rarpd.c revision 1.16 1 1.16 is /* $NetBSD: rarpd.c,v 1.16 1997/03/15 18:37:38 is Exp $ */
2 1.9 thorpej
3 1.1 deraadt /*
4 1.1 deraadt * Copyright (c) 1990 The Regents of the University of California.
5 1.1 deraadt * All rights reserved.
6 1.1 deraadt *
7 1.1 deraadt * Redistribution and use in source and binary forms, with or without
8 1.1 deraadt * modification, are permitted provided that: (1) source code distributions
9 1.1 deraadt * retain the above copyright notice and this paragraph in its entirety, (2)
10 1.1 deraadt * distributions including binary code include the above copyright notice and
11 1.1 deraadt * this paragraph in its entirety in the documentation or other materials
12 1.1 deraadt * provided with the distribution, and (3) all advertising materials mentioning
13 1.1 deraadt * features or use of this software display the following acknowledgement:
14 1.1 deraadt * ``This product includes software developed by the University of California,
15 1.1 deraadt * Lawrence Berkeley Laboratory and its contributors.'' Neither the name of
16 1.1 deraadt * the University nor the names of its contributors may be used to endorse
17 1.1 deraadt * or promote products derived from this software without specific prior
18 1.1 deraadt * written permission.
19 1.1 deraadt * THIS SOFTWARE IS PROVIDED ``AS IS'' AND WITHOUT ANY EXPRESS OR IMPLIED
20 1.1 deraadt * WARRANTIES, INCLUDING, WITHOUT LIMITATION, THE IMPLIED WARRANTIES OF
21 1.1 deraadt * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE.
22 1.1 deraadt */
23 1.1 deraadt #ifndef lint
24 1.1 deraadt char copyright[] =
25 1.1 deraadt "@(#) Copyright (c) 1990 The Regents of the University of California.\n\
26 1.1 deraadt All rights reserved.\n";
27 1.1 deraadt #endif /* not lint */
28 1.1 deraadt
29 1.1 deraadt #ifndef lint
30 1.16 is static char rcsid[] = "$NetBSD: rarpd.c,v 1.16 1997/03/15 18:37:38 is Exp $";
31 1.1 deraadt #endif
32 1.1 deraadt
33 1.1 deraadt
34 1.1 deraadt /*
35 1.1 deraadt * rarpd - Reverse ARP Daemon
36 1.1 deraadt *
37 1.1 deraadt * Usage: rarpd -a [ -d -f ]
38 1.1 deraadt * rarpd [ -d -f ] interface
39 1.1 deraadt */
40 1.1 deraadt
41 1.1 deraadt #include <stdio.h>
42 1.1 deraadt #include <stdlib.h>
43 1.1 deraadt #include <syslog.h>
44 1.1 deraadt #include <string.h>
45 1.1 deraadt #include <strings.h>
46 1.1 deraadt #include <sys/types.h>
47 1.1 deraadt #include <unistd.h>
48 1.1 deraadt #include <sys/time.h>
49 1.1 deraadt #include <net/bpf.h>
50 1.1 deraadt #include <sys/socket.h>
51 1.1 deraadt #include <sys/ioctl.h>
52 1.1 deraadt #include <net/if.h>
53 1.7 mycroft #include <net/if_dl.h>
54 1.16 is #ifdef __NetBSD__
55 1.16 is #include <net/if_ether.h>
56 1.16 is #endif
57 1.7 mycroft #include <net/if_types.h>
58 1.1 deraadt #include <netinet/in.h>
59 1.16 is #ifdef __NetBSD__
60 1.16 is #include <netinet/if_inarp.h>
61 1.16 is #else
62 1.1 deraadt #include <netinet/if_ether.h>
63 1.16 is #endif
64 1.1 deraadt #include <sys/errno.h>
65 1.1 deraadt #include <sys/file.h>
66 1.1 deraadt #include <netdb.h>
67 1.1 deraadt #include <arpa/inet.h>
68 1.1 deraadt #include <dirent.h>
69 1.1 deraadt
70 1.1 deraadt #define FATAL 1 /* fatal error occurred */
71 1.1 deraadt #define NONFATAL 0 /* non fatal error occurred */
72 1.1 deraadt
73 1.1 deraadt /*
74 1.1 deraadt * The structure for each interface.
75 1.1 deraadt */
76 1.1 deraadt struct if_info {
77 1.1 deraadt int ii_fd; /* BPF file descriptor */
78 1.1 deraadt u_char ii_eaddr[6]; /* Ethernet address of this interface */
79 1.1 deraadt u_long ii_ipaddr; /* IP address of this interface */
80 1.1 deraadt u_long ii_netmask; /* subnet or net mask */
81 1.1 deraadt struct if_info *ii_next;
82 1.1 deraadt };
83 1.1 deraadt /*
84 1.1 deraadt * The list of all interfaces that are being listened to. rarp_loop()
85 1.1 deraadt * "selects" on the descriptors in this list.
