1 /* $NetBSD: in_proto.c,v 1.38 2000/02/17 10:59:35 darrenr Exp $ */ 2 3 /* 4 * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project. 5 * All rights reserved. 6 * 7 * Redistribution and use in source and binary forms, with or without 8 * modification, are permitted provided that the following conditions 9 * are met: 10 * 1. Redistributions of source code must retain the above copyright 11 * notice, this list of conditions and the following disclaimer. 12 * 2. Redistributions in binary form must reproduce the above copyright 13 * notice, this list of conditions and the following disclaimer in the 14 * documentation and/or other materials provided with the distribution. 15 * 3. Neither the name of the project nor the names of its contributors 16 * may be used to endorse or promote products derived from this software 17 * without specific prior written permission. 18 * 19 * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND 20 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 21 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 22 * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE 23 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 24 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 25 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 26 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 27 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 28 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 29 * SUCH DAMAGE. 30 */ 31 32 /* 33 * Copyright (c) 1982, 1986, 1993 34 * The Regents of the University of California. All rights reserved. 35 * 36 * Redistribution and use in source and binary forms, with or without 37 * modification, are permitted provided that the following conditions 38 * are met: 39 * 1. Redistributions of source code must retain the above copyright 40 * notice, this list of conditions and the following disclaimer. 41 * 2. Redistributions in binary form must reproduce the above copyright 42 * notice, this list of conditions and the following disclaimer in the 43 * documentation and/or other materials provided with the distribution. 44 * 3. All advertising materials mentioning features or use of this software 45 * must display the following acknowledgement: 46 * This product includes software developed by the University of 47 * California, Berkeley and its contributors. 48 * 4. Neither the name of the University nor the names of its contributors 49 * may be used to endorse or promote products derived from this software 50 * without specific prior written permission. 51 * 52 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND 53 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 54 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 55 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE 56 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 57 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 58 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 59 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 60 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 61 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 62 * SUCH DAMAGE. 