xref: /onnv-gate/usr/src/cmd/cmd-inet/usr.lib/in.ndpd/tables.c (revision 1577:2f7d3ffd4e9f)
10Sstevel@tonic-gate /*
20Sstevel@tonic-gate  * CDDL HEADER START
30Sstevel@tonic-gate  *
40Sstevel@tonic-gate  * The contents of this file are subject to the terms of the
51534Spwernau  * Common Development and Distribution License (the "License").
61534Spwernau  * You may not use this file except in compliance with the License.
70Sstevel@tonic-gate  *
80Sstevel@tonic-gate  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
90Sstevel@tonic-gate  * or http://www.opensolaris.org/os/licensing.
100Sstevel@tonic-gate  * See the License for the specific language governing permissions
110Sstevel@tonic-gate  * and limitations under the License.
120Sstevel@tonic-gate  *
130Sstevel@tonic-gate  * When distributing Covered Code, include this CDDL HEADER in each
140Sstevel@tonic-gate  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
150Sstevel@tonic-gate  * If applicable, add the following below this CDDL HEADER, with the
160Sstevel@tonic-gate  * fields enclosed by brackets "[]" replaced with your own identifying
170Sstevel@tonic-gate  * information: Portions Copyright [yyyy] [name of copyright owner]
180Sstevel@tonic-gate  *
190Sstevel@tonic-gate  * CDDL HEADER END
200Sstevel@tonic-gate  */
210Sstevel@tonic-gate /*
221534Spwernau  * Copyright 2006 Sun Microsystems, Inc.  All rights reserved.
230Sstevel@tonic-gate  * Use is subject to license terms.
240Sstevel@tonic-gate  */
250Sstevel@tonic-gate 
260Sstevel@tonic-gate #pragma ident	"%Z%%M%	%I%	%E% SMI"
270Sstevel@tonic-gate 
280Sstevel@tonic-gate #include "defs.h"
290Sstevel@tonic-gate #include "tables.h"
300Sstevel@tonic-gate 
310Sstevel@tonic-gate #include <time.h>
320Sstevel@tonic-gate #include <inet/ip6.h>
330Sstevel@tonic-gate 
340Sstevel@tonic-gate struct phyint *phyints = NULL;
350Sstevel@tonic-gate 
360Sstevel@tonic-gate static void	phyint_print(struct phyint *pi);
370Sstevel@tonic-gate static void	phyint_insert(struct phyint *pi);
380Sstevel@tonic-gate 
390Sstevel@tonic-gate static boolean_t tmptoken_isvalid(struct in6_addr *token);
400Sstevel@tonic-gate 
410Sstevel@tonic-gate static void	prefix_print(struct prefix *pr);
420Sstevel@tonic-gate static void	prefix_insert(struct phyint *pi, struct prefix *pr);
430Sstevel@tonic-gate static char	*prefix_print_state(int state, char *buf, int buflen);
440Sstevel@tonic-gate static void	prefix_set(struct in6_addr *prefix, struct in6_addr addr,
450Sstevel@tonic-gate 		    int bits);
460Sstevel@tonic-gate 
470Sstevel@tonic-gate static void	adv_prefix_print(struct adv_prefix *adv_pr);
480Sstevel@tonic-gate static void	adv_prefix_insert(struct phyint *pi, struct adv_prefix *adv_pr);
490Sstevel@tonic-gate static void	adv_prefix_delete(struct adv_prefix *adv_pr);
500Sstevel@tonic-gate 
510Sstevel@tonic-gate static void	router_print(struct router *dr);
520Sstevel@tonic-gate static void	router_insert(struct phyint *pi, struct router *dr);
530Sstevel@tonic-gate static void	router_delete(struct router *dr);
540Sstevel@tonic-gate static void	router_add_k(struct router *dr);
550Sstevel@tonic-gate static void	router_delete_k(struct router *dr);
560Sstevel@tonic-gate 
570Sstevel@tonic-gate static int	rtmseq;				/* rtm_seq sequence number */
580Sstevel@tonic-gate 
590Sstevel@tonic-gate /* 1 week in ms */
600Sstevel@tonic-gate #define	NDP_PREFIX_DEFAULT_LIFETIME	(7*24*60*60*1000)
610Sstevel@tonic-gate struct phyint *
620Sstevel@tonic-gate phyint_lookup(char *name)
630Sstevel@tonic-gate {
640Sstevel@tonic-gate 	struct phyint *pi;
650Sstevel@tonic-gate 
660Sstevel@tonic-gate 	if (debug & D_PHYINT)
670Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "phyint_lookup(%s)\n", name);
680Sstevel@tonic-gate 
690Sstevel@tonic-gate 	for (pi = phyints; pi != NULL; pi = pi->pi_next) {
700Sstevel@tonic-gate 		if (strcmp(pi->pi_name, name) == 0)
710Sstevel@tonic-gate 			break;
720Sstevel@tonic-gate 	}
730Sstevel@tonic-gate 	return (pi);
740Sstevel@tonic-gate }
750Sstevel@tonic-gate 
760Sstevel@tonic-gate struct phyint *
770Sstevel@tonic-gate phyint_lookup_on_index(uint_t ifindex)
780Sstevel@tonic-gate {
790Sstevel@tonic-gate 	struct phyint *pi;
800Sstevel@tonic-gate 
810Sstevel@tonic-gate 	if (debug & D_PHYINT)
820Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "phyint_lookup_on_index(%d)\n", ifindex);
830Sstevel@tonic-gate 
840Sstevel@tonic-gate 	for (pi = phyints; pi != NULL; pi = pi->pi_next) {
850Sstevel@tonic-gate 		if (pi->pi_index == ifindex)
860Sstevel@tonic-gate 			break;
870Sstevel@tonic-gate 	}
880Sstevel@tonic-gate 	return (pi);
890Sstevel@tonic-gate }
900Sstevel@tonic-gate 
910Sstevel@tonic-gate struct phyint *
920Sstevel@tonic-gate phyint_create(char *name)
930Sstevel@tonic-gate {
940Sstevel@tonic-gate 	struct phyint *pi;
950Sstevel@tonic-gate 	int i;
960Sstevel@tonic-gate 
970Sstevel@tonic-gate 	if (debug & D_PHYINT)
980Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "phyint_create(%s)\n", name);
990Sstevel@tonic-gate 
1000Sstevel@tonic-gate 	pi = (struct phyint *)calloc(sizeof (struct phyint), 1);
1010Sstevel@tonic-gate 	if (pi == NULL) {
1020Sstevel@tonic-gate 		logmsg(LOG_ERR, "phyint_create: out of memory\n");
1030Sstevel@tonic-gate 		return (NULL);
1040Sstevel@tonic-gate 	}
1050Sstevel@tonic-gate 	(void) strncpy(pi->pi_name, name, sizeof (pi->pi_name));
1060Sstevel@tonic-gate 	pi->pi_name[sizeof (pi->pi_name) - 1] = '\0';
1070Sstevel@tonic-gate 
1080Sstevel@tonic-gate 	/*
1090Sstevel@tonic-gate 	 * Copy the defaults from the defaults array.
1100Sstevel@tonic-gate 	 * Do not copy the cf_notdefault fields since these have not
1110Sstevel@tonic-gate 	 * been explicitly set for the phyint.
1120Sstevel@tonic-gate 	 */
1130Sstevel@tonic-gate 	for (i = 0; i < I_IFSIZE; i++)
1140Sstevel@tonic-gate 		pi->pi_config[i].cf_value = ifdefaults[i].cf_value;
1150Sstevel@tonic-gate 
1160Sstevel@tonic-gate 	/*
1170Sstevel@tonic-gate 	 * TmpDesyncFactor is used to desynchronize temporary token
1180Sstevel@tonic-gate 	 * generation among systems; the actual preferred lifetime value
1190Sstevel@tonic-gate 	 * of a temporary address will be (TmpPreferredLifetime -
1200Sstevel@tonic-gate 	 * TmpDesyncFactor).  It's a random value, with a user-configurable
1210Sstevel@tonic-gate 	 * maximum value.  The value is constant throughout the lifetime
1220Sstevel@tonic-gate 	 * of the in.ndpd process, but can change if the daemon is restarted,
1230Sstevel@tonic-gate 	 * per RFC3041.
1240Sstevel@tonic-gate 	 */
1250Sstevel@tonic-gate 	if (pi->pi_TmpMaxDesyncFactor != 0) {
1260Sstevel@tonic-gate 		time_t seed = time(NULL);
1270Sstevel@tonic-gate 		srand((uint_t)seed);
1280Sstevel@tonic-gate 		pi->pi_TmpDesyncFactor = rand() % pi->pi_TmpMaxDesyncFactor;
1290Sstevel@tonic-gate 		/* we actually want [1,max], not [0,(max-1)] */
1300Sstevel@tonic-gate 		pi->pi_TmpDesyncFactor++;
1310Sstevel@tonic-gate 	}
1320Sstevel@tonic-gate 	pi->pi_TmpRegenCountdown = TIMER_INFINITY;
1330Sstevel@tonic-gate 
1340Sstevel@tonic-gate 	pi->pi_sock = -1;
1350Sstevel@tonic-gate 	if (phyint_init_from_k(pi) == -1) {
1360Sstevel@tonic-gate 		if (pi->pi_group_name != NULL)
1370Sstevel@tonic-gate 			free(pi->pi_group_name);
1380Sstevel@tonic-gate 		free(pi);
1390Sstevel@tonic-gate 		return (NULL);
1400Sstevel@tonic-gate 	}
1410Sstevel@tonic-gate 	phyint_insert(pi);
1420Sstevel@tonic-gate 	if (pi->pi_sock != -1) {
1430Sstevel@tonic-gate 		if (poll_add(pi->pi_sock) == -1) {
1440Sstevel@tonic-gate 			phyint_delete(pi);
1450Sstevel@tonic-gate 			return (NULL);
1460Sstevel@tonic-gate 		}
1470Sstevel@tonic-gate 	}
1480Sstevel@tonic-gate 	return (pi);
1490Sstevel@tonic-gate }
1500Sstevel@tonic-gate 
1510Sstevel@tonic-gate /* Insert in linked list */
1520Sstevel@tonic-gate static void
1530Sstevel@tonic-gate phyint_insert(struct phyint *pi)
1540Sstevel@tonic-gate {
1550Sstevel@tonic-gate 	/* Insert in list */
1560Sstevel@tonic-gate 	pi->pi_next = phyints;
1570Sstevel@tonic-gate 	pi->pi_prev = NULL;
1580Sstevel@tonic-gate 	if (phyints)
1590Sstevel@tonic-gate 		phyints->pi_prev = pi;
1600Sstevel@tonic-gate 	phyints = pi;
1610Sstevel@tonic-gate }
1620Sstevel@tonic-gate 
1630Sstevel@tonic-gate /*
1640Sstevel@tonic-gate  * Initialize both the phyint data structure and the pi_sock for
1650Sstevel@tonic-gate  * sending and receving on the interface.
1660Sstevel@tonic-gate  * Extract information from the kernel (if present) and set pi_kernel_state.
1670Sstevel@tonic-gate  */
1680Sstevel@tonic-gate int
1690Sstevel@tonic-gate phyint_init_from_k(struct phyint *pi)
1700Sstevel@tonic-gate {
1710Sstevel@tonic-gate 	struct ipv6_mreq v6mcastr;
1720Sstevel@tonic-gate 	struct lifreq lifr;
1730Sstevel@tonic-gate 	int fd;
1740Sstevel@tonic-gate 	boolean_t newsock;
1750Sstevel@tonic-gate 	uint_t ttl;
1760Sstevel@tonic-gate 	struct sockaddr_in6 *sin6;
1770Sstevel@tonic-gate 
1780Sstevel@tonic-gate 	if (debug & D_PHYINT)
1790Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "phyint_init_from_k(%s)\n", pi->pi_name);
1800Sstevel@tonic-gate 
1810Sstevel@tonic-gate start_over:
1820Sstevel@tonic-gate 
1830Sstevel@tonic-gate 	if (pi->pi_sock < 0) {
1840Sstevel@tonic-gate 		pi->pi_sock = socket(AF_INET6, SOCK_RAW, IPPROTO_ICMPV6);
1850Sstevel@tonic-gate 		if (pi->pi_sock < 0) {
1860Sstevel@tonic-gate 			logperror_pi(pi, "phyint_init_from_k: socket");
1870Sstevel@tonic-gate 			return (-1);
1880Sstevel@tonic-gate 		}
1890Sstevel@tonic-gate 		newsock = _B_TRUE;
1900Sstevel@tonic-gate 	} else {
1910Sstevel@tonic-gate 		newsock = _B_FALSE;
1920Sstevel@tonic-gate 	}
1930Sstevel@tonic-gate 	fd = pi->pi_sock;
1940Sstevel@tonic-gate 
1950Sstevel@tonic-gate 	(void) strncpy(lifr.lifr_name, pi->pi_name, sizeof (lifr.lifr_name));
1960Sstevel@tonic-gate 	lifr.lifr_name[sizeof (lifr.lifr_name) - 1] = '\0';
1970Sstevel@tonic-gate 	if (ioctl(fd, SIOCGLIFINDEX, (char *)&lifr) < 0) {
1980Sstevel@tonic-gate 		if (errno == ENXIO) {
1990Sstevel@tonic-gate 			if (newsock) {
2000Sstevel@tonic-gate 				(void) close(pi->pi_sock);
2010Sstevel@tonic-gate 				pi->pi_sock = -1;
2020Sstevel@tonic-gate 			}
2030Sstevel@tonic-gate 			if (debug & D_PHYINT) {
2040Sstevel@tonic-gate 				logmsg(LOG_DEBUG, "phyint_init_from_k(%s): "
2050Sstevel@tonic-gate 				    "not exist\n", pi->pi_name);
2060Sstevel@tonic-gate 			}
2070Sstevel@tonic-gate 			return (0);
2080Sstevel@tonic-gate 		}
2090Sstevel@tonic-gate 		logperror_pi(pi, "phyint_init_from_k: SIOCGLIFINDEX");
2100Sstevel@tonic-gate 		goto error;
2110Sstevel@tonic-gate 	}
2120Sstevel@tonic-gate 
2130Sstevel@tonic-gate 	if (!newsock && (pi->pi_index != lifr.lifr_index)) {
2140Sstevel@tonic-gate 		/*
2150Sstevel@tonic-gate 		 * Interface has been re-plumbed, lets open a new socket.
2160Sstevel@tonic-gate 		 * This situation can occur if plumb/unplumb are happening
2170Sstevel@tonic-gate 		 * quite frequently.
2180Sstevel@tonic-gate 		 */
2190Sstevel@tonic-gate 
2200Sstevel@tonic-gate 		phyint_cleanup(pi);
2210Sstevel@tonic-gate 		goto start_over;
2220Sstevel@tonic-gate 	}
2230Sstevel@tonic-gate 
2240Sstevel@tonic-gate 	pi->pi_index = lifr.lifr_index;
2250Sstevel@tonic-gate 
2260Sstevel@tonic-gate 	if (ioctl(fd, SIOCGLIFFLAGS, (char *)&lifr) < 0) {
2270Sstevel@tonic-gate 		logperror_pi(pi, "phyint_init_from_k: ioctl (get flags)");
2280Sstevel@tonic-gate 		goto error;
2290Sstevel@tonic-gate 	}
2300Sstevel@tonic-gate 	pi->pi_flags = lifr.lifr_flags;
2310Sstevel@tonic-gate 
2320Sstevel@tonic-gate 	/*
2330Sstevel@tonic-gate 	 * If the  link local interface is not up yet or it's IFF_UP
2340Sstevel@tonic-gate 	 * and the flag is set to IFF_NOLOCAL as Duplicate Address
2350Sstevel@tonic-gate 	 * Detection is in progress.
2360Sstevel@tonic-gate 	 * IFF_NOLOCAL is "normal" on other prefixes.
2370Sstevel@tonic-gate 	 */
2380Sstevel@tonic-gate 
2390Sstevel@tonic-gate 	if (!(pi->pi_flags & IFF_UP) || (pi->pi_flags & IFF_NOLOCAL)) {
2400Sstevel@tonic-gate 		if (newsock) {
2410Sstevel@tonic-gate 			(void) close(pi->pi_sock);
2420Sstevel@tonic-gate 			pi->pi_sock = -1;
2430Sstevel@tonic-gate 		}
2440Sstevel@tonic-gate 		if (debug & D_PHYINT) {
2450Sstevel@tonic-gate 			logmsg(LOG_DEBUG, "phyint_init_from_k(%s): "
2460Sstevel@tonic-gate 			    "not IFF_UP\n", pi->pi_name);
2470Sstevel@tonic-gate 		}
2480Sstevel@tonic-gate 		return (0);
2490Sstevel@tonic-gate 	}
2500Sstevel@tonic-gate 	pi->pi_kernel_state |= PI_PRESENT;
2510Sstevel@tonic-gate 
2520Sstevel@tonic-gate 	bzero(lifr.lifr_groupname, sizeof (lifr.lifr_groupname));
2530Sstevel@tonic-gate 	if (ioctl(fd, SIOCGLIFGROUPNAME, (caddr_t)&lifr) < 0) {
2540Sstevel@tonic-gate 		logperror_pi(pi, "phyint_init_from_k: ioctl (get group name)");
2550Sstevel@tonic-gate 		goto error;
2560Sstevel@tonic-gate 	}
2570Sstevel@tonic-gate 
2580Sstevel@tonic-gate 	if (lifr.lifr_groupname != NULL && strlen(lifr.lifr_groupname) != 0) {
2590Sstevel@tonic-gate 		if (pi->pi_group_name == NULL) {
2600Sstevel@tonic-gate 			pi->pi_group_name = malloc(
2610Sstevel@tonic-gate 			    sizeof (lifr.lifr_groupname));
2620Sstevel@tonic-gate 			if (pi->pi_group_name == NULL) {
2630Sstevel@tonic-gate 				logperror_pi(pi, "phyint_init_from_k:"
2640Sstevel@tonic-gate 				    " malloc(group name)");
2650Sstevel@tonic-gate 				goto error;
2660Sstevel@tonic-gate 			}
2670Sstevel@tonic-gate 		}
2680Sstevel@tonic-gate 		/*
2690Sstevel@tonic-gate 		 * Size of the group name can only be LIFNAMESZ -1 characters
2700Sstevel@tonic-gate 		 * which is ensured by kernel. Thus, we don't need strncpy.
2710Sstevel@tonic-gate 		 */
2720Sstevel@tonic-gate 		(void) strncpy(pi->pi_group_name, lifr.lifr_groupname,
2730Sstevel@tonic-gate 		    sizeof (lifr.lifr_name));
2740Sstevel@tonic-gate 		pi->pi_group_name[sizeof (pi->pi_group_name) - 1] = '\0';
2750Sstevel@tonic-gate 	} else if (pi->pi_group_name != NULL) {
2760Sstevel@tonic-gate 		free(pi->pi_group_name);
2770Sstevel@tonic-gate 		pi->pi_group_name = NULL;
2780Sstevel@tonic-gate 	}
2790Sstevel@tonic-gate 
2800Sstevel@tonic-gate 	if (ioctl(fd, SIOCGLIFMTU, (caddr_t)&lifr) < 0) {
2810Sstevel@tonic-gate 		logperror_pi(pi, "phyint_init_from_k: ioctl (get mtu)");
2820Sstevel@tonic-gate 		goto error;
2830Sstevel@tonic-gate 	}
2840Sstevel@tonic-gate 	pi->pi_mtu = lifr.lifr_mtu;
2850Sstevel@tonic-gate 
2860Sstevel@tonic-gate 	if (ioctl(fd, SIOCGLIFADDR, (char *)&lifr) < 0) {
2870Sstevel@tonic-gate 		logperror_pi(pi, "phyint_init_from_k: SIOCGLIFADDR");
2880Sstevel@tonic-gate 		goto error;
2890Sstevel@tonic-gate 	}
2900Sstevel@tonic-gate 	sin6 = (struct sockaddr_in6 *)&lifr.lifr_addr;
2910Sstevel@tonic-gate 	pi->pi_ifaddr = sin6->sin6_addr;
2920Sstevel@tonic-gate 
2930Sstevel@tonic-gate 	if (ioctl(fd, SIOCGLIFTOKEN, (char *)&lifr) < 0) {
2940Sstevel@tonic-gate 		logperror_pi(pi, "phyint_init_from_k: SIOCGLIFTOKEN");
2950Sstevel@tonic-gate 		goto error;
2960Sstevel@tonic-gate 	}
2970Sstevel@tonic-gate 	/* Ignore interface if the token is all zeros */
2980Sstevel@tonic-gate 	sin6 = (struct sockaddr_in6 *)&lifr.lifr_token;
2990Sstevel@tonic-gate 	if (IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr)) {
3000Sstevel@tonic-gate 		logmsg(LOG_ERR, "ignoring interface %s: zero token\n",
3010Sstevel@tonic-gate 		    pi->pi_name);
3020Sstevel@tonic-gate 		goto error;
3030Sstevel@tonic-gate 	}
3040Sstevel@tonic-gate 	pi->pi_token = sin6->sin6_addr;
3050Sstevel@tonic-gate 	pi->pi_token_length = lifr.lifr_addrlen;
3060Sstevel@tonic-gate 
3070Sstevel@tonic-gate 	/*
3080Sstevel@tonic-gate 	 * Guess a remote token for POINTOPOINT by looking at
3090Sstevel@tonic-gate 	 * the link-local destination address.
