xref: /freebsd/sys/netinet/in_pcb.c (revision 27f74fd0ede56393a91f7cd17e750622e8a123b4)
1df8bae1dSRodney W. Grimes /*
22469dd60SGarrett Wollman  * Copyright (c) 1982, 1986, 1991, 1993, 1995
3df8bae1dSRodney W. Grimes  *	The Regents of the University of California.  All rights reserved.
4df8bae1dSRodney W. Grimes  *
5df8bae1dSRodney W. Grimes  * Redistribution and use in source and binary forms, with or without
6df8bae1dSRodney W. Grimes  * modification, are permitted provided that the following conditions
7df8bae1dSRodney W. Grimes  * are met:
8df8bae1dSRodney W. Grimes  * 1. Redistributions of source code must retain the above copyright
9df8bae1dSRodney W. Grimes  *    notice, this list of conditions and the following disclaimer.
10df8bae1dSRodney W. Grimes  * 2. Redistributions in binary form must reproduce the above copyright
11df8bae1dSRodney W. Grimes  *    notice, this list of conditions and the following disclaimer in the
12df8bae1dSRodney W. Grimes  *    documentation and/or other materials provided with the distribution.
13df8bae1dSRodney W. Grimes  * 4. Neither the name of the University nor the names of its contributors
14df8bae1dSRodney W. Grimes  *    may be used to endorse or promote products derived from this software
15df8bae1dSRodney W. Grimes  *    without specific prior written permission.
16df8bae1dSRodney W. Grimes  *
17df8bae1dSRodney W. Grimes  * THIS SOFTWARE IS PROVIDED BY THE REGENTS AND CONTRIBUTORS ``AS IS'' AND
18df8bae1dSRodney W. Grimes  * ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE
19df8bae1dSRodney W. Grimes  * IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE
20df8bae1dSRodney W. Grimes  * ARE DISCLAIMED.  IN NO EVENT SHALL THE REGENTS OR CONTRIBUTORS BE LIABLE
21df8bae1dSRodney W. Grimes  * FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL
22df8bae1dSRodney W. Grimes  * DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS
23df8bae1dSRodney W. Grimes  * OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION)
24df8bae1dSRodney W. Grimes  * HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT
25df8bae1dSRodney W. Grimes  * LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY
26df8bae1dSRodney W. Grimes  * OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF
27df8bae1dSRodney W. Grimes  * SUCH DAMAGE.
28df8bae1dSRodney W. Grimes  *
292469dd60SGarrett Wollman  *	@(#)in_pcb.c	8.4 (Berkeley) 5/24/95
30c3aac50fSPeter Wemm  * $FreeBSD$
31df8bae1dSRodney W. Grimes  */
32df8bae1dSRodney W. Grimes 
336a800098SYoshinobu Inoue #include "opt_ipsec.h"
34cfa1ca9dSYoshinobu Inoue #include "opt_inet6.h"
35a557af22SRobert Watson #include "opt_mac.h"
36cfa1ca9dSYoshinobu Inoue 
37df8bae1dSRodney W. Grimes #include <sys/param.h>
38df8bae1dSRodney W. Grimes #include <sys/systm.h>
39a557af22SRobert Watson #include <sys/mac.h>
40df8bae1dSRodney W. Grimes #include <sys/malloc.h>
41df8bae1dSRodney W. Grimes #include <sys/mbuf.h>
42cfa1ca9dSYoshinobu Inoue #include <sys/domain.h>
43df8bae1dSRodney W. Grimes #include <sys/protosw.h>
44df8bae1dSRodney W. Grimes #include <sys/socket.h>
45df8bae1dSRodney W. Grimes #include <sys/socketvar.h>
46df8bae1dSRodney W. Grimes #include <sys/proc.h>
4775c13541SPoul-Henning Kamp #include <sys/jail.h>
48101f9fc8SPeter Wemm #include <sys/kernel.h>
49101f9fc8SPeter Wemm #include <sys/sysctl.h>
508781d8e9SBruce Evans 
5169c2d429SJeff Roberson #include <vm/uma.h>
52df8bae1dSRodney W. Grimes 
53df8bae1dSRodney W. Grimes #include <net/if.h>
54cfa1ca9dSYoshinobu Inoue #include <net/if_types.h>
55df8bae1dSRodney W. Grimes #include <net/route.h>
56df8bae1dSRodney W. Grimes 
57df8bae1dSRodney W. Grimes #include <netinet/in.h>
58df8bae1dSRodney W. Grimes #include <netinet/in_pcb.h>
59df8bae1dSRodney W. Grimes #include <netinet/in_var.h>
60df8bae1dSRodney W. Grimes #include <netinet/ip_var.h>
61340c35deSJonathan Lemon #include <netinet/tcp_var.h>
62cfa1ca9dSYoshinobu Inoue #ifdef INET6
63cfa1ca9dSYoshinobu Inoue #include <netinet/ip6.h>
64cfa1ca9dSYoshinobu Inoue #include <netinet6/ip6_var.h>
65cfa1ca9dSYoshinobu Inoue #endif /* INET6 */
66cfa1ca9dSYoshinobu Inoue 
67cfa1ca9dSYoshinobu Inoue #ifdef IPSEC
68cfa1ca9dSYoshinobu Inoue #include <netinet6/ipsec.h>
69cfa1ca9dSYoshinobu Inoue #include <netkey/key.h>
70cfa1ca9dSYoshinobu Inoue #endif /* IPSEC */
71df8bae1dSRodney W. Grimes 
72b9234fafSSam Leffler #ifdef FAST_IPSEC
73b9234fafSSam Leffler #if defined(IPSEC) || defined(IPSEC_ESP)
74b9234fafSSam Leffler #error "Bad idea: don't compile with both IPSEC and FAST_IPSEC!"
75b9234fafSSam Leffler #endif
76b9234fafSSam Leffler 
77b9234fafSSam Leffler #include <netipsec/ipsec.h>
78b9234fafSSam Leffler #include <netipsec/key.h>
79b9234fafSSam Leffler #endif /* FAST_IPSEC */
80b9234fafSSam Leffler 
81101f9fc8SPeter Wemm /*
82101f9fc8SPeter Wemm  * These configure the range of local port addresses assigned to
83101f9fc8SPeter Wemm  * "unspecified" outgoing connections/packets/whatever.
84101f9fc8SPeter Wemm  */
8582cd038dSYoshinobu Inoue int	ipport_lowfirstauto  = IPPORT_RESERVED - 1;	/* 1023 */
8682cd038dSYoshinobu Inoue int	ipport_lowlastauto = IPPORT_RESERVEDSTART;	/* 600 */
879e5a5ed4SMike Silbersack int	ipport_firstauto = IPPORT_HIFIRSTAUTO;		/* 49152 */
889e5a5ed4SMike Silbersack int	ipport_lastauto  = IPPORT_HILASTAUTO;		/* 65535 */
8982cd038dSYoshinobu Inoue int	ipport_hifirstauto = IPPORT_HIFIRSTAUTO;	/* 49152 */
9082cd038dSYoshinobu Inoue int	ipport_hilastauto  = IPPORT_HILASTAUTO;		/* 65535 */
91101f9fc8SPeter Wemm 
92b0d22693SCrist J. Clark /*
93b0d22693SCrist J. Clark  * Reserved ports accessible only to root. There are significant
94b0d22693SCrist J. Clark  * security considerations that must be accounted for when changing these,
95b0d22693SCrist J. Clark  * but the security benefits can be great. Please be careful.
96b0d22693SCrist J. Clark  */
97b0d22693SCrist J. Clark int	ipport_reservedhigh = IPPORT_RESERVED - 1;	/* 1023 */
98b0d22693SCrist J. Clark int	ipport_reservedlow = 0;
99b0d22693SCrist J. Clark 
1006ac48b74SMike Silbersack /* Shall we allocate ephemeral ports in random order? */
1016ac48b74SMike Silbersack int	ipport_randomized = 1;
1026ac48b74SMike Silbersack 
103bbd42ad0SPeter Wemm #define RANGECHK(var, min, max) \
104bbd42ad0SPeter Wemm 	if ((var) < (min)) { (var) = (min); } \
105bbd42ad0SPeter Wemm 	else if ((var) > (max)) { (var) = (max); }
106bbd42ad0SPeter Wemm 
107bbd42ad0SPeter Wemm static int
10882d9ae4eSPoul-Henning Kamp sysctl_net_ipport_check(SYSCTL_HANDLER_ARGS)
109bbd42ad0SPeter Wemm {
11030a4ab08SBruce Evans 	int error;
11130a4ab08SBruce Evans 
11230a4ab08SBruce Evans 	error = sysctl_handle_int(oidp, oidp->oid_arg1, oidp->oid_arg2, req);
11330a4ab08SBruce Evans 	if (error == 0) {
114bbd42ad0SPeter Wemm 		RANGECHK(ipport_lowfirstauto, 1, IPPORT_RESERVED - 1);
115bbd42ad0SPeter Wemm 		RANGECHK(ipport_lowlastauto, 1, IPPORT_RESERVED - 1);
11630a4ab08SBruce Evans 		RANGECHK(ipport_firstauto, IPPORT_RESERVED, IPPORT_MAX);
11730a4ab08SBruce Evans 		RANGECHK(ipport_lastauto, IPPORT_RESERVED, IPPORT_MAX);
11830a4ab08SBruce Evans 		RANGECHK(ipport_hifirstauto, IPPORT_RESERVED, IPPORT_MAX);
11930a4ab08SBruce Evans 		RANGECHK(ipport_hilastauto, IPPORT_RESERVED, IPPORT_MAX);
120bbd42ad0SPeter Wemm 	}
12130a4ab08SBruce Evans 	return (error);
122bbd42ad0SPeter Wemm }
123bbd42ad0SPeter Wemm 
124bbd42ad0SPeter Wemm #undef RANGECHK
125bbd42ad0SPeter Wemm 
12633b3ac06SPeter Wemm SYSCTL_NODE(_net_inet_ip, IPPROTO_IP, portrange, CTLFLAG_RW, 0, "IP Ports");
12733b3ac06SPeter Wemm 
128bbd42ad0SPeter Wemm SYSCTL_PROC(_net_inet_ip_portrange, OID_AUTO, lowfirst, CTLTYPE_INT|CTLFLAG_RW,
129bbd42ad0SPeter Wemm 	   &ipport_lowfirstauto, 0, &sysctl_net_ipport_check, "I", "");
130bbd42ad0SPeter Wemm SYSCTL_PROC(_net_inet_ip_portrange, OID_AUTO, lowlast, CTLTYPE_INT|CTLFLAG_RW,
131bbd42ad0SPeter Wemm 	   &ipport_lowlastauto, 0, &sysctl_net_ipport_check, "I", "");
132bbd42ad0SPeter Wemm SYSCTL_PROC(_net_inet_ip_portrange, OID_AUTO, first, CTLTYPE_INT|CTLFLAG_RW,
133bbd42ad0SPeter Wemm 	   &ipport_firstauto, 0, &sysctl_net_ipport_check, "I", "");
134bbd42ad0SPeter Wemm SYSCTL_PROC(_net_inet_ip_portrange, OID_AUTO, last, CTLTYPE_INT|CTLFLAG_RW,
135bbd42ad0SPeter Wemm 	   &ipport_lastauto, 0, &sysctl_net_ipport_check, "I", "");
136bbd42ad0SPeter Wemm SYSCTL_PROC(_net_inet_ip_portrange, OID_AUTO, hifirst, CTLTYPE_INT|CTLFLAG_RW,
137bbd42ad0SPeter Wemm 	   &ipport_hifirstauto, 0, &sysctl_net_ipport_check, "I", "");
138bbd42ad0SPeter Wemm SYSCTL_PROC(_net_inet_ip_portrange, OID_AUTO, hilast, CTLTYPE_INT|CTLFLAG_RW,
139bbd42ad0SPeter Wemm 	   &ipport_hilastauto, 0, &sysctl_net_ipport_check, "I", "");
140b0d22693SCrist J. Clark SYSCTL_INT(_net_inet_ip_portrange, OID_AUTO, reservedhigh,
141b0d22693SCrist J. Clark 	   CTLFLAG_RW|CTLFLAG_SECURE, &ipport_reservedhigh, 0, "");
142b0d22693SCrist J. Clark SYSCTL_INT(_net_inet_ip_portrange, OID_AUTO, reservedlow,
143b0d22693SCrist J. Clark 	   CTLFLAG_RW|CTLFLAG_SECURE, &ipport_reservedlow, 0, "");
1446ac48b74SMike Silbersack SYSCTL_INT(_net_inet_ip_portrange, OID_AUTO, randomized,
1456ac48b74SMike Silbersack 	   CTLFLAG_RW, &ipport_randomized, 0, "");
1460312fbe9SPoul-Henning Kamp 
147c3229e05SDavid Greenman /*
148c3229e05SDavid Greenman  * in_pcb.c: manage the Protocol Control Blocks.
