1*83ee113eSDavid van Moolenbroek /* $NetBSD: icmp.c,v 1.3 2014/07/12 12:09:37 spz Exp $ */
2*83ee113eSDavid van Moolenbroek /* dhcp.c
3*83ee113eSDavid van Moolenbroek
4*83ee113eSDavid van Moolenbroek ICMP Protocol engine - for sending out pings and receiving
5*83ee113eSDavid van Moolenbroek responses. */
6*83ee113eSDavid van Moolenbroek
7*83ee113eSDavid van Moolenbroek /*
8*83ee113eSDavid van Moolenbroek * Copyright (c) 2011,2013,2014 by Internet Systems Consortium, Inc. ("ISC")
9*83ee113eSDavid van Moolenbroek * Copyright (c) 2004,2007,2009 by Internet Systems Consortium, Inc. ("ISC")
10*83ee113eSDavid van Moolenbroek * Copyright (c) 1996-2003 by Internet Software Consortium
11*83ee113eSDavid van Moolenbroek *
12*83ee113eSDavid van Moolenbroek * Permission to use, copy, modify, and distribute this software for any
13*83ee113eSDavid van Moolenbroek * purpose with or without fee is hereby granted, provided that the above
14*83ee113eSDavid van Moolenbroek * copyright notice and this permission notice appear in all copies.
15*83ee113eSDavid van Moolenbroek *
16*83ee113eSDavid van Moolenbroek * THE SOFTWARE IS PROVIDED "AS IS" AND ISC DISCLAIMS ALL WARRANTIES
17*83ee113eSDavid van Moolenbroek * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
18*83ee113eSDavid van Moolenbroek * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL ISC BE LIABLE FOR
19*83ee113eSDavid van Moolenbroek * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
20*83ee113eSDavid van Moolenbroek * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
21*83ee113eSDavid van Moolenbroek * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT
22*83ee113eSDavid van Moolenbroek * OF OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
23*83ee113eSDavid van Moolenbroek *
24*83ee113eSDavid van Moolenbroek * Internet Systems Consortium, Inc.
25*83ee113eSDavid van Moolenbroek * 950 Charter Street
26*83ee113eSDavid van Moolenbroek * Redwood City, CA 94063
27*83ee113eSDavid van Moolenbroek * <info@isc.org>
28*83ee113eSDavid van Moolenbroek * https://www.isc.org/
29*83ee113eSDavid van Moolenbroek *
30*83ee113eSDavid van Moolenbroek */
31*83ee113eSDavid van Moolenbroek
32*83ee113eSDavid van Moolenbroek #include <sys/cdefs.h>
33*83ee113eSDavid van Moolenbroek __RCSID("$NetBSD: icmp.c,v 1.3 2014/07/12 12:09:37 spz Exp $");
34*83ee113eSDavid van Moolenbroek
35*83ee113eSDavid van Moolenbroek #include "dhcpd.h"
36*83ee113eSDavid van Moolenbroek #include "netinet/ip.h"
37*83ee113eSDavid van Moolenbroek #include "netinet/ip_icmp.h"
38*83ee113eSDavid van Moolenbroek
39*83ee113eSDavid van Moolenbroek struct icmp_state *icmp_state;
40*83ee113eSDavid van Moolenbroek static omapi_object_type_t *dhcp_type_icmp;
41*83ee113eSDavid van Moolenbroek static int no_icmp;
42*83ee113eSDavid van Moolenbroek
43*83ee113eSDavid van Moolenbroek OMAPI_OBJECT_ALLOC (icmp_state, struct icmp_state, dhcp_type_icmp)
44*83ee113eSDavid van Moolenbroek
45*83ee113eSDavid van Moolenbroek #if defined (TRACING)
46*83ee113eSDavid van Moolenbroek trace_type_t *trace_icmp_input;
