1686cdd19SJun-ichiro itojun Hagino /* $FreeBSD$ */ 288ff5695SSUZUKI Shinsuke /* $KAME: if_gif.c,v 1.87 2001/10/19 08:50:27 itojun Exp $ */ 3686cdd19SJun-ichiro itojun Hagino 4c398230bSWarner Losh /*- 5cfa1ca9dSYoshinobu Inoue * Copyright (C) 1995, 1996, 1997, and 1998 WIDE Project. 6cfa1ca9dSYoshinobu Inoue * All rights reserved. 7cfa1ca9dSYoshinobu Inoue * 8cfa1ca9dSYoshinobu Inoue * Redistribution and use in source and binary forms, with or without 9cfa1ca9dSYoshinobu Inoue * modification, are permitted provided that the following conditions 10cfa1ca9dSYoshinobu Inoue * are met: 11cfa1ca9dSYoshinobu Inoue * 1. Redistributions of source code must retain the above copyright 12cfa1ca9dSYoshinobu Inoue * notice, this list of conditions and the following disclaimer. 13cfa1ca9dSYoshinobu Inoue * 2. Redistributions in binary form must reproduce the above copyright 14cfa1ca9dSYoshinobu Inoue * notice, this list of conditions and the following disclaimer in the 15cfa1ca9dSYoshinobu Inoue * documentation and/or other materials provided with the distribution. 16cfa1ca9dSYoshinobu Inoue * 3. Neither the name of the project nor the names of its contributors 17cfa1ca9dSYoshinobu Inoue * may be used to endorse or promote products derived from this software 18cfa1ca9dSYoshinobu Inoue * without specific prior written permission. 19cfa1ca9dSYoshinobu Inoue * 20cfa1ca9dSYoshinobu Inoue * THIS SOFTWARE IS PROVIDED BY THE PROJECT AND CONTRIBUTORS ``AS IS'' AND 21cfa1ca9dSYoshinobu Inoue * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE 22cfa1ca9dSYoshinobu Inoue * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE 23cfa1ca9dSYoshinobu Inoue * ARE DISCLAIMED. IN NO EVENT SHALL THE PROJECT OR CONTRIBUTORS BE LIABLE 24cfa1ca9dSYoshinobu Inoue * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL 25cfa1ca9dSYoshinobu Inoue * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS 26cfa1ca9dSYoshinobu Inoue * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) 27cfa1ca9dSYoshinobu Inoue * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT 28cfa1ca9dSYoshinobu Inoue * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY 29cfa1ca9dSYoshinobu Inoue * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF 30cfa1ca9dSYoshinobu Inoue * SUCH DAMAGE. 31cfa1ca9dSYoshinobu Inoue */ 32cfa1ca9dSYoshinobu Inoue 33cfa1ca9dSYoshinobu Inoue #include "opt_inet.h" 34cfa1ca9dSYoshinobu Inoue #include "opt_inet6.h" 35cfa1ca9dSYoshinobu Inoue 36cfa1ca9dSYoshinobu Inoue #include <sys/param.h> 37cfa1ca9dSYoshinobu Inoue #include <sys/systm.h> 38e3416ab0SBjoern A. Zeeb #include <sys/jail.h> 39cfa1ca9dSYoshinobu Inoue #include <sys/kernel.h> 40cfa1ca9dSYoshinobu Inoue #include <sys/malloc.h> 41cfa1ca9dSYoshinobu Inoue #include <sys/mbuf.h> 425dba30f1SPoul-Henning Kamp #include <sys/module.h> 43cfa1ca9dSYoshinobu Inoue #include <sys/socket.h> 44cfa1ca9dSYoshinobu Inoue #include <sys/sockio.h> 45cfa1ca9dSYoshinobu Inoue #include <sys/errno.h> 46cfa1ca9dSYoshinobu Inoue #include <sys/time.h> 47872f786aSBrooks Davis #include <sys/sysctl.h> 48cfa1ca9dSYoshinobu Inoue #include <sys/syslog.h> 49dbe59260SHiroki Sato #include <sys/priv.h> 508b07e49aSJulian Elischer #include <sys/proc.h> 51686cdd19SJun-ichiro itojun Hagino #include <sys/protosw.h> 5253dab5feSBrooks Davis #include <sys/conf.h> 53cfa1ca9dSYoshinobu Inoue #include <machine/cpu.h> 54cfa1ca9dSYoshinobu Inoue 55cfa1ca9dSYoshinobu Inoue #include <net/if.h> 56f889d2efSBrooks Davis #include <net/if_clone.h> 57cfa1ca9dSYoshinobu Inoue #include <net/if_types.h> 58cfa1ca9dSYoshinobu Inoue #include <net/netisr.h> 59cfa1ca9dSYoshinobu Inoue #include <net/route.h> 60cfa1ca9dSYoshinobu Inoue #include <net/bpf.h> 61530c0060SRobert Watson #include <net/vnet.h> 62cfa1ca9dSYoshinobu Inoue 63cfa1ca9dSYoshinobu Inoue #include <netinet/in.h> 64cfa1ca9dSYoshinobu Inoue #include <netinet/in_systm.h> 65cfa1ca9dSYoshinobu Inoue #include <netinet/ip.h> 6633841545SHajimu UMEMOTO #ifdef INET 6733841545SHajimu UMEMOTO #include <netinet/in_var.h> 68cfa1ca9dSYoshinobu Inoue #include <netinet/in_gif.h> 6953dab5feSBrooks Davis #include <netinet/ip_var.h> 70cfa1ca9dSYoshinobu Inoue #endif /* INET */ 71cfa1ca9dSYoshinobu Inoue 72cfa1ca9dSYoshinobu Inoue #ifdef INET6 73cfa1ca9dSYoshinobu Inoue #ifndef INET 74cfa1ca9dSYoshinobu Inoue #include <netinet/in.h> 75cfa1ca9dSYoshinobu Inoue #endif 76cfa1ca9dSYoshinobu Inoue #include <netinet6/in6_var.h> 77cfa1ca9dSYoshinobu Inoue #include <netinet/ip6.h> 78cfa1ca9dSYoshinobu Inoue #include <netinet6/ip6_var.h> 79a1f7e5f8SHajimu UMEMOTO #include <netinet6/scope6_var.h> 80cfa1ca9dSYoshinobu Inoue #include <netinet6/in6_gif.h> 81686cdd19SJun-ichiro itojun Hagino #include <netinet6/ip6protosw.h> 82cfa1ca9dSYoshinobu Inoue #endif /* INET6 */ 83cfa1ca9dSYoshinobu Inoue 84686cdd19SJun-ichiro itojun Hagino #include <netinet/ip_encap.h> 8573ff045cSAndrew Thompson #include <net/ethernet.h> 8673ff045cSAndrew Thompson #include <net/if_bridgevar.h> 87cfa1ca9dSYoshinobu Inoue #include <net/if_gif.h> 88cfa1ca9dSYoshinobu Inoue 89aed55708SRobert Watson #include <security/mac/mac_framework.h> 90aed55708SRobert Watson 9153dab5feSBrooks Davis #define GIFNAME "gif" 92686cdd19SJun-ichiro itojun Hagino 9317d5cb2dSRobert Watson /* 948c7e1947SRuslan Ermilov * gif_mtx protects the global gif_softc_list. 9517d5cb2dSRobert Watson */ 9617d5cb2dSRobert Watson static struct mtx gif_mtx; 9753dab5feSBrooks Davis static MALLOC_DEFINE(M_GIF, "gif", "Generic Tunnel Interface"); 983e288e62SDimitry Andric static VNET_DEFINE(LIST_HEAD(, gif_softc), gif_softc_list); 991e77c105SRobert Watson #define V_gif_softc_list VNET(gif_softc_list) 100eddfbb76SRobert Watson 10194408d94SBrooks Davis void (*ng_gif_input_p)(struct ifnet *ifp, struct mbuf **mp, int af); 10294408d94SBrooks Davis void (*ng_gif_input_orphan_p)(struct ifnet *ifp, struct mbuf *m, int af); 10394408d94SBrooks Davis void (*ng_gif_attach_p)(struct ifnet *ifp); 10494408d94SBrooks Davis void (*ng_gif_detach_p)(struct ifnet *ifp); 10594408d94SBrooks Davis 10673ff045cSAndrew Thompson static void gif_start(struct ifnet *); 1076b7330e2SSam Leffler static int gif_clone_create(struct if_clone *, int, caddr_t); 108bb2bfb4fSBrooks Davis static void gif_clone_destroy(struct ifnet *); 109bfe1aba4SMarko Zec 110f889d2efSBrooks Davis IFC_SIMPLE_DECLARE(gif, 0); 11153dab5feSBrooks Davis 112929ddbbbSAlfred Perlstein static int gifmodevent(module_t, int, void *); 113cfa1ca9dSYoshinobu Inoue 114872f786aSBrooks Davis SYSCTL_DECL(_net_link); 1156472ac3dSEd Schouten static SYSCTL_NODE(_net_link, IFT_GIF, gif, CTLFLAG_RW, 0, 116872f786aSBrooks Davis "Generic Tunnel Interface"); 117686cdd19SJun-ichiro itojun Hagino #ifndef MAX_GIF_NEST 118686cdd19SJun-ichiro itojun Hagino /* 119872f786aSBrooks Davis * This macro controls the default upper limitation on nesting of gif tunnels. 