1c398230bSWarner Losh /*- 251369649SPedro F. Giffuni * SPDX-License-Identifier: BSD-3-Clause 351369649SPedro F. Giffuni * 4df8bae1dSRodney W. Grimes * Copyright (c) 1990, 1991, 1993 5253a3814SLawrence Stewart * The Regents of the University of California. All rights reserved. 6*699281b5SAndrey V. Elsukov * Copyright (c) 2019 Andrey V. Elsukov <ae@FreeBSD.org> 7df8bae1dSRodney W. Grimes * 8df8bae1dSRodney W. Grimes * This code is derived from the Stanford/CMU enet packet filter, 9df8bae1dSRodney W. Grimes * (net/enet.c) distributed as part of 4.3BSD, and code contributed 10df8bae1dSRodney W. Grimes * to Berkeley by Steven McCanne and Van Jacobson both of Lawrence 11df8bae1dSRodney W. Grimes * Berkeley Laboratory. 12df8bae1dSRodney W. Grimes * 13df8bae1dSRodney W. Grimes * Redistribution and use in source and binary forms, with or without 14df8bae1dSRodney W. Grimes * modification, are permitted provided that the following conditions 15df8bae1dSRodney W. Grimes * are met: 16df8bae1dSRodney W. Grimes * 1. Redistributions of source code must retain the above copyright 17df8bae1dSRodney W. Grimes * notice, this list of conditions and the following disclaimer. 18df8bae1dSRodney W. Grimes * 2. Redistributions in binary form must reproduce the above copyright 19df8bae1dSRodney W. Grimes * notice, this list of conditions and the following disclaimer in the 20df8bae1dSRodney W. Grimes * documentation and/or other materials provided with the distribution. 21fbbd9655SWarner Losh * 3. Neither the name of the University nor the names of its contributors 22df8bae1dSRodney W. Grimes * may be used to endorse or promote products derived from this software 23df8bae1dSRodney W. Grimes * without specific prior written permission. 24df8bae1dSRodney W. Grimes * 25df8bae1dSRodney W. Grimes * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND 26df8bae1dSRodney W. Grimes * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 27df8bae1dSRodney W. Grimes * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 28df8bae1dSRodney W. Grimes * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE 29df8bae1dSRodney W. Grimes * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 30df8bae1dSRodney W. Grimes * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 31df8bae1dSRodney W. Grimes * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 32df8bae1dSRodney W. Grimes * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 33df8bae1dSRodney W. Grimes * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 34df8bae1dSRodney W. Grimes * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 35df8bae1dSRodney W. Grimes * SUCH DAMAGE. 36df8bae1dSRodney W. Grimes * 374f252c4dSRuslan Ermilov * @(#)bpf.c 8.4 (Berkeley) 1/9/95 38df8bae1dSRodney W. Grimes */ 39df8bae1dSRodney W. Grimes 40c7866007SRobert Watson #include <sys/cdefs.h> 41c7866007SRobert Watson __FBSDID("$FreeBSD$"); 42c7866007SRobert Watson 435bb5f2c9SPeter Wemm #include "opt_bpf.h" 4405fc4164SBjoern A. Zeeb #include "opt_ddb.h" 455bb5f2c9SPeter Wemm #include "opt_netgraph.h" 46df8bae1dSRodney W. Grimes 4795aab9ccSJohn-Mark Gurney #include <sys/types.h> 48df8bae1dSRodney W. Grimes #include <sys/param.h> 49e4b3229aSAlexander V. Chernikov #include <sys/lock.h> 50df8bae1dSRodney W. Grimes #include <sys/systm.h> 51ce7609a4SBruce Evans #include <sys/conf.h> 52e76eee55SPoul-Henning Kamp #include <sys/fcntl.h> 53ebd8672cSBjoern A. Zeeb #include <sys/jail.h> 544d1d4912SBruce Evans #include <sys/malloc.h> 55df8bae1dSRodney W. Grimes #include <sys/mbuf.h> 56df8bae1dSRodney W. Grimes #include <sys/time.h> 57acd3428bSRobert Watson #include <sys/priv.h> 58df8bae1dSRodney W. Grimes #include <sys/proc.h> 590310c19fSBruce Evans #include <sys/signalvar.h> 60528f627fSBruce Evans #include <sys/filio.h> 61528f627fSBruce Evans #include <sys/sockio.h> 62528f627fSBruce Evans #include <sys/ttycom.h> 63e76eee55SPoul-Henning Kamp #include <sys/uio.h> 6474549d4bSWojciech Macek #include <sys/sysent.h> 65df8bae1dSRodney W. Grimes 6695aab9ccSJohn-Mark Gurney #include <sys/event.h> 6795aab9ccSJohn-Mark Gurney #include <sys/file.h> 68243ac7d8SPeter Wemm #include <sys/poll.h> 6995aab9ccSJohn-Mark Gurney #include <sys/proc.h> 70df8bae1dSRodney W. Grimes 71df8bae1dSRodney W. Grimes #include <sys/socket.h> 72df8bae1dSRodney W. Grimes 7305fc4164SBjoern A. Zeeb #ifdef DDB 7405fc4164SBjoern A. Zeeb #include <ddb/ddb.h> 7505fc4164SBjoern A. Zeeb #endif 7605fc4164SBjoern A. Zeeb 77fba9235dSBruce Evans #include <net/if.h> 7876039bc8SGleb Smirnoff #include <net/if_var.h> 794fb3a820SAlexander V. Chernikov #include <net/if_dl.h> 80df8bae1dSRodney W. Grimes #include <net/bpf.h> 814d621040SChristian S.J. Peron #include <net/bpf_buffer.h> 82ae275efcSJung-uk Kim #ifdef BPF_JITTER 83ae275efcSJung-uk Kim #include <net/bpf_jitter.h> 84ae275efcSJung-uk Kim #endif 854d621040SChristian S.J. Peron #include <net/bpf_zerocopy.h> 86df8bae1dSRodney W. Grimes #include <net/bpfdesc.h> 874fb3a820SAlexander V. Chernikov #include <net/route.h> 88530c0060SRobert Watson #include <net/vnet.h> 89df8bae1dSRodney W. Grimes 90df8bae1dSRodney W. Grimes #include <netinet/in.h> 91df8bae1dSRodney W. Grimes #include <netinet/if_ether.h> 92df8bae1dSRodney W. Grimes #include <sys/kernel.h> 93f708ef1bSPoul-Henning Kamp #include <sys/sysctl.h> 947b778b5eSEivind Eklund 95246b5467SSam Leffler #include <net80211/ieee80211_freebsd.h> 96246b5467SSam Leffler 97aed55708SRobert Watson #include <security/mac/mac_framework.h> 98aed55708SRobert Watson 994d621040SChristian S.J. Peron MALLOC_DEFINE(M_BPF, "BPF", "BPF data"); 10087f6c662SJulian Elischer 1012b9600b4SAndrey V. Elsukov static struct bpf_if_ext dead_bpf_if = { 102*699281b5SAndrey V. Elsukov .bif_dlist = CK_LIST_HEAD_INITIALIZER() 1032b9600b4SAndrey V. Elsukov }; 1042b9600b4SAndrey V. Elsukov 105b23cbbe6SMark Johnston struct bpf_if { 106b23cbbe6SMark Johnston #define bif_next bif_ext.bif_next 107b23cbbe6SMark Johnston #define bif_dlist bif_ext.bif_dlist 108b23cbbe6SMark Johnston struct bpf_if_ext bif_ext; /* public members */ 109b23cbbe6SMark Johnston u_int bif_dlt; /* link layer type */ 110b23cbbe6SMark Johnston u_int bif_hdrlen; /* length of link header */ 111*699281b5SAndrey V. Elsukov struct bpfd_list bif_wlist; /* writer-only list */ 112b23cbbe6SMark Johnston struct ifnet *bif_ifp; /* corresponding interface */ 1139ce40d32SKristof Provost struct bpf_if **bif_bpf; /* Pointer to pointer to us */ 114*699281b5SAndrey V. Elsukov volatile u_int bif_refcnt; 115*699281b5SAndrey V. Elsukov struct epoch_context epoch_ctx; 116b23cbbe6SMark Johnston }; 117b23cbbe6SMark Johnston 118b23cbbe6SMark Johnston CTASSERT(offsetof(struct bpf_if, bif_ext) == 0); 119b23cbbe6SMark Johnston 120*699281b5SAndrey V. Elsukov struct bpf_program_buffer { 121*699281b5SAndrey V. Elsukov struct epoch_context epoch_ctx; 122*699281b5SAndrey V. Elsukov #ifdef BPF_JITTER 123*699281b5SAndrey V. Elsukov bpf_jit_filter *func; 124*699281b5SAndrey V. Elsukov #endif 125*699281b5SAndrey V. Elsukov void *buffer[0]; 126*699281b5SAndrey V. Elsukov }; 127ca3cd72bSAndrey V. Elsukov 1285bb5f2c9SPeter Wemm #if defined(DEV_BPF) || defined(NETGRAPH_BPF) 12953ac6efbSJulian Elischer 130df8bae1dSRodney W. Grimes #define PRINET 26 /* interruptible */ 131df8bae1dSRodney W. Grimes 132547d94bdSJung-uk Kim #define SIZEOF_BPF_HDR(type) \ 133547d94bdSJung-uk Kim (offsetof(type, bh_hdrlen) + sizeof(((type *)0)->bh_hdrlen)) 134547d94bdSJung-uk Kim 135fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 136fc0a61a4SKonstantin Belousov #include <sys/mount.h> 137fc0a61a4SKonstantin Belousov #include <compat/freebsd32/freebsd32.h> 138fc0a61a4SKonstantin Belousov #define BPF_ALIGNMENT32 sizeof(int32_t) 139d9c9c81cSPedro F. Giffuni #define BPF_WORDALIGN32(x) roundup2(x, BPF_ALIGNMENT32) 140fc0a61a4SKonstantin Belousov 141547d94bdSJung-uk Kim #ifndef BURN_BRIDGES 142fc0a61a4SKonstantin Belousov /* 143fc0a61a4SKonstantin Belousov * 32-bit version of structure prepended to each packet. We use this header 144fc0a61a4SKonstantin Belousov * instead of the standard one for 32-bit streams. We mark the a stream as 145fc0a61a4SKonstantin Belousov * 32-bit the first time we see a 32-bit compat ioctl request. 146fc0a61a4SKonstantin Belousov */ 147fc0a61a4SKonstantin Belousov struct bpf_hdr32 { 148fc0a61a4SKonstantin Belousov struct timeval32 bh_tstamp; /* time stamp */ 149fc0a61a4SKonstantin Belousov uint32_t bh_caplen; /* length of captured portion */ 150fc0a61a4SKonstantin Belousov uint32_t bh_datalen; /* original length of packet */ 151fc0a61a4SKonstantin Belousov uint16_t bh_hdrlen; /* length of bpf header (this struct 152fc0a61a4SKonstantin Belousov plus alignment padding) */ 153fc0a61a4SKonstantin Belousov }; 154253a3814SLawrence Stewart #endif 155fc0a61a4SKonstantin Belousov 156fc0a61a4SKonstantin Belousov struct bpf_program32 { 157fc0a61a4SKonstantin Belousov u_int bf_len; 158fc0a61a4SKonstantin Belousov uint32_t bf_insns; 159fc0a61a4SKonstantin Belousov }; 160fc0a61a4SKonstantin Belousov 161fc0a61a4SKonstantin Belousov struct bpf_dltlist32 { 162fc0a61a4SKonstantin Belousov u_int bfl_len; 163fc0a61a4SKonstantin Belousov u_int bfl_list; 164fc0a61a4SKonstantin Belousov }; 165fc0a61a4SKonstantin Belousov 166fc0a61a4SKonstantin Belousov #define BIOCSETF32 _IOW('B', 103, struct bpf_program32) 167fc0a61a4SKonstantin Belousov #define BIOCSRTIMEOUT32 _IOW('B', 109, struct timeval32) 168fc0a61a4SKonstantin Belousov #define BIOCGRTIMEOUT32 _IOR('B', 110, struct timeval32) 169fc0a61a4SKonstantin Belousov #define BIOCGDLTLIST32 _IOWR('B', 121, struct bpf_dltlist32) 170fc0a61a4SKonstantin Belousov #define BIOCSETWF32 _IOW('B', 123, struct bpf_program32) 171fc0a61a4SKonstantin Belousov #define BIOCSETFNR32 _IOW('B', 130, struct bpf_program32) 172253a3814SLawrence Stewart #endif 173fc0a61a4SKonstantin Belousov 174f422673eSStephen Hurd #define BPF_LOCK() sx_xlock(&bpf_sx) 175f422673eSStephen Hurd #define BPF_UNLOCK() sx_xunlock(&bpf_sx) 176f422673eSStephen Hurd #define BPF_LOCK_ASSERT() sx_assert(&bpf_sx, SA_XLOCKED) 177df8bae1dSRodney W. Grimes /* 178d1a67300SRobert Watson * bpf_iflist is a list of BPF interface structures, each corresponding to a 179d1a67300SRobert Watson * specific DLT. The same network interface might have several BPF interface 180d1a67300SRobert Watson * structures registered by different layers in the stack (i.e., 802.11 181d1a67300SRobert Watson * frames, ethernet frames, etc). 182df8bae1dSRodney W. Grimes */ 183*699281b5SAndrey V. Elsukov CK_LIST_HEAD(bpf_iflist, bpf_if); 184*699281b5SAndrey V. Elsukov static struct bpf_iflist bpf_iflist; 185f422673eSStephen Hurd static struct sx bpf_sx; /* bpf global lock */ 18669f7644bSChristian S.J. Peron static int bpf_bpfd_cnt; 187df8bae1dSRodney W. Grimes 188*699281b5SAndrey V. Elsukov static void bpfif_ref(struct bpf_if *); 189*699281b5SAndrey V. Elsukov static void bpfif_rele(struct bpf_if *); 190*699281b5SAndrey V. Elsukov 191*699281b5SAndrey V. Elsukov static void bpfd_ref(struct bpf_d *); 192*699281b5SAndrey V. Elsukov static void bpfd_rele(struct bpf_d *); 19319ba8395SChristian S.J. Peron static void bpf_attachd(struct bpf_d *, struct bpf_if *); 19419ba8395SChristian S.J. Peron static void bpf_detachd(struct bpf_d *); 195*699281b5SAndrey V. Elsukov static void bpf_detachd_locked(struct bpf_d *, bool); 196*699281b5SAndrey V. Elsukov static void bpfd_free(epoch_context_t); 197cb44b6dfSAndrew Thompson static int bpf_movein(struct uio *, int, struct ifnet *, struct mbuf **, 1984fb3a820SAlexander V. Chernikov struct sockaddr *, int *, struct bpf_d *); 199929ddbbbSAlfred Perlstein static int bpf_setif(struct bpf_d *, struct ifreq *); 200929ddbbbSAlfred Perlstein static void bpf_timed_out(void *); 201e7bb21b3SJonathan Lemon static __inline void 202929ddbbbSAlfred Perlstein bpf_wakeup(struct bpf_d *); 2034d621040SChristian S.J. Peron static void catchpacket(struct bpf_d *, u_char *, u_int, u_int, 2044d621040SChristian S.J. Peron void (*)(struct bpf_d *, caddr_t, u_int, void *, u_int), 205547d94bdSJung-uk Kim struct bintime *); 206929ddbbbSAlfred Perlstein static void reset_d(struct bpf_d *); 20793e39f0bSChristian S.J. Peron static int bpf_setf(struct bpf_d *, struct bpf_program *, u_long cmd); 2088eab61f3SSam Leffler static int bpf_getdltlist(struct bpf_d *, struct bpf_dltlist *); 2098eab61f3SSam Leffler static int bpf_setdlt(struct bpf_d *, u_int); 21095aab9ccSJohn-Mark Gurney static void filt_bpfdetach(struct knote *); 21195aab9ccSJohn-Mark Gurney static int filt_bpfread(struct knote *, long); 212a3272e3cSChristian S.J. Peron static void bpf_drvinit(void *); 21369f7644bSChristian S.J. Peron static int bpf_stats_sysctl(SYSCTL_HANDLER_ARGS); 21469f7644bSChristian S.J. Peron 21569f7644bSChristian S.J. Peron SYSCTL_NODE(_net, OID_AUTO, bpf, CTLFLAG_RW, 0, "bpf sysctl"); 21612dc9582SJung-uk Kim int bpf_maxinsns = BPF_MAXINSNS; 21769f7644bSChristian S.J. Peron SYSCTL_INT(_net_bpf, OID_AUTO, maxinsns, CTLFLAG_RW, 21869f7644bSChristian S.J. Peron &bpf_maxinsns, 0, "Maximum bpf program instructions"); 219ffeeb924SChristian S.J. Peron static int bpf_zerocopy_enable = 0; 2204d621040SChristian S.J. Peron SYSCTL_INT(_net_bpf, OID_AUTO, zerocopy_enable, CTLFLAG_RW, 2214d621040SChristian S.J. Peron &bpf_zerocopy_enable, 0, "Enable new zero-copy BPF buffer sessions"); 2226472ac3dSEd Schouten static SYSCTL_NODE(_net_bpf, OID_AUTO, stats, CTLFLAG_MPSAFE | CTLFLAG_RW, 22369f7644bSChristian S.J. Peron bpf_stats_sysctl, "bpf statistics portal"); 224df8bae1dSRodney W. Grimes 2255f901c92SAndrew Turner VNET_DEFINE_STATIC(int, bpf_optimize_writers) = 0; 22651ec1eb7SAlexander V. Chernikov #define V_bpf_optimize_writers VNET(bpf_optimize_writers) 2276df8a710SGleb Smirnoff SYSCTL_INT(_net_bpf, OID_AUTO, optimize_writers, CTLFLAG_VNET | CTLFLAG_RW, 2286df8a710SGleb Smirnoff &VNET_NAME(bpf_optimize_writers), 0, 22951ec1eb7SAlexander V. Chernikov "Do not send packets until BPF program is set"); 23051ec1eb7SAlexander V. Chernikov 23187f6c662SJulian Elischer static d_open_t bpfopen; 23287f6c662SJulian Elischer static d_read_t bpfread; 23387f6c662SJulian Elischer static d_write_t bpfwrite; 23487f6c662SJulian Elischer static d_ioctl_t bpfioctl; 235243ac7d8SPeter Wemm static d_poll_t bpfpoll; 23695aab9ccSJohn-Mark Gurney static d_kqfilter_t bpfkqfilter; 23787f6c662SJulian Elischer 2384e2f199eSPoul-Henning Kamp static struct cdevsw bpf_cdevsw = { 239dc08ffecSPoul-Henning Kamp .d_version = D_VERSION, 2407ac40f5fSPoul-Henning Kamp .d_open = bpfopen, 2417ac40f5fSPoul-Henning Kamp .d_read = bpfread, 2427ac40f5fSPoul-Henning Kamp .d_write = bpfwrite, 2437ac40f5fSPoul-Henning Kamp .d_ioctl = bpfioctl, 2447ac40f5fSPoul-Henning Kamp .d_poll = bpfpoll, 2457ac40f5fSPoul-Henning Kamp .d_name = "bpf", 24695aab9ccSJohn-Mark Gurney .d_kqfilter = bpfkqfilter, 2474e2f199eSPoul-Henning Kamp }; 24887f6c662SJulian Elischer 249e76d823bSRobert Watson static struct filterops bpfread_filtops = { 250e76d823bSRobert Watson .f_isfd = 1, 251e76d823bSRobert Watson .f_detach = filt_bpfdetach, 252e76d823bSRobert Watson .f_event = filt_bpfread, 253e76d823bSRobert Watson }; 25487f6c662SJulian Elischer 2554d621040SChristian S.J. Peron /* 256*699281b5SAndrey V. Elsukov * LOCKING MODEL USED BY BPF 257*699281b5SAndrey V. Elsukov * 2586c74ff0eSAlexander V. Chernikov * Locks: 259*699281b5SAndrey V. Elsukov * 1) global lock (BPF_LOCK). Sx, used to protect some global counters, 260*699281b5SAndrey V. Elsukov * every bpf_iflist changes, serializes ioctl access to bpf descriptors. 261*699281b5SAndrey V. Elsukov * 2) Descriptor lock. Mutex, used to protect BPF buffers and various 262*699281b5SAndrey V. Elsukov * structure fields used by bpf_*tap* code. 2636c74ff0eSAlexander V. Chernikov * 264*699281b5SAndrey V. Elsukov * Lock order: global lock, then descriptor lock. 2656c74ff0eSAlexander V. Chernikov * 266*699281b5SAndrey V. Elsukov * There are several possible consumers: 2676c74ff0eSAlexander V. Chernikov * 268*699281b5SAndrey V. Elsukov * 1. The kernel registers interface pointer with bpfattach(). 269*699281b5SAndrey V. Elsukov * Each call allocates new bpf_if structure, references ifnet pointer 270*699281b5SAndrey V. Elsukov * and links bpf_if into bpf_iflist chain. This is protected with global 271*699281b5SAndrey V. Elsukov * lock. 2726c74ff0eSAlexander V. Chernikov * 273*699281b5SAndrey V. Elsukov * 2. An userland application uses ioctl() call to bpf_d descriptor. 274*699281b5SAndrey V. Elsukov * All such call are serialized with global lock. BPF filters can be 275*699281b5SAndrey V. Elsukov * changed, but pointer to old filter will be freed using epoch_call(). 276*699281b5SAndrey V. Elsukov * Thus it should be safe for bpf_tap/bpf_mtap* code to do access to 277*699281b5SAndrey V. Elsukov * filter pointers, even if change will happen during bpf_tap execution. 278*699281b5SAndrey V. Elsukov * Destroying of bpf_d descriptor also is doing using epoch_call(). 2796c74ff0eSAlexander V. Chernikov * 280*699281b5SAndrey V. Elsukov * 3. An userland application can write packets into bpf_d descriptor. 281*699281b5SAndrey V. Elsukov * There we need to be sure, that ifnet won't disappear during bpfwrite(). 2826c74ff0eSAlexander V. Chernikov * 283*699281b5SAndrey V. Elsukov * 4. The kernel invokes bpf_tap/bpf_mtap* functions. The access to 284*699281b5SAndrey V. Elsukov * bif_dlist is protected with net_epoch_preempt section. So, it should 285*699281b5SAndrey V. Elsukov * be safe to make access to bpf_d descriptor inside the section. 286*699281b5SAndrey V. Elsukov * 287*699281b5SAndrey V. Elsukov * 5. The kernel invokes bpfdetach() on interface destroying. All lists 288*699281b5SAndrey V. Elsukov * are modified with global lock held and actual free() is done using 289*699281b5SAndrey V. Elsukov * epoch_call(). 