47*83ee113eSDavid van Moolenbroek trace_type_t *trace_icmp_output;
48*83ee113eSDavid van Moolenbroek #endif
49*83ee113eSDavid van Moolenbroek
50*83ee113eSDavid van Moolenbroek /* Initialize the ICMP protocol. */
51*83ee113eSDavid van Moolenbroek
icmp_startup(routep,handler)52*83ee113eSDavid van Moolenbroek void icmp_startup (routep, handler)
53*83ee113eSDavid van Moolenbroek int routep;
54*83ee113eSDavid van Moolenbroek void (*handler) (struct iaddr, u_int8_t *, int);
55*83ee113eSDavid van Moolenbroek {
56*83ee113eSDavid van Moolenbroek struct protoent *proto;
57*83ee113eSDavid van Moolenbroek int protocol = 1;
58*83ee113eSDavid van Moolenbroek int state;
59*83ee113eSDavid van Moolenbroek isc_result_t result;
60*83ee113eSDavid van Moolenbroek
61*83ee113eSDavid van Moolenbroek /* Only initialize icmp once. */
62*83ee113eSDavid van Moolenbroek if (dhcp_type_icmp)
63*83ee113eSDavid van Moolenbroek log_fatal ("attempted to reinitialize icmp protocol");
64*83ee113eSDavid van Moolenbroek
65*83ee113eSDavid van Moolenbroek result = omapi_object_type_register (&dhcp_type_icmp, "icmp",
66*83ee113eSDavid van Moolenbroek 0, 0, 0, 0, 0, 0, 0, 0, 0, 0, 0,
67*83ee113eSDavid van Moolenbroek sizeof (struct icmp_state),
68*83ee113eSDavid van Moolenbroek 0, RC_MISC);
69*83ee113eSDavid van Moolenbroek
70*83ee113eSDavid van Moolenbroek if (result != ISC_R_SUCCESS)
71*83ee113eSDavid van Moolenbroek log_fatal ("Can't register icmp object type: %s",
72*83ee113eSDavid van Moolenbroek isc_result_totext (result));
73*83ee113eSDavid van Moolenbroek
74*83ee113eSDavid van Moolenbroek icmp_state_allocate (&icmp_state, MDL);
75*83ee113eSDavid van Moolenbroek icmp_state -> icmp_handler = handler;
76*83ee113eSDavid van Moolenbroek
77*83ee113eSDavid van Moolenbroek #if defined (TRACING)
78*83ee113eSDavid van Moolenbroek trace_icmp_input = trace_type_register ("icmp-input", (void *)0,
79*83ee113eSDavid van Moolenbroek trace_icmp_input_input,
80*83ee113eSDavid van Moolenbroek trace_icmp_input_stop, MDL);
81*83ee113eSDavid van Moolenbroek trace_icmp_output = trace_type_register ("icmp-output", (void *)0,
82*83ee113eSDavid van Moolenbroek trace_icmp_output_input,
83*83ee113eSDavid van Moolenbroek trace_icmp_output_stop, MDL);
84*83ee113eSDavid van Moolenbroek
85*83ee113eSDavid van Moolenbroek /* If we're playing back a trace file, don't create the socket
86*83ee113eSDavid van Moolenbroek or set up the callback. */
87*83ee113eSDavid van Moolenbroek if (!trace_playback ()) {
88*83ee113eSDavid van Moolenbroek #endif
89*83ee113eSDavid van Moolenbroek /* Get the protocol number (should be 1). */
90*83ee113eSDavid van Moolenbroek proto = getprotobyname ("icmp");
91*83ee113eSDavid van Moolenbroek if (proto)
92*83ee113eSDavid van Moolenbroek protocol = proto -> p_proto;
93*83ee113eSDavid van Moolenbroek
94*83ee113eSDavid van Moolenbroek /* Get a raw socket for the ICMP protocol. */
95*83ee113eSDavid van Moolenbroek icmp_state -> socket = socket (AF_INET, SOCK_RAW, protocol);
96*83ee113eSDavid van Moolenbroek if (icmp_state -> socket < 0) {
