1c398230bSWarner Losh /*- 251369649SPedro F. Giffuni * SPDX-License-Identifier: BSD-3-Clause 351369649SPedro F. Giffuni * 4df8bae1dSRodney W. Grimes * Copyright (c) 1990, 1991, 1993 5253a3814SLawrence Stewart * The Regents of the University of California. All rights reserved. 6699281b5SAndrey V. Elsukov * Copyright (c) 2019 Andrey V. Elsukov <ae@FreeBSD.org> 7df8bae1dSRodney W. Grimes * 8df8bae1dSRodney W. Grimes * This code is derived from the Stanford/CMU enet packet filter, 9df8bae1dSRodney W. Grimes * (net/enet.c) distributed as part of 4.3BSD, and code contributed 10df8bae1dSRodney W. Grimes * to Berkeley by Steven McCanne and Van Jacobson both of Lawrence 11df8bae1dSRodney W. Grimes * Berkeley Laboratory. 12df8bae1dSRodney W. Grimes * 13df8bae1dSRodney W. Grimes * Redistribution and use in source and binary forms, with or without 14df8bae1dSRodney W. Grimes * modification, are permitted provided that the following conditions 15df8bae1dSRodney W. Grimes * are met: 16df8bae1dSRodney W. Grimes * 1. Redistributions of source code must retain the above copyright 17df8bae1dSRodney W. Grimes * notice, this list of conditions and the following disclaimer. 18df8bae1dSRodney W. Grimes * 2. Redistributions in binary form must reproduce the above copyright 19df8bae1dSRodney W. Grimes * notice, this list of conditions and the following disclaimer in the 20df8bae1dSRodney W. Grimes * documentation and/or other materials provided with the distribution. 21fbbd9655SWarner Losh * 3. Neither the name of the University nor the names of its contributors 22df8bae1dSRodney W. Grimes * may be used to endorse or promote products derived from this software 23df8bae1dSRodney W. Grimes * without specific prior written permission. 24df8bae1dSRodney W. Grimes * 25df8bae1dSRodney W. Grimes * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND 26df8bae1dSRodney W. Grimes * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 27df8bae1dSRodney W. Grimes * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 28df8bae1dSRodney W. Grimes * ARE DISCLAIMED. IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE 29df8bae1dSRodney W. Grimes * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 30df8bae1dSRodney W. Grimes * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 31df8bae1dSRodney W. Grimes * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 32df8bae1dSRodney W. Grimes * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 33df8bae1dSRodney W. Grimes * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 34df8bae1dSRodney W. Grimes * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 35df8bae1dSRodney W. Grimes * SUCH DAMAGE. 36df8bae1dSRodney W. Grimes * 374f252c4dSRuslan Ermilov * @(#)bpf.c 8.4 (Berkeley) 1/9/95 38df8bae1dSRodney W. Grimes */ 39df8bae1dSRodney W. Grimes 40c7866007SRobert Watson #include <sys/cdefs.h> 41c7866007SRobert Watson __FBSDID("$FreeBSD$"); 42c7866007SRobert Watson 435bb5f2c9SPeter Wemm #include "opt_bpf.h" 4405fc4164SBjoern A. Zeeb #include "opt_ddb.h" 455bb5f2c9SPeter Wemm #include "opt_netgraph.h" 46df8bae1dSRodney W. Grimes 47df8bae1dSRodney W. Grimes #include <sys/param.h> 48ce7609a4SBruce Evans #include <sys/conf.h> 49e2e050c8SConrad Meyer #include <sys/eventhandler.h> 50e76eee55SPoul-Henning Kamp #include <sys/fcntl.h> 51ebd8672cSBjoern A. Zeeb #include <sys/jail.h> 52e2e050c8SConrad Meyer #include <sys/ktr.h> 53e2e050c8SConrad Meyer #include <sys/lock.h> 544d1d4912SBruce Evans #include <sys/malloc.h> 55df8bae1dSRodney W. Grimes #include <sys/mbuf.h> 56e2e050c8SConrad Meyer #include <sys/mutex.h> 57df8bae1dSRodney W. Grimes #include <sys/time.h> 58acd3428bSRobert Watson #include <sys/priv.h> 59df8bae1dSRodney W. Grimes #include <sys/proc.h> 600310c19fSBruce Evans #include <sys/signalvar.h> 61528f627fSBruce Evans #include <sys/filio.h> 62528f627fSBruce Evans #include <sys/sockio.h> 63528f627fSBruce Evans #include <sys/ttycom.h> 64e76eee55SPoul-Henning Kamp #include <sys/uio.h> 6574549d4bSWojciech Macek #include <sys/sysent.h> 66e2e050c8SConrad Meyer #include <sys/systm.h> 67df8bae1dSRodney W. Grimes 6895aab9ccSJohn-Mark Gurney #include <sys/event.h> 6995aab9ccSJohn-Mark Gurney #include <sys/file.h> 70243ac7d8SPeter Wemm #include <sys/poll.h> 7195aab9ccSJohn-Mark Gurney #include <sys/proc.h> 72df8bae1dSRodney W. Grimes 73df8bae1dSRodney W. Grimes #include <sys/socket.h> 74df8bae1dSRodney W. Grimes 7505fc4164SBjoern A. Zeeb #ifdef DDB 7605fc4164SBjoern A. Zeeb #include <ddb/ddb.h> 7705fc4164SBjoern A. Zeeb #endif 7805fc4164SBjoern A. Zeeb 79fba9235dSBruce Evans #include <net/if.h> 8076039bc8SGleb Smirnoff #include <net/if_var.h> 814fb3a820SAlexander V. Chernikov #include <net/if_dl.h> 82df8bae1dSRodney W. Grimes #include <net/bpf.h> 834d621040SChristian S.J. Peron #include <net/bpf_buffer.h> 84ae275efcSJung-uk Kim #ifdef BPF_JITTER 85ae275efcSJung-uk Kim #include <net/bpf_jitter.h> 86ae275efcSJung-uk Kim #endif 874d621040SChristian S.J. Peron #include <net/bpf_zerocopy.h> 88df8bae1dSRodney W. Grimes #include <net/bpfdesc.h> 894fb3a820SAlexander V. Chernikov #include <net/route.h> 90530c0060SRobert Watson #include <net/vnet.h> 91df8bae1dSRodney W. Grimes 92df8bae1dSRodney W. Grimes #include <netinet/in.h> 93df8bae1dSRodney W. Grimes #include <netinet/if_ether.h> 94df8bae1dSRodney W. Grimes #include <sys/kernel.h> 95f708ef1bSPoul-Henning Kamp #include <sys/sysctl.h> 967b778b5eSEivind Eklund 97246b5467SSam Leffler #include <net80211/ieee80211_freebsd.h> 98246b5467SSam Leffler 99aed55708SRobert Watson #include <security/mac/mac_framework.h> 100aed55708SRobert Watson 1014d621040SChristian S.J. Peron MALLOC_DEFINE(M_BPF, "BPF", "BPF data"); 10287f6c662SJulian Elischer 1032b9600b4SAndrey V. Elsukov static struct bpf_if_ext dead_bpf_if = { 104699281b5SAndrey V. Elsukov .bif_dlist = CK_LIST_HEAD_INITIALIZER() 1052b9600b4SAndrey V. Elsukov }; 1062b9600b4SAndrey V. Elsukov 107b23cbbe6SMark Johnston struct bpf_if { 108b23cbbe6SMark Johnston #define bif_next bif_ext.bif_next 109b23cbbe6SMark Johnston #define bif_dlist bif_ext.bif_dlist 110b23cbbe6SMark Johnston struct bpf_if_ext bif_ext; /* public members */ 111b23cbbe6SMark Johnston u_int bif_dlt; /* link layer type */ 112b23cbbe6SMark Johnston u_int bif_hdrlen; /* length of link header */ 113699281b5SAndrey V. Elsukov struct bpfd_list bif_wlist; /* writer-only list */ 114b23cbbe6SMark Johnston struct ifnet *bif_ifp; /* corresponding interface */ 1159ce40d32SKristof Provost struct bpf_if **bif_bpf; /* Pointer to pointer to us */ 116699281b5SAndrey V. Elsukov volatile u_int bif_refcnt; 117699281b5SAndrey V. Elsukov struct epoch_context epoch_ctx; 118b23cbbe6SMark Johnston }; 119b23cbbe6SMark Johnston 120b23cbbe6SMark Johnston CTASSERT(offsetof(struct bpf_if, bif_ext) == 0); 121b23cbbe6SMark Johnston 122699281b5SAndrey V. Elsukov struct bpf_program_buffer { 123699281b5SAndrey V. Elsukov struct epoch_context epoch_ctx; 124699281b5SAndrey V. Elsukov #ifdef BPF_JITTER 125699281b5SAndrey V. Elsukov bpf_jit_filter *func; 126699281b5SAndrey V. Elsukov #endif 127699281b5SAndrey V. Elsukov void *buffer[0]; 128699281b5SAndrey V. Elsukov }; 129ca3cd72bSAndrey V. Elsukov 1305bb5f2c9SPeter Wemm #if defined(DEV_BPF) || defined(NETGRAPH_BPF) 13153ac6efbSJulian Elischer 132df8bae1dSRodney W. Grimes #define PRINET 26 /* interruptible */ 133df8bae1dSRodney W. Grimes 134547d94bdSJung-uk Kim #define SIZEOF_BPF_HDR(type) \ 135547d94bdSJung-uk Kim (offsetof(type, bh_hdrlen) + sizeof(((type *)0)->bh_hdrlen)) 136547d94bdSJung-uk Kim 137fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 138fc0a61a4SKonstantin Belousov #include <sys/mount.h> 139fc0a61a4SKonstantin Belousov #include <compat/freebsd32/freebsd32.h> 140fc0a61a4SKonstantin Belousov #define BPF_ALIGNMENT32 sizeof(int32_t) 141d9c9c81cSPedro F. Giffuni #define BPF_WORDALIGN32(x) roundup2(x, BPF_ALIGNMENT32) 142fc0a61a4SKonstantin Belousov 143547d94bdSJung-uk Kim #ifndef BURN_BRIDGES 144fc0a61a4SKonstantin Belousov /* 145fc0a61a4SKonstantin Belousov * 32-bit version of structure prepended to each packet. We use this header 146fc0a61a4SKonstantin Belousov * instead of the standard one for 32-bit streams. We mark the a stream as 147fc0a61a4SKonstantin Belousov * 32-bit the first time we see a 32-bit compat ioctl request. 148fc0a61a4SKonstantin Belousov */ 149fc0a61a4SKonstantin Belousov struct bpf_hdr32 { 150fc0a61a4SKonstantin Belousov struct timeval32 bh_tstamp; /* time stamp */ 151fc0a61a4SKonstantin Belousov uint32_t bh_caplen; /* length of captured portion */ 152fc0a61a4SKonstantin Belousov uint32_t bh_datalen; /* original length of packet */ 153fc0a61a4SKonstantin Belousov uint16_t bh_hdrlen; /* length of bpf header (this struct 154fc0a61a4SKonstantin Belousov plus alignment padding) */ 155fc0a61a4SKonstantin Belousov }; 156253a3814SLawrence Stewart #endif 157fc0a61a4SKonstantin Belousov 158fc0a61a4SKonstantin Belousov struct bpf_program32 { 159fc0a61a4SKonstantin Belousov u_int bf_len; 160fc0a61a4SKonstantin Belousov uint32_t bf_insns; 161fc0a61a4SKonstantin Belousov }; 162fc0a61a4SKonstantin Belousov 163fc0a61a4SKonstantin Belousov struct bpf_dltlist32 { 164fc0a61a4SKonstantin Belousov u_int bfl_len; 165fc0a61a4SKonstantin Belousov u_int bfl_list; 166fc0a61a4SKonstantin Belousov }; 167fc0a61a4SKonstantin Belousov 168fc0a61a4SKonstantin Belousov #define BIOCSETF32 _IOW('B', 103, struct bpf_program32) 169fc0a61a4SKonstantin Belousov #define BIOCSRTIMEOUT32 _IOW('B', 109, struct timeval32) 170fc0a61a4SKonstantin Belousov #define BIOCGRTIMEOUT32 _IOR('B', 110, struct timeval32) 171fc0a61a4SKonstantin Belousov #define BIOCGDLTLIST32 _IOWR('B', 121, struct bpf_dltlist32) 172fc0a61a4SKonstantin Belousov #define BIOCSETWF32 _IOW('B', 123, struct bpf_program32) 173fc0a61a4SKonstantin Belousov #define BIOCSETFNR32 _IOW('B', 130, struct bpf_program32) 174253a3814SLawrence Stewart #endif 175fc0a61a4SKonstantin Belousov 176f422673eSStephen Hurd #define BPF_LOCK() sx_xlock(&bpf_sx) 177f422673eSStephen Hurd #define BPF_UNLOCK() sx_xunlock(&bpf_sx) 178f422673eSStephen Hurd #define BPF_LOCK_ASSERT() sx_assert(&bpf_sx, SA_XLOCKED) 179df8bae1dSRodney W. Grimes /* 180d1a67300SRobert Watson * bpf_iflist is a list of BPF interface structures, each corresponding to a 181d1a67300SRobert Watson * specific DLT. The same network interface might have several BPF interface 182d1a67300SRobert Watson * structures registered by different layers in the stack (i.e., 802.11 183d1a67300SRobert Watson * frames, ethernet frames, etc). 184df8bae1dSRodney W. Grimes */ 185699281b5SAndrey V. Elsukov CK_LIST_HEAD(bpf_iflist, bpf_if); 186699281b5SAndrey V. Elsukov static struct bpf_iflist bpf_iflist; 187f422673eSStephen Hurd static struct sx bpf_sx; /* bpf global lock */ 18869f7644bSChristian S.J. Peron static int bpf_bpfd_cnt; 189df8bae1dSRodney W. Grimes 190699281b5SAndrey V. Elsukov static void bpfif_ref(struct bpf_if *); 191699281b5SAndrey V. Elsukov static void bpfif_rele(struct bpf_if *); 192699281b5SAndrey V. Elsukov 193699281b5SAndrey V. Elsukov static void bpfd_ref(struct bpf_d *); 194699281b5SAndrey V. Elsukov static void bpfd_rele(struct bpf_d *); 19519ba8395SChristian S.J. Peron static void bpf_attachd(struct bpf_d *, struct bpf_if *); 19619ba8395SChristian S.J. Peron static void bpf_detachd(struct bpf_d *); 197699281b5SAndrey V. Elsukov static void bpf_detachd_locked(struct bpf_d *, bool); 198699281b5SAndrey V. Elsukov static void bpfd_free(epoch_context_t); 199cb44b6dfSAndrew Thompson static int bpf_movein(struct uio *, int, struct ifnet *, struct mbuf **, 2004fb3a820SAlexander V. Chernikov struct sockaddr *, int *, struct bpf_d *); 201929ddbbbSAlfred Perlstein static int bpf_setif(struct bpf_d *, struct ifreq *); 202929ddbbbSAlfred Perlstein static void bpf_timed_out(void *); 203e7bb21b3SJonathan Lemon static __inline void 204929ddbbbSAlfred Perlstein bpf_wakeup(struct bpf_d *); 2054d621040SChristian S.J. Peron static void catchpacket(struct bpf_d *, u_char *, u_int, u_int, 2064d621040SChristian S.J. Peron void (*)(struct bpf_d *, caddr_t, u_int, void *, u_int), 207547d94bdSJung-uk Kim struct bintime *); 208929ddbbbSAlfred Perlstein static void reset_d(struct bpf_d *); 20993e39f0bSChristian S.J. Peron static int bpf_setf(struct bpf_d *, struct bpf_program *, u_long cmd); 2108eab61f3SSam Leffler static int bpf_getdltlist(struct bpf_d *, struct bpf_dltlist *); 2118eab61f3SSam Leffler static int bpf_setdlt(struct bpf_d *, u_int); 21295aab9ccSJohn-Mark Gurney static void filt_bpfdetach(struct knote *); 21395aab9ccSJohn-Mark Gurney static int filt_bpfread(struct knote *, long); 214a3272e3cSChristian S.J. Peron static void bpf_drvinit(void *); 21569f7644bSChristian S.J. Peron static int bpf_stats_sysctl(SYSCTL_HANDLER_ARGS); 21669f7644bSChristian S.J. Peron 21769f7644bSChristian S.J. Peron SYSCTL_NODE(_net, OID_AUTO, bpf, CTLFLAG_RW, 0, "bpf sysctl"); 21812dc9582SJung-uk Kim int bpf_maxinsns = BPF_MAXINSNS; 21969f7644bSChristian S.J. Peron SYSCTL_INT(_net_bpf, OID_AUTO, maxinsns, CTLFLAG_RW, 22069f7644bSChristian S.J. Peron &bpf_maxinsns, 0, "Maximum bpf program instructions"); 221ffeeb924SChristian S.J. Peron static int bpf_zerocopy_enable = 0; 2224d621040SChristian S.J. Peron SYSCTL_INT(_net_bpf, OID_AUTO, zerocopy_enable, CTLFLAG_RW, 2234d621040SChristian S.J. Peron &bpf_zerocopy_enable, 0, "Enable new zero-copy BPF buffer sessions"); 2246472ac3dSEd Schouten static SYSCTL_NODE(_net_bpf, OID_AUTO, stats, CTLFLAG_MPSAFE | CTLFLAG_RW, 22569f7644bSChristian S.J. Peron bpf_stats_sysctl, "bpf statistics portal"); 226df8bae1dSRodney W. Grimes 2275f901c92SAndrew Turner VNET_DEFINE_STATIC(int, bpf_optimize_writers) = 0; 22851ec1eb7SAlexander V. Chernikov #define V_bpf_optimize_writers VNET(bpf_optimize_writers) 2296df8a710SGleb Smirnoff SYSCTL_INT(_net_bpf, OID_AUTO, optimize_writers, CTLFLAG_VNET | CTLFLAG_RW, 2306df8a710SGleb Smirnoff &VNET_NAME(bpf_optimize_writers), 0, 23151ec1eb7SAlexander V. Chernikov "Do not send packets until BPF program is set"); 23251ec1eb7SAlexander V. Chernikov 23387f6c662SJulian Elischer static d_open_t bpfopen; 23487f6c662SJulian Elischer static d_read_t bpfread; 23587f6c662SJulian Elischer static d_write_t bpfwrite; 23687f6c662SJulian Elischer static d_ioctl_t bpfioctl; 237243ac7d8SPeter Wemm static d_poll_t bpfpoll; 23895aab9ccSJohn-Mark Gurney static d_kqfilter_t bpfkqfilter; 23987f6c662SJulian Elischer 2404e2f199eSPoul-Henning Kamp static struct cdevsw bpf_cdevsw = { 241dc08ffecSPoul-Henning Kamp .d_version = D_VERSION, 2427ac40f5fSPoul-Henning Kamp .d_open = bpfopen, 2437ac40f5fSPoul-Henning Kamp .d_read = bpfread, 2447ac40f5fSPoul-Henning Kamp .d_write = bpfwrite, 2457ac40f5fSPoul-Henning Kamp .d_ioctl = bpfioctl, 2467ac40f5fSPoul-Henning Kamp .d_poll = bpfpoll, 2477ac40f5fSPoul-Henning Kamp .d_name = "bpf", 24895aab9ccSJohn-Mark Gurney .d_kqfilter = bpfkqfilter, 2494e2f199eSPoul-Henning Kamp }; 25087f6c662SJulian Elischer 251e76d823bSRobert Watson static struct filterops bpfread_filtops = { 252e76d823bSRobert Watson .f_isfd = 1, 253e76d823bSRobert Watson .f_detach = filt_bpfdetach, 254e76d823bSRobert Watson .f_event = filt_bpfread, 255e76d823bSRobert Watson }; 25687f6c662SJulian Elischer 2574d621040SChristian S.J. Peron /* 258699281b5SAndrey V. Elsukov * LOCKING MODEL USED BY BPF 259699281b5SAndrey V. Elsukov * 2606c74ff0eSAlexander V. Chernikov * Locks: 261699281b5SAndrey V. Elsukov * 1) global lock (BPF_LOCK). Sx, used to protect some global counters, 262699281b5SAndrey V. Elsukov * every bpf_iflist changes, serializes ioctl access to bpf descriptors. 263699281b5SAndrey V. Elsukov * 2) Descriptor lock. Mutex, used to protect BPF buffers and various 264699281b5SAndrey V. Elsukov * structure fields used by bpf_*tap* code. 2656c74ff0eSAlexander V. Chernikov * 266699281b5SAndrey V. Elsukov * Lock order: global lock, then descriptor lock. 2676c74ff0eSAlexander V. Chernikov * 268699281b5SAndrey V. Elsukov * There are several possible consumers: 2696c74ff0eSAlexander V. Chernikov * 270699281b5SAndrey V. Elsukov * 1. The kernel registers interface pointer with bpfattach(). 271699281b5SAndrey V. Elsukov * Each call allocates new bpf_if structure, references ifnet pointer 272699281b5SAndrey V. Elsukov * and links bpf_if into bpf_iflist chain. This is protected with global 273699281b5SAndrey V. Elsukov * lock. 2746c74ff0eSAlexander V. Chernikov * 275699281b5SAndrey V. Elsukov * 2. An userland application uses ioctl() call to bpf_d descriptor. 276699281b5SAndrey V. Elsukov * All such call are serialized with global lock. BPF filters can be 277699281b5SAndrey V. Elsukov * changed, but pointer to old filter will be freed using epoch_call(). 278699281b5SAndrey V. Elsukov * Thus it should be safe for bpf_tap/bpf_mtap* code to do access to 279699281b5SAndrey V. Elsukov * filter pointers, even if change will happen during bpf_tap execution. 280699281b5SAndrey V. Elsukov * Destroying of bpf_d descriptor also is doing using epoch_call(). 2816c74ff0eSAlexander V. Chernikov * 282699281b5SAndrey V. Elsukov * 3. An userland application can write packets into bpf_d descriptor. 283699281b5SAndrey V. Elsukov * There we need to be sure, that ifnet won't disappear during bpfwrite(). 2846c74ff0eSAlexander V. Chernikov * 285699281b5SAndrey V. Elsukov * 4. The kernel invokes bpf_tap/bpf_mtap* functions. The access to 286699281b5SAndrey V. Elsukov * bif_dlist is protected with net_epoch_preempt section. So, it should 287699281b5SAndrey V. Elsukov * be safe to make access to bpf_d descriptor inside the section. 288699281b5SAndrey V. Elsukov * 289699281b5SAndrey V. Elsukov * 5. The kernel invokes bpfdetach() on interface destroying. All lists 290699281b5SAndrey V. Elsukov * are modified with global lock held and actual free() is done using 291699281b5SAndrey V. Elsukov * epoch_call(). 