63 * 64 * @(#)in_proto.c 8.2 (Berkeley) 2/9/95 65 */ 66 67 #include "opt_mrouting.h" 68 #include "opt_eon.h" /* ISO CLNL over IP */ 69 #include "opt_iso.h" /* ISO TP tunneled over IP */ 70 #include "opt_ns.h" /* NSIP: XNS tunneled over IP */ 71 #include "opt_inet.h" 72 #include "opt_ipsec.h" 73 74 #include <sys/param.h> 75 #include <sys/socket.h> 76 #include <sys/protosw.h> 77 #include <sys/domain.h> 78 #include <sys/mbuf.h> 79 80 #include <net/if.h> 81 #include <net/radix.h> 82 #include <net/route.h> 83 84 #include <netinet/in.h> 85 #include <netinet/in_systm.h> 86 #include <netinet/ip.h> 87 #include <netinet/ip_var.h> 88 #include <netinet/ip_icmp.h> 89 #include <netinet/in_pcb.h> 90 91 #ifdef INET6 92 #ifndef INET 93 #include <netinet/in.h> 94 #endif 95 #include <netinet/ip6.h> 96 #endif 97 98 #include <netinet/igmp_var.h> 99 #include <netinet/tcp.h> 100 #include <netinet/tcp_fsm.h> 101 #include <netinet/tcp_seq.h> 102 #include <netinet/tcp_timer.h> 103 #include <netinet/tcp_var.h> 104 #include <netinet/tcpip.h> 105 #include <netinet/tcp_debug.h> 106 #include <netinet/udp.h> 107 #include <netinet/udp_var.h> 108 /* 109 * TCP/IP protocol family: IP, ICMP, UDP, TCP. 110 */ 111 112 #ifdef IPSEC 113 #include <netinet6/ah.h> 114 #ifdef IPSEC_ESP 115 #include <netinet6/esp.h> 116 #endif 117 #include <netinet6/ipcomp.h> 118 #endif /* IPSEC */ 119 120 #include "gif.h" 121 #if NGIF > 0 122 #include <netinet/in_gif.h> 123 #endif 124 125 #ifdef NSIP 126 #include <netns/ns_var.h> 127 #include <netns/idp_var.h> 128 #endif /* NSIP */ 129 130 #ifdef TPIP 131 #include <netiso/tp_param.h> 132 #include <netiso/tp_var.h> 133 #endif /* TPIP */ 134 135 #ifdef EON 136 #include <netiso/eonvar.h> 137 #endif /* EON */ 138 139 #include "ipip.h" 140 #if NIPIP > 0 || defined(MROUTING) 141 #include <netinet/ip_ipip.h> 142 #endif /* NIPIP > 0 || MROUTING */ 143 144 #include "gre.h" 145 #if NGRE > 0 146 #include <netinet/ip_gre.h> 147 #endif 148 149 extern struct domain inetdomain; 150 151 struct protosw inetsw[] = { 152 { 0, &inetdomain, 0, 0, 153 0, ip_output, 0, 0, 154 0, 155 ip_init, 0, ip_slowtimo, ip_drain, ip_sysctl 156 }, 157 { SOCK_DGRAM, &inetdomain, IPPROTO_UDP, PR_ATOMIC|PR_ADDR, 158 udp_input, 0, udp_ctlinput, ip_ctloutput, 159 udp_usrreq, 160 udp_init, 0, 0, 0, udp_sysctl 161 }, 162 { SOCK_STREAM, &inetdomain, IPPROTO_TCP, PR_CONNREQUIRED|PR_WANTRCVD|PR_LISTEN, 163 tcp_input, 0, tcp_ctlinput, tcp_ctloutput, 164 tcp_usrreq, 165 tcp_init, tcp_fasttimo, tcp_slowtimo, tcp_drain, tcp_sysctl 166 }, 167 { SOCK_RAW, &inetdomain, IPPROTO_RAW, PR_ATOMIC|PR_ADDR, 168 rip_input, rip_output, 0, rip_ctloutput, 169 rip_usrreq, 170 0, 0, 0, 0, 171 }, 172 { SOCK_RAW, &inetdomain, IPPROTO_ICMP, PR_ATOMIC|PR_ADDR, 173 icmp_input, rip_output, 0, rip_ctloutput, 174 rip_usrreq, 175 0, 0, 0, 0, icmp_sysctl 176 }, 177 #ifdef IPSEC 178 { SOCK_RAW, &inetdomain, IPPROTO_AH, PR_ATOMIC|PR_ADDR, 179 ah4_input, 0, 0, 0, 180 0, 181 