1.\" Copyright (c) 2000 FreeBSD Inc. 2.\" All rights reserved. 3.\" 4.\" Redistribution and use in source and binary forms, with or without 5.\" modification, are permitted provided that the following conditions 6.\" are met: 7.\" 1. Redistributions of source code must retain the above copyright 8.\" notice, this list of conditions and the following disclaimer. 9.\" 2. Redistributions in binary form must reproduce the above copyright 10.\" notice, this list of conditions and the following disclaimer in the 11.\" documentation and/or other materials provided with the distribution. 12.\" 13.\" THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS IS'' AND 14.\" ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 15.\" IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 16.\" ARE DISCLAIMED. IN NO EVENT SHALL [your name] OR CONTRIBUTORS BE LIABLE 17.\" FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 18.\" DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 19.\" OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 20.\" HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 21.\" LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 22.\" OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 23.\" SUCH DAMAGE. 24.\" 25.\" $FreeBSD$ 26.\" 27.Dd August 7, 2010 28.Dt MBUF 9 29.Os 30.\" 31.Sh NAME 32.Nm mbuf 33.Nd "memory management in the kernel IPC subsystem" 34.\" 35.Sh SYNOPSIS 36.In sys/param.h 37.In sys/systm.h 38.In sys/mbuf.h 39.\" 40.Ss Mbuf allocation macros 41.Fn MGET "struct mbuf *mbuf" "int how" "short type" 42.Fn MGETHDR "struct mbuf *mbuf" "int how" "short type" 43.Fn MCLGET "struct mbuf *mbuf" "int how" 44.Fo MEXTADD 45.Fa "struct mbuf *mbuf" 46.Fa "caddr_t buf" 47.Fa "u_int size" 48.Fa "void (*free)(void *opt_arg1, void *opt_arg2)" 49.Fa "void *opt_arg1" 50.Fa "void *opt_arg2" 51.Fa "short flags" 52.Fa "int type" 53.Fc 54.Fn MEXTFREE "struct mbuf *mbuf" 55.Fn MFREE "struct mbuf *mbuf" "struct mbuf *successor" 56.\" 57.Ss Mbuf utility macros 58.Fn mtod "struct mbuf *mbuf" "type" 59.Fn M_ALIGN "struct mbuf *mbuf" "u_int len" 60.Fn MH_ALIGN "struct mbuf *mbuf" "u_int len" 61.Ft int 62.Fn M_LEADINGSPACE "struct mbuf *mbuf" 63.Ft int 64.Fn M_TRAILINGSPACE "struct mbuf *mbuf" 65.Fn M_MOVE_PKTHDR "struct mbuf *to" "struct mbuf *from" 66.Fn M_PREPEND "struct mbuf *mbuf" "int len" "int how" 67.Fn MCHTYPE "struct mbuf *mbuf" "u_int type" 68.Ft int 69.Fn M_WRITABLE "struct mbuf *mbuf" 70.\" 71.Ss Mbuf allocation functions 72.Ft struct mbuf * 73.Fn m_get "int how" "int type" 74.Ft struct mbuf * 75.Fn m_getm "struct mbuf *orig" "int len" "int how" "int type" 76.Ft struct mbuf * 77.Fn m_getcl "int how" "short type" "int flags" 78.Ft struct mbuf * 79.Fn m_getclr "int how" "int type" 80.Ft struct mbuf * 81.Fn m_gethdr "int how" "int type" 82.Ft struct mbuf * 83.Fn m_free "struct mbuf *mbuf" 84.Ft void 85.Fn m_freem "struct mbuf *mbuf" 86.\" 87.Ss Mbuf utility functions 88.Ft void 89.Fn m_adj "struct mbuf *mbuf" "int len" 90.Ft void 91.Fn m_align "struct mbuf *mbuf" "int len" 92.Ft int 93.Fn m_append "struct mbuf *mbuf" "int len" "c_caddr_t cp" 94.Ft struct mbuf * 95.Fn m_prepend "struct mbuf *mbuf" "int len" "int how" 96.Ft struct mbuf * 97.Fn m_copyup "struct mbuf *mbuf" "int len" "int dstoff" 98.Ft struct mbuf * 99.Fn m_pullup "struct mbuf *mbuf" "int len" 100.Ft struct mbuf * 101.Fn m_pulldown "struct mbuf *mbuf" "int offset" "int len" "int *offsetp" 102.Ft struct mbuf * 103.Fn m_copym "struct mbuf *mbuf" "int offset" "int len" "int how" 104.Ft struct mbuf * 105.Fn m_copypacket "struct mbuf *mbuf" "int how" 106.Ft struct mbuf * 107.Fn m_dup "struct mbuf *mbuf" "int how" 108.Ft void 109.Fn m_copydata "const struct mbuf *mbuf" "int offset" "int len" "caddr_t buf" 110.Ft void 111.Fn m_copyback "struct mbuf *mbuf" "int offset" "int len" "caddr_t buf" 112.Ft struct mbuf * 113.Fo m_devget 114.Fa "char *buf" 115.Fa "int len" 116.Fa "int offset" 117.Fa "struct ifnet *ifp" 118.Fa "void (*copy)(char *from, caddr_t to, u_int len)" 119.Fc 120.Ft void 121.Fn m_cat "struct mbuf *m" "struct mbuf *n" 122.Ft u_int 123.Fn m_fixhdr "struct mbuf *mbuf" 124.Ft void 125.Fn m_dup_pkthdr "struct mbuf *to" "struct mbuf *from" 126.Ft void 127.Fn m_move_pkthdr "struct mbuf *to" "struct mbuf *from" 128.Ft u_int 129.Fn m_length "struct mbuf *mbuf" "struct mbuf **last" 130.Ft struct mbuf * 131.Fn m_split "struct mbuf *mbuf" "int len" "int how" 132.Ft int 133.Fn m_apply "struct mbuf *mbuf" "int off" "int len" "int (*f)(void *arg, void *data, u_int len)" "void *arg" 134.Ft struct mbuf * 135.Fn m_getptr "struct mbuf *mbuf" "int loc" "int *off" 136.Ft struct mbuf * 137.Fn m_defrag "struct mbuf *m0" "int how" 138.Ft struct mbuf * 139.Fn m_unshare "struct mbuf *m0" "int how" 140.