1218  1.152       roy {
   1219  1.152       roy 	struct ifaddr *ifa;
   1220  1.152       roy 	struct in_ifaddr *ia;
   1221  1.152       roy 
   1222  1.152       roy 	IFADDR_FOREACH(ifa, ifp) {
   1223  1.152       roy 		if (ifa->ifa_addr->sa_family != AF_INET)
   1224  1.152       roy 			continue;
   1225  1.152       roy 		ia = (struct in_ifaddr *)ifa;
   1226  1.152       roy 
   1227  1.152       roy 		/* Stop DAD processing */
   1228  1.156       roy 		if (ia->ia_dad_stop != NULL)
   1229  1.156       roy 			ia->ia_dad_stop(ifa);
   1230  1.152       roy 
   1231  1.152       roy 		/*
   1232  1.152       roy 		 * Mark the address as detached.
   1233  1.152       roy 		 */
   1234  1.152       roy 		if (!(ia->ia4_flags & IN_IFF_DETACHED)) {
   1235  1.152       roy 			ia->ia4_flags |= IN_IFF_DETACHED;
   1236  1.152       roy 			ia->ia4_flags &=
   1237  1.152       roy 			    ~(IN_IFF_TENTATIVE | IN_IFF_DUPLICATED);
   1238  1.152       roy 			rt_newaddrmsg(RTM_NEWADDR, ifa, 0, NULL);
   1239  1.152       roy 		}
   1240  1.152       roy 	}
   1241  1.152       roy }
   1242  1.152       roy 
   1243  1.152       roy void
   1244  1.152       roy in_if_down(struct ifnet *ifp)
   1245  1.152       roy {
   1246  1.152       roy 
   1247  1.152       roy 	in_if_link_down(ifp);
   1248  1.152       roy }
   1249  1.152       roy 
   1250  1.152       roy void
   1251  1.152       roy in_if_link_state_change(struct ifnet *ifp, int link_state)
   1252  1.152       roy {
   1253  1.152       roy 
   1254  1.152       roy 	switch (link_state) {
   1255  1.152       roy 	case LINK_STATE_DOWN:
   1256  1.152       roy 		in_if_link_down(ifp);
   1257  1.152       roy 		break;
   1258  1.152       roy 	case LINK_STATE_UP:
   1259  1.152       roy 		in_if_link_up(ifp);
   1260  1.152       roy 		break;
   1261  1.152       roy 	}
   1262  1.152       roy }
   1263  1.152       roy 
   1264  1.152       roy /*
   1265  1.146     rmind  * in_lookup_multi: look up the in_multi record for a given IP
   1266  1.146     rmind  * multicast address on a given interface.  If no matching record is
   1267  1.146     rmind  * found, return NULL.
   1268  1.146     rmind  */
   1269  1.146     rmind struct in_multi *
   1270  1.146     rmind in_lookup_multi(struct in_addr addr, ifnet_t *ifp)
   1271  1.146     rmind {
   1272  1.146     rmind 	struct in_multi *inm;
   1273  1.146     rmind 
   1274  1.146     rmind 	KASSERT(rw_lock_held(&in_multilock));
   1275  1.146     rmind 
   1276  1.146     rmind 	LIST_FOREACH(inm, &IN_MULTI_HASH(addr.s_addr, ifp), inm_list) {
   1277  1.146     rmind 		if (in_hosteq(inm->inm_addr, addr) && inm->inm_ifp == ifp)
   1278  1.146     rmind 			break;
   1279  1.146     rmind 	}
   1280  1.146     rmind 	return inm;
   1281  1.146     rmind }
   1282  1.146     rmind 
   1283  1.146     rmind /*
   1284  1.146     rmind  * in_multi_group: check whether the address belongs to an IP multicast
   1285  1.146     rmind  * group we are joined on this interface.  Returns true or false.
   1286  1.146     rmind  */
   1287  1.146     rmind bool
   1288  1.146     rmind in_multi_group(struct in_addr addr, ifnet_t *ifp, int flags)
   1289  1.146     rmind {
   1290  1.146     rmind 	bool ingroup;
   1291  1.146     rmind 
   1292  1.146     rmind 	if (__predict_true(flags & IP_IGMP_MCAST) == 0) {
   1293  1.146     rmind 		rw_enter(&in_multilock, RW_READER);
   1294  1.146     rmind 		ingroup = in_lookup_multi(addr, ifp) != NULL;
   1295  1.146     rmind 		rw_exit(&in_multilock);
   1296  1.146     rmind 	} else {
   1297  1.146     rmind 		/* XXX Recursive call from ip_output(). */
   1298  1.146     rmind 		KASSERT(rw_lock_held(&in_multilock));
   1299  1.146     rmind 		ingroup = in_lookup_multi(addr, ifp) != NULL;
   1300  1.146     rmind 	}
   1301  1.146     rmind 	return ingroup;
   1302  1.146     rmind }
   1303  1.146     rmind 
   1304  1.146     rmind /*
   1305    1.5   hpeyerl  * Add an address to the list of IP multicast addresses for a given interface.
   1306    1.5   hpeyerl  */
   1307    1.5   hpeyerl struct in_multi *
   1308  1.146     rmind in_addmulti(struct in_addr *ap, ifnet_t *ifp)
   1309    1.5   hpeyerl {
   1310  1.118    dyoung 	struct sockaddr_in sin;
   1311   1.59  augustss 	struct in_multi *inm;
   1312    1.5   hpeyerl 
   1313    1.5   hpeyerl 	/*
   1314    1.5   hpeyerl 	 * See if address already in list.
   1315    1.5   hpeyerl 	 */
   1316  1.146     rmind 	rw_enter(&in_multilock, RW_WRITER);
   1317  1.146     rmind 	inm = in_lookup_multi(*ap, ifp);
   1318    1.5   hpeyerl 	if (inm != NULL) {
   1319    1.5   hpeyerl 		/*
   1320    1.5   hpeyerl 		 * Found it; just increment the reference count.
