1*018a085aSanton /* $OpenBSD: kroute.c,v 1.37 2025/01/02 06:35:57 anton Exp $ */ 2ddeeec14Snorby 3ddeeec14Snorby /* 4ddeeec14Snorby * Copyright (c) 2004 Esben Norby <norby@openbsd.org> 5ddeeec14Snorby * Copyright (c) 2003, 2004 Henning Brauer <henning@openbsd.org> 6ddeeec14Snorby * 7ddeeec14Snorby * Permission to use, copy, modify, and distribute this software for any 8ddeeec14Snorby * purpose with or without fee is hereby granted, provided that the above 9ddeeec14Snorby * copyright notice and this permission notice appear in all copies. 10ddeeec14Snorby * 11ddeeec14Snorby * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES 12ddeeec14Snorby * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF 13ddeeec14Snorby * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR 14ddeeec14Snorby * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES 15ddeeec14Snorby * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN 16ddeeec14Snorby * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF 17ddeeec14Snorby * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE. 18ddeeec14Snorby */ 19ddeeec14Snorby 20ddeeec14Snorby #include <sys/types.h> 21ddeeec14Snorby #include <sys/socket.h> 22ddeeec14Snorby #include <sys/sysctl.h> 23ddeeec14Snorby #include <sys/tree.h> 241119e335Sclaudio #include <sys/uio.h> 25ddeeec14Snorby #include <netinet/in.h> 26ddeeec14Snorby #include <arpa/inet.h> 27ddeeec14Snorby #include <net/if.h> 28ddeeec14Snorby #include <net/if_dl.h> 29ddeeec14Snorby #include <net/if_types.h> 30ddeeec14Snorby #include <net/route.h> 31ddeeec14Snorby #include <err.h> 32ddeeec14Snorby #include <errno.h> 33ddeeec14Snorby #include <fcntl.h> 34ddeeec14Snorby #include <stdio.h> 35ddeeec14Snorby #include <stdlib.h> 36ddeeec14Snorby #include <string.h> 37ddeeec14Snorby #include <unistd.h> 38ddeeec14Snorby 39b505309eSclaudio #include "rip.h" 40ddeeec14Snorby #include "ripd.h" 41ddeeec14Snorby #include "log.h" 42ddeeec14Snorby 43ddeeec14Snorby struct { 44ddeeec14Snorby u_int32_t rtseq; 45ddeeec14Snorby pid_t pid; 46ddeeec14Snorby int fib_sync; 471acb5c27Sremi u_int8_t fib_prio; 48ddeeec14Snorby int fd; 49ddeeec14Snorby struct event ev; 500ab89b34Smichele u_int rdomain; 51ddeeec14Snorby } kr_state; 52ddeeec14Snorby 53ddeeec14Snorby struct kroute_node { 54ddeeec14Snorby RB_ENTRY(kroute_node) entry; 55ddeeec14Snorby struct kroute r; 56ddeeec14Snorby }; 57ddeeec14Snorby 58ddeeec14Snorby struct kif_node { 59ddeeec14Snorby RB_ENTRY(kif_node) entry; 60ddeeec14Snorby struct kif k; 61ddeeec14Snorby }; 62ddeeec14Snorby 63ddeeec14Snorby void kr_redistribute(int, struct kroute *); 64ddeeec14Snorby int kroute_compare(struct kroute_node *, struct kroute_node *); 65ddeeec14Snorby int kif_compare(struct kif_node *, struct kif_node *); 6658576e66Smichele int kr_change_fib(struct kroute_node *, struct kroute *, int); 67ddeeec14Snorby 6858576e66Smichele struct kroute_node *kroute_find(in_addr_t, in_addr_t, u_int8_t); 69ddeeec14Snorby int kroute_insert(struct kroute_node *); 70ddeeec14Snorby int kroute_remove(struct kroute_node *); 71ddeeec14Snorby void kroute_clear(void); 72ddeeec14Snorby 73ddeeec14Snorby struct kif_node *kif_find(int); 74ddeeec14Snorby int kif_insert(struct kif_node *); 75ddeeec14Snorby int kif_remove(struct kif_node *); 76ddeeec14Snorby void kif_clear(void); 77ddeeec14Snorby int kif_validate(int); 78ddeeec14Snorby 79ddeeec14Snorby struct kroute_node *kroute_match(in_addr_t); 80ddeeec14Snorby 81ddeeec14Snorby int protect_lo(void); 82ddeeec14Snorby u_int8_t prefixlen_classful(in_addr_t); 83ddeeec14Snorby void get_rtaddrs(int, struct sockaddr *, struct sockaddr **); 84ddeeec14Snorby void if_change(u_short, int, struct if_data *); 85ddeeec14Snorby void if_announce(void *); 86ddeeec14Snorby 87ddeeec14Snorby int send_rtmsg(int, int, struct kroute *); 88ddeeec14Snorby int dispatch_rtmsg(void); 89ddeeec14Snorby int fetchtable(void); 90ddeeec14Snorby int fetchifs(int); 91ddeeec14Snorby 92ddeeec14Snorby RB_HEAD(kroute_tree, kroute_node) krt; 93ddeeec14Snorby RB_PROTOTYPE(kroute_tree, kroute_node, entry, kroute_compare) 94ddeeec14Snorby RB_GENERATE(kroute_tree, kroute_node, entry, kroute_compare) 95ddeeec14Snorby 96ddeeec14Snorby RB_HEAD(kif_tree, kif_node) kit; 97ddeeec14Snorby RB_PROTOTYPE(kif_tree, kif_node, entry, kif_compare) 98ddeeec14Snorby RB_GENERATE(kif_tree, kif_node, entry, kif_compare) 99ddeeec14Snorby 100ddeeec14Snorby int 101ddeeec14Snorby kif_init(void) 102ddeeec14Snorby { 103ddeeec14Snorby RB_INIT(&kit); 104ddeeec14Snorby 105ddeeec14Snorby if (fetchifs(0) == -1) 106ddeeec14Snorby return (-1); 107ddeeec14Snorby 108ddeeec14Snorby return (0); 109ddeeec14Snorby } 110ddeeec14Snorby 111ddeeec14Snorby int 1121acb5c27Sremi kr_init(int fs, u_int rdomain, u_int8_t fib_prio) 113ddeeec14Snorby { 114ddeeec14Snorby int opt = 0, rcvbuf, default_rcvbuf; 115ddeeec14Snorby socklen_t optlen; 116ddeeec14Snorby 1176bab40fcSclaudio if ((kr_state.fd = socket(AF_ROUTE, 1186bab40fcSclaudio SOCK_RAW | SOCK_CLOEXEC | SOCK_NONBLOCK, 0)) == -1) { 119ddeeec14Snorby log_warn("kr_init: socket"); 120ddeeec14Snorby return (-1); 121ddeeec14Snorby } 122ddeeec14Snorby 123ddeeec14Snorby /* not interested in my own messages */ 124ddeeec14Snorby if (setsockopt(kr_state.fd, SOL_SOCKET, SO_USELOOPBACK, 125ddeeec14Snorby &opt, sizeof(opt)) == -1) 126ddeeec14Snorby log_warn("kr_init: setsockopt"); /* not fatal */ 127ddeeec14Snorby 128ddeeec14Snorby /* grow receive buffer, don't wanna miss messages */ 129ddeeec14Snorby optlen = sizeof(default_rcvbuf); 130ddeeec14Snorby if (getsockopt(kr_state.fd, SOL_SOCKET, SO_RCVBUF, 131ddeeec14Snorby &default_rcvbuf, &optlen) == -1) 132ddeeec14Snorby log_warn("kr_init getsockopt SOL_SOCKET SO_RCVBUF"); 133ddeeec14Snorby else 134ddeeec14Snorby for (rcvbuf = MAX_RTSOCK_BUF; 135ddeeec14Snorby rcvbuf > default_rcvbuf && 136ddeeec14Snorby setsockopt(kr_state.fd, SOL_SOCKET, SO_RCVBUF, 137ddeeec14Snorby &rcvbuf, sizeof(rcvbuf)) == -1 && errno == ENOBUFS; 