1901fadf7SArchie Cobbs 2901fadf7SArchie Cobbs /* 3901fadf7SArchie Cobbs * Copyright (c) 2001-2002 Packet Design, LLC. 4901fadf7SArchie Cobbs * All rights reserved. 5901fadf7SArchie Cobbs * 6901fadf7SArchie Cobbs * Subject to the following obligations and disclaimer of warranty, 7901fadf7SArchie Cobbs * use and redistribution of this software, in source or object code 8901fadf7SArchie Cobbs * forms, with or without modifications are expressly permitted by 9901fadf7SArchie Cobbs * Packet Design; provided, however, that: 10901fadf7SArchie Cobbs * 11901fadf7SArchie Cobbs * (i) Any and all reproductions of the source or object code 12901fadf7SArchie Cobbs * must include the copyright notice above and the following 13901fadf7SArchie Cobbs * disclaimer of warranties; and 14901fadf7SArchie Cobbs * (ii) No rights are granted, in any manner or form, to use 15901fadf7SArchie Cobbs * Packet Design trademarks, including the mark "PACKET DESIGN" 16901fadf7SArchie Cobbs * on advertising, endorsements, or otherwise except as such 17901fadf7SArchie Cobbs * appears in the above copyright notice or in the software. 18901fadf7SArchie Cobbs * 19901fadf7SArchie Cobbs * THIS SOFTWARE IS BEING PROVIDED BY PACKET DESIGN "AS IS", AND 20901fadf7SArchie Cobbs * TO THE MAXIMUM EXTENT PERMITTED BY LAW, PACKET DESIGN MAKES NO 21901fadf7SArchie Cobbs * REPRESENTATIONS OR WARRANTIES, EXPRESS OR IMPLIED, REGARDING 22901fadf7SArchie Cobbs * THIS SOFTWARE, INCLUDING WITHOUT LIMITATION, ANY AND ALL IMPLIED 23901fadf7SArchie Cobbs * WARRANTIES OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE, 24901fadf7SArchie Cobbs * OR NON-INFRINGEMENT. PACKET DESIGN DOES NOT WARRANT, GUARANTEE, 25901fadf7SArchie Cobbs * OR MAKE ANY REPRESENTATIONS REGARDING THE USE OF, OR THE RESULTS 26901fadf7SArchie Cobbs * OF THE USE OF THIS SOFTWARE IN TERMS OF ITS CORRECTNESS, ACCURACY, 27901fadf7SArchie Cobbs * RELIABILITY OR OTHERWISE. IN NO EVENT SHALL PACKET DESIGN BE 28901fadf7SArchie Cobbs * LIABLE FOR ANY DAMAGES RESULTING FROM OR ARISING OUT OF ANY USE 29901fadf7SArchie Cobbs * OF THIS SOFTWARE, INCLUDING WITHOUT LIMITATION, ANY DIRECT, 30901fadf7SArchie Cobbs * INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, PUNITIVE, OR CONSEQUENTIAL 31901fadf7SArchie Cobbs * DAMAGES, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES, LOSS OF 32901fadf7SArchie Cobbs * USE, DATA OR PROFITS, HOWEVER CAUSED AND UNDER ANY THEORY OF 33901fadf7SArchie Cobbs * LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT 34901fadf7SArchie Cobbs * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF 35901fadf7SArchie Cobbs * THE USE OF THIS SOFTWARE, EVEN IF PACKET DESIGN IS ADVISED OF 36901fadf7SArchie Cobbs * THE POSSIBILITY OF SUCH DAMAGE. 37901fadf7SArchie Cobbs * 38901fadf7SArchie Cobbs * Author: Archie Cobbs <archie@freebsd.org> 39901fadf7SArchie Cobbs * 40901fadf7SArchie Cobbs * $FreeBSD$ 41901fadf7SArchie Cobbs */ 42901fadf7SArchie Cobbs 43901fadf7SArchie Cobbs /* 44901fadf7SArchie Cobbs * L2TP netgraph node type. 45901fadf7SArchie Cobbs * 46901fadf7SArchie Cobbs * This node type implements the lower layer of the 47901fadf7SArchie Cobbs * L2TP protocol as specified in RFC 2661. 48901fadf7SArchie Cobbs */ 49901fadf7SArchie Cobbs 50901fadf7SArchie Cobbs #include <sys/param.h> 51901fadf7SArchie Cobbs #include <sys/systm.h> 52901fadf7SArchie Cobbs #include <sys/kernel.h> 53901fadf7SArchie Cobbs #include <sys/time.h> 54901fadf7SArchie Cobbs #include <sys/conf.h> 55901fadf7SArchie Cobbs #include <sys/mbuf.h> 56901fadf7SArchie Cobbs #include <sys/malloc.h> 57901fadf7SArchie Cobbs #include <sys/errno.h> 58901fadf7SArchie Cobbs 59901fadf7SArchie Cobbs #include <netgraph/ng_message.h> 60901fadf7SArchie Cobbs #include <netgraph/netgraph.h> 61901fadf7SArchie Cobbs #include <netgraph/ng_parse.h> 62901fadf7SArchie Cobbs #include <netgraph/ng_l2tp.h> 63901fadf7SArchie Cobbs 64901fadf7SArchie Cobbs #ifdef NG_SEPARATE_MALLOC 65901fadf7SArchie Cobbs MALLOC_DEFINE(M_NETGRAPH_L2TP, "netgraph_l2tp", "netgraph l2tp node"); 66901fadf7SArchie Cobbs #else 67901fadf7SArchie Cobbs #define M_NETGRAPH_L2TP M_NETGRAPH 68901fadf7SArchie Cobbs #endif 69901fadf7SArchie Cobbs 70901fadf7SArchie Cobbs /* L2TP header format (first 2 bytes only) */ 71901fadf7SArchie Cobbs #define L2TP_HDR_CTRL 0x8000 /* control packet */ 72901fadf7SArchie Cobbs #define L2TP_HDR_LEN 0x4000 /* has length field */ 73901fadf7SArchie Cobbs #define L2TP_HDR_SEQ 0x0800 /* has ns, nr fields */ 74901fadf7SArchie Cobbs #define L2TP_HDR_OFF 0x0200 /* has offset field */ 75901fadf7SArchie Cobbs #define L2TP_HDR_PRIO 0x0100 /* give priority */ 76901fadf7SArchie Cobbs #define L2TP_HDR_VERS_MASK 0x000f /* version field mask */ 77901fadf7SArchie Cobbs #define L2TP_HDR_VERSION 0x0002 /* version field */ 78901fadf7SArchie Cobbs 79901fadf7SArchie Cobbs /* Bits that must be zero or one in first two bytes of header */ 80901fadf7SArchie Cobbs #define L2TP_CTRL_0BITS 0x030d /* ctrl: must be 0 */ 81901fadf7SArchie Cobbs #define L2TP_CTRL_1BITS 0xc802 /* ctrl: must be 1 */ 82901fadf7SArchie Cobbs #define L2TP_DATA_0BITS 0x800d /* data: must be 0 */ 83901fadf7SArchie Cobbs #define L2TP_DATA_1BITS 0x0002 /* data: must be 1 */ 84901fadf7SArchie Cobbs 85901fadf7SArchie Cobbs /* Standard xmit ctrl and data header bits */ 86901fadf7SArchie Cobbs #define L2TP_CTRL_HDR (L2TP_HDR_CTRL | L2TP_HDR_LEN \ 87901fadf7SArchie Cobbs | L2TP_HDR_SEQ | L2TP_HDR_VERSION) 88901fadf7SArchie Cobbs #define L2TP_DATA_HDR (L2TP_HDR_VERSION) /* optional: len, seq */ 89901fadf7SArchie Cobbs 90901fadf7SArchie Cobbs /* Some hard coded values */ 91901fadf7SArchie Cobbs #define L2TP_MAX_XWIN 16 /* my max xmit window */ 92901fadf7SArchie Cobbs #define L2TP_MAX_REXMIT 5 /* default max rexmit */ 93901fadf7SArchie Cobbs #define L2TP_MAX_REXMIT_TO 30 /* default rexmit to */ 94901fadf7SArchie Cobbs #define L2TP_DELAYED_ACK ((hz + 19) / 20) /* delayed ack: 50 ms */ 95901fadf7SArchie Cobbs 96901fadf7SArchie Cobbs /* Default data sequence number configuration for new sessions */ 97901fadf7SArchie Cobbs #define L2TP_CONTROL_DSEQ 1 /* we are the lns */ 98901fadf7SArchie Cobbs #define L2TP_ENABLE_DSEQ 1 /* enable data seq # */ 99901fadf7SArchie Cobbs 100901fadf7SArchie Cobbs /* Compare sequence numbers using circular math */ 101901fadf7SArchie Cobbs #define L2TP_SEQ_DIFF(x, y) ((int)((int16_t)(x) - (int16_t)(y))) 102901fadf7SArchie Cobbs 103901fadf7SArchie Cobbs /* 104901fadf7SArchie Cobbs * Sequence number state 105901fadf7SArchie Cobbs * 106901fadf7SArchie Cobbs * Invariants: 107901fadf7SArchie Cobbs * - If cwnd < ssth, we're doing slow start, otherwise congestion avoidance 108901fadf7SArchie Cobbs * - The number of unacknowledged xmit packets is (ns - rack) <= seq->wmax 109901fadf7SArchie Cobbs * - The first (ns - rack) mbuf's in xwin[] array are copies of these 110901fadf7SArchie Cobbs * unacknowledged packets; the remainder of xwin[] consists first of 111901fadf7SArchie Cobbs * zero or more further untransmitted packets in the transmit queue 112901fadf7SArchie Cobbs * - We try to keep the peer's receive window as full as possible. 113901fadf7SArchie Cobbs * Therefore, (i < cwnd && xwin[i] != NULL) implies (ns - rack) > i. 114901fadf7SArchie Cobbs * - rack_timer is running iff (ns - rack) > 0 (unack'd xmit'd pkts) 115901fadf7SArchie Cobbs * - If xack != nr, there are unacknowledged recv packet(s) (delayed ack) 116901fadf7SArchie Cobbs * - xack_timer is running iff xack != nr (unack'd rec'd pkts) 117901fadf7SArchie Cobbs */ 118901fadf7SArchie Cobbs struct l2tp_seq { 119901fadf7SArchie Cobbs u_int16_t ns; /* next xmit seq we send */ 120901fadf7SArchie Cobbs u_int16_t nr; /* next recv seq we expect */ 121901fadf7SArchie Cobbs u_int16_t rack; /* last 'nr' we rec'd */ 122901fadf7SArchie Cobbs u_int16_t xack; /* last 'nr' we sent */ 123901fadf7SArchie Cobbs u_int16_t wmax; /* peer's max recv window */ 124901fadf7SArchie Cobbs u_int16_t cwnd; /* current congestion window */ 125901fadf7SArchie Cobbs u_int16_t ssth; /* slow start threshold */ 126901fadf7SArchie Cobbs u_int16_t acks; /* # consecutive acks rec'd */ 127901fadf7SArchie Cobbs u_int16_t rexmits; /* # retransmits sent */ 128901fadf7SArchie Cobbs u_int16_t max_rexmits; /* max # retransmits sent */ 129901fadf7SArchie Cobbs u_int16_t max_rexmit_to; /* max retransmit timeout */ 130901fadf7SArchie Cobbs struct callout rack_timer; /* retransmit timer */ 131901fadf7SArchie Cobbs struct callout xack_timer; /* delayed ack timer */ 132901fadf7SArchie Cobbs u_char rack_timer_running; /* xmit timer running */ 133901fadf7SArchie Cobbs u_char xack_timer_running; /* ack timer running */ 134901fadf7SArchie Cobbs struct mbuf *xwin[L2TP_MAX_XWIN]; /* transmit window */ 135901fadf7SArchie Cobbs }; 136901fadf7SArchie Cobbs 137901fadf7SArchie Cobbs /* Node private data */ 138901fadf7SArchie Cobbs struct ng_l2tp_private { 139901fadf7SArchie Cobbs node_p node; /* back pointer to node */ 140901fadf7SArchie Cobbs hook_p ctrl; /* hook to upper layers */ 141901fadf7SArchie Cobbs hook_p lower; /* hook to lower layers */ 142901fadf7SArchie Cobbs struct ng_l2tp_config conf; /* node