   1321    1.5   hpeyerl 		 */
   1322  1.146     rmind 		inm->inm_refcount++;
   1323  1.146     rmind 		rw_exit(&in_multilock);
   1324  1.146     rmind 		return inm;
   1325  1.146     rmind 	}
   1326  1.146     rmind 
   1327  1.146     rmind 	/*
   1328  1.146     rmind 	 * New address; allocate a new multicast record.
   1329  1.146     rmind 	 */
   1330  1.146     rmind 	inm = pool_get(&inmulti_pool, PR_NOWAIT);
   1331  1.146     rmind 	if (inm == NULL) {
   1332  1.146     rmind 		rw_exit(&in_multilock);
   1333  1.146     rmind 		return NULL;
   1334  1.146     rmind 	}
   1335  1.146     rmind 	inm->inm_addr = *ap;
   1336  1.146     rmind 	inm->inm_ifp = ifp;
   1337  1.146     rmind 	inm->inm_refcount = 1;
   1338  1.146     rmind 
   1339  1.146     rmind 	/*
   1340  1.146     rmind 	 * Ask the network driver to update its multicast reception
   1341  1.146     rmind 	 * filter appropriately for the new address.
   1342  1.146     rmind 	 */
   1343  1.146     rmind 	sockaddr_in_init(&sin, ap, 0);
   1344  1.146     rmind 	if (if_mcast_op(ifp, SIOCADDMULTI, sintosa(&sin)) != 0) {
   1345  1.146     rmind 		rw_exit(&in_multilock);
   1346  1.146     rmind 		pool_put(&inmulti_pool, inm);
   1347  1.146     rmind 		return NULL;
   1348  1.146     rmind 	}
   1349  1.146     rmind 
   1350  1.146     rmind 	/*
   1351  1.146     rmind 	 * Let IGMP know that we have joined a new IP multicast group.
   1352  1.146     rmind 	 */
   1353  1.146     rmind 	if (igmp_joingroup(inm) != 0) {
   1354  1.146     rmind 		rw_exit(&in_multilock);
   1355  1.146     rmind 		pool_put(&inmulti_pool, inm);
   1356  1.146     rmind 		return NULL;
   1357    1.5   hpeyerl 	}
   1358  1.146     rmind 	LIST_INSERT_HEAD(
   1359  1.146     rmind 	    &IN_MULTI_HASH(inm->inm_addr.s_addr, ifp),
   1360  1.146     rmind 	    inm, inm_list);
   1361  1.146     rmind 	in_multientries++;
   1362  1.146     rmind 	rw_exit(&in_multilock);
   1363  1.146     rmind 
   1364  1.146     rmind 	return inm;
   1365    1.5   hpeyerl }
   1366    1.5   hpeyerl 
   1367    1.5   hpeyerl /*
   1368    1.5   hpeyerl  * Delete a multicast address record.
   1369    1.5   hpeyerl  */
   1370   1.26  christos void
   1371  1.103     perry in_delmulti(struct in_multi *inm)
   1372    1.5   hpeyerl {
   1373  1.118    dyoung 	struct sockaddr_in sin;
   1374    1.5   hpeyerl 
   1375  1.146     rmind 	rw_enter(&in_multilock, RW_WRITER);
   1376  1.146     rmind 	if (--inm->inm_refcount > 0) {
   1377  1.146     rmind 		rw_exit(&in_multilock);
   1378  1.146     rmind 		return;
   1379  1.146     rmind 	}
   1380  1.146     rmind 
   1381  1.146     rmind 	/*
   1382  1.146     rmind 	 * No remaining claims to this record; let IGMP know that
   1383  1.146     rmind 	 * we are leaving the multicast group.
   1384  1.146     rmind 	 */
   1385  1.146     rmind 	igmp_leavegroup(inm);
   1386  1.146     rmind 
   1387  1.146     rmind 	/*
   1388  1.146     rmind 	 * Notify the network driver to update its multicast reception
   1389  1.146     rmind 	 * filter.
   1390  1.146     rmind 	 */
   1391  1.146     rmind 	sockaddr_in_init(&sin, &inm->inm_addr, 0);
   1392  1.146     rmind 	if_mcast_op(inm->inm_ifp, SIOCDELMULTI, sintosa(&sin));
   1393  1.146     rmind 
   1394  1.146     rmind 	/*
   1395  1.146     rmind 	 * Unlink from list.
   1396  1.146     rmind 	 */
   1397  1.146     rmind 	LIST_REMOVE(inm, inm_list);
   1398  1.146     rmind 	in_multientries--;
   1399  1.146     rmind 	rw_exit(&in_multilock);
   1400  1.146     rmind 
   1401  1.146     rmind 	pool_put(&inmulti_pool, inm);
   1402  1.146     rmind }
   1403  1.146     rmind 
   1404  1.146     rmind /*
   1405  1.146     rmind  * in_next_multi: step through all of the in_multi records, one at a time.
   1406  1.146     rmind  * The current position is remembered in "step", which the caller must
   1407  1.146     rmind  * provide.  in_first_multi(), below, must be called to initialize "step"
   1408  1.146     rmind  * and get the first record.  Both macros return a NULL "inm" when there
   1409  1.146     rmind  * are no remaining records.