\" 141.Sh DESCRIPTION 142An 143.Vt mbuf 144is a basic unit of memory management in the kernel IPC subsystem. 145Network packets and socket buffers are stored in 146.Vt mbufs . 147A network packet may span multiple 148.Vt mbufs 149arranged into a 150.Vt mbuf chain 151(linked list), 152which allows adding or trimming 153network headers with little overhead. 154.Pp 155While a developer should not bother with 156.Vt mbuf 157internals without serious 158reason in order to avoid incompatibilities with future changes, it 159is useful to understand the general structure of an 160.Vt mbuf . 161.Pp 162An 163.Vt mbuf 164consists of a variable-sized header and a small internal 165buffer for data. 166The total size of an 167.Vt mbuf , 168.Dv MSIZE , 169is a constant defined in 170.In sys/param.h . 171The 172.Vt mbuf 173header includes: 174.Pp 175.Bl -tag -width "m_nextpkt" -offset indent 176.It Va m_next 177.Pq Vt struct mbuf * 178A pointer to the next 179.Vt mbuf 180in the 181.Vt mbuf chain . 182.It Va m_nextpkt 183.Pq Vt struct mbuf * 184A pointer to the next 185.Vt mbuf chain 186in the queue. 187.It Va m_data 188.Pq Vt caddr_t 189A pointer to data attached to this 190.Vt mbuf . 191.It Va m_len 192.Pq Vt int 193The length of the data. 194.It Va m_type 195.Pq Vt short 196The type of the data. 197.It Va m_flags 198.Pq Vt int 199The 200.Vt mbuf 201flags. 202.El 203.Pp 204The 205.Vt mbuf 206flag bits are defined as follows: 207.Bd -literal 208/* mbuf flags */ 209#define M_EXT 0x0001 /* has associated external storage */ 210#define M_PKTHDR 0x0002 /* start of record */ 211#define M_EOR 0x0004 /* end of record */ 212#define M_RDONLY 0x0008 /* associated data marked read-only */ 213#define M_PROTO1 0x0010 /* protocol-specific */ 214#define M_PROTO2 0x0020 /* protocol-specific */ 215#define M_PROTO3 0x0040 /* protocol-specific */ 216#define M_PROTO4 0x0080 /* protocol-specific */ 217#define M_PROTO5 0x0100 /* protocol-specific */ 218#define M_PROTO6 0x4000 /* protocol-specific (avoid M_BCAST conflict) */ 219#define M_FREELIST 0x8000 /* mbuf is on the free list */ 220 221/* mbuf pkthdr flags (also stored in m_flags) */ 222#define M_BCAST 0x0200 /* send/received as link-level broadcast */ 223#define M_MCAST 0x0400 /* send/received as link-level multicast */ 224#define M_FRAG 0x0800 /* packet is fragment of larger packet */ 225#define M_FIRSTFRAG 0x1000 /* packet is first fragment */ 226#define M_LASTFRAG 0x2000 /* packet is last fragment */ 227.Ed 228.Pp 229The available 230.Vt mbuf 231types are defined as follows: 232.Bd -literal 233/* mbuf types */ 234#define MT_DATA 1 /* dynamic (data) allocation */ 235#define MT_HEADER MT_DATA /* packet header */ 236#define MT_SONAME 8 /* socket name */ 237#define MT_CONTROL 14 /* extra-data protocol message */ 238#define MT_OOBDATA 15 /* expedited data */ 239.Ed 240.Pp 241The available external buffer types are defined as follows: 242.Bd -literal 243/* external buffer types */ 244#define EXT_CLUSTER 1 /* mbuf cluster */ 245#define EXT_SFBUF 2 /* sendfile(2)'s sf_bufs */ 246#define EXT_JUMBOP 3 /* jumbo cluster 4096 bytes */ 247#define EXT_JUMBO9 4 /* jumbo cluster 9216 bytes */ 248#define EXT_JUMBO16 5 /* jumbo cluster 16184 bytes */ 249#define EXT_PACKET 6 /* mbuf+cluster from packet zone */ 250#define EXT_MBUF 7 /* external mbuf reference (M_IOVEC) */ 251#define EXT_NET_DRV 100 /* custom ext_buf provided by net driver(s) */ 252#define EXT_MOD_TYPE 200 /* custom module's ext_buf type */ 253#define EXT_DISPOSABLE 300 /* can throw this buffer away w/page flipping */ 254#define EXT_EXTREF 400 /* has externally maintained ref_cnt ptr */ 255.Ed 256.Pp 257If the 258.Dv M_PKTHDR 259flag is set, a 260.Vt struct pkthdr Va m_pkthdr 261is added to the 262.Vt mbuf 263header. 