120686cdd19SJun-ichiro itojun Hagino * Since, setting a large value to this macro with a careless configuration 121686cdd19SJun-ichiro itojun Hagino * may introduce system crash, we don't allow any nestings by default. 122686cdd19SJun-ichiro itojun Hagino * If you need to configure nested gif tunnels, you can define this macro 123686cdd19SJun-ichiro itojun Hagino * in your kernel configuration file. However, if you do so, please be 124686cdd19SJun-ichiro itojun Hagino * careful to configure the tunnels so that it won't make a loop. 125686cdd19SJun-ichiro itojun Hagino */ 126686cdd19SJun-ichiro itojun Hagino #define MAX_GIF_NEST 1 127686cdd19SJun-ichiro itojun Hagino #endif 1283e288e62SDimitry Andric static VNET_DEFINE(int, max_gif_nesting) = MAX_GIF_NEST; 129d0728d71SRobert Watson #define V_max_gif_nesting VNET(max_gif_nesting) 130eddfbb76SRobert Watson SYSCTL_VNET_INT(_net_link_gif, OID_AUTO, max_nesting, CTLFLAG_RW, 131eddfbb76SRobert Watson &VNET_NAME(max_gif_nesting), 0, "Max nested tunnels"); 1328b615593SMarko Zec 133872f786aSBrooks Davis /* 134872f786aSBrooks Davis * By default, we disallow creation of multiple tunnels between the same 135872f786aSBrooks Davis * pair of addresses. Some applications require this functionality so 136872f786aSBrooks Davis * we allow control over this check here. 137872f786aSBrooks Davis */ 138d0728d71SRobert Watson #ifdef XBONEHACK 1393e288e62SDimitry Andric static VNET_DEFINE(int, parallel_tunnels) = 1; 140d0728d71SRobert Watson #else 1413e288e62SDimitry Andric static VNET_DEFINE(int, parallel_tunnels) = 0; 142d0728d71SRobert Watson #endif 143d0728d71SRobert Watson #define V_parallel_tunnels VNET(parallel_tunnels) 144eddfbb76SRobert Watson SYSCTL_VNET_INT(_net_link_gif, OID_AUTO, parallel_tunnels, CTLFLAG_RW, 145eddfbb76SRobert Watson &VNET_NAME(parallel_tunnels), 0, "Allow parallel tunnels?"); 146cfa1ca9dSYoshinobu Inoue 14756abdd33SAndrew Thompson /* copy from src/sys/net/if_ethersubr.c */ 14856abdd33SAndrew Thompson static const u_char etherbroadcastaddr[ETHER_ADDR_LEN] = 14956abdd33SAndrew Thompson { 0xff, 0xff, 0xff, 0xff, 0xff, 0xff }; 15056abdd33SAndrew Thompson #ifndef ETHER_IS_BROADCAST 15156abdd33SAndrew Thompson #define ETHER_IS_BROADCAST(addr) \ 15256abdd33SAndrew Thompson (bcmp(etherbroadcastaddr, (addr), ETHER_ADDR_LEN) == 0) 15356abdd33SAndrew Thompson #endif 15456abdd33SAndrew Thompson 155bb2bfb4fSBrooks Davis static int 1566b7330e2SSam Leffler gif_clone_create(ifc, unit, params) 15753dab5feSBrooks Davis struct if_clone *ifc; 1583b16e7b2SMaxime Henrion int unit; 1596b7330e2SSam Leffler caddr_t params; 160cfa1ca9dSYoshinobu Inoue { 16133841545SHajimu UMEMOTO struct gif_softc *sc; 162cfa1ca9dSYoshinobu Inoue 163e1a8c3dcSBruce M Simpson sc = malloc(sizeof(struct gif_softc), M_GIF, M_WAITOK | M_ZERO); 1648b07e49aSJulian Elischer sc->gif_fibnum = curthread->td_proc->p_fibnum; 165fc74a9f9SBrooks Davis GIF2IFP(sc) = if_alloc(IFT_GIF); 166fc74a9f9SBrooks Davis if (GIF2IFP(sc) == NULL) { 167fc74a9f9SBrooks Davis free(sc, M_GIF); 168fc74a9f9SBrooks Davis return (ENOSPC); 169fc74a9f9SBrooks Davis } 17053dab5feSBrooks Davis 17125af0bb5SGleb Smirnoff GIF_LOCK_INIT(sc); 17225af0bb5SGleb Smirnoff 173fc74a9f9SBrooks Davis GIF2IFP(sc)->if_softc = sc; 174fc74a9f9SBrooks Davis if_initname(GIF2IFP(sc), ifc->ifc_name, unit); 175686cdd19SJun-ichiro itojun Hagino 1769426aedfSHajimu UMEMOTO sc->encap_cookie4 = sc->encap_cookie6 = NULL; 177dbe59260SHiroki Sato sc->gif_options = GIF_ACCEPT_REVETHIP; 1789426aedfSHajimu UMEMOTO 179fc74a9f9SBrooks Davis GIF2IFP(sc)->if_addrlen = 0; 180fc74a9f9SBrooks Davis GIF2IFP(sc)->if_mtu = GIF_MTU; 181fc74a9f9SBrooks Davis GIF2IFP(sc)->if_flags = IFF_POINTOPOINT | IFF_MULTICAST; 18233841545SHajimu UMEMOTO #if 0 18333841545SHajimu UMEMOTO /* turn off ingress filter */ 184fc74a9f9SBrooks Davis GIF2IFP(sc)->if_flags |= IFF_LINK2; 18533841545SHajimu UMEMOTO #endif 186fc74a9f9SBrooks Davis GIF2IFP(sc)->if_ioctl = gif_ioctl; 18773ff045cSAndrew Thompson GIF2IFP(sc)->if_start = gif_start; 188fc74a9f9SBrooks Davis GIF2IFP(sc)->if_output = gif_output; 189e50d35e6SMaxim Sobolev GIF2IFP(sc)->if_snd.ifq_maxlen = ifqmaxlen; 190fc74a9f9SBrooks Davis if_attach(GIF2IFP(sc)); 19101399f34SDavid Malone bpfattach(GIF2IFP(sc), DLT_NULL, sizeof(u_int32_t)); 19294408d94SBrooks Davis if (ng_gif_attach_p != NULL) 193fc74a9f9SBrooks Davis (*ng_gif_attach_p)(GIF2IFP(sc)); 19425af0bb5SGleb Smirnoff 19525af0bb5SGleb Smirnoff mtx_lock(&gif_mtx); 196603724d3SBjoern A. Zeeb LIST_INSERT_HEAD(&V_gif_softc_list, sc, gif_list); 19725af0bb5SGleb Smirnoff mtx_unlock(&gif_mtx); 19825af0bb5SGleb Smirnoff 19925af0bb5SGleb Smirnoff return (0); 200cfa1ca9dSYoshinobu Inoue } 201cfa1ca9dSYoshinobu Inoue 20217d5cb2dSRobert Watson static void 203febd0759SAndrew Thompson gif_clone_destroy(ifp) 204febd0759SAndrew Thompson struct ifnet *ifp; 20553dab5feSBrooks Davis { 206e0de57f9SBjoern A. Zeeb #if defined(INET) || defined(INET6) 20753dab5feSBrooks Davis int err; 208e0de57f9SBjoern A. Zeeb #endif 209febd0759SAndrew Thompson struct gif_softc *sc = ifp->if_softc; 210febd0759SAndrew Thompson 211febd0759SAndrew Thompson mtx_lock(&gif_mtx); 212febd0759SAndrew Thompson LIST_REMOVE(sc, gif_list); 213febd0759SAndrew Thompson mtx_unlock(&gif_mtx); 21453dab5feSBrooks Davis 21517d5cb2dSRobert Watson gif_delete_tunnel(ifp); 2169426aedfSHajimu UMEMOTO #ifdef INET6 21753dab5feSBrooks Davis if (sc->encap_cookie6 != NULL) { 21853dab5feSBrooks Davis err = encap_detach(sc->encap_cookie6); 21953dab5feSBrooks Davis KASSERT(err == 0, ("Unexpected error detaching encap_cookie6")); 22053dab5feSBrooks Davis } 2219426aedfSHajimu UMEMOTO #endif 2229426aedfSHajimu UMEMOTO #ifdef INET 2239426aedfSHajimu UMEMOTO if (sc->encap_cookie4 != NULL) { 2249426aedfSHajimu UMEMOTO err = encap_detach(sc->encap_cookie4); 2259426aedfSHajimu UMEMOTO KASSERT(err == 0, ("Unexpected error detaching encap_cookie4")); 2269426aedfSHajimu UMEMOTO } 2279426aedfSHajimu UMEMOTO #endif 22853dab5feSBrooks Davis 22994408d94SBrooks Davis if (ng_gif_detach_p != NULL) 23094408d94SBrooks Davis (*ng_gif_detach_p)(ifp); 23153dab5feSBrooks Davis bpfdetach(ifp); 23253dab5feSBrooks Davis if_detach(ifp); 233fc74a9f9SBrooks Davis if_free(ifp); 23453dab5feSBrooks Davis 23525af0bb5SGleb Smirnoff GIF_LOCK_DESTROY(sc); 23625af0bb5SGleb Smirnoff 23753dab5feSBrooks Davis free(sc, M_GIF); 23853dab5feSBrooks Davis } 23953dab5feSBrooks Davis 240d0728d71SRobert Watson static void 241d0728d71SRobert Watson vnet_gif_init(const void *unused __unused) 2421ed81b73SMarko Zec { 2431ed81b73SMarko Zec 2441ed81b73SMarko Zec