Home | History | Annotate | Line # | Download | only in netinet
tcp_usrreq.c revision 1.93.4.1
      1  1.93.4.1      yamt /*	$NetBSD: tcp_usrreq.c,v 1.93.4.1 2005/02/12 18:17:54 yamt Exp $	*/
      2      1.40    itojun 
      3      1.40    itojun /*
      4      1.40    itojun  * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project.
      5      1.40    itojun  * All rights reserved.
      6      1.71    itojun  *
      7      1.40    itojun  * Redistribution and use in source and binary forms, with or without
      8      1.40    itojun  * modification, are permitted provided that the following conditions
      9      1.40    itojun  * are met:
     10      1.40    itojun  * 1. Redistributions of source code must retain the above copyright
     11      1.40    itojun  *    notice, this list of conditions and the following disclaimer.
     12      1.40    itojun  * 2. Redistributions in binary form must reproduce the above copyright
     13      1.40    itojun  *    notice, this list of conditions and the following disclaimer in the
     14      1.40    itojun  *    documentation and/or other materials provided with the distribution.
     15      1.40    itojun  * 3. Neither the name of the project nor the names of its contributors
     16      1.40    itojun  *    may be used to endorse or promote products derived from this software
     17      1.40    itojun  *    without specific prior written permission.
     18      1.71    itojun  *
     19      1.40    itojun  * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND
     20      1.40    itojun  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
     21      1.40    itojun  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
     22      1.40    itojun  * ARE DISCLAIMED.  IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE
     23      1.40    itojun  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
     24      1.40    itojun  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
     25      1.40    itojun  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
     26      1.40    itojun  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
     27      1.40    itojun  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
     28      1.40    itojun  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
     29      1.40    itojun  * SUCH DAMAGE.
     30      1.40    itojun  */
     31      1.34   thorpej 
     32      1.34   thorpej /*-
     33      1.34   thorpej  * Copyright (c) 1997, 1998 The NetBSD Foundation, Inc.
     34      1.34   thorpej  * All rights reserved.
     35      1.34   thorpej  *
     36      1.34   thorpej  * This code is derived from software contributed to The NetBSD Foundation
     37      1.34   thorpej  * by Jason R. Thorpe and Kevin M. Lahey of the Numerical Aerospace Simulation
     38      1.34   thorpej  * Facility, NASA Ames Research Center.
     39      1.34   thorpej  *
     40      1.34   thorpej  * Redistribution and use in source and binary forms, with or without
     41      1.34   thorpej  * modification, are permitted provided that the following conditions
     42      1.34   thorpej  * are met:
     43      1.34   thorpej  * 1. Redistributions of source code must retain the above copyright
     44      1.34   thorpej  *    notice, this list of conditions and the following disclaimer.
     45      1.34   thorpej  * 2. Redistributions in binary form must reproduce the above copyright
     46      1.34   thorpej  *    notice, this list of conditions and the following disclaimer in the
     47      1.34   thorpej  *    documentation and/or other materials provided with the distribution.
     48      1.34   thorpej  * 3. All advertising materials mentioning features or use of this software
     49      1.34   thorpej  *    must display the following acknowledgement:
     50      1.34   thorpej  *	This product includes software developed by the NetBSD
     51      1.34   thorpej  *	Foundation, Inc. and its contributors.
     52      1.34   thorpej  * 4. Neither the name of The NetBSD Foundation nor the names of its
     53      1.34   thorpej  *    contributors may be used to endorse or promote products derived
     54      1.34   thorpej  *    from this software without specific prior written permission.
     55      1.34   thorpej  *
     56      1.34   thorpej  * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
     57      1.34   thorpej  * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
     58      1.34   thorpej  * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
     59      1.34   thorpej  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
     60      1.34   thorpej  * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
     61      1.34   thorpej  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
     62      1.34   thorpej  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
     63      1.34   thorpej  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
     64      1.34   thorpej  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
     65      1.34   thorpej  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
     66      1.34   thorpej  * POSSIBILITY OF SUCH DAMAGE.
     67      1.34   thorpej  */
     68      1.10       cgd 
     69       1.1       cgd /*
     70      1.33   thorpej  * Copyright (c) 1982, 1986, 1988, 1993, 1995
     71       1.9   mycroft  *	The Regents of the University of California.  All rights reserved.
     72       1.1       cgd  *
     73       1.1       cgd  * Redistribution and use in source and binary forms, with or without
     74       1.1       cgd  * modification, are permitted provided that the following conditions
     75       1.1       cgd  * are met:
     76       1.1       cgd  * 1. Redistributions of source code must retain the above copyright
     77       1.1       cgd  *    notice, this list of conditions and the following disclaimer.
     78       1.1       cgd  * 2. Redistributions in binary form must reproduce the above copyright
     79       1.1       cgd  *    notice, this list of conditions and the following disclaimer in the
     80       1.1       cgd  *    documentation and/or other materials provided with the distribution.
     81      1.82       agc  * 3. Neither the name of the University nor the names of its contributors
     82       1.1       cgd  *    may be used to endorse or promote products derived from this software
     83       1.1       cgd  *    without specific prior written permission.
     84       1.1       cgd  *
     85       1.1       cgd  * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
     86       1.1       cgd  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
     87       1.1       cgd  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
     88       1.1       cgd  * ARE DISCLAIMED.  IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
     89       1.1       cgd  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
     90       1.1       cgd  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
     91       1.1       cgd  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
     92       1.1       cgd  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
     93       1.1       cgd  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
     94       1.1       cgd  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
     95       1.1       cgd  * SUCH DAMAGE.
     96       1.1       cgd  *
     97      1.33   thorpej  *	@(#)tcp_usrreq.c	8.5 (Berkeley) 6/21/95
     98       1.1       cgd  */
     99      1.67     lukem 
    100      1.67     lukem #include <sys/cdefs.h>
    101  1.93.4.1      yamt __KERNEL_RCSID(0, "$NetBSD: tcp_usrreq.c,v 1.93.4.1 2005/02/12 18:17:54 yamt Exp $");
    102       1.1       cgd 
    103      1.40    itojun #include "opt_inet.h"
    104      1.42   thorpej #include "opt_ipsec.h"
    105      1.63       abs #include "opt_tcp_debug.h"
    106      1.77    martin #include "opt_mbuftrace.h"
    107      1.40    itojun 
    108       1.5   mycroft #include <sys/param.h>
    109       1.5   mycroft #include <sys/systm.h>
    110      1.13     glass #include <sys/kernel.h>
    111       1.5   mycroft #include <sys/malloc.h>
    112       1.5   mycroft #include <sys/mbuf.h>
    113       1.5   mycroft #include <sys/socket.h>
    114       1.5   mycroft #include <sys/socketvar.h>
    115       1.5   mycroft #include <sys/protosw.h>
    116       1.5   mycroft #include <sys/errno.h>
    117       1.5   mycroft #include <sys/stat.h>
    118      1.20  christos #include <sys/proc.h>
    119      1.40    itojun #include <sys/domain.h>
    120      1.20  christos #include <sys/sysctl.h>
    121       1.1       cgd 
    122       1.5   mycroft #include <net/if.h>
    123       1.5   mycroft #include <net/route.h>
    124       1.1       cgd 
    125       1.5   mycroft #include <netinet/in.h>
    126       1.5   mycroft #include <netinet/in_systm.h>
    127      1.14       cgd #include <netinet/in_var.h>
    128       1.5   mycroft #include <netinet/ip.h>
    129       1.5   mycroft #include <netinet/in_pcb.h>
    130       1.5   mycroft #include <netinet/ip_var.h>
    131      1.40    itojun 
    132      1.40    itojun #ifdef INET6
    133      1.40    itojun #ifndef INET
    134      1.40    itojun #include <netinet/in.h>
    135      1.40    itojun #endif
    136      1.40    itojun #include <netinet/ip6.h>
    137      1.40    itojun #include <netinet6/in6_pcb.h>
    138      1.40    itojun #include <netinet6/ip6_var.h>
    139      1.40    itojun #endif
    140      1.40    itojun 
    141       1.5   mycroft #include <netinet/tcp.h>
    142       1.5   mycroft #include <netinet/tcp_fsm.h>
    143       1.5   mycroft #include <netinet/tcp_seq.h>
    144       1.5   mycroft #include <netinet/tcp_timer.h>
    145       1.5   mycroft #include <netinet/tcp_var.h>
    146       1.5   mycroft #include <netinet/tcpip.h>
    147       1.5   mycroft #include <netinet/tcp_debug.h>
    148      1.26   thorpej 
    149      1.68     lukem #include "opt_tcp_space.h"
    150       1.1       cgd 
    151      1.40    itojun #ifdef IPSEC
    152      1.40    itojun #include <netinet6/ipsec.h>
    153      1.40    itojun #endif /*IPSEC*/
    154      1.40    itojun 
    155       1.1       cgd /*
    156       1.1       cgd  * TCP protocol interface to socket abstraction.
    157       1.1       cgd  */
    158       1.1       cgd 
    159       1.1       cgd /*
    160       1.1       cgd  * Process a TCP user request for TCP tb.  If this is a send request
    161       1.1       cgd  * then m is the mbuf chain of send data.  If this is a timer expiration
    162       1.1       cgd  * (called from the software clock routine), then timertype tells which timer.
