xref: /freebsd/sys/net/if_gre.c (revision acd3428b7d3e94cef0e1881c868cb4b131d4ff41)
173d7ddbcSMaxim Sobolev /*	$NetBSD: if_gre.c,v 1.49 2003/12/11 00:22:29 itojun Exp $ */
28e96e13eSMaxim Sobolev /*	 $FreeBSD$ */
38e96e13eSMaxim Sobolev 
4c398230bSWarner Losh /*-
58e96e13eSMaxim Sobolev  * Copyright (c) 1998 The NetBSD Foundation, Inc.
68e96e13eSMaxim Sobolev  * All rights reserved.
78e96e13eSMaxim Sobolev  *
88e96e13eSMaxim Sobolev  * This code is derived from software contributed to The NetBSD Foundation
98e96e13eSMaxim Sobolev  * by Heiko W.Rupp <hwr@pilhuhn.de>
108e96e13eSMaxim Sobolev  *
119e669156SBjoern A. Zeeb  * IPv6-over-GRE contributed by Gert Doering <gert@greenie.muc.de>
129e669156SBjoern A. Zeeb  *
138e96e13eSMaxim Sobolev  * Redistribution and use in source and binary forms, with or without
148e96e13eSMaxim Sobolev  * modification, are permitted provided that the following conditions
158e96e13eSMaxim Sobolev  * are met:
168e96e13eSMaxim Sobolev  * 1. Redistributions of source code must retain the above copyright
178e96e13eSMaxim Sobolev  *    notice, this list of conditions and the following disclaimer.
188e96e13eSMaxim Sobolev  * 2. Redistributions in binary form must reproduce the above copyright
198e96e13eSMaxim Sobolev  *    notice, this list of conditions and the following disclaimer in the
208e96e13eSMaxim Sobolev  *    documentation and/or other materials provided with the distribution.
218e96e13eSMaxim Sobolev  * 3. All advertising materials mentioning features or use of this software
228e96e13eSMaxim Sobolev  *    must display the following acknowledgement:
238e96e13eSMaxim Sobolev  *        This product includes software developed by the NetBSD
248e96e13eSMaxim Sobolev  *        Foundation, Inc. and its contributors.
258e96e13eSMaxim Sobolev  * 4. Neither the name of The NetBSD Foundation nor the names of its
268e96e13eSMaxim Sobolev  *    contributors may be used to endorse or promote products derived
278e96e13eSMaxim Sobolev  *    from this software without specific prior written permission.
288e96e13eSMaxim Sobolev  *
298e96e13eSMaxim Sobolev  * THIS SOFTWARE IS PROVIDED BY THE NETBSD FOUNDATION, INC. AND CONTRIBUTORS
308e96e13eSMaxim Sobolev  * ``AS IS'' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED
318e96e13eSMaxim Sobolev  * TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR
328e96e13eSMaxim Sobolev  * PURPOSE ARE DISCLAIMED.  IN NO EVENT SHALL THE FOUNDATION OR CONTRIBUTORS
338e96e13eSMaxim Sobolev  * BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR
348e96e13eSMaxim Sobolev  * CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF
358e96e13eSMaxim Sobolev  * SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS
368e96e13eSMaxim Sobolev  * INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN
378e96e13eSMaxim Sobolev  * CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE)
388e96e13eSMaxim Sobolev  * ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE
398e96e13eSMaxim Sobolev  * POSSIBILITY OF SUCH DAMAGE.
408e96e13eSMaxim Sobolev  */
418e96e13eSMaxim Sobolev 
428e96e13eSMaxim Sobolev /*
438e96e13eSMaxim Sobolev  * Encapsulate L3 protocols into IP
449e669156SBjoern A. Zeeb  * See RFC 2784 (successor of RFC 1701 and 1702) for more details.
458e96e13eSMaxim Sobolev  * If_gre is compatible with Cisco GRE tunnels, so you can
468e96e13eSMaxim Sobolev  * have a NetBSD box as the other end of a tunnel interface of a Cisco
478e96e13eSMaxim Sobolev  * router. See gre(4) for more details.
488e96e13eSMaxim Sobolev  * Also supported:  IP in IP encaps (proto 55) as of RFC 2004
498e96e13eSMaxim Sobolev  */
508e96e13eSMaxim Sobolev 
5112768622SBruce Evans #include "opt_atalk.h"
528e96e13eSMaxim Sobolev #include "opt_inet.h"
53f16770aeSBruce M Simpson #include "opt_inet6.h"
548e96e13eSMaxim Sobolev 
558e96e13eSMaxim Sobolev #include <sys/param.h>
568e96e13eSMaxim Sobolev #include <sys/kernel.h>
578e96e13eSMaxim Sobolev #include <sys/malloc.h>
585dba30f1SPoul-Henning Kamp #include <sys/module.h>
598e96e13eSMaxim Sobolev #include <sys/mbuf.h>
60acd3428bSRobert Watson #include <sys/priv.h>
618e96e13eSMaxim Sobolev #include <sys/protosw.h>
628e96e13eSMaxim Sobolev #include <sys/socket.h>
638e96e13eSMaxim Sobolev #include <sys/sockio.h>
648e96e13eSMaxim Sobolev #include <sys/sysctl.h>
651b861caaSBruce Evans #include <sys/systm.h>
668e96e13eSMaxim Sobolev 
678e96e13eSMaxim Sobolev #include <net/ethernet.h>
688e96e13eSMaxim Sobolev #include <net/if.h>
69f889d2efSBrooks Davis #include <net/if_clone.h>
708e96e13eSMaxim Sobolev #include <net/if_types.h>
718e96e13eSMaxim Sobolev #include <net/route.h>
728e96e13eSMaxim Sobolev 
738e96e13eSMaxim Sobolev #ifdef INET
748e96e13eSMaxim Sobolev #include <netinet/in.h>
758e96e13eSMaxim Sobolev #include <netinet/in_systm.h>
768e96e13eSMaxim Sobolev #include <netinet/in_var.h>
778e96e13eSMaxim Sobolev #include <netinet/ip.h>
788e96e13eSMaxim Sobolev #include <netinet/ip_gre.h>
798e96e13eSMaxim Sobolev #include <netinet/ip_var.h>
808e96e13eSMaxim Sobolev #include <netinet/ip_encap.h>
818e96e13eSMaxim Sobolev #else
828e96e13eSMaxim Sobolev #error "Huh? if_gre without inet?"
838e96e13eSMaxim Sobolev #endif
848e96e13eSMaxim Sobolev 
858e96e13eSMaxim Sobolev #include <net/bpf.h>
868e96e13eSMaxim Sobolev 
878e96e13eSMaxim Sobolev #include <net/if_gre.h>
888e96e13eSMaxim Sobolev 
898e96e13eSMaxim Sobolev /*
908e96e13eSMaxim Sobolev  * It is not easy to calculate the right value for a GRE MTU.
918e96e13eSMaxim Sobolev  * We leave this task to the admin and use the same default that
928e96e13eSMaxim Sobolev  * other vendors use.
938e96e13eSMaxim Sobolev  */
948e96e13eSMaxim Sobolev #define GREMTU	1476
958e96e13eSMaxim Sobolev 
968e96e13eSMaxim Sobolev #define GRENAME	"gre"
978e96e13eSMaxim Sobolev 
98bdae44a8SRobert Watson /*
99bdae44a8SRobert Watson  * gre_mtx protects all global variables in if_gre.c.
100bdae44a8SRobert Watson  * XXX: gre_softc data not protected yet.
