xref: /netbsd-src/usr.bin/netstat/bpf.c (revision 53b02e147d4ed531c0d2a5ca9b3e8026ba3e99b5)
1 /*	$NetBSD: bpf.c,v 1.15 2020/08/28 07:23:48 ozaki-r Exp $	*/
2 
3 /*
4  * Copyright (c) 2005 The NetBSD Foundation, Inc.
5  * All rights reserved.
6  *
7  * This code is derived from software contributed to The NetBSD Foundation
8  * by Rui Paulo.
9  *
10  * Redistribution and use in source and binary forms, with or without
11  * modification, are permitted provided that the following conditions
12  * are met:
13  * 1. Redistributions of source code must retain the above copyright
14  *    notice, this list of conditions and the following disclaimer.
15  * 2. Redistributions in binary form must reproduce the above copyright
16  *    notice, this list of conditions and the following disclaimer in the
17  *    documentation and/or other materials provided with the distribution.
18  *
19  * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
20  * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
21  * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
22  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
23  * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
24  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
25  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
26  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
27  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
28  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
29  * POSSIBILITY OF SUCH DAMAGE.
30  */
31 
32 #include <err.h>
33 #include <errno.h>
34 #include <fcntl.h>
35 #include <kvm.h>
36 #include <stdio.h>
37 #include <stdlib.h>
38 #include <string.h>
39 #include <unistd.h>
40 #include <net/if.h>
41 #include <sys/types.h>
42 #include <sys/param.h>
43 #include <sys/sysctl.h>
44 #include <net/bpfdesc.h>
45 #include <net/bpf.h>
46 #include "netstat.h"
47 #include "prog_ops.h"
48 
49 void
50 bpf_stats(void)
51 {
52 	struct bpf_stat bpf_s;
53 	size_t len = sizeof(bpf_s);
54 
55 	if (use_sysctl) {
56 		if (prog_sysctlbyname("net.bpf.stats", &bpf_s, &len, NULL, 0) == -1 &&
57 		    errno != ENOMEM)
58 			err(1, "net.bpf.stats");
59 
60 		printf("bpf:\n");
61 		printf("\t%" PRIu64 " total packets received\n",
62 		    bpf_s.bs_recv);
63 		printf("\t%" PRIu64 " total packets captured\n",
64 		    bpf_s.bs_capt);
65 		printf("\t%" PRIu64 " total packets dropped\n",
66 		    bpf_s.bs_drop);
67 	} else {
68 		warnx("BPF stats not available via KVM.");
69 	}
70 }
71 
72 void
73 bpf_dump(const char *bpfif)
74 {
75 	struct bpf_d_ext *dpe;
76 
77 	if (use_sysctl) {
78 		int	name[CTL_MAXNAME], rc;
79 		size_t	i, sz, szproc;
80 		u_int	namelen;
81 		void	*v;
82 		struct kinfo_proc2 p;
83 
84 		/* adapted from sockstat.c by Andrew Brown */
85 
86 		sz = CTL_MAXNAME;
87 		if (prog_sysctlnametomib("net.bpf.peers", &name[0], &sz) == -1)
88 			err(1, "sysctlnametomib: net.bpf.peers");
89 		namelen = sz;
90 
91 		name[namelen++] = sizeof(*dpe);
92 		name[namelen++] = INT_MAX;
93 
94 		v = NULL;
95 		sz = 0;
96 		do {
97 			rc = prog_sysctl(&name[0], namelen,
98 			    v, &sz, NULL, 0);
99 			if (rc == -1 && errno != ENOMEM)
100 				err(1, "sysctl: net.bpf.peers");
101 			if (rc == -1 && v != NULL) {
102 				free(v);
103 				v = NULL;
104 			}
105 			if (v == NULL) {
106 				v = malloc(sz);
107 				rc = -1;
108 			}
109 			if (v == NULL)
110 				err(1, "malloc");
111 		} while (rc == -1);
112 
113 		dpe = v;
114 
115 		puts("Active BPF peers\nPID\tInt\tRecv     Drop     Capt" \
116 		    "     Flags  Bufsize  Comm");
117 
118 #define BPFEXT(entry) dpe->entry
119 
120 		for (i = 0; i < (sz / sizeof(*dpe)); i++, dpe++) {
121 			if (bpfif &&
122 			    strncmp(BPFEXT(bde_ifname), bpfif, IFNAMSIZ))
123 				continue;
124 
125 			printf("%-7d ", BPFEXT(bde_pid));
126 			printf("%-7s ",
127 			       (BPFEXT(bde_ifname)[0] == '\0') ? "-" :
128 			       BPFEXT(bde_ifname));
129 
130 			printf("%-8" PRIu64 " %-8" PRIu64 " %-8" PRIu64 " ",
131 				BPFEXT(bde_rcount), BPFEXT(bde_dcount),
132 				BPFEXT(bde_ccount));
133 
134 			switch (BPFEXT(bde_state)) {
135 			case BPF_IDLE:
136 				printf("I");
137 				break;
138 			case BPF_WAITING:
139 				printf("W");
140 				break;
141 			case BPF_TIMED_OUT:
142 				printf("T");
143 				break;
144 			default:
145 				printf("-");
146 				break;
147 			}
148 
149 			printf("%c", BPFEXT(bde_promisc) ? 'P' : '-');
150 			printf("%c", BPFEXT(bde_immediate) ? 'R' : '-');
151 			printf("%c", (BPFEXT(bde_direction) == BPF_D_IN) ? '-'
152 			    : (BPFEXT(bde_direction) == BPF_D_OUT) ? 'O' : 'S');
153 			printf("%c", BPFEXT(bde_hdrcmplt) ? 'H' : '-');
154 			printf("  %-8d ", BPFEXT(bde_bufsize));
155 
156 			szproc = sizeof(p);
157 			namelen = 0;
158 			name[namelen++] = CTL_KERN;
159 			name[namelen++] = KERN_PROC2;
160 			name[namelen++] = KERN_PROC_PID;
161 			name[namelen++] = BPFEXT(bde_pid);
162 			name[namelen++] = szproc;
163 			name[namelen++] = 1;
164 
165 			if (prog_sysctl(&name[0], namelen, &p, &szproc,
166 			    NULL, 0) == -1)
167 				printf("-\n");
168 			else
169 				printf("%s\n", p.p_comm);
170 #undef BPFEXT
171 		}
172 		free(v);
173 	} else {
174                 /* XXX */
175                 errx(1, "bpf_dump not implemented using kvm");
176         }
177 }
178