    163       1.1       cgd  */
    164       1.1       cgd /*ARGSUSED*/
    165       1.6   mycroft int
    166  1.93.4.1      yamt tcp_usrreq(struct socket *so, int req,
    167  1.93.4.1      yamt     struct mbuf *m, struct mbuf *nam, struct mbuf *control, struct proc *p)
    168      1.79   darrenr {
    169      1.49  augustss 	struct inpcb *inp;
    170      1.40    itojun #ifdef INET6
    171      1.49  augustss 	struct in6pcb *in6p;
    172      1.40    itojun #endif
    173      1.49  augustss 	struct tcpcb *tp = NULL;
    174       1.1       cgd 	int s;
    175       1.1       cgd 	int error = 0;
    176      1.74    simonb #ifdef TCP_DEBUG
    177      1.74    simonb 	int ostate = 0;
    178      1.74    simonb #endif
    179      1.40    itojun 	int family;	/* family of the socket */
    180      1.40    itojun 
    181      1.40    itojun 	family = so->so_proto->pr_domain->dom_family;
    182       1.1       cgd 
    183      1.40    itojun 	if (req == PRU_CONTROL) {
    184      1.40    itojun 		switch (family) {
    185      1.56    itojun #ifdef INET
    186      1.40    itojun 		case PF_INET:
    187      1.40    itojun 			return (in_control(so, (long)m, (caddr_t)nam,
    188      1.40    itojun 			    (struct ifnet *)control, p));
    189      1.56    itojun #endif
    190      1.40    itojun #ifdef INET6
    191      1.40    itojun 		case PF_INET6:
    192      1.40    itojun 			return (in6_control(so, (long)m, (caddr_t)nam,
    193      1.40    itojun 			    (struct ifnet *)control, p));
    194      1.40    itojun #endif
    195      1.40    itojun 		default:
    196      1.40    itojun 			return EAFNOSUPPORT;
    197      1.40    itojun 		}
    198      1.45   thorpej 	}
    199      1.45   thorpej 
    200      1.46   thorpej 	if (req == PRU_PURGEIF) {
    201      1.54     enami 		switch (family) {
    202      1.56    itojun #ifdef INET
    203      1.54     enami 		case PF_INET:
    204      1.62    itojun 			in_pcbpurgeif0(&tcbtable, (struct ifnet *)control);
    205      1.54     enami 			in_purgeif((struct ifnet *)control);
    206      1.54     enami 			in_pcbpurgeif(&tcbtable, (struct ifnet *)control);
    207      1.55     enami 			break;
    208      1.56    itojun #endif
    209      1.46   thorpej #ifdef INET6
    210      1.54     enami 		case PF_INET6:
    211      1.83    itojun 			in6_pcbpurgeif0(&tcbtable, (struct ifnet *)control);
    212      1.54     enami 			in6_purgeif((struct ifnet *)control);
    213      1.83    itojun 			in6_pcbpurgeif(&tcbtable, (struct ifnet *)control);
    214      1.55     enami 			break;
    215      1.46   thorpej #endif
    216      1.54     enami 		default:
    217      1.54     enami 			return (EAFNOSUPPORT);
    218      1.54     enami 		}
    219      1.45   thorpej 		return (0);
    220      1.40    itojun 	}
    221      1.22   mycroft 
    222      1.22   mycroft 	s = splsoftnet();
    223      1.40    itojun 	switch (family) {
    224      1.56    itojun #ifdef INET
    225      1.40    itojun 	case PF_INET:
    226      1.40    itojun 		inp = sotoinpcb(so);
    227      1.40    itojun #ifdef INET6
    228      1.40    itojun 		in6p = NULL;
    229      1.40    itojun #endif
    230      1.40    itojun 		break;
    231      1.56    itojun #endif
    232      1.40    itojun #ifdef INET6
    233      1.40    itojun 	case PF_INET6:
    234      1.40    itojun 		inp = NULL;
    235      1.40    itojun 		in6p = sotoin6pcb(so);
    236      1.40    itojun 		break;
    237      1.40    itojun #endif
    238      1.40    itojun 	default:
    239      1.40    itojun 		splx(s);
    240      1.40    itojun 		return EAFNOSUPPORT;
    241      1.40    itojun 	}
    242      1.40    itojun 
    243      1.23   mycroft #ifdef DIAGNOSTIC
    244      1.57    itojun #ifdef INET6
    245      1.56    itojun 	if (inp && in6p)
    246      1.56    itojun 		panic("tcp_usrreq: both inp and in6p set to non-NULL");
    247      1.57    itojun #endif
    248      1.23   mycroft 	if (req != PRU_SEND && req != PRU_SENDOOB && control)
    249      1.23   mycroft 		panic("tcp_usrreq: unexpected control mbuf");
    250      1.23   mycroft #endif
    251       1.1       cgd 	/*
    252       1.1       cgd 	 * When a TCP is attached to a socket, then there will be
    253       1.1       cgd 	 * a (struct inpcb) pointed at by the socket, and this
    254       1.1       cgd 	 * structure will point at a subsidary (struct tcpcb).
    255       1.1       cgd 	 */
    256      1.40    itojun #ifndef INET6
    257      1.40    itojun 	if (inp == 0 && req != PRU_ATTACH)
    258      1.40    itojun #else
    259      1.40    itojun 	if ((inp == 0 && in6p == 0) && req != PRU_ATTACH)
    260      1.40    itojun #endif
    261      1.40    itojun 	{
    262      1.22   mycroft 		error = EINVAL;
    263      1.22   mycroft 		goto release;
    264       1.1       cgd 	}
    265      1.56    itojun #ifdef INET
    266       1.1       cgd 	if (inp) {
    267       1.1       cgd 		tp = intotcpcb(inp);
    268       1.1       cgd 		/* WHAT IF TP IS 0? */
    269       1.1       cgd #ifdef KPROF
    270       1.1       cgd 		tcp_acounts[tp->t_state][req]++;
    271       1.1       cgd #endif
    272      1.74    simonb #ifdef TCP_DEBUG
    273       1.1       cgd 		ostate = tp->t_state;
    274      1.74    simonb #endif
    275      1.40    itojun 	}
    276      1.56    itojun #endif
    277      1.40    itojun #ifdef INET6
    278      1.56    itojun 	if (in6p) {
    279      1.40    itojun 		tp = in6totcpcb(in6p);
    280      1.40    itojun 		/* WHAT IF TP IS 0? */
    281      1.40    itojun #ifdef KPROF
    282      1.40    itojun 		tcp_acounts[tp->t_state][req]++;
    283      1.40    itojun #endif
    284      1.74    simonb #ifdef TCP_DEBUG
    285      1.40    itojun 		ostate = tp->t_state;
    286      1.74    simonb #endif
    287      1.40    itojun 	}
    288      1.40    itojun #endif
    289      1.22   mycroft 
    290       1.1       cgd 	switch (req) {
    291       1.1       cgd 
    292       1.1       cgd 	/*
    293       1.1       cgd 	 * TCP attaches to socket via PRU_ATTACH, reserving space,
    294       1.1       cgd 	 * and an internet control block.
    295       1.1       cgd 	 */
    296       1.1       cgd 	case PRU_ATTACH:
    297      1.40    itojun #ifndef INET6
    298      1.40    itojun 		if (inp != 0)
    299      1.40    itojun #else
    300      1.40    itojun 		if (inp != 0 || in6p != 0)
    301      1.40    itojun #endif
    302      1.40    itojun 		{
    303       1.1       cgd 			error = EISCONN;
    304       1.1       cgd 			break;
    305       1.1       cgd 		}
    306       1.1       cgd 		error = tcp_attach(so);
    307       1.1       cgd 		if (error)
    308       1.1       cgd 			break;
    309       1.1       cgd 		if ((so->so_options & SO_LINGER) && so->so_linger == 0)
    310      1.32   thorpej 			so->so_linger = TCP_LINGERTIME;
    311       1.1       cgd 		tp = sototcpcb(so);
    312       1.1       cgd 		break;
    313       1.1       cgd 
    314       1.1       cgd 	/*
    315       1.1       cgd 	 * PRU_DETACH detaches the TCP protocol from the socket.
    316       1.1       cgd 	 */
    317       1.1       cgd 	case PRU_DETACH:
    318      1.24    kleink 		tp = tcp_disconnect(tp);
    319       1.1       cgd 		break;
    320       1.1       cgd 
    321       1.1       cgd 	/*
    322       1.1       cgd 	 * Give the socket an address.
    323       1.1       cgd 	 */
    324       1.1       cgd 	case PRU_BIND:
    325      1.40    itojun 		switch (family) {
    326      1.56    itojun #ifdef INET
    327      1.40    itojun 		case PF_INET:
    328      1.40    itojun 			error = in_pcbbind(inp, nam, p);
    329      1.40    itojun 			break;
    330      1.56    itojun #endif
    331      1.40    itojun #ifdef INET6
    332      1.40    itojun 		case PF_INET6:
    333      1.51    itojun 			error = in6_pcbbind(in6p, nam, p);
    334      1.58    itojun 			if (!error) {
    335      1.58    itojun 				/* mapped addr case */
    336      1.58    itojun 				if (IN6_IS_ADDR_V4MAPPED(&in6p->in6p_laddr))
    337      1.58    itojun 					tp->t_family = AF_INET;
    338      1.58    itojun 				else
    339      1.58    itojun 					tp->t_family = AF_INET6;
    340      1.58    itojun 			}
    341      1.40    itojun 			break;
    342      1.40    itojun #endif
    343      1.40    itojun 		}
    344       1.1       cgd 		break;
    345       1.1       cgd 
    346       1.1       cgd 	/*
    347       1.1       cgd 	 * Prepare to accept connections.
    348       1.1       cgd 	 */
    349       1.1       cgd 	case PRU_LISTEN:
    350      1.56    itojun #ifdef INET
    351      1.40    itojun 		if (inp && inp->inp_lport == 0) {
    352      1.21   mycroft 			error = in_pcbbind(inp, (struct mbuf *)0,
    353      1.21   mycroft 			    (struct proc *)0);
    354      1.22   mycroft 			if (error)
    355      1.22   mycroft 				break;
    356      1.22   mycroft 		}
    357      1.56    itojun #endif
    358      1.40    itojun #ifdef INET6
    359      1.56    itojun 		if (in6p && in6p->in6p_lport == 0) {
    360      1.51    itojun 			error = in6_pcbbind(in6p, (struct mbuf *)0,
    361      1.51    itojun 			    (struct proc *)0);
    362      1.40    itojun 			if (error)
    363      1.40    itojun 				break;
    364      1.40    itojun 		}
    365      1.40    itojun #endif
    366      1.22   mycroft 		tp->t_state = TCPS_LISTEN;
    367       1.1       cgd 		break;
    368       1.1       cgd 
    369       1.1       cgd 	/*
    370       1.1       cgd 	 * Initiate connection to peer.
