10Sstevel@tonic-gate /*
20Sstevel@tonic-gate  * CDDL HEADER START
30Sstevel@tonic-gate  *
40Sstevel@tonic-gate  * The contents of this file are subject to the terms of the
50Sstevel@tonic-gate  * Common Development and Distribution License, Version 1.0 only
60Sstevel@tonic-gate  * (the "License").  You may not use this file except in compliance
70Sstevel@tonic-gate  * with the License.
80Sstevel@tonic-gate  *
90Sstevel@tonic-gate  * You can obtain a copy of the license at usr/src/OPENSOLARIS.LICENSE
100Sstevel@tonic-gate  * or http://www.opensolaris.org/os/licensing.
110Sstevel@tonic-gate  * See the License for the specific language governing permissions
120Sstevel@tonic-gate  * and limitations under the License.
130Sstevel@tonic-gate  *
140Sstevel@tonic-gate  * When distributing Covered Code, include this CDDL HEADER in each
150Sstevel@tonic-gate  * file and include the License file at usr/src/OPENSOLARIS.LICENSE.
160Sstevel@tonic-gate  * If applicable, add the following below this CDDL HEADER, with the
170Sstevel@tonic-gate  * fields enclosed by brackets "[]" replaced with your own identifying
180Sstevel@tonic-gate  * information: Portions Copyright [yyyy] [name of copyright owner]
190Sstevel@tonic-gate  *
200Sstevel@tonic-gate  * CDDL HEADER END
210Sstevel@tonic-gate  */
220Sstevel@tonic-gate /*
23252Svi117747  * Copyright 2005 Sun Microsystems, Inc.  All rights reserved.
240Sstevel@tonic-gate  * Use is subject to license terms.
250Sstevel@tonic-gate  */
260Sstevel@tonic-gate 
270Sstevel@tonic-gate #pragma ident	"%Z%%M%	%I%	%E% SMI"
280Sstevel@tonic-gate 
290Sstevel@tonic-gate #include <sys/types.h>
300Sstevel@tonic-gate #include <sys/systm.h>
310Sstevel@tonic-gate #include <sys/stream.h>
320Sstevel@tonic-gate #include <sys/cmn_err.h>
330Sstevel@tonic-gate #include <sys/socket.h>
340Sstevel@tonic-gate #include <sys/kmem.h>
350Sstevel@tonic-gate #include <sys/strsubr.h>
360Sstevel@tonic-gate #include <sys/strsun.h>
370Sstevel@tonic-gate 
380Sstevel@tonic-gate #include <netinet/in.h>
390Sstevel@tonic-gate #include <netinet/ip6.h>
400Sstevel@tonic-gate #include <netinet/sctp.h>
410Sstevel@tonic-gate 
420Sstevel@tonic-gate #include <inet/common.h>
430Sstevel@tonic-gate #include <inet/ip.h>
440Sstevel@tonic-gate #include <inet/ip6.h>
450Sstevel@tonic-gate #include <inet/mib2.h>
460Sstevel@tonic-gate #include "sctp_impl.h"
470Sstevel@tonic-gate #include "sctp_asconf.h"
480Sstevel@tonic-gate #include "sctp_addr.h"
490Sstevel@tonic-gate 
500Sstevel@tonic-gate typedef struct sctp_asconf_s {
51*852Svi117747 	mblk_t		*head;
52*852Svi117747 	uint32_t 	cid;
530Sstevel@tonic-gate } sctp_asconf_t;
540Sstevel@tonic-gate 
550Sstevel@tonic-gate /*
56*852Svi117747  * This is only used on a clustered node to maintain pre-allocated buffer info.
57*852Svi117747  * before sending an ASCONF chunk. The reason for pre-allocation is we don't
58*852Svi117747  * want to fail allocating memory when we get then ASCONF-ACK in order to
59*852Svi117747  * update the clustering subsystem's state for this assoc.
60*852Svi117747  */
61*852Svi117747 typedef struct sctp_cl_ainfo_s {
62*852Svi117747 	uchar_t	*sctp_cl_alist;
63*852Svi117747 	size_t	sctp_cl_asize;
64*852Svi117747 	uchar_t	*sctp_cl_dlist;
65*852Svi117747 	size_t	sctp_cl_dsize;
66*852Svi117747 } sctp_cl_ainfo_t;
67*852Svi117747 
68*852Svi117747 /*
690Sstevel@tonic-gate  * The ASCONF chunk per-parameter request interface. ph is the
700Sstevel@tonic-gate  * parameter header for the parameter in the request, and cid
710Sstevel@tonic-gate  * is the parameters correlation ID. cont should be set to 1
720Sstevel@tonic-gate  * if the ASCONF framework should continue processing request
730Sstevel@tonic-gate  * parameters following this one, or 0 if it should stop. If
740Sstevel@tonic-gate  * cont is -1, this indicates complete memory depletion, which
750Sstevel@tonic-gate  * will cause the ASCONF framework to abort building a reply. If
760Sstevel@tonic-gate  * act is 1, the callback should take whatever action it needs
770Sstevel@tonic-gate  * to fulfil this request. If act is 0, this request has already
780Sstevel@tonic-gate  * been processed, so the callback should only verify and pass
790Sstevel@tonic-gate  * back error parameters, and not take any action.
800Sstevel@tonic-gate  *
810Sstevel@tonic-gate  * The callback should return an mblk with any reply enclosed,
820Sstevel@tonic-gate  * with the correlation ID in the first four bytes of the
830Sstevel@tonic-gate  * message. A NULL return implies implicit success to the
840Sstevel@tonic-gate  * requestor.
850Sstevel@tonic-gate  */
860Sstevel@tonic-gate typedef mblk_t *sctp_asconf_func_t(sctp_t *, sctp_parm_hdr_t *ph, uint32_t cid,
87*852Svi117747     sctp_faddr_t *, int *cont, int act, in6_addr_t *addr);
880Sstevel@tonic-gate 
890Sstevel@tonic-gate /*
900Sstevel@tonic-gate  * The ASCONF chunk per-parameter ACK interface. ph is the parameter
910Sstevel@tonic-gate  * header for the parameter returned in the ACK, and oph is the
920Sstevel@tonic-gate  * original parameter sent out in the ASCONF request.
930Sstevel@tonic-gate  * If the peer implicitly responded OK (by not including an
940Sstevel@tonic-gate  * explicit OK for the request), ph will be NULL.
950Sstevel@tonic-gate  * ph can also point to an Unrecognized Parameter parameter,
960Sstevel@tonic-gate  * in which case the peer did not understand the request
970Sstevel@tonic-gate  * parameter.
980Sstevel@tonic-gate  *
990Sstevel@tonic-gate  * ph and oph parameter headers are in host byte order. Encapsulated
1000Sstevel@tonic-gate  * parameters will still be in network byte order.
1010Sstevel@tonic-gate  */
1020Sstevel@tonic-gate typedef void sctp_asconf_ack_func_t(sctp_t *, sctp_parm_hdr_t *ph,
103*852Svi117747     sctp_parm_hdr_t *oph, sctp_faddr_t *, in6_addr_t *addr);
1040Sstevel@tonic-gate 
1050Sstevel@tonic-gate typedef struct {
1060Sstevel@tonic-gate 	uint16_t id;
1070Sstevel@tonic-gate 	sctp_asconf_func_t *asconf;
1080Sstevel@tonic-gate 	sctp_asconf_ack_func_t *asconf_ack;
1090Sstevel@tonic-gate } dispatch_t;
1100Sstevel@tonic-gate 
1110Sstevel@tonic-gate static sctp_asconf_func_t sctp_addip_req, sctp_setprim_req,
1120Sstevel@tonic-gate     sctp_asconf_unrec_parm;
1130Sstevel@tonic-gate 
1140Sstevel@tonic-gate static sctp_asconf_ack_func_t sctp_addip_ack, sctp_setprim_ack,
1150Sstevel@tonic-gate     sctp_asconf_ack_unrec_parm;
1160Sstevel@tonic-gate 
1170Sstevel@tonic-gate static const dispatch_t sctp_asconf_dispatch_tbl[] = {
1180Sstevel@tonic-gate /*	ID			ASCONF			ASCONF_ACK */
1190Sstevel@tonic-gate 	{ PARM_ADD_IP,		sctp_addip_req,		sctp_addip_ack },
1200Sstevel@tonic-gate 	{ PARM_DEL_IP,		sctp_addip_req,		sctp_addip_ack },
1210Sstevel@tonic-gate 	{ PARM_SET_PRIMARY,	sctp_setprim_req,	sctp_setprim_ack }
1220Sstevel@tonic-gate };
1230Sstevel@tonic-gate 
1240Sstevel@tonic-gate static const dispatch_t sctp_asconf_default_dispatch = {
1250Sstevel@tonic-gate 	0, sctp_asconf_unrec_parm, sctp_asconf_ack_unrec_parm
1260Sstevel@tonic-gate };
1270Sstevel@tonic-gate 
1280Sstevel@tonic-gate /*
1290Sstevel@tonic-gate  * ASCONF framework
1300Sstevel@tonic-gate  */
1310Sstevel@tonic-gate 
1320Sstevel@tonic-gate static const dispatch_t *
1330Sstevel@tonic-gate sctp_lookup_asconf_dispatch(int id)
1340Sstevel@tonic-gate {
1350Sstevel@tonic-gate 	int i;
1360Sstevel@tonic-gate 
1370Sstevel@tonic-gate 	for (i = 0; i < A_CNT(sctp_asconf_dispatch_tbl); i++) {
1380Sstevel@tonic-gate 		if (sctp_asconf_dispatch_tbl[i].id == id) {
1390Sstevel@tonic-gate 			return (sctp_asconf_dispatch_tbl + i);
1400Sstevel@tonic-gate 		}
1410Sstevel@tonic-gate 	}
1420Sstevel@tonic-gate 
1430Sstevel@tonic-gate 	return (&sctp_asconf_default_dispatch);
1440Sstevel@tonic-gate }
1450Sstevel@tonic-gate 
1460Sstevel@tonic-gate /*
1470Sstevel@tonic-gate  * Frees mp on failure
1480Sstevel@tonic-gate  */
1490Sstevel@tonic-gate static mblk_t *
1500Sstevel@tonic-gate sctp_asconf_prepend_errwrap(mblk_t *mp, uint32_t cid)
1510Sstevel@tonic-gate {
1520Sstevel@tonic-gate 	mblk_t		*wmp;
1530Sstevel@tonic-gate 	sctp_parm_hdr_t	*wph;
1540Sstevel@tonic-gate 
1550Sstevel@tonic-gate 	/* Prepend a wrapper err cause ind param */
1560Sstevel@tonic-gate 	wmp = allocb(sizeof (*wph) + sizeof (cid), BPRI_MED);
1570Sstevel@tonic-gate 	if (wmp == NULL) {
1580Sstevel@tonic-gate 		freemsg(mp);
1590Sstevel@tonic-gate 		return (NULL);
1600Sstevel@tonic-gate 	}
1610Sstevel@tonic-gate 	wmp->b_wptr += sizeof (*wph) + sizeof (cid);
1620Sstevel@tonic-gate 	wph = (sctp_parm_hdr_t *)wmp->b_rptr;
1630Sstevel@tonic-gate 	wph->sph_type = htons(PARM_ERROR_IND);
1640Sstevel@tonic-gate 	wph->sph_len = htons(msgdsize(mp) + sizeof (*wph) + sizeof (cid));
1650Sstevel@tonic-gate 	bcopy(&cid, wph + 1, sizeof (uint32_t));
1660Sstevel@tonic-gate 
1670Sstevel@tonic-gate 	wmp->b_cont = mp;
1680Sstevel@tonic-gate 	return (wmp);
1690Sstevel@tonic-gate }
1700Sstevel@tonic-gate 
1710Sstevel@tonic-gate /*ARGSUSED*/
1720Sstevel@tonic-gate static mblk_t *
1730Sstevel@tonic-gate sctp_asconf_unrec_parm(sctp_t *sctp, sctp_parm_hdr_t *ph, uint32_t cid,
174*852Svi117747     sctp_faddr_t *fp, int *cont, int act, in6_addr_t *addr)
1750Sstevel@tonic-gate {
1760Sstevel@tonic-gate 	mblk_t *mp = NULL;
1770Sstevel@tonic-gate 
1780Sstevel@tonic-gate 	/* Unrecognized param; check the high order bits */
1790Sstevel@tonic-gate 	if ((ph->sph_type & 0xc000) == 0xc000) {
1800Sstevel@tonic-gate 		/* report unrecognized param, and keep processing */
1810Sstevel@tonic-gate 		sctp_add_unrec_parm(ph, &mp);
1820Sstevel@tonic-gate 		if (mp == NULL) {
1830Sstevel@tonic-gate 			*cont = -1;
1840Sstevel@tonic-gate 			return (NULL);
1850Sstevel@tonic-gate 		}
1860Sstevel@tonic-gate 		/* Prepend a the CID and a wrapper err cause ind param */
1870Sstevel@tonic-gate 		mp = sctp_asconf_prepend_errwrap(mp, cid);
1880Sstevel@tonic-gate 		if (mp == NULL) {
1890Sstevel@tonic-gate 			*cont = -1;
1900Sstevel@tonic-gate 			return (NULL);
1910Sstevel@tonic-gate 		}
1920Sstevel@tonic-gate 
1930Sstevel@tonic-gate 		*cont = 1;
1940Sstevel@tonic-gate 		return (mp);
1950Sstevel@tonic-gate 	}
1960Sstevel@tonic-gate 	if (ph->sph_type & 0x4000) {
1970Sstevel@tonic-gate 		/* Stop processing and drop; report unrecognized param */
1980Sstevel@tonic-gate 		sctp_add_unrec_parm(ph, &mp);
1990Sstevel@tonic-gate 		if (mp == NULL) {
2000Sstevel@tonic-gate 			*cont = -1;
2010Sstevel@tonic-gate 			return (NULL);
2020Sstevel@tonic-gate 		}
2030Sstevel@tonic-gate 		/* Prepend a the CID and a wrapper err cause ind param */
2040Sstevel@tonic-gate 		mp = sctp_asconf_prepend_errwrap(mp, cid);
2050Sstevel@tonic-gate 		if (mp == NULL) {
2060Sstevel@tonic-gate 			*cont = -1;
2070Sstevel@tonic-gate 			return (NULL);
2080Sstevel@tonic-gate 		}
2090Sstevel@tonic-gate 
2100Sstevel@tonic-gate 		*cont = 0;
2110Sstevel@tonic-gate 		return (mp);