86 1.1 deraadt */
87 1.1 deraadt struct if_info *iflist;
88 1.1 deraadt
89 1.1 deraadt int rarp_open __P((char *));
90 1.1 deraadt void init_one __P((char *));
91 1.1 deraadt void init_all __P((void));
92 1.1 deraadt void rarp_loop __P((void));
93 1.1 deraadt void lookup_eaddr __P((char *, u_char *));
94 1.1 deraadt void lookup_ipaddr __P((char *, u_long *, u_long *));
95 1.1 deraadt void usage __P((void));
96 1.1 deraadt void rarp_process __P((struct if_info *, u_char *));
97 1.1 deraadt void rarp_reply __P((struct if_info *, struct ether_header *, u_long));
98 1.1 deraadt void update_arptab __P((u_char *, u_long));
99 1.1 deraadt void err __P((int, const char *,...));
100 1.1 deraadt void debug __P((const char *,...));
101 1.1 deraadt u_long ipaddrtonetmask __P((u_long));
102 1.1 deraadt
103 1.8 thorpej #ifdef REQUIRE_TFTPBOOT
104 1.8 thorpej int rarp_bootable __P((u_long));
105 1.8 thorpej #endif
106 1.8 thorpej
107 1.1 deraadt int aflag = 0; /* listen on "all" interfaces */
108 1.1 deraadt int dflag = 0; /* print debugging messages */
109 1.1 deraadt int fflag = 0; /* don't fork */
110 1.1 deraadt
111 1.12 jtc int
112 1.1 deraadt main(argc, argv)
113 1.1 deraadt int argc;
114 1.1 deraadt char **argv;
115 1.1 deraadt {
116 1.1 deraadt int op, pid, devnull, f;
117 1.1 deraadt char *ifname, *hostname, *name;
118 1.1 deraadt
119 1.1 deraadt extern char *optarg;
120 1.1 deraadt extern int optind, opterr;
121 1.1 deraadt
122 1.1 deraadt if (name = strrchr(argv[0], '/'))
123 1.1 deraadt ++name;
124 1.1 deraadt else
125 1.1 deraadt name = argv[0];
126 1.1 deraadt if (*name == '-')
127 1.1 deraadt ++name;
128 1.1 deraadt
129 1.1 deraadt /* All error reporting is done through syslogs. */
130 1.1 deraadt openlog(name, LOG_PID | LOG_CONS, LOG_DAEMON);
131 1.1 deraadt
132 1.1 deraadt opterr = 0;
133 1.1 deraadt while ((op = getopt(argc, argv, "adf")) != EOF) {
134 1.1 deraadt switch (op) {
135 1.1 deraadt case 'a':
136 1.1 deraadt ++aflag;
137 1.1 deraadt break;
138 1.1 deraadt
139 1.1 deraadt case 'd':
140 1.1 deraadt ++dflag;
141 1.1 deraadt break;
142 1.1 deraadt
143 1.1 deraadt case 'f':
144 1.1 deraadt ++fflag;
145 1.1 deraadt break;
146 1.1 deraadt
147 1.1 deraadt default:
148 1.1 deraadt usage();
149 1.1 deraadt /* NOTREACHED */
150 1.1 deraadt }
151 1.1 deraadt }
152 1.1 deraadt ifname = argv[optind++];
153 1.1 deraadt hostname = ifname ? argv[optind] : 0;
154 1.1 deraadt if ((aflag && ifname) || (!aflag && ifname == 0))
155 1.1 deraadt usage();
156 1.1 deraadt
157 1.1 deraadt if (aflag)
158 1.1 deraadt init_all();
159 1.1 deraadt else
160 1.1 deraadt init_one(ifname);
161 1.1 deraadt
162 1.1 deraadt if ((!fflag) && (!dflag)) {
163 1.1 deraadt pid = fork();
164 1.1 deraadt if (pid > 0)
165 1.1 deraadt /* Parent exits, leaving child in background. */
166 1.1 deraadt exit(0);
167 1.1 deraadt else
168 1.1 deraadt if (pid == -1) {
169 1.1 deraadt err(FATAL, "cannot fork");
170 1.1 deraadt /* NOTREACHED */
171 1.1 deraadt }
172 1.1 deraadt /* Fade into the background */
173 1.1 deraadt f = open("/dev/tty", O_RDWR);
174 1.1 deraadt if (f >= 0) {
175 1.1 deraadt if (ioctl(f, TIOCNOTTY, 0) < 0) {
176 1.1 deraadt err(FATAL, "TIOCNOTTY: %s", strerror(errno));
177 1.1 deraadt /* NOTREACHED */
178 1.1 deraadt }
179 1.1 deraadt (void) close(f);
180 1.1 deraadt }
181 1.1 deraadt (void) chdir("/");
182 1.1 deraadt (void) setpgrp(0, getpid());
183 1.1 deraadt devnull = open("/dev/null", O_RDWR);
184 1.1 deraadt if (devnull >= 0) {
185 1.1 deraadt (void) dup2(devnull, 0);
186 1.1 deraadt (void) dup2(devnull, 1);
187 1.1 deraadt (void) dup2(devnull, 2);
188 1.1 deraadt if (devnull > 2)
189 1.1 deraadt (void) close(devnull);
190 1.1 deraadt }
191 1.1 deraadt }
192 1.1 deraadt rarp_loop();
193 1.1 deraadt }
194 1.1 deraadt /*
195 1.1 deraadt * Add 'ifname' to the interface list. Lookup its IP address and network
196 1.1 deraadt * mask and Ethernet address, and open a BPF file for it.
197 1.1 deraadt */
198 1.1 deraadt void
199 1.1 deraadt init_one(ifname)
200 1.1 deraadt char *ifname;
201 1.1 deraadt {
202 1.1 deraadt struct if_info *p;
203 1.1 deraadt
204 1.7 mycroft p = (struct if_info *)malloc(sizeof(*p));
205 1.1 deraadt if (p == 0) {
206 1.1 deraadt err(FATAL, "malloc: %s", strerror(errno));
207 1.1 deraadt /* NOTREACHED */
208 1.1 deraadt }
209 1.1 deraadt p->ii_next = iflist;
210 1.1 deraadt iflist = p;
211 1.1 deraadt
212 1.1 deraadt p->ii_fd = rarp_open(ifname);
213 1.1 deraadt lookup_eaddr(ifname, p->ii_eaddr);
214 1.1 deraadt lookup_ipaddr(ifname, &p->ii_ipaddr, &p->ii_netmask);
215 1.1 deraadt }
216 1.1 deraadt /*
217 1.1 deraadt * Initialize all "candidate" interfaces that are in the system
218 1.1 deraadt * configuration list. A "candidate" is up, not loopback and not
219 1.1 deraadt * point to point.