configuration */ 143901fadf7SArchie Cobbs struct ng_l2tp_stats stats; /* node statistics */ 144901fadf7SArchie Cobbs struct l2tp_seq seq; /* ctrl sequence number state */ 145901fadf7SArchie Cobbs ng_ID_t ftarget; /* failure message target */ 146901fadf7SArchie Cobbs }; 147901fadf7SArchie Cobbs typedef struct ng_l2tp_private *priv_p; 148901fadf7SArchie Cobbs 149901fadf7SArchie Cobbs /* Hook private data (data session hooks only) */ 150901fadf7SArchie Cobbs struct ng_l2tp_hook_private { 151901fadf7SArchie Cobbs struct ng_l2tp_sess_config conf; /* hook/session config */ 152901fadf7SArchie Cobbs u_int16_t ns; /* data ns sequence number */ 153901fadf7SArchie Cobbs u_int16_t nr; /* data nr sequence number */ 154901fadf7SArchie Cobbs }; 155901fadf7SArchie Cobbs typedef struct ng_l2tp_hook_private *hookpriv_p; 156901fadf7SArchie Cobbs 157901fadf7SArchie Cobbs /* Netgraph node methods */ 158901fadf7SArchie Cobbs static ng_constructor_t ng_l2tp_constructor; 159901fadf7SArchie Cobbs static ng_rcvmsg_t ng_l2tp_rcvmsg; 160901fadf7SArchie Cobbs static ng_shutdown_t ng_l2tp_shutdown; 161901fadf7SArchie Cobbs static ng_newhook_t ng_l2tp_newhook; 162901fadf7SArchie Cobbs static ng_rcvdata_t ng_l2tp_rcvdata; 163901fadf7SArchie Cobbs static ng_disconnect_t ng_l2tp_disconnect; 164901fadf7SArchie Cobbs 165901fadf7SArchie Cobbs /* Internal functions */ 166901fadf7SArchie Cobbs static int ng_l2tp_recv_lower(node_p node, item_p item); 167901fadf7SArchie Cobbs static int ng_l2tp_recv_ctrl(node_p node, item_p item); 168901fadf7SArchie Cobbs static int ng_l2tp_recv_data(node_p node, item_p item, hookpriv_p hpriv); 169901fadf7SArchie Cobbs 170901fadf7SArchie Cobbs static int ng_l2tp_xmit_ctrl(priv_p priv, struct mbuf *m, u_int16_t ns); 171901fadf7SArchie Cobbs 172901fadf7SArchie Cobbs static void ng_l2tp_seq_init(priv_p priv); 173901fadf7SArchie Cobbs static int ng_l2tp_seq_adjust(priv_p priv, 174901fadf7SArchie Cobbs const struct ng_l2tp_config *conf); 175901fadf7SArchie Cobbs static void ng_l2tp_seq_reset(priv_p priv); 176901fadf7SArchie Cobbs static void ng_l2tp_seq_failure(priv_p priv); 177901fadf7SArchie Cobbs static void ng_l2tp_seq_recv_nr(priv_p priv, u_int16_t nr); 178901fadf7SArchie Cobbs static int ng_l2tp_seq_recv_ns(priv_p priv, u_int16_t ns); 179901fadf7SArchie Cobbs static void ng_l2tp_seq_xack_timeout(void *arg); 180901fadf7SArchie Cobbs static void ng_l2tp_seq_rack_timeout(void *arg); 181901fadf7SArchie Cobbs 182901fadf7SArchie Cobbs static ng_fn_eachhook ng_l2tp_find_session; 183901fadf7SArchie Cobbs static ng_fn_eachhook ng_l2tp_reset_session; 184901fadf7SArchie Cobbs 185901fadf7SArchie Cobbs #ifdef INVARIANTS 186901fadf7SArchie Cobbs static void ng_l2tp_seq_check(struct l2tp_seq *seq); 187901fadf7SArchie Cobbs #endif 188901fadf7SArchie Cobbs 189901fadf7SArchie Cobbs /* Parse type for struct ng_l2tp_config */ 190901fadf7SArchie Cobbs static const struct ng_parse_struct_field 191901fadf7SArchie Cobbs ng_l2tp_config_type_fields[] = NG_L2TP_CONFIG_TYPE_INFO; 192901fadf7SArchie Cobbs static const struct ng_parse_type ng_l2tp_config_type = { 193901fadf7SArchie Cobbs &ng_parse_struct_type, 194901fadf7SArchie Cobbs &ng_l2tp_config_type_fields, 195901fadf7SArchie Cobbs }; 196901fadf7SArchie Cobbs 197901fadf7SArchie Cobbs /* Parse type for struct ng_l2tp_sess_config */ 198901fadf7SArchie Cobbs static const struct ng_parse_struct_field 199901fadf7SArchie Cobbs ng_l2tp_sess_config_type_fields[] = NG_L2TP_SESS_CONFIG_TYPE_INFO; 200901fadf7SArchie Cobbs static const struct ng_parse_type ng_l2tp_sess_config_type = { 201901fadf7SArchie Cobbs &ng_parse_struct_type, 202901fadf7SArchie Cobbs &ng_l2tp_sess_config_type_fields, 203901fadf7SArchie Cobbs }; 204901fadf7SArchie Cobbs 205901fadf7SArchie Cobbs /* Parse type for struct ng_l2tp_stats */ 206901fadf7SArchie Cobbs static const struct ng_parse_struct_field 207901fadf7SArchie Cobbs ng_l2tp_stats_type_fields[] = NG_L2TP_STATS_TYPE_INFO; 208901fadf7SArchie Cobbs static const struct ng_parse_type ng_pptp_stats_type = { 209901fadf7SArchie Cobbs &ng_parse_struct_type, 210901fadf7SArchie Cobbs &ng_l2tp_stats_type_fields 211901fadf7SArchie Cobbs }; 212901fadf7SArchie Cobbs 213901fadf7SArchie Cobbs /* List of commands and how to convert arguments to/from ASCII */ 214901fadf7SArchie Cobbs static const struct ng_cmdlist ng_l2tp_cmdlist[] = { 215901fadf7SArchie Cobbs { 216901fadf7SArchie Cobbs NGM_L2TP_COOKIE, 217901fadf7SArchie Cobbs NGM_L2TP_SET_CONFIG, 218901fadf7SArchie Cobbs "setconfig", 219901fadf7SArchie Cobbs &ng_l2tp_config_type, 220901fadf7SArchie Cobbs NULL 221901fadf7SArchie Cobbs }, 222901fadf7SArchie Cobbs { 223901fadf7SArchie Cobbs NGM_L2TP_COOKIE, 224901fadf7SArchie Cobbs NGM_L2TP_GET_CONFIG, 225901fadf7SArchie Cobbs "getconfig", 226901fadf7SArchie Cobbs NULL, 227901fadf7SArchie Cobbs &ng_l2tp_config_type 228901fadf7SArchie Cobbs }, 229901fadf7SArchie Cobbs { 230901fadf7SArchie Cobbs NGM_L2TP_COOKIE, 231901fadf7SArchie Cobbs NGM_L2TP_SET_SESS_CONFIG, 232901fadf7SArchie Cobbs "setsessconfig", 233901fadf7SArchie Cobbs &ng_l2tp_sess_config_type, 234901fadf7SArchie Cobbs NULL 235901fadf7SArchie Cobbs }, 236901fadf7SArchie Cobbs { 237901fadf7SArchie Cobbs NGM_L2TP_COOKIE, 238901fadf7SArchie Cobbs NGM_L2TP_GET_SESS_CONFIG, 239901fadf7SArchie Cobbs "getsessconfig", 240901fadf7SArchie Cobbs &ng_parse_hint16_type, 241901fadf7SArchie Cobbs &ng_l2tp_sess_config_type 242901fadf7SArchie Cobbs }, 243901fadf7SArchie Cobbs { 244901fadf7SArchie Cobbs NGM_L2TP_COOKIE, 245901fadf7SArchie Cobbs NGM_L2TP_GET_STATS, 246901fadf7SArchie Cobbs "getstats", 247901fadf7SArchie Cobbs NULL, 248901fadf7SArchie Cobbs &ng_pptp_stats_type 249901fadf7SArchie Cobbs }, 250901fadf7SArchie Cobbs { 251901fadf7SArchie Cobbs NGM_L2TP_COOKIE, 252901fadf7SArchie Cobbs NGM_L2TP_CLR_STATS, 253901fadf7SArchie Cobbs "clrstats", 254901fadf7SArchie Cobbs NULL, 255901fadf7SArchie Cobbs NULL 256901fadf7SArchie Cobbs }, 257901fadf7SArchie Cobbs { 258901fadf7SArchie Cobbs NGM_L2TP_COOKIE, 259901fadf7SArchie Cobbs NGM_L2TP_GETCLR_STATS, 260901fadf7SArchie Cobbs "getclrstats", 261901fadf7SArchie Cobbs NULL, 262901fadf7SArchie Cobbs &ng_pptp_stats_type 263901fadf7SArchie Cobbs }, 264901fadf7SArchie Cobbs { 265901fadf7SArchie Cobbs NGM_L2TP_COOKIE, 266901fadf7SArchie Cobbs NGM_L2TP_ACK_FAILURE, 267901fadf7SArchie Cobbs "ackfailure", 268901fadf7SArchie Cobbs NULL, 269901fadf7SArchie Cobbs NULL 270901fadf7SArchie Cobbs }, 271901fadf7SArchie Cobbs { 0 } 272901fadf7SArchie Cobbs }; 273901fadf7SArchie Cobbs 274901fadf7SArchie Cobbs /* Node type descriptor */ 275901fadf7SArchie Cobbs static struct ng_type ng_l2tp_typestruct = { 276901fadf7SArchie Cobbs NG_ABI_VERSION, 277901fadf7SArchie Cobbs NG_L2TP_NODE_TYPE, 278901fadf7SArchie Cobbs NULL, 279901fadf7SArchie Cobbs ng_l2tp_constructor, 280901fadf7SArchie Cobbs ng_l2tp_rcvmsg, 281901fadf7SArchie Cobbs ng_l2tp_shutdown, 282901fadf7SArchie Cobbs ng_l2tp_newhook, 283901fadf7SArchie Cobbs NULL, 284901fadf7SArchie Cobbs NULL, 285901fadf7SArchie Cobbs ng_l2tp_rcvdata, 286901fadf7SArchie Cobbs ng_l2tp_disconnect, 287901fadf7SArchie Cobbs ng_l2tp_cmdlist 288901fadf7SArchie Cobbs }; 289901fadf7SArchie Cobbs NETGRAPH_INIT(l2tp, &ng_l2tp_typestruct); 290901fadf7SArchie Cobbs 291901fadf7SArchie Cobbs /* Sequence number state sanity checking */ 292901fadf7SArchie Cobbs #ifdef INVARIANTS 293901fadf7SArchie Cobbs #define L2TP_SEQ_CHECK(seq) ng_l2tp_seq_check(seq) 294901fadf7SArchie Cobbs #else 295901fadf7SArchie Cobbs #define L2TP_SEQ_CHECK(x) do { } while (0) 296901fadf7SArchie Cobbs #endif 297901fadf7SArchie Cobbs 298901fadf7SArchie Cobbs /* mem*() macros */ 299901fadf7SArchie Cobbs #define memmove(d, s, l) ovbcopy(s, d, l) 300901fadf7SArchie Cobbs #define memset(d, z, l) bzero(d, l) /* XXX */ 301901fadf7SArchie Cobbs 302901fadf7SArchie Cobbs /* Whether to use m_copypacket() or m_dup() */ 303901fadf7SArchie Cobbs #define L2TP_COPY_MBUF m_copypacket 304901fadf7SArchie Cobbs 305901fadf7SArchie Cobbs /************************************************************************ 306901fadf7SArchie Cobbs NETGRAPH NODE STUFF 307901fadf7SArchie Cobbs ************************************************************************/ 308901fadf7SArchie Cobbs 309901fadf7SArchie Cobbs /* 310901fadf7SArchie Cobbs * Node type constructor 311901fadf7SArchie Cobbs */ 312901fadf7SArchie Cobbs static int 313901fadf7SArchie Cobbs ng_l2tp_constructor(node_p node) 314901fadf7SArchie Cobbs { 315901fadf7SArchie Cobbs priv_p priv; 316901fadf7SArchie Cobbs 317901fadf7SArchie Cobbs /* Allocate private structure */ 318901fadf7SArchie Cobbs MALLOC(priv, priv_p, sizeof(*priv), M_NETGRAPH_L2TP, M_NOWAIT | M_ZERO); 319901fadf7SArchie Cobbs if (priv == NULL) 320901fadf7SArchie Cobbs return (ENOMEM); 321901fadf7SArchie Cobbs NG_NODE_SET_PRIVATE(node, priv); 322901fadf7SArchie Cobbs priv->node = node; 323901fadf7SArchie Cobbs 324901fadf7SArchie Cobbs /* Apply a semi-reasonable default configuration */ 325901fadf7SArchie Cobbs priv->conf.peer_win = 1; 326901fadf7SArchie Cobbs priv->conf.rexmit_max = L2TP_MAX_REXMIT; 327901fadf7SArchie Cobbs priv->conf.rexmit_max_to = L2TP_MAX_REXMIT_TO; 328901fadf7SArchie Cobbs 329901fadf7SArchie Cobbs /* Initialize sequence number state */ 330901fadf7SArchie Cobbs ng_l2tp_seq_init(priv); 331901fadf7SArchie Cobbs 332901fadf7SArchie Cobbs /* Done */ 333901fadf7SArchie Cobbs return (0); 334901fadf7SArchie Cobbs } 335901fadf7SArchie Cobbs 336901fadf7SArchie Cobbs /* 337901fadf7SArchie Cobbs * Give our OK for a hook to be added. 