in_proto.c revision 1.77 1 /* $NetBSD: in_proto.c,v 1.77 2006/10/10 21:49:14 dogcow Exp $ */
2
3 /*
4 * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project.
5 * All rights reserved.
6 *
7 * Redistribution and use in source and binary forms, with or without
8 * modification, are permitted provided that the following conditions
9 * are met:
10 * 1. Redistributions of source code must retain the above copyright
11 * notice, this list of conditions and the following disclaimer.
12 * 2. Redistributions in binary form must reproduce the above copyright
13 * notice, this list of conditions and the following disclaimer in the
14 * documentation and/or other materials provided with the distribution.
15 * 3. Neither the name of the project nor the names of its contributors
16 * may be used to endorse or promote products derived from this software
17 * without specific prior written permission.
18 *
19 * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
20 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
21 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
22 * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
23 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
24 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
25 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
26 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
27 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
28 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
29 * SUCH DAMAGE.
30 */
31
32 /*
33 * Copyright (c) 1982, 1986, 1993
34 * The Regents of the University of California. All rights reserved.
35 *
36 * Redistribution and use in source and binary forms, with or without
37 * modification, are permitted provided that the following conditions
38 * are met:
39 * 1. Redistributions of source code must retain the above copyright
40 * notice, this list of conditions and the following disclaimer.
41 * 2. Redistributions in binary form must reproduce the above copyright
42 * notice, this list of conditions and the following disclaimer in the
43 * documentation and/or other materials provided with the distribution.
44 * 3. Neither the name of the University nor the names of its contributors
45 * may be used to endorse or promote products derived from this software
46 * without specific prior written permission.
47 *
48 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
49 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
50 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
51 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
52 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
53 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
54 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
55 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
56 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
57 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
58 * SUCH DAMAGE.
59 *
60 * @(#)in_proto.c 8.2 (Berkeley) 2/9/95
61 */
62
63 #include <sys/cdefs.h>
64 __KERNEL_RCSID(0, "$NetBSD: in_proto.c,v 1.77 2006/10/10 21:49:14 dogcow Exp $");
65
66 #include "opt_mrouting.h"
67 #include "opt_eon.h" /* ISO CLNL over IP */
68 #include "opt_iso.h" /* ISO TP tunneled over IP */
69 #include "opt_inet.h"
70 #include "opt_ipsec.h"
71 #include "opt_pim.h"
72
73 #include <sys/param.h>
74 #include <sys/socket.h>
75 #include <sys/protosw.h>
76 #include <sys/domain.h>
77 #include <sys/mbuf.h>
78
79 #include <net/if.h>
80 #include <net/radix.h>
81 #include <net/route.h>
82
83 #include <netinet/in.h>
84 #include <netinet/in_systm.h>
85 #include <netinet/ip.h>
86 #include <netinet/ip_var.h>
87 #include <netinet/ip_icmp.h>
88 #include <netinet/in_pcb.h>
89 #include <netinet/in_proto.h>
90
91 #ifdef INET6
92 #ifndef INET
93 #include <netinet/in.h>
94 #endif
95 #include <netinet/ip6.h>
96 #endif
97
98 #include <netinet/igmp_var.h>
99 #ifdef PIM
100 #include <netinet/pim_var.h>
101 #endif
102 #include <netinet/tcp.h>
103 #include <netinet/tcp_fsm.h>
104 #include <netinet/tcp_seq.h>
105 #include <netinet/tcp_timer.h>
106 #include <netinet/tcp_var.h>
107 #include <netinet/tcpip.h>
108 #include <netinet/tcp_debug.h>
109 #include <netinet/udp.h>
110 #include <netinet/udp_var.h>
111 #include <netinet/ip_encap.h>
112 /*
113 * TCP/IP protocol family: IP, ICMP, UDP, TCP.