101bdae44a8SRobert Watson  */
102bdae44a8SRobert Watson struct mtx gre_mtx;
1038e96e13eSMaxim Sobolev static MALLOC_DEFINE(M_GRE, GRENAME, "Generic Routing Encapsulation");
1048e96e13eSMaxim Sobolev 
1058e96e13eSMaxim Sobolev struct gre_softc_head gre_softc_list;
1068e96e13eSMaxim Sobolev 
1076b7330e2SSam Leffler static int	gre_clone_create(struct if_clone *, int, caddr_t);
1089ee35470SAlfred Perlstein static void	gre_clone_destroy(struct ifnet *);
109c23d234cSMaxim Sobolev static int	gre_ioctl(struct ifnet *, u_long, caddr_t);
110c23d234cSMaxim Sobolev static int	gre_output(struct ifnet *, struct mbuf *, struct sockaddr *,
111c23d234cSMaxim Sobolev 		    struct rtentry *rt);
1128e96e13eSMaxim Sobolev 
113f889d2efSBrooks Davis IFC_SIMPLE_DECLARE(gre, 0);
1148e96e13eSMaxim Sobolev 
115c23d234cSMaxim Sobolev static int gre_compute_route(struct gre_softc *sc);
1168e96e13eSMaxim Sobolev 
1179ee35470SAlfred Perlstein static void	greattach(void);
1188e96e13eSMaxim Sobolev 
1198e96e13eSMaxim Sobolev #ifdef INET
1208e96e13eSMaxim Sobolev extern struct domain inetdomain;
121303989a2SRuslan Ermilov static const struct protosw in_gre_protosw = {
122303989a2SRuslan Ermilov 	.pr_type =		SOCK_RAW,
123303989a2SRuslan Ermilov 	.pr_domain =		&inetdomain,
124303989a2SRuslan Ermilov 	.pr_protocol =		IPPROTO_GRE,
125303989a2SRuslan Ermilov 	.pr_flags =		PR_ATOMIC|PR_ADDR,
1263f2e28feSBjoern A. Zeeb 	.pr_input =		gre_input,
127303989a2SRuslan Ermilov 	.pr_output =		(pr_output_t *)rip_output,
128303989a2SRuslan Ermilov 	.pr_ctlinput =		rip_ctlinput,
129303989a2SRuslan Ermilov 	.pr_ctloutput =		rip_ctloutput,
130303989a2SRuslan Ermilov 	.pr_usrreqs =		&rip_usrreqs
1318e96e13eSMaxim Sobolev };
132303989a2SRuslan Ermilov static const struct protosw in_mobile_protosw = {
133303989a2SRuslan Ermilov 	.pr_type =		SOCK_RAW,
134303989a2SRuslan Ermilov 	.pr_domain =		&inetdomain,
135303989a2SRuslan Ermilov 	.pr_protocol =		IPPROTO_MOBILE,
136303989a2SRuslan Ermilov 	.pr_flags =		PR_ATOMIC|PR_ADDR,
1373f2e28feSBjoern A. Zeeb 	.pr_input =		gre_mobile_input,
138303989a2SRuslan Ermilov 	.pr_output =		(pr_output_t *)rip_output,
139303989a2SRuslan Ermilov 	.pr_ctlinput =		rip_ctlinput,
140303989a2SRuslan Ermilov 	.pr_ctloutput =		rip_ctloutput,
141303989a2SRuslan Ermilov 	.pr_usrreqs =		&rip_usrreqs
1428e96e13eSMaxim Sobolev };
1438e96e13eSMaxim Sobolev #endif
1448e96e13eSMaxim Sobolev 
1458e96e13eSMaxim Sobolev SYSCTL_DECL(_net_link);
1461d3bcf35SBruce M Simpson SYSCTL_NODE(_net_link, IFT_TUNNEL, gre, CTLFLAG_RW, 0,
1478e96e13eSMaxim Sobolev     "Generic Routing Encapsulation");
1488e96e13eSMaxim Sobolev #ifndef MAX_GRE_NEST
1498e96e13eSMaxim Sobolev /*
1508e96e13eSMaxim Sobolev  * This macro controls the default upper limitation on nesting of gre tunnels.
1518e96e13eSMaxim Sobolev  * Since, setting a large value to this macro with a careless configuration
1528e96e13eSMaxim Sobolev  * may introduce system crash, we don't allow any nestings by default.
1538e96e13eSMaxim Sobolev  * If you need to configure nested gre tunnels, you can define this macro
1548e96e13eSMaxim Sobolev  * in your kernel configuration file.  However, if you do so, please be
1558e96e13eSMaxim Sobolev  * careful to configure the tunnels so that it won't make a loop.
1568e96e13eSMaxim Sobolev  */
1578e96e13eSMaxim Sobolev #define MAX_GRE_NEST 1
1588e96e13eSMaxim Sobolev #endif
1598e96e13eSMaxim Sobolev static int max_gre_nesting = MAX_GRE_NEST;
1608e96e13eSMaxim Sobolev SYSCTL_INT(_net_link_gre, OID_AUTO, max_nesting, CTLFLAG_RW,
1618e96e13eSMaxim Sobolev     &max_gre_nesting, 0, "Max nested tunnels");
1628e96e13eSMaxim Sobolev 
1638e96e13eSMaxim Sobolev /* ARGSUSED */
164c23d234cSMaxim Sobolev static void
1658e96e13eSMaxim Sobolev greattach(void)
1668e96e13eSMaxim Sobolev {
1678e96e13eSMaxim Sobolev 
168bdae44a8SRobert Watson 	mtx_init(&gre_mtx, "gre_mtx", NULL, MTX_DEF);
1698e96e13eSMaxim Sobolev 	LIST_INIT(&gre_softc_list);
1708e96e13eSMaxim Sobolev 	if_clone_attach(&gre_cloner);
1718e96e13eSMaxim Sobolev }
1728e96e13eSMaxim Sobolev 
173c23d234cSMaxim Sobolev static int
1746b7330e2SSam Leffler gre_clone_create(ifc, unit, params)
1758e96e13eSMaxim Sobolev 	struct if_clone *ifc;
1768e96e13eSMaxim Sobolev 	int unit;
1776b7330e2SSam Leffler 	caddr_t params;
1788e96e13eSMaxim Sobolev {
1798e96e13eSMaxim Sobolev 	struct gre_softc *sc;
1808e96e13eSMaxim Sobolev 
181b3c9a01eSBruce M Simpson 	sc = malloc(sizeof(struct gre_softc), M_GRE, M_WAITOK | M_ZERO);
1828e96e13eSMaxim Sobolev 
183066b192eSBjoern A. Zeeb 	GRE2IFP(sc) = if_alloc(IFT_TUNNEL);
184066b192eSBjoern A. Zeeb 	if (GRE2IFP(sc) == NULL) {
185066b192eSBjoern A. Zeeb 		free(sc, M_GRE);
186066b192eSBjoern A. Zeeb 		return (ENOSPC);
187066b192eSBjoern A. Zeeb 	}
188066b192eSBjoern A. Zeeb 
189fc74a9f9SBrooks Davis 	GRE2IFP(sc)->if_softc = sc;
190066b192eSBjoern A. Zeeb 	if_initname(GRE2IFP(sc), ifc->ifc_name, unit);
191066b192eSBjoern A. Zeeb 
192fc74a9f9SBrooks Davis 	GRE2IFP(sc)->if_snd.ifq_maxlen = IFQ_MAXLEN;
193fc74a9f9SBrooks Davis 	GRE2IFP(sc)->if_addrlen = 0;
194fc74a9f9SBrooks Davis 	GRE2IFP(sc)->if_hdrlen = 24; /* IP + GRE */
195fc74a9f9SBrooks Davis 	GRE2IFP(sc)->if_mtu = GREMTU;
196fc74a9f9SBrooks Davis 	GRE2IFP(sc)->if_flags = IFF_POINTOPOINT|IFF_MULTICAST;
197fc74a9f9SBrooks Davis 	GRE2IFP(sc)->if_output = gre_output;
198fc74a9f9SBrooks Davis 	GRE2IFP(sc)->if_ioctl = gre_ioctl;
1998e96e13eSMaxim Sobolev 	sc->g_dst.s_addr = sc->g_src.s_addr = INADDR_ANY;
2008e96e13eSMaxim Sobolev 	sc->g_proto = IPPROTO_GRE;