LIST_INIT(&V_gif_softc_list); 2451ed81b73SMarko Zec } 246d0728d71SRobert Watson VNET_SYSINIT(vnet_gif_init, SI_SUB_PSEUDO, SI_ORDER_MIDDLE, vnet_gif_init, 247d0728d71SRobert Watson NULL); 2481ed81b73SMarko Zec 2491ed81b73SMarko Zec static int 25053dab5feSBrooks Davis gifmodevent(mod, type, data) 25153dab5feSBrooks Davis module_t mod; 25253dab5feSBrooks Davis int type; 25353dab5feSBrooks Davis void *data; 25453dab5feSBrooks Davis { 25553dab5feSBrooks Davis 25653dab5feSBrooks Davis switch (type) { 25753dab5feSBrooks Davis case MOD_LOAD: 25817d5cb2dSRobert Watson mtx_init(&gif_mtx, "gif_mtx", NULL, MTX_DEF); 25944e33a07SMarko Zec if_clone_attach(&gif_cloner); 26053dab5feSBrooks Davis break; 261d0728d71SRobert Watson 26253dab5feSBrooks Davis case MOD_UNLOAD: 26353dab5feSBrooks Davis if_clone_detach(&gif_cloner); 26417d5cb2dSRobert Watson mtx_destroy(&gif_mtx); 26553dab5feSBrooks Davis break; 2663e019deaSPoul-Henning Kamp default: 2673e019deaSPoul-Henning Kamp return EOPNOTSUPP; 26853dab5feSBrooks Davis } 26953dab5feSBrooks Davis return 0; 27053dab5feSBrooks Davis } 27153dab5feSBrooks Davis 27253dab5feSBrooks Davis static moduledata_t gif_mod = { 27353dab5feSBrooks Davis "if_gif", 27453dab5feSBrooks Davis gifmodevent, 27553dab5feSBrooks Davis 0 27653dab5feSBrooks Davis }; 27753dab5feSBrooks Davis 27853dab5feSBrooks Davis DECLARE_MODULE(if_gif, gif_mod, SI_SUB_PSEUDO, SI_ORDER_ANY); 27920af0ffaSBrooks Davis MODULE_VERSION(if_gif, 1); 280cfa1ca9dSYoshinobu Inoue 2819426aedfSHajimu UMEMOTO int 282686cdd19SJun-ichiro itojun Hagino gif_encapcheck(m, off, proto, arg) 283686cdd19SJun-ichiro itojun Hagino const struct mbuf *m; 284686cdd19SJun-ichiro itojun Hagino int off; 285686cdd19SJun-ichiro itojun Hagino int proto; 286686cdd19SJun-ichiro itojun Hagino void *arg; 287686cdd19SJun-ichiro itojun Hagino { 288686cdd19SJun-ichiro itojun Hagino struct ip ip; 289686cdd19SJun-ichiro itojun Hagino struct gif_softc *sc; 290686cdd19SJun-ichiro itojun Hagino 291686cdd19SJun-ichiro itojun Hagino sc = (struct gif_softc *)arg; 292686cdd19SJun-ichiro itojun Hagino if (sc == NULL) 293686cdd19SJun-ichiro itojun Hagino return 0; 294686cdd19SJun-ichiro itojun Hagino 295fc74a9f9SBrooks Davis if ((GIF2IFP(sc)->if_flags & IFF_UP) == 0) 296686cdd19SJun-ichiro itojun Hagino return 0; 297686cdd19SJun-ichiro itojun Hagino 298686cdd19SJun-ichiro itojun Hagino /* no physical address */ 299686cdd19SJun-ichiro itojun Hagino if (!sc->gif_psrc || !sc->gif_pdst) 300686cdd19SJun-ichiro itojun Hagino return 0; 301686cdd19SJun-ichiro itojun Hagino 302686cdd19SJun-ichiro itojun Hagino switch (proto) { 303686cdd19SJun-ichiro itojun Hagino #ifdef INET 304686cdd19SJun-ichiro itojun Hagino case IPPROTO_IPV4: 305686cdd19SJun-ichiro itojun Hagino break; 306686cdd19SJun-ichiro itojun Hagino #endif 307686cdd19SJun-ichiro itojun Hagino #ifdef INET6 308686cdd19SJun-ichiro itojun Hagino case IPPROTO_IPV6: 309686cdd19SJun-ichiro itojun Hagino break; 310686cdd19SJun-ichiro itojun Hagino #endif 31173ff045cSAndrew Thompson case IPPROTO_ETHERIP: 31273ff045cSAndrew Thompson break; 31373ff045cSAndrew Thompson 314686cdd19SJun-ichiro itojun Hagino default: 315686cdd19SJun-ichiro itojun Hagino return 0; 316686cdd19SJun-ichiro itojun Hagino } 317686cdd19SJun-ichiro itojun Hagino 3183bb61ca6SHajimu UMEMOTO /* Bail on short packets */ 3193bb61ca6SHajimu UMEMOTO if (m->m_pkthdr.len < sizeof(ip)) 3203bb61ca6SHajimu UMEMOTO return 0; 3213bb61ca6SHajimu UMEMOTO 3226f4ded3aSBrooks Davis m_copydata(m, 0, sizeof(ip), (caddr_t)&ip); 323686cdd19SJun-ichiro itojun Hagino 324686cdd19SJun-ichiro itojun Hagino switch (ip.ip_v) { 325686cdd19SJun-ichiro itojun Hagino #ifdef INET 326686cdd19SJun-ichiro itojun Hagino case 4: 327686cdd19SJun-ichiro itojun Hagino if (sc->gif_psrc->sa_family != AF_INET || 328686cdd19SJun-ichiro itojun Hagino sc->gif_pdst->sa_family != AF_INET) 329686cdd19SJun-ichiro itojun Hagino return 0; 330686cdd19SJun-ichiro itojun Hagino return gif_encapcheck4(m, off, proto, arg); 331686cdd19SJun-ichiro itojun Hagino #endif 332686cdd19SJun-ichiro itojun Hagino #ifdef INET6 333686cdd19SJun-ichiro itojun Hagino case 6: 3349426aedfSHajimu UMEMOTO if (m->m_pkthdr.len < sizeof(struct ip6_hdr)) 3359426aedfSHajimu UMEMOTO return 0; 336686cdd19SJun-ichiro itojun Hagino if (sc->gif_psrc->sa_family != AF_INET6 || 337686cdd19SJun-ichiro itojun Hagino sc->gif_pdst->sa_family != AF_INET6) 338686cdd19SJun-ichiro itojun Hagino return 0; 339686cdd19SJun-ichiro itojun Hagino return gif_encapcheck6(m, off, proto, arg); 340686cdd19SJun-ichiro itojun Hagino #endif 341686cdd19SJun-ichiro itojun Hagino default: 342686cdd19SJun-ichiro itojun Hagino return 0; 343686cdd19SJun-ichiro itojun Hagino } 344686cdd19SJun-ichiro itojun Hagino } 345*776b7288SRandall Stewart #ifdef INET 346*776b7288SRandall Stewart #define GIF_HDR_LEN (ETHER_HDR_LEN + sizeof (struct ip)) 347*776b7288SRandall Stewart #endif 348*776b7288SRandall Stewart #ifdef INET6 349*776b7288SRandall Stewart #define GIF_HDR_LEN6 (ETHER_HDR_LEN + sizeof (struct ip6_hdr)) 350*776b7288SRandall Stewart #endif 351686cdd19SJun-ichiro itojun Hagino 35273ff045cSAndrew Thompson static void 35373ff045cSAndrew Thompson gif_start(struct ifnet *ifp) 35473ff045cSAndrew Thompson { 35573ff045cSAndrew Thompson struct gif_softc *sc; 35673ff045cSAndrew Thompson struct mbuf *m; 357*776b7288SRandall Stewart uint32_t af; 358*776b7288SRandall Stewart int error = 0; 35973ff045cSAndrew Thompson 36073ff045cSAndrew Thompson sc = ifp->if_softc; 361*776b7288SRandall Stewart GIF_LOCK(sc); 362*776b7288SRandall Stewart if (ifp->if_drv_flags & IFF_DRV_OACTIVE) { 363*776b7288SRandall Stewart /* Already active */ 364*776b7288SRandall Stewart ifp->if_drv_flags |= IFF_GIF_WANTED; 365*776b7288SRandall Stewart GIF_UNLOCK(sc); 366*776b7288SRandall Stewart return; 367*776b7288SRandall Stewart } 36873ff045cSAndrew Thompson ifp->if_drv_flags |= IFF_DRV_OACTIVE; 369*776b7288SRandall Stewart GIF_UNLOCK(sc); 370*776b7288SRandall Stewart keep_going: 371*776b7288SRandall Stewart while (!IFQ_DRV_IS_EMPTY(&ifp->if_snd)) { 372*776b7288SRandall Stewart 373*776b7288SRandall Stewart IFQ_DRV_DEQUEUE(&ifp->if_snd, m); 37473ff045cSAndrew Thompson if (m == 0) 37573ff045cSAndrew Thompson break; 37673ff045cSAndrew Thompson 377*776b7288SRandall Stewart #ifdef ALTQ 378*776b7288SRandall Stewart /* Take out those altq bytes we add in gif_output */ 379*776b7288SRandall Stewart #ifdef INET 380*776b7288SRandall Stewart if (sc->gif_psrc->sa_family == AF_INET) 381*776b7288SRandall Stewart m->m_pkthdr.len -= GIF_HDR_LEN; 382*776b7288SRandall Stewart #endif 383*776b7288SRandall Stewart #ifdef INET6 384*776b7288SRandall Stewart if (sc->gif_psrc->sa_family == AF_INET6) 385*776b7288SRandall Stewart m->m_pkthdr.len -= GIF_HDR_LEN6; 386*776b7288SRandall Stewart #endif 387*776b7288SRandall Stewart #endif 388*776b7288SRandall Stewart /* Now pull back the af in packet that 389*776b7288SRandall Stewart * was saved in the address location. 