xref: /openbsd-src/usr.sbin/ripd/kroute.c (revision 018a085a0a42a5ac0134c8e54842d4b413e0ddbc)
1*018a085aSanton /*	$OpenBSD: kroute.c,v 1.37 2025/01/02 06:35:57 anton Exp $ */
2ddeeec14Snorby 
3ddeeec14Snorby /*
4ddeeec14Snorby  * Copyright (c) 2004 Esben Norby <norby@openbsd.org>
5ddeeec14Snorby  * Copyright (c) 2003, 2004 Henning Brauer <henning@openbsd.org>
6ddeeec14Snorby  *
7ddeeec14Snorby  * Permission to use, copy, modify, and distribute this software for any
8ddeeec14Snorby  * purpose with or without fee is hereby granted, provided that the above
9ddeeec14Snorby  * copyright notice and this permission notice appear in all copies.
10ddeeec14Snorby  *
11ddeeec14Snorby  * THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES
12ddeeec14Snorby  * WITH REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF
13ddeeec14Snorby  * MERCHANTABILITY AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR
14ddeeec14Snorby  * ANY SPECIAL, DIRECT, INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES
15ddeeec14Snorby  * WHATSOEVER RESULTING FROM LOSS OF USE, DATA OR PROFITS, WHETHER IN AN
16ddeeec14Snorby  * ACTION OF CONTRACT, NEGLIGENCE OR OTHER TORTIOUS ACTION, ARISING OUT OF
17ddeeec14Snorby  * OR IN CONNECTION WITH THE USE OR PERFORMANCE OF THIS SOFTWARE.
18ddeeec14Snorby  */
19ddeeec14Snorby 
20ddeeec14Snorby #include <sys/types.h>
21ddeeec14Snorby #include <sys/socket.h>
22ddeeec14Snorby #include <sys/sysctl.h>
23ddeeec14Snorby #include <sys/tree.h>
241119e335Sclaudio #include <sys/uio.h>
25ddeeec14Snorby #include <netinet/in.h>
26ddeeec14Snorby #include <arpa/inet.h>
27ddeeec14Snorby #include <net/if.h>
28ddeeec14Snorby #include <net/if_dl.h>
29ddeeec14Snorby #include <net/if_types.h>
30ddeeec14Snorby #include <net/route.h>
31ddeeec14Snorby #include <err.h>
32ddeeec14Snorby #include <errno.h>
33ddeeec14Snorby #include <fcntl.h>
34ddeeec14Snorby #include <stdio.h>
35ddeeec14Snorby #include <stdlib.h>
36ddeeec14Snorby #include <string.h>
37ddeeec14Snorby #include <unistd.h>
38ddeeec14Snorby 
39b505309eSclaudio #include "rip.h"
40ddeeec14Snorby #include "ripd.h"
41ddeeec14Snorby #include "log.h"
42ddeeec14Snorby 
43ddeeec14Snorby struct {
44ddeeec14Snorby 	u_int32_t		rtseq;
45ddeeec14Snorby 	pid_t			pid;
46ddeeec14Snorby 	int			fib_sync;
471acb5c27Sremi 	u_int8_t		fib_prio;
48ddeeec14Snorby 	int			fd;
49ddeeec14Snorby 	struct event		ev;
500ab89b34Smichele 	u_int			rdomain;
51ddeeec14Snorby } kr_state;
52ddeeec14Snorby 
53ddeeec14Snorby struct kroute_node {
54ddeeec14Snorby 	RB_ENTRY(kroute_node)	 entry;
55ddeeec14Snorby 	struct kroute		 r;
56ddeeec14Snorby };
57ddeeec14Snorby 
58ddeeec14Snorby struct kif_node {
59ddeeec14Snorby 	RB_ENTRY(kif_node)	 entry;
60ddeeec14Snorby 	struct kif		 k;
61ddeeec14Snorby };
62ddeeec14Snorby 
63ddeeec14Snorby void	kr_redistribute(int, struct kroute *);
64ddeeec14Snorby int	kroute_compare(struct kroute_node *, struct kroute_node *);
65ddeeec14Snorby int	kif_compare(struct kif_node *, struct kif_node *);
6658576e66Smichele int	kr_change_fib(struct kroute_node *, struct kroute *, int);
67ddeeec14Snorby 
6858576e66Smichele struct kroute_node	*kroute_find(in_addr_t, in_addr_t, u_int8_t);
69ddeeec14Snorby int			 kroute_insert(struct kroute_node *);
70ddeeec14Snorby int			 kroute_remove(struct kroute_node *);
71ddeeec14Snorby void			 kroute_clear(void);
72ddeeec14Snorby 
73ddeeec14Snorby struct kif_node		*kif_find(int);
74ddeeec14Snorby int			 kif_insert(struct kif_node *);
75ddeeec14Snorby int			 kif_remove(struct kif_node *);
76ddeeec14Snorby void			 kif_clear(void);
77ddeeec14Snorby int			 kif_validate(int);
78ddeeec14Snorby 
79ddeeec14Snorby struct kroute_node	*kroute_match(in_addr_t);
80ddeeec14Snorby 
81ddeeec14Snorby int		protect_lo(void);
82ddeeec14Snorby u_int8_t	prefixlen_classful(in_addr_t);
83ddeeec14Snorby void		get_rtaddrs(int, struct sockaddr *, struct sockaddr **);
84ddeeec14Snorby void		if_change(u_short, int, struct if_data *);
85ddeeec14Snorby void		if_announce(void *);
86ddeeec14Snorby 
87ddeeec14Snorby int		send_rtmsg(int, int, struct kroute *);
88ddeeec14Snorby int		dispatch_rtmsg(void);
89ddeeec14Snorby int		fetchtable(void);
90ddeeec14Snorby int		fetchifs(int);
91ddeeec14Snorby 
92ddeeec14Snorby RB_HEAD(kroute_tree, kroute_node)	krt;
93ddeeec14Snorby RB_PROTOTYPE(kroute_tree, kroute_node, entry, kroute_compare)
94ddeeec14Snorby RB_GENERATE(kroute_tree, kroute_node, entry, kroute_compare)
95ddeeec14Snorby 
96ddeeec14Snorby RB_HEAD(kif_tree, kif_node)		kit;
97ddeeec14Snorby RB_PROTOTYPE(kif_tree, kif_node, entry, kif_compare)
98ddeeec14Snorby RB_GENERATE(kif_tree, kif_node, entry, kif_compare)
99ddeeec14Snorby 
100ddeeec14Snorby int
101ddeeec14Snorby kif_init(void)
102ddeeec14Snorby {
103ddeeec14Snorby 	RB_INIT(&kit);
104ddeeec14Snorby 
105ddeeec14Snorby 	if (fetchifs(0) == -1)
106ddeeec14Snorby 		return (-1);
107ddeeec14Snorby 
108ddeeec14Snorby 	return (0);
109ddeeec14Snorby }
110ddeeec14Snorby 
111ddeeec14Snorby int
1121acb5c27Sremi kr_init(int fs, u_int rdomain, u_int8_t fib_prio)
113ddeeec14Snorby {
114ddeeec14Snorby 	int		opt = 0, rcvbuf, default_rcvbuf;
115ddeeec14Snorby 	socklen_t	optlen;
116ddeeec14Snorby 
1176bab40fcSclaudio 	if ((kr_state.fd = socket(AF_ROUTE,
1186bab40fcSclaudio 	    SOCK_RAW | SOCK_CLOEXEC | SOCK_NONBLOCK, 0)) == -1) {
119ddeeec14Snorby 		log_warn("kr_init: socket");
120ddeeec14Snorby 		return (-1);
121ddeeec14Snorby 	}
122ddeeec14Snorby 
123ddeeec14Snorby 	/* not interested in my own messages */
124ddeeec14Snorby 	if (setsockopt(kr_state.fd, SOL_SOCKET, SO_USELOOPBACK,
125ddeeec14Snorby 	    &opt, sizeof(opt)) == -1)
126ddeeec14Snorby 		log_warn("kr_init: setsockopt");	/* not fatal */
127ddeeec14Snorby 
128ddeeec14Snorby 	/* grow receive buffer, don't wanna miss messages */
129ddeeec14Snorby 	optlen = sizeof(default_rcvbuf);
130ddeeec14Snorby 	if (getsockopt(kr_state.fd, SOL_SOCKET, SO_RCVBUF,
131ddeeec14Snorby 	    &default_rcvbuf, &optlen) == -1)
132ddeeec14Snorby 		log_warn("kr_init getsockopt SOL_SOCKET SO_RCVBUF");
133ddeeec14Snorby 	else
134ddeeec14Snorby 		for (rcvbuf = MAX_RTSOCK_BUF;
135ddeeec14Snorby 		    rcvbuf > default_rcvbuf &&
136ddeeec14Snorby 		    setsockopt(kr_state.fd, SOL_SOCKET, SO_RCVBUF,
137ddeeec14Snorby 		    &rcvbuf, sizeof(rcvbuf)) == -1 && errno == ENOBUFS;