97*83ee113eSDavid van Moolenbroek no_icmp = 1;
98*83ee113eSDavid van Moolenbroek log_error ("unable to create icmp socket: %m");
99*83ee113eSDavid van Moolenbroek return;
100*83ee113eSDavid van Moolenbroek }
101*83ee113eSDavid van Moolenbroek
102*83ee113eSDavid van Moolenbroek #if defined (HAVE_SETFD)
103*83ee113eSDavid van Moolenbroek if (fcntl (icmp_state -> socket, F_SETFD, 1) < 0)
104*83ee113eSDavid van Moolenbroek log_error ("Can't set close-on-exec on icmp: %m");
105*83ee113eSDavid van Moolenbroek #endif
106*83ee113eSDavid van Moolenbroek
107*83ee113eSDavid van Moolenbroek /* Make sure it does routing... */
108*83ee113eSDavid van Moolenbroek state = 0;
109*83ee113eSDavid van Moolenbroek if (setsockopt (icmp_state -> socket, SOL_SOCKET, SO_DONTROUTE,
110*83ee113eSDavid van Moolenbroek (char *)&state, sizeof state) < 0)
111*83ee113eSDavid van Moolenbroek log_fatal ("Can't disable SO_DONTROUTE on ICMP: %m");
112*83ee113eSDavid van Moolenbroek
113*83ee113eSDavid van Moolenbroek result = (omapi_register_io_object
114*83ee113eSDavid van Moolenbroek ((omapi_object_t *)icmp_state,
115*83ee113eSDavid van Moolenbroek icmp_readsocket, 0, icmp_echoreply, 0, 0));
116*83ee113eSDavid van Moolenbroek if (result != ISC_R_SUCCESS)
117*83ee113eSDavid van Moolenbroek log_fatal ("Can't register icmp handle: %s",
118*83ee113eSDavid van Moolenbroek isc_result_totext (result));
119*83ee113eSDavid van Moolenbroek #if defined (TRACING)
120*83ee113eSDavid van Moolenbroek }
121*83ee113eSDavid van Moolenbroek #endif
122*83ee113eSDavid van Moolenbroek }
123*83ee113eSDavid van Moolenbroek
icmp_readsocket(h)124*83ee113eSDavid van Moolenbroek int icmp_readsocket (h)
125*83ee113eSDavid van Moolenbroek omapi_object_t *h;
126*83ee113eSDavid van Moolenbroek {
127*83ee113eSDavid van Moolenbroek struct icmp_state *state;
128*83ee113eSDavid van Moolenbroek
129*83ee113eSDavid van Moolenbroek state = (struct icmp_state *)h;
130*83ee113eSDavid van Moolenbroek return state -> socket;
131*83ee113eSDavid van Moolenbroek }
132*83ee113eSDavid van Moolenbroek
icmp_echorequest(addr)133*83ee113eSDavid van Moolenbroek int icmp_echorequest (addr)
134*83ee113eSDavid van Moolenbroek struct iaddr *addr;
135*83ee113eSDavid van Moolenbroek {
136*83ee113eSDavid van Moolenbroek struct sockaddr_in to;
137*83ee113eSDavid van Moolenbroek struct icmp icmp;
138*83ee113eSDavid van Moolenbroek int status;
139*83ee113eSDavid van Moolenbroek #if defined (TRACING)
140*83ee113eSDavid van Moolenbroek trace_iov_t iov [2];
141*83ee113eSDavid van Moolenbroek #endif
142*83ee113eSDavid van Moolenbroek
143*83ee113eSDavid van Moolenbroek if (no_icmp)
144*83ee113eSDavid van Moolenbroek return 1;
145*83ee113eSDavid van Moolenbroek if (!icmp_state)
146*83ee113eSDavid van Moolenbroek log_fatal ("ICMP protocol used before initialization.");
147*83ee113eSDavid van Moolenbroek
148*83ee113eSDavid van Moolenbroek memset (&to, 0, sizeof(to));
149*83ee113eSDavid van Moolenbroek #ifdef HAVE_SA_LEN
150*83ee113eSDavid van Moolenbroek to.sin_len = sizeof to;
