1df8bae1dSRodney W. Grimes /* 2df8bae1dSRodney W. Grimes * Copyright (c) 1982, 1986, 1989, 1991, 1993 3df8bae1dSRodney W. Grimes * The Regents of the University of California. All rights reserved. 4df8bae1dSRodney W. Grimes * 5df8bae1dSRodney W. Grimes * Redistribution and use in source and binary forms, with or without 6df8bae1dSRodney W. Grimes * modification, are permitted provided that the following conditions 7df8bae1dSRodney W. Grimes * are met: 8df8bae1dSRodney W. Grimes * 1. Redistributions of source code must retain the above copyright 9df8bae1dSRodney W. Grimes * notice, this list of conditions and the following disclaimer. 10df8bae1dSRodney W. Grimes * 2. Redistributions in binary form must reproduce the above copyright 11df8bae1dSRodney W. Grimes * notice, this list of conditions and the following disclaimer in the 12df8bae1dSRodney W. Grimes * documentation and/or other materials provided with the distribution. 13df8bae1dSRodney W. Grimes * 3. All advertising materials mentioning features or use of this software 14df8bae1dSRodney W. Grimes * must display the following acknowledgement: 15df8bae1dSRodney W. Grimes * This product includes software developed by the University of 16df8bae1dSRodney W. Grimes * California, Berkeley and its contributors. 17df8bae1dSRodney W. Grimes * 4. Neither the name of the University nor the names of its contributors 18df8bae1dSRodney W. Grimes * may be used to endorse or promote products derived from this software 19df8bae1dSRodney W. Grimes * without specific prior written permission. 20df8bae1dSRodney W. Grimes * 21df8bae1dSRodney W. Grimes * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND 22df8bae1dSRodney W. Grimes * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 23df8bae1dSRodney W. Grimes * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 24df8bae1dSRodney W. Grimes * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE 25df8bae1dSRodney W. Grimes * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 26df8bae1dSRodney W. Grimes * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 27df8bae1dSRodney W. Grimes * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 28df8bae1dSRodney W. Grimes * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 29df8bae1dSRodney W. Grimes * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 30df8bae1dSRodney W. Grimes * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 31df8bae1dSRodney W. Grimes * SUCH DAMAGE. 32df8bae1dSRodney W. Grimes * 33748e0b0aSGarrett Wollman * From: @(#)uipc_usrreq.c 8.3 (Berkeley) 1/4/94 34df8bae1dSRodney W. Grimes */ 35df8bae1dSRodney W. Grimes 36677b542eSDavid E. O'Brien #include <sys/cdefs.h> 37677b542eSDavid E. O'Brien __FBSDID("$FreeBSD$"); 38677b542eSDavid E. O'Brien 39335654d7SRobert Watson #include "opt_mac.h" 40335654d7SRobert Watson 41df8bae1dSRodney W. Grimes #include <sys/param.h> 42fb919e4dSMark Murray #include <sys/domain.h> 43960ed29cSSeigo Tanimura #include <sys/fcntl.h> 44d826c479SBruce Evans #include <sys/malloc.h> /* XXX must be before <sys/file.h> */ 45639acc13SGarrett Wollman #include <sys/file.h> 46960ed29cSSeigo Tanimura #include <sys/filedesc.h> 47960ed29cSSeigo Tanimura #include <sys/jail.h> 48960ed29cSSeigo Tanimura #include <sys/kernel.h> 49960ed29cSSeigo Tanimura #include <sys/lock.h> 506ea48a90SRobert Watson #include <sys/mac.h> 51639acc13SGarrett Wollman #include <sys/mbuf.h> 52960ed29cSSeigo Tanimura #include <sys/mutex.h> 53639acc13SGarrett Wollman #include <sys/namei.h> 54639acc13SGarrett Wollman #include <sys/proc.h> 55df8bae1dSRodney W. Grimes #include <sys/protosw.h> 56960ed29cSSeigo Tanimura #include <sys/resourcevar.h> 57df8bae1dSRodney W. Grimes #include <sys/socket.h> 58df8bae1dSRodney W. Grimes #include <sys/socketvar.h> 59960ed29cSSeigo Tanimura #include <sys/signalvar.h> 60df8bae1dSRodney W. Grimes #include <sys/stat.h> 61960ed29cSSeigo Tanimura #include <sys/sx.h> 62639acc13SGarrett Wollman #include <sys/sysctl.h> 63960ed29cSSeigo Tanimura #include <sys/systm.h> 64639acc13SGarrett Wollman #include <sys/un.h> 6598271db4SGarrett Wollman #include <sys/unpcb.h> 66639acc13SGarrett Wollman #include <sys/vnode.h> 67df8bae1dSRodney W. Grimes 689e9d298aSJeff Roberson #include <vm/uma.h> 6998271db4SGarrett Wollman 709e9d298aSJeff Roberson static uma_zone_t unp_zone; 7198271db4SGarrett Wollman static unp_gen_t unp_gencnt; 7298271db4SGarrett Wollman static u_int unp_count; 7398271db4SGarrett Wollman 7498271db4SGarrett Wollman static struct unp_head unp_shead, unp_dhead; 7598271db4SGarrett Wollman 76df8bae1dSRodney W. Grimes /* 77df8bae1dSRodney W. Grimes * Unix communications domain. 78df8bae1dSRodney W. Grimes * 79df8bae1dSRodney W. Grimes * TODO: 80df8bae1dSRodney W. Grimes * SEQPACKET, RDM 81df8bae1dSRodney W. Grimes * rethink name space problems 82df8bae1dSRodney W. Grimes * need a proper out-of-band 8398271db4SGarrett Wollman * lock pushdown 84df8bae1dSRodney W. Grimes */ 85f708ef1bSPoul-Henning Kamp static struct sockaddr sun_noname = { sizeof(sun_noname), AF_LOCAL }; 86f708ef1bSPoul-Henning Kamp static ino_t unp_ino; /* prototype for fake inode numbers */ 87f708ef1bSPoul-Henning Kamp 884d77a549SAlfred Perlstein static int unp_attach(struct socket *); 894d77a549SAlfred Perlstein static void unp_detach(struct unpcb *); 904d77a549SAlfred Perlstein static int unp_bind(struct unpcb *,struct sockaddr *, struct thread *); 9170f52b48SBruce Evans static int unp_connect(struct socket *,struct sockaddr *, struct thread *); 924d77a549SAlfred Perlstein static void unp_disconnect(struct unpcb *); 934d77a549SAlfred Perlstein static void unp_shutdown(struct unpcb *); 944d77a549SAlfred Perlstein static void unp_drop(struct unpcb *, int); 954d77a549SAlfred Perlstein static void unp_gc(void); 964d77a549SAlfred Perlstein static void unp_scan(struct mbuf *, void (*)(struct file *)); 974d77a549SAlfred Perlstein static void unp_mark(struct file *); 984d77a549SAlfred Perlstein static void unp_discard(struct file *); 994d77a549SAlfred Perlstein static void unp_freerights(struct file **, int); 1004d77a549SAlfred Perlstein static int unp_internalize(struct mbuf **, struct thread *); 1014d77a549SAlfred Perlstein static int unp_listen(struct unpcb *, struct thread *); 102f708ef1bSPoul-Henning Kamp 103a29f300eSGarrett Wollman static int 104a29f300eSGarrett Wollman uipc_abort(struct socket *so) 105df8bae1dSRodney W. Grimes { 106df8bae1dSRodney W. Grimes struct unpcb *unp = sotounpcb(so); 107df8bae1dSRodney W. Grimes 108a29f300eSGarrett Wollman if (unp == 0) 109a29f300eSGarrett Wollman return EINVAL; 110a29f300eSGarrett Wollman unp_drop(unp, ECONNABORTED); 111ddb7d629SIan Dowse unp_detach(unp); 112ddb7d629SIan Dowse sotryfree(so); 113a29f300eSGarrett Wollman return 0; 114df8bae1dSRodney W. Grimes } 115df8bae1dSRodney W. Grimes 116a29f300eSGarrett Wollman static int 11757bf258eSGarrett Wollman uipc_accept(struct socket *so, struct sockaddr **nam) 118a29f300eSGarrett Wollman { 119a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 120df8bae1dSRodney W. Grimes 121a29f300eSGarrett Wollman if (unp == 0) 122a29f300eSGarrett Wollman return EINVAL; 123df8bae1dSRodney W. Grimes 124df8bae1dSRodney W. Grimes /* 125df8bae1dSRodney W. Grimes * Pass back name of connected socket, 126df8bae1dSRodney W. Grimes * if it was bound and we are still connected 127df8bae1dSRodney W. Grimes * (our peer may have closed already!). 128df8bae1dSRodney W. Grimes */ 129df8bae1dSRodney W. Grimes if (unp->unp_conn && unp->unp_conn->unp_addr) { 13057bf258eSGarrett Wollman *nam = dup_sockaddr((struct sockaddr *)unp->unp_conn->unp_addr, 13157bf258eSGarrett Wollman 1); 132df8bae1dSRodney W. Grimes } else { 13357bf258eSGarrett Wollman *nam = dup_sockaddr((struct sockaddr *)&sun_noname, 1); 134df8bae1dSRodney W. Grimes } 135a29f300eSGarrett Wollman return 0; 136a29f300eSGarrett Wollman } 137df8bae1dSRodney W. Grimes 138a29f300eSGarrett Wollman static int 139b40ce416SJulian Elischer uipc_attach(struct socket *so, int proto, struct thread *td) 140a29f300eSGarrett Wollman { 141a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 142df8bae1dSRodney W. Grimes 143a29f300eSGarrett Wollman if (unp != 0) 144a29f300eSGarrett Wollman return EISCONN; 145a29f300eSGarrett Wollman return unp_attach(so); 146a29f300eSGarrett Wollman } 147a29f300eSGarrett Wollman 148a29f300eSGarrett Wollman static int 149b40ce416SJulian Elischer uipc_bind(struct socket *so, struct sockaddr *nam, struct thread *td) 150a29f300eSGarrett Wollman { 151a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 152a29f300eSGarrett Wollman 153a29f300eSGarrett Wollman if (unp == 0) 154a29f300eSGarrett Wollman return EINVAL; 155a29f300eSGarrett Wollman 156b40ce416SJulian Elischer return unp_bind(unp, nam, td); 157a29f300eSGarrett Wollman } 158a29f300eSGarrett Wollman 159a29f300eSGarrett Wollman static int 160b40ce416SJulian Elischer uipc_connect(struct socket *so, struct sockaddr *nam, struct thread *td) 161a29f300eSGarrett Wollman { 162a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 163a29f300eSGarrett Wollman 164a29f300eSGarrett Wollman if (unp == 0) 165a29f300eSGarrett Wollman return EINVAL; 166b40ce416SJulian Elischer return unp_connect(so, nam, curthread); 167a29f300eSGarrett Wollman } 168a29f300eSGarrett Wollman 169a29f300eSGarrett Wollman static int 170a29f300eSGarrett Wollman uipc_connect2(struct socket *so1, struct socket *so2) 171a29f300eSGarrett Wollman { 172a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so1); 