149c3229e05SDavid Greenman  *
150c3229e05SDavid Greenman  * NOTE: It is assumed that most of these functions will be called at
151c3229e05SDavid Greenman  * splnet(). XXX - There are, unfortunately, a few exceptions to this
152c3229e05SDavid Greenman  * rule that should be fixed.
153c3229e05SDavid Greenman  */
154c3229e05SDavid Greenman 
155c3229e05SDavid Greenman /*
156c3229e05SDavid Greenman  * Allocate a PCB and associate it with the socket.
157c3229e05SDavid Greenman  */
158df8bae1dSRodney W. Grimes int
1596823b823SPawel Jakub Dawidek in_pcballoc(so, pcbinfo, type)
160df8bae1dSRodney W. Grimes 	struct socket *so;
16115bd2b43SDavid Greenman 	struct inpcbinfo *pcbinfo;
1625bd311a5SSam Leffler 	const char *type;
163df8bae1dSRodney W. Grimes {
164df8bae1dSRodney W. Grimes 	register struct inpcb *inp;
16513cf67f3SHajimu UMEMOTO 	int error;
166a557af22SRobert Watson 
16759daba27SSam Leffler 	INP_INFO_WLOCK_ASSERT(pcbinfo);
168a557af22SRobert Watson 	error = 0;
169d1dd20beSSam Leffler 	inp = uma_zalloc(pcbinfo->ipi_zone, M_NOWAIT | M_ZERO);
170df8bae1dSRodney W. Grimes 	if (inp == NULL)
171df8bae1dSRodney W. Grimes 		return (ENOBUFS);
1723d4d47f3SGarrett Wollman 	inp->inp_gencnt = ++pcbinfo->ipi_gencnt;
17315bd2b43SDavid Greenman 	inp->inp_pcbinfo = pcbinfo;
174df8bae1dSRodney W. Grimes 	inp->inp_socket = so;
175a557af22SRobert Watson #ifdef MAC
176a557af22SRobert Watson 	error = mac_init_inpcb(inp, M_NOWAIT);
177a557af22SRobert Watson 	if (error != 0)
178a557af22SRobert Watson 		goto out;
179310e7cebSRobert Watson 	SOCK_LOCK(so);
180a557af22SRobert Watson 	mac_create_inpcb_from_socket(so, inp);
181310e7cebSRobert Watson 	SOCK_UNLOCK(so);
182a557af22SRobert Watson #endif
1830f9ade71SHajimu UMEMOTO #if defined(IPSEC) || defined(FAST_IPSEC)
1840f9ade71SHajimu UMEMOTO #ifdef FAST_IPSEC
18513cf67f3SHajimu UMEMOTO 	error = ipsec_init_policy(so, &inp->inp_sp);
1860f9ade71SHajimu UMEMOTO #else
1870f9ade71SHajimu UMEMOTO 	error = ipsec_init_pcbpolicy(so, &inp->inp_sp);
1880f9ade71SHajimu UMEMOTO #endif
189a557af22SRobert Watson 	if (error != 0)
190a557af22SRobert Watson 		goto out;
19113cf67f3SHajimu UMEMOTO #endif /*IPSEC*/
19275daea93SPaul Saab #if defined(INET6)
193340c35deSJonathan Lemon 	if (INP_SOCKAF(so) == AF_INET6) {
194340c35deSJonathan Lemon 		inp->inp_vflag |= INP_IPV6PROTO;
195340c35deSJonathan Lemon 		if (ip6_v6only)
19633841545SHajimu UMEMOTO 			inp->inp_flags |= IN6P_IPV6_V6ONLY;
197340c35deSJonathan Lemon 	}
19875daea93SPaul Saab #endif
19915bd2b43SDavid Greenman 	LIST_INSERT_HEAD(pcbinfo->listhead, inp, inp_list);
2003d4d47f3SGarrett Wollman 	pcbinfo->ipi_count++;
201df8bae1dSRodney W. Grimes 	so->so_pcb = (caddr_t)inp;
2025bd311a5SSam Leffler 	INP_LOCK_INIT(inp, "inp", type);
20333841545SHajimu UMEMOTO #ifdef INET6
20433841545SHajimu UMEMOTO 	if (ip6_auto_flowlabel)
20533841545SHajimu UMEMOTO 		inp->inp_flags |= IN6P_AUTOFLOWLABEL;
20633841545SHajimu UMEMOTO #endif
207a557af22SRobert Watson #if defined(IPSEC) || defined(FAST_IPSEC) || defined(MAC)
208a557af22SRobert Watson out:
209a557af22SRobert Watson 	if (error != 0)
210a557af22SRobert Watson 		uma_zfree(pcbinfo->ipi_zone, inp);
211a557af22SRobert Watson #endif
212a557af22SRobert Watson 	return (error);
213df8bae1dSRodney W. Grimes }
214df8bae1dSRodney W. Grimes 
215df8bae1dSRodney W. Grimes int
216b0330ed9SPawel Jakub Dawidek in_pcbbind(inp, nam, cred)
217df8bae1dSRodney W. Grimes 	register struct inpcb *inp;
21857bf258eSGarrett Wollman 	struct sockaddr *nam;
219b0330ed9SPawel Jakub Dawidek 	struct ucred *cred;
220df8bae1dSRodney W. Grimes {
2214b932371SIan Dowse 	int anonport, error;
2224b932371SIan Dowse 
2231b73ca0bSSam Leffler 	INP_INFO_WLOCK_ASSERT(inp->inp_pcbinfo);
22459daba27SSam Leffler 	INP_LOCK_ASSERT(inp);
22559daba27SSam Leffler 
2264b932371SIan Dowse 	if (inp->inp_lport != 0 || inp->inp_laddr.s_addr != INADDR_ANY)
2274b932371SIan Dowse 		return (EINVAL);
2284b932371SIan Dowse 	anonport = inp->inp_lport == 0 && (nam == NULL ||
2294b932371SIan Dowse 	    ((struct sockaddr_in *)nam)->sin_port == 0);
2304b932371SIan Dowse 	error = in_pcbbind_setup(inp, nam, &inp->inp_laddr.s_addr,
231b0330ed9SPawel Jakub Dawidek 	    &inp->inp_lport, cred);
2324b932371SIan Dowse 	if (error)
2334b932371SIan Dowse 		return (error);
2344b932371SIan Dowse 	if (in_pcbinshash(inp) != 0) {
2354b932371SIan Dowse 		inp->inp_laddr.s_addr = INADDR_ANY;
2364b932371SIan Dowse 		inp->inp_lport = 0;
2374b932371SIan Dowse 		return (EAGAIN);
2384b932371SIan Dowse 	}
2394b932371SIan Dowse 	if (anonport)
2404b932371SIan Dowse 		inp->inp_flags |= INP_ANONPORT;
2414b932371SIan Dowse 	return (0);
2424b932371SIan Dowse }
2434b932371SIan Dowse 
2444b932371SIan Dowse /*
2454b932371SIan Dowse  * Set up a bind operation on a PCB, performing port allocation
2464b932371SIan Dowse  * as required, but do not actually modify the PCB. Callers can
2474b932371SIan Dowse  * either complete the bind by setting inp_laddr/inp_lport and
2484b932371SIan Dowse  * calling in_pcbinshash(), or they can just use the resulting
2494b932371SIan Dowse  * port and address to authorise the sending of a once-off packet.
2504b932371SIan Dowse  *
2514b932371SIan Dowse  * On error, the values of *laddrp and *lportp are not changed.
2524b932371SIan Dowse  */
2534b932371SIan Dowse int
254b0330ed9SPawel Jakub Dawidek in_pcbbind_setup(inp, nam, laddrp, lportp, cred)
2554b932371SIan Dowse 	struct inpcb *inp;
2564b932371SIan Dowse 	struct sockaddr *nam;
2574b932371SIan Dowse 	in_addr_t *laddrp;
2584b932371SIan Dowse 	u_short *lportp;
259b0330ed9SPawel Jakub Dawidek 	struct ucred *cred;
2604b932371SIan Dowse {
2614b932371SIan Dowse 	struct socket *so = inp->inp_socket;
26237bd2b30SPeter Wemm 	unsigned short *lastport;
26315bd2b43SDavid Greenman 	struct sockaddr_in *sin;
264c3229e05SDavid Greenman 	struct inpcbinfo *pcbinfo = inp->inp_pcbinfo;
2654b932371SIan Dowse 	struct in_addr laddr;
266df8bae1dSRodney W. Grimes 	u_short lport = 0;
2674cc20ab1SSeigo Tanimura 	int wild = 0, reuseport = (so->so_options & SO_REUSEPORT);
26875c13541SPoul-Henning Kamp 	int error, prison = 0;
269df8bae1dSRodney W. Grimes 
2701b73ca0bSSam Leffler 	INP_INFO_WLOCK_ASSERT(pcbinfo);
27159daba27SSam Leffler 	INP_LOCK_ASSERT(inp);
27259daba27SSam Leffler 
27359562606SGarrett Wollman 	if (TAILQ_EMPTY(&in_ifaddrhead)) /* XXX broken! */
274df8bae1dSRodney W. Grimes 		return (EADDRNOTAVAIL);
2754b932371SIan Dowse 	laddr.s_addr = *laddrp;
2764b932371SIan Dowse 	if (nam != NULL && laddr.s_addr != INADDR_ANY)
277df8bae1dSRodney W. Grimes 		return (EINVAL);
278c3229e05SDavid Greenman 	if ((so->so_options & (SO_REUSEADDR|SO_REUSEPORT)) == 0)
2796d6a026bSDavid Greenman 		wild = 1;
280df8bae1dSRodney W. Grimes 	if (nam) {
28157bf258eSGarrett Wollman 		sin = (struct sockaddr_in *)nam;
28257bf258eSGarrett Wollman 		if (nam->sa_len != sizeof (*sin))
283df8bae1dSRodney W. Grimes 			return (EINVAL);
284df8bae1dSRodney W. Grimes #ifdef notdef
285df8bae1dSRodney W. Grimes 		/*
286df8bae1dSRodney W. Grimes 		 * We should check the family, but old programs
287df8bae1dSRodney W. Grimes 		 * incorrectly fail to initialize it.