2926c74ff0eSAlexander V. Chernikov */ 2936c74ff0eSAlexander V. Chernikov 294699281b5SAndrey V. Elsukov static void 295699281b5SAndrey V. Elsukov bpfif_free(epoch_context_t ctx) 296699281b5SAndrey V. Elsukov { 297699281b5SAndrey V. Elsukov struct bpf_if *bp; 298699281b5SAndrey V. Elsukov 299699281b5SAndrey V. Elsukov bp = __containerof(ctx, struct bpf_if, epoch_ctx); 300699281b5SAndrey V. Elsukov if_rele(bp->bif_ifp); 301699281b5SAndrey V. Elsukov free(bp, M_BPF); 302699281b5SAndrey V. Elsukov } 303699281b5SAndrey V. Elsukov 304699281b5SAndrey V. Elsukov static void 305699281b5SAndrey V. Elsukov bpfif_ref(struct bpf_if *bp) 306699281b5SAndrey V. Elsukov { 307699281b5SAndrey V. Elsukov 308699281b5SAndrey V. Elsukov refcount_acquire(&bp->bif_refcnt); 309699281b5SAndrey V. Elsukov } 310699281b5SAndrey V. Elsukov 311699281b5SAndrey V. Elsukov static void 312699281b5SAndrey V. Elsukov bpfif_rele(struct bpf_if *bp) 313699281b5SAndrey V. Elsukov { 314699281b5SAndrey V. Elsukov 315699281b5SAndrey V. Elsukov if (!refcount_release(&bp->bif_refcnt)) 316699281b5SAndrey V. Elsukov return; 317699281b5SAndrey V. Elsukov epoch_call(net_epoch_preempt, &bp->epoch_ctx, bpfif_free); 318699281b5SAndrey V. Elsukov } 319699281b5SAndrey V. Elsukov 320699281b5SAndrey V. Elsukov static void 321699281b5SAndrey V. Elsukov bpfd_ref(struct bpf_d *d) 322699281b5SAndrey V. Elsukov { 323699281b5SAndrey V. Elsukov 324699281b5SAndrey V. Elsukov refcount_acquire(&d->bd_refcnt); 325699281b5SAndrey V. Elsukov } 326699281b5SAndrey V. Elsukov 327699281b5SAndrey V. Elsukov static void 328699281b5SAndrey V. Elsukov bpfd_rele(struct bpf_d *d) 329699281b5SAndrey V. Elsukov { 330699281b5SAndrey V. Elsukov 331699281b5SAndrey V. Elsukov if (!refcount_release(&d->bd_refcnt)) 332699281b5SAndrey V. Elsukov return; 333699281b5SAndrey V. Elsukov epoch_call(net_epoch_preempt, &d->epoch_ctx, bpfd_free); 334699281b5SAndrey V. Elsukov } 335699281b5SAndrey V. Elsukov 336699281b5SAndrey V. Elsukov static struct bpf_program_buffer* 337699281b5SAndrey V. Elsukov bpf_program_buffer_alloc(size_t size, int flags) 338699281b5SAndrey V. Elsukov { 339699281b5SAndrey V. Elsukov 340699281b5SAndrey V. Elsukov return (malloc(sizeof(struct bpf_program_buffer) + size, 341699281b5SAndrey V. Elsukov M_BPF, flags)); 342699281b5SAndrey V. Elsukov } 343699281b5SAndrey V. Elsukov 344699281b5SAndrey V. Elsukov static void 345699281b5SAndrey V. Elsukov bpf_program_buffer_free(epoch_context_t ctx) 346699281b5SAndrey V. Elsukov { 347699281b5SAndrey V. Elsukov struct bpf_program_buffer *ptr; 348699281b5SAndrey V. Elsukov 349699281b5SAndrey V. Elsukov ptr = __containerof(ctx, struct bpf_program_buffer, epoch_ctx); 350699281b5SAndrey V. Elsukov #ifdef BPF_JITTER 351699281b5SAndrey V. Elsukov if (ptr->func != NULL) 352699281b5SAndrey V. Elsukov bpf_destroy_jit_filter(ptr->func); 353699281b5SAndrey V. Elsukov #endif 354699281b5SAndrey V. Elsukov free(ptr, M_BPF); 355699281b5SAndrey V. Elsukov } 356699281b5SAndrey V. Elsukov 3576c74ff0eSAlexander V. Chernikov /* 3584d621040SChristian S.J. Peron * Wrapper functions for various buffering methods. If the set of buffer 3594d621040SChristian S.J. Peron * modes expands, we will probably want to introduce a switch data structure 3604d621040SChristian S.J. Peron * similar to protosw, et. 3614d621040SChristian S.J. Peron */ 3624d621040SChristian S.J. Peron static void 3634d621040SChristian S.J. Peron bpf_append_bytes(struct bpf_d *d, caddr_t buf, u_int offset, void *src, 3644d621040SChristian S.J. Peron u_int len) 3654d621040SChristian S.J. Peron { 3664d621040SChristian S.J. Peron 367afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 3684d621040SChristian S.J. Peron 3694d621040SChristian S.J. Peron switch (d->bd_bufmode) { 3704d621040SChristian S.J. Peron case BPF_BUFMODE_BUFFER: 3714d621040SChristian S.J. Peron return (bpf_buffer_append_bytes(d, buf, offset, src, len)); 3724d621040SChristian S.J. Peron 3734d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 374b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_zcopy, 1); 3754d621040SChristian S.J. Peron return (bpf_zerocopy_append_bytes(d, buf, offset, src, len)); 3764d621040SChristian S.J. Peron 3774d621040SChristian S.J. Peron default: 3784d621040SChristian S.J. Peron panic("bpf_buf_append_bytes"); 3794d621040SChristian S.J. Peron } 3804d621040SChristian S.J. Peron } 3814d621040SChristian S.J. Peron 3824d621040SChristian S.J. Peron static void 3834d621040SChristian S.J. Peron bpf_append_mbuf(struct bpf_d *d, caddr_t buf, u_int offset, void *src, 3844d621040SChristian S.J. Peron u_int len) 3854d621040SChristian S.J. Peron { 3864d621040SChristian S.J. Peron 387afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 3884d621040SChristian S.J. Peron 3894d621040SChristian S.J. Peron switch (d->bd_bufmode) { 3904d621040SChristian S.J. Peron case BPF_BUFMODE_BUFFER: 3914d621040SChristian S.J. Peron return (bpf_buffer_append_mbuf(d, buf, offset, src, len)); 3924d621040SChristian S.J. Peron 3934d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 394b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_zcopy, 1); 3954d621040SChristian S.J. Peron return (bpf_zerocopy_append_mbuf(d, buf, offset, src, len)); 3964d621040SChristian S.J. Peron 3974d621040SChristian S.J. Peron default: 3984d621040SChristian S.J. Peron panic("bpf_buf_append_mbuf"); 3994d621040SChristian S.J. Peron } 4004d621040SChristian S.J. Peron } 4014d621040SChristian S.J. Peron 4024d621040SChristian S.J. Peron /* 40329f612ecSChristian S.J. Peron * This function gets called when the free buffer is re-assigned. 40429f612ecSChristian S.J. Peron */ 40529f612ecSChristian S.J. Peron static void 40629f612ecSChristian S.J. Peron bpf_buf_reclaimed(struct bpf_d *d) 40729f612ecSChristian S.J. Peron { 40829f612ecSChristian S.J. Peron 409afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 41029f612ecSChristian S.J. Peron 41129f612ecSChristian S.J. Peron switch (d->bd_bufmode) { 41229f612ecSChristian S.J. Peron case BPF_BUFMODE_BUFFER: 41329f612ecSChristian S.J. Peron return; 41429f612ecSChristian S.J. Peron 41529f612ecSChristian S.J. Peron case BPF_BUFMODE_ZBUF: 41629f612ecSChristian S.J. Peron bpf_zerocopy_buf_reclaimed(d); 41729f612ecSChristian S.J. Peron return; 41829f612ecSChristian S.J. Peron 41929f612ecSChristian S.J. Peron default: 42029f612ecSChristian S.J. Peron panic("bpf_buf_reclaimed"); 42129f612ecSChristian S.J. Peron } 42229f612ecSChristian S.J. Peron } 42329f612ecSChristian S.J. Peron 42429f612ecSChristian S.J. Peron /* 4254d621040SChristian S.J. Peron * If the buffer mechanism has a way to decide that a held buffer can be made 4264d621040SChristian S.J. Peron * free, then it is exposed via the bpf_canfreebuf() interface. (1) is 4274d621040SChristian S.J. Peron * returned if the buffer can be discarded, (0) is returned if it cannot. 4284d621040SChristian S.J. Peron */ 4294d621040SChristian S.J. Peron static int 4304d621040SChristian S.J. Peron bpf_canfreebuf(struct bpf_d *d) 4314d621040SChristian S.J. Peron { 4324d621040SChristian S.J. Peron 4334d621040SChristian S.J. Peron BPFD_LOCK_ASSERT(d); 4344d621040SChristian S.J. Peron 4354d621040SChristian S.J. Peron switch (d->bd_bufmode) { 4364d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 4374d621040SChristian S.J. Peron return (bpf_zerocopy_canfreebuf(d)); 4384d621040SChristian S.J. Peron } 4394d621040SChristian S.J. Peron return (0); 4404d621040SChristian S.J. Peron } 4414d621040SChristian S.J. Peron 442a7a91e65SRobert Watson /* 443a7a91e65SRobert Watson * Allow the buffer model to indicate that the current store buffer is 444a7a91e65SRobert Watson * immutable, regardless of the appearance of space. Return (1) if the 445a7a91e65SRobert Watson * buffer is writable, and (0) if not. 446a7a91e65SRobert Watson */ 447a7a91e65SRobert Watson static int 448a7a91e65SRobert Watson bpf_canwritebuf(struct bpf_d *d) 449a7a91e65SRobert Watson { 450a7a91e65SRobert Watson BPFD_LOCK_ASSERT(d); 451a7a91e65SRobert Watson 452a7a91e65SRobert Watson switch (d->bd_bufmode) { 453a7a91e65SRobert Watson case BPF_BUFMODE_ZBUF: 454a7a91e65SRobert Watson return (bpf_zerocopy_canwritebuf(d)); 455a7a91e65SRobert Watson } 456a7a91e65SRobert Watson return (1); 457a7a91e65SRobert Watson } 458a7a91e65SRobert Watson 459a7a91e65SRobert Watson /* 460a7a91e65SRobert Watson * Notify buffer model that an attempt to write to the store buffer has 461a7a91e65SRobert Watson * resulted in a dropped packet, in which case the buffer may be considered 462a7a91e65SRobert Watson * full. 463a7a91e65SRobert Watson */ 464a7a91e65SRobert Watson static void 465a7a91e65SRobert Watson bpf_buffull(struct bpf_d *d) 466a7a91e65SRobert Watson { 467a7a91e65SRobert Watson 468afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 469a7a91e65SRobert Watson 470a7a91e65SRobert Watson switch (d->bd_bufmode) { 471a7a91e65SRobert Watson case BPF_BUFMODE_ZBUF: 472a7a91e65SRobert Watson bpf_zerocopy_buffull(d); 473a7a91e65SRobert Watson break; 474a7a91e65SRobert Watson } 475a7a91e65SRobert Watson } 476a7a91e65SRobert Watson 477a7a91e65SRobert Watson /* 478a7a91e65SRobert Watson * Notify the buffer model that a buffer has moved into the hold position. 479a7a91e65SRobert Watson */ 4804d621040SChristian S.J. Peron void 4814d621040SChristian S.J. Peron bpf_bufheld(struct bpf_d *d) 4824d621040SChristian S.J. Peron { 4834d621040SChristian S.J. Peron 484afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 4854d621040SChristian S.J. Peron 4864d621040SChristian S.J. Peron switch (d->bd_bufmode) { 4874d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 4884d621040SChristian S.J. Peron bpf_zerocopy_bufheld(d); 4894d621040SChristian S.J. Peron break; 4904d621040SChristian S.J. Peron } 4914d621040SChristian S.J. Peron } 4924d621040SChristian S.J. Peron 4934d621040SChristian S.J. Peron static void 4944d621040SChristian S.J. Peron bpf_free(struct bpf_d *d) 4954d621040SChristian S.J. Peron { 4964d621040SChristian S.J. Peron 4974d621040SChristian S.J. Peron switch (d->bd_bufmode) { 4984d621040SChristian S.J. Peron case BPF_BUFMODE_BUFFER: 4994d621040SChristian S.J. Peron return (bpf_buffer_free(d)); 5004d621040SChristian S.J. Peron 5014d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 5024d621040SChristian S.J. Peron return (bpf_zerocopy_free(d)); 5034d621040SChristian S.J. Peron 5044d621040SChristian S.J. Peron default: 5054d621040SChristian S.J. Peron panic("bpf_buf_free"); 5064d621040SChristian S.J. Peron } 5074d621040SChristian S.J. Peron } 5084d621040SChristian S.J. Peron 5094d621040SChristian S.J. Peron static int 5104d621040SChristian S.J. Peron bpf_uiomove(struct bpf_d *d, caddr_t buf, u_int len, struct uio *uio) 5114d621040SChristian S.J. Peron { 5124d621040SChristian S.J. Peron 5134d621040SChristian S.J. Peron if (d->bd_bufmode != BPF_BUFMODE_BUFFER) 5144d621040SChristian S.J. Peron return (EOPNOTSUPP); 5154d621040SChristian S.J. Peron return (bpf_buffer_uiomove(d, buf, len, uio)); 5164d621040SChristian S.J. Peron } 5174d621040SChristian S.J. Peron 5184d621040SChristian S.J. Peron static int 5194d621040SChristian S.J. Peron bpf_ioctl_sblen(struct bpf_d *d, u_int *i) 5204d621040SChristian S.J. Peron { 5214d621040SChristian S.J. Peron 5224d621040SChristian S.J. Peron if (d->bd_bufmode != BPF_BUFMODE_BUFFER) 5234d621040SChristian S.J. Peron return (EOPNOTSUPP); 5244d621040SChristian S.J. Peron return (bpf_buffer_ioctl_sblen(d, i)); 5254d621040SChristian S.J. Peron } 5264d621040SChristian S.J. Peron 5274d621040SChristian S.J. Peron static int 5284d621040SChristian S.J. Peron bpf_ioctl_getzmax(struct thread *td, struct bpf_d *d, size_t *i) 5294d621040SChristian S.J. Peron { 5304d621040SChristian S.J. Peron 5314d621040SChristian S.J. Peron if (d->bd_bufmode != BPF_BUFMODE_ZBUF) 5324d621040SChristian S.J. Peron return (EOPNOTSUPP); 5334d621040SChristian S.J. Peron return (bpf_zerocopy_ioctl_getzmax(td, d, i)); 5344d621040SChristian S.J. Peron } 5354d621040SChristian S.J. Peron 5364d621040SChristian S.J. Peron static int 5374d621040SChristian S.J. Peron bpf_ioctl_rotzbuf(struct thread *td, struct bpf_d *d, struct bpf_zbuf *bz) 5384d621040SChristian S.J. Peron { 5394d621040SChristian S.J. Peron 5404d621040SChristian S.J. Peron if (d->bd_bufmode != BPF_BUFMODE_ZBUF) 5414d621040SChristian S.J. Peron return (EOPNOTSUPP); 5424d621040SChristian S.J. Peron return (bpf_zerocopy_ioctl_rotzbuf(td, d, bz)); 5434d621040SChristian S.J. Peron } 5444d621040SChristian S.J. Peron 5454d621040SChristian S.J. Peron static int 5464d621040SChristian S.J. Peron bpf_ioctl_setzbuf(struct thread *td, struct bpf_d *d, struct bpf_zbuf *bz) 5474d621040SChristian S.J. Peron { 5484d621040SChristian S.J. Peron 5494d621040SChristian S.J. Peron if (d->bd_bufmode != BPF_BUFMODE_ZBUF) 5504d621040SChristian S.J. Peron return (EOPNOTSUPP); 5514d621040SChristian S.J. Peron return (bpf_zerocopy_ioctl_setzbuf(td, d, bz)); 5524d621040SChristian S.J. Peron } 5534d621040SChristian S.J. Peron 5544d621040SChristian S.J. Peron /* 5554d621040SChristian S.J. Peron * General BPF functions. 5564d621040SChristian S.J. Peron */ 557df8bae1dSRodney W. Grimes static int 558cb44b6dfSAndrew Thompson bpf_movein(struct uio *uio, int linktype, struct ifnet *ifp, struct mbuf **mp, 5594fb3a820SAlexander V. Chernikov struct sockaddr *sockp, int *hdrlen, struct bpf_d *d) 560df8bae1dSRodney W. Grimes { 561246b5467SSam Leffler const struct ieee80211_bpf_params *p; 562cb44b6dfSAndrew Thompson struct ether_header *eh; 563df8bae1dSRodney W. Grimes struct mbuf *m; 564df8bae1dSRodney W. Grimes int error; 565df8bae1dSRodney W. Grimes int len; 566df8bae1dSRodney W. Grimes int hlen; 56793e39f0bSChristian S.J. Peron int slen; 568df8bae1dSRodney W. Grimes 569df8bae1dSRodney W. Grimes /* 570df8bae1dSRodney W. Grimes * Build a sockaddr based on the data link layer type. 571df8bae1dSRodney W. Grimes * We do this at this level because the ethernet header 572df8bae1dSRodney W. Grimes * is copied directly into the data field of the sockaddr. 573df8bae1dSRodney W. Grimes * In the case of SLIP, there is no header and the packet 574df8bae1dSRodney W. Grimes * is forwarded as is. 575df8bae1dSRodney W. Grimes * Also, we are careful to leave room at the front of the mbuf 576df8bae1dSRodney W. Grimes * for the link level header. 577df8bae1dSRodney W. Grimes */ 578df8bae1dSRodney W. Grimes switch (linktype) { 579df8bae1dSRodney W. Grimes 580df8bae1dSRodney W. Grimes case DLT_SLIP: 581df8bae1dSRodney W. Grimes sockp->sa_family = AF_INET; 582df8bae1dSRodney W. Grimes hlen = 0; 583df8bae1dSRodney W. Grimes break; 584df8bae1dSRodney W. Grimes 585df8bae1dSRodney W. Grimes case DLT_EN10MB: 586df8bae1dSRodney W. Grimes sockp->sa_family = AF_UNSPEC; 587df8bae1dSRodney W. Grimes /* XXX Would MAXLINKHDR be better? */ 588797f247bSMatthew N. Dodd hlen = ETHER_HDR_LEN; 589df8bae1dSRodney W. Grimes break; 590df8bae1dSRodney W. Grimes 591df8bae1dSRodney W. Grimes case DLT_FDDI: 592d41f24e7SDavid Greenman sockp->sa_family = AF_IMPLINK; 593d41f24e7SDavid Greenman hlen = 0; 594df8bae1dSRodney W. Grimes break; 595df8bae1dSRodney W. Grimes 59622f05c43SAndrey A. Chernov case DLT_RAW: 597df8bae1dSRodney W. Grimes sockp->sa_family = AF_UNSPEC; 598df8bae1dSRodney W. Grimes hlen = 0; 599df8bae1dSRodney W. Grimes break; 600df8bae1dSRodney W. Grimes 60101399f34SDavid Malone case DLT_NULL: 60201399f34SDavid Malone /* 60301399f34SDavid Malone * null interface types require a 4 byte pseudo header which 60401399f34SDavid Malone * corresponds to the address family of the packet. 60501399f34SDavid Malone */ 60601399f34SDavid Malone sockp->sa_family = AF_UNSPEC; 60701399f34SDavid Malone hlen = 4; 60801399f34SDavid Malone break; 60901399f34SDavid Malone 6104f53e3ccSKenjiro Cho case DLT_ATM_RFC1483: 6114f53e3ccSKenjiro Cho /* 6124f53e3ccSKenjiro Cho * en atm driver requires 4-byte atm pseudo header. 6134f53e3ccSKenjiro Cho * though it isn't standard, vpi:vci needs to be 6144f53e3ccSKenjiro Cho * specified anyway. 6154f53e3ccSKenjiro Cho */ 6164f53e3ccSKenjiro Cho sockp->sa_family = AF_UNSPEC; 6174f53e3ccSKenjiro Cho hlen = 12; /* XXX 4(ATM_PH) + 3(LLC) + 5(SNAP) */ 6184f53e3ccSKenjiro Cho break; 6194f53e3ccSKenjiro Cho 62030fa52a6SBrian Somers case DLT_PPP: 62130fa52a6SBrian Somers sockp->sa_family = AF_UNSPEC; 62230fa52a6SBrian Somers hlen = 4; /* This should match PPP_HDRLEN */ 62330fa52a6SBrian Somers break; 62430fa52a6SBrian Somers 625246b5467SSam Leffler case DLT_IEEE802_11: /* IEEE 802.11 wireless */ 626246b5467SSam Leffler sockp->sa_family = AF_IEEE80211; 627246b5467SSam Leffler hlen = 0; 628246b5467SSam Leffler break; 629246b5467SSam Leffler 630246b5467SSam Leffler case DLT_IEEE802_11_RADIO: /* IEEE 802.11 wireless w/ phy params */ 631246b5467SSam Leffler sockp->sa_family = AF_IEEE80211; 632246b5467SSam Leffler sockp->sa_len = 12; /* XXX != 0 */ 633246b5467SSam Leffler hlen = sizeof(struct ieee80211_bpf_params); 634246b5467SSam Leffler break; 635246b5467SSam Leffler 636df8bae1dSRodney W. Grimes default: 637df8bae1dSRodney W. Grimes return (EIO); 638df8bae1dSRodney W. Grimes } 639df8bae1dSRodney W. Grimes 640df8bae1dSRodney W. Grimes len = uio->uio_resid; 641ed63043bSGleb Smirnoff if (len < hlen || len - hlen > ifp->if_mtu) 64201399f34SDavid Malone return (EMSGSIZE); 64301399f34SDavid Malone 64441a7572bSGleb Smirnoff m = m_get2(len, M_WAITOK, MT_DATA, M_PKTHDR); 645ed63043bSGleb Smirnoff if (m == NULL) 646df8bae1dSRodney W. Grimes return (EIO); 647963e4c2aSGarrett Wollman m->m_pkthdr.len = m->m_len = len; 648df8bae1dSRodney W. Grimes *mp = m; 64924a229f4SSam Leffler 65093e39f0bSChristian S.J. Peron error = uiomove(mtod(m, u_char *), len, uio); 65193e39f0bSChristian S.J. Peron if (error) 65293e39f0bSChristian S.J. Peron goto bad; 65393e39f0bSChristian S.J. Peron 6544fb3a820SAlexander V. Chernikov slen = bpf_filter(d->bd_wfilter, mtod(m, u_char *), len, len); 65593e39f0bSChristian S.J. Peron if (slen == 0) { 65693e39f0bSChristian S.J. Peron error = EPERM; 65793e39f0bSChristian S.J. Peron goto bad; 65893e39f0bSChristian S.J. Peron } 65993e39f0bSChristian S.J. Peron 660cb44b6dfSAndrew Thompson /* Check for multicast destination */ 661cb44b6dfSAndrew Thompson switch (linktype) { 662cb44b6dfSAndrew Thompson case DLT_EN10MB: 663cb44b6dfSAndrew Thompson eh = mtod(m, struct ether_header *); 664cb44b6dfSAndrew Thompson if (ETHER_IS_MULTICAST(eh->ether_dhost)) { 665cb44b6dfSAndrew Thompson if (bcmp(ifp->if_broadcastaddr, eh->ether_dhost, 666cb44b6dfSAndrew Thompson ETHER_ADDR_LEN) == 0) 667cb44b6dfSAndrew Thompson m->m_flags |= M_BCAST; 668cb44b6dfSAndrew Thompson else 669cb44b6dfSAndrew Thompson m->m_flags |= M_MCAST; 670cb44b6dfSAndrew Thompson } 6714fb3a820SAlexander V. Chernikov if (d->bd_hdrcmplt == 0) { 6724fb3a820SAlexander V. Chernikov memcpy(eh->ether_shost, IF_LLADDR(ifp), 6734fb3a820SAlexander V. Chernikov sizeof(eh->ether_shost)); 6744fb3a820SAlexander V. Chernikov } 675cb44b6dfSAndrew Thompson break; 676cb44b6dfSAndrew Thompson } 677cb44b6dfSAndrew Thompson 678df8bae1dSRodney W. Grimes /* 67993e39f0bSChristian S.J. Peron * Make room for link header, and copy it to sockaddr 680df8bae1dSRodney W. Grimes */ 681df8bae1dSRodney W. Grimes if (hlen != 0) { 682246b5467SSam Leffler if (sockp->sa_family == AF_IEEE80211) { 683246b5467SSam Leffler /* 684246b5467SSam Leffler * Collect true length from the parameter header 685246b5467SSam Leffler * NB: sockp is known to be zero'd so if we do a 686246b5467SSam Leffler * short copy unspecified parameters will be 687246b5467SSam Leffler * zero. 688246b5467SSam Leffler * NB: packet may not be aligned after stripping 689246b5467SSam Leffler * bpf params 690246b5467SSam Leffler * XXX check ibp_vers 691246b5467SSam Leffler */ 692246b5467SSam Leffler p = mtod(m, const struct ieee80211_bpf_params *); 693246b5467SSam Leffler hlen = p->ibp_len; 694246b5467SSam Leffler if (hlen > sizeof(sockp->sa_data)) { 695246b5467SSam Leffler error = EINVAL; 696246b5467SSam Leffler goto bad; 697246b5467SSam Leffler } 698246b5467SSam Leffler } 699a09968c4SAdrian Chadd bcopy(mtod(m, const void *), sockp->sa_data, hlen); 700df8bae1dSRodney W. Grimes } 701560a54e1SJung-uk Kim *hdrlen = hlen; 70293e39f0bSChristian S.J. Peron 703df8bae1dSRodney W. Grimes return (0); 704df8bae1dSRodney W. Grimes bad: 705df8bae1dSRodney W. Grimes m_freem(m); 706df8bae1dSRodney W. Grimes return (error); 707df8bae1dSRodney W. Grimes } 708df8bae1dSRodney W. Grimes 709df8bae1dSRodney W. Grimes /* 710699281b5SAndrey V. Elsukov * Attach descriptor to the bpf interface, i.e. make d listen on bp, 711699281b5SAndrey V. Elsukov * then reset its buffers and counters with reset_d(). 712df8bae1dSRodney W. Grimes */ 713df8bae1dSRodney W. Grimes static void 71419ba8395SChristian S.J. Peron bpf_attachd(struct bpf_d *d, struct bpf_if *bp) 715df8bae1dSRodney W. Grimes { 7166c74ff0eSAlexander V. Chernikov int op_w; 7176c74ff0eSAlexander V. Chernikov 7186c74ff0eSAlexander V. Chernikov BPF_LOCK_ASSERT(); 7196c74ff0eSAlexander V. Chernikov 7206c74ff0eSAlexander V. Chernikov /* 7216c74ff0eSAlexander V. Chernikov * Save sysctl value to protect from sysctl change 7226c74ff0eSAlexander V. Chernikov * between reads 7236c74ff0eSAlexander V. Chernikov */ 72471448753SAlexander Motin op_w = V_bpf_optimize_writers || d->bd_writer; 7256c74ff0eSAlexander V. Chernikov 7266c74ff0eSAlexander V. Chernikov if (d->bd_bif != NULL) 727699281b5SAndrey V. Elsukov bpf_detachd_locked(d, false); 728df8bae1dSRodney W. Grimes /* 72951ec1eb7SAlexander V. Chernikov * Point d at bp, and add d to the interface's list. 730f87e372eSLuiz Otavio O Souza * Since there are many applications using BPF for 73151ec1eb7SAlexander V. Chernikov * sending raw packets only (dhcpd, cdpd are good examples) 73251ec1eb7SAlexander V. Chernikov * we can delay adding d to the list of active listeners until 73351ec1eb7SAlexander V. Chernikov * some filter is configured. 734df8bae1dSRodney W. Grimes */ 73551ec1eb7SAlexander V. Chernikov 736afa85850SAlexander V. Chernikov BPFD_LOCK(d); 737699281b5SAndrey V. Elsukov /* 738699281b5SAndrey V. Elsukov * Hold reference to bpif while descriptor uses this interface. 