1b7579f77SDag-Erling Smørgrav /* 2b7579f77SDag-Erling Smørgrav * validator/val_kcache.c - validator key shared cache with validated keys 3b7579f77SDag-Erling Smørgrav * 4b7579f77SDag-Erling Smørgrav * Copyright (c) 2007, NLnet Labs. All rights reserved. 5b7579f77SDag-Erling Smørgrav * 6b7579f77SDag-Erling Smørgrav * This software is open source. 7b7579f77SDag-Erling Smørgrav * 8b7579f77SDag-Erling Smørgrav * Redistribution and use in source and binary forms, with or without 9b7579f77SDag-Erling Smørgrav * modification, are permitted provided that the following conditions 10b7579f77SDag-Erling Smørgrav * are met: 11b7579f77SDag-Erling Smørgrav * 12b7579f77SDag-Erling Smørgrav * Redistributions of source code must retain the above copyright notice, 13b7579f77SDag-Erling Smørgrav * this list of conditions and the following disclaimer. 14b7579f77SDag-Erling Smørgrav * 15b7579f77SDag-Erling Smørgrav * Redistributions in binary form must reproduce the above copyright notice, 16b7579f77SDag-Erling Smørgrav * this list of conditions and the following disclaimer in the documentation 17b7579f77SDag-Erling Smørgrav * and/or other materials provided with the distribution. 18b7579f77SDag-Erling Smørgrav * 19b7579f77SDag-Erling Smørgrav * Neither the name of the NLNET LABS nor the names of its contributors may 20b7579f77SDag-Erling Smørgrav * be used to endorse or promote products derived from this software without 21b7579f77SDag-Erling Smørgrav * specific prior written permission. 22b7579f77SDag-Erling Smørgrav * 23b7579f77SDag-Erling Smørgrav * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS 24*17d15b25SDag-Erling Smørgrav * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT 25*17d15b25SDag-Erling Smørgrav * LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR 26*17d15b25SDag-Erling Smørgrav * A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT 27*17d15b25SDag-Erling Smørgrav * HOLDER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, 28*17d15b25SDag-Erling Smørgrav * SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED 29*17d15b25SDag-Erling Smørgrav * TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR 30*17d15b25SDag-Erling Smørgrav * PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF 31*17d15b25SDag-Erling Smørgrav * LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING 32*17d15b25SDag-Erling Smørgrav * NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS 33*17d15b25SDag-Erling Smørgrav * SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. 34b7579f77SDag-Erling Smørgrav */ 35b7579f77SDag-Erling Smørgrav 36b7579f77SDag-Erling Smørgrav /** 37b7579f77SDag-Erling Smørgrav * \file 38b7579f77SDag-Erling Smørgrav * 39b7579f77SDag-Erling Smørgrav * This file contains functions for dealing with the validator key cache. 40b7579f77SDag-Erling Smørgrav */ 41b7579f77SDag-Erling Smørgrav #include "config.h" 42b7579f77SDag-Erling Smørgrav #include "validator/val_kcache.h" 43b7579f77SDag-Erling Smørgrav #include "validator/val_kentry.h" 44b7579f77SDag-Erling Smørgrav #include "util/log.h" 45b7579f77SDag-Erling Smørgrav #include "util/config_file.h" 46b7579f77SDag-Erling Smørgrav #include "util/data/dname.h" 47b7579f77SDag-Erling Smørgrav #include "util/module.h" 48b7579f77SDag-Erling Smørgrav 49b7579f77SDag-Erling Smørgrav struct key_cache* 50b7579f77SDag-Erling Smørgrav key_cache_create(struct config_file* cfg) 51b7579f77SDag-Erling Smørgrav { 52b7579f77SDag-Erling Smørgrav