338901fadf7SArchie Cobbs */ 339901fadf7SArchie Cobbs static int 340901fadf7SArchie Cobbs ng_l2tp_newhook(node_p node, hook_p hook, const char *name) 341901fadf7SArchie Cobbs { 342901fadf7SArchie Cobbs const priv_p priv = NG_NODE_PRIVATE(node); 343901fadf7SArchie Cobbs 344901fadf7SArchie Cobbs /* Check hook name */ 345901fadf7SArchie Cobbs if (strcmp(name, NG_L2TP_HOOK_CTRL) == 0) { 346901fadf7SArchie Cobbs if (priv->ctrl != NULL) 347901fadf7SArchie Cobbs return (EISCONN); 348901fadf7SArchie Cobbs priv->ctrl = hook; 349901fadf7SArchie Cobbs } else if (strcmp(name, NG_L2TP_HOOK_LOWER) == 0) { 350901fadf7SArchie Cobbs if (priv->lower != NULL) 351901fadf7SArchie Cobbs return (EISCONN); 352901fadf7SArchie Cobbs priv->lower = hook; 353901fadf7SArchie Cobbs } else { 354901fadf7SArchie Cobbs static const char hexdig[16] = "0123456789abcdef"; 355901fadf7SArchie Cobbs u_int16_t session_id; 356901fadf7SArchie Cobbs hookpriv_p hpriv; 357901fadf7SArchie Cobbs const char *hex; 358901fadf7SArchie Cobbs int i; 359901fadf7SArchie Cobbs int j; 360901fadf7SArchie Cobbs 361901fadf7SArchie Cobbs /* Parse hook name to get session ID */ 362901fadf7SArchie Cobbs if (strncmp(name, NG_L2TP_HOOK_SESSION_P, 363901fadf7SArchie Cobbs sizeof(NG_L2TP_HOOK_SESSION_P) - 1) != 0) 364901fadf7SArchie Cobbs return (EINVAL); 365901fadf7SArchie Cobbs hex = name + sizeof(NG_L2TP_HOOK_SESSION_P) - 1; 366901fadf7SArchie Cobbs for (session_id = i = 0; i < 4; i++) { 367901fadf7SArchie Cobbs for (j = 0; j < 16 && hex[i] != hexdig[j]; j++); 368901fadf7SArchie Cobbs if (j == 16) 369901fadf7SArchie Cobbs return (EINVAL); 370901fadf7SArchie Cobbs session_id = (session_id << 4) | j; 371901fadf7SArchie Cobbs } 372901fadf7SArchie Cobbs if (hex[i] != '\0') 373901fadf7SArchie Cobbs return (EINVAL); 374901fadf7SArchie Cobbs 375901fadf7SArchie Cobbs /* Create hook private structure */ 376901fadf7SArchie Cobbs MALLOC(hpriv, hookpriv_p, 377901fadf7SArchie Cobbs sizeof(*hpriv), M_NETGRAPH_L2TP, M_NOWAIT | M_ZERO); 378901fadf7SArchie Cobbs if (hpriv == NULL) 379901fadf7SArchie Cobbs return (ENOMEM); 380901fadf7SArchie Cobbs hpriv->conf.session_id = htons(session_id); 381901fadf7SArchie Cobbs hpriv->conf.control_dseq = L2TP_CONTROL_DSEQ; 382901fadf7SArchie Cobbs hpriv->conf.enable_dseq = L2TP_ENABLE_DSEQ; 383901fadf7SArchie Cobbs NG_HOOK_SET_PRIVATE(hook, hpriv); 384901fadf7SArchie Cobbs } 385901fadf7SArchie Cobbs 386901fadf7SArchie Cobbs /* Done */ 387901fadf7SArchie Cobbs return (0); 388901fadf7SArchie Cobbs } 389901fadf7SArchie Cobbs 390901fadf7SArchie Cobbs /* 391901fadf7SArchie Cobbs * Receive a control message. 392901fadf7SArchie Cobbs */ 393901fadf7SArchie Cobbs static int 394901fadf7SArchie Cobbs ng_l2tp_rcvmsg(node_p node, item_p item, hook_p lasthook) 395901fadf7SArchie Cobbs { 396901fadf7SArchie Cobbs const priv_p priv = NG_NODE_PRIVATE(node); 397901fadf7SArchie Cobbs struct ng_mesg *resp = NULL; 398901fadf7SArchie Cobbs struct ng_mesg *msg; 399901fadf7SArchie Cobbs int error = 0; 400901fadf7SArchie Cobbs 401901fadf7SArchie Cobbs NGI_GET_MSG(item, msg); 402901fadf7SArchie Cobbs switch (msg->header.typecookie) { 403901fadf7SArchie Cobbs case NGM_L2TP_COOKIE: 404901fadf7SArchie Cobbs switch (msg->header.cmd) { 405901fadf7SArchie Cobbs case NGM_L2TP_SET_CONFIG: 406901fadf7SArchie Cobbs { 407901fadf7SArchie Cobbs struct ng_l2tp_config *const conf = 408901fadf7SArchie Cobbs (struct ng_l2tp_config *)msg->data; 409901fadf7SArchie Cobbs 410901fadf7SArchie Cobbs /* Check for invalid or illegal config */ 411901fadf7SArchie Cobbs if (msg->header.arglen != sizeof(*conf)) { 412901fadf7SArchie Cobbs error = EINVAL; 413901fadf7SArchie Cobbs break; 414901fadf7SArchie Cobbs } 415901fadf7SArchie Cobbs conf->enabled = !!conf->enabled; 416901fadf7SArchie Cobbs conf->match_id = !!conf->match_id; 417901fadf7SArchie Cobbs conf->tunnel_id = htons(conf->tunnel_id); 418901fadf7SArchie Cobbs conf->peer_id = htons(conf->peer_id); 419901fadf7SArchie Cobbs if (priv->conf.enabled 420901fadf7SArchie Cobbs && ((priv->conf.tunnel_id != 0 421901fadf7SArchie Cobbs && conf->tunnel_id != priv->conf.tunnel_id) 422901fadf7SArchie Cobbs || ((priv->conf.peer_id != 0 423901fadf7SArchie Cobbs && conf->peer_id != priv->conf.peer_id)))) { 424901fadf7SArchie Cobbs error = EBUSY; 425901fadf7SArchie Cobbs break; 426901fadf7SArchie Cobbs } 427901fadf7SArchie Cobbs 428901fadf7SArchie Cobbs /* Save calling node as failure target */ 429901fadf7SArchie Cobbs priv->ftarget = NGI_RETADDR(item); 430901fadf7SArchie Cobbs 431901fadf7SArchie Cobbs /* Adjust sequence number state */ 432901fadf7SArchie Cobbs if ((error = ng_l2tp_seq_adjust(priv, conf)) != 0) 433901fadf7SArchie Cobbs break; 434901fadf7SArchie Cobbs 435901fadf7SArchie Cobbs /* Update node's config */ 436901fadf7SArchie Cobbs priv->conf = *conf; 437901fadf7SArchie Cobbs break; 438901fadf7SArchie Cobbs } 439901fadf7SArchie Cobbs case NGM_L2TP_GET_CONFIG: 440901fadf7SArchie Cobbs { 441901fadf7SArchie Cobbs struct ng_l2tp_config *conf; 442901fadf7SArchie Cobbs 443901fadf7SArchie Cobbs NG_MKRESPONSE(resp, msg, sizeof(*conf), M_NOWAIT); 444901fadf7SArchie Cobbs if (resp == NULL) { 445901fadf7SArchie Cobbs error = ENOMEM; 446901fadf7SArchie Cobbs break; 447901fadf7SArchie Cobbs } 448901fadf7SArchie Cobbs conf = (struct ng_l2tp_config *)resp->data; 449901fadf7SArchie Cobbs *conf = priv->conf; 450901fadf7SArchie Cobbs 451901fadf7SArchie Cobbs /* Put ID's in host order */ 452901fadf7SArchie Cobbs conf->tunnel_id = ntohs(conf->tunnel_id); 453901fadf7SArchie Cobbs conf->peer_id = ntohs(conf->peer_id); 454901fadf7SArchie Cobbs break; 455901fadf7SArchie Cobbs } 456901fadf7SArchie Cobbs case NGM_L2TP_SET_SESS_CONFIG: 457901fadf7SArchie Cobbs { 458901fadf7SArchie Cobbs struct ng_l2tp_sess_config *const conf = 459901fadf7SArchie Cobbs (struct ng_l2tp_sess_config *)msg->data; 460901fadf7SArchie Cobbs hookpriv_p hpriv; 461901fadf7SArchie Cobbs hook_p hook; 462901fadf7SArchie Cobbs 463901fadf7SArchie Cobbs /* Check for invalid or illegal config */ 464901fadf7SArchie Cobbs if (msg->header.arglen != sizeof(*conf)) { 465901fadf7SArchie Cobbs error = EINVAL; 466901fadf7SArchie Cobbs break; 467901fadf7SArchie Cobbs } 468901fadf7SArchie Cobbs 469901fadf7SArchie Cobbs /* Put ID's in network order */ 470901fadf7SArchie Cobbs conf->session_id = htons(conf->session_id); 471901fadf7SArchie Cobbs conf->peer_id = htons(conf->peer_id); 472901fadf7SArchie Cobbs 473901fadf7SArchie Cobbs /* Find matching hook */ 474901fadf7SArchie Cobbs NG_NODE_FOREACH_HOOK(node, ng_l2tp_find_session, 475901fadf7SArchie Cobbs (void *)(uintptr_t)conf->session_id, hook); 476901fadf7SArchie Cobbs if (hook == NULL) { 477901fadf7SArchie Cobbs error = ENOENT; 478901fadf7SArchie Cobbs break; 479901fadf7SArchie Cobbs } 480901fadf7SArchie Cobbs hpriv = NG_HOOK_PRIVATE(hook); 481901fadf7SArchie Cobbs 482901fadf7SArchie Cobbs /* Update hook's config */ 483901fadf7SArchie Cobbs hpriv->conf = *conf; 484901fadf7SArchie Cobbs break; 485901fadf7SArchie Cobbs } 486901fadf7SArchie Cobbs case NGM_L2TP_GET_SESS_CONFIG: 487901fadf7SArchie Cobbs { 488901fadf7SArchie Cobbs struct ng_l2tp_sess_config *conf; 489901fadf7SArchie Cobbs u_int16_t session_id; 490901fadf7SArchie Cobbs hookpriv_p hpriv; 491901fadf7SArchie Cobbs hook_p hook; 492901fadf7SArchie Cobbs 493901fadf7SArchie Cobbs /* Get session ID */ 494901fadf7SArchie Cobbs if (msg->header.arglen != sizeof(session_id)) { 495901fadf7SArchie Cobbs error = EINVAL; 496901fadf7SArchie Cobbs break; 497901fadf7SArchie Cobbs } 498901fadf7SArchie Cobbs memcpy(&session_id, msg->data, 2); 499901fadf7SArchie Cobbs session_id = htons(session_id); 500901fadf7SArchie Cobbs 501901fadf7SArchie Cobbs /* Find matching hook */ 502901fadf7SArchie Cobbs NG_NODE_FOREACH_HOOK(node, ng_l2tp_find_session, 503901fadf7SArchie Cobbs (void *)(uintptr_t)session_id, hook); 504901fadf7SArchie Cobbs if (hook == NULL) { 505901fadf7SArchie Cobbs error = ENOENT; 506901fadf7SArchie Cobbs break; 507901fadf7SArchie Cobbs } 508901fadf7SArchie Cobbs hpriv = NG_HOOK_PRIVATE(hook); 509901fadf7SArchie Cobbs 510901fadf7SArchie Cobbs /* Send response */ 511901fadf7SArchie Cobbs NG_MKRESPONSE(resp, msg, sizeof(hpriv->conf), M_NOWAIT); 512901fadf7SArchie Cobbs if (resp == NULL) { 513901fadf7SArchie Cobbs error = ENOMEM; 514901fadf7SArchie Cobbs break; 515901fadf7SArchie Cobbs } 516901fadf7SArchie Cobbs conf = (struct ng_l2tp_sess_config *)resp->data; 517901fadf7SArchie Cobbs *conf = hpriv->conf; 518901fadf7SArchie Cobbs 519901fadf7SArchie Cobbs /* Put ID's in host order */ 520901fadf7SArchie Cobbs conf->session_id = ntohs(conf->session_id); 521901fadf7SArchie Cobbs conf->peer_id = ntohs(conf->peer_id); 522901fadf7SArchie Cobbs break; 523901fadf7SArchie