    371       1.1       cgd 	 * Create a template for use in transmissions on this connection.
    372       1.1       cgd 	 * Enter SYN_SENT state, and mark socket as connecting.
    373       1.1       cgd 	 * Start keep-alive timer, and seed output sequence space.
    374       1.1       cgd 	 * Send initial segment on connection.
    375       1.1       cgd 	 */
    376       1.1       cgd 	case PRU_CONNECT:
    377      1.56    itojun #ifdef INET
    378      1.40    itojun 		if (inp) {
    379      1.40    itojun 			if (inp->inp_lport == 0) {
    380      1.40    itojun 				error = in_pcbbind(inp, (struct mbuf *)0,
    381      1.40    itojun 				    (struct proc *)0);
    382      1.40    itojun 				if (error)
    383      1.40    itojun 					break;
    384      1.40    itojun 			}
    385      1.40    itojun 			error = in_pcbconnect(inp, nam);
    386      1.40    itojun 		}
    387      1.56    itojun #endif
    388      1.40    itojun #ifdef INET6
    389      1.56    itojun 		if (in6p) {
    390      1.40    itojun 			if (in6p->in6p_lport == 0) {
    391      1.51    itojun 				error = in6_pcbbind(in6p, (struct mbuf *)0,
    392      1.51    itojun 				    (struct proc *)0);
    393      1.40    itojun 				if (error)
    394      1.40    itojun 					break;
    395      1.40    itojun 			}
    396      1.40    itojun 			error = in6_pcbconnect(in6p, nam);
    397      1.58    itojun 			if (!error) {
    398      1.58    itojun 				/* mapped addr case */
    399      1.58    itojun 				if (IN6_IS_ADDR_V4MAPPED(&in6p->in6p_faddr))
    400      1.58    itojun 					tp->t_family = AF_INET;
    401      1.58    itojun 				else
    402      1.58    itojun 					tp->t_family = AF_INET6;
    403      1.58    itojun 			}
    404       1.1       cgd 		}
    405      1.40    itojun #endif
    406       1.1       cgd 		if (error)
    407       1.1       cgd 			break;
    408       1.1       cgd 		tp->t_template = tcp_template(tp);
    409       1.1       cgd 		if (tp->t_template == 0) {
    410      1.56    itojun #ifdef INET
    411      1.40    itojun 			if (inp)
    412      1.40    itojun 				in_pcbdisconnect(inp);
    413      1.56    itojun #endif
    414      1.40    itojun #ifdef INET6
    415      1.56    itojun 			if (in6p)
    416      1.40    itojun 				in6_pcbdisconnect(in6p);
    417      1.40    itojun #endif
    418       1.1       cgd 			error = ENOBUFS;
    419       1.1       cgd 			break;
    420       1.1       cgd 		}
    421       1.9   mycroft 		/* Compute window scaling to request.  */
    422       1.9   mycroft 		while (tp->request_r_scale < TCP_MAX_WINSHIFT &&
    423       1.9   mycroft 		    (TCP_MAXWIN << tp->request_r_scale) < so->so_rcv.sb_hiwat)
    424       1.9   mycroft 			tp->request_r_scale++;
    425       1.1       cgd 		soisconnecting(so);
    426       1.1       cgd 		tcpstat.tcps_connattempt++;
    427       1.1       cgd 		tp->t_state = TCPS_SYN_SENT;
    428      1.37   thorpej 		TCP_TIMER_ARM(tp, TCPT_KEEP, TCPTV_KEEP_INIT);
    429      1.61   thorpej 		tp->iss = tcp_new_iss(tp, 0);
    430       1.1       cgd 		tcp_sendseqinit(tp);
    431       1.1       cgd 		error = tcp_output(tp);
    432       1.1       cgd 		break;
    433       1.1       cgd 
    434       1.1       cgd 	/*
    435       1.1       cgd 	 * Create a TCP connection between two sockets.
    436       1.1       cgd 	 */
    437       1.1       cgd 	case PRU_CONNECT2:
    438       1.1       cgd 		error = EOPNOTSUPP;
    439       1.1       cgd 		break;
    440       1.1       cgd 
    441       1.1       cgd 	/*
    442       1.1       cgd 	 * Initiate disconnect from peer.
    443       1.1       cgd 	 * If connection never passed embryonic stage, just drop;
    444       1.1       cgd 	 * else if don't need to let data drain, then can just drop anyways,
    445       1.1       cgd 	 * else have to begin TCP shutdown process: mark socket disconnecting,
    446       1.1       cgd 	 * drain unread data, state switch to reflect user close, and
    447       1.1       cgd 	 * send segment (e.g. FIN) to peer.  Socket will be really disconnected
    448       1.1       cgd 	 * when peer sends FIN and acks ours.
    449       1.1       cgd 	 *
    450       1.1       cgd 	 * SHOULD IMPLEMENT LATER PRU_CONNECT VIA REALLOC TCPCB.
    451       1.1       cgd 	 */
    452       1.1       cgd 	case PRU_DISCONNECT:
    453       1.1       cgd 		tp = tcp_disconnect(tp);
    454       1.1       cgd 		break;
    455       1.1       cgd 
    456       1.1       cgd 	/*
    457       1.1       cgd 	 * Accept a connection.  Essentially all the work is
    458       1.1       cgd 	 * done at higher levels; just return the address
    459       1.1       cgd 	 * of the peer, storing through addr.
    460       1.1       cgd 	 */
    461       1.8   mycroft 	case PRU_ACCEPT:
    462      1.56    itojun #ifdef INET
    463      1.40    itojun 		if (inp)
    464      1.40    itojun 			in_setpeeraddr(inp, nam);
    465      1.56    itojun #endif
    466      1.40    itojun #ifdef INET6
    467      1.56    itojun 		if (in6p)
    468      1.40    itojun 			in6_setpeeraddr(in6p, nam);
    469      1.40    itojun #endif
    470       1.1       cgd 		break;
    471       1.1       cgd 
    472       1.1       cgd 	/*
    473       1.1       cgd 	 * Mark the connection as being incapable of further output.
    474       1.1       cgd 	 */
    475       1.1       cgd 	case PRU_SHUTDOWN:
    476       1.1       cgd 		socantsendmore(so);
    477       1.1       cgd 		tp = tcp_usrclosed(tp);
    478       1.1       cgd 		if (tp)
    479       1.1       cgd 			error = tcp_output(tp);
    480       1.1       cgd 		break;
    481       1.1       cgd 
    482       1.1       cgd 	/*
    483       1.1       cgd 	 * After a receive, possibly send window update to peer.
    484       1.1       cgd 	 */
    485       1.1       cgd 	case PRU_RCVD:
    486      1.60    itojun 		/*
    487      1.60    itojun 		 * soreceive() calls this function when a user receives
    488      1.60    itojun 		 * ancillary data on a listening socket. We don't call
    489      1.60    itojun 		 * tcp_output in such a case, since there is no header
    490      1.60    itojun 		 * template for a listening socket and hence the kernel
    491      1.60    itojun 		 * will panic.
    492      1.60    itojun 		 */
    493      1.60    itojun 		if ((so->so_state & (SS_ISCONNECTED|SS_ISCONNECTING)) != 0)
    494      1.60    itojun 			(void) tcp_output(tp);
    495       1.1       cgd 		break;
    496       1.1       cgd 
    497       1.1       cgd 	/*
    498       1.1       cgd 	 * Do a send by putting data in output queue and updating urgent
    499       1.1       cgd 	 * marker if URG set.  Possibly send more data.
    500       1.1       cgd 	 */
    501       1.1       cgd 	case PRU_SEND:
    502      1.23   mycroft 		if (control && control->m_len) {
    503      1.23   mycroft 			m_freem(control);
    504      1.23   mycroft 			m_freem(m);
    505      1.23   mycroft 			error = EINVAL;
    506      1.23   mycroft 			break;
    507      1.23   mycroft 		}
    508      1.73   thorpej 		sbappendstream(&so->so_snd, m);
    509       1.1       cgd 		error = tcp_output(tp);
    510       1.1       cgd 		break;
    511       1.1       cgd 
    512       1.1       cgd 	/*
    513       1.1       cgd 	 * Abort the TCP.
    514       1.1       cgd 	 */
    515       1.1       cgd 	case PRU_ABORT:
    516       1.1       cgd 		tp = tcp_drop(tp, ECONNABORTED);
    517       1.1       cgd 		break;
    518       1.1       cgd 
    519       1.1       cgd 	case PRU_SENSE:
    520      1.22   mycroft 		/*
    521      1.22   mycroft 		 * stat: don't bother with a blocksize.
    522      1.22   mycroft 		 */
    523      1.22   mycroft 		splx(s);
    524       1.1       cgd 		return (0);
    525       1.1       cgd 
    526       1.1       cgd 	case PRU_RCVOOB:
    527      1.23   mycroft 		if (control && control->m_len) {
    528      1.23   mycroft 			m_freem(control);
    529      1.23   mycroft 			m_freem(m);
    530      1.23   mycroft 			error = EINVAL;
    531      1.23   mycroft 			break;
    532      1.23   mycroft 		}
    533       1.1       cgd 		if ((so->so_oobmark == 0 &&
    534       1.1       cgd 		    (so->so_state & SS_RCVATMARK) == 0) ||
    535       1.1       cgd 		    so->so_options & SO_OOBINLINE ||
    536       1.1       cgd 		    tp->t_oobflags & TCPOOB_HADDATA) {
    537       1.1       cgd 			error = EINVAL;
    538       1.1       cgd 			break;
    539       1.1       cgd 		}
    540       1.1       cgd 		if ((tp->t_oobflags & TCPOOB_HAVEDATA) == 0) {
    541       1.1       cgd 			error = EWOULDBLOCK;
    542       1.1       cgd 			break;
    543       1.1       cgd 		}
    544       1.1       cgd 		m->m_len = 1;
    545       1.1       cgd 		*mtod(m, caddr_t) = tp->t_iobc;
    546      1.14       cgd 		if (((long)nam & MSG_PEEK) == 0)
    547       1.1       cgd 			tp->t_oobflags ^= (TCPOOB_HAVEDATA | TCPOOB_HADDATA);
    548       1.1       cgd 		break;
    549       1.1       cgd 
    550       1.1       cgd 	case PRU_SENDOOB:
    551       1.1       cgd 		if (sbspace(&so->so_snd) < -512) {
    552       1.1       cgd 			m_freem(m);
    553       1.1       cgd 			error = ENOBUFS;
    554       1.1       cgd 			break;
    555       1.1       cgd 		}
    556       1.1       cgd 		/*
    557       1.1       cgd 		 * According to RFC961 (Assigned Protocols),
    558       1.1       cgd 		 * the urgent pointer points to the last octet
    559       1.1       cgd 		 * of urgent data.  We continue, however,
    560       1.1       cgd 		 * to consider it to indicate the first octet
    561       1.1       cgd 		 * of data past the urgent section.