288df8bae1dSRodney W. Grimes 		 */
289df8bae1dSRodney W. Grimes 		if (sin->sin_family != AF_INET)
290df8bae1dSRodney W. Grimes 			return (EAFNOSUPPORT);
291df8bae1dSRodney W. Grimes #endif
292e4bdf25dSPoul-Henning Kamp 		if (sin->sin_addr.s_addr != INADDR_ANY)
293b0330ed9SPawel Jakub Dawidek 			if (prison_ip(cred, 0, &sin->sin_addr.s_addr))
29475c13541SPoul-Henning Kamp 				return(EINVAL);
2954b932371SIan Dowse 		if (sin->sin_port != *lportp) {
2964b932371SIan Dowse 			/* Don't allow the port to change. */
2974b932371SIan Dowse 			if (*lportp != 0)
2984b932371SIan Dowse 				return (EINVAL);
299df8bae1dSRodney W. Grimes 			lport = sin->sin_port;
3004b932371SIan Dowse 		}
3014b932371SIan Dowse 		/* NB: lport is left as 0 if the port isn't being changed. */
302df8bae1dSRodney W. Grimes 		if (IN_MULTICAST(ntohl(sin->sin_addr.s_addr))) {
303df8bae1dSRodney W. Grimes 			/*
304df8bae1dSRodney W. Grimes 			 * Treat SO_REUSEADDR as SO_REUSEPORT for multicast;
305df8bae1dSRodney W. Grimes 			 * allow complete duplication of binding if
306df8bae1dSRodney W. Grimes 			 * SO_REUSEPORT is set, or if SO_REUSEADDR is set
307df8bae1dSRodney W. Grimes 			 * and a multicast address is bound on both
308df8bae1dSRodney W. Grimes 			 * new and duplicated sockets.
309df8bae1dSRodney W. Grimes 			 */
310df8bae1dSRodney W. Grimes 			if (so->so_options & SO_REUSEADDR)
311df8bae1dSRodney W. Grimes 				reuseport = SO_REUSEADDR|SO_REUSEPORT;
312df8bae1dSRodney W. Grimes 		} else if (sin->sin_addr.s_addr != INADDR_ANY) {
313df8bae1dSRodney W. Grimes 			sin->sin_port = 0;		/* yech... */
31483103a73SAndrew R. Reiter 			bzero(&sin->sin_zero, sizeof(sin->sin_zero));
315df8bae1dSRodney W. Grimes 			if (ifa_ifwithaddr((struct sockaddr *)sin) == 0)
316df8bae1dSRodney W. Grimes 				return (EADDRNOTAVAIL);
317df8bae1dSRodney W. Grimes 		}
3184b932371SIan Dowse 		laddr = sin->sin_addr;
319df8bae1dSRodney W. Grimes 		if (lport) {
320df8bae1dSRodney W. Grimes 			struct inpcb *t;
321df8bae1dSRodney W. Grimes 			/* GROSS */
322b0d22693SCrist J. Clark 			if (ntohs(lport) <= ipport_reservedhigh &&
323b0d22693SCrist J. Clark 			    ntohs(lport) >= ipport_reservedlow &&
32456f21b9dSColin Percival 			    suser_cred(cred, SUSER_ALLOWJAIL))
3252469dd60SGarrett Wollman 				return (EACCES);
326b0330ed9SPawel Jakub Dawidek 			if (jailed(cred))
32775c13541SPoul-Henning Kamp 				prison = 1;
3282f9a2132SBrian Feldman 			if (so->so_cred->cr_uid != 0 &&
32952b65dbeSBill Fenner 			    !IN_MULTICAST(ntohl(sin->sin_addr.s_addr))) {
3304049a042SGuido van Rooij 				t = in_pcblookup_local(inp->inp_pcbinfo,
33175c13541SPoul-Henning Kamp 				    sin->sin_addr, lport,
33275c13541SPoul-Henning Kamp 				    prison ? 0 :  INPLOOKUP_WILDCARD);
333340c35deSJonathan Lemon 	/*
334340c35deSJonathan Lemon 	 * XXX
335340c35deSJonathan Lemon 	 * This entire block sorely needs a rewrite.
336340c35deSJonathan Lemon 	 */
3374cc20ab1SSeigo Tanimura 				if (t &&
3384658dc83SYaroslav Tykhiy 				    ((t->inp_vflag & INP_TIMEWAIT) == 0) &&
3394658dc83SYaroslav Tykhiy 				    (so->so_type != SOCK_STREAM ||
3404658dc83SYaroslav Tykhiy 				     ntohl(t->inp_faddr.s_addr) == INADDR_ANY) &&
3414cc20ab1SSeigo Tanimura 				    (ntohl(sin->sin_addr.s_addr) != INADDR_ANY ||
34252b65dbeSBill Fenner 				     ntohl(t->inp_laddr.s_addr) != INADDR_ANY ||
34352b65dbeSBill Fenner 				     (t->inp_socket->so_options &
34452b65dbeSBill Fenner 					 SO_REUSEPORT) == 0) &&
3452f9a2132SBrian Feldman 				    (so->so_cred->cr_uid !=
346a4eb4405SYaroslav Tykhiy 				     t->inp_socket->so_cred->cr_uid))
3474049a042SGuido van Rooij 					return (EADDRINUSE);
3484049a042SGuido van Rooij 			}
349b0330ed9SPawel Jakub Dawidek 			if (prison && prison_ip(cred, 0, &sin->sin_addr.s_addr))
350970680faSPoul-Henning Kamp 				return (EADDRNOTAVAIL);
351c3229e05SDavid Greenman 			t = in_pcblookup_local(pcbinfo, sin->sin_addr,
35275c13541SPoul-Henning Kamp 			    lport, prison ? 0 : wild);
353340c35deSJonathan Lemon 			if (t && (t->inp_vflag & INP_TIMEWAIT)) {
354340c35deSJonathan Lemon 				if ((reuseport & intotw(t)->tw_so_options) == 0)
355340c35deSJonathan Lemon 					return (EADDRINUSE);
356340c35deSJonathan Lemon 			} else
3574cc20ab1SSeigo Tanimura 			if (t &&
3584cc20ab1SSeigo Tanimura 			    (reuseport & t->inp_socket->so_options) == 0) {
359cfa1ca9dSYoshinobu Inoue #if defined(INET6)
36033841545SHajimu UMEMOTO 				if (ntohl(sin->sin_addr.s_addr) !=
361cfa1ca9dSYoshinobu Inoue 				    INADDR_ANY ||
362cfa1ca9dSYoshinobu Inoue 				    ntohl(t->inp_laddr.s_addr) !=
363cfa1ca9dSYoshinobu Inoue 				    INADDR_ANY ||
364cfa1ca9dSYoshinobu Inoue 				    INP_SOCKAF(so) ==
365cfa1ca9dSYoshinobu Inoue 				    INP_SOCKAF(t->inp_socket))
366cfa1ca9dSYoshinobu Inoue #endif /* defined(INET6) */
367df8bae1dSRodney W. Grimes 				return (EADDRINUSE);
368df8bae1dSRodney W. Grimes 			}
369cfa1ca9dSYoshinobu Inoue 		}
370df8bae1dSRodney W. Grimes 	}
3714b932371SIan Dowse 	if (*lportp != 0)
3724b932371SIan Dowse 		lport = *lportp;
37333b3ac06SPeter Wemm 	if (lport == 0) {
3746ac48b74SMike Silbersack 		u_short first, last;
375174624e0SMike Silbersack 		int count;
37633b3ac06SPeter Wemm 
3774b932371SIan Dowse 		if (laddr.s_addr != INADDR_ANY)
378b0330ed9SPawel Jakub Dawidek 			if (prison_ip(cred, 0, &laddr.s_addr))
37975c13541SPoul-Henning Kamp 				return (EINVAL);
380321a2846SPoul-Henning Kamp 
38133b3ac06SPeter Wemm 		if (inp->inp_flags & INP_HIGHPORT) {
38233b3ac06SPeter Wemm 			first = ipport_hifirstauto;	/* sysctl */
38333b3ac06SPeter Wemm 			last  = ipport_hilastauto;
384c3229e05SDavid Greenman 			lastport = &pcbinfo->lasthi;
38533b3ac06SPeter Wemm 		} else if (inp->inp_flags & INP_LOWPORT) {
38656f21b9dSColin Percival 			if ((error = suser_cred(cred, SUSER_ALLOWJAIL)) != 0)
387a29f300eSGarrett Wollman 				return error;
388bbd42ad0SPeter Wemm 			first = ipport_lowfirstauto;	/* 1023 */
389bbd42ad0SPeter Wemm 			last  = ipport_lowlastauto;	/* 600 */
390c3229e05SDavid Greenman 			lastport = &pcbinfo->lastlow;
39133b3ac06SPeter Wemm 		} else {
39233b3ac06SPeter Wemm 			first = ipport_firstauto;	/* sysctl */
39333b3ac06SPeter Wemm 			last  = ipport_lastauto;
394c3229e05SDavid Greenman 			lastport = &pcbinfo->lastport;
39533b3ac06SPeter Wemm 		}
39633b3ac06SPeter Wemm 		/*
39733b3ac06SPeter Wemm 		 * Simple check to ensure all ports are not used up causing
39833b3ac06SPeter Wemm 		 * a deadlock here.
39933b3ac06SPeter Wemm 		 *
40033b3ac06SPeter Wemm 		 * We split the two cases (up and down) so that the direction
40133b3ac06SPeter Wemm 		 * is not being tested on each round of the loop.