138ddeeec14Snorby 		    rcvbuf /= 2)
139ddeeec14Snorby 			;	/* nothing */
140ddeeec14Snorby 
141ddeeec14Snorby 	kr_state.pid = getpid();
142ddeeec14Snorby 	kr_state.rtseq = 1;
1431acb5c27Sremi 	kr_state.fib_prio = fib_prio;
144ddeeec14Snorby 
145ddeeec14Snorby 	RB_INIT(&krt);
146ddeeec14Snorby 
147ddeeec14Snorby 	if (fetchtable() == -1)
148ddeeec14Snorby 		return (-1);
149ddeeec14Snorby 
150ddeeec14Snorby 	if (protect_lo() == -1)
151ddeeec14Snorby 		return (-1);
152ddeeec14Snorby 
153b505309eSclaudio 	kr_state.fib_sync = fs; /* now set correct sync mode */
1540ab89b34Smichele 	kr_state.rdomain = rdomain;
155b505309eSclaudio 
156ddeeec14Snorby 	event_set(&kr_state.ev, kr_state.fd, EV_READ | EV_PERSIST,
157ddeeec14Snorby 	    kr_dispatch_msg, NULL);
158ddeeec14Snorby 	event_add(&kr_state.ev, NULL);
159ddeeec14Snorby 
160ddeeec14Snorby 	return (0);
161ddeeec14Snorby }
162ddeeec14Snorby 
163ddeeec14Snorby int
16458576e66Smichele kr_change_fib(struct kroute_node *kr, struct kroute *kroute, int action)
165ddeeec14Snorby {
166ddeeec14Snorby 	/* nexthop within 127/8 -> ignore silently */
167ddeeec14Snorby 	if ((kroute->nexthop.s_addr & htonl(IN_CLASSA_NET)) ==
168ddeeec14Snorby 	    htonl(INADDR_LOOPBACK & IN_CLASSA_NET))
169ddeeec14Snorby 		return (0);
170ddeeec14Snorby 
171ddeeec14Snorby 	if (send_rtmsg(kr_state.fd, action, kroute) == -1)
172ddeeec14Snorby 		return (-1);
173ddeeec14Snorby 
174ddeeec14Snorby 	if (action == RTM_ADD) {
17558576e66Smichele 		if ((kr = calloc(1, sizeof(struct kroute_node))) == NULL)
17658576e66Smichele 			fatal("kr_change_fib");
17758576e66Smichele 
178ddeeec14Snorby 		kr->r.prefix.s_addr = kroute->prefix.s_addr;
179ddeeec14Snorby 		kr->r.netmask.s_addr = kroute->netmask.s_addr;
180ddeeec14Snorby 		kr->r.nexthop.s_addr = kroute->nexthop.s_addr;
181ddeeec14Snorby 		kr->r.flags = kroute->flags |= F_RIPD_INSERTED;
1821acb5c27Sremi 		kr->r.priority = kr_state.fib_prio;
183ddeeec14Snorby 
18458576e66Smichele 		if (kroute_insert(kr) == -1) {
18558576e66Smichele 			log_debug("kr_update_fib: cannot insert %s",
1865aeb3034Sremi 			    inet_ntoa(kroute->nexthop));
18758576e66Smichele 		}
188ddeeec14Snorby 	} else
189ddeeec14Snorby 		kr->r.nexthop.s_addr = kroute->nexthop.s_addr;
190ddeeec14Snorby 
191ddeeec14Snorby 	return (0);
192ddeeec14Snorby }
193ddeeec14Snorby 
194ddeeec14Snorby int
19558576e66Smichele kr_change(struct kroute *kroute)
19658576e66Smichele {
19758576e66Smichele 	struct kroute_node	*kr;
19858576e66Smichele 	int			 action = RTM_ADD;
19958576e66Smichele 
20058576e66Smichele 	kr = kroute_find(kroute->prefix.s_addr, kroute->netmask.s_addr,
2011acb5c27Sremi 	    kr_state.fib_prio);
20258576e66Smichele 	if (kr != NULL)
20358576e66Smichele 		action = RTM_CHANGE;
20458576e66Smichele 
20558576e66Smichele 	return (kr_change_fib(kr, kroute, action));
20658576e66Smichele }
20758576e66Smichele 
20858576e66Smichele int
209ddeeec14Snorby kr_delete(struct kroute *kroute)
210ddeeec14Snorby {
211ddeeec14Snorby 	struct kroute_node	*kr;
212ddeeec14Snorby 
21358576e66Smichele 	kr = kroute_find(kroute->prefix.s_addr, kroute->netmask.s_addr,
2141acb5c27Sremi 	    kr_state.fib_prio);
21558576e66Smichele 	if (kr == NULL)
216ddeeec14Snorby 		return (0);
217ddeeec14Snorby 
2181acb5c27Sremi 	if (kr->r.priority != kr_state.fib_prio)
21958576e66Smichele 		log_warn("kr_delete_fib: %s/%d has wrong priority %d",
22058576e66Smichele 		    inet_ntoa(kr->r.prefix), mask2prefixlen(kr->r.netmask.s_addr),
22158576e66Smichele 		    kr->r.priority);
222ddeeec14Snorby 
223ddeeec14Snorby 	if (send_rtmsg(kr_state.fd, RTM_DELETE, kroute) == -1)
224ddeeec14Snorby 		return (-1);
225ddeeec14Snorby 
226ddeeec14Snorby 	if (kroute_remove(kr) == -1)
227ddeeec14Snorby 		return (-1);
228ddeeec14Snorby 
229ddeeec14Snorby 	return (0);
230ddeeec14Snorby }
231ddeeec14Snorby 
232ddeeec14Snorby void
233ddeeec14Snorby kr_shutdown(void)
234ddeeec14Snorby {
235ddeeec14Snorby 	kr_fib_decouple();
236b505309eSclaudio 
237ddeeec14Snorby 	kroute_clear();
238ddeeec14Snorby 	kif_clear();
239ddeeec14Snorby }
240ddeeec14Snorby 
241ddeeec14Snorby void
242ddeeec14Snorby kr_fib_couple(void)
243ddeeec14Snorby {
244ddeeec14Snorby 	struct kroute_node	*kr;
245ddeeec14Snorby 
246ddeeec14Snorby 	if (kr_state.fib_sync == 1)	/* already coupled */
247ddeeec14Snorby 		return;
248ddeeec14Snorby 
249ddeeec14Snorby 	kr_state.fib_sync = 1;
250ddeeec14Snorby 
251ddeeec14Snorby 	RB_FOREACH(kr, kroute_tree, &krt)
2521acb5c27Sremi 		if (kr->r.priority == kr_state.fib_prio)
253ddeeec14Snorby 			send_rtmsg(kr_state.fd, RTM_ADD, &kr->r);
254ddeeec14Snorby 
255ddeeec14Snorby 	log_info("kernel routing table coupled");
256ddeeec14Snorby }
257ddeeec14Snorby 
258ddeeec14Snorby void
259ddeeec14Snorby kr_fib_decouple(void)
260ddeeec14Snorby {
261ddeeec14Snorby 	struct kroute_node	*kr;
262ddeeec14Snorby 
263ddeeec14Snorby 	if (kr_state.fib_sync == 0)	/* already decoupled */
264ddeeec14Snorby 		return;
265ddeeec14Snorby 
266ddeeec14Snorby 	RB_FOREACH(kr, kroute_tree, &krt)
2671acb5c27Sremi 		if (kr->r.priority == kr_state.fib_prio)
268ddeeec14Snorby 			send_rtmsg(kr_state.fd, RTM_DELETE, &kr->r);
269ddeeec14Snorby 
270ddeeec14Snorby 	kr_state.fib_sync = 0;
271ddeeec14Snorby 
272ddeeec14Snorby 	log_info("kernel routing table decoupled");
273ddeeec14Snorby }
274ddeeec14Snorby 
275ddeeec14Snorby void
276ddeeec14Snorby kr_dispatch_msg(int fd, short event, void *bula)
277ddeeec14Snorby {
278ddeeec14Snorby 	dispatch_rtmsg();
279ddeeec14Snorby }
280ddeeec14Snorby 
281ddeeec14Snorby void
282ddeeec14Snorby kr_show_route(struct imsg *imsg)
283ddeeec14Snorby {
284ddeeec14Snorby 	struct kroute_node	*kr;
285ddeeec14Snorby 	int			 flags;
286ddeeec14Snorby 	struct in_addr		 addr;
287ddeeec14Snorby 
288ddeeec14Snorby 	switch (imsg->hdr.type) {
289ddeeec14Snorby 	case IMSG_CTL_KROUTE:
290ddeeec14Snorby 		if (imsg->hdr.len != IMSG_HEADER_SIZE + sizeof(flags)) {
291ddeeec14Snorby 			log_warnx("kr_show_route: wrong imsg len");
292ddeeec14Snorby 			return;
293ddeeec14Snorby 		}
294ddeeec14Snorby 		memcpy(&flags, imsg->data, sizeof(flags));
295ddeeec14Snorby 		RB_FOREACH(kr, kroute_tree, &krt)
296ddeeec14Snorby 			if (!flags || kr->r.flags & flags) {
297ddeeec14Snorby 				main_imsg_compose_ripe(IMSG_CTL_KROUTE,