739699281b5SAndrey V. Elsukov */ 740699281b5SAndrey V. Elsukov bpfif_ref(bp); 7416c74ff0eSAlexander V. Chernikov d->bd_bif = bp; 7426c74ff0eSAlexander V. Chernikov if (op_w != 0) { 74351ec1eb7SAlexander V. Chernikov /* Add to writers-only list */ 744699281b5SAndrey V. Elsukov CK_LIST_INSERT_HEAD(&bp->bif_wlist, d, bd_next); 74551ec1eb7SAlexander V. Chernikov /* 74651ec1eb7SAlexander V. Chernikov * We decrement bd_writer on every filter set operation. 74751ec1eb7SAlexander V. Chernikov * First BIOCSETF is done by pcap_open_live() to set up 748699281b5SAndrey V. Elsukov * snap length. After that appliation usually sets its own 749699281b5SAndrey V. Elsukov * filter. 75051ec1eb7SAlexander V. Chernikov */ 75151ec1eb7SAlexander V. Chernikov d->bd_writer = 2; 75251ec1eb7SAlexander V. Chernikov } else 753699281b5SAndrey V. Elsukov CK_LIST_INSERT_HEAD(&bp->bif_dlist, d, bd_next); 754df8bae1dSRodney W. Grimes 755699281b5SAndrey V. Elsukov reset_d(d); 756afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 75751ec1eb7SAlexander V. Chernikov bpf_bpfd_cnt++; 75851ec1eb7SAlexander V. Chernikov 75951ec1eb7SAlexander V. Chernikov CTR3(KTR_NET, "%s: bpf_attach called by pid %d, adding to %s list", 76051ec1eb7SAlexander V. Chernikov __func__, d->bd_pid, d->bd_writer ? "writer" : "active"); 76151ec1eb7SAlexander V. Chernikov 7626c74ff0eSAlexander V. Chernikov if (op_w == 0) 76351ec1eb7SAlexander V. Chernikov EVENTHANDLER_INVOKE(bpf_track, bp->bif_ifp, bp->bif_dlt, 1); 76451ec1eb7SAlexander V. Chernikov } 76551ec1eb7SAlexander V. Chernikov 76651ec1eb7SAlexander V. Chernikov /* 767402000ffSAlexander V. Chernikov * Check if we need to upgrade our descriptor @d from write-only mode. 768402000ffSAlexander V. Chernikov */ 769402000ffSAlexander V. Chernikov static int 770699281b5SAndrey V. Elsukov bpf_check_upgrade(u_long cmd, struct bpf_d *d, struct bpf_insn *fcode, 771699281b5SAndrey V. Elsukov int flen) 772402000ffSAlexander V. Chernikov { 773402000ffSAlexander V. Chernikov int is_snap, need_upgrade; 774402000ffSAlexander V. Chernikov 775402000ffSAlexander V. Chernikov /* 776402000ffSAlexander V. Chernikov * Check if we've already upgraded or new filter is empty. 777402000ffSAlexander V. Chernikov */ 778402000ffSAlexander V. Chernikov if (d->bd_writer == 0 || fcode == NULL) 779402000ffSAlexander V. Chernikov return (0); 780402000ffSAlexander V. Chernikov 781402000ffSAlexander V. Chernikov need_upgrade = 0; 782402000ffSAlexander V. Chernikov 783402000ffSAlexander V. Chernikov /* 784402000ffSAlexander V. Chernikov * Check if cmd looks like snaplen setting from 785402000ffSAlexander V. Chernikov * pcap_bpf.c:pcap_open_live(). 786402000ffSAlexander V. Chernikov * Note we're not checking .k value here: 787caa7e52fSEitan Adler * while pcap_open_live() definitely sets to non-zero value, 788402000ffSAlexander V. Chernikov * we'd prefer to treat k=0 (deny ALL) case the same way: e.g. 789402000ffSAlexander V. Chernikov * do not consider upgrading immediately 790402000ffSAlexander V. Chernikov */ 791699281b5SAndrey V. Elsukov if (cmd == BIOCSETF && flen == 1 && 792699281b5SAndrey V. Elsukov fcode[0].code == (BPF_RET | BPF_K)) 793402000ffSAlexander V. Chernikov is_snap = 1; 794402000ffSAlexander V. Chernikov else 795402000ffSAlexander V. Chernikov is_snap = 0; 796402000ffSAlexander V. Chernikov 797402000ffSAlexander V. Chernikov if (is_snap == 0) { 798402000ffSAlexander V. Chernikov /* 799402000ffSAlexander V. Chernikov * We're setting first filter and it doesn't look like 800402000ffSAlexander V. Chernikov * setting snaplen. We're probably using bpf directly. 801402000ffSAlexander V. Chernikov * Upgrade immediately. 802402000ffSAlexander V. Chernikov */ 803402000ffSAlexander V. Chernikov need_upgrade = 1; 804402000ffSAlexander V. Chernikov } else { 805402000ffSAlexander V. Chernikov /* 806402000ffSAlexander V. Chernikov * Do not require upgrade by first BIOCSETF 807402000ffSAlexander V. Chernikov * (used to set snaplen) by pcap_open_live(). 808402000ffSAlexander V. Chernikov */ 809402000ffSAlexander V. Chernikov 810402000ffSAlexander V. Chernikov if (--d->bd_writer == 0) { 811402000ffSAlexander V. Chernikov /* 812402000ffSAlexander V. Chernikov * First snaplen filter has already 813402000ffSAlexander V. Chernikov * been set. This is probably catch-all 814402000ffSAlexander V. Chernikov * filter 815402000ffSAlexander V. Chernikov */ 816402000ffSAlexander V. Chernikov need_upgrade = 1; 817402000ffSAlexander V. Chernikov } 818402000ffSAlexander V. Chernikov } 819402000ffSAlexander V. Chernikov 820402000ffSAlexander V. Chernikov CTR5(KTR_NET, 821402000ffSAlexander V. Chernikov "%s: filter function set by pid %d, " 822402000ffSAlexander V. Chernikov "bd_writer counter %d, snap %d upgrade %d", 823402000ffSAlexander V. Chernikov __func__, d->bd_pid, d->bd_writer, 824402000ffSAlexander V. Chernikov is_snap, need_upgrade); 825402000ffSAlexander V. Chernikov 826402000ffSAlexander V. Chernikov return (need_upgrade); 827402000ffSAlexander V. Chernikov } 828402000ffSAlexander V. Chernikov 829402000ffSAlexander V. Chernikov /* 830df8bae1dSRodney W. Grimes * Detach a file from its interface. 831df8bae1dSRodney W. Grimes */ 832df8bae1dSRodney W. Grimes static void 83319ba8395SChristian S.J. Peron bpf_detachd(struct bpf_d *d) 834df8bae1dSRodney W. Grimes { 8356c74ff0eSAlexander V. Chernikov BPF_LOCK(); 836699281b5SAndrey V. Elsukov bpf_detachd_locked(d, false); 8376c74ff0eSAlexander V. Chernikov BPF_UNLOCK(); 8386c74ff0eSAlexander V. Chernikov } 8396c74ff0eSAlexander V. Chernikov 8406c74ff0eSAlexander V. Chernikov static void 841699281b5SAndrey V. Elsukov bpf_detachd_locked(struct bpf_d *d, bool detached_ifp) 8426c74ff0eSAlexander V. Chernikov { 843df8bae1dSRodney W. Grimes struct bpf_if *bp; 84446448b5aSRobert Watson struct ifnet *ifp; 845699281b5SAndrey V. Elsukov int error; 84651ec1eb7SAlexander V. Chernikov 847e4b3229aSAlexander V. Chernikov BPF_LOCK_ASSERT(); 848699281b5SAndrey V. Elsukov CTR2(KTR_NET, "%s: detach required by pid %d", __func__, d->bd_pid); 849e4b3229aSAlexander V. Chernikov 8506c74ff0eSAlexander V. Chernikov /* Check if descriptor is attached */ 8516c74ff0eSAlexander V. Chernikov if ((bp = d->bd_bif) == NULL) 8526c74ff0eSAlexander V. Chernikov return; 8536c74ff0eSAlexander V. Chernikov 854afa85850SAlexander V. Chernikov BPFD_LOCK(d); 855*de253273SAndrey V. Elsukov /* Remove d from the interface's descriptor list. */ 856*de253273SAndrey V. Elsukov CK_LIST_REMOVE(d, bd_next); 85751ec1eb7SAlexander V. Chernikov /* Save bd_writer value */ 85851ec1eb7SAlexander V. Chernikov error = d->bd_writer; 859e4b3229aSAlexander V. Chernikov ifp = bp->bif_ifp; 860572bde2aSRobert Watson d->bd_bif = NULL; 861699281b5SAndrey V. Elsukov if (detached_ifp) { 862699281b5SAndrey V. Elsukov /* 863699281b5SAndrey V. Elsukov * Notify descriptor as it's detached, so that any 864699281b5SAndrey V. Elsukov * sleepers wake up and get ENXIO. 865699281b5SAndrey V. Elsukov */ 866699281b5SAndrey V. Elsukov bpf_wakeup(d); 867699281b5SAndrey V. Elsukov } 868afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 869e4b3229aSAlexander V. Chernikov bpf_bpfd_cnt--; 87046448b5aSRobert Watson 87151ec1eb7SAlexander V. Chernikov /* Call event handler iff d is attached */ 87251ec1eb7SAlexander V. Chernikov if (error == 0) 8735ce8d970SSam Leffler EVENTHANDLER_INVOKE(bpf_track, ifp, bp->bif_dlt, 0); 874b743c310SSam Leffler 875df8bae1dSRodney W. Grimes /* 876df8bae1dSRodney W. Grimes * Check if this descriptor had requested promiscuous mode. 877699281b5SAndrey V. Elsukov * If so and ifnet is not detached, turn it off. 878df8bae1dSRodney W. Grimes */ 879699281b5SAndrey V. Elsukov if (d->bd_promisc && !detached_ifp) { 880df8bae1dSRodney W. Grimes d->bd_promisc = 0; 88197021c24SMarko Zec CURVNET_SET(ifp->if_vnet); 88246448b5aSRobert Watson error = ifpromisc(ifp, 0); 88397021c24SMarko Zec CURVNET_RESTORE(); 8846e891d64SPoul-Henning Kamp if (error != 0 && error != ENXIO) { 885df8bae1dSRodney W. Grimes /* 8866e891d64SPoul-Henning Kamp * ENXIO can happen if a pccard is unplugged 887df8bae1dSRodney W. Grimes * Something is really wrong if we were able to put 888df8bae1dSRodney W. Grimes * the driver into promiscuous mode, but can't 889df8bae1dSRodney W. Grimes * take it out. 890df8bae1dSRodney W. Grimes */ 8918eab61f3SSam Leffler if_printf(bp->bif_ifp, 8928eab61f3SSam Leffler "bpf_detach: ifpromisc failed (%d)\n", error); 8936e891d64SPoul-Henning Kamp } 894df8bae1dSRodney W. Grimes } 895699281b5SAndrey V. Elsukov bpfif_rele(bp); 896df8bae1dSRodney W. Grimes } 897df8bae1dSRodney W. Grimes 898df8bae1dSRodney W. Grimes /* 899136600feSEd Schouten * Close the descriptor by detaching it from its interface, 900136600feSEd Schouten * deallocating its buffers, and marking it free. 901136600feSEd Schouten */ 902136600feSEd Schouten static void 903136600feSEd Schouten bpf_dtor(void *data) 904136600feSEd Schouten { 905136600feSEd Schouten struct bpf_d *d = data; 906136600feSEd Schouten 907afa85850SAlexander V. Chernikov BPFD_LOCK(d); 908136600feSEd Schouten if (d->bd_state == BPF_WAITING) 909136600feSEd Schouten callout_stop(&d->bd_callout); 910136600feSEd Schouten d->bd_state = BPF_IDLE; 911afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 912136600feSEd Schouten funsetown(&d->bd_sigio); 913136600feSEd Schouten bpf_detachd(d); 914136600feSEd Schouten #ifdef MAC 915136600feSEd Schouten mac_bpfdesc_destroy(d); 916136600feSEd Schouten #endif /* MAC */ 9176aba400aSAttilio Rao seldrain(&d->bd_sel); 918136600feSEd Schouten knlist_destroy(&d->bd_sel.si_note); 9199fee1bd1SJung-uk Kim callout_drain(&d->bd_callout); 920699281b5SAndrey V. Elsukov bpfd_rele(d); 921136600feSEd Schouten } 922136600feSEd Schouten 923136600feSEd Schouten /* 924df8bae1dSRodney W. Grimes * Open ethernet device. Returns ENXIO for illegal minor device number, 925df8bae1dSRodney W. Grimes * EBUSY if file is open by another process. 926df8bae1dSRodney W. Grimes */ 927df8bae1dSRodney W. Grimes /* ARGSUSED */ 92887f6c662SJulian Elischer static int 92919ba8395SChristian S.J. Peron bpfopen(struct cdev *dev, int flags, int fmt, struct thread *td) 930df8bae1dSRodney W. Grimes { 931e7bb21b3SJonathan Lemon struct bpf_d *d; 9324f42daa4SLuiz Otavio O Souza int error; 933df8bae1dSRodney W. Grimes 9341ede983cSDag-Erling Smørgrav d = malloc(sizeof(*d), M_BPF, M_WAITOK | M_ZERO); 935136600feSEd Schouten error = devfs_set_cdevpriv(d, bpf_dtor); 936136600feSEd Schouten if (error != 0) { 937136600feSEd Schouten free(d, M_BPF); 938136600feSEd Schouten return (error); 939136600feSEd Schouten } 9404d621040SChristian S.J. Peron 941b2b7ca49SAlexander V. Chernikov /* Setup counters */ 942b2b7ca49SAlexander V. Chernikov d->bd_rcount = counter_u64_alloc(M_WAITOK); 943b2b7ca49SAlexander V. Chernikov d->bd_dcount = counter_u64_alloc(M_WAITOK); 944b2b7ca49SAlexander V. Chernikov d->bd_fcount = counter_u64_alloc(M_WAITOK); 945b2b7ca49SAlexander V. Chernikov d->bd_wcount = counter_u64_alloc(M_WAITOK); 946b2b7ca49SAlexander V. Chernikov d->bd_wfcount = counter_u64_alloc(M_WAITOK); 947b2b7ca49SAlexander V. Chernikov d->bd_wdcount = counter_u64_alloc(M_WAITOK); 948b2b7ca49SAlexander V. Chernikov d->bd_zcopy = counter_u64_alloc(M_WAITOK); 949b2b7ca49SAlexander V. Chernikov 9504d621040SChristian S.J. Peron /* 9514d621040SChristian S.J. Peron * For historical reasons, perform a one-time initialization call to 9524d621040SChristian S.J. Peron * the buffer routines, even though we're not yet committed to a 9534d621040SChristian S.J. Peron * particular buffer method. 9544d621040SChristian S.J. Peron */ 9554d621040SChristian S.J. Peron bpf_buffer_init(d); 95671448753SAlexander Motin if ((flags & FREAD) == 0) 95771448753SAlexander Motin d->bd_writer = 2; 9583b3b91e7SGuy Helmer d->bd_hbuf_in_use = 0; 9594d621040SChristian S.J. Peron d->bd_bufmode = BPF_BUFMODE_BUFFER; 96000a83887SPaul Traina d->bd_sig = SIGIO; 961560a54e1SJung-uk Kim d->bd_direction = BPF_D_INOUT; 962699281b5SAndrey V. Elsukov d->bd_refcnt = 1; 963e4b3229aSAlexander V. Chernikov BPF_PID_REFRESH(d, td); 96482f4445dSRobert Watson #ifdef MAC 96530d239bcSRobert Watson mac_bpfdesc_init(d); 96630d239bcSRobert Watson mac_bpfdesc_create(td->td_ucred, d); 96782f4445dSRobert Watson #endif 968afa85850SAlexander V. Chernikov mtx_init(&d->bd_lock, devtoname(dev), "bpf cdev lock", MTX_DEF); 969afa85850SAlexander V. Chernikov callout_init_mtx(&d->bd_callout, &d->bd_lock, 0); 970afa85850SAlexander V. Chernikov knlist_init_mtx(&d->bd_sel.si_note, &d->bd_lock); 971df8bae1dSRodney W. Grimes 972df8bae1dSRodney W. Grimes return (0); 973df8bae1dSRodney W. Grimes } 974df8bae1dSRodney W. Grimes 975df8bae1dSRodney W. Grimes /* 976df8bae1dSRodney W. Grimes * bpfread - read next chunk of packets from buffers 977df8bae1dSRodney W. Grimes */ 97887f6c662SJulian Elischer static int 97919ba8395SChristian S.J. Peron bpfread(struct cdev *dev, struct uio *uio, int ioflag) 980df8bae1dSRodney W. Grimes { 981136600feSEd Schouten struct bpf_d *d; 982df8bae1dSRodney W. Grimes int error; 9838df67d77SJung-uk Kim int non_block; 9848df67d77SJung-uk Kim int timed_out; 985df8bae1dSRodney W. Grimes 986136600feSEd Schouten error = devfs_get_cdevpriv((void **)&d); 987136600feSEd Schouten if (error != 0) 988136600feSEd Schouten return (error); 989136600feSEd Schouten 990df8bae1dSRodney W. Grimes /* 991df8bae1dSRodney W. Grimes * Restrict application to use a buffer the same size as 992df8bae1dSRodney W. Grimes * as kernel buffers. 993df8bae1dSRodney W. Grimes */ 994df8bae1dSRodney W. Grimes if (uio->uio_resid != d->bd_bufsize) 995df8bae1dSRodney W. Grimes return (EINVAL); 996df8bae1dSRodney W. Grimes 9978df67d77SJung-uk Kim non_block = ((ioflag & O_NONBLOCK) != 0); 9988df67d77SJung-uk Kim 999afa85850SAlexander V. Chernikov BPFD_LOCK(d); 1000e4b3229aSAlexander V. Chernikov BPF_PID_REFRESH_CUR(d); 10014d621040SChristian S.J. Peron if (d->bd_bufmode != BPF_BUFMODE_BUFFER) { 1002afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 10034d621040SChristian S.J. Peron return (EOPNOTSUPP); 10044d621040SChristian S.J. Peron } 100581bda851SJohn Polstra if (d->bd_state == BPF_WAITING) 100681bda851SJohn Polstra callout_stop(&d->bd_callout); 100781bda851SJohn Polstra timed_out = (d->bd_state == BPF_TIMED_OUT); 100881bda851SJohn Polstra d->bd_state = BPF_IDLE; 1009d013d902SGuy Helmer while (d->bd_hbuf_in_use) { 1010d013d902SGuy Helmer error = mtx_sleep(&d->bd_hbuf_in_use, &d->bd_lock, 10113b3b91e7SGuy Helmer PRINET|PCATCH, "bd_hbuf", 0); 1012d013d902SGuy Helmer if (error != 0) { 1013d013d902SGuy Helmer BPFD_UNLOCK(d); 1014d013d902SGuy Helmer return (error); 1015d013d902SGuy Helmer } 1016d013d902SGuy Helmer } 1017df8bae1dSRodney W. Grimes /* 1018df8bae1dSRodney W. Grimes * If the hold buffer is empty, then do a timed sleep, which 1019df8bae1dSRodney W. Grimes * ends when the timeout expires or when enough packets 1020df8bae1dSRodney W. Grimes * have arrived to fill the store buffer. 1021df8bae1dSRodney W. Grimes */ 1022572bde2aSRobert Watson while (d->bd_hbuf == NULL) { 10238df67d77SJung-uk Kim if (d->bd_slen != 0) { 1024df8bae1dSRodney W. Grimes /* 1025df8bae1dSRodney W. Grimes * A packet(s) either arrived since the previous 1026df8bae1dSRodney W. Grimes * read or arrived while we were asleep. 10278df67d77SJung-uk Kim */ 10288df67d77SJung-uk Kim if (d->bd_immediate || non_block || timed_out) { 10298df67d77SJung-uk Kim /* 10308df67d77SJung-uk Kim * Rotate the buffers and return what's here 10318df67d77SJung-uk Kim * if we are in immediate mode, non-blocking 10328df67d77SJung-uk Kim * flag is set, or this descriptor timed out. 1033df8bae1dSRodney W. Grimes */ 1034df8bae1dSRodney W. Grimes ROTATE_BUFFERS(d); 1035df8bae1dSRodney W. Grimes break; 1036df8bae1dSRodney W. Grimes } 10378df67d77SJung-uk Kim } 1038de5d9935SRobert Watson 1039de5d9935SRobert Watson /* 1040de5d9935SRobert Watson * No data is available, check to see if the bpf device 1041de5d9935SRobert Watson * is still pointed at a real interface. If not, return 1042de5d9935SRobert Watson * ENXIO so that the userland process knows to rebind 1043de5d9935SRobert Watson * it before using it again. 1044de5d9935SRobert Watson */ 1045de5d9935SRobert Watson if (d->bd_bif == NULL) { 1046afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1047de5d9935SRobert Watson return (ENXIO); 1048de5d9935SRobert Watson } 1049de5d9935SRobert Watson 10508df67d77SJung-uk Kim if (non_block) { 1051afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1052fba3cfdeSJohn Polstra return (EWOULDBLOCK); 1053fba3cfdeSJohn Polstra } 1054afa85850SAlexander V. Chernikov error = msleep(d, &d->bd_lock, PRINET|PCATCH, 1055e7bb21b3SJonathan Lemon "bpf", d->bd_rtout); 1056df8bae1dSRodney W. Grimes if (error == EINTR || error == ERESTART) { 1057afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1058df8bae1dSRodney W. Grimes return (error); 1059df8bae1dSRodney W. Grimes } 1060df8bae1dSRodney W. Grimes if (error == EWOULDBLOCK) { 1061df8bae1dSRodney W. Grimes /* 1062df8bae1dSRodney W. Grimes * On a timeout, return what's in the buffer, 1063df8bae1dSRodney W. Grimes * which may be nothing. If there is something 1064df8bae1dSRodney W. Grimes * in the store buffer, we can rotate the buffers. 1065df8bae1dSRodney W. Grimes */ 1066df8bae1dSRodney W. Grimes if (d->bd_hbuf) 1067df8bae1dSRodney W. Grimes /* 1068df8bae1dSRodney W. Grimes * We filled up the buffer in between 1069df8bae1dSRodney W. Grimes * getting the timeout and arriving 1070df8bae1dSRodney W. Grimes * here, so we don't need to rotate. 1071df8bae1dSRodney W. Grimes */ 1072df8bae1dSRodney W. Grimes break; 1073df8bae1dSRodney W. Grimes 1074df8bae1dSRodney W. Grimes if (d->bd_slen == 0) { 1075afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1076df8bae1dSRodney W. Grimes return (0); 1077df8bae1dSRodney W. Grimes } 1078df8bae1dSRodney W. Grimes ROTATE_BUFFERS(d); 1079df8bae1dSRodney W. Grimes break; 1080df8bae1dSRodney W. Grimes } 1081df8bae1dSRodney W. Grimes } 1082df8bae1dSRodney W. Grimes /* 1083df8bae1dSRodney W. Grimes * At this point, we know we have something in the hold slot. 1084df8bae1dSRodney W. Grimes */ 10853b3b91e7SGuy Helmer d->bd_hbuf_in_use = 1; 1086afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1087df8bae1dSRodney W. Grimes 1088df8bae1dSRodney W. Grimes /* 1089df8bae1dSRodney W. Grimes * Move data from hold buffer into user space. 1090df8bae1dSRodney W. Grimes * We know the entire buffer is transferred since 1091df8bae1dSRodney W. Grimes * we checked above that the read buffer is bpf_bufsize bytes. 109231b32e6dSRobert Watson * 10933b3b91e7SGuy Helmer * We do not have to worry about simultaneous reads because 10943b3b91e7SGuy Helmer * we waited for sole access to the hold buffer above. 