173a29f300eSGarrett Wollman 174a29f300eSGarrett Wollman if (unp == 0) 175a29f300eSGarrett Wollman return EINVAL; 176a29f300eSGarrett Wollman 177a29f300eSGarrett Wollman return unp_connect2(so1, so2); 178a29f300eSGarrett Wollman } 179a29f300eSGarrett Wollman 180a29f300eSGarrett Wollman /* control is EOPNOTSUPP */ 181a29f300eSGarrett Wollman 182a29f300eSGarrett Wollman static int 183a29f300eSGarrett Wollman uipc_detach(struct socket *so) 184a29f300eSGarrett Wollman { 185a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 186a29f300eSGarrett Wollman 187a29f300eSGarrett Wollman if (unp == 0) 188a29f300eSGarrett Wollman return EINVAL; 189a29f300eSGarrett Wollman 190a29f300eSGarrett Wollman unp_detach(unp); 191a29f300eSGarrett Wollman return 0; 192a29f300eSGarrett Wollman } 193a29f300eSGarrett Wollman 194a29f300eSGarrett Wollman static int 195a29f300eSGarrett Wollman uipc_disconnect(struct socket *so) 196a29f300eSGarrett Wollman { 197a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 198a29f300eSGarrett Wollman 199a29f300eSGarrett Wollman if (unp == 0) 200a29f300eSGarrett Wollman return EINVAL; 201a29f300eSGarrett Wollman unp_disconnect(unp); 202a29f300eSGarrett Wollman return 0; 203a29f300eSGarrett Wollman } 204a29f300eSGarrett Wollman 205a29f300eSGarrett Wollman static int 206b40ce416SJulian Elischer uipc_listen(struct socket *so, struct thread *td) 207a29f300eSGarrett Wollman { 208a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 209a29f300eSGarrett Wollman 210a29f300eSGarrett Wollman if (unp == 0 || unp->unp_vnode == 0) 211a29f300eSGarrett Wollman return EINVAL; 2126f105b34SJohn Baldwin return unp_listen(unp, td); 213a29f300eSGarrett Wollman } 214a29f300eSGarrett Wollman 215a29f300eSGarrett Wollman static int 21657bf258eSGarrett Wollman uipc_peeraddr(struct socket *so, struct sockaddr **nam) 217a29f300eSGarrett Wollman { 218a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 219a29f300eSGarrett Wollman 220a29f300eSGarrett Wollman if (unp == 0) 221a29f300eSGarrett Wollman return EINVAL; 22257bf258eSGarrett Wollman if (unp->unp_conn && unp->unp_conn->unp_addr) 22357bf258eSGarrett Wollman *nam = dup_sockaddr((struct sockaddr *)unp->unp_conn->unp_addr, 22457bf258eSGarrett Wollman 1); 225bdc5f6a3SHajimu UMEMOTO else { 226bdc5f6a3SHajimu UMEMOTO /* 227bdc5f6a3SHajimu UMEMOTO * XXX: It seems that this test always fails even when 228bdc5f6a3SHajimu UMEMOTO * connection is established. So, this else clause is 229bdc5f6a3SHajimu UMEMOTO * added as workaround to return PF_LOCAL sockaddr. 230bdc5f6a3SHajimu UMEMOTO */ 23156b3905fSHajimu UMEMOTO *nam = dup_sockaddr((struct sockaddr *)&sun_noname, 1); 232bdc5f6a3SHajimu UMEMOTO } 233a29f300eSGarrett Wollman return 0; 234a29f300eSGarrett Wollman } 235a29f300eSGarrett Wollman 236a29f300eSGarrett Wollman static int 237a29f300eSGarrett Wollman uipc_rcvd(struct socket *so, int flags) 238a29f300eSGarrett Wollman { 239a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 240a29f300eSGarrett Wollman struct socket *so2; 2416aef685fSBrian Feldman u_long newhiwat; 242a29f300eSGarrett Wollman 243a29f300eSGarrett Wollman if (unp == 0) 244a29f300eSGarrett Wollman return EINVAL; 245df8bae1dSRodney W. Grimes switch (so->so_type) { 246df8bae1dSRodney W. Grimes case SOCK_DGRAM: 247a29f300eSGarrett Wollman panic("uipc_rcvd DGRAM?"); 248df8bae1dSRodney W. Grimes /*NOTREACHED*/ 249df8bae1dSRodney W. Grimes 250df8bae1dSRodney W. Grimes case SOCK_STREAM: 251df8bae1dSRodney W. Grimes if (unp->unp_conn == 0) 252df8bae1dSRodney W. Grimes break; 253df8bae1dSRodney W. Grimes so2 = unp->unp_conn->unp_socket; 254df8bae1dSRodney W. Grimes /* 255df8bae1dSRodney W. Grimes * Adjust backpressure on sender 256df8bae1dSRodney W. Grimes * and wakeup any waiting to write. 257df8bae1dSRodney W. Grimes */ 258ff8b0106SBrian Feldman so2->so_snd.sb_mbmax += unp->unp_mbcnt - so->so_rcv.sb_mbcnt; 259ff8b0106SBrian Feldman unp->unp_mbcnt = so->so_rcv.sb_mbcnt; 2606aef685fSBrian Feldman newhiwat = so2->so_snd.sb_hiwat + unp->unp_cc - 2616aef685fSBrian Feldman so->so_rcv.sb_cc; 262f535380cSDon Lewis (void)chgsbsize(so2->so_cred->cr_uidinfo, &so2->so_snd.sb_hiwat, 2636aef685fSBrian Feldman newhiwat, RLIM_INFINITY); 264ff8b0106SBrian Feldman unp->unp_cc = so->so_rcv.sb_cc; 265df8bae1dSRodney W. Grimes sowwakeup(so2); 266df8bae1dSRodney W. Grimes break; 267df8bae1dSRodney W. Grimes 268df8bae1dSRodney W. Grimes default: 269a29f300eSGarrett Wollman panic("uipc_rcvd unknown socktype"); 270df8bae1dSRodney W. Grimes } 271a29f300eSGarrett Wollman return 0; 272a29f300eSGarrett Wollman } 273df8bae1dSRodney W. Grimes 274a29f300eSGarrett Wollman /* pru_rcvoob is EOPNOTSUPP */ 275a29f300eSGarrett Wollman 276a29f300eSGarrett Wollman static int 27757bf258eSGarrett Wollman uipc_send(struct socket *so, int flags, struct mbuf *m, struct sockaddr *nam, 278b40ce416SJulian Elischer struct mbuf *control, struct thread *td) 279a29f300eSGarrett Wollman { 280a29f300eSGarrett Wollman int error = 0; 281a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 282a29f300eSGarrett Wollman struct socket *so2; 2836aef685fSBrian Feldman u_long newhiwat; 284a29f300eSGarrett Wollman 285a29f300eSGarrett Wollman if (unp == 0) { 286a29f300eSGarrett Wollman error = EINVAL; 287a29f300eSGarrett Wollman goto release; 288a29f300eSGarrett Wollman } 289a29f300eSGarrett Wollman if (flags & PRUS_OOB) { 290a29f300eSGarrett Wollman error = EOPNOTSUPP; 291a29f300eSGarrett Wollman goto release; 292a29f300eSGarrett Wollman } 293a29f300eSGarrett Wollman 2942bc21ed9SDavid Malone if (control && (error = unp_internalize(&control, td))) 295a29f300eSGarrett Wollman goto release; 296df8bae1dSRodney W. Grimes 297a29f300eSGarrett Wollman switch (so->so_type) { 298a29f300eSGarrett Wollman case SOCK_DGRAM: 299a29f300eSGarrett Wollman { 300df8bae1dSRodney W. Grimes struct sockaddr *from; 301df8bae1dSRodney W. Grimes 302df8bae1dSRodney W. Grimes if (nam) { 303df8bae1dSRodney W. Grimes if (unp->unp_conn) { 304df8bae1dSRodney W. Grimes error = EISCONN; 305df8bae1dSRodney W. Grimes break; 306df8bae1dSRodney W. Grimes } 307b40ce416SJulian Elischer error = unp_connect(so, nam, td); 308df8bae1dSRodney W. Grimes if (error) 309df8bae1dSRodney W. Grimes break; 310df8bae1dSRodney W. Grimes } else { 311df8bae1dSRodney W. Grimes if (unp->unp_conn == 0) { 312df8bae1dSRodney W. Grimes error = ENOTCONN; 313df8bae1dSRodney W. Grimes break; 314df8bae1dSRodney W. Grimes } 315df8bae1dSRodney W. Grimes } 316df8bae1dSRodney W. Grimes so2 = unp->unp_conn->unp_socket; 317df8bae1dSRodney W. Grimes if (unp->unp_addr) 31857bf258eSGarrett Wollman from = (struct sockaddr *)unp->unp_addr; 319df8bae1dSRodney W. Grimes else 320df8bae1dSRodney W. Grimes from = &sun_noname; 321df8bae1dSRodney W. Grimes if (sbappendaddr(&so2->so_rcv, from, m, control)) { 322df8bae1dSRodney W. Grimes sorwakeup(so2); 323df8bae1dSRodney W. Grimes m = 0; 324df8bae1dSRodney W. Grimes control = 0; 325df8bae1dSRodney W. Grimes } else 326df8bae1dSRodney W. Grimes error = ENOBUFS; 327df8bae1dSRodney W. Grimes if (nam) 328df8bae1dSRodney W. Grimes unp_disconnect(unp); 329df8bae1dSRodney W. Grimes break; 330df8bae1dSRodney W. Grimes } 331df8bae1dSRodney W. Grimes 332df8bae1dSRodney W. Grimes case SOCK_STREAM: 3336b8fda4dSGarrett Wollman /* Connect if not connected yet. */ 3346b8fda4dSGarrett Wollman /* 3356b8fda4dSGarrett Wollman * Note: A better implementation would complain 336402cc72dSDavid Greenman * if not equal to the peer's address. 3376b8fda4dSGarrett Wollman */ 338402cc72dSDavid Greenman if ((so->so_state & SS_ISCONNECTED) == 0) { 339402cc72dSDavid Greenman if (nam) { 340b40ce416SJulian Elischer error = unp_connect(so, nam, td); 341402cc72dSDavid Greenman if (error) 3426b8fda4dSGarrett Wollman break; /* XXX */ 343402cc72dSDavid Greenman } else { 344402cc72dSDavid Greenman error = ENOTCONN; 345402cc72dSDavid Greenman break; 346402cc72dSDavid Greenman } 347402cc72dSDavid Greenman } 348402cc72dSDavid Greenman 349df8bae1dSRodney W. Grimes if (so->so_state & SS_CANTSENDMORE) { 350df8bae1dSRodney W. Grimes error = EPIPE; 351df8bae1dSRodney W. Grimes break; 352df8bae1dSRodney W. Grimes } 353df8bae1dSRodney W. Grimes if (unp->unp_conn == 0) 354a29f300eSGarrett Wollman panic("uipc_send connected but no connection?"); 355df8bae1dSRodney W. Grimes so2 = unp->unp_conn->unp_socket; 356df8bae1dSRodney W. Grimes /* 357df8bae1dSRodney W. Grimes * Send to paired receive port, and then reduce 358df8bae1dSRodney W. Grimes * send buffer hiwater marks to maintain backpressure. 359df8bae1dSRodney W. Grimes * Wake up readers. 360df8bae1dSRodney W. Grimes */ 361df8bae1dSRodney W. Grimes if (control) { 362ff8b0106SBrian Feldman if (sbappendcontrol(&so2->so_rcv, m, control)) 363df8bae1dSRodney W. Grimes control = 0; 364df8bae1dSRodney W. Grimes } else 365ff8b0106SBrian Feldman sbappend(&so2->so_rcv, m); 366ff8b0106SBrian Feldman so->so_snd.sb_mbmax -= 367ff8b0106SBrian Feldman so2->so_rcv.sb_mbcnt - unp->unp_conn->unp_mbcnt; 368ff8b0106SBrian Feldman unp->unp_conn->unp_mbcnt = so2->so_rcv.sb_mbcnt; 3696aef685fSBrian Feldman newhiwat = so->so_snd.sb_hiwat - 3706aef685fSBrian Feldman (so2->so_rcv.sb_cc - unp->unp_conn->unp_cc); 371f535380cSDon Lewis (void)chgsbsize(so->so_cred->cr_uidinfo, &so->so_snd.sb_hiwat, 3726aef685fSBrian Feldman newhiwat, RLIM_INFINITY); 373ff8b0106SBrian Feldman unp->unp_conn->unp_cc = so2->so_rcv.sb_cc; 374df8bae1dSRodney W. Grimes sorwakeup(so2); 375df8bae1dSRodney W. Grimes m = 0; 376df8bae1dSRodney W. Grimes break; 377df8bae1dSRodney W. Grimes 378df8bae1dSRodney W. Grimes default: 379a29f300eSGarrett Wollman panic("uipc_send unknown socktype"); 380df8bae1dSRodney W. Grimes } 381a29f300eSGarrett Wollman 3826b8fda4dSGarrett Wollman /* 3836b8fda4dSGarrett Wollman * SEND_EOF is equivalent to a SEND followed by 3846b8fda4dSGarrett Wollman * a SHUTDOWN. 