1784088dfSchristos /* Copyright (c) 2015, bugyo 2784088dfSchristos * All rights reserved. 3784088dfSchristos * 4784088dfSchristos * Redistribution and use in source and binary forms, with or without 5784088dfSchristos * modification, are permitted provided that the following conditions are met: 6784088dfSchristos * 1. Redistributions of source code must retain the above copyright notice, 7784088dfSchristos * this list of conditions and the following disclaimer. 8784088dfSchristos * 2. Redistributions in binary form must reproduce the above copyright notice, 9784088dfSchristos * this list of conditions and the following disclaimer in the documentation 10784088dfSchristos * and/or other materials provided with the distribution. 11784088dfSchristos * 12784088dfSchristos * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" AND 13784088dfSchristos * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED 14784088dfSchristos * WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE 15784088dfSchristos * DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE LIABLE FOR 16784088dfSchristos * ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES 17784088dfSchristos * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; 18784088dfSchristos * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND 19784088dfSchristos * ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT 20784088dfSchristos * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS 21784088dfSchristos * SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. 22784088dfSchristos */ 23784088dfSchristos 24fdccd7e4Schristos #include <sys/cdefs.h> 25fdccd7e4Schristos #ifndef lint 26*26ba0b50Schristos __RCSID("$NetBSD: print-nsh.c,v 1.5 2024/09/02 16:15:32 christos Exp $"); 27fdccd7e4Schristos #endif 28fdccd7e4Schristos 29dc860a36Sspz /* \summary: Network Service Header (NSH) printer */ 30dc860a36Sspz 31c74ad251Schristos /* specification: RFC 8300 */ 32dc860a36Sspz 33c74ad251Schristos #include <config.h> 34784088dfSchristos 35c74ad251Schristos #include "netdissect-stdinc.h" 36784088dfSchristos 37c74ad251Schristos #define ND_LONGJMP_FROM_TCHECK 38784088dfSchristos #include "netdissect.h" 39784088dfSchristos #include "extract.h" 40784088dfSchristos 41784088dfSchristos static const struct tok nsh_flags [] = { 42c74ad251Schristos { 0x2, "O" }, 43784088dfSchristos { 0, NULL } 44784088dfSchristos }; 45784088dfSchristos 46c74ad251Schristos /* 47c74ad251Schristos * 0 1 2 3 48c74ad251Schristos * 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 49c74ad251Schristos * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+ 50c74ad251Schristos * |Ver|O|U| TTL | Length |U|U|U|U|MD Type| Next Protocol | 51c74ad251Schristos * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+ 52c74ad251Schristos */ 53784088dfSchristos #define NSH_BASE_HDR_LEN 4 54c74ad251Schristos #define NSH_VER(x) (((x) & 0xc0000000) >> 30) 55c74ad251Schristos #define NSH_FLAGS(x) (((x) & 0x30000000) >> 28) 56c74ad251Schristos #define NSH_TTL(x) (((x) & 0x0fc00000) >> 22) 57c74ad251Schristos #define NSH_LENGTH(x) (((x) & 0x003f0000) >> 16) 58c74ad251Schristos #define NSH_MD_TYPE(x) (((x) & 0x00000f00) >> 8) 59c74ad251Schristos #define NSH_NEXT_PROT(x) (((x) & 0x000000ff) >> 0) 60c74ad251Schristos 61784088dfSchristos #define NSH_SERVICE_PATH_HDR_LEN 4 62dc860a36Sspz #define NSH_HDR_WORD_SIZE 4U 63784088dfSchristos 64c74ad251Schristos #define MD_RSV 0x00 65c74ad251Schristos #define MD_TYPE1 0x01 66c74ad251Schristos #define MD_TYPE2 0x02 67c74ad251Schristos #define MD_EXP 0x0F 68c74ad251Schristos static const struct tok md_str[] = { 69c74ad251Schristos { MD_RSV, "reserved" }, 70c74ad251Schristos { MD_TYPE1, "1" }, 71c74ad251Schristos { MD_TYPE2, "2" }, 72c74ad251Schristos { MD_EXP, "experimental" }, 73c74ad251Schristos { 0, NULL } 74c74ad251Schristos }; 75c74ad251Schristos 76c74ad251Schristos #define NP_IPV4 0x01 77c74ad251Schristos #define NP_IPV6 0x02 78c74ad251Schristos #define NP_ETH 0x03 79c74ad251Schristos #define NP_NSH 0x04 