40233b3ac06SPeter Wemm 		 */
40333b3ac06SPeter Wemm 		if (first > last) {
40433b3ac06SPeter Wemm 			/*
40533b3ac06SPeter Wemm 			 * counting down
40633b3ac06SPeter Wemm 			 */
4076ac48b74SMike Silbersack 			if (ipport_randomized)
4086b2fc10bSMike Silbersack 				*lastport = first -
4096b2fc10bSMike Silbersack 					    (arc4random() % (first - last));
41033b3ac06SPeter Wemm 			count = first - last;
411174624e0SMike Silbersack 
412df8bae1dSRodney W. Grimes 			do {
4136ac48b74SMike Silbersack 				if (count-- < 0)	/* completely used? */
414550b1518SWes Peters 					return (EADDRNOTAVAIL);
41533b3ac06SPeter Wemm 				--*lastport;
41633b3ac06SPeter Wemm 				if (*lastport > first || *lastport < last)
41733b3ac06SPeter Wemm 					*lastport = first;
41815bd2b43SDavid Greenman 				lport = htons(*lastport);
4194b932371SIan Dowse 			} while (in_pcblookup_local(pcbinfo, laddr, lport,
4204b932371SIan Dowse 			    wild));
42133b3ac06SPeter Wemm 		} else {
42233b3ac06SPeter Wemm 			/*
42333b3ac06SPeter Wemm 			 * counting up
42433b3ac06SPeter Wemm 			 */
4256ac48b74SMike Silbersack 			if (ipport_randomized)
4266b2fc10bSMike Silbersack 				*lastport = first +
4276b2fc10bSMike Silbersack 					    (arc4random() % (last - first));
42833b3ac06SPeter Wemm 			count = last - first;
429174624e0SMike Silbersack 
43033b3ac06SPeter Wemm 			do {
4316ac48b74SMike Silbersack 				if (count-- < 0)	/* completely used? */
432550b1518SWes Peters 					return (EADDRNOTAVAIL);
43333b3ac06SPeter Wemm 				++*lastport;
43433b3ac06SPeter Wemm 				if (*lastport < first || *lastport > last)
43533b3ac06SPeter Wemm 					*lastport = first;
43633b3ac06SPeter Wemm 				lport = htons(*lastport);
4374b932371SIan Dowse 			} while (in_pcblookup_local(pcbinfo, laddr, lport,
4384b932371SIan Dowse 			    wild));
43933b3ac06SPeter Wemm 		}
44033b3ac06SPeter Wemm 	}
441b0330ed9SPawel Jakub Dawidek 	if (prison_ip(cred, 0, &laddr.s_addr))
442e4bdf25dSPoul-Henning Kamp 		return (EINVAL);
4434b932371SIan Dowse 	*laddrp = laddr.s_addr;
4444b932371SIan Dowse 	*lportp = lport;
445df8bae1dSRodney W. Grimes 	return (0);
446df8bae1dSRodney W. Grimes }
447df8bae1dSRodney W. Grimes 
448999f1343SGarrett Wollman /*
4495200e00eSIan Dowse  * Connect from a socket to a specified address.
4505200e00eSIan Dowse  * Both address and port must be specified in argument sin.
4515200e00eSIan Dowse  * If don't have a local address for this socket yet,
4525200e00eSIan Dowse  * then pick one.
453999f1343SGarrett Wollman  */
454999f1343SGarrett Wollman int
455b0330ed9SPawel Jakub Dawidek in_pcbconnect(inp, nam, cred)
456999f1343SGarrett Wollman 	register struct inpcb *inp;
45757bf258eSGarrett Wollman 	struct sockaddr *nam;
458b0330ed9SPawel Jakub Dawidek 	struct ucred *cred;
459999f1343SGarrett Wollman {
4605200e00eSIan Dowse 	u_short lport, fport;
4615200e00eSIan Dowse 	in_addr_t laddr, faddr;
4625200e00eSIan Dowse 	int anonport, error;
463df8bae1dSRodney W. Grimes 
46427f74fd0SRobert Watson 	INP_INFO_WLOCK_ASSERT(inp->inp_pcbinfo);
46527f74fd0SRobert Watson 	INP_LOCK_ASSERT(inp);
46627f74fd0SRobert Watson 
4675200e00eSIan Dowse 	lport = inp->inp_lport;
4685200e00eSIan Dowse 	laddr = inp->inp_laddr.s_addr;
4695200e00eSIan Dowse 	anonport = (lport == 0);
4705200e00eSIan Dowse 	error = in_pcbconnect_setup(inp, nam, &laddr, &lport, &faddr, &fport,
471b0330ed9SPawel Jakub Dawidek 	    NULL, cred);
4725200e00eSIan Dowse 	if (error)
4735200e00eSIan Dowse 		return (error);
4745200e00eSIan Dowse 
4755200e00eSIan Dowse 	/* Do the initial binding of the local address if required. */
4765200e00eSIan Dowse 	if (inp->inp_laddr.s_addr == INADDR_ANY && inp->inp_lport == 0) {
4775200e00eSIan Dowse 		inp->inp_lport = lport;
4785200e00eSIan Dowse 		inp->inp_laddr.s_addr = laddr;
4795200e00eSIan Dowse 		if (in_pcbinshash(inp) != 0) {
4805200e00eSIan Dowse 			inp->inp_laddr.s_addr = INADDR_ANY;
4815200e00eSIan Dowse 			inp->inp_lport = 0;
4825200e00eSIan Dowse 			return (EAGAIN);
4835200e00eSIan Dowse 		}
4845200e00eSIan Dowse 	}
4855200e00eSIan Dowse 
4865200e00eSIan Dowse 	/* Commit the remaining changes. */
4875200e00eSIan Dowse 	inp->inp_lport = lport;
4885200e00eSIan Dowse 	inp->inp_laddr.s_addr = laddr;
4895200e00eSIan Dowse 	inp->inp_faddr.s_addr = faddr;
4905200e00eSIan Dowse 	inp->inp_fport = fport;
4915200e00eSIan Dowse 	in_pcbrehash(inp);
4920f9ade71SHajimu UMEMOTO #ifdef IPSEC
4930f9ade71SHajimu UMEMOTO 	if (inp->inp_socket->so_type == SOCK_STREAM)
4940f9ade71SHajimu UMEMOTO 		ipsec_pcbconn(inp->inp_sp);
4950f9ade71SHajimu UMEMOTO #endif
4965200e00eSIan Dowse 	if (anonport)
4975200e00eSIan Dowse 		inp->inp_flags |= INP_ANONPORT;
4985200e00eSIan Dowse 	return (0);
4995200e00eSIan Dowse }
5005200e00eSIan Dowse 
5015200e00eSIan Dowse /*
5025200e00eSIan Dowse  * Set up for a connect from a socket to the specified address.
5035200e00eSIan Dowse  * On entry, *laddrp and *lportp should contain the current local
5045200e00eSIan Dowse  * address and port for the PCB; these are updated to the values
5055200e00eSIan Dowse  * that should be placed in inp_laddr and inp_lport to complete
5065200e00eSIan Dowse  * the connect.
5075200e00eSIan Dowse  *
5085200e00eSIan Dowse  * On success, *faddrp and *fportp will be set to the remote address
5095200e00eSIan Dowse  * and port. These are not updated in the error case.
5105200e00eSIan Dowse  *
5115200e00eSIan Dowse  * If the operation fails because the connection already exists,
5125200e00eSIan Dowse  * *oinpp will be set to the PCB of that connection so that the
5135200e00eSIan Dowse  * caller can decide to override it. In all other cases, *oinpp
5145200e00eSIan Dowse  * is set to NULL.
5155200e00eSIan Dowse  */
5165200e00eSIan Dowse int
517b0330ed9SPawel Jakub Dawidek in_pcbconnect_setup(inp, nam, laddrp, lportp, faddrp, fportp, oinpp, cred)
5185200e00eSIan Dowse 	register struct inpcb *inp;
5195200e00eSIan Dowse 	struct sockaddr *nam;
5205200e00eSIan Dowse 	in_addr_t *laddrp;
5215200e00eSIan Dowse 	u_short *lportp;
5225200e00eSIan Dowse 	in_addr_t *faddrp;
5235200e00eSIan Dowse 	u_short *fportp;
5245200e00eSIan Dowse 	struct inpcb **oinpp;
525b0330ed9SPawel Jakub Dawidek 	struct ucred *cred;
5265200e00eSIan Dowse {
5275200e00eSIan Dowse 	struct sockaddr_in *sin = (struct sockaddr_in *)nam;
5285200e00eSIan Dowse 	struct in_ifaddr *ia;
5295200e00eSIan Dowse 	struct sockaddr_in sa;
530b0330ed9SPawel Jakub Dawidek 	struct ucred *socred;
5315200e00eSIan Dowse 	struct inpcb *oinp;
5325200e00eSIan Dowse 	struct in_addr laddr, faddr;
5335200e00eSIan Dowse 	u_short lport, fport;
5345200e00eSIan Dowse 	int error;
5355200e00eSIan Dowse 
53627f74fd0SRobert Watson 	INP_INFO_WLOCK_ASSERT(inp->inp_pcbinfo);
53727f74fd0SRobert Watson 	INP_LOCK_ASSERT(inp);
53827f74fd0SRobert Watson 
5395200e00eSIan Dowse 	if (oinpp != NULL)
5405200e00eSIan Dowse 		*oinpp = NULL;
54157bf258eSGarrett Wollman 	if (nam->sa_len != sizeof (*sin))
542df8bae1dSRodney W. Grimes 		return (EINVAL);
543df8bae1dSRodney W. Grimes 	if (sin->sin_family != AF_INET)
544df8bae1dSRodney W. Grimes 		return (EAFNOSUPPORT);
545df8bae1dSRodney W. Grimes 	if (sin->sin_port == 0)
546df8bae1dSRodney W. Grimes 		return (EADDRNOTAVAIL);
5475200e00eSIan Dowse 	laddr.s_addr = *laddrp;
5485200e00eSIan Dowse 	lport = *lportp;
5495200e00eSIan Dowse 	faddr = sin->sin_addr;
5505200e00eSIan Dowse 	fport = sin->sin_port;
551b0330ed9SPawel Jakub Dawidek 	socred = inp->inp_socket->so_cred;
552b0330ed9SPawel Jakub Dawidek 	if (laddr.s_addr == INADDR_ANY && jailed(socred)) {
5535200e00eSIan Dowse 		bzero(&sa, sizeof(sa));
554b0330ed9SPawel Jakub Dawidek 		sa.sin_addr.s_addr = htonl(prison_getip(socred));
5555200e00eSIan Dowse 		sa.sin_len = sizeof(sa);
5565200e00eSIan Dowse 		sa.sin_family = AF_INET;
5575200e00eSIan Dowse 		error = in_pcbbind_setup(inp, (struct sockaddr *)&sa,
558b0330ed9SPawel Jakub Dawidek 		    &laddr.s_addr, &lport, cred);
5595200e00eSIan Dowse 		if (error)
5605200e00eSIan Dowse 			return (error);
5615200e00eSIan Dowse 	}
56259562606SGarrett Wollman 	if (!TAILQ_EMPTY(&in_ifaddrhead)) {
563df8bae1dSRodney W. Grimes 		/*
564df8bae1dSRodney W. Grimes 		 * If the destination address is INADDR_ANY,
565df8bae1dSRodney W. Grimes 		 * use the primary local address.
566df8bae1dSRodney W. Grimes 		 * If the supplied address is INADDR_BROADCAST,
567df8bae1dSRodney W. Grimes 		 * and the primary interface supports broadcast,
568df8bae1dSRodney W. Grimes 		 * choose the broadcast address for that interface.
