1 /* $OpenBSD: in.h,v 1.92 2012/07/10 11:49:42 guenther Exp $ */ 2 /* $NetBSD: in.h,v 1.20 1996/02/13 23:41:47 christos Exp $ */ 3 4 /* 5 * Copyright (c) 1982, 1986, 1990, 1993 6 * The Regents of the University of California. All rights reserved. 7 * 8 * Redistribution and use in source and binary forms, with or without 9 * modification, are permitted provided that the following conditions 10 * are met: 11 * 1. Redistributions of source code must retain the above copyright 12 * notice, this list of conditions and the following disclaimer. 13 * 2. Redistributions in binary form must reproduce the above copyright 14 * notice, this list of conditions and the following disclaimer in the 15 * documentation and/or other materials provided with the distribution. 16 * 3. Neither the name of the University nor the names of its contributors 17 * may be used to endorse or promote products derived from this software 18 * without specific prior written permission. 19 * 20 * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND 21 * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 22 * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 23 * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE 24 * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 25 * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 26 * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 27 * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 28 * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 29 * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 30 * SUCH DAMAGE. 31 * 32 * @(#)in.h 8.3 (Berkeley) 1/3/94 33 */ 34 35 /* 36 * Constants and structures defined by the internet system, 37 * Per RFC 790, September 1981, and numerous additions. 38 */ 39 40 #ifndef _NETINET_IN_H_ 41 #define _NETINET_IN_H_ 42 43 #include <sys/cdefs.h> 44 45 #ifndef _KERNEL 46 #include <sys/types.h> 47 #include <machine/endian.h> 48 #endif 49 50 /* 51 * Protocols 52 */ 53 #define IPPROTO_IP 0 /* dummy for IP */ 54 #define IPPROTO_HOPOPTS IPPROTO_IP /* Hop-by-hop option header */ 55 #define IPPROTO_ICMP 1 /* control message protocol */ 56 #define IPPROTO_IGMP 2 /* group mgmt protocol */ 57 #define IPPROTO_GGP 3 /* gateway^2 (deprecated) */ 58 #define IPPROTO_IPIP 4 /* IP inside IP */ 59 #define IPPROTO_IPV4 IPPROTO_IPIP /* IP inside IP */ 60 #define IPPROTO_TCP 6 /* tcp */ 61 #define IPPROTO_EGP 8 /* exterior gateway protocol */ 62 #define IPPROTO_PUP 12 /* pup */ 63 #define IPPROTO_UDP 17 /* user datagram protocol */ 64 #define IPPROTO_IDP 22 /* xns idp */ 65 #define IPPROTO_TP 29 /* tp-4 w/ class negotiation */ 66 #define IPPROTO_IPV6 41 /* IPv6 in IPv6 */ 67 #define IPPROTO_ROUTING 43 /* Routing header */ 68 #define IPPROTO_FRAGMENT 44 /* Fragmentation/reassembly header */ 69 #define IPPROTO_RSVP 46 /* resource reservation */ 70 #define IPPROTO_GRE 47 /* GRE encap, RFCs 1701/1702 */ 71 #define IPPROTO_ESP 50 /* Encap. Security Payload */ 72 #define IPPROTO_AH 51 /* Authentication header */ 73 #define IPPROTO_MOBILE 55 /* IP Mobility, RFC 2004 */ 74 #define IPPROTO_ICMPV6 58 /* ICMP for IPv6 */ 75 #define IPPROTO_NONE 59 /* No next header */ 76 #define IPPROTO_DSTOPTS 60 /* Destination options header */ 77 #define IPPROTO_EON 80 /* ISO cnlp */ 78 #define IPPROTO_ETHERIP 97 /* Ethernet in IPv4 */ 79 #define IPPROTO_ENCAP 98 /* encapsulation header */ 80 #define IPPROTO_PIM 103 /* Protocol indep. multicast */ 81 #define IPPROTO_IPCOMP 108 /* IP Payload Comp. Protocol */ 82 #define IPPROTO_CARP 112 /* CARP */ 83 #define IPPROTO_MPLS 137 /* unicast MPLS packet */ 84 #define IPPROTO_PFSYNC 240 /* PFSYNC */ 85 #define IPPROTO_RAW 255 /* raw IP packet */ 86 87 #define IPPROTO_MAX 256 88 89 /* Only used internally, so it can be outside the range of valid IP protocols */ 90 #define IPPROTO_DIVERT 258 /* Divert sockets */ 91 92 93 /* 94 * From FreeBSD: 95 * 96 * Local port number conventions: 97 * 98 * When a user does a bind(2) or connect(2) with a port number of zero, 99 * a non-conflicting local port address is chosen. 100 * The default range is IPPORT_RESERVED through 101 * IPPORT_USERRESERVED, although that is settable by sysctl. 102 * 103 * A user may set the IPPROTO_IP option IP_PORTRANGE to change this 104 * default assignment range. 105 * 106 * The value IP_PORTRANGE_DEFAULT causes the default behavior. 107 * 108 * The value IP_PORTRANGE_HIGH changes the range of candidate port numbers 109 * into the "high" range. These are reserved for client outbound connections 110 * which do not want to be filtered by any firewalls. 111 * 112 * The value IP_PORTRANGE_LOW changes the range to the "low" are 113 * that is (by convention) restricted to privileged processes. This 114 * convention is based on "vouchsafe" principles only. It is only secure 115 * if you trust the remote host to restrict these ports. 116 * 117 * The default range of ports and the high range can be changed by 118 * sysctl(3). (net.inet.ip.port{hi}{first,last}) 119 * 120 * Changing those values has bad security implications if you are 121 * using a a stateless firewall that is allowing packets outside of that 122 * range in order to allow transparent outgoing connections. 123 * 124 * Such a firewall configuration will generally depend on the use of these 125 * default values. If you change them, you may find your Security 126 * Administrator looking for you with a heavy object. 127 */ 128 129 /* 130 * Ports < IPPORT_RESERVED are reserved for 131 * privileged processes (e.g. root). 132 * Ports > IPPORT_USERRESERVED are reserved 133 * for servers, not necessarily privileged. 134 */ 135 #define IPPORT_RESERVED 1024 136 #define IPPORT_USERRESERVED 49151 137 138 /* 139 * Default local port range to use by setting IP_PORTRANGE_HIGH 140 */ 141 #define IPPORT_HIFIRSTAUTO 49152 142 #define IPPORT_HILASTAUTO 65535 143 144 #ifndef _IN_ADDR_DECLARED 145 #define _IN_ADDR_DECLARED 146 /* 147 * IP Version 4 Internet address (a structure for historical reasons) 148 */ 149 struct in_addr { 150 in_addr_t s_addr; 151 }; 152 #endif 153 154 /* last return value of *_input(), meaning "all job for this pkt is done". */ 155 #define IPPROTO_DONE 257 156 157 /* 158 * Definitions of bits in internet address integers. 