3100Sstevel@tonic-gate 	 */
3110Sstevel@tonic-gate 	if (pi->pi_flags & IFF_POINTOPOINT) {
3120Sstevel@tonic-gate 		if (ioctl(fd, SIOCGLIFDSTADDR, (char *)&lifr) < 0) {
3130Sstevel@tonic-gate 			logperror_pi(pi, "phyint_init_from_k: SIOCGLIFDSTADDR");
3140Sstevel@tonic-gate 			goto error;
3150Sstevel@tonic-gate 		}
3160Sstevel@tonic-gate 		sin6 = (struct sockaddr_in6 *)&lifr.lifr_addr;
3170Sstevel@tonic-gate 		if (sin6->sin6_family != AF_INET6 ||
3180Sstevel@tonic-gate 		    IN6_IS_ADDR_UNSPECIFIED(&sin6->sin6_addr) ||
3190Sstevel@tonic-gate 		    !IN6_IS_ADDR_LINKLOCAL(&sin6->sin6_addr)) {
3200Sstevel@tonic-gate 			pi->pi_dst_token = in6addr_any;
3210Sstevel@tonic-gate 		} else {
3220Sstevel@tonic-gate 			pi->pi_dst_token = sin6->sin6_addr;
3230Sstevel@tonic-gate 			/* Clear link-local prefix (first 10 bits) */
3240Sstevel@tonic-gate 			pi->pi_dst_token.s6_addr[0] = 0;
3250Sstevel@tonic-gate 			pi->pi_dst_token.s6_addr[1] &= 0x3f;
3260Sstevel@tonic-gate 		}
3270Sstevel@tonic-gate 	} else {
3280Sstevel@tonic-gate 		pi->pi_dst_token = in6addr_any;
3290Sstevel@tonic-gate 	}
3300Sstevel@tonic-gate 
3310Sstevel@tonic-gate 	/* Get link-layer address */
3320Sstevel@tonic-gate 	if (!(pi->pi_flags & IFF_MULTICAST) ||
3330Sstevel@tonic-gate 	    (pi->pi_flags & IFF_POINTOPOINT)) {
3340Sstevel@tonic-gate 		pi->pi_hdw_addr_len = 0;
3350Sstevel@tonic-gate 	} else {
3360Sstevel@tonic-gate 		sin6 = (struct sockaddr_in6 *)&lifr.lifr_nd.lnr_addr;
3370Sstevel@tonic-gate 		bzero(sin6, sizeof (struct sockaddr_in6));
3380Sstevel@tonic-gate 		sin6->sin6_family = AF_INET6;
3390Sstevel@tonic-gate 		sin6->sin6_addr = pi->pi_ifaddr;
3400Sstevel@tonic-gate 
3410Sstevel@tonic-gate 		if (ioctl(fd, SIOCLIFGETND, (char *)&lifr) < 0) {
3420Sstevel@tonic-gate 			logperror_pi(pi, "phyint_init_from_k: SIOCLIFGETND");
3430Sstevel@tonic-gate 			goto error;
3440Sstevel@tonic-gate 		}
3450Sstevel@tonic-gate 
3460Sstevel@tonic-gate 		pi->pi_hdw_addr_len = lifr.lifr_nd.lnr_hdw_len;
3470Sstevel@tonic-gate 
3480Sstevel@tonic-gate 		if (lifr.lifr_nd.lnr_hdw_len != 0) {
3490Sstevel@tonic-gate 			bcopy((char *)lifr.lifr_nd.lnr_hdw_addr,
3500Sstevel@tonic-gate 			    (char *)pi->pi_hdw_addr,
3510Sstevel@tonic-gate 			    lifr.lifr_nd.lnr_hdw_len);
3520Sstevel@tonic-gate 		}
3530Sstevel@tonic-gate 	}
3540Sstevel@tonic-gate 
3550Sstevel@tonic-gate 	if (newsock) {
3560Sstevel@tonic-gate 		icmp6_filter_t filter;
3570Sstevel@tonic-gate 		int on = 1;
3580Sstevel@tonic-gate 
3590Sstevel@tonic-gate 		/* Set default values */
3600Sstevel@tonic-gate 		pi->pi_LinkMTU = pi->pi_mtu;
3610Sstevel@tonic-gate 		pi->pi_CurHopLimit = 0;
3620Sstevel@tonic-gate 		pi->pi_BaseReachableTime = ND_REACHABLE_TIME;
3630Sstevel@tonic-gate 		phyint_reach_random(pi, _B_FALSE);
3640Sstevel@tonic-gate 		pi->pi_RetransTimer = ND_RETRANS_TIMER;
3650Sstevel@tonic-gate 
3660Sstevel@tonic-gate 		/* Setup socket for transmission and reception */
3670Sstevel@tonic-gate 		if (setsockopt(fd, IPPROTO_IPV6,
3680Sstevel@tonic-gate 		    IPV6_BOUND_IF, (char *)&pi->pi_index,
3690Sstevel@tonic-gate 		    sizeof (pi->pi_index)) < 0) {
3700Sstevel@tonic-gate 			logperror_pi(pi, "phyint_init_from_k: setsockopt "
3710Sstevel@tonic-gate 			    "IPV6_BOUND_IF");
3720Sstevel@tonic-gate 			goto error;
3730Sstevel@tonic-gate 		}
3740Sstevel@tonic-gate 
3750Sstevel@tonic-gate 		ttl = IPV6_MAX_HOPS;
3760Sstevel@tonic-gate 		if (setsockopt(fd, IPPROTO_IPV6, IPV6_UNICAST_HOPS,
3770Sstevel@tonic-gate 		    (char *)&ttl, sizeof (ttl)) < 0) {
3780Sstevel@tonic-gate 			logperror_pi(pi, "phyint_init_from_k: setsockopt "
3790Sstevel@tonic-gate 			    "IPV6_UNICAST_HOPS");
3800Sstevel@tonic-gate 			goto error;
3810Sstevel@tonic-gate 		}
3820Sstevel@tonic-gate 
3830Sstevel@tonic-gate 		if (setsockopt(fd, IPPROTO_IPV6, IPV6_MULTICAST_HOPS,
3840Sstevel@tonic-gate 		    (char *)&ttl, sizeof (ttl)) < 0) {
3850Sstevel@tonic-gate 			logperror_pi(pi, "phyint_init_from_k: setsockopt "
3860Sstevel@tonic-gate 			    "IPV6_MULTICAST_HOPS");
3870Sstevel@tonic-gate 			goto error;
3880Sstevel@tonic-gate 		}
3890Sstevel@tonic-gate 
3900Sstevel@tonic-gate 		v6mcastr.ipv6mr_multiaddr = all_nodes_mcast;
3910Sstevel@tonic-gate 		v6mcastr.ipv6mr_interface = pi->pi_index;
3920Sstevel@tonic-gate 		if (setsockopt(fd, IPPROTO_IPV6, IPV6_JOIN_GROUP,
3930Sstevel@tonic-gate 		    (char *)&v6mcastr, sizeof (v6mcastr)) < 0) {
3940Sstevel@tonic-gate 			logperror_pi(pi, "phyint_init_from_k: "
3950Sstevel@tonic-gate 			    "setsockopt IPV6_JOIN_GROUP");
3960Sstevel@tonic-gate 			goto error;
3970Sstevel@tonic-gate 		}
3980Sstevel@tonic-gate 		pi->pi_state |= PI_JOINED_ALLNODES;
3990Sstevel@tonic-gate 		pi->pi_kernel_state |= PI_JOINED_ALLNODES;
4000Sstevel@tonic-gate 
4010Sstevel@tonic-gate 		/*
4020Sstevel@tonic-gate 		 * Filter out so that we only receive router advertisements and
4030Sstevel@tonic-gate 		 * router solicitations.
4040Sstevel@tonic-gate 		 */
4050Sstevel@tonic-gate 		ICMP6_FILTER_SETBLOCKALL(&filter);
4060Sstevel@tonic-gate 		ICMP6_FILTER_SETPASS(ND_ROUTER_SOLICIT, &filter);
4070Sstevel@tonic-gate 		ICMP6_FILTER_SETPASS(ND_ROUTER_ADVERT, &filter);
4080Sstevel@tonic-gate 
4090Sstevel@tonic-gate 		if (setsockopt(fd, IPPROTO_ICMPV6, ICMP6_FILTER,
4100Sstevel@tonic-gate 		    (char *)&filter, sizeof (filter)) < 0) {
4110Sstevel@tonic-gate 			logperror_pi(pi, "phyint_init_from_k: setsockopt "
4120Sstevel@tonic-gate 			    "ICMP6_FILTER");
4130Sstevel@tonic-gate 			goto error;
4140Sstevel@tonic-gate 		}
4150Sstevel@tonic-gate 
4160Sstevel@tonic-gate 		/* Enable receipt of ancillary data */
4170Sstevel@tonic-gate 		if (setsockopt(fd, IPPROTO_IPV6, IPV6_RECVHOPLIMIT,
4180Sstevel@tonic-gate 		    (char *)&on, sizeof (on)) < 0) {
4190Sstevel@tonic-gate 			logperror_pi(pi, "phyint_init_from_k: setsockopt "
4200Sstevel@tonic-gate 			    "IPV6_RECVHOPLIMIT");
4210Sstevel@tonic-gate 			goto error;
4220Sstevel@tonic-gate 		}
4230Sstevel@tonic-gate 		if (setsockopt(fd, IPPROTO_IPV6, IPV6_RECVRTHDR,
4240Sstevel@tonic-gate 		    (char *)&on, sizeof (on)) < 0) {
4250Sstevel@tonic-gate 			logperror_pi(pi, "phyint_init_from_k: setsockopt "
4260Sstevel@tonic-gate 			    "IPV6_RECVRTHDR");
4270Sstevel@tonic-gate 			goto error;
4280Sstevel@tonic-gate 		}
4290Sstevel@tonic-gate 	}
4300Sstevel@tonic-gate 
4310Sstevel@tonic-gate 	if (pi->pi_AdvSendAdvertisements &&
4320Sstevel@tonic-gate 	    !(pi->pi_kernel_state & PI_JOINED_ALLROUTERS)) {
4330Sstevel@tonic-gate 		v6mcastr.ipv6mr_multiaddr = all_routers_mcast;
4340Sstevel@tonic-gate 		v6mcastr.ipv6mr_interface = pi->pi_index;
4350Sstevel@tonic-gate 		if (setsockopt(fd, IPPROTO_IPV6, IPV6_JOIN_GROUP,
4360Sstevel@tonic-gate 		    (char *)&v6mcastr, sizeof (v6mcastr)) < 0) {
4370Sstevel@tonic-gate 			logperror_pi(pi, "phyint_init_from_k: setsockopt "
4380Sstevel@tonic-gate 			    "IPV6_JOIN_GROUP");
4390Sstevel@tonic-gate 			goto error;
4400Sstevel@tonic-gate 		}
4410Sstevel@tonic-gate 		pi->pi_state |= PI_JOINED_ALLROUTERS;
4420Sstevel@tonic-gate 		pi->pi_kernel_state |= PI_JOINED_ALLROUTERS;
4430Sstevel@tonic-gate 	}
4440Sstevel@tonic-gate 	/*
4450Sstevel@tonic-gate 	 * If not already set, set the IFF_ROUTER interface flag based on
4460Sstevel@tonic-gate 	 * AdvSendAdvertisements.  Note that this will also enable IPv6
4470Sstevel@tonic-gate 	 * forwarding on the interface.  We don't clear IFF_ROUTER if we're
4480Sstevel@tonic-gate 	 * not advertising on an interface, because we could still be
4490Sstevel@tonic-gate 	 * forwarding on those interfaces.
4500Sstevel@tonic-gate 	 */
4510Sstevel@tonic-gate 	(void) strncpy(lifr.lifr_name, pi->pi_name, sizeof (lifr.lifr_name));
4520Sstevel@tonic-gate 	lifr.lifr_name[sizeof (lifr.lifr_name) - 1] = '\0';
4530Sstevel@tonic-gate 	if (ioctl(fd, SIOCGLIFFLAGS, (char *)&lifr) < 0) {
4540Sstevel@tonic-gate 		logperror_pi(pi, "phyint_init_from_k: SIOCGLIFFLAGS");
4550Sstevel@tonic-gate 		goto error;
4560Sstevel@tonic-gate 	}
4570Sstevel@tonic-gate 	if (!(lifr.lifr_flags & IFF_ROUTER) && pi->pi_AdvSendAdvertisements) {
4580Sstevel@tonic-gate 		lifr.lifr_flags |= IFF_ROUTER;
4590Sstevel@tonic-gate 
4600Sstevel@tonic-gate 		if (ioctl(fd, SIOCSLIFFLAGS, (char *)&lifr) < 0) {
4610Sstevel@tonic-gate 			logperror_pi(pi, "phyint_init_from_k: SIOCSLIFFLAGS");
4620Sstevel@tonic-gate 			goto error;
4630Sstevel@tonic-gate 		}
4640Sstevel@tonic-gate 		pi->pi_flags = lifr.lifr_flags;
4650Sstevel@tonic-gate 	}
4660Sstevel@tonic-gate 
4670Sstevel@tonic-gate 	/* Set linkinfo parameters */
4680Sstevel@tonic-gate 	(void) strncpy(lifr.lifr_name, pi->pi_name, sizeof (lifr.lifr_name));
4690Sstevel@tonic-gate 	lifr.lifr_name[sizeof (lifr.lifr_name) - 1] = '\0';
4700Sstevel@tonic-gate 	lifr.lifr_ifinfo.lir_maxhops = pi->pi_CurHopLimit;
4710Sstevel@tonic-gate 	lifr.lifr_ifinfo.lir_reachtime = pi->pi_ReachableTime;
4720Sstevel@tonic-gate 	lifr.lifr_ifinfo.lir_reachretrans = pi->pi_RetransTimer;
4731534Spwernau 	/* Setting maxmtu to 0 means that we're leaving the MTU alone */
4741534Spwernau 	lifr.lifr_ifinfo.lir_maxmtu = 0;
4750Sstevel@tonic-gate 	if (ioctl(fd, SIOCSLIFLNKINFO, (char *)&lifr) < 0) {
4760Sstevel@tonic-gate 		logperror_pi(pi, "phyint_init_from_k: SIOCSLIFLNKINFO");
4770Sstevel@tonic-gate 		goto error;
4780Sstevel@tonic-gate 	}
4790Sstevel@tonic-gate 	if (debug & D_PHYINT) {
4800Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "phyint_init_from_k(%s): done\n",
4810Sstevel@tonic-gate 		    pi->pi_name);
4820Sstevel@tonic-gate 	}
4830Sstevel@tonic-gate 	return (0);
4840Sstevel@tonic-gate 
4850Sstevel@tonic-gate error:
4860Sstevel@tonic-gate 	/* Pretend the interface does not exist in the kernel */
4870Sstevel@tonic-gate 	pi->pi_kernel_state &= ~PI_PRESENT;
4880Sstevel@tonic-gate 	if (newsock) {
4890Sstevel@tonic-gate 		(void) close(pi->pi_sock);
4900Sstevel@tonic-gate 		pi->pi_sock = -1;
4910Sstevel@tonic-gate 	}
4920Sstevel@tonic-gate 	return (-1);
4930Sstevel@tonic-gate }
4940Sstevel@tonic-gate 
4950Sstevel@tonic-gate /*
4960Sstevel@tonic-gate  * Delete (unlink and free).
4970Sstevel@tonic-gate  * Handles delete of things that have not yet been inserted in the list.
4980Sstevel@tonic-gate  */
4990Sstevel@tonic-gate void
5000Sstevel@tonic-gate phyint_delete(struct phyint *pi)
5010Sstevel@tonic-gate {
5020Sstevel@tonic-gate 	if (debug & D_PHYINT)
5030Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "phyint_delete(%s)\n", pi->pi_name);
5040Sstevel@tonic-gate 
5050Sstevel@tonic-gate 	while (pi->pi_router_list)
5060Sstevel@tonic-gate 		router_delete(pi->pi_router_list);
5070Sstevel@tonic-gate 	while (pi->pi_prefix_list)
5080Sstevel@tonic-gate 		prefix_delete(pi->pi_prefix_list);
5090Sstevel@tonic-gate 	while (pi->pi_adv_prefix_list)
5100Sstevel@tonic-gate 		adv_prefix_delete(pi->pi_adv_prefix_list);
5110Sstevel@tonic-gate 
5120Sstevel@tonic-gate 	if (pi->pi_sock != -1) {
5130Sstevel@tonic-gate 		(void) poll_remove(pi->pi_sock);
5140Sstevel@tonic-gate 		if (close(pi->pi_sock) < 0) {
5150Sstevel@tonic-gate 			logperror_pi(pi, "phyint_delete: close");
5160Sstevel@tonic-gate 		}
5170Sstevel@tonic-gate 		pi->pi_sock = -1;
5180Sstevel@tonic-gate 	}
5190Sstevel@tonic-gate 
5200Sstevel@tonic-gate 	if (pi->pi_prev == NULL) {
5210Sstevel@tonic-gate 		if (phyints == pi)
5220Sstevel@tonic-gate 			phyints = pi->pi_next;
5230Sstevel@tonic-gate 	} else {
5240Sstevel@tonic-gate 		pi->pi_prev->pi_next = pi->pi_next;
5250Sstevel@tonic-gate 	}
5260Sstevel@tonic-gate 	if (pi->pi_next != NULL)
5270Sstevel@tonic-gate 		pi->pi_next->pi_prev = pi->pi_prev;
5280Sstevel@tonic-gate 	pi->pi_next = pi->pi_prev = NULL;
5290Sstevel@tonic-gate 	if (pi->pi_group_name != NULL)
5300Sstevel@tonic-gate 		free(pi->pi_group_name);
5310Sstevel@tonic-gate 	free(pi);
5320Sstevel@tonic-gate }
5330Sstevel@tonic-gate 
5340Sstevel@tonic-gate /*
5350Sstevel@tonic-gate  * Called with the number of millseconds elapsed since the last call.
5360Sstevel@tonic-gate  * Determines if any timeout event has occurred and
5370Sstevel@tonic-gate  * returns the number of milliseconds until the next timeout event
5380Sstevel@tonic-gate  * for the phyint iself (excluding prefixes and routers).
5390Sstevel@tonic-gate  * Returns TIMER_INFINITY for "never".
5400Sstevel@tonic-gate  */
5410Sstevel@tonic-gate uint_t
5420Sstevel@tonic-gate phyint_timer(struct phyint *pi, uint_t elapsed)
5430Sstevel@tonic-gate {
5440Sstevel@tonic-gate 	uint_t next = TIMER_INFINITY;
5450Sstevel@tonic-gate 
5460Sstevel@tonic-gate 	if (pi->pi_AdvSendAdvertisements) {
5470Sstevel@tonic-gate 		if (pi->pi_adv_state != NO_ADV) {
5480Sstevel@tonic-gate 			int old_state = pi->pi_adv_state;
5490Sstevel@tonic-gate 
5500Sstevel@tonic-gate 			if (debug & (D_STATE|D_PHYINT)) {
5510Sstevel@tonic-gate 				logmsg(LOG_DEBUG, "phyint_timer ADV(%s) "
5520Sstevel@tonic-gate 				    "state %d\n", pi->pi_name, (int)old_state);
5530Sstevel@tonic-gate 			}
5540Sstevel@tonic-gate 			next = advertise_event(pi, ADV_TIMER, elapsed);
5550Sstevel@tonic-gate 			if (debug & D_STATE) {
5560Sstevel@tonic-gate 				logmsg(LOG_DEBUG, "phyint_timer ADV(%s) "
5570Sstevel@tonic-gate 				    "state %d -> %d\n",
5580Sstevel@tonic-gate 				    pi->pi_name, (int)old_state,
5590Sstevel@tonic-gate 				    (int)pi->pi_adv_state);
5600Sstevel@tonic-gate 			}
5610Sstevel@tonic-gate 		}
5620Sstevel@tonic-gate 	} else {
5630Sstevel@tonic-gate 		if (pi->pi_sol_state != NO_SOLICIT) {
5640Sstevel@tonic-gate 			int old_state = pi->pi_sol_state;
5650Sstevel@tonic-gate 
5660Sstevel@tonic-gate 			if (debug & (D_STATE|D_PHYINT)) {
5670Sstevel@tonic-gate 				logmsg(LOG_DEBUG, "phyint_timer SOL(%s) "
5680Sstevel@tonic-gate 				    "state %d\n", pi->pi_name, (int)old_state);
5690Sstevel@tonic-gate 			}
5700Sstevel@tonic-gate 			next = solicit_event(pi, SOL_TIMER, elapsed);
5710Sstevel@tonic-gate 			if (debug & D_STATE) {
5720Sstevel@tonic-gate 				logmsg(LOG_DEBUG, "phyint_timer SOL(%s) "
5730Sstevel@tonic-gate 				    "state %d -> %d\n",
5740Sstevel@tonic-gate 				    pi->pi_name, (int)old_state,
5750Sstevel@tonic-gate 				    (int)pi->pi_sol_state);
5760Sstevel@tonic-gate 			}
5770Sstevel@tonic-gate 		}
5780Sstevel@tonic-gate 	}
5790Sstevel@tonic-gate 
5800Sstevel@tonic-gate 	/*
5810Sstevel@tonic-gate 	 * If the phyint has been unplumbed, we don't want to call
5820Sstevel@tonic-gate 	 * phyint_reach_random. We will be in the NO_ADV or NO_SOLICIT state.