138ddeeec14Snorby rcvbuf /= 2) 139ddeeec14Snorby ; /* nothing */ 140ddeeec14Snorby 141ddeeec14Snorby kr_state.pid = getpid(); 142ddeeec14Snorby kr_state.rtseq = 1; 1431acb5c27Sremi kr_state.fib_prio = fib_prio; 144ddeeec14Snorby 145ddeeec14Snorby RB_INIT(&krt); 146ddeeec14Snorby 147ddeeec14Snorby if (fetchtable() == -1) 148ddeeec14Snorby return (-1); 149ddeeec14Snorby 150ddeeec14Snorby if (protect_lo() == -1) 151ddeeec14Snorby return (-1); 152ddeeec14Snorby 153b505309eSclaudio kr_state.fib_sync = fs; /* now set correct sync mode */ 1540ab89b34Smichele kr_state.rdomain = rdomain; 155b505309eSclaudio 156ddeeec14Snorby event_set(&kr_state.ev, kr_state.fd, EV_READ | EV_PERSIST, 157ddeeec14Snorby kr_dispatch_msg, NULL); 158ddeeec14Snorby event_add(&kr_state.ev, NULL); 159ddeeec14Snorby 160ddeeec14Snorby return (0); 161ddeeec14Snorby } 162ddeeec14Snorby 163ddeeec14Snorby int 16458576e66Smichele kr_change_fib(struct kroute_node *kr, struct kroute *kroute, int action) 165ddeeec14Snorby { 166ddeeec14Snorby /* nexthop within 127/8 -> ignore silently */ 167ddeeec14Snorby if ((kroute->nexthop.s_addr & htonl(IN_CLASSA_NET)) == 168ddeeec14Snorby htonl(INADDR_LOOPBACK & IN_CLASSA_NET)) 169ddeeec14Snorby return (0); 170ddeeec14Snorby 171ddeeec14Snorby if (send_rtmsg(kr_state.fd, action, kroute) == -1) 172ddeeec14Snorby return (-1); 173ddeeec14Snorby 174ddeeec14Snorby if (action == RTM_ADD) { 17558576e66Smichele if ((kr = calloc(1, sizeof(struct kroute_node))) == NULL) 17658576e66Smichele fatal("kr_change_fib"); 17758576e66Smichele 178ddeeec14Snorby kr->r.prefix.s_addr = kroute->prefix.s_addr; 179ddeeec14Snorby kr->r.netmask.s_addr = kroute->netmask.s_addr; 180ddeeec14Snorby kr->r.nexthop.s_addr = kroute->nexthop.s_addr; 181ddeeec14Snorby kr->r.flags = kroute->flags |= F_RIPD_INSERTED; 1821acb5c27Sremi kr->r.priority = kr_state.fib_prio; 183ddeeec14Snorby 18458576e66Smichele if (kroute_insert(kr) == -1) { 18558576e66Smichele log_debug("kr_update_fib: cannot insert %s", 1865aeb3034Sremi inet_ntoa(kroute->nexthop)); 18758576e66Smichele } 188ddeeec14Snorby } else 189ddeeec14Snorby kr->r.nexthop.s_addr = kroute->nexthop.s_addr; 190ddeeec14Snorby 191ddeeec14Snorby return (0); 192ddeeec14Snorby } 193ddeeec14Snorby 194ddeeec14Snorby int 19558576e66Smichele kr_change(struct kroute *kroute) 19658576e66Smichele { 19758576e66Smichele struct kroute_node *kr; 19858576e66Smichele int action = RTM_ADD; 19958576e66Smichele 20058576e66Smichele kr = kroute_find(kroute->prefix.s_addr, kroute->netmask.s_addr, 2011acb5c27Sremi kr_state.fib_prio); 20258576e66Smichele if (kr != NULL) 20358576e66Smichele action = RTM_CHANGE; 20458576e66Smichele 20558576e66Smichele return (kr_change_fib(kr, kroute, action)); 20658576e66Smichele } 20758576e66Smichele 20858576e66Smichele int 209ddeeec14Snorby kr_delete(struct kroute *kroute) 210ddeeec14Snorby { 211ddeeec14Snorby struct kroute_node *kr; 212ddeeec14Snorby 21358576e66Smichele kr = kroute_find(kroute->prefix.s_addr, kroute->netmask.s_addr, 2141acb5c27Sremi kr_state.fib_prio); 21558576e66Smichele if (kr == NULL) 216ddeeec14Snorby return (0); 217ddeeec14Snorby 2181acb5c27Sremi if (kr->r.priority != kr_state.fib_prio) 21958576e66Smichele log_warn("kr_delete_fib: %s/%d has wrong priority %d", 22058576e66Smichele inet_ntoa(kr->r.prefix), mask2prefixlen(kr->r.netmask.s_addr), 22158576e66Smichele kr->r.priority); 222ddeeec14Snorby 223ddeeec14Snorby if (send_rtmsg(kr_state.fd, RTM_DELETE, kroute) == -1) 224ddeeec14Snorby return (-1); 225ddeeec14Snorby 226ddeeec14Snorby if (kroute_remove(kr) == -1) 227ddeeec14Snorby return (-1); 228ddeeec14Snorby 229ddeeec14Snorby return (0); 230ddeeec14Snorby } 231ddeeec14Snorby 232ddeeec14Snorby void 233ddeeec14Snorby kr_shutdown(void) 234ddeeec14Snorby { 235ddeeec14Snorby kr_fib_decouple(); 236b505309eSclaudio 237ddeeec14Snorby kroute_clear(); 238ddeeec14Snorby kif_clear(); 239ddeeec14Snorby } 240ddeeec14Snorby 241ddeeec14Snorby void 242ddeeec14Snorby kr_fib_couple(void) 243ddeeec14Snorby { 244ddeeec14Snorby struct kroute_node *kr; 245ddeeec14Snorby 246ddeeec14Snorby if (kr_state.fib_sync == 1) /* already coupled */ 247ddeeec14Snorby return; 248ddeeec14Snorby 249ddeeec14Snorby kr_state.fib_sync = 1; 250ddeeec14Snorby 251ddeeec14Snorby RB_FOREACH(kr, kroute_tree, &krt) 2521acb5c27Sremi if (kr->r.priority == kr_state.fib_prio) 253ddeeec14Snorby send_rtmsg(kr_state.fd, RTM_ADD, &kr->r); 254ddeeec14Snorby 255ddeeec14Snorby log_info("kernel routing table coupled"); 256ddeeec14Snorby } 257ddeeec14Snorby 258ddeeec14Snorby void 259ddeeec14Snorby kr_fib_decouple(void) 260ddeeec14Snorby { 261ddeeec14Snorby struct kroute_node *kr; 262ddeeec14Snorby 263ddeeec14Snorby if (kr_state.fib_sync == 0) /* already decoupled */ 264ddeeec14Snorby return; 265ddeeec14Snorby 266ddeeec14Snorby RB_FOREACH(kr, kroute_tree, &krt) 2671acb5c27Sremi if (kr->r.priority == kr_state.fib_prio) 268ddeeec14Snorby send_rtmsg(kr_state.fd, RTM_DELETE, &kr->r); 269ddeeec14Snorby 270ddeeec14Snorby kr_state.fib_sync = 0; 271ddeeec14Snorby 272ddeeec14Snorby log_info("kernel routing table decoupled"); 273ddeeec14Snorby } 274ddeeec14Snorby 275ddeeec14Snorby void 276ddeeec14Snorby kr_dispatch_msg(int fd, short event, void *bula) 277ddeeec14Snorby { 278ddeeec14Snorby dispatch_rtmsg(); 279ddeeec14Snorby } 280ddeeec14Snorby 281ddeeec14Snorby void 282ddeeec14Snorby kr_show_route(struct imsg *imsg) 283ddeeec14Snorby { 284ddeeec14Snorby struct kroute_node *kr; 285ddeeec14Snorby int flags; 286ddeeec14Snorby struct in_addr addr; 287ddeeec14Snorby 288ddeeec14Snorby switch (imsg->hdr.type) { 289ddeeec14Snorby case IMSG_CTL_KROUTE: 290ddeeec14Snorby if (imsg->hdr.len != IMSG_HEADER_SIZE + sizeof(flags)) { 291ddeeec14Snorby log_warnx("kr_show_route: wrong imsg len"); 292ddeeec14Snorby return; 293ddeeec14Snorby } 294ddeeec14Snorby memcpy(&flags, imsg->data, sizeof(flags)); 295ddeeec14Snorby RB_FOREACH(kr, kroute_tree, &krt) 296ddeeec14Snorby if (!flags || kr->r.flags & flags) { 