in_pcb.c revision 1.197 1 1.197 ozaki /* $NetBSD: in_pcb.c,v 1.197 2022/11/04 09:02:38 ozaki-r Exp $ */
2 1.59 itojun
3 1.59 itojun /*
4 1.59 itojun * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project.
5 1.59 itojun * All rights reserved.
6 1.78 itojun *
7 1.59 itojun * Redistribution and use in source and binary forms, with or without
8 1.59 itojun * modification, are permitted provided that the following conditions
9 1.59 itojun * are met:
10 1.59 itojun * 1. Redistributions of source code must retain the above copyright
11 1.59 itojun * notice, this list of conditions and the following disclaimer.
12 1.59 itojun * 2. Redistributions in binary form must reproduce the above copyright
13 1.59 itojun * notice, this list of conditions and the following disclaimer in the
14 1.59 itojun * documentation and/or other materials provided with the distribution.
15 1.59 itojun * 3. Neither the name of the project nor the names of its contributors
16 1.59 itojun * may be used to endorse or promote products derived from this software
17 1.59 itojun * without specific prior written permission.
18 1.78 itojun *
19 1.59 itojun * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
20 1.59 itojun * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
21 1.59 itojun * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
22 1.59 itojun * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
23 1.59 itojun * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
24 1.59 itojun * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
25 1.59 itojun * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
26 1.59 itojun * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
27 1.59 itojun * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
28 1.59 itojun * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
29 1.59 itojun * SUCH DAMAGE.
30 1.59 itojun */
31 1.57 thorpej
32 1.57 thorpej /*-
33 1.138 dyoung * Copyright (c) 1998, 2011 The NetBSD Foundation, Inc.
34 1.57 thorpej * All rights reserved.
35 1.57 thorpej *
36 1.57 thorpej * This code is derived from software contributed to The NetBSD Foundation
37 1.138 dyoung * by Coyote Point Systems, Inc.
38 1.138 dyoung * This code is derived from software contributed to The NetBSD Foundation
39 1.57 thorpej * by Public Access Networks Corporation ("Panix"). It was developed under
40 1.57 thorpej * contract to Panix by Eric Haszlakiewicz and Thor Lancelot Simon.
41 1.57 thorpej *
42 1.57 thorpej * Redistribution and use in source and binary forms, with or without
43 1.57 thorpej * modification, are permitted provided that the following conditions
44 1.57 thorpej * are met:
45 1.57 thorpej * 1. Redistributions of source code must retain the above copyright
46 1.57 thorpej * notice, this list of conditions and the following disclaimer.
47 1.57 thorpej * 2. Redistributions in binary form must reproduce the above copyright
48 1.57 thorpej * notice, this list of conditions and the following disclaimer in the
49 1.57 thorpej * documentation and/or other materials provided with the distribution.
50 1.57 thorpej *
51 1.57 thorpej * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
52 1.57 thorpej * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
53 1.57 thorpej * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
54 1.57 thorpej * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
55 1.57 thorpej * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
56 1.57 thorpej * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
57 1.57 thorpej * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
58 1.57 thorpej * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
59 1.57 thorpej * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
60 1.57 thorpej * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
61 1.57 thorpej * POSSIBILITY OF SUCH DAMAGE.
62 1.57 thorpej */
63 1.11 cgd
64 1.1 cgd /*
65 1.44 thorpej * Copyright (c) 1982, 1986, 1991, 1993, 1995
66 1.10 mycroft * The Regents of the University of California. All rights reserved.
67 1.1 cgd *
68 1.1 cgd * Redistribution and use in source and binary forms, with or without
69 1.1 cgd * modification, are permitted provided that the following conditions
70 1.1 cgd * are met:
71 1.1 cgd * 1. Redistributions of source code must retain the above copyright
72 1.1 cgd * notice, this list of conditions and the following disclaimer.
73 1.1 cgd * 2. Redistributions in binary form must reproduce the above copyright
74 1.1 cgd * notice, this list of conditions and the following disclaimer in the
75 1.1 cgd * documentation and/or other materials provided with the distribution.
76 1.86 agc * 3. Neither the name of the University nor the names of its contributors
77 1.1 cgd * may be used to endorse or promote products derived from this software
78 1.1 cgd * without specific prior written permission.
79 1.1 cgd *
80 1.1 cgd * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
81 1.1 cgd * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
82 1.1 cgd * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
83 1.1 cgd * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
84 1.1 cgd * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
85 1.1 cgd * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
86 1.1 cgd * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
87 1.1 cgd * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
88 1.1 cgd * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
89 1.1 cgd * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
90 1.1 cgd * SUCH DAMAGE.
91 1.1 cgd *
92 1.44 thorpej * @(#)in_pcb.c 8.4 (Berkeley) 5/24/95
93 1.1 cgd */
94 1.73 lukem
95 1.73 lukem #include <sys/cdefs.h>
96 1.197 ozaki __KERNEL_RCSID(0, "$NetBSD: in_pcb.c,v 1.197 2022/11/04 09:02:38 ozaki-r Exp $");
97 1.60 thorpej
98 1.162 pooka #ifdef _KERNEL_OPT
99 1.88 itojun #include "opt_inet.h"
100 1.60 thorpej #include "opt_ipsec.h"
101 1.162 pooka #endif
102 1.1 cgd
103 1.7 mycroft #include <sys/param.h>
104 1.7 mycroft #include <sys/systm.h>