1095df8bae1dSRodney W. Grimes */ 10964d621040SChristian S.J. Peron error = bpf_uiomove(d, d->bd_hbuf, d->bd_hlen, uio); 1097df8bae1dSRodney W. Grimes 1098afa85850SAlexander V. Chernikov BPFD_LOCK(d); 10993b3b91e7SGuy Helmer KASSERT(d->bd_hbuf != NULL, ("bpfread: lost bd_hbuf")); 1100df8bae1dSRodney W. Grimes d->bd_fbuf = d->bd_hbuf; 1101572bde2aSRobert Watson d->bd_hbuf = NULL; 1102df8bae1dSRodney W. Grimes d->bd_hlen = 0; 110329f612ecSChristian S.J. Peron bpf_buf_reclaimed(d); 11043b3b91e7SGuy Helmer d->bd_hbuf_in_use = 0; 11053b3b91e7SGuy Helmer wakeup(&d->bd_hbuf_in_use); 1106afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1107df8bae1dSRodney W. Grimes 1108df8bae1dSRodney W. Grimes return (error); 1109df8bae1dSRodney W. Grimes } 1110df8bae1dSRodney W. Grimes 1111df8bae1dSRodney W. Grimes /* 1112df8bae1dSRodney W. Grimes * If there are processes sleeping on this descriptor, wake them up. 1113df8bae1dSRodney W. Grimes */ 1114e7bb21b3SJonathan Lemon static __inline void 111519ba8395SChristian S.J. Peron bpf_wakeup(struct bpf_d *d) 1116df8bae1dSRodney W. Grimes { 1117a3272e3cSChristian S.J. Peron 1118afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 111981bda851SJohn Polstra if (d->bd_state == BPF_WAITING) { 112081bda851SJohn Polstra callout_stop(&d->bd_callout); 112181bda851SJohn Polstra d->bd_state = BPF_IDLE; 112281bda851SJohn Polstra } 1123521f364bSDag-Erling Smørgrav wakeup(d); 1124831d27a9SDon Lewis if (d->bd_async && d->bd_sig && d->bd_sigio) 1125f1320723SAlfred Perlstein pgsigio(&d->bd_sigio, d->bd_sig, 0); 112600a83887SPaul Traina 1127512824f8SSeigo Tanimura selwakeuppri(&d->bd_sel, PRINET); 1128ad3b9257SJohn-Mark Gurney KNOTE_LOCKED(&d->bd_sel.si_note, 0); 1129df8bae1dSRodney W. Grimes } 1130df8bae1dSRodney W. Grimes 113181bda851SJohn Polstra static void 113219ba8395SChristian S.J. Peron bpf_timed_out(void *arg) 113381bda851SJohn Polstra { 113481bda851SJohn Polstra struct bpf_d *d = (struct bpf_d *)arg; 113581bda851SJohn Polstra 1136afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 11379fee1bd1SJung-uk Kim 1138699281b5SAndrey V. Elsukov if (callout_pending(&d->bd_callout) || 1139699281b5SAndrey V. Elsukov !callout_active(&d->bd_callout)) 11409fee1bd1SJung-uk Kim return; 114181bda851SJohn Polstra if (d->bd_state == BPF_WAITING) { 114281bda851SJohn Polstra d->bd_state = BPF_TIMED_OUT; 114381bda851SJohn Polstra if (d->bd_slen != 0) 114481bda851SJohn Polstra bpf_wakeup(d); 114581bda851SJohn Polstra } 114681bda851SJohn Polstra } 114781bda851SJohn Polstra 114887f6c662SJulian Elischer static int 11494d621040SChristian S.J. Peron bpf_ready(struct bpf_d *d) 11504d621040SChristian S.J. Peron { 11514d621040SChristian S.J. Peron 1152afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 11534d621040SChristian S.J. Peron 11544d621040SChristian S.J. Peron if (!bpf_canfreebuf(d) && d->bd_hlen != 0) 11554d621040SChristian S.J. Peron return (1); 11564d621040SChristian S.J. Peron if ((d->bd_immediate || d->bd_state == BPF_TIMED_OUT) && 11574d621040SChristian S.J. Peron d->bd_slen != 0) 11584d621040SChristian S.J. Peron return (1); 11594d621040SChristian S.J. Peron return (0); 11604d621040SChristian S.J. Peron } 11614d621040SChristian S.J. Peron 11624d621040SChristian S.J. Peron static int 116319ba8395SChristian S.J. Peron bpfwrite(struct cdev *dev, struct uio *uio, int ioflag) 1164df8bae1dSRodney W. Grimes { 1165699281b5SAndrey V. Elsukov struct route ro; 1166699281b5SAndrey V. Elsukov struct sockaddr dst; 1167699281b5SAndrey V. Elsukov struct epoch_tracker et; 1168699281b5SAndrey V. Elsukov struct bpf_if *bp; 1169136600feSEd Schouten struct bpf_d *d; 1170df8bae1dSRodney W. Grimes struct ifnet *ifp; 1171560a54e1SJung-uk Kim struct mbuf *m, *mc; 1172560a54e1SJung-uk Kim int error, hlen; 1173df8bae1dSRodney W. Grimes 1174136600feSEd Schouten error = devfs_get_cdevpriv((void **)&d); 1175136600feSEd Schouten if (error != 0) 1176136600feSEd Schouten return (error); 1177136600feSEd Schouten 1178699281b5SAndrey V. Elsukov NET_EPOCH_ENTER(et); 1179699281b5SAndrey V. Elsukov BPFD_LOCK(d); 1180e4b3229aSAlexander V. Chernikov BPF_PID_REFRESH_CUR(d); 1181b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_wcount, 1); 1182699281b5SAndrey V. Elsukov if ((bp = d->bd_bif) == NULL) { 1183699281b5SAndrey V. Elsukov error = ENXIO; 1184699281b5SAndrey V. Elsukov goto out_locked; 11854d621040SChristian S.J. Peron } 1186df8bae1dSRodney W. Grimes 1187699281b5SAndrey V. Elsukov ifp = bp->bif_ifp; 11884d621040SChristian S.J. Peron if ((ifp->if_flags & IFF_UP) == 0) { 1189699281b5SAndrey V. Elsukov error = ENETDOWN; 1190699281b5SAndrey V. Elsukov goto out_locked; 11914d621040SChristian S.J. Peron } 11923518d220SSam Leffler 1193699281b5SAndrey V. Elsukov if (uio->uio_resid == 0) 1194699281b5SAndrey V. Elsukov goto out_locked; 1195df8bae1dSRodney W. Grimes 11968240bf1eSRobert Watson bzero(&dst, sizeof(dst)); 1197d83e603aSChristian S.J. Peron m = NULL; 1198d83e603aSChristian S.J. Peron hlen = 0; 1199699281b5SAndrey V. Elsukov 1200699281b5SAndrey V. Elsukov /* 1201699281b5SAndrey V. Elsukov * Take extra reference, unlock d and exit from epoch section, 1202699281b5SAndrey V. Elsukov * since bpf_movein() can sleep. 1203699281b5SAndrey V. Elsukov */ 1204699281b5SAndrey V. Elsukov bpfd_ref(d); 1205699281b5SAndrey V. Elsukov NET_EPOCH_EXIT(et); 1206699281b5SAndrey V. Elsukov BPFD_UNLOCK(d); 1207699281b5SAndrey V. Elsukov 1208699281b5SAndrey V. Elsukov error = bpf_movein(uio, (int)bp->bif_dlt, ifp, 12094fb3a820SAlexander V. Chernikov &m, &dst, &hlen, d); 1210699281b5SAndrey V. Elsukov 1211699281b5SAndrey V. Elsukov if (error != 0) { 1212b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_wdcount, 1); 1213699281b5SAndrey V. Elsukov bpfd_rele(d); 1214df8bae1dSRodney W. Grimes return (error); 12154d621040SChristian S.J. Peron } 1216699281b5SAndrey V. Elsukov 1217699281b5SAndrey V. Elsukov BPFD_LOCK(d); 1218699281b5SAndrey V. Elsukov /* 1219699281b5SAndrey V. Elsukov * Check that descriptor is still attached to the interface. 1220699281b5SAndrey V. Elsukov * This can happen on bpfdetach(). To avoid access to detached 1221699281b5SAndrey V. Elsukov * ifnet, free mbuf and return ENXIO. 1222699281b5SAndrey V. Elsukov */ 1223699281b5SAndrey V. Elsukov if (d->bd_bif == NULL) { 1224699281b5SAndrey V. Elsukov counter_u64_add(d->bd_wdcount, 1); 1225699281b5SAndrey V. Elsukov BPFD_UNLOCK(d); 1226699281b5SAndrey V. Elsukov bpfd_rele(d); 1227699281b5SAndrey V. Elsukov m_freem(m); 1228699281b5SAndrey V. Elsukov return (ENXIO); 1229699281b5SAndrey V. Elsukov } 1230b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_wfcount, 1); 1231114ae644SMike Smith if (d->bd_hdrcmplt) 1232114ae644SMike Smith dst.sa_family = pseudo_AF_HDRCMPLT; 1233114ae644SMike Smith 1234560a54e1SJung-uk Kim if (d->bd_feedback) { 1235eb1b1807SGleb Smirnoff mc = m_dup(m, M_NOWAIT); 1236560a54e1SJung-uk Kim if (mc != NULL) 1237560a54e1SJung-uk Kim mc->m_pkthdr.rcvif = ifp; 12388cd892f7SJung-uk Kim /* Set M_PROMISC for outgoing packets to be discarded. */ 12398cd892f7SJung-uk Kim if (d->bd_direction == BPF_D_INOUT) 12408cd892f7SJung-uk Kim m->m_flags |= M_PROMISC; 1241560a54e1SJung-uk Kim } else 1242560a54e1SJung-uk Kim mc = NULL; 1243560a54e1SJung-uk Kim 1244560a54e1SJung-uk Kim m->m_pkthdr.len -= hlen; 1245560a54e1SJung-uk Kim m->m_len -= hlen; 1246560a54e1SJung-uk Kim m->m_data += hlen; /* XXX */ 1247560a54e1SJung-uk Kim 124821ca7b57SMarko Zec CURVNET_SET(ifp->if_vnet); 124982f4445dSRobert Watson #ifdef MAC 125030d239bcSRobert Watson mac_bpfdesc_create_mbuf(d, m); 1251560a54e1SJung-uk Kim if (mc != NULL) 125230d239bcSRobert Watson mac_bpfdesc_create_mbuf(d, mc); 125382f4445dSRobert Watson #endif 1254560a54e1SJung-uk Kim 12554fb3a820SAlexander V. Chernikov bzero(&ro, sizeof(ro)); 12564fb3a820SAlexander V. Chernikov if (hlen != 0) { 12574fb3a820SAlexander V. Chernikov ro.ro_prepend = (u_char *)&dst.sa_data; 12584fb3a820SAlexander V. Chernikov ro.ro_plen = hlen; 12594fb3a820SAlexander V. Chernikov ro.ro_flags = RT_HAS_HEADER; 12604fb3a820SAlexander V. Chernikov } 12614fb3a820SAlexander V. Chernikov 126282d7bf6bSAndrey V. Elsukov /* Avoid possible recursion on BPFD_LOCK(). */ 126382d7bf6bSAndrey V. Elsukov NET_EPOCH_ENTER(et); 126482d7bf6bSAndrey V. Elsukov BPFD_UNLOCK(d); 12654fb3a820SAlexander V. Chernikov error = (*ifp->if_output)(ifp, m, &dst, &ro); 12664d621040SChristian S.J. Peron if (error) 1267b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_wdcount, 1); 1268560a54e1SJung-uk Kim 1269560a54e1SJung-uk Kim if (mc != NULL) { 12700bf686c1SRobert Watson if (error == 0) 1271560a54e1SJung-uk Kim (*ifp->if_input)(ifp, mc); 12720bf686c1SRobert Watson else 1273560a54e1SJung-uk Kim m_freem(mc); 1274560a54e1SJung-uk Kim } 127582d7bf6bSAndrey V. Elsukov NET_EPOCH_EXIT(et); 127621ca7b57SMarko Zec CURVNET_RESTORE(); 1277699281b5SAndrey V. Elsukov bpfd_rele(d); 1278699281b5SAndrey V. Elsukov return (error); 1279560a54e1SJung-uk Kim 1280699281b5SAndrey V. Elsukov out_locked: 1281699281b5SAndrey V. Elsukov counter_u64_add(d->bd_wdcount, 1); 1282699281b5SAndrey V. Elsukov NET_EPOCH_EXIT(et); 1283699281b5SAndrey V. Elsukov BPFD_UNLOCK(d); 1284df8bae1dSRodney W. Grimes return (error); 1285df8bae1dSRodney W. Grimes } 1286df8bae1dSRodney W. Grimes 1287df8bae1dSRodney W. Grimes /* 1288e82669d9SRobert Watson * Reset a descriptor by flushing its packet buffer and clearing the receive 1289e82669d9SRobert Watson * and drop counts. This is doable for kernel-only buffers, but with 1290e82669d9SRobert Watson * zero-copy buffers, we can't write to (or rotate) buffers that are 1291e82669d9SRobert Watson * currently owned by userspace. It would be nice if we could encapsulate 1292e82669d9SRobert Watson * this logic in the buffer code rather than here. 1293df8bae1dSRodney W. Grimes */ 1294df8bae1dSRodney W. Grimes static void 129519ba8395SChristian S.J. Peron reset_d(struct bpf_d *d) 1296df8bae1dSRodney W. Grimes { 1297e7bb21b3SJonathan Lemon 1298afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 1299e82669d9SRobert Watson 13003b3b91e7SGuy Helmer while (d->bd_hbuf_in_use) 13013b3b91e7SGuy Helmer mtx_sleep(&d->bd_hbuf_in_use, &d->bd_lock, PRINET, 13023b3b91e7SGuy Helmer "bd_hbuf", 0); 1303e82669d9SRobert Watson if ((d->bd_hbuf != NULL) && 1304e82669d9SRobert Watson (d->bd_bufmode != BPF_BUFMODE_ZBUF || bpf_canfreebuf(d))) { 1305df8bae1dSRodney W. Grimes /* Free the hold buffer. */ 1306df8bae1dSRodney W. Grimes d->bd_fbuf = d->bd_hbuf; 1307572bde2aSRobert Watson d->bd_hbuf = NULL; 1308e82669d9SRobert Watson d->bd_hlen = 0; 130929f612ecSChristian S.J. Peron bpf_buf_reclaimed(d); 1310df8bae1dSRodney W. Grimes } 1311e82669d9SRobert Watson if (bpf_canwritebuf(d)) 1312df8bae1dSRodney W. Grimes d->bd_slen = 0; 1313b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_rcount); 1314b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_dcount); 1315b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_fcount); 1316b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_wcount); 1317b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_wfcount); 1318b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_wdcount); 1319b2b7ca49SAlexander V. Chernikov counter_u64_zero(d->bd_zcopy); 1320df8bae1dSRodney W. Grimes } 1321df8bae1dSRodney W. Grimes 1322df8bae1dSRodney W. Grimes /* 1323df8bae1dSRodney W. Grimes * FIONREAD Check for read packet available. 1324df8bae1dSRodney W. Grimes * BIOCGBLEN Get buffer len [for read()]. 1325f11c3508SDavid Malone * BIOCSETF Set read filter. 1326f11c3508SDavid Malone * BIOCSETFNR Set read filter without resetting descriptor. 1327f11c3508SDavid Malone * BIOCSETWF Set write filter. 1328df8bae1dSRodney W. Grimes * BIOCFLUSH Flush read packet buffer. 1329df8bae1dSRodney W. Grimes * BIOCPROMISC Put interface into promiscuous mode. 1330df8bae1dSRodney W. Grimes * BIOCGDLT Get link layer type. 1331df8bae1dSRodney W. Grimes * BIOCGETIF Get interface name. 1332df8bae1dSRodney W. Grimes * BIOCSETIF Set interface. 1333df8bae1dSRodney W. Grimes * BIOCSRTIMEOUT Set read timeout. 1334df8bae1dSRodney W. Grimes * BIOCGRTIMEOUT Get read timeout. 1335df8bae1dSRodney W. Grimes * BIOCGSTATS Get packet stats. 1336df8bae1dSRodney W. Grimes * BIOCIMMEDIATE Set immediate mode. 1337df8bae1dSRodney W. Grimes * BIOCVERSION Get filter language version. 1338114ae644SMike Smith * BIOCGHDRCMPLT Get "header already complete" flag 1339114ae644SMike Smith * BIOCSHDRCMPLT Set "header already complete" flag 1340560a54e1SJung-uk Kim * BIOCGDIRECTION Get packet direction flag 1341560a54e1SJung-uk Kim * BIOCSDIRECTION Set packet direction flag 1342547d94bdSJung-uk Kim * BIOCGTSTAMP Get time stamp format and resolution. 1343547d94bdSJung-uk Kim * BIOCSTSTAMP Set time stamp format and resolution. 134493e39f0bSChristian S.J. Peron * BIOCLOCK Set "locked" flag 1345560a54e1SJung-uk Kim * BIOCFEEDBACK Set packet feedback mode. 13464d621040SChristian S.J. Peron * BIOCSETZBUF Set current zero-copy buffer locations. 13474d621040SChristian S.J. Peron * BIOCGETZMAX Get maximum zero-copy buffer size. 13484d621040SChristian S.J. Peron * BIOCROTZBUF Force rotation of zero-copy buffer 13494d621040SChristian S.J. Peron * BIOCSETBUFMODE Set buffer mode. 13504d621040SChristian S.J. Peron * BIOCGETBUFMODE Get current buffer mode. 1351df8bae1dSRodney W. Grimes */ 1352df8bae1dSRodney W. Grimes /* ARGSUSED */ 135387f6c662SJulian Elischer static int 135419ba8395SChristian S.J. Peron bpfioctl(struct cdev *dev, u_long cmd, caddr_t addr, int flags, 135519ba8395SChristian S.J. Peron struct thread *td) 1356df8bae1dSRodney W. Grimes { 1357136600feSEd Schouten struct bpf_d *d; 1358136600feSEd Schouten int error; 1359136600feSEd Schouten 1360136600feSEd Schouten error = devfs_get_cdevpriv((void **)&d); 1361136600feSEd Schouten if (error != 0) 1362136600feSEd Schouten return (error); 1363df8bae1dSRodney W. Grimes 1364b75a24a0SChristian S.J. Peron /* 1365b75a24a0SChristian S.J. Peron * Refresh PID associated with this descriptor. 1366b75a24a0SChristian S.J. Peron */ 1367afa85850SAlexander V. Chernikov BPFD_LOCK(d); 1368e4b3229aSAlexander V. Chernikov BPF_PID_REFRESH(d, td); 136981bda851SJohn Polstra if (d->bd_state == BPF_WAITING) 137081bda851SJohn Polstra callout_stop(&d->bd_callout); 137181bda851SJohn Polstra d->bd_state = BPF_IDLE; 1372afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 137381bda851SJohn Polstra 137493e39f0bSChristian S.J. Peron if (d->bd_locked == 1) { 137593e39f0bSChristian S.J. Peron switch (cmd) { 137693e39f0bSChristian S.J. Peron case BIOCGBLEN: 137793e39f0bSChristian S.J. Peron case BIOCFLUSH: 137893e39f0bSChristian S.J. Peron case BIOCGDLT: 137993e39f0bSChristian S.J. Peron case BIOCGDLTLIST: 1380fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 1381fc0a61a4SKonstantin Belousov case BIOCGDLTLIST32: 1382fc0a61a4SKonstantin Belousov #endif 138393e39f0bSChristian S.J. Peron case BIOCGETIF: 138493e39f0bSChristian S.J. Peron case BIOCGRTIMEOUT: 1385b4366092SJustin Hibbits #if defined(COMPAT_FREEBSD32) && defined(__amd64__) 1386fc0a61a4SKonstantin Belousov case BIOCGRTIMEOUT32: 1387fc0a61a4SKonstantin Belousov #endif 138893e39f0bSChristian S.J. Peron case BIOCGSTATS: 138993e39f0bSChristian S.J. Peron case BIOCVERSION: 139093e39f0bSChristian S.J. Peron case BIOCGRSIG: 139193e39f0bSChristian S.J. Peron case BIOCGHDRCMPLT: 1392547d94bdSJung-uk Kim case BIOCSTSTAMP: 1393560a54e1SJung-uk Kim case BIOCFEEDBACK: 139493e39f0bSChristian S.J. Peron case FIONREAD: 139593e39f0bSChristian S.J. Peron case BIOCLOCK: 139693e39f0bSChristian S.J. Peron case BIOCSRTIMEOUT: 1397b4366092SJustin Hibbits #if defined(COMPAT_FREEBSD32) && defined(__amd64__) 1398fc0a61a4SKonstantin Belousov case BIOCSRTIMEOUT32: 1399fc0a61a4SKonstantin Belousov #endif 140093e39f0bSChristian S.J. Peron case BIOCIMMEDIATE: 140193e39f0bSChristian S.J. Peron case TIOCGPGRP: 14024d621040SChristian S.J. Peron case BIOCROTZBUF: 140393e39f0bSChristian S.J. Peron break; 140493e39f0bSChristian S.J. Peron default: 140593e39f0bSChristian S.J. Peron return (EPERM); 140693e39f0bSChristian S.J. Peron } 140793e39f0bSChristian S.J. Peron } 1408fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 1409fc0a61a4SKonstantin Belousov /* 1410fc0a61a4SKonstantin Belousov * If we see a 32-bit compat ioctl, mark the stream as 32-bit so 1411fc0a61a4SKonstantin Belousov * that it will get 32-bit packet headers. 1412fc0a61a4SKonstantin Belousov */ 1413fc0a61a4SKonstantin Belousov switch (cmd) { 1414fc0a61a4SKonstantin Belousov case BIOCSETF32: 1415fc0a61a4SKonstantin Belousov case BIOCSETFNR32: 1416fc0a61a4SKonstantin Belousov case BIOCSETWF32: 1417fc0a61a4SKonstantin Belousov case BIOCGDLTLIST32: 1418fc0a61a4SKonstantin Belousov case BIOCGRTIMEOUT32: 1419fc0a61a4SKonstantin Belousov case BIOCSRTIMEOUT32: 142074549d4bSWojciech Macek if (SV_PROC_FLAG(td->td_proc, SV_ILP32)) { 142197aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1422fc0a61a4SKonstantin Belousov d->bd_compat32 = 1; 142397aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1424fc0a61a4SKonstantin Belousov } 142574549d4bSWojciech Macek } 1426fc0a61a4SKonstantin Belousov #endif 1427fc0a61a4SKonstantin Belousov 142897021c24SMarko Zec CURVNET_SET(TD_TO_VNET(td)); 1429df8bae1dSRodney W. Grimes switch (cmd) { 1430df8bae1dSRodney W. Grimes 1431df8bae1dSRodney W. Grimes default: 1432df8bae1dSRodney W. Grimes error = EINVAL; 1433df8bae1dSRodney W. Grimes break; 1434df8bae1dSRodney W. Grimes 1435df8bae1dSRodney W. Grimes /* 1436df8bae1dSRodney W. Grimes * Check for read packet available. 1437df8bae1dSRodney W. Grimes */ 1438df8bae1dSRodney W. Grimes case FIONREAD: 1439df8bae1dSRodney W. Grimes { 1440df8bae1dSRodney W. Grimes int n; 1441df8bae1dSRodney W. Grimes 1442afa85850SAlexander V. Chernikov BPFD_LOCK(d); 1443df8bae1dSRodney W. Grimes n = d->bd_slen; 14443b3b91e7SGuy Helmer while (d->bd_hbuf_in_use) 14453b3b91e7SGuy Helmer mtx_sleep(&d->bd_hbuf_in_use, &d->bd_lock, 14463b3b91e7SGuy Helmer PRINET, "bd_hbuf", 0); 1447df8bae1dSRodney W. Grimes if (d->bd_hbuf) 1448df8bae1dSRodney W. Grimes n += d->bd_hlen; 1449afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1450df8bae1dSRodney W. Grimes 1451df8bae1dSRodney W. Grimes *(int *)addr = n; 1452df8bae1dSRodney W. Grimes break; 1453df8bae1dSRodney W. Grimes } 1454df8bae1dSRodney W. Grimes 1455df8bae1dSRodney W. Grimes /* 1456df8bae1dSRodney W. Grimes * Get buffer len [for read()]. 1457df8bae1dSRodney W. Grimes */ 1458df8bae1dSRodney W. Grimes case BIOCGBLEN: 145997aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1460df8bae1dSRodney W. Grimes *(u_int *)addr = d->bd_bufsize; 146197aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1462df8bae1dSRodney W. Grimes break; 1463df8bae1dSRodney W. Grimes 1464df8bae1dSRodney W. Grimes /* 1465df8bae1dSRodney W. Grimes * Set buffer length. 1466df8bae1dSRodney W. Grimes */ 1467df8bae1dSRodney W. Grimes case BIOCSBLEN: 14684d621040SChristian S.J. Peron error = bpf_ioctl_sblen(d, (u_int *)addr); 1469df8bae1dSRodney W. Grimes break; 1470df8bae1dSRodney W. Grimes 1471df8bae1dSRodney W. Grimes /* 1472df8bae1dSRodney W. Grimes * Set link layer read filter. 1473df8bae1dSRodney W. Grimes */ 1474df8bae1dSRodney W. Grimes case BIOCSETF: 1475f11c3508SDavid Malone case BIOCSETFNR: 147693e39f0bSChristian S.J. Peron case BIOCSETWF: 1477fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 1478fc0a61a4SKonstantin Belousov case BIOCSETF32: 1479fc0a61a4SKonstantin Belousov case BIOCSETFNR32: 1480fc0a61a4SKonstantin Belousov case BIOCSETWF32: 1481fc0a61a4SKonstantin Belousov #endif 148293e39f0bSChristian S.J. Peron error = bpf_setf(d, (struct bpf_program *)addr, cmd); 1483df8bae1dSRodney W. Grimes break; 1484df8bae1dSRodney W. Grimes 1485df8bae1dSRodney W. Grimes /* 1486df8bae1dSRodney W. Grimes * Flush read packet buffer. 1487df8bae1dSRodney W. Grimes */ 1488df8bae1dSRodney W. Grimes case BIOCFLUSH: 1489afa85850SAlexander V. Chernikov BPFD_LOCK(d); 1490df8bae1dSRodney W. Grimes reset_d(d); 1491afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 1492df8bae1dSRodney W. Grimes break; 1493df8bae1dSRodney W. Grimes 1494df8bae1dSRodney W. Grimes /* 1495df8bae1dSRodney W. Grimes * Put interface into promiscuous mode. 1496df8bae1dSRodney W. Grimes */ 1497df8bae1dSRodney W. Grimes case BIOCPROMISC: 1498572bde2aSRobert Watson if (d->bd_bif == NULL) { 1499df8bae1dSRodney W. Grimes /* 1500df8bae1dSRodney W. Grimes * No interface attached yet. 1501df8bae1dSRodney W. Grimes */ 1502df8bae1dSRodney W. Grimes error = EINVAL; 1503df8bae1dSRodney W. Grimes break; 1504df8bae1dSRodney W. Grimes } 1505df8bae1dSRodney W. Grimes if (d->bd_promisc == 0) { 1506df8bae1dSRodney W. Grimes error = ifpromisc(d->bd_bif->bif_ifp, 1); 1507df8bae1dSRodney W. Grimes if (error == 0) 1508df8bae1dSRodney W. Grimes d->bd_promisc = 1; 1509df8bae1dSRodney W. Grimes } 1510df8bae1dSRodney W. Grimes break; 1511df8bae1dSRodney W. Grimes 1512df8bae1dSRodney W. Grimes /* 15138eab61f3SSam Leffler * Get current data link type. 1514df8bae1dSRodney W. Grimes */ 1515df8bae1dSRodney W. Grimes case BIOCGDLT: 151697aacec6SAlexander V. Chernikov BPF_LOCK(); 1517572bde2aSRobert Watson if (d->bd_bif == NULL) 1518df8bae1dSRodney W. Grimes error = EINVAL; 1519df8bae1dSRodney W. Grimes else 1520df8bae1dSRodney W. Grimes *(u_int *)addr = d->bd_bif->bif_dlt; 152197aacec6SAlexander V. Chernikov BPF_UNLOCK(); 1522df8bae1dSRodney W. Grimes break; 1523df8bae1dSRodney W. Grimes 1524df8bae1dSRodney W. Grimes /* 15258eab61f3SSam Leffler * Get a list of supported data link types. 