297ddeeec14Snorby main_imsg_compose_ripe(IMSG_CTL_KROUTE, 298ddeeec14Snorby imsg->hdr.pid, &kr->r, sizeof(kr->r)); 299ddeeec14Snorby } 300ddeeec14Snorby break; 301ddeeec14Snorby case IMSG_CTL_KROUTE_ADDR: 302ddeeec14Snorby if (imsg->hdr.len != IMSG_HEADER_SIZE + 303ddeeec14Snorby sizeof(struct in_addr)) { 304ddeeec14Snorby log_warnx("kr_show_route: wrong imsg len"); 305ddeeec14Snorby return; 306ddeeec14Snorby } 307ddeeec14Snorby memcpy(&addr, imsg->data, sizeof(addr)); 308ddeeec14Snorby kr = NULL; 309ddeeec14Snorby kr = kroute_match(addr.s_addr); 310ddeeec14Snorby if (kr != NULL) 311ddeeec14Snorby main_imsg_compose_ripe(IMSG_CTL_KROUTE, imsg->hdr.pid, 312ddeeec14Snorby &kr->r, sizeof(kr->r)); 313ddeeec14Snorby break; 314ddeeec14Snorby default: 315ddeeec14Snorby log_debug("kr_show_route: error handling imsg"); 316ddeeec14Snorby break; 317ddeeec14Snorby } 318ddeeec14Snorby 319ddeeec14Snorby main_imsg_compose_ripe(IMSG_CTL_END, imsg->hdr.pid, NULL, 0); 320ddeeec14Snorby } 321ddeeec14Snorby 322ddeeec14Snorby void 323ddeeec14Snorby kr_ifinfo(char *ifname, pid_t pid) 324ddeeec14Snorby { 325ddeeec14Snorby struct kif_node *kif; 326ddeeec14Snorby 327ddeeec14Snorby RB_FOREACH(kif, kif_tree, &kit) 328ddeeec14Snorby if (ifname == NULL || !strcmp(ifname, kif->k.ifname)) { 329ddeeec14Snorby main_imsg_compose_ripe(IMSG_CTL_IFINFO, 330ddeeec14Snorby pid, &kif->k, sizeof(kif->k)); 331ddeeec14Snorby } 332ddeeec14Snorby 333ddeeec14Snorby main_imsg_compose_ripe(IMSG_CTL_END, pid, NULL, 0); 334ddeeec14Snorby } 335ddeeec14Snorby 336ddeeec14Snorby void 337ddeeec14Snorby kr_redistribute(int type, struct kroute *kr) 338ddeeec14Snorby { 339ddeeec14Snorby u_int32_t a; 340ddeeec14Snorby 341ddeeec14Snorby 342ddeeec14Snorby if (type == IMSG_NETWORK_DEL) { 343ddeeec14Snorby dont_redistribute: 344ddeeec14Snorby /* was the route redistributed? */ 345ddeeec14Snorby if (kr->flags & F_REDISTRIBUTED) { 346ddeeec14Snorby /* remove redistributed flag */ 347ddeeec14Snorby kr->flags &= ~F_REDISTRIBUTED; 348ddeeec14Snorby main_imsg_compose_rde(type, 0, kr, 349ddeeec14Snorby sizeof(struct kroute)); 350ddeeec14Snorby } 351ddeeec14Snorby return; 352ddeeec14Snorby } 353ddeeec14Snorby 354ddeeec14Snorby /* interface is not up and running so don't announce */ 355ddeeec14Snorby if (kr->flags & F_DOWN) 356ddeeec14Snorby return; 357ddeeec14Snorby 358ddeeec14Snorby /* 359ef8f8f93Sclaudio * We consider the loopback net and multicast addresses 360ddeeec14Snorby * as not redistributable. 361ddeeec14Snorby */ 362ddeeec14Snorby a = ntohl(kr->prefix.s_addr); 363ef8f8f93Sclaudio if (IN_MULTICAST(a) || (a >> IN_CLASSA_NSHIFT) == IN_LOOPBACKNET) 364ddeeec14Snorby return; 365ddeeec14Snorby /* 366139676eaSclaudio * Consider networks with nexthop loopback as not redistributable 367139676eaSclaudio * unless it is a reject or blackhole route. 368ddeeec14Snorby */ 369139676eaSclaudio if (kr->nexthop.s_addr == htonl(INADDR_LOOPBACK) && 370139676eaSclaudio !(kr->flags & (F_BLACKHOLE|F_REJECT))) 371ddeeec14Snorby return; 372ddeeec14Snorby 373b8bbf4e7Sdavid /* Should we redistribute this route? */ 374ddeeec14Snorby if (!rip_redistribute(kr)) 375ddeeec14Snorby goto dont_redistribute; 376ddeeec14Snorby 377ddeeec14Snorby /* Does not matter if we resend the kr, the RDE will cope. */ 378ddeeec14Snorby kr->flags |= F_REDISTRIBUTED; 379ddeeec14Snorby main_imsg_compose_rde(type, 0, kr, sizeof(struct kroute)); 380ddeeec14Snorby } 381ddeeec14Snorby 382ddeeec14Snorby /* rb-tree compare */ 383ddeeec14Snorby int 384ddeeec14Snorby kroute_compare(struct kroute_node *a, struct kroute_node *b) 385ddeeec14Snorby { 386ddeeec14Snorby if (ntohl(a->r.prefix.s_addr) < ntohl(b->r.prefix.s_addr)) 387ddeeec14Snorby return (-1); 388ddeeec14Snorby if (ntohl(a->r.prefix.s_addr) > ntohl(b->r.prefix.s_addr)) 389ddeeec14Snorby return (1); 390ddeeec14Snorby if (ntohl(a->r.netmask.s_addr) < ntohl(b->r.netmask.s_addr)) 391ddeeec14Snorby return (-1); 392ddeeec14Snorby if (ntohl(a->r.netmask.s_addr) > ntohl(b->r.netmask.s_addr)) 393ddeeec14Snorby return (1); 39458576e66Smichele 39558576e66Smichele /* if the priority is RTP_ANY finish on the first address hit */ 39658576e66Smichele if (a->r.priority == RTP_ANY || b->r.priority == RTP_ANY) 39758576e66Smichele return (0); 39858576e66Smichele if (a->r.priority < b->r.priority) 39958576e66Smichele return (-1); 40058576e66Smichele if (a->r.priority > b->r.priority) 40158576e66Smichele return (1); 40258576e66Smichele 403ddeeec14Snorby return (0); 404ddeeec14Snorby } 405ddeeec14Snorby 406ddeeec14Snorby int 407ddeeec14Snorby kif_compare(struct kif_node *a, struct kif_node *b) 408ddeeec14Snorby { 409ddeeec14Snorby return (b->k.ifindex - a->k.ifindex); 410ddeeec14Snorby } 411ddeeec14Snorby 412ddeeec14Snorby /* tree management */ 413ddeeec14Snorby struct kroute_node * 41458576e66Smichele kroute_find(in_addr_t prefix, in_addr_t netmask, u_int8_t prio) 415ddeeec14Snorby { 41658576e66Smichele struct kroute_node s, *kn, *tmp; 417ddeeec14Snorby 418ddeeec14Snorby s.r.prefix.s_addr = prefix; 419ddeeec14Snorby s.r.netmask.s_addr = netmask; 42058576e66Smichele s.r.priority = prio; 421ddeeec14Snorby 42258576e66Smichele kn = RB_FIND(kroute_tree, &krt, &s); 42358576e66Smichele if (kn && prio == RTP_ANY) { 42458576e66Smichele tmp = RB_PREV(kroute_tree, &krt, kn); 42558576e66Smichele while (tmp) { 42658576e66Smichele if (kroute_compare(&s, tmp) == 0) 42758576e66Smichele kn = tmp; 42858576e66Smichele else 42958576e66Smichele break; 43058576e66Smichele tmp = RB_PREV(kroute_tree, &krt, kn); 43158576e66Smichele } 43258576e66Smichele } 43358576e66Smichele 43458576e66Smichele return (kn); 435ddeeec14Snorby } 436ddeeec14Snorby 437ddeeec14Snorby int 438ddeeec14Snorby kroute_insert(struct kroute_node *kr) 439ddeeec14Snorby { 440ddeeec14Snorby if (RB_INSERT(kroute_tree, &krt, kr) != NULL) { 441ddeeec14Snorby log_warnx("kroute_insert failed for %s/%u", 442ddeeec14Snorby inet_ntoa(kr->r.prefix), 443ddeeec14Snorby mask2prefixlen(kr->r.netmask.s_addr)); 444ddeeec14Snorby free(kr); 445ddeeec14Snorby return (-1); 446ddeeec14Snorby } 447ddeeec14Snorby 448ddeeec14Snorby if (!