264It contains a pointer to the interface 265the packet has been received from 266.Pq Vt struct ifnet Va *rcvif , 267and the total packet length 268.Pq Vt int Va len . 269Optionally, it may also contain an attached list of packet tags 270.Pq Vt "struct m_tag" . 271See 272.Xr mbuf_tags 9 273for details. 274Fields used in offloading checksum calculation to the hardware are kept in 275.Va m_pkthdr 276as well. 277See 278.Sx HARDWARE-ASSISTED CHECKSUM CALCULATION 279for details. 280.Pp 281If small enough, data is stored in the internal data buffer of an 282.Vt mbuf . 283If the data is sufficiently large, another 284.Vt mbuf 285may be added to the 286.Vt mbuf chain , 287or external storage may be associated with the 288.Vt mbuf . 289.Dv MHLEN 290bytes of data can fit into an 291.Vt mbuf 292with the 293.Dv M_PKTHDR 294flag set, 295.Dv MLEN 296bytes can otherwise. 297.Pp 298If external storage is being associated with an 299.Vt mbuf , 300the 301.Va m_ext 302header is added at the cost of losing the internal data buffer. 303It includes a pointer to external storage, the size of the storage, 304a pointer to a function used for freeing the storage, 305a pointer to an optional argument that can be passed to the function, 306and a pointer to a reference counter. 307An 308.Vt mbuf 309using external storage has the 310.Dv M_EXT 311flag set. 312.Pp 313The system supplies a macro for allocating the desired external storage 314buffer, 315.Dv MEXTADD . 316.Pp 317The allocation and management of the reference counter is handled by the 318subsystem. 319.Pp 320The system also supplies a default type of external storage buffer called an 321.Vt mbuf cluster . 322.Vt Mbuf clusters 323can be allocated and configured with the use of the 324.Dv MCLGET 325macro. 326Each 327.Vt mbuf cluster 328is 329.Dv MCLBYTES 330in size, where MCLBYTES is a machine-dependent constant. 331The system defines an advisory macro 332.Dv MINCLSIZE , 333which is the smallest amount of data to put into an 334.Vt mbuf cluster . 335It is equal to the sum of 336.Dv MLEN 337and 338.Dv MHLEN . 339It is typically preferable to store data into the data region of an 340.Vt mbuf , 341if size permits, as opposed to allocating a separate 342.Vt mbuf cluster 343to hold the same data. 344.\" 345.Ss Macros and Functions 346There are numerous predefined macros and functions that provide the 347developer with common utilities. 348.\" 349.Bl -ohang -offset indent 350.It Fn mtod mbuf type 351Convert an 352.Fa mbuf 353pointer to a data pointer. 354The macro expands to the data pointer cast to the pointer of the specified 355.Fa type . 356.Sy Note : 357It is advisable to ensure that there is enough contiguous data in 358.Fa mbuf . 359See 360.Fn m_pullup 361for details. 362.It Fn MGET mbuf how type 363Allocate an 364.Vt mbuf 365and initialize it to contain internal data. 366.Fa mbuf 367will point to the allocated 368.Vt mbuf 369on success, or be set to 370.Dv NULL 371on failure. 372The 373.Fa how 374argument is to be set to 375.Dv M_WAIT 376or 377.Dv M_DONTWAIT . 378It specifies whether the caller is willing to block if necessary. 379A number of other functions and macros related to 380.Vt mbufs 381have the same argument because they may 382at some point need to allocate new 383.Vt mbufs . 384.Pp 385Programmers should be careful not to confuse the 386.Vt mbuf 387allocation flag 388.Dv M_DONTWAIT 389with the 390.Xr malloc 9 391allocation flag, 392.Dv M_NOWAIT . 393They are not the same. 394.It Fn MGETHDR mbuf how type 395Allocate an 396.Vt mbuf 397and initialize it to contain a packet header 398and internal data. 399See 400.Fn MGET 401for details. 402.It Fn MEXTADD mbuf buf size free opt_arg1 opt_arg2 flags type 403Associate externally managed data with 404.Fa mbuf . 405Any internal data contained in the mbuf will be discarded, and the 406.Dv M_EXT flag will be set. 407The 408.Fa buf 409and 410.Fa size 411arguments are the address and length, respectively, of the data. 412The 413.Fa free 414argument points to a function which will be called to free the data 415when the mbuf is freed; it is only used if 416.Fa type 417is 418.Dv EXT_EXTREF . 