2906c74ff0eSAlexander V. Chernikov */ 2916c74ff0eSAlexander V. Chernikov 292*699281b5SAndrey V. Elsukov static void 293*699281b5SAndrey V. Elsukov bpfif_free(epoch_context_t ctx) 294*699281b5SAndrey V. Elsukov { 295*699281b5SAndrey V. Elsukov struct bpf_if *bp; 296*699281b5SAndrey V. Elsukov 297*699281b5SAndrey V. Elsukov bp = __containerof(ctx, struct bpf_if, epoch_ctx); 298*699281b5SAndrey V. Elsukov if_rele(bp->bif_ifp); 299*699281b5SAndrey V. Elsukov free(bp, M_BPF); 300*699281b5SAndrey V. Elsukov } 301*699281b5SAndrey V. Elsukov 302*699281b5SAndrey V. Elsukov static void 303*699281b5SAndrey V. Elsukov bpfif_ref(struct bpf_if *bp) 304*699281b5SAndrey V. Elsukov { 305*699281b5SAndrey V. Elsukov 306*699281b5SAndrey V. Elsukov refcount_acquire(&bp->bif_refcnt); 307*699281b5SAndrey V. Elsukov } 308*699281b5SAndrey V. Elsukov 309*699281b5SAndrey V. Elsukov static void 310*699281b5SAndrey V. Elsukov bpfif_rele(struct bpf_if *bp) 311*699281b5SAndrey V. Elsukov { 312*699281b5SAndrey V. Elsukov 313*699281b5SAndrey V. Elsukov if (!refcount_release(&bp->bif_refcnt)) 314*699281b5SAndrey V. Elsukov return; 315*699281b5SAndrey V. Elsukov epoch_call(net_epoch_preempt, &bp->epoch_ctx, bpfif_free); 316*699281b5SAndrey V. Elsukov } 317*699281b5SAndrey V. Elsukov 318*699281b5SAndrey V. Elsukov static void 319*699281b5SAndrey V. Elsukov bpfd_ref(struct bpf_d *d) 320*699281b5SAndrey V. Elsukov { 321*699281b5SAndrey V. Elsukov 322*699281b5SAndrey V. Elsukov refcount_acquire(&d->bd_refcnt); 323*699281b5SAndrey V. Elsukov } 324*699281b5SAndrey V. Elsukov 325*699281b5SAndrey V. Elsukov static void 326*699281b5SAndrey V. Elsukov bpfd_rele(struct bpf_d *d) 327*699281b5SAndrey V. Elsukov { 328*699281b5SAndrey V. Elsukov 329*699281b5SAndrey V. Elsukov if (!refcount_release(&d->bd_refcnt)) 330*699281b5SAndrey V. Elsukov return; 331*699281b5SAndrey V. Elsukov epoch_call(net_epoch_preempt, &d->epoch_ctx, bpfd_free); 332*699281b5SAndrey V. Elsukov } 333*699281b5SAndrey V. Elsukov 334*699281b5SAndrey V. Elsukov static struct bpf_program_buffer* 335*699281b5SAndrey V. Elsukov bpf_program_buffer_alloc(size_t size, int flags) 336*699281b5SAndrey V. Elsukov { 337*699281b5SAndrey V. Elsukov 338*699281b5SAndrey V. Elsukov return (malloc(sizeof(struct bpf_program_buffer) + size, 339*699281b5SAndrey V. Elsukov M_BPF, flags)); 340*699281b5SAndrey V. Elsukov } 341*699281b5SAndrey V. Elsukov 342*699281b5SAndrey V. Elsukov static void 343*699281b5SAndrey V. Elsukov bpf_program_buffer_free(epoch_context_t ctx) 344*699281b5SAndrey V. Elsukov { 345*699281b5SAndrey V. Elsukov struct bpf_program_buffer *ptr; 346*699281b5SAndrey V. Elsukov 347*699281b5SAndrey V. Elsukov ptr = __containerof(ctx, struct bpf_program_buffer, epoch_ctx); 348*699281b5SAndrey V. Elsukov #ifdef BPF_JITTER 349*699281b5SAndrey V. Elsukov if (ptr->func != NULL) 350*699281b5SAndrey V. Elsukov bpf_destroy_jit_filter(ptr->func); 351*699281b5SAndrey V. Elsukov #endif 352*699281b5SAndrey V. Elsukov free(ptr, M_BPF); 353*699281b5SAndrey V. Elsukov } 354*699281b5SAndrey V. Elsukov 3556c74ff0eSAlexander V. Chernikov /* 3564d621040SChristian S.J. Peron * Wrapper functions for various buffering methods. If the set of buffer 3574d621040SChristian S.J. Peron * modes expands, we will probably want to introduce a switch data structure 3584d621040SChristian S.J. Peron * similar to protosw, et. 3594d621040SChristian S.J. Peron */ 3604d621040SChristian S.J. Peron static void 3614d621040SChristian S.J. Peron bpf_append_bytes(struct bpf_d *d, caddr_t buf, u_int offset, void *src, 3624d621040SChristian S.J. Peron u_int len) 3634d621040SChristian S.J. Peron { 3644d621040SChristian S.J. Peron 365afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 3664d621040SChristian S.J. Peron 3674d621040SChristian S.J. Peron switch (d->bd_bufmode) { 3684d621040SChristian S.J. Peron case BPF_BUFMODE_BUFFER: 3694d621040SChristian S.J. Peron return (bpf_buffer_append_bytes(d, buf, offset, src, len)); 3704d621040SChristian S.J. Peron 3714d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 372b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_zcopy, 1); 3734d621040SChristian S.J. Peron return (bpf_zerocopy_append_bytes(d, buf, offset, src, len)); 3744d621040SChristian S.J. Peron 3754d621040SChristian S.J. Peron default: 3764d621040SChristian S.J. Peron panic("bpf_buf_append_bytes"); 3774d621040SChristian S.J. Peron } 3784d621040SChristian S.J. Peron } 3794d621040SChristian S.J. Peron 3804d621040SChristian S.J. Peron static void 3814d621040SChristian S.J. Peron bpf_append_mbuf(struct bpf_d *d, caddr_t buf, u_int offset, void *src, 3824d621040SChristian S.J. Peron u_int len) 3834d621040SChristian S.J. Peron { 3844d621040SChristian S.J. Peron 385afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 3864d621040SChristian S.J. Peron 3874d621040SChristian S.J. Peron switch (d->bd_bufmode) { 3884d621040SChristian S.J. Peron case BPF_BUFMODE_BUFFER: 3894d621040SChristian S.J. Peron return (bpf_buffer_append_mbuf(d, buf, offset, src, len)); 3904d621040SChristian S.J. Peron 3914d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 392b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_zcopy, 1); 3934d621040SChristian S.J. Peron return (bpf_zerocopy_append_mbuf(d, buf, offset, src, len)); 3944d621040SChristian S.J. Peron 3954d621040SChristian S.J. Peron default: 3964d621040SChristian S.J. Peron panic("bpf_buf_append_mbuf"); 3974d621040SChristian S.J. Peron } 3984d621040SChristian S.J. Peron } 3994d621040SChristian S.J. Peron 4004d621040SChristian S.J. Peron /* 40129f612ecSChristian S.J. Peron * This function gets called when the free buffer is re-assigned. 40229f612ecSChristian S.J. Peron */ 40329f612ecSChristian S.J. Peron static void 40429f612ecSChristian S.J. Peron bpf_buf_reclaimed(struct bpf_d *d) 40529f612ecSChristian S.J. Peron { 40629f612ecSChristian S.J. Peron 407afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 40829f612ecSChristian S.J. Peron 40929f612ecSChristian S.J. Peron switch (d->bd_bufmode) { 41029f612ecSChristian S.J. Peron case BPF_BUFMODE_BUFFER: 41129f612ecSChristian S.J. Peron return; 41229f612ecSChristian S.J. Peron 41329f612ecSChristian S.J. Peron case BPF_BUFMODE_ZBUF: 41429f612ecSChristian S.J. Peron bpf_zerocopy_buf_reclaimed(d); 41529f612ecSChristian S.J. Peron return; 41629f612ecSChristian S.J. Peron 41729f612ecSChristian S.J. Peron default: 41829f612ecSChristian S.J. Peron panic("bpf_buf_reclaimed"); 41929f612ecSChristian S.J. Peron } 42029f612ecSChristian S.J. Peron } 42129f612ecSChristian S.J. Peron 42229f612ecSChristian S.J. Peron /* 4234d621040SChristian S.J. Peron * If the buffer mechanism has a way to decide that a held buffer can be made 4244d621040SChristian S.J. Peron * free, then it is exposed via the bpf_canfreebuf() interface. (1) is 4254d621040SChristian S.J. Peron * returned if the buffer can be discarded, (0) is returned if it cannot. 4264d621040SChristian S.J. Peron */ 4274d621040SChristian S.J. Peron static int 4284d621040SChristian S.J. Peron bpf_canfreebuf(struct bpf_d *d) 4294d621040SChristian S.J. Peron { 4304d621040SChristian S.J. Peron 4314d621040SChristian S.J. Peron BPFD_LOCK_ASSERT(d); 4324d621040SChristian S.J. Peron 4334d621040SChristian S.J. Peron switch (d->bd_bufmode) { 4344d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 4354d621040SChristian S.J. Peron return (bpf_zerocopy_canfreebuf(d)); 4364d621040SChristian S.J. Peron } 4374d621040SChristian S.J. Peron return (0); 4384d621040SChristian S.J. Peron } 4394d621040SChristian S.J. Peron 440a7a91e65SRobert Watson /* 441a7a91e65SRobert Watson * Allow the buffer model to indicate that the current store buffer is 442a7a91e65SRobert Watson * immutable, regardless of the appearance of space. Return (1) if the 443a7a91e65SRobert Watson * buffer is writable, and (0) if not. 444a7a91e65SRobert Watson */ 445a7a91e65SRobert Watson static int 446a7a91e65SRobert Watson bpf_canwritebuf(struct bpf_d *d) 447a7a91e65SRobert Watson { 448a7a91e65SRobert Watson BPFD_LOCK_ASSERT(d); 449a7a91e65SRobert Watson 450a7a91e65SRobert Watson switch (d->bd_bufmode) { 451a7a91e65SRobert Watson case BPF_BUFMODE_ZBUF: 452a7a91e65SRobert Watson return (bpf_zerocopy_canwritebuf(d)); 453a7a91e65SRobert Watson } 454a7a91e65SRobert Watson return (1); 455a7a91e65SRobert Watson } 456a7a91e65SRobert Watson 457a7a91e65SRobert Watson /* 458a7a91e65SRobert Watson * Notify buffer model that an attempt to write to the store buffer has 459a7a91e65SRobert Watson * resulted in a dropped packet, in which case the buffer may be considered 460a7a91e65SRobert Watson * full. 461a7a91e65SRobert Watson */ 462a7a91e65SRobert Watson static void 463a7a91e65SRobert Watson bpf_buffull(struct bpf_d *d) 464a7a91e65SRobert Watson { 465a7a91e65SRobert Watson 466afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 467a7a91e65SRobert Watson 468a7a91e65SRobert Watson switch (d->bd_bufmode) { 469a7a91e65SRobert Watson case BPF_BUFMODE_ZBUF: 470a7a91e65SRobert Watson bpf_zerocopy_buffull(d); 471a7a91e65SRobert Watson break; 472a7a91e65SRobert Watson } 473a7a91e65SRobert Watson } 474a7a91e65SRobert Watson 475a7a91e65SRobert Watson /* 476a7a91e65SRobert Watson * Notify the buffer model that a buffer has moved into the hold position. 477a7a91e65SRobert Watson */ 4784d621040SChristian S.J. Peron void 4794d621040SChristian S.J. Peron bpf_bufheld(struct bpf_d *d) 4804d621040SChristian S.J. Peron { 4814d621040SChristian S.J. Peron 482afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 4834d621040SChristian S.J. Peron 4844d621040SChristian S.J. Peron switch (d->bd_bufmode) { 4854d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 4864d621040SChristian S.J. Peron bpf_zerocopy_bufheld(d); 4874d621040SChristian S.J. Peron break; 4884d621040SChristian S.J. Peron } 4894d621040SChristian S.J. Peron } 4904d621040SChristian S.J. Peron 4914d621040SChristian S.J. Peron static void 4924d621040SChristian S.J. Peron bpf_free(struct bpf_d *d) 4934d621040SChristian S.J. Peron { 4944d621040SChristian S.J. Peron 4954d621040SChristian S.J. Peron switch (d->bd_bufmode) { 4964d621040SChristian S.J. Peron case BPF_BUFMODE_BUFFER: 4974d621040SChristian S.J. Peron return (bpf_buffer_free(d)); 4984d621040SChristian S.J. Peron 4994d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 5004d621040SChristian S.J. Peron return (bpf_zerocopy_free(d)); 5014d621040SChristian S.J. Peron 5024d621040SChristian S.J. Peron default: 5034d621040SChristian S.J. Peron panic("bpf_buf_free"); 5044d621040SChristian S.J. Peron } 5054d621040SChristian S.J. Peron } 5064d621040SChristian S.J. Peron 5074d621040SChristian S.J. Peron static int 5084d621040SChristian S.J. Peron bpf_uiomove(struct bpf_d *d, caddr_t buf, u_int len, struct uio *uio) 5094d621040SChristian S.J. Peron { 5104d621040SChristian S.J. Peron 5114d621040SChristian S.J. Peron if (d->bd_bufmode != BPF_BUFMODE_BUFFER) 5124d621040SChristian S.J. Peron return (EOPNOTSUPP); 5134d621040SChristian S.J. Peron return (bpf_buffer_uiomove(d, buf, len, uio)); 5144d621040SChristian S.J. Peron } 5154d621040SChristian S.J. Peron 5164d621040SChristian S.J. Peron static int 5174d621040SChristian S.J. Peron bpf_ioctl_sblen(struct bpf_d *d, u_int *i) 5184d621040SChristian S.J. Peron { 5194d621040SChristian S.J. Peron 5204d621040SChristian S.J. Peron if (d->bd_bufmode != BPF_BUFMODE_BUFFER) 5214d621040SChristian S.J. Peron return (EOPNOTSUPP); 5224d621040SChristian S.J. Peron return (bpf_buffer_ioctl_sblen(d, i)); 5234d621040SChristian S.J. Peron } 5244d621040SChristian S.J. Peron 5254d621040SChristian S.J. Peron static int 5264d621040SChristian S.J. Peron bpf_ioctl_getzmax(struct thread *td, struct bpf_d *d, size_t *i) 5274d621040SChristian S.J. Peron { 5284d621040SChristian S.J. Peron 5294d621040SChristian S.J. Peron if (d->bd_bufmode != BPF_BUFMODE_ZBUF) 5304d621040SChristian S.J. Peron return (EOPNOTSUPP); 5314d621040SChristian S.J. Peron return (bpf_zerocopy_ioctl_getzmax(td, d, i)); 5324d621040SChristian S.J. Peron } 5334d621040SChristian S.J. Peron 5344d621040SChristian S.J. Peron static int 5354d621040SChristian S.J. Peron bpf_ioctl_rotzbuf(struct thread *td, struct bpf_d *d, struct bpf_zbuf *bz) 5364d621040SChristian S.J. Peron { 5374d621040SChristian S.J. Peron 5384d621040SChristian S.J. Peron if (d->bd_bufmode != BPF_BUFMODE_ZBUF) 5394d621040SChristian S.J. Peron return (EOPNOTSUPP); 5404d621040SChristian S.J. Peron return (bpf_zerocopy_ioctl_rotzbuf(td, d, bz)); 5414d621040SChristian S.J. Peron } 5424d621040SChristian S.J. Peron 5434d621040SChristian S.J. Peron static int 5444d621040SChristian S.J. Peron bpf_ioctl_setzbuf(struct thread *td, struct bpf_d *d, struct bpf_zbuf *bz) 5454d621040SChristian S.J. Peron { 5464d621040SChristian S.J. Peron 5474d621040SChristian S.J. Peron if (d->bd_bufmode != BPF_BUFMODE_ZBUF) 5484d621040SChristian S.J. Peron return (EOPNOTSUPP); 5494d621040SChristian S.J. Peron return (bpf_zerocopy_ioctl_setzbuf(td, d, bz)); 5504d621040SChristian S.J. Peron } 5514d621040SChristian S.J. Peron 5524d621040SChristian S.J. Peron /* 5534d621040SChristian S.J. Peron * General BPF functions. 5544d621040SChristian S.J. Peron */ 555df8bae1dSRodney W. Grimes static int 556cb44b6dfSAndrew Thompson bpf_movein(struct uio *uio, int linktype, struct ifnet *ifp, struct mbuf **mp, 5574fb3a820SAlexander V. Chernikov struct sockaddr *sockp, int *hdrlen, struct bpf_d *d) 558df8bae1dSRodney W. Grimes { 559246b5467SSam Leffler const struct ieee80211_bpf_params *p; 560cb44b6dfSAndrew Thompson struct ether_header *eh; 561df8bae1dSRodney W. Grimes struct mbuf *m; 562df8bae1dSRodney W. Grimes int error; 563df8bae1dSRodney W. Grimes int len; 564df8bae1dSRodney W. Grimes int hlen; 56593e39f0bSChristian S.J. Peron int slen; 566df8bae1dSRodney W. Grimes 567df8bae1dSRodney W. Grimes /* 568df8bae1dSRodney W. Grimes * Build a sockaddr based on the data link layer type. 569df8bae1dSRodney W. Grimes * We do this at this level because the ethernet header 570df8bae1dSRodney W. Grimes * is copied directly into the data field of the sockaddr. 571df8bae1dSRodney W. Grimes * In the case of SLIP, there is no header and the packet 572df8bae1dSRodney W. Grimes * is forwarded as is. 573df8bae1dSRodney W. Grimes * Also, we are careful to leave room at the front of the mbuf 574df8bae1dSRodney W. Grimes * for the link level header. 575df8bae1dSRodney W. Grimes */ 576df8bae1dSRodney W. Grimes switch (linktype) { 577df8bae1dSRodney W. Grimes 578df8bae1dSRodney W. Grimes case DLT_SLIP: 579df8bae1dSRodney W. Grimes sockp->sa_family = AF_INET; 580df8bae1dSRodney W. Grimes hlen = 0; 581df8bae1dSRodney W. Grimes break; 582df8bae1dSRodney W. Grimes 583df8bae1dSRodney W. Grimes case DLT_EN10MB: 584df8bae1dSRodney W. Grimes sockp->sa_family = AF_UNSPEC; 585df8bae1dSRodney W. Grimes /* XXX Would MAXLINKHDR be better? */ 586797f247bSMatthew N. Dodd hlen = ETHER_HDR_LEN; 587df8bae1dSRodney W. Grimes break; 588df8bae1dSRodney W. Grimes 589df8bae1dSRodney W. Grimes case DLT_FDDI: 590d41f24e7SDavid Greenman sockp->sa_family = AF_IMPLINK; 591d41f24e7SDavid Greenman hlen = 0; 592df8bae1dSRodney W. Grimes break; 593df8bae1dSRodney W. Grimes 59422f05c43SAndrey A. Chernov case DLT_RAW: 595df8bae1dSRodney W. Grimes sockp->sa_family = AF_UNSPEC; 596df8bae1dSRodney W. Grimes hlen = 0; 597df8bae1dSRodney W. Grimes break; 598df8bae1dSRodney W. Grimes 59901399f34SDavid Malone case DLT_NULL: 60001399f34SDavid Malone /* 60101399f34SDavid Malone * null interface types require a 4 byte pseudo header which 60201399f34SDavid Malone * corresponds to the address family of the packet. 60301399f34SDavid Malone */ 60401399f34SDavid Malone sockp->sa_family = AF_UNSPEC; 60501399f34SDavid Malone hlen = 4; 60601399f34SDavid Malone break; 60701399f34SDavid Malone 6084f53e3ccSKenjiro Cho case DLT_ATM_RFC1483: 6094f53e3ccSKenjiro Cho /* 6104f53e3ccSKenjiro Cho * en atm driver requires 4-byte atm pseudo header. 6114f53e3ccSKenjiro Cho * though it isn't standard, vpi:vci needs to be 6124f53e3ccSKenjiro Cho * specified anyway. 6134f53e3ccSKenjiro Cho */ 6144f53e3ccSKenjiro Cho sockp->sa_family = AF_UNSPEC; 6154f53e3ccSKenjiro Cho hlen = 12; /* XXX 4(ATM_PH) + 3(LLC) + 5(SNAP) */ 6164f53e3ccSKenjiro Cho break; 6174f53e3ccSKenjiro Cho 61830fa52a6SBrian Somers case DLT_PPP: 61930fa52a6SBrian Somers sockp->sa_family = AF_UNSPEC; 62030fa52a6SBrian Somers hlen = 4; /* This should match PPP_HDRLEN */ 62130fa52a6SBrian Somers break; 62230fa52a6SBrian Somers 623246b5467SSam Leffler case DLT_IEEE802_11: /* IEEE 802.11 wireless */ 624246b5467SSam Leffler sockp->sa_family = AF_IEEE80211; 625246b5467SSam Leffler hlen = 0; 626246b5467SSam Leffler break; 627246b5467SSam Leffler 628246b5467SSam Leffler case DLT_IEEE802_11_RADIO: /* IEEE 802.11 wireless w/ phy params */ 629246b5467SSam Leffler sockp->sa_family = AF_IEEE80211; 630246b5467SSam Leffler sockp->sa_len = 12; /* XXX != 0 */ 631246b5467SSam Leffler hlen = sizeof(struct ieee80211_bpf_params); 632246b5467SSam Leffler break; 633246b5467SSam Leffler 634df8bae1dSRodney W. Grimes default: 635df8bae1dSRodney W. Grimes return (EIO); 636df8bae1dSRodney W. Grimes } 637df8bae1dSRodney W. Grimes 638df8bae1dSRodney W. Grimes len = uio->uio_resid; 639ed63043bSGleb Smirnoff if (len < hlen || len - hlen > ifp->if_mtu) 64001399f34SDavid Malone return (EMSGSIZE); 64101399f34SDavid Malone 64241a7572bSGleb Smirnoff m = m_get2(len, M_WAITOK, MT_DATA, M_PKTHDR); 643ed63043bSGleb Smirnoff if (m == NULL) 644df8bae1dSRodney W. Grimes return (EIO); 645963e4c2aSGarrett Wollman m->m_pkthdr.len = m->m_len = len; 646df8bae1dSRodney W. Grimes *mp = m; 64724a229f4SSam Leffler 64893e39f0bSChristian S.J. Peron error = uiomove(mtod(m, u_char *), len, uio); 64993e39f0bSChristian S.J. Peron if (error) 65093e39f0bSChristian S.J. Peron goto bad; 65193e39f0bSChristian S.J. Peron 6524fb3a820SAlexander V. Chernikov slen = bpf_filter(d->bd_wfilter, mtod(m, u_char *), len, len); 65393e39f0bSChristian S.J. Peron if (slen == 0) { 65493e39f0bSChristian S.J. Peron error = EPERM; 65593e39f0bSChristian S.J. Peron goto bad; 65693e39f0bSChristian S.J. Peron } 65793e39f0bSChristian S.J. Peron 658cb44b6dfSAndrew Thompson /* Check for multicast destination */ 659cb44b6dfSAndrew Thompson switch (linktype) { 660cb44b6dfSAndrew Thompson case DLT_EN10MB: 661cb44b6dfSAndrew Thompson eh = mtod(m, struct ether_header *); 662cb44b6dfSAndrew Thompson if (ETHER_IS_MULTICAST(eh->ether_dhost)) { 663cb44b6dfSAndrew Thompson if (bcmp(ifp->if_broadcastaddr, eh->ether_dhost, 664cb44b6dfSAndrew Thompson ETHER_ADDR_LEN) == 0) 665cb44b6dfSAndrew Thompson m->m_flags |= M_BCAST; 666cb44b6dfSAndrew Thompson else 667cb44b6dfSAndrew Thompson m->m_flags |= M_MCAST; 668cb44b6dfSAndrew Thompson } 6694fb3a820SAlexander V. Chernikov if (d->bd_hdrcmplt == 0) { 6704fb3a820SAlexander V. Chernikov memcpy(eh->ether_shost, IF_LLADDR(ifp), 6714fb3a820SAlexander V. Chernikov sizeof(eh->ether_shost)); 6724fb3a820SAlexander V. Chernikov } 673cb44b6dfSAndrew Thompson break; 674cb44b6dfSAndrew Thompson } 675cb44b6dfSAndrew Thompson 676df8bae1dSRodney W. Grimes /* 67793e39f0bSChristian S.J. Peron * Make room for link header, and copy it to sockaddr 678df8bae1dSRodney W. Grimes */ 679df8bae1dSRodney W. Grimes if (hlen != 0) { 680246b5467SSam Leffler if (sockp->sa_family == AF_IEEE80211) { 681246b5467SSam Leffler /* 682246b5467SSam Leffler * Collect true length from the parameter header 683246b5467SSam Leffler * NB: sockp is known to be zero'd so if we do a 684246b5467SSam Leffler * short copy unspecified parameters will be 685246b5467SSam Leffler * zero. 686246b5467SSam Leffler * NB: packet may not be aligned after stripping 687246b5467SSam Leffler * bpf params 688246b5467SSam Leffler * XXX check ibp_vers 689246b5467SSam Leffler */ 690246b5467SSam Leffler p = mtod(m, const struct ieee80211_bpf_params *); 691246b5467SSam Leffler hlen = p->ibp_len; 692246b5467SSam Leffler if (hlen > sizeof(sockp->sa_data)) { 693246b5467SSam Leffler error = EINVAL; 694246b5467SSam Leffler goto bad; 695246b5467SSam Leffler } 696246b5467SSam Leffler } 697a09968c4SAdrian Chadd bcopy(mtod(m, const void *), sockp->sa_data, hlen); 698df8bae1dSRodney W. Grimes } 699560a54e1SJung-uk Kim *hdrlen = hlen; 70093e39f0bSChristian S.J. Peron 701df8bae1dSRodney W. Grimes return (0); 702df8bae1dSRodney W. Grimes bad: 703df8bae1dSRodney W. Grimes m_freem(m); 704df8bae1dSRodney W. Grimes return (error); 705df8bae1dSRodney W. Grimes } 706df8bae1dSRodney W. Grimes 707df8bae1dSRodney W. Grimes /* 708*699281b5SAndrey V. Elsukov * Attach descriptor to the bpf interface, i.e. make d listen on bp, 709*699281b5SAndrey V. Elsukov * then reset its buffers and counters with reset_d(). 710df8bae1dSRodney W. Grimes */ 711df8bae1dSRodney W. Grimes static void 71219ba8395SChristian S.J. Peron bpf_attachd(struct bpf_d *d, struct bpf_if *bp) 713df8bae1dSRodney W. Grimes { 7146c74ff0eSAlexander V. Chernikov int op_w; 7156c74ff0eSAlexander V. Chernikov 7166c74ff0eSAlexander V. Chernikov BPF_LOCK_ASSERT(); 7176c74ff0eSAlexander V. Chernikov 7186c74ff0eSAlexander V. Chernikov /* 7196c74ff0eSAlexander V. Chernikov * Save sysctl value to protect from sysctl change 7206c74ff0eSAlexander V. Chernikov * between reads 7216c74ff0eSAlexander V. Chernikov */ 72271448753SAlexander Motin op_w = V_bpf_optimize_writers || d->bd_writer; 7236c74ff0eSAlexander V. Chernikov 7246c74ff0eSAlexander V. Chernikov if (d->bd_bif != NULL) 725*699281b5SAndrey V. Elsukov bpf_detachd_locked(d, false); 726df8bae1dSRodney W. Grimes /* 72751ec1eb7SAlexander V. Chernikov * Point d at bp, and add d to the interface's list. 728f87e372eSLuiz Otavio O Souza * Since there are many applications using BPF for 72951ec1eb7SAlexander V. Chernikov * sending raw packets only (dhcpd, cdpd are good examples) 73051ec1eb7SAlexander V. Chernikov * we can delay adding d to the list of active listeners until 73151ec1eb7SAlexander V. Chernikov * some filter is configured. 732df8bae1dSRodney W. Grimes */ 73351ec1eb7SAlexander V. Chernikov 734afa85850SAlexander V. Chernikov BPFD_LOCK(d); 735*699281b5SAndrey V. Elsukov /* 736*699281b5SAndrey V. Elsukov * Hold reference to bpif while descriptor uses this interface. 