1*b7579f77SDag-Erling Smørgrav /* 2*b7579f77SDag-Erling Smørgrav * validator/val_kcache.c - validator key shared cache with validated keys 3*b7579f77SDag-Erling Smørgrav * 4*b7579f77SDag-Erling Smørgrav * Copyright (c) 2007, NLnet Labs. All rights reserved. 5*b7579f77SDag-Erling Smørgrav * 6*b7579f77SDag-Erling Smørgrav * This software is open source. 7*b7579f77SDag-Erling Smørgrav * 8*b7579f77SDag-Erling Smørgrav * Redistribution and use in source and binary forms, with or without 9*b7579f77SDag-Erling Smørgrav * modification, are permitted provided that the following conditions 10*b7579f77SDag-Erling Smørgrav * are met: 11*b7579f77SDag-Erling Smørgrav * 12*b7579f77SDag-Erling Smørgrav * Redistributions of source code must retain the above copyright notice, 13*b7579f77SDag-Erling Smørgrav * this list of conditions and the following disclaimer. 14*b7579f77SDag-Erling Smørgrav * 15*b7579f77SDag-Erling Smørgrav * Redistributions in binary form must reproduce the above copyright notice, 16*b7579f77SDag-Erling Smørgrav * this list of conditions and the following disclaimer in the documentation 17*b7579f77SDag-Erling Smørgrav * and/or other materials provided with the distribution. 18*b7579f77SDag-Erling Smørgrav * 19*b7579f77SDag-Erling Smørgrav * Neither the name of the NLNET LABS nor the names of its contributors may 20*b7579f77SDag-Erling Smørgrav * be used to endorse or promote products derived from this software without 21*b7579f77SDag-Erling Smørgrav * specific prior written permission. 22*b7579f77SDag-Erling Smørgrav * 23*b7579f77SDag-Erling Smørgrav * THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS 24*b7579f77SDag-Erling Smørgrav * "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED 25*b7579f77SDag-Erling Smørgrav * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR 26*b7579f77SDag-Erling Smørgrav * PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE 27*b7579f77SDag-Erling Smørgrav * LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR 28*b7579f77SDag-Erling Smørgrav * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF 29*b7579f77SDag-Erling Smørgrav * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS 30*b7579f77SDag-Erling Smørgrav * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN 31*b7579f77SDag-Erling Smørgrav * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) 32*b7579f77SDag-Erling Smørgrav * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE 33*b7579f77SDag-Erling Smørgrav * POSSIBILITY OF SUCH DAMAGE. 34*b7579f77SDag-Erling Smørgrav */ 35*b7579f77SDag-Erling Smørgrav 36*b7579f77SDag-Erling Smørgrav /** 37*b7579f77SDag-Erling Smørgrav * \file 38*b7579f77SDag-Erling Smørgrav * 39*b7579f77SDag-Erling Smørgrav * This file contains functions for dealing with the validator key cache. 40*b7579f77SDag-Erling Smørgrav */ 41*b7579f77SDag-Erling Smørgrav #include "config.h" 42*b7579f77SDag-Erling Smørgrav #include "validator/val_kcache.h" 43*b7579f77SDag-Erling Smørgrav #include "validator/val_kentry.h" 44*b7579f77SDag-Erling Smørgrav #include "util/log.h" 45*b7579f77SDag-Erling Smørgrav #include "util/config_file.h" 46*b7579f77SDag-Erling Smørgrav #include "util/data/dname.h" 47*b7579f77SDag-Erling Smørgrav #include "util/module.h" 48*b7579f77SDag-Erling Smørgrav 49*b7579f77SDag-Erling Smørgrav struct key_cache* 50*b7579f77SDag-Erling Smørgrav key_cache_create(struct config_file* cfg) 51*b7579f77SDag-Erling Smørgrav { 52*b7579f77SDag-Erling Smørgrav struct key_cache* kcache = (struct