   1410  1.146     rmind  */
   1411  1.146     rmind struct in_multi *
   1412  1.146     rmind in_next_multi(struct in_multistep *step)
   1413  1.146     rmind {
   1414  1.146     rmind 	struct in_multi *inm;
   1415  1.146     rmind 
   1416  1.146     rmind 	KASSERT(rw_lock_held(&in_multilock));
   1417  1.146     rmind 
   1418  1.146     rmind 	while (step->i_inm == NULL && step->i_n < IN_MULTI_HASH_SIZE) {
   1419  1.146     rmind 		step->i_inm = LIST_FIRST(&in_multihashtbl[++step->i_n]);
   1420  1.146     rmind 	}
   1421  1.146     rmind 	if ((inm = step->i_inm) != NULL) {
   1422  1.146     rmind 		step->i_inm = LIST_NEXT(inm, inm_list);
   1423    1.5   hpeyerl 	}
   1424  1.146     rmind 	return inm;
   1425  1.146     rmind }
   1426  1.146     rmind 
   1427  1.146     rmind struct in_multi *
   1428  1.146     rmind in_first_multi(struct in_multistep *step)
   1429  1.146     rmind {
   1430  1.146     rmind 	KASSERT(rw_lock_held(&in_multilock));
   1431  1.146     rmind 
   1432  1.146     rmind 	step->i_n = 0;
   1433  1.146     rmind 	step->i_inm = LIST_FIRST(&in_multihashtbl[0]);
   1434  1.146     rmind 	return in_next_multi(step);
   1435  1.146     rmind }
   1436  1.146     rmind 
   1437  1.146     rmind void
   1438  1.146     rmind in_multi_lock(int op)
   1439  1.146     rmind {
   1440  1.146     rmind 	rw_enter(&in_multilock, op);
   1441  1.146     rmind }
   1442  1.146     rmind 
   1443  1.146     rmind void
   1444  1.146     rmind in_multi_unlock(void)
   1445  1.146     rmind {
   1446  1.146     rmind 	rw_exit(&in_multilock);
   1447  1.146     rmind }
   1448  1.146     rmind 
   1449  1.146     rmind int
   1450  1.146     rmind in_multi_lock_held(void)
   1451  1.146     rmind {
   1452  1.146     rmind 	return rw_lock_held(&in_multilock);
   1453    1.5   hpeyerl }
   1454  1.145     rmind 
   1455  1.145     rmind struct sockaddr_in *
   1456  1.145     rmind in_selectsrc(struct sockaddr_in *sin, struct route *ro,
   1457  1.145     rmind     int soopts, struct ip_moptions *mopts, int *errorp)
   1458  1.145     rmind {
   1459  1.145     rmind 	struct rtentry *rt = NULL;
   1460  1.145     rmind 	struct in_ifaddr *ia = NULL;
   1461  1.145     rmind 
   1462  1.145     rmind 	/*
   1463  1.145     rmind          * If route is known or can be allocated now, take the
   1464  1.145     rmind          * source address from the interface.  Otherwise, punt.
   1465  1.145     rmind 	 */
   1466  1.145     rmind 	if ((soopts & SO_DONTROUTE) != 0)
   1467  1.145     rmind 		rtcache_free(ro);
   1468  1.145     rmind 	else {
   1469  1.145     rmind 		union {
   1470  1.145     rmind 			struct sockaddr		dst;
   1471  1.145     rmind 			struct sockaddr_in	dst4;
   1472  1.145     rmind 		} u;
   1473  1.145     rmind 
   1474  1.145     rmind 		sockaddr_in_init(&u.dst4, &sin->sin_addr, 0);
   1475  1.145     rmind 		rt = rtcache_lookup(ro, &u.dst);
   1476  1.145     rmind 	}
   1477  1.145     rmind 	/*
   1478  1.145     rmind 	 * If we found a route, use the address
   1479  1.145     rmind 	 * corresponding to the outgoing interface
   1480  1.145     rmind 	 * unless it is the loopback (in case a route
   1481  1.145     rmind 	 * to our address on another net goes to loopback).
   1482  1.145     rmind 	 *
   1483  1.145     rmind 	 * XXX Is this still true?  Do we care?
   1484  1.145     rmind 	 */
   1485  1.145     rmind 	if (rt != NULL && (rt->rt_ifp->if_flags & IFF_LOOPBACK) == 0)
   1486  1.145     rmind 		ia = ifatoia(rt->rt_ifa);
   1487  1.145     rmind 	if (ia == NULL) {
   1488  1.145     rmind 		u_int16_t fport = sin->sin_port;
   1489  1.145     rmind 
   1490  1.145     rmind 		sin->sin_port = 0;
   1491  1.145     rmind 		ia = ifatoia(ifa_ifwithladdr(sintosa(sin)));
   1492  1.145     rmind 		sin->sin_port = fport;
   1493  1.145     rmind 		if (ia == NULL) {
   1494  1.145     rmind 			/* Find 1st non-loopback AF_INET address */
   1495  1.145     rmind 			TAILQ_FOREACH(ia, &in_ifaddrhead, ia_list) {
   1496  1.145     rmind 				if (!(ia->ia_ifp->if_flags & IFF_LOOPBACK))
   1497  1.145     rmind 					break;
   1498  1.145     rmind 			}
   1499  1.145     rmind 		}
   1500  1.145     rmind 		if (ia == NULL) {
   1501  1.145     rmind 			*errorp = EADDRNOTAVAIL;
   1502  1.145     rmind 			return NULL;
   1503  1.145     rmind 		}
   1504  1.145     rmind 	}
   1505  1.145     rmind 	/*
   1506  1.145     rmind 	 * If the destination address is multicast and an outgoing
   1507  1.145     rmind 	 * interface has been set as a multicast option, use the
   1508  1.145     rmind 	 * address of that interface as our source address.