419The 420.Fa opt_arg1 421and 422.Fa opt_arg2 423arguments will be passed unmodified to 424.Fa free . 425The 426.Fa flags 427argument specifies additional 428.Vt mbuf 429flags; it is not necessary to specify 430.Dv M_EXT . 431Finally, the 432.Fa type 433argument specifies the type of external data, which controls how it 434will be disposed of when the 435.Vt mbuf 436is freed. 437In most cases, the correct value is 438.Dv EXT_EXTREF . 439.It Fn MCLGET mbuf how 440Allocate and attach an 441.Vt mbuf cluster 442to 443.Fa mbuf . 444If the macro fails, the 445.Dv M_EXT 446flag will not be set in 447.Fa mbuf . 448.It Fn M_ALIGN mbuf len 449Set the pointer 450.Fa mbuf->m_data 451to place an object of the size 452.Fa len 453at the end of the internal data area of 454.Fa mbuf , 455long word aligned. 456Applicable only if 457.Fa mbuf 458is newly allocated with 459.Fn MGET 460or 461.Fn m_get . 462.It Fn MH_ALIGN mbuf len 463Serves the same purpose as 464.Fn M_ALIGN 465does, but only for 466.Fa mbuf 467newly allocated with 468.Fn MGETHDR 469or 470.Fn m_gethdr , 471or initialized by 472.Fn m_dup_pkthdr 473or 474.Fn m_move_pkthdr . 475.It Fn m_align mbuf len 476Services the same purpose as 477.Fn M_ALIGN 478but handles any type of mbuf. 479.It Fn M_LEADINGSPACE mbuf 480Returns the number of bytes available before the beginning 481of data in 482.Fa mbuf . 483.It Fn M_TRAILINGSPACE mbuf 484Returns the number of bytes available after the end of data in 485.Fa mbuf . 486.It Fn M_PREPEND mbuf len how 487This macro operates on an 488.Vt mbuf chain . 489It is an optimized wrapper for 490.Fn m_prepend 491that can make use of possible empty space before data 492(e.g.\& left after trimming of a link-layer header). 493The new 494.Vt mbuf chain 495pointer or 496.Dv NULL 497is in 498.Fa mbuf 499after the call. 500.It Fn M_MOVE_PKTHDR to from 501Using this macro is equivalent to calling 502.Fn m_move_pkthdr to from . 503.It Fn M_WRITABLE mbuf 504This macro will evaluate true if 505.Fa mbuf 506is not marked 507.Dv M_RDONLY 508and if either 509.Fa mbuf 510does not contain external storage or, 511if it does, 512then if the reference count of the storage is not greater than 1. 513The 514.Dv M_RDONLY 515flag can be set in 516.Fa mbuf->m_flags . 517This can be achieved during setup of the external storage, 518by passing the 519.Dv M_RDONLY 520bit as a 521.Fa flags 522argument to the 523.Fn MEXTADD 524macro, or can be directly set in individual 525.Vt mbufs . 526.It Fn MCHTYPE mbuf type 527Change the type of 528.Fa mbuf 529to 530.Fa type . 531This is a relatively expensive operation and should be avoided. 532.El 533.Pp 534The functions are: 535.Bl -ohang -offset indent 536.It Fn m_get how type 537A function version of 538.Fn MGET 539for non-critical paths. 540.It Fn m_getm orig len how type 541Allocate 542.Fa len 543bytes worth of 544.Vt mbufs 545and 546.Vt mbuf clusters 547if necessary and append the resulting allocated 548.Vt mbuf chain 549to the 550.Vt mbuf chain 551.Fa orig , 552if it is 553.No non- Ns Dv NULL . 554If the allocation fails at any point, 555free whatever was allocated and return 556.Dv NULL . 557If 558.Fa orig 559is 560.No non- Ns Dv NULL , 561it will not be freed. 562It is possible to use 563.Fn m_getm 564to either append 565.Fa len 566bytes to an existing 567.Vt mbuf 568or 569.Vt mbuf chain 570(for example, one which may be sitting in a pre-allocated ring) 571or to simply perform an all-or-nothing 572.Vt mbuf 573and 574.Vt mbuf cluster 575allocation. 576.It Fn m_gethdr how type 577A function version of 578.Fn MGETHDR 579for non-critical paths. 580.It Fn m_getcl how type flags 581Fetch an 582.Vt mbuf 583with a 584.Vt mbuf cluster 585attached to it. 586If one of the allocations fails, the entire allocation fails. 587This routine is the preferred way of fetching both the 588.Vt mbuf 589and 590.Vt mbuf cluster 591together, as it avoids having to unlock/relock between allocations. 592Returns 593.Dv NULL 594on failure. 595.It Fn m_getclr how type 596Allocate an 597.Vt mbuf 598and zero out the data region. 599.It Fn m_free mbuf 600Frees 601.Vt mbuf . 602Returns 603.Va m_next 604of the freed 605.Vt mbuf . 