220 1.1 deraadt */
221 1.1 deraadt void
222 1.1 deraadt init_all()
223 1.1 deraadt {
224 1.7 mycroft char inbuf[8192];
225 1.1 deraadt struct ifconf ifc;
226 1.10 hpeyerl struct ifreq ifreq, *ifr;
227 1.7 mycroft int fd;
228 1.7 mycroft int i, len;
229 1.1 deraadt
230 1.1 deraadt if ((fd = socket(AF_INET, SOCK_DGRAM, 0)) < 0) {
231 1.1 deraadt err(FATAL, "socket: %s", strerror(errno));
232 1.1 deraadt /* NOTREACHED */
233 1.1 deraadt }
234 1.7 mycroft
235 1.7 mycroft ifc.ifc_len = sizeof(inbuf);
236 1.7 mycroft ifc.ifc_buf = inbuf;
237 1.7 mycroft if (ioctl(fd, SIOCGIFCONF, (caddr_t)&ifc) < 0 ||
238 1.1 deraadt ifc.ifc_len < sizeof(struct ifreq)) {
239 1.7 mycroft err(FATAL, "init_all: SIOCGIFCONF: %s", strerror(errno));
240 1.1 deraadt /* NOTREACHED */
241 1.1 deraadt }
242 1.7 mycroft ifr = ifc.ifc_req;
243 1.10 hpeyerl ifreq.ifr_name[0] = '\0';
244 1.7 mycroft for (i = 0; i < ifc.ifc_len;
245 1.7 mycroft i += len, ifr = (struct ifreq *)((caddr_t)ifr + len)) {
246 1.7 mycroft len = sizeof(ifr->ifr_name) + ifr->ifr_addr.sa_len;
247 1.10 hpeyerl if (!strncmp(ifreq.ifr_name, ifr->ifr_name, sizeof(ifr->ifr_name)))
248 1.10 hpeyerl continue;
249 1.10 hpeyerl ifreq = *ifr;
250 1.7 mycroft if (ioctl(fd, SIOCGIFFLAGS, (caddr_t)ifr) < 0) {
251 1.7 mycroft err(FATAL, "init_all: SIOCGIFFLAGS: %s",
252 1.7 mycroft strerror(errno));
253 1.1 deraadt /* NOTREACHED */
254 1.1 deraadt }
255 1.7 mycroft if ((ifr->ifr_flags &
256 1.7 mycroft (IFF_UP | IFF_LOOPBACK | IFF_POINTOPOINT)) != IFF_UP)
257 1.1 deraadt continue;
258 1.7 mycroft init_one(ifr->ifr_name);
259 1.1 deraadt }
260 1.1 deraadt (void) close(fd);
261 1.1 deraadt }
262 1.1 deraadt
263 1.1 deraadt void
264 1.1 deraadt usage()
265 1.1 deraadt {
266 1.1 deraadt (void) fprintf(stderr, "usage: rarpd -a [ -d -f ]\n");
267 1.1 deraadt (void) fprintf(stderr, " rarpd [ -d -f ] interface\n");
268 1.1 deraadt exit(1);
269 1.1 deraadt }
270 1.1 deraadt
271 1.1 deraadt static int
272 1.1 deraadt bpf_open()
273 1.1 deraadt {
274 1.1 deraadt int fd;
275 1.1 deraadt int n = 0;
276 1.1 deraadt char device[sizeof "/dev/bpf000"];
277 1.1 deraadt
278 1.1 deraadt /* Go through all the minors and find one that isn't in use. */
279 1.1 deraadt do {
280 1.1 deraadt (void) sprintf(device, "/dev/bpf%d", n++);
281 1.1 deraadt fd = open(device, O_RDWR);
282 1.1 deraadt } while (fd < 0 && errno == EBUSY);
283 1.1 deraadt
284 1.1 deraadt if (fd < 0) {
285 1.1 deraadt err(FATAL, "%s: %s", device, strerror(errno));
286 1.1 deraadt /* NOTREACHED */
287 1.1 deraadt }
288 1.1 deraadt return fd;
289 1.1 deraadt }
290 1.1 deraadt /*
291 1.1 deraadt * Open a BPF file and attach it to the interface named 'device'.
292 1.1 deraadt * Set immediate mode, and set a filter that accepts only RARP requests.
293 1.1 deraadt */
294 1.1 deraadt int
295 1.1 deraadt rarp_open(device)
296 1.1 deraadt char *device;
297 1.1 deraadt {
298 1.1 deraadt int fd;
299 1.1 deraadt struct ifreq ifr;
300 1.1 deraadt u_int dlt;
301 1.1 deraadt int immediate;
302 1.1 deraadt
303 1.1 deraadt static struct bpf_insn insns[] = {
304 1.1 deraadt BPF_STMT(BPF_LD | BPF_H | BPF_ABS, 12),
305 1.1 deraadt BPF_JUMP(BPF_JMP | BPF_JEQ | BPF_K, ETHERTYPE_REVARP, 0, 3),
306 1.1 deraadt BPF_STMT(BPF_LD | BPF_H | BPF_ABS, 20),
307 1.6 cgd BPF_JUMP(BPF_JMP | BPF_JEQ | BPF_K, ARPOP_REVREQUEST, 0, 1),
308 1.16 is BPF_STMT(BPF_RET | BPF_K,
309 1.16 is sizeof(struct arphdr) +
310 1.16 is 2 * ETHER_ADDR_LEN + 2 * sizeof(struct in_addr) +
311 1.1 deraadt sizeof(struct ether_header)),
312 1.1 deraadt BPF_STMT(BPF_RET | BPF_K, 0),
313 1.1 deraadt };
314 1.1 deraadt static struct bpf_program filter = {
315 1.1 deraadt sizeof insns / sizeof(insns[0]),
316 1.1 deraadt insns
317 1.1 deraadt };
318 1.1 deraadt
319 1.1 deraadt fd = bpf_open();
320 1.1 deraadt
321 1.1 deraadt /* Set immediate mode so packets are processed as they arrive. */
322 1.1 deraadt immediate = 1;
323 1.1 deraadt if (ioctl(fd, BIOCIMMEDIATE, &immediate) < 0) {
324 1.1 deraadt err(FATAL, "BIOCIMMEDIATE: %s", strerror(errno));
325 1.1 deraadt /* NOTREACHED */
326 1.1 deraadt }
327 1.1 deraadt (void) strncpy(ifr.ifr_name, device, sizeof ifr.ifr_name);
328 1.1 deraadt if (ioctl(fd, BIOCSETIF, (caddr_t) & ifr) < 0) {
329 1.1 deraadt err(FATAL, "BIOCSETIF: %s", strerror(errno));
330 1.1 deraadt /* NOTREACHED */
331 1.1 deraadt }
332 1.1 deraadt /* Check that the data link layer is an Ethernet; this code won't work
333 1.1 deraadt * with anything else. */
334 1.1 deraadt if (ioctl(fd, BIOCGDLT, (caddr_t) & dlt) < 0) {
335 1.1 deraadt err(FATAL, "BIOCGDLT: %s", strerror(errno));
336 1.1 deraadt /* NOTREACHED */
337 1.1 deraadt }
338 1.1 deraadt if (dlt != DLT_EN10MB) {
339 1.1 deraadt err(FATAL, "%s is not an ethernet", device);
340 1.1 deraadt /* NOTREACHED */
341 1.1 deraadt }
342 1.1 deraadt /* Set filter program. */
343 1.1 deraadt if (ioctl(fd, BIOCSETF, (caddr_t) & filter) < 0) {
344 1.1 deraadt err(FATAL, "BIOCSETF: %s", strerror(errno));
345 1.1 deraadt /* NOTREACHED */
346 1.1 deraadt }
347 1.1 deraadt return fd;
348 1.1 deraadt }
349 1.1 deraadt /*
350 1.1 deraadt * Perform various sanity checks on the RARP request packet. Return
351 1.1 deraadt * false on failure and log the reason.