2120Sstevel@tonic-gate 	}
2130Sstevel@tonic-gate 	if (ph->sph_type & 0x8000) {
2140Sstevel@tonic-gate 		/* skip and continue processing */
2150Sstevel@tonic-gate 		*cont = 1;
2160Sstevel@tonic-gate 		return (NULL);
2170Sstevel@tonic-gate 	}
2180Sstevel@tonic-gate 
2190Sstevel@tonic-gate 	/* 2 high bits are clear; stop processing and drop packet */
2200Sstevel@tonic-gate 	*cont = 0;
2210Sstevel@tonic-gate 	return (NULL);
2220Sstevel@tonic-gate }
2230Sstevel@tonic-gate 
2240Sstevel@tonic-gate /*ARGSUSED*/
2250Sstevel@tonic-gate static void
2260Sstevel@tonic-gate sctp_asconf_ack_unrec_parm(sctp_t *sctp, sctp_parm_hdr_t *ph,
227*852Svi117747     sctp_parm_hdr_t *oph, sctp_faddr_t *fp, in6_addr_t *laddr)
2280Sstevel@tonic-gate {
2290Sstevel@tonic-gate 	ASSERT(ph);
2300Sstevel@tonic-gate 	sctp_error_event(sctp, (sctp_chunk_hdr_t *)ph);
2310Sstevel@tonic-gate }
2320Sstevel@tonic-gate 
2330Sstevel@tonic-gate static void
2340Sstevel@tonic-gate sctp_asconf_init(sctp_asconf_t *asc)
2350Sstevel@tonic-gate {
2360Sstevel@tonic-gate 	ASSERT(asc != NULL);
2370Sstevel@tonic-gate 
2380Sstevel@tonic-gate 	asc->head = NULL;
2390Sstevel@tonic-gate 	asc->cid = 0;
2400Sstevel@tonic-gate }
2410Sstevel@tonic-gate 
2420Sstevel@tonic-gate static int
2430Sstevel@tonic-gate sctp_asconf_add(sctp_asconf_t *asc, mblk_t *mp)
2440Sstevel@tonic-gate {
2450Sstevel@tonic-gate 	uint32_t *cp;
2460Sstevel@tonic-gate 
2470Sstevel@tonic-gate 	/* XXX can't exceed MTU */
2480Sstevel@tonic-gate 
2490Sstevel@tonic-gate 	cp = (uint32_t *)(mp->b_rptr + sizeof (sctp_parm_hdr_t));
2500Sstevel@tonic-gate 	*cp = asc->cid++;
2510Sstevel@tonic-gate 
2520Sstevel@tonic-gate 	if (asc->head == NULL)
2530Sstevel@tonic-gate 		asc->head = mp;
2540Sstevel@tonic-gate 	else
2550Sstevel@tonic-gate 		linkb(asc->head, mp);
2560Sstevel@tonic-gate 
2570Sstevel@tonic-gate 	return (0);
2580Sstevel@tonic-gate }
2590Sstevel@tonic-gate 
2600Sstevel@tonic-gate static void
2610Sstevel@tonic-gate sctp_asconf_destroy(sctp_asconf_t *asc)
2620Sstevel@tonic-gate {
2630Sstevel@tonic-gate 	if (asc->head != NULL) {
2640Sstevel@tonic-gate 		freemsg(asc->head);
2650Sstevel@tonic-gate 		asc->head = NULL;
2660Sstevel@tonic-gate 	}
2670Sstevel@tonic-gate 	asc->cid = 0;
2680Sstevel@tonic-gate }
2690Sstevel@tonic-gate 
2700Sstevel@tonic-gate static int
271*852Svi117747 sctp_asconf_send(sctp_t *sctp, sctp_asconf_t *asc, sctp_faddr_t *fp,
272*852Svi117747     sctp_cl_ainfo_t *ainfo)
2730Sstevel@tonic-gate {
2740Sstevel@tonic-gate 	mblk_t			*mp, *nmp;
2750Sstevel@tonic-gate 	sctp_chunk_hdr_t	*ch;
2760Sstevel@tonic-gate 	boolean_t		isv4;
2770Sstevel@tonic-gate 	size_t			msgsize;
2780Sstevel@tonic-gate 
2790Sstevel@tonic-gate 	ASSERT(asc != NULL && asc->head != NULL);
2800Sstevel@tonic-gate 
2810Sstevel@tonic-gate 	isv4 = (fp != NULL) ? fp->isv4 : sctp->sctp_current->isv4;
2820Sstevel@tonic-gate 
2830Sstevel@tonic-gate 	/* SCTP chunk header + Serial Number + Address Param TLV */
2840Sstevel@tonic-gate 	msgsize = sizeof (*ch) + sizeof (uint32_t) +
2850Sstevel@tonic-gate 	    (isv4 ? PARM_ADDR4_LEN : PARM_ADDR6_LEN);
2860Sstevel@tonic-gate 
2870Sstevel@tonic-gate 	mp = allocb(msgsize, BPRI_MED);
2880Sstevel@tonic-gate 	if (mp == NULL)
2890Sstevel@tonic-gate 		return (ENOMEM);
2900Sstevel@tonic-gate 
2910Sstevel@tonic-gate 	mp->b_wptr += msgsize;
2920Sstevel@tonic-gate 	mp->b_cont = asc->head;
2930Sstevel@tonic-gate 
2940Sstevel@tonic-gate 	ch = (sctp_chunk_hdr_t *)mp->b_rptr;
2950Sstevel@tonic-gate 	ch->sch_id = CHUNK_ASCONF;
2960Sstevel@tonic-gate 	ch->sch_flags = 0;
2970Sstevel@tonic-gate 	ch->sch_len = htons(msgdsize(mp));
2980Sstevel@tonic-gate 
2990Sstevel@tonic-gate 	nmp = msgpullup(mp, -1);
3000Sstevel@tonic-gate 	if (nmp == NULL) {
3010Sstevel@tonic-gate 		freeb(mp);
3020Sstevel@tonic-gate 		return (ENOMEM);
3030Sstevel@tonic-gate 	}
3040Sstevel@tonic-gate 
305*852Svi117747 	/*
306*852Svi117747 	 * Stash the address list and the count so that when the operation
307*852Svi117747 	 * completes, i.e. when as get an ACK, we can update the clustering's
308*852Svi117747 	 * state for this association.
309*852Svi117747 	 */
310*852Svi117747 	if (ainfo != NULL) {
311*852Svi117747 		ASSERT(cl_sctp_assoc_change != NULL);
312*852Svi117747 		ASSERT(nmp->b_prev == NULL);
313*852Svi117747 		nmp->b_prev = (mblk_t *)ainfo;
314*852Svi117747 	}
3150Sstevel@tonic-gate 	/* Clean up the temporary mblk chain */
3160Sstevel@tonic-gate 	freemsg(mp);
3170Sstevel@tonic-gate 	asc->head = NULL;
3180Sstevel@tonic-gate 	asc->cid = 0;
3190Sstevel@tonic-gate 
3200Sstevel@tonic-gate 	/* Queue it ... */
3210Sstevel@tonic-gate 	if (sctp->sctp_cxmit_list == NULL) {
3220Sstevel@tonic-gate 		sctp->sctp_cxmit_list = nmp;
3230Sstevel@tonic-gate 	} else {
3240Sstevel@tonic-gate 		linkb(sctp->sctp_cxmit_list, nmp);
3250Sstevel@tonic-gate 	}
3260Sstevel@tonic-gate 
3270Sstevel@tonic-gate 	BUMP_LOCAL(sctp->sctp_obchunks);
3280Sstevel@tonic-gate 
3290Sstevel@tonic-gate 	/* And try to send it. */
3300Sstevel@tonic-gate 	sctp_wput_asconf(sctp, fp);
3310Sstevel@tonic-gate 
3320Sstevel@tonic-gate 	return (0);
3330Sstevel@tonic-gate }
3340Sstevel@tonic-gate 
3350Sstevel@tonic-gate /*
3360Sstevel@tonic-gate  * If the peer does not understand an ASCONF chunk, we simply
3370Sstevel@tonic-gate  * clear out the cxmit_list, since we can send nothing further
3380Sstevel@tonic-gate  * that the peer will understand.
3390Sstevel@tonic-gate  *
3400Sstevel@tonic-gate  * Assumes chunk length has already been checked.
3410Sstevel@tonic-gate  */
3420Sstevel@tonic-gate /*ARGSUSED*/
3430Sstevel@tonic-gate void
344*852Svi117747 sctp_asconf_free_cxmit(sctp_t *sctp, sctp_chunk_hdr_t *ch)
3450Sstevel@tonic-gate {
346*852Svi117747 	mblk_t		*mp;
347*852Svi117747 	mblk_t		*mp1;
348*852Svi117747 	sctp_cl_ainfo_t	*ainfo;
349*852Svi117747 
3500Sstevel@tonic-gate 	if (sctp->sctp_cxmit_list == NULL) {
3510Sstevel@tonic-gate 		/* Nothing pending */
3520Sstevel@tonic-gate 		return;
3530Sstevel@tonic-gate 	}
3540Sstevel@tonic-gate 
355*852Svi117747 	mp = sctp->sctp_cxmit_list;
356*852Svi117747 	while (mp != NULL) {
357*852Svi117747 		mp1 = mp->b_cont;
358*852Svi117747 		mp->b_cont = NULL;
359*852Svi117747 		if (mp->b_prev != NULL) {
360*852Svi117747 			ainfo = (sctp_cl_ainfo_t *)mp->b_prev;
361*852Svi117747 			mp->b_prev = NULL;
362*852Svi117747 			kmem_free(ainfo->sctp_cl_alist, ainfo->sctp_cl_asize);
363*852Svi117747 			kmem_free(ainfo->sctp_cl_dlist, ainfo->sctp_cl_dsize);
364*852Svi117747 			kmem_free(ainfo, sizeof (*ainfo));
365*852Svi117747 		}
366*852Svi117747 		freeb(mp);
367*852Svi117747 		mp = mp1;
368*852Svi117747 	}
3690Sstevel@tonic-gate 	sctp->sctp_cxmit_list = NULL;
3700Sstevel@tonic-gate }
3710Sstevel@tonic-gate 
3720Sstevel@tonic-gate void
3730Sstevel@tonic-gate sctp_input_asconf(sctp_t *sctp, sctp_chunk_hdr_t *ch, sctp_faddr_t *fp)
3740Sstevel@tonic-gate {
3750Sstevel@tonic-gate 	const dispatch_t	*dp;
3760Sstevel@tonic-gate 	mblk_t			*hmp;
3770Sstevel@tonic-gate 	mblk_t			*mp;
3780Sstevel@tonic-gate 	uint32_t		*idp;
3790Sstevel@tonic-gate 	uint32_t		*hidp;
3800Sstevel@tonic-gate 	ssize_t			rlen;
3810Sstevel@tonic-gate 	sctp_parm_hdr_t		*ph;
3820Sstevel@tonic-gate 	sctp_chunk_hdr_t	*ach;
3830Sstevel@tonic-gate 	int			cont;
3840Sstevel@tonic-gate 	int			act;
3850Sstevel@tonic-gate 	uint16_t		plen;
386*852Svi117747 	uchar_t			*alist = NULL;
387*852Svi117747 	size_t			asize = 0;
388*852Svi117747 	uchar_t			*dlist = NULL;
389*852Svi117747 	size_t			dsize = 0;
390*852Svi117747 	uchar_t			*aptr = NULL;
391*852Svi117747 	uchar_t			*dptr = NULL;
392*852Svi117747 	int			acount = 0;
393*852Svi117747 	int			dcount = 0;
3940Sstevel@tonic-gate 
3950Sstevel@tonic-gate 	ASSERT(ch->sch_id == CHUNK_ASCONF);
3960Sstevel@tonic-gate 
3970Sstevel@tonic-gate 	idp = (uint32_t *)(ch + 1);
3980Sstevel@tonic-gate 	rlen = ntohs(ch->sch_len) - sizeof (*ch) - sizeof (*idp);
3990Sstevel@tonic-gate 
4000Sstevel@tonic-gate 	if (rlen < 0 || rlen < sizeof (*idp)) {
4010Sstevel@tonic-gate 		/* nothing there; bail out */
4020Sstevel@tonic-gate 		return;
4030Sstevel@tonic-gate 	}
4040Sstevel@tonic-gate 
4050Sstevel@tonic-gate 	/* Check for duplicates */
4060Sstevel@tonic-gate 	*idp = ntohl(*idp);
4070Sstevel@tonic-gate 	if (*idp == (sctp->sctp_fcsn + 1)) {
4080Sstevel@tonic-gate 		act = 1;
4090Sstevel@tonic-gate 	} else if (*idp == sctp->sctp_fcsn) {
4100Sstevel@tonic-gate 		act = 0;
4110Sstevel@tonic-gate 	} else {
4120Sstevel@tonic-gate 		/* stale or malicious packet; drop */
4130Sstevel@tonic-gate 		return;
4140Sstevel@tonic-gate 	}
4150Sstevel@tonic-gate 
4160Sstevel@tonic-gate 	/* Create the ASCONF_ACK header */
4170Sstevel@tonic-gate 	hmp = sctp_make_mp(sctp, fp, sizeof (*ach) + sizeof (*idp));
4180Sstevel@tonic-gate 	if (hmp == NULL) {
4190Sstevel@tonic-gate 		/* Let the peer retransmit */
4200Sstevel@tonic-gate 		return;
4210Sstevel@tonic-gate 	}
4220Sstevel@tonic-gate 	ach = (sctp_chunk_hdr_t *)hmp->b_wptr;
4230Sstevel@tonic-gate 	ach->sch_id = CHUNK_ASCONF_ACK;
4240Sstevel@tonic-gate 	ach->sch_flags = 0;
4250Sstevel@tonic-gate 	/* Set the length later */
4260Sstevel@tonic-gate 	hidp = (uint32_t *)(ach + 1);
4270Sstevel@tonic-gate 	*hidp = htonl(*idp);
4280Sstevel@tonic-gate 	hmp->b_wptr = (uchar_t *)(hidp + 1);
4290Sstevel@tonic-gate 
4300Sstevel@tonic-gate 	/* Move to the Address Parameter */
4310Sstevel@tonic-gate 	ph = (sctp_parm_hdr_t *)(idp + 1);
4320Sstevel@tonic-gate 	if (rlen <= ntohs(ph->sph_len)) {
4330Sstevel@tonic-gate 		freeb(hmp);
4340Sstevel@tonic-gate 		return;
4350Sstevel@tonic-gate 	}
4360Sstevel@tonic-gate 
4370Sstevel@tonic-gate 	/*
4380Sstevel@tonic-gate 	 * We already have the association here, so this address parameter
4390Sstevel@tonic-gate 	 * doesn't seem to be very useful, should we make sure this is part
4400Sstevel@tonic-gate 	 * of the association and send an error, if not?
4410Sstevel@tonic-gate 	 * Ignore it for now.
4420Sstevel@tonic-gate 	 */
4430Sstevel@tonic-gate 	rlen -= ntohs(ph->sph_len);
4440Sstevel@tonic-gate 	ph = (sctp_parm_hdr_t *)((char *)ph + ntohs(ph->sph_len));
445*852Svi117747 
446*852Svi117747 	/*
447*852Svi117747 	 * We need to pre-allocate buffer before processing the ASCONF
448*852Svi117747 	 * chunk. We don't want to fail allocating buffers after processing
449*852Svi117747 	 * the ASCONF chunk. So, we walk the list and get the number of
450*852Svi117747 	 * addresses added and/or deleted.
451*852Svi117747 	 */
452*852Svi117747 	if (cl_sctp_assoc_change != NULL) {
453*852Svi117747 		sctp_parm_hdr_t	*oph = ph;
454*852Svi117747 		ssize_t		orlen = rlen;
455*852Svi117747 
456*852Svi117747 		/*
457*852Svi117747 		 * This not very efficient, but there is no better way of
458*852Svi117747 		 * doing it.  It should be fine since normally the param list
459*852Svi117747 		 * will not be very long.
