Home | History | Annotate | Line # | Download | only in netstat
bpf.c revision 1.15
      1 /*	$NetBSD: bpf.c,v 1.15 2020/08/28 07:23:48 ozaki-r Exp $	*/
      2 
      3 /*
      4  * Copyright (c) 2005 The NetBSD Foundation, Inc.
      5  * All rights reserved.
      6  *
      7  * This code is derived from software contributed to The NetBSD Foundation
      8  * by Rui Paulo.
      9  *
     10  * Redistribution and use in source and binary forms, with or without
     11  * modification, are permitted provided that the following conditions
     12  * are met:
     13  * 1. Redistributions of source code must retain the above copyright
     14  *    notice, this list of conditions and the following disclaimer.
     15  * 2. Redistributions in binary form must reproduce the above copyright
     16  *    notice, this list of conditions and the following disclaimer in the
     17  *    documentation and/or other materials provided with the distribution.
     18  *
     19  * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
     20  * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
     21  * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
     22  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
     23  * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
     24  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
     25  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
     26  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
     27  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
     28  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
     29  * POSSIBILITY OF SUCH DAMAGE.
     30  */
     31 
     32 #include <err.h>
     33 #include <errno.h>
     34 #include <fcntl.h>
     35 #include <kvm.h>
     36 #include <stdio.h>
     37 #include <stdlib.h>
     38 #include <string.h>
     39 #include <unistd.h>
     40 #include <net/if.h>
     41 #include <sys/types.h>
     42 #include <sys/param.h>
     43 #include <sys/sysctl.h>
     44 #include <net/bpfdesc.h>
     45 #include <net/bpf.h>
     46 #include "netstat.h"
     47 #include "prog_ops.h"
     48 
     49 void
     50 bpf_stats(void)
     51 {
     52 	struct bpf_stat bpf_s;
     53 	size_t len = sizeof(bpf_s);
     54 
     55 	if (use_sysctl) {
     56 		if (prog_sysctlbyname("net.bpf.stats", &bpf_s, &len, NULL, 0) == -1 &&
     57 		    errno != ENOMEM)
     58 			err(1, "net.bpf.stats");
     59 
     60 		printf("bpf:\n");
     61 		printf("\t%" PRIu64 " total packets received\n",
     62 		    bpf_s.bs_recv);
     63 		printf("\t%" PRIu64 " total packets captured\n",
     64 		    bpf_s.bs_capt);
     65 		printf("\t%" PRIu64 " total packets dropped\n",
     66 		    bpf_s.bs_drop);
     67 	} else {
     68 		warnx("BPF stats not available via KVM.");
     69 	}
     70 }
     71 
     72 void
     73 bpf_dump(const char *bpfif)
     74 {
     75 	struct bpf_d_ext *dpe;
     76 
     77 	if (use_sysctl) {
     78 		int	name[CTL_MAXNAME], rc;
     79 		size_t	i, sz, szproc;
     80 		u_int	namelen;
     81 		void	*v;
     82 		struct kinfo_proc2 p;
     83 
     84 		/* adapted from sockstat.c by Andrew Brown */
     85 
     86 		sz = CTL_MAXNAME;
     87 		if (prog_sysctlnametomib("net.bpf.peers", &name[0], &sz) == -1)
     88 			err(1, "sysctlnametomib: net.bpf.peers");
     89 		namelen = sz;
     90 
     91 		name[namelen++] = sizeof(*dpe);
     92 		name[namelen++] = INT_MAX;
     93 
     94 		v = NULL;
     95 		sz = 0;
     96 		do {
     97 			rc = prog_sysctl(&name[0], namelen,
     98 			    v, &sz, NULL, 0);
     99 			if (rc == -1 && errno != ENOMEM)
    100 				err(1, "sysctl: net.bpf.peers");
    101 			if (rc == -1 && v != NULL) {
    102 				free(v);
    103 				v = NULL;
    104 			}
    105 			if (v == NULL) {
    106 				v = malloc(sz);
    107 				rc = -1;
    108 			}
    109 			if (v == NULL)
    110 				err(1, "malloc");
    111 		} while (rc == -1);
    112 
    113 		dpe = v;
    114 
    115 		puts("Active BPF peers\nPID\tInt\tRecv     Drop     Capt" \
    116 		    "     Flags  Bufsize  Comm");
    117 
    118 #define BPFEXT(entry) dpe->entry
    119 
    120 		for (i = 0; i < (sz / sizeof(*dpe)); i++, dpe++) {
    121 			if (bpfif &&
    122 			    strncmp(BPFEXT(bde_ifname), bpfif, IFNAMSIZ))
    123 				continue;
    124 
    125 			printf("%-7d ", BPFEXT(bde_pid));
    126 			printf("%-7s ",
    127 			       (BPFEXT(bde_ifname)[0] == '\0') ? "-" :
    128 			       BPFEXT(bde_ifname));
    129 
    130 			printf("%-8" PRIu64 " %-8" PRIu64 " %-8" PRIu64 " ",
    131 				BPFEXT(bde_rcount), BPFEXT(bde_dcount),
    132 				BPFEXT(bde_ccount));
    133 
    134 			switch (BPFEXT(bde_state)) {
    135 			case BPF_IDLE:
    136 				printf("I");
    137 				break;
    138 			case BPF_WAITING:
    139 				printf("W");
    140 				break;
    141 			case BPF_TIMED_OUT:
    142 				printf("T");
    143 				break;
    144 			default:
    145 				printf("-");
    146 				break;
    147 			}
    148 
    149 			printf("%c", BPFEXT(bde_promisc) ? 'P' : '-');
    150 			printf("%c", BPFEXT(bde_immediate) ? 'R' : '-');
    151 			printf("%c", (BPFEXT(bde_direction) == BPF_D_IN) ? '-'
    152 			    : (BPFEXT(bde_direction) == BPF_D_OUT) ? 'O' : 'S');
    153 			printf("%c", BPFEXT(bde_hdrcmplt) ? 'H' : '-');
    154 			printf("  %-8d ", BPFEXT(bde_bufsize));
    155 
    156 			szproc = sizeof(p);
    157 			namelen = 0;
    158 			name[namelen++] = CTL_KERN;
    159 			name[namelen++] = KERN_PROC2;
    160 			name[namelen++] = KERN_PROC_PID;
    161 			name[namelen++] = BPFEXT(bde_pid);
    162 			name[namelen++] = szproc;
    163 			name[namelen++] = 1;
    164 
    165 			if (prog_sysctl(&name[0], namelen, &p, &szproc,
    166 			    NULL, 0) == -1)
    167 				printf("-\n");
    168 			else
    169 				printf("%s\n", p.p_comm);
    170 #undef BPFEXT
    171 		}
    172 		free(v);
    173 	} else {
    174                 /* XXX */
    175                 errx(1, "bpf_dump not implemented using kvm");
    176         }
    177 }
    178