298ddeeec14Snorby 				    imsg->hdr.pid, &kr->r, sizeof(kr->r));
299ddeeec14Snorby 			}
300ddeeec14Snorby 		break;
301ddeeec14Snorby 	case IMSG_CTL_KROUTE_ADDR:
302ddeeec14Snorby 		if (imsg->hdr.len != IMSG_HEADER_SIZE +
303ddeeec14Snorby 		    sizeof(struct in_addr)) {
304ddeeec14Snorby 			log_warnx("kr_show_route: wrong imsg len");
305ddeeec14Snorby 			return;
306ddeeec14Snorby 		}
307ddeeec14Snorby 		memcpy(&addr, imsg->data, sizeof(addr));
308ddeeec14Snorby 		kr = NULL;
309ddeeec14Snorby 		kr = kroute_match(addr.s_addr);
310ddeeec14Snorby 		if (kr != NULL)
311ddeeec14Snorby 			main_imsg_compose_ripe(IMSG_CTL_KROUTE, imsg->hdr.pid,
312ddeeec14Snorby 			    &kr->r, sizeof(kr->r));
313ddeeec14Snorby 		break;
314ddeeec14Snorby 	default:
315ddeeec14Snorby 		log_debug("kr_show_route: error handling imsg");
316ddeeec14Snorby 		break;
317ddeeec14Snorby 	}
318ddeeec14Snorby 
319ddeeec14Snorby 	main_imsg_compose_ripe(IMSG_CTL_END, imsg->hdr.pid, NULL, 0);
320ddeeec14Snorby }
321ddeeec14Snorby 
322ddeeec14Snorby void
323ddeeec14Snorby kr_ifinfo(char *ifname, pid_t pid)
324ddeeec14Snorby {
325ddeeec14Snorby 	struct kif_node	*kif;
326ddeeec14Snorby 
327ddeeec14Snorby 	RB_FOREACH(kif, kif_tree, &kit)
328ddeeec14Snorby 		if (ifname == NULL || !strcmp(ifname, kif->k.ifname)) {
329ddeeec14Snorby 			main_imsg_compose_ripe(IMSG_CTL_IFINFO,
330ddeeec14Snorby 			    pid, &kif->k, sizeof(kif->k));
331ddeeec14Snorby 		}
332ddeeec14Snorby 
333ddeeec14Snorby 	main_imsg_compose_ripe(IMSG_CTL_END, pid, NULL, 0);
334ddeeec14Snorby }
335ddeeec14Snorby 
336ddeeec14Snorby void
337ddeeec14Snorby kr_redistribute(int type, struct kroute *kr)
338ddeeec14Snorby {
339ddeeec14Snorby 	u_int32_t	a;
340ddeeec14Snorby 
341ddeeec14Snorby 
342ddeeec14Snorby 	if (type == IMSG_NETWORK_DEL) {
343ddeeec14Snorby dont_redistribute:
344ddeeec14Snorby 		/* was the route redistributed? */
345ddeeec14Snorby 		if (kr->flags & F_REDISTRIBUTED) {
346ddeeec14Snorby 			/* remove redistributed flag */
347ddeeec14Snorby 			kr->flags &= ~F_REDISTRIBUTED;
348ddeeec14Snorby 			main_imsg_compose_rde(type, 0, kr,
349ddeeec14Snorby 			    sizeof(struct kroute));
350ddeeec14Snorby 		}
351ddeeec14Snorby 		return;
352ddeeec14Snorby 	}
353ddeeec14Snorby 
354ddeeec14Snorby 	/* interface is not up and running so don't announce */
355ddeeec14Snorby 	if (kr->flags & F_DOWN)
356ddeeec14Snorby 		return;
357ddeeec14Snorby 
358ddeeec14Snorby 	/*
359ef8f8f93Sclaudio 	 * We consider the loopback net and multicast addresses
360ddeeec14Snorby 	 * as not redistributable.
361ddeeec14Snorby 	 */
362ddeeec14Snorby 	a = ntohl(kr->prefix.s_addr);
363ef8f8f93Sclaudio 	if (IN_MULTICAST(a) || (a >> IN_CLASSA_NSHIFT) == IN_LOOPBACKNET)
364ddeeec14Snorby 		return;
365ddeeec14Snorby 	/*
366139676eaSclaudio 	 * Consider networks with nexthop loopback as not redistributable
367139676eaSclaudio 	 * unless it is a reject or blackhole route.
368ddeeec14Snorby 	 */
369139676eaSclaudio 	if (kr->nexthop.s_addr == htonl(INADDR_LOOPBACK) &&
370139676eaSclaudio 	    !(kr->flags & (F_BLACKHOLE|F_REJECT)))
371ddeeec14Snorby 		return;
372ddeeec14Snorby 
373b8bbf4e7Sdavid 	/* Should we redistribute this route? */
374ddeeec14Snorby 	if (!rip_redistribute(kr))
375ddeeec14Snorby 		goto dont_redistribute;
376ddeeec14Snorby 
377ddeeec14Snorby 	/* Does not matter if we resend the kr, the RDE will cope. */
378ddeeec14Snorby 	kr->flags |= F_REDISTRIBUTED;
379ddeeec14Snorby 	main_imsg_compose_rde(type, 0, kr, sizeof(struct kroute));
380ddeeec14Snorby }
381ddeeec14Snorby 
382ddeeec14Snorby /* rb-tree compare */
383ddeeec14Snorby int
384ddeeec14Snorby kroute_compare(struct kroute_node *a, struct kroute_node *b)
385ddeeec14Snorby {
386ddeeec14Snorby 	if (ntohl(a->r.prefix.s_addr) < ntohl(b->r.prefix.s_addr))
387ddeeec14Snorby 		return (-1);
388ddeeec14Snorby 	if (ntohl(a->r.prefix.s_addr) > ntohl(b->r.prefix.s_addr))
389ddeeec14Snorby 		return (1);
390ddeeec14Snorby 	if (ntohl(a->r.netmask.s_addr) < ntohl(b->r.netmask.s_addr))
391ddeeec14Snorby 		return (-1);
392ddeeec14Snorby 	if (ntohl(a->r.netmask.s_addr) > ntohl(b->r.netmask.s_addr))
393ddeeec14Snorby 		return (1);
39458576e66Smichele 
39558576e66Smichele 	/* if the priority is RTP_ANY finish on the first address hit */
39658576e66Smichele 	if (a->r.priority == RTP_ANY || b->r.priority == RTP_ANY)
39758576e66Smichele 		return (0);
39858576e66Smichele 	if (a->r.priority < b->r.priority)
39958576e66Smichele 		return (-1);
40058576e66Smichele 	if (a->r.priority > b->r.priority)
40158576e66Smichele 		return (1);
40258576e66Smichele 
403ddeeec14Snorby 	return (0);
404ddeeec14Snorby }
405ddeeec14Snorby 
406ddeeec14Snorby int
407ddeeec14Snorby kif_compare(struct kif_node *a, struct kif_node *b)
408ddeeec14Snorby {
409ddeeec14Snorby 	return (b->k.ifindex - a->k.ifindex);
410ddeeec14Snorby }
411ddeeec14Snorby 
412ddeeec14Snorby /* tree management */
413ddeeec14Snorby struct kroute_node *
41458576e66Smichele kroute_find(in_addr_t prefix, in_addr_t netmask, u_int8_t prio)
415ddeeec14Snorby {
41658576e66Smichele 	struct kroute_node	s, *kn, *tmp;
417ddeeec14Snorby 
418ddeeec14Snorby 	s.r.prefix.s_addr = prefix;
419ddeeec14Snorby 	s.r.netmask.s_addr = netmask;
42058576e66Smichele 	s.r.priority = prio;
421ddeeec14Snorby 
42258576e66Smichele 	kn = RB_FIND(kroute_tree, &krt, &s);
42358576e66Smichele 	if (kn && prio == RTP_ANY) {
42458576e66Smichele 		tmp = RB_PREV(kroute_tree, &krt, kn);
42558576e66Smichele 		while (tmp) {
42658576e66Smichele 			if (kroute_compare(&s, tmp) == 0)
42758576e66Smichele 				kn = tmp;
42858576e66Smichele 			else
42958576e66Smichele 				break;
43058576e66Smichele 			tmp = RB_PREV(kroute_tree, &krt, kn);
43158576e66Smichele 		}
43258576e66Smichele 	}
43358576e66Smichele 
43458576e66Smichele 	return (kn);
435ddeeec14Snorby }
436ddeeec14Snorby 
437ddeeec14Snorby int
438ddeeec14Snorby kroute_insert(struct kroute_node *kr)
439ddeeec14Snorby {
440ddeeec14Snorby 	if (RB_INSERT(kroute_tree, &krt, kr) != NULL) {
441ddeeec14Snorby 		log_warnx("kroute_insert failed for %s/%u",
442ddeeec14Snorby 		    inet_ntoa(kr->r.prefix),
443ddeeec14Snorby 		    mask2prefixlen(kr->r.netmask.s_addr));
444ddeeec14Snorby 		free(kr);
445ddeeec14Snorby 		return (-1);
446ddeeec14Snorby 	}
447ddeeec14Snorby 
448ddeeec14Snorby 	if (!(kr->r.flags & F_KERNEL)) {