    562       1.1       cgd 		 * Otherwise, snd_up should be one lower.
    563       1.1       cgd 		 */
    564      1.73   thorpej 		sbappendstream(&so->so_snd, m);
    565       1.1       cgd 		tp->snd_up = tp->snd_una + so->so_snd.sb_cc;
    566       1.1       cgd 		tp->t_force = 1;
    567       1.1       cgd 		error = tcp_output(tp);
    568       1.1       cgd 		tp->t_force = 0;
    569       1.1       cgd 		break;
    570       1.1       cgd 
    571       1.1       cgd 	case PRU_SOCKADDR:
    572      1.56    itojun #ifdef INET
    573      1.40    itojun 		if (inp)
    574      1.40    itojun 			in_setsockaddr(inp, nam);
    575      1.56    itojun #endif
    576      1.40    itojun #ifdef INET6
    577      1.56    itojun 		if (in6p)
    578      1.40    itojun 			in6_setsockaddr(in6p, nam);
    579      1.40    itojun #endif
    580       1.1       cgd 		break;
    581       1.1       cgd 
    582       1.1       cgd 	case PRU_PEERADDR:
    583      1.56    itojun #ifdef INET
    584      1.40    itojun 		if (inp)
    585      1.40    itojun 			in_setpeeraddr(inp, nam);
    586      1.56    itojun #endif
    587      1.40    itojun #ifdef INET6
    588      1.56    itojun 		if (in6p)
    589      1.40    itojun 			in6_setpeeraddr(in6p, nam);
    590      1.40    itojun #endif
    591       1.1       cgd 		break;
    592       1.1       cgd 
    593       1.1       cgd 	default:
    594       1.1       cgd 		panic("tcp_usrreq");
    595       1.1       cgd 	}
    596      1.63       abs #ifdef TCP_DEBUG
    597       1.1       cgd 	if (tp && (so->so_options & SO_DEBUG))
    598      1.40    itojun 		tcp_trace(TA_USER, ostate, tp, NULL, req);
    599      1.63       abs #endif
    600      1.22   mycroft 
    601      1.22   mycroft release:
    602       1.1       cgd 	splx(s);
    603       1.1       cgd 	return (error);
    604       1.1       cgd }
    605       1.1       cgd 
    606       1.6   mycroft int
    607  1.93.4.1      yamt tcp_ctloutput(int op, struct socket *so, int level, int optname,
    608  1.93.4.1      yamt     struct mbuf **mp)
    609       1.1       cgd {
    610       1.9   mycroft 	int error = 0, s;
    611       1.9   mycroft 	struct inpcb *inp;
    612      1.40    itojun #ifdef INET6
    613      1.49  augustss 	struct in6pcb *in6p;
    614      1.40    itojun #endif
    615      1.49  augustss 	struct tcpcb *tp;
    616      1.49  augustss 	struct mbuf *m;
    617      1.49  augustss 	int i;
    618      1.40    itojun 	int family;	/* family of the socket */
    619      1.40    itojun 
    620      1.40    itojun 	family = so->so_proto->pr_domain->dom_family;
    621       1.1       cgd 
    622      1.16   mycroft 	s = splsoftnet();
    623      1.40    itojun 	switch (family) {
    624      1.56    itojun #ifdef INET
    625      1.40    itojun 	case PF_INET:
    626      1.40    itojun 		inp = sotoinpcb(so);
    627      1.40    itojun #ifdef INET6
    628      1.40    itojun 		in6p = NULL;
    629      1.40    itojun #endif
    630      1.40    itojun 		break;
    631      1.56    itojun #endif
    632      1.40    itojun #ifdef INET6
    633      1.40    itojun 	case PF_INET6:
    634      1.40    itojun 		inp = NULL;
    635      1.40    itojun 		in6p = sotoin6pcb(so);
    636      1.40    itojun 		break;
    637      1.40    itojun #endif
    638      1.40    itojun 	default:
    639      1.40    itojun 		splx(s);
    640      1.40    itojun 		return EAFNOSUPPORT;
    641      1.40    itojun 	}
    642      1.40    itojun #ifndef INET6
    643      1.40    itojun 	if (inp == NULL)
    644      1.40    itojun #else
    645      1.40    itojun 	if (inp == NULL && in6p == NULL)
    646      1.40    itojun #endif
    647      1.40    itojun 	{
    648       1.9   mycroft 		splx(s);
    649       1.9   mycroft 		if (op == PRCO_SETOPT && *mp)
    650       1.9   mycroft 			(void) m_free(*mp);
    651       1.9   mycroft 		return (ECONNRESET);
    652       1.9   mycroft 	}
    653       1.9   mycroft 	if (level != IPPROTO_TCP) {
    654      1.40    itojun 		switch (family) {
    655      1.56    itojun #ifdef INET
    656      1.40    itojun 		case PF_INET:
    657      1.40    itojun 			error = ip_ctloutput(op, so, level, optname, mp);
    658      1.40    itojun 			break;
    659      1.56    itojun #endif
    660      1.40    itojun #ifdef INET6
    661      1.40    itojun 		case PF_INET6:
    662      1.40    itojun 			error = ip6_ctloutput(op, so, level, optname, mp);
    663      1.40    itojun 			break;
    664      1.40    itojun #endif
    665      1.40    itojun 		}
    666       1.9   mycroft 		splx(s);
    667       1.9   mycroft 		return (error);
    668       1.9   mycroft 	}
    669      1.40    itojun 	if (inp)
    670      1.40    itojun 		tp = intotcpcb(inp);
    671      1.40    itojun #ifdef INET6
    672      1.40    itojun 	else if (in6p)
    673      1.40    itojun 		tp = in6totcpcb(in6p);
    674      1.40    itojun #endif
    675      1.40    itojun 	else
    676      1.40    itojun 		tp = NULL;
    677       1.1       cgd 
    678       1.1       cgd 	switch (op) {
    679       1.1       cgd 
    680       1.1       cgd 	case PRCO_SETOPT:
    681       1.1       cgd 		m = *mp;
    682       1.1       cgd 		switch (optname) {
    683       1.1       cgd 
    684      1.90  jonathan #ifdef TCP_SIGNATURE
    685      1.90  jonathan 		case TCP_MD5SIG:
    686      1.90  jonathan 			if (m == NULL || m->m_len < sizeof (int))
    687      1.90  jonathan 				error = EINVAL;
    688      1.90  jonathan 			if (error)
    689      1.90  jonathan 				break;
    690      1.91    itojun 			if (*mtod(m, int *) > 0)
    691      1.90  jonathan 				tp->t_flags |= TF_SIGNATURE;
    692      1.91    itojun 			else
    693      1.90  jonathan 				tp->t_flags &= ~TF_SIGNATURE;
    694      1.90  jonathan 			break;
    695      1.90  jonathan #endif /* TCP_SIGNATURE */
    696      1.90  jonathan 
    697       1.1       cgd 		case TCP_NODELAY:
    698       1.1       cgd 			if (m == NULL || m->m_len < sizeof (int))
    699       1.1       cgd 				error = EINVAL;
    700       1.1       cgd 			else if (*mtod(m, int *))
    701       1.1       cgd 				tp->t_flags |= TF_NODELAY;
    702       1.1       cgd 			else
    703       1.1       cgd 				tp->t_flags &= ~TF_NODELAY;
    704       1.1       cgd 			break;
    705       1.1       cgd 
    706       1.9   mycroft 		case TCP_MAXSEG:
    707      1.71    itojun 			if (m && (i = *mtod(m, int *)) > 0 &&
    708      1.28       kml 			    i <= tp->t_peermss)
    709      1.28       kml 				tp->t_peermss = i;  /* limit on send size */
    710       1.9   mycroft 			else
    711       1.9   mycroft 				error = EINVAL;
    712       1.9   mycroft 			break;
    713       1.9   mycroft 
    714       1.1       cgd 		default:
    715       1.9   mycroft 			error = ENOPROTOOPT;
    716       1.1       cgd 			break;
    717       1.1       cgd 		}
    718       1.1       cgd 		if (m)
    719       1.1       cgd 			(void) m_free(m);
    720       1.1       cgd 		break;
    721       1.1       cgd 
    722       1.1       cgd 	case PRCO_GETOPT:
    723       1.1       cgd 		*mp = m = m_get(M_WAIT, MT_SOOPTS);
    724       1.1       cgd 		m->m_len = sizeof(int);
    725      1.75      matt 		MCLAIM(m, so->so_mowner);
    726       1.1       cgd 
    727       1.1       cgd 		switch (optname) {
    728      1.90  jonathan #ifdef TCP_SIGNATURE
    729      1.90  jonathan 		case TCP_MD5SIG:
    730      1.91    itojun 			*mtod(m, int *) = (tp->t_flags & TF_SIGNATURE) ? 1 : 0;
    731      1.90  jonathan 			break;
    732      1.90  jonathan #endif
    733       1.1       cgd 		case TCP_NODELAY:
    734       1.1       cgd 			*mtod(m, int *) = tp->t_flags & TF_NODELAY;
    735       1.1       cgd 			break;
    736       1.1       cgd 		case TCP_MAXSEG:
    737      1.28       kml 			*mtod(m, int *) = tp->t_peermss;
    738       1.1       cgd 			break;
    739       1.1       cgd 		default:
    740       1.9   mycroft 			error = ENOPROTOOPT;
    741       1.1       cgd 			break;
    742       1.1       cgd 		}
    743       1.1       cgd 		break;
    744       1.1       cgd 	}
    745       1.9   mycroft 	splx(s);
    746       1.1       cgd 	return (error);
    747       1.1       cgd }
    748       1.1       cgd 
    749      1.11   mycroft #ifndef TCP_SENDSPACE
    750      1.84       tls #define	TCP_SENDSPACE	1024*32
    751      1.11   mycroft #endif
    752      1.25   thorpej int	tcp_sendspace = TCP_SENDSPACE;
    753      1.11   mycroft #ifndef TCP_RECVSPACE
    754      1.84       tls #define	TCP_RECVSPACE	1024*32
    755      1.11   mycroft #endif
    756      1.25   thorpej int	tcp_recvspace = TCP_RECVSPACE;
    757       1.1       cgd 
    758       1.1       cgd /*
    759       1.1       cgd  * Attach TCP protocol to socket, allocating
    760       1.1       cgd  * internet protocol control block, tcp control block,
    761       1.1       cgd  * bufer space, and entering LISTEN state if to accept connections.