159 * On subnets, the decomposition of addresses to host and net parts 160 * is done according to subnet mask, not the masks here. 161 * 162 * By byte-swapping the constants, we avoid ever having to byte-swap IP 163 * addresses inside the kernel. Unfortunately, user-level programs rely 164 * on these macros not doing byte-swapping. 165 */ 166 #ifdef _KERNEL 167 #define __IPADDR(x) ((u_int32_t) htonl((u_int32_t)(x))) 168 #else 169 #define __IPADDR(x) ((u_int32_t)(x)) 170 #endif 171 172 #define IN_CLASSA(i) (((u_int32_t)(i) & __IPADDR(0x80000000)) == \ 173 __IPADDR(0x00000000)) 174 #define IN_CLASSA_NET __IPADDR(0xff000000) 175 #define IN_CLASSA_NSHIFT 24 176 #define IN_CLASSA_HOST __IPADDR(0x00ffffff) 177 #define IN_CLASSA_MAX 128 178 179 #define IN_CLASSB(i) (((u_int32_t)(i) & __IPADDR(0xc0000000)) == \ 180 __IPADDR(0x80000000)) 181 #define IN_CLASSB_NET __IPADDR(0xffff0000) 182 #define IN_CLASSB_NSHIFT 16 183 #define IN_CLASSB_HOST __IPADDR(0x0000ffff) 184 #define IN_CLASSB_MAX 65536 185 186 #define IN_CLASSC(i) (((u_int32_t)(i) & __IPADDR(0xe0000000)) == \ 187 __IPADDR(0xc0000000)) 188 #define IN_CLASSC_NET __IPADDR(0xffffff00) 189 #define IN_CLASSC_NSHIFT 8 190 #define IN_CLASSC_HOST __IPADDR(0x000000ff) 191 192 #define IN_CLASSD(i) (((u_int32_t)(i) & __IPADDR(0xf0000000)) == \ 193 __IPADDR(0xe0000000)) 194 /* These ones aren't really net and host fields, but routing needn't know. */ 195 #define IN_CLASSD_NET __IPADDR(0xf0000000) 196 #define IN_CLASSD_NSHIFT 28 197 #define IN_CLASSD_HOST __IPADDR(0x0fffffff) 198 #define IN_MULTICAST(i) IN_CLASSD(i) 199 200 #define IN_RFC3021_NET __IPADDR(0xfffffffe) 201 #define IN_RFC3021_NSHIFT 31 202 #define IN_RFC3021_HOST __IPADDR(0x00000001) 203 #define IN_RFC3021_SUBNET(n) (((u_int32_t)(n) & IN_RFC3021_NET) == \ 204 IN_RFC3021_NET) 205 206 #define IN_EXPERIMENTAL(i) (((u_int32_t)(i) & __IPADDR(0xf0000000)) == \ 207 __IPADDR(0xf0000000)) 208 #define IN_BADCLASS(i) (((u_int32_t)(i) & __IPADDR(0xf0000000)) == \ 209 __IPADDR(0xf0000000)) 210 211 #define IN_LOCAL_GROUP(i) (((u_int32_t)(i) & __IPADDR(0xffffff00)) == \ 212 __IPADDR(0xe0000000)) 213 214 #ifdef _KERNEL 215 #define IN_CLASSFULBROADCAST(i, b) \ 216 ((IN_CLASSC(b) && (b | IN_CLASSC_HOST) == i) || \ 217 (IN_CLASSB(b) && (b | IN_CLASSB_HOST) == i) || \ 218 (IN_CLASSA(b) && (b | IN_CLASSA_HOST) == i)) 219 #endif /* _KERNEL */ 220 221 #define INADDR_ANY __IPADDR(0x00000000) 222 #define INADDR_LOOPBACK __IPADDR(0x7f000001) 223 #define INADDR_BROADCAST __IPADDR(0xffffffff) /* must be masked */ 224 #ifndef _KERNEL 225 #define INADDR_NONE __IPADDR(0xffffffff) /* -1 return */ 226 #endif 227 228 #define INADDR_UNSPEC_GROUP __IPADDR(0xe0000000) /* 224.0.0.0 */ 229 #define INADDR_ALLHOSTS_GROUP __IPADDR(0xe0000001) /* 224.0.0.1 */ 230 #define INADDR_ALLROUTERS_GROUP __IPADDR(0xe0000002) /* 224.0.0.2 */ 231 #define INADDR_CARP_GROUP __IPADDR(0xe0000012) /* 224.0.0.18 */ 232 #define INADDR_PFSYNC_GROUP __IPADDR(0xe00000f0) /* 224.0.0.240 */ 233 #define INADDR_MAX_LOCAL_GROUP __IPADDR(0xe00000ff) /* 224.0.0.255 */ 234 235 #define IN_LOOPBACKNET 127 /* official! */ 236 237 /* 238 * IP Version 4 socket address. 239 */ 240 struct sockaddr_in { 241 u_int8_t sin_len; 242 sa_family_t sin_family; 243 in_port_t sin_port; 244 struct in_addr sin_addr; 245 int8_t sin_zero[8]; 246 }; 247 248 /* 249 * Structure used to describe IP options. 