   1509  1.145     rmind 	 */
   1510  1.145     rmind 	if (IN_MULTICAST(sin->sin_addr.s_addr) && mopts != NULL) {
   1511  1.145     rmind 		struct ip_moptions *imo;
   1512  1.145     rmind 		struct ifnet *ifp;
   1513  1.145     rmind 
   1514  1.145     rmind 		imo = mopts;
   1515  1.145     rmind 		if (imo->imo_multicast_ifp != NULL) {
   1516  1.145     rmind 			ifp = imo->imo_multicast_ifp;
   1517  1.145     rmind 			IFP_TO_IA(ifp, ia);		/* XXX */
   1518  1.152       roy 			if (ia == 0 || ia->ia4_flags & IN_IFF_NOTREADY) {
   1519  1.145     rmind 				*errorp = EADDRNOTAVAIL;
   1520  1.145     rmind 				return NULL;
   1521  1.145     rmind 			}
   1522  1.145     rmind 		}
   1523  1.145     rmind 	}
   1524  1.145     rmind 	if (ia->ia_ifa.ifa_getifa != NULL) {
   1525  1.145     rmind 		ia = ifatoia((*ia->ia_ifa.ifa_getifa)(&ia->ia_ifa,
   1526  1.145     rmind 		                                      sintosa(sin)));
   1527  1.152       roy 		if (ia == NULL) {
   1528  1.152       roy 			*errorp = EADDRNOTAVAIL;
   1529  1.152       roy 			return NULL;
   1530  1.152       roy 		}
   1531  1.145     rmind 	}
   1532  1.145     rmind #ifdef GETIFA_DEBUG
   1533  1.145     rmind 	else
   1534  1.145     rmind 		printf("%s: missing ifa_getifa\n", __func__);
   1535  1.145     rmind #endif
   1536  1.145     rmind 	return satosin(&ia->ia_addr);
   1537  1.145     rmind }
   1538  1.145     rmind 
   1539  1.161     ozaki #if NETHER > 0
   1540  1.161     ozaki 
   1541  1.158     ozaki struct in_llentry {
   1542  1.158     ozaki 	struct llentry		base;
   1543  1.158     ozaki };
   1544  1.158     ozaki 
   1545  1.158     ozaki #define	IN_LLTBL_DEFAULT_HSIZE	32
   1546  1.158     ozaki #define	IN_LLTBL_HASH(k, h) \
   1547  1.158     ozaki 	(((((((k >> 8) ^ k) >> 8) ^ k) >> 8) ^ k) & ((h) - 1))
   1548  1.158     ozaki 
   1549  1.158     ozaki /*
   1550  1.158     ozaki  * Do actual deallocation of @lle.
   1551  1.158     ozaki  * Called by LLE_FREE_LOCKED when number of references
   1552  1.158     ozaki  * drops to zero.
   1553  1.158     ozaki  */
   1554  1.158     ozaki static void
   1555  1.158     ozaki in_lltable_destroy_lle(struct llentry *lle)
   1556  1.158     ozaki {
   1557  1.158     ozaki 
   1558  1.158     ozaki 	LLE_WUNLOCK(lle);
   1559  1.158     ozaki 	LLE_LOCK_DESTROY(lle);
   1560  1.158     ozaki 	kmem_intr_free(lle, sizeof(*lle));
   1561  1.158     ozaki }
   1562  1.158     ozaki 
   1563  1.158     ozaki static struct llentry *
   1564  1.158     ozaki in_lltable_new(struct in_addr addr4, u_int flags)
   1565  1.158     ozaki {
   1566  1.158     ozaki 	struct in_llentry *lle;
   1567  1.158     ozaki 
   1568  1.158     ozaki 	lle = kmem_intr_zalloc(sizeof(*lle), KM_NOSLEEP);
   1569  1.158     ozaki 	if (lle == NULL)		/* NB: caller generates msg */
   1570  1.158     ozaki 		return NULL;
   1571  1.158     ozaki 
   1572  1.158     ozaki 	/*
   1573  1.158     ozaki 	 * For IPv4 this will trigger "arpresolve" to generate
   1574  1.158     ozaki 	 * an ARP request.
   1575  1.158     ozaki 	 */
   1576  1.158     ozaki 	lle->base.la_expire = time_uptime; /* mark expired */
   1577  1.158     ozaki 	lle->base.r_l3addr.addr4 = addr4;
   1578  1.158     ozaki 	lle->base.lle_refcnt = 1;
   1579  1.158     ozaki 	lle->base.lle_free = in_lltable_destroy_lle;
   1580  1.158     ozaki 	LLE_LOCK_INIT(&lle->base);
   1581  1.159     ozaki 	callout_init(&lle->base.la_timer, CALLOUT_MPSAFE);
   1582  1.158     ozaki 
   1583  1.158     ozaki 	return (&lle->base);
   1584  1.158     ozaki }
   1585  1.158     ozaki 
   1586  1.158     ozaki #define IN_ARE_MASKED_ADDR_EQUAL(d, a, m)	(			\
   1587  1.158     ozaki 	    (((ntohl((d).s_addr) ^ (a)->sin_addr.s_addr) & (m)->sin_addr.s_addr)) == 0 )
   1588  1.158     ozaki 
   1589  1.158     ozaki static int
   1590  1.158     ozaki in_lltable_match_prefix(const struct sockaddr *prefix,
   1591  1.158     ozaki     const struct sockaddr *mask, u_int flags, struct llentry *lle)
   1592  1.158     ozaki {
   1593  1.158     ozaki 	const struct sockaddr_in *pfx = (const struct sockaddr_in *)prefix;
   1594  1.158     ozaki 	const struct sockaddr_in *msk = (const struct sockaddr_in *)mask;
   1595  1.158     ozaki 
   1596  1.158     ozaki 	/*
   1597  1.158     ozaki 	 * (flags & LLE_STATIC) means deleting all entries
   1598  1.158     ozaki 	 * including static ARP entries.