390*776b7288SRandall Stewart */ 391*776b7288SRandall Stewart bcopy(m->m_pkthdr.src_mac_addr, &af, sizeof(af)); 392*776b7288SRandall Stewart if (ifp->if_bridge) 393*776b7288SRandall Stewart af = AF_LINK; 394*776b7288SRandall Stewart 395*776b7288SRandall Stewart BPF_MTAP2(ifp, &af, sizeof(af), m); 396*776b7288SRandall Stewart ifp->if_opackets++; 397*776b7288SRandall Stewart 398*776b7288SRandall Stewart /* Done by IFQ_HANDOFF */ 399*776b7288SRandall Stewart /* ifp->if_obytes += m->m_pkthdr.len;*/ 400*776b7288SRandall Stewart /* override to IPPROTO_ETHERIP for bridged traffic */ 401*776b7288SRandall Stewart 402*776b7288SRandall Stewart M_SETFIB(m, sc->gif_fibnum); 403*776b7288SRandall Stewart /* inner AF-specific encapsulation */ 404*776b7288SRandall Stewart /* XXX should we check if our outer source is legal? */ 405*776b7288SRandall Stewart /* dispatch to output logic based on outer AF */ 406*776b7288SRandall Stewart switch (sc->gif_psrc->sa_family) { 407*776b7288SRandall Stewart #ifdef INET 408*776b7288SRandall Stewart case AF_INET: 409*776b7288SRandall Stewart error = in_gif_output(ifp, af, m); 410*776b7288SRandall Stewart break; 411*776b7288SRandall Stewart #endif 412*776b7288SRandall Stewart #ifdef INET6 413*776b7288SRandall Stewart case AF_INET6: 414*776b7288SRandall Stewart error = in6_gif_output(ifp, af, m); 415*776b7288SRandall Stewart break; 416*776b7288SRandall Stewart #endif 417*776b7288SRandall Stewart default: 418*776b7288SRandall Stewart m_freem(m); 419*776b7288SRandall Stewart error = ENETDOWN; 420*776b7288SRandall Stewart } 421*776b7288SRandall Stewart if (error) 422*776b7288SRandall Stewart ifp->if_oerrors++; 42373ff045cSAndrew Thompson 42473ff045cSAndrew Thompson } 425*776b7288SRandall Stewart GIF_LOCK(sc); 426*776b7288SRandall Stewart if (ifp->if_drv_flags & IFF_GIF_WANTED) { 427*776b7288SRandall Stewart /* Someone did a start while 428*776b7288SRandall Stewart * we were unlocked and processing 429*776b7288SRandall Stewart * lets clear the flag and try again. 430*776b7288SRandall Stewart */ 431*776b7288SRandall Stewart ifp->if_drv_flags &= ~IFF_GIF_WANTED; 432*776b7288SRandall Stewart GIF_UNLOCK(sc); 433*776b7288SRandall Stewart goto keep_going; 434*776b7288SRandall Stewart } 43573ff045cSAndrew Thompson ifp->if_drv_flags &= ~IFF_DRV_OACTIVE; 436*776b7288SRandall Stewart GIF_UNLOCK(sc); 43773ff045cSAndrew Thompson return; 43873ff045cSAndrew Thompson } 43973ff045cSAndrew Thompson 440cfa1ca9dSYoshinobu Inoue int 441279aa3d4SKip Macy gif_output(ifp, m, dst, ro) 442cfa1ca9dSYoshinobu Inoue struct ifnet *ifp; 443cfa1ca9dSYoshinobu Inoue struct mbuf *m; 444cfa1ca9dSYoshinobu Inoue struct sockaddr *dst; 445279aa3d4SKip Macy struct route *ro; 446cfa1ca9dSYoshinobu Inoue { 447fc74a9f9SBrooks Davis struct gif_softc *sc = ifp->if_softc; 4488c7e1947SRuslan Ermilov struct m_tag *mtag; 449cfa1ca9dSYoshinobu Inoue int error = 0; 4508c7e1947SRuslan Ermilov int gif_called; 451*776b7288SRandall Stewart uint32_t af; 45210722b85SRobert Watson #ifdef MAC 45330d239bcSRobert Watson error = mac_ifnet_check_transmit(ifp, m); 454e0852ce2SRobert Watson if (error) { 455e0852ce2SRobert Watson m_freem(m); 456e0852ce2SRobert Watson goto end; 457e0852ce2SRobert Watson } 45810722b85SRobert Watson #endif 45910722b85SRobert Watson 460cfa1ca9dSYoshinobu Inoue /* 461cfa1ca9dSYoshinobu Inoue * gif may cause infinite recursion calls when misconfigured. 4628c7e1947SRuslan Ermilov * We'll prevent this by detecting loops. 4638c7e1947SRuslan Ermilov * 4648c7e1947SRuslan Ermilov * High nesting level may cause stack exhaustion. 465cfa1ca9dSYoshinobu Inoue * We'll prevent this by introducing upper limit. 466cfa1ca9dSYoshinobu Inoue */ 4678c7e1947SRuslan Ermilov gif_called = 1; 4688c7e1947SRuslan Ermilov mtag = m_tag_locate(m, MTAG_GIF, MTAG_GIF_CALLED, NULL); 4698c7e1947SRuslan Ermilov while (mtag != NULL) { 4708c7e1947SRuslan Ermilov if (*(struct ifnet **)(mtag + 1) == ifp) { 4718c7e1947SRuslan Ermilov log(LOG_NOTICE, 4728c7e1947SRuslan Ermilov "gif_output: loop detected on %s\n", 4738c7e1947SRuslan Ermilov (*(struct ifnet **)(mtag + 1))->if_xname); 4748c7e1947SRuslan Ermilov m_freem(m); 4758c7e1947SRuslan Ermilov error = EIO; /* is there better errno? */ 4768c7e1947SRuslan Ermilov goto end; 4778c7e1947SRuslan Ermilov } 4788c7e1947SRuslan Ermilov mtag = m_tag_locate(m, MTAG_GIF, MTAG_GIF_CALLED, mtag); 4798c7e1947SRuslan Ermilov gif_called++; 4808c7e1947SRuslan Ermilov } 481603724d3SBjoern A. Zeeb if (gif_called > V_max_gif_nesting) { 482cfa1ca9dSYoshinobu Inoue log(LOG_NOTICE, 483cfa1ca9dSYoshinobu Inoue "gif_output: recursively called too many times(%d)\n", 484523ebc4eSRobert Watson gif_called); 485cfa1ca9dSYoshinobu Inoue m_freem(m); 486cfa1ca9dSYoshinobu Inoue error = EIO; /* is there better errno? */ 487cfa1ca9dSYoshinobu Inoue goto end; 488cfa1ca9dSYoshinobu Inoue } 4898c7e1947SRuslan Ermilov mtag = m_tag_alloc(MTAG_GIF, MTAG_GIF_CALLED, sizeof(struct ifnet *), 4908c7e1947SRuslan Ermilov M_NOWAIT); 4918c7e1947SRuslan Ermilov if (mtag == NULL) { 4928c7e1947SRuslan Ermilov m_freem(m); 4938c7e1947SRuslan Ermilov error = ENOMEM; 4948c7e1947SRuslan Ermilov goto end; 4958c7e1947SRuslan Ermilov } 4968c7e1947SRuslan Ermilov *(struct ifnet **)(mtag + 1) = ifp; 4978c7e1947SRuslan Ermilov m_tag_prepend(m, mtag); 498686cdd19SJun-ichiro itojun Hagino 499cfa1ca9dSYoshinobu Inoue m->m_flags &= ~(M_BCAST|M_MCAST); 50001399f34SDavid Malone /* BPF writes need to be handled specially. */ 50101399f34SDavid Malone if (dst->sa_family == AF_UNSPEC) { 50201399f34SDavid Malone bcopy(dst->sa_data, &af, sizeof(af)); 50301399f34SDavid Malone dst->sa_family = af; 50401399f34SDavid Malone } 50501399f34SDavid Malone af = dst->sa_family; 506*776b7288SRandall Stewart /* Now save the af in the inbound pkt mac 507*776b7288SRandall Stewart * address location. 508*776b7288SRandall Stewart */ 509*776b7288SRandall Stewart bcopy(&af, m->m_pkthdr.src_mac_addr, sizeof(af)); 510*776b7288SRandall Stewart if (!