460*852Svi117747 		 */
461*852Svi117747 		while (orlen > 0) {
462*852Svi117747 			/* Sanity checks */
463*852Svi117747 			if (orlen < sizeof (*oph))
464*852Svi117747 				break;
465*852Svi117747 			plen = ntohs(oph->sph_len);
466*852Svi117747 			if (plen < sizeof (*oph) || plen > orlen)
467*852Svi117747 				break;
468*852Svi117747 			if (oph->sph_type == htons(PARM_ADD_IP))
469*852Svi117747 				acount++;
470*852Svi117747 			if (oph->sph_type == htons(PARM_DEL_IP))
471*852Svi117747 				dcount++;
472*852Svi117747 			oph = sctp_next_parm(oph, &orlen);
473*852Svi117747 			if (oph == NULL)
474*852Svi117747 				break;
475*852Svi117747 		}
476*852Svi117747 		if (acount > 0 || dcount > 0) {
477*852Svi117747 			if (acount > 0) {
478*852Svi117747 				asize = sizeof (in6_addr_t) * acount;
479*852Svi117747 				alist = kmem_alloc(asize, KM_NOSLEEP);
480*852Svi117747 				if (alist == NULL) {
481*852Svi117747 					freeb(hmp);
482*852Svi117747 					return;
483*852Svi117747 				}
484*852Svi117747 			}
485*852Svi117747 			if (dcount > 0) {
486*852Svi117747 				dsize = sizeof (in6_addr_t) * dcount;
487*852Svi117747 				dlist = kmem_alloc(dsize, KM_NOSLEEP);
488*852Svi117747 				if (dlist == NULL) {
489*852Svi117747 					if (acount > 0)
490*852Svi117747 						kmem_free(alist, asize);
491*852Svi117747 					freeb(hmp);
492*852Svi117747 					return;
493*852Svi117747 				}
494*852Svi117747 			}
495*852Svi117747 			aptr = alist;
496*852Svi117747 			dptr = dlist;
497*852Svi117747 			/*
498*852Svi117747 			 * We will get the actual count when we process
499*852Svi117747 			 * the chunk.
500*852Svi117747 			 */
501*852Svi117747 			acount = 0;
502*852Svi117747 			dcount = 0;
503*852Svi117747 		}
504*852Svi117747 	}
5050Sstevel@tonic-gate 	cont = 1;
5060Sstevel@tonic-gate 	while (rlen > 0 && cont) {
507*852Svi117747 		in6_addr_t	addr;
508*852Svi117747 
5090Sstevel@tonic-gate 		/* Sanity checks */
5100Sstevel@tonic-gate 		if (rlen < sizeof (*ph))
5110Sstevel@tonic-gate 			break;
5120Sstevel@tonic-gate 		plen = ntohs(ph->sph_len);
5130Sstevel@tonic-gate 		if (plen < sizeof (*ph) || plen > rlen) {
5140Sstevel@tonic-gate 			break;
5150Sstevel@tonic-gate 		}
5160Sstevel@tonic-gate 		idp = (uint32_t *)(ph + 1);
5170Sstevel@tonic-gate 		dp = sctp_lookup_asconf_dispatch(ntohs(ph->sph_type));
5180Sstevel@tonic-gate 		ASSERT(dp);
5190Sstevel@tonic-gate 		if (dp->asconf) {
520*852Svi117747 			mp = dp->asconf(sctp, ph, *idp, fp, &cont, act, &addr);
5210Sstevel@tonic-gate 			if (cont == -1) {
5220Sstevel@tonic-gate 				/*
5230Sstevel@tonic-gate 				 * Not even enough memory to create
5240Sstevel@tonic-gate 				 * an out-of-resources error. Free
5250Sstevel@tonic-gate 				 * everything and return; the peer
5260Sstevel@tonic-gate 				 * should retransmit.
5270Sstevel@tonic-gate 				 */
5280Sstevel@tonic-gate 				freemsg(hmp);
529*852Svi117747 				if (alist != NULL)
530*852Svi117747 					kmem_free(alist, asize);
531*852Svi117747 				if (dlist != NULL)
532*852Svi117747 					kmem_free(dlist, dsize);
5330Sstevel@tonic-gate 				return;
5340Sstevel@tonic-gate 			}
5350Sstevel@tonic-gate 			if (mp != NULL) {
5360Sstevel@tonic-gate 				linkb(hmp, mp);
537*852Svi117747 			} else if (act != 0) {
538*852Svi117747 				/* update the add/delete list */
539*852Svi117747 				if (cl_sctp_assoc_change != NULL) {
540*852Svi117747 					if (ph->sph_type ==
541*852Svi117747 					    htons(PARM_ADD_IP)) {
542*852Svi117747 						ASSERT(alist != NULL);
543*852Svi117747 						bcopy(&addr, aptr,
544*852Svi117747 						    sizeof (addr));
545*852Svi117747 						aptr += sizeof (addr);
546*852Svi117747 						acount++;
547*852Svi117747 					} else if (ph->sph_type ==
548*852Svi117747 					    htons(PARM_DEL_IP)) {
549*852Svi117747 						ASSERT(dlist != NULL);
550*852Svi117747 						bcopy(&addr, dptr,
551*852Svi117747 						    sizeof (addr));
552*852Svi117747 						dptr += sizeof (addr);
553*852Svi117747 						dcount++;
554*852Svi117747 					}
555*852Svi117747 				}
5560Sstevel@tonic-gate 			}
5570Sstevel@tonic-gate 		}
5580Sstevel@tonic-gate 		ph = sctp_next_parm(ph, &rlen);
5590Sstevel@tonic-gate 		if (ph == NULL)
5600Sstevel@tonic-gate 			break;
5610Sstevel@tonic-gate 	}
5620Sstevel@tonic-gate 
563*852Svi117747 	/*
564*852Svi117747 	 * Update clustering's state for this assoc. Note acount/dcount
565*852Svi117747 	 * could be zero (i.e. if the add/delete address(es) were not
566*852Svi117747 	 * processed successfully). Regardless, if the ?size is > 0,
567*852Svi117747 	 * it is the clustering module's responsibility to free the lists.
568*852Svi117747 	 */
569*852Svi117747 	if (cl_sctp_assoc_change != NULL) {
570*852Svi117747 		(*cl_sctp_assoc_change)(sctp->sctp_family, alist, asize,
571*852Svi117747 		    acount, dlist, dsize, dcount, SCTP_CL_PADDR,
572*852Svi117747 		    (cl_sctp_handle_t)sctp);
573*852Svi117747 		/* alist and dlist will be freed by the clustering module */
574*852Svi117747 	}
5750Sstevel@tonic-gate 	/* Now that the params have been processed, increment the fcsn */
5760Sstevel@tonic-gate 	if (act) {
5770Sstevel@tonic-gate 		sctp->sctp_fcsn++;
5780Sstevel@tonic-gate 	}
5790Sstevel@tonic-gate 	BUMP_LOCAL(sctp->sctp_obchunks);
5800Sstevel@tonic-gate 
5810Sstevel@tonic-gate 	if (fp->isv4)
5820Sstevel@tonic-gate 		ach->sch_len = htons(msgdsize(hmp) - sctp->sctp_hdr_len);
5830Sstevel@tonic-gate 	else
5840Sstevel@tonic-gate 		ach->sch_len = htons(msgdsize(hmp) - sctp->sctp_hdr6_len);
5850Sstevel@tonic-gate 	sctp_set_iplen(sctp, hmp);
5860Sstevel@tonic-gate 
5870Sstevel@tonic-gate 	sctp_add_sendq(sctp, hmp);
5880Sstevel@tonic-gate 	sctp_validate_peer(sctp);
5890Sstevel@tonic-gate }
5900Sstevel@tonic-gate 
5910Sstevel@tonic-gate static sctp_parm_hdr_t *
5920Sstevel@tonic-gate sctp_lookup_asconf_param(sctp_parm_hdr_t *ph, uint32_t cid, ssize_t rlen)
5930Sstevel@tonic-gate {
5940Sstevel@tonic-gate 	uint32_t *idp;
5950Sstevel@tonic-gate 
5960Sstevel@tonic-gate 	while (rlen > 0) {
5970Sstevel@tonic-gate 		idp = (uint32_t *)(ph + 1);
5980Sstevel@tonic-gate 		if (*idp == cid) {
5990Sstevel@tonic-gate 			return (ph);
6000Sstevel@tonic-gate 		}
6010Sstevel@tonic-gate 		ph = sctp_next_parm(ph, &rlen);
6020Sstevel@tonic-gate 		if (ph == NULL)
6030Sstevel@tonic-gate 			break;
6040Sstevel@tonic-gate 	}
6050Sstevel@tonic-gate 	return (NULL);
6060Sstevel@tonic-gate }
6070Sstevel@tonic-gate 
6080Sstevel@tonic-gate void
6090Sstevel@tonic-gate sctp_input_asconf_ack(sctp_t *sctp, sctp_chunk_hdr_t *ch, sctp_faddr_t *fp)
6100Sstevel@tonic-gate {
6110Sstevel@tonic-gate 	const dispatch_t	*dp;
6120Sstevel@tonic-gate 	uint32_t		*idp;
6130Sstevel@tonic-gate 	uint32_t		*snp;
6140Sstevel@tonic-gate 	ssize_t			rlen;
6150Sstevel@tonic-gate 	ssize_t			plen;
6160Sstevel@tonic-gate 	sctp_parm_hdr_t		*ph;
6170Sstevel@tonic-gate 	sctp_parm_hdr_t		*oph;
6180Sstevel@tonic-gate 	sctp_parm_hdr_t		*fph;
6190Sstevel@tonic-gate 	mblk_t			*mp;
6200Sstevel@tonic-gate 	sctp_chunk_hdr_t	*och;
6210Sstevel@tonic-gate 	int			redosrcs = 0;
6220Sstevel@tonic-gate 	uint16_t		param_len;
623*852Svi117747 	uchar_t			*alist;
624*852Svi117747 	uchar_t			*dlist;
625*852Svi117747 	uint_t			acount = 0;
626*852Svi117747 	uint_t			dcount = 0;
627*852Svi117747 	uchar_t			*aptr;
628*852Svi117747 	uchar_t			*dptr;
629*852Svi117747 	sctp_cl_ainfo_t		*ainfo;
630*852Svi117747 	in6_addr_t		addr;
6310Sstevel@tonic-gate 
6320Sstevel@tonic-gate 	ASSERT(ch->sch_id == CHUNK_ASCONF_ACK);
6330Sstevel@tonic-gate 
6340Sstevel@tonic-gate 	snp = (uint32_t *)(ch + 1);
6350Sstevel@tonic-gate 	rlen = ntohs(ch->sch_len) - sizeof (*ch) - sizeof (*snp);
6360Sstevel@tonic-gate 	if (rlen < 0) {
6370Sstevel@tonic-gate 		return;
6380Sstevel@tonic-gate 	}
6390Sstevel@tonic-gate 
6400Sstevel@tonic-gate 	/* Accept only an ACK for the current serial number */
6410Sstevel@tonic-gate 	*snp = ntohl(*snp);
6420Sstevel@tonic-gate 	if (sctp->sctp_cxmit_list == NULL || *snp != (sctp->sctp_lcsn - 1)) {
6430Sstevel@tonic-gate 		/* Need to send an abort */
6440Sstevel@tonic-gate 		return;
6450Sstevel@tonic-gate 	}
6460Sstevel@tonic-gate 	sctp->sctp_cchunk_pend = 0;
6470Sstevel@tonic-gate 	SCTP_FADDR_RC_TIMER_STOP(fp);
6480Sstevel@tonic-gate 
649*852Svi117747 	mp = sctp->sctp_cxmit_list;
650*852Svi117747 	/*
651*852Svi117747 	 * We fill in the addresses here to update the clustering's state for
652*852Svi117747 	 * this assoc.
653*852Svi117747 	 */
654*852Svi117747 	if (mp != NULL && cl_sctp_assoc_change != NULL) {
655*852Svi117747 		ASSERT(mp->b_prev != NULL);
656*852Svi117747 		ainfo = (sctp_cl_ainfo_t *)mp->b_prev;
657*852Svi117747 		alist = ainfo->sctp_cl_alist;
658*852Svi117747 		dlist = ainfo->sctp_cl_dlist;
659*852Svi117747 		aptr = alist;
660*852Svi117747 		dptr = dlist;
661*852Svi117747 	}
662*852Svi117747 
6630Sstevel@tonic-gate 	/*
6640Sstevel@tonic-gate 	 * Pass explicit replies to callbacks:
6650Sstevel@tonic-gate 	 * For each reply in the ACK, look up the corresponding
6660Sstevel@tonic-gate 	 * original parameter in the request using the correlation
6670Sstevel@tonic-gate 	 * ID, and pass it to the right callback.
6680Sstevel@tonic-gate 	 */
6690Sstevel@tonic-gate 	och = (sctp_chunk_hdr_t *)sctp->sctp_cxmit_list->b_rptr;
6700Sstevel@tonic-gate 
6710Sstevel@tonic-gate 	plen = ntohs(och->sch_len) - sizeof (*och) - sizeof (*idp);
6720Sstevel@tonic-gate 	idp = (uint32_t *)(och + 1);
6730Sstevel@tonic-gate 
6740Sstevel@tonic-gate 	/* Get to the 1st ASCONF param, need to skip Address TLV parm */
6750Sstevel@tonic-gate 	fph = (sctp_parm_hdr_t *)(idp + 1);
6760Sstevel@tonic-gate 	plen -= ntohs(fph->sph_len);
6770Sstevel@tonic-gate 	fph = (sctp_parm_hdr_t *)((char *)fph + ntohs(fph->sph_len));
6780Sstevel@tonic-gate 	ph = (sctp_parm_hdr_t *)(snp + 1);
6790Sstevel@tonic-gate 	while (rlen > 0) {
6800Sstevel@tonic-gate 		/* Sanity checks */
6810Sstevel@tonic-gate 		if (rlen < sizeof (*ph)) {
6820Sstevel@tonic-gate 			break;
6830Sstevel@tonic-gate 		}
6840Sstevel@tonic-gate 		param_len = ntohs(ph->sph_len);
6850Sstevel@tonic-gate 		if (param_len < sizeof (*ph) || param_len > rlen) {
6860Sstevel@tonic-gate 			break;
6870Sstevel@tonic-gate 		}
6880Sstevel@tonic-gate 		idp = (uint32_t *)(ph + 1);
6890Sstevel@tonic-gate 		oph = sctp_lookup_asconf_param(fph, *idp, plen);
6900Sstevel@tonic-gate 		if (oph != NULL) {
6910Sstevel@tonic-gate 			dp = sctp_lookup_asconf_dispatch(ntohs(oph->sph_type));
6920Sstevel@tonic-gate 			ASSERT(dp);
6930Sstevel@tonic-gate 			if (dp->asconf_ack) {
694*852Svi117747 				dp->asconf_ack(sctp, ph, oph, fp, &addr);
6950Sstevel@tonic-gate 
6960Sstevel@tonic-gate 				/* hack. see below */
6970Sstevel@tonic-gate 				if (oph->sph_type == htons(PARM_ADD_IP) ||
6980Sstevel@tonic-gate 				    oph->sph_type == htons(PARM_DEL_IP)) {
6990Sstevel@tonic-gate 					redosrcs = 1;
700*852Svi117747 					/*
701*852Svi117747 					 * If the address was sucessfully
702*852Svi117747 					 * processed, add it to the add/delete
703*852Svi117747 					 * list to send to the clustering
704*852Svi117747 					 * module.