(kr->r.flags & F_KERNEL)) { 449ddeeec14Snorby /* don't validate or redistribute rip route */ 450ddeeec14Snorby kr->r.flags &= ~F_DOWN; 451ddeeec14Snorby return (0); 452ddeeec14Snorby } 453ddeeec14Snorby 454ddeeec14Snorby if (kif_validate(kr->r.ifindex)) 455ddeeec14Snorby kr->r.flags &= ~F_DOWN; 456ddeeec14Snorby else 457ddeeec14Snorby kr->r.flags |= F_DOWN; 458ddeeec14Snorby 459ddeeec14Snorby kr_redistribute(IMSG_NETWORK_ADD, &kr->r); 460ddeeec14Snorby 461ddeeec14Snorby return (0); 462ddeeec14Snorby } 463ddeeec14Snorby 464ddeeec14Snorby int 465ddeeec14Snorby kroute_remove(struct kroute_node *kr) 466ddeeec14Snorby { 467ddeeec14Snorby if (RB_REMOVE(kroute_tree, &krt, kr) == NULL) { 468ddeeec14Snorby log_warnx("kroute_remove failed for %s/%u", 469ddeeec14Snorby inet_ntoa(kr->r.prefix), 470ddeeec14Snorby mask2prefixlen(kr->r.netmask.s_addr)); 471ddeeec14Snorby return (-1); 472ddeeec14Snorby } 473ddeeec14Snorby 474ddeeec14Snorby kr_redistribute(IMSG_NETWORK_DEL, &kr->r); 475a1cc2eacSclaudio rtlabel_unref(kr->r.rtlabel); 476ddeeec14Snorby 477ddeeec14Snorby free(kr); 478ddeeec14Snorby return (0); 479ddeeec14Snorby } 480ddeeec14Snorby 481ddeeec14Snorby void 482ddeeec14Snorby kroute_clear(void) 483ddeeec14Snorby { 484ddeeec14Snorby struct kroute_node *kr; 485ddeeec14Snorby 486ddeeec14Snorby while ((kr = RB_MIN(kroute_tree, &krt)) != NULL) 487ddeeec14Snorby kroute_remove(kr); 488ddeeec14Snorby } 489ddeeec14Snorby 490ddeeec14Snorby struct kif_node * 491ddeeec14Snorby kif_find(int ifindex) 492ddeeec14Snorby { 493ddeeec14Snorby struct kif_node s; 494ddeeec14Snorby 495ddeeec14Snorby bzero(&s, sizeof(s)); 496ddeeec14Snorby s.k.ifindex = ifindex; 497ddeeec14Snorby 498ddeeec14Snorby return (RB_FIND(kif_tree, &kit, &s)); 499ddeeec14Snorby } 500ddeeec14Snorby 501ddeeec14Snorby struct kif * 502ddeeec14Snorby kif_findname(char *ifname) 503ddeeec14Snorby { 504ddeeec14Snorby struct kif_node *kif; 505ddeeec14Snorby 506ddeeec14Snorby RB_FOREACH(kif, kif_tree, &kit) 507ddeeec14Snorby if (!strcmp(ifname, kif->k.ifname)) 508ddeeec14Snorby return (&kif->k); 509ddeeec14Snorby 510ddeeec14Snorby return (NULL); 511ddeeec14Snorby } 512ddeeec14Snorby 513ddeeec14Snorby int 514ddeeec14Snorby kif_insert(struct kif_node *kif) 515ddeeec14Snorby { 516ddeeec14Snorby if (RB_INSERT(kif_tree, &kit, kif) != NULL) { 517ddeeec14Snorby log_warnx("RB_INSERT(kif_tree, &kit, kif)"); 518ddeeec14Snorby free(kif); 519ddeeec14Snorby return (-1); 520ddeeec14Snorby } 521ddeeec14Snorby 522ddeeec14Snorby return (0); 523ddeeec14Snorby } 524ddeeec14Snorby 525ddeeec14Snorby int 526ddeeec14Snorby kif_remove(struct kif_node *kif) 527ddeeec14Snorby { 528ddeeec14Snorby if (RB_REMOVE(kif_tree, &kit, kif) == NULL) { 529ddeeec14Snorby log_warnx("RB_REMOVE(kif_tree, &kit, kif)"); 530ddeeec14Snorby return (-1); 531ddeeec14Snorby } 532ddeeec14Snorby 533ddeeec14Snorby free(kif); 534ddeeec14Snorby return (0); 535ddeeec14Snorby } 536ddeeec14Snorby 537ddeeec14Snorby void 538ddeeec14Snorby kif_clear(void) 539ddeeec14Snorby { 540ddeeec14Snorby struct kif_node *kif; 541ddeeec14Snorby 542ddeeec14Snorby while ((kif = RB_MIN(kif_tree, &kit)) != NULL) 543ddeeec14Snorby kif_remove(kif); 544ddeeec14Snorby } 545ddeeec14Snorby 546ddeeec14Snorby int 547ddeeec14Snorby kif_validate(int ifindex) 548ddeeec14Snorby { 549ddeeec14Snorby struct kif_node *kif; 550ddeeec14Snorby 551ddeeec14Snorby if ((kif = kif_find(ifindex)) == NULL) { 552ddeeec14Snorby log_warnx("interface with index %u not found", ifindex); 553ddeeec14Snorby return (1); 554ddeeec14Snorby } 555ddeeec14Snorby 556ddeeec14Snorby return (kif->k.nh_reachable); 557ddeeec14Snorby } 558ddeeec14Snorby 559ddeeec14Snorby struct kroute_node * 560ddeeec14Snorby kroute_match(in_addr_t key) 561ddeeec14Snorby { 562e8dfa7d7Sclaudio u_int8_t i; 563ddeeec14Snorby struct kroute_node *kr; 564ddeeec14Snorby 565ddeeec14Snorby /* we will never match the default route */ 566ddeeec14Snorby for (i = 32; i > 0; i--) 567ddeeec14Snorby if ((kr = kroute_find(key & prefixlen2mask(i), 56858576e66Smichele prefixlen2mask(i), RTP_ANY)) != NULL) 569ddeeec14Snorby return (kr); 570ddeeec14Snorby 571ddeeec14Snorby /* if we don't have a match yet, try to find a default route */ 57258576e66Smichele if ((kr = kroute_find(0, 0, RTP_ANY)) != NULL) 573ddeeec14Snorby return (kr); 574ddeeec14Snorby 575ddeeec14Snorby return (NULL); 576ddeeec14Snorby } 577ddeeec14Snorby 578ddeeec14Snorby /* misc */ 579ddeeec14Snorby int 580ddeeec14Snorby protect_lo(void) 581ddeeec14Snorby { 582ddeeec14Snorby struct kroute_node *kr; 583ddeeec14Snorby 584ddeeec14Snorby /* special protection for 127/8 */ 585ddeeec14Snorby if ((kr = calloc(1, sizeof(struct kroute_node))) == NULL) { 586ddeeec14Snorby log_warn("protect_lo"); 587ddeeec14Snorby return (-1); 588ddeeec14Snorby } 589ddeeec14Snorby kr->r.prefix.s_addr = htonl(INADDR_LOOPBACK); 590ddeeec14Snorby kr->r.netmask.s_addr = htonl(IN_CLASSA_NET); 591ddeeec14Snorby kr->r.flags = F_KERNEL|F_CONNECTED; 592ddeeec14Snorby 593ddeeec14Snorby if (RB_INSERT(kroute_tree, &krt, kr) != NULL) 594ddeeec14Snorby free(kr); /* kernel route already there, no problem */ 595ddeeec14Snorby 596ddeeec14Snorby return (0); 597ddeeec14Snorby } 598ddeeec14Snorby 599ddeeec14Snorby u_int8_t 600ddeeec14Snorby prefixlen_classful(in_addr_t ina) 601ddeeec14Snorby { 602ddeeec14Snorby /* it hurt to write this. */ 603ddeeec14Snorby 604ddeeec14Snorby if (ina >= 0xf0000000U) /* class E */ 605ddeeec14Snorby return (32); 606ddeeec14Snorby else if (ina >= 0xe0000000U) /* class D */ 607ddeeec14Snorby return (4); 608ddeeec14Snorby else if (ina >= 0xc0000000U) /* class C */ 609ddeeec14Snorby return (24); 610ddeeec14Snorby else if (ina >= 0x80000000U) /* class B */ 611ddeeec14Snorby return (16); 612ddeeec14Snorby else /* class A */ 613ddeeec14Snorby return (8); 614ddeeec14Snorby } 615ddeeec14Snorby 