449ddeeec14Snorby 		/* don't validate or redistribute rip route */
450ddeeec14Snorby 		kr->r.flags &= ~F_DOWN;
451ddeeec14Snorby 		return (0);
452ddeeec14Snorby 	}
453ddeeec14Snorby 
454ddeeec14Snorby 	if (kif_validate(kr->r.ifindex))
455ddeeec14Snorby 		kr->r.flags &= ~F_DOWN;
456ddeeec14Snorby 	else
457ddeeec14Snorby 		kr->r.flags |= F_DOWN;
458ddeeec14Snorby 
459ddeeec14Snorby 	kr_redistribute(IMSG_NETWORK_ADD, &kr->r);
460ddeeec14Snorby 
461ddeeec14Snorby 	return (0);
462ddeeec14Snorby }
463ddeeec14Snorby 
464ddeeec14Snorby int
465ddeeec14Snorby kroute_remove(struct kroute_node *kr)
466ddeeec14Snorby {
467ddeeec14Snorby 	if (RB_REMOVE(kroute_tree, &krt, kr) == NULL) {
468ddeeec14Snorby 		log_warnx("kroute_remove failed for %s/%u",
469ddeeec14Snorby 		    inet_ntoa(kr->r.prefix),
470ddeeec14Snorby 		    mask2prefixlen(kr->r.netmask.s_addr));
471ddeeec14Snorby 		return (-1);
472ddeeec14Snorby 	}
473ddeeec14Snorby 
474ddeeec14Snorby 	kr_redistribute(IMSG_NETWORK_DEL, &kr->r);
475a1cc2eacSclaudio 	rtlabel_unref(kr->r.rtlabel);
476ddeeec14Snorby 
477ddeeec14Snorby 	free(kr);
478ddeeec14Snorby 	return (0);
479ddeeec14Snorby }
480ddeeec14Snorby 
481ddeeec14Snorby void
482ddeeec14Snorby kroute_clear(void)
483ddeeec14Snorby {
484ddeeec14Snorby 	struct kroute_node	*kr;
485ddeeec14Snorby 
486ddeeec14Snorby 	while ((kr = RB_MIN(kroute_tree, &krt)) != NULL)
487ddeeec14Snorby 		kroute_remove(kr);
488ddeeec14Snorby }
489ddeeec14Snorby 
490ddeeec14Snorby struct kif_node *
491ddeeec14Snorby kif_find(int ifindex)
492ddeeec14Snorby {
493ddeeec14Snorby 	struct kif_node	s;
494ddeeec14Snorby 
495ddeeec14Snorby 	bzero(&s, sizeof(s));
496ddeeec14Snorby 	s.k.ifindex = ifindex;
497ddeeec14Snorby 
498ddeeec14Snorby 	return (RB_FIND(kif_tree, &kit, &s));
499ddeeec14Snorby }
500ddeeec14Snorby 
501ddeeec14Snorby struct kif *
502ddeeec14Snorby kif_findname(char *ifname)
503ddeeec14Snorby {
504ddeeec14Snorby 	struct kif_node	*kif;
505ddeeec14Snorby 
506ddeeec14Snorby 	RB_FOREACH(kif, kif_tree, &kit)
507ddeeec14Snorby 		if (!strcmp(ifname, kif->k.ifname))
508ddeeec14Snorby 			return (&kif->k);
509ddeeec14Snorby 
510ddeeec14Snorby 	return (NULL);
511ddeeec14Snorby }
512ddeeec14Snorby 
513ddeeec14Snorby int
514ddeeec14Snorby kif_insert(struct kif_node *kif)
515ddeeec14Snorby {
516ddeeec14Snorby 	if (RB_INSERT(kif_tree, &kit, kif) != NULL) {
517ddeeec14Snorby 		log_warnx("RB_INSERT(kif_tree, &kit, kif)");
518ddeeec14Snorby 		free(kif);
519ddeeec14Snorby 		return (-1);
520ddeeec14Snorby 	}
521ddeeec14Snorby 
522ddeeec14Snorby 	return (0);
523ddeeec14Snorby }
524ddeeec14Snorby 
525ddeeec14Snorby int
526ddeeec14Snorby kif_remove(struct kif_node *kif)
527ddeeec14Snorby {
528ddeeec14Snorby 	if (RB_REMOVE(kif_tree, &kit, kif) == NULL) {
529ddeeec14Snorby 		log_warnx("RB_REMOVE(kif_tree, &kit, kif)");
530ddeeec14Snorby 		return (-1);
531ddeeec14Snorby 	}
532ddeeec14Snorby 
533ddeeec14Snorby 	free(kif);
534ddeeec14Snorby 	return (0);
535ddeeec14Snorby }
536ddeeec14Snorby 
537ddeeec14Snorby void
538ddeeec14Snorby kif_clear(void)
539ddeeec14Snorby {
540ddeeec14Snorby 	struct kif_node	*kif;
541ddeeec14Snorby 
542ddeeec14Snorby 	while ((kif = RB_MIN(kif_tree, &kit)) != NULL)
543ddeeec14Snorby 		kif_remove(kif);
544ddeeec14Snorby }
545ddeeec14Snorby 
546ddeeec14Snorby int
547ddeeec14Snorby kif_validate(int ifindex)
548ddeeec14Snorby {
549ddeeec14Snorby 	struct kif_node		*kif;
550ddeeec14Snorby 
551ddeeec14Snorby 	if ((kif = kif_find(ifindex)) == NULL) {
552ddeeec14Snorby 		log_warnx("interface with index %u not found", ifindex);
553ddeeec14Snorby 		return (1);
554ddeeec14Snorby 	}
555ddeeec14Snorby 
556ddeeec14Snorby 	return (kif->k.nh_reachable);
557ddeeec14Snorby }
558ddeeec14Snorby 
559ddeeec14Snorby struct kroute_node *
560ddeeec14Snorby kroute_match(in_addr_t key)
561ddeeec14Snorby {
562e8dfa7d7Sclaudio 	u_int8_t		 i;
563ddeeec14Snorby 	struct kroute_node	*kr;
564ddeeec14Snorby 
565ddeeec14Snorby 	/* we will never match the default route */
566ddeeec14Snorby 	for (i = 32; i > 0; i--)
567ddeeec14Snorby 		if ((kr = kroute_find(key & prefixlen2mask(i),
56858576e66Smichele 		    prefixlen2mask(i), RTP_ANY)) != NULL)
569ddeeec14Snorby 			return (kr);
570ddeeec14Snorby 
571ddeeec14Snorby 	/* if we don't have a match yet, try to find a default route */
57258576e66Smichele 	if ((kr = kroute_find(0, 0, RTP_ANY)) != NULL)
573ddeeec14Snorby 			return (kr);
574ddeeec14Snorby 
575ddeeec14Snorby 	return (NULL);
576ddeeec14Snorby }
577ddeeec14Snorby 
578ddeeec14Snorby /* misc */
579ddeeec14Snorby int
580ddeeec14Snorby protect_lo(void)
581ddeeec14Snorby {
582ddeeec14Snorby 	struct kroute_node	*kr;
583ddeeec14Snorby 
584ddeeec14Snorby 	/* special protection for 127/8 */
585ddeeec14Snorby 	if ((kr = calloc(1, sizeof(struct kroute_node))) == NULL) {
586ddeeec14Snorby 		log_warn("protect_lo");
587ddeeec14Snorby 		return (-1);
588ddeeec14Snorby 	}
589ddeeec14Snorby 	kr->r.prefix.s_addr = htonl(INADDR_LOOPBACK);
590ddeeec14Snorby 	kr->r.netmask.s_addr = htonl(IN_CLASSA_NET);
591ddeeec14Snorby 	kr->r.flags = F_KERNEL|F_CONNECTED;
592ddeeec14Snorby 
593ddeeec14Snorby 	if (RB_INSERT(kroute_tree, &krt, kr) != NULL)
594ddeeec14Snorby 		free(kr);	/* kernel route already there, no problem */
595ddeeec14Snorby 
596ddeeec14Snorby 	return (0);
597ddeeec14Snorby }
598ddeeec14Snorby 
599ddeeec14Snorby u_int8_t
600ddeeec14Snorby prefixlen_classful(in_addr_t ina)
601ddeeec14Snorby {
602ddeeec14Snorby 	/* it hurt to write this. */
603ddeeec14Snorby 
604ddeeec14Snorby 	if (ina >= 0xf0000000U)		/* class E */
605ddeeec14Snorby 		return (32);
606ddeeec14Snorby 	else if (ina >= 0xe0000000U)	/* class D */
607ddeeec14Snorby 		return (4);
608ddeeec14Snorby 	else if (ina >= 0xc0000000U)	/* class C */
609ddeeec14Snorby 		return (24);
610ddeeec14Snorby 	else if (ina >= 0x80000000U)	/* class B */
611ddeeec14Snorby 		return (16);
612ddeeec14Snorby 	else				/* class A */
613ddeeec14Snorby 		return (8);
614ddeeec14Snorby }
615ddeeec14Snorby 
616ddeeec14Snorby u_int8_t
617ddeeec14Snorby mask2prefixlen(in_addr_t ina)
618ddeeec14Snorby {
619ddeeec14Snorby 	if (ina == 0)
620ddeeec14Snorby 		return (0);
621ddeeec14Snorby 	else
622ddeeec14Snorby 		return (33 - ffs(ntohl(ina)));
623ddeeec14Snorby }
624ddeeec14Snorby 
625ddeeec14Snorby in_addr_t