105 1.7 mycroft #include <sys/mbuf.h>
106 1.7 mycroft #include <sys/socket.h>
107 1.7 mycroft #include <sys/socketvar.h>
108 1.7 mycroft #include <sys/ioctl.h>
109 1.10 mycroft #include <sys/errno.h>
110 1.10 mycroft #include <sys/time.h>
111 1.128 pooka #include <sys/once.h>
112 1.52 thorpej #include <sys/pool.h>
113 1.10 mycroft #include <sys/proc.h>
114 1.102 elad #include <sys/kauth.h>
115 1.129 pooka #include <sys/uidinfo.h>
116 1.132 elad #include <sys/domain.h>
117 1.1 cgd
118 1.7 mycroft #include <net/if.h>
119 1.7 mycroft #include <net/route.h>
120 1.1 cgd
121 1.7 mycroft #include <netinet/in.h>
122 1.7 mycroft #include <netinet/in_systm.h>
123 1.7 mycroft #include <netinet/ip.h>
124 1.7 mycroft #include <netinet/in_pcb.h>
125 1.7 mycroft #include <netinet/in_var.h>
126 1.7 mycroft #include <netinet/ip_var.h>
127 1.143 christos #include <netinet/portalgo.h>
128 1.1 cgd
129 1.88 itojun #ifdef INET6
130 1.88 itojun #include <netinet/ip6.h>
131 1.88 itojun #include <netinet6/ip6_var.h>
132 1.88 itojun #include <netinet6/in6_pcb.h>
133 1.88 itojun #endif
134 1.88 itojun
135 1.145 christos #ifdef IPSEC
136 1.87 jonathan #include <netipsec/ipsec.h>
137 1.87 jonathan #include <netipsec/key.h>
138 1.59 itojun #endif /* IPSEC */
139 1.59 itojun
140 1.138 dyoung #include <netinet/tcp_vtw.h>
141 1.138 dyoung
142 1.1 cgd struct in_addr zeroin_addr;
143 1.1 cgd
144 1.90 provos #define INPCBHASH_PORT(table, lport) \
145 1.92 itojun &(table)->inpt_porthashtbl[ntohs(lport) & (table)->inpt_porthash]
146 1.33 mycroft #define INPCBHASH_BIND(table, laddr, lport) \
147 1.33 mycroft &(table)->inpt_bindhashtbl[ \
148 1.33 mycroft ((ntohl((laddr).s_addr) + ntohs(lport))) & (table)->inpt_bindhash]
149 1.33 mycroft #define INPCBHASH_CONNECT(table, faddr, fport, laddr, lport) \
150 1.33 mycroft &(table)->inpt_connecthashtbl[ \
151 1.33 mycroft ((ntohl((faddr).s_addr) + ntohs(fport)) + \
152 1.33 mycroft (ntohl((laddr).s_addr) + ntohs(lport))) & (table)->inpt_connecthash]
153 1.33 mycroft
154 1.43 lukem int anonportmin = IPPORT_ANONMIN;
155 1.43 lukem int anonportmax = IPPORT_ANONMAX;
156 1.67 tron int lowportmin = IPPORT_RESERVEDMIN;
157 1.67 tron int lowportmax = IPPORT_RESERVEDMAX;
158 1.43 lukem
159 1.197 ozaki static pool_cache_t in4pcb_pool_cache;
160 1.194 ozaki #ifdef INET6
161 1.197 ozaki static pool_cache_t in6pcb_pool_cache;
162 1.194 ozaki #endif
163 1.128 pooka
164 1.128 pooka static int
165 1.128 pooka inpcb_poolinit(void)
166 1.128 pooka {
167 1.128 pooka
168 1.197 ozaki in4pcb_pool_cache = pool_cache_init(sizeof(struct in4pcb), coherency_unit,
169 1.197 ozaki 0, 0, "in4pcbpl", NULL, IPL_NET, NULL, NULL, NULL);
170 1.194 ozaki #ifdef INET6
171 1.197 ozaki in6pcb_pool_cache = pool_cache_init(sizeof(struct in6pcb), coherency_unit,
172 1.197 ozaki 0, 0, "in6pcbpl", NULL, IPL_NET, NULL, NULL, NULL);
173 1.194 ozaki #endif
174 1.128 pooka return 0;
175 1.128 pooka }
176 1.52 thorpej
177 1.18 mycroft void
178 1.195 ozaki inpcb_init(struct inpcbtable *table, int bindhashsize, int connecthashsize)
179 1.18 mycroft {
180 1.128 pooka static ONCE_DECL(control);
181 1.18 mycroft
182 1.146 christos TAILQ_INIT(&table->inpt_queue);
183 1.125 ad table->inpt_porthashtbl = hashinit(bindhashsize, HASH_LIST, true,
184 1.125 ad &table->inpt_porthash);
185 1.125 ad table->inpt_bindhashtbl = hashinit(bindhashsize, HASH_LIST, true,
186 1.125 ad &table->inpt_bindhash);
187 1.125 ad table->inpt_connecthashtbl = hashinit(connecthashsize, HASH_LIST, true,
188 1.125 ad &table->inpt_connecthash);
189 1.47 lukem table->inpt_lastlow = IPPORT_RESERVEDMAX;
190 1.47 lukem table->inpt_lastport = (u_int16_t)anonportmax;
191 1.128 pooka
192 1.128 pooka RUN_ONCE(&control, inpcb_poolinit);
193 1.18 mycroft }
194 1.18 mycroft
195 1.10 mycroft int
196 1.195 ozaki inpcb_create(struct socket *so, void *v)
197 1.1 cgd {
198 1.25 christos struct inpcbtable *table = v;
199 1.64 augustss struct inpcb *inp;
200 1.24 mycroft int s;
201 1.1 cgd
202 1.194 ozaki #ifdef INET6
203 1.192 ozaki KASSERT(soaf(so) == AF_INET || soaf(so) == AF_INET6);
204 1.177 ozaki
205 1.193 ozaki if (soaf(so) == AF_INET)
206 1.197 ozaki inp = pool_cache_get(in4pcb_pool_cache, PR_NOWAIT);
207 1.193 ozaki else
208 1.197 ozaki inp = pool_cache_get(in6pcb_pool_cache, PR_NOWAIT);
209 1.194 ozaki #else
210 1.194 ozaki KASSERT(soaf(so) == AF_INET);
211 1.197 ozaki inp = pool_cache_get(in4pcb_pool_cache, PR_NOWAIT);
212 1.194 ozaki #endif
213 1.10 mycroft if (inp == NULL)
214 1.1 cgd return (ENOBUFS);
215 1.197 ozaki if (soaf(so) == AF_INET)
216 1.197 ozaki memset(inp, 0, sizeof(struct in4pcb));
217 1.197 ozaki #ifdef INET6
218 1.197 ozaki else
219 1.197 ozaki memset(inp, 0, sizeof(struct in6pcb));
220 1.197 ozaki #endif
221 1.192 ozaki inp->inp_af = soaf(so);
222 1.18 mycroft inp->inp_table = table;
223 1.1 cgd inp->inp_socket = so;
224 1.143 christos inp->inp_portalgo = PORTALGO_DEFAULT;
225 1.139 christos inp->inp_bindportonsend = false;
226 1.193 ozaki
227 1.193 ozaki if (inp->inp_af == AF_INET) {
228 1.193 ozaki in4p_errormtu(inp) = -1;
229 1.193 ozaki in4p_prefsrcip(inp).s_addr = INADDR_ANY;
230 1.193 ozaki }
231 1.192 ozaki #ifdef INET6
232 1.193 ozaki else {
233 1.193 ozaki in6p_hops6(inp) = -1; /* use kernel default */
234 1.193 ozaki if (ip6_v6only)
235 1.193 ozaki inp->inp_flags |= IN6P_IPV6_V6ONLY;
236 1.193 ozaki }
237 1.192 ozaki #endif
238 1.145 christos #if defined(IPSEC)
239 1.148 christos if (ipsec_enabled) {
240 1.148 christos int error = ipsec_init_pcbpolicy(so, &inp->inp_sp);
241 1.148 christos if (error != 0) {
242 1.194 ozaki #ifdef INET6
243 1.193 ozaki if (inp->inp_af == AF_INET)
244 1.197 ozaki pool_cache_put(in4pcb_pool_cache, inp);
245 1.193 ozaki else
246 1.197 ozaki pool_cache_put(in6pcb_pool_cache, inp);
247 1.194 ozaki #else
248 1.194 ozaki KASSERT(inp->inp_af == AF_INET);
249 1.197 ozaki pool_cache_put(in4pcb_pool_cache, inp);
250 1.194 ozaki #endif
251 1.148 christos return error;
252 1.148 christos }
253 1.192 ozaki inp->inp_sp->sp_inp = inp;