250 * Used to store options internally, to pass them to a process, 251 * or to restore options retrieved earlier. 252 * The ip_dst is used for the first-hop gateway when using a source route 253 * (this gets put into the header proper). 254 */ 255 struct ip_opts { 256 struct in_addr ip_dst; /* first hop, 0 w/o src rt */ 257 #if defined(__cplusplus) 258 int8_t Ip_opts[40]; /* cannot have same name as class */ 259 #else 260 int8_t ip_opts[40]; /* actually variable in size */ 261 #endif 262 }; 263 264 /* 265 * Options for use with [gs]etsockopt at the IP level. 266 * First word of comment is data type; bool is stored in int. 267 */ 268 #define IP_OPTIONS 1 /* buf/ip_opts; set/get IP options */ 269 #define IP_HDRINCL 2 /* int; header is included with data */ 270 #define IP_TOS 3 /* int; IP type of service and preced. */ 271 #define IP_TTL 4 /* int; IP time to live */ 272 #define IP_RECVOPTS 5 /* bool; receive all IP opts w/dgram */ 273 #define IP_RECVRETOPTS 6 /* bool; receive IP opts for response */ 274 #define IP_RECVDSTADDR 7 /* bool; receive IP dst addr w/dgram */ 275 #define IP_RETOPTS 8 /* ip_opts; set/get IP options */ 276 #define IP_MULTICAST_IF 9 /* in_addr; set/get IP multicast i/f */ 277 #define IP_MULTICAST_TTL 10 /* u_char; set/get IP multicast ttl */ 278 #define IP_MULTICAST_LOOP 11 /* u_char; set/get IP multicast loopback */ 279 #define IP_ADD_MEMBERSHIP 12 /* ip_mreq; add an IP group membership */ 280 #define IP_DROP_MEMBERSHIP 13 /* ip_mreq; drop an IP group membership */ 281 282 /* 14-17 left empty for future compatibility with FreeBSD */ 283 284 #define IP_PORTRANGE 19 /* int; range to choose for unspec port */ 285 #define IP_AUTH_LEVEL 20 /* int; authentication used */ 286 #define IP_ESP_TRANS_LEVEL 21 /* int; transport encryption */ 287 #define IP_ESP_NETWORK_LEVEL 22 /* int; full-packet encryption */ 288 #define IP_IPSEC_LOCAL_ID 23 /* buf; IPsec local ID */ 289 #define IP_IPSEC_REMOTE_ID 24 /* buf; IPsec remote ID */ 290 #define IP_IPSEC_LOCAL_CRED 25 /* buf; IPsec local credentials */ 291 #define IP_IPSEC_REMOTE_CRED 26 /* buf; IPsec remote credentials */ 292 #define IP_IPSEC_LOCAL_AUTH 27 /* buf; IPsec local auth material */ 293 #define IP_IPSEC_REMOTE_AUTH 28 /* buf; IPsec remote auth material */ 294 #define IP_IPCOMP_LEVEL 29 /* int; compression used */ 295 #define IP_RECVIF 30 /* bool; receive reception if w/dgram */ 296 #define IP_RECVTTL 31 /* bool; receive IP TTL w/dgram */ 297 #define IP_MINTTL 32 /* minimum TTL for packet or drop */ 298 #define IP_RECVDSTPORT 33 /* bool; receive IP dst port w/dgram */ 299 #define IP_PIPEX 34 /* bool; using PIPEX */ 300 #define IP_RECVRTABLE 35 /* bool; receive rdomain w/dgram */ 301 302 #define IP_RTABLE 0x1021 /* int; routing table, see SO_RTABLE */ 303 304 305 #if __BSD_VISIBLE 306 /* 307 * Security levels - IPsec, not IPSO 308 */ 309 310 #define IPSEC_LEVEL_BYPASS 0x00 /* Bypass policy altogether */ 311 #define IPSEC_LEVEL_NONE 0x00 /* Send clear, accept any */ 312 #define IPSEC_LEVEL_AVAIL 0x01 /* Send secure if SA available */ 313 #define IPSEC_LEVEL_USE 0x02 /* Send secure, accept any */ 314 #define IPSEC_LEVEL_REQUIRE 0x03 /* Require