626ddeeec14Snorby prefixlen2mask(u_int8_t prefixlen)
627ddeeec14Snorby {
628ddeeec14Snorby 	if (prefixlen == 0)
629ddeeec14Snorby 		return (0);
630ddeeec14Snorby 
631ddeeec14Snorby 	return (htonl(0xffffffff << (32 - prefixlen)));
632ddeeec14Snorby }
633ddeeec14Snorby 
634064707deSfriehm #define ROUNDUP(a) \
635064707deSfriehm 	((a) > 0 ? (1 + (((a) - 1) | (sizeof(long) - 1))) : sizeof(long))
636ddeeec14Snorby 
637ddeeec14Snorby void
638ddeeec14Snorby get_rtaddrs(int addrs, struct sockaddr *sa, struct sockaddr **rti_info)
639ddeeec14Snorby {
640ddeeec14Snorby 	int	i;
641ddeeec14Snorby 
642ddeeec14Snorby 	for (i = 0; i < RTAX_MAX; i++) {
643ddeeec14Snorby 		if (addrs & (1 << i)) {
644ddeeec14Snorby 			rti_info[i] = sa;
645ddeeec14Snorby 			sa = (struct sockaddr *)((char *)(sa) +
646064707deSfriehm 			    ROUNDUP(sa->sa_len));
647ddeeec14Snorby 		} else
648ddeeec14Snorby 			rti_info[i] = NULL;
649ddeeec14Snorby 	}
650ddeeec14Snorby }
651ddeeec14Snorby 
652ddeeec14Snorby void
653ddeeec14Snorby if_change(u_short ifindex, int flags, struct if_data *ifd)
654ddeeec14Snorby {
655ddeeec14Snorby 	struct kif_node		*kif;
656ddeeec14Snorby 	struct kroute_node	*kr;
657ddeeec14Snorby 	int			 type;
658ddeeec14Snorby 	u_int8_t		 reachable;
659ddeeec14Snorby 
660ddeeec14Snorby 	if ((kif = kif_find(ifindex)) == NULL) {
661ddeeec14Snorby 		log_warnx("interface with index %u not found", ifindex);
662ddeeec14Snorby 		return;
663ddeeec14Snorby 	}
664ddeeec14Snorby 
665ddeeec14Snorby 	kif->k.flags = flags;
666ddeeec14Snorby 	kif->k.link_state = ifd->ifi_link_state;
66716530d00Sstsp 	kif->k.if_type = ifd->ifi_type;
668ddeeec14Snorby 	kif->k.baudrate = ifd->ifi_baudrate;
669ddeeec14Snorby 
670ddeeec14Snorby 	if ((reachable = (flags & IFF_UP) &&
6719a2e0324Sclaudio 	    LINK_STATE_IS_UP(ifd->ifi_link_state)) == kif->k.nh_reachable)
672ddeeec14Snorby 		return;		/* nothing changed wrt nexthop validity */
673ddeeec14Snorby 
674ddeeec14Snorby 	kif->k.nh_reachable = reachable;
675ddeeec14Snorby 	type = reachable ? IMSG_NETWORK_ADD : IMSG_NETWORK_DEL;
676ddeeec14Snorby 
677ddeeec14Snorby 	/* notify ripe about interface link state */
678ddeeec14Snorby 	main_imsg_compose_ripe(IMSG_IFINFO, 0, &kif->k, sizeof(kif->k));
679ddeeec14Snorby 
680ddeeec14Snorby 	/* update redistribute list */
681ddeeec14Snorby 	RB_FOREACH(kr, kroute_tree, &krt)
682ddeeec14Snorby 		if (kr->r.ifindex == ifindex) {
683ddeeec14Snorby 			if (reachable)
684ddeeec14Snorby 				kr->r.flags &= ~F_DOWN;
685ddeeec14Snorby 			else
686ddeeec14Snorby 				kr->r.flags |= F_DOWN;
687ddeeec14Snorby 
688ddeeec14Snorby 			kr_redistribute(type, &kr->r);
689ddeeec14Snorby 		}
690ddeeec14Snorby }
691ddeeec14Snorby 
692ddeeec14Snorby void
693ddeeec14Snorby if_announce(void *msg)
694ddeeec14Snorby {
695ddeeec14Snorby 	struct if_announcemsghdr	*ifan;
696ddeeec14Snorby 	struct kif_node			*kif;
697ddeeec14Snorby 
698ddeeec14Snorby 	ifan = msg;
699ddeeec14Snorby 
700ddeeec14Snorby 	switch (ifan->ifan_what) {
701ddeeec14Snorby 	case IFAN_ARRIVAL:
702ddeeec14Snorby 		if ((kif = calloc(1, sizeof(struct kif_node))) == NULL) {
703ddeeec14Snorby 			log_warn("if_announce");
704ddeeec14Snorby 			return;
705ddeeec14Snorby 		}
706ddeeec14Snorby 
707ddeeec14Snorby 		kif->k.ifindex = ifan->ifan_index;
708ddeeec14Snorby 		strlcpy(kif->k.ifname, ifan->ifan_name, sizeof(kif->k.ifname));
709ddeeec14Snorby 		kif_insert(kif);
710ddeeec14Snorby 		break;
711ddeeec14Snorby 	case IFAN_DEPARTURE:
712ddeeec14Snorby 		kif = kif_find(ifan->ifan_index);
713*018a085aSanton 		if (kif != NULL)
714ddeeec14Snorby 			kif_remove(kif);
715ddeeec14Snorby 		break;
716ddeeec14Snorby 	}
717ddeeec14Snorby }
718ddeeec14Snorby 
719ddeeec14Snorby /* rtsock */
720ddeeec14Snorby int
721ddeeec14Snorby send_rtmsg(int fd, int action, struct kroute *kroute)
722ddeeec14Snorby {
7231119e335Sclaudio 	struct iovec		iov[4];
724ddeeec14Snorby 	struct rt_msghdr	hdr;
725ddeeec14Snorby 	struct sockaddr_in	prefix;
726ddeeec14Snorby 	struct sockaddr_in	nexthop;
727ddeeec14Snorby 	struct sockaddr_in	mask;
7281119e335Sclaudio 	int			iovcnt = 0;
729ddeeec14Snorby 
730ddeeec14Snorby 	if (kr_state.fib_sync == 0)
731ddeeec14Snorby 		return (0);
732ddeeec14Snorby 
7331119e335Sclaudio 	/* initialize header */
7341119e335Sclaudio 	bzero(&hdr, sizeof(hdr));
7351119e335Sclaudio 	hdr.rtm_version = RTM_VERSION;
7361119e335Sclaudio 	hdr.rtm_type = action;
7371acb5c27Sremi 	hdr.rtm_priority = kr_state.fib_prio;
7380ab89b34Smichele 	hdr.rtm_tableid = kr_state.rdomain;
73958576e66Smichele 	if (action == RTM_CHANGE)
74058576e66Smichele 		hdr.rtm_fmask = RTF_REJECT|RTF_BLACKHOLE;
7411119e335Sclaudio 	hdr.rtm_seq = kr_state.rtseq++;	/* overflow doesn't matter */
7421119e335Sclaudio 	hdr.rtm_msglen = sizeof(hdr);
7431119e335Sclaudio 	/* adjust iovec */
7441119e335Sclaudio 	iov[iovcnt].iov_base = &hdr;
7451119e335Sclaudio 	iov[iovcnt++].iov_len = sizeof(hdr);
746ddeeec14Snorby 
7471119e335Sclaudio 	bzero(&prefix, sizeof(prefix));
7481119e335Sclaudio 	prefix.sin_len = sizeof(prefix);
7491119e335Sclaudio 	prefix.sin_family = AF_INET;
7501119e335Sclaudio 	prefix.sin_addr.s_addr = kroute->prefix.s_addr;
7511119e335Sclaudio 	/* adjust header */
7521119e335Sclaudio 	hdr.rtm_addrs |= RTA_DST;
7531119e335Sclaudio 	hdr.rtm_msglen += sizeof(prefix);
7541119e335Sclaudio 	/* adjust iovec */
7551119e335Sclaudio 	iov[iovcnt].iov_base = &prefix;
7561119e335Sclaudio 	iov[iovcnt++].iov_len = sizeof(prefix);
757ddeeec14Snorby 
7581119e335Sclaudio 	if (kroute->nexthop.s_addr != 0) {
7591119e335Sclaudio 		bzero(&nexthop, sizeof(nexthop));
7601119e335Sclaudio 		nexthop.sin_len = sizeof(nexthop);
7611119e335Sclaudio 		nexthop.sin_family = AF_INET;
7621119e335Sclaudio 		nexthop.sin_addr.s_addr = kroute->nexthop.s_addr;
7631119e335Sclaudio 		/* adjust header */
7641119e335Sclaudio 		hdr.rtm_flags |= RTF_GATEWAY;
7651119e335Sclaudio 		hdr.rtm_addrs |= RTA_GATEWAY;
7661119e335Sclaudio 		hdr.rtm_msglen += sizeof(nexthop);
7671119e335Sclaudio 		/* adjust iovec */
7681119e335Sclaudio 		iov[iovcnt].iov_base = &nexthop;
7691119e335Sclaudio 		iov[iovcnt++].iov_len = sizeof(nexthop);
7701119e335Sclaudio 	}
7711119e335Sclaudio 
7721119e335Sclaudio 	bzero(&mask, sizeof(mask));
7731119e335Sclaudio 	mask.sin_len = sizeof(mask);
7741119e335Sclaudio 	mask.sin_family = AF_INET;