254 1.70 itojun }
255 1.70 itojun #endif
256 1.33 mycroft so->so_pcb = inp;
257 1.175 ozaki s = splsoftnet();
258 1.192 ozaki TAILQ_INSERT_HEAD(&table->inpt_queue, inp, inp_queue);
259 1.192 ozaki LIST_INSERT_HEAD(INPCBHASH_PORT(table, inp->inp_lport), inp,
260 1.192 ozaki inp_lhash);
261 1.195 ozaki inpcb_set_state(inp, INP_ATTACHED);
262 1.24 mycroft splx(s);
263 1.1 cgd return (0);
264 1.1 cgd }
265 1.8 mycroft
266 1.132 elad static int
267 1.195 ozaki inpcb_set_port(struct sockaddr_in *sin, struct inpcb *inp, kauth_cred_t cred)
268 1.1 cgd {
269 1.132 elad struct inpcbtable *table = inp->inp_table;
270 1.64 augustss struct socket *so = inp->inp_socket;
271 1.132 elad u_int16_t *lastport;
272 1.13 cgd u_int16_t lport = 0;
273 1.134 elad enum kauth_network_req req;
274 1.134 elad int error;
275 1.1 cgd
276 1.132 elad if (inp->inp_flags & INP_LOWPORT) {
277 1.132 elad #ifndef IPNOPRIVPORTS
278 1.134 elad req = KAUTH_REQ_NETWORK_BIND_PRIVPORT;
279 1.134 elad #else
280 1.134 elad req = KAUTH_REQ_NETWORK_BIND_PORT;
281 1.132 elad #endif
282 1.134 elad
283 1.132 elad lastport = &table->inpt_lastlow;
284 1.132 elad } else {
285 1.134 elad req = KAUTH_REQ_NETWORK_BIND_PORT;
286 1.134 elad
287 1.132 elad lastport = &table->inpt_lastport;
288 1.132 elad }
289 1.134 elad
290 1.134 elad /* XXX-kauth: KAUTH_REQ_NETWORK_BIND_AUTOASSIGN_{,PRIV}PORT */
291 1.134 elad error = kauth_authorize_network(cred, KAUTH_NETWORK_BIND, req, so, sin,
292 1.134 elad NULL);
293 1.134 elad if (error)
294 1.137 elad return (EACCES);
295 1.134 elad
296 1.139 christos /*
297 1.139 christos * Use RFC6056 randomized port selection
298 1.139 christos */
299 1.192 ozaki error = portalgo_randport(&lport, inp, cred);
300 1.139 christos if (error)
301 1.139 christos return error;
302 1.132 elad
303 1.132 elad inp->inp_flags |= INP_ANONPORT;
304 1.132 elad *lastport = lport;
305 1.132 elad lport = htons(lport);
306 1.132 elad inp->inp_lport = lport;
307 1.195 ozaki inpcb_set_state(inp, INP_BOUND);
308 1.132 elad
309 1.132 elad return (0);
310 1.132 elad }
311 1.88 itojun
312 1.179 ryo int
313 1.195 ozaki inpcb_bindableaddr(const struct inpcb *inp, struct sockaddr_in *sin,
314 1.185 christos kauth_cred_t cred)
315 1.132 elad {
316 1.168 ozaki int error = EADDRNOTAVAIL;
317 1.168 ozaki struct ifaddr *ifa = NULL;
318 1.168 ozaki int s;
319 1.168 ozaki
320 1.28 mycroft if (sin->sin_family != AF_INET)
321 1.28 mycroft return (EAFNOSUPPORT);
322 1.132 elad
323 1.168 ozaki s = pserialize_read_enter();
324 1.136 elad if (IN_MULTICAST(sin->sin_addr.s_addr)) {
325 1.195 ozaki /* Always succeed; port reuse handled in inpcb_bind_port(). */
326 1.136 elad } else if (!in_nullhost(sin->sin_addr)) {
327 1.168 ozaki struct in_ifaddr *ia;
328 1.132 elad
329 1.166 ozaki ia = in_get_ia(sin->sin_addr);
330 1.132 elad /* check for broadcast addresses */
331 1.168 ozaki if (ia == NULL) {
332 1.168 ozaki ifa = ifa_ifwithaddr(sintosa(sin));
333 1.168 ozaki if (ifa != NULL)
334 1.168 ozaki ia = ifatoia(ifa);
335 1.185 christos else if ((inp->inp_flags & INP_BINDANY) != 0) {
336 1.185 christos error = 0;
337 1.185 christos goto error;
338 1.185 christos }
339 1.168 ozaki }
340 1.132 elad if (ia == NULL)
341 1.168 ozaki goto error;
342 1.170 roy if (ia->ia4_flags & IN_IFF_DUPLICATED)
343 1.168 ozaki goto error;
344 1.132 elad }
345 1.179 ryo error = 0;
346 1.179 ryo error:
347 1.168 ozaki pserialize_read_exit(s);
348 1.179 ryo return error;
349 1.179 ryo }
350 1.132 elad
351 1.179 ryo static int
352 1.195 ozaki inpcb_bind_addr(struct inpcb *inp, struct sockaddr_in *sin, kauth_cred_t cred)
353 1.179 ryo {
354 1.179 ryo int error;
355 1.132 elad
356 1.195 ozaki error = inpcb_bindableaddr(inp, sin, cred);
357 1.179 ryo if (error == 0)
358 1.193 ozaki in4p_laddr(inp) = sin->sin_addr;
359 1.168 ozaki return error;
360 1.132 elad }
361 1.132 elad
362 1.132 elad static int
363 1.195 ozaki inpcb_bind_port(struct inpcb *inp, struct sockaddr_in *sin, kauth_cred_t cred)
364 1.132 elad {
365 1.132 elad struct inpcbtable *table = inp->inp_table;
366 1.132 elad struct socket *so = inp->inp_socket;
367 1.132 elad int reuseport = (so->so_options & SO_REUSEPORT);
368 1.133 elad int wild = 0, error;
369 1.132 elad
370 1.28 mycroft if (IN_MULTICAST(sin->sin_addr.s_addr)) {
371 1.10 mycroft /*
372 1.28 mycroft * Treat SO_REUSEADDR as SO_REUSEPORT for multicast;
373 1.28 mycroft * allow complete duplication of binding if
374 1.28 mycroft * SO_REUSEPORT is set, or if SO_REUSEADDR is set
375 1.28 mycroft * and a multicast address is bound on both
376 1.28 mycroft * new and duplicated sockets.
377 1.10 mycroft */
378 1.155 seanb if (so->so_options & (SO_REUSEADDR | SO_REUSEPORT))
379 1.28 mycroft reuseport = SO_REUSEADDR|SO_REUSEPORT;
380 1.132 elad }
381 1.132 elad
382 1.132 elad if (sin->sin_port == 0) {
383 1.195 ozaki error = inpcb_set_port(sin, inp, cred);
384 1.132 elad if (error)
385 1.132 elad return (error);
386 1.132 elad } else {
387 1.28 mycroft struct inpcb *t;
388 1.138 dyoung vestigial_inpcb_t vestige;
389 1.88 itojun #ifdef INET6
390 1.192 ozaki struct inpcb *t6;
391 1.88 itojun struct in6_addr mapped;
392 1.88 itojun #endif
393 1.133 elad enum kauth_network_req req;
394 1.132 elad
395 1.132 elad if ((so->so_options & (SO_REUSEADDR|SO_REUSEPORT)) == 0)
396 1.132 elad wild = 1;
397 1.132 elad
398 1.31 perry #ifndef IPNOPRIVPORTS
399 1.133 elad if (ntohs(sin->sin_port) < IPPORT_RESERVED)
400 1.133 elad req = KAUTH_REQ_NETWORK_BIND_PRIVPORT;
401 1.133 elad else
402 1.133 elad #endif /* !IPNOPRIVPORTS */
403 1.133 elad req = KAUTH_REQ_NETWORK_BIND_PORT;
404 1.133 elad
405 1.133 elad error = kauth_authorize_network(cred, KAUTH_NETWORK_BIND, req,
406 1.133 elad so, sin, NULL);
407 1.133 elad if (error)
408 1.137 elad return (EACCES);
409 1.133 elad
410 1.88 itojun #ifdef INET6
411 1.163 rtr in6_in_2_v4mapin6(&sin->sin_addr, &mapped);
412 1.196 ozaki t6 = in6pcb_lookup_local(table, &mapped, sin->sin_port, wild, &vestige);
413 1.192 ozaki if (t6 && (reuseport & t6->inp_socket->so_options) == 0)