15268eab61f3SSam Leffler */ 1527fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 1528fc0a61a4SKonstantin Belousov case BIOCGDLTLIST32: 1529fc0a61a4SKonstantin Belousov { 1530fc0a61a4SKonstantin Belousov struct bpf_dltlist32 *list32; 1531fc0a61a4SKonstantin Belousov struct bpf_dltlist dltlist; 1532fc0a61a4SKonstantin Belousov 1533fc0a61a4SKonstantin Belousov list32 = (struct bpf_dltlist32 *)addr; 1534fc0a61a4SKonstantin Belousov dltlist.bfl_len = list32->bfl_len; 1535fc0a61a4SKonstantin Belousov dltlist.bfl_list = PTRIN(list32->bfl_list); 153697aacec6SAlexander V. Chernikov BPF_LOCK(); 1537fc0a61a4SKonstantin Belousov if (d->bd_bif == NULL) 1538fc0a61a4SKonstantin Belousov error = EINVAL; 1539fc0a61a4SKonstantin Belousov else { 1540fc0a61a4SKonstantin Belousov error = bpf_getdltlist(d, &dltlist); 1541fc0a61a4SKonstantin Belousov if (error == 0) 1542fc0a61a4SKonstantin Belousov list32->bfl_len = dltlist.bfl_len; 1543fc0a61a4SKonstantin Belousov } 154497aacec6SAlexander V. Chernikov BPF_UNLOCK(); 1545fc0a61a4SKonstantin Belousov break; 1546fc0a61a4SKonstantin Belousov } 1547fc0a61a4SKonstantin Belousov #endif 1548fc0a61a4SKonstantin Belousov 15498eab61f3SSam Leffler case BIOCGDLTLIST: 155097aacec6SAlexander V. Chernikov BPF_LOCK(); 1551572bde2aSRobert Watson if (d->bd_bif == NULL) 15528eab61f3SSam Leffler error = EINVAL; 15538eab61f3SSam Leffler else 15548eab61f3SSam Leffler error = bpf_getdltlist(d, (struct bpf_dltlist *)addr); 155597aacec6SAlexander V. Chernikov BPF_UNLOCK(); 15568eab61f3SSam Leffler break; 15578eab61f3SSam Leffler 15588eab61f3SSam Leffler /* 15598eab61f3SSam Leffler * Set data link type. 15608eab61f3SSam Leffler */ 15618eab61f3SSam Leffler case BIOCSDLT: 15626c74ff0eSAlexander V. Chernikov BPF_LOCK(); 1563572bde2aSRobert Watson if (d->bd_bif == NULL) 15648eab61f3SSam Leffler error = EINVAL; 15658eab61f3SSam Leffler else 15668eab61f3SSam Leffler error = bpf_setdlt(d, *(u_int *)addr); 15676c74ff0eSAlexander V. Chernikov BPF_UNLOCK(); 15688eab61f3SSam Leffler break; 15698eab61f3SSam Leffler 15708eab61f3SSam Leffler /* 15711dd0feaaSArchie Cobbs * Get interface name. 1572df8bae1dSRodney W. Grimes */ 1573df8bae1dSRodney W. Grimes case BIOCGETIF: 157497aacec6SAlexander V. Chernikov BPF_LOCK(); 1575572bde2aSRobert Watson if (d->bd_bif == NULL) 1576df8bae1dSRodney W. Grimes error = EINVAL; 15771dd0feaaSArchie Cobbs else { 15781dd0feaaSArchie Cobbs struct ifnet *const ifp = d->bd_bif->bif_ifp; 15791dd0feaaSArchie Cobbs struct ifreq *const ifr = (struct ifreq *)addr; 15801dd0feaaSArchie Cobbs 15819bf40edeSBrooks Davis strlcpy(ifr->ifr_name, ifp->if_xname, 15829bf40edeSBrooks Davis sizeof(ifr->ifr_name)); 15831dd0feaaSArchie Cobbs } 158497aacec6SAlexander V. Chernikov BPF_UNLOCK(); 1585df8bae1dSRodney W. Grimes break; 1586df8bae1dSRodney W. Grimes 1587df8bae1dSRodney W. Grimes /* 1588df8bae1dSRodney W. Grimes * Set interface. 1589df8bae1dSRodney W. Grimes */ 1590df8bae1dSRodney W. Grimes case BIOCSETIF: 15914f42daa4SLuiz Otavio O Souza { 15924f42daa4SLuiz Otavio O Souza int alloc_buf, size; 15934f42daa4SLuiz Otavio O Souza 15944f42daa4SLuiz Otavio O Souza /* 15954f42daa4SLuiz Otavio O Souza * Behavior here depends on the buffering model. If 15964f42daa4SLuiz Otavio O Souza * we're using kernel memory buffers, then we can 15974f42daa4SLuiz Otavio O Souza * allocate them here. If we're using zero-copy, 15984f42daa4SLuiz Otavio O Souza * then the user process must have registered buffers 15994f42daa4SLuiz Otavio O Souza * by the time we get here. 16004f42daa4SLuiz Otavio O Souza */ 16014f42daa4SLuiz Otavio O Souza alloc_buf = 0; 16024f42daa4SLuiz Otavio O Souza BPFD_LOCK(d); 16034f42daa4SLuiz Otavio O Souza if (d->bd_bufmode == BPF_BUFMODE_BUFFER && 16044f42daa4SLuiz Otavio O Souza d->bd_sbuf == NULL) 16054f42daa4SLuiz Otavio O Souza alloc_buf = 1; 16064f42daa4SLuiz Otavio O Souza BPFD_UNLOCK(d); 16074f42daa4SLuiz Otavio O Souza if (alloc_buf) { 16084f42daa4SLuiz Otavio O Souza size = d->bd_bufsize; 16094f42daa4SLuiz Otavio O Souza error = bpf_buffer_ioctl_sblen(d, &size); 16104f42daa4SLuiz Otavio O Souza if (error != 0) 16114f42daa4SLuiz Otavio O Souza break; 16124f42daa4SLuiz Otavio O Souza } 16136c74ff0eSAlexander V. Chernikov BPF_LOCK(); 1614df8bae1dSRodney W. Grimes error = bpf_setif(d, (struct ifreq *)addr); 16156c74ff0eSAlexander V. Chernikov BPF_UNLOCK(); 1616df8bae1dSRodney W. Grimes break; 16174f42daa4SLuiz Otavio O Souza } 1618df8bae1dSRodney W. Grimes 1619df8bae1dSRodney W. Grimes /* 1620df8bae1dSRodney W. Grimes * Set read timeout. 1621df8bae1dSRodney W. Grimes */ 1622df8bae1dSRodney W. Grimes case BIOCSRTIMEOUT: 1623b4366092SJustin Hibbits #if defined(COMPAT_FREEBSD32) && defined(__amd64__) 1624fc0a61a4SKonstantin Belousov case BIOCSRTIMEOUT32: 1625fc0a61a4SKonstantin Belousov #endif 1626df8bae1dSRodney W. Grimes { 1627df8bae1dSRodney W. Grimes struct timeval *tv = (struct timeval *)addr; 16289624d947SJuli Mallett #if defined(COMPAT_FREEBSD32) && !defined(__mips__) 1629fc0a61a4SKonstantin Belousov struct timeval32 *tv32; 1630fc0a61a4SKonstantin Belousov struct timeval tv64; 1631fc0a61a4SKonstantin Belousov 1632fc0a61a4SKonstantin Belousov if (cmd == BIOCSRTIMEOUT32) { 1633fc0a61a4SKonstantin Belousov tv32 = (struct timeval32 *)addr; 1634fc0a61a4SKonstantin Belousov tv = &tv64; 1635fc0a61a4SKonstantin Belousov tv->tv_sec = tv32->tv_sec; 1636fc0a61a4SKonstantin Belousov tv->tv_usec = tv32->tv_usec; 1637fc0a61a4SKonstantin Belousov } else 1638fc0a61a4SKonstantin Belousov #endif 1639fc0a61a4SKonstantin Belousov tv = (struct timeval *)addr; 1640df8bae1dSRodney W. Grimes 1641bdc2cdc5SAlexander Langer /* 1642bdc2cdc5SAlexander Langer * Subtract 1 tick from tvtohz() since this isn't 1643bdc2cdc5SAlexander Langer * a one-shot timer. 1644bdc2cdc5SAlexander Langer */ 1645bdc2cdc5SAlexander Langer if ((error = itimerfix(tv)) == 0) 1646bdc2cdc5SAlexander Langer d->bd_rtout = tvtohz(tv) - 1; 1647df8bae1dSRodney W. Grimes break; 1648df8bae1dSRodney W. Grimes } 1649df8bae1dSRodney W. Grimes 1650df8bae1dSRodney W. Grimes /* 1651df8bae1dSRodney W. Grimes * Get read timeout. 1652df8bae1dSRodney W. Grimes */ 1653df8bae1dSRodney W. Grimes case BIOCGRTIMEOUT: 1654b4366092SJustin Hibbits #if defined(COMPAT_FREEBSD32) && defined(__amd64__) 1655fc0a61a4SKonstantin Belousov case BIOCGRTIMEOUT32: 1656fc0a61a4SKonstantin Belousov #endif 1657df8bae1dSRodney W. Grimes { 1658fc0a61a4SKonstantin Belousov struct timeval *tv; 1659b4366092SJustin Hibbits #if defined(COMPAT_FREEBSD32) && defined(__amd64__) 1660fc0a61a4SKonstantin Belousov struct timeval32 *tv32; 1661fc0a61a4SKonstantin Belousov struct timeval tv64; 1662fc0a61a4SKonstantin Belousov 1663fc0a61a4SKonstantin Belousov if (cmd == BIOCGRTIMEOUT32) 1664fc0a61a4SKonstantin Belousov tv = &tv64; 1665fc0a61a4SKonstantin Belousov else 1666fc0a61a4SKonstantin Belousov #endif 1667fc0a61a4SKonstantin Belousov tv = (struct timeval *)addr; 1668df8bae1dSRodney W. Grimes 1669bdc2cdc5SAlexander Langer tv->tv_sec = d->bd_rtout / hz; 1670bdc2cdc5SAlexander Langer tv->tv_usec = (d->bd_rtout % hz) * tick; 1671b4366092SJustin Hibbits #if defined(COMPAT_FREEBSD32) && defined(__amd64__) 1672fc0a61a4SKonstantin Belousov if (cmd == BIOCGRTIMEOUT32) { 1673fc0a61a4SKonstantin Belousov tv32 = (struct timeval32 *)addr; 1674fc0a61a4SKonstantin Belousov tv32->tv_sec = tv->tv_sec; 1675fc0a61a4SKonstantin Belousov tv32->tv_usec = tv->tv_usec; 1676fc0a61a4SKonstantin Belousov } 1677fc0a61a4SKonstantin Belousov #endif 1678fc0a61a4SKonstantin Belousov 1679df8bae1dSRodney W. Grimes break; 1680df8bae1dSRodney W. Grimes } 1681df8bae1dSRodney W. Grimes 1682df8bae1dSRodney W. Grimes /* 1683df8bae1dSRodney W. Grimes * Get packet stats. 1684df8bae1dSRodney W. Grimes */ 1685df8bae1dSRodney W. Grimes case BIOCGSTATS: 1686df8bae1dSRodney W. Grimes { 1687df8bae1dSRodney W. Grimes struct bpf_stat *bs = (struct bpf_stat *)addr; 1688df8bae1dSRodney W. Grimes 16894d621040SChristian S.J. Peron /* XXXCSJP overflow */ 1690b2b7ca49SAlexander V. Chernikov bs->bs_recv = (u_int)counter_u64_fetch(d->bd_rcount); 1691b2b7ca49SAlexander V. Chernikov bs->bs_drop = (u_int)counter_u64_fetch(d->bd_dcount); 1692df8bae1dSRodney W. Grimes break; 1693df8bae1dSRodney W. Grimes } 1694df8bae1dSRodney W. Grimes 1695df8bae1dSRodney W. Grimes /* 1696df8bae1dSRodney W. Grimes * Set immediate mode. 1697df8bae1dSRodney W. Grimes */ 1698df8bae1dSRodney W. Grimes case BIOCIMMEDIATE: 169997aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1700df8bae1dSRodney W. Grimes d->bd_immediate = *(u_int *)addr; 170197aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1702df8bae1dSRodney W. Grimes break; 1703df8bae1dSRodney W. Grimes 1704df8bae1dSRodney W. Grimes case BIOCVERSION: 1705df8bae1dSRodney W. Grimes { 1706df8bae1dSRodney W. Grimes struct bpf_version *bv = (struct bpf_version *)addr; 1707df8bae1dSRodney W. Grimes 1708df8bae1dSRodney W. Grimes bv->bv_major = BPF_MAJOR_VERSION; 1709df8bae1dSRodney W. Grimes bv->bv_minor = BPF_MINOR_VERSION; 1710df8bae1dSRodney W. Grimes break; 1711df8bae1dSRodney W. Grimes } 171200a83887SPaul Traina 1713114ae644SMike Smith /* 1714114ae644SMike Smith * Get "header already complete" flag 1715114ae644SMike Smith */ 1716114ae644SMike Smith case BIOCGHDRCMPLT: 171797aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1718114ae644SMike Smith *(u_int *)addr = d->bd_hdrcmplt; 171997aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1720114ae644SMike Smith break; 1721114ae644SMike Smith 1722114ae644SMike Smith /* 1723114ae644SMike Smith * Set "header already complete" flag 1724114ae644SMike Smith */ 1725114ae644SMike Smith case BIOCSHDRCMPLT: 172697aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1727114ae644SMike Smith d->bd_hdrcmplt = *(u_int *)addr ? 1 : 0; 172897aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1729114ae644SMike Smith break; 1730114ae644SMike Smith 17318ed3828cSRobert Watson /* 1732560a54e1SJung-uk Kim * Get packet direction flag 17338ed3828cSRobert Watson */ 1734560a54e1SJung-uk Kim case BIOCGDIRECTION: 173597aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1736560a54e1SJung-uk Kim *(u_int *)addr = d->bd_direction; 173797aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 17388ed3828cSRobert Watson break; 17398ed3828cSRobert Watson 17408ed3828cSRobert Watson /* 1741560a54e1SJung-uk Kim * Set packet direction flag 17428ed3828cSRobert Watson */ 1743560a54e1SJung-uk Kim case BIOCSDIRECTION: 1744560a54e1SJung-uk Kim { 1745560a54e1SJung-uk Kim u_int direction; 1746560a54e1SJung-uk Kim 1747560a54e1SJung-uk Kim direction = *(u_int *)addr; 1748560a54e1SJung-uk Kim switch (direction) { 1749560a54e1SJung-uk Kim case BPF_D_IN: 1750560a54e1SJung-uk Kim case BPF_D_INOUT: 1751560a54e1SJung-uk Kim case BPF_D_OUT: 175297aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1753560a54e1SJung-uk Kim d->bd_direction = direction; 175497aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1755560a54e1SJung-uk Kim break; 1756560a54e1SJung-uk Kim default: 1757560a54e1SJung-uk Kim error = EINVAL; 1758560a54e1SJung-uk Kim } 1759560a54e1SJung-uk Kim } 1760560a54e1SJung-uk Kim break; 1761560a54e1SJung-uk Kim 1762547d94bdSJung-uk Kim /* 1763d0d7bcdfSJung-uk Kim * Get packet timestamp format and resolution. 1764547d94bdSJung-uk Kim */ 1765547d94bdSJung-uk Kim case BIOCGTSTAMP: 176697aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1767547d94bdSJung-uk Kim *(u_int *)addr = d->bd_tstamp; 176897aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1769547d94bdSJung-uk Kim break; 1770547d94bdSJung-uk Kim 1771547d94bdSJung-uk Kim /* 1772547d94bdSJung-uk Kim * Set packet timestamp format and resolution. 1773547d94bdSJung-uk Kim */ 1774547d94bdSJung-uk Kim case BIOCSTSTAMP: 1775547d94bdSJung-uk Kim { 1776547d94bdSJung-uk Kim u_int func; 1777547d94bdSJung-uk Kim 1778547d94bdSJung-uk Kim func = *(u_int *)addr; 1779547d94bdSJung-uk Kim if (BPF_T_VALID(func)) 1780547d94bdSJung-uk Kim d->bd_tstamp = func; 1781547d94bdSJung-uk Kim else 1782547d94bdSJung-uk Kim error = EINVAL; 1783547d94bdSJung-uk Kim } 1784547d94bdSJung-uk Kim break; 1785547d94bdSJung-uk Kim 1786560a54e1SJung-uk Kim case BIOCFEEDBACK: 178797aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1788560a54e1SJung-uk Kim d->bd_feedback = *(u_int *)addr; 178997aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1790560a54e1SJung-uk Kim break; 1791560a54e1SJung-uk Kim 1792560a54e1SJung-uk Kim case BIOCLOCK: 179397aacec6SAlexander V. Chernikov BPFD_LOCK(d); 1794560a54e1SJung-uk Kim d->bd_locked = 1; 179597aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 17968ed3828cSRobert Watson break; 17978ed3828cSRobert Watson 179800a83887SPaul Traina case FIONBIO: /* Non-blocking I/O */ 179900a83887SPaul Traina break; 180000a83887SPaul Traina 180100a83887SPaul Traina case FIOASYNC: /* Send signal on receive packets */ 180297aacec6SAlexander V. Chernikov BPFD_LOCK(d); 180300a83887SPaul Traina d->bd_async = *(int *)addr; 180497aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 180500a83887SPaul Traina break; 180600a83887SPaul Traina 1807831d27a9SDon Lewis case FIOSETOWN: 180897aacec6SAlexander V. Chernikov /* 180997aacec6SAlexander V. Chernikov * XXX: Add some sort of locking here? 181097aacec6SAlexander V. Chernikov * fsetown() can sleep. 181197aacec6SAlexander V. Chernikov */ 1812831d27a9SDon Lewis error = fsetown(*(int *)addr, &d->bd_sigio); 181300a83887SPaul Traina break; 181400a83887SPaul Traina 1815831d27a9SDon Lewis case FIOGETOWN: 181697aacec6SAlexander V. Chernikov BPFD_LOCK(d); 181791e97a82SDon Lewis *(int *)addr = fgetown(&d->bd_sigio); 181897aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 1819831d27a9SDon Lewis break; 1820831d27a9SDon Lewis 1821831d27a9SDon Lewis /* This is deprecated, FIOSETOWN should be used instead. */ 1822831d27a9SDon Lewis case TIOCSPGRP: 1823831d27a9SDon Lewis error = fsetown(-(*(int *)addr), &d->bd_sigio); 1824831d27a9SDon Lewis break; 1825831d27a9SDon Lewis 1826831d27a9SDon Lewis /* This is deprecated, FIOGETOWN should be used instead. */ 182700a83887SPaul Traina case TIOCGPGRP: 182891e97a82SDon Lewis *(int *)addr = -fgetown(&d->bd_sigio); 182900a83887SPaul Traina break; 183000a83887SPaul Traina 183100a83887SPaul Traina case BIOCSRSIG: /* Set receive signal */ 183200a83887SPaul Traina { 183300a83887SPaul Traina u_int sig; 183400a83887SPaul Traina 183500a83887SPaul Traina sig = *(u_int *)addr; 183600a83887SPaul Traina 183700a83887SPaul Traina if (sig >= NSIG) 183800a83887SPaul Traina error = EINVAL; 183997aacec6SAlexander V. Chernikov else { 184097aacec6SAlexander V. Chernikov BPFD_LOCK(d); 184100a83887SPaul Traina d->bd_sig = sig; 184297aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 184397aacec6SAlexander V. Chernikov } 184400a83887SPaul Traina break; 184500a83887SPaul Traina } 184600a83887SPaul Traina case BIOCGRSIG: 184797aacec6SAlexander V. Chernikov BPFD_LOCK(d); 184800a83887SPaul Traina *(u_int *)addr = d->bd_sig; 184997aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 185000a83887SPaul Traina break; 18514d621040SChristian S.J. Peron 18524d621040SChristian S.J. Peron case BIOCGETBUFMODE: 185397aacec6SAlexander V. Chernikov BPFD_LOCK(d); 18544d621040SChristian S.J. Peron *(u_int *)addr = d->bd_bufmode; 185597aacec6SAlexander V. Chernikov BPFD_UNLOCK(d); 18564d621040SChristian S.J. Peron break; 18574d621040SChristian S.J. Peron 18584d621040SChristian S.J. Peron case BIOCSETBUFMODE: 18594d621040SChristian S.J. Peron /* 18604d621040SChristian S.J. Peron * Allow the buffering mode to be changed as long as we 18614d621040SChristian S.J. Peron * haven't yet committed to a particular mode. Our 18624d621040SChristian S.J. Peron * definition of commitment, for now, is whether or not a 18634d621040SChristian S.J. Peron * buffer has been allocated or an interface attached, since 18644d621040SChristian S.J. Peron * that's the point where things get tricky. 18654d621040SChristian S.J. Peron */ 18664d621040SChristian S.J. Peron switch (*(u_int *)addr) { 18674d621040SChristian S.J. Peron case BPF_BUFMODE_BUFFER: 18684d621040SChristian S.J. Peron break; 18694d621040SChristian S.J. Peron 18704d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 18714d621040SChristian S.J. Peron if (bpf_zerocopy_enable) 18724d621040SChristian S.J. Peron break; 18734d621040SChristian S.J. Peron /* FALLSTHROUGH */ 18744d621040SChristian S.J. Peron 18754d621040SChristian S.J. Peron default: 18761b610a74SBjoern A. Zeeb CURVNET_RESTORE(); 18774d621040SChristian S.J. Peron return (EINVAL); 18784d621040SChristian S.J. Peron } 18794d621040SChristian S.J. Peron 1880afa85850SAlexander V. Chernikov BPFD_LOCK(d); 18814d621040SChristian S.J. Peron if (d->bd_sbuf != NULL || d->bd_hbuf != NULL || 18824d621040SChristian S.J. Peron d->bd_fbuf != NULL || d->bd_bif != NULL) { 1883afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 18841b610a74SBjoern A. Zeeb CURVNET_RESTORE(); 18854d621040SChristian S.J. Peron return (EBUSY); 18864d621040SChristian S.J. Peron } 18874d621040SChristian S.J. Peron d->bd_bufmode = *(u_int *)addr; 1888afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 18894d621040SChristian S.J. Peron break; 18904d621040SChristian S.J. Peron 18914d621040SChristian S.J. Peron case BIOCGETZMAX: 18921b610a74SBjoern A. Zeeb error = bpf_ioctl_getzmax(td, d, (size_t *)addr); 18931b610a74SBjoern A. Zeeb break; 18944d621040SChristian S.J. Peron 18954d621040SChristian S.J. Peron case BIOCSETZBUF: 18961b610a74SBjoern A. Zeeb error = bpf_ioctl_setzbuf(td, d, (struct bpf_zbuf *)addr); 18971b610a74SBjoern A. Zeeb break; 18984d621040SChristian S.J. Peron 18994d621040SChristian S.J. Peron case BIOCROTZBUF: 19001b610a74SBjoern A. Zeeb error = bpf_ioctl_rotzbuf(td, d, (struct bpf_zbuf *)addr); 19011b610a74SBjoern A. Zeeb break; 1902df8bae1dSRodney W. Grimes } 190397021c24SMarko Zec CURVNET_RESTORE(); 1904df8bae1dSRodney W. Grimes return (error); 1905df8bae1dSRodney W. Grimes } 1906df8bae1dSRodney W. Grimes 1907df8bae1dSRodney W. Grimes /* 1908df8bae1dSRodney W. Grimes * Set d's packet filter program to fp. If this file already has a filter, 1909df8bae1dSRodney W. Grimes * free it and replace it. Returns EINVAL for bogus requests. 1910784292f8SAlexander V. Chernikov * 1911699281b5SAndrey V. Elsukov * Note we use global lock here to serialize bpf_setf() and bpf_setif() 1912699281b5SAndrey V. Elsukov * calls. 1913df8bae1dSRodney W. Grimes */ 1914f708ef1bSPoul-Henning Kamp static int 191519ba8395SChristian S.J. Peron bpf_setf(struct bpf_d *d, struct bpf_program *fp, u_long cmd) 1916df8bae1dSRodney W. Grimes { 19179b7d4a7fSJung-uk Kim #ifdef COMPAT_FREEBSD32 19189b7d4a7fSJung-uk Kim struct bpf_program fp_swab; 19199b7d4a7fSJung-uk Kim struct bpf_program32 *fp32; 19209b7d4a7fSJung-uk Kim #endif 1921699281b5SAndrey V. Elsukov struct bpf_program_buffer *fcode; 1922699281b5SAndrey V. Elsukov struct bpf_insn *filter; 1923293c06a1SRuslan Ermilov #ifdef BPF_JITTER 1924699281b5SAndrey V. Elsukov bpf_jit_filter *jfunc; 1925ae275efcSJung-uk Kim #endif 19268b04b48aSJung-uk Kim size_t size; 19278b04b48aSJung-uk Kim u_int flen; 1928699281b5SAndrey V. Elsukov bool track_event; 1929df8bae1dSRodney W. Grimes 19309b7d4a7fSJung-uk Kim #ifdef COMPAT_FREEBSD32 19316f731135SJung-uk Kim switch (cmd) { 19326f731135SJung-uk Kim case BIOCSETF32: 19336f731135SJung-uk Kim case BIOCSETWF32: 19346f731135SJung-uk Kim case BIOCSETFNR32: 1935fc0a61a4SKonstantin Belousov fp32 = (struct bpf_program32 *)fp; 1936fc0a61a4SKonstantin Belousov fp_swab.bf_len = fp32->bf_len; 1937699281b5SAndrey V. Elsukov fp_swab.bf_insns = 1938699281b5SAndrey V. Elsukov (struct bpf_insn *)(uintptr_t)fp32->bf_insns; 1939fc0a61a4SKonstantin Belousov fp = &fp_swab; 19406f731135SJung-uk Kim switch (cmd) { 19416f731135SJung-uk Kim case BIOCSETF32: 19426f731135SJung-uk Kim cmd = BIOCSETF; 19436f731135SJung-uk Kim break; 19446f731135SJung-uk Kim case BIOCSETWF32: 1945fc0a61a4SKonstantin Belousov cmd = BIOCSETWF; 19466f731135SJung-uk Kim break; 19476f731135SJung-uk Kim } 19486f731135SJung-uk Kim break; 1949fc0a61a4SKonstantin Belousov } 1950fc0a61a4SKonstantin Belousov #endif 19518b04b48aSJung-uk Kim 1952699281b5SAndrey V. Elsukov filter = NULL; 19538b04b48aSJung-uk Kim #ifdef BPF_JITTER 1954699281b5SAndrey V. Elsukov jfunc = NULL; 19558b04b48aSJung-uk Kim #endif 19566c74ff0eSAlexander V. Chernikov /* 19576c74ff0eSAlexander V. Chernikov * Check new filter validness before acquiring any locks. 