7751119e335Sclaudio 	mask.sin_addr.s_addr = kroute->netmask.s_addr;
7761119e335Sclaudio 	/* adjust header */
7771119e335Sclaudio 	hdr.rtm_addrs |= RTA_NETMASK;
7781119e335Sclaudio 	hdr.rtm_msglen += sizeof(mask);
7791119e335Sclaudio 	/* adjust iovec */
7801119e335Sclaudio 	iov[iovcnt].iov_base = &mask;
7811119e335Sclaudio 	iov[iovcnt++].iov_len = sizeof(mask);
7821119e335Sclaudio 
783ddeeec14Snorby 
784ddeeec14Snorby retry:
7851119e335Sclaudio 	if (writev(fd, iov, iovcnt) == -1) {
7864324a051Sbluhm 		if (errno == ESRCH) {
7871119e335Sclaudio 			if (hdr.rtm_type == RTM_CHANGE) {
7881119e335Sclaudio 				hdr.rtm_type = RTM_ADD;
789ddeeec14Snorby 				goto retry;
7901119e335Sclaudio 			} else if (hdr.rtm_type == RTM_DELETE) {
791ddeeec14Snorby 				log_info("route %s/%u vanished before delete",
792ddeeec14Snorby 				    inet_ntoa(kroute->prefix),
793ddeeec14Snorby 				    mask2prefixlen(kroute->netmask.s_addr));
794ddeeec14Snorby 				return (0);
795ddeeec14Snorby 			}
7964324a051Sbluhm 		}
7974324a051Sbluhm 		log_warn("send_rtmsg: action %u, prefix %s/%u",
7981119e335Sclaudio 		    hdr.rtm_type, inet_ntoa(kroute->prefix),
7994324a051Sbluhm 		    mask2prefixlen(kroute->netmask.s_addr));
800ddeeec14Snorby 		return (0);
801ddeeec14Snorby 	}
802ddeeec14Snorby 
803ddeeec14Snorby 	return (0);
804ddeeec14Snorby }
805ddeeec14Snorby 
806ddeeec14Snorby int
807ddeeec14Snorby fetchtable(void)
808ddeeec14Snorby {
809ddeeec14Snorby 	size_t			 len;
81063b828f1Shenning 	int			 mib[7];
811ddeeec14Snorby 	char			*buf, *next, *lim;
812ddeeec14Snorby 	struct rt_msghdr	*rtm;
813ddeeec14Snorby 	struct sockaddr		*sa, *rti_info[RTAX_MAX];
814ddeeec14Snorby 	struct sockaddr_in	*sa_in;
815a1cc2eacSclaudio 	struct sockaddr_rtlabel	*label;
816ddeeec14Snorby 	struct kroute_node	*kr;
817ddeeec14Snorby 	struct iface		*iface = NULL;
818ddeeec14Snorby 
819ddeeec14Snorby 	mib[0] = CTL_NET;
820149dc9fcSguenther 	mib[1] = PF_ROUTE;
821ddeeec14Snorby 	mib[2] = 0;
822ddeeec14Snorby 	mib[3] = AF_INET;
823ddeeec14Snorby 	mib[4] = NET_RT_DUMP;
824ddeeec14Snorby 	mib[5] = 0;
8250ab89b34Smichele 	mib[6] = kr_state.rdomain;	/* rtableid */
826ddeeec14Snorby 
827f5945599Shenning 	if (sysctl(mib, 7, NULL, &len, NULL, 0) == -1) {
828ddeeec14Snorby 		log_warn("sysctl");
829ddeeec14Snorby 		return (-1);
830ddeeec14Snorby 	}
831ddeeec14Snorby 	if ((buf = malloc(len)) == NULL) {
832ddeeec14Snorby 		log_warn("fetchtable");
833ddeeec14Snorby 		return (-1);
834ddeeec14Snorby 	}
835f5945599Shenning 	if (sysctl(mib, 7, buf, &len, NULL, 0) == -1) {
836ddeeec14Snorby 		log_warn("sysctl");
837ddeeec14Snorby 		free(buf);
838ddeeec14Snorby 		return (-1);
839ddeeec14Snorby 	}
840ddeeec14Snorby 
841ddeeec14Snorby 	lim = buf + len;
842ddeeec14Snorby 	for (next = buf; next < lim; next += rtm->rtm_msglen) {
843ddeeec14Snorby 		rtm = (struct rt_msghdr *)next;
844c1b922b7Sclaudio 		if (rtm->rtm_version != RTM_VERSION)
845c1b922b7Sclaudio 			continue;
8467a13f2d5Schris 		sa = (struct sockaddr *)(next + rtm->rtm_hdrlen);
847ddeeec14Snorby 		get_rtaddrs(rtm->rtm_addrs, sa, rti_info);
848ddeeec14Snorby 
849ddeeec14Snorby 		if ((sa = rti_info[RTAX_DST]) == NULL)
850ddeeec14Snorby 			continue;
851ddeeec14Snorby 
8524fb9461cSclaudio 		/* Skip ARP/ND cache and broadcast routes. */
8534fb9461cSclaudio 		if (rtm->rtm_flags & (RTF_LLINFO|RTF_BROADCAST))
854ddeeec14Snorby 			continue;
855ddeeec14Snorby 
856ddeeec14Snorby #ifdef RTF_MPATH
857ddeeec14Snorby 		if (rtm->rtm_flags & RTF_MPATH)		/* multipath */
858ddeeec14Snorby 			continue;
859ddeeec14Snorby #endif
860ddeeec14Snorby 
861ddeeec14Snorby 		if ((kr = calloc(1, sizeof(struct kroute_node))) == NULL) {
862ddeeec14Snorby 			log_warn("fetchtable");
863ddeeec14Snorby 			free(buf);
864ddeeec14Snorby 			return (-1);
865ddeeec14Snorby 		}
866ddeeec14Snorby 
867ddeeec14Snorby 		kr->r.flags = F_KERNEL;
86858576e66Smichele 		kr->r.priority = rtm->rtm_priority;
869ddeeec14Snorby 
870ddeeec14Snorby 		switch (sa->sa_family) {
871ddeeec14Snorby 		case AF_INET:
872ddeeec14Snorby 			kr->r.prefix.s_addr =
873ddeeec14Snorby 			    ((struct sockaddr_in *)sa)->sin_addr.s_addr;
874ddeeec14Snorby 			sa_in = (struct sockaddr_in *)rti_info[RTAX_NETMASK];
875ddeeec14Snorby 			if (rtm->rtm_flags & RTF_STATIC)
876ddeeec14Snorby 				kr->r.flags |= F_STATIC;
877139676eaSclaudio 			if (rtm->rtm_flags & RTF_BLACKHOLE)
878139676eaSclaudio 				kr->r.flags |= F_BLACKHOLE;
879139676eaSclaudio 			if (rtm->rtm_flags & RTF_REJECT)
880139676eaSclaudio 				kr->r.flags |= F_REJECT;
881ddeeec14Snorby 			if (rtm->rtm_flags & RTF_DYNAMIC)
882ddeeec14Snorby 				kr->r.flags |= F_DYNAMIC;
883ddeeec14Snorby 			if (sa_in != NULL) {
884ddeeec14Snorby 				if (sa_in->sin_len == 0)
885ddeeec14Snorby 					break;
886ddeeec14Snorby 				kr->r.netmask.s_addr =
887ddeeec14Snorby 				    sa_in->sin_addr.s_addr;
888ddeeec14Snorby 			} else if (rtm->rtm_flags & RTF_HOST)
889ddeeec14Snorby 				kr->r.netmask.s_addr = prefixlen2mask(32);
890ddeeec14Snorby 			else
891ddeeec14Snorby 				kr->r.netmask.s_addr =
892ddeeec14Snorby 				    prefixlen2mask(prefixlen_classful
893ddeeec14Snorby 					(kr->r.prefix.s_addr));
894ddeeec14Snorby 			break;
895ddeeec14Snorby 		default:
896ddeeec14Snorby 			free(kr);
897ddeeec14Snorby 			continue;
898ddeeec14Snorby 		}
899ddeeec14Snorby 
900ddeeec14Snorby 		kr->r.ifindex = rtm->rtm_index;
901ddeeec14Snorby 
902ddeeec14Snorby 		iface = if_find_index(rtm->rtm_index);
903ddeeec14Snorby 		if (iface != NULL)
904ddeeec14Snorby 			kr->r.metric = iface->cost;
905ddeeec14Snorby 		else
906efb04dc6Smichele 			kr->r.metric = DEFAULT_COST;
907ddeeec14Snorby 
908ddeeec14Snorby 		if ((sa = rti_info[RTAX_GATEWAY]) != NULL)
909ddeeec14Snorby 			switch (sa->sa_family) {
910ddeeec14Snorby 			case AF_INET:
9114fb9461cSclaudio 				if (rtm->rtm_flags & RTF_CONNECTED) {
9124fb9461cSclaudio 					kr->r.flags |= F_CONNECTED;
9134fb9461cSclaudio 					break;
9144fb9461cSclaudio 				}
9154fb9461cSclaudio 
916ddeeec14Snorby 				kr->r.nexthop.s_addr =
917ddeeec14Snorby 				    ((struct sockaddr_in *)sa)->sin_addr.s_addr;
918ddeeec14Snorby 				break;
919ddeeec14Snorby 			case AF_LINK:
9204fb9461cSclaudio 				/*
9214fb9461cSclaudio 				 * Traditional BSD connected routes have
9224fb9461cSclaudio 				 * a gateway of type AF_LINK.