414 1.88 itojun return (EADDRINUSE);
415 1.138 dyoung if (!t6 && vestige.valid) {
416 1.138 dyoung if (!!reuseport != !!vestige.reuse_port) {
417 1.138 dyoung return EADDRINUSE;
418 1.138 dyoung }
419 1.138 dyoung }
420 1.88 itojun #endif
421 1.133 elad
422 1.133 elad /* XXX-kauth */
423 1.99 christos if (so->so_uidinfo->ui_uid && !IN_MULTICAST(sin->sin_addr.s_addr)) {
424 1.195 ozaki t = inpcb_lookup_local(table, sin->sin_addr, sin->sin_port, 1, &vestige);
425 1.133 elad /*
426 1.133 elad * XXX: investigate ramifications of loosening this
427 1.133 elad * restriction so that as long as both ports have
428 1.133 elad * SO_REUSEPORT allow the bind
429 1.133 elad */
430 1.58 lukem if (t &&
431 1.58 lukem (!in_nullhost(sin->sin_addr) ||
432 1.193 ozaki !in_nullhost(in4p_laddr(t)) ||
433 1.58 lukem (t->inp_socket->so_options & SO_REUSEPORT) == 0)
434 1.99 christos && (so->so_uidinfo->ui_uid != t->inp_socket->so_uidinfo->ui_uid)) {
435 1.58 lukem return (EADDRINUSE);
436 1.58 lukem }
437 1.138 dyoung if (!t && vestige.valid) {
438 1.138 dyoung if ((!in_nullhost(sin->sin_addr)
439 1.138 dyoung || !in_nullhost(vestige.laddr.v4)
440 1.138 dyoung || !vestige.reuse_port)
441 1.138 dyoung && so->so_uidinfo->ui_uid != vestige.uid) {
442 1.138 dyoung return EADDRINUSE;
443 1.138 dyoung }
444 1.138 dyoung }
445 1.58 lukem }
446 1.195 ozaki t = inpcb_lookup_local(table, sin->sin_addr, sin->sin_port, wild, &vestige);
447 1.28 mycroft if (t && (reuseport & t->inp_socket->so_options) == 0)
448 1.28 mycroft return (EADDRINUSE);
449 1.138 dyoung if (!t
450 1.138 dyoung && vestige.valid
451 1.138 dyoung && !(reuseport && vestige.reuse_port))
452 1.138 dyoung return EADDRINUSE;
453 1.132 elad
454 1.132 elad inp->inp_lport = sin->sin_port;
455 1.195 ozaki inpcb_set_state(inp, INP_BOUND);
456 1.1 cgd }
457 1.45 lukem
458 1.192 ozaki LIST_REMOVE(inp, inp_lhash);
459 1.192 ozaki LIST_INSERT_HEAD(INPCBHASH_PORT(table, inp->inp_lport), inp,
460 1.192 ozaki inp_lhash);
461 1.132 elad
462 1.132 elad return (0);
463 1.132 elad }
464 1.132 elad
465 1.132 elad int
466 1.195 ozaki inpcb_bind(void *v, struct sockaddr_in *sin, struct lwp *l)
467 1.132 elad {
468 1.132 elad struct inpcb *inp = v;
469 1.134 elad struct sockaddr_in lsin;
470 1.132 elad int error;
471 1.132 elad
472 1.132 elad if (inp->inp_af != AF_INET)
473 1.132 elad return (EINVAL);
474 1.132 elad
475 1.193 ozaki if (inp->inp_lport || !in_nullhost(in4p_laddr(inp)))
476 1.132 elad return (EINVAL);
477 1.132 elad
478 1.156 rtr if (NULL != sin) {
479 1.156 rtr if (sin->sin_len != sizeof(*sin))
480 1.132 elad return (EINVAL);
481 1.132 elad } else {
482 1.134 elad lsin = *((const struct sockaddr_in *)
483 1.134 elad inp->inp_socket->so_proto->pr_domain->dom_sa_any);
484 1.134 elad sin = &lsin;
485 1.132 elad }
486 1.132 elad
487 1.132 elad /* Bind address. */
488 1.195 ozaki error = inpcb_bind_addr(inp, sin, l->l_cred);
489 1.132 elad if (error)
490 1.132 elad return (error);
491 1.132 elad
492 1.132 elad /* Bind port. */
493 1.195 ozaki error = inpcb_bind_port(inp, sin, l->l_cred);
494 1.132 elad if (error) {
495 1.193 ozaki in4p_laddr(inp).s_addr = INADDR_ANY;
496 1.132 elad
497 1.132 elad return (error);
498 1.132 elad }
499 1.132 elad
500 1.1 cgd return (0);
501 1.1 cgd }
502 1.1 cgd
503 1.1 cgd /*
504 1.1 cgd * Connect from a socket to a specified address.
505 1.1 cgd * Both address and port must be specified in argument sin.
506 1.1 cgd * If don't have a local address for this socket yet,
507 1.1 cgd * then pick one.
508 1.1 cgd */
509 1.10 mycroft int
510 1.195 ozaki inpcb_connect(void *v, struct sockaddr_in *sin, struct lwp *l)
511 1.1 cgd {
512 1.64 augustss struct inpcb *inp = v;
513 1.138 dyoung vestigial_inpcb_t vestige;
514 1.40 thorpej int error;
515 1.167 ozaki struct in_addr laddr;
516 1.1 cgd
517 1.88 itojun if (inp->inp_af != AF_INET)
518 1.88 itojun return (EINVAL);
519 1.88 itojun
520 1.158 rtr if (sin->sin_len != sizeof (*sin))
521 1.158 rtr return (EINVAL);
522 1.1 cgd if (sin->sin_family != AF_INET)
523 1.1 cgd return (EAFNOSUPPORT);
524 1.1 cgd if (sin->sin_port == 0)
525 1.1 cgd return (EADDRNOTAVAIL);
526 1.144 christos
527 1.144 christos if (IN_MULTICAST(sin->sin_addr.s_addr) &&
528 1.144 christos inp->inp_socket->so_type == SOCK_STREAM)
529 1.144 christos return EADDRNOTAVAIL;
530 1.144 christos
531 1.165 ozaki if (!IN_ADDRLIST_READER_EMPTY()) {
532 1.1 cgd /*
533 1.1 cgd * If the destination address is INADDR_ANY,
534 1.49 tls * use any local address (likely loopback).
535 1.1 cgd * If the supplied address is INADDR_BROADCAST,
536 1.49 tls * use the broadcast address of an interface
537 1.49 tls * which supports broadcast. (loopback does not)
538 1.1 cgd */
539 1.49 tls
540 1.72 matt if (in_nullhost(sin->sin_addr)) {
541 1.165 ozaki /* XXX racy */
542 1.72 matt sin->sin_addr =
543 1.165 ozaki IN_ADDRLIST_READER_FIRST()->ia_addr.sin_addr;
544 1.72 matt } else if (sin->sin_addr.s_addr == INADDR_BROADCAST) {
545 1.167 ozaki struct in_ifaddr *ia;
546 1.168 ozaki int s = pserialize_read_enter();
547 1.165 ozaki IN_ADDRLIST_READER_FOREACH(ia) {
548 1.72 matt if (ia->ia_ifp->if_flags & IFF_BROADCAST) {
549 1.72 matt sin->sin_addr =
550 1.72 matt ia->ia_broadaddr.sin_addr;
551 1.72 matt break;
552 1.72 matt }
553 1.49 tls }
554 1.168 ozaki pserialize_read_exit(s);
555 1.72 matt }
556 1.1 cgd }
557 1.32 mycroft /*
558 1.32 mycroft * If we haven't bound which network number to use as ours,
559 1.32 mycroft * we will use the number of the outgoing interface.
560 1.32 mycroft * This depends on having done a routing lookup, which
561 1.32 mycroft * we will probably have to do anyway, so we might
562 1.32 mycroft * as well do it now. On the other hand if we are
563 1.32 mycroft * sending to multiple destinations we may have already
564 1.32 mycroft * done the lookup, so see if we can use the route
565 1.32 mycroft * from before. In any case, we only
566 1.32 mycroft * chose a port number once, even if sending to multiple
567 1.32 mycroft * destinations.