    762       1.1       cgd  */
    763       1.6   mycroft int
    764  1.93.4.1      yamt tcp_attach(struct socket *so)
    765       1.1       cgd {
    766      1.49  augustss 	struct tcpcb *tp;
    767       1.1       cgd 	struct inpcb *inp;
    768      1.40    itojun #ifdef INET6
    769      1.40    itojun 	struct in6pcb *in6p;
    770      1.40    itojun #endif
    771       1.1       cgd 	int error;
    772      1.40    itojun 	int family;	/* family of the socket */
    773      1.40    itojun 
    774      1.40    itojun 	family = so->so_proto->pr_domain->dom_family;
    775       1.1       cgd 
    776      1.75      matt #ifdef MBUFTRACE
    777      1.75      matt 	so->so_mowner = &tcp_mowner;
    778      1.75      matt 	so->so_rcv.sb_mowner = &tcp_rx_mowner;
    779      1.75      matt 	so->so_snd.sb_mowner = &tcp_tx_mowner;
    780      1.75      matt #endif
    781       1.1       cgd 	if (so->so_snd.sb_hiwat == 0 || so->so_rcv.sb_hiwat == 0) {
    782       1.1       cgd 		error = soreserve(so, tcp_sendspace, tcp_recvspace);
    783       1.1       cgd 		if (error)
    784       1.1       cgd 			return (error);
    785       1.1       cgd 	}
    786      1.40    itojun 	switch (family) {
    787      1.56    itojun #ifdef INET
    788      1.40    itojun 	case PF_INET:
    789      1.40    itojun 		error = in_pcballoc(so, &tcbtable);
    790      1.40    itojun 		if (error)
    791      1.40    itojun 			return (error);
    792      1.40    itojun 		inp = sotoinpcb(so);
    793      1.40    itojun #ifdef INET6
    794      1.40    itojun 		in6p = NULL;
    795      1.40    itojun #endif
    796      1.40    itojun 		break;
    797      1.56    itojun #endif
    798      1.40    itojun #ifdef INET6
    799      1.40    itojun 	case PF_INET6:
    800      1.83    itojun 		error = in6_pcballoc(so, &tcbtable);
    801      1.40    itojun 		if (error)
    802      1.40    itojun 			return (error);
    803      1.40    itojun 		inp = NULL;
    804      1.40    itojun 		in6p = sotoin6pcb(so);
    805      1.40    itojun 		break;
    806      1.40    itojun #endif
    807      1.40    itojun 	default:
    808      1.40    itojun 		return EAFNOSUPPORT;
    809      1.40    itojun 	}
    810      1.40    itojun 	if (inp)
    811      1.40    itojun 		tp = tcp_newtcpcb(family, (void *)inp);
    812      1.40    itojun #ifdef INET6
    813      1.40    itojun 	else if (in6p)
    814      1.40    itojun 		tp = tcp_newtcpcb(family, (void *)in6p);
    815      1.40    itojun #endif
    816      1.41    itojun 	else
    817      1.41    itojun 		tp = NULL;
    818      1.40    itojun 
    819       1.1       cgd 	if (tp == 0) {
    820       1.1       cgd 		int nofd = so->so_state & SS_NOFDREF;	/* XXX */
    821       1.1       cgd 
    822       1.1       cgd 		so->so_state &= ~SS_NOFDREF;	/* don't free the socket yet */
    823      1.56    itojun #ifdef INET
    824      1.40    itojun 		if (inp)
    825      1.40    itojun 			in_pcbdetach(inp);
    826      1.56    itojun #endif
    827      1.40    itojun #ifdef INET6
    828      1.56    itojun 		if (in6p)
    829      1.40    itojun 			in6_pcbdetach(in6p);
    830      1.40    itojun #endif
    831       1.1       cgd 		so->so_state |= nofd;
    832       1.1       cgd 		return (ENOBUFS);
    833       1.1       cgd 	}
    834       1.1       cgd 	tp->t_state = TCPS_CLOSED;
    835       1.1       cgd 	return (0);
    836       1.1       cgd }
    837       1.1       cgd 
    838       1.1       cgd /*
    839       1.1       cgd  * Initiate (or continue) disconnect.
    840       1.1       cgd  * If embryonic state, just send reset (once).
    841       1.1       cgd  * If in ``let data drain'' option and linger null, just drop.
    842       1.1       cgd  * Otherwise (hard), mark socket disconnecting and drop
    843       1.1       cgd  * current input data; switch states based on user close, and
    844       1.1       cgd  * send segment to peer (with FIN).
    845       1.1       cgd  */
    846       1.1       cgd struct tcpcb *
    847  1.93.4.1      yamt tcp_disconnect(struct tcpcb *tp)
    848       1.1       cgd {
    849      1.40    itojun 	struct socket *so;
    850      1.40    itojun 
    851      1.40    itojun 	if (tp->t_inpcb)
    852      1.40    itojun 		so = tp->t_inpcb->inp_socket;
    853      1.40    itojun #ifdef INET6
    854      1.40    itojun 	else if (tp->t_in6pcb)
    855      1.40    itojun 		so = tp->t_in6pcb->in6p_socket;
    856      1.40    itojun #endif
    857      1.40    itojun 	else
    858      1.40    itojun 		so = NULL;
    859       1.1       cgd 
    860      1.12   mycroft 	if (TCPS_HAVEESTABLISHED(tp->t_state) == 0)
    861       1.1       cgd 		tp = tcp_close(tp);
    862       1.1       cgd 	else if ((so->so_options & SO_LINGER) && so->so_linger == 0)
    863       1.1       cgd 		tp = tcp_drop(tp, 0);
    864       1.1       cgd 	else {
    865       1.1       cgd 		soisdisconnecting(so);
    866       1.1       cgd 		sbflush(&so->so_rcv);
    867       1.1       cgd 		tp = tcp_usrclosed(tp);
    868       1.1       cgd 		if (tp)
    869       1.1       cgd 			(void) tcp_output(tp);
    870       1.1       cgd 	}
    871       1.1       cgd 	return (tp);
    872       1.1       cgd }
    873       1.1       cgd 
    874       1.1       cgd /*
    875       1.1       cgd  * User issued close, and wish to trail through shutdown states:
    876       1.1       cgd  * if never received SYN, just forget it.  If got a SYN from peer,
    877       1.1       cgd  * but haven't sent FIN, then go to FIN_WAIT_1 state to send peer a FIN.
    878       1.1       cgd  * If already got a FIN from peer, then almost done; go to LAST_ACK
    879       1.1       cgd  * state.  In all other cases, have already sent FIN to peer (e.g.
    880       1.1       cgd  * after PRU_SHUTDOWN), and just have to play tedious game waiting
    881       1.1       cgd  * for peer to send FIN or not respond to keep-alives, etc.
    882       1.1       cgd  * We can let the user exit from the close as soon as the FIN is acked.
    883       1.1       cgd  */
    884       1.1       cgd struct tcpcb *
    885  1.93.4.1      yamt tcp_usrclosed(struct tcpcb *tp)
    886       1.1       cgd {
    887       1.1       cgd 
    888       1.1       cgd 	switch (tp->t_state) {
    889       1.1       cgd 
    890       1.1       cgd 	case TCPS_CLOSED:
    891       1.1       cgd 	case TCPS_LISTEN:
    892       1.1       cgd 	case TCPS_SYN_SENT:
    893       1.1       cgd 		tp->t_state = TCPS_CLOSED;
    894       1.1       cgd 		tp = tcp_close(tp);
    895       1.1       cgd 		break;
    896       1.1       cgd 
    897       1.1       cgd 	case TCPS_SYN_RECEIVED:
    898       1.1       cgd 	case TCPS_ESTABLISHED:
    899       1.1       cgd 		tp->t_state = TCPS_FIN_WAIT_1;
    900       1.1       cgd 		break;
    901       1.1       cgd 
    902       1.1       cgd 	case TCPS_CLOSE_WAIT:
    903       1.1       cgd 		tp->t_state = TCPS_LAST_ACK;
    904       1.1       cgd 		break;
    905       1.1       cgd 	}
    906      1.18   mycroft 	if (tp && tp->t_state >= TCPS_FIN_WAIT_2) {
    907      1.40    itojun 		struct socket *so;
    908      1.40    itojun 		if (tp->t_inpcb)
    909      1.40    itojun 			so = tp->t_inpcb->inp_socket;
    910      1.40    itojun #ifdef INET6
    911      1.40    itojun 		else if (tp->t_in6pcb)
    912      1.40    itojun 			so = tp->t_in6pcb->in6p_socket;
    913      1.40    itojun #endif
    914      1.40    itojun 		else
    915      1.40    itojun 			so = NULL;
    916      1.40    itojun 		soisdisconnected(so);
    917      1.19   mycroft 		/*
    918      1.19   mycroft 		 * If we are in FIN_WAIT_2, we arrived here because the
    919      1.19   mycroft 		 * application did a shutdown of the send side.  Like the
    920      1.19   mycroft 		 * case of a transition from FIN_WAIT_1 to FIN_WAIT_2 after
    921      1.19   mycroft 		 * a full close, we start a timer to make sure sockets are
    922      1.19   mycroft 		 * not left in FIN_WAIT_2 forever.