5830Sstevel@tonic-gate 	 */
5840Sstevel@tonic-gate 	if ((pi->pi_AdvSendAdvertisements && (pi->pi_adv_state != NO_ADV)) ||
5850Sstevel@tonic-gate 	    (!pi->pi_AdvSendAdvertisements &&
5860Sstevel@tonic-gate 	    (pi->pi_sol_state != NO_SOLICIT))) {
5870Sstevel@tonic-gate 		pi->pi_reach_time_since_random += elapsed;
5880Sstevel@tonic-gate 		if (pi->pi_reach_time_since_random >= MAX_REACH_RANDOM_INTERVAL)
5890Sstevel@tonic-gate 			phyint_reach_random(pi, _B_TRUE);
5900Sstevel@tonic-gate 	}
5910Sstevel@tonic-gate 
5920Sstevel@tonic-gate 	return (next);
5930Sstevel@tonic-gate }
5940Sstevel@tonic-gate 
5950Sstevel@tonic-gate static void
5960Sstevel@tonic-gate phyint_print(struct phyint *pi)
5970Sstevel@tonic-gate {
5980Sstevel@tonic-gate 	struct prefix *pr;
5990Sstevel@tonic-gate 	struct adv_prefix *adv_pr;
6000Sstevel@tonic-gate 	struct router *dr;
6010Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
6020Sstevel@tonic-gate 	char llabuf[BUFSIZ];
6030Sstevel@tonic-gate 
6040Sstevel@tonic-gate 	logmsg(LOG_DEBUG, "Phyint %s index %d state %x, kernel %x, "
605*1577Sseb 	    "num routers %d\n",
606*1577Sseb 	    pi->pi_name, pi->pi_index, pi->pi_state, pi->pi_kernel_state,
6070Sstevel@tonic-gate 	    pi->pi_num_k_routers);
6080Sstevel@tonic-gate 	logmsg(LOG_DEBUG, "\taddress: %s flags %x\n",
6090Sstevel@tonic-gate 	    inet_ntop(AF_INET6, (void *)&pi->pi_ifaddr,
6100Sstevel@tonic-gate 	    abuf, sizeof (abuf)), pi->pi_flags);
6110Sstevel@tonic-gate 	logmsg(LOG_DEBUG, "\tsock %d mtu %d hdw_addr len %d <%s>\n",
6120Sstevel@tonic-gate 	    pi->pi_sock, pi->pi_mtu, pi->pi_hdw_addr_len,
6130Sstevel@tonic-gate 	    ((pi->pi_hdw_addr_len != 0) ?
6140Sstevel@tonic-gate 	    fmt_lla(llabuf, sizeof (llabuf), pi->pi_hdw_addr,
6150Sstevel@tonic-gate 	    pi->pi_hdw_addr_len) : "none"));
6160Sstevel@tonic-gate 	logmsg(LOG_DEBUG, "\ttoken: len %d %s\n",
6170Sstevel@tonic-gate 	    pi->pi_token_length,
6180Sstevel@tonic-gate 	    inet_ntop(AF_INET6, (void *)&pi->pi_token,
6190Sstevel@tonic-gate 	    abuf, sizeof (abuf)));
6200Sstevel@tonic-gate 	if (pi->pi_TmpAddrsEnabled) {
6210Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "\ttmp_token: %s\n",
6220Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&pi->pi_tmp_token,
6230Sstevel@tonic-gate 			abuf, sizeof (abuf)));
6240Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "\ttmp config: pref %d valid %d "
6250Sstevel@tonic-gate 		    "maxdesync %d desync %d regen %d\n",
6260Sstevel@tonic-gate 		    pi->pi_TmpPreferredLifetime, pi->pi_TmpValidLifetime,
6270Sstevel@tonic-gate 		    pi->pi_TmpMaxDesyncFactor, pi->pi_TmpDesyncFactor,
6280Sstevel@tonic-gate 		    pi->pi_TmpRegenAdvance);
6290Sstevel@tonic-gate 	}
6300Sstevel@tonic-gate 	if (pi->pi_flags & IFF_POINTOPOINT) {
6310Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "\tdst_token: %s\n",
6320Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&pi->pi_dst_token,
6330Sstevel@tonic-gate 			abuf, sizeof (abuf)));
6340Sstevel@tonic-gate 	}
6350Sstevel@tonic-gate 	logmsg(LOG_DEBUG, "\tLinkMTU %d CurHopLimit %d "
6360Sstevel@tonic-gate 	    "BaseReachableTime %d\n\tReachableTime %d RetransTimer %d\n",
6370Sstevel@tonic-gate 	    pi->pi_LinkMTU, pi->pi_CurHopLimit, pi->pi_BaseReachableTime,
6380Sstevel@tonic-gate 	    pi->pi_ReachableTime, pi->pi_RetransTimer);
6390Sstevel@tonic-gate 	if (!pi->pi_AdvSendAdvertisements) {
6400Sstevel@tonic-gate 		/* Solicit state */
6410Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "\tSOLICIT: time_left %d state %d count %d\n",
6420Sstevel@tonic-gate 		    pi->pi_sol_time_left, pi->pi_sol_state, pi->pi_sol_count);
6430Sstevel@tonic-gate 	} else {
6440Sstevel@tonic-gate 		/* Advertise state */
6450Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "\tADVERT: time_left %d state %d count %d "
6460Sstevel@tonic-gate 		    "since last %d\n",
6470Sstevel@tonic-gate 		    pi->pi_adv_time_left, pi->pi_adv_state, pi->pi_adv_count,
6480Sstevel@tonic-gate 		    pi->pi_adv_time_since_sent);
6490Sstevel@tonic-gate 		print_iflist(pi->pi_config);
6500Sstevel@tonic-gate 	}
6510Sstevel@tonic-gate 	for (pr = pi->pi_prefix_list; pr != NULL; pr = pr->pr_next)
6520Sstevel@tonic-gate 		prefix_print(pr);
6530Sstevel@tonic-gate 
6540Sstevel@tonic-gate 	for (adv_pr = pi->pi_adv_prefix_list; adv_pr != NULL;
6550Sstevel@tonic-gate 	    adv_pr = adv_pr->adv_pr_next) {
6560Sstevel@tonic-gate 		adv_prefix_print(adv_pr);
6570Sstevel@tonic-gate 	}
6580Sstevel@tonic-gate 
6590Sstevel@tonic-gate 	for (dr = pi->pi_router_list; dr != NULL; dr = dr->dr_next)
6600Sstevel@tonic-gate 		router_print(dr);
6610Sstevel@tonic-gate 
6620Sstevel@tonic-gate 	logmsg(LOG_DEBUG, "\n");
6630Sstevel@tonic-gate }
6640Sstevel@tonic-gate 
6650Sstevel@tonic-gate /*
6660Sstevel@tonic-gate  * Randomize pi->pi_ReachableTime.
6670Sstevel@tonic-gate  * Done periodically when there are no RAs and at a maximum frequency when
6680Sstevel@tonic-gate  * RA's arrive.
6690Sstevel@tonic-gate  * Assumes that caller has determined that it is time to generate
6700Sstevel@tonic-gate  * a new random ReachableTime.
6710Sstevel@tonic-gate  */
6720Sstevel@tonic-gate void
6730Sstevel@tonic-gate phyint_reach_random(struct phyint *pi, boolean_t set_needed)
6740Sstevel@tonic-gate {
6750Sstevel@tonic-gate 	pi->pi_ReachableTime = GET_RANDOM(
6760Sstevel@tonic-gate 	    (int)(ND_MIN_RANDOM_FACTOR * pi->pi_BaseReachableTime),
6770Sstevel@tonic-gate 	    (int)(ND_MAX_RANDOM_FACTOR * pi->pi_BaseReachableTime));
6780Sstevel@tonic-gate 	if (set_needed) {
6790Sstevel@tonic-gate 		struct lifreq lifr;
6800Sstevel@tonic-gate 
6810Sstevel@tonic-gate 		(void) strncpy(lifr.lifr_name, pi->pi_name,
6820Sstevel@tonic-gate 		    sizeof (lifr.lifr_name));
6830Sstevel@tonic-gate 		pi->pi_name[sizeof (pi->pi_name) - 1] = '\0';
6840Sstevel@tonic-gate 		if (ioctl(pi->pi_sock, SIOCGLIFLNKINFO, (char *)&lifr) < 0) {
6850Sstevel@tonic-gate 			logperror_pi(pi,
6860Sstevel@tonic-gate 			    "phyint_reach_random: SIOCGLIFLNKINFO");
6870Sstevel@tonic-gate 			return;
6880Sstevel@tonic-gate 		}
6890Sstevel@tonic-gate 		lifr.lifr_ifinfo.lir_reachtime = pi->pi_ReachableTime;
6900Sstevel@tonic-gate 		if (ioctl(pi->pi_sock, SIOCSLIFLNKINFO, (char *)&lifr) < 0) {
6910Sstevel@tonic-gate 			logperror_pi(pi,
6920Sstevel@tonic-gate 			    "phyint_reach_random: SIOCSLIFLNKINFO");
6930Sstevel@tonic-gate 			return;
6940Sstevel@tonic-gate 		}
6950Sstevel@tonic-gate 	}
6960Sstevel@tonic-gate 	pi->pi_reach_time_since_random = 0;
6970Sstevel@tonic-gate }
6980Sstevel@tonic-gate 
6990Sstevel@tonic-gate /*
7000Sstevel@tonic-gate  * Validate a temporary token against a list of known bad values.
7010Sstevel@tonic-gate  * Currently assumes that token is 8 bytes long!  Current known
7020Sstevel@tonic-gate  * bad values include 0, reserved anycast tokens (RFC 2526), tokens
7030Sstevel@tonic-gate  * used by ISATAP (draft-ietf-ngtrans-isatap-N), any token already
7040Sstevel@tonic-gate  * assigned to this interface, or any token for which the global
7050Sstevel@tonic-gate  * bit is set.
7060Sstevel@tonic-gate  *
7070Sstevel@tonic-gate  * Called by tmptoken_create().
7080Sstevel@tonic-gate  *
7090Sstevel@tonic-gate  * Return _B_TRUE if token is valid (no match), _B_FALSE if not.
7100Sstevel@tonic-gate  */
7110Sstevel@tonic-gate static boolean_t
7120Sstevel@tonic-gate tmptoken_isvalid(struct in6_addr *token)
7130Sstevel@tonic-gate {
7140Sstevel@tonic-gate 	struct phyint *pi;
7150Sstevel@tonic-gate 	struct in6_addr mask;
7160Sstevel@tonic-gate 	struct in6_addr isatap = { 0, 0, 0, 0, 0, 0, 0, 0, \
7170Sstevel@tonic-gate 				    0, 0, 0x5e, 0xfe, 0, 0, 0, 0 };
7180Sstevel@tonic-gate 	struct in6_addr anycast = { 0, 0, 0, 0, \
7190Sstevel@tonic-gate 				    0, 0, 0, 0, \
7200Sstevel@tonic-gate 				    0xfd, 0xff, 0xff, 0xff, \
7210Sstevel@tonic-gate 				    0xff, 0xff, 0xff, 0x80 };
7220Sstevel@tonic-gate 
7230Sstevel@tonic-gate 	if (IN6_IS_ADDR_UNSPECIFIED(token))
7240Sstevel@tonic-gate 		return (_B_FALSE);
7250Sstevel@tonic-gate 
7260Sstevel@tonic-gate 	if (token->s6_addr[8] & 0x2)
7270Sstevel@tonic-gate 		return (_B_FALSE);
7280Sstevel@tonic-gate 
7290Sstevel@tonic-gate 	(void) memcpy(&mask, token, sizeof (mask));
7300Sstevel@tonic-gate 	mask._S6_un._S6_u32[3] = 0;
7310Sstevel@tonic-gate 	if (IN6_ARE_ADDR_EQUAL(&isatap, token))
7320Sstevel@tonic-gate 		return (_B_FALSE);
7330Sstevel@tonic-gate 
7340Sstevel@tonic-gate 	mask._S6_un._S6_u32[3] = token->_S6_un._S6_u32[3] & 0xffffff80;
7350Sstevel@tonic-gate 	if (IN6_ARE_ADDR_EQUAL(&anycast, token))
7360Sstevel@tonic-gate 		return (_B_FALSE);
7370Sstevel@tonic-gate 
7380Sstevel@tonic-gate 	for (pi = phyints; pi != NULL; pi = pi->pi_next) {
7390Sstevel@tonic-gate 		if (((pi->pi_token_length == TMP_TOKEN_BITS) &&
7400Sstevel@tonic-gate 		    IN6_ARE_ADDR_EQUAL(&pi->pi_token, token)) ||
7410Sstevel@tonic-gate 		    IN6_ARE_ADDR_EQUAL(&pi->pi_tmp_token, token))
7420Sstevel@tonic-gate 			return (_B_FALSE);
7430Sstevel@tonic-gate 	}
7440Sstevel@tonic-gate 
7450Sstevel@tonic-gate 	/* none of our tests failed, must be a good one! */
7460Sstevel@tonic-gate 	return (_B_TRUE);
7470Sstevel@tonic-gate }
7480Sstevel@tonic-gate 
7490Sstevel@tonic-gate /*
7500Sstevel@tonic-gate  * Generate a temporary token and set up its timer
7510Sstevel@tonic-gate  *
7520Sstevel@tonic-gate  * Called from incoming_prefix_addrconf_process() (when token is first
7530Sstevel@tonic-gate  * needed) and from tmptoken_timer() (when current token expires).
7540Sstevel@tonic-gate  *
7550Sstevel@tonic-gate  * Returns _B_TRUE if a token was successfully generated, _B_FALSE if not.
7560Sstevel@tonic-gate  */
7570Sstevel@tonic-gate boolean_t
7580Sstevel@tonic-gate tmptoken_create(struct phyint *pi)
7590Sstevel@tonic-gate {
7600Sstevel@tonic-gate 	int fd, i = 0, max_tries = 15;
7610Sstevel@tonic-gate 	struct in6_addr token;
7620Sstevel@tonic-gate 	uint32_t *tokenp = &(token._S6_un._S6_u32[2]);
7630Sstevel@tonic-gate 	char buf[INET6_ADDRSTRLEN];
7640Sstevel@tonic-gate 
7650Sstevel@tonic-gate 	if ((fd = open("/dev/urandom", O_RDONLY)) == -1) {
7660Sstevel@tonic-gate 		perror("open /dev/urandom");
7670Sstevel@tonic-gate 		goto no_token;
7680Sstevel@tonic-gate 	}
7690Sstevel@tonic-gate 
7700Sstevel@tonic-gate 	bzero((char *)&token, sizeof (token));
7710Sstevel@tonic-gate 	do {
7720Sstevel@tonic-gate 		if (read(fd, (void *)tokenp, TMP_TOKEN_BYTES) == -1) {
7730Sstevel@tonic-gate 			perror("read /dev/urandom");
7740Sstevel@tonic-gate 			(void) close(fd);
7750Sstevel@tonic-gate 			goto no_token;
7760Sstevel@tonic-gate 		}
7770Sstevel@tonic-gate 
7780Sstevel@tonic-gate 		/*
7790Sstevel@tonic-gate 		 * Assume EUI-64 formatting, and thus 64-bit
7800Sstevel@tonic-gate 		 * token len; need to clear global bit.
7810Sstevel@tonic-gate 		 */
7820Sstevel@tonic-gate 		token.s6_addr[8] &= 0xfd;
7830Sstevel@tonic-gate 
7840Sstevel@tonic-gate 		i++;
7850Sstevel@tonic-gate 
7860Sstevel@tonic-gate 	} while (!tmptoken_isvalid(&token) && i < max_tries);
7870Sstevel@tonic-gate 
7880Sstevel@tonic-gate 	(void) close(fd);
7890Sstevel@tonic-gate 
7900Sstevel@tonic-gate 	if (i == max_tries) {
7910Sstevel@tonic-gate no_token:
7920Sstevel@tonic-gate 		logmsg(LOG_WARNING, "tmptoken_create(%s): failed to create "
7930Sstevel@tonic-gate 		    "token; disabling temporary addresses on %s\n",
7940Sstevel@tonic-gate 		    pi->pi_name, pi->pi_name);
7950Sstevel@tonic-gate 		pi->pi_TmpAddrsEnabled = 0;
7960Sstevel@tonic-gate 		return (_B_FALSE);
7970Sstevel@tonic-gate 	}
7980Sstevel@tonic-gate 
7990Sstevel@tonic-gate 	pi->pi_tmp_token = token;
8000Sstevel@tonic-gate 
8010Sstevel@tonic-gate 	if (debug & D_TMP)
8020Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "tmptoken_create(%s): created temporary "
8030Sstevel@tonic-gate 		    "token %s\n", pi->pi_name,
8040Sstevel@tonic-gate 		    inet_ntop(AF_INET6, &pi->pi_tmp_token, buf, sizeof (buf)));
8050Sstevel@tonic-gate 
8060Sstevel@tonic-gate 	pi->pi_TmpRegenCountdown = (pi->pi_TmpPreferredLifetime -
8070Sstevel@tonic-gate 	    pi->pi_TmpDesyncFactor - pi->pi_TmpRegenAdvance) * MILLISEC;
8080Sstevel@tonic-gate 	if (pi->pi_TmpRegenCountdown != 0)
8090Sstevel@tonic-gate 		timer_schedule(pi->pi_TmpRegenCountdown);
8100Sstevel@tonic-gate 
8110Sstevel@tonic-gate 	return (_B_TRUE);
8120Sstevel@tonic-gate }
8130Sstevel@tonic-gate 
8140Sstevel@tonic-gate /*
8150Sstevel@tonic-gate  * Delete a temporary token.  This is outside the normal timeout process,
8160Sstevel@tonic-gate  * so mark any existing addresses based on this token DEPRECATED and set
8170Sstevel@tonic-gate  * their preferred lifetime to 0.  Don't tamper with valid lifetime, that
8180Sstevel@tonic-gate  * will be used to eventually remove the address.  Also reset the current
8190Sstevel@tonic-gate  * pi_tmp_token value to 0.
8200Sstevel@tonic-gate  *
8210Sstevel@tonic-gate  * Called from incoming_prefix_addrconf_process() if DAD fails on a temp
8220Sstevel@tonic-gate  * addr.
8230Sstevel@tonic-gate  */
8240Sstevel@tonic-gate void
8250Sstevel@tonic-gate tmptoken_delete(struct phyint *pi)
8260Sstevel@tonic-gate {
8270Sstevel@tonic-gate 	struct prefix *pr;
8280Sstevel@tonic-gate 
8290Sstevel@tonic-gate 	for (pr = pi->pi_prefix_list; pr != NULL; pr = pr->pr_next) {
8300Sstevel@tonic-gate 		if (!(pr->pr_flags & IFF_TEMPORARY) ||
8310Sstevel@tonic-gate 		    (pr->pr_flags & IFF_DEPRECATED) ||
8320Sstevel@tonic-gate 		    (!token_equal(pr->pr_address, pi->pi_tmp_token,
8330Sstevel@tonic-gate 		    TMP_TOKEN_BITS))) {
8340Sstevel@tonic-gate 			continue;
8350Sstevel@tonic-gate 		}
8360Sstevel@tonic-gate 		pr->pr_PreferredLifetime = 0;
8370Sstevel@tonic-gate 		pr->pr_state |= PR_DEPRECATED;
8380Sstevel@tonic-gate 		prefix_update_k(pr);
8390Sstevel@tonic-gate 	}
8400Sstevel@tonic-gate 
8410Sstevel@tonic-gate 	(void) memset(&pi->pi_tmp_token, 0, sizeof (pi->pi_tmp_token));
8420Sstevel@tonic-gate }
8430Sstevel@tonic-gate 
8440Sstevel@tonic-gate /*
8450Sstevel@tonic-gate  * Called from run_timeouts() with the number of milliseconds elapsed
8460Sstevel@tonic-gate  * since the last call.  Determines if any timeout event has occurred
8470Sstevel@tonic-gate  * and returns the number of milliseconds until the next timeout event
8480Sstevel@tonic-gate  * for the tmp token.  Returns TIMER_INFINITY for "never".