114 */
115
116 #ifdef IPSEC
117 #include <netinet6/ipsec.h>
118 #include <netinet6/ah.h>
119 #ifdef IPSEC_ESP
120 #include <netinet6/esp.h>
121 #endif
122 #include <netinet6/ipcomp.h>
123 #endif /* IPSEC */
124
125 #ifdef FAST_IPSEC
126 #include <netipsec/ipsec.h>
127 #include <netipsec/key.h>
128 #endif /* FAST_IPSEC */
129
130 #ifdef TPIP
131 #include <netiso/tp_param.h>
132 #include <netiso/tp_var.h>
133 #endif /* TPIP */
134
135 #ifdef EON
136 #include <netiso/eonvar.h>
137 #endif /* EON */
138
139 #include "gre.h"
140 #if NGRE > 0
141 #include <netinet/ip_gre.h>
142 #endif
143
144 #include "carp.h"
145 #if NCARP > 0
146 #include <netinet/ip_carp.h>
147 #endif
148
149 #include "bridge.h"
150
151 DOMAIN_DEFINE(inetdomain); /* forward declare and add to link set */
152
153 const struct protosw inetsw[] = {
154 { 0, &inetdomain, 0, 0,
155 0, ip_output, 0, 0,
156 0,
157 ip_init, 0, ip_slowtimo, ip_drain,
158 },
159 { SOCK_DGRAM, &inetdomain, IPPROTO_UDP, PR_ATOMIC|PR_ADDR|PR_PURGEIF,
160 udp_input, 0, udp_ctlinput, udp_ctloutput,
161 udp_usrreq,
162 udp_init, 0, 0, 0,
163 },
164 { SOCK_STREAM, &inetdomain, IPPROTO_TCP, PR_CONNREQUIRED|PR_WANTRCVD|PR_LISTEN|PR_ABRTACPTDIS|PR_PURGEIF,
165 tcp_input, 0, tcp_ctlinput, tcp_ctloutput,
166 tcp_usrreq,
167 tcp_init, 0, tcp_slowtimo, tcp_drain,
168 },
169 { SOCK_RAW, &inetdomain, IPPROTO_RAW, PR_ATOMIC|PR_ADDR|PR_PURGEIF,
170 rip_input, rip_output, rip_ctlinput, rip_ctloutput,
171 rip_usrreq,
172 0, 0, 0, 0,
173 },
174 { SOCK_RAW, &inetdomain, IPPROTO_ICMP, PR_ATOMIC|PR_ADDR|PR_LASTHDR,
175 icmp_input, rip_output, rip_ctlinput, rip_ctloutput,
176 rip_usrreq,
177 icmp_init, 0, 0, 0,
178 },
179 #ifdef IPSEC
180 { SOCK_RAW, &inetdomain, IPPROTO_AH, PR_ATOMIC|PR_ADDR,
181 ah4_input, 0, ah4_ctlinput, 0,
182 0,
183 0, 0, 0, 0,
184 },
185 #ifdef IPSEC_ESP
186 { SOCK_RAW, &inetdomain, IPPROTO_ESP, PR_ATOMIC|PR_ADDR,
187 esp4_input,
188 0, esp4_ctlinput, 0,
189 0,
190 0, 0, 0, 0,
191 },
192 #endif
193 { SOCK_RAW, &inetdomain, IPPROTO_IPCOMP, PR_ATOMIC|PR_ADDR,
194 ipcomp4_input,
195 0, 0, 0,
196 0,
197 0, 0, 0, 0,
198 },
199 #endif /* IPSEC */
200 #ifdef FAST_IPSEC
201 { SOCK_RAW, &inetdomain, IPPROTO_AH, PR_ATOMIC|PR_ADDR,
202 ipsec4_common_input, 0, ah4_ctlinput, 0,
203 0, 0, 0, 0, 0,
204 },
205 { SOCK_RAW, &inetdomain, IPPROTO_ESP, PR_ATOMIC|PR_ADDR,
206 ipsec4_common_input, 0, esp4_ctlinput, 0,
207 0,
208 0, 0, 0, 0,
209 },
210 { SOCK_RAW, &inetdomain, IPPROTO_IPCOMP, PR_ATOMIC|PR_ADDR,
211 ipsec4_common_input, 0, 0, 0,
212 0,
213 0, 0, 0, 0,
214 },
215 #endif /* FAST_IPSEC */
216 { SOCK_RAW, &inetdomain, IPPROTO_IPV4, PR_ATOMIC|PR_ADDR|PR_LASTHDR,
217 encap4_input, rip_output, rip_ctlinput, rip_ctloutput,
218 rip_usrreq, /*XXX*/