201fc74a9f9SBrooks Davis 	GRE2IFP(sc)->if_flags |= IFF_LINK0;
2028e96e13eSMaxim Sobolev 	sc->encap = NULL;
2038e96e13eSMaxim Sobolev 	sc->called = 0;
2047735aeb9SMaxim Sobolev 	sc->wccp_ver = WCCP_V1;
205fc74a9f9SBrooks Davis 	if_attach(GRE2IFP(sc));
206fc74a9f9SBrooks Davis 	bpfattach(GRE2IFP(sc), DLT_NULL, sizeof(u_int32_t));
207bdae44a8SRobert Watson 	mtx_lock(&gre_mtx);
2088e96e13eSMaxim Sobolev 	LIST_INSERT_HEAD(&gre_softc_list, sc, sc_list);
209bdae44a8SRobert Watson 	mtx_unlock(&gre_mtx);
2108e96e13eSMaxim Sobolev 	return (0);
2118e96e13eSMaxim Sobolev }
2128e96e13eSMaxim Sobolev 
213c23d234cSMaxim Sobolev static void
2148e96e13eSMaxim Sobolev gre_clone_destroy(ifp)
2158e96e13eSMaxim Sobolev 	struct ifnet *ifp;
2168e96e13eSMaxim Sobolev {
2178e96e13eSMaxim Sobolev 	struct gre_softc *sc = ifp->if_softc;
2188e96e13eSMaxim Sobolev 
219bdae44a8SRobert Watson 	mtx_lock(&gre_mtx);
2208e96e13eSMaxim Sobolev 	LIST_REMOVE(sc, sc_list);
221bdae44a8SRobert Watson 	mtx_unlock(&gre_mtx);
222febd0759SAndrew Thompson 
223febd0759SAndrew Thompson #ifdef INET
224febd0759SAndrew Thompson 	if (sc->encap != NULL)
225febd0759SAndrew Thompson 		encap_detach(sc->encap);
226febd0759SAndrew Thompson #endif
227febd0759SAndrew Thompson 	bpfdetach(ifp);
228febd0759SAndrew Thompson 	if_detach(ifp);
229febd0759SAndrew Thompson 	if_free(ifp);
230febd0759SAndrew Thompson 	free(sc, M_GRE);
2318e96e13eSMaxim Sobolev }
2328e96e13eSMaxim Sobolev 
2338e96e13eSMaxim Sobolev /*
2348e96e13eSMaxim Sobolev  * The output routine. Takes a packet and encapsulates it in the protocol
2358e96e13eSMaxim Sobolev  * given by sc->g_proto. See also RFC 1701 and RFC 2004
2368e96e13eSMaxim Sobolev  */
237c23d234cSMaxim Sobolev static int
2388e96e13eSMaxim Sobolev gre_output(struct ifnet *ifp, struct mbuf *m, struct sockaddr *dst,
2398e96e13eSMaxim Sobolev 	   struct rtentry *rt)
2408e96e13eSMaxim Sobolev {
2418e96e13eSMaxim Sobolev 	int error = 0;
2428e96e13eSMaxim Sobolev 	struct gre_softc *sc = ifp->if_softc;
2438e96e13eSMaxim Sobolev 	struct greip *gh;
2448e96e13eSMaxim Sobolev 	struct ip *ip;
2459e669156SBjoern A. Zeeb 	u_short ip_id = 0;
2469e669156SBjoern A. Zeeb 	uint8_t ip_tos = 0;
24773d7ddbcSMaxim Sobolev 	u_int16_t etype = 0;
2488e96e13eSMaxim Sobolev 	struct mobile_h mob_h;
24901399f34SDavid Malone 	u_int32_t af;
2508e96e13eSMaxim Sobolev 
2518e96e13eSMaxim Sobolev 	/*
2528e96e13eSMaxim Sobolev 	 * gre may cause infinite recursion calls when misconfigured.
2538e96e13eSMaxim Sobolev 	 * We'll prevent this by introducing upper limit.
2548e96e13eSMaxim Sobolev 	 */
2558e96e13eSMaxim Sobolev 	if (++(sc->called) > max_gre_nesting) {
2568e96e13eSMaxim Sobolev 		printf("%s: gre_output: recursively called too many "
257fc74a9f9SBrooks Davis 		       "times(%d)\n", if_name(GRE2IFP(sc)), sc->called);
2588e96e13eSMaxim Sobolev 		m_freem(m);
2598e96e13eSMaxim Sobolev 		error = EIO;    /* is there better errno? */
2608e96e13eSMaxim Sobolev 		goto end;
2618e96e13eSMaxim Sobolev 	}
2628e96e13eSMaxim Sobolev 
26313f4c340SRobert Watson 	if (!((ifp->if_flags & IFF_UP) &&
26413f4c340SRobert Watson 	    (ifp->if_drv_flags & IFF_DRV_RUNNING)) ||
2658e96e13eSMaxim Sobolev 	    sc->g_src.s_addr == INADDR_ANY || sc->g_dst.s_addr == INADDR_ANY) {
2668e96e13eSMaxim Sobolev 		m_freem(m);
2678e96e13eSMaxim Sobolev 		error = ENETDOWN;
2688e96e13eSMaxim Sobolev 		goto end;
2698e96e13eSMaxim Sobolev 	}
2708e96e13eSMaxim Sobolev 
2718e96e13eSMaxim Sobolev 	gh = NULL;
2728e96e13eSMaxim Sobolev 	ip = NULL;
2738e96e13eSMaxim Sobolev 
27401399f34SDavid Malone 	/* BPF writes need to be handled specially. */
27501399f34SDavid Malone 	if (dst->sa_family == AF_UNSPEC) {
27601399f34SDavid Malone 		bcopy(dst->sa_data, &af, sizeof(af));
27701399f34SDavid Malone 		dst->sa_family = af;
27801399f34SDavid Malone 	}
27901399f34SDavid Malone 
28016d878ccSChristian S.J. Peron 	if (bpf_peers_present(ifp->if_bpf)) {
28101399f34SDavid Malone 		af = dst->sa_family;
282437ffe18SSam Leffler 		bpf_mtap2(ifp->if_bpf, &af, sizeof(af), m);
2838e96e13eSMaxim Sobolev 	}
2848e96e13eSMaxim Sobolev 
2858e96e13eSMaxim Sobolev 	m->m_flags &= ~(M_BCAST|M_MCAST);
2868e96e13eSMaxim Sobolev 
2878e96e13eSMaxim Sobolev 	if (sc->g_proto == IPPROTO_MOBILE) {
2888e96e13eSMaxim Sobolev 		if (dst->sa_family == AF_INET) {
2898e96e13eSMaxim Sobolev 			struct mbuf *m0;
2908e96e13eSMaxim Sobolev 			int msiz;
2918e96e13eSMaxim Sobolev 
2928e96e13eSMaxim Sobolev 			ip = mtod(m, struct ip *);
2938e96e13eSMaxim Sobolev 
2948e96e13eSMaxim Sobolev 			/*
2958e96e13eSMaxim Sobolev 			 * RFC2004 specifies that fragmented diagrams shouldn't
2968e96e13eSMaxim Sobolev 			 * be encapsulated.
2978e96e13eSMaxim Sobolev 			 */
298a393a28aSJeffrey Hsu 			if (ip->ip_off & (IP_MF | IP_OFFMASK)) {
2998e96e13eSMaxim Sobolev 				_IF_DROP(&ifp->if_snd);
3008e96e13eSMaxim Sobolev 				m_freem(m);
3018e96e13eSMaxim Sobolev 				error = EINVAL;    /* is there better errno? */
3028e96e13eSMaxim Sobolev 				goto end;
3038e96e13eSMaxim Sobolev 			}
3048e96e13eSMaxim Sobolev 			memset(&mob_h, 0, MOB_H_SIZ_L);
3058e96e13eSMaxim Sobolev 			mob_h.proto = (ip->ip_p) << 8;
3068e96e13eSMaxim Sobolev 			mob_h.odst = ip->ip_dst.s_addr;
3078e96e13eSMaxim Sobolev 			ip->ip_dst.s_addr = sc->g_dst.s_addr;
3088e96e13eSMaxim Sobolev 
3098e96e13eSMaxim Sobolev 			/*
3108e96e13eSMaxim Sobolev 			 * If the packet comes from our host, we only change
3118e96e13eSMaxim Sobolev 			 * the destination address in the IP header.