(ifp->if_flags & IFF_UP) || 511*776b7288SRandall Stewart sc->gif_psrc == NULL || sc->gif_pdst == NULL) { 512cfa1ca9dSYoshinobu Inoue m_freem(m); 513cfa1ca9dSYoshinobu Inoue error = ENETDOWN; 514*776b7288SRandall Stewart goto end; 515cfa1ca9dSYoshinobu Inoue } 516*776b7288SRandall Stewart #ifdef ALTQ 517*776b7288SRandall Stewart /* Make altq aware of the bytes we will add 518*776b7288SRandall Stewart * when we actually send it. 519*776b7288SRandall Stewart */ 520*776b7288SRandall Stewart #ifdef INET 521*776b7288SRandall Stewart if (sc->gif_psrc->sa_family == AF_INET) 522*776b7288SRandall Stewart m->m_pkthdr.len += GIF_HDR_LEN; 523*776b7288SRandall Stewart #endif 524*776b7288SRandall Stewart #ifdef INET6 525*776b7288SRandall Stewart if (sc->gif_psrc->sa_family == AF_INET6) 526*776b7288SRandall Stewart m->m_pkthdr.len += GIF_HDR_LEN6; 527*776b7288SRandall Stewart #endif 528*776b7288SRandall Stewart #endif 529*776b7288SRandall Stewart /* 530*776b7288SRandall Stewart * Queue message on interface, update output statistics if 531*776b7288SRandall Stewart * successful, and start output if interface not yet active. 532*776b7288SRandall Stewart */ 533*776b7288SRandall Stewart IFQ_HANDOFF(ifp, m, error); 534cfa1ca9dSYoshinobu Inoue end: 53533841545SHajimu UMEMOTO if (error) 53633841545SHajimu UMEMOTO ifp->if_oerrors++; 53725af0bb5SGleb Smirnoff return (error); 538cfa1ca9dSYoshinobu Inoue } 539cfa1ca9dSYoshinobu Inoue 540cfa1ca9dSYoshinobu Inoue void 54121fb391fSHajimu UMEMOTO gif_input(m, af, ifp) 542cfa1ca9dSYoshinobu Inoue struct mbuf *m; 543cfa1ca9dSYoshinobu Inoue int af; 54421fb391fSHajimu UMEMOTO struct ifnet *ifp; 545cfa1ca9dSYoshinobu Inoue { 54673ff045cSAndrew Thompson int isr, n; 5474382b068SChristian Brueffer struct gif_softc *sc; 54873ff045cSAndrew Thompson struct etherip_header *eip; 54956abdd33SAndrew Thompson struct ether_header *eh; 55056abdd33SAndrew Thompson struct ifnet *oldifp; 551cfa1ca9dSYoshinobu Inoue 55221fb391fSHajimu UMEMOTO if (ifp == NULL) { 553cfa1ca9dSYoshinobu Inoue /* just in case */ 554cfa1ca9dSYoshinobu Inoue m_freem(m); 555cfa1ca9dSYoshinobu Inoue return; 556cfa1ca9dSYoshinobu Inoue } 5574382b068SChristian Brueffer sc = ifp->if_softc; 55821fb391fSHajimu UMEMOTO m->m_pkthdr.rcvif = ifp; 559cfa1ca9dSYoshinobu Inoue 56010722b85SRobert Watson #ifdef MAC 56130d239bcSRobert Watson mac_ifnet_create_mbuf(ifp, m); 56210722b85SRobert Watson #endif 56310722b85SRobert Watson 56416d878ccSChristian S.J. Peron if (bpf_peers_present(ifp->if_bpf)) { 56533841545SHajimu UMEMOTO u_int32_t af1 = af; 566437ffe18SSam Leffler bpf_mtap2(ifp->if_bpf, &af1, sizeof(af1), m); 567cfa1ca9dSYoshinobu Inoue } 568cfa1ca9dSYoshinobu Inoue 56994408d94SBrooks Davis if (ng_gif_input_p != NULL) { 57021fb391fSHajimu UMEMOTO (*ng_gif_input_p)(ifp, &m, af); 57194408d94SBrooks Davis if (m == NULL) 57294408d94SBrooks Davis return; 57394408d94SBrooks Davis } 57494408d94SBrooks Davis 575cfa1ca9dSYoshinobu Inoue /* 576cfa1ca9dSYoshinobu Inoue * Put the packet to the network layer input queue according to the 577cfa1ca9dSYoshinobu Inoue * specified address family. 578cfa1ca9dSYoshinobu Inoue * Note: older versions of gif_input directly called network layer 579cfa1ca9dSYoshinobu Inoue * input functions, e.g. ip6_input, here. We changed the policy to 580cfa1ca9dSYoshinobu Inoue * prevent too many recursive calls of such input functions, which 581cfa1ca9dSYoshinobu Inoue * might cause kernel panic. But the change may introduce another 582cfa1ca9dSYoshinobu Inoue * problem; if the input queue is full, packets are discarded. 58388ff5695SSUZUKI Shinsuke * The kernel stack overflow really happened, and we believed 58488ff5695SSUZUKI Shinsuke * queue-full rarely occurs, so we changed the policy. 585cfa1ca9dSYoshinobu Inoue */ 586cfa1ca9dSYoshinobu Inoue switch (af) { 587cfa1ca9dSYoshinobu Inoue #ifdef INET 588cfa1ca9dSYoshinobu Inoue case AF_INET: 589cfa1ca9dSYoshinobu Inoue isr = NETISR_IP; 590cfa1ca9dSYoshinobu Inoue break; 591cfa1ca9dSYoshinobu Inoue #endif 592cfa1ca9dSYoshinobu Inoue #ifdef INET6 593cfa1ca9dSYoshinobu Inoue case AF_INET6: 594cfa1ca9dSYoshinobu Inoue isr = NETISR_IPV6; 595cfa1ca9dSYoshinobu Inoue break; 596cfa1ca9dSYoshinobu Inoue #endif 59773ff045cSAndrew Thompson case AF_LINK: 59873ff045cSAndrew Thompson n = sizeof(struct etherip_header) + sizeof(struct ether_header); 59973ff045cSAndrew Thompson if (n > m->m_len) { 60073ff045cSAndrew Thompson m = m_pullup(m, n); 60173ff045cSAndrew Thompson if (m == NULL) { 60273ff045cSAndrew Thompson ifp->if_ierrors++; 60373ff045cSAndrew Thompson return; 60473ff045cSAndrew Thompson } 60573ff045cSAndrew Thompson } 60673ff045cSAndrew Thompson 60773ff045cSAndrew Thompson eip = mtod(m, struct etherip_header *); 608dbe59260SHiroki Sato /* 609dbe59260SHiroki Sato * GIF_ACCEPT_REVETHIP (enabled by default) intentionally 610dbe59260SHiroki Sato * accepts an EtherIP packet with revered version field in 611dbe59260SHiroki Sato * the header. This is a knob for backward compatibility 612dbe59260SHiroki Sato * with FreeBSD 7.2R or prior. 613dbe59260SHiroki Sato */ 614dbe59260SHiroki Sato if (sc->gif_options & GIF_ACCEPT_REVETHIP) { 615dbe59260SHiroki Sato if (eip->eip_resvl != ETHERIP_VERSION 616dbe59260SHiroki Sato && eip->eip_ver != ETHERIP_VERSION) { 61773ff045cSAndrew Thompson /* discard unknown versions */ 61873ff045cSAndrew Thompson m_freem(m); 61973ff045cSAndrew Thompson return; 62073ff045cSAndrew Thompson } 621dbe59260SHiroki Sato } else { 622dbe59260SHiroki Sato if (eip->eip_ver != ETHERIP_VERSION) { 623dbe59260SHiroki Sato /* discard unknown versions */ 624dbe59260SHiroki Sato m_freem(m); 625dbe59260SHiroki Sato return; 626dbe59260SHiroki Sato } 627dbe59260SHiroki Sato } 62873ff045cSAndrew Thompson m_adj(m, sizeof(struct etherip_header)); 62973ff045cSAndrew Thompson 63073ff045cSAndrew Thompson m->m_flags &= ~(M_BCAST|M_MCAST); 63173ff045cSAndrew Thompson m->m_pkthdr.rcvif = ifp; 63273ff045cSAndrew Thompson 63356abdd33SAndrew Thompson if (ifp->if_bridge) { 63456abdd33SAndrew Thompson oldifp = ifp; 63556abdd33SAndrew Thompson eh = mtod(m, struct ether_header *); 63656abdd33SAndrew Thompson if (ETHER_IS_MULTICAST(eh->ether_dhost)) { 63756abdd33SAndrew Thompson if (ETHER_IS_BROADCAST(eh->ether_dhost)) 63856abdd33SAndrew Thompson m->m_flags |= M_BCAST; 63956abdd33SAndrew Thompson else 64056abdd33SAndrew Thompson m->m_flags |= M_MCAST; 64156abdd33SAndrew Thompson ifp->if_imcasts++; 64256abdd33SAndrew Thompson } 64373ff045cSAndrew Thompson BRIDGE_INPUT(ifp, m); 64473ff045cSAndrew Thompson 64556abdd33SAndrew Thompson if (m != NULL && ifp != oldifp) { 64656abdd33SAndrew Thompson /* 64756abdd33SAndrew Thompson * The bridge gave us back itself or one of the 64856abdd33SAndrew Thompson * members for which the frame is addressed. 