737*699281b5SAndrey V. Elsukov */ 738*699281b5SAndrey V. Elsukov bpfif_ref(bp); 7396c74ff0eSAlexander V. Chernikov d->bd_bif = bp; 7406c74ff0eSAlexander V. Chernikov if (op_w != 0) { 74151ec1eb7SAlexander V. Chernikov /* Add to writers-only list */ 742*699281b5SAndrey V. Elsukov CK_LIST_INSERT_HEAD(&bp->bif_wlist, d, bd_next); 74351ec1eb7SAlexander V. Chernikov /* 74451ec1eb7SAlexander V. Chernikov * We decrement bd_writer on every filter set operation. 74551ec1eb7SAlexander V. Chernikov * First BIOCSETF is done by pcap_open_live() to set up 746*699281b5SAndrey V. Elsukov * snap length. After that appliation usually sets its own 747*699281b5SAndrey V. Elsukov * filter. 74851ec1eb7SAlexander V. Chernikov */ 74951ec1eb7SAlexander V. Chernikov d->bd_writer = 2; 75051ec1eb7SAlexander V. Chernikov } else 751*699281b5SAndrey V. Elsukov CK_LIST_INSERT_HEAD(&bp->bif_dlist, d, bd_next); 752df8bae1dSRodney W. Grimes 753*699281b5SAndrey V. Elsukov reset_d(d); 754afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 75551ec1eb7SAlexander V. Chernikov bpf_bpfd_cnt++; 75651ec1eb7SAlexander V. Chernikov 75751ec1eb7SAlexander V. Chernikov CTR3(KTR_NET, "%s: bpf_attach called by pid %d, adding to %s list", 75851ec1eb7SAlexander V. Chernikov __func__, d->bd_pid, d->bd_writer ? "writer" : "active"); 75951ec1eb7SAlexander V. Chernikov 7606c74ff0eSAlexander V. Chernikov if (op_w == 0) 76151ec1eb7SAlexander V. Chernikov EVENTHANDLER_INVOKE(bpf_track, bp->bif_ifp, bp->bif_dlt, 1); 76251ec1eb7SAlexander V. Chernikov } 76351ec1eb7SAlexander V. Chernikov 76451ec1eb7SAlexander V. Chernikov /* 765402000ffSAlexander V. Chernikov * Check if we need to upgrade our descriptor @d from write-only mode. 766402000ffSAlexander V. Chernikov */ 767402000ffSAlexander V. Chernikov static int 768*699281b5SAndrey V. Elsukov bpf_check_upgrade(u_long cmd, struct bpf_d *d, struct bpf_insn *fcode, 769*699281b5SAndrey V. Elsukov int flen) 770402000ffSAlexander V. Chernikov { 771402000ffSAlexander V. Chernikov int is_snap, need_upgrade; 772402000ffSAlexander V. Chernikov 773402000ffSAlexander V. Chernikov /* 774402000ffSAlexander V. Chernikov * Check if we've already upgraded or new filter is empty. 775402000ffSAlexander V. Chernikov */ 776402000ffSAlexander V. Chernikov if (d->bd_writer == 0 || fcode == NULL) 777402000ffSAlexander V. Chernikov return (0); 778402000ffSAlexander V. Chernikov 779402000ffSAlexander V. Chernikov need_upgrade = 0; 780402000ffSAlexander V. Chernikov 781402000ffSAlexander V. Chernikov /* 782402000ffSAlexander V. Chernikov * Check if cmd looks like snaplen setting from 783402000ffSAlexander V. Chernikov * pcap_bpf.c:pcap_open_live(). 784402000ffSAlexander V. Chernikov * Note we're not checking .k value here: 785caa7e52fSEitan Adler * while pcap_open_live() definitely sets to non-zero value, 786402000ffSAlexander V. Chernikov * we'd prefer to treat k=0 (deny ALL) case the same way: e.g. 787402000ffSAlexander V. Chernikov * do not consider upgrading immediately 788402000ffSAlexander V. Chernikov */ 789*699281b5SAndrey V. Elsukov if (cmd == BIOCSETF && flen == 1 && 790*699281b5SAndrey V. Elsukov fcode[0].code == (BPF_RET | BPF_K)) 791402000ffSAlexander V. Chernikov is_snap = 1; 792402000ffSAlexander V. Chernikov else 793402000ffSAlexander V. Chernikov is_snap = 0; 794402000ffSAlexander V. Chernikov 795402000ffSAlexander V. Chernikov if (is_snap == 0) { 796402000ffSAlexander V. Chernikov /* 797402000ffSAlexander V. Chernikov * We're setting first filter and it doesn't look like 798402000ffSAlexander V. Chernikov * setting snaplen. We're probably using bpf directly. 799402000ffSAlexander V. Chernikov * Upgrade immediately. 800402000ffSAlexander V. Chernikov */ 801402000ffSAlexander V. Chernikov need_upgrade = 1; 802402000ffSAlexander V. Chernikov } else { 803402000ffSAlexander V. Chernikov /* 804402000ffSAlexander V. Chernikov * Do not require upgrade by first BIOCSETF 805402000ffSAlexander V. Chernikov * (used to set snaplen) by pcap_open_live(). 806402000ffSAlexander V. Chernikov */ 807402000ffSAlexander V. Chernikov 808402000ffSAlexander V. Chernikov if (--d->bd_writer == 0) { 809402000ffSAlexander V. Chernikov /* 810402000ffSAlexander V. Chernikov * First snaplen filter has already 811402000ffSAlexander V. Chernikov * been set. This is probably catch-all 812402000ffSAlexander V. Chernikov * filter 813402000ffSAlexander V. Chernikov */ 814402000ffSAlexander V. Chernikov need_upgrade = 1; 815402000ffSAlexander V. Chernikov } 816402000ffSAlexander V. Chernikov } 817402000ffSAlexander V. Chernikov 818402000ffSAlexander V. Chernikov CTR5(KTR_NET, 819402000ffSAlexander V. Chernikov "%s: filter function set by pid %d, " 820402000ffSAlexander V. Chernikov "bd_writer counter %d, snap %d upgrade %d", 821402000ffSAlexander V. Chernikov __func__, d->bd_pid, d->bd_writer, 822402000ffSAlexander V. Chernikov is_snap, need_upgrade); 823402000ffSAlexander V. Chernikov 824402000ffSAlexander V. Chernikov return (need_upgrade); 825402000ffSAlexander V. Chernikov } 826402000ffSAlexander V. Chernikov 827402000ffSAlexander V. Chernikov /* 828df8bae1dSRodney W. Grimes * Detach a file from its interface. 829df8bae1dSRodney W. Grimes */ 830df8bae1dSRodney W. Grimes static void 83119ba8395SChristian S.J. Peron bpf_detachd(struct bpf_d *d) 832df8bae1dSRodney W. Grimes { 8336c74ff0eSAlexander V. Chernikov BPF_LOCK(); 834*699281b5SAndrey V. Elsukov bpf_detachd_locked(d, false); 8356c74ff0eSAlexander V. Chernikov BPF_UNLOCK(); 8366c74ff0eSAlexander V. Chernikov } 8376c74ff0eSAlexander V. Chernikov 8386c74ff0eSAlexander V. Chernikov static void 839*699281b5SAndrey V. Elsukov bpf_detachd_locked(struct bpf_d *d, bool detached_ifp) 8406c74ff0eSAlexander V. Chernikov { 841df8bae1dSRodney W. Grimes struct bpf_if *bp; 84246448b5aSRobert Watson struct ifnet *ifp; 843*699281b5SAndrey V. Elsukov int error; 84451ec1eb7SAlexander V. Chernikov 845e4b3229aSAlexander V. Chernikov BPF_LOCK_ASSERT(); 846*699281b5SAndrey V. Elsukov CTR2(KTR_NET, "%s: detach required by pid %d", __func__, d->bd_pid); 847e4b3229aSAlexander V. Chernikov 8486c74ff0eSAlexander V. Chernikov /* Check if descriptor is attached */ 8496c74ff0eSAlexander V. Chernikov if ((bp = d->bd_bif) == NULL) 8506c74ff0eSAlexander V. Chernikov return; 8516c74ff0eSAlexander V. Chernikov 852afa85850SAlexander V. Chernikov BPFD_LOCK(d); 853*699281b5SAndrey V. Elsukov /* Remove d from the interface's descriptor list. */ 854*699281b5SAndrey V. Elsukov CK_LIST_REMOVE(d, bd_next); 85551ec1eb7SAlexander V. Chernikov /* Save bd_writer value */ 85651ec1eb7SAlexander V. Chernikov error = d->bd_writer; 857e4b3229aSAlexander V. Chernikov ifp = bp->bif_ifp; 858572bde2aSRobert Watson d->bd_bif = NULL; 859*699281b5SAndrey V. Elsukov if (detached_ifp) { 860*699281b5SAndrey V. Elsukov /* 861*699281b5SAndrey V. Elsukov * Notify descriptor as it's detached, so that any 862*699281b5SAndrey V. Elsukov * sleepers wake up and get ENXIO. 863*699281b5SAndrey V. Elsukov */ 864*699281b5SAndrey V. Elsukov bpf_wakeup(d); 865*699281b5SAndrey V. Elsukov } 866afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 867e4b3229aSAlexander V. Chernikov bpf_bpfd_cnt--; 86846448b5aSRobert Watson 86951ec1eb7SAlexander V. Chernikov /* Call event handler iff d is attached */ 87051ec1eb7SAlexander V. Chernikov if (error == 0) 8715ce8d970SSam Leffler EVENTHANDLER_INVOKE(bpf_track, ifp, bp->bif_dlt, 0); 872b743c310SSam Leffler 873df8bae1dSRodney W. Grimes /* 874df8bae1dSRodney W. Grimes * Check if this descriptor had requested promiscuous mode. 875*699281b5SAndrey V. Elsukov * If so and ifnet is not detached, turn it off. 876df8bae1dSRodney W. Grimes */ 877*699281b5SAndrey V. Elsukov if (d->bd_promisc && !detached_ifp) { 878df8bae1dSRodney W. Grimes d->bd_promisc = 0; 87997021c24SMarko Zec CURVNET_SET(ifp->if_vnet); 88046448b5aSRobert Watson error = ifpromisc(ifp, 0); 88197021c24SMarko Zec CURVNET_RESTORE(); 8826e891d64SPoul-Henning Kamp if (error != 0 && error != ENXIO) { 883df8bae1dSRodney W. Grimes /* 8846e891d64SPoul-Henning Kamp * ENXIO can happen if a pccard is unplugged 885df8bae1dSRodney W. Grimes * Something is really wrong if we were able to put 886df8bae1dSRodney W. Grimes * the driver into promiscuous mode, but can't 887df8bae1dSRodney W. Grimes * take it out. 888df8bae1dSRodney W. Grimes */ 8898eab61f3SSam Leffler if_printf(bp->bif_ifp, 8908eab61f3SSam Leffler "bpf_detach: ifpromisc failed (%d)\n", error); 8916e891d64SPoul-Henning Kamp } 892df8bae1dSRodney W. Grimes } 893*699281b5SAndrey V. Elsukov bpfif_rele(bp); 894df8bae1dSRodney W. Grimes } 895df8bae1dSRodney W. Grimes 896df8bae1dSRodney W. Grimes /* 897136600feSEd Schouten * Close the descriptor by detaching it from its interface, 898136600feSEd Schouten * deallocating its buffers, and marking it free. 899136600feSEd Schouten */ 900136600feSEd Schouten static void 901136600feSEd Schouten bpf_dtor(void *data) 902136600feSEd Schouten { 903136600feSEd Schouten struct bpf_d *d = data; 904136600feSEd Schouten 905afa85850SAlexander V. Chernikov BPFD_LOCK(d); 906136600feSEd Schouten if (d->bd_state == BPF_WAITING) 907136600feSEd Schouten callout_stop(&d->bd_callout); 908136600feSEd Schouten d->bd_state = BPF_IDLE; 909afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 910136600feSEd Schouten funsetown(&d->bd_sigio); 911136600feSEd Schouten bpf_detachd(d); 912136600feSEd Schouten #ifdef MAC 913136600feSEd Schouten mac_bpfdesc_destroy(d); 914136600feSEd Schouten #endif /* MAC */ 9156aba400aSAttilio Rao seldrain(&d->bd_sel); 916136600feSEd Schouten knlist_destroy(&d->bd_sel.si_note); 9179fee1bd1SJung-uk Kim callout_drain(&d->bd_callout); 918*699281b5SAndrey V. Elsukov bpfd_rele(d); 919136600feSEd Schouten } 920136600feSEd Schouten 921136600feSEd Schouten /* 922df8bae1dSRodney W. Grimes * Open ethernet device. Returns ENXIO for illegal minor device number, 923df8bae1dSRodney W. Grimes * EBUSY if file is open by another process. 924df8bae1dSRodney W. Grimes */ 925df8bae1dSRodney W. Grimes /* ARGSUSED */ 92687f6c662SJulian Elischer static int 92719ba8395SChristian S.J. Peron bpfopen(struct cdev *dev, int flags, int fmt, struct thread *td) 928df8bae1dSRodney W. Grimes { 929e7bb21b3SJonathan Lemon struct bpf_d *d; 9304f42daa4SLuiz Otavio O Souza int error; 931df8bae1dSRodney W. Grimes 9321ede983cSDag-Erling Smørgrav d = malloc(sizeof(*d), M_BPF, M_WAITOK | M_ZERO); 933136600feSEd Schouten error = devfs_set_cdevpriv(d, bpf_dtor); 934136600feSEd Schouten if (error != 0) { 935136600feSEd Schouten free(d, M_BPF); 936136600feSEd Schouten return (error); 937136600feSEd Schouten } 9384d621040SChristian S.J. Peron 939b2b7ca49SAlexander V. Chernikov /* Setup counters */ 940b2b7ca49SAlexander V. Chernikov d->bd_rcount = counter_u64_alloc(M_WAITOK); 941b2b7ca49SAlexander V. Chernikov d->bd_dcount = counter_u64_alloc(M_WAITOK); 942b2b7ca49SAlexander V. Chernikov d->bd_fcount = counter_u64_alloc(M_WAITOK); 943b2b7ca49SAlexander V. Chernikov d->bd_wcount = counter_u64_alloc(M_WAITOK); 944b2b7ca49SAlexander V. Chernikov d->bd_wfcount = counter_u64_alloc(M_WAITOK); 945b2b7ca49SAlexander V. Chernikov d->bd_wdcount = counter_u64_alloc(M_WAITOK); 946b2b7ca49SAlexander V. Chernikov d->bd_zcopy = counter_u64_alloc(M_WAITOK); 947b2b7ca49SAlexander V. Chernikov 9484d621040SChristian S.J. Peron /* 9494d621040SChristian S.J. Peron * For historical reasons, perform a one-time initialization call to 9504d621040SChristian S.J. Peron * the buffer routines, even though we're not yet committed to a 9514d621040SChristian S.J. Peron * particular buffer method. 9524d621040SChristian S.J. Peron */ 9534d621040SChristian S.J. Peron bpf_buffer_init(d); 95471448753SAlexander Motin if ((flags & FREAD) == 0) 95571448753SAlexander Motin d->bd_writer = 2; 9563b3b91e7SGuy Helmer d->bd_hbuf_in_use = 0; 9574d621040SChristian S.J. Peron d->bd_bufmode = BPF_BUFMODE_BUFFER; 95800a83887SPaul Traina d->bd_sig = SIGIO; 959560a54e1SJung-uk Kim d->bd_direction = BPF_D_INOUT; 960*699281b5SAndrey V. Elsukov d->bd_refcnt = 1; 961e4b3229aSAlexander V. Chernikov BPF_PID_REFRESH(d, td); 96282f4445dSRobert Watson #ifdef MAC 96330d239bcSRobert Watson mac_bpfdesc_init(d); 96430d239bcSRobert Watson mac_bpfdesc_create(td->td_ucred, d); 96582f4445dSRobert Watson #endif 966afa85850SAlexander V. Chernikov mtx_init(&d->bd_lock, devtoname(dev), "bpf cdev lock", MTX_DEF); 967afa85850SAlexander V. Chernikov callout_init_mtx(&d->bd_callout, &d->bd_lock, 0); 968afa85850SAlexander V. Chernikov knlist_init_mtx(&d->bd_sel.si_note, &d->bd_lock); 969df8bae1dSRodney W. Grimes 970df8bae1dSRodney W. Grimes return (0); 971df8bae1dSRodney W. Grimes } 972df8bae1dSRodney W. Grimes 973df8bae1dSRodney W. Grimes /* 974df8bae1dSRodney W. Grimes * bpfread - read next chunk of packets from buffers 975df8bae1dSRodney W. Grimes */ 97687f6c662SJulian Elischer static int 97719ba8395SChristian S.J. Peron bpfread(struct cdev *dev, struct uio *uio, int ioflag) 978df8bae1dSRodney W. Grimes { 979136600feSEd Schouten struct bpf_d *d; 980df8bae1dSRodney W. Grimes int error; 9818df67d77SJung-uk Kim int non_block; 9828df67d77SJung-uk Kim int timed_out; 983df8bae1dSRodney W. Grimes 984136600feSEd Schouten error = devfs_get_cdevpriv((void **)&d); 985136600feSEd Schouten if (error != 0) 986136600feSEd Schouten return (error); 987136600feSEd Schouten 988df8bae1dSRodney W. Grimes /* 989df8bae1dSRodney W. Grimes * Restrict application to use a buffer the same size as 990df8bae1dSRodney W. Grimes * as kernel buffers. 991df8bae1dSRodney W. Grimes */ 992df8bae1dSRodney W. Grimes if (uio->uio_resid != d->bd_bufsize) 993df8bae1dSRodney W. Grimes return (EINVAL); 994df8bae1dSRodney W. Grimes 9958df67d77SJung-uk Kim non_block = ((ioflag & O_NONBLOCK) != 0); 9968df67d77SJung-uk Kim 997afa85850SAlexander V. Chernikov BPFD_LOCK(d); 998e4b3229aSAlexander V. Chernikov BPF_PID_REFRESH_CUR(d); 9994d621040SChristian S.J. Peron if (d->bd_bufmode != BPF_BUFMODE_BUFFER) { 1000afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 10014d621040SChristian S.J. Peron return (EOPNOTSUPP); 10024d621040SChristian S.J. Peron } 100381bda851SJohn Polstra if (d->bd_state == BPF_WAITING) 100481bda851SJohn Polstra callout_stop(&d->bd_callout); 100581bda851SJohn Polstra timed_out = (d->bd_state == BPF_TIMED_OUT); 100681bda851SJohn Polstra d->bd_state = BPF_IDLE; 1007d013d902SGuy Helmer while (d->bd_hbuf_in_use) { 1008d013d902SGuy Helmer error = mtx_sleep(&d->bd_hbuf_in_use, &d->bd_lock, 10093b3b91e7SGuy Helmer PRINET|PCATCH, "bd_hbuf", 0); 1010d013d902SGuy Helmer if (error != 0) { 1011d013d902SGuy Helmer BPFD_UNLOCK(d); 1012d013d902SGuy Helmer return (error); 1013d013d902SGuy Helmer } 1014d013d902SGuy Helmer } 1015df8bae1dSRodney W. Grimes /* 1016df8bae1dSRodney W. Grimes * If the hold buffer is empty, then do a timed sleep, which 1017df8bae1dSRodney W. Grimes * ends when the timeout expires or when enough packets 1018df8bae1dSRodney W. Grimes * have arrived to fill the store buffer. 1019df8bae1dSRodney W. Grimes */ 1020572bde2aSRobert Watson while (d->bd_hbuf == NULL) { 10218df67d77SJung-uk Kim if (d->bd_slen != 0) { 1022df8bae1dSRodney W. Grimes /* 1023df8bae1dSRodney W. Grimes * A packet(s) either arrived since the previous 1024df8bae1dSRodney W. Grimes * read or arrived while we were asleep. 10258df67d77SJung-uk Kim */ 10268df67d77SJung-uk Kim if (d->bd_immediate || non_block || timed_out) { 10278df67d77SJung-uk Kim /* 10288df67d77SJung-uk Kim * Rotate the buffers and return what's here 10298df67d77SJung-uk Kim * if we are in immediate mode, non-blocking 10308df67d77SJung-uk Kim * flag is set, or this descriptor timed out. 1031df8bae1dSRodney W. Grimes */ 1032df8bae1dSRodney W. Grimes ROTATE_BUFFERS(d); 1033df8bae1dSRodney W. Grimes break; 1034df8bae1dSRodney W. Grimes } 10358df67d77SJung-uk Kim } 1036de5d9935SRobert Watson 1037de5d9935SRobert Watson /* 1038de5d9935SRobert Watson * No data is available, check to see if the bpf device 1039de5d9935SRobert Watson * is still pointed at a real interface. If not, return 1040de5d9935SRobert Watson * ENXIO so that the userland process knows to rebind 1041de5d9935SRobert Watson * it before using it again. 1042de5d9935SRobert Watson */ 1043de5d9935SRobert Watson if (d->bd_bif == NULL) { 1044afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1045de5d9935SRobert Watson return (ENXIO); 1046de5d9935SRobert Watson } 1047de5d9935SRobert Watson 10488df67d77SJung-uk Kim if (non_block) { 1049afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1050fba3cfdeSJohn Polstra return (EWOULDBLOCK); 1051fba3cfdeSJohn Polstra } 1052afa85850SAlexander V. Chernikov error = msleep(d, &d->bd_lock, PRINET|PCATCH, 1053e7bb21b3SJonathan Lemon "bpf", d->bd_rtout); 1054df8bae1dSRodney W. Grimes if (error == EINTR || error == ERESTART) { 1055afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1056df8bae1dSRodney W. Grimes return (error); 1057df8bae1dSRodney W. Grimes } 1058df8bae1dSRodney W. Grimes if (error == EWOULDBLOCK) { 1059df8bae1dSRodney W. Grimes /* 1060df8bae1dSRodney W. Grimes * On a timeout, return what's in the buffer, 1061df8bae1dSRodney W. Grimes * which may be nothing. If there is something 1062df8bae1dSRodney W. Grimes * in the store buffer, we can rotate the buffers. 1063df8bae1dSRodney W. Grimes */ 1064df8bae1dSRodney W. Grimes if (d->bd_hbuf) 1065df8bae1dSRodney W. Grimes /* 1066df8bae1dSRodney W. Grimes * We filled up the buffer in between 1067df8bae1dSRodney W. Grimes * getting the timeout and arriving 1068df8bae1dSRodney W. Grimes * here, so we don't need to rotate. 1069df8bae1dSRodney W. Grimes */ 1070df8bae1dSRodney W. Grimes break; 1071df8bae1dSRodney W. Grimes 1072df8bae1dSRodney W. Grimes if (d->bd_slen == 0) { 1073afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1074df8bae1dSRodney W. Grimes return (0); 1075df8bae1dSRodney W. Grimes } 1076df8bae1dSRodney W. Grimes ROTATE_BUFFERS(d); 1077df8bae1dSRodney W. Grimes break; 1078df8bae1dSRodney W. Grimes } 1079df8bae1dSRodney W. Grimes } 1080df8bae1dSRodney W. Grimes /* 1081df8bae1dSRodney W. Grimes * At this point, we know we have something in the hold slot. 1082df8bae1dSRodney W. Grimes */ 10833b3b91e7SGuy Helmer d->bd_hbuf_in_use = 1; 1084afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1085df8bae1dSRodney W. Grimes 1086df8bae1dSRodney W. Grimes /* 1087df8bae1dSRodney W. Grimes * Move data from hold buffer into user space. 1088df8bae1dSRodney W. Grimes * We know the entire buffer is transferred since 1089df8bae1dSRodney W. Grimes * we checked above that the read buffer is bpf_bufsize bytes. 109031b32e6dSRobert Watson * 10913b3b91e7SGuy Helmer * We do not have to worry about simultaneous reads because 10923b3b91e7SGuy Helmer * we waited for sole access to the hold buffer above. 