3856b8fda4dSGarrett Wollman */ 386a29f300eSGarrett Wollman if (flags & PRUS_EOF) { 3876b8fda4dSGarrett Wollman socantsendmore(so); 3886b8fda4dSGarrett Wollman unp_shutdown(unp); 3896b8fda4dSGarrett Wollman } 390df8bae1dSRodney W. Grimes 391bd508d39SDon Lewis if (control && error != 0) 392bd508d39SDon Lewis unp_dispose(control); 393bd508d39SDon Lewis 394a29f300eSGarrett Wollman release: 395a29f300eSGarrett Wollman if (control) 396a29f300eSGarrett Wollman m_freem(control); 397a29f300eSGarrett Wollman if (m) 398a29f300eSGarrett Wollman m_freem(m); 399a29f300eSGarrett Wollman return error; 400a29f300eSGarrett Wollman } 401df8bae1dSRodney W. Grimes 402a29f300eSGarrett Wollman static int 403a29f300eSGarrett Wollman uipc_sense(struct socket *so, struct stat *sb) 404a29f300eSGarrett Wollman { 405a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 406a29f300eSGarrett Wollman struct socket *so2; 407a29f300eSGarrett Wollman 408a29f300eSGarrett Wollman if (unp == 0) 409a29f300eSGarrett Wollman return EINVAL; 410a29f300eSGarrett Wollman sb->st_blksize = so->so_snd.sb_hiwat; 411df8bae1dSRodney W. Grimes if (so->so_type == SOCK_STREAM && unp->unp_conn != 0) { 412df8bae1dSRodney W. Grimes so2 = unp->unp_conn->unp_socket; 413a29f300eSGarrett Wollman sb->st_blksize += so2->so_rcv.sb_cc; 414df8bae1dSRodney W. Grimes } 415bfbb9ce6SPoul-Henning Kamp sb->st_dev = NOUDEV; 416df8bae1dSRodney W. Grimes if (unp->unp_ino == 0) 4176f782c46SJeffrey Hsu unp->unp_ino = (++unp_ino == 0) ? ++unp_ino : unp_ino; 418a29f300eSGarrett Wollman sb->st_ino = unp->unp_ino; 419df8bae1dSRodney W. Grimes return (0); 420a29f300eSGarrett Wollman } 421df8bae1dSRodney W. Grimes 422a29f300eSGarrett Wollman static int 423a29f300eSGarrett Wollman uipc_shutdown(struct socket *so) 424a29f300eSGarrett Wollman { 425a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 426df8bae1dSRodney W. Grimes 427a29f300eSGarrett Wollman if (unp == 0) 428a29f300eSGarrett Wollman return EINVAL; 429a29f300eSGarrett Wollman socantsendmore(so); 430a29f300eSGarrett Wollman unp_shutdown(unp); 431a29f300eSGarrett Wollman return 0; 432a29f300eSGarrett Wollman } 433df8bae1dSRodney W. Grimes 434a29f300eSGarrett Wollman static int 43557bf258eSGarrett Wollman uipc_sockaddr(struct socket *so, struct sockaddr **nam) 436a29f300eSGarrett Wollman { 437a29f300eSGarrett Wollman struct unpcb *unp = sotounpcb(so); 438a29f300eSGarrett Wollman 439a29f300eSGarrett Wollman if (unp == 0) 440a29f300eSGarrett Wollman return EINVAL; 44157bf258eSGarrett Wollman if (unp->unp_addr) 44257bf258eSGarrett Wollman *nam = dup_sockaddr((struct sockaddr *)unp->unp_addr, 1); 44383f3198bSThomas Moestl else 44483f3198bSThomas Moestl *nam = dup_sockaddr((struct sockaddr *)&sun_noname, 1); 445a29f300eSGarrett Wollman return 0; 446df8bae1dSRodney W. Grimes } 447a29f300eSGarrett Wollman 448a29f300eSGarrett Wollman struct pr_usrreqs uipc_usrreqs = { 449a29f300eSGarrett Wollman uipc_abort, uipc_accept, uipc_attach, uipc_bind, uipc_connect, 450a29f300eSGarrett Wollman uipc_connect2, pru_control_notsupp, uipc_detach, uipc_disconnect, 451a29f300eSGarrett Wollman uipc_listen, uipc_peeraddr, uipc_rcvd, pru_rcvoob_notsupp, 452a29f300eSGarrett Wollman uipc_send, uipc_sense, uipc_shutdown, uipc_sockaddr, 45351338ea8SPeter Wemm sosend, soreceive, sopoll 454a29f300eSGarrett Wollman }; 455df8bae1dSRodney W. Grimes 4560c1bb4fbSDima Dorfman int 4570c1bb4fbSDima Dorfman uipc_ctloutput(so, sopt) 4580c1bb4fbSDima Dorfman struct socket *so; 4590c1bb4fbSDima Dorfman struct sockopt *sopt; 4600c1bb4fbSDima Dorfman { 4610c1bb4fbSDima Dorfman struct unpcb *unp = sotounpcb(so); 4620c1bb4fbSDima Dorfman int error; 4630c1bb4fbSDima Dorfman 4640c1bb4fbSDima Dorfman switch (sopt->sopt_dir) { 4650c1bb4fbSDima Dorfman case SOPT_GET: 4660c1bb4fbSDima Dorfman switch (sopt->sopt_name) { 4670c1bb4fbSDima Dorfman case LOCAL_PEERCRED: 4680c1bb4fbSDima Dorfman if (unp->unp_flags & UNP_HAVEPC) 4690c1bb4fbSDima Dorfman error = sooptcopyout(sopt, &unp->unp_peercred, 4700c1bb4fbSDima Dorfman sizeof(unp->unp_peercred)); 4710c1bb4fbSDima Dorfman else { 4720c1bb4fbSDima Dorfman if (so->so_type == SOCK_STREAM) 4730c1bb4fbSDima Dorfman error = ENOTCONN; 4740c1bb4fbSDima Dorfman else 4750c1bb4fbSDima Dorfman error = EINVAL; 4760c1bb4fbSDima Dorfman } 4770c1bb4fbSDima Dorfman break; 4780c1bb4fbSDima Dorfman default: 4790c1bb4fbSDima Dorfman error = EOPNOTSUPP; 4800c1bb4fbSDima Dorfman break; 4810c1bb4fbSDima Dorfman } 4820c1bb4fbSDima Dorfman break; 4830c1bb4fbSDima Dorfman case SOPT_SET: 4840c1bb4fbSDima Dorfman default: 4850c1bb4fbSDima Dorfman error = EOPNOTSUPP; 4860c1bb4fbSDima Dorfman break; 4870c1bb4fbSDima Dorfman } 4880c1bb4fbSDima Dorfman return (error); 4890c1bb4fbSDima Dorfman } 4900c1bb4fbSDima Dorfman 491df8bae1dSRodney W. Grimes /* 492df8bae1dSRodney W. Grimes * Both send and receive buffers are allocated PIPSIZ bytes of buffering 493df8bae1dSRodney W. Grimes * for stream sockets, although the total for sender and receiver is 494df8bae1dSRodney W. Grimes * actually only PIPSIZ. 495df8bae1dSRodney W. Grimes * Datagram sockets really use the sendspace as the maximum datagram size, 496df8bae1dSRodney W. Grimes * and don't really want to reserve the sendspace. Their recvspace should 497df8bae1dSRodney W. Grimes * be large enough for at least one max-size datagram plus address. 498df8bae1dSRodney W. Grimes */ 4995dce41c5SJohn Dyson #ifndef PIPSIZ 5005dce41c5SJohn Dyson #define PIPSIZ 8192 5015dce41c5SJohn Dyson #endif 502f708ef1bSPoul-Henning Kamp static u_long unpst_sendspace = PIPSIZ; 503f708ef1bSPoul-Henning Kamp static u_long unpst_recvspace = PIPSIZ; 504f708ef1bSPoul-Henning Kamp static u_long unpdg_sendspace = 2*1024; /* really max datagram size */ 505f708ef1bSPoul-Henning Kamp static u_long unpdg_recvspace = 4*1024; 506df8bae1dSRodney W. Grimes 507f708ef1bSPoul-Henning Kamp static int unp_rights; /* file descriptors in flight */ 508df8bae1dSRodney W. Grimes 509ce02431fSDoug Rabson SYSCTL_DECL(_net_local_stream); 510639acc13SGarrett Wollman SYSCTL_INT(_net_local_stream, OID_AUTO, sendspace, CTLFLAG_RW, 511639acc13SGarrett Wollman &unpst_sendspace, 0, ""); 512639acc13SGarrett Wollman SYSCTL_INT(_net_local_stream, OID_AUTO, recvspace, CTLFLAG_RW, 513639acc13SGarrett Wollman &unpst_recvspace, 0, ""); 514ce02431fSDoug Rabson SYSCTL_DECL(_net_local_dgram); 515639acc13SGarrett Wollman SYSCTL_INT(_net_local_dgram, OID_AUTO, maxdgram, CTLFLAG_RW, 516639acc13SGarrett Wollman &unpdg_sendspace, 0, ""); 517639acc13SGarrett Wollman SYSCTL_INT(_net_local_dgram, OID_AUTO, recvspace, CTLFLAG_RW, 518639acc13SGarrett Wollman &unpdg_recvspace, 0, ""); 519ce02431fSDoug Rabson SYSCTL_DECL(_net_local); 520639acc13SGarrett Wollman SYSCTL_INT(_net_local, OID_AUTO, inflight, CTLFLAG_RD, &unp_rights, 0, ""); 521639acc13SGarrett Wollman 522f708ef1bSPoul-Henning Kamp static int 523df8bae1dSRodney W. Grimes unp_attach(so) 524df8bae1dSRodney W. Grimes struct socket *so; 525df8bae1dSRodney W. Grimes { 526df8bae1dSRodney W. Grimes register struct unpcb *unp; 527df8bae1dSRodney W. Grimes int error; 528df8bae1dSRodney W. Grimes 529df8bae1dSRodney W. Grimes if (so->so_snd.sb_hiwat == 0 || so->so_rcv.sb_hiwat == 0) { 530df8bae1dSRodney W. Grimes switch (so->so_type) { 531df8bae1dSRodney W. Grimes 532df8bae1dSRodney W. Grimes case SOCK_STREAM: 533df8bae1dSRodney W. Grimes error = soreserve(so, unpst_sendspace, unpst_recvspace); 534df8bae1dSRodney W. Grimes break; 535df8bae1dSRodney W. Grimes 536df8bae1dSRodney W. Grimes case SOCK_DGRAM: 537df8bae1dSRodney W. Grimes error = soreserve(so, unpdg_sendspace, unpdg_recvspace); 538df8bae1dSRodney W. Grimes break; 539df8bae1dSRodney W. Grimes 540df8bae1dSRodney W. Grimes default: 541df8bae1dSRodney W. Grimes panic("unp_attach"); 542df8bae1dSRodney W. Grimes } 543df8bae1dSRodney W. Grimes if (error) 544df8bae1dSRodney W. Grimes return (error); 545df8bae1dSRodney W. Grimes } 546a163d034SWarner Losh unp = uma_zalloc(unp_zone, M_WAITOK); 54757bf258eSGarrett Wollman if (unp == NULL) 548df8bae1dSRodney W. Grimes return (ENOBUFS); 54957bf258eSGarrett Wollman bzero(unp, sizeof *unp); 55098271db4SGarrett Wollman unp->unp_gencnt = ++unp_gencnt; 55198271db4SGarrett Wollman unp_count++; 55298271db4SGarrett Wollman LIST_INIT(&unp->unp_refs); 553df8bae1dSRodney W. Grimes unp->unp_socket = so; 55498271db4SGarrett Wollman LIST_INSERT_HEAD(so->so_type == SOCK_DGRAM ? &unp_dhead 55598271db4SGarrett Wollman : &unp_shead, unp, unp_link); 556210a5a71SAlfred Perlstein so->so_pcb = unp; 557df8bae1dSRodney W. Grimes return (0); 558df8bae1dSRodney W. Grimes } 559df8bae1dSRodney W. Grimes 560f708ef1bSPoul-Henning Kamp static void 561df8bae1dSRodney W. Grimes unp_detach(unp) 562df8bae1dSRodney W. Grimes register struct unpcb *unp; 563df8bae1dSRodney W. Grimes { 56498271db4SGarrett Wollman LIST_REMOVE(unp, unp_link); 56598271db4SGarrett Wollman unp->unp_gencnt = ++unp_gencnt; 56698271db4SGarrett Wollman --unp_count; 567df8bae1dSRodney W. Grimes if (unp->unp_vnode) { 568df8bae1dSRodney W. Grimes unp->unp_vnode->v_socket = 0; 569df8bae1dSRodney W. Grimes vrele(unp->unp_vnode); 570df8bae1dSRodney W. Grimes unp->unp_vnode = 0; 571df8bae1dSRodney W. Grimes } 572df8bae1dSRodney W. Grimes if (unp->unp_conn) 573df8bae1dSRodney W. Grimes unp_disconnect(unp); 5742e3c8fcbSPoul-Henning Kamp while (!LIST_EMPTY(&unp->unp_refs)) 5752e3c8fcbSPoul-Henning Kamp unp_drop(LIST_FIRST(&unp->unp_refs), ECONNRESET); 576df8bae1dSRodney W. Grimes soisdisconnected(unp->unp_socket); 577df8bae1dSRodney W. Grimes unp->unp_socket->so_pcb = 0; 578df8bae1dSRodney W. Grimes if (unp_rights) { 579df8bae1dSRodney W. Grimes /* 580df8bae1dSRodney W. Grimes * Normally the receive buffer is flushed later, 581df8bae1dSRodney W. Grimes * in sofree, but if our receive buffer holds references 582df8bae1dSRodney W. Grimes * to descriptors that are now garbage, we will dispose 583df8bae1dSRodney W. Grimes * of those descriptor references after the garbage collector 584df8bae1dSRodney W. Grimes * gets them (resulting in a "panic: closef: count < 0"). 