19586c74ff0eSAlexander V. Chernikov * Allocate memory for new filter, if needed. 19596c74ff0eSAlexander V. Chernikov */ 19606c74ff0eSAlexander V. Chernikov flen = fp->bf_len; 19619b7d4a7fSJung-uk Kim if (flen > bpf_maxinsns || (fp->bf_insns == NULL && flen != 0)) 19626c74ff0eSAlexander V. Chernikov return (EINVAL); 19636c74ff0eSAlexander V. Chernikov size = flen * sizeof(*fp->bf_insns); 1964a86227d1SAlexander V. Chernikov if (size > 0) { 19659b7d4a7fSJung-uk Kim /* We're setting up new filter. Copy and check actual data. */ 1966699281b5SAndrey V. Elsukov fcode = bpf_program_buffer_alloc(size, M_WAITOK); 1967699281b5SAndrey V. Elsukov filter = (struct bpf_insn *)fcode->buffer; 1968699281b5SAndrey V. Elsukov if (copyin(fp->bf_insns, filter, size) != 0 || 1969699281b5SAndrey V. Elsukov !bpf_validate(filter, flen)) { 1970a86227d1SAlexander V. Chernikov free(fcode, M_BPF); 1971a86227d1SAlexander V. Chernikov return (EINVAL); 1972a86227d1SAlexander V. Chernikov } 1973c7b0200eSAlexander V. Chernikov #ifdef BPF_JITTER 197416a227c7SJonathan T. Looney if (cmd != BIOCSETWF) { 197516a227c7SJonathan T. Looney /* 197616a227c7SJonathan T. Looney * Filter is copied inside fcode and is 197716a227c7SJonathan T. Looney * perfectly valid. 197816a227c7SJonathan T. Looney */ 1979699281b5SAndrey V. Elsukov jfunc = bpf_jitter(filter, flen); 198016a227c7SJonathan T. Looney } 1981c7b0200eSAlexander V. Chernikov #endif 19828b04b48aSJung-uk Kim } 1983c7b0200eSAlexander V. Chernikov 1984699281b5SAndrey V. Elsukov track_event = false; 1985699281b5SAndrey V. Elsukov fcode = NULL; 19866c74ff0eSAlexander V. Chernikov 1987699281b5SAndrey V. Elsukov BPF_LOCK(); 1988afa85850SAlexander V. Chernikov BPFD_LOCK(d); 1989699281b5SAndrey V. Elsukov /* Set up new filter. */ 19908b04b48aSJung-uk Kim if (cmd == BIOCSETWF) { 1991699281b5SAndrey V. Elsukov if (d->bd_wfilter != NULL) { 1992699281b5SAndrey V. Elsukov fcode = __containerof((void *)d->bd_wfilter, 1993699281b5SAndrey V. Elsukov struct bpf_program_buffer, buffer); 1994293c06a1SRuslan Ermilov #ifdef BPF_JITTER 1995699281b5SAndrey V. Elsukov fcode->func = NULL; 1996699281b5SAndrey V. Elsukov #endif 1997699281b5SAndrey V. Elsukov } 1998699281b5SAndrey V. Elsukov d->bd_wfilter = filter; 1999699281b5SAndrey V. Elsukov } else { 2000699281b5SAndrey V. Elsukov if (d->bd_rfilter != NULL) { 2001699281b5SAndrey V. Elsukov fcode = __containerof((void *)d->bd_rfilter, 2002699281b5SAndrey V. Elsukov struct bpf_program_buffer, buffer); 2003699281b5SAndrey V. Elsukov #ifdef BPF_JITTER 2004699281b5SAndrey V. Elsukov fcode->func = d->bd_bfilter; 2005699281b5SAndrey V. Elsukov #endif 2006699281b5SAndrey V. Elsukov } 2007699281b5SAndrey V. Elsukov d->bd_rfilter = filter; 2008699281b5SAndrey V. Elsukov #ifdef BPF_JITTER 2009c7b0200eSAlexander V. Chernikov d->bd_bfilter = jfunc; 2010ae275efcSJung-uk Kim #endif 2011f11c3508SDavid Malone if (cmd == BIOCSETF) 2012df8bae1dSRodney W. Grimes reset_d(d); 201351ec1eb7SAlexander V. Chernikov 2014699281b5SAndrey V. Elsukov if (bpf_check_upgrade(cmd, d, filter, flen) != 0) { 2015699281b5SAndrey V. Elsukov /* 2016699281b5SAndrey V. Elsukov * Filter can be set several times without 2017699281b5SAndrey V. Elsukov * specifying interface. In this case just mark d 2018699281b5SAndrey V. Elsukov * as reader. 2019699281b5SAndrey V. Elsukov */ 2020699281b5SAndrey V. Elsukov d->bd_writer = 0; 2021699281b5SAndrey V. Elsukov if (d->bd_bif != NULL) { 2022699281b5SAndrey V. Elsukov /* 2023699281b5SAndrey V. Elsukov * Remove descriptor from writers-only list 2024699281b5SAndrey V. Elsukov * and add it to active readers list. 2025699281b5SAndrey V. Elsukov */ 2026699281b5SAndrey V. Elsukov CK_LIST_REMOVE(d, bd_next); 2027699281b5SAndrey V. Elsukov CK_LIST_INSERT_HEAD(&d->bd_bif->bif_dlist, 2028699281b5SAndrey V. Elsukov d, bd_next); 2029699281b5SAndrey V. Elsukov CTR2(KTR_NET, 2030699281b5SAndrey V. Elsukov "%s: upgrade required by pid %d", 2031699281b5SAndrey V. Elsukov __func__, d->bd_pid); 2032699281b5SAndrey V. Elsukov track_event = true; 2033699281b5SAndrey V. Elsukov } 2034699281b5SAndrey V. Elsukov } 20358b04b48aSJung-uk Kim } 2036afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 2037df8bae1dSRodney W. Grimes 2038699281b5SAndrey V. Elsukov if (fcode != NULL) 2039699281b5SAndrey V. Elsukov epoch_call(net_epoch_preempt, &fcode->epoch_ctx, 2040699281b5SAndrey V. Elsukov bpf_program_buffer_free); 2041699281b5SAndrey V. Elsukov 2042699281b5SAndrey V. Elsukov if (track_event) 2043699281b5SAndrey V. Elsukov EVENTHANDLER_INVOKE(bpf_track, 2044699281b5SAndrey V. Elsukov d->bd_bif->bif_ifp, d->bd_bif->bif_dlt, 1); 204551ec1eb7SAlexander V. Chernikov 20466c74ff0eSAlexander V. Chernikov BPF_UNLOCK(); 2047df8bae1dSRodney W. Grimes return (0); 2048df8bae1dSRodney W. Grimes } 2049df8bae1dSRodney W. Grimes 2050df8bae1dSRodney W. Grimes /* 2051df8bae1dSRodney W. Grimes * Detach a file from its current interface (if attached at all) and attach 2052df8bae1dSRodney W. Grimes * to the interface indicated by the name stored in ifr. 2053df8bae1dSRodney W. Grimes * Return an errno or 0. 2054df8bae1dSRodney W. Grimes */ 2055df8bae1dSRodney W. Grimes static int 205619ba8395SChristian S.J. Peron bpf_setif(struct bpf_d *d, struct ifreq *ifr) 2057df8bae1dSRodney W. Grimes { 2058df8bae1dSRodney W. Grimes struct bpf_if *bp; 20599b44ff22SGarrett Wollman struct ifnet *theywant; 2060df8bae1dSRodney W. Grimes 20616c74ff0eSAlexander V. Chernikov BPF_LOCK_ASSERT(); 20626c74ff0eSAlexander V. Chernikov 20639b44ff22SGarrett Wollman theywant = ifunit(ifr->ifr_name); 206416d878ccSChristian S.J. Peron if (theywant == NULL || theywant->if_bpf == NULL) 206516d878ccSChristian S.J. Peron return (ENXIO); 20669b44ff22SGarrett Wollman 206716d878ccSChristian S.J. Peron bp = theywant->if_bpf; 2068df8bae1dSRodney W. Grimes /* 20694f42daa4SLuiz Otavio O Souza * At this point, we expect the buffer is already allocated. If not, 20704f42daa4SLuiz Otavio O Souza * return an error. 2071df8bae1dSRodney W. Grimes */ 20724d621040SChristian S.J. Peron switch (d->bd_bufmode) { 20734d621040SChristian S.J. Peron case BPF_BUFMODE_BUFFER: 20744d621040SChristian S.J. Peron case BPF_BUFMODE_ZBUF: 20754d621040SChristian S.J. Peron if (d->bd_sbuf == NULL) 20764d621040SChristian S.J. Peron return (EINVAL); 20774d621040SChristian S.J. Peron break; 20784d621040SChristian S.J. Peron 20794d621040SChristian S.J. Peron default: 20804d621040SChristian S.J. Peron panic("bpf_setif: bufmode %d", d->bd_bufmode); 20814d621040SChristian S.J. Peron } 20826c74ff0eSAlexander V. Chernikov if (bp != d->bd_bif) 2083df8bae1dSRodney W. Grimes bpf_attachd(d, bp); 2084699281b5SAndrey V. Elsukov else { 2085afa85850SAlexander V. Chernikov BPFD_LOCK(d); 2086df8bae1dSRodney W. Grimes reset_d(d); 2087afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 2088699281b5SAndrey V. Elsukov } 2089df8bae1dSRodney W. Grimes return (0); 2090df8bae1dSRodney W. Grimes } 2091df8bae1dSRodney W. Grimes 2092df8bae1dSRodney W. Grimes /* 2093243ac7d8SPeter Wemm * Support for select() and poll() system calls 2094df8bae1dSRodney W. Grimes * 2095df8bae1dSRodney W. Grimes * Return true iff the specific operation will not block indefinitely. 2096df8bae1dSRodney W. Grimes * Otherwise, return false but make a note that a selwakeup() must be done. 2097df8bae1dSRodney W. Grimes */ 209837c84183SPoul-Henning Kamp static int 209919ba8395SChristian S.J. Peron bpfpoll(struct cdev *dev, int events, struct thread *td) 2100df8bae1dSRodney W. Grimes { 2101e7bb21b3SJonathan Lemon struct bpf_d *d; 21020832fc64SGarance A Drosehn int revents; 2103df8bae1dSRodney W. Grimes 2104136600feSEd Schouten if (devfs_get_cdevpriv((void **)&d) != 0 || d->bd_bif == NULL) 2105136600feSEd Schouten return (events & 2106136600feSEd Schouten (POLLHUP|POLLIN|POLLRDNORM|POLLOUT|POLLWRNORM)); 2107de5d9935SRobert Watson 2108b75a24a0SChristian S.J. Peron /* 2109b75a24a0SChristian S.J. Peron * Refresh PID associated with this descriptor. 2110b75a24a0SChristian S.J. Peron */ 21110832fc64SGarance A Drosehn revents = events & (POLLOUT | POLLWRNORM); 2112afa85850SAlexander V. Chernikov BPFD_LOCK(d); 2113e4b3229aSAlexander V. Chernikov BPF_PID_REFRESH(d, td); 211475c13541SPoul-Henning Kamp if (events & (POLLIN | POLLRDNORM)) { 211595aab9ccSJohn-Mark Gurney if (bpf_ready(d)) 2116243ac7d8SPeter Wemm revents |= events & (POLLIN | POLLRDNORM); 211781bda851SJohn Polstra else { 2118ed01445dSJohn Baldwin selrecord(td, &d->bd_sel); 211981bda851SJohn Polstra /* Start the read timeout if necessary. */ 212081bda851SJohn Polstra if (d->bd_rtout > 0 && d->bd_state == BPF_IDLE) { 212181bda851SJohn Polstra callout_reset(&d->bd_callout, d->bd_rtout, 212281bda851SJohn Polstra bpf_timed_out, d); 212381bda851SJohn Polstra d->bd_state = BPF_WAITING; 212481bda851SJohn Polstra } 212581bda851SJohn Polstra } 212675c13541SPoul-Henning Kamp } 2127afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 2128243ac7d8SPeter Wemm return (revents); 2129df8bae1dSRodney W. Grimes } 2130df8bae1dSRodney W. Grimes 2131df8bae1dSRodney W. Grimes /* 213295aab9ccSJohn-Mark Gurney * Support for kevent() system call. Register EVFILT_READ filters and 213395aab9ccSJohn-Mark Gurney * reject all others. 213495aab9ccSJohn-Mark Gurney */ 213595aab9ccSJohn-Mark Gurney int 213619ba8395SChristian S.J. Peron bpfkqfilter(struct cdev *dev, struct knote *kn) 213795aab9ccSJohn-Mark Gurney { 2138136600feSEd Schouten struct bpf_d *d; 213995aab9ccSJohn-Mark Gurney 2140136600feSEd Schouten if (devfs_get_cdevpriv((void **)&d) != 0 || 2141136600feSEd Schouten kn->kn_filter != EVFILT_READ) 214295aab9ccSJohn-Mark Gurney return (1); 214395aab9ccSJohn-Mark Gurney 2144b75a24a0SChristian S.J. Peron /* 2145b75a24a0SChristian S.J. Peron * Refresh PID associated with this descriptor. 2146b75a24a0SChristian S.J. Peron */ 2147afa85850SAlexander V. Chernikov BPFD_LOCK(d); 2148e4b3229aSAlexander V. Chernikov BPF_PID_REFRESH_CUR(d); 214995aab9ccSJohn-Mark Gurney kn->kn_fop = &bpfread_filtops; 215095aab9ccSJohn-Mark Gurney kn->kn_hook = d; 21514b19419eSChristian S.J. Peron knlist_add(&d->bd_sel.si_note, kn, 1); 2152afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 215395aab9ccSJohn-Mark Gurney 215495aab9ccSJohn-Mark Gurney return (0); 215595aab9ccSJohn-Mark Gurney } 215695aab9ccSJohn-Mark Gurney 215795aab9ccSJohn-Mark Gurney static void 215819ba8395SChristian S.J. Peron filt_bpfdetach(struct knote *kn) 215995aab9ccSJohn-Mark Gurney { 216095aab9ccSJohn-Mark Gurney struct bpf_d *d = (struct bpf_d *)kn->kn_hook; 216195aab9ccSJohn-Mark Gurney 2162ad3b9257SJohn-Mark Gurney knlist_remove(&d->bd_sel.si_note, kn, 0); 216395aab9ccSJohn-Mark Gurney } 216495aab9ccSJohn-Mark Gurney 216595aab9ccSJohn-Mark Gurney static int 216619ba8395SChristian S.J. Peron filt_bpfread(struct knote *kn, long hint) 216795aab9ccSJohn-Mark Gurney { 216895aab9ccSJohn-Mark Gurney struct bpf_d *d = (struct bpf_d *)kn->kn_hook; 216995aab9ccSJohn-Mark Gurney int ready; 217095aab9ccSJohn-Mark Gurney 2171afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 217295aab9ccSJohn-Mark Gurney ready = bpf_ready(d); 217395aab9ccSJohn-Mark Gurney if (ready) { 217495aab9ccSJohn-Mark Gurney kn->kn_data = d->bd_slen; 217592242172SLuiz Otavio O Souza /* 217692242172SLuiz Otavio O Souza * Ignore the hold buffer if it is being copied to user space. 217792242172SLuiz Otavio O Souza */ 217892242172SLuiz Otavio O Souza if (!d->bd_hbuf_in_use && d->bd_hbuf) 217995aab9ccSJohn-Mark Gurney kn->kn_data += d->bd_hlen; 21805d7af3a1SJung-uk Kim } else if (d->bd_rtout > 0 && d->bd_state == BPF_IDLE) { 218195aab9ccSJohn-Mark Gurney callout_reset(&d->bd_callout, d->bd_rtout, 218295aab9ccSJohn-Mark Gurney bpf_timed_out, d); 218395aab9ccSJohn-Mark Gurney d->bd_state = BPF_WAITING; 218495aab9ccSJohn-Mark Gurney } 218595aab9ccSJohn-Mark Gurney 218695aab9ccSJohn-Mark Gurney return (ready); 218795aab9ccSJohn-Mark Gurney } 218895aab9ccSJohn-Mark Gurney 2189253a3814SLawrence Stewart #define BPF_TSTAMP_NONE 0 2190253a3814SLawrence Stewart #define BPF_TSTAMP_FAST 1 2191253a3814SLawrence Stewart #define BPF_TSTAMP_NORMAL 2 2192253a3814SLawrence Stewart #define BPF_TSTAMP_EXTERN 3 2193253a3814SLawrence Stewart 2194253a3814SLawrence Stewart static int 2195253a3814SLawrence Stewart bpf_ts_quality(int tstype) 2196253a3814SLawrence Stewart { 2197253a3814SLawrence Stewart 2198253a3814SLawrence Stewart if (tstype == BPF_T_NONE) 2199253a3814SLawrence Stewart return (BPF_TSTAMP_NONE); 2200253a3814SLawrence Stewart if ((tstype & BPF_T_FAST) != 0) 2201253a3814SLawrence Stewart return (BPF_TSTAMP_FAST); 2202253a3814SLawrence Stewart 2203253a3814SLawrence Stewart return (BPF_TSTAMP_NORMAL); 2204253a3814SLawrence Stewart } 2205253a3814SLawrence Stewart 2206253a3814SLawrence Stewart static int 2207253a3814SLawrence Stewart bpf_gettime(struct bintime *bt, int tstype, struct mbuf *m) 2208253a3814SLawrence Stewart { 2209253a3814SLawrence Stewart struct m_tag *tag; 2210253a3814SLawrence Stewart int quality; 2211253a3814SLawrence Stewart 2212253a3814SLawrence Stewart quality = bpf_ts_quality(tstype); 2213253a3814SLawrence Stewart if (quality == BPF_TSTAMP_NONE) 2214253a3814SLawrence Stewart return (quality); 2215253a3814SLawrence Stewart 2216253a3814SLawrence Stewart if (m != NULL) { 2217253a3814SLawrence Stewart tag = m_tag_locate(m, MTAG_BPF, MTAG_BPF_TIMESTAMP, NULL); 2218253a3814SLawrence Stewart if (tag != NULL) { 2219253a3814SLawrence Stewart *bt = *(struct bintime *)(tag + 1); 2220253a3814SLawrence Stewart return (BPF_TSTAMP_EXTERN); 2221253a3814SLawrence Stewart } 2222253a3814SLawrence Stewart } 2223253a3814SLawrence Stewart if (quality == BPF_TSTAMP_NORMAL) 2224253a3814SLawrence Stewart binuptime(bt); 2225253a3814SLawrence Stewart else 2226253a3814SLawrence Stewart getbinuptime(bt); 2227253a3814SLawrence Stewart 2228253a3814SLawrence Stewart return (quality); 2229253a3814SLawrence Stewart } 2230253a3814SLawrence Stewart 223195aab9ccSJohn-Mark Gurney /* 2232df8bae1dSRodney W. Grimes * Incoming linkage from device drivers. Process the packet pkt, of length 2233df8bae1dSRodney W. Grimes * pktlen, which is stored in a contiguous buffer. The packet is parsed 2234df8bae1dSRodney W. Grimes * by each process' filter, and if accepted, stashed into the corresponding 2235df8bae1dSRodney W. Grimes * buffer. 2236df8bae1dSRodney W. Grimes */ 2237df8bae1dSRodney W. Grimes void 223819ba8395SChristian S.J. Peron bpf_tap(struct bpf_if *bp, u_char *pkt, u_int pktlen) 2239df8bae1dSRodney W. Grimes { 2240699281b5SAndrey V. Elsukov struct epoch_tracker et; 2241547d94bdSJung-uk Kim struct bintime bt; 22428994a245SDag-Erling Smørgrav struct bpf_d *d; 2243a36599ccSJung-uk Kim #ifdef BPF_JITTER 2244a36599ccSJung-uk Kim bpf_jit_filter *bf; 2245a36599ccSJung-uk Kim #endif 2246253a3814SLawrence Stewart u_int slen; 2247253a3814SLawrence Stewart int gottime; 2248e7bb21b3SJonathan Lemon 2249253a3814SLawrence Stewart gottime = BPF_TSTAMP_NONE; 2250699281b5SAndrey V. Elsukov NET_EPOCH_ENTER(et); 2251699281b5SAndrey V. Elsukov CK_LIST_FOREACH(d, &bp->bif_dlist, bd_next) { 2252b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_rcount, 1); 2253a05cf8c6SChristian S.J. Peron /* 2254699281b5SAndrey V. Elsukov * NB: We dont call BPF_CHECK_DIRECTION() here since there 2255699281b5SAndrey V. Elsukov * is no way for the caller to indiciate to us whether this 2256699281b5SAndrey V. Elsukov * packet is inbound or outbound. In the bpf_mtap() routines, 2257699281b5SAndrey V. Elsukov * we use the interface pointers on the mbuf to figure it out. 2258a05cf8c6SChristian S.J. Peron */ 2259ae275efcSJung-uk Kim #ifdef BPF_JITTER 2260a36599ccSJung-uk Kim bf = bpf_jitter_enable != 0 ? d->bd_bfilter : NULL; 2261a36599ccSJung-uk Kim if (bf != NULL) 2262a36599ccSJung-uk Kim slen = (*(bf->func))(pkt, pktlen, pktlen); 2263ae275efcSJung-uk Kim else 2264ae275efcSJung-uk Kim #endif 226593e39f0bSChristian S.J. Peron slen = bpf_filter(d->bd_rfilter, pkt, pktlen, pktlen); 2266ec272d87SRobert Watson if (slen != 0) { 2267e4b3229aSAlexander V. Chernikov /* 2268e4b3229aSAlexander V. Chernikov * Filter matches. Let's to acquire write lock. 2269e4b3229aSAlexander V. Chernikov */ 2270afa85850SAlexander V. Chernikov BPFD_LOCK(d); 2271b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_fcount, 1); 2272253a3814SLawrence Stewart if (gottime < bpf_ts_quality(d->bd_tstamp)) 2273699281b5SAndrey V. Elsukov gottime = bpf_gettime(&bt, d->bd_tstamp, 2274699281b5SAndrey V. Elsukov NULL); 2275ec272d87SRobert Watson #ifdef MAC 227630d239bcSRobert Watson if (mac_bpfdesc_check_receive(d, bp->bif_ifp) == 0) 2277ec272d87SRobert Watson #endif 22784d621040SChristian S.J. Peron catchpacket(d, pkt, pktlen, slen, 2279547d94bdSJung-uk Kim bpf_append_bytes, &bt); 2280afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 2281ec272d87SRobert Watson } 2282df8bae1dSRodney W. Grimes } 2283699281b5SAndrey V. Elsukov NET_EPOCH_EXIT(et); 2284df8bae1dSRodney W. Grimes } 2285df8bae1dSRodney W. Grimes 2286f81a2a49SJung-uk Kim #define BPF_CHECK_DIRECTION(d, r, i) \ 2287f81a2a49SJung-uk Kim (((d)->bd_direction == BPF_D_IN && (r) != (i)) || \ 2288f81a2a49SJung-uk Kim ((d)->bd_direction == BPF_D_OUT && (r) == (i))) 2289560a54e1SJung-uk Kim 2290df8bae1dSRodney W. Grimes /* 2291df8bae1dSRodney W. Grimes * Incoming linkage from device drivers, when packet is in an mbuf chain. 2292e4b3229aSAlexander V. Chernikov * Locking model is explained in bpf_tap(). 2293df8bae1dSRodney W. Grimes */ 2294df8bae1dSRodney W. Grimes void 229519ba8395SChristian S.J. Peron bpf_mtap(struct bpf_if *bp, struct mbuf *m) 2296df8bae1dSRodney W. Grimes { 2297699281b5SAndrey V. Elsukov struct epoch_tracker et; 2298547d94bdSJung-uk Kim struct bintime bt; 2299df8bae1dSRodney W. Grimes struct bpf_d *d; 2300a36599ccSJung-uk Kim #ifdef BPF_JITTER 2301a36599ccSJung-uk Kim bpf_jit_filter *bf; 2302a36599ccSJung-uk Kim #endif 2303253a3814SLawrence Stewart u_int pktlen, slen; 2304253a3814SLawrence Stewart int gottime; 230591433904SDavid Malone 23068cd892f7SJung-uk Kim /* Skip outgoing duplicate packets. */ 2307fb3bc596SJohn Baldwin if ((m->m_flags & M_PROMISC) != 0 && m_rcvif(m) == NULL) { 23088cd892f7SJung-uk Kim m->m_flags &= ~M_PROMISC; 23098cd892f7SJung-uk Kim return; 23108cd892f7SJung-uk Kim } 23118cd892f7SJung-uk Kim 2312f0e2422bSPoul-Henning Kamp pktlen = m_length(m, NULL); 2313253a3814SLawrence Stewart gottime = BPF_TSTAMP_NONE; 2314e4b3229aSAlexander V. Chernikov 2315699281b5SAndrey V. Elsukov NET_EPOCH_ENTER(et); 2316699281b5SAndrey V. Elsukov CK_LIST_FOREACH(d, &bp->bif_dlist, bd_next) { 2317fb3bc596SJohn Baldwin if (BPF_CHECK_DIRECTION(d, m_rcvif(m), bp->bif_ifp)) 23188ed3828cSRobert Watson continue; 2319b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_rcount, 1); 2320ae275efcSJung-uk Kim #ifdef BPF_JITTER 2321a36599ccSJung-uk Kim bf = bpf_jitter_enable != 0 ? d->bd_bfilter : NULL; 2322ae275efcSJung-uk Kim /* XXX We cannot handle multiple mbufs. */ 2323a36599ccSJung-uk Kim if (bf != NULL && m->m_next == NULL) 2324699281b5SAndrey V. Elsukov slen = (*(bf->func))(mtod(m, u_char *), pktlen, 2325699281b5SAndrey V. Elsukov pktlen); 2326ae275efcSJung-uk Kim else 2327ae275efcSJung-uk Kim #endif 232893e39f0bSChristian S.J. Peron slen = bpf_filter(d->bd_rfilter, (u_char *)m, pktlen, 0); 23294ddfb531SChristian S.J. Peron if (slen != 0) { 2330afa85850SAlexander V. Chernikov BPFD_LOCK(d); 2331e4b3229aSAlexander V. Chernikov 2332b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_fcount, 1); 2333253a3814SLawrence Stewart if (gottime < bpf_ts_quality(d->bd_tstamp)) 2334253a3814SLawrence Stewart gottime = bpf_gettime(&bt, d->bd_tstamp, m); 23350c7fb534SRobert Watson #ifdef MAC 233630d239bcSRobert Watson if (mac_bpfdesc_check_receive(d, bp->bif_ifp) == 0) 23370c7fb534SRobert Watson #endif 23380c7fb534SRobert Watson catchpacket(d, (u_char *)m, pktlen, slen, 2339547d94bdSJung-uk Kim bpf_append_mbuf, &bt); 2340afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 23414ddfb531SChristian S.J. Peron } 2342df8bae1dSRodney W. Grimes } 2343699281b5SAndrey V. Elsukov NET_EPOCH_EXIT(et); 2344df8bae1dSRodney W. Grimes } 2345df8bae1dSRodney W. Grimes 2346df8bae1dSRodney W. Grimes /* 2347437ffe18SSam Leffler * Incoming linkage from device drivers, when packet is in 2348437ffe18SSam Leffler * an mbuf chain and to be prepended by a contiguous header. 