Cobbs } 524901fadf7SArchie Cobbs case NGM_L2TP_GET_STATS: 525901fadf7SArchie Cobbs case NGM_L2TP_CLR_STATS: 526901fadf7SArchie Cobbs case NGM_L2TP_GETCLR_STATS: 527901fadf7SArchie Cobbs { 528901fadf7SArchie Cobbs if (msg->header.cmd != NGM_L2TP_CLR_STATS) { 529901fadf7SArchie Cobbs NG_MKRESPONSE(resp, msg, 530901fadf7SArchie Cobbs sizeof(priv->stats), M_NOWAIT); 531901fadf7SArchie Cobbs if (resp == NULL) { 532901fadf7SArchie Cobbs error = ENOMEM; 533901fadf7SArchie Cobbs break; 534901fadf7SArchie Cobbs } 535901fadf7SArchie Cobbs memcpy(resp->data, 536901fadf7SArchie Cobbs &priv->stats, sizeof(priv->stats)); 537901fadf7SArchie Cobbs } 538901fadf7SArchie Cobbs if (msg->header.cmd != NGM_L2TP_GET_STATS) 539901fadf7SArchie Cobbs memset(&priv->stats, 0, sizeof(priv->stats)); 540901fadf7SArchie Cobbs break; 541901fadf7SArchie Cobbs } 542901fadf7SArchie Cobbs default: 543901fadf7SArchie Cobbs error = EINVAL; 544901fadf7SArchie Cobbs break; 545901fadf7SArchie Cobbs } 546901fadf7SArchie Cobbs break; 547901fadf7SArchie Cobbs default: 548901fadf7SArchie Cobbs error = EINVAL; 549901fadf7SArchie Cobbs break; 550901fadf7SArchie Cobbs } 551901fadf7SArchie Cobbs 552901fadf7SArchie Cobbs /* Done */ 553901fadf7SArchie Cobbs NG_RESPOND_MSG(error, node, item, resp); 554901fadf7SArchie Cobbs NG_FREE_MSG(msg); 555901fadf7SArchie Cobbs return (error); 556901fadf7SArchie Cobbs } 557901fadf7SArchie Cobbs 558901fadf7SArchie Cobbs /* 559901fadf7SArchie Cobbs * Receive incoming data on a hook. 560901fadf7SArchie Cobbs */ 561901fadf7SArchie Cobbs static int 562901fadf7SArchie Cobbs ng_l2tp_rcvdata(hook_p hook, item_p item) 563901fadf7SArchie Cobbs { 564901fadf7SArchie Cobbs const node_p node = NG_HOOK_NODE(hook); 565901fadf7SArchie Cobbs const priv_p priv = NG_NODE_PRIVATE(node); 566901fadf7SArchie Cobbs int error; 567901fadf7SArchie Cobbs 568901fadf7SArchie Cobbs /* Sanity check */ 569901fadf7SArchie Cobbs L2TP_SEQ_CHECK(&priv->seq); 570901fadf7SArchie Cobbs 571901fadf7SArchie Cobbs /* If not configured, reject */ 572901fadf7SArchie Cobbs if (!priv->conf.enabled) { 573901fadf7SArchie Cobbs NG_FREE_ITEM(item); 574901fadf7SArchie Cobbs return (ENXIO); 575901fadf7SArchie Cobbs } 576901fadf7SArchie Cobbs 577901fadf7SArchie Cobbs /* Handle incoming frame from below */ 578901fadf7SArchie Cobbs if (hook == priv->lower) { 579901fadf7SArchie Cobbs error = ng_l2tp_recv_lower(node, item); 580901fadf7SArchie Cobbs goto done; 581901fadf7SArchie Cobbs } 582901fadf7SArchie Cobbs 583901fadf7SArchie Cobbs /* Handle outgoing control frame */ 584901fadf7SArchie Cobbs if (hook == priv->ctrl) { 585901fadf7SArchie Cobbs error = ng_l2tp_recv_ctrl(node, item); 586901fadf7SArchie Cobbs goto done; 587901fadf7SArchie Cobbs } 588901fadf7SArchie Cobbs 589901fadf7SArchie Cobbs /* Handle outgoing data frame */ 590901fadf7SArchie Cobbs error = ng_l2tp_recv_data(node, item, NG_HOOK_PRIVATE(hook)); 591901fadf7SArchie Cobbs 592901fadf7SArchie Cobbs done: 593901fadf7SArchie Cobbs /* Done */ 594901fadf7SArchie Cobbs L2TP_SEQ_CHECK(&priv->seq); 595901fadf7SArchie Cobbs return (error); 596901fadf7SArchie Cobbs } 597901fadf7SArchie Cobbs 598901fadf7SArchie Cobbs /* 599901fadf7SArchie Cobbs * Destroy node 600901fadf7SArchie Cobbs */ 601901fadf7SArchie Cobbs static int 602901fadf7SArchie Cobbs ng_l2tp_shutdown(node_p node) 603901fadf7SArchie Cobbs { 604901fadf7SArchie Cobbs const priv_p priv = NG_NODE_PRIVATE(node); 605901fadf7SArchie Cobbs struct l2tp_seq *const seq = &priv->seq; 606901fadf7SArchie Cobbs 607901fadf7SArchie Cobbs /* Sanity check */ 608901fadf7SArchie Cobbs L2TP_SEQ_CHECK(seq); 609901fadf7SArchie Cobbs 610901fadf7SArchie Cobbs /* Reset sequence number state */ 611901fadf7SArchie Cobbs ng_l2tp_seq_reset(priv); 612901fadf7SArchie Cobbs 613901fadf7SArchie Cobbs /* Free private data if neither timer is running */ 614901fadf7SArchie Cobbs if (!seq->rack_timer_running && !seq->xack_timer_running) { 615901fadf7SArchie Cobbs FREE(priv, M_NETGRAPH_L2TP); 616901fadf7SArchie Cobbs NG_NODE_SET_PRIVATE(node, NULL); 617901fadf7SArchie Cobbs } 618901fadf7SArchie Cobbs 619901fadf7SArchie Cobbs /* Unref node */ 620901fadf7SArchie Cobbs NG_NODE_UNREF(node); 621901fadf7SArchie Cobbs return (0); 622901fadf7SArchie Cobbs } 623901fadf7SArchie Cobbs 624901fadf7SArchie Cobbs /* 625901fadf7SArchie Cobbs * Hook disconnection 626901fadf7SArchie Cobbs */ 627901fadf7SArchie Cobbs static int 628901fadf7SArchie Cobbs ng_l2tp_disconnect(hook_p hook) 629901fadf7SArchie Cobbs { 630901fadf7SArchie Cobbs const node_p node = NG_HOOK_NODE(hook); 631901fadf7SArchie Cobbs const priv_p priv = NG_NODE_PRIVATE(node); 632901fadf7SArchie Cobbs 633901fadf7SArchie Cobbs /* Zero out hook pointer */ 634901fadf7SArchie Cobbs if (hook == priv->ctrl) 635901fadf7SArchie Cobbs priv->ctrl = NULL; 636901fadf7SArchie Cobbs else if (hook == priv->lower) 637901fadf7SArchie Cobbs priv->lower = NULL; 638901fadf7SArchie Cobbs else { 639901fadf7SArchie Cobbs FREE(NG_HOOK_PRIVATE(hook), M_NETGRAPH_L2TP); 640901fadf7SArchie Cobbs NG_HOOK_SET_PRIVATE(hook, NULL); 641901fadf7SArchie Cobbs } 642901fadf7SArchie Cobbs 643901fadf7SArchie Cobbs /* Go away if no longer connected to anything */ 644901fadf7SArchie Cobbs if (NG_NODE_NUMHOOKS(node) == 0 && NG_NODE_IS_VALID(node)) 645901fadf7SArchie Cobbs ng_rmnode_self(node); 646901fadf7SArchie Cobbs return (0); 647901fadf7SArchie Cobbs } 648901fadf7SArchie Cobbs 649901fadf7SArchie Cobbs /************************************************************************* 650901fadf7SArchie Cobbs INTERNAL FUNCTIONS 651901fadf7SArchie Cobbs *************************************************************************/ 652901fadf7SArchie Cobbs 653901fadf7SArchie Cobbs /* 654901fadf7SArchie Cobbs * Find the hook with a given session ID. 655901fadf7SArchie Cobbs */ 656901fadf7SArchie Cobbs static int 657901fadf7SArchie Cobbs ng_l2tp_find_session(hook_p hook, void *arg) 658901fadf7SArchie Cobbs { 659901fadf7SArchie Cobbs const hookpriv_p hpriv = NG_HOOK_PRIVATE(hook); 660901fadf7SArchie Cobbs const u_int16_t sid = (u_int16_t)(uintptr_t)arg; 661901fadf7SArchie Cobbs 662901fadf7SArchie Cobbs if (hpriv == NULL || hpriv->conf.session_id != sid) 663901fadf7SArchie Cobbs return (-1); 664901fadf7SArchie Cobbs return (0); 665901fadf7SArchie Cobbs } 666901fadf7SArchie Cobbs 667901fadf7SArchie Cobbs /* 668901fadf7SArchie Cobbs * Reset a hook's session state. 669901fadf7SArchie Cobbs */ 670901fadf7SArchie Cobbs static int 671901fadf7SArchie Cobbs ng_l2tp_reset_session(hook_p hook, void *arg) 672901fadf7SArchie Cobbs { 673901fadf7SArchie Cobbs const hookpriv_p hpriv = NG_HOOK_PRIVATE(hook); 674901fadf7SArchie Cobbs 675901fadf7SArchie Cobbs if (hpriv != NULL) { 676901fadf7SArchie Cobbs hpriv->conf.control_dseq = 0; 677901fadf7SArchie Cobbs hpriv->conf.enable_dseq = 0; 678901fadf7SArchie Cobbs hpriv->nr = 0; 679901fadf7SArchie Cobbs hpriv->ns = 0; 680901fadf7SArchie Cobbs } 681901fadf7SArchie Cobbs return (-1); 682901fadf7SArchie Cobbs } 683901fadf7SArchie Cobbs 684901fadf7SArchie Cobbs /* 685901fadf7SArchie Cobbs * Handle an incoming frame from below. 686901fadf7SArchie Cobbs */ 687901fadf7SArchie Cobbs static int 688901fadf7SArchie Cobbs ng_l2tp_recv_lower(node_p node, item_p item) 689901fadf7SArchie Cobbs { 690901fadf7SArchie Cobbs static const u_int16_t req_bits[2][2] = { 691901fadf7SArchie Cobbs { L2TP_DATA_0BITS, L2TP_DATA_1BITS }, 692901fadf7SArchie Cobbs { L2TP_CTRL_0BITS, L2TP_CTRL_1BITS }, 693901fadf7SArchie Cobbs }; 694901fadf7SArchie Cobbs const priv_p priv = NG_NODE_PRIVATE(node); 695901fadf7SArchie Cobbs hookpriv_p hpriv = NULL; 696901fadf7SArchie Cobbs hook_p hook = NULL; 697901fadf7SArchie Cobbs u_int16_t ids[2]; 698901fadf7SArchie Cobbs struct mbuf *m; 699901fadf7SArchie Cobbs u_int16_t hdr; 700901fadf7SArchie Cobbs u_int16_t ns; 701901fadf7SArchie Cobbs u_int16_t nr; 702901fadf7SArchie Cobbs int is_ctrl; 703901fadf7SArchie Cobbs int error; 704901fadf7SArchie Cobbs int len; 705901fadf7SArchie Cobbs 706901fadf7SArchie Cobbs /* Grab mbuf */ 707901fadf7SArchie Cobbs NGI_GET_M(item, m); 708901fadf7SArchie Cobbs 709901fadf7SArchie Cobbs /* Update stats */ 710901fadf7SArchie Cobbs priv->stats.recvPackets++; 711901fadf7SArchie Cobbs priv->stats.recvOctets += m->m_pkthdr.len; 712901fadf7SArchie Cobbs 713901fadf7SArchie Cobbs /* Get initial header */ 714901fadf7SArchie Cobbs if (m->m_pkthdr.len < 6) { 715901fadf7SArchie Cobbs priv->stats.recvRunts++; 716901fadf7SArchie Cobbs NG_FREE_ITEM(item); 717901fadf7SArchie Cobbs NG_FREE_M(m); 718901fadf7SArchie Cobbs return (EINVAL); 719901fadf7SArchie Cobbs } 720901fadf7SArchie Cobbs if (m->m_len < 2 && (m = m_pullup(m, 2)) == NULL) { 721901fadf7SArchie Cobbs priv->stats.memoryFailures++; 722901fadf7SArchie Cobbs NG_FREE_ITEM(item); 723901fadf7SArchie Cobbs return (EINVAL); 724901fadf7SArchie Cobbs } 725901fadf7SArchie Cobbs hdr = ntohs(*mtod(m, u_int16_t *)); 726901fadf7SArchie Cobbs m_adj(m, 2); 727901fadf7SArchie Cobbs 728901fadf7SArchie Cobbs /* Check required header bits and minimum length */ 729901fadf7SArchie Cobbs is_ctrl = (hdr & L2TP_HDR_CTRL) != 0; 730901fadf7SArchie Cobbs