705*852Svi117747 					 */
706*852Svi117747 					if (cl_sctp_assoc_change != NULL &&
707*852Svi117747 					    !IN6_IS_ADDR_UNSPECIFIED(&addr)) {
708*852Svi117747 						if (oph->sph_type ==
709*852Svi117747 						    htons(PARM_ADD_IP)) {
710*852Svi117747 							bcopy(&addr, aptr,
711*852Svi117747 							    sizeof (addr));
712*852Svi117747 							aptr += sizeof (addr);
713*852Svi117747 							acount++;
714*852Svi117747 						} else {
715*852Svi117747 							bcopy(&addr, dptr,
716*852Svi117747 							    sizeof (addr));
717*852Svi117747 							dptr += sizeof (addr);
718*852Svi117747 							dcount++;
719*852Svi117747 						}
720*852Svi117747 					}
7210Sstevel@tonic-gate 				}
7220Sstevel@tonic-gate 			}
7230Sstevel@tonic-gate 		}
7240Sstevel@tonic-gate 
7250Sstevel@tonic-gate 		ph = sctp_next_parm(ph, &rlen);
7260Sstevel@tonic-gate 		if (ph == NULL)
7270Sstevel@tonic-gate 			break;
7280Sstevel@tonic-gate 	}
7290Sstevel@tonic-gate 
7300Sstevel@tonic-gate 	/*
7310Sstevel@tonic-gate 	 * Pass implicit replies to callbacks:
7320Sstevel@tonic-gate 	 * For each original request, look up its parameter
7330Sstevel@tonic-gate 	 * in the ACK. If there is no corresponding reply,
7340Sstevel@tonic-gate 	 * call the callback with a NULL parameter, indicating
7350Sstevel@tonic-gate 	 * success.
7360Sstevel@tonic-gate 	 */
7370Sstevel@tonic-gate 	rlen = plen;
7380Sstevel@tonic-gate 	plen = ntohs(ch->sch_len) - sizeof (*ch) - sizeof (*idp);
7390Sstevel@tonic-gate 	oph = fph;
7400Sstevel@tonic-gate 	fph = (sctp_parm_hdr_t *)((char *)ch + sizeof (sctp_chunk_hdr_t) +
7410Sstevel@tonic-gate 	    sizeof (uint32_t));
7420Sstevel@tonic-gate 	while (rlen > 0) {
7430Sstevel@tonic-gate 		idp = (uint32_t *)(oph + 1);
7440Sstevel@tonic-gate 		ph = sctp_lookup_asconf_param(fph, *idp, plen);
7450Sstevel@tonic-gate 		if (ph == NULL) {
7460Sstevel@tonic-gate 			dp = sctp_lookup_asconf_dispatch(ntohs(oph->sph_type));
7470Sstevel@tonic-gate 			ASSERT(dp);
7480Sstevel@tonic-gate 			if (dp->asconf_ack) {
749*852Svi117747 				dp->asconf_ack(sctp, NULL, oph, fp, &addr);
7500Sstevel@tonic-gate 
7510Sstevel@tonic-gate 				/* hack. see below */
7520Sstevel@tonic-gate 				if (oph->sph_type == htons(PARM_ADD_IP) ||
7530Sstevel@tonic-gate 				    oph->sph_type == htons(PARM_DEL_IP)) {
7540Sstevel@tonic-gate 					redosrcs = 1;
755*852Svi117747 					/*
756*852Svi117747 					 * If the address was sucessfully
757*852Svi117747 					 * processed, add it to the add/delete
758*852Svi117747 					 * list to send to the clustering
759*852Svi117747 					 * module.
760*852Svi117747 					 */
761*852Svi117747 					if (cl_sctp_assoc_change != NULL &&
762*852Svi117747 					    !IN6_IS_ADDR_UNSPECIFIED(&addr)) {
763*852Svi117747 						if (oph->sph_type ==
764*852Svi117747 						    htons(PARM_ADD_IP)) {
765*852Svi117747 							bcopy(&addr, aptr,
766*852Svi117747 							    sizeof (addr));
767*852Svi117747 							aptr += sizeof (addr);
768*852Svi117747 							acount++;
769*852Svi117747 						} else {
770*852Svi117747 							bcopy(&addr, dptr,
771*852Svi117747 							    sizeof (addr));
772*852Svi117747 							dptr += sizeof (addr);
773*852Svi117747 							dcount++;
774*852Svi117747 						}
775*852Svi117747 					}
7760Sstevel@tonic-gate 				}
7770Sstevel@tonic-gate 			}
7780Sstevel@tonic-gate 		}
7790Sstevel@tonic-gate 		oph = sctp_next_parm(oph, &rlen);
7800Sstevel@tonic-gate 		if (oph == NULL) {
7810Sstevel@tonic-gate 			break;
7820Sstevel@tonic-gate 		}
7830Sstevel@tonic-gate 	}
7840Sstevel@tonic-gate 
7850Sstevel@tonic-gate 	/* We can now free up the first chunk in the cxmit list */
7860Sstevel@tonic-gate 	sctp->sctp_cxmit_list = mp->b_cont;
7870Sstevel@tonic-gate 	mp->b_cont = NULL;
7880Sstevel@tonic-gate 
7890Sstevel@tonic-gate 	fp = SCTP_CHUNK_DEST(mp);
7900Sstevel@tonic-gate 	ASSERT(fp != NULL && fp->suna >= MBLKL(mp));
7910Sstevel@tonic-gate 	fp->suna -= MBLKL(mp);
792*852Svi117747 
793*852Svi117747 	/*
794*852Svi117747 	 * Update clustering's state for this assoc. Note acount/dcount
795*852Svi117747 	 * could be zero (i.e. if the add/delete address(es) did not
796*852Svi117747 	 * succeed). Regardless, if the ?size is > 0, it is the clustering
797*852Svi117747 	 * module's responsibility to free the lists.
798*852Svi117747 	 */
799*852Svi117747 	if (cl_sctp_assoc_change != NULL) {
800*852Svi117747 		ASSERT(mp->b_prev != NULL);
801*852Svi117747 		mp->b_prev = NULL;
802*852Svi117747 		ainfo->sctp_cl_alist = NULL;
803*852Svi117747 		ainfo->sctp_cl_dlist = NULL;
804*852Svi117747 		(*cl_sctp_assoc_change)(sctp->sctp_family, alist,
805*852Svi117747 		    ainfo->sctp_cl_asize, acount, dlist, ainfo->sctp_cl_dsize,
806*852Svi117747 		    dcount, SCTP_CL_LADDR, (cl_sctp_handle_t)sctp);
807*852Svi117747 		/* alist and dlist will be freed by the clustering module */
808*852Svi117747 		ainfo->sctp_cl_asize = 0;
809*852Svi117747 		ainfo->sctp_cl_dsize = 0;
810*852Svi117747 		kmem_free(ainfo, sizeof (*ainfo));
811*852Svi117747 	}
8120Sstevel@tonic-gate 	freeb(mp);
8130Sstevel@tonic-gate 
8140Sstevel@tonic-gate 	/* can now send the next control chunk */
8150Sstevel@tonic-gate 	if (sctp->sctp_cxmit_list != NULL)
8160Sstevel@tonic-gate 		sctp_wput_asconf(sctp, NULL);
8170Sstevel@tonic-gate 
8180Sstevel@tonic-gate 	/*
8190Sstevel@tonic-gate 	 * If an add-ip or del-ip has completed (successfully or
8200Sstevel@tonic-gate 	 * unsuccessfully), the pool of available source addresses
8210Sstevel@tonic-gate 	 * may have changed, so we need to redo faddr source
8220Sstevel@tonic-gate 	 * address selections. This is a bit of a hack since
8230Sstevel@tonic-gate 	 * this really belongs in the add/del-ip code. However,
8240Sstevel@tonic-gate 	 * that code consists of callbacks called for *each*
8250Sstevel@tonic-gate 	 * add/del-ip parameter, and sctp_redo_faddr_srcs() is
8260Sstevel@tonic-gate 	 * expensive enough that we really don't want to be
8270Sstevel@tonic-gate 	 * doing it for each one. So we do it once here.
8280Sstevel@tonic-gate 	 */
8290Sstevel@tonic-gate 	if (redosrcs)
8300Sstevel@tonic-gate 		sctp_redo_faddr_srcs(sctp);
8310Sstevel@tonic-gate }
8320Sstevel@tonic-gate 
8330Sstevel@tonic-gate static void
8340Sstevel@tonic-gate sctp_rc_timer(sctp_t *sctp, sctp_faddr_t *fp)
8350Sstevel@tonic-gate {
8360Sstevel@tonic-gate #define	SCTP_CLR_SENT_FLAG(mp)	((mp)->b_flag &= ~SCTP_CHUNK_FLAG_SENT)
8370Sstevel@tonic-gate 	sctp_faddr_t	*nfp;
8380Sstevel@tonic-gate 	sctp_faddr_t	*ofp;
8390Sstevel@tonic-gate 
8400Sstevel@tonic-gate 	ASSERT(fp != NULL);
8410Sstevel@tonic-gate 
8420Sstevel@tonic-gate 	fp->rc_timer_running = 0;
8430Sstevel@tonic-gate 
8440Sstevel@tonic-gate 	if (sctp->sctp_state != SCTPS_ESTABLISHED ||
8450Sstevel@tonic-gate 	    sctp->sctp_cxmit_list == NULL) {
8460Sstevel@tonic-gate 		return;
8470Sstevel@tonic-gate 	}
8480Sstevel@tonic-gate 	/*
8490Sstevel@tonic-gate 	 * Not a retransmission, this was deferred due to some error
8500Sstevel@tonic-gate 	 * condition
8510Sstevel@tonic-gate 	 */
8520Sstevel@tonic-gate 	if (!SCTP_CHUNK_ISSENT(sctp->sctp_cxmit_list)) {
8530Sstevel@tonic-gate 		sctp_wput_asconf(sctp, fp);
8540Sstevel@tonic-gate 		return;
8550Sstevel@tonic-gate 	}
8560Sstevel@tonic-gate 	/*
8570Sstevel@tonic-gate 	 * The sent flag indicates if the msg has been sent on this fp.
8580Sstevel@tonic-gate 	 */
8590Sstevel@tonic-gate 	SCTP_CLR_SENT_FLAG(sctp->sctp_cxmit_list);
8600Sstevel@tonic-gate 	/* Retransmission */
8610Sstevel@tonic-gate 	if (sctp->sctp_strikes >= sctp->sctp_pa_max_rxt) {
8620Sstevel@tonic-gate 		/* time to give up */
8630Sstevel@tonic-gate 		BUMP_MIB(&sctp_mib, sctpAborted);
8640Sstevel@tonic-gate 		sctp_assoc_event(sctp, SCTP_COMM_LOST, 0, NULL);
8650Sstevel@tonic-gate 		sctp_clean_death(sctp, ETIMEDOUT);
8660Sstevel@tonic-gate 		return;
8670Sstevel@tonic-gate 	}
8680Sstevel@tonic-gate 	if (fp->strikes >= fp->max_retr) {
8690Sstevel@tonic-gate 		if (sctp_faddr_dead(sctp, fp, SCTP_FADDRS_DOWN) == -1)
8700Sstevel@tonic-gate 			return;
8710Sstevel@tonic-gate 	}
8720Sstevel@tonic-gate 
8730Sstevel@tonic-gate 	fp->strikes++;
8740Sstevel@tonic-gate 	sctp->sctp_strikes++;
8750Sstevel@tonic-gate 	SCTP_CALC_RXT(fp, sctp->sctp_rto_max);
8760Sstevel@tonic-gate 
8770Sstevel@tonic-gate 	nfp = sctp_rotate_faddr(sctp, fp);
8780Sstevel@tonic-gate 	sctp->sctp_cchunk_pend = 0;
8790Sstevel@tonic-gate 	ofp = SCTP_CHUNK_DEST(sctp->sctp_cxmit_list);
8800Sstevel@tonic-gate 	SCTP_SET_CHUNK_DEST(sctp->sctp_cxmit_list, NULL);
8810Sstevel@tonic-gate 	ASSERT(ofp != NULL && ofp == fp);
8820Sstevel@tonic-gate 	ASSERT(ofp->suna >= MBLKL(sctp->sctp_cxmit_list));
8830Sstevel@tonic-gate 	/*
8840Sstevel@tonic-gate 	 * Enter slow start for this destination.
8850Sstevel@tonic-gate 	 * XXX anything in the data path that needs to be considered?
8860Sstevel@tonic-gate 	 */
8870Sstevel@tonic-gate 	ofp->ssthresh = ofp->cwnd / 2;
8880Sstevel@tonic-gate 	if (ofp->ssthresh < 2 * ofp->sfa_pmss)
8890Sstevel@tonic-gate 		ofp->ssthresh = 2 * ofp->sfa_pmss;
8900Sstevel@tonic-gate 	ofp->cwnd = ofp->sfa_pmss;
8910Sstevel@tonic-gate 	ofp->pba = 0;
8920Sstevel@tonic-gate 	ofp->suna -= MBLKL(sctp->sctp_cxmit_list);
8930Sstevel@tonic-gate 	/*
8940Sstevel@tonic-gate 	 * The rexmit flags is used to determine if a serial number needs to
8950Sstevel@tonic-gate 	 * be assigned or not, so once set we leave it there.
8960Sstevel@tonic-gate 	 */
8970Sstevel@tonic-gate 	if (!SCTP_CHUNK_WANT_REXMIT(sctp->sctp_cxmit_list))
8980Sstevel@tonic-gate 		SCTP_CHUNK_REXMIT(sctp->sctp_cxmit_list);
8990Sstevel@tonic-gate 	sctp_wput_asconf(sctp, nfp);
9000Sstevel@tonic-gate #undef	SCTP_CLR_SENT_FLAG
9010Sstevel@tonic-gate }
9020Sstevel@tonic-gate 
9030Sstevel@tonic-gate void
9040Sstevel@tonic-gate sctp_wput_asconf(sctp_t *sctp, sctp_faddr_t *fp)
9050Sstevel@tonic-gate {
9060Sstevel@tonic-gate #define	SCTP_SET_SENT_FLAG(mp)	((mp)->b_flag = SCTP_CHUNK_FLAG_SENT)
9070Sstevel@tonic-gate 
9080Sstevel@tonic-gate 	mblk_t 			*mp;
9090Sstevel@tonic-gate 	mblk_t			*ipmp;
9100Sstevel@tonic-gate 	uint32_t 		*snp;
9110Sstevel@tonic-gate 	sctp_parm_hdr_t		*ph;
9120Sstevel@tonic-gate 	boolean_t		isv4;
9130Sstevel@tonic-gate 
9140Sstevel@tonic-gate 	if (sctp->sctp_cchunk_pend || sctp->sctp_cxmit_list == NULL ||
9150Sstevel@tonic-gate 	    /* Queue it for later transmission if not yet established */
9160Sstevel@tonic-gate 	    sctp->sctp_state < SCTPS_ESTABLISHED) {
9170Sstevel@tonic-gate 		ip2dbg(("sctp_wput_asconf: cchunk pending? (%d) or null "\
9180Sstevel@tonic-gate 		    "sctp_cxmit_list? (%s) or incorrect state? (%x)\n",
9190Sstevel@tonic-gate 		    sctp->sctp_cchunk_pend, sctp->sctp_cxmit_list == NULL ?