219 encap_init, 0, 0, 0,
220 },
221 #ifdef INET6
222 { SOCK_RAW, &inetdomain, IPPROTO_IPV6, PR_ATOMIC|PR_ADDR|PR_LASTHDR,
223 encap4_input, rip_output, rip_ctlinput, rip_ctloutput,
224 rip_usrreq, /*XXX*/
225 encap_init, 0, 0, 0,
226 },
227 #endif /* INET6 */
228 #if NBRIDGE > 0
229 { SOCK_RAW, &inetdomain, IPPROTO_ETHERIP, PR_ATOMIC|PR_ADDR|PR_LASTHDR,
230 encap4_input, rip_output, rip_ctlinput, rip_ctloutput,
231 rip_usrreq,
232 encap_init, 0, 0, 0,
233 },
234 #endif
235 #if NCARP > 0
236 { SOCK_RAW, &inetdomain, IPPROTO_CARP, PR_ATOMIC|PR_ADDR,
237 carp_proto_input, rip_output, 0, rip_ctloutput,
238 rip_usrreq,
239 0, 0, 0, 0,
240 },
241 #endif
242 #if NGRE > 0
243 { SOCK_RAW, &inetdomain, IPPROTO_GRE, PR_ATOMIC|PR_ADDR|PR_LASTHDR,
244 gre_input, rip_output, rip_ctlinput, rip_ctloutput,
245 rip_usrreq,
246 0, 0, 0, 0,
247 },
248 { SOCK_RAW, &inetdomain, IPPROTO_MOBILE, PR_ATOMIC|PR_ADDR|PR_LASTHDR,
249 gre_mobile_input, rip_output, rip_ctlinput, rip_ctloutput,
250 rip_usrreq,
251 0, 0, 0, 0,
252 },
253 #endif /* NGRE > 0 */
254 { SOCK_RAW, &inetdomain, IPPROTO_IGMP, PR_ATOMIC|PR_ADDR|PR_LASTHDR,
255 igmp_input, rip_output, rip_ctlinput, rip_ctloutput,
256 rip_usrreq,
257 NULL, igmp_fasttimo, igmp_slowtimo, 0,
258 },
259 #ifdef PIM
260 { SOCK_RAW, &inetdomain, IPPROTO_PIM, PR_ATOMIC|PR_ADDR|PR_LASTHDR,
261 pim_input, rip_output, rip_ctlinput, rip_ctloutput,
262 rip_usrreq,
263 NULL, 0, 0, 0,
264 },
265 #endif /* PIM */
266 #ifdef TPIP
267 { SOCK_SEQPACKET,&inetdomain, IPPROTO_TP, PR_CONNREQUIRED|PR_WANTRCVD|PR_LISTEN|PR_LASTHDR|PR_ABRTACPTDIS,
268 tpip_input, 0, tpip_ctlinput, tp_ctloutput,
269 tp_usrreq,
270 tp_init, 0, tp_slowtimo, tp_drain,
271 },
272 #endif /* TPIP */
273 #ifdef ISO
274 /* EON (ISO CLNL over IP) */
275 #ifdef EON
276 { SOCK_RAW, &inetdomain, IPPROTO_EON, PR_LASTHDR,
277 eoninput, 0, eonctlinput, 0,
278 0,
279 eonprotoinit, 0, 0, 0,
280 },
281 #else
282 { SOCK_RAW, &inetdomain, IPPROTO_EON, PR_ATOMIC|PR_ADDR|PR_LASTHDR,
283 encap4_input, rip_output, rip_ctlinput, rip_ctloutput,
284 rip_usrreq, /*XXX*/
285 encap_init, 0, 0, 0,
286 },
287 #endif /* EON */
288 #endif /* ISO */
289 /* raw wildcard */
290 { SOCK_RAW, &inetdomain, 0, PR_ATOMIC|PR_ADDR|PR_LASTHDR,
291 rip_input, rip_output, rip_ctlinput, rip_ctloutput,
292 rip_usrreq,
293 rip_init, 0, 0, 0,
294 },
295 };
296
297 extern struct ifqueue ipintrq;
298
299 struct domain inetdomain = {
300 PF_INET, "internet", 0, 0, 0,
301 inetsw, &inetsw[sizeof(inetsw)/sizeof(inetsw[0])],
302 rn_inithead, 32, sizeof(struct sockaddr_in), 0, 0,
303 { &ipintrq, NULL },
304 { NULL },
305 MOWNER_INIT("",""),
306 };
307
308 u_char ip_protox[IPPROTO_MAX];
309
310 int icmperrppslim = 100; /* 100pps */
311