3128e96e13eSMaxim Sobolev 			 * Else we also need to save and change the source
3138e96e13eSMaxim Sobolev 			 */
3148e96e13eSMaxim Sobolev 			if (in_hosteq(ip->ip_src, sc->g_src)) {
3158e96e13eSMaxim Sobolev 				msiz = MOB_H_SIZ_S;
3168e96e13eSMaxim Sobolev 			} else {
3178e96e13eSMaxim Sobolev 				mob_h.proto |= MOB_H_SBIT;
3188e96e13eSMaxim Sobolev 				mob_h.osrc = ip->ip_src.s_addr;
3198e96e13eSMaxim Sobolev 				ip->ip_src.s_addr = sc->g_src.s_addr;
3208e96e13eSMaxim Sobolev 				msiz = MOB_H_SIZ_L;
3218e96e13eSMaxim Sobolev 			}
3228e96e13eSMaxim Sobolev 			mob_h.proto = htons(mob_h.proto);
32373d7ddbcSMaxim Sobolev 			mob_h.hcrc = gre_in_cksum((u_int16_t *)&mob_h, msiz);
3248e96e13eSMaxim Sobolev 
3258e96e13eSMaxim Sobolev 			if ((m->m_data - msiz) < m->m_pktdat) {
3268e96e13eSMaxim Sobolev 				/* need new mbuf */
32734333b16SAndre Oppermann 				MGETHDR(m0, M_DONTWAIT, MT_DATA);
3288e96e13eSMaxim Sobolev 				if (m0 == NULL) {
3298e96e13eSMaxim Sobolev 					_IF_DROP(&ifp->if_snd);
3308e96e13eSMaxim Sobolev 					m_freem(m);
3318e96e13eSMaxim Sobolev 					error = ENOBUFS;
3328e96e13eSMaxim Sobolev 					goto end;
3338e96e13eSMaxim Sobolev 				}
3348e96e13eSMaxim Sobolev 				m0->m_next = m;
3358e96e13eSMaxim Sobolev 				m->m_data += sizeof(struct ip);
3368e96e13eSMaxim Sobolev 				m->m_len -= sizeof(struct ip);
3378e96e13eSMaxim Sobolev 				m0->m_pkthdr.len = m->m_pkthdr.len + msiz;
3388e96e13eSMaxim Sobolev 				m0->m_len = msiz + sizeof(struct ip);
3398e96e13eSMaxim Sobolev 				m0->m_data += max_linkhdr;
3408e96e13eSMaxim Sobolev 				memcpy(mtod(m0, caddr_t), (caddr_t)ip,
3418e96e13eSMaxim Sobolev 				       sizeof(struct ip));
3428e96e13eSMaxim Sobolev 				m = m0;
3438e96e13eSMaxim Sobolev 			} else {  /* we have some space left in the old one */
3448e96e13eSMaxim Sobolev 				m->m_data -= msiz;
3458e96e13eSMaxim Sobolev 				m->m_len += msiz;
3468e96e13eSMaxim Sobolev 				m->m_pkthdr.len += msiz;
3478e96e13eSMaxim Sobolev 				bcopy(ip, mtod(m, caddr_t),
3488e96e13eSMaxim Sobolev 					sizeof(struct ip));
3498e96e13eSMaxim Sobolev 			}
3508e96e13eSMaxim Sobolev 			ip = mtod(m, struct ip *);
3518e96e13eSMaxim Sobolev 			memcpy((caddr_t)(ip + 1), &mob_h, (unsigned)msiz);
3528e96e13eSMaxim Sobolev 			ip->ip_len = ntohs(ip->ip_len) + msiz;
3538e96e13eSMaxim Sobolev 		} else {  /* AF_INET */
3548e96e13eSMaxim Sobolev 			_IF_DROP(&ifp->if_snd);
3558e96e13eSMaxim Sobolev 			m_freem(m);
3568e96e13eSMaxim Sobolev 			error = EINVAL;
3578e96e13eSMaxim Sobolev 			goto end;
3588e96e13eSMaxim Sobolev 		}
3598e96e13eSMaxim Sobolev 	} else if (sc->g_proto == IPPROTO_GRE) {
3608e96e13eSMaxim Sobolev 		switch (dst->sa_family) {
3618e96e13eSMaxim Sobolev 		case AF_INET:
3628e96e13eSMaxim Sobolev 			ip = mtod(m, struct ip *);
3639e669156SBjoern A. Zeeb 			ip_tos = ip->ip_tos;
3649e669156SBjoern A. Zeeb 			ip_id = ip->ip_id;
3658e96e13eSMaxim Sobolev 			etype = ETHERTYPE_IP;
3668e96e13eSMaxim Sobolev 			break;
3679e669156SBjoern A. Zeeb #ifdef INET6
3689e669156SBjoern A. Zeeb 		case AF_INET6:
3699e669156SBjoern A. Zeeb 			ip_id = ip_newid();
3709e669156SBjoern A. Zeeb 			etype = ETHERTYPE_IPV6;
3719e669156SBjoern A. Zeeb 			break;
3729e669156SBjoern A. Zeeb #endif
3738e96e13eSMaxim Sobolev #ifdef NETATALK
3748e96e13eSMaxim Sobolev 		case AF_APPLETALK:
3758e96e13eSMaxim Sobolev 			etype = ETHERTYPE_ATALK;
3768e96e13eSMaxim Sobolev 			break;
3778e96e13eSMaxim Sobolev #endif
3788e96e13eSMaxim Sobolev 		default:
3798e96e13eSMaxim Sobolev 			_IF_DROP(&ifp->if_snd);
3808e96e13eSMaxim Sobolev 			m_freem(m);
3818e96e13eSMaxim Sobolev 			error = EAFNOSUPPORT;
3828e96e13eSMaxim Sobolev 			goto end;
3838e96e13eSMaxim Sobolev 		}
384a163d034SWarner Losh 		M_PREPEND(m, sizeof(struct greip), M_DONTWAIT);
3858e96e13eSMaxim Sobolev 	} else {
3868e96e13eSMaxim Sobolev 		_IF_DROP(&ifp->if_snd);
3878e96e13eSMaxim Sobolev 		m_freem(m);
3888e96e13eSMaxim Sobolev 		error = EINVAL;
3898e96e13eSMaxim Sobolev 		goto end;
3908e96e13eSMaxim Sobolev 	}
3918e96e13eSMaxim Sobolev 
3925efdd80aSAndre Oppermann 	if (m == NULL) {	/* mbuf allocation failed */
3938e96e13eSMaxim Sobolev 		_IF_DROP(&ifp->if_snd);
3948e96e13eSMaxim Sobolev 		error = ENOBUFS;
3958e96e13eSMaxim Sobolev 		goto end;
3968e96e13eSMaxim Sobolev 	}
3978e96e13eSMaxim Sobolev 
3988e96e13eSMaxim Sobolev 	gh = mtod(m, struct greip *);
3998e96e13eSMaxim Sobolev 	if (sc->g_proto == IPPROTO_GRE) {
4008e96e13eSMaxim Sobolev 		/* we don't have any GRE flags for now */
4014c837892SMaxim Sobolev 		memset((void *)gh, 0, sizeof(struct greip));
4028e96e13eSMaxim Sobolev 		gh->gi_ptype = htons(etype);
4038e96e13eSMaxim Sobolev 	}
4048e96e13eSMaxim Sobolev 
4058e96e13eSMaxim Sobolev 	gh->gi_pr = sc->g_proto;
4068e96e13eSMaxim Sobolev 	if (sc->g_proto != IPPROTO_MOBILE) {
4078e96e13eSMaxim Sobolev 		gh->gi_src = sc->g_src;
4088e96e13eSMaxim Sobolev 		gh->gi_dst = sc->g_dst;
40997c4cd98SMaxim Sobolev 		((struct ip*)gh)->ip_v = IPPROTO_IPV4;
4108e96e13eSMaxim Sobolev 		((struct ip*)gh)->ip_hl = (sizeof(struct ip)) >> 2;
411c23d234cSMaxim Sobolev 		((struct ip*)gh)->ip_ttl = GRE_TTL;
4129e669156SBjoern A. Zeeb 		((struct ip*)gh)->ip_tos = ip_tos;
4139e669156SBjoern A. Zeeb 		((struct ip*)gh)->ip_id = ip_id;
4144c837892SMaxim Sobolev 		gh->gi_len = m->m_pkthdr.len;
4158e96e13eSMaxim Sobolev 	}
4168e96e13eSMaxim Sobolev 
4178e96e13eSMaxim Sobolev 	ifp->if_opackets++;
4188e96e13eSMaxim Sobolev 	ifp->if_obytes += m->m_pkthdr.len;
4198b75eec1SAndre Oppermann 	/*
4208b75eec1SAndre Oppermann 	 * Send it off and with IP_FORWARD flag to prevent it from
4218b75eec1SAndre Oppermann 	 * overwriting the ip_id again.  ip_id is already set to the
4228b75eec1SAndre Oppermann 	 * ip_id of the encapsulated packet.