   1599  1.158     ozaki 	 */
   1600  1.158     ozaki 	if (IN_ARE_MASKED_ADDR_EQUAL(lle->r_l3addr.addr4, pfx, msk) &&
   1601  1.158     ozaki 	    ((flags & LLE_STATIC) || !(lle->la_flags & LLE_STATIC)))
   1602  1.158     ozaki 		return (1);
   1603  1.158     ozaki 
   1604  1.158     ozaki 	return (0);
   1605  1.158     ozaki }
   1606  1.158     ozaki 
   1607  1.158     ozaki static void
   1608  1.158     ozaki in_lltable_free_entry(struct lltable *llt, struct llentry *lle)
   1609  1.158     ozaki {
   1610  1.160     ozaki 	struct ifnet *ifp __diagused;
   1611  1.158     ozaki 	size_t pkts_dropped;
   1612  1.158     ozaki 
   1613  1.158     ozaki 	LLE_WLOCK_ASSERT(lle);
   1614  1.158     ozaki 	KASSERT(llt != NULL);
   1615  1.158     ozaki 
   1616  1.158     ozaki 	/* Unlink entry from table if not already */
   1617  1.158     ozaki 	if ((lle->la_flags & LLE_LINKED) != 0) {
   1618  1.158     ozaki 		ifp = llt->llt_ifp;
   1619  1.158     ozaki 		IF_AFDATA_WLOCK_ASSERT(ifp);
   1620  1.158     ozaki 		lltable_unlink_entry(llt, lle);
   1621  1.158     ozaki 	}
   1622  1.158     ozaki 
   1623  1.158     ozaki 	/* cancel timer */
   1624  1.158     ozaki 	if (callout_stop(&lle->lle_timer))
   1625  1.158     ozaki 		LLE_REMREF(lle);
   1626  1.158     ozaki 
   1627  1.158     ozaki 	/* Drop hold queue */
   1628  1.158     ozaki 	pkts_dropped = llentry_free(lle);
   1629  1.159     ozaki 	arp_stat_add(ARP_STAT_DFRDROPPED, (uint64_t)pkts_dropped);
   1630  1.158     ozaki }
   1631  1.158     ozaki 
   1632  1.158     ozaki static int
   1633  1.158     ozaki in_lltable_rtcheck(struct ifnet *ifp, u_int flags, const struct sockaddr *l3addr)
   1634  1.158     ozaki {
   1635  1.158     ozaki 	struct rtentry *rt;
   1636  1.158     ozaki 	int error = EINVAL;
   1637  1.158     ozaki 
   1638  1.158     ozaki 	KASSERTMSG(l3addr->sa_family == AF_INET,
   1639  1.158     ozaki 	    "sin_family %d", l3addr->sa_family);
   1640  1.158     ozaki 
   1641  1.158     ozaki 	rt = rtalloc1(l3addr, 0);
   1642  1.158     ozaki 	if (rt == NULL)
   1643  1.158     ozaki 		return error;
   1644  1.158     ozaki 
   1645  1.158     ozaki 	/*
   1646  1.158     ozaki 	 * If the gateway for an existing host route matches the target L3
   1647  1.158     ozaki 	 * address, which is a special route inserted by some implementation
   1648  1.158     ozaki 	 * such as MANET, and the interface is of the correct type, then
   1649  1.158     ozaki 	 * allow for ARP to proceed.
   1650  1.158     ozaki 	 */
   1651  1.158     ozaki 	if (rt->rt_flags & RTF_GATEWAY) {
   1652  1.158     ozaki 		if (!(rt->rt_flags & RTF_HOST) || !rt->rt_ifp ||
   1653  1.158     ozaki 		    rt->rt_ifp->if_type != IFT_ETHER ||
   1654  1.158     ozaki #ifdef __FreeBSD__
   1655  1.158     ozaki 		    (rt->rt_ifp->if_flags & (IFF_NOARP | IFF_STATICARP)) != 0 ||
   1656  1.159     ozaki #else
   1657  1.158     ozaki 		    (rt->rt_ifp->if_flags & IFF_NOARP) != 0 ||
   1658  1.158     ozaki #endif
   1659  1.158     ozaki 		    memcmp(rt->rt_gateway->sa_data, l3addr->sa_data,
   1660  1.158     ozaki 		    sizeof(in_addr_t)) != 0) {
   1661  1.158     ozaki 			goto error;
   1662  1.158     ozaki 		}
   1663  1.158     ozaki 	}
   1664  1.158     ozaki 
   1665  1.158     ozaki 	/*
   1666  1.158     ozaki 	 * Make sure that at least the destination address is covered
   1667  1.158     ozaki 	 * by the route. This is for handling the case where 2 or more
   1668  1.158     ozaki 	 * interfaces have the same prefix. An incoming packet arrives
   1669  1.158     ozaki 	 * on one interface and the corresponding outgoing packet leaves
   1670  1.158     ozaki 	 * another interface.
   1671  1.158     ozaki 	 */
   1672  1.158     ozaki 	if (!(rt->rt_flags & RTF_HOST) && rt->rt_ifp != ifp) {
   1673  1.158     ozaki 		const char *sa, *mask, *addr, *lim;
   1674  1.158     ozaki 		int len;
   1675  1.158     ozaki 
   1676  1.158     ozaki 		mask = (const char *)rt_mask(rt);
   1677  1.158     ozaki 		/*
   1678  1.158     ozaki 		 * Just being extra cautious to avoid some custom
   1679  1.158     ozaki 		 * code getting into trouble.