secure inbound, also use */ 315 #define IPSEC_LEVEL_UNIQUE 0x04 /* Use outbound SA that is unique */ 316 #define IPSEC_LEVEL_DEFAULT IPSEC_LEVEL_AVAIL 317 318 #define IPSEC_AUTH_LEVEL_DEFAULT IPSEC_LEVEL_DEFAULT 319 #define IPSEC_ESP_TRANS_LEVEL_DEFAULT IPSEC_LEVEL_DEFAULT 320 #define IPSEC_ESP_NETWORK_LEVEL_DEFAULT IPSEC_LEVEL_DEFAULT 321 #define IPSEC_IPCOMP_LEVEL_DEFAULT IPSEC_LEVEL_DEFAULT 322 323 #endif /* __BSD_VISIBLE */ 324 325 /* 326 * Defaults and limits for options 327 */ 328 #define IP_DEFAULT_MULTICAST_TTL 1 /* normally limit m'casts to 1 hop */ 329 #define IP_DEFAULT_MULTICAST_LOOP 1 /* normally hear sends if a member */ 330 /* 331 * The imo_membership vector for each socket starts at IP_MIN_MEMBERSHIPS 332 * and is dynamically allocated at run-time, bounded by IP_MAX_MEMBERSHIPS, 333 * and is reallocated when needed, sized according to a power-of-two increment. 334 */ 335 #define IP_MIN_MEMBERSHIPS 15 336 #define IP_MAX_MEMBERSHIPS 4095 337 338 /* 339 * Argument structure for IP_ADD_MEMBERSHIP and IP_DROP_MEMBERSHIP. 340 */ 341 struct ip_mreq { 342 struct in_addr imr_multiaddr; /* IP multicast address of group */ 343 struct in_addr imr_interface; /* local IP address of interface */ 344 }; 345 346 /* 347 * Argument for IP_PORTRANGE: 348 * - which range to search when port is unspecified at bind() or connect() 349 */ 350 #define IP_PORTRANGE_DEFAULT 0 /* default range */ 351 #define IP_PORTRANGE_HIGH 1 /* "high" - request firewall bypass */ 352 #define IP_PORTRANGE_LOW 2 /* "low" - vouchsafe security */ 353 354 /* 355 * Buffer lengths for strings containing printable IP addresses 356 */ 357 #ifndef INET_ADDRSTRLEN 358 #define INET_ADDRSTRLEN 16 359 #endif 360 361 362 #if __BSD_VISIBLE 363 /* 364 * Definitions for inet sysctl operations. 365 * 366 * Third level is protocol number. 367 * Fourth level is desired variable within that protocol. 368 */ 369 #define IPPROTO_MAXID (IPPROTO_DIVERT + 1) /* don't list to IPPROTO_MAX */ 370 371 #define CTL_IPPROTO_NAMES { \ 372 { "ip", CTLTYPE_NODE }, \ 373 { "icmp", CTLTYPE_NODE }, \ 374 { "igmp", CTLTYPE_NODE }, \ 375 { "ggp", CTLTYPE_NODE }, \ 376 { "ipip", CTLTYPE_NODE }, \ 377 { 0, 0 }, \ 378 { "tcp", CTLTYPE_NODE }, \ 379 { 0, 0 }, \ 380 { "egp", CTLTYPE_NODE }, \ 381 { 0, 0 }, \ 382 { 0, 0 }, \ 383 { 0, 0 }, \ 384 { "pup", CTLTYPE_NODE }, \ 385 { 0, 0 }, \ 386 { 0, 0 }, \ 387 { 0, 0 }, \ 388 { 0, 0 }, \ 389 { "udp", CTLTYPE_NODE }, \ 390 { 0, 0 }, \ 391 { 0, 0 }, \ 392 { 0, 0 }, \ 393 { 0, 0 }, \ 394 { 0, 0 }, \ 395 { 0, 0 }, \ 396 { 0, 0 }, \ 397 { 0, 0 }, \ 398 { 0, 0 }, \ 399 { 0, 0 }, \ 400 { 0, 0 }, \ 401 { 0, 0 }, \ 402 { 0, 0 }, \ 403 { 0, 0 }, \ 404 { 0, 0 }, \ 405 { 0, 0 }, \ 406 { 0, 0 }, \ 407 { 0, 0 }, \ 408 { 0, 0 }, \ 409 { 0, 0 }, \ 410 { 0, 0 }, \ 411 { 0, 0 }, \ 412 { 0, 0 }, \ 413 { 0, 0 }, \ 414 { 0, 0 }, \ 415 { 0, 0 }, \ 416 { 0, 0 }, \ 417 { 0, 0 }, \ 418 { 0, 0 }, \ 419 { "gre", CTLTYPE_NODE }, \ 420 { 0, 0 }, \ 421 { 0, 0 }, \ 422 { "esp", CTLTYPE_NODE }, \ 423 { "ah", CTLTYPE_NODE }, \ 424 { 0, 0 }, \ 425 { 0, 0 }, \ 426 { 0, 0 }, \ 427 { "mobileip", CTLTYPE_NODE }, \ 428 { 0, 0 }, \ 429 { 0, 0 }, \ 430 { 0, 0 }, \ 431 { 0, 0 }, \ 432 { 0, 0 }, \ 433 { 0, 0 }, \ 434 { 0, 0 }, \ 435 { 0, 0 }, \ 436 { 0, 0 }, \ 437 { 0, 0 }, \ 438 { 0, 0 }, \ 439 { 0, 0 }, \ 440 { 0, 0 }, \ 441 { 0, 0 }, \ 442 { 0, 0 }, \ 443 { 0, 0 }, \ 444 { 0, 0 }, \ 445 { 0, 0 }, \ 446 { 0, 0 }, \ 447 { 0, 0 }, \ 448 { 0, 0 }, \ 449 { 0, 0 }, \ 450 { 0, 0 }, \ 451 { 0, 0 }, \ 452 { 0, 0 }, \ 453 { 0, 0 }, \ 454 { 0, 0 }, \ 455 { 0, 0 }, \ 456 { 0, 0 }, \ 457 { 0, 0 }, \ 458 { 0, 0 }, \ 459 { 0, 0 }, \ 460 { 0, 0 }, \ 461 { 0, 0 }, \ 462 { 0, 0 }, \ 463 { 0, 0 }, \ 464 { 0, 0 }, \ 465 { 0, 0 }, \ 466 { 0, 0 }, \ 467 { 0, 0 }, \ 468 { 0, 0 }, \ 469 { "etherip", CTLTYPE_NODE }, \ 470 { 0, 0 }, \ 471 { 0, 0 }, \ 472 { 0, 0 }, \ 473 { 0, 0 }, \ 474 { 0, 0 }, \ 475 { "pim", CTLTYPE_NODE }, \ 476 { 0, 0 }, \ 477 { 0, 0 }, \ 478 { 0, 0 }, \ 479 { 0, 0 }, \ 480 { "ipcomp", CTLTYPE_NODE }, \ 481 { 0, 0 }, \ 482 { 0, 0 }, \ 483 { 0, 0 }, \ 484 { "carp", CTLTYPE_NODE }, \ 485 { 0, 0 }, \ 486 { 0, 0 }, \ 487 { 0, 0 }, \ 488 { 0, 0 }, \ 489 { 0, 0 }, \ 490 { 0, 0 }, \ 491 { 0, 0 }, \ 492 { 0, 0 }, \ 493 { 0, 0 }, \ 494 { 0, 0 }, \ 495 { 0, 0 }, \ 496 { 0, 0 }, \ 497 { 0, 0 }, \ 498 { 0, 0 }, \ 499 { 0, 0 }, \ 500 { 0, 0 }, \ 501 { 0, 0 }, \ 502 { 0, 0 }, \ 503 { 0, 0 }, \ 504 { 0, 0 }, \ 505 { 0, 0 }, \ 506 { 0, 0 }, \ 507 { 0, 0 }, \ 508 { 0, 0 }, \ 509 { 0, 0 }, \ 510 { 0, 0 }, \ 511 { 0, 0 }, \ 512 { 0, 0 }, \ 513 { 0, 0 }, \ 514 { 0, 0 }, \ 515 { 0, 0 }, \ 516 { 0, 0 }, \ 517 { 0, 0 }, \ 518 { 0, 0 }, \ 519 { 0, 0 }, \ 520 { 0, 0 }, \ 521 { 0, 0 }, \ 522 { 0, 0 }, \ 523 { 0, 0 }, \ 524 { 0, 0 }, \ 525 { 0, 0 }, \ 526 { 0, 0 }, \ 527 { 0, 0 }, \ 528 { 0, 0 }, \ 529 { 0, 0 }, \ 530 { 0, 0 }, \ 531 { 0, 0 }, \ 532 { 0, 0 }, \ 533 { 0, 0 }, \ 534 { 0, 0 }, \ 535 { 0, 0 }, \ 536 { 0, 0 }, \ 537 { 0, 0 }, \ 538 { 0, 0 }, \ 539 { 0, 0 }, \ 540 { 0, 0 }, \ 541 { 0, 0 }, \ 542 { 0, 0 }, \ 543 { 0, 0 }, \ 544 { 0, 0 }, \ 545 { 0, 0 }, \ 546 { 0, 0 }, \ 547 { 0, 0 }, \ 548 { 0, 0 }, \ 549 { 0, 0 }, \ 550 { 0, 0 }, \ 551 { 0, 0 }, \ 552 { 0, 0 }, \ 553 { 0, 0 }, \ 554 { 0, 0 }, \ 555 { 0, 0 }, \ 556 { 0, 0 }, \ 557 { 0, 0 }, \ 558 { 0, 0 }, \ 559 { 0, 0 }, \ 560 { 0, 0 }, \ 561 { 0, 0 }, \ 562 { 0, 0 }, \ 563 { 0, 0 }, \ 564 { 0, 0 }, \ 565 { 0, 0 }, \ 566 { 0, 0 }, \ 567 { 0, 0 }, \ 568 { 0, 0 }, \ 569 { 0, 0 }, \ 570 { 0, 0 }, \ 571 { 0, 0 }, \ 572 { 0, 0 }, \ 573 { 0, 0 }, \ 574 { 0, 0 }, \ 575 { 0, 0 }, \ 576 { 0, 0 }, \ 577 { 0, 0 }, \ 578 { 0, 0 }, \ 579 { 0, 0 }, \ 580 { 0, 0 }, \ 581 { 0, 0 }, \ 582 { 0, 0 }, \ 583 { 0, 0 }, \ 584 { 0, 0 }, \ 585 { 0, 0 }, \ 586 { 0, 0 }, \ 587 { 0, 0 }, \ 588 { 0, 0 }, \ 589 { 0, 0 }, \ 590 { 0, 0 }, \ 591 { 0, 0 }, \ 592 { 0, 0 }, \ 593 { 0, 0 }, \ 594 { 0, 0 }, \ 595 { 0, 0 }, \ 596 { 0, 0 }, \ 597 { 0, 0 }, \ 598 { 0, 0 }, \ 599 { 0, 0 }, \ 600 { 0, 0 }, \ 601 { 0, 0 }, \ 602 { 0, 0 }, \ 603 { 0, 0 }, \ 604 { 0, 0 }, \ 605 { 0, 0 }, \ 606 { 0, 0 }, \ 607 { 0, 0 }, \ 608 { 0, 0 }, \ 609 { 0, 0 }, \ 610 { 0, 0 }, \ 611 { 0, 0 }, \ 612 { "pfsync", CTLTYPE_NODE }, \ 613 { 0, 0 }, \ 614 { 0, 0 }, \ 615 { 0, 0 }, \ 616 { 0, 0 }, \ 617 { 0, 0 }, \ 618 { 0, 0 }, \ 619 { 0, 0 }, \ 620 { 0, 0 }, \ 621 { 0, 0 }, \ 622 { 0, 0 }, \ 623 { 0, 0 }, \ 624 { 0, 0 }, \ 625 { 0, 0 }, \ 626 { 0, 