569df8bae1dSRodney W. Grimes 		 */
5705200e00eSIan Dowse 		if (faddr.s_addr == INADDR_ANY)
5715200e00eSIan Dowse 			faddr = IA_SIN(TAILQ_FIRST(&in_ifaddrhead))->sin_addr;
5725200e00eSIan Dowse 		else if (faddr.s_addr == (u_long)INADDR_BROADCAST &&
5735200e00eSIan Dowse 		    (TAILQ_FIRST(&in_ifaddrhead)->ia_ifp->if_flags &
5745200e00eSIan Dowse 		    IFF_BROADCAST))
5755200e00eSIan Dowse 			faddr = satosin(&TAILQ_FIRST(
5765200e00eSIan Dowse 			    &in_ifaddrhead)->ia_broadaddr)->sin_addr;
577df8bae1dSRodney W. Grimes 	}
5785200e00eSIan Dowse 	if (laddr.s_addr == INADDR_ANY) {
57997d8d152SAndre Oppermann 		struct route sro;
580df8bae1dSRodney W. Grimes 
5810cfbbe3bSAndre Oppermann 		bzero(&sro, sizeof(sro));
582df8bae1dSRodney W. Grimes 		ia = (struct in_ifaddr *)0;
583df8bae1dSRodney W. Grimes 		/*
58497d8d152SAndre Oppermann 		 * If route is known our src addr is taken from the i/f,
58597d8d152SAndre Oppermann 		 * else punt.
586df8bae1dSRodney W. Grimes 		 */
58797d8d152SAndre Oppermann 		if ((inp->inp_socket->so_options & SO_DONTROUTE) == 0) {
58897d8d152SAndre Oppermann 			/* Find out route to destination */
58997d8d152SAndre Oppermann 			sro.ro_dst.sa_family = AF_INET;
59097d8d152SAndre Oppermann 			sro.ro_dst.sa_len = sizeof(struct sockaddr_in);
59197d8d152SAndre Oppermann 			((struct sockaddr_in *)&sro.ro_dst)->sin_addr = faddr;
59297d8d152SAndre Oppermann 			rtalloc_ign(&sro, RTF_CLONING);
5934cc20ab1SSeigo Tanimura 		}
594df8bae1dSRodney W. Grimes 		/*
595df8bae1dSRodney W. Grimes 		 * If we found a route, use the address
596df8bae1dSRodney W. Grimes 		 * corresponding to the outgoing interface
597df8bae1dSRodney W. Grimes 		 * unless it is the loopback (in case a route
598df8bae1dSRodney W. Grimes 		 * to our address on another net goes to loopback).
599df8bae1dSRodney W. Grimes 		 */
60097d8d152SAndre Oppermann 		if (sro.ro_rt && !(sro.ro_rt->rt_ifp->if_flags & IFF_LOOPBACK))
60197d8d152SAndre Oppermann 			ia = ifatoia(sro.ro_rt->rt_ifa);
60297d8d152SAndre Oppermann 		if (sro.ro_rt)
60397d8d152SAndre Oppermann 			RTFREE(sro.ro_rt);
604df8bae1dSRodney W. Grimes 		if (ia == 0) {
6055200e00eSIan Dowse 			bzero(&sa, sizeof(sa));
6065200e00eSIan Dowse 			sa.sin_addr = faddr;
6075200e00eSIan Dowse 			sa.sin_len = sizeof(sa);
6085200e00eSIan Dowse 			sa.sin_family = AF_INET;
609df8bae1dSRodney W. Grimes 
6105200e00eSIan Dowse 			ia = ifatoia(ifa_ifwithdstaddr(sintosa(&sa)));
611df8bae1dSRodney W. Grimes 			if (ia == 0)
6125200e00eSIan Dowse 				ia = ifatoia(ifa_ifwithnet(sintosa(&sa)));
613df8bae1dSRodney W. Grimes 			if (ia == 0)
614ef14c369SMaxim Konovalov 				return (ENETUNREACH);
615df8bae1dSRodney W. Grimes 		}
616df8bae1dSRodney W. Grimes 		/*
617df8bae1dSRodney W. Grimes 		 * If the destination address is multicast and an outgoing
618df8bae1dSRodney W. Grimes 		 * interface has been set as a multicast option, use the
619df8bae1dSRodney W. Grimes 		 * address of that interface as our source address.
620df8bae1dSRodney W. Grimes 		 */
6215200e00eSIan Dowse 		if (IN_MULTICAST(ntohl(faddr.s_addr)) &&
622df8bae1dSRodney W. Grimes 		    inp->inp_moptions != NULL) {
623df8bae1dSRodney W. Grimes 			struct ip_moptions *imo;
624df8bae1dSRodney W. Grimes 			struct ifnet *ifp;
625df8bae1dSRodney W. Grimes 
626df8bae1dSRodney W. Grimes 			imo = inp->inp_moptions;
627df8bae1dSRodney W. Grimes 			if (imo->imo_multicast_ifp != NULL) {
628df8bae1dSRodney W. Grimes 				ifp = imo->imo_multicast_ifp;
62937d40066SPoul-Henning Kamp 				TAILQ_FOREACH(ia, &in_ifaddrhead, ia_link)
630df8bae1dSRodney W. Grimes 					if (ia->ia_ifp == ifp)
631df8bae1dSRodney W. Grimes 						break;
632df8bae1dSRodney W. Grimes 				if (ia == 0)
633df8bae1dSRodney W. Grimes 					return (EADDRNOTAVAIL);
634df8bae1dSRodney W. Grimes 			}
635df8bae1dSRodney W. Grimes 		}
6365200e00eSIan Dowse 		laddr = ia->ia_addr.sin_addr;
637999f1343SGarrett Wollman 	}
638999f1343SGarrett Wollman 
6395200e00eSIan Dowse 	oinp = in_pcblookup_hash(inp->inp_pcbinfo, faddr, fport, laddr, lport,
6405200e00eSIan Dowse 	    0, NULL);
6415200e00eSIan Dowse 	if (oinp != NULL) {
6425200e00eSIan Dowse 		if (oinpp != NULL)
6435200e00eSIan Dowse 			*oinpp = oinp;
644df8bae1dSRodney W. Grimes 		return (EADDRINUSE);
645c3229e05SDavid Greenman 	}
6465200e00eSIan Dowse 	if (lport == 0) {
647b0330ed9SPawel Jakub Dawidek 		error = in_pcbbind_setup(inp, NULL, &laddr.s_addr, &lport,
648b0330ed9SPawel Jakub Dawidek 		    cred);
6495a903f8dSPierre Beyssac 		if (error)
6505a903f8dSPierre Beyssac 			return (error);
6515a903f8dSPierre Beyssac 	}
6525200e00eSIan Dowse 	*laddrp = laddr.s_addr;
6535200e00eSIan Dowse 	*lportp = lport;
6545200e00eSIan Dowse 	*faddrp = faddr.s_addr;
6555200e00eSIan Dowse 	*fportp = fport;
656df8bae1dSRodney W. Grimes 	return (0);
657df8bae1dSRodney W. Grimes }
658df8bae1dSRodney W. Grimes 
65926f9a767SRodney W. Grimes void
660df8bae1dSRodney W. Grimes in_pcbdisconnect(inp)
661df8bae1dSRodney W. Grimes 	struct inpcb *inp;
662df8bae1dSRodney W. Grimes {
66359daba27SSam Leffler 	INP_LOCK_ASSERT(inp);
664df8bae1dSRodney W. Grimes 
665df8bae1dSRodney W. Grimes 	inp->inp_faddr.s_addr = INADDR_ANY;
666df8bae1dSRodney W. Grimes 	inp->inp_fport = 0;
66715bd2b43SDavid Greenman 	in_pcbrehash(inp);
6680f9ade71SHajimu UMEMOTO #ifdef IPSEC
6690f9ade71SHajimu UMEMOTO 	ipsec_pcbdisconn(inp->inp_sp);
6700f9ade71SHajimu UMEMOTO #endif
671548c676bSHajimu UMEMOTO 	if (inp->inp_socket->so_state & SS_NOFDREF)
672548c676bSHajimu UMEMOTO 		in_pcbdetach(inp);
673df8bae1dSRodney W. Grimes }
674df8bae1dSRodney W. Grimes 
67526f9a767SRodney W. Grimes void
676df8bae1dSRodney W. Grimes in_pcbdetach(inp)
677df8bae1dSRodney W. Grimes 	struct inpcb *inp;
678df8bae1dSRodney W. Grimes {
679df8bae1dSRodney W. Grimes 	struct socket *so = inp->inp_socket;
6803d4d47f3SGarrett Wollman 	struct inpcbinfo *ipi = inp->inp_pcbinfo;
681df8bae1dSRodney W. Grimes 
68259daba27SSam Leffler 	INP_LOCK_ASSERT(inp);
68359daba27SSam Leffler 
6840f9ade71SHajimu UMEMOTO #if defined(IPSEC) || defined(FAST_IPSEC)
685cfa1ca9dSYoshinobu Inoue 	ipsec4_delete_pcbpolicy(inp);
686cfa1ca9dSYoshinobu Inoue #endif /*IPSEC*/
6873d4d47f3SGarrett Wollman 	inp->inp_gencnt = ++ipi->ipi_gencnt;
688c3229e05SDavid Greenman 	in_pcbremlists(inp);
689340c35deSJonathan Lemon 	if (so) {
690395a08c9SRobert Watson 		SOCK_LOCK(so);
691df8bae1dSRodney W. Grimes 		so->so_pcb = 0;
692b1e4abd2SMatthew Dillon 		sotryfree(so);
693340c35deSJonathan Lemon 	}
694df8bae1dSRodney W. Grimes 	if (inp->inp_options)
695df8bae1dSRodney W. Grimes 		(void)m_free(inp->inp_options);
696df8bae1dSRodney W. Grimes 	ip_freemoptions(inp->inp_moptions);
697cfa1ca9dSYoshinobu Inoue 	inp->inp_vflag = 0;
698f76fcf6dSJeffrey Hsu 	INP_LOCK_DESTROY(inp);
699a557af22SRobert Watson #ifdef MAC
700a557af22SRobert Watson 	mac_destroy_inpcb(inp);
701a557af22SRobert Watson #endif
70269c2d429SJeff Roberson 	uma_zfree(ipi->ipi_zone, inp);
703df8bae1dSRodney W. Grimes }
704df8bae1dSRodney W. Grimes 
70526ef6ac4SDon Lewis struct sockaddr *
70626ef6ac4SDon Lewis in_sockaddr(port, addr_p)
70726ef6ac4SDon Lewis 	in_port_t port;
70826ef6ac4SDon Lewis 	struct in_addr *addr_p;
70926ef6ac4SDon Lewis {
71026ef6ac4SDon Lewis 	struct sockaddr_in *sin;
71126ef6ac4SDon Lewis 
71226ef6ac4SDon Lewis 	MALLOC(sin, struct sockaddr_in *, sizeof *sin, M_SONAME,
713a163d034SWarner Losh 		M_WAITOK | M_ZERO);
71426ef6ac4SDon Lewis 	sin->sin_family = AF_INET;
71526ef6ac4SDon Lewis 	sin->sin_len = sizeof(*sin);
71626ef6ac4SDon Lewis 	sin->sin_addr = *addr_p;
71726ef6ac4SDon Lewis 	sin->sin_port = port;
71826ef6ac4SDon Lewis 
71926ef6ac4SDon Lewis 	return (struct sockaddr *)sin;
72026ef6ac4SDon Lewis }
72126ef6ac4SDon Lewis 
722117bcae7SGarrett Wollman /*
723f76fcf6dSJeffrey Hsu  * The wrapper function will pass down the pcbinfo for this function to lock.