key_cache*)calloc(1, 53*b7579f77SDag-Erling Smørgrav sizeof(*kcache)); 54*b7579f77SDag-Erling Smørgrav size_t numtables, start_size, maxmem; 55*b7579f77SDag-Erling Smørgrav if(!kcache) { 56*b7579f77SDag-Erling Smørgrav log_err("malloc failure"); 57*b7579f77SDag-Erling Smørgrav return NULL; 58*b7579f77SDag-Erling Smørgrav } 59*b7579f77SDag-Erling Smørgrav numtables = cfg->key_cache_slabs; 60*b7579f77SDag-Erling Smørgrav start_size = HASH_DEFAULT_STARTARRAY; 61*b7579f77SDag-Erling Smørgrav maxmem = cfg->key_cache_size; 62*b7579f77SDag-Erling Smørgrav kcache->slab = slabhash_create(numtables, start_size, maxmem, 63*b7579f77SDag-Erling Smørgrav &key_entry_sizefunc, &key_entry_compfunc, 64*b7579f77SDag-Erling Smørgrav &key_entry_delkeyfunc, &key_entry_deldatafunc, NULL); 65*b7579f77SDag-Erling Smørgrav if(!kcache->slab) { 66*b7579f77SDag-Erling Smørgrav log_err("malloc failure"); 67*b7579f77SDag-Erling Smørgrav free(kcache); 68*b7579f77SDag-Erling Smørgrav return NULL; 69*b7579f77SDag-Erling Smørgrav } 70*b7579f77SDag-Erling Smørgrav return kcache; 71*b7579f77SDag-Erling Smørgrav } 72*b7579f77SDag-Erling Smørgrav 73*b7579f77SDag-Erling Smørgrav void 74*b7579f77SDag-Erling Smørgrav key_cache_delete(struct key_cache* kcache) 75*b7579f77SDag-Erling Smørgrav { 76*b7579f77SDag-Erling Smørgrav if(!kcache) 77*b7579f77SDag-Erling Smørgrav return; 78*b7579f77SDag-Erling Smørgrav slabhash_delete(kcache->slab); 79*b7579f77SDag-Erling Smørgrav free(kcache); 80*b7579f77SDag-Erling Smørgrav } 81*b7579f77SDag-Erling Smørgrav 82*b7579f77SDag-Erling Smørgrav void 83*b7579f77SDag-Erling Smørgrav key_cache_insert(struct key_cache* kcache, struct key_entry_key* kkey, 84*b7579f77SDag-Erling Smørgrav struct module_qstate* qstate) 85*b7579f77SDag-Erling Smørgrav { 86*b7579f77SDag-Erling Smørgrav struct key_entry_key* k = key_entry_copy(kkey); 87*b7579f77SDag-Erling Smørgrav if(!k) 88*b7579f77SDag-Erling Smørgrav return; 89*b7579f77SDag-Erling Smørgrav if(key_entry_isbad(k) && qstate->errinf && 90*b7579f77SDag-Erling Smørgrav qstate->env->cfg->val_log_level >= 2) { 91*b7579f77SDag-Erling Smørgrav /* on malloc failure there is simply no reason string */ 92*b7579f77SDag-Erling Smørgrav key_entry_set_reason(k, errinf_to_str(qstate)); 93*b7579f77SDag-Erling Smørgrav } 94*b7579f77SDag-Erling Smørgrav key_entry_hash(k); 95*b7579f77SDag-Erling Smørgrav slabhash_insert(kcache->slab, k->entry.hash, &k->entry, 96*b7579f77SDag-Erling Smørgrav k->entry.data, NULL); 97*b7579f77SDag-Erling Smørgrav } 98*b7579f77SDag-Erling Smørgrav 99*b7579f77SDag-Erling Smørgrav /** 100*b7579f77SDag-Erling Smørgrav * Lookup exactly in the key cache. Returns pointer to locked entry. 101*b7579f77SDag-Erling Smørgrav * Caller must unlock it after use. 102*b7579f77SDag-Erling Smørgrav * @param kcache: the key cache. 103*b7579f77SDag-Erling Smørgrav * @param name: for what name to look; uncompressed wireformat 104*b7579f77SDag-Erling Smørgrav * @param namelen: length of the name. 105*b7579f77SDag-Erling Smørgrav * @param key_class: class of the key. 106*b7579f77SDag-Erling Smørgrav * @param wr: set true to get a writelock. 107*b7579f77SDag-Erling Smørgrav * @return key entry, locked, or NULL if not found. No TTL checking is 108*b7579f77SDag-Erling Smørgrav * performed. 