9200Sstevel@tonic-gate 		    "yes" : "no", sctp->sctp_state));
9210Sstevel@tonic-gate 		return;
9220Sstevel@tonic-gate 	}
9230Sstevel@tonic-gate 
9240Sstevel@tonic-gate 	if (fp == NULL)
9250Sstevel@tonic-gate 		fp = sctp->sctp_current;
9260Sstevel@tonic-gate 
9270Sstevel@tonic-gate 	/* OK to send */
9280Sstevel@tonic-gate 	ipmp = sctp_make_mp(sctp, fp, 0);
9290Sstevel@tonic-gate 	if (ipmp == NULL) {
9300Sstevel@tonic-gate 		SCTP_FADDR_RC_TIMER_RESTART(sctp, fp, fp->rto);
9310Sstevel@tonic-gate 		return;
9320Sstevel@tonic-gate 	}
9330Sstevel@tonic-gate 	mp = sctp->sctp_cxmit_list;
9340Sstevel@tonic-gate 	/* Fill in the mandatory  Address Parameter TLV */
9350Sstevel@tonic-gate 	isv4 = (fp != NULL) ? fp->isv4 : sctp->sctp_current->isv4;
9360Sstevel@tonic-gate 	ph = (sctp_parm_hdr_t *)(mp->b_rptr + sizeof (sctp_chunk_hdr_t) +
9370Sstevel@tonic-gate 	    sizeof (uint32_t));
9380Sstevel@tonic-gate 	if (isv4) {
9390Sstevel@tonic-gate 		ipha_t		*ipha = (ipha_t *)ipmp->b_rptr;
9400Sstevel@tonic-gate 		in6_addr_t	ipaddr;
9410Sstevel@tonic-gate 		ipaddr_t	addr4;
9420Sstevel@tonic-gate 
9430Sstevel@tonic-gate 		ph->sph_type = htons(PARM_ADDR4);
9440Sstevel@tonic-gate 		ph->sph_len = htons(PARM_ADDR4_LEN);
9450Sstevel@tonic-gate 		if (ipha->ipha_src != INADDR_ANY) {
9460Sstevel@tonic-gate 			bcopy(&ipha->ipha_src, ph + 1, IP_ADDR_LEN);
9470Sstevel@tonic-gate 		} else {
9480Sstevel@tonic-gate 			ipaddr = sctp_get_valid_addr(sctp, B_FALSE);
949252Svi117747 			/*
950252Svi117747 			 * All the addresses are down.
951252Svi117747 			 * Maybe we might have better luck next time.
952252Svi117747 			 */
953252Svi117747 			if (IN6_IS_ADDR_V4MAPPED_ANY(&ipaddr)) {
954252Svi117747 				SCTP_FADDR_RC_TIMER_RESTART(sctp, fp, fp->rto);
955252Svi117747 				freeb(ipmp);
956252Svi117747 				return;
957252Svi117747 			}
9580Sstevel@tonic-gate 			IN6_V4MAPPED_TO_IPADDR(&ipaddr, addr4);
9590Sstevel@tonic-gate 			bcopy(&addr4, ph + 1, IP_ADDR_LEN);
9600Sstevel@tonic-gate 		}
9610Sstevel@tonic-gate 	} else {
9620Sstevel@tonic-gate 		ip6_t		*ip6 = (ip6_t *)ipmp->b_rptr;
9630Sstevel@tonic-gate 		in6_addr_t	ipaddr;
9640Sstevel@tonic-gate 
9650Sstevel@tonic-gate 		ph->sph_type = htons(PARM_ADDR6);
9660Sstevel@tonic-gate 		ph->sph_len = htons(PARM_ADDR6_LEN);
9670Sstevel@tonic-gate 		if (!IN6_IS_ADDR_UNSPECIFIED(&ip6->ip6_src)) {
9680Sstevel@tonic-gate 			bcopy(&ip6->ip6_src, ph + 1, IPV6_ADDR_LEN);
9690Sstevel@tonic-gate 		} else {
9700Sstevel@tonic-gate 			ipaddr = sctp_get_valid_addr(sctp, B_TRUE);
971252Svi117747 			/*
972252Svi117747 			 * All the addresses are down.
973252Svi117747 			 * Maybe we might have better luck next time.
974252Svi117747 			 */
975252Svi117747 			if (IN6_IS_ADDR_UNSPECIFIED(&ipaddr)) {
976252Svi117747 				SCTP_FADDR_RC_TIMER_RESTART(sctp, fp, fp->rto);
977252Svi117747 				freeb(ipmp);
978252Svi117747 				return;
979252Svi117747 			}
9800Sstevel@tonic-gate 			bcopy(&ipaddr, ph + 1, IPV6_ADDR_LEN);
9810Sstevel@tonic-gate 		}
9820Sstevel@tonic-gate 	}
9830Sstevel@tonic-gate 
9840Sstevel@tonic-gate 	/* Don't exceed CWND */
9850Sstevel@tonic-gate 	if ((MBLKL(mp) > (fp->cwnd - fp->suna)) ||
9860Sstevel@tonic-gate 	    ((mp = dupb(sctp->sctp_cxmit_list)) == NULL)) {
9870Sstevel@tonic-gate 		SCTP_FADDR_RC_TIMER_RESTART(sctp, fp, fp->rto);
9880Sstevel@tonic-gate 		freeb(ipmp);
9890Sstevel@tonic-gate 		return;
9900Sstevel@tonic-gate 	}
9910Sstevel@tonic-gate 
9920Sstevel@tonic-gate 	/* Set the serial number now, if sending for the first time */
9930Sstevel@tonic-gate 	if (!SCTP_CHUNK_WANT_REXMIT(mp)) {
9940Sstevel@tonic-gate 		snp = (uint32_t *)(mp->b_rptr + sizeof (sctp_chunk_hdr_t));
9950Sstevel@tonic-gate 		*snp = htonl(sctp->sctp_lcsn++);
9960Sstevel@tonic-gate 	}
9970Sstevel@tonic-gate 	SCTP_CHUNK_CLEAR_FLAGS(mp);
9980Sstevel@tonic-gate 	fp->suna += MBLKL(mp);
9990Sstevel@tonic-gate 	/* Attach the header and send the chunk */
10000Sstevel@tonic-gate 	ipmp->b_cont = mp;
10010Sstevel@tonic-gate 	sctp_set_iplen(sctp, ipmp);
10020Sstevel@tonic-gate 	sctp->sctp_cchunk_pend = 1;
10030Sstevel@tonic-gate 
10040Sstevel@tonic-gate 	SCTP_SET_SENT_FLAG(sctp->sctp_cxmit_list);
10050Sstevel@tonic-gate 	SCTP_SET_CHUNK_DEST(sctp->sctp_cxmit_list, fp);
10060Sstevel@tonic-gate 	sctp_add_sendq(sctp, ipmp);
10070Sstevel@tonic-gate 	SCTP_FADDR_RC_TIMER_RESTART(sctp, fp, fp->rto);
10080Sstevel@tonic-gate #undef	SCTP_SET_SENT_FLAG
10090Sstevel@tonic-gate }
10100Sstevel@tonic-gate 
10110Sstevel@tonic-gate /*
10120Sstevel@tonic-gate  * Generate ASCONF error param, include errph, if present.
10130Sstevel@tonic-gate  */
10140Sstevel@tonic-gate static mblk_t *
10150Sstevel@tonic-gate sctp_asconf_adderr(int err, sctp_parm_hdr_t *errph, uint32_t cid)
10160Sstevel@tonic-gate {
10170Sstevel@tonic-gate 	mblk_t		*mp;
10180Sstevel@tonic-gate 	sctp_parm_hdr_t	*eph;
10190Sstevel@tonic-gate 	sctp_parm_hdr_t	*wph;
10200Sstevel@tonic-gate 	size_t		len;
10210Sstevel@tonic-gate 	size_t		elen = 0;
10220Sstevel@tonic-gate 
10230Sstevel@tonic-gate 	len = sizeof (*wph) + sizeof (*eph) + sizeof (cid);
10240Sstevel@tonic-gate 	if (errph != NULL) {
10250Sstevel@tonic-gate 		elen = ntohs(errph->sph_len);
10260Sstevel@tonic-gate 		len += elen;
10270Sstevel@tonic-gate 	}
10280Sstevel@tonic-gate 	mp = allocb(len, BPRI_MED);
10290Sstevel@tonic-gate 	if (mp == NULL) {
10300Sstevel@tonic-gate 		return (NULL);
10310Sstevel@tonic-gate 	}
10320Sstevel@tonic-gate 	wph = (sctp_parm_hdr_t *)mp->b_rptr;
10330Sstevel@tonic-gate 	/* error cause wrapper */
10340Sstevel@tonic-gate 	wph->sph_type = htons(PARM_ERROR_IND);
10350Sstevel@tonic-gate 	wph->sph_len = htons(len);
10360Sstevel@tonic-gate 	bcopy(&cid, wph + 1, sizeof (uint32_t));
10370Sstevel@tonic-gate 
10380Sstevel@tonic-gate 	/* error cause */
10390Sstevel@tonic-gate 	eph = (sctp_parm_hdr_t *)((char *)wph + sizeof (sctp_parm_hdr_t) +
10400Sstevel@tonic-gate 	    sizeof (cid));
10410Sstevel@tonic-gate 	eph->sph_type = htons(err);
10420Sstevel@tonic-gate 	eph->sph_len = htons(len - sizeof (*wph) - sizeof (cid));
10430Sstevel@tonic-gate 	mp->b_wptr = (uchar_t *)(eph + 1);
10440Sstevel@tonic-gate 
10450Sstevel@tonic-gate 	/* details */
10460Sstevel@tonic-gate 	if (elen > 0) {
10470Sstevel@tonic-gate 		bcopy(errph, mp->b_wptr, elen);
10480Sstevel@tonic-gate 		mp->b_wptr += elen;
10490Sstevel@tonic-gate 	}
10500Sstevel@tonic-gate 	return (mp);
10510Sstevel@tonic-gate }
10520Sstevel@tonic-gate 
10530Sstevel@tonic-gate static mblk_t *
10540Sstevel@tonic-gate sctp_check_addip_addr(sctp_parm_hdr_t *ph, sctp_parm_hdr_t *oph, int *cont,
10550Sstevel@tonic-gate     uint32_t cid, in6_addr_t *raddr)
10560Sstevel@tonic-gate {
10570Sstevel@tonic-gate 	uint16_t	atype;
10580Sstevel@tonic-gate 	uint16_t	alen;
10590Sstevel@tonic-gate 	mblk_t		*mp;
10600Sstevel@tonic-gate 	in6_addr_t	addr;
10610Sstevel@tonic-gate 	ipaddr_t	*addr4;
10620Sstevel@tonic-gate 
10630Sstevel@tonic-gate 	atype = ntohs(ph->sph_type);
10640Sstevel@tonic-gate 	alen = ntohs(ph->sph_len);
10650Sstevel@tonic-gate 
10660Sstevel@tonic-gate 	if (atype != PARM_ADDR4 && atype != PARM_ADDR6) {
10670Sstevel@tonic-gate 		mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, oph, cid);
10680Sstevel@tonic-gate 		if (mp == NULL) {
10690Sstevel@tonic-gate 			*cont = -1;
10700Sstevel@tonic-gate 		}
10710Sstevel@tonic-gate 		return (mp);
10720Sstevel@tonic-gate 	}
10730Sstevel@tonic-gate 	if ((atype == PARM_ADDR4 && alen < PARM_ADDR4_LEN) ||
10740Sstevel@tonic-gate 	    (atype == PARM_ADDR6 && alen < PARM_ADDR6_LEN)) {
10750Sstevel@tonic-gate 		mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, oph, cid);
10760Sstevel@tonic-gate 		if (mp == NULL) {
10770Sstevel@tonic-gate 			*cont = -1;
10780Sstevel@tonic-gate 		}
10790Sstevel@tonic-gate 		return (mp);
10800Sstevel@tonic-gate 	}
10810Sstevel@tonic-gate 
10820Sstevel@tonic-gate 	/* Address parameter is present; extract and screen it */
10830Sstevel@tonic-gate 	if (atype == PARM_ADDR4) {
10840Sstevel@tonic-gate 		addr4 = (ipaddr_t *)(ph + 1);
10850Sstevel@tonic-gate 		IN6_IPADDR_TO_V4MAPPED(*addr4, &addr);
10860Sstevel@tonic-gate 
10870Sstevel@tonic-gate 		/* screen XXX loopback to scoping */
10880Sstevel@tonic-gate 		if (*addr4 == 0 || *addr4 == INADDR_BROADCAST ||
10890Sstevel@tonic-gate 		    *addr4 == htonl(INADDR_LOOPBACK) || IN_MULTICAST(*addr4)) {
10900Sstevel@tonic-gate 			dprint(1, ("addip: addr not unicast: %x:%x:%x:%x\n",
10910Sstevel@tonic-gate 			    SCTP_PRINTADDR(addr)));
10920Sstevel@tonic-gate 			mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, oph,
10930Sstevel@tonic-gate 			    cid);
10940Sstevel@tonic-gate 			if (mp == NULL) {
10950Sstevel@tonic-gate 				*cont = -1;
10960Sstevel@tonic-gate 			}
10970Sstevel@tonic-gate 			return (mp);
10980Sstevel@tonic-gate 		}
10990Sstevel@tonic-gate 		/*
11000Sstevel@tonic-gate 		 * XXX also need to check for subnet
11010Sstevel@tonic-gate 		 * broadcasts. This should probably
11020Sstevel@tonic-gate 		 * wait until we have full access
11030Sstevel@tonic-gate 		 * to the ILL tables.
11040Sstevel@tonic-gate 		 */
11050Sstevel@tonic-gate 
11060Sstevel@tonic-gate 	} else {
11070Sstevel@tonic-gate 		bcopy(ph + 1, &addr, sizeof (addr));
11080Sstevel@tonic-gate 
11090Sstevel@tonic-gate 		/* screen XXX loopback to scoping */
11100Sstevel@tonic-gate 		if (IN6_IS_ADDR_LINKLOCAL(&addr) ||
11110Sstevel@tonic-gate 		    IN6_IS_ADDR_MULTICAST(&addr) ||
11120Sstevel@tonic-gate 		    IN6_IS_ADDR_LOOPBACK(&addr)) {
11130Sstevel@tonic-gate 			dprint(1, ("addip: addr not unicast: %x:%x:%x:%x\n",
11140Sstevel@tonic-gate 			    SCTP_PRINTADDR(addr)));
11150Sstevel@tonic-gate 			mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, oph,
11160Sstevel@tonic-gate 			    cid);
11170Sstevel@tonic-gate 			if (mp == NULL) {
11180Sstevel@tonic-gate 				*cont = -1;
11190Sstevel@tonic-gate 			}
11200Sstevel@tonic-gate 			return (mp);
11210Sstevel@tonic-gate 		}
11220Sstevel@tonic-gate 
11230Sstevel@tonic-gate 	}
11240Sstevel@tonic-gate 
11250Sstevel@tonic-gate 	/* OK */
11260Sstevel@tonic-gate 	*raddr = addr;
11270Sstevel@tonic-gate 	return (NULL);
11280Sstevel@tonic-gate }
11290Sstevel@tonic-gate 
11300Sstevel@tonic-gate /*
11310Sstevel@tonic-gate  * Handles both add and delete address requests.