352 1.1 deraadt */
353 1.1 deraadt static int
354 1.1 deraadt rarp_check(p, len)
355 1.1 deraadt u_char *p;
356 1.1 deraadt int len;
357 1.1 deraadt {
358 1.1 deraadt struct ether_header *ep = (struct ether_header *) p;
359 1.16 is #ifdef __NetBSD__
360 1.16 is struct arphdr *ap = (struct arphdr *) (p + sizeof(*ep));
361 1.16 is #else
362 1.1 deraadt struct ether_arp *ap = (struct ether_arp *) (p + sizeof(*ep));
363 1.16 is #endif
364 1.1 deraadt
365 1.1 deraadt (void) debug("got a packet");
366 1.1 deraadt
367 1.1 deraadt if (len < sizeof(*ep) + sizeof(*ap)) {
368 1.1 deraadt err(NONFATAL, "truncated request");
369 1.1 deraadt return 0;
370 1.1 deraadt }
371 1.16 is #ifdef __NetBSD__
372 1.16 is /* now that we know the fixed part of the ARP hdr is there: */
373 1.16 is if (len < sizeof(*ap) + 2 * ap->ar_hln + 2 * ap->ar_pln) {
374 1.16 is err(NONFATAL, "truncated request");
375 1.16 is return 0;
376 1.16 is }
377 1.16 is #endif
378 1.1 deraadt /* XXX This test might be better off broken out... */
379 1.11 mycroft #ifdef __FreeBSD__
380 1.11 mycroft /* BPF (incorrectly) returns this in host order. */
381 1.11 mycroft if (ep->ether_type != ETHERTYPE_REVARP ||
382 1.11 mycroft #else
383 1.1 deraadt if (ntohs (ep->ether_type) != ETHERTYPE_REVARP ||
384 1.11 mycroft #endif
385 1.16 is #ifdef __NetBSD__
386 1.16 is ntohs (ap->ar_hrd) != ARPHRD_ETHER ||
387 1.16 is ntohs (ap->ar_op) != ARPOP_REVREQUEST ||
388 1.16 is ntohs (ap->ar_pro) != ETHERTYPE_IP ||
389 1.16 is ap->ar_hln != 6 || ap->ar_pln != 4) {
390 1.16 is #else
391 1.1 deraadt ntohs (ap->arp_hrd) != ARPHRD_ETHER ||
392 1.6 cgd ntohs (ap->arp_op) != ARPOP_REVREQUEST ||
393 1.1 deraadt ntohs (ap->arp_pro) != ETHERTYPE_IP ||
394 1.1 deraadt ap->arp_hln != 6 || ap->arp_pln != 4) {
395 1.16 is #endif
396 1.1 deraadt err(NONFATAL, "request fails sanity check");
397 1.1 deraadt return 0;
398 1.1 deraadt }
399 1.16 is #ifdef __NetBSD__
400 1.16 is if (bcmp((char *) &ep->ether_shost, ar_sha(ap), 6) != 0) {
401 1.16 is #else
402 1.16 is if (bcmp((char *) &ep->ether_shost, ap->arp_sha, 6) != 0) {
403 1.16 is #endif
404 1.1 deraadt err(NONFATAL, "ether/arp sender address mismatch");
405 1.1 deraadt return 0;
406 1.1 deraadt }
407 1.16 is #ifdef __NetBSD__
408 1.16 is if (bcmp(ar_sha(ap), ar_tha(ap), 6) != 0) {
409 1.16 is #else
410 1.1 deraadt if (bcmp((char *) &ap->arp_sha, (char *) &ap->arp_tha, 6) != 0) {
411 1.16 is #endif
412 1.1 deraadt err(NONFATAL, "ether/arp target address mismatch");
413 1.1 deraadt return 0;
414 1.1 deraadt }
415 1.1 deraadt return 1;
416 1.1 deraadt }
417 1.1 deraadt
418 1.1 deraadt /*
419 1.1 deraadt * Loop indefinitely listening for RARP requests on the
420 1.1 deraadt * interfaces in 'iflist'.
421 1.1 deraadt */
422 1.1 deraadt void
423 1.1 deraadt rarp_loop()
424 1.1 deraadt {
425 1.1 deraadt u_char *buf, *bp, *ep;
426 1.1 deraadt int cc, fd;
427 1.1 deraadt fd_set fds, listeners;
428 1.1 deraadt int bufsize, maxfd = 0;
429 1.1 deraadt struct if_info *ii;
430 1.1 deraadt
431 1.1 deraadt if (iflist == 0) {
432 1.1 deraadt err(FATAL, "no interfaces");
433 1.1 deraadt /* NOTREACHED */
434 1.1 deraadt }
435 1.1 deraadt if (ioctl(iflist->ii_fd, BIOCGBLEN, (caddr_t) & bufsize) < 0) {
436 1.1 deraadt err(FATAL, "BIOCGBLEN: %s", strerror(errno));
437 1.1 deraadt /* NOTREACHED */
438 1.1 deraadt }
439 1.1 deraadt buf = (u_char *) malloc((unsigned) bufsize);
440 1.1 deraadt if (buf == 0) {
441 1.1 deraadt err(FATAL, "malloc: %s", strerror(errno));
442 1.1 deraadt /* NOTREACHED */
443 1.1 deraadt }
444 1.1 deraadt /*
445 1.1 deraadt * Find the highest numbered file descriptor for select().
446 1.1 deraadt * Initialize the set of descriptors to listen to.