80c74ad251Schristos #define NP_MPLS 0x05 81c74ad251Schristos #define NP_EXP1 0xFE 82c74ad251Schristos #define NP_EXP2 0xFF 83c74ad251Schristos static const struct tok np_str[] = { 84c74ad251Schristos { NP_IPV4, "IPv4" }, 85c74ad251Schristos { NP_IPV6, "IPv6" }, 86c74ad251Schristos { NP_ETH, "Ethernet" }, 87c74ad251Schristos { NP_NSH, "NSH" }, 88c74ad251Schristos { NP_MPLS, "MPLS" }, 89c74ad251Schristos { NP_EXP1, "Experiment 1" }, 90c74ad251Schristos { NP_EXP2, "Experiment 2" }, 91c74ad251Schristos { 0, NULL } 92c74ad251Schristos }; 93c74ad251Schristos 94784088dfSchristos void 95784088dfSchristos nsh_print(netdissect_options *ndo, const u_char *bp, u_int len) 96784088dfSchristos { 97c74ad251Schristos uint32_t basehdr; 98c74ad251Schristos u_int ver, length, md_type; 99784088dfSchristos uint8_t next_protocol; 100c74ad251Schristos u_char past_headers = 0; 101784088dfSchristos u_int next_len; 102784088dfSchristos 103c74ad251Schristos ndo->ndo_protocol = "nsh"; 104c74ad251Schristos /* 105c74ad251Schristos * 0 1 2 3 106c74ad251Schristos * 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 107c74ad251Schristos * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+ 108c74ad251Schristos * | Base Header | 109c74ad251Schristos * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+ 110c74ad251Schristos * | Service Path Header | 111c74ad251Schristos * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+ 112c74ad251Schristos * | | 113c74ad251Schristos * ~ Context Header(s) ~ 114c74ad251Schristos * | | 115c74ad251Schristos * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+ 116c74ad251Schristos */ 117c74ad251Schristos 118784088dfSchristos /* print Base Header and Service Path Header */ 119c74ad251Schristos if (len < NSH_BASE_HDR_LEN + NSH_SERVICE_PATH_HDR_LEN) { 120c74ad251Schristos ND_PRINT(" (packet length %u < %u)", 121c74ad251Schristos len, NSH_BASE_HDR_LEN + NSH_SERVICE_PATH_HDR_LEN); 122c74ad251Schristos goto invalid; 123784088dfSchristos } 124c74ad251Schristos 125c74ad251Schristos basehdr = GET_BE_U_4(bp); 126c74ad251Schristos bp += 4; 127c74ad251Schristos ver = NSH_VER(basehdr); 128c74ad251Schristos length = NSH_LENGTH(basehdr); 129c74ad251Schristos md_type = NSH_MD_TYPE(basehdr); 130c74ad251Schristos next_protocol = NSH_NEXT_PROT(basehdr); 131c74ad251Schristos 132c74ad251Schristos ND_PRINT("NSH, "); 133c74ad251Schristos if (ndo->ndo_vflag > 1) { 134c74ad251Schristos ND_PRINT("ver %u, ", ver); 135c74ad251Schristos } 136c74ad251Schristos if (ver != 0) 137c74ad251Schristos return; 138c74ad251Schristos ND_PRINT("flags [%s], ", 139c74ad251Schristos bittok2str_nosep(nsh_flags, "none", NSH_FLAGS(basehdr))); 140784088dfSchristos if (ndo->ndo_vflag > 2) { 141c74ad251Schristos ND_PRINT("TTL %u, ", NSH_TTL(basehdr)); 142c74ad251Schristos ND_PRINT("length %u, ", length); 143c74ad251Schristos ND_PRINT("md type %s, ", tok2str(md_str, "unknown (0x%02x)", md_type)); 144784088dfSchristos } 145784088dfSchristos if (ndo->ndo_vflag > 1) { 146c74ad251Schristos ND_PRINT("next-protocol %s, ", 147c74ad251Schristos tok2str(np_str, "unknown (0x%02x)", next_protocol)); 148784088dfSchristos } 149784088dfSchristos 150784088dfSchristos /* Make sure we have all the headers */ 151c74ad251Schristos if (len < length * NSH_HDR_WORD_SIZE) { 152c74ad251Schristos ND_PRINT(" (too many headers for packet length %u)", len); 153c74ad251Schristos goto invalid; 154c74ad251Schristos } 155784088dfSchristos 156c74ad251Schristos /* 157c74ad251Schristos * 0 1 2 3 158c74ad251Schristos * 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 159c74ad251Schristos * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+ 160c74ad251Schristos * | Service Path Identifier (SPI) | Service Index | 161c74ad251Schristos * +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+ 162c74ad251Schristos * 163c74ad251Schristos */ 164c74ad251Schristos ND_PRINT("service-path-id 0x%06x, ", GET_BE_U_3(bp)); 165c74ad251Schristos bp += 3; 166c74ad251Schristos ND_PRINT("service-index 0x%x", GET_U_1(bp)); 167c74ad251Schristos bp += 1; 168784088dfSchristos 169784088dfSchristos /* 170784088dfSchristos * length includes the lengths of the Base and Service Path headers. 