568 1.32 mycroft */
569 1.193 ozaki if (in_nullhost(in4p_laddr(inp))) {
570 1.100 christos int xerror;
571 1.168 ozaki struct in_ifaddr *ia, *_ia;
572 1.168 ozaki int s;
573 1.168 ozaki struct psref psref;
574 1.168 ozaki int bound;
575 1.168 ozaki
576 1.168 ozaki bound = curlwp_bind();
577 1.168 ozaki ia = in_selectsrc(sin, &inp->inp_route,
578 1.168 ozaki inp->inp_socket->so_options, inp->inp_moptions, &xerror,
579 1.168 ozaki &psref);
580 1.168 ozaki if (ia == NULL) {
581 1.168 ozaki curlwp_bindx(bound);
582 1.100 christos if (xerror == 0)
583 1.100 christos xerror = EADDRNOTAVAIL;
584 1.100 christos return xerror;
585 1.59 itojun }
586 1.168 ozaki s = pserialize_read_enter();
587 1.168 ozaki _ia = in_get_ia(IA_SIN(ia)->sin_addr);
588 1.185 christos if (_ia == NULL && (inp->inp_flags & INP_BINDANY) == 0) {
589 1.168 ozaki pserialize_read_exit(s);
590 1.168 ozaki ia4_release(ia, &psref);
591 1.168 ozaki curlwp_bindx(bound);
592 1.83 itojun return (EADDRNOTAVAIL);
593 1.168 ozaki }
594 1.168 ozaki pserialize_read_exit(s);
595 1.168 ozaki laddr = IA_SIN(ia)->sin_addr;
596 1.168 ozaki ia4_release(ia, &psref);
597 1.168 ozaki curlwp_bindx(bound);
598 1.167 ozaki } else
599 1.193 ozaki laddr = in4p_laddr(inp);
600 1.195 ozaki if (inpcb_lookup(inp->inp_table, sin->sin_addr, sin->sin_port,
601 1.168 ozaki laddr, inp->inp_lport, &vestige) != NULL ||
602 1.168 ozaki vestige.valid) {
603 1.1 cgd return (EADDRINUSE);
604 1.168 ozaki }
605 1.193 ozaki if (in_nullhost(in4p_laddr(inp))) {
606 1.40 thorpej if (inp->inp_lport == 0) {
607 1.195 ozaki error = inpcb_bind(inp, NULL, l);
608 1.40 thorpej /*
609 1.40 thorpej * This used to ignore the return value
610 1.40 thorpej * completely, but we need to check for
611 1.40 thorpej * ephemeral port shortage.
612 1.101 dsl * And attempts to request low ports if not root.
613 1.40 thorpej */
614 1.101 dsl if (error != 0)
615 1.40 thorpej return (error);
616 1.40 thorpej }
617 1.193 ozaki in4p_laddr(inp) = laddr;
618 1.1 cgd }
619 1.193 ozaki in4p_faddr(inp) = sin->sin_addr;
620 1.1 cgd inp->inp_fport = sin->sin_port;
621 1.139 christos
622 1.139 christos /* Late bind, if needed */
623 1.139 christos if (inp->inp_bindportonsend) {
624 1.139 christos struct sockaddr_in lsin = *((const struct sockaddr_in *)
625 1.139 christos inp->inp_socket->so_proto->pr_domain->dom_sa_any);
626 1.193 ozaki lsin.sin_addr = in4p_laddr(inp);
627 1.139 christos lsin.sin_port = 0;
628 1.139 christos
629 1.195 ozaki if ((error = inpcb_bind_port(inp, &lsin, l->l_cred)) != 0)
630 1.139 christos return error;
631 1.139 christos }
632 1.139 christos
633 1.195 ozaki inpcb_set_state(inp, INP_CONNECTED);
634 1.145 christos #if defined(IPSEC)
635 1.148 christos if (ipsec_enabled && inp->inp_socket->so_type == SOCK_STREAM)
636 1.71 itojun ipsec_pcbconn(inp->inp_sp);
637 1.71 itojun #endif
638 1.1 cgd return (0);
639 1.1 cgd }
640 1.1 cgd
641 1.25 christos void
642 1.195 ozaki inpcb_disconnect(void *v)
643 1.1 cgd {
644 1.25 christos struct inpcb *inp = v;
645 1.1 cgd
646 1.88 itojun if (inp->inp_af != AF_INET)
647 1.88 itojun return;
648 1.88 itojun
649 1.193 ozaki in4p_faddr(inp) = zeroin_addr;
650 1.1 cgd inp->inp_fport = 0;
651 1.195 ozaki inpcb_set_state(inp, INP_BOUND);
652 1.145 christos #if defined(IPSEC)
653 1.148 christos if (ipsec_enabled)
654 1.148 christos ipsec_pcbdisconn(inp->inp_sp);
655 1.71 itojun #endif
656 1.93 itojun if (inp->inp_socket->so_state & SS_NOFDREF)
657 1.195 ozaki inpcb_destroy(inp);
658 1.1 cgd }
659 1.1 cgd
660 1.25 christos void
661 1.195 ozaki inpcb_destroy(void *v)
662 1.1 cgd {
663 1.25 christos struct inpcb *inp = v;
664 1.1 cgd struct socket *so = inp->inp_socket;
665 1.24 mycroft int s;
666 1.1 cgd
667 1.192 ozaki KASSERT(inp->inp_af == AF_INET || inp->inp_af == AF_INET6);
668 1.88 itojun
669 1.145 christos #if defined(IPSEC)
670 1.148 christos if (ipsec_enabled)
671 1.182 maxv ipsec_delete_pcbpolicy(inp);
672 1.150 rmind #endif
673 1.150 rmind so->so_pcb = NULL;
674 1.150 rmind
675 1.175 ozaki s = splsoftnet();
676 1.195 ozaki inpcb_set_state(inp, INP_ATTACHED);
677 1.192 ozaki LIST_REMOVE(inp, inp_lhash);
678 1.192 ozaki TAILQ_REMOVE(&inp->inp_table->inpt_queue, inp, inp_queue);
679 1.24 mycroft splx(s);
680 1.150 rmind
681 1.150 rmind if (inp->inp_options) {
682 1.150 rmind m_free(inp->inp_options);
683 1.150 rmind }
684 1.150 rmind rtcache_free(&inp->inp_route);
685 1.152 rmind ip_freemoptions(inp->inp_moptions);
686 1.194 ozaki #ifdef INET6
687 1.193 ozaki if (inp->inp_af == AF_INET6) {
688 1.193 ozaki if (in6p_outputopts(inp) != NULL) {
689 1.193 ozaki ip6_clearpktopts(in6p_outputopts(inp), -1);
690 1.193 ozaki free(in6p_outputopts(inp), M_IP6OPT);
691 1.193 ozaki }
692 1.193 ozaki ip6_freemoptions(in6p_moptions(inp));
693 1.193 ozaki }
694 1.194 ozaki #endif
695 1.127 spz sofree(so); /* drops the socket's lock */
696 1.150 rmind
697 1.194 ozaki #ifdef INET6
698 1.193 ozaki if (inp->inp_af == AF_INET)
699 1.197 ozaki pool_cache_put(in4pcb_pool_cache, inp);
700 1.193 ozaki else
701 1.197 ozaki pool_cache_put(in6pcb_pool_cache, inp);
702 1.194 ozaki #else
703 1.194 ozaki KASSERT(inp->inp_af == AF_INET);
704 1.197 ozaki pool_cache_put(in4pcb_pool_cache, inp);
705 1.194 ozaki #endif
706 1.126 matt mutex_enter(softnet_lock); /* reacquire the softnet_lock */
707 1.1 cgd }
708 1.1 cgd
709 1.25 christos void
710 1.195 ozaki inpcb_fetch_sockaddr(struct inpcb *inp, struct sockaddr_in *sin)
711 1.1 cgd {
712 1.78 itojun
713 1.88 itojun if (inp->inp_af != AF_INET)
714 1.88 itojun return;
715 1.88 itojun
716 1.193 ozaki sockaddr_in_init(sin, &in4p_laddr(inp), inp->inp_lport);
717 1.1 cgd }
718 1.1 cgd
719 1.25 christos void
720 1.195 ozaki inpcb_fetch_peeraddr(struct inpcb *inp, struct sockaddr_in *sin)
721 1.1 cgd {
722 1.78 itojun
723 1.88 itojun if (inp->inp_af != AF_INET)
724 1.88 itojun return;
725 1.88 itojun
726 1.193 ozaki sockaddr_in_init(sin, &in4p_faddr(inp), inp->inp_fport);
727 1.1 cgd }
728 1.1 cgd
729 1.1 cgd /*
730 1.1 cgd * Pass some notification to all connections of a protocol
731 1.1 cgd * associated with address dst. The local address and/or port numbers
732 1.1 cgd * may be specified to limit the search. The "usual action" will be
733 1.1 cgd * taken, depending on the ctlinput cmd. The caller must filter any
734 1.1 cgd * cmds that are uninteresting (e.g., no error in the map).