   1680  1.158     ozaki 		 */
   1681  1.158     ozaki 		if (mask == NULL)
   1682  1.158     ozaki 			goto error;
   1683  1.158     ozaki 
   1684  1.158     ozaki 		sa = (const char *)rt_getkey(rt);
   1685  1.158     ozaki 		addr = (const char *)l3addr;
   1686  1.158     ozaki 		len = ((const struct sockaddr_in *)l3addr)->sin_len;
   1687  1.158     ozaki 		lim = addr + len;
   1688  1.158     ozaki 
   1689  1.158     ozaki 		for ( ; addr < lim; sa++, mask++, addr++) {
   1690  1.158     ozaki 			if ((*sa ^ *addr) & *mask) {
   1691  1.158     ozaki #ifdef DIAGNOSTIC
   1692  1.158     ozaki 				log(LOG_INFO, "IPv4 address: \"%s\" is not on the network\n",
   1693  1.158     ozaki 				    inet_ntoa(((const struct sockaddr_in *)l3addr)->sin_addr));
   1694  1.158     ozaki #endif
   1695  1.158     ozaki 				goto error;
   1696  1.158     ozaki 			}
   1697  1.158     ozaki 		}
   1698  1.158     ozaki 	}
   1699  1.158     ozaki 
   1700  1.158     ozaki 	error = 0;
   1701  1.158     ozaki error:
   1702  1.158     ozaki 	return error;
   1703  1.158     ozaki }
   1704  1.158     ozaki 
   1705  1.158     ozaki static inline uint32_t
   1706  1.158     ozaki in_lltable_hash_dst(const struct in_addr dst, uint32_t hsize)
   1707  1.158     ozaki {
   1708  1.158     ozaki 
   1709  1.158     ozaki 	return (IN_LLTBL_HASH(dst.s_addr, hsize));
   1710  1.158     ozaki }
   1711  1.158     ozaki 
   1712  1.158     ozaki static uint32_t
   1713  1.158     ozaki in_lltable_hash(const struct llentry *lle, uint32_t hsize)
   1714  1.158     ozaki {
   1715  1.158     ozaki 
   1716  1.158     ozaki 	return (in_lltable_hash_dst(lle->r_l3addr.addr4, hsize));
   1717  1.158     ozaki }
   1718  1.158     ozaki 
   1719  1.158     ozaki static void
   1720  1.158     ozaki in_lltable_fill_sa_entry(const struct llentry *lle, struct sockaddr *sa)
   1721  1.158     ozaki {
   1722  1.158     ozaki 	struct sockaddr_in *sin;
   1723  1.158     ozaki 
   1724  1.158     ozaki 	sin = (struct sockaddr_in *)sa;
   1725  1.158     ozaki 	memset(sin, 0, sizeof(*sin));
   1726  1.158     ozaki 	sin->sin_family = AF_INET;
   1727  1.158     ozaki 	sin->sin_len = sizeof(*sin);
   1728  1.158     ozaki 	sin->sin_addr = lle->r_l3addr.addr4;
   1729  1.158     ozaki }
   1730  1.158     ozaki 
   1731  1.158     ozaki static inline struct llentry *
   1732  1.158     ozaki in_lltable_find_dst(struct lltable *llt, struct in_addr dst)
   1733  1.158     ozaki {
   1734  1.158     ozaki 	struct llentry *lle;
   1735  1.158     ozaki 	struct llentries *lleh;
   1736  1.158     ozaki 	u_int hashidx;
   1737  1.158     ozaki 
   1738  1.158     ozaki 	hashidx = in_lltable_hash_dst(dst, llt->llt_hsize);
   1739  1.158     ozaki 	lleh = &llt->lle_head[hashidx];
   1740  1.158     ozaki 	LIST_FOREACH(lle, lleh, lle_next) {
   1741  1.158     ozaki 		if (lle->la_flags & LLE_DELETED)
   1742  1.158     ozaki 			continue;
   1743  1.158     ozaki 		if (lle->r_l3addr.addr4.s_addr == dst.s_addr)
   1744  1.158     ozaki 			break;
   1745  1.158     ozaki 	}
   1746  1.158     ozaki 
   1747  1.158     ozaki 	return (lle);
   1748  1.158     ozaki }
   1749  1.158     ozaki 
   1750  1.158     ozaki static int
   1751  1.158     ozaki in_lltable_delete(struct lltable *llt, u_int flags,
   1752  1.158     ozaki     const struct sockaddr *l3addr)
   1753  1.158     ozaki {
   1754  1.158     ozaki 	const struct sockaddr_in *sin = (const struct sockaddr_in *)l3addr;
   1755  1.160     ozaki 	struct ifnet *ifp __diagused = llt->llt_ifp;
   1756  1.158     ozaki 	struct llentry *lle;
   1757  1.158     ozaki 
   1758  1.158     ozaki 	IF_AFDATA_WLOCK_ASSERT(ifp);
   1759  1.158     ozaki 	KASSERTMSG(l3addr->sa_family == AF_INET,
   1760  1.158     ozaki 	    "sin_family %d", l3addr->sa_family);
   1761  1.158     ozaki 
   1762  1.158     ozaki 	lle = in_lltable_find_dst(llt, sin->sin_addr);
   1763  1.158     ozaki 	if (lle == NULL) {
   1764  1.158     ozaki #ifdef DIAGNOSTIC
   1765  1.158     ozaki 		log(LOG_INFO, "interface address is missing from cache = %p  in delete\n", lle);
   1766  1.158     ozaki #endif
   1767  1.158     ozaki 		return (ENOENT);
   1768  1.158     ozaki 	}
   1769  1.158     ozaki 
   1770  1.158     ozaki 	if (!(lle->la_flags & LLE_IFADDR) || (flags & LLE_IFADDR)) {
   1771  1.158     ozaki 		LLE_WLOCK(lle);
