xref: /openbsd-src/usr.sbin/tcpdump/print-enc.c (revision a28daedfc357b214be5c701aa8ba8adb29a7f1c2)
1 /*	$OpenBSD: print-enc.c,v 1.10 2007/10/07 16:41:05 deraadt Exp $	*/
2 
3 /*
4  * Copyright (c) 1990, 1991, 1993, 1994, 1995, 1996
5  *	The Regents of the University of California.  All rights reserved.
6  *
7  * Redistribution and use in source and binary forms, with or without
8  * modification, are permitted provided that: (1) source code distributions
9  * retain the above copyright notice and this paragraph in its entirety, (2)
10  * distributions including binary code include the above copyright notice and
11  * this paragraph in its entirety in the documentation or other materials
12  * provided with the distribution, and (3) all advertising materials mentioning
13  * features or use of this software display the following acknowledgement:
14  * ``This product includes software developed by the University of California,
15  * Lawrence Berkeley Laboratory and its contributors.'' Neither the name of
16  * the University nor the names of its contributors may be used to endorse
17  * or promote products derived from this software without specific prior
18  * written permission.
19  * THIS SOFTWARE IS PROVIDED ``AS IS'' AND WITHOUT ANY EXPRESS OR IMPLIED
20  * WARRANTIES, INCLUDING, WITHOUT LIMITATION, THE IMPLIED WARRANTIES OF
21  * MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE.
22  */
23 
24 #ifndef lint
25 static const char rcsid[] =
26     "@(#) $Id: print-enc.c,v 1.10 2007/10/07 16:41:05 deraadt Exp $ (LBL)";
27 #endif
28 
29 #include <sys/param.h>
30 #include <sys/time.h>
31 #include <sys/socket.h>
32 #include <sys/file.h>
33 #include <sys/ioctl.h>
34 #include <sys/mbuf.h>
35 
36 struct rtentry;
37 #include <net/if.h>
38 #include <netinet/ip_ipsp.h>
39 #include <net/if_enc.h>
40 
41 #include <netinet/in.h>
42 #include <netinet/in_systm.h>
43 #include <netinet/ip.h>
44 
45 #include <ctype.h>
46 #include <netdb.h>
47 #include <pcap.h>
48 #include <signal.h>
49 #include <stdio.h>
50 
51 #include "interface.h"
52 #include "addrtoname.h"
53 
54 #define ENC_PRINT_TYPE(wh, xf, nam) \
55 	if ((wh) & (xf)) { \
56 		printf("%s%s", nam, (wh) == (xf) ? "): " : ","); \
57 		(wh) &= ~(xf); \
58 	}
59 
60 void
61 enc_if_print(u_char *user, const struct pcap_pkthdr *h, const u_char *p)
62 {
63 	u_int length = h->len, caplen = h->caplen;
64 	const struct enchdr *hdr;
65 	int flags;
66 
67 	ts_print(&h->ts);
68 
69 	if (caplen < ENC_HDRLEN) {
70 		printf("[|enc]");
71 		goto out;
72 	}
73 
74 	/*
75 	 * Some printers want to get back at the link level addresses,
76 	 * and/or check that they're not walking off the end of the packet.
77 	 * Rather than pass them all the way down, we set these globals.
78 	 */
79 	packetp = p;
80 	snapend = p + caplen;
81 
82 	hdr = (struct enchdr *)p;
83 	flags = hdr->flags;
84 	if (flags == 0)
85 		printf("(unprotected): ");
86 	else
87 		printf("(");
88 	ENC_PRINT_TYPE(flags, M_AUTH, "authentic");
89 	ENC_PRINT_TYPE(flags, M_CONF, "confidential");
90 	/* ENC_PRINT_TYPE(flags, M_TUNNEL, "tunnel"); */
91 	printf("SPI 0x%08x: ", ntohl(hdr->spi));
92 
93 	length -= ENC_HDRLEN;
94 	p += ENC_HDRLEN;
95 
96 	switch (hdr->af) {
97 	case AF_INET:
98 	default:
99 		ip_print(p, length);
100 		break;
101 	case AF_INET6:
102 		ip6_print(p, length);
103 		break;
104 	}
105 
106 	if (xflag)
107 		default_print(p, caplen - ENC_HDRLEN);
108 out:
109 	putchar('\n');
110 }
111