616ddeeec14Snorby u_int8_t 617ddeeec14Snorby mask2prefixlen(in_addr_t ina) 618ddeeec14Snorby { 619ddeeec14Snorby if (ina == 0) 620ddeeec14Snorby return (0); 621ddeeec14Snorby else 622ddeeec14Snorby return (33 - ffs(ntohl(ina))); 623ddeeec14Snorby } 624ddeeec14Snorby 625ddeeec14Snorby in_addr_t 626ddeeec14Snorby prefixlen2mask(u_int8_t prefixlen) 627ddeeec14Snorby { 628ddeeec14Snorby if (prefixlen == 0) 629ddeeec14Snorby return (0); 630ddeeec14Snorby 631ddeeec14Snorby return (htonl(0xffffffff << (32 - prefixlen))); 632ddeeec14Snorby } 633ddeeec14Snorby 634064707deSfriehm #define ROUNDUP(a) \ 635064707deSfriehm ((a) > 0 ? (1 + (((a) - 1) | (sizeof(long) - 1))) : sizeof(long)) 636ddeeec14Snorby 637ddeeec14Snorby void 638ddeeec14Snorby get_rtaddrs(int addrs, struct sockaddr *sa, struct sockaddr **rti_info) 639ddeeec14Snorby { 640ddeeec14Snorby int i; 641ddeeec14Snorby 642ddeeec14Snorby for (i = 0; i < RTAX_MAX; i++) { 643ddeeec14Snorby if (addrs & (1 << i)) { 644ddeeec14Snorby rti_info[i] = sa; 645ddeeec14Snorby sa = (struct sockaddr *)((char *)(sa) + 646064707deSfriehm ROUNDUP(sa->sa_len)); 647ddeeec14Snorby } else 648ddeeec14Snorby rti_info[i] = NULL; 649ddeeec14Snorby } 650ddeeec14Snorby } 651ddeeec14Snorby 652ddeeec14Snorby void 653ddeeec14Snorby if_change(u_short ifindex, int flags, struct if_data *ifd) 654ddeeec14Snorby { 655ddeeec14Snorby struct kif_node *kif; 656ddeeec14Snorby struct kroute_node *kr; 657ddeeec14Snorby int type; 658ddeeec14Snorby u_int8_t reachable; 659ddeeec14Snorby 660ddeeec14Snorby if ((kif = kif_find(ifindex)) == NULL) { 661ddeeec14Snorby log_warnx("interface with index %u not found", ifindex); 662ddeeec14Snorby return; 663ddeeec14Snorby } 664ddeeec14Snorby 665ddeeec14Snorby kif->k.flags = flags; 666ddeeec14Snorby kif->k.link_state = ifd->ifi_link_state; 66716530d00Sstsp kif->k.if_type = ifd->ifi_type; 668ddeeec14Snorby kif->k.baudrate = ifd->ifi_baudrate; 669ddeeec14Snorby 670ddeeec14Snorby if ((reachable = (flags & IFF_UP) && 6719a2e0324Sclaudio LINK_STATE_IS_UP(ifd->ifi_link_state)) == kif->k.nh_reachable) 672ddeeec14Snorby return; /* nothing changed wrt nexthop validity */ 673ddeeec14Snorby 674ddeeec14Snorby kif->k.nh_reachable = reachable; 675ddeeec14Snorby type = reachable ? IMSG_NETWORK_ADD : IMSG_NETWORK_DEL; 676ddeeec14Snorby 677ddeeec14Snorby /* notify ripe about interface link state */ 678ddeeec14Snorby main_imsg_compose_ripe(IMSG_IFINFO, 0, &kif->k, sizeof(kif->k)); 679ddeeec14Snorby 680ddeeec14Snorby /* update redistribute list */ 681ddeeec14Snorby RB_FOREACH(kr, kroute_tree, &krt) 682ddeeec14Snorby if (kr->r.ifindex == ifindex) { 683ddeeec14Snorby if (reachable) 684ddeeec14Snorby kr->r.flags &= ~F_DOWN; 685ddeeec14Snorby else 686ddeeec14Snorby kr->r.flags |= F_DOWN; 687ddeeec14Snorby 688ddeeec14Snorby kr_redistribute(type, &kr->r); 689ddeeec14Snorby } 690ddeeec14Snorby } 691ddeeec14Snorby 692ddeeec14Snorby void 693ddeeec14Snorby if_announce(void *msg) 694ddeeec14Snorby { 695ddeeec14Snorby struct if_announcemsghdr *ifan; 696ddeeec14Snorby struct kif_node *kif; 697ddeeec14Snorby 698ddeeec14Snorby ifan = msg; 699ddeeec14Snorby 700ddeeec14Snorby switch (ifan->ifan_what) { 701ddeeec14Snorby case IFAN_ARRIVAL: 702ddeeec14Snorby if ((kif = calloc(1, sizeof(struct kif_node))) == NULL) { 703ddeeec14Snorby log_warn("if_announce"); 704ddeeec14Snorby return; 705ddeeec14Snorby } 706ddeeec14Snorby 707ddeeec14Snorby kif->k.ifindex = ifan->ifan_index; 708ddeeec14Snorby strlcpy(kif->k.ifname, ifan->ifan_name, sizeof(kif->k.ifname)); 709ddeeec14Snorby kif_insert(kif); 710ddeeec14Snorby break; 711ddeeec14Snorby case IFAN_DEPARTURE: 712ddeeec14Snorby kif = kif_find(ifan->ifan_index); 713*018a085aSanton if (kif != NULL) 714ddeeec14Snorby kif_remove(kif); 715ddeeec14Snorby break; 716ddeeec14Snorby } 717ddeeec14Snorby } 718ddeeec14Snorby 719ddeeec14Snorby /* rtsock */ 720ddeeec14Snorby int 721ddeeec14Snorby send_rtmsg(int fd, int action, struct kroute *kroute) 722ddeeec14Snorby { 7231119e335Sclaudio struct iovec iov[4]; 724ddeeec14Snorby struct rt_msghdr hdr; 725ddeeec14Snorby struct sockaddr_in prefix; 726ddeeec14Snorby struct sockaddr_in nexthop; 727ddeeec14Snorby struct sockaddr_in mask; 7281119e335Sclaudio int iovcnt = 0; 729ddeeec14Snorby 730ddeeec14Snorby if (kr_state.fib_sync == 0) 731ddeeec14Snorby return (0); 732ddeeec14Snorby 7331119e335Sclaudio /* initialize header */ 7341119e335Sclaudio bzero(&hdr, sizeof(hdr)); 7351119e335Sclaudio hdr.rtm_version = RTM_VERSION; 7361119e335Sclaudio hdr.rtm_type = action; 7371acb5c27Sremi hdr.rtm_priority = kr_state.fib_prio; 7380ab89b34Smichele hdr.rtm_tableid = kr_state.rdomain; 73958576e66Smichele if (action == RTM_CHANGE) 74058576e66Smichele hdr.rtm_fmask = RTF_REJECT|RTF_BLACKHOLE; 7411119e335Sclaudio hdr.rtm_seq = kr_state.rtseq++; /* overflow doesn't matter */ 7421119e335Sclaudio hdr.rtm_msglen = sizeof(hdr); 7431119e335Sclaudio /* adjust iovec */ 7441119e335Sclaudio iov[iovcnt].iov_base = &hdr; 7451119e335Sclaudio iov[iovcnt++].iov_len = sizeof(hdr); 746ddeeec14Snorby 7471119e335Sclaudio bzero(&prefix, sizeof(prefix)); 7481119e335Sclaudio prefix.sin_len = sizeof(prefix); 7491119e335Sclaudio prefix.sin_family = AF_INET; 7501119e335Sclaudio prefix.sin_addr.s_addr = kroute->prefix.s_addr; 7511119e335Sclaudio /* adjust header */ 7521119e335Sclaudio hdr.rtm_addrs |= RTA_DST; 7531119e335Sclaudio hdr.rtm_msglen += sizeof(prefix); 7541119e335Sclaudio /* adjust iovec */ 7551119e335Sclaudio iov[iovcnt].iov_base = &prefix; 7561119e335Sclaudio iov[iovcnt++].iov_len = sizeof(prefix); 757ddeeec14Snorby 7581119e335Sclaudio if (kroute->nexthop.s_addr != 0) { 7591119e335Sclaudio bzero(&nexthop, sizeof(nexthop)); 7601119e335Sclaudio nexthop.sin_len = sizeof(nexthop); 7611119e335Sclaudio nexthop.sin_family = AF_INET; 7621119e335Sclaudio nexthop.sin_addr.s_addr = kroute->nexthop.s_addr; 7631119e335Sclaudio /* adjust header */ 7641119e335Sclaudio hdr.rtm_flags |= RTF_GATEWAY; 7651119e335Sclaudio