   1772  1.158     ozaki 		lle->la_flags |= LLE_DELETED;
   1773  1.158     ozaki #ifdef DIAGNOSTIC
   1774  1.158     ozaki 		log(LOG_INFO, "ifaddr cache = %p is deleted\n", lle);
   1775  1.158     ozaki #endif
   1776  1.158     ozaki 		if ((lle->la_flags & (LLE_STATIC | LLE_IFADDR)) == LLE_STATIC)
   1777  1.158     ozaki 			llentry_free(lle);
   1778  1.158     ozaki 		else
   1779  1.158     ozaki 			LLE_WUNLOCK(lle);
   1780  1.158     ozaki 	}
   1781  1.158     ozaki 
   1782  1.158     ozaki 	return (0);
   1783  1.158     ozaki }
   1784  1.158     ozaki 
   1785  1.158     ozaki static struct llentry *
   1786  1.158     ozaki in_lltable_create(struct lltable *llt, u_int flags, const struct sockaddr *l3addr)
   1787  1.158     ozaki {
   1788  1.158     ozaki 	const struct sockaddr_in *sin = (const struct sockaddr_in *)l3addr;
   1789  1.158     ozaki 	struct ifnet *ifp = llt->llt_ifp;
   1790  1.158     ozaki 	struct llentry *lle;
   1791  1.158     ozaki 
   1792  1.158     ozaki 	IF_AFDATA_WLOCK_ASSERT(ifp);
   1793  1.158     ozaki 	KASSERTMSG(l3addr->sa_family == AF_INET,
   1794  1.158     ozaki 	    "sin_family %d", l3addr->sa_family);
   1795  1.158     ozaki 
   1796  1.158     ozaki 	lle = in_lltable_find_dst(llt, sin->sin_addr);
   1797  1.158     ozaki 
   1798  1.158     ozaki 	if (lle != NULL) {
   1799  1.158     ozaki 		LLE_WLOCK(lle);
   1800  1.158     ozaki 		return (lle);
   1801  1.158     ozaki 	}
   1802  1.158     ozaki 
   1803  1.158     ozaki 	/* no existing record, we need to create new one */
   1804  1.158     ozaki 
   1805  1.158     ozaki 	/*
   1806  1.158     ozaki 	 * A route that covers the given address must have
   1807  1.158     ozaki 	 * been installed 1st because we are doing a resolution,
   1808  1.158     ozaki 	 * verify this.
   1809  1.158     ozaki 	 */
   1810  1.158     ozaki 	if (!(flags & LLE_IFADDR) &&
   1811  1.158     ozaki 	    in_lltable_rtcheck(ifp, flags, l3addr) != 0)
   1812  1.158     ozaki 		return (NULL);
   1813  1.158     ozaki 
   1814  1.158     ozaki 	lle = in_lltable_new(sin->sin_addr, flags);
   1815  1.158     ozaki 	if (lle == NULL) {
   1816  1.158     ozaki 		log(LOG_INFO, "lla_lookup: new lle malloc failed\n");
   1817  1.158     ozaki 		return (NULL);
   1818  1.158     ozaki 	}
   1819  1.158     ozaki 	lle->la_flags = flags;
   1820  1.158     ozaki 	if ((flags & LLE_IFADDR) == LLE_IFADDR) {
   1821  1.158     ozaki 		memcpy(&lle->ll_addr, CLLADDR(ifp->if_sadl), ifp->if_addrlen);
   1822  1.158     ozaki 		lle->la_flags |= (LLE_VALID | LLE_STATIC);
   1823  1.158     ozaki 	}
   1824  1.158     ozaki 
   1825  1.158     ozaki 	lltable_link_entry(llt, lle);
   1826  1.158     ozaki 	LLE_WLOCK(lle);
   1827  1.158     ozaki 
   1828  1.158     ozaki 	return (lle);
   1829  1.158     ozaki }
   1830  1.158     ozaki 
   1831  1.158     ozaki /*
   1832  1.158     ozaki  * Return NULL if not found or marked for deletion.
   1833  1.158     ozaki  * If found return lle read locked.
   1834  1.158     ozaki  */
   1835  1.158     ozaki static struct llentry *
   1836  1.158     ozaki in_lltable_lookup(struct lltable *llt, u_int flags, const struct sockaddr *l3addr)
   1837  1.158     ozaki {
   1838  1.158     ozaki 	const struct sockaddr_in *sin = (const struct sockaddr_in *)l3addr;
   1839  1.158     ozaki 	struct llentry *lle;
   1840  1.158     ozaki 
   1841  1.158     ozaki 	IF_AFDATA_LOCK_ASSERT(llt->llt_ifp);
   1842  1.158     ozaki 	KASSERTMSG(l3addr->sa_family == AF_INET,
   1843  1.158     ozaki 	    "sin_family %d", l3addr->sa_family);
   1844  1.158     ozaki 
   1845  1.158     ozaki 	lle = in_lltable_find_dst(llt, sin->sin_addr);
   1846  1.158     ozaki 
   1847  1.158     ozaki 	if (lle == NULL)
   1848  1.158     ozaki 		return NULL;
   1849  1.158     ozaki 
   1850  1.158     ozaki 	if (flags & LLE_EXCLUSIVE)
   1851  1.158     ozaki 		LLE_WLOCK(lle);
   1852  1.158     ozaki 	else
   1853  1.158     ozaki 		LLE_RLOCK(lle);
   1854  1.158     ozaki 
   1855  1.158     ozaki 	return lle;
   1856  1.158     ozaki }
   1857  1.158     ozaki 
   1858  1.161     ozaki #endif /* NETHER > 0 */
   1859  1.161     ozaki 
   1860  1.145     rmind static void
   1861  1.145     rmind in_sysctl_init(struct sysctllog **clog)
   1862  1.145     rmind {
   1863  1.145     rmind 	sysctl_createv(clog, 0, NULL, NULL,
   1864  1.145     rmind 		       CTLFLAG_PERMANENT,