724f76fcf6dSJeffrey Hsu  * The socket must have a valid
725117bcae7SGarrett Wollman  * (i.e., non-nil) PCB, but it should be impossible to get an invalid one
726117bcae7SGarrett Wollman  * except through a kernel programming error, so it is acceptable to panic
72757bf258eSGarrett Wollman  * (or in this case trap) if the PCB is invalid.  (Actually, we don't trap
72857bf258eSGarrett Wollman  * because there actually /is/ a programming error somewhere... XXX)
729117bcae7SGarrett Wollman  */
730117bcae7SGarrett Wollman int
731f76fcf6dSJeffrey Hsu in_setsockaddr(so, nam, pcbinfo)
732117bcae7SGarrett Wollman 	struct socket *so;
73357bf258eSGarrett Wollman 	struct sockaddr **nam;
734f76fcf6dSJeffrey Hsu 	struct inpcbinfo *pcbinfo;
735df8bae1dSRodney W. Grimes {
736fdc984f7STor Egge 	int s;
737fdc984f7STor Egge 	register struct inpcb *inp;
73826ef6ac4SDon Lewis 	struct in_addr addr;
73926ef6ac4SDon Lewis 	in_port_t port;
74042fa505bSDavid Greenman 
741fdc984f7STor Egge 	s = splnet();
742f76fcf6dSJeffrey Hsu 	INP_INFO_RLOCK(pcbinfo);
743fdc984f7STor Egge 	inp = sotoinpcb(so);
744db112f04STor Egge 	if (!inp) {
745f76fcf6dSJeffrey Hsu 		INP_INFO_RUNLOCK(pcbinfo);
746db112f04STor Egge 		splx(s);
747ff079ca4SPeter Wemm 		return ECONNRESET;
748db112f04STor Egge 	}
749f76fcf6dSJeffrey Hsu 	INP_LOCK(inp);
75026ef6ac4SDon Lewis 	port = inp->inp_lport;
75126ef6ac4SDon Lewis 	addr = inp->inp_laddr;
752f76fcf6dSJeffrey Hsu 	INP_UNLOCK(inp);
753f76fcf6dSJeffrey Hsu 	INP_INFO_RUNLOCK(pcbinfo);
754db112f04STor Egge 	splx(s);
75542fa505bSDavid Greenman 
75626ef6ac4SDon Lewis 	*nam = in_sockaddr(port, &addr);
757117bcae7SGarrett Wollman 	return 0;
758df8bae1dSRodney W. Grimes }
759df8bae1dSRodney W. Grimes 
760f76fcf6dSJeffrey Hsu /*
761f76fcf6dSJeffrey Hsu  * The wrapper function will pass down the pcbinfo for this function to lock.
762f76fcf6dSJeffrey Hsu  */
763117bcae7SGarrett Wollman int
764f76fcf6dSJeffrey Hsu in_setpeeraddr(so, nam, pcbinfo)
765117bcae7SGarrett Wollman 	struct socket *so;
76657bf258eSGarrett Wollman 	struct sockaddr **nam;
767f76fcf6dSJeffrey Hsu 	struct inpcbinfo *pcbinfo;
768df8bae1dSRodney W. Grimes {
769fdc984f7STor Egge 	int s;
770f76fcf6dSJeffrey Hsu 	register struct inpcb *inp;
77126ef6ac4SDon Lewis 	struct in_addr addr;
77226ef6ac4SDon Lewis 	in_port_t port;
77342fa505bSDavid Greenman 
774fdc984f7STor Egge 	s = splnet();
775f76fcf6dSJeffrey Hsu 	INP_INFO_RLOCK(pcbinfo);
776fdc984f7STor Egge 	inp = sotoinpcb(so);
777db112f04STor Egge 	if (!inp) {
778f76fcf6dSJeffrey Hsu 		INP_INFO_RUNLOCK(pcbinfo);
779db112f04STor Egge 		splx(s);
780ff079ca4SPeter Wemm 		return ECONNRESET;
781db112f04STor Egge 	}
782f76fcf6dSJeffrey Hsu 	INP_LOCK(inp);
78326ef6ac4SDon Lewis 	port = inp->inp_fport;
78426ef6ac4SDon Lewis 	addr = inp->inp_faddr;
785f76fcf6dSJeffrey Hsu 	INP_UNLOCK(inp);
786f76fcf6dSJeffrey Hsu 	INP_INFO_RUNLOCK(pcbinfo);
787db112f04STor Egge 	splx(s);
78842fa505bSDavid Greenman 
78926ef6ac4SDon Lewis 	*nam = in_sockaddr(port, &addr);
790117bcae7SGarrett Wollman 	return 0;
791df8bae1dSRodney W. Grimes }
792df8bae1dSRodney W. Grimes 
79326f9a767SRodney W. Grimes void
794f76fcf6dSJeffrey Hsu in_pcbnotifyall(pcbinfo, faddr, errno, notify)
795f76fcf6dSJeffrey Hsu 	struct inpcbinfo *pcbinfo;
796df8bae1dSRodney W. Grimes 	struct in_addr faddr;
797c693a045SJonathan Lemon 	int errno;
7983ce144eaSJeffrey Hsu 	struct inpcb *(*notify)(struct inpcb *, int);
799d1c54148SJesper Skriver {
800c693a045SJonathan Lemon 	struct inpcb *inp, *ninp;
801f76fcf6dSJeffrey Hsu 	struct inpcbhead *head;
802c693a045SJonathan Lemon 	int s;
803d1c54148SJesper Skriver 
804d1c54148SJesper Skriver 	s = splnet();
8053dc7ebf9SJeffrey Hsu 	INP_INFO_WLOCK(pcbinfo);
806f76fcf6dSJeffrey Hsu 	head = pcbinfo->listhead;
807c693a045SJonathan Lemon 	for (inp = LIST_FIRST(head); inp != NULL; inp = ninp) {
808f76fcf6dSJeffrey Hsu 		INP_LOCK(inp);
809c693a045SJonathan Lemon 		ninp = LIST_NEXT(inp, inp_list);
810d1c54148SJesper Skriver #ifdef INET6
811f76fcf6dSJeffrey Hsu 		if ((inp->inp_vflag & INP_IPV4) == 0) {
812f76fcf6dSJeffrey Hsu 			INP_UNLOCK(inp);
813d1c54148SJesper Skriver 			continue;
814f76fcf6dSJeffrey Hsu 		}
815d1c54148SJesper Skriver #endif
816d1c54148SJesper Skriver 		if (inp->inp_faddr.s_addr != faddr.s_addr ||
817f76fcf6dSJeffrey Hsu 		    inp->inp_socket == NULL) {
818f76fcf6dSJeffrey Hsu 			INP_UNLOCK(inp);
819d1c54148SJesper Skriver 			continue;
820d1c54148SJesper Skriver 		}
8213dc7ebf9SJeffrey Hsu 		if ((*notify)(inp, errno))
822f76fcf6dSJeffrey Hsu 			INP_UNLOCK(inp);
823f76fcf6dSJeffrey Hsu 	}
8243dc7ebf9SJeffrey Hsu 	INP_INFO_WUNLOCK(pcbinfo);
825d1c54148SJesper Skriver 	splx(s);
826d1c54148SJesper Skriver }
827d1c54148SJesper Skriver 
828e43cc4aeSHajimu UMEMOTO void
829f76fcf6dSJeffrey Hsu in_pcbpurgeif0(pcbinfo, ifp)
830f76fcf6dSJeffrey Hsu 	struct inpcbinfo *pcbinfo;
831e43cc4aeSHajimu UMEMOTO 	struct ifnet *ifp;
832e43cc4aeSHajimu UMEMOTO {
833e43cc4aeSHajimu UMEMOTO 	struct inpcb *inp;
834e43cc4aeSHajimu UMEMOTO 	struct ip_moptions *imo;
835e43cc4aeSHajimu UMEMOTO 	int i, gap;
836e43cc4aeSHajimu UMEMOTO 
837f76fcf6dSJeffrey Hsu 	/* why no splnet here? XXX */
838f76fcf6dSJeffrey Hsu 	INP_INFO_RLOCK(pcbinfo);
8393cfcc388SJeffrey Hsu 	LIST_FOREACH(inp, pcbinfo->listhead, inp_list) {
840f76fcf6dSJeffrey Hsu 		INP_LOCK(inp);
841e43cc4aeSHajimu UMEMOTO 		imo = inp->inp_moptions;
842e43cc4aeSHajimu UMEMOTO 		if ((inp->inp_vflag & INP_IPV4) &&
843e43cc4aeSHajimu UMEMOTO 		    imo != NULL) {
844e43cc4aeSHajimu UMEMOTO 			/*
845e43cc4aeSHajimu UMEMOTO 			 * Unselect the outgoing interface if it is being
846e43cc4aeSHajimu UMEMOTO 			 * detached.
847e43cc4aeSHajimu UMEMOTO 			 */
848e43cc4aeSHajimu UMEMOTO 			if (imo->imo_multicast_ifp == ifp)
849e43cc4aeSHajimu UMEMOTO 				imo->imo_multicast_ifp = NULL;
850e43cc4aeSHajimu UMEMOTO 
851e43cc4aeSHajimu UMEMOTO 			/*
852e43cc4aeSHajimu UMEMOTO 			 * Drop multicast group membership if we joined
853e43cc4aeSHajimu UMEMOTO 			 * through the interface being detached.
854e43cc4aeSHajimu UMEMOTO 			 */
855e43cc4aeSHajimu UMEMOTO 			for (i = 0, gap = 0; i < imo->imo_num_memberships;
856e43cc4aeSHajimu UMEMOTO 			    i++) {
857e43cc4aeSHajimu UMEMOTO 				if (imo->imo_membership[i]->inm_ifp == ifp) {
858e43cc4aeSHajimu UMEMOTO 					in_delmulti(imo->imo_membership[i]);
859e43cc4aeSHajimu UMEMOTO 					gap++;
860e43cc4aeSHajimu UMEMOTO 				} else if (gap != 0)
861e43cc4aeSHajimu UMEMOTO 					imo->imo_membership[i - gap] =
862e43cc4aeSHajimu UMEMOTO 					    imo->imo_membership[i];
863e43cc4aeSHajimu UMEMOTO 			}
864e43cc4aeSHajimu UMEMOTO 			imo->imo_num_memberships -= gap;
865e43cc4aeSHajimu UMEMOTO 		}
866f76fcf6dSJeffrey Hsu 		INP_UNLOCK(inp);
867e43cc4aeSHajimu UMEMOTO 	}
8683cfcc388SJeffrey Hsu 	INP_INFO_RUNLOCK(pcbinfo);
869e43cc4aeSHajimu UMEMOTO }
870e43cc4aeSHajimu UMEMOTO 
871df8bae1dSRodney W. Grimes /*
872c3229e05SDavid Greenman  * Lookup a PCB based on the local address and port.