8490Sstevel@tonic-gate  */
8500Sstevel@tonic-gate uint_t
8510Sstevel@tonic-gate tmptoken_timer(struct phyint *pi, uint_t elapsed)
8520Sstevel@tonic-gate {
8530Sstevel@tonic-gate 	struct nd_opt_prefix_info opt;
8540Sstevel@tonic-gate 	struct sockaddr_in6 sin6;
8550Sstevel@tonic-gate 	struct prefix *pr, *newpr;
8560Sstevel@tonic-gate 
8570Sstevel@tonic-gate 	if (debug & D_TMP) {
8580Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "tmptoken_timer(%s, %d) regencountdown %d\n",
8590Sstevel@tonic-gate 		    pi->pi_name, (int)elapsed, pi->pi_TmpRegenCountdown);
8600Sstevel@tonic-gate 	}
8610Sstevel@tonic-gate 	if (!pi->pi_TmpAddrsEnabled ||
8620Sstevel@tonic-gate 	    (pi->pi_TmpRegenCountdown == TIMER_INFINITY))
8630Sstevel@tonic-gate 		return (TIMER_INFINITY);
8640Sstevel@tonic-gate 
8650Sstevel@tonic-gate 	if (pi->pi_TmpRegenCountdown > elapsed) {
8660Sstevel@tonic-gate 		pi->pi_TmpRegenCountdown -= elapsed;
8670Sstevel@tonic-gate 		return (pi->pi_TmpRegenCountdown);
8680Sstevel@tonic-gate 	}
8690Sstevel@tonic-gate 
8700Sstevel@tonic-gate 	/*
8710Sstevel@tonic-gate 	 * Tmp token timer has expired.  Start by generating a new token.
8720Sstevel@tonic-gate 	 * If we can't get a new token, tmp addrs are disabled on this
8730Sstevel@tonic-gate 	 * interface, so there's no need to continue, or to set a timer.
8740Sstevel@tonic-gate 	 */
8750Sstevel@tonic-gate 	if (!tmptoken_create(pi))
8760Sstevel@tonic-gate 		return (TIMER_INFINITY);
8770Sstevel@tonic-gate 
8780Sstevel@tonic-gate 	/*
8790Sstevel@tonic-gate 	 * Now that we have a new token, walk the list of prefixes to
8800Sstevel@tonic-gate 	 * find which ones need a corresponding tmp addr generated.
8810Sstevel@tonic-gate 	 */
8820Sstevel@tonic-gate 	for (pr = pi->pi_prefix_list; pr != NULL; pr = pr->pr_next) {
8830Sstevel@tonic-gate 
8840Sstevel@tonic-gate 		if (!(pr->pr_state & PR_AUTO) || pr->pr_state & PR_STATIC ||
8850Sstevel@tonic-gate 		    pr->pr_state & PR_DEPRECATED ||
8860Sstevel@tonic-gate 		    pr->pr_flags & IFF_TEMPORARY)
8870Sstevel@tonic-gate 			continue;
8880Sstevel@tonic-gate 
8890Sstevel@tonic-gate 		newpr = prefix_create(pi, pr->pr_prefix, pr->pr_prefix_len,
8900Sstevel@tonic-gate 		    IFF_TEMPORARY);
8910Sstevel@tonic-gate 		if (newpr == NULL) {
8920Sstevel@tonic-gate 			char pbuf[INET6_ADDRSTRLEN];
8930Sstevel@tonic-gate 			char tbuf[INET6_ADDRSTRLEN];
8940Sstevel@tonic-gate 			(void) inet_ntop(AF_INET6, &pr->pr_prefix, pbuf,
8950Sstevel@tonic-gate 			    sizeof (pbuf));
8960Sstevel@tonic-gate 			(void) inet_ntop(AF_INET6, &pi->pi_tmp_token, tbuf,
8970Sstevel@tonic-gate 			    sizeof (tbuf));
8980Sstevel@tonic-gate 			logmsg(LOG_ERR, "can't create new tmp addr "
8990Sstevel@tonic-gate 			    "(%s, %s, %s)\n", pi->pi_name, pbuf, tbuf);
9000Sstevel@tonic-gate 			continue;
9010Sstevel@tonic-gate 		}
9020Sstevel@tonic-gate 
9030Sstevel@tonic-gate 		/*
9040Sstevel@tonic-gate 		 * We want to use incoming_prefix_*_process() functions to
9050Sstevel@tonic-gate 		 * set up the new tmp addr, so cobble together a prefix
9060Sstevel@tonic-gate 		 * info option struct based on the existing prefix to pass
9070Sstevel@tonic-gate 		 * in.  The lifetimes will be based on the current time
9080Sstevel@tonic-gate 		 * remaining.
9090Sstevel@tonic-gate 		 *
9100Sstevel@tonic-gate 		 * The "from" param is only used for messages; pass in
9110Sstevel@tonic-gate 		 * ::0 for that.
9120Sstevel@tonic-gate 		 */
9130Sstevel@tonic-gate 		opt.nd_opt_pi_type = ND_OPT_PREFIX_INFORMATION;
9140Sstevel@tonic-gate 		opt.nd_opt_pi_len = sizeof (opt) / 8;
9150Sstevel@tonic-gate 		opt.nd_opt_pi_prefix_len = pr->pr_prefix_len;
9160Sstevel@tonic-gate 		opt.nd_opt_pi_flags_reserved = ND_OPT_PI_FLAG_AUTO;
9170Sstevel@tonic-gate 		opt.nd_opt_pi_valid_time =
9180Sstevel@tonic-gate 		    htonl(pr->pr_ValidLifetime / 1000);
9190Sstevel@tonic-gate 		opt.nd_opt_pi_preferred_time =
9200Sstevel@tonic-gate 		    htonl(pr->pr_PreferredLifetime / 1000);
9210Sstevel@tonic-gate 		if (pr->pr_state & PR_ONLINK)
9220Sstevel@tonic-gate 			opt.nd_opt_pi_flags_reserved &= ND_OPT_PI_FLAG_ONLINK;
9230Sstevel@tonic-gate 		opt.nd_opt_pi_prefix = pr->pr_prefix;
9240Sstevel@tonic-gate 
9250Sstevel@tonic-gate 		(void) memset(&sin6, 0, sizeof (sin6));
9260Sstevel@tonic-gate 
9270Sstevel@tonic-gate 		if (!incoming_prefix_addrconf_process(pi, newpr,
9280Sstevel@tonic-gate 		    (uchar_t *)&opt, &sin6, _B_FALSE, _B_TRUE)) {
9290Sstevel@tonic-gate 			char pbuf[INET6_ADDRSTRLEN];
9300Sstevel@tonic-gate 			char tbuf[INET6_ADDRSTRLEN];
9310Sstevel@tonic-gate 			(void) inet_ntop(AF_INET6, &pr->pr_prefix, pbuf,
9320Sstevel@tonic-gate 			    sizeof (pbuf));
9330Sstevel@tonic-gate 			(void) inet_ntop(AF_INET6, &pi->pi_tmp_token, tbuf,
9340Sstevel@tonic-gate 			    sizeof (tbuf));
9350Sstevel@tonic-gate 			logmsg(LOG_ERR, "can't create new tmp addr "
9360Sstevel@tonic-gate 			    "(%s, %s, %s)\n", pi->pi_name, pbuf, tbuf);
9370Sstevel@tonic-gate 			continue;
9380Sstevel@tonic-gate 		}
9390Sstevel@tonic-gate 
9400Sstevel@tonic-gate 		if (pr->pr_state & PR_ONLINK) {
9410Sstevel@tonic-gate 			incoming_prefix_onlink_process(newpr, (uchar_t *)&opt);
9420Sstevel@tonic-gate 		}
9430Sstevel@tonic-gate 	}
9440Sstevel@tonic-gate 
9450Sstevel@tonic-gate 	/*
9460Sstevel@tonic-gate 	 * appropriate timers were scheduled when
9470Sstevel@tonic-gate 	 * the token and addresses were created.
9480Sstevel@tonic-gate 	 */
9490Sstevel@tonic-gate 	return (TIMER_INFINITY);
9500Sstevel@tonic-gate }
9510Sstevel@tonic-gate 
9520Sstevel@tonic-gate /*
9530Sstevel@tonic-gate  * tlen specifies the token length in bits.  Compares the lower
9540Sstevel@tonic-gate  * tlen bits of the two addresses provided and returns _B_TRUE if
9550Sstevel@tonic-gate  * they match, _B_FALSE if not.  Also returns _B_FALSE for invalid
9560Sstevel@tonic-gate  * values of tlen.
9570Sstevel@tonic-gate  */
9580Sstevel@tonic-gate boolean_t
9590Sstevel@tonic-gate token_equal(struct in6_addr t1, struct in6_addr t2, int tlen)
9600Sstevel@tonic-gate {
9610Sstevel@tonic-gate 	uchar_t mask;
9620Sstevel@tonic-gate 	int j, abytes, tbytes, tbits;
9630Sstevel@tonic-gate 
9640Sstevel@tonic-gate 	if (tlen < 0 || tlen > IPV6_ABITS)
9650Sstevel@tonic-gate 		return (_B_FALSE);
9660Sstevel@tonic-gate 
9670Sstevel@tonic-gate 	abytes = IPV6_ABITS >> 3;
9680Sstevel@tonic-gate 	tbytes = tlen >> 3;
9690Sstevel@tonic-gate 	tbits = tlen & 7;
9700Sstevel@tonic-gate 
9710Sstevel@tonic-gate 	for (j = abytes - 1; j >= abytes - tbytes; j--)
9720Sstevel@tonic-gate 		if (t1.s6_addr[j] != t2.s6_addr[j])
9730Sstevel@tonic-gate 			return (_B_FALSE);
9740Sstevel@tonic-gate 
9750Sstevel@tonic-gate 	if (tbits == 0)
9760Sstevel@tonic-gate 		return (_B_TRUE);
9770Sstevel@tonic-gate 
9780Sstevel@tonic-gate 	/* We only care about the tbits rightmost bits */
9790Sstevel@tonic-gate 	mask = 0xff >> (8 - tbits);
9800Sstevel@tonic-gate 	if ((t1.s6_addr[j] & mask) != (t2.s6_addr[j] & mask))
9810Sstevel@tonic-gate 		return (_B_FALSE);
9820Sstevel@tonic-gate 
9830Sstevel@tonic-gate 	return (_B_TRUE);
9840Sstevel@tonic-gate }
9850Sstevel@tonic-gate 
9860Sstevel@tonic-gate /*
9870Sstevel@tonic-gate  * Lookup prefix structure that matches the prefix and prefix length.
9880Sstevel@tonic-gate  * Assumes that the bits after prefixlen might not be zero.
9890Sstevel@tonic-gate  */
9900Sstevel@tonic-gate static struct prefix *
9910Sstevel@tonic-gate prefix_lookup(struct phyint *pi, struct in6_addr prefix, int prefixlen)
9920Sstevel@tonic-gate {
9930Sstevel@tonic-gate 	struct prefix *pr;
9940Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
9950Sstevel@tonic-gate 
9960Sstevel@tonic-gate 	if (debug & D_PREFIX) {
9970Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "prefix_lookup(%s, %s/%u)\n", pi->pi_name,
9980Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&prefix,
9990Sstevel@tonic-gate 		    abuf, sizeof (abuf)), prefixlen);
10000Sstevel@tonic-gate 	}
10010Sstevel@tonic-gate 
10020Sstevel@tonic-gate 	for (pr = pi->pi_prefix_list; pr != NULL; pr = pr->pr_next) {
10030Sstevel@tonic-gate 		if (pr->pr_prefix_len == prefixlen &&
10040Sstevel@tonic-gate 		    prefix_equal(prefix, pr->pr_prefix, prefixlen))
10050Sstevel@tonic-gate 			return (pr);
10060Sstevel@tonic-gate 	}
10070Sstevel@tonic-gate 	return (NULL);
10080Sstevel@tonic-gate }
10090Sstevel@tonic-gate 
10100Sstevel@tonic-gate /*
10110Sstevel@tonic-gate  * Compare two prefixes that have the same prefix length.
10120Sstevel@tonic-gate  * Fails if the prefix length is unreasonable.
10130Sstevel@tonic-gate  */
10140Sstevel@tonic-gate boolean_t
10150Sstevel@tonic-gate prefix_equal(struct in6_addr p1, struct in6_addr p2, int plen)
10160Sstevel@tonic-gate {
10170Sstevel@tonic-gate 	uchar_t mask;
10180Sstevel@tonic-gate 	int j, pbytes, pbits;
10190Sstevel@tonic-gate 
10200Sstevel@tonic-gate 	if (plen < 0 || plen > IPV6_ABITS)
10210Sstevel@tonic-gate 		return (_B_FALSE);
10220Sstevel@tonic-gate 
10230Sstevel@tonic-gate 	pbytes = plen >> 3;
10240Sstevel@tonic-gate 	pbits = plen & 7;
10250Sstevel@tonic-gate 
10260Sstevel@tonic-gate 	for (j = 0; j < pbytes; j++)
10270Sstevel@tonic-gate 		if (p1.s6_addr[j] != p2.s6_addr[j])
10280Sstevel@tonic-gate 			return (_B_FALSE);
10290Sstevel@tonic-gate 
10300Sstevel@tonic-gate 	if (pbits == 0)
10310Sstevel@tonic-gate 		return (_B_TRUE);
10320Sstevel@tonic-gate 
10330Sstevel@tonic-gate 	/* Make the N leftmost bits one */
10340Sstevel@tonic-gate 	mask = 0xff << (8 - pbits);
10350Sstevel@tonic-gate 	if ((p1.s6_addr[j] & mask) != (p2.s6_addr[j] & mask))
10360Sstevel@tonic-gate 		return (_B_FALSE);
10370Sstevel@tonic-gate 
10380Sstevel@tonic-gate 	return (_B_TRUE);
10390Sstevel@tonic-gate }
10400Sstevel@tonic-gate 
10410Sstevel@tonic-gate /*
10420Sstevel@tonic-gate  * Set a prefix from an address and a prefix length.
10430Sstevel@tonic-gate  * Force all the bits after the prefix length to be zero.
10440Sstevel@tonic-gate  */
10450Sstevel@tonic-gate void
10460Sstevel@tonic-gate prefix_set(struct in6_addr *prefix, struct in6_addr addr, int prefix_len)
10470Sstevel@tonic-gate {
10480Sstevel@tonic-gate 	uchar_t mask;
10490Sstevel@tonic-gate 	int j;
10500Sstevel@tonic-gate 
10510Sstevel@tonic-gate 	if (prefix_len < 0 || prefix_len > IPV6_ABITS)
10520Sstevel@tonic-gate 		return;
10530Sstevel@tonic-gate 
10540Sstevel@tonic-gate 	bzero((char *)prefix, sizeof (*prefix));
10550Sstevel@tonic-gate 
10560Sstevel@tonic-gate 	for (j = 0; prefix_len > 8; prefix_len -= 8, j++)
10570Sstevel@tonic-gate 		prefix->s6_addr[j] = addr.s6_addr[j];
10580Sstevel@tonic-gate 
10590Sstevel@tonic-gate 	/* Make the N leftmost bits one */
10600Sstevel@tonic-gate 	mask = 0xff << (8 - prefix_len);
10610Sstevel@tonic-gate 	prefix->s6_addr[j] = addr.s6_addr[j] & mask;
10620Sstevel@tonic-gate }
10630Sstevel@tonic-gate 
10640Sstevel@tonic-gate /*
10650Sstevel@tonic-gate  * Lookup a prefix based on the kernel's interface name.
10660Sstevel@tonic-gate  */
10670Sstevel@tonic-gate struct prefix *
10680Sstevel@tonic-gate prefix_lookup_name(struct phyint *pi, char *name)
10690Sstevel@tonic-gate {
10700Sstevel@tonic-gate 	struct prefix *pr;
10710Sstevel@tonic-gate 
10720Sstevel@tonic-gate 	if (debug & D_PREFIX) {
10730Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "prefix_lookup_name(%s, %s)\n",
10740Sstevel@tonic-gate 		    pi->pi_name, name);
10750Sstevel@tonic-gate 	}
10760Sstevel@tonic-gate 	if (name[0] == '\0')
10770Sstevel@tonic-gate 		return (NULL);
10780Sstevel@tonic-gate 
10790Sstevel@tonic-gate 	for (pr = pi->pi_prefix_list; pr != NULL; pr = pr->pr_next) {
10800Sstevel@tonic-gate 		if (strcmp(name, pr->pr_name) == 0)
10810Sstevel@tonic-gate 			return (pr);
10820Sstevel@tonic-gate 	}
10830Sstevel@tonic-gate 	return (NULL);
10840Sstevel@tonic-gate }
10850Sstevel@tonic-gate 
10860Sstevel@tonic-gate /*
10870Sstevel@tonic-gate  * Search the phyints list to make sure that this new prefix does
10880Sstevel@tonic-gate  * not already exist in any  other physical interfaces that have
10890Sstevel@tonic-gate  * the same address as this one
10900Sstevel@tonic-gate  */
10910Sstevel@tonic-gate struct prefix *
10920Sstevel@tonic-gate prefix_lookup_addr_match(struct prefix *pr)
10930Sstevel@tonic-gate {
10940Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
10950Sstevel@tonic-gate 	struct phyint *pi;
10960Sstevel@tonic-gate 	struct prefix *otherpr = NULL;
10970Sstevel@tonic-gate 	struct in6_addr prefix;
10980Sstevel@tonic-gate 	int	prefixlen;
10990Sstevel@tonic-gate 
11000Sstevel@tonic-gate 	if (debug & D_PREFIX) {
11010Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "prefix_lookup_addr_match(%s/%u)\n",
11020Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&pr->pr_address,
11030Sstevel@tonic-gate 		    abuf, sizeof (abuf)), pr->pr_prefix_len);
11040Sstevel@tonic-gate 	}
11050Sstevel@tonic-gate 	prefix = pr->pr_prefix;
11060Sstevel@tonic-gate 	prefixlen = pr->pr_prefix_len;
11070Sstevel@tonic-gate 	for (pi = phyints; pi != NULL; pi = pi->pi_next) {
11080Sstevel@tonic-gate 		otherpr = prefix_lookup(pi, prefix, prefixlen);
11090Sstevel@tonic-gate 		if (otherpr == pr)
11100Sstevel@tonic-gate 			continue;
11110Sstevel@tonic-gate 		if (otherpr != NULL && (otherpr->pr_state & PR_AUTO) &&
11120Sstevel@tonic-gate 		    IN6_ARE_ADDR_EQUAL(&pr->pr_address,
11130Sstevel@tonic-gate 		    &otherpr->pr_address))
11140Sstevel@tonic-gate 			return (otherpr);
11150Sstevel@tonic-gate 	}
11160Sstevel@tonic-gate 	return (NULL);
11170Sstevel@tonic-gate }
11180Sstevel@tonic-gate 
11190Sstevel@tonic-gate /*
11200Sstevel@tonic-gate  * Initialize a new prefix without setting lifetimes etc.
11210Sstevel@tonic-gate  */
11220Sstevel@tonic-gate struct prefix *
11230Sstevel@tonic-gate prefix_create(struct phyint *pi, struct in6_addr prefix, int prefixlen,
11240Sstevel@tonic-gate     uint64_t flags)
11250Sstevel@tonic-gate {
11260Sstevel@tonic-gate 	struct prefix *pr;
11270Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
11280Sstevel@tonic-gate 
11290Sstevel@tonic-gate 	if (debug & D_PREFIX) {
11300Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "prefix_create(%s, %s/%u, 0x%llx)\n",
11310Sstevel@tonic-gate 		    pi->pi_name, inet_ntop(AF_INET6, (void *)&prefix,
11320Sstevel@tonic-gate 		    abuf, sizeof (abuf)), prefixlen, flags);
11330Sstevel@tonic-gate 	}
11340Sstevel@tonic-gate 	pr = (struct prefix *)calloc(sizeof (struct prefix), 1);
11350Sstevel@tonic-gate 	if (pr == NULL) {
11360Sstevel@tonic-gate 		logmsg(LOG_ERR, "prefix_create: out of memory\n");
11370Sstevel@tonic-gate 		return (NULL);
11380Sstevel@tonic-gate 	}
11390Sstevel@tonic-gate 	/*
11400Sstevel@tonic-gate 	 * The prefix might have non-zero bits after the prefix len bits.
11410Sstevel@tonic-gate 	 * Force them to be zero.