4238b75eec1SAndre Oppermann 	 */
4245efdd80aSAndre Oppermann 	error = ip_output(m, NULL, &sc->route, IP_FORWARDING,
42573d7ddbcSMaxim Sobolev 	    (struct ip_moptions *)NULL, (struct inpcb *)NULL);
4268e96e13eSMaxim Sobolev   end:
4278e96e13eSMaxim Sobolev 	sc->called = 0;
4288e96e13eSMaxim Sobolev 	if (error)
4298e96e13eSMaxim Sobolev 		ifp->if_oerrors++;
4308e96e13eSMaxim Sobolev 	return (error);
4318e96e13eSMaxim Sobolev }
4328e96e13eSMaxim Sobolev 
433c23d234cSMaxim Sobolev static int
4348e96e13eSMaxim Sobolev gre_ioctl(struct ifnet *ifp, u_long cmd, caddr_t data)
4358e96e13eSMaxim Sobolev {
4368e96e13eSMaxim Sobolev 	struct ifreq *ifr = (struct ifreq *)data;
4378e96e13eSMaxim Sobolev 	struct if_laddrreq *lifr = (struct if_laddrreq *)data;
4388e96e13eSMaxim Sobolev 	struct in_aliasreq *aifr = (struct in_aliasreq *)data;
4398e96e13eSMaxim Sobolev 	struct gre_softc *sc = ifp->if_softc;
4408e96e13eSMaxim Sobolev 	int s;
4418e96e13eSMaxim Sobolev 	struct sockaddr_in si;
4428e96e13eSMaxim Sobolev 	struct sockaddr *sa = NULL;
4438e96e13eSMaxim Sobolev 	int error;
4448e96e13eSMaxim Sobolev 	struct sockaddr_in sp, sm, dp, dm;
4458e96e13eSMaxim Sobolev 
4468e96e13eSMaxim Sobolev 	error = 0;
4478e96e13eSMaxim Sobolev 
4488e96e13eSMaxim Sobolev 	s = splnet();
4498e96e13eSMaxim Sobolev 	switch (cmd) {
4508e96e13eSMaxim Sobolev 	case SIOCSIFADDR:
4518e96e13eSMaxim Sobolev 		ifp->if_flags |= IFF_UP;
4528e96e13eSMaxim Sobolev 		break;
4538e96e13eSMaxim Sobolev 	case SIOCSIFDSTADDR:
4548e96e13eSMaxim Sobolev 		break;
4558e96e13eSMaxim Sobolev 	case SIOCSIFFLAGS:
456acd3428bSRobert Watson 		/*
457acd3428bSRobert Watson 		 * XXXRW: Isn't this suser() redundant to the ifnet layer
458acd3428bSRobert Watson 		 * check?
459acd3428bSRobert Watson 		 */
460acd3428bSRobert Watson 		if ((error = priv_check(curthread, PRIV_NET_SETIFFLAGS)) != 0)
4618e96e13eSMaxim Sobolev 			break;
4628e96e13eSMaxim Sobolev 		if ((ifr->ifr_flags & IFF_LINK0) != 0)
4638e96e13eSMaxim Sobolev 			sc->g_proto = IPPROTO_GRE;
4648e96e13eSMaxim Sobolev 		else
4658e96e13eSMaxim Sobolev 			sc->g_proto = IPPROTO_MOBILE;
4667735aeb9SMaxim Sobolev 		if ((ifr->ifr_flags & IFF_LINK2) != 0)
4677735aeb9SMaxim Sobolev 			sc->wccp_ver = WCCP_V2;
4687735aeb9SMaxim Sobolev 		else
4697735aeb9SMaxim Sobolev 			sc->wccp_ver = WCCP_V1;
4708e96e13eSMaxim Sobolev 		goto recompute;
4718e96e13eSMaxim Sobolev 	case SIOCSIFMTU:
472acd3428bSRobert Watson 		/*
473acd3428bSRobert Watson 		 * XXXRW: Isn't this suser() redundant to the ifnet layer
474acd3428bSRobert Watson 		 * check?
475acd3428bSRobert Watson 		 */
476acd3428bSRobert Watson 		if ((error = priv_check(curthread, PRIV_NET_SETIFMTU)) != 0)
4778e96e13eSMaxim Sobolev 			break;
4788e96e13eSMaxim Sobolev 		if (ifr->ifr_mtu < 576) {
4798e96e13eSMaxim Sobolev 			error = EINVAL;
4808e96e13eSMaxim Sobolev 			break;
4818e96e13eSMaxim Sobolev 		}
4828e96e13eSMaxim Sobolev 		ifp->if_mtu = ifr->ifr_mtu;
4838e96e13eSMaxim Sobolev 		break;
4848e96e13eSMaxim Sobolev 	case SIOCGIFMTU:
485fc74a9f9SBrooks Davis 		ifr->ifr_mtu = GRE2IFP(sc)->if_mtu;
4868e96e13eSMaxim Sobolev 		break;
4878e96e13eSMaxim Sobolev 	case SIOCADDMULTI:
488acd3428bSRobert Watson 		/*
489acd3428bSRobert Watson 		 * XXXRW: Isn't this suser() redundant to the ifnet layer
490acd3428bSRobert Watson 		 * check?
491acd3428bSRobert Watson 		 */
492acd3428bSRobert Watson 		if ((error = priv_check(curthread, PRIV_NET_ADDMULTI)) != 0)
493acd3428bSRobert Watson 			break;
494acd3428bSRobert Watson 		if (ifr == 0) {
495acd3428bSRobert Watson 			error = EAFNOSUPPORT;
496acd3428bSRobert Watson 			break;
497acd3428bSRobert Watson 		}
498acd3428bSRobert Watson 		switch (ifr->ifr_addr.sa_family) {
499acd3428bSRobert Watson #ifdef INET
500acd3428bSRobert Watson 		case AF_INET:
501acd3428bSRobert Watson 			break;
502acd3428bSRobert Watson #endif
503acd3428bSRobert Watson #ifdef INET6
504acd3428bSRobert Watson 		case AF_INET6:
505acd3428bSRobert Watson 			break;
506acd3428bSRobert Watson #endif
507acd3428bSRobert Watson 		default:
508acd3428bSRobert Watson 			error = EAFNOSUPPORT;
509acd3428bSRobert Watson 			break;
510acd3428bSRobert Watson 		}
511acd3428bSRobert Watson 		break;
5128e96e13eSMaxim Sobolev 	case SIOCDELMULTI:
513acd3428bSRobert Watson 		/*
514acd3428bSRobert Watson 		 * XXXRW: Isn't this suser() redundant to the ifnet layer
515acd3428bSRobert Watson 		 * check?
516acd3428bSRobert Watson 		 */
517acd3428bSRobert Watson 		if ((error = priv_check(curthread, PRIV_NET_DELIFGROUP)) != 0)
5188e96e13eSMaxim Sobolev 			break;
5198e96e13eSMaxim Sobolev 		if (ifr == 0) {
5208e96e13eSMaxim Sobolev 			error = EAFNOSUPPORT;
5218e96e13eSMaxim Sobolev 			break;
5228e96e13eSMaxim Sobolev 		}
5238e96e13eSMaxim Sobolev 		switch (ifr->ifr_addr.sa_family) {
5248e96e13eSMaxim Sobolev #ifdef INET
5258e96e13eSMaxim Sobolev 		case AF_INET:
5268e96e13eSMaxim Sobolev 			break;
5278e96e13eSMaxim Sobolev #endif
5289e669156SBjoern A. Zeeb #ifdef INET6
5299e669156SBjoern A. Zeeb 		case AF_INET6:
5309e669156SBjoern A. Zeeb 			break;
5319e669156SBjoern A. Zeeb #endif
5328e96e13eSMaxim Sobolev 		default:
5338e96e13eSMaxim Sobolev 			error = EAFNOSUPPORT;
5348e96e13eSMaxim Sobolev 			break;
5358e96e13eSMaxim Sobolev 		}
5368e96e13eSMaxim Sobolev 		break;
5378e96e13eSMaxim Sobolev 	case GRESPROTO:
538acd3428bSRobert Watson 		/*
539acd3428bSRobert Watson 		 * XXXRW: Isn't this suser() redundant to the ifnet layer
540acd3428bSRobert Watson 		 * check?