if ((hdr & req_bits[is_ctrl][0]) != 0 731901fadf7SArchie Cobbs || (~hdr & req_bits[is_ctrl][1]) != 0) { 732901fadf7SArchie Cobbs priv->stats.recvInvalid++; 733901fadf7SArchie Cobbs NG_FREE_ITEM(item); 734901fadf7SArchie Cobbs NG_FREE_M(m); 735901fadf7SArchie Cobbs return (EINVAL); 736901fadf7SArchie Cobbs } 737901fadf7SArchie Cobbs if (m->m_pkthdr.len < 4 /* tunnel, session id */ 738901fadf7SArchie Cobbs + (2 * ((hdr & L2TP_HDR_LEN) != 0)) /* length field */ 739901fadf7SArchie Cobbs + (4 * ((hdr & L2TP_HDR_SEQ) != 0)) /* seq # fields */ 740901fadf7SArchie Cobbs + (2 * ((hdr & L2TP_HDR_OFF) != 0))) { /* offset field */ 741901fadf7SArchie Cobbs priv->stats.recvRunts++; 742901fadf7SArchie Cobbs NG_FREE_ITEM(item); 743901fadf7SArchie Cobbs NG_FREE_M(m); 744901fadf7SArchie Cobbs return (EINVAL); 745901fadf7SArchie Cobbs } 746901fadf7SArchie Cobbs 747901fadf7SArchie Cobbs /* Get and validate length field if present */ 748901fadf7SArchie Cobbs if ((hdr & L2TP_HDR_LEN) != 0) { 749901fadf7SArchie Cobbs if (m->m_len < 2 && (m = m_pullup(m, 2)) == NULL) { 750901fadf7SArchie Cobbs priv->stats.memoryFailures++; 751901fadf7SArchie Cobbs NG_FREE_ITEM(item); 752901fadf7SArchie Cobbs return (EINVAL); 753901fadf7SArchie Cobbs } 754901fadf7SArchie Cobbs len = (u_int16_t)ntohs(*mtod(m, u_int16_t *)) - 4; 755901fadf7SArchie Cobbs m_adj(m, 2); 756901fadf7SArchie Cobbs if (len < 0 || len > m->m_pkthdr.len) { 757901fadf7SArchie Cobbs priv->stats.recvInvalid++; 758901fadf7SArchie Cobbs NG_FREE_ITEM(item); 759901fadf7SArchie Cobbs NG_FREE_M(m); 760901fadf7SArchie Cobbs return (EINVAL); 761901fadf7SArchie Cobbs } 762901fadf7SArchie Cobbs if (len < m->m_pkthdr.len) /* trim extra bytes */ 763901fadf7SArchie Cobbs m_adj(m, -(m->m_pkthdr.len - len)); 764901fadf7SArchie Cobbs } 765901fadf7SArchie Cobbs 766901fadf7SArchie Cobbs /* Get tunnel ID and session ID */ 767901fadf7SArchie Cobbs if (m->m_len < 4 && (m = m_pullup(m, 4)) == NULL) { 768901fadf7SArchie Cobbs priv->stats.memoryFailures++; 769901fadf7SArchie Cobbs NG_FREE_ITEM(item); 770901fadf7SArchie Cobbs return (EINVAL); 771901fadf7SArchie Cobbs } 772901fadf7SArchie Cobbs memcpy(ids, mtod(m, u_int16_t *), 4); 773901fadf7SArchie Cobbs m_adj(m, 4); 774901fadf7SArchie Cobbs 775901fadf7SArchie Cobbs /* Check tunnel ID */ 776901fadf7SArchie Cobbs if (ids[0] != priv->conf.tunnel_id 777901fadf7SArchie Cobbs && (priv->conf.match_id || ids[0] != 0)) { 778901fadf7SArchie Cobbs priv->stats.recvWrongTunnel++; 779901fadf7SArchie Cobbs NG_FREE_ITEM(item); 780901fadf7SArchie Cobbs NG_FREE_M(m); 781901fadf7SArchie Cobbs return (EADDRNOTAVAIL); 782901fadf7SArchie Cobbs } 783901fadf7SArchie Cobbs 784901fadf7SArchie Cobbs /* Check session ID (for data packets only) */ 785901fadf7SArchie Cobbs if ((hdr & L2TP_HDR_CTRL) == 0) { 786901fadf7SArchie Cobbs NG_NODE_FOREACH_HOOK(node, ng_l2tp_find_session, 787901fadf7SArchie Cobbs (void *)(uintptr_t)ids[1], hook); 788901fadf7SArchie Cobbs if (hook == NULL) { 789901fadf7SArchie Cobbs priv->stats.recvUnknownSID++; 790901fadf7SArchie Cobbs NG_FREE_ITEM(item); 791901fadf7SArchie Cobbs NG_FREE_M(m); 792901fadf7SArchie Cobbs return (ENOTCONN); 793901fadf7SArchie Cobbs } 794901fadf7SArchie Cobbs hpriv = NG_HOOK_PRIVATE(hook); 795901fadf7SArchie Cobbs } 796901fadf7SArchie Cobbs 797901fadf7SArchie Cobbs /* Get Ns, Nr fields if present */ 798901fadf7SArchie Cobbs if ((hdr & L2TP_HDR_SEQ) != 0) { 799901fadf7SArchie Cobbs if (m->m_len < 4 && (m = m_pullup(m, 4)) == NULL) { 800901fadf7SArchie Cobbs priv->stats.memoryFailures++; 801901fadf7SArchie Cobbs NG_FREE_ITEM(item); 802901fadf7SArchie Cobbs return (EINVAL); 803901fadf7SArchie Cobbs } 804901fadf7SArchie Cobbs memcpy(&ns, &mtod(m, u_int16_t *)[0], 2); 805901fadf7SArchie Cobbs ns = ntohs(ns); 806901fadf7SArchie Cobbs memcpy(&nr, &mtod(m, u_int16_t *)[1], 2); 807901fadf7SArchie Cobbs nr = ntohs(nr); 808901fadf7SArchie Cobbs m_adj(m, 4); 809901fadf7SArchie Cobbs } 810901fadf7SArchie Cobbs 811901fadf7SArchie Cobbs /* Strip offset padding if present */ 812901fadf7SArchie Cobbs if ((hdr & L2TP_HDR_OFF) != 0) { 813901fadf7SArchie Cobbs u_int16_t offset; 814901fadf7SArchie Cobbs 815901fadf7SArchie Cobbs /* Get length of offset padding */ 816901fadf7SArchie Cobbs if (m->m_len < 2 && (m = m_pullup(m, 2)) == NULL) { 817901fadf7SArchie Cobbs priv->stats.memoryFailures++; 818901fadf7SArchie Cobbs NG_FREE_ITEM(item); 819901fadf7SArchie Cobbs return (EINVAL); 820901fadf7SArchie Cobbs } 821901fadf7SArchie Cobbs memcpy(&offset, mtod(m, u_int16_t *), 2); 822901fadf7SArchie Cobbs offset = ntohs(offset); 823901fadf7SArchie Cobbs 824901fadf7SArchie Cobbs /* Trim offset padding */ 825901fadf7SArchie Cobbs if (offset <= 2 || offset > m->m_pkthdr.len) { 826901fadf7SArchie Cobbs priv->stats.recvInvalid++; 827901fadf7SArchie Cobbs NG_FREE_ITEM(item); 828901fadf7SArchie Cobbs NG_FREE_M(m); 829901fadf7SArchie Cobbs return (EINVAL); 830901fadf7SArchie Cobbs } 831901fadf7SArchie Cobbs m_adj(m, offset); 832901fadf7SArchie Cobbs } 833901fadf7SArchie Cobbs 834901fadf7SArchie Cobbs /* Handle control packets */ 835901fadf7SArchie Cobbs if ((hdr & L2TP_HDR_CTRL) != 0) { 836901fadf7SArchie Cobbs 837901fadf7SArchie Cobbs /* Handle receive ack sequence number Nr */ 838901fadf7SArchie Cobbs ng_l2tp_seq_recv_nr(priv, nr); 839901fadf7SArchie Cobbs 840901fadf7SArchie Cobbs /* Discard ZLB packets */ 841901fadf7SArchie Cobbs if (m->m_pkthdr.len == 0) { 842901fadf7SArchie Cobbs priv->stats.recvZLBs++; 843901fadf7SArchie Cobbs NG_FREE_ITEM(item); 844901fadf7SArchie Cobbs NG_FREE_M(m); 845901fadf7SArchie Cobbs return (0); 846901fadf7SArchie Cobbs } 847901fadf7SArchie Cobbs 848901fadf7SArchie Cobbs /* 849901fadf7SArchie Cobbs * Prepend session ID to packet here: we don't want to accept 850901fadf7SArchie Cobbs * the send sequence number Ns if we have to drop the packet 851901fadf7SArchie Cobbs * later because of a memory error, because then the upper 852901fadf7SArchie Cobbs * layer would never get the packet. 853901fadf7SArchie Cobbs */ 854901fadf7SArchie Cobbs M_PREPEND(m, 2, M_DONTWAIT); 855901fadf7SArchie Cobbs if (m == NULL) { 856901fadf7SArchie Cobbs priv->stats.memoryFailures++; 857901fadf7SArchie Cobbs NG_FREE_ITEM(item); 858901fadf7SArchie Cobbs return (ENOBUFS); 859901fadf7SArchie Cobbs } 860901fadf7SArchie Cobbs memcpy(mtod(m, u_int16_t *), &ids[1], 2); 861901fadf7SArchie Cobbs 862901fadf7SArchie Cobbs /* Now handle send sequence number */ 863901fadf7SArchie Cobbs if (ng_l2tp_seq_recv_ns(priv, ns) == -1) { 864901fadf7SArchie Cobbs NG_FREE_ITEM(item); 865901fadf7SArchie Cobbs NG_FREE_M(m); 866901fadf7SArchie Cobbs return (0); 867901fadf7SArchie Cobbs } 868901fadf7SArchie Cobbs 869901fadf7SArchie Cobbs /* Deliver packet to upper layers */ 870901fadf7SArchie Cobbs NG_FWD_NEW_DATA(error, item, priv->ctrl, m); 871901fadf7SArchie Cobbs return (error); 872901fadf7SArchie Cobbs } 873901fadf7SArchie Cobbs 874901fadf7SArchie Cobbs /* Follow peer's lead in data sequencing, if configured to do so */ 875901fadf7SArchie Cobbs if (!hpriv->conf.control_dseq) 876901fadf7SArchie Cobbs hpriv->conf.enable_dseq = ((hdr & L2TP_HDR_SEQ) != 0); 877901fadf7SArchie Cobbs 878901fadf7SArchie Cobbs /* Handle data sequence numbers if present and enabled */ 879901fadf7SArchie Cobbs if ((hdr & L2TP_HDR_SEQ) != 0) { 880901fadf7SArchie Cobbs if (hpriv->conf.enable_dseq 881901fadf7SArchie Cobbs && L2TP_SEQ_DIFF(ns, hpriv->nr) < 0) { 882901fadf7SArchie Cobbs NG_FREE_ITEM(item); /* duplicate or out of order */ 883901fadf7SArchie Cobbs NG_FREE_M(m); 884901fadf7SArchie Cobbs priv->stats.recvDataDrops++; 885901fadf7SArchie Cobbs return (0); 886901fadf7SArchie Cobbs } 887901fadf7SArchie Cobbs hpriv->nr = ns + 1; 888901fadf7SArchie Cobbs } 889901fadf7SArchie Cobbs 890901fadf7SArchie Cobbs /* Drop empty data packets */ 891901fadf7SArchie Cobbs if (m->m_pkthdr.len == 0) { 892901fadf7SArchie Cobbs NG_FREE_ITEM(item); 893901fadf7SArchie Cobbs NG_FREE_M(m); 894901fadf7SArchie Cobbs return (0); 895901fadf7SArchie Cobbs } 896901fadf7SArchie Cobbs 897901fadf7SArchie Cobbs /* Deliver data */ 898901fadf7SArchie Cobbs NG_FWD_NEW_DATA(error, item, hook, m); 899901fadf7SArchie Cobbs return (error); 900901fadf7SArchie Cobbs } 901901fadf7SArchie Cobbs 902901fadf7SArchie Cobbs /* 903901fadf7SArchie Cobbs * Handle an outgoing control frame. 