11420Sstevel@tonic-gate 	 */
11430Sstevel@tonic-gate 	prefix_set(&pr->pr_prefix, prefix, prefixlen);
11440Sstevel@tonic-gate 	pr->pr_prefix_len = prefixlen;
11450Sstevel@tonic-gate 	pr->pr_PreferredLifetime = PREFIX_INFINITY;
11460Sstevel@tonic-gate 	pr->pr_ValidLifetime = PREFIX_INFINITY;
11470Sstevel@tonic-gate 	pr->pr_OnLinkLifetime = PREFIX_INFINITY;
11480Sstevel@tonic-gate 	pr->pr_kernel_state = 0;
11490Sstevel@tonic-gate 	pr->pr_flags |= flags;
11500Sstevel@tonic-gate 	prefix_insert(pi, pr);
11510Sstevel@tonic-gate 	return (pr);
11520Sstevel@tonic-gate }
11530Sstevel@tonic-gate 
11540Sstevel@tonic-gate /*
11550Sstevel@tonic-gate  * Create a new named prefix. Caller should use prefix_init_from_k
11560Sstevel@tonic-gate  * to initialize the content.
11570Sstevel@tonic-gate  */
11580Sstevel@tonic-gate struct prefix *
11590Sstevel@tonic-gate prefix_create_name(struct phyint *pi, char *name)
11600Sstevel@tonic-gate {
11610Sstevel@tonic-gate 	struct prefix *pr;
11620Sstevel@tonic-gate 
11630Sstevel@tonic-gate 	if (debug & D_PREFIX) {
11640Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "prefix_create_name(%s, %s)\n",
11650Sstevel@tonic-gate 		    pi->pi_name, name);
11660Sstevel@tonic-gate 	}
11670Sstevel@tonic-gate 	pr = (struct prefix *)calloc(sizeof (struct prefix), 1);
11680Sstevel@tonic-gate 	if (pr == NULL) {
11690Sstevel@tonic-gate 		logmsg(LOG_ERR, "prefix_create_name: out of memory\n");
11700Sstevel@tonic-gate 		return (NULL);
11710Sstevel@tonic-gate 	}
11720Sstevel@tonic-gate 	(void) strncpy(pr->pr_name, name, sizeof (pr->pr_name));
11730Sstevel@tonic-gate 	pr->pr_name[sizeof (pr->pr_name) - 1] = '\0';
11740Sstevel@tonic-gate 	prefix_insert(pi, pr);
11750Sstevel@tonic-gate 	return (pr);
11760Sstevel@tonic-gate }
11770Sstevel@tonic-gate 
11780Sstevel@tonic-gate /* Insert in linked list */
11790Sstevel@tonic-gate static void
11800Sstevel@tonic-gate prefix_insert(struct phyint *pi, struct prefix *pr)
11810Sstevel@tonic-gate {
11820Sstevel@tonic-gate 	pr->pr_next = pi->pi_prefix_list;
11830Sstevel@tonic-gate 	pr->pr_prev = NULL;
11840Sstevel@tonic-gate 	if (pi->pi_prefix_list != NULL)
11850Sstevel@tonic-gate 		pi->pi_prefix_list->pr_prev = pr;
11860Sstevel@tonic-gate 	pi->pi_prefix_list = pr;
11870Sstevel@tonic-gate 	pr->pr_physical = pi;
11880Sstevel@tonic-gate }
11890Sstevel@tonic-gate 
11900Sstevel@tonic-gate /*
11910Sstevel@tonic-gate  * Initialize the prefix from the content of the kernel.
11920Sstevel@tonic-gate  * If IFF_ADDRCONF is set we treat it as PR_AUTO (i.e. an addrconf
11930Sstevel@tonic-gate  * prefix). However, we not derive the lifetimes from
11940Sstevel@tonic-gate  * the kernel thus they are set to 1 week.
11950Sstevel@tonic-gate  * Ignore the prefix if the interface is not IFF_UP.
11960Sstevel@tonic-gate  */
11970Sstevel@tonic-gate int
11980Sstevel@tonic-gate prefix_init_from_k(struct prefix *pr)
11990Sstevel@tonic-gate {
12000Sstevel@tonic-gate 	struct lifreq lifr;
12010Sstevel@tonic-gate 	struct sockaddr_in6 *sin6;
12020Sstevel@tonic-gate 	int sock = pr->pr_physical->pi_sock;
12030Sstevel@tonic-gate 
12040Sstevel@tonic-gate 	(void) strncpy(lifr.lifr_name, pr->pr_name, sizeof (lifr.lifr_name));
12050Sstevel@tonic-gate 	lifr.lifr_name[sizeof (lifr.lifr_name) - 1] = '\0';
12060Sstevel@tonic-gate 	if (ioctl(sock, SIOCGLIFADDR, (char *)&lifr) < 0) {
12070Sstevel@tonic-gate 		logperror_pr(pr, "prefix_init_from_k: ioctl (get addr)");
12080Sstevel@tonic-gate 		goto error;
12090Sstevel@tonic-gate 	}
12100Sstevel@tonic-gate 	if (lifr.lifr_addr.ss_family != AF_INET6) {
12110Sstevel@tonic-gate 		logmsg(LOG_ERR, "ignoring interface %s: not AF_INET6\n",
12120Sstevel@tonic-gate 		    pr->pr_name);
12130Sstevel@tonic-gate 		goto error;
12140Sstevel@tonic-gate 	}
12150Sstevel@tonic-gate 	sin6 = (struct sockaddr_in6 *)&lifr.lifr_addr;
12160Sstevel@tonic-gate 	pr->pr_address = sin6->sin6_addr;
12170Sstevel@tonic-gate 
12180Sstevel@tonic-gate 	if (ioctl(sock, SIOCGLIFFLAGS, (char *)&lifr) < 0) {
12190Sstevel@tonic-gate 		logperror_pr(pr, "prefix_init_from_k: ioctl (get flags)");
12200Sstevel@tonic-gate 		goto error;
12210Sstevel@tonic-gate 	}
12220Sstevel@tonic-gate 	pr->pr_flags = lifr.lifr_flags;
12230Sstevel@tonic-gate 
12240Sstevel@tonic-gate 	if (ioctl(sock, SIOCGLIFSUBNET, (char *)&lifr) < 0) {
12250Sstevel@tonic-gate 		logperror_pr(pr, "prefix_init_from_k: ioctl (get subnet)");
12260Sstevel@tonic-gate 		goto error;
12270Sstevel@tonic-gate 	}
12280Sstevel@tonic-gate 	if (lifr.lifr_subnet.ss_family != AF_INET6) {
12290Sstevel@tonic-gate 		logmsg(LOG_ERR, "ignoring interface %s: not AF_INET6\n",
12300Sstevel@tonic-gate 		    pr->pr_name);
12310Sstevel@tonic-gate 		goto error;
12320Sstevel@tonic-gate 	}
12330Sstevel@tonic-gate 	/*
12340Sstevel@tonic-gate 	 * Guard against the prefix having non-zero bits after the prefix
12350Sstevel@tonic-gate 	 * len bits.
12360Sstevel@tonic-gate 	 */
12370Sstevel@tonic-gate 	sin6 = (struct sockaddr_in6 *)&lifr.lifr_subnet;
12380Sstevel@tonic-gate 	pr->pr_prefix_len = lifr.lifr_addrlen;
12390Sstevel@tonic-gate 	prefix_set(&pr->pr_prefix, sin6->sin6_addr, pr->pr_prefix_len);
12400Sstevel@tonic-gate 
12410Sstevel@tonic-gate 	if (pr->pr_prefix_len != IPV6_ABITS && (pr->pr_flags & IFF_UP) &&
12420Sstevel@tonic-gate 	    IN6_ARE_ADDR_EQUAL(&pr->pr_address, &pr->pr_prefix)) {
12430Sstevel@tonic-gate 		char abuf[INET6_ADDRSTRLEN];
12440Sstevel@tonic-gate 
12450Sstevel@tonic-gate 		logmsg(LOG_ERR, "ingoring interface %s: it appears to be "
12460Sstevel@tonic-gate 		    "configured with an invalid interface id (%s/%u)\n",
12470Sstevel@tonic-gate 		    pr->pr_name,
12480Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&pr->pr_address,
12490Sstevel@tonic-gate 			abuf, sizeof (abuf)), pr->pr_prefix_len);
12500Sstevel@tonic-gate 		goto error;
12510Sstevel@tonic-gate 	}
12520Sstevel@tonic-gate 	pr->pr_kernel_state = 0;
12530Sstevel@tonic-gate 	if (pr->pr_prefix_len != IPV6_ABITS)
12540Sstevel@tonic-gate 		pr->pr_kernel_state |= PR_ONLINK;
12550Sstevel@tonic-gate 	if (!(pr->pr_flags & IFF_NOLOCAL))
12560Sstevel@tonic-gate 		pr->pr_kernel_state |= PR_AUTO;
12570Sstevel@tonic-gate 	if ((pr->pr_flags & IFF_DEPRECATED) && (pr->pr_kernel_state & PR_AUTO))
12580Sstevel@tonic-gate 		pr->pr_kernel_state |= PR_DEPRECATED;
12590Sstevel@tonic-gate 	if (!(pr->pr_flags & IFF_ADDRCONF)) {
12600Sstevel@tonic-gate 		/* Prevent ndpd from stepping on this prefix */
12610Sstevel@tonic-gate 		pr->pr_kernel_state |= PR_STATIC;
12620Sstevel@tonic-gate 	}
12630Sstevel@tonic-gate 	pr->pr_state = pr->pr_kernel_state;
12640Sstevel@tonic-gate 	/* Adjust pr_prefix_len based if PR_AUTO is set */
12650Sstevel@tonic-gate 	if (pr->pr_state & PR_AUTO) {
12660Sstevel@tonic-gate 		pr->pr_prefix_len =
12670Sstevel@tonic-gate 		    IPV6_ABITS - pr->pr_physical->pi_token_length;
12680Sstevel@tonic-gate 		prefix_set(&pr->pr_prefix, pr->pr_prefix, pr->pr_prefix_len);
12690Sstevel@tonic-gate 	}
12700Sstevel@tonic-gate 
12710Sstevel@tonic-gate 	/* Can't extract lifetimes from the kernel - use 1 week */
12720Sstevel@tonic-gate 	pr->pr_ValidLifetime = NDP_PREFIX_DEFAULT_LIFETIME;
12730Sstevel@tonic-gate 	pr->pr_PreferredLifetime = NDP_PREFIX_DEFAULT_LIFETIME;
12740Sstevel@tonic-gate 	pr->pr_OnLinkLifetime = NDP_PREFIX_DEFAULT_LIFETIME;
12750Sstevel@tonic-gate 
12760Sstevel@tonic-gate 	/*
12770Sstevel@tonic-gate 	 * If this is a temp addr, the creation time needs to be set.
12780Sstevel@tonic-gate 	 * Though it won't be entirely accurate, the current time is
12790Sstevel@tonic-gate 	 * an okay approximation.
12800Sstevel@tonic-gate 	 */
12810Sstevel@tonic-gate 	if (pr->pr_flags & IFF_TEMPORARY)
12820Sstevel@tonic-gate 		pr->pr_CreateTime = getcurrenttime() / MILLISEC;
12830Sstevel@tonic-gate 
12840Sstevel@tonic-gate 	if (pr->pr_kernel_state == 0)
12850Sstevel@tonic-gate 		pr->pr_name[0] = '\0';
12860Sstevel@tonic-gate 	return (0);
12870Sstevel@tonic-gate 
12880Sstevel@tonic-gate error:
12890Sstevel@tonic-gate 	/* Pretend that the prefix does not exist in the kernel */
12900Sstevel@tonic-gate 	pr->pr_kernel_state = 0;
12910Sstevel@tonic-gate 	pr->pr_name[0] = '\0';
12920Sstevel@tonic-gate 	return (-1);
12930Sstevel@tonic-gate }
12940Sstevel@tonic-gate 
12950Sstevel@tonic-gate /*
12960Sstevel@tonic-gate  * Delete (unlink and free) and remove from kernel if the prefix
12970Sstevel@tonic-gate  * was added by in.ndpd (i.e. PR_STATIC is not set).
12980Sstevel@tonic-gate  * Handles delete of things that have not yet been inserted in the list
12990Sstevel@tonic-gate  * i.e. pr_physical is NULL.
13000Sstevel@tonic-gate  */
13010Sstevel@tonic-gate void
13020Sstevel@tonic-gate prefix_delete(struct prefix *pr)
13030Sstevel@tonic-gate {
13040Sstevel@tonic-gate 	struct phyint *pi;
13050Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
13060Sstevel@tonic-gate 
13070Sstevel@tonic-gate 	if (debug & D_PREFIX) {
13080Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "prefix_delete(%s, %s, %s/%u)\n",
13090Sstevel@tonic-gate 		    pr->pr_physical->pi_name, pr->pr_name,
13100Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&pr->pr_prefix,
13110Sstevel@tonic-gate 		    abuf, sizeof (abuf)), pr->pr_prefix_len);
13120Sstevel@tonic-gate 	}
13130Sstevel@tonic-gate 	/* Remove non-static prefixes from the kernel. */
13140Sstevel@tonic-gate 	pr->pr_state &= PR_STATIC;
13150Sstevel@tonic-gate 	pi = pr->pr_physical;
13160Sstevel@tonic-gate 	if (pr->pr_kernel_state != pr->pr_state)
13170Sstevel@tonic-gate 		prefix_update_k(pr);
13180Sstevel@tonic-gate 
13190Sstevel@tonic-gate 	if (pr->pr_prev == NULL) {
13200Sstevel@tonic-gate 		if (pi != NULL)
13210Sstevel@tonic-gate 			pi->pi_prefix_list = pr->pr_next;
13220Sstevel@tonic-gate 	} else {
13230Sstevel@tonic-gate 		pr->pr_prev->pr_next = pr->pr_next;
13240Sstevel@tonic-gate 	}
13250Sstevel@tonic-gate 	if (pr->pr_next != NULL)
13260Sstevel@tonic-gate 		pr->pr_next->pr_prev = pr->pr_prev;
13270Sstevel@tonic-gate 	pr->pr_next = pr->pr_prev = NULL;
13280Sstevel@tonic-gate 	free(pr);
13290Sstevel@tonic-gate }
13300Sstevel@tonic-gate 
13310Sstevel@tonic-gate /*
13320Sstevel@tonic-gate  * Toggle one or more IFF_ flags for a prefix. Turn on 'onflags' and
13330Sstevel@tonic-gate  * turn off 'offflags'.
13340Sstevel@tonic-gate  */
13350Sstevel@tonic-gate static int
13360Sstevel@tonic-gate prefix_modify_flags(struct prefix *pr, uint64_t onflags, uint64_t offflags)
13370Sstevel@tonic-gate {
13380Sstevel@tonic-gate 	struct lifreq lifr;
13390Sstevel@tonic-gate 	struct phyint *pi = pr->pr_physical;
13400Sstevel@tonic-gate 	uint64_t old_flags;
13410Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
13420Sstevel@tonic-gate 
13430Sstevel@tonic-gate 	if (debug & D_PREFIX) {
13440Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "prefix_modify_flags(%s, %s, %s/%u) "
13450Sstevel@tonic-gate 		    "flags %llx on %llx off %llx\n",
13460Sstevel@tonic-gate 		    pr->pr_physical->pi_name,
13470Sstevel@tonic-gate 		    pr->pr_name,
13480Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&pr->pr_prefix,
13490Sstevel@tonic-gate 		    abuf, sizeof (abuf)), pr->pr_prefix_len,
13500Sstevel@tonic-gate 		    pr->pr_flags, onflags, offflags);
13510Sstevel@tonic-gate 	}
13520Sstevel@tonic-gate 	/* Assumes that only the PR_STATIC link-local matches the pi_name */
13530Sstevel@tonic-gate 	if (!(pr->pr_state & PR_STATIC) &&
13540Sstevel@tonic-gate 	    strcmp(pr->pr_name, pi->pi_name) == 0) {
13550Sstevel@tonic-gate 		logmsg(LOG_ERR, "prefix_modify_flags(%s, on %llx, off %llx): "
13560Sstevel@tonic-gate 		    "name matches interface name\n",
13570Sstevel@tonic-gate 		    pi->pi_name, onflags, offflags);
13580Sstevel@tonic-gate 		return (-1);
13590Sstevel@tonic-gate 	}
13600Sstevel@tonic-gate 
13610Sstevel@tonic-gate 	(void) strncpy(lifr.lifr_name, pr->pr_name, sizeof (lifr.lifr_name));
13620Sstevel@tonic-gate 	lifr.lifr_name[sizeof (lifr.lifr_name) - 1] = '\0';
13630Sstevel@tonic-gate 	if (ioctl(pi->pi_sock, SIOCGLIFFLAGS, (char *)&lifr) < 0) {
13640Sstevel@tonic-gate 		logperror_pr(pr, "prefix_modify_flags: SIOCGLIFFLAGS");
13650Sstevel@tonic-gate 		logmsg(LOG_ERR, "prefix_modify_flags(%s, %s) old 0x%llx "
13660Sstevel@tonic-gate 		    "on 0x%llx off 0x%llx\n",
13670Sstevel@tonic-gate 		    pr->pr_physical->pi_name,
13680Sstevel@tonic-gate 		    pr->pr_name,
13690Sstevel@tonic-gate 		    pr->pr_flags, onflags, offflags);
13700Sstevel@tonic-gate 		return (-1);
13710Sstevel@tonic-gate 	}
13720Sstevel@tonic-gate 	old_flags = lifr.lifr_flags;
13730Sstevel@tonic-gate 	lifr.lifr_flags |= onflags;
13740Sstevel@tonic-gate 	lifr.lifr_flags &= ~offflags;
13750Sstevel@tonic-gate 	pr->pr_flags = lifr.lifr_flags;
13760Sstevel@tonic-gate 	if (ioctl(pi->pi_sock, SIOCSLIFFLAGS, (char *)&lifr) < 0) {
13770Sstevel@tonic-gate 		logperror_pr(pr, "prefix_modify_flags: SIOCSLIFFLAGS");
13780Sstevel@tonic-gate 		logmsg(LOG_ERR, "prefix_modify_flags(%s, %s) old 0x%llx "
13790Sstevel@tonic-gate 		    "new 0x%llx on 0x%llx off 0x%llx\n",
13800Sstevel@tonic-gate 		    pr->pr_physical->pi_name,
13810Sstevel@tonic-gate 		    pr->pr_name,
13820Sstevel@tonic-gate 		    old_flags, lifr.lifr_flags, onflags, offflags);
13830Sstevel@tonic-gate 		return (-1);
13840Sstevel@tonic-gate 	}
13850Sstevel@tonic-gate 	return (0);
13860Sstevel@tonic-gate }
13870Sstevel@tonic-gate 
13880Sstevel@tonic-gate /*
13890Sstevel@tonic-gate  * Make the kernel state match what is in the prefix structure.
13900Sstevel@tonic-gate  * This includes creating the prefix (allocating a new interface name)
13910Sstevel@tonic-gate  * as well as setting the local address and on-link subnet prefix
13920Sstevel@tonic-gate  * and controlling the IFF_ADDRCONF and IFF_DEPRECATED flags.
13930Sstevel@tonic-gate  */
13940Sstevel@tonic-gate void
13950Sstevel@tonic-gate prefix_update_k(struct prefix *pr)
13960Sstevel@tonic-gate {
13970Sstevel@tonic-gate 	struct lifreq lifr;
13980Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
13990Sstevel@tonic-gate 	char buf1[PREFIX_STATESTRLEN], buf2[PREFIX_STATESTRLEN];
14000Sstevel@tonic-gate 	struct phyint *pi = pr->pr_physical;
14010Sstevel@tonic-gate 	struct sockaddr_in6 *sin6;
14020Sstevel@tonic-gate 
14030Sstevel@tonic-gate 	if (debug & D_PREFIX) {
14040Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "prefix_update_k(%s, %s, %s/%u) "
14050Sstevel@tonic-gate 		    "from %s to %s\n", pr->pr_physical->pi_name, pr->pr_name,
14060Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&pr->pr_prefix,
14070Sstevel@tonic-gate 		    abuf, sizeof (abuf)), pr->pr_prefix_len,
14080Sstevel@tonic-gate 		    prefix_print_state(pr->pr_kernel_state, buf1,
14090Sstevel@tonic-gate 		    sizeof (buf1)),
14100Sstevel@tonic-gate 		    prefix_print_state(pr->pr_state, buf2, sizeof (buf2)));
14110Sstevel@tonic-gate 	}
14120Sstevel@tonic-gate 
14130Sstevel@tonic-gate 	if (pr->pr_kernel_state == pr->pr_state)
14140Sstevel@tonic-gate 		return;		/* No changes */
14150Sstevel@tonic-gate 
14160Sstevel@tonic-gate 	/* Skip static prefixes */
14170Sstevel@tonic-gate 	if (pr->pr_state & PR_STATIC)
14180Sstevel@tonic-gate 		return;
14190Sstevel@tonic-gate 
14200Sstevel@tonic-gate 	if (pr->pr_kernel_state == 0) {
14210Sstevel@tonic-gate 		uint64_t onflags;
14220Sstevel@tonic-gate 		/*
14230Sstevel@tonic-gate 		 * Create a new logical interface name and store in pr_name.