606.El 607.Pp 608The functions below operate on 609.Vt mbuf chains . 610.Bl -ohang -offset indent 611.It Fn m_freem mbuf 612Free an entire 613.Vt mbuf chain , 614including any external storage. 615.\" 616.It Fn m_adj mbuf len 617Trim 618.Fa len 619bytes from the head of an 620.Vt mbuf chain 621if 622.Fa len 623is positive, from the tail otherwise. 624.\" 625.It Fn m_append mbuf len cp 626Append 627.Vt len 628bytes of data 629.Vt cp 630to the 631.Vt mbuf chain . 632Extend the mbuf chain if the new data does not fit in 633existing space. 634.\" 635.It Fn m_prepend mbuf len how 636Allocate a new 637.Vt mbuf 638and prepend it to the 639.Vt mbuf chain , 640handle 641.Dv M_PKTHDR 642properly. 643.Sy Note : 644It does not allocate any 645.Vt mbuf clusters , 646so 647.Fa len 648must be less than 649.Dv MLEN 650or 651.Dv MHLEN , 652depending on the 653.Dv M_PKTHDR 654flag setting. 655.\" 656.It Fn m_copyup mbuf len dstoff 657Similar to 658.Fn m_pullup 659but copies 660.Fa len 661bytes of data into a new mbuf at 662.Fa dstoff 663bytes into the mbuf. 664The 665.Fa dstoff 666argument aligns the data and leaves room for a link layer header. 667Returns the new 668.Vt mbuf chain 669on success, 670and frees the 671.Vt mbuf chain 672and returns 673.Dv NULL 674on failure. 675.Sy Note : 676The function does not allocate 677.Vt mbuf clusters , 678so 679.Fa len + dstoff 680must be less than 681.Dv MHLEN . 682.\" 683.It Fn m_pullup mbuf len 684Arrange that the first 685.Fa len 686bytes of an 687.Vt mbuf chain 688are contiguous and lay in the data area of 689.Fa mbuf , 690so they are accessible with 691.Fn mtod mbuf type . 692It is important to remember that this may involve 693reallocating some mbufs and moving data so all pointers 694referencing data within the old mbuf chain 695must be recalculated or made invalid. 696Return the new 697.Vt mbuf chain 698on success, 699.Dv NULL 700on failure 701(the 702.Vt mbuf chain 703is freed in this case). 704.Sy Note : 705It does not allocate any 706.Vt mbuf clusters , 707so 708.Fa len 709must be less than 710.Dv MHLEN . 711.\" 712.It Fn m_pulldown mbuf offset len offsetp 713Arrange that 714.Fa len 715bytes between 716.Fa offset 717and 718.Fa offset + len 719in the 720.Vt mbuf chain 721are contiguous and lay in the data area of 722.Fa mbuf , 723so they are accessible with 724.Fn mtod mbuf type . 725.Fa len must be smaller than, or equal to, the size of an 726.Vt mbuf cluster . 727Return a pointer to an intermediate 728.Vt mbuf 729in the chain containing the requested region; 730the offset in the data region of the 731.Vt mbuf chain 732to the data contained in the returned mbuf is stored in 733.Fa *offsetp . 734If 735.Fa offp 736is NULL, the region may be accessed using 737.Fn mtod mbuf type . 738If 739.Fa offp 740is non-NULL, the region may be accessed using 741.Fn mtod mbuf uint8_t + *offsetp . 742The region of the mbuf chain between its beginning and 743.Fa off 744is not modified, therefore it is safe to hold pointers to data within 745this region before calling 746.Fn m_pulldown . 747.\" 748.It Fn m_copym mbuf offset len how 749Make a copy of an 750.Vt mbuf chain 751starting 752.Fa offset 753bytes from the beginning, continuing for 754.Fa len 755bytes. 756If 757.Fa len 758is 759.Dv M_COPYALL , 760copy to the end of the 761.Vt mbuf chain . 762.Sy Note : 763The copy is read-only, because the 764.Vt mbuf clusters 765are not copied, only their reference counts are incremented. 766.\" 767.It Fn m_copypacket mbuf how 768Copy an entire packet including header, which must be present. 769This is an optimized version of the common case 770.Fn m_copym mbuf 0 M_COPYALL how . 771.Sy Note : 772the copy is read-only, because the 773.Vt mbuf clusters 774are not copied, only their reference counts are incremented. 775.\" 776.It Fn m_dup mbuf how 777Copy a packet header 778.Vt mbuf chain 779into a completely new 780.Vt mbuf chain , 781including copying any 782.Vt mbuf clusters . 783Use this instead of 784.Fn m_copypacket 785when you need a writable copy of an 786.Vt mbuf chain . 787.\" 788.It Fn m_copydata mbuf offset len buf 789Copy data from an 790.Vt mbuf chain 791starting 792.Fa off 793bytes from the beginning, continuing for 794.Fa len 795bytes, into the indicated buffer 796.Fa buf . 