447 1.1 deraadt */
448 1.1 deraadt FD_ZERO(&fds);
449 1.1 deraadt for (ii = iflist; ii; ii = ii->ii_next) {
450 1.1 deraadt FD_SET(ii->ii_fd, &fds);
451 1.1 deraadt if (ii->ii_fd > maxfd)
452 1.1 deraadt maxfd = ii->ii_fd;
453 1.1 deraadt }
454 1.1 deraadt while (1) {
455 1.1 deraadt listeners = fds;
456 1.1 deraadt if (select(maxfd + 1, &listeners, (struct fd_set *) 0,
457 1.1 deraadt (struct fd_set *) 0, (struct timeval *) 0) < 0) {
458 1.1 deraadt err(FATAL, "select: %s", strerror(errno));
459 1.1 deraadt /* NOTREACHED */
460 1.1 deraadt }
461 1.1 deraadt for (ii = iflist; ii; ii = ii->ii_next) {
462 1.1 deraadt fd = ii->ii_fd;
463 1.1 deraadt if (!FD_ISSET(fd, &listeners))
464 1.1 deraadt continue;
465 1.1 deraadt again:
466 1.1 deraadt cc = read(fd, (char *) buf, bufsize);
467 1.1 deraadt /* Don't choke when we get ptraced */
468 1.1 deraadt if (cc < 0 && errno == EINTR)
469 1.1 deraadt goto again;
470 1.1 deraadt /* Due to a SunOS bug, after 2^31 bytes, the file
471 1.1 deraadt * offset overflows and read fails with EINVAL. The
472 1.1 deraadt * lseek() to 0 will fix things. */
473 1.1 deraadt if (cc < 0) {
474 1.1 deraadt if (errno == EINVAL &&
475 1.5 cgd (lseek(fd, 0, SEEK_CUR) + bufsize) < 0) {
476 1.1 deraadt (void) lseek(fd, 0, 0);
477 1.1 deraadt goto again;
478 1.1 deraadt }
479 1.1 deraadt err(FATAL, "read: %s", strerror(errno));
480 1.1 deraadt /* NOTREACHED */
481 1.1 deraadt }
482 1.1 deraadt /* Loop through the packet(s) */
483 1.1 deraadt #define bhp ((struct bpf_hdr *)bp)
484 1.1 deraadt bp = buf;
485 1.1 deraadt ep = bp + cc;
486 1.1 deraadt while (bp < ep) {
487 1.1 deraadt register int caplen, hdrlen;
488 1.1 deraadt
489 1.1 deraadt caplen = bhp->bh_caplen;
490 1.1 deraadt hdrlen = bhp->bh_hdrlen;
491 1.1 deraadt if (rarp_check(bp + hdrlen, caplen))
492 1.1 deraadt rarp_process(ii, bp + hdrlen);
493 1.1 deraadt bp += BPF_WORDALIGN(hdrlen + caplen);
494 1.1 deraadt }
495 1.1 deraadt }
496 1.1 deraadt }
497 1.1 deraadt }
498 1.8 thorpej
499 1.8 thorpej #ifdef REQUIRE_TFTPBOOT
500 1.8 thorpej
501 1.1 deraadt #ifndef TFTP_DIR
502 1.1 deraadt #define TFTP_DIR "/tftpboot"
503 1.1 deraadt #endif
504 1.1 deraadt
505 1.1 deraadt /*
506 1.1 deraadt * True if this server can boot the host whose IP address is 'addr'.
507 1.1 deraadt * This check is made by looking in the tftp directory for the
508 1.1 deraadt * configuration file.
509 1.1 deraadt */
510 1.1 deraadt int
511 1.1 deraadt rarp_bootable(addr)
512 1.1 deraadt u_long addr;
513 1.1 deraadt {
514 1.1 deraadt register struct dirent *dent;
515 1.1 deraadt register DIR *d;
516 1.1 deraadt char ipname[9];
517 1.1 deraadt static DIR *dd = 0;
518 1.1 deraadt
519 1.1 deraadt (void) sprintf(ipname, "%08X", addr);
520 1.1 deraadt /* If directory is already open, rewind it. Otherwise, open it. */
521 1.1 deraadt if (d = dd)
522 1.1 deraadt rewinddir(d);
523 1.1 deraadt else {
524 1.1 deraadt if (chdir(TFTP_DIR) == -1) {
525 1.1 deraadt err(FATAL, "chdir: %s", strerror(errno));
526 1.1 deraadt /* NOTREACHED */
527 1.1 deraadt }
528 1.1 deraadt d = opendir(".");
529 1.1 deraadt if (d == 0) {
530 1.1 deraadt err(FATAL, "opendir: %s", strerror(errno));
531 1.1 deraadt /* NOTREACHED */
532 1.1 deraadt }
533 1.1 deraadt dd = d;
534 1.1 deraadt }
535 1.1 deraadt while (dent = readdir(d))
536 1.1 deraadt if (strncmp(dent->d_name, ipname, 8) == 0)
537 1.1 deraadt return 1;
538 1.1 deraadt return 0;
539 1.1 deraadt }
540 1.8 thorpej #endif /* REQUIRE_TFTPBOOT */
541 1.8 thorpej
542 1.1 deraadt /*
543 1.1 deraadt * Given a list of IP addresses, 'alist', return the first address that
544 1.1 deraadt * is on network 'net'; 'netmask' is a mask indicating the network portion
545 1.1 deraadt * of the address.
546 1.1 deraadt */
547 1.1 deraadt u_long
548 1.1 deraadt choose_ipaddr(alist, net, netmask)
549 1.1 deraadt u_long **alist;
550 1.1 deraadt u_long net;
551 1.1 deraadt u_long netmask;
552 1.1 deraadt {
553 1.1 deraadt for (; *alist; ++alist) {
554 1.1 deraadt if ((**alist & netmask) == net)
555 1.1 deraadt return **alist;
556 1.1 deraadt }
557 1.1 deraadt return 0;
558 1.1 deraadt }
559 1.1 deraadt /*
560 1.1 deraadt * Answer the RARP request in 'pkt', on the interface 'ii'. 'pkt' has
561 1.1 deraadt * already been checked for validity. The reply is overlaid on the request.