1093df8bae1dSRodney W. Grimes */ 10944d621040SChristian S.J. Peron error = bpf_uiomove(d, d->bd_hbuf, d->bd_hlen, uio); 1095df8bae1dSRodney W. Grimes 1096afa85850SAlexander V. Chernikov BPFD_LOCK(d); 10973b3b91e7SGuy Helmer KASSERT(d->bd_hbuf != NULL, ("bpfread: lost bd_hbuf")); 1098df8bae1dSRodney W. Grimes d->bd_fbuf = d->bd_hbuf; 1099572bde2aSRobert Watson d->bd_hbuf = NULL; 1100df8bae1dSRodney W. Grimes d->bd_hlen = 0; 110129f612ecSChristian S.J. Peron bpf_buf_reclaimed(d); 11023b3b91e7SGuy Helmer d->bd_hbuf_in_use = 0; 11033b3b91e7SGuy Helmer wakeup(&d->bd_hbuf_in_use); 1104afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1105df8bae1dSRodney W. Grimes 1106df8bae1dSRodney W. Grimes return (error); 1107df8bae1dSRodney W. Grimes } 1108df8bae1dSRodney W. Grimes 1109df8bae1dSRodney W. Grimes /* 1110df8bae1dSRodney W. Grimes * If there are processes sleeping on this descriptor, wake them up. 1111df8bae1dSRodney W. Grimes */ 1112e7bb21b3SJonathan Lemon static __inline void 111319ba8395SChristian S.J. Peron bpf_wakeup(struct bpf_d *d) 1114df8bae1dSRodney W. Grimes { 1115a3272e3cSChristian S.J. Peron 1116afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 111781bda851SJohn Polstra if (d->bd_state == BPF_WAITING) { 111881bda851SJohn Polstra callout_stop(&d->bd_callout); 111981bda851SJohn Polstra d->bd_state = BPF_IDLE; 112081bda851SJohn Polstra } 1121521f364bSDag-Erling Smørgrav wakeup(d); 1122831d27a9SDon Lewis if (d->bd_async && d->bd_sig && d->bd_sigio) 1123f1320723SAlfred Perlstein pgsigio(&d->bd_sigio, d->bd_sig, 0); 112400a83887SPaul Traina 1125512824f8SSeigo Tanimura selwakeuppri(&d->bd_sel, PRINET); 1126ad3b9257SJohn-Mark Gurney KNOTE_LOCKED(&d->bd_sel.si_note, 0); 1127df8bae1dSRodney W. Grimes } 1128df8bae1dSRodney W. Grimes 112981bda851SJohn Polstra static void 113019ba8395SChristian S.J. Peron bpf_timed_out(void *arg) 113181bda851SJohn Polstra { 113281bda851SJohn Polstra struct bpf_d *d = (struct bpf_d *)arg; 113381bda851SJohn Polstra 1134afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 11359fee1bd1SJung-uk Kim 1136*699281b5SAndrey V. Elsukov if (callout_pending(&d->bd_callout) || 1137*699281b5SAndrey V. Elsukov !callout_active(&d->bd_callout)) 11389fee1bd1SJung-uk Kim return; 113981bda851SJohn Polstra if (d->bd_state == BPF_WAITING) { 114081bda851SJohn Polstra d->bd_state = BPF_TIMED_OUT; 114181bda851SJohn Polstra if (d->bd_slen != 0) 114281bda851SJohn Polstra bpf_wakeup(d); 114381bda851SJohn Polstra } 114481bda851SJohn Polstra } 114581bda851SJohn Polstra 114687f6c662SJulian Elischer static int 11474d621040SChristian S.J. Peron bpf_ready(struct bpf_d *d) 11484d621040SChristian S.J. Peron { 11494d621040SChristian S.J. Peron 1150afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 11514d621040SChristian S.J. Peron 11524d621040SChristian S.J. Peron if (!bpf_canfreebuf(d) && d->bd_hlen != 0) 11534d621040SChristian S.J. Peron return (1); 11544d621040SChristian S.J. Peron if ((d->bd_immediate || d->bd_state == BPF_TIMED_OUT) && 11554d621040SChristian S.J. Peron d->bd_slen != 0) 11564d621040SChristian S.J. Peron return (1); 11574d621040SChristian S.J. Peron return (0); 11584d621040SChristian S.J. Peron } 11594d621040SChristian S.J. Peron 11604d621040SChristian S.J. Peron static int 116119ba8395SChristian S.J. Peron bpfwrite(struct cdev *dev, struct uio *uio, int ioflag) 1162df8bae1dSRodney W. Grimes { 1163*699281b5SAndrey V. Elsukov struct route ro; 1164*699281b5SAndrey V. Elsukov struct sockaddr dst; 1165*699281b5SAndrey V. Elsukov struct epoch_tracker et; 1166*699281b5SAndrey V. Elsukov struct bpf_if *bp; 1167136600feSEd Schouten struct bpf_d *d; 1168df8bae1dSRodney W. Grimes struct ifnet *ifp; 1169560a54e1SJung-uk Kim struct mbuf *m, *mc; 1170560a54e1SJung-uk Kim int error, hlen; 1171df8bae1dSRodney W. Grimes 1172136600feSEd Schouten error = devfs_get_cdevpriv((void **)&d); 1173136600feSEd Schouten if (error != 0) 1174136600feSEd Schouten return (error); 1175136600feSEd Schouten 1176*699281b5SAndrey V. Elsukov NET_EPOCH_ENTER(et); 1177*699281b5SAndrey V. Elsukov BPFD_LOCK(d); 1178e4b3229aSAlexander V. Chernikov BPF_PID_REFRESH_CUR(d); 1179b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_wcount, 1); 1180*699281b5SAndrey V. Elsukov if ((bp = d->bd_bif) == NULL) { 1181*699281b5SAndrey V. Elsukov error = ENXIO; 1182*699281b5SAndrey V. Elsukov goto out_locked; 11834d621040SChristian S.J. Peron } 1184df8bae1dSRodney W. Grimes 1185*699281b5SAndrey V. Elsukov ifp = bp->bif_ifp; 11864d621040SChristian S.J. Peron if ((ifp->if_flags & IFF_UP) == 0) { 1187*699281b5SAndrey V. Elsukov error = ENETDOWN; 1188*699281b5SAndrey V. Elsukov goto out_locked; 11894d621040SChristian S.J. Peron } 11903518d220SSam Leffler 1191*699281b5SAndrey V. Elsukov if (uio->uio_resid == 0) 1192*699281b5SAndrey V. Elsukov goto out_locked; 1193df8bae1dSRodney W. Grimes 11948240bf1eSRobert Watson bzero(&dst, sizeof(dst)); 1195d83e603aSChristian S.J. Peron m = NULL; 1196d83e603aSChristian S.J. Peron hlen = 0; 1197*699281b5SAndrey V. Elsukov 1198*699281b5SAndrey V. Elsukov /* 1199*699281b5SAndrey V. Elsukov * Take extra reference, unlock d and exit from epoch section, 1200*699281b5SAndrey V. Elsukov * since bpf_movein() can sleep. 1201*699281b5SAndrey V. Elsukov */ 1202*699281b5SAndrey V. Elsukov bpfd_ref(d); 1203*699281b5SAndrey V. Elsukov NET_EPOCH_EXIT(et); 1204*699281b5SAndrey V. Elsukov BPFD_UNLOCK(d); 1205*699281b5SAndrey V. Elsukov 1206*699281b5SAndrey V. Elsukov error = bpf_movein(uio, (int)bp->bif_dlt, ifp, 12074fb3a820SAlexander V. Chernikov &m, &dst, &hlen, d); 1208*699281b5SAndrey V. Elsukov 1209*699281b5SAndrey V. Elsukov if (error != 0) { 1210b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_wdcount, 1); 1211*699281b5SAndrey V. Elsukov bpfd_rele(d); 1212df8bae1dSRodney W. Grimes return (error); 12134d621040SChristian S.J. Peron } 1214*699281b5SAndrey V. Elsukov 1215*699281b5SAndrey V. Elsukov BPFD_LOCK(d); 1216*699281b5SAndrey V. Elsukov /* 1217*699281b5SAndrey V. Elsukov * Check that descriptor is still attached to the interface. 1218*699281b5SAndrey V. Elsukov * This can happen on bpfdetach(). To avoid access to detached 1219*699281b5SAndrey V. Elsukov * ifnet, free mbuf and return ENXIO. 1220*699281b5SAndrey V. Elsukov */ 1221*699281b5SAndrey V. Elsukov if (d->bd_bif == NULL) { 1222*699281b5SAndrey V. Elsukov counter_u64_add(d->bd_wdcount, 1); 1223*699281b5SAndrey V. Elsukov BPFD_UNLOCK(d); 1224*699281b5SAndrey V. Elsukov bpfd_rele(d); 1225*699281b5SAndrey V. Elsukov m_freem(m); 1226*699281b5SAndrey V. Elsukov return (ENXIO); 1227*699281b5SAndrey V. Elsukov } 1228b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_wfcount, 1); 1229114ae644SMike Smith if (d->bd_hdrcmplt) 1230114ae644SMike Smith dst.sa_family = pseudo_AF_HDRCMPLT; 1231114ae644SMike Smith 1232560a54e1SJung-uk Kim if (d->bd_feedback) { 1233eb1b1807SGleb Smirnoff mc = m_dup(m, M_NOWAIT); 1234560a54e1SJung-uk Kim if (mc != NULL) 1235560a54e1SJung-uk Kim mc->m_pkthdr.rcvif = ifp; 12368cd892f7SJung-uk Kim /* Set M_PROMISC for outgoing packets to be discarded. */ 12378cd892f7SJung-uk Kim if (d->bd_direction == BPF_D_INOUT) 12388cd892f7SJung-uk Kim m->m_flags |= M_PROMISC; 1239560a54e1SJung-uk Kim } else 1240560a54e1SJung-uk Kim mc = NULL; 1241560a54e1SJung-uk Kim 1242560a54e1SJung-uk Kim m->m_pkthdr.len -= hlen; 1243560a54e1SJung-uk Kim m->m_len -= hlen; 1244560a54e1SJung-uk Kim m->m_data += hlen; /* XXX */ 1245560a54e1SJung-uk Kim 124621ca7b57SMarko Zec CURVNET_SET(ifp->if_vnet); 124782f4445dSRobert Watson #ifdef MAC 124830d239bcSRobert Watson mac_bpfdesc_create_mbuf(d, m); 1249560a54e1SJung-uk Kim if (mc != NULL) 125030d239bcSRobert Watson mac_bpfdesc_create_mbuf(d, mc); 125182f4445dSRobert Watson #endif 1252560a54e1SJung-uk Kim 12534fb3a820SAlexander V. Chernikov bzero(&ro, sizeof(ro)); 12544fb3a820SAlexander V. Chernikov if (hlen != 0) { 12554fb3a820SAlexander V. Chernikov ro.ro_prepend = (u_char *)&dst.sa_data; 12564fb3a820SAlexander V. Chernikov ro.ro_plen = hlen; 12574fb3a820SAlexander V. Chernikov ro.ro_flags = RT_HAS_HEADER; 12584fb3a820SAlexander V. Chernikov } 12594fb3a820SAlexander V. Chernikov 12604fb3a820SAlexander V. Chernikov error = (*ifp->if_output)(ifp, m, &dst, &ro); 12614d621040SChristian S.J. Peron if (error) 1262b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_wdcount, 1); 1263560a54e1SJung-uk Kim 1264560a54e1SJung-uk Kim if (mc != NULL) { 12650bf686c1SRobert Watson if (error == 0) 1266560a54e1SJung-uk Kim (*ifp->if_input)(ifp, mc); 12670bf686c1SRobert Watson else 1268560a54e1SJung-uk Kim m_freem(mc); 1269560a54e1SJung-uk Kim } 127021ca7b57SMarko Zec CURVNET_RESTORE(); 1271*699281b5SAndrey V. Elsukov BPFD_UNLOCK(d); 1272*699281b5SAndrey V. Elsukov bpfd_rele(d); 1273*699281b5SAndrey V. Elsukov return (error); 1274560a54e1SJung-uk Kim 1275*699281b5SAndrey V. Elsukov out_locked: 1276*699281b5SAndrey V. Elsukov counter_u64_add(d->bd_wdcount, 1); 1277*699281b5SAndrey V. Elsukov NET_EPOCH_EXIT(et); 1278*699281b5SAndrey V. Elsukov BPFD_UNLOCK(d); 1279df8bae1dSRodney W. Grimes return (error); 1280df8bae1dSRodney W. Grimes } 1281df8bae1dSRodney W. Grimes 1282df8bae1dSRodney W. Grimes /* 1283e82669d9SRobert Watson * Reset a descriptor by flushing its packet buffer and clearing the receive 1284e82669d9SRobert Watson * and drop counts. This is doable for kernel-only buffers, but with 1285e82669d9SRobert Watson * zero-copy buffers, we can't write to (or rotate) buffers that are 1286e82669d9SRobert Watson * currently owned by userspace. It would be nice if we could encapsulate 1287e82669d9SRobert Watson * this logic in the buffer code rather than here. 1288df8bae1dSRodney W. Grimes */ 1289df8bae1dSRodney W. Grimes static void 129019ba8395SChristian S.J. Peron reset_d(struct bpf_d *d) 1291df8bae1dSRodney W. Grimes { 1292e7bb21b3SJonathan Lemon 1293afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 1294e82669d9SRobert Watson 12953b3b91e7SGuy Helmer while (d->bd_hbuf_in_use) 12963b3b91e7SGuy Helmer mtx_sleep(&d->bd_hbuf_in_use, &d->bd_lock, PRINET, 12973b3b91e7SGuy Helmer "bd_hbuf", 0); 1298e82669d9SRobert Watson if ((d->bd_hbuf != NULL) && 1299e82669d9SRobert Watson (d->bd_bufmode != BPF_BUFMODE_ZBUF || bpf_canfreebuf(d))) { 1300df8bae1dSRodney W. Grimes /* Free the hold buffer. */ 1301df8bae1dSRodney W. Grimes d->bd_fbuf = d->bd_hbuf; 1302572bde2aSRobert Watson d->bd_hbuf = NULL; 1303e82669d9SRobert Watson d->bd_hlen = 0; 130429f612ecSChristian S.J. Peron bpf_buf_reclaimed(d); 1305df8bae1dSRodney W. Grimes } 1306e82669d9SRobert Watson if (bpf_canwritebuf(d)) 1307df8bae1dSRodney W. Grimes d->bd_slen = 0; 1308b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_rcount); 1309b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_dcount); 1310b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_fcount); 1311b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_wcount); 1312b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_wfcount); 1313b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_wdcount); 1314b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_zcopy); 1315df8bae1dSRodney W. Grimes } 1316df8bae1dSRodney W. Grimes 1317df8bae1dSRodney W. Grimes /* 1318df8bae1dSRodney W. Grimes * FIONREAD Check for read packet available. 1319df8bae1dSRodney W. Grimes * BIOCGBLEN Get buffer len [for read()]. 1320f11c3508SDavid Malone * BIOCSETF Set read filter. 1321f11c3508SDavid Malone * BIOCSETFNR Set read filter without resetting descriptor. 1322f11c3508SDavid Malone * BIOCSETWF Set write filter. 1323df8bae1dSRodney W. Grimes * BIOCFLUSH Flush read packet buffer. 1324df8bae1dSRodney W. Grimes * BIOCPROMISC Put interface into promiscuous mode. 1325df8bae1dSRodney W. Grimes * BIOCGDLT Get link layer type. 1326df8bae1dSRodney W. Grimes * BIOCGETIF Get interface name. 1327df8bae1dSRodney W. Grimes * BIOCSETIF Set interface. 1328df8bae1dSRodney W. Grimes * BIOCSRTIMEOUT Set read timeout. 1329df8bae1dSRodney W. Grimes * BIOCGRTIMEOUT Get read timeout. 1330df8bae1dSRodney W. Grimes * BIOCGSTATS Get packet stats. 1331df8bae1dSRodney W. Grimes * BIOCIMMEDIATE Set immediate mode. 1332df8bae1dSRodney W. Grimes * BIOCVERSION Get filter language version. 1333114ae644SMike Smith * BIOCGHDRCMPLT Get "header already complete" flag 1334114ae644SMike Smith * BIOCSHDRCMPLT Set "header already complete" flag 1335560a54e1SJung-uk Kim * BIOCGDIRECTION Get packet direction flag 1336560a54e1SJung-uk Kim * BIOCSDIRECTION Set packet direction flag 1337547d94bdSJung-uk Kim * BIOCGTSTAMP Get time stamp format and resolution. 1338547d94bdSJung-uk Kim * BIOCSTSTAMP Set time stamp format and resolution. 133993e39f0bSChristian S.J. Peron * BIOCLOCK Set "locked" flag 1340560a54e1SJung-uk Kim * BIOCFEEDBACK Set packet feedback mode. 13414d621040SChristian S.J. Peron * BIOCSETZBUF Set current zero-copy buffer locations. 13424d621040SChristian S.J. Peron * BIOCGETZMAX Get maximum zero-copy buffer size. 13434d621040SChristian S.J. Peron * BIOCROTZBUF Force rotation of zero-copy buffer 13444d621040SChristian S.J. Peron * BIOCSETBUFMODE Set buffer mode. 13454d621040SChristian S.J. Peron * BIOCGETBUFMODE Get current buffer mode. 1346df8bae1dSRodney W. Grimes */ 1347df8bae1dSRodney W. Grimes /* ARGSUSED */ 134887f6c662SJulian Elischer static int 134919ba8395SChristian S.J. Peron bpfioctl(struct cdev *dev, u_long cmd, caddr_t addr, int flags, 135019ba8395SChristian S.J. Peron struct thread *td) 1351df8bae1dSRodney W. Grimes { 1352136600feSEd Schouten struct bpf_d *d; 1353136600feSEd Schouten int error; 1354136600feSEd Schouten 1355136600feSEd Schouten error = devfs_get_cdevpriv((void **)&d); 1356136600feSEd Schouten if (error != 0) 1357136600feSEd Schouten return (error); 1358df8bae1dSRodney W. Grimes 1359b75a24a0SChristian S.J. Peron /* 1360b75a24a0SChristian S.J. Peron * Refresh PID associated with this descriptor. 1361b75a24a0SChristian S.J. Peron */ 1362afa85850SAlexander V. Chernikov BPFD_LOCK(d); 1363e4b3229aSAlexander V. Chernikov BPF_PID_REFRESH(d, td); 136481bda851SJohn Polstra if (d->bd_state == BPF_WAITING) 136581bda851SJohn Polstra callout_stop(&d->bd_callout); 136681bda851SJohn Polstra d->bd_state = BPF_IDLE; 1367afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 136881bda851SJohn Polstra 136993e39f0bSChristian S.J. Peron if (d->bd_locked == 1) { 137093e39f0bSChristian S.J. Peron switch (cmd) { 137193e39f0bSChristian S.J. Peron case BIOCGBLEN: 137293e39f0bSChristian S.J. Peron case BIOCFLUSH: 137393e39f0bSChristian S.J. Peron case BIOCGDLT: 137493e39f0bSChristian S.J. Peron case BIOCGDLTLIST: 1375fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 1376fc0a61a4SKonstantin Belousov case BIOCGDLTLIST32: 1377fc0a61a4SKonstantin Belousov #endif 137893e39f0bSChristian S.J. Peron case BIOCGETIF: 137993e39f0bSChristian S.J. Peron case BIOCGRTIMEOUT: 1380b4366092SJustin Hibbits #if defined(COMPAT_FREEBSD32) && defined(__amd64__) 1381fc0a61a4SKonstantin Belousov case BIOCGRTIMEOUT32: 1382fc0a61a4SKonstantin Belousov #endif 138393e39f0bSChristian S.J. Peron case BIOCGSTATS: 138493e39f0bSChristian S.J. Peron case BIOCVERSION: 138593e39f0bSChristian S.J. Peron case BIOCGRSIG: 138693e39f0bSChristian S.J. Peron case BIOCGHDRCMPLT: 1387547d94bdSJung-uk Kim case BIOCSTSTAMP: 1388560a54e1SJung-uk Kim case BIOCFEEDBACK: 138993e39f0bSChristian S.J. Peron case FIONREAD: 139093e39f0bSChristian S.J. Peron case BIOCLOCK: 139193e39f0bSChristian S.J. Peron case BIOCSRTIMEOUT: 1392b4366092SJustin Hibbits #if defined(COMPAT_FREEBSD32) && defined(__amd64__) 1393fc0a61a4SKonstantin Belousov case BIOCSRTIMEOUT32: 1394fc0a61a4SKonstantin Belousov #endif 139593e39f0bSChristian S.J. Peron case BIOCIMMEDIATE: 139693e39f0bSChristian S.J. Peron case TIOCGPGRP: 13974d621040SChristian S.J. Peron case BIOCROTZBUF: 139893e39f0bSChristian S.J. Peron break; 139993e39f0bSChristian S.J. Peron default: 140093e39f0bSChristian S.J. Peron return (EPERM); 140193e39f0bSChristian S.J. Peron } 140293e39f0bSChristian S.J. Peron } 1403fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 1404fc0a61a4SKonstantin Belousov /* 1405fc0a61a4SKonstantin Belousov * If we see a 32-bit compat ioctl, mark the stream as 32-bit so 1406fc0a61a4SKonstantin Belousov * that it will get 32-bit packet headers. 1407fc0a61a4SKonstantin Belousov */ 1408fc0a61a4SKonstantin Belousov switch (cmd) { 1409fc0a61a4SKonstantin Belousov case BIOCSETF32: 1410fc0a61a4SKonstantin Belousov case BIOCSETFNR32: 1411fc0a61a4SKonstantin Belousov case BIOCSETWF32: 1412fc0a61a4SKonstantin Belousov case BIOCGDLTLIST32: 1413fc0a61a4SKonstantin Belousov case BIOCGRTIMEOUT32: 1414fc0a61a4SKonstantin Belousov case BIOCSRTIMEOUT32: 141574549d4bSWojciech Macek if (SV_PROC_FLAG(td->td_proc, SV_ILP32)) { 141697aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1417fc0a61a4SKonstantin Belousov d->bd_compat32 = 1; 141897aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1419fc0a61a4SKonstantin Belousov } 142074549d4bSWojciech Macek } 1421fc0a61a4SKonstantin Belousov #endif 1422fc0a61a4SKonstantin Belousov 142397021c24SMarko Zec CURVNET_SET(TD_TO_VNET(td)); 1424df8bae1dSRodney W. Grimes switch (cmd) { 1425df8bae1dSRodney W. Grimes 1426df8bae1dSRodney W. Grimes default: 1427df8bae1dSRodney W. Grimes error = EINVAL; 1428df8bae1dSRodney W. Grimes break; 1429df8bae1dSRodney W. Grimes 1430df8bae1dSRodney W. Grimes /* 1431df8bae1dSRodney W. Grimes * Check for read packet available. 1432df8bae1dSRodney W. Grimes */ 1433df8bae1dSRodney W. Grimes case FIONREAD: 1434df8bae1dSRodney W. Grimes { 1435df8bae1dSRodney W. Grimes int n; 1436df8bae1dSRodney W. Grimes 1437afa85850SAlexander V. Chernikov BPFD_LOCK(d); 1438df8bae1dSRodney W. Grimes n = d->bd_slen; 14393b3b91e7SGuy Helmer while (d->bd_hbuf_in_use) 14403b3b91e7SGuy Helmer mtx_sleep(&d->bd_hbuf_in_use, &d->bd_lock, 14413b3b91e7SGuy Helmer PRINET, "bd_hbuf", 0); 1442df8bae1dSRodney W. Grimes if (d->bd_hbuf) 1443df8bae1dSRodney W. Grimes n += d->bd_hlen; 1444afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1445df8bae1dSRodney W. Grimes 1446df8bae1dSRodney W. Grimes *(int *)addr = n; 1447df8bae1dSRodney W. Grimes break; 1448df8bae1dSRodney W. Grimes } 1449df8bae1dSRodney W. Grimes 1450df8bae1dSRodney W. Grimes /* 1451df8bae1dSRodney W. Grimes * Get buffer len [for read()]. 1452df8bae1dSRodney W. Grimes */ 1453df8bae1dSRodney W. Grimes case BIOCGBLEN: 145497aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1455df8bae1dSRodney W. Grimes *(u_int *)addr = d->bd_bufsize; 145697aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1457df8bae1dSRodney W. Grimes break; 1458df8bae1dSRodney W. Grimes 1459df8bae1dSRodney W. Grimes /* 1460df8bae1dSRodney W. Grimes * Set buffer length. 1461df8bae1dSRodney W. Grimes */ 1462df8bae1dSRodney W. Grimes case BIOCSBLEN: 14634d621040SChristian S.J. Peron error = bpf_ioctl_sblen(d, (u_int *)addr); 1464df8bae1dSRodney W. Grimes break; 1465df8bae1dSRodney W. Grimes 1466df8bae1dSRodney W. Grimes /* 1467df8bae1dSRodney W. Grimes * Set link layer read filter. 1468df8bae1dSRodney W. Grimes */ 1469df8bae1dSRodney W. Grimes case BIOCSETF: 1470f11c3508SDavid Malone case BIOCSETFNR: 147193e39f0bSChristian S.J. Peron case BIOCSETWF: 1472fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 1473fc0a61a4SKonstantin Belousov case BIOCSETF32: 1474fc0a61a4SKonstantin Belousov case BIOCSETFNR32: 1475fc0a61a4SKonstantin Belousov case BIOCSETWF32: 1476fc0a61a4SKonstantin Belousov #endif 147793e39f0bSChristian S.J. Peron error = bpf_setf(d, (struct bpf_program *)addr, cmd); 1478df8bae1dSRodney W. Grimes break; 1479df8bae1dSRodney W. Grimes 1480df8bae1dSRodney W. Grimes /* 1481df8bae1dSRodney W. Grimes * Flush read packet buffer. 1482df8bae1dSRodney W. Grimes */ 1483df8bae1dSRodney W. Grimes case BIOCFLUSH: 1484afa85850SAlexander V. Chernikov BPFD_LOCK(d); 1485df8bae1dSRodney W. Grimes reset_d(d); 1486afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1487df8bae1dSRodney W. Grimes break; 1488df8bae1dSRodney W. Grimes 1489df8bae1dSRodney W. Grimes /* 1490df8bae1dSRodney W. Grimes * Put interface into promiscuous mode. 1491df8bae1dSRodney W. Grimes */ 1492df8bae1dSRodney W. Grimes case BIOCPROMISC: 1493572bde2aSRobert Watson if (d->bd_bif == NULL) { 1494df8bae1dSRodney W. Grimes /* 1495df8bae1dSRodney W. Grimes * No interface attached yet. 1496df8bae1dSRodney W. Grimes */ 1497df8bae1dSRodney W. Grimes error = EINVAL; 1498df8bae1dSRodney W. Grimes break; 1499df8bae1dSRodney W. Grimes } 1500df8bae1dSRodney W. Grimes if (d->bd_promisc == 0) { 1501df8bae1dSRodney W. Grimes error = ifpromisc(d->bd_bif->bif_ifp, 1); 1502df8bae1dSRodney W. Grimes if (error == 0) 1503df8bae1dSRodney W. Grimes d->bd_promisc = 1; 1504df8bae1dSRodney W. Grimes } 1505df8bae1dSRodney W. Grimes break; 1506df8bae1dSRodney W. Grimes 1507df8bae1dSRodney W. Grimes /* 15088eab61f3SSam Leffler * Get current data link type. 1509df8bae1dSRodney W. Grimes */ 1510df8bae1dSRodney W. Grimes case BIOCGDLT: 151197aacec6SAlexander V. Chernikov BPF_LOCK(); 1512572bde2aSRobert Watson if (d->bd_bif == NULL) 1513df8bae1dSRodney W. Grimes error = EINVAL; 1514df8bae1dSRodney W. Grimes else 1515df8bae1dSRodney W. Grimes *(u_int *)addr = d->bd_bif->bif_dlt; 151697aacec6SAlexander V. Chernikov BPF_UNLOCK(); 1517df8bae1dSRodney W. Grimes break; 1518df8bae1dSRodney W. Grimes 1519df8bae1dSRodney W. Grimes /* 15208eab61f3SSam Leffler * Get a list of supported data link types. 