Home | History | Annotate | Line # | Download | only in npfctl
npf_scan.l revision 1.23.2.1
      1 /*	$NetBSD: npf_scan.l,v 1.23.2.1 2017/01/07 08:57:00 pgoyette Exp $	*/
      2 
      3 /*-
      4  * Copyright (c) 2011-2012 The NetBSD Foundation, Inc.
      5  * All rights reserved.
      6  *
      7  * This code is derived from software contributed to The NetBSD Foundation
      8  * by Martin Husemann.
      9  *
     10  * Redistribution and use in source and binary forms, with or without
     11  * modification, are permitted provided that the following conditions
     12  * are met:
     13  * 1. Redistributions of source code must retain the above copyright
     14  *    notice, this list of conditions and the following disclaimer.
     15  * 2. Redistributions in binary form must reproduce the above copyright
     16  *    notice, this list of conditions and the following disclaimer in the
     17  *    documentation and/or other materials provided with the distribution.
     18  *
     19  * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
     20  * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
     21  * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
     22  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
     23  * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
     24  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
     25  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
     26  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
     27  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
     28  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
     29  * POSSIBILITY OF SUCH DAMAGE.
     30  */
     31 
     32 %{
     33 #include <stdio.h>
     34 #include <stdlib.h>
     35 #include <err.h>
     36 
     37 #include "npfctl.h"
     38 #include "npf_parse.h"
     39 
     40 int	yycolumn;
     41 
     42 #define	YY_USER_ACTION	yycolumn += yyleng;
     43 
     44 extern int		yyparsetarget;
     45 extern int		yylineno;
     46 extern const char *	yyfilename;
     47 extern int		yyparse(void);
     48 extern void		yyrestart(FILE *);
     49 
     50 void
     51 npfctl_parse_file(const char *name)
     52 {
     53 	FILE *fp;
     54 
     55 	fp = fopen(name, "r");
     56 	if (fp == NULL) {
     57 		err(EXIT_FAILURE, "open '%s'", name);
     58 	}
     59 	yyparsetarget = NPFCTL_PARSE_FILE;
     60 	yyrestart(fp);
     61 	yylineno = 1;
     62 	yycolumn = 0;
     63 	yyfilename = name;
     64 	yyparse();
     65 	fclose(fp);
     66 }
     67 
     68 void
     69 npfctl_parse_string(const char *str)
     70 {
     71 	YY_BUFFER_STATE bs;
     72 
     73 	yyparsetarget = NPFCTL_PARSE_STRING;
     74 	bs = yy_scan_string(str);
     75 	yyfilename = "stdin";
     76 	yyparse();
     77 	yy_delete_buffer(bs);
     78 }
     79 
     80 %}
     81 
     82 %option noyywrap nounput noinput
     83 
     84 ID	[a-zA-Z_][a-zA-Z_0-9]*
     85 DID	[a-zA-Z_][a-zA-Z_0-9-]*
     86 NUMBER	[0-9]+
     87 HEXDIG	[0-9a-fA-F]+
     88 
     89 %%
     90 alg			return ALG;
     91 table			return TABLE;
     92 type			return TYPE;
     93 hash			return HASH;
     94 tree			return TREE;
     95 cdb			return CDB;
     96 static			return TSTATIC;
     97 dynamic			return TDYNAMIC;
     98 file			return TFILE;
     99 map			return MAP;
    100 set			return SET;
    101 "<->"			return ARROWBOTH;
    102 "<-"			return ARROWLEFT;
    103 "->"			return ARROWRIGHT;