541acd3428bSRobert Watson 		 */
542acd3428bSRobert Watson 		if ((error = priv_check(curthread, PRIV_NET_GRE)) != 0)
5438e96e13eSMaxim Sobolev 			break;
5448e96e13eSMaxim Sobolev 		sc->g_proto = ifr->ifr_flags;
5458e96e13eSMaxim Sobolev 		switch (sc->g_proto) {
5468e96e13eSMaxim Sobolev 		case IPPROTO_GRE:
5478e96e13eSMaxim Sobolev 			ifp->if_flags |= IFF_LINK0;
5488e96e13eSMaxim Sobolev 			break;
5498e96e13eSMaxim Sobolev 		case IPPROTO_MOBILE:
5508e96e13eSMaxim Sobolev 			ifp->if_flags &= ~IFF_LINK0;
5518e96e13eSMaxim Sobolev 			break;
5528e96e13eSMaxim Sobolev 		default:
5538e96e13eSMaxim Sobolev 			error = EPROTONOSUPPORT;
5548e96e13eSMaxim Sobolev 			break;
5558e96e13eSMaxim Sobolev 		}
5568e96e13eSMaxim Sobolev 		goto recompute;
5578e96e13eSMaxim Sobolev 	case GREGPROTO:
5588e96e13eSMaxim Sobolev 		ifr->ifr_flags = sc->g_proto;
5598e96e13eSMaxim Sobolev 		break;
5608e96e13eSMaxim Sobolev 	case GRESADDRS:
5618e96e13eSMaxim Sobolev 	case GRESADDRD:
562acd3428bSRobert Watson 		error = priv_check(curthread, PRIV_NET_GRE);
563acd3428bSRobert Watson 		if (error)
564acd3428bSRobert Watson 			return (error);
5658e96e13eSMaxim Sobolev 		/*
5668e96e13eSMaxim Sobolev 		 * set tunnel endpoints, compute a less specific route
5678e96e13eSMaxim Sobolev 		 * to the remote end and mark if as up
5688e96e13eSMaxim Sobolev 		 */
5698e96e13eSMaxim Sobolev 		sa = &ifr->ifr_addr;
5708e96e13eSMaxim Sobolev 		if (cmd == GRESADDRS)
5718e96e13eSMaxim Sobolev 			sc->g_src = (satosin(sa))->sin_addr;
5728e96e13eSMaxim Sobolev 		if (cmd == GRESADDRD)
5738e96e13eSMaxim Sobolev 			sc->g_dst = (satosin(sa))->sin_addr;
5748e96e13eSMaxim Sobolev 	recompute:
5758e96e13eSMaxim Sobolev #ifdef INET
5768e96e13eSMaxim Sobolev 		if (sc->encap != NULL) {
5778e96e13eSMaxim Sobolev 			encap_detach(sc->encap);
5788e96e13eSMaxim Sobolev 			sc->encap = NULL;
5798e96e13eSMaxim Sobolev 		}
5808e96e13eSMaxim Sobolev #endif
5818e96e13eSMaxim Sobolev 		if ((sc->g_src.s_addr != INADDR_ANY) &&
5828e96e13eSMaxim Sobolev 		    (sc->g_dst.s_addr != INADDR_ANY)) {
5838e96e13eSMaxim Sobolev 			bzero(&sp, sizeof(sp));
5848e96e13eSMaxim Sobolev 			bzero(&sm, sizeof(sm));
5858e96e13eSMaxim Sobolev 			bzero(&dp, sizeof(dp));
5868e96e13eSMaxim Sobolev 			bzero(&dm, sizeof(dm));
5878e96e13eSMaxim Sobolev 			sp.sin_len = sm.sin_len = dp.sin_len = dm.sin_len =
5888e96e13eSMaxim Sobolev 			    sizeof(struct sockaddr_in);
5898e96e13eSMaxim Sobolev 			sp.sin_family = sm.sin_family = dp.sin_family =
5908e96e13eSMaxim Sobolev 			    dm.sin_family = AF_INET;
5918e96e13eSMaxim Sobolev 			sp.sin_addr = sc->g_src;
5928e96e13eSMaxim Sobolev 			dp.sin_addr = sc->g_dst;
5938e96e13eSMaxim Sobolev 			sm.sin_addr.s_addr = dm.sin_addr.s_addr =
5948e96e13eSMaxim Sobolev 			    INADDR_BROADCAST;
5958e96e13eSMaxim Sobolev #ifdef INET
5968e96e13eSMaxim Sobolev 			sc->encap = encap_attach(AF_INET, sc->g_proto,
5978e96e13eSMaxim Sobolev 			    sintosa(&sp), sintosa(&sm), sintosa(&dp),
5988e96e13eSMaxim Sobolev 			    sintosa(&dm), (sc->g_proto == IPPROTO_GRE) ?
5998e96e13eSMaxim Sobolev 				&in_gre_protosw : &in_mobile_protosw, sc);
6008e96e13eSMaxim Sobolev 			if (sc->encap == NULL)
6018e96e13eSMaxim Sobolev 				printf("%s: unable to attach encap\n",
602fc74a9f9SBrooks Davis 				    if_name(GRE2IFP(sc)));
6038e96e13eSMaxim Sobolev #endif
6048e96e13eSMaxim Sobolev 			if (sc->route.ro_rt != 0) /* free old route */
6058e96e13eSMaxim Sobolev 				RTFREE(sc->route.ro_rt);
6068e96e13eSMaxim Sobolev 			if (gre_compute_route(sc) == 0)
60713f4c340SRobert Watson 				ifp->if_drv_flags |= IFF_DRV_RUNNING;
6088e96e13eSMaxim Sobolev 			else
60913f4c340SRobert Watson 				ifp->if_drv_flags &= ~IFF_DRV_RUNNING;
6108e96e13eSMaxim Sobolev 		}
6118e96e13eSMaxim Sobolev 		break;
6128e96e13eSMaxim Sobolev 	case GREGADDRS:
6138e96e13eSMaxim Sobolev 		memset(&si, 0, sizeof(si));
6148e96e13eSMaxim Sobolev 		si.sin_family = AF_INET;
6158e96e13eSMaxim Sobolev 		si.sin_len = sizeof(struct sockaddr_in);
6168e96e13eSMaxim Sobolev 		si.sin_addr.s_addr = sc->g_src.s_addr;
6178e96e13eSMaxim Sobolev 		sa = sintosa(&si);
6188e96e13eSMaxim Sobolev 		ifr->ifr_addr = *sa;
6198e96e13eSMaxim Sobolev 		break;
6208e96e13eSMaxim Sobolev 	case GREGADDRD:
6218e96e13eSMaxim Sobolev 		memset(&si, 0, sizeof(si));
6228e96e13eSMaxim Sobolev 		si.sin_family = AF_INET;
6238e96e13eSMaxim Sobolev 		si.sin_len = sizeof(struct sockaddr_in);
6248e96e13eSMaxim Sobolev 		si.sin_addr.s_addr = sc->g_dst.s_addr;
6258e96e13eSMaxim Sobolev 		sa = sintosa(&si);
6268e96e13eSMaxim Sobolev 		ifr->ifr_addr = *sa;
6278e96e13eSMaxim Sobolev 		break;
6288e96e13eSMaxim Sobolev 	case SIOCSIFPHYADDR:
629acd3428bSRobert Watson 		/*
630acd3428bSRobert Watson 		 * XXXRW: Isn't this suser() redundant to the ifnet layer
631acd3428bSRobert Watson 		 * check?
632acd3428bSRobert Watson 		 */
633acd3428bSRobert Watson 		if ((error = priv_check(curthread, PRIV_NET_SETIFPHYS)) != 0)
6348e96e13eSMaxim Sobolev 			break;
6358e96e13eSMaxim Sobolev 		if (aifr->ifra_addr.sin_family != AF_INET ||
6368e96e13eSMaxim Sobolev 		    aifr->ifra_dstaddr.sin_family != AF_INET) {
6378e96e13eSMaxim Sobolev 			error = EAFNOSUPPORT;
6388e96e13eSMaxim Sobolev 			break;
6398e96e13eSMaxim Sobolev 		}
6408e96e13eSMaxim Sobolev 		if (aifr->ifra_addr.sin_len != sizeof(si) ||
6418e96e13eSMaxim Sobolev 		    aifr->ifra_dstaddr.sin_len != sizeof(si)) {
6428e96e13eSMaxim Sobolev 			error = EINVAL;
6438e96e13eSMaxim Sobolev 			break;
6448e96e13eSMaxim Sobolev 		}
6458e96e13eSMaxim Sobolev 		sc->g_src = aifr->ifra_addr.sin_addr;
6468e96e13eSMaxim Sobolev 		sc->g_dst = aifr->ifra_dstaddr.sin_addr;
6478e96e13eSMaxim Sobolev 		goto recompute;
6488e96e13eSMaxim Sobolev 	case SIOCSLIFPHYADDR:
649acd3428bSRobert Watson 		/*
650acd3428bSRobert Watson 		 * XXXRW: Isn't this suser() redundant to the ifnet layer
651acd3428bSRobert Watson 		 * check?