11320Sstevel@tonic-gate  */
11330Sstevel@tonic-gate static mblk_t *
11340Sstevel@tonic-gate sctp_addip_req(sctp_t *sctp, sctp_parm_hdr_t *ph, uint32_t cid,
1135*852Svi117747     sctp_faddr_t *fp, int *cont, int act, in6_addr_t *raddr)
11360Sstevel@tonic-gate {
11370Sstevel@tonic-gate 	in6_addr_t	addr;
11380Sstevel@tonic-gate 	uint16_t	type;
11390Sstevel@tonic-gate 	mblk_t		*mp;
11400Sstevel@tonic-gate 	sctp_faddr_t	*nfp;
11410Sstevel@tonic-gate 	sctp_parm_hdr_t	*oph;
11420Sstevel@tonic-gate 
11430Sstevel@tonic-gate 	*cont = 1;
11440Sstevel@tonic-gate 
11450Sstevel@tonic-gate 	/* Send back an authorization error if addip is disabled */
11460Sstevel@tonic-gate 	if (!sctp_addip_enabled) {
11470Sstevel@tonic-gate 		mp = sctp_asconf_adderr(SCTP_ERR_UNAUTHORIZED, ph, cid);
11480Sstevel@tonic-gate 		if (mp == NULL)
11490Sstevel@tonic-gate 			*cont = -1;
11500Sstevel@tonic-gate 		return (mp);
11510Sstevel@tonic-gate 	}
11520Sstevel@tonic-gate 	/* Check input */
11530Sstevel@tonic-gate 	if (ntohs(ph->sph_len) < (sizeof (*ph) * 2)) {
11540Sstevel@tonic-gate 		mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, ph, cid);
11550Sstevel@tonic-gate 		if (mp == NULL) {
11560Sstevel@tonic-gate 			*cont = -1;
11570Sstevel@tonic-gate 		}
11580Sstevel@tonic-gate 		return (mp);
11590Sstevel@tonic-gate 	}
11600Sstevel@tonic-gate 
11610Sstevel@tonic-gate 	type = ntohs(ph->sph_type);
11620Sstevel@tonic-gate 	oph = ph;
11630Sstevel@tonic-gate 	ph = (sctp_parm_hdr_t *)((char *)ph + sizeof (sctp_parm_hdr_t) +
11640Sstevel@tonic-gate 	    sizeof (cid));
11650Sstevel@tonic-gate 	mp = sctp_check_addip_addr(ph, oph, cont, cid, &addr);
11660Sstevel@tonic-gate 	if (mp != NULL)
11670Sstevel@tonic-gate 		return (mp);
1168*852Svi117747 	if (raddr != NULL)
1169*852Svi117747 		*raddr = addr;
11700Sstevel@tonic-gate 	if (type == PARM_ADD_IP) {
11710Sstevel@tonic-gate 		if (sctp_lookup_faddr(sctp, &addr) != NULL) {
11720Sstevel@tonic-gate 			/* Address is already part of association */
11730Sstevel@tonic-gate 			dprint(1, ("addip: addr already here: %x:%x:%x:%x\n",
11740Sstevel@tonic-gate 			    SCTP_PRINTADDR(addr)));
11750Sstevel@tonic-gate 			mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, oph,
11760Sstevel@tonic-gate 			    cid);
11770Sstevel@tonic-gate 			if (mp == NULL) {
11780Sstevel@tonic-gate 				*cont = -1;
11790Sstevel@tonic-gate 			}
11800Sstevel@tonic-gate 			return (mp);
11810Sstevel@tonic-gate 		}
11820Sstevel@tonic-gate 
11830Sstevel@tonic-gate 		if (!act) {
11840Sstevel@tonic-gate 			return (NULL);
11850Sstevel@tonic-gate 		}
11860Sstevel@tonic-gate 		/* Add the new address */
11870Sstevel@tonic-gate 		mutex_enter(&sctp->sctp_conn_tfp->tf_lock);
11880Sstevel@tonic-gate 		if (sctp_add_faddr(sctp, &addr, KM_NOSLEEP) != 0) {
11890Sstevel@tonic-gate 			mutex_exit(&sctp->sctp_conn_tfp->tf_lock);
11900Sstevel@tonic-gate 			/* no memory */
11910Sstevel@tonic-gate 			*cont = -1;
11920Sstevel@tonic-gate 			return (NULL);
11930Sstevel@tonic-gate 		}
11940Sstevel@tonic-gate 		mutex_exit(&sctp->sctp_conn_tfp->tf_lock);
11950Sstevel@tonic-gate 		sctp_intf_event(sctp, addr, SCTP_ADDR_ADDED, 0);
11960Sstevel@tonic-gate 	} else if (type == PARM_DEL_IP) {
11970Sstevel@tonic-gate 		nfp = sctp_lookup_faddr(sctp, &addr);
11980Sstevel@tonic-gate 		if (nfp == NULL) {
11990Sstevel@tonic-gate 			/*
12000Sstevel@tonic-gate 			 * Peer is trying to delete an address that is not
12010Sstevel@tonic-gate 			 * part of the association.
12020Sstevel@tonic-gate 			 */
12030Sstevel@tonic-gate 			dprint(1, ("delip: addr not here: %x:%x:%x:%x\n",
12040Sstevel@tonic-gate 			    SCTP_PRINTADDR(addr)));
12050Sstevel@tonic-gate 			mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, oph,
12060Sstevel@tonic-gate 			    cid);
12070Sstevel@tonic-gate 			if (mp == NULL) {
12080Sstevel@tonic-gate 				*cont = -1;
12090Sstevel@tonic-gate 			}
12100Sstevel@tonic-gate 			return (mp);
12110Sstevel@tonic-gate 		}
12120Sstevel@tonic-gate 		if (sctp->sctp_faddrs == nfp && nfp->next == NULL) {
12130Sstevel@tonic-gate 			/* Peer is trying to delete last address */
12140Sstevel@tonic-gate 			dprint(1, ("delip: del last addr: %x:%x:%x:%x\n",
12150Sstevel@tonic-gate 			    SCTP_PRINTADDR(addr)));
12160Sstevel@tonic-gate 			mp = sctp_asconf_adderr(SCTP_ERR_DEL_LAST_ADDR, oph,
12170Sstevel@tonic-gate 			    cid);
12180Sstevel@tonic-gate 			if (mp == NULL) {
12190Sstevel@tonic-gate 				*cont = -1;
12200Sstevel@tonic-gate 			}
12210Sstevel@tonic-gate 			return (mp);
12220Sstevel@tonic-gate 		}
12230Sstevel@tonic-gate 		if (nfp == fp) {
12240Sstevel@tonic-gate 			/* Peer is trying to delete source address */
12250Sstevel@tonic-gate 			dprint(1, ("delip: del src addr: %x:%x:%x:%x\n",
12260Sstevel@tonic-gate 			    SCTP_PRINTADDR(addr)));
12270Sstevel@tonic-gate 			mp = sctp_asconf_adderr(SCTP_ERR_DEL_SRC_ADDR, oph,
12280Sstevel@tonic-gate 			    cid);
12290Sstevel@tonic-gate 			if (mp == NULL) {
12300Sstevel@tonic-gate 				*cont = -1;
12310Sstevel@tonic-gate 			}
12320Sstevel@tonic-gate 			return (mp);
12330Sstevel@tonic-gate 		}
12340Sstevel@tonic-gate 		if (!act) {
12350Sstevel@tonic-gate 			return (NULL);
12360Sstevel@tonic-gate 		}
12370Sstevel@tonic-gate 
12380Sstevel@tonic-gate 		sctp_unlink_faddr(sctp, nfp);
12390Sstevel@tonic-gate 		/* Update all references to the deleted faddr */
12400Sstevel@tonic-gate 		if (sctp->sctp_primary == nfp) {
12410Sstevel@tonic-gate 			sctp->sctp_primary = fp;
12420Sstevel@tonic-gate 		}
12430Sstevel@tonic-gate 		if (sctp->sctp_current == nfp) {
12440Sstevel@tonic-gate 			sctp->sctp_current = fp;
12450Sstevel@tonic-gate 			sctp->sctp_mss = fp->sfa_pmss;
12460Sstevel@tonic-gate 			sctp_faddr2hdraddr(fp, sctp);
12470Sstevel@tonic-gate 
12480Sstevel@tonic-gate 			if (!SCTP_IS_DETACHED(sctp)) {
12490Sstevel@tonic-gate 				sctp_set_ulp_prop(sctp);
12500Sstevel@tonic-gate 			}
12510Sstevel@tonic-gate 		}
12520Sstevel@tonic-gate 		if (sctp->sctp_lastdata == nfp) {
12530Sstevel@tonic-gate 			sctp->sctp_lastdata = fp;
12540Sstevel@tonic-gate 		}
12550Sstevel@tonic-gate 		if (sctp->sctp_shutdown_faddr == nfp) {
12560Sstevel@tonic-gate 			sctp->sctp_shutdown_faddr = nfp;
12570Sstevel@tonic-gate 		}
12580Sstevel@tonic-gate 		if (sctp->sctp_lastfaddr == nfp) {
12590Sstevel@tonic-gate 			for (fp = sctp->sctp_faddrs; fp->next; fp = fp->next)
12600Sstevel@tonic-gate 				;
12610Sstevel@tonic-gate 			sctp->sctp_lastfaddr = fp;
12620Sstevel@tonic-gate 		}
12630Sstevel@tonic-gate 		sctp_intf_event(sctp, addr, SCTP_ADDR_REMOVED, 0);
12640Sstevel@tonic-gate 	} else {
12650Sstevel@tonic-gate 		ASSERT(0);
12660Sstevel@tonic-gate 	}
12670Sstevel@tonic-gate 
12680Sstevel@tonic-gate 	/* Successful, don't need to return anything. */
12690Sstevel@tonic-gate 	return (NULL);
12700Sstevel@tonic-gate }
12710Sstevel@tonic-gate 
12720Sstevel@tonic-gate /*
12730Sstevel@tonic-gate  * Handles both add and delete IP ACKs.
12740Sstevel@tonic-gate  */
12750Sstevel@tonic-gate /*ARGSUSED*/
12760Sstevel@tonic-gate static void
12770Sstevel@tonic-gate sctp_addip_ack(sctp_t *sctp, sctp_parm_hdr_t *ph, sctp_parm_hdr_t *oph,
1278*852Svi117747     sctp_faddr_t *fp, in6_addr_t *laddr)
12790Sstevel@tonic-gate {
12800Sstevel@tonic-gate 	in6_addr_t		addr;
12810Sstevel@tonic-gate 	sctp_saddr_ipif_t	*sp;
12820Sstevel@tonic-gate 	ipaddr_t		*addr4;
12830Sstevel@tonic-gate 	boolean_t		backout = B_FALSE;
12840Sstevel@tonic-gate 	uint16_t		type;
12850Sstevel@tonic-gate 	uint32_t		*cid;
12860Sstevel@tonic-gate 
1287*852Svi117747 	/* could be an ASSERT */
1288*852Svi117747 	if (laddr != NULL)
1289*852Svi117747 		IN6_IPADDR_TO_V4MAPPED(0, laddr);
1290*852Svi117747 
12910Sstevel@tonic-gate 	/* If the peer doesn't understand Add-IP, remember it */
12920Sstevel@tonic-gate 	if (ph != NULL && ph->sph_type == htons(PARM_UNRECOGNIZED)) {
12930Sstevel@tonic-gate 		sctp->sctp_understands_addip = B_FALSE;
12940Sstevel@tonic-gate 		backout = B_TRUE;
12950Sstevel@tonic-gate 	}
12960Sstevel@tonic-gate 
12970Sstevel@tonic-gate 	/*
12980Sstevel@tonic-gate 	 * If OK, continue with the add / delete action, otherwise
12990Sstevel@tonic-gate 	 * back out the action.
13000Sstevel@tonic-gate 	 */
13010Sstevel@tonic-gate 	if (ph != NULL && ph->sph_type != htons(PARM_SUCCESS)) {
13020Sstevel@tonic-gate 		backout = B_TRUE;
13030Sstevel@tonic-gate 		sctp_error_event(sctp, (sctp_chunk_hdr_t *)ph);
13040Sstevel@tonic-gate 	}
13050Sstevel@tonic-gate 
13060Sstevel@tonic-gate 	type = ntohs(oph->sph_type);
13070Sstevel@tonic-gate 	cid = (uint32_t *)(oph + 1);
13080Sstevel@tonic-gate 	oph = (sctp_parm_hdr_t *)(cid + 1);
13090Sstevel@tonic-gate 	if (oph->sph_type == htons(PARM_ADDR4)) {
13100Sstevel@tonic-gate 		addr4 = (ipaddr_t *)(oph + 1);
13110Sstevel@tonic-gate 		IN6_IPADDR_TO_V4MAPPED(*addr4, &addr);
13120Sstevel@tonic-gate 	} else {
13130Sstevel@tonic-gate 		bcopy(oph + 1, &addr, sizeof (addr));
13140Sstevel@tonic-gate 	}
13150Sstevel@tonic-gate 
1316*852Svi117747 	/* Signifies that the address was sucessfully processed */
1317*852Svi117747 	if (!backout && laddr != NULL)
1318*852Svi117747 		*laddr = addr;
1319*852Svi117747 
1320*852Svi117747 	sp = sctp_saddr_lookup(sctp, &addr, 0);
13210Sstevel@tonic-gate 	ASSERT(sp != NULL);
13220Sstevel@tonic-gate 
13230Sstevel@tonic-gate 	if (type == PARM_ADD_IP) {
13240Sstevel@tonic-gate 		if (backout) {
13250Sstevel@tonic-gate 			sctp_del_saddr(sctp, sp);
13260Sstevel@tonic-gate 		} else {
13270Sstevel@tonic-gate 			sp->saddr_ipif_dontsrc = 0;
13280Sstevel@tonic-gate 		}
13290Sstevel@tonic-gate 	} else if (type == PARM_DEL_IP) {
13300Sstevel@tonic-gate 		if (backout) {
13310Sstevel@tonic-gate 			sp->saddr_ipif_delete_pending = 0;
13320Sstevel@tonic-gate 			sp->saddr_ipif_dontsrc = 0;
13330Sstevel@tonic-gate 		} else {
13340Sstevel@tonic-gate 			sctp_del_saddr(sctp, sp);
13350Sstevel@tonic-gate 		}
13360Sstevel@tonic-gate 	} else {
13370Sstevel@tonic-gate 		/* Must be either PARM_ADD_IP or PARM_DEL_IP */
13380Sstevel@tonic-gate 		ASSERT(0);
13390Sstevel@tonic-gate 	}
13400Sstevel@tonic-gate }
13410Sstevel@tonic-gate 
13420Sstevel@tonic-gate /*ARGSUSED*/
13430Sstevel@tonic-gate static mblk_t *
13440Sstevel@tonic-gate sctp_setprim_req(sctp_t *sctp, sctp_parm_hdr_t *ph, uint32_t cid,
1345*852Svi117747     sctp_faddr_t *fp, int *cont, int act, in6_addr_t *raddr)
13460Sstevel@tonic-gate {
13470Sstevel@tonic-gate 	mblk_t *mp;
13480Sstevel@tonic-gate 	sctp_parm_hdr_t *oph;
13490Sstevel@tonic-gate 	sctp_faddr_t *nfp;
13500Sstevel@tonic-gate 	in6_addr_t addr;
13510Sstevel@tonic-gate 
13520Sstevel@tonic-gate 	*cont = 1;
13530Sstevel@tonic-gate 
13540Sstevel@tonic-gate 	/* Check input */
13550Sstevel@tonic-gate 	if (ntohs(ph->sph_len) < (sizeof (*ph) * 2)) {
13560Sstevel@tonic-gate 		mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, ph, cid);
13570Sstevel@tonic-gate 		if (mp == NULL) {
13580Sstevel@tonic-gate 			*cont = -1;
13590Sstevel@tonic-gate 		}
13600Sstevel@tonic-gate 		return (mp);
13610Sstevel@tonic-gate 	}
13620Sstevel@tonic-gate 
13630Sstevel@tonic-gate 	oph = ph;
13640Sstevel@tonic-gate 	ph = (sctp_parm_hdr_t *)((char *)ph + sizeof (sctp_parm_hdr_t) +
13650Sstevel@tonic-gate 	    sizeof (cid));
13660Sstevel@tonic-gate 	mp = sctp_check_addip_addr(ph, oph, cont, cid, &addr);
13670Sstevel@tonic-gate 	if (mp != NULL) {
13680Sstevel@tonic-gate 		return (mp);
13690Sstevel@tonic-gate 	}
13700Sstevel@tonic-gate 
13710Sstevel@tonic-gate 	nfp = sctp_lookup_faddr(sctp, &addr);
13720Sstevel@tonic-gate 	if (nfp == NULL) {
13730Sstevel@tonic-gate 		/*
13740Sstevel@tonic-gate 		 * Peer is trying to set an address that is not
13750Sstevel@tonic-gate 		 * part of the association.