797.\" 798.It Fn m_copyback mbuf offset len buf 799Copy 800.Fa len 801bytes from the buffer 802.Fa buf 803back into the indicated 804.Vt mbuf chain , 805starting at 806.Fa offset 807bytes from the beginning of the 808.Vt mbuf chain , 809extending the 810.Vt mbuf chain 811if necessary. 812.Sy Note : 813It does not allocate any 814.Vt mbuf clusters , 815just adds 816.Vt mbufs 817to the 818.Vt mbuf chain . 819It is safe to set 820.Fa offset 821beyond the current 822.Vt mbuf chain 823end: zeroed 824.Vt mbufs 825will be allocated to fill the space. 826.\" 827.It Fn m_length mbuf last 828Return the length of the 829.Vt mbuf chain , 830and optionally a pointer to the last 831.Vt mbuf . 832.\" 833.It Fn m_dup_pkthdr to from how 834Upon the function's completion, the 835.Vt mbuf 836.Fa to 837will contain an identical copy of 838.Fa from->m_pkthdr 839and the per-packet attributes found in the 840.Vt mbuf chain 841.Fa from . 842The 843.Vt mbuf 844.Fa from 845must have the flag 846.Dv M_PKTHDR 847initially set, and 848.Fa to 849must be empty on entry. 850.\" 851.It Fn m_move_pkthdr to from 852Move 853.Va m_pkthdr 854and the per-packet attributes from the 855.Vt mbuf chain 856.Fa from 857to the 858.Vt mbuf 859.Fa to . 860The 861.Vt mbuf 862.Fa from 863must have the flag 864.Dv M_PKTHDR 865initially set, and 866.Fa to 867must be empty on entry. 868Upon the function's completion, 869.Fa from 870will have the flag 871.Dv M_PKTHDR 872and the per-packet attributes cleared. 873.\" 874.It Fn m_fixhdr mbuf 875Set the packet-header length to the length of the 876.Vt mbuf chain . 877.\" 878.It Fn m_devget buf len offset ifp copy 879Copy data from a device local memory pointed to by 880.Fa buf 881to an 882.Vt mbuf chain . 883The copy is done using a specified copy routine 884.Fa copy , 885or 886.Fn bcopy 887if 888.Fa copy 889is 890.Dv NULL . 891.\" 892.It Fn m_cat m n 893Concatenate 894.Fa n 895to 896.Fa m . 897Both 898.Vt mbuf chains 899must be of the same type. 900.Fa N 901is still valid after the function returned. 902.Sy Note : 903It does not handle 904.Dv M_PKTHDR 905and friends. 906.\" 907.It Fn m_split mbuf len how 908Partition an 909.Vt mbuf chain 910in two pieces, returning the tail: 911all but the first 912.Fa len 913bytes. 914In case of failure, it returns 915.Dv NULL 916and attempts to restore the 917.Vt mbuf chain 918to its original state. 919.\" 920.It Fn m_apply mbuf off len f arg 921Apply a function to an 922.Vt mbuf chain , 923at offset 924.Fa off , 925for length 926.Fa len 927bytes. 928Typically used to avoid calls to 929.Fn m_pullup 930which would otherwise be unnecessary or undesirable. 931.Fa arg 932is a convenience argument which is passed to the callback function 933.Fa f . 934.Pp 935Each time 936.Fn f 937is called, it will be passed 938.Fa arg , 939a pointer to the 940.Fa data 941in the current mbuf, and the length 942.Fa len 943of the data in this mbuf to which the function should be applied. 944.Pp 945The function should return zero to indicate success; 946otherwise, if an error is indicated, then 947.Fn m_apply 948will return the error and stop iterating through the 949.Vt mbuf chain . 950.\" 951.It Fn m_getptr mbuf loc off 952Return a pointer to the mbuf containing the data located at 953.Fa loc 954bytes from the beginning of the 955.Vt mbuf chain . 956The corresponding offset into the mbuf will be stored in 957.Fa *off . 958.It Fn m_defrag m0 how 959Defragment an mbuf chain, returning the shortest possible 960chain of mbufs and clusters. 961If allocation fails and this can not be completed, 962.Dv NULL 963will be returned and the original chain will be unchanged. 964Upon success, the original chain will be freed and the new 965chain will be returned. 966.Fa how 967should be either 968.Dv M_WAIT 969or 970.Dv M_DONTWAIT , 971depending on the caller's preference. 972.Pp 973This function is especially useful in network drivers, where 974certain long mbuf chains must be shortened before being added 975to TX descriptor lists. 976.It Fn m_unshare m0 how 977Create a version of the specified mbuf chain whose 978contents can be safely modified without affecting other users. 