struct key_cache* kcache = (struct key_cache*)calloc(1, 53b7579f77SDag-Erling Smørgrav sizeof(*kcache)); 54b7579f77SDag-Erling Smørgrav size_t numtables, start_size, maxmem; 55b7579f77SDag-Erling Smørgrav if(!kcache) { 56b7579f77SDag-Erling Smørgrav log_err("malloc failure"); 57b7579f77SDag-Erling Smørgrav return NULL; 58b7579f77SDag-Erling Smørgrav } 59b7579f77SDag-Erling Smørgrav numtables = cfg->key_cache_slabs; 60b7579f77SDag-Erling Smørgrav start_size = HASH_DEFAULT_STARTARRAY; 61b7579f77SDag-Erling Smørgrav maxmem = cfg->key_cache_size; 62b7579f77SDag-Erling Smørgrav kcache->slab = slabhash_create(numtables, start_size, maxmem, 63b7579f77SDag-Erling Smørgrav &key_entry_sizefunc, &key_entry_compfunc, 64b7579f77SDag-Erling Smørgrav &key_entry_delkeyfunc, &key_entry_deldatafunc, NULL); 65b7579f77SDag-Erling Smørgrav if(!kcache->slab) { 66b7579f77SDag-Erling Smørgrav log_err("malloc failure"); 67b7579f77SDag-Erling Smørgrav free(kcache); 68b7579f77SDag-Erling Smørgrav return NULL; 69b7579f77SDag-Erling Smørgrav } 70b7579f77SDag-Erling Smørgrav return kcache; 71b7579f77SDag-Erling Smørgrav } 72b7579f77SDag-Erling Smørgrav 73b7579f77SDag-Erling Smørgrav void 74b7579f77SDag-Erling Smørgrav key_cache_delete(struct key_cache* kcache) 75b7579f77SDag-Erling Smørgrav { 76b7579f77SDag-Erling Smørgrav if(!kcache) 77b7579f77SDag-Erling Smørgrav return; 78b7579f77SDag-Erling Smørgrav slabhash_delete(kcache->slab); 79b7579f77SDag-Erling Smørgrav free(kcache); 80b7579f77SDag-Erling Smørgrav } 81b7579f77SDag-Erling Smørgrav 82b7579f77SDag-Erling Smørgrav void 83b7579f77SDag-Erling Smørgrav key_cache_insert(struct key_cache* kcache, struct key_entry_key* kkey, 84b7579f77SDag-Erling Smørgrav struct module_qstate* qstate) 85b7579f77SDag-Erling Smørgrav { 86b7579f77SDag-Erling Smørgrav struct key_entry_key* k = key_entry_copy(kkey); 87b7579f77SDag-Erling Smørgrav if(!k) 88b7579f77SDag-Erling Smørgrav return; 89b7579f77SDag-Erling Smørgrav if(key_entry_isbad(k) && qstate->errinf && 90b7579f77SDag-Erling Smørgrav qstate->env->cfg->val_log_level >= 2) { 91b7579f77SDag-Erling Smørgrav /* on malloc failure there is simply no reason string */ 92b7579f77SDag-Erling Smørgrav key_entry_set_reason(k, errinf_to_str(qstate)); 93b7579f77SDag-Erling Smørgrav } 94b7579f77SDag-Erling Smørgrav key_entry_hash(k); 95b7579f77SDag-Erling Smørgrav slabhash_insert(kcache->slab, k->entry.hash, &k->entry, 96b7579f77SDag-Erling Smørgrav k->entry.data, NULL); 97b7579f77SDag-Erling Smørgrav } 98b7579f77SDag-Erling Smørgrav 99b7579f77SDag-Erling Smørgrav /** 100b7579f77SDag-Erling Smørgrav * Lookup exactly in the key cache. Returns pointer to locked entry. 101b7579f77SDag-Erling Smørgrav * Caller must unlock it after use. 102b7579f77SDag-Erling Smørgrav * @param kcache: the key cache. 103b7579f77SDag-Erling Smørgrav * @param name: for what name to look; uncompressed wireformat 104b7579f77SDag-Erling Smørgrav * @param namelen: length of the name. 105b7579f77SDag-Erling Smørgrav * @param key_class: class of the key. 106b7579f77SDag-Erling Smørgrav * @param wr: set true to get a writelock. 107b7579f77SDag-Erling Smørgrav * @return key entry, locked, or NULL if not found. No TTL checking is 108b7579f77SDag-Erling Smørgrav * performed. 