735 1.1 cgd * Call the protocol specific routine (if any) to report
736 1.1 cgd * any errors for each matching socket.
737 1.1 cgd *
738 1.22 mycroft * Must be called at splsoftnet.
739 1.1 cgd */
740 1.37 thorpej int
741 1.195 ozaki inpcb_notify(struct inpcbtable *table, struct in_addr faddr, u_int fport_arg,
742 1.98 perry struct in_addr laddr, u_int lport_arg, int errno,
743 1.98 perry void (*notify)(struct inpcb *, int))
744 1.1 cgd {
745 1.33 mycroft struct inpcbhead *head;
746 1.188 knakahar struct inpcb *inp;
747 1.13 cgd u_int16_t fport = fport_arg, lport = lport_arg;
748 1.37 thorpej int nmatch;
749 1.1 cgd
750 1.33 mycroft if (in_nullhost(faddr) || notify == 0)
751 1.37 thorpej return (0);
752 1.1 cgd
753 1.37 thorpej nmatch = 0;
754 1.33 mycroft head = INPCBHASH_CONNECT(table, faddr, fport, laddr, lport);
755 1.192 ozaki LIST_FOREACH(inp, head, inp_hash) {
756 1.88 itojun if (inp->inp_af != AF_INET)
757 1.88 itojun continue;
758 1.188 knakahar
759 1.193 ozaki if (in_hosteq(in4p_faddr(inp), faddr) &&
760 1.33 mycroft inp->inp_fport == fport &&
761 1.33 mycroft inp->inp_lport == lport &&
762 1.193 ozaki in_hosteq(in4p_laddr(inp), laddr)) {
763 1.33 mycroft (*notify)(inp, errno);
764 1.37 thorpej nmatch++;
765 1.37 thorpej }
766 1.1 cgd }
767 1.37 thorpej return (nmatch);
768 1.18 mycroft }
769 1.18 mycroft
770 1.20 mycroft void
771 1.195 ozaki inpcb_notifyall(struct inpcbtable *table, struct in_addr faddr, int errno,
772 1.98 perry void (*notify)(struct inpcb *, int))
773 1.18 mycroft {
774 1.192 ozaki struct inpcb *inp;
775 1.18 mycroft
776 1.33 mycroft if (in_nullhost(faddr) || notify == 0)
777 1.18 mycroft return;
778 1.18 mycroft
779 1.192 ozaki TAILQ_FOREACH(inp, &table->inpt_queue, inp_queue) {
780 1.88 itojun if (inp->inp_af != AF_INET)
781 1.88 itojun continue;
782 1.193 ozaki if (in_hosteq(in4p_faddr(inp), faddr))
783 1.33 mycroft (*notify)(inp, errno);
784 1.63 thorpej }
785 1.63 thorpej }
786 1.63 thorpej
787 1.63 thorpej void
788 1.154 seanb in_purgeifmcast(struct ip_moptions *imo, struct ifnet *ifp)
789 1.154 seanb {
790 1.154 seanb int i, gap;
791 1.154 seanb
792 1.176 ozaki /* The owner of imo should be protected by solock */
793 1.164 ozaki KASSERT(ifp != NULL);
794 1.164 ozaki
795 1.154 seanb if (imo == NULL)
796 1.154 seanb return;
797 1.154 seanb
798 1.154 seanb /*
799 1.154 seanb * Unselect the outgoing interface if it is being
800 1.154 seanb * detached.
801 1.154 seanb */
802 1.164 ozaki if (imo->imo_multicast_if_index == ifp->if_index)
803 1.164 ozaki imo->imo_multicast_if_index = 0;
804 1.154 seanb
805 1.154 seanb /*
806 1.154 seanb * Drop multicast group membership if we joined
807 1.154 seanb * through the interface being detached.
808 1.154 seanb */
809 1.154 seanb for (i = 0, gap = 0; i < imo->imo_num_memberships; i++) {
810 1.154 seanb if (imo->imo_membership[i]->inm_ifp == ifp) {
811 1.154 seanb in_delmulti(imo->imo_membership[i]);
812 1.154 seanb gap++;
813 1.154 seanb } else if (gap != 0)
814 1.154 seanb imo->imo_membership[i - gap] = imo->imo_membership[i];
815 1.154 seanb }
816 1.154 seanb imo->imo_num_memberships -= gap;
817 1.154 seanb }
818 1.154 seanb
819 1.154 seanb void
820 1.195 ozaki inpcb_purgeif0(struct inpcbtable *table, struct ifnet *ifp)
821 1.63 thorpej {
822 1.192 ozaki struct inpcb *inp;
823 1.63 thorpej
824 1.192 ozaki TAILQ_FOREACH(inp, &table->inpt_queue, inp_queue) {
825 1.176 ozaki bool need_unlock = false;
826 1.176 ozaki
827 1.88 itojun if (inp->inp_af != AF_INET)
828 1.88 itojun continue;
829 1.176 ozaki
830 1.176 ozaki /* The caller holds either one of inps' lock */
831 1.176 ozaki if (!inp_locked(inp)) {
832 1.176 ozaki inp_lock(inp);
833 1.176 ozaki need_unlock = true;
834 1.176 ozaki }
835 1.176 ozaki
836 1.154 seanb in_purgeifmcast(inp->inp_moptions, ifp);
837 1.176 ozaki
838 1.176 ozaki if (need_unlock)
839 1.176 ozaki inp_unlock(inp);
840 1.69 itojun }
841 1.69 itojun }
842 1.69 itojun
843 1.69 itojun void
844 1.195 ozaki inpcb_purgeif(struct inpcbtable *table, struct ifnet *ifp)
845 1.69 itojun {
846 1.121 dyoung struct rtentry *rt;
847 1.192 ozaki struct inpcb *inp;
848 1.69 itojun
849 1.192 ozaki TAILQ_FOREACH(inp, &table->inpt_queue, inp_queue) {
850 1.88 itojun if (inp->inp_af != AF_INET)
851 1.88 itojun continue;
852 1.122 dyoung if ((rt = rtcache_validate(&inp->inp_route)) != NULL &&
853 1.171 ozaki rt->rt_ifp == ifp) {
854 1.171 ozaki rtcache_unref(rt, &inp->inp_route);
855 1.195 ozaki inpcb_rtchange(inp, 0);
856 1.171 ozaki } else
857 1.171 ozaki rtcache_unref(rt, &inp->inp_route);
858 1.1 cgd }
859 1.1 cgd }
860 1.1 cgd
861 1.1 cgd /*
862 1.1 cgd * Check for alternatives when higher level complains
863 1.1 cgd * about service problems. For now, invalidate cached
864 1.1 cgd * routing information. If the route was created dynamically
865 1.1 cgd * (by a redirect), time to try a default gateway again.