979If allocation fails and this operation can not be completed, 980.Dv NULL 981will be returned. 982The original mbuf chain is always reclaimed and the reference 983count of any shared mbuf clusters is decremented. 984.Fa how 985should be either 986.Dv M_WAIT 987or 988.Dv M_DONTWAIT , 989depending on the caller's preference. 990As a side-effect of this process the returned 991mbuf chain may be compacted. 992.Pp 993This function is especially useful in the transmit path of 994network code, when data must be encrypted or otherwise 995altered prior to transmission. 996.El 997.Sh HARDWARE-ASSISTED CHECKSUM CALCULATION 998This section currently applies to TCP/IP only. 999In order to save the host CPU resources, computing checksums is 1000offloaded to the network interface hardware if possible. 1001The 1002.Va m_pkthdr 1003member of the leading 1004.Vt mbuf 1005of a packet contains two fields used for that purpose, 1006.Vt int Va csum_flags 1007and 1008.Vt int Va csum_data . 1009The meaning of those fields depends on the direction a packet flows in, 1010and on whether the packet is fragmented. 1011Henceforth, 1012.Va csum_flags 1013or 1014.Va csum_data 1015of a packet 1016will denote the corresponding field of the 1017.Va m_pkthdr 1018member of the leading 1019.Vt mbuf 1020in the 1021.Vt mbuf chain 1022containing the packet. 1023.Pp 1024On output, checksum offloading is attempted after the outgoing 1025interface has been determined for a packet. 1026The interface-specific field 1027.Va ifnet.if_data.ifi_hwassist 1028(see 1029.Xr ifnet 9 ) 1030is consulted for the capabilities of the interface to assist in 1031computing checksums. 1032The 1033.Va csum_flags 1034field of the packet header is set to indicate which actions the interface 1035is supposed to perform on it. 1036The actions unsupported by the network interface are done in the 1037software prior to passing the packet down to the interface driver; 1038such actions will never be requested through 1039.Va csum_flags . 1040.Pp 1041The flags demanding a particular action from an interface are as follows: 1042.Bl -tag -width ".Dv CSUM_TCP" -offset indent 1043.It Dv CSUM_IP 1044The IP header checksum is to be computed and stored in the 1045corresponding field of the packet. 1046The hardware is expected to know the format of an IP header 1047to determine the offset of the IP checksum field. 1048.It Dv CSUM_TCP 1049The TCP checksum is to be computed. 1050(See below.) 1051.It Dv CSUM_UDP 1052The UDP checksum is to be computed. 1053(See below.) 1054.El 1055.Pp 1056Should a TCP or UDP checksum be offloaded to the hardware, 1057the field 1058.Va csum_data 1059will contain the byte offset of the checksum field relative to the 1060end of the IP header. 1061In this case, the checksum field will be initially 1062set by the TCP/IP module to the checksum of the pseudo header 1063defined by the TCP and UDP specifications. 1064.Pp 1065For outbound packets which have been fragmented 1066by the host CPU, the following will also be true, 1067regardless of the checksum flag settings: 1068.Bl -bullet -offset indent 1069.It 1070all fragments will have the flag 1071.Dv M_FRAG 1072set in their 1073.Va m_flags 1074field; 1075.It 1076the first and the last fragments in the chain will have 1077.Dv M_FIRSTFRAG 1078or 1079.Dv M_LASTFRAG 1080set in their 1081.Va m_flags , 1082correspondingly; 1083.It 1084the first fragment in the chain will have the total number 1085of fragments contained in its 1086.Va csum_data 1087field. 1088.El 1089.Pp 1090The last rule for fragmented packets takes precedence over the one 1091for a TCP or UDP checksum. 1092Nevertheless, offloading a TCP or UDP checksum is possible for a 1093fragmented packet if the flag 1094.Dv CSUM_IP_FRAGS 1095is set in the field 1096.Va ifnet.if_data.ifi_hwassist 1097associated with the network interface. 1098However, in this case the interface is expected to figure out 1099the location of the checksum field within the sequence of fragments 1100by itself because 1101.Va csum_data 1102contains a fragment count instead of a checksum offset value. 