151*83ee113eSDavid van Moolenbroek #endif
152*83ee113eSDavid van Moolenbroek to.sin_family = AF_INET;
153*83ee113eSDavid van Moolenbroek to.sin_port = 0; /* unused. */
154*83ee113eSDavid van Moolenbroek memcpy (&to.sin_addr, addr -> iabuf, sizeof to.sin_addr); /* XXX */
155*83ee113eSDavid van Moolenbroek
156*83ee113eSDavid van Moolenbroek icmp.icmp_type = ICMP_ECHO;
157*83ee113eSDavid van Moolenbroek icmp.icmp_code = 0;
158*83ee113eSDavid van Moolenbroek icmp.icmp_cksum = 0;
159*83ee113eSDavid van Moolenbroek icmp.icmp_seq = 0;
160*83ee113eSDavid van Moolenbroek #ifdef _LP64
161*83ee113eSDavid van Moolenbroek icmp.icmp_id = (((u_int32_t)(u_int64_t)addr) ^
162*83ee113eSDavid van Moolenbroek (u_int32_t)(((u_int64_t)addr) >> 32));
163*83ee113eSDavid van Moolenbroek #else
164*83ee113eSDavid van Moolenbroek icmp.icmp_id = (u_int32_t)addr;
165*83ee113eSDavid van Moolenbroek #endif
166*83ee113eSDavid van Moolenbroek memset (&icmp.icmp_dun, 0, sizeof icmp.icmp_dun);
167*83ee113eSDavid van Moolenbroek
168*83ee113eSDavid van Moolenbroek icmp.icmp_cksum = wrapsum (checksum ((unsigned char *)&icmp,
169*83ee113eSDavid van Moolenbroek sizeof icmp, 0));
170*83ee113eSDavid van Moolenbroek
171*83ee113eSDavid van Moolenbroek #if defined (TRACING)
172*83ee113eSDavid van Moolenbroek if (trace_playback ()) {
173*83ee113eSDavid van Moolenbroek char *buf = (char *)0;
174*83ee113eSDavid van Moolenbroek unsigned buflen = 0;
175*83ee113eSDavid van Moolenbroek
176*83ee113eSDavid van Moolenbroek /* Consume the ICMP event. */
177*83ee113eSDavid van Moolenbroek status = trace_get_packet (&trace_icmp_output, &buflen, &buf);
178*83ee113eSDavid van Moolenbroek if (status != ISC_R_SUCCESS)
179*83ee113eSDavid van Moolenbroek log_error ("icmp_echorequest: %s",
180*83ee113eSDavid van Moolenbroek isc_result_totext (status));
181*83ee113eSDavid van Moolenbroek if (buf)
182*83ee113eSDavid van Moolenbroek dfree (buf, MDL);
183*83ee113eSDavid van Moolenbroek } else {
184*83ee113eSDavid van Moolenbroek if (trace_record ()) {
185*83ee113eSDavid van Moolenbroek iov [0].buf = (char *)addr;
186*83ee113eSDavid van Moolenbroek iov [0].len = sizeof *addr;
187*83ee113eSDavid van Moolenbroek iov [1].buf = (char *)&icmp;
188*83ee113eSDavid van Moolenbroek iov [1].len = sizeof icmp;
189*83ee113eSDavid van Moolenbroek trace_write_packet_iov (trace_icmp_output,
190*83ee113eSDavid van Moolenbroek 2, iov, MDL);
191*83ee113eSDavid van Moolenbroek }
192*83ee113eSDavid van Moolenbroek #endif
193*83ee113eSDavid van Moolenbroek /* Send the ICMP packet... */
194*83ee113eSDavid van Moolenbroek status = sendto (icmp_state -> socket,
195*83ee113eSDavid van Moolenbroek (char *)&icmp, sizeof icmp, 0,
196*83ee113eSDavid van Moolenbroek (struct sockaddr *)&to, sizeof to);
197*83ee113eSDavid van Moolenbroek if (status < 0)
198*83ee113eSDavid van Moolenbroek log_error ("icmp_echorequest %s: %m",
199*83ee113eSDavid van Moolenbroek inet_ntoa(to.sin_addr));
200*83ee113eSDavid van Moolenbroek
201*83ee113eSDavid van Moolenbroek if (status != sizeof icmp)