9234fb9461cSclaudio 				 */
924ddeeec14Snorby 				kr->r.flags |= F_CONNECTED;
925ddeeec14Snorby 				break;
926ddeeec14Snorby 			}
927ddeeec14Snorby 
9281acb5c27Sremi 		if (rtm->rtm_priority == kr_state.fib_prio) {
929ddeeec14Snorby 			send_rtmsg(kr_state.fd, RTM_DELETE, &kr->r);
930ddeeec14Snorby 			free(kr);
931a1cc2eacSclaudio 		} else {
932a1cc2eacSclaudio 			if ((label = (struct sockaddr_rtlabel *)
933a1cc2eacSclaudio 			    rti_info[RTAX_LABEL]) != NULL)
934a1cc2eacSclaudio 				kr->r.rtlabel =
935a1cc2eacSclaudio 				    rtlabel_name2id(label->sr_label);
936ddeeec14Snorby 			kroute_insert(kr);
937a1cc2eacSclaudio 		}
938ddeeec14Snorby 
939ddeeec14Snorby 	}
940ddeeec14Snorby 	free(buf);
941ddeeec14Snorby 	return (0);
942ddeeec14Snorby }
943ddeeec14Snorby 
944ddeeec14Snorby int
945ddeeec14Snorby fetchifs(int ifindex)
946ddeeec14Snorby {
947ddeeec14Snorby 	size_t			 len;
948ddeeec14Snorby 	int			 mib[6];
949ddeeec14Snorby 	char			*buf, *next, *lim;
950ddeeec14Snorby 	struct if_msghdr	 ifm;
951ddeeec14Snorby 	struct kif_node		*kif;
952ddeeec14Snorby 	struct sockaddr		*sa, *rti_info[RTAX_MAX];
953ddeeec14Snorby 	struct sockaddr_dl	*sdl;
954ddeeec14Snorby 
955ddeeec14Snorby 	mib[0] = CTL_NET;
956149dc9fcSguenther 	mib[1] = PF_ROUTE;
957ddeeec14Snorby 	mib[2] = 0;
958ddeeec14Snorby 	mib[3] = AF_INET;
959ddeeec14Snorby 	mib[4] = NET_RT_IFLIST;
960ddeeec14Snorby 	mib[5] = ifindex;
961ddeeec14Snorby 
962ddeeec14Snorby 	if (sysctl(mib, 6, NULL, &len, NULL, 0) == -1) {
963ddeeec14Snorby 		log_warn("sysctl");
964ddeeec14Snorby 		return (-1);
965ddeeec14Snorby 	}
966ddeeec14Snorby 	if ((buf = malloc(len)) == NULL) {
967ddeeec14Snorby 		log_warn("fetchif");
968ddeeec14Snorby 		return (-1);
969ddeeec14Snorby 	}
970ddeeec14Snorby 	if (sysctl(mib, 6, buf, &len, NULL, 0) == -1) {
971ddeeec14Snorby 		log_warn("sysctl");
972ddeeec14Snorby 		free(buf);
973ddeeec14Snorby 		return (-1);
974ddeeec14Snorby 	}
975ddeeec14Snorby 
976ddeeec14Snorby 	lim = buf + len;
977ddeeec14Snorby 	for (next = buf; next < lim; next += ifm.ifm_msglen) {
978ddeeec14Snorby 		memcpy(&ifm, next, sizeof(ifm));
979c1b922b7Sclaudio 		if (ifm.ifm_version != RTM_VERSION)
980c1b922b7Sclaudio 			continue;
981ddeeec14Snorby 		if (ifm.ifm_type != RTM_IFINFO)
982ddeeec14Snorby 			continue;
983ddeeec14Snorby 
984ddeeec14Snorby 		sa = (struct sockaddr *)(next + sizeof(ifm));
985ddeeec14Snorby 		get_rtaddrs(ifm.ifm_addrs, sa, rti_info);
986ddeeec14Snorby 
987ddeeec14Snorby 		if ((kif = calloc(1, sizeof(struct kif_node))) == NULL) {
988ddeeec14Snorby 			log_warn("fetchifs");
989ddeeec14Snorby 			free(buf);
990ddeeec14Snorby 			return (-1);
991ddeeec14Snorby 		}
992ddeeec14Snorby 
993ddeeec14Snorby 		kif->k.ifindex = ifm.ifm_index;
994ddeeec14Snorby 		kif->k.flags = ifm.ifm_flags;
995ddeeec14Snorby 		kif->k.link_state = ifm.ifm_data.ifi_link_state;
99616530d00Sstsp 		kif->k.if_type = ifm.ifm_data.ifi_type;
997ddeeec14Snorby 		kif->k.baudrate = ifm.ifm_data.ifi_baudrate;
998ddeeec14Snorby 		kif->k.mtu = ifm.ifm_data.ifi_mtu;
999ddeeec14Snorby 		kif->k.nh_reachable = (kif->k.flags & IFF_UP) &&
10009a2e0324Sclaudio 		    LINK_STATE_IS_UP(ifm.ifm_data.ifi_link_state);
1001ddeeec14Snorby 		if ((sa = rti_info[RTAX_IFP]) != NULL)
1002ddeeec14Snorby 			if (sa->sa_family == AF_LINK) {
1003ddeeec14Snorby 				sdl = (struct sockaddr_dl *)sa;
1004ddeeec14Snorby 				if (sdl->sdl_nlen >= sizeof(kif->k.ifname))
1005ddeeec14Snorby 					memcpy(kif->k.ifname, sdl->sdl_data,
1006ddeeec14Snorby 					    sizeof(kif->k.ifname) - 1);
1007ddeeec14Snorby 				else if (sdl->sdl_nlen > 0)
1008ddeeec14Snorby 					memcpy(kif->k.ifname, sdl->sdl_data,
1009ddeeec14Snorby 					    sdl->sdl_nlen);
1010ddeeec14Snorby 				/* string already terminated via calloc() */
1011ddeeec14Snorby 			}
1012ddeeec14Snorby 
1013ddeeec14Snorby 		kif_insert(kif);
1014ddeeec14Snorby 	}
1015ddeeec14Snorby 	free(buf);
1016ddeeec14Snorby 	return (0);
1017ddeeec14Snorby }
1018ddeeec14Snorby 
1019ddeeec14Snorby int
1020ddeeec14Snorby dispatch_rtmsg(void)
1021ddeeec14Snorby {
1022ddeeec14Snorby 	char			 buf[RT_BUF_SIZE];
1023ddeeec14Snorby 	ssize_t			 n;
1024ddeeec14Snorby 	char			*next, *lim;
1025ddeeec14Snorby 	struct rt_msghdr	*rtm;
1026ddeeec14Snorby 	struct if_msghdr	 ifm;
1027ddeeec14Snorby 	struct sockaddr		*sa, *rti_info[RTAX_MAX];
1028ddeeec14Snorby 	struct sockaddr_in	*sa_in;
1029a1cc2eacSclaudio 	struct sockaddr_rtlabel	*label;
1030ddeeec14Snorby 	struct kroute_node	*kr;
1031ddeeec14Snorby 	struct in_addr		 prefix, nexthop, netmask;
1032efb04dc6Smichele 	struct iface		*iface = NULL;
1033ddeeec14Snorby 	int			 flags;
1034ddeeec14Snorby 	u_short			 ifindex = 0;
103558576e66Smichele 	u_int8_t		 metric, prio;
1036ddeeec14Snorby 
1037ddeeec14Snorby 	if ((n = read(kr_state.fd, &buf, sizeof(buf))) == -1) {
10388dddb481Sclaudio 		if (errno == EAGAIN || errno == EINTR)
10398dddb481Sclaudio 			return (0);
1040ddeeec14Snorby 		log_warn("dispatch_rtmsg: read error");
1041ddeeec14Snorby 		return (-1);
1042ddeeec14Snorby 	}
1043ddeeec14Snorby 
1044ddeeec14Snorby 	if (n == 0) {
1045ddeeec14Snorby 		log_warnx("routing socket closed");
1046ddeeec14Snorby 		return (-1);
1047ddeeec14Snorby 	}
1048ddeeec14Snorby 
1049ddeeec14Snorby 	lim = buf + n;
1050ddeeec14Snorby 	for (next = buf; next < lim; next += rtm->rtm_msglen) {
1051ddeeec14Snorby 		rtm = (struct rt_msghdr *)next;
10521c642900Sclaudio 		if (lim < next + sizeof(u_short) ||
10538dddb481Sclaudio 		    lim < next + rtm->rtm_msglen)
10548dddb481Sclaudio 			fatalx("dispatch_rtmsg: partial rtm in buffer");
1055c1b922b7Sclaudio 		if (rtm->rtm_version != RTM_VERSION)
1056c1b922b7Sclaudio 			continue;
1057ddeeec14Snorby 
1058ddeeec14Snorby 		prefix.s_addr = 0;
1059ddeeec14Snorby 		netmask.s_addr = 0;
1060ddeeec14Snorby 		flags = F_KERNEL;
1061ddeeec14Snorby 		nexthop.s_addr = 0;
106258576e66Smichele 		prio = 0;
1063ddeeec14Snorby 
1064ddeeec14Snorby 		if (rtm->rtm_type == RTM_ADD || rtm->rtm_type == RTM_CHANGE ||
1065ddeeec14Snorby 		    rtm->rtm_type == RTM_DELETE) {
10667a13f2d5Schris 			sa = (struct sockaddr *)(next + rtm->rtm_hdrlen);
1067ddeeec14Snorby 			get_rtaddrs(rtm->rtm_addrs, sa, rti_info);
1068ddeeec14Snorby 
10690ab89b34Smichele 			if (rtm->rtm_tableid != kr_state.rdomain)