15218eab61f3SSam Leffler */ 1522fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 1523fc0a61a4SKonstantin Belousov case BIOCGDLTLIST32: 1524fc0a61a4SKonstantin Belousov { 1525fc0a61a4SKonstantin Belousov struct bpf_dltlist32 *list32; 1526fc0a61a4SKonstantin Belousov struct bpf_dltlist dltlist; 1527fc0a61a4SKonstantin Belousov 1528fc0a61a4SKonstantin Belousov list32 = (struct bpf_dltlist32 *)addr; 1529fc0a61a4SKonstantin Belousov dltlist.bfl_len = list32->bfl_len; 1530fc0a61a4SKonstantin Belousov dltlist.bfl_list = PTRIN(list32->bfl_list); 153197aacec6SAlexander V. Chernikov BPF_LOCK(); 1532fc0a61a4SKonstantin Belousov if (d->bd_bif == NULL) 1533fc0a61a4SKonstantin Belousov error = EINVAL; 1534fc0a61a4SKonstantin Belousov else { 1535fc0a61a4SKonstantin Belousov error = bpf_getdltlist(d, &dltlist); 1536fc0a61a4SKonstantin Belousov if (error == 0) 1537fc0a61a4SKonstantin Belousov list32->bfl_len = dltlist.bfl_len; 1538fc0a61a4SKonstantin Belousov } 153997aacec6SAlexander V. Chernikov BPF_UNLOCK(); 1540fc0a61a4SKonstantin Belousov break; 1541fc0a61a4SKonstantin Belousov } 1542fc0a61a4SKonstantin Belousov #endif 1543fc0a61a4SKonstantin Belousov 15448eab61f3SSam Leffler case BIOCGDLTLIST: 154597aacec6SAlexander V. Chernikov BPF_LOCK(); 1546572bde2aSRobert Watson if (d->bd_bif == NULL) 15478eab61f3SSam Leffler error = EINVAL; 15488eab61f3SSam Leffler else 15498eab61f3SSam Leffler error = bpf_getdltlist(d, (struct bpf_dltlist *)addr); 155097aacec6SAlexander V. Chernikov BPF_UNLOCK(); 15518eab61f3SSam Leffler break; 15528eab61f3SSam Leffler 15538eab61f3SSam Leffler /* 15548eab61f3SSam Leffler * Set data link type. 15558eab61f3SSam Leffler */ 15568eab61f3SSam Leffler case BIOCSDLT: 15576c74ff0eSAlexander V. Chernikov BPF_LOCK(); 1558572bde2aSRobert Watson if (d->bd_bif == NULL) 15598eab61f3SSam Leffler error = EINVAL; 15608eab61f3SSam Leffler else 15618eab61f3SSam Leffler error = bpf_setdlt(d, *(u_int *)addr); 15626c74ff0eSAlexander V. Chernikov BPF_UNLOCK(); 15638eab61f3SSam Leffler break; 15648eab61f3SSam Leffler 15658eab61f3SSam Leffler /* 15661dd0feaaSArchie Cobbs * Get interface name. 1567df8bae1dSRodney W. Grimes */ 1568df8bae1dSRodney W. Grimes case BIOCGETIF: 156997aacec6SAlexander V. Chernikov BPF_LOCK(); 1570572bde2aSRobert Watson if (d->bd_bif == NULL) 1571df8bae1dSRodney W. Grimes error = EINVAL; 15721dd0feaaSArchie Cobbs else { 15731dd0feaaSArchie Cobbs struct ifnet *const ifp = d->bd_bif->bif_ifp; 15741dd0feaaSArchie Cobbs struct ifreq *const ifr = (struct ifreq *)addr; 15751dd0feaaSArchie Cobbs 15769bf40edeSBrooks Davis strlcpy(ifr->ifr_name, ifp->if_xname, 15779bf40edeSBrooks Davis sizeof(ifr->ifr_name)); 15781dd0feaaSArchie Cobbs } 157997aacec6SAlexander V. Chernikov BPF_UNLOCK(); 1580df8bae1dSRodney W. Grimes break; 1581df8bae1dSRodney W. Grimes 1582df8bae1dSRodney W. Grimes /* 1583df8bae1dSRodney W. Grimes * Set interface. 1584df8bae1dSRodney W. Grimes */ 1585df8bae1dSRodney W. Grimes case BIOCSETIF: 15864f42daa4SLuiz Otavio O Souza { 15874f42daa4SLuiz Otavio O Souza int alloc_buf, size; 15884f42daa4SLuiz Otavio O Souza 15894f42daa4SLuiz Otavio O Souza /* 15904f42daa4SLuiz Otavio O Souza * Behavior here depends on the buffering model. If 15914f42daa4SLuiz Otavio O Souza * we're using kernel memory buffers, then we can 15924f42daa4SLuiz Otavio O Souza * allocate them here. If we're using zero-copy, 15934f42daa4SLuiz Otavio O Souza * then the user process must have registered buffers 15944f42daa4SLuiz Otavio O Souza * by the time we get here. 15954f42daa4SLuiz Otavio O Souza */ 15964f42daa4SLuiz Otavio O Souza alloc_buf = 0; 15974f42daa4SLuiz Otavio O Souza BPFD_LOCK(d); 15984f42daa4SLuiz Otavio O Souza if (d->bd_bufmode == BPF_BUFMODE_BUFFER && 15994f42daa4SLuiz Otavio O Souza d->bd_sbuf == NULL) 16004f42daa4SLuiz Otavio O Souza alloc_buf = 1; 16014f42daa4SLuiz Otavio O Souza BPFD_UNLOCK(d); 16024f42daa4SLuiz Otavio O Souza if (alloc_buf) { 16034f42daa4SLuiz Otavio O Souza size = d->bd_bufsize; 16044f42daa4SLuiz Otavio O Souza error = bpf_buffer_ioctl_sblen(d, &size); 16054f42daa4SLuiz Otavio O Souza if (error != 0) 16064f42daa4SLuiz Otavio O Souza break; 16074f42daa4SLuiz Otavio O Souza } 16086c74ff0eSAlexander V. Chernikov BPF_LOCK(); 1609df8bae1dSRodney W. Grimes error = bpf_setif(d, (struct ifreq *)addr); 16106c74ff0eSAlexander V. Chernikov BPF_UNLOCK(); 1611df8bae1dSRodney W. Grimes break; 16124f42daa4SLuiz Otavio O Souza } 1613df8bae1dSRodney W. Grimes 1614df8bae1dSRodney W. Grimes /* 1615df8bae1dSRodney W. Grimes * Set read timeout. 1616df8bae1dSRodney W. Grimes */ 1617df8bae1dSRodney W. Grimes case BIOCSRTIMEOUT: 1618b4366092SJustin Hibbits #if defined(COMPAT_FREEBSD32) && defined(__amd64__) 1619fc0a61a4SKonstantin Belousov case BIOCSRTIMEOUT32: 1620fc0a61a4SKonstantin Belousov #endif 1621df8bae1dSRodney W. Grimes { 1622df8bae1dSRodney W. Grimes struct timeval *tv = (struct timeval *)addr; 16239624d947SJuli Mallett #if defined(COMPAT_FREEBSD32) && !defined(__mips__) 1624fc0a61a4SKonstantin Belousov struct timeval32 *tv32; 1625fc0a61a4SKonstantin Belousov struct timeval tv64; 1626fc0a61a4SKonstantin Belousov 1627fc0a61a4SKonstantin Belousov if (cmd == BIOCSRTIMEOUT32) { 1628fc0a61a4SKonstantin Belousov tv32 = (struct timeval32 *)addr; 1629fc0a61a4SKonstantin Belousov tv = &tv64; 1630fc0a61a4SKonstantin Belousov tv->tv_sec = tv32->tv_sec; 1631fc0a61a4SKonstantin Belousov tv->tv_usec = tv32->tv_usec; 1632fc0a61a4SKonstantin Belousov } else 1633fc0a61a4SKonstantin Belousov #endif 1634fc0a61a4SKonstantin Belousov tv = (struct timeval *)addr; 1635df8bae1dSRodney W. Grimes 1636bdc2cdc5SAlexander Langer /* 1637bdc2cdc5SAlexander Langer * Subtract 1 tick from tvtohz() since this isn't 1638bdc2cdc5SAlexander Langer * a one-shot timer. 1639bdc2cdc5SAlexander Langer */ 1640bdc2cdc5SAlexander Langer if ((error = itimerfix(tv)) == 0) 1641bdc2cdc5SAlexander Langer d->bd_rtout = tvtohz(tv) - 1; 1642df8bae1dSRodney W. Grimes break; 1643df8bae1dSRodney W. Grimes } 1644df8bae1dSRodney W. Grimes 1645df8bae1dSRodney W. Grimes /* 1646df8bae1dSRodney W. Grimes * Get read timeout. 1647df8bae1dSRodney W. Grimes */ 1648df8bae1dSRodney W. Grimes case BIOCGRTIMEOUT: 1649b4366092SJustin Hibbits #if defined(COMPAT_FREEBSD32) && defined(__amd64__) 1650fc0a61a4SKonstantin Belousov case BIOCGRTIMEOUT32: 1651fc0a61a4SKonstantin Belousov #endif 1652df8bae1dSRodney W. Grimes { 1653fc0a61a4SKonstantin Belousov struct timeval *tv; 1654b4366092SJustin Hibbits #if defined(COMPAT_FREEBSD32) && defined(__amd64__) 1655fc0a61a4SKonstantin Belousov struct timeval32 *tv32; 1656fc0a61a4SKonstantin Belousov struct timeval tv64; 1657fc0a61a4SKonstantin Belousov 1658fc0a61a4SKonstantin Belousov if (cmd == BIOCGRTIMEOUT32) 1659fc0a61a4SKonstantin Belousov tv = &tv64; 1660fc0a61a4SKonstantin Belousov else 1661fc0a61a4SKonstantin Belousov #endif 1662fc0a61a4SKonstantin Belousov tv = (struct timeval *)addr; 1663df8bae1dSRodney W. Grimes 1664bdc2cdc5SAlexander Langer tv->tv_sec = d->bd_rtout / hz; 1665bdc2cdc5SAlexander Langer tv->tv_usec = (d->bd_rtout % hz) * tick; 1666b4366092SJustin Hibbits #if defined(COMPAT_FREEBSD32) && defined(__amd64__) 1667fc0a61a4SKonstantin Belousov if (cmd == BIOCGRTIMEOUT32) { 1668fc0a61a4SKonstantin Belousov tv32 = (struct timeval32 *)addr; 1669fc0a61a4SKonstantin Belousov tv32->tv_sec = tv->tv_sec; 1670fc0a61a4SKonstantin Belousov tv32->tv_usec = tv->tv_usec; 1671fc0a61a4SKonstantin Belousov } 1672fc0a61a4SKonstantin Belousov #endif 1673fc0a61a4SKonstantin Belousov 1674df8bae1dSRodney W. Grimes break; 1675df8bae1dSRodney W. Grimes } 1676df8bae1dSRodney W. Grimes 1677df8bae1dSRodney W. Grimes /* 1678df8bae1dSRodney W. Grimes * Get packet stats. 1679df8bae1dSRodney W. Grimes */ 1680df8bae1dSRodney W. Grimes case BIOCGSTATS: 1681df8bae1dSRodney W. Grimes { 1682df8bae1dSRodney W. Grimes struct bpf_stat *bs = (struct bpf_stat *)addr; 1683df8bae1dSRodney W. Grimes 16844d621040SChristian S.J. Peron /* XXXCSJP overflow */ 1685b2b7ca49SAlexander V. Chernikov bs->bs_recv = (u_int)counter_u64_fetch(d->bd_rcount); 1686b2b7ca49SAlexander V. Chernikov bs->bs_drop = (u_int)counter_u64_fetch(d->bd_dcount); 1687df8bae1dSRodney W. Grimes break; 1688df8bae1dSRodney W. Grimes } 1689df8bae1dSRodney W. Grimes 1690df8bae1dSRodney W. Grimes /* 1691df8bae1dSRodney W. Grimes * Set immediate mode. 1692df8bae1dSRodney W. Grimes */ 1693df8bae1dSRodney W. Grimes case BIOCIMMEDIATE: 169497aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1695df8bae1dSRodney W. Grimes d->bd_immediate = *(u_int *)addr; 169697aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1697df8bae1dSRodney W. Grimes break; 1698df8bae1dSRodney W. Grimes 1699df8bae1dSRodney W. Grimes case BIOCVERSION: 1700df8bae1dSRodney W. Grimes { 1701df8bae1dSRodney W. Grimes struct bpf_version *bv = (struct bpf_version *)addr; 1702df8bae1dSRodney W. Grimes 1703df8bae1dSRodney W. Grimes bv->bv_major = BPF_MAJOR_VERSION; 1704df8bae1dSRodney W. Grimes bv->bv_minor = BPF_MINOR_VERSION; 1705df8bae1dSRodney W. Grimes break; 1706df8bae1dSRodney W. Grimes } 170700a83887SPaul Traina 1708114ae644SMike Smith /* 1709114ae644SMike Smith * Get "header already complete" flag 1710114ae644SMike Smith */ 1711114ae644SMike Smith case BIOCGHDRCMPLT: 171297aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1713114ae644SMike Smith *(u_int *)addr = d->bd_hdrcmplt; 171497aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1715114ae644SMike Smith break; 1716114ae644SMike Smith 1717114ae644SMike Smith /* 1718114ae644SMike Smith * Set "header already complete" flag 1719114ae644SMike Smith */ 1720114ae644SMike Smith case BIOCSHDRCMPLT: 172197aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1722114ae644SMike Smith d->bd_hdrcmplt = *(u_int *)addr ? 1 : 0; 172397aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1724114ae644SMike Smith break; 1725114ae644SMike Smith 17268ed3828cSRobert Watson /* 1727560a54e1SJung-uk Kim * Get packet direction flag 17288ed3828cSRobert Watson */ 1729560a54e1SJung-uk Kim case BIOCGDIRECTION: 173097aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1731560a54e1SJung-uk Kim *(u_int *)addr = d->bd_direction; 173297aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 17338ed3828cSRobert Watson break; 17348ed3828cSRobert Watson 17358ed3828cSRobert Watson /* 1736560a54e1SJung-uk Kim * Set packet direction flag 17378ed3828cSRobert Watson */ 1738560a54e1SJung-uk Kim case BIOCSDIRECTION: 1739560a54e1SJung-uk Kim { 1740560a54e1SJung-uk Kim u_int direction; 1741560a54e1SJung-uk Kim 1742560a54e1SJung-uk Kim direction = *(u_int *)addr; 1743560a54e1SJung-uk Kim switch (direction) { 1744560a54e1SJung-uk Kim case BPF_D_IN: 1745560a54e1SJung-uk Kim case BPF_D_INOUT: 1746560a54e1SJung-uk Kim case BPF_D_OUT: 174797aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1748560a54e1SJung-uk Kim d->bd_direction = direction; 174997aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1750560a54e1SJung-uk Kim break; 1751560a54e1SJung-uk Kim default: 1752560a54e1SJung-uk Kim error = EINVAL; 1753560a54e1SJung-uk Kim } 1754560a54e1SJung-uk Kim } 1755560a54e1SJung-uk Kim break; 1756560a54e1SJung-uk Kim 1757547d94bdSJung-uk Kim /* 1758d0d7bcdfSJung-uk Kim * Get packet timestamp format and resolution. 1759547d94bdSJung-uk Kim */ 1760547d94bdSJung-uk Kim case BIOCGTSTAMP: 176197aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1762547d94bdSJung-uk Kim *(u_int *)addr = d->bd_tstamp; 176397aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1764547d94bdSJung-uk Kim break; 1765547d94bdSJung-uk Kim 1766547d94bdSJung-uk Kim /* 1767547d94bdSJung-uk Kim * Set packet timestamp format and resolution. 1768547d94bdSJung-uk Kim */ 1769547d94bdSJung-uk Kim case BIOCSTSTAMP: 1770547d94bdSJung-uk Kim { 1771547d94bdSJung-uk Kim u_int func; 1772547d94bdSJung-uk Kim 1773547d94bdSJung-uk Kim func = *(u_int *)addr; 1774547d94bdSJung-uk Kim if (BPF_T_VALID(func)) 1775547d94bdSJung-uk Kim d->bd_tstamp = func; 1776547d94bdSJung-uk Kim else 1777547d94bdSJung-uk Kim error = EINVAL; 1778547d94bdSJung-uk Kim } 1779547d94bdSJung-uk Kim break; 1780547d94bdSJung-uk Kim 1781560a54e1SJung-uk Kim case BIOCFEEDBACK: 178297aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1783560a54e1SJung-uk Kim d->bd_feedback = *(u_int *)addr; 178497aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1785560a54e1SJung-uk Kim break; 1786560a54e1SJung-uk Kim 1787560a54e1SJung-uk Kim case BIOCLOCK: 178897aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1789560a54e1SJung-uk Kim d->bd_locked = 1; 179097aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 17918ed3828cSRobert Watson break; 17928ed3828cSRobert Watson 179300a83887SPaul Traina case FIONBIO: /* Non-blocking I/O */ 179400a83887SPaul Traina break; 179500a83887SPaul Traina 179600a83887SPaul Traina case FIOASYNC: /* Send signal on receive packets */ 179797aacec6SAlexander V. Chernikov BPFD_LOCK(d); 179800a83887SPaul Traina d->bd_async = *(int *)addr; 179997aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 180000a83887SPaul Traina break; 180100a83887SPaul Traina 1802831d27a9SDon Lewis case FIOSETOWN: 180397aacec6SAlexander V. Chernikov /* 180497aacec6SAlexander V. Chernikov * XXX: Add some sort of locking here? 180597aacec6SAlexander V. Chernikov * fsetown() can sleep. 180697aacec6SAlexander V. Chernikov */ 1807831d27a9SDon Lewis error = fsetown(*(int *)addr, &d->bd_sigio); 180800a83887SPaul Traina break; 180900a83887SPaul Traina 1810831d27a9SDon Lewis case FIOGETOWN: 181197aacec6SAlexander V. Chernikov BPFD_LOCK(d); 181291e97a82SDon Lewis *(int *)addr = fgetown(&d->bd_sigio); 181397aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1814831d27a9SDon Lewis break; 1815831d27a9SDon Lewis 1816831d27a9SDon Lewis /* This is deprecated, FIOSETOWN should be used instead. */ 1817831d27a9SDon Lewis case TIOCSPGRP: 1818831d27a9SDon Lewis error = fsetown(-(*(int *)addr), &d->bd_sigio); 1819831d27a9SDon Lewis break; 1820831d27a9SDon Lewis 1821831d27a9SDon Lewis /* This is deprecated, FIOGETOWN should be used instead. */ 182200a83887SPaul Traina case TIOCGPGRP: 182391e97a82SDon Lewis *(int *)addr = -fgetown(&d->bd_sigio); 182400a83887SPaul Traina break; 182500a83887SPaul Traina 182600a83887SPaul Traina case BIOCSRSIG: /* Set receive signal */ 182700a83887SPaul Traina { 182800a83887SPaul Traina u_int sig; 182900a83887SPaul Traina 183000a83887SPaul Traina sig = *(u_int *)addr; 183100a83887SPaul Traina 183200a83887SPaul Traina if (sig >= NSIG) 183300a83887SPaul Traina error = EINVAL; 183497aacec6SAlexander V. Chernikov else { 183597aacec6SAlexander V. Chernikov BPFD_LOCK(d); 183600a83887SPaul Traina d->bd_sig = sig; 183797aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 183897aacec6SAlexander V. Chernikov } 183900a83887SPaul Traina break; 184000a83887SPaul Traina } 184100a83887SPaul Traina case BIOCGRSIG: 184297aacec6SAlexander V. Chernikov BPFD_LOCK(d); 184300a83887SPaul Traina *(u_int *)addr = d->bd_sig; 184497aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 184500a83887SPaul Traina break; 18464d621040SChristian S.J. Peron 18474d621040SChristian S.J. Peron case BIOCGETBUFMODE: 184897aacec6SAlexander V. Chernikov BPFD_LOCK(d); 18494d621040SChristian S.J. Peron *(u_int *)addr = d->bd_bufmode; 185097aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 18514d621040SChristian S.J. Peron break; 18524d621040SChristian S.J. Peron 18534d621040SChristian S.J. Peron case BIOCSETBUFMODE: 18544d621040SChristian S.J. Peron /* 18554d621040SChristian S.J. Peron * Allow the buffering mode to be changed as long as we 18564d621040SChristian S.J. Peron * haven't yet committed to a particular mode. Our 18574d621040SChristian S.J. Peron * definition of commitment, for now, is whether or not a 18584d621040SChristian S.J. Peron * buffer has been allocated or an interface attached, since 18594d621040SChristian S.J. Peron * that's the point where things get tricky. 18604d621040SChristian S.J. Peron */ 18614d621040SChristian S.J. Peron switch (*(u_int *)addr) { 18624d621040SChristian S.J. Peron case BPF_BUFMODE_BUFFER: 18634d621040SChristian S.J. Peron break; 18644d621040SChristian S.J. Peron 18654d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 18664d621040SChristian S.J. Peron if (bpf_zerocopy_enable) 18674d621040SChristian S.J. Peron break; 18684d621040SChristian S.J. Peron /* FALLSTHROUGH */ 18694d621040SChristian S.J. Peron 18704d621040SChristian S.J. Peron default: 18711b610a74SBjoern A. Zeeb CURVNET_RESTORE(); 18724d621040SChristian S.J. Peron return (EINVAL); 18734d621040SChristian S.J. Peron } 18744d621040SChristian S.J. Peron 1875afa85850SAlexander V. Chernikov BPFD_LOCK(d); 18764d621040SChristian S.J. Peron if (d->bd_sbuf != NULL || d->bd_hbuf != NULL || 18774d621040SChristian S.J. Peron d->bd_fbuf != NULL || d->bd_bif != NULL) { 1878afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 18791b610a74SBjoern A. Zeeb CURVNET_RESTORE(); 18804d621040SChristian S.J. Peron return (EBUSY); 18814d621040SChristian S.J. Peron } 18824d621040SChristian S.J. Peron d->bd_bufmode = *(u_int *)addr; 1883afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 18844d621040SChristian S.J. Peron break; 18854d621040SChristian S.J. Peron 18864d621040SChristian S.J. Peron case BIOCGETZMAX: 18871b610a74SBjoern A. Zeeb error = bpf_ioctl_getzmax(td, d, (size_t *)addr); 18881b610a74SBjoern A. Zeeb break; 18894d621040SChristian S.J. Peron 18904d621040SChristian S.J. Peron case BIOCSETZBUF: 18911b610a74SBjoern A. Zeeb error = bpf_ioctl_setzbuf(td, d, (struct bpf_zbuf *)addr); 18921b610a74SBjoern A. Zeeb break; 18934d621040SChristian S.J. Peron 18944d621040SChristian S.J. Peron case BIOCROTZBUF: 18951b610a74SBjoern A. Zeeb error = bpf_ioctl_rotzbuf(td, d, (struct bpf_zbuf *)addr); 18961b610a74SBjoern A. Zeeb break; 1897df8bae1dSRodney W. Grimes } 189897021c24SMarko Zec CURVNET_RESTORE(); 1899df8bae1dSRodney W. Grimes return (error); 1900df8bae1dSRodney W. Grimes } 1901df8bae1dSRodney W. Grimes 1902df8bae1dSRodney W. Grimes /* 1903df8bae1dSRodney W. Grimes * Set d's packet filter program to fp. If this file already has a filter, 1904df8bae1dSRodney W. Grimes * free it and replace it. Returns EINVAL for bogus requests. 1905784292f8SAlexander V. Chernikov * 1906*699281b5SAndrey V. Elsukov * Note we use global lock here to serialize bpf_setf() and bpf_setif() 1907*699281b5SAndrey V. Elsukov * calls. 1908df8bae1dSRodney W. Grimes */ 1909f708ef1bSPoul-Henning Kamp static int 191019ba8395SChristian S.J. Peron bpf_setf(struct bpf_d *d, struct bpf_program *fp, u_long cmd) 1911df8bae1dSRodney W. Grimes { 19129b7d4a7fSJung-uk Kim #ifdef COMPAT_FREEBSD32 19139b7d4a7fSJung-uk Kim struct bpf_program fp_swab; 19149b7d4a7fSJung-uk Kim struct bpf_program32 *fp32; 19159b7d4a7fSJung-uk Kim #endif 1916*699281b5SAndrey V. Elsukov struct bpf_program_buffer *fcode; 1917*699281b5SAndrey V. Elsukov struct bpf_insn *filter; 1918293c06a1SRuslan Ermilov #ifdef BPF_JITTER 1919*699281b5SAndrey V. Elsukov bpf_jit_filter *jfunc; 1920ae275efcSJung-uk Kim #endif 19218b04b48aSJung-uk Kim size_t size; 19228b04b48aSJung-uk Kim u_int flen; 1923*699281b5SAndrey V. Elsukov bool track_event; 1924df8bae1dSRodney W. Grimes 19259b7d4a7fSJung-uk Kim #ifdef COMPAT_FREEBSD32 19266f731135SJung-uk Kim switch (cmd) { 19276f731135SJung-uk Kim case BIOCSETF32: 19286f731135SJung-uk Kim case BIOCSETWF32: 19296f731135SJung-uk Kim case BIOCSETFNR32: 1930fc0a61a4SKonstantin Belousov fp32 = (struct bpf_program32 *)fp; 1931fc0a61a4SKonstantin Belousov fp_swab.bf_len = fp32->bf_len; 1932*699281b5SAndrey V. Elsukov fp_swab.bf_insns = 1933*699281b5SAndrey V. Elsukov (struct bpf_insn *)(uintptr_t)fp32->bf_insns; 1934fc0a61a4SKonstantin Belousov fp = &fp_swab; 19356f731135SJung-uk Kim switch (cmd) { 19366f731135SJung-uk Kim case BIOCSETF32: 19376f731135SJung-uk Kim cmd = BIOCSETF; 19386f731135SJung-uk Kim break; 19396f731135SJung-uk Kim case BIOCSETWF32: 1940fc0a61a4SKonstantin Belousov cmd = BIOCSETWF; 19416f731135SJung-uk Kim break; 19426f731135SJung-uk Kim } 19436f731135SJung-uk Kim break; 1944fc0a61a4SKonstantin Belousov } 1945fc0a61a4SKonstantin Belousov #endif 19468b04b48aSJung-uk Kim 1947*699281b5SAndrey V. Elsukov filter = NULL; 19488b04b48aSJung-uk Kim #ifdef BPF_JITTER 1949*699281b5SAndrey V. Elsukov jfunc = NULL; 19508b04b48aSJung-uk Kim #endif 19516c74ff0eSAlexander V. Chernikov /* 19526c74ff0eSAlexander V. Chernikov * Check new filter validness before acquiring any locks. 