    923      1.19   mycroft 		 */
    924      1.38     mouse 		if ((tp->t_state == TCPS_FIN_WAIT_2) && (tcp_maxidle > 0))
    925      1.37   thorpej 			TCP_TIMER_ARM(tp, TCPT_2MSL, tcp_maxidle);
    926      1.18   mycroft 	}
    927       1.1       cgd 	return (tp);
    928      1.17   thorpej }
    929      1.17   thorpej 
    930      1.86    atatat /*
    931      1.86    atatat  * sysctl helper routine for net.inet.ip.mssdflt.  it can't be less
    932      1.86    atatat  * than 32.
    933      1.86    atatat  */
    934      1.86    atatat static int
    935      1.86    atatat sysctl_net_inet_tcp_mssdflt(SYSCTLFN_ARGS)
    936      1.86    atatat {
    937      1.86    atatat 	int error, mssdflt;
    938      1.86    atatat 	struct sysctlnode node;
    939      1.86    atatat 
    940      1.86    atatat 	mssdflt = tcp_mssdflt;
    941      1.86    atatat 	node = *rnode;
    942      1.86    atatat 	node.sysctl_data = &mssdflt;
    943      1.86    atatat 	error = sysctl_lookup(SYSCTLFN_CALL(&node));
    944      1.86    atatat 	if (error || newp == NULL)
    945      1.86    atatat 		return (error);
    946      1.86    atatat 
    947      1.86    atatat 	if (mssdflt < 32)
    948      1.86    atatat 		return (EINVAL);
    949      1.86    atatat 	tcp_mssdflt = mssdflt;
    950      1.86    atatat 
    951      1.86    atatat 	return (0);
    952      1.86    atatat }
    953      1.36      matt 
    954      1.17   thorpej /*
    955      1.86    atatat  * sysctl helper routine for setting port related values under
    956      1.86    atatat  * net.inet.ip and net.inet6.ip6.  does basic range checking and does
    957      1.86    atatat  * additional checks for each type.  this code has placed in
    958      1.86    atatat  * tcp_input.c since INET and INET6 both use the same tcp code.
    959      1.86    atatat  *
    960      1.86    atatat  * this helper is not static so that both inet and inet6 can use it.
    961      1.17   thorpej  */
    962      1.17   thorpej int
    963      1.86    atatat sysctl_net_inet_ip_ports(SYSCTLFN_ARGS)
    964      1.86    atatat {
    965      1.86    atatat 	int error, tmp;
    966      1.86    atatat 	int apmin, apmax;
    967      1.86    atatat #ifndef IPNOPRIVPORTS
    968      1.86    atatat 	int lpmin, lpmax;
    969      1.86    atatat #endif /* IPNOPRIVPORTS */
    970      1.86    atatat 	struct sysctlnode node;
    971      1.86    atatat 
    972      1.86    atatat 	if (namelen != 0)
    973      1.86    atatat 		return (EINVAL);
    974      1.86    atatat 
    975      1.86    atatat 	switch (name[-3]) {
    976      1.86    atatat #ifdef INET
    977      1.86    atatat 	    case PF_INET:
    978      1.86    atatat 		apmin = anonportmin;
    979      1.86    atatat 		apmax = anonportmax;
    980      1.86    atatat #ifndef IPNOPRIVPORTS
    981      1.86    atatat 		lpmin = lowportmin;
    982      1.86    atatat 		lpmax = lowportmax;
    983      1.86    atatat #endif /* IPNOPRIVPORTS */
    984      1.86    atatat 		break;
    985      1.86    atatat #endif /* INET */
    986      1.86    atatat #ifdef INET6
    987      1.86    atatat 	    case PF_INET6:
    988      1.86    atatat 		apmin = ip6_anonportmin;
    989      1.86    atatat 		apmax = ip6_anonportmax;
    990      1.86    atatat #ifndef IPNOPRIVPORTS
    991      1.86    atatat 		lpmin = ip6_lowportmin;
    992      1.86    atatat 		lpmax = ip6_lowportmax;
    993      1.86    atatat #endif /* IPNOPRIVPORTS */
    994      1.86    atatat 		break;
    995      1.86    atatat #endif /* INET6 */
    996      1.86    atatat 	    default:
    997      1.86    atatat 		return (EINVAL);
    998      1.86    atatat 	}
    999      1.86    atatat 
   1000      1.86    atatat 	/*
   1001      1.86    atatat 	 * insert temporary copy into node, perform lookup on
   1002      1.86    atatat 	 * temporary, then restore pointer
   1003      1.86    atatat 	 */
   1004      1.86    atatat 	node = *rnode;
   1005      1.86    atatat 	tmp = *(int*)rnode->sysctl_data;
   1006      1.86    atatat 	node.sysctl_data = &tmp;
   1007      1.86    atatat 	error = sysctl_lookup(SYSCTLFN_CALL(&node));
   1008      1.86    atatat 	if (error || newp == NULL)
   1009      1.86    atatat 		return (error);
   1010      1.86    atatat 
   1011      1.86    atatat 	/*
   1012      1.86    atatat 	 * simple port range check
   1013      1.86    atatat 	 */
   1014      1.86    atatat 	if (tmp < 0 || tmp > 65535)
   1015      1.86    atatat 		return (EINVAL);
   1016      1.86    atatat 
   1017      1.86    atatat 	/*
   1018      1.86    atatat 	 * per-node range checks
   1019      1.86    atatat 	 */
   1020      1.86    atatat 	switch (rnode->sysctl_num) {
   1021      1.86    atatat 	case IPCTL_ANONPORTMIN:
   1022      1.86    atatat 		if (tmp >= apmax)
   1023      1.86    atatat 			return (EINVAL);
   1024      1.86    atatat #ifndef IPNOPRIVPORTS
   1025      1.86    atatat 		if (tmp < IPPORT_RESERVED)
   1026      1.86    atatat                         return (EINVAL);
   1027      1.86    atatat #endif /* IPNOPRIVPORTS */
   1028      1.86    atatat 		break;
   1029      1.86    atatat 
   1030      1.86    atatat 	case IPCTL_ANONPORTMAX:
   1031      1.86    atatat                 if (apmin >= tmp)
   1032      1.86    atatat 			return (EINVAL);
   1033      1.86    atatat #ifndef IPNOPRIVPORTS
   1034      1.86    atatat 		if (tmp < IPPORT_RESERVED)
   1035      1.86    atatat                         return (EINVAL);
   1036      1.86    atatat #endif /* IPNOPRIVPORTS */
   1037      1.86    atatat 		break;
   1038      1.86    atatat 
   1039      1.86    atatat #ifndef IPNOPRIVPORTS
   1040      1.86    atatat 	case IPCTL_LOWPORTMIN:
   1041      1.86    atatat 		if (tmp >= lpmax ||
   1042      1.86    atatat 		    tmp > IPPORT_RESERVEDMAX ||
   1043      1.86    atatat 		    tmp < IPPORT_RESERVEDMIN)
   1044      1.86    atatat 			return (EINVAL);
   1045      1.86    atatat 		break;
   1046      1.86    atatat 
   1047      1.86    atatat 	case IPCTL_LOWPORTMAX:
   1048      1.86    atatat 		if (lpmin >= tmp ||
   1049      1.86    atatat 		    tmp > IPPORT_RESERVEDMAX ||
   1050      1.86    atatat 		    tmp < IPPORT_RESERVEDMIN)
   1051      1.86    atatat 			return (EINVAL);
   1052      1.86    atatat 		break;
   1053      1.86    atatat #endif /* IPNOPRIVPORTS */
   1054      1.86    atatat 
   1055      1.86    atatat 	default:
   1056      1.86    atatat 		return (EINVAL);
   1057      1.86    atatat 	}
   1058      1.86    atatat 
   1059      1.86    atatat 	*(int*)rnode->sysctl_data = tmp;
   1060      1.86    atatat 
   1061      1.86    atatat 	return (0);
   1062      1.86    atatat }
   1063      1.86    atatat 
   1064      1.86    atatat /*
   1065      1.86    atatat  * sysctl helper routine for the net.inet.tcp.ident and
   1066      1.86    atatat  * net.inet6.tcp6.ident nodes.  contains backwards compat code for the
   1067      1.86    atatat  * old way of looking up the ident information for ipv4 which involves
   1068      1.86    atatat  * stuffing the port/addr pairs into the mib lookup.