    104 algo			return ALGO;
    105 npt66			return NPT66;
    106 "-"			return MINUS;
    107 procedure		return PROCEDURE;
    108 \\\n			yylineno++; yycolumn = 0;
    109 \n			yylineno++; yycolumn = 0; return SEPLINE;
    110 ;			return SEPLINE;
    111 name			return NAME;
    112 group			return GROUP;
    113 default			return DEFAULT;
    114 in			return IN;
    115 out			return OUT;
    116 forw			return FORW;
    117 interface		return INTERFACE;
    118 all			return ALL;
    119 block			return BLOCK;
    120 pass			return PASS;
    121 pcap-filter		return PCAP_FILTER;
    122 stateful		return STATEFUL;
    123 stateful-ends		return STATEFUL_ENDS;
    124 apply			return APPLY;
    125 final			return FINAL;
    126 quick			return FINAL;
    127 on			return ON;
    128 off			return OFF;
    129 bpf.jit			return BPFJIT;
    130 inet6			return INET6;
    131 inet4			return INET4;
    132 ifaddrs			return IFADDRS;
    133 proto			return PROTO;
    134 family			return FAMILY;
    135 tcp			return TCP;
    136 icmp			{ yylval.num = IPPROTO_ICMP; return ICMP; }
    137 ipv6-icmp		{ yylval.num = IPPROTO_ICMPV6; return ICMP6; }
    138 \"ipv6-icmp\"		{ yylval.num = IPPROTO_ICMPV6; return ICMP6; }
    139 return-rst		return RETURNRST;
    140 return-icmp		return RETURNICMP;
    141 return			return RETURN;
    142 ruleset			return RULESET;
    143 from			return FROM;
    144 to			return TO;
    145 port			return PORT;
    146 flags			return FLAGS;
    147 icmp-type		return ICMPTYPE;
    148 code			return CODE;
    149 any			return ANY;
    150 
    151 "/"			return SLASH;
    152 "{"			return CURLY_OPEN;
    153 "}"			return CURLY_CLOSE;
    154 "("			return PAR_OPEN;
    155 ")"			return PAR_CLOSE;
    156 ","			return COMMA;
    157 "="			return EQ;
    158 "!"			return EXCL_MARK;
    159 
    160 "0x"{HEXDIG} {
    161 			char *endp, *buf = ecalloc(1, yyleng + 1);
    162 			buf[yyleng] = 0;
    163 			yylval.num = strtoul(buf+2, &endp, 16);
    164 			free(buf);
    165 			return HEX;
    166 		}
    167 
    168 {NUMBER}"."{NUMBER} {
    169 			char *endp, *buf = estrndup(yytext, yyleng);
    170 			yylval.fpnum = strtod(buf, &endp);
    171 			free(buf);
    172 			return FPNUM;
    173 		}
    174 
    175 {HEXDIG}":"[0-9a-fA-F:]* {
    176 			yylval.str = estrndup(yytext, yyleng);
    177 			return IPV6ADDR;
    178 		}
    179 
    180 "::"{HEXDIG}[0-9a-fA-F:.]* {
    181 			yylval.str = estrndup(yytext, yyleng);
    182 			return IPV6ADDR;
    183 		}
    184 
    185 {NUMBER}"."[0-9][0-9.]* {
    186 			yylval.str = estrndup(yytext, yyleng);
    187 			return IPV4ADDR;
    188 		}
    189 
    190 {NUMBER}	{
    191 			char *endp, *buf = estrndup(yytext, yyleng);
    192 			yylval.num = strtoul(buf, &endp, 10);
    193 			free(buf);
    194 			return NUM;
    195 		}
    196 
    197 "<"{DID}">"	{
    198 			yylval.str = estrndup(yytext + 1, yyleng - 2);
    199 			return TABLE_ID;
    200 		}
    201 
    202 "$"{ID}		{
    203 			yylval.str = estrndup(yytext + 1, yyleng - 1);
    204 			return VAR_ID;
    205 		}
    206 
    207 {ID}		{
    208 			yylval.str = estrndup(yytext, yyleng);
    209 			return IDENTIFIER;
    210 		}
    211 
    212 \"[^\"]*\"	{
    213 			yylval.str = estrndup(yytext + 1, yyleng - 2);
    214 			return STRING;
    215 		}
    216 
    217 #.*$		/* drop comment until end of line */
    218 [ \t]		/* eat whitespace */
    219 
    220 :		return COLON;
    221