202*83ee113eSDavid van Moolenbroek return 0;
203*83ee113eSDavid van Moolenbroek #if defined (TRACING)
204*83ee113eSDavid van Moolenbroek }
205*83ee113eSDavid van Moolenbroek #endif
206*83ee113eSDavid van Moolenbroek return 1;
207*83ee113eSDavid van Moolenbroek }
208*83ee113eSDavid van Moolenbroek
icmp_echoreply(h)209*83ee113eSDavid van Moolenbroek isc_result_t icmp_echoreply (h)
210*83ee113eSDavid van Moolenbroek omapi_object_t *h;
211*83ee113eSDavid van Moolenbroek {
212*83ee113eSDavid van Moolenbroek struct icmp *icfrom;
213*83ee113eSDavid van Moolenbroek struct ip *ip;
214*83ee113eSDavid van Moolenbroek struct sockaddr_in from;
215*83ee113eSDavid van Moolenbroek u_int8_t icbuf [1500];
216*83ee113eSDavid van Moolenbroek int status;
217*83ee113eSDavid van Moolenbroek SOCKLEN_T sl;
218*83ee113eSDavid van Moolenbroek int hlen, len;
219*83ee113eSDavid van Moolenbroek struct iaddr ia;
220*83ee113eSDavid van Moolenbroek struct icmp_state *state;
221*83ee113eSDavid van Moolenbroek #if defined (TRACING)
222*83ee113eSDavid van Moolenbroek trace_iov_t iov [2];
223*83ee113eSDavid van Moolenbroek #endif
224*83ee113eSDavid van Moolenbroek
225*83ee113eSDavid van Moolenbroek state = (struct icmp_state *)h;
226*83ee113eSDavid van Moolenbroek
227*83ee113eSDavid van Moolenbroek sl = sizeof from;
228*83ee113eSDavid van Moolenbroek status = recvfrom (state -> socket, (char *)icbuf, sizeof icbuf, 0,
229*83ee113eSDavid van Moolenbroek (struct sockaddr *)&from, &sl);
230*83ee113eSDavid van Moolenbroek if (status < 0) {
231*83ee113eSDavid van Moolenbroek log_error ("icmp_echoreply: %m");
232*83ee113eSDavid van Moolenbroek return ISC_R_UNEXPECTED;
233*83ee113eSDavid van Moolenbroek }
234*83ee113eSDavid van Moolenbroek
235*83ee113eSDavid van Moolenbroek /* Find the IP header length... */
236*83ee113eSDavid van Moolenbroek ip = (struct ip *)icbuf;
237*83ee113eSDavid van Moolenbroek hlen = IP_HL (ip);
238*83ee113eSDavid van Moolenbroek
239*83ee113eSDavid van Moolenbroek /* Short packet? */
240*83ee113eSDavid van Moolenbroek if (status < hlen + (sizeof *icfrom)) {
241*83ee113eSDavid van Moolenbroek return ISC_R_SUCCESS;
242*83ee113eSDavid van Moolenbroek }
243*83ee113eSDavid van Moolenbroek
244*83ee113eSDavid van Moolenbroek len = status - hlen;
245*83ee113eSDavid van Moolenbroek icfrom = (struct icmp *)(icbuf + hlen);
246*83ee113eSDavid van Moolenbroek
247*83ee113eSDavid van Moolenbroek /* Silently discard ICMP packets that aren't echoreplies. */
248*83ee113eSDavid van Moolenbroek if (icfrom -> icmp_type != ICMP_ECHOREPLY) {
249*83ee113eSDavid van Moolenbroek return ISC_R_SUCCESS;
250*83ee113eSDavid van Moolenbroek }
251*83ee113eSDavid van Moolenbroek
252*83ee113eSDavid van Moolenbroek /* If we were given a second-stage handler, call it. */
253*83ee113eSDavid van Moolenbroek if (state -> icmp_handler) {
254*83ee113eSDavid van Moolenbroek memcpy (ia.iabuf, &from.sin_addr, sizeof from.sin_addr);
255*83ee113eSDavid van Moolenbroek ia.len = sizeof from.sin_addr;
256*83ee113eSDavid van Moolenbroek
257*83ee113eSDavid van Moolenbroek #if defined (TRACING)