562 1.1 deraadt */
563 1.1 deraadt void
564 1.1 deraadt rarp_process(ii, pkt)
565 1.1 deraadt struct if_info *ii;
566 1.1 deraadt u_char *pkt;
567 1.1 deraadt {
568 1.1 deraadt struct ether_header *ep;
569 1.1 deraadt struct hostent *hp;
570 1.1 deraadt u_long target_ipaddr;
571 1.1 deraadt char ename[256];
572 1.2 deraadt struct in_addr in;
573 1.1 deraadt
574 1.1 deraadt ep = (struct ether_header *) pkt;
575 1.1 deraadt
576 1.13 mikel if (ether_ntohost(ename, (struct ether_addr *)&ep->ether_shost) != 0 ||
577 1.1 deraadt (hp = gethostbyname(ename)) == 0)
578 1.1 deraadt return;
579 1.1 deraadt
580 1.1 deraadt /* Choose correct address from list. */
581 1.1 deraadt if (hp->h_addrtype != AF_INET) {
582 1.1 deraadt err(FATAL, "cannot handle non IP addresses");
583 1.1 deraadt /* NOTREACHED */
584 1.1 deraadt }
585 1.1 deraadt target_ipaddr = choose_ipaddr((u_long **) hp->h_addr_list,
586 1.2 deraadt ii->ii_ipaddr & ii->ii_netmask, ii->ii_netmask);
587 1.1 deraadt
588 1.1 deraadt if (target_ipaddr == 0) {
589 1.2 deraadt in.s_addr = ii->ii_ipaddr & ii->ii_netmask;
590 1.1 deraadt err(NONFATAL, "cannot find %s on net %s\n",
591 1.2 deraadt ename, inet_ntoa(in));
592 1.1 deraadt return;
593 1.1 deraadt }
594 1.8 thorpej #ifdef REQUIRE_TFTPBOOT
595 1.1 deraadt if (rarp_bootable(htonl(target_ipaddr)))
596 1.8 thorpej #endif
597 1.1 deraadt rarp_reply(ii, ep, target_ipaddr);
598 1.1 deraadt }
599 1.1 deraadt /*
600 1.1 deraadt * Lookup the ethernet address of the interface attached to the BPF
601 1.1 deraadt * file descriptor 'fd'; return it in 'eaddr'.
602 1.1 deraadt */
603 1.1 deraadt void
604 1.1 deraadt lookup_eaddr(ifname, eaddr)
605 1.1 deraadt char *ifname;
606 1.1 deraadt u_char *eaddr;
607 1.1 deraadt {
608 1.1 deraadt char inbuf[8192];
609 1.1 deraadt struct ifconf ifc;
610 1.1 deraadt struct ifreq *ifr;
611 1.7 mycroft struct sockaddr_dl *sdl;
612 1.1 deraadt int fd;
613 1.1 deraadt int i, len;
614 1.1 deraadt
615 1.1 deraadt /* We cannot use SIOCGIFADDR on the BPF descriptor.
616 1.1 deraadt We must instead get all the interfaces with SIOCGIFCONF
617 1.1 deraadt and find the right one. */
618 1.1 deraadt
619 1.1 deraadt /* Use datagram socket to get Ethernet address. */
620 1.1 deraadt if ((fd = socket(AF_INET, SOCK_DGRAM, 0)) < 0) {
621 1.1 deraadt err(FATAL, "socket: %s", strerror(errno));
622 1.1 deraadt /* NOTREACHED */
623 1.1 deraadt }
624 1.1 deraadt
625 1.7 mycroft ifc.ifc_len = sizeof(inbuf);
626 1.1 deraadt ifc.ifc_buf = inbuf;
627 1.7 mycroft if (ioctl(fd, SIOCGIFCONF, (caddr_t)&ifc) < 0 ||
628 1.7 mycroft ifc.ifc_len < sizeof(struct ifreq)) {
629 1.7 mycroft err(FATAL, "lookup_eaddr: SIOGIFCONF: %s", strerror(errno));
630 1.1 deraadt /* NOTREACHED */
631 1.1 deraadt }
632 1.1 deraadt ifr = ifc.ifc_req;
633 1.7 mycroft for (i = 0; i < ifc.ifc_len;
634 1.7 mycroft i += len, ifr = (struct ifreq *)((caddr_t)ifr + len)) {
635 1.7 mycroft len = sizeof(ifr->ifr_name) + ifr->ifr_addr.sa_len;
636 1.7 mycroft sdl = (struct sockaddr_dl *)&ifr->ifr_addr;
637 1.7 mycroft if (sdl->sdl_family != AF_LINK || sdl->sdl_type != IFT_ETHER ||
638 1.7 mycroft sdl->sdl_alen != 6)
639 1.7 mycroft continue;
640 1.7 mycroft if (!strncmp(ifr->ifr_name, ifname, sizeof(ifr->ifr_name))) {
641 1.7 mycroft bcopy((caddr_t)LLADDR(sdl), (caddr_t)eaddr, 6);
642 1.7 mycroft if (dflag)
643 1.7 mycroft fprintf(stderr, "%s: %x:%x:%x:%x:%x:%x\n",
644 1.7 mycroft ifr->ifr_name, eaddr[0], eaddr[1],
645 1.7 mycroft eaddr[2], eaddr[3], eaddr[4], eaddr[5]);
646 1.1 deraadt return;
647 1.1 deraadt }
648 1.1 deraadt }
649 1.1 deraadt
650 1.1 deraadt err(FATAL, "lookup_eaddr: Never saw interface `%s'!", ifname);
651 1.1 deraadt }
652 1.1 deraadt /*
653 1.1 deraadt * Lookup the IP address and network mask of the interface named 'ifname'.