hdr.rtm_addrs |= RTA_GATEWAY; 7661119e335Sclaudio hdr.rtm_msglen += sizeof(nexthop); 7671119e335Sclaudio /* adjust iovec */ 7681119e335Sclaudio iov[iovcnt].iov_base = &nexthop; 7691119e335Sclaudio iov[iovcnt++].iov_len = sizeof(nexthop); 7701119e335Sclaudio } 7711119e335Sclaudio 7721119e335Sclaudio bzero(&mask, sizeof(mask)); 7731119e335Sclaudio mask.sin_len = sizeof(mask); 7741119e335Sclaudio mask.sin_family = AF_INET; 7751119e335Sclaudio mask.sin_addr.s_addr = kroute->netmask.s_addr; 7761119e335Sclaudio /* adjust header */ 7771119e335Sclaudio hdr.rtm_addrs |= RTA_NETMASK; 7781119e335Sclaudio hdr.rtm_msglen += sizeof(mask); 7791119e335Sclaudio /* adjust iovec */ 7801119e335Sclaudio iov[iovcnt].iov_base = &mask; 7811119e335Sclaudio iov[iovcnt++].iov_len = sizeof(mask); 7821119e335Sclaudio 783ddeeec14Snorby 784ddeeec14Snorby retry: 7851119e335Sclaudio if (writev(fd, iov, iovcnt) == -1) { 7864324a051Sbluhm if (errno == ESRCH) { 7871119e335Sclaudio if (hdr.rtm_type == RTM_CHANGE) { 7881119e335Sclaudio hdr.rtm_type = RTM_ADD; 789ddeeec14Snorby goto retry; 7901119e335Sclaudio } else if (hdr.rtm_type == RTM_DELETE) { 791ddeeec14Snorby log_info("route %s/%u vanished before delete", 792ddeeec14Snorby inet_ntoa(kroute->prefix), 793ddeeec14Snorby mask2prefixlen(kroute->netmask.s_addr)); 794ddeeec14Snorby return (0); 795ddeeec14Snorby } 7964324a051Sbluhm } 7974324a051Sbluhm log_warn("send_rtmsg: action %u, prefix %s/%u", 7981119e335Sclaudio hdr.rtm_type, inet_ntoa(kroute->prefix), 7994324a051Sbluhm mask2prefixlen(kroute->netmask.s_addr)); 800ddeeec14Snorby return (0); 801ddeeec14Snorby } 802ddeeec14Snorby 803ddeeec14Snorby return (0); 804ddeeec14Snorby } 805ddeeec14Snorby 806ddeeec14Snorby int 807ddeeec14Snorby fetchtable(void) 808ddeeec14Snorby { 809ddeeec14Snorby size_t len; 81063b828f1Shenning int mib[7]; 811ddeeec14Snorby char *buf, *next, *lim; 812ddeeec14Snorby struct rt_msghdr *rtm; 813ddeeec14Snorby struct sockaddr *sa, *rti_info[RTAX_MAX]; 814ddeeec14Snorby struct sockaddr_in *sa_in; 815a1cc2eacSclaudio struct sockaddr_rtlabel *label; 816ddeeec14Snorby struct kroute_node *kr; 817ddeeec14Snorby struct iface *iface = NULL; 818ddeeec14Snorby 819ddeeec14Snorby mib[0] = CTL_NET; 820149dc9fcSguenther mib[1] = PF_ROUTE; 821ddeeec14Snorby mib[2] = 0; 822ddeeec14Snorby mib[3] = AF_INET; 823ddeeec14Snorby mib[4] = NET_RT_DUMP; 824ddeeec14Snorby mib[5] = 0; 8250ab89b34Smichele mib[6] = kr_state.rdomain; /* rtableid */ 826ddeeec14Snorby 827f5945599Shenning if (sysctl(mib, 7, NULL, &len, NULL, 0) == -1) { 828ddeeec14Snorby log_warn("sysctl"); 829ddeeec14Snorby return (-1); 830ddeeec14Snorby } 831ddeeec14Snorby if ((buf = malloc(len)) == NULL) { 832ddeeec14Snorby log_warn("fetchtable"); 833ddeeec14Snorby return (-1); 834ddeeec14Snorby } 835f5945599Shenning if (sysctl(mib, 7, buf, &len, NULL, 0) == -1) { 836ddeeec14Snorby log_warn("sysctl"); 837ddeeec14Snorby free(buf); 838ddeeec14Snorby return (-1); 839ddeeec14Snorby } 840ddeeec14Snorby 841ddeeec14Snorby lim = buf + len; 842ddeeec14Snorby for (next = buf; next < lim; next += rtm->rtm_msglen) { 843ddeeec14Snorby rtm = (struct rt_msghdr *)next; 844c1b922b7Sclaudio if (rtm->rtm_version != RTM_VERSION) 845c1b922b7Sclaudio continue; 8467a13f2d5Schris sa = (struct sockaddr *)(next + rtm->rtm_hdrlen); 847ddeeec14Snorby get_rtaddrs(rtm->rtm_addrs, sa, rti_info); 848ddeeec14Snorby 849ddeeec14Snorby if ((sa = rti_info[RTAX_DST]) == NULL) 850ddeeec14Snorby continue; 851ddeeec14Snorby 8524fb9461cSclaudio /* Skip ARP/ND cache and broadcast routes. */ 8534fb9461cSclaudio if (rtm->rtm_flags & (RTF_LLINFO|RTF_BROADCAST)) 854ddeeec14Snorby continue; 855ddeeec14Snorby 856ddeeec14Snorby #ifdef RTF_MPATH 857ddeeec14Snorby if (rtm->rtm_flags & RTF_MPATH) /* multipath */ 858ddeeec14Snorby continue; 859ddeeec14Snorby #endif 860ddeeec14Snorby 861ddeeec14Snorby if ((kr = calloc(1, sizeof(struct kroute_node))) == NULL) { 862ddeeec14Snorby log_warn("fetchtable"); 863ddeeec14Snorby free(buf); 864ddeeec14Snorby return (-1); 865ddeeec14Snorby } 866ddeeec14Snorby 867ddeeec14Snorby kr->r.flags = F_KERNEL; 86858576e66Smichele kr->r.priority = rtm->rtm_priority; 869ddeeec14Snorby 870ddeeec14Snorby switch (sa->sa_family) { 871ddeeec14Snorby case AF_INET: 872ddeeec14Snorby kr->r.prefix.s_addr = 873ddeeec14Snorby ((struct sockaddr_in *)sa)->sin_addr.s_addr; 874ddeeec14Snorby sa_in = (struct sockaddr_in *)rti_info[RTAX_NETMASK]; 875ddeeec14Snorby if (rtm->rtm_flags & RTF_STATIC) 876ddeeec14Snorby kr->r.flags |= F_STATIC; 877139676eaSclaudio if (rtm->rtm_flags & RTF_BLACKHOLE) 878139676eaSclaudio kr->r.flags |= F_BLACKHOLE; 879139676eaSclaudio if (rtm->rtm_flags & RTF_REJECT) 880139676eaSclaudio kr->r.flags |= F_REJECT; 881ddeeec14Snorby if (rtm->rtm_flags & RTF_DYNAMIC) 882ddeeec14Snorby kr->r.flags |= F_DYNAMIC; 883ddeeec14Snorby if (sa_in != NULL) { 884ddeeec14Snorby if (sa_in->sin_len == 0) 885ddeeec14Snorby break; 886ddeeec14Snorby kr->r.netmask.s_addr = 887ddeeec14Snorby sa_in->sin_addr.s_addr; 888ddeeec14Snorby } else if (rtm->rtm_flags & RTF_HOST) 889ddeeec14Snorby kr->r.netmask.s_addr = prefixlen2mask(32); 890ddeeec14Snorby else 891ddeeec14Snorby kr->r.netmask.s_addr = 892ddeeec14Snorby prefixlen2mask(prefixlen_classful 893ddeeec14Snorby (kr->r.prefix.s_addr)); 894ddeeec14Snorby break; 895ddeeec14Snorby default: 896ddeeec14Snorby free(kr); 897ddeeec14Snorby continue; 898ddeeec14Snorby } 899ddeeec14Snorby 900ddeeec14Snorby kr->r.ifindex = rtm->rtm_index; 901ddeeec14Snorby 902ddeeec14Snorby iface = if_find_index(rtm->rtm_index); 903ddeeec14Snorby if (iface != NULL) 904ddeeec14Snorby kr->r.metric = iface->cost; 905ddeeec14Snorby else 906efb04dc6Smichele kr->r.metric = DEFAULT_COST; 907ddeeec14Snorby 908ddeeec14Snorby if ((sa = rti_info[RTAX_GATEWAY]) != NULL) 909ddeeec14Snorby switch (sa->sa_family) { 910ddeeec14Snorby case AF_INET: 9114fb9461cSclaudio if (rtm->rtm_flags & RTF_CONNECTED) { 9124fb9461cSclaudio kr->r.flags |= F_CONNECTED; 