258*83ee113eSDavid van Moolenbroek if (trace_record ()) {
259*83ee113eSDavid van Moolenbroek ia.len = htonl(ia.len);
260*83ee113eSDavid van Moolenbroek iov [0].buf = (char *)&ia;
261*83ee113eSDavid van Moolenbroek iov [0].len = sizeof ia;
262*83ee113eSDavid van Moolenbroek iov [1].buf = (char *)icbuf;
263*83ee113eSDavid van Moolenbroek iov [1].len = len;
264*83ee113eSDavid van Moolenbroek trace_write_packet_iov (trace_icmp_input, 2, iov, MDL);
265*83ee113eSDavid van Moolenbroek ia.len = ntohl(ia.len);
266*83ee113eSDavid van Moolenbroek }
267*83ee113eSDavid van Moolenbroek #endif
268*83ee113eSDavid van Moolenbroek (*state -> icmp_handler) (ia, icbuf, len);
269*83ee113eSDavid van Moolenbroek }
270*83ee113eSDavid van Moolenbroek return ISC_R_SUCCESS;
271*83ee113eSDavid van Moolenbroek }
272*83ee113eSDavid van Moolenbroek
273*83ee113eSDavid van Moolenbroek #if defined (TRACING)
trace_icmp_input_input(trace_type_t * ttype,unsigned length,char * buf)274*83ee113eSDavid van Moolenbroek void trace_icmp_input_input (trace_type_t *ttype, unsigned length, char *buf)
275*83ee113eSDavid van Moolenbroek {
276*83ee113eSDavid van Moolenbroek struct iaddr *ia;
277*83ee113eSDavid van Moolenbroek u_int8_t *icbuf;
278*83ee113eSDavid van Moolenbroek ia = (struct iaddr *)buf;
279*83ee113eSDavid van Moolenbroek ia->len = ntohl(ia->len);
280*83ee113eSDavid van Moolenbroek icbuf = (u_int8_t *)(ia + 1);
281*83ee113eSDavid van Moolenbroek if (icmp_state -> icmp_handler)
282*83ee113eSDavid van Moolenbroek (*icmp_state -> icmp_handler) (*ia, icbuf,
283*83ee113eSDavid van Moolenbroek (int)(length - sizeof ia));
284*83ee113eSDavid van Moolenbroek }
285*83ee113eSDavid van Moolenbroek
trace_icmp_input_stop(trace_type_t * ttype)286*83ee113eSDavid van Moolenbroek void trace_icmp_input_stop (trace_type_t *ttype) { }
287*83ee113eSDavid van Moolenbroek
trace_icmp_output_input(trace_type_t * ttype,unsigned length,char * buf)288*83ee113eSDavid van Moolenbroek void trace_icmp_output_input (trace_type_t *ttype, unsigned length, char *buf)
289*83ee113eSDavid van Moolenbroek {
290*83ee113eSDavid van Moolenbroek struct iaddr ia;
291*83ee113eSDavid van Moolenbroek
292*83ee113eSDavid van Moolenbroek if (length != (sizeof (struct icmp) + sizeof (ia))) {
293*83ee113eSDavid van Moolenbroek log_error ("trace_icmp_output_input: data size mismatch %d:%d",
294*83ee113eSDavid van Moolenbroek length, (int)(sizeof (struct icmp) + sizeof (ia)));
295*83ee113eSDavid van Moolenbroek return;
296*83ee113eSDavid van Moolenbroek }
297*83ee113eSDavid van Moolenbroek ia.len = 4;
298*83ee113eSDavid van Moolenbroek memcpy (ia.iabuf, buf, 4);
299*83ee113eSDavid van Moolenbroek
300*83ee113eSDavid van Moolenbroek log_error ("trace_icmp_output_input: unsent ping to %s", piaddr (ia));
301*83ee113eSDavid van Moolenbroek }
302*83ee113eSDavid van Moolenbroek
trace_icmp_output_stop(trace_type_t * ttype)303*83ee113eSDavid van Moolenbroek void trace_icmp_output_stop (trace_type_t *ttype) { }
304*83ee113eSDavid van Moolenbroek #endif /* TRACING */
305