585df8bae1dSRodney W. Grimes */ 586df8bae1dSRodney W. Grimes sorflush(unp->unp_socket); 587df8bae1dSRodney W. Grimes unp_gc(); 588df8bae1dSRodney W. Grimes } 58957bf258eSGarrett Wollman if (unp->unp_addr) 59057bf258eSGarrett Wollman FREE(unp->unp_addr, M_SONAME); 5919e9d298aSJeff Roberson uma_zfree(unp_zone, unp); 592df8bae1dSRodney W. Grimes } 593df8bae1dSRodney W. Grimes 594f708ef1bSPoul-Henning Kamp static int 595b40ce416SJulian Elischer unp_bind(unp, nam, td) 596df8bae1dSRodney W. Grimes struct unpcb *unp; 59757bf258eSGarrett Wollman struct sockaddr *nam; 598b40ce416SJulian Elischer struct thread *td; 599df8bae1dSRodney W. Grimes { 60057bf258eSGarrett Wollman struct sockaddr_un *soun = (struct sockaddr_un *)nam; 601f2a2857bSKirk McKusick struct vnode *vp; 602f2a2857bSKirk McKusick struct mount *mp; 603df8bae1dSRodney W. Grimes struct vattr vattr; 60457bf258eSGarrett Wollman int error, namelen; 605df8bae1dSRodney W. Grimes struct nameidata nd; 6068f364875SJulian Elischer char *buf; 607df8bae1dSRodney W. Grimes 608df8bae1dSRodney W. Grimes if (unp->unp_vnode != NULL) 609df8bae1dSRodney W. Grimes return (EINVAL); 61055c85568SRobert Drehmel 61157bf258eSGarrett Wollman namelen = soun->sun_len - offsetof(struct sockaddr_un, sun_path); 61257bf258eSGarrett Wollman if (namelen <= 0) 61357bf258eSGarrett Wollman return EINVAL; 61455c85568SRobert Drehmel 615a163d034SWarner Losh buf = malloc(namelen + 1, M_TEMP, M_WAITOK); 61655c85568SRobert Drehmel strlcpy(buf, soun->sun_path, namelen + 1); 61755c85568SRobert Drehmel 618f2a2857bSKirk McKusick restart: 619b65f6f6bSRobert Watson NDINIT(&nd, CREATE, NOFOLLOW | LOCKPARENT | SAVENAME, UIO_SYSSPACE, 620b40ce416SJulian Elischer buf, td); 621df8bae1dSRodney W. Grimes /* SHOULD BE ABLE TO ADOPT EXISTING AND wakeup() ALA FIFO's */ 622797f2d22SPoul-Henning Kamp error = namei(&nd); 6238f364875SJulian Elischer if (error) { 6248f364875SJulian Elischer free(buf, M_TEMP); 625ad4ff090SJulian Elischer return (error); 6268f364875SJulian Elischer } 627df8bae1dSRodney W. Grimes vp = nd.ni_vp; 628f2a2857bSKirk McKusick if (vp != NULL || vn_start_write(nd.ni_dvp, &mp, V_NOWAIT) != 0) { 629762e6b85SEivind Eklund NDFREE(&nd, NDF_ONLY_PNBUF); 630df8bae1dSRodney W. Grimes if (nd.ni_dvp == vp) 631df8bae1dSRodney W. Grimes vrele(nd.ni_dvp); 632df8bae1dSRodney W. Grimes else 633df8bae1dSRodney W. Grimes vput(nd.ni_dvp); 634f2a2857bSKirk McKusick if (vp != NULL) { 635df8bae1dSRodney W. Grimes vrele(vp); 6368f364875SJulian Elischer free(buf, M_TEMP); 637df8bae1dSRodney W. Grimes return (EADDRINUSE); 638df8bae1dSRodney W. Grimes } 6398f364875SJulian Elischer error = vn_start_write(NULL, &mp, V_XSLEEP | PCATCH); 6408f364875SJulian Elischer if (error) { 6418f364875SJulian Elischer free(buf, M_TEMP); 642f2a2857bSKirk McKusick return (error); 6438f364875SJulian Elischer } 644f2a2857bSKirk McKusick goto restart; 645f2a2857bSKirk McKusick } 646df8bae1dSRodney W. Grimes VATTR_NULL(&vattr); 647df8bae1dSRodney W. Grimes vattr.va_type = VSOCK; 648b40ce416SJulian Elischer vattr.va_mode = (ACCESSPERMS & ~td->td_proc->p_fd->fd_cmask); 6496ea48a90SRobert Watson #ifdef MAC 6506ea48a90SRobert Watson error = mac_check_vnode_create(td->td_ucred, nd.ni_dvp, &nd.ni_cnd, 6516ea48a90SRobert Watson &vattr); 6526151efaaSRobert Watson #endif 6536ea48a90SRobert Watson if (error == 0) { 654a854ed98SJohn Baldwin VOP_LEASE(nd.ni_dvp, td, td->td_ucred, LEASE_WRITE); 6557be2d300SMike Smith error = VOP_CREATE(nd.ni_dvp, &nd.ni_vp, &nd.ni_cnd, &vattr); 6566ea48a90SRobert Watson } 657762e6b85SEivind Eklund NDFREE(&nd, NDF_ONLY_PNBUF); 6587be2d300SMike Smith vput(nd.ni_dvp); 6598f364875SJulian Elischer if (error) { 6608f364875SJulian Elischer free(buf, M_TEMP); 661df8bae1dSRodney W. Grimes return (error); 6628f364875SJulian Elischer } 663df8bae1dSRodney W. Grimes vp = nd.ni_vp; 664df8bae1dSRodney W. Grimes vp->v_socket = unp->unp_socket; 665df8bae1dSRodney W. Grimes unp->unp_vnode = vp; 66657bf258eSGarrett Wollman unp->unp_addr = (struct sockaddr_un *)dup_sockaddr(nam, 1); 667b40ce416SJulian Elischer VOP_UNLOCK(vp, 0, td); 668f2a2857bSKirk McKusick vn_finished_write(mp); 6698f364875SJulian Elischer free(buf, M_TEMP); 670df8bae1dSRodney W. Grimes return (0); 671df8bae1dSRodney W. Grimes } 672df8bae1dSRodney W. Grimes 673f708ef1bSPoul-Henning Kamp static int 674b40ce416SJulian Elischer unp_connect(so, nam, td) 675df8bae1dSRodney W. Grimes struct socket *so; 67657bf258eSGarrett Wollman struct sockaddr *nam; 677b40ce416SJulian Elischer struct thread *td; 678df8bae1dSRodney W. Grimes { 67957bf258eSGarrett Wollman register struct sockaddr_un *soun = (struct sockaddr_un *)nam; 680df8bae1dSRodney W. Grimes register struct vnode *vp; 681df8bae1dSRodney W. Grimes register struct socket *so2, *so3; 6820c1bb4fbSDima Dorfman struct unpcb *unp, *unp2, *unp3; 68357bf258eSGarrett Wollman int error, len; 684df8bae1dSRodney W. Grimes struct nameidata nd; 68557bf258eSGarrett Wollman char buf[SOCK_MAXADDRLEN]; 686df8bae1dSRodney W. Grimes 68757bf258eSGarrett Wollman len = nam->sa_len - offsetof(struct sockaddr_un, sun_path); 68857bf258eSGarrett Wollman if (len <= 0) 68957bf258eSGarrett Wollman return EINVAL; 69055c85568SRobert Drehmel strlcpy(buf, soun->sun_path, len + 1); 69157bf258eSGarrett Wollman 692b40ce416SJulian Elischer NDINIT(&nd, LOOKUP, FOLLOW | LOCKLEAF, UIO_SYSSPACE, buf, td); 693797f2d22SPoul-Henning Kamp error = namei(&nd); 694797f2d22SPoul-Henning Kamp if (error) 695df8bae1dSRodney W. Grimes return (error); 696df8bae1dSRodney W. Grimes vp = nd.ni_vp; 697762e6b85SEivind Eklund NDFREE(&nd, NDF_ONLY_PNBUF); 698df8bae1dSRodney W. Grimes if (vp->v_type != VSOCK) { 699df8bae1dSRodney W. Grimes error = ENOTSOCK; 700df8bae1dSRodney W. Grimes goto bad; 701df8bae1dSRodney W. Grimes } 702a854ed98SJohn Baldwin error = VOP_ACCESS(vp, VWRITE, td->td_ucred, td); 703797f2d22SPoul-Henning Kamp if (error) 704df8bae1dSRodney W. Grimes goto bad; 705df8bae1dSRodney W. Grimes so2 = vp->v_socket; 706df8bae1dSRodney W. Grimes if (so2 == 0) { 707df8bae1dSRodney W. Grimes error = ECONNREFUSED; 708df8bae1dSRodney W. Grimes goto bad; 709df8bae1dSRodney W. Grimes } 710df8bae1dSRodney W. Grimes if (so->so_type != so2->so_type) { 711df8bae1dSRodney W. Grimes error = EPROTOTYPE; 712df8bae1dSRodney W. Grimes goto bad; 713df8bae1dSRodney W. Grimes } 714df8bae1dSRodney W. Grimes if (so->so_proto->pr_flags & PR_CONNREQUIRED) { 7154cc20ab1SSeigo Tanimura if ((so2->so_options & SO_ACCEPTCONN) == 0 || 7164cc20ab1SSeigo Tanimura (so3 = sonewconn(so2, 0)) == 0) { 717df8bae1dSRodney W. Grimes error = ECONNREFUSED; 718df8bae1dSRodney W. Grimes goto bad; 719df8bae1dSRodney W. Grimes } 7200c1bb4fbSDima Dorfman unp = sotounpcb(so); 721df8bae1dSRodney W. Grimes unp2 = sotounpcb(so2); 722df8bae1dSRodney W. Grimes unp3 = sotounpcb(so3); 723df8bae1dSRodney W. Grimes if (unp2->unp_addr) 72457bf258eSGarrett Wollman unp3->unp_addr = (struct sockaddr_un *) 72557bf258eSGarrett Wollman dup_sockaddr((struct sockaddr *) 72657bf258eSGarrett Wollman unp2->unp_addr, 1); 7270c1bb4fbSDima Dorfman 7280c1bb4fbSDima Dorfman /* 7290c1bb4fbSDima Dorfman * unp_peercred management: 7300c1bb4fbSDima Dorfman * 7310c1bb4fbSDima Dorfman * The connecter's (client's) credentials are copied 7320c1bb4fbSDima Dorfman * from its process structure at the time of connect() 7330c1bb4fbSDima Dorfman * (which is now). 