904901fadf7SArchie Cobbs */ 905901fadf7SArchie Cobbs static int 906901fadf7SArchie Cobbs ng_l2tp_recv_ctrl(node_p node, item_p item) 907901fadf7SArchie Cobbs { 908901fadf7SArchie Cobbs const priv_p priv = NG_NODE_PRIVATE(node); 909901fadf7SArchie Cobbs struct l2tp_seq *const seq = &priv->seq; 910901fadf7SArchie Cobbs struct mbuf *m; 911901fadf7SArchie Cobbs int i; 912901fadf7SArchie Cobbs 913901fadf7SArchie Cobbs /* Grab mbuf and discard other stuff XXX */ 914901fadf7SArchie Cobbs NGI_GET_M(item, m); 915901fadf7SArchie Cobbs NG_FREE_ITEM(item); 916901fadf7SArchie Cobbs 917901fadf7SArchie Cobbs /* Packet should have session ID prepended */ 918901fadf7SArchie Cobbs if (m->m_pkthdr.len < 2) { 919901fadf7SArchie Cobbs priv->stats.xmitInvalid++; 920901fadf7SArchie Cobbs m_freem(m); 921901fadf7SArchie Cobbs return (EINVAL); 922901fadf7SArchie Cobbs } 923901fadf7SArchie Cobbs 924901fadf7SArchie Cobbs /* Check max length */ 925901fadf7SArchie Cobbs if (m->m_pkthdr.len >= 0x10000 - 14) { 926901fadf7SArchie Cobbs priv->stats.xmitTooBig++; 927901fadf7SArchie Cobbs m_freem(m); 928901fadf7SArchie Cobbs return (EOVERFLOW); 929901fadf7SArchie Cobbs } 930901fadf7SArchie Cobbs 931901fadf7SArchie Cobbs /* Find next empty slot in transmit queue */ 932901fadf7SArchie Cobbs for (i = 0; i < L2TP_MAX_XWIN && seq->xwin[i] != NULL; i++); 933901fadf7SArchie Cobbs if (i == L2TP_MAX_XWIN) { 934901fadf7SArchie Cobbs priv->stats.xmitDrops++; 935901fadf7SArchie Cobbs m_freem(m); 936901fadf7SArchie Cobbs return (ENOBUFS); 937901fadf7SArchie Cobbs } 938901fadf7SArchie Cobbs seq->xwin[i] = m; 939901fadf7SArchie Cobbs 940901fadf7SArchie Cobbs /* Sanity check receive ack timer state */ 941901fadf7SArchie Cobbs KASSERT((i == 0) ^ seq->rack_timer_running, 942901fadf7SArchie Cobbs ("%s: xwin %d full but rack timer %srunning", 943901fadf7SArchie Cobbs __FUNCTION__, i, seq->rack_timer_running ? "" : "not ")); 944901fadf7SArchie Cobbs 945901fadf7SArchie Cobbs /* If peer's receive window is already full, nothing else to do */ 946901fadf7SArchie Cobbs if (i >= seq->cwnd) 947901fadf7SArchie Cobbs return (0); 948901fadf7SArchie Cobbs 949901fadf7SArchie Cobbs /* Start retransmit timer if not already running */ 950901fadf7SArchie Cobbs if (!seq->rack_timer_running) { 951901fadf7SArchie Cobbs callout_reset(&seq->rack_timer, 952901fadf7SArchie Cobbs hz, ng_l2tp_seq_rack_timeout, node); 953901fadf7SArchie Cobbs seq->rack_timer_running = 1; 954901fadf7SArchie Cobbs NG_NODE_REF(node); 955901fadf7SArchie Cobbs } 956901fadf7SArchie Cobbs 957901fadf7SArchie Cobbs /* Copy packet */ 958901fadf7SArchie Cobbs if ((m = L2TP_COPY_MBUF(seq->xwin[i], M_NOWAIT)) == NULL) { 959901fadf7SArchie Cobbs priv->stats.memoryFailures++; 960901fadf7SArchie Cobbs return (ENOBUFS); 961901fadf7SArchie Cobbs } 962901fadf7SArchie Cobbs 963901fadf7SArchie Cobbs /* Send packet and increment xmit sequence number */ 964901fadf7SArchie Cobbs return (ng_l2tp_xmit_ctrl(priv, m, seq->ns++)); 965901fadf7SArchie Cobbs } 966901fadf7SArchie Cobbs 967901fadf7SArchie Cobbs /* 968901fadf7SArchie Cobbs * Handle an outgoing data frame. 969901fadf7SArchie Cobbs */ 970901fadf7SArchie Cobbs static int 971901fadf7SArchie Cobbs ng_l2tp_recv_data(node_p node, item_p item, hookpriv_p hpriv) 972901fadf7SArchie Cobbs { 973901fadf7SArchie Cobbs const priv_p priv = NG_NODE_PRIVATE(node); 974901fadf7SArchie Cobbs struct mbuf *m; 975901fadf7SArchie Cobbs u_int16_t hdr; 976901fadf7SArchie Cobbs int error; 977901fadf7SArchie Cobbs int i = 1; 978901fadf7SArchie Cobbs 979901fadf7SArchie Cobbs /* Get mbuf */ 980901fadf7SArchie Cobbs NGI_GET_M(item, m); 981901fadf7SArchie Cobbs 982901fadf7SArchie Cobbs /* Check max length */ 983901fadf7SArchie Cobbs if (m->m_pkthdr.len >= 0x10000 - 12) { 984901fadf7SArchie Cobbs priv->stats.xmitDataTooBig++; 985901fadf7SArchie Cobbs NG_FREE_ITEM(item); 986901fadf7SArchie Cobbs NG_FREE_M(m); 987901fadf7SArchie Cobbs return (EOVERFLOW); 988901fadf7SArchie Cobbs } 989901fadf7SArchie Cobbs 990901fadf7SArchie Cobbs /* Prepend L2TP header */ 991901fadf7SArchie Cobbs M_PREPEND(m, 6 992901fadf7SArchie Cobbs + (2 * (hpriv->conf.include_length != 0)) 993901fadf7SArchie Cobbs + (4 * (hpriv->conf.enable_dseq != 0)), 994901fadf7SArchie Cobbs M_DONTWAIT); 995901fadf7SArchie Cobbs if (m == NULL) { 996901fadf7SArchie Cobbs priv->stats.memoryFailures++; 997901fadf7SArchie Cobbs NG_FREE_ITEM(item); 998901fadf7SArchie Cobbs return (ENOBUFS); 999901fadf7SArchie Cobbs } 1000901fadf7SArchie Cobbs hdr = L2TP_DATA_HDR; 1001901fadf7SArchie Cobbs if (hpriv->conf.include_length) { 1002901fadf7SArchie Cobbs hdr |= L2TP_HDR_LEN; 1003901fadf7SArchie Cobbs mtod(m, u_int16_t *)[i++] = htons(m->m_pkthdr.len); 1004901fadf7SArchie Cobbs } 1005901fadf7SArchie Cobbs mtod(m, u_int16_t *)[i++] = priv->conf.peer_id; 1006901fadf7SArchie Cobbs mtod(m, u_int16_t *)[i++] = hpriv->conf.peer_id; 1007901fadf7SArchie Cobbs if (hpriv->conf.enable_dseq) { 1008901fadf7SArchie Cobbs hdr |= L2TP_HDR_SEQ; 1009901fadf7SArchie Cobbs mtod(m, u_int16_t *)[i++] = htons(hpriv->ns); 1010901fadf7SArchie Cobbs mtod(m, u_int16_t *)[i++] = htons(hpriv->nr); 1011901fadf7SArchie Cobbs hpriv->ns++; 1012901fadf7SArchie Cobbs } 1013901fadf7SArchie Cobbs mtod(m, u_int16_t *)[0] = htons(hdr); 1014901fadf7SArchie Cobbs 1015901fadf7SArchie Cobbs /* Send packet */ 1016901fadf7SArchie Cobbs NG_FWD_NEW_DATA(error, item, priv->lower, m); 1017901fadf7SArchie Cobbs return (error); 1018901fadf7SArchie Cobbs } 1019901fadf7SArchie Cobbs 1020901fadf7SArchie Cobbs /* 1021901fadf7SArchie Cobbs * Send a message to our controlling node that we've failed. 1022901fadf7SArchie Cobbs */ 1023901fadf7SArchie Cobbs static void 1024901fadf7SArchie Cobbs ng_l2tp_seq_failure(priv_p priv) 1025901fadf7SArchie Cobbs { 1026901fadf7SArchie Cobbs struct ng_mesg *msg; 1027901fadf7SArchie Cobbs int error; 1028901fadf7SArchie Cobbs 1029901fadf7SArchie Cobbs NG_MKMESSAGE(msg, NGM_L2TP_COOKIE, NGM_L2TP_ACK_FAILURE, 0, M_NOWAIT); 1030901fadf7SArchie Cobbs if (msg == NULL) 1031901fadf7SArchie Cobbs return; 1032facfd889SArchie Cobbs NG_SEND_MSG_ID(error, priv->node, msg, priv->ftarget, 0); 1033901fadf7SArchie Cobbs } 1034901fadf7SArchie Cobbs 1035901fadf7SArchie Cobbs /************************************************************************ 1036901fadf7SArchie Cobbs SEQUENCE NUMBER HANDLING 1037901fadf7SArchie Cobbs ************************************************************************/ 1038901fadf7SArchie Cobbs 1039901fadf7SArchie Cobbs /* 1040901fadf7SArchie Cobbs * Initialize sequence number state. 1041901fadf7SArchie Cobbs */ 1042901fadf7SArchie Cobbs static void 1043901fadf7SArchie Cobbs ng_l2tp_seq_init(priv_p priv) 1044901fadf7SArchie Cobbs { 1045901fadf7SArchie Cobbs struct l2tp_seq *const seq = &priv->seq; 1046901fadf7SArchie Cobbs 1047901fadf7SArchie Cobbs KASSERT(priv->conf.peer_win >= 1, 1048901fadf7SArchie Cobbs ("%s: peer_win is zero", __FUNCTION__)); 1049901fadf7SArchie Cobbs memset(seq, 0, sizeof(*seq)); 1050901fadf7SArchie Cobbs seq->cwnd = 1; 1051901fadf7SArchie Cobbs seq->wmax = priv->conf.peer_win; 1052901fadf7SArchie Cobbs if (seq->wmax > L2TP_MAX_XWIN) 1053901fadf7SArchie Cobbs seq->wmax = L2TP_MAX_XWIN; 1054901fadf7SArchie Cobbs seq->ssth = seq->wmax; 1055901fadf7SArchie Cobbs seq->max_rexmits = priv->conf.rexmit_max; 1056901fadf7SArchie Cobbs seq->max_rexmit_to = priv->conf.rexmit_max_to; 1057901fadf7SArchie Cobbs callout_init(&seq->rack_timer, 0); 1058901fadf7SArchie Cobbs callout_init(&seq->xack_timer, 0); 1059901fadf7SArchie Cobbs L2TP_SEQ_CHECK(seq); 1060901fadf7SArchie Cobbs } 1061901fadf7SArchie Cobbs 1062901fadf7SArchie Cobbs /* 1063901fadf7SArchie Cobbs * Adjust sequence number state accordingly after reconfiguration. 1064901fadf7SArchie Cobbs */ 1065901fadf7SArchie Cobbs static int 1066901fadf7SArchie Cobbs ng_l2tp_seq_adjust(priv_p priv, const struct ng_l2tp_config *conf) 1067901fadf7SArchie Cobbs { 1068901fadf7SArchie Cobbs struct l2tp_seq *const seq = &priv->seq; 1069901fadf7SArchie Cobbs u_int16_t new_wmax; 1070901fadf7SArchie Cobbs 1071901fadf7SArchie Cobbs /* If disabling node, reset state sequence number */ 1072901fadf7SArchie Cobbs if (!conf->enabled) { 1073901fadf7SArchie Cobbs ng_l2tp_seq_reset(priv); 1074901fadf7SArchie Cobbs return (0); 1075901fadf7SArchie Cobbs } 1076901fadf7SArchie Cobbs 1077901fadf7SArchie Cobbs /* Adjust peer's max recv window; it can only increase */ 1078901fadf7SArchie Cobbs new_wmax = conf->peer_win; 1079901fadf7SArchie Cobbs if (new_wmax > L2TP_MAX_XWIN) 1080901fadf7SArchie Cobbs new_wmax = L2TP_MAX_XWIN; 1081901fadf7SArchie Cobbs if (new_wmax == 0) 1082901fadf7SArchie Cobbs return (EINVAL); 1083901fadf7SArchie Cobbs if (new_wmax < seq->wmax) 1084901fadf7SArchie Cobbs return (EBUSY); 1085901fadf7SArchie Cobbs seq->wmax = new_wmax; 1086901fadf7SArchie Cobbs 1087901fadf7SArchie Cobbs /* Update retransmit parameters */ 1088901fadf7SArchie Cobbs seq->max_rexmits = conf->rexmit_max; 1089901fadf7SArchie Cobbs seq->max_rexmit_to = conf->rexmit_max_to; 1090901fadf7SArchie Cobbs 1091901fadf7SArchie Cobbs /* Done */ 1092901fadf7SArchie Cobbs return (0); 1093901fadf7SArchie Cobbs } 1094901fadf7SArchie Cobbs 1095901fadf7SArchie Cobbs /* 1096901fadf7SArchie Cobbs * Reset sequence number state. 