19536c74ff0eSAlexander V. Chernikov * Allocate memory for new filter, if needed. 19546c74ff0eSAlexander V. Chernikov */ 19556c74ff0eSAlexander V. Chernikov flen = fp->bf_len; 19569b7d4a7fSJung-uk Kim if (flen > bpf_maxinsns || (fp->bf_insns == NULL && flen != 0)) 19576c74ff0eSAlexander V. Chernikov return (EINVAL); 19586c74ff0eSAlexander V. Chernikov size = flen * sizeof(*fp->bf_insns); 1959a86227d1SAlexander V. Chernikov if (size > 0) { 19609b7d4a7fSJung-uk Kim /* We're setting up new filter. Copy and check actual data. */ 1961*699281b5SAndrey V. Elsukov fcode = bpf_program_buffer_alloc(size, M_WAITOK); 1962*699281b5SAndrey V. Elsukov filter = (struct bpf_insn *)fcode->buffer; 1963*699281b5SAndrey V. Elsukov if (copyin(fp->bf_insns, filter, size) != 0 || 1964*699281b5SAndrey V. Elsukov !bpf_validate(filter, flen)) { 1965a86227d1SAlexander V. Chernikov free(fcode, M_BPF); 1966a86227d1SAlexander V. Chernikov return (EINVAL); 1967a86227d1SAlexander V. Chernikov } 1968c7b0200eSAlexander V. Chernikov #ifdef BPF_JITTER 196916a227c7SJonathan T. Looney if (cmd != BIOCSETWF) { 197016a227c7SJonathan T. Looney /* 197116a227c7SJonathan T. Looney * Filter is copied inside fcode and is 197216a227c7SJonathan T. Looney * perfectly valid. 197316a227c7SJonathan T. Looney */ 1974*699281b5SAndrey V. Elsukov jfunc = bpf_jitter(filter, flen); 197516a227c7SJonathan T. Looney } 1976c7b0200eSAlexander V. Chernikov #endif 19778b04b48aSJung-uk Kim } 1978c7b0200eSAlexander V. Chernikov 1979*699281b5SAndrey V. Elsukov track_event = false; 1980*699281b5SAndrey V. Elsukov fcode = NULL; 19816c74ff0eSAlexander V. Chernikov 1982*699281b5SAndrey V. Elsukov BPF_LOCK(); 1983afa85850SAlexander V. Chernikov BPFD_LOCK(d); 1984*699281b5SAndrey V. Elsukov /* Set up new filter. */ 19858b04b48aSJung-uk Kim if (cmd == BIOCSETWF) { 1986*699281b5SAndrey V. Elsukov if (d->bd_wfilter != NULL) { 1987*699281b5SAndrey V. Elsukov fcode = __containerof((void *)d->bd_wfilter, 1988*699281b5SAndrey V. Elsukov struct bpf_program_buffer, buffer); 1989293c06a1SRuslan Ermilov #ifdef BPF_JITTER 1990*699281b5SAndrey V. Elsukov fcode->func = NULL; 1991*699281b5SAndrey V. Elsukov #endif 1992*699281b5SAndrey V. Elsukov } 1993*699281b5SAndrey V. Elsukov d->bd_wfilter = filter; 1994*699281b5SAndrey V. Elsukov } else { 1995*699281b5SAndrey V. Elsukov if (d->bd_rfilter != NULL) { 1996*699281b5SAndrey V. Elsukov fcode = __containerof((void *)d->bd_rfilter, 1997*699281b5SAndrey V. Elsukov struct bpf_program_buffer, buffer); 1998*699281b5SAndrey V. Elsukov #ifdef BPF_JITTER 1999*699281b5SAndrey V. Elsukov fcode->func = d->bd_bfilter; 2000*699281b5SAndrey V. Elsukov #endif 2001*699281b5SAndrey V. Elsukov } 2002*699281b5SAndrey V. Elsukov d->bd_rfilter = filter; 2003*699281b5SAndrey V. Elsukov #ifdef BPF_JITTER 2004c7b0200eSAlexander V. Chernikov d->bd_bfilter = jfunc; 2005ae275efcSJung-uk Kim #endif 2006f11c3508SDavid Malone if (cmd == BIOCSETF) 2007df8bae1dSRodney W. Grimes reset_d(d); 200851ec1eb7SAlexander V. Chernikov 2009*699281b5SAndrey V. Elsukov if (bpf_check_upgrade(cmd, d, filter, flen) != 0) { 2010*699281b5SAndrey V. Elsukov /* 2011*699281b5SAndrey V. Elsukov * Filter can be set several times without 2012*699281b5SAndrey V. Elsukov * specifying interface. In this case just mark d 2013*699281b5SAndrey V. Elsukov * as reader. 2014*699281b5SAndrey V. Elsukov */ 2015*699281b5SAndrey V. Elsukov d->bd_writer = 0; 2016*699281b5SAndrey V. Elsukov if (d->bd_bif != NULL) { 2017*699281b5SAndrey V. Elsukov /* 2018*699281b5SAndrey V. Elsukov * Remove descriptor from writers-only list 2019*699281b5SAndrey V. Elsukov * and add it to active readers list. 2020*699281b5SAndrey V. Elsukov */ 2021*699281b5SAndrey V. Elsukov CK_LIST_REMOVE(d, bd_next); 2022*699281b5SAndrey V. Elsukov CK_LIST_INSERT_HEAD(&d->bd_bif->bif_dlist, 2023*699281b5SAndrey V. Elsukov d, bd_next); 2024*699281b5SAndrey V. Elsukov CTR2(KTR_NET, 2025*699281b5SAndrey V. Elsukov "%s: upgrade required by pid %d", 2026*699281b5SAndrey V. Elsukov __func__, d->bd_pid); 2027*699281b5SAndrey V. Elsukov track_event = true; 2028*699281b5SAndrey V. Elsukov } 2029*699281b5SAndrey V. Elsukov } 20308b04b48aSJung-uk Kim } 2031afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 2032df8bae1dSRodney W. Grimes 2033*699281b5SAndrey V. Elsukov if (fcode != NULL) 2034*699281b5SAndrey V. Elsukov epoch_call(net_epoch_preempt, &fcode->epoch_ctx, 2035*699281b5SAndrey V. Elsukov bpf_program_buffer_free); 2036*699281b5SAndrey V. Elsukov 2037*699281b5SAndrey V. Elsukov if (track_event) 2038*699281b5SAndrey V. Elsukov EVENTHANDLER_INVOKE(bpf_track, 2039*699281b5SAndrey V. Elsukov d->bd_bif->bif_ifp, d->bd_bif->bif_dlt, 1); 204051ec1eb7SAlexander V. Chernikov 20416c74ff0eSAlexander V. Chernikov BPF_UNLOCK(); 2042df8bae1dSRodney W. Grimes return (0); 2043df8bae1dSRodney W. Grimes } 2044df8bae1dSRodney W. Grimes 2045df8bae1dSRodney W. Grimes /* 2046df8bae1dSRodney W. Grimes * Detach a file from its current interface (if attached at all) and attach 2047df8bae1dSRodney W. Grimes * to the interface indicated by the name stored in ifr. 2048df8bae1dSRodney W. Grimes * Return an errno or 0. 2049df8bae1dSRodney W. Grimes */ 2050df8bae1dSRodney W. Grimes static int 205119ba8395SChristian S.J. Peron bpf_setif(struct bpf_d *d, struct ifreq *ifr) 2052df8bae1dSRodney W. Grimes { 2053df8bae1dSRodney W. Grimes struct bpf_if *bp; 20549b44ff22SGarrett Wollman struct ifnet *theywant; 2055df8bae1dSRodney W. Grimes 20566c74ff0eSAlexander V. Chernikov BPF_LOCK_ASSERT(); 20576c74ff0eSAlexander V. Chernikov 20589b44ff22SGarrett Wollman theywant = ifunit(ifr->ifr_name); 205916d878ccSChristian S.J. Peron if (theywant == NULL || theywant->if_bpf == NULL) 206016d878ccSChristian S.J. Peron return (ENXIO); 20619b44ff22SGarrett Wollman 206216d878ccSChristian S.J. Peron bp = theywant->if_bpf; 2063df8bae1dSRodney W. Grimes /* 20644f42daa4SLuiz Otavio O Souza * At this point, we expect the buffer is already allocated. If not, 20654f42daa4SLuiz Otavio O Souza * return an error. 2066df8bae1dSRodney W. Grimes */ 20674d621040SChristian S.J. Peron switch (d->bd_bufmode) { 20684d621040SChristian S.J. Peron case BPF_BUFMODE_BUFFER: 20694d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 20704d621040SChristian S.J. Peron if (d->bd_sbuf == NULL) 20714d621040SChristian S.J. Peron return (EINVAL); 20724d621040SChristian S.J. Peron break; 20734d621040SChristian S.J. Peron 20744d621040SChristian S.J. Peron default: 20754d621040SChristian S.J. Peron panic("bpf_setif: bufmode %d", d->bd_bufmode); 20764d621040SChristian S.J. Peron } 20776c74ff0eSAlexander V. Chernikov if (bp != d->bd_bif) 2078df8bae1dSRodney W. Grimes bpf_attachd(d, bp); 2079*699281b5SAndrey V. Elsukov else { 2080afa85850SAlexander V. Chernikov BPFD_LOCK(d); 2081df8bae1dSRodney W. Grimes reset_d(d); 2082afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 2083*699281b5SAndrey V. Elsukov } 2084df8bae1dSRodney W. Grimes return (0); 2085df8bae1dSRodney W. Grimes } 2086df8bae1dSRodney W. Grimes 2087df8bae1dSRodney W. Grimes /* 2088243ac7d8SPeter Wemm * Support for select() and poll() system calls 2089df8bae1dSRodney W. Grimes * 2090df8bae1dSRodney W. Grimes * Return true iff the specific operation will not block indefinitely. 2091df8bae1dSRodney W. Grimes * Otherwise, return false but make a note that a selwakeup() must be done. 2092df8bae1dSRodney W. Grimes */ 209337c84183SPoul-Henning Kamp static int 209419ba8395SChristian S.J. Peron bpfpoll(struct cdev *dev, int events, struct thread *td) 2095df8bae1dSRodney W. Grimes { 2096e7bb21b3SJonathan Lemon struct bpf_d *d; 20970832fc64SGarance A Drosehn int revents; 2098df8bae1dSRodney W. Grimes 2099136600feSEd Schouten if (devfs_get_cdevpriv((void **)&d) != 0 || d->bd_bif == NULL) 2100136600feSEd Schouten return (events & 2101136600feSEd Schouten (POLLHUP|POLLIN|POLLRDNORM|POLLOUT|POLLWRNORM)); 2102de5d9935SRobert Watson 2103b75a24a0SChristian S.J. Peron /* 2104b75a24a0SChristian S.J. Peron * Refresh PID associated with this descriptor. 2105b75a24a0SChristian S.J. Peron */ 21060832fc64SGarance A Drosehn revents = events & (POLLOUT | POLLWRNORM); 2107afa85850SAlexander V. Chernikov BPFD_LOCK(d); 2108e4b3229aSAlexander V. Chernikov BPF_PID_REFRESH(d, td); 210975c13541SPoul-Henning Kamp if (events & (POLLIN | POLLRDNORM)) { 211095aab9ccSJohn-Mark Gurney if (bpf_ready(d)) 2111243ac7d8SPeter Wemm revents |= events & (POLLIN | POLLRDNORM); 211281bda851SJohn Polstra else { 2113ed01445dSJohn Baldwin selrecord(td, &d->bd_sel); 211481bda851SJohn Polstra /* Start the read timeout if necessary. */ 211581bda851SJohn Polstra if (d->bd_rtout > 0 && d->bd_state == BPF_IDLE) { 211681bda851SJohn Polstra callout_reset(&d->bd_callout, d->bd_rtout, 211781bda851SJohn Polstra bpf_timed_out, d); 211881bda851SJohn Polstra d->bd_state = BPF_WAITING; 211981bda851SJohn Polstra } 212081bda851SJohn Polstra } 212175c13541SPoul-Henning Kamp } 2122afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 2123243ac7d8SPeter Wemm return (revents); 2124df8bae1dSRodney W. Grimes } 2125df8bae1dSRodney W. Grimes 2126df8bae1dSRodney W. Grimes /* 212795aab9ccSJohn-Mark Gurney * Support for kevent() system call. Register EVFILT_READ filters and 212895aab9ccSJohn-Mark Gurney * reject all others. 212995aab9ccSJohn-Mark Gurney */ 213095aab9ccSJohn-Mark Gurney int 213119ba8395SChristian S.J. Peron bpfkqfilter(struct cdev *dev, struct knote *kn) 213295aab9ccSJohn-Mark Gurney { 2133136600feSEd Schouten struct bpf_d *d; 213495aab9ccSJohn-Mark Gurney 2135136600feSEd Schouten if (devfs_get_cdevpriv((void **)&d) != 0 || 2136136600feSEd Schouten kn->kn_filter != EVFILT_READ) 213795aab9ccSJohn-Mark Gurney return (1); 213895aab9ccSJohn-Mark Gurney 2139b75a24a0SChristian S.J. Peron /* 2140b75a24a0SChristian S.J. Peron * Refresh PID associated with this descriptor. 2141b75a24a0SChristian S.J. Peron */ 2142afa85850SAlexander V. Chernikov BPFD_LOCK(d); 2143e4b3229aSAlexander V. Chernikov BPF_PID_REFRESH_CUR(d); 214495aab9ccSJohn-Mark Gurney kn->kn_fop = &bpfread_filtops; 214595aab9ccSJohn-Mark Gurney kn->kn_hook = d; 21464b19419eSChristian S.J. Peron knlist_add(&d->bd_sel.si_note, kn, 1); 2147afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 214895aab9ccSJohn-Mark Gurney 214995aab9ccSJohn-Mark Gurney return (0); 215095aab9ccSJohn-Mark Gurney } 215195aab9ccSJohn-Mark Gurney 215295aab9ccSJohn-Mark Gurney static void 215319ba8395SChristian S.J. Peron filt_bpfdetach(struct knote *kn) 215495aab9ccSJohn-Mark Gurney { 215595aab9ccSJohn-Mark Gurney struct bpf_d *d = (struct bpf_d *)kn->kn_hook; 215695aab9ccSJohn-Mark Gurney 2157ad3b9257SJohn-Mark Gurney knlist_remove(&d->bd_sel.si_note, kn, 0); 215895aab9ccSJohn-Mark Gurney } 215995aab9ccSJohn-Mark Gurney 216095aab9ccSJohn-Mark Gurney static int 216119ba8395SChristian S.J. Peron filt_bpfread(struct knote *kn, long hint) 216295aab9ccSJohn-Mark Gurney { 216395aab9ccSJohn-Mark Gurney struct bpf_d *d = (struct bpf_d *)kn->kn_hook; 216495aab9ccSJohn-Mark Gurney int ready; 216595aab9ccSJohn-Mark Gurney 2166afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 216795aab9ccSJohn-Mark Gurney ready = bpf_ready(d); 216895aab9ccSJohn-Mark Gurney if (ready) { 216995aab9ccSJohn-Mark Gurney kn->kn_data = d->bd_slen; 217092242172SLuiz Otavio O Souza /* 217192242172SLuiz Otavio O Souza * Ignore the hold buffer if it is being copied to user space. 217292242172SLuiz Otavio O Souza */ 217392242172SLuiz Otavio O Souza if (!d->bd_hbuf_in_use && d->bd_hbuf) 217495aab9ccSJohn-Mark Gurney kn->kn_data += d->bd_hlen; 21755d7af3a1SJung-uk Kim } else if (d->bd_rtout > 0 && d->bd_state == BPF_IDLE) { 217695aab9ccSJohn-Mark Gurney callout_reset(&d->bd_callout, d->bd_rtout, 217795aab9ccSJohn-Mark Gurney bpf_timed_out, d); 217895aab9ccSJohn-Mark Gurney d->bd_state = BPF_WAITING; 217995aab9ccSJohn-Mark Gurney } 218095aab9ccSJohn-Mark Gurney 218195aab9ccSJohn-Mark Gurney return (ready); 218295aab9ccSJohn-Mark Gurney } 218395aab9ccSJohn-Mark Gurney 2184253a3814SLawrence Stewart #define BPF_TSTAMP_NONE 0 2185253a3814SLawrence Stewart #define BPF_TSTAMP_FAST 1 2186253a3814SLawrence Stewart #define BPF_TSTAMP_NORMAL 2 2187253a3814SLawrence Stewart #define BPF_TSTAMP_EXTERN 3 2188253a3814SLawrence Stewart 2189253a3814SLawrence Stewart static int 2190253a3814SLawrence Stewart bpf_ts_quality(int tstype) 2191253a3814SLawrence Stewart { 2192253a3814SLawrence Stewart 2193253a3814SLawrence Stewart if (tstype == BPF_T_NONE) 2194253a3814SLawrence Stewart return (BPF_TSTAMP_NONE); 2195253a3814SLawrence Stewart if ((tstype & BPF_T_FAST) != 0) 2196253a3814SLawrence Stewart return (BPF_TSTAMP_FAST); 2197253a3814SLawrence Stewart 2198253a3814SLawrence Stewart return (BPF_TSTAMP_NORMAL); 2199253a3814SLawrence Stewart } 2200253a3814SLawrence Stewart 2201253a3814SLawrence Stewart static int 2202253a3814SLawrence Stewart bpf_gettime(struct bintime *bt, int tstype, struct mbuf *m) 2203253a3814SLawrence Stewart { 2204253a3814SLawrence Stewart struct m_tag *tag; 2205253a3814SLawrence Stewart int quality; 2206253a3814SLawrence Stewart 2207253a3814SLawrence Stewart quality = bpf_ts_quality(tstype); 2208253a3814SLawrence Stewart if (quality == BPF_TSTAMP_NONE) 2209253a3814SLawrence Stewart return (quality); 2210253a3814SLawrence Stewart 2211253a3814SLawrence Stewart if (m != NULL) { 2212253a3814SLawrence Stewart tag = m_tag_locate(m, MTAG_BPF, MTAG_BPF_TIMESTAMP, NULL); 2213253a3814SLawrence Stewart if (tag != NULL) { 2214253a3814SLawrence Stewart *bt = *(struct bintime *)(tag + 1); 2215253a3814SLawrence Stewart return (BPF_TSTAMP_EXTERN); 2216253a3814SLawrence Stewart } 2217253a3814SLawrence Stewart } 2218253a3814SLawrence Stewart if (quality == BPF_TSTAMP_NORMAL) 2219253a3814SLawrence Stewart binuptime(bt); 2220253a3814SLawrence Stewart else 2221253a3814SLawrence Stewart getbinuptime(bt); 2222253a3814SLawrence Stewart 2223253a3814SLawrence Stewart return (quality); 2224253a3814SLawrence Stewart } 2225253a3814SLawrence Stewart 222695aab9ccSJohn-Mark Gurney /* 2227df8bae1dSRodney W. Grimes * Incoming linkage from device drivers. Process the packet pkt, of length 2228df8bae1dSRodney W. Grimes * pktlen, which is stored in a contiguous buffer. The packet is parsed 2229df8bae1dSRodney W. Grimes * by each process' filter, and if accepted, stashed into the corresponding 2230df8bae1dSRodney W. Grimes * buffer. 2231df8bae1dSRodney W. Grimes */ 2232df8bae1dSRodney W. Grimes void 223319ba8395SChristian S.J. Peron bpf_tap(struct bpf_if *bp, u_char *pkt, u_int pktlen) 2234df8bae1dSRodney W. Grimes { 2235*699281b5SAndrey V. Elsukov struct epoch_tracker et; 2236547d94bdSJung-uk Kim struct bintime bt; 22378994a245SDag-Erling Smørgrav struct bpf_d *d; 2238a36599ccSJung-uk Kim #ifdef BPF_JITTER 2239a36599ccSJung-uk Kim bpf_jit_filter *bf; 2240a36599ccSJung-uk Kim #endif 2241253a3814SLawrence Stewart u_int slen; 2242253a3814SLawrence Stewart int gottime; 2243e7bb21b3SJonathan Lemon 2244253a3814SLawrence Stewart gottime = BPF_TSTAMP_NONE; 2245*699281b5SAndrey V. Elsukov NET_EPOCH_ENTER(et); 2246*699281b5SAndrey V. Elsukov CK_LIST_FOREACH(d, &bp->bif_dlist, bd_next) { 2247b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_rcount, 1); 2248a05cf8c6SChristian S.J. Peron /* 2249*699281b5SAndrey V. Elsukov * NB: We dont call BPF_CHECK_DIRECTION() here since there 2250*699281b5SAndrey V. Elsukov * is no way for the caller to indiciate to us whether this 2251*699281b5SAndrey V. Elsukov * packet is inbound or outbound. In the bpf_mtap() routines, 2252*699281b5SAndrey V. Elsukov * we use the interface pointers on the mbuf to figure it out. 2253a05cf8c6SChristian S.J. Peron */ 2254ae275efcSJung-uk Kim #ifdef BPF_JITTER 2255a36599ccSJung-uk Kim bf = bpf_jitter_enable != 0 ? d->bd_bfilter : NULL; 2256a36599ccSJung-uk Kim if (bf != NULL) 2257a36599ccSJung-uk Kim slen = (*(bf->func))(pkt, pktlen, pktlen); 2258ae275efcSJung-uk Kim else 2259ae275efcSJung-uk Kim #endif 226093e39f0bSChristian S.J. Peron slen = bpf_filter(d->bd_rfilter, pkt, pktlen, pktlen); 2261ec272d87SRobert Watson if (slen != 0) { 2262e4b3229aSAlexander V. Chernikov /* 2263e4b3229aSAlexander V. Chernikov * Filter matches. Let's to acquire write lock. 2264e4b3229aSAlexander V. Chernikov */ 2265afa85850SAlexander V. Chernikov BPFD_LOCK(d); 2266b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_fcount, 1); 2267253a3814SLawrence Stewart if (gottime < bpf_ts_quality(d->bd_tstamp)) 2268*699281b5SAndrey V. Elsukov gottime = bpf_gettime(&bt, d->bd_tstamp, 2269*699281b5SAndrey V. Elsukov NULL); 2270ec272d87SRobert Watson #ifdef MAC 227130d239bcSRobert Watson if (mac_bpfdesc_check_receive(d, bp->bif_ifp) == 0) 2272ec272d87SRobert Watson #endif 22734d621040SChristian S.J. Peron catchpacket(d, pkt, pktlen, slen, 2274547d94bdSJung-uk Kim bpf_append_bytes, &bt); 2275afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 2276ec272d87SRobert Watson } 2277df8bae1dSRodney W. Grimes } 2278*699281b5SAndrey V. Elsukov NET_EPOCH_EXIT(et); 2279df8bae1dSRodney W. Grimes } 2280df8bae1dSRodney W. Grimes 2281f81a2a49SJung-uk Kim #define BPF_CHECK_DIRECTION(d, r, i) \ 2282f81a2a49SJung-uk Kim (((d)->bd_direction == BPF_D_IN && (r) != (i)) || \ 2283f81a2a49SJung-uk Kim ((d)->bd_direction == BPF_D_OUT && (r) == (i))) 2284560a54e1SJung-uk Kim 2285df8bae1dSRodney W. Grimes /* 2286df8bae1dSRodney W. Grimes * Incoming linkage from device drivers, when packet is in an mbuf chain. 2287e4b3229aSAlexander V. Chernikov * Locking model is explained in bpf_tap(). 2288df8bae1dSRodney W. Grimes */ 2289df8bae1dSRodney W. Grimes void 229019ba8395SChristian S.J. Peron bpf_mtap(struct bpf_if *bp, struct mbuf *m) 2291df8bae1dSRodney W. Grimes { 2292*699281b5SAndrey V. Elsukov struct epoch_tracker et; 2293547d94bdSJung-uk Kim struct bintime bt; 2294df8bae1dSRodney W. Grimes struct bpf_d *d; 2295a36599ccSJung-uk Kim #ifdef BPF_JITTER 2296a36599ccSJung-uk Kim bpf_jit_filter *bf; 2297a36599ccSJung-uk Kim #endif 2298253a3814SLawrence Stewart u_int pktlen, slen; 2299253a3814SLawrence Stewart int gottime; 230091433904SDavid Malone 23018cd892f7SJung-uk Kim /* Skip outgoing duplicate packets. */ 23028cd892f7SJung-uk Kim if ((m->m_flags & M_PROMISC) != 0 && m->m_pkthdr.rcvif == NULL) { 23038cd892f7SJung-uk Kim m->m_flags &= ~M_PROMISC; 23048cd892f7SJung-uk Kim return; 23058cd892f7SJung-uk Kim } 23068cd892f7SJung-uk Kim 2307f0e2422bSPoul-Henning Kamp pktlen = m_length(m, NULL); 2308253a3814SLawrence Stewart gottime = BPF_TSTAMP_NONE; 2309e4b3229aSAlexander V. Chernikov 2310*699281b5SAndrey V. Elsukov NET_EPOCH_ENTER(et); 2311*699281b5SAndrey V. Elsukov CK_LIST_FOREACH(d, &bp->bif_dlist, bd_next) { 2312f81a2a49SJung-uk Kim if (BPF_CHECK_DIRECTION(d, m->m_pkthdr.rcvif, bp->bif_ifp)) 23138ed3828cSRobert Watson continue; 2314b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_rcount, 1); 2315ae275efcSJung-uk Kim #ifdef BPF_JITTER 2316a36599ccSJung-uk Kim bf = bpf_jitter_enable != 0 ? d->bd_bfilter : NULL; 2317ae275efcSJung-uk Kim /* XXX We cannot handle multiple mbufs. */ 2318a36599ccSJung-uk Kim if (bf != NULL && m->m_next == NULL) 2319*699281b5SAndrey V. Elsukov slen = (*(bf->func))(mtod(m, u_char *), pktlen, 2320*699281b5SAndrey V. Elsukov pktlen); 2321ae275efcSJung-uk Kim else 2322ae275efcSJung-uk Kim #endif 232393e39f0bSChristian S.J. Peron slen = bpf_filter(d->bd_rfilter, (u_char *)m, pktlen, 0); 23244ddfb531SChristian S.J. Peron if (slen != 0) { 2325afa85850SAlexander V. Chernikov BPFD_LOCK(d); 2326e4b3229aSAlexander V. Chernikov 2327b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_fcount, 1); 2328253a3814SLawrence Stewart if (gottime < bpf_ts_quality(d->bd_tstamp)) 2329253a3814SLawrence Stewart gottime = bpf_gettime(&bt, d->bd_tstamp, m); 23300c7fb534SRobert Watson #ifdef MAC 233130d239bcSRobert Watson if (mac_bpfdesc_check_receive(d, bp->bif_ifp) == 0) 23320c7fb534SRobert Watson #endif 23330c7fb534SRobert Watson catchpacket(d, (u_char *)m, pktlen, slen, 2334547d94bdSJung-uk Kim bpf_append_mbuf, &bt); 2335afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 23364ddfb531SChristian S.J. Peron } 2337df8bae1dSRodney W. Grimes } 2338*699281b5SAndrey V. Elsukov NET_EPOCH_EXIT(et); 2339df8bae1dSRodney W. Grimes } 2340df8bae1dSRodney W. Grimes 2341df8bae1dSRodney W. Grimes /* 2342437ffe18SSam Leffler * Incoming linkage from device drivers, when packet is in 2343437ffe18SSam Leffler * an mbuf chain and to be prepended by a contiguous header. 