652acd3428bSRobert Watson 		 */
653acd3428bSRobert Watson 		if ((error = priv_check(curthread, PRIV_NET_SETIFPHYS)) != 0)
6548e96e13eSMaxim Sobolev 			break;
6558e96e13eSMaxim Sobolev 		if (lifr->addr.ss_family != AF_INET ||
6568e96e13eSMaxim Sobolev 		    lifr->dstaddr.ss_family != AF_INET) {
6578e96e13eSMaxim Sobolev 			error = EAFNOSUPPORT;
6588e96e13eSMaxim Sobolev 			break;
6598e96e13eSMaxim Sobolev 		}
6608e96e13eSMaxim Sobolev 		if (lifr->addr.ss_len != sizeof(si) ||
6618e96e13eSMaxim Sobolev 		    lifr->dstaddr.ss_len != sizeof(si)) {
6628e96e13eSMaxim Sobolev 			error = EINVAL;
6638e96e13eSMaxim Sobolev 			break;
6648e96e13eSMaxim Sobolev 		}
665d03e5467SQing Li 		sc->g_src = (satosin(&lifr->addr))->sin_addr;
6668e96e13eSMaxim Sobolev 		sc->g_dst =
667d03e5467SQing Li 		    (satosin(&lifr->dstaddr))->sin_addr;
6688e96e13eSMaxim Sobolev 		goto recompute;
6698e96e13eSMaxim Sobolev 	case SIOCDIFPHYADDR:
670acd3428bSRobert Watson 		/*
671acd3428bSRobert Watson 		 * XXXRW: Isn't this suser() redundant to the ifnet layer
672acd3428bSRobert Watson 		 * check?
673acd3428bSRobert Watson 		 */
674acd3428bSRobert Watson 		if ((error = priv_check(curthread, PRIV_NET_SETIFPHYS)) != 0)
6758e96e13eSMaxim Sobolev 			break;
6768e96e13eSMaxim Sobolev 		sc->g_src.s_addr = INADDR_ANY;
6778e96e13eSMaxim Sobolev 		sc->g_dst.s_addr = INADDR_ANY;
6788e96e13eSMaxim Sobolev 		goto recompute;
6798e96e13eSMaxim Sobolev 	case SIOCGLIFPHYADDR:
6808e96e13eSMaxim Sobolev 		if (sc->g_src.s_addr == INADDR_ANY ||
6818e96e13eSMaxim Sobolev 		    sc->g_dst.s_addr == INADDR_ANY) {
6828e96e13eSMaxim Sobolev 			error = EADDRNOTAVAIL;
6838e96e13eSMaxim Sobolev 			break;
6848e96e13eSMaxim Sobolev 		}
6858e96e13eSMaxim Sobolev 		memset(&si, 0, sizeof(si));
6868e96e13eSMaxim Sobolev 		si.sin_family = AF_INET;
6878e96e13eSMaxim Sobolev 		si.sin_len = sizeof(struct sockaddr_in);
6888e96e13eSMaxim Sobolev 		si.sin_addr.s_addr = sc->g_src.s_addr;
6898e96e13eSMaxim Sobolev 		memcpy(&lifr->addr, &si, sizeof(si));
6908e96e13eSMaxim Sobolev 		si.sin_addr.s_addr = sc->g_dst.s_addr;
6918e96e13eSMaxim Sobolev 		memcpy(&lifr->dstaddr, &si, sizeof(si));
6928e96e13eSMaxim Sobolev 		break;
6938e96e13eSMaxim Sobolev 	case SIOCGIFPSRCADDR:
694f16770aeSBruce M Simpson #ifdef INET6
695f16770aeSBruce M Simpson 	case SIOCGIFPSRCADDR_IN6:
696f16770aeSBruce M Simpson #endif
6978e96e13eSMaxim Sobolev 		if (sc->g_src.s_addr == INADDR_ANY) {
6988e96e13eSMaxim Sobolev 			error = EADDRNOTAVAIL;
6998e96e13eSMaxim Sobolev 			break;
7008e96e13eSMaxim Sobolev 		}
7018e96e13eSMaxim Sobolev 		memset(&si, 0, sizeof(si));
7028e96e13eSMaxim Sobolev 		si.sin_family = AF_INET;
7038e96e13eSMaxim Sobolev 		si.sin_len = sizeof(struct sockaddr_in);
7048e96e13eSMaxim Sobolev 		si.sin_addr.s_addr = sc->g_src.s_addr;
7058e96e13eSMaxim Sobolev 		bcopy(&si, &ifr->ifr_addr, sizeof(ifr->ifr_addr));
7068e96e13eSMaxim Sobolev 		break;
7078e96e13eSMaxim Sobolev 	case SIOCGIFPDSTADDR:
708f16770aeSBruce M Simpson #ifdef INET6
709f16770aeSBruce M Simpson 	case SIOCGIFPDSTADDR_IN6:
710f16770aeSBruce M Simpson #endif
7118e96e13eSMaxim Sobolev 		if (sc->g_dst.s_addr == INADDR_ANY) {
7128e96e13eSMaxim Sobolev 			error = EADDRNOTAVAIL;
7138e96e13eSMaxim Sobolev 			break;
7148e96e13eSMaxim Sobolev 		}
7158e96e13eSMaxim Sobolev 		memset(&si, 0, sizeof(si));
7168e96e13eSMaxim Sobolev 		si.sin_family = AF_INET;
7178e96e13eSMaxim Sobolev 		si.sin_len = sizeof(struct sockaddr_in);
7188e96e13eSMaxim Sobolev 		si.sin_addr.s_addr = sc->g_dst.s_addr;
7198e96e13eSMaxim Sobolev 		bcopy(&si, &ifr->ifr_addr, sizeof(ifr->ifr_addr));
7208e96e13eSMaxim Sobolev 		break;
7218e96e13eSMaxim Sobolev 	default:
7228e96e13eSMaxim Sobolev 		error = EINVAL;
7238e96e13eSMaxim Sobolev 		break;
7248e96e13eSMaxim Sobolev 	}
7258e96e13eSMaxim Sobolev 
7268e96e13eSMaxim Sobolev 	splx(s);
7278e96e13eSMaxim Sobolev 	return (error);
7288e96e13eSMaxim Sobolev }
7298e96e13eSMaxim Sobolev 
7308e96e13eSMaxim Sobolev /*
7318e96e13eSMaxim Sobolev  * computes a route to our destination that is not the one
7328e96e13eSMaxim Sobolev  * which would be taken by ip_output(), as this one will loop back to
7338e96e13eSMaxim Sobolev  * us. If the interface is p2p as  a--->b, then a routing entry exists
7348e96e13eSMaxim Sobolev  * If we now send a packet to b (e.g. ping b), this will come down here
73573d7ddbcSMaxim Sobolev  * gets src=a, dst=b tacked on and would from ip_output() sent back to
7368e96e13eSMaxim Sobolev  * if_gre.
7378e96e13eSMaxim Sobolev  * Goal here is to compute a route to b that is less specific than
7388e96e13eSMaxim Sobolev  * a-->b. We know that this one exists as in normal operation we have
7398e96e13eSMaxim Sobolev  * at least a default route which matches.