654 1.1 deraadt */
655 1.1 deraadt void
656 1.1 deraadt lookup_ipaddr(ifname, addrp, netmaskp)
657 1.1 deraadt char *ifname;
658 1.1 deraadt u_long *addrp;
659 1.1 deraadt u_long *netmaskp;
660 1.1 deraadt {
661 1.1 deraadt int fd;
662 1.1 deraadt struct ifreq ifr;
663 1.1 deraadt
664 1.1 deraadt /* Use datagram socket to get IP address. */
665 1.1 deraadt if ((fd = socket(AF_INET, SOCK_DGRAM, 0)) < 0) {
666 1.1 deraadt err(FATAL, "socket: %s", strerror(errno));
667 1.1 deraadt /* NOTREACHED */
668 1.1 deraadt }
669 1.1 deraadt (void) strncpy(ifr.ifr_name, ifname, sizeof ifr.ifr_name);
670 1.1 deraadt if (ioctl(fd, SIOCGIFADDR, (char *) &ifr) < 0) {
671 1.1 deraadt err(FATAL, "SIOCGIFADDR: %s", strerror(errno));
672 1.1 deraadt /* NOTREACHED */
673 1.1 deraadt }
674 1.1 deraadt *addrp = ((struct sockaddr_in *) & ifr.ifr_addr)->sin_addr.s_addr;
675 1.1 deraadt if (ioctl(fd, SIOCGIFNETMASK, (char *) &ifr) < 0) {
676 1.1 deraadt perror("SIOCGIFNETMASK");
677 1.1 deraadt exit(1);
678 1.1 deraadt }
679 1.1 deraadt *netmaskp = ((struct sockaddr_in *) & ifr.ifr_addr)->sin_addr.s_addr;
680 1.1 deraadt /* If SIOCGIFNETMASK didn't work, figure out a mask from the IP
681 1.1 deraadt * address class. */
682 1.1 deraadt if (*netmaskp == 0)
683 1.1 deraadt *netmaskp = ipaddrtonetmask(*addrp);
684 1.1 deraadt
685 1.1 deraadt (void) close(fd);
686 1.1 deraadt }
687 1.1 deraadt /*
688 1.1 deraadt * Poke the kernel arp tables with the ethernet/ip address combinataion
689 1.1 deraadt * given. When processing a reply, we must do this so that the booting
690 1.1 deraadt * host (i.e. the guy running rarpd), won't try to ARP for the hardware
691 1.1 deraadt * address of the guy being booted (he cannot answer the ARP).
692 1.1 deraadt */
693 1.1 deraadt void
694 1.1 deraadt update_arptab(ep, ipaddr)
695 1.1 deraadt u_char *ep;
696 1.1 deraadt u_long ipaddr;
697 1.1 deraadt {
698 1.1 deraadt int s;
699 1.1 deraadt struct arpreq request;
700 1.1 deraadt struct sockaddr_in *sin;
701 1.1 deraadt
702 1.1 deraadt request.arp_flags = 0;
703 1.1 deraadt sin = (struct sockaddr_in *) & request.arp_pa;
704 1.1 deraadt sin->sin_family = AF_INET;
705 1.1 deraadt sin->sin_addr.s_addr = ipaddr;
706 1.1 deraadt request.arp_ha.sa_family = AF_UNSPEC;
707 1.1 deraadt /* This is needed #if defined(COMPAT_43) && BYTE_ORDER != BIG_ENDIAN,
708 1.1 deraadt because AF_UNSPEC is zero and the kernel assumes that a zero
709 1.1 deraadt sa_family means that the real sa_family value is in sa_len. */
710 1.1 deraadt request.arp_ha.sa_len = 16; /* XXX */
711 1.1 deraadt bcopy((char *) ep, (char *) request.arp_ha.sa_data, 6);
712 1.1 deraadt
713 1.7 mycroft #if 0
714 1.1 deraadt s = socket(AF_INET, SOCK_DGRAM, 0);
715 1.1 deraadt if (ioctl(s, SIOCSARP, (caddr_t) & request) < 0) {
716 1.1 deraadt err(NONFATAL, "SIOCSARP: %s", strerror(errno));
717 1.1 deraadt }
718 1.1 deraadt (void) close(s);
719 1.7 mycroft #endif
720 1.1 deraadt }
721 1.1 deraadt /*
722 1.1 deraadt * Build a reverse ARP packet and sent it out on the interface.
723 1.6 cgd * 'ep' points to a valid ARPOP_REVREQUEST. The ARPOP_REVREPLY is built
724 1.1 deraadt * on top of the request, then written to the network.
725 1.1 deraadt *
726 1.1 deraadt * RFC 903 defines the ether_arp fields as follows. The following comments
727 1.1 deraadt * are taken (more or less) straight from this document.
728 1.1 deraadt *
729 1.6 cgd * ARPOP_REVREQUEST
730 1.1 deraadt *
731 1.1 deraadt * arp_sha is the hardware address of the sender of the packet.
732 1.1 deraadt * arp_spa is undefined.
733 1.1 deraadt * arp_tha is the 'target' hardware address.
734 1.1 deraadt * In the case where the sender wishes to determine his own
735 1.1 deraadt * protocol address, this, like arp_sha, will be the hardware
736 1.1 deraadt * address of the sender.
737 1.1 deraadt * arp_tpa is undefined.
738 1.1 deraadt *
739 1.6 cgd * ARPOP_REVREPLY
740 1.1 deraadt *
741 1.1 deraadt * arp_sha is the hardware address of the responder (the sender of the
742 1.1 deraadt * reply packet).
743 1.1 deraadt * arp_spa is the protocol address of the responder (see the note below).
744 1.1 deraadt * arp_tha is the hardware address of the target, and should be the same as
745 1.1 deraadt * that which was given in the request.
746 1.1 deraadt * arp_tpa is the protocol address of the target, that is, the desired address.
747 1.1 deraadt *
748 1.1 deraadt * Note that the requirement that arp_spa be filled in with the responder's
749 1.1 deraadt * protocol is purely for convenience. For instance, if a system were to use
750 1.1 deraadt * both ARP and RARP, then the inclusion of the valid protocol-hardware
751 1.1 deraadt * address pair (arp_spa, arp_sha) may eliminate the need for a subsequent
752 1.1 deraadt * ARP request.