14240Sstevel@tonic-gate 		 * Set IFF_ADDRCONF. Do not set an address (yet).
14250Sstevel@tonic-gate 		 */
14260Sstevel@tonic-gate 		if (pr->pr_name[0] != '\0') {
14270Sstevel@tonic-gate 			/* Name already set! */
14280Sstevel@tonic-gate 			logmsg(LOG_ERR, "prefix_update_k(%s, %s, %s/%u) "
14290Sstevel@tonic-gate 			    "from %s to %s name is already allocated\n",
14300Sstevel@tonic-gate 			    pr->pr_physical->pi_name, pr->pr_name,
14310Sstevel@tonic-gate 			    inet_ntop(AF_INET6, (void *)&pr->pr_prefix,
14320Sstevel@tonic-gate 			    abuf, sizeof (abuf)), pr->pr_prefix_len,
14330Sstevel@tonic-gate 			    prefix_print_state(pr->pr_kernel_state, buf1,
14340Sstevel@tonic-gate 			    sizeof (buf1)),
14350Sstevel@tonic-gate 			    prefix_print_state(pr->pr_state, buf2,
14360Sstevel@tonic-gate 			    sizeof (buf2)));
14370Sstevel@tonic-gate 			return;
14380Sstevel@tonic-gate 		}
14390Sstevel@tonic-gate 
14400Sstevel@tonic-gate 		(void) strncpy(lifr.lifr_name, pi->pi_name,
14410Sstevel@tonic-gate 		    sizeof (lifr.lifr_name));
14420Sstevel@tonic-gate 		lifr.lifr_name[sizeof (lifr.lifr_name) - 1] = '\0';
14430Sstevel@tonic-gate 		lifr.lifr_addr.ss_family = AF_UNSPEC;
14440Sstevel@tonic-gate 		if (ioctl(pi->pi_sock, SIOCLIFADDIF, (char *)&lifr) < 0) {
14450Sstevel@tonic-gate 			logperror_pr(pr, "prefix_update_k: SIOCLIFADDIF");
14460Sstevel@tonic-gate 			return;
14470Sstevel@tonic-gate 		}
14480Sstevel@tonic-gate 		(void) strncpy(pr->pr_name, lifr.lifr_name,
14490Sstevel@tonic-gate 		    sizeof (pr->pr_name));
14500Sstevel@tonic-gate 		pr->pr_name[sizeof (pr->pr_name) - 1] = '\0';
14510Sstevel@tonic-gate 		if (debug & D_PREFIX) {
14520Sstevel@tonic-gate 			logmsg(LOG_DEBUG, "prefix_update_k: new name %s\n",
14530Sstevel@tonic-gate 			    pr->pr_name);
14540Sstevel@tonic-gate 		}
14550Sstevel@tonic-gate 		/*
14560Sstevel@tonic-gate 		 * The IFF_TEMPORARY flag might have already been set; if
14570Sstevel@tonic-gate 		 * so, it needs to be or'd into the flags we're turning on.
14580Sstevel@tonic-gate 		 * But be careful, we might be re-creating a manually
14590Sstevel@tonic-gate 		 * removed interface, in which case we don't want to try
14600Sstevel@tonic-gate 		 * to set *all* the flags we might have in our copy of the
14610Sstevel@tonic-gate 		 * flags yet.
14620Sstevel@tonic-gate 		 */
14630Sstevel@tonic-gate 		onflags = IFF_ADDRCONF;
14640Sstevel@tonic-gate 		if (pr->pr_flags & IFF_TEMPORARY)
14650Sstevel@tonic-gate 			onflags |= IFF_TEMPORARY;
14660Sstevel@tonic-gate 		if (prefix_modify_flags(pr, onflags, 0) == -1)
14670Sstevel@tonic-gate 			return;
14680Sstevel@tonic-gate 	}
14690Sstevel@tonic-gate 	if ((pr->pr_state & (PR_ONLINK|PR_AUTO)) == 0) {
14700Sstevel@tonic-gate 		/* Remove the interface */
14710Sstevel@tonic-gate 		if (prefix_modify_flags(pr, 0, IFF_UP|IFF_DEPRECATED) == -1)
14720Sstevel@tonic-gate 			return;
14730Sstevel@tonic-gate 		(void) strncpy(lifr.lifr_name, pr->pr_name,
14740Sstevel@tonic-gate 		    sizeof (lifr.lifr_name));
14750Sstevel@tonic-gate 		lifr.lifr_name[sizeof (lifr.lifr_name) - 1] = '\0';
14760Sstevel@tonic-gate 
14770Sstevel@tonic-gate 		if (debug & D_PREFIX) {
14780Sstevel@tonic-gate 			logmsg(LOG_DEBUG, "prefix_update_k: remove name %s\n",
14790Sstevel@tonic-gate 			    pr->pr_name);
14800Sstevel@tonic-gate 		}
14810Sstevel@tonic-gate 
14820Sstevel@tonic-gate 		/*
14830Sstevel@tonic-gate 		 * Assumes that only the PR_STATIC link-local matches
14840Sstevel@tonic-gate 		 * the pi_name
14850Sstevel@tonic-gate 		 */
14860Sstevel@tonic-gate 		if (!(pr->pr_state & PR_STATIC) &&
14870Sstevel@tonic-gate 		    strcmp(pr->pr_name, pi->pi_name) == 0) {
14880Sstevel@tonic-gate 			logmsg(LOG_ERR, "prefix_update_k(%s): "
14890Sstevel@tonic-gate 			    "name matches if\n", pi->pi_name);
14900Sstevel@tonic-gate 			return;
14910Sstevel@tonic-gate 		}
14920Sstevel@tonic-gate 
14930Sstevel@tonic-gate 		/* Remove logical interface based on pr_name */
14940Sstevel@tonic-gate 		lifr.lifr_addr.ss_family = AF_UNSPEC;
14950Sstevel@tonic-gate 		if (ioctl(pi->pi_sock, SIOCLIFREMOVEIF, (char *)&lifr) < 0) {
14960Sstevel@tonic-gate 			logperror_pr(pr, "prefix_update_k: SIOCLIFREMOVEIF");
14970Sstevel@tonic-gate 		}
14980Sstevel@tonic-gate 		pr->pr_kernel_state = 0;
14990Sstevel@tonic-gate 		pr->pr_name[0] = '\0';
15000Sstevel@tonic-gate 		return;
15010Sstevel@tonic-gate 	}
15020Sstevel@tonic-gate 	if ((pr->pr_state & PR_AUTO) && !(pr->pr_kernel_state & PR_AUTO)) {
15030Sstevel@tonic-gate 		/*
15040Sstevel@tonic-gate 		 * Set local address and set the prefix length to 128.
15050Sstevel@tonic-gate 		 * Turn off IFF_NOLOCAL in case it was set.
15060Sstevel@tonic-gate 		 * Turn on IFF_UP.
15070Sstevel@tonic-gate 		 */
15080Sstevel@tonic-gate 		(void) strncpy(lifr.lifr_name, pr->pr_name,
15090Sstevel@tonic-gate 		    sizeof (lifr.lifr_name));
15100Sstevel@tonic-gate 		lifr.lifr_name[sizeof (lifr.lifr_name) - 1] = '\0';
15110Sstevel@tonic-gate 		sin6 = (struct sockaddr_in6 *)&lifr.lifr_addr;
15120Sstevel@tonic-gate 		bzero(sin6, sizeof (struct sockaddr_in6));
15130Sstevel@tonic-gate 		sin6->sin6_family = AF_INET6;
15140Sstevel@tonic-gate 		sin6->sin6_addr = pr->pr_address;
15150Sstevel@tonic-gate 		if (debug & D_PREFIX) {
15160Sstevel@tonic-gate 			logmsg(LOG_DEBUG, "prefix_update_k(%s) set addr %s "
15170Sstevel@tonic-gate 			    "for PR_AUTO on\n",
15180Sstevel@tonic-gate 			    pr->pr_name,
15190Sstevel@tonic-gate 			    inet_ntop(AF_INET6, (void *)&pr->pr_address,
15200Sstevel@tonic-gate 				abuf, sizeof (abuf)));
15210Sstevel@tonic-gate 		}
15220Sstevel@tonic-gate 		if (ioctl(pi->pi_sock, SIOCSLIFADDR, (char *)&lifr) < 0) {
15230Sstevel@tonic-gate 			logperror_pr(pr, "prefix_update_k: SIOCSLIFADDR");
15240Sstevel@tonic-gate 			return;
15250Sstevel@tonic-gate 		}
15260Sstevel@tonic-gate 		if (pr->pr_state & PR_ONLINK) {
15270Sstevel@tonic-gate 			sin6->sin6_addr = pr->pr_prefix;
15280Sstevel@tonic-gate 			lifr.lifr_addrlen = pr->pr_prefix_len;
15290Sstevel@tonic-gate 		} else {
15300Sstevel@tonic-gate 			sin6->sin6_addr = pr->pr_address;
15310Sstevel@tonic-gate 			lifr.lifr_addrlen = IPV6_ABITS;
15320Sstevel@tonic-gate 		}
15330Sstevel@tonic-gate 		if (debug & D_PREFIX) {
15340Sstevel@tonic-gate 			logmsg(LOG_DEBUG, "prefix_update_k(%s) set subnet "
15350Sstevel@tonic-gate 			    "%s/%u for PR_AUTO on\n", pr->pr_name,
15360Sstevel@tonic-gate 			    inet_ntop(AF_INET6, (void *)&sin6->sin6_addr,
15370Sstevel@tonic-gate 				abuf, sizeof (abuf)), lifr.lifr_addrlen);
15380Sstevel@tonic-gate 		}
15390Sstevel@tonic-gate 		if (ioctl(pi->pi_sock, SIOCSLIFSUBNET, (char *)&lifr) < 0) {
15400Sstevel@tonic-gate 			logperror_pr(pr, "prefix_update_k: SIOCSLIFSUBNET");
15410Sstevel@tonic-gate 			return;
15420Sstevel@tonic-gate 		}
15430Sstevel@tonic-gate 		/*
15440Sstevel@tonic-gate 		 * For ptp interfaces, create a destination based on
15450Sstevel@tonic-gate 		 * prefix and prefix len together with the remote token
15460Sstevel@tonic-gate 		 * extracted from the remote pt-pt address.  This is used by
15470Sstevel@tonic-gate 		 * ip to choose a proper source for outgoing packets.
15480Sstevel@tonic-gate 		 */
15490Sstevel@tonic-gate 		if (pi->pi_flags & IFF_POINTOPOINT) {
15500Sstevel@tonic-gate 			int i;
15510Sstevel@tonic-gate 
15520Sstevel@tonic-gate 			sin6 = (struct sockaddr_in6 *)&lifr.lifr_addr;
15530Sstevel@tonic-gate 			bzero(sin6, sizeof (struct sockaddr_in6));
15540Sstevel@tonic-gate 			sin6->sin6_family = AF_INET6;
15550Sstevel@tonic-gate 			sin6->sin6_addr = pr->pr_prefix;
15560Sstevel@tonic-gate 			for (i = 0; i < 16; i++) {
15570Sstevel@tonic-gate 				sin6->sin6_addr.s6_addr[i] |=
15580Sstevel@tonic-gate 				    pi->pi_dst_token.s6_addr[i];
15590Sstevel@tonic-gate 			}
15600Sstevel@tonic-gate 			if (debug & D_PREFIX) {
15610Sstevel@tonic-gate 				logmsg(LOG_DEBUG, "prefix_update_k(%s) "
15620Sstevel@tonic-gate 				    "set dstaddr %s for PR_AUTO on\n",
15630Sstevel@tonic-gate 				    pr->pr_name, inet_ntop(AF_INET6,
15640Sstevel@tonic-gate 				    (void *)&sin6->sin6_addr,
15650Sstevel@tonic-gate 				    abuf, sizeof (abuf)));
15660Sstevel@tonic-gate 			}
15670Sstevel@tonic-gate 			if (ioctl(pi->pi_sock, SIOCSLIFDSTADDR,
15680Sstevel@tonic-gate 			    (char *)&lifr) < 0) {
15690Sstevel@tonic-gate 				logperror_pr(pr,
15700Sstevel@tonic-gate 				    "prefix_update_k: SIOCSLIFDSTADDR");
15710Sstevel@tonic-gate 				return;
15720Sstevel@tonic-gate 			}
15730Sstevel@tonic-gate 		}
15740Sstevel@tonic-gate 		if (prefix_modify_flags(pr, IFF_UP, IFF_NOLOCAL) == -1)
15750Sstevel@tonic-gate 			return;
15760Sstevel@tonic-gate 		pr->pr_kernel_state |= PR_AUTO;
15770Sstevel@tonic-gate 		if (pr->pr_state & PR_ONLINK)
15780Sstevel@tonic-gate 			pr->pr_kernel_state |= PR_ONLINK;
15790Sstevel@tonic-gate 		else
15800Sstevel@tonic-gate 			pr->pr_kernel_state &= ~PR_ONLINK;
15810Sstevel@tonic-gate 	}
15820Sstevel@tonic-gate 	if (!(pr->pr_state & PR_AUTO) && (pr->pr_kernel_state & PR_AUTO)) {
15830Sstevel@tonic-gate 		/* Turn on IFF_NOLOCAL and set the local address to all zero */
15840Sstevel@tonic-gate 		if (prefix_modify_flags(pr, IFF_NOLOCAL, 0) == -1)
15850Sstevel@tonic-gate 			return;
15860Sstevel@tonic-gate 		(void) strncpy(lifr.lifr_name, pr->pr_name,
15870Sstevel@tonic-gate 		    sizeof (lifr.lifr_name));
15880Sstevel@tonic-gate 		lifr.lifr_name[sizeof (lifr.lifr_name) - 1] = '\0';
15890Sstevel@tonic-gate 		sin6 = (struct sockaddr_in6 *)&lifr.lifr_addr;
15900Sstevel@tonic-gate 		bzero(sin6, sizeof (struct sockaddr_in6));
15910Sstevel@tonic-gate 		sin6->sin6_family = AF_INET6;
15920Sstevel@tonic-gate 		if (debug & D_PREFIX) {
15930Sstevel@tonic-gate 			logmsg(LOG_DEBUG, "prefix_update_k(%s) set addr %s "
15940Sstevel@tonic-gate 			    "for PR_AUTO off\n", pr->pr_name,
15950Sstevel@tonic-gate 			    inet_ntop(AF_INET6, (void *)&sin6->sin6_addr,
15960Sstevel@tonic-gate 				abuf, sizeof (abuf)));
15970Sstevel@tonic-gate 		}
15980Sstevel@tonic-gate 		if (ioctl(pi->pi_sock, SIOCSLIFADDR, (char *)&lifr) < 0) {
15990Sstevel@tonic-gate 			logperror_pr(pr, "prefix_update_k: SIOCSLIFADDR");
16000Sstevel@tonic-gate 			return;
16010Sstevel@tonic-gate 		}
16020Sstevel@tonic-gate 		pr->pr_kernel_state &= ~PR_AUTO;
16030Sstevel@tonic-gate 	}
16040Sstevel@tonic-gate 	if ((pr->pr_state & PR_DEPRECATED) &&
16050Sstevel@tonic-gate 	    !(pr->pr_kernel_state & PR_DEPRECATED) &&
16060Sstevel@tonic-gate 	    (pr->pr_kernel_state & PR_AUTO)) {
16070Sstevel@tonic-gate 		/* Only applies if PR_AUTO */
16080Sstevel@tonic-gate 		if (prefix_modify_flags(pr, IFF_DEPRECATED, 0) == -1)
16090Sstevel@tonic-gate 			return;
16100Sstevel@tonic-gate 		pr->pr_kernel_state |= PR_DEPRECATED;
16110Sstevel@tonic-gate 	}
16120Sstevel@tonic-gate 	if (!(pr->pr_state & PR_DEPRECATED) &&
16130Sstevel@tonic-gate 	    (pr->pr_kernel_state & PR_DEPRECATED)) {
16140Sstevel@tonic-gate 		if (prefix_modify_flags(pr, 0, IFF_DEPRECATED) == -1)
16150Sstevel@tonic-gate 			return;
16160Sstevel@tonic-gate 		pr->pr_kernel_state &= ~PR_DEPRECATED;
16170Sstevel@tonic-gate 	}
16180Sstevel@tonic-gate 	if ((pr->pr_state & PR_ONLINK) && !(pr->pr_kernel_state & PR_ONLINK)) {
16190Sstevel@tonic-gate 		/* Set the subnet and set IFF_UP */
16200Sstevel@tonic-gate 		(void) strncpy(lifr.lifr_name, pr->pr_name,
16210Sstevel@tonic-gate 		    sizeof (lifr.lifr_name));
16220Sstevel@tonic-gate 		lifr.lifr_name[sizeof (lifr.lifr_name) - 1] = '\0';
16230Sstevel@tonic-gate 		sin6 = (struct sockaddr_in6 *)&lifr.lifr_addr;
16240Sstevel@tonic-gate 		bzero(sin6, sizeof (struct sockaddr_in6));
16250Sstevel@tonic-gate 		sin6->sin6_family = AF_INET6;
16260Sstevel@tonic-gate 		sin6->sin6_addr = pr->pr_prefix;
16270Sstevel@tonic-gate 		lifr.lifr_addrlen = pr->pr_prefix_len;
16280Sstevel@tonic-gate 		if (debug & D_PREFIX) {
16290Sstevel@tonic-gate 			logmsg(LOG_DEBUG, "prefix_update_k(%s) set subnet "
16300Sstevel@tonic-gate 			    "%s/%d for PR_ONLINK on\n", pr->pr_name,
16310Sstevel@tonic-gate 			    inet_ntop(AF_INET6, (void *)&sin6->sin6_addr,
16320Sstevel@tonic-gate 				abuf, sizeof (abuf)), lifr.lifr_addrlen);
16330Sstevel@tonic-gate 		}
16340Sstevel@tonic-gate 		if (ioctl(pi->pi_sock, SIOCSLIFSUBNET, (char *)&lifr) < 0) {
16350Sstevel@tonic-gate 			logperror_pr(pr, "prefix_update_k: SIOCSLIFSUBNET");
16360Sstevel@tonic-gate 			return;
16370Sstevel@tonic-gate 		}
16380Sstevel@tonic-gate 		if (!(pr->pr_state & PR_AUTO)) {
16390Sstevel@tonic-gate 			if (prefix_modify_flags(pr, IFF_NOLOCAL, 0) == -1)
16400Sstevel@tonic-gate 				return;
16410Sstevel@tonic-gate 		}
16420Sstevel@tonic-gate 		if (prefix_modify_flags(pr, IFF_UP, 0) == -1)
16430Sstevel@tonic-gate 			return;
16440Sstevel@tonic-gate 		pr->pr_kernel_state |= PR_ONLINK;
16450Sstevel@tonic-gate 	}
16460Sstevel@tonic-gate 	if (!(pr->pr_state & PR_ONLINK) && (pr->pr_kernel_state & PR_ONLINK)) {
16470Sstevel@tonic-gate 		/* Set the prefixlen to 128 */
16480Sstevel@tonic-gate 		(void) strncpy(lifr.lifr_name, pr->pr_name,
16490Sstevel@tonic-gate 		    sizeof (lifr.lifr_name));
16500Sstevel@tonic-gate 		lifr.lifr_name[sizeof (lifr.lifr_name) - 1] = '\0';
16510Sstevel@tonic-gate 		sin6 = (struct sockaddr_in6 *)&lifr.lifr_addr;
16520Sstevel@tonic-gate 		bzero(sin6, sizeof (struct sockaddr_in6));
16530Sstevel@tonic-gate 		sin6->sin6_family = AF_INET6;
16540Sstevel@tonic-gate 		sin6->sin6_addr = pr->pr_address;
16550Sstevel@tonic-gate 		lifr.lifr_addrlen = IPV6_ABITS;
16560Sstevel@tonic-gate 		if (debug & D_PREFIX) {
16570Sstevel@tonic-gate 			logmsg(LOG_DEBUG, "prefix_update_k(%s) set subnet "
16580Sstevel@tonic-gate 			    "%s/%d for PR_ONLINK off\n", pr->pr_name,
16590Sstevel@tonic-gate 			    inet_ntop(AF_INET6, (void *)&sin6->sin6_addr,
16600Sstevel@tonic-gate 				abuf, sizeof (abuf)), lifr.lifr_addrlen);
16610Sstevel@tonic-gate 		}
16620Sstevel@tonic-gate 		if (ioctl(pi->pi_sock, SIOCSLIFSUBNET, (char *)&lifr) < 0) {
16630Sstevel@tonic-gate 			logperror_pr(pr, "prefix_update_k: SIOCSLIFSUBNET");
16640Sstevel@tonic-gate 			return;
16650Sstevel@tonic-gate 		}
16660Sstevel@tonic-gate 		pr->pr_kernel_state &= ~PR_ONLINK;
16670Sstevel@tonic-gate 	}
16680Sstevel@tonic-gate }
16690Sstevel@tonic-gate 
16700Sstevel@tonic-gate /*
16710Sstevel@tonic-gate  * Called with the number of millseconds elapsed since the last call.