2349437ffe18SSam Leffler */ 2350437ffe18SSam Leffler void 235119ba8395SChristian S.J. Peron bpf_mtap2(struct bpf_if *bp, void *data, u_int dlen, struct mbuf *m) 2352437ffe18SSam Leffler { 2353699281b5SAndrey V. Elsukov struct epoch_tracker et; 2354547d94bdSJung-uk Kim struct bintime bt; 2355437ffe18SSam Leffler struct mbuf mb; 2356437ffe18SSam Leffler struct bpf_d *d; 2357253a3814SLawrence Stewart u_int pktlen, slen; 2358253a3814SLawrence Stewart int gottime; 235991433904SDavid Malone 23608cd892f7SJung-uk Kim /* Skip outgoing duplicate packets. */ 23618cd892f7SJung-uk Kim if ((m->m_flags & M_PROMISC) != 0 && m->m_pkthdr.rcvif == NULL) { 23628cd892f7SJung-uk Kim m->m_flags &= ~M_PROMISC; 23638cd892f7SJung-uk Kim return; 23648cd892f7SJung-uk Kim } 23658cd892f7SJung-uk Kim 2366437ffe18SSam Leffler pktlen = m_length(m, NULL); 2367437ffe18SSam Leffler /* 2368437ffe18SSam Leffler * Craft on-stack mbuf suitable for passing to bpf_filter. 2369437ffe18SSam Leffler * Note that we cut corners here; we only setup what's 2370437ffe18SSam Leffler * absolutely needed--this mbuf should never go anywhere else. 2371437ffe18SSam Leffler */ 2372437ffe18SSam Leffler mb.m_next = m; 2373437ffe18SSam Leffler mb.m_data = data; 2374437ffe18SSam Leffler mb.m_len = dlen; 2375437ffe18SSam Leffler pktlen += dlen; 2376437ffe18SSam Leffler 2377253a3814SLawrence Stewart gottime = BPF_TSTAMP_NONE; 2378e4b3229aSAlexander V. Chernikov 2379699281b5SAndrey V. Elsukov NET_EPOCH_ENTER(et); 2380699281b5SAndrey V. Elsukov CK_LIST_FOREACH(d, &bp->bif_dlist, bd_next) { 2381f81a2a49SJung-uk Kim if (BPF_CHECK_DIRECTION(d, m->m_pkthdr.rcvif, bp->bif_ifp)) 2382437ffe18SSam Leffler continue; 2383b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_rcount, 1); 238493e39f0bSChristian S.J. Peron slen = bpf_filter(d->bd_rfilter, (u_char *)&mb, pktlen, 0); 23854ddfb531SChristian S.J. Peron if (slen != 0) { 2386afa85850SAlexander V. Chernikov BPFD_LOCK(d); 2387e4b3229aSAlexander V. Chernikov 2388b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_fcount, 1); 2389253a3814SLawrence Stewart if (gottime < bpf_ts_quality(d->bd_tstamp)) 2390253a3814SLawrence Stewart gottime = bpf_gettime(&bt, d->bd_tstamp, m); 2391437ffe18SSam Leffler #ifdef MAC 239230d239bcSRobert Watson if (mac_bpfdesc_check_receive(d, bp->bif_ifp) == 0) 2393437ffe18SSam Leffler #endif 2394437ffe18SSam Leffler catchpacket(d, (u_char *)&mb, pktlen, slen, 2395547d94bdSJung-uk Kim bpf_append_mbuf, &bt); 2396afa85850SAlexander V. Chernikov BPFD_UNLOCK(d); 23974ddfb531SChristian S.J. Peron } 2398437ffe18SSam Leffler } 2399699281b5SAndrey V. Elsukov NET_EPOCH_EXIT(et); 2400437ffe18SSam Leffler } 2401437ffe18SSam Leffler 2402560a54e1SJung-uk Kim #undef BPF_CHECK_DIRECTION 2403253a3814SLawrence Stewart #undef BPF_TSTAMP_NONE 2404253a3814SLawrence Stewart #undef BPF_TSTAMP_FAST 2405253a3814SLawrence Stewart #undef BPF_TSTAMP_NORMAL 2406253a3814SLawrence Stewart #undef BPF_TSTAMP_EXTERN 2407253a3814SLawrence Stewart 2408547d94bdSJung-uk Kim static int 2409547d94bdSJung-uk Kim bpf_hdrlen(struct bpf_d *d) 2410547d94bdSJung-uk Kim { 2411547d94bdSJung-uk Kim int hdrlen; 2412547d94bdSJung-uk Kim 2413547d94bdSJung-uk Kim hdrlen = d->bd_bif->bif_hdrlen; 2414547d94bdSJung-uk Kim #ifndef BURN_BRIDGES 2415547d94bdSJung-uk Kim if (d->bd_tstamp == BPF_T_NONE || 2416547d94bdSJung-uk Kim BPF_T_FORMAT(d->bd_tstamp) == BPF_T_MICROTIME) 2417547d94bdSJung-uk Kim #ifdef COMPAT_FREEBSD32 2418547d94bdSJung-uk Kim if (d->bd_compat32) 2419547d94bdSJung-uk Kim hdrlen += SIZEOF_BPF_HDR(struct bpf_hdr32); 2420547d94bdSJung-uk Kim else 2421547d94bdSJung-uk Kim #endif 2422547d94bdSJung-uk Kim hdrlen += SIZEOF_BPF_HDR(struct bpf_hdr); 2423547d94bdSJung-uk Kim else 2424547d94bdSJung-uk Kim #endif 2425547d94bdSJung-uk Kim hdrlen += SIZEOF_BPF_HDR(struct bpf_xhdr); 2426547d94bdSJung-uk Kim #ifdef COMPAT_FREEBSD32 2427547d94bdSJung-uk Kim if (d->bd_compat32) 2428547d94bdSJung-uk Kim hdrlen = BPF_WORDALIGN32(hdrlen); 2429547d94bdSJung-uk Kim else 2430547d94bdSJung-uk Kim #endif 2431547d94bdSJung-uk Kim hdrlen = BPF_WORDALIGN(hdrlen); 2432547d94bdSJung-uk Kim 2433547d94bdSJung-uk Kim return (hdrlen - d->bd_bif->bif_hdrlen); 2434547d94bdSJung-uk Kim } 2435547d94bdSJung-uk Kim 2436547d94bdSJung-uk Kim static void 2437547d94bdSJung-uk Kim bpf_bintime2ts(struct bintime *bt, struct bpf_ts *ts, int tstype) 2438547d94bdSJung-uk Kim { 2439584b675eSKonstantin Belousov struct bintime bt2, boottimebin; 2440547d94bdSJung-uk Kim struct timeval tsm; 2441547d94bdSJung-uk Kim struct timespec tsn; 2442547d94bdSJung-uk Kim 2443253a3814SLawrence Stewart if ((tstype & BPF_T_MONOTONIC) == 0) { 2444253a3814SLawrence Stewart bt2 = *bt; 2445584b675eSKonstantin Belousov getboottimebin(&boottimebin); 2446253a3814SLawrence Stewart bintime_add(&bt2, &boottimebin); 2447253a3814SLawrence Stewart bt = &bt2; 2448253a3814SLawrence Stewart } 2449547d94bdSJung-uk Kim switch (BPF_T_FORMAT(tstype)) { 2450547d94bdSJung-uk Kim case BPF_T_MICROTIME: 2451547d94bdSJung-uk Kim bintime2timeval(bt, &tsm); 2452547d94bdSJung-uk Kim ts->bt_sec = tsm.tv_sec; 2453547d94bdSJung-uk Kim ts->bt_frac = tsm.tv_usec; 2454547d94bdSJung-uk Kim break; 2455547d94bdSJung-uk Kim case BPF_T_NANOTIME: 2456547d94bdSJung-uk Kim bintime2timespec(bt, &tsn); 2457547d94bdSJung-uk Kim ts->bt_sec = tsn.tv_sec; 2458547d94bdSJung-uk Kim ts->bt_frac = tsn.tv_nsec; 2459547d94bdSJung-uk Kim break; 2460547d94bdSJung-uk Kim case BPF_T_BINTIME: 2461547d94bdSJung-uk Kim ts->bt_sec = bt->sec; 2462547d94bdSJung-uk Kim ts->bt_frac = bt->frac; 2463547d94bdSJung-uk Kim break; 2464547d94bdSJung-uk Kim } 2465547d94bdSJung-uk Kim } 2466547d94bdSJung-uk Kim 2467437ffe18SSam Leffler /* 2468df8bae1dSRodney W. Grimes * Move the packet data from interface memory (pkt) into the 24699e610888SDag-Erling Smørgrav * store buffer. "cpfn" is the routine called to do the actual data 2470df8bae1dSRodney W. Grimes * transfer. bcopy is passed in to copy contiguous chunks, while 24714d621040SChristian S.J. Peron * bpf_append_mbuf is passed in to copy mbuf chains. In the latter case, 2472df8bae1dSRodney W. Grimes * pkt is really an mbuf. 2473df8bae1dSRodney W. Grimes */ 2474df8bae1dSRodney W. Grimes static void 247519ba8395SChristian S.J. Peron catchpacket(struct bpf_d *d, u_char *pkt, u_int pktlen, u_int snaplen, 24764d621040SChristian S.J. Peron void (*cpfn)(struct bpf_d *, caddr_t, u_int, void *, u_int), 2477547d94bdSJung-uk Kim struct bintime *bt) 2478df8bae1dSRodney W. Grimes { 2479547d94bdSJung-uk Kim struct bpf_xhdr hdr; 2480547d94bdSJung-uk Kim #ifndef BURN_BRIDGES 2481547d94bdSJung-uk Kim struct bpf_hdr hdr_old; 2482fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 2483547d94bdSJung-uk Kim struct bpf_hdr32 hdr32_old; 2484fc0a61a4SKonstantin Belousov #endif 2485547d94bdSJung-uk Kim #endif 2486547d94bdSJung-uk Kim int caplen, curlen, hdrlen, totlen; 24877819da79SJohn-Mark Gurney int do_wakeup = 0; 2488547d94bdSJung-uk Kim int do_timestamp; 2489547d94bdSJung-uk Kim int tstype; 24909e610888SDag-Erling Smørgrav 2491afa85850SAlexander V. Chernikov BPFD_LOCK_ASSERT(d); 2492*de253273SAndrey V. Elsukov if (d->bd_bif == NULL) { 2493*de253273SAndrey V. Elsukov /* Descriptor was detached in concurrent thread */ 2494*de253273SAndrey V. Elsukov counter_u64_add(d->bd_dcount, 1); 2495*de253273SAndrey V. Elsukov return; 2496*de253273SAndrey V. Elsukov } 24974d621040SChristian S.J. Peron 24984d621040SChristian S.J. Peron /* 24994d621040SChristian S.J. Peron * Detect whether user space has released a buffer back to us, and if 25004d621040SChristian S.J. Peron * so, move it from being a hold buffer to a free buffer. This may 25014d621040SChristian S.J. Peron * not be the best place to do it (for example, we might only want to 25024d621040SChristian S.J. Peron * run this check if we need the space), but for now it's a reliable 25034d621040SChristian S.J. Peron * spot to do it. 25044d621040SChristian S.J. Peron */ 2505fa0c2b34SRobert Watson if (d->bd_fbuf == NULL && bpf_canfreebuf(d)) { 25064d621040SChristian S.J. Peron d->bd_fbuf = d->bd_hbuf; 25074d621040SChristian S.J. Peron d->bd_hbuf = NULL; 25084d621040SChristian S.J. Peron d->bd_hlen = 0; 250929f612ecSChristian S.J. Peron bpf_buf_reclaimed(d); 25104d621040SChristian S.J. Peron } 25114d621040SChristian S.J. Peron 2512df8bae1dSRodney W. Grimes /* 2513df8bae1dSRodney W. Grimes * Figure out how many bytes to move. If the packet is 2514df8bae1dSRodney W. Grimes * greater or equal to the snapshot length, transfer that 2515df8bae1dSRodney W. Grimes * much. Otherwise, transfer the whole packet (unless 2516df8bae1dSRodney W. Grimes * we hit the buffer size limit). 2517df8bae1dSRodney W. Grimes */ 2518547d94bdSJung-uk Kim hdrlen = bpf_hdrlen(d); 2519df8bae1dSRodney W. Grimes totlen = hdrlen + min(snaplen, pktlen); 2520df8bae1dSRodney W. Grimes if (totlen > d->bd_bufsize) 2521df8bae1dSRodney W. Grimes totlen = d->bd_bufsize; 2522df8bae1dSRodney W. Grimes 2523df8bae1dSRodney W. Grimes /* 2524df8bae1dSRodney W. Grimes * Round up the end of the previous packet to the next longword. 2525a7a91e65SRobert Watson * 2526a7a91e65SRobert Watson * Drop the packet if there's no room and no hope of room 2527a7a91e65SRobert Watson * If the packet would overflow the storage buffer or the storage 2528a7a91e65SRobert Watson * buffer is considered immutable by the buffer model, try to rotate 2529a7a91e65SRobert Watson * the buffer and wakeup pending processes. 2530df8bae1dSRodney W. Grimes */ 2531fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 2532fc0a61a4SKonstantin Belousov if (d->bd_compat32) 2533fc0a61a4SKonstantin Belousov curlen = BPF_WORDALIGN32(d->bd_slen); 2534fc0a61a4SKonstantin Belousov else 2535fc0a61a4SKonstantin Belousov #endif 2536df8bae1dSRodney W. Grimes curlen = BPF_WORDALIGN(d->bd_slen); 2537a7a91e65SRobert Watson if (curlen + totlen > d->bd_bufsize || !bpf_canwritebuf(d)) { 2538572bde2aSRobert Watson if (d->bd_fbuf == NULL) { 2539df8bae1dSRodney W. Grimes /* 2540a7a91e65SRobert Watson * There's no room in the store buffer, and no 2541a7a91e65SRobert Watson * prospect of room, so drop the packet. Notify the 2542a7a91e65SRobert Watson * buffer model. 2543df8bae1dSRodney W. Grimes */ 2544a7a91e65SRobert Watson bpf_buffull(d); 2545b2b7ca49SAlexander V. Chernikov counter_u64_add(d->bd_dcount, 1); 2546df8bae1dSRodney W. Grimes return; 2547df8bae1dSRodney W. Grimes } 254898fa5d85SLuiz Otavio O Souza KASSERT(!d->bd_hbuf_in_use, ("hold buffer is in use")); 2549df8bae1dSRodney W. Grimes ROTATE_BUFFERS(d); 25507819da79SJohn-Mark Gurney do_wakeup = 1; 2551df8bae1dSRodney W. Grimes curlen = 0; 2552a7a91e65SRobert Watson } else if (d->bd_immediate || d->bd_state == BPF_TIMED_OUT) 2553df8bae1dSRodney W. Grimes /* 25544d621040SChristian S.J. Peron * Immediate mode is set, or the read timeout has already 25554d621040SChristian S.J. Peron * expired during a select call. A packet arrived, so the 25564d621040SChristian S.J. Peron * reader should be woken up. 2557df8bae1dSRodney W. Grimes */ 25587819da79SJohn-Mark Gurney do_wakeup = 1; 2559547d94bdSJung-uk Kim caplen = totlen - hdrlen; 2560547d94bdSJung-uk Kim tstype = d->bd_tstamp; 2561547d94bdSJung-uk Kim do_timestamp = tstype != BPF_T_NONE; 2562547d94bdSJung-uk Kim #ifndef BURN_BRIDGES 2563547d94bdSJung-uk Kim if (tstype == BPF_T_NONE || BPF_T_FORMAT(tstype) == BPF_T_MICROTIME) { 2564547d94bdSJung-uk Kim struct bpf_ts ts; 2565547d94bdSJung-uk Kim if (do_timestamp) 2566547d94bdSJung-uk Kim bpf_bintime2ts(bt, &ts, tstype); 2567fc0a61a4SKonstantin Belousov #ifdef COMPAT_FREEBSD32 2568fc0a61a4SKonstantin Belousov if (d->bd_compat32) { 2569547d94bdSJung-uk Kim bzero(&hdr32_old, sizeof(hdr32_old)); 2570547d94bdSJung-uk Kim if (do_timestamp) { 2571547d94bdSJung-uk Kim hdr32_old.bh_tstamp.tv_sec = ts.bt_sec; 2572547d94bdSJung-uk Kim hdr32_old.bh_tstamp.tv_usec = ts.bt_frac; 2573547d94bdSJung-uk Kim } 2574547d94bdSJung-uk Kim hdr32_old.bh_datalen = pktlen; 2575547d94bdSJung-uk Kim hdr32_old.bh_hdrlen = hdrlen; 2576547d94bdSJung-uk Kim hdr32_old.bh_caplen = caplen; 2577547d94bdSJung-uk Kim bpf_append_bytes(d, d->bd_sbuf, curlen, &hdr32_old, 2578547d94bdSJung-uk Kim sizeof(hdr32_old)); 2579547d94bdSJung-uk Kim goto copy; 2580547d94bdSJung-uk Kim } 2581547d94bdSJung-uk Kim #endif 2582547d94bdSJung-uk Kim bzero(&hdr_old, sizeof(hdr_old)); 2583547d94bdSJung-uk Kim if (do_timestamp) { 2584547d94bdSJung-uk Kim hdr_old.bh_tstamp.tv_sec = ts.bt_sec; 2585547d94bdSJung-uk Kim hdr_old.bh_tstamp.tv_usec = ts.bt_frac; 2586547d94bdSJung-uk Kim } 2587547d94bdSJung-uk Kim hdr_old.bh_datalen = pktlen; 2588547d94bdSJung-uk Kim hdr_old.bh_hdrlen = hdrlen; 2589547d94bdSJung-uk Kim hdr_old.bh_caplen = caplen; 2590547d94bdSJung-uk Kim bpf_append_bytes(d, d->bd_sbuf, curlen, &hdr_old, 2591547d94bdSJung-uk Kim sizeof(hdr_old)); 2592fc0a61a4SKonstantin Belousov goto copy; 2593fc0a61a4SKonstantin Belousov } 2594fc0a61a4SKonstantin Belousov #endif 2595df8bae1dSRodney W. Grimes 2596df8bae1dSRodney W. Grimes /* 25974d621040SChristian S.J. Peron * Append the bpf header. Note we append the actual header size, but 25984d621040SChristian S.J. Peron * move forward the length of the header plus padding. 2599df8bae1dSRodney W. Grimes */ 26004d621040SChristian S.J. Peron bzero(&hdr, sizeof(hdr)); 2601547d94bdSJung-uk Kim if (do_timestamp) 2602547d94bdSJung-uk Kim bpf_bintime2ts(bt, &hdr.bh_tstamp, tstype); 26034d621040SChristian S.J. Peron hdr.bh_datalen = pktlen; 26044d621040SChristian S.J. Peron hdr.bh_hdrlen = hdrlen; 2605547d94bdSJung-uk Kim hdr.bh_caplen = caplen; 26064d621040SChristian S.J. Peron bpf_append_bytes(d, d->bd_sbuf, curlen, &hdr, sizeof(hdr)); 26074d621040SChristian S.J. Peron 2608df8bae1dSRodney W. Grimes /* 2609df8bae1dSRodney W. Grimes * Copy the packet data into the store buffer and update its length. 2610df8bae1dSRodney W. Grimes */ 2611547d94bdSJung-uk Kim #ifndef BURN_BRIDGES 2612fc0a61a4SKonstantin Belousov copy: 2613fc0a61a4SKonstantin Belousov #endif 2614547d94bdSJung-uk Kim (*cpfn)(d, d->bd_sbuf, curlen + hdrlen, pkt, caplen); 2615df8bae1dSRodney W. Grimes d->bd_slen = curlen + totlen; 26167819da79SJohn-Mark Gurney 26177819da79SJohn-Mark Gurney if (do_wakeup) 26187819da79SJohn-Mark Gurney bpf_wakeup(d); 2619df8bae1dSRodney W. Grimes } 2620df8bae1dSRodney W. Grimes 2621df8bae1dSRodney W. Grimes /* 2622df8bae1dSRodney W. Grimes * Free buffers currently in use by a descriptor. 2623df8bae1dSRodney W. Grimes * Called on close. 2624df8bae1dSRodney W. Grimes */ 2625df8bae1dSRodney W. Grimes static void 2626699281b5SAndrey V. Elsukov bpfd_free(epoch_context_t ctx) 2627df8bae1dSRodney W. Grimes { 2628699281b5SAndrey V. Elsukov struct bpf_d *d; 2629699281b5SAndrey V. Elsukov struct bpf_program_buffer *p; 26304d621040SChristian S.J. Peron 2631df8bae1dSRodney W. Grimes /* 2632df8bae1dSRodney W. Grimes * We don't need to lock out interrupts since this descriptor has 2633df8bae1dSRodney W. Grimes * been detached from its interface and it yet hasn't been marked 2634df8bae1dSRodney W. Grimes * free. 2635df8bae1dSRodney W. Grimes */ 2636699281b5SAndrey V. Elsukov d = __containerof(ctx, struct bpf_d, epoch_ctx); 26374d621040SChristian S.J. Peron bpf_free(d); 263870485847SJung-uk Kim if (d->bd_rfilter != NULL) { 2639699281b5SAndrey V. Elsukov p = __containerof((void *)d->bd_rfilter, 2640699281b5SAndrey V. Elsukov struct bpf_program_buffer, buffer); 2641af1f58dfSAndrey V. Elsukov #ifdef BPF_JITTER 2642af1f58dfSAndrey V. Elsukov p->func = d->bd_bfilter; 2643af1f58dfSAndrey V. Elsukov #endif 2644699281b5SAndrey V. Elsukov bpf_program_buffer_free(&p->epoch_ctx); 2645ae275efcSJung-uk Kim } 2646699281b5SAndrey V. Elsukov if (d->bd_wfilter != NULL) { 2647699281b5SAndrey V. Elsukov p = __containerof((void *)d->bd_wfilter, 2648699281b5SAndrey V. Elsukov struct bpf_program_buffer, buffer); 2649af1f58dfSAndrey V. Elsukov #ifdef BPF_JITTER 2650af1f58dfSAndrey V. Elsukov p->func = NULL; 2651af1f58dfSAndrey V. Elsukov #endif 2652699281b5SAndrey V. Elsukov bpf_program_buffer_free(&p->epoch_ctx); 2653699281b5SAndrey V. Elsukov } 2654b2b7ca49SAlexander V. Chernikov 2655699281b5SAndrey V. Elsukov mtx_destroy(&d->bd_lock); 2656b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_rcount); 2657b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_dcount); 2658b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_fcount); 2659b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_wcount); 2660b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_wfcount); 2661b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_wdcount); 2662b2b7ca49SAlexander V. Chernikov counter_u64_free(d->bd_zcopy); 2663699281b5SAndrey V. Elsukov free(d, M_BPF); 2664df8bae1dSRodney W. Grimes } 2665df8bae1dSRodney W. Grimes 2666df8bae1dSRodney W. Grimes /* 266724a229f4SSam Leffler * Attach an interface to bpf. dlt is the link layer type; hdrlen is the 266824a229f4SSam Leffler * fixed size of the link header (variable length headers not yet supported). 2669df8bae1dSRodney W. Grimes */ 2670df8bae1dSRodney W. Grimes void 267119ba8395SChristian S.J. Peron bpfattach(struct ifnet *ifp, u_int dlt, u_int hdrlen) 2672df8bae1dSRodney W. Grimes { 267324a229f4SSam Leffler 267424a229f4SSam Leffler bpfattach2(ifp, dlt, hdrlen, &ifp->if_bpf); 267524a229f4SSam Leffler } 267624a229f4SSam Leffler 267724a229f4SSam Leffler /* 267824a229f4SSam Leffler * Attach an interface to bpf. ifp is a pointer to the structure 267924a229f4SSam Leffler * defining the interface to be attached, dlt is the link layer type, 268024a229f4SSam Leffler * and hdrlen is the fixed size of the link header (variable length 268124a229f4SSam Leffler * headers are not yet supporrted). 268224a229f4SSam Leffler */ 268324a229f4SSam Leffler void 2684699281b5SAndrey V. Elsukov bpfattach2(struct ifnet *ifp, u_int dlt, u_int hdrlen, 2685699281b5SAndrey V. Elsukov struct bpf_if **driverp) 268624a229f4SSam Leffler { 2687df8bae1dSRodney W. Grimes struct bpf_if *bp; 268819ba8395SChristian S.J. Peron 2689699281b5SAndrey V. Elsukov KASSERT(*driverp == NULL, 2690699281b5SAndrey V. Elsukov ("bpfattach2: driverp already initialized")); 2691df8bae1dSRodney W. Grimes 2692c5be49daSAndrey V. Elsukov bp = malloc(sizeof(*bp), M_BPF, M_WAITOK | M_ZERO); 2693c5be49daSAndrey V. Elsukov 2694699281b5SAndrey V. Elsukov CK_LIST_INIT(&bp->bif_dlist); 2695699281b5SAndrey V. Elsukov CK_LIST_INIT(&bp->bif_wlist); 2696df8bae1dSRodney W. Grimes bp->bif_ifp = ifp; 2697df8bae1dSRodney W. Grimes bp->bif_dlt = dlt; 2698c5be49daSAndrey V. Elsukov bp->bif_hdrlen = hdrlen; 26999ce40d32SKristof Provost bp->bif_bpf = driverp; 2700699281b5SAndrey V. Elsukov bp->bif_refcnt = 1; 270116d878ccSChristian S.J. Peron *driverp = bp; 2702699281b5SAndrey V. Elsukov /* 2703699281b5SAndrey V. Elsukov * Reference ifnet pointer, so it won't freed until 2704699281b5SAndrey V. Elsukov * we release it. 2705699281b5SAndrey V. Elsukov */ 2706699281b5SAndrey V. Elsukov if_ref(ifp); 2707e4b3229aSAlexander V. Chernikov BPF_LOCK(); 2708699281b5SAndrey V. Elsukov CK_LIST_INSERT_HEAD(&bpf_iflist, bp, bif_next); 2709e4b3229aSAlexander V. Chernikov BPF_UNLOCK(); 2710df8bae1dSRodney W. Grimes 2711616bc4f4SBjoern A. Zeeb if (bootverbose && IS_DEFAULT_VNET(curvnet)) 271224a229f4SSam Leffler if_printf(ifp, "bpf attached\n"); 2713df8bae1dSRodney W. Grimes } 271453ac6efbSJulian Elischer 271505fc4164SBjoern A. Zeeb #ifdef VIMAGE 271605fc4164SBjoern A. Zeeb /* 271705fc4164SBjoern A. Zeeb * When moving interfaces between vnet instances we need a way to 271805fc4164SBjoern A. Zeeb * query the dlt and hdrlen before detach so we can re-attch the if_bpf 271905fc4164SBjoern A. Zeeb * after the vmove. We unfortunately have no device driver infrastructure 272005fc4164SBjoern A. Zeeb * to query the interface for these values after creation/attach, thus 272105fc4164SBjoern A. Zeeb * add this as a workaround. 