0, 0, 0, 0, ipsec_sysctl 182 }, 183 #ifdef IPSEC_ESP 184 { SOCK_RAW, &inetdomain, IPPROTO_ESP, PR_ATOMIC|PR_ADDR, 185 esp4_input, 0, 0, 0, 186 0, 187 0, 0, 0, 0, ipsec_sysctl 188 }, 189 #endif 190 { SOCK_RAW, &inetdomain, IPPROTO_IPCOMP, PR_ATOMIC|PR_ADDR, 191 ipcomp4_input, 0, 0, 0, 192 0, 193 0, 0, 0, 0, ipsec_sysctl 194 }, 195 #endif /* IPSEC */ 196 #if NGIF > 0 197 { SOCK_RAW, &inetdomain, IPPROTO_IPV4, PR_ATOMIC|PR_ADDR, 198 in_gif_input, rip_output, 0, rip_ctloutput, 199 rip_usrreq, /*XXX*/ 200 0, 0, 0, 0, 201 }, 202 #ifdef INET6 203 { SOCK_RAW, &inetdomain, IPPROTO_IPV6, PR_ATOMIC|PR_ADDR, 204 in_gif_input, rip_output, 0, rip_ctloutput, 205 rip_usrreq, /*XXX*/ 206 0, 0, 0, 0, 207 }, 208 #endif /* INET6 */ 209 #else /* NGIF */ 210 #if NIPIP > 0 || defined(MROUTING) 211 { SOCK_RAW, &inetdomain, IPPROTO_IPIP, PR_ATOMIC|PR_ADDR, 212 ipip_input, rip_output, 0, rip_ctloutput, 213 rip_usrreq, /* XXX */ 214 0, 0, 0, 0, 215 }, 216 #endif /* NIPIP > 0 || MROUTING */ 217 #endif /* NGIF */ 218 #if NGRE > 0 219 { SOCK_RAW, &inetdomain, IPPROTO_GRE, PR_ATOMIC|PR_ADDR, 220 gre_input, rip_output, 0, rip_ctloutput, 221 rip_usrreq, 222 0, 0, 0, 0, 223 }, 224 { SOCK_RAW, &inetdomain, IPPROTO_MOBILE, PR_ATOMIC|PR_ADDR, 225 gre_mobile_input, rip_output, 0, rip_ctloutput, 226 rip_usrreq, 227 0, 0, 0, 0, 228 }, 229 #endif /* NGRE > 0 */ 230 { SOCK_RAW, &inetdomain, IPPROTO_IGMP, PR_ATOMIC|PR_ADDR, 231 igmp_input, rip_output, 0, rip_ctloutput, 232 rip_usrreq, 233 igmp_init, igmp_fasttimo, igmp_slowtimo, 0, 234 }, 235 #ifdef TPIP 236 { SOCK_SEQPACKET,&inetdomain, IPPROTO_TP, PR_CONNREQUIRED|PR_WANTRCVD|PR_LISTEN, 237 tpip_input, 0, tpip_ctlinput, tp_ctloutput, 238 tp_usrreq, 239 tp_init, 0, tp_slowtimo, tp_drain, 240 }, 241 #endif /* TPIP */ 242 /* EON (ISO CLNL over IP) */ 243 #ifdef EON 244 { SOCK_RAW, &inetdomain, IPPROTO_EON, 0, 245 eoninput, 0, eonctlinput, 0, 246 0, 247 eonprotoinit, 0, 0, 0, 248 }, 249 #endif /* EON */ 250 #ifdef NSIP 251 { SOCK_RAW, &inetdomain, IPPROTO_IDP, PR_ATOMIC|PR_ADDR, 252 idpip_input, NULL, nsip_ctlinput, 0, 253 rip_usrreq, 254 0, 0, 0, 0, 255 }, 256 #endif /* NSIP */ 257 /* raw wildcard */ 258 { SOCK_RAW, &inetdomain, 0, PR_ATOMIC|PR_ADDR, 259 rip_input, rip_output, 0, rip_ctloutput, 260 rip_usrreq, 261 rip_init, 0, 0, 0, 262 }, 263 }; 264 265 struct domain inetdomain = 266 { PF_INET, "internet", 0, 0, 0, 267 inetsw, &inetsw[sizeof(inetsw)/sizeof(inetsw[0])], 0, 268 rn_inithead, 32, sizeof(struct sockaddr_in) }; 269 270 u_char ip_protox[IPPROTO_MAX]; 271 272 #define TCP_SYN_HASH_SIZE 293 273 #define TCP_SYN_BUCKET_SIZE 35 274 275 int tcp_syn_cache_size = TCP_SYN_HASH_SIZE; 276 int tcp_syn_cache_limit = TCP_SYN_HASH_SIZE*TCP_SYN_BUCKET_SIZE; 277 int tcp_syn_bucket_limit = 3*TCP_SYN_BUCKET_SIZE; 278 struct syn_cache_head tcp_syn_cache[TCP_SYN_HASH_SIZE]; 279 int tcp_syn_cache_interval = 1; /* runs timer twice a second */ 280 281 struct timeval tcp_rst_ratelim = { 0, 10000 }; /* 10000usec = 10msec */ 282 283 struct timeval icmperrratelim = { 0, 1000 }; /* 1000usec = 1msec */ 284