7408e96e13eSMaxim Sobolev  */
741c23d234cSMaxim Sobolev static int
7428e96e13eSMaxim Sobolev gre_compute_route(struct gre_softc *sc)
7438e96e13eSMaxim Sobolev {
7448e96e13eSMaxim Sobolev 	struct route *ro;
7458e96e13eSMaxim Sobolev 	u_int32_t a, b, c;
7468e96e13eSMaxim Sobolev 
7478e96e13eSMaxim Sobolev 	ro = &sc->route;
7488e96e13eSMaxim Sobolev 
7498e96e13eSMaxim Sobolev 	memset(ro, 0, sizeof(struct route));
7508e96e13eSMaxim Sobolev 	((struct sockaddr_in *)&ro->ro_dst)->sin_addr = sc->g_dst;
7518e96e13eSMaxim Sobolev 	ro->ro_dst.sa_family = AF_INET;
7528e96e13eSMaxim Sobolev 	ro->ro_dst.sa_len = sizeof(ro->ro_dst);
7538e96e13eSMaxim Sobolev 
7548e96e13eSMaxim Sobolev 	/*
7558e96e13eSMaxim Sobolev 	 * toggle last bit, so our interface is not found, but a less
7568e96e13eSMaxim Sobolev 	 * specific route. I'd rather like to specify a shorter mask,
7578e96e13eSMaxim Sobolev 	 * but this is not possible. Should work though. XXX
7588e96e13eSMaxim Sobolev 	 * there is a simpler way ...
7598e96e13eSMaxim Sobolev 	 */
760fc74a9f9SBrooks Davis 	if ((GRE2IFP(sc)->if_flags & IFF_LINK1) == 0) {
7618e96e13eSMaxim Sobolev 		a = ntohl(sc->g_dst.s_addr);
7628e96e13eSMaxim Sobolev 		b = a & 0x01;
7638e96e13eSMaxim Sobolev 		c = a & 0xfffffffe;
7648e96e13eSMaxim Sobolev 		b = b ^ 0x01;
7658e96e13eSMaxim Sobolev 		a = b | c;
7668e96e13eSMaxim Sobolev 		((struct sockaddr_in *)&ro->ro_dst)->sin_addr.s_addr
7678e96e13eSMaxim Sobolev 		    = htonl(a);
7688e96e13eSMaxim Sobolev 	}
7698e96e13eSMaxim Sobolev 
7708e96e13eSMaxim Sobolev #ifdef DIAGNOSTIC
771fc74a9f9SBrooks Davis 	printf("%s: searching for a route to %s", if_name(GRE2IFP(sc)),
7728e96e13eSMaxim Sobolev 	    inet_ntoa(((struct sockaddr_in *)&ro->ro_dst)->sin_addr));
7738e96e13eSMaxim Sobolev #endif
7748e96e13eSMaxim Sobolev 
7758e96e13eSMaxim Sobolev 	rtalloc(ro);
7768e96e13eSMaxim Sobolev 
7778e96e13eSMaxim Sobolev 	/*
7788e96e13eSMaxim Sobolev 	 * check if this returned a route at all and this route is no
7798e96e13eSMaxim Sobolev 	 * recursion to ourself
7808e96e13eSMaxim Sobolev 	 */
7818e96e13eSMaxim Sobolev 	if (ro->ro_rt == NULL || ro->ro_rt->rt_ifp->if_softc == sc) {
7828e96e13eSMaxim Sobolev #ifdef DIAGNOSTIC
7838e96e13eSMaxim Sobolev 		if (ro->ro_rt == NULL)
7848e96e13eSMaxim Sobolev 			printf(" - no route found!\n");
7858e96e13eSMaxim Sobolev 		else
7868e96e13eSMaxim Sobolev 			printf(" - route loops back to ourself!\n");
7878e96e13eSMaxim Sobolev #endif
7888e96e13eSMaxim Sobolev 		return EADDRNOTAVAIL;
7898e96e13eSMaxim Sobolev 	}
7908e96e13eSMaxim Sobolev 
7918e96e13eSMaxim Sobolev 	/*
7928e96e13eSMaxim Sobolev 	 * now change it back - else ip_output will just drop
7938e96e13eSMaxim Sobolev 	 * the route and search one to this interface ...
7948e96e13eSMaxim Sobolev 	 */
795fc74a9f9SBrooks Davis 	if ((GRE2IFP(sc)->if_flags & IFF_LINK1) == 0)
7968e96e13eSMaxim Sobolev 		((struct sockaddr_in *)&ro->ro_dst)->sin_addr = sc->g_dst;
7978e96e13eSMaxim Sobolev 
7988e96e13eSMaxim Sobolev #ifdef DIAGNOSTIC
7998e96e13eSMaxim Sobolev 	printf(", choosing %s with gateway %s", if_name(ro->ro_rt->rt_ifp),
8008e96e13eSMaxim Sobolev 	    inet_ntoa(((struct sockaddr_in *)(ro->ro_rt->rt_gateway))->sin_addr));
8018e96e13eSMaxim Sobolev 	printf("\n");
8028e96e13eSMaxim Sobolev #endif
8038e96e13eSMaxim Sobolev 
8048e96e13eSMaxim Sobolev 	return 0;
8058e96e13eSMaxim Sobolev }
8068e96e13eSMaxim Sobolev 
8078e96e13eSMaxim Sobolev /*
8088e96e13eSMaxim Sobolev  * do a checksum of a buffer - much like in_cksum, which operates on
8098e96e13eSMaxim Sobolev  * mbufs.
8108e96e13eSMaxim Sobolev  */
81173d7ddbcSMaxim Sobolev u_int16_t
81273d7ddbcSMaxim Sobolev gre_in_cksum(u_int16_t *p, u_int len)
8138e96e13eSMaxim Sobolev {
81473d7ddbcSMaxim Sobolev 	u_int32_t sum = 0;
8158e96e13eSMaxim Sobolev 	int nwords = len >> 1;
8168e96e13eSMaxim Sobolev 
8178e96e13eSMaxim Sobolev 	while (nwords-- != 0)
8188e96e13eSMaxim Sobolev 		sum += *p++;
8198e96e13eSMaxim Sobolev 
8208e96e13eSMaxim Sobolev 	if (len & 1) {
8218e96e13eSMaxim Sobolev 		union {
8228e96e13eSMaxim Sobolev 			u_short w;
8238e96e13eSMaxim Sobolev 			u_char c[2];
8248e96e13eSMaxim Sobolev 		} u;
8258e96e13eSMaxim Sobolev 		u.c[0] = *(u_char *)p;
8268e96e13eSMaxim Sobolev 		u.c[1] = 0;
8278e96e13eSMaxim Sobolev 		sum += u.w;
8288e96e13eSMaxim Sobolev 	}
8298e96e13eSMaxim Sobolev 
8308e96e13eSMaxim Sobolev 	/* end-around-carry */
8318e96e13eSMaxim Sobolev 	sum = (sum >> 16) + (sum & 0xffff);
8328e96e13eSMaxim Sobolev 	sum += (sum >> 16);
8338e96e13eSMaxim Sobolev 	return (~sum);
8348e96e13eSMaxim Sobolev }
8358e96e13eSMaxim Sobolev 
8368e96e13eSMaxim Sobolev static int
8378e96e13eSMaxim Sobolev gremodevent(module_t mod, int type, void *data)
8388e96e13eSMaxim Sobolev {
8398e96e13eSMaxim Sobolev 
8408e96e13eSMaxim Sobolev 	switch (type) {
8418e96e13eSMaxim Sobolev 	case MOD_LOAD:
8428e96e13eSMaxim Sobolev 		greattach();
8438e96e13eSMaxim Sobolev 		break;
8448e96e13eSMaxim Sobolev 	case MOD_UNLOAD:
8458e96e13eSMaxim Sobolev 		if_clone_detach(&gre_cloner);
846bdae44a8SRobert Watson 		mtx_destroy(&gre_mtx);
8478e96e13eSMaxim Sobolev 		break;
8483e019deaSPoul-Henning Kamp 	default:
8493e019deaSPoul-Henning Kamp 		return EOPNOTSUPP;
8508e96e13eSMaxim Sobolev 	}
8518e96e13eSMaxim Sobolev 	return 0;
8528e96e13eSMaxim Sobolev }
8538e96e13eSMaxim Sobolev 
8548e96e13eSMaxim Sobolev static moduledata_t gre_mod = {
8558e96e13eSMaxim Sobolev 	"if_gre",
8568e96e13eSMaxim Sobolev 	gremodevent,
8578e96e13eSMaxim Sobolev 	0
8588e96e13eSMaxim Sobolev };
8598e96e13eSMaxim Sobolev 
8608e96e13eSMaxim Sobolev DECLARE_MODULE(if_gre, gre_mod, SI_SUB_PSEUDO, SI_ORDER_ANY);
8618e96e13eSMaxim Sobolev MODULE_VERSION(if_gre, 1);
862