13760Sstevel@tonic-gate 		 */
13770Sstevel@tonic-gate 		dprint(1, ("setprim: addr not here: %x:%x:%x:%x\n",
13780Sstevel@tonic-gate 		    SCTP_PRINTADDR(addr)));
13790Sstevel@tonic-gate 		mp = sctp_asconf_adderr(SCTP_ERR_BAD_MANDPARM, oph, cid);
13800Sstevel@tonic-gate 		if (mp == NULL) {
13810Sstevel@tonic-gate 			*cont = -1;
13820Sstevel@tonic-gate 		}
13830Sstevel@tonic-gate 		return (mp);
13840Sstevel@tonic-gate 	}
13850Sstevel@tonic-gate 
13860Sstevel@tonic-gate 	sctp_intf_event(sctp, addr, SCTP_ADDR_MADE_PRIM, 0);
13870Sstevel@tonic-gate 	sctp->sctp_primary = nfp;
13880Sstevel@tonic-gate 	if (nfp->state != SCTP_FADDRS_ALIVE || nfp == sctp->sctp_current) {
13890Sstevel@tonic-gate 		return (NULL);
13900Sstevel@tonic-gate 	}
13910Sstevel@tonic-gate 	sctp->sctp_current = nfp;
13920Sstevel@tonic-gate 	sctp->sctp_mss = nfp->sfa_pmss;
13930Sstevel@tonic-gate 
13940Sstevel@tonic-gate 	/* Reset the addrs in the composite header */
13950Sstevel@tonic-gate 	sctp_faddr2hdraddr(nfp, sctp);
13960Sstevel@tonic-gate 	if (!SCTP_IS_DETACHED(sctp)) {
13970Sstevel@tonic-gate 		sctp_set_ulp_prop(sctp);
13980Sstevel@tonic-gate 	}
13990Sstevel@tonic-gate 
14000Sstevel@tonic-gate 	return (NULL);
14010Sstevel@tonic-gate }
14020Sstevel@tonic-gate 
14030Sstevel@tonic-gate /*ARGSUSED*/
14040Sstevel@tonic-gate static void
14050Sstevel@tonic-gate sctp_setprim_ack(sctp_t *sctp, sctp_parm_hdr_t *ph, sctp_parm_hdr_t *oph,
1406*852Svi117747     sctp_faddr_t *fp, in6_addr_t *laddr)
14070Sstevel@tonic-gate {
14080Sstevel@tonic-gate 	if (ph != NULL && ph->sph_type != htons(PARM_SUCCESS)) {
14090Sstevel@tonic-gate 		/* If the peer doesn't understand Add-IP, remember it */
14100Sstevel@tonic-gate 		if (ph->sph_type == htons(PARM_UNRECOGNIZED)) {
14110Sstevel@tonic-gate 			sctp->sctp_understands_addip = B_FALSE;
14120Sstevel@tonic-gate 		}
14130Sstevel@tonic-gate 		sctp_error_event(sctp, (sctp_chunk_hdr_t *)ph);
14140Sstevel@tonic-gate 	}
14150Sstevel@tonic-gate 
14160Sstevel@tonic-gate 	/* On success we do nothing */
14170Sstevel@tonic-gate }
14180Sstevel@tonic-gate 
14190Sstevel@tonic-gate int
14200Sstevel@tonic-gate sctp_add_ip(sctp_t *sctp, const void *addrs, uint32_t cnt)
14210Sstevel@tonic-gate {
14220Sstevel@tonic-gate 	struct sockaddr_in	*sin4;
14230Sstevel@tonic-gate 	struct sockaddr_in6	*sin6;
14240Sstevel@tonic-gate 	mblk_t			*mp;
14250Sstevel@tonic-gate 	int			error = 0;
14260Sstevel@tonic-gate 	int			i;
14270Sstevel@tonic-gate 	sctp_addip4_t		*ad4;
14280Sstevel@tonic-gate 	sctp_addip6_t		*ad6;
14290Sstevel@tonic-gate 	sctp_asconf_t		asc[1];
14300Sstevel@tonic-gate 	uint16_t		type = htons(PARM_ADD_IP);
14310Sstevel@tonic-gate 	boolean_t		v4mapped = B_FALSE;
1432*852Svi117747 	sctp_cl_ainfo_t		*ainfo = NULL;
14330Sstevel@tonic-gate 
14340Sstevel@tonic-gate 	/* Does the peer understand ASCONF and Add-IP? */
14350Sstevel@tonic-gate 	if (!sctp->sctp_understands_asconf || !sctp->sctp_understands_addip)
14360Sstevel@tonic-gate 		return (EOPNOTSUPP);
14370Sstevel@tonic-gate 
1438*852Svi117747 	/*
1439*852Svi117747 	 * On a clustered node, we need to pass this list when
1440*852Svi117747 	 * we get an ASCONF-ACK. We only pre-allocate memory for the
1441*852Svi117747 	 * list, but fill in the addresses when it is processed
1442*852Svi117747 	 * successfully after we get an ASCONF-ACK.
1443*852Svi117747 	 */
1444*852Svi117747 	if (cl_sctp_assoc_change != NULL) {
1445*852Svi117747 		ainfo = kmem_zalloc(sizeof (*ainfo), KM_SLEEP);
1446*852Svi117747 		/*
1447*852Svi117747 		 * Reserve space for the list of new addresses
1448*852Svi117747 		 */
1449*852Svi117747 		ainfo->sctp_cl_asize = sizeof (in6_addr_t) * cnt;
1450*852Svi117747 		ainfo->sctp_cl_alist = kmem_alloc(ainfo->sctp_cl_asize,
1451*852Svi117747 		    KM_SLEEP);
1452*852Svi117747 	}
1453*852Svi117747 
14540Sstevel@tonic-gate 	sctp_asconf_init(asc);
14550Sstevel@tonic-gate 
14560Sstevel@tonic-gate 	/*
14570Sstevel@tonic-gate 	 * Screen addresses:
14580Sstevel@tonic-gate 	 * If adding:
14590Sstevel@tonic-gate 	 *   o Must not already be a part of the association
14600Sstevel@tonic-gate 	 *   o Must be AF_INET or AF_INET6
14610Sstevel@tonic-gate 	 *   o XXX Must be valid source address for this node
14620Sstevel@tonic-gate 	 *   o Must be unicast
14630Sstevel@tonic-gate 	 *   o XXX Must fit scoping rules
14640Sstevel@tonic-gate 	 * If deleting:
14650Sstevel@tonic-gate 	 *   o Must be part of the association
14660Sstevel@tonic-gate 	 */
14670Sstevel@tonic-gate 	for (i = 0; i < cnt; i++) {
14680Sstevel@tonic-gate 		switch (sctp->sctp_family) {
14690Sstevel@tonic-gate 		case AF_INET:
14700Sstevel@tonic-gate 			sin4 = (struct sockaddr_in *)addrs + i;
14710Sstevel@tonic-gate 			v4mapped = B_TRUE;
14720Sstevel@tonic-gate 			break;
14730Sstevel@tonic-gate 
14740Sstevel@tonic-gate 		case AF_INET6:
14750Sstevel@tonic-gate 			sin6 = (struct sockaddr_in6 *)addrs + i;
14760Sstevel@tonic-gate 			break;
14770Sstevel@tonic-gate 		}
14780Sstevel@tonic-gate 
14790Sstevel@tonic-gate 		if (v4mapped) {
14800Sstevel@tonic-gate 			mp = allocb(sizeof (*ad4), BPRI_MED);
14810Sstevel@tonic-gate 			if (mp == NULL) {
14820Sstevel@tonic-gate 				error = ENOMEM;
14830Sstevel@tonic-gate 				goto fail;
14840Sstevel@tonic-gate 			}
14850Sstevel@tonic-gate 			mp->b_wptr += sizeof (*ad4);
14860Sstevel@tonic-gate 			ad4 = (sctp_addip4_t *)mp->b_rptr;
14870Sstevel@tonic-gate 			ad4->sad4_addip_ph.sph_type = type;
14880Sstevel@tonic-gate 			ad4->sad4_addip_ph.sph_len =
14890Sstevel@tonic-gate 			    htons(sizeof (sctp_parm_hdr_t) +
14900Sstevel@tonic-gate 			    PARM_ADDR4_LEN + sizeof (ad4->asconf_req_cid));
14910Sstevel@tonic-gate 			ad4->sad4_addr4_ph.sph_type = htons(PARM_ADDR4);
14920Sstevel@tonic-gate 			ad4->sad4_addr4_ph.sph_len = htons(PARM_ADDR4_LEN);
14930Sstevel@tonic-gate 			ad4->sad4_addr = sin4->sin_addr.s_addr;
14940Sstevel@tonic-gate 		} else {
14950Sstevel@tonic-gate 			mp = allocb(sizeof (*ad6), BPRI_MED);
14960Sstevel@tonic-gate 			if (mp == NULL) {
14970Sstevel@tonic-gate 				error = ENOMEM;
14980Sstevel@tonic-gate 				goto fail;
14990Sstevel@tonic-gate 			}
15000Sstevel@tonic-gate 			mp->b_wptr += sizeof (*ad6);
15010Sstevel@tonic-gate 			ad6 = (sctp_addip6_t *)mp->b_rptr;
15020Sstevel@tonic-gate 			ad6->sad6_addip_ph.sph_type = type;
15030Sstevel@tonic-gate 			ad6->sad6_addip_ph.sph_len =
15040Sstevel@tonic-gate 			    htons(sizeof (sctp_parm_hdr_t) +
15050Sstevel@tonic-gate 			    PARM_ADDR6_LEN + sizeof (ad6->asconf_req_cid));
15060Sstevel@tonic-gate 			ad6->sad6_addr6_ph.sph_type = htons(PARM_ADDR6);
15070Sstevel@tonic-gate 			ad6->sad6_addr6_ph.sph_len = htons(PARM_ADDR6_LEN);
15080Sstevel@tonic-gate 			ad6->sad6_addr = sin6->sin6_addr;
15090Sstevel@tonic-gate 		}
15100Sstevel@tonic-gate 		error = sctp_asconf_add(asc, mp);
15110Sstevel@tonic-gate 		if (error != 0)
15120Sstevel@tonic-gate 			goto fail;
15130Sstevel@tonic-gate 	}
1514*852Svi117747 	error = sctp_asconf_send(sctp, asc, sctp->sctp_current, ainfo);
15150Sstevel@tonic-gate 	if (error != 0)
15160Sstevel@tonic-gate 		goto fail;
15170Sstevel@tonic-gate 
15180Sstevel@tonic-gate 	return (0);
15190Sstevel@tonic-gate 
15200Sstevel@tonic-gate fail:
1521*852Svi117747 	if (ainfo != NULL) {
1522*852Svi117747 		kmem_free(ainfo->sctp_cl_alist, ainfo->sctp_cl_asize);
1523*852Svi117747 		ainfo->sctp_cl_asize = 0;
1524*852Svi117747 		kmem_free(ainfo, sizeof (*ainfo));
1525*852Svi117747 	}
15260Sstevel@tonic-gate 	sctp_asconf_destroy(asc);
15270Sstevel@tonic-gate 	return (error);
15280Sstevel@tonic-gate }
15290Sstevel@tonic-gate 
15300Sstevel@tonic-gate int
1531*852Svi117747 sctp_del_ip(sctp_t *sctp, const void *addrs, uint32_t cnt, uchar_t *ulist,
1532*852Svi117747     size_t usize)
15330Sstevel@tonic-gate {
15340Sstevel@tonic-gate 	struct sockaddr_in	*sin4;
15350Sstevel@tonic-gate 	struct sockaddr_in6	*sin6;
15360Sstevel@tonic-gate 	mblk_t			*mp;
15370Sstevel@tonic-gate 	int			error = 0;
15380Sstevel@tonic-gate 	int			i;
15390Sstevel@tonic-gate 	int			addrcnt = 0;
15400Sstevel@tonic-gate 	sctp_addip4_t		*ad4;
15410Sstevel@tonic-gate 	sctp_addip6_t		*ad6;
15420Sstevel@tonic-gate 	sctp_asconf_t		asc[1];
15430Sstevel@tonic-gate 	sctp_saddr_ipif_t	*nsp;
15440Sstevel@tonic-gate 	uint16_t		type = htons(PARM_DEL_IP);
15450Sstevel@tonic-gate 	boolean_t		v4mapped = B_FALSE;
15460Sstevel@tonic-gate 	in6_addr_t		addr;
15470Sstevel@tonic-gate 	boolean_t		asconf = B_TRUE;
1548*852Svi117747 	uint_t			ifindex;
1549*852Svi117747 	sctp_cl_ainfo_t		*ainfo = NULL;
1550*852Svi117747 	uchar_t			*p = ulist;
1551*852Svi117747 	boolean_t		check_lport = B_FALSE;
15520Sstevel@tonic-gate 
15530Sstevel@tonic-gate 	/* Does the peer understand ASCONF and Add-IP? */
15540Sstevel@tonic-gate 	if (sctp->sctp_state <= SCTPS_LISTEN || !sctp_addip_enabled ||
15550Sstevel@tonic-gate 	    !sctp->sctp_understands_asconf || !sctp->sctp_understands_addip) {
15560Sstevel@tonic-gate 		asconf = B_FALSE;
15570Sstevel@tonic-gate 	}
15580Sstevel@tonic-gate 
1559*852Svi117747 	if (sctp->sctp_state > SCTPS_BOUND)
1560*852Svi117747 		check_lport = B_TRUE;
1561*852Svi117747 
1562*852Svi117747 	if (asconf) {
1563*852Svi117747 		/*
1564*852Svi117747 		 * On a clustered node, we need to pass this list when
1565*852Svi117747 		 * we get an ASCONF-ACK. We only pre-allocate memory for the
1566*852Svi117747 		 * list, but fill in the addresses when it is processed
1567*852Svi117747 		 * successfully after we get an ASCONF-ACK.