109*b7579f77SDag-Erling Smørgrav */ 110*b7579f77SDag-Erling Smørgrav static struct key_entry_key* 111*b7579f77SDag-Erling Smørgrav key_cache_search(struct key_cache* kcache, uint8_t* name, size_t namelen, 112*b7579f77SDag-Erling Smørgrav uint16_t key_class, int wr) 113*b7579f77SDag-Erling Smørgrav { 114*b7579f77SDag-Erling Smørgrav struct lruhash_entry* e; 115*b7579f77SDag-Erling Smørgrav struct key_entry_key lookfor; 116*b7579f77SDag-Erling Smørgrav lookfor.entry.key = &lookfor; 117*b7579f77SDag-Erling Smørgrav lookfor.name = name; 118*b7579f77SDag-Erling Smørgrav lookfor.namelen = namelen; 119*b7579f77SDag-Erling Smørgrav lookfor.key_class = key_class; 120*b7579f77SDag-Erling Smørgrav key_entry_hash(&lookfor); 121*b7579f77SDag-Erling Smørgrav e = slabhash_lookup(kcache->slab, lookfor.entry.hash, &lookfor, wr); 122*b7579f77SDag-Erling Smørgrav if(!e) 123*b7579f77SDag-Erling Smørgrav return NULL; 124*b7579f77SDag-Erling Smørgrav return (struct key_entry_key*)e->key; 125*b7579f77SDag-Erling Smørgrav } 126*b7579f77SDag-Erling Smørgrav 127*b7579f77SDag-Erling Smørgrav struct key_entry_key* 128*b7579f77SDag-Erling Smørgrav key_cache_obtain(struct key_cache* kcache, uint8_t* name, size_t namelen, 129*b7579f77SDag-Erling Smørgrav uint16_t key_class, struct regional* region, uint32_t now) 130*b7579f77SDag-Erling Smørgrav { 131*b7579f77SDag-Erling Smørgrav /* keep looking until we find a nonexpired entry */ 132*b7579f77SDag-Erling Smørgrav while(1) { 133*b7579f77SDag-Erling Smørgrav struct key_entry_key* k = key_cache_search(kcache, name, 134*b7579f77SDag-Erling Smørgrav namelen, key_class, 0); 135*b7579f77SDag-Erling Smørgrav if(k) { 136*b7579f77SDag-Erling Smørgrav /* see if TTL is OK */ 137*b7579f77SDag-Erling Smørgrav struct key_entry_data* d = (struct key_entry_data*) 138*b7579f77SDag-Erling Smørgrav k->entry.data; 139*b7579f77SDag-Erling Smørgrav if(now <= d->ttl) { 140*b7579f77SDag-Erling Smørgrav /* copy and return it */ 141*b7579f77SDag-Erling Smørgrav struct key_entry_key* retkey = 142*b7579f77SDag-Erling Smørgrav key_entry_copy_toregion(k, region); 143*b7579f77SDag-Erling Smørgrav lock_rw_unlock(&k->entry.lock); 144*b7579f77SDag-Erling Smørgrav return retkey; 145*b7579f77SDag-Erling Smørgrav } 146*b7579f77SDag-Erling Smørgrav lock_rw_unlock(&k->entry.lock); 147*b7579f77SDag-Erling Smørgrav } 148*b7579f77SDag-Erling Smørgrav /* snip off first label to continue */ 149*b7579f77SDag-Erling Smørgrav if(dname_is_root(name)) 150*b7579f77SDag-Erling Smørgrav break; 151*b7579f77SDag-Erling Smørgrav dname_remove_label(&name, &namelen); 152*b7579f77SDag-Erling Smørgrav } 153*b7579f77SDag-Erling Smørgrav return NULL; 154*b7579f77SDag-Erling Smørgrav } 155*b7579f77SDag-Erling Smørgrav 156*b7579f77SDag-Erling Smørgrav size_t 157*b7579f77SDag-Erling Smørgrav key_cache_get_mem(struct key_cache* kcache) 158*b7579f77SDag-Erling Smørgrav { 159*b7579f77SDag-Erling Smørgrav return sizeof(*kcache) + slabhash_get_mem(kcache->slab); 160*b7579f77SDag-Erling Smørgrav } 161*b7579f77SDag-Erling Smørgrav 162*b7579f77SDag-Erling Smørgrav void key_cache_remove(struct key_cache* kcache, 163*b7579f77SDag-Erling Smørgrav uint8_t* name, size_t namelen, uint16_t key_class) 164*b7579f77SDag-Erling Smørgrav { 165*b7579f77SDag-Erling Smørgrav struct key_entry_key lookfor; 166*b7579f77SDag-Erling Smørgrav lookfor.entry.key = &lookfor; 167*b7579f77SDag-Erling Smørgrav lookfor.name = name; 168*b7579f77SDag-Erling Smørgrav lookfor.namelen = namelen; 169*b7579f77SDag-Erling Smørgrav lookfor.key_class = key_class; 170*b7579f77SDag-Erling Smørgrav key_entry_hash(&lookfor); 171*b7579f77SDag-Erling Smørgrav slabhash_remove(kcache->slab, lookfor.entry.hash, &lookfor); 172*b7579f77SDag-Erling Smørgrav } 173