873c3229e05SDavid Greenman  */
874df8bae1dSRodney W. Grimes struct inpcb *
875c3229e05SDavid Greenman in_pcblookup_local(pcbinfo, laddr, lport_arg, wild_okay)
8766d6a026bSDavid Greenman 	struct inpcbinfo *pcbinfo;
877c3229e05SDavid Greenman 	struct in_addr laddr;
878c3229e05SDavid Greenman 	u_int lport_arg;
8796d6a026bSDavid Greenman 	int wild_okay;
880df8bae1dSRodney W. Grimes {
881f1d19042SArchie Cobbs 	register struct inpcb *inp;
882df8bae1dSRodney W. Grimes 	int matchwild = 3, wildcard;
883c3229e05SDavid Greenman 	u_short lport = lport_arg;
8847bc4aca7SDavid Greenman 
8851b73ca0bSSam Leffler 	INP_INFO_WLOCK_ASSERT(pcbinfo);
8861b73ca0bSSam Leffler 
887c3229e05SDavid Greenman 	if (!wild_okay) {
888c3229e05SDavid Greenman 		struct inpcbhead *head;
889c3229e05SDavid Greenman 		/*
890c3229e05SDavid Greenman 		 * Look for an unconnected (wildcard foreign addr) PCB that
891c3229e05SDavid Greenman 		 * matches the local address and port we're looking for.
892c3229e05SDavid Greenman 		 */
893c3229e05SDavid Greenman 		head = &pcbinfo->hashbase[INP_PCBHASH(INADDR_ANY, lport, 0, pcbinfo->hashmask)];
894fc2ffbe6SPoul-Henning Kamp 		LIST_FOREACH(inp, head, inp_hash) {
895cfa1ca9dSYoshinobu Inoue #ifdef INET6
896369dc8ceSEivind Eklund 			if ((inp->inp_vflag & INP_IPV4) == 0)
897cfa1ca9dSYoshinobu Inoue 				continue;
898cfa1ca9dSYoshinobu Inoue #endif
899c3229e05SDavid Greenman 			if (inp->inp_faddr.s_addr == INADDR_ANY &&
900c3229e05SDavid Greenman 			    inp->inp_laddr.s_addr == laddr.s_addr &&
901c3229e05SDavid Greenman 			    inp->inp_lport == lport) {
902c3229e05SDavid Greenman 				/*
903c3229e05SDavid Greenman 				 * Found.
904c3229e05SDavid Greenman 				 */
905c3229e05SDavid Greenman 				return (inp);
906df8bae1dSRodney W. Grimes 			}
907c3229e05SDavid Greenman 		}
908c3229e05SDavid Greenman 		/*
909c3229e05SDavid Greenman 		 * Not found.
910c3229e05SDavid Greenman 		 */
911c3229e05SDavid Greenman 		return (NULL);
912c3229e05SDavid Greenman 	} else {
913c3229e05SDavid Greenman 		struct inpcbporthead *porthash;
914c3229e05SDavid Greenman 		struct inpcbport *phd;
915c3229e05SDavid Greenman 		struct inpcb *match = NULL;
916c3229e05SDavid Greenman 		/*
917c3229e05SDavid Greenman 		 * Best fit PCB lookup.
918c3229e05SDavid Greenman 		 *
919c3229e05SDavid Greenman 		 * First see if this local port is in use by looking on the
920c3229e05SDavid Greenman 		 * port hash list.
921c3229e05SDavid Greenman 		 */
92296af9ea5SMike Silbersack 		retrylookup:
923c3229e05SDavid Greenman 		porthash = &pcbinfo->porthashbase[INP_PCBPORTHASH(lport,
924c3229e05SDavid Greenman 		    pcbinfo->porthashmask)];
925fc2ffbe6SPoul-Henning Kamp 		LIST_FOREACH(phd, porthash, phd_hash) {
926c3229e05SDavid Greenman 			if (phd->phd_port == lport)
927c3229e05SDavid Greenman 				break;
928c3229e05SDavid Greenman 		}
929c3229e05SDavid Greenman 		if (phd != NULL) {
930c3229e05SDavid Greenman 			/*
931c3229e05SDavid Greenman 			 * Port is in use by one or more PCBs. Look for best
932c3229e05SDavid Greenman 			 * fit.
933c3229e05SDavid Greenman 			 */
93437d40066SPoul-Henning Kamp 			LIST_FOREACH(inp, &phd->phd_pcblist, inp_portlist) {
935c3229e05SDavid Greenman 				wildcard = 0;
936cfa1ca9dSYoshinobu Inoue #ifdef INET6
937369dc8ceSEivind Eklund 				if ((inp->inp_vflag & INP_IPV4) == 0)
938cfa1ca9dSYoshinobu Inoue 					continue;
939cfa1ca9dSYoshinobu Inoue #endif
94096af9ea5SMike Silbersack 				/*
94196af9ea5SMike Silbersack 				 * Clean out old time_wait sockets if they
94296af9ea5SMike Silbersack 				 * are clogging up needed local ports.
94396af9ea5SMike Silbersack 				 */
94496af9ea5SMike Silbersack 				if ((inp->inp_vflag & INP_TIMEWAIT) != 0) {
94596af9ea5SMike Silbersack 					if (tcp_twrecycleable((struct tcptw *)inp->inp_ppcb)) {
946f7bbe2c0SSam Leffler 						INP_LOCK(inp);
94796af9ea5SMike Silbersack 						tcp_twclose((struct tcptw *)inp->inp_ppcb, 0);
94896af9ea5SMike Silbersack 						match = NULL;
94996af9ea5SMike Silbersack 						goto retrylookup;
95096af9ea5SMike Silbersack 					}
95196af9ea5SMike Silbersack 				}
952c3229e05SDavid Greenman 				if (inp->inp_faddr.s_addr != INADDR_ANY)
953c3229e05SDavid Greenman 					wildcard++;
95415bd2b43SDavid Greenman 				if (inp->inp_laddr.s_addr != INADDR_ANY) {
95515bd2b43SDavid Greenman 					if (laddr.s_addr == INADDR_ANY)
95615bd2b43SDavid Greenman 						wildcard++;
95715bd2b43SDavid Greenman 					else if (inp->inp_laddr.s_addr != laddr.s_addr)
95815bd2b43SDavid Greenman 						continue;
95915bd2b43SDavid Greenman 				} else {
96015bd2b43SDavid Greenman 					if (laddr.s_addr != INADDR_ANY)
96115bd2b43SDavid Greenman 						wildcard++;
96215bd2b43SDavid Greenman 				}
963df8bae1dSRodney W. Grimes 				if (wildcard < matchwild) {
964df8bae1dSRodney W. Grimes 					match = inp;
965df8bae1dSRodney W. Grimes 					matchwild = wildcard;
9663dbdc25cSDavid Greenman 					if (matchwild == 0) {
967df8bae1dSRodney W. Grimes 						break;
968df8bae1dSRodney W. Grimes 					}
969df8bae1dSRodney W. Grimes 				}
9703dbdc25cSDavid Greenman 			}
971c3229e05SDavid Greenman 		}
972df8bae1dSRodney W. Grimes 		return (match);
973df8bae1dSRodney W. Grimes 	}
974c3229e05SDavid Greenman }
97515bd2b43SDavid Greenman 
97615bd2b43SDavid Greenman /*
97715bd2b43SDavid Greenman  * Lookup PCB in hash list.
97815bd2b43SDavid Greenman  */
97915bd2b43SDavid Greenman struct inpcb *
980cfa1ca9dSYoshinobu Inoue in_pcblookup_hash(pcbinfo, faddr, fport_arg, laddr, lport_arg, wildcard,
981cfa1ca9dSYoshinobu Inoue 		  ifp)
98215bd2b43SDavid Greenman 	struct inpcbinfo *pcbinfo;
98315bd2b43SDavid Greenman 	struct in_addr faddr, laddr;
98415bd2b43SDavid Greenman 	u_int fport_arg, lport_arg;
9856d6a026bSDavid Greenman 	int wildcard;
986cfa1ca9dSYoshinobu Inoue 	struct ifnet *ifp;
98715bd2b43SDavid Greenman {
98815bd2b43SDavid Greenman 	struct inpcbhead *head;
98915bd2b43SDavid Greenman 	register struct inpcb *inp;
99015bd2b43SDavid Greenman 	u_short fport = fport_arg, lport = lport_arg;
99115bd2b43SDavid Greenman 
99259daba27SSam Leffler 	INP_INFO_RLOCK_ASSERT(pcbinfo);
99315bd2b43SDavid Greenman 	/*
99415bd2b43SDavid Greenman 	 * First look for an exact match.
99515bd2b43SDavid Greenman 	 */
996ddd79a97SDavid Greenman 	head = &pcbinfo->hashbase[INP_PCBHASH(faddr.s_addr, lport, fport, pcbinfo->hashmask)];
997fc2ffbe6SPoul-Henning Kamp 	LIST_FOREACH(inp, head, inp_hash) {
998cfa1ca9dSYoshinobu Inoue #ifdef INET6
999369dc8ceSEivind Eklund 		if ((inp->inp_vflag & INP_IPV4) == 0)
1000cfa1ca9dSYoshinobu Inoue 			continue;
1001cfa1ca9dSYoshinobu Inoue #endif
10026d6a026bSDavid Greenman 		if (inp->inp_faddr.s_addr == faddr.s_addr &&
1003ca98b82cSDavid Greenman 		    inp->inp_laddr.s_addr == laddr.s_addr &&
1004ca98b82cSDavid Greenman 		    inp->inp_fport == fport &&
1005c3229e05SDavid Greenman 		    inp->inp_lport == lport) {
1006c3229e05SDavid Greenman 			/*
1007c3229e05SDavid Greenman 			 * Found.
1008c3229e05SDavid Greenman 			 */
1009c3229e05SDavid Greenman 			return (inp);
1010c3229e05SDavid Greenman 		}
10116d6a026bSDavid Greenman 	}
10126d6a026bSDavid Greenman 	if (wildcard) {
10136d6a026bSDavid Greenman 		struct inpcb *local_wild = NULL;
1014cfa1ca9dSYoshinobu Inoue #if defined(INET6)
1015cfa1ca9dSYoshinobu Inoue 		struct inpcb *local_wild_mapped = NULL;
1016cfa1ca9dSYoshinobu Inoue #endif /* defined(INET6) */
10176d6a026bSDavid Greenman 
1018ddd79a97SDavid Greenman 		head = &pcbinfo->hashbase[INP_PCBHASH(INADDR_ANY, lport, 0, pcbinfo->hashmask)];
1019fc2ffbe6SPoul-Henning Kamp 		LIST_FOREACH(inp, head, inp_hash) {
1020cfa1ca9dSYoshinobu Inoue #ifdef INET6
1021369dc8ceSEivind Eklund 			if ((inp->inp_vflag & INP_IPV4) == 0)
1022cfa1ca9dSYoshinobu Inoue 				continue;
1023cfa1ca9dSYoshinobu Inoue #endif
10246d6a026bSDavid Greenman 			if (inp->inp_faddr.s_addr == INADDR_ANY &&
1025c3229e05SDavid Greenman 			    inp->inp_lport == lport) {
1026cfa1ca9dSYoshinobu Inoue 				if (ifp && ifp->if_type == IFT_FAITH &&
1027cfa1ca9dSYoshinobu Inoue 				    (inp->inp_flags & INP_FAITH) == 0)
1028cfa1ca9dSYoshinobu Inoue 					continue;
10296d6a026bSDavid Greenman 				if (inp->inp_laddr.s_addr == laddr.s_addr)
1030c3229e05SDavid Greenman 					return (inp);
1031cfa1ca9dSYoshinobu Inoue 				else if (inp->inp_laddr.s_addr == INADDR_ANY) {
1032cfa1ca9dSYoshinobu Inoue #if defined(INET6)
1033cfa1ca9dSYoshinobu Inoue 					if (INP_CHECK_SOCKAF(inp->inp_socket,
1034cfa1ca9dSYoshinobu Inoue 							     AF_INET6))
1035cfa1ca9dSYoshinobu Inoue 						local_wild_mapped = inp;
1036cfa1ca9dSYoshinobu Inoue 					else
1037cfa1ca9dSYoshinobu Inoue #endif /* defined(INET6) */
10386d6a026bSDavid Greenman 					local_wild = inp;
10396d6a026bSDavid Greenman 				}
10406d6a026bSDavid Greenman 			}
1041cfa1ca9dSYoshinobu Inoue 		}
1042cfa1ca9dSYoshinobu Inoue #if defined(INET6)
1043cfa1ca9dSYoshinobu Inoue 		if (local_wild == NULL)
1044cfa1ca9dSYoshinobu Inoue 			return (local_wild_mapped);
1045cfa1ca9dSYoshinobu Inoue #endif /* defined(INET6) */
1046c3229e05SDavid Greenman 		return (local_wild);
10476d6a026bSDavid Greenman 	}
1048c3229e05SDavid Greenman 
1049c3229e05SDavid Greenman 	/*
1050c3229e05SDavid Greenman 	 * Not found.