1097901fadf7SArchie Cobbs */ 1098901fadf7SArchie Cobbs static void 1099901fadf7SArchie Cobbs ng_l2tp_seq_reset(priv_p priv) 1100901fadf7SArchie Cobbs { 1101901fadf7SArchie Cobbs struct l2tp_seq *const seq = &priv->seq; 1102901fadf7SArchie Cobbs hook_p hook; 1103901fadf7SArchie Cobbs int i; 1104901fadf7SArchie Cobbs 1105901fadf7SArchie Cobbs /* Sanity check */ 1106901fadf7SArchie Cobbs L2TP_SEQ_CHECK(seq); 1107901fadf7SArchie Cobbs 1108901fadf7SArchie Cobbs /* Stop timers */ 1109901fadf7SArchie Cobbs if (seq->rack_timer_running && callout_stop(&seq->rack_timer) == 1) { 1110901fadf7SArchie Cobbs seq->rack_timer_running = 0; 1111901fadf7SArchie Cobbs NG_NODE_UNREF(priv->node); 1112901fadf7SArchie Cobbs } 1113901fadf7SArchie Cobbs if (seq->xack_timer_running && callout_stop(&seq->xack_timer) == 1) { 1114901fadf7SArchie Cobbs seq->xack_timer_running = 0; 1115901fadf7SArchie Cobbs NG_NODE_UNREF(priv->node); 1116901fadf7SArchie Cobbs } 1117901fadf7SArchie Cobbs 1118901fadf7SArchie Cobbs /* Free retransmit queue */ 1119901fadf7SArchie Cobbs for (i = 0; i < L2TP_MAX_XWIN; i++) { 1120901fadf7SArchie Cobbs if (seq->xwin[i] == NULL) 1121901fadf7SArchie Cobbs break; 1122901fadf7SArchie Cobbs m_freem(seq->xwin[i]); 1123901fadf7SArchie Cobbs } 1124901fadf7SArchie Cobbs 1125901fadf7SArchie Cobbs /* Reset session hooks' sequence number states */ 1126901fadf7SArchie Cobbs NG_NODE_FOREACH_HOOK(priv->node, ng_l2tp_reset_session, NULL, hook); 1127901fadf7SArchie Cobbs 1128901fadf7SArchie Cobbs /* Reset node's sequence number state */ 1129901fadf7SArchie Cobbs memset(seq, 0, sizeof(*seq)); 1130901fadf7SArchie Cobbs seq->cwnd = 1; 1131901fadf7SArchie Cobbs seq->wmax = L2TP_MAX_XWIN; 1132901fadf7SArchie Cobbs seq->ssth = seq->wmax; 1133901fadf7SArchie Cobbs 1134901fadf7SArchie Cobbs /* Done */ 1135901fadf7SArchie Cobbs L2TP_SEQ_CHECK(seq); 1136901fadf7SArchie Cobbs } 1137901fadf7SArchie Cobbs 1138901fadf7SArchie Cobbs /* 1139901fadf7SArchie Cobbs * Handle receipt of an acknowledgement value (Nr) from peer. 1140901fadf7SArchie Cobbs */ 1141901fadf7SArchie Cobbs static void 1142901fadf7SArchie Cobbs ng_l2tp_seq_recv_nr(priv_p priv, u_int16_t nr) 1143901fadf7SArchie Cobbs { 1144901fadf7SArchie Cobbs struct l2tp_seq *const seq = &priv->seq; 1145901fadf7SArchie Cobbs struct mbuf *m; 1146901fadf7SArchie Cobbs int nack; 1147901fadf7SArchie Cobbs int i; 1148901fadf7SArchie Cobbs 1149901fadf7SArchie Cobbs /* Verify peer's ACK is in range */ 1150901fadf7SArchie Cobbs if ((nack = L2TP_SEQ_DIFF(nr, seq->rack)) <= 0) 1151901fadf7SArchie Cobbs return; /* duplicate ack */ 1152901fadf7SArchie Cobbs if (L2TP_SEQ_DIFF(nr, seq->ns) > 0) { 1153901fadf7SArchie Cobbs priv->stats.recvBadAcks++; /* ack for packet not sent */ 1154901fadf7SArchie Cobbs return; 1155901fadf7SArchie Cobbs } 1156901fadf7SArchie Cobbs KASSERT(nack <= L2TP_MAX_XWIN, 1157901fadf7SArchie Cobbs ("%s: nack=%d > %d", __FUNCTION__, nack, L2TP_MAX_XWIN)); 1158901fadf7SArchie Cobbs 1159901fadf7SArchie Cobbs /* Update receive ack stats */ 1160901fadf7SArchie Cobbs seq->rack = nr; 1161901fadf7SArchie Cobbs seq->rexmits = 0; 1162901fadf7SArchie Cobbs 1163901fadf7SArchie Cobbs /* Free acknowledged packets and shift up packets in the xmit queue */ 1164901fadf7SArchie Cobbs for (i = 0; i < nack; i++) 1165901fadf7SArchie Cobbs m_freem(seq->xwin[i]); 1166901fadf7SArchie Cobbs memmove(seq->xwin, seq->xwin + nack, 1167901fadf7SArchie Cobbs (L2TP_MAX_XWIN - nack) * sizeof(*seq->xwin)); 1168901fadf7SArchie Cobbs memset(seq->xwin + (L2TP_MAX_XWIN - nack), 0, 1169901fadf7SArchie Cobbs nack * sizeof(*seq->xwin)); 1170901fadf7SArchie Cobbs 1171901fadf7SArchie Cobbs /* 1172901fadf7SArchie Cobbs * Do slow-start/congestion avoidance windowing algorithm described 1173901fadf7SArchie Cobbs * in RFC 2661, Appendix A. Here we handle a multiple ACK as if each 1174901fadf7SArchie Cobbs * ACK had arrived separately. 1175901fadf7SArchie Cobbs */ 1176901fadf7SArchie Cobbs if (seq->cwnd < seq->wmax) { 1177901fadf7SArchie Cobbs 1178901fadf7SArchie Cobbs /* Handle slow start phase */ 1179901fadf7SArchie Cobbs if (seq->cwnd < seq->ssth) { 1180901fadf7SArchie Cobbs seq->cwnd += nack; 1181901fadf7SArchie Cobbs nack = 0; 1182901fadf7SArchie Cobbs if (seq->cwnd > seq->ssth) { /* into cg.av. phase */ 1183901fadf7SArchie Cobbs nack = seq->cwnd - seq->ssth; 1184901fadf7SArchie Cobbs seq->cwnd = seq->ssth; 1185901fadf7SArchie Cobbs } 1186901fadf7SArchie Cobbs } 1187901fadf7SArchie Cobbs 1188901fadf7SArchie Cobbs /* Handle congestion avoidance phase */ 1189901fadf7SArchie Cobbs if (seq->cwnd >= seq->ssth) { 1190901fadf7SArchie Cobbs seq->acks += nack; 1191901fadf7SArchie Cobbs while (seq->acks >= seq->cwnd) { 1192901fadf7SArchie Cobbs seq->acks -= seq->cwnd; 1193901fadf7SArchie Cobbs if (seq->cwnd < seq->wmax) 1194901fadf7SArchie Cobbs seq->cwnd++; 1195901fadf7SArchie Cobbs } 1196901fadf7SArchie Cobbs } 1197901fadf7SArchie Cobbs } 1198901fadf7SArchie Cobbs 1199901fadf7SArchie Cobbs /* Stop xmit timer */ 1200901fadf7SArchie Cobbs if (seq->rack_timer_running && callout_stop(&seq->rack_timer) == 1) { 1201901fadf7SArchie Cobbs seq->rack_timer_running = 0; 1202901fadf7SArchie Cobbs NG_NODE_UNREF(priv->node); 1203901fadf7SArchie Cobbs } 1204901fadf7SArchie Cobbs 1205901fadf7SArchie Cobbs /* If transmit queue is empty, we're done for now */ 1206901fadf7SArchie Cobbs if (seq->xwin[0] == NULL) 1207901fadf7SArchie Cobbs return; 1208901fadf7SArchie Cobbs 1209901fadf7SArchie Cobbs /* Start restransmit timer again */ 1210901fadf7SArchie Cobbs callout_reset(&seq->rack_timer, 1211901fadf7SArchie Cobbs hz, ng_l2tp_seq_rack_timeout, priv->node); 1212901fadf7SArchie Cobbs seq->rack_timer_running = 1; 1213901fadf7SArchie Cobbs NG_NODE_REF(priv->node); 1214901fadf7SArchie Cobbs 1215901fadf7SArchie Cobbs /* 1216901fadf7SArchie Cobbs * Send more packets, trying to keep peer's receive window full. 1217901fadf7SArchie Cobbs * If there is a memory error, pretend packet was sent, as it 1218901fadf7SArchie Cobbs * will get retransmitted later anyway. 1219901fadf7SArchie Cobbs */ 1220901fadf7SArchie Cobbs while ((i = L2TP_SEQ_DIFF(seq->ns, seq->rack)) < seq->cwnd 1221901fadf7SArchie Cobbs && seq->xwin[i] != NULL) { 1222901fadf7SArchie Cobbs if ((m = L2TP_COPY_MBUF(seq->xwin[i], M_NOWAIT)) == NULL) 1223901fadf7SArchie Cobbs priv->stats.memoryFailures++; 1224901fadf7SArchie Cobbs else 1225901fadf7SArchie Cobbs ng_l2tp_xmit_ctrl(priv, m, seq->ns); 1226901fadf7SArchie Cobbs seq->ns++; 1227901fadf7SArchie Cobbs } 1228901fadf7SArchie Cobbs } 1229901fadf7SArchie Cobbs 1230901fadf7SArchie Cobbs /* 1231901fadf7SArchie Cobbs * Handle receipt of a sequence number value (Ns) from peer. 1232901fadf7SArchie Cobbs * We make no attempt to re-order out of order packets. 1233901fadf7SArchie Cobbs * 1234901fadf7SArchie Cobbs * This function should only be called for non-ZLB packets. 1235901fadf7SArchie Cobbs * 1236901fadf7SArchie Cobbs * Returns: 1237901fadf7SArchie Cobbs * 0 Accept packet 1238901fadf7SArchie Cobbs * -1 Drop packet 1239901fadf7SArchie Cobbs */ 1240901fadf7SArchie Cobbs static int 1241901fadf7SArchie Cobbs ng_l2tp_seq_recv_ns(priv_p priv, u_int16_t ns) 1242901fadf7SArchie Cobbs { 1243901fadf7SArchie Cobbs struct l2tp_seq *const seq = &priv->seq; 1244901fadf7SArchie Cobbs 1245901fadf7SArchie Cobbs /* If not what we expect, drop packet and send an immediate ZLB ack */ 1246901fadf7SArchie Cobbs if (ns != seq->nr) { 1247901fadf7SArchie Cobbs if (L2TP_SEQ_DIFF(ns, seq->nr) < 0) 1248901fadf7SArchie Cobbs priv->stats.recvDuplicates++; 1249901fadf7SArchie Cobbs else 1250901fadf7SArchie Cobbs priv->stats.recvOutOfOrder++; 1251901fadf7SArchie Cobbs ng_l2tp_xmit_ctrl(priv, NULL, seq->ns); 1252901fadf7SArchie Cobbs return (-1); 1253901fadf7SArchie Cobbs } 1254901fadf7SArchie Cobbs 1255901fadf7SArchie Cobbs /* Update recv sequence number */ 1256901fadf7SArchie Cobbs seq->nr++; 1257901fadf7SArchie Cobbs 1258901fadf7SArchie Cobbs /* Start receive ack timer, if not already running */ 1259901fadf7SArchie Cobbs if (!seq->xack_timer_running) { 1260901fadf7SArchie Cobbs callout_reset(&seq->xack_timer, 1261901fadf7SArchie Cobbs L2TP_DELAYED_ACK, ng_l2tp_seq_xack_timeout, priv->node); 1262901fadf7SArchie Cobbs seq->xack_timer_running = 1; 1263901fadf7SArchie Cobbs NG_NODE_REF(priv->node); 1264901fadf7SArchie Cobbs } 1265901fadf7SArchie Cobbs 1266901fadf7SArchie Cobbs /* Accept packet */ 1267901fadf7SArchie Cobbs return (0); 1268901fadf7SArchie Cobbs } 1269901fadf7SArchie Cobbs 1270901fadf7SArchie Cobbs /* 1271901fadf7SArchie Cobbs * Handle an ack timeout. We have an outstanding ack that we 1272901fadf7SArchie Cobbs * were hoping to piggy-back, but haven't, so send a ZLB. 1273901fadf7SArchie Cobbs */ 1274901fadf7SArchie Cobbs static void 1275901fadf7SArchie Cobbs ng_l2tp_seq_xack_timeout(void *arg) 1276901fadf7SArchie Cobbs { 1277901fadf7SArchie Cobbs const node_p node = arg; 1278901fadf7SArchie Cobbs const priv_p priv = NG_NODE_PRIVATE(node); 1279901fadf7SArchie Cobbs struct l2tp_seq *const seq = &priv->seq; 1280901fadf7SArchie Cobbs int s; 1281901fadf7SArchie Cobbs 1282901fadf7SArchie Cobbs /* Check if node is going away */ 1283901fadf7SArchie Cobbs s = splnet(); 1284901fadf7SArchie Cobbs if (NG_NODE_NOT_VALID(node)) { 1285901fadf7SArchie Cobbs seq->xack_timer_running = 0; 1286901fadf7SArchie Cobbs if (!seq->rack_timer_running) { 1287901fadf7SArchie Cobbs FREE(priv, M_NETGRAPH_L2TP); 1288901fadf7SArchie Cobbs NG_NODE_SET_PRIVATE(node, NULL); 1289901fadf7SArchie Cobbs } 1290901fadf7SArchie Cobbs NG_NODE_UNREF(node); 1291901fadf7SArchie Cobbs splx(s); 1292901fadf7SArchie Cobbs return; 1293901fadf7SArchie Cobbs } 1294901fadf7SArchie Cobbs 1295901fadf7SArchie Cobbs /* Sanity check */ 1296901fadf7SArchie Cobbs L2TP_SEQ_CHECK(seq); 1297901fadf7SArchie Cobbs 