272205fc4164SBjoern A. Zeeb */ 272305fc4164SBjoern A. Zeeb int 272405fc4164SBjoern A. Zeeb bpf_get_bp_params(struct bpf_if *bp, u_int *bif_dlt, u_int *bif_hdrlen) 272505fc4164SBjoern A. Zeeb { 272605fc4164SBjoern A. Zeeb 272705fc4164SBjoern A. Zeeb if (bp == NULL) 272805fc4164SBjoern A. Zeeb return (ENXIO); 272905fc4164SBjoern A. Zeeb if (bif_dlt == NULL && bif_hdrlen == NULL) 273005fc4164SBjoern A. Zeeb return (0); 273105fc4164SBjoern A. Zeeb 273205fc4164SBjoern A. Zeeb if (bif_dlt != NULL) 273305fc4164SBjoern A. Zeeb *bif_dlt = bp->bif_dlt; 273405fc4164SBjoern A. Zeeb if (bif_hdrlen != NULL) 273505fc4164SBjoern A. Zeeb *bif_hdrlen = bp->bif_hdrlen; 273605fc4164SBjoern A. Zeeb 273705fc4164SBjoern A. Zeeb return (0); 273805fc4164SBjoern A. Zeeb } 273905fc4164SBjoern A. Zeeb #endif 274005fc4164SBjoern A. Zeeb 2741de5d9935SRobert Watson /* 2742de5d9935SRobert Watson * Detach bpf from an interface. This involves detaching each descriptor 27436c74ff0eSAlexander V. Chernikov * associated with the interface. Notify each descriptor as it's detached 27446c74ff0eSAlexander V. Chernikov * so that any sleepers wake up and get ENXIO. 2745de5d9935SRobert Watson */ 2746de5d9935SRobert Watson void 274719ba8395SChristian S.J. Peron bpfdetach(struct ifnet *ifp) 2748de5d9935SRobert Watson { 2749f079a0faSAlexander V. Chernikov struct bpf_if *bp, *bp_temp; 2750de5d9935SRobert Watson struct bpf_d *d; 27519a7e6bacSLawrence Stewart 2752afa85850SAlexander V. Chernikov BPF_LOCK(); 27539a7e6bacSLawrence Stewart /* Find all bpf_if struct's which reference ifp and detach them. */ 2754699281b5SAndrey V. Elsukov CK_LIST_FOREACH_SAFE(bp, &bpf_iflist, bif_next, bp_temp) { 2755f079a0faSAlexander V. Chernikov if (ifp != bp->bif_ifp) 2756f079a0faSAlexander V. Chernikov continue; 2757de5d9935SRobert Watson 2758699281b5SAndrey V. Elsukov CK_LIST_REMOVE(bp, bif_next); 27598bd1f0cfSMark Johnston *bp->bif_bpf = (struct bpf_if *)&dead_bpf_if; 2760f079a0faSAlexander V. Chernikov 2761699281b5SAndrey V. Elsukov CTR4(KTR_NET, 2762699281b5SAndrey V. Elsukov "%s: sheduling free for encap %d (%p) for if %p", 2763f079a0faSAlexander V. Chernikov __func__, bp->bif_dlt, bp, ifp); 2764f079a0faSAlexander V. Chernikov 2765699281b5SAndrey V. Elsukov /* Detach common descriptors */ 2766699281b5SAndrey V. Elsukov while ((d = CK_LIST_FIRST(&bp->bif_dlist)) != NULL) { 2767699281b5SAndrey V. Elsukov bpf_detachd_locked(d, true); 2768e7bb21b3SJonathan Lemon } 2769f079a0faSAlexander V. Chernikov 2770699281b5SAndrey V. Elsukov /* Detach writer-only descriptors */ 2771699281b5SAndrey V. Elsukov while ((d = CK_LIST_FIRST(&bp->bif_wlist)) != NULL) { 2772699281b5SAndrey V. Elsukov bpf_detachd_locked(d, true); 27736c74ff0eSAlexander V. Chernikov } 2774699281b5SAndrey V. Elsukov bpfif_rele(bp); 2775f079a0faSAlexander V. Chernikov } 2776f079a0faSAlexander V. Chernikov BPF_UNLOCK(); 2777afa85850SAlexander V. Chernikov } 2778afa85850SAlexander V. Chernikov 2779afa85850SAlexander V. Chernikov /* 27808eab61f3SSam Leffler * Get a list of available data link type of the interface. 27818eab61f3SSam Leffler */ 27828eab61f3SSam Leffler static int 278319ba8395SChristian S.J. Peron bpf_getdltlist(struct bpf_d *d, struct bpf_dltlist *bfl) 27848eab61f3SSam Leffler { 27858eab61f3SSam Leffler struct ifnet *ifp; 27868eab61f3SSam Leffler struct bpf_if *bp; 278770209acaSKonstantin Belousov u_int *lst; 278870209acaSKonstantin Belousov int error, n, n1; 27898eab61f3SSam Leffler 279097aacec6SAlexander V. Chernikov BPF_LOCK_ASSERT(); 279197aacec6SAlexander V. Chernikov 27928eab61f3SSam Leffler ifp = d->bd_bif->bif_ifp; 279370209acaSKonstantin Belousov n1 = 0; 2794699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bp, &bpf_iflist, bif_next) { 279570209acaSKonstantin Belousov if (bp->bif_ifp == ifp) 279670209acaSKonstantin Belousov n1++; 279770209acaSKonstantin Belousov } 279870209acaSKonstantin Belousov if (bfl->bfl_list == NULL) { 279970209acaSKonstantin Belousov bfl->bfl_len = n1; 280070209acaSKonstantin Belousov return (0); 280170209acaSKonstantin Belousov } 280270209acaSKonstantin Belousov if (n1 > bfl->bfl_len) 280370209acaSKonstantin Belousov return (ENOMEM); 2804699281b5SAndrey V. Elsukov 280570209acaSKonstantin Belousov lst = malloc(n1 * sizeof(u_int), M_TEMP, M_WAITOK); 28068eab61f3SSam Leffler n = 0; 2807699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bp, &bpf_iflist, bif_next) { 28088eab61f3SSam Leffler if (bp->bif_ifp != ifp) 28098eab61f3SSam Leffler continue; 2810699281b5SAndrey V. Elsukov lst[n++] = bp->bif_dlt; 28118eab61f3SSam Leffler } 281270209acaSKonstantin Belousov error = copyout(lst, bfl->bfl_list, sizeof(u_int) * n); 281370209acaSKonstantin Belousov free(lst, M_TEMP); 28148eab61f3SSam Leffler bfl->bfl_len = n; 28158eab61f3SSam Leffler return (error); 28168eab61f3SSam Leffler } 28178eab61f3SSam Leffler 28188eab61f3SSam Leffler /* 28198eab61f3SSam Leffler * Set the data link type of a BPF instance. 28208eab61f3SSam Leffler */ 28218eab61f3SSam Leffler static int 282219ba8395SChristian S.J. Peron bpf_setdlt(struct bpf_d *d, u_int dlt) 28238eab61f3SSam Leffler { 28248eab61f3SSam Leffler int error, opromisc; 28258eab61f3SSam Leffler struct ifnet *ifp; 28268eab61f3SSam Leffler struct bpf_if *bp; 28278eab61f3SSam Leffler 28286c74ff0eSAlexander V. Chernikov BPF_LOCK_ASSERT(); 2829699281b5SAndrey V. Elsukov MPASS(d->bd_bif != NULL); 28306c74ff0eSAlexander V. Chernikov 2831699281b5SAndrey V. Elsukov /* 2832699281b5SAndrey V. Elsukov * It is safe to check bd_bif without BPFD_LOCK, it can not be 2833699281b5SAndrey V. Elsukov * changed while we hold global lock. 2834699281b5SAndrey V. Elsukov */ 28358eab61f3SSam Leffler if (d->bd_bif->bif_dlt == dlt) 28368eab61f3SSam Leffler return (0); 28376c74ff0eSAlexander V. Chernikov 2838699281b5SAndrey V. Elsukov ifp = d->bd_bif->bif_ifp; 2839699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bp, &bpf_iflist, bif_next) { 28408eab61f3SSam Leffler if (bp->bif_ifp == ifp && bp->bif_dlt == dlt) 28418eab61f3SSam Leffler break; 28428eab61f3SSam Leffler } 2843699281b5SAndrey V. Elsukov if (bp == NULL) 2844699281b5SAndrey V. Elsukov return (EINVAL); 28456c74ff0eSAlexander V. Chernikov 28468eab61f3SSam Leffler opromisc = d->bd_promisc; 28478eab61f3SSam Leffler bpf_attachd(d, bp); 28488eab61f3SSam Leffler if (opromisc) { 28498eab61f3SSam Leffler error = ifpromisc(bp->bif_ifp, 1); 28508eab61f3SSam Leffler if (error) 2851699281b5SAndrey V. Elsukov if_printf(bp->bif_ifp, "%s: ifpromisc failed (%d)\n", 2852699281b5SAndrey V. Elsukov __func__, error); 28538eab61f3SSam Leffler else 28548eab61f3SSam Leffler d->bd_promisc = 1; 28558eab61f3SSam Leffler } 2856699281b5SAndrey V. Elsukov return (0); 2857de5d9935SRobert Watson } 2858de5d9935SRobert Watson 28593f54a085SPoul-Henning Kamp static void 286019ba8395SChristian S.J. Peron bpf_drvinit(void *unused) 286153ac6efbSJulian Elischer { 2862136600feSEd Schouten struct cdev *dev; 286353ac6efbSJulian Elischer 2864f422673eSStephen Hurd sx_init(&bpf_sx, "bpf global lock"); 2865699281b5SAndrey V. Elsukov CK_LIST_INIT(&bpf_iflist); 2866136600feSEd Schouten 2867136600feSEd Schouten dev = make_dev(&bpf_cdevsw, 0, UID_ROOT, GID_WHEEL, 0600, "bpf"); 2868136600feSEd Schouten /* For compatibility */ 2869136600feSEd Schouten make_dev_alias(dev, "bpf0"); 28707198bf47SJulian Elischer } 287153ac6efbSJulian Elischer 28720e37f3e1SChristian S.J. Peron /* 28730e37f3e1SChristian S.J. Peron * Zero out the various packet counters associated with all of the bpf 28740e37f3e1SChristian S.J. Peron * descriptors. At some point, we will probably want to get a bit more 28750e37f3e1SChristian S.J. Peron * granular and allow the user to specify descriptors to be zeroed. 28760e37f3e1SChristian S.J. Peron */ 28770e37f3e1SChristian S.J. Peron static void 28780e37f3e1SChristian S.J. Peron bpf_zero_counters(void) 28790e37f3e1SChristian S.J. Peron { 28800e37f3e1SChristian S.J. Peron struct bpf_if *bp; 28810e37f3e1SChristian S.J. Peron struct bpf_d *bd; 28820e37f3e1SChristian S.J. Peron 2883e4b3229aSAlexander V. Chernikov BPF_LOCK(); 2884699281b5SAndrey V. Elsukov /* 2885699281b5SAndrey V. Elsukov * We are protected by global lock here, interfaces and 2886699281b5SAndrey V. Elsukov * descriptors can not be deleted while we hold it. 2887699281b5SAndrey V. Elsukov */ 2888699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bp, &bpf_iflist, bif_next) { 2889699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bd, &bp->bif_dlist, bd_next) { 2890b2b7ca49SAlexander V. Chernikov counter_u64_zero(bd->bd_rcount); 2891b2b7ca49SAlexander V. Chernikov counter_u64_zero(bd->bd_dcount); 2892b2b7ca49SAlexander V. Chernikov counter_u64_zero(bd->bd_fcount); 2893b2b7ca49SAlexander V. Chernikov counter_u64_zero(bd->bd_wcount); 2894b2b7ca49SAlexander V. Chernikov counter_u64_zero(bd->bd_wfcount); 2895b2b7ca49SAlexander V. Chernikov counter_u64_zero(bd->bd_zcopy); 28960e37f3e1SChristian S.J. Peron } 28970e37f3e1SChristian S.J. Peron } 2898e4b3229aSAlexander V. Chernikov BPF_UNLOCK(); 28990e37f3e1SChristian S.J. Peron } 29000e37f3e1SChristian S.J. Peron 29016c74ff0eSAlexander V. Chernikov /* 29026c74ff0eSAlexander V. Chernikov * Fill filter statistics 29036c74ff0eSAlexander V. Chernikov */ 290469f7644bSChristian S.J. Peron static void 290569f7644bSChristian S.J. Peron bpfstats_fill_xbpf(struct xbpf_d *d, struct bpf_d *bd) 290669f7644bSChristian S.J. Peron { 290769f7644bSChristian S.J. Peron 2908699281b5SAndrey V. Elsukov BPF_LOCK_ASSERT(); 290969f7644bSChristian S.J. Peron bzero(d, sizeof(*d)); 29104d621040SChristian S.J. Peron d->bd_structsize = sizeof(*d); 291169f7644bSChristian S.J. Peron d->bd_immediate = bd->bd_immediate; 291269f7644bSChristian S.J. Peron d->bd_promisc = bd->bd_promisc; 291369f7644bSChristian S.J. Peron d->bd_hdrcmplt = bd->bd_hdrcmplt; 2914560a54e1SJung-uk Kim d->bd_direction = bd->bd_direction; 2915560a54e1SJung-uk Kim d->bd_feedback = bd->bd_feedback; 291669f7644bSChristian S.J. Peron d->bd_async = bd->bd_async; 2917b2b7ca49SAlexander V. Chernikov d->bd_rcount = counter_u64_fetch(bd->bd_rcount); 2918b2b7ca49SAlexander V. Chernikov d->bd_dcount = counter_u64_fetch(bd->bd_dcount); 2919b2b7ca49SAlexander V. Chernikov d->bd_fcount = counter_u64_fetch(bd->bd_fcount); 292069f7644bSChristian S.J. Peron d->bd_sig = bd->bd_sig; 292169f7644bSChristian S.J. Peron d->bd_slen = bd->bd_slen; 292269f7644bSChristian S.J. Peron d->bd_hlen = bd->bd_hlen; 292369f7644bSChristian S.J. Peron d->bd_bufsize = bd->bd_bufsize; 292469f7644bSChristian S.J. Peron d->bd_pid = bd->bd_pid; 292569f7644bSChristian S.J. Peron strlcpy(d->bd_ifname, 292669f7644bSChristian S.J. Peron bd->bd_bif->bif_ifp->if_xname, IFNAMSIZ); 292793e39f0bSChristian S.J. Peron d->bd_locked = bd->bd_locked; 2928b2b7ca49SAlexander V. Chernikov d->bd_wcount = counter_u64_fetch(bd->bd_wcount); 2929b2b7ca49SAlexander V. Chernikov d->bd_wdcount = counter_u64_fetch(bd->bd_wdcount); 2930b2b7ca49SAlexander V. Chernikov d->bd_wfcount = counter_u64_fetch(bd->bd_wfcount); 2931b2b7ca49SAlexander V. Chernikov d->bd_zcopy = counter_u64_fetch(bd->bd_zcopy); 29324d621040SChristian S.J. Peron d->bd_bufmode = bd->bd_bufmode; 293369f7644bSChristian S.J. Peron } 293469f7644bSChristian S.J. Peron 29356c74ff0eSAlexander V. Chernikov /* 29366c74ff0eSAlexander V. Chernikov * Handle `netstat -B' stats request 29376c74ff0eSAlexander V. Chernikov */ 293869f7644bSChristian S.J. Peron static int 293969f7644bSChristian S.J. Peron bpf_stats_sysctl(SYSCTL_HANDLER_ARGS) 294069f7644bSChristian S.J. Peron { 29410e1152fcSHans Petter Selasky static const struct xbpf_d zerostats; 29420e1152fcSHans Petter Selasky struct xbpf_d *xbdbuf, *xbd, tempstats; 2943422a63daSChristian S.J. Peron int index, error; 294469f7644bSChristian S.J. Peron struct bpf_if *bp; 294569f7644bSChristian S.J. Peron struct bpf_d *bd; 294669f7644bSChristian S.J. Peron 294769f7644bSChristian S.J. Peron /* 294869f7644bSChristian S.J. Peron * XXX This is not technically correct. It is possible for non 294969f7644bSChristian S.J. Peron * privileged users to open bpf devices. It would make sense 295069f7644bSChristian S.J. Peron * if the users who opened the devices were able to retrieve 295169f7644bSChristian S.J. Peron * the statistics for them, too. 295269f7644bSChristian S.J. Peron */ 2953acd3428bSRobert Watson error = priv_check(req->td, PRIV_NET_BPF); 295469f7644bSChristian S.J. Peron if (error) 295569f7644bSChristian S.J. Peron return (error); 29560e37f3e1SChristian S.J. Peron /* 29570e37f3e1SChristian S.J. Peron * Check to see if the user is requesting that the counters be 29580e37f3e1SChristian S.J. Peron * zeroed out. Explicitly check that the supplied data is zeroed, 29590e37f3e1SChristian S.J. Peron * as we aren't allowing the user to set the counters currently. 29600e37f3e1SChristian S.J. Peron */ 29610e37f3e1SChristian S.J. Peron if (req->newptr != NULL) { 29620e1152fcSHans Petter Selasky if (req->newlen != sizeof(tempstats)) 29630e37f3e1SChristian S.J. Peron return (EINVAL); 29640e1152fcSHans Petter Selasky memset(&tempstats, 0, sizeof(tempstats)); 29650e1152fcSHans Petter Selasky error = SYSCTL_IN(req, &tempstats, sizeof(tempstats)); 29660e1152fcSHans Petter Selasky if (error) 29670e1152fcSHans Petter Selasky return (error); 29680e1152fcSHans Petter Selasky if (bcmp(&tempstats, &zerostats, sizeof(tempstats)) != 0) 29690e37f3e1SChristian S.J. Peron return (EINVAL); 29700e37f3e1SChristian S.J. Peron bpf_zero_counters(); 29710e37f3e1SChristian S.J. Peron return (0); 29720e37f3e1SChristian S.J. Peron } 297369f7644bSChristian S.J. Peron if (req->oldptr == NULL) 2974422a63daSChristian S.J. Peron return (SYSCTL_OUT(req, 0, bpf_bpfd_cnt * sizeof(*xbd))); 297569f7644bSChristian S.J. Peron if (bpf_bpfd_cnt == 0) 297669f7644bSChristian S.J. Peron return (SYSCTL_OUT(req, 0, 0)); 2977422a63daSChristian S.J. Peron xbdbuf = malloc(req->oldlen, M_BPF, M_WAITOK); 2978e4b3229aSAlexander V. Chernikov BPF_LOCK(); 2979422a63daSChristian S.J. Peron if (req->oldlen < (bpf_bpfd_cnt * sizeof(*xbd))) { 2980e4b3229aSAlexander V. Chernikov BPF_UNLOCK(); 2981422a63daSChristian S.J. Peron free(xbdbuf, M_BPF); 2982422a63daSChristian S.J. Peron return (ENOMEM); 2983422a63daSChristian S.J. Peron } 2984422a63daSChristian S.J. Peron index = 0; 2985699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bp, &bpf_iflist, bif_next) { 298651ec1eb7SAlexander V. Chernikov /* Send writers-only first */ 2987699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bd, &bp->bif_wlist, bd_next) { 298851ec1eb7SAlexander V. Chernikov xbd = &xbdbuf[index++]; 298951ec1eb7SAlexander V. Chernikov bpfstats_fill_xbpf(xbd, bd); 299051ec1eb7SAlexander V. Chernikov } 2991699281b5SAndrey V. Elsukov CK_LIST_FOREACH(bd, &bp->bif_dlist, bd_next) { 2992422a63daSChristian S.J. Peron xbd = &xbdbuf[index++]; 2993422a63daSChristian S.J. Peron bpfstats_fill_xbpf(xbd, bd); 299469f7644bSChristian S.J. Peron } 299569f7644bSChristian S.J. Peron } 2996e4b3229aSAlexander V. Chernikov BPF_UNLOCK(); 2997422a63daSChristian S.J. Peron error = SYSCTL_OUT(req, xbdbuf, index * sizeof(*xbd)); 2998422a63daSChristian S.J. Peron free(xbdbuf, M_BPF); 299969f7644bSChristian S.J. Peron return (error); 300069f7644bSChristian S.J. Peron } 300169f7644bSChristian S.J. Peron 3002237fdd78SRobert Watson SYSINIT(bpfdev,SI_SUB_DRIVERS,SI_ORDER_MIDDLE,bpf_drvinit,NULL); 300353ac6efbSJulian Elischer 30045bb5f2c9SPeter Wemm #else /* !DEV_BPF && !NETGRAPH_BPF */ 30058bd1f0cfSMark Johnston 3006f8dc4716SMike Smith /* 3007f8dc4716SMike Smith * NOP stubs to allow bpf-using drivers to load and function. 3008f8dc4716SMike Smith * 3009f8dc4716SMike Smith * A 'better' implementation would allow the core bpf functionality 3010f8dc4716SMike Smith * to be loaded at runtime. 3011f8dc4716SMike Smith */ 3012f8dc4716SMike Smith 3013f8dc4716SMike Smith void 301419ba8395SChristian S.J. Peron bpf_tap(struct bpf_if *bp, u_char *pkt, u_int pktlen) 3015f8dc4716SMike Smith { 3016f8dc4716SMike Smith } 3017f8dc4716SMike Smith 3018f8dc4716SMike Smith void 301919ba8395SChristian S.J. Peron bpf_mtap(struct bpf_if *bp, struct mbuf *m) 3020f8dc4716SMike Smith { 3021f8dc4716SMike Smith } 3022f8dc4716SMike Smith 3023f8dc4716SMike Smith void 302419ba8395SChristian S.J. Peron bpf_mtap2(struct bpf_if *bp, void *d, u_int l, struct mbuf *m) 3025437ffe18SSam Leffler { 3026437ffe18SSam Leffler } 3027437ffe18SSam Leffler 3028437ffe18SSam Leffler void 302919ba8395SChristian S.J. Peron bpfattach(struct ifnet *ifp, u_int dlt, u_int hdrlen) 3030f8dc4716SMike Smith { 30317eae78a4SChristian S.J. Peron 30327eae78a4SChristian S.J. Peron bpfattach2(ifp, dlt, hdrlen, &ifp->if_bpf); 3033f8dc4716SMike Smith } 3034f8dc4716SMike Smith 3035da626c17SBill Paul void 303619ba8395SChristian S.J. Peron bpfattach2(struct ifnet *ifp, u_int dlt, u_int hdrlen, struct bpf_if **driverp) 30375f7a7923SSam Leffler { 30387eae78a4SChristian S.J. Peron 30398bd1f0cfSMark Johnston *driverp = (struct bpf_if *)&dead_bpf_if; 30405f7a7923SSam Leffler } 30415f7a7923SSam Leffler 30425f7a7923SSam Leffler void 304319ba8395SChristian S.J. Peron bpfdetach(struct ifnet *ifp) 3044da626c17SBill Paul { 3045da626c17SBill Paul } 3046da626c17SBill Paul 3047f8dc4716SMike Smith u_int 304819ba8395SChristian S.J. Peron bpf_filter(const struct bpf_insn *pc, u_char *p, u_int wirelen, u_int buflen) 3049f8dc4716SMike Smith { 3050f8dc4716SMike Smith return -1; /* "no filter" behaviour */ 3051f8dc4716SMike Smith } 3052f8dc4716SMike Smith 30535bb5f2c9SPeter Wemm int 305419ba8395SChristian S.J. Peron bpf_validate(const struct bpf_insn *f, int len) 30555bb5f2c9SPeter Wemm { 30565bb5f2c9SPeter Wemm return 0; /* false */ 30575bb5f2c9SPeter Wemm } 30585bb5f2c9SPeter Wemm 30595bb5f2c9SPeter Wemm #endif /* !DEV_BPF && !NETGRAPH_BPF */ 306005fc4164SBjoern A. Zeeb 306105fc4164SBjoern A. Zeeb #ifdef DDB 306205fc4164SBjoern A. Zeeb static void 306305fc4164SBjoern A. Zeeb bpf_show_bpf_if(struct bpf_if *bpf_if) 306405fc4164SBjoern A. Zeeb { 306505fc4164SBjoern A. Zeeb 306605fc4164SBjoern A. Zeeb if (bpf_if == NULL) 306705fc4164SBjoern A. Zeeb return; 306805fc4164SBjoern A. Zeeb db_printf("%p:\n", bpf_if); 306905fc4164SBjoern A. Zeeb #define BPF_DB_PRINTF(f, e) db_printf(" %s = " f "\n", #e, bpf_if->e); 307005fc4164SBjoern A. Zeeb /* bif_ext.bif_next */ 307105fc4164SBjoern A. Zeeb /* bif_ext.bif_dlist */ 307205fc4164SBjoern A. Zeeb BPF_DB_PRINTF("%#x", bif_dlt); 307305fc4164SBjoern A. Zeeb BPF_DB_PRINTF("%u", bif_hdrlen); 307405fc4164SBjoern A. Zeeb /* bif_wlist */ 3075699281b5SAndrey V. Elsukov BPF_DB_PRINTF("%p", bif_ifp); 3076699281b5SAndrey V. Elsukov BPF_DB_PRINTF("%p", bif_bpf); 3077699281b5SAndrey V. Elsukov BPF_DB_PRINTF("%u", bif_refcnt); 307805fc4164SBjoern A. Zeeb } 307905fc4164SBjoern A. Zeeb 308005fc4164SBjoern A. Zeeb DB_SHOW_COMMAND(bpf_if, db_show_bpf_if) 308105fc4164SBjoern A. Zeeb { 308205fc4164SBjoern A. Zeeb 308305fc4164SBjoern A. Zeeb if (!have_addr) { 308405fc4164SBjoern A. Zeeb db_printf("usage: show bpf_if <struct bpf_if *>\n"); 308505fc4164SBjoern A. Zeeb return; 308605fc4164SBjoern A. Zeeb } 308705fc4164SBjoern A. Zeeb 308805fc4164SBjoern A. Zeeb bpf_show_bpf_if((struct bpf_if *)addr); 308905fc4164SBjoern A. Zeeb } 309005fc4164SBjoern A. Zeeb #endif 3091