171784088dfSchristos * That means it must be at least 2. 172784088dfSchristos */ 173c74ad251Schristos if (length < 2) { 174c74ad251Schristos ND_PRINT(" (less than two headers)"); 175c74ad251Schristos goto invalid; 176c74ad251Schristos } 177784088dfSchristos 178784088dfSchristos /* 179784088dfSchristos * Print, or skip, the Context Headers. 180784088dfSchristos * (length - 2) is the length of those headers. 181784088dfSchristos */ 182784088dfSchristos if (ndo->ndo_vflag > 2) { 183c74ad251Schristos u_int n; 184c74ad251Schristos 185c74ad251Schristos if (md_type == MD_TYPE1) { 186c74ad251Schristos if (length != 6) { 187*26ba0b50Schristos ND_PRINT(" (length for the MD type)"); 188c74ad251Schristos goto invalid; 189c74ad251Schristos } 190784088dfSchristos for (n = 0; n < length - 2; n++) { 191c74ad251Schristos ND_PRINT("\n Context[%02u]: 0x%08x", n, GET_BE_U_4(bp)); 192784088dfSchristos bp += NSH_HDR_WORD_SIZE; 193784088dfSchristos } 194c74ad251Schristos past_headers = 1; 195*26ba0b50Schristos } else if (md_type == MD_TYPE2) { 196784088dfSchristos n = 0; 197784088dfSchristos while (n < length - 2) { 198c74ad251Schristos uint16_t tlv_class; 199c74ad251Schristos uint8_t tlv_type, tlv_len, tlv_len_padded; 200784088dfSchristos 201c74ad251Schristos tlv_class = GET_BE_U_2(bp); 202c74ad251Schristos bp += 2; 203c74ad251Schristos tlv_type = GET_U_1(bp); 204c74ad251Schristos bp += 1; 205c74ad251Schristos tlv_len = GET_U_1(bp) & 0x7f; 206c74ad251Schristos bp += 1; 207c74ad251Schristos tlv_len_padded = roundup2(tlv_len, NSH_HDR_WORD_SIZE); 208c74ad251Schristos 209c74ad251Schristos ND_PRINT("\n TLV Class %u, Type %u, Len %u", 210c74ad251Schristos tlv_class, tlv_type, tlv_len); 211784088dfSchristos 212784088dfSchristos n += 1; 213784088dfSchristos 214c74ad251Schristos if (length - 2 < n + tlv_len_padded / NSH_HDR_WORD_SIZE) { 215c74ad251Schristos ND_PRINT(" (length too big)"); 216c74ad251Schristos goto invalid; 217784088dfSchristos } 218784088dfSchristos 219c74ad251Schristos if (tlv_len) { 220c74ad251Schristos const char *sep = "0x"; 221c74ad251Schristos u_int vn; 222c74ad251Schristos 223c74ad251Schristos ND_PRINT("\n Value: "); 224784088dfSchristos for (vn = 0; vn < tlv_len; vn++) { 225c74ad251Schristos ND_PRINT("%s%02x", sep, GET_U_1(bp)); 226c74ad251Schristos bp += 1; 227c74ad251Schristos sep = ":"; 228784088dfSchristos } 229c74ad251Schristos /* Cover any TLV padding. */ 230c74ad251Schristos ND_TCHECK_LEN(bp, tlv_len_padded - tlv_len); 231c74ad251Schristos bp += tlv_len_padded - tlv_len; 232c74ad251Schristos n += tlv_len_padded / NSH_HDR_WORD_SIZE; 233784088dfSchristos } 234784088dfSchristos } 235c74ad251Schristos past_headers = 1; 236784088dfSchristos } 237784088dfSchristos } 238c74ad251Schristos if (! past_headers) { 239c74ad251Schristos ND_TCHECK_LEN(bp, (length - 2) * NSH_HDR_WORD_SIZE); 240784088dfSchristos bp += (length - 2) * NSH_HDR_WORD_SIZE; 241784088dfSchristos } 242c74ad251Schristos ND_PRINT(ndo->ndo_vflag ? "\n " : ": "); 243784088dfSchristos 244784088dfSchristos /* print Next Protocol */ 245784088dfSchristos next_len = len - length * NSH_HDR_WORD_SIZE; 246784088dfSchristos switch (next_protocol) { 247c74ad251Schristos case NP_IPV4: 248784088dfSchristos ip_print(ndo, bp, next_len); 249784088dfSchristos break; 250c74ad251Schristos case NP_IPV6: 251784088dfSchristos ip6_print(ndo, bp, next_len); 252784088dfSchristos break; 253c74ad251Schristos case NP_ETH: 254c74ad251Schristos ether_print(ndo, bp, next_len, ND_BYTES_AVAILABLE_AFTER(bp), NULL, NULL); 255784088dfSchristos break; 256784088dfSchristos default: 257c74ad251Schristos ND_PRINT("ERROR: unknown-next-protocol"); 258784088dfSchristos return; 259784088dfSchristos } 260784088dfSchristos 261784088dfSchristos return; 262784088dfSchristos 263c74ad251Schristos invalid: 264c74ad251Schristos nd_print_invalid(ndo); 265784088dfSchristos } 266784088dfSchristos 267