16720Sstevel@tonic-gate  * Determines if any timeout event has occurred and
16730Sstevel@tonic-gate  * returns the number of milliseconds until the next timeout event.
16740Sstevel@tonic-gate  * Returns TIMER_INFINITY for "never".
16750Sstevel@tonic-gate  */
16760Sstevel@tonic-gate uint_t
16770Sstevel@tonic-gate prefix_timer(struct prefix *pr, uint_t elapsed)
16780Sstevel@tonic-gate {
16790Sstevel@tonic-gate 	uint_t next = TIMER_INFINITY;
16800Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
16810Sstevel@tonic-gate 
16820Sstevel@tonic-gate 	if (debug & (D_PREFIX|D_TMP)) {
16830Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "prefix_timer(%s, %s/%u, %d) "
16840Sstevel@tonic-gate 		    "valid %d pref %d onlink %d\n",
16850Sstevel@tonic-gate 		    pr->pr_name,
16860Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&pr->pr_prefix,
16870Sstevel@tonic-gate 		    abuf, sizeof (abuf)), pr->pr_prefix_len,
16880Sstevel@tonic-gate 		    elapsed, pr->pr_ValidLifetime, pr->pr_PreferredLifetime,
16890Sstevel@tonic-gate 		    pr->pr_OnLinkLifetime);
16900Sstevel@tonic-gate 	}
16910Sstevel@tonic-gate 
16920Sstevel@tonic-gate 	/* Exclude static prefixes */
16930Sstevel@tonic-gate 	if (pr->pr_state & PR_STATIC)
16940Sstevel@tonic-gate 		return (next);
16950Sstevel@tonic-gate 
16960Sstevel@tonic-gate 	if (pr->pr_AutonomousFlag &&
16970Sstevel@tonic-gate 	    (pr->pr_PreferredLifetime != PREFIX_INFINITY)) {
16980Sstevel@tonic-gate 		if (pr->pr_PreferredLifetime <= elapsed) {
16990Sstevel@tonic-gate 			pr->pr_PreferredLifetime = 0;
17000Sstevel@tonic-gate 		} else {
17010Sstevel@tonic-gate 			pr->pr_PreferredLifetime -= elapsed;
17020Sstevel@tonic-gate 			if (pr->pr_PreferredLifetime < next)
17030Sstevel@tonic-gate 				next = pr->pr_PreferredLifetime;
17040Sstevel@tonic-gate 		}
17050Sstevel@tonic-gate 	}
17060Sstevel@tonic-gate 	if (pr->pr_AutonomousFlag &&
17070Sstevel@tonic-gate 	    (pr->pr_ValidLifetime != PREFIX_INFINITY)) {
17080Sstevel@tonic-gate 		if (pr->pr_ValidLifetime <= elapsed) {
17090Sstevel@tonic-gate 			pr->pr_ValidLifetime = 0;
17100Sstevel@tonic-gate 		} else {
17110Sstevel@tonic-gate 			pr->pr_ValidLifetime -= elapsed;
17120Sstevel@tonic-gate 			if (pr->pr_ValidLifetime < next)
17130Sstevel@tonic-gate 				next = pr->pr_ValidLifetime;
17140Sstevel@tonic-gate 		}
17150Sstevel@tonic-gate 	}
17160Sstevel@tonic-gate 	if (pr->pr_OnLinkFlag &&
17170Sstevel@tonic-gate 	    (pr->pr_OnLinkLifetime != PREFIX_INFINITY)) {
17180Sstevel@tonic-gate 		if (pr->pr_OnLinkLifetime <= elapsed) {
17190Sstevel@tonic-gate 			pr->pr_OnLinkLifetime = 0;
17200Sstevel@tonic-gate 		} else {
17210Sstevel@tonic-gate 			pr->pr_OnLinkLifetime -= elapsed;
17220Sstevel@tonic-gate 			if (pr->pr_OnLinkLifetime < next)
17230Sstevel@tonic-gate 				next = pr->pr_OnLinkLifetime;
17240Sstevel@tonic-gate 		}
17250Sstevel@tonic-gate 	}
17260Sstevel@tonic-gate 	if (pr->pr_AutonomousFlag && pr->pr_ValidLifetime == 0)
17270Sstevel@tonic-gate 		pr->pr_state &= ~(PR_AUTO|PR_DEPRECATED);
17280Sstevel@tonic-gate 	if (pr->pr_AutonomousFlag && pr->pr_PreferredLifetime == 0 &&
17290Sstevel@tonic-gate 	    (pr->pr_state & PR_AUTO)) {
17300Sstevel@tonic-gate 		pr->pr_state |= PR_DEPRECATED;
17310Sstevel@tonic-gate 		if (debug & D_TMP)
17320Sstevel@tonic-gate 			logmsg(LOG_WARNING, "prefix_timer: deprecated "
17330Sstevel@tonic-gate 			    "prefix(%s)\n", pr->pr_name);
17340Sstevel@tonic-gate 	}
17350Sstevel@tonic-gate 	if (pr->pr_OnLinkFlag && pr->pr_OnLinkLifetime == 0)
17360Sstevel@tonic-gate 		pr->pr_state &= ~PR_ONLINK;
17370Sstevel@tonic-gate 
17380Sstevel@tonic-gate 	if (pr->pr_state != pr->pr_kernel_state) {
17390Sstevel@tonic-gate 		/* Might cause prefix to be deleted! */
17400Sstevel@tonic-gate 
17410Sstevel@tonic-gate 		/* Log a message when an addrconf prefix goes away */
17420Sstevel@tonic-gate 		if ((pr->pr_kernel_state & PR_AUTO) &&
17430Sstevel@tonic-gate 		    !(pr->pr_state & PR_AUTO)) {
17440Sstevel@tonic-gate 			char abuf[INET6_ADDRSTRLEN];
17450Sstevel@tonic-gate 
17460Sstevel@tonic-gate 			logmsg(LOG_WARNING,
17470Sstevel@tonic-gate 			    "Address removed due to timeout %s\n",
17480Sstevel@tonic-gate 			    inet_ntop(AF_INET6, (void *)&pr->pr_address,
17490Sstevel@tonic-gate 			    abuf, sizeof (abuf)));
17500Sstevel@tonic-gate 		}
17510Sstevel@tonic-gate 		prefix_update_k(pr);
17520Sstevel@tonic-gate 	}
17530Sstevel@tonic-gate 
17540Sstevel@tonic-gate 	return (next);
17550Sstevel@tonic-gate }
17560Sstevel@tonic-gate 
17570Sstevel@tonic-gate static char *
17580Sstevel@tonic-gate prefix_print_state(int state, char *buf, int buflen)
17590Sstevel@tonic-gate {
17600Sstevel@tonic-gate 	char *cp;
17610Sstevel@tonic-gate 	int cplen = buflen;
17620Sstevel@tonic-gate 
17630Sstevel@tonic-gate 	cp = buf;
17640Sstevel@tonic-gate 	cp[0] = '\0';
17650Sstevel@tonic-gate 
17660Sstevel@tonic-gate 	if (state & PR_ONLINK) {
17670Sstevel@tonic-gate 		if (strlcat(cp, "ONLINK ", cplen) >= cplen)
17680Sstevel@tonic-gate 			return (buf);
17690Sstevel@tonic-gate 		cp += strlen(cp);
17700Sstevel@tonic-gate 		cplen = buflen - (cp - buf);
17710Sstevel@tonic-gate 	}
17720Sstevel@tonic-gate 	if (state & PR_AUTO) {
17730Sstevel@tonic-gate 		if (strlcat(cp, "AUTO ", cplen) >= cplen)
17740Sstevel@tonic-gate 			return (buf);
17750Sstevel@tonic-gate 		cp += strlen(cp);
17760Sstevel@tonic-gate 		cplen = buflen - (cp - buf);
17770Sstevel@tonic-gate 	}
17780Sstevel@tonic-gate 	if (state & PR_DEPRECATED) {
17790Sstevel@tonic-gate 		if (strlcat(cp, "DEPRECATED ", cplen) >= cplen)
17800Sstevel@tonic-gate 			return (buf);
17810Sstevel@tonic-gate 		cp += strlen(cp);
17820Sstevel@tonic-gate 		cplen = buflen - (cp - buf);
17830Sstevel@tonic-gate 	}
17840Sstevel@tonic-gate 	if (state & PR_STATIC) {
17850Sstevel@tonic-gate 		if (strlcat(cp, "STATIC ", cplen) >= cplen)
17860Sstevel@tonic-gate 			return (buf);
17870Sstevel@tonic-gate 		cp += strlen(cp);
17880Sstevel@tonic-gate 		cplen = buflen - (cp - buf);
17890Sstevel@tonic-gate 	}
17900Sstevel@tonic-gate 	return (buf);
17910Sstevel@tonic-gate }
17920Sstevel@tonic-gate 
17930Sstevel@tonic-gate static void
17940Sstevel@tonic-gate prefix_print(struct prefix *pr)
17950Sstevel@tonic-gate {
17960Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
17970Sstevel@tonic-gate 	char buf1[PREFIX_STATESTRLEN], buf2[PREFIX_STATESTRLEN];
17980Sstevel@tonic-gate 
17990Sstevel@tonic-gate 	logmsg(LOG_DEBUG, "Prefix name: %s prefix %s/%u state %s "
18000Sstevel@tonic-gate 	    "kernel_state %s\n", pr->pr_name,
18010Sstevel@tonic-gate 	    inet_ntop(AF_INET6, (void *)&pr->pr_prefix, abuf, sizeof (abuf)),
18020Sstevel@tonic-gate 	    pr->pr_prefix_len,
18030Sstevel@tonic-gate 	    prefix_print_state(pr->pr_state, buf2, sizeof (buf2)),
18040Sstevel@tonic-gate 	    prefix_print_state(pr->pr_kernel_state, buf1, sizeof (buf1)));
18050Sstevel@tonic-gate 	logmsg(LOG_DEBUG, "\tAddress: %s flags %llx in_use %d\n",
18060Sstevel@tonic-gate 	    inet_ntop(AF_INET6, (void *)&pr->pr_address, abuf, sizeof (abuf)),
18070Sstevel@tonic-gate 	    pr->pr_flags, pr->pr_in_use);
18080Sstevel@tonic-gate 	logmsg(LOG_DEBUG, "\tValidLifetime %u PreferredLifetime %u "
18090Sstevel@tonic-gate 	    "OnLinkLifetime %u\n", pr->pr_ValidLifetime,
18100Sstevel@tonic-gate 	    pr->pr_PreferredLifetime, pr->pr_OnLinkLifetime);
18110Sstevel@tonic-gate 	logmsg(LOG_DEBUG, "\tOnLink %d Auto %d\n",
18120Sstevel@tonic-gate 	    pr->pr_OnLinkFlag, pr->pr_AutonomousFlag);
18130Sstevel@tonic-gate 	logmsg(LOG_DEBUG, "\n");
18140Sstevel@tonic-gate }
18150Sstevel@tonic-gate 
18160Sstevel@tonic-gate /*
18170Sstevel@tonic-gate  * Does the address formed by pr->pr_prefix and pi->pi_token match
18180Sstevel@tonic-gate  * pr->pr_address. It does not match if a failover has happened
18190Sstevel@tonic-gate  * earlier (done by in.mpathd) from a different pi. Should not
18200Sstevel@tonic-gate  * be called for onlink prefixes.
18210Sstevel@tonic-gate  */
18220Sstevel@tonic-gate boolean_t
18230Sstevel@tonic-gate prefix_token_match(struct phyint *pi, struct prefix *pr, uint64_t flags)
18240Sstevel@tonic-gate {
18250Sstevel@tonic-gate 	int i;
18260Sstevel@tonic-gate 	in6_addr_t addr, *token;
18270Sstevel@tonic-gate 
18280Sstevel@tonic-gate 	if (flags & IFF_TEMPORARY)
18290Sstevel@tonic-gate 		token = &pi->pi_tmp_token;
18300Sstevel@tonic-gate 	else
18310Sstevel@tonic-gate 		token = &pi->pi_token;
18320Sstevel@tonic-gate 	for (i = 0; i < 16; i++) {
18330Sstevel@tonic-gate 		/*
18340Sstevel@tonic-gate 		 * prefix_create ensures that pr_prefix has all-zero
18350Sstevel@tonic-gate 		 * bits after prefixlen.
18360Sstevel@tonic-gate 		 */
18370Sstevel@tonic-gate 		addr.s6_addr[i] = pr->pr_prefix.s6_addr[i] | token->s6_addr[i];
18380Sstevel@tonic-gate 	}
18390Sstevel@tonic-gate 	if (IN6_ARE_ADDR_EQUAL(&pr->pr_address, &addr)) {
18400Sstevel@tonic-gate 		return (_B_TRUE);
18410Sstevel@tonic-gate 	} else {
18420Sstevel@tonic-gate 		return (_B_FALSE);
18430Sstevel@tonic-gate 	}
18440Sstevel@tonic-gate }
18450Sstevel@tonic-gate 
18460Sstevel@tonic-gate /*
18470Sstevel@tonic-gate  * Lookup advertisement prefix structure that matches the prefix and
18480Sstevel@tonic-gate  * prefix length.
18490Sstevel@tonic-gate  * Assumes that the bits after prefixlen might not be zero.
18500Sstevel@tonic-gate  */
18510Sstevel@tonic-gate struct adv_prefix *
18520Sstevel@tonic-gate adv_prefix_lookup(struct phyint *pi, struct in6_addr prefix, int prefixlen)
18530Sstevel@tonic-gate {
18540Sstevel@tonic-gate 	struct adv_prefix *adv_pr;
18550Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
18560Sstevel@tonic-gate 
18570Sstevel@tonic-gate 	if (debug & D_PREFIX) {
18580Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "adv_prefix_lookup(%s, %s/%u)\n",
18590Sstevel@tonic-gate 		    pi->pi_name, inet_ntop(AF_INET6, (void *)&prefix,
18600Sstevel@tonic-gate 		    abuf, sizeof (abuf)), prefixlen);
18610Sstevel@tonic-gate 	}
18620Sstevel@tonic-gate 
18630Sstevel@tonic-gate 	for (adv_pr = pi->pi_adv_prefix_list; adv_pr != NULL;
18640Sstevel@tonic-gate 	    adv_pr = adv_pr->adv_pr_next) {
18650Sstevel@tonic-gate 		if (adv_pr->adv_pr_prefix_len == prefixlen &&
18660Sstevel@tonic-gate 		    prefix_equal(prefix, adv_pr->adv_pr_prefix, prefixlen))
18670Sstevel@tonic-gate 			return (adv_pr);
18680Sstevel@tonic-gate 	}
18690Sstevel@tonic-gate 	return (NULL);
18700Sstevel@tonic-gate }
18710Sstevel@tonic-gate 
18720Sstevel@tonic-gate /*
18730Sstevel@tonic-gate  * Initialize a new advertisement prefix.
18740Sstevel@tonic-gate  */
18750Sstevel@tonic-gate struct adv_prefix *
18760Sstevel@tonic-gate adv_prefix_create(struct phyint *pi, struct in6_addr prefix, int prefixlen)
18770Sstevel@tonic-gate {
18780Sstevel@tonic-gate 	struct adv_prefix *adv_pr;
18790Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
18800Sstevel@tonic-gate 
18810Sstevel@tonic-gate 	if (debug & D_PREFIX) {
18820Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "adv_prefix_create(%s, %s/%u)\n",
18830Sstevel@tonic-gate 		    pi->pi_name, inet_ntop(AF_INET6, (void *)&prefix,
18840Sstevel@tonic-gate 		    abuf, sizeof (abuf)), prefixlen);
18850Sstevel@tonic-gate 	}
18860Sstevel@tonic-gate 	adv_pr = (struct adv_prefix *)calloc(sizeof (struct adv_prefix), 1);
18870Sstevel@tonic-gate 	if (adv_pr == NULL) {
18880Sstevel@tonic-gate 		logmsg(LOG_ERR, "adv_prefix_create: calloc\n");
18890Sstevel@tonic-gate 		return (NULL);
18900Sstevel@tonic-gate 	}
18910Sstevel@tonic-gate 	/*
18920Sstevel@tonic-gate 	 * The prefix might have non-zero bits after the prefix len bits.
18930Sstevel@tonic-gate 	 * Force them to be zero.
18940Sstevel@tonic-gate 	 */
18950Sstevel@tonic-gate 	prefix_set(&adv_pr->adv_pr_prefix, prefix, prefixlen);
18960Sstevel@tonic-gate 	adv_pr->adv_pr_prefix_len = prefixlen;
18970Sstevel@tonic-gate 	adv_prefix_insert(pi, adv_pr);
18980Sstevel@tonic-gate 	return (adv_pr);
18990Sstevel@tonic-gate }
19000Sstevel@tonic-gate 
19010Sstevel@tonic-gate /* Insert in linked list */
19020Sstevel@tonic-gate static void
19030Sstevel@tonic-gate adv_prefix_insert(struct phyint *pi, struct adv_prefix *adv_pr)
19040Sstevel@tonic-gate {
19050Sstevel@tonic-gate 	adv_pr->adv_pr_next = pi->pi_adv_prefix_list;
19060Sstevel@tonic-gate 	adv_pr->adv_pr_prev = NULL;
19070Sstevel@tonic-gate 	if (pi->pi_adv_prefix_list != NULL)
19080Sstevel@tonic-gate 		pi->pi_adv_prefix_list->adv_pr_prev = adv_pr;
19090Sstevel@tonic-gate 	pi->pi_adv_prefix_list = adv_pr;
19100Sstevel@tonic-gate 	adv_pr->adv_pr_physical = pi;
19110Sstevel@tonic-gate }
19120Sstevel@tonic-gate 
19130Sstevel@tonic-gate /*
19140Sstevel@tonic-gate  * Delete (unlink and free) from our tables. There should be
19150Sstevel@tonic-gate  * a corresponding "struct prefix *" which will clean up the kernel
19160Sstevel@tonic-gate  * if necessary. adv_prefix is just used for sending out advertisements.
19170Sstevel@tonic-gate  */
19180Sstevel@tonic-gate static void
19190Sstevel@tonic-gate adv_prefix_delete(struct adv_prefix *adv_pr)
19200Sstevel@tonic-gate {
19210Sstevel@tonic-gate 	struct phyint *pi;
19220Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
19230Sstevel@tonic-gate 
19240Sstevel@tonic-gate 	if (debug & D_PREFIX) {
19250Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "adv_prefix_delete(%s, %s/%u)\n",
19260Sstevel@tonic-gate 		    adv_pr->adv_pr_physical->pi_name,
19270Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&adv_pr->adv_pr_prefix,
19280Sstevel@tonic-gate 		    abuf, sizeof (abuf)), adv_pr->adv_pr_prefix_len);
19290Sstevel@tonic-gate 	}
19300Sstevel@tonic-gate 	pi = adv_pr->adv_pr_physical;
19310Sstevel@tonic-gate 
19320Sstevel@tonic-gate 	if (adv_pr->adv_pr_prev == NULL) {
19330Sstevel@tonic-gate 		if (pi != NULL)
19340Sstevel@tonic-gate 			pi->pi_adv_prefix_list = adv_pr->adv_pr_next;
19350Sstevel@tonic-gate 	} else {
19360Sstevel@tonic-gate 		adv_pr->adv_pr_prev->adv_pr_next = adv_pr->adv_pr_next;
19370Sstevel@tonic-gate 	}
19380Sstevel@tonic-gate 	if (adv_pr->adv_pr_next != NULL)
19390Sstevel@tonic-gate 		adv_pr->adv_pr_next->adv_pr_prev = adv_pr->adv_pr_prev;
19400Sstevel@tonic-gate 	adv_pr->adv_pr_next = adv_pr->adv_pr_prev = NULL;
19410Sstevel@tonic-gate 	free(adv_pr);
19420Sstevel@tonic-gate }
19430Sstevel@tonic-gate 
19440Sstevel@tonic-gate /*
19450Sstevel@tonic-gate  * Called with the number of millseconds elapsed since the last call.
19460Sstevel@tonic-gate  * Determines if any timeout event has occurred and
19470Sstevel@tonic-gate  * returns the number of milliseconds until the next timeout event.
19480Sstevel@tonic-gate  * Returns TIMER_INFINITY for "never".