753 1.1 deraadt */
754 1.1 deraadt void
755 1.1 deraadt rarp_reply(ii, ep, ipaddr)
756 1.1 deraadt struct if_info *ii;
757 1.1 deraadt struct ether_header *ep;
758 1.1 deraadt u_long ipaddr;
759 1.1 deraadt {
760 1.1 deraadt int n;
761 1.16 is #ifdef __NetBSD__
762 1.16 is struct arphdr *ap = (struct arphdr *) (ep + 1);
763 1.16 is #else
764 1.1 deraadt struct ether_arp *ap = (struct ether_arp *) (ep + 1);
765 1.16 is #endif
766 1.16 is
767 1.1 deraadt int len;
768 1.1 deraadt
769 1.16 is #ifdef __NetBSD__
770 1.16 is update_arptab(ar_sha(ap), ipaddr);
771 1.16 is #else
772 1.1 deraadt update_arptab((u_char *) & ap->arp_sha, ipaddr);
773 1.16 is #endif
774 1.1 deraadt
775 1.1 deraadt /* Build the rarp reply by modifying the rarp request in place. */
776 1.11 mycroft #ifdef __FreeBSD__
777 1.11 mycroft /* BPF (incorrectly) wants this in host order. */
778 1.11 mycroft ep->ether_type = ETHERTYPE_REVARP;
779 1.11 mycroft #else
780 1.3 deraadt ep->ether_type = htons(ETHERTYPE_REVARP);
781 1.11 mycroft #endif
782 1.16 is #ifdef __NetBSD__
783 1.16 is ap->ar_hrd = htons(ARPHRD_ETHER);
784 1.16 is ap->ar_pro = htons(ETHERTYPE_IP);
785 1.16 is ap->ar_op = htons(ARPOP_REVREPLY);
786 1.16 is
787 1.16 is bcopy(ar_sha(ap), (char *) &ep->ether_dhost, 6);
788 1.16 is bcopy((char *) ii->ii_eaddr, (char *) &ep->ether_shost, 6);
789 1.16 is bcopy((char *) ii->ii_eaddr, ar_sha(ap), 6);
790 1.16 is
791 1.16 is bcopy((char *) &ipaddr, ar_tpa(ap), 4);
792 1.16 is /* Target hardware is unchanged. */
793 1.16 is bcopy((char *) &ii->ii_ipaddr, ar_spa(ap), 4);
794 1.16 is
795 1.16 is len = sizeof(*ep) + sizeof(*ap) +
796 1.16 is 2 * ap->ar_pln + 2 * ap->ar_hln;
797 1.16 is #else
798 1.4 cgd ap->ea_hdr.ar_hrd = htons(ARPHRD_ETHER);
799 1.4 cgd ap->ea_hdr.ar_pro = htons(ETHERTYPE_IP);
800 1.6 cgd ap->arp_op = htons(ARPOP_REVREPLY);
801 1.1 deraadt
802 1.1 deraadt bcopy((char *) &ap->arp_sha, (char *) &ep->ether_dhost, 6);
803 1.1 deraadt bcopy((char *) ii->ii_eaddr, (char *) &ep->ether_shost, 6);
804 1.1 deraadt bcopy((char *) ii->ii_eaddr, (char *) &ap->arp_sha, 6);
805 1.1 deraadt
806 1.1 deraadt bcopy((char *) &ipaddr, (char *) ap->arp_tpa, 4);
807 1.1 deraadt /* Target hardware is unchanged. */
808 1.1 deraadt bcopy((char *) &ii->ii_ipaddr, (char *) ap->arp_spa, 4);
809 1.1 deraadt
810 1.1 deraadt len = sizeof(*ep) + sizeof(*ap);
811 1.16 is #endif
812 1.16 is
813 1.1 deraadt n = write(ii->ii_fd, (char *) ep, len);
814 1.1 deraadt if (n != len) {
815 1.1 deraadt err(NONFATAL, "write: only %d of %d bytes written", n, len);
816 1.1 deraadt }
817 1.1 deraadt }
818 1.1 deraadt /*
819 1.1 deraadt * Get the netmask of an IP address. This routine is used if
820 1.1 deraadt * SIOCGIFNETMASK doesn't work.
821 1.1 deraadt */
822 1.1 deraadt u_long
823 1.1 deraadt ipaddrtonetmask(addr)
824 1.1 deraadt u_long addr;
825 1.1 deraadt {
826 1.1 deraadt if (IN_CLASSA(addr))
827 1.1 deraadt return IN_CLASSA_NET;
828 1.1 deraadt if (IN_CLASSB(addr))
829 1.1 deraadt return IN_CLASSB_NET;
830 1.1 deraadt if (IN_CLASSC(addr))
831 1.1 deraadt return IN_CLASSC_NET;
832 1.1 deraadt err(FATAL, "unknown IP address class: %08X", addr);
833 1.1 deraadt /* NOTREACHED */
834 1.1 deraadt }
835 1.1 deraadt
836 1.1 deraadt #if __STDC__
837 1.1 deraadt #include <stdarg.h>
838 1.1 deraadt #else
839 1.1 deraadt #include <varargs.h>
840 1.1 deraadt #endif
841 1.1 deraadt
842 1.1 deraadt void
843 1.1 deraadt #if __STDC__
844 1.1 deraadt err(int fatal, const char *fmt,...)
845 1.1 deraadt #else
846 1.1 deraadt err(fmt, va_alist)
847 1.1 deraadt int fatal;
848 1.1 deraadt char *fmt;
849 1.1 deraadt va_dcl
850 1.1 deraadt #endif
851 1.1 deraadt {
852 1.1 deraadt va_list ap;
853 1.1 deraadt #if __STDC__
854 1.1 deraadt va_start(ap, fmt);
855 1.1 deraadt #else
856 1.1 deraadt va_start(ap);
857 1.1 deraadt #endif
858 1.1 deraadt if (dflag) {
859 1.1 deraadt if (fatal)
860 1.1 deraadt (void) fprintf(stderr, "rarpd: error: ");
861 1.1 deraadt else
862 1.1 deraadt (void) fprintf(stderr, "rarpd: warning: ");
863 1.1 deraadt (void) vfprintf(stderr, fmt, ap);
864 1.1 deraadt (void) fprintf(stderr, "\n");
865 1.1 deraadt }
866 1.1 deraadt vsyslog(LOG_ERR, fmt, ap);
867 1.1 deraadt va_end(ap);
868 1.1 deraadt if (fatal)
869 1.1 deraadt exit(1);
870 1.1 deraadt /* NOTREACHED */
871 1.1 deraadt }
872 1.1 deraadt
873 1.1 deraadt void
874 1.1 deraadt #if __STDC__
875 1.1 deraadt debug(const char *fmt,...)
876 1.1 deraadt #else
877 1.1 deraadt debug(fmt, va_alist)
878 1.1 deraadt char *fmt;
879 1.1 deraadt va_dcl
880 1.1 deraadt #endif
881 1.1 deraadt {
882 1.1 deraadt va_list ap;
883 1.1 deraadt
884 1.1 deraadt if (dflag) {
885 1.1 deraadt #if __STDC__
886 1.1 deraadt va_start(ap, fmt);
887 1.1 deraadt #else
888 1.1 deraadt va_start(ap);
889 1.1 deraadt #endif
890 1.1 deraadt (void) fprintf(stderr, "rarpd: ");
891 1.1 deraadt (void) vfprintf(stderr, fmt, ap);
892 1.1 deraadt va_end(ap);
893 1.1 deraadt (void) fprintf(stderr, "\n");
894 1.1 deraadt }
895 1.1 deraadt }
896