1051c3229e05SDavid Greenman 	 */
10526d6a026bSDavid Greenman 	return (NULL);
105315bd2b43SDavid Greenman }
105415bd2b43SDavid Greenman 
10557bc4aca7SDavid Greenman /*
1056c3229e05SDavid Greenman  * Insert PCB onto various hash lists.
10577bc4aca7SDavid Greenman  */
1058c3229e05SDavid Greenman int
105915bd2b43SDavid Greenman in_pcbinshash(inp)
106015bd2b43SDavid Greenman 	struct inpcb *inp;
106115bd2b43SDavid Greenman {
1062c3229e05SDavid Greenman 	struct inpcbhead *pcbhash;
1063c3229e05SDavid Greenman 	struct inpcbporthead *pcbporthash;
1064c3229e05SDavid Greenman 	struct inpcbinfo *pcbinfo = inp->inp_pcbinfo;
1065c3229e05SDavid Greenman 	struct inpcbport *phd;
1066cfa1ca9dSYoshinobu Inoue 	u_int32_t hashkey_faddr;
106715bd2b43SDavid Greenman 
106859daba27SSam Leffler 	INP_INFO_WLOCK_ASSERT(pcbinfo);
1069cfa1ca9dSYoshinobu Inoue #ifdef INET6
1070cfa1ca9dSYoshinobu Inoue 	if (inp->inp_vflag & INP_IPV6)
1071cfa1ca9dSYoshinobu Inoue 		hashkey_faddr = inp->in6p_faddr.s6_addr32[3] /* XXX */;
1072cfa1ca9dSYoshinobu Inoue 	else
1073cfa1ca9dSYoshinobu Inoue #endif /* INET6 */
1074cfa1ca9dSYoshinobu Inoue 	hashkey_faddr = inp->inp_faddr.s_addr;
1075cfa1ca9dSYoshinobu Inoue 
1076cfa1ca9dSYoshinobu Inoue 	pcbhash = &pcbinfo->hashbase[INP_PCBHASH(hashkey_faddr,
1077c3229e05SDavid Greenman 		 inp->inp_lport, inp->inp_fport, pcbinfo->hashmask)];
107815bd2b43SDavid Greenman 
1079c3229e05SDavid Greenman 	pcbporthash = &pcbinfo->porthashbase[INP_PCBPORTHASH(inp->inp_lport,
1080c3229e05SDavid Greenman 	    pcbinfo->porthashmask)];
1081c3229e05SDavid Greenman 
1082c3229e05SDavid Greenman 	/*
1083c3229e05SDavid Greenman 	 * Go through port list and look for a head for this lport.
1084c3229e05SDavid Greenman 	 */
1085fc2ffbe6SPoul-Henning Kamp 	LIST_FOREACH(phd, pcbporthash, phd_hash) {
1086c3229e05SDavid Greenman 		if (phd->phd_port == inp->inp_lport)
1087c3229e05SDavid Greenman 			break;
1088c3229e05SDavid Greenman 	}
1089c3229e05SDavid Greenman 	/*
1090c3229e05SDavid Greenman 	 * If none exists, malloc one and tack it on.
1091c3229e05SDavid Greenman 	 */
1092c3229e05SDavid Greenman 	if (phd == NULL) {
1093c3229e05SDavid Greenman 		MALLOC(phd, struct inpcbport *, sizeof(struct inpcbport), M_PCB, M_NOWAIT);
1094c3229e05SDavid Greenman 		if (phd == NULL) {
1095c3229e05SDavid Greenman 			return (ENOBUFS); /* XXX */
1096c3229e05SDavid Greenman 		}
1097c3229e05SDavid Greenman 		phd->phd_port = inp->inp_lport;
1098c3229e05SDavid Greenman 		LIST_INIT(&phd->phd_pcblist);
1099c3229e05SDavid Greenman 		LIST_INSERT_HEAD(pcbporthash, phd, phd_hash);
1100c3229e05SDavid Greenman 	}
1101c3229e05SDavid Greenman 	inp->inp_phd = phd;
1102c3229e05SDavid Greenman 	LIST_INSERT_HEAD(&phd->phd_pcblist, inp, inp_portlist);
1103c3229e05SDavid Greenman 	LIST_INSERT_HEAD(pcbhash, inp, inp_hash);
1104c3229e05SDavid Greenman 	return (0);
110515bd2b43SDavid Greenman }
110615bd2b43SDavid Greenman 
1107c3229e05SDavid Greenman /*
1108c3229e05SDavid Greenman  * Move PCB to the proper hash bucket when { faddr, fport } have  been
1109c3229e05SDavid Greenman  * changed. NOTE: This does not handle the case of the lport changing (the
1110c3229e05SDavid Greenman  * hashed port list would have to be updated as well), so the lport must
1111c3229e05SDavid Greenman  * not change after in_pcbinshash() has been called.
1112c3229e05SDavid Greenman  */
111315bd2b43SDavid Greenman void
111415bd2b43SDavid Greenman in_pcbrehash(inp)
111515bd2b43SDavid Greenman 	struct inpcb *inp;
111615bd2b43SDavid Greenman {
111759daba27SSam Leffler 	struct inpcbinfo *pcbinfo = inp->inp_pcbinfo;
111815bd2b43SDavid Greenman 	struct inpcbhead *head;
1119cfa1ca9dSYoshinobu Inoue 	u_int32_t hashkey_faddr;
112015bd2b43SDavid Greenman 
112159daba27SSam Leffler 	INP_INFO_WLOCK_ASSERT(pcbinfo);
112259daba27SSam Leffler 	/* XXX? INP_LOCK_ASSERT(inp); */
1123cfa1ca9dSYoshinobu Inoue #ifdef INET6
1124cfa1ca9dSYoshinobu Inoue 	if (inp->inp_vflag & INP_IPV6)
1125cfa1ca9dSYoshinobu Inoue 		hashkey_faddr = inp->in6p_faddr.s6_addr32[3] /* XXX */;
1126cfa1ca9dSYoshinobu Inoue 	else
1127cfa1ca9dSYoshinobu Inoue #endif /* INET6 */
1128cfa1ca9dSYoshinobu Inoue 	hashkey_faddr = inp->inp_faddr.s_addr;
1129cfa1ca9dSYoshinobu Inoue 
113059daba27SSam Leffler 	head = &pcbinfo->hashbase[INP_PCBHASH(hashkey_faddr,
113159daba27SSam Leffler 		inp->inp_lport, inp->inp_fport, pcbinfo->hashmask)];
113215bd2b43SDavid Greenman 
1133c3229e05SDavid Greenman 	LIST_REMOVE(inp, inp_hash);
113415bd2b43SDavid Greenman 	LIST_INSERT_HEAD(head, inp, inp_hash);
1135c3229e05SDavid Greenman }
1136c3229e05SDavid Greenman 
1137c3229e05SDavid Greenman /*
1138c3229e05SDavid Greenman  * Remove PCB from various lists.
1139c3229e05SDavid Greenman  */
114076429de4SYoshinobu Inoue void
1141c3229e05SDavid Greenman in_pcbremlists(inp)
1142c3229e05SDavid Greenman 	struct inpcb *inp;
1143c3229e05SDavid Greenman {
114459daba27SSam Leffler 	struct inpcbinfo *pcbinfo = inp->inp_pcbinfo;
114559daba27SSam Leffler 
114659daba27SSam Leffler 	INP_INFO_WLOCK_ASSERT(pcbinfo);
114759daba27SSam Leffler 	INP_LOCK_ASSERT(inp);
114859daba27SSam Leffler 
114959daba27SSam Leffler 	inp->inp_gencnt = ++pcbinfo->ipi_gencnt;
1150c3229e05SDavid Greenman 	if (inp->inp_lport) {
1151c3229e05SDavid Greenman 		struct inpcbport *phd = inp->inp_phd;
1152c3229e05SDavid Greenman 
1153c3229e05SDavid Greenman 		LIST_REMOVE(inp, inp_hash);
1154c3229e05SDavid Greenman 		LIST_REMOVE(inp, inp_portlist);
1155fc2ffbe6SPoul-Henning Kamp 		if (LIST_FIRST(&phd->phd_pcblist) == NULL) {
1156c3229e05SDavid Greenman 			LIST_REMOVE(phd, phd_hash);
1157c3229e05SDavid Greenman 			free(phd, M_PCB);
1158c3229e05SDavid Greenman 		}
1159c3229e05SDavid Greenman 	}
1160c3229e05SDavid Greenman 	LIST_REMOVE(inp, inp_list);
116159daba27SSam Leffler 	pcbinfo->ipi_count--;
116215bd2b43SDavid Greenman }
116375c13541SPoul-Henning Kamp 
1164a557af22SRobert Watson /*
1165a557af22SRobert Watson  * A set label operation has occurred at the socket layer, propagate the
1166a557af22SRobert Watson  * label change into the in_pcb for the socket.
1167a557af22SRobert Watson  */
1168a557af22SRobert Watson void
1169a557af22SRobert Watson in_pcbsosetlabel(so)
1170a557af22SRobert Watson 	struct socket *so;
1171a557af22SRobert Watson {
1172a557af22SRobert Watson #ifdef MAC
1173a557af22SRobert Watson 	struct inpcb *inp;
1174a557af22SRobert Watson 
1175a557af22SRobert Watson 	inp = (struct inpcb *)so->so_pcb;
1176a557af22SRobert Watson 	INP_LOCK(inp);
1177310e7cebSRobert Watson 	SOCK_LOCK(so);
1178a557af22SRobert Watson 	mac_inpcb_sosetlabel(so, inp);
1179310e7cebSRobert Watson 	SOCK_UNLOCK(so);
1180a557af22SRobert Watson 	INP_UNLOCK(inp);
1181a557af22SRobert Watson #endif
1182a557af22SRobert Watson }
1183