19490Sstevel@tonic-gate  */
19500Sstevel@tonic-gate uint_t
19510Sstevel@tonic-gate adv_prefix_timer(struct adv_prefix *adv_pr, uint_t elapsed)
19520Sstevel@tonic-gate {
19530Sstevel@tonic-gate 	int seconds_elapsed = (elapsed + 500) / 1000;	/* Rounded */
19540Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
19550Sstevel@tonic-gate 
19560Sstevel@tonic-gate 	if (debug & D_PREFIX) {
19570Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "adv_prefix_timer(%s, %s/%u, %d)\n",
19580Sstevel@tonic-gate 		    adv_pr->adv_pr_physical->pi_name,
19590Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&adv_pr->adv_pr_prefix,
19600Sstevel@tonic-gate 		    abuf, sizeof (abuf)), adv_pr->adv_pr_prefix_len,
19610Sstevel@tonic-gate 		    elapsed);
19620Sstevel@tonic-gate 	}
19630Sstevel@tonic-gate 
19640Sstevel@tonic-gate 	/* Decrement Expire time left for real-time lifetimes */
19650Sstevel@tonic-gate 	if (adv_pr->adv_pr_AdvValidRealTime) {
19660Sstevel@tonic-gate 		if (adv_pr->adv_pr_AdvValidExpiration > seconds_elapsed)
19670Sstevel@tonic-gate 			adv_pr->adv_pr_AdvValidExpiration -= seconds_elapsed;
19680Sstevel@tonic-gate 		else
19690Sstevel@tonic-gate 			adv_pr->adv_pr_AdvValidExpiration = 0;
19700Sstevel@tonic-gate 	}
19710Sstevel@tonic-gate 	if (adv_pr->adv_pr_AdvPreferredRealTime) {
19720Sstevel@tonic-gate 		if (adv_pr->adv_pr_AdvPreferredExpiration > seconds_elapsed) {
19730Sstevel@tonic-gate 			adv_pr->adv_pr_AdvPreferredExpiration -=
19740Sstevel@tonic-gate 			    seconds_elapsed;
19750Sstevel@tonic-gate 		} else {
19760Sstevel@tonic-gate 			adv_pr->adv_pr_AdvPreferredExpiration = 0;
19770Sstevel@tonic-gate 		}
19780Sstevel@tonic-gate 	}
19790Sstevel@tonic-gate 	return (TIMER_INFINITY);
19800Sstevel@tonic-gate }
19810Sstevel@tonic-gate 
19820Sstevel@tonic-gate static void
19830Sstevel@tonic-gate adv_prefix_print(struct adv_prefix *adv_pr)
19840Sstevel@tonic-gate {
19850Sstevel@tonic-gate 	print_prefixlist(adv_pr->adv_pr_config);
19860Sstevel@tonic-gate }
19870Sstevel@tonic-gate 
19880Sstevel@tonic-gate /* Lookup router on its link-local IPv6 address */
19890Sstevel@tonic-gate struct router *
19900Sstevel@tonic-gate router_lookup(struct phyint *pi, struct in6_addr addr)
19910Sstevel@tonic-gate {
19920Sstevel@tonic-gate 	struct router *dr;
19930Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
19940Sstevel@tonic-gate 
19950Sstevel@tonic-gate 	if (debug & D_ROUTER) {
19960Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "router_lookup(%s, %s)\n", pi->pi_name,
19970Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&addr,
19980Sstevel@tonic-gate 		    abuf, sizeof (abuf)));
19990Sstevel@tonic-gate 	}
20000Sstevel@tonic-gate 
20010Sstevel@tonic-gate 	for (dr = pi->pi_router_list; dr != NULL; dr = dr->dr_next) {
20020Sstevel@tonic-gate 		if (bcmp((char *)&addr, (char *)&dr->dr_address,
20030Sstevel@tonic-gate 		    sizeof (addr)) == 0)
20040Sstevel@tonic-gate 			return (dr);
20050Sstevel@tonic-gate 	}
20060Sstevel@tonic-gate 	return (NULL);
20070Sstevel@tonic-gate }
20080Sstevel@tonic-gate 
20090Sstevel@tonic-gate /*
20100Sstevel@tonic-gate  * Create a default router entry.
20110Sstevel@tonic-gate  * The lifetime parameter is in seconds.
20120Sstevel@tonic-gate  */
20130Sstevel@tonic-gate struct router *
20140Sstevel@tonic-gate router_create(struct phyint *pi, struct in6_addr addr, uint_t lifetime)
20150Sstevel@tonic-gate {
20160Sstevel@tonic-gate 	struct router *dr;
20170Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
20180Sstevel@tonic-gate 
20190Sstevel@tonic-gate 	if (debug & D_ROUTER) {
20200Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "router_create(%s, %s, %u)\n", pi->pi_name,
20210Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&addr,
20220Sstevel@tonic-gate 		    abuf, sizeof (abuf)), lifetime);
20230Sstevel@tonic-gate 	}
20240Sstevel@tonic-gate 
20250Sstevel@tonic-gate 	dr = (struct router *)calloc(sizeof (struct router), 1);
20260Sstevel@tonic-gate 	if (dr == NULL) {
20270Sstevel@tonic-gate 		logmsg(LOG_ERR, "router_create: out of memory\n");
20280Sstevel@tonic-gate 		return (NULL);
20290Sstevel@tonic-gate 	}
20300Sstevel@tonic-gate 	dr->dr_address = addr;
20310Sstevel@tonic-gate 	dr->dr_lifetime = lifetime;
20320Sstevel@tonic-gate 	router_insert(pi, dr);
2033*1577Sseb 	if (dr->dr_lifetime != 0)
20340Sstevel@tonic-gate 		router_add_k(dr);
20350Sstevel@tonic-gate 	return (dr);
20360Sstevel@tonic-gate }
20370Sstevel@tonic-gate 
20380Sstevel@tonic-gate /* Insert in linked list */
20390Sstevel@tonic-gate static void
20400Sstevel@tonic-gate router_insert(struct phyint *pi, struct router *dr)
20410Sstevel@tonic-gate {
20420Sstevel@tonic-gate 	dr->dr_next = pi->pi_router_list;
20430Sstevel@tonic-gate 	dr->dr_prev = NULL;
20440Sstevel@tonic-gate 	if (pi->pi_router_list != NULL)
20450Sstevel@tonic-gate 		pi->pi_router_list->dr_prev = dr;
20460Sstevel@tonic-gate 	pi->pi_router_list = dr;
20470Sstevel@tonic-gate 	dr->dr_physical = pi;
20480Sstevel@tonic-gate }
20490Sstevel@tonic-gate 
20500Sstevel@tonic-gate /*
20510Sstevel@tonic-gate  * Delete (unlink and free).
20520Sstevel@tonic-gate  * Handles delete of things that have not yet been inserted in the list
20530Sstevel@tonic-gate  * i.e. dr_physical is NULL.
20540Sstevel@tonic-gate  */
20550Sstevel@tonic-gate static void
20560Sstevel@tonic-gate router_delete(struct router *dr)
20570Sstevel@tonic-gate {
20580Sstevel@tonic-gate 	struct phyint *pi;
20590Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
20600Sstevel@tonic-gate 
20610Sstevel@tonic-gate 	if (debug & D_ROUTER) {
20620Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "router_delete(%s, %s, %u)\n",
20630Sstevel@tonic-gate 		    dr->dr_physical->pi_name,
20640Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&dr->dr_address,
20650Sstevel@tonic-gate 		    abuf, sizeof (abuf)), dr->dr_lifetime);
20660Sstevel@tonic-gate 	}
20670Sstevel@tonic-gate 	pi = dr->dr_physical;
2068*1577Sseb 	if (dr->dr_inkernel && (pi->pi_kernel_state & PI_PRESENT))
2069*1577Sseb 		router_delete_k(dr);
20700Sstevel@tonic-gate 
20710Sstevel@tonic-gate 	if (dr->dr_prev == NULL) {
20720Sstevel@tonic-gate 		if (pi != NULL)
20730Sstevel@tonic-gate 			pi->pi_router_list = dr->dr_next;
20740Sstevel@tonic-gate 	} else {
20750Sstevel@tonic-gate 		dr->dr_prev->dr_next = dr->dr_next;
20760Sstevel@tonic-gate 	}
20770Sstevel@tonic-gate 	if (dr->dr_next != NULL)
20780Sstevel@tonic-gate 		dr->dr_next->dr_prev = dr->dr_prev;
20790Sstevel@tonic-gate 	dr->dr_next = dr->dr_prev = NULL;
20800Sstevel@tonic-gate 	free(dr);
20810Sstevel@tonic-gate }
20820Sstevel@tonic-gate 
20830Sstevel@tonic-gate /*
20840Sstevel@tonic-gate  * Update the kernel to match dr_lifetime
20850Sstevel@tonic-gate  */
20860Sstevel@tonic-gate void
20870Sstevel@tonic-gate router_update_k(struct router *dr)
20880Sstevel@tonic-gate {
20890Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
20900Sstevel@tonic-gate 
20910Sstevel@tonic-gate 	if (debug & D_ROUTER) {
20920Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "router_update_k(%s, %s, %u)\n",
20930Sstevel@tonic-gate 		    dr->dr_physical->pi_name,
20940Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&dr->dr_address,
20950Sstevel@tonic-gate 		    abuf, sizeof (abuf)), dr->dr_lifetime);
20960Sstevel@tonic-gate 	}
20970Sstevel@tonic-gate 
20980Sstevel@tonic-gate 	if (dr->dr_lifetime == 0 && dr->dr_inkernel) {
20990Sstevel@tonic-gate 		/* Log a message when last router goes away */
21000Sstevel@tonic-gate 		if (dr->dr_physical->pi_num_k_routers == 1) {
21010Sstevel@tonic-gate 			logmsg(LOG_WARNING,
21020Sstevel@tonic-gate 			    "Last default router (%s) removed on %s\n",
21030Sstevel@tonic-gate 			    inet_ntop(AF_INET6, (void *)&dr->dr_address,
21040Sstevel@tonic-gate 			    abuf, sizeof (abuf)), dr->dr_physical->pi_name);
21050Sstevel@tonic-gate 		}
21060Sstevel@tonic-gate 		router_delete(dr);
2107*1577Sseb 	} else if (dr->dr_lifetime != 0 && !dr->dr_inkernel)
21080Sstevel@tonic-gate 		router_add_k(dr);
21090Sstevel@tonic-gate }
21100Sstevel@tonic-gate 
21110Sstevel@tonic-gate 
21120Sstevel@tonic-gate /*
21130Sstevel@tonic-gate  * Called with the number of millseconds elapsed since the last call.
21140Sstevel@tonic-gate  * Determines if any timeout event has occurred and
21150Sstevel@tonic-gate  * returns the number of milliseconds until the next timeout event.
21160Sstevel@tonic-gate  * Returns TIMER_INFINITY for "never".
21170Sstevel@tonic-gate  */
21180Sstevel@tonic-gate uint_t
21190Sstevel@tonic-gate router_timer(struct router *dr, uint_t elapsed)
21200Sstevel@tonic-gate {
21210Sstevel@tonic-gate 	uint_t next = TIMER_INFINITY;
21220Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
21230Sstevel@tonic-gate 
21240Sstevel@tonic-gate 	if (debug & D_ROUTER) {
21250Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "router_timer(%s, %s, %u, %d)\n",
21260Sstevel@tonic-gate 		    dr->dr_physical->pi_name,
21270Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&dr->dr_address,
21280Sstevel@tonic-gate 		    abuf, sizeof (abuf)), dr->dr_lifetime, elapsed);
21290Sstevel@tonic-gate 	}
21300Sstevel@tonic-gate 	if (dr->dr_lifetime <= elapsed) {
21310Sstevel@tonic-gate 		dr->dr_lifetime = 0;
21320Sstevel@tonic-gate 	} else {
21330Sstevel@tonic-gate 		dr->dr_lifetime -= elapsed;
21340Sstevel@tonic-gate 		if (dr->dr_lifetime < next)
21350Sstevel@tonic-gate 			next = dr->dr_lifetime;
21360Sstevel@tonic-gate 	}
21370Sstevel@tonic-gate 
21380Sstevel@tonic-gate 	if (dr->dr_lifetime == 0) {
21390Sstevel@tonic-gate 		/* Log a message when last router goes away */
21400Sstevel@tonic-gate 		if (dr->dr_physical->pi_num_k_routers == 1) {
21410Sstevel@tonic-gate 			logmsg(LOG_WARNING,
21420Sstevel@tonic-gate 			    "Last default router (%s) timed out on %s\n",
21430Sstevel@tonic-gate 			    inet_ntop(AF_INET6, (void *)&dr->dr_address,
21440Sstevel@tonic-gate 			    abuf, sizeof (abuf)), dr->dr_physical->pi_name);
21450Sstevel@tonic-gate 		}
21460Sstevel@tonic-gate 		router_delete(dr);
21470Sstevel@tonic-gate 	}
21480Sstevel@tonic-gate 	return (next);
21490Sstevel@tonic-gate }
21500Sstevel@tonic-gate 
21510Sstevel@tonic-gate /*
21520Sstevel@tonic-gate  * Add a default route to the kernel (unless the lifetime is zero)
21530Sstevel@tonic-gate  * Handles onlink default routes.
21540Sstevel@tonic-gate  */
21550Sstevel@tonic-gate static void
21560Sstevel@tonic-gate router_add_k(struct router *dr)
21570Sstevel@tonic-gate {
21580Sstevel@tonic-gate 	struct phyint *pi = dr->dr_physical;
21590Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
21600Sstevel@tonic-gate 	int rlen;
21610Sstevel@tonic-gate 
21620Sstevel@tonic-gate 	if (debug & D_ROUTER) {
21630Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "router_add_k(%s, %s, %u)\n",
21640Sstevel@tonic-gate 		    dr->dr_physical->pi_name,
21650Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&dr->dr_address,
21660Sstevel@tonic-gate 		    abuf, sizeof (abuf)), dr->dr_lifetime);
21670Sstevel@tonic-gate 	}
21680Sstevel@tonic-gate 
21690Sstevel@tonic-gate 	rta_gateway->sin6_addr = dr->dr_address;
21700Sstevel@tonic-gate 
21710Sstevel@tonic-gate 	rta_ifp->sdl_index = if_nametoindex(pi->pi_name);
21720Sstevel@tonic-gate 	if (rta_ifp->sdl_index == 0) {
21730Sstevel@tonic-gate 		logperror_pi(pi, "router_add_k: if_nametoindex");
21740Sstevel@tonic-gate 		return;
21750Sstevel@tonic-gate 	}
21760Sstevel@tonic-gate 
2177*1577Sseb 	rt_msg->rtm_flags = RTF_GATEWAY;
21780Sstevel@tonic-gate 	rt_msg->rtm_type = RTM_ADD;
21790Sstevel@tonic-gate 	rt_msg->rtm_seq = ++rtmseq;
21800Sstevel@tonic-gate 	rlen = write(rtsock, rt_msg, rt_msg->rtm_msglen);
21810Sstevel@tonic-gate 	if (rlen < 0) {
21820Sstevel@tonic-gate 		if (errno != EEXIST) {
21830Sstevel@tonic-gate 			logperror_pi(pi, "router_add_k: RTM_ADD");
21840Sstevel@tonic-gate 			return;
21850Sstevel@tonic-gate 		}
21860Sstevel@tonic-gate 	} else if (rlen < rt_msg->rtm_msglen) {
21870Sstevel@tonic-gate 		logmsg(LOG_ERR, "router_add_k: write to routing socket got "
21880Sstevel@tonic-gate 		    "only %d for rlen (interface %s)\n", rlen, pi->pi_name);
21890Sstevel@tonic-gate 		return;
21900Sstevel@tonic-gate 	}
21910Sstevel@tonic-gate 	dr->dr_inkernel = _B_TRUE;
2192*1577Sseb 	pi->pi_num_k_routers++;
21930Sstevel@tonic-gate }
21940Sstevel@tonic-gate 
21950Sstevel@tonic-gate /*
21960Sstevel@tonic-gate  * Delete a route from the kernel.
21970Sstevel@tonic-gate  * Handles onlink default routes.
21980Sstevel@tonic-gate  */
21990Sstevel@tonic-gate static void
22000Sstevel@tonic-gate router_delete_k(struct router *dr)
22010Sstevel@tonic-gate {
22020Sstevel@tonic-gate 	struct phyint *pi = dr->dr_physical;
22030Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
22040Sstevel@tonic-gate 	int rlen;
22050Sstevel@tonic-gate 
22060Sstevel@tonic-gate 	if (debug & D_ROUTER) {
22070Sstevel@tonic-gate 		logmsg(LOG_DEBUG, "router_delete_k(%s, %s, %u)\n",
22080Sstevel@tonic-gate 		    dr->dr_physical->pi_name,
22090Sstevel@tonic-gate 		    inet_ntop(AF_INET6, (void *)&dr->dr_address,
22100Sstevel@tonic-gate 		    abuf, sizeof (abuf)), dr->dr_lifetime);
22110Sstevel@tonic-gate 	}
22120Sstevel@tonic-gate 
22130Sstevel@tonic-gate 	rta_gateway->sin6_addr = dr->dr_address;
22140Sstevel@tonic-gate 
22150Sstevel@tonic-gate 	rta_ifp->sdl_index = if_nametoindex(pi->pi_name);
22160Sstevel@tonic-gate 	if (rta_ifp->sdl_index == 0) {
22170Sstevel@tonic-gate 		logperror_pi(pi, "router_delete_k: if_nametoindex");
22180Sstevel@tonic-gate 		return;
22190Sstevel@tonic-gate 	}
22200Sstevel@tonic-gate 
2221*1577Sseb 	rt_msg->rtm_flags = RTF_GATEWAY;
22220Sstevel@tonic-gate 	rt_msg->rtm_type = RTM_DELETE;
22230Sstevel@tonic-gate 	rt_msg->rtm_seq = ++rtmseq;
22240Sstevel@tonic-gate 	rlen = write(rtsock, rt_msg, rt_msg->rtm_msglen);
22250Sstevel@tonic-gate 	if (rlen < 0) {
22260Sstevel@tonic-gate 		if (errno != ESRCH) {
22270Sstevel@tonic-gate 			logperror_pi(pi, "router_delete_k: RTM_DELETE");
22280Sstevel@tonic-gate 		}
22290Sstevel@tonic-gate 	} else if (rlen < rt_msg->rtm_msglen) {
22300Sstevel@tonic-gate 		logmsg(LOG_ERR, "router_delete_k: write to routing socket got "
22310Sstevel@tonic-gate 		    "only %d for rlen (interface %s)\n", rlen, pi->pi_name);
22320Sstevel@tonic-gate 	}
22330Sstevel@tonic-gate 	dr->dr_inkernel = _B_FALSE;
2234*1577Sseb 	pi->pi_num_k_routers--;
22350Sstevel@tonic-gate }
22360Sstevel@tonic-gate 
22370Sstevel@tonic-gate 
22380Sstevel@tonic-gate static void
22390Sstevel@tonic-gate router_print(struct router *dr)
22400Sstevel@tonic-gate {
22410Sstevel@tonic-gate 	char abuf[INET6_ADDRSTRLEN];
22420Sstevel@tonic-gate 
2243*1577Sseb 	logmsg(LOG_DEBUG, "Router %s on %s inkernel %d lifetime %u\n",
2244*1577Sseb 	    inet_ntop(AF_INET6, (void *)&dr->dr_address, abuf, sizeof (abuf)),
2245*1577Sseb 	    dr->dr_physical->pi_name, dr->dr_inkernel, dr->dr_lifetime);
22460Sstevel@tonic-gate }
22470Sstevel@tonic-gate 
22480Sstevel@tonic-gate 
22490Sstevel@tonic-gate void
22500Sstevel@tonic-gate phyint_print_all(void)
22510Sstevel@tonic-gate {
22520Sstevel@tonic-gate 	struct phyint *pi;
22530Sstevel@tonic-gate 
22540Sstevel@tonic-gate 	for (pi = phyints; pi != NULL; pi = pi->pi_next) {
22550Sstevel@tonic-gate 		phyint_print(pi);
22560Sstevel@tonic-gate 	}
22570Sstevel@tonic-gate }
22580Sstevel@tonic-gate 
22590Sstevel@tonic-gate void
22600Sstevel@tonic-gate phyint_cleanup(pi)
22610Sstevel@tonic-gate 	struct phyint *pi;
22620Sstevel@tonic-gate {
22630Sstevel@tonic-gate 	pi->pi_state = 0;
22640Sstevel@tonic-gate 	pi->pi_kernel_state = 0;
22650Sstevel@tonic-gate 
22660Sstevel@tonic-gate 	if (pi->pi_AdvSendAdvertisements) {
22670Sstevel@tonic-gate 		check_to_advertise(pi, ADV_OFF);
22680Sstevel@tonic-gate 	} else {
22690Sstevel@tonic-gate 		check_to_solicit(pi, SOLICIT_OFF);
22700Sstevel@tonic-gate 	}
22710Sstevel@tonic-gate 
22720Sstevel@tonic-gate 	while (pi->pi_router_list)
22730Sstevel@tonic-gate 		router_delete(pi->pi_router_list);
22740Sstevel@tonic-gate 	(void) poll_remove(pi->pi_sock);
22750Sstevel@tonic-gate 	(void) close(pi->pi_sock);
22760Sstevel@tonic-gate 	pi->pi_sock = -1;
22770Sstevel@tonic-gate }
2278