109b7579f77SDag-Erling Smørgrav */ 110b7579f77SDag-Erling Smørgrav static struct key_entry_key* 111b7579f77SDag-Erling Smørgrav key_cache_search(struct key_cache* kcache, uint8_t* name, size_t namelen, 112b7579f77SDag-Erling Smørgrav uint16_t key_class, int wr) 113b7579f77SDag-Erling Smørgrav { 114b7579f77SDag-Erling Smørgrav struct lruhash_entry* e; 115b7579f77SDag-Erling Smørgrav struct key_entry_key lookfor; 116b7579f77SDag-Erling Smørgrav lookfor.entry.key = &lookfor; 117b7579f77SDag-Erling Smørgrav lookfor.name = name; 118b7579f77SDag-Erling Smørgrav lookfor.namelen = namelen; 119b7579f77SDag-Erling Smørgrav lookfor.key_class = key_class; 120b7579f77SDag-Erling Smørgrav key_entry_hash(&lookfor); 121b7579f77SDag-Erling Smørgrav e = slabhash_lookup(kcache->slab, lookfor.entry.hash, &lookfor, wr); 122b7579f77SDag-Erling Smørgrav if(!e) 123b7579f77SDag-Erling Smørgrav return NULL; 124b7579f77SDag-Erling Smørgrav return (struct key_entry_key*)e->key; 125b7579f77SDag-Erling Smørgrav } 126b7579f77SDag-Erling Smørgrav 127b7579f77SDag-Erling Smørgrav struct key_entry_key* 128b7579f77SDag-Erling Smørgrav key_cache_obtain(struct key_cache* kcache, uint8_t* name, size_t namelen, 129*17d15b25SDag-Erling Smørgrav uint16_t key_class, struct regional* region, time_t now) 130b7579f77SDag-Erling Smørgrav { 131b7579f77SDag-Erling Smørgrav /* keep looking until we find a nonexpired entry */ 132b7579f77SDag-Erling Smørgrav while(1) { 133b7579f77SDag-Erling Smørgrav struct key_entry_key* k = key_cache_search(kcache, name, 134b7579f77SDag-Erling Smørgrav namelen, key_class, 0); 135b7579f77SDag-Erling Smørgrav if(k) { 136b7579f77SDag-Erling Smørgrav /* see if TTL is OK */ 137b7579f77SDag-Erling Smørgrav struct key_entry_data* d = (struct key_entry_data*) 138b7579f77SDag-Erling Smørgrav k->entry.data; 139b7579f77SDag-Erling Smørgrav if(now <= d->ttl) { 140b7579f77SDag-Erling Smørgrav /* copy and return it */ 141b7579f77SDag-Erling Smørgrav struct key_entry_key* retkey = 142b7579f77SDag-Erling Smørgrav key_entry_copy_toregion(k, region); 143b7579f77SDag-Erling Smørgrav lock_rw_unlock(&k->entry.lock); 144b7579f77SDag-Erling Smørgrav return retkey; 145b7579f77SDag-Erling Smørgrav } 146b7579f77SDag-Erling Smørgrav lock_rw_unlock(&k->entry.lock); 147b7579f77SDag-Erling Smørgrav } 148b7579f77SDag-Erling Smørgrav /* snip off first label to continue */ 149b7579f77SDag-Erling Smørgrav if(dname_is_root(name)) 150b7579f77SDag-Erling Smørgrav break; 151b7579f77SDag-Erling Smørgrav dname_remove_label(&name, &namelen); 152b7579f77SDag-Erling Smørgrav } 153b7579f77SDag-Erling Smørgrav return NULL; 154b7579f77SDag-Erling Smørgrav } 155b7579f77SDag-Erling Smørgrav 156b7579f77SDag-Erling Smørgrav size_t 157b7579f77SDag-Erling Smørgrav key_cache_get_mem(struct key_cache* kcache) 158b7579f77SDag-Erling Smørgrav { 159b7579f77SDag-Erling Smørgrav return sizeof(*kcache) + slabhash_get_mem(kcache->slab); 160b7579f77SDag-Erling Smørgrav } 161b7579f77SDag-Erling Smørgrav 162b7579f77SDag-Erling Smørgrav void key_cache_remove(struct key_cache* kcache, 163b7579f77SDag-Erling Smørgrav uint8_t* name, size_t namelen, uint16_t key_class) 164b7579f77SDag-Erling Smørgrav { 165b7579f77SDag-Erling Smørgrav struct key_entry_key lookfor; 166b7579f77SDag-Erling Smørgrav lookfor.entry.key = &lookfor; 167b7579f77SDag-Erling Smørgrav lookfor.name = name; 168b7579f77SDag-Erling Smørgrav lookfor.namelen = namelen; 169b7579f77SDag-Erling Smørgrav lookfor.key_class = key_class; 170b7579f77SDag-Erling Smørgrav key_entry_hash(&lookfor); 171b7579f77SDag-Erling Smørgrav slabhash_remove(kcache->slab, lookfor.entry.hash, &lookfor); 172b7579f77SDag-Erling Smørgrav } 173