866 1.1 cgd */
867 1.25 christos void
868 1.195 ozaki inpcb_losing(struct inpcb *inp)
869 1.1 cgd {
870 1.64 augustss struct rtentry *rt;
871 1.10 mycroft struct rt_addrinfo info;
872 1.1 cgd
873 1.88 itojun if (inp->inp_af != AF_INET)
874 1.88 itojun return;
875 1.88 itojun
876 1.122 dyoung if ((rt = rtcache_validate(&inp->inp_route)) == NULL)
877 1.122 dyoung return;
878 1.122 dyoung
879 1.122 dyoung memset(&info, 0, sizeof(info));
880 1.122 dyoung info.rti_info[RTAX_DST] = rtcache_getdst(&inp->inp_route);
881 1.122 dyoung info.rti_info[RTAX_GATEWAY] = rt->rt_gateway;
882 1.122 dyoung info.rti_info[RTAX_NETMASK] = rt_mask(rt);
883 1.122 dyoung rt_missmsg(RTM_LOSING, &info, rt->rt_flags, 0);
884 1.171 ozaki if (rt->rt_flags & RTF_DYNAMIC) {
885 1.171 ozaki int error;
886 1.171 ozaki struct rtentry *nrt;
887 1.171 ozaki
888 1.171 ozaki error = rtrequest(RTM_DELETE, rt_getkey(rt),
889 1.171 ozaki rt->rt_gateway, rt_mask(rt), rt->rt_flags, &nrt);
890 1.171 ozaki rtcache_unref(rt, &inp->inp_route);
891 1.190 knakahar if (error == 0) {
892 1.190 knakahar rt_newmsg_dynamic(RTM_DELETE, nrt);
893 1.172 ozaki rt_free(nrt);
894 1.190 knakahar }
895 1.171 ozaki } else
896 1.171 ozaki rtcache_unref(rt, &inp->inp_route);
897 1.122 dyoung /*
898 1.122 dyoung * A new route can be allocated
899 1.122 dyoung * the next time output is attempted.
900 1.122 dyoung */
901 1.122 dyoung rtcache_free(&inp->inp_route);
902 1.1 cgd }
903 1.1 cgd
904 1.1 cgd /*
905 1.111 dyoung * After a routing change, flush old routing. A new route can be
906 1.111 dyoung * allocated the next time output is attempted.
907 1.1 cgd */
908 1.10 mycroft void
909 1.195 ozaki inpcb_rtchange(struct inpcb *inp, int errno)
910 1.1 cgd {
911 1.32 mycroft
912 1.88 itojun if (inp->inp_af != AF_INET)
913 1.88 itojun return;
914 1.88 itojun
915 1.112 joerg rtcache_free(&inp->inp_route);
916 1.112 joerg
917 1.49 tls /* XXX SHOULD NOTIFY HIGHER-LEVEL PROTOCOLS */
918 1.1 cgd }
919 1.1 cgd
920 1.1 cgd struct inpcb *
921 1.195 ozaki inpcb_lookup_local(struct inpcbtable *table, struct in_addr laddr,
922 1.138 dyoung u_int lport_arg, int lookup_wildcard, vestigial_inpcb_t *vp)
923 1.1 cgd {
924 1.90 provos struct inpcbhead *head;
925 1.192 ozaki struct inpcb *inp;
926 1.142 yamt struct inpcb *match = NULL;
927 1.142 yamt int matchwild = 3;
928 1.142 yamt int wildcard;
929 1.33 mycroft u_int16_t lport = lport_arg;
930 1.1 cgd
931 1.138 dyoung if (vp)
932 1.138 dyoung vp->valid = 0;
933 1.138 dyoung
934 1.90 provos head = INPCBHASH_PORT(table, lport);
935 1.192 ozaki LIST_FOREACH(inp, head, inp_lhash) {
936 1.88 itojun if (inp->inp_af != AF_INET)
937 1.88 itojun continue;
938 1.1 cgd if (inp->inp_lport != lport)
939 1.1 cgd continue;
940 1.142 yamt /*
941 1.142 yamt * check if inp's faddr and laddr match with ours.
942 1.142 yamt * our faddr is considered null.
943 1.142 yamt * count the number of wildcard matches. (0 - 2)
944 1.142 yamt *
945 1.142 yamt * null null match
946 1.142 yamt * A null wildcard match
947 1.142 yamt * null B wildcard match
948 1.142 yamt * A B non match
949 1.142 yamt * A A match
950 1.142 yamt */
951 1.1 cgd wildcard = 0;
952 1.193 ozaki if (!in_nullhost(in4p_faddr(inp)))
953 1.33 mycroft wildcard++;
954 1.193 ozaki if (in_nullhost(in4p_laddr(inp))) {
955 1.32 mycroft if (!in_nullhost(laddr))
956 1.1 cgd wildcard++;
957 1.1 cgd } else {
958 1.32 mycroft if (in_nullhost(laddr))
959 1.1 cgd wildcard++;
960 1.32 mycroft else {
961 1.193 ozaki if (!in_hosteq(in4p_laddr(inp), laddr))
962 1.32 mycroft continue;
963 1.32 mycroft }
964 1.1 cgd }
965 1.54 lukem if (wildcard && !lookup_wildcard)
966 1.1 cgd continue;
967 1.142 yamt /*
968 1.142 yamt * prefer an address with less wildcards.
969 1.142 yamt */
970 1.1 cgd if (wildcard < matchwild) {
971 1.1 cgd match = inp;
972 1.1 cgd matchwild = wildcard;
973 1.1 cgd if (matchwild == 0)
974 1.1 cgd break;
975 1.1 cgd }
976 1.1 cgd }
977 1.138 dyoung if (match && matchwild == 0)
978 1.138 dyoung return match;
979 1.138 dyoung
980 1.138 dyoung if (vp && table->vestige) {
981 1.138 dyoung void *state = (*table->vestige->init_ports4)(laddr, lport_arg, lookup_wildcard);
982 1.138 dyoung vestigial_inpcb_t better;
983 1.191 ryo bool has_better = false;
984 1.138 dyoung
985 1.138 dyoung while (table->vestige
986 1.138 dyoung && (*table->vestige->next_port4)(state, vp)) {
987 1.138 dyoung
988 1.138 dyoung if (vp->lport != lport)
989 1.138 dyoung continue;
990 1.138 dyoung wildcard = 0;
991 1.138 dyoung if (!in_nullhost(vp->faddr.v4))
992 1.138 dyoung wildcard++;
993 1.138 dyoung if (in_nullhost(vp->laddr.v4)) {
994 1.138 dyoung if (!in_nullhost(laddr))
995 1.138 dyoung wildcard++;
996 1.138 dyoung } else {
997 1.138 dyoung if (in_nullhost(laddr))
998 1.138 dyoung wildcard++;
999 1.138 dyoung else {
1000 1.138 dyoung if (!in_hosteq(vp->laddr.v4, laddr))
1001 1.138 dyoung continue;
1002 1.138 dyoung }
1003 1.138 dyoung }
1004 1.138 dyoung if (wildcard && !lookup_wildcard)
1005 1.138 dyoung continue;
1006 1.138 dyoung if (wildcard < matchwild) {
1007 1.138 dyoung better = *vp;
1008 1.191 ryo has_better = true;
1009 1.138 dyoung
1010 1.138 dyoung matchwild = wildcard;
1011 1.138 dyoung if (matchwild == 0)
1012 1.138 dyoung break;
1013 1.138 dyoung }
1014 1.138 dyoung }
1015 1.138 dyoung
1016 1.191 ryo if (has_better) {
1017 1.191 ryo *vp = better;
1018 1.191 ryo return 0;
1019 1.138 dyoung }
1020 1.138 dyoung }
1021 1.138 dyoung
1022 1.1 cgd return (match);
1023 1.24 mycroft }
1024 1.24 mycroft
1025 1.24 mycroft #ifdef DIAGNOSTIC
1026 1.195 ozaki int inpcb_notifymiss = 0;
1027 1.24 mycroft #endif
1028 1.24 mycroft
1029 1.24 mycroft struct inpcb *