64956abdd33SAndrew Thompson */ 65056abdd33SAndrew Thompson ether_demux(ifp, m); 65156abdd33SAndrew Thompson return; 65256abdd33SAndrew Thompson } 65356abdd33SAndrew Thompson } 65473ff045cSAndrew Thompson if (m != NULL) 65573ff045cSAndrew Thompson m_freem(m); 65673ff045cSAndrew Thompson return; 65773ff045cSAndrew Thompson 658cfa1ca9dSYoshinobu Inoue default: 65994408d94SBrooks Davis if (ng_gif_input_orphan_p != NULL) 66021fb391fSHajimu UMEMOTO (*ng_gif_input_orphan_p)(ifp, m, af); 66194408d94SBrooks Davis else 662cfa1ca9dSYoshinobu Inoue m_freem(m); 663cfa1ca9dSYoshinobu Inoue return; 664cfa1ca9dSYoshinobu Inoue } 665cfa1ca9dSYoshinobu Inoue 66621fb391fSHajimu UMEMOTO ifp->if_ipackets++; 66721fb391fSHajimu UMEMOTO ifp->if_ibytes += m->m_pkthdr.len; 668a34c6aebSBjoern A. Zeeb M_SETFIB(m, ifp->if_fib); 6691cafed39SJonathan Lemon netisr_dispatch(isr, m); 670cfa1ca9dSYoshinobu Inoue } 671cfa1ca9dSYoshinobu Inoue 672686cdd19SJun-ichiro itojun Hagino /* XXX how should we handle IPv6 scope on SIOC[GS]IFPHYADDR? */ 673cfa1ca9dSYoshinobu Inoue int 674cfa1ca9dSYoshinobu Inoue gif_ioctl(ifp, cmd, data) 675cfa1ca9dSYoshinobu Inoue struct ifnet *ifp; 676cfa1ca9dSYoshinobu Inoue u_long cmd; 677cfa1ca9dSYoshinobu Inoue caddr_t data; 678cfa1ca9dSYoshinobu Inoue { 679fc74a9f9SBrooks Davis struct gif_softc *sc = ifp->if_softc; 680cfa1ca9dSYoshinobu Inoue struct ifreq *ifr = (struct ifreq*)data; 681cfa1ca9dSYoshinobu Inoue int error = 0, size; 682dbe59260SHiroki Sato u_int options; 683686cdd19SJun-ichiro itojun Hagino struct sockaddr *dst, *src; 6843bb61ca6SHajimu UMEMOTO #ifdef SIOCSIFMTU /* xxx */ 6853bb61ca6SHajimu UMEMOTO u_long mtu; 6863bb61ca6SHajimu UMEMOTO #endif 687cfa1ca9dSYoshinobu Inoue 688cfa1ca9dSYoshinobu Inoue switch (cmd) { 689cfa1ca9dSYoshinobu Inoue case SIOCSIFADDR: 6909426aedfSHajimu UMEMOTO ifp->if_flags |= IFF_UP; 691cfa1ca9dSYoshinobu Inoue break; 692cfa1ca9dSYoshinobu Inoue 693cfa1ca9dSYoshinobu Inoue case SIOCSIFDSTADDR: 694cfa1ca9dSYoshinobu Inoue break; 695cfa1ca9dSYoshinobu Inoue 696cfa1ca9dSYoshinobu Inoue case SIOCADDMULTI: 697cfa1ca9dSYoshinobu Inoue case SIOCDELMULTI: 698cfa1ca9dSYoshinobu Inoue break; 699cfa1ca9dSYoshinobu Inoue 700686cdd19SJun-ichiro itojun Hagino #ifdef SIOCSIFMTU /* xxx */ 701cfa1ca9dSYoshinobu Inoue case SIOCGIFMTU: 702cfa1ca9dSYoshinobu Inoue break; 703686cdd19SJun-ichiro itojun Hagino 704cfa1ca9dSYoshinobu Inoue case SIOCSIFMTU: 705cfa1ca9dSYoshinobu Inoue mtu = ifr->ifr_mtu; 7063bb61ca6SHajimu UMEMOTO if (mtu < GIF_MTU_MIN || mtu > GIF_MTU_MAX) 707cfa1ca9dSYoshinobu Inoue return (EINVAL); 708cfa1ca9dSYoshinobu Inoue ifp->if_mtu = mtu; 709cfa1ca9dSYoshinobu Inoue break; 710686cdd19SJun-ichiro itojun Hagino #endif /* SIOCSIFMTU */ 711cfa1ca9dSYoshinobu Inoue 7123bb61ca6SHajimu UMEMOTO #ifdef INET 713cfa1ca9dSYoshinobu Inoue case SIOCSIFPHYADDR: 7143bb61ca6SHajimu UMEMOTO #endif 715cfa1ca9dSYoshinobu Inoue #ifdef INET6 716cfa1ca9dSYoshinobu Inoue case SIOCSIFPHYADDR_IN6: 717cfa1ca9dSYoshinobu Inoue #endif /* INET6 */ 71833841545SHajimu UMEMOTO case SIOCSLIFPHYADDR: 719686cdd19SJun-ichiro itojun Hagino switch (cmd) { 72033841545SHajimu UMEMOTO #ifdef INET 721686cdd19SJun-ichiro itojun Hagino case SIOCSIFPHYADDR: 722cfa1ca9dSYoshinobu Inoue src = (struct sockaddr *) 723cfa1ca9dSYoshinobu Inoue &(((struct in_aliasreq *)data)->ifra_addr); 724cfa1ca9dSYoshinobu Inoue dst = (struct sockaddr *) 725cfa1ca9dSYoshinobu Inoue &(((struct in_aliasreq *)data)->ifra_dstaddr); 726cfa1ca9dSYoshinobu Inoue break; 72733841545SHajimu UMEMOTO #endif 728cfa1ca9dSYoshinobu Inoue #ifdef INET6 729686cdd19SJun-ichiro itojun Hagino case SIOCSIFPHYADDR_IN6: 730cfa1ca9dSYoshinobu Inoue src = (struct sockaddr *) 731cfa1ca9dSYoshinobu Inoue &(((struct in6_aliasreq *)data)->ifra_addr); 732cfa1ca9dSYoshinobu Inoue dst = (struct sockaddr *) 733cfa1ca9dSYoshinobu Inoue &(((struct in6_aliasreq *)data)->ifra_dstaddr); 734686cdd19SJun-ichiro itojun Hagino break; 735686cdd19SJun-ichiro itojun Hagino #endif 73633841545SHajimu UMEMOTO case SIOCSLIFPHYADDR: 73733841545SHajimu UMEMOTO src = (struct sockaddr *) 73833841545SHajimu UMEMOTO &(((struct if_laddrreq *)data)->addr); 73933841545SHajimu UMEMOTO dst = (struct sockaddr *) 74033841545SHajimu UMEMOTO &(((struct if_laddrreq *)data)->dstaddr); 7419426aedfSHajimu UMEMOTO break; 7426f4ded3aSBrooks Davis default: 7439426aedfSHajimu UMEMOTO return EINVAL; 74433841545SHajimu UMEMOTO } 74533841545SHajimu UMEMOTO 74633841545SHajimu UMEMOTO /* sa_family must be equal */ 74733841545SHajimu UMEMOTO if (src->sa_family != dst->sa_family) 74833841545SHajimu UMEMOTO return EINVAL; 74933841545SHajimu UMEMOTO 75033841545SHajimu UMEMOTO /* validate sa_len */ 75133841545SHajimu UMEMOTO switch (src->sa_family) { 75233841545SHajimu UMEMOTO #ifdef INET 75333841545SHajimu UMEMOTO case AF_INET: 75433841545SHajimu UMEMOTO if (src->sa_len != sizeof(struct sockaddr_in)) 75533841545SHajimu UMEMOTO return EINVAL; 75633841545SHajimu UMEMOTO break; 75733841545SHajimu UMEMOTO #endif 75833841545SHajimu UMEMOTO #ifdef INET6 75933841545SHajimu UMEMOTO case AF_INET6: 76033841545SHajimu UMEMOTO if (src->sa_len != sizeof(struct sockaddr_in6)) 76133841545SHajimu UMEMOTO return EINVAL; 76233841545SHajimu UMEMOTO break; 76333841545SHajimu UMEMOTO #endif 76433841545SHajimu UMEMOTO default: 76533841545SHajimu UMEMOTO return EAFNOSUPPORT; 76633841545SHajimu UMEMOTO } 76733841545SHajimu UMEMOTO switch (dst->sa_family) { 76833841545SHajimu UMEMOTO #ifdef INET 76933841545SHajimu UMEMOTO case AF_INET: 77033841545SHajimu UMEMOTO if (dst->sa_len != sizeof(struct sockaddr_in)) 77133841545SHajimu UMEMOTO return EINVAL; 77233841545SHajimu UMEMOTO break; 77333841545SHajimu UMEMOTO #endif 77433841545SHajimu UMEMOTO #ifdef INET6 77533841545SHajimu UMEMOTO case AF_INET6: 77633841545SHajimu UMEMOTO if (dst->sa_len != sizeof(struct sockaddr_in6)) 77733841545SHajimu UMEMOTO return EINVAL; 77833841545SHajimu UMEMOTO break; 77933841545SHajimu UMEMOTO #endif 78033841545SHajimu UMEMOTO default: 78133841545SHajimu UMEMOTO return EAFNOSUPPORT; 78233841545SHajimu UMEMOTO } 78333841545SHajimu UMEMOTO 78433841545SHajimu UMEMOTO /* check sa_family looks sane for the cmd */ 78533841545SHajimu UMEMOTO switch (cmd) { 78633841545SHajimu UMEMOTO case SIOCSIFPHYADDR: 78733841545SHajimu UMEMOTO if (src->sa_family == AF_INET) 78833841545SHajimu UMEMOTO break; 78933841545SHajimu UMEMOTO return EAFNOSUPPORT; 79033841545SHajimu UMEMOTO #ifdef INET6 79133841545SHajimu UMEMOTO case SIOCSIFPHYADDR_IN6: 79233841545SHajimu UMEMOTO if (src->sa_family == AF_INET6) 79333841545SHajimu UMEMOTO break; 79433841545SHajimu UMEMOTO return EAFNOSUPPORT; 79533841545SHajimu UMEMOTO #endif /* INET6 */ 79633841545SHajimu UMEMOTO case SIOCSLIFPHYADDR: 79733841545SHajimu UMEMOTO /* checks done in the above */ 79833841545SHajimu UMEMOTO break; 799686cdd19SJun-ichiro itojun Hagino } 800cfa1ca9dSYoshinobu Inoue 801fc74a9f9SBrooks Davis error = gif_set_tunnel(GIF2IFP(sc), src, dst); 802cfa1ca9dSYoshinobu Inoue break; 803cfa1ca9dSYoshinobu Inoue 804686cdd19SJun-ichiro itojun Hagino #ifdef SIOCDIFPHYADDR 805686cdd19SJun-ichiro itojun Hagino case SIOCDIFPHYADDR: 806fc74a9f9SBrooks Davis