1568*852Svi117747 		 */
1569*852Svi117747 		if (cl_sctp_assoc_change != NULL) {
1570*852Svi117747 			ainfo = kmem_alloc(sizeof (*ainfo), KM_SLEEP);
1571*852Svi117747 			ainfo->sctp_cl_dsize = sizeof (in6_addr_t) * cnt;
1572*852Svi117747 			ainfo->sctp_cl_dlist = kmem_alloc(ainfo->sctp_cl_dsize,
1573*852Svi117747 			    KM_SLEEP);
1574*852Svi117747 		}
15750Sstevel@tonic-gate 		sctp_asconf_init(asc);
1576*852Svi117747 	}
15770Sstevel@tonic-gate 	/*
15780Sstevel@tonic-gate 	 * Screen addresses:
15790Sstevel@tonic-gate 	 * If adding:
15800Sstevel@tonic-gate 	 *   o Must not already be a part of the association
15810Sstevel@tonic-gate 	 *   o Must be AF_INET or AF_INET6
15820Sstevel@tonic-gate 	 *   o XXX Must be valid source address for this node
15830Sstevel@tonic-gate 	 *   o Must be unicast
15840Sstevel@tonic-gate 	 *   o XXX Must fit scoping rules
15850Sstevel@tonic-gate 	 * If deleting:
15860Sstevel@tonic-gate 	 *   o Must be part of the association
15870Sstevel@tonic-gate 	 */
15880Sstevel@tonic-gate 	for (i = 0; i < cnt; i++) {
1589*852Svi117747 		ifindex = 0;
1590*852Svi117747 
15910Sstevel@tonic-gate 		switch (sctp->sctp_family) {
15920Sstevel@tonic-gate 		case AF_INET:
15930Sstevel@tonic-gate 			sin4 = (struct sockaddr_in *)addrs + i;
1594*852Svi117747 			if (check_lport && sin4->sin_port != sctp->sctp_lport) {
1595*852Svi117747 				error = EINVAL;
1596*852Svi117747 				goto fail;
1597*852Svi117747 			}
15980Sstevel@tonic-gate 			v4mapped = B_TRUE;
15990Sstevel@tonic-gate 			IN6_IPADDR_TO_V4MAPPED(sin4->sin_addr.s_addr, &addr);
16000Sstevel@tonic-gate 			break;
16010Sstevel@tonic-gate 
16020Sstevel@tonic-gate 		case AF_INET6:
16030Sstevel@tonic-gate 			sin6 = (struct sockaddr_in6 *)addrs + i;
1604*852Svi117747 			if (check_lport &&
1605*852Svi117747 			    sin6->sin6_port != sctp->sctp_lport) {
1606*852Svi117747 				error = EINVAL;
1607*852Svi117747 				goto fail;
1608*852Svi117747 			}
16090Sstevel@tonic-gate 			addr = sin6->sin6_addr;
1610*852Svi117747 			ifindex = sin6->sin6_scope_id;
16110Sstevel@tonic-gate 			break;
16120Sstevel@tonic-gate 		}
1613*852Svi117747 		nsp = sctp_saddr_lookup(sctp, &addr, ifindex);
16140Sstevel@tonic-gate 		if (nsp == NULL) {
16150Sstevel@tonic-gate 			error = EADDRNOTAVAIL;
16160Sstevel@tonic-gate 			goto fail;
16170Sstevel@tonic-gate 		}
16180Sstevel@tonic-gate 
1619*852Svi117747 		/* Collect the list of addresses, if required */
1620*852Svi117747 		if (usize >= sizeof (addr)) {
1621*852Svi117747 			bcopy(&addr, p, sizeof (addr));
1622*852Svi117747 			p += sizeof (addr);
1623*852Svi117747 			usize -= sizeof (addr);
1624*852Svi117747 		}
16250Sstevel@tonic-gate 		if (!asconf)
16260Sstevel@tonic-gate 			continue;
16270Sstevel@tonic-gate 
16280Sstevel@tonic-gate 		nsp->saddr_ipif_delete_pending = 1;
16290Sstevel@tonic-gate 		nsp->saddr_ipif_dontsrc = 1;
16300Sstevel@tonic-gate 		addrcnt++;
16310Sstevel@tonic-gate 		if (v4mapped) {
16320Sstevel@tonic-gate 			mp = allocb(sizeof (*ad4), BPRI_MED);
16330Sstevel@tonic-gate 			if (mp == NULL) {
16340Sstevel@tonic-gate 				error = ENOMEM;
16350Sstevel@tonic-gate 				goto fail;
16360Sstevel@tonic-gate 			}
16370Sstevel@tonic-gate 			mp->b_wptr += sizeof (*ad4);
16380Sstevel@tonic-gate 			ad4 = (sctp_addip4_t *)mp->b_rptr;
16390Sstevel@tonic-gate 			ad4->sad4_addip_ph.sph_type = type;
16400Sstevel@tonic-gate 			ad4->sad4_addip_ph.sph_len =
16410Sstevel@tonic-gate 			    htons(sizeof (sctp_parm_hdr_t) +
16420Sstevel@tonic-gate 			    PARM_ADDR4_LEN + sizeof (ad4->asconf_req_cid));
16430Sstevel@tonic-gate 			ad4->sad4_addr4_ph.sph_type = htons(PARM_ADDR4);
16440Sstevel@tonic-gate 			ad4->sad4_addr4_ph.sph_len = htons(PARM_ADDR4_LEN);
16450Sstevel@tonic-gate 			ad4->sad4_addr = sin4->sin_addr.s_addr;
16460Sstevel@tonic-gate 		} else {
16470Sstevel@tonic-gate 			mp = allocb(sizeof (*ad6), BPRI_MED);
16480Sstevel@tonic-gate 			if (mp == NULL) {
16490Sstevel@tonic-gate 				error = ENOMEM;
16500Sstevel@tonic-gate 				goto fail;
16510Sstevel@tonic-gate 			}
16520Sstevel@tonic-gate 			mp->b_wptr += sizeof (*ad6);
16530Sstevel@tonic-gate 			ad6 = (sctp_addip6_t *)mp->b_rptr;
16540Sstevel@tonic-gate 			ad6->sad6_addip_ph.sph_type = type;
16550Sstevel@tonic-gate 			ad6->sad6_addip_ph.sph_len =
16560Sstevel@tonic-gate 			    htons(sizeof (sctp_parm_hdr_t) + PARM_ADDR6_LEN +
16570Sstevel@tonic-gate 			    sizeof (ad6->asconf_req_cid));
16580Sstevel@tonic-gate 			ad6->sad6_addr6_ph.sph_type = htons(PARM_ADDR6);
16590Sstevel@tonic-gate 			ad6->sad6_addr6_ph.sph_len = htons(PARM_ADDR6_LEN);
16600Sstevel@tonic-gate 			ad6->sad6_addr = addr;
16610Sstevel@tonic-gate 		}
16620Sstevel@tonic-gate 
16630Sstevel@tonic-gate 		error = sctp_asconf_add(asc, mp);
16640Sstevel@tonic-gate 		if (error != 0)
16650Sstevel@tonic-gate 			goto fail;
16660Sstevel@tonic-gate 	}
16670Sstevel@tonic-gate 
16680Sstevel@tonic-gate 	if (!asconf) {
16690Sstevel@tonic-gate 		sctp_del_saddr_list(sctp, addrs, cnt, B_FALSE);
16700Sstevel@tonic-gate 		return (0);
16710Sstevel@tonic-gate 	}
1672*852Svi117747 	error = sctp_asconf_send(sctp, asc, sctp->sctp_current, ainfo);
16730Sstevel@tonic-gate 	if (error != 0)
16740Sstevel@tonic-gate 		goto fail;
16750Sstevel@tonic-gate 	sctp_redo_faddr_srcs(sctp);
16760Sstevel@tonic-gate 	return (0);
16770Sstevel@tonic-gate 
16780Sstevel@tonic-gate fail:
1679*852Svi117747 	if (ainfo != NULL) {
1680*852Svi117747 		kmem_free(ainfo->sctp_cl_dlist, ainfo->sctp_cl_dsize);
1681*852Svi117747 		ainfo->sctp_cl_dsize = 0;
1682*852Svi117747 		kmem_free(ainfo, sizeof (*ainfo));
1683*852Svi117747 	}
16840Sstevel@tonic-gate 	if (!asconf)
16850Sstevel@tonic-gate 		return (error);
16860Sstevel@tonic-gate 	for (i = 0; i < addrcnt; i++) {
1687*852Svi117747 		ifindex = 0;
1688*852Svi117747 
16890Sstevel@tonic-gate 		switch (sctp->sctp_family) {
16900Sstevel@tonic-gate 		case AF_INET:
16910Sstevel@tonic-gate 			sin4 = (struct sockaddr_in *)addrs + i;
16920Sstevel@tonic-gate 			IN6_INADDR_TO_V4MAPPED(&(sin4->sin_addr), &addr);
16930Sstevel@tonic-gate 			break;
16940Sstevel@tonic-gate 		case AF_INET6:
16950Sstevel@tonic-gate 			sin6 = (struct sockaddr_in6 *)addrs + i;
16960Sstevel@tonic-gate 			addr = sin6->sin6_addr;
1697*852Svi117747 			ifindex = sin6->sin6_scope_id;
16980Sstevel@tonic-gate 			break;
16990Sstevel@tonic-gate 		}
1700*852Svi117747 		nsp = sctp_saddr_lookup(sctp, &addr, ifindex);
17010Sstevel@tonic-gate 		ASSERT(nsp != NULL);
17020Sstevel@tonic-gate 		nsp->saddr_ipif_delete_pending = 0;
17030Sstevel@tonic-gate 		nsp->saddr_ipif_dontsrc = 0;
17040Sstevel@tonic-gate 	}
17050Sstevel@tonic-gate 	sctp_asconf_destroy(asc);
17060Sstevel@tonic-gate 
17070Sstevel@tonic-gate 	return (error);
17080Sstevel@tonic-gate }
17090Sstevel@tonic-gate 
17100Sstevel@tonic-gate int
17110Sstevel@tonic-gate sctp_set_peerprim(sctp_t *sctp, const void *inp, uint_t inlen)
17120Sstevel@tonic-gate {
17130Sstevel@tonic-gate 	const struct sctp_setprim	*prim = inp;
17140Sstevel@tonic-gate 	const struct sockaddr_storage	*ss;
17150Sstevel@tonic-gate 	struct sockaddr_in *sin;
17160Sstevel@tonic-gate 	struct sockaddr_in6 *sin6;
17170Sstevel@tonic-gate 	in6_addr_t addr;
17180Sstevel@tonic-gate 	mblk_t *mp;
17190Sstevel@tonic-gate 	sctp_saddr_ipif_t *sp;
17200Sstevel@tonic-gate 	sctp_addip4_t *ad4;
17210Sstevel@tonic-gate 	sctp_addip6_t *ad6;
17220Sstevel@tonic-gate 	sctp_asconf_t asc[1];
17230Sstevel@tonic-gate 	int error = 0;
1724*852Svi117747 	uint_t	ifindex = 0;
17250Sstevel@tonic-gate 
17260Sstevel@tonic-gate 	/* Does the peer understand ASCONF and Add-IP? */
17270Sstevel@tonic-gate 	if (!sctp->sctp_understands_asconf || !sctp->sctp_understands_addip) {
17280Sstevel@tonic-gate 		return (EOPNOTSUPP);
17290Sstevel@tonic-gate 	}
17300Sstevel@tonic-gate 
17310Sstevel@tonic-gate 	if (inlen < sizeof (*prim))
17320Sstevel@tonic-gate 		return (EINVAL);
17330Sstevel@tonic-gate 
17340Sstevel@tonic-gate 	/* Don't do anything if we are not connected */
17350Sstevel@tonic-gate 	if (sctp->sctp_state != SCTPS_ESTABLISHED)
17360Sstevel@tonic-gate 		return (EINVAL);
17370Sstevel@tonic-gate 
17380Sstevel@tonic-gate 	ss = &prim->ssp_addr;
17390Sstevel@tonic-gate 	sin = NULL;
17400Sstevel@tonic-gate 	sin6 = NULL;
17410Sstevel@tonic-gate 	if (ss->ss_family == AF_INET) {
17420Sstevel@tonic-gate 		sin = (struct sockaddr_in *)ss;
17430Sstevel@tonic-gate 		IN6_IPADDR_TO_V4MAPPED(sin->sin_addr.s_addr, &addr);
17440Sstevel@tonic-gate 	} else if (ss->ss_family == AF_INET6) {
17450Sstevel@tonic-gate 		sin6 = (struct sockaddr_in6 *)ss;
17460Sstevel@tonic-gate 		addr = sin6->sin6_addr;
1747*852Svi117747 		ifindex = sin6->sin6_scope_id;
17480Sstevel@tonic-gate 	} else {
17490Sstevel@tonic-gate 		return (EAFNOSUPPORT);
17500Sstevel@tonic-gate 	}
1751*852Svi117747 	sp = sctp_saddr_lookup(sctp, &addr, ifindex);
17520Sstevel@tonic-gate 	if (sp == NULL)
17530Sstevel@tonic-gate 		return (EADDRNOTAVAIL);
17540Sstevel@tonic-gate 	sctp_asconf_init(asc);
17550Sstevel@tonic-gate 	if (sin) {
17560Sstevel@tonic-gate 		mp = allocb(sizeof (*ad4), BPRI_MED);
17570Sstevel@tonic-gate 		if (mp == NULL) {
17580Sstevel@tonic-gate 			error = ENOMEM;
17590Sstevel@tonic-gate 			goto fail;
17600Sstevel@tonic-gate 		}
17610Sstevel@tonic-gate 		mp->b_wptr += sizeof (*ad4);
17620Sstevel@tonic-gate 		ad4 = (sctp_addip4_t *)mp->b_rptr;
17630Sstevel@tonic-gate 		ad4->sad4_addip_ph.sph_type = htons(PARM_SET_PRIMARY);
17640Sstevel@tonic-gate 		ad4->sad4_addip_ph.sph_len = htons(sizeof (sctp_parm_hdr_t) +
17650Sstevel@tonic-gate 		    PARM_ADDR4_LEN + sizeof (ad4->asconf_req_cid));
17660Sstevel@tonic-gate 		ad4->sad4_addr4_ph.sph_type = htons(PARM_ADDR4);
17670Sstevel@tonic-gate 		ad4->sad4_addr4_ph.sph_len = htons(PARM_ADDR4_LEN);
17680Sstevel@tonic-gate 		ad4->sad4_addr = sin->sin_addr.s_addr;
17690Sstevel@tonic-gate 	} else {
17700Sstevel@tonic-gate 		mp = allocb(sizeof (*ad6), BPRI_MED);
17710Sstevel@tonic-gate 		if (mp == NULL) {
17720Sstevel@tonic-gate 			error = ENOMEM;
17730Sstevel@tonic-gate 			goto fail;
17740Sstevel@tonic-gate 		}
17750Sstevel@tonic-gate 		mp->b_wptr += sizeof (*ad6);
17760Sstevel@tonic-gate 		ad6 = (sctp_addip6_t *)mp->b_rptr;
17770Sstevel@tonic-gate 		ad6->sad6_addip_ph.sph_type = htons(PARM_SET_PRIMARY);
17780Sstevel@tonic-gate 		ad6->sad6_addip_ph.sph_len = htons(sizeof (sctp_parm_hdr_t) +
17790Sstevel@tonic-gate 		    PARM_ADDR6_LEN + sizeof (ad6->asconf_req_cid));
17800Sstevel@tonic-gate 		ad6->sad6_addr6_ph.sph_type = htons(PARM_ADDR6);
17810Sstevel@tonic-gate 		ad6->sad6_addr6_ph.sph_len = htons(PARM_ADDR6_LEN);
17820Sstevel@tonic-gate 		ad6->sad6_addr = sin6->sin6_addr;
17830Sstevel@tonic-gate 	}
17840Sstevel@tonic-gate 
17850Sstevel@tonic-gate 	error = sctp_asconf_add(asc, mp);
17860Sstevel@tonic-gate 	if (error != 0) {
17870Sstevel@tonic-gate 		goto fail;
17880Sstevel@tonic-gate 	}
17890Sstevel@tonic-gate 
1790*852Svi117747 	error = sctp_asconf_send(sctp, asc, sctp->sctp_current, NULL);
17910Sstevel@tonic-gate 	if (error == 0) {
17920Sstevel@tonic-gate 		return (0);
17930Sstevel@tonic-gate 	}
17940Sstevel@tonic-gate 
17950Sstevel@tonic-gate fail:
17960Sstevel@tonic-gate 	sctp_asconf_destroy(asc);
17970Sstevel@tonic-gate 	return (error);
17980Sstevel@tonic-gate }
1799