xref: /freebsd/sys/net/if_pflog.h (revision 0197ba465f275a32975d5c93b811e7caaec5b438)
1 /* $OpenBSD: if_pflog.h,v 1.13 2006/10/23 12:46:09 henning Exp $ */
2 /*-
3  * SPDX-License-Identifier: BSD-2-Clause
4  *
5  * Copyright 2001 Niels Provos <provos@citi.umich.edu>
6  * All rights reserved.
7  *
8  * Redistribution and use in source and binary forms, with or without
9  * modification, are permitted provided that the following conditions
10  * are met:
11  * 1. Redistributions of source code must retain the above copyright
12  *    notice, this list of conditions and the following disclaimer.
13  * 2. Redistributions in binary form must reproduce the above copyright
14  *    notice, this list of conditions and the following disclaimer in the
15  *    documentation and/or other materials provided with the distribution.
16  *
17  * THIS SOFTWARE IS PROVIDED BY THE AUTHOR ``AS IS'' AND ANY EXPRESS OR
18  * IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES
19  * OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED.
20  * IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY DIRECT, INDIRECT,
21  * INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT
22  * NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE,
23  * DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY
24  * THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
25  * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
26  * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
27  *
28  * $FreeBSD$
29  */
30 
31 #ifndef _NET_IF_PFLOG_H_
32 #define	_NET_IF_PFLOG_H_
33 
34 #include <sys/types.h>
35 
36 #include <net/bpf.h>
37 #include <net/if.h>
38 
39 #define	PFLOGIFS_MAX	16
40 
41 #define	PFLOG_RULESET_NAME_SIZE	16
42 
43 struct pfloghdr {
44 	u_int8_t	length;
45 	sa_family_t	af;
46 	u_int8_t	action;
47 	u_int8_t	reason;
48 	char		ifname[IFNAMSIZ];
49 	char		ruleset[PFLOG_RULESET_NAME_SIZE];
50 	u_int32_t	rulenr;
51 	u_int32_t	subrulenr;
52 	uid_t		uid;
53 	pid_t		pid;
54 	uid_t		rule_uid;
55 	pid_t		rule_pid;
56 	u_int8_t	dir;
57 	u_int8_t	pad[3];
58 	u_int32_t	ridentifier;
59 	u_int8_t	reserve;	/* Appease broken software like Wireshark. */
60 	u_int8_t	pad2[3];
61 };
62 
63 #define	PFLOG_HDRLEN		BPF_WORDALIGN(offsetof(struct pfloghdr, pad2))
64 /* minus pad, also used as a signature */
65 #define	PFLOG_REAL_HDRLEN	offsetof(struct pfloghdr, pad2)
66 
67 #ifdef _KERNEL
68 struct pf_rule;
69 struct pf_ruleset;
70 struct pfi_kif;
71 struct pf_pdesc;
72 
73 #define	PFLOG_PACKET(i,a,b,c,d,e,f,g,h,di) do {		\
74 	if (pflog_packet_ptr != NULL)			\
75 		pflog_packet_ptr(i,a,b,c,d,e,f,g,h,di);	\
76 } while (0)
77 #endif /* _KERNEL */
78 #endif /* _NET_IF_PFLOG_H_ */
79