2344437ffe18SSam Leffler */ 2345437ffe18SSam Leffler void 234619ba8395SChristian S.J. Peron bpf_mtap2(struct bpf_if *bp, void *data, u_int dlen, struct mbuf *m) 2347437ffe18SSam Leffler { 2348*699281b5SAndrey V. Elsukov struct epoch_tracker et; 2349547d94bdSJung-uk Kim struct bintime bt; 2350437ffe18SSam Leffler struct mbuf mb; 2351437ffe18SSam Leffler struct bpf_d *d; 2352253a3814SLawrence Stewart u_int pktlen, slen; 2353253a3814SLawrence Stewart int gottime; 235491433904SDavid Malone 23558cd892f7SJung-uk Kim /* Skip outgoing duplicate packets. */ 23568cd892f7SJung-uk Kim if ((m->m_flags & M_PROMISC) != 0 && m->m_pkthdr.rcvif == NULL) { 23578cd892f7SJung-uk Kim m->m_flags &= ~M_PROMISC; 23588cd892f7SJung-uk Kim return; 23598cd892f7SJung-uk Kim } 23608cd892f7SJung-uk Kim 2361437ffe18SSam Leffler pktlen = m_length(m, NULL); 2362437ffe18SSam Leffler /* 2363437ffe18SSam Leffler * Craft on-stack mbuf suitable for passing to bpf_filter. 2364437ffe18SSam Leffler * Note that we cut corners here; we only setup what's 2365437ffe18SSam Leffler * absolutely needed--this mbuf should never go anywhere else. 2366437ffe18SSam Leffler */ 2367437ffe18SSam Leffler mb.m_next = m; 2368437ffe18SSam Leffler mb.m_data = data; 2369437ffe18SSam Leffler mb.m_len = dlen; 2370437ffe18SSam Leffler pktlen += dlen; 2371437ffe18SSam Leffler 2372253a3814SLawrence Stewart gottime = BPF_TSTAMP_NONE; 2373e4b3229aSAlexander V. Chernikov 2374*699281b5SAndrey V. Elsukov NET_EPOCH_ENTER(et); 2375*699281b5SAndrey V. Elsukov CK_LIST_FOREACH(d, &bp->bif_dlist, bd_next) { 2376f81a2a49SJung-uk Kim if (BPF_CHECK_DIRECTION(d, m->m_pkthdr.rcvif, bp->bif_ifp)) 2377437ffe18SSam Leffler continue; 2378b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_rcount, 1); 237993e39f0bSChristian S.J. Peron slen = bpf_filter(d->bd_rfilter, (u_char *)&mb, pktlen, 0); 23804ddfb531SChristian S.J. Peron if (slen != 0) { 2381afa85850SAlexander V. Chernikov BPFD_LOCK(d); 2382e4b3229aSAlexander V. Chernikov 2383b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_fcount, 1); 2384253a3814SLawrence Stewart if (gottime < bpf_ts_quality(d->bd_tstamp)) 2385253a3814SLawrence Stewart gottime = bpf_gettime(&bt, d->bd_tstamp, m); 2386437ffe18SSam Leffler #ifdef MAC 238730d239bcSRobert Watson if (mac_bpfdesc_check_receive(d, bp->bif_ifp) == 0) 2388437ffe18SSam Leffler #endif 2389437ffe18SSam Leffler catchpacket(d, (u_char *)&mb, pktlen, slen, 2390547d94bdSJung-uk Kim bpf_append_mbuf, &bt); 2391afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 23924ddfb531SChristian S.J. Peron } 2393437ffe18SSam Leffler } 2394*699281b5SAndrey V. Elsukov NET_EPOCH_EXIT(et); 2395437ffe18SSam Leffler } 2396437ffe18SSam Leffler 2397560a54e1SJung-uk Kim #undef BPF_CHECK_DIRECTION 2398253a3814SLawrence Stewart #undef BPF_TSTAMP_NONE 2399253a3814SLawrence Stewart #undef BPF_TSTAMP_FAST 2400253a3814SLawrence Stewart #undef BPF_TSTAMP_NORMAL 2401253a3814SLawrence Stewart #undef BPF_TSTAMP_EXTERN 2402253a3814SLawrence Stewart 2403547d94bdSJung-uk Kim static int 2404547d94bdSJung-uk Kim bpf_hdrlen(struct bpf_d *d) 2405547d94bdSJung-uk Kim { 2406547d94bdSJung-uk Kim int hdrlen; 2407547d94bdSJung-uk Kim 2408547d94bdSJung-uk Kim hdrlen = d->bd_bif->bif_hdrlen; 2409547d94bdSJung-uk Kim #ifndef BURN_BRIDGES 2410547d94bdSJung-uk Kim if (d->bd_tstamp == BPF_T_NONE || 2411547d94bdSJung-uk Kim BPF_T_FORMAT(d->bd_tstamp) == BPF_T_MICROTIME) 2412547d94bdSJung-uk Kim #ifdef COMPAT_FREEBSD32 2413547d94bdSJung-uk Kim if (d->bd_compat32) 2414547d94bdSJung-uk Kim hdrlen += SIZEOF_BPF_HDR(struct bpf_hdr32); 2415547d94bdSJung-uk Kim else 2416547d94bdSJung-uk Kim #endif 2417547d94bdSJung-uk Kim hdrlen += SIZEOF_BPF_HDR(struct bpf_hdr); 2418547d94bdSJung-uk Kim else 2419547d94bdSJung-uk Kim #endif 2420547d94bdSJung-uk Kim hdrlen += SIZEOF_BPF_HDR(struct bpf_xhdr); 2421547d94bdSJung-uk Kim #ifdef COMPAT_FREEBSD32 2422547d94bdSJung-uk Kim if (d->bd_compat32) 2423547d94bdSJung-uk Kim hdrlen = BPF_WORDALIGN32(hdrlen); 2424547d94bdSJung-uk Kim else 2425547d94bdSJung-uk Kim #endif 2426547d94bdSJung-uk Kim hdrlen = BPF_WORDALIGN(hdrlen); 2427547d94bdSJung-uk Kim 2428547d94bdSJung-uk Kim return (hdrlen - d->bd_bif->bif_hdrlen); 2429547d94bdSJung-uk Kim } 2430547d94bdSJung-uk Kim 2431547d94bdSJung-uk Kim static void 2432547d94bdSJung-uk Kim bpf_bintime2ts(struct bintime *bt, struct bpf_ts *ts, int tstype) 2433547d94bdSJung-uk Kim { 2434584b675eSKonstantin Belousov struct bintime bt2, boottimebin; 2435547d94bdSJung-uk Kim struct timeval tsm; 2436547d94bdSJung-uk Kim struct timespec tsn; 2437547d94bdSJung-uk Kim 2438253a3814SLawrence Stewart if ((tstype & BPF_T_MONOTONIC) == 0) { 2439253a3814SLawrence Stewart bt2 = *bt; 2440584b675eSKonstantin Belousov getboottimebin(&boottimebin); 2441253a3814SLawrence Stewart bintime_add(&bt2, &boottimebin); 2442253a3814SLawrence Stewart bt = &bt2; 2443253a3814SLawrence Stewart } 2444547d94bdSJung-uk Kim switch (BPF_T_FORMAT(tstype)) { 2445547d94bdSJung-uk Kim case BPF_T_MICROTIME: 2446547d94bdSJung-uk Kim bintime2timeval(bt, &tsm); 2447547d94bdSJung-uk Kim ts->bt_sec = tsm.tv_sec; 2448547d94bdSJung-uk Kim ts->bt_frac = tsm.tv_usec; 2449547d94bdSJung-uk Kim break; 2450547d94bdSJung-uk Kim case BPF_T_NANOTIME: 2451547d94bdSJung-uk Kim bintime2timespec(bt, &tsn); 2452547d94bdSJung-uk Kim ts->bt_sec = tsn.tv_sec; 2453547d94bdSJung-uk Kim ts->bt_frac = tsn.tv_nsec; 2454547d94bdSJung-uk Kim break; 2455547d94bdSJung-uk Kim case BPF_T_BINTIME: 2456547d94bdSJung-uk Kim ts->bt_sec = bt->sec; 2457547d94bdSJung-uk Kim ts->bt_frac = bt->frac; 2458547d94bdSJung-uk Kim break; 2459547d94bdSJung-uk Kim } 2460547d94bdSJung-uk Kim } 2461547d94bdSJung-uk Kim 2462437ffe18SSam Leffler /* 2463df8bae1dSRodney W. Grimes * Move the packet data from interface memory (pkt) into the 24649e610888SDag-Erling Smørgrav * store buffer. "cpfn" is the routine called to do the actual data 2465df8bae1dSRodney W. Grimes * transfer. bcopy is passed in to copy contiguous chunks, while 24664d621040SChristian S.J. Peron * bpf_append_mbuf is passed in to copy mbuf chains. In the latter case, 2467df8bae1dSRodney W. Grimes * pkt is really an mbuf. 2468df8bae1dSRodney W. Grimes */ 2469df8bae1dSRodney W. Grimes static void 247019ba8395SChristian S.J. Peron catchpacket(struct bpf_d *d, u_char *pkt, u_int pktlen, u_int snaplen, 24714d621040SChristian S.J. Peron void (*cpfn)(struct bpf_d *, caddr_t, u_int, void *, u_int), 2472547d94bdSJung-uk Kim struct bintime *bt) 2473df8bae1dSRodney W. Grimes { 2474547d94bdSJung-uk Kim struct bpf_xhdr hdr; 2475547d94bdSJung-uk Kim #ifndef BURN_BRIDGES 2476547d94bdSJung-uk Kim struct bpf_hdr hdr_old; 2477fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 2478547d94bdSJung-uk Kim struct bpf_hdr32 hdr32_old; 2479fc0a61a4SKonstantin Belousov #endif 2480547d94bdSJung-uk Kim #endif 2481547d94bdSJung-uk Kim int caplen, curlen, hdrlen, totlen; 24827819da79SJohn-Mark Gurney int do_wakeup = 0; 2483547d94bdSJung-uk Kim int do_timestamp; 2484547d94bdSJung-uk Kim int tstype; 24859e610888SDag-Erling Smørgrav 2486afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 24874d621040SChristian S.J. Peron 24884d621040SChristian S.J. Peron /* 24894d621040SChristian S.J. Peron * Detect whether user space has released a buffer back to us, and if 24904d621040SChristian S.J. Peron * so, move it from being a hold buffer to a free buffer. This may 24914d621040SChristian S.J. Peron * not be the best place to do it (for example, we might only want to 24924d621040SChristian S.J. Peron * run this check if we need the space), but for now it's a reliable 24934d621040SChristian S.J. Peron * spot to do it. 24944d621040SChristian S.J. Peron */ 2495fa0c2b34SRobert Watson if (d->bd_fbuf == NULL && bpf_canfreebuf(d)) { 24964d621040SChristian S.J. Peron d->bd_fbuf = d->bd_hbuf; 24974d621040SChristian S.J. Peron d->bd_hbuf = NULL; 24984d621040SChristian S.J. Peron d->bd_hlen = 0; 249929f612ecSChristian S.J. Peron bpf_buf_reclaimed(d); 25004d621040SChristian S.J. Peron } 25014d621040SChristian S.J. Peron 2502df8bae1dSRodney W. Grimes /* 2503df8bae1dSRodney W. Grimes * Figure out how many bytes to move. If the packet is 2504df8bae1dSRodney W. Grimes * greater or equal to the snapshot length, transfer that 2505df8bae1dSRodney W. Grimes * much. Otherwise, transfer the whole packet (unless 2506df8bae1dSRodney W. Grimes * we hit the buffer size limit). 2507df8bae1dSRodney W. Grimes */ 2508547d94bdSJung-uk Kim hdrlen = bpf_hdrlen(d); 2509df8bae1dSRodney W. Grimes totlen = hdrlen + min(snaplen, pktlen); 2510df8bae1dSRodney W. Grimes if (totlen > d->bd_bufsize) 2511df8bae1dSRodney W. Grimes totlen = d->bd_bufsize; 2512df8bae1dSRodney W. Grimes 2513df8bae1dSRodney W. Grimes /* 2514df8bae1dSRodney W. Grimes * Round up the end of the previous packet to the next longword. 2515a7a91e65SRobert Watson * 2516a7a91e65SRobert Watson * Drop the packet if there's no room and no hope of room 2517a7a91e65SRobert Watson * If the packet would overflow the storage buffer or the storage 2518a7a91e65SRobert Watson * buffer is considered immutable by the buffer model, try to rotate 2519a7a91e65SRobert Watson * the buffer and wakeup pending processes. 2520df8bae1dSRodney W. Grimes */ 2521fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 2522fc0a61a4SKonstantin Belousov if (d->bd_compat32) 2523fc0a61a4SKonstantin Belousov curlen = BPF_WORDALIGN32(d->bd_slen); 2524fc0a61a4SKonstantin Belousov else 2525fc0a61a4SKonstantin Belousov #endif 2526df8bae1dSRodney W. Grimes curlen = BPF_WORDALIGN(d->bd_slen); 2527a7a91e65SRobert Watson if (curlen + totlen > d->bd_bufsize || !bpf_canwritebuf(d)) { 2528572bde2aSRobert Watson if (d->bd_fbuf == NULL) { 2529df8bae1dSRodney W. Grimes /* 2530a7a91e65SRobert Watson * There's no room in the store buffer, and no 2531a7a91e65SRobert Watson * prospect of room, so drop the packet. Notify the 2532a7a91e65SRobert Watson * buffer model. 2533df8bae1dSRodney W. Grimes */ 2534a7a91e65SRobert Watson bpf_buffull(d); 2535b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_dcount, 1); 2536df8bae1dSRodney W. Grimes return; 2537df8bae1dSRodney W. Grimes } 253898fa5d85SLuiz Otavio O Souza KASSERT(!d->bd_hbuf_in_use, ("hold buffer is in use")); 2539df8bae1dSRodney W. Grimes ROTATE_BUFFERS(d); 25407819da79SJohn-Mark Gurney do_wakeup = 1; 2541df8bae1dSRodney W. Grimes curlen = 0; 2542a7a91e65SRobert Watson } else if (d->bd_immediate || d->bd_state == BPF_TIMED_OUT) 2543df8bae1dSRodney W. Grimes /* 25444d621040SChristian S.J. Peron * Immediate mode is set, or the read timeout has already 25454d621040SChristian S.J. Peron * expired during a select call. A packet arrived, so the 25464d621040SChristian S.J. Peron * reader should be woken up. 2547df8bae1dSRodney W. Grimes */ 25487819da79SJohn-Mark Gurney do_wakeup = 1; 2549547d94bdSJung-uk Kim caplen = totlen - hdrlen; 2550547d94bdSJung-uk Kim tstype = d->bd_tstamp; 2551547d94bdSJung-uk Kim do_timestamp = tstype != BPF_T_NONE; 2552547d94bdSJung-uk Kim #ifndef BURN_BRIDGES 2553547d94bdSJung-uk Kim if (tstype == BPF_T_NONE || BPF_T_FORMAT(tstype) == BPF_T_MICROTIME) { 2554547d94bdSJung-uk Kim struct bpf_ts ts; 2555547d94bdSJung-uk Kim if (do_timestamp) 2556547d94bdSJung-uk Kim bpf_bintime2ts(bt, &ts, tstype); 2557fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 2558fc0a61a4SKonstantin Belousov if (d->bd_compat32) { 2559547d94bdSJung-uk Kim bzero(&hdr32_old, sizeof(hdr32_old)); 2560547d94bdSJung-uk Kim if (do_timestamp) { 2561547d94bdSJung-uk Kim hdr32_old.bh_tstamp.tv_sec = ts.bt_sec; 2562547d94bdSJung-uk Kim hdr32_old.bh_tstamp.tv_usec = ts.bt_frac; 2563547d94bdSJung-uk Kim } 2564547d94bdSJung-uk Kim hdr32_old.bh_datalen = pktlen; 2565547d94bdSJung-uk Kim hdr32_old.bh_hdrlen = hdrlen; 2566547d94bdSJung-uk Kim hdr32_old.bh_caplen = caplen; 2567547d94bdSJung-uk Kim bpf_append_bytes(d, d->bd_sbuf, curlen, &hdr32_old, 2568547d94bdSJung-uk Kim sizeof(hdr32_old)); 2569547d94bdSJung-uk Kim goto copy; 2570547d94bdSJung-uk Kim } 2571547d94bdSJung-uk Kim #endif 2572547d94bdSJung-uk Kim bzero(&hdr_old, sizeof(hdr_old)); 2573547d94bdSJung-uk Kim if (do_timestamp) { 2574547d94bdSJung-uk Kim hdr_old.bh_tstamp.tv_sec = ts.bt_sec; 2575547d94bdSJung-uk Kim hdr_old.bh_tstamp.tv_usec = ts.bt_frac; 2576547d94bdSJung-uk Kim } 2577547d94bdSJung-uk Kim hdr_old.bh_datalen = pktlen; 2578547d94bdSJung-uk Kim hdr_old.bh_hdrlen = hdrlen; 2579547d94bdSJung-uk Kim hdr_old.bh_caplen = caplen; 2580547d94bdSJung-uk Kim bpf_append_bytes(d, d->bd_sbuf, curlen, &hdr_old, 2581547d94bdSJung-uk Kim sizeof(hdr_old)); 2582fc0a61a4SKonstantin Belousov goto copy; 2583fc0a61a4SKonstantin Belousov } 2584fc0a61a4SKonstantin Belousov #endif 2585df8bae1dSRodney W. Grimes 2586df8bae1dSRodney W. Grimes /* 25874d621040SChristian S.J. Peron * Append the bpf header. Note we append the actual header size, but 25884d621040SChristian S.J. Peron * move forward the length of the header plus padding. 2589df8bae1dSRodney W. Grimes */ 25904d621040SChristian S.J. Peron bzero(&hdr, sizeof(hdr)); 2591547d94bdSJung-uk Kim if (do_timestamp) 2592547d94bdSJung-uk Kim bpf_bintime2ts(bt, &hdr.bh_tstamp, tstype); 25934d621040SChristian S.J. Peron hdr.bh_datalen = pktlen; 25944d621040SChristian S.J. Peron hdr.bh_hdrlen = hdrlen; 2595547d94bdSJung-uk Kim hdr.bh_caplen = caplen; 25964d621040SChristian S.J. Peron bpf_append_bytes(d, d->bd_sbuf, curlen, &hdr, sizeof(hdr)); 25974d621040SChristian S.J. Peron 2598df8bae1dSRodney W. Grimes /* 2599df8bae1dSRodney W. Grimes * Copy the packet data into the store buffer and update its length. 2600df8bae1dSRodney W. Grimes */ 2601547d94bdSJung-uk Kim #ifndef BURN_BRIDGES 2602fc0a61a4SKonstantin Belousov copy: 2603fc0a61a4SKonstantin Belousov #endif 2604547d94bdSJung-uk Kim (*cpfn)(d, d->bd_sbuf, curlen + hdrlen, pkt, caplen); 2605df8bae1dSRodney W. Grimes d->bd_slen = curlen + totlen; 26067819da79SJohn-Mark Gurney 26077819da79SJohn-Mark Gurney if (do_wakeup) 26087819da79SJohn-Mark Gurney bpf_wakeup(d); 2609df8bae1dSRodney W. Grimes } 2610df8bae1dSRodney W. Grimes 2611df8bae1dSRodney W. Grimes /* 2612df8bae1dSRodney W. Grimes * Free buffers currently in use by a descriptor. 2613df8bae1dSRodney W. Grimes * Called on close. 2614df8bae1dSRodney W. Grimes */ 2615df8bae1dSRodney W. Grimes static void 2616*699281b5SAndrey V. Elsukov bpfd_free(epoch_context_t ctx) 2617df8bae1dSRodney W. Grimes { 2618*699281b5SAndrey V. Elsukov struct bpf_d *d; 2619*699281b5SAndrey V. Elsukov struct bpf_program_buffer *p; 26204d621040SChristian S.J. Peron 2621df8bae1dSRodney W. Grimes /* 2622df8bae1dSRodney W. Grimes * We don't need to lock out interrupts since this descriptor has 2623df8bae1dSRodney W. Grimes * been detached from its interface and it yet hasn't been marked 2624df8bae1dSRodney W. Grimes * free. 2625df8bae1dSRodney W. Grimes */ 2626*699281b5SAndrey V. Elsukov d = __containerof(ctx, struct bpf_d, epoch_ctx); 26274d621040SChristian S.J. Peron bpf_free(d); 262870485847SJung-uk Kim if (d->bd_rfilter != NULL) { 2629*699281b5SAndrey V. Elsukov p = __containerof((void *)d->bd_rfilter, 2630*699281b5SAndrey V. Elsukov struct bpf_program_buffer, buffer); 2631*699281b5SAndrey V. Elsukov bpf_program_buffer_free(&p->epoch_ctx); 2632ae275efcSJung-uk Kim } 2633*699281b5SAndrey V. Elsukov if (d->bd_wfilter != NULL) { 2634*699281b5SAndrey V. Elsukov p = __containerof((void *)d->bd_wfilter, 2635*699281b5SAndrey V. Elsukov struct bpf_program_buffer, buffer); 2636*699281b5SAndrey V. Elsukov bpf_program_buffer_free(&p->epoch_ctx); 2637*699281b5SAndrey V. Elsukov } 2638b2b7ca49SAlexander V. Chernikov 2639*699281b5SAndrey V. Elsukov mtx_destroy(&d->bd_lock); 2640b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_rcount); 2641b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_dcount); 2642b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_fcount); 2643b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_wcount); 2644b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_wfcount); 2645b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_wdcount); 2646b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_zcopy); 2647*699281b5SAndrey V. Elsukov free(d, M_BPF); 2648df8bae1dSRodney W. Grimes } 2649df8bae1dSRodney W. Grimes 2650df8bae1dSRodney W. Grimes /* 265124a229f4SSam Leffler * Attach an interface to bpf. dlt is the link layer type; hdrlen is the 265224a229f4SSam Leffler * fixed size of the link header (variable length headers not yet supported). 2653df8bae1dSRodney W. Grimes */ 2654df8bae1dSRodney W. Grimes void 265519ba8395SChristian S.J. Peron bpfattach(struct ifnet *ifp, u_int dlt, u_int hdrlen) 2656df8bae1dSRodney W. Grimes { 265724a229f4SSam Leffler 265824a229f4SSam Leffler bpfattach2(ifp, dlt, hdrlen, &ifp->if_bpf); 265924a229f4SSam Leffler } 266024a229f4SSam Leffler 266124a229f4SSam Leffler /* 266224a229f4SSam Leffler * Attach an interface to bpf. ifp is a pointer to the structure 266324a229f4SSam Leffler * defining the interface to be attached, dlt is the link layer type, 266424a229f4SSam Leffler * and hdrlen is the fixed size of the link header (variable length 266524a229f4SSam Leffler * headers are not yet supporrted). 266624a229f4SSam Leffler */ 266724a229f4SSam Leffler void 2668*699281b5SAndrey V. Elsukov bpfattach2(struct ifnet *ifp, u_int dlt, u_int hdrlen, 2669*699281b5SAndrey V. Elsukov struct bpf_if **driverp) 267024a229f4SSam Leffler { 2671df8bae1dSRodney W. Grimes struct bpf_if *bp; 267219ba8395SChristian S.J. Peron 2673*699281b5SAndrey V. Elsukov KASSERT(*driverp == NULL, 2674*699281b5SAndrey V. Elsukov ("bpfattach2: driverp already initialized")); 2675df8bae1dSRodney W. Grimes 2676c5be49daSAndrey V. Elsukov bp = malloc(sizeof(*bp), M_BPF, M_WAITOK | M_ZERO); 2677c5be49daSAndrey V. Elsukov 2678*699281b5SAndrey V. Elsukov CK_LIST_INIT(&bp->bif_dlist); 2679*699281b5SAndrey V. Elsukov CK_LIST_INIT(&bp->bif_wlist); 2680df8bae1dSRodney W. Grimes bp->bif_ifp = ifp; 2681df8bae1dSRodney W. Grimes bp->bif_dlt = dlt; 2682c5be49daSAndrey V. Elsukov bp->bif_hdrlen = hdrlen; 26839ce40d32SKristof Provost bp->bif_bpf = driverp; 2684*699281b5SAndrey V. Elsukov bp->bif_refcnt = 1; 268516d878ccSChristian S.J. Peron *driverp = bp; 2686*699281b5SAndrey V. Elsukov /* 2687*699281b5SAndrey V. Elsukov * Reference ifnet pointer, so it won't freed until 2688*699281b5SAndrey V. Elsukov * we release it. 2689*699281b5SAndrey V. Elsukov */ 2690*699281b5SAndrey V. Elsukov if_ref(ifp); 2691e4b3229aSAlexander V. Chernikov BPF_LOCK(); 2692*699281b5SAndrey V. Elsukov CK_LIST_INSERT_HEAD(&bpf_iflist, bp, bif_next); 2693e4b3229aSAlexander V. Chernikov BPF_UNLOCK(); 2694df8bae1dSRodney W. Grimes 2695616bc4f4SBjoern A. Zeeb if (bootverbose && IS_DEFAULT_VNET(curvnet)) 269624a229f4SSam Leffler if_printf(ifp, "bpf attached\n"); 2697df8bae1dSRodney W. Grimes } 269853ac6efbSJulian Elischer 269905fc4164SBjoern A. Zeeb #ifdef VIMAGE 270005fc4164SBjoern A. Zeeb /* 270105fc4164SBjoern A. Zeeb * When moving interfaces between vnet instances we need a way to 270205fc4164SBjoern A. Zeeb * query the dlt and hdrlen before detach so we can re-attch the if_bpf 270305fc4164SBjoern A. Zeeb * after the vmove. We unfortunately have no device driver infrastructure 270405fc4164SBjoern A. Zeeb * to query the interface for these values after creation/attach, thus 270505fc4164SBjoern A. Zeeb * add this as a workaround. 