0 }, \ 627 { 0, 0 }, \ 628 { 0, 0 }, \ 629 { 0, 0 }, \ 630 { "divert", CTLTYPE_NODE }, \ 631 } 632 633 /* 634 * Names for IP sysctl objects 635 */ 636 #define IPCTL_FORWARDING 1 /* act as router */ 637 #define IPCTL_SENDREDIRECTS 2 /* may send redirects when forwarding */ 638 #define IPCTL_DEFTTL 3 /* default TTL */ 639 #ifdef notyet 640 #define IPCTL_DEFMTU 4 /* default MTU */ 641 #endif 642 #define IPCTL_SOURCEROUTE 5 /* may perform source routes */ 643 #define IPCTL_DIRECTEDBCAST 6 /* default broadcast behavior */ 644 #define IPCTL_IPPORT_FIRSTAUTO 7 645 #define IPCTL_IPPORT_LASTAUTO 8 646 #define IPCTL_IPPORT_HIFIRSTAUTO 9 647 #define IPCTL_IPPORT_HILASTAUTO 10 648 #define IPCTL_IPPORT_MAXQUEUE 11 649 #define IPCTL_ENCDEBUG 12 650 #ifdef notdef /*obsolete*/ 651 #define IPCTL_GIF_TTL 13 /* default TTL for gif encap packet */ 652 #endif 653 #define IPCTL_IPSEC_EXPIRE_ACQUIRE 14 /* How long to wait for key mgmt. */ 654 #define IPCTL_IPSEC_EMBRYONIC_SA_TIMEOUT 15 /* new SA lifetime */ 655 #define IPCTL_IPSEC_REQUIRE_PFS 16 656 #define IPCTL_IPSEC_SOFT_ALLOCATIONS 17 657 #define IPCTL_IPSEC_ALLOCATIONS 18 658 #define IPCTL_IPSEC_SOFT_BYTES 19 659 #define IPCTL_IPSEC_BYTES 20 660 #define IPCTL_IPSEC_TIMEOUT 21 661 #define IPCTL_IPSEC_SOFT_TIMEOUT 22 662 #define IPCTL_IPSEC_SOFT_FIRSTUSE 23 663 #define IPCTL_IPSEC_FIRSTUSE 24 664 #define IPCTL_IPSEC_ENC_ALGORITHM 25 665 #define IPCTL_IPSEC_AUTH_ALGORITHM 26 666 #define IPCTL_MTUDISC 27 /* allow path MTU discovery */ 667 #define IPCTL_MTUDISCTIMEOUT 28 /* allow path MTU discovery */ 668 #define IPCTL_IPSEC_IPCOMP_ALGORITHM 29 669 #define IPCTL_IFQUEUE 30 670 #define IPCTL_MFORWARDING 31 671 #define IPCTL_MULTIPATH 32 672 #define IPCTL_STATS 33 /* IP statistics */ 673 #define IPCTL_MRTPROTO 34 /* type of multicast */ 674 #define IPCTL_MRTSTATS 35 675 #define IPCTL_ARPQUEUED 36 676 #define IPCTL_MAXID 37 677 678 #define IPCTL_NAMES { \ 679 { 0, 0 }, \ 680 { "forwarding", CTLTYPE_INT }, \ 681 { "redirect", CTLTYPE_INT }, \ 682 { "ttl", CTLTYPE_INT }, \ 683 /* { "mtu", CTLTYPE_INT }, */ { 0, 0 }, \ 684 { "sourceroute", CTLTYPE_INT }, \ 685 { "directed-broadcast", CTLTYPE_INT }, \ 686 { "portfirst", CTLTYPE_INT }, \ 687 { "portlast", CTLTYPE_INT }, \ 688 { "porthifirst", CTLTYPE_INT }, \ 689 { "porthilast", CTLTYPE_INT }, \ 690 { "maxqueue", CTLTYPE_INT }, \ 691 { "encdebug", CTLTYPE_INT }, \ 692 { 0, 0 }, \ 693 { "ipsec-expire-acquire", CTLTYPE_INT }, \ 694 { "ipsec-invalid-life", CTLTYPE_INT }, \ 695 { "ipsec-pfs", CTLTYPE_INT }, \ 696 { "ipsec-soft-allocs", CTLTYPE_INT }, \ 697 { "ipsec-allocs", CTLTYPE_INT }, \ 698 { "ipsec-soft-bytes", CTLTYPE_INT }, \ 699 { "ipsec-bytes", CTLTYPE_INT }, \ 700 { "ipsec-timeout", CTLTYPE_INT }, \ 701 { "ipsec-soft-timeout", CTLTYPE_INT }, \ 702 { "ipsec-soft-firstuse", CTLTYPE_INT }, \ 703 { "ipsec-firstuse", CTLTYPE_INT }, \ 704 { "ipsec-enc-alg", CTLTYPE_STRING }, \ 705 { "ipsec-auth-alg", CTLTYPE_STRING }, \ 706 { "mtudisc", CTLTYPE_INT }, \ 707 { "mtudisctimeout", CTLTYPE_INT }, \ 708 { "ipsec-comp-alg", CTLTYPE_STRING }, \ 709 { "ifq", CTLTYPE_NODE }, \ 710 { "mforwarding", CTLTYPE_INT }, \ 711 { "multipath", CTLTYPE_INT }, \ 712 { "stats", CTLTYPE_STRUCT }, \ 713 { "mrtproto", CTLTYPE_INT }, \ 714 { "mrtstats", CTLTYPE_STRUCT }, \ 715 { "arpqueued", CTLTYPE_INT }, \ 716 } 717 #define IPCTL_VARS { \ 718 NULL, \ 719 &ipforwarding, \ 720 &ipsendredirects, \ 721 &ip_defttl, \ 722 NULL, \ 723 NULL, \ 724 &ip_directedbcast, \ 725 &ipport_firstauto, \ 726 &ipport_lastauto, \ 727 &ipport_hifirstauto, \ 728 &ipport_hilastauto, \ 729 &ip_maxqueue, \ 730 &encdebug, \ 731 NULL, \ 732 &ipsec_expire_acquire, \ 733 &ipsec_keep_invalid, \ 734 &ipsec_require_pfs, \ 735 &ipsec_soft_allocations, \ 736 &ipsec_exp_allocations, \ 737 &ipsec_soft_bytes, \ 738 &ipsec_exp_bytes, \ 739 &ipsec_exp_timeout, \ 740 &ipsec_soft_timeout, \ 741 &ipsec_soft_first_use, \ 742 &ipsec_exp_first_use, \ 743 NULL, \ 744 NULL, \ 745 NULL, \ 746 NULL, \ 747 NULL, \ 748 NULL, \ 749 &ipmforwarding, \ 750 &ipmultipath, \ 751 NULL, \ 752 NULL, \ 753 NULL, \ 754 &la_hold_total \ 755 } 756 757 #endif /* __BSD_VISIBLE */ 758 759 /* INET6 stuff */ 760 #define __KAME_NETINET_IN_H_INCLUDED_ 761 #include <netinet6/in6.h> 762 #undef __KAME_NETINET_IN_H_INCLUDED_ 763 764 #ifndef _KERNEL 765 766 #if __BSD_VISIBLE 767 __BEGIN_DECLS 768 int bindresvport(int, struct sockaddr_in *); 769 struct sockaddr; 770 int bindresvport_sa(int, struct sockaddr *); 771 __END_DECLS 772 #endif 773 774 #else 775 /* 776 * in_cksum_phdr: 777 * 778 * Compute significant parts of the IPv4 checksum pseudo-header 779 * for use in a delayed TCP/UDP checksum calculation. 780 * 781 * Args: 782 * 783 * src Source IP address 784 * dst Destination IP address 785 * lenproto htons(proto-hdr-len + proto-number) 786 */ 787 static __inline u_int16_t __attribute__((__unused__)) 788 in_cksum_phdr(u_int32_t src, u_int32_t dst, u_int32_t lenproto) 789 { 790 u_int32_t sum; 791 792 sum = lenproto + 793 (u_int16_t)(src >> 16) + 794 (u_int16_t)(src /*& 0xffff*/) + 795 (u_int16_t)(dst >> 16) + 796 (u_int16_t)(dst /*& 0xffff*/); 797 798 sum = (u_int16_t)(sum >> 16) + (u_int16_t)(sum /*& 0xffff*/); 799 800 if (sum > 0xffff) 801 sum -= 0xffff; 802 803 return (sum); 804 } 805 806 /* 807 * in_cksum_addword: 808 * 809 * Add the two 16-bit network-order values, carry, and return. 810 */ 811 static __inline u_int16_t __attribute__((__unused__)) 812 in_cksum_addword(u_int16_t a, u_int16_t b) 813 { 814 u_int32_t sum = a + b; 815 816 if (sum > 0xffff) 817 sum -= 0xffff; 818 819 return (sum); 820 } 821 822 extern struct in_addr zeroin_addr; 823 824 int in_broadcast(struct in_addr, struct ifnet *, u_int); 825 int in_canforward(struct in_addr); 826 int in_cksum(struct mbuf *, int); 827 int in4_cksum(struct mbuf *, u_int8_t, int, int); 828 void in_delayed_cksum(struct mbuf *); 829 int in_localaddr(struct in_addr, u_int); 830 void in_socktrim(struct sockaddr_in *); 831 char *inet_ntoa(struct in_addr); 832 void in_proto_cksum_out(struct mbuf *, struct ifnet *); 833 834 #define in_hosteq(s,t) ((s).s_addr == (t).s_addr) 835 #define in_nullhost(x) ((x).s_addr == INADDR_ANY) 836 837 #define satosin(sa) ((struct sockaddr_in *)(sa)) 838 #define sintosa(sin) ((struct sockaddr *)(sin)) 839 #define ifatoia(ifa) ((struct in_ifaddr *)(ifa)) 840 #endif /* _KERNEL */ 841 #endif /* _NETINET_IN_H_ */ 842