1 /* $NetBSD: in_proto.c,v 1.91 2007/10/05 03:28:13 dyoung Exp $ */ 2 3 /* 4 * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project. 5 * All rights reserved. 6 * 7 * Redistribution and use in source and binary forms, with or without 8 * modification, are permitted provided that the following conditions 9 * are met: 10 * 1. Redistributions of source code must retain the above copyright 11 * notice, this list of conditions and the following disclaimer. 12 * 2. Redistributions in binary form must reproduce the above copyright 13 * notice, this list of conditions and the following disclaimer in the 14 * documentation and/or other materials provided with the distribution. 15 * 3. Neither the name of the project nor the names of its contributors 16 * may be used to endorse or promote products derived from this software 17 * without specific prior written permission. 18 * 19 * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND 20 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 21 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 22 * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE 23 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 24 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 25 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 26 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 27 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 28 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 29 * SUCH DAMAGE. 30 */ 31 32 /* 33 * Copyright (c) 1982, 1986, 1993 34 * The Regents of the University of California. All rights reserved. 35 * 36 * Redistribution and use in source and binary forms, with or without 37 * modification, are permitted provided that the following conditions 38 * are met: 39 * 1. Redistributions of source code must retain the above copyright 40 * notice, this list of conditions and the following disclaimer. 41 * 2. Redistributions in binary form must reproduce the above copyright 42 * notice, this list of conditions and the following disclaimer in the 43 * documentation and/or other materials provided with the distribution. 44 * 3. Neither the name of the University nor the names of its contributors 45 * may be used to endorse or promote products derived from this software 46 * without specific prior written permission. 47 * 48 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND 49 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 50 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 51 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE 52 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 53 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 54 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 55 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 56 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 57 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 58 * SUCH DAMAGE. 59 * 60 * @(#)in_proto.c 8.2 (Berkeley) 2/9/95 61 */ 62 63 #include <sys/cdefs.h> 64 __KERNEL_RCSID(0, "$NetBSD: in_proto.c,v 1.91 2007/10/05 03:28:13 dyoung Exp $"); 65 66 #include "opt_mrouting.h" 67 #include "opt_eon.h" /* ISO CLNL over IP */ 68 #include "opt_iso.h" /* ISO TP tunneled over IP */ 69 #include "opt_inet.h" 70 #include "opt_ipsec.h" 71 #include "opt_pim.h" 72 73 #include <sys/param.h> 74 #include <sys/socket.h> 75 #include <sys/protosw.h> 76 #include <sys/domain.h> 77 #include <sys/mbuf.h> 78 79 #include <net/if.h> 80 #include <net/radix.h> 81 #include <net/route.h> 82 83 #include <netinet/in.h> 84 #include <netinet/in_systm.h> 85 #include <netinet/ip.h> 86 #include <netinet/ip_var.h> 87 #include <netinet/ip_icmp.h> 88 #include <netinet/in_ifattach.h> 89 #include <netinet/in_pcb.h> 90 #include <netinet/in_proto.h> 91 92 #ifdef INET6 93 #ifndef INET 94 #include <netinet/in.h> 95 #endif 96 #include <netinet/ip6.h> 97 #endif 98 99 #include <netinet/igmp_var.h> 100 #ifdef PIM 101 #include <netinet/pim_var.h> 102 #endif 103 #include <netinet/tcp.h> 104 #include <netinet/tcp_fsm.h> 105 #include <netinet/tcp_seq.h> 106 #include <netinet/tcp_timer.h> 107 #include <netinet/tcp_var.h> 108 #include <netinet/tcpip.h> 109 #include <netinet/tcp_debug.h> 110 #include <netinet/udp.h> 111 #include <netinet/udp_var.h> 112 #include <netinet/ip_encap.h> 113 114 /* 115 * TCP/IP protocol family: IP, ICMP, UDP, TCP. 116 */ 117 118 #ifdef IPSEC 119 #include <netinet6/ipsec.h> 120 #include <netinet6/ah.h> 121 #ifdef IPSEC_ESP 122 #include <netinet6/esp.h> 123 #endif 124 #include <netinet6/ipcomp.h> 125 #endif /* IPSEC */ 126 127 #ifdef FAST_IPSEC 128 #include <netipsec/ipsec.h> 129 #include <netipsec/key.h> 130 #endif /* FAST_IPSEC */ 131 132 #ifdef TPIP 133 #include <netiso/tp_param.h> 134 #include <netiso/tp_var.h> 135 #endif /* TPIP */ 136 137 #ifdef EON 138 #include <netiso/eonvar.h> 139 #endif /* EON */ 140 141 #include "carp.h" 142 #if NCARP > 0 143 #include <netinet/ip_carp.h> 144 #endif 145 146 #include "etherip.h" 147 #if NETHERIP > 0 148 #include <netinet/ip_etherip.h> 149 #endif 150 151 DOMAIN_DEFINE(inetdomain); /* forward declare and add to link set */ 152 153 const struct protosw inetsw[] = { 154 { .pr_domain = &inetdomain, 155 .pr_init = ip_init, 156 .pr_output = ip_output, 157 .pr_slowtimo = ip_slowtimo, 158 .pr_drain = ip_drain, 159 }, 160 { .pr_type = SOCK_DGRAM, 161 .pr_domain = &inetdomain, 162 .pr_protocol = IPPROTO_UDP, 163 .pr_flags = PR_ATOMIC|PR_ADDR|PR_PURGEIF, 164 .pr_input = udp_input, 165 .pr_ctlinput = udp_ctlinput, 166 .pr_ctloutput = udp_ctloutput, 167 .pr_usrreq = udp_usrreq, 168 .pr_init = udp_init, 169 }, 170 { .pr_type = SOCK_STREAM, 171 .pr_domain = &inetdomain, 172 .pr_protocol = IPPROTO_TCP, 173 .pr_flags = PR_CONNREQUIRED|PR_WANTRCVD|PR_LISTEN|PR_ABRTACPTDIS|PR_PURGEIF, 174 .pr_input = tcp_input, 175 .pr_ctlinput = tcp_ctlinput, 176 .pr_ctloutput = tcp_ctloutput, 177 .pr_usrreq = tcp_usrreq, 178 .pr_init = tcp_init, 179 .pr_slowtimo = tcp_slowtimo, 180 .pr_drain = tcp_drain, 181 }, 182 { .pr_type = SOCK_RAW, 183 .pr_domain = &inetdomain, 184 .pr_protocol = IPPROTO_RAW, 185 .pr_flags = PR_ATOMIC|PR_ADDR|PR_PURGEIF, 186 .pr_input = rip_input, 187 .pr_output = rip_output, 188 .pr_ctlinput = rip_ctlinput, 189 .pr_ctloutput = rip_ctloutput, 190 .pr_usrreq = rip_usrreq, 191 }, 192 { .pr_type = SOCK_RAW, 193 .pr_domain = &inetdomain, 194 .pr_protocol = IPPROTO_ICMP, 195 .pr_flags = PR_ATOMIC|PR_ADDR|PR_LASTHDR, 196 .pr_input = icmp_input, 197 .pr_output = rip_output, 198 .pr_ctlinput = rip_ctlinput, 199 .pr_ctloutput = rip_ctloutput, 200 .pr_usrreq = rip_usrreq, 201 .pr_init = icmp_init, 202 }, 203 #ifdef GATEWAY 204 { .pr_domain = &inetdomain, 205 .pr_protocol = IPPROTO_IP, 206 .pr_slowtimo = ipflow_slowtimo, 207 }, 208 #endif /* GATEWAY */ 209 #ifdef IPSEC 210 { .pr_type = SOCK_RAW, 211 .pr_domain = &inetdomain, 212 .pr_protocol = IPPROTO_AH, 213 .pr_flags = PR_ATOMIC|PR_ADDR, 214 .pr_input = ah4_input, 215 .pr_ctlinput = ah4_ctlinput, 216 }, 217 #ifdef IPSEC_ESP 218 { .pr_type = SOCK_RAW, 219 .pr_domain = &inetdomain, 