   1069      1.86    atatat  */
   1070      1.86    atatat static int
   1071      1.86    atatat sysctl_net_inet_tcp_ident(SYSCTLFN_ARGS)
   1072      1.86    atatat {
   1073      1.86    atatat #ifdef INET
   1074      1.86    atatat 	struct inpcb *inb;
   1075      1.86    atatat 	struct sockaddr_in *si4[2];
   1076      1.86    atatat #endif /* INET */
   1077      1.86    atatat #ifdef INET6
   1078      1.86    atatat 	struct in6pcb *in6b;
   1079      1.86    atatat 	struct sockaddr_in6 *si6[2];
   1080      1.86    atatat #endif /* INET6 */
   1081      1.86    atatat 	struct sockaddr_storage sa[2];
   1082      1.86    atatat 	struct socket *sockp;
   1083      1.86    atatat 	size_t sz;
   1084      1.86    atatat 	uid_t uid;
   1085      1.86    atatat 	int error, pf;
   1086      1.86    atatat 
   1087      1.86    atatat 	if (namelen != 4 && namelen != 0)
   1088      1.86    atatat 		return (EINVAL);
   1089      1.86    atatat 	if (name[-2] != IPPROTO_TCP)
   1090      1.86    atatat 		return (EINVAL);
   1091      1.86    atatat 	pf = name[-3];
   1092      1.86    atatat 
   1093      1.86    atatat 	/* old style lookup, ipv4 only */
   1094      1.86    atatat 	if (namelen == 4) {
   1095      1.86    atatat #ifdef INET
   1096      1.88    atatat 		struct in_addr laddr, raddr;
   1097      1.88    atatat 		u_int lport, rport;
   1098      1.88    atatat 
   1099      1.86    atatat 		if (pf != PF_INET)
   1100      1.86    atatat 			return (EPROTONOSUPPORT);
   1101      1.86    atatat 		raddr.s_addr = (uint32_t)name[0];
   1102      1.86    atatat 		rport = (u_int)name[1];
   1103      1.86    atatat 		laddr.s_addr = (uint32_t)name[2];
   1104      1.86    atatat 		lport = (u_int)name[3];
   1105      1.86    atatat 		inb = in_pcblookup_connect(&tcbtable, raddr, rport,
   1106      1.86    atatat 					   laddr, lport);
   1107      1.86    atatat 		if (inb == NULL || (sockp = inb->inp_socket) == NULL)
   1108      1.86    atatat 			return (ESRCH);
   1109      1.86    atatat 		uid = sockp->so_uid;
   1110      1.86    atatat 		if (oldp) {
   1111      1.86    atatat 			sz = MIN(sizeof(uid), *oldlenp);
   1112      1.86    atatat 			error = copyout(&uid, oldp, sz);
   1113      1.69    martin 			if (error)
   1114      1.70    martin 				return (error);
   1115      1.69    martin 		}
   1116      1.86    atatat 		*oldlenp = sizeof(uid);
   1117      1.86    atatat 		return (0);
   1118      1.86    atatat #else /* INET */
   1119      1.86    atatat 		return (EINVAL);
   1120      1.86    atatat #endif /* INET */
   1121      1.86    atatat 	}
   1122      1.86    atatat 
   1123      1.86    atatat 	if (newp == NULL || newlen != sizeof(sa))
   1124      1.86    atatat 		return (EINVAL);
   1125      1.86    atatat 	error = copyin(newp, &sa, newlen);
   1126      1.86    atatat 	if (error)
   1127      1.86    atatat 		return (error);
   1128      1.86    atatat 
   1129      1.86    atatat 	/*
   1130      1.86    atatat 	 * requested families must match
   1131      1.86    atatat 	 */
   1132      1.86    atatat 	if (pf != sa[0].ss_family || sa[0].ss_family != sa[1].ss_family)
   1133      1.86    atatat 		return (EINVAL);
   1134      1.86    atatat 
   1135      1.86    atatat 	switch (pf) {
   1136      1.86    atatat #ifdef INET
   1137      1.86    atatat 	    case PF_INET:
   1138      1.86    atatat 		si4[0] = (struct sockaddr_in*)&sa[0];
   1139      1.86    atatat 		si4[1] = (struct sockaddr_in*)&sa[1];
   1140      1.86    atatat 		if (si4[0]->sin_len != sizeof(*si4[0]) ||
   1141      1.86    atatat 		    si4[0]->sin_len != si4[1]->sin_len)
   1142      1.86    atatat 			return (EINVAL);
   1143      1.86    atatat 		inb = in_pcblookup_connect(&tcbtable,
   1144      1.86    atatat 		    si4[0]->sin_addr, si4[0]->sin_port,
   1145      1.86    atatat 		    si4[1]->sin_addr, si4[1]->sin_port);
   1146      1.86    atatat 		if (inb == NULL || (sockp = inb->inp_socket) == NULL)
   1147      1.86    atatat 			return (ESRCH);
   1148      1.86    atatat 		break;
   1149      1.86    atatat #endif /* INET */
   1150      1.86    atatat #ifdef INET6
   1151      1.86    atatat 	    case PF_INET6:
   1152      1.86    atatat 		si6[0] = (struct sockaddr_in6*)&sa[0];
   1153      1.86    atatat 		si6[1] = (struct sockaddr_in6*)&sa[1];
   1154      1.86    atatat 		if (si6[0]->sin6_len != sizeof(*si6[0]) ||
   1155      1.86    atatat 		    si6[0]->sin6_len != si6[1]->sin6_len)
   1156      1.86    atatat 			return (EINVAL);
   1157      1.86    atatat 		in6b = in6_pcblookup_connect(&tcbtable,
   1158      1.86    atatat 		    &si6[0]->sin6_addr, si6[0]->sin6_port,
   1159      1.86    atatat 		    &si6[1]->sin6_addr, si6[1]->sin6_port, 0);
   1160      1.86    atatat 		if (in6b == NULL || (sockp = in6b->in6p_socket) == NULL)
   1161      1.86    atatat 			return (ESRCH);
   1162      1.86    atatat 		break;
   1163      1.86    atatat #endif /* INET6 */
   1164      1.86    atatat 	    default:
   1165      1.86    atatat 		return (EPROTONOSUPPORT);
   1166      1.86    atatat 	}
   1167      1.86    atatat 
   1168      1.86    atatat 	uid = sockp->so_uid;
   1169      1.86    atatat 	if (oldp) {
   1170      1.86    atatat 		sz = MIN(sizeof(uid), *oldlenp);
   1171      1.86    atatat 		error = copyout(&uid, oldp, sz);
   1172      1.86    atatat 		if (error)
   1173      1.86    atatat 			return (error);
   1174      1.39        tv 	}
   1175      1.86    atatat 	*oldlenp = sizeof(uid);
   1176      1.38     mouse 
   1177      1.86    atatat 	return (0);
   1178      1.76  christos }
   1179      1.76  christos 
   1180      1.86    atatat /*
   1181      1.86    atatat  * this (second stage) setup routine is a replacement for tcp_sysctl()
   1182      1.86    atatat  * (which is currently used for ipv4 and ipv6)
   1183      1.86    atatat  */
   1184      1.86    atatat static void
   1185      1.87    atatat sysctl_net_inet_tcp_setup2(struct sysctllog **clog, int pf, const char *pfname,
   1186      1.87    atatat 			   const char *tcpname)
   1187      1.86    atatat {
   1188      1.76  christos 
   1189      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1190      1.87    atatat 		       CTLFLAG_PERMANENT,
   1191      1.86    atatat 		       CTLTYPE_NODE, "net", NULL,
   1192      1.86    atatat 		       NULL, 0, NULL, 0,
   1193      1.86    atatat 		       CTL_NET, CTL_EOL);
   1194      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1195      1.87    atatat 		       CTLFLAG_PERMANENT,
   1196      1.86    atatat 		       CTLTYPE_NODE, pfname, NULL,
   1197      1.86    atatat 		       NULL, 0, NULL, 0,
   1198      1.86    atatat 		       CTL_NET, pf, CTL_EOL);
   1199      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1200      1.87    atatat 		       CTLFLAG_PERMANENT,
   1201      1.92    atatat 		       CTLTYPE_NODE, tcpname,
   1202      1.92    atatat 		       SYSCTL_DESCR("TCP related settings"),
   1203      1.86    atatat 		       NULL, 0, NULL, 0,
   1204      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, CTL_EOL);
   1205      1.86    atatat 
   1206      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1207      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1208      1.92    atatat 		       CTLTYPE_INT, "rfc1323",
   1209      1.92    atatat 		       SYSCTL_DESCR("Enable RFC1323 TCP extensions"),
   1210      1.86    atatat 		       NULL, 0, &tcp_do_rfc1323, 0,
   1211      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_RFC1323, CTL_EOL);
   1212      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1213      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1214      1.92    atatat 		       CTLTYPE_INT, "sendspace",
   1215      1.92    atatat 		       SYSCTL_DESCR("Default TCP send buffer size"),
   1216      1.86    atatat 		       NULL, 0, &tcp_sendspace, 0,
   1217      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_SENDSPACE, CTL_EOL);
   1218      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1219      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1220      1.92    atatat 		       CTLTYPE_INT, "recvspace",
   1221      1.92    atatat 		       SYSCTL_DESCR("Default TCP receive buffer size"),
   1222      1.86    atatat 		       NULL, 0, &tcp_recvspace, 0,
   1223      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_RECVSPACE, CTL_EOL);
   1224      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1225      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1226      1.92    atatat 		       CTLTYPE_INT, "mssdflt",
   1227      1.92    atatat 		       SYSCTL_DESCR("Default maximum segment size"),
   1228      1.86    atatat 		       sysctl_net_inet_tcp_mssdflt, 0, &tcp_mssdflt, 0,
   1229      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_MSSDFLT, CTL_EOL);
   1230      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1231      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1232      1.92    atatat 		       CTLTYPE_INT, "syn_cache_limit",
   1233      1.92    atatat 		       SYSCTL_DESCR("Maximum number of entries in the TCP "
   1234      1.92    atatat 				    "compressed state engine"),
   1235      1.86    atatat 		       NULL, 0, &tcp_syn_cache_limit, 0,
   1236      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_SYN_CACHE_LIMIT,
   1237      1.86    atatat 		       CTL_EOL);
   1238      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1239      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1240      1.92    atatat 		       CTLTYPE_INT, "syn_bucket_limit",
   1241      1.92    atatat 		       SYSCTL_DESCR("Maximum number of entries per hash "
   1242      1.92    atatat 				    "bucket in the TCP compressed state "
   1243      1.92    atatat 				    "engine"),
   1244      1.86    atatat 		       NULL, 0, &tcp_syn_bucket_limit, 0,
   1245      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_SYN_BUCKET_LIMIT,
   1246      1.86    atatat 		       CTL_EOL);
   1247      1.86    atatat #if 0 /* obsoleted */
   1248      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1249      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1250      1.92    atatat 		       CTLTYPE_INT, "syn_cache_interval",
   1251      1.92    atatat 		       SYSCTL_DESCR("TCP compressed state engine's timer interval"),
   1252      1.86    atatat 		       NULL, 0, &tcp_syn_cache_interval, 0,
   1253      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_SYN_CACHE_INTER,
   1254      1.86    atatat 		       CTL_EOL);
   1255      1.86    atatat #endif