1298901fadf7SArchie Cobbs /* If ack is still outstanding, send a ZLB */ 1299901fadf7SArchie Cobbs if (seq->xack != seq->nr) 1300901fadf7SArchie Cobbs ng_l2tp_xmit_ctrl(priv, NULL, seq->ns); 1301901fadf7SArchie Cobbs 1302901fadf7SArchie Cobbs /* Done */ 1303901fadf7SArchie Cobbs seq->xack_timer_running = 0; 1304901fadf7SArchie Cobbs NG_NODE_UNREF(node); 1305901fadf7SArchie Cobbs L2TP_SEQ_CHECK(seq); 1306901fadf7SArchie Cobbs splx(s); 1307901fadf7SArchie Cobbs } 1308901fadf7SArchie Cobbs 1309901fadf7SArchie Cobbs /* 1310901fadf7SArchie Cobbs * Handle a transmit timeout. The peer has failed to respond 1311901fadf7SArchie Cobbs * with an ack for our packet, so retransmit it. 1312901fadf7SArchie Cobbs */ 1313901fadf7SArchie Cobbs static void 1314901fadf7SArchie Cobbs ng_l2tp_seq_rack_timeout(void *arg) 1315901fadf7SArchie Cobbs { 1316901fadf7SArchie Cobbs const node_p node = arg; 1317901fadf7SArchie Cobbs const priv_p priv = NG_NODE_PRIVATE(node); 1318901fadf7SArchie Cobbs struct l2tp_seq *const seq = &priv->seq; 1319901fadf7SArchie Cobbs struct mbuf *m; 1320901fadf7SArchie Cobbs u_int delay; 1321901fadf7SArchie Cobbs int s; 1322901fadf7SArchie Cobbs 1323901fadf7SArchie Cobbs /* Check if node is going away */ 1324901fadf7SArchie Cobbs s = splnet(); 1325901fadf7SArchie Cobbs if (NG_NODE_NOT_VALID(node)) { 1326901fadf7SArchie Cobbs seq->rack_timer_running = 0; 1327901fadf7SArchie Cobbs if (!seq->xack_timer_running) { 1328901fadf7SArchie Cobbs FREE(priv, M_NETGRAPH_L2TP); 1329901fadf7SArchie Cobbs NG_NODE_SET_PRIVATE(node, NULL); 1330901fadf7SArchie Cobbs } 1331901fadf7SArchie Cobbs NG_NODE_UNREF(node); 1332901fadf7SArchie Cobbs splx(s); 1333901fadf7SArchie Cobbs return; 1334901fadf7SArchie Cobbs } 1335901fadf7SArchie Cobbs 1336901fadf7SArchie Cobbs /* Sanity check */ 1337901fadf7SArchie Cobbs L2TP_SEQ_CHECK(seq); 1338901fadf7SArchie Cobbs 1339901fadf7SArchie Cobbs /* Make sure peer's ack is still outstanding before doing anything */ 1340901fadf7SArchie Cobbs if (seq->rack == seq->ns) { 1341901fadf7SArchie Cobbs seq->rack_timer_running = 0; 1342901fadf7SArchie Cobbs NG_NODE_UNREF(node); 1343901fadf7SArchie Cobbs goto done; 1344901fadf7SArchie Cobbs } 1345901fadf7SArchie Cobbs priv->stats.xmitRetransmits++; 1346901fadf7SArchie Cobbs 1347901fadf7SArchie Cobbs /* Have we reached the retransmit limit? If so, notify owner. */ 1348901fadf7SArchie Cobbs if (seq->rexmits++ >= seq->max_rexmits) 1349901fadf7SArchie Cobbs ng_l2tp_seq_failure(priv); 1350901fadf7SArchie Cobbs 1351901fadf7SArchie Cobbs /* Restart timer, this time with an increased delay */ 1352901fadf7SArchie Cobbs delay = (seq->rexmits > 12) ? (1 << 12) : (1 << seq->rexmits); 1353901fadf7SArchie Cobbs if (delay > seq->max_rexmit_to) 1354901fadf7SArchie Cobbs delay = seq->max_rexmit_to; 1355901fadf7SArchie Cobbs callout_reset(&seq->rack_timer, 1356901fadf7SArchie Cobbs hz * delay, ng_l2tp_seq_rack_timeout, node); 1357901fadf7SArchie Cobbs 1358901fadf7SArchie Cobbs /* Do slow-start/congestion algorithm windowing algorithm */ 1359901fadf7SArchie Cobbs seq->ssth = (seq->cwnd + 1) / 2; 1360901fadf7SArchie Cobbs seq->cwnd = 1; 1361901fadf7SArchie Cobbs seq->acks = 0; 1362901fadf7SArchie Cobbs 1363901fadf7SArchie Cobbs /* Retransmit oldest unack'd packet */ 1364901fadf7SArchie Cobbs if ((m = L2TP_COPY_MBUF(seq->xwin[0], M_NOWAIT)) == NULL) 1365901fadf7SArchie Cobbs priv->stats.memoryFailures++; 1366901fadf7SArchie Cobbs else 1367901fadf7SArchie Cobbs ng_l2tp_xmit_ctrl(priv, m, seq->rack); 1368901fadf7SArchie Cobbs 1369901fadf7SArchie Cobbs done: 1370901fadf7SArchie Cobbs /* Done */ 1371901fadf7SArchie Cobbs L2TP_SEQ_CHECK(seq); 1372901fadf7SArchie Cobbs splx(s); 1373901fadf7SArchie Cobbs } 1374901fadf7SArchie Cobbs 1375901fadf7SArchie Cobbs /* 1376901fadf7SArchie Cobbs * Transmit a control stream packet, payload optional. 1377901fadf7SArchie Cobbs * The transmit sequence number is not incremented. 1378901fadf7SArchie Cobbs */ 1379901fadf7SArchie Cobbs static int 1380901fadf7SArchie Cobbs ng_l2tp_xmit_ctrl(priv_p priv, struct mbuf *m, u_int16_t ns) 1381901fadf7SArchie Cobbs { 1382901fadf7SArchie Cobbs struct l2tp_seq *const seq = &priv->seq; 1383901fadf7SArchie Cobbs u_int16_t session_id = 0; 1384901fadf7SArchie Cobbs meta_p meta = NULL; 1385901fadf7SArchie Cobbs int error; 1386901fadf7SArchie Cobbs 1387901fadf7SArchie Cobbs /* If no mbuf passed, send an empty packet (ZLB) */ 1388901fadf7SArchie Cobbs if (m == NULL) { 1389901fadf7SArchie Cobbs 1390901fadf7SArchie Cobbs /* Create a new mbuf for ZLB packet */ 1391901fadf7SArchie Cobbs MGETHDR(m, M_DONTWAIT, MT_DATA); 1392901fadf7SArchie Cobbs if (m == NULL) { 1393901fadf7SArchie Cobbs priv->stats.memoryFailures++; 1394901fadf7SArchie Cobbs return (ENOBUFS); 1395901fadf7SArchie Cobbs } 1396901fadf7SArchie Cobbs m->m_len = m->m_pkthdr.len = 12; 1397901fadf7SArchie Cobbs m->m_pkthdr.rcvif = NULL; 1398901fadf7SArchie Cobbs priv->stats.xmitZLBs++; 1399901fadf7SArchie Cobbs } else { 1400901fadf7SArchie Cobbs 1401901fadf7SArchie Cobbs /* Strip off session ID */ 1402901fadf7SArchie Cobbs if (m->m_len < 2 && (m = m_pullup(m, 2)) == NULL) { 1403901fadf7SArchie Cobbs priv->stats.memoryFailures++; 1404901fadf7SArchie Cobbs return (ENOBUFS); 1405901fadf7SArchie Cobbs } 1406901fadf7SArchie Cobbs memcpy(&session_id, mtod(m, u_int16_t *), 2); 1407901fadf7SArchie Cobbs m_adj(m, 2); 1408901fadf7SArchie Cobbs 1409901fadf7SArchie Cobbs /* Make room for L2TP header */ 1410901fadf7SArchie Cobbs M_PREPEND(m, 12, M_DONTWAIT); 1411901fadf7SArchie Cobbs if (m == NULL) { 1412901fadf7SArchie Cobbs priv->stats.memoryFailures++; 1413901fadf7SArchie Cobbs return (ENOBUFS); 1414901fadf7SArchie Cobbs } 1415901fadf7SArchie Cobbs } 1416901fadf7SArchie Cobbs 1417901fadf7SArchie Cobbs /* Fill in L2TP header */ 1418901fadf7SArchie Cobbs mtod(m, u_int16_t *)[0] = htons(L2TP_CTRL_HDR); 1419901fadf7SArchie Cobbs mtod(m, u_int16_t *)[1] = htons(m->m_pkthdr.len); 1420901fadf7SArchie Cobbs mtod(m, u_int16_t *)[2] = priv->conf.peer_id; 1421901fadf7SArchie Cobbs mtod(m, u_int16_t *)[3] = session_id; 1422901fadf7SArchie Cobbs mtod(m, u_int16_t *)[4] = htons(ns); 1423901fadf7SArchie Cobbs mtod(m, u_int16_t *)[5] = htons(seq->nr); 1424901fadf7SArchie Cobbs 1425901fadf7SArchie Cobbs /* Update sequence number info and stats */ 1426901fadf7SArchie Cobbs priv->stats.xmitPackets++; 1427901fadf7SArchie Cobbs priv->stats.xmitOctets += m->m_pkthdr.len; 1428901fadf7SArchie Cobbs 1429901fadf7SArchie Cobbs /* Stop ack timer: we're sending an ack with this packet */ 1430901fadf7SArchie Cobbs if (seq->xack_timer_running && callout_stop(&seq->xack_timer) == 1) { 1431901fadf7SArchie Cobbs seq->xack_timer_running = 0; 1432901fadf7SArchie Cobbs NG_NODE_UNREF(priv->node); 1433901fadf7SArchie Cobbs } 1434901fadf7SArchie Cobbs seq->xack = seq->nr; 1435901fadf7SArchie Cobbs 1436901fadf7SArchie Cobbs /* Send packet */ 1437901fadf7SArchie Cobbs NG_SEND_DATA(error, priv->lower, m, meta); 1438901fadf7SArchie Cobbs return (error); 1439901fadf7SArchie Cobbs } 1440901fadf7SArchie Cobbs 1441901fadf7SArchie Cobbs #ifdef INVARIANTS 1442901fadf7SArchie Cobbs /* 1443901fadf7SArchie Cobbs * Sanity check sequence number state. 1444901fadf7SArchie Cobbs */ 1445901fadf7SArchie Cobbs static void 1446901fadf7SArchie Cobbs ng_l2tp_seq_check(struct l2tp_seq *seq) 1447901fadf7SArchie Cobbs { 1448901fadf7SArchie Cobbs const int self_unack = L2TP_SEQ_DIFF(seq->nr, seq->xack); 1449901fadf7SArchie Cobbs const int peer_unack = L2TP_SEQ_DIFF(seq->ns, seq->rack); 1450901fadf7SArchie Cobbs int i; 1451901fadf7SArchie Cobbs 1452901fadf7SArchie Cobbs #define CHECK(p) KASSERT((p), ("%s: not: %s", __FUNCTION__, #p)) 1453901fadf7SArchie Cobbs 1454901fadf7SArchie Cobbs CHECK(seq->wmax <= L2TP_MAX_XWIN); 1455901fadf7SArchie Cobbs CHECK(seq->cwnd >= 1); 1456901fadf7SArchie Cobbs CHECK(seq->cwnd <= seq->wmax); 1457901fadf7SArchie Cobbs CHECK(seq->ssth >= 1); 1458901fadf7SArchie Cobbs CHECK(seq->ssth <= seq->wmax); 1459901fadf7SArchie Cobbs if (seq->cwnd < seq->ssth) 1460901fadf7SArchie Cobbs CHECK(seq->acks == 0); 1461901fadf7SArchie Cobbs else 1462901fadf7SArchie Cobbs CHECK(seq->acks <= seq->cwnd); 1463901fadf7SArchie Cobbs CHECK(self_unack >= 0); 1464901fadf7SArchie Cobbs CHECK(peer_unack >= 0); 1465901fadf7SArchie Cobbs CHECK(peer_unack <= seq->wmax); 1466901fadf7SArchie Cobbs CHECK((self_unack == 0) ^ seq->xack_timer_running); 1467901fadf7SArchie Cobbs CHECK((peer_unack == 0) ^ seq->rack_timer_running); 1468901fadf7SArchie Cobbs CHECK(seq->rack_timer_running || !callout_pending(&seq->rack_timer)); 1469901fadf7SArchie Cobbs CHECK(seq->xack_timer_running || !callout_pending(&seq->xack_timer)); 1470901fadf7SArchie Cobbs for (i = 0; i < peer_unack; i++) 1471901fadf7SArchie Cobbs CHECK(seq->xwin[i] != NULL); 1472901fadf7SArchie Cobbs for ( ; i < seq->cwnd; i++) /* verify peer's recv window full */ 1473901fadf7SArchie Cobbs CHECK(seq->xwin[i] == NULL); 1474901fadf7SArchie Cobbs 1475901fadf7SArchie Cobbs #undef CHECK 1476901fadf7SArchie Cobbs } 1477901fadf7SArchie Cobbs #endif /* INVARIANTS */ 1478901fadf7SArchie Cobbs 1479901fadf7SArchie Cobbs 1480