220 .pr_protocol = IPPROTO_ESP, 221 .pr_flags = PR_ATOMIC|PR_ADDR, 222 .pr_input = esp4_input, 223 .pr_ctlinput = esp4_ctlinput, 224 }, 225 #endif /* IPSEC_ESP */ 226 { .pr_type = SOCK_RAW, 227 .pr_domain = &inetdomain, 228 .pr_protocol = IPPROTO_IPCOMP, 229 .pr_flags = PR_ATOMIC|PR_ADDR, 230 .pr_input = ipcomp4_input, 231 }, 232 #endif /* IPSEC */ 233 #ifdef FAST_IPSEC 234 { .pr_type = SOCK_RAW, 235 .pr_domain = &inetdomain, 236 .pr_protocol = IPPROTO_AH, 237 .pr_flags = PR_ATOMIC|PR_ADDR, 238 .pr_input = ipsec4_common_input, 239 .pr_ctlinput = ah4_ctlinput, 240 }, 241 { .pr_type = SOCK_RAW, 242 .pr_domain = &inetdomain, 243 .pr_protocol = IPPROTO_ESP, 244 .pr_flags = PR_ATOMIC|PR_ADDR, 245 .pr_input = ipsec4_common_input, 246 .pr_ctlinput = esp4_ctlinput, 247 }, 248 { .pr_type = SOCK_RAW, 249 .pr_domain = &inetdomain, 250 .pr_protocol = IPPROTO_IPCOMP, 251 .pr_flags = PR_ATOMIC|PR_ADDR, 252 .pr_input = ipsec4_common_input, 253 }, 254 #endif /* FAST_IPSEC */ 255 { .pr_type = SOCK_RAW, 256 .pr_domain = &inetdomain, 257 .pr_protocol = IPPROTO_IPV4, 258 .pr_flags = PR_ATOMIC|PR_ADDR|PR_LASTHDR, 259 .pr_input = encap4_input, 260 .pr_output = rip_output, 261 .pr_ctlinput = rip_ctlinput, 262 .pr_ctloutput = rip_ctloutput, 263 .pr_usrreq = rip_usrreq, 264 .pr_init = encap_init, 265 }, 266 #ifdef INET6 267 { .pr_type = SOCK_RAW, 268 .pr_domain = &inetdomain, 269 .pr_protocol = IPPROTO_IPV6, 270 .pr_flags = PR_ATOMIC|PR_ADDR|PR_LASTHDR, 271 .pr_input = encap4_input, 272 .pr_output = rip_output, 273 .pr_ctlinput = rip_ctlinput, 274 .pr_ctloutput = rip_ctloutput, 275 .pr_usrreq = rip_usrreq, 276 .pr_init = encap_init, 277 }, 278 #endif /* INET6 */ 279 #if NETHERIP > 0 280 { .pr_type = SOCK_RAW, 281 .pr_domain = &inetdomain, 282 .pr_protocol = IPPROTO_ETHERIP, 283 .pr_flags = PR_ATOMIC|PR_ADDR|PR_LASTHDR, 284 .pr_input = ip_etherip_input, 285 .pr_output = rip_output, 286 .pr_ctlinput = rip_ctlinput, 287 .pr_ctloutput = rip_ctloutput, 288 .pr_usrreq = rip_usrreq, 289 }, 290 #endif /* NETHERIP > 0 */ 291 #if NCARP > 0 292 { .pr_type = SOCK_RAW, 293 .pr_domain = &inetdomain, 294 .pr_protocol = IPPROTO_CARP, 295 .pr_flags = PR_ATOMIC|PR_ADDR, 296 .pr_input = carp_proto_input, 297 .pr_output = rip_output, 298 .pr_ctloutput = rip_ctloutput, 299 .pr_usrreq = rip_usrreq, 300 }, 301 #endif /* NCARP > 0 */ 302 { .pr_type = SOCK_RAW, 303 .pr_domain = &inetdomain, 304 .pr_protocol = IPPROTO_IGMP, 305 .pr_flags = PR_ATOMIC|PR_ADDR|PR_LASTHDR, 306 .pr_input = igmp_input, 307 .pr_output = rip_output, 308 .pr_ctloutput = rip_ctloutput, 309 .pr_ctlinput = rip_ctlinput, 310 .pr_usrreq = rip_usrreq, 311 .pr_fasttimo = igmp_fasttimo, 312 .pr_slowtimo = igmp_slowtimo, 313 }, 314 #ifdef PIM 315 { .pr_type = SOCK_RAW, 316 .pr_domain = &inetdomain, 317 .pr_protocol = IPPROTO_PIM, 318 .pr_flags = PR_ATOMIC|PR_ADDR|PR_LASTHDR, 319 .pr_input = pim_input, 320 .pr_output = rip_output, 321 .pr_ctloutput = rip_ctloutput, 322 .pr_ctlinput = rip_ctlinput, 323 .pr_usrreq = rip_usrreq, 324 }, 325 #endif /* PIM */ 326 #ifdef TPIP 327 { .pr_type = SOCK_SEQPACKET, 328 .pr_domain = &inetdomain, 329 .pr_protocol = IPPROTO_TP, 330 .pr_flags = PR_CONNREQUIRED|PR_WANTRCVD|PR_LISTEN|PR_LASTHDR|PR_ABRTACPTDIS, 331 .pr_input = tpip_input, 332 .pr_ctloutput = tp_ctloutput, 333 .pr_ctlinput = tpip_ctlinput, 334 .pr_usrreq = tp_usrreq, 335 .pr_init = tp_init, 336 .pr_slowtimo = tp_slowtimo, 337 .pr_drain = tp_drain, 338 }, 339 #endif /* TPIP */ 340 #ifdef ISO 341 /* EON (ISO CLNL over IP) */ 342 #ifdef EON 343 { .pr_type = SOCK_RAW, 344 .pr_domain = &inetdomain, 345 .pr_protocol = IPPROTO_EON, 346 .pr_flags = PR_LASTHDR, 347 .pr_input = eoninput, 348 .pr_ctlinput = eonctlinput, 349 .pr_init = eonprotoinit, 350 }, 351 #else 352 { .pr_type = SOCK_RAW, 353 .pr_domain = &inetdomain, 354 .pr_protocol = IPPROTO_EON, 355 .pr_flags = PR_ATOMIC|PR_ADDR|PR_LASTHDR, 356 .pr_input = encap4_input, 357 .pr_output = rip_output, 358 .pr_ctloutput = rip_ctloutput, 359 .pr_ctlinput = rip_ctlinput, 360 .pr_usrreq = rip_usrreq, 361 .pr_init = encap_init, 362 }, 363 #endif /* EON */ 364 #endif /* ISO */ 365 /* raw wildcard */ 366 { .pr_type = SOCK_RAW, 367 .pr_domain = &inetdomain, 368 .pr_flags = PR_ATOMIC|PR_ADDR|PR_LASTHDR, 369 .pr_input = rip_input, 370 .pr_output = rip_output, 371 .pr_ctloutput = rip_ctloutput, 372 .pr_ctlinput = rip_ctlinput, 373 .pr_usrreq = rip_usrreq, 374 .pr_init = rip_init, 375 }, 376 }; 377 378 extern struct ifqueue ipintrq; 379 380 const struct sockaddr_in in_any = { 381 .sin_len = sizeof(struct sockaddr_in) 382 , .sin_family = AF_INET 383 , .sin_port = 0 384 , .sin_addr = {.s_addr = 0 /* INADDR_ANY */} 385 }; 386 387 struct domain inetdomain = { 388 .dom_family = PF_INET, .dom_name = "internet", .dom_init = NULL, 389 .dom_externalize = NULL, .dom_dispose = NULL, 390 .dom_protosw = inetsw, 391 .dom_protoswNPROTOSW = &inetsw[__arraycount(inetsw)], 392 .dom_rtattach = rn_inithead, 393 .dom_rtoffset = 32, .dom_maxrtkey = sizeof(struct sockaddr_in), 394 #ifdef IPSELSRC 395 .dom_ifattach = in_domifattach, 396 .dom_ifdetach = in_domifdetach, 397 #else 398 .dom_ifattach = NULL, 399 .dom_ifdetach = NULL, 400 #endif 401 .dom_ifqueues = { &ipintrq, NULL }, 402 .dom_link = { NULL }, 403 .dom_mowner = MOWNER_INIT("",""), 404 .dom_sa_cmpofs = offsetof(struct sockaddr_in, sin_addr), 405 .dom_sa_cmplen = sizeof(struct in_addr), 406 .dom_sa_any = (const struct sockaddr *)&in_any, 407 .dom_sockaddr_const_addr = sockaddr_in_const_addr, 408 .dom_sockaddr_addr = sockaddr_in_addr, 409 .dom_rtcache = LIST_HEAD_INITIALIZER(inetdomain.dom_rtcache) 410 }; 411 412 u_char ip_protox[IPPROTO_MAX]; 413 414 int icmperrppslim = 100; /* 100pps */ 415 416 static void 417 sockaddr_in_addrlen(const struct sockaddr *sa, socklen_t *slenp) 418 { 419 socklen_t slen; 420 421 if (slenp == NULL) 422 return; 423 424 slen = sockaddr_getlen(sa); 425 *slenp = (socklen_t)MIN(sizeof(struct in_addr), 426 slen - MIN(slen, offsetof(struct sockaddr_in, sin_addr))); 427 } 428 429 const void * 430 sockaddr_in_const_addr(const struct sockaddr *sa, socklen_t *slenp) 431 { 432 const struct sockaddr_in *sin; 433 434 sockaddr_in_addrlen(sa, slenp); 435 sin = (const struct sockaddr_in *)sa; 436 return &sin->sin_addr; 437 } 438 439 void * 440 sockaddr_in_addr(struct sockaddr *sa, socklen_t *slenp) 441 { 442 struct sockaddr_in *sin; 443 444 sockaddr_in_addrlen(sa, slenp); 445 sin = (struct sockaddr_in *)sa; 446 return &sin->sin_addr; 447 } 448 449 int 450 sockaddr_in_cmp(const struct sockaddr *sa1, const struct sockaddr *sa2) 451 { 452 uint_fast8_t len; 453 const uint_fast8_t addrofs = offsetof(struct sockaddr_in, sin_addr), 454 addrend = addrofs + sizeof(struct in_addr); 455 int rc; 456 const struct sockaddr_in *sin1, *sin2; 457 458 sin1 = satocsin(sa1); 459 sin2 = satocsin(sa2); 460 461 len = MIN(addrend, MIN(sin1->sin_len, sin2->sin_len)); 462 463 if (len > addrofs && 464 (rc = memcmp(&sin1->sin_addr, &sin2->sin_addr, 465 len - addrofs)) != 0) 466 return rc; 467 468 return sin1->sin_len - sin2->sin_len; 469 } 470