1103.Pp 1104On input, an interface indicates the actions it has performed 1105on a packet by setting one or more of the following flags in 1106.Va csum_flags 1107associated with the packet: 1108.Bl -tag -width ".Dv CSUM_IP_CHECKED" -offset indent 1109.It Dv CSUM_IP_CHECKED 1110The IP header checksum has been computed. 1111.It Dv CSUM_IP_VALID 1112The IP header has a valid checksum. 1113This flag can appear only in combination with 1114.Dv CSUM_IP_CHECKED . 1115.It Dv CSUM_DATA_VALID 1116The checksum of the data portion of the IP packet has been computed 1117and stored in the field 1118.Va csum_data 1119in network byte order. 1120.It Dv CSUM_PSEUDO_HDR 1121Can be set only along with 1122.Dv CSUM_DATA_VALID 1123to indicate that the IP data checksum found in 1124.Va csum_data 1125allows for the pseudo header defined by the TCP and UDP specifications. 1126Otherwise the checksum of the pseudo header must be calculated by 1127the host CPU and added to 1128.Va csum_data 1129to obtain the final checksum to be used for TCP or UDP validation purposes. 1130.El 1131.Pp 1132If a particular network interface just indicates success or 1133failure of TCP or UDP checksum validation without returning 1134the exact value of the checksum to the host CPU, its driver can mark 1135.Dv CSUM_DATA_VALID 1136and 1137.Dv CSUM_PSEUDO_HDR 1138in 1139.Va csum_flags , 1140and set 1141.Va csum_data 1142to 1143.Li 0xFFFF 1144hexadecimal to indicate a valid checksum. 1145It is a peculiarity of the algorithm used that the Internet checksum 1146calculated over any valid packet will be 1147.Li 0xFFFF 1148as long as the original checksum field is included. 1149.Pp 1150For inbound packets which are IP fragments, all 1151.Va csum_data 1152fields will be summed during reassembly to obtain the final checksum 1153value passed to an upper layer in the 1154.Va csum_data 1155field of the reassembled packet. 1156The 1157.Va csum_flags 1158fields of all fragments will be consolidated using logical AND 1159to obtain the final value for 1160.Va csum_flags . 1161Thus, in order to successfully 1162offload checksum computation for fragmented data, 1163all fragments should have the same value of 1164.Va csum_flags . 1165.Sh STRESS TESTING 1166When running a kernel compiled with the option 1167.Dv MBUF_STRESS_TEST , 1168the following 1169.Xr sysctl 8 Ns 1170-controlled options may be used to create 1171various failure/extreme cases for testing of network drivers 1172and other parts of the kernel that rely on 1173.Vt mbufs . 1174.Bl -tag -width ident 1175.It Va net.inet.ip.mbuf_frag_size 1176Causes 1177.Fn ip_output 1178to fragment outgoing 1179.Vt mbuf chains 1180into fragments of the specified size. 1181Setting this variable to 1 is an excellent way to 1182test the long 1183.Vt mbuf chain 1184handling ability of network drivers. 1185.It Va kern.ipc.m_defragrandomfailures 1186Causes the function 1187.Fn m_defrag 1188to randomly fail, returning 1189.Dv NULL . 1190Any piece of code which uses 1191.Fn m_defrag 1192should be tested with this feature. 1193.El 1194.Sh RETURN VALUES 1195See above. 1196.Sh SEE ALSO 1197.Xr ifnet 9 , 1198.Xr mbuf_tags 9 1199.Sh HISTORY 1200.\" Please correct me if I'm wrong 1201.Vt Mbufs 1202appeared in an early version of 1203.Bx . 1204Besides being used for network packets, they were used 1205to store various dynamic structures, such as routing table 1206entries, interface addresses, protocol control blocks, etc. 1207In more recent 1208.Fx 1209use of 1210.Vt mbufs 1211is almost entirely limited to packet storage, with 1212.Xr uma 9 1213zones being used directly to store other network-related memory. 1214.Pp 1215Historically, the 1216.Vt mbuf 1217allocator has been a special-purpose memory allocator able to run in 1218interrupt contexts and allocating from a special kernel address space map. 1219As of 1220.Fx 5.3 , 1221the 1222.Vt mbuf 1223allocator is a wrapper around 1224.Xr uma 9 , 1225allowing caching of 1226.Vt mbufs , 1227clusters, and 1228.Vt mbuf 1229+ cluster pairs in per-CPU caches, as well as bringing other benefits of 1230slab allocation. 1231.Sh AUTHORS 1232The original 1233.Nm 1234manual page was written by Yar Tikhiy. 1235The 1236.Xr uma 9 1237.Vt mbuf 1238allocator was written by Bosko Milekic. 1239