gif_delete_tunnel(GIF2IFP(sc)); 807686cdd19SJun-ichiro itojun Hagino break; 808686cdd19SJun-ichiro itojun Hagino #endif 809686cdd19SJun-ichiro itojun Hagino 810cfa1ca9dSYoshinobu Inoue case SIOCGIFPSRCADDR: 811cfa1ca9dSYoshinobu Inoue #ifdef INET6 812cfa1ca9dSYoshinobu Inoue case SIOCGIFPSRCADDR_IN6: 813cfa1ca9dSYoshinobu Inoue #endif /* INET6 */ 814cfa1ca9dSYoshinobu Inoue if (sc->gif_psrc == NULL) { 815cfa1ca9dSYoshinobu Inoue error = EADDRNOTAVAIL; 816cfa1ca9dSYoshinobu Inoue goto bad; 817cfa1ca9dSYoshinobu Inoue } 818cfa1ca9dSYoshinobu Inoue src = sc->gif_psrc; 81933841545SHajimu UMEMOTO switch (cmd) { 820cfa1ca9dSYoshinobu Inoue #ifdef INET 82133841545SHajimu UMEMOTO case SIOCGIFPSRCADDR: 822cfa1ca9dSYoshinobu Inoue dst = &ifr->ifr_addr; 82333841545SHajimu UMEMOTO size = sizeof(ifr->ifr_addr); 824cfa1ca9dSYoshinobu Inoue break; 825cfa1ca9dSYoshinobu Inoue #endif /* INET */ 826cfa1ca9dSYoshinobu Inoue #ifdef INET6 82733841545SHajimu UMEMOTO case SIOCGIFPSRCADDR_IN6: 828cfa1ca9dSYoshinobu Inoue dst = (struct sockaddr *) 829cfa1ca9dSYoshinobu Inoue &(((struct in6_ifreq *)data)->ifr_addr); 83033841545SHajimu UMEMOTO size = sizeof(((struct in6_ifreq *)data)->ifr_addr); 831cfa1ca9dSYoshinobu Inoue break; 832cfa1ca9dSYoshinobu Inoue #endif /* INET6 */ 833cfa1ca9dSYoshinobu Inoue default: 834cfa1ca9dSYoshinobu Inoue error = EADDRNOTAVAIL; 835cfa1ca9dSYoshinobu Inoue goto bad; 836cfa1ca9dSYoshinobu Inoue } 83733841545SHajimu UMEMOTO if (src->sa_len > size) 83833841545SHajimu UMEMOTO return EINVAL; 83933841545SHajimu UMEMOTO bcopy((caddr_t)src, (caddr_t)dst, src->sa_len); 840a1f7e5f8SHajimu UMEMOTO #ifdef INET6 841a1f7e5f8SHajimu UMEMOTO if (dst->sa_family == AF_INET6) { 842a1f7e5f8SHajimu UMEMOTO error = sa6_recoverscope((struct sockaddr_in6 *)dst); 843a1f7e5f8SHajimu UMEMOTO if (error != 0) 844a1f7e5f8SHajimu UMEMOTO return (error); 845a1f7e5f8SHajimu UMEMOTO } 846a1f7e5f8SHajimu UMEMOTO #endif 847cfa1ca9dSYoshinobu Inoue break; 848cfa1ca9dSYoshinobu Inoue 849cfa1ca9dSYoshinobu Inoue case SIOCGIFPDSTADDR: 850cfa1ca9dSYoshinobu Inoue #ifdef INET6 851cfa1ca9dSYoshinobu Inoue case SIOCGIFPDSTADDR_IN6: 852cfa1ca9dSYoshinobu Inoue #endif /* INET6 */ 853cfa1ca9dSYoshinobu Inoue if (sc->gif_pdst == NULL) { 854cfa1ca9dSYoshinobu Inoue error = EADDRNOTAVAIL; 855cfa1ca9dSYoshinobu Inoue goto bad; 856cfa1ca9dSYoshinobu Inoue } 857cfa1ca9dSYoshinobu Inoue src = sc->gif_pdst; 85833841545SHajimu UMEMOTO switch (cmd) { 859cfa1ca9dSYoshinobu Inoue #ifdef INET 86033841545SHajimu UMEMOTO case SIOCGIFPDSTADDR: 861cfa1ca9dSYoshinobu Inoue dst = &ifr->ifr_addr; 86233841545SHajimu UMEMOTO size = sizeof(ifr->ifr_addr); 863cfa1ca9dSYoshinobu Inoue break; 864cfa1ca9dSYoshinobu Inoue #endif /* INET */ 865cfa1ca9dSYoshinobu Inoue #ifdef INET6 86633841545SHajimu UMEMOTO case SIOCGIFPDSTADDR_IN6: 867cfa1ca9dSYoshinobu Inoue dst = (struct sockaddr *) 868cfa1ca9dSYoshinobu Inoue &(((struct in6_ifreq *)data)->ifr_addr); 86933841545SHajimu UMEMOTO size = sizeof(((struct in6_ifreq *)data)->ifr_addr); 870cfa1ca9dSYoshinobu Inoue break; 871cfa1ca9dSYoshinobu Inoue #endif /* INET6 */ 872cfa1ca9dSYoshinobu Inoue default: 873cfa1ca9dSYoshinobu Inoue error = EADDRNOTAVAIL; 874cfa1ca9dSYoshinobu Inoue goto bad; 875cfa1ca9dSYoshinobu Inoue } 87633841545SHajimu UMEMOTO if (src->sa_len > size) 87733841545SHajimu UMEMOTO return EINVAL; 878e3416ab0SBjoern A. Zeeb error = prison_if(curthread->td_ucred, src); 879e3416ab0SBjoern A. Zeeb if (error != 0) 880e3416ab0SBjoern A. Zeeb return (error); 881e3416ab0SBjoern A. Zeeb error = prison_if(curthread->td_ucred, dst); 882e3416ab0SBjoern A. Zeeb if (error != 0) 883e3416ab0SBjoern A. Zeeb return (error); 88433841545SHajimu UMEMOTO bcopy((caddr_t)src, (caddr_t)dst, src->sa_len); 885a1f7e5f8SHajimu UMEMOTO #ifdef INET6 886a1f7e5f8SHajimu UMEMOTO if (dst->sa_family == AF_INET6) { 887a1f7e5f8SHajimu UMEMOTO error = sa6_recoverscope((struct sockaddr_in6 *)dst); 888a1f7e5f8SHajimu UMEMOTO if (error != 0) 889a1f7e5f8SHajimu UMEMOTO return (error); 890a1f7e5f8SHajimu UMEMOTO } 891a1f7e5f8SHajimu UMEMOTO #endif 89233841545SHajimu UMEMOTO break; 89333841545SHajimu UMEMOTO 89433841545SHajimu UMEMOTO case SIOCGLIFPHYADDR: 89533841545SHajimu UMEMOTO if (sc->gif_psrc == NULL || sc->gif_pdst == NULL) { 89633841545SHajimu UMEMOTO error = EADDRNOTAVAIL; 89733841545SHajimu UMEMOTO goto bad; 89833841545SHajimu UMEMOTO } 89933841545SHajimu UMEMOTO 90033841545SHajimu UMEMOTO /* copy src */ 90133841545SHajimu UMEMOTO src = sc->gif_psrc; 90233841545SHajimu UMEMOTO dst = (struct sockaddr *) 90333841545SHajimu UMEMOTO &(((struct if_laddrreq *)data)->addr); 90433841545SHajimu UMEMOTO size = sizeof(((struct if_laddrreq *)data)->addr); 90533841545SHajimu UMEMOTO if (src->sa_len > size) 90633841545SHajimu UMEMOTO return EINVAL; 90733841545SHajimu UMEMOTO bcopy((caddr_t)src, (caddr_t)dst, src->sa_len); 90833841545SHajimu UMEMOTO 90933841545SHajimu UMEMOTO /* copy dst */ 91033841545SHajimu UMEMOTO src = sc->gif_pdst; 91133841545SHajimu UMEMOTO dst = (struct sockaddr *) 91233841545SHajimu UMEMOTO &(((struct if_laddrreq *)data)->dstaddr); 91333841545SHajimu UMEMOTO size = sizeof(((struct if_laddrreq *)data)->dstaddr); 91433841545SHajimu UMEMOTO if (src->sa_len > size) 91533841545SHajimu UMEMOTO return EINVAL; 91633841545SHajimu UMEMOTO bcopy((caddr_t)src, (caddr_t)dst, src->sa_len); 917cfa1ca9dSYoshinobu Inoue break; 918cfa1ca9dSYoshinobu Inoue 919cfa1ca9dSYoshinobu Inoue case SIOCSIFFLAGS: 920686cdd19SJun-ichiro itojun Hagino /* if_ioctl() takes care of it */ 921cfa1ca9dSYoshinobu Inoue break; 922cfa1ca9dSYoshinobu Inoue 923dbe59260SHiroki Sato case GIFGOPTS: 924dbe59260SHiroki Sato options = sc->gif_options; 925dbe59260SHiroki Sato error = copyout(&options, ifr->ifr_data, 926dbe59260SHiroki Sato sizeof(options)); 927dbe59260SHiroki Sato break; 928dbe59260SHiroki Sato 929dbe59260SHiroki Sato case GIFSOPTS: 930dbe59260SHiroki Sato if ((error = priv_check(curthread, PRIV_NET_GIF)) != 0) 931dbe59260SHiroki Sato break; 9324cd5f57dSHiroki Sato error = copyin(ifr->ifr_data, &options, sizeof(options)); 9334cd5f57dSHiroki Sato if (error) 9344cd5f57dSHiroki Sato break; 9354cd5f57dSHiroki Sato if (options & ~GIF_OPTMASK) 936dbe59260SHiroki Sato error = EINVAL; 9374cd5f57dSHiroki Sato else 9384cd5f57dSHiroki Sato sc->gif_options = options; 939dbe59260SHiroki Sato break; 940dbe59260SHiroki Sato 941cfa1ca9dSYoshinobu Inoue default: 942cfa1ca9dSYoshinobu Inoue error = EINVAL; 943cfa1ca9dSYoshinobu Inoue break; 944cfa1ca9dSYoshinobu Inoue } 945cfa1ca9dSYoshinobu Inoue bad: 946cfa1ca9dSYoshinobu Inoue return error; 947cfa1ca9dSYoshinobu Inoue } 94853dab5feSBrooks Davis 94917d5cb2dSRobert Watson /* 95017d5cb2dSRobert Watson * XXXRW: There's a general event-ordering issue here: the code to check 95117d5cb2dSRobert Watson * if a given tunnel is already present happens before we perform a 95217d5cb2dSRobert Watson * potentially blocking setup of the tunnel. This code needs to be 95317d5cb2dSRobert Watson * re-ordered so that the check and replacement can be atomic using 95417d5cb2dSRobert Watson * a mutex. 