7340c1bb4fbSDima Dorfman */ 735a854ed98SJohn Baldwin cru2x(td->td_ucred, &unp3->unp_peercred); 7360c1bb4fbSDima Dorfman unp3->unp_flags |= UNP_HAVEPC; 7370c1bb4fbSDima Dorfman /* 7380c1bb4fbSDima Dorfman * The receiver's (server's) credentials are copied 7390c1bb4fbSDima Dorfman * from the unp_peercred member of socket on which the 7400c1bb4fbSDima Dorfman * former called listen(); unp_listen() cached that 7410c1bb4fbSDima Dorfman * process's credentials at that time so we can use 7420c1bb4fbSDima Dorfman * them now. 7430c1bb4fbSDima Dorfman */ 7440c1bb4fbSDima Dorfman KASSERT(unp2->unp_flags & UNP_HAVEPCCACHED, 7450c1bb4fbSDima Dorfman ("unp_connect: listener without cached peercred")); 7460c1bb4fbSDima Dorfman memcpy(&unp->unp_peercred, &unp2->unp_peercred, 7470c1bb4fbSDima Dorfman sizeof(unp->unp_peercred)); 7480c1bb4fbSDima Dorfman unp->unp_flags |= UNP_HAVEPC; 749335654d7SRobert Watson #ifdef MAC 750335654d7SRobert Watson mac_set_socket_peer_from_socket(so, so3); 751335654d7SRobert Watson mac_set_socket_peer_from_socket(so3, so); 752335654d7SRobert Watson #endif 7530c1bb4fbSDima Dorfman 754df8bae1dSRodney W. Grimes so2 = so3; 755df8bae1dSRodney W. Grimes } 756df8bae1dSRodney W. Grimes error = unp_connect2(so, so2); 757df8bae1dSRodney W. Grimes bad: 758df8bae1dSRodney W. Grimes vput(vp); 759df8bae1dSRodney W. Grimes return (error); 760df8bae1dSRodney W. Grimes } 761df8bae1dSRodney W. Grimes 76226f9a767SRodney W. Grimes int 763df8bae1dSRodney W. Grimes unp_connect2(so, so2) 764df8bae1dSRodney W. Grimes register struct socket *so; 765df8bae1dSRodney W. Grimes register struct socket *so2; 766df8bae1dSRodney W. Grimes { 767df8bae1dSRodney W. Grimes register struct unpcb *unp = sotounpcb(so); 768df8bae1dSRodney W. Grimes register struct unpcb *unp2; 769df8bae1dSRodney W. Grimes 770df8bae1dSRodney W. Grimes if (so2->so_type != so->so_type) 771df8bae1dSRodney W. Grimes return (EPROTOTYPE); 772df8bae1dSRodney W. Grimes unp2 = sotounpcb(so2); 773df8bae1dSRodney W. Grimes unp->unp_conn = unp2; 774df8bae1dSRodney W. Grimes switch (so->so_type) { 775df8bae1dSRodney W. Grimes 776df8bae1dSRodney W. Grimes case SOCK_DGRAM: 77798271db4SGarrett Wollman LIST_INSERT_HEAD(&unp2->unp_refs, unp, unp_reflink); 778df8bae1dSRodney W. Grimes soisconnected(so); 779df8bae1dSRodney W. Grimes break; 780df8bae1dSRodney W. Grimes 781df8bae1dSRodney W. Grimes case SOCK_STREAM: 782df8bae1dSRodney W. Grimes unp2->unp_conn = unp; 783df8bae1dSRodney W. Grimes soisconnected(so); 784df8bae1dSRodney W. Grimes soisconnected(so2); 785df8bae1dSRodney W. Grimes break; 786df8bae1dSRodney W. Grimes 787df8bae1dSRodney W. Grimes default: 788df8bae1dSRodney W. Grimes panic("unp_connect2"); 789df8bae1dSRodney W. Grimes } 790df8bae1dSRodney W. Grimes return (0); 791df8bae1dSRodney W. Grimes } 792df8bae1dSRodney W. Grimes 793f708ef1bSPoul-Henning Kamp static void 794df8bae1dSRodney W. Grimes unp_disconnect(unp) 795df8bae1dSRodney W. Grimes struct unpcb *unp; 796df8bae1dSRodney W. Grimes { 797df8bae1dSRodney W. Grimes register struct unpcb *unp2 = unp->unp_conn; 798df8bae1dSRodney W. Grimes 799df8bae1dSRodney W. Grimes if (unp2 == 0) 800df8bae1dSRodney W. Grimes return; 801df8bae1dSRodney W. Grimes unp->unp_conn = 0; 802df8bae1dSRodney W. Grimes switch (unp->unp_socket->so_type) { 803df8bae1dSRodney W. Grimes 804df8bae1dSRodney W. Grimes case SOCK_DGRAM: 80598271db4SGarrett Wollman LIST_REMOVE(unp, unp_reflink); 806df8bae1dSRodney W. Grimes unp->unp_socket->so_state &= ~SS_ISCONNECTED; 807df8bae1dSRodney W. Grimes break; 808df8bae1dSRodney W. Grimes 809df8bae1dSRodney W. Grimes case SOCK_STREAM: 810df8bae1dSRodney W. Grimes soisdisconnected(unp->unp_socket); 811df8bae1dSRodney W. Grimes unp2->unp_conn = 0; 812df8bae1dSRodney W. Grimes soisdisconnected(unp2->unp_socket); 813df8bae1dSRodney W. Grimes break; 814df8bae1dSRodney W. Grimes } 815df8bae1dSRodney W. Grimes } 816df8bae1dSRodney W. Grimes 817df8bae1dSRodney W. Grimes #ifdef notdef 81826f9a767SRodney W. Grimes void 819df8bae1dSRodney W. Grimes unp_abort(unp) 820df8bae1dSRodney W. Grimes struct unpcb *unp; 821df8bae1dSRodney W. Grimes { 822df8bae1dSRodney W. Grimes 823df8bae1dSRodney W. Grimes unp_detach(unp); 824df8bae1dSRodney W. Grimes } 825df8bae1dSRodney W. Grimes #endif 826df8bae1dSRodney W. Grimes 82798271db4SGarrett Wollman static int 82882d9ae4eSPoul-Henning Kamp unp_pcblist(SYSCTL_HANDLER_ARGS) 82998271db4SGarrett Wollman { 830f5ef029eSPoul-Henning Kamp int error, i, n; 83198271db4SGarrett Wollman struct unpcb *unp, **unp_list; 83298271db4SGarrett Wollman unp_gen_t gencnt; 8338f364875SJulian Elischer struct xunpgen *xug; 83498271db4SGarrett Wollman struct unp_head *head; 8358f364875SJulian Elischer struct xunpcb *xu; 83698271db4SGarrett Wollman 837a23d65bfSBruce Evans head = ((intptr_t)arg1 == SOCK_DGRAM ? &unp_dhead : &unp_shead); 83898271db4SGarrett Wollman 83998271db4SGarrett Wollman /* 84098271db4SGarrett Wollman * The process of preparing the PCB list is too time-consuming and 84198271db4SGarrett Wollman * resource-intensive to repeat twice on every request. 84298271db4SGarrett Wollman */ 84398271db4SGarrett Wollman if (req->oldptr == 0) { 84498271db4SGarrett Wollman n = unp_count; 8458f364875SJulian Elischer req->oldidx = 2 * (sizeof *xug) 84698271db4SGarrett Wollman + (n + n/8) * sizeof(struct xunpcb); 84798271db4SGarrett Wollman return 0; 84898271db4SGarrett Wollman } 84998271db4SGarrett Wollman 85098271db4SGarrett Wollman if (req->newptr != 0) 85198271db4SGarrett Wollman return EPERM; 85298271db4SGarrett Wollman 85398271db4SGarrett Wollman /* 85498271db4SGarrett Wollman * OK, now we're committed to doing something. 85598271db4SGarrett Wollman */ 856a163d034SWarner Losh xug = malloc(sizeof(*xug), M_TEMP, M_WAITOK); 85798271db4SGarrett Wollman gencnt = unp_gencnt; 85898271db4SGarrett Wollman n = unp_count; 85998271db4SGarrett Wollman 8608f364875SJulian Elischer xug->xug_len = sizeof *xug; 8618f364875SJulian Elischer xug->xug_count = n; 8628f364875SJulian Elischer xug->xug_gen = gencnt; 8638f364875SJulian Elischer xug->xug_sogen = so_gencnt; 8648f364875SJulian Elischer error = SYSCTL_OUT(req, xug, sizeof *xug); 8658f364875SJulian Elischer if (error) { 8668f364875SJulian Elischer free(xug, M_TEMP); 86798271db4SGarrett Wollman return error; 8688f364875SJulian Elischer } 86998271db4SGarrett Wollman 870a163d034SWarner Losh unp_list = malloc(n * sizeof *unp_list, M_TEMP, M_WAITOK); 87198271db4SGarrett Wollman 8722e3c8fcbSPoul-Henning Kamp for (unp = LIST_FIRST(head), i = 0; unp && i < n; 8732e3c8fcbSPoul-Henning Kamp unp = LIST_NEXT(unp, unp_link)) { 8748a7d8cc6SRobert Watson if (unp->unp_gencnt <= gencnt) { 875a854ed98SJohn Baldwin if (cr_cansee(req->td->td_ucred, 8768a7d8cc6SRobert Watson unp->unp_socket->so_cred)) 8774787fd37SPaul Saab continue; 87898271db4SGarrett Wollman unp_list[i++] = unp; 87998271db4SGarrett Wollman } 8804787fd37SPaul Saab } 88198271db4SGarrett Wollman n = i; /* in case we lost some during malloc */ 88298271db4SGarrett Wollman 88398271db4SGarrett Wollman error = 0; 884a163d034SWarner Losh xu = malloc(sizeof(*xu), M_TEMP, M_WAITOK); 88598271db4SGarrett Wollman for (i = 0; i < n; i++) { 88698271db4SGarrett Wollman unp = unp_list[i]; 88798271db4SGarrett Wollman if (unp->unp_gencnt <= gencnt) { 8888f364875SJulian Elischer xu->xu_len = sizeof *xu; 8898f364875SJulian Elischer xu->xu_unpp = unp; 89098271db4SGarrett Wollman /* 89198271db4SGarrett Wollman * XXX - need more locking here to protect against 89298271db4SGarrett Wollman * connect/disconnect races for SMP. 89398271db4SGarrett Wollman */ 89498271db4SGarrett Wollman if (unp->unp_addr) 8958f364875SJulian Elischer bcopy(unp->unp_addr, &xu->xu_addr, 89698271db4SGarrett Wollman unp->unp_addr->sun_len); 89798271db4SGarrett Wollman if (unp->unp_conn && unp->unp_conn->unp_addr) 89898271db4SGarrett Wollman bcopy(unp->unp_conn->unp_addr, 8998f364875SJulian Elischer &xu->xu_caddr, 90098271db4SGarrett Wollman unp->unp_conn->unp_addr->sun_len); 9018f364875SJulian Elischer bcopy(unp, &xu->xu_unp, sizeof *unp); 9028f364875SJulian Elischer sotoxsocket(unp->unp_socket, &xu->xu_socket); 9038f364875SJulian Elischer error = SYSCTL_OUT(req, xu, sizeof *xu); 90498271db4SGarrett Wollman } 90598271db4SGarrett Wollman } 9068f364875SJulian Elischer free(xu, M_TEMP); 90798271db4SGarrett Wollman if (!error) { 90898271db4SGarrett Wollman /* 90998271db4SGarrett Wollman * Give the user an updated idea of our state. 91098271db4SGarrett Wollman * If the generation differs from what we told 91198271db4SGarrett Wollman * her before, she knows that something happened 91298271db4SGarrett Wollman * while we were processing this request, and it 91398271db4SGarrett Wollman * might be necessary to retry. 91498271db4SGarrett Wollman */ 9158f364875SJulian Elischer xug->xug_gen = unp_gencnt; 9168f364875SJulian Elischer xug->xug_sogen = so_gencnt; 9178f364875SJulian Elischer xug->xug_count = unp_count; 9188f364875SJulian Elischer error = SYSCTL_OUT(req, xug, sizeof *xug); 91998271db4SGarrett Wollman } 92098271db4SGarrett Wollman free(unp_list, M_TEMP); 9218f364875SJulian Elischer free(xug, M_TEMP); 92298271db4SGarrett Wollman return error; 92398271db4SGarrett Wollman } 92498271db4SGarrett Wollman 92598271db4SGarrett Wollman SYSCTL_PROC(_net_local_dgram, OID_AUTO, pcblist, CTLFLAG_RD, 92698271db4SGarrett Wollman (caddr_t)(long)SOCK_DGRAM, 0, unp_pcblist, "S,xunpcb", 92798271db4SGarrett Wollman "List of active local datagram sockets"); 92898271db4SGarrett Wollman SYSCTL_PROC(_net_local_stream, OID_AUTO, pcblist, CTLFLAG_RD, 92998271db4SGarrett Wollman (caddr_t)(long)SOCK_STREAM, 0, unp_pcblist, "S,xunpcb", 93098271db4SGarrett Wollman "List of active local stream sockets"); 93198271db4SGarrett Wollman 932f708ef1bSPoul-Henning Kamp static void 933df8bae1dSRodney W. Grimes unp_shutdown(unp) 934df8bae1dSRodney W. Grimes struct unpcb *unp; 935df8bae1dSRodney W. Grimes { 936df8bae1dSRodney W. Grimes struct socket *so; 937df8bae1dSRodney W. Grimes 938df8bae1dSRodney W. Grimes if (unp->unp_socket->so_type == SOCK_STREAM && unp->unp_conn && 939df8bae1dSRodney W. Grimes (so = unp->unp_conn->unp_socket)) 940df8bae1dSRodney W. Grimes socantrcvmore(so); 941df8bae1dSRodney W. Grimes } 942df8bae1dSRodney W. Grimes 943f708ef1bSPoul-Henning Kamp static void 944df8bae1dSRodney W. Grimes unp_drop(unp, errno) 945df8bae1dSRodney W. Grimes struct unpcb *unp; 946df8bae1dSRodney W. Grimes int errno; 947df8bae1dSRodney W. Grimes { 948df8bae1dSRodney W. Grimes struct socket *so = unp->unp_socket; 949df8bae1dSRodney W. Grimes 950df8bae1dSRodney W. Grimes so->so_error = errno; 951df8bae1dSRodney W. Grimes unp_disconnect(unp); 952df8bae1dSRodney W. Grimes } 953df8bae1dSRodney W. Grimes 954df8bae1dSRodney W. Grimes #ifdef notdef 95526f9a767SRodney W. Grimes void 956df8bae1dSRodney W. Grimes unp_drain() 957df8bae1dSRodney W. Grimes { 958df8bae1dSRodney W. Grimes 959df8bae1dSRodney W. Grimes } 960df8bae1dSRodney W. Grimes #endif 961df8bae1dSRodney W. Grimes 9622bc21ed9SDavid Malone static void 9632bc21ed9SDavid Malone unp_freerights(rp, fdcount) 9642bc21ed9SDavid Malone struct file **rp; 9652bc21ed9SDavid Malone int fdcount; 966df8bae1dSRodney W. Grimes { 9672bc21ed9SDavid Malone int i; 9682bc21ed9SDavid Malone struct file *fp; 969df8bae1dSRodney W. Grimes 9702bc21ed9SDavid Malone for (i = 0; i < fdcount; i++) { 971df8bae1dSRodney W. Grimes fp = *rp; 9728692c025SYoshinobu Inoue /* 9732bc21ed9SDavid Malone * zero the pointer before calling 9742bc21ed9SDavid Malone * unp_discard since it may end up 9752bc21ed9SDavid Malone * in unp_gc().. 