270605fc4164SBjoern A. Zeeb */ 270705fc4164SBjoern A. Zeeb int 270805fc4164SBjoern A. Zeeb bpf_get_bp_params(struct bpf_if *bp, u_int *bif_dlt, u_int *bif_hdrlen) 270905fc4164SBjoern A. Zeeb { 271005fc4164SBjoern A. Zeeb 271105fc4164SBjoern A. Zeeb if (bp == NULL) 271205fc4164SBjoern A. Zeeb return (ENXIO); 271305fc4164SBjoern A. Zeeb if (bif_dlt == NULL && bif_hdrlen == NULL) 271405fc4164SBjoern A. Zeeb return (0); 271505fc4164SBjoern A. Zeeb 271605fc4164SBjoern A. Zeeb if (bif_dlt != NULL) 271705fc4164SBjoern A. Zeeb *bif_dlt = bp->bif_dlt; 271805fc4164SBjoern A. Zeeb if (bif_hdrlen != NULL) 271905fc4164SBjoern A. Zeeb *bif_hdrlen = bp->bif_hdrlen; 272005fc4164SBjoern A. Zeeb 272105fc4164SBjoern A. Zeeb return (0); 272205fc4164SBjoern A. Zeeb } 272305fc4164SBjoern A. Zeeb #endif 272405fc4164SBjoern A. Zeeb 2725de5d9935SRobert Watson /* 2726de5d9935SRobert Watson * Detach bpf from an interface. This involves detaching each descriptor 27276c74ff0eSAlexander V. Chernikov * associated with the interface. Notify each descriptor as it's detached 27286c74ff0eSAlexander V. Chernikov * so that any sleepers wake up and get ENXIO. 2729de5d9935SRobert Watson */ 2730de5d9935SRobert Watson void 273119ba8395SChristian S.J. Peron bpfdetach(struct ifnet *ifp) 2732de5d9935SRobert Watson { 2733f079a0faSAlexander V. Chernikov struct bpf_if *bp, *bp_temp; 2734de5d9935SRobert Watson struct bpf_d *d; 27359a7e6bacSLawrence Stewart 2736afa85850SAlexander V. Chernikov BPF_LOCK(); 27379a7e6bacSLawrence Stewart /* Find all bpf_if struct's which reference ifp and detach them. */ 2738*699281b5SAndrey V. Elsukov CK_LIST_FOREACH_SAFE(bp, &bpf_iflist, bif_next, bp_temp) { 2739f079a0faSAlexander V. Chernikov if (ifp != bp->bif_ifp) 2740f079a0faSAlexander V. Chernikov continue; 2741de5d9935SRobert Watson 2742*699281b5SAndrey V. Elsukov CK_LIST_REMOVE(bp, bif_next); 27438bd1f0cfSMark Johnston *bp->bif_bpf = (struct bpf_if *)&dead_bpf_if; 2744f079a0faSAlexander V. Chernikov 2745*699281b5SAndrey V. Elsukov CTR4(KTR_NET, 2746*699281b5SAndrey V. Elsukov "%s: sheduling free for encap %d (%p) for if %p", 2747f079a0faSAlexander V. Chernikov __func__, bp->bif_dlt, bp, ifp); 2748f079a0faSAlexander V. Chernikov 2749*699281b5SAndrey V. Elsukov /* Detach common descriptors */ 2750*699281b5SAndrey V. Elsukov while ((d = CK_LIST_FIRST(&bp->bif_dlist)) != NULL) { 2751*699281b5SAndrey V. Elsukov bpf_detachd_locked(d, true); 2752e7bb21b3SJonathan Lemon } 2753f079a0faSAlexander V. Chernikov 2754*699281b5SAndrey V. Elsukov /* Detach writer-only descriptors */ 2755*699281b5SAndrey V. Elsukov while ((d = CK_LIST_FIRST(&bp->bif_wlist)) != NULL) { 2756*699281b5SAndrey V. Elsukov bpf_detachd_locked(d, true); 27576c74ff0eSAlexander V. Chernikov } 2758*699281b5SAndrey V. Elsukov bpfif_rele(bp); 2759f079a0faSAlexander V. Chernikov } 2760f079a0faSAlexander V. Chernikov BPF_UNLOCK(); 2761afa85850SAlexander V. Chernikov } 2762afa85850SAlexander V. Chernikov 2763afa85850SAlexander V. Chernikov /* 27648eab61f3SSam Leffler * Get a list of available data link type of the interface. 27658eab61f3SSam Leffler */ 27668eab61f3SSam Leffler static int 276719ba8395SChristian S.J. Peron bpf_getdltlist(struct bpf_d *d, struct bpf_dltlist *bfl) 27688eab61f3SSam Leffler { 27698eab61f3SSam Leffler struct ifnet *ifp; 27708eab61f3SSam Leffler struct bpf_if *bp; 277170209acaSKonstantin Belousov u_int *lst; 277270209acaSKonstantin Belousov int error, n, n1; 27738eab61f3SSam Leffler 277497aacec6SAlexander V. Chernikov BPF_LOCK_ASSERT(); 277597aacec6SAlexander V. Chernikov 27768eab61f3SSam Leffler ifp = d->bd_bif->bif_ifp; 277770209acaSKonstantin Belousov n1 = 0; 2778*699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bp, &bpf_iflist, bif_next) { 277970209acaSKonstantin Belousov if (bp->bif_ifp == ifp) 278070209acaSKonstantin Belousov n1++; 278170209acaSKonstantin Belousov } 278270209acaSKonstantin Belousov if (bfl->bfl_list == NULL) { 278370209acaSKonstantin Belousov bfl->bfl_len = n1; 278470209acaSKonstantin Belousov return (0); 278570209acaSKonstantin Belousov } 278670209acaSKonstantin Belousov if (n1 > bfl->bfl_len) 278770209acaSKonstantin Belousov return (ENOMEM); 2788*699281b5SAndrey V. Elsukov 278970209acaSKonstantin Belousov lst = malloc(n1 * sizeof(u_int), M_TEMP, M_WAITOK); 27908eab61f3SSam Leffler n = 0; 2791*699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bp, &bpf_iflist, bif_next) { 27928eab61f3SSam Leffler if (bp->bif_ifp != ifp) 27938eab61f3SSam Leffler continue; 2794*699281b5SAndrey V. Elsukov lst[n++] = bp->bif_dlt; 27958eab61f3SSam Leffler } 279670209acaSKonstantin Belousov error = copyout(lst, bfl->bfl_list, sizeof(u_int) * n); 279770209acaSKonstantin Belousov free(lst, M_TEMP); 27988eab61f3SSam Leffler bfl->bfl_len = n; 27998eab61f3SSam Leffler return (error); 28008eab61f3SSam Leffler } 28018eab61f3SSam Leffler 28028eab61f3SSam Leffler /* 28038eab61f3SSam Leffler * Set the data link type of a BPF instance. 28048eab61f3SSam Leffler */ 28058eab61f3SSam Leffler static int 280619ba8395SChristian S.J. Peron bpf_setdlt(struct bpf_d *d, u_int dlt) 28078eab61f3SSam Leffler { 28088eab61f3SSam Leffler int error, opromisc; 28098eab61f3SSam Leffler struct ifnet *ifp; 28108eab61f3SSam Leffler struct bpf_if *bp; 28118eab61f3SSam Leffler 28126c74ff0eSAlexander V. Chernikov BPF_LOCK_ASSERT(); 2813*699281b5SAndrey V. Elsukov MPASS(d->bd_bif != NULL); 28146c74ff0eSAlexander V. Chernikov 2815*699281b5SAndrey V. Elsukov /* 2816*699281b5SAndrey V. Elsukov * It is safe to check bd_bif without BPFD_LOCK, it can not be 2817*699281b5SAndrey V. Elsukov * changed while we hold global lock. 2818*699281b5SAndrey V. Elsukov */ 28198eab61f3SSam Leffler if (d->bd_bif->bif_dlt == dlt) 28208eab61f3SSam Leffler return (0); 28216c74ff0eSAlexander V. Chernikov 2822*699281b5SAndrey V. Elsukov ifp = d->bd_bif->bif_ifp; 2823*699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bp, &bpf_iflist, bif_next) { 28248eab61f3SSam Leffler if (bp->bif_ifp == ifp && bp->bif_dlt == dlt) 28258eab61f3SSam Leffler break; 28268eab61f3SSam Leffler } 2827*699281b5SAndrey V. Elsukov if (bp == NULL) 2828*699281b5SAndrey V. Elsukov return (EINVAL); 28296c74ff0eSAlexander V. Chernikov 28308eab61f3SSam Leffler opromisc = d->bd_promisc; 28318eab61f3SSam Leffler bpf_attachd(d, bp); 28328eab61f3SSam Leffler if (opromisc) { 28338eab61f3SSam Leffler error = ifpromisc(bp->bif_ifp, 1); 28348eab61f3SSam Leffler if (error) 2835*699281b5SAndrey V. Elsukov if_printf(bp->bif_ifp, "%s: ifpromisc failed (%d)\n", 2836*699281b5SAndrey V. Elsukov __func__, error); 28378eab61f3SSam Leffler else 28388eab61f3SSam Leffler d->bd_promisc = 1; 28398eab61f3SSam Leffler } 2840*699281b5SAndrey V. Elsukov return (0); 2841de5d9935SRobert Watson } 2842de5d9935SRobert Watson 28433f54a085SPoul-Henning Kamp static void 284419ba8395SChristian S.J. Peron bpf_drvinit(void *unused) 284553ac6efbSJulian Elischer { 2846136600feSEd Schouten struct cdev *dev; 284753ac6efbSJulian Elischer 2848f422673eSStephen Hurd sx_init(&bpf_sx, "bpf global lock"); 2849*699281b5SAndrey V. Elsukov CK_LIST_INIT(&bpf_iflist); 2850136600feSEd Schouten 2851136600feSEd Schouten dev = make_dev(&bpf_cdevsw, 0, UID_ROOT, GID_WHEEL, 0600, "bpf"); 2852136600feSEd Schouten /* For compatibility */ 2853136600feSEd Schouten make_dev_alias(dev, "bpf0"); 28547198bf47SJulian Elischer } 285553ac6efbSJulian Elischer 28560e37f3e1SChristian S.J. Peron /* 28570e37f3e1SChristian S.J. Peron * Zero out the various packet counters associated with all of the bpf 28580e37f3e1SChristian S.J. Peron * descriptors. At some point, we will probably want to get a bit more 28590e37f3e1SChristian S.J. Peron * granular and allow the user to specify descriptors to be zeroed. 28600e37f3e1SChristian S.J. Peron */ 28610e37f3e1SChristian S.J. Peron static void 28620e37f3e1SChristian S.J. Peron bpf_zero_counters(void) 28630e37f3e1SChristian S.J. Peron { 28640e37f3e1SChristian S.J. Peron struct bpf_if *bp; 28650e37f3e1SChristian S.J. Peron struct bpf_d *bd; 28660e37f3e1SChristian S.J. Peron 2867e4b3229aSAlexander V. Chernikov BPF_LOCK(); 2868*699281b5SAndrey V. Elsukov /* 2869*699281b5SAndrey V. Elsukov * We are protected by global lock here, interfaces and 2870*699281b5SAndrey V. Elsukov * descriptors can not be deleted while we hold it. 2871*699281b5SAndrey V. Elsukov */ 2872*699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bp, &bpf_iflist, bif_next) { 2873*699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bd, &bp->bif_dlist, bd_next) { 2874b2b7ca49SAlexander V. Chernikov counter_u64_zero(bd->bd_rcount); 2875b2b7ca49SAlexander V. Chernikov counter_u64_zero(bd->bd_dcount); 2876b2b7ca49SAlexander V. Chernikov counter_u64_zero(bd->bd_fcount); 2877b2b7ca49SAlexander V. Chernikov counter_u64_zero(bd->bd_wcount); 2878b2b7ca49SAlexander V. Chernikov counter_u64_zero(bd->bd_wfcount); 2879b2b7ca49SAlexander V. Chernikov counter_u64_zero(bd->bd_zcopy); 28800e37f3e1SChristian S.J. Peron } 28810e37f3e1SChristian S.J. Peron } 2882e4b3229aSAlexander V. Chernikov BPF_UNLOCK(); 28830e37f3e1SChristian S.J. Peron } 28840e37f3e1SChristian S.J. Peron 28856c74ff0eSAlexander V. Chernikov /* 28866c74ff0eSAlexander V. Chernikov * Fill filter statistics 28876c74ff0eSAlexander V. Chernikov */ 288869f7644bSChristian S.J. Peron static void 288969f7644bSChristian S.J. Peron bpfstats_fill_xbpf(struct xbpf_d *d, struct bpf_d *bd) 289069f7644bSChristian S.J. Peron { 289169f7644bSChristian S.J. Peron 2892*699281b5SAndrey V. Elsukov BPF_LOCK_ASSERT(); 289369f7644bSChristian S.J. Peron bzero(d, sizeof(*d)); 28944d621040SChristian S.J. Peron d->bd_structsize = sizeof(*d); 289569f7644bSChristian S.J. Peron d->bd_immediate = bd->bd_immediate; 289669f7644bSChristian S.J. Peron d->bd_promisc = bd->bd_promisc; 289769f7644bSChristian S.J. Peron d->bd_hdrcmplt = bd->bd_hdrcmplt; 2898560a54e1SJung-uk Kim d->bd_direction = bd->bd_direction; 2899560a54e1SJung-uk Kim d->bd_feedback = bd->bd_feedback; 290069f7644bSChristian S.J. Peron d->bd_async = bd->bd_async; 2901b2b7ca49SAlexander V. Chernikov d->bd_rcount = counter_u64_fetch(bd->bd_rcount); 2902b2b7ca49SAlexander V. Chernikov d->bd_dcount = counter_u64_fetch(bd->bd_dcount); 2903b2b7ca49SAlexander V. Chernikov d->bd_fcount = counter_u64_fetch(bd->bd_fcount); 290469f7644bSChristian S.J. Peron d->bd_sig = bd->bd_sig; 290569f7644bSChristian S.J. Peron d->bd_slen = bd->bd_slen; 290669f7644bSChristian S.J. Peron d->bd_hlen = bd->bd_hlen; 290769f7644bSChristian S.J. Peron d->bd_bufsize = bd->bd_bufsize; 290869f7644bSChristian S.J. Peron d->bd_pid = bd->bd_pid; 290969f7644bSChristian S.J. Peron strlcpy(d->bd_ifname, 291069f7644bSChristian S.J. Peron bd->bd_bif->bif_ifp->if_xname, IFNAMSIZ); 291193e39f0bSChristian S.J. Peron d->bd_locked = bd->bd_locked; 2912b2b7ca49SAlexander V. Chernikov d->bd_wcount = counter_u64_fetch(bd->bd_wcount); 2913b2b7ca49SAlexander V. Chernikov d->bd_wdcount = counter_u64_fetch(bd->bd_wdcount); 2914b2b7ca49SAlexander V. Chernikov d->bd_wfcount = counter_u64_fetch(bd->bd_wfcount); 2915b2b7ca49SAlexander V. Chernikov d->bd_zcopy = counter_u64_fetch(bd->bd_zcopy); 29164d621040SChristian S.J. Peron d->bd_bufmode = bd->bd_bufmode; 291769f7644bSChristian S.J. Peron } 291869f7644bSChristian S.J. Peron 29196c74ff0eSAlexander V. Chernikov /* 29206c74ff0eSAlexander V. Chernikov * Handle `netstat -B' stats request 29216c74ff0eSAlexander V. Chernikov */ 292269f7644bSChristian S.J. Peron static int 292369f7644bSChristian S.J. Peron bpf_stats_sysctl(SYSCTL_HANDLER_ARGS) 292469f7644bSChristian S.J. Peron { 29250e1152fcSHans Petter Selasky static const struct xbpf_d zerostats; 29260e1152fcSHans Petter Selasky struct xbpf_d *xbdbuf, *xbd, tempstats; 2927422a63daSChristian S.J. Peron int index, error; 292869f7644bSChristian S.J. Peron struct bpf_if *bp; 292969f7644bSChristian S.J. Peron struct bpf_d *bd; 293069f7644bSChristian S.J. Peron 293169f7644bSChristian S.J. Peron /* 293269f7644bSChristian S.J. Peron * XXX This is not technically correct. It is possible for non 293369f7644bSChristian S.J. Peron * privileged users to open bpf devices. It would make sense 293469f7644bSChristian S.J. Peron * if the users who opened the devices were able to retrieve 293569f7644bSChristian S.J. Peron * the statistics for them, too. 293669f7644bSChristian S.J. Peron */ 2937acd3428bSRobert Watson error = priv_check(req->td, PRIV_NET_BPF); 293869f7644bSChristian S.J. Peron if (error) 293969f7644bSChristian S.J. Peron return (error); 29400e37f3e1SChristian S.J. Peron /* 29410e37f3e1SChristian S.J. Peron * Check to see if the user is requesting that the counters be 29420e37f3e1SChristian S.J. Peron * zeroed out. Explicitly check that the supplied data is zeroed, 29430e37f3e1SChristian S.J. Peron * as we aren't allowing the user to set the counters currently. 29440e37f3e1SChristian S.J. Peron */ 29450e37f3e1SChristian S.J. Peron if (req->newptr != NULL) { 29460e1152fcSHans Petter Selasky if (req->newlen != sizeof(tempstats)) 29470e37f3e1SChristian S.J. Peron return (EINVAL); 29480e1152fcSHans Petter Selasky memset(&tempstats, 0, sizeof(tempstats)); 29490e1152fcSHans Petter Selasky error = SYSCTL_IN(req, &tempstats, sizeof(tempstats)); 29500e1152fcSHans Petter Selasky if (error) 29510e1152fcSHans Petter Selasky return (error); 29520e1152fcSHans Petter Selasky if (bcmp(&tempstats, &zerostats, sizeof(tempstats)) != 0) 29530e37f3e1SChristian S.J. Peron return (EINVAL); 29540e37f3e1SChristian S.J. Peron bpf_zero_counters(); 29550e37f3e1SChristian S.J. Peron return (0); 29560e37f3e1SChristian S.J. Peron } 295769f7644bSChristian S.J. Peron if (req->oldptr == NULL) 2958422a63daSChristian S.J. Peron return (SYSCTL_OUT(req, 0, bpf_bpfd_cnt * sizeof(*xbd))); 295969f7644bSChristian S.J. Peron if (bpf_bpfd_cnt == 0) 296069f7644bSChristian S.J. Peron return (SYSCTL_OUT(req, 0, 0)); 2961422a63daSChristian S.J. Peron xbdbuf = malloc(req->oldlen, M_BPF, M_WAITOK); 2962e4b3229aSAlexander V. Chernikov BPF_LOCK(); 2963422a63daSChristian S.J. Peron if (req->oldlen < (bpf_bpfd_cnt * sizeof(*xbd))) { 2964e4b3229aSAlexander V. Chernikov BPF_UNLOCK(); 2965422a63daSChristian S.J. Peron free(xbdbuf, M_BPF); 2966422a63daSChristian S.J. Peron return (ENOMEM); 2967422a63daSChristian S.J. Peron } 2968422a63daSChristian S.J. Peron index = 0; 2969*699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bp, &bpf_iflist, bif_next) { 297051ec1eb7SAlexander V. Chernikov /* Send writers-only first */ 2971*699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bd, &bp->bif_wlist, bd_next) { 297251ec1eb7SAlexander V. Chernikov xbd = &xbdbuf[index++]; 297351ec1eb7SAlexander V. Chernikov bpfstats_fill_xbpf(xbd, bd); 297451ec1eb7SAlexander V. Chernikov } 2975*699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bd, &bp->bif_dlist, bd_next) { 2976422a63daSChristian S.J. Peron xbd = &xbdbuf[index++]; 2977422a63daSChristian S.J. Peron bpfstats_fill_xbpf(xbd, bd); 297869f7644bSChristian S.J. Peron } 297969f7644bSChristian S.J. Peron } 2980e4b3229aSAlexander V. Chernikov BPF_UNLOCK(); 2981422a63daSChristian S.J. Peron error = SYSCTL_OUT(req, xbdbuf, index * sizeof(*xbd)); 2982422a63daSChristian S.J. Peron free(xbdbuf, M_BPF); 298369f7644bSChristian S.J. Peron return (error); 298469f7644bSChristian S.J. Peron } 298569f7644bSChristian S.J. Peron 2986237fdd78SRobert Watson SYSINIT(bpfdev,SI_SUB_DRIVERS,SI_ORDER_MIDDLE,bpf_drvinit,NULL); 298753ac6efbSJulian Elischer 29885bb5f2c9SPeter Wemm #else /* !DEV_BPF && !NETGRAPH_BPF */ 29898bd1f0cfSMark Johnston 2990f8dc4716SMike Smith /* 2991f8dc4716SMike Smith * NOP stubs to allow bpf-using drivers to load and function. 2992f8dc4716SMike Smith * 2993f8dc4716SMike Smith * A 'better' implementation would allow the core bpf functionality 2994f8dc4716SMike Smith * to be loaded at runtime. 2995f8dc4716SMike Smith */ 2996f8dc4716SMike Smith 2997f8dc4716SMike Smith void 299819ba8395SChristian S.J. Peron bpf_tap(struct bpf_if *bp, u_char *pkt, u_int pktlen) 2999f8dc4716SMike Smith { 3000f8dc4716SMike Smith } 3001f8dc4716SMike Smith 3002f8dc4716SMike Smith void 300319ba8395SChristian S.J. Peron bpf_mtap(struct bpf_if *bp, struct mbuf *m) 3004f8dc4716SMike Smith { 3005f8dc4716SMike Smith } 3006f8dc4716SMike Smith 3007f8dc4716SMike Smith void 300819ba8395SChristian S.J. Peron bpf_mtap2(struct bpf_if *bp, void *d, u_int l, struct mbuf *m) 3009437ffe18SSam Leffler { 3010437ffe18SSam Leffler } 3011437ffe18SSam Leffler 3012437ffe18SSam Leffler void 301319ba8395SChristian S.J. Peron bpfattach(struct ifnet *ifp, u_int dlt, u_int hdrlen) 3014f8dc4716SMike Smith { 30157eae78a4SChristian S.J. Peron 30167eae78a4SChristian S.J. Peron bpfattach2(ifp, dlt, hdrlen, &ifp->if_bpf); 3017f8dc4716SMike Smith } 3018f8dc4716SMike Smith 3019da626c17SBill Paul void 302019ba8395SChristian S.J. Peron bpfattach2(struct ifnet *ifp, u_int dlt, u_int hdrlen, struct bpf_if **driverp) 30215f7a7923SSam Leffler { 30227eae78a4SChristian S.J. Peron 30238bd1f0cfSMark Johnston *driverp = (struct bpf_if *)&dead_bpf_if; 30245f7a7923SSam Leffler } 30255f7a7923SSam Leffler 30265f7a7923SSam Leffler void 302719ba8395SChristian S.J. Peron bpfdetach(struct ifnet *ifp) 3028da626c17SBill Paul { 3029da626c17SBill Paul } 3030da626c17SBill Paul 3031f8dc4716SMike Smith u_int 303219ba8395SChristian S.J. Peron bpf_filter(const struct bpf_insn *pc, u_char *p, u_int wirelen, u_int buflen) 3033f8dc4716SMike Smith { 3034f8dc4716SMike Smith return -1; /* "no filter" behaviour */ 3035f8dc4716SMike Smith } 3036f8dc4716SMike Smith 30375bb5f2c9SPeter Wemm int 303819ba8395SChristian S.J. Peron bpf_validate(const struct bpf_insn *f, int len) 30395bb5f2c9SPeter Wemm { 30405bb5f2c9SPeter Wemm return 0; /* false */ 30415bb5f2c9SPeter Wemm } 30425bb5f2c9SPeter Wemm 30435bb5f2c9SPeter Wemm #endif /* !DEV_BPF && !NETGRAPH_BPF */ 304405fc4164SBjoern A. Zeeb 304505fc4164SBjoern A. Zeeb #ifdef DDB 304605fc4164SBjoern A. Zeeb static void 304705fc4164SBjoern A. Zeeb bpf_show_bpf_if(struct bpf_if *bpf_if) 304805fc4164SBjoern A. Zeeb { 304905fc4164SBjoern A. Zeeb 305005fc4164SBjoern A. Zeeb if (bpf_if == NULL) 305105fc4164SBjoern A. Zeeb return; 305205fc4164SBjoern A. Zeeb db_printf("%p:\n", bpf_if); 305305fc4164SBjoern A. Zeeb #define BPF_DB_PRINTF(f, e) db_printf(" %s = " f "\n", #e, bpf_if->e); 305405fc4164SBjoern A. Zeeb /* bif_ext.bif_next */ 305505fc4164SBjoern A. Zeeb /* bif_ext.bif_dlist */ 305605fc4164SBjoern A. Zeeb BPF_DB_PRINTF("%#x", bif_dlt); 305705fc4164SBjoern A. Zeeb BPF_DB_PRINTF("%u", bif_hdrlen); 305805fc4164SBjoern A. Zeeb /* bif_wlist */ 3059*699281b5SAndrey V. Elsukov BPF_DB_PRINTF("%p", bif_ifp); 3060*699281b5SAndrey V. Elsukov BPF_DB_PRINTF("%p", bif_bpf); 3061*699281b5SAndrey V. Elsukov BPF_DB_PRINTF("%u", bif_refcnt); 306205fc4164SBjoern A. Zeeb } 306305fc4164SBjoern A. Zeeb 306405fc4164SBjoern A. Zeeb DB_SHOW_COMMAND(bpf_if, db_show_bpf_if) 306505fc4164SBjoern A. Zeeb { 306605fc4164SBjoern A. Zeeb 306705fc4164SBjoern A. Zeeb if (!have_addr) { 306805fc4164SBjoern A. Zeeb db_printf("usage: show bpf_if <struct bpf_if *>\n"); 306905fc4164SBjoern A. Zeeb return; 307005fc4164SBjoern A. Zeeb } 307105fc4164SBjoern A. Zeeb 307205fc4164SBjoern A. Zeeb bpf_show_bpf_if((struct bpf_if *)addr); 307305fc4164SBjoern A. Zeeb } 307405fc4164SBjoern A. Zeeb #endif 3075