   1865  1.145     rmind 		       CTLTYPE_NODE, "inet",
   1866  1.145     rmind 		       SYSCTL_DESCR("PF_INET related settings"),
   1867  1.145     rmind 		       NULL, 0, NULL, 0,
   1868  1.145     rmind 		       CTL_NET, PF_INET, CTL_EOL);
   1869  1.145     rmind 	sysctl_createv(clog, 0, NULL, NULL,
   1870  1.145     rmind 		       CTLFLAG_PERMANENT,
   1871  1.145     rmind 		       CTLTYPE_NODE, "ip",
   1872  1.145     rmind 		       SYSCTL_DESCR("IPv4 related settings"),
   1873  1.145     rmind 		       NULL, 0, NULL, 0,
   1874  1.145     rmind 		       CTL_NET, PF_INET, IPPROTO_IP, CTL_EOL);
   1875  1.145     rmind 
   1876  1.145     rmind 	sysctl_createv(clog, 0, NULL, NULL,
   1877  1.145     rmind 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1878  1.145     rmind 		       CTLTYPE_INT, "subnetsarelocal",
   1879  1.145     rmind 		       SYSCTL_DESCR("Whether logical subnets are considered "
   1880  1.145     rmind 				    "local"),
   1881  1.145     rmind 		       NULL, 0, &subnetsarelocal, 0,
   1882  1.145     rmind 		       CTL_NET, PF_INET, IPPROTO_IP,
   1883  1.145     rmind 		       IPCTL_SUBNETSARELOCAL, CTL_EOL);
   1884  1.145     rmind 	sysctl_createv(clog, 0, NULL, NULL,
   1885  1.145     rmind 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1886  1.145     rmind 		       CTLTYPE_INT, "hostzerobroadcast",
   1887  1.145     rmind 		       SYSCTL_DESCR("All zeroes address is broadcast address"),
   1888  1.145     rmind 		       NULL, 0, &hostzeroisbroadcast, 0,
   1889  1.145     rmind 		       CTL_NET, PF_INET, IPPROTO_IP,
   1890  1.145     rmind 		       IPCTL_HOSTZEROBROADCAST, CTL_EOL);
   1891  1.145     rmind }
   1892  1.158     ozaki 
   1893  1.161     ozaki #if NETHER > 0
   1894  1.158     ozaki static struct lltable *
   1895  1.158     ozaki in_lltattach(struct ifnet *ifp)
   1896  1.158     ozaki {
   1897  1.158     ozaki 	struct lltable *llt;
   1898  1.158     ozaki 
   1899  1.158     ozaki 	llt = lltable_allocate_htbl(IN_LLTBL_DEFAULT_HSIZE);
   1900  1.158     ozaki 	llt->llt_af = AF_INET;
   1901  1.158     ozaki 	llt->llt_ifp = ifp;
   1902  1.158     ozaki 
   1903  1.158     ozaki 	llt->llt_lookup = in_lltable_lookup;
   1904  1.158     ozaki 	llt->llt_create = in_lltable_create;
   1905  1.158     ozaki 	llt->llt_delete = in_lltable_delete;
   1906  1.158     ozaki #if 0
   1907  1.158     ozaki 	llt->llt_dump_entry = in_lltable_dump_entry;
   1908  1.158     ozaki #endif
   1909  1.158     ozaki 	llt->llt_hash = in_lltable_hash;
   1910  1.158     ozaki 	llt->llt_fill_sa_entry = in_lltable_fill_sa_entry;
   1911  1.158     ozaki 	llt->llt_free_entry = in_lltable_free_entry;
   1912  1.158     ozaki 	llt->llt_match_prefix = in_lltable_match_prefix;
   1913  1.158     ozaki 	lltable_link(llt);
   1914  1.158     ozaki 
   1915  1.158     ozaki 	return (llt);
   1916  1.158     ozaki }
   1917  1.161     ozaki #endif /* NETHER > 0 */
   1918  1.158     ozaki 
   1919  1.158     ozaki void *
   1920  1.158     ozaki in_domifattach(struct ifnet *ifp)
   1921  1.158     ozaki {
   1922  1.158     ozaki 	struct in_ifinfo *ii;
   1923  1.158     ozaki 
   1924  1.158     ozaki 	ii = kmem_zalloc(sizeof(struct in_ifinfo), KM_SLEEP);
   1925  1.158     ozaki 	KASSERT(ii != NULL);
   1926  1.158     ozaki 
   1927  1.161     ozaki #if NETHER > 0
   1928  1.158     ozaki 	ii->ii_llt = in_lltattach(ifp);
   1929  1.161     ozaki #endif
   1930  1.158     ozaki 
   1931  1.158     ozaki #ifdef IPSELSRC
   1932  1.158     ozaki 	ii->ii_selsrc = in_selsrc_domifattach(ifp);
   1933  1.158     ozaki 	KASSERT(ii->ii_selsrc != NULL);
   1934  1.158     ozaki #endif
   1935  1.158     ozaki 
   1936  1.158     ozaki 	return ii;
   1937  1.158     ozaki }
   1938  1.158     ozaki 
   1939  1.158     ozaki void
   1940  1.158     ozaki in_domifdetach(struct ifnet *ifp, void *aux)
   1941  1.158     ozaki {
   1942  1.158     ozaki 	struct in_ifinfo *ii = aux;
   1943  1.158     ozaki 
   1944  1.158     ozaki #ifdef IPSELSRC
   1945  1.158     ozaki 	in_selsrc_domifdetach(ifp, ii->ii_selsrc);
   1946  1.158     ozaki #endif
   1947  1.161     ozaki #if NETHER > 0
   1948  1.158     ozaki 	lltable_free(ii->ii_llt);
   1949  1.161     ozaki #endif
   1950  1.158     ozaki 	kmem_free(ii, sizeof(struct in_ifinfo));
   1951  1.158     ozaki }
   1952