   1256      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1257      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1258      1.92    atatat 		       CTLTYPE_INT, "init_win",
   1259      1.92    atatat 		       SYSCTL_DESCR("Initial TCP congestion window"),
   1260      1.86    atatat 		       NULL, 0, &tcp_init_win, 0,
   1261      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_INIT_WIN, CTL_EOL);
   1262      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1263      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1264      1.92    atatat 		       CTLTYPE_INT, "mss_ifmtu",
   1265      1.92    atatat 		       SYSCTL_DESCR("Use interface MTU for calculating MSS"),
   1266      1.86    atatat 		       NULL, 0, &tcp_mss_ifmtu, 0,
   1267      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_MSS_IFMTU, CTL_EOL);
   1268      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1269      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1270      1.92    atatat 		       CTLTYPE_INT, "sack",
   1271      1.92    atatat 		       SYSCTL_DESCR("Enable RFC2018 Selection ACKnowledgement "
   1272      1.92    atatat 				    "(not implemented)"),
   1273      1.86    atatat 		       NULL, 0, &tcp_do_sack, 0,
   1274      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_SACK, CTL_EOL);
   1275      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1276      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1277      1.92    atatat 		       CTLTYPE_INT, "win_scale",
   1278      1.92    atatat 		       SYSCTL_DESCR("Use RFC1323 window scale options"),
   1279      1.86    atatat 		       NULL, 0, &tcp_do_win_scale, 0,
   1280      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_WSCALE, CTL_EOL);
   1281      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1282      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1283      1.92    atatat 		       CTLTYPE_INT, "timestamps",
   1284      1.92    atatat 		       SYSCTL_DESCR("Use RFC1323 time stamp options"),
   1285      1.86    atatat 		       NULL, 0, &tcp_do_timestamps, 0,
   1286      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_TSTAMP, CTL_EOL);
   1287      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1288      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1289      1.92    atatat 		       CTLTYPE_INT, "compat_42",
   1290      1.92    atatat 		       SYSCTL_DESCR("Enable workarounds for 4.2BSD TCP bugs"),
   1291      1.86    atatat 		       NULL, 0, &tcp_compat_42, 0,
   1292      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_COMPAT_42, CTL_EOL);
   1293      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1294      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1295      1.92    atatat 		       CTLTYPE_INT, "cwm",
   1296      1.92    atatat 		       SYSCTL_DESCR("Hughes/Touch/Heidemann Congestion Window "
   1297      1.92    atatat 				    "Monitoring"),
   1298      1.86    atatat 		       NULL, 0, &tcp_cwm, 0,
   1299      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_CWM, CTL_EOL);
   1300      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1301      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1302      1.92    atatat 		       CTLTYPE_INT, "cwm_burstsize",
   1303      1.92    atatat 		       SYSCTL_DESCR("Congestion Window Monitoring allowed "
   1304      1.92    atatat 				    "burst count in packets"),
   1305      1.86    atatat 		       NULL, 0, &tcp_cwm_burstsize, 0,
   1306      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_CWM_BURSTSIZE,
   1307      1.86    atatat 		       CTL_EOL);
   1308      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1309      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1310      1.92    atatat 		       CTLTYPE_INT, "ack_on_push",
   1311      1.92    atatat 		       SYSCTL_DESCR("Immediately return ACK when PSH is "
   1312      1.92    atatat 				    "received"),
   1313      1.86    atatat 		       NULL, 0, &tcp_ack_on_push, 0,
   1314      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_ACK_ON_PUSH, CTL_EOL);
   1315      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1316      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1317      1.92    atatat 		       CTLTYPE_INT, "keepidle",
   1318      1.92    atatat 		       SYSCTL_DESCR("Allowed connection idle ticks before a "
   1319      1.92    atatat 				    "keepalive probe is sent"),
   1320      1.86    atatat 		       NULL, 0, &tcp_keepidle, 0,
   1321      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_KEEPIDLE, CTL_EOL);
   1322      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1323      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1324      1.92    atatat 		       CTLTYPE_INT, "keepintvl",
   1325      1.92    atatat 		       SYSCTL_DESCR("Ticks before next keepalive probe is sent"),
   1326      1.86    atatat 		       NULL, 0, &tcp_keepintvl, 0,
   1327      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_KEEPINTVL, CTL_EOL);
   1328      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1329      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1330      1.92    atatat 		       CTLTYPE_INT, "keepcnt",
   1331      1.92    atatat 		       SYSCTL_DESCR("Number of keepalive probes to send"),
   1332      1.86    atatat 		       NULL, 0, &tcp_keepcnt, 0,
   1333      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_KEEPCNT, CTL_EOL);
   1334      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1335      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_IMMEDIATE,
   1336      1.92    atatat 		       CTLTYPE_INT, "slowhz",
   1337      1.92    atatat 		       SYSCTL_DESCR("Keepalive ticks per second"),
   1338      1.86    atatat 		       NULL, PR_SLOWHZ, NULL, 0,
   1339      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_SLOWHZ, CTL_EOL);
   1340      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1341      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1342      1.92    atatat 		       CTLTYPE_INT, "newreno",
   1343      1.92    atatat 		       SYSCTL_DESCR("NewReno congestion control algorithm"),
   1344      1.86    atatat 		       NULL, 0, &tcp_do_newreno, 0,
   1345      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_NEWRENO, CTL_EOL);
   1346      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1347      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1348      1.92    atatat 		       CTLTYPE_INT, "log_refused",
   1349      1.92    atatat 		       SYSCTL_DESCR("Log refused TCP connections"),
   1350      1.86    atatat 		       NULL, 0, &tcp_log_refused, 0,
   1351      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_LOG_REFUSED, CTL_EOL);
   1352      1.86    atatat #if 0 /* obsoleted */
   1353      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1354      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1355      1.86    atatat 		       CTLTYPE_INT, "rstratelimit", NULL,
   1356      1.86    atatat 		       NULL, 0, &tcp_rst_ratelim, 0,
   1357      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_RSTRATELIMIT, CTL_EOL);
   1358      1.86    atatat #endif
   1359      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1360      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1361      1.92    atatat 		       CTLTYPE_INT, "rstppslimit",
   1362      1.92    atatat 		       SYSCTL_DESCR("Maximum number of RST packets to send "
   1363      1.92    atatat 				    "per second"),
   1364      1.86    atatat 		       NULL, 0, &tcp_rst_ppslim, 0,
   1365      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_RSTPPSLIMIT, CTL_EOL);
   1366      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1367      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1368      1.92    atatat 		       CTLTYPE_INT, "delack_ticks",
   1369      1.92    atatat 		       SYSCTL_DESCR("Number of ticks to delay sending an ACK"),
   1370      1.86    atatat 		       NULL, 0, &tcp_delack_ticks, 0,
   1371      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_DELACK_TICKS, CTL_EOL);
   1372      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1373      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1374      1.92    atatat 		       CTLTYPE_INT, "init_win_local",
   1375      1.92    atatat 		       SYSCTL_DESCR("Initial TCP window size (in segments)"),
   1376      1.86    atatat 		       NULL, 0, &tcp_init_win_local, 0,
   1377      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_INIT_WIN_LOCAL,
   1378      1.86    atatat 		       CTL_EOL);
   1379      1.87    atatat 	sysctl_createv(clog, 0, NULL, NULL,
   1380      1.87    atatat 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1381      1.92    atatat 		       CTLTYPE_STRUCT, "ident",
   1382      1.92    atatat 		       SYSCTL_DESCR("RFC1413 Identification Protocol lookups"),
   1383      1.86    atatat 		       sysctl_net_inet_tcp_ident, 0, NULL, sizeof(uid_t),
   1384      1.86    atatat 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_IDENT, CTL_EOL);
   1385      1.93   thorpej 	sysctl_createv(clog, 0, NULL, NULL,
   1386      1.93   thorpej 		       CTLFLAG_PERMANENT|CTLFLAG_READWRITE,
   1387      1.93   thorpej 		       CTLTYPE_INT, "do_loopback_cksum",
   1388      1.93   thorpej 		       SYSCTL_DESCR("Perform TCP checksum on loopback"),
   1389      1.93   thorpej 		       NULL, 0, &tcp_do_loopback_cksum, 0,
   1390      1.93   thorpej 		       CTL_NET, pf, IPPROTO_TCP, TCPCTL_LOOPBACKCKSUM,
   1391      1.93   thorpej 		       CTL_EOL);
   1392      1.86    atatat }
   1393      1.86    atatat 
   1394      1.86    atatat /*
   1395      1.86    atatat  * Sysctl for tcp variables.
   1396      1.86    atatat  */
   1397      1.86    atatat #ifdef INET
   1398      1.86    atatat SYSCTL_SETUP(sysctl_net_inet_tcp_setup, "sysctl net.inet.tcp subtree setup")
   1399      1.76  christos {
   1400      1.76  christos 
   1401      1.87    atatat 	sysctl_net_inet_tcp_setup2(clog, PF_INET, "inet", "tcp");
   1402      1.86    atatat }
   1403      1.86    atatat #endif /* INET */
   1404      1.76  christos 
   1405      1.86    atatat #ifdef INET6
   1406      1.86    atatat SYSCTL_SETUP(sysctl_net_inet6_tcp6_setup, "sysctl net.inet6.tcp6 subtree setup")
   1407      1.86    atatat {
   1408      1.76  christos 
   1409      1.87    atatat 	sysctl_net_inet_tcp_setup2(clog, PF_INET6, "inet6", "tcp6");
   1410       1.1       cgd }
   1411      1.86    atatat #endif /* INET6 */
   1412      1.86    atatat 
   1413