9134fb9461cSclaudio break; 9144fb9461cSclaudio } 9154fb9461cSclaudio 916ddeeec14Snorby kr->r.nexthop.s_addr = 917ddeeec14Snorby ((struct sockaddr_in *)sa)->sin_addr.s_addr; 918ddeeec14Snorby break; 919ddeeec14Snorby case AF_LINK: 9204fb9461cSclaudio /* 9214fb9461cSclaudio * Traditional BSD connected routes have 9224fb9461cSclaudio * a gateway of type AF_LINK. 9234fb9461cSclaudio */ 924ddeeec14Snorby kr->r.flags |= F_CONNECTED; 925ddeeec14Snorby break; 926ddeeec14Snorby } 927ddeeec14Snorby 9281acb5c27Sremi if (rtm->rtm_priority == kr_state.fib_prio) { 929ddeeec14Snorby send_rtmsg(kr_state.fd, RTM_DELETE, &kr->r); 930ddeeec14Snorby free(kr); 931a1cc2eacSclaudio } else { 932a1cc2eacSclaudio if ((label = (struct sockaddr_rtlabel *) 933a1cc2eacSclaudio rti_info[RTAX_LABEL]) != NULL) 934a1cc2eacSclaudio kr->r.rtlabel = 935a1cc2eacSclaudio rtlabel_name2id(label->sr_label); 936ddeeec14Snorby kroute_insert(kr); 937a1cc2eacSclaudio } 938ddeeec14Snorby 939ddeeec14Snorby } 940ddeeec14Snorby free(buf); 941ddeeec14Snorby return (0); 942ddeeec14Snorby } 943ddeeec14Snorby 944ddeeec14Snorby int 945ddeeec14Snorby fetchifs(int ifindex) 946ddeeec14Snorby { 947ddeeec14Snorby size_t len; 948ddeeec14Snorby int mib[6]; 949ddeeec14Snorby char *buf, *next, *lim; 950ddeeec14Snorby struct if_msghdr ifm; 951ddeeec14Snorby struct kif_node *kif; 952ddeeec14Snorby struct sockaddr *sa, *rti_info[RTAX_MAX]; 953ddeeec14Snorby struct sockaddr_dl *sdl; 954ddeeec14Snorby 955ddeeec14Snorby mib[0] = CTL_NET; 956149dc9fcSguenther mib[1] = PF_ROUTE; 957ddeeec14Snorby mib[2] = 0; 958ddeeec14Snorby mib[3] = AF_INET; 959ddeeec14Snorby mib[4] = NET_RT_IFLIST; 960ddeeec14Snorby mib[5] = ifindex; 961ddeeec14Snorby 962ddeeec14Snorby if (sysctl(mib, 6, NULL, &len, NULL, 0) == -1) { 963ddeeec14Snorby log_warn("sysctl"); 964ddeeec14Snorby return (-1); 965ddeeec14Snorby } 966ddeeec14Snorby if ((buf = malloc(len)) == NULL) { 967ddeeec14Snorby log_warn("fetchif"); 968ddeeec14Snorby return (-1); 969ddeeec14Snorby } 970ddeeec14Snorby if (sysctl(mib, 6, buf, &len, NULL, 0) == -1) { 971ddeeec14Snorby log_warn("sysctl"); 972ddeeec14Snorby free(buf); 973ddeeec14Snorby return (-1); 974ddeeec14Snorby } 975ddeeec14Snorby 976ddeeec14Snorby lim = buf + len; 977ddeeec14Snorby for (next = buf; next < lim; next += ifm.ifm_msglen) { 978ddeeec14Snorby memcpy(&ifm, next, sizeof(ifm)); 979c1b922b7Sclaudio if (ifm.ifm_version != RTM_VERSION) 980c1b922b7Sclaudio continue; 981ddeeec14Snorby if (ifm.ifm_type != RTM_IFINFO) 982ddeeec14Snorby continue; 983ddeeec14Snorby 984ddeeec14Snorby sa = (struct sockaddr *)(next + sizeof(ifm)); 985ddeeec14Snorby get_rtaddrs(ifm.ifm_addrs, sa, rti_info); 986ddeeec14Snorby 987ddeeec14Snorby if ((kif = calloc(1, sizeof(struct kif_node))) == NULL) { 988ddeeec14Snorby log_warn("fetchifs"); 989ddeeec14Snorby free(buf); 990ddeeec14Snorby return (-1); 991ddeeec14Snorby } 992ddeeec14Snorby 993ddeeec14Snorby kif->k.ifindex = ifm.ifm_index; 994ddeeec14Snorby kif->k.flags = ifm.ifm_flags; 995ddeeec14Snorby kif->k.link_state = ifm.ifm_data.ifi_link_state; 99616530d00Sstsp kif->k.if_type = ifm.ifm_data.ifi_type; 997ddeeec14Snorby kif->k.baudrate = ifm.ifm_data.ifi_baudrate; 998ddeeec14Snorby kif->k.mtu = ifm.ifm_data.ifi_mtu; 999ddeeec14Snorby kif->k.nh_reachable = (kif->k.flags & IFF_UP) && 10009a2e0324Sclaudio LINK_STATE_IS_UP(ifm.ifm_data.ifi_link_state); 1001ddeeec14Snorby if ((sa = rti_info[RTAX_IFP]) != NULL) 1002ddeeec14Snorby if (sa->sa_family == AF_LINK) { 1003ddeeec14Snorby sdl = (struct sockaddr_dl *)sa; 1004ddeeec14Snorby if (sdl->sdl_nlen >= sizeof(kif->k.ifname)) 1005ddeeec14Snorby memcpy(kif->k.ifname, sdl->sdl_data, 1006ddeeec14Snorby sizeof(kif->k.ifname) - 1); 1007ddeeec14Snorby else if (sdl->sdl_nlen > 0) 1008ddeeec14Snorby memcpy(kif->k.ifname, sdl->sdl_data, 1009ddeeec14Snorby sdl->sdl_nlen); 1010ddeeec14Snorby /* string already terminated via calloc() */ 1011ddeeec14Snorby } 1012ddeeec14Snorby 1013ddeeec14Snorby kif_insert(kif); 1014ddeeec14Snorby } 1015ddeeec14Snorby free(buf); 1016ddeeec14Snorby return (0); 1017ddeeec14Snorby } 1018ddeeec14Snorby 1019ddeeec14Snorby int 1020ddeeec14Snorby dispatch_rtmsg(void) 1021ddeeec14Snorby { 1022ddeeec14Snorby char buf[RT_BUF_SIZE]; 1023ddeeec14Snorby ssize_t n; 1024ddeeec14Snorby char *next, *lim; 1025ddeeec14Snorby struct rt_msghdr *rtm; 1026ddeeec14Snorby struct if_msghdr ifm; 1027ddeeec14Snorby struct sockaddr *sa, *rti_info[RTAX_MAX]; 1028ddeeec14Snorby struct sockaddr_in *sa_in; 1029a1cc2eacSclaudio struct sockaddr_rtlabel *label; 1030ddeeec14Snorby struct kroute_node *kr; 1031ddeeec14Snorby struct in_addr prefix, nexthop, netmask; 1032efb04dc6Smichele struct iface *iface = NULL; 1033ddeeec14Snorby int flags; 1034ddeeec14Snorby u_short ifindex = 0; 103558576e66Smichele u_int8_t metric, prio; 1036ddeeec14Snorby 1037ddeeec14Snorby if ((n = read(kr_state.fd, &buf, sizeof(buf))) == -1) { 10388dddb481Sclaudio if (errno == EAGAIN || errno == EINTR) 10398dddb481Sclaudio return (0); 1040ddeeec14Snorby log_warn("dispatch_rtmsg: read error"); 1041ddeeec14Snorby return (-1); 1042ddeeec14Snorby } 1043ddeeec14Snorby 1044ddeeec14Snorby if (n == 0) { 1045ddeeec14Snorby log_warnx("routing socket closed"); 1046ddeeec14Snorby return (-1); 1047ddeeec14Snorby } 1048ddeeec14Snorby 1049ddeeec14Snorby lim = buf + n; 1050ddeeec14Snorby for (next = buf; next < lim; next += rtm->rtm_msglen) { 1051ddeeec14Snorby rtm = (struct rt_msghdr *)next; 10521c642900Sclaudio if (lim < next + sizeof(u_short) || 10538dddb481Sclaudio lim < next + rtm->rtm_msglen) 10548dddb481Sclaudio fatalx("dispatch_rtmsg: partial rtm in buffer"); 1055c1b922b7Sclaudio if (rtm->rtm_version != RTM_VERSION) 1056c1b922b7Sclaudio continue; 1057ddeeec14Snorby 1058ddeeec14Snorby prefix.s_addr = 0; 1059ddeeec14Snorby netmask.s_addr = 0; 1060ddeeec14Snorby flags = F_KERNEL; 1061ddeeec14Snorby nexthop.s_addr = 0; 106258576e66Smichele prio = 0; 1063ddeeec14Snorby 1064ddeeec14Snorby if (rtm->rtm_type == RTM_ADD || rtm->rtm_type == RTM_CHANGE || 1065ddeeec14Snorby rtm->rtm_type == RTM_DELETE) { 10667a13f2d5Schris sa = (struct sockaddr *)(next + rtm->rtm_hdrlen); 1067ddeeec14Snorby get_rtaddrs(rtm->rtm_addrs, sa, rti_info); 1068ddeeec14Snorby 10690ab89b34Smichele if (rtm->rtm_tableid != kr_state.rdomain) 107011aed6e8Sclaudio continue; 107111aed6e8Sclaudio 1072ddeeec14Snorby if (rtm->rtm_pid == kr_state.pid) /* cause by us */ 1073ddeeec14Snorby continue; 1074ddeeec14Snorby 1075ddeeec14Snorby if (rtm->rtm_errno) /* failed attempts... */ 1076ddeeec14Snorby continue; 1077ddeeec14Snorby 10784fb9461cSclaudio /* Skip ARP/ND cache and broadcast routes. */ 10794fb9461cSclaudio if (rtm->rtm_flags & (RTF_LLINFO|RTF_BROADCAST)) 1080ddeeec14Snorby continue; 1081ddeeec14Snorby 108258576e66Smichele prio = rtm->rtm_priority; 108358576e66Smichele 1084ddeeec14Snorby switch (sa->sa_family) { 1085ddeeec14Snorby case AF_INET: 1086ddeeec14Snorby prefix.s_addr = 1087ddeeec14Snorby ((struct sockaddr_in *)sa)->sin_addr.s_addr; 1088ddeeec14Snorby sa_in = (struct sockaddr_in *) 1089ddeeec14Snorby rti_info[RTAX_NETMASK]; 1090ddeeec14Snorby if (sa_in != NULL) { 1091ddeeec14Snorby if (sa_in->sin_len != 0) 1092ddeeec14Snorby netmask.s_addr = 1093ddeeec14Snorby sa_in->sin_addr.s_addr; 1094ddeeec14Snorby } else if (rtm->rtm_flags & RTF_HOST) 1095ddeeec14Snorby netmask.s_addr = prefixlen2mask(32); 1096ddeeec14Snorby else 1097ddeeec14Snorby netmask.s_addr = 1098ddeeec14Snorby prefixlen2mask(prefixlen_classful( 1099ddeeec14Snorby prefix.s_addr)); 1100ddeeec14Snorby if (rtm->rtm_flags & RTF_STATIC) 1101ddeeec14Snorby flags |= F_STATIC; 1102139676eaSclaudio if (rtm->rtm_flags & RTF_BLACKHOLE) 1103139676eaSclaudio flags |= F_BLACKHOLE; 1104139676eaSclaudio if (rtm->rtm_flags & RTF_REJECT) 1105139676eaSclaudio flags |= F_REJECT; 1106ddeeec14Snorby if (rtm->rtm_flags & RTF_DYNAMIC) 1107ddeeec14Snorby flags |= F_DYNAMIC; 1108ddeeec14Snorby break; 1109ddeeec14Snorby default: 1110ddeeec14Snorby continue; 1111ddeeec14Snorby } 1112ddeeec14Snorby 1113ddeeec14Snorby ifindex = rtm->rtm_index; 1114ddeeec14Snorby if ((sa = rti_info[RTAX_GATEWAY]) != NULL) { 1115ddeeec14Snorby switch (sa->sa_family) { 1116ddeeec14Snorby case AF_INET: 1117ddeeec14Snorby nexthop.s_addr = ((struct 1118ddeeec14Snorby sockaddr_in *)sa)->sin_addr.s_addr; 1119ddeeec14Snorby break; 1120ddeeec14Snorby case AF_LINK: 1121ddeeec14Snorby flags |= F_CONNECTED; 1122ddeeec14Snorby break; 1123ddeeec14Snorby } 1124ddeeec14Snorby } 1125ddeeec14Snorby } 1126ddeeec14Snorby 1127ddeeec14Snorby switch (rtm->rtm_type) { 1128ddeeec14Snorby case RTM_ADD: 1129ddeeec14Snorby case RTM_CHANGE: 1130ddeeec14Snorby if (nexthop.s_addr == 0 && !(flags & F_CONNECTED)) { 1131ddeeec14Snorby log_warnx("dispatch_rtmsg no nexthop for %s/%u", 1132ddeeec14Snorby inet_ntoa(prefix), 1133ddeeec14Snorby mask2prefixlen(netmask.s_addr)); 1134ddeeec14Snorby continue; 1135ddeeec14Snorby } 1136ddeeec14Snorby 113758576e66Smichele if ((kr = kroute_find(prefix.s_addr, netmask.s_addr, 113858576e66Smichele prio)) != NULL) { 1139ddeeec14Snorby if (kr->r.flags & F_REDISTRIBUTED) 1140ddeeec14Snorby flags |= F_REDISTRIBUTED; 1141ddeeec14Snorby kr->r.nexthop.s_addr = nexthop.s_addr; 1142ddeeec14Snorby kr->r.flags = flags; 1143ddeeec14Snorby kr->r.ifindex = ifindex; 114458576e66Smichele kr->r.priority = prio; 1145ddeeec14Snorby 1146a1cc2eacSclaudio rtlabel_unref(kr->r.rtlabel); 1147a1cc2eacSclaudio kr->r.rtlabel = 0; 1148a1cc2eacSclaudio if ((label = (struct sockaddr_rtlabel *) 1149a1cc2eacSclaudio rti_info[RTAX_LABEL]) != NULL) 1150a1cc2eacSclaudio kr->r.rtlabel = 1151a1cc2eacSclaudio rtlabel_name2id(label->sr_label); 1152a1cc2eacSclaudio 1153ddeeec14Snorby if (kif_validate(kr->r.ifindex)) 1154ddeeec14Snorby kr->r.flags &= ~F_DOWN; 1155ddeeec14Snorby else 1156ddeeec14Snorby kr->r.flags |= F_DOWN; 1157ddeeec14Snorby 1158ddeeec14Snorby /* just readd, the RDE will care */ 1159ddeeec14Snorby kr_redistribute(IMSG_NETWORK_ADD, &kr->r); 1160ddeeec14Snorby } else { 1161ddeeec14Snorby if ((kr = calloc(1, 1162ddeeec14Snorby sizeof(struct kroute_node))) == NULL) { 1163ddeeec14Snorby log_warn("dispatch_rtmsg"); 1164ddeeec14Snorby return (-1); 1165ddeeec14Snorby } 1166efb04dc6Smichele 1167efb04dc6Smichele iface = if_find_index(rtm->rtm_index); 1168efb04dc6Smichele if (iface != NULL) 1169efb04dc6Smichele metric = iface->cost; 1170efb04dc6Smichele else 1171efb04dc6Smichele metric = DEFAULT_COST; 1172efb04dc6Smichele 1173ddeeec14Snorby kr->r.prefix.s_addr = prefix.s_addr; 1174ddeeec14Snorby kr->r.netmask.s_addr = netmask.s_addr; 1175ddeeec14Snorby kr->r.nexthop.s_addr = nexthop.s_addr; 1176efb04dc6Smichele kr->r.metric = metric; 1177ddeeec14Snorby kr->r.flags = flags; 1178ddeeec14Snorby kr->r.ifindex = ifindex; 1179ddeeec14Snorby 1180a1cc2eacSclaudio if ((label = (struct sockaddr_rtlabel *) 1181a1cc2eacSclaudio rti_info[RTAX_LABEL]) != NULL) 1182a1cc2eacSclaudio kr->r.rtlabel = 1183a1cc2eacSclaudio rtlabel_name2id(label->sr_label); 1184a1cc2eacSclaudio 1185ddeeec14Snorby kroute_insert(kr); 1186ddeeec14Snorby } 1187ddeeec14Snorby break; 1188ddeeec14Snorby case RTM_DELETE: 118958576e66Smichele if ((kr = kroute_find(prefix.s_addr, netmask.s_addr, 119058576e66Smichele prio)) == NULL) 1191ddeeec14Snorby continue; 1192ddeeec14Snorby if (!(kr->r.flags & F_KERNEL)) 1193ddeeec14Snorby continue; 1194ddeeec14Snorby if (kroute_remove(kr) == -1) 1195ddeeec14Snorby return (-1); 1196ddeeec14Snorby break; 1197ddeeec14Snorby case RTM_IFINFO: 1198ddeeec14Snorby memcpy(&ifm, next, sizeof(ifm)); 1199ddeeec14Snorby if_change(ifm.ifm_index, ifm.ifm_flags, 1200ddeeec14Snorby &ifm.ifm_data); 1201ddeeec14Snorby break; 1202ddeeec14Snorby case RTM_IFANNOUNCE: 1203ddeeec14Snorby if_announce(next); 1204ddeeec14Snorby break; 1205ddeeec14Snorby default: 1206ddeeec14Snorby /* ignore for now */ 1207ddeeec14Snorby break; 1208ddeeec14Snorby } 1209ddeeec14Snorby } 1210ddeeec14Snorby return (0); 1211ddeeec14Snorby } 1212