107011aed6e8Sclaudio 				continue;
107111aed6e8Sclaudio 
1072ddeeec14Snorby 			if (rtm->rtm_pid == kr_state.pid)	/* cause by us */
1073ddeeec14Snorby 				continue;
1074ddeeec14Snorby 
1075ddeeec14Snorby 			if (rtm->rtm_errno)			/* failed attempts... */
1076ddeeec14Snorby 				continue;
1077ddeeec14Snorby 
10784fb9461cSclaudio 			/* Skip ARP/ND cache and broadcast routes. */
10794fb9461cSclaudio 			if (rtm->rtm_flags & (RTF_LLINFO|RTF_BROADCAST))
1080ddeeec14Snorby 				continue;
1081ddeeec14Snorby 
108258576e66Smichele 			prio = rtm->rtm_priority;
108358576e66Smichele 
1084ddeeec14Snorby 			switch (sa->sa_family) {
1085ddeeec14Snorby 			case AF_INET:
1086ddeeec14Snorby 				prefix.s_addr =
1087ddeeec14Snorby 				    ((struct sockaddr_in *)sa)->sin_addr.s_addr;
1088ddeeec14Snorby 				sa_in = (struct sockaddr_in *)
1089ddeeec14Snorby 				    rti_info[RTAX_NETMASK];
1090ddeeec14Snorby 				if (sa_in != NULL) {
1091ddeeec14Snorby 					if (sa_in->sin_len != 0)
1092ddeeec14Snorby 						netmask.s_addr =
1093ddeeec14Snorby 						    sa_in->sin_addr.s_addr;
1094ddeeec14Snorby 				} else if (rtm->rtm_flags & RTF_HOST)
1095ddeeec14Snorby 					netmask.s_addr = prefixlen2mask(32);
1096ddeeec14Snorby 				else
1097ddeeec14Snorby 					netmask.s_addr =
1098ddeeec14Snorby 					    prefixlen2mask(prefixlen_classful(
1099ddeeec14Snorby 						prefix.s_addr));
1100ddeeec14Snorby 				if (rtm->rtm_flags & RTF_STATIC)
1101ddeeec14Snorby 					flags |= F_STATIC;
1102139676eaSclaudio 				if (rtm->rtm_flags & RTF_BLACKHOLE)
1103139676eaSclaudio 					flags |= F_BLACKHOLE;
1104139676eaSclaudio 				if (rtm->rtm_flags & RTF_REJECT)
1105139676eaSclaudio 					flags |= F_REJECT;
1106ddeeec14Snorby 				if (rtm->rtm_flags & RTF_DYNAMIC)
1107ddeeec14Snorby 					flags |= F_DYNAMIC;
1108ddeeec14Snorby 				break;
1109ddeeec14Snorby 			default:
1110ddeeec14Snorby 				continue;
1111ddeeec14Snorby 			}
1112ddeeec14Snorby 
1113ddeeec14Snorby 			ifindex = rtm->rtm_index;
1114ddeeec14Snorby 			if ((sa = rti_info[RTAX_GATEWAY]) != NULL) {
1115ddeeec14Snorby 				switch (sa->sa_family) {
1116ddeeec14Snorby 				case AF_INET:
1117ddeeec14Snorby 					nexthop.s_addr = ((struct
1118ddeeec14Snorby 					    sockaddr_in *)sa)->sin_addr.s_addr;
1119ddeeec14Snorby 					break;
1120ddeeec14Snorby 				case AF_LINK:
1121ddeeec14Snorby 					flags |= F_CONNECTED;
1122ddeeec14Snorby 					break;
1123ddeeec14Snorby 				}
1124ddeeec14Snorby 			}
1125ddeeec14Snorby 		}
1126ddeeec14Snorby 
1127ddeeec14Snorby 		switch (rtm->rtm_type) {
1128ddeeec14Snorby 		case RTM_ADD:
1129ddeeec14Snorby 		case RTM_CHANGE:
1130ddeeec14Snorby 			if (nexthop.s_addr == 0 && !(flags & F_CONNECTED)) {
1131ddeeec14Snorby 				log_warnx("dispatch_rtmsg no nexthop for %s/%u",
1132ddeeec14Snorby 				    inet_ntoa(prefix),
1133ddeeec14Snorby 				    mask2prefixlen(netmask.s_addr));
1134ddeeec14Snorby 				continue;
1135ddeeec14Snorby 			}
1136ddeeec14Snorby 
113758576e66Smichele 			if ((kr = kroute_find(prefix.s_addr, netmask.s_addr,
113858576e66Smichele 			    prio)) != NULL) {
1139ddeeec14Snorby 				if (kr->r.flags & F_REDISTRIBUTED)
1140ddeeec14Snorby 					flags |= F_REDISTRIBUTED;
1141ddeeec14Snorby 				kr->r.nexthop.s_addr = nexthop.s_addr;
1142ddeeec14Snorby 				kr->r.flags = flags;
1143ddeeec14Snorby 				kr->r.ifindex = ifindex;
114458576e66Smichele 				kr->r.priority = prio;
1145ddeeec14Snorby 
1146a1cc2eacSclaudio 				rtlabel_unref(kr->r.rtlabel);
1147a1cc2eacSclaudio 				kr->r.rtlabel = 0;
1148a1cc2eacSclaudio 				if ((label = (struct sockaddr_rtlabel *)
1149a1cc2eacSclaudio 				    rti_info[RTAX_LABEL]) != NULL)
1150a1cc2eacSclaudio 					kr->r.rtlabel =
1151a1cc2eacSclaudio 					    rtlabel_name2id(label->sr_label);
1152a1cc2eacSclaudio 
1153ddeeec14Snorby 				if (kif_validate(kr->r.ifindex))
1154ddeeec14Snorby 					kr->r.flags &= ~F_DOWN;
1155ddeeec14Snorby 				else
1156ddeeec14Snorby 					kr->r.flags |= F_DOWN;
1157ddeeec14Snorby 
1158ddeeec14Snorby 				/* just readd, the RDE will care */
1159ddeeec14Snorby 				kr_redistribute(IMSG_NETWORK_ADD, &kr->r);
1160ddeeec14Snorby 			} else {
1161ddeeec14Snorby 				if ((kr = calloc(1,
1162ddeeec14Snorby 				    sizeof(struct kroute_node))) == NULL) {
1163ddeeec14Snorby 					log_warn("dispatch_rtmsg");
1164ddeeec14Snorby 					return (-1);
1165ddeeec14Snorby 				}
1166efb04dc6Smichele 
1167efb04dc6Smichele 				iface = if_find_index(rtm->rtm_index);
1168efb04dc6Smichele 				if (iface != NULL)
1169efb04dc6Smichele 					metric = iface->cost;
1170efb04dc6Smichele 				else
1171efb04dc6Smichele 					metric = DEFAULT_COST;
1172efb04dc6Smichele 
1173ddeeec14Snorby 				kr->r.prefix.s_addr = prefix.s_addr;
1174ddeeec14Snorby 				kr->r.netmask.s_addr = netmask.s_addr;
1175ddeeec14Snorby 				kr->r.nexthop.s_addr = nexthop.s_addr;
1176efb04dc6Smichele 				kr->r.metric = metric;
1177ddeeec14Snorby 				kr->r.flags = flags;
1178ddeeec14Snorby 				kr->r.ifindex = ifindex;
1179ddeeec14Snorby 
1180a1cc2eacSclaudio 				if ((label = (struct sockaddr_rtlabel *)
1181a1cc2eacSclaudio 				    rti_info[RTAX_LABEL]) != NULL)
1182a1cc2eacSclaudio 					kr->r.rtlabel =
1183a1cc2eacSclaudio 					    rtlabel_name2id(label->sr_label);
1184a1cc2eacSclaudio 
1185ddeeec14Snorby 				kroute_insert(kr);
1186ddeeec14Snorby 			}
1187ddeeec14Snorby 			break;
1188ddeeec14Snorby 		case RTM_DELETE:
118958576e66Smichele 			if ((kr = kroute_find(prefix.s_addr, netmask.s_addr,
119058576e66Smichele 			    prio)) == NULL)
1191ddeeec14Snorby 				continue;
1192ddeeec14Snorby 			if (!(kr->r.flags & F_KERNEL))
1193ddeeec14Snorby 				continue;
1194ddeeec14Snorby 			if (kroute_remove(kr) == -1)
1195ddeeec14Snorby 				return (-1);
1196ddeeec14Snorby 			break;
1197ddeeec14Snorby 		case RTM_IFINFO:
1198ddeeec14Snorby 			memcpy(&ifm, next, sizeof(ifm));
1199ddeeec14Snorby 			if_change(ifm.ifm_index, ifm.ifm_flags,
1200ddeeec14Snorby 			    &ifm.ifm_data);
1201ddeeec14Snorby 			break;
1202ddeeec14Snorby 		case RTM_IFANNOUNCE:
1203ddeeec14Snorby 			if_announce(next);
1204ddeeec14Snorby 			break;
1205ddeeec14Snorby 		default:
1206ddeeec14Snorby 			/* ignore for now */
1207ddeeec14Snorby 			break;
1208ddeeec14Snorby 		}
1209ddeeec14Snorby 	}
1210ddeeec14Snorby 	return (0);
1211ddeeec14Snorby }
1212