95517d5cb2dSRobert Watson */ 9569426aedfSHajimu UMEMOTO int 9579426aedfSHajimu UMEMOTO gif_set_tunnel(ifp, src, dst) 9589426aedfSHajimu UMEMOTO struct ifnet *ifp; 9599426aedfSHajimu UMEMOTO struct sockaddr *src; 9609426aedfSHajimu UMEMOTO struct sockaddr *dst; 96153dab5feSBrooks Davis { 962fc74a9f9SBrooks Davis struct gif_softc *sc = ifp->if_softc; 9639426aedfSHajimu UMEMOTO struct gif_softc *sc2; 9649426aedfSHajimu UMEMOTO struct sockaddr *osrc, *odst, *sa; 9659426aedfSHajimu UMEMOTO int error = 0; 9669426aedfSHajimu UMEMOTO 96717d5cb2dSRobert Watson mtx_lock(&gif_mtx); 968603724d3SBjoern A. Zeeb LIST_FOREACH(sc2, &V_gif_softc_list, gif_list) { 9699426aedfSHajimu UMEMOTO if (sc2 == sc) 9709426aedfSHajimu UMEMOTO continue; 9719426aedfSHajimu UMEMOTO if (!sc2->gif_pdst || !sc2->gif_psrc) 9729426aedfSHajimu UMEMOTO continue; 9739426aedfSHajimu UMEMOTO if (sc2->gif_pdst->sa_family != dst->sa_family || 9749426aedfSHajimu UMEMOTO sc2->gif_pdst->sa_len != dst->sa_len || 9759426aedfSHajimu UMEMOTO sc2->gif_psrc->sa_family != src->sa_family || 9769426aedfSHajimu UMEMOTO sc2->gif_psrc->sa_len != src->sa_len) 9779426aedfSHajimu UMEMOTO continue; 9789426aedfSHajimu UMEMOTO 9799426aedfSHajimu UMEMOTO /* 9809426aedfSHajimu UMEMOTO * Disallow parallel tunnels unless instructed 9819426aedfSHajimu UMEMOTO * otherwise. 9829426aedfSHajimu UMEMOTO */ 983603724d3SBjoern A. Zeeb if (!V_parallel_tunnels && 9849426aedfSHajimu UMEMOTO bcmp(sc2->gif_pdst, dst, dst->sa_len) == 0 && 9859426aedfSHajimu UMEMOTO bcmp(sc2->gif_psrc, src, src->sa_len) == 0) { 9869426aedfSHajimu UMEMOTO error = EADDRNOTAVAIL; 98717d5cb2dSRobert Watson mtx_unlock(&gif_mtx); 9889426aedfSHajimu UMEMOTO goto bad; 9899426aedfSHajimu UMEMOTO } 9909426aedfSHajimu UMEMOTO 9919426aedfSHajimu UMEMOTO /* XXX both end must be valid? (I mean, not 0.0.0.0) */ 9929426aedfSHajimu UMEMOTO } 99317d5cb2dSRobert Watson mtx_unlock(&gif_mtx); 9949426aedfSHajimu UMEMOTO 9959426aedfSHajimu UMEMOTO /* XXX we can detach from both, but be polite just in case */ 9969426aedfSHajimu UMEMOTO if (sc->gif_psrc) 9979426aedfSHajimu UMEMOTO switch (sc->gif_psrc->sa_family) { 9989426aedfSHajimu UMEMOTO #ifdef INET 9999426aedfSHajimu UMEMOTO case AF_INET: 10009426aedfSHajimu UMEMOTO (void)in_gif_detach(sc); 10019426aedfSHajimu UMEMOTO break; 10029426aedfSHajimu UMEMOTO #endif 10039426aedfSHajimu UMEMOTO #ifdef INET6 10049426aedfSHajimu UMEMOTO case AF_INET6: 10059426aedfSHajimu UMEMOTO (void)in6_gif_detach(sc); 10069426aedfSHajimu UMEMOTO break; 10079426aedfSHajimu UMEMOTO #endif 10089426aedfSHajimu UMEMOTO } 10099426aedfSHajimu UMEMOTO 10109426aedfSHajimu UMEMOTO osrc = sc->gif_psrc; 1011a163d034SWarner Losh sa = (struct sockaddr *)malloc(src->sa_len, M_IFADDR, M_WAITOK); 10129426aedfSHajimu UMEMOTO bcopy((caddr_t)src, (caddr_t)sa, src->sa_len); 10139426aedfSHajimu UMEMOTO sc->gif_psrc = sa; 10149426aedfSHajimu UMEMOTO 10159426aedfSHajimu UMEMOTO odst = sc->gif_pdst; 1016a163d034SWarner Losh sa = (struct sockaddr *)malloc(dst->sa_len, M_IFADDR, M_WAITOK); 10179426aedfSHajimu UMEMOTO bcopy((caddr_t)dst, (caddr_t)sa, dst->sa_len); 10189426aedfSHajimu UMEMOTO sc->gif_pdst = sa; 10199426aedfSHajimu UMEMOTO 10209426aedfSHajimu UMEMOTO switch (sc->gif_psrc->sa_family) { 10219426aedfSHajimu UMEMOTO #ifdef INET 10229426aedfSHajimu UMEMOTO case AF_INET: 10239426aedfSHajimu UMEMOTO error = in_gif_attach(sc); 10249426aedfSHajimu UMEMOTO break; 10259426aedfSHajimu UMEMOTO #endif 10269426aedfSHajimu UMEMOTO #ifdef INET6 10279426aedfSHajimu UMEMOTO case AF_INET6: 1028a1f7e5f8SHajimu UMEMOTO /* 1029a1f7e5f8SHajimu UMEMOTO * Check validity of the scope zone ID of the addresses, and 1030a1f7e5f8SHajimu UMEMOTO * convert it into the kernel internal form if necessary. 1031a1f7e5f8SHajimu UMEMOTO */ 1032a1f7e5f8SHajimu UMEMOTO error = sa6_embedscope((struct sockaddr_in6 *)sc->gif_psrc, 0); 1033a1f7e5f8SHajimu UMEMOTO if (error != 0) 1034a1f7e5f8SHajimu UMEMOTO break; 1035a1f7e5f8SHajimu UMEMOTO error = sa6_embedscope((struct sockaddr_in6 *)sc->gif_pdst, 0); 1036a1f7e5f8SHajimu UMEMOTO if (error != 0) 1037a1f7e5f8SHajimu UMEMOTO break; 10389426aedfSHajimu UMEMOTO error = in6_gif_attach(sc); 10399426aedfSHajimu UMEMOTO break; 10409426aedfSHajimu UMEMOTO #endif 10419426aedfSHajimu UMEMOTO } 10429426aedfSHajimu UMEMOTO if (error) { 10439426aedfSHajimu UMEMOTO /* rollback */ 10449426aedfSHajimu UMEMOTO free((caddr_t)sc->gif_psrc, M_IFADDR); 10459426aedfSHajimu UMEMOTO free((caddr_t)sc->gif_pdst, M_IFADDR); 10469426aedfSHajimu UMEMOTO sc->gif_psrc = osrc; 10479426aedfSHajimu UMEMOTO sc->gif_pdst = odst; 10489426aedfSHajimu UMEMOTO goto bad; 10499426aedfSHajimu UMEMOTO } 10509426aedfSHajimu UMEMOTO 10519426aedfSHajimu UMEMOTO if (osrc) 10529426aedfSHajimu UMEMOTO free((caddr_t)osrc, M_IFADDR); 10539426aedfSHajimu UMEMOTO if (odst) 10549426aedfSHajimu UMEMOTO free((caddr_t)odst, M_IFADDR); 10559426aedfSHajimu UMEMOTO 10569426aedfSHajimu UMEMOTO bad: 10579426aedfSHajimu UMEMOTO if (sc->gif_psrc && sc->gif_pdst) 105813f4c340SRobert Watson ifp->if_drv_flags |= IFF_DRV_RUNNING; 10599426aedfSHajimu UMEMOTO else 106013f4c340SRobert Watson ifp->if_drv_flags &= ~IFF_DRV_RUNNING; 10619426aedfSHajimu UMEMOTO 10629426aedfSHajimu UMEMOTO return error; 10639426aedfSHajimu UMEMOTO } 10649426aedfSHajimu UMEMOTO 10659426aedfSHajimu UMEMOTO void 10669426aedfSHajimu UMEMOTO gif_delete_tunnel(ifp) 10679426aedfSHajimu UMEMOTO struct ifnet *ifp; 10689426aedfSHajimu UMEMOTO { 1069fc74a9f9SBrooks Davis struct gif_softc *sc = ifp->if_softc; 107053dab5feSBrooks Davis 107153dab5feSBrooks Davis if (sc->gif_psrc) { 107253dab5feSBrooks Davis free((caddr_t)sc->gif_psrc, M_IFADDR); 107353dab5feSBrooks Davis sc->gif_psrc = NULL; 107453dab5feSBrooks Davis } 107553dab5feSBrooks Davis if (sc->gif_pdst) { 107653dab5feSBrooks Davis free((caddr_t)sc->gif_pdst, M_IFADDR); 107753dab5feSBrooks Davis sc->gif_pdst = NULL; 107853dab5feSBrooks Davis } 10799426aedfSHajimu UMEMOTO /* it is safe to detach from both */ 10809426aedfSHajimu UMEMOTO #ifdef INET 10819426aedfSHajimu UMEMOTO (void)in_gif_detach(sc); 10829426aedfSHajimu UMEMOTO #endif 10839426aedfSHajimu UMEMOTO #ifdef INET6 10849426aedfSHajimu UMEMOTO (void)in6_gif_detach(sc); 10859426aedfSHajimu UMEMOTO #endif 108613f4c340SRobert Watson ifp->if_drv_flags &= ~IFF_DRV_RUNNING; 108753dab5feSBrooks Davis } 1088