9768692c025SYoshinobu Inoue */ 977df8bae1dSRodney W. Grimes *rp++ = 0; 9788692c025SYoshinobu Inoue unp_discard(fp); 979df8bae1dSRodney W. Grimes } 9802bc21ed9SDavid Malone } 9812bc21ed9SDavid Malone 9822bc21ed9SDavid Malone int 9832bc21ed9SDavid Malone unp_externalize(control, controlp) 9842bc21ed9SDavid Malone struct mbuf *control, **controlp; 9852bc21ed9SDavid Malone { 9862bc21ed9SDavid Malone struct thread *td = curthread; /* XXX */ 9872bc21ed9SDavid Malone struct cmsghdr *cm = mtod(control, struct cmsghdr *); 9882bc21ed9SDavid Malone int i; 9892bc21ed9SDavid Malone int *fdp; 9902bc21ed9SDavid Malone struct file **rp; 9912bc21ed9SDavid Malone struct file *fp; 9922bc21ed9SDavid Malone void *data; 9932bc21ed9SDavid Malone socklen_t clen = control->m_len, datalen; 9942bc21ed9SDavid Malone int error, newfds; 9952bc21ed9SDavid Malone int f; 9962bc21ed9SDavid Malone u_int newlen; 9972bc21ed9SDavid Malone 9982bc21ed9SDavid Malone error = 0; 9992bc21ed9SDavid Malone if (controlp != NULL) /* controlp == NULL => free control messages */ 10002bc21ed9SDavid Malone *controlp = NULL; 10012bc21ed9SDavid Malone 10022bc21ed9SDavid Malone while (cm != NULL) { 10032bc21ed9SDavid Malone if (sizeof(*cm) > clen || cm->cmsg_len > clen) { 10042bc21ed9SDavid Malone error = EINVAL; 10052bc21ed9SDavid Malone break; 10062bc21ed9SDavid Malone } 10072bc21ed9SDavid Malone 10082bc21ed9SDavid Malone data = CMSG_DATA(cm); 10092bc21ed9SDavid Malone datalen = (caddr_t)cm + cm->cmsg_len - (caddr_t)data; 10102bc21ed9SDavid Malone 10112bc21ed9SDavid Malone if (cm->cmsg_level == SOL_SOCKET 10122bc21ed9SDavid Malone && cm->cmsg_type == SCM_RIGHTS) { 10132bc21ed9SDavid Malone newfds = datalen / sizeof(struct file *); 10142bc21ed9SDavid Malone rp = data; 10152bc21ed9SDavid Malone 1016e2f9a08bSOlivier Houchard /* If we're not outputting the descriptors free them. */ 10172bc21ed9SDavid Malone if (error || controlp == NULL) { 10182bc21ed9SDavid Malone unp_freerights(rp, newfds); 10192bc21ed9SDavid Malone goto next; 10202bc21ed9SDavid Malone } 1021426da3bcSAlfred Perlstein FILEDESC_LOCK(td->td_proc->p_fd); 10222bc21ed9SDavid Malone /* if the new FD's will not fit free them. */ 10232bc21ed9SDavid Malone if (!fdavail(td, newfds)) { 1024426da3bcSAlfred Perlstein FILEDESC_UNLOCK(td->td_proc->p_fd); 10252bc21ed9SDavid Malone error = EMSGSIZE; 10262bc21ed9SDavid Malone unp_freerights(rp, newfds); 10272bc21ed9SDavid Malone goto next; 1028df8bae1dSRodney W. Grimes } 1029ed5b7817SJulian Elischer /* 10302bc21ed9SDavid Malone * now change each pointer to an fd in the global 10312bc21ed9SDavid Malone * table to an integer that is the index to the 10322bc21ed9SDavid Malone * local fd table entry that we set up to point 10332bc21ed9SDavid Malone * to the global one we are transferring. 1034ed5b7817SJulian Elischer */ 10352bc21ed9SDavid Malone newlen = newfds * sizeof(int); 10362bc21ed9SDavid Malone *controlp = sbcreatecontrol(NULL, newlen, 10372bc21ed9SDavid Malone SCM_RIGHTS, SOL_SOCKET); 10382bc21ed9SDavid Malone if (*controlp == NULL) { 1039426da3bcSAlfred Perlstein FILEDESC_UNLOCK(td->td_proc->p_fd); 10402bc21ed9SDavid Malone error = E2BIG; 10412bc21ed9SDavid Malone unp_freerights(rp, newfds); 10422bc21ed9SDavid Malone goto next; 10432bc21ed9SDavid Malone } 10442bc21ed9SDavid Malone 10452bc21ed9SDavid Malone fdp = (int *) 10462bc21ed9SDavid Malone CMSG_DATA(mtod(*controlp, struct cmsghdr *)); 1047df8bae1dSRodney W. Grimes for (i = 0; i < newfds; i++) { 1048b40ce416SJulian Elischer if (fdalloc(td, 0, &f)) 10492bc21ed9SDavid Malone panic("unp_externalize fdalloc failed"); 10508692c025SYoshinobu Inoue fp = *rp++; 1051b40ce416SJulian Elischer td->td_proc->p_fd->fd_ofiles[f] = fp; 1052426da3bcSAlfred Perlstein FILE_LOCK(fp); 1053df8bae1dSRodney W. Grimes fp->f_msgcount--; 1054426da3bcSAlfred Perlstein FILE_UNLOCK(fp); 1055df8bae1dSRodney W. Grimes unp_rights--; 10568692c025SYoshinobu Inoue *fdp++ = f; 1057df8bae1dSRodney W. Grimes } 1058426da3bcSAlfred Perlstein FILEDESC_UNLOCK(td->td_proc->p_fd); 10592bc21ed9SDavid Malone } else { /* We can just copy anything else across */ 10602bc21ed9SDavid Malone if (error || controlp == NULL) 10612bc21ed9SDavid Malone goto next; 10622bc21ed9SDavid Malone *controlp = sbcreatecontrol(NULL, datalen, 10632bc21ed9SDavid Malone cm->cmsg_type, cm->cmsg_level); 10642bc21ed9SDavid Malone if (*controlp == NULL) { 10652bc21ed9SDavid Malone error = ENOBUFS; 10662bc21ed9SDavid Malone goto next; 10672bc21ed9SDavid Malone } 10682bc21ed9SDavid Malone bcopy(data, 10692bc21ed9SDavid Malone CMSG_DATA(mtod(*controlp, struct cmsghdr *)), 10702bc21ed9SDavid Malone datalen); 10712bc21ed9SDavid Malone } 10722bc21ed9SDavid Malone 10732bc21ed9SDavid Malone controlp = &(*controlp)->m_next; 10742bc21ed9SDavid Malone 10752bc21ed9SDavid Malone next: 10762bc21ed9SDavid Malone if (CMSG_SPACE(datalen) < clen) { 10772bc21ed9SDavid Malone clen -= CMSG_SPACE(datalen); 10782bc21ed9SDavid Malone cm = (struct cmsghdr *) 10792bc21ed9SDavid Malone ((caddr_t)cm + CMSG_SPACE(datalen)); 10808692c025SYoshinobu Inoue } else { 10812bc21ed9SDavid Malone clen = 0; 10822bc21ed9SDavid Malone cm = NULL; 10838692c025SYoshinobu Inoue } 10848692c025SYoshinobu Inoue } 10858692c025SYoshinobu Inoue 10862bc21ed9SDavid Malone m_freem(control); 10872bc21ed9SDavid Malone 10882bc21ed9SDavid Malone return (error); 1089df8bae1dSRodney W. Grimes } 1090df8bae1dSRodney W. Grimes 109198271db4SGarrett Wollman void 109298271db4SGarrett Wollman unp_init(void) 109398271db4SGarrett Wollman { 10949e9d298aSJeff Roberson unp_zone = uma_zcreate("unpcb", sizeof(struct unpcb), NULL, NULL, 10959e9d298aSJeff Roberson NULL, NULL, UMA_ALIGN_PTR, UMA_ZONE_NOFREE); 1096586c8b6bSJeff Roberson uma_zone_set_max(unp_zone, nmbclusters); 109798271db4SGarrett Wollman if (unp_zone == 0) 109898271db4SGarrett Wollman panic("unp_init"); 109998271db4SGarrett Wollman LIST_INIT(&unp_dhead); 110098271db4SGarrett Wollman LIST_INIT(&unp_shead); 110198271db4SGarrett Wollman } 110298271db4SGarrett Wollman 1103f708ef1bSPoul-Henning Kamp static int 11042bc21ed9SDavid Malone unp_internalize(controlp, td) 11052bc21ed9SDavid Malone struct mbuf **controlp; 1106b40ce416SJulian Elischer struct thread *td; 1107df8bae1dSRodney W. Grimes { 11082bc21ed9SDavid Malone struct mbuf *control = *controlp; 1109b40ce416SJulian Elischer struct proc *p = td->td_proc; 11108692c025SYoshinobu Inoue struct filedesc *fdescp = p->p_fd; 11112bc21ed9SDavid Malone struct cmsghdr *cm = mtod(control, struct cmsghdr *); 11122bc21ed9SDavid Malone struct cmsgcred *cmcred; 11132bc21ed9SDavid Malone struct file **rp; 11142bc21ed9SDavid Malone struct file *fp; 11152bc21ed9SDavid Malone struct timeval *tv; 11162bc21ed9SDavid Malone int i, fd, *fdp; 11172bc21ed9SDavid Malone void *data; 11182bc21ed9SDavid Malone socklen_t clen = control->m_len, datalen; 11192bc21ed9SDavid Malone int error, oldfds; 11208692c025SYoshinobu Inoue u_int newlen; 1121df8bae1dSRodney W. Grimes 11222bc21ed9SDavid Malone error = 0; 11232bc21ed9SDavid Malone *controlp = NULL; 11240b788fa1SBill Paul 11252bc21ed9SDavid Malone while (cm != NULL) { 11262bc21ed9SDavid Malone if (sizeof(*cm) > clen || cm->cmsg_level != SOL_SOCKET 11272bc21ed9SDavid Malone || cm->cmsg_len > clen) { 11282bc21ed9SDavid Malone error = EINVAL; 11292bc21ed9SDavid Malone goto out; 11302bc21ed9SDavid Malone } 11312bc21ed9SDavid Malone 11322bc21ed9SDavid Malone data = CMSG_DATA(cm); 11332bc21ed9SDavid Malone datalen = (caddr_t)cm + cm->cmsg_len - (caddr_t)data; 11342bc21ed9SDavid Malone 11352bc21ed9SDavid Malone switch (cm->cmsg_type) { 11360b788fa1SBill Paul /* 11370b788fa1SBill Paul * Fill in credential information. 11380b788fa1SBill Paul */ 11392bc21ed9SDavid Malone case SCM_CREDS: 11402bc21ed9SDavid Malone *controlp = sbcreatecontrol(NULL, sizeof(*cmcred), 11412bc21ed9SDavid Malone SCM_CREDS, SOL_SOCKET); 11422bc21ed9SDavid Malone if (*controlp == NULL) { 11432bc21ed9SDavid Malone error = ENOBUFS; 11442bc21ed9SDavid Malone goto out; 11452bc21ed9SDavid Malone } 11462bc21ed9SDavid Malone 11472bc21ed9SDavid Malone cmcred = (struct cmsgcred *) 11482bc21ed9SDavid Malone CMSG_DATA(mtod(*controlp, struct cmsghdr *)); 11490b788fa1SBill Paul cmcred->cmcred_pid = p->p_pid; 1150a854ed98SJohn Baldwin cmcred->cmcred_uid = td->td_ucred->cr_ruid; 1151a854ed98SJohn Baldwin cmcred->cmcred_gid = td->td_ucred->cr_rgid; 1152a854ed98SJohn Baldwin cmcred->cmcred_euid = td->td_ucred->cr_uid; 1153a854ed98SJohn Baldwin cmcred->cmcred_ngroups = MIN(td->td_ucred->cr_ngroups, 11540b788fa1SBill Paul CMGROUP_MAX); 11550b788fa1SBill Paul for (i = 0; i < cmcred->cmcred_ngroups; i++) 11562bc21ed9SDavid Malone cmcred->cmcred_groups[i] = 1157a854ed98SJohn Baldwin td->td_ucred->cr_groups[i]; 11582bc21ed9SDavid Malone break; 11590b788fa1SBill Paul 11602bc21ed9SDavid Malone case SCM_RIGHTS: 11612bc21ed9SDavid Malone oldfds = datalen / sizeof (int); 1162ed5b7817SJulian Elischer /* 11632bc21ed9SDavid Malone * check that all the FDs passed in refer to legal files 1164ed5b7817SJulian Elischer * If not, reject the entire operation. 