1030 1.195 ozaki inpcb_lookup(struct inpcbtable *table,
1031 1.98 perry struct in_addr faddr, u_int fport_arg,
1032 1.138 dyoung struct in_addr laddr, u_int lport_arg,
1033 1.138 dyoung vestigial_inpcb_t *vp)
1034 1.24 mycroft {
1035 1.24 mycroft struct inpcbhead *head;
1036 1.64 augustss struct inpcb *inp;
1037 1.24 mycroft u_int16_t fport = fport_arg, lport = lport_arg;
1038 1.24 mycroft
1039 1.138 dyoung if (vp)
1040 1.138 dyoung vp->valid = 0;
1041 1.138 dyoung
1042 1.33 mycroft head = INPCBHASH_CONNECT(table, faddr, fport, laddr, lport);
1043 1.192 ozaki LIST_FOREACH(inp, head, inp_hash) {
1044 1.88 itojun if (inp->inp_af != AF_INET)
1045 1.88 itojun continue;
1046 1.88 itojun
1047 1.193 ozaki if (in_hosteq(in4p_faddr(inp), faddr) &&
1048 1.33 mycroft inp->inp_fport == fport &&
1049 1.33 mycroft inp->inp_lport == lport &&
1050 1.193 ozaki in_hosteq(in4p_laddr(inp), laddr))
1051 1.33 mycroft goto out;
1052 1.24 mycroft }
1053 1.138 dyoung if (vp && table->vestige) {
1054 1.138 dyoung if ((*table->vestige->lookup4)(faddr, fport_arg,
1055 1.138 dyoung laddr, lport_arg, vp))
1056 1.138 dyoung return 0;
1057 1.138 dyoung }
1058 1.138 dyoung
1059 1.24 mycroft #ifdef DIAGNOSTIC
1060 1.195 ozaki if (inpcb_notifymiss) {
1061 1.195 ozaki printf("inpcb_lookup: faddr=%08x fport=%d laddr=%08x lport=%d\n",
1062 1.24 mycroft ntohl(faddr.s_addr), ntohs(fport),
1063 1.24 mycroft ntohl(laddr.s_addr), ntohs(lport));
1064 1.24 mycroft }
1065 1.24 mycroft #endif
1066 1.33 mycroft return (0);
1067 1.33 mycroft
1068 1.33 mycroft out:
1069 1.33 mycroft /* Move this PCB to the head of hash chain. */
1070 1.192 ozaki if (inp != LIST_FIRST(head)) {
1071 1.192 ozaki LIST_REMOVE(inp, inp_hash);
1072 1.192 ozaki LIST_INSERT_HEAD(head, inp, inp_hash);
1073 1.33 mycroft }
1074 1.33 mycroft return (inp);
1075 1.33 mycroft }
1076 1.33 mycroft
1077 1.33 mycroft struct inpcb *
1078 1.195 ozaki inpcb_lookup_bound(struct inpcbtable *table,
1079 1.98 perry struct in_addr laddr, u_int lport_arg)
1080 1.33 mycroft {
1081 1.33 mycroft struct inpcbhead *head;
1082 1.64 augustss struct inpcb *inp;
1083 1.33 mycroft u_int16_t lport = lport_arg;
1084 1.33 mycroft
1085 1.33 mycroft head = INPCBHASH_BIND(table, laddr, lport);
1086 1.192 ozaki LIST_FOREACH(inp, head, inp_hash) {
1087 1.88 itojun if (inp->inp_af != AF_INET)
1088 1.88 itojun continue;
1089 1.88 itojun
1090 1.33 mycroft if (inp->inp_lport == lport &&
1091 1.193 ozaki in_hosteq(in4p_laddr(inp), laddr))
1092 1.33 mycroft goto out;
1093 1.33 mycroft }
1094 1.33 mycroft head = INPCBHASH_BIND(table, zeroin_addr, lport);
1095 1.192 ozaki LIST_FOREACH(inp, head, inp_hash) {
1096 1.88 itojun if (inp->inp_af != AF_INET)
1097 1.88 itojun continue;
1098 1.88 itojun
1099 1.33 mycroft if (inp->inp_lport == lport &&
1100 1.193 ozaki in_hosteq(in4p_laddr(inp), zeroin_addr))
1101 1.33 mycroft goto out;
1102 1.33 mycroft }
1103 1.33 mycroft #ifdef DIAGNOSTIC
1104 1.195 ozaki if (inpcb_notifymiss) {
1105 1.195 ozaki printf("inpcb_lookup_bound: laddr=%08x lport=%d\n",
1106 1.33 mycroft ntohl(laddr.s_addr), ntohs(lport));
1107 1.33 mycroft }
1108 1.33 mycroft #endif
1109 1.33 mycroft return (0);
1110 1.33 mycroft
1111 1.33 mycroft out:
1112 1.33 mycroft /* Move this PCB to the head of hash chain. */
1113 1.192 ozaki if (inp != LIST_FIRST(head)) {
1114 1.192 ozaki LIST_REMOVE(inp, inp_hash);
1115 1.192 ozaki LIST_INSERT_HEAD(head, inp, inp_hash);
1116 1.33 mycroft }
1117 1.24 mycroft return (inp);
1118 1.33 mycroft }
1119 1.33 mycroft
1120 1.33 mycroft void
1121 1.195 ozaki inpcb_set_state(struct inpcb *inp, int state)
1122 1.33 mycroft {
1123 1.33 mycroft
1124 1.194 ozaki #ifdef INET6
1125 1.192 ozaki if (inp->inp_af == AF_INET6) {
1126 1.196 ozaki in6pcb_set_state(inp, state);
1127 1.88 itojun return;
1128 1.192 ozaki }
1129 1.194 ozaki #else
1130 1.194 ozaki if (inp->inp_af != AF_INET)
1131 1.194 ozaki return;
1132 1.194 ozaki #endif
1133 1.88 itojun
1134 1.33 mycroft if (inp->inp_state > INP_ATTACHED)
1135 1.192 ozaki LIST_REMOVE(inp, inp_hash);
1136 1.33 mycroft
1137 1.33 mycroft switch (state) {
1138 1.33 mycroft case INP_BOUND:
1139 1.33 mycroft LIST_INSERT_HEAD(INPCBHASH_BIND(inp->inp_table,
1140 1.193 ozaki in4p_laddr(inp), inp->inp_lport), inp,
1141 1.192 ozaki inp_hash);
1142 1.33 mycroft break;
1143 1.33 mycroft case INP_CONNECTED:
1144 1.33 mycroft LIST_INSERT_HEAD(INPCBHASH_CONNECT(inp->inp_table,
1145 1.193 ozaki in4p_faddr(inp), inp->inp_fport,
1146 1.193 ozaki in4p_laddr(inp), inp->inp_lport), inp,
1147 1.192 ozaki inp_hash);
1148 1.33 mycroft break;
1149 1.33 mycroft }
1150 1.33 mycroft
1151 1.33 mycroft inp->inp_state = state;
1152 1.38 thorpej }
1153 1.38 thorpej
1154 1.38 thorpej struct rtentry *
1155 1.195 ozaki inpcb_rtentry(struct inpcb *inp)
1156 1.38 thorpej {
1157 1.38 thorpej struct route *ro;
1158 1.117 dyoung union {
1159 1.117 dyoung struct sockaddr dst;
1160 1.117 dyoung struct sockaddr_in dst4;
1161 1.117 dyoung } u;
1162 1.88 itojun
1163 1.194 ozaki #ifdef INET6
1164 1.192 ozaki if (inp->inp_af == AF_INET6)
1165 1.196 ozaki return in6pcb_rtentry(inp);
1166 1.194 ozaki #endif
1167 1.88 itojun if (inp->inp_af != AF_INET)
1168 1.88 itojun return (NULL);
1169 1.38 thorpej
1170 1.38 thorpej ro = &inp->inp_route;
1171 1.38 thorpej
1172 1.193 ozaki sockaddr_in_init(&u.dst4, &in4p_faddr(inp), 0);
1173 1.117 dyoung return rtcache_lookup(ro, &u.dst);
1174 1.59 itojun }
1175 1.171 ozaki
1176 1.171 ozaki void
1177 1.195 ozaki inpcb_rtentry_unref(struct rtentry *rt, struct inpcb *inp)
1178 1.171 ozaki {
1179 1.171 ozaki
1180 1.171 ozaki rtcache_unref(rt, &inp->inp_route);
1181 1.171 ozaki }
1182