1165ed5b7817SJulian Elischer */ 11662bc21ed9SDavid Malone fdp = data; 1167426da3bcSAlfred Perlstein FILEDESC_LOCK(fdescp); 1168df8bae1dSRodney W. Grimes for (i = 0; i < oldfds; i++) { 11698692c025SYoshinobu Inoue fd = *fdp++; 11708692c025SYoshinobu Inoue if ((unsigned)fd >= fdescp->fd_nfiles || 11712bc21ed9SDavid Malone fdescp->fd_ofiles[fd] == NULL) { 1172426da3bcSAlfred Perlstein FILEDESC_UNLOCK(fdescp); 11732bc21ed9SDavid Malone error = EBADF; 11742bc21ed9SDavid Malone goto out; 11752bc21ed9SDavid Malone } 1176e7d6662fSAlfred Perlstein fp = fdescp->fd_ofiles[fd]; 1177e7d6662fSAlfred Perlstein if (!(fp->f_ops->fo_flags & DFLAG_PASSABLE)) { 1178e7d6662fSAlfred Perlstein FILEDESC_UNLOCK(fdescp); 1179e7d6662fSAlfred Perlstein error = EOPNOTSUPP; 1180e7d6662fSAlfred Perlstein goto out; 1181e7d6662fSAlfred Perlstein } 1182e7d6662fSAlfred Perlstein 1183df8bae1dSRodney W. Grimes } 1184ed5b7817SJulian Elischer /* 1185ed5b7817SJulian Elischer * Now replace the integer FDs with pointers to 1186ed5b7817SJulian Elischer * the associated global file table entry.. 1187ed5b7817SJulian Elischer */ 11882bc21ed9SDavid Malone newlen = oldfds * sizeof(struct file *); 11892bc21ed9SDavid Malone *controlp = sbcreatecontrol(NULL, newlen, 11902bc21ed9SDavid Malone SCM_RIGHTS, SOL_SOCKET); 11912bc21ed9SDavid Malone if (*controlp == NULL) { 1192426da3bcSAlfred Perlstein FILEDESC_UNLOCK(fdescp); 11932bc21ed9SDavid Malone error = E2BIG; 11942bc21ed9SDavid Malone goto out; 11958692c025SYoshinobu Inoue } 11968692c025SYoshinobu Inoue 11972bc21ed9SDavid Malone fdp = data; 11982bc21ed9SDavid Malone rp = (struct file **) 11992bc21ed9SDavid Malone CMSG_DATA(mtod(*controlp, struct cmsghdr *)); 12008692c025SYoshinobu Inoue for (i = 0; i < oldfds; i++) { 12018692c025SYoshinobu Inoue fp = fdescp->fd_ofiles[*fdp++]; 1202df8bae1dSRodney W. Grimes *rp++ = fp; 1203426da3bcSAlfred Perlstein FILE_LOCK(fp); 1204df8bae1dSRodney W. Grimes fp->f_count++; 1205df8bae1dSRodney W. Grimes fp->f_msgcount++; 1206426da3bcSAlfred Perlstein FILE_UNLOCK(fp); 1207df8bae1dSRodney W. Grimes unp_rights++; 1208df8bae1dSRodney W. Grimes } 1209426da3bcSAlfred Perlstein FILEDESC_UNLOCK(fdescp); 12102bc21ed9SDavid Malone break; 12112bc21ed9SDavid Malone 12122bc21ed9SDavid Malone case SCM_TIMESTAMP: 12132bc21ed9SDavid Malone *controlp = sbcreatecontrol(NULL, sizeof(*tv), 12142bc21ed9SDavid Malone SCM_TIMESTAMP, SOL_SOCKET); 12152bc21ed9SDavid Malone if (*controlp == NULL) { 12162bc21ed9SDavid Malone error = ENOBUFS; 12172bc21ed9SDavid Malone goto out; 12188692c025SYoshinobu Inoue } 12192bc21ed9SDavid Malone tv = (struct timeval *) 12202bc21ed9SDavid Malone CMSG_DATA(mtod(*controlp, struct cmsghdr *)); 12212bc21ed9SDavid Malone microtime(tv); 12222bc21ed9SDavid Malone break; 12232bc21ed9SDavid Malone 12242bc21ed9SDavid Malone default: 12252bc21ed9SDavid Malone error = EINVAL; 12262bc21ed9SDavid Malone goto out; 12272bc21ed9SDavid Malone } 12282bc21ed9SDavid Malone 12292bc21ed9SDavid Malone controlp = &(*controlp)->m_next; 12302bc21ed9SDavid Malone 12312bc21ed9SDavid Malone if (CMSG_SPACE(datalen) < clen) { 12322bc21ed9SDavid Malone clen -= CMSG_SPACE(datalen); 12332bc21ed9SDavid Malone cm = (struct cmsghdr *) 12342bc21ed9SDavid Malone ((caddr_t)cm + CMSG_SPACE(datalen)); 12352bc21ed9SDavid Malone } else { 12362bc21ed9SDavid Malone clen = 0; 12372bc21ed9SDavid Malone cm = NULL; 12382bc21ed9SDavid Malone } 12392bc21ed9SDavid Malone } 12402bc21ed9SDavid Malone 12412bc21ed9SDavid Malone out: 12422bc21ed9SDavid Malone m_freem(control); 12432bc21ed9SDavid Malone 12442bc21ed9SDavid Malone return (error); 1245df8bae1dSRodney W. Grimes } 1246df8bae1dSRodney W. Grimes 1247f708ef1bSPoul-Henning Kamp static int unp_defer, unp_gcing; 1248df8bae1dSRodney W. Grimes 1249f708ef1bSPoul-Henning Kamp static void 1250df8bae1dSRodney W. Grimes unp_gc() 1251df8bae1dSRodney W. Grimes { 1252df8bae1dSRodney W. Grimes register struct file *fp, *nextfp; 1253df8bae1dSRodney W. Grimes register struct socket *so; 1254df8bae1dSRodney W. Grimes struct file **extra_ref, **fpp; 1255df8bae1dSRodney W. Grimes int nunref, i; 1256df8bae1dSRodney W. Grimes 1257df8bae1dSRodney W. Grimes if (unp_gcing) 1258df8bae1dSRodney W. Grimes return; 1259df8bae1dSRodney W. Grimes unp_gcing = 1; 1260df8bae1dSRodney W. Grimes unp_defer = 0; 1261ed5b7817SJulian Elischer /* 1262ed5b7817SJulian Elischer * before going through all this, set all FDs to 1263ed5b7817SJulian Elischer * be NOT defered and NOT externally accessible 1264ed5b7817SJulian Elischer */ 1265426da3bcSAlfred Perlstein sx_slock(&filelist_lock); 12662e3c8fcbSPoul-Henning Kamp LIST_FOREACH(fp, &filehead, f_list) 1267426da3bcSAlfred Perlstein fp->f_gcflag &= ~(FMARK|FDEFER); 1268df8bae1dSRodney W. Grimes do { 12692e3c8fcbSPoul-Henning Kamp LIST_FOREACH(fp, &filehead, f_list) { 1270426da3bcSAlfred Perlstein FILE_LOCK(fp); 1271ed5b7817SJulian Elischer /* 1272ed5b7817SJulian Elischer * If the file is not open, skip it 1273ed5b7817SJulian Elischer */ 1274426da3bcSAlfred Perlstein if (fp->f_count == 0) { 1275426da3bcSAlfred Perlstein FILE_UNLOCK(fp); 1276df8bae1dSRodney W. Grimes continue; 1277426da3bcSAlfred Perlstein } 1278ed5b7817SJulian Elischer /* 1279ed5b7817SJulian Elischer * If we already marked it as 'defer' in a 1280ed5b7817SJulian Elischer * previous pass, then try process it this time 1281ed5b7817SJulian Elischer * and un-mark it 1282ed5b7817SJulian Elischer */ 1283426da3bcSAlfred Perlstein if (fp->f_gcflag & FDEFER) { 1284426da3bcSAlfred Perlstein fp->f_gcflag &= ~FDEFER; 1285df8bae1dSRodney W. Grimes unp_defer--; 1286df8bae1dSRodney W. Grimes } else { 1287ed5b7817SJulian Elischer /* 1288ed5b7817SJulian Elischer * if it's not defered, then check if it's 1289ed5b7817SJulian Elischer * already marked.. if so skip it 1290ed5b7817SJulian Elischer */ 1291426da3bcSAlfred Perlstein if (fp->f_gcflag & FMARK) { 1292426da3bcSAlfred Perlstein FILE_UNLOCK(fp); 1293df8bae1dSRodney W. Grimes continue; 1294426da3bcSAlfred Perlstein } 1295ed5b7817SJulian Elischer /* 1296ed5b7817SJulian Elischer * If all references are from messages 1297ed5b7817SJulian Elischer * in transit, then skip it. it's not 1298ed5b7817SJulian Elischer * externally accessible. 1299ed5b7817SJulian Elischer */ 1300426da3bcSAlfred Perlstein if (fp->f_count == fp->f_msgcount) { 1301426da3bcSAlfred Perlstein FILE_UNLOCK(fp); 1302df8bae1dSRodney W. Grimes continue; 1303426da3bcSAlfred Perlstein } 1304ed5b7817SJulian Elischer /* 1305ed5b7817SJulian Elischer * If it got this far then it must be 1306ed5b7817SJulian Elischer * externally accessible. 1307ed5b7817SJulian Elischer */ 1308426da3bcSAlfred Perlstein fp->f_gcflag |= FMARK; 1309df8bae1dSRodney W. Grimes } 1310ed5b7817SJulian Elischer /* 1311ed5b7817SJulian Elischer * either it was defered, or it is externally 1312ed5b7817SJulian Elischer * accessible and not already marked so. 1313ed5b7817SJulian Elischer * Now check if it is possibly one of OUR sockets. 1314ed5b7817SJulian Elischer */ 1315df8bae1dSRodney W. Grimes if (fp->f_type != DTYPE_SOCKET || 131648e3128bSMatthew Dillon (so = fp->f_data) == NULL) { 1317426da3bcSAlfred Perlstein FILE_UNLOCK(fp); 1318df8bae1dSRodney W. Grimes continue; 1319426da3bcSAlfred Perlstein } 1320426da3bcSAlfred Perlstein FILE_UNLOCK(fp); 1321748e0b0aSGarrett Wollman if (so->so_proto->pr_domain != &localdomain || 1322df8bae1dSRodney W. Grimes (so->so_proto->pr_flags&PR_RIGHTS) == 0) 1323df8bae1dSRodney W. Grimes continue; 1324df8bae1dSRodney W. Grimes #ifdef notdef 1325df8bae1dSRodney W. Grimes if (so->so_rcv.sb_flags & SB_LOCK) { 1326df8bae1dSRodney W. Grimes /* 1327df8bae1dSRodney W. Grimes * This is problematical; it's not clear 1328df8bae1dSRodney W. Grimes * we need to wait for the sockbuf to be 1329df8bae1dSRodney W. Grimes * unlocked (on a uniprocessor, at least), 1330df8bae1dSRodney W. Grimes * and it's also not clear what to do 1331df8bae1dSRodney W. Grimes * if sbwait returns an error due to receipt 1332df8bae1dSRodney W. Grimes * of a signal. If sbwait does return 1333df8bae1dSRodney W. Grimes * an error, we'll go into an infinite 1334df8bae1dSRodney W. Grimes * loop. Delete all of this for now. 1335df8bae1dSRodney W. Grimes */ 1336df8bae1dSRodney W. Grimes (void) sbwait(&so->so_rcv); 1337df8bae1dSRodney W. Grimes goto restart; 1338df8bae1dSRodney W. Grimes } 1339df8bae1dSRodney W. Grimes #endif 1340ed5b7817SJulian Elischer /* 1341ed5b7817SJulian Elischer * So, Ok, it's one of our sockets and it IS externally 1342ed5b7817SJulian Elischer * accessible (or was defered). Now we look 1343dc733423SDag-Erling Smørgrav * to see if we hold any file descriptors in its 1344ed5b7817SJulian Elischer * message buffers. Follow those links and mark them 1345ed5b7817SJulian Elischer * as accessible too. 1346ed5b7817SJulian Elischer */ 1347df8bae1dSRodney W. Grimes unp_scan(so->so_rcv.sb_mb, unp_mark); 1348df8bae1dSRodney W. Grimes } 1349df8bae1dSRodney W. Grimes } while (unp_defer); 1350426da3bcSAlfred Perlstein sx_sunlock(&filelist_lock); 1351df8bae1dSRodney W. Grimes /* 1352df8bae1dSRodney W. Grimes * We grab an extra reference to each of the file table entries 1353df8bae1dSRodney W. Grimes * that are not otherwise accessible and then free the rights 1354df8bae1dSRodney W. Grimes * that are stored in messages on them. 1355df8bae1dSRodney W. Grimes * 1356df8bae1dSRodney W. Grimes * The bug in the orginal code is a little tricky, so I'll describe 1357df8bae1dSRodney W. Grimes * what's wrong with it here. 1358df8bae1dSRodney W. Grimes * 1359df8bae1dSRodney W. Grimes * It is incorrect to simply unp_discard each entry for f_msgcount 1360df8bae1dSRodney W. Grimes * times -- consider the case of sockets A and B that contain 1361df8bae1dSRodney W. Grimes * references to each other. On a last close of some other socket, 1362df8bae1dSRodney W. Grimes * we trigger a gc since the number of outstanding rights (unp_rights) 1363df8bae1dSRodney W. Grimes * is non-zero. If during the sweep phase the gc code un_discards, 1364df8bae1dSRodney W. Grimes * we end up doing a (full) closef on the descriptor. A closef on A 1365df8bae1dSRodney W. Grimes * results in the following chain. Closef calls soo_close, which 1366df8bae1dSRodney W. Grimes * calls soclose. Soclose calls first (through the switch 1367df8bae1dSRodney W. Grimes * uipc_usrreq) unp_detach, which re-invokes unp_gc. Unp_gc simply 1368df8bae1dSRodney W. Grimes * returns because the previous instance had set unp_gcing, and 1369df8bae1dSRodney W. Grimes * we return all the way back to soclose, which marks the socket 1370df8bae1dSRodney W. Grimes * with SS_NOFDREF, and then calls sofree. Sofree calls sorflush 1371df8bae1dSRodney W. Grimes * to free up the rights that are queued in messages on the socket A, 1372df8bae1dSRodney W. Grimes * i.e., the reference on B. The sorflush calls via the dom_dispose 1373df8bae1dSRodney W. Grimes * switch unp_dispose, which unp_scans with unp_discard. This second 1374df8bae1dSRodney W. Grimes * instance of unp_discard just calls closef on B. 1375df8bae1dSRodney W. Grimes * 1376df8bae1dSRodney W. Grimes * Well, a similar chain occurs on B, resulting in a sorflush on B, 1377df8bae1dSRodney W. Grimes * which results in another closef on A. Unfortunately, A is already 1378df8bae1dSRodney W. Grimes * being closed, and the descriptor has already been marked with 1379df8bae1dSRodney W. Grimes * SS_NOFDREF, and soclose panics at this point. 1380df8bae1dSRodney W. Grimes * 1381df8bae1dSRodney W. Grimes * Here, we first take an extra reference to each inaccessible 1382df8bae1dSRodney W. Grimes * descriptor. Then, we call sorflush ourself, since we know 1383df8bae1dSRodney W. Grimes * it is a Unix domain socket anyhow. After we destroy all the 1384df8bae1dSRodney W. Grimes * rights carried in messages, we do a last closef to get rid 1385df8bae1dSRodney W. Grimes * of our extra reference. This is the last close, and the 1386df8bae1dSRodney W. Grimes * unp_detach etc will shut down the socket. 1387df8bae1dSRodney W. Grimes * 1388df8bae1dSRodney W. Grimes * 91/09/19, bsy@cs.cmu.edu 1389df8bae1dSRodney W. Grimes */ 1390a163d034SWarner Losh extra_ref = malloc(nfiles * sizeof(struct file *), M_TEMP, M_WAITOK); 1391426da3bcSAlfred Perlstein sx_slock(&filelist_lock); 13922e3c8fcbSPoul-Henning Kamp for (nunref = 0, fp = LIST_FIRST(&filehead), fpp = extra_ref; fp != 0; 1393bc6f0e79SJeffrey Hsu fp = nextfp) { 13942e3c8fcbSPoul-Henning Kamp nextfp = LIST_NEXT(fp, f_list); 1395426da3bcSAlfred Perlstein FILE_LOCK(fp); 1396ed5b7817SJulian Elischer /* 1397ed5b7817SJulian Elischer * If it's not open, skip it 1398ed5b7817SJulian Elischer */ 1399426da3bcSAlfred Perlstein if (fp->f_count == 0) { 1400426da3bcSAlfred Perlstein FILE_UNLOCK(fp); 1401df8bae1dSRodney W. Grimes continue; 1402426da3bcSAlfred Perlstein } 1403ed5b7817SJulian Elischer /* 1404ed5b7817SJulian Elischer * If all refs are from msgs, and it's not marked accessible 1405ed5b7817SJulian Elischer * then it must be referenced from some unreachable cycle 1406ed5b7817SJulian Elischer * of (shut-down) FDs, so include it in our 1407ed5b7817SJulian Elischer * list of FDs to remove 1408ed5b7817SJulian Elischer */ 1409426da3bcSAlfred Perlstein if (fp->f_count == fp->f_msgcount && !(fp->f_gcflag & FMARK)) { 1410df8bae1dSRodney W. Grimes *fpp++ = fp; 1411df8bae1dSRodney W. Grimes nunref++; 1412df8bae1dSRodney W. Grimes fp->f_count++; 1413df8bae1dSRodney W. Grimes } 1414426da3bcSAlfred Perlstein FILE_UNLOCK(fp); 1415df8bae1dSRodney W. Grimes } 1416426da3bcSAlfred Perlstein sx_sunlock(&filelist_lock); 1417ed5b7817SJulian Elischer /* 1418ed5b7817SJulian Elischer * for each FD on our hit list, do the following two things 1419ed5b7817SJulian Elischer */ 14201c7c3c6aSMatthew Dillon for (i = nunref, fpp = extra_ref; --i >= 0; ++fpp) { 14211c7c3c6aSMatthew Dillon struct file *tfp = *fpp; 1422426da3bcSAlfred Perlstein FILE_LOCK(tfp); 1423cd72f218SMatthew Dillon if (tfp->f_type == DTYPE_SOCKET && 142448e3128bSMatthew Dillon tfp->f_data != NULL) { 1425426da3bcSAlfred Perlstein FILE_UNLOCK(tfp); 142648e3128bSMatthew Dillon sorflush(tfp->f_data); 1427426da3bcSAlfred Perlstein } else 1428426da3bcSAlfred Perlstein FILE_UNLOCK(tfp); 14291c7c3c6aSMatthew Dillon } 1430df8bae1dSRodney W. Grimes for (i = nunref, fpp = extra_ref; --i >= 0; ++fpp) 1431b40ce416SJulian Elischer closef(*fpp, (struct thread *) NULL); 1432210a5a71SAlfred Perlstein free(extra_ref, M_TEMP); 1433df8bae1dSRodney W. Grimes unp_gcing = 0; 1434df8bae1dSRodney W. Grimes } 1435df8bae1dSRodney W. Grimes 143626f9a767SRodney W. Grimes void 1437df8bae1dSRodney W. Grimes unp_dispose(m) 1438df8bae1dSRodney W. Grimes struct mbuf *m; 1439df8bae1dSRodney W. Grimes { 1440996c772fSJohn Dyson 1441df8bae1dSRodney W. Grimes if (m) 1442df8bae1dSRodney W. Grimes unp_scan(m, unp_discard); 1443df8bae1dSRodney W. Grimes } 1444df8bae1dSRodney W. Grimes 14450c1bb4fbSDima Dorfman static int 14466f105b34SJohn Baldwin unp_listen(unp, td) 14470c1bb4fbSDima Dorfman struct unpcb *unp; 14486f105b34SJohn Baldwin struct thread *td; 14490c1bb4fbSDima Dorfman { 14500c1bb4fbSDima Dorfman 14516f105b34SJohn Baldwin cru2x(td->td_ucred, &unp->unp_peercred); 14520c1bb4fbSDima Dorfman unp->unp_flags |= UNP_HAVEPCCACHED; 14530c1bb4fbSDima Dorfman return (0); 14540c1bb4fbSDima Dorfman } 14550c1bb4fbSDima Dorfman 1456f708ef1bSPoul-Henning Kamp static void 1457df8bae1dSRodney W. Grimes unp_scan(m0, op) 1458df8bae1dSRodney W. Grimes register struct mbuf *m0; 14594d77a549SAlfred Perlstein void (*op)(struct file *); 1460df8bae1dSRodney W. Grimes { 14612bc21ed9SDavid Malone struct mbuf *m; 14622bc21ed9SDavid Malone struct file **rp; 14632bc21ed9SDavid Malone struct cmsghdr *cm; 14642bc21ed9SDavid Malone void *data; 14652bc21ed9SDavid Malone int i; 14662bc21ed9SDavid Malone socklen_t clen, datalen; 1467df8bae1dSRodney W. Grimes int qfds; 1468df8bae1dSRodney W. Grimes 1469df8bae1dSRodney W. Grimes while (m0) { 14702bc21ed9SDavid Malone for (m = m0; m; m = m->m_next) { 147112396bdcSDavid Malone if (m->m_type != MT_CONTROL) 1472df8bae1dSRodney W. Grimes continue; 14732bc21ed9SDavid Malone 14742bc21ed9SDavid Malone cm = mtod(m, struct cmsghdr *); 14752bc21ed9SDavid Malone clen = m->m_len; 14762bc21ed9SDavid Malone 14772bc21ed9SDavid Malone while (cm != NULL) { 14782bc21ed9SDavid Malone if (sizeof(*cm) > clen || cm->cmsg_len > clen) 14792bc21ed9SDavid Malone break; 14802bc21ed9SDavid Malone 14812bc21ed9SDavid Malone data = CMSG_DATA(cm); 14822bc21ed9SDavid Malone datalen = (caddr_t)cm + cm->cmsg_len 14832bc21ed9SDavid Malone - (caddr_t)data; 14842bc21ed9SDavid Malone 14852bc21ed9SDavid Malone if (cm->cmsg_level == SOL_SOCKET && 14862bc21ed9SDavid Malone cm->cmsg_type == SCM_RIGHTS) { 14872bc21ed9SDavid Malone qfds = datalen / sizeof (struct file *); 14882bc21ed9SDavid Malone rp = data; 1489df8bae1dSRodney W. Grimes for (i = 0; i < qfds; i++) 1490df8bae1dSRodney W. Grimes (*op)(*rp++); 14912bc21ed9SDavid Malone } 14922bc21ed9SDavid Malone 14932bc21ed9SDavid Malone if (CMSG_SPACE(datalen) < clen) { 14942bc21ed9SDavid Malone clen -= CMSG_SPACE(datalen); 14952bc21ed9SDavid Malone cm = (struct cmsghdr *) 14962bc21ed9SDavid Malone ((caddr_t)cm + CMSG_SPACE(datalen)); 14972bc21ed9SDavid Malone } else { 14982bc21ed9SDavid Malone clen = 0; 14992bc21ed9SDavid Malone cm = NULL; 15002bc21ed9SDavid Malone } 15012bc21ed9SDavid Malone } 1502df8bae1dSRodney W. Grimes } 1503df8bae1dSRodney W. Grimes m0 = m0->m_act; 1504df8bae1dSRodney W. Grimes } 1505df8bae1dSRodney W. Grimes } 1506df8bae1dSRodney W. Grimes 1507f708ef1bSPoul-Henning Kamp static void 1508df8bae1dSRodney W. Grimes unp_mark(fp) 1509df8bae1dSRodney W. Grimes struct file *fp; 1510df8bae1dSRodney W. Grimes { 1511426da3bcSAlfred Perlstein if (fp->f_gcflag & FMARK) 1512df8bae1dSRodney W. Grimes return; 1513df8bae1dSRodney W. Grimes unp_defer++; 1514426da3bcSAlfred Perlstein fp->f_gcflag |= (FMARK|FDEFER); 1515df8bae1dSRodney W. Grimes } 1516df8bae1dSRodney W. Grimes 1517f708ef1bSPoul-Henning Kamp static void 1518df8bae1dSRodney W. Grimes unp_discard(fp) 1519df8bae1dSRodney W. Grimes struct file *fp; 1520df8bae1dSRodney W. Grimes { 1521426da3bcSAlfred Perlstein FILE_LOCK(fp); 1522df8bae1dSRodney W. Grimes fp->f_msgcount--; 1523df8bae1dSRodney W. Grimes unp_rights--; 1524426da3bcSAlfred Perlstein